From c625f91cb68ab70bdafdad20ffd8a9186443b907 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Fri, 17 Jan 2025 15:43:31 +0000 Subject: [PATCH] Publish Advisories GHSA-4ff6-858j-r822 GHSA-gp86-q8hg-fpxj GHSA-r6jg-jfv6-2fjv --- .../2025/01/GHSA-4ff6-858j-r822/GHSA-4ff6-858j-r822.json | 6 +++++- .../2025/01/GHSA-gp86-q8hg-fpxj/GHSA-gp86-q8hg-fpxj.json | 6 +++++- .../2025/01/GHSA-r6jg-jfv6-2fjv/GHSA-r6jg-jfv6-2fjv.json | 6 +++++- 3 files changed, 15 insertions(+), 3 deletions(-) diff --git a/advisories/github-reviewed/2025/01/GHSA-4ff6-858j-r822/GHSA-4ff6-858j-r822.json b/advisories/github-reviewed/2025/01/GHSA-4ff6-858j-r822/GHSA-4ff6-858j-r822.json index 808a026ee02..41e971bc757 100644 --- a/advisories/github-reviewed/2025/01/GHSA-4ff6-858j-r822/GHSA-4ff6-858j-r822.json +++ b/advisories/github-reviewed/2025/01/GHSA-4ff6-858j-r822/GHSA-4ff6-858j-r822.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-4ff6-858j-r822", - "modified": "2025-01-16T23:08:32Z", + "modified": "2025-01-17T15:41:23Z", "published": "2025-01-16T23:08:32Z", "aliases": [ "CVE-2024-52594" @@ -54,6 +54,10 @@ { "type": "PACKAGE", "url": "https://github.com/matrix-org/gomatrixserverlib" + }, + { + "type": "WEB", + "url": "https://pkg.go.dev/vuln/GO-2025-3396" } ], "database_specific": { diff --git a/advisories/github-reviewed/2025/01/GHSA-gp86-q8hg-fpxj/GHSA-gp86-q8hg-fpxj.json b/advisories/github-reviewed/2025/01/GHSA-gp86-q8hg-fpxj/GHSA-gp86-q8hg-fpxj.json index 6c9acdefb05..958973cd79f 100644 --- a/advisories/github-reviewed/2025/01/GHSA-gp86-q8hg-fpxj/GHSA-gp86-q8hg-fpxj.json +++ b/advisories/github-reviewed/2025/01/GHSA-gp86-q8hg-fpxj/GHSA-gp86-q8hg-fpxj.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-gp86-q8hg-fpxj", - "modified": "2025-01-16T22:36:04Z", + "modified": "2025-01-17T15:42:50Z", "published": "2025-01-16T19:07:43Z", "aliases": [ "CVE-2024-52791" @@ -54,6 +54,10 @@ { "type": "WEB", "url": "https://github.com/t2bot/matrix-media-repo/releases/tag/v1.3.8" + }, + { + "type": "WEB", + "url": "https://pkg.go.dev/vuln/GO-2025-3398" } ], "database_specific": { diff --git a/advisories/github-reviewed/2025/01/GHSA-r6jg-jfv6-2fjv/GHSA-r6jg-jfