diff --git a/advisories/unreviewed/2024/02/GHSA-r9wf-7v4g-f656/GHSA-r9wf-7v4g-f656.json b/advisories/unreviewed/2024/02/GHSA-r9wf-7v4g-f656/GHSA-r9wf-7v4g-f656.json index a08590c3fd2..3993780e4f6 100644 --- a/advisories/unreviewed/2024/02/GHSA-r9wf-7v4g-f656/GHSA-r9wf-7v4g-f656.json +++ b/advisories/unreviewed/2024/02/GHSA-r9wf-7v4g-f656/GHSA-r9wf-7v4g-f656.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-r9wf-7v4g-f656", - "modified": "2024-02-29T03:33:17Z", + "modified": "2024-11-05T00:31:25Z", "published": "2024-02-29T03:33:17Z", "aliases": [ "CVE-2024-21726" ], "details": "Inadequate content filtering leads to XSS vulnerabilities in various components.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-29T01:44:03Z" diff --git a/advisories/unreviewed/2024/03/GHSA-858p-q38q-g87r/GHSA-858p-q38q-g87r.json b/advisories/unreviewed/2024/03/GHSA-858p-q38q-g87r/GHSA-858p-q38q-g87r.json index 43031010581..6ebaae44a0e 100644 --- a/advisories/unreviewed/2024/03/GHSA-858p-q38q-g87r/GHSA-858p-q38q-g87r.json +++ b/advisories/unreviewed/2024/03/GHSA-858p-q38q-g87r/GHSA-858p-q38q-g87r.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-858p-q38q-g87r", - "modified": "2024-03-20T15:32:56Z", + "modified": "2024-11-05T00:31:26Z", "published": "2024-03-20T15:32:56Z", "aliases": [ "CVE-2023-46840" ], "details": "Incorrect placement of a preprocessor directive in source code results\nin logic that doesn't operate as intended when support for HVM guests is\ncompiled out of Xen.\n", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:H/A:N" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-20T11:15:08Z" diff --git a/advisories/unreviewed/2024/03/GHSA-r55q-74mf-r3h8/GHSA-r55q-74mf-r3h8.json b/advisories/unreviewed/2024/03/GHSA-r55q-74mf-r3h8/GHSA-r55q-74mf-r3h8.json index 8700405429c..f033b4a53e5 100644 --- a/advisories/unreviewed/2024/03/GHSA-r55q-74mf-r3h8/GHSA-r55q-74mf-r3h8.json +++ b/advisories/unreviewed/2024/03/GHSA-r55q-74mf-r3h8/GHSA-r55q-74mf-r3h8.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-r55q-74mf-r3h8", - "modified": "2024-03-14T00:31:05Z", + "modified": "2024-11-05T00:31:25Z", "published": "2024-03-08T03:31:24Z", "aliases": [ "CVE-2024-23245" ], "details": "This issue was addressed by adding an additional prompt for user consent. This issue is fixed in macOS Sonoma 14.4, macOS Monterey 12.7.4, macOS Ventura 13.6.5. Third-party shortcuts may use a legacy action from Automator to send events to apps without user consent.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N" + } ], "affected": [ @@ -47,7 +50,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-08T02:15:48Z" diff --git a/advisories/unreviewed/2024/03/GHSA-v2jv-c66v-hqhv/GHSA-v2jv-c66v-hqhv.json b/advisories/unreviewed/2024/03/GHSA-v2jv-c66v-hqhv/GHSA-v2jv-c66v-hqhv.json index 3eb3802945a..f509f0e0463 100644 --- a/advisories/unreviewed/2024/03/GHSA-v2jv-c66v-hqhv/GHSA-v2jv-c66v-hqhv.json +++ b/advisories/unreviewed/2024/03/GHSA-v2jv-c66v-hqhv/GHSA-v2jv-c66v-hqhv.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-v2jv-c66v-hqhv", - "modified": "2024-03-13T21:31:02Z", + "modified": "2024-11-05T00:31:25Z", "published": "2024-03-08T03:31:24Z", "aliases": [ "CVE-2024-23242" ], "details": "A privacy issue was addressed by not logging contents of text fields. This issue is fixed in macOS Sonoma 14.4, iOS 17.4 and iPadOS 17.4. An app may be able to view Mail data.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-532" ], - "severity": null, + "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-08T02:15:48Z" diff --git a/advisories/unreviewed/2024/04/GHSA-f834-hvgh-g5v9/GHSA-f834-hvgh-g5v9.json b/advisories/unreviewed/2024/04/GHSA-f834-hvgh-g5v9/GHSA-f834-hvgh-g5v9.json index ff425cf9631..c9485421d20 100644 --- a/advisories/unreviewed/2024/04/GHSA-f834-hvgh-g5v9/GHSA-f834-hvgh-g5v9.json +++ b/advisories/unreviewed/2024/04/GHSA-f834-hvgh-g5v9/GHSA-f834-hvgh-g5v9.