From 426f99de0668cbfe085a76073642b891cbb0cab9 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Tue, 7 Jan 2025 09:31:49 +0000 Subject: [PATCH] Publish Advisories GHSA-3628-rj84-6j8x GHSA-45q3-39w4-hv49 GHSA-4mg5-4ww9-qpv3 GHSA-56w8-9358-hf89 GHSA-59fr-v79h-cpp9 GHSA-5rcv-jj34-6x8g GHSA-cf2x-g3fw-q673 GHSA-cmpf-vgq7-7pcm GHSA-j4j8-gwpj-2hxg GHSA-p33j-pm54-4wfv GHSA-pfq2-75vc-mj87 GHSA-pr27-h5xw-9fr6 GHSA-prq9-w4j8-gg56 GHSA-qp76-rcwh-p6m8 GHSA-rhwr-wg6v-qw69 GHSA-wc2m-j748-xf87 GHSA-wg7g-4jwx-j6rf GHSA-wwhj-5x28-4qww GHSA-x26h-g6hw-673v GHSA-xwwq-24cw-rm4r --- .../GHSA-3628-rj84-6j8x.json | 36 ++++++++++++ .../GHSA-45q3-39w4-hv49.json | 44 +++++++++++++++ .../GHSA-4mg5-4ww9-qpv3.json | 48 ++++++++++++++++ .../GHSA-56w8-9358-hf89.json | 40 +++++++++++++ .../GHSA-59fr-v79h-cpp9.json | 36 ++++++++++++ .../GHSA-5rcv-jj34-6x8g.json | 40 +++++++++++++ .../GHSA-cf2x-g3fw-q673.json | 52 +++++++++++++++++ .../GHSA-cmpf-vgq7-7pcm.json | 40 +++++++++++++ .../GHSA-j4j8-gwpj-2hxg.json | 36 ++++++++++++ .../GHSA-p33j-pm54-4wfv.json | 40 +++++++++++++ .../GHSA-pfq2-75vc-mj87.json | 40 +++++++++++++ .../GHSA-pr27-h5xw-9fr6.json | 40 +++++++++++++ .../GHSA-prq9-w4j8-gg56.json | 40 +++++++++++++ .../GHSA-qp76-rcwh-p6m8.json | 40 +++++++++++++ .../GHSA-rhwr-wg6v-qw69.json | 44 +++++++++++++++ .../GHSA-wc2m-j748-xf87.json | 40 +++++++++++++ .../GHSA-wg7g-4jwx-j6rf.json | 40 +++++++++++++ .../GHSA-wwhj-5x28-4qww.json | 40 +++++++++++++ .../GHSA-x26h-g6hw-673v.json | 56 +++++++++++++++++++ .../GHSA-xwwq-24cw-rm4r.json | 40 +++++++++++++ 20 files changed, 832 insertions(+) create mode 100644 advisories/unreviewed/2025/01/GHSA-3628-rj84-6j8x/GHSA-3628-rj84-6j8x.json create mode 100644 advisories/unreviewed/2025/01/GHSA-45q3-39w4-hv49/GHSA-45q3-39w4-hv49.json create mode 100644 advisories/unreviewed/2025/01/GHSA-4mg5-4ww9-qpv3/GHSA-4mg5-4ww9-qpv3.json create mode 100644 advisories/unreviewed/2025/01/GHSA-56w8-9358-hf89/GHSA-56w8-9358-hf89.json create mode 100644 advisories/unreviewed/2025/01/GHSA-59fr-v79h-cpp9/GHSA-59fr-v79h-cpp9.json create mode 100644 advisories/unreviewed/2025/01/GHSA-5rcv-jj34-6x8g/GHSA-5rcv-jj34-6x8g.json create mode 100644 advisories/unreviewed/2025/01/GHSA-cf2x-g3fw-q673/GHSA-cf2x-g3fw-q673.json create mode 100644 advisories/unreviewed/2025/01/GHSA-cmpf-vgq7-7pcm/GHSA-cmpf-vgq7-7pcm.json create mode 100644 advisories/unreviewed/2025/01/GHSA-j4j8-gwpj-2hxg/GHSA-j4j8-gwpj-2hxg.json create mode 100644 advisories/unreviewed/2025/01/GHSA-p33j-pm54-4wfv/GHSA-p33j-pm54-4wfv.json create mode 100644 advisories/unreviewed/2025/01/GHSA-pfq2-75vc-mj87/GHSA-pfq2-75vc-mj87.json create mode 100644 advisories/unreviewed/2025/01/GHSA-pr27-h5xw-9fr6/GHSA-pr27-h5xw-9fr6.json create mode 100644 advisories/unreviewed/2025/01/GHSA-prq9-w4j8-gg56/GHSA-prq9-w4j8-gg56.json create mode 100644 advisories/unreviewed/2025/01/GHSA-qp76-rcwh-p6m8/GHSA-qp76-rcwh-p6m8.json create mode 100644 advisories/unreviewed/2025/01/GHSA-rhwr-wg6v-qw69/GHSA-rhwr-wg6v-qw69.json create mode 100644 advisories/unreviewed/2025/01/GHSA-wc2m-j748-xf87/GHSA-wc2m-j748-xf87.json create mode 100644 advisories/unreviewed/2025/01/GHSA-wg7g-4jwx-j6rf/GHSA-wg7g-4jwx-j6rf.json create mode 100644 advisories/unreviewed/2025/01/GHSA-wwhj-5x28-4qww/GHSA-wwhj-5x28-4qww.json create mode 100644 advisories/unreviewed/2025/01/GHSA-x26h-g6hw-673v/GHSA-x26h-g6hw-673v.json create mode 100644 advisories/unreviewed/2025/01/GHSA-xwwq-24cw-rm4r/GHSA-xwwq-24cw-rm4r.json diff --git a/advisories/unreviewed/2025/01/GHSA-3628-rj84-6j8x/GHSA-3628-rj84-6j8x.json b/advisories/unreviewed/2025/01/GHSA-3628-rj84-6j8x/GHSA-3628-rj84-6j8x.json new file mode 100644 index 00000000000..71be5ee8f27 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-3628-rj84-6j8x/GHSA-3628-rj84-6j8x.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3628-rj84-6j8x", + "modified": "2025-01-07T09:30:46Z", + "published": "2025-01-07T09:30:46Z", + "aliases": [ + "CVE-2024-47398" + ], + "details": "in OpenHarmony v4.1.2 and prior versions allow a local attacker cause the device is unable to boot up through out-of-bounds write.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47398" + }, + { + "type": "WEB", + "url": "https://gitee.com/openharmony/security/blob/master/zh/security-disclosure/2025/2025-01.md" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-787" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T08:15:25Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-45q3-39w4-hv49/GHSA-45q3-39w4-hv49.json b/advisories/unreviewed/2025/01/GHSA-45q3-39w4-hv49/GHSA-45q3-39w4-hv49.json new file mode 100644 index 00000000000..0657abe3498 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-45q3-39w4-hv49/GHSA-45q3-39w4-hv49.