From 69b2aa8fded03c4fc6c855c972635623600c2c71 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Fri, 16 May 2025 21:33:22 +0000 Subject: [PATCH] Advisory Database Sync --- .../GHSA-9vrg-cpf5-hchw.json | 3 +- .../GHSA-c9jc-74h4-966f.json | 3 +- .../GHSA-cxqm-79p9-m968.json | 3 +- .../GHSA-fxvm-rjfh-3pwm.json | 3 +- .../GHSA-g3fv-xj43-xg82.json | 3 +- .../GHSA-jfm6-2h2m-p9x3.json | 3 +- .../GHSA-mh8x-j2pr-59w6.json | 3 +- .../GHSA-gvqc-g8mm-r66f.json | 4 +- .../GHSA-h5qj-jjhh-95x5.json | 4 +- .../GHSA-p6wm-338f-gmjm.json | 4 +- .../GHSA-g7xf-72mc-jx24.json | 4 +- .../GHSA-23vm-fxf4-h89x.json | 11 +++- .../GHSA-27p6-hhc2-4v7p.json | 56 +++++++++++++++++++ .../GHSA-28cc-3w24-mfvx.json | 11 +++- .../GHSA-2fv9-xg6h-6625.json | 36 ++++++++++++ .../GHSA-2hgg-g6cr-365f.json | 29 ++++++++++ .../GHSA-2v7w-p95j-mfhp.json | 11 +++- .../GHSA-36rh-228q-4mhv.json | 11 +++- .../GHSA-3h8r-96mm-7vvg.json | 11 +++- .../GHSA-42jj-4cc5-rm9v.json | 56 +++++++++++++++++++ .../GHSA-4wp7-92pw-q264.json | 36 ++++++++++++ .../GHSA-57c2-2x5j-8gpq.json | 11 +++- .../GHSA-5wcf-r54j-7xp9.json | 6 +- .../GHSA-69rr-vrmw-qwxp.json | 11 +++- .../GHSA-764c-3vwj-x87m.json | 11 +++- .../GHSA-857x-55vg-m6q9.json | 11 +++- .../GHSA-8mm9-c4mg-vfjh.json | 35 ++++++++++++ .../GHSA-8rgg-p4jx-9xw2.json | 15 +++-- .../GHSA-8xj4-6h2f-28vg.json | 11 +++- .../GHSA-9wh7-3gp5-48qg.json | 56 +++++++++++++++++++ .../GHSA-c73f-vp33-fj4h.json | 11 +++- .../GHSA-c9v2-rqm3-3g5r.json | 11 +++- .../GHSA-ccp4-cg9p-v3f5.json | 11 +++- .../GHSA-fcpx-h44g-vx2x.json | 3 +- .../GHSA-fvhp-x5xr-47xv.json | 29 ++++++++++ .../GHSA-fx39-f7f6-8prj.json | 56 +++++++++++++++++++ .../GHSA-gm5r-42wg-m55j.json | 56 +++++++++++++++++++ .../GHSA-jgrx-7c84-m3h2.json | 52 +++++++++++++++++ .../GHSA-jp57-j3j6-rmm2.json | 36 ++++++++++++ .../GHSA-jwx6-c8mf-mg73.json | 56 +++++++++++++++++++ .../GHSA-p694-pgrr-cmpq.json | 11 +++- .../GHSA-phfp-9x4x-56gj.json | 11 +++- .../GHSA-r43x-w85h-p334.json | 11 +++- .../GHSA-rf8c-553r-qgf7.json | 11 +++- .../GHSA-vcpp-7qvc-rxv7.json | 11 +++- .../GHSA-vgrm-7j7m-pjmg.json | 11 +++- .../GHSA-vr72-pg8g-8362.json | 11 +++- .../GHSA-w4w8-5w5f-5gvr.json | 11 +++- .../GHSA-x4wp-4w98-53c5.json | 36 ++++++++++++ 49 files changed, 837 insertions(+), 80 deletions(-) create mode 100644 advisories/unreviewed/2025/05/GHSA-27p6-hhc2-4v7p/GHSA-27p6-hhc2-4v7p.json create mode 100644 advisories/unreviewed/2025/05/GHSA-2fv9-xg6h-6625/GHSA-2fv9-xg6h-6625.json create mode 100644 advisories/unreviewed/2025/05/GHSA-2hgg-g6cr-365f/GHSA-2hgg-g6cr-365f.json create mode 100644 advisories/unreviewed/2025/05/GHSA-42jj-4cc5-rm9v/GHSA-42jj-4cc5-rm9v.json create mode 100644 advisories/unreviewed/2025/05/GHSA-4wp7-92pw-q264/GHSA-4wp7-92pw-q264.json create mode 100644 advisories/unreviewed/2025/05/GHSA-8mm9-c4mg-vfjh/GHSA-8mm9-c4mg-vfjh.json create mode 100644 advisories/unreviewed/2025/05/GHSA-9wh7-3gp5-48qg/GHSA-9wh7-3gp5-48qg.json create mode 100644 advisories/unreviewed/2025/05/GHSA-fvhp-x5xr-47xv/GHSA-fvhp-x5xr-47xv.json create mode 100644 advisories/unreviewed/2025/05/GHSA-fx39-f7f6-8prj/GHSA-fx39-f7f6-8prj.json create mode 100644 advisories/unreviewed/2025/05/GHSA-gm5r-42wg-m55j/GHSA-gm5r-42wg-m55j.json create mode 100644 advisories/unreviewed/2025/05/GHSA-jgrx-7c84-m3h2/GHSA-jgrx-7c84-m3h2.json create mode 100644 advisories/unreviewed/2025/05/GHSA-jp57-j3j6-rmm2/GHSA-jp57-j3j6-rmm2.json create mode 100644 advisories/unreviewed/2025/05/GHSA-jwx6-c8mf-mg73/GHSA-jwx6-c8mf-mg73.json create mode 100644 advisories/unreviewed/2025/05/GHSA-x4wp-4w98-53c5/GHSA-x4wp-4w98-53c5.json diff --git a/advisories/unreviewed/2024/05/GHSA-9vrg-cpf5-hchw/GHSA-9vrg-cpf5-hchw.json b/advisories/unreviewed/2024/05/GHSA-9vrg-cpf5-hchw/GHSA-9vrg-cpf5-hchw.json index 3990b939305..11aec793515 100644 --- a/advisories/unreviewed/2024/05/GHSA-9vrg-cpf5-hchw/GHSA-9vrg-cpf5-hchw.json +++ b/advisories/unreviewed/2024/05/GHSA-9vrg-cpf5-hchw/GHSA-9vrg-cpf5-hchw.json @@ -30,7 +30,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-121" + "CWE-121", + "CWE-787" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/05/GHSA-c9jc-74h4-966f/GHSA-c9jc-74h4-966f.json b/advisories/unreviewed/2024/05/GHSA-c9jc-74h4-966f/GHSA-c9jc-74h4-966f.json index 9ef86849962..2f206d69d6f 100644 --- a/advisories/unreviewed/2024/05/GHSA-c9jc-74h4-966f/GHSA-c9jc-74h4-966f.json +++ b/advisories/unreviewed/2024/05/GHSA-c9jc-74h4-966f/GHSA-c9jc-74h4-966f.json @@ -30,7 +30,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-121" + "CWE-121", + "CWE-787" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/05/GHSA-cxqm-79p9-m968/GHSA-cxqm-79p9-m968.json b/advisories/unreviewed/2024/05/GHSA-cxqm-79p9-m968/GHSA-cxqm-79p9-m968.json index d2be940be08..7cd27bddc26 100644 --- a/advisories/unreviewed/2024/05/GHSA-cxqm-79p9-m968/GHSA-cxqm-79p9-m968.json +++ b/advisories/unreviewed/2024/05/GHSA-cxqm-79p9-m968/GHSA-cxqm-79p9-m968.json @@ -30,7 +30,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-121" + "CWE-121", + "CWE-787" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/05/GHSA-fxvm-rjfh-3pwm/GHSA-fxvm-rjfh-3pwm.json b/advisories/unreviewed/2024/05/GHSA-fxvm-rjfh-3pwm/GHSA-fxvm-rjfh-3pwm.json index 94d1d6b1551..02619c6b7db 100644 --- a/advisories/unreviewed/2024/05/GHSA-fxvm-rjfh-3pwm/GHSA-fxvm-rjfh-3pwm.json +++ b/advisories/unreviewed/2024/05/GHSA-fxvm-rjfh-3pwm/GHSA-fxvm-rjfh-3pwm.json @@ -30,7 +30,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-259" + "CWE-259", + "CWE-798" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/05/GHSA-g3fv-xj43-xg82/GHSA-g3fv-xj43-xg82.json b/advisories/unreviewed/2024/05/GHSA-g3fv-xj43-xg82/GHSA-g3fv-xj43-xg82.json index fa53aaa8d3a..a11ab00d241 100644 --- a/advisories/unreviewed/2024/05/GHSA-g3fv-xj43-xg82/GHSA-g3fv-xj43-xg82.json +++ b/advisories/unreviewed/2024/05/GHSA-g3fv-xj43-xg82/GHSA-g3fv-xj43-xg82.json @@ -30,7 +30,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-121" + "CWE-121", + "CWE-787" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/05/GHSA-jfm6-2h2m-p9x3/GHSA-jfm6-2h2m-p9x3.json b/advisories/unreviewed/2024/05/GHSA-jfm6-2h2m-p9x3/GHSA-jfm6-2h2m-p9x3.json index ab6a3e0a439..d6381f37316 100644 --- a/advisories/unreviewed/2024/05/GHSA-jfm6-2h2m-p9x3/GHSA-jfm6-2h2m-p9x3.json +++ b/advisories/unreviewed/2024/05/GHSA-jfm6-2h2m-p9x3/GHSA-jfm6-2h2m-p9x3.json @@ -30,7 +30,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-121" + "CWE-121", + "CWE-787" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/05/GHSA-mh8x-j2pr-59w6/GHSA-mh8x-j2pr-59w6.json b/advisories/unreviewed/2024/05/GHSA-mh8x-j2pr-59w6/GHSA-mh8x-j2pr-59w6.json index 6631613eade..981ed4d2270 100644 --- a/advisories/unreviewed/2024/05/GHSA-mh8x-j2pr-59w6/GHSA-mh8x-j2pr-59w6.json +++ b/advisories/unreviewed/2024/05/GHSA-mh8x-j2pr-59w6/GHSA-mh8x-j2pr-59w6.json @@ -30,7 +30,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-122" + "CWE-122", + "CWE-787" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/09/GHSA-gvqc-g8mm-r66f/GHSA-gvqc-g8mm-r66f.json b/advisories/unreviewed/2024/09/GHSA-gvqc-g8mm-r66f/GHSA-gvqc-g8mm-r66f.json index f3d05f93604..797245a0ffa 100644 --- a/advisories/unreviewed/2024/09/GHSA-gvqc-g8mm-r66f/GHSA-gvqc-g8mm-r66f.json +++ b/advisories/unreviewed/2024/09/GHSA-gvqc-g8mm-r66f/GHSA-gvqc-g8mm-r66f.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-79" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/09/GHSA-h5qj-jjhh-95x5/GHSA-h5qj-jjhh-95x5.json b/advisories/unreviewed/2024/09/GHSA-h5qj-jjhh-95x5/GHSA-h5qj-jjhh-95x5.json index 34a462565f0..9821d88f8fd 100644 --- a/advisories/unreviewed/2024/09/GHSA-h5qj-jjhh-95x5/GHSA-h5qj-jjhh-95x5.json +++ b/advisories/unreviewed/2024/09/GHSA-h5qj-jjhh-95x5/GHSA-h5qj-jjhh-95x5.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-79" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/09/GHSA-p6wm-338f-gmjm/GHSA-p6wm-338f-gmjm.json b/advisories/unreviewed/2024/09/GHSA-p6wm-338f-gmjm/GHSA-p6wm-338f-gmjm.json index 40429392dbf..fc6044d0491 100644 --- a/advisories/unreviewed/2024/09/GHSA-p6wm-338f-gmjm/GHSA-p6wm-338f-gmjm.json +++ b/advisories/unreviewed/2024/09/GHSA-p6wm-338f-gmjm/GHSA-p6wm-338f-gmjm.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-79" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/10/GHSA-g7xf-72mc-jx24/GHSA-g7xf-72mc-jx24.json b/advisories/unreviewed/2024/10/GHSA-g7xf-72mc-jx24/GHSA-g7xf-72mc-jx24.json index 8f045618df3..e18aee34f52 100644 --- a/advisories/unreviewed/2024/10/GHSA-g7xf-72mc-jx24/GHSA-g7xf-72mc-jx24.json +++ b/advisories/unreviewed/2024/10/GHSA-g7xf-72mc-jx24/GHSA-g7xf-72mc-jx24.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-338" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/05/GHSA-23vm-fxf4-h89x/GHSA-23vm-fxf4-h89x.json b/advisories/unreviewed/2025/05/GHSA-23vm-fxf4-h89x/GHSA-23vm-fxf4-h89x.json index 88e29933012..162def08094 100644 --- a/advisories/unreviewed/2025/05/GHSA-23vm-fxf4-h89x/GHSA-23vm-fxf4-h89x.json +++ b/advisories/unreviewed/2025/05/GHSA-23vm-fxf4-h89x/GHSA-23vm-fxf4-h89x.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-23vm-fxf4-h89x", - "modified": "2025-05-15T21:31:26Z", + "modified": "2025-05-16T21:32:10Z", "published": "2025-05-15T21:31:26Z", "aliases": [ "CVE-2023-5529" ], "details": "The Advanced Page Visit Counter WordPress plugin before 8.0.6 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-15T20:15:28Z" diff --git a/advisories/unreviewed/2025/05/GHSA-27p6-hhc2-4v7p/GHSA-27p6-hhc2-4v7p.json b/advisories/unreviewed/2025/05/GHSA-27p6-hhc2-4v7p/GHSA-27p6-hhc2-4v7p.json new file mode 100644 index 00000000000..632f55bab52 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-27p6-hhc2-4v7p/GHSA-27p6-hhc2-4v7p.json @@ -0,0 +1,56 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-27p6-hhc2-4v7p", + "modified": "2025-05-16T21:32:13Z", + "published": "2025-05-16T21:32:13Z", + "aliases": [ + "CVE-2025-4811" + ], + "details": "A vulnerability was found in CodeAstro Pharmacy Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /index.php of the component Login. The manipulation of the argument Username leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-4811" + }, + { + "type": "WEB", + "url": "https://github.com/Lanxiy7th/lx_CVE_report-/issues/24" + }, + { + "type": "WEB", + "url": "https://codeastro.com" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.309266" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.309266" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.573700" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-74" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-16T21:15:35Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-28cc-3w24-mfvx/GHSA-28cc-3w24-mfvx.json b/advisories/unreviewed/2025/05/GHSA-28cc-3w24-mfvx/GHSA-28cc-3w24-mfvx.json index dfddeb3bb4b..7d700f72f86 100644 --- a/advisories/unreviewed/2025/05/GHSA-28cc-3w24-mfvx/GHSA-28cc-3w24-mfvx.json +++ b/advisories/unreviewed/2025/05/GHSA-28cc-3w24-mfvx/GHSA-28cc-3w24-mfvx.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-28cc-3w24-mfvx", - "modified": "2025-05-15T21:31:34Z", + "modified": "2025-05-16T21:32:11Z", "published": "2025-05-15T21:31:34Z", "aliases": [ "CVE-2024-9838" ], "details": "The Auto Affiliate Links WordPress plugin before 6.4.7 does not sanitize and escape a parameter before using it in a SQL statement, allowing admins to perform SQL injection attacks", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-15T20:16:01Z" diff --git a/advisories/unreviewed/2025/05/GHSA-2fv9-xg6h-6625/GHSA-2fv9-xg6h-6625.json b/advisories/unreviewed/2025/05/GHSA-2fv9-xg6h-6625/GHSA-2fv9-xg6h-6625.json new file mode 100644 index 00000000000..afcd8008be2 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-2fv9-xg6h-6625/GHSA-2fv9-xg6h-6625.