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-f834-hvgh-g5v9", - "modified": "2024-04-10T21:30:31Z", + "modified": "2024-11-05T00:31:26Z", "published": "2024-04-10T21:30:31Z", "aliases": [ "CVE-2021-47192" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: core: sysfs: Fix hang when device state is set via sysfs\n\nThis fixes a regression added with:\n\ncommit f0f82e2476f6 (\"scsi: core: Fix capacity set to zero after\nofflinining device\")\n\nThe problem is that after iSCSI recovery, iscsid will call into the kernel\nto set the dev's state to running, and with that patch we now call\nscsi_rescan_device() with the state_mutex held. If the SCSI error handler\nthread is just starting to test the device in scsi_send_eh_cmnd() then it's\ngoing to try to grab the state_mutex.\n\nWe are then stuck, because when scsi_rescan_device() tries to send its I/O\nscsi_queue_rq() calls -> scsi_host_queue_ready() -> scsi_host_in_recovery()\nwhich will return true (the host state is still in recovery) and I/O will\njust be requeued. scsi_send_eh_cmnd() will then never be able to grab the\nstate_mutex to finish error handling.\n\nTo prevent the deadlock move the rescan-related code to after we drop the\nstate_mutex.\n\nThis also adds a check for if we are already in the running state. This\nprevents extra scans and helps the iscsid case where if the transport class\nhas already onlined the device during its recovery process then we don't\nneed userspace to do it again plus possibly block that daemon.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + } ], "affected": [ @@ -39,7 +42,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-10T19:15:47Z" diff --git a/advisories/unreviewed/2024/04/GHSA-h7qf-g4wg-6f83/GHSA-h7qf-g4wg-6f83.json b/advisories/unreviewed/2024/04/GHSA-h7qf-g4wg-6f83/GHSA-h7qf-g4wg-6f83.json index f35ddf10eab..25fe716d8e1 100644 --- a/advisories/unreviewed/2024/04/GHSA-h7qf-g4wg-6f83/GHSA-h7qf-g4wg-6f83.json +++ b/advisories/unreviewed/2024/04/GHSA-h7qf-g4wg-6f83/GHSA-h7qf-g4wg-6f83.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-922" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/04/GHSA-p939-fx2c-j96p/GHSA-p939-fx2c-j96p.json b/advisories/unreviewed/2024/04/GHSA-p939-fx2c-j96p/GHSA-p939-fx2c-j96p.json index d02a5f656ad..d586137ed13 100644 --- a/advisories/unreviewed/2024/04/GHSA-p939-fx2c-j96p/GHSA-p939-fx2c-j96p.json +++ b/advisories/unreviewed/2024/04/GHSA-p939-fx2c-j96p/GHSA-p939-fx2c-j96p.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-p939-fx2c-j96p", - "modified": "2024-04-03T15:30:43Z", + "modified": "2024-11-05T00:31:26Z", "published": "2024-04-03T15:30:43Z", "aliases": [ "CVE-2024-26708" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nmptcp: really cope with fastopen race\n\nFastopen and PM-trigger subflow shutdown can race, as reported by\nsyzkaller.\n\nIn my first attempt to close such race, I missed the fact that\nthe subflow status can change again before the subflow_state_change\ncallback is invoked.\n\nAddress the issue additionally copying with all the states directly\nreachable from TCP_FIN_WAIT1.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -35,7 +38,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-03T15:15:53Z" diff --git a/advisories/unreviewed/2024/05/GHSA-3f6x-6hg4-cr6h/GHSA-3f6x-6hg4-cr6h.json b/advisories/unreviewed/2024/05/GHSA-3f6x-6hg4-cr6h/GHSA-3f6x-6hg4-cr6h.json index 30c861300b8..ecbd866bd1b 100644 --- a/advisories/unreviewed/2024/05/GHSA-3f6x-6hg4-cr6h/GHSA-3f6x-6hg4-cr6h.json +++ b/advisories/unreviewed/2024/05/GHSA-3f6x-6hg4-cr6h/GHSA-3f6x-6hg4-cr6h.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-3f6x-6hg4-cr6h", - "modified": "2024-05-07T18:30:34Z", + "modified": "2024-11-05T00:31:26Z", "published": "2024-05-07T18:30:34Z", "aliases": [ "CVE-2024-33147" ], "details": "J2EEFAST v2.7.0 was discovered to contain a SQL injection vulnerability via the sql_filter parameter in the authRoleList function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-07T17:15:08Z" diff --git a/advisories/unreviewed/2024/05/GHSA-5hmx-w727-fqq7/GHSA-5hmx-w727-fqq7.json b/advisories/unreviewed/2024/05/GHSA-5hmx-w727-fqq7/GHSA-5hmx-w727-fqq7.json index 97b8d36e487..fe591e22d65 100644 --- a/advisories/unreviewed/2024/05/GHSA-5hmx-w727-fqq7/GHSA-5hmx-w727-fqq7.json +++ b/advisories/unreviewed/2024/05/GHSA-5hmx-w727-fqq7/GHSA-5hmx-w727-fqq7.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-5hmx-w727-fqq7", - "modified": "2024-05-21T15:31:43Z", + "modified": "2024-11-05T00:31:27Z", "published": "2024-05-21T15:31:43Z", "aliases": [ "CVE-2021-47350" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\npowerpc/mm: Fix lockup on kernel exec fault\n\nThe powerpc kernel is not prepared to handle exec faults from kernel.