From 99c3ad8f3737dd79942aac3ddc142039886de86a Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Wed, 20 Nov 2024 09:33:59 +0000 Subject: [PATCH] Publish Advisories GHSA-5v32-g299-xh57 GHSA-62m8-j435-v728 GHSA-678m-q2m4-g7rf GHSA-8w9g-r3q7-57v4 GHSA-c3rr-7229-8p7f GHSA-cgpm-vvq7-c2vr GHSA-cj58-7fxj-6jq8 GHSA-cq6m-qc88-xjpx GHSA-f74h-hvpw-9xwm GHSA-fhq3-7h78-8m2w GHSA-fwqv-682v-f9jf GHSA-hpqm-fcp7-mx27 GHSA-wvfr-wwfx-7qxq --- .../GHSA-5v32-g299-xh57.json | 46 +++++++++++++++++ .../GHSA-62m8-j435-v728.json | 42 ++++++++++++++++ .../GHSA-678m-q2m4-g7rf.json | 46 +++++++++++++++++ .../GHSA-8w9g-r3q7-57v4.json | 42 ++++++++++++++++ .../GHSA-c3rr-7229-8p7f.json | 38 ++++++++++++++ .../GHSA-cgpm-vvq7-c2vr.json | 42 ++++++++++++++++ .../GHSA-cj58-7fxj-6jq8.json | 42 ++++++++++++++++ .../GHSA-cq6m-qc88-xjpx.json | 42 ++++++++++++++++ .../GHSA-f74h-hvpw-9xwm.json | 38 ++++++++++++++ .../GHSA-fhq3-7h78-8m2w.json | 50 +++++++++++++++++++ .../GHSA-fwqv-682v-f9jf.json | 38 ++++++++++++++ .../GHSA-hpqm-fcp7-mx27.json | 46 +++++++++++++++++ .../GHSA-wvfr-wwfx-7qxq.json | 42 ++++++++++++++++ 13 files changed, 554 insertions(+) create mode 100644 advisories/unreviewed/2024/11/GHSA-5v32-g299-xh57/GHSA-5v32-g299-xh57.json create mode 100644 advisories/unreviewed/2024/11/GHSA-62m8-j435-v728/GHSA-62m8-j435-v728.json create mode 100644 advisories/unreviewed/2024/11/GHSA-678m-q2m4-g7rf/GHSA-678m-q2m4-g7rf.json create mode 100644 advisories/unreviewed/2024/11/GHSA-8w9g-r3q7-57v4/GHSA-8w9g-r3q7-57v4.json create mode 100644 advisories/unreviewed/2024/11/GHSA-c3rr-7229-8p7f/GHSA-c3rr-7229-8p7f.json create mode 100644 advisories/unreviewed/2024/11/GHSA-cgpm-vvq7-c2vr/GHSA-cgpm-vvq7-c2vr.json create mode 100644 advisories/unreviewed/2024/11/GHSA-cj58-7fxj-6jq8/GHSA-cj58-7fxj-6jq8.json create mode 100644 advisories/unreviewed/2024/11/GHSA-cq6m-qc88-xjpx/GHSA-cq6m-qc88-xjpx.json create mode 100644 advisories/unreviewed/2024/11/GHSA-f74h-hvpw-9xwm/GHSA-f74h-hvpw-9xwm.json create mode 100644 advisories/unreviewed/2024/11/GHSA-fhq3-7h78-8m2w/GHSA-fhq3-7h78-8m2w.json create mode 100644 advisories/unreviewed/2024/11/GHSA-fwqv-682v-f9jf/GHSA-fwqv-682v-f9jf.json create mode 100644 advisories/unreviewed/2024/11/GHSA-hpqm-fcp7-mx27/GHSA-hpqm-fcp7-mx27.json create mode 100644 advisories/unreviewed/2024/11/GHSA-wvfr-wwfx-7qxq/GHSA-wvfr-wwfx-7qxq.json diff --git a/advisories/unreviewed/2024/11/GHSA-5v32-g299-xh57/GHSA-5v32-g299-xh57.json b/advisories/unreviewed/2024/11/GHSA-5v32-g299-xh57/GHSA-5v32-g299-xh57.json new file mode 100644 index 00000000000..13c098ef042 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-5v32-g299-xh57/GHSA-5v32-g299-xh57.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5v32-g299-xh57", + "modified": "2024-11-20T09:32:54Z", + "published": "2024-11-20T09:32:54Z", + "aliases": [ + "CVE-2024-10855" + ], + "details": "The Image Optimizer, Resizer and CDN – Sirv plugin for WordPress is vulnerable to unauthorized modification of data that can lead to a denial of service due to insufficient validation on the filename parameter of the sirv_upload_file_by_chunks() function and lack of in all versions up to, and including, 7.3.0. This makes it possible for authenticated attackers, with Contributor-level access and above, to delete arbitrary option values on the WordPress site. This can be leveraged to delete an option that would create an error on the site and deny service to legitimate users.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10855" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/sirv/tags/7.2.8/sirv.php#L4691" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3186406%40sirv&new=3186406%40sirv&sfp_email=&sfph_mail=" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/d6ec09e5-4994-4d23-bf8e-26b64d5303fa?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-639" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-20T07:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-62m8-j435-v728/GHSA-62m8-j435-v728.json b/advisories/unreviewed/2024/11/GHSA-62m8-j435-v728/GHSA-62m8-j435-v728.json new file mode 100644 index 00000000000..4085858ebaf --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-62m8-j435-v728/GHSA-62m8-j435-v728.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-62m8-j435-v728", + "modified": "2024-11-20T09:32:54Z", + "published": "2024-11-20T09:32:54Z", + "aliases": [ + "CVE-2024-47865" + ], + "details": "Missing authentication for critical function vulnerability exists in Rakuten Turbo 5G firmware version V1.3.18 and earlier. If this vulnerability is exploited, a remote unauthenticated attacker may update or downgrade the firmware on the device.