diff --git a/advisories/unreviewed/2025/01/GHSA-22jx-2m2x-2fqc/GHSA-22jx-2m2x-2fqc.json b/advisories/unreviewed/2025/01/GHSA-22jx-2m2x-2fqc/GHSA-22jx-2m2x-2fqc.json new file mode 100644 index 00000000000..e6209c910e5 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-22jx-2m2x-2fqc/GHSA-22jx-2m2x-2fqc.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-22jx-2m2x-2fqc", + "modified": "2025-01-07T06:32:16Z", + "published": "2025-01-07T06:32:16Z", + "aliases": [ + "CVE-2024-12261" + ], + "details": "The SmartEmailing.cz plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'se-lists-updated' parameter in all versions up to, and including, 2.2.0 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12261" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/smartemailing" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/7332c21a-3501-4066-b7b7-34914a228d8f?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T06:15:15Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-2932-63p2-x63x/GHSA-2932-63p2-x63x.json b/advisories/unreviewed/2025/01/GHSA-2932-63p2-x63x/GHSA-2932-63p2-x63x.json new file mode 100644 index 00000000000..1160d936738 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-2932-63p2-x63x/GHSA-2932-63p2-x63x.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2932-63p2-x63x", + "modified": "2025-01-07T06:32:14Z", + "published": "2025-01-07T06:32:14Z", + "aliases": [ + "CVE-2024-12559" + ], + "details": "The ClickDesigns plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'clickdesigns_add_api' and the 'clickdesigns_remove_api' functions in all versions up to, and including, 1.8.0. This makes it possible for unauthenticated attackers to modify or remove the plugin's API key.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12559" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/clickdesigns/tags/1.8.0/includes/clickdesigns-ajax.php#L64" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/clickdesigns/tags/1.8.0/includes/clickdesigns-ajax.php#L79" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/c1d19968-dbd8-4433-99a7-b973a59c4653?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-862" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T04:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-2gg2-rxgg-jj9h/GHSA-2gg2-rxgg-jj9h.json b/advisories/unreviewed/2025/01/GHSA-2gg2-rxgg-jj9h/GHSA-2gg2-rxgg-jj9h.json new file mode 100644 index 00000000000..89ef74204d7 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-2gg2-rxgg-jj9h/GHSA-2gg2-rxgg-jj9h.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2gg2-rxgg-jj9h", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:15Z", + "aliases": [ + "CVE-2024-12124" + ], + "details": "The Role Includer plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘user_id’ parameter in all versions up to, and including, 1.6 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12124" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/role-includer/#developers" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/97b3399b-cda2-4ab1-8919-b1e4ba4a5dcf?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:14Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-2gxw-g2pj-px2q/GHSA-2gxw-g2pj-px2q.json b/advisories/unreviewed/2025/01/GHSA-2gxw-g2pj-px2q/GHSA-2gxw-g2pj-px2q.json new file mode 100644 index 00000000000..6b59040228b --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-2gxw-g2pj-px2q/GHSA-2gxw-g2pj-px2q.json @@ -0,0 +1,56 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2gxw-g2pj-px2q", + "modified": "2025-01-07T06:32:14Z", + "published": "2025-01-07T06:32:14Z", + "aliases": [ + "CVE-2024-11465" + ], + "details": "The Custom Product Tabs for WooCommerce plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.8.5 via deserialization of untrusted input in the 'yikes_woo_products_tabs' post meta parameter. This makes it possible for authenticated attackers, with Shop Manager-level access and above, to inject a PHP Object. No known POP chain is present in the vulnerable software. If a POP chain is present via an additional plugin or theme installed on the target system, it could allow the attacker to delete arbitrary files, retrieve sensitive data, or execute code.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11465" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/yikes-inc-easy-custom-woocommerce-product-tabs/trunk/admin/class.yikes-woo-generate-html.php#L19" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/yikes-inc-easy-custom-woocommerce-product-tabs/trunk/admin/class.yikes-woo-saved-tabs.php#L222" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/yikes-inc-easy-custom-woocommerce-product-tabs/trunk/admin/class.yikes-woo-saved-tabs.php#L449" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/yikes-inc-easy-custom-woocommerce-product-tabs/trunk/public/class.yikes-woo-tabs-display.php#L47" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/yikes-inc-easy-custom-woocommerce-product-tabs/trunk/yikes-inc-easy-custom-woocommerce-product-tabs.php#L262" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/1ad0d6eb-aafa-4f0b-bf1c-73d94e361087?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-502" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-2h65-mqr6-9fm5/GHSA-2h65-mqr6-9fm5.json b/advisories/unreviewed/2025/01/GHSA-2h65-mqr6-9fm5/GHSA-2h65-mqr6-9fm5.json new file mode 100644 index 00000000000..93e1aab170a --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-2h65-mqr6-9fm5/GHSA-2h65-mqr6-9fm5.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2h65-mqr6-9fm5", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:15Z", + "aliases": [ + "CVE-2024-12049" + ], + "details": "The Woo Ukrposhta plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'order', 'post', and 'idd' parameters in all versions up to, and including, 1.17.11 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12049" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/woo-ukrposhta/trunk/admin/partials/edit-international.php#L71" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/woo-ukrposhta/trunk/admin/partials/edit.php#L43" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/woo-ukrposhta/trunk/admin/partials/morkvaup-plugin-invoices-page.php#L29" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/woo-ukrposhta/#developers" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/0e549e4c-9f2e-40a4-9b07-7edb34bc0c9f?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:14Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-2jhj-ccq4-x4hc/GHSA-2jhj-ccq4-x4hc.json b/advisories/unreviewed/2025/01/GHSA-2jhj-ccq4-x4hc/GHSA-2jhj-ccq4-x4hc.json new file mode 100644 index 00000000000..3096d15b39a --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-2jhj-ccq4-x4hc/GHSA-2jhj-ccq4-x4hc.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2jhj-ccq4-x4hc", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:15Z", + "aliases": [ + "CVE-2024-12207" + ], + "details": "The Toggles Shortcode and Widget plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘content’ parameter in all versions up to, and including, 1.14 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator-level access, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. This only affects multi-site installations and installations where unfiltered_html has been disabled.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12207" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/toggles-shortcode-and-widget/trunk/include/otw_components/otw_shortcode/shortcodes/otw_shortcode_content_toggle.class.php#L246" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/755c8863-33c2-47aa-880a-0ef8b2d594a3?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:16Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-2jv4-86qg-m23h/GHSA-2jv4-86qg-m23h.json b/advisories/unreviewed/2025/01/GHSA-2jv4-86qg-m23h/GHSA-2jv4-86qg-m23h.json new file mode 100644 index 00000000000..93c7793925e --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-2jv4-86qg-m23h/GHSA-2jv4-86qg-m23h.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2jv4-86qg-m23h", + "modified": "2025-01-07T06:32:16Z", + "published": "2025-01-07T06:32:16Z", + "aliases": [ + "CVE-2024-10102" + ], + "details": "The Photo Gallery, Images, Slider in Rbs Image Gallery WordPress plugin before 3.2.22 does not sanitise and escape some of its Gallery settings, which could allow high privilege users such as contributor to perform Stored Cross-Site Scripting attacks", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10102" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/3b34d1ec-5370-40a8-964e-663f4f9f42f8" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T06:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-2pj5-7838-wqrw/GHSA-2pj5-7838-wqrw.json b/advisories/unreviewed/2025/01/GHSA-2pj5-7838-wqrw/GHSA-2pj5-7838-wqrw.json new file mode 100644 index 00000000000..7d4f137d040 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-2pj5-7838-wqrw/GHSA-2pj5-7838-wqrw.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2pj5-7838-wqrw", + "modified": "2025-01-07T06:32:16Z", + "published": "2025-01-07T06:32:16Z", + "aliases": [ + "CVE-2024-11606" + ], + "details": "The Tabs Shortcode WordPress plugin through 2.0.2 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11606" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/76ae8f5b-2d0e-4bf5-9ae3-f76cd52dea8d" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T06:15:14Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-2pmv-wg6j-gf86/GHSA-2pmv-wg6j-gf86.json b/advisories/unreviewed/2025/01/GHSA-2pmv-wg6j-gf86/GHSA-2pmv-wg6j-gf86.json new file mode 100644 index 00000000000..dd46ab82f48 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-2pmv-wg6j-gf86/GHSA-2pmv-wg6j-gf86.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2pmv-wg6j-gf86", + "modified": "2025-01-07T06:32:14Z", + "published": "2025-01-07T06:32:14Z", + "aliases": [ + "CVE-2024-11383" + ], + "details": "The CC Canadian Mortgage Calculator plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'cc-mortgage-canada' shortcode in all versions up to, and including, 2.1.0 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11383" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3216591%40cc-canadian-mortgage-calculator&new=3216591%40cc-canadian-mortgage-calculator&sfp_email=&sfph_mail=" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/0654e3c9-106d-4d90-a4e4-9705c36f7564?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-3gcj-473g-7xhq/GHSA-3gcj-473g-7xhq.json b/advisories/unreviewed/2025/01/GHSA-3gcj-473g-7xhq/GHSA-3gcj-473g-7xhq.json new file mode 100644 index 00000000000..c8f91e7d4a9 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-3gcj-473g-7xhq/GHSA-3gcj-473g-7xhq.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3gcj-473g-7xhq", + "modified": "2025-01-07T06:32:16Z", + "published": "2025-01-07T06:32:16Z", + "aliases": [ + "CVE-2024-12471" + ], + "details": "The Post Saint: ChatGPT, GPT4, DALL-E, Stable Diffusion, Pexels, Dezgo AI Text & Image Generator plugin for WordPress is vulnerable to arbitrary files uploads due to a missing capability check and file type validation on the add_image_to_library AJAX action function in all versions up to, and including, 1.3.1. This makes it possible for authenticated attackers, with subscriber-level access and above, to upload arbitrary files that make remote code execution possible.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12471" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/post-saint" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/bc17284e-65ea-4e67-aba9-3475f0174657?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-94" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T06:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-3wwh-pgg6-388g/GHSA-3wwh-pgg6-388g.json b/advisories/unreviewed/2025/01/GHSA-3wwh-pgg6-388g/GHSA-3wwh-pgg6-388g.json new file mode 100644 index 00000000000..2230c20e2cf --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-3wwh-pgg6-388g/GHSA-3wwh-pgg6-388g.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3wwh-pgg6-388g", + "modified": "2025-01-07T06:32:14Z", + "published": "2025-01-07T06:32:14Z", + "aliases": [ + "CVE-2024-12538" + ], + "details": "The Duplicate Post, Page and Any Custom Post plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.5.3 via the 'dpp_duplicate_as_draft' function. This makes it possible for authenticated attackers, with Contributor-level access and above, to extract potentially sensitive data from draft, scheduled (future), private, and password protected posts.