From 41fa002eab6199e63e0fce59fc15d64350c24ae0 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Wed, 30 Apr 2025 15:32:41 +0000 Subject: [PATCH] Advisory Database Sync --- .../GHSA-27qm-jwxp-8whw.json | 2 +- .../GHSA-636w-x3wj-wj9p.json | 2 +- .../GHSA-68xp-cphm-cph8.json | 2 +- .../GHSA-6rg3-hww9-7v6g.json | 2 +- .../GHSA-7gc4-cwgf-384p.json | 4 +- .../GHSA-7j6c-r569-6rvc.json | 2 +- .../GHSA-899r-qc24-g3c5.json | 2 +- .../GHSA-cfqg-5rj6-9crg.json | 2 +- .../GHSA-h4rf-98jg-f337.json | 1 + .../GHSA-hp2j-5wrq-ph9f.json | 4 +- .../GHSA-hrv9-f2qw-v2xg.json | 4 +- .../GHSA-jc5c-h4cw-3529.json | 2 +- .../GHSA-rrqq-ffjh-mjxv.json | 2 +- .../GHSA-vmrr-4jjv-hjpm.json | 2 +- .../GHSA-vpvj-q3rf-q5fh.json | 2 +- .../GHSA-wjxx-hxfj-hfmh.json | 6 +- .../GHSA-wwhc-m2jv-2rv2.json | 2 +- .../GHSA-53rw-gcgw-2723.json | 2 +- .../GHSA-pq78-6h8h-rcf4.json | 2 +- .../GHSA-wwgf-8wgf-pm54.json | 3 +- .../GHSA-3rfg-x7h2-v33m.json | 3 +- .../GHSA-49g6-x26j-85g3.json | 11 +++- .../GHSA-2v93-g9j3-9q9h.json | 15 +++-- .../GHSA-3wh6-h4gj-wjr7.json | 15 +++-- .../GHSA-4mwj-7h55-4fvc.json | 11 +++- .../GHSA-6239-6f98-f8vf.json | 15 +++-- .../GHSA-cwj6-5v55-7mj7.json | 11 +++- .../GHSA-g97v-hf56-5335.json | 15 +++-- .../GHSA-grwp-8243-xpjh.json | 15 +++-- .../GHSA-hw2j-3fc3-hf74.json | 15 +++-- .../GHSA-jpfh-4v99-5m27.json | 11 +++- .../GHSA-mjhg-c85c-62fv.json | 11 +++- .../GHSA-p52g-5qgx-4crw.json | 11 +++- .../GHSA-qj68-9gpw-8pq2.json | 11 +++- .../GHSA-rgj4-j68m-986v.json | 15 +++-- .../GHSA-rr3f-v8j5-mmr6.json | 15 +++-- .../GHSA-wgwm-v825-xmjx.json | 11 +++- .../GHSA-5828-2c94-235c.json | 6 +- .../GHSA-2ffg-57j4-xqr7.json | 29 ++++++++++ .../GHSA-2fj9-fc6x-hgw7.json | 52 +++++++++++++++++ .../GHSA-32fp-f974-p3vf.json | 15 +++-- .../GHSA-3qx3-hfrr-jjwj.json | 52 +++++++++++++++++ .../GHSA-4cw8-8gfg-9xm5.json | 3 +- .../GHSA-5c2r-7vmq-r33f.json | 29 ++++++++++ .../GHSA-6qj8-hh3r-p98w.json | 36 ++++++++++++ .../GHSA-77gw-gg73-wpfg.json | 56 +++++++++++++++++++ .../GHSA-7q2v-j39v-mxfr.json | 2 +- .../GHSA-95pf-9whm-h8rm.json | 56 +++++++++++++++++++ .../GHSA-ccmg-3338-rh6p.json | 40 +++++++++++++ .../GHSA-cfp6-9cf4-xhvc.json | 3 +- .../GHSA-cv46-v88f-9qx8.json | 29 ++++++++++ .../GHSA-f27c-q8cq-2ffp.json | 29 ++++++++++ .../GHSA-fcmj-55j6-4jm8.json | 40 +++++++++++++ .../GHSA-fgcv-8655-jx3q.json | 56 +++++++++++++++++++ .../GHSA-fph3-2wh6-46fv.json | 36 ++++++++++++ .../GHSA-j322-6qx5-mxw2.json | 3 +- .../GHSA-j8hv-qq9w-2x29.json | 3 +- .../GHSA-m9f8-pw74-6fjf.json | 29 ++++++++++ .../GHSA-p6jf-pv8c-623c.json | 5 +- .../GHSA-q378-crrr-qj69.json | 29 ++++++++++ .../GHSA-q3vr-42pm-pvrf.json | 56 +++++++++++++++++++ .../GHSA-q66q-qwxm-vgrg.json | 56 +++++++++++++++++++ .../GHSA-qh62-99w2-xfq5.json | 29 ++++++++++ .../GHSA-rr2g-rrjj-xw86.json | 3 +- .../GHSA-v4qx-h7r5-6qc8.json | 15 +++-- .../GHSA-v74x-4c9w-5ccp.json | 56 +++++++++++++++++++ .../GHSA-vfg7-232g-q3r5.json | 3 +- .../GHSA-vq83-2wpf-54vg.json | 29 ++++++++++ 68 files changed, 1052 insertions(+), 94 deletions(-) create mode 100644 advisories/unreviewed/2025/04/GHSA-2ffg-57j4-xqr7/GHSA-2ffg-57j4-xqr7.json create mode 100644 advisories/unreviewed/2025/04/GHSA-2fj9-fc6x-hgw7/GHSA-2fj9-fc6x-hgw7.json create mode 100644 advisories/unreviewed/2025/04/GHSA-3qx3-hfrr-jjwj/GHSA-3qx3-hfrr-jjwj.json create mode 100644 advisories/unreviewed/2025/04/GHSA-5c2r-7vmq-r33f/GHSA-5c2r-7vmq-r33f.json create mode 100644 advisories/unreviewed/2025/04/GHSA-6qj8-hh3r-p98w/GHSA-6qj8-hh3r-p98w.json create mode 100644 advisories/unreviewed/2025/04/GHSA-77gw-gg73-wpfg/GHSA-77gw-gg73-wpfg.json create mode 100644 advisories/unreviewed/2025/04/GHSA-95pf-9whm-h8rm/GHSA-95pf-9whm-h8rm.json create mode 100644 advisories/unreviewed/2025/04/GHSA-ccmg-3338-rh6p/GHSA-ccmg-3338-rh6p.json create mode 100644 advisories/unreviewed/2025/04/GHSA-cv46-v88f-9qx8/GHSA-cv46-v88f-9qx8.json create mode 100644 advisories/unreviewed/2025/04/GHSA-f27c-q8cq-2ffp/GHSA-f27c-q8cq-2ffp.json create mode 100644 advisories/unreviewed/2025/04/GHSA-fcmj-55j6-4jm8/GHSA-fcmj-55j6-4jm8.json create mode 100644 advisories/unreviewed/2025/04/GHSA-fgcv-8655-jx3q/GHSA-fgcv-8655-jx3q.json create mode 100644 advisories/unreviewed/2025/04/GHSA-fph3-2wh6-46fv/GHSA-fph3-2wh6-46fv.json create mode 100644 advisories/unreviewed/2025/04/GHSA-m9f8-pw74-6fjf/GHSA-m9f8-pw74-6fjf.json create mode 100644 advisories/unreviewed/2025/04/GHSA-q378-crrr-qj69/GHSA-q378-crrr-qj69.json create mode 100644 advisories/unreviewed/2025/04/GHSA-q3vr-42pm-pvrf/GHSA-q3vr-42pm-pvrf.json create mode 100644 advisories/unreviewed/2025/04/GHSA-q66q-qwxm-vgrg/GHSA-q66q-qwxm-vgrg.json create mode 100644 advisories/unreviewed/2025/04/GHSA-qh62-99w2-xfq5/GHSA-qh62-99w2-xfq5.json create mode 100644 advisories/unreviewed/2025/04/GHSA-v74x-4c9w-5ccp/GHSA-v74x-4c9w-5ccp.json create mode 100644 advisories/unreviewed/2025/04/GHSA-vq83-2wpf-54vg/GHSA-vq83-2wpf-54vg.json diff --git a/advisories/unreviewed/2022/11/GHSA-27qm-jwxp-8whw/GHSA-27qm-jwxp-8whw.json b/advisories/unreviewed/2022/11/GHSA-27qm-jwxp-8whw/GHSA-27qm-jwxp-8whw.json index 3e778c2352a..01341de59cd 100644 --- a/advisories/unreviewed/2022/11/GHSA-27qm-jwxp-8whw/GHSA-27qm-jwxp-8whw.json +++ b/advisories/unreviewed/2022/11/GHSA-27qm-jwxp-8whw/GHSA-27qm-jwxp-8whw.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-27qm-jwxp-8whw", - "modified": "2022-11-23T18:30:28Z", + "modified": "2025-04-30T15:30:42Z", "published": "2022-11-21T12:30:16Z", "aliases": [ "CVE-2022-1581" diff --git a/advisories/unreviewed/2022/11/GHSA-636w-x3wj-wj9p/GHSA-636w-x3wj-wj9p.json b/advisories/unreviewed/2022/11/GHSA-636w-x3wj-wj9p/GHSA-636w-x3wj-wj9p.json index caf2fd76af3..3f6bd441f73 100644 --- a/advisories/unreviewed/2022/11/GHSA-636w-x3wj-wj9p/GHSA-636w-x3wj-wj9p.json +++ b/advisories/unreviewed/2022/11/GHSA-636w-x3wj-wj9p/GHSA-636w-x3wj-wj9p.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-636w-x3wj-wj9p", - "modified": "2022-11-23T18:30:27Z", + "modified": "2025-04-30T15:30:40Z", "published": "2022-11-18T21:30:17Z", "aliases": [ "CVE-2022-43673" diff --git a/advisories/unreviewed/2022/11/GHSA-68xp-cphm-cph8/GHSA-68xp-cphm-cph8.json b/advisories/unreviewed/2022/11/GHSA-68xp-cphm-cph8/GHSA-68xp-cphm-cph8.json index ce923e2d72c..0e0484bb4e5 100644 --- a/advisories/unreviewed/2022/11/GHSA-68xp-cphm-cph8/GHSA-68xp-cphm-cph8.json +++ b/advisories/unreviewed/2022/11/GHSA-68xp-cphm-cph8/GHSA-68xp-cphm-cph8.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-68xp-cphm-cph8", - "modified": "2022-11-19T00:30:56Z", + "modified": "2025-04-30T15:30:36Z", "published": "2022-11-15T12:00:15Z", "aliases": [ "CVE-2022-42053" diff --git a/advisories/unreviewed/2022/11/GHSA-6rg3-hww9-7v6g/GHSA-6rg3-hww9-7v6g.json b/advisories/unreviewed/2022/11/GHSA-6rg3-hww9-7v6g/GHSA-6rg3-hww9-7v6g.json index bfd46e063ae..b6c4c565dea 100644 --- a/advisories/unreviewed/2022/11/GHSA-6rg3-hww9-7v6g/GHSA-6rg3-hww9-7v6g.json +++ b/advisories/unreviewed/2022/11/GHSA-6rg3-hww9-7v6g/GHSA-6rg3-hww9-7v6g.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-6rg3-hww9-7v6g", - "modified": "2022-11-19T00:30:56Z", + "modified": "2025-04-30T15:30:36Z", "published": "2022-11-15T12:00:15Z", "aliases": [ "CVE-2022-41395" diff --git a/advisories/unreviewed/2022/11/GHSA-7gc4-cwgf-384p/GHSA-7gc4-cwgf-384p.json b/advisories/unreviewed/2022/11/GHSA-7gc4-cwgf-384p/GHSA-7gc4-cwgf-384p.json index 546d3402f9d..d659e462662 100644 --- a/advisories/unreviewed/2022/11/GHSA-7gc4-cwgf-384p/GHSA-7gc4-cwgf-384p.json +++ b/advisories/unreviewed/2022/11/GHSA-7gc4-cwgf-384p/GHSA-7gc4-cwgf-384p.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-22" + ], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/11/GHSA-7j6c-r569-6rvc/GHSA-7j6c-r569-6rvc.json b/advisories/unreviewed/2022/11/GHSA-7j6c-r569-6rvc/GHSA-7j6c-r569-6rvc.json index ab395875597..3ec0c2ec24b 100644 --- a/advisories/unreviewed/2022/11/GHSA-7j6c-r569-6rvc/GHSA-7j6c-r569-6rvc.json +++ b/advisories/unreviewed/2022/11/GHSA-7j6c-r569-6rvc/GHSA-7j6c-r569-6rvc.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-7j6c-r569-6rvc", - "modified": "2022-11-19T00:30:56Z", + "modified": "2025-04-30T15:30:36Z", "published": "2022-11-15T12:00:15Z", "aliases": [ "CVE-2022-41396" diff --git a/advisories/unreviewed/2022/11/GHSA-899r-qc24-g3c5/GHSA-899r-qc24-g3c5.json b/advisories/unreviewed/2022/11/GHSA-899r-qc24-g3c5/GHSA-899r-qc24-g3c5.json index f73b701964d..91bf69adde5 100644 --- a/advisories/unreviewed/2022/11/GHSA-899r-qc24-g3c5/GHSA-899r-qc24-g3c5.json +++ b/advisories/unreviewed/2022/11/GHSA-899r-qc24-g3c5/GHSA-899r-qc24-g3c5.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-899r-qc24-g3c5", - "modified": "2022-11-19T00:30:56Z", + "modified": "2025-04-30T15:30:36Z", "published": "2022-11-15T12:00:15Z", "aliases": [ "CVE-2022-40846" diff --git a/advisories/unreviewed/2022/11/GHSA-cfqg-5rj6-9crg/GHSA-cfqg-5rj6-9crg.json b/advisories/unreviewed/2022/11/GHSA-cfqg-5rj6-9crg/GHSA-cfqg-5rj6-9crg.json index 82b8ee6fc32..9de370919a3 100644 --- a/advisories/unreviewed/2022/11/GHSA-cfqg-5rj6-9crg/GHSA-cfqg-5rj6-9crg.json +++ b/advisories/unreviewed/2022/11/GHSA-cfqg-5rj6-9crg/GHSA-cfqg-5rj6-9crg.