From c155b2c3b6dbc5899d3133513c2bbee96c5a85e1 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Wed, 18 Sep 2024 19:25:59 +0000 Subject: [PATCH] Publish Advisories GHSA-68g8-c275-xf2m GHSA-cp65-5m9r-vc2c GHSA-wmjg-vqhv-q5p5 --- .../GHSA-68g8-c275-xf2m.json | 16 +++++++++++-- .../GHSA-cp65-5m9r-vc2c.json | 21 +++++++++++++++-- .../GHSA-wmjg-vqhv-q5p5.json | 23 ++++++++++++++++--- 3 files changed, 53 insertions(+), 7 deletions(-) diff --git a/advisories/github-reviewed/2024/09/GHSA-68g8-c275-xf2m/GHSA-68g8-c275-xf2m.json b/advisories/github-reviewed/2024/09/GHSA-68g8-c275-xf2m/GHSA-68g8-c275-xf2m.json index 4ee22f5663e..0b8319c8bd6 100644 --- a/advisories/github-reviewed/2024/09/GHSA-68g8-c275-xf2m/GHSA-68g8-c275-xf2m.json +++ b/advisories/github-reviewed/2024/09/GHSA-68g8-c275-xf2m/GHSA-68g8-c275-xf2m.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-68g8-c275-xf2m", - "modified": "2024-09-18T17:42:05Z", + "modified": "2024-09-18T19:25:25Z", "published": "2024-09-18T17:42:05Z", "aliases": [ "CVE-2024-46990" @@ -101,6 +101,18 @@ "type": "WEB", "url": "https://github.com/directus/directus/security/advisories/GHSA-68g8-c275-xf2m" }, + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-46990" + }, + { + "type": "WEB", + "url": "https://github.com/directus/directus/commit/4aace0bbe57232e38cd6a287ee475293e46dc91b" + }, + { + "type": "WEB", + "url": "https://github.com/directus/directus/commit/769fa22797bff5a9231599883b391e013f122e52" + }, { "type": "WEB", "url": "https://github.com/directus/directus/commit/8cbf943b65fd4a763d09a5fdbba8996b1e7797ff" @@ -122,6 +134,6 @@ "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2024-09-18T17:42:05Z", - "nvd_published_at": null + "nvd_published_at": "2024-09-18T17:15:19Z" } } \ No newline at end of file diff --git a/advisories/github-reviewed/2024/09/GHSA-cp65-5m9r-vc2c/GHSA-cp65-5m9r-vc2c.json b/advisories/github-reviewed/2024/09/GHSA-cp65-5m9r-vc2c/GHSA-cp65-5m9r-vc2c.json index 024558e8f7e..ed92171d29b 100644 --- a/advisories/github-reviewed/2024/09/GHSA-cp65-5m9r-vc2c/GHSA-cp65-5m9r-vc2c.json +++ b/advisories/github-reviewed/2024/09/GHSA-cp65-5m9r-vc2c/GHSA-cp65-5m9r-vc2c.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-cp65-5m9r-vc2c", - "modified": "2024-09-18T17:02:55Z", + "modified": "2024-09-18T19:24:19Z", "published": "2024-09-18T15:46:53Z", "aliases": [ "CVE-2024-46987" @@ -44,22 +44,39 @@ "type": "WEB", "url": "https://github.com/owen2345/camaleon-cms/security/advisories/GHSA-cp65-5m9r-vc2c" }, + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-46987" + }, { "type": "WEB", "url": "https://github.com/owen2345/camaleon-cms/commit/071b1b09d6d61ab02a5960b1ccafd9d9c2155a3e" }, + { + "type": "WEB", + "url": "https://codeql.github.com/codeql-query-help/ruby/rb-path-injection" + }, { "type": "PACKAGE", "url": "https://github.com/owen2345/camaleon-cms" + }, + { + "type": "WEB", + "url": "https://owasp.org/www-community/attacks/Path_Traversal" + }, + { + "type": "WEB", + "url": "https://www.reddit.com/r/rails/comments/1exwtdm/camaleon_cms_281_has_been_released" } ], "database_specific": { "cwe_ids": [ + "CWE-200", "CWE-22" ], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2024-09-18T15:46:53Z", - "nvd_published_at": null + "nvd_published_at": "2024-09-18T18:15:07Z" } } \ No newline at end of file diff --git a/advisories/github-reviewed/2024/09/GHSA-wmjg-vqhv-q5p5/GHSA-wmjg-vqhv-q5p5.json b/advisories/github-reviewed/2024/09/GHSA-wmjg-vqhv-q5p5/GHSA-wmjg-vqhv-q5p5.json index 05a344c4ad9..b8223c99a29 100644 --- a/advisories/github-reviewed/2024/09/GHSA-wmjg-vqhv-q5p5/GHSA-wmjg-vqhv-q5p5.json +++ b/advisories/github-reviewed/2024/09/GHSA-wmjg-vqhv-q5p5/GHSA-wmjg-vqhv-q5p5.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-wmjg-vqhv-q5p5", - "modified": "2024-09-18T17:02:46Z", + "modified": "2024-09-18T19:24:03Z", "published": "2024-09-18T14:39:03Z", "aliases": [ "CVE-2024-46986" @@ -44,22 +44,39 @@ "type": "WEB", "url": "https://github.com/owen2345/camaleon-cms/security/advisories/GHSA-wmjg-vqhv-q5p5" }, + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-46986" + }, { "type": "WEB", "url": "https://github.com/owen2345/camaleon-cms/commit/b3b12b1e4a9e3fccaf5bb4330820fa7f8744e6bd" }, + { + "type": "WEB", + "url": "https://codeql.github.com/codeql-query-help/ruby/rb-path-injection" + }, { "type": "PACKAGE", "url": "https://github.com/owen2345/camaleon-cms" + }, + { + "type": "WEB", + "url": "https://owasp.org/www-community/attacks/Path_Traversal" + }, + { + "type": "WEB", + "url": "https://www.reddit.com/r/rails/comments/1exwtdm/camaleon_cms_281_has_been_released" } ], "database_specific": { "cwe_ids": [ - "CWE-22" + "CWE-22", + "CWE-74" ], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2024-09-18T14:39:03Z", - "nvd_published_at": null + "nvd_published_at": "2024-09-18T18:15:07Z" } } \ No newline at end of file