diff --git a/advisories/github-reviewed/2022/11/GHSA-g9cp-9fw3-56cf/GHSA-g9cp-9fw3-56cf.json b/advisories/github-reviewed/2022/11/GHSA-g9cp-9fw3-56cf/GHSA-g9cp-9fw3-56cf.json index 64490bec5df..474b1bd2ede 100644 --- a/advisories/github-reviewed/2022/11/GHSA-g9cp-9fw3-56cf/GHSA-g9cp-9fw3-56cf.json +++ b/advisories/github-reviewed/2022/11/GHSA-g9cp-9fw3-56cf/GHSA-g9cp-9fw3-56cf.json @@ -1,14 +1,19 @@ { "schema_version": "1.4.0", "id": "GHSA-g9cp-9fw3-56cf", - "modified": "2022-11-22T19:14:12Z", + "modified": "2025-04-29T15:35:36Z", "published": "2022-11-22T15:30:26Z", "aliases": [ "CVE-2022-42097" ], "summary": "Cross-site Scripting in Backdrop CMS", "details": "Backdrop CMS version 1.23.0 was discovered to contain a stored cross-site scripting (XSS) vulnerability via 'Comment.'s", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" + } + ], "affected": [ { "package": { @@ -35,6 +40,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-42097" }, + { + "type": "WEB", + "url": "https://backdropcms.org" + }, { "type": "WEB", "url": "https://github.com/backdrop/backdrop/releases/tag/1.23.0" diff --git a/advisories/github-reviewed/2022/11/GHSA-vcvg-g8p2-3hqr/GHSA-vcvg-g8p2-3hqr.json b/advisories/github-reviewed/2022/11/GHSA-vcvg-g8p2-3hqr/GHSA-vcvg-g8p2-3hqr.json index 0a4ba38b8f8..cd8ee2f1509 100644 --- a/advisories/github-reviewed/2022/11/GHSA-vcvg-g8p2-3hqr/GHSA-vcvg-g8p2-3hqr.json +++ b/advisories/github-reviewed/2022/11/GHSA-vcvg-g8p2-3hqr/GHSA-vcvg-g8p2-3hqr.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-vcvg-g8p2-3hqr", - "modified": "2022-11-23T21:48:11Z", + "modified": "2025-04-29T15:35:30Z", "published": "2022-11-22T15:30:26Z", "aliases": [ "CVE-2022-42094" @@ -40,6 +40,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-42094" }, + { + "type": "WEB", + "url": "https://backdropcms.org" + }, { "type": "WEB", "url": "https://github.com/backdrop/backdrop/releases/tag/1.23.0"