From 822c052e879c0ef761b865c46c614de205c2266c Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Mon, 28 Oct 2024 14:00:23 +0000 Subject: [PATCH] Publish Advisories GHSA-jfq2-rj7f-9gvf GHSA-j257-jfvv-h3x5 --- .../GHSA-jfq2-rj7f-9gvf.json | 20 ++++++++++-- .../GHSA-j257-jfvv-h3x5.json | 31 +++++++++++++++++-- 2 files changed, 47 insertions(+), 4 deletions(-) diff --git a/advisories/github-reviewed/2019/04/GHSA-jfq2-rj7f-9gvf/GHSA-jfq2-rj7f-9gvf.json b/advisories/github-reviewed/2019/04/GHSA-jfq2-rj7f-9gvf/GHSA-jfq2-rj7f-9gvf.json index f38cd30e2e6..83052ca8ad0 100644 --- a/advisories/github-reviewed/2019/04/GHSA-jfq2-rj7f-9gvf/GHSA-jfq2-rj7f-9gvf.json +++ b/advisories/github-reviewed/2019/04/GHSA-jfq2-rj7f-9gvf/GHSA-jfq2-rj7f-9gvf.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-jfq2-rj7f-9gvf", - "modified": "2024-08-26T16:10:50Z", + "modified": "2024-10-28T13:58:48Z", "published": "2019-04-24T16:11:27Z", "aliases": [ "CVE-2018-7576" @@ -67,6 +67,22 @@ "type": "WEB", "url": "https://github.com/tensorflow/tensorflow/commit/c48431588e7cf8aff61d4c299231e3e925144df8" }, + { + "type": "ADVISORY", + "url": "https://github.com/advisories/GHSA-jfq2-rj7f-9gvf" + }, + { + "type": "WEB", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/tensorflow-cpu/PYSEC-2019-224.yaml" + }, + { + "type": "WEB", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/tensorflow-gpu/PYSEC-2019-231.yaml" + }, + { + "type": "WEB", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/tensorflow/PYSEC-2019-206.yaml" + }, { "type": "PACKAGE", "url": "https://github.com/tensorflow/tensorflow" @@ -80,7 +96,7 @@ "cwe_ids": [ "CWE-476" ], - "severity": "MODERATE", + "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2019-04-24T16:11:06Z", "nvd_published_at": null diff --git a/advisories/github-reviewed/2020/10/GHSA-j257-jfvv-h3x5/GHSA-j257-jfvv-h3x5.json b/advisories/github-reviewed/2020/10/GHSA-j257-jfvv-h3x5/GHSA-j257-jfvv-h3x5.json index 734906043e8..31d5f6911dd 100644 --- a/advisories/github-reviewed/2020/10/GHSA-j257-jfvv-h3x5/GHSA-j257-jfvv-h3x5.json +++ b/advisories/github-reviewed/2020/10/GHSA-j257-jfvv-h3x5/GHSA-j257-jfvv-h3x5.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-j257-jfvv-h3x5", - "modified": "2021-11-19T14:42:15Z", + "modified": "2024-10-28T13:59:39Z", "published": "2020-10-13T17:30:30Z", "aliases": [ "CVE-2020-15251" @@ -12,6 +12,10 @@ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:H/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:N/SC:N/SI:H/SA:N" } ], "affected": [ @@ -33,6 +37,25 @@ ] } ] + }, + { + "package": { + "ecosystem": "PyPI", + "name": "sopel-plugins-channelmgnt" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "0" + }, + { + "fixed": "1.0.3" + } + ] + } + ] } ], "references": [ @@ -56,6 +79,10 @@ "type": "PACKAGE", "url": "https://github.com/MirahezeBots/MirahezeBots" }, + { + "type": "WEB", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/sopel-plugins-channelmgnt/PYSEC-2020-110.yaml" + }, { "type": "WEB", "url": "https://phab.bots.miraheze.wiki/T117" @@ -74,7 +101,7 @@ "CWE-862", "CWE-863" ], - "severity": "HIGH", + "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2020-10-13T17:08:31Z", "nvd_published_at": "2020-10-13T18:15:00Z"