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47865" + }, + { + "type": "WEB", + "url": "https://jvn.jp/en/vu/JVNVU90667116" + }, + { + "type": "WEB", + "url": "https://network.mobile.rakuten.co.jp/internet/turbo/information/news/3184" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-306" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-20T08:15:14Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-678m-q2m4-g7rf/GHSA-678m-q2m4-g7rf.json b/advisories/unreviewed/2024/11/GHSA-678m-q2m4-g7rf/GHSA-678m-q2m4-g7rf.json new file mode 100644 index 00000000000..f96279b2dea --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-678m-q2m4-g7rf/GHSA-678m-q2m4-g7rf.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-678m-q2m4-g7rf", + "modified": "2024-11-20T09:32:54Z", + "published": "2024-11-20T09:32:54Z", + "aliases": [ + "CVE-2024-10900" + ], + "details": "The ProfileGrid – User Profiles, Groups and Communities plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the pm_remove_file_attachment() function in all versions up to, and including, 5.9.3.6. This makes it possible for authenticated attackers, with subscriber-level access and above, to delete arbitrary user meta which can do things like deny an administrator's access to their site. .", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10900" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/profilegrid-user-profiles-groups-and-communities/trunk/admin/class-profile-magic-admin.php#L1902" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3190069%40profilegrid-user-profiles-groups-and-communities&new=3190069%40profilegrid-user-profiles-groups-and-communities&sfp_email=&sfph_mail=" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/a0e5fcfa-ebc9-45f6-9cbc-c9e3540baa6f?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-862" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-20T07:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-8w9g-r3q7-57v4/GHSA-8w9g-r3q7-57v4.json b/advisories/unreviewed/2024/11/GHSA-8w9g-r3q7-57v4/GHSA-8w9g-r3q7-57v4.json new file mode 100644 index 00000000000..5dd5651ec8f --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-8w9g-r3q7-57v4/GHSA-8w9g-r3q7-57v4.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8w9g-r3q7-57v4", + "modified": "2024-11-20T09:32:54Z", + "published": "2024-11-20T09:32:54Z", + "aliases": [ + "CVE-2024-11277" + ], + "details": "The 404 Solution plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via URLs in all versions up to, and including, 2.35.19 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11277" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3191597%40404-solution&new=3191597%40404-solution&sfp_email=&sfph_mail=" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/259f9ea3-ac24-4bea-8d0d-c635a68d9c98?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-20T07:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-c3rr-7229-8p7f/GHSA-c3rr-7229-8p7f.json b/advisories/unreviewed/2024/11/GHSA-c3rr-7229-8p7f/GHSA-c3rr-7229-8p7f.json new file mode 100644 index 00000000000..0d02ad27ba0 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-c3rr-7229-8p7f/GHSA-c3rr-7229-8p7f.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-c3rr-7229-8p7f", + "modified": "2024-11-20T09:32:55Z", + "published": "2024-11-20T09:32:54Z", + "aliases": [ + "CVE-2024-10127" + ], + "details": "Authentication bypass condition in LDAP authentication in M-Files server versions before 24.11 supported usage of OpenLDAP configurations that allowed user authentication without a password when the LDAP server itself had the vulnerable configuration.", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10127" + }, + { + "type": "WEB", + "url": "https://product.m-files.com/security-advisories/CVE-2024-10127" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-303" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-20T09:15:04Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-cgpm-vvq7-c2vr/GHSA-cgpm-vvq7-c2vr.json b/advisories/unreviewed/2024/11/GHSA-cgpm-vvq7-c2vr/GHSA-cgpm-vvq7-c2vr.json new file mode 100644 index 00000000000..81955d34bc4 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-cgpm-vvq7-c2vr/GHSA-cgpm-vvq7-c2vr.