From 8249bca0f527a726870f1ad960068147f83fc663 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Wed, 3 Jul 2024 18:38:41 +0000 Subject: [PATCH] Advisory Database Sync --- .../04/GHSA-259m-56qf-8wc5/GHSA-259m-56qf-8wc5.json | 11 +++++++---- .../04/GHSA-25mp-9vjg-j5g4/GHSA-25mp-9vjg-j5g4.json | 9 ++++++--- .../04/GHSA-2c9q-jgx6-2qx7/GHSA-2c9q-jgx6-2qx7.json | 11 +++++++---- .../04/GHSA-2g9g-cq6x-p79q/GHSA-2g9g-cq6x-p79q.json | 11 +++++++---- .../04/GHSA-2gvx-5frj-6px5/GHSA-2gvx-5frj-6px5.json | 11 +++++++---- .../04/GHSA-2pvq-77pm-76c4/GHSA-2pvq-77pm-76c4.json | 11 +++++++---- .../04/GHSA-2x55-cxhq-4m7q/GHSA-2x55-cxhq-4m7q.json | 11 +++++++---- .../04/GHSA-2xmv-6p85-fvhf/GHSA-2xmv-6p85-fvhf.json | 11 +++++++---- .../04/GHSA-33pj-qv5w-c27r/GHSA-33pj-qv5w-c27r.json | 11 +++++++---- .../04/GHSA-3428-vpwf-2w42/GHSA-3428-vpwf-2w42.json | 11 +++++++---- .../04/GHSA-36f2-xg2m-gcm5/GHSA-36f2-xg2m-gcm5.json | 2 +- .../04/GHSA-3jgv-pfqj-v626/GHSA-3jgv-pfqj-v626.json | 11 +++++++---- .../04/GHSA-3w7p-3w6w-7fpg/GHSA-3w7p-3w6w-7fpg.json | 11 +++++++---- .../04/GHSA-46rv-4m8w-q275/GHSA-46rv-4m8w-q275.json | 11 +++++++---- .../04/GHSA-4c2g-28qx-6qjr/GHSA-4c2g-28qx-6qjr.json | 11 +++++++---- .../04/GHSA-4c3m-w6wv-6mg8/GHSA-4c3m-w6wv-6mg8.json | 11 +++++++---- .../04/GHSA-4gp6-hcg2-gfh6/GHSA-4gp6-hcg2-gfh6.json | 11 +++++++---- .../04/GHSA-4pq6-8mv5-6q6p/GHSA-4pq6-8mv5-6q6p.json | 11 +++++++---- .../04/GHSA-4qmm-8p43-6vrx/GHSA-4qmm-8p43-6vrx.json | 11 +++++++---- .../04/GHSA-4rv2-fpjm-34hr/GHSA-4rv2-fpjm-34hr.json | 11 +++++++---- .../04/GHSA-4vm2-7x6p-rxmc/GHSA-4vm2-7x6p-rxmc.json | 11 +++++++---- .../04/GHSA-4w93-8r29-p2r9/GHSA-4w93-8r29-p2r9.json | 11 +++++++---- .../04/GHSA-4xc7-r2gw-w5cr/GHSA-4xc7-r2gw-w5cr.json | 11 +++++++---- .../04/GHSA-5626-x6h5-mpm4/GHSA-5626-x6h5-mpm4.json | 11 +++++++---- .../04/GHSA-56mr-w85w-rrqp/GHSA-56mr-w85w-rrqp.json | 11 +++++++---- .../04/GHSA-59xw-4jqj-crwp/GHSA-59xw-4jqj-crwp.json | 11 +++++++---- .../04/GHSA-5g69-hr8r-x577/GHSA-5g69-hr8r-x577.json | 11 +++++++---- .../04/GHSA-5h5w-q6q9-mgq7/GHSA-5h5w-q6q9-mgq7.json | 2 +- .../04/GHSA-5j47-gwc2-fhfc/GHSA-5j47-gwc2-fhfc.json | 9 ++++++--- .../04/GHSA-5q9m-f76w-7rm3/GHSA-5q9m-f76w-7rm3.json | 9 ++++++--- .../04/GHSA-62h5-px63-5pr8/GHSA-62h5-px63-5pr8.json | 11 +++++++---- .../04/GHSA-66c8-9r5r-35hf/GHSA-66c8-9r5r-35hf.json | 11 +++++++---- .../04/GHSA-67p7-4mxg-fqf4/GHSA-67p7-4mxg-fqf4.json | 11 +++++++---- .../04/GHSA-6898-v28p-jxgp/GHSA-6898-v28p-jxgp.json | 11 +++++++---- .../04/GHSA-69p7-7fh9-qch9/GHSA-69p7-7fh9-qch9.json | 11 +++++++---- .../04/GHSA-6cm9-r25c-5778/GHSA-6cm9-r25c-5778.json | 11 +++++++---- .../04/GHSA-6cr3-4wcf-vf7q/GHSA-6cr3-4wcf-vf7q.json | 11 +++++++---- .../04/GHSA-6cw8-3wqq-r7p8/GHSA-6cw8-3wqq-r7p8.json | 11 +++++++---- .../04/GHSA-6cxj-fx46-x5rx/GHSA-6cxj-fx46-x5rx.json | 9 ++++++--- .../04/GHSA-6fcx-56j8-8rrw/GHSA-6fcx-56j8-8rrw.json | 9 ++++++--- .../04/GHSA-6h85-5gxw-42h9/GHSA-6h85-5gxw-42h9.json | 11 +++++++---- .../04/GHSA-6hqv-2jjv-pjcr/GHSA-6hqv-2jjv-pjcr.json | 11 +++++++---- .../04/GHSA-6jqm-q264-hgq7/GHSA-6jqm-q264-hgq7.json | 4 ++-- .../04/GHSA-6mcj-pq5p-g68f/GHSA-6mcj-pq5p-g68f.json | 11 +++++++---- .../04/GHSA-6qhv-x9gf-6f6p/GHSA-6qhv-x9gf-6f6p.json | 9 ++++++--- .../04/GHSA-6vh7-f36j-r556/GHSA-6vh7-f36j-r556.json | 11 +++++++---- .../04/GHSA-6vqg-9p93-6r8w/GHSA-6vqg-9p93-6r8w.json | 11 +++++++---- .../04/GHSA-724x-6v4h-4p8w/GHSA-724x-6v4h-4p8w.json | 11 +++++++---- .../04/GHSA-756q-jvx3-cfqc/GHSA-756q-jvx3-cfqc.json | 2 +- .../04/GHSA-7855-3hjg-5779/GHSA-7855-3hjg-5779.json | 9 ++++++--- .../04/GHSA-78fh-92p7-q975/GHSA-78fh-92p7-q975.json | 2 +- .../04/GHSA-7fp6-x6hv-xgr4/GHSA-7fp6-x6hv-xgr4.json | 11 +++++++---- .../04/GHSA-7gxw-gccr-jr29/GHSA-7gxw-gccr-jr29.json | 11 +++++++---- .../04/GHSA-7h7j-53vp-8pvm/GHSA-7h7j-53vp-8pvm.json | 11 +++++++---- .../04/GHSA-7m59-rfr2-gh4p/GHSA-7m59-rfr2-gh4p.json | 11 +++++++---- .../04/GHSA-7qcm-hh75-h23f/GHSA-7qcm-hh75-h23f.json | 9 ++++++--- .../04/GHSA-7w3j-x6f6-7ff4/GHSA-7w3j-x6f6-7ff4.json | 9 ++++++--- .../04/GHSA-7xg4-c58x-526w/GHSA-7xg4-c58x-526w.json | 11 +++++++---- .../04/GHSA-88ph-hfrw-chfm/GHSA-88ph-hfrw-chfm.json | 11 +++++++---- .../04/GHSA-899f-q8cx-3v8r/GHSA-899f-q8cx-3v8r.json | 11 +++++++---- .../04/GHSA-8g6h-9rm6-pvg4/GHSA-8g6h-9rm6-pvg4.json | 9 ++++++--- .../04/GHSA-8r9r-7v2f-q66f/GHSA-8r9r-7v2f-q66f.json | 11 +++++++---- .../04/GHSA-8rv2-8c5x-g54v/GHSA-8rv2-8c5x-g54v.json | 2 +- .../04/GHSA-954c-ggpp-6356/GHSA-954c-ggpp-6356.json | 11 +++++++---- .../04/GHSA-9cwc-p4v5-qm42/GHSA-9cwc-p4v5-qm42.json | 11 +++++++---- .../04/GHSA-9hpf-c37x-pm6f/GHSA-9hpf-c37x-pm6f.json | 11 +++++++---- .../04/GHSA-9r3g-jj9v-44cj/GHSA-9r3g-jj9v-44cj.json | 11 +++++++---- .../04/GHSA-9rpw-2g2r-f62x/GHSA-9rpw-2g2r-f62x.json | 11 +++++++---- .../04/GHSA-9w2p-xfp4-ggc4/GHSA-9w2p-xfp4-ggc4.json | 11 +++++++---- .../04/GHSA-c4j4-3j3p-cjc9/GHSA-c4j4-3j3p-cjc9.json | 11 +++++++---- .../04/GHSA-c586-6hq4-j669/GHSA-c586-6hq4-j669.json | 11 +++++++---- .../04/GHSA-c75w-9qpm-w8gc/GHSA-c75w-9qpm-w8gc.json | 11 +++++++---- .../04/GHSA-c7hr-m654-77g5/GHSA-c7hr-m654-77g5.json | 11 +++++++---- .../04/GHSA-cghm-v6v8-jp7r/GHSA-cghm-v6v8-jp7r.json | 11 +++++++---- .../04/GHSA-chwc-9rjv-x7mh/GHSA-chwc-9rjv-x7mh.json | 9 ++++++--- .../04/GHSA-cv75-h25f-pjqj/GHSA-cv75-h25f-pjqj.json | 2 +- .../04/GHSA-f79m-6547-466x/GHSA-f79m-6547-466x.json | 11 +++++++---- .../04/GHSA-f7mm-6f83-q4xx/GHSA-f7mm-6f83-q4xx.json | 2 +- .../04/GHSA-fg45-47x2-7rw4/GHSA-fg45-47x2-7rw4.json | 11 +++++++---- .../04/GHSA-fgv5-wppj-fjxh/GHSA-fgv5-wppj-fjxh.json | 11 +++++++---- .../04/GHSA-fh99-9gvw-rw3c/GHSA-fh99-9gvw-rw3c.json | 9 ++++++--- .../04/GHSA-fr3m-v7j2-vv6p/GHSA-fr3m-v7j2-vv6p.json | 11 +++++++---- .../04/GHSA-fvj9-whqh-93ff/GHSA-fvj9-whqh-93ff.json | 11 +++++++---- .../04/GHSA-fx8w-m7j5-9568/GHSA-fx8w-m7j5-9568.json | 11 +++++++---- .../04/GHSA-gg68-f5h7-f88v/GHSA-gg68-f5h7-f88v.json | 11 +++++++---- .../04/GHSA-gg92-jch8-j26v/GHSA-gg92-jch8-j26v.json | 11 +++++++---- .../04/GHSA-gj8q-4v8x-c5jj/GHSA-gj8q-4v8x-c5jj.json | 11 +++++++---- .../04/GHSA-gqfm-c246-rhqp/GHSA-gqfm-c246-rhqp.json | 9 ++++++--- .../04/GHSA-gwrp-82jw-p87q/GHSA-gwrp-82jw-p87q.json | 11 +++++++---- .../04/GHSA-gwvx-7jph-wm5r/GHSA-gwvx-7jph-wm5r.json | 11 +++++++---- .../04/GHSA-h227-33f5-4929/GHSA-h227-33f5-4929.json | 11 +++++++---- .../04/GHSA-h227-rq3h-hrhj/GHSA-h227-rq3h-hrhj.json | 11 +++++++---- .../04/GHSA-h22m-xrhp-8g7c/GHSA-h22m-xrhp-8g7c.json | 11 +++++++---- .../04/GHSA-h66r-c8cp-f7f9/GHSA-h66r-c8cp-f7f9.json | 11 +++++++---- .../04/GHSA-h9vv-8q8m-v6m6/GHSA-h9vv-8q8m-v6m6.json | 2 +- .../04/GHSA-h9wj-383m-chrv/GHSA-h9wj-383m-chrv.json | 11 +++++++---- .../04/GHSA-hf73-54jv-gg64/GHSA-hf73-54jv-gg64.json | 11 +++++++---- .../04/GHSA-hfcj-g47m-8fvx/GHSA-hfcj-g47m-8fvx.json | 6 +++++- .../04/GHSA-hgxr-xh47-wjx5/GHSA-hgxr-xh47-wjx5.json | 11 +++++++---- .../04/GHSA-hjc9-mj3q-mx36/GHSA-hjc9-mj3q-mx36.json | 11 +++++++---- .../04/GHSA-hjqg-7wq4-xvwx/GHSA-hjqg-7wq4-xvwx.json | 11 +++++++---- .../04/GHSA-j46p-v4gj-3jj5/GHSA-j46p-v4gj-3jj5.json | 11 +++++++---- .../04/GHSA-jcmq-cwf3-j6c4/GHSA-jcmq-cwf3-j6c4.json | 11 +++++++---- .../04/GHSA-jmcg-wx22-4gp4/GHSA-jmcg-wx22-4gp4.json | 11 +++++++---- .../04/GHSA-jmrw-j3gj-4xq7/GHSA-jmrw-j3gj-4xq7.json | 9 ++++++--- .../04/GHSA-m23r-r3m9-287h/GHSA-m23r-r3m9-287h.json | 11 +++++++---- .../04/GHSA-m286-4wcq-v339/GHSA-m286-4wcq-v339.json | 11 +++++++---- .../04/GHSA-m755-674g-g2x5/GHSA-m755-674g-g2x5.json | 11 +++++++---- .../04/GHSA-m829-cf3v-vgmh/GHSA-m829-cf3v-vgmh.json | 11 +++++++---- .../04/GHSA-mfmq-hv4w-8pwj/GHSA-mfmq-hv4w-8pwj.json | 11 +++++++---- .../04/GHSA-mp39-4ph2-875c/GHSA-mp39-4ph2-875c.json | 11 +++++++---- .../04/GHSA-mr38-8f53-xh3h/GHSA-mr38-8f53-xh3h.json | 11 +++++++---- .../04/GHSA-mr3w-vp86-68v3/GHSA-mr3w-vp86-68v3.json | 11 +++++++---- .../04/GHSA-mx5j-cp8j-55g8/GHSA-mx5j-cp8j-55g8.json | 11 +++++++---- .../04/GHSA-mxr8-qj6j-f7gq/GHSA-mxr8-qj6j-f7gq.json | 11 +++++++---- .../04/GHSA-p2m3-5whj-8vxq/GHSA-p2m3-5whj-8vxq.json | 11 +++++++---- .../04/GHSA-p49x-p8gv-6x6p/GHSA-p49x-p8gv-6x6p.json | 11 +++++++---- .../04/GHSA-pgmp-wx9f-mqm3/GHSA-pgmp-wx9f-mqm3.json | 11 +++++++---- .../04/GHSA-pp2f-6536-5xg8/GHSA-pp2f-6536-5xg8.json | 9 ++++++--- .../04/GHSA-pq98-px5v-5jjc/GHSA-pq98-px5v-5jjc.json | 2 +- .../04/GHSA-prcq-9p67-4w6h/GHSA-prcq-9p67-4w6h.json | 11 +++++++---- .../04/GHSA-pvm7-95mc-x6r3/GHSA-pvm7-95mc-x6r3.json | 11 +++++++---- .../04/GHSA-pwg9-cppx-6xf2/GHSA-pwg9-cppx-6xf2.json | 11 +++++++---- .../04/GHSA-px9h-hqw8-r2j9/GHSA-px9h-hqw8-r2j9.json | 11 +++++++---- .../04/GHSA-qc57-8fc5-wvrq/GHSA-qc57-8fc5-wvrq.json | 11 +++++++---- .../04/GHSA-qrpq-f2gq-8mj5/GHSA-qrpq-f2gq-8mj5.json | 11 +++++++---- .../04/GHSA-qx24-6mr9-qph4/GHSA-qx24-6mr9-qph4.json | 11 +++++++---- .../04/GHSA-qx35-w84c-98jc/GHSA-qx35-w84c-98jc.json | 9 ++++++--- .../04/GHSA-r25h-rx28-86pw/GHSA-r25h-rx28-86pw.json | 11 +++++++---- .../04/GHSA-r3p3-9v4p-p53j/GHSA-r3p3-9v4p-p53j.json | 11 +++++++---- .../04/GHSA-r584-j372-49f9/GHSA-r584-j372-49f9.json | 11 +++++++---- .../04/GHSA-r74q-h5x3-cq55/GHSA-r74q-h5x3-cq55.json | 11 +++++++---- .../04/GHSA-r894-pxpx-j3m6/GHSA-r894-pxpx-j3m6.json | 2 +- .../04/GHSA-r92g-h2wj-6rv5/GHSA-r92g-h2wj-6rv5.json | 2 +- .../04/GHSA-rh2q-xgw7-5r5r/GHSA-rh2q-xgw7-5r5r.json | 2 +- .../04/GHSA-v2jq-jcj2-vg39/GHSA-v2jq-jcj2-vg39.json | 11 +++++++---- .../04/GHSA-v6cp-2p94-jrp7/GHSA-v6cp-2p94-jrp7.json | 11 +++++++---- .../04/GHSA-v78q-6prw-gcfj/GHSA-v78q-6prw-gcfj.json | 11 +++++++---- .../04/GHSA-v8mx-hp8h-89vc/GHSA-v8mx-hp8h-89vc.json | 11 +++++++---- .../04/GHSA-vgv5-6j9r-qr9f/GHSA-vgv5-6j9r-qr9f.json | 11 +++++++---- .../04/GHSA-vmg3-jxcp-7rqw/GHSA-vmg3-jxcp-7rqw.json | 11 +++++++---- .../04/GHSA-vpgr-vqw9-62cw/GHSA-vpgr-vqw9-62cw.json | 11 +++++++---- .../04/GHSA-vpvj-x83r-f4rf/GHSA-vpvj-x83r-f4rf.json | 11 +++++++---- .../04/GHSA-vq5q-96mp-22gj/GHSA-vq5q-96mp-22gj.json | 11 +++++++---- .../04/GHSA-vvgf-3f7q-3cx6/GHSA-vvgf-3f7q-3cx6.json | 11 +++++++---- .../04/GHSA-vvpg-5wfc-53jj/GHSA-vvpg-5wfc-53jj.json | 11 +++++++---- .../04/GHSA-w34f-r3qw-xm2v/GHSA-w34f-r3qw-xm2v.json | 11 +++++++---- .../04/GHSA-w3hf-jwqp-cf97/GHSA-w3hf-jwqp-cf97.json | 11 +++++++---- .../04/GHSA-w4fx-77wp-mx4j/GHSA-w4fx-77wp-mx4j.json | 11 +++++++---- .../04/GHSA-w6rp-qpf9-cggq/GHSA-w6rp-qpf9-cggq.json | 11 +++++++---- .../04/GHSA-whgw-qcmx-gp47/GHSA-whgw-qcmx-gp47.json | 2 +- .../04/GHSA-ww39-r94v-qc83/GHSA-ww39-r94v-qc83.json | 11 +++++++---- .../04/GHSA-x3cc-r2hp-r6x7/GHSA-x3cc-r2hp-r6x7.json | 9 ++++++--- .../04/GHSA-x54g-mx9q-vc6g/GHSA-x54g-mx9q-vc6g.json | 2 +- .../04/GHSA-x6r5-8xcj-pv7f/GHSA-x6r5-8xcj-pv7f.json | 3 ++- .../04/GHSA-x7wx-mcvx-6wwv/GHSA-x7wx-mcvx-6wwv.json | 11 +++++++---- .../04/GHSA-x86q-9jwc-62h8/GHSA-x86q-9jwc-62h8.json | 11 +++++++---- .../04/GHSA-xcfg-gmff-9p95/GHSA-xcfg-gmff-9p95.json | 2 +- .../04/GHSA-xcg3-8p5h-wcf4/GHSA-xcg3-8p5h-wcf4.json | 11 +++++++---- .../04/GHSA-xfq4-78j7-v594/GHSA-xfq4-78j7-v594.json | 2 +- .../04/GHSA-xh76-hgvx-8pp6/GHSA-xh76-hgvx-8pp6.json | 2 +- .../04/GHSA-xj37-732r-xm4w/GHSA-xj37-732r-xm4w.json | 11 +++++++---- .../05/GHSA-28wv-5cj3-9qg6/GHSA-28wv-5cj3-9qg6.json | 11 +++++++---- .../05/GHSA-29w5-279f-vr72/GHSA-29w5-279f-vr72.json | 11 +++++++---- .../05/GHSA-2fxm-8374-c95m/GHSA-2fxm-8374-c95m.json | 11 +++++++---- .../05/GHSA-2j96-ww2p-cpjq/GHSA-2j96-ww2p-cpjq.json | 11 +++++++---- .../05/GHSA-3599-wxpf-rm35/GHSA-3599-wxpf-rm35.json | 9 ++++++--- .../05/GHSA-4qw6-vwc8-mh38/GHSA-4qw6-vwc8-mh38.json | 11 +++++++---- .../05/GHSA-56hr-38f5-m992/GHSA-56hr-38f5-m992.json | 11 +++++++---- .../05/GHSA-57gw-c6xj-3hcc/GHSA-57gw-c6xj-3hcc.json | 2 +- .../05/GHSA-58qf-7xxx-pw82/GHSA-58qf-7xxx-pw82.json | 11 +++++++---- .../05/GHSA-5jhr-gg3j-ggcf/GHSA-5jhr-gg3j-ggcf.json | 9 ++++++--- .../05/GHSA-675j-298r-vv37/GHSA-675j-298r-vv37.json | 11 +++++++---- .../05/GHSA-6gqv-q367-c5h2/GHSA-6gqv-q367-c5h2.json | 2 +- .../05/GHSA-7mrx-37fj-85qg/GHSA-7mrx-37fj-85qg.json | 2 +- .../05/GHSA-7qch-65fq-c3xh/GHSA-7qch-65fq-c3xh.json | 3 ++- .../05/GHSA-7x33-7jjx-2gmh/GHSA-7x33-7jjx-2gmh.json | 2 +- .../05/GHSA-94hp-7v9h-5qq9/GHSA-94hp-7v9h-5qq9.json | 11 +++++++---- .../05/GHSA-989m-gr7j-mv6g/GHSA-989m-gr7j-mv6g.json | 9 ++++++--- .../05/GHSA-cgpr-m9mx-94j6/GHSA-cgpr-m9mx-94j6.json | 11 +++++++---- .../05/GHSA-cw72-f9mw-h9c4/GHSA-cw72-f9mw-h9c4.json | 11 +++++++---- .../05/GHSA-gghh-gpx3-pmx6/GHSA-gghh-gpx3-pmx6.json | 2 +- .../05/GHSA-gm2r-qgvq-g985/GHSA-gm2r-qgvq-g985.json | 2 +- .../05/GHSA-gr54-644j-hpm5/GHSA-gr54-644j-hpm5.json | 2 +- .../05/GHSA-h98m-4vr6-fqjf/GHSA-h98m-4vr6-fqjf.json | 11 +++++++---- .../05/GHSA-j563-gw8p-23mq/GHSA-j563-gw8p-23mq.json | 1 + .../05/GHSA-j9wj-h588-6g73/GHSA-j9wj-h588-6g73.json | 9 ++++++--- .../05/GHSA-jx24-3g7h-4qj2/GHSA-jx24-3g7h-4qj2.json | 11 +++++++---- .../05/GHSA-pccf-f85g-p7gq/GHSA-pccf-f85g-p7gq.json | 11 +++++++---- .../05/GHSA-qc4m-rx2p-hrfv/GHSA-qc4m-rx2p-hrfv.json | 11 +++++++---- .../05/GHSA-r3hf-mcpf-6r4f/GHSA-r3hf-mcpf-6r4f.json | 11 +++++++---- .../05/GHSA-r8hx-f24g-25mv/GHSA-r8hx-f24g-25mv.json | 11 +++++++---- .../05/GHSA-rh6f-6762-mx44/GHSA-rh6f-6762-mx44.json | 11 +++++++---- .../05/GHSA-vrmc-7fqr-49c6/GHSA-vrmc-7fqr-49c6.json | 2 +- .../05/GHSA-w8h9-x2qc-v5qf/GHSA-w8h9-x2qc-v5qf.json | 11 +++++++---- .../05/GHSA-wmx5-qgrp-3rvx/GHSA-wmx5-qgrp-3rvx.json | 9 ++++++--- .../05/GHSA-x9vv-qxv4-8p6c/GHSA-x9vv-qxv4-8p6c.json | 2 +- .../05/GHSA-xxgj-ggp4-xvhw/GHSA-xxgj-ggp4-xvhw.json | 2 +- 198 files changed, 1179 insertions(+), 674 deletions(-) diff --git a/advisories/unreviewed/2024/04/GHSA-259m-56qf-8wc5/GHSA-259m-56qf-8wc5.json b/advisories/unreviewed/2024/04/GHSA-259m-56qf-8wc5/GHSA-259m-56qf-8wc5.json index f8965dd2721..70f48e63e01 100644 --- a/advisories/unreviewed/2024/04/GHSA-259m-56qf-8wc5/GHSA-259m-56qf-8wc5.json +++ b/advisories/unreviewed/2024/04/GHSA-259m-56qf-8wc5/GHSA-259m-56qf-8wc5.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-259m-56qf-8wc5", - "modified": "2024-04-30T21:30:32Z", + "modified": "2024-07-03T18:37:55Z", "published": "2024-04-30T21:30:32Z", "aliases": [ "CVE-2024-33383" ], "details": "Arbitrary File Read vulnerability in novel-plus 4.3.0 and before allows a remote attacker to obtain sensitive information via a crafted GET request using the filePath parameter.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-639" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-30T20:15:08Z" diff --git a/advisories/unreviewed/2024/04/GHSA-25mp-9vjg-j5g4/GHSA-25mp-9vjg-j5g4.json b/advisories/unreviewed/2024/04/GHSA-25mp-9vjg-j5g4/GHSA-25mp-9vjg-j5g4.json index fbc71daf68a..1009ab0e639 100644 --- a/advisories/unreviewed/2024/04/GHSA-25mp-9vjg-j5g4/GHSA-25mp-9vjg-j5g4.json +++ b/advisories/unreviewed/2024/04/GHSA-25mp-9vjg-j5g4/GHSA-25mp-9vjg-j5g4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-25mp-9vjg-j5g4", - "modified": "2024-04-30T18:30:33Z", + "modified": "2024-07-03T18:37:46Z", "published": "2024-04-30T18:30:33Z", "aliases": [ "CVE-2023-36268" ], "details": "An issue in The Document Foundation Libreoffice v.7.4.7 allows a remote attacker to cause a denial of service via a crafted .ppt file.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ "CWE-405" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-30T18:15:19Z" diff --git a/advisories/unreviewed/2024/04/GHSA-2c9q-jgx6-2qx7/GHSA-2c9q-jgx6-2qx7.json b/advisories/unreviewed/2024/04/GHSA-2c9q-jgx6-2qx7/GHSA-2c9q-jgx6-2qx7.json index 3700a5d3dac..c27afed1107 100644 --- a/advisories/unreviewed/2024/04/GHSA-2c9q-jgx6-2qx7/GHSA-2c9q-jgx6-2qx7.json +++ b/advisories/unreviewed/2024/04/GHSA-2c9q-jgx6-2qx7/GHSA-2c9q-jgx6-2qx7.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-2c9q-jgx6-2qx7", - "modified": "2024-04-23T09:30:46Z", + "modified": "2024-07-03T18:36:36Z", "published": "2024-04-23T09:30:46Z", "aliases": [ "CVE-2023-48183" ], "details": "QuickJS before c4cdd61 has a build_for_in_iterator NULL pointer dereference because of an erroneous lexical scope of \"this\" with eval.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-23T07:15:42Z" diff --git a/advisories/unreviewed/2024/04/GHSA-2g9g-cq6x-p79q/GHSA-2g9g-cq6x-p79q.json b/advisories/unreviewed/2024/04/GHSA-2g9g-cq6x-p79q/GHSA-2g9g-cq6x-p79q.json index e56b857cf1c..956040a6195 100644 --- a/advisories/unreviewed/2024/04/GHSA-2g9g-cq6x-p79q/GHSA-2g9g-cq6x-p79q.json +++ b/advisories/unreviewed/2024/04/GHSA-2g9g-cq6x-p79q/GHSA-2g9g-cq6x-p79q.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-2g9g-cq6x-p79q", - "modified": "2024-04-22T12:30:33Z", + "modified": "2024-07-03T18:36:20Z", "published": "2024-04-22T12:30:33Z", "aliases": [ "CVE-2024-22808" ], "details": "An issue in Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to cause a Denial of Service (DoS) by disrupting the communication between the PathPilot controller and the CNC router via overwriting the card's name in the device memory.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-922" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T12:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-2gvx-5frj-6px5/GHSA-2gvx-5frj-6px5.json b/advisories/unreviewed/2024/04/GHSA-2gvx-5frj-6px5/GHSA-2gvx-5frj-6px5.json index f45246eac92..fd111c477dc 100644 --- a/advisories/unreviewed/2024/04/GHSA-2gvx-5frj-6px5/GHSA-2gvx-5frj-6px5.json +++ b/advisories/unreviewed/2024/04/GHSA-2gvx-5frj-6px5/GHSA-2gvx-5frj-6px5.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-2gvx-5frj-6px5", - "modified": "2024-04-23T15:30:36Z", + "modified": "2024-07-03T18:36:43Z", "published": "2024-04-23T15:30:36Z", "aliases": [ "CVE-2024-33215" ], "details": "Tenda FH1206 V1.2.0.8(8155)_EN was discovered to contain a stack-based buffer overflow vulnerability via the mitInterface parameter in ip/goform/addressNat.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-121" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-23T15:15:50Z" diff --git a/advisories/unreviewed/2024/04/GHSA-2pvq-77pm-76c4/GHSA-2pvq-77pm-76c4.json b/advisories/unreviewed/2024/04/GHSA-2pvq-77pm-76c4/GHSA-2pvq-77pm-76c4.json index 943a2768b1d..073b659d733 100644 --- a/advisories/unreviewed/2024/04/GHSA-2pvq-77pm-76c4/GHSA-2pvq-77pm-76c4.json +++ b/advisories/unreviewed/2024/04/GHSA-2pvq-77pm-76c4/GHSA-2pvq-77pm-76c4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-2pvq-77pm-76c4", - "modified": "2024-04-22T03:30:29Z", + "modified": "2024-07-03T18:36:19Z", "published": "2024-04-22T03:30:29Z", "aliases": [ "CVE-2024-32418" ], "details": "An issue in flusity CMS v2.33 allows a remote attacker to execute arbitrary code via the add_addon.php component.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-269" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T01:15:47Z" diff --git a/advisories/unreviewed/2024/04/GHSA-2x55-cxhq-4m7q/GHSA-2x55-cxhq-4m7q.json b/advisories/unreviewed/2024/04/GHSA-2x55-cxhq-4m7q/GHSA-2x55-cxhq-4m7q.json index cbc4435b28d..9a855b3c43f 100644 --- a/advisories/unreviewed/2024/04/GHSA-2x55-cxhq-4m7q/GHSA-2x55-cxhq-4m7q.json +++ b/advisories/unreviewed/2024/04/GHSA-2x55-cxhq-4m7q/GHSA-2x55-cxhq-4m7q.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-2x55-cxhq-4m7q", - "modified": "2024-04-30T15:30:37Z", + "modified": "2024-07-03T18:37:41Z", "published": "2024-04-30T15:30:37Z", "aliases": [ "CVE-2024-33275" ], "details": "SQL injection vulnerability in Webbax supernewsletter v.1.4.21 and before allows a remote attacker to escalate privileges via the Super Newsletter module in the product_search.php components.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-30T15:15:53Z" diff --git a/advisories/unreviewed/2024/04/GHSA-2xmv-6p85-fvhf/GHSA-2xmv-6p85-fvhf.json b/advisories/unreviewed/2024/04/GHSA-2xmv-6p85-fvhf/GHSA-2xmv-6p85-fvhf.json index a23629edb20..afa6f08193f 100644 --- a/advisories/unreviewed/2024/04/GHSA-2xmv-6p85-fvhf/GHSA-2xmv-6p85-fvhf.json +++ b/advisories/unreviewed/2024/04/GHSA-2xmv-6p85-fvhf/GHSA-2xmv-6p85-fvhf.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-2xmv-6p85-fvhf", - "modified": "2024-04-29T21:30:35Z", + "modified": "2024-07-03T18:37:30Z", "published": "2024-04-29T21:30:35Z", "aliases": [ "CVE-2024-33435" ], "details": "Insecure Permissions vulnerability in Guangzhou Yingshi Electronic Technology Co. Ncast Yingshi high-definition intelligent recording and playback system 2007-2017 allows a remote attacker to execute arbitrary code via the /manage/IPSetup.php backend function", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-732" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-29T20:15:08Z" diff --git a/advisories/unreviewed/2024/04/GHSA-33pj-qv5w-c27r/GHSA-33pj-qv5w-c27r.json b/advisories/unreviewed/2024/04/GHSA-33pj-qv5w-c27r/GHSA-33pj-qv5w-c27r.json index 27b391078eb..f64a5a34dae 100644 --- a/advisories/unreviewed/2024/04/GHSA-33pj-qv5w-c27r/GHSA-33pj-qv5w-c27r.json +++ b/advisories/unreviewed/2024/04/GHSA-33pj-qv5w-c27r/GHSA-33pj-qv5w-c27r.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-33pj-qv5w-c27r", - "modified": "2024-04-22T21:31:01Z", + "modified": "2024-07-03T18:36:32Z", "published": "2024-04-22T21:31:01Z", "aliases": [ "CVE-2024-32399" ], "details": "Directory Traversal vulnerability in RaidenMAILD Mail Server v.4.9.4 and before allows a remote attacker to obtain sensitive information via the /webeditor/ component.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:L" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-22" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T20:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-3428-vpwf-2w42/GHSA-3428-vpwf-2w42.json b/advisories/unreviewed/2024/04/GHSA-3428-vpwf-2w42/GHSA-3428-vpwf-2w42.json index cf132bf151d..682bafbbe5a 100644 --- a/advisories/unreviewed/2024/04/GHSA-3428-vpwf-2w42/GHSA-3428-vpwf-2w42.json +++ b/advisories/unreviewed/2024/04/GHSA-3428-vpwf-2w42/GHSA-3428-vpwf-2w42.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-3428-vpwf-2w42", - "modified": "2024-04-26T15:30:33Z", + "modified": "2024-07-03T18:37:02Z", "published": "2024-04-26T15:30:33Z", "aliases": [ "CVE-2024-28328" ], "details": "CSV Injection vulnerability in the Asus RT-N12+ router allows administrator users to inject arbitrary commands or formulas in the client name parameter which can be triggered and executed in a different user session upon exporting to CSV format.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-77" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-26T15:15:48Z" diff --git a/advisories/unreviewed/2024/04/GHSA-36f2-xg2m-gcm5/GHSA-36f2-xg2m-gcm5.json b/advisories/unreviewed/2024/04/GHSA-36f2-xg2m-gcm5/GHSA-36f2-xg2m-gcm5.json index 46211b22c58..72e230de5f4 100644 --- a/advisories/unreviewed/2024/04/GHSA-36f2-xg2m-gcm5/GHSA-36f2-xg2m-gcm5.json +++ b/advisories/unreviewed/2024/04/GHSA-36f2-xg2m-gcm5/GHSA-36f2-xg2m-gcm5.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-427" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/04/GHSA-3jgv-pfqj-v626/GHSA-3jgv-pfqj-v626.json b/advisories/unreviewed/2024/04/GHSA-3jgv-pfqj-v626/GHSA-3jgv-pfqj-v626.json index 599de99ee43..9239e7e7a1a 100644 --- a/advisories/unreviewed/2024/04/GHSA-3jgv-pfqj-v626/GHSA-3jgv-pfqj-v626.json +++ b/advisories/unreviewed/2024/04/GHSA-3jgv-pfqj-v626/GHSA-3jgv-pfqj-v626.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-3jgv-pfqj-v626", - "modified": "2024-04-26T06:30:34Z", + "modified": "2024-07-03T18:36:57Z", "published": "2024-04-26T06:30:34Z", "aliases": [ "CVE-2024-32406" ], "details": "Server-Side Template Injection (SSTI) vulnerability in inducer relate before v.2024.1 allows a remote attacker to execute arbitrary code via a crafted payload to the Batch-Issue Exam Tickets function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-94" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-26T04:15:09Z" diff --git a/advisories/unreviewed/2024/04/GHSA-3w7p-3w6w-7fpg/GHSA-3w7p-3w6w-7fpg.json b/advisories/unreviewed/2024/04/GHSA-3w7p-3w6w-7fpg/GHSA-3w7p-3w6w-7fpg.json index 55fc4896e96..c93d2e1a9ba 100644 --- a/advisories/unreviewed/2024/04/GHSA-3w7p-3w6w-7fpg/GHSA-3w7p-3w6w-7fpg.json +++ b/advisories/unreviewed/2024/04/GHSA-3w7p-3w6w-7fpg/GHSA-3w7p-3w6w-7fpg.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-3w7p-3w6w-7fpg", - "modified": "2024-04-22T12:30:33Z", + "modified": "2024-07-03T18:36:23Z", "published": "2024-04-22T12:30:33Z", "aliases": [ "CVE-2024-22815" ], "details": "An issue in the communication protocol of Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to cause a Denial of Service (DoS) via crafted commands.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-228" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T12:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-46rv-4m8w-q275/GHSA-46rv-4m8w-q275.json b/advisories/unreviewed/2024/04/GHSA-46rv-4m8w-q275/GHSA-46rv-4m8w-q275.json index 28f6c1904da..8c2fa2da687 100644 --- a/advisories/unreviewed/2024/04/GHSA-46rv-4m8w-q275/GHSA-46rv-4m8w-q275.json +++ b/advisories/unreviewed/2024/04/GHSA-46rv-4m8w-q275/GHSA-46rv-4m8w-q275.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-46rv-4m8w-q275", - "modified": "2024-04-22T15:30:42Z", + "modified": "2024-07-03T18:36:30Z", "published": "2024-04-22T15:30:42Z", "aliases": [ "CVE-2024-28699" ], "details": "A buffer overflow vulnerability in pdf2json v0.70 allows a local attacker to execute arbitrary code via the GString::copy() and ImgOutputDev::ImgOutputDev function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-94" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T15:15:47Z" diff --git a/advisories/unreviewed/2024/04/GHSA-4c2g-28qx-6qjr/GHSA-4c2g-28qx-6qjr.json b/advisories/unreviewed/2024/04/GHSA-4c2g-28qx-6qjr/GHSA-4c2g-28qx-6qjr.json index f6d74a16d04..3448e556453 100644 --- a/advisories/unreviewed/2024/04/GHSA-4c2g-28qx-6qjr/GHSA-4c2g-28qx-6qjr.json +++ b/advisories/unreviewed/2024/04/GHSA-4c2g-28qx-6qjr/GHSA-4c2g-28qx-6qjr.