From 9887ead175d2d8a110db1dd7f65d5980c9c95dc1 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Wed, 7 Feb 2024 18:48:16 +0000 Subject: [PATCH] Publish Advisories GHSA-mg2g-8pwj-r2j2 GHSA-29gp-2c3m-3j6m GHSA-4h9c-v5vg-5m6m GHSA-7gfx-wxfh-7rvm --- .../GHSA-mg2g-8pwj-r2j2/GHSA-mg2g-8pwj-r2j2.json | 15 ++++++++------- .../GHSA-29gp-2c3m-3j6m/GHSA-29gp-2c3m-3j6m.json | 4 ++++ .../GHSA-4h9c-v5vg-5m6m/GHSA-4h9c-v5vg-5m6m.json | 4 ++++ .../GHSA-7gfx-wxfh-7rvm/GHSA-7gfx-wxfh-7rvm.json | 4 ++++ 4 files changed, 20 insertions(+), 7 deletions(-) diff --git a/advisories/github-reviewed/2021/06/GHSA-mg2g-8pwj-r2j2/GHSA-mg2g-8pwj-r2j2.json b/advisories/github-reviewed/2021/06/GHSA-mg2g-8pwj-r2j2/GHSA-mg2g-8pwj-r2j2.json index a07f7603fe3..46be45c143e 100644 --- a/advisories/github-reviewed/2021/06/GHSA-mg2g-8pwj-r2j2/GHSA-mg2g-8pwj-r2j2.json +++ b/advisories/github-reviewed/2021/06/GHSA-mg2g-8pwj-r2j2/GHSA-mg2g-8pwj-r2j2.json @@ -25,16 +25,13 @@ "type": "ECOSYSTEM", "events": [ { - "introduced": "4.0.0-alpha1" + "introduced": "3.0.0" }, { - "fixed": "4.0.0-alpha2" + "fixed": "3.5.0" } ] } - ], - "versions": [ - "4.0.0-alpha1" ] }, { @@ -47,10 +44,10 @@ "type": "ECOSYSTEM", "events": [ { - "introduced": "3.0.0" + "introduced": "4.0.0-alpha1" }, { - "fixed": "3.5.0" + "fixed": "4.0.0-alpha2" } ] } @@ -66,6 +63,10 @@ "type": "WEB", "url": "https://forum.silverstripe.org/c/releases" }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/silverstripe/graphql/CVE-2020-26136.yaml" + }, { "type": "WEB", "url": "https://www.silverstripe.org/blog/tag/release" diff --git a/advisories/github-reviewed/2022/01/GHSA-29gp-2c3m-3j6m/GHSA-29gp-2c3m-3j6m.json b/advisories/github-reviewed/2022/01/GHSA-29gp-2c3m-3j6m/GHSA-29gp-2c3m-3j6m.json index 4d8a301160d..32bf4acc37b 100644 --- a/advisories/github-reviewed/2022/01/GHSA-29gp-2c3m-3j6m/GHSA-29gp-2c3m-3j6m.json +++ b/advisories/github-reviewed/2022/01/GHSA-29gp-2c3m-3j6m/GHSA-29gp-2c3m-3j6m.json @@ -67,6 +67,10 @@ "type": "WEB", "url": "https://github.com/smarty-php/smarty/commit/215d81a9fa3cd63d82fb3ab56ecaf97cf1e7db71" }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/smarty/smarty/CVE-2021-29454.yaml" + }, { "type": "PACKAGE", "url": "https://github.com/smarty-php/smarty" diff --git a/advisories/github-reviewed/2022/01/GHSA-4h9c-v5vg-5m6m/GHSA-4h9c-v5vg-5m6m.json b/advisories/github-reviewed/2022/01/GHSA-4h9c-v5vg-5m6m/GHSA-4h9c-v5vg-5m6m.json index 067a884175f..f4b5bfa64c2 100644 --- a/advisories/github-reviewed/2022/01/GHSA-4h9c-v5vg-5m6m/GHSA-4h9c-v5vg-5m6m.json +++ b/advisories/github-reviewed/2022/01/GHSA-4h9c-v5vg-5m6m/GHSA-4h9c-v5vg-5m6m.json @@ -67,6 +67,10 @@ "type": "WEB", "url": "https://github.com/smarty-php/smarty/commit/19ae410bf56007a5ef24441cdc6414619cfaf664" }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/smarty/smarty/CVE-2021-21408.yaml" + }, { "type": "PACKAGE", "url": "https://github.com/smarty-php/smarty" diff --git a/advisories/github-reviewed/2022/05/GHSA-7gfx-wxfh-7rvm/GHSA-7gfx-wxfh-7rvm.json b/advisories/github-reviewed/2022/05/GHSA-7gfx-wxfh-7rvm/GHSA-7gfx-wxfh-7rvm.json index 940ff938abc..5edfb70b9a2 100644 --- a/advisories/github-reviewed/2022/05/GHSA-7gfx-wxfh-7rvm/GHSA-7gfx-wxfh-7rvm.json +++ b/advisories/github-reviewed/2022/05/GHSA-7gfx-wxfh-7rvm/GHSA-7gfx-wxfh-7rvm.json @@ -60,6 +60,10 @@ "type": "WEB", "url": "https://github.com/smarty-php/smarty/commit/f9ca3c63d1250bb56b2bda609dcc9dd81f0065f8" }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/smarty/smarty/CVE-2018-13982.yaml" + }, { "type": "WEB", "url": "https://github.com/sbaresearch/advisories/tree/public/2018/SBA-ADV-20180420-01_Smarty_Path_Traversal"