\nEspecially, the function is_exec_fault() will return 'false' when an\nexec fault is taken by kernel, because the check is based on reading\ncurrent->thread.regs->trap which contains the trap from user.\n\nFor instance, when provoking a LKDTM EXEC_USERSPACE test,\ncurrent->thread.regs->trap is set to SYSCALL trap (0xc00), and\nthe fault taken by the kernel is not seen as an exec fault by\nset_access_flags_filter().\n\nCommit d7df2443cd5f (\"powerpc/mm: Fix spurious segfaults on radix\nwith autonuma\") made it clear and handled it properly. But later on\ncommit d3ca587404b3 (\"powerpc/mm: Fix reporting of kernel execute\nfaults\") removed that handling, introducing test based on error_code.\nAnd here is the problem, because on the 603 all upper bits of SRR1\nget cleared when the TLB instruction miss handler bails out to ISI.\n\nUntil commit cbd7e6ca0210 (\"powerpc/fault: Avoid heavy\nsearch_exception_tables() verification\"), an exec fault from kernel\nat a userspace address was indirectly caught by the lack of entry for\nthat address in the exception tables. But after that commit the\nkernel mainly relies on KUAP or on core mm handling to catch wrong\nuser accesses. Here the access is not wrong, so mm handles it.\nIt is a minor fault because PAGE_EXEC is not set,\nset_access_flags_filter() should set PAGE_EXEC and voila.\nBut as is_exec_fault() returns false as explained in the beginning,\nset_access_flags_filter() bails out without setting PAGE_EXEC flag,\nwhich leads to a forever minor exec fault.\n\nAs the kernel is not prepared to handle such exec faults, the thing to\ndo is to fire in bad_kernel_fault() for any exec fault taken by the\nkernel, as it was prior to commit d3ca587404b3.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -43,7 +46,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:21Z" diff --git a/advisories/unreviewed/2024/05/GHSA-cqgv-cq5q-68pf/GHSA-cqgv-cq5q-68pf.json b/advisories/unreviewed/2024/05/GHSA-cqgv-cq5q-68pf/GHSA-cqgv-cq5q-68pf.json index 253a9464851..8fbd1f1ac76 100644 --- a/advisories/unreviewed/2024/05/GHSA-cqgv-cq5q-68pf/GHSA-cqgv-cq5q-68pf.json +++ b/advisories/unreviewed/2024/05/GHSA-cqgv-cq5q-68pf/GHSA-cqgv-cq5q-68pf.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-cqgv-cq5q-68pf", - "modified": "2024-05-21T15:31:39Z", + "modified": "2024-11-05T00:31:26Z", "published": "2024-05-21T15:31:39Z", "aliases": [ "CVE-2021-47224" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: ll_temac: Make sure to free skb when it is completely used\n\nWith the skb pointer piggy-backed on the TX BD, we have a simple and\nefficient way to free the skb buffer when the frame has been transmitted.\nBut in order to avoid freeing the skb while there are still fragments from\nthe skb in use, we need to piggy-back on the TX BD of the skb, not the\nfirst.\n\nWithout this, we are doing use-after-free on the DMA side, when the first\nBD of a multi TX BD packet is seen as completed in xmit_done, and the\nremaining BDs are still being processed.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -39,7 +42,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:11Z" diff --git a/advisories/unreviewed/2024/06/GHSA-6w85-2w93-mrpr/GHSA-6w85-2w93-mrpr.json b/advisories/unreviewed/2024/06/GHSA-6w85-2w93-mrpr/GHSA-6w85-2w93-mrpr.json index 2688aa44942..1a3b596f4ba 100644 --- a/advisories/unreviewed/2024/06/GHSA-6w85-2w93-mrpr/GHSA-6w85-2w93-mrpr.json +++ b/advisories/unreviewed/2024/06/GHSA-6w85-2w93-mrpr/GHSA-6w85-2w93-mrpr.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-6w85-2w93-mrpr", - "modified": "2024-06-27T15:30:39Z", + "modified": "2024-11-05T00:31:27Z", "published": "2024-06-19T15:30:54Z", "aliases": [ "CVE-2024-38587" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nspeakup: Fix sizeof() vs ARRAY_SIZE() bug\n\nThe \"buf\" pointer is an array of u16 values. This code should be\nusing ARRAY_SIZE() (which is 256) instead of sizeof() (which is 512),\notherwise it can the still got out of bounds.