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-4c2g-28qx-6qjr", - "modified": "2024-04-24T18:30:33Z", + "modified": "2024-07-03T18:36:46Z", "published": "2024-04-24T18:30:33Z", "aliases": [ "CVE-2024-23228" ], "details": "This issue was addressed through improved state management. This issue is fixed in iOS 17.3 and iPadOS 17.3. Locked Notes content may have been unexpectedly unlocked.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-200" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-24T17:15:47Z" diff --git a/advisories/unreviewed/2024/04/GHSA-4c3m-w6wv-6mg8/GHSA-4c3m-w6wv-6mg8.json b/advisories/unreviewed/2024/04/GHSA-4c3m-w6wv-6mg8/GHSA-4c3m-w6wv-6mg8.json index 315d4a29f75..2f6924ba654 100644 --- a/advisories/unreviewed/2024/04/GHSA-4c3m-w6wv-6mg8/GHSA-4c3m-w6wv-6mg8.json +++ b/advisories/unreviewed/2024/04/GHSA-4c3m-w6wv-6mg8/GHSA-4c3m-w6wv-6mg8.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-4c3m-w6wv-6mg8", - "modified": "2024-04-30T21:30:32Z", + "modified": "2024-07-03T18:37:49Z", "published": "2024-04-30T21:30:32Z", "aliases": [ "CVE-2024-22546" ], "details": "TRENDnet TEW-815DAP 1.0.2.0 is vulnerable to Command Injection via the do_setNTP function. An authenticated attacker with administrator privileges can leverage this vulnerability over the network via a malicious POST request.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-77" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-30T19:15:23Z" diff --git a/advisories/unreviewed/2024/04/GHSA-4gp6-hcg2-gfh6/GHSA-4gp6-hcg2-gfh6.json b/advisories/unreviewed/2024/04/GHSA-4gp6-hcg2-gfh6/GHSA-4gp6-hcg2-gfh6.json index 1e883132146..d5e1fded438 100644 --- a/advisories/unreviewed/2024/04/GHSA-4gp6-hcg2-gfh6/GHSA-4gp6-hcg2-gfh6.json +++ b/advisories/unreviewed/2024/04/GHSA-4gp6-hcg2-gfh6/GHSA-4gp6-hcg2-gfh6.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-4gp6-hcg2-gfh6", - "modified": "2024-04-25T21:30:31Z", + "modified": "2024-07-03T18:36:49Z", "published": "2024-04-25T21:30:31Z", "aliases": [ "CVE-2024-31615" ], "details": "ThinkCMF 6.0.9 is vulnerable to File upload via UeditorController.php.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-434" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-25T20:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-4pq6-8mv5-6q6p/GHSA-4pq6-8mv5-6q6p.json b/advisories/unreviewed/2024/04/GHSA-4pq6-8mv5-6q6p/GHSA-4pq6-8mv5-6q6p.json index 6cfb7b327e6..6f52c69a4a5 100644 --- a/advisories/unreviewed/2024/04/GHSA-4pq6-8mv5-6q6p/GHSA-4pq6-8mv5-6q6p.json +++ b/advisories/unreviewed/2024/04/GHSA-4pq6-8mv5-6q6p/GHSA-4pq6-8mv5-6q6p.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-4pq6-8mv5-6q6p", - "modified": "2024-04-25T18:30:39Z", + "modified": "2024-07-03T18:36:49Z", "published": "2024-04-25T18:30:39Z", "aliases": [ "CVE-2024-29660" ], "details": "Cross Site Scripting vulnerability in DedeCMS v.5.7 allows a local attacker to execute arbitrary code via a crafted payload to the stepselect_main.php component.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-25T17:15:49Z" diff --git a/advisories/unreviewed/2024/04/GHSA-4qmm-8p43-6vrx/GHSA-4qmm-8p43-6vrx.json b/advisories/unreviewed/2024/04/GHSA-4qmm-8p43-6vrx/GHSA-4qmm-8p43-6vrx.json index 24b7db09a64..168002c5de1 100644 --- a/advisories/unreviewed/2024/04/GHSA-4qmm-8p43-6vrx/GHSA-4qmm-8p43-6vrx.json +++ b/advisories/unreviewed/2024/04/GHSA-4qmm-8p43-6vrx/GHSA-4qmm-8p43-6vrx.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-4qmm-8p43-6vrx", - "modified": "2024-04-29T18:30:46Z", + "modified": "2024-07-03T18:37:26Z", "published": "2024-04-29T18:30:46Z", "aliases": [ "CVE-2024-33345" ], "details": "D-Link DIR-823G A1V1.0.2B05 was found to contain a Null-pointer dereference in the main function of upload_firmware.cgi, which allows remote attackers to cause a Denial of Service (DoS) via a crafted input.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-29T18:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-4rv2-fpjm-34hr/GHSA-4rv2-fpjm-34hr.json b/advisories/unreviewed/2024/04/GHSA-4rv2-fpjm-34hr/GHSA-4rv2-fpjm-34hr.json index 63596a61334..70c6a53825e 100644 --- a/advisories/unreviewed/2024/04/GHSA-4rv2-fpjm-34hr/GHSA-4rv2-fpjm-34hr.json +++ b/advisories/unreviewed/2024/04/GHSA-4rv2-fpjm-34hr/GHSA-4rv2-fpjm-34hr.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-4rv2-fpjm-34hr", - "modified": "2024-04-26T03:30:28Z", + "modified": "2024-07-03T18:36:53Z", "published": "2024-04-26T03:30:28Z", "aliases": [ "CVE-2024-33666" ], "details": "An issue was discovered in Zammad before 6.3.0. Users with customer access to a ticket could have accessed time accounting details of this ticket via the API. This data should be available only to agents.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-284" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-26T01:15:46Z" diff --git a/advisories/unreviewed/2024/04/GHSA-4vm2-7x6p-rxmc/GHSA-4vm2-7x6p-rxmc.json b/advisories/unreviewed/2024/04/GHSA-4vm2-7x6p-rxmc/GHSA-4vm2-7x6p-rxmc.json index 95a30874606..138b9e889d7 100644 --- a/advisories/unreviewed/2024/04/GHSA-4vm2-7x6p-rxmc/GHSA-4vm2-7x6p-rxmc.json +++ b/advisories/unreviewed/2024/04/GHSA-4vm2-7x6p-rxmc/GHSA-4vm2-7x6p-rxmc.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-4vm2-7x6p-rxmc", - "modified": "2024-05-01T18:30:40Z", + "modified": "2024-07-03T18:37:17Z", "published": "2024-04-29T06:30:43Z", "aliases": [ "CVE-2024-33905" ], "details": "In Telegram WebK before 2.0.0 (488), a crafted Mini Web App allows XSS via the postMessage web_app_open_link event type.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:L" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-29T06:15:17Z" diff --git a/advisories/unreviewed/2024/04/GHSA-4w93-8r29-p2r9/GHSA-4w93-8r29-p2r9.json b/advisories/unreviewed/2024/04/GHSA-4w93-8r29-p2r9/GHSA-4w93-8r29-p2r9.json index 80e4e5780bf..95cc271dd70 100644 --- a/advisories/unreviewed/2024/04/GHSA-4w93-8r29-p2r9/GHSA-4w93-8r29-p2r9.json +++ b/advisories/unreviewed/2024/04/GHSA-4w93-8r29-p2r9/GHSA-4w93-8r29-p2r9.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-4w93-8r29-p2r9", - "modified": "2024-04-26T21:31:11Z", + "modified": "2024-07-03T18:37:07Z", "published": "2024-04-26T21:31:11Z", "aliases": [ "CVE-2023-26603" ], "details": "JumpCloud Agent before 1.178.0 Creates a Temporary File in a Directory with Insecure Permissions. This allows privilege escalation to SYSTEM via a repair action in the installer.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-378" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-26T20:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-4xc7-r2gw-w5cr/GHSA-4xc7-r2gw-w5cr.json b/advisories/unreviewed/2024/04/GHSA-4xc7-r2gw-w5cr/GHSA-4xc7-r2gw-w5cr.json index acd9585df47..1bc6ad3e796 100644 --- a/advisories/unreviewed/2024/04/GHSA-4xc7-r2gw-w5cr/GHSA-4xc7-r2gw-w5cr.json +++ b/advisories/unreviewed/2024/04/GHSA-4xc7-r2gw-w5cr/GHSA-4xc7-r2gw-w5cr.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-4xc7-r2gw-w5cr", - "modified": "2024-04-22T15:30:42Z", + "modified": "2024-07-03T18:36:29Z", "published": "2024-04-22T15:30:42Z", "aliases": [ "CVE-2023-38301" ], "details": "An issue was discovered in a third-party component related to vendor.gsm.serial, shipped on devices from multiple device manufacturers. Various software builds for the BLU View 2, Boost Mobile Celero 5G, Sharp Rouvo V, Motorola Moto G Pure, Motorola Moto G Power, T-Mobile Revvl 6 Pro 5G, and T-Mobile Revvl V+ 5G devices leak the device serial number to a system property that can be accessed by any local app on the device without any permissions or special privileges. Google restricted third-party apps from directly obtaining non-resettable device identifiers in Android 10 and higher, but in these instances they are leaked by a high-privilege process and can be obtained indirectly. The software build fingerprints for each confirmed vulnerable device are as follows: BLU View 2 (BLU/B131DL/B130DL:11/RP1A.200720.011/1672046950:user/release-keys); Boost Mobile Celero 5G (Celero5G/Jupiter/Jupiter:11/RP1A.200720.011/SW_S98119AA1_V067:user/release-keys); Sharp Rouvo V (SHARP/VZW_STTM21VAPP/STTM21VAPP:12/SP1A.210812.016/1KN0_0_530:user/release-keys); Motorola Moto G Pure (motorola/ellis_trac/ellis:11/RRHS31.Q3-46-110-2/74844:user/release-keys, motorola/ellis_trac/ellis:11/RRHS31.Q3-46-110-7/5cde8:user/release-keys, motorola/ellis_trac/ellis:11/RRHS31.Q3-46-110-10/d67faa:user/release-keys, motorola/ellis_trac/ellis:11/RRHS31.Q3-46-110-13/b4a29:user/release-keys, motorola/ellis_trac/ellis:12/S3RH32.20-42-10/1c2540:user/release-keys, motorola/ellis_trac/ellis:12/S3RHS32.20-42-13-2-1/6368dd:user/release-keys, motorola/ellis_a/ellis:11/RRH31.Q3-46-50-2/20fec:user/release-keys, motorola/ellis_vzw/ellis:11/RRH31.Q3-46-138/103bd:user/release-keys, motorola/ellis_vzw/ellis:11/RRHS31.Q3-46-138-2/e5502:user/release-keys, and motorola/ellis_vzw/ellis:12/S3RHS32.20-42-10-14-2/5e0b0:user/release-keys); Motorola Moto G Power (motorola/tonga_g/tonga:11/RRQ31.Q3-68-16-2/e5877:user/release-keys and motorola/tonga_g/tonga:12/S3RQS32.20-42-10-6/f876d3:user/release-keys); T-Mobile Revvl 6 Pro 5G (T-Mobile/Augusta/Augusta:12/SP1A.210812.016/SW_S98121AA1_V070:user/release-keys); and T-Mobile Revvl V+ 5G (T-Mobile/Sprout/Sprout:11/RP1A.200720.011/SW_S98115AA1_V077:user/release-keys). This malicious app reads from the \"vendor.gsm.serial\" system property to indirectly obtain the device serial number.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-200" ], - "severity": null, + "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T15:15:47Z" diff --git a/advisories/unreviewed/2024/04/GHSA-5626-x6h5-mpm4/GHSA-5626-x6h5-mpm4.json b/advisories/unreviewed/2024/04/GHSA-5626-x6h5-mpm4/GHSA-5626-x6h5-mpm4.json index 3476d2d2d95..fbd2c092238 100644 --- a/advisories/unreviewed/2024/04/GHSA-5626-x6h5-mpm4/GHSA-5626-x6h5-mpm4.json +++ b/advisories/unreviewed/2024/04/GHSA-5626-x6h5-mpm4/GHSA-5626-x6h5-mpm4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-5626-x6h5-mpm4", - "modified": "2024-04-30T18:30:33Z", + "modified": "2024-07-03T18:37:46Z", "published": "2024-04-30T18:30:33Z", "aliases": [ "CVE-2024-33831" ], "details": "A stored cross-site scripting (XSS) vulnerability in the Advanced Expectation - Response module of yapi v1.10.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the body field.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:N/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-80" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-30T18:15:19Z" diff --git a/advisories/unreviewed/2024/04/GHSA-56mr-w85w-rrqp/GHSA-56mr-w85w-rrqp.json b/advisories/unreviewed/2024/04/GHSA-56mr-w85w-rrqp/GHSA-56mr-w85w-rrqp.json index 457a88e7499..ae20002f8fc 100644 --- a/advisories/unreviewed/2024/04/GHSA-56mr-w85w-rrqp/GHSA-56mr-w85w-rrqp.json +++ b/advisories/unreviewed/2024/04/GHSA-56mr-w85w-rrqp/GHSA-56mr-w85w-rrqp.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-56mr-w85w-rrqp", - "modified": "2024-04-26T15:30:34Z", + "modified": "2024-07-03T18:37:04Z", "published": "2024-04-26T15:30:34Z", "aliases": [ "CVE-2024-33260" ], "details": "Jerryscript commit cefd391 was discovered to contain a segmentation violation via the component parser_parse_class at jerry-core/parser/js/js-parser-expr.c", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-284" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-26T15:15:49Z" diff --git a/advisories/unreviewed/2024/04/GHSA-59xw-4jqj-crwp/GHSA-59xw-4jqj-crwp.json b/advisories/unreviewed/2024/04/GHSA-59xw-4jqj-crwp/GHSA-59xw-4jqj-crwp.json index 5a185086cba..5b2949a4d8e 100644 --- a/advisories/unreviewed/2024/04/GHSA-59xw-4jqj-crwp/GHSA-59xw-4jqj-crwp.json +++ b/advisories/unreviewed/2024/04/GHSA-59xw-4jqj-crwp/GHSA-59xw-4jqj-crwp.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-59xw-4jqj-crwp", - "modified": "2024-04-22T15:30:41Z", + "modified": "2024-07-03T18:36:25Z", "published": "2024-04-22T15:30:41Z", "aliases": [ "CVE-2023-38292" ], "details": "Certain software builds for the TCL 20XE Android device contain a vulnerable, pre-installed app with a package name of com.tct.gcs.hiddenmenuproxy (versionCode='2', versionName='v11.0.1.0.0201.0') that allows local third-party apps to programmatically perform a factory reset due to inadequate access control. No permissions or special privileges are necessary to exploit the vulnerability in the com.tct.gcs.hiddenmenuproxy app. No user interaction is required beyond installing and running a third-party app. The software build fingerprints for each confirmed vulnerable build are as follows: TCL/5087Z_BO/Doha_TMO:11/RP1A.200720.011/PB7I-0:user/release-keys and TCL/5087Z_BO/Doha_TMO:11/RP1A.200720.011/PB83-0:user/release-keys. This malicious app sends a broadcast intent to the exported com.tct.gcs.hiddenmenuproxy/.rtn.FactoryResetReceiver receiver component, which initiates a programmatic factory reset.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:N/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-269" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T15:15:46Z" diff --git a/advisories/unreviewed/2024/04/GHSA-5g69-hr8r-x577/GHSA-5g69-hr8r-x577.json b/advisories/unreviewed/2024/04/GHSA-5g69-hr8r-x577/GHSA-5g69-hr8r-x577.json index 3d37758be3e..991868c602e 100644 --- a/advisories/unreviewed/2024/04/GHSA-5g69-hr8r-x577/GHSA-5g69-hr8r-x577.json +++ b/advisories/unreviewed/2024/04/GHSA-5g69-hr8r-x577/GHSA-5g69-hr8r-x577.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-5g69-hr8r-x577", - "modified": "2024-04-26T03:30:29Z", + "modified": "2024-07-03T18:36:54Z", "published": "2024-04-26T03:30:29Z", "aliases": [ "CVE-2024-31755" ], "details": "cJSON v1.7.17 was discovered to contain a segmentation violation, which can trigger through the second parameter of function cJSON_SetValuestring at cJSON.c.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-26T03:15:06Z" diff --git a/advisories/unreviewed/2024/04/GHSA-5h5w-q6q9-mgq7/GHSA-5h5w-q6q9-mgq7.json b/advisories/unreviewed/2024/04/GHSA-5h5w-q6q9-mgq7/GHSA-5h5w-q6q9-mgq7.json index 6c393622aca..b86fe6302f4 100644 --- a/advisories/unreviewed/2024/04/GHSA-5h5w-q6q9-mgq7/GHSA-5h5w-q6q9-mgq7.json +++ b/advisories/unreviewed/2024/04/GHSA-5h5w-q6q9-mgq7/GHSA-5h5w-q6q9-mgq7.json @@ -29,7 +29,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-300" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2024/04/GHSA-5j47-gwc2-fhfc/GHSA-5j47-gwc2-fhfc.json b/advisories/unreviewed/2024/04/GHSA-5j47-gwc2-fhfc/GHSA-5j47-gwc2-fhfc.json index df60cda6afb..ecf0a7f3217 100644 --- a/advisories/unreviewed/2024/04/GHSA-5j47-gwc2-fhfc/GHSA-5j47-gwc2-fhfc.json +++ b/advisories/unreviewed/2024/04/GHSA-5j47-gwc2-fhfc/GHSA-5j47-gwc2-fhfc.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-5j47-gwc2-fhfc", - "modified": "2024-04-26T06:30:35Z", + "modified": "2024-07-03T18:36:58Z", "published": "2024-04-26T06:30:35Z", "aliases": [ "CVE-2024-2603" ], "details": "The Salon booking system WordPress plugin through 9.6.5 does not sanitise and escape some of its settings, which could allow high privilege users such as admin (or editor depending on Salon booking system WordPress plugin through 9.6.5 configuration) to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-26T05:15:50Z" diff --git a/advisories/unreviewed/2024/04/GHSA-5q9m-f76w-7rm3/GHSA-5q9m-f76w-7rm3.json b/advisories/unreviewed/2024/04/GHSA-5q9m-f76w-7rm3/GHSA-5q9m-f76w-7rm3.json index df327e533ff..ea2b7a73a8b 100644 --- a/advisories/unreviewed/2024/04/GHSA-5q9m-f76w-7rm3/GHSA-5q9m-f76w-7rm3.json +++ b/advisories/unreviewed/2024/04/GHSA-5q9m-f76w-7rm3/GHSA-5q9m-f76w-7rm3.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-5q9m-f76w-7rm3", - "modified": "2024-04-23T06:30:47Z", + "modified": "2024-07-03T18:36:35Z", "published": "2024-04-23T06:30:47Z", "aliases": [ "CVE-2024-28890" ], "details": "Forminator prior to 1.29.0 contains an unrestricted upload of file with dangerous type vulnerability. If this vulnerability is exploited, a remote attacker may obtain sensitive information by accessing files on the server, alter the site that uses the plugin, and cause a denial-of-service (DoS) condition. ", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -35,7 +38,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-23T05:15:49Z" diff --git a/advisories/unreviewed/2024/04/GHSA-62h5-px63-5pr8/GHSA-62h5-px63-5pr8.json b/advisories/unreviewed/2024/04/GHSA-62h5-px63-5pr8/GHSA-62h5-px63-5pr8.json index 14f5ccbbc0c..7aa3c0976f0 100644 --- a/advisories/unreviewed/2024/04/GHSA-62h5-px63-5pr8/GHSA-62h5-px63-5pr8.json +++ b/advisories/unreviewed/2024/04/GHSA-62h5-px63-5pr8/GHSA-62h5-px63-5pr8.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-62h5-px63-5pr8", - "modified": "2024-04-30T15:30:37Z", + "modified": "2024-07-03T18:37:40Z", "published": "2024-04-30T15:30:37Z", "aliases": [ "CVE-2024-23774" ], "details": "An issue was discovered in Quest KACE Agent for Windows 12.0.38 and 13.1.23.0. An unquoted Windows search path vulnerability exists in the KSchedulerSvc.exe and AMPTools.exe components. This allows local attackers to execute code of their choice with NT Authority\\SYSTEM privileges.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-22" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-30T14:15:15Z" diff --git a/advisories/unreviewed/2024/04/GHSA-66c8-9r5r-35hf/GHSA-66c8-9r5r-35hf.json b/advisories/unreviewed/2024/04/GHSA-66c8-9r5r-35hf/GHSA-66c8-9r5r-35hf.json index 0a1b0c7a216..f14ec200a67 100644 --- a/advisories/unreviewed/2024/04/GHSA-66c8-9r5r-35hf/GHSA-66c8-9r5r-35hf.json +++ b/advisories/unreviewed/2024/04/GHSA-66c8-9r5r-35hf/GHSA-66c8-9r5r-35hf.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-66c8-9r5r-35hf", - "modified": "2024-04-22T21:31:00Z", + "modified": "2024-07-03T18:36:31Z", "published": "2024-04-22T21:31:00Z", "aliases": [ "CVE-2024-32407" ], "details": "An issue in inducer relate before v.2024.1 allows a remote attacker to execute arbitrary code via a crafted payload to the Page Sandbox feature.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-1336" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T19:15:46Z" diff --git a/advisories/unreviewed/2024/04/GHSA-67p7-4mxg-fqf4/GHSA-67p7-4mxg-fqf4.json b/advisories/unreviewed/2024/04/GHSA-67p7-4mxg-fqf4/GHSA-67p7-4mxg-fqf4.json index 869045163ef..c8706896dd8 100644 --- a/advisories/unreviewed/2024/04/GHSA-67p7-4mxg-fqf4/GHSA-67p7-4mxg-fqf4.json +++ b/advisories/unreviewed/2024/04/GHSA-67p7-4mxg-fqf4/GHSA-67p7-4mxg-fqf4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-67p7-4mxg-fqf4", - "modified": "2024-04-30T15:30:37Z", + "modified": "2024-07-03T18:37:39Z", "published": "2024-04-30T15:30:37Z", "aliases": [ "CVE-2024-23773" ], "details": "An issue was discovered in Quest KACE Agent for Windows 12.0.38 and 13.1.23.0. An Arbitrary file delete vulnerability exists in the KSchedulerSvc.exe component. Local attackers can delete any file of their choice with NT Authority\\SYSTEM privileges.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-22" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-30T14:15:15Z" diff --git a/advisories/unreviewed/2024/04/GHSA-6898-v28p-jxgp/GHSA-6898-v28p-jxgp.json b/advisories/unreviewed/2024/04/GHSA-6898-v28p-jxgp/GHSA-6898-v28p-jxgp.json index 8351cac8369..2c86f02b366 100644 --- a/advisories/unreviewed/2024/04/GHSA-6898-v28p-jxgp/GHSA-6898-v28p-jxgp.json +++ b/advisories/unreviewed/2024/04/GHSA-6898-v28p-jxgp/GHSA-6898-v28p-jxgp.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-6898-v28p-jxgp", - "modified": "2024-04-29T21:30:34Z", + "modified": "2024-07-03T18:37:29Z", "published": "2024-04-29T21:30:34Z", "aliases": [ "CVE-2023-51710" ], "details": "EMS SQL Manager 3.6.2 (build 55333) for Oracle allows DLL hijacking: a user can trigger the execution of arbitrary code every time the product is executed.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-427" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-29T19:15:19Z" diff --git a/advisories/unreviewed/2024/04/GHSA-69p7-7fh9-qch9/GHSA-69p7-7fh9-qch9.json b/advisories/unreviewed/2024/04/GHSA-69p7-7fh9-qch9/GHSA-69p7-7fh9-qch9.json index ccc33865b17..5555a74449d 100644 --- a/advisories/unreviewed/2024/04/GHSA-69p7-7fh9-qch9/GHSA-69p7-7fh9-qch9.json +++ b/advisories/unreviewed/2024/04/GHSA-69p7-7fh9-qch9/GHSA-69p7-7fh9-qch9.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-69p7-7fh9-qch9", - "modified": "2024-04-22T03:30:29Z", + "modified": "2024-07-03T18:36:16Z", "published": "2024-04-22T03:30:29Z", "aliases": [ "CVE-2024-28722" ], "details": "Cross Site Scripting vulnerability in Innovaphone myPBX v.14r1, v.13r3, v.12r2 allows a remote attacker to execute arbitrary code via the query parameter to the /CMD0/xml_modes.xml endpoint", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T01:15:47Z" diff --git a/advisories/unreviewed/2024/04/GHSA-6cm9-r25c-5778/GHSA-6cm9-r25c-5778.json b/advisories/unreviewed/2024/04/GHSA-6cm9-r25c-5778/GHSA-6cm9-r25c-5778.json index 5a8e41af3ef..668d12ffb50 100644 --- a/advisories/unreviewed/2024/04/GHSA-6cm9-r25c-5778/GHSA-6cm9-r25c-5778.json +++ b/advisories/unreviewed/2024/04/GHSA-6cm9-r25c-5778/GHSA-6cm9-r25c-5778.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-6cm9-r25c-5778", - "modified": "2024-04-26T00:30:35Z", + "modified": "2024-07-03T18:36:52Z", "published": "2024-04-26T00:30:35Z", "aliases": [ "CVE-2024-33661" ], "details": "Portainer before 2.20.0 allows redirects when the target is not index.yaml.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-601" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-26T00:15:08Z" diff --git a/advisories/unreviewed/2024/04/GHSA-6cr3-4wcf-vf7q/GHSA-6cr3-4wcf-vf7q.json b/advisories/unreviewed/2024/04/GHSA-6cr3-4wcf-vf7q/GHSA-6cr3-4wcf-vf7q.json index cb2c77791ff..e561e752404 100644 --- a/advisories/unreviewed/2024/04/GHSA-6cr3-4wcf-vf7q/GHSA-6cr3-4wcf-vf7q.json +++ b/advisories/unreviewed/2024/04/GHSA-6cr3-4wcf-vf7q/GHSA-6cr3-4wcf-vf7q.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-6cr3-4wcf-vf7q", - "modified": "2024-04-22T15:30:42Z", + "modified": "2024-07-03T18:36:28Z", "published": "2024-04-22T15:30:42Z", "aliases": [ "CVE-2023-38297" ], "details": "An issue was discovered in a third-party com.factory.mmigroup component, shipped on devices from multiple device manufacturers. Certain software builds for various Android devices contain a vulnerable pre-installed app with a package name of com.factory.mmigroup (versionCode='3', versionName='2.1) that allows local third-party apps to perform various actions, due to inadequate access control, in its context (system user), but the functionalities exposed depend on the specific device. The following capabilities are exposed to zero-permission, third-party apps on the following devices: arbitrary AT command execution via AT command injection (T-Mobile Revvl 6 Pro 5G, T-Mobile Revvl V+ 5G, and Boost Mobile Celero 5G); programmatic factory reset (Samsung Galaxy A03S, T-Mobile Revvl 6 Pro 5G, T-Mobile Revvl V+ 5G, Boost Mobile Celero, Realme C25Y, and Lenovo Tab M8 HD), leaking IMEI (Samsung Galaxy A03S, T-Mobile Revvl 6 Pro 5G, T-Mobile Revvl V+ 5G, Boost Mobile Celero, and Realme C25Y); leaking serial number (Samsung Galaxy A03s, T-Mobile Revvl 6 Pro 5G, T-Mobile Revvl V+ 5G, Boost Mobile Celero, Realme C25Y, and Lenovo Tab M8 HD); powering off the device (Realme C25Y, Samsung Galaxy A03S, and T-Mobile Revvl 6 Pro 5G); and programmatically enabling/disabling airplane mode (Samsung Galaxy A03S, T-Mobile Revvl 6 Pro 5G, T-Mobile Revvl V+ 5G, Boost Mobile Celero, and Realme C25Y); and enabling Wi-Fi, Bluetooth, and GPS (Samsung Galaxy A03S, T-Mobile Revvl 6 Pro 5G, T-Mobile Revvl V+ 5G, Boost Mobile Celero, and Realme C25Y). No permissions or special privileges are necessary to exploit the vulnerabilities in the com.factory.mmigroup app. No user interaction is required beyond installing and running a third-party app. The software build fingerprints for each confirmed vulnerable device are as follows: Boost Mobile Celero 5G (Celero5G/Jupiter/Jupiter:11/RP1A.200720.011/SW_S98119AA1_V067:user/release-keys, Celero5G/Jupiter/Jupiter:11/RP1A.200720.011/SW_S98119AA1_V064:user/release-keys, Celero5G/Jupiter/Jupiter:11/RP1A.200720.011/SW_S98119AA1_V061:user/release-keys, and Celero5G/Jupiter/Jupiter:11/RP1A.200720.011/SW_S98119AA1_V052:user/release-keys); Samsung Galaxy A03S (samsung/a03sutfn/a03su:13/TP1A.220624.014/S134DLUDU6CWB6:user/release-keys and samsung/a03sutfn/a03su:12/SP1A.210812.016/S134DLUDS5BWA1:user/release-keys); Lenovo Tab M8 HD (Lenovo/LenovoTB-8505F/8505F:10/QP1A.190711.020/S300637_220706_BMP:user/release-keys and Lenovo/LenovoTB-8505F/8505F:10/QP1A.190711.020/S300448_220114_BMP:user/release-keys); T-Mobile Revvl 6 Pro 5G (T-Mobile/Augusta/Augusta:12/SP1A.210812.016/SW_S98121AA1_V070:user/release-keys and T-Mobile/Augusta/Augusta:12/SP1A.210812.016/SW_S98121AA1_V066:user/release-keys); T-Mobile Revvl V+ 5G (T-Mobile/Sprout/Sprout:11/RP1A.200720.011/SW_S98115AA1_V077:user/release-keys and T-Mobile/Sprout/Sprout:11/RP1A.200720.011/SW_S98115AA1_V060:user/release-keys); and Realme C25Y (realme/RMX3269/RED8F6:11/RP1A.201005.001/1675861640000:user/release-keys, realme/RMX3269/RED8F6:11/RP1A.201005.001/1664031768000:user/release-keys, realme/RMX3269/RED8F6:11/RP1A.201005.001/1652814687000:user/release-keys, and realme/RMX3269/RED8F6:11/RP1A.201005.001/1635785712000:user/release-keys). This malicious app sends a broadcast Intent to com.factory.mmigroup/.MMIGroupReceiver. This causes the com.factory.mmigroup app to dynamically register for various action strings. The malicious app can then send these strings, allowing it to perform various behaviors that the com.factory.mmigroup app exposes. The actual behaviors exposed by the com.factory.mmigroup app depend on device model and chipset. The com.factory.mmigroup app executes as the \"system\" user, allowing it to interact with the baseband processor and perform various other sensitive actions.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-284" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T15:15:47Z" diff --git a/advisories/unreviewed/2024/04/GHSA-6cw8-3wqq-r7p8/GHSA-6cw8-3wqq-r7p8.json b/advisories/unreviewed/2024/04/GHSA-6cw8-3wqq-r7p8/GHSA-6cw8-3wqq-r7p8.json index a007542150f..11088126add 100644 --- a/advisories/unreviewed/2024/04/GHSA-6cw8-3wqq-r7p8/GHSA-6cw8-3wqq-r7p8.json +++ b/advisories/unreviewed/2024/04/GHSA-6cw8-3wqq-r7p8/GHSA-6cw8-3wqq-r7p8.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-6cw8-3wqq-r7p8", - "modified": "2024-04-22T15:30:41Z", + "modified": "2024-07-03T18:36:23Z", "published": "2024-04-22T15:30:41Z", "aliases": [ "CVE-2024-32368" ], "details": "Insecure Permission vulnerability in Agasta Sanketlife 2.0 Pocket 12-Lead ECG Monitor FW Version 3.0 allows a local attacker to cause a denial of service via the Bluetooth Low Energy (BLE) component.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-276" ], - "severity": null, + "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T14:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-6cxj-fx46-x5rx/GHSA-6cxj-fx46-x5rx.json b/advisories/unreviewed/2024/04/GHSA-6cxj-fx46-x5rx/GHSA-6cxj-fx46-x5rx.json index d5a818234d8..5eab6eea4c4 100644 --- a/advisories/unreviewed/2024/04/GHSA-6cxj-fx46-x5rx/GHSA-6cxj-fx46-x5rx.json +++ b/advisories/unreviewed/2024/04/GHSA-6cxj-fx46-x5rx/GHSA-6cxj-fx46-x5rx.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-6cxj-fx46-x5rx", - "modified": "2024-04-22T06:30:30Z", + "modified": "2024-07-03T18:36:19Z", "published": "2024-04-22T06:30:29Z", "aliases": [ "CVE-2023-7252" ], "details": "The Tickera WordPress plugin before 3.5.2.5 does not prevent users from leaking other users' tickets.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:N" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T05:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-6fcx-56j8-8rrw/GHSA-6fcx-56j8-8rrw.json b/advisories/unreviewed/2024/04/GHSA-6fcx-56j8-8rrw/GHSA-6fcx-56j8-8rrw.json index 6e48df6d77f..b736fe1766d 100644 --- a/advisories/unreviewed/2024/04/GHSA-6fcx-56j8-8rrw/GHSA-6fcx-56j8-8rrw.json +++ b/advisories/unreviewed/2024/04/GHSA-6fcx-56j8-8rrw/GHSA-6fcx-56j8-8rrw.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-6fcx-56j8-8rrw", - "modified": "2024-04-26T06:30:35Z", + "modified": "2024-07-03T18:36:58Z", "published": "2024-04-26T06:30:35Z", "aliases": [ "CVE-2024-2310" ], "details": "The WP Google Review Slider WordPress plugin before 13.6 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-26T05:15:50Z" diff --git a/advisories/unreviewed/2024/04/GHSA-6h85-5gxw-42h9/GHSA-6h85-5gxw-42h9.json b/advisories/unreviewed/2024/04/GHSA-6h85-5gxw-42h9/GHSA-6h85-5gxw-42h9.json index be721f7be83..294424e12e3 100644 --- a/advisories/unreviewed/2024/04/GHSA-6h85-5gxw-42h9/GHSA-6h85-5gxw-42h9.json +++ b/advisories/unreviewed/2024/04/GHSA-6h85-5gxw-42h9/GHSA-6h85-5gxw-42h9.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-6h85-5gxw-42h9", - "modified": "2024-04-23T15:30:34Z", + "modified": "2024-07-03T18:36:39Z", "published": "2024-04-23T15:30:34Z", "aliases": [ "CVE-2024-31804" ], "details": "An unquoted service path vulnerability in Terratec DMX_6Fire USB v.1.23.0.02 allows a local attacker to escalate privileges via the Program.exe component.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:N" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-428" ], - "severity": null, + "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-23T15:15:49Z" diff --git a/advisories/unreviewed/2024/04/GHSA-6hqv-2jjv-pjcr/GHSA-6hqv-2jjv-pjcr.json b/advisories/unreviewed/2024/04/GHSA-6hqv-2jjv-pjcr/GHSA-6hqv-2jjv-pjcr.json index e663a5cc8b5..cc1378f6883 100644 --- a/advisories/unreviewed/2024/04/GHSA-6hqv-2jjv-pjcr/GHSA-6hqv-2jjv-pjcr.json +++ b/advisories/unreviewed/2024/04/GHSA-6hqv-2jjv-pjcr/GHSA-6hqv-2jjv-pjcr.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-6hqv-2jjv-pjcr", - "modified": "2024-04-26T21:31:11Z", + "modified": "2024-07-03T18:37:06Z", "published": "2024-04-26T21:31:11Z", "aliases": [ "CVE-2024-28325" ], "details": "Asus RT-N12+ B1 router stores credentials in cleartext, which could allow local attackers to obtain unauthorized access and modify router settings.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:H/A:L" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-256" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-26T19:15:47Z" diff --git a/advisories/unreviewed/2024/04/GHSA-6jqm-q264-hgq7/GHSA-6jqm-q264-hgq7.json b/advisories/unreviewed/2024/04/GHSA-6jqm-q264-hgq7/GHSA-6jqm-q264-hgq7.json index 101540642df..19facd3f29f 100644 --- a/advisories/unreviewed/2024/04/GHSA-6jqm-q264-hgq7/GHSA-6jqm-q264-hgq7.json +++ b/advisories/unreviewed/2024/04/GHSA-6jqm-q264-hgq7/GHSA-6jqm-q264-hgq7.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-6jqm-q264-hgq7", - "modified": "2024-04-25T09:32:09Z", + "modified": "2024-07-03T18:36:47Z", "published": "2024-04-25T09:32:09Z", "aliases": [ "CVE-2024-3893" @@ -32,7 +32,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-862" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/04/GHSA-6mcj-pq5p-g68f/GHSA-6mcj-pq5p-g68f.json b/advisories/unreviewed/2024/04/GHSA-6mcj-pq5p-g68f/GHSA-6mcj-pq5p-g68f.json index 67977820a6c..979c8f7229e 100644 --- a/advisories/unreviewed/2024/04/GHSA-6mcj-pq5p-g68f/GHSA-6mcj-pq5p-g68f.json +++ b/advisories/unreviewed/2024/04/GHSA-6mcj-pq5p-g68f/GHSA-6mcj-pq5p-g68f.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-6mcj-pq5p-g68f", - "modified": "2024-04-26T21:31:11Z", + "modified": "2024-07-03T18:37:08Z", "published": "2024-04-26T21:31:11Z", "aliases": [ "CVE-2024-31502" ], "details": "An issue in Insurance Management System v.1.0.0 and before allows a remote attacker to escalate privileges via a crafted POST request to /admin/core/new_staff.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-269" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-26T21:15:49Z" diff --git a/advisories/unreviewed/2024/04/GHSA-6qhv-x9gf-6f6p/GHSA-6qhv-x9gf-6f6p.json b/advisories/unreviewed/2024/04/GHSA-6qhv-x9gf-6f6p/GHSA-6qhv-x9gf-6f6p.json index 53d26e1df63..4d06eb92cfe 100644 --- a/advisories/unreviewed/2024/04/GHSA-6qhv-x9gf-6f6p/GHSA-6qhv-x9gf-6f6p.json +++ b/advisories/unreviewed/2024/04/GHSA-6qhv-x9gf-6f6p/GHSA-6qhv-x9gf-6f6p.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-6qhv-x9gf-6f6p", - "modified": "2024-04-26T06:30:35Z", + "modified": "2024-07-03T18:37:00Z", "published": "2024-04-26T06:30:35Z", "aliases": [ "CVE-2024-3059" ], "details": "The ENL Newsletter WordPress plugin through 1.0.1 does not have CSRF checks in some places, which could allow attackers to make logged in admins delete arbitrary Campaigns via a CSRF attack", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:N" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-26T05:15:50Z" diff --git a/advisories/unreviewed/2024/04/GHSA-6vh7-f36j-r556/GHSA-6vh7-f36j-r556.json b/advisories/unreviewed/2024/04/GHSA-6vh7-f36j-r556/GHSA-6vh7-f36j-r556.json index 7584adb2712..8a8aca9915d 100644 --- a/advisories/unreviewed/2024/04/GHSA-6vh7-f36j-r556/GHSA-6vh7-f36j-r556.json +++ b/advisories/unreviewed/2024/04/GHSA-6vh7-f36j-r556/GHSA-6vh7-f36j-r556.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-6vh7-f36j-r556", - "modified": "2024-06-26T00:31:38Z", + "modified": "2024-07-03T18:36:47Z", "published": "2024-04-25T06:30:35Z", "aliases": [ "CVE-2024-26924" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: nft_set_pipapo: do not free live element\n\nPablo reports a crash with large batches of elements with a\nback-to-back add/remove pattern. Quoting Pablo:\n\n add_elem(\"00000000\") timeout 100 ms\n ...\n add_elem(\"0000000X\") timeout 100 ms\n del_elem(\"0000000X\") <---------------- delete one that was just added\n ...\n add_elem(\"00005000\") timeout 100 ms\n\n 1) nft_pipapo_remove() removes element 0000000X\n Then, KASAN shows a splat.\n\nLooking at the remove function there is a chance that we will drop a\nrule that maps to a non-deactivated element.\n\nRemoval happens in two steps, first we do a lookup for key k and return the\nto-be-removed element and mark it as inactive in the next generation.\nThen, in a second step, the element gets removed from the set/map.\n\nThe _remove function does not work correctly if we have more than one\nelement that share the same key.\n\nThis can happen if we insert an element into a set when the set already\nholds an element with same key, but the element mapping to the existing\nkey has timed out or is not active in the next generation.\n\nIn such case its possible that removal will unmap the wrong element.\nIf this happens, we will leak the non-deactivated element, it becomes\nunreachable.\n\nThe element that got deactivated (and will be freed later) will\nremain reachable in the set data structure, this can result in\na crash when such an element is retrieved during lookup (stale\npointer).\n\nAdd a check that the fully matching key does in fact map to the element\nthat we have marked as inactive in the deactivation step.\nIf not, we need to continue searching.\n\nAdd a bug/warn trap at the end of the function as well, the remove\nfunction must not ever be called with an invisible/unreachable/non-existent\nelement.\n\nv2: avoid uneeded temporary variable (Stefano)", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -61,9 +64,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-25T06:15:57Z" diff --git a/advisories/unreviewed/2024/04/GHSA-6vqg-9p93-6r8w/GHSA-6vqg-9p93-6r8w.json b/advisories/unreviewed/2024/04/GHSA-6vqg-9p93-6r8w/GHSA-6vqg-9p93-6r8w.json index 726937a0a35..895a57154cd 100644 --- a/advisories/unreviewed/2024/04/GHSA-6vqg-9p93-6r8w/GHSA-6vqg-9p93-6r8w.json +++ b/advisories/unreviewed/2024/04/GHSA-6vqg-9p93-6r8w/GHSA-6vqg-9p93-6r8w.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-6vqg-9p93-6r8w", - "modified": "2024-04-26T18:33:42Z", + "modified": "2024-07-03T18:37:06Z", "published": "2024-04-26T18:33:42Z", "aliases": [ "CVE-2024-33344" ], "details": "D-Link DIR-822+ V1.0.5 was found to contain a command injection in ftext function of upload_firmware.cgi, which allows remote attackers to execute arbitrary commands via shell.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-77" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-26T18:15:46Z" diff --git a/advisories/unreviewed/2024/04/GHSA-724x-6v4h-4p8w/GHSA-724x-6v4h-4p8w.json b/advisories/unreviewed/2024/04/GHSA-724x-6v4h-4p8w/GHSA-724x-6v4h-4p8w.json index 8e60856f511..ebe68f63f36 100644 --- a/advisories/unreviewed/2024/04/GHSA-724x-6v4h-4p8w/GHSA-724x-6v4h-4p8w.json +++ b/advisories/unreviewed/2024/04/GHSA-724x-6v4h-4p8w/GHSA-724x-6v4h-4p8w.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-724x-6v4h-4p8w", - "modified": "2024-04-30T21:30:32Z", + "modified": "2024-07-03T18:37:49Z", "published": "2024-04-30T21:30:32Z", "aliases": [ "CVE-2024-28269" ], "details": "ReCrystallize Server 5.10.0.0 allows administrators to upload files to the server. The file upload is not restricted, leading to the ability to upload of malicious files. This could result in a Remote Code Execution.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-434" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-30T19:15:23Z" diff --git a/advisories/unreviewed/2024/04/GHSA-756q-jvx3-cfqc/GHSA-756q-jvx3-cfqc.json b/advisories/unreviewed/2024/04/GHSA-756q-jvx3-cfqc/GHSA-756q-jvx3-cfqc.json index 8debaccbab7..1bc887ec162 100644 --- a/advisories/unreviewed/2024/04/GHSA-756q-jvx3-cfqc/GHSA-756q-jvx3-cfqc.json +++ b/advisories/unreviewed/2024/04/GHSA-756q-jvx3-cfqc/GHSA-756q-jvx3-cfqc.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-756q-jvx3-cfqc", - "modified": "2024-04-23T15:30:34Z", + "modified": "2024-07-03T18:36:39Z", "published": "2024-04-23T15:30:34Z", "aliases": [ "CVE-2024-3911" diff --git a/advisories/unreviewed/2024/04/GHSA-7855-3hjg-5779/GHSA-7855-3hjg-5779.json b/advisories/unreviewed/2024/04/GHSA-7855-3hjg-5779/GHSA-7855-3hjg-5779.json index 43c559ef305..43a70dc1d05 100644 --- a/advisories/unreviewed/2024/04/GHSA-7855-3hjg-5779/GHSA-7855-3hjg-5779.json +++ b/advisories/unreviewed/2024/04/GHSA-7855-3hjg-5779/GHSA-7855-3hjg-5779.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-7855-3hjg-5779", - "modified": "2024-04-29T06:30:42Z", + "modified": "2024-07-03T18:37:16Z", "published": "2024-04-29T06:30:42Z", "aliases": [ "CVE-2024-2505" ], "details": "The GamiPress WordPress plugin before 6.8.9's access control mechanism fails to properly restrict access to its settings, permitting Authors to manipulate requests and extend access to lower privileged users, like Subscribers, despite initial settings prohibiting such access. This vulnerability resembles broken access control, enabling unauthorized users to modify critical GamiPress WordPress plugin before 6.8.9 configurations.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-29T06:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-78fh-92p7-q975/GHSA-78fh-92p7-q975.json b/advisories/unreviewed/2024/04/GHSA-78fh-92p7-q975/GHSA-78fh-92p7-q975.json index 9973e64faf3..64bf0c28764 100644 --- a/advisories/unreviewed/2024/04/GHSA-78fh-92p7-q975/GHSA-78fh-92p7-q975.json +++ b/advisories/unreviewed/2024/04/GHSA-78fh-92p7-q975/GHSA-78fh-92p7-q975.json @@ -25,7 +25,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-26" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2024/04/GHSA-7fp6-x6hv-xgr4/GHSA-7fp6-x6hv-xgr4.json b/advisories/unreviewed/2024/04/GHSA-7fp6-x6hv-xgr4/GHSA-7fp6-x6hv-xgr4.json index ad2824776af..a20f6d10ecc 100644 --- a/advisories/unreviewed/2024/04/GHSA-7fp6-x6hv-xgr4/GHSA-7fp6-x6hv-xgr4.json +++ b/advisories/unreviewed/2024/04/GHSA-7fp6-x6hv-xgr4/GHSA-7fp6-x6hv-xgr4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-7fp6-x6hv-xgr4", - "modified": "2024-04-19T21:31:08Z", + "modified": "2024-07-03T18:36:15Z", "published": "2024-04-19T21:31:08Z", "aliases": [ "CVE-2024-32391" ], "details": "Cross Site Scripting vulnerability in MacCMS v.10 v.2024.1000.3000 allows a remote attacker to execute arbitrary code via a crafted payload.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-19T21:15:08Z" diff --git a/advisories/unreviewed/2024/04/GHSA-7gxw-gccr-jr29/GHSA-7gxw-gccr-jr29.json b/advisories/unreviewed/2024/04/GHSA-7gxw-gccr-jr29/GHSA-7gxw-gccr-jr29.json index a3cf214c99e..fbf569c4b89 100644 --- a/advisories/unreviewed/2024/04/GHSA-7gxw-gccr-jr29/GHSA-7gxw-gccr-jr29.json +++ b/advisories/unreviewed/2024/04/GHSA-7gxw-gccr-jr29/GHSA-7gxw-gccr-jr29.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-7gxw-gccr-jr29", - "modified": "2024-04-19T21:31:08Z", + "modified": "2024-07-03T18:36:14Z", "published": "2024-04-19T21:31:08Z", "aliases": [ "CVE-2024-30974" ], "details": "SQL Injection vulnerability in autoexpress v.1.3.0 allows attackers to run arbitrary SQL commands via the carId parameter.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:L" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-19T21:15:08Z" diff --git a/advisories/unreviewed/2024/04/GHSA-7h7j-53vp-8pvm/GHSA-7h7j-53vp-8pvm.json b/advisories/unreviewed/2024/04/GHSA-7h7j-53vp-8pvm/GHSA-7h7j-53vp-8pvm.json index 82712a85e79..de168b41d34 100644 --- a/advisories/unreviewed/2024/04/GHSA-7h7j-53vp-8pvm/GHSA-7h7j-53vp-8pvm.json +++ b/advisories/unreviewed/2024/04/GHSA-7h7j-53vp-8pvm/GHSA-7h7j-53vp-8pvm.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-7h7j-53vp-8pvm", - "modified": "2024-04-29T21:30:35Z", + "modified": "2024-07-03T18:37:30Z", "published": "2024-04-29T21:30:35Z", "aliases": [ "CVE-2024-33276" ], "details": "SQL Injection vulnerability in FME Modules preorderandnotication v.3.1.0 and before allows a remote attacker to run arbitrary SQL commands via the PreorderModel::getIdProductAttributesByIdAttributes() method.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-29T20:15:08Z" diff --git a/advisories/unreviewed/2024/04/GHSA-7m59-rfr2-gh4p/GHSA-7m59-rfr2-gh4p.json b/advisories/unreviewed/2024/04/GHSA-7m59-rfr2-gh4p/GHSA-7m59-rfr2-gh4p.json index 073eb8d9b4d..a2d4cc16329 100644 --- a/advisories/unreviewed/2024/04/GHSA-7m59-rfr2-gh4p/GHSA-7m59-rfr2-gh4p.json +++ b/advisories/unreviewed/2024/04/GHSA-7m59-rfr2-gh4p/GHSA-7m59-rfr2-gh4p.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-7m59-rfr2-gh4p", - "modified": "2024-05-21T18:31:14Z", + "modified": "2024-07-03T18:37:14Z", "published": "2024-04-29T00:30:42Z", "aliases": [ "CVE-2024-33899" ], "details": "RARLAB WinRAR before 7.00, on Linux and UNIX platforms, allows attackers to spoof the screen output, or cause a denial of service, via ANSI escape sequences.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-150" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-29T00:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-7qcm-hh75-h23f/GHSA-7qcm-hh75-h23f.json b/advisories/unreviewed/2024/04/GHSA-7qcm-hh75-h23f/GHSA-7qcm-hh75-h23f.json index 8c48b1bd22c..4ebb2fc50a0 100644 --- a/advisories/unreviewed/2024/04/GHSA-7qcm-hh75-h23f/GHSA-7qcm-hh75-h23f.json +++ b/advisories/unreviewed/2024/04/GHSA-7qcm-hh75-h23f/GHSA-7qcm-hh75-h23f.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-7qcm-hh75-h23f", - "modified": "2024-04-22T03:30:29Z", + "modified": "2024-07-03T18:36:18Z", "published": "2024-04-22T03:30:29Z", "aliases": [ "CVE-2024-30799" ], "details": "An issue in PX4 Autopilot v1.14 and before allows a remote attacker to execute arbitrary code and cause a denial of service via the Breach Return Point function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T01:15:47Z" diff --git a/advisories/unreviewed/2024/04/GHSA-7w3j-x6f6-7ff4/GHSA-7w3j-x6f6-7ff4.json b/advisories/unreviewed/2024/04/GHSA-7w3j-x6f6-7ff4/GHSA-7w3j-x6f6-7ff4.json index a8c3d65f85d..2c139227ba6 100644 --- a/advisories/unreviewed/2024/04/GHSA-7w3j-x6f6-7ff4/GHSA-7w3j-x6f6-7ff4.json +++ b/advisories/unreviewed/2024/04/GHSA-7w3j-x6f6-7ff4/GHSA-7w3j-x6f6-7ff4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-7w3j-x6f6-7ff4", - "modified": "2024-04-23T15:30:34Z", + "modified": "2024-07-03T18:36:39Z", "published": "2024-04-23T15:30:34Z", "aliases": [ "CVE-2024-30800" ], "details": "PX4 Autopilot v.1.14 allows an attacker to fly the drone into no-fly zones by breaching the geofence using flaws in the function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -31,7 +34,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-23T13:15:46Z" diff --git a/advisories/unreviewed/2024/04/GHSA-7xg4-c58x-526w/GHSA-7xg4-c58x-526w.json b/advisories/unreviewed/2024/04/GHSA-7xg4-c58x-526w/GHSA-7xg4-c58x-526w.json index 9d28077b3a5..8a733f3d203 100644 --- a/advisories/unreviewed/2024/04/GHSA-7xg4-c58x-526w/GHSA-7xg4-c58x-526w.json +++ b/advisories/unreviewed/2024/04/GHSA-7xg4-c58x-526w/GHSA-7xg4-c58x-526w.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-7xg4-c58x-526w", - "modified": "2024-04-30T18:30:33Z", + "modified": "2024-07-03T18:37:47Z", "published": "2024-04-30T18:30:33Z", "aliases": [ "CVE-2024-33832" ], "details": "OneNav v0.9.35-20240318 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /index.php?c=api&method=get_link_info.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-918" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-30T18:15:20Z" diff --git a/advisories/unreviewed/2024/04/GHSA-88ph-hfrw-chfm/GHSA-88ph-hfrw-chfm.json b/advisories/unreviewed/2024/04/GHSA-88ph-hfrw-chfm/GHSA-88ph-hfrw-chfm.json index 6065fcd01ae..a30b88cbf25 100644 --- a/advisories/unreviewed/2024/04/GHSA-88ph-hfrw-chfm/GHSA-88ph-hfrw-chfm.json +++ b/advisories/unreviewed/2024/04/GHSA-88ph-hfrw-chfm/GHSA-88ph-hfrw-chfm.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-88ph-hfrw-chfm", - "modified": "2024-04-30T00:30:35Z", + "modified": "2024-07-03T18:37:35Z", "published": "2024-04-30T00:30:35Z", "aliases": [ "CVE-2023-52726" ], "details": "Open Networking Foundation SD-RAN ONOS onos-ric-sdk-go 0.8.12 allows infinite repetition of the processing of an error (in the Subscribe function implementation for the subscribed indication stream).", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-835" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-30T00:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-899f-q8cx-3v8r/GHSA-899f-q8cx-3v8r.json b/advisories/unreviewed/2024/04/GHSA-899f-q8cx-3v8r/GHSA-899f-q8cx-3v8r.json index f0001309133..b787199f4b5 100644 --- a/advisories/unreviewed/2024/04/GHSA-899f-q8cx-3v8r/GHSA-899f-q8cx-3v8r.json +++ b/advisories/unreviewed/2024/04/GHSA-899f-q8cx-3v8r/GHSA-899f-q8cx-3v8r.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-899f-q8cx-3v8r", - "modified": "2024-04-24T00:30:33Z", + "modified": "2024-07-03T18:36:44Z", "published": "2024-04-24T00:30:33Z", "aliases": [ "CVE-2024-31616" ], "details": "An issue discovered in RG-RSR10-01G-T(W)-S and RG-RSR10-01G-T(WA)-S routers with firmware version RSR10-01G-T-S_RSR_3.0(1)B9P2, Release(07150910) allows attackers to execute arbitrary code via the common_quick_config.lua file.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-790" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-23T22:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-8g6h-9rm6-pvg4/GHSA-8g6h-9rm6-pvg4.json b/advisories/unreviewed/2024/04/GHSA-8g6h-9rm6-pvg4/GHSA-8g6h-9rm6-pvg4.json index f21446f1123..c095b5ccc72 100644 --- a/advisories/unreviewed/2024/04/GHSA-8g6h-9rm6-pvg4/GHSA-8g6h-9rm6-pvg4.json +++ b/advisories/unreviewed/2024/04/GHSA-8g6h-9rm6-pvg4/GHSA-8g6h-9rm6-pvg4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-8g6h-9rm6-pvg4", - "modified": "2024-04-22T21:31:03Z", + "modified": "2024-07-03T18:36:35Z", "published": "2024-04-22T21:31:03Z", "aliases": [ "CVE-2024-32394" ], "details": "An issue in ruijie.com/cn RG-RSR10-01G-T(WA)-S RSR_3.0(1)B9P2_RSR10-01G-TW-S_07150910 and RG-RSR10-01G-T(WA)-S RSR_3.0(1)B9P2_RSR10-01G-TW-S_07150910 allows a remote attacker to execute arbitrary code via a crafted HTTP request.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T21:15:49Z" diff --git a/advisories/unreviewed/2024/04/GHSA-8r9r-7v2f-q66f/GHSA-8r9r-7v2f-q66f.json b/advisories/unreviewed/2024/04/GHSA-8r9r-7v2f-q66f/GHSA-8r9r-7v2f-q66f.json index 7024a51e237..ecb31ff7873 100644 --- a/advisories/unreviewed/2024/04/GHSA-8r9r-7v2f-q66f/GHSA-8r9r-7v2f-q66f.json +++ b/advisories/unreviewed/2024/04/GHSA-8r9r-7v2f-q66f/GHSA-8r9r-7v2f-q66f.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-8r9r-7v2f-q66f", - "modified": "2024-04-24T18:30:33Z", + "modified": "2024-07-03T18:36:47Z", "published": "2024-04-24T18:30:33Z", "aliases": [ "CVE-2024-27791" ], "details": "The issue was addressed with improved checks. This issue is fixed in iOS 17.3 and iPadOS 17.3, tvOS 17.3, macOS Ventura 13.6.4, iOS 16.7.5 and iPadOS 16.7.5, macOS Monterey 12.7.3, macOS Sonoma 14.3. An app may be able to corrupt coprocessor memory.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:L/I:H/A:L" + } ], "affected": [ @@ -45,9 +48,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-119" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-24T17:15:47Z" diff --git a/advisories/unreviewed/2024/04/GHSA-8rv2-8c5x-g54v/GHSA-8rv2-8c5x-g54v.json b/advisories/unreviewed/2024/04/GHSA-8rv2-8c5x-g54v/GHSA-8rv2-8c5x-g54v.json index 0aec437ecc3..161b3165d70 100644 --- a/advisories/unreviewed/2024/04/GHSA-8rv2-8c5x-g54v/GHSA-8rv2-8c5x-g54v.json +++ b/advisories/unreviewed/2024/04/GHSA-8rv2-8c5x-g54v/GHSA-8rv2-8c5x-g54v.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-358" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/04/GHSA-954c-ggpp-6356/GHSA-954c-ggpp-6356.json b/advisories/unreviewed/2024/04/GHSA-954c-ggpp-6356/GHSA-954c-ggpp-6356.json index 38533c8d34e..0eaec9e399d 100644 --- a/advisories/unreviewed/2024/04/GHSA-954c-ggpp-6356/GHSA-954c-ggpp-6356.json +++ b/advisories/unreviewed/2024/04/GHSA-954c-ggpp-6356/GHSA-954c-ggpp-6356.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-954c-ggpp-6356", - "modified": "2024-04-29T18:30:46Z", + "modified": "2024-07-03T18:37:19Z", "published": "2024-04-29T18:30:45Z", "aliases": [ "CVE-2024-33444" ], "details": "SQL injection vulnerability in onethink v.1.1 allows a remote attacker to escalate privileges via a crafted script to the ModelModel.class.php component.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-29T17:15:19Z" diff --git a/advisories/unreviewed/2024/04/GHSA-9cwc-p4v5-qm42/GHSA-9cwc-p4v5-qm42.json b/advisories/unreviewed/2024/04/GHSA-9cwc-p4v5-qm42/GHSA-9cwc-p4v5-qm42.json index 09ef80e6bc5..cae3e722bcd 100644 --- a/advisories/unreviewed/2024/04/GHSA-9cwc-p4v5-qm42/GHSA-9cwc-p4v5-qm42.json +++ b/advisories/unreviewed/2024/04/GHSA-9cwc-p4v5-qm42/GHSA-9cwc-p4v5-qm42.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-9cwc-p4v5-qm42", - "modified": "2024-04-29T21:30:35Z", + "modified": "2024-07-03T18:37:30Z", "published": "2024-04-29T21:30:35Z", "aliases": [ "CVE-2024-33269" ], "details": "SQL Injection vulnerability in Prestaddons flashsales 1.9.7 and before allows an attacker to run arbitrary SQL commands via the FsModel::getFlashSales method.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-29T20:15:08Z" diff --git a/advisories/unreviewed/2024/04/GHSA-9hpf-c37x-pm6f/GHSA-9hpf-c37x-pm6f.json b/advisories/unreviewed/2024/04/GHSA-9hpf-c37x-pm6f/GHSA-9hpf-c37x-pm6f.json index 6fb6b62eee7..823af05bd07 100644 --- a/advisories/unreviewed/2024/04/GHSA-9hpf-c37x-pm6f/GHSA-9hpf-c37x-pm6f.json +++ b/advisories/unreviewed/2024/04/GHSA-9hpf-c37x-pm6f/GHSA-9hpf-c37x-pm6f.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-9hpf-c37x-pm6f", - "modified": "2024-04-27T00:30:37Z", + "modified": "2024-07-03T18:37:08Z", "published": "2024-04-27T00:30:37Z", "aliases": [ "CVE-2024-28322" ], "details": "SQL Injection vulnerability in /event-management-master/backend/register.php in PuneethReddyHC Event Management 1.0 allows attackers to run arbitrary SQL commands via the event_id parameter in a crafted POST request.