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-cfqg-5rj6-9crg", - "modified": "2022-11-19T00:30:56Z", + "modified": "2025-04-30T15:30:36Z", "published": "2022-11-15T12:00:15Z", "aliases": [ "CVE-2022-42058" diff --git a/advisories/unreviewed/2022/11/GHSA-h4rf-98jg-f337/GHSA-h4rf-98jg-f337.json b/advisories/unreviewed/2022/11/GHSA-h4rf-98jg-f337/GHSA-h4rf-98jg-f337.json index b3946c59522..c3ec199ce57 100644 --- a/advisories/unreviewed/2022/11/GHSA-h4rf-98jg-f337/GHSA-h4rf-98jg-f337.json +++ b/advisories/unreviewed/2022/11/GHSA-h4rf-98jg-f337/GHSA-h4rf-98jg-f337.json @@ -26,6 +26,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-862", "CWE-863" ], "severity": "LOW", diff --git a/advisories/unreviewed/2022/11/GHSA-hp2j-5wrq-ph9f/GHSA-hp2j-5wrq-ph9f.json b/advisories/unreviewed/2022/11/GHSA-hp2j-5wrq-ph9f/GHSA-hp2j-5wrq-ph9f.json index f6c94869ad3..d0a7b220415 100644 --- a/advisories/unreviewed/2022/11/GHSA-hp2j-5wrq-ph9f/GHSA-hp2j-5wrq-ph9f.json +++ b/advisories/unreviewed/2022/11/GHSA-hp2j-5wrq-ph9f/GHSA-hp2j-5wrq-ph9f.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-77" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/11/GHSA-hrv9-f2qw-v2xg/GHSA-hrv9-f2qw-v2xg.json b/advisories/unreviewed/2022/11/GHSA-hrv9-f2qw-v2xg/GHSA-hrv9-f2qw-v2xg.json index c9d3bd6a1e2..f82183cc4aa 100644 --- a/advisories/unreviewed/2022/11/GHSA-hrv9-f2qw-v2xg/GHSA-hrv9-f2qw-v2xg.json +++ b/advisories/unreviewed/2022/11/GHSA-hrv9-f2qw-v2xg/GHSA-hrv9-f2qw-v2xg.json @@ -29,7 +29,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-1191" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/11/GHSA-jc5c-h4cw-3529/GHSA-jc5c-h4cw-3529.json b/advisories/unreviewed/2022/11/GHSA-jc5c-h4cw-3529/GHSA-jc5c-h4cw-3529.json index d51747d2122..425d59c78c2 100644 --- a/advisories/unreviewed/2022/11/GHSA-jc5c-h4cw-3529/GHSA-jc5c-h4cw-3529.json +++ b/advisories/unreviewed/2022/11/GHSA-jc5c-h4cw-3529/GHSA-jc5c-h4cw-3529.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-jc5c-h4cw-3529", - "modified": "2022-11-21T21:30:14Z", + "modified": "2025-04-30T15:30:39Z", "published": "2022-11-18T18:30:17Z", "aliases": [ "CVE-2022-44204" diff --git a/advisories/unreviewed/2022/11/GHSA-rrqq-ffjh-mjxv/GHSA-rrqq-ffjh-mjxv.json b/advisories/unreviewed/2022/11/GHSA-rrqq-ffjh-mjxv/GHSA-rrqq-ffjh-mjxv.json index 1e4a5d07a3b..ea0c47c4f30 100644 --- a/advisories/unreviewed/2022/11/GHSA-rrqq-ffjh-mjxv/GHSA-rrqq-ffjh-mjxv.json +++ b/advisories/unreviewed/2022/11/GHSA-rrqq-ffjh-mjxv/GHSA-rrqq-ffjh-mjxv.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-rrqq-ffjh-mjxv", - "modified": "2022-11-28T15:30:24Z", + "modified": "2025-04-30T15:30:40Z", "published": "2022-11-19T00:30:55Z", "aliases": [ "CVE-2022-45163" diff --git a/advisories/unreviewed/2022/11/GHSA-vmrr-4jjv-hjpm/GHSA-vmrr-4jjv-hjpm.json b/advisories/unreviewed/2022/11/GHSA-vmrr-4jjv-hjpm/GHSA-vmrr-4jjv-hjpm.json index 8a16ce7fb01..59c8e462968 100644 --- a/advisories/unreviewed/2022/11/GHSA-vmrr-4jjv-hjpm/GHSA-vmrr-4jjv-hjpm.json +++ b/advisories/unreviewed/2022/11/GHSA-vmrr-4jjv-hjpm/GHSA-vmrr-4jjv-hjpm.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-vmrr-4jjv-hjpm", - "modified": "2022-11-17T06:30:19Z", + "modified": "2025-04-30T15:30:37Z", "published": "2022-11-16T12:00:22Z", "aliases": [ "CVE-2022-43265" diff --git a/advisories/unreviewed/2022/11/GHSA-vpvj-q3rf-q5fh/GHSA-vpvj-q3rf-q5fh.json b/advisories/unreviewed/2022/11/GHSA-vpvj-q3rf-q5fh/GHSA-vpvj-q3rf-q5fh.json index e4f8a3673b2..ff5cc757506 100644 --- a/advisories/unreviewed/2022/11/GHSA-vpvj-q3rf-q5fh/GHSA-vpvj-q3rf-q5fh.json +++ b/advisories/unreviewed/2022/11/GHSA-vpvj-q3rf-q5fh/GHSA-vpvj-q3rf-q5fh.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-vpvj-q3rf-q5fh", - "modified": "2022-11-21T21:30:15Z", + "modified": "2025-04-30T15:30:38Z", "published": "2022-11-17T06:30:18Z", "aliases": [ "CVE-2022-42982" diff --git a/advisories/unreviewed/2022/11/GHSA-wjxx-hxfj-hfmh/GHSA-wjxx-hxfj-hfmh.json b/advisories/unreviewed/2022/11/GHSA-wjxx-hxfj-hfmh/GHSA-wjxx-hxfj-hfmh.json index 7ce19b417c6..b12ee8f38a9 100644 --- a/advisories/unreviewed/2022/11/GHSA-wjxx-hxfj-hfmh/GHSA-wjxx-hxfj-hfmh.json +++ b/advisories/unreviewed/2022/11/GHSA-wjxx-hxfj-hfmh/GHSA-wjxx-hxfj-hfmh.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-wjxx-hxfj-hfmh", - "modified": "2022-11-23T15:30:23Z", + "modified": "2025-04-30T15:30:40Z", "published": "2022-11-19T00:30:55Z", "aliases": [ "CVE-2022-45132" @@ -19,6 +19,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-45132" }, + { + "type": "WEB", + "url": "https://lists.lavasoftware.org/archives/list/lava-announce%40lists.lavasoftware.org/thread/WHXGQMIZAPW3GCQEXYHC32N2ZAAAIYCY" + }, { "type": "WEB", "url": "https://lists.lavasoftware.org/archives/list/lava-announce@lists.lavasoftware.org/thread/WHXGQMIZAPW3GCQEXYHC32N2ZAAAIYCY" diff --git a/advisories/unreviewed/2022/11/GHSA-wwhc-m2jv-2rv2/GHSA-wwhc-m2jv-2rv2.json b/advisories/unreviewed/2022/11/GHSA-wwhc-m2jv-2rv2/GHSA-wwhc-m2jv-2rv2.json index e7c2487253d..a1daaee371c 100644 --- a/advisories/unreviewed/2022/11/GHSA-wwhc-m2jv-2rv2/GHSA-wwhc-m2jv-2rv2.json +++ b/advisories/unreviewed/2022/11/GHSA-wwhc-m2jv-2rv2/GHSA-wwhc-m2jv-2rv2.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-wwhc-m2jv-2rv2", - "modified": "2022-11-19T00:30:56Z", + "modified": "2025-04-30T15:30:35Z", "published": "2022-11-15T12:00:16Z", "aliases": [ "CVE-2022-40847" diff --git a/advisories/unreviewed/2023/07/GHSA-53rw-gcgw-2723/GHSA-53rw-gcgw-2723.json b/advisories/unreviewed/2023/07/GHSA-53rw-gcgw-2723/GHSA-53rw-gcgw-2723.json index d2424762c15..840d0bf782d 100644 --- a/advisories/unreviewed/2023/07/GHSA-53rw-gcgw-2723/GHSA-53rw-gcgw-2723.json +++ b/advisories/unreviewed/2023/07/GHSA-53rw-gcgw-2723/GHSA-53rw-gcgw-2723.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-53rw-gcgw-2723", - "modified": "2024-04-04T05:30:23Z", + "modified": "2025-04-30T15:30:38Z", "published": "2023-07-06T19:24:04Z", "aliases": [ "CVE-2022-42892" diff --git a/advisories/unreviewed/2023/11/GHSA-pq78-6h8h-rcf4/GHSA-pq78-6h8h-rcf4.json b/advisories/unreviewed/2023/11/GHSA-pq78-6h8h-rcf4/GHSA-pq78-6h8h-rcf4.json index 10ec85b2fd8..b704130ec3e 100644 --- a/advisories/unreviewed/2023/11/GHSA-pq78-6h8h-rcf4/GHSA-pq78-6h8h-rcf4.json +++ b/advisories/unreviewed/2023/11/GHSA-pq78-6h8h-rcf4/GHSA-pq78-6h8h-rcf4.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-pq78-6h8h-rcf4", - "modified": "2023-11-08T21:30:36Z", + "modified": "2025-04-30T15:30:42Z", "published": "2023-11-01T18:30:33Z", "aliases": [ "CVE-2023-5482" diff --git a/advisories/unreviewed/2024/02/GHSA-wwgf-8wgf-pm54/GHSA-wwgf-8wgf-pm54.json b/advisories/unreviewed/2024/02/GHSA-wwgf-8wgf-pm54/GHSA-wwgf-8wgf-pm54.json index d8ac54598a9..2f286ca2998 100644 --- a/advisories/unreviewed/2024/02/GHSA-wwgf-8wgf-pm54/GHSA-wwgf-8wgf-pm54.json +++ b/advisories/unreviewed/2024/02/GHSA-wwgf-8wgf-pm54/GHSA-wwgf-8wgf-pm54.json @@ -26,7 +26,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-284" + "CWE-284", + "CWE-863" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/03/GHSA-3rfg-x7h2-v33m/GHSA-3rfg-x7h2-v33m.json b/advisories/unreviewed/2024/03/GHSA-3rfg-x7h2-v33m/GHSA-3rfg-x7h2-v33m.json index 835973726b9..007a9839a66 100644 --- a/advisories/unreviewed/2024/03/GHSA-3rfg-x7h2-v33m/GHSA-3rfg-x7h2-v33m.json +++ b/advisories/unreviewed/2024/03/GHSA-3rfg-x7h2-v33m/GHSA-3rfg-x7h2-v33m.json @@ -26,7 +26,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-122" + "CWE-122", + "CWE-787" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/04/GHSA-49g6-x26j-85g3/GHSA-49g6-x26j-85g3.json b/advisories/unreviewed/2024/04/GHSA-49g6-x26j-85g3/GHSA-49g6-x26j-85g3.json index 87242d413a0..346126f7a22 100644 --- a/advisories/unreviewed/2024/04/GHSA-49g6-x26j-85g3/GHSA-49g6-x26j-85g3.json +++ b/advisories/unreviewed/2024/04/GHSA-49g6-x26j-85g3/GHSA-49g6-x26j-85g3.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-49g6-x26j-85g3", - "modified": "2024-06-26T00:31:37Z", + "modified": "2025-04-30T15:30:42Z", "published": "2024-04-17T12:32:04Z", "aliases": [ "CVE-2024-26870" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nNFSv4.2: fix nfs4_listxattr kernel BUG at mm/usercopy.c:102\n\nA call to listxattr() with a buffer size = 0 returns the actual\nsize of the buffer needed for a subsequent call. When size > 0,\nnfs4_listxattr() does not return an error because either\ngeneric_listxattr() or nfs4_listxattr_nfs4_label() consumes\nexactly all the bytes then size is 0 when calling\nnfs4_listxattr_nfs4_user() which then triggers the following\nkernel BUG:\n\n [ 99.403778] kernel BUG at mm/usercopy.c:102!\n [ 99.404063] Internal error: Oops - BUG: 00000000f2000800 [#1] SMP\n [ 99.408463] CPU: 0 PID: 3310 Comm: python3 Not tainted 6.6.0-61.fc40.aarch64 #1\n [ 99.415827] Call trace:\n [ 99.415985] usercopy_abort+0x70/0xa0\n [ 99.416227] __check_heap_object+0x134/0x158\n [ 99.416505] check_heap_object+0x150/0x188\n [ 99.416696] __check_object_size.part.0+0x78/0x168\n [ 99.416886] __check_object_size+0x28/0x40\n [ 99.417078] listxattr+0x8c/0x120\n [ 99.417252] path_listxattr+0x78/0xe0\n [ 99.417476] __arm64_sys_listxattr+0x28/0x40\n [ 99.417723] invoke_syscall+0x78/0x100\n [ 99.417929] el0_svc_common.constprop.0+0x48/0xf0\n [ 99.418186] do_el0_svc+0x24/0x38\n [ 99.418376] el0_svc+0x3c/0x110\n [ 99.418554] el0t_64_sync_handler+0x120/0x130\n [ 99.418788] el0t_64_sync+0x194/0x198\n [ 99.418994] Code: aa0003e3 d000a3e0 91310000 97f49bdb (d4210000)\n\nIssue is reproduced when generic_listxattr() returns 'system.nfs4_acl',\nthus calling lisxattr() with size = 16 will trigger the bug.\n\nAdd check on nfs4_listxattr() to return ERANGE error when it is\ncalled with size > 0 and the return value is greater than size.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -49,7 +54,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-17T11:15:09Z" diff --git a/advisories/unreviewed/2024/05/GHSA-2v93-g9j3-9q9h/GHSA-2v93-g9j3-9q9h.json b/advisories/unreviewed/2024/05/GHSA-2v93-g9j3-9q9h/GHSA-2v93-g9j3-9q9h.json index 8de72219552..aed982f35d7 100644 --- a/advisories/unreviewed/2024/05/GHSA-2v93-g9j3-9q9h/GHSA-2v93-g9j3-9q9h.json +++ b/advisories/unreviewed/2024/05/GHSA-2v93-g9j3-9q9h/GHSA-2v93-g9j3-9q9h.