From 794401a4da44434d50dd0f052f0157bb41c541b0 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Tue, 11 Mar 2025 00:33:39 +0000 Subject: [PATCH] Publish Advisories GHSA-27wx-w49m-rrj8 GHSA-6cwg-xfh5-wxwq GHSA-6r8r-3cx2-3h8f GHSA-85q7-hhcq-pr4h GHSA-g5vv-jqc9-w8hm GHSA-h2w7-2v8j-jgm7 GHSA-jqxq-7f92-m7ww GHSA-p7rw-qw8q-g2rx GHSA-v45j-q282-89r5 GHSA-v888-xcc4-jmr2 GHSA-vrq6-237q-f4gx --- .../GHSA-27wx-w49m-rrj8.json | 36 +++++++++++++ .../GHSA-6cwg-xfh5-wxwq.json | 29 +++++++++++ .../GHSA-6r8r-3cx2-3h8f.json | 48 +++++++++++++++++ .../GHSA-85q7-hhcq-pr4h.json | 40 ++++++++++++++ .../GHSA-g5vv-jqc9-w8hm.json | 48 +++++++++++++++++ .../GHSA-h2w7-2v8j-jgm7.json | 36 +++++++++++++ .../GHSA-jqxq-7f92-m7ww.json | 39 ++++++++++++++ .../GHSA-p7rw-qw8q-g2rx.json | 29 +++++++++++ .../GHSA-v45j-q282-89r5.json | 52 +++++++++++++++++++ .../GHSA-v888-xcc4-jmr2.json | 29 +++++++++++ .../GHSA-vrq6-237q-f4gx.json | 36 +++++++++++++ 11 files changed, 422 insertions(+) create mode 100644 advisories/unreviewed/2025/03/GHSA-27wx-w49m-rrj8/GHSA-27wx-w49m-rrj8.json create mode 100644 advisories/unreviewed/2025/03/GHSA-6cwg-xfh5-wxwq/GHSA-6cwg-xfh5-wxwq.json create mode 100644 advisories/unreviewed/2025/03/GHSA-6r8r-3cx2-3h8f/GHSA-6r8r-3cx2-3h8f.json create mode 100644 advisories/unreviewed/2025/03/GHSA-85q7-hhcq-pr4h/GHSA-85q7-hhcq-pr4h.json create mode 100644 advisories/unreviewed/2025/03/GHSA-g5vv-jqc9-w8hm/GHSA-g5vv-jqc9-w8hm.json create mode 100644 advisories/unreviewed/2025/03/GHSA-h2w7-2v8j-jgm7/GHSA-h2w7-2v8j-jgm7.json create mode 100644 advisories/unreviewed/2025/03/GHSA-jqxq-7f92-m7ww/GHSA-jqxq-7f92-m7ww.json create mode 100644 advisories/unreviewed/2025/03/GHSA-p7rw-qw8q-g2rx/GHSA-p7rw-qw8q-g2rx.json create mode 100644 advisories/unreviewed/2025/03/GHSA-v45j-q282-89r5/GHSA-v45j-q282-89r5.json create mode 100644 advisories/unreviewed/2025/03/GHSA-v888-xcc4-jmr2/GHSA-v888-xcc4-jmr2.json create mode 100644 advisories/unreviewed/2025/03/GHSA-vrq6-237q-f4gx/GHSA-vrq6-237q-f4gx.json diff --git a/advisories/unreviewed/2025/03/GHSA-27wx-w49m-rrj8/GHSA-27wx-w49m-rrj8.json b/advisories/unreviewed/2025/03/GHSA-27wx-w49m-rrj8/GHSA-27wx-w49m-rrj8.json new file mode 100644 index 00000000000..cc37d948b6a --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-27wx-w49m-rrj8/GHSA-27wx-w49m-rrj8.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-27wx-w49m-rrj8", + "modified": "2025-03-11T00:31:49Z", + "published": "2025-03-11T00:31:49Z", + "aliases": [ + "CVE-2025-27924" + ], + "details": "Nintex Automation 5.6 and 5.7 before 5.8 has a stored XSS issue associated with the \"Navigate to a URL\" action.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-27924" + }, + { + "type": "WEB", + "url": "https://help.nintex.com/en-US/platform/ReleaseNotes/K2Five.htm" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-10T23:15:35Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-6cwg-xfh5-wxwq/GHSA-6cwg-xfh5-wxwq.json b/advisories/unreviewed/2025/03/GHSA-6cwg-xfh5-wxwq/GHSA-6cwg-xfh5-wxwq.json new file mode 100644 index 00000000000..2299952da2e --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-6cwg-xfh5-wxwq/GHSA-6cwg-xfh5-wxwq.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6cwg-xfh5-wxwq", + "modified": "2025-03-11T00:31:48Z", + "published": "2025-03-11T00:31:48Z", + "aliases": [ + "CVE-2025-25907" + ], + "details": "tianti v2.3 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /user/ajax/save. This vulnerability allows attackers to execute arbitrary operations via a crafted GET or POST request.