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" + } ], "affected": [ @@ -63,7 +66,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-19T14:15:18Z" diff --git a/advisories/unreviewed/2024/07/GHSA-g874-pfg5-pj33/GHSA-g874-pfg5-pj33.json b/advisories/unreviewed/2024/07/GHSA-g874-pfg5-pj33/GHSA-g874-pfg5-pj33.json index 36fe12305e9..8141d5f0dc2 100644 --- a/advisories/unreviewed/2024/07/GHSA-g874-pfg5-pj33/GHSA-g874-pfg5-pj33.json +++ b/advisories/unreviewed/2024/07/GHSA-g874-pfg5-pj33/GHSA-g874-pfg5-pj33.json @@ -32,7 +32,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-312" ], "severity": "LOW", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/07/GHSA-r8h6-cwxj-rv5j/GHSA-r8h6-cwxj-rv5j.json b/advisories/unreviewed/2024/07/GHSA-r8h6-cwxj-rv5j/GHSA-r8h6-cwxj-rv5j.json index cfd57d4145b..205a8b6797a 100644 --- a/advisories/unreviewed/2024/07/GHSA-r8h6-cwxj-rv5j/GHSA-r8h6-cwxj-rv5j.json +++ b/advisories/unreviewed/2024/07/GHSA-r8h6-cwxj-rv5j/GHSA-r8h6-cwxj-rv5j.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-r8h6-cwxj-rv5j", - "modified": "2024-10-17T21:31:29Z", + "modified": "2024-11-05T00:31:27Z", "published": "2024-07-30T00:34:24Z", "aliases": [ "CVE-2024-3219" @@ -92,7 +92,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-306" ], "severity": "LOW", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/08/GHSA-c7jx-vf9h-c39w/GHSA-c7jx-vf9h-c39w.json b/advisories/unreviewed/2024/08/GHSA-c7jx-vf9h-c39w/GHSA-c7jx-vf9h-c39w.json index 813962bb7d0..2e64cb578d1 100644 --- a/advisories/unreviewed/2024/08/GHSA-c7jx-vf9h-c39w/GHSA-c7jx-vf9h-c39w.json +++ b/advisories/unreviewed/2024/08/GHSA-c7jx-vf9h-c39w/GHSA-c7jx-vf9h-c39w.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-c7jx-vf9h-c39w", - "modified": "2024-08-20T18:31:26Z", + "modified": "2024-11-05T00:31:27Z", "published": "2024-08-20T18:31:26Z", "aliases": [ "CVE-2024-27184" ], "details": "Inadequate validation of URLs could result into an invalid check whether an redirect URL is internal or not..", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ "CWE-601" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-20T16:15:10Z" diff --git a/advisories/unreviewed/2024/08/GHSA-vrq5-q7cf-pv79/GHSA-vrq5-q7cf-pv79.json b/advisories/unreviewed/2024/08/GHSA-vrq5-q7cf-pv79/GHSA-vrq5-q7cf-pv79.json index 4650d8bf29e..8069ae18220 100644 --- a/advisories/unreviewed/2024/08/GHSA-vrq5-q7cf-pv79/GHSA-vrq5-q7cf-pv79.json +++ b/advisories/unreviewed/2024/08/GHSA-vrq5-q7cf-pv79/GHSA-vrq5-q7cf-pv79.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-918" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/09/GHSA-f7x9-gh37-cj3v/GHSA-f7x9-gh37-cj3v.json b/advisories/unreviewed/2024/09/GHSA-f7x9-gh37-cj3v/GHSA-f7x9-gh37-cj3v.json index 2fe9a05d167..c31e5a4c90b 100644 --- a/advisories/unreviewed/2024/09/GHSA-f7x9-gh37-cj3v/GHSA-f7x9-gh37-cj3v.json +++ b/advisories/unreviewed/2024/09/GHSA-f7x9-gh37-cj3v/GHSA-f7x9-gh37-cj3v.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-f7x9-gh37-cj3v", - "modified": "2024-09-27T09:30:30Z", + "modified": "2024-11-05T00:31:27Z", "published": "2024-09-27T09:30:30Z", "aliases": [ "CVE-2024-41930" ], "details": "Cross-site scripting vulnerability exists in MF Teacher Performance Management System version 6. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who accessed the website using the product.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-27T09:15:03Z" diff --git a/advisories/unreviewed/2024/09/GHSA-v6vm-xfhq-54qp/GHSA-v6vm-xfhq-54qp.json b/advisories/unreviewed/2024/09/GHSA-v6vm-xfhq-54qp/GHSA-v6vm-xfhq-54qp.json index 80ca268cff3..c2d7e6d567d 100644 --- a/advisories/unreviewed/2024/09/GHSA-v6vm-xfhq-54qp/GHSA-v6vm-xfhq-54qp.json +++ b/advisories/unreviewed/2024/09/GHSA-v6vm-xfhq-54qp/GHSA-v6vm-xfhq-54qp.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-v6vm-xfhq-54qp", - "modified": "2024-09-10T06:30:49Z", + "modified": "2024-11-05T00:31:27Z", "published": "2024-09-10T06:30:49Z", "aliases": [ "CVE-2024-45504" ], "details": "Cross-site request forgery (CSRF) vulnerability in multiple Alps System Integration products and the OEM products allow a remote unauthenticated attacker to hijack the authentication of the user and to perform unintended operations if the user views a malicious page while logged in.