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-2v93-g9j3-9q9h", - "modified": "2024-05-21T15:31:41Z", + "modified": "2025-04-30T15:30:43Z", "published": "2024-05-21T15:31:41Z", "aliases": [ "CVE-2021-47261" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nIB/mlx5: Fix initializing CQ fragments buffer\n\nThe function init_cq_frag_buf() can be called to initialize the current CQ\nfragments buffer cq->buf, or the temporary cq->resize_buf that is filled\nduring CQ resize operation.\n\nHowever, the offending commit started to use function get_cqe() for\ngetting the CQEs, the issue with this change is that get_cqe() always\nreturns CQEs from cq->buf, which leads us to initialize the wrong buffer,\nand in case of enlarging the CQ we try to access elements beyond the size\nof the current cq->buf and eventually hit a kernel panic.\n\n [exception RIP: init_cq_frag_buf+103]\n [ffff9f799ddcbcd8] mlx5_ib_resize_cq at ffffffffc0835d60 [mlx5_ib]\n [ffff9f799ddcbdb0] ib_resize_cq at ffffffffc05270df [ib_core]\n [ffff9f799ddcbdc0] llt_rdma_setup_qp at ffffffffc0a6a712 [llt]\n [ffff9f799ddcbe10] llt_rdma_cc_event_action at ffffffffc0a6b411 [llt]\n [ffff9f799ddcbe98] llt_rdma_client_conn_thread at ffffffffc0a6bb75 [llt]\n [ffff9f799ddcbec8] kthread at ffffffffa66c5da1\n [ffff9f799ddcbf50] ret_from_fork_nospec_begin at ffffffffa6d95ddd\n\nFix it by getting the needed CQE by calling mlx5_frag_buf_get_wqe() that\ntakes the correct source buffer as a parameter.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -36,8 +41,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-706" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:14Z" diff --git a/advisories/unreviewed/2024/05/GHSA-3wh6-h4gj-wjr7/GHSA-3wh6-h4gj-wjr7.json b/advisories/unreviewed/2024/05/GHSA-3wh6-h4gj-wjr7/GHSA-3wh6-h4gj-wjr7.json index 8173ab49e50..a2364c5f18c 100644 --- a/advisories/unreviewed/2024/05/GHSA-3wh6-h4gj-wjr7/GHSA-3wh6-h4gj-wjr7.json +++ b/advisories/unreviewed/2024/05/GHSA-3wh6-h4gj-wjr7/GHSA-3wh6-h4gj-wjr7.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-3wh6-h4gj-wjr7", - "modified": "2024-05-21T15:31:41Z", + "modified": "2025-04-30T15:30:44Z", "published": "2024-05-21T15:31:41Z", "aliases": [ "CVE-2021-47282" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nspi: bcm2835: Fix out-of-bounds access with more than 4 slaves\n\nCommit 571e31fa60b3 (\"spi: bcm2835: Cache CS register value for\n->prepare_message()\") limited the number of slaves to 3 at compile-time.\nThe limitation was necessitated by a statically-sized array prepare_cs[]\nin the driver private data which contains a per-slave register value.\n\nThe commit sought to enforce the limitation at run-time by setting the\ncontroller's num_chipselect to 3: Slaves with a higher chipselect are\nrejected by spi_add_device().\n\nHowever the commit neglected that num_chipselect only limits the number\nof *native* chipselects. If GPIO chipselects are specified in the\ndevice tree for more than 3 slaves, num_chipselect is silently raised by\nof_spi_get_gpio_numbers() and the result are out-of-bounds accesses to\nthe statically-sized array prepare_cs[].\n\nAs a bandaid fix which is backportable to stable, raise the number of\nallowed slaves to 24 (which \"ought to be enough for anybody\"), enforce\nthe limitation on slave ->setup and revert num_chipselect to 3 (which is\nthe number of native chipselects supported by the controller).\nAn upcoming for-next commit will allow an arbitrary number of slaves.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -32,8 +37,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-787" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:16Z" diff --git a/advisories/unreviewed/2024/05/GHSA-4mwj-7h55-4fvc/GHSA-4mwj-7h55-4fvc.json b/advisories/unreviewed/2024/05/GHSA-4mwj-7h55-4fvc/GHSA-4mwj-7h55-4fvc.json index 98dddb77604..72dff85a9b2 100644 --- a/advisories/unreviewed/2024/05/GHSA-4mwj-7h55-4fvc/GHSA-4mwj-7h55-4fvc.json +++ b/advisories/unreviewed/2024/05/GHSA-4mwj-7h55-4fvc/GHSA-4mwj-7h55-4fvc.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-4mwj-7h55-4fvc", - "modified": "2024-05-21T15:31:41Z", + "modified": "2025-04-30T15:30:43Z", "published": "2024-05-21T15:31:41Z", "aliases": [ "CVE-2021-47263" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ngpio: wcd934x: Fix shift-out-of-bounds error\n\nbit-mask for pins 0 to 4 is BIT(0) to BIT(4) however we ended up with BIT(n - 1)\nwhich is not right, and this was caught by below usban check\n\nUBSAN: shift-out-of-bounds in drivers/gpio/gpio-wcd934x.c:34:14", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -29,7 +34,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:15Z" diff --git a/advisories/unreviewed/2024/05/GHSA-6239-6f98-f8vf/GHSA-6239-6f98-f8vf.json b/advisories/unreviewed/2024/05/GHSA-6239-6f98-f8vf/GHSA-6239-6f98-f8vf.json index 979ece664a2..4a4c18bd9f5 100644 --- a/advisories/unreviewed/2024/05/GHSA-6239-6f98-f8vf/GHSA-6239-6f98-f8vf.json +++ b/advisories/unreviewed/2024/05/GHSA-6239-6f98-f8vf/GHSA-6239-6f98-f8vf.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-6239-6f98-f8vf", - "modified": "2024-05-21T15:31:41Z", + "modified": "2025-04-30T15:30:44Z", "published": "2024-05-21T15:31:41Z", "aliases": [ "CVE-2021-47277" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nkvm: avoid speculation-based attacks from out-of-range memslot accesses\n\nKVM's mechanism for accessing guest memory translates a guest physical\naddress (gpa) to a host virtual address using the right-shifted gpa\n(also known as gfn) and a struct kvm_memory_slot. The translation is\nperformed in __gfn_to_hva_memslot using the following formula:\n\n hva = slot->userspace_addr + (gfn - slot->base_gfn) * PAGE_SIZE\n\nIt is expected that gfn falls within the boundaries of the guest's\nphysical memory. However, a guest can access invalid physical addresses\nin such a way that the gfn is invalid.\n\n__gfn_to_hva_memslot is called from kvm_vcpu_gfn_to_hva_prot, which first\nretrieves a memslot through __gfn_to_memslot. While __gfn_to_memslot\ndoes check that the gfn falls within the boundaries of the guest's\nphysical memory or not, a CPU can speculate the result of the check and\ncontinue execution speculatively using an illegal gfn. The speculation\ncan result in calculating an out-of-bounds hva. If the resulting host\nvirtual address is used to load another guest physical address, this\nis effectively a Spectre gadget consisting of two consecutive reads,\nthe second of which is data dependent on the first.\n\nRight now it's not clear if there are any cases in which this is\nexploitable. One interesting case was reported by the original author\nof this patch, and involves visiting guest page tables on x86. Right\nnow these are not vulnerable because the hva read goes through get_user(),\nwhich contains an LFENCE speculation barrier. However, there are\npatches in progress for x86 uaccess.h to mask kernel addresses instead of\nusing LFENCE; once these land, a guest could use speculation to read\nfrom the VMM's ring 3 address space. Other architectures such as ARM\nalready use the address masking method, and would be susceptible to\nthis same kind of data-dependent access gadgets. Therefore, this patch\nproactively protects from these attacks by masking out-of-bounds gfns\nin __gfn_to_hva_memslot, which blocks speculation of invalid hvas.\n\nSean Christopherson noted that this patch does not cover\nkvm_read_guest_offset_cached. This however is limited to a few bytes\npast the end of the cache, and therefore it is unlikely to be useful in\nthe context of building a chain of data dependent accesses.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -48,8 +53,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-125" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:16Z" diff --git a/advisories/unreviewed/2024/05/GHSA-cwj6-5v55-7mj7/GHSA-cwj6-5v55-7mj7.json b/advisories/unreviewed/2024/05/GHSA-cwj6-5v55-7mj7/GHSA-cwj6-5v55-7mj7.json index 357cb59fdb8..527a9e38074 100644 --- a/advisories/unreviewed/2024/05/GHSA-cwj6-5v55-7mj7/GHSA-cwj6-5v55-7mj7.json +++ b/advisories/unreviewed/2024/05/GHSA-cwj6-5v55-7mj7/GHSA-cwj6-5v55-7mj7.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-cwj6-5v55-7mj7", - "modified": "2024-05-21T15:31:40Z", + "modified": "2025-04-30T15:30:43Z", "published": "2024-05-21T15:31:40Z", "aliases": [ "CVE-2021-47252" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nbatman-adv: Avoid WARN_ON timing related checks\n\nThe soft/batadv interface for a queued OGM can be changed during the time\nthe OGM was queued for transmission and when the OGM is actually\ntransmitted by the worker.\n\nBut WARN_ON must be used to denote kernel bugs and not to print simple\nwarnings. A warning can simply be printed using pr_warn.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -49,7 +54,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:14Z" diff --git a/advisories/unreviewed/2024/05/GHSA-g97v-hf56-5335/GHSA-g97v-hf56-5335.json b/advisories/unreviewed/2024/05/GHSA-g97v-hf56-5335/GHSA-g97v-hf56-5335.json index 4986a9ae0b5..ed8b0eb7fdf 100644 --- a/advisories/unreviewed/2024/05/GHSA-g97v-hf56-5335/GHSA-g97v-hf56-5335.json +++ b/advisories/unreviewed/2024/05/GHSA-g97v-hf56-5335/GHSA-g97v-hf56-5335.