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12538" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/duplicate-pp/trunk/duplicate-pp.php#L22" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/f38543ff-1074-4273-be33-8142d59e904f?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-200" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T04:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-4rq5-fqvj-3w68/GHSA-4rq5-fqvj-3w68.json b/advisories/unreviewed/2025/01/GHSA-4rq5-fqvj-3w68/GHSA-4rq5-fqvj-3w68.json new file mode 100644 index 00000000000..f8912c8fc17 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-4rq5-fqvj-3w68/GHSA-4rq5-fqvj-3w68.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4rq5-fqvj-3w68", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:15Z", + "aliases": [ + "CVE-2024-12290" + ], + "details": "The Infility Global plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘set_type’ parameter in all versions up to, and including, 2.9.8 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12290" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/infility-global/#developers" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/6127576b-5ce2-4a3e-95de-8a2b3d90d3a0?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-4vg4-f6g7-84r7/GHSA-4vg4-f6g7-84r7.json b/advisories/unreviewed/2025/01/GHSA-4vg4-f6g7-84r7/GHSA-4vg4-f6g7-84r7.json new file mode 100644 index 00000000000..d43c7b91add --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-4vg4-f6g7-84r7/GHSA-4vg4-f6g7-84r7.json @@ -0,0 +1,48 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4vg4-f6g7-84r7", + "modified": "2025-01-07T06:32:16Z", + "published": "2025-01-07T06:32:16Z", + "aliases": [ + "CVE-2024-12384" + ], + "details": "The Binary MLM Woocommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'page’ parameter in all versions up to, and including, 2.0 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12384" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/woo-binary-mlm/trunk/includes/admin/payout/payout-report.php#L121" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/woo-binary-mlm/trunk/includes/admin/payout/payout-report.php#L44" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/woo-binary-mlm/trunk/includes/admin/register-first-user.php#L82" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/fdf6b2ea-5a6a-481b-9431-650c895f54ef?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T06:15:15Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-4xmf-339c-r25j/GHSA-4xmf-339c-r25j.json b/advisories/unreviewed/2025/01/GHSA-4xmf-339c-r25j/GHSA-4xmf-339c-r25j.json new file mode 100644 index 00000000000..027ab5f45cc --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-4xmf-339c-r25j/GHSA-4xmf-339c-r25j.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4xmf-339c-r25j", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:15Z", + "aliases": [ + "CVE-2024-12214" + ], + "details": "The WooCommerce HSS Extension for Streaming Video plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘videolink’ parameter in all versions up to, and including, 3.31 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12214" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/woocommerce-hss-extension-for-streaming-video/#developers" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/1d633f71-3b2b-4fe3-80f1-4c2dcc86313c?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:16Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-542p-f2xg-8qpc/GHSA-542p-f2xg-8qpc.json b/advisories/unreviewed/2025/01/GHSA-542p-f2xg-8qpc/GHSA-542p-f2xg-8qpc.json new file mode 100644 index 00000000000..f9a72625f4b --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-542p-f2xg-8qpc/GHSA-542p-f2xg-8qpc.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-542p-f2xg-8qpc", + "modified": "2025-01-07T06:32:16Z", + "published": "2025-01-07T06:32:16Z", + "aliases": [ + "CVE-2024-11887" + ], + "details": "The Geo Content plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'geotargetlygeocontent' shortcode in all versions up to, and including, 6.0 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11887" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/geo-targetly-geo-content/trunk/geotargetly-geo-content.php#L157" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/geo-targetly-geo-content" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/c52cdb58-c97a-43a6-a3ff-be084ceee085?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T06:15:15Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-566h-rx55-cfv2/GHSA-566h-rx55-cfv2.json b/advisories/unreviewed/2025/01/GHSA-566h-rx55-cfv2/GHSA-566h-rx55-cfv2.json new file mode 100644 index 00000000000..cc6882a404e --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-566h-rx55-cfv2/GHSA-566h-rx55-cfv2.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-566h-rx55-cfv2", + "modified": "2025-01-07T06:32:14Z", + "published": "2025-01-07T06:32:14Z", + "aliases": [ + "CVE-2024-11445" + ], + "details": "The Image Magnify plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'image_magnify' shortcode in all versions up to, and including, 1.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11445" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/image-magnify/trunk/image-magnify.php" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/image-magnify" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/55838de5-0795-429b-be87-a0d57b29e471?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-5g7x-mpmc-q8w8/GHSA-5g7x-mpmc-q8w8.json b/advisories/unreviewed/2025/01/GHSA-5g7x-mpmc-q8w8/GHSA-5g7x-mpmc-q8w8.json new file mode 100644 index 00000000000..81064abfdba --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-5g7x-mpmc-q8w8/GHSA-5g7x-mpmc-q8w8.json @@ -0,0 +1,48 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5g7x-mpmc-q8w8", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:15Z", + "aliases": [ + "CVE-2024-12332" + ], + "details": "The School Management System – WPSchoolPress plugin for WordPress is vulnerable to SQL Injection via the 'cid' parameter in all versions up to, and including, 2.2.14 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with Student/Parent-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12332" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/wpschoolpress/trunk/pages/wpsp-teacher.php#L49" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/wpschoolpress/trunk/pages/wpsp-teacher.php#L72" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/wpschoolpress/trunk/pages/wpsp-teacher.php#L73" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/c0248af2-f9f3-4652-bf6d-b46aa91b66f3?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:18Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-5pqq-wcr2-5cv4/GHSA-5pqq-wcr2-5cv4.json b/advisories/unreviewed/2025/01/GHSA-5pqq-wcr2-5cv4/GHSA-5pqq-wcr2-5cv4.json new file mode 100644 index 00000000000..76d644428d5 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-5pqq-wcr2-5cv4/GHSA-5pqq-wcr2-5cv4.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5pqq-wcr2-5cv4", + "modified": "2025-01-07T06:32:14Z", + "published": "2025-01-07T06:32:14Z", + "aliases": [ + "CVE-2024-12592" + ], + "details": "The Sellsy plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'testSellsy' shortcode in all versions up to, and including, 2.3.3 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12592" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/sellsy" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/9fd3610c-cce4-420c-85c1-0b71679df650?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T04:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-5q48-752v-6r5v/GHSA-5q48-752v-6r5v.json b/advisories/unreviewed/2025/01/GHSA-5q48-752v-6r5v/GHSA-5q48-752v-6r5v.json new file mode 100644 index 00000000000..9ddd86f140c --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-5q48-752v-6r5v/GHSA-5q48-752v-6r5v.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5q48-752v-6r5v", + "modified": "2025-01-07T06:32:13Z", + "published": "2025-01-07T06:32:13Z", + "aliases": [ + "CVE-2024-12098" + ], + "details": "The ARS Affiliate Page Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'utm_keyword' parameter in all versions up to, and including, 2.0.2 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12098" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/ars-affiliate-page" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/a25b2187-2ba8-4332-9f96-a003edd97ff6?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T04:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-626c-5mpc-g228/GHSA-626c-5mpc-g228.json b/advisories/unreviewed/2025/01/GHSA-626c-5mpc-g228/GHSA-626c-5mpc-g228.json new file mode 100644 index 00000000000..3ed196a7d53 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-626c-5mpc-g228/GHSA-626c-5mpc-g228.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-626c-5mpc-g228", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:15Z", + "aliases": [ + "CVE-2024-12256" + ], + "details": "The Simple Video Management System plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'analytics_video' parameter in all versions up to, and including, 1.0.4 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12256" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/simple-video-management-system" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/cdaa6b7c-bf38-44b5-9d83-2918cbedc683?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:16Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-6c2v-f643-gwhv/GHSA-6c2v-f643-gwhv.json b/advisories/unreviewed/2025/01/GHSA-6c2v-f643-gwhv/GHSA-6c2v-f643-gwhv.json new file mode 100644 index 00000000000..aa2989dd962 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-6c2v-f643-gwhv/GHSA-6c2v-f643-gwhv.json @@ -0,0 +1,48 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6c2v-f643-gwhv", + "modified": "2025-01-07T06:32:13Z", + "published": "2025-01-07T06:32:13Z", + "aliases": [ + "CVE-2024-12416" + ], + "details": "The Live Sales Notification for Woocommerce – Woomotiv plugin for WordPress is vulnerable to SQL Injection via the 'woomotiv_seen_products_.*' cookie in all versions up to, and including, 3.6.1 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12416" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/woomotiv/trunk/lib/functions.php#693" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/woomotiv/trunk/lib/functions.php#L521" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/woomotiv/trunk/lib/functions.php#L614" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/82016921-4efb-47b4-9a75-45cae4ad80f9?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T04:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-6j8w-5crv-x9xp/GHSA-6j8w-5crv-x9xp.json b/advisories/unreviewed/2025/01/GHSA-6j8w-5crv-x9xp/GHSA-6j8w-5crv-x9xp.json new file mode 100644 index 00000000000..e750bca9c16 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-6j8w-5crv-x9xp/GHSA-6j8w-5crv-x9xp.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6j8w-5crv-x9xp", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:15Z", + "aliases": [ + "CVE-2024-12140" + ], + "details": "The Elementor Addons AI Addons – 70 Widgets, Premium Templates, Ultimate Elements plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 2.2.1 via the render function due to insufficient restrictions on which templates can be included. This makes it possible for authenticated attackers, with Contributor-level access and above, to extract data from private or draft templates that they should not have access to.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12140" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/ai-addons-for-elementor/tags/2.2.1/includes/widgets/accordion.php#L958" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/ai-addons-for-elementor/tags/2.2.1/includes/widgets/tab.php#L905" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/c00d83a7-dd7a-407d-b44e-7ee0a2a1492a?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-200" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:14Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-6m8f-295j-cvx9/GHSA-6m8f-295j-cvx9.json b/advisories/unreviewed/2025/01/GHSA-6m8f-295j-cvx9/GHSA-6m8f-295j-cvx9.json new file mode 100644 index 00000000000..f595eabb032 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-6m8f-295j-cvx9/GHSA-6m8f-295j-cvx9.