diff --git a/advisories/github-reviewed/2022/04/GHSA-jj47-x69x-mxrm/GHSA-jj47-x69x-mxrm.json b/advisories/github-reviewed/2022/04/GHSA-jj47-x69x-mxrm/GHSA-jj47-x69x-mxrm.json index 7f8837dec78..7c0a034ab87 100644 --- a/advisories/github-reviewed/2022/04/GHSA-jj47-x69x-mxrm/GHSA-jj47-x69x-mxrm.json +++ b/advisories/github-reviewed/2022/04/GHSA-jj47-x69x-mxrm/GHSA-jj47-x69x-mxrm.json @@ -62,6 +62,10 @@ { "type": "WEB", "url": "https://github.com/rubysec/ruby-advisory-db/blob/master/gems/yajl-ruby/CVE-2022-24795.yml" + }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2023/07/msg00013.html" } ], "database_specific": { diff --git a/advisories/github-reviewed/2022/10/GHSA-9398-5ghf-7pr6/GHSA-9398-5ghf-7pr6.json b/advisories/github-reviewed/2022/10/GHSA-9398-5ghf-7pr6/GHSA-9398-5ghf-7pr6.json index c5aac623882..5adc03c82bd 100644 --- a/advisories/github-reviewed/2022/10/GHSA-9398-5ghf-7pr6/GHSA-9398-5ghf-7pr6.json +++ b/advisories/github-reviewed/2022/10/GHSA-9398-5ghf-7pr6/GHSA-9398-5ghf-7pr6.json @@ -59,6 +59,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-1284", "CWE-400" ], "severity": "HIGH", diff --git a/advisories/github-reviewed/2022/11/GHSA-3w3h-7xgx-grwc/GHSA-3w3h-7xgx-grwc.json b/advisories/github-reviewed/2022/11/GHSA-3w3h-7xgx-grwc/GHSA-3w3h-7xgx-grwc.json index 445bb69863c..a73266c1065 100644 --- a/advisories/github-reviewed/2022/11/GHSA-3w3h-7xgx-grwc/GHSA-3w3h-7xgx-grwc.json +++ b/advisories/github-reviewed/2022/11/GHSA-3w3h-7xgx-grwc/GHSA-3w3h-7xgx-grwc.json @@ -48,10 +48,6 @@ "type": "WEB", "url": "https://github.com/tu6ge/oss-rs/commit/e4553f7d74fce682d802f8fb073943387796df29" }, - { - "type": "ADVISORY", - "url": "https://github.com/advisories/GHSA-3w3h-7xgx-grwc" - }, { "type": "PACKAGE", "url": "https://github.com/tu6ge/oss-rs" diff --git a/advisories/github-reviewed/2023/07/GHSA-9jx5-6pgf-crrp/GHSA-9jx5-6pgf-crrp.json b/advisories/github-reviewed/2023/07/GHSA-9jx5-6pgf-crrp/GHSA-9jx5-6pgf-crrp.json index eece0c18b32..cda59b610b6 100644 --- a/advisories/github-reviewed/2023/07/GHSA-9jx5-6pgf-crrp/GHSA-9jx5-6pgf-crrp.json +++ b/advisories/github-reviewed/2023/07/GHSA-9jx5-6pgf-crrp/GHSA-9jx5-6pgf-crrp.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-9jx5-6pgf-crrp", - "modified": "2023-07-06T21:01:56Z", + "modified": "2023-07-12T14:12:03Z", "published": "2023-07-05T18:30:44Z", "aliases": [ "CVE-2023-25399" @@ -9,7 +9,10 @@ "summary": "scipy memory leak vulnerability", "details": "A refcounting issue which leads to potential memory leak was discovered in scipy commit 8627df31ab in `Py_FindObjects()` function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ { @@ -49,6 +52,10 @@ "type": "WEB", "url": "https://github.com/scipy/scipy/commit/9b6521198c4f31d3f9cb525e581bea8e3e77f0a2" }, + { + "type": "WEB", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/scipy/PYSEC-2023-102.yaml" + }, { "type": "PACKAGE", "url": "https://github.com/scipy/scipy" @@ -62,7 +69,7 @@ "cwe_ids": [ "CWE-400" ], - "severity": "LOW", + "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2023-07-06T21:01:56Z", "nvd_published_at": null