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-g97v-hf56-5335", - "modified": "2024-05-21T15:31:41Z", + "modified": "2025-04-30T15:30:43Z", "published": "2024-05-21T15:31:41Z", "aliases": [ "CVE-2021-47258" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: core: Fix error handling of scsi_host_alloc()\n\nAfter device is initialized via device_initialize(), or its name is set via\ndev_set_name(), the device has to be freed via put_device(). Otherwise\ndevice name will be leaked because it is allocated dynamically in\ndev_set_name().\n\nFix the leak by replacing kfree() with put_device(). Since\nscsi_host_dev_release() properly handles IDA and kthread removal, remove\nspecial-casing these from the error handling as well.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -44,8 +49,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-401" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:14Z" diff --git a/advisories/unreviewed/2024/05/GHSA-grwp-8243-xpjh/GHSA-grwp-8243-xpjh.json b/advisories/unreviewed/2024/05/GHSA-grwp-8243-xpjh/GHSA-grwp-8243-xpjh.json index 968cd2fadee..54ee1766b98 100644 --- a/advisories/unreviewed/2024/05/GHSA-grwp-8243-xpjh/GHSA-grwp-8243-xpjh.json +++ b/advisories/unreviewed/2024/05/GHSA-grwp-8243-xpjh/GHSA-grwp-8243-xpjh.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-grwp-8243-xpjh", - "modified": "2024-05-21T15:31:40Z", + "modified": "2025-04-30T15:30:43Z", "published": "2024-05-21T15:31:40Z", "aliases": [ "CVE-2021-47251" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nmac80211: fix skb length check in ieee80211_scan_rx()\n\nReplace hard-coded compile-time constants for header length check\nwith dynamic determination based on the frame type. Otherwise, we\nhit a validation WARN_ON in cfg80211 later.\n\n[style fixes, reword commit message]", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -28,8 +33,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-1284" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:14Z" diff --git a/advisories/unreviewed/2024/05/GHSA-hw2j-3fc3-hf74/GHSA-hw2j-3fc3-hf74.json b/advisories/unreviewed/2024/05/GHSA-hw2j-3fc3-hf74/GHSA-hw2j-3fc3-hf74.json index d4bc73a46b3..6263f4a723b 100644 --- a/advisories/unreviewed/2024/05/GHSA-hw2j-3fc3-hf74/GHSA-hw2j-3fc3-hf74.json +++ b/advisories/unreviewed/2024/05/GHSA-hw2j-3fc3-hf74/GHSA-hw2j-3fc3-hf74.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-hw2j-3fc3-hf74", - "modified": "2024-05-21T15:31:41Z", + "modified": "2025-04-30T15:30:44Z", "published": "2024-05-21T15:31:41Z", "aliases": [ "CVE-2021-47286" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nbus: mhi: core: Validate channel ID when processing command completions\n\nMHI reads the channel ID from the event ring element sent by the\ndevice which can be any value between 0 and 255. In order to\nprevent any out of bound accesses, add a check against the maximum\nnumber of channels supported by the controller and those channels\nnot configured yet so as to skip processing of that event ring\nelement.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -28,8 +33,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-787" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:16Z" diff --git a/advisories/unreviewed/2024/05/GHSA-jpfh-4v99-5m27/GHSA-jpfh-4v99-5m27.json b/advisories/unreviewed/2024/05/GHSA-jpfh-4v99-5m27/GHSA-jpfh-4v99-5m27.json index 3188fffe73c..c1f4891c252 100644 --- a/advisories/unreviewed/2024/05/GHSA-jpfh-4v99-5m27/GHSA-jpfh-4v99-5m27.json +++ b/advisories/unreviewed/2024/05/GHSA-jpfh-4v99-5m27/GHSA-jpfh-4v99-5m27.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-jpfh-4v99-5m27", - "modified": "2024-05-21T15:31:41Z", + "modified": "2025-04-30T15:30:43Z", "published": "2024-05-21T15:31:41Z", "aliases": [ "CVE-2021-47272" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nusb: dwc3: gadget: Bail from dwc3_gadget_exit() if dwc->gadget is NULL\n\nThere exists a possible scenario in which dwc3_gadget_init() can fail:\nduring during host -> peripheral mode switch in dwc3_set_mode(), and\na pending gadget driver fails to bind. Then, if the DRD undergoes\nanother mode switch from peripheral->host the resulting\ndwc3_gadget_exit() will attempt to reference an invalid and dangling\ndwc->gadget pointer as well as call dma_free_coherent() on unmapped\nDMA pointers.\n\nThe exact scenario can be reproduced as follows:\n - Start DWC3 in peripheral mode\n - Configure ConfigFS gadget with FunctionFS instance (or use g_ffs)\n - Run FunctionFS userspace application (open EPs, write descriptors, etc)\n - Bind gadget driver to DWC3's UDC\n - Switch DWC3 to host mode\n => dwc3_gadget_exit() is called. usb_del_gadget() will put the\n\tConfigFS driver instance on the gadget_driver_pending_list\n - Stop FunctionFS application (closes the ep files)\n - Switch DWC3 to peripheral mode\n => dwc3_gadget_init() fails as usb_add_gadget() calls\n\tcheck_pending_gadget_drivers() and attempts to rebind the UDC\n\tto the ConfigFS gadget but fails with -19 (-ENODEV) because the\n\tFFS instance is not in FFS_ACTIVE state (userspace has not\n\tre-opened and written the descriptors yet, i.e. desc_ready!=0).\n - Switch DWC3 back to host mode\n => dwc3_gadget_exit() is called again, but this time dwc->gadget\n\tis invalid.\n\nAlthough it can be argued that userspace should take responsibility\nfor ensuring that the FunctionFS application be ready prior to\nallowing the composite driver bind to the UDC, failure to do so\nshould not result in a panic from the kernel driver.\n\nFix this by setting dwc->gadget to NULL in the failure path of\ndwc3_gadget_init() and add a check to dwc3_gadget_exit() to bail out\nunless the gadget pointer is valid.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -29,7 +34,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:15Z" diff --git a/advisories/unreviewed/2024/05/GHSA-mjhg-c85c-62fv/GHSA-mjhg-c85c-62fv.json b/advisories/unreviewed/2024/05/GHSA-mjhg-c85c-62fv/GHSA-mjhg-c85c-62fv.json index b4f01b6ac21..b693169c3a4 100644 --- a/advisories/unreviewed/2024/05/GHSA-mjhg-c85c-62fv/GHSA-mjhg-c85c-62fv.json +++ b/advisories/unreviewed/2024/05/GHSA-mjhg-c85c-62fv/GHSA-mjhg-c85c-62fv.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-mjhg-c85c-62fv", - "modified": "2024-05-21T15:31:41Z", + "modified": "2025-04-30T15:30:43Z", "published": "2024-05-21T15:31:41Z", "aliases": [ "CVE-2021-47265" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA: Verify port when creating flow rule\n\nValidate port value provided by the user and with that remove no longer\nneeded validation by the driver. The missing check in the mlx5_ib driver\ncould cause to the below oops.\n\nCall trace:\n _create_flow_rule+0x2d4/0xf28 [mlx5_ib]\n mlx5_ib_create_flow+0x2d0/0x5b0 [mlx5_ib]\n ib_uverbs_ex_create_flow+0x4cc/0x624 [ib_uverbs]\n ib_uverbs_handler_UVERBS_METHOD_INVOKE_WRITE+0xd4/0x150 [ib_uverbs]\n ib_uverbs_cmd_verbs.isra.7+0xb28/0xc50 [ib_uverbs]\n ib_uverbs_ioctl+0x158/0x1d0 [ib_uverbs]\n do_vfs_ioctl+0xd0/0xaf0\n ksys_ioctl+0x84/0xb4\n __arm64_sys_ioctl+0x28/0xc4\n el0_svc_common.constprop.3+0xa4/0x254\n el0_svc_handler+0x84/0xa0\n el0_svc+0x10/0x26c\n Code: b9401260 f9615681 51000400 8b001c20 (f9403c1a)", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -25,7 +30,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:15Z" diff --git a/advisories/unreviewed/2024/05/GHSA-p52g-5qgx-4crw/GHSA-p52g-5qgx-4crw.json b/advisories/unreviewed/2024/05/GHSA-p52g-5qgx-4crw/GHSA-p52g-5qgx-4crw.json index 19d1762672d..57aa7812a9f 100644 --- a/advisories/unreviewed/2024/05/GHSA-p52g-5qgx-4crw/GHSA-p52g-5qgx-4crw.json +++ b/advisories/unreviewed/2024/05/GHSA-p52g-5qgx-4crw/GHSA-p52g-5qgx-4crw.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-p52g-5qgx-4crw", - "modified": "2024-05-21T15:31:40Z", + "modified": "2025-04-30T15:30:43Z", "published": "2024-05-21T15:31:40Z", "aliases": [ "CVE-2021-47256" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nmm/memory-failure: make sure wait for page writeback in memory_failure\n\nOur syzkaller trigger the \"BUG_ON(!list_empty(&inode->i_wb_list))\" in\nclear_inode:\n\n kernel BUG at fs/inode.c:519!\n Internal error: Oops - BUG: 0 [#1] SMP\n Modules linked in:\n Process syz-executor.0 (pid: 249, stack limit = 0x00000000a12409d7)\n CPU: 1 PID: 249 Comm: syz-executor.0 Not tainted 4.19.95\n Hardware name: linux,dummy-virt (DT)\n pstate: 80000005 (Nzcv daif -PAN -UAO)\n pc : clear_inode+0x280/0x2a8\n lr : clear_inode+0x280/0x2a8\n Call trace:\n clear_inode+0x280/0x2a8\n ext4_clear_inode+0x38/0xe8\n ext4_free_inode+0x130/0xc68\n ext4_evict_inode+0xb20/0xcb8\n evict+0x1a8/0x3c0\n iput+0x344/0x460\n do_unlinkat+0x260/0x410\n __arm64_sys_unlinkat+0x6c/0xc0\n el0_svc_common+0xdc/0x3b0\n el0_svc_handler+0xf8/0x160\n el0_svc+0x10/0x218\n Kernel panic - not syncing: Fatal exception\n\nA crash dump of this problem show that someone called __munlock_pagevec\nto clear page LRU without lock_page: do_mmap -> mmap_region -> do_munmap\n-> munlock_vma_pages_range -> __munlock_pagevec.\n\nAs a result memory_failure will call identify_page_state without\nwait_on_page_writeback. And after truncate_error_page clear the mapping\nof this page. end_page_writeback won't call sb_clear_inode_writeback to\nclear inode->i_wb_list. That will trigger BUG_ON in clear_inode!\n\nFix it by checking PageWriteback too to help determine should we skip\nwait_on_page_writeback.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -41,7 +46,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:14Z" diff --git a/advisories/unreviewed/2024/05/GHSA-qj68-9gpw-8pq2/GHSA-qj68-9gpw-8pq2.json b/advisories/unreviewed/2024/05/GHSA-qj68-9gpw-8pq2/GHSA-qj68-9gpw-8pq2.json index 27d9755cb62..5ad582009c2 100644 --- a/advisories/unreviewed/2024/05/GHSA-qj68-9gpw-8pq2/GHSA-qj68-9gpw-8pq2.json +++ b/advisories/unreviewed/2024/05/GHSA-qj68-9gpw-8pq2/GHSA-qj68-9gpw-8pq2.