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6m8f-295j-cvx9", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:15Z", + "aliases": [ + "CVE-2024-12327" + ], + "details": "The LazyLoad Background Images plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the pblzbg_save_settings() function in all versions up to, and including, 1.0.7. This makes it possible for authenticated attackers, with Subscriber-level access and above, to update the plugin's settings.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12327" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/lazyload-background-images/trunk/admin/plugin-functions.php#L152" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/lazyload-background-images/trunk/admin/plugin-functions.php#L153" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/d57fa9f3-b1c0-4601-96d9-178d0dba1332?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-862" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:18Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-6rg7-6793-p4v5/GHSA-6rg7-6793-p4v5.json b/advisories/unreviewed/2025/01/GHSA-6rg7-6793-p4v5/GHSA-6rg7-6793-p4v5.json new file mode 100644 index 00000000000..5e22d506129 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-6rg7-6793-p4v5/GHSA-6rg7-6793-p4v5.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6rg7-6793-p4v5", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:15Z", + "aliases": [ + "CVE-2024-12157" + ], + "details": "The Popup – MailChimp, GetResponse and ActiveCampaign Intergrations plugin for WordPress is vulnerable to SQL Injection via the 'id' parameter of the 'upc_delete_db_record' AJAX action in all versions up to, and including, 3.2.6 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12157" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/ultimate-popup-creator" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/3e63ce97-40af-493d-9376-231a99d9bd58?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:15Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-6rwx-j9jf-q2rp/GHSA-6rwx-j9jf-q2rp.json b/advisories/unreviewed/2025/01/GHSA-6rwx-j9jf-q2rp/GHSA-6rwx-j9jf-q2rp.json new file mode 100644 index 00000000000..6a9af1d52ee --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-6rwx-j9jf-q2rp/GHSA-6rwx-j9jf-q2rp.json @@ -0,0 +1,60 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6rwx-j9jf-q2rp", + "modified": "2025-01-07T06:32:14Z", + "published": "2025-01-07T06:32:14Z", + "aliases": [ + "CVE-2024-11377" + ], + "details": "The Automate Hub Free by Sperse.IO plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'id' parameter in all versions up to, and including, 1.7.0 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11377" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/automate-hub-free-by-sperse-io/tags/1.7.0/apps/c/clickup/clickup.php#L92" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/automate-hub-free-by-sperse-io/tags/1.7.0/apps/e/encharge/encharge.php#L82" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/automate-hub-free-by-sperse-io/tags/1.7.0/apps/g/getgist/getgist.php#L85" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/automate-hub-free-by-sperse-io/tags/1.7.0/apps/g/googlecontact/googlecontact.php#L100" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/automate-hub-free-by-sperse-io/tags/1.7.0/apps/m/mailchimp/mailchimp.php#L179" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/automate-hub-free-by-sperse-io/tags/1.7.0/apps/t/teamwork/teamwork.php#L82" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/a143eb71-d039-441b-871e-d1c5cefb0529?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-6xjv-g3c6-8c52/GHSA-6xjv-g3c6-8c52.json b/advisories/unreviewed/2025/01/GHSA-6xjv-g3c6-8c52/GHSA-6xjv-g3c6-8c52.json new file mode 100644 index 00000000000..a9e974c3dc8 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-6xjv-g3c6-8c52/GHSA-6xjv-g3c6-8c52.json @@ -0,0 +1,60 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6xjv-g3c6-8c52", + "modified": "2025-01-07T06:32:16Z", + "published": "2025-01-07T06:32:16Z", + "aliases": [ + "CVE-2024-12438" + ], + "details": "The WooCommerce Digital Content Delivery (incl. DRM) – FlickRocket plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'start_date’ and 'end_date' parameters in all versions up to, and including, 4.74 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12438" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/woocommerce-digital-content-delivery-with-drm-flickrocket/trunk/woocommerce-flickrocket.php#L613" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/woocommerce-digital-content-delivery-with-drm-flickrocket/trunk/woocommerce-flickrocket.php#L614" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/woocommerce-digital-content-delivery-with-drm-flickrocket/trunk/woocommerce-flickrocket.php#L629" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/woocommerce-digital-content-delivery-with-drm-flickrocket/trunk/woocommerce-flickrocket.php#L632" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/woocommerce-digital-content-delivery-with-drm-flickrocket/trunk/woocommerce-flickrocket.php#L655" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/woocommerce-digital-content-delivery-with-drm-flickrocket/trunk/woocommerce-flickrocket.php#L658" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/aa3909f6-fd2f-44e7-83b5-51c8cda4b20f?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T06:15:16Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-73wj-7q98-76pq/GHSA-73wj-7q98-76pq.json b/advisories/unreviewed/2025/01/GHSA-73wj-7q98-76pq/GHSA-73wj-7q98-76pq.json new file mode 100644 index 00000000000..91446f67cb2 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-73wj-7q98-76pq/GHSA-73wj-7q98-76pq.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-73wj-7q98-76pq", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:15Z", + "aliases": [ + "CVE-2024-12288" + ], + "details": "The Simple add pages or posts plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.0.0. This is due to missing or incorrect nonce validation. This makes it possible for unauthenticated attackers to update settings and inject malicious web scripts via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12288" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/simple-add-pages-or-posts/tags/2.0.0/form.php#L243" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/simple-add-pages-or-posts/#developers" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/506f101c-ffec-415d-92dc-99cb7384af95?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-352" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-76rf-4h55-3cr9/GHSA-76rf-4h55-3cr9.json b/advisories/unreviewed/2025/01/GHSA-76rf-4h55-3cr9/GHSA-76rf-4h55-3cr9.json new file mode 100644 index 00000000000..a642bdd9e33 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-76rf-4h55-3cr9/GHSA-76rf-4h55-3cr9.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-76rf-4h55-3cr9", + "modified": "2025-01-07T06:32:14Z", + "published": "2025-01-07T06:32:14Z", + "aliases": [ + "CVE-2024-11290" + ], + "details": "The Member Access plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.1.6 via the WordPress core search feature. This makes it possible for unauthenticated attackers to extract sensitive data from posts that have been restricted to higher-level roles such as administrator.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11290" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/member-access/#developers" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/a4c7c448-fe9d-496d-84f2-0da8d1e13d64?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-200" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-7phv-qjmj-g6f4/GHSA-7phv-qjmj-g6f4.json b/advisories/unreviewed/2025/01/GHSA-7phv-qjmj-g6f4/GHSA-7phv-qjmj-g6f4.json new file mode 100644 index 00000000000..d8d86faf006 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-7phv-qjmj-g6f4/GHSA-7phv-qjmj-g6f4.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7phv-qjmj-g6f4", + "modified": "2025-01-07T06:32:16Z", + "published": "2025-01-07T06:32:16Z", + "aliases": [ + "CVE-2024-11756" + ], + "details": "The SweepWidget Contests, Giveaways, Photo Contests, Competitions plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'sweepwidget' shortcode in all versions up to, and including, 2.0.6 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11756" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/sweepwidget/trunk/sweepwidget.php#L936" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/f1ec6957-28c0-4441-8801-80b226569df9?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T06:15:14Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-86qf-447q-2wv4/GHSA-86qf-447q-2wv4.json b/advisories/unreviewed/2025/01/GHSA-86qf-447q-2wv4/GHSA-86qf-447q-2wv4.json new file mode 100644 index 00000000000..f960faae1bc --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-86qf-447q-2wv4/GHSA-86qf-447q-2wv4.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-86qf-447q-2wv4", + "modified": "2025-01-07T06:32:14Z", + "published": "2025-01-07T06:32:14Z", + "aliases": [ + "CVE-2024-11375" + ], + "details": "The WC1C plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 0.23.0. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11375" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/wc1c-main/tags/0.23.0/views/promo/activation.php#L25" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/52293a10-4240-4a6b-a05b-33675a4ed6b6?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-899p-f2mf-g895/GHSA-899p-f2mf-g895.json b/advisories/unreviewed/2025/01/GHSA-899p-f2mf-g895/GHSA-899p-f2mf-g895.json new file mode 100644 index 00000000000..9f834330c1c --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-899p-f2mf-g895/GHSA-899p-f2mf-g895.json @@ -0,0 +1,48 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-899p-f2mf-g895", + "modified": "2025-01-07T06:32:16Z", + "published": "2025-01-07T06:32:16Z", + "aliases": [ + "CVE-2024-12849" + ], + "details": "The Error Log Viewer By WP Guru plugin for WordPress is vulnerable to Arbitrary File Read in all versions up to, and including, 1.0.1.3 via the wp_ajax_nopriv_elvwp_log_download AJAX action. This makes it possible for unauthenticated attackers to read the contents of arbitrary files on the server, which can contain sensitive information.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12849" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/error-log-viewer-wp/tags/1.0.1.3/error-log-viewer-wp.php#L295" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/error-log-viewer-wp/tags/1.0.1.3/error-log-viewer-wp.php#L479" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3215563%40error-log-viewer-wp&new=3215563%40error-log-viewer-wp&sfp_email=&sfph_mail=#file10" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/57888e36-3a61-4452-b4ea-9db9e422dc2d?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-22" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T06:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-8hrr-q2mr-mvpj/GHSA-8hrr-q2mr-mvpj.json b/advisories/unreviewed/2025/01/GHSA-8hrr-q2mr-mvpj/GHSA-8hrr-q2mr-mvpj.json new file mode 100644 index 00000000000..b2ba822cd8f --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-8hrr-q2mr-mvpj/GHSA-8hrr-q2mr-mvpj.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8hrr-q2mr-mvpj", + "modified": "2025-01-07T06:32:14Z", + "published": "2025-01-07T06:32:14Z", + "aliases": [ + "CVE-2024-12541" + ], + "details": "The Chative Live chat and Chatbot plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.1. This is due to missing or incorrect nonce validation on the add_chative_widget_action() function. This makes it possible for unauthenticated attackers to change the channel ID or organization ID via a forged request granted they can trick a site administrator into performing an action such as clicking on a link. This could lead to redirecting the live chat widget to an attacker-controlled channel.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12541" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/chative-live-chat-and-chatbot/trunk/chative-plugin.php#L51" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/chative-live-chat-and-chatbot/#developers" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/61d3cb97-f12b-4480-88fc-2bdcbf4cdae3?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-352" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T04:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-8mxh-w9w9-hrmg/GHSA-8mxh-w9w9-hrmg.json b/advisories/unreviewed/2025/01/GHSA-8mxh-w9w9-hrmg/GHSA-8mxh-w9w9-hrmg.json new file mode 100644 index 00000000000..5f95eca3c8f --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-8mxh-w9w9-hrmg/GHSA-8mxh-w9w9-hrmg.