From 94e72ef87bc6bedd97c819b42ed6cd5047c5a683 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Wed, 4 Jun 2025 15:32:13 +0000 Subject: [PATCH] Advisory Database Sync --- .../GHSA-vwh6-r56v-wq74.json | 4 +- .../GHSA-8xhh-j9m8-989c.json | 6 ++- .../GHSA-rwch-8cp4-7v7r.json | 6 ++- .../GHSA-xq4p-6j59-jfv4.json | 6 ++- .../GHSA-vjmq-27j9-636j.json | 10 +++- .../GHSA-f95q-fwq6-mx8w.json | 6 ++- .../GHSA-v5h4-3gwf-6343.json | 6 ++- .../GHSA-4xh3-3533-7mmv.json | 10 +++- .../GHSA-q2w6-3cqh-h6qq.json | 6 ++- .../GHSA-54xr-rm2r-p8mq.json | 10 +++- .../GHSA-9hrg-vg64-94qj.json | 6 ++- .../GHSA-rp2m-6293-6r8v.json | 10 +++- .../GHSA-34w4-3qr3-m637.json | 3 +- .../GHSA-489q-h7v6-2626.json | 6 ++- .../GHSA-4f99-6w2j-877c.json | 10 +++- .../GHSA-4pgp-fqvj-m8p6.json | 3 +- .../GHSA-5363-pqw5-qgr2.json | 10 +++- .../GHSA-5c72-frqm-r8r4.json | 10 +++- .../GHSA-677f-c75x-79m2.json | 6 ++- .../GHSA-7xj4-qj2w-mpf9.json | 10 +++- .../GHSA-8jh2-3h65-3cwh.json | 10 +++- .../GHSA-8q5q-7mvv-w97x.json | 10 +++- .../GHSA-9889-58r3-p8h2.json | 10 +++- .../GHSA-ccmh-pfgg-525g.json | 6 ++- .../GHSA-fhrm-6xxc-qc49.json | 10 +++- .../GHSA-fwvg-7877-39cm.json | 10 +++- .../GHSA-g586-9cjh-f4c9.json | 10 +++- .../GHSA-h35m-jp6f-245x.json | 6 ++- .../GHSA-j8pj-vhjm-p7g6.json | 10 +++- .../GHSA-jgxp-fpw7-p364.json | 10 +++- .../GHSA-jrcg-ffmc-qfvv.json | 10 +++- .../GHSA-m44g-hq47-38xw.json | 6 ++- .../GHSA-p49g-r9vw-4fm8.json | 10 +++- .../GHSA-pgg7-9g7g-jg57.json | 10 +++- .../GHSA-pvfr-278h-v324.json | 6 ++- .../GHSA-v8mr-frx6-j364.json | 10 +++- .../GHSA-x88q-4f25-f826.json | 6 ++- .../GHSA-xp2h-p3fr-j2j5.json | 10 +++- .../GHSA-2rcc-9g8p-q2vr.json | 36 +++++++++++++ .../GHSA-4x7w-r9g5-mvxv.json | 11 ++-- .../GHSA-65p9-j6pg-72hj.json | 11 ++-- .../GHSA-6mf3-9673-cq56.json | 36 +++++++++++++ .../GHSA-7c4m-fm4f-hjxx.json | 36 +++++++++++++ .../GHSA-7jp6-72rv-7m74.json | 33 ++++++++++++ .../GHSA-7rpw-j66x-gcxm.json | 11 ++-- .../GHSA-cqp2-7c4h-87f3.json | 36 +++++++++++++ .../GHSA-g3c7-95hc-gv66.json | 9 +++- .../GHSA-hg9v-648p-2828.json | 11 ++-- .../GHSA-jw2w-q42r-444f.json | 33 ++++++++++++ .../GHSA-p5r3-w88m-mm8j.json | 52 +++++++++++++++++++ .../GHSA-vpq6-j9hp-2h3w.json | 33 ++++++++++++ .../GHSA-xxvc-6xwm-7prp.json | 33 ++++++++++++ 52 files changed, 633 insertions(+), 52 deletions(-) create mode 100644 advisories/unreviewed/2025/06/GHSA-2rcc-9g8p-q2vr/GHSA-2rcc-9g8p-q2vr.json create mode 100644 advisories/unreviewed/2025/06/GHSA-6mf3-9673-cq56/GHSA-6mf3-9673-cq56.json create mode 100644 advisories/unreviewed/2025/06/GHSA-7c4m-fm4f-hjxx/GHSA-7c4m-fm4f-hjxx.json create mode 100644 advisories/unreviewed/2025/06/GHSA-7jp6-72rv-7m74/GHSA-7jp6-72rv-7m74.json create mode 100644 advisories/unreviewed/2025/06/GHSA-cqp2-7c4h-87f3/GHSA-cqp2-7c4h-87f3.json create mode 100644 advisories/unreviewed/2025/06/GHSA-jw2w-q42r-444f/GHSA-jw2w-q42r-444f.json create mode 100644 advisories/unreviewed/2025/06/GHSA-p5r3-w88m-mm8j/GHSA-p5r3-w88m-mm8j.json create mode 100644 advisories/unreviewed/2025/06/GHSA-vpq6-j9hp-2h3w/GHSA-vpq6-j9hp-2h3w.json create mode 100644 advisories/unreviewed/2025/06/GHSA-xxvc-6xwm-7prp/GHSA-xxvc-6xwm-7prp.json diff --git a/advisories/unreviewed/2022/09/GHSA-vwh6-r56v-wq74/GHSA-vwh6-r56v-wq74.json b/advisories/unreviewed/2022/09/GHSA-vwh6-r56v-wq74/GHSA-vwh6-r56v-wq74.json index 9bd98f154b1..31453030775 100644 --- a/advisories/unreviewed/2022/09/GHSA-vwh6-r56v-wq74/GHSA-vwh6-r56v-wq74.json +++ b/advisories/unreviewed/2022/09/GHSA-vwh6-r56v-wq74/GHSA-vwh6-r56v-wq74.json @@ -41,7 +41,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-269" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/02/GHSA-8xhh-j9m8-989c/GHSA-8xhh-j9m8-989c.json b/advisories/unreviewed/2024/02/GHSA-8xhh-j9m8-989c/GHSA-8xhh-j9m8-989c.json index 5362018e91c..23af51f1b07 100644 --- a/advisories/unreviewed/2024/02/GHSA-8xhh-j9m8-989c/GHSA-8xhh-j9m8-989c.json +++ b/advisories/unreviewed/2024/02/GHSA-8xhh-j9m8-989c/GHSA-8xhh-j9m8-989c.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-8xhh-j9m8-989c", - "modified": "2025-01-09T21:31:26Z", + "modified": "2025-06-04T15:30:24Z", "published": "2024-02-28T09:30:38Z", "aliases": [ "CVE-2021-47037" @@ -19,6 +19,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-47037" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/2202e87fc19440cecfd4f7b4f60a7d48bc2e236c" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/62413972f5266568848a36fd15160397b211fa74" diff --git a/advisories/unreviewed/2024/04/GHSA-rwch-8cp4-7v7r/GHSA-rwch-8cp4-7v7r.json b/advisories/unreviewed/2024/04/GHSA-rwch-8cp4-7v7r/GHSA-rwch-8cp4-7v7r.json index eb7dbc963de..abd13434c7f 100644 --- a/advisories/unreviewed/2024/04/GHSA-rwch-8cp4-7v7r/GHSA-rwch-8cp4-7v7r.json +++ b/advisories/unreviewed/2024/04/GHSA-rwch-8cp4-7v7r/GHSA-rwch-8cp4-7v7r.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-rwch-8cp4-7v7r", - "modified": "2025-05-09T09:33:17Z", + "modified": "2025-06-04T15:30:24Z", "published": "2024-04-03T18:30:42Z", "aliases": [ "CVE-2024-26739" @@ -19,6 +19,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-26739" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/0117fe0a4615a7c8d30d6ebcbf87332fbe63e6fd" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/166c2c8a6a4dc2e4ceba9e10cfe81c3e469e3210" diff --git a/advisories/unreviewed/2024/05/GHSA-xq4p-6j59-jfv4/GHSA-xq4p-6j59-jfv4.json b/advisories/unreviewed/2024/05/GHSA-xq4p-6j59-jfv4/GHSA-xq4p-6j59-jfv4.json index 0137e56da96..7695d97551b 100644 --- a/advisories/unreviewed/2024/05/GHSA-xq4p-6j59-jfv4/GHSA-xq4p-6j59-jfv4.json +++ b/advisories/unreviewed/2024/05/GHSA-xq4p-6j59-jfv4/GHSA-xq4p-6j59-jfv4.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-xq4p-6j59-jfv4", - "modified": "2025-05-22T15:34:44Z", + "modified": "2025-06-04T15:30:25Z", "published": "2024-05-17T15:31:08Z", "aliases": [ "CVE-2024-35790" @@ -31,6 +31,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/4a22aeac24d0d5f26ba741408e8b5a4be6dc5dc0" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/6b989ea1c479533ab8dbfbeb1704c94b1d3320da" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/9794ffd9d0c39ee070fbd733f862bbe89b28ba33" diff --git a/advisories/unreviewed/2024/06/GHSA-vjmq-27j9-636j/GHSA-vjmq-27j9-636j.json b/advisories/unreviewed/2024/06/GHSA-vjmq-27j9-636j/GHSA-vjmq-27j9-636j.json index e0e05072fc7..d2abdffb2c6 100644 --- a/advisories/unreviewed/2024/06/GHSA-vjmq-27j9-636j/GHSA-vjmq-27j9-636j.json +++ b/advisories/unreviewed/2024/06/GHSA-vjmq-27j9-636j/GHSA-vjmq-27j9-636j.