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-25907" + }, + { + "type": "WEB", + "url": "https://github.com/xujeff/tianti/issues/39" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-10T22:15:26Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-6r8r-3cx2-3h8f/GHSA-6r8r-3cx2-3h8f.json b/advisories/unreviewed/2025/03/GHSA-6r8r-3cx2-3h8f/GHSA-6r8r-3cx2-3h8f.json new file mode 100644 index 00000000000..c310afb9b01 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-6r8r-3cx2-3h8f/GHSA-6r8r-3cx2-3h8f.json @@ -0,0 +1,48 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6r8r-3cx2-3h8f", + "modified": "2025-03-11T00:31:48Z", + "published": "2025-03-11T00:31:48Z", + "aliases": [ + "CVE-2022-49542" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: lpfc: Move cfg_log_verbose check before calling lpfc_dmp_dbg()\n\nIn an attempt to log message 0126 with LOG_TRACE_EVENT, the following hard\nlockup call trace hangs the system.\n\nCall Trace:\n _raw_spin_lock_irqsave+0x32/0x40\n lpfc_dmp_dbg.part.32+0x28/0x220 [lpfc]\n lpfc_cmpl_els_fdisc+0x145/0x460 [lpfc]\n lpfc_sli_cancel_jobs+0x92/0xd0 [lpfc]\n lpfc_els_flush_cmd+0x43c/0x670 [lpfc]\n lpfc_els_flush_all_cmd+0x37/0x60 [lpfc]\n lpfc_sli4_async_event_proc+0x956/0x1720 [lpfc]\n lpfc_do_work+0x1485/0x1d70 [lpfc]\n kthread+0x112/0x130\n ret_from_fork+0x1f/0x40\nKernel panic - not syncing: Hard LOCKUP\n\nThe same CPU tries to claim the phba->port_list_lock twice.\n\nMove the cfg_log_verbose checks as part of the lpfc_printf_vlog() and\nlpfc_printf_log() macros before calling lpfc_dmp_dbg(). There is no need\nto take the phba->port_list_lock within lpfc_dmp_dbg().", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-49542" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/09c772557a4fd9490fed1bfb133268313ea22213" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/271725e4028559ae7974d762a8467dc9de412f2e" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/cc6501afccec55b8b6c90584cbf71f1fefa77d1e" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/e294647b1aed4247fe52851f3a3b2b19ae906228" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-667" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-26T07:01:30Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-85q7-hhcq-pr4h/GHSA-85q7-hhcq-pr4h.json b/advisories/unreviewed/2025/03/GHSA-85q7-hhcq-pr4h/GHSA-85q7-hhcq-pr4h.json new file mode 100644 index 00000000000..13aa5cc9f45 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-85q7-hhcq-pr4h/GHSA-85q7-hhcq-pr4h.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-85q7-hhcq-pr4h", + "modified": "2025-03-11T00:31:48Z", + "published": "2025-03-11T00:31:48Z", + "aliases": [ + "CVE-2022-49547" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nbtrfs: fix deadlock between concurrent dio writes when low on free data space\n\nWhen reserving data space for a direct IO write we can end up deadlocking\nif we have multiple tasks attempting a write to the same file range, there\nare multiple extents covered by that file range, we are low on available\nspace for data and the writes don't expand the inode's i_size.\n\nThe deadlock can happen like this:\n\n1) We have a file with an i_size of 1M, at offset 0 it has an extent with\n a size of 128K and at offset 128K it has another extent also with a\n size of 128K;\n\n2) Task A does a direct IO write against file range [0, 256K), and because\n the write is within the i_size boundary, it takes the inode's lock (VFS\n level) in shared mode;\n\n3) Task A locks the file range [0, 256K) at btrfs_dio_iomap_begin(), and\n then gets the extent map for the extent covering the range [0, 128K).\n At btrfs_get_blocks_direct_write(), it creates an ordered extent for\n that file range ([0, 128K));\n\n4) Before returning from btrfs_dio_iomap_begin(), it unlocks the file\n range [0, 256K);\n\n5) Task A executes btrfs_dio_iomap_begin() again, this time for the file\n range [128K, 256K), and locks the file range [128K, 256K);\n\n6) Task B starts a direct IO write against file range [0, 256K) as well.