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8mxh-w9w9-hrmg", + "modified": "2025-01-07T06:32:16Z", + "published": "2025-01-07T06:32:16Z", + "aliases": [ + "CVE-2024-10536" + ], + "details": "The FancyPost – Best Ultimate Post Block, Post Grid, Layouts, Carousel, Slider For Gutenberg & Elementor plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the handle_block_shortcode_export() function in all versions up to, and including, 6.0.0. This makes it possible for authenticated attackers, with Subscriber-level access and above, to export shortcodes.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10536" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/post-block/trunk/custom-fields/options/admin-backup.php#L171" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/e573648e-215f-4858-a4d3-a3e85119dbcf?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-862" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T06:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-8q9f-gmmq-64wc/GHSA-8q9f-gmmq-64wc.json b/advisories/unreviewed/2025/01/GHSA-8q9f-gmmq-64wc/GHSA-8q9f-gmmq-64wc.json new file mode 100644 index 00000000000..c06f664ae19 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-8q9f-gmmq-64wc/GHSA-8q9f-gmmq-64wc.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8q9f-gmmq-64wc", + "modified": "2025-01-07T06:32:16Z", + "published": "2025-01-07T06:32:16Z", + "aliases": [ + "CVE-2024-7696" + ], + "details": "Seth Fogie, member of AXIS Camera Station Pro Bug Bounty Program, has found that it is possible for an authenticated malicious client to tamper with audit log creation in AXIS Camera Station, or perform a Denial-of-Service attack on the AXIS Camera Station server using maliciously crafted audit log entries. \nAxis has released a patched version for the highlighted flaw. Please \nrefer to the Axis security advisory for more information and solution.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-7696" + }, + { + "type": "WEB", + "url": "https://www.axis.com/dam/public/b3/53/03/cve-2024-7696-en-US-459552.pdf" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-117" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T06:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-957p-6rqp-3h96/GHSA-957p-6rqp-3h96.json b/advisories/unreviewed/2025/01/GHSA-957p-6rqp-3h96/GHSA-957p-6rqp-3h96.json new file mode 100644 index 00000000000..2d5ce7f3e9d --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-957p-6rqp-3h96/GHSA-957p-6rqp-3h96.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-957p-6rqp-3h96", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:15Z", + "aliases": [ + "CVE-2024-11810" + ], + "details": "The PayGreen Payment Gateway plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'message_id' parameter in all versions up to, and including, 1.0.26 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11810" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/paygreen-payment-gateway" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/e5438f82-2428-44ba-a7c8-e34d80804063?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-97rg-9gmc-jmqp/GHSA-97rg-9gmc-jmqp.json b/advisories/unreviewed/2025/01/GHSA-97rg-9gmc-jmqp/GHSA-97rg-9gmc-jmqp.json new file mode 100644 index 00000000000..3fe7b48bd4b --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-97rg-9gmc-jmqp/GHSA-97rg-9gmc-jmqp.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-97rg-9gmc-jmqp", + "modified": "2025-01-07T06:32:14Z", + "published": "2025-01-07T06:32:14Z", + "aliases": [ + "CVE-2024-11378" + ], + "details": "The Bizapp for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'error' parameter in all versions up to, and including, 2.0.8 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11378" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/bizapp-for-woocommerce/trunk/admin/class-bizapp-woocommerce-order.php#L599" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/45cf9e0e-3a8a-400a-b766-7b352e739b7c?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-9g93-pxpv-276m/GHSA-9g93-pxpv-276m.json b/advisories/unreviewed/2025/01/GHSA-9g93-pxpv-276m/GHSA-9g93-pxpv-276m.json new file mode 100644 index 00000000000..19a26a4bffb --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-9g93-pxpv-276m/GHSA-9g93-pxpv-276m.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9g93-pxpv-276m", + "modified": "2025-01-07T06:32:16Z", + "published": "2025-01-07T06:32:16Z", + "aliases": [ + "CVE-2024-12470" + ], + "details": "The School Management System – SakolaWP plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 1.0.8. This is due to the registration function not properly limiting what roles a user can register as. This makes it possible for unauthenticated attackers to register as an administrative user.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12470" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/sakolawp-lite" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/db1c581b-5cc9-46c0-ba5d-605642697729?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-266" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:19Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-9wjh-8hh3-jqxr/GHSA-9wjh-8hh3-jqxr.json b/advisories/unreviewed/2025/01/GHSA-9wjh-8hh3-jqxr/GHSA-9wjh-8hh3-jqxr.json new file mode 100644 index 00000000000..7941118d998 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-9wjh-8hh3-jqxr/GHSA-9wjh-8hh3-jqxr.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9wjh-8hh3-jqxr", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:15Z", + "aliases": [ + "CVE-2024-12324" + ], + "details": "The Unilevel MLM Plan plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘page’ parameter in all versions up to, and including, 1.1.0 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12324" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/unilevel-mlm-plan/trunk/includes/admin/settings/view/ump-epins-list.php#L81" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/fe71e2b9-ddd7-4d6d-97e5-5fad41f8f35c?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:18Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-9x47-pg59-593c/GHSA-9x47-pg59-593c.json b/advisories/unreviewed/2025/01/GHSA-9x47-pg59-593c/GHSA-9x47-pg59-593c.json new file mode 100644 index 00000000000..c00086e746c --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-9x47-pg59-593c/GHSA-9x47-pg59-593c.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9x47-pg59-593c", + "modified": "2025-01-07T06:32:13Z", + "published": "2025-01-07T06:32:13Z", + "aliases": [ + "CVE-2024-11777" + ], + "details": "The Sell Media plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'sell_media_search_form_gutenberg' shortcode in all versions up to, and including, 2.5.8.5 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11777" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/sell-media/trunk//gutenberg/blocks/sell-media-search-form/sell-media-search-form.php#L219" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/sell-media" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/8a35f0bb-691f-4acf-a30d-4ddabe3b919c?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T04:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-c9m5-94qg-42px/GHSA-c9m5-94qg-42px.json b/advisories/unreviewed/2025/01/GHSA-c9m5-94qg-42px/GHSA-c9m5-94qg-42px.json new file mode 100644 index 00000000000..e984c193069 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-c9m5-94qg-42px/GHSA-c9m5-94qg-42px.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-c9m5-94qg-42px", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:15Z", + "aliases": [ + "CVE-2024-12126" + ], + "details": "The SEO Keywords plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘google_error’ parameter in all versions up to, and including, 1.1.3 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12126" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/seo-keywords/#developers" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/325c2350-174b-4117-bacd-ae28bf3b16bc?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:14Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-cfgr-f4jj-3jjf/GHSA-cfgr-f4jj-3jjf.json b/advisories/unreviewed/2025/01/GHSA-cfgr-f4jj-3jjf/GHSA-cfgr-f4jj-3jjf.json new file mode 100644 index 00000000000..24d9d1ae715 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-cfgr-f4jj-3jjf/GHSA-cfgr-f4jj-3jjf.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cfgr-f4jj-3jjf", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:15Z", + "aliases": [ + "CVE-2024-12435" + ], + "details": "The Compare Products for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘s_feature’ parameter in all versions up to, and including, 3.2.1 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12435" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/woocommerce-compare-products/trunk/admin/classes/class-wc-compare-fields.php#L392" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/woocommerce-compare-products/trunk/admin/classes/class-wc-compare-fields.php#L397" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/f74c419a-56de-4190-925d-876d32f712e1?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:18Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-chhw-29mw-7v5p/GHSA-chhw-29mw-7v5p.json b/advisories/unreviewed/2025/01/GHSA-chhw-29mw-7v5p/GHSA-chhw-29mw-7v5p.json new file mode 100644 index 00000000000..638a5197309 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-chhw-29mw-7v5p/GHSA-chhw-29mw-7v5p.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-chhw-29mw-7v5p", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:15Z", + "aliases": [ + "CVE-2024-12322" + ], + "details": "The ThePerfectWedding.nl Widget plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.8. This is due to missing or incorrect nonce validation on the 'update_option' function. This makes it possible for unauthenticated attackers to update the 'tpwKey' option with stored cross-site scripting via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12322" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/theperfectweddingnl-widget/trunk/admin/tpwAdminPanelTemplate.php#L28" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/theperfectweddingnl-widget/trunk/admin/tpwAdminPanelTemplate.php#L4" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/theperfectweddingnl-widget/trunk/admin/tpwAdminPanelTemplate.php#L48" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/theperfectweddingnl-widget/trunk/admin/tpwAdminPanelTemplate.php#L5" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/e996f71a-f0b9-4e10-873e-a0299a099dce?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-352" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:18Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-crq7-ccpx-cj9j/GHSA-crq7-ccpx-cj9j.json b/advisories/unreviewed/2025/01/GHSA-crq7-ccpx-cj9j/GHSA-crq7-ccpx-cj9j.json new file mode 100644 index 00000000000..6811ca80257 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-crq7-ccpx-cj9j/GHSA-crq7-ccpx-cj9j.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-crq7-ccpx-cj9j", + "modified": "2025-01-07T06:32:14Z", + "published": "2025-01-07T06:32:14Z", + "aliases": [ + "CVE-2024-11434" + ], + "details": "The WP – Bulk SMS – by SMS.to plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'page' parameter in all versions up to, and including, 1.0.12 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11434" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/wp-bulk-sms/trunk/includes/admin/outbox/class-wpsmstobulk-outbox.php#L171" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/17acbf24-b0ae-42c8-af8f-17e82213507d?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-cvfc-9w6x-3w3f/GHSA-cvfc-9w6x-3w3f.json b/advisories/unreviewed/2025/01/GHSA-cvfc-9w6x-3w3f/GHSA-cvfc-9w6x-3w3f.json new file mode 100644 index 00000000000..564d44ddbfb --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-cvfc-9w6x-3w3f/GHSA-cvfc-9w6x-3w3f.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cvfc-9w6x-3w3f", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:14Z", + "aliases": [ + "CVE-2024-11690" + ], + "details": "The Financial Stocks & Crypto Market Data Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'e' parameter in all versions up to, and including, 1.10.3 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11690" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/live-stock-prices-for-wordpress" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/210e9d94-ae2a-4dd9-a151-0bafbac68d18?