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-45q3-39w4-hv49", + "modified": "2025-01-07T09:30:46Z", + "published": "2025-01-07T09:30:46Z", + "aliases": [ + "CVE-2024-9354" + ], + "details": "The Estatik Mortgage Calculator plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'color' parameter in all versions up to, and including, 2.0.11 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9354" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/estatik-mortgage-calculator/trunk/public/images/info.php" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3199224%40estatik-mortgage-calculator&new=3199224%40estatik-mortgage-calculator&sfp_email=&sfph_mail=" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/4b955a0f-d064-436f-8648-0e84fac752d2?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T07:15:28Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-4mg5-4ww9-qpv3/GHSA-4mg5-4ww9-qpv3.json b/advisories/unreviewed/2025/01/GHSA-4mg5-4ww9-qpv3/GHSA-4mg5-4ww9-qpv3.json new file mode 100644 index 00000000000..83e3abfa7ba --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-4mg5-4ww9-qpv3/GHSA-4mg5-4ww9-qpv3.json @@ -0,0 +1,48 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4mg5-4ww9-qpv3", + "modified": "2025-01-07T09:30:46Z", + "published": "2025-01-07T09:30:46Z", + "aliases": [ + "CVE-2024-12077" + ], + "details": "The Booking Calendar and Booking Calendar Pro plugins for WordPress are vulnerable to Reflected Cross-Site Scripting via the ‘calendar_id’ parameter in all versions up to, and including, 3.2.19 and 11.2.19 respectively, due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12077" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/booking-calendar/tags/3.2.16/admin/views/Reservations.php#L528" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/booking-calendar/tags/3.2.16/admin/views/Reservations.php#L532" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3209851" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/81cc09ee-da3d-407d-82c0-542b56df5aed?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T08:15:24Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-56w8-9358-hf89/GHSA-56w8-9358-hf89.json b/advisories/unreviewed/2025/01/GHSA-56w8-9358-hf89/GHSA-56w8-9358-hf89.json new file mode 100644 index 00000000000..bcc9a8219db --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-56w8-9358-hf89/GHSA-56w8-9358-hf89.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-56w8-9358-hf89", + "modified": "2025-01-07T09:30:46Z", + "published": "2025-01-07T09:30:45Z", + "aliases": [ + "CVE-2024-12781" + ], + "details": "The Aurum - WordPress & WooCommerce Shopping Theme theme for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'lab_1cl_demo_install_package_content' function in all versions up to, and including, 4.0.2. This makes it possible for authenticated attackers, with Subscriber-level access and above, to overwrite content with imported demo content.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12781" + }, + { + "type": "WEB", + "url": "https://documentation.laborator.co/kb/aurum/aurum-release-notes" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/cd132aa5-d30a-41de-aa8d-aefae6c95c47?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-862" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T07:15:27Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-59fr-v79h-cpp9/GHSA-59fr-v79h-cpp9.json b/advisories/unreviewed/2025/01/GHSA-59fr-v79h-cpp9/GHSA-59fr-v79h-cpp9.json new file mode 100644 index 00000000000..e1bc642ca41 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-59fr-v79h-cpp9/GHSA-59fr-v79h-cpp9.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-59fr-v79h-cpp9", + "modified": "2025-01-07T09:30:46Z", + "published": "2025-01-07T09:30:46Z", + "aliases": [ + "CVE-2024-45070" + ], + "details": "in OpenHarmony v4.1.2 and prior versions allow a local attacker cause information leak through out-of-bounds Read.