diff --git a/advisories/github-reviewed/2022/05/GHSA-m2p5-fwp2-qcw2/GHSA-m2p5-fwp2-qcw2.json b/advisories/github-reviewed/2022/05/GHSA-m2p5-fwp2-qcw2/GHSA-m2p5-fwp2-qcw2.json index 035ac7f75ea..5e4f96a9578 100644 --- a/advisories/github-reviewed/2022/05/GHSA-m2p5-fwp2-qcw2/GHSA-m2p5-fwp2-qcw2.json +++ b/advisories/github-reviewed/2022/05/GHSA-m2p5-fwp2-qcw2/GHSA-m2p5-fwp2-qcw2.json @@ -33,6 +33,25 @@ ] } ] + }, + { + "package": { + "ecosystem": "Packagist", + "name": "yiisoft/yii2-elasticsearch" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "0" + }, + { + "fixed": "2.0.5" + } + ] + } + ] } ], "references": [ @@ -40,10 +59,18 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2018-8074" }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/yiisoft/yii2-elasticsearch/CVE-2018-8074.yaml" + }, { "type": "PACKAGE", "url": "https://github.com/yiisoft/yii2" }, + { + "type": "WEB", + "url": "https://www.yiiframework.com/news/168/releasing-yii-2-0-15-and-database-extensions-with-security-fixes/" + }, { "type": "WEB", "url": "http://www.yiiframework.com/news/168/releasing-yii-2-0-15-and-database-extensions-with-security-fixes/" diff --git a/advisories/github-reviewed/2022/05/GHSA-w2xx-jp9f-gp8g/GHSA-w2xx-jp9f-gp8g.json b/advisories/github-reviewed/2022/05/GHSA-w2xx-jp9f-gp8g/GHSA-w2xx-jp9f-gp8g.json index cfdf7b044a2..8d1af92b210 100644 --- a/advisories/github-reviewed/2022/05/GHSA-w2xx-jp9f-gp8g/GHSA-w2xx-jp9f-gp8g.json +++ b/advisories/github-reviewed/2022/05/GHSA-w2xx-jp9f-gp8g/GHSA-w2xx-jp9f-gp8g.json @@ -37,6 +37,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-3397" }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/yiisoft/yii2/CVE-2015-3397.yaml" + }, { "type": "WEB", "url": "https://github.com/yiisoft/yii2/blob/2.0.4/framework/CHANGELOG.md" @@ -45,6 +49,14 @@ "type": "WEB", "url": "https://web.archive.org/web/20210122155403/http://www.securityfocus.com/bid/74663" }, + { + "type": "WEB", + "url": "https://www.yiiframework.com/news/86/yii-2-0-4-is-released/" + }, + { + "type": "WEB", + "url": "http://www.securityfocus.com/bid/74663" + }, { "type": "WEB", "url": "http://www.yiiframework.com/news/86/yii-2-0-4-is-released/" diff --git a/advisories/github-reviewed/2023/09/GHSA-7cfq-72w2-24q4/GHSA-7cfq-72w2-24q4.json b/advisories/github-reviewed/2023/09/GHSA-7cfq-72w2-24q4/GHSA-7cfq-72w2-24q4.json index 2392c2f3be0..e52f05457d3 100644 --- a/advisories/github-reviewed/2023/09/GHSA-7cfq-72w2-24q4/GHSA-7cfq-72w2-24q4.json +++ b/advisories/github-reviewed/2023/09/GHSA-7cfq-72w2-24q4/GHSA-7cfq-72w2-24q4.json @@ -44,6 +44,10 @@ "type": "WEB", "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/yiisoft/yii2-dev/CVE-2015-5467.yaml" }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/yiisoft/yii2/CVE-2015-5467.yaml" + }, { "type": "PACKAGE", "url": "https://github.com/yiisoft/yii2-framework" @@ -51,6 +55,10 @@ { "type": "WEB", "url": "https://www.yiiframework.com/news/87/yii-2-0-5-is-released-security-fix" + }, + { + "type": "WEB", + "url": "https://www.yiiframework.com/news/87/yii-2-0-5-is-released-security-fix/" } ], "database_specific": {