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-26T22:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-9r3g-jj9v-44cj/GHSA-9r3g-jj9v-44cj.json b/advisories/unreviewed/2024/04/GHSA-9r3g-jj9v-44cj/GHSA-9r3g-jj9v-44cj.json index 8ec7f131060..3fda05db0bd 100644 --- a/advisories/unreviewed/2024/04/GHSA-9r3g-jj9v-44cj/GHSA-9r3g-jj9v-44cj.json +++ b/advisories/unreviewed/2024/04/GHSA-9r3g-jj9v-44cj/GHSA-9r3g-jj9v-44cj.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-9r3g-jj9v-44cj", - "modified": "2024-04-29T18:30:46Z", + "modified": "2024-07-03T18:37:25Z", "published": "2024-04-29T18:30:46Z", "aliases": [ "CVE-2024-31821" ], "details": "SQL Injection vulnerability in Ecommerce-CodeIgniter-Bootstrap commit v. d22b54e8915f167a135046ceb857caaf8479c4da allows a remote attacker to execute arbitrary code via the manageQuantitiesAndProcurement method of the Orders_model.php component.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-29T18:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-9rpw-2g2r-f62x/GHSA-9rpw-2g2r-f62x.json b/advisories/unreviewed/2024/04/GHSA-9rpw-2g2r-f62x/GHSA-9rpw-2g2r-f62x.json index 702d28e1405..ae218ebec27 100644 --- a/advisories/unreviewed/2024/04/GHSA-9rpw-2g2r-f62x/GHSA-9rpw-2g2r-f62x.json +++ b/advisories/unreviewed/2024/04/GHSA-9rpw-2g2r-f62x/GHSA-9rpw-2g2r-f62x.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-9rpw-2g2r-f62x", - "modified": "2024-04-30T18:30:33Z", + "modified": "2024-07-03T18:37:46Z", "published": "2024-04-30T18:30:33Z", "aliases": [ "CVE-2024-33102" ], "details": "A stored cross-site scripting (XSS) vulnerability in the component /pubs/counter.php of ThinkSAAS v3.7.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the code parameter.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-30T18:15:19Z" diff --git a/advisories/unreviewed/2024/04/GHSA-9w2p-xfp4-ggc4/GHSA-9w2p-xfp4-ggc4.json b/advisories/unreviewed/2024/04/GHSA-9w2p-xfp4-ggc4/GHSA-9w2p-xfp4-ggc4.json index 9d90a63e1b4..911a5f82f7a 100644 --- a/advisories/unreviewed/2024/04/GHSA-9w2p-xfp4-ggc4/GHSA-9w2p-xfp4-ggc4.json +++ b/advisories/unreviewed/2024/04/GHSA-9w2p-xfp4-ggc4/GHSA-9w2p-xfp4-ggc4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-9w2p-xfp4-ggc4", - "modified": "2024-04-29T18:30:46Z", + "modified": "2024-07-03T18:37:23Z", "published": "2024-04-29T18:30:46Z", "aliases": [ "CVE-2024-28320" ], "details": "Insecure Direct Object References (IDOR) vulnerability in Hospital Management System 1.0 allows attackers to manipulate user parameters for unauthorized access and modifications via crafted POST request to /patient/edit-user.php.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:L" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-639" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-29T18:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-c4j4-3j3p-cjc9/GHSA-c4j4-3j3p-cjc9.json b/advisories/unreviewed/2024/04/GHSA-c4j4-3j3p-cjc9/GHSA-c4j4-3j3p-cjc9.json index a96ab68ddec..5f63a4744d4 100644 --- a/advisories/unreviewed/2024/04/GHSA-c4j4-3j3p-cjc9/GHSA-c4j4-3j3p-cjc9.json +++ b/advisories/unreviewed/2024/04/GHSA-c4j4-3j3p-cjc9/GHSA-c4j4-3j3p-cjc9.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-c4j4-3j3p-cjc9", - "modified": "2024-04-22T12:30:33Z", + "modified": "2024-07-03T18:36:23Z", "published": "2024-04-22T12:30:33Z", "aliases": [ "CVE-2024-22856" ], "details": "A SQL injection vulnerability via the Save Favorite Search function in Axefinance Axe Credit Portal >= v.3.0 allows authenticated attackers to execute unintended queries and disclose sensitive information from DB tables via crafted requests.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T12:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-c586-6hq4-j669/GHSA-c586-6hq4-j669.json b/advisories/unreviewed/2024/04/GHSA-c586-6hq4-j669/GHSA-c586-6hq4-j669.json index 5f491f4d094..6d62ad88657 100644 --- a/advisories/unreviewed/2024/04/GHSA-c586-6hq4-j669/GHSA-c586-6hq4-j669.json +++ b/advisories/unreviewed/2024/04/GHSA-c586-6hq4-j669/GHSA-c586-6hq4-j669.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-c586-6hq4-j669", - "modified": "2024-04-30T00:30:35Z", + "modified": "2024-07-03T18:37:35Z", "published": "2024-04-30T00:30:35Z", "aliases": [ "CVE-2024-34045" ], "details": "The O-RAN E2T I-Release Prometheus metric Increment function can crash in sctpThread.cpp for message.peerInfo->counters[IN_INITI][MSG_COUNTER][ProcedureCode_id_E2setup]->Increment().", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-400" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-30T00:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-c75w-9qpm-w8gc/GHSA-c75w-9qpm-w8gc.json b/advisories/unreviewed/2024/04/GHSA-c75w-9qpm-w8gc/GHSA-c75w-9qpm-w8gc.json index b728b9b2186..9df871baa1d 100644 --- a/advisories/unreviewed/2024/04/GHSA-c75w-9qpm-w8gc/GHSA-c75w-9qpm-w8gc.json +++ b/advisories/unreviewed/2024/04/GHSA-c75w-9qpm-w8gc/GHSA-c75w-9qpm-w8gc.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-c75w-9qpm-w8gc", - "modified": "2024-04-29T18:30:45Z", + "modified": "2024-07-03T18:37:19Z", "published": "2024-04-29T18:30:45Z", "aliases": [ "CVE-2024-32492" ], "details": "An issue was discovered in Znuny 7.0.1 through 7.0.16 where the ticket detail view in the customer front allows the execution of external JavaScript.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-94" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-29T17:15:19Z" diff --git a/advisories/unreviewed/2024/04/GHSA-c7hr-m654-77g5/GHSA-c7hr-m654-77g5.json b/advisories/unreviewed/2024/04/GHSA-c7hr-m654-77g5/GHSA-c7hr-m654-77g5.json index 41befe037a4..7c2354b2044 100644 --- a/advisories/unreviewed/2024/04/GHSA-c7hr-m654-77g5/GHSA-c7hr-m654-77g5.json +++ b/advisories/unreviewed/2024/04/GHSA-c7hr-m654-77g5/GHSA-c7hr-m654-77g5.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-c7hr-m654-77g5", - "modified": "2024-06-12T12:30:40Z", + "modified": "2024-07-03T18:36:46Z", "published": "2024-04-24T18:30:33Z", "aliases": [ "CVE-2024-23271" ], "details": "A logic issue was addressed with improved checks. This issue is fixed in iOS 17.3 and iPadOS 17.3, Safari 17.3, tvOS 17.3, macOS Sonoma 14.3, watchOS 10.3. A malicious website may cause unexpected cross-origin behavior.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -61,9 +64,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-284" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-24T17:15:47Z" diff --git a/advisories/unreviewed/2024/04/GHSA-cghm-v6v8-jp7r/GHSA-cghm-v6v8-jp7r.json b/advisories/unreviewed/2024/04/GHSA-cghm-v6v8-jp7r/GHSA-cghm-v6v8-jp7r.json index 998fa0f6dca..ba9f772e218 100644 --- a/advisories/unreviewed/2024/04/GHSA-cghm-v6v8-jp7r/GHSA-cghm-v6v8-jp7r.json +++ b/advisories/unreviewed/2024/04/GHSA-cghm-v6v8-jp7r/GHSA-cghm-v6v8-jp7r.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-cghm-v6v8-jp7r", - "modified": "2024-04-28T15:30:29Z", + "modified": "2024-07-03T18:37:11Z", "published": "2024-04-28T15:30:29Z", "aliases": [ "CVE-2022-48635" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nfsdax: Fix infinite loop in dax_iomap_rw()\n\nI got an infinite loop and a WARNING report when executing a tail command\nin virtiofs.\n\n WARNING: CPU: 10 PID: 964 at fs/iomap/iter.c:34 iomap_iter+0x3a2/0x3d0\n Modules linked in:\n CPU: 10 PID: 964 Comm: tail Not tainted 5.19.0-rc7\n Call Trace:\n \n dax_iomap_rw+0xea/0x620\n ? __this_cpu_preempt_check+0x13/0x20\n fuse_dax_read_iter+0x47/0x80\n fuse_file_read_iter+0xae/0xd0\n new_sync_read+0xfe/0x180\n ? 0xffffffff81000000\n vfs_read+0x14d/0x1a0\n ksys_read+0x6d/0xf0\n __x64_sys_read+0x1a/0x20\n do_syscall_64+0x3b/0x90\n entry_SYSCALL_64_after_hwframe+0x63/0xcd\n\nThe tail command will call read() with a count of 0. In this case,\niomap_iter() will report this WARNING, and always return 1 which casuing\nthe infinite loop in dax_iomap_rw().\n\nFixing by checking count whether is 0 in dax_iomap_rw().", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-835" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-28T13:15:06Z" diff --git a/advisories/unreviewed/2024/04/GHSA-chwc-9rjv-x7mh/GHSA-chwc-9rjv-x7mh.json b/advisories/unreviewed/2024/04/GHSA-chwc-9rjv-x7mh/GHSA-chwc-9rjv-x7mh.json index 2f5770ae3ff..e00707c8d49 100644 --- a/advisories/unreviewed/2024/04/GHSA-chwc-9rjv-x7mh/GHSA-chwc-9rjv-x7mh.json +++ b/advisories/unreviewed/2024/04/GHSA-chwc-9rjv-x7mh/GHSA-chwc-9rjv-x7mh.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-chwc-9rjv-x7mh", - "modified": "2024-04-30T21:30:32Z", + "modified": "2024-07-03T18:37:53Z", "published": "2024-04-30T21:30:32Z", "aliases": [ "CVE-2024-3411" ], "details": "Implementations of IPMI Authenticated sessions does not provide enough randomness to protect from session hijacking, allowing an attacker to use either predictable IPMI Session ID or weak BMC Random Number to bypass security controls using spoofed IPMI packets to manage BMC device.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N" + } ], "affected": [ @@ -35,7 +38,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-30T19:15:23Z" diff --git a/advisories/unreviewed/2024/04/GHSA-cv75-h25f-pjqj/GHSA-cv75-h25f-pjqj.json b/advisories/unreviewed/2024/04/GHSA-cv75-h25f-pjqj/GHSA-cv75-h25f-pjqj.json index 0bff0254869..c8615476a72 100644 --- a/advisories/unreviewed/2024/04/GHSA-cv75-h25f-pjqj/GHSA-cv75-h25f-pjqj.json +++ b/advisories/unreviewed/2024/04/GHSA-cv75-h25f-pjqj/GHSA-cv75-h25f-pjqj.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-703" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/04/GHSA-f79m-6547-466x/GHSA-f79m-6547-466x.json b/advisories/unreviewed/2024/04/GHSA-f79m-6547-466x/GHSA-f79m-6547-466x.json index 7b450511ffc..dd0068e8195 100644 --- a/advisories/unreviewed/2024/04/GHSA-f79m-6547-466x/GHSA-f79m-6547-466x.json +++ b/advisories/unreviewed/2024/04/GHSA-f79m-6547-466x/GHSA-f79m-6547-466x.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-f79m-6547-466x", - "modified": "2024-04-25T18:30:39Z", + "modified": "2024-07-03T18:36:49Z", "published": "2024-04-25T18:30:39Z", "aliases": [ "CVE-2024-32236" ], "details": "An issue in CmsEasy v.7.7 and before allows a remote attacker to obtain sensitive information via the update function in the index.php component.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-922" ], - "severity": null, + "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-25T17:15:49Z" diff --git a/advisories/unreviewed/2024/04/GHSA-f7mm-6f83-q4xx/GHSA-f7mm-6f83-q4xx.json b/advisories/unreviewed/2024/04/GHSA-f7mm-6f83-q4xx/GHSA-f7mm-6f83-q4xx.json index 20869d10f0e..265e885d117 100644 --- a/advisories/unreviewed/2024/04/GHSA-f7mm-6f83-q4xx/GHSA-f7mm-6f83-q4xx.json +++ b/advisories/unreviewed/2024/04/GHSA-f7mm-6f83-q4xx/GHSA-f7mm-6f83-q4xx.json @@ -29,7 +29,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-321" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2024/04/GHSA-fg45-47x2-7rw4/GHSA-fg45-47x2-7rw4.json b/advisories/unreviewed/2024/04/GHSA-fg45-47x2-7rw4/GHSA-fg45-47x2-7rw4.json index c86a5625d74..ff950648c1f 100644 --- a/advisories/unreviewed/2024/04/GHSA-fg45-47x2-7rw4/GHSA-fg45-47x2-7rw4.json +++ b/advisories/unreviewed/2024/04/GHSA-fg45-47x2-7rw4/GHSA-fg45-47x2-7rw4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-fg45-47x2-7rw4", - "modified": "2024-04-29T18:30:45Z", + "modified": "2024-07-03T18:37:18Z", "published": "2024-04-29T18:30:45Z", "aliases": [ "CVE-2024-32491" ], "details": "An issue was discovered in Znuny and Znuny LTS 6.0.31 through 6.5.7 and Znuny 7.0.1 through 7.0.16 where a logged-in user can upload a file (via a manipulated AJAX Request) to an arbitrary writable location by traversing paths. Arbitrary code can be executed if this location is publicly available through the web server.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-94" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-29T17:15:19Z" diff --git a/advisories/unreviewed/2024/04/GHSA-fgv5-wppj-fjxh/GHSA-fgv5-wppj-fjxh.json b/advisories/unreviewed/2024/04/GHSA-fgv5-wppj-fjxh/GHSA-fgv5-wppj-fjxh.json index 908f4d3d9cf..b4b39fbe88e 100644 --- a/advisories/unreviewed/2024/04/GHSA-fgv5-wppj-fjxh/GHSA-fgv5-wppj-fjxh.json +++ b/advisories/unreviewed/2024/04/GHSA-fgv5-wppj-fjxh/GHSA-fgv5-wppj-fjxh.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-fgv5-wppj-fjxh", - "modified": "2024-04-26T18:33:42Z", + "modified": "2024-07-03T18:37:05Z", "published": "2024-04-26T18:33:42Z", "aliases": [ "CVE-2024-33343" ], "details": "D-Link DIR-822+ V1.0.5 was found to contain a command injection in ChgSambaUserSettings function of prog.cgi, which allows remote attackers to execute arbitrary commands via shell.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-78" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-26T18:15:46Z" diff --git a/advisories/unreviewed/2024/04/GHSA-fh99-9gvw-rw3c/GHSA-fh99-9gvw-rw3c.json b/advisories/unreviewed/2024/04/GHSA-fh99-9gvw-rw3c/GHSA-fh99-9gvw-rw3c.json index 1106573d212..2d86bda9dae 100644 --- a/advisories/unreviewed/2024/04/GHSA-fh99-9gvw-rw3c/GHSA-fh99-9gvw-rw3c.json +++ b/advisories/unreviewed/2024/04/GHSA-fh99-9gvw-rw3c/GHSA-fh99-9gvw-rw3c.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-fh99-9gvw-rw3c", - "modified": "2024-04-26T00:30:35Z", + "modified": "2024-07-03T18:36:51Z", "published": "2024-04-26T00:30:35Z", "aliases": [ "CVE-2024-3265" ], "details": "The Advanced Search WordPress plugin through 1.1.6 does not properly escape parameters appended to an SQL query, making it possible for users with the administrator role to conduct SQL Injection attacks in the context of a multisite WordPress configurations.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-25T22:15:09Z" diff --git a/advisories/unreviewed/2024/04/GHSA-fr3m-v7j2-vv6p/GHSA-fr3m-v7j2-vv6p.json b/advisories/unreviewed/2024/04/GHSA-fr3m-v7j2-vv6p/GHSA-fr3m-v7j2-vv6p.json index e2b344161e8..bdaa9aec8a2 100644 --- a/advisories/unreviewed/2024/04/GHSA-fr3m-v7j2-vv6p/GHSA-fr3m-v7j2-vv6p.json +++ b/advisories/unreviewed/2024/04/GHSA-fr3m-v7j2-vv6p/GHSA-fr3m-v7j2-vv6p.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-fr3m-v7j2-vv6p", - "modified": "2024-04-19T18:31:15Z", + "modified": "2024-07-03T18:36:13Z", "published": "2024-04-19T18:31:15Z", "aliases": [ "CVE-2024-31546" ], "details": "Computer Laboratory Management System v1.0 is vulnerable to SQL Injection via the \"id\" parameter of /admin/damage/view_damage.php.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-19T18:15:08Z" diff --git a/advisories/unreviewed/2024/04/GHSA-fvj9-whqh-93ff/GHSA-fvj9-whqh-93ff.json b/advisories/unreviewed/2024/04/GHSA-fvj9-whqh-93ff/GHSA-fvj9-whqh-93ff.json index 634bd9c773e..345e06119b8 100644 --- a/advisories/unreviewed/2024/04/GHSA-fvj9-whqh-93ff/GHSA-fvj9-whqh-93ff.json +++ b/advisories/unreviewed/2024/04/GHSA-fvj9-whqh-93ff/GHSA-fvj9-whqh-93ff.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-fvj9-whqh-93ff", - "modified": "2024-04-29T18:30:45Z", + "modified": "2024-07-03T18:37:18Z", "published": "2024-04-29T18:30:45Z", "aliases": [ "CVE-2024-34020" ], "details": "A stack-based buffer overflow was found in the putSDN() function of mail.c in hcode through 2.1.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-121" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-29T16:15:35Z" diff --git a/advisories/unreviewed/2024/04/GHSA-fx8w-m7j5-9568/GHSA-fx8w-m7j5-9568.json b/advisories/unreviewed/2024/04/GHSA-fx8w-m7j5-9568/GHSA-fx8w-m7j5-9568.json index 2af3c95d084..3b75a3d3c0c 100644 --- a/advisories/unreviewed/2024/04/GHSA-fx8w-m7j5-9568/GHSA-fx8w-m7j5-9568.json +++ b/advisories/unreviewed/2024/04/GHSA-fx8w-m7j5-9568/GHSA-fx8w-m7j5-9568.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-fx8w-m7j5-9568", - "modified": "2024-04-22T15:30:42Z", + "modified": "2024-07-03T18:36:29Z", "published": "2024-04-22T15:30:42Z", "aliases": [ "CVE-2023-38300" ], "details": "A certain software build for the Orbic Maui device (Orbic/RC545L/RC545L:10/ORB545L_V1.4.2_BVZPP/230106:user/release-keys) leaks the IMEI and the ICCID to system properties that can be accessed by any local app on the device without any permissions or special privileges. Google restricted third-party apps from directly obtaining non-resettable device identifiers in Android 10 and higher, but in this instance they are leaked by a high-privilege process and can be obtained indirectly. This malicious app reads from the \"persist.sys.verizon_test_plan_imei\" system property to indirectly obtain the IMEI and reads the \"persist.sys.verizon_test_plan_iccid\" system property to obtain the ICCID.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-200" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T15:15:47Z" diff --git a/advisories/unreviewed/2024/04/GHSA-gg68-f5h7-f88v/GHSA-gg68-f5h7-f88v.json b/advisories/unreviewed/2024/04/GHSA-gg68-f5h7-f88v/GHSA-gg68-f5h7-f88v.json index d911ead3584..029179b338c 100644 --- a/advisories/unreviewed/2024/04/GHSA-gg68-f5h7-f88v/GHSA-gg68-f5h7-f88v.json +++ b/advisories/unreviewed/2024/04/GHSA-gg68-f5h7-f88v/GHSA-gg68-f5h7-f88v.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-gg68-f5h7-f88v", - "modified": "2024-04-28T15:30:30Z", + "modified": "2024-07-03T18:37:12Z", "published": "2024-04-28T15:30:30Z", "aliases": [ "CVE-2022-48666" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: core: Fix a use-after-free\n\nThere are two .exit_cmd_priv implementations. Both implementations use\nresources associated with the SCSI host. Make sure that these resources are\nstill available when .exit_cmd_priv is called by waiting inside\nscsi_remove_host() until the tag set has been freed.\n\nThis commit fixes the following use-after-free:\n\n==================================================================\nBUG: KASAN: use-after-free in srp_exit_cmd_priv+0x27/0xd0 [ib_srp]\nRead of size 8 at addr ffff888100337000 by task multipathd/16727\nCall Trace:\n \n dump_stack_lvl+0x34/0x44\n print_report.cold+0x5e/0x5db\n kasan_report+0xab/0x120\n srp_exit_cmd_priv+0x27/0xd0 [ib_srp]\n scsi_mq_exit_request+0x4d/0x70\n blk_mq_free_rqs+0x143/0x410\n __blk_mq_free_map_and_rqs+0x6e/0x100\n blk_mq_free_tag_set+0x2b/0x160\n scsi_host_dev_release+0xf3/0x1a0\n device_release+0x54/0xe0\n kobject_put+0xa5/0x120\n device_release+0x54/0xe0\n kobject_put+0xa5/0x120\n scsi_device_dev_release_usercontext+0x4c1/0x4e0\n execute_in_process_context+0x23/0x90\n device_release+0x54/0xe0\n kobject_put+0xa5/0x120\n scsi_disk_release+0x3f/0x50\n device_release+0x54/0xe0\n kobject_put+0xa5/0x120\n disk_release+0x17f/0x1b0\n device_release+0x54/0xe0\n kobject_put+0xa5/0x120\n dm_put_table_device+0xa3/0x160 [dm_mod]\n dm_put_device+0xd0/0x140 [dm_mod]\n free_priority_group+0xd8/0x110 [dm_multipath]\n free_multipath+0x94/0xe0 [dm_multipath]\n dm_table_destroy+0xa2/0x1e0 [dm_mod]\n __dm_destroy+0x196/0x350 [dm_mod]\n dev_remove+0x10c/0x160 [dm_mod]\n ctl_ioctl+0x2c2/0x590 [dm_mod]\n dm_ctl_ioctl+0x5/0x10 [dm_mod]\n __x64_sys_ioctl+0xb4/0xf0\n dm_ctl_ioctl+0x5/0x10 [dm_mod]\n __x64_sys_ioctl+0xb4/0xf0\n do_syscall_64+0x3b/0x90\n entry_SYSCALL_64_after_hwframe+0x46/0xb0", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-416" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-28T13:15:08Z" diff --git a/advisories/unreviewed/2024/04/GHSA-gg92-jch8-j26v/GHSA-gg92-jch8-j26v.json b/advisories/unreviewed/2024/04/GHSA-gg92-jch8-j26v/GHSA-gg92-jch8-j26v.json index 4912fad6d94..278d99c55bb 100644 --- a/advisories/unreviewed/2024/04/GHSA-gg92-jch8-j26v/GHSA-gg92-jch8-j26v.json +++ b/advisories/unreviewed/2024/04/GHSA-gg92-jch8-j26v/GHSA-gg92-jch8-j26v.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-gg92-jch8-j26v", - "modified": "2024-04-29T18:30:46Z", + "modified": "2024-07-03T18:37:20Z", "published": "2024-04-29T18:30:46Z", "aliases": [ "CVE-2024-33445" ], "details": "An issue in hisiphp v2.0.111 allows a remote attacker to execute arbitrary code via a crafted script to the SystemPlugins::mkInfo parameter in the SystemPlugins.php component.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-94" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-29T17:15:19Z" diff --git a/advisories/unreviewed/2024/04/GHSA-gj8q-4v8x-c5jj/GHSA-gj8q-4v8x-c5jj.json b/advisories/unreviewed/2024/04/GHSA-gj8q-4v8x-c5jj/GHSA-gj8q-4v8x-c5jj.json index df558df605a..d163079039c 100644 --- a/advisories/unreviewed/2024/04/GHSA-gj8q-4v8x-c5jj/GHSA-gj8q-4v8x-c5jj.json +++ b/advisories/unreviewed/2024/04/GHSA-gj8q-4v8x-c5jj/GHSA-gj8q-4v8x-c5jj.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-gj8q-4v8x-c5jj", - "modified": "2024-04-22T21:31:02Z", + "modified": "2024-07-03T18:36:34Z", "published": "2024-04-22T21:31:02Z", "aliases": [ "CVE-2024-27574" ], "details": "SQL Injection vulnerability in Trainme Academy version Ichin v.1.3.2 allows a remote attacker to obtain sensitive information via the informacion, idcurso, and tit parameters.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T21:15:48Z" diff --git a/advisories/unreviewed/2024/04/GHSA-gqfm-c246-rhqp/GHSA-gqfm-c246-rhqp.json b/advisories/unreviewed/2024/04/GHSA-gqfm-c246-rhqp/GHSA-gqfm-c246-rhqp.json index 2545ebd9a8d..6649b365d9c 100644 --- a/advisories/unreviewed/2024/04/GHSA-gqfm-c246-rhqp/GHSA-gqfm-c246-rhqp.json +++ b/advisories/unreviewed/2024/04/GHSA-gqfm-c246-rhqp/GHSA-gqfm-c246-rhqp.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-gqfm-c246-rhqp", - "modified": "2024-04-30T15:30:37Z", + "modified": "2024-07-03T18:37:39Z", "published": "2024-04-30T15:30:37Z", "aliases": [ "CVE-2023-50915" ], "details": "An issue exists in GalaxyClientService.exe in GOG Galaxy (Beta) 2.0.67.2 through 2.0.71.2 that could allow authenticated users to overwrite and corrupt critical system files via a combination of an NTFS Junction and an RPC Object Manager symbolic link and could result in a denial of service.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -35,7 +38,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-30T14:15:10Z" diff --git a/advisories/unreviewed/2024/04/GHSA-gwrp-82jw-p87q/GHSA-gwrp-82jw-p87q.json b/advisories/unreviewed/2024/04/GHSA-gwrp-82jw-p87q/GHSA-gwrp-82jw-p87q.json index db7fd0c6875..2bc41fe1289 100644 --- a/advisories/unreviewed/2024/04/GHSA-gwrp-82jw-p87q/GHSA-gwrp-82jw-p87q.json +++ b/advisories/unreviewed/2024/04/GHSA-gwrp-82jw-p87q/GHSA-gwrp-82jw-p87q.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-gwrp-82jw-p87q", - "modified": "2024-04-30T15:30:37Z", + "modified": "2024-07-03T18:37:40Z", "published": "2024-04-30T15:30:37Z", "aliases": [ "CVE-2024-28716" ], "details": "An issue in OpenStack Storlets yoga-eom allows a remote attacker to execute arbitrary code via the gateway.py component.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-1333" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-30T15:15:52Z" diff --git a/advisories/unreviewed/2024/04/GHSA-gwvx-7jph-wm5r/GHSA-gwvx-7jph-wm5r.json b/advisories/unreviewed/2024/04/GHSA-gwvx-7jph-wm5r/GHSA-gwvx-7jph-wm5r.json index 2adfd34f409..9aeb89ee886 100644 --- a/advisories/unreviewed/2024/04/GHSA-gwvx-7jph-wm5r/GHSA-gwvx-7jph-wm5r.json +++ b/advisories/unreviewed/2024/04/GHSA-gwvx-7jph-wm5r/GHSA-gwvx-7jph-wm5r.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-gwvx-7jph-wm5r", - "modified": "2024-04-23T15:30:35Z", + "modified": "2024-07-03T18:36:43Z", "published": "2024-04-23T15:30:35Z", "aliases": [ "CVE-2024-33214" ], "details": "Tenda FH1206 V1.2.0.8(8155)_EN was discovered to contain a stack-based buffer overflow vulnerability via the entrys parameter in ip/goform/RouteStatic.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-120" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-23T15:15:50Z" diff --git a/advisories/unreviewed/2024/04/GHSA-h227-33f5-4929/GHSA-h227-33f5-4929.json b/advisories/unreviewed/2024/04/GHSA-h227-33f5-4929/GHSA-h227-33f5-4929.json index 3bd9801a019..66a7cf409b4 100644 --- a/advisories/unreviewed/2024/04/GHSA-h227-33f5-4929/GHSA-h227-33f5-4929.json +++ b/advisories/unreviewed/2024/04/GHSA-h227-33f5-4929/GHSA-h227-33f5-4929.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-h227-33f5-4929", - "modified": "2024-04-22T12:30:33Z", + "modified": "2024-07-03T18:36:23Z", "published": "2024-04-22T12:30:33Z", "aliases": [ "CVE-2024-22813" ], "details": "An issue in Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to overwrite the hardcoded IP address in the device memory, disrupting network connectivity between the router and the controller.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-798" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T12:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-h227-rq3h-hrhj/GHSA-h227-rq3h-hrhj.json b/advisories/unreviewed/2024/04/GHSA-h227-rq3h-hrhj/GHSA-h227-rq3h-hrhj.json index e0eefe5d0d8..0b5c33aabef 100644 --- a/advisories/unreviewed/2024/04/GHSA-h227-rq3h-hrhj/GHSA-h227-rq3h-hrhj.json +++ b/advisories/unreviewed/2024/04/GHSA-h227-rq3h-hrhj/GHSA-h227-rq3h-hrhj.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-h227-rq3h-hrhj", - "modified": "2024-04-30T21:30:31Z", + "modified": "2024-07-03T18:37:47Z", "published": "2024-04-30T21:30:31Z", "aliases": [ "CVE-2023-49473" ], "details": "Shenzhen JF6000 Cloud Media Collaboration Processing Platform firmware version V1.2.0 and software version V2.0.0 build 6245 is vulnerable to Incorrect Access Control.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-284" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-30T19:15:22Z" diff --git a/advisories/unreviewed/2024/04/GHSA-h22m-xrhp-8g7c/GHSA-h22m-xrhp-8g7c.json b/advisories/unreviewed/2024/04/GHSA-h22m-xrhp-8g7c/GHSA-h22m-xrhp-8g7c.json index e466c9e5ee0..8c84217a3d4 100644 --- a/advisories/unreviewed/2024/04/GHSA-h22m-xrhp-8g7c/GHSA-h22m-xrhp-8g7c.json +++ b/advisories/unreviewed/2024/04/GHSA-h22m-xrhp-8g7c/GHSA-h22m-xrhp-8g7c.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-h22m-xrhp-8g7c", - "modified": "2024-04-29T21:30:35Z", + "modified": "2024-07-03T18:37:30Z", "published": "2024-04-29T21:30:35Z", "aliases": [ "CVE-2024-33271" ], "details": "An issue in FME Modules eventsmanager before 4.4.0 allows an attacker to obtain sensitive information from the ps_customer component.