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-vjmq-27j9-636j", - "modified": "2025-05-09T09:33:18Z", + "modified": "2025-06-04T15:30:25Z", "published": "2024-06-19T15:30:52Z", "aliases": [ "CVE-2024-38541" @@ -23,10 +23,18 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/0b0d5701a8bf02f8fee037e81aacf6746558bfd6" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/46795440ef2b4ac919d09310a69a404c5bc90a88" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/5d59fd637a8af42b211a92b2edb2474325b4d488" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/733e62786bdf1b2b9dbb09ba2246313306503414" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/c7f24b7d94549ff4623e8f41ea4d9f5319bd8ac8" diff --git a/advisories/unreviewed/2024/08/GHSA-f95q-fwq6-mx8w/GHSA-f95q-fwq6-mx8w.json b/advisories/unreviewed/2024/08/GHSA-f95q-fwq6-mx8w/GHSA-f95q-fwq6-mx8w.json index 49ddf882bea..790fccb01c5 100644 --- a/advisories/unreviewed/2024/08/GHSA-f95q-fwq6-mx8w/GHSA-f95q-fwq6-mx8w.json +++ b/advisories/unreviewed/2024/08/GHSA-f95q-fwq6-mx8w/GHSA-f95q-fwq6-mx8w.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-f95q-fwq6-mx8w", - "modified": "2024-09-03T15:30:39Z", + "modified": "2025-06-04T15:30:25Z", "published": "2024-08-21T00:30:29Z", "aliases": [ "CVE-2024-43863" @@ -23,6 +23,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/3b933b16c996af8adb6bc1b5748a63dfb41a82bc" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/9908dc0d2ef0e4aec8a242c098455729c0e2f017" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/9e20d028d8d1deb1e7fed18f22ffc01669cf3237" diff --git a/advisories/unreviewed/2024/09/GHSA-v5h4-3gwf-6343/GHSA-v5h4-3gwf-6343.json b/advisories/unreviewed/2024/09/GHSA-v5h4-3gwf-6343/GHSA-v5h4-3gwf-6343.json index 03098ebc73d..fb6adc4ba41 100644 --- a/advisories/unreviewed/2024/09/GHSA-v5h4-3gwf-6343/GHSA-v5h4-3gwf-6343.json +++ b/advisories/unreviewed/2024/09/GHSA-v5h4-3gwf-6343/GHSA-v5h4-3gwf-6343.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-v5h4-3gwf-6343", - "modified": "2025-05-22T15:34:45Z", + "modified": "2025-06-04T15:30:25Z", "published": "2024-09-18T09:30:36Z", "aliases": [ "CVE-2024-46751" @@ -31,6 +31,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/3cfec712a439c5c5f5c718c5c669ee41a898f776" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/9c309d2434abbe880712af7e60da9ead8b6703fe" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/d64807ded1b6054f066e03d8add6d920f3db9e5d" diff --git a/advisories/unreviewed/2024/12/GHSA-4xh3-3533-7mmv/GHSA-4xh3-3533-7mmv.json b/advisories/unreviewed/2024/12/GHSA-4xh3-3533-7mmv/GHSA-4xh3-3533-7mmv.json index 57379cb07ef..195cea6069d 100644 --- a/advisories/unreviewed/2024/12/GHSA-4xh3-3533-7mmv/GHSA-4xh3-3533-7mmv.json +++ b/advisories/unreviewed/2024/12/GHSA-4xh3-3533-7mmv/GHSA-4xh3-3533-7mmv.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-4xh3-3533-7mmv", - "modified": "2025-05-22T15:34:46Z", + "modified": "2025-06-04T15:30:25Z", "published": "2024-12-27T15:31:56Z", "aliases": [ "CVE-2024-56655" @@ -23,6 +23,14 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/27f0574253f6c24c8ee4e3f0a685b75ed3a256ed" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/2991dc357a28b61c13ed1f7b59e9251e2b4562fb" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/5146c27b2780aac59876a887a5f4e793b8949862" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/7cf0bd232b565d9852cb25fd094f77254773e048" diff --git a/advisories/unreviewed/2024/12/GHSA-q2w6-3cqh-h6qq/GHSA-q2w6-3cqh-h6qq.json b/advisories/unreviewed/2024/12/GHSA-q2w6-3cqh-h6qq/GHSA-q2w6-3cqh-h6qq.json index 7660d7041b3..a30b4fb5750 100644 --- a/advisories/unreviewed/2024/12/GHSA-q2w6-3cqh-h6qq/GHSA-q2w6-3cqh-h6qq.json +++ b/advisories/unreviewed/2024/12/GHSA-q2w6-3cqh-h6qq/GHSA-q2w6-3cqh-h6qq.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-q2w6-3cqh-h6qq", - "modified": "2025-05-22T15:34:46Z", + "modified": "2025-06-04T15:30:25Z", "published": "2024-12-27T15:31:51Z", "aliases": [ "CVE-2024-53203" @@ -27,6 +27,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/56971710cd541f2f05160a84b3183477d34a1be9" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/627c2a5056aba42a8a96a8fffe8996aeccf919a9" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/e15fd96c0b701c53f9006bcc836eaeb35a05a023" diff --git a/advisories/unreviewed/2025/01/GHSA-54xr-rm2r-p8mq/GHSA-54xr-rm2r-p8mq.json b/advisories/unreviewed/2025/01/GHSA-54xr-rm2r-p8mq/GHSA-54xr-rm2r-p8mq.json index b7ff0c61c63..d25458a400f 100644 --- a/advisories/unreviewed/2025/01/GHSA-54xr-rm2r-p8mq/GHSA-54xr-rm2r-p8mq.json +++ b/advisories/unreviewed/2025/01/GHSA-54xr-rm2r-p8mq/GHSA-54xr-rm2r-p8mq.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-54xr-rm2r-p8mq", - "modified": "2025-01-08T00:30:48Z", + "modified": "2025-06-04T15:30:25Z", "published": "2025-01-06T18:31:03Z", "aliases": [ "CVE-2024-56758" @@ -19,10 +19,18 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-56758" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/36679fab54fa7bcffafd469e2c474c1fc4beaee0" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/3e74859ee35edc33a022c3f3971df066ea0ca6b9" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/c7b1bd52a031ad0144d42eef0ba8471ce75122dd" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/d508e56270389b3a16f5b3cf247f4eb1bbad1578" diff --git a/advisories/unreviewed/2025/02/GHSA-9hrg-vg64-94qj/GHSA-9hrg-vg64-94qj.json b/advisories/unreviewed/2025/02/GHSA-9hrg-vg64-94qj/GHSA-9hrg-vg64-94qj.json index 0de61258784..56998c6821b 100644 --- a/advisories/unreviewed/2025/02/GHSA-9hrg-vg64-94qj/GHSA-9hrg-vg64-94qj.json +++ b/advisories/unreviewed/2025/02/GHSA-9hrg-vg64-94qj/GHSA-9hrg-vg64-94qj.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-9hrg-vg64-94qj", - "modified": "2025-05-22T15:34:46Z", + "modified": "2025-06-04T15:30:26Z", "published": "2025-02-27T21:32:10Z", "aliases": [ "CVE-2022-49063" @@ -23,6 +23,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/618df75f2e30c7838a3e010ca32cd4893ec9fe33" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/ba2f6ec28733fb6b24ed086e676df3df4c138f3f" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/d08d2fb6d99d82da1c63aba5c0d1c6f237e150f3" diff --git a/advisories/unreviewed/2025/02/GHSA-rp2m-6293-6r8v/GHSA-rp2m-6293-6r8v.json b/advisories/unreviewed/2025/02/GHSA-rp2m-6293-6r8v/GHSA-rp2m-6293-6r8v.json index 00a90a8417e..c8cd31fc7db 100644 --- a/advisories/unreviewed/2025/02/GHSA-rp2m-6293-6r8v/GHSA-rp2m-6293-6r8v.json +++ b/advisories/unreviewed/2025/02/GHSA-rp2m-6293-6r8v/GHSA-rp2m-6293-6r8v.