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-qj68-9gpw-8pq2", - "modified": "2024-05-21T15:31:41Z", + "modified": "2025-04-30T15:30:43Z", "published": "2024-05-21T15:31:41Z", "aliases": [ "CVE-2021-47275" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nbcache: avoid oversized read request in cache missing code path\n\nIn the cache missing code path of cached device, if a proper location\nfrom the internal B+ tree is matched for a cache miss range, function\ncached_dev_cache_miss() will be called in cache_lookup_fn() in the\nfollowing code block,\n[code block 1]\n 526 unsigned int sectors = KEY_INODE(k) == s->iop.inode\n 527 ? min_t(uint64_t, INT_MAX,\n 528 KEY_START(k) - bio->bi_iter.bi_sector)\n 529 : INT_MAX;\n 530 int ret = s->d->cache_miss(b, s, bio, sectors);\n\nHere s->d->cache_miss() is the call backfunction pointer initialized as\ncached_dev_cache_miss(), the last parameter 'sectors' is an important\nhint to calculate the size of read request to backing device of the\nmissing cache data.\n\nCurrent calculation in above code block may generate oversized value of\n'sectors', which consequently may trigger 2 different potential kernel\npanics by BUG() or BUG_ON() as listed below,\n\n1) BUG_ON() inside bch_btree_insert_key(),\n[code block 2]\n 886 BUG_ON(b->ops->is_extents && !KEY_SIZE(k));\n2) BUG() inside biovec_slab(),\n[code block 3]\n 51 default:\n 52 BUG();\n 53 return NULL;\n\nAll the above panics are original from cached_dev_cache_miss() by the\noversized parameter 'sectors'.\n\nInside cached_dev_cache_miss(), parameter 'sectors' is used to calculate\nthe size of data read from backing device for the cache missing. This\nsize is stored in s->insert_bio_sectors by the following lines of code,\n[code block 4]\n 909 s->insert_bio_sectors = min(sectors, bio_sectors(bio) + reada);\n\nThen the actual key inserting to the internal B+ tree is generated and\nstored in s->iop.replace_key by the following lines of code,\n[code block 5]\n 911 s->iop.replace_key = KEY(s->iop.inode,\n 912 bio->bi_iter.bi_sector + s->insert_bio_sectors,\n 913 s->insert_bio_sectors);\nThe oversized parameter 'sectors' may trigger panic 1) by BUG_ON() from\nthe above code block.\n\nAnd the bio sending to backing device for the missing data is allocated\nwith hint from s->insert_bio_sectors by the following lines of code,\n[code block 6]\n 926 cache_bio = bio_alloc_bioset(GFP_NOWAIT,\n 927 DIV_ROUND_UP(s->insert_bio_sectors, PAGE_SECTORS),\n 928 &dc->disk.bio_split);\nThe oversized parameter 'sectors' may trigger panic 2) by BUG() from the\nagove code block.\n\nNow let me explain how the panics happen with the oversized 'sectors'.\nIn code block 5, replace_key is generated by macro KEY(). From the\ndefinition of macro KEY(),\n[code block 7]\n 71 #define KEY(inode, offset, size) \\\n 72 ((struct bkey) { \\\n 73 .high = (1ULL << 63) | ((__u64) (size) << 20) | (inode), \\\n 74 .low = (offset) \\\n 75 })\n\nHere 'size' is 16bits width embedded in 64bits member 'high' of struct\nbkey. But in code block 1, if \"KEY_START(k) - bio->bi_iter.bi_sector\" is\nvery probably to be larger than (1<<16) - 1, which makes the bkey size\ncalculation in code block 5 is overflowed. In one bug report the value\nof parameter 'sectors' is 131072 (= 1 << 17), the overflowed 'sectors'\nresults the overflowed s->insert_bio_sectors in code block 4, then makes\nsize field of s->iop.replace_key to be 0 in code block 5. Then the 0-\nsized s->iop.replace_key is inserted into the internal B+ tree as cache\nmissing check key (a special key to detect and avoid a racing between\nnormal write request and cache missing read request) as,\n[code block 8]\n 915 ret = bch_btree_insert_check_key(b, &s->op, &s->iop.replace_key);\n\nThen the 0-sized s->iop.replace_key as 3rd parameter triggers the bkey\nsize check BUG_ON() in code block 2, and causes the kernel panic 1).\n\nAnother ke\n---truncated---", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -25,7 +30,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:15Z" diff --git a/advisories/unreviewed/2024/05/GHSA-rgj4-j68m-986v/GHSA-rgj4-j68m-986v.json b/advisories/unreviewed/2024/05/GHSA-rgj4-j68m-986v/GHSA-rgj4-j68m-986v.json index dc7a106c279..d931f899dd5 100644 --- a/advisories/unreviewed/2024/05/GHSA-rgj4-j68m-986v/GHSA-rgj4-j68m-986v.json +++ b/advisories/unreviewed/2024/05/GHSA-rgj4-j68m-986v/GHSA-rgj4-j68m-986v.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-rgj4-j68m-986v", - "modified": "2024-05-21T15:31:41Z", + "modified": "2025-04-30T15:30:44Z", "published": "2024-05-21T15:31:41Z", "aliases": [ "CVE-2021-47276" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nftrace: Do not blindly read the ip address in ftrace_bug()\n\nIt was reported that a bug on arm64 caused a bad ip address to be used for\nupdating into a nop in ftrace_init(), but the error path (rightfully)\nreturned -EINVAL and not -EFAULT, as the bug caused more than one error to\noccur. But because -EINVAL was returned, the ftrace_bug() tried to report\nwhat was at the location of the ip address, and read it directly. This\ncaused the machine to panic, as the ip was not pointing to a valid memory\naddress.\n\nInstead, read the ip address with copy_from_kernel_nofault() to safely\naccess the memory, and if it faults, report that the address faulted,\notherwise report what was in that location.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -48,8 +53,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-706" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:15Z" diff --git a/advisories/unreviewed/2024/05/GHSA-rr3f-v8j5-mmr6/GHSA-rr3f-v8j5-mmr6.json b/advisories/unreviewed/2024/05/GHSA-rr3f-v8j5-mmr6/GHSA-rr3f-v8j5-mmr6.json index deb4f263095..bd1c9ccd881 100644 --- a/advisories/unreviewed/2024/05/GHSA-rr3f-v8j5-mmr6/GHSA-rr3f-v8j5-mmr6.json +++ b/advisories/unreviewed/2024/05/GHSA-rr3f-v8j5-mmr6/GHSA-rr3f-v8j5-mmr6.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-rr3f-v8j5-mmr6", - "modified": "2024-05-21T15:31:40Z", + "modified": "2025-04-30T15:30:42Z", "published": "2024-05-21T15:31:40Z", "aliases": [ "CVE-2021-47248" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nudp: fix race between close() and udp_abort()\n\nKaustubh reported and diagnosed a panic in udp_lib_lookup().\nThe root cause is udp_abort() racing with close(). Both\nracing functions acquire the socket lock, but udp{v6}_destroy_sock()\nrelease it before performing destructive actions.\n\nWe can't easily extend the socket lock scope to avoid the race,\ninstead use the SOCK_DEAD flag to prevent udp_abort from doing\nany action when the critical race happens.\n\nDiagnosed-and-tested-by: Kaustubh Pandey ", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -44,8 +49,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-362" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:13Z" diff --git a/advisories/unreviewed/2024/05/GHSA-wgwm-v825-xmjx/GHSA-wgwm-v825-xmjx.json b/advisories/unreviewed/2024/05/GHSA-wgwm-v825-xmjx/GHSA-wgwm-v825-xmjx.json index 9bcbddc43e9..c21af423e9e 100644 --- a/advisories/unreviewed/2024/05/GHSA-wgwm-v825-xmjx/GHSA-wgwm-v825-xmjx.json +++ b/advisories/unreviewed/2024/05/GHSA-wgwm-v825-xmjx/GHSA-wgwm-v825-xmjx.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-wgwm-v825-xmjx", - "modified": "2024-05-21T15:31:40Z", + "modified": "2025-04-30T15:30:43Z", "published": "2024-05-21T15:31:40Z", "aliases": [ "CVE-2021-47255" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nkvm: LAPIC: Restore guard to prevent illegal APIC register access\n\nPer the SDM, \"any access that touches bytes 4 through 15 of an APIC\nregister may cause undefined behavior and must not be executed.\"\nWorse, such an access in kvm_lapic_reg_read can result in a leak of\nkernel stack contents. Prior to commit 01402cf81051 (\"kvm: LAPIC:\nwrite down valid APIC registers\"), such an access was explicitly\ndisallowed. Restore the guard that was removed in that commit.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -33,7 +38,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:14Z" diff --git a/advisories/unreviewed/2025/02/GHSA-5828-2c94-235c/GHSA-5828-2c94-235c.json b/advisories/unreviewed/2025/02/GHSA-5828-2c94-235c/GHSA-5828-2c94-235c.json index b1eb352d62e..eadf7872482 100644 --- a/advisories/unreviewed/2025/02/GHSA-5828-2c94-235c/GHSA-5828-2c94-235c.json +++ b/advisories/unreviewed/2025/02/GHSA-5828-2c94-235c/GHSA-5828-2c94-235c.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-5828-2c94-235c", - "modified": "2025-03-13T15:32:50Z", + "modified": "2025-04-30T15:30:44Z", "published": "2025-02-27T03:34:05Z", "aliases": [ "CVE-2025-21756" @@ -46,6 +46,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/fcdd2242c0231032fc84e1404315c245ae56322a" + }, + { + "type": "WEB", + "url": "https://github.com/hoefler02/CVE-2025-21756/blob/main/x.c" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/04/GHSA-2ffg-57j4-xqr7/GHSA-2ffg-57j4-xqr7.json b/advisories/unreviewed/2025/04/GHSA-2ffg-57j4-xqr7/GHSA-2ffg-57j4-xqr7.json new file mode 100644 index 00000000000..94449923de3 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-2ffg-57j4-xqr7/GHSA-2ffg-57j4-xqr7.