diff --git a/advisories/unreviewed/2024/05/GHSA-4qq8-w3q5-56jf/GHSA-4qq8-w3q5-56jf.json b/advisories/unreviewed/2024/05/GHSA-4qq8-w3q5-56jf/GHSA-4qq8-w3q5-56jf.json new file mode 100644 index 00000000000..e79314ce7a4 --- /dev/null +++ b/advisories/unreviewed/2024/05/GHSA-4qq8-w3q5-56jf/GHSA-4qq8-w3q5-56jf.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4qq8-w3q5-56jf", + "modified": "2024-05-31T06:30:28Z", + "published": "2024-05-31T06:30:28Z", + "aliases": [ + "CVE-2024-36246" + ], + "details": "Missing authorization vulnerability exists in Unifier and Unifier Cast Version.5.0 or later, and the patch \"20240527\" not applied. If this vulnerability is exploited, arbitrary code may be executed with LocalSystem privilege. As a result, a malicious program may be installed, data may be modified or deleted.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-36246" + }, + { + "type": "WEB", + "url": "https://jvn.jp/en/jp/JVN17680667" + }, + { + "type": "WEB", + "url": "https://www.yrl.com/fwp_support/info/khvu7f00000000q7.html" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-05-31T06:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/05/GHSA-8hqg-whrw-pv92/GHSA-8hqg-whrw-pv92.json b/advisories/unreviewed/2024/05/GHSA-8hqg-whrw-pv92/GHSA-8hqg-whrw-pv92.json new file mode 100644 index 00000000000..bc15b34ac8f --- /dev/null +++ b/advisories/unreviewed/2024/05/GHSA-8hqg-whrw-pv92/GHSA-8hqg-whrw-pv92.json @@ -0,0 +1,43 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8hqg-whrw-pv92", + "modified": "2024-05-31T06:30:27Z", + "published": "2024-05-31T06:30:27Z", + "aliases": [ + "CVE-2024-37032" + ], + "details": "Ollama before 0.1.34 does not validate the format of the digest (sha256 with 64 hex digits) when getting the model path, and thus mishandles the TestGetBlobsPath test cases such as fewer than 64 hex digits, more than 64 hex digits, or an initial ../ substring.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-37032" + }, + { + "type": "WEB", + "url": "https://github.com/ollama/ollama/pull/4175" + }, + { + "type": "WEB", + "url": "https://github.com/ollama/ollama/blob/adeb40eaf29039b8964425f69a9315f9f1694ba8/server/modelpath_test.go#L41-L58" + }, + { + "type": "WEB", + "url": "https://github.com/ollama/ollama/compare/v0.1.33...v0.1.34" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-05-31T04:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/05/GHSA-gc4h-7vrf-356x/GHSA-gc4h-7vrf-356x.json b/advisories/unreviewed/2024/05/GHSA-gc4h-7vrf-356x/GHSA-gc4h-7vrf-356x.json new file mode 100644 index 00000000000..9d6c36c4122 --- /dev/null +++ b/advisories/unreviewed/2024/05/GHSA-gc4h-7vrf-356x/GHSA-gc4h-7vrf-356x.json @@ -0,0 +1,58 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gc4h-7vrf-356x", + "modified": "2024-05-31T06:30:28Z", + "published": "2024-05-31T06:30:27Z", + "aliases": [ + "CVE-2024-2793" + ], + "details": "The Visual Website Collaboration, Feedback & Project Management – Atarim plugin for WordPress is vulnerable to Stored Cross-Site Scripting via comments in all versions up to, and including, 3.30 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-2793" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/atarim-visual-collaboration/trunk/inc/wpf_ajax_functions.php#L1923" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/atarim-visual-collaboration/trunk/inc/wpf_ajax_functions.php#L505" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/atarim-visual-collaboration/trunk/inc/wpf_ajax_functions.php#L666" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3094260" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3094999" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/9bd63003-d1d6-480a-8df7-878bcc89f1ee?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-05-31T05:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/05/GHSA-hw5v-77jj-prp8/GHSA-hw5v-77jj-prp8.json b/advisories/unreviewed/2024/05/GHSA-hw5v-77jj-prp8/GHSA-hw5v-77jj-prp8.json new file mode 100644 index 00000000000..071b3c34e0e --- /dev/null +++ b/advisories/unreviewed/2024/05/GHSA-hw5v-77jj-prp8/GHSA-hw5v-77jj-prp8.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-hw5v-77jj-prp8", + "modified": "2024-05-31T06:30:28Z", + "published": "2024-05-31T06:30:28Z", + "aliases": [ + "CVE-2024-4469" + ], + "details": "The WP STAGING WordPress Backup Plugin WordPress plugin before 3.5.0 does not prevent users with the administrator role from pinging conducting SSRF attacks, which may be a problem in multisite configurations.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4469" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/d6b1270b-52c0-471d-a5fb-507e21b46310" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-05-31T06:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/05/GHSA-q2jj-q5cf-hwvv/GHSA-q2jj-q5cf-hwvv.json b/advisories/unreviewed/2024/05/GHSA-q2jj-q5cf-hwvv/GHSA-q2jj-q5cf-hwvv.json new file mode 100644 index 00000000000..d7c51d3c1b8 --- /dev/null +++ b/advisories/unreviewed/2024/05/GHSA-q2jj-q5cf-hwvv/GHSA-q2jj-q5cf-hwvv.