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-45070" + }, + { + "type": "WEB", + "url": "https://gitee.com/openharmony/security/blob/master/zh/security-disclosure/2025/2025-01.md" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-125" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T08:15:25Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-5rcv-jj34-6x8g/GHSA-5rcv-jj34-6x8g.json b/advisories/unreviewed/2025/01/GHSA-5rcv-jj34-6x8g/GHSA-5rcv-jj34-6x8g.json new file mode 100644 index 00000000000..ff3b3a5882f --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-5rcv-jj34-6x8g/GHSA-5rcv-jj34-6x8g.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5rcv-jj34-6x8g", + "modified": "2025-01-07T09:30:46Z", + "published": "2025-01-07T09:30:45Z", + "aliases": [ + "CVE-2024-12624" + ], + "details": "The Sina Extension for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Sina Image Differ widget in all versions up to, and including, 3.5.91 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12624" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3211218/sina-extension-for-elementor" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/39f6fb61-25a9-4386-9b61-7343760fd28c?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T07:15:27Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-cf2x-g3fw-q673/GHSA-cf2x-g3fw-q673.json b/advisories/unreviewed/2025/01/GHSA-cf2x-g3fw-q673/GHSA-cf2x-g3fw-q673.json new file mode 100644 index 00000000000..3579125e0af --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-cf2x-g3fw-q673/GHSA-cf2x-g3fw-q673.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cf2x-g3fw-q673", + "modified": "2025-01-07T09:30:46Z", + "published": "2025-01-07T09:30:46Z", + "aliases": [ + "CVE-2024-9502" + ], + "details": "The Master Addons – Elementor Addons with White Label, Free Widgets, Hover Effects, Conditions, & Animations plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Tooltip module in all versions up to, and including, 2.0.6.7 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9502" + }, + { + "type": "WEB", + "url": "https://master-addons.com/changelogs" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/master-addons/trunk/addons/ma-tooltip/ma-tooltip.php#L250" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3211489" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/master-addons/#developers" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/485c9ee6-9cb5-45ca-86af-ee5d10ee6734?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T07:15:28Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-cmpf-vgq7-7pcm/GHSA-cmpf-vgq7-7pcm.json b/advisories/unreviewed/2025/01/GHSA-cmpf-vgq7-7pcm/GHSA-cmpf-vgq7-7pcm.json new file mode 100644 index 00000000000..0720244aeb6 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-cmpf-vgq7-7pcm/GHSA-cmpf-vgq7-7pcm.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cmpf-vgq7-7pcm", + "modified": "2025-01-07T09:30:46Z", + "published": "2025-01-07T09:30:46Z", + "aliases": [ + "CVE-2024-10866" + ], + "details": "The Export Import Menus plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the dsp_export_import_menus() function in all versions up to, and including, 1.9.1. This makes it possible for unauthenticated attackers to export menu data and settings.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10866" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3213801%40export-import-menus&new=3213801%40export-import-menus&sfp_email=&sfph_mail=" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/08beb583-096d-453c-9690-b46e410afb1b?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-862" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T08:15:23Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-j4j8-gwpj-2hxg/GHSA-j4j8-gwpj-2hxg.json b/advisories/unreviewed/2025/01/GHSA-j4j8-gwpj-2hxg/GHSA-j4j8-gwpj-2hxg.json new file mode 100644 index 00000000000..4d421b6d2f5 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-j4j8-gwpj-2hxg/GHSA-j4j8-gwpj-2hxg.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-j4j8-gwpj-2hxg", + "modified": "2025-01-07T09:30:46Z", + "published": "2025-01-07T09:30:46Z", + "aliases": [ + "CVE-2024-54030" + ], + "details": "in OpenHarmony v4.1.2 and prior versions allow a local attacker cause DOS through use after free.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-54030" + }, + { + "type": "WEB", + "url": "https://gitee.com/openharmony/security/blob/master/zh/security-disclosure/2025/2025-01.md" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-416" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T08:15:25Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-p33j-pm54-4wfv/GHSA-p33j-pm54-4wfv.json b/advisories/unreviewed/2025/01/GHSA-p33j-pm54-4wfv/GHSA-p33j-pm54-4wfv.json new file mode 100644 index 00000000000..6ba46cc8937 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-p33j-pm54-4wfv/GHSA-p33j-pm54-4wfv.