diff --git a/advisories/unreviewed/2023/10/GHSA-j7xf-pgw2-75mr/GHSA-j7xf-pgw2-75mr.json b/advisories/unreviewed/2023/10/GHSA-j7xf-pgw2-75mr/GHSA-j7xf-pgw2-75mr.json index 19384ab9006..cf14af7fd1b 100644 --- a/advisories/unreviewed/2023/10/GHSA-j7xf-pgw2-75mr/GHSA-j7xf-pgw2-75mr.json +++ b/advisories/unreviewed/2023/10/GHSA-j7xf-pgw2-75mr/GHSA-j7xf-pgw2-75mr.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-j7xf-pgw2-75mr", - "modified": "2024-02-11T06:30:27Z", + "modified": "2024-08-29T15:30:30Z", "published": "2023-10-04T18:30:32Z", "aliases": [ "CVE-2023-5371" diff --git a/advisories/unreviewed/2023/11/GHSA-xx79-4755-jq22/GHSA-xx79-4755-jq22.json b/advisories/unreviewed/2023/11/GHSA-xx79-4755-jq22/GHSA-xx79-4755-jq22.json index c703b53cf71..6356a361016 100644 --- a/advisories/unreviewed/2023/11/GHSA-xx79-4755-jq22/GHSA-xx79-4755-jq22.json +++ b/advisories/unreviewed/2023/11/GHSA-xx79-4755-jq22/GHSA-xx79-4755-jq22.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-xx79-4755-jq22", - "modified": "2024-02-11T06:30:27Z", + "modified": "2024-08-29T15:30:30Z", "published": "2023-11-16T12:30:21Z", "aliases": [ "CVE-2023-6174" diff --git a/advisories/unreviewed/2024/02/GHSA-3prf-2gpr-5j48/GHSA-3prf-2gpr-5j48.json b/advisories/unreviewed/2024/02/GHSA-3prf-2gpr-5j48/GHSA-3prf-2gpr-5j48.json index f3a46258e49..4d2eb0e0f49 100644 --- a/advisories/unreviewed/2024/02/GHSA-3prf-2gpr-5j48/GHSA-3prf-2gpr-5j48.json +++ b/advisories/unreviewed/2024/02/GHSA-3prf-2gpr-5j48/GHSA-3prf-2gpr-5j48.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-3prf-2gpr-5j48", - "modified": "2024-02-16T12:30:34Z", + "modified": "2024-08-29T15:30:30Z", "published": "2024-02-16T12:30:34Z", "aliases": [ "CVE-2024-22426" @@ -24,6 +24,10 @@ { "type": "WEB", "url": "https://www.dell.com/support/kbdoc/en-us/000222133/dsa-2024-092-security-update-for-dell-recoverpoint-for-virtual-machines-multiple-vulnerabilities" + }, + { + "type": "WEB", + "url": "https://www.dell.com/support/kbdoc/en-us/000228154/dsa-2024-369-security-update-for-dell-recoverpoint-for-virtual-machines-multiple-vulnerabilities" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/02/GHSA-9m95-x9fm-78hh/GHSA-9m95-x9fm-78hh.json b/advisories/unreviewed/2024/02/GHSA-9m95-x9fm-78hh/GHSA-9m95-x9fm-78hh.json index b7ce8afe912..250bfb2cfcb 100644 --- a/advisories/unreviewed/2024/02/GHSA-9m95-x9fm-78hh/GHSA-9m95-x9fm-78hh.json +++ b/advisories/unreviewed/2024/02/GHSA-9m95-x9fm-78hh/GHSA-9m95-x9fm-78hh.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-9m95-x9fm-78hh", - "modified": "2024-02-16T12:30:34Z", + "modified": "2024-08-29T15:30:30Z", "published": "2024-02-16T12:30:34Z", "aliases": [ "CVE-2024-22425" @@ -24,6 +24,10 @@ { "type": "WEB", "url": "https://www.dell.com/support/kbdoc/en-us/000222133/dsa-2024-092-security-update-for-dell-recoverpoint-for-virtual-machines-multiple-vulnerabilities" + }, + { + "type": "WEB", + "url": "https://www.dell.com/support/kbdoc/en-us/000228154/dsa-2024-369-security-update-for-dell-recoverpoint-for-virtual-machines-multiple-vulnerabilities" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/07/GHSA-37qc-prgq-xwcm/GHSA-37qc-prgq-xwcm.json b/advisories/unreviewed/2024/07/GHSA-37qc-prgq-xwcm/GHSA-37qc-prgq-xwcm.json index aa4f460d82d..3f6c375821d 100644 --- a/advisories/unreviewed/2024/07/GHSA-37qc-prgq-xwcm/GHSA-37qc-prgq-xwcm.json +++ b/advisories/unreviewed/2024/07/GHSA-37qc-prgq-xwcm/GHSA-37qc-prgq-xwcm.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-37qc-prgq-xwcm", - "modified": "2024-07-12T15:31:27Z", + "modified": "2024-08-29T15:30:31Z", "published": "2024-07-12T15:31:27Z", "aliases": [ "CVE-2024-40910" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nax25: Fix refcount imbalance on inbound connections\n\nWhen releasing a socket in ax25_release(), we call netdev_put() to\ndecrease the refcount on the associated ax.25 device. However, the\nexecution path for accepting an incoming connection never calls\nnetdev_hold(). This imbalance leads to refcount errors, and ultimately\nto kernel crashes.\n\nA typical call trace for the above situation will start with one of the\nfollowing errors:\n\n refcount_t: decrement hit 0; leaking memory.\n refcount_t: underflow; use-after-free.\n\nAnd will then have a trace like:\n\n Call Trace:\n \n ? show_regs+0x64/0x70\n ? __warn+0x83/0x120\n ? refcount_warn_saturate+0xb2/0x100\n ? report_bug+0x158/0x190\n ? prb_read_valid+0x20/0x30\n ? handle_bug+0x3e/0x70\n ? exc_invalid_op+0x1c/0x70\n ? asm_exc_invalid_op+0x1f/0x30\n ? refcount_warn_saturate+0xb2/0x100\n ? refcount_warn_saturate+0xb2/0x100\n ax25_release+0x2ad/0x360\n __sock_release+0x35/0xa0\n sock_close+0x19/0x20\n [...]\n\nOn reboot (or any attempt to remove the interface), the kernel gets\nstuck in an infinite loop:\n\n unregister_netdevice: waiting for ax0 to become free. Usage count = 0\n\nThis patch corrects these issues by ensuring that we call netdev_hold()\nand ax25_dev_hold() for new connections in ax25_accept(). This makes the\nlogic leading to ax25_accept() match the logic for ax25_bind(): in both\ncases we increment the refcount, which is ultimately decremented in\nax25_release().", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -39,7 +42,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-12T13:15:14Z" diff --git a/advisories/unreviewed/2024/07/GHSA-8xrm-p372-wx3c/GHSA-8xrm-p372-wx3c.json b/advisories/unreviewed/2024/07/GHSA-8xrm-p372-wx3c/GHSA-8xrm-p372-wx3c.json index 93bc4dea802..f03f332ead8 100644 --- a/advisories/unreviewed/2024/07/GHSA-8xrm-p372-wx3c/GHSA-8xrm-p372-wx3c.json +++ b/advisories/unreviewed/2024/07/GHSA-8xrm-p372-wx3c/GHSA-8xrm-p372-wx3c.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-8xrm-p372-wx3c", - "modified": "2024-07-12T15:31:27Z", + "modified": "2024-08-29T15:30:31Z", "published": "2024-07-12T15:31:27Z", "aliases": [ "CVE-2024-40911" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: cfg80211: Lock wiphy in cfg80211_get_station\n\nWiphy should be locked before calling rdev_get_station() (see lockdep\nassert in ieee80211_get_station()).