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-359" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-29T20:15:08Z" diff --git a/advisories/unreviewed/2024/04/GHSA-h66r-c8cp-f7f9/GHSA-h66r-c8cp-f7f9.json b/advisories/unreviewed/2024/04/GHSA-h66r-c8cp-f7f9/GHSA-h66r-c8cp-f7f9.json index e6fb179cc8e..af1e2c1a9ec 100644 --- a/advisories/unreviewed/2024/04/GHSA-h66r-c8cp-f7f9/GHSA-h66r-c8cp-f7f9.json +++ b/advisories/unreviewed/2024/04/GHSA-h66r-c8cp-f7f9/GHSA-h66r-c8cp-f7f9.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-h66r-c8cp-f7f9", - "modified": "2024-04-26T21:31:11Z", + "modified": "2024-07-03T18:37:07Z", "published": "2024-04-26T21:31:11Z", "aliases": [ "CVE-2024-28326" ], "details": "Incorrect Access Control in Asus RT-N12+ B1 routers allows local attackers to obtain root terminal access via the the UART interface.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-1263" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-26T20:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-h9vv-8q8m-v6m6/GHSA-h9vv-8q8m-v6m6.json b/advisories/unreviewed/2024/04/GHSA-h9vv-8q8m-v6m6/GHSA-h9vv-8q8m-v6m6.json index 7c7e30c2168..ccaecc16d77 100644 --- a/advisories/unreviewed/2024/04/GHSA-h9vv-8q8m-v6m6/GHSA-h9vv-8q8m-v6m6.json +++ b/advisories/unreviewed/2024/04/GHSA-h9vv-8q8m-v6m6/GHSA-h9vv-8q8m-v6m6.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-1336" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/04/GHSA-h9wj-383m-chrv/GHSA-h9wj-383m-chrv.json b/advisories/unreviewed/2024/04/GHSA-h9wj-383m-chrv/GHSA-h9wj-383m-chrv.json index 5b8e009cd52..8c76f7ccc13 100644 --- a/advisories/unreviewed/2024/04/GHSA-h9wj-383m-chrv/GHSA-h9wj-383m-chrv.json +++ b/advisories/unreviewed/2024/04/GHSA-h9wj-383m-chrv/GHSA-h9wj-383m-chrv.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-h9wj-383m-chrv", - "modified": "2024-04-22T15:30:42Z", + "modified": "2024-07-03T18:36:29Z", "published": "2024-04-22T15:30:42Z", "aliases": [ "CVE-2023-38296" ], "details": "Various software builds for the following TCL 30Z and TCL A3X devices leak the ICCID to a system property that can be accessed by any local app on the device without any permissions or special privileges. Google restricted third-party apps from directly obtaining non-resettable device identifiers in Android 10 and higher, but in these instances they are leaked by a high-privilege process and can be obtained indirectly. The software build fingerprints for each confirmed vulnerable device are as follows: TCL 30Z (TCL/4188R/Jetta_ATT:12/SP1A.210812.016/LV8E:user/release-keys, TCL/T602DL/Jetta_TF:12/SP1A.210812.016/vU5P:user/release-keys, TCL/T602DL/Jetta_TF:12/SP1A.210812.016/vU61:user/release-keys, TCL/T602DL/Jetta_TF:12/SP1A.210812.016/vU66:user/release-keys, TCL/T602DL/Jetta_TF:12/SP1A.210812.016/vU68:user/release-keys, TCL/T602DL/Jetta_TF:12/SP1A.210812.016/vU6P:user/release-keys, and TCL/T602DL/Jetta_TF:12/SP1A.210812.016/vU6X:user/release-keys) and TCL A3X (TCL/A600DL/Delhi_TF:11/RKQ1.201202.002/vAAZ:user/release-keys, TCL/A600DL/Delhi_TF:11/RKQ1.201202.002/vAB3:user/release-keys, TCL/A600DL/Delhi_TF:11/RKQ1.201202.002/vAB7:user/release-keys, TCL/A600DL/Delhi_TF:11/RKQ1.201202.002/vABA:user/release-keys, TCL/A600DL/Delhi_TF:11/RKQ1.201202.002/vABM:user/release-keys, TCL/A600DL/Delhi_TF:11/RKQ1.201202.002/vABP:user/release-keys, and TCL/A600DL/Delhi_TF:11/RKQ1.201202.002/vABS:user/release-keys). This malicious app reads from the \"persist.sys.tctPowerIccid\" system property to indirectly obtain the ICCID.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-200" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T15:15:46Z" diff --git a/advisories/unreviewed/2024/04/GHSA-hf73-54jv-gg64/GHSA-hf73-54jv-gg64.json b/advisories/unreviewed/2024/04/GHSA-hf73-54jv-gg64/GHSA-hf73-54jv-gg64.json index 2db824626f1..c35b83028aa 100644 --- a/advisories/unreviewed/2024/04/GHSA-hf73-54jv-gg64/GHSA-hf73-54jv-gg64.json +++ b/advisories/unreviewed/2024/04/GHSA-hf73-54jv-gg64/GHSA-hf73-54jv-gg64.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-hf73-54jv-gg64", - "modified": "2024-04-22T21:31:00Z", + "modified": "2024-07-03T18:36:31Z", "published": "2024-04-22T21:31:00Z", "aliases": [ "CVE-2024-31545" ], "details": "Computer Laboratory Management System v1.0 is vulnerable to SQL Injection via the \"id\" parameter of /admin/?page=user/manage_user&id=6.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T19:15:46Z" diff --git a/advisories/unreviewed/2024/04/GHSA-hfcj-g47m-8fvx/GHSA-hfcj-g47m-8fvx.json b/advisories/unreviewed/2024/04/GHSA-hfcj-g47m-8fvx/GHSA-hfcj-g47m-8fvx.json index 2747b41958f..81318124b25 100644 --- a/advisories/unreviewed/2024/04/GHSA-hfcj-g47m-8fvx/GHSA-hfcj-g47m-8fvx.json +++ b/advisories/unreviewed/2024/04/GHSA-hfcj-g47m-8fvx/GHSA-hfcj-g47m-8fvx.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-hfcj-g47m-8fvx", - "modified": "2024-04-30T21:30:32Z", + "modified": "2024-07-03T18:37:55Z", "published": "2024-04-30T21:30:32Z", "aliases": [ "CVE-2024-3746" @@ -11,6 +11,10 @@ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], "affected": [ diff --git a/advisories/unreviewed/2024/04/GHSA-hgxr-xh47-wjx5/GHSA-hgxr-xh47-wjx5.json b/advisories/unreviewed/2024/04/GHSA-hgxr-xh47-wjx5/GHSA-hgxr-xh47-wjx5.json index 46acb49a44a..37fdd96914a 100644 --- a/advisories/unreviewed/2024/04/GHSA-hgxr-xh47-wjx5/GHSA-hgxr-xh47-wjx5.json +++ b/advisories/unreviewed/2024/04/GHSA-hgxr-xh47-wjx5/GHSA-hgxr-xh47-wjx5.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-hgxr-xh47-wjx5", - "modified": "2024-04-27T06:30:25Z", + "modified": "2024-07-03T18:36:32Z", "published": "2024-04-22T21:31:01Z", "aliases": [ "CVE-2024-32405" ], "details": "Cross Site Scripting vulnerability in inducer relate before v.2024.1 allows a remote attacker to escalate privileges via a crafted payload to the Answer field of InlineMultiQuestion parameter on Exam function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:L/I:N/A:N" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T20:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-hjc9-mj3q-mx36/GHSA-hjc9-mj3q-mx36.json b/advisories/unreviewed/2024/04/GHSA-hjc9-mj3q-mx36/GHSA-hjc9-mj3q-mx36.json index 6bce096bc41..7ba75f6ceeb 100644 --- a/advisories/unreviewed/2024/04/GHSA-hjc9-mj3q-mx36/GHSA-hjc9-mj3q-mx36.json +++ b/advisories/unreviewed/2024/04/GHSA-hjc9-mj3q-mx36/GHSA-hjc9-mj3q-mx36.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-hjc9-mj3q-mx36", - "modified": "2024-04-23T15:30:35Z", + "modified": "2024-07-03T18:36:43Z", "published": "2024-04-23T15:30:35Z", "aliases": [ "CVE-2024-33211" ], "details": "Tenda FH1206 V1.2.0.8(8155)_EN was discovered to contain a stack-based buffer overflow vulnerability via the PPPOEPassword parameter in ip/goform/QuickIndex.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-121" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-23T15:15:50Z" diff --git a/advisories/unreviewed/2024/04/GHSA-hjqg-7wq4-xvwx/GHSA-hjqg-7wq4-xvwx.json b/advisories/unreviewed/2024/04/GHSA-hjqg-7wq4-xvwx/GHSA-hjqg-7wq4-xvwx.json index 1a98e182b9c..26158cae0cb 100644 --- a/advisories/unreviewed/2024/04/GHSA-hjqg-7wq4-xvwx/GHSA-hjqg-7wq4-xvwx.json +++ b/advisories/unreviewed/2024/04/GHSA-hjqg-7wq4-xvwx/GHSA-hjqg-7wq4-xvwx.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-hjqg-7wq4-xvwx", - "modified": "2024-04-19T18:31:15Z", + "modified": "2024-07-03T18:36:13Z", "published": "2024-04-19T18:31:15Z", "aliases": [ "CVE-2023-47435" ], "details": "An issue in the verifyPassword function of hexo-theme-matery v2.0.0 allows attackers to bypass authentication and access password protected pages.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-294" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-19T18:15:08Z" diff --git a/advisories/unreviewed/2024/04/GHSA-j46p-v4gj-3jj5/GHSA-j46p-v4gj-3jj5.json b/advisories/unreviewed/2024/04/GHSA-j46p-v4gj-3jj5/GHSA-j46p-v4gj-3jj5.json index e5ae7259c7b..089993be8d2 100644 --- a/advisories/unreviewed/2024/04/GHSA-j46p-v4gj-3jj5/GHSA-j46p-v4gj-3jj5.json +++ b/advisories/unreviewed/2024/04/GHSA-j46p-v4gj-3jj5/GHSA-j46p-v4gj-3jj5.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-j46p-v4gj-3jj5", - "modified": "2024-04-29T18:30:45Z", + "modified": "2024-07-03T18:37:19Z", "published": "2024-04-29T18:30:45Z", "aliases": [ "CVE-2024-32493" ], "details": "An issue was discovered in Znuny LTS 6.5.1 through 6.5.7 and Znuny 7.0.1 through 7.0.16 where a logged-in agent is able to inject SQL in the draft form ID parameter of an AJAX request.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-29T17:15:19Z" diff --git a/advisories/unreviewed/2024/04/GHSA-jcmq-cwf3-j6c4/GHSA-jcmq-cwf3-j6c4.json b/advisories/unreviewed/2024/04/GHSA-jcmq-cwf3-j6c4/GHSA-jcmq-cwf3-j6c4.json index 1f6015269bc..4335abd9990 100644 --- a/advisories/unreviewed/2024/04/GHSA-jcmq-cwf3-j6c4/GHSA-jcmq-cwf3-j6c4.json +++ b/advisories/unreviewed/2024/04/GHSA-jcmq-cwf3-j6c4/GHSA-jcmq-cwf3-j6c4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-jcmq-cwf3-j6c4", - "modified": "2024-04-29T18:30:46Z", + "modified": "2024-07-03T18:37:22Z", "published": "2024-04-29T18:30:46Z", "aliases": [ "CVE-2023-52080" ], "details": "IEIT NF5280M6 UEFI firmware through 8.4 has a pool overflow vulnerability, caused by improper use of the gRT->GetVariable() function. Attackers with access to local NVRAM variables can exploit this by modifying these variables on SPI Flash, resulting in memory data being tampered with. When critical data in memory data is tampered with,a crash may occur.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-120" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-29T18:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-jmcg-wx22-4gp4/GHSA-jmcg-wx22-4gp4.json b/advisories/unreviewed/2024/04/GHSA-jmcg-wx22-4gp4/GHSA-jmcg-wx22-4gp4.json index 8b9891e6108..48ffb56d543 100644 --- a/advisories/unreviewed/2024/04/GHSA-jmcg-wx22-4gp4/GHSA-jmcg-wx22-4gp4.json +++ b/advisories/unreviewed/2024/04/GHSA-jmcg-wx22-4gp4/GHSA-jmcg-wx22-4gp4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-jmcg-wx22-4gp4", - "modified": "2024-04-30T15:30:37Z", + "modified": "2024-07-03T18:37:36Z", "published": "2024-04-30T15:30:37Z", "aliases": [ "CVE-2023-46304" ], "details": "modules/Users/models/Module.php in Vtiger CRM 7.5.0 allows a remote authenticated attacker to run arbitrary PHP code because an unprotected endpoint allows them to write this code to the config.inc.php file (executed on every page load).", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-74" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-30T13:15:46Z" diff --git a/advisories/unreviewed/2024/04/GHSA-jmrw-j3gj-4xq7/GHSA-jmrw-j3gj-4xq7.json b/advisories/unreviewed/2024/04/GHSA-jmrw-j3gj-4xq7/GHSA-jmrw-j3gj-4xq7.json index 78efc85ed65..cf239fcb6e7 100644 --- a/advisories/unreviewed/2024/04/GHSA-jmrw-j3gj-4xq7/GHSA-jmrw-j3gj-4xq7.json +++ b/advisories/unreviewed/2024/04/GHSA-jmrw-j3gj-4xq7/GHSA-jmrw-j3gj-4xq7.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-jmrw-j3gj-4xq7", - "modified": "2024-04-29T18:30:46Z", + "modified": "2024-07-03T18:37:28Z", "published": "2024-04-29T18:30:46Z", "aliases": [ "CVE-2024-33443" ], "details": "An issue in onethink v.1.1 allows a remote attacker to execute arbitrary code via a crafted script to the AddonsController.class.php component.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N" + } ], "affected": [ @@ -31,7 +34,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-29T18:15:08Z" diff --git a/advisories/unreviewed/2024/04/GHSA-m23r-r3m9-287h/GHSA-m23r-r3m9-287h.json b/advisories/unreviewed/2024/04/GHSA-m23r-r3m9-287h/GHSA-m23r-r3m9-287h.json index 217745a4fa0..b40c6a31671 100644 --- a/advisories/unreviewed/2024/04/GHSA-m23r-r3m9-287h/GHSA-m23r-r3m9-287h.json +++ b/advisories/unreviewed/2024/04/GHSA-m23r-r3m9-287h/GHSA-m23r-r3m9-287h.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-m23r-r3m9-287h", - "modified": "2024-04-29T21:30:35Z", + "modified": "2024-07-03T18:37:30Z", "published": "2024-04-29T21:30:35Z", "aliases": [ "CVE-2023-31889" ], "details": "An issue discovered in httpd in ASUS RT-AC51U with firmware version up to and including 3.0.0.4.380.8591 allows local attackers to cause a denial of service via crafted GET request.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-400" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-29T21:15:47Z" diff --git a/advisories/unreviewed/2024/04/GHSA-m286-4wcq-v339/GHSA-m286-4wcq-v339.json b/advisories/unreviewed/2024/04/GHSA-m286-4wcq-v339/GHSA-m286-4wcq-v339.json index 0cab50f5ec9..9630da5cc3b 100644 --- a/advisories/unreviewed/2024/04/GHSA-m286-4wcq-v339/GHSA-m286-4wcq-v339.json +++ b/advisories/unreviewed/2024/04/GHSA-m286-4wcq-v339/GHSA-m286-4wcq-v339.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-m286-4wcq-v339", - "modified": "2024-04-22T15:30:42Z", + "modified": "2024-07-03T18:36:27Z", "published": "2024-04-22T15:30:42Z", "aliases": [ "CVE-2023-38295" ], "details": "Certain software builds for the TCL 30Z and TCL 10 Android devices contain a vulnerable, pre-installed app that relies on a missing permission that provides no protection at runtime. The missing permission is required as an access permission by components in various pre-installed apps. On the TCL 30Z device, the vulnerable app has a package name of com.tcl.screenrecorder (versionCode='1221092802', versionName='v5.2120.02.12008.1.T' ; versionCode='1221092805', versionName='v5.2120.02.12008.2.T'). On the TCL 10L device, the vulnerable app has a package name of com.tcl.sos (versionCode='2020102827', versionName='v3.2014.12.1012.B'). When a third-party app declares and requests the missing permission, it can interact with certain service components in the aforementioned apps (that execute with \"system\" privileges) to perform arbitrary files reads/writes in its context. An app exploiting this vulnerability only needs to declare and request the single missing permission and no user interaction is required beyond installing and running a third-party app. The software build fingerprints for each confirmed vulnerable device are as follows: TCL 10L (TCL/T770B/T1_LITE:11/RKQ1.210107.001/8BIC:user/release-keys) and TCL 30Z (TCL/4188R/Jetta_ATT:12/SP1A.210812.016/LV8E:user/release-keys, TCL/T602DL/Jetta_TF:12/SP1A.210812.016/vU5P:user/release-keys, TCL/T602DL/Jetta_TF:12/SP1A.210812.016/vU61:user/release-keys, TCL/T602DL/Jetta_TF:12/SP1A.210812.016/vU66:user/release-keys, TCL/T602DL/Jetta_TF:12/SP1A.210812.016/vU68:user/release-keys, TCL/T602DL/Jetta_TF:12/SP1A.210812.016/vU6P:user/release-keys, and TCL/T602DL/Jetta_TF:12/SP1A.210812.016/vU6X:user/release-keys). This malicious app declares the missing permission named com.tct.smart.switchphone.permission.SWITCH_DATA as a normal permission, requests the missing permission, and uses it to interact with the com.tct.smart.switchdata.DataService service component that is declared in vulnerable apps that execute with \"system\" privileges to perform arbitrary file reads/writes.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-276" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T15:15:46Z" diff --git a/advisories/unreviewed/2024/04/GHSA-m755-674g-g2x5/GHSA-m755-674g-g2x5.json b/advisories/unreviewed/2024/04/GHSA-m755-674g-g2x5/GHSA-m755-674g-g2x5.json index 8d3ddd8204e..cfd92fbe5f7 100644 --- a/advisories/unreviewed/2024/04/GHSA-m755-674g-g2x5/GHSA-m755-674g-g2x5.json +++ b/advisories/unreviewed/2024/04/GHSA-m755-674g-g2x5/GHSA-m755-674g-g2x5.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-m755-674g-g2x5", - "modified": "2024-04-22T12:30:33Z", + "modified": "2024-07-03T18:36:21Z", "published": "2024-04-22T12:30:33Z", "aliases": [ "CVE-2024-22809" ], "details": "Incorrect access control in Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to access the G code's shared folder and view sensitive information.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-228" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T12:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-m829-cf3v-vgmh/GHSA-m829-cf3v-vgmh.json b/advisories/unreviewed/2024/04/GHSA-m829-cf3v-vgmh/GHSA-m829-cf3v-vgmh.json index 3d7a566b052..8390f705efd 100644 --- a/advisories/unreviewed/2024/04/GHSA-m829-cf3v-vgmh/GHSA-m829-cf3v-vgmh.json +++ b/advisories/unreviewed/2024/04/GHSA-m829-cf3v-vgmh/GHSA-m829-cf3v-vgmh.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-m829-cf3v-vgmh", - "modified": "2024-04-23T06:30:47Z", + "modified": "2024-07-03T18:36:36Z", "published": "2024-04-23T06:30:47Z", "aliases": [ "CVE-2024-31857" ], "details": "Forminator prior to 1.15.4 contains a cross-site scripting vulnerability. If this vulnerability is exploited, a remote attacker may obtain user information etc. and alter the page contents on the user's web browser.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-23T05:15:49Z" diff --git a/advisories/unreviewed/2024/04/GHSA-mfmq-hv4w-8pwj/GHSA-mfmq-hv4w-8pwj.json b/advisories/unreviewed/2024/04/GHSA-mfmq-hv4w-8pwj/GHSA-mfmq-hv4w-8pwj.json index 58da6847a2c..47cbea9c141 100644 --- a/advisories/unreviewed/2024/04/GHSA-mfmq-hv4w-8pwj/GHSA-mfmq-hv4w-8pwj.json +++ b/advisories/unreviewed/2024/04/GHSA-mfmq-hv4w-8pwj/GHSA-mfmq-hv4w-8pwj.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mfmq-hv4w-8pwj", - "modified": "2024-04-24T06:30:31Z", + "modified": "2024-07-03T18:36:46Z", "published": "2024-04-24T06:30:31Z", "aliases": [ "CVE-2024-32051" ], "details": "Insertion of sensitive information into log file issue exists in RoamWiFi R10 prior to 4.8.45. If this vulnerability is exploited, a network-adjacent unauthenticated attacker with access to the device may obtain sensitive information.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-200" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-24T06:15:14Z" diff --git a/advisories/unreviewed/2024/04/GHSA-mp39-4ph2-875c/GHSA-mp39-4ph2-875c.json b/advisories/unreviewed/2024/04/GHSA-mp39-4ph2-875c/GHSA-mp39-4ph2-875c.json index fe51c8ea9ba..8248225c2e8 100644 --- a/advisories/unreviewed/2024/04/GHSA-mp39-4ph2-875c/GHSA-mp39-4ph2-875c.json +++ b/advisories/unreviewed/2024/04/GHSA-mp39-4ph2-875c/GHSA-mp39-4ph2-875c.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mp39-4ph2-875c", - "modified": "2024-04-23T15:30:34Z", + "modified": "2024-07-03T18:36:39Z", "published": "2024-04-23T15:30:34Z", "aliases": [ "CVE-2024-28627" ], "details": "An issue in Flipsnack v.18/03/2024 allows a local attacker to obtain sensitive information via the reader.gz.js file.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-603" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-23T14:15:08Z" diff --git a/advisories/unreviewed/2024/04/GHSA-mr38-8f53-xh3h/GHSA-mr38-8f53-xh3h.json b/advisories/unreviewed/2024/04/GHSA-mr38-8f53-xh3h/GHSA-mr38-8f53-xh3h.json index 06f49f34b43..68d36d22fbd 100644 --- a/advisories/unreviewed/2024/04/GHSA-mr38-8f53-xh3h/GHSA-mr38-8f53-xh3h.json +++ b/advisories/unreviewed/2024/04/GHSA-mr38-8f53-xh3h/GHSA-mr38-8f53-xh3h.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mr38-8f53-xh3h", - "modified": "2024-04-22T15:30:42Z", + "modified": "2024-07-03T18:36:28Z", "published": "2024-04-22T15:30:42Z", "aliases": [ "CVE-2023-38298" ], "details": "Various software builds for the following TCL devices (30Z, A3X, 20XE, 10L) leak the device IMEI to a system property that can be accessed by any local app on the device without any permissions or special privileges. Google restricted third-party apps from directly obtaining non-resettable device identifiers in Android 10 and higher, but in these instances they are leaked by a high-privilege process and can be obtained indirectly. The software build fingerprints for each confirmed vulnerable device are as follows: TCL 30Z (TCL/4188R/Jetta_ATT:12/SP1A.210812.016/LV8E:user/release-keys, TCL/T602DL/Jetta_TF:12/SP1A.210812.016/vU5P:user/release-keys, TCL/T602DL/Jetta_TF:12/SP1A.210812.016/vU61:user/release-keys, TCL/T602DL/Jetta_TF:12/SP1A.210812.016/vU66:user/release-keys, TCL/T602DL/Jetta_TF:12/SP1A.210812.016/vU68:user/release-keys, TCL/T602DL/Jetta_TF:12/SP1A.210812.016/vU6P:user/release-keys, and TCL/T602DL/Jetta_TF:12/SP1A.210812.016/vU6X:user/release-keys); TCL A3X (TCL/A600DL/Delhi_TF:11/RKQ1.201202.002/vAAZ:user/release-keys, TCL/A600DL/Delhi_TF:11/RKQ1.201202.002/vAB3:user/release-keys, TCL/A600DL/Delhi_TF:11/RKQ1.201202.002/vAB7:user/release-keys, TCL/A600DL/Delhi_TF:11/RKQ1.201202.002/vABA:user/release-keys, TCL/A600DL/Delhi_TF:11/RKQ1.201202.002/vABM:user/release-keys, TCL/A600DL/Delhi_TF:11/RKQ1.201202.002/vABP:user/release-keys, and TCL/A600DL/Delhi_TF:11/RKQ1.201202.002/vABS:user/release-keys); TCL 20XE (TCL/5087Z_BO/Doha_TMO:11/RP1A.200720.011/PB7I-0:user/release-keys and TCL/5087Z_BO/Doha_TMO:11/RP1A.200720.011/PB83-0:user/release-keys); and TCL 10L (TCL/T770B/T1_LITE:10/QKQ1.200329.002/3CJ0:user/release-keys and TCL/T770B/T1_LITE:11/RKQ1.210107.001/8BIC:user/release-keys). This malicious app reads from the \"gsm.device.imei0\" system property to indirectly obtain the device IMEI.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-266" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T15:15:47Z" diff --git a/advisories/unreviewed/2024/04/GHSA-mr3w-vp86-68v3/GHSA-mr3w-vp86-68v3.json b/advisories/unreviewed/2024/04/GHSA-mr3w-vp86-68v3/GHSA-mr3w-vp86-68v3.json index 2706b36b303..65cd586e5f7 100644 --- a/advisories/unreviewed/2024/04/GHSA-mr3w-vp86-68v3/GHSA-mr3w-vp86-68v3.json +++ b/advisories/unreviewed/2024/04/GHSA-mr3w-vp86-68v3/GHSA-mr3w-vp86-68v3.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mr3w-vp86-68v3", - "modified": "2024-04-19T21:31:08Z", + "modified": "2024-07-03T18:36:14Z", "published": "2024-04-19T21:31:08Z", "aliases": [ "CVE-2024-22905" ], "details": "Buffer Overflow vulnerability in ARM mbed-os v.6.17.0 allows a remote attacker to execute arbitrary code via a crafted script to the hciTrSerialRxIncoming function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-120" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-19T21:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-mx5j-cp8j-55g8/GHSA-mx5j-cp8j-55g8.json b/advisories/unreviewed/2024/04/GHSA-mx5j-cp8j-55g8/GHSA-mx5j-cp8j-55g8.json index 8737465c3f1..e73e5599522 100644 --- a/advisories/unreviewed/2024/04/GHSA-mx5j-cp8j-55g8/GHSA-mx5j-cp8j-55g8.json +++ b/advisories/unreviewed/2024/04/GHSA-mx5j-cp8j-55g8/GHSA-mx5j-cp8j-55g8.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mx5j-cp8j-55g8", - "modified": "2024-04-30T15:30:37Z", + "modified": "2024-07-03T18:37:41Z", "published": "2024-04-30T15:30:37Z", "aliases": [ "CVE-2024-33267" ], "details": "SQL Injection vulnerability in Hero hfheropayment v.1.2.5 and before allows an attacker to escalate privileges via the HfHeropaymentGatewayBackModuleFrontController::initContent() function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-30T15:15:52Z" diff --git a/advisories/unreviewed/2024/04/GHSA-mxr8-qj6j-f7gq/GHSA-mxr8-qj6j-f7gq.json b/advisories/unreviewed/2024/04/GHSA-mxr8-qj6j-f7gq/GHSA-mxr8-qj6j-f7gq.json index 927bd30a686..1cf2dddda80 100644 --- a/advisories/unreviewed/2024/04/GHSA-mxr8-qj6j-f7gq/GHSA-mxr8-qj6j-f7gq.json +++ b/advisories/unreviewed/2024/04/GHSA-mxr8-qj6j-f7gq/GHSA-mxr8-qj6j-f7gq.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mxr8-qj6j-f7gq", - "modified": "2024-04-26T03:30:29Z", + "modified": "2024-07-03T18:36:53Z", "published": "2024-04-26T03:30:29Z", "aliases": [ "CVE-2024-33668" ], "details": "An issue was discovered in Zammad before 6.3.0. The Zammad Upload Cache uses insecure, partially guessable FormIDs to identify content. An attacker could try to brute force them to upload malicious content to article drafts they have no access to.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-639" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-26T01:15:46Z" diff --git a/advisories/unreviewed/2024/04/GHSA-p2m3-5whj-8vxq/GHSA-p2m3-5whj-8vxq.json b/advisories/unreviewed/2024/04/GHSA-p2m3-5whj-8vxq/GHSA-p2m3-5whj-8vxq.json index e027ffa7286..ff468b7912c 100644 --- a/advisories/unreviewed/2024/04/GHSA-p2m3-5whj-8vxq/GHSA-p2m3-5whj-8vxq.json +++ b/advisories/unreviewed/2024/04/GHSA-p2m3-5whj-8vxq/GHSA-p2m3-5whj-8vxq.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-p2m3-5whj-8vxq", - "modified": "2024-04-29T21:30:34Z", + "modified": "2024-07-03T18:37:30Z", "published": "2024-04-29T21:30:34Z", "aliases": [ "CVE-2024-31801" ], "details": "Directory Traversal vulnerability in NEXSYS-ONE before v.Rev.15320 allows a remote attacker to obtain sensitive information via a crafted request.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-22" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-29T20:15:08Z" diff --git a/advisories/unreviewed/2024/04/GHSA-p49x-p8gv-6x6p/GHSA-p49x-p8gv-6x6p.json b/advisories/unreviewed/2024/04/GHSA-p49x-p8gv-6x6p/GHSA-p49x-p8gv-6x6p.json index 3a38f3489a1..32c23f98abc 100644 --- a/advisories/unreviewed/2024/04/GHSA-p49x-p8gv-6x6p/GHSA-p49x-p8gv-6x6p.json +++ b/advisories/unreviewed/2024/04/GHSA-p49x-p8gv-6x6p/GHSA-p49x-p8gv-6x6p.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-p49x-p8gv-6x6p", - "modified": "2024-04-29T21:30:35Z", + "modified": "2024-07-03T18:37:30Z", "published": "2024-04-29T21:30:35Z", "aliases": [ "CVE-2023-46566" ], "details": "Buffer Overflow vulnerability in msoulier tftpy commit 467017b844bf6e31745138a30e2509145b0c529c allows a remote attacker to cause a denial of service via the parse function in the TftpPacketFactory class.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-120" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-29T21:15:47Z" diff --git a/advisories/unreviewed/2024/04/GHSA-pgmp-wx9f-mqm3/GHSA-pgmp-wx9f-mqm3.json b/advisories/unreviewed/2024/04/GHSA-pgmp-wx9f-mqm3/GHSA-pgmp-wx9f-mqm3.json index 90eff190c45..f94cd016cdb 100644 --- a/advisories/unreviewed/2024/04/GHSA-pgmp-wx9f-mqm3/GHSA-pgmp-wx9f-mqm3.json +++ b/advisories/unreviewed/2024/04/GHSA-pgmp-wx9f-mqm3/GHSA-pgmp-wx9f-mqm3.