diff --git a/advisories/github-reviewed/2019/12/GHSA-wjx8-cgrm-hh8p/GHSA-wjx8-cgrm-hh8p.json b/advisories/github-reviewed/2019/12/GHSA-wjx8-cgrm-hh8p/GHSA-wjx8-cgrm-hh8p.json index a0c3c39605a..24dd7077e8c 100644 --- a/advisories/github-reviewed/2019/12/GHSA-wjx8-cgrm-hh8p/GHSA-wjx8-cgrm-hh8p.json +++ b/advisories/github-reviewed/2019/12/GHSA-wjx8-cgrm-hh8p/GHSA-wjx8-cgrm-hh8p.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-wjx8-cgrm-hh8p", - "modified": "2023-04-25T16:32:33Z", + "modified": "2024-02-05T10:52:24Z", "published": "2019-12-17T22:53:10Z", "aliases": [ "CVE-2019-19745" @@ -52,6 +52,44 @@ ] } ] + }, + { + "package": { + "ecosystem": "Packagist", + "name": "contao/contao" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "4.0.0" + }, + { + "fixed": "4.4.46" + } + ] + } + ] + }, + { + "package": { + "ecosystem": "Packagist", + "name": "contao/contao" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "4.5.0" + }, + { + "fixed": "4.8.6" + } + ] + } + ] } ], "references": [ @@ -71,6 +109,10 @@ "type": "WEB", "url": "https://contao.org/en/security-advisories/unrestricted-file-uploads.html" }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/contao/contao/CVE-2019-19745.yaml" + }, { "type": "WEB", "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/contao/core-bundle/CVE-2019-19745.yaml" @@ -87,6 +129,6 @@ "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2019-12-17T19:42:31Z", - "nvd_published_at": null + "nvd_published_at": "2019-12-17T15:15:25Z" } } \ No newline at end of file diff --git a/advisories/github-reviewed/2020/09/GHSA-f7wm-x4gw-6m23/GHSA-f7wm-x4gw-6m23.json b/advisories/github-reviewed/2020/09/GHSA-f7wm-x4gw-6m23/GHSA-f7wm-x4gw-6m23.json index 5909654b689..6f2cb618cfd 100644 --- a/advisories/github-reviewed/2020/09/GHSA-f7wm-x4gw-6m23/GHSA-f7wm-x4gw-6m23.json +++ b/advisories/github-reviewed/2020/09/GHSA-f7wm-x4gw-6m23/GHSA-f7wm-x4gw-6m23.json @@ -53,6 +53,63 @@ } ] }, + { + "package": { + "ecosystem": "Packagist", + "name": "contao/contao" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "4.0.0" + }, + { + "fixed": "4.4.52" + } + ] + } + ] + }, + { + "package": { + "ecosystem": "Packagist", + "name": "contao/contao" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "4.5.0" + }, + { + "fixed": "4.9.6" + } + ] + } + ] + }, + { + "package": { + "ecosystem": "Packagist", + "name": "contao/contao" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "4.10.0" + }, + { + "fixed": "4.10.1" + } + ] + } + ] + }, { "package": { "ecosystem": "Packagist", @@ -70,9 +127,6 @@ } ] } - ], - "versions": [ - "4.10.0" ] } ], @@ -93,6 +147,14 @@ "type": "WEB", "url": "https://contao.org/en/security-advisories/insert-tag-injection-in-forms.html" }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/contao/contao/CVE-2020-25768.yaml" + }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/contao/core-bundle/CVE-2020-25768.yaml" + }, { "type": "PACKAGE", "url": "https://github.com/contao/contao" diff --git a/advisories/github-reviewed/2021/07/GHSA-h58v-c6rf-g9f7/GHSA-h58v-c6rf-g9f7.json b/advisories/github-reviewed/2021/07/GHSA-h58v-c6rf-g9f7/GHSA-h58v-c6rf-g9f7.json index c9d2cc9cad3..449e87c9f33 100644 --- a/advisories/github-reviewed/2021/07/GHSA-h58v-c6rf-g9f7/GHSA-h58v-c6rf-g9f7.json +++ b/advisories/github-reviewed/2021/07/GHSA-h58v-c6rf-g9f7/GHSA-h58v-c6rf-g9f7.json @@ -52,6 +52,44 @@ ] } ] + }, + { + "package": { + "ecosystem": "Packagist", + "name": "contao/contao" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "4.5.0" + }, + { + "fixed": "4.9.16" + } + ] + } + ] + }, + { + "package": { + "ecosystem": "Packagist", + "name": "contao/contao" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "4.10.0" + }, + { + "fixed": "4.11.5" + } + ] + } + ] } ], "references": [ @@ -67,6 +105,14 @@ "type": "WEB", "url": "https://contao.org/en/security-advisories/cross-site-scripting-in-the-system-log-2021.html" }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/contao/contao/CVE-2021-35210.yaml" + }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/contao/core-bundle/CVE-2021-35210.yaml" + }, { "type": "PACKAGE", "url": "https://github.com/contao/contao"