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p33j-pm54-4wfv", + "modified": "2025-01-07T09:30:45Z", + "published": "2025-01-07T09:30:45Z", + "aliases": [ + "CVE-2024-12495" + ], + "details": "The Bootstrap Blocks for WP Editor v2 plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'gtb-bootstrap/column' block in all versions up to, and including, 2.5.0 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12495" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3213432%40wp-editor-bootstrap-blocks&new=3213432%40wp-editor-bootstrap-blocks&sfp_email=&sfph_mail=#file33" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/4e9e9afc-89a0-444d-ad5b-975e0f3c19d5?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T07:15:27Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-pfq2-75vc-mj87/GHSA-pfq2-75vc-mj87.json b/advisories/unreviewed/2025/01/GHSA-pfq2-75vc-mj87/GHSA-pfq2-75vc-mj87.json new file mode 100644 index 00000000000..22b9ab95d86 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-pfq2-75vc-mj87/GHSA-pfq2-75vc-mj87.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-pfq2-75vc-mj87", + "modified": "2025-01-07T09:30:46Z", + "published": "2025-01-07T09:30:46Z", + "aliases": [ + "CVE-2024-11626" + ], + "details": "Improper Neutralization of Input During CMS Backend (adminstrative section) Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Progress Sitefinity.This issue affects Sitefinity: from 4.0 through 14.4.8142, from 15.0.8200 through 15.0.8229, from 15.1.8300 through 15.1.8327, from 15.2.8400 through 15.2.8421.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11626" + }, + { + "type": "WEB", + "url": "https://community.progress.com/s/article/Sitefinity-Security-Advisory-for-Addressing-Security-Vulnerabilities-CVE-2024-11625-and-CVE-2024-11626-January-2025" + }, + { + "type": "WEB", + "url": "https://www.progress.com/sitefinity-cms" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T08:15:24Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-pr27-h5xw-9fr6/GHSA-pr27-h5xw-9fr6.json b/advisories/unreviewed/2025/01/GHSA-pr27-h5xw-9fr6/GHSA-pr27-h5xw-9fr6.json new file mode 100644 index 00000000000..673f53acf26 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-pr27-h5xw-9fr6/GHSA-pr27-h5xw-9fr6.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-pr27-h5xw-9fr6", + "modified": "2025-01-07T09:30:45Z", + "published": "2025-01-07T09:30:45Z", + "aliases": [ + "CVE-2024-11764" + ], + "details": "The Solar Wizard Lite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'solar_wizard' shortcode in all versions up to, and including, 1.2.4 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11764" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3215301%40solar-wizard-lite&new=3215301%40solar-wizard-lite&sfp_email=&sfph_mail=" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/adcab262-08ca-448d-b1fd-295d421b82a3?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T07:15:26Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-prq9-w4j8-gg56/GHSA-prq9-w4j8-gg56.json b/advisories/unreviewed/2025/01/GHSA-prq9-w4j8-gg56/GHSA-prq9-w4j8-gg56.json new file mode 100644 index 00000000000..025a3beb76e --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-prq9-w4j8-gg56/GHSA-prq9-w4j8-gg56.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-prq9-w4j8-gg56", + "modified": "2025-01-07T09:30:46Z", + "published": "2025-01-07T09:30:46Z", + "aliases": [ + "CVE-2024-11627" + ], + "details": ": Insufficient Session Expiration vulnerability in Progress Sitefinity allows : Session Fixation.This issue affects Sitefinity: from 4.0 through 14.4.8142, from 15.0.8200 through 15.0.8229, from 15.1.8300 through 15.1.8327, from 15.2.8400 through 15.2.8421.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11627" + }, + { + "type": "WEB", + "url": "https://community.progress.com/s/article/Sitefinity-Security-Advisory-for-Addressing-Security-Vulnerabilities-CVE-2024-11625-and-CVE-2024-11626-January-2025" + }, + { + "type": "WEB", + "url": "https://www.progress.com/sitefinity-cms" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-613" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T08:15:24Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-qp76-rcwh-p6m8/GHSA-qp76-rcwh-p6m8.json b/advisories/unreviewed/2025/01/GHSA-qp76-rcwh-p6m8/GHSA-qp76-rcwh-p6m8.json new file mode 100644 index 00000000000..26d5cb7611d --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-qp76-rcwh-p6m8/GHSA-qp76-rcwh-p6m8.