Publish Advisories

GHSA-g9cp-9fw3-56cf
GHSA-vcvg-g8p2-3hqr
This commit is contained in:
advisory-database[bot]
2025-04-29 15:37:01 +00:00
parent 36370c2ec9
commit a60ef9f348
2 changed files with 16 additions and 3 deletions
@@ -1,14 +1,19 @@
{
"schema_version": "1.4.0",
"id": "GHSA-g9cp-9fw3-56cf",
"modified": "2022-11-22T19:14:12Z",
"modified": "2025-04-29T15:35:36Z",
"published": "2022-11-22T15:30:26Z",
"aliases": [
"CVE-2022-42097"
],
"summary": "Cross-site Scripting in Backdrop CMS",
"details": "Backdrop CMS version 1.23.0 was discovered to contain a stored cross-site scripting (XSS) vulnerability via 'Comment.'s",
"severity": [],
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N"
}
],
"affected": [
{
"package": {
@@ -35,6 +40,10 @@
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2022-42097"
},
{
"type": "WEB",
"url": "https://backdropcms.org"
},
{
"type": "WEB",
"url": "https://github.com/backdrop/backdrop/releases/tag/1.23.0"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-vcvg-g8p2-3hqr",
"modified": "2022-11-23T21:48:11Z",
"modified": "2025-04-29T15:35:30Z",
"published": "2022-11-22T15:30:26Z",
"aliases": [
"CVE-2022-42094"
@@ -40,6 +40,10 @@
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2022-42094"
},
{
"type": "WEB",
"url": "https://backdropcms.org"
},
{
"type": "WEB",
"url": "https://github.com/backdrop/backdrop/releases/tag/1.23.0"