Advisory Database Sync

This commit is contained in:
advisory-database[bot]
2025-05-15 21:33:30 +00:00
parent 267363044f
commit 4ecb15a05e
272 changed files with 6912 additions and 62 deletions
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-3hfv-3383-4hvp",
"modified": "2022-10-18T19:00:34Z",
"modified": "2025-05-15T21:31:14Z",
"published": "2022-10-14T12:00:23Z",
"aliases": [
"CVE-2022-42719"
@@ -31,6 +31,18 @@
"type": "WEB",
"url": "https://lists.debian.org/debian-lts-announce/2022/11/msg00001.html"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GGHENNMLCWIQV2LLA56BJNFIUZ7WB4IY"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/S2KTU5LFZNQS7YNGE56MT46VHMXL3DD2"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VNN3VFQPECS6D4PS6ZWD7AFXTOSJDSSR"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/GGHENNMLCWIQV2LLA56BJNFIUZ7WB4IY"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-6976-m887-r48h",
"modified": "2022-10-17T19:00:28Z",
"modified": "2025-05-15T21:31:14Z",
"published": "2022-10-14T12:00:23Z",
"aliases": [
"CVE-2022-42721"
@@ -31,6 +31,18 @@
"type": "WEB",
"url": "https://lists.debian.org/debian-lts-announce/2022/11/msg00001.html"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GGHENNMLCWIQV2LLA56BJNFIUZ7WB4IY"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/S2KTU5LFZNQS7YNGE56MT46VHMXL3DD2"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VNN3VFQPECS6D4PS6ZWD7AFXTOSJDSSR"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/GGHENNMLCWIQV2LLA56BJNFIUZ7WB4IY"
@@ -26,6 +26,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-119",
"CWE-763"
],
"severity": "HIGH",
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-f43w-w9qr-2mwm",
"modified": "2022-10-17T19:00:28Z",
"modified": "2025-05-15T21:31:14Z",
"published": "2022-10-14T12:00:23Z",
"aliases": [
"CVE-2022-42720"
@@ -31,6 +31,18 @@
"type": "WEB",
"url": "https://lists.debian.org/debian-lts-announce/2022/11/msg00001.html"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GGHENNMLCWIQV2LLA56BJNFIUZ7WB4IY"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/S2KTU5LFZNQS7YNGE56MT46VHMXL3DD2"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VNN3VFQPECS6D4PS6ZWD7AFXTOSJDSSR"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/GGHENNMLCWIQV2LLA56BJNFIUZ7WB4IY"
@@ -29,7 +29,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-404"
],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -30,6 +30,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-284",
"CWE-863"
],
"severity": "MODERATE",
@@ -30,7 +30,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-200"
"CWE-200",
"CWE-459"
],
"severity": "MODERATE",
"github_reviewed": false,
@@ -25,7 +25,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-200"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -29,7 +29,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-787"
],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -1,12 +1,12 @@
{
"schema_version": "1.4.0",
"id": "GHSA-23h8-ggh4-vmhv",
"modified": "2024-02-10T06:30:18Z",
"modified": "2025-05-15T21:31:19Z",
"published": "2024-02-06T21:30:26Z",
"aliases": [
"CVE-2024-22240"
],
"details": "Aria Operations for Networks contains a local file read vulnerability. A malicious actor with admin privileges may exploit this vulnerability leading to unauthorized access to sensitive information. ",
"details": "Aria Operations for Networks contains a local file read vulnerability. A malicious actor with admin privileges may exploit this vulnerability leading to unauthorized access to sensitive information.",
"severity": [
{
"type": "CVSS_V3",
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-3wxq-76w9-ghcp",
"modified": "2024-02-06T12:30:31Z",
"modified": "2025-05-15T21:31:19Z",
"published": "2024-02-06T12:30:31Z",
"aliases": [
"CVE-2024-24940"
@@ -25,7 +25,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-787"
],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -1,13 +1,18 @@
{
"schema_version": "1.4.0",
"id": "GHSA-5frx-8vj6-294f",
"modified": "2024-02-09T09:31:31Z",
"modified": "2025-05-15T21:31:21Z",