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2fv9-xg6h-6625", + "modified": "2025-05-16T21:32:13Z", + "published": "2025-05-16T21:32:13Z", + "aliases": [ + "CVE-2025-4804" + ], + "details": "Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WatchGuard Fireware OS allows Stored XSS via the spamBlocker module. This vulnerability requires an authenticated administrator session to a locally managed Firebox.\nThis issue affects Fireware OS: from 12.0 through 12.11.1.", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:P/VC:N/VI:N/VA:N/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-4804" + }, + { + "type": "WEB", + "url": "https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2025-00006" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-16T21:15:35Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-2hgg-g6cr-365f/GHSA-2hgg-g6cr-365f.json b/advisories/unreviewed/2025/05/GHSA-2hgg-g6cr-365f/GHSA-2hgg-g6cr-365f.json new file mode 100644 index 00000000000..c59205077f4 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-2hgg-g6cr-365f/GHSA-2hgg-g6cr-365f.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2hgg-g6cr-365f", + "modified": "2025-05-16T21:32:13Z", + "published": "2025-05-16T21:32:13Z", + "aliases": [ + "CVE-2025-32407" + ], + "details": "Samsung Internet for Galaxy Watch version 5.0.9, available up until Samsung Galaxy Watch 3, does not properly validate TLS certificates, allowing for an attacker to impersonate any and all websites visited by the user. This is a critical misconfiguration in the way the browser validates the identity of the server. It negates the use of HTTPS as a secure channel, allowing for Man-in-the-Middle attacks, stealing sensitive information or modifying incoming and outgoing traffic. NOTE: This vulnerability is in an end-of-life product that is no longer maintained by the vendor.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-32407" + }, + { + "type": "WEB", + "url": "https://github.com/diegovargasj/CVE-2025-32407" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-16T21:15:35Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-2v7w-p95j-mfhp/GHSA-2v7w-p95j-mfhp.json b/advisories/unreviewed/2025/05/GHSA-2v7w-p95j-mfhp/GHSA-2v7w-p95j-mfhp.json index 76a753208cf..63bbef0d7ad 100644 --- a/advisories/unreviewed/2025/05/GHSA-2v7w-p95j-mfhp/GHSA-2v7w-p95j-mfhp.json +++ b/advisories/unreviewed/2025/05/GHSA-2v7w-p95j-mfhp/GHSA-2v7w-p95j-mfhp.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-2v7w-p95j-mfhp", - "modified": "2025-05-15T21:31:27Z", + "modified": "2025-05-16T21:32:10Z", "published": "2025-05-15T21:31:26Z", "aliases": [ "CVE-2023-6030" ], "details": "The LogDash Activity Log WordPress plugin before 1.1.4 hooks the wp_login_failed function (from src/Hooks/Users.php) in order to log failed login attempts to the database but it doesn't escape the username when it perform some SQL request leading to a SQL injection vulnerability which can be exploited using time-based technique by unauthenticated attacker", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-15T20:15:28Z" diff --git a/advisories/unreviewed/2025/05/GHSA-36rh-228q-4mhv/GHSA-36rh-228q-4mhv.json b/advisories/unreviewed/2025/05/GHSA-36rh-228q-4mhv/GHSA-36rh-228q-4mhv.json index ed3576039a6..5b1c2525ca9 100644 --- a/advisories/unreviewed/2025/05/GHSA-36rh-228q-4mhv/GHSA-36rh-228q-4mhv.json +++ b/advisories/unreviewed/2025/05/GHSA-36rh-228q-4mhv/GHSA-36rh-228q-4mhv.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-36rh-228q-4mhv", - "modified": "2025-05-15T21:31:33Z", + "modified": "2025-05-16T21:32:10Z", "published": "2025-05-15T21:31:33Z", "aliases": [ "CVE-2024-8854" ], "details": "The Polls CP WordPress plugin before 1.0.77 does not sanitise and escape some of its poll settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multi site setup).", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-15T20:16:00Z" diff --git a/advisories/unreviewed/2025/05/GHSA-3h8r-96mm-7vvg/GHSA-3h8r-96mm-7vvg.json b/advisories/unreviewed/2025/05/GHSA-3h8r-96mm-7vvg/GHSA-3h8r-96mm-7vvg.json index cac8b7e9c6f..d899930c80f 100644 --- a/advisories/unreviewed/2025/05/GHSA-3h8r-96mm-7vvg/GHSA-3h8r-96mm-7vvg.json +++ b/advisories/unreviewed/2025/05/GHSA-3h8r-96mm-7vvg/GHSA-3h8r-96mm-7vvg.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-3h8r-96mm-7vvg", - "modified": "2025-05-15T21:31:33Z", + "modified": "2025-05-16T21:32:11Z", "published": "2025-05-15T21:31:33Z", "aliases": [ "CVE-2024-9662" ], "details": "The CYAN Backup WordPress plugin before 2.5.3 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-15T20:16:00Z" diff --git a/advisories/unreviewed/2025/05/GHSA-42jj-4cc5-rm9v/GHSA-42jj-4cc5-rm9v.json b/advisories/unreviewed/2025/05/GHSA-42jj-4cc5-rm9v/GHSA-42jj-4cc5-rm9v.json new file mode 100644 index 00000000000..cbfbda78225 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-42jj-4cc5-rm9v/GHSA-42jj-4cc5-rm9v.json @@ -0,0 +1,56 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-42jj-4cc5-rm9v", + "modified": "2025-05-16T21:32:12Z", + "published": "2025-05-16T21:32:12Z", + "aliases": [ + "CVE-2025-4807" + ], + "details": "A vulnerability, which was classified as problematic, was found in SourceCodester Online Student Clearance System 1.0. This affects an unknown part. The manipulation leads to exposure of information through directory listing. