Publish Advisories

GHSA-76cc-p55w-63g3
GHSA-c9v7-wmwj-vf6x
GHSA-hw4x-mcx5-9q36
GHSA-vfxf-76hv-v4w4
GHSA-r4fm-g65h-cr54
GHSA-h63h-5c77-77p5
GHSA-wf3x-jccf-5g5g
GHSA-6xx4-x46f-f897
GHSA-7q74-g774-7x3g
GHSA-jjxf-26c9-77gm
This commit is contained in:
advisory-database[bot]
2024-09-06 21:42:35 +00:00
parent e533806476
commit 99f0a9cb8e
10 changed files with 103 additions and 10 deletions
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-76cc-p55w-63g3",
"modified": "2024-07-08T19:39:41Z",
"modified": "2024-09-06T21:40:26Z",
"published": "2024-01-03T21:29:09Z",
"withdrawn": "2024-01-23T12:50:23Z",
"aliases": [
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-c9v7-wmwj-vf6x",
"modified": "2024-07-08T19:40:00Z",
"modified": "2024-09-06T21:40:24Z",
"published": "2024-01-03T21:29:33Z",
"withdrawn": "2024-01-23T12:50:08Z",
"aliases": [
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-hw4x-mcx5-9q36",
"modified": "2024-07-08T19:39:16Z",
"modified": "2024-09-06T21:40:28Z",
"published": "2024-01-03T21:28:37Z",
"withdrawn": "2024-01-23T12:50:39Z",
"aliases": [
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-vfxf-76hv-v4w4",
"modified": "2024-07-08T19:40:23Z",
"modified": "2024-09-06T21:40:14Z",
"published": "2024-01-03T21:30:17Z",
"withdrawn": "2024-01-23T12:49:53Z",
"aliases": [
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-r4fm-g65h-cr54",
"modified": "2024-07-08T20:31:16Z",
"modified": "2024-09-06T21:40:17Z",
"published": "2024-02-29T12:31:06Z",
"aliases": [
"CVE-2024-1952"
@@ -44,6 +44,10 @@
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2024-1952"
},
{
"type": "ADVISORY",
"url": "https://github.com/advisories/GHSA-r4fm-g65h-cr54"
},
{
"type": "PACKAGE",
"url": "https://github.com/mattermost/mattermost"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-h63h-5c77-77p5",
"modified": "2024-07-31T20:20:30Z",
"modified": "2024-09-06T21:41:22Z",
"published": "2024-07-31T15:24:37Z",
"aliases": [
"CVE-2024-37901"
@@ -114,6 +114,7 @@
"database_specific": {
"cwe_ids": [
"CWE-862",
"CWE-94",
"CWE-95"
],
"severity": "CRITICAL",
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-wf3x-jccf-5g5g",
"modified": "2024-07-31T20:20:27Z",
"modified": "2024-09-06T21:41:20Z",
"published": "2024-07-31T15:21:06Z",
"aliases": [
"CVE-2024-37900"
@@ -140,6 +140,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-94",
"CWE-96"
],
"severity": "MODERATE",
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-6xx4-x46f-f897",
"modified": "2024-09-03T21:01:54Z",
"modified": "2024-09-06T21:41:35Z",
"published": "2024-09-03T21:01:53Z",
"aliases": [
"CVE-2024-45388"
@@ -37,6 +37,25 @@
]
}
]
},
{
"package": {
"ecosystem": "Go",
"name": "github.com/SpectoLabs/hoverfly"
},
"ranges": [
{
"type": "ECOSYSTEM",
"events": [
{
"introduced": "0"
},
{
"fixed": "1.10.3"
}
]
}
]
}
],
"references": [
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-7q74-g774-7x3g",
"modified": "2024-09-05T21:19:37Z",
"modified": "2024-09-06T21:41:48Z",
"published": "2024-09-05T21:19:36Z",
"aliases": [
@@ -30,6 +30,70 @@
]
}
]
},
{
"package": {
"ecosystem": "Go",
"name": "github.com/cosmos/interchain-security"
},
"ranges": [
{
"type": "ECOSYSTEM",
"events": [
{
"introduced": "0"
}
]
}
]
},
{
"package": {
"ecosystem": "Go",
"name": "github.com/cosmos/interchain-security/v2"
},
"ranges": [
{
"type": "ECOSYSTEM",
"events": [
{
"introduced": "0"
}
]
}
]
},
{
"package": {
"ecosystem": "Go",
"name": "github.com/cosmos/interchain-security/v3"
},
"ranges": [
{
"type": "ECOSYSTEM",
"events": [
{
"introduced": "0"
}
]
}
]
},
{
"package": {
"ecosystem": "Go",
"name": "github.com/cosmos/interchain-security/v4"
},
"ranges": [
{
"type": "ECOSYSTEM",
"events": [
{
"introduced": "0"
}
]
}
]
}
],
"references": [
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-jjxf-26c9-77gm",
"modified": "2024-09-04T17:02:27Z",
"modified": "2024-09-06T21:41:33Z",
"published": "2024-09-02T06:30:49Z",
"aliases": [
"CVE-2024-8365"
@@ -48,6 +48,10 @@
"type": "WEB",
"url": "https://discuss.hashicorp.com/t/hcsec-2024-18-vault-leaks-client-token-and-token-accessor-in-audit-devices"
},
{
"type": "ADVISORY",
"url": "https://github.com/advisories/GHSA-jjxf-26c9-77gm"
},
{
"type": "PACKAGE",
"url": "github.com/hashicorp/vault"