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-f2vq-9q5q-2mhf/GHSA-f2vq-9q5q-2mhf.json b/advisories/unreviewed/2025/01/GHSA-f2vq-9q5q-2mhf/GHSA-f2vq-9q5q-2mhf.json new file mode 100644 index 00000000000..69bb43f0c78 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-f2vq-9q5q-2mhf/GHSA-f2vq-9q5q-2mhf.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-f2vq-9q5q-2mhf", + "modified": "2025-01-07T06:32:16Z", + "published": "2025-01-07T06:32:16Z", + "aliases": [ + "CVE-2024-12633" + ], + "details": "The JoomSport – for Sports: Team & League, Football, Hockey & more plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘page parameter in all versions up to, and including, 5.6.17 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12633" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3209054/joomsport-sports-league-results-management" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/b4503e2c-0d0d-45de-a597-baace44a98a7?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T06:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-f4c2-gjpx-86v3/GHSA-f4c2-gjpx-86v3.json b/advisories/unreviewed/2025/01/GHSA-f4c2-gjpx-86v3/GHSA-f4c2-gjpx-86v3.json new file mode 100644 index 00000000000..6ce69a3eb50 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-f4c2-gjpx-86v3/GHSA-f4c2-gjpx-86v3.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-f4c2-gjpx-86v3", + "modified": "2025-01-07T06:32:16Z", + "published": "2025-01-07T06:32:16Z", + "aliases": [ + "CVE-2024-12073" + ], + "details": "The Meteor Slides plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'slide_url_value' parameter in all versions up to, and including, 1.5.7 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12073" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/meteor-slides" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/be913494-f4a7-4718-ac2b-da4baf2b0a21?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T06:15:15Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-f787-2vh3-f54g/GHSA-f787-2vh3-f54g.json b/advisories/unreviewed/2025/01/GHSA-f787-2vh3-f54g/GHSA-f787-2vh3-f54g.json new file mode 100644 index 00000000000..e2a4cb978db --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-f787-2vh3-f54g/GHSA-f787-2vh3-f54g.json @@ -0,0 +1,48 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-f787-2vh3-f54g", + "modified": "2025-01-07T06:32:16Z", + "published": "2025-01-07T06:32:16Z", + "aliases": [ + "CVE-2024-12383" + ], + "details": "The Binary MLM Woocommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.0. This is due to missing or incorrect nonce validation on the 'bmw_display_pv_set_page' function and insufficient input sanitization and output escaping of the 'product_points' parameter. This makes it possible for unauthenticated attackers to inject arbitrary web scripts via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12383" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/woo-binary-mlm/trunk/includes/admin/point_setting.php#L7" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/woo-binary-mlm/trunk/includes/admin/point_setting.php#L92" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/woo-binary-mlm/trunk/includes/admin/point_setting.php#L96" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/b061fbf2-4bb3-4ccc-ba90-1e947365435e?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-352" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T06:15:15Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-f8c3-q6gm-6v3x/GHSA-f8c3-q6gm-6v3x.json b/advisories/unreviewed/2025/01/GHSA-f8c3-q6gm-6v3x/GHSA-f8c3-q6gm-6v3x.json new file mode 100644 index 00000000000..6f720db913f --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-f8c3-q6gm-6v3x/GHSA-f8c3-q6gm-6v3x.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-f8c3-q6gm-6v3x", + "modified": "2025-01-07T06:32:16Z", + "published": "2025-01-07T06:32:16Z", + "aliases": [ + "CVE-2024-8857" + ], + "details": "The WordPress Auction Plugin WordPress plugin through 3.7 does not sanitise and escape some of its settings, which could allow high privilege users such as editors to perform Stored Cross-Site Scripting attacks.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8857" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/08ca6daa-09f4-4604-ac9e-15a1b33d599d" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T06:15:18Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-fgpj-96v3-cqcc/GHSA-fgpj-96v3-cqcc.json b/advisories/unreviewed/2025/01/GHSA-fgpj-96v3-cqcc/GHSA-fgpj-96v3-cqcc.json new file mode 100644 index 00000000000..4f8ecc19fab --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-fgpj-96v3-cqcc/GHSA-fgpj-96v3-cqcc.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fgpj-96v3-cqcc", + "modified": "2025-01-07T06:32:16Z", + "published": "2025-01-07T06:32:16Z", + "aliases": [ + "CVE-2024-11749" + ], + "details": "The App Embed plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'appizy' shortcode in all versions up to, and including, 2.3.2 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11749" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3216285%40appizy-app-embed&new=3216285%40appizy-app-embed&sfp_email=&sfph_mail=" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/111a0507-aa51-4e4e-a582-9007041c811b?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T06:15:14Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-fx7f-p833-4c8p/GHSA-fx7f-p833-4c8p.json b/advisories/unreviewed/2025/01/GHSA-fx7f-p833-4c8p/GHSA-fx7f-p833-4c8p.json new file mode 100644 index 00000000000..8e7c716b702 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-fx7f-p833-4c8p/GHSA-fx7f-p833-4c8p.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fx7f-p833-4c8p", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:15Z", + "aliases": [ + "CVE-2024-12457" + ], + "details": "The Chat Support for Viber – Chat Bubble and Chat Button for Gutenberg, Elementor and Shortcode plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'vchat' shortcode in all versions up to, and including, 1.7.2 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12457" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/chat-viber/tags/1.7.2/inc/class-custom-buttons-templates.php#L51" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/7834c0be-3051-4d97-928e-cf5295c93463?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:19Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-gmgr-9rmh-vh8c/GHSA-gmgr-9rmh-vh8c.json b/advisories/unreviewed/2025/01/GHSA-gmgr-9rmh-vh8c/GHSA-gmgr-9rmh-vh8c.json new file mode 100644 index 00000000000..d8f41aef4b4 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-gmgr-9rmh-vh8c/GHSA-gmgr-9rmh-vh8c.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gmgr-9rmh-vh8c", + "modified": "2025-01-07T06:32:16Z", + "published": "2025-01-07T06:32:16Z", + "aliases": [ + "CVE-2024-12440" + ], + "details": "The Candifly plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'candifly' shortcode in all versions up to, and including, 1.0.6 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12440" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/candifly/trunk/candifly.php" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/candifly" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/bf173ccd-23bc-49ec-92e0-032feae0fa4a?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T06:15:16Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-gpww-5rqj-3jh7/GHSA-gpww-5rqj-3jh7.json b/advisories/unreviewed/2025/01/GHSA-gpww-5rqj-3jh7/GHSA-gpww-5rqj-3jh7.json new file mode 100644 index 00000000000..24855be50fc --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-gpww-5rqj-3jh7/GHSA-gpww-5rqj-3jh7.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gpww-5rqj-3jh7", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:15Z", + "aliases": [ + "CVE-2024-12264" + ], + "details": "The PayU CommercePro Plugin plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 3.8.3. This is due to /wp-json/payu/v1/generate-user-token and /wp-json/payu/v1/get-shipping-cost REST API endpoints not properly verifying a user's identity prior to setting the users ID and auth cookies. This makes it possible for unauthenticated attackers to create new administrative user accounts.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12264" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/payu-india/tags/3.8.3/includes/class-payu-shipping-tax-api-calculation.php#L187" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/bf037e4a-2dd7-4296-b86b-635901d2d68f?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-287" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-gxw6-23qm-f8vw/GHSA-gxw6-23qm-f8vw.json b/advisories/unreviewed/2025/01/GHSA-gxw6-23qm-f8vw/GHSA-gxw6-23qm-f8vw.json new file mode 100644 index 00000000000..b49c2526795 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-gxw6-23qm-f8vw/GHSA-gxw6-23qm-f8vw.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gxw6-23qm-f8vw", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:15Z", + "aliases": [ + "CVE-2024-12176" + ], + "details": "The WordLift – AI powered SEO – Schema plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the 'wl_config_plugin' AJAX action in all versions up to, and including, 3.54.0. This makes it possible for unauthenticated attackers to update the plugin's settings.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12176" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/wordlift" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/ca6bdde6-f381-4ccb-8984-519cf9aca0b1?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-862" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:15Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-hggj-xw9j-66ph/GHSA-hggj-xw9j-66ph.json b/advisories/unreviewed/2025/01/GHSA-hggj-xw9j-66ph/GHSA-hggj-xw9j-66ph.json new file mode 100644 index 00000000000..bce9063393f --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-hggj-xw9j-66ph/GHSA-hggj-xw9j-66ph.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-hggj-xw9j-66ph", + "modified": "2025-01-07T06:32:16Z", + "published": "2025-01-07T06:32:16Z", + "aliases": [ + "CVE-2024-9702" + ], + "details": "The Social Rocket – Social Sharing Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'socialrocket-floating' shortcode in all versions up to, and including, 1.3.4 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9702" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/social-rocket" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/8d4d948e-359e-4514-9c8f-dbd8198ef4fe?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T06:15:18Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-hv98-m6w4-qrr6/GHSA-hv98-m6w4-qrr6.json b/advisories/unreviewed/2025/01/GHSA-hv98-m6w4-qrr6/GHSA-hv98-m6w4-qrr6.json new file mode 100644 index 00000000000..f5b61dfea3e --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-hv98-m6w4-qrr6/GHSA-hv98-m6w4-qrr6.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-hv98-m6w4-qrr6", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:15Z", + "aliases": [ + "CVE-2024-12170" + ], + "details": "The ViewMedica 9 plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.4.15. This is due to missing or incorrect nonce validation on the 'Viewmedica-Admin' page. This makes it possible for unauthenticated attackers to inject arbitrary SQL queries via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12170" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/viewmedica" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/58209530-9e68-4d2c-a723-e6a164db7f46?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-352" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:15Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-j59p-hrrw-r2fq/GHSA-j59p-hrrw-r2fq.json b/advisories/unreviewed/2025/01/GHSA-j59p-hrrw-r2fq/GHSA-j59p-hrrw-r2fq.json new file mode 100644 index 00000000000..e7a0f81aa3e --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-j59p-hrrw-r2fq/GHSA-j59p-hrrw-r2fq.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-j59p-hrrw-r2fq", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:14Z", + "aliases": [ + "CVE-2024-11496" + ], + "details": "The Infility Global plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the infility_global_ajax function in all versions up to, and including, 2.9.8. This makes it possible for authenticated attackers, with Subscriber-level access and above, to update plugin options and potentially break the site.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11496" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/infility-global/trunk/include/class/action.class.php#L80" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/infility-global/trunk/infility_global.php#L121" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/d0fd1c19-b752-4562-9365-165d709b91b2?