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-352" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-10T05:15:12Z" diff --git a/advisories/unreviewed/2024/10/GHSA-4273-ccpv-pfm8/GHSA-4273-ccpv-pfm8.json b/advisories/unreviewed/2024/10/GHSA-4273-ccpv-pfm8/GHSA-4273-ccpv-pfm8.json index 5753c0c241b..14662419b85 100644 --- a/advisories/unreviewed/2024/10/GHSA-4273-ccpv-pfm8/GHSA-4273-ccpv-pfm8.json +++ b/advisories/unreviewed/2024/10/GHSA-4273-ccpv-pfm8/GHSA-4273-ccpv-pfm8.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-4273-ccpv-pfm8", - "modified": "2024-10-09T06:30:23Z", + "modified": "2024-11-05T00:31:27Z", "published": "2024-10-09T06:30:23Z", "aliases": [ "CVE-2023-36325" ], "details": "i2p before 2.3.0 (Java) allows de-anonymizing the public IPv4 and IPv6 addresses of i2p hidden services (aka eepsites) via a correlation attack across the IPv4 and IPv6 addresses that occurs when a tunneled, replayed message has a behavior discrepancy (it may be dropped, or may result in a Wrong Destination response). An attack would take days to complete.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-203" ], - "severity": null, + "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-10-09T06:15:11Z" diff --git a/advisories/unreviewed/2024/10/GHSA-cjcf-6ch6-g3rx/GHSA-cjcf-6ch6-g3rx.json b/advisories/unreviewed/2024/10/GHSA-cjcf-6ch6-g3rx/GHSA-cjcf-6ch6-g3rx.json index 1128cd94d3d..a97df05e249 100644 --- a/advisories/unreviewed/2024/10/GHSA-cjcf-6ch6-g3rx/GHSA-cjcf-6ch6-g3rx.json +++ b/advisories/unreviewed/2024/10/GHSA-cjcf-6ch6-g3rx/GHSA-cjcf-6ch6-g3rx.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-cjcf-6ch6-g3rx", - "modified": "2024-10-30T09:30:48Z", + "modified": "2024-11-05T00:31:27Z", "published": "2024-10-30T09:30:48Z", "aliases": [ "CVE-2024-9632" @@ -21,6 +21,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9632" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:8798" + }, { "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2024-9632" diff --git a/advisories/unreviewed/2024/10/GHSA-hq69-8v63-55qv/GHSA-hq69-8v63-55qv.json b/advisories/unreviewed/2024/10/GHSA-hq69-8v63-55qv/GHSA-hq69-8v63-55qv.json index 8c306ff9f15..83e9ec16116 100644 --- a/advisories/unreviewed/2024/10/GHSA-hq69-8v63-55qv/GHSA-hq69-8v63-55qv.json +++ b/advisories/unreviewed/2024/10/GHSA-hq69-8v63-55qv/GHSA-hq69-8v63-55qv.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-hq69-8v63-55qv", - "modified": "2024-10-21T21:30:52Z", + "modified": "2024-11-05T00:31:27Z", "published": "2024-10-21T21:30:52Z", "aliases": [ "CVE-2024-47189" ], "details": "The API Interface of the AWV (Audio, Web and Video Conferencing) component of Mitel MiCollab through 9.8 SP1 FP2 (9.8.1.201) could allow an unauthenticated attacker to conduct SQL injection due to insufficient sanitization of user input. A successful exploit could allow an attacker with knowledge of specific details to access non-sensitive user provisioning information and execute arbitrary SQL database commands.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-10-21T20:15:14Z" diff --git a/advisories/unreviewed/2024/10/GHSA-jjx8-fgcm-mhjx/GHSA-jjx8-fgcm-mhjx.json b/advisories/unreviewed/2024/10/GHSA-jjx8-fgcm-mhjx/GHSA-jjx8-fgcm-mhjx.json index 825a7210286..d6d083b4d4a 100644 --- a/advisories/unreviewed/2024/10/GHSA-jjx8-fgcm-mhjx/GHSA-jjx8-fgcm-mhjx.json +++ b/advisories/unreviewed/2024/10/GHSA-jjx8-fgcm-mhjx/GHSA-jjx8-fgcm-mhjx.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-jjx8-fgcm-mhjx", - "modified": "2024-10-07T18:31:08Z", + "modified": "2024-11-05T00:31:27Z", "published": "2024-10-07T18:31:08Z", "aliases": [ "CVE-2024-46040" ], "details": "IoT Haat Smart Plug IH-IN-16A-S IH-IN-16A-S v5.16.1 suffers from Insufficient Session Expiration. The lack of validation of the authentication token at the IoT Haat during the Access Point Pairing mode leads the attacker to replay the Wi-Fi packets and forcefully turn off the access point after the authentication token has expired.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-613" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-10-07T16:15:05Z" diff --git a/advisories/unreviewed/2024/10/GHSA-p7hf-43g5-xhvw/GHSA-p7hf-43g5-xhvw.json b/advisories/unreviewed/2024/10/GHSA-p7hf-43g5-xhvw/GHSA-p7hf-43g5-xhvw.json index 13a96865e95..22caf9230a2 100644 --- a/advisories/unreviewed/2024/10/GHSA-p7hf-43g5-xhvw/GHSA-p7hf-43g5-xhvw.json +++ b/advisories/unreviewed/2024/10/GHSA-p7hf-43g5-xhvw/GHSA-p7hf-43g5-xhvw.json @@ -32,6 +32,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-78", "CWE-94" ], "severity": "HIGH", diff --git a/advisories/unreviewed/2024/11/GHSA-2hx5-4rrf-crcp/GHSA-2hx5-4rrf-crcp.json b/advisories/unreviewed/2024/11/GHSA-2hx5-4rrf-crcp/GHSA-2hx5-4rrf-crcp.json index 0bdad0c191f..20dfc0e2971 100644 --- a/advisories/unreviewed/2024/11/GHSA-2hx5-4rrf-crcp/GHSA-2hx5-4rrf-crcp.json +++ b/advisories/unreviewed/2024/11/GHSA-2hx5-4rrf-crcp/GHSA-2hx5-4rrf-crcp.json @@ -52,7 +52,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-120" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/11/GHSA-3gf9-wv65-gwh9/GHSA-3gf9-wv65-gwh9.json b/advisories/unreviewed/2024/11/GHSA-3gf9-wv65-gwh9/GHSA-3gf9-wv65-gwh9.json new file mode 100644 index 00000000000..55aa234838f --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-3gf9-wv65-gwh9/GHSA-3gf9-wv65-gwh9.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3gf9-wv65-gwh9", + "modified": "2024-11-05T00:31:28Z", + "published": "2024-11-05T00:31:28Z", + "aliases": [ + "CVE-2024-48052" + ], + "details": "In gradio <=4.42.0, the gr.DownloadButton function has a hidden server-side request forgery (SSRF) vulnerability. The reason is that within the save_url_to_cache function, there are no restrictions on the URL, which allows access to local target resources. This can lead to the download of local resources and sensitive information.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-48052" + }, + { + "type": "WEB", + "url": "https://gist.github.com/AfterSnows/45ffc23797f9127e00755376cc610e12" + }, + { + "type": "WEB", + "url": "https://rumbling-slice-eb0.notion.site/FULL-SSRF-in-gr-DownloadButton-in-gradio-app-gradio-870b21e0908b48cbafd914719ac1a4e6?pvs=4" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-04T23:15:04Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-3q78-4j93-p8qr/GHSA-3q78-4j93-p8qr.json b/advisories/unreviewed/2024/11/GHSA-3q78-4j93-p8qr/GHSA-3q78-4j93-p8qr.json index f898f29a671..e9ef3561b7f 100644 --- a/advisories/unreviewed/2024/11/GHSA-3q78-4j93-p8qr/GHSA-3q78-4j93-p8qr.json +++ b/advisories/unreviewed/2024/11/GHSA-3q78-4j93-p8qr/GHSA-3q78-4j93-p8qr.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-3q78-4j93-p8qr", - "modified": "2024-11-01T18:31:33Z", + "modified": "2024-11-05T00:31:28Z", "published": "2024-11-01T18:31:33Z", "aliases": [ "CVE-2024-51252" ], "details": "In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the restore function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-78" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-01T18:15:07Z" diff --git a/advisories/unreviewed/2024/11/GHSA-5p5r-57fx-pmfr/GHSA-5p5r-57fx-pmfr.json b/advisories/unreviewed/2024/11/GHSA-5p5r-57fx-pmfr/GHSA-5p5r-57fx-pmfr.json new file mode 100644 index 00000000000..17364d18ab0 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-5p5r-57fx-pmfr/GHSA-5p5r-57fx-pmfr.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5p5r-57fx-pmfr", + "modified": "2024-11-05T00:31:28Z", + "published": "2024-11-05T00:31:28Z", + "aliases": [ + "CVE-2024-48061" + ], + "details": "langflow <=1.0.18 is vulnerable to Remote Code Execution (RCE) as any component provided the code functionality and the components run on the local machine rather than in a sandbox.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-48061" + }, + { + "type": "WEB", + "url": "https://gist.github.com/AfterSnows/1e58257867002462923fd62dde2b5d61" + }, + { + "type": "WEB", + "url": "https://rumbling-slice-eb0.notion.site/There-is-a-Remote-Code-Execution-RCE-vulnerability-in-the-repository-https-github-com-langflow-a-105e3cda9e8c800fac92f1b571bd40d8" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-04T23:15:04Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-6p55-qr3j-mpgq/GHSA-6p55-qr3j-mpgq.json b/advisories/unreviewed/2024/11/GHSA-6p55-qr3j-mpgq/GHSA-6p55-qr3j-mpgq.json new file mode 100644 index 00000000000..ef248c361f9 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-6p55-qr3j-mpgq/GHSA-6p55-qr3j-mpgq.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6p55-qr3j-mpgq", + "modified": "2024-11-05T00:31:28Z", + "published": "2024-11-05T00:31:28Z", + "aliases": [ + "CVE-2024-48050" + ], + "details": "In agentscope <=v0.0.4, the file agentscope\\web\\workstation\\workflow_utils.py has the function is_callable_expression. Within this function, the line result = eval(s) poses a security risk as it can directly execute user-provided commands.