Advisory Database Sync

This commit is contained in:
advisory-database[bot]
2025-04-18 15:33:08 +00:00
parent 80057ae25a
commit 76a3769194
93 changed files with 2182 additions and 104 deletions
@@ -25,7 +25,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-200"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-39fv-f7h5-p7jp",
"modified": "2022-12-30T00:30:42Z",
"modified": "2025-04-18T15:31:30Z",
"published": "2022-12-22T21:30:30Z",
"aliases": [
"CVE-2022-22752"
@@ -26,6 +26,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-284",
"CWE-668"
],
"severity": "MODERATE",
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-664m-3r2m-mxpx",
"modified": "2022-12-22T18:30:24Z",
"modified": "2025-04-18T15:31:30Z",
"published": "2022-12-17T00:30:20Z",
"aliases": [
"CVE-2022-38756"
@@ -19,10 +19,18 @@
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2022-38756"
},
{
"type": "WEB",
"url": "https://packetstorm.news/files/id/170768"
},
{
"type": "WEB",
"url": "https://portal.microfocus.com/s/article/KM000012374?language=en_US"
},
{
"type": "WEB",
"url": "https://seclists.org/fulldisclosure/2023/Jan/28"
},
{
"type": "WEB",
"url": "http://packetstormsecurity.com/files/170768/Micro-Focus-GroupWise-Session-ID-Disclosure.html"
@@ -25,7 +25,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-119"
],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -25,7 +25,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-119"
],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -26,6 +26,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-125",
"CWE-20"
],
"severity": "MODERATE",
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-999r-r2f8-xm55",
"modified": "2022-12-22T18:30:24Z",
"modified": "2025-04-18T15:31:30Z",
"published": "2022-12-17T00:30:21Z",
"aliases": [
"CVE-2022-37832"
@@ -26,6 +26,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-862",
"CWE-863"
],
"severity": "MODERATE",
@@ -25,7 +25,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-787"
],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -25,7 +25,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-284"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -25,7 +25,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-416"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-w66w-cmgq-cc2j",
"modified": "2022-12-20T18:30:19Z",
"modified": "2025-04-18T15:31:26Z",
"published": "2022-12-20T18:30:19Z",
"aliases": [
"CVE-2022-36223"
@@ -19,9 +19,17 @@
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2022-36223"
},
{
"type": "WEB",
"url": "https://medium.com/%40cupc4k3/administrator-account-takeover-in-emby-media-server-616fc2a6704f"
},
{
"type": "WEB",
"url": "https://medium.com/@cupc4k3/administrator-account-takeover-in-emby-media-server-616fc2a6704f"
},
{
"type": "WEB",
"url": "https://medium.com/stolabs/cve-2022-36223-administrator-account-takeover-in-emby-media-server-616fc2a6704f"
}
],
"database_specific": {
@@ -25,7 +25,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-269"
],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-4446-w42r-xvj9",
"modified": "2023-08-08T15:33:24Z",
"modified": "2025-04-18T15:31:29Z",
"published": "2023-07-06T19:24:05Z",
"aliases": [
"CVE-2022-25626"
@@ -26,7 +26,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-287"
"CWE-287",
"CWE-425"
],
"severity": "MODERATE",
"github_reviewed": false,
@@ -29,7 +29,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-502"
],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -25,7 +25,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-352"
],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -1,13 +1,18 @@
{
"schema_version": "1.4.0",
"id": "GHSA-9g26-4h79-vm4x",
"modified": "2024-05-06T06:30:45Z",
"modified": "2025-04-18T15:31:31Z",
"published": "2024-05-06T06:30:45Z",
"aliases": [
"CVE-2024-3755"
],
"details": "The MF Gig Calendar WordPress plugin through 1.2.1 does not sanitise and escape some of its settings, which could allow high privilege users such as editor to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)",
"severity": [],
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
}
],
"affected": [],
"references": [
{
@@ -20,8 +25,10 @@
}
],
"database_specific": {
"cwe_ids": [],
"severity": null,
"cwe_ids": [
"CWE-79"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-05-06T06:15:07Z"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-cpx5-6mwc-hxp6",
"modified": "2024-07-03T18:40:34Z",
"modified": "2025-04-18T15:31:32Z",
"published": "2024-05-14T18:30:46Z",
"aliases": [
"CVE-2024-32615"
@@ -19,6 +19,10 @@
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2024-32615"
},
{
"type": "WEB",
"url": "https://github.com/HDFGroup/cve_hdf5/blob/main/CVE_list.md"
},
{
"type": "WEB",
"url": "https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4"
@@ -26,7 +26,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-457"
"CWE-457",
"CWE-908"
],
"severity": "CRITICAL",
"github_reviewed": false,

Some files were not shown because too many files have changed in this diff Show More