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cgpm-vvq7-c2vr", + "modified": "2024-11-20T09:32:54Z", + "published": "2024-11-20T09:32:54Z", + "aliases": [ + "CVE-2024-48895" + ], + "details": "Improper neutralization of special elements used in an OS command ('OS Command Injection') issue exists in Rakuten Turbo 5G firmware version V1.3.18 and earlier. If this vulnerability is exploited, a remote authenticated attacker may execute an arbitrary OS command.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-48895" + }, + { + "type": "WEB", + "url": "https://jvn.jp/en/vu/JVNVU90667116" + }, + { + "type": "WEB", + "url": "https://network.mobile.rakuten.co.jp/internet/turbo/information/news/3184" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-78" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-20T08:15:15Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-cj58-7fxj-6jq8/GHSA-cj58-7fxj-6jq8.json b/advisories/unreviewed/2024/11/GHSA-cj58-7fxj-6jq8/GHSA-cj58-7fxj-6jq8.json new file mode 100644 index 00000000000..dbf8bbf395f --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-cj58-7fxj-6jq8/GHSA-cj58-7fxj-6jq8.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cj58-7fxj-6jq8", + "modified": "2024-11-20T09:32:54Z", + "published": "2024-11-20T09:32:54Z", + "aliases": [ + "CVE-2024-10365" + ], + "details": "The The Plus Addons for Elementor – Elementor Addons, Page Templates, Widgets, Mega Menu, WooCommerce plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 6.0.3 via the render function in modules/widgets/tp_carousel_anything.php, modules/widgets/tp_page_scroll.php, and other widgets. This makes it possible for authenticated attackers, with Contributor-level access and above, to extract sensitive private, pending, and draft template data.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10365" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3186482/the-plus-addons-for-elementor-page-builder" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/f7ce1d19-25fa-434d-943b-d10c5cb2ec51?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-200" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-20T07:15:06Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-cq6m-qc88-xjpx/GHSA-cq6m-qc88-xjpx.json b/advisories/unreviewed/2024/11/GHSA-cq6m-qc88-xjpx/GHSA-cq6m-qc88-xjpx.json new file mode 100644 index 00000000000..12bf61e1ef6 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-cq6m-qc88-xjpx/GHSA-cq6m-qc88-xjpx.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cq6m-qc88-xjpx", + "modified": "2024-11-20T09:32:54Z", + "published": "2024-11-20T09:32:54Z", + "aliases": [ + "CVE-2024-8726" + ], + "details": "The MailChimp Forms by MailMunch plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 3.2.3. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8726" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3189361%40mailchimp-forms-by-mailmunch&new=3189361%40mailchimp-forms-by-mailmunch&sfp_email=&sfph_mail=" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/a1a1c5e7-75a4-4ca5-9707-4076b92e0c33?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-20T07:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-f74h-hvpw-9xwm/GHSA-f74h-hvpw-9xwm.json b/advisories/unreviewed/2024/11/GHSA-f74h-hvpw-9xwm/GHSA-f74h-hvpw-9xwm.json new file mode 100644 index 00000000000..261c81eaaac --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-f74h-hvpw-9xwm/GHSA-f74h-hvpw-9xwm.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-f74h-hvpw-9xwm", + "modified": "2024-11-20T09:32:54Z", + "published": "2024-11-20T09:32:54Z", + "aliases": [ + "CVE-2024-10126" + ], + "details": "Local File Inclusion vulnerability in M-Files Server in versions before 24.11 (excluding 24.8 SR1, 24.2 SR3 and 23.8 SR7) allows an authenticated user to read server local files of a limited set of filetypes via document preview.", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10126" + }, + { + "type": "WEB", + "url": "https://product.m-files.com/security-advisories/CVE-2024-10126" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-552" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-20T09:15:03Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-fhq3-7h78-8m2w/GHSA-fhq3-7h78-8m2w.json b/advisories/unreviewed/2024/11/GHSA-fhq3-7h78-8m2w/GHSA-fhq3-7h78-8m2w.json new file mode 100644 index 00000000000..2989454c060 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-fhq3-7h78-8m2w/GHSA-fhq3-7h78-8m2w.json @@ -0,0 +1,50 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fhq3-7h78-8m2w", + "modified": "2024-11-20T09:32:54Z", + "published": "2024-11-20T09:32:54Z", + "aliases": [ + "CVE-2024-9239" + ], + "details": "The Booster for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg & remove_query_arg without appropriate escaping on the URL in all versions up to, and including, 7.2.3. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9239" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/woocommerce-jetpack/tags/7.2.3/includes/settings/wcj-settings-pdf-invoicing-advanced.php#L53" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/woocommerce-jetpack/tags/7.2.3/includes/tools/class-wcj-order-statuses-tool.php#L319" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3187178%40woocommerce-jetpack&new=3187178%40woocommerce-jetpack&sfp_email=&sfph_mail=#file5" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/c4665b87-e1f8-4a73-b6d6-1d5c14067b3a?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-20T07:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-fwqv-682v-f9jf/GHSA-fwqv-682v-f9jf.json b/advisories/unreviewed/2024/11/GHSA-fwqv-682v-f9jf/GHSA-fwqv-682v-f9jf.json new file mode 100644 index 00000000000..c7b5234c859 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-fwqv-682v-f9jf/GHSA-fwqv-682v-f9jf.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fwqv-682v-f9jf", + "modified": "2024-11-20T09:32:55Z", + "published": "2024-11-20T09:32:55Z", + "aliases": [ + "CVE-2024-11176" + ], + "details": "Improper access control vulnerability in M-Files Aino in versions before 24.10 allowed an authenticated user to access object information via incorrect calculation of effective permissions.", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11176" + }, + { + "type": "WEB", + "url": "https://product.m-files.com/security-advisories/CVE-2024-11176" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-682" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-20T09:15:04Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-hpqm-fcp7-mx27/GHSA-hpqm-fcp7-mx27.json b/advisories/unreviewed/2024/11/GHSA-hpqm-fcp7-mx27/GHSA-hpqm-fcp7-mx27.json new file mode 100644 index 00000000000..3cfd0015648 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-hpqm-fcp7-mx27/GHSA-hpqm-fcp7-mx27.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-hpqm-fcp7-mx27", + "modified": "2024-11-20T09:32:54Z", + "published": "2024-11-20T09:32:54Z", + "aliases": [ + "CVE-2024-10899" + ], + "details": "The The WooCommerce Product Table Lite plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 3.8.6. This is due to the software allowing users to execute an action that does not properly validate a value before running do_shortcode. This makes it possible for unauthenticated attackers to execute arbitrary shortcodes. The same 'id' parameter is vulnerable to Reflected Cross-Site Scripting as well.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10899" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/wc-product-table-lite/tags/3.8.6/main.php#L1778" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3190789%40wc-product-table-lite&new=3190789%40wc-product-table-lite&sfp_email=&sfph_mail=" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/c9b010ff-8a4a-4553-bb2b-d58a254d7ee4?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-94" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-20T07:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-wvfr-wwfx-7qxq/GHSA-wvfr-wwfx-7qxq.json b/advisories/unreviewed/2024/11/GHSA-wvfr-wwfx-7qxq/GHSA-wvfr-wwfx-7qxq.json new file mode 100644 index 00000000000..4cddd42643e --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-wvfr-wwfx-7qxq/GHSA-wvfr-wwfx-7qxq.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-wvfr-wwfx-7qxq", + "modified": "2024-11-20T09:32:54Z", + "published": "2024-11-20T09:32:54Z", + "aliases": [ + "CVE-2024-52033" + ], + "details": "Exposure of sensitive system information to an unauthorized control sphere issue exists in Rakuten Turbo 5G firmware version V1.3.18 and earlier. If this vulnerability is exploited, a remote unauthenticated attacker may obtain information of the other devices connected through the Wi-Fi.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-52033" + }, + { + "type": "WEB", + "url": "https://jvn.jp/en/vu/JVNVU90667116" + }, + { + "type": "WEB", + "url": "https://network.mobile.rakuten.co.jp/internet/turbo/information/news/3184" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-497" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-20T08:15:15Z" + } +} \ No newline at end of file