From 89116dd7c58f83bf5384f3e56759c625a7398b97 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Thu, 13 Feb 2025 18:53:09 +0000 Subject: [PATCH] Publish Advisories GHSA-85pf-r4c7-3j9r GHSA-qghr-877h-f9jh GHSA-cqr6-3x3f-9wr3 GHSA-x84r-jrqm-3hj8 --- .../2023/04/GHSA-85pf-r4c7-3j9r/GHSA-85pf-r4c7-3j9r.json | 6 +++++- .../2023/04/GHSA-qghr-877h-f9jh/GHSA-qghr-877h-f9jh.json | 2 +- .../2023/07/GHSA-cqr6-3x3f-9wr3/GHSA-cqr6-3x3f-9wr3.json | 4 ++-- .../2023/07/GHSA-x84r-jrqm-3hj8/GHSA-x84r-jrqm-3hj8.json | 2 +- 4 files changed, 9 insertions(+), 5 deletions(-) diff --git a/advisories/github-reviewed/2023/04/GHSA-85pf-r4c7-3j9r/GHSA-85pf-r4c7-3j9r.json b/advisories/github-reviewed/2023/04/GHSA-85pf-r4c7-3j9r/GHSA-85pf-r4c7-3j9r.json index 3a2d4bb226c..bd43ac7ebab 100644 --- a/advisories/github-reviewed/2023/04/GHSA-85pf-r4c7-3j9r/GHSA-85pf-r4c7-3j9r.json +++ b/advisories/github-reviewed/2023/04/GHSA-85pf-r4c7-3j9r/GHSA-85pf-r4c7-3j9r.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-85pf-r4c7-3j9r", - "modified": "2024-11-19T19:35:47Z", + "modified": "2025-02-13T18:52:15Z", "published": "2023-04-07T15:30:38Z", "aliases": [ "CVE-2023-28707" @@ -67,6 +67,10 @@ { "type": "WEB", "url": "https://www.openwall.com/lists/oss-security/2023/04/07/1" + }, + { + "type": "WEB", + "url": "http://www.openwall.com/lists/oss-security/2023/04/07/1" } ], "database_specific": { diff --git a/advisories/github-reviewed/2023/04/GHSA-qghr-877h-f9jh/GHSA-qghr-877h-f9jh.json b/advisories/github-reviewed/2023/04/GHSA-qghr-877h-f9jh/GHSA-qghr-877h-f9jh.json index 817970d9a93..a3a1255a464 100644 --- a/advisories/github-reviewed/2023/04/GHSA-qghr-877h-f9jh/GHSA-qghr-877h-f9jh.json +++ b/advisories/github-reviewed/2023/04/GHSA-qghr-877h-f9jh/GHSA-qghr-877h-f9jh.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-qghr-877h-f9jh", - "modified": "2023-04-05T17:55:20Z", + "modified": "2025-02-13T18:51:56Z", "published": "2023-04-05T00:30:38Z", "aliases": [ "CVE-2023-0835" diff --git a/advisories/github-reviewed/2023/07/GHSA-cqr6-3x3f-9wr3/GHSA-cqr6-3x3f-9wr3.json b/advisories/github-reviewed/2023/07/GHSA-cqr6-3x3f-9wr3/GHSA-cqr6-3x3f-9wr3.json index 94f4ee88180..cc7020747f7 100644 --- a/advisories/github-reviewed/2023/07/GHSA-cqr6-3x3f-9wr3/GHSA-cqr6-3x3f-9wr3.json +++ b/advisories/github-reviewed/2023/07/GHSA-cqr6-3x3f-9wr3/GHSA-cqr6-3x3f-9wr3.json @@ -1,13 +1,13 @@ { "schema_version": "1.4.0", "id": "GHSA-cqr6-3x3f-9wr3", - "modified": "2024-10-22T19:05:37Z", + "modified": "2025-02-13T18:52:07Z", "published": "2023-07-06T19:24:14Z", "aliases": [ "CVE-2023-30465" ], "summary": "Apache InLong SQL Injection vulnerability", - "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Software Foundation Apache InLong.This issue affects Apache InLong: from 1.4.0 through 1.5.0. By manipulating the \"orderType\" parameter and the ordering of the returned content using an SQL injection attack, an attacker can extract the username of the   user with ID 1 from the \"user\" table, one character at a time.  Users are advised to upgrade to Apache InLong's 1.6.0 or cherry-pick PR #7530 to solve it.\n", + "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Software Foundation Apache InLong.This issue affects Apache InLong: from 1.4.0 through 1.5.0. By manipulating the \"orderType\" parameter and the ordering of the returned content using an SQL injection attack, an attacker can extract the username of the   user with ID 1 from the \"user\" table, one character at a time.  Users are advised to upgrade to Apache InLong's 1.6.0 or cherry-pick PR #7530 to solve it.", "severity": [ { "type": "CVSS_V3", diff --git a/advisories/github-reviewed/2023/07/GHSA-x84r-jrqm-3hj8/GHSA-x84r-jrqm-3hj8.json b/advisories/github-reviewed/2023/07/GHSA-x84r-jrqm-3hj8/GHSA-x84r-jrqm-3hj8.json index 2751db0b4b8..542edd88c79 100644 --- a/advisories/github-reviewed/2023/07/GHSA-x84r-jrqm-3hj8/GHSA-x84r-jrqm-3hj8.json +++ b/advisories/github-reviewed/2023/07/GHSA-x84r-jrqm-3hj8/GHSA-x84r-jrqm-3hj8.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-x84r-jrqm-3hj8", - "modified": "2024-10-22T19:04:30Z", + "modified": "2025-02-13T18:51:58Z", "published": "2023-07-06T19:24:13Z", "aliases": [ "CVE-2023-27602"