\n\nThis fixes the following kernel NULL dereference:\n\n Unable to handle kernel NULL pointer dereference at virtual address 0000000000000050\n Mem abort info:\n ESR = 0x0000000096000006\n EC = 0x25: DABT (current EL), IL = 32 bits\n SET = 0, FnV = 0\n EA = 0, S1PTW = 0\n FSC = 0x06: level 2 translation fault\n Data abort info:\n ISV = 0, ISS = 0x00000006\n CM = 0, WnR = 0\n user pgtable: 4k pages, 48-bit VAs, pgdp=0000000003001000\n [0000000000000050] pgd=0800000002dca003, p4d=0800000002dca003, pud=08000000028e9003, pmd=0000000000000000\n Internal error: Oops: 0000000096000006 [#1] SMP\n Modules linked in: netconsole dwc3_meson_g12a dwc3_of_simple dwc3 ip_gre gre ath10k_pci ath10k_core ath9k ath9k_common ath9k_hw ath\n CPU: 0 PID: 1091 Comm: kworker/u8:0 Not tainted 6.4.0-02144-g565f9a3a7911-dirty #705\n Hardware name: RPT (r1) (DT)\n Workqueue: bat_events batadv_v_elp_throughput_metric_update\n pstate: 60000005 (nZCv daif -PAN -UAO -TCO -DIT -SSBS BTYPE=--)\n pc : ath10k_sta_statistics+0x10/0x2dc [ath10k_core]\n lr : sta_set_sinfo+0xcc/0xbd4\n sp : ffff000007b43ad0\n x29: ffff000007b43ad0 x28: ffff0000071fa900 x27: ffff00000294ca98\n x26: ffff000006830880 x25: ffff000006830880 x24: ffff00000294c000\n x23: 0000000000000001 x22: ffff000007b43c90 x21: ffff800008898acc\n x20: ffff00000294c6e8 x19: ffff000007b43c90 x18: 0000000000000000\n x17: 445946354d552d78 x16: 62661f7200000000 x15: 57464f445946354d\n x14: 0000000000000000 x13: 00000000000000e3 x12: d5f0acbcebea978e\n x11: 00000000000000e3 x10: 000000010048fe41 x9 : 0000000000000000\n x8 : ffff000007b43d90 x7 : 000000007a1e2125 x6 : 0000000000000000\n x5 : ffff0000024e0900 x4 : ffff800000a0250c x3 : ffff000007b43c90\n x2 : ffff00000294ca98 x1 : ffff000006831920 x0 : 0000000000000000\n Call trace:\n ath10k_sta_statistics+0x10/0x2dc [ath10k_core]\n sta_set_sinfo+0xcc/0xbd4\n ieee80211_get_station+0x2c/0x44\n cfg80211_get_station+0x80/0x154\n batadv_v_elp_get_throughput+0x138/0x1fc\n batadv_v_elp_throughput_metric_update+0x1c/0xa4\n process_one_work+0x1ec/0x414\n worker_thread+0x70/0x46c\n kthread+0xdc/0xe0\n ret_from_fork+0x10/0x20\n Code: a9bb7bfd 910003fd a90153f3 f9411c40 (f9402814)\n\nThis happens because STA has time to disconnect and reconnect before\nbatadv_v_elp_throughput_metric_update() delayed work gets scheduled. In\nthis situation, ath10k_sta_state() can be in the middle of resetting\narsta data when the work queue get chance to be scheduled and ends up\naccessing it. Locking wiphy prevents that.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -41,9 +44,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-12T13:15:14Z" diff --git a/advisories/unreviewed/2024/07/GHSA-gv3v-qg2j-v72x/GHSA-gv3v-qg2j-v72x.json b/advisories/unreviewed/2024/07/GHSA-gv3v-qg2j-v72x/GHSA-gv3v-qg2j-v72x.json index 1a834b7f33a..107f39dddbd 100644 --- a/advisories/unreviewed/2024/07/GHSA-gv3v-qg2j-v72x/GHSA-gv3v-qg2j-v72x.json +++ b/advisories/unreviewed/2024/07/GHSA-gv3v-qg2j-v72x/GHSA-gv3v-qg2j-v72x.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-gv3v-qg2j-v72x", - "modified": "2024-07-12T15:31:27Z", + "modified": "2024-08-29T15:30:31Z", "published": "2024-07-12T15:31:27Z", "aliases": [ "CVE-2024-40907" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nionic: fix kernel panic in XDP_TX action\n\nIn the XDP_TX path, ionic driver sends a packet to the TX path with rx\npage and corresponding dma address.\nAfter tx is done, ionic_tx_clean() frees that page.\nBut RX ring buffer isn't reset to NULL.\nSo, it uses a freed page, which causes kernel panic.\n\nBUG: unable to handle page fault for address: ffff8881576c110c\nPGD 773801067 P4D 773801067 PUD 87f086067 PMD 87efca067 PTE 800ffffea893e060\nOops: Oops: 0000 [#1] PREEMPT SMP DEBUG_PAGEALLOC KASAN NOPTI\nCPU: 1 PID: 25 Comm: ksoftirqd/1 Not tainted 6.9.0+ #11\nHardware name: ASUS System Product Name/PRIME Z690-P D4, BIOS 0603 11/01/2021\nRIP: 0010:bpf_prog_f0b8caeac1068a55_balancer_ingress+0x3b/0x44f\nCode: 00 53 41 55 41 56 41 57 b8 01 00 00 00 48 8b 5f 08 4c 8b 77 00 4c 89 f7 48 83 c7 0e 48 39 d8\nRSP: 0018:ffff888104e6fa28 EFLAGS: 00010283\nRAX: 0000000000000002 RBX: ffff8881576c1140 RCX: 0000000000000002\nRDX: ffffffffc0051f64 RSI: ffffc90002d33048 RDI: ffff8881576c110e\nRBP: ffff888104e6fa88 R08: 0000000000000000 R09: ffffed1027a04a23\nR10: 0000000000000000 R11: 0000000000000000 R12: ffff8881b03a21a8\nR13: ffff8881589f800f R14: ffff8881576c1100 R15: 00000001576c1100\nFS: 0000000000000000(0000) GS:ffff88881ae00000(0000) knlGS:0000000000000000\nCS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\nCR2: ffff8881576c110c CR3: 0000000767a90000 CR4: 00000000007506f0\nPKRU: 55555554\nCall Trace:\n\n? __die+0x20/0x70\n? page_fault_oops+0x254/0x790\n? __pfx_page_fault_oops+0x10/0x10\n? __pfx_is_prefetch.constprop.0+0x10/0x10\n? search_bpf_extables+0x165/0x260\n? fixup_exception+0x4a/0x970\n? exc_page_fault+0xcb/0xe0\n? asm_exc_page_fault+0x22/0x30\n? 0xffffffffc0051f64\n? bpf_prog_f0b8caeac1068a55_balancer_ingress+0x3b/0x44f\n? do_raw_spin_unlock+0x54/0x220\nionic_rx_service+0x11ab/0x3010 [ionic 9180c3001ab627d82bbc5f3ebe8a0decaf6bb864]\n? ionic_tx_clean+0x29b/0xc60 [ionic 9180c3001ab627d82bbc5f3ebe8a0decaf6bb864]\n? __pfx_ionic_tx_clean+0x10/0x10 [ionic 9180c3001ab627d82bbc5f3ebe8a0decaf6bb864]\n? __pfx_ionic_rx_service+0x10/0x10 [ionic 9180c3001ab627d82bbc5f3ebe8a0decaf6bb864]\n? ionic_tx_cq_service+0x25d/0xa00 [ionic 9180c3001ab627d82bbc5f3ebe8a0decaf6bb864]\n? __pfx_ionic_rx_service+0x10/0x10 [ionic 9180c3001ab627d82bbc5f3ebe8a0decaf6bb864]\nionic_cq_service+0x69/0x150 [ionic 9180c3001ab627d82bbc5f3ebe8a0decaf6bb864]\nionic_txrx_napi+0x11a/0x540 [ionic 9180c3001ab627d82bbc5f3ebe8a0decaf6bb864]\n__napi_poll.constprop.0+0xa0/0x440\nnet_rx_action+0x7e7/0xc30\n? __pfx_net_rx_action+0x10/0x10", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-416" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-12T13:15:13Z" diff --git a/advisories/unreviewed/2024/07/GHSA-jpp6-vjx7-xmp2/GHSA-jpp6-vjx7-xmp2.json b/advisories/unreviewed/2024/07/GHSA-jpp6-vjx7-xmp2/GHSA-jpp6-vjx7-xmp2.json index d4cd5d04e8a..9fa2ff7aa69 100644 --- a/advisories/unreviewed/2024/07/GHSA-jpp6-vjx7-xmp2/GHSA-jpp6-vjx7-xmp2.json +++ b/advisories/unreviewed/2024/07/GHSA-jpp6-vjx7-xmp2/GHSA-jpp6-vjx7-xmp2.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-jpp6-vjx7-xmp2", - "modified": "2024-07-12T15:31:27Z", + "modified": "2024-08-29T15:30:31Z", "published": "2024-07-12T15:31:27Z", "aliases": [ "CVE-2024-40906" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet/mlx5: Always stop health timer during driver removal\n\nCurrently, if teardown_hca fails to execute during driver removal, mlx5\ndoes not stop the health timer. Afterwards, mlx5 continue with driver\nteardown. This may lead to a UAF bug, which results in page fault\nOops[1], since the health timer invokes after resources were freed.\n\nHence, stop the health monitor even if teardown_hca fails.