"published": "2024-02-09T09:31:31Z",
"aliases": [
"CVE-2024-23749"
],
"details": "KiTTY versions 0.76.1.13 and before is vulnerable to command injection via the filename variable, occurs due to insufficient input sanitization and validation, failure to escape special characters, and insecure system calls (at lines 2369-2390). This allows an attacker to add inputs inside the filename variable, leading to arbitrary code execution.",
"severity": [],
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
}
],
"affected": [],
"references": [
{
@@ -21,11 +26,21 @@
{
"type": "WEB",
"url": "http://packetstormsecurity.com/files/177031/KiTTY-0.76.1.13-Command-Injection.html"
},
{
"type": "WEB",
"url": "http://seclists.org/fulldisclosure/2024/Feb/13"
},
{
"type": "WEB",
"url": "http://seclists.org/fulldisclosure/2024/Feb/14"
}
],
"database_specific": {
"cwe_ids": [],
"severity": null,
"cwe_ids": [
"CWE-77"
],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-02-09T08:15:08Z"
@@ -1,12 +1,12 @@
{
"schema_version": "1.4.0",
"id": "GHSA-8xmq-whfm-pq37",
"modified": "2024-02-10T06:30:18Z",
"modified": "2025-05-15T21:31:19Z",
"published": "2024-02-06T21:30:26Z",
"aliases": [
"CVE-2024-22237"
],
"details": "Aria Operations for Networks contains a local privilege escalation vulnerability. A console user with access to Aria Operations for Networks may exploit this vulnerability to escalate privileges to gain root access to the system. ",
"details": "Aria Operations for Networks contains a local privilege escalation vulnerability. A console user with access to Aria Operations for Networks may exploit this vulnerability to escalate privileges to gain root access to the system.",
"severity": [
{
"type": "CVSS_V3",
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-97vr-j4hr-qrq8",
"modified": "2024-02-07T18:30:27Z",
"modified": "2025-05-15T21:31:15Z",
"published": "2024-02-02T03:30:32Z",
"aliases": [
"CVE-2024-22902"
@@ -1,12 +1,12 @@
{
"schema_version": "1.4.0",
"id": "GHSA-f5c4-v2h9-f7mq",
"modified": "2024-02-10T06:30:18Z",
"modified": "2025-05-15T21:31:19Z",
"published": "2024-02-06T21:30:26Z",
"aliases": [
"CVE-2024-22239"
],
"details": "Aria Operations for Networks contains a local privilege escalation vulnerability. A console user with access to Aria Operations for Networks may exploit this vulnerability to escalate privileges to gain regular shell access. ",
"details": "Aria Operations for Networks contains a local privilege escalation vulnerability. A console user with access to Aria Operations for Networks may exploit this vulnerability to escalate privileges to gain regular shell access.",
"severity": [
{
"type": "CVSS_V3",
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-fgv7-7rh4-3353",
"modified": "2024-02-07T18:30:27Z",
"modified": "2025-05-15T21:31:15Z",
"published": "2024-02-02T03:30:32Z",
"aliases": [
"CVE-2024-22901"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-qw52-qmwq-9mjq",
"modified": "2024-02-13T21:30:28Z",
"modified": "2025-05-15T21:31:18Z",
"published": "2024-02-06T00:30:27Z",
"aliases": [
"CVE-2024-0797"
@@ -19,6 +19,10 @@
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2024-0797"
},
{
"type": "WEB",
"url": "https://plugins.trac.wordpress.org/changeset/3029488/profit-products-tables-for-woocommerce/trunk?contextall=1&old=3005088&old_path=%2Fprofit-products-tables-for-woocommerce%2Ftrunk"
},
{
"type": "WEB",
"url": "https://plugins.trac.wordpress.org/changeset/3029488/profit-products-tables-for-woocommerce/trunk?contextall=1&old=3005088&old_path=/profit-products-tables-for-woocommerce/trunk"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-r3vw-5726-q8gc",
"modified": "2024-02-09T21:30:57Z",
"modified": "2025-05-15T21:31:15Z",
"published": "2024-02-02T18:30:32Z",
"aliases": [
"CVE-2024-22107"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-rv54-p5vw-c6p6",
"modified": "2024-02-13T21:30:28Z",
"modified": "2025-05-15T21:31:17Z",
"published": "2024-02-06T00:30:26Z",
"aliases": [
"CVE-2024-0324"

Some files were not shown because too many files have changed in this diff Show More