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-rp2m-6293-6r8v", - "modified": "2025-02-27T21:32:17Z", + "modified": "2025-06-04T15:30:26Z", "published": "2025-02-27T21:32:17Z", "aliases": [ "CVE-2025-21816" @@ -22,6 +22,14 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/53dac345395c0d2493cbc2f4c85fe38aef5b63f5" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/63815bef47ec25f5a125019ca480882481ee1553" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/82ac6adbbb2aad14548a71d5e2e37f4964a15e38" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/e456a88bddae4030ba962447bb84be6669f2a0c1" diff --git a/advisories/unreviewed/2025/04/GHSA-34w4-3qr3-m637/GHSA-34w4-3qr3-m637.json b/advisories/unreviewed/2025/04/GHSA-34w4-3qr3-m637/GHSA-34w4-3qr3-m637.json index 5442bc305fa..2c1de792471 100644 --- a/advisories/unreviewed/2025/04/GHSA-34w4-3qr3-m637/GHSA-34w4-3qr3-m637.json +++ b/advisories/unreviewed/2025/04/GHSA-34w4-3qr3-m637/GHSA-34w4-3qr3-m637.json @@ -26,7 +26,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-1390" + "CWE-1390", + "CWE-307" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/05/GHSA-489q-h7v6-2626/GHSA-489q-h7v6-2626.json b/advisories/unreviewed/2025/05/GHSA-489q-h7v6-2626/GHSA-489q-h7v6-2626.json index 3eac0344a50..575ccfbe2c9 100644 --- a/advisories/unreviewed/2025/05/GHSA-489q-h7v6-2626/GHSA-489q-h7v6-2626.json +++ b/advisories/unreviewed/2025/05/GHSA-489q-h7v6-2626/GHSA-489q-h7v6-2626.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-489q-h7v6-2626", - "modified": "2025-05-07T18:30:49Z", + "modified": "2025-06-04T15:30:27Z", "published": "2025-05-07T18:30:49Z", "aliases": [ "CVE-2025-20188" @@ -19,6 +19,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20188" }, + { + "type": "WEB", + "url": "https://horizon3.ai/attack-research/attack-blogs/cisco-ios-xe-wlc-arbitrary-file-upload-vulnerability-cve-2025-20188-analysis" + }, { "type": "WEB", "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-wlc-file-uplpd-rHZG9UfC" diff --git a/advisories/unreviewed/2025/05/GHSA-4f99-6w2j-877c/GHSA-4f99-6w2j-877c.json b/advisories/unreviewed/2025/05/GHSA-4f99-6w2j-877c/GHSA-4f99-6w2j-877c.json index 7df2f5950e4..5bf9a57add2 100644 --- a/advisories/unreviewed/2025/05/GHSA-4f99-6w2j-877c/GHSA-4f99-6w2j-877c.json +++ b/advisories/unreviewed/2025/05/GHSA-4f99-6w2j-877c/GHSA-4f99-6w2j-877c.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-4f99-6w2j-877c", - "modified": "2025-05-09T09:33:18Z", + "modified": "2025-06-04T15:30:27Z", "published": "2025-05-03T00:30:32Z", "aliases": [ "CVE-2022-21546" @@ -27,10 +27,18 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/4226622647e3e5ac06d3ebc1605b917446157510" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/54e57be2573cf0b8bf650375fd8752987b6c3d3b" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/ccd3f449052449a917a3e577d8ba0368f43b8f29" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/d8e6a27e9238dd294d6f2f401655f300dca20899" + }, { "type": "WEB", "url": "https://linux.oracle.com/cve/CVE-2022-21546.html" diff --git a/advisories/unreviewed/2025/05/GHSA-4pgp-fqvj-m8p6/GHSA-4pgp-fqvj-m8p6.json b/advisories/unreviewed/2025/05/GHSA-4pgp-fqvj-m8p6/GHSA-4pgp-fqvj-m8p6.json index f9931df8465..51272a5843d 100644 --- a/advisories/unreviewed/2025/05/GHSA-4pgp-fqvj-m8p6/GHSA-4pgp-fqvj-m8p6.json +++ b/advisories/unreviewed/2025/05/GHSA-4pgp-fqvj-m8p6/GHSA-4pgp-fqvj-m8p6.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/05/GHSA-5363-pqw5-qgr2/GHSA-5363-pqw5-qgr2.json b/advisories/unreviewed/2025/05/GHSA-5363-pqw5-qgr2/GHSA-5363-pqw5-qgr2.json index 6043d89a4cb..b47239f8458 100644 --- a/advisories/unreviewed/2025/05/GHSA-5363-pqw5-qgr2/GHSA-5363-pqw5-qgr2.json +++ b/advisories/unreviewed/2025/05/GHSA-5363-pqw5-qgr2/GHSA-5363-pqw5-qgr2.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-5363-pqw5-qgr2", - "modified": "2025-05-20T18:30:54Z", + "modified": "2025-06-04T15:30:27Z", "published": "2025-05-20T18:30:54Z", "aliases": [ "CVE-2025-37913" @@ -14,6 +14,14 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-37913" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/005a479540478a820c52de098e5e767e63e36f0a" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/041f410aec2c1751ee22b8b73ba05d38c3a6a602" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/0aa23e0856b7cedb3c88d8e3d281c212c7e4fbeb" diff --git a/advisories/unreviewed/2025/05/GHSA-5c72-frqm-r8r4/GHSA-5c72-frqm-r8r4.json b/advisories/unreviewed/2025/05/GHSA-5c72-frqm-r8r4/GHSA-5c72-frqm-r8r4.json index 3bbccae6a35..97197ee899b 100644 --- a/advisories/unreviewed/2025/05/GHSA-5c72-frqm-r8r4/GHSA-5c72-frqm-r8r4.json +++ b/advisories/unreviewed/2025/05/GHSA-5c72-frqm-r8r4/GHSA-5c72-frqm-r8r4.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-5c72-frqm-r8r4", - "modified": "2025-05-09T09:33:18Z", + "modified": "2025-06-04T15:30:27Z", "published": "2025-05-08T09:30:25Z", "aliases": [ "CVE-2025-37819" @@ -14,6 +14,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-37819" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/0c241dedc43a036599757cd08f356253fa3e5014" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/2f2803e4b5e4df2b08d378deaab78b1681ef9b30" @@ -30,6 +34,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/47bee0081b483b077c7560bc5358ad101f89c8ef" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/b63de43af8d215b0499eac28b2caa4439183efc1" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/dc0d654eb4179b06d3206e4396d072108b9ba082" diff --git a/advisories/unreviewed/2025/05/GHSA-677f-c75x-79m2/GHSA-677f-c75x-79m2.json b/advisories/unreviewed/2025/05/GHSA-677f-c75x-79m2/GHSA-677f-c75x-79m2.json index fb4d6615f62..9bb30d1e07d 100644 --- a/advisories/unreviewed/2025/05/GHSA-677f-c75x-79m2/GHSA-677f-c75x-79m2.json +++ b/advisories/unreviewed/2025/05/GHSA-677f-c75x-79m2/GHSA-677f-c75x-79m2.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-677f-c75x-79m2", - "modified": "2025-05-26T15:30:34Z", + "modified": "2025-06-04T15:30:29Z", "published": "2025-05-26T15:30:34Z", "aliases": [ "CVE-2025-37992" @@ -34,6 +34,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/d38939ebe0d992d581acb6885c1723fa83c1fb2c" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/ea1132ccb112f51ba749c56a912f67970c2cd542" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/fe88c7e4fc2c1cd75a278a15ffbf1689efad4e76" diff --git a/advisories/unreviewed/2025/05/GHSA-7xj4-qj2w-mpf9/GHSA-7xj4-qj2w-mpf9.json b/advisories/unreviewed/2025/05/GHSA-7xj4-qj2w-mpf9/GHSA-7xj4-qj2w-mpf9.json index fb18077d709..d450df55c32 100644 --- a/advisories/unreviewed/2025/05/GHSA-7xj4-qj2w-mpf9/GHSA-7xj4-qj2w-mpf9.json +++ b/advisories/unreviewed/2025/05/GHSA-7xj4-qj2w-mpf9/GHSA-7xj4-qj2w-mpf9.