\n\n[1]\nmlx5_core 0000:18:00.0: E-Switch: Unload vfs: mode(LEGACY), nvfs(0), necvfs(0), active vports(0)\nmlx5_core 0000:18:00.0: E-Switch: Disable: mode(LEGACY), nvfs(0), necvfs(0), active vports(0)\nmlx5_core 0000:18:00.0: E-Switch: Disable: mode(LEGACY), nvfs(0), necvfs(0), active vports(0)\nmlx5_core 0000:18:00.0: E-Switch: cleanup\nmlx5_core 0000:18:00.0: wait_func:1155:(pid 1967079): TEARDOWN_HCA(0x103) timeout. Will cause a leak of a command resource\nmlx5_core 0000:18:00.0: mlx5_function_close:1288:(pid 1967079): tear_down_hca failed, skip cleanup\nBUG: unable to handle page fault for address: ffffa26487064230\nPGD 100c00067 P4D 100c00067 PUD 100e5a067 PMD 105ed7067 PTE 0\nOops: 0000 [#1] PREEMPT SMP PTI\nCPU: 0 PID: 0 Comm: swapper/0 Tainted: G OE ------- --- 6.7.0-68.fc38.x86_64 #1\nHardware name: Intel Corporation S2600WFT/S2600WFT, BIOS SE5C620.86B.02.01.0013.121520200651 12/15/2020\nRIP: 0010:ioread32be+0x34/0x60\nRSP: 0018:ffffa26480003e58 EFLAGS: 00010292\nRAX: ffffa26487064200 RBX: ffff9042d08161a0 RCX: ffff904c108222c0\nRDX: 000000010bbf1b80 RSI: ffffffffc055ddb0 RDI: ffffa26487064230\nRBP: ffff9042d08161a0 R08: 0000000000000022 R09: ffff904c108222e8\nR10: 0000000000000004 R11: 0000000000000441 R12: ffffffffc055ddb0\nR13: ffffa26487064200 R14: ffffa26480003f00 R15: ffff904c108222c0\nFS: 0000000000000000(0000) GS:ffff904c10800000(0000) knlGS:0000000000000000\nCS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\nCR2: ffffa26487064230 CR3: 00000002c4420006 CR4: 00000000007706f0\nDR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000\nDR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400\nPKRU: 55555554\nCall Trace:\n \n ? __die+0x23/0x70\n ? page_fault_oops+0x171/0x4e0\n ? exc_page_fault+0x175/0x180\n ? asm_exc_page_fault+0x26/0x30\n ? __pfx_poll_health+0x10/0x10 [mlx5_core]\n ? __pfx_poll_health+0x10/0x10 [mlx5_core]\n ? ioread32be+0x34/0x60\n mlx5_health_check_fatal_sensors+0x20/0x100 [mlx5_core]\n ? __pfx_poll_health+0x10/0x10 [mlx5_core]\n poll_health+0x42/0x230 [mlx5_core]\n ? __next_timer_interrupt+0xbc/0x110\n ? __pfx_poll_health+0x10/0x10 [mlx5_core]\n call_timer_fn+0x21/0x130\n ? __pfx_poll_health+0x10/0x10 [mlx5_core]\n __run_timers+0x222/0x2c0\n run_timer_softirq+0x1d/0x40\n __do_softirq+0xc9/0x2c8\n __irq_exit_rcu+0xa6/0xc0\n sysvec_apic_timer_interrupt+0x72/0x90\n \n \n asm_sysvec_apic_timer_interrupt+0x1a/0x20\nRIP: 0010:cpuidle_enter_state+0xcc/0x440\n ? cpuidle_enter_state+0xbd/0x440\n cpuidle_enter+0x2d/0x40\n do_idle+0x20d/0x270\n cpu_startup_entry+0x2a/0x30\n rest_init+0xd0/0xd0\n arch_call_rest_init+0xe/0x30\n start_kernel+0x709/0xa90\n x86_64_start_reservations+0x18/0x30\n x86_64_start_kernel+0x96/0xa0\n secondary_startup_64_no_verify+0x18f/0x19b\n---[ end trace 0000000000000000 ]---", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-416" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-12T13:15:13Z" diff --git a/advisories/unreviewed/2024/07/GHSA-qwcv-c594-jh3g/GHSA-qwcv-c594-jh3g.json b/advisories/unreviewed/2024/07/GHSA-qwcv-c594-jh3g/GHSA-qwcv-c594-jh3g.json index 45f72acb9fe..7970dd7a4a3 100644 --- a/advisories/unreviewed/2024/07/GHSA-qwcv-c594-jh3g/GHSA-qwcv-c594-jh3g.json +++ b/advisories/unreviewed/2024/07/GHSA-qwcv-c594-jh3g/GHSA-qwcv-c594-jh3g.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-qwcv-c594-jh3g", - "modified": "2024-07-12T15:31:27Z", + "modified": "2024-08-29T15:30:31Z", "published": "2024-07-12T15:31:27Z", "aliases": [ "CVE-2024-40912" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: mac80211: Fix deadlock in ieee80211_sta_ps_deliver_wakeup()\n\nThe ieee80211_sta_ps_deliver_wakeup() function takes sta->ps_lock to\nsynchronizes with ieee80211_tx_h_unicast_ps_buf() which is called from\nsoftirq context. However using only spin_lock() to get sta->ps_lock in\nieee80211_sta_ps_deliver_wakeup() does not prevent softirq to execute\non this same CPU, to run ieee80211_tx_h_unicast_ps_buf() and try to\ntake this same lock ending in deadlock. Below is an example of rcu stall\nthat arises in such situation.\n\n rcu: INFO: rcu_sched self-detected stall on CPU\n rcu: 2-....: (42413413 ticks this GP) idle=b154/1/0x4000000000000000 softirq=1763/1765 fqs=21206996\n rcu: (t=42586894 jiffies g=2057 q=362405 ncpus=4)\n CPU: 2 PID: 719 Comm: wpa_supplicant Tainted: G W 6.4.0-02158-g1b062f552873 #742\n Hardware name: RPT (r1) (DT)\n pstate: 00000005 (nzcv daif -PAN -UAO -TCO -DIT -SSBS BTYPE=--)\n pc : queued_spin_lock_slowpath+0x58/0x2d0\n lr : invoke_tx_handlers_early+0x5b4/0x5c0\n sp : ffff00001ef64660\n x29: ffff00001ef64660 x28: ffff000009bc1070 x27: ffff000009bc0ad8\n x26: ffff000009bc0900 x25: ffff00001ef647a8 x24: 0000000000000000\n x23: ffff000009bc0900 x22: ffff000009bc0900 x21: ffff00000ac0e000\n x20: ffff00000a279e00 x19: ffff00001ef646e8 x18: 0000000000000000\n x17: ffff800016468000 x16: ffff00001ef608c0 x15: 0010533c93f64f80\n x14: 0010395c9faa3946 x13: 0000000000000000 x12: 00000000fa83b2da\n x11: 000000012edeceea x10: ffff0000010fbe00 x9 : 0000000000895440\n x8 : 000000000010533c x7 : ffff00000ad8b740 x6 : ffff00000c350880\n x5 : 0000000000000007 x4 : 0000000000000001 x3 : 0000000000000000\n x2 : 0000000000000000 x1 : 0000000000000001 x0 : ffff00000ac0e0e8\n Call trace:\n queued_spin_lock_slowpath+0x58/0x2d0\n ieee80211_tx+0x80/0x12c\n ieee80211_tx_pending+0x110/0x278\n tasklet_action_common.constprop.0+0x10c/0x144\n tasklet_action+0x20/0x28\n _stext+0x11c/0x284\n ____do_softirq+0xc/0x14\n call_on_irq_stack+0x24/0x34\n do_softirq_own_stack+0x18/0x20\n do_softirq+0x74/0x7c\n __local_bh_enable_ip+0xa0/0xa4\n _ieee80211_wake_txqs+0x3b0/0x4b8\n __ieee80211_wake_queue+0x12c/0x168\n ieee80211_add_pending_skbs+0xec/0x138\n ieee80211_sta_ps_deliver_wakeup+0x2a4/0x480\n ieee80211_mps_sta_status_update.part.0+0xd8/0x11c\n ieee80211_mps_sta_status_update+0x18/0x24\n sta_apply_parameters+0x3bc/0x4c0\n ieee80211_change_station+0x1b8/0x2dc\n nl80211_set_station+0x444/0x49c\n genl_family_rcv_msg_doit.isra.0+0xa4/0xfc\n genl_rcv_msg+0x1b0/0x244\n netlink_rcv_skb+0x38/0x10c\n genl_rcv+0x34/0x48\n netlink_unicast+0x254/0x2bc\n netlink_sendmsg+0x190/0x3b4\n ____sys_sendmsg+0x1e8/0x218\n ___sys_sendmsg+0x68/0x8c\n __sys_sendmsg+0x44/0x84\n __arm64_sys_sendmsg+0x20/0x28\n do_el0_svc+0x6c/0xe8\n el0_svc+0x14/0x48\n el0t_64_sync_handler+0xb0/0xb4\n el0t_64_sync+0x14c/0x150\n\nUsing spin_lock_bh()/spin_unlock_bh() instead prevents softirq to raise\non the same CPU that is holding the lock.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-667" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-12T13:15:14Z" diff --git a/advisories/unreviewed/2024/07/GHSA-v89r-8c65-6vgh/GHSA-v89r-8c65-6vgh.json b/advisories/unreviewed/2024/07/GHSA-v89r-8c65-6vgh/GHSA-v89r-8c65-6vgh.json index d919b2c150f..9d568e54741 100644 --- a/advisories/unreviewed/2024/07/GHSA-v89r-8c65-6vgh/GHSA-v89r-8c65-6vgh.json +++ b/advisories/unreviewed/2024/07/GHSA-v89r-8c65-6vgh/GHSA-v89r-8c65-6vgh.