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-4807" + }, + { + "type": "WEB", + "url": "https://github.com/laifeng-boy/cve/issues/2" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.309261" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.309261" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.572238" + }, + { + "type": "WEB", + "url": "https://www.sourcecodester.com" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-548" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-16T20:15:22Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-4wp7-92pw-q264/GHSA-4wp7-92pw-q264.json b/advisories/unreviewed/2025/05/GHSA-4wp7-92pw-q264/GHSA-4wp7-92pw-q264.json new file mode 100644 index 00000000000..0ca80a589d6 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-4wp7-92pw-q264/GHSA-4wp7-92pw-q264.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4wp7-92pw-q264", + "modified": "2025-05-16T21:32:12Z", + "published": "2025-05-16T21:32:12Z", + "aliases": [ + "CVE-2025-22233" + ], + "details": "CVE-2024-38820 ensured Locale-independent, lowercase conversion for both the configured disallowedFields patterns and for request parameter names. However, there are still cases where it is possible to bypass the disallowedFields checks.\n\nAffected Spring Products and Versions\n\nSpring Framework:\n * 6.2.0 - 6.2.6\n\n * 6.1.0 - 6.1.19\n\n * 6.0.0 - 6.0.27\n\n * 5.3.0 - 5.3.42\n * Older, unsupported versions are also affected\n\n\n\nMitigation\n\nUsers of affected versions should upgrade to the corresponding fixed version.\n\nAffected version(s)Fix Version Availability 6.2.x\n 6.2.7\nOSS6.1.x\n 6.1.20\nOSS6.0.x\n 6.0.28\n Commercial https://enterprise.spring.io/ 5.3.x\n 5.3.43\n Commercial https://enterprise.spring.io/ \nNo further mitigation steps are necessary.\n\n\nGenerally, we recommend using a dedicated model object with properties only for data binding, or using constructor binding since constructor arguments explicitly declare what to bind together with turning off setter binding through the declarativeBinding flag. See the Model Design section in the reference documentation.\n\nFor setting binding, prefer the use of allowedFields (an explicit list) over disallowedFields.\n\nCredit\n\nThis issue was responsibly reported by the TERASOLUNA Framework Development Team from NTT DATA Group Corporation.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-22233" + }, + { + "type": "WEB", + "url": "https://nvd.nist.gov/vuln-metrics/cvss/v3-calculator?vector=AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:N&version=3.1" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-20" + ], + "severity": "LOW", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-16T20:15:22Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-57c2-2x5j-8gpq/GHSA-57c2-2x5j-8gpq.json b/advisories/unreviewed/2025/05/GHSA-57c2-2x5j-8gpq/GHSA-57c2-2x5j-8gpq.json index 0113c6f5b29..a9d7145ccdf 100644 --- a/advisories/unreviewed/2025/05/GHSA-57c2-2x5j-8gpq/GHSA-57c2-2x5j-8gpq.json +++ b/advisories/unreviewed/2025/05/GHSA-57c2-2x5j-8gpq/GHSA-57c2-2x5j-8gpq.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-57c2-2x5j-8gpq", - "modified": "2025-05-15T21:31:34Z", + "modified": "2025-05-16T21:32:11Z", "published": "2025-05-15T21:31:34Z", "aliases": [ "CVE-2025-2247" ], "details": "The WP-PManager WordPress plugin through 1.2 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-15T20:16:05Z" diff --git a/advisories/unreviewed/2025/05/GHSA-5wcf-r54j-7xp9/GHSA-5wcf-r54j-7xp9.json b/advisories/unreviewed/2025/05/GHSA-5wcf-r54j-7xp9/GHSA-5wcf-r54j-7xp9.json index e75e1f8872a..0f45dccb834 100644 --- a/advisories/unreviewed/2025/05/GHSA-5wcf-r54j-7xp9/GHSA-5wcf-r54j-7xp9.json +++ b/advisories/unreviewed/2025/05/GHSA-5wcf-r54j-7xp9/GHSA-5wcf-r54j-7xp9.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-5wcf-r54j-7xp9", - "modified": "2025-05-06T15:31:09Z", + "modified": "2025-05-16T21:32:10Z", "published": "2025-05-06T15:31:09Z", "aliases": [ "CVE-2025-2898" @@ -22,6 +22,10 @@ { "type": "WEB", "url": "https://https://www.ibm.com/support/pages/node/7232050" + }, + { + "type": "WEB", + "url": "https://www.ibm.com/support/pages/node/7232050" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/05/GHSA-69rr-vrmw-qwxp/GHSA-69rr-vrmw-qwxp.json b/advisories/unreviewed/2025/05/GHSA-69rr-vrmw-qwxp/GHSA-69rr-vrmw-qwxp.json index 683fd146246..d7e338952c1 100644 --- a/advisories/unreviewed/2025/05/GHSA-69rr-vrmw-qwxp/GHSA-69rr-vrmw-qwxp.json +++ b/advisories/unreviewed/2025/05/GHSA-69rr-vrmw-qwxp/GHSA-69rr-vrmw-qwxp.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-69rr-vrmw-qwxp", - "modified": "2025-05-15T21:31:34Z", + "modified": "2025-05-16T21:32:11Z", "published": "2025-05-15T21:31:34Z", "aliases": [ "CVE-2025-1454" ], "details": "The Ninja Pages WordPress plugin through 1.4.2 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-15T20:16:02Z" diff --git a/advisories/unreviewed/2025/05/GHSA-764c-3vwj-x87m/GHSA-764c-3vwj-x87m.json b/advisories/unreviewed/2025/05/GHSA-764c-3vwj-x87m/GHSA-764c-3vwj-x87m.json index e7d15c80b23..566be282812 100644 --- a/advisories/unreviewed/2025/05/GHSA-764c-3vwj-x87m/GHSA-764c-3vwj-x87m.json +++ b/advisories/unreviewed/2025/05/GHSA-764c-3vwj-x87m/GHSA-764c-3vwj-x87m.