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-pgmp-wx9f-mqm3", - "modified": "2024-04-29T18:30:46Z", + "modified": "2024-07-03T18:37:26Z", "published": "2024-04-29T18:30:46Z", "aliases": [ "CVE-2024-31823" ], "details": "An issue in Ecommerce-CodeIgniter-Bootstrap commit v. d22b54e8915f167a135046ceb857caaf8479c4da allows a remote attacker to execute arbitrary code via the removeSecondaryImage method of the Publish.php component.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-94" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-29T18:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-pp2f-6536-5xg8/GHSA-pp2f-6536-5xg8.json b/advisories/unreviewed/2024/04/GHSA-pp2f-6536-5xg8/GHSA-pp2f-6536-5xg8.json index 6054196d4c4..cad65ceaa88 100644 --- a/advisories/unreviewed/2024/04/GHSA-pp2f-6536-5xg8/GHSA-pp2f-6536-5xg8.json +++ b/advisories/unreviewed/2024/04/GHSA-pp2f-6536-5xg8/GHSA-pp2f-6536-5xg8.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-pp2f-6536-5xg8", - "modified": "2024-04-24T06:30:31Z", + "modified": "2024-07-03T18:36:45Z", "published": "2024-04-24T06:30:31Z", "aliases": [ "CVE-2023-7253" ], "details": "The Import WP WordPress plugin before 2.13.1 does not prevent users with the administrator role from pinging conducting SSRF attacks, which may be a problem in multisite configurations.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:N" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-24T05:15:46Z" diff --git a/advisories/unreviewed/2024/04/GHSA-pq98-px5v-5jjc/GHSA-pq98-px5v-5jjc.json b/advisories/unreviewed/2024/04/GHSA-pq98-px5v-5jjc/GHSA-pq98-px5v-5jjc.json index 3cb45864c7c..5c453455c4e 100644 --- a/advisories/unreviewed/2024/04/GHSA-pq98-px5v-5jjc/GHSA-pq98-px5v-5jjc.json +++ b/advisories/unreviewed/2024/04/GHSA-pq98-px5v-5jjc/GHSA-pq98-px5v-5jjc.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-862" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/04/GHSA-prcq-9p67-4w6h/GHSA-prcq-9p67-4w6h.json b/advisories/unreviewed/2024/04/GHSA-prcq-9p67-4w6h/GHSA-prcq-9p67-4w6h.json index 0d82123b8ab..851ca17a5c4 100644 --- a/advisories/unreviewed/2024/04/GHSA-prcq-9p67-4w6h/GHSA-prcq-9p67-4w6h.json +++ b/advisories/unreviewed/2024/04/GHSA-prcq-9p67-4w6h/GHSA-prcq-9p67-4w6h.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-prcq-9p67-4w6h", - "modified": "2024-04-28T12:30:28Z", + "modified": "2024-07-03T18:37:10Z", "published": "2024-04-28T12:30:28Z", "aliases": [ "CVE-2024-26927" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nASoC: SOF: Add some bounds checking to firmware data\n\nSmatch complains about \"head->full_size - head->header_size\" can\nunderflow. To some extent, we're always going to have to trust the\nfirmware a bit. However, it's easy enough to add a check for negatives,\nand let's add a upper bounds check as well.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -41,9 +44,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-120" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-28T12:15:21Z" diff --git a/advisories/unreviewed/2024/04/GHSA-pvm7-95mc-x6r3/GHSA-pvm7-95mc-x6r3.json b/advisories/unreviewed/2024/04/GHSA-pvm7-95mc-x6r3/GHSA-pvm7-95mc-x6r3.json index a1d019f7a8a..5d128153435 100644 --- a/advisories/unreviewed/2024/04/GHSA-pvm7-95mc-x6r3/GHSA-pvm7-95mc-x6r3.json +++ b/advisories/unreviewed/2024/04/GHSA-pvm7-95mc-x6r3/GHSA-pvm7-95mc-x6r3.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-pvm7-95mc-x6r3", - "modified": "2024-04-23T15:30:35Z", + "modified": "2024-07-03T18:36:43Z", "published": "2024-04-23T15:30:35Z", "aliases": [ "CVE-2024-33213" ], "details": "Tenda FH1206 V1.2.0.8(8155)_EN was discovered to contain a stack-based buffer overflow vulnerability via the mitInterface parameter in ip/goform/RouteStatic.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-121" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-23T15:15:50Z" diff --git a/advisories/unreviewed/2024/04/GHSA-pwg9-cppx-6xf2/GHSA-pwg9-cppx-6xf2.json b/advisories/unreviewed/2024/04/GHSA-pwg9-cppx-6xf2/GHSA-pwg9-cppx-6xf2.json index f14c7a377df..fb6dfad8c7c 100644 --- a/advisories/unreviewed/2024/04/GHSA-pwg9-cppx-6xf2/GHSA-pwg9-cppx-6xf2.json +++ b/advisories/unreviewed/2024/04/GHSA-pwg9-cppx-6xf2/GHSA-pwg9-cppx-6xf2.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-pwg9-cppx-6xf2", - "modified": "2024-04-22T15:30:41Z", + "modified": "2024-07-03T18:36:24Z", "published": "2024-04-22T15:30:41Z", "aliases": [ "CVE-2023-38290" ], "details": "Certain software builds for the BLU View 2 and Sharp Rouvo V Android devices contain a vulnerable pre-installed app with a package name of com.evenwell.fqc (versionCode='9020801', versionName='9.0208.01' ; versionCode='9020913', versionName='9.0209.13' ; versionCode='9021203', versionName='9.0212.03') that allows local third-party apps to execute arbitrary shell commands in its context (system user) due to inadequate access control. No permissions or special privileges are necessary to exploit the vulnerability in the com.evenwell.fqc app. No user interaction is required beyond installing and running a third-party app. The vulnerability allows local apps to access sensitive functionality that is generally restricted to pre-installed apps, such as programmatically performing the following actions: granting arbitrary permissions (which can be used to obtain sensitive user data), installing arbitrary apps, video recording the screen, wiping the device (removing the user's apps and data), injecting arbitrary input events, calling emergency phone numbers, disabling apps, accessing notifications, and much more. The software build fingerprints for each confirmed vulnerable device are as follows: BLU View 2 (BLU/B131DL/B130DL:11/RP1A.200720.011/1672046950:user/release-keys, BLU/B131DL/B130DL:11/RP1A.200720.011/1663816427:user/release-keys, BLU/B131DL/B130DL:11/RP1A.200720.011/1656476696:user/release-keys, BLU/B131DL/B130DL:11/RP1A.200720.011/1647856638:user/release-keys) and Sharp Rouvo V (SHARP/VZW_STTM21VAPP/STTM21VAPP:12/SP1A.210812.016/1KN0_0_460:user/release-keys and SHARP/VZW_STTM21VAPP/STTM21VAPP:12/SP1A.210812.016/1KN0_0_530:user/release-keys). This malicious app starts an exported activity named com.evenwell.fqc/.activity.ClickTest, crashes the com.evenwell.fqc app by sending an empty Intent (i.e., having not extras) to the com.evenwell.fqc/.FQCBroadcastReceiver receiver component, and then it sends command arbitrary shell commands to the com.evenwell.fqc/.FQCService service component which executes them with \"system\" privileges.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-1263" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T15:15:46Z" diff --git a/advisories/unreviewed/2024/04/GHSA-px9h-hqw8-r2j9/GHSA-px9h-hqw8-r2j9.json b/advisories/unreviewed/2024/04/GHSA-px9h-hqw8-r2j9/GHSA-px9h-hqw8-r2j9.json index 29dc389586c..49e1fcf3a70 100644 --- a/advisories/unreviewed/2024/04/GHSA-px9h-hqw8-r2j9/GHSA-px9h-hqw8-r2j9.json +++ b/advisories/unreviewed/2024/04/GHSA-px9h-hqw8-r2j9/GHSA-px9h-hqw8-r2j9.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-px9h-hqw8-r2j9", - "modified": "2024-04-23T09:30:46Z", + "modified": "2024-07-03T18:36:39Z", "published": "2024-04-23T09:30:46Z", "aliases": [ "CVE-2023-48184" ], "details": "QuickJS before 7414e5f has a quickjs.h JS_FreeValueRT use-after-free because of incorrect garbage collection of async functions with closures.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:H/PR:H/UI:N/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-416" ], - "severity": null, + "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-23T07:15:42Z" diff --git a/advisories/unreviewed/2024/04/GHSA-qc57-8fc5-wvrq/GHSA-qc57-8fc5-wvrq.json b/advisories/unreviewed/2024/04/GHSA-qc57-8fc5-wvrq/GHSA-qc57-8fc5-wvrq.json index dd9e6f1cc5b..9f225f77969 100644 --- a/advisories/unreviewed/2024/04/GHSA-qc57-8fc5-wvrq/GHSA-qc57-8fc5-wvrq.json +++ b/advisories/unreviewed/2024/04/GHSA-qc57-8fc5-wvrq/GHSA-qc57-8fc5-wvrq.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-qc57-8fc5-wvrq", - "modified": "2024-04-22T12:30:33Z", + "modified": "2024-07-03T18:36:21Z", "published": "2024-04-22T12:30:33Z", "aliases": [ "CVE-2024-22811" ], "details": "An issue in Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to cause a Denial of Service (DoS) by disrupting the communication between the PathPilot controller and the CNC router via overwriting the Hostmot2 configuration cookie in the device memory.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-284" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T12:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-qrpq-f2gq-8mj5/GHSA-qrpq-f2gq-8mj5.json b/advisories/unreviewed/2024/04/GHSA-qrpq-f2gq-8mj5/GHSA-qrpq-f2gq-8mj5.json index 19bcadb964b..f6de168ac25 100644 --- a/advisories/unreviewed/2024/04/GHSA-qrpq-f2gq-8mj5/GHSA-qrpq-f2gq-8mj5.json +++ b/advisories/unreviewed/2024/04/GHSA-qrpq-f2gq-8mj5/GHSA-qrpq-f2gq-8mj5.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-qrpq-f2gq-8mj5", - "modified": "2024-04-22T15:30:41Z", + "modified": "2024-07-03T18:36:24Z", "published": "2024-04-22T15:30:41Z", "aliases": [ "CVE-2022-34561" ], "details": "A cross-site scripting (XSS) vulnerability in PHPFox v4.8.9 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the video description parameter.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T15:15:46Z" diff --git a/advisories/unreviewed/2024/04/GHSA-qx24-6mr9-qph4/GHSA-qx24-6mr9-qph4.json b/advisories/unreviewed/2024/04/GHSA-qx24-6mr9-qph4/GHSA-qx24-6mr9-qph4.json index d8bfee5d153..06b2f7bf682 100644 --- a/advisories/unreviewed/2024/04/GHSA-qx24-6mr9-qph4/GHSA-qx24-6mr9-qph4.json +++ b/advisories/unreviewed/2024/04/GHSA-qx24-6mr9-qph4/GHSA-qx24-6mr9-qph4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-qx24-6mr9-qph4", - "modified": "2024-04-23T00:30:44Z", + "modified": "2024-07-03T18:36:35Z", "published": "2024-04-23T00:30:44Z", "aliases": [ "CVE-2024-31036" ], "details": "A heap-buffer-overflow vulnerability in the read_byte function in NanoMQ v.0.21.7 allows attackers to cause a denial of service via transmission of crafted hexstreams.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-122" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T22:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-qx35-w84c-98jc/GHSA-qx35-w84c-98jc.json b/advisories/unreviewed/2024/04/GHSA-qx35-w84c-98jc/GHSA-qx35-w84c-98jc.json index 2dac35fe8a1..50f30788771 100644 --- a/advisories/unreviewed/2024/04/GHSA-qx35-w84c-98jc/GHSA-qx35-w84c-98jc.json +++ b/advisories/unreviewed/2024/04/GHSA-qx35-w84c-98jc/GHSA-qx35-w84c-98jc.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-qx35-w84c-98jc", - "modified": "2024-04-26T06:30:35Z", + "modified": "2024-07-03T18:36:59Z", "published": "2024-04-26T06:30:35Z", "aliases": [ "CVE-2024-2837" ], "details": "The WP Chat App WordPress plugin before 3.6.4 does not sanitise and escape some of its settings, which could allow high privilege users such as admins to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-26T05:15:50Z" diff --git a/advisories/unreviewed/2024/04/GHSA-r25h-rx28-86pw/GHSA-r25h-rx28-86pw.json b/advisories/unreviewed/2024/04/GHSA-r25h-rx28-86pw/GHSA-r25h-rx28-86pw.json index 66a45fc9994..75502964b40 100644 --- a/advisories/unreviewed/2024/04/GHSA-r25h-rx28-86pw/GHSA-r25h-rx28-86pw.json +++ b/advisories/unreviewed/2024/04/GHSA-r25h-rx28-86pw/GHSA-r25h-rx28-86pw.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-r25h-rx28-86pw", - "modified": "2024-04-23T18:30:39Z", + "modified": "2024-07-03T18:36:44Z", "published": "2024-04-23T18:30:39Z", "aliases": [ "CVE-2024-32258" ], "details": "The network server of fceux 2.7.0 has a path traversal vulnerability, allowing attackers to overwrite any files on the server without authentication by fake ROM.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-22" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-23T16:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-r3p3-9v4p-p53j/GHSA-r3p3-9v4p-p53j.json b/advisories/unreviewed/2024/04/GHSA-r3p3-9v4p-p53j/GHSA-r3p3-9v4p-p53j.json index d48bbf53b2a..ae86d9fed6e 100644 --- a/advisories/unreviewed/2024/04/GHSA-r3p3-9v4p-p53j/GHSA-r3p3-9v4p-p53j.json +++ b/advisories/unreviewed/2024/04/GHSA-r3p3-9v4p-p53j/GHSA-r3p3-9v4p-p53j.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-r3p3-9v4p-p53j", - "modified": "2024-04-22T18:30:47Z", + "modified": "2024-07-03T18:36:31Z", "published": "2024-04-22T18:30:47Z", "aliases": [ "CVE-2022-46897" ], "details": "An issue was discovered in Insyde InsydeH2O with kernel 5.0 through 5.5. The CapsuleIFWUSmm driver does not check the return value from a method or function. This can prevent it from detecting unexpected states and conditions.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:N/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-252" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T18:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-r584-j372-49f9/GHSA-r584-j372-49f9.json b/advisories/unreviewed/2024/04/GHSA-r584-j372-49f9/GHSA-r584-j372-49f9.json index 893a0655737..7a20853997d 100644 --- a/advisories/unreviewed/2024/04/GHSA-r584-j372-49f9/GHSA-r584-j372-49f9.json +++ b/advisories/unreviewed/2024/04/GHSA-r584-j372-49f9/GHSA-r584-j372-49f9.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-r584-j372-49f9", - "modified": "2024-04-26T18:33:42Z", + "modified": "2024-07-03T18:37:05Z", "published": "2024-04-26T18:33:42Z", "aliases": [ "CVE-2024-33342" ], "details": "D-Link DIR-822+ V1.0.5 was found to contain a command injection in SetPlcNetworkpwd function of prog.cgi, which allows remote attackers to execute arbitrary commands via shell.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-77" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-26T18:15:46Z" diff --git a/advisories/unreviewed/2024/04/GHSA-r74q-h5x3-cq55/GHSA-r74q-h5x3-cq55.json b/advisories/unreviewed/2024/04/GHSA-r74q-h5x3-cq55/GHSA-r74q-h5x3-cq55.json index 8eca146bc58..a91dad49383 100644 --- a/advisories/unreviewed/2024/04/GHSA-r74q-h5x3-cq55/GHSA-r74q-h5x3-cq55.json +++ b/advisories/unreviewed/2024/04/GHSA-r74q-h5x3-cq55/GHSA-r74q-h5x3-cq55.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-r74q-h5x3-cq55", - "modified": "2024-04-30T18:30:33Z", + "modified": "2024-07-03T18:37:43Z", "published": "2024-04-30T18:30:33Z", "aliases": [ "CVE-2024-29320" ], "details": "Wallos before 1.15.3 is vulnerable to SQL Injection via the category and payment parameters to /subscriptions/get.php.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-30T16:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-r894-pxpx-j3m6/GHSA-r894-pxpx-j3m6.json b/advisories/unreviewed/2024/04/GHSA-r894-pxpx-j3m6/GHSA-r894-pxpx-j3m6.json index f037f86d838..930918ac59b 100644 --- a/advisories/unreviewed/2024/04/GHSA-r894-pxpx-j3m6/GHSA-r894-pxpx-j3m6.json +++ b/advisories/unreviewed/2024/04/GHSA-r894-pxpx-j3m6/GHSA-r894-pxpx-j3m6.json @@ -32,7 +32,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-434" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/04/GHSA-r92g-h2wj-6rv5/GHSA-r92g-h2wj-6rv5.json b/advisories/unreviewed/2024/04/GHSA-r92g-h2wj-6rv5/GHSA-r92g-h2wj-6rv5.json index 5e0a54a8d8f..ccc9fb4939f 100644 --- a/advisories/unreviewed/2024/04/GHSA-r92g-h2wj-6rv5/GHSA-r92g-h2wj-6rv5.json +++ b/advisories/unreviewed/2024/04/GHSA-r92g-h2wj-6rv5/GHSA-r92g-h2wj-6rv5.json @@ -40,7 +40,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-321" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/04/GHSA-rh2q-xgw7-5r5r/GHSA-rh2q-xgw7-5r5r.json b/advisories/unreviewed/2024/04/GHSA-rh2q-xgw7-5r5r/GHSA-rh2q-xgw7-5r5r.json index 7dc73302ae8..c4188cf5807 100644 --- a/advisories/unreviewed/2024/04/GHSA-rh2q-xgw7-5r5r/GHSA-rh2q-xgw7-5r5r.json +++ b/advisories/unreviewed/2024/04/GHSA-rh2q-xgw7-5r5r/GHSA-rh2q-xgw7-5r5r.json @@ -25,7 +25,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2024/04/GHSA-v2jq-jcj2-vg39/GHSA-v2jq-jcj2-vg39.json b/advisories/unreviewed/2024/04/GHSA-v2jq-jcj2-vg39/GHSA-v2jq-jcj2-vg39.json index d43072f1e99..a8e0febe1e0 100644 --- a/advisories/unreviewed/2024/04/GHSA-v2jq-jcj2-vg39/GHSA-v2jq-jcj2-vg39.json +++ b/advisories/unreviewed/2024/04/GHSA-v2jq-jcj2-vg39/GHSA-v2jq-jcj2-vg39.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-v2jq-jcj2-vg39", - "modified": "2024-04-24T06:30:31Z", + "modified": "2024-07-03T18:36:45Z", "published": "2024-04-24T06:30:31Z", "aliases": [ "CVE-2024-1743" ], "details": "The WooCommerce Customers Manager WordPress plugin before 29.8 does not sanitise and escape various parameters before outputting them back in pages and attributes, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-24T05:15:46Z" diff --git a/advisories/unreviewed/2024/04/GHSA-v6cp-2p94-jrp7/GHSA-v6cp-2p94-jrp7.json b/advisories/unreviewed/2024/04/GHSA-v6cp-2p94-jrp7/GHSA-v6cp-2p94-jrp7.json index b4d73cb0db0..3880b61c8d1 100644 --- a/advisories/unreviewed/2024/04/GHSA-v6cp-2p94-jrp7/GHSA-v6cp-2p94-jrp7.json +++ b/advisories/unreviewed/2024/04/GHSA-v6cp-2p94-jrp7/GHSA-v6cp-2p94-jrp7.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-v6cp-2p94-jrp7", - "modified": "2024-04-26T15:30:34Z", + "modified": "2024-07-03T18:37:04Z", "published": "2024-04-26T15:30:34Z", "aliases": [ "CVE-2024-33259" ], "details": "Jerryscript commit cefd391 was discovered to contain a segmentation violation via the component scanner_seek at jerry-core/parser/js/js-scanner-util.c.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-400" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-26T15:15:49Z" diff --git a/advisories/unreviewed/2024/04/GHSA-v78q-6prw-gcfj/GHSA-v78q-6prw-gcfj.json b/advisories/unreviewed/2024/04/GHSA-v78q-6prw-gcfj/GHSA-v78q-6prw-gcfj.json index e80de1f5594..82dca844ecf 100644 --- a/advisories/unreviewed/2024/04/GHSA-v78q-6prw-gcfj/GHSA-v78q-6prw-gcfj.json +++ b/advisories/unreviewed/2024/04/GHSA-v78q-6prw-gcfj/GHSA-v78q-6prw-gcfj.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-v78q-6prw-gcfj", - "modified": "2024-05-02T15:30:32Z", + "modified": "2024-07-03T18:36:25Z", "published": "2024-04-22T15:30:41Z", "aliases": [ "CVE-2022-35503" ], "details": "Improper verification of a user input in Open Source MANO v7-v12 allows an authenticated attacker to execute arbitrary code within the LCM module container via a Virtual Network Function (VNF) descriptor. An attacker may be able execute code to change the normal execution of the OSM components, retrieve confidential information, or gain access other parts of a Telco Operator infrastructure other than OSM itself.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-286" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T15:15:46Z" diff --git a/advisories/unreviewed/2024/04/GHSA-v8mx-hp8h-89vc/GHSA-v8mx-hp8h-89vc.json b/advisories/unreviewed/2024/04/GHSA-v8mx-hp8h-89vc/GHSA-v8mx-hp8h-89vc.json index bfec637bf10..134d9692692 100644 --- a/advisories/unreviewed/2024/04/GHSA-v8mx-hp8h-89vc/GHSA-v8mx-hp8h-89vc.json +++ b/advisories/unreviewed/2024/04/GHSA-v8mx-hp8h-89vc/GHSA-v8mx-hp8h-89vc.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-v8mx-hp8h-89vc", - "modified": "2024-05-06T00:30:49Z", + "modified": "2024-07-03T18:37:15Z", "published": "2024-04-29T06:30:42Z", "aliases": [ "CVE-2023-52723" ], "details": "In KDE libksieve before 23.03.80, kmanagesieve/session.cpp places a cleartext password in server logs because a username variable is accidentally given a password value.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N" + } ], "affected": [ @@ -41,9 +44,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-798" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-29T06:15:06Z" diff --git a/advisories/unreviewed/2024/04/GHSA-vgv5-6j9r-qr9f/GHSA-vgv5-6j9r-qr9f.json b/advisories/unreviewed/2024/04/GHSA-vgv5-6j9r-qr9f/GHSA-vgv5-6j9r-qr9f.json index 625e253071e..5216a6df2ca 100644 --- a/advisories/unreviewed/2024/04/GHSA-vgv5-6j9r-qr9f/GHSA-vgv5-6j9r-qr9f.json +++ b/advisories/unreviewed/2024/04/GHSA-vgv5-6j9r-qr9f/GHSA-vgv5-6j9r-qr9f.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-vgv5-6j9r-qr9f", - "modified": "2024-04-28T15:30:30Z", + "modified": "2024-07-03T18:37:11Z", "published": "2024-04-28T15:30:30Z", "aliases": [ "CVE-2022-48651" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nipvlan: Fix out-of-bound bugs caused by unset skb->mac_header\n\nIf an AF_PACKET socket is used to send packets through ipvlan and the\ndefault xmit function of the AF_PACKET socket is changed from\ndev_queue_xmit() to packet_direct_xmit() via setsockopt() with the option\nname of PACKET_QDISC_BYPASS, the skb->mac_header may not be reset and\nremains as the initial value of 65535, this may trigger slab-out-of-bounds\nbugs as following:\n\n=================================================================\nUG: KASAN: slab-out-of-bounds in ipvlan_xmit_mode_l2+0xdb/0x330 [ipvlan]\nPU: 2 PID: 1768 Comm: raw_send Kdump: loaded Not tainted 6.0.0-rc4+ #6\nardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS 1.14.0-1.fc33\nall Trace:\nprint_address_description.constprop.0+0x1d/0x160\nprint_report.cold+0x4f/0x112\nkasan_report+0xa3/0x130\nipvlan_xmit_mode_l2+0xdb/0x330 [ipvlan]\nipvlan_start_xmit+0x29/0xa0 [ipvlan]\n__dev_direct_xmit+0x2e2/0x380\npacket_direct_xmit+0x22/0x60\npacket_snd+0x7c9/0xc40\nsock_sendmsg+0x9a/0xa0\n__sys_sendto+0x18a/0x230\n__x64_sys_sendto+0x74/0x90\ndo_syscall_64+0x3b/0x90\nentry_SYSCALL_64_after_hwframe+0x63/0xcd\n\nThe root cause is:\n 1. packet_snd() only reset skb->mac_header when sock->type is SOCK_RAW\n and skb->protocol is not specified as in packet_parse_headers()\n\n 2. packet_direct_xmit() doesn't reset skb->mac_header as dev_queue_xmit()\n\nIn this case, skb->mac_header is 65535 when ipvlan_xmit_mode_l2() is\ncalled. So when ipvlan_xmit_mode_l2() gets mac header with eth_hdr() which\nuse \"skb->head + skb->mac_header\", out-of-bound access occurs.\n\nThis patch replaces eth_hdr() with skb_eth_hdr() in ipvlan_xmit_mode_l2()\nand reset mac header in multicast to solve this out-of-bound bug.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-125" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-28T13:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-vmg3-jxcp-7rqw/GHSA-vmg3-jxcp-7rqw.json b/advisories/unreviewed/2024/04/GHSA-vmg3-jxcp-7rqw/GHSA-vmg3-jxcp-7rqw.json index 3d721b0a37c..202296231e4 100644 --- a/advisories/unreviewed/2024/04/GHSA-vmg3-jxcp-7rqw/GHSA-vmg3-jxcp-7rqw.json +++ b/advisories/unreviewed/2024/04/GHSA-vmg3-jxcp-7rqw/GHSA-vmg3-jxcp-7rqw.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-vmg3-jxcp-7rqw", - "modified": "2024-04-19T21:31:08Z", + "modified": "2024-07-03T18:36:15Z", "published": "2024-04-19T21:31:08Z", "aliases": [ "CVE-2024-31584" ], "details": "Pytorch before v2.2.0 has an Out-of-bounds Read vulnerability via the component torch/csrc/jit/mobile/flatbuffer_loader.cpp.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-125" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-19T21:15:08Z" diff --git a/advisories/unreviewed/2024/04/GHSA-vpgr-vqw9-62cw/GHSA-vpgr-vqw9-62cw.json b/advisories/unreviewed/2024/04/GHSA-vpgr-vqw9-62cw/GHSA-vpgr-vqw9-62cw.json index a35513903ab..8b94cee11ec 100644 --- a/advisories/unreviewed/2024/04/GHSA-vpgr-vqw9-62cw/GHSA-vpgr-vqw9-62cw.json +++ b/advisories/unreviewed/2024/04/GHSA-vpgr-vqw9-62cw/GHSA-vpgr-vqw9-62cw.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-vpgr-vqw9-62cw", - "modified": "2024-04-26T06:30:34Z", + "modified": "2024-07-03T18:36:55Z", "published": "2024-04-26T06:30:34Z", "aliases": [ "CVE-2024-32404" ], "details": "Server-Side Template Injection (SSTI) vulnerability in inducer relate before v.2024.1, allows remote attackers to execute arbitrary code via a crafted payload to the Markup Sandbox feature.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:L/A:L" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-94" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-26T04:15:09Z" diff --git a/advisories/unreviewed/2024/04/GHSA-vpvj-x83r-f4rf/GHSA-vpvj-x83r-f4rf.json b/advisories/unreviewed/2024/04/GHSA-vpvj-x83r-f4rf/GHSA-vpvj-x83r-f4rf.json index 8947c55bf6f..37dc04c2a5b 100644 --- a/advisories/unreviewed/2024/04/GHSA-vpvj-x83r-f4rf/GHSA-vpvj-x83r-f4rf.json +++ b/advisories/unreviewed/2024/04/GHSA-vpvj-x83r-f4rf/GHSA-vpvj-x83r-f4rf.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-vpvj-x83r-f4rf", - "modified": "2024-04-19T18:31:15Z", + "modified": "2024-07-03T18:36:14Z", "published": "2024-04-19T18:31:15Z", "aliases": [ "CVE-2024-31547" ], "details": "Computer Laboratory Management System v1.0 is vulnerable to SQL Injection via the \"id\" parameter of /admin/item/view_item.php.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-19T18:15:08Z" diff --git a/advisories/unreviewed/2024/04/GHSA-vq5q-96mp-22gj/GHSA-vq5q-96mp-22gj.json b/advisories/unreviewed/2024/04/GHSA-vq5q-96mp-22gj/GHSA-vq5q-96mp-22gj.json index 05e7f7eaeb6..aaff3684056 100644 --- a/advisories/unreviewed/2024/04/GHSA-vq5q-96mp-22gj/GHSA-vq5q-96mp-22gj.json +++ b/advisories/unreviewed/2024/04/GHSA-vq5q-96mp-22gj/GHSA-vq5q-96mp-22gj.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-vq5q-96mp-22gj", - "modified": "2024-04-22T12:30:33Z", + "modified": "2024-07-03T18:36:19Z", "published": "2024-04-22T12:30:33Z", "aliases": [ "CVE-2024-22807" ], "details": "An issue in Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to erase a critical sector of the flash memory, causing the machine to lose network connectivity and suffer from firmware corruption.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-284" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T12:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-vvgf-3f7q-3cx6/GHSA-vvgf-3f7q-3cx6.json b/advisories/unreviewed/2024/04/GHSA-vvgf-3f7q-3cx6/GHSA-vvgf-3f7q-3cx6.json index c6683cb9359..4d8f418d5fc 100644 --- a/advisories/unreviewed/2024/04/GHSA-vvgf-3f7q-3cx6/GHSA-vvgf-3f7q-3cx6.json +++ b/advisories/unreviewed/2024/04/GHSA-vvgf-3f7q-3cx6/GHSA-vvgf-3f7q-3cx6.