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qp76-rcwh-p6m8", + "modified": "2025-01-07T09:30:46Z", + "published": "2025-01-07T09:30:46Z", + "aliases": [ + "CVE-2024-11625" + ], + "details": "Information Exposure Through an Error Message vulnerability in Progress Software Corporation Sitefinity.This issue affects Sitefinity: from 4.0 through 14.4.8142, from 15.0.8200 through 15.0.8229, from 15.1.8300 through 15.1.8327, from 15.2.8400 through 15.2.8421.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:L" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11625" + }, + { + "type": "WEB", + "url": "https://community.progress.com/s/article/Sitefinity-Security-Advisory-for-Addressing-Security-Vulnerabilities-CVE-2024-11625-and-CVE-2024-11626-January-2025" + }, + { + "type": "WEB", + "url": "https://www.progress.com/sitefinity-cms" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-209" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T08:15:24Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-rhwr-wg6v-qw69/GHSA-rhwr-wg6v-qw69.json b/advisories/unreviewed/2025/01/GHSA-rhwr-wg6v-qw69/GHSA-rhwr-wg6v-qw69.json new file mode 100644 index 00000000000..52e77b675b9 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-rhwr-wg6v-qw69/GHSA-rhwr-wg6v-qw69.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rhwr-wg6v-qw69", + "modified": "2025-01-07T09:30:45Z", + "published": "2025-01-07T09:30:45Z", + "aliases": [ + "CVE-2024-12437" + ], + "details": "The Marketplace Items plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'envato' shortcode in all versions up to, and including, 1.5.5 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12437" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/marketplace-items/trunk/marketplace-items.php#L94" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/marketplace-items" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/e055c319-1aeb-4a97-98d1-3b38e61f30f0?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T07:15:27Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-wc2m-j748-xf87/GHSA-wc2m-j748-xf87.json b/advisories/unreviewed/2025/01/GHSA-wc2m-j748-xf87/GHSA-wc2m-j748-xf87.json new file mode 100644 index 00000000000..d2770c26775 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-wc2m-j748-xf87/GHSA-wc2m-j748-xf87.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-wc2m-j748-xf87", + "modified": "2025-01-07T09:30:45Z", + "published": "2025-01-07T09:30:45Z", + "aliases": [ + "CVE-2024-12499" + ], + "details": "The WP jQuery DataTable plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wp_jdt' shortcode in all versions up to, and including, 4.0.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12499" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3213340%40wp-jquery-datatable&new=3213340%40wp-jquery-datatable&sfp_email=&sfph_mail=" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/5c6a6422-8255-4a3c-9ddf-b5986e1d393f?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T07:15:27Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-wg7g-4jwx-j6rf/GHSA-wg7g-4jwx-j6rf.json b/advisories/unreviewed/2025/01/GHSA-wg7g-4jwx-j6rf/GHSA-wg7g-4jwx-j6rf.json new file mode 100644 index 00000000000..ba92b19a1d3 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-wg7g-4jwx-j6rf/GHSA-wg7g-4jwx-j6rf.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-wg7g-4jwx-j6rf", + "modified": "2025-01-07T09:30:45Z", + "published": "2025-01-07T09:30:45Z", + "aliases": [ + "CVE-2024-11282" + ], + "details": "The Passster – Password Protect Pages and Content plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.2.10 via the WordPress core search feature. This makes it possible for unauthenticated attackers to extract sensitive data from posts that have been restricted to higher-level roles such as administrator.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11282" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3211004/content-protector" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/11782a65-30b9-400e-8fe0-ab9f05ba5e42?