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-7xj4-qj2w-mpf9", - "modified": "2025-05-20T18:30:57Z", + "modified": "2025-06-04T15:30:28Z", "published": "2025-05-20T18:30:57Z", "aliases": [ "CVE-2025-37970" @@ -26,6 +26,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/6c4a5000618a8c44200d455c92e2f2a4db264717" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/84e39f628a3a3333add99076e4d6c8b42b12d3a0" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/a1cad8a3bca41dead9980615d35efc7bff1fd534" @@ -34,6 +38,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/da33c4167b9cc1266a97215114cb74679f881d0c" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f06a1a1954527cc4ed086d926c81ff236b2adde9" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/f3cf233c946531a92fe651ff2bd15ebbe60630a7" diff --git a/advisories/unreviewed/2025/05/GHSA-8jh2-3h65-3cwh/GHSA-8jh2-3h65-3cwh.json b/advisories/unreviewed/2025/05/GHSA-8jh2-3h65-3cwh/GHSA-8jh2-3h65-3cwh.json index b8e59cff152..92509b64d93 100644 --- a/advisories/unreviewed/2025/05/GHSA-8jh2-3h65-3cwh/GHSA-8jh2-3h65-3cwh.json +++ b/advisories/unreviewed/2025/05/GHSA-8jh2-3h65-3cwh/GHSA-8jh2-3h65-3cwh.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-8jh2-3h65-3cwh", - "modified": "2025-05-29T15:31:09Z", + "modified": "2025-06-04T15:30:29Z", "published": "2025-05-29T15:31:09Z", "aliases": [ "CVE-2025-37998" @@ -18,6 +18,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/0236742bd959332181c1fcc41a05b7b709180501" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/06b4f110c79716c181a8c5da007c259807840232" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/47f7f00cf2fa3137d5c0416ef1a71bdf77901395" @@ -26,6 +30,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/4fa672cbce9c86c3efb8621df1ae580d47813430" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/6712dc21506738f5f22b4f68b7c0d9e0df819dbd" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/6beb6835c1fbb3f676aebb51a5fee6b77fed9308" diff --git a/advisories/unreviewed/2025/05/GHSA-8q5q-7mvv-w97x/GHSA-8q5q-7mvv-w97x.json b/advisories/unreviewed/2025/05/GHSA-8q5q-7mvv-w97x/GHSA-8q5q-7mvv-w97x.json index bb588955ca8..690bb52a3a6 100644 --- a/advisories/unreviewed/2025/05/GHSA-8q5q-7mvv-w97x/GHSA-8q5q-7mvv-w97x.json +++ b/advisories/unreviewed/2025/05/GHSA-8q5q-7mvv-w97x/GHSA-8q5q-7mvv-w97x.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-8q5q-7mvv-w97x", - "modified": "2025-05-29T15:31:09Z", + "modified": "2025-06-04T15:30:29Z", "published": "2025-05-29T15:31:09Z", "aliases": [ "CVE-2025-37995" @@ -18,10 +18,18 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/31d8df3f303c3ae9115230820977ef8c35c88808" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/93799fb988757cdacf19acba57807746c00378e6" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/9e7b49ce4f9d0cb5b6e87db9e07a2fb9e754b0dd" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/a63d99873547d8b39eb2f6db79dd235761e7098a" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/a6aeb739974ec73e5217c75a7c008a688d3d5cf1" diff --git a/advisories/unreviewed/2025/05/GHSA-9889-58r3-p8h2/GHSA-9889-58r3-p8h2.json b/advisories/unreviewed/2025/05/GHSA-9889-58r3-p8h2/GHSA-9889-58r3-p8h2.json index 65386682760..3097cd27454 100644 --- a/advisories/unreviewed/2025/05/GHSA-9889-58r3-p8h2/GHSA-9889-58r3-p8h2.json +++ b/advisories/unreviewed/2025/05/GHSA-9889-58r3-p8h2/GHSA-9889-58r3-p8h2.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-9889-58r3-p8h2", - "modified": "2025-05-20T18:30:57Z", + "modified": "2025-06-04T15:30:28Z", "published": "2025-05-20T18:30:57Z", "aliases": [ "CVE-2025-37969" @@ -22,6 +22,14 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/35b8c0a284983b71d92d082c54b7eb655ed4194f" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/4db7d923a8c298788181b796f71adf6ca499f966" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/76727a1d81afde77d21ea8feaeb12d34605be6f4" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/8114ef86e2058e2554111b793596f17bee23fa15" diff --git a/advisories/unreviewed/2025/05/GHSA-ccmh-pfgg-525g/GHSA-ccmh-pfgg-525g.json b/advisories/unreviewed/2025/05/GHSA-ccmh-pfgg-525g/GHSA-ccmh-pfgg-525g.json index 3d00b0983c5..50f6511a6ef 100644 --- a/advisories/unreviewed/2025/05/GHSA-ccmh-pfgg-525g/GHSA-ccmh-pfgg-525g.json +++ b/advisories/unreviewed/2025/05/GHSA-ccmh-pfgg-525g/GHSA-ccmh-pfgg-525g.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-ccmh-pfgg-525g", - "modified": "2025-05-20T18:30:56Z", + "modified": "2025-06-04T15:30:28Z", "published": "2025-05-20T18:30:56Z", "aliases": [ "CVE-2025-37953" @@ -26,6 +26,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/98cd7ed92753090a714f0802d4434314526fe61d" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/99ff8a20fd61315bf9ae627440a5ff07d22ee153" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/c4792b9e38d2f61b07eac72f10909fa76130314b" diff --git a/advisories/unreviewed/2025/05/GHSA-fhrm-6xxc-qc49/GHSA-fhrm-6xxc-qc49.json b/advisories/unreviewed/2025/05/GHSA-fhrm-6xxc-qc49/GHSA-fhrm-6xxc-qc49.json index d6c5fcc2980..54e21d053f7 100644 --- a/advisories/unreviewed/2025/05/GHSA-fhrm-6xxc-qc49/GHSA-fhrm-6xxc-qc49.json +++ b/advisories/unreviewed/2025/05/GHSA-fhrm-6xxc-qc49/GHSA-fhrm-6xxc-qc49.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-fhrm-6xxc-qc49", - "modified": "2025-05-20T18:30:58Z", + "modified": "2025-06-04T15:30:29Z", "published": "2025-05-20T18:30:58Z", "aliases": [ "CVE-2025-37990" @@ -26,10 +26,18 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/524b70441baba453b193c418e3142bd31059cc1f" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/62a4f2955d9a1745bdb410bf83fb16666d8865d6" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/8e089e7b585d95122c8122d732d1d5ef8f879396" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/972bf75e53f778c78039c5d139dd47443a6d66a1" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/bdb435ef9815b1ae28eefffa01c6959d0fcf1fa7" diff --git a/advisories/unreviewed/2025/05/GHSA-fwvg-7877-39cm/GHSA-fwvg-7877-39cm.json b/advisories/unreviewed/2025/05/GHSA-fwvg-7877-39cm/GHSA-fwvg-7877-39cm.json index 1b4421a589f..86e070008c7 100644 --- a/advisories/unreviewed/2025/05/GHSA-fwvg-7877-39cm/GHSA-fwvg-7877-39cm.json +++ b/advisories/unreviewed/2025/05/GHSA-fwvg-7877-39cm/GHSA-fwvg-7877-39cm.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-fwvg-7877-39cm", - "modified": "2025-05-16T15:31:02Z", + "modified": "2025-06-04T15:30:27Z", "published": "2025-05-16T15:31:02Z", "aliases": [ "CVE-2025-37890" @@ -18,6 +18,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/141d34391abbb315d68556b7c67ad97885407547" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/273bbcfa53541cde38b2003ad88a59b770306421" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/2e7093c7a8aba5d4f8809f271488e5babe75e202" @@ -34,6 +38,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/ac39fd4a757584d78ed062d4f6fd913f83bd98b5" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/e0cf8ee23e1915431f262a7b2dee0c7a7d699af0" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/e3e949a39a91d1f829a4890e7dfe9417ac72e4d0" diff --git a/advisories/unreviewed/2025/05/GHSA-g586-9cjh-f4c9/GHSA-g586-9cjh-f4c9.json b/advisories/unreviewed/2025/05/GHSA-g586-9cjh-f4c9/GHSA-g586-9cjh-f4c9.json index 023a879ebea..35f803a6b49 100644 --- a/advisories/unreviewed/2025/05/GHSA-g586-9cjh-f4c9/GHSA-g586-9cjh-f4c9.json +++ b/advisories/unreviewed/2025/05/GHSA-g586-9cjh-f4c9/GHSA-g586-9cjh-f4c9.