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-48050" + }, + { + "type": "WEB", + "url": "https://gist.github.com/AfterSnows/0ad9d233a9d2a5b7e6e5273e2e23508d" + }, + { + "type": "WEB", + "url": "https://rumbling-slice-eb0.notion.site/Unauthenticated-Remote-Code-Execution-via-The-use-of-eval-in-is_callable_expression-and-sanitize_nod-cd4ea6c576da4e0b965ef596855c298d" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-04T23:15:04Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-94gg-72cx-mg6f/GHSA-94gg-72cx-mg6f.json b/advisories/unreviewed/2024/11/GHSA-94gg-72cx-mg6f/GHSA-94gg-72cx-mg6f.json index 3d13bd8c9a7..a11920bdc25 100644 --- a/advisories/unreviewed/2024/11/GHSA-94gg-72cx-mg6f/GHSA-94gg-72cx-mg6f.json +++ b/advisories/unreviewed/2024/11/GHSA-94gg-72cx-mg6f/GHSA-94gg-72cx-mg6f.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-94gg-72cx-mg6f", - "modified": "2024-11-01T18:31:32Z", + "modified": "2024-11-05T00:31:27Z", "published": "2024-11-01T18:31:32Z", "aliases": [ "CVE-2024-40490" ], "details": "An issue in Sourcebans++ before v.1.8.0 allows a remote attacker to obtain sensitive information via a crafted XAJAX call to the Forgot Password function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-203" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-01T16:15:08Z" diff --git a/advisories/unreviewed/2024/11/GHSA-96xr-jq73-gwf6/GHSA-96xr-jq73-gwf6.json b/advisories/unreviewed/2024/11/GHSA-96xr-jq73-gwf6/GHSA-96xr-jq73-gwf6.json new file mode 100644 index 00000000000..407f7dda62e --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-96xr-jq73-gwf6/GHSA-96xr-jq73-gwf6.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-96xr-jq73-gwf6", + "modified": "2024-11-05T00:31:28Z", + "published": "2024-11-05T00:31:28Z", + "aliases": [ + "CVE-2024-48059" + ], + "details": "gaizhenbiao/chuanhuchatgpt project, version <=20240802 is vulnerable to stored Cross-Site Scripting (XSS) in WebSocket session transmission. An attacker can inject malicious content into a WebSocket message. When a victim accesses this session, the malicious JavaScript is executed in the victim's browser.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-48059" + }, + { + "type": "WEB", + "url": "https://gist.github.com/AfterSnows/c5a4cb029fb9142be5c54e531a9a240e" + }, + { + "type": "WEB", + "url": "https://rumbling-slice-eb0.notion.site/Stored-XSS-via-Chat-message-in-gaizhenbiao-chuanhuchatgpt-104e3cda9e8c80b4b611dfc491c488d8?pvs=4" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-04T23:15:04Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-c5hw-25wh-7q5r/GHSA-c5hw-25wh-7q5r.json b/advisories/unreviewed/2024/11/GHSA-c5hw-25wh-7q5r/GHSA-c5hw-25wh-7q5r.json index 27dee570302..2c8869dc8a2 100644 --- a/advisories/unreviewed/2024/11/GHSA-c5hw-25wh-7q5r/GHSA-c5hw-25wh-7q5r.json +++ b/advisories/unreviewed/2024/11/GHSA-c5hw-25wh-7q5r/GHSA-c5hw-25wh-7q5r.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-c5hw-25wh-7q5r", - "modified": "2024-11-01T18:31:33Z", + "modified": "2024-11-05T00:31:27Z", "published": "2024-11-01T18:31:33Z", "aliases": [ "CVE-2024-48410" ], "details": "Cross Site Scripting vulnerability in Camtrace v.9.16.2.1 allows a remote attacker to execute arbitrary code via the login.php.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-01T17:15:17Z" diff --git a/advisories/unreviewed/2024/11/GHSA-g38v-wv6x-qc6c/GHSA-g38v-wv6x-qc6c.json b/advisories/unreviewed/2024/11/GHSA-g38v-wv6x-qc6c/GHSA-g38v-wv6x-qc6c.json index aef78301767..96bdb87067a 100644 --- a/advisories/unreviewed/2024/11/GHSA-g38v-wv6x-qc6c/GHSA-g38v-wv6x-qc6c.json +++ b/advisories/unreviewed/2024/11/GHSA-g38v-wv6x-qc6c/GHSA-g38v-wv6x-qc6c.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-g38v-wv6x-qc6c", - "modified": "2024-11-01T18:31:33Z", + "modified": "2024-11-05T00:31:27Z", "published": "2024-11-01T18:31:33Z", "aliases": [ "CVE-2024-51432" ], "details": "Cross Site Scripting vulnerability in FiberHome HG6544C RP2743 allows an attacker to execute arbitrary code via the SSID field in the WIFI Clients List not being sanitized", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-01T16:15:09Z" diff --git a/advisories/unreviewed/2024/11/GHSA-ghx4-cgxw-7h9p/GHSA-ghx4-cgxw-7h9p.json b/advisories/unreviewed/2024/11/GHSA-ghx4-cgxw-7h9p/GHSA-ghx4-cgxw-7h9p.json new file mode 100644 index 00000000000..3a839d5dca1 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-ghx4-cgxw-7h9p/GHSA-ghx4-cgxw-7h9p.