diff --git a/advisories/unreviewed/2024/08/GHSA-25gf-472p-pjv4/GHSA-25gf-472p-pjv4.json b/advisories/unreviewed/2024/08/GHSA-25gf-472p-pjv4/GHSA-25gf-472p-pjv4.json new file mode 100644 index 00000000000..8508b541fe0 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-25gf-472p-pjv4/GHSA-25gf-472p-pjv4.json @@ -0,0 +1,43 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-25gf-472p-pjv4", + "modified": "2024-08-30T12:31:40Z", + "published": "2024-08-30T12:31:40Z", + "aliases": [ + "CVE-2022-48944" + ], + "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nsched: Fix yet more sched_fork() races\n\nWhere commit 4ef0c5c6b5ba (\"kernel/sched: Fix sched_fork() access an\ninvalid sched_task_group\") fixed a fork race vs cgroup, it opened up a\nrace vs syscalls by not placing the task on the runqueue before it\ngets exposed through the pidhash.\n\nCommit 13765de8148f (\"sched/fair: Fix fault in reweight_entity\") is\ntrying to fix a single instance of this, instead fix the whole class\nof issues, effectively reverting this commit.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-48944" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/3411613611a5cddf7e80908010dc87cb527dd13b" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/b1e8206582f9d680cff7d04828708c8b6ab32957" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/c65cfd89cef669d90c59f3bf150af6458137a04f" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-30T11:15:14Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-2rf7-m94r-75qx/GHSA-2rf7-m94r-75qx.json b/advisories/unreviewed/2024/08/GHSA-2rf7-m94r-75qx/GHSA-2rf7-m94r-75qx.json new file mode 100644 index 00000000000..610bb32480f --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-2rf7-m94r-75qx/GHSA-2rf7-m94r-75qx.json @@ -0,0 +1,54 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2rf7-m94r-75qx", + "modified": "2024-08-30T12:31:41Z", + "published": "2024-08-30T12:31:41Z", + "aliases": [ + "CVE-2024-8331" + ], + "details": "A vulnerability was found in OpenRapid RapidCMS up to 1.3.1. It has been classified as critical. This affects an unknown part of the file /admin/user/user-move-run.php. The manipulation of the argument username leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8331" + }, + { + "type": "WEB", + "url": "https://gitee.com/A0kooo/cve_article/blob/master/RapidCMS/SQL%20injection1/rapidcms%20user-move-run.php%20SQL%20injection.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.276207" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.276207" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.398769" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-30T11:15:15Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-2xpp-rgp2-5r6f/GHSA-2xpp-rgp2-5r6f.json b/advisories/unreviewed/2024/08/GHSA-2xpp-rgp2-5r6f/GHSA-2xpp-rgp2-5r6f.json new file mode 100644 index 00000000000..24239295255 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-2xpp-rgp2-5r6f/GHSA-2xpp-rgp2-5r6f.json @@ -0,0 +1,62 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2xpp-rgp2-5r6f", + "modified": "2024-08-30T12:31:41Z", + "published": "2024-08-30T12:31:40Z", + "aliases": [ + "CVE-2024-8332" + ], + "details": "A vulnerability was found in master-nan Sweet-CMS up to 5f441e022b8876f07cde709c77b5be6d2f262e3f. It has been declared as critical. This vulnerability affects unknown code of the file /table/index. The manipulation leads to sql injection. The attack can be initiated remotely. This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available. The name of the patch is 146359646a5a90cb09156dbd0013b7df77f2aa6c. It is recommended to apply a patch to fix this issue.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8332" + }, + { + "type": "WEB", + "url": "https://github.com/master-nan/sweet-cms/issues/1" + }, + { + "type": "WEB", + "url": "https://github.com/master-nan/sweet-cms/issues/2" + }, + { + "type": "WEB", + "url": "https://github.com/master-nan/sweet-cms/commit/146359646a5a90cb09156dbd0013b7df77f2aa6c" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.276208" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.276208" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.398803" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-30T12:15:04Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-44xq-f3xg-xf6q/GHSA-44xq-f3xg-xf6q.json b/advisories/unreviewed/2024/08/GHSA-44xq-f3xg-xf6q/GHSA-44xq-f3xg-xf6q.json new file mode 100644 index 00000000000..a58baf624d9 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-44xq-f3xg-xf6q/GHSA-44xq-f3xg-xf6q.json @@ -0,0 +1,70 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-44xq-f3xg-xf6q", + "modified": "2024-08-30T12:31:40Z", + "published": "2024-08-30T12:31:40Z", + "aliases": [ + "CVE-2024-7122" + ], + "details": "The Elementor Addon Elements plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple widgets in all versions up to, and including, 1.13.6 