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2ffg-57j4-xqr7", + "modified": "2025-04-30T15:30:49Z", + "published": "2025-04-30T15:30:49Z", + "aliases": [ + "CVE-2025-45009" + ], + "details": "A HTML Injection vulnerability was discovered in the normal-search.php file of PHPGurukul Park Ticketing Management System v2.0. This vulnerability allows remote attackers to execute arbitrary code via the searchdata parameter.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-45009" + }, + { + "type": "WEB", + "url": "https://github.com/rtnthakur/CVE/blob/main/PHPGurukul/Park-Ticketing-Management-System-Project/normal-search-html-injection.md" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-30T14:15:28Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-2fj9-fc6x-hgw7/GHSA-2fj9-fc6x-hgw7.json b/advisories/unreviewed/2025/04/GHSA-2fj9-fc6x-hgw7/GHSA-2fj9-fc6x-hgw7.json new file mode 100644 index 00000000000..559a37d9145 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-2fj9-fc6x-hgw7/GHSA-2fj9-fc6x-hgw7.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2fj9-fc6x-hgw7", + "modified": "2025-04-30T15:30:49Z", + "published": "2025-04-30T15:30:49Z", + "aliases": [ + "CVE-2025-4119" + ], + "details": "A vulnerability classified as critical was found in Weitong Mall 1.0.0. This vulnerability affects unknown code of the file /queryTotal of the component Product Statistics Handler. The manipulation of the argument isDelete with the input 1 leads to improper access controls. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-4119" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.306604" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.306604" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.560778" + }, + { + "type": "WEB", + "url": "https://www.cnblogs.com/aibot/p/18830908" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-266" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-30T14:15:31Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-32fp-f974-p3vf/GHSA-32fp-f974-p3vf.json b/advisories/unreviewed/2025/04/GHSA-32fp-f974-p3vf/GHSA-32fp-f974-p3vf.json index a511cb676d9..69ba0a443ec 100644 --- a/advisories/unreviewed/2025/04/GHSA-32fp-f974-p3vf/GHSA-32fp-f974-p3vf.json +++ b/advisories/unreviewed/2025/04/GHSA-32fp-f974-p3vf/GHSA-32fp-f974-p3vf.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-32fp-f974-p3vf", - "modified": "2025-04-29T21:31:54Z", + "modified": "2025-04-30T15:30:48Z", "published": "2025-04-29T21:31:54Z", "aliases": [ "CVE-2024-57698" ], "details": "An issue in modernwms v.1.0 allows an attacker view the MD5 hash of the administrator password and other attributes without authentication, even after initial configuration and password change. This happens due to excessive exposure of information and the lack of adequate access control on the /user/list?culture=en-us endpoint.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-281" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-04-29T20:15:25Z" diff --git a/advisories/unreviewed/2025/04/GHSA-3qx3-hfrr-jjwj/GHSA-3qx3-hfrr-jjwj.json b/advisories/unreviewed/2025/04/GHSA-3qx3-hfrr-jjwj/GHSA-3qx3-hfrr-jjwj.json new file mode 100644 index 00000000000..6ae5286a282 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-3qx3-hfrr-jjwj/GHSA-3qx3-hfrr-jjwj.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3qx3-hfrr-jjwj", + "modified": "2025-04-30T15:30:49Z", + "published": "2025-04-30T15:30:49Z", + "aliases": [ + "CVE-2025-4118" + ], + "details": "A vulnerability classified as critical has been found in Weitong Mall 1.0.0. This affects an unknown part of the file /historyList of the component Product History Handler. The manipulation of the argument isDelete with the input 1 leads to improper access controls. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-4118" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.306603" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.306603" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.560777" + }, + { + "type": "WEB", + "url": "https://www.cnblogs.com/aibot/p/18830907" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-266" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-30T14:15:30Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-4cw8-8gfg-9xm5/GHSA-4cw8-8gfg-9xm5.json b/advisories/unreviewed/2025/04/GHSA-4cw8-8gfg-9xm5/GHSA-4cw8-8gfg-9xm5.json index 78bcbfd9c76..4a039494065 100644 --- a/advisories/unreviewed/2025/04/GHSA-4cw8-8gfg-9xm5/GHSA-4cw8-8gfg-9xm5.json +++ b/advisories/unreviewed/2025/04/GHSA-4cw8-8gfg-9xm5/GHSA-4cw8-8gfg-9xm5.json @@ -42,7 +42,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-5c2r-7vmq-r33f/GHSA-5c2r-7vmq-r33f.json b/advisories/unreviewed/2025/04/GHSA-5c2r-7vmq-r33f/GHSA-5c2r-7vmq-r33f.json new file mode 100644 index 00000000000..677814e8613 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-5c2r-7vmq-r33f/GHSA-5c2r-7vmq-r33f.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5c2r-7vmq-r33f", + "modified": "2025-04-30T15:30:49Z", + "published": "2025-04-30T15:30:49Z", + "aliases": [ + "CVE-2025-45015" + ], + "details": "A Cross-Site Scripting (XSS) vulnerability was discovered in the foreigner-bwdates-reports-details.php file of PHPGurukul Park Ticketing Management System v2.0. The vulnerability allows remote attackers to inject arbitrary JavaScript code via the fromdate and todate parameters.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-45015" + }, + { + "type": "WEB", + "url": "https://github.com/rtnthakur/CVE/blob/main/PHPGurukul/Park-Ticketing-Management-System-Project/XSS/foreigner-bwdates-reports-details-XSS-injection.md" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-30T14:15:29Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-6qj8-hh3r-p98w/GHSA-6qj8-hh3r-p98w.json b/advisories/unreviewed/2025/04/GHSA-6qj8-hh3r-p98w/GHSA-6qj8-hh3r-p98w.json new file mode 100644 index 00000000000..09b7a348fb2 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-6qj8-hh3r-p98w/GHSA-6qj8-hh3r-p98w.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6qj8-hh3r-p98w", + "modified": "2025-04-30T15:30:49Z", + "published": "2025-04-30T15:30:49Z", + "aliases": [ + "CVE-2025-45007" + ], + "details": "A Reflected Cross-Site Scripting (XSS) vulnerability was discovered in the profile.php file of PHPGurukul Timetable Generator System v1.0. This vulnerability allows remote attackers to execute arbitrary JavaScript code via the adminname POST request parameter.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-45007" + }, + { + "type": "WEB", + "url": "https://github.com/rtnthakur/CVE/blob/main/PHPGurukul/Time-Table-Generator-System/xss-injection.md" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-30T13:15:49Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-77gw-gg73-wpfg/GHSA-77gw-gg73-wpfg.json b/advisories/unreviewed/2025/04/GHSA-77gw-gg73-wpfg/GHSA-77gw-gg73-wpfg.json new file mode 100644 index 00000000000..775c78da51d --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-77gw-gg73-wpfg/GHSA-77gw-gg73-wpfg.json @@ -0,0 +1,56 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-77gw-gg73-wpfg", + "modified": "2025-04-30T15:30:49Z", + "published": "2025-04-30T15:30:49Z", + "aliases": [ + "CVE-2025-4121" + ], + "details": "A vulnerability was found in Netgear JWNR2000v2 1.0.0.11. It has been declared as critical. Affected by this vulnerability is the function cmd_wireless. The manipulation of the argument host leads to command injection. The attack can be launched remotely. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-4121" + }, + { + "type": "WEB", + "url": "https://github.com/jylsec/vuldb/blob/main/Netgear/netgear_JWNR2000v2/Command_injection-cmd_wireless-port_phy_set/README.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.306601" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.306601" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.560775" + }, + { + "type": "WEB", + "url": "https://www.netgear.com" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-74" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-30T14:15:31Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-7q2v-j39v-mxfr/GHSA-7q2v-j39v-mxfr.json b/advisories/unreviewed/2025/04/GHSA-7q2v-j39v-mxfr/GHSA-7q2v-j39v-mxfr.json index c0e87e8a0f0..7082da96661 100644 --- a/advisories/unreviewed/2025/04/GHSA-7q2v-j39v-mxfr/GHSA-7q2v-j39v-mxfr.json +++ b/advisories/unreviewed/2025/04/GHSA-7q2v-j39v-mxfr/GHSA-7q2v-j39v-mxfr.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-7q2v-j39v-mxfr", - "modified": "2025-04-22T12:31:24Z", + "modified": "2025-04-30T15:30:48Z", "published": "2025-04-22T12:31:24Z", "aliases": [ "CVE-2025-3458" diff --git a/advisories/unreviewed/2025/04/GHSA-95pf-9whm-h8rm/GHSA-95pf-9whm-h8rm.json b/advisories/unreviewed/2025/04/GHSA-95pf-9whm-h8rm/GHSA-95pf-9whm-h8rm.json new file mode 100644 index 00000000000..1c1444f5109 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-95pf-9whm-h8rm/GHSA-95pf-9whm-h8rm.json @@ -0,0 +1,56 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-95pf-9whm-h8rm", + "modified": "2025-04-30T15:30:50Z", + "published": "2025-04-30T15:30:50Z", + "aliases": [ + "CVE-2025-4122" + ], + "details": "A vulnerability was found in Netgear JWNR2000v2 1.0.0.11. It has been rated as critical. Affected by this issue is the function sub_435E04. The manipulation of the argument host leads to command injection. The attack may be launched remotely. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-4122" + }, + { + "type": "WEB", + "url": "https://github.com/jylsec/vuldb/blob/main/Netgear/netgear_JWNR2000v2/Command_injection-sub_435E04-auth_mac/README.