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-764c-3vwj-x87m", - "modified": "2025-05-15T21:31:34Z", + "modified": "2025-05-16T21:32:11Z", "published": "2025-05-15T21:31:34Z", "aliases": [ "CVE-2024-9709" ], "details": "The EKC Tournament Manager WordPress plugin before 2.2.2 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-15T20:16:01Z" diff --git a/advisories/unreviewed/2025/05/GHSA-857x-55vg-m6q9/GHSA-857x-55vg-m6q9.json b/advisories/unreviewed/2025/05/GHSA-857x-55vg-m6q9/GHSA-857x-55vg-m6q9.json index 24ca5168609..8b56e38fc20 100644 --- a/advisories/unreviewed/2025/05/GHSA-857x-55vg-m6q9/GHSA-857x-55vg-m6q9.json +++ b/advisories/unreviewed/2025/05/GHSA-857x-55vg-m6q9/GHSA-857x-55vg-m6q9.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-857x-55vg-m6q9", - "modified": "2025-05-15T21:31:33Z", + "modified": "2025-05-16T21:32:10Z", "published": "2025-05-15T21:31:33Z", "aliases": [ "CVE-2024-9599" ], "details": "The Popup Box WordPress plugin before 4.7.8 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-15T20:16:00Z" diff --git a/advisories/unreviewed/2025/05/GHSA-8mm9-c4mg-vfjh/GHSA-8mm9-c4mg-vfjh.json b/advisories/unreviewed/2025/05/GHSA-8mm9-c4mg-vfjh/GHSA-8mm9-c4mg-vfjh.json new file mode 100644 index 00000000000..fe73f2bd68b --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-8mm9-c4mg-vfjh/GHSA-8mm9-c4mg-vfjh.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8mm9-c4mg-vfjh", + "modified": "2025-05-16T21:32:12Z", + "published": "2025-05-16T21:32:12Z", + "aliases": [ + "CVE-2025-4802" + ], + "details": "Untrusted LD_LIBRARY_PATH environment variable vulnerability in the GNU C Library version 2.27 to 2.38 allows attacker controlled loading of dynamically shared library in statically compiled setuid binaries that call dlopen (including internal dlopen calls after setlocale or calls to NSS functions such as getaddrinfo).", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-4802" + }, + { + "type": "WEB", + "url": "https://sourceware.org/bugzilla/show_bug.cgi?id=32976" + }, + { + "type": "WEB", + "url": "https://sourceware.org/cgit/glibc/commit/?id=1e18586c5820e329f741d5c710275e165581380e" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-426" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-16T20:15:22Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-8rgg-p4jx-9xw2/GHSA-8rgg-p4jx-9xw2.json b/advisories/unreviewed/2025/05/GHSA-8rgg-p4jx-9xw2/GHSA-8rgg-p4jx-9xw2.json index 47687cfa786..1fe94c1a371 100644 --- a/advisories/unreviewed/2025/05/GHSA-8rgg-p4jx-9xw2/GHSA-8rgg-p4jx-9xw2.json +++ b/advisories/unreviewed/2025/05/GHSA-8rgg-p4jx-9xw2/GHSA-8rgg-p4jx-9xw2.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-8rgg-p4jx-9xw2", - "modified": "2025-05-15T21:31:34Z", + "modified": "2025-05-16T21:32:11Z", "published": "2025-05-15T21:31:34Z", "aliases": [ "CVE-2024-9879" ], "details": "The Melapress File Monitor WordPress plugin before 2.1.1 does not sanitize and escape a parameter before using it in a SQL statement, allowing admins to perform SQL injection attacks", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-89" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-15T20:16:01Z" diff --git a/advisories/unreviewed/2025/05/GHSA-8xj4-6h2f-28vg/GHSA-8xj4-6h2f-28vg.json b/advisories/unreviewed/2025/05/GHSA-8xj4-6h2f-28vg/GHSA-8xj4-6h2f-28vg.json index 833efe75956..a55934455d0 100644 --- a/advisories/unreviewed/2025/05/GHSA-8xj4-6h2f-28vg/GHSA-8xj4-6h2f-28vg.json +++ b/advisories/unreviewed/2025/05/GHSA-8xj4-6h2f-28vg/GHSA-8xj4-6h2f-28vg.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-8xj4-6h2f-28vg", - "modified": "2025-05-15T21:31:34Z", + "modified": "2025-05-16T21:32:11Z", "published": "2025-05-15T21:31:34Z", "aliases": [ "CVE-2025-2203" ], "details": "The FunnelKit WordPress plugin before 3.10.2 does not sanitize and escape a parameter before using it in a SQL statement, allowing admins to perform SQL injection attacks", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-15T20:16:05Z" diff --git a/advisories/unreviewed/2025/05/GHSA-9wh7-3gp5-48qg/GHSA-9wh7-3gp5-48qg.json b/advisories/unreviewed/2025/05/GHSA-9wh7-3gp5-48qg/GHSA-9wh7-3gp5-48qg.json new file mode 100644 index 00000000000..6501801bc7e --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-9wh7-3gp5-48qg/GHSA-9wh7-3gp5-48qg.json @@ -0,0 +1,56 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9wh7-3gp5-48qg", + "modified": "2025-05-16T21:32:13Z", + "published": "2025-05-16T21:32:13Z", + "aliases": [ + "CVE-2025-4810" + ], + "details": "A vulnerability was found in Tenda AC7 15.03.06.44. It has been declared as critical. Affected by this vulnerability is the function formSetRebootTimer of the file /goform/SetRebootTimer. The manipulation of the argument reboot_time leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-4810" + }, + { + "type": "WEB", + "url": "https://lavender-bicycle-a5a.notion.site/Tenda-AC7-formSetRebootTimer-1ed53a41781f80f78851c1c9dfc4f216?pvs=4" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.309265" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.309265" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.573643" + }, + { + "type": "WEB", + "url": "https://www.tenda.com.cn" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-119" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-16T21:15:35Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-c73f-vp33-fj4h/GHSA-c73f-vp33-fj4h.json b/advisories/unreviewed/2025/05/GHSA-c73f-vp33-fj4h/GHSA-c73f-vp33-fj4h.json index 7df03201d40..07b84d84cd9 100644 --- a/advisories/unreviewed/2025/05/GHSA-c73f-vp33-fj4h/GHSA-c73f-vp33-fj4h.json +++ b/advisories/unreviewed/2025/05/GHSA-c73f-vp33-fj4h/GHSA-c73f-vp33-fj4h.