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-7122" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/addon-elements-for-elementor-page-builder/trunk/assets/js/eae.js#L568" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/addon-elements-for-elementor-page-builder/trunk/modules/animated-gradient/module.php#L160" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/addon-elements-for-elementor-page-builder/trunk/modules/dual-button/widgets/dual-button.php#L1045" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/addon-elements-for-elementor-page-builder/trunk/modules/image-compare/widgets/image-compare.php#L537" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/addon-elements-for-elementor-page-builder/trunk/modules/text-separator/widgets/text-separator.php#L570" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3143440" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3143444" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/addon-elements-for-elementor-page-builder/#developers" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/668621b0-67ef-44fc-a126-e8c4e372666e?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-30T10:15:06Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-cj98-64q3-8v62/GHSA-cj98-64q3-8v62.json b/advisories/unreviewed/2024/08/GHSA-cj98-64q3-8v62/GHSA-cj98-64q3-8v62.json new file mode 100644 index 00000000000..706ed98afaf --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-cj98-64q3-8v62/GHSA-cj98-64q3-8v62.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cj98-64q3-8v62", + "modified": "2024-08-30T12:31:40Z", + "published": "2024-08-30T12:31:40Z", + "aliases": [ + "CVE-2024-7858" + ], + "details": "The Media Library Folders plugin for WordPress is vulnerable to unauthorized access due to missing capability checks on several AJAX functions in the media-library-plus.php file in all versions up to, and including, 8.2.3. This makes it possible for authenticated attackers, with subscriber-level access and above, to perform several actions related to managing media files and folder along with controlling settings.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-7858" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/media-library-plus/trunk/media-library-plus.php" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3143036%40media-library-plus&new=3143036%40media-library-plus&sfp_email=&sfph_mail=" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/fcc0fc00-b7d6-429c-9ab3-f08971c48777?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-862" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-30T10:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-ffxp-34wc-r8r7/GHSA-ffxp-34wc-r8r7.json b/advisories/unreviewed/2024/08/GHSA-ffxp-34wc-r8r7/GHSA-ffxp-34wc-r8r7.json new file mode 100644 index 00000000000..fb5e71c4ec4 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-ffxp-34wc-r8r7/GHSA-ffxp-34wc-r8r7.json @@ -0,0 +1,50 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-ffxp-34wc-r8r7", + "modified": "2024-08-30T12:31:40Z", + "published": "2024-08-30T12:31:40Z", + "aliases": [ + "CVE-2024-8252" + ], + "details": "The Clean Login plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.14.5 via the 'template' attribute of the clean-login-register shortcode. This makes it possible for authenticated attackers, with Contributor-level access and above, to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where images and other “safe” file types can be uploaded and included.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8252" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/clean-login/tags/1.14.5/include/frontend.php#L20" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/clean-login/tags/1.14.5/include/shortcodes.php#L146" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3143241%40clean-login&new=3143241%40clean-login&sfp_email=&sfph_mail=" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/b9f99b51-e1b1-4cd3-a9f7-24e4b59811a7?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-98" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-30T10:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-r3p3-59hh-g3f2/GHSA-r3p3-59hh-g3f2.json b/advisories/unreviewed/2024/08/GHSA-r3p3-59hh-g3f2/GHSA-r3p3-59hh-g3f2.json new file mode 100644 index 00000000000..f101717e6b1 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-r3p3-59hh-g3f2/GHSA-r3p3-59hh-g3f2.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-r3p3-59hh-g3f2", + "modified": "2024-08-30T12:31:40Z", + "published": "2024-08-30T12:31:40Z", + "aliases": [ + "CVE-2024-8274" + ], + "details": "The WP Booking Calendar plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via several parameters from 'timeline_obj' in all versions up to, and including, 10.5 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8274" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/booking/tags/10.4/core/timeline/v2/wpbc-class-timeline_v2.php#L520" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3143364/booking/trunk/core/timeline/v2/wpbc-class-timeline_v2.php?old=3139443&old_path=booking%2Ftrunk%2Fcore%2Ftimeline%2Fv2%2Fwpbc-class-timeline_v2.php" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/83804c2a-2c4a-4f69-b833-dcd53ddab94d?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-30T10:15:08Z" + } +} \ No newline at end of file