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-862" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-jf76-w4vp-r5jp/GHSA-jf76-w4vp-r5jp.json b/advisories/unreviewed/2025/01/GHSA-jf76-w4vp-r5jp/GHSA-jf76-w4vp-r5jp.json new file mode 100644 index 00000000000..e424c33da16 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-jf76-w4vp-r5jp/GHSA-jf76-w4vp-r5jp.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-jf76-w4vp-r5jp", + "modified": "2025-01-07T06:32:13Z", + "published": "2025-01-07T06:32:13Z", + "aliases": [ + "CVE-2024-11899" + ], + "details": "The Slider Pro Lite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'sliderpro' shortcode in all versions up to, and including, 1.4.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11899" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/slider-pro-lite/tags/1.4.1/public/class-slider-renderer.php#L181" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/slider-pro-lite/tags/1.4.1/public/class-sliderpro.php#L310" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/slider-pro-lite/tags/1.4.1/public/class-sliderpro.php#L447" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/slider-pro-lite/tags/1.4.1/public/class-sliderpro.php#L98" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/d10036de-940f-4772-9aca-13bc647548d2?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T04:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-jhwf-mh9m-vpmc/GHSA-jhwf-mh9m-vpmc.json b/advisories/unreviewed/2025/01/GHSA-jhwf-mh9m-vpmc/GHSA-jhwf-mh9m-vpmc.json new file mode 100644 index 00000000000..6b90f142266 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-jhwf-mh9m-vpmc/GHSA-jhwf-mh9m-vpmc.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-jhwf-mh9m-vpmc", + "modified": "2025-01-07T06:32:16Z", + "published": "2025-01-07T06:32:16Z", + "aliases": [ + "CVE-2024-9208" + ], + "details": "The Enable Accessibility plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg & remove_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.4.1. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9208" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/enable-accessibility/tags/1.4.1/includes/accessibility-attachments-alt.php#L62" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/da125e31-4747-46b7-8a46-a234388035c0?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:20Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-jqcq-jw7m-gpr4/GHSA-jqcq-jw7m-gpr4.json b/advisories/unreviewed/2025/01/GHSA-jqcq-jw7m-gpr4/GHSA-jqcq-jw7m-gpr4.json new file mode 100644 index 00000000000..d1c21727107 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-jqcq-jw7m-gpr4/GHSA-jqcq-jw7m-gpr4.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-jqcq-jw7m-gpr4", + "modified": "2025-01-07T06:32:14Z", + "published": "2025-01-07T06:32:14Z", + "aliases": [ + "CVE-2024-12540" + ], + "details": "The LDD Directory Lite plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of remove_query_arg without appropriate escaping on the URL in all versions up to, and including, 3.3. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12540" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/ldd-directory-lite/trunk/templates/frontend/edit-submit.php#L10" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/ldd-directory-lite/#developers" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/f7675e1c-7194-4cfe-81fb-a78d75e0bb1e?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T04:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-jwfx-xhgw-72r8/GHSA-jwfx-xhgw-72r8.json b/advisories/unreviewed/2025/01/GHSA-jwfx-xhgw-72r8/GHSA-jwfx-xhgw-72r8.json new file mode 100644 index 00000000000..47ef7d04fed --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-jwfx-xhgw-72r8/GHSA-jwfx-xhgw-72r8.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-jwfx-xhgw-72r8", + "modified": "2025-01-07T06:32:14Z", + "published": "2025-01-07T06:32:14Z", + "aliases": [ + "CVE-2024-11337" + ], + "details": "The Horoscope And Tarot plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'divine_horoscope' shortcode in all versions up to, and including, 1.3.0 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11337" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/horoscope-and-tarot" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/6d833338-a343-446f-a3f1-cb5e2cff6585?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-m9w7-x276-wvm2/GHSA-m9w7-x276-wvm2.json b/advisories/unreviewed/2025/01/GHSA-m9w7-x276-wvm2/GHSA-m9w7-x276-wvm2.json new file mode 100644 index 00000000000..3a8b8799447 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-m9w7-x276-wvm2/GHSA-m9w7-x276-wvm2.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-m9w7-x276-wvm2", + "modified": "2025-01-07T06:32:16Z", + "published": "2025-01-07T06:32:16Z", + "aliases": [ + "CVE-2024-12439" + ], + "details": "The Marketplace Items plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'marketplace' shortcode in all versions up to, and including, 1.5.5 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12439" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/marketplace-items/trunk/marketplace-items.php" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/marketplace-items" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/602ae805-a6a6-48bd-bd2a-00fafadfdce4?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T06:15:16Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-mhjf-ch2g-f5c3/GHSA-mhjf-ch2g-f5c3.json b/advisories/unreviewed/2025/01/GHSA-mhjf-ch2g-f5c3/GHSA-mhjf-ch2g-f5c3.json new file mode 100644 index 00000000000..8d5dcef41bb --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-mhjf-ch2g-f5c3/GHSA-mhjf-ch2g-f5c3.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mhjf-ch2g-f5c3", + "modified": "2025-01-07T06:32:13Z", + "published": "2025-01-07T06:32:13Z", + "aliases": [ + "CVE-2024-12402" + ], + "details": "The Themes Coder – Create Android & iOS Apps For Your Woocommerce Site plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 1.3.4. This is due to the plugin not properly validating a user's identity prior to updating their password through the update_user_profile() function. This makes it possible for unauthenticated attackers to change arbitrary user's passwords, including administrators, and leverage that to gain access to their account.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12402" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/tc-ecommerce/trunk/controller/app_user.php#L338" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/1ec14b1e-6d1a-4451-9fce-ac064623d92f?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-288" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T04:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-p3wm-hf9c-vv27/GHSA-p3wm-hf9c-vv27.json b/advisories/unreviewed/2025/01/GHSA-p3wm-hf9c-vv27/GHSA-p3wm-hf9c-vv27.json new file mode 100644 index 00000000000..3be3b049042 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-p3wm-hf9c-vv27/GHSA-p3wm-hf9c-vv27.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p3wm-hf9c-vv27", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:15Z", + "aliases": [ + "CVE-2024-12313" + ], + "details": "The Compare Products for WooCommerce plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 3.2.1 via deserialization of untrusted input from the 'woo_compare_list' cookie. This makes it possible for unauthenticated attackers to inject a PHP Object. No known POP chain is present in the vulnerable software. If a POP chain is present via an additional plugin or theme installed on the target system, it could allow the attacker to delete arbitrary files, retrieve sensitive data, or execute code.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12313" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/woocommerce-compare-products/trunk/classes/class-wc-compare-functions.php#L219" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/woocommerce-compare-products/trunk/classes/class-wc-compare-functions.php#L237" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/woocommerce-compare-products/trunk/classes/class-wc-compare-functions.php#L256" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/woocommerce-compare-products/trunk/classes/class-wc-compare-functions.php#L275" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/638e8e67-38b3-4fc4-bd77-8f268030a93a?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-502" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-p6cg-q445-g68f/GHSA-p6cg-q445-g68f.json b/advisories/unreviewed/2025/01/GHSA-p6cg-q445-g68f/GHSA-p6cg-q445-g68f.json new file mode 100644 index 00000000000..4490d10792a --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-p6cg-q445-g68f/GHSA-p6cg-q445-g68f.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p6cg-q445-g68f", + "modified": "2025-01-07T06:32:13Z", + "published": "2025-01-07T06:32:13Z", + "aliases": [ + "CVE-2024-11934" + ], + "details": "The Formaloo Form Maker & Customer Analytics for WordPress & WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘address’ parameter in all versions up to, and including, 2.1.3.2 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11934" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/formaloo-form-builder/trunk/formaloo.php#L431" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/formaloo-form-builder/#developers" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/4b7ddf44-a1d2-4042-9219-591ebc8e4250?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T04:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-p9mp-q42m-g65q/GHSA-p9mp-q42m-g65q.json b/advisories/unreviewed/2025/01/GHSA-p9mp-q42m-g65q/GHSA-p9mp-q42m-g65q.json new file mode 100644 index 00000000000..d9f977ee3f9 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-p9mp-q42m-g65q/GHSA-p9mp-q42m-g65q.json @@ -0,0 +1,48 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p9mp-q42m-g65q", + "modified": "2025-01-07T06:32:16Z", + "published": "2025-01-07T06:32:16Z", + "aliases": [ + "CVE-2024-9697" + ], + "details": "The Social Rocket – Social Sharing Plugin plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the tweet_settings_save() and tweet_settings_update() functions in all versions up to, and including, 1.3.4. This makes it possible for authenticated attackers, with Subscriber-level access and above, to update the plugin's settings.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9697" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/social-rocket/trunk/admin/includes/class-social-rocket-admin.php#L39" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/social-rocket/trunk/admin/includes/class-social-rocket-admin.php#L5501" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/social-rocket/trunk/admin/includes/class-social-rocket-admin.php#L5531" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/168dd2d4-bffb-4187-afc7-02fef8cb51a7?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-862" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T06:15:18Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-pcrh-m29w-9hmh/GHSA-pcrh-m29w-9hmh.json b/advisories/unreviewed/2025/01/GHSA-pcrh-m29w-9hmh/GHSA-pcrh-m29w-9hmh.json new file mode 100644 index 00000000000..85af01841dd --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-pcrh-m29w-9hmh/GHSA-pcrh-m29w-9hmh.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-pcrh-m29w-9hmh", + "modified": "2025-01-07T06:32:14Z", + "published": "2025-01-07T06:32:14Z", + "aliases": [ + "CVE-2024-11338" + ], + "details": "The PIXNET Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'gtm' and 'venue' parameters in all versions up to, and including, 2.9.10 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Subscriber-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11338" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/pixnet" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/165bafd4-0cef-4936-af21-6a8ffcfccaef?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-pf3c-qwr7-fjcj/GHSA-pf3c-qwr7-fjcj.json b/advisories/unreviewed/2025/01/GHSA-pf3c-qwr7-fjcj/GHSA-pf3c-qwr7-fjcj.json new file mode 100644 index 00000000000..fe7118dfae7 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-pf3c-qwr7-fjcj/GHSA-pf3c-qwr7-fjcj.