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-c73f-vp33-fj4h", - "modified": "2025-05-15T21:31:34Z", + "modified": "2025-05-16T21:32:11Z", "published": "2025-05-15T21:31:34Z", "aliases": [ "CVE-2024-9663" ], "details": "The CYAN Backup WordPress plugin before 2.5.3 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-15T20:16:01Z" diff --git a/advisories/unreviewed/2025/05/GHSA-c9v2-rqm3-3g5r/GHSA-c9v2-rqm3-3g5r.json b/advisories/unreviewed/2025/05/GHSA-c9v2-rqm3-3g5r/GHSA-c9v2-rqm3-3g5r.json index dffa3842d11..3787e3deed3 100644 --- a/advisories/unreviewed/2025/05/GHSA-c9v2-rqm3-3g5r/GHSA-c9v2-rqm3-3g5r.json +++ b/advisories/unreviewed/2025/05/GHSA-c9v2-rqm3-3g5r/GHSA-c9v2-rqm3-3g5r.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-c9v2-rqm3-3g5r", - "modified": "2025-05-15T21:31:26Z", + "modified": "2025-05-16T21:32:10Z", "published": "2025-05-15T21:31:26Z", "aliases": [ "CVE-2023-5932" ], "details": "The Travelpayouts: All Travel Brands in One Place WordPress plugin before 1.1.14 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-15T20:15:28Z" diff --git a/advisories/unreviewed/2025/05/GHSA-ccp4-cg9p-v3f5/GHSA-ccp4-cg9p-v3f5.json b/advisories/unreviewed/2025/05/GHSA-ccp4-cg9p-v3f5/GHSA-ccp4-cg9p-v3f5.json index 813596c0d8f..a8cc02cbfa9 100644 --- a/advisories/unreviewed/2025/05/GHSA-ccp4-cg9p-v3f5/GHSA-ccp4-cg9p-v3f5.json +++ b/advisories/unreviewed/2025/05/GHSA-ccp4-cg9p-v3f5/GHSA-ccp4-cg9p-v3f5.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-ccp4-cg9p-v3f5", - "modified": "2025-05-15T21:31:33Z", + "modified": "2025-05-16T21:32:10Z", "published": "2025-05-15T21:31:33Z", "aliases": [ "CVE-2024-8851" ], "details": "The Polls CP WordPress plugin before 1.0.77 does not sanitise and escape some of its poll settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multi site setup).", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-15T20:15:59Z" diff --git a/advisories/unreviewed/2025/05/GHSA-fcpx-h44g-vx2x/GHSA-fcpx-h44g-vx2x.json b/advisories/unreviewed/2025/05/GHSA-fcpx-h44g-vx2x/GHSA-fcpx-h44g-vx2x.json index 3d66a1f0004..40149eae869 100644 --- a/advisories/unreviewed/2025/05/GHSA-fcpx-h44g-vx2x/GHSA-fcpx-h44g-vx2x.json +++ b/advisories/unreviewed/2025/05/GHSA-fcpx-h44g-vx2x/GHSA-fcpx-h44g-vx2x.json @@ -26,7 +26,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-121" + "CWE-121", + "CWE-787" ], "severity": "CRITICAL", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/05/GHSA-fvhp-x5xr-47xv/GHSA-fvhp-x5xr-47xv.json b/advisories/unreviewed/2025/05/GHSA-fvhp-x5xr-47xv/GHSA-fvhp-x5xr-47xv.json new file mode 100644 index 00000000000..a3418352aac --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-fvhp-x5xr-47xv/GHSA-fvhp-x5xr-47xv.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fvhp-x5xr-47xv", + "modified": "2025-05-16T21:32:12Z", + "published": "2025-05-16T21:32:12Z", + "aliases": [ + "CVE-2022-4363" + ], + "details": "The Wholesale Market WordPress plugin before 2.2.2, Wholesale Market for WooCommerce WordPress plugin before 2.0.1 have a flawed CSRF check when updating their settings, which could allow attackers to make a logged in admin update them via a CSRF attack", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-4363" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/734dba0b-f550-4372-884a-d42f7b0c00c7" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-16T21:15:33Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-fx39-f7f6-8prj/GHSA-fx39-f7f6-8prj.json b/advisories/unreviewed/2025/05/GHSA-fx39-f7f6-8prj/GHSA-fx39-f7f6-8prj.json new file mode 100644 index 00000000000..066a407e8d2 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-fx39-f7f6-8prj/GHSA-fx39-f7f6-8prj.json @@ -0,0 +1,56 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fx39-f7f6-8prj", + "modified": "2025-05-16T21:32:12Z", + "published": "2025-05-16T21:32:12Z", + "aliases": [ + "CVE-2025-4809" + ], + "details": "A vulnerability was found in Tenda AC7 15.03.06.44. It has been classified as critical. Affected is the function fromSafeSetMacFilter of the file /goform/setMacFilterCfg. The manipulation of the argument deviceList leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-4809" + }, + { + "type": "WEB", + "url": "https://lavender-bicycle-a5a.notion.site/Tenda-AC7-fromSafeSetMacFilter-1ed53a41781f80cbbf13c8d4cc405ed1?pvs=4" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.309264" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.309264" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.573642" + }, + { + "type": "WEB", + "url": "https://www.tenda.com.cn" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-119" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-16T20:15:22Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-gm5r-42wg-m55j/GHSA-gm5r-42wg-m55j.json b/advisories/unreviewed/2025/05/GHSA-gm5r-42wg-m55j/GHSA-gm5r-42wg-m55j.json new file mode 100644 index 00000000000..808cc9623de --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-gm5r-42wg-m55j/GHSA-gm5r-42wg-m55j.json @@ -0,0 +1,56 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gm5r-42wg-m55j", + "modified": "2025-05-16T21:32:12Z", + "published": "2025-05-16T21:32:12Z", + "aliases": [ + "CVE-2025-4808" + ], + "details": "A vulnerability was found in PHPGurukul Park Ticketing Management System 2.0 and classified as critical. This issue affects some unknown processing of the file /add-normal-ticket.php. The manipulation of the argument noadult leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-4808" + }, + { + "type": "WEB", + "url": "https://github.com/f1rstb100d/myCVE/issues/11" + }, + { + "type": "WEB", + "url": "https://phpgurukul.com" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.309263" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.309263" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.572602" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-74" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-16T20:15:22Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-jgrx-7c84-m3h2/GHSA-jgrx-7c84-m3h2.json b/advisories/unreviewed/2025/05/GHSA-jgrx-7c84-m3h2/GHSA-jgrx-7c84-m3h2.json new file mode 100644 index 00000000000..be102b39f6e --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-jgrx-7c84-m3h2/GHSA-jgrx-7c84-m3h2.