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-q2jj-q5cf-hwvv", + "modified": "2024-05-31T06:30:28Z", + "published": "2024-05-31T06:30:28Z", + "aliases": [ + "CVE-2024-4379" + ], + "details": "The Premium Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Global Tooltip widget in all versions up to, and including, 4.10.31 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4379" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/premium-addons-for-elementor/tags/4.10.31/modules/premium-global-tooltips/module.php#L1247" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3090037/premium-addons-for-elementor/trunk/modules/premium-global-tooltips/module.php" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/cb0261c6-0477-4769-b92a-b49a192df4bb?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-05-31T06:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/05/GHSA-w2mp-xqqj-8v36/GHSA-w2mp-xqqj-8v36.json b/advisories/unreviewed/2024/05/GHSA-w2mp-xqqj-8v36/GHSA-w2mp-xqqj-8v36.json new file mode 100644 index 00000000000..36bcb74d693 --- /dev/null +++ b/advisories/unreviewed/2024/05/GHSA-w2mp-xqqj-8v36/GHSA-w2mp-xqqj-8v36.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-w2mp-xqqj-8v36", + "modified": "2024-05-31T06:30:27Z", + "published": "2024-05-31T06:30:27Z", + "aliases": [ + "CVE-2024-23847" + ], + "details": "Incorrect default permissions issue exists in Unifier and Unifier Cast Version.5.0 or later, and the patch \"20240527\" not applied. If this vulnerability is exploited, arbitrary code may be executed with LocalSystem privilege. As a result, a malicious program may be installed, data may be modified or deleted.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-23847" + }, + { + "type": "WEB", + "url": "https://jvn.jp/en/jp/JVN17680667" + }, + { + "type": "WEB", + "url": "https://www.yrl.com/fwp_support/info/khvu7f00000000q7.html" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-05-31T06:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/05/GHSA-wpfm-jh3c-j3r6/GHSA-wpfm-jh3c-j3r6.json b/advisories/unreviewed/2024/05/GHSA-wpfm-jh3c-j3r6/GHSA-wpfm-jh3c-j3r6.json new file mode 100644 index 00000000000..dd1197c88a7 --- /dev/null +++ b/advisories/unreviewed/2024/05/GHSA-wpfm-jh3c-j3r6/GHSA-wpfm-jh3c-j3r6.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-wpfm-jh3c-j3r6", + "modified": "2024-05-31T06:30:28Z", + "published": "2024-05-31T06:30:28Z", + "aliases": [ + "CVE-2024-4205" + ], + "details": "The Premium Addons for Elementor plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the get_template_content() function in all versions up to, and including, 4.10.31. This makes it possible for authenticated attackers, with subscriber-level access and above, to retrieve Elementor template data.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4205" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/premium-addons-for-elementor/tags/4.10.28/includes/addons-integration.php#L1408" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3090037/premium-addons-for-elementor/trunk/includes/addons-integration.php" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/175cb977-dcba-429f-814c-6de078e23472?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-05-31T06:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/05/GHSA-x228-mrpj-x9pr/GHSA-x228-mrpj-x9pr.json b/advisories/unreviewed/2024/05/GHSA-x228-mrpj-x9pr/GHSA-x228-mrpj-x9pr.json new file mode 100644 index 00000000000..bdf721a3eaf --- /dev/null +++ b/advisories/unreviewed/2024/05/GHSA-x228-mrpj-x9pr/GHSA-x228-mrpj-x9pr.json @@ -0,0 +1,54 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-x228-mrpj-x9pr", + "modified": "2024-05-31T06:30:28Z", + "published": "2024-05-31T06:30:28Z", + "aliases": [ + "CVE-2024-4376" + ], + "details": "The Premium Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Fancy Text widget in all versions up to, and including, 4.10.31 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. While 4.10.32 is patched, it is recommended to update to 4.10.33 because 4.10.32 caused a fatal error.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4376" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/premium-addons-for-elementor/trunk/assets/frontend/js/typed.js" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/premium-addons-for-elementor/trunk/widgets/premium-fancytext.php#L924" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3090037/premium-addons-for-elementor/trunk/widgets/premium-fancytext.php" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3090609%40premium-addons-for-elementor&new=3090609%40premium-addons-for-elementor&sfp_email=&sfph_mail=" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/b49d166f-4df0-4997-a078-0be8fcd92576?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-05-31T06:15:13Z" + } +} \ No newline at end of file