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-v89r-8c65-6vgh", - "modified": "2024-07-12T15:31:27Z", + "modified": "2024-08-29T15:30:31Z", "published": "2024-07-12T15:31:27Z", "aliases": [ "CVE-2024-40909" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Fix a potential use-after-free in bpf_link_free()\n\nAfter commit 1a80dbcb2dba, bpf_link can be freed by\nlink->ops->dealloc_deferred, but the code still tests and uses\nlink->ops->dealloc afterward, which leads to a use-after-free as\nreported by syzbot. Actually, one of them should be sufficient, so\njust call one of them instead of both. Also add a WARN_ON() in case\nof any problematic implementation.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-416" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-12T13:15:14Z" diff --git a/advisories/unreviewed/2024/08/GHSA-2wj5-m5gf-xp7w/GHSA-2wj5-m5gf-xp7w.json b/advisories/unreviewed/2024/08/GHSA-2wj5-m5gf-xp7w/GHSA-2wj5-m5gf-xp7w.json new file mode 100644 index 00000000000..0f390accd7e --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-2wj5-m5gf-xp7w/GHSA-2wj5-m5gf-xp7w.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2wj5-m5gf-xp7w", + "modified": "2024-08-29T15:30:34Z", + "published": "2024-08-29T15:30:34Z", + "aliases": [ + "CVE-2024-38795" + ], + "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in CridioStudio ListingPro allows SQL Injection.This issue affects ListingPro: from n/a through 2.9.4.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-38795" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/listingpro-plugin/wordpress-listingpro-plugin-2-9-3-unauthenticated-sql-injection-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-29T15:15:26Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-3949-74rr-85j5/GHSA-3949-74rr-85j5.json b/advisories/unreviewed/2024/08/GHSA-3949-74rr-85j5/GHSA-3949-74rr-85j5.json index 2c4aa42ffca..0a909a4beb9 100644 --- a/advisories/unreviewed/2024/08/GHSA-3949-74rr-85j5/GHSA-3949-74rr-85j5.json +++ b/advisories/unreviewed/2024/08/GHSA-3949-74rr-85j5/GHSA-3949-74rr-85j5.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-3949-74rr-85j5", - "modified": "2024-08-12T15:30:50Z", + "modified": "2024-08-29T15:30:31Z", "published": "2024-08-12T15:30:50Z", "aliases": [ "CVE-2024-42166" diff --git a/advisories/unreviewed/2024/08/GHSA-3g5c-7828-xwcq/GHSA-3g5c-7828-xwcq.json b/advisories/unreviewed/2024/08/GHSA-3g5c-7828-xwcq/GHSA-3g5c-7828-xwcq.json new file mode 100644 index 00000000000..35e1cb8efd8 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-3g5c-7828-xwcq/GHSA-3g5c-7828-xwcq.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3g5c-7828-xwcq", + "modified": "2024-08-29T15:30:34Z", + "published": "2024-08-29T15:30:34Z", + "aliases": [ + "CVE-2024-43144" + ], + "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in StylemixThemes Cost Calculator Builder allows SQL Injection.This issue affects Cost Calculator Builder: from n/a through 3.2.15.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-43144" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/cost-calculator-builder/wordpress-cost-calculator-builder-plugin-3-2-15-sql-injection-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-29T15:15:28Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-3g89-46wx-prw3/GHSA-3g89-46wx-prw3.json b/advisories/unreviewed/2024/08/GHSA-3g89-46wx-prw3/GHSA-3g89-46wx-prw3.json new file mode 100644 index 00000000000..3041c2f4258 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-3g89-46wx-prw3/GHSA-3g89-46wx-prw3.json @@ -0,0 +1,54 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3g89-46wx-prw3", + "modified": "2024-08-29T15:30:34Z", + "published": "2024-08-29T15:30:34Z", + "aliases": [ + "CVE-2024-8302" + ], + "details": "A vulnerability was found in dingfanzu CMS up to 29d67d9044f6f93378e6eb6ff92272217ff7225c. It has been rated as critical. Affected by this issue is some unknown functionality of the file /ajax/chpwd.php. The manipulation of the argument username leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. Continious delivery with rolling releases is used by this product. Therefore, no version details of affected nor updated releases are available. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8302" + }, + { + "type": "WEB", + "url": "https://github.com/Xor-Gerke/webray.com.cn/blob/main/cve/dingfanzu-CMS/dingfanzu-CMS%20chpwd.php%20username%20SQL-inject.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.276074" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.276074" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.396297" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-29T14:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-3gcf-28pg-3vm2/GHSA-3gcf-28pg-3vm2.json b/advisories/unreviewed/2024/08/GHSA-3gcf-28pg-3vm2/GHSA-3gcf-28pg-3vm2.json new file mode 100644 index 00000000000..97e3cb425e5 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-3gcf-28pg-3vm2/GHSA-3gcf-28pg-3vm2.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3gcf-28pg-3vm2", + "modified": "2024-08-29T15:30:34Z", + "published": "2024-08-29T15:30:34Z", + "aliases": [ + "CVE-2024-43931" + ], + "details": "Deserialization of Untrusted Data vulnerability in eyecix JobSearch allows Object Injection.This issue affects JobSearch: from n/a through 2.5.3.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-43931" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/wp-jobsearch/wordpress-jobsearch-wp-job-board-wordpress-plugin-plugin-2-5-3-php-object-injection-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-502" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-29T15:15:29Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-55hf-7wcx-6xm5/GHSA-55hf-7wcx-6xm5.json b/advisories/unreviewed/2024/08/GHSA-55hf-7wcx-6xm5/GHSA-55hf-7wcx-6xm5.json new file mode 100644 index 00000000000..37a8d18f06d --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-55hf-7wcx-6xm5/GHSA-55hf-7wcx-6xm5.json @@ -0,0 +1,54 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-55hf-7wcx-6xm5", + "modified": "2024-08-29T15:30:34Z", + "published": "2024-08-29T15:30:34Z", + "aliases": [ + "CVE-2024-8304" + ], + "details": "A vulnerability has been found in jpress up to 5.1.1 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/template/edit of the component Template Module Handler. The manipulation leads to path traversal. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8304" + }, + { + "type": "WEB", + "url": "https://github.com/JPressProjects/jpress/issues/189" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.276079" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.276079" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.396425" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-22" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-29T15:15:35Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-572h-92hg-4mqm/GHSA-572h-92hg-4mqm.json b/advisories/unreviewed/2024/08/GHSA-572h-92hg-4mqm/GHSA-572h-92hg-4mqm.json index ae51e529c04..fdb6330a3ab 100644 --- a/advisories/unreviewed/2024/08/GHSA-572h-92hg-4mqm/GHSA-572h-92hg-4mqm.json +++ b/advisories/unreviewed/2024/08/GHSA-572h-92hg-4mqm/GHSA-572h-92hg-4mqm.json @@ -28,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-287" + "CWE-287", + "CWE-330" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/08/GHSA-6qf3-9vph-fhj7/GHSA-6qf3-9vph-fhj7.json b/advisories/unreviewed/2024/08/GHSA-6qf3-9vph-fhj7/GHSA-6qf3-9vph-fhj7.json new file mode 100644 index 00000000000..73bb0a47858 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-6qf3-9vph-fhj7/GHSA-6qf3-9vph-fhj7.