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-vvgf-3f7q-3cx6", - "modified": "2024-04-30T00:30:34Z", + "modified": "2024-07-03T18:37:31Z", "published": "2024-04-30T00:30:34Z", "aliases": [ "CVE-2023-52725" ], "details": "Open Networking Foundation SD-RAN ONOS onos-kpimon 0.4.7 allows blocking of the errCh channel within the Start function of the monitoring package.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-787" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-30T00:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-vvpg-5wfc-53jj/GHSA-vvpg-5wfc-53jj.json b/advisories/unreviewed/2024/04/GHSA-vvpg-5wfc-53jj/GHSA-vvpg-5wfc-53jj.json index e47d3920271..6bfdf79cdb3 100644 --- a/advisories/unreviewed/2024/04/GHSA-vvpg-5wfc-53jj/GHSA-vvpg-5wfc-53jj.json +++ b/advisories/unreviewed/2024/04/GHSA-vvpg-5wfc-53jj/GHSA-vvpg-5wfc-53jj.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-vvpg-5wfc-53jj", - "modified": "2024-04-24T06:30:31Z", + "modified": "2024-07-03T18:36:46Z", "published": "2024-04-24T06:30:31Z", "aliases": [ "CVE-2024-33531" ], "details": "cdbattags lua-resty-jwt 0.2.3 allows attackers to bypass all JWT-parsing signature checks by crafting a JWT with an enc header with the value A256GCM.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-290" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-24T06:15:14Z" diff --git a/advisories/unreviewed/2024/04/GHSA-w34f-r3qw-xm2v/GHSA-w34f-r3qw-xm2v.json b/advisories/unreviewed/2024/04/GHSA-w34f-r3qw-xm2v/GHSA-w34f-r3qw-xm2v.json index 0003fcee31b..2b499eebe3f 100644 --- a/advisories/unreviewed/2024/04/GHSA-w34f-r3qw-xm2v/GHSA-w34f-r3qw-xm2v.json +++ b/advisories/unreviewed/2024/04/GHSA-w34f-r3qw-xm2v/GHSA-w34f-r3qw-xm2v.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-w34f-r3qw-xm2v", - "modified": "2024-04-30T18:30:33Z", + "modified": "2024-07-03T18:37:46Z", "published": "2024-04-30T18:30:33Z", "aliases": [ "CVE-2024-33101" ], "details": "A stored cross-site scripting (XSS) vulnerability in the component /action/anti.php of ThinkSAAS v3.7.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the word parameter.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-30T18:15:19Z" diff --git a/advisories/unreviewed/2024/04/GHSA-w3hf-jwqp-cf97/GHSA-w3hf-jwqp-cf97.json b/advisories/unreviewed/2024/04/GHSA-w3hf-jwqp-cf97/GHSA-w3hf-jwqp-cf97.json index 73b04a364d7..fc6f5419e1e 100644 --- a/advisories/unreviewed/2024/04/GHSA-w3hf-jwqp-cf97/GHSA-w3hf-jwqp-cf97.json +++ b/advisories/unreviewed/2024/04/GHSA-w3hf-jwqp-cf97/GHSA-w3hf-jwqp-cf97.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-w3hf-jwqp-cf97", - "modified": "2024-04-30T21:30:32Z", + "modified": "2024-07-03T18:37:54Z", "published": "2024-04-30T21:30:32Z", "aliases": [ "CVE-2024-29384" ], "details": "An issue in CSS Exfil Protection v.1.1.0 allows a remote attacker to obtain sensitive information via the content.js and parseCSSRules functions.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-200" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-30T20:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-w4fx-77wp-mx4j/GHSA-w4fx-77wp-mx4j.json b/advisories/unreviewed/2024/04/GHSA-w4fx-77wp-mx4j/GHSA-w4fx-77wp-mx4j.json index d0953fcfbd5..e0d5952fd10 100644 --- a/advisories/unreviewed/2024/04/GHSA-w4fx-77wp-mx4j/GHSA-w4fx-77wp-mx4j.json +++ b/advisories/unreviewed/2024/04/GHSA-w4fx-77wp-mx4j/GHSA-w4fx-77wp-mx4j.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-w4fx-77wp-mx4j", - "modified": "2024-04-22T21:31:01Z", + "modified": "2024-07-03T18:36:31Z", "published": "2024-04-22T21:31:01Z", "aliases": [ "CVE-2024-32238" ], "details": "H3C ER8300G2-X is vulnerable to Incorrect Access Control. The password for the router's management system can be accessed via the management system page login interface.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-522" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T20:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-w6rp-qpf9-cggq/GHSA-w6rp-qpf9-cggq.json b/advisories/unreviewed/2024/04/GHSA-w6rp-qpf9-cggq/GHSA-w6rp-qpf9-cggq.json index 44d0f8ddfdd..a6b92ebad6c 100644 --- a/advisories/unreviewed/2024/04/GHSA-w6rp-qpf9-cggq/GHSA-w6rp-qpf9-cggq.json +++ b/advisories/unreviewed/2024/04/GHSA-w6rp-qpf9-cggq/GHSA-w6rp-qpf9-cggq.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-w6rp-qpf9-cggq", - "modified": "2024-04-26T06:30:35Z", + "modified": "2024-07-03T18:37:02Z", "published": "2024-04-26T06:30:35Z", "aliases": [ "CVE-2024-3060" ], "details": "The ENL Newsletter WordPress plugin through 1.0.1 does not sanitize and escape a parameter before using it in a SQL statement, allowing admin+ to perform SQL injection attacks", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:H/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-26T05:15:50Z" diff --git a/advisories/unreviewed/2024/04/GHSA-whgw-qcmx-gp47/GHSA-whgw-qcmx-gp47.json b/advisories/unreviewed/2024/04/GHSA-whgw-qcmx-gp47/GHSA-whgw-qcmx-gp47.json index 8de15320903..c0b8c4d2014 100644 --- a/advisories/unreviewed/2024/04/GHSA-whgw-qcmx-gp47/GHSA-whgw-qcmx-gp47.json +++ b/advisories/unreviewed/2024/04/GHSA-whgw-qcmx-gp47/GHSA-whgw-qcmx-gp47.json @@ -33,7 +33,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-416" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2024/04/GHSA-ww39-r94v-qc83/GHSA-ww39-r94v-qc83.json b/advisories/unreviewed/2024/04/GHSA-ww39-r94v-qc83/GHSA-ww39-r94v-qc83.json index c855b99dae2..a71463b2c07 100644 --- a/advisories/unreviewed/2024/04/GHSA-ww39-r94v-qc83/GHSA-ww39-r94v-qc83.json +++ b/advisories/unreviewed/2024/04/GHSA-ww39-r94v-qc83/GHSA-ww39-r94v-qc83.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-ww39-r94v-qc83", - "modified": "2024-04-29T21:30:36Z", + "modified": "2024-07-03T18:37:30Z", "published": "2024-04-29T21:30:36Z", "aliases": [ "CVE-2024-28294" ], "details": "Limbas up to v5.2.14 was discovered to contain a SQL injection vulnerability via the ftid parameter.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-29T21:15:47Z" diff --git a/advisories/unreviewed/2024/04/GHSA-x3cc-r2hp-r6x7/GHSA-x3cc-r2hp-r6x7.json b/advisories/unreviewed/2024/04/GHSA-x3cc-r2hp-r6x7/GHSA-x3cc-r2hp-r6x7.json index 37df27199bd..7ee5f8dbaf5 100644 --- a/advisories/unreviewed/2024/04/GHSA-x3cc-r2hp-r6x7/GHSA-x3cc-r2hp-r6x7.json +++ b/advisories/unreviewed/2024/04/GHSA-x3cc-r2hp-r6x7/GHSA-x3cc-r2hp-r6x7.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-x3cc-r2hp-r6x7", - "modified": "2024-04-26T06:30:35Z", + "modified": "2024-07-03T18:37:00Z", "published": "2024-04-26T06:30:35Z", "aliases": [ "CVE-2024-2908" ], "details": "The Call Now Button WordPress plugin before 1.4.7 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-26T05:15:50Z" diff --git a/advisories/unreviewed/2024/04/GHSA-x54g-mx9q-vc6g/GHSA-x54g-mx9q-vc6g.json b/advisories/unreviewed/2024/04/GHSA-x54g-mx9q-vc6g/GHSA-x54g-mx9q-vc6g.json index 880c48a9dc1..f192dcaaa3b 100644 --- a/advisories/unreviewed/2024/04/GHSA-x54g-mx9q-vc6g/GHSA-x54g-mx9q-vc6g.json +++ b/advisories/unreviewed/2024/04/GHSA-x54g-mx9q-vc6g/GHSA-x54g-mx9q-vc6g.json @@ -25,7 +25,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2024/04/GHSA-x6r5-8xcj-pv7f/GHSA-x6r5-8xcj-pv7f.json b/advisories/unreviewed/2024/04/GHSA-x6r5-8xcj-pv7f/GHSA-x6r5-8xcj-pv7f.json index 77f5ba85510..e41d44bc8b1 100644 --- a/advisories/unreviewed/2024/04/GHSA-x6r5-8xcj-pv7f/GHSA-x6r5-8xcj-pv7f.json +++ b/advisories/unreviewed/2024/04/GHSA-x6r5-8xcj-pv7f/GHSA-x6r5-8xcj-pv7f.json @@ -48,7 +48,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-119" + "CWE-119", + "CWE-125" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/04/GHSA-x7wx-mcvx-6wwv/GHSA-x7wx-mcvx-6wwv.json b/advisories/unreviewed/2024/04/GHSA-x7wx-mcvx-6wwv/GHSA-x7wx-mcvx-6wwv.json index 74070e9cd9e..163b3218b7f 100644 --- a/advisories/unreviewed/2024/04/GHSA-x7wx-mcvx-6wwv/GHSA-x7wx-mcvx-6wwv.json +++ b/advisories/unreviewed/2024/04/GHSA-x7wx-mcvx-6wwv/GHSA-x7wx-mcvx-6wwv.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-x7wx-mcvx-6wwv", - "modified": "2024-04-19T21:31:08Z", + "modified": "2024-07-03T18:36:15Z", "published": "2024-04-19T21:31:08Z", "aliases": [ "CVE-2024-32392" ], "details": "Cross Site Scripting vulnerability in CmSimple v.5.15 allows a remote attacker to execute arbitrary code via the functions.php component.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:H/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-19T21:15:08Z" diff --git a/advisories/unreviewed/2024/04/GHSA-x86q-9jwc-62h8/GHSA-x86q-9jwc-62h8.json b/advisories/unreviewed/2024/04/GHSA-x86q-9jwc-62h8/GHSA-x86q-9jwc-62h8.json index d63f050bc88..73bd3f5135d 100644 --- a/advisories/unreviewed/2024/04/GHSA-x86q-9jwc-62h8/GHSA-x86q-9jwc-62h8.json +++ b/advisories/unreviewed/2024/04/GHSA-x86q-9jwc-62h8/GHSA-x86q-9jwc-62h8.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-x86q-9jwc-62h8", - "modified": "2024-04-22T15:30:41Z", + "modified": "2024-07-03T18:36:27Z", "published": "2024-04-22T15:30:41Z", "aliases": [ "CVE-2023-38293" ], "details": "Certain software builds for the Nokia C200 and Nokia C100 Android devices contain a vulnerable, pre-installed app with a package name of com.tracfone.tfstatus (versionCode='31', versionName='12') that allows local third-party apps to execute arbitrary AT commands in its context (radio user) via AT command injection due to inadequate access control and inadequate input filtering. No permissions or special privileges are necessary to exploit the vulnerability in the com.tracfone.tfstatus app. No user interaction is required beyond installing and running a third-party app. The software build fingerprints for each confirmed vulnerable device are as follows: Nokia C200 (Nokia/Drake_02US/DRK:12/SP1A.210812.016/02US_1_080:user/release-keys and Nokia/Drake_02US/DRK:12/SP1A.210812.016/02US_1_040:user/release-keys) and Nokia C100 (Nokia/DrakeLite_02US/DKT:12/SP1A.210812.016/02US_1_270:user/release-keys, Nokia/DrakeLite_02US/DKT:12/SP1A.210812.016/02US_1_190:user/release-keys, Nokia/DrakeLite_02US/DKT:12/SP1A.210812.016/02US_1_130:user/release-keys, Nokia/DrakeLite_02US/DKT:12/SP1A.210812.016/02US_1_110:user/release-keys, Nokia/DrakeLite_02US/DKT:12/SP1A.210812.016/02US_1_080:user/release-keys, and Nokia/DrakeLite_02US/DKT:12/SP1A.210812.016/02US_1_050:user/release-keys). This malicious app sends a broadcast Intent to the receiver component named com.tracfone.tfstatus/.TFStatus. This broadcast receiver extracts a string from the Intent and uses it as an extra when it starts the com.tracfone.tfstatus/.TFStatusActivity activity component which uses the externally controlled string as an input to execute an AT command. There are two different injection techniques to successfully inject arbitrary AT commands to execute.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-20" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-22T15:15:46Z" diff --git a/advisories/unreviewed/2024/04/GHSA-xcfg-gmff-9p95/GHSA-xcfg-gmff-9p95.json b/advisories/unreviewed/2024/04/GHSA-xcfg-gmff-9p95/GHSA-xcfg-gmff-9p95.json index bec4bbd6242..23e910c2f77 100644 --- a/advisories/unreviewed/2024/04/GHSA-xcfg-gmff-9p95/GHSA-xcfg-gmff-9p95.json +++ b/advisories/unreviewed/2024/04/GHSA-xcfg-gmff-9p95/GHSA-xcfg-gmff-9p95.json @@ -25,7 +25,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2024/04/GHSA-xcg3-8p5h-wcf4/GHSA-xcg3-8p5h-wcf4.json b/advisories/unreviewed/2024/04/GHSA-xcg3-8p5h-wcf4/GHSA-xcg3-8p5h-wcf4.json index e0f721e3cb9..0bacdd45903 100644 --- a/advisories/unreviewed/2024/04/GHSA-xcg3-8p5h-wcf4/GHSA-xcg3-8p5h-wcf4.json +++ b/advisories/unreviewed/2024/04/GHSA-xcg3-8p5h-wcf4/GHSA-xcg3-8p5h-wcf4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-xcg3-8p5h-wcf4", - "modified": "2024-04-29T21:30:36Z", + "modified": "2024-07-03T18:37:30Z", "published": "2024-04-29T21:30:36Z", "aliases": [ "CVE-2024-33350" ], "details": "Directory Traversal vulnerability in TaoCMS v.3.0.2 allows a remote attacker to execute arbitrary code and obtain sensitive information via the include/model/file.php component.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-22" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-29T21:15:47Z" diff --git a/advisories/unreviewed/2024/04/GHSA-xfq4-78j7-v594/GHSA-xfq4-78j7-v594.json b/advisories/unreviewed/2024/04/GHSA-xfq4-78j7-v594/GHSA-xfq4-78j7-v594.json index f31f2cfa8b4..595a0a2ef20 100644 --- a/advisories/unreviewed/2024/04/GHSA-xfq4-78j7-v594/GHSA-xfq4-78j7-v594.json +++ b/advisories/unreviewed/2024/04/GHSA-xfq4-78j7-v594/GHSA-xfq4-78j7-v594.json @@ -44,7 +44,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-200" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/04/GHSA-xh76-hgvx-8pp6/GHSA-xh76-hgvx-8pp6.json b/advisories/unreviewed/2024/04/GHSA-xh76-hgvx-8pp6/GHSA-xh76-hgvx-8pp6.json index 0adbece1b29..64cb4bef090 100644 --- a/advisories/unreviewed/2024/04/GHSA-xh76-hgvx-8pp6/GHSA-xh76-hgvx-8pp6.json +++ b/advisories/unreviewed/2024/04/GHSA-xh76-hgvx-8pp6/GHSA-xh76-hgvx-8pp6.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-276" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/04/GHSA-xj37-732r-xm4w/GHSA-xj37-732r-xm4w.json b/advisories/unreviewed/2024/04/GHSA-xj37-732r-xm4w/GHSA-xj37-732r-xm4w.json index 01fcdc2a778..87f9ddfc719 100644 --- a/advisories/unreviewed/2024/04/GHSA-xj37-732r-xm4w/GHSA-xj37-732r-xm4w.json +++ b/advisories/unreviewed/2024/04/GHSA-xj37-732r-xm4w/GHSA-xj37-732r-xm4w.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-xj37-732r-xm4w", - "modified": "2024-04-30T15:30:37Z", + "modified": "2024-07-03T18:37:40Z", "published": "2024-04-30T15:30:37Z", "aliases": [ "CVE-2023-45385" ], "details": "ProQuality pqprintshippinglabels before v.4.15.0 is vulnerable to Directory Traversal via the pqprintshippinglabels module.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-22" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-30T15:15:51Z" diff --git a/advisories/unreviewed/2024/05/GHSA-28wv-5cj3-9qg6/GHSA-28wv-5cj3-9qg6.json b/advisories/unreviewed/2024/05/GHSA-28wv-5cj3-9qg6/GHSA-28wv-5cj3-9qg6.json index 561116f300a..aba473d40ec 100644 --- a/advisories/unreviewed/2024/05/GHSA-28wv-5cj3-9qg6/GHSA-28wv-5cj3-9qg6.json +++ b/advisories/unreviewed/2024/05/GHSA-28wv-5cj3-9qg6/GHSA-28wv-5cj3-9qg6.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-28wv-5cj3-9qg6", - "modified": "2024-05-01T18:30:42Z", + "modified": "2024-07-03T18:38:16Z", "published": "2024-05-01T18:30:42Z", "aliases": [ "CVE-2024-32212" ], "details": "SQL Injection vulnerability in LOGINT LoMag Inventory Management v1.0.20.120 and before allows an attacker to execute arbitrary code via the ArticleGetGroups, DocAddDocument, ClassClickShop and frmSettings components.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-01T18:15:24Z" diff --git a/advisories/unreviewed/2024/05/GHSA-29w5-279f-vr72/GHSA-29w5-279f-vr72.json b/advisories/unreviewed/2024/05/GHSA-29w5-279f-vr72/GHSA-29w5-279f-vr72.json index bbfa9ae58fe..91d83689bfa 100644 --- a/advisories/unreviewed/2024/05/GHSA-29w5-279f-vr72/GHSA-29w5-279f-vr72.json +++ b/advisories/unreviewed/2024/05/GHSA-29w5-279f-vr72/GHSA-29w5-279f-vr72.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-29w5-279f-vr72", - "modified": "2024-06-26T00:31:41Z", + "modified": "2024-07-03T18:38:03Z", "published": "2024-05-01T15:30:36Z", "aliases": [ "CVE-2024-27052" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: rtl8xxxu: add cancel_work_sync() for c2hcmd_work\n\nThe workqueue might still be running, when the driver is stopped. To\navoid a use-after-free, call cancel_work_sync() in rtl8xxxu_stop().", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-416" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-01T13:15:50Z" diff --git a/advisories/unreviewed/2024/05/GHSA-2fxm-8374-c95m/GHSA-2fxm-8374-c95m.json b/advisories/unreviewed/2024/05/GHSA-2fxm-8374-c95m/GHSA-2fxm-8374-c95m.json index fd524df12fd..6fba08fee65 100644 --- a/advisories/unreviewed/2024/05/GHSA-2fxm-8374-c95m/GHSA-2fxm-8374-c95m.json +++ b/advisories/unreviewed/2024/05/GHSA-2fxm-8374-c95m/GHSA-2fxm-8374-c95m.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-2fxm-8374-c95m", - "modified": "2024-06-26T00:31:38Z", + "modified": "2024-07-03T18:38:00Z", "published": "2024-05-01T06:31:42Z", "aliases": [ "CVE-2024-26960" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nmm: swap: fix race between free_swap_and_cache() and swapoff()\n\nThere was previously a theoretical window where swapoff() could run and\nteardown a swap_info_struct while a call to free_swap_and_cache() was\nrunning in another thread. This could cause, amongst other bad\npossibilities, swap_page_trans_huge_swapped() (called by\nfree_swap_and_cache()) to access the freed memory for swap_map.\n\nThis is a theoretical problem and I haven't been able to provoke it from a\ntest case. But there has been agreement based on code review that this is\npossible (see link below).\n\nFix it by using get_swap_device()/put_swap_device(), which will stall\nswapoff(). There was an extra check in _swap_info_get() to confirm that\nthe swap entry was not free. This isn't present in get_swap_device()\nbecause it doesn't make sense in general due to the race between getting\nthe reference and swapoff. So I've added an equivalent check directly in\nfree_swap_and_cache().\n\nDetails of how to provoke one possible issue (thanks to David Hildenbrand\nfor deriving this):\n\n--8<-----\n\n__swap_entry_free() might be the last user and result in\n\"count == SWAP_HAS_CACHE\".\n\nswapoff->try_to_unuse() will stop as soon as soon as si->inuse_pages==0.\n\nSo the question is: could someone reclaim the folio and turn\nsi->inuse_pages==0, before we completed swap_page_trans_huge_swapped().\n\nImagine the following: 2 MiB folio in the swapcache. Only 2 subpages are\nstill references by swap entries.\n\nProcess 1 still references subpage 0 via swap entry.\nProcess 2 still references subpage 1 via swap entry.\n\nProcess 1 quits. Calls free_swap_and_cache().\n-> count == SWAP_HAS_CACHE\n[then, preempted in the hypervisor etc.]\n\nProcess 2 quits. Calls free_swap_and_cache().\n-> count == SWAP_HAS_CACHE\n\nProcess 2 goes ahead, passes swap_page_trans_huge_swapped(), and calls\n__try_to_reclaim_swap().\n\n__try_to_reclaim_swap()->folio_free_swap()->delete_from_swap_cache()->\nput_swap_folio()->free_swap_slot()->swapcache_free_entries()->\nswap_entry_free()->swap_range_free()->\n...\nWRITE_ONCE(si->inuse_pages, si->inuse_pages - nr_entries);\n\nWhat stops swapoff to succeed after process 2 reclaimed the swap cache\nbut before process1 finished its call to swap_page_trans_huge_swapped()?\n\n--8<-----", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-362" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-01T06:15:12Z" diff --git a/advisories/unreviewed/2024/05/GHSA-2j96-ww2p-cpjq/GHSA-2j96-ww2p-cpjq.json b/advisories/unreviewed/2024/05/GHSA-2j96-ww2p-cpjq/GHSA-2j96-ww2p-cpjq.json index 3d85d60b07c..2f8501e0b69 100644 --- a/advisories/unreviewed/2024/05/GHSA-2j96-ww2p-cpjq/GHSA-2j96-ww2p-cpjq.json +++ b/advisories/unreviewed/2024/05/GHSA-2j96-ww2p-cpjq/GHSA-2j96-ww2p-cpjq.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-2j96-ww2p-cpjq", - "modified": "2024-05-01T18:30:42Z", + "modified": "2024-07-03T18:38:17Z", "published": "2024-05-01T18:30:42Z", "aliases": [ "CVE-2024-32213" ], "details": "The LoMag WareHouse Management application version 1.0.20.120 and older were found to allow weak passwords. By default, hard-coded passwords of 10 characters with little or no complexity are allowed.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-521" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-01T18:15:24Z" diff --git a/advisories/unreviewed/2024/05/GHSA-3599-wxpf-rm35/GHSA-3599-wxpf-rm35.json b/advisories/unreviewed/2024/05/GHSA-3599-wxpf-rm35/GHSA-3599-wxpf-rm35.json index 0f06550c0d6..2f789149659 100644 --- a/advisories/unreviewed/2024/05/GHSA-3599-wxpf-rm35/GHSA-3599-wxpf-rm35.json +++ b/advisories/unreviewed/2024/05/GHSA-3599-wxpf-rm35/GHSA-3599-wxpf-rm35.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-3599-wxpf-rm35", - "modified": "2024-05-01T15:30:37Z", + "modified": "2024-07-03T18:38:04Z", "published": "2024-05-01T15:30:37Z", "aliases": [ "CVE-2024-31413" ], "details": "Free of pointer not at start of buffer vulnerability exists in CX-One CX-One CXONE-AL[][]D-V4 (The version which was installed with a DVD ver. 4.61.1 or lower, and was updated through CX-One V4 auto update in January 2024 or prior) and Sysmac Studio SYSMAC-SE2[][][] (The version which was installed with a DVD ver. 1.56 or lower, and was updated through Sysmac Studio V1 auto update in January 2024 or prior). Opening a specially crafted project file may lead to arbitrary code execution.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -31,7 +34,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-01T13:15:52Z" diff --git a/advisories/unreviewed/2024/05/GHSA-4qw6-vwc8-mh38/GHSA-4qw6-vwc8-mh38.json b/advisories/unreviewed/2024/05/GHSA-4qw6-vwc8-mh38/GHSA-4qw6-vwc8-mh38.json index 099cdf4e3e6..a98e08ec2d2 100644 --- a/advisories/unreviewed/2024/05/GHSA-4qw6-vwc8-mh38/GHSA-4qw6-vwc8-mh38.json +++ b/advisories/unreviewed/2024/05/GHSA-4qw6-vwc8-mh38/GHSA-4qw6-vwc8-mh38.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-4qw6-vwc8-mh38", - "modified": "2024-05-03T06:30:35Z", + "modified": "2024-07-03T18:38:09Z", "published": "2024-05-01T15:30:37Z", "aliases": [ "CVE-2024-4060" ], "details": "Use after free in Dawn in Google Chrome prior to 124.0.6367.78 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-416" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-01T13:15:52Z" diff --git a/advisories/unreviewed/2024/05/GHSA-56hr-38f5-m992/GHSA-56hr-38f5-m992.json b/advisories/unreviewed/2024/05/GHSA-56hr-38f5-m992/GHSA-56hr-38f5-m992.json index 2fb647d9406..0f5ffea556f 100644 --- a/advisories/unreviewed/2024/05/GHSA-56hr-38f5-m992/GHSA-56hr-38f5-m992.json +++ b/advisories/unreviewed/2024/05/GHSA-56hr-38f5-m992/GHSA-56hr-38f5-m992.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-56hr-38f5-m992", - "modified": "2024-05-01T12:30:45Z", + "modified": "2024-07-03T18:38:01Z", "published": "2024-05-01T12:30:45Z", "aliases": [ "CVE-2024-33835" ], "details": "Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the remoteIp parameter from formSetSafeWanWebMan function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-121" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-01T11:15:47Z" diff --git a/advisories/unreviewed/2024/05/GHSA-57gw-c6xj-3hcc/GHSA-57gw-c6xj-3hcc.json b/advisories/unreviewed/2024/05/GHSA-57gw-c6xj-3hcc/GHSA-57gw-c6xj-3hcc.json index 6fb9bc39e38..103b79a984d 100644 --- a/advisories/unreviewed/2024/05/GHSA-57gw-c6xj-3hcc/GHSA-57gw-c6xj-3hcc.json +++ b/advisories/unreviewed/2024/05/GHSA-57gw-c6xj-3hcc/GHSA-57gw-c6xj-3hcc.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-121" ], "severity": "CRITICAL", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/05/GHSA-58qf-7xxx-pw82/GHSA-58qf-7xxx-pw82.json b/advisories/unreviewed/2024/05/GHSA-58qf-7xxx-pw82/GHSA-58qf-7xxx-pw82.json index b6d46be66f8..4b88755f6d6 100644 --- a/advisories/unreviewed/2024/05/GHSA-58qf-7xxx-pw82/GHSA-58qf-7xxx-pw82.json +++ b/advisories/unreviewed/2024/05/GHSA-58qf-7xxx-pw82/GHSA-58qf-7xxx-pw82.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-58qf-7xxx-pw82", - "modified": "2024-05-01T18:30:42Z", + "modified": "2024-07-03T18:38:15Z", "published": "2024-05-01T18:30:42Z", "aliases": [ "CVE-2024-32211" ], "details": "An issue in LOGINT LoMag Inventory Management v1.0.20.120 and before allows a local attacker to obtain sensitive information via the UserClass.cs and Settings.cs components.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-328" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-01T18:15:23Z" diff --git a/advisories/unreviewed/2024/05/GHSA-5jhr-gg3j-ggcf/GHSA-5jhr-gg3j-ggcf.json b/advisories/unreviewed/2024/05/GHSA-5jhr-gg3j-ggcf/GHSA-5jhr-gg3j-ggcf.json index 6ae1494a6a7..709ceee2fe9 100644 --- a/advisories/unreviewed/2024/05/GHSA-5jhr-gg3j-ggcf/GHSA-5jhr-gg3j-ggcf.json +++ b/advisories/unreviewed/2024/05/GHSA-5jhr-gg3j-ggcf/GHSA-5jhr-gg3j-ggcf.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-5jhr-gg3j-ggcf", - "modified": "2024-06-10T18:30:57Z", + "modified": "2024-07-03T18:38:09Z", "published": "2024-05-01T15:30:37Z", "aliases": [ "CVE-2024-4368" ], "details": "Use after free in Dawn in Google Chrome prior to 124.0.6367.118 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -51,7 +54,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-01T13:15:52Z" diff --git a/advisories/unreviewed/2024/05/GHSA-675j-298r-vv37/GHSA-675j-298r-vv37.json b/advisories/unreviewed/2024/05/GHSA-675j-298r-vv37/GHSA-675j-298r-vv37.json index c70c0562b16..8f9e7ee3edd 100644 --- a/advisories/unreviewed/2024/05/GHSA-675j-298r-vv37/GHSA-675j-298r-vv37.json +++ b/advisories/unreviewed/2024/05/GHSA-675j-298r-vv37/GHSA-675j-298r-vv37.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-675j-298r-vv37", - "modified": "2024-06-26T00:31:41Z", + "modified": "2024-07-03T18:38:04Z", "published": "2024-05-01T15:30:36Z", "aliases": [ "CVE-2024-27053" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: wilc1000: fix RCU usage in connect path\n\nWith lockdep enabled, calls to the connect function from cfg802.11 layer\nlead to the following warning:\n\n=============================\nWARNING: suspicious RCU usage\n6.7.0-rc1-wt+ #333 Not tainted\n-----------------------------\ndrivers/net/wireless/microchip/wilc1000/hif.c:386\nsuspicious rcu_dereference_check() usage!\n[...]