diff --git a/advisories/unreviewed/2024/05/GHSA-3frr-3wq5-gphc/GHSA-3frr-3wq5-gphc.json b/advisories/unreviewed/2024/05/GHSA-3frr-3wq5-gphc/GHSA-3frr-3wq5-gphc.json index 31fce1c96f3..30466d94495 100644 --- a/advisories/unreviewed/2024/05/GHSA-3frr-3wq5-gphc/GHSA-3frr-3wq5-gphc.json +++ b/advisories/unreviewed/2024/05/GHSA-3frr-3wq5-gphc/GHSA-3frr-3wq5-gphc.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-3frr-3wq5-gphc", - "modified": "2024-05-02T18:30:53Z", + "modified": "2025-04-23T03:30:25Z", "published": "2024-05-02T18:30:53Z", "aliases": [ "CVE-2024-2345" @@ -29,7 +29,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-79" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/10/GHSA-8gjx-cjp2-58w2/GHSA-8gjx-cjp2-58w2.json b/advisories/unreviewed/2024/10/GHSA-8gjx-cjp2-58w2/GHSA-8gjx-cjp2-58w2.json index b95796d6c54..9e885f10233 100644 --- a/advisories/unreviewed/2024/10/GHSA-8gjx-cjp2-58w2/GHSA-8gjx-cjp2-58w2.json +++ b/advisories/unreviewed/2024/10/GHSA-8gjx-cjp2-58w2/GHSA-8gjx-cjp2-58w2.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-8gjx-cjp2-58w2", - "modified": "2024-10-25T18:30:49Z", + "modified": "2025-04-23T03:30:25Z", "published": "2024-10-25T18:30:49Z", "aliases": [ "CVE-2022-30354" ], "details": "OvalEdge 5.2.8.0 and earlier is affected by a Sensitive Data Exposure vulnerability via a GET request to /user/getUserWithTeam. Authentication is required. The information disclosed is associated with all registered user ID numbers.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-732" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-10-25T16:15:08Z" diff --git a/advisories/unreviewed/2025/04/GHSA-2rpv-m9vg-g7g3/GHSA-2rpv-m9vg-g7g3.json b/advisories/unreviewed/2025/04/GHSA-2rpv-m9vg-g7g3/GHSA-2rpv-m9vg-g7g3.json new file mode 100644 index 00000000000..6e5a971c8be --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-2rpv-m9vg-g7g3/GHSA-2rpv-m9vg-g7g3.json @@ -0,0 +1,25 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2rpv-m9vg-g7g3", + "modified": "2025-04-23T03:30:26Z", + "published": "2025-04-23T03:30:26Z", + "aliases": [ + "CVE-2025-46222" + ], + "details": "Rejected reason: Not used", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-46222" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-23T03:15:22Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-2wfp-xpjg-9f8f/GHSA-2wfp-xpjg-9f8f.json b/advisories/unreviewed/2025/04/GHSA-2wfp-xpjg-9f8f/GHSA-2wfp-xpjg-9f8f.json new file mode 100644 index 00000000000..27f4ce75101 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-2wfp-xpjg-9f8f/GHSA-2wfp-xpjg-9f8f.json @@ -0,0 +1,25 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2wfp-xpjg-9f8f", + "modified": "2025-04-23T03:30:25Z", + "published": "2025-04-23T03:30:25Z", + "aliases": [ + "CVE-2025-46217" + ], + "details": "Rejected reason: Not used", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-46217" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-23T03:15:22Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-3443-qwvx-542v/GHSA-3443-qwvx-542v.json b/advisories/unreviewed/2025/04/GHSA-3443-qwvx-542v/GHSA-3443-qwvx-542v.json new file mode 100644 index 00000000000..991fc263cae --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-3443-qwvx-542v/GHSA-3443-qwvx-542v.json @@ -0,0 +1,25 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3443-qwvx-542v", + "modified": "2025-04-23T03:30:25Z", + "published": "2025-04-23T03:30:25Z", + "aliases": [ + "CVE-2025-46216" + ], + "details": "Rejected reason: Not used", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-46216" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-23T03:15:22Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-5h3w-59m5-q6wr/GHSA-5h3w-59m5-q6wr.json b/advisories/unreviewed/2025/04/GHSA-5h3w-59m5-q6wr/GHSA-5h3w-59m5-q6wr.json new file mode 100644 index 00000000000..f8ba27b095b --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-5h3w-59m5-q6wr/GHSA-5h3w-59m5-q6wr.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5h3w-59m5-q6wr", + "modified": "2025-04-23T03:30:25Z", + "published": "2025-04-23T03:30:25Z", + "aliases": [ + "CVE-2025-1021" + ], + "details": "Missing authorization vulnerability in synocopy in Synology DiskStation Manager (DSM) before 7.1.1-42962-8, 7.2.1-69057-7 and 7.2.2-72806-3 allows remote attackers to read arbitrary files via unspecified vectors.