\n It also locks the inode in shared mode, as it's within the i_size limit,\n and then tries to lock file range [0, 256K). It is able to lock the\n subrange [0, 128K) but then blocks waiting for the range [128K, 256K),\n as it is currently locked by task A;\n\n7) Task A enters btrfs_get_blocks_direct_write() and tries to reserve data\n space. Because we are low on available free space, it triggers the\n async data reclaim task, and waits for it to reserve data space;\n\n8) The async reclaim task decides to wait for all existing ordered extents\n to complete (through btrfs_wait_ordered_roots()).\n It finds the ordered extent previously created by task A for the file\n range [0, 128K) and waits for it to complete;\n\n9) The ordered extent for the file range [0, 128K) can not complete\n because it blocks at btrfs_finish_ordered_io() when trying to lock the\n file range [0, 128K).\n\n This results in a deadlock, because:\n\n - task B is holding the file range [0, 128K) locked, waiting for the\n range [128K, 256K) to be unlocked by task A;\n\n - task A is holding the file range [128K, 256K) locked and it's waiting\n for the async data reclaim task to satisfy its space reservation\n request;\n\n - the async data reclaim task is waiting for ordered extent [0, 128K)\n to complete, but the ordered extent can not complete because the\n file range [0, 128K) is currently locked by task B, which is waiting\n on task A to unlock file range [128K, 256K) and task A waiting\n on the async data reclaim task.\n\n This results in a deadlock between 4 task: task A, task B, the async\n data reclaim task and the task doing ordered extent completion (a work\n queue task).\n\nThis type of deadlock can sporadically be triggered by the test case\ngeneric/300 from fstests, and results in a stack trace like the following:\n\n[12084.033689] INFO: task kworker/u16:7:123749 blocked for more than 241 seconds.\n[12084.034877] Not tainted 5.18.0-rc2-btrfs-next-115 #1\n[12084.035562] \"echo 0 > /proc/sys/kernel/hung_task_timeout_secs\" disables this message.\n[12084.036548] task:kworker/u16:7 state:D stack: 0 pid:123749 ppid: 2 flags:0x00004000\n[12084.036554] Workqueue: btrfs-flush_delalloc btrfs_work_helper [btrfs]\n[12084.036599] Call Trace:\n[12084.036601] \n[12084.036606] __schedule+0x3cb/0xed0\n[12084.036616] schedule+0x4e/0xb0\n[12084.036620] btrfs_start_ordered_extent+0x109/0x1c0 [btrfs]\n[12084.036651] ? prepare_to_wait_exclusive+0xc0/0xc0\n[12084.036659] btrfs_run_ordered_extent_work+0x1a/0x30 [btrfs]\n[12084.036688] btrfs_work_helper+0xf8/0x400 [btrfs]\n[12084.0367\n---truncated---", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-49547" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/cfae6f765b3c40882ee90dae8fbf9325c8de9c35" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f5585f4f0ef5b17026bbd60fbff6fcc91b99d5bf" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-667" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-26T07:01:30Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-g5vv-jqc9-w8hm/GHSA-g5vv-jqc9-w8hm.json b/advisories/unreviewed/2025/03/GHSA-g5vv-jqc9-w8hm/GHSA-g5vv-jqc9-w8hm.json new file mode 100644 index 00000000000..d8144207844 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-g5vv-jqc9-w8hm/GHSA-g5vv-jqc9-w8hm.json @@ -0,0 +1,48 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-g5vv-jqc9-w8hm", + "modified": "2025-03-11T00:31:47Z", + "published": "2025-03-11T00:31:47Z", + "aliases": [ + "CVE-2022-49541" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ncifs: fix potential double free during failed mount\n\nRHBZ: https://bugzilla.redhat.com/show_bug.cgi?id=2088799", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-49541" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/8378a51e3f8140f60901fb27208cc7a6e47047b5" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/9a167fc440e5693c1cdd7f07071e05658bd9d89d" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/ce0008a0e410cdd95f0d8cd81b2902ec10a660c4" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/ee71f8f1cd3c8c4a251fd3e8abc89215ae3457cb" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-415" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-26T07:01:30Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-h2w7-2v8j-jgm7/GHSA-h2w7-2v8j-jgm7.json b/advisories/unreviewed/2025/03/GHSA-h2w7-2v8j-jgm7/GHSA-h2w7-2v8j-jgm7.json new file mode 100644 index 00000000000..051ec821d08 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-h2w7-2v8j-jgm7/GHSA-h2w7-2v8j-jgm7.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-h2w7-2v8j-jgm7", + "modified": "2025-03-11T00:31:49Z", + "published": "2025-03-11T00:31:49Z", + "aliases": [ + "CVE-2025-27926" + ], + "details": "In Nintex Automation 5.6 and 5.7 before 5.8, the K2 SmartForms Designer folder has configuration files (web.config) containing passwords that are readable by unauthorized users.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-27926" + }, + { + "type": "WEB", + "url": "https://help.nintex.com/en-US/platform/ReleaseNotes/K2Five.htm" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-276" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-10T23:15:35Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-jqxq-7f92-m7ww/GHSA-jqxq-7f92-m7ww.json b/advisories/unreviewed/2025/03/GHSA-jqxq-7f92-m7ww/GHSA-jqxq-7f92-m7ww.json new file mode 100644 index 00000000000..4480a2e700c --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-jqxq-7f92-m7ww/GHSA-jqxq-7f92-m7ww.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-jqxq-7f92-m7ww", + "modified": "2025-03-11T00:31:49Z", + "published": "2025-03-11T00:31:49Z", + "aliases": [ + "CVE-2025-1828" + ], + "details": "Crypt::Random Perl package 1.05 through 1.55 may use rand() function, which is not cryptographically strong, for cryptographic functions.\n\nCrypt::Random::rand 1.05 through 1.55 uses the rand() function. If the Provider is not specified and /dev/urandom or an Entropy Gathering Daemon (egd) service is not available Crypt::Random will default to use the insecure Crypt::Random::rand provider.\n\nIn particular, Windows versions of perl will encounter this issue by default.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-1828" + }, + { + "type": "WEB", + "url": "https://github.com/perl-Crypt-OpenPGP/Crypt-Random/pull/1" + }, + { + "type": "WEB", + "url": "https://github.com/perl-Crypt-OpenPGP/Crypt-Random/commit/1f8b29e9e89d8d083fd025152e76ec918136cc05" + }, + { + "type": "WEB", + "url": "https://perldoc.perl.org/functions/rand" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-338" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-11T00:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-p7rw-qw8q-g2rx/GHSA-p7rw-qw8q-g2rx.json b/advisories/unreviewed/2025/03/GHSA-p7rw-qw8q-g2rx/GHSA-p7rw-qw8q-g2rx.json new file mode 100644 index 00000000000..31781e037d5 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-p7rw-qw8q-g2rx/GHSA-p7rw-qw8q-g2rx.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p7rw-qw8q-g2rx", + "modified": "2025-03-11T00:31:49Z", + "published": "2025-03-11T00:31:49Z", + "aliases": [ + "CVE-2025-25908" + ], + "details": "A stored cross-site scripting (XSS) vulnerability in tianti v2.3 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the coverImageURL parameter at /article/ajax/save.