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-g586-9cjh-f4c9", - "modified": "2025-05-20T18:30:55Z", + "modified": "2025-06-04T15:30:28Z", "published": "2025-05-20T18:30:55Z", "aliases": [ "CVE-2025-37923" @@ -30,10 +30,18 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/441021e5b3c7d9bd1b963590652c415929f3b157" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/665ce421041890571852422487f4c613d1824ba9" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/c5d2b66c5ef5037b4b4360e5447605ff00ba1bd4" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f4b0174e9f18aaba59ee6ffdaf8827a7f94eb606" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/f5178c41bb43444a6008150fe6094497135d07cb" diff --git a/advisories/unreviewed/2025/05/GHSA-h35m-jp6f-245x/GHSA-h35m-jp6f-245x.json b/advisories/unreviewed/2025/05/GHSA-h35m-jp6f-245x/GHSA-h35m-jp6f-245x.json index cdf6aa03046..61124d34049 100644 --- a/advisories/unreviewed/2025/05/GHSA-h35m-jp6f-245x/GHSA-h35m-jp6f-245x.json +++ b/advisories/unreviewed/2025/05/GHSA-h35m-jp6f-245x/GHSA-h35m-jp6f-245x.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-h35m-jp6f-245x", - "modified": "2025-05-20T18:30:55Z", + "modified": "2025-06-04T15:30:28Z", "published": "2025-05-20T18:30:55Z", "aliases": [ "CVE-2025-37932" @@ -33,6 +33,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/bbbf5e0f87078b715e7a665d662a2c0e77f044ae" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/e6b45f4de763b00dc1c55e685e2dd1aaf525d3c1" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/05/GHSA-j8pj-vhjm-p7g6/GHSA-j8pj-vhjm-p7g6.json b/advisories/unreviewed/2025/05/GHSA-j8pj-vhjm-p7g6/GHSA-j8pj-vhjm-p7g6.json index ffa219c0505..aafa08bd5fa 100644 --- a/advisories/unreviewed/2025/05/GHSA-j8pj-vhjm-p7g6/GHSA-j8pj-vhjm-p7g6.json +++ b/advisories/unreviewed/2025/05/GHSA-j8pj-vhjm-p7g6/GHSA-j8pj-vhjm-p7g6.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-j8pj-vhjm-p7g6", - "modified": "2025-05-20T18:30:54Z", + "modified": "2025-06-04T15:30:27Z", "published": "2025-05-20T18:30:54Z", "aliases": [ "CVE-2025-37915" @@ -22,10 +22,18 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/2968632880f1792007eedd12eeedf7f6e2b7e9f3" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/4b07ac06b0a712923255aaf2691637693fc7100d" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/4f0ecf50cdf76da95828578a92f130b653ac2fcf" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/5da3aad1a13e7edb8ff0778a444ccf49930313e9" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/ab2248110738d4429668140ad22f530a9ee730e1" diff --git a/advisories/unreviewed/2025/05/GHSA-jgxp-fpw7-p364/GHSA-jgxp-fpw7-p364.json b/advisories/unreviewed/2025/05/GHSA-jgxp-fpw7-p364/GHSA-jgxp-fpw7-p364.json index 17c5942d27e..835a773153f 100644 --- a/advisories/unreviewed/2025/05/GHSA-jgxp-fpw7-p364/GHSA-jgxp-fpw7-p364.json +++ b/advisories/unreviewed/2025/05/GHSA-jgxp-fpw7-p364/GHSA-jgxp-fpw7-p364.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-jgxp-fpw7-p364", - "modified": "2025-05-29T15:31:09Z", + "modified": "2025-06-04T15:30:29Z", "published": "2025-05-29T15:31:09Z", "aliases": [ "CVE-2025-37997" @@ -14,6 +14,14 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-37997" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/00cfc5fad1491796942a948808afb968a0a3f35b" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/226ce0ec38316d9e3739e73a64b6b8304646c658" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/6e002ecc1c8cfdfc866b9104ab7888da54613e59" diff --git a/advisories/unreviewed/2025/05/GHSA-jrcg-ffmc-qfvv/GHSA-jrcg-ffmc-qfvv.json b/advisories/unreviewed/2025/05/GHSA-jrcg-ffmc-qfvv/GHSA-jrcg-ffmc-qfvv.json index 195c6d87d7d..96cb06e7fa4 100644 --- a/advisories/unreviewed/2025/05/GHSA-jrcg-ffmc-qfvv/GHSA-jrcg-ffmc-qfvv.json +++ b/advisories/unreviewed/2025/05/GHSA-jrcg-ffmc-qfvv/GHSA-jrcg-ffmc-qfvv.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-jrcg-ffmc-qfvv", - "modified": "2025-05-20T18:30:55Z", + "modified": "2025-06-04T15:30:28Z", "published": "2025-05-20T18:30:55Z", "aliases": [ "CVE-2025-37927" @@ -22,6 +22,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/13d67528e1ae4486e9ab24b70122fab104c73c29" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/2b65060c84ee4d8dc64fae6d2728b528e9e832e1" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/466d9da267079a8d3b69fa72dfa3a732e1f6dbb5" @@ -30,6 +34,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/8dee308e4c01dea48fc104d37f92d5b58c50b96c" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/a65ebfed65fa62797ec1f5f1dcf7adb157a2de1e" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/c3f37faa71f5d26dd2144b3f2b14525ec8f5e41f" diff --git a/advisories/unreviewed/2025/05/GHSA-m44g-hq47-38xw/GHSA-m44g-hq47-38xw.json b/advisories/unreviewed/2025/05/GHSA-m44g-hq47-38xw/GHSA-m44g-hq47-38xw.json index a9931d8163e..64639fc919a 100644 --- a/advisories/unreviewed/2025/05/GHSA-m44g-hq47-38xw/GHSA-m44g-hq47-38xw.json +++ b/advisories/unreviewed/2025/05/GHSA-m44g-hq47-38xw/GHSA-m44g-hq47-38xw.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-m44g-hq47-38xw", - "modified": "2025-05-20T18:30:55Z", + "modified": "2025-06-04T15:30:28Z", "published": "2025-05-20T18:30:55Z", "aliases": [ "CVE-2025-37930" @@ -26,6 +26,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/2ec0f5f6d4768f292c8406ed92fa699f184577e5" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/39d6e889c0b19a2c79e1c74c843ea7c2d0f99c28" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/47ca11836c35c5698088fd87f7fb4b0ffa217e17" diff --git a/advisories/unreviewed/2025/05/GHSA-p49g-r9vw-4fm8/GHSA-p49g-r9vw-4fm8.json b/advisories/unreviewed/2025/05/GHSA-p49g-r9vw-4fm8/GHSA-p49g-r9vw-4fm8.json index efc5c887e4c..33c7cb206e7 100644 --- a/advisories/unreviewed/2025/05/GHSA-p49g-r9vw-4fm8/GHSA-p49g-r9vw-4fm8.json +++ b/advisories/unreviewed/2025/05/GHSA-p49g-r9vw-4fm8/GHSA-p49g-r9vw-4fm8.