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-pf3c-qwr7-fjcj", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:15Z", + "aliases": [ + "CVE-2024-12462" + ], + "details": "The YOGO Booking plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'yogo-calendar' shortcode in all versions up to, and including, 1.6.2 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12462" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/yogo-booking/trunk/src/shortcodes.php#L13" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/yogo-booking" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/151b0aa9-c5c9-48ab-8b73-22ee42666824?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:19Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-pfpv-3jq9-6fvw/GHSA-pfpv-3jq9-6fvw.json b/advisories/unreviewed/2025/01/GHSA-pfpv-3jq9-6fvw/GHSA-pfpv-3jq9-6fvw.json new file mode 100644 index 00000000000..34d35a0cbe8 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-pfpv-3jq9-6fvw/GHSA-pfpv-3jq9-6fvw.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-pfpv-3jq9-6fvw", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:15Z", + "aliases": [ + "CVE-2024-12445" + ], + "details": "The RightMessage WP plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'rm_area' shortcode in all versions up to, and including, 0.9.7 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12445" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/rightmessage/trunk/includes/class-rightmessage.php#L45" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/rightmessage" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/efbbb33d-28ed-47f4-a8dd-2fc7564d9df2?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:19Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-pgpc-4xx9-5qrm/GHSA-pgpc-4xx9-5qrm.json b/advisories/unreviewed/2025/01/GHSA-pgpc-4xx9-5qrm/GHSA-pgpc-4xx9-5qrm.json new file mode 100644 index 00000000000..dbdcf5f9431 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-pgpc-4xx9-5qrm/GHSA-pgpc-4xx9-5qrm.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-pgpc-4xx9-5qrm", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:15Z", + "aliases": [ + "CVE-2024-12291" + ], + "details": "The ViewMedica 9 plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.4.15. This is due to missing or incorrect nonce validation on a function. This makes it possible for unauthenticated attackers to inject malicious web scripts via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12291" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/viewmedica/#developers" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/646ba700-28d5-455f-88de-2864ef8f202c?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-352" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-pq4w-r285-22cr/GHSA-pq4w-r285-22cr.json b/advisories/unreviewed/2025/01/GHSA-pq4w-r285-22cr/GHSA-pq4w-r285-22cr.json new file mode 100644 index 00000000000..cf3208a529d --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-pq4w-r285-22cr/GHSA-pq4w-r285-22cr.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-pq4w-r285-22cr", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:15Z", + "aliases": [ + "CVE-2024-12153" + ], + "details": "The GDY Modular Content plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 0.9.91. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12153" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/gdy-modular-content/trunk/includes/elements.php#L16" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/8f854737-e87b-4c50-a9fb-d3b129f9d9fc?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:14Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-pw7h-6fp2-pvmv/GHSA-pw7h-6fp2-pvmv.json b/advisories/unreviewed/2025/01/GHSA-pw7h-6fp2-pvmv/GHSA-pw7h-6fp2-pvmv.json new file mode 100644 index 00000000000..0c79ff22f52 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-pw7h-6fp2-pvmv/GHSA-pw7h-6fp2-pvmv.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-pw7h-6fp2-pvmv", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:15Z", + "aliases": [ + "CVE-2024-12159" + ], + "details": "The Optimize Your Campaigns – Google Shopping – Google Ads – Google Adwords plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 3.1 due to the print_php_information.php being publicly accessible. This makes it possible for unauthenticated attackers to extract sensitive configuration data that can be leveraged in another attack.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12159" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/muzaara-adwords-optimize-dashboard/trunk/lib/muzaara/lib/google-ads-php/scripts/print_php_information.php" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/cfeca343-c796-45d5-a71d-8211d8b38b3e?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-200" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:15Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-pwfr-93g9-4wj6/GHSA-pwfr-93g9-4wj6.json b/advisories/unreviewed/2025/01/GHSA-pwfr-93g9-4wj6/GHSA-pwfr-93g9-4wj6.json new file mode 100644 index 00000000000..8199b8f347d --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-pwfr-93g9-4wj6/GHSA-pwfr-93g9-4wj6.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-pwfr-93g9-4wj6", + "modified": "2025-01-07T06:32:16Z", + "published": "2025-01-07T06:32:16Z", + "aliases": [ + "CVE-2024-10562" + ], + "details": "The Form Maker by 10Web WordPress plugin before 1.15.31 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10562" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/317f6cb7-774f-4381-a855-858c051aa1d5" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T06:15:14Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-q3cv-jrpm-45mm/GHSA-q3cv-jrpm-45mm.json b/advisories/unreviewed/2025/01/GHSA-q3cv-jrpm-45mm/GHSA-q3cv-jrpm-45mm.json new file mode 100644 index 00000000000..4f7c143647d --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-q3cv-jrpm-45mm/GHSA-q3cv-jrpm-45mm.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-q3cv-jrpm-45mm", + "modified": "2025-01-07T06:32:14Z", + "published": "2025-01-07T06:32:14Z", + "aliases": [ + "CVE-2024-12557" + ], + "details": "The Transporters.io plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.0.84. This is due to missing nonce validation on a function. This makes it possible for unauthenticated attackers to inject malicious web scripts via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12557" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/transportersio/#developers" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/2f79778c-c11a-4d98-bc26-8113c3fef630?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-352" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T04:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-q7g6-89f5-6c2m/GHSA-q7g6-89f5-6c2m.json b/advisories/unreviewed/2025/01/GHSA-q7g6-89f5-6c2m/GHSA-q7g6-89f5-6c2m.json new file mode 100644 index 00000000000..c44d89a731b --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-q7g6-89f5-6c2m/GHSA-q7g6-89f5-6c2m.json @@ -0,0 +1,48 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-q7g6-89f5-6c2m", + "modified": "2025-01-07T06:32:13Z", + "published": "2025-01-07T06:32:13Z", + "aliases": [ + "CVE-2024-12419" + ], + "details": "The The Design for Contact Form 7 Style WordPress Plugin – CF7 WOW Styler plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 1.7.0. This is due to the software allowing users to execute an action that does not properly validate a value before running do_shortcode. This makes it possible for unauthenticated attackers to execute arbitrary shortcodes. This functionality is also vulnerable to Reflected Cross-Site Scripting. Version 1.7.0 patched the Reflected XSS issue, however, the arbitrary shortcode execution issue remains.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12419" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/cf7-styler/tags/1.6.9/admin/class-cf7-customizer-admin.php#L295" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/cf7-styler/tags/1.6.9/admin/class-cf7-customizer-admin.php#L300" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/cf7-styler/tags/1.6.9/admin/class-cf7-customizer-admin.php#L405" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/5d78ea71-5886-488e-a660-0dc25129a8b6?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-94" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T04:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-qcf6-mpgv-484q/GHSA-qcf6-mpgv-484q.json b/advisories/unreviewed/2025/01/GHSA-qcf6-mpgv-484q/GHSA-qcf6-mpgv-484q.json new file mode 100644 index 00000000000..d436704d370 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-qcf6-mpgv-484q/GHSA-qcf6-mpgv-484q.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qcf6-mpgv-484q", + "modified": "2025-01-07T06:32:13Z", + "published": "2025-01-07T06:32:13Z", + "aliases": [ + "CVE-2024-11437" + ], + "details": "The Timeline Designer plugin for WordPress is vulnerable to SQL Injection via the 's' parameter in all versions up to, and including, 1.4 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11437" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/timeline-designer/trunk/admin/assets/admin-shortcode-list.php#L41" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/12349179-e61c-42b8-b0ff-5b49fc4906c1?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T04:15:06Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-qjhw-7xcc-5cqf/GHSA-qjhw-7xcc-5cqf.json b/advisories/unreviewed/2025/01/GHSA-qjhw-7xcc-5cqf/GHSA-qjhw-7xcc-5cqf.json new file mode 100644 index 00000000000..4a04ccec4af --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-qjhw-7xcc-5cqf/GHSA-qjhw-7xcc-5cqf.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qjhw-7xcc-5cqf", + "modified": "2025-01-07T06:32:13Z", + "published": "2025-01-07T06:32:13Z", + "aliases": [ + "CVE-2024-12022" + ], + "details": "The WP Menu Image plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'wmi_delete_img_menu' function in all versions up to, and including, 2.2. This makes it possible for unauthenticated attackers to delete images from menus.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12022" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/wp-menu-image/trunk/init/wmi-functions.php#L126" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/e96193c0-ddde-463b-a68e-672ab6f812c7?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-862" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T04:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-qr56-97jh-6556/GHSA-qr56-97jh-6556.json b/advisories/unreviewed/2025/01/GHSA-qr56-97jh-6556/GHSA-qr56-97jh-6556.json new file mode 100644 index 00000000000..15f6abd818b --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-qr56-97jh-6556/GHSA-qr56-97jh-6556.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qr56-97jh-6556", + "modified": "2025-01-07T06:32:14Z", + "published": "2025-01-07T06:32:14Z", + "aliases": [ + "CVE-2024-12590" + ], + "details": "The WP Youtube Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'id' parameter in all versions up to, and including, 1.9 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12590" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/wp-youtube-gallery/trunk/wpyg-class.php#L87" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/wp-youtube-gallery/#developers" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/0b9e6f21-4c26-4ff8-9d0f-c66cd537fdcc?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T04:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-qrfp-c3c5-pw2c/GHSA-qrfp-c3c5-pw2c.json b/advisories/unreviewed/2025/01/GHSA-qrfp-c3c5-pw2c/GHSA-qrfp-c3c5-pw2c.json new file mode 100644 index 00000000000..d241d415165 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-qrfp-c3c5-pw2c/GHSA-qrfp-c3c5-pw2c.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qrfp-c3c5-pw2c", + "modified": "2025-01-07T06:32:16Z", + "published": "2025-01-07T06:32:16Z", + "aliases": [ + "CVE-2024-8855" + ], + "details": "The WordPress Auction Plugin WordPress plugin through 3.7 does not sanitize and escape a parameter before using it in a SQL statement, allowing editors and above to perform SQL injection attacks", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8855" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/04084f2a-45b8-4249-a472-f156fad0c90a" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T06:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-qxrj-j7w9-5f2w/GHSA-qxrj-j7w9-5f2w.json b/advisories/unreviewed/2025/01/GHSA-qxrj-j7w9-5f2w/GHSA-qxrj-j7w9-5f2w.json new file mode 100644 index 00000000000..e9ca0ef6e14 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-qxrj-j7w9-5f2w/GHSA-qxrj-j7w9-5f2w.