Publish Advisories

GHSA-3h69-hjjf-qcc3
GHSA-4vhm-j5mp-9wcg
GHSA-57rr-j54c-gw9x
GHSA-9jcp-r9cp-5qwf
GHSA-c752-3p6c-46qc
GHSA-cw54-cgwp-3c3v
GHSA-h35v-vvv3-ww3x
GHSA-hx67-h5vf-9cfq
GHSA-jv9p-xg7j-p65c
GHSA-q775-f869-g43r
GHSA-qfw9-g7jh-72p3
GHSA-rjg8-3hfx-6fxx
GHSA-v3qf-4pxv-m9xf
GHSA-vcrv-8fh9-j64x
GHSA-xpvj-vm4g-wmjm
This commit is contained in:
advisory-database[bot]
2023-10-25 03:31:49 +00:00
parent 427183990c
commit 782cb0d045
15 changed files with 40 additions and 25 deletions
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-3h69-hjjf-qcc3",
"modified": "2023-10-18T15:30:24Z",
"modified": "2023-10-25T03:30:35Z",
"published": "2023-10-18T15:30:24Z",
"aliases": [
"CVE-2023-45628"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-4vhm-j5mp-9wcg",
"modified": "2023-10-18T15:30:24Z",
"modified": "2023-10-25T03:30:34Z",
"published": "2023-10-18T15:30:24Z",
"aliases": [
"CVE-2023-45073"
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-57rr-j54c-gw9x",
"modified": "2023-10-18T18:31:37Z",
"modified": "2023-10-25T03:30:36Z",
"published": "2023-10-18T18:31:37Z",
"aliases": [
"CVE-2023-43250"
],
"details": "XNSoft Nconvert 7.136 is vulnerable to Buffer Overflow. There is a User Mode Write AV via a crafted image file. Attackers could exploit this issue for a Denial of Service (DoS) or possibly to achieve code execution.",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
}
],
"affected": [
@@ -37,7 +40,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-120"
],
"severity": null,
"github_reviewed": false,
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-9jcp-r9cp-5qwf",
"modified": "2023-10-18T15:30:24Z",
"modified": "2023-10-25T03:30:35Z",
"published": "2023-10-18T15:30:24Z",
"aliases": [
"CVE-2023-46007"
],
"details": "Sourcecodester Best Courier Management System 1.0 is vulnerable to SQL Injection via the parameter id in /edit_staff.php.",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
"affected": [
@@ -25,7 +28,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-89"
],
"severity": null,
"github_reviewed": false,
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-c752-3p6c-46qc",
"modified": "2023-10-18T15:30:24Z",
"modified": "2023-10-25T03:30:36Z",
"published": "2023-10-18T15:30:24Z",
"aliases": [
"CVE-2023-45630"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-cw54-cgwp-3c3v",
"modified": "2023-10-18T15:30:24Z",
"modified": "2023-10-25T03:30:35Z",
"published": "2023-10-18T15:30:24Z",
"aliases": [
"CVE-2023-45607"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-h35v-vvv3-ww3x",
"modified": "2023-10-18T15:30:24Z",
"modified": "2023-10-25T03:30:35Z",
"published": "2023-10-18T15:30:24Z",
"aliases": [
"CVE-2023-30781"
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-hx67-h5vf-9cfq",
"modified": "2023-10-18T15:30:24Z",
"modified": "2023-10-25T03:30:35Z",
"published": "2023-10-18T15:30:24Z",
"aliases": [
"CVE-2023-46006"
],
"details": "Sourcecodester Best Courier Management System 1.0 is vulnerable to SQL Injection via the parameter id in /edit_user.php.",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
"affected": [
@@ -25,7 +28,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-89"
],
"severity": null,
"github_reviewed": false,
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-jv9p-xg7j-p65c",
"modified": "2023-10-18T18:31:38Z",
"modified": "2023-10-25T03:30:36Z",
"published": "2023-10-18T18:31:38Z",
"aliases": [
"CVE-2023-46009"
],
"details": "gifsicle-1.94 was found to have a floating point exception (FPE) vulnerability via resize_stream at src/xform.c.",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
}
],
"affected": [
@@ -25,7 +28,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-697"
],
"severity": null,
"github_reviewed": false,
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-q775-f869-g43r",
"modified": "2023-10-18T15:30:24Z",
"modified": "2023-10-25T03:30:35Z",
"published": "2023-10-18T15:30:24Z",
"aliases": [
"CVE-2023-46005"
],
"details": "Sourcecodester Best Courier Management System 1.0 is vulnerable to SQL Injection via the parameter id in /edit_branch.php.",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
"affected": [
@@ -25,7 +28,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-89"
],
"severity": null,
"github_reviewed": false,
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-qfw9-g7jh-72p3",
"modified": "2023-10-18T15:30:24Z",
"modified": "2023-10-25T03:30:34Z",
"published": "2023-10-18T15:30:24Z",
"aliases": [
"CVE-2023-45072"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-rjg8-3hfx-6fxx",
"modified": "2023-10-18T15:30:24Z",
"modified": "2023-10-25T03:30:35Z",
"published": "2023-10-18T15:30:24Z",
"aliases": [
"CVE-2023-45602"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-v3qf-4pxv-m9xf",
"modified": "2023-10-18T15:30:24Z",
"modified": "2023-10-25T03:30:35Z",
"published": "2023-10-18T15:30:24Z",
"aliases": [
"CVE-2023-45604"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-vcrv-8fh9-j64x",
"modified": "2023-10-18T15:30:24Z",
"modified": "2023-10-25T03:30:36Z",
"published": "2023-10-18T15:30:24Z",
"aliases": [
"CVE-2023-45632"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-xpvj-vm4g-wmjm",
"modified": "2023-10-18T15:30:24Z",
"modified": "2023-10-25T03:30:35Z",
"published": "2023-10-18T15:30:24Z",
"aliases": [
"CVE-2023-45608"