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6qf3-9vph-fhj7", + "modified": "2024-08-29T15:30:34Z", + "published": "2024-08-29T15:30:34Z", + "aliases": [ + "CVE-2024-5057" + ], + "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Easy Digital Downloads allows SQL Injection.This issue affects Easy Digital Downloads: from n/a through 3.2.12.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5057" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/easy-digital-downloads/wordpress-easy-digital-downloads-plugin-3-2-12-sql-injection-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-29T14:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-76xq-3xgg-jfmh/GHSA-76xq-3xgg-jfmh.json b/advisories/unreviewed/2024/08/GHSA-76xq-3xgg-jfmh/GHSA-76xq-3xgg-jfmh.json new file mode 100644 index 00000000000..76b8de51ce1 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-76xq-3xgg-jfmh/GHSA-76xq-3xgg-jfmh.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-76xq-3xgg-jfmh", + "modified": "2024-08-29T15:30:34Z", + "published": "2024-08-29T15:30:34Z", + "aliases": [ + "CVE-2024-43918" + ], + "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WBW WBW Product Table PRO allows SQL Injection.This issue affects WBW Product Table PRO: from n/a through 1.9.4.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-43918" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/woo-producttables-pro/wordpress-wbw-product-table-pro-plugin-1-9-4-unauthenticated-arbitrary-sql-query-execution-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-29T15:15:29Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-7x7c-qf6f-ghfc/GHSA-7x7c-qf6f-ghfc.json b/advisories/unreviewed/2024/08/GHSA-7x7c-qf6f-ghfc/GHSA-7x7c-qf6f-ghfc.json new file mode 100644 index 00000000000..55928910048 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-7x7c-qf6f-ghfc/GHSA-7x7c-qf6f-ghfc.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7x7c-qf6f-ghfc", + "modified": "2024-08-29T15:30:34Z", + "published": "2024-08-29T15:30:34Z", + "aliases": [ + "CVE-2024-43922" + ], + "details": "Improper Control of Generation of Code ('Code Injection') vulnerability in NitroPack Inc. NitroPack allows Code Injection.This issue affects NitroPack: from n/a through 1.16.7.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-43922" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/nitropack/wordpress-nitropack-plugin-1-16-7-unauthenticated-arbitrary-shortcode-execution-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-94" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-29T15:15:29Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-84mg-g9pc-55ph/GHSA-84mg-g9pc-55ph.json b/advisories/unreviewed/2024/08/GHSA-84mg-g9pc-55ph/GHSA-84mg-g9pc-55ph.json new file mode 100644 index 00000000000..67f92cc91bd --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-84mg-g9pc-55ph/GHSA-84mg-g9pc-55ph.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-84mg-g9pc-55ph", + "modified": "2024-08-29T15:30:33Z", + "published": "2024-08-29T15:30:33Z", + "aliases": [ + "CVE-2024-1384" + ], + "details": "The Premium Portfolio Features for Phlox theme plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'aux_recent_portfolios_grid' shortcode in all versions up to, and including, 2.3.3 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-1384" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/auxin-portfolio/trunk/includes/elements/recent-portfolios.php" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/4475cbd4-07cf-499a-a11a-b63eb9184568?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-29T13:15:05Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-8g69-r984-m943/GHSA-8g69-r984-m943.json b/advisories/unreviewed/2024/08/GHSA-8g69-r984-m943/GHSA-8g69-r984-m943.json new file mode 100644 index 00000000000..57d4a7588f5 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-8g69-r984-m943/GHSA-8g69-r984-m943.json @@ -0,0 +1,54 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8g69-r984-m943", + "modified": "2024-08-29T15:30:34Z", + "published": "2024-08-29T15:30:33Z", + "aliases": [ + "CVE-2024-8301" + ], + "details": "A vulnerability was found in dingfanzu CMS up to 29d67d9044f6f93378e6eb6ff92272217ff7225c. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /ajax/checkin.php. The manipulation of the argument username leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. This product takes the approach of rolling releases to provide continious delivery. Therefore, version details for affected and updated releases are not available. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8301" + }, + { + "type": "WEB", + "url": "https://github.com/Xor-Gerke/webray.com.cn/blob/main/cve/dingfanzu-CMS/dingfanzu-CMS%20checkin.php%20username%20SQL-inject.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.276073" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.276073" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.396294" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-29T13:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-992c-4m5h-875p/GHSA-992c-4m5h-875p.json b/advisories/unreviewed/2024/08/GHSA-992c-4m5h-875p/GHSA-992c-4m5h-875p.json new file mode 100644 index 00000000000..82a515bd6c2 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-992c-4m5h-875p/GHSA-992c-4m5h-875p.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-992c-4m5h-875p", + "modified": "2024-08-29T15:30:34Z", + "published": "2024-08-29T15:30:34Z", + "aliases": [ + "CVE-2024-39658" + ], + "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Salon Booking System Salon booking system allows SQL Injection.This issue affects Salon booking system: from n/a through 10.7.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-39658" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/salon-booking-system/wordpress-salon-booking-system-plugin-10-7-authenticated-sql-injection-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-29T15:15:27Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-9qq7-2j28-46rv/GHSA-9qq7-2j28-46rv.json b/advisories/unreviewed/2024/08/GHSA-9qq7-2j28-46rv/GHSA-9qq7-2j28-46rv.json new file mode 100644 index 00000000000..ccd41bd7004 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-9qq7-2j28-46rv/GHSA-9qq7-2j28-46rv.