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-1021" + }, + { + "type": "WEB", + "url": "https://www.synology.com/en-global/security/advisory/Synology_SA_25_03" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-862" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-23T03:15:22Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-9jc6-fp45-q46v/GHSA-9jc6-fp45-q46v.json b/advisories/unreviewed/2025/04/GHSA-9jc6-fp45-q46v/GHSA-9jc6-fp45-q46v.json new file mode 100644 index 00000000000..5411e640581 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-9jc6-fp45-q46v/GHSA-9jc6-fp45-q46v.json @@ -0,0 +1,25 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9jc6-fp45-q46v", + "modified": "2025-04-23T03:30:26Z", + "published": "2025-04-23T03:30:26Z", + "aliases": [ + "CVE-2025-46224" + ], + "details": "Rejected reason: Not used", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-46224" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-23T03:15:22Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-ff2m-pwg3-cfpr/GHSA-ff2m-pwg3-cfpr.json b/advisories/unreviewed/2025/04/GHSA-ff2m-pwg3-cfpr/GHSA-ff2m-pwg3-cfpr.json new file mode 100644 index 00000000000..8a285b09aea --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-ff2m-pwg3-cfpr/GHSA-ff2m-pwg3-cfpr.json @@ -0,0 +1,25 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-ff2m-pwg3-cfpr", + "modified": "2025-04-23T03:30:25Z", + "published": "2025-04-23T03:30:25Z", + "aliases": [ + "CVE-2025-46219" + ], + "details": "Rejected reason: Not used", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-46219" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-23T03:15:22Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-g68h-cm32-ch2q/GHSA-g68h-cm32-ch2q.json b/advisories/unreviewed/2025/04/GHSA-g68h-cm32-ch2q/GHSA-g68h-cm32-ch2q.json new file mode 100644 index 00000000000..efcdc958abf --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-g68h-cm32-ch2q/GHSA-g68h-cm32-ch2q.json @@ -0,0 +1,25 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-g68h-cm32-ch2q", + "modified": "2025-04-23T03:30:25Z", + "published": "2025-04-23T03:30:25Z", + "aliases": [ + "CVE-2025-46221" + ], + "details": "Rejected reason: Not used", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-46221" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-23T03:15:22Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-phr7-7w8q-v32x/GHSA-phr7-7w8q-v32x.json b/advisories/unreviewed/2025/04/GHSA-phr7-7w8q-v32x/GHSA-phr7-7w8q-v32x.json new file mode 100644 index 00000000000..699cb30b36c --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-phr7-7w8q-v32x/GHSA-phr7-7w8q-v32x.json @@ -0,0 +1,25 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-phr7-7w8q-v32x", + "modified": "2025-04-23T03:30:26Z", + "published": "2025-04-23T03:30:26Z", + "aliases": [ + "CVE-2025-46223" + ], + "details": "Rejected reason: Not used", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-46223" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-23T03:15:22Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-pjrr-rvgc-5w25/GHSA-pjrr-rvgc-5w25.json b/advisories/unreviewed/2025/04/GHSA-pjrr-rvgc-5w25/GHSA-pjrr-rvgc-5w25.json new file mode 100644 index 00000000000..cb2d526cce5 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-pjrr-rvgc-5w25/GHSA-pjrr-rvgc-5w25.json @@ -0,0 +1,25 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-pjrr-rvgc-5w25", + "modified": "2025-04-23T03:30:25Z", + "published": "2025-04-23T03:30:25Z", + "aliases": [ + "CVE-2025-46220" + ], + "details": "Rejected reason: Not used", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-46220" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-23T03:15:22Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-x9g9-h36f-6m53/GHSA-x9g9-h36f-6m53.json b/advisories/unreviewed/2025/04/GHSA-x9g9-h36f-6m53/GHSA-x9g9-h36f-6m53.json new file mode 100644 index 00000000000..46d612db40b --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-x9g9-h36f-6m53/GHSA-x9g9-h36f-6m53.json @@ -0,0 +1,25 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-x9g9-h36f-6m53", + "modified": "2025-04-23T03:30:25Z", + "published": "2025-04-23T03:30:25Z", + "aliases": [ + "CVE-2025-46218" + ], + "details": "Rejected reason: Not used", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-46218" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-23T03:15:22Z" + } +} \ No newline at end of file