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-25908" + }, + { + "type": "WEB", + "url": "https://github.com/xujeff/tianti/issues/40" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-10T22:15:27Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-v45j-q282-89r5/GHSA-v45j-q282-89r5.json b/advisories/unreviewed/2025/03/GHSA-v45j-q282-89r5/GHSA-v45j-q282-89r5.json new file mode 100644 index 00000000000..86d42dcb0d5 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-v45j-q282-89r5/GHSA-v45j-q282-89r5.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-v45j-q282-89r5", + "modified": "2025-03-11T00:31:48Z", + "published": "2025-03-11T00:31:48Z", + "aliases": [ + "CVE-2022-49548" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Fix potential array overflow in bpf_trampoline_get_progs()\n\nThe cnt value in the 'cnt >= BPF_MAX_TRAMP_PROGS' check does not\ninclude BPF_TRAMP_MODIFY_RETURN bpf programs, so the number of\nthe attached BPF_TRAMP_MODIFY_RETURN bpf programs in a trampoline\ncan exceed BPF_MAX_TRAMP_PROGS.\n\nWhen this happens, the assignment '*progs++ = aux->prog' in\nbpf_trampoline_get_progs() will cause progs array overflow as the\nprogs field in the bpf_tramp_progs struct can only hold at most\nBPF_MAX_TRAMP_PROGS bpf programs.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-49548" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/32c4559c61652f24c9fdd5440342196fe37453bc" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/4f8897bcc20b9ae44758e0572538d741ab66f0dc" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/7f845de2863334bed4f362e95853f5e7bc323737" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/a2aa95b71c9bbec793b5c5fa50f0a80d882b3e8d" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/e36452d5da6325df7c10cffc60a9e68d21e2606d" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-129" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-26T07:01:30Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-v888-xcc4-jmr2/GHSA-v888-xcc4-jmr2.json b/advisories/unreviewed/2025/03/GHSA-v888-xcc4-jmr2/GHSA-v888-xcc4-jmr2.json new file mode 100644 index 00000000000..c2808a4f128 --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-v888-xcc4-jmr2/GHSA-v888-xcc4-jmr2.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-v888-xcc4-jmr2", + "modified": "2025-03-11T00:31:49Z", + "published": "2025-03-11T00:31:49Z", + "aliases": [ + "CVE-2025-27910" + ], + "details": "tianti v2.3 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /user/ajax/upd/status. This vulnerability allows attackers to execute arbitrary operations via a crafted GET or POST request.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-27910" + }, + { + "type": "WEB", + "url": "https://github.com/xujeff/tianti/issues/39" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-10T22:15:27Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/03/GHSA-vrq6-237q-f4gx/GHSA-vrq6-237q-f4gx.json b/advisories/unreviewed/2025/03/GHSA-vrq6-237q-f4gx/GHSA-vrq6-237q-f4gx.json new file mode 100644 index 00000000000..3baf188b78e --- /dev/null +++ b/advisories/unreviewed/2025/03/GHSA-vrq6-237q-f4gx/GHSA-vrq6-237q-f4gx.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-vrq6-237q-f4gx", + "modified": "2025-03-11T00:31:49Z", + "published": "2025-03-11T00:31:49Z", + "aliases": [ + "CVE-2025-27925" + ], + "details": "Nintex Automation 5.6 and 5.7 before 5.8 has insecure deserialization of user input.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-27925" + }, + { + "type": "WEB", + "url": "https://help.nintex.com/en-US/platform/ReleaseNotes/K2Five.htm" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-502" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-03-10T23:15:35Z" + } +} \ No newline at end of file