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9qq7-2j28-46rv", + "modified": "2024-08-29T15:30:34Z", + "published": "2024-08-29T15:30:34Z", + "aliases": [ + "CVE-2024-43942" + ], + "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Wpsoul Greenshift Query and Meta Addon allows SQL Injection.This issue affects Greenshift Query and Meta Addon: from n/a before 3.9.2.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-43942" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/greenshiftquery/wordpress-greenshift-query-and-meta-addon-plugin-3-9-2-subscriber-sql-injection-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-29T15:15:30Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-cfvh-qp4v-2hqc/GHSA-cfvh-qp4v-2hqc.json b/advisories/unreviewed/2024/08/GHSA-cfvh-qp4v-2hqc/GHSA-cfvh-qp4v-2hqc.json new file mode 100644 index 00000000000..b0c5eb2bd1a --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-cfvh-qp4v-2hqc/GHSA-cfvh-qp4v-2hqc.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cfvh-qp4v-2hqc", + "modified": "2024-08-29T15:30:34Z", + "published": "2024-08-29T15:30:34Z", + "aliases": [ + "CVE-2024-43917" + ], + "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TemplateInvaders TI WooCommerce Wishlist allows SQL Injection.This issue affects TI WooCommerce Wishlist: from n/a through 2.8.2.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-43917" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/ti-woocommerce-wishlist/wordpress-ti-woocommerce-wishlist-plugin-2-8-2-sql-injection-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-29T15:15:28Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-fr7q-6mh8-q5fp/GHSA-fr7q-6mh8-q5fp.json b/advisories/unreviewed/2024/08/GHSA-fr7q-6mh8-q5fp/GHSA-fr7q-6mh8-q5fp.json new file mode 100644 index 00000000000..3f9a712f15f --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-fr7q-6mh8-q5fp/GHSA-fr7q-6mh8-q5fp.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fr7q-6mh8-q5fp", + "modified": "2024-08-29T15:30:34Z", + "published": "2024-08-29T15:30:34Z", + "aliases": [ + "CVE-2024-39622" + ], + "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in CridioStudio ListingPro.This issue affects ListingPro: from n/a through 2.9.4.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-39622" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/listingpro/wordpress-listingpro-theme-2-9-3-unauthenticated-sql-injection-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-29T15:15:26Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-fvfg-7v3r-g9v3/GHSA-fvfg-7v3r-g9v3.json b/advisories/unreviewed/2024/08/GHSA-fvfg-7v3r-g9v3/GHSA-fvfg-7v3r-g9v3.json index d3c4de9e187..364e79c4771 100644 --- a/advisories/unreviewed/2024/08/GHSA-fvfg-7v3r-g9v3/GHSA-fvfg-7v3r-g9v3.json +++ b/advisories/unreviewed/2024/08/GHSA-fvfg-7v3r-g9v3/GHSA-fvfg-7v3r-g9v3.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-fvfg-7v3r-g9v3", - "modified": "2024-08-12T15:30:50Z", + "modified": "2024-08-29T15:30:31Z", "published": "2024-08-12T15:30:50Z", "aliases": [ "CVE-2024-42167" diff --git a/advisories/unreviewed/2024/08/GHSA-g7m4-8h9g-f86c/GHSA-g7m4-8h9g-f86c.json b/advisories/unreviewed/2024/08/GHSA-g7m4-8h9g-f86c/GHSA-g7m4-8h9g-f86c.json new file mode 100644 index 00000000000..5808262ce21 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-g7m4-8h9g-f86c/GHSA-g7m4-8h9g-f86c.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-g7m4-8h9g-f86c", + "modified": "2024-08-29T15:30:34Z", + "published": "2024-08-29T15:30:34Z", + "aliases": [ + "CVE-2024-39620" + ], + "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in CridioStudio ListingPro allows SQL Injection.This issue affects ListingPro: from n/a through 2.9.4.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-39620" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/listingpro-plugin/wordpress-listingpro-plugin-2-9-3-sql-injection-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-29T15:15:26Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-h7pm-jwh4-cx4r/GHSA-h7pm-jwh4-cx4r.json b/advisories/unreviewed/2024/08/GHSA-h7pm-jwh4-cx4r/GHSA-h7pm-jwh4-cx4r.json new file mode 100644 index 00000000000..11d0629588b --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-h7pm-jwh4-cx4r/GHSA-h7pm-jwh4-cx4r.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-h7pm-jwh4-cx4r", + "modified": "2024-08-29T15:30:34Z", + "published": "2024-08-29T15:30:34Z", + "aliases": [ + "CVE-2024-43939" + ], + "details": "Missing Authorization vulnerability in VIICTORY MEDIA LLC Z Y N I T H allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Z Y N I T H: from n/a through 7.4.9.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-43939" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/zynith-seo/wordpress-z-y-n-i-t-h-plugin-7-4-9-unauthenticated-arbitrary-option-deletion-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-862" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-29T15:15:29Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-h7wp-h36v-jjcw/GHSA-h7wp-h36v-jjcw.json b/advisories/unreviewed/2024/08/GHSA-h7wp-h36v-jjcw/GHSA-h7wp-h36v-jjcw.json new file mode 100644 index 00000000000..8c2ddec6604 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-h7wp-h36v-jjcw/GHSA-h7wp-h36v-jjcw.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-h7wp-h36v-jjcw", + "modified": "2024-08-29T15:30:34Z", + "published": "2024-08-29T15:30:34Z", + "aliases": [ + "CVE-2024-43941" + ], + "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Propovoice Propovoice Pro allows SQL Injection.This issue affects Propovoice Pro: from n/a through 1.7.0.3.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-43941" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/propovoice-pro/wordpress-propovoice-pro-plugin-1-7-0-3-unauthenticated-sql-injection-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-29T15:15:30Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-hw2c-64gc-7jv5/GHSA-hw2c-64gc-7jv5.json b/advisories/unreviewed/2024/08/GHSA-hw2c-64gc-7jv5/GHSA-hw2c-64gc-7jv5.json new file mode 100644 index 00000000000..d27de063d47 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-hw2c-64gc-7jv5/GHSA-hw2c-64gc-7jv5.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-hw2c-64gc-7jv5", + "modified": "2024-08-29T15:30:34Z", + "published": "2024-08-29T15:30:34Z", + "aliases": [ + "CVE-2024-38693" + ], + "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in weDevs WP User Frontend allows SQL Injection.This issue affects WP User Frontend: from n/a through 4.0.7.