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-p49g-r9vw-4fm8", - "modified": "2025-05-29T15:31:09Z", + "modified": "2025-06-04T15:30:29Z", "published": "2025-05-29T15:31:09Z", "aliases": [ "CVE-2025-37994" @@ -34,6 +34,14 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/7804c4d63edfdd5105926cc291e806e8f4ce01b5" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/9dda1e2a666a8a32ce0f153b5dee05c7351f1020" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/a9931f1b52b2d0bf3952e003fd5901ea7eb851ed" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/e9b63faf5c97deb43fc39a52edbc39d626cc14bf" diff --git a/advisories/unreviewed/2025/05/GHSA-pgg7-9g7g-jg57/GHSA-pgg7-9g7g-jg57.json b/advisories/unreviewed/2025/05/GHSA-pgg7-9g7g-jg57/GHSA-pgg7-9g7g-jg57.json index e45aa248156..0c490434816 100644 --- a/advisories/unreviewed/2025/05/GHSA-pgg7-9g7g-jg57/GHSA-pgg7-9g7g-jg57.json +++ b/advisories/unreviewed/2025/05/GHSA-pgg7-9g7g-jg57/GHSA-pgg7-9g7g-jg57.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-pgg7-9g7g-jg57", - "modified": "2025-05-20T18:30:54Z", + "modified": "2025-06-04T15:30:27Z", "published": "2025-05-20T18:30:54Z", "aliases": [ "CVE-2025-37909" @@ -14,6 +14,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-37909" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/093855ce90177488eac772de4eefbb909033ce5f" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/189b05f189cac9fd233ef04d31cb5078c4d09c39" @@ -22,6 +26,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/2d52e2e38b85c8b7bc00dca55c2499f46f8c8198" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/6c65ee5ad632eb8dcd3a91cf5dc99b22535f44d9" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/a0e0efbabbbe6a1859bc31bf65237ce91e124b9b" diff --git a/advisories/unreviewed/2025/05/GHSA-pvfr-278h-v324/GHSA-pvfr-278h-v324.json b/advisories/unreviewed/2025/05/GHSA-pvfr-278h-v324/GHSA-pvfr-278h-v324.json index f8ac9815afb..ab2f035cce1 100644 --- a/advisories/unreviewed/2025/05/GHSA-pvfr-278h-v324/GHSA-pvfr-278h-v324.json +++ b/advisories/unreviewed/2025/05/GHSA-pvfr-278h-v324/GHSA-pvfr-278h-v324.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-pvfr-278h-v324", - "modified": "2025-05-20T18:30:58Z", + "modified": "2025-06-04T15:30:28Z", "published": "2025-05-20T18:30:58Z", "aliases": [ "CVE-2025-37987" @@ -18,6 +18,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/2982e07ad72b48eb12c29a87a3f2126ea552688c" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/517f928cc0c133472618cbba18382b46f5f71ba3" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/5e3dc65675faad846420d24762e4faadc12d9392" diff --git a/advisories/unreviewed/2025/05/GHSA-v8mr-frx6-j364/GHSA-v8mr-frx6-j364.json b/advisories/unreviewed/2025/05/GHSA-v8mr-frx6-j364/GHSA-v8mr-frx6-j364.json index 8b19633267a..fdb30e122cf 100644 --- a/advisories/unreviewed/2025/05/GHSA-v8mr-frx6-j364/GHSA-v8mr-frx6-j364.json +++ b/advisories/unreviewed/2025/05/GHSA-v8mr-frx6-j364/GHSA-v8mr-frx6-j364.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-v8mr-frx6-j364", - "modified": "2025-05-20T18:30:56Z", + "modified": "2025-06-04T15:30:28Z", "published": "2025-05-20T18:30:56Z", "aliases": [ "CVE-2025-37949" @@ -14,6 +14,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-37949" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/0e94a246bb6d9538010b6c02d2b1d4717a97b2e5" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/1f0304dfd9d217c2f8b04a9ef4b3258a66eedd27" @@ -37,6 +41,10 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/cbfaf46b88a4c01b64c4186cdccd766c19ae644c" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f1bcac367bc95631afbb918348f30dec887d0e1b" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/05/GHSA-x88q-4f25-f826/GHSA-x88q-4f25-f826.json b/advisories/unreviewed/2025/05/GHSA-x88q-4f25-f826/GHSA-x88q-4f25-f826.json index 5f12d03163c..4e007f3575e 100644 --- a/advisories/unreviewed/2025/05/GHSA-x88q-4f25-f826/GHSA-x88q-4f25-f826.json +++ b/advisories/unreviewed/2025/05/GHSA-x88q-4f25-f826/GHSA-x88q-4f25-f826.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-x88q-4f25-f826", - "modified": "2025-05-20T18:30:54Z", + "modified": "2025-06-04T15:30:27Z", "published": "2025-05-20T18:30:54Z", "aliases": [ "CVE-2025-37914" @@ -22,6 +22,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/1f01e9f961605eb397c6ecd1d7b0233dfbf9077c" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/24388ba0a1b1b6d4af1b205927ac7f7b119ee4ea" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/554acc5a2ea9703e08023eb9a003f9e5a830a502" diff --git a/advisories/unreviewed/2025/05/GHSA-xp2h-p3fr-j2j5/GHSA-xp2h-p3fr-j2j5.json b/advisories/unreviewed/2025/05/GHSA-xp2h-p3fr-j2j5/GHSA-xp2h-p3fr-j2j5.json index 1db00a0bfbb..bf098ff0a74 100644 --- a/advisories/unreviewed/2025/05/GHSA-xp2h-p3fr-j2j5/GHSA-xp2h-p3fr-j2j5.json +++ b/advisories/unreviewed/2025/05/GHSA-xp2h-p3fr-j2j5/GHSA-xp2h-p3fr-j2j5.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-xp2h-p3fr-j2j5", - "modified": "2025-05-20T18:30:58Z", + "modified": "2025-06-04T15:30:29Z", "published": "2025-05-20T18:30:58Z", "aliases": [ "CVE-2025-37991" @@ -14,6 +14,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-37991" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/2a1aff3616b3b57aa4a5f8a7762cce1e82493fe6" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/6a098c51d18ec99485668da44294565c43dbc106" @@ -22,6 +26,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/6c639af49e9e5615a8395981eaf5943fb40acd6f" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/757ba4d17b868482837c566cfefca59e2296c608" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/cf21e890f56b7d0038ddaf25224e4f4c69ecd143" diff --git a/advisories/unreviewed/2025/06/GHSA-2rcc-9g8p-q2vr/GHSA-2rcc-9g8p-q2vr.json b/advisories/unreviewed/2025/06/GHSA-2rcc-9g8p-q2vr/GHSA-2rcc-9g8p-q2vr.json new file mode 100644 index 00000000000..d5899fa53e4 --- /dev/null +++ b/advisories/unreviewed/2025/06/GHSA-2rcc-9g8p-q2vr/GHSA-2rcc-9g8p-q2vr.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2rcc-9g8p-q2vr", + "modified": "2025-06-04T15:30:40Z", + "published": "2025-06-04T15:30:40Z", + "aliases": [ + "CVE-2025-48960" + ], + "details": "Weak server key used for TLS encryption. The following products are affected: Acronis Cyber Protect 16 (Linux, macOS, Windows) before build 39938.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.0/AV:A/AC:H/PR:N/UI:N/S:U/C:L/I:H/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-48960" + }, + { + "type": "WEB", + "url": "https://security-advisory.acronis.com/advisories/SEC-6403" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-326" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-06-04T14:15:29Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/06/GHSA-4x7w-r9g5-mvxv/GHSA-4x7w-r9g5-mvxv.json b/advisories/unreviewed/2025/06/GHSA-4x7w-r9g5-mvxv/GHSA-4x7w-r9g5-mvxv.json index 7bb7a512fdb..3b3639e0192 100644 --- a/advisories/unreviewed/2025/06/GHSA-4x7w-r9g5-mvxv/GHSA-4x7w-r9g5-mvxv.json +++ b/advisories/unreviewed/2025/06/GHSA-4x7w-r9g5-mvxv/GHSA-4x7w-r9g5-mvxv.