\nstack backtrace:\nCPU: 0 PID: 100 Comm: wpa_supplicant Not tainted 6.7.0-rc1-wt+ #333\nHardware name: Atmel SAMA5\n unwind_backtrace from show_stack+0x18/0x1c\n show_stack from dump_stack_lvl+0x34/0x48\n dump_stack_lvl from wilc_parse_join_bss_param+0x7dc/0x7f4\n wilc_parse_join_bss_param from connect+0x2c4/0x648\n connect from cfg80211_connect+0x30c/0xb74\n cfg80211_connect from nl80211_connect+0x860/0xa94\n nl80211_connect from genl_rcv_msg+0x3fc/0x59c\n genl_rcv_msg from netlink_rcv_skb+0xd0/0x1f8\n netlink_rcv_skb from genl_rcv+0x2c/0x3c\n genl_rcv from netlink_unicast+0x3b0/0x550\n netlink_unicast from netlink_sendmsg+0x368/0x688\n netlink_sendmsg from ____sys_sendmsg+0x190/0x430\n ____sys_sendmsg from ___sys_sendmsg+0x110/0x158\n ___sys_sendmsg from sys_sendmsg+0xe8/0x150\n sys_sendmsg from ret_fast_syscall+0x0/0x1c\n\nThis warning is emitted because in the connect path, when trying to parse\ntarget BSS parameters, we dereference a RCU pointer whithout being in RCU\ncritical section.\nFix RCU dereference usage by moving it to a RCU read critical section. To\navoid wrapping the whole wilc_parse_join_bss_param under the critical\nsection, just use the critical section to copy ies data", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H" + } ], "affected": [ @@ -57,9 +60,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-01T13:15:50Z" diff --git a/advisories/unreviewed/2024/05/GHSA-6gqv-q367-c5h2/GHSA-6gqv-q367-c5h2.json b/advisories/unreviewed/2024/05/GHSA-6gqv-q367-c5h2/GHSA-6gqv-q367-c5h2.json index 3dc75ef8109..0312b3f0055 100644 --- a/advisories/unreviewed/2024/05/GHSA-6gqv-q367-c5h2/GHSA-6gqv-q367-c5h2.json +++ b/advisories/unreviewed/2024/05/GHSA-6gqv-q367-c5h2/GHSA-6gqv-q367-c5h2.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-121" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/05/GHSA-7mrx-37fj-85qg/GHSA-7mrx-37fj-85qg.json b/advisories/unreviewed/2024/05/GHSA-7mrx-37fj-85qg/GHSA-7mrx-37fj-85qg.json index 034125df683..271bab06fe4 100644 --- a/advisories/unreviewed/2024/05/GHSA-7mrx-37fj-85qg/GHSA-7mrx-37fj-85qg.json +++ b/advisories/unreviewed/2024/05/GHSA-7mrx-37fj-85qg/GHSA-7mrx-37fj-85qg.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-121" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/05/GHSA-7qch-65fq-c3xh/GHSA-7qch-65fq-c3xh.json b/advisories/unreviewed/2024/05/GHSA-7qch-65fq-c3xh/GHSA-7qch-65fq-c3xh.json index e798dfe68a9..60f1cea3549 100644 --- a/advisories/unreviewed/2024/05/GHSA-7qch-65fq-c3xh/GHSA-7qch-65fq-c3xh.json +++ b/advisories/unreviewed/2024/05/GHSA-7qch-65fq-c3xh/GHSA-7qch-65fq-c3xh.json @@ -40,7 +40,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-120" + "CWE-120", + "CWE-125" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/05/GHSA-7x33-7jjx-2gmh/GHSA-7x33-7jjx-2gmh.json b/advisories/unreviewed/2024/05/GHSA-7x33-7jjx-2gmh/GHSA-7x33-7jjx-2gmh.json index 8cd6b02a600..ff9c4e07f1b 100644 --- a/advisories/unreviewed/2024/05/GHSA-7x33-7jjx-2gmh/GHSA-7x33-7jjx-2gmh.json +++ b/advisories/unreviewed/2024/05/GHSA-7x33-7jjx-2gmh/GHSA-7x33-7jjx-2gmh.json @@ -61,7 +61,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-416" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2024/05/GHSA-94hp-7v9h-5qq9/GHSA-94hp-7v9h-5qq9.json b/advisories/unreviewed/2024/05/GHSA-94hp-7v9h-5qq9/GHSA-94hp-7v9h-5qq9.json index 5a3a9ade3e5..b2af1c8ab9d 100644 --- a/advisories/unreviewed/2024/05/GHSA-94hp-7v9h-5qq9/GHSA-94hp-7v9h-5qq9.json +++ b/advisories/unreviewed/2024/05/GHSA-94hp-7v9h-5qq9/GHSA-94hp-7v9h-5qq9.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-94hp-7v9h-5qq9", - "modified": "2024-05-01T15:30:34Z", + "modified": "2024-07-03T18:38:02Z", "published": "2024-05-01T15:30:34Z", "aliases": [ "CVE-2024-23597" ], "details": "Cross-site request forgery (CSRF) vulnerability exists in TvRock 0.9t8a. If a logged-in user of TVRock accesses a specially crafted page, unintended operations may be performed. Note that the developer was unreachable, therefore, users should consider stop using TvRock 0.9t8a.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-352" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-01T13:15:48Z" diff --git a/advisories/unreviewed/2024/05/GHSA-989m-gr7j-mv6g/GHSA-989m-gr7j-mv6g.json b/advisories/unreviewed/2024/05/GHSA-989m-gr7j-mv6g/GHSA-989m-gr7j-mv6g.json index d04f12b3188..c99a3817b69 100644 --- a/advisories/unreviewed/2024/05/GHSA-989m-gr7j-mv6g/GHSA-989m-gr7j-mv6g.json +++ b/advisories/unreviewed/2024/05/GHSA-989m-gr7j-mv6g/GHSA-989m-gr7j-mv6g.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-989m-gr7j-mv6g", - "modified": "2024-05-01T18:30:41Z", + "modified": "2024-07-03T18:38:11Z", "published": "2024-05-01T18:30:41Z", "aliases": [ "CVE-2024-28893" ], "details": "Certain HP software packages (SoftPaqs) are potentially vulnerable to arbitrary code execution when the SoftPaq configuration file has been modified after extraction. HP has released updated software packages (SoftPaqs).", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-01T16:15:07Z" diff --git a/advisories/unreviewed/2024/05/GHSA-cgpr-m9mx-94j6/GHSA-cgpr-m9mx-94j6.json b/advisories/unreviewed/2024/05/GHSA-cgpr-m9mx-94j6/GHSA-cgpr-m9mx-94j6.json index 9f75fc789ee..76c80613a83 100644 --- a/advisories/unreviewed/2024/05/GHSA-cgpr-m9mx-94j6/GHSA-cgpr-m9mx-94j6.json +++ b/advisories/unreviewed/2024/05/GHSA-cgpr-m9mx-94j6/GHSA-cgpr-m9mx-94j6.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-cgpr-m9mx-94j6", - "modified": "2024-05-01T03:30:31Z", + "modified": "2024-07-03T18:37:57Z", "published": "2024-05-01T03:30:30Z", "aliases": [ "CVE-2024-33763" ], "details": "lunasvg v2.3.9 was discovered to contain a stack-buffer-underflow at lunasvg/source/layoutcontext.cpp.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-124" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-01T03:15:07Z" diff --git a/advisories/unreviewed/2024/05/GHSA-cw72-f9mw-h9c4/GHSA-cw72-f9mw-h9c4.json b/advisories/unreviewed/2024/05/GHSA-cw72-f9mw-h9c4/GHSA-cw72-f9mw-h9c4.json index 1ed5ce739b3..e45a8590576 100644 --- a/advisories/unreviewed/2024/05/GHSA-cw72-f9mw-h9c4/GHSA-cw72-f9mw-h9c4.json +++ b/advisories/unreviewed/2024/05/GHSA-cw72-f9mw-h9c4/GHSA-cw72-f9mw-h9c4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-cw72-f9mw-h9c4", - "modified": "2024-05-01T15:30:36Z", + "modified": "2024-07-03T18:38:03Z", "published": "2024-05-01T15:30:35Z", "aliases": [ "CVE-2024-27050" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nlibbpf: Use OPTS_SET() macro in bpf_xdp_query()\n\nWhen the feature_flags and xdp_zc_max_segs fields were added to the libbpf\nbpf_xdp_query_opts, the code writing them did not use the OPTS_SET() macro.\nThis causes libbpf to write to those fields unconditionally, which means\nthat programs compiled against an older version of libbpf (with a smaller\nsize of the bpf_xdp_query_opts struct) will have its stack corrupted by\nlibbpf writing out of bounds.\n\nThe patch adding the feature_flags field has an early bail out if the\nfeature_flags field is not part of the opts struct (via the OPTS_HAS)\nmacro, but the patch adding xdp_zc_max_segs does not. For consistency, this\nfix just changes the assignments to both fields to use the OPTS_SET()\nmacro.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-787" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-01T13:15:50Z" diff --git a/advisories/unreviewed/2024/05/GHSA-gghh-gpx3-pmx6/GHSA-gghh-gpx3-pmx6.json b/advisories/unreviewed/2024/05/GHSA-gghh-gpx3-pmx6/GHSA-gghh-gpx3-pmx6.json index d1ac61a87a8..6fe86992693 100644 --- a/advisories/unreviewed/2024/05/GHSA-gghh-gpx3-pmx6/GHSA-gghh-gpx3-pmx6.json +++ b/advisories/unreviewed/2024/05/GHSA-gghh-gpx3-pmx6/GHSA-gghh-gpx3-pmx6.json @@ -37,7 +37,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-416" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2024/05/GHSA-gm2r-qgvq-g985/GHSA-gm2r-qgvq-g985.json b/advisories/unreviewed/2024/05/GHSA-gm2r-qgvq-g985/GHSA-gm2r-qgvq-g985.json index c4a08f0765f..d0d48114c20 100644 --- a/advisories/unreviewed/2024/05/GHSA-gm2r-qgvq-g985/GHSA-gm2r-qgvq-g985.json +++ b/advisories/unreviewed/2024/05/GHSA-gm2r-qgvq-g985/GHSA-gm2r-qgvq-g985.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-121" ], "severity": "CRITICAL", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/05/GHSA-gr54-644j-hpm5/GHSA-gr54-644j-hpm5.json b/advisories/unreviewed/2024/05/GHSA-gr54-644j-hpm5/GHSA-gr54-644j-hpm5.json index f29f5da113f..93363c7b607 100644 --- a/advisories/unreviewed/2024/05/GHSA-gr54-644j-hpm5/GHSA-gr54-644j-hpm5.json +++ b/advisories/unreviewed/2024/05/GHSA-gr54-644j-hpm5/GHSA-gr54-644j-hpm5.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-121" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/05/GHSA-h98m-4vr6-fqjf/GHSA-h98m-4vr6-fqjf.json b/advisories/unreviewed/2024/05/GHSA-h98m-4vr6-fqjf/GHSA-h98m-4vr6-fqjf.json index d534c163923..cf864fef4de 100644 --- a/advisories/unreviewed/2024/05/GHSA-h98m-4vr6-fqjf/GHSA-h98m-4vr6-fqjf.json +++ b/advisories/unreviewed/2024/05/GHSA-h98m-4vr6-fqjf/GHSA-h98m-4vr6-fqjf.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-h98m-4vr6-fqjf", - "modified": "2024-06-26T00:31:39Z", + "modified": "2024-07-03T18:38:00Z", "published": "2024-05-01T06:31:42Z", "aliases": [ "CVE-2024-26970" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nclk: qcom: gcc-ipq6018: fix terminating of frequency table arrays\n\nThe frequency table arrays are supposed to be terminated with an\nempty element. Add such entry to the end of the arrays where it\nis missing in order to avoid possible out-of-bound access when\nthe table is traversed by functions like qcom_find_freq() or\nqcom_find_freq_floor().\n\nOnly compile tested.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-125" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-01T06:15:13Z" diff --git a/advisories/unreviewed/2024/05/GHSA-j563-gw8p-23mq/GHSA-j563-gw8p-23mq.json b/advisories/unreviewed/2024/05/GHSA-j563-gw8p-23mq/GHSA-j563-gw8p-23mq.json index 8c7ed1d63d9..b76109638b2 100644 --- a/advisories/unreviewed/2024/05/GHSA-j563-gw8p-23mq/GHSA-j563-gw8p-23mq.json +++ b/advisories/unreviewed/2024/05/GHSA-j563-gw8p-23mq/GHSA-j563-gw8p-23mq.json @@ -32,6 +32,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-362", "CWE-476" ], "severity": "MODERATE", diff --git a/advisories/unreviewed/2024/05/GHSA-j9wj-h588-6g73/GHSA-j9wj-h588-6g73.json b/advisories/unreviewed/2024/05/GHSA-j9wj-h588-6g73/GHSA-j9wj-h588-6g73.json index 49619811d85..06f70041232 100644 --- a/advisories/unreviewed/2024/05/GHSA-j9wj-h588-6g73/GHSA-j9wj-h588-6g73.json +++ b/advisories/unreviewed/2024/05/GHSA-j9wj-h588-6g73/GHSA-j9wj-h588-6g73.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-j9wj-h588-6g73", - "modified": "2024-05-01T06:31:43Z", + "modified": "2024-07-03T18:38:01Z", "published": "2024-05-01T06:31:43Z", "aliases": [ "CVE-2024-3591" ], "details": "The Geo Controller WordPress plugin before 8.6.5 unserializes user input via some of its AJAX actions and REST API routes, which could allow unauthenticated users to perform PHP Object Injection when a suitable gadget is present on the blog.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-01T06:15:21Z" diff --git a/advisories/unreviewed/2024/05/GHSA-jx24-3g7h-4qj2/GHSA-jx24-3g7h-4qj2.json b/advisories/unreviewed/2024/05/GHSA-jx24-3g7h-4qj2/GHSA-jx24-3g7h-4qj2.json index 04d1e8aecde..be79f2a4520 100644 --- a/advisories/unreviewed/2024/05/GHSA-jx24-3g7h-4qj2/GHSA-jx24-3g7h-4qj2.json +++ b/advisories/unreviewed/2024/05/GHSA-jx24-3g7h-4qj2/GHSA-jx24-3g7h-4qj2.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-jx24-3g7h-4qj2", - "modified": "2024-06-10T18:30:57Z", + "modified": "2024-07-03T18:38:09Z", "published": "2024-05-01T15:30:37Z", "aliases": [ "CVE-2024-4331" ], "details": "Use after free in Picture In Picture in Google Chrome prior to 124.0.6367.118 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -49,9 +52,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-416" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-01T13:15:52Z" diff --git a/advisories/unreviewed/2024/05/GHSA-pccf-f85g-p7gq/GHSA-pccf-f85g-p7gq.json b/advisories/unreviewed/2024/05/GHSA-pccf-f85g-p7gq/GHSA-pccf-f85g-p7gq.json index 8a282050c5e..7c426d99182 100644 --- a/advisories/unreviewed/2024/05/GHSA-pccf-f85g-p7gq/GHSA-pccf-f85g-p7gq.json +++ b/advisories/unreviewed/2024/05/GHSA-pccf-f85g-p7gq/GHSA-pccf-f85g-p7gq.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-pccf-f85g-p7gq", - "modified": "2024-05-01T18:30:41Z", + "modified": "2024-07-03T18:38:11Z", "published": "2024-05-01T18:30:41Z", "aliases": [ "CVE-2024-33820" ], "details": "Totolink AC1200 Wireless Dual Band Gigabit Router A3002R_V4 Firmware V4.0.0-B20230531.1404 is vulnerable to Buffer Overflow via the formWlEncrypt function of the boa server. Specifically, they exploit the length of the wlan_ssid field triggers the overflow.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-120" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-01T16:15:07Z" diff --git a/advisories/unreviewed/2024/05/GHSA-qc4m-rx2p-hrfv/GHSA-qc4m-rx2p-hrfv.json b/advisories/unreviewed/2024/05/GHSA-qc4m-rx2p-hrfv/GHSA-qc4m-rx2p-hrfv.json index 4eabcb6c76e..3839ce0c8d0 100644 --- a/advisories/unreviewed/2024/05/GHSA-qc4m-rx2p-hrfv/GHSA-qc4m-rx2p-hrfv.json +++ b/advisories/unreviewed/2024/05/GHSA-qc4m-rx2p-hrfv/GHSA-qc4m-rx2p-hrfv.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-qc4m-rx2p-hrfv", - "modified": "2024-06-27T12:30:45Z", + "modified": "2024-07-03T18:38:00Z", "published": "2024-05-01T06:31:42Z", "aliases": [ "CVE-2024-26976" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nKVM: Always flush async #PF workqueue when vCPU is being destroyed\n\nAlways flush the per-vCPU async #PF workqueue when a vCPU is clearing its\ncompletion queue, e.g. when a VM and all its vCPUs is being destroyed.\nKVM must ensure that none of its workqueue callbacks is running when the\nlast reference to the KVM _module_ is put. Gifting a reference to the\nassociated VM prevents the workqueue callback from dereferencing freed\nvCPU/VM memory, but does not prevent the KVM module from being unloaded\nbefore the callback completes.\n\nDrop the misguided VM refcount gifting, as calling kvm_put_kvm() from\nasync_pf_execute() if kvm_put_kvm() flushes the async #PF workqueue will\nresult in deadlock. async_pf_execute() can't return until kvm_put_kvm()\nfinishes, and kvm_put_kvm() can't return until async_pf_execute() finishes:\n\n WARNING: CPU: 8 PID: 251 at virt/kvm/kvm_main.c:1435 kvm_put_kvm+0x2d/0x320 [kvm]\n Modules linked in: vhost_net vhost vhost_iotlb tap kvm_intel kvm irqbypass\n CPU: 8 PID: 251 Comm: kworker/8:1 Tainted: G W 6.6.0-rc1-e7af8d17224a-x86/gmem-vm #119\n Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 0.0.0 02/06/2015\n Workqueue: events async_pf_execute [kvm]\n RIP: 0010:kvm_put_kvm+0x2d/0x320 [kvm]\n Call Trace:\n \n async_pf_execute+0x198/0x260 [kvm]\n process_one_work+0x145/0x2d0\n worker_thread+0x27e/0x3a0\n kthread+0xba/0xe0\n ret_from_fork+0x2d/0x50\n ret_from_fork_asm+0x11/0x20\n \n ---[ end trace 0000000000000000 ]---\n INFO: task kworker/8:1:251 blocked for more than 120 seconds.\n Tainted: G W 6.6.0-rc1-e7af8d17224a-x86/gmem-vm #119\n \"echo 0 > /proc/sys/kernel/hung_task_timeout_secs\" disables this message.\n task:kworker/8:1 state:D stack:0 pid:251 ppid:2 flags:0x00004000\n Workqueue: events async_pf_execute [kvm]\n Call Trace:\n \n __schedule+0x33f/0xa40\n schedule+0x53/0xc0\n schedule_timeout+0x12a/0x140\n __wait_for_common+0x8d/0x1d0\n __flush_work.isra.0+0x19f/0x2c0\n kvm_clear_async_pf_completion_queue+0x129/0x190 [kvm]\n kvm_arch_destroy_vm+0x78/0x1b0 [kvm]\n kvm_put_kvm+0x1c1/0x320 [kvm]\n async_pf_execute+0x198/0x260 [kvm]\n process_one_work+0x145/0x2d0\n worker_thread+0x27e/0x3a0\n kthread+0xba/0xe0\n ret_from_fork+0x2d/0x50\n ret_from_fork_asm+0x11/0x20\n \n\nIf kvm_clear_async_pf_completion_queue() actually flushes the workqueue,\nthen there's no need to gift async_pf_execute() a reference because all\ninvocations of async_pf_execute() will be forced to complete before the\nvCPU and its VM are destroyed/freed. And that in turn fixes the module\nunloading bug as __fput() won't do module_put() on the last vCPU reference\nuntil the vCPU has been freed, e.g. if closing the vCPU file also puts the\nlast reference to the KVM module.\n\nNote that kvm_check_async_pf_completion() may also take the work item off\nthe completion queue and so also needs to flush the work queue, as the\nwork will not be seen by kvm_clear_async_pf_completion_queue(). Waiting\non the workqueue could theoretically delay a vCPU due to waiting for the\nwork to complete, but that's a very, very small chance, and likely a very\nsmall delay. kvm_arch_async_page_present_queued() unconditionally makes a\nnew request, i.e. will effectively delay entering the guest, so the\nremaining work is really just:\n\n trace_kvm_async_pf_completed(addr, cr2_or_gpa);\n\n __kvm_vcpu_wake_up(vcpu);\n\n mmput(mm);\n\nand mmput() can't drop the last reference to the page tables if the vCPU is\nstill alive, i.e. the vCPU won't get stuck tearing down page tables.\n\nAdd a helper to do the flushing, specifically to deal with \"wakeup all\"\nwork items, as they aren't actually work items, i.e. are never placed in a\nworkqueue. Trying to flush a bogus workqueue entry rightly makes\n__flush_work() complain (kudos to whoever added that sanity check).\n\nNote, commit 5f6de5cbebee (\"KVM: Prevent module exit until al\n---truncated---", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -65,9 +68,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-400" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-01T06:15:14Z" diff --git a/advisories/unreviewed/2024/05/GHSA-r3hf-mcpf-6r4f/GHSA-r3hf-mcpf-6r4f.json b/advisories/unreviewed/2024/05/GHSA-r3hf-mcpf-6r4f/GHSA-r3hf-mcpf-6r4f.json index 52700b4e629..57db9083188 100644 --- a/advisories/unreviewed/2024/05/GHSA-r3hf-mcpf-6r4f/GHSA-r3hf-mcpf-6r4f.json +++ b/advisories/unreviewed/2024/05/GHSA-r3hf-mcpf-6r4f/GHSA-r3hf-mcpf-6r4f.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-r3hf-mcpf-6r4f", - "modified": "2024-05-02T18:30:50Z", + "modified": "2024-07-03T18:38:07Z", "published": "2024-05-01T15:30:37Z", "aliases": [ "CVE-2024-33775" ], "details": "An issue with the Autodiscover component in Nagios XI 2024R1.01 allows a remote attacker to escalate privileges via a crafted Dashlet.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-269" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-01T13:15:52Z" diff --git a/advisories/unreviewed/2024/05/GHSA-r8hx-f24g-25mv/GHSA-r8hx-f24g-25mv.json b/advisories/unreviewed/2024/05/GHSA-r8hx-f24g-25mv/GHSA-r8hx-f24g-25mv.json index 134a27eee52..392df67e70e 100644 --- a/advisories/unreviewed/2024/05/GHSA-r8hx-f24g-25mv/GHSA-r8hx-f24g-25mv.json +++ b/advisories/unreviewed/2024/05/GHSA-r8hx-f24g-25mv/GHSA-r8hx-f24g-25mv.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-r8hx-f24g-25mv", - "modified": "2024-05-01T06:31:41Z", + "modified": "2024-07-03T18:37:58Z", "published": "2024-05-01T06:31:41Z", "aliases": [ "CVE-2024-26945" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ncrypto: iaa - Fix nr_cpus < nr_iaa case\n\nIf nr_cpus < nr_iaa, the calculated cpus_per_iaa will be 0, which\ncauses a divide-by-0 in rebalance_wq_table().\n\nMake sure cpus_per_iaa is 1 in that case, and also in the nr_iaa == 0\ncase, even though cpus_per_iaa is never used if nr_iaa == 0, for\nparanoia.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-369" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-01T06:15:10Z" diff --git a/advisories/unreviewed/2024/05/GHSA-rh6f-6762-mx44/GHSA-rh6f-6762-mx44.json b/advisories/unreviewed/2024/05/GHSA-rh6f-6762-mx44/GHSA-rh6f-6762-mx44.json index f977622aec8..13c740e1789 100644 --- a/advisories/unreviewed/2024/05/GHSA-rh6f-6762-mx44/GHSA-rh6f-6762-mx44.json +++ b/advisories/unreviewed/2024/05/GHSA-rh6f-6762-mx44/GHSA-rh6f-6762-mx44.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-rh6f-6762-mx44", - "modified": "2024-05-01T03:30:31Z", + "modified": "2024-07-03T18:37:57Z", "published": "2024-05-01T03:30:31Z", "aliases": [ "CVE-2024-33768" ], "details": "lunasvg v2.3.9 was discovered to contain a segmentation violation via the component composition_solid_source_over.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-653" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-01T03:15:07Z" diff --git a/advisories/unreviewed/2024/05/GHSA-vrmc-7fqr-49c6/GHSA-vrmc-7fqr-49c6.json b/advisories/unreviewed/2024/05/GHSA-vrmc-7fqr-49c6/GHSA-vrmc-7fqr-49c6.json index e44abf5f798..31c968a2f9a 100644 --- a/advisories/unreviewed/2024/05/GHSA-vrmc-7fqr-49c6/GHSA-vrmc-7fqr-49c6.json +++ b/advisories/unreviewed/2024/05/GHSA-vrmc-7fqr-49c6/GHSA-vrmc-7fqr-49c6.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-121" ], "severity": "CRITICAL", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/05/GHSA-w8h9-x2qc-v5qf/GHSA-w8h9-x2qc-v5qf.json b/advisories/unreviewed/2024/05/GHSA-w8h9-x2qc-v5qf/GHSA-w8h9-x2qc-v5qf.json index e7cfd9c4904..d1552979e87 100644 --- a/advisories/unreviewed/2024/05/GHSA-w8h9-x2qc-v5qf/GHSA-w8h9-x2qc-v5qf.json +++ b/advisories/unreviewed/2024/05/GHSA-w8h9-x2qc-v5qf/GHSA-w8h9-x2qc-v5qf.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-w8h9-x2qc-v5qf", - "modified": "2024-06-27T15:30:38Z", + "modified": "2024-07-03T18:38:01Z", "published": "2024-05-01T06:31:42Z", "aliases": [ "CVE-2024-26984" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnouveau: fix instmem race condition around ptr stores\n\nRunning a lot of VK CTS in parallel against nouveau, once every\nfew hours you might see something like this crash.\n\nBUG: kernel NULL pointer dereference, address: 0000000000000008\nPGD 8000000114e6e067 P4D 8000000114e6e067 PUD 109046067 PMD 0\nOops: 0000 [#1] PREEMPT SMP PTI\nCPU: 7 PID: 53891 Comm: deqp-vk Not tainted 6.8.0-rc6+ #27\nHardware name: Gigabyte Technology Co., Ltd. Z390 I AORUS PRO WIFI/Z390 I AORUS PRO WIFI-CF, BIOS F8 11/05/2021\nRIP: 0010:gp100_vmm_pgt_mem+0xe3/0x180 [nouveau]\nCode: c7 48 01 c8 49 89 45 58 85 d2 0f 84 95 00 00 00 41 0f b7 46 12 49 8b 7e 08 89 da 42 8d 2c f8 48 8b 47 08 41 83 c7 01 48 89 ee <48> 8b 40 08 ff d0 0f 1f 00 49 8b 7e 08 48 89 d9 48 8d 75 04 48 c1\nRSP: 0000:ffffac20c5857838 EFLAGS: 00010202\nRAX: 0000000000000000 RBX: 00000000004d8001 RCX: 0000000000000001\nRDX: 00000000004d8001 RSI: 00000000000006d8 RDI: ffffa07afe332180\nRBP: 00000000000006d8 R08: ffffac20c5857ad0 R09: 0000000000ffff10\nR10: 0000000000000001 R11: ffffa07af27e2de0 R12: 000000000000001c\nR13: ffffac20c5857ad0 R14: ffffa07a96fe9040 R15: 000000000000001c\nFS: 00007fe395eed7c0(0000) GS:ffffa07e2c980000(0000) knlGS:0000000000000000\nCS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\nCR2: 0000000000000008 CR3: 000000011febe001 CR4: 00000000003706f0\nDR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000\nDR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400\nCall Trace:\n\n...\n\n ? gp100_vmm_pgt_mem+0xe3/0x180 [nouveau]\n ? gp100_vmm_pgt_mem+0x37/0x180 [nouveau]\n nvkm_vmm_iter+0x351/0xa20 [nouveau]\n ? __pfx_nvkm_vmm_ref_ptes+0x10/0x10 [nouveau]\n ? __pfx_gp100_vmm_pgt_mem+0x10/0x10 [nouveau]\n ? __pfx_gp100_vmm_pgt_mem+0x10/0x10 [nouveau]\n ? __lock_acquire+0x3ed/0x2170\n ? __pfx_gp100_vmm_pgt_mem+0x10/0x10 [nouveau]\n nvkm_vmm_ptes_get_map+0xc2/0x100 [nouveau]\n ? __pfx_nvkm_vmm_ref_ptes+0x10/0x10 [nouveau]\n ? __pfx_gp100_vmm_pgt_mem+0x10/0x10 [nouveau]\n nvkm_vmm_map_locked+0x224/0x3a0 [nouveau]\n\nAdding any sort of useful debug usually makes it go away, so I hand\nwrote the function in a line, and debugged the asm.\n\nEvery so often pt->memory->ptrs is NULL. This ptrs ptr is set in\nthe nv50_instobj_acquire called from nvkm_kmap.\n\nIf Thread A and Thread B both get to nv50_instobj_acquire around\nthe same time, and Thread A hits the refcount_set line, and in\nlockstep thread B succeeds at refcount_inc_not_zero, there is a\nchance the ptrs value won't have been stored since refcount_set\nis unordered. Force a memory barrier here, I picked smp_mb, since\nwe want it on all CPUs and it's write followed by a read.\n\nv2: use paired smp_rmb/smp_wmb.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -73,9 +76,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-362" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-01T06:15:15Z" diff --git a/advisories/unreviewed/2024/05/GHSA-wmx5-qgrp-3rvx/GHSA-wmx5-qgrp-3rvx.json b/advisories/unreviewed/2024/05/GHSA-wmx5-qgrp-3rvx/GHSA-wmx5-qgrp-3rvx.json index b02568c7885..63ac8fad81b 100644 --- a/advisories/unreviewed/2024/05/GHSA-wmx5-qgrp-3rvx/GHSA-wmx5-qgrp-3rvx.json +++ b/advisories/unreviewed/2024/05/GHSA-wmx5-qgrp-3rvx/GHSA-wmx5-qgrp-3rvx.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-wmx5-qgrp-3rvx", - "modified": "2024-05-01T15:30:37Z", + "modified": "2024-07-03T18:38:09Z", "published": "2024-05-01T15:30:37Z", "aliases": [ "CVE-2024-24912" ], "details": "A local privilege escalation vulnerability has been identified in Harmony Endpoint Security Client for Windows versions E88.10 and below. To exploit this vulnerability, an attacker must first obtain the ability to execute local privileged code on the target system.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ "CWE-732" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-01T14:15:06Z" diff --git a/advisories/unreviewed/2024/05/GHSA-x9vv-qxv4-8p6c/GHSA-x9vv-qxv4-8p6c.json b/advisories/unreviewed/2024/05/GHSA-x9vv-qxv4-8p6c/GHSA-x9vv-qxv4-8p6c.json index fe4ee5bf57d..3f0123b4ca2 100644 --- a/advisories/unreviewed/2024/05/GHSA-x9vv-qxv4-8p6c/GHSA-x9vv-qxv4-8p6c.json +++ b/advisories/unreviewed/2024/05/GHSA-x9vv-qxv4-8p6c/GHSA-x9vv-qxv4-8p6c.json @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-121" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/05/GHSA-xxgj-ggp4-xvhw/GHSA-xxgj-ggp4-xvhw.json b/advisories/unreviewed/2024/05/GHSA-xxgj-ggp4-xvhw/GHSA-xxgj-ggp4-xvhw.json index 4943420e422..a886ce3a61d 100644 --- a/advisories/unreviewed/2024/05/GHSA-xxgj-ggp4-xvhw/GHSA-xxgj-ggp4-xvhw.json +++ b/advisories/unreviewed/2024/05/GHSA-xxgj-ggp4-xvhw/GHSA-xxgj-ggp4-xvhw.json @@ -45,7 +45,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], "severity": null, "github_reviewed": false,