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.306602" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.306602" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.560776" + }, + { + "type": "WEB", + "url": "https://www.netgear.com" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-74" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-30T15:16:02Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-ccmg-3338-rh6p/GHSA-ccmg-3338-rh6p.json b/advisories/unreviewed/2025/04/GHSA-ccmg-3338-rh6p/GHSA-ccmg-3338-rh6p.json new file mode 100644 index 00000000000..25588dc63ac --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-ccmg-3338-rh6p/GHSA-ccmg-3338-rh6p.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-ccmg-3338-rh6p", + "modified": "2025-04-30T15:30:48Z", + "published": "2025-04-30T15:30:48Z", + "aliases": [ + "CVE-2025-3395" + ], + "details": "Incorrect Permission Assignment for Critical Resource, Cleartext Storage of Sensitive Information vulnerability in ABB Automation Builder.This issue affects Automation Builder: through 2.8.0.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3395" + }, + { + "type": "WEB", + "url": "https://search.abb.com/library/Download.aspx?DocumentID=3ADR011407&LanguageCode=en&DocumentPartId=&Action=Launch" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-312" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-30T13:15:49Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-cfp6-9cf4-xhvc/GHSA-cfp6-9cf4-xhvc.json b/advisories/unreviewed/2025/04/GHSA-cfp6-9cf4-xhvc/GHSA-cfp6-9cf4-xhvc.json index c621a230b12..58c86c87f57 100644 --- a/advisories/unreviewed/2025/04/GHSA-cfp6-9cf4-xhvc/GHSA-cfp6-9cf4-xhvc.json +++ b/advisories/unreviewed/2025/04/GHSA-cfp6-9cf4-xhvc/GHSA-cfp6-9cf4-xhvc.json @@ -42,7 +42,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-cv46-v88f-9qx8/GHSA-cv46-v88f-9qx8.json b/advisories/unreviewed/2025/04/GHSA-cv46-v88f-9qx8/GHSA-cv46-v88f-9qx8.json new file mode 100644 index 00000000000..6227123cbde --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-cv46-v88f-9qx8/GHSA-cv46-v88f-9qx8.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cv46-v88f-9qx8", + "modified": "2025-04-30T15:30:49Z", + "published": "2025-04-30T15:30:49Z", + "aliases": [ + "CVE-2025-45011" + ], + "details": "A HTML Injection vulnerability was discovered in the foreigner-search.php file of PHPGurukul Park Ticketing Management System v2.0. This vulnerability allows remote attackers to execute arbitrary code via the searchdata POST request parameter.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-45011" + }, + { + "type": "WEB", + "url": "https://github.com/rtnthakur/CVE/blob/main/PHPGurukul/Park-Ticketing-Management-System-Project/foreigner-search-html-injection.md" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-30T14:15:29Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-f27c-q8cq-2ffp/GHSA-f27c-q8cq-2ffp.json b/advisories/unreviewed/2025/04/GHSA-f27c-q8cq-2ffp/GHSA-f27c-q8cq-2ffp.json new file mode 100644 index 00000000000..405af36a706 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-f27c-q8cq-2ffp/GHSA-f27c-q8cq-2ffp.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-f27c-q8cq-2ffp", + "modified": "2025-04-30T15:30:49Z", + "published": "2025-04-30T15:30:49Z", + "aliases": [ + "CVE-2025-45010" + ], + "details": "A HTML Injection vulnerability was discovered in the normal-bwdates-reports-details.php file of PHPGurukul Park Ticketing Management System v2.0. This vulnerability allows remote attackers to execute arbitrary code via the fromdate and todate POST request parameters.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-45010" + }, + { + "type": "WEB", + "url": "https://github.com/rtnthakur/CVE/blob/main/PHPGurukul/Park-Ticketing-Management-System-Project/normal-bwdates-reports-details-html-injection.md" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-30T14:15:29Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-fcmj-55j6-4jm8/GHSA-fcmj-55j6-4jm8.json b/advisories/unreviewed/2025/04/GHSA-fcmj-55j6-4jm8/GHSA-fcmj-55j6-4jm8.json new file mode 100644 index 00000000000..6a1e0ee5860 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-fcmj-55j6-4jm8/GHSA-fcmj-55j6-4jm8.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fcmj-55j6-4jm8", + "modified": "2025-04-30T15:30:48Z", + "published": "2025-04-30T15:30:48Z", + "aliases": [ + "CVE-2025-3394" + ], + "details": "Incorrect Permission Assignment for Critical Resource vulnerability in ABB Automation Builder.This issue affects Automation Builder: through 2.8.0.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3394" + }, + { + "type": "WEB", + "url": "https://search.abb.com/library/Download.aspx?DocumentID=3ADR011407&LanguageCode=en&DocumentPartId=&Action=Launch" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-732" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-30T13:15:48Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-fgcv-8655-jx3q/GHSA-fgcv-8655-jx3q.json b/advisories/unreviewed/2025/04/GHSA-fgcv-8655-jx3q/GHSA-fgcv-8655-jx3q.json new file mode 100644 index 00000000000..ce515a248fc --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-fgcv-8655-jx3q/GHSA-fgcv-8655-jx3q.json @@ -0,0 +1,56 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fgcv-8655-jx3q", + "modified": "2025-04-30T15:30:49Z", + "published": "2025-04-30T15:30:49Z", + "aliases": [ + "CVE-2025-4116" + ], + "details": "A vulnerability, which was classified as critical, has been found in Netgear JWNR2000v2 1.0.0.11. Affected by this issue is the function get_cur_lang_ver. The manipulation of the argument host leads to buffer overflow. The attack may be launched remotely. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-4116" + }, + { + "type": "WEB", + "url": "https://github.com/jylsec/vuldb/blob/main/Netgear/netgear_JWNR2000v2/Buffer_overflow-get_cur_lang_ver-StringTable_NonEnglish_Ver/README.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.306596" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.306596" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.560770" + }, + { + "type": "WEB", + "url": "https://www.netgear.com" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-119" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-30T13:15:49Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-fph3-2wh6-46fv/GHSA-fph3-2wh6-46fv.json b/advisories/unreviewed/2025/04/GHSA-fph3-2wh6-46fv/GHSA-fph3-2wh6-46fv.json new file mode 100644 index 00000000000..f05431e3999 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-fph3-2wh6-46fv/GHSA-fph3-2wh6-46fv.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fph3-2wh6-46fv", + "modified": "2025-04-30T15:30:49Z", + "published": "2025-04-30T15:30:49Z", + "aliases": [ + "CVE-2025-45020" + ], + "details": "A SQL Injection vulnerability was discovered in the normal-bwdates-reports-details.php file of PHPGurukul Park Ticketing Management System v2.0. This vulnerability allows remote attackers to execute arbitrary SQL code via the todate parameter in a POST request.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-45020" + }, + { + "type": "WEB", + "url": "https://github.com/rtnthakur/CVE/blob/main/PHPGurukul/Park-Ticketing-Management-System-Project/SQL/SQL_Injection_normal-bwdates-reports-details.md" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-30T13:15:49Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-j322-6qx5-mxw2/GHSA-j322-6qx5-mxw2.json b/advisories/unreviewed/2025/04/GHSA-j322-6qx5-mxw2/GHSA-j322-6qx5-mxw2.json index 2a0a56b2d85..8269248f7a9 100644 --- a/advisories/unreviewed/2025/04/GHSA-j322-6qx5-mxw2/GHSA-j322-6qx5-mxw2.json +++ b/advisories/unreviewed/2025/04/GHSA-j322-6qx5-mxw2/GHSA-j322-6qx5-mxw2.json @@ -42,7 +42,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-j8hv-qq9w-2x29/GHSA-j8hv-qq9w-2x29.json b/advisories/unreviewed/2025/04/GHSA-j8hv-qq9w-2x29/GHSA-j8hv-qq9w-2x29.json index cfa73c3fdc4..6cfc6ab3fe5 100644 --- a/advisories/unreviewed/2025/04/GHSA-j8hv-qq9w-2x29/GHSA-j8hv-qq9w-2x29.json +++ b/advisories/unreviewed/2025/04/GHSA-j8hv-qq9w-2x29/GHSA-j8hv-qq9w-2x29.json @@ -42,7 +42,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-m9f8-pw74-6fjf/GHSA-m9f8-pw74-6fjf.json b/advisories/unreviewed/2025/04/GHSA-m9f8-pw74-6fjf/GHSA-m9f8-pw74-6fjf.json new file mode 100644 index 00000000000..d1c6de470b8 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-m9f8-pw74-6fjf/GHSA-m9f8-pw74-6fjf.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-m9f8-pw74-6fjf", + "modified": "2025-04-30T15:30:49Z", + "published": "2025-04-30T15:30:49Z", + "aliases": [ + "CVE-2025-45019" + ], + "details": "A SQL injection vulnerability was discovered in /add-foreigners-ticket.php file of PHPGurukul Park Ticketing Management System v2.0. This vulnerability allows remote attackers to execute arbitrary code via the cprice POST request parameter.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-45019" + }, + { + "type": "WEB", + "url": "https://github.com/rtnthakur/CVE/blob/main/PHPGurukul/Park-Ticketing-Management-System-Project/SQL/SQL_injection_add_foreigners_ticket.md" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-30T14:15:29Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-p6jf-pv8c-623c/GHSA-p6jf-pv8c-623c.json b/advisories/unreviewed/2025/04/GHSA-p6jf-pv8c-623c/GHSA-p6jf-pv8c-623c.json index 5d5369a21c7..95bbad823d9 100644 --- a/advisories/unreviewed/2025/04/GHSA-p6jf-pv8c-623c/GHSA-p6jf-pv8c-623c.json +++ b/advisories/unreviewed/2025/04/GHSA-p6jf-pv8c-623c/GHSA-p6jf-pv8c-623c.