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-38693" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/wp-user-frontend/wordpress-wp-user-frontend-plugin-4-0-7-sql-injection-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-29T14:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-hwfj-8pr6-34jj/GHSA-hwfj-8pr6-34jj.json b/advisories/unreviewed/2024/08/GHSA-hwfj-8pr6-34jj/GHSA-hwfj-8pr6-34jj.json new file mode 100644 index 00000000000..a658c27404f --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-hwfj-8pr6-34jj/GHSA-hwfj-8pr6-34jj.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-hwfj-8pr6-34jj", + "modified": "2024-08-29T15:30:34Z", + "published": "2024-08-29T15:30:34Z", + "aliases": [ + "CVE-2024-38793" + ], + "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in PriceListo Best Restaurant Menu by PriceListo allows SQL Injection.This issue affects Best Restaurant Menu by PriceListo: from n/a through 1.4.1.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-38793" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/best-restaurant-menu-by-pricelisto/wordpress-best-restaurant-menu-by-pricelisto-plugin-1-4-1-sql-injection-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-29T15:15:26Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-j42w-vpmm-467m/GHSA-j42w-vpmm-467m.json b/advisories/unreviewed/2024/08/GHSA-j42w-vpmm-467m/GHSA-j42w-vpmm-467m.json new file mode 100644 index 00000000000..ff0ea2811e4 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-j42w-vpmm-467m/GHSA-j42w-vpmm-467m.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-j42w-vpmm-467m", + "modified": "2024-08-29T15:30:34Z", + "published": "2024-08-29T15:30:34Z", + "aliases": [ + "CVE-2024-43132" + ], + "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPWeb Elite Docket (WooCommerce Collections / Wishlist / Watchlist) allows SQL Injection.This issue affects Docket (WooCommerce Collections / Wishlist / Watchlist): from n/a before 1.7.0.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-43132" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/woocommerce-collections/wordpress-docket-woocommerce-collections-wishlist-watchlist-plugin-1-6-6-unauthenticated-sql-injection-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-29T15:15:28Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-mp2f-64xw-8jw9/GHSA-mp2f-64xw-8jw9.json b/advisories/unreviewed/2024/08/GHSA-mp2f-64xw-8jw9/GHSA-mp2f-64xw-8jw9.json new file mode 100644 index 00000000000..9743342d4c6 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-mp2f-64xw-8jw9/GHSA-mp2f-64xw-8jw9.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mp2f-64xw-8jw9", + "modified": "2024-08-29T15:30:33Z", + "published": "2024-08-29T15:30:33Z", + "aliases": [ + "CVE-2024-3679" + ], + "details": "The Premium SEO Pack – WP SEO Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.6.001. This makes it possible for unauthenticated attackers to view limited information from password protected posts through the social meta data.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-3679" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/premium-seo-pack" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/ccb65de5-bfb5-47db-87c9-ad46e65924b8?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-200" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-29T13:15:06Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-mpm3-6hq8-5x2v/GHSA-mpm3-6hq8-5x2v.json b/advisories/unreviewed/2024/08/GHSA-mpm3-6hq8-5x2v/GHSA-mpm3-6hq8-5x2v.json new file mode 100644 index 00000000000..b3d679b3eaa --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-mpm3-6hq8-5x2v/GHSA-mpm3-6hq8-5x2v.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mpm3-6hq8-5x2v", + "modified": "2024-08-29T15:30:34Z", + "published": "2024-08-29T15:30:34Z", + "aliases": [ + "CVE-2024-39653" + ], + "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in E4J s.R.L. VikRentCar allows SQL Injection.This issue affects VikRentCar: from n/a through 1.4.0.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-39653" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/vikrentcar/wordpress-vikrentcar-car-rental-management-system-plugin-1-4-0-sql-injection-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-29T15:15:27Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-mvpq-r829-8jx3/GHSA-mvpq-r829-8jx3.json b/advisories/unreviewed/2024/08/GHSA-mvpq-r829-8jx3/GHSA-mvpq-r829-8jx3.json new file mode 100644 index 00000000000..121e1cf00e6 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-mvpq-r829-8jx3/GHSA-mvpq-r829-8jx3.json @@ -0,0 +1,58 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mvpq-r829-8jx3", + "modified": "2024-08-29T15:30:33Z", + "published": "2024-08-29T15:30:33Z", + "aliases": [ + "CVE-2024-8297" + ], + "details": "A vulnerability was found in kitsada8621 Digital Library Management System 1.0. It has been classified as problematic. Affected is the function JwtRefreshAuth of the file middleware/jwt_refresh_token_middleware.go. The manipulation of the argument Authorization leads to improper output neutralization for logs. It is possible to launch the attack remotely. The name of the patch is 81b3336b4c9240f0bf50c13cb8375cf860d945f1. It is recommended to apply a patch to fix this issue.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8297" + }, + { + "type": "WEB", + "url": "https://github.com/kitsada8621/Digital-Library-Management-System/issues/1" + }, + { + "type": "WEB", + "url": "https://github.com/kitsada8621/Digital-Library-Management-System/commit/81b3336b4c9240f0bf50c13cb8375cf860d945f1" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.276072" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.276072" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.394613" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-117" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-29T13:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-mwv6-8267-2mww/GHSA-mwv6-8267-2mww.json b/advisories/unreviewed/2024/08/GHSA-mwv6-8267-2mww/GHSA-mwv6-8267-2mww.json new file mode 100644 index 00000000000..47cb27526c0 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-mwv6-8267-2mww/GHSA-mwv6-8267-2mww.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mwv6-8267-2mww", + "modified": "2024-08-29T15:30:33Z", + "published": "2024-08-29T15:30:33Z", + "aliases": [ + "CVE-2024-2541" + ], + "details": "The Popup Builder plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.3.3 via the Subscribers Import feature. This makes it possible for unauthenticated attackers to extract sensitive data after an administrator has imported subscribers via a CSV file. This data may include the first name, last name, e-mail address, and potentially other personally identifiable information of subscribers.