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-4x7w-r9g5-mvxv", - "modified": "2025-06-04T06:30:26Z", + "modified": "2025-06-04T15:30:40Z", "published": "2025-06-04T06:30:26Z", "aliases": [ "CVE-2025-4578" ], "details": "The File Provider WordPress plugin through 1.2.3 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-06-04T06:15:21Z" diff --git a/advisories/unreviewed/2025/06/GHSA-65p9-j6pg-72hj/GHSA-65p9-j6pg-72hj.json b/advisories/unreviewed/2025/06/GHSA-65p9-j6pg-72hj/GHSA-65p9-j6pg-72hj.json index 9f60b7135c2..24965fc24e5 100644 --- a/advisories/unreviewed/2025/06/GHSA-65p9-j6pg-72hj/GHSA-65p9-j6pg-72hj.json +++ b/advisories/unreviewed/2025/06/GHSA-65p9-j6pg-72hj/GHSA-65p9-j6pg-72hj.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-65p9-j6pg-72hj", - "modified": "2025-06-04T03:30:27Z", + "modified": "2025-06-04T15:30:37Z", "published": "2025-06-04T03:30:27Z", "aliases": [ "CVE-2025-49223" ], "details": "billboard.js before 3.15.1 was discovered to contain a prototype pollution via the function generate, which could allow attackers to execute arbitrary code or cause a Denial of Service (DoS) via injecting arbitrary properties.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -23,7 +28,7 @@ "cwe_ids": [ "CWE-1321" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-06-04T03:15:27Z" diff --git a/advisories/unreviewed/2025/06/GHSA-6mf3-9673-cq56/GHSA-6mf3-9673-cq56.json b/advisories/unreviewed/2025/06/GHSA-6mf3-9673-cq56/GHSA-6mf3-9673-cq56.json new file mode 100644 index 00000000000..0350cb590d2 --- /dev/null +++ b/advisories/unreviewed/2025/06/GHSA-6mf3-9673-cq56/GHSA-6mf3-9673-cq56.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6mf3-9673-cq56", + "modified": "2025-06-04T15:30:40Z", + "published": "2025-06-04T15:30:40Z", + "aliases": [ + "CVE-2025-48962" + ], + "details": "Sensitive information disclosure due to SSRF. The following products are affected: Acronis Cyber Protect 16 (Windows, Linux) before build 39938.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-48962" + }, + { + "type": "WEB", + "url": "https://security-advisory.acronis.com/advisories/SEC-8514" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-918" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-06-04T14:15:29Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/06/GHSA-7c4m-fm4f-hjxx/GHSA-7c4m-fm4f-hjxx.json b/advisories/unreviewed/2025/06/GHSA-7c4m-fm4f-hjxx/GHSA-7c4m-fm4f-hjxx.json new file mode 100644 index 00000000000..28b243d4ce9 --- /dev/null +++ b/advisories/unreviewed/2025/06/GHSA-7c4m-fm4f-hjxx/GHSA-7c4m-fm4f-hjxx.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7c4m-fm4f-hjxx", + "modified": "2025-06-04T15:30:40Z", + "published": "2025-06-04T15:30:40Z", + "aliases": [ + "CVE-2025-48961" + ], + "details": "Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Cyber Protect 16 (Windows) before build 39938.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-48961" + }, + { + "type": "WEB", + "url": "https://security-advisory.acronis.com/advisories/SEC-8000" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-732" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-06-04T14:15:29Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/06/GHSA-7jp6-72rv-7m74/GHSA-7jp6-72rv-7m74.json b/advisories/unreviewed/2025/06/GHSA-7jp6-72rv-7m74/GHSA-7jp6-72rv-7m74.json new file mode 100644 index 00000000000..95fd0d0bcf1 --- /dev/null +++ b/advisories/unreviewed/2025/06/GHSA-7jp6-72rv-7m74/GHSA-7jp6-72rv-7m74.json @@ -0,0 +1,33 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7jp6-72rv-7m74", + "modified": "2025-06-04T15:30:41Z", + "published": "2025-06-04T15:30:40Z", + "aliases": [ + "CVE-2025-23101" + ], + "details": "An issue was discovered in Samsung Mobile Processor Exynos 1380. A Use-After-Free in the mobile processor leads to privilege escalation.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23101" + }, + { + "type": "WEB", + "url": "https://semiconductor.samsung.com/support/quality-support/product-security-updates" + }, + { + "type": "WEB", + "url": "https://semiconductor.samsung.com/support/quality-support/product-security-updates/cve-2025-23101" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-06-04T15:15:23Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/06/GHSA-7rpw-j66x-gcxm/GHSA-7rpw-j66x-gcxm.json b/advisories/unreviewed/2025/06/GHSA-7rpw-j66x-gcxm/GHSA-7rpw-j66x-gcxm.json index c34a558141c..b0578d4500a 100644 --- a/advisories/unreviewed/2025/06/GHSA-7rpw-j66x-gcxm/GHSA-7rpw-j66x-gcxm.json +++ b/advisories/unreviewed/2025/06/GHSA-7rpw-j66x-gcxm/GHSA-7rpw-j66x-gcxm.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-7rpw-j66x-gcxm", - "modified": "2025-06-04T09:31:35Z", + "modified": "2025-06-04T15:30:40Z", "published": "2025-06-04T09:31:35Z", "aliases": [ "CVE-2025-27444" ], "details": "A reflected XSS vulnerability in RSform!Pro component 3.0.0 - 3.3.13 for Joomla was discovered. The issue arises from the improper handling of the filter[dateFrom] GET parameter, which is reflected unescaped in the administrative backend interface. This allows an authenticated attacker with admin or editor privileges to inject arbitrary JavaScript code by crafting a malicious URL.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -23,7 +28,7 @@ "cwe_ids": [ "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-06-04T08:15:21Z" diff --git a/advisories/unreviewed/2025/06/GHSA-cqp2-7c4h-87f3/GHSA-cqp2-7c4h-87f3.json b/advisories/unreviewed/2025/06/GHSA-cqp2-7c4h-87f3/GHSA-cqp2-7c4h-87f3.json new file mode 100644 index 00000000000..78d4cea1795 --- /dev/null +++ b/advisories/unreviewed/2025/06/GHSA-cqp2-7c4h-87f3/GHSA-cqp2-7c4h-87f3.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cqp2-7c4h-87f3", + "modified": "2025-06-04T15:30:40Z", + "published": "2025-06-04T15:30:40Z", + "aliases": [ + "CVE-2025-1701" + ], + "details": "CVE-2025-1701 is a high-severity vulnerability in the MIM Admin service. An attacker could exploit this vulnerability by sending a specially crafted request over the RMI interface to execute arbitrary code with the privileges of the MIM Admin service. The RMI interface is only accessible locally (listening on 127.0.0.1), limiting the attack vector to the local machine. This means that in a properly configured hospital environment, an attacker must have already compromised the network and additionally compromised the system where the MIM Admin service is running. From there, attackers with sufficient knowledge of MIM's implementation, library usage, and functionality with access to extend the MIM RMI library could force the MIM Admin service to run commands on the local machine with its privileges.