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-p6jf-pv8c-623c", - "modified": "2025-04-18T18:31:23Z", + "modified": "2025-04-30T15:30:47Z", "published": "2025-04-13T15:30:21Z", "aliases": [ "CVE-2024-56406" @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-122" + "CWE-122", + "CWE-787" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-q378-crrr-qj69/GHSA-q378-crrr-qj69.json b/advisories/unreviewed/2025/04/GHSA-q378-crrr-qj69/GHSA-q378-crrr-qj69.json new file mode 100644 index 00000000000..e98041fafe4 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-q378-crrr-qj69/GHSA-q378-crrr-qj69.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-q378-crrr-qj69", + "modified": "2025-04-30T15:30:49Z", + "published": "2025-04-30T15:30:49Z", + "aliases": [ + "CVE-2025-45018" + ], + "details": "A SQL Injection vulnerability was discovered in the foreigner-bwdates-reports-details.php file of PHPGurukul Park Ticketing Management System v2.0. This vulnerability allows remote attackers to execute arbitrary SQL code via the todate parameter.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-45018" + }, + { + "type": "WEB", + "url": "https://github.com/rtnthakur/CVE/blob/main/PHPGurukul/Park-Ticketing-Management-System-Project/SQL/SQl_Injection_in_was_foreigner-bwdates-reports-details.md" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-30T14:15:29Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-q3vr-42pm-pvrf/GHSA-q3vr-42pm-pvrf.json b/advisories/unreviewed/2025/04/GHSA-q3vr-42pm-pvrf/GHSA-q3vr-42pm-pvrf.json new file mode 100644 index 00000000000..a0a13bb43fa --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-q3vr-42pm-pvrf/GHSA-q3vr-42pm-pvrf.json @@ -0,0 +1,56 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-q3vr-42pm-pvrf", + "modified": "2025-04-30T15:30:49Z", + "published": "2025-04-30T15:30:49Z", + "aliases": [ + "CVE-2025-4115" + ], + "details": "A vulnerability classified as critical was found in Netgear JWNR2000v2 1.0.0.11. Affected by this vulnerability is the function default_version_is_new. The manipulation of the argument host leads to buffer overflow. The attack can be launched remotely. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-4115" + }, + { + "type": "WEB", + "url": "https://github.com/jylsec/vuldb/blob/main/Netgear/netgear_JWNR2000v2/Buffer_overflow-defualt_version_is_new-StringTable_NonEnglish_Ver/README.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.306595" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.306595" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.560769" + }, + { + "type": "WEB", + "url": "https://www.netgear.com" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-119" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-30T13:15:49Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-q66q-qwxm-vgrg/GHSA-q66q-qwxm-vgrg.json b/advisories/unreviewed/2025/04/GHSA-q66q-qwxm-vgrg/GHSA-q66q-qwxm-vgrg.json new file mode 100644 index 00000000000..bf5ce0d1c89 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-q66q-qwxm-vgrg/GHSA-q66q-qwxm-vgrg.json @@ -0,0 +1,56 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-q66q-qwxm-vgrg", + "modified": "2025-04-30T15:30:49Z", + "published": "2025-04-30T15:30:49Z", + "aliases": [ + "CVE-2025-4120" + ], + "details": "A vulnerability was found in Netgear JWNR2000v2 1.0.0.11. It has been classified as critical. Affected is the function sub_4238E8. The manipulation of the argument host leads to buffer overflow. It is possible to launch the attack remotely. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-4120" + }, + { + "type": "WEB", + "url": "https://github.com/jylsec/vuldb/blob/main/Netgear/netgear_JWNR2000v2/Buffer_overflow-sub_4238E8-log_type/README.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.306600" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.306600" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.560774" + }, + { + "type": "WEB", + "url": "https://www.netgear.com" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-119" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-30T14:15:31Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-qh62-99w2-xfq5/GHSA-qh62-99w2-xfq5.json b/advisories/unreviewed/2025/04/GHSA-qh62-99w2-xfq5/GHSA-qh62-99w2-xfq5.json new file mode 100644 index 00000000000..17be0403488 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-qh62-99w2-xfq5/GHSA-qh62-99w2-xfq5.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qh62-99w2-xfq5", + "modified": "2025-04-30T15:30:49Z", + "published": "2025-04-30T15:30:49Z", + "aliases": [ + "CVE-2025-45021" + ], + "details": "A SQL Injection vulnerability was identified in the admin/edit-directory.php file of the PHPGurukul Directory Management System v2.0. Attackers can exploit this vulnerability via the email parameter in a POST request to execute arbitrary SQL commands.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-45021" + }, + { + "type": "WEB", + "url": "https://github.com/rtnthakur/CVE/blob/main/PHPGurukul/Directory%20Management%20System/SQL/SQl_Injection_in_edit-directory.md" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-30T14:15:29Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-rr2g-rrjj-xw86/GHSA-rr2g-rrjj-xw86.json b/advisories/unreviewed/2025/04/GHSA-rr2g-rrjj-xw86/GHSA-rr2g-rrjj-xw86.json index f7f274c4afa..3ec01528b9f 100644 --- a/advisories/unreviewed/2025/04/GHSA-rr2g-rrjj-xw86/GHSA-rr2g-rrjj-xw86.json +++ b/advisories/unreviewed/2025/04/GHSA-rr2g-rrjj-xw86/GHSA-rr2g-rrjj-xw86.json @@ -26,7 +26,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-285" + "CWE-285", + "CWE-863" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-v4qx-h7r5-6qc8/GHSA-v4qx-h7r5-6qc8.json b/advisories/unreviewed/2025/04/GHSA-v4qx-h7r5-6qc8/GHSA-v4qx-h7r5-6qc8.json index fe5037ff2a4..1e81899fdc8 100644 --- a/advisories/unreviewed/2025/04/GHSA-v4qx-h7r5-6qc8/GHSA-v4qx-h7r5-6qc8.json +++ b/advisories/unreviewed/2025/04/GHSA-v4qx-h7r5-6qc8/GHSA-v4qx-h7r5-6qc8.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-v4qx-h7r5-6qc8", - "modified": "2025-04-29T15:31:53Z", + "modified": "2025-04-30T15:30:48Z", "published": "2025-04-29T15:31:52Z", "aliases": [ "CVE-2025-4083" ], "details": "A process isolation vulnerability in Firefox stemmed from improper handling of javascript: URIs, which could allow content to execute in the top-level document's process instead of the intended frame, potentially enabling a sandbox escape. This vulnerability affects Firefox < 138, Firefox ESR < 128.10, Firefox ESR < 115.23, Thunderbird < 138, and Thunderbird ESR < 128.10.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N" + } + ], "affected": [], "references": [ { @@ -40,8 +45,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-653" + ], + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-04-29T14:15:35Z" diff --git a/advisories/unreviewed/2025/04/GHSA-v74x-4c9w-5ccp/GHSA-v74x-4c9w-5ccp.json b/advisories/unreviewed/2025/04/GHSA-v74x-4c9w-5ccp/GHSA-v74x-4c9w-5ccp.json new file mode 100644 index 00000000000..1a1329a344e --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-v74x-4c9w-5ccp/GHSA-v74x-4c9w-5ccp.json @@ -0,0 +1,56 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-v74x-4c9w-5ccp", + "modified": "2025-04-30T15:30:49Z", + "published": "2025-04-30T15:30:49Z", + "aliases": [ + "CVE-2025-4117" + ], + "details": "A vulnerability, which was classified as critical, was found in Netgear JWNR2000v2 1.0.0.11. This affects the function sub_41A914. The manipulation of the argument host leads to buffer overflow. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:A/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-4117" + }, + { + "type": "WEB", + "url": "https://github.com/jylsec/vuldb/blob/main/Netgear/netgear_JWNR2000v2/Buffer_overflow-sub_41A914-GUI_Region/README.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.306597" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.306597" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.560771" + }, + { + "type": "WEB", + "url": "https://www.netgear.com" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-119" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-30T13:15:50Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-vfg7-232g-q3r5/GHSA-vfg7-232g-q3r5.json b/advisories/unreviewed/2025/04/GHSA-vfg7-232g-q3r5/GHSA-vfg7-232g-q3r5.json index 5b703c2d4c1..09427076ec0 100644 --- a/advisories/unreviewed/2025/04/GHSA-vfg7-232g-q3r5/GHSA-vfg7-232g-q3r5.json +++ b/advisories/unreviewed/2025/04/GHSA-vfg7-232g-q3r5/GHSA-vfg7-232g-q3r5.json @@ -42,7 +42,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-vq83-2wpf-54vg/GHSA-vq83-2wpf-54vg.json b/advisories/unreviewed/2025/04/GHSA-vq83-2wpf-54vg/GHSA-vq83-2wpf-54vg.json new file mode 100644 index 00000000000..9bd93d51058 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-vq83-2wpf-54vg/GHSA-vq83-2wpf-54vg.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-vq83-2wpf-54vg", + "modified": "2025-04-30T15:30:49Z", + "published": "2025-04-30T15:30:49Z", + "aliases": [ + "CVE-2025-45017" + ], + "details": "A SQL injection vulnerability was discovered in edit-ticket.php of PHPGurukul Park Ticketing Management System v2.0. This vulnerability allows remote attackers to execute arbitrary code via the tprice POST request parameter.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-45017" + }, + { + "type": "WEB", + "url": "https://github.com/rtnthakur/CVE/blob/main/PHPGurukul/Park-Ticketing-Management-System-Project/SQL/SQL_injection_in_edit_ticket.md" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-30T14:15:29Z" + } +} \ No newline at end of file