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-2541" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/popup-builder/trunk/com/libs/Importer.php" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/086cd6a0-adb6-4e12-b34c-630297f036f3?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-200" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-29T13:15:06Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-p7q6-fc7h-j55q/GHSA-p7q6-fc7h-j55q.json b/advisories/unreviewed/2024/08/GHSA-p7q6-fc7h-j55q/GHSA-p7q6-fc7h-j55q.json new file mode 100644 index 00000000000..6b2e451dbd9 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-p7q6-fc7h-j55q/GHSA-p7q6-fc7h-j55q.json @@ -0,0 +1,54 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p7q6-fc7h-j55q", + "modified": "2024-08-29T15:30:34Z", + "published": "2024-08-29T15:30:34Z", + "aliases": [ + "CVE-2024-8303" + ], + "details": "A vulnerability classified as critical has been found in dingfanzu CMS up to 29d67d9044f6f93378e6eb6ff92272217ff7225c. This affects an unknown part of the file /ajax/getBasicInfo.php. The manipulation of the argument username leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. This product does not use versioning. This is why information about affected and unaffected releases are unavailable. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8303" + }, + { + "type": "WEB", + "url": "https://github.com/Xor-Gerke/webray.com.cn/blob/main/cve/dingfanzu-CMS/dingfanzu-CMS%20getBasicInfo.php%20username%20SQL-inject.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.276075" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.276075" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.396298" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-29T15:15:34Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-prqr-vwj9-vcfw/GHSA-prqr-vwj9-vcfw.json b/advisories/unreviewed/2024/08/GHSA-prqr-vwj9-vcfw/GHSA-prqr-vwj9-vcfw.json new file mode 100644 index 00000000000..57a8e4ba395 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-prqr-vwj9-vcfw/GHSA-prqr-vwj9-vcfw.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-prqr-vwj9-vcfw", + "modified": "2024-08-29T15:30:34Z", + "published": "2024-08-29T15:30:34Z", + "aliases": [ + "CVE-2024-39638" + ], + "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Roundup WP Registrations for the Events Calendar allows SQL Injection.This issue affects Registrations for the Events Calendar: from n/a through 2.12.2.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-39638" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/registrations-for-the-events-calendar/wordpress-registrations-for-the-events-calendar-plugin-2-12-2-sql-injection-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-29T15:15:27Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-qr94-6q3v-pgvj/GHSA-qr94-6q3v-pgvj.json b/advisories/unreviewed/2024/08/GHSA-qr94-6q3v-pgvj/GHSA-qr94-6q3v-pgvj.json index a21019e7f9b..50375aa26a8 100644 --- a/advisories/unreviewed/2024/08/GHSA-qr94-6q3v-pgvj/GHSA-qr94-6q3v-pgvj.json +++ b/advisories/unreviewed/2024/08/GHSA-qr94-6q3v-pgvj/GHSA-qr94-6q3v-pgvj.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-qr94-6q3v-pgvj", - "modified": "2024-08-12T15:30:50Z", + "modified": "2024-08-29T15:30:31Z", "published": "2024-08-12T15:30:50Z", "aliases": [ "CVE-2024-42163" diff --git a/advisories/unreviewed/2024/08/GHSA-qrcm-99p5-fwr8/GHSA-qrcm-99p5-fwr8.json b/advisories/unreviewed/2024/08/GHSA-qrcm-99p5-fwr8/GHSA-qrcm-99p5-fwr8.json new file mode 100644 index 00000000000..9dadb675b4f --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-qrcm-99p5-fwr8/GHSA-qrcm-99p5-fwr8.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qrcm-99p5-fwr8", + "modified": "2024-08-29T15:30:34Z", + "published": "2024-08-29T15:30:34Z", + "aliases": [ + "CVE-2024-1056" + ], + "details": "The FunnelKit Funnel Builder Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'allow_iframe_tag_in_post' function which uses the 'wp_kses_allowed_html' filter to globally allow script and iframe tags in posts in all versions up to, and including, 3.4.5. This makes it possible for authenticated attackers, with contributor access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-1056" + }, + { + "type": "WEB", + "url": "https://myaccount.funnelkit.com/changelog/changelog-funnel-builder-pro/?v=7516fd43adaa" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/2fbacaf2-0b3e-4d1e-adc3-c501a6c4c816?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-29T14:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-w4mc-h5r4-jp4g/GHSA-w4mc-h5r4-jp4g.json b/advisories/unreviewed/2024/08/GHSA-w4mc-h5r4-jp4g/GHSA-w4mc-h5r4-jp4g.json new file mode 100644 index 00000000000..5a9b0726f5b --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-w4mc-h5r4-jp4g/GHSA-w4mc-h5r4-jp4g.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-w4mc-h5r4-jp4g", + "modified": "2024-08-29T15:30:34Z", + "published": "2024-08-29T15:30:34Z", + "aliases": [ + "CVE-2024-43940" + ], + "details": "Missing Authorization vulnerability in VIICTORY MEDIA LLC Z Y N I T H allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Z Y N I T H: from n/a through 7.4.9.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-43940" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/zynith-seo/wordpress-z-y-n-i-t-h-plugin-7-4-9-unauthenticated-plugin-settings-change-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-862" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-29T15:15:29Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-xp68-7g33-f49m/GHSA-xp68-7g33-f49m.json b/advisories/unreviewed/2024/08/GHSA-xp68-7g33-f49m/GHSA-xp68-7g33-f49m.json new file mode 100644 index 00000000000..f4f36e86fef --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-xp68-7g33-f49m/GHSA-xp68-7g33-f49m.json @@ -0,0 +1,54 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-xp68-7g33-f49m", + "modified": "2024-08-29T15:30:33Z", + "published": "2024-08-29T15:30:33Z", + "aliases": [ + "CVE-2024-8296" + ], + "details": "A vulnerability was found in FeehiCMS up to 2.1.1 and classified as critical. This issue affects the function insert of the file /admin/index.php?r=user%2Fcreate. The manipulation of the argument User[avatar] leads to unrestricted upload. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8296" + }, + { + "type": "WEB", + "url": "https://gitee.com/A0kooo/cve_article/blob/master/feehi_cms/file_upload3/Fichkems%20user%20file%20upload%20vulnerability.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.276071" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.276071" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.394568" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-434" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-29T13:15:07Z" + } +} \ No newline at end of file