diff --git a/advisories/github-reviewed/2025/01/GHSA-2fx5-pggv-6jjr/GHSA-2fx5-pggv-6jjr.json b/advisories/github-reviewed/2025/01/GHSA-2fx5-pggv-6jjr/GHSA-2fx5-pggv-6jjr.json index d84ac4eb1cf..54653a3b5a8 100644 --- a/advisories/github-reviewed/2025/01/GHSA-2fx5-pggv-6jjr/GHSA-2fx5-pggv-6jjr.json +++ b/advisories/github-reviewed/2025/01/GHSA-2fx5-pggv-6jjr/GHSA-2fx5-pggv-6jjr.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-2fx5-pggv-6jjr", - "modified": "2025-01-14T15:24:21Z", + "modified": "2025-01-14T22:00:32Z", "published": "2025-01-14T15:24:20Z", "aliases": [ "CVE-2024-55892" @@ -131,6 +131,10 @@ "type": "WEB", "url": "https://github.com/TYPO3/typo3/security/advisories/GHSA-2fx5-pggv-6jjr" }, + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-55892" + }, { "type": "WEB", "url": "https://github.com/TYPO3/typo3/commit/a4abf48d254685f43383e6e7f80d48aebaea56af" @@ -151,6 +155,6 @@ "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2025-01-14T15:24:20Z", - "nvd_published_at": null + "nvd_published_at": "2025-01-14T20:15:28Z" } } \ No newline at end of file diff --git a/advisories/github-reviewed/2025/01/GHSA-38x7-cc6w-j27q/GHSA-38x7-cc6w-j27q.json b/advisories/github-reviewed/2025/01/GHSA-38x7-cc6w-j27q/GHSA-38x7-cc6w-j27q.json index 12fed3f110e..39464ad7ee8 100644 --- a/advisories/github-reviewed/2025/01/GHSA-38x7-cc6w-j27q/GHSA-38x7-cc6w-j27q.json +++ b/advisories/github-reviewed/2025/01/GHSA-38x7-cc6w-j27q/GHSA-38x7-cc6w-j27q.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-38x7-cc6w-j27q", - "modified": "2025-01-14T15:23:41Z", + "modified": "2025-01-14T22:00:23Z", "published": "2025-01-14T15:23:41Z", "aliases": [ "CVE-2024-55891" @@ -43,6 +43,10 @@ "type": "WEB", "url": "https://github.com/TYPO3/typo3/security/advisories/GHSA-38x7-cc6w-j27q" }, + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-55891" + }, { "type": "WEB", "url": "https://github.com/TYPO3-CMS/install/commit/baa8089b1baf5552fab213a5761081608b0afc51" @@ -63,6 +67,6 @@ "severity": "LOW", "github_reviewed": true, "github_reviewed_at": "2025-01-14T15:23:41Z", - "nvd_published_at": null + "nvd_published_at": "2025-01-14T20:15:28Z" } } \ No newline at end of file diff --git a/advisories/github-reviewed/2025/01/GHSA-86c2-4x57-wc8g/GHSA-86c2-4x57-wc8g.json b/advisories/github-reviewed/2025/01/GHSA-86c2-4x57-wc8g/GHSA-86c2-4x57-wc8g.json index f744e2882d7..f9b883b3c04 100644 --- a/advisories/github-reviewed/2025/01/GHSA-86c2-4x57-wc8g/GHSA-86c2-4x57-wc8g.json +++ b/advisories/github-reviewed/2025/01/GHSA-86c2-4x57-wc8g/GHSA-86c2-4x57-wc8g.