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-ghx4-cgxw-7h9p", + "modified": "2024-11-05T00:31:28Z", + "published": "2024-11-05T00:31:28Z", + "aliases": [ + "CVE-2024-48057" + ], + "details": "localai <=2.20.1 is vulnerable to Cross Site Scripting (XSS). When calling the delete model API and passing inappropriate parameters, it can cause a one-time storage XSS, which will trigger the payload when a user accesses the homepage.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-48057" + }, + { + "type": "WEB", + "url": "https://gist.github.com/AfterSnows/1bd7ee5a3a42dbb5f5ff67f7f9c8ccec" + }, + { + "type": "WEB", + "url": "https://rumbling-slice-eb0.notion.site/LocalAI-deleted-model-with-storage-XSS-CSRF-vulnerability-in-mudler-localai-101e3cda9e8c80e0ac12fe418d5dd982?pvs=4" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-04T23:15:04Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-hmx8-gff7-qvpr/GHSA-hmx8-gff7-qvpr.json b/advisories/unreviewed/2024/11/GHSA-hmx8-gff7-qvpr/GHSA-hmx8-gff7-qvpr.json index 6a65d7253ae..9a1465f0e6a 100644 --- a/advisories/unreviewed/2024/11/GHSA-hmx8-gff7-qvpr/GHSA-hmx8-gff7-qvpr.json +++ b/advisories/unreviewed/2024/11/GHSA-hmx8-gff7-qvpr/GHSA-hmx8-gff7-qvpr.json @@ -52,7 +52,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-120" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/11/GHSA-mfj7-v48v-2hh9/GHSA-mfj7-v48v-2hh9.json b/advisories/unreviewed/2024/11/GHSA-mfj7-v48v-2hh9/GHSA-mfj7-v48v-2hh9.json index bdd266ef042..12cabca7fd8 100644 --- a/advisories/unreviewed/2024/11/GHSA-mfj7-v48v-2hh9/GHSA-mfj7-v48v-2hh9.json +++ b/advisories/unreviewed/2024/11/GHSA-mfj7-v48v-2hh9/GHSA-mfj7-v48v-2hh9.json @@ -52,7 +52,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-120" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/11/GHSA-mhq2-gxcg-4hc8/GHSA-mhq2-gxcg-4hc8.json b/advisories/unreviewed/2024/11/GHSA-mhq2-gxcg-4hc8/GHSA-mhq2-gxcg-4hc8.json new file mode 100644 index 00000000000..0848703e1c4 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-mhq2-gxcg-4hc8/GHSA-mhq2-gxcg-4hc8.json @@ -0,0 +1,58 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mhq2-gxcg-4hc8", + "modified": "2024-11-05T00:31:28Z", + "published": "2024-11-05T00:31:28Z", + "aliases": [ + "CVE-2024-10805" + ], + "details": "A vulnerability was found in code-projects University Event Management System 1.0. It has been classified as critical. This affects an unknown part of the file doedit.php. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The initial researcher advisory mentions a confusing product name to be affected. Other parameters might be affected as well.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10805" + }, + { + "type": "WEB", + "url": "https://code-projects.org" + }, + { + "type": "WEB", + "url": "https://github.com/yhcyhc981/cve/blob/main/sql16.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.283029" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.283029" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.436546" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-707" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-04T23:15:03Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-p4mp-f632-xp5q/GHSA-p4mp-f632-xp5q.json b/advisories/unreviewed/2024/11/GHSA-p4mp-f632-xp5q/GHSA-p4mp-f632-xp5q.json index d2207605e2b..be884026130 100644 --- a/advisories/unreviewed/2024/11/GHSA-p4mp-f632-xp5q/GHSA-p4mp-f632-xp5q.json +++ b/advisories/unreviewed/2024/11/GHSA-p4mp-f632-xp5q/GHSA-p4mp-f632-xp5q.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-p4mp-f632-xp5q", - "modified": "2024-11-01T18:31:33Z", + "modified": "2024-11-05T00:31:27Z", "published": "2024-11-01T18:31:32Z", "aliases": [ "CVE-2024-51377" ], "details": "An issue in Ladybird Web Solution Faveo Helpdesk & Servicedesk (On-Premise and Cloud) 9.2.0 allows a remote attacker to execute arbitrary code via the Subject and Identifier fields", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-01T16:15:09Z"