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qxrj-j7w9-5f2w", + "modified": "2025-01-07T06:32:14Z", + "published": "2025-01-07T06:32:14Z", + "aliases": [ + "CVE-2024-11363" + ], + "details": "The Same but Different – Related Posts by Taxonomy plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg & remove_query_arg without appropriate escaping on the URL in all versions up to, and including, 1.0.16. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11363" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/same-but-different/tags/1.0.15/library/template-parts/tabs.php#L27" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/7d262a3b-6205-45b3-8d8e-da541e07de46?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-r7fx-x4q2-hqhr/GHSA-r7fx-x4q2-hqhr.json b/advisories/unreviewed/2025/01/GHSA-r7fx-x4q2-hqhr/GHSA-r7fx-x4q2-hqhr.json new file mode 100644 index 00000000000..1962169cfd0 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-r7fx-x4q2-hqhr/GHSA-r7fx-x4q2-hqhr.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-r7fx-x4q2-hqhr", + "modified": "2025-01-07T06:32:16Z", + "published": "2025-01-07T06:32:16Z", + "aliases": [ + "CVE-2024-12535" + ], + "details": "The Host PHP Info plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check when including the 'phpinfo' function in all versions up to, and including, 1.0.4. This makes it possible for unauthenticated attackers to read configuration settings and predefined variables on the site's server. The plugin does not need to be activated for the vulnerability to be exploited.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12535" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/host-php-info/trunk/info.php#L2" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/88d27385-9b92-419c-9e03-687d7192bbb5?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-862" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T06:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-r8fr-5hwm-xprx/GHSA-r8fr-5hwm-xprx.json b/advisories/unreviewed/2025/01/GHSA-r8fr-5hwm-xprx/GHSA-r8fr-5hwm-xprx.json new file mode 100644 index 00000000000..f1304dc1f7e --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-r8fr-5hwm-xprx/GHSA-r8fr-5hwm-xprx.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-r8fr-5hwm-xprx", + "modified": "2025-01-07T06:32:13Z", + "published": "2025-01-07T06:32:13Z", + "aliases": [ + "CVE-2024-12528" + ], + "details": "The WordPress Survey & Poll – Quiz, Survey and Poll Plugin for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wpsurveypoll_results' shortcode in all versions up to, and including, 1.7.5 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12528" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/wp-survey-and-poll/trunk/wordpress-survey-and-poll.php#L146" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/wp-survey-and-poll/trunk/wordpress-survey-and-poll.php#L49" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/51cc6247-1948-4de1-b347-c7d818400777?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T04:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-rp66-g9q5-fp72/GHSA-rp66-g9q5-fp72.json b/advisories/unreviewed/2025/01/GHSA-rp66-g9q5-fp72/GHSA-rp66-g9q5-fp72.json new file mode 100644 index 00000000000..d9e284476e2 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-rp66-g9q5-fp72/GHSA-rp66-g9q5-fp72.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rp66-g9q5-fp72", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:15Z", + "aliases": [ + "CVE-2024-12208" + ], + "details": "The Backup and Restore WordPress – Backup Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.50. This is due to missing or incorrect nonce validation on the ajax_queue_manual_backup() function. This makes it possible for unauthenticated attackers to trigger backups via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12208" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/wp-backitup" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/e461a04b-6456-4930-b3e7-0f808825aa6b?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-352" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:16Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-v584-fchc-ccv3/GHSA-v584-fchc-ccv3.json b/advisories/unreviewed/2025/01/GHSA-v584-fchc-ccv3/GHSA-v584-fchc-ccv3.json new file mode 100644 index 00000000000..abe278321ec --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-v584-fchc-ccv3/GHSA-v584-fchc-ccv3.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-v584-fchc-ccv3", + "modified": "2025-01-07T06:32:14Z", + "published": "2025-01-07T06:32:14Z", + "aliases": [ + "CVE-2024-10527" + ], + "details": "The Spacer plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the motech_spacer_callback() function in all versions up to, and including, 3.0.7. This makes it possible for authenticated attackers, with Subscriber-level access and above, to view limited setting information.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10527" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/spacer/tags/3.0.7/index.php#L85" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/112ece28-27ac-4d3c-b302-7acab43390fb?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-862" + ], + "severity": "LOW", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-vqc3-9g98-q3gp/GHSA-vqc3-9g98-q3gp.json b/advisories/unreviewed/2025/01/GHSA-vqc3-9g98-q3gp/GHSA-vqc3-9g98-q3gp.json new file mode 100644 index 00000000000..08c4b35f238 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-vqc3-9g98-q3gp/GHSA-vqc3-9g98-q3gp.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-vqc3-9g98-q3gp", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:15Z", + "aliases": [ + "CVE-2024-12453" + ], + "details": "The Uptodown APK Download Widget plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'utd-widget' shortcode in all versions up to, and including, 0.1.2 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12453" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/uptodown-apk-download-widget/trunk/uptodown_wp_widget.php#L47" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/uptodown-apk-download-widget" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/78c2d5fc-240a-4fed-92ae-b9f84de3e119?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:19Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-vqg7-v3g3-9qcv/GHSA-vqg7-v3g3-9qcv.json b/advisories/unreviewed/2025/01/GHSA-vqg7-v3g3-9qcv/GHSA-vqg7-v3g3-9qcv.json new file mode 100644 index 00000000000..1f5401b804f --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-vqg7-v3g3-9qcv/GHSA-vqg7-v3g3-9qcv.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-vqg7-v3g3-9qcv", + "modified": "2025-01-07T06:32:14Z", + "published": "2025-01-07T06:32:14Z", + "aliases": [ + "CVE-2024-11382" + ], + "details": "The Common Ninja: Fully Customizable & Perfectly Responsive Free Widgets for WordPress Websites plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'commonninja' shortcode in all versions up to, and including, 1.1.0 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11382" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/common-ninja" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/f1205432-4de0-4745-b8d5-e36aa8f3da49?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-w573-j2v8-vx6p/GHSA-w573-j2v8-vx6p.json b/advisories/unreviewed/2025/01/GHSA-w573-j2v8-vx6p/GHSA-w573-j2v8-vx6p.json new file mode 100644 index 00000000000..558cad44336 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-w573-j2v8-vx6p/GHSA-w573-j2v8-vx6p.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-w573-j2v8-vx6p", + "modified": "2025-01-07T06:32:16Z", + "published": "2025-01-07T06:32:16Z", + "aliases": [ + "CVE-2024-9638" + ], + "details": "The Category Posts Widget WordPress plugin before 4.9.18 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9638" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/119d5249-48e4-429e-8a1d-ad112e0c966d" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T06:15:18Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-wgh8-4hmr-gpcm/GHSA-wgh8-4hmr-gpcm.json b/advisories/unreviewed/2025/01/GHSA-wgh8-4hmr-gpcm/GHSA-wgh8-4hmr-gpcm.json new file mode 100644 index 00000000000..846494d41ef --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-wgh8-4hmr-gpcm/GHSA-wgh8-4hmr-gpcm.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-wgh8-4hmr-gpcm", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:15Z", + "aliases": [ + "CVE-2024-12252" + ], + "details": "The SEO LAT Auto Post plugin for WordPress is vulnerable to file overwrite due to a missing capability check on the remote_update AJAX action in all versions up to, and including, 2.2.1. This makes it possible for unauthenticated attackers to overwrite the seo-beginner-auto-post.php file which can be leveraged to achieve remote code execution.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12252" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/seo-beginner-auto-post" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/67df10cc-ce3c-4157-9860-7e367062f710?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-94" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:16Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-wmmp-7v9c-pv73/GHSA-wmmp-7v9c-pv73.json b/advisories/unreviewed/2025/01/GHSA-wmmp-7v9c-pv73/GHSA-wmmp-7v9c-pv73.json new file mode 100644 index 00000000000..db5eede0871 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-wmmp-7v9c-pv73/GHSA-wmmp-7v9c-pv73.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-wmmp-7v9c-pv73", + "modified": "2025-01-07T06:32:16Z", + "published": "2025-01-07T06:32:16Z", + "aliases": [ + "CVE-2024-12464" + ], + "details": "The Chatroll Live Chat plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'chatroll' shortcode in all versions up to, and including, 2.5.0 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12464" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/chatroll-live-chat/tags/2.5.0/chatroll.php#L62" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/87fdadcd-b776-471a-9756-708e384de4f0?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T06:15:16Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-x2hv-7jf3-p2rf/GHSA-x2hv-7jf3-p2rf.json b/advisories/unreviewed/2025/01/GHSA-x2hv-7jf3-p2rf/GHSA-x2hv-7jf3-p2rf.json new file mode 100644 index 00000000000..4a79df6f0f9 --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-x2hv-7jf3-p2rf/GHSA-x2hv-7jf3-p2rf.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-x2hv-7jf3-p2rf", + "modified": "2025-01-07T06:32:15Z", + "published": "2025-01-07T06:32:15Z", + "aliases": [ + "CVE-2024-12158" + ], + "details": "The Popup – MailChimp, GetResponse and ActiveCampaign Intergrations plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the 'upc_delete_db_data' AJAX action in all versions up to, and including, 3.2.6. This makes it possible for unauthenticated attackers to delete the DB data for the plugin.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12158" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/ultimate-popup-creator" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/93a698df-fd68-4fbc-946e-a9b5a7f93b71?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-862" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T05:15:15Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/01/GHSA-xhm4-h45c-6x74/GHSA-xhm4-h45c-6x74.json b/advisories/unreviewed/2025/01/GHSA-xhm4-h45c-6x74/GHSA-xhm4-h45c-6x74.json new file mode 100644 index 00000000000..ee22515789a --- /dev/null +++ b/advisories/unreviewed/2025/01/GHSA-xhm4-h45c-6x74/GHSA-xhm4-h45c-6x74.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-xhm4-h45c-6x74", + "modified": "2025-01-07T06:32:16Z", + "published": "2025-01-07T06:32:16Z", + "aliases": [ + "CVE-2024-11369" + ], + "details": "The Store credit / Gift cards for woocommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'coupon', 'start_date', and 'end_date' parameters in all versions up to, and including, 1.0.49.46 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11369" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/store-credit-for-woocommerce/tags/1.0.49.42/admin/report.php#L113" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/store-credit-for-woocommerce/tags/1.0.49.42/admin/report.php#L119" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/store-credit-for-woocommerce/tags/1.0.49.42/admin/report.php#L95" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3213698/store-credit-for-woocommerce/trunk/admin/report.php" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/2e8527c0-a4b0-436d-901a-c07f93c7ec5e?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-01-07T06:15:14Z" + } +} \ No newline at end of file