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-200" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T07:15:25Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-wwhj-5x28-4qww/GHSA-wwhj-5x28-4qww.json b/advisories/unreviewed/2025/01/GHSA-wwhj-5x28-4qww/GHSA-wwhj-5x28-4qww.json new file mode 100644 index 00000000000..ee0188b716b --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-wwhj-5x28-4qww/GHSA-wwhj-5x28-4qww.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-wwhj-5x28-4qww", + "modified": "2025-01-07T09:30:46Z", + "published": "2025-01-07T09:30:46Z", + "aliases": [ + "CVE-2024-12516" + ], + "details": "The Coupon Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Coupon Code' parameter in all versions up to, and including, 1.2.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12516" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3215992%40coupon-lite&new=3215992%40coupon-lite&sfp_email=&sfph_mail=" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/827c0459-1328-4fb1-b044-ae80298fa5ea?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T08:15:25Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-x26h-g6hw-673v/GHSA-x26h-g6hw-673v.json b/advisories/unreviewed/2025/01/GHSA-x26h-g6hw-673v/GHSA-x26h-g6hw-673v.json new file mode 100644 index 00000000000..b5bce4c6bb6 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-x26h-g6hw-673v/GHSA-x26h-g6hw-673v.json @@ -0,0 +1,56 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-x26h-g6hw-673v", + "modified": "2025-01-07T09:30:46Z", + "published": "2025-01-07T09:30:45Z", + "aliases": [ + "CVE-2024-11725" + ], + "details": "The SMS Alert Order Notifications – WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability check on the updateWcWarrantySettings() function in all versions up to, and including, 3.7.6. This makes it possible for authenticated attackers, with subscriber-level access and above, to update arbitrary options on the WordPress site. This can be leveraged to update the default role for registration to administrator and enable user registration for attackers to gain administrative user access to a vulnerable site. Please note this requires the woocommerce-warranty plugin to be installed in order to be exploited.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11725" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/sms-alert/trunk/helper/return-warranty.php#L74" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3198056/sms-alert/trunk/helper/return-warranty.php" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3197777%40sms-alert&new=3197777%40sms-alert&sfp_email=&sfph_mail=" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3199795%40sms-alert&new=3199795%40sms-alert&sfp_email=&sfph_mail=" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3207391%40sms-alert&new=3207391%40sms-alert&sfp_email=&sfph_mail=" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/33517dba-78ac-4391-a55e-d1f13801b212?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-862" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T07:15:26Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-xwwq-24cw-rm4r/GHSA-xwwq-24cw-rm4r.json b/advisories/unreviewed/2025/01/GHSA-xwwq-24cw-rm4r/GHSA-xwwq-24cw-rm4r.json new file mode 100644 index 00000000000..2cbe60884d4 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-xwwq-24cw-rm4r/GHSA-xwwq-24cw-rm4r.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-xwwq-24cw-rm4r", + "modified": "2025-01-07T09:30:46Z", + "published": "2025-01-07T09:30:46Z", + "aliases": [ + "CVE-2024-12202" + ], + "details": "The Croma Music plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability check on the 'ironMusic_ajax' function in all versions up to, and including, 3.6. This makes it possible for authenticated attackers, with Subscriber-level access and above, to update arbitrary options on the WordPress site. This can be leveraged to update the default role for registration to administrator and enable user registration for attackers to gain administrative user access to a vulnerable site.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12202" + }, + { + "type": "WEB", + "url": "https://croma.irontemplates.com/lowtempo/wp-content/themes/croma/changelog.txt" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/4ce8e0f1-5a7b-41a3-81d0-7fd12c9da6d9?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-862" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T08:15:25Z" + } +} \ No newline at end of file