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-86c2-4x57-wc8g", - "modified": "2025-01-14T19:40:54Z", + "modified": "2025-01-14T21:59:51Z", "published": "2025-01-14T19:40:54Z", "aliases": [ "CVE-2024-50338" @@ -43,10 +43,26 @@ "type": "WEB", "url": "https://github.com/git-ecosystem/git-credential-manager/security/advisories/GHSA-86c2-4x57-wc8g" }, + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-50338" + }, + { + "type": "WEB", + "url": "https://git-scm.com/docs/git-credential#IOFMT" + }, + { + "type": "WEB", + "url": "https://github.com/dotnet/runtime/blob/e476b43b5cb42eb44ce23b1c7b793aa361624cf6/src/libraries/System.Private.CoreLib/src/System/IO/StreamReader.cs#L926" + }, { "type": "PACKAGE", "url": "https://github.com/git-ecosystem/git-credential-manager" }, + { + "type": "WEB", + "url": "https://github.com/git-ecosystem/git-credential-manager/blob/ae009e11a0fbef804ad9f78816d84a0bc7e052fe/src/shared/Core/StreamExtensions.cs#L138-L141" + }, { "type": "WEB", "url": "https://github.com/git-ecosystem/git-credential-manager/compare/749e287571c78a2b61f926ccce6a707050871ab8...99e2f7f60e7364fe807e7925f361a81f3c47bd1b" @@ -54,15 +70,24 @@ { "type": "WEB", "url": "https://github.com/git-ecosystem/git-credential-manager/releases/tag/v2.6.1" + }, + { + "type": "WEB", + "url": "https://github.com/git/git/blob/6a11438f43469f3815f2f0fc997bd45792ff04c0/credential.c#L311" + }, + { + "type": "WEB", + "url": "https://learn.microsoft.com/en-us/dotnet/api/system.io.streamreader?view=net-8.0" } ], "database_specific": { "cwe_ids": [ + "CWE-200", "CWE-436" ], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2025-01-14T19:40:54Z", - "nvd_published_at": null + "nvd_published_at": "2025-01-14T19:15:31Z" } } \ No newline at end of file diff --git a/advisories/github-reviewed/2025/01/GHSA-9v8m-qv22-f268/GHSA-9v8m-qv22-f268.json b/advisories/github-reviewed/2025/01/GHSA-9v8m-qv22-f268/GHSA-9v8m-qv22-f268.json index b94c4a59f5b..3b17ebaedf5 100644 --- a/advisories/github-reviewed/2025/01/GHSA-9v8m-qv22-f268/GHSA-9v8m-qv22-f268.json +++ b/advisories/github-reviewed/2025/01/GHSA-9v8m-qv22-f268/GHSA-9v8m-qv22-f268.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-9v8m-qv22-f268", - "modified": "2025-01-14T19:41:48Z", + "modified": "2025-01-14T22:00:02Z", "published": "2025-01-14T19:41:48Z", "aliases": [ "CVE-2025-23041" @@ -99,15 +99,20 @@ { "type": "WEB", "url": "https://github.com/umbraco/Umbraco.Forms.Issues/security/advisories/GHSA-9v8m-qv22-f268" + }, + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23041" } ], "database_specific": { "cwe_ids": [ + "CWE-20", "CWE-602" ], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2025-01-14T19:41:48Z", - "nvd_published_at": null + "nvd_published_at": "2025-01-14T19:15:44Z" } } \ No newline at end of file diff --git a/advisories/github-reviewed/2025/01/GHSA-cjfr-9f5r-3q93/GHSA-cjfr-9f5r-3q93.json b/advisories/github-reviewed/2025/01/GHSA-cjfr-9f5r-3q93/GHSA-cjfr-9f5r-3q93.json index b5d664edc1c..ea2a459d736 100644 --- a/advisories/github-reviewed/2025/01/GHSA-cjfr-9f5r-3q93/GHSA-cjfr-9f5r-3q93.json +++ b/advisories/github-reviewed/2025/01/GHSA-cjfr-9f5r-3q93/GHSA-cjfr-9f5r-3q93.