\n\nUsers of MIM Software products exposed via RDP or multi-user application virtualization system should take note that the system being exposed is the environment hosting the virtualized MIM client.\n\n\n\nThis issue affects MIM Admin Service: before 7.2.13, 7.3.8, 7.4.3", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:A/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-1701" + }, + { + "type": "WEB", + "url": "https://www.mimsoftware.com/cve-2025-1701" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-20" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-06-04T14:15:27Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/06/GHSA-g3c7-95hc-gv66/GHSA-g3c7-95hc-gv66.json b/advisories/unreviewed/2025/06/GHSA-g3c7-95hc-gv66/GHSA-g3c7-95hc-gv66.json index 7e698dd05e5..cc2b17889e3 100644 --- a/advisories/unreviewed/2025/06/GHSA-g3c7-95hc-gv66/GHSA-g3c7-95hc-gv66.json +++ b/advisories/unreviewed/2025/06/GHSA-g3c7-95hc-gv66/GHSA-g3c7-95hc-gv66.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-g3c7-95hc-gv66", - "modified": "2025-06-03T18:30:41Z", + "modified": "2025-06-04T15:30:35Z", "published": "2025-06-03T18:30:41Z", "aliases": [ "CVE-2025-45854" @@ -26,11 +26,16 @@ { "type": "WEB", "url": "https://gitee.com/jehc/JEHC-BPM" + }, + { + "type": "WEB", + "url": "https://web.archive.org/web/20250604134020/https://gist.github.com/Cafe-Tea/bc14b38f4bfd951de2979a24c3358460/revisions" } ], "database_specific": { "cwe_ids": [ - "CWE-434" + "CWE-434", + "CWE-862" ], "severity": "CRITICAL", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/06/GHSA-hg9v-648p-2828/GHSA-hg9v-648p-2828.json b/advisories/unreviewed/2025/06/GHSA-hg9v-648p-2828/GHSA-hg9v-648p-2828.json index d1f4865e3e4..9bf116d259f 100644 --- a/advisories/unreviewed/2025/06/GHSA-hg9v-648p-2828/GHSA-hg9v-648p-2828.json +++ b/advisories/unreviewed/2025/06/GHSA-hg9v-648p-2828/GHSA-hg9v-648p-2828.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-hg9v-648p-2828", - "modified": "2025-06-04T06:30:26Z", + "modified": "2025-06-04T15:30:40Z", "published": "2025-06-04T06:30:26Z", "aliases": [ "CVE-2025-4580" ], "details": "The File Provider WordPress plugin through 1.2.3 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-06-04T06:15:21Z" diff --git a/advisories/unreviewed/2025/06/GHSA-jw2w-q42r-444f/GHSA-jw2w-q42r-444f.json b/advisories/unreviewed/2025/06/GHSA-jw2w-q42r-444f/GHSA-jw2w-q42r-444f.json new file mode 100644 index 00000000000..98d61497e4d --- /dev/null +++ b/advisories/unreviewed/2025/06/GHSA-jw2w-q42r-444f/GHSA-jw2w-q42r-444f.json @@ -0,0 +1,33 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-jw2w-q42r-444f", + "modified": "2025-06-04T15:30:41Z", + "published": "2025-06-04T15:30:40Z", + "aliases": [ + "CVE-2025-23095" + ], + "details": "An issue was discovered in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, 2400. A Double Free in the mobile processor leads to privilege escalation.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23095" + }, + { + "type": "WEB", + "url": "https://semiconductor.samsung.com/support/quality-support/product-security-updates" + }, + { + "type": "WEB", + "url": "https://semiconductor.samsung.com/support/quality-support/product-security-updates/cve-2025-23095" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-06-04T15:15:23Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/06/GHSA-p5r3-w88m-mm8j/GHSA-p5r3-w88m-mm8j.json b/advisories/unreviewed/2025/06/GHSA-p5r3-w88m-mm8j/GHSA-p5r3-w88m-mm8j.json new file mode 100644 index 00000000000..e8d7d7ddea4 --- /dev/null +++ b/advisories/unreviewed/2025/06/GHSA-p5r3-w88m-mm8j/GHSA-p5r3-w88m-mm8j.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p5r3-w88m-mm8j", + "modified": "2025-06-04T15:30:41Z", + "published": "2025-06-04T15:30:40Z", + "aliases": [ + "CVE-2025-5592" + ], + "details": "A vulnerability, which was classified as critical, has been found in FreeFloat FTP Server 1.0. Affected by this issue is some unknown functionality of the component PASSIVE Command Handler. The manipulation leads to buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-5592" + }, + { + "type": "WEB", + "url": "https://fitoxs.com/exploit/exploit-d28993dd71bcf3fbc63ff58db41e5f10a3ff7932e72d9e25c556cf18921a98e3.txt" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.311078" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.311078" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.586990" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-119" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-06-04T14:15:35Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/06/GHSA-vpq6-j9hp-2h3w/GHSA-vpq6-j9hp-2h3w.json b/advisories/unreviewed/2025/06/GHSA-vpq6-j9hp-2h3w/GHSA-vpq6-j9hp-2h3w.json new file mode 100644 index 00000000000..c31a8366bea --- /dev/null +++ b/advisories/unreviewed/2025/06/GHSA-vpq6-j9hp-2h3w/GHSA-vpq6-j9hp-2h3w.json @@ -0,0 +1,33 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-vpq6-j9hp-2h3w", + "modified": "2025-06-04T15:30:41Z", + "published": "2025-06-04T15:30:41Z", + "aliases": [ + "CVE-2025-23096" + ], + "details": "An issue was discovered in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, 2400. A Double Free in the mobile processor leads to privilege escalation.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23096" + }, + { + "type": "WEB", + "url": "https://semiconductor.samsung.com/support/quality-support/product-security-updates" + }, + { + "type": "WEB", + "url": "https://semiconductor.samsung.com/support/quality-support/product-security-updates/cve-2025-23096" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-06-04T15:15:23Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/06/GHSA-xxvc-6xwm-7prp/GHSA-xxvc-6xwm-7prp.json b/advisories/unreviewed/2025/06/GHSA-xxvc-6xwm-7prp/GHSA-xxvc-6xwm-7prp.json new file mode 100644 index 00000000000..8c4b4c4fd7a --- /dev/null +++ b/advisories/unreviewed/2025/06/GHSA-xxvc-6xwm-7prp/GHSA-xxvc-6xwm-7prp.json @@ -0,0 +1,33 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-xxvc-6xwm-7prp", + "modified": "2025-06-04T15:30:40Z", + "published": "2025-06-04T15:30:40Z", + "aliases": [ + "CVE-2025-27811" + ], + "details": "A local privilege escalation in the razer_elevation_service.exe in Razer Synapse 4 through 4.0.86.2502180127 allows a local attacker to escalate their privileges via a vulnerable COM interface in the target service.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-27811" + }, + { + "type": "WEB", + "url": "https://app.inspectiv.com/#/submissions/EAEDG9ssRaTWKSJJ5Bbrt9" + }, + { + "type": "WEB", + "url": "https://gist.github.com/leonjza/829a98f6c0954d7cb3f6614d05f87f37" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-06-04T14:15:28Z" + } +} \ No newline at end of file