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-jgrx-7c84-m3h2", + "modified": "2025-05-16T21:32:12Z", + "published": "2025-05-16T21:32:12Z", + "aliases": [ + "CVE-2025-4806" + ], + "details": "A vulnerability, which was classified as critical, has been found in SourceCodester/oretnom23 Stock Management System 1.0. Affected by this issue is some unknown functionality of the file /admin/?page=back_order/view_bo. The manipulation of the argument ID leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-4806" + }, + { + "type": "WEB", + "url": "https://github.com/th3w0lf-1337/Vulnerabilities/blob/main/SMS-PHP/SQLi/Back-Order/info.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.309260" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.309260" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.572219" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-74" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-16T19:15:52Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-jp57-j3j6-rmm2/GHSA-jp57-j3j6-rmm2.json b/advisories/unreviewed/2025/05/GHSA-jp57-j3j6-rmm2/GHSA-jp57-j3j6-rmm2.json new file mode 100644 index 00000000000..2218efa2327 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-jp57-j3j6-rmm2/GHSA-jp57-j3j6-rmm2.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-jp57-j3j6-rmm2", + "modified": "2025-05-16T21:32:13Z", + "published": "2025-05-16T21:32:13Z", + "aliases": [ + "CVE-2025-4805" + ], + "details": "Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WatchGuard Fireware OS allows Stored XSS. This vulnerability requires an authenticated administrator session to a locally managed Firebox.\nThis issue affects Fireware OS: from 12.0 through 12.11.1.", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:P/VC:N/VI:N/VA:N/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-4805" + }, + { + "type": "WEB", + "url": "https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2025-00007" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-16T21:15:35Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-jwx6-c8mf-mg73/GHSA-jwx6-c8mf-mg73.json b/advisories/unreviewed/2025/05/GHSA-jwx6-c8mf-mg73/GHSA-jwx6-c8mf-mg73.json new file mode 100644 index 00000000000..bc3acf1cc7d --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-jwx6-c8mf-mg73/GHSA-jwx6-c8mf-mg73.json @@ -0,0 +1,56 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-jwx6-c8mf-mg73", + "modified": "2025-05-16T21:32:12Z", + "published": "2025-05-16T21:32:12Z", + "aliases": [ + "CVE-2025-4795" + ], + "details": "A vulnerability classified as critical has been found in gongfuxiang schoolcms 2.3.1. This affects the function SaveInfo of the file /index.php?m=Admin&c=article&a=SaveInfo. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-4795" + }, + { + "type": "WEB", + "url": "https://github.com/adminnerr/cve/issues/1" + }, + { + "type": "WEB", + "url": "https://github.com/adminnerr/cve/issues/1#issue-3044819789" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.309105" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.309105" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.572601" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-74" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-16T19:15:52Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-p694-pgrr-cmpq/GHSA-p694-pgrr-cmpq.json b/advisories/unreviewed/2025/05/GHSA-p694-pgrr-cmpq/GHSA-p694-pgrr-cmpq.json index 01a1de94778..5ac75ee71c3 100644 --- a/advisories/unreviewed/2025/05/GHSA-p694-pgrr-cmpq/GHSA-p694-pgrr-cmpq.json +++ b/advisories/unreviewed/2025/05/GHSA-p694-pgrr-cmpq/GHSA-p694-pgrr-cmpq.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-p694-pgrr-cmpq", - "modified": "2025-05-15T21:31:34Z", + "modified": "2025-05-16T21:32:11Z", "published": "2025-05-15T21:31:34Z", "aliases": [ "CVE-2024-9711" ], "details": "The EKC Tournament Manager WordPress plugin before 2.2.2 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-15T20:16:01Z" diff --git a/advisories/unreviewed/2025/05/GHSA-phfp-9x4x-56gj/GHSA-phfp-9x4x-56gj.json b/advisories/unreviewed/2025/05/GHSA-phfp-9x4x-56gj/GHSA-phfp-9x4x-56gj.json index 501f1040ab3..1c3d3a7b7ae 100644 --- a/advisories/unreviewed/2025/05/GHSA-phfp-9x4x-56gj/GHSA-phfp-9x4x-56gj.json +++ b/advisories/unreviewed/2025/05/GHSA-phfp-9x4x-56gj/GHSA-phfp-9x4x-56gj.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-phfp-9x4x-56gj", - "modified": "2025-05-15T21:31:26Z", + "modified": "2025-05-16T21:32:10Z", "published": "2025-05-15T21:31:26Z", "aliases": [ "CVE-2023-2334" ], "details": "The edd-google-sheet-connector-pro WordPress plugin before 1.4, Easy Digital Downloads Google Sheet Connector WordPress plugin before 1.6.6 does not have CSRF check when updating its Access Code, which could allow attackers to make logged in admin change the access code to an arbitrary one via a CSRF attack", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-15T20:15:24Z" diff --git a/advisories/unreviewed/2025/05/GHSA-r43x-w85h-p334/GHSA-r43x-w85h-p334.json b/advisories/unreviewed/2025/05/GHSA-r43x-w85h-p334/GHSA-r43x-w85h-p334.json index 2be4989276a..9520745114b 100644 --- a/advisories/unreviewed/2025/05/GHSA-r43x-w85h-p334/GHSA-r43x-w85h-p334.json +++ b/advisories/unreviewed/2025/05/GHSA-r43x-w85h-p334/GHSA-r43x-w85h-p334.