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-cjfr-9f5r-3q93", - "modified": "2025-01-14T15:24:52Z", + "modified": "2025-01-14T22:00:40Z", "published": "2025-01-14T15:24:52Z", "aliases": [ "CVE-2024-55893" @@ -109,6 +109,10 @@ "type": "WEB", "url": "https://github.com/TYPO3/typo3/security/advisories/GHSA-cjfr-9f5r-3q93" }, + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-55893" + }, { "type": "WEB", "url": "https://github.com/TYPO3-CMS/belog/commit/ece08246dbcea416ff97d4cc013bf24fb622fe5f" @@ -130,6 +134,6 @@ "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2025-01-14T15:24:52Z", - "nvd_published_at": null + "nvd_published_at": "2025-01-14T20:15:29Z" } } \ No newline at end of file diff --git a/advisories/github-reviewed/2025/01/GHSA-cpv4-ggrr-7j9v/GHSA-cpv4-ggrr-7j9v.json b/advisories/github-reviewed/2025/01/GHSA-cpv4-ggrr-7j9v/GHSA-cpv4-ggrr-7j9v.json index 6c3f2eb33cd..2eac6ae1f2b 100644 --- a/advisories/github-reviewed/2025/01/GHSA-cpv4-ggrr-7j9v/GHSA-cpv4-ggrr-7j9v.json +++ b/advisories/github-reviewed/2025/01/GHSA-cpv4-ggrr-7j9v/GHSA-cpv4-ggrr-7j9v.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-cpv4-ggrr-7j9v", - "modified": "2025-01-14T16:00:21Z", + "modified": "2025-01-14T21:59:24Z", "published": "2025-01-14T16:00:21Z", "aliases": [ "CVE-2024-49375" @@ -97,6 +97,10 @@ "type": "WEB", "url": "https://github.com/RasaHQ/rasa-pro-security-advisories/security/advisories/GHSA-cpv4-ggrr-7j9v" }, + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-49375" + }, { "type": "WEB", "url": "https://github.com/RasaHQ/rasa/commit/2bb1d779d4f4acaf70b6dfa35dd1899dccbb1ae6" @@ -108,11 +112,12 @@ ], "database_specific": { "cwe_ids": [ - "CWE-502" + "CWE-502", + "CWE-94" ], "severity": "CRITICAL", "github_reviewed": true, "github_reviewed_at": "2025-01-14T16:00:21Z", - "nvd_published_at": null + "nvd_published_at": "2025-01-14T19:15:31Z" } } \ No newline at end of file diff --git a/advisories/github-reviewed/2025/01/GHSA-q6r2-x2cc-vrp7/GHSA-q6r2-x2cc-vrp7.json b/advisories/github-reviewed/2025/01/GHSA-q6r2-x2cc-vrp7/GHSA-q6r2-x2cc-vrp7.json index 5488e7965b9..f610fff8642 100644 --- a/advisories/github-reviewed/2025/01/GHSA-q6r2-x2cc-vrp7/GHSA-q6r2-x2cc-vrp7.json +++ b/advisories/github-reviewed/2025/01/GHSA-q6r2-x2cc-vrp7/GHSA-q6r2-x2cc-vrp7.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-q6r2-x2cc-vrp7", - "modified": "2025-01-14T21:20:42Z", + "modified": "2025-01-14T22:00:12Z", "published": "2025-01-14T21:20:42Z", "aliases": [ "CVE-2024-53263" @@ -62,6 +62,10 @@ "type": "WEB", "url": "https://github.com/git-lfs/git-lfs/security/advisories/GHSA-q6r2-x2cc-vrp7" }, + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-53263" + }, { "type": "WEB", "url": "https://github.com/git-lfs/git-lfs/commit/0345b6f816e611d050c0df67b61f0022916a1c90" @@ -77,11 +81,12 @@ ], "database_specific": { "cwe_ids": [ - "CWE-436" + "CWE-436", + "CWE-74" ], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2025-01-14T21:20:42Z", - "nvd_published_at": null + "nvd_published_at": "2025-01-14T20:15:28Z" } } \ No newline at end of file