Advisory Database Sync

This commit is contained in:
advisory-database[bot]
2025-05-27 21:33:30 +00:00
parent 9d9972e196
commit a978072695
49 changed files with 615 additions and 37 deletions
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-2g9m-cfmh-9r83",
"modified": "2022-09-27T00:00:17Z",
"modified": "2025-05-27T21:32:03Z",
"published": "2022-09-22T00:00:22Z",
"aliases": [
"CVE-2022-28802"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-637r-47cq-j74p",
"modified": "2022-09-25T00:00:20Z",
"modified": "2025-05-27T21:32:03Z",
"published": "2022-09-22T00:00:23Z",
"aliases": [
"CVE-2022-29799"
@@ -25,7 +25,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-89"
],
"severity": "CRITICAL",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -25,7 +25,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-79"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -25,7 +25,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-79"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -25,7 +25,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-532"
],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -25,7 +25,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-79"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-m3gr-45jc-g2rp",
"modified": "2024-11-01T18:31:26Z",
"modified": "2025-05-27T21:32:09Z",
"published": "2024-10-14T09:30:54Z",
"aliases": [
"CVE-2024-46911"
@@ -22,6 +22,10 @@
{
"type": "WEB",
"url": "https://lists.apache.org/thread/6m0ghjo9j92qty00t2qb6qf2spds0p5t"
},
{
"type": "WEB",
"url": "http://www.openwall.com/lists/oss-security/2024/10/12/1"
}
],
"database_specific": {
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-2qjj-4522-pjgp",
"modified": "2025-04-01T12:30:34Z",
"modified": "2025-05-27T21:32:10Z",
"published": "2025-04-01T12:30:34Z",
"aliases": [
"CVE-2024-13553"
@@ -34,7 +34,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-288"
"CWE-288",
"CWE-306"
],
"severity": "CRITICAL",
"github_reviewed": false,
@@ -26,6 +26,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-706",
"CWE-98"
],
"severity": "HIGH",
@@ -42,7 +42,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-74"
"CWE-74",
"CWE-89"
],
"severity": "MODERATE",
"github_reviewed": false,
@@ -26,6 +26,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-706",
"CWE-98"
],
"severity": "HIGH",
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-wqxv-v2vg-q37x",
"modified": "2025-05-05T15:30:53Z",
"modified": "2025-05-27T21:32:11Z",
"published": "2025-04-25T18:31:12Z",
"aliases": [
"CVE-2025-3928"
@@ -35,6 +35,14 @@
"type": "WEB",
"url": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?search_api_fulltext=CVE-2025-3928"
},
{
"type": "WEB",
"url": "https://www.cisa.gov/news-events/alerts/2025/05/22/advisory-update-cyber-threat-activity-targeting-commvaults-saas-cloud-application-metallic"
},
{
"type": "WEB",
"url": "https://www.commvault.com/blogs/customer-security-update"
},
{
"type": "WEB",
"url": "https://www.commvault.com/blogs/notice-security-advisory-update"
@@ -25,7 +25,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-79"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -46,7 +46,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-74"
"CWE-74",
"CWE-89"
],
"severity": "MODERATE",
"github_reviewed": false,
@@ -46,7 +46,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-74"
"CWE-74",
"CWE-89"
],
"severity": "MODERATE",
"github_reviewed": false,
@@ -0,0 +1,33 @@
{
"schema_version": "1.4.0",
"id": "GHSA-4g9c-v26v-gp27",
"modified": "2025-05-27T21:32:16Z",
"published": "2025-05-27T21:32:16Z",
"aliases": [
"CVE-2025-5064"
],
"details": "Inappropriate implementation in Background Fetch API in Google Chrome prior to 137.0.7151.55 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
"severity": [],
"affected": [],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2025-5064"
},
{
"type": "WEB",
"url": "https://chromereleases.googleblog.com/2025/05/stable-channel-update-for-desktop_27.html"
},
{
"type": "WEB",
"url": "https://issues.chromium.org/issues/40058068"
}
],
"database_specific": {
"cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2025-05-27T21:15:22Z"
}
}
@@ -46,7 +46,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-74"
"CWE-74",
"CWE-89"
],
"severity": "MODERATE",
"github_reviewed": false,
@@ -25,7 +25,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-352"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -0,0 +1,33 @@
{
"schema_version": "1.4.0",
"id": "GHSA-78m4-4wrg-v443",
"modified": "2025-05-27T21:32:16Z",
"published": "2025-05-27T21:32:16Z",
"aliases": [
"CVE-2025-5065"
],
"details": "Inappropriate implementation in FileSystemAccess API in Google Chrome prior to 137.0.7151.55 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)",
"severity": [],
"affected": [],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2025-5065"
},
{
"type": "WEB",
"url": "https://chromereleases.googleblog.com/2025/05/stable-channel-update-for-desktop_27.html"
},
{
"type": "WEB",
"url": "https://issues.chromium.org/issues/40059071"
}
],
"database_specific": {
"cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2025-05-27T21:15:22Z"
}
}

Some files were not shown because too many files have changed in this diff Show More