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-r43x-w85h-p334", - "modified": "2025-05-15T21:31:34Z", + "modified": "2025-05-16T21:32:11Z", "published": "2025-05-15T21:31:34Z", "aliases": [ "CVE-2025-2248" ], "details": "The WP-PManager WordPress plugin through 1.2 does not sanitize and escape a parameter before using it in a SQL statement, allowing admins to perform SQL injection attacks", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-15T20:16:06Z" diff --git a/advisories/unreviewed/2025/05/GHSA-rf8c-553r-qgf7/GHSA-rf8c-553r-qgf7.json b/advisories/unreviewed/2025/05/GHSA-rf8c-553r-qgf7/GHSA-rf8c-553r-qgf7.json index ef3650b436d..09a4b1c4843 100644 --- a/advisories/unreviewed/2025/05/GHSA-rf8c-553r-qgf7/GHSA-rf8c-553r-qgf7.json +++ b/advisories/unreviewed/2025/05/GHSA-rf8c-553r-qgf7/GHSA-rf8c-553r-qgf7.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-rf8c-553r-qgf7", - "modified": "2025-05-15T21:31:27Z", + "modified": "2025-05-16T21:32:10Z", "published": "2025-05-15T21:31:27Z", "aliases": [ "CVE-2023-6541" ], "details": "The Allow SVG WordPress plugin before 1.2.0 does not sanitize uploaded SVG files, which could allow users with a role as low as Author to upload a malicious SVG containing XSS payloads.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-15T20:15:29Z" diff --git a/advisories/unreviewed/2025/05/GHSA-vcpp-7qvc-rxv7/GHSA-vcpp-7qvc-rxv7.json b/advisories/unreviewed/2025/05/GHSA-vcpp-7qvc-rxv7/GHSA-vcpp-7qvc-rxv7.json index 55391a8d639..f1043326e75 100644 --- a/advisories/unreviewed/2025/05/GHSA-vcpp-7qvc-rxv7/GHSA-vcpp-7qvc-rxv7.json +++ b/advisories/unreviewed/2025/05/GHSA-vcpp-7qvc-rxv7/GHSA-vcpp-7qvc-rxv7.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-vcpp-7qvc-rxv7", - "modified": "2025-05-15T21:31:26Z", + "modified": "2025-05-16T21:32:10Z", "published": "2025-05-15T21:31:26Z", "aliases": [ "CVE-2023-5934" ], "details": "The Travelpayouts: All Travel Brands in One Place WordPress plugin before 1.1.13 does not have CSRF check in place when importing settings from the v1, which could allow attackers to make a logged in admin update some settings via a CSRF attack", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-15T20:15:28Z" diff --git a/advisories/unreviewed/2025/05/GHSA-vgrm-7j7m-pjmg/GHSA-vgrm-7j7m-pjmg.json b/advisories/unreviewed/2025/05/GHSA-vgrm-7j7m-pjmg/GHSA-vgrm-7j7m-pjmg.json index c0690f68882..f5de3548e17 100644 --- a/advisories/unreviewed/2025/05/GHSA-vgrm-7j7m-pjmg/GHSA-vgrm-7j7m-pjmg.json +++ b/advisories/unreviewed/2025/05/GHSA-vgrm-7j7m-pjmg/GHSA-vgrm-7j7m-pjmg.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-vgrm-7j7m-pjmg", - "modified": "2025-05-15T21:31:33Z", + "modified": "2025-05-16T21:32:10Z", "published": "2025-05-15T21:31:33Z", "aliases": [ "CVE-2024-9450" ], "details": "The Free Booking Plugin for Hotels, Restaurants and Car Rentals WordPress plugin before 1.3.15 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in subscriber change them via a CSRF attack", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-15T20:16:00Z" diff --git a/advisories/unreviewed/2025/05/GHSA-vr72-pg8g-8362/GHSA-vr72-pg8g-8362.json b/advisories/unreviewed/2025/05/GHSA-vr72-pg8g-8362/GHSA-vr72-pg8g-8362.json index 864c9410aef..f39227874c4 100644 --- a/advisories/unreviewed/2025/05/GHSA-vr72-pg8g-8362/GHSA-vr72-pg8g-8362.json +++ b/advisories/unreviewed/2025/05/GHSA-vr72-pg8g-8362/GHSA-vr72-pg8g-8362.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-vr72-pg8g-8362", - "modified": "2025-05-15T21:31:34Z", + "modified": "2025-05-16T21:32:11Z", "published": "2025-05-15T21:31:34Z", "aliases": [ "CVE-2024-9765" ], "details": "The EKC Tournament Manager WordPress plugin before 2.2.2 allows a logged in admin to download system files outside of the WordPress directory", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-15T20:16:01Z" diff --git a/advisories/unreviewed/2025/05/GHSA-w4w8-5w5f-5gvr/GHSA-w4w8-5w5f-5gvr.json b/advisories/unreviewed/2025/05/GHSA-w4w8-5w5f-5gvr/GHSA-w4w8-5w5f-5gvr.json index c36aceb999a..e7dbf8b74e8 100644 --- a/advisories/unreviewed/2025/05/GHSA-w4w8-5w5f-5gvr/GHSA-w4w8-5w5f-5gvr.json +++ b/advisories/unreviewed/2025/05/GHSA-w4w8-5w5f-5gvr/GHSA-w4w8-5w5f-5gvr.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-w4w8-5w5f-5gvr", - "modified": "2025-05-15T21:31:33Z", + "modified": "2025-05-16T21:32:11Z", "published": "2025-05-15T21:31:33Z", "aliases": [ "CVE-2024-9645" ], "details": "The Post Grid, Posts Slider, Posts Carousel, Post Filter, Post Masonry WordPress plugin before 2.2.93 does not validate and escape some of its block options before outputting them back in a page/post where the block is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-15T20:16:00Z" diff --git a/advisories/unreviewed/2025/05/GHSA-x4wp-4w98-53c5/GHSA-x4wp-4w98-53c5.json b/advisories/unreviewed/2025/05/GHSA-x4wp-4w98-53c5/GHSA-x4wp-4w98-53c5.json new file mode 100644 index 00000000000..5ee07028c59 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-x4wp-4w98-53c5/GHSA-x4wp-4w98-53c5.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-x4wp-4w98-53c5", + "modified": "2025-05-16T21:32:13Z", + "published": "2025-05-16T21:32:13Z", + "aliases": [ + "CVE-2025-48188" + ], + "details": "libpspp-core.a in GNU PSPP through 2.0.1 has an incorrect call from fill_buffer (in data/encrypted-file.c) to the Gnulib rijndaelDecrypt function, leading to a heap-based buffer over-read.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-48188" + }, + { + "type": "WEB", + "url": "https://savannah.gnu.org/bugs/?67079" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-125" + ], + "severity": "LOW", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-16T21:15:35Z" + } +} \ No newline at end of file