From b14bc0572d23c9e697831f418df77f089717c09a Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Fri, 5 Jul 2024 17:56:13 +0000 Subject: [PATCH] Publish Advisories GHSA-xvxq-hq48-xphm GHSA-79w7-vh3h-8g4j GHSA-vc7j-99jw-jrqm --- .../GHSA-xvxq-hq48-xphm.json | 6 +++- .../GHSA-79w7-vh3h-8g4j.json | 31 +++++++++++++++++-- .../GHSA-vc7j-99jw-jrqm.json | 8 +++-- 3 files changed, 39 insertions(+), 6 deletions(-) diff --git a/advisories/github-reviewed/2022/05/GHSA-xvxq-hq48-xphm/GHSA-xvxq-hq48-xphm.json b/advisories/github-reviewed/2022/05/GHSA-xvxq-hq48-xphm/GHSA-xvxq-hq48-xphm.json index 8eb3ee94f49..084d36e98c0 100644 --- a/advisories/github-reviewed/2022/05/GHSA-xvxq-hq48-xphm/GHSA-xvxq-hq48-xphm.json +++ b/advisories/github-reviewed/2022/05/GHSA-xvxq-hq48-xphm/GHSA-xvxq-hq48-xphm.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-xvxq-hq48-xphm", - "modified": "2022-06-01T20:08:15Z", + "modified": "2024-07-05T17:55:06Z", "published": "2022-05-13T01:00:55Z", "aliases": [ "CVE-2019-1003029" @@ -48,6 +48,10 @@ "type": "PACKAGE", "url": "https://github.com/jenkinsci/script-security-plugin" }, + { + "type": "WEB", + "url": "https://jenkins.io/security/advisory/2019-03-06/#SECURITY-1336%20%281%29" + }, { "type": "WEB", "url": "https://jenkins.io/security/advisory/2019-03-06/#SECURITY-1336%20(1)" diff --git a/advisories/github-reviewed/2024/07/GHSA-79w7-vh3h-8g4j/GHSA-79w7-vh3h-8g4j.json b/advisories/github-reviewed/2024/07/GHSA-79w7-vh3h-8g4j/GHSA-79w7-vh3h-8g4j.json index 5cbfa4ce63a..469c82ee3ff 100644 --- a/advisories/github-reviewed/2024/07/GHSA-79w7-vh3h-8g4j/GHSA-79w7-vh3h-8g4j.json +++ b/advisories/github-reviewed/2024/07/GHSA-79w7-vh3h-8g4j/GHSA-79w7-vh3h-8g4j.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-79w7-vh3h-8g4j", - "modified": "2024-07-02T15:58:35Z", + "modified": "2024-07-05T17:54:51Z", "published": "2024-07-02T15:58:35Z", "aliases": [ "CVE-2024-38519" @@ -36,14 +36,30 @@ } ], "references": [ + { + "type": "WEB", + "url": "https://github.com/dirkf/youtube-dl/security/advisories/GHSA-22fp-mf44-f2mq" + }, { "type": "WEB", "url": "https://github.com/yt-dlp/yt-dlp/security/advisories/GHSA-79w7-vh3h-8g4j" }, + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-38519" + }, + { + "type": "WEB", + "url": "https://github.com/ytdl-org/youtube-dl/pull/32830" + }, { "type": "WEB", "url": "https://github.com/yt-dlp/yt-dlp/commit/5ce582448ececb8d9c30c8c31f58330090ced03a" }, + { + "type": "WEB", + "url": "https://github.com/ytdl-org/youtube-dl/commit/d42a222ed541b96649396ef00e19552aef0f09ec" + }, { "type": "PACKAGE", "url": "https://github.com/yt-dlp/yt-dlp" @@ -51,15 +67,24 @@ { "type": "WEB", "url": "https://github.com/yt-dlp/yt-dlp/releases/tag/2024.07.01" + }, + { + "type": "ADVISORY", + "url": "https://securitylab.github.com/advisories/GHSL-2024-089_youtube-dl" + }, + { + "type": "ADVISORY", + "url": "https://securitylab.github.com/advisories/GHSL-2024-090_yt-dlp" } ], "database_specific": { "cwe_ids": [ - + "CWE-434", + "CWE-669" ], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2024-07-02T15:58:35Z", - "nvd_published_at": null + "nvd_published_at": "2024-07-02T14:15:13Z" } } \ No newline at end of file diff --git a/advisories/github-reviewed/2024/07/GHSA-vc7j-99jw-jrqm/GHSA-vc7j-99jw-jrqm.json b/advisories/github-reviewed/2024/07/GHSA-vc7j-99jw-jrqm/GHSA-vc7j-99jw-jrqm.json index 49bcf2c0e00..1eb737efacb 100644 --- a/advisories/github-reviewed/2024/07/GHSA-vc7j-99jw-jrqm/GHSA-vc7j-99jw-jrqm.json +++ b/advisories/github-reviewed/2024/07/GHSA-vc7j-99jw-jrqm/GHSA-vc7j-99jw-jrqm.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-vc7j-99jw-jrqm", - "modified": "2024-07-02T21:20:33Z", + "modified": "2024-07-05T17:54:36Z", "published": "2024-07-02T21:20:33Z", "aliases": [ "CVE-2024-39323" @@ -78,6 +78,10 @@ "type": "WEB", "url": "https://github.com/aimeos/ai-admin-graphql/security/advisories/GHSA-vc7j-99jw-jrqm" }, + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-39323" + }, { "type": "WEB", "url": "https://github.com/aimeos/ai-admin-graphql/commit/2d89d98cdcad880a9244b50736b08c1a171379ca" @@ -103,6 +107,6 @@ "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2024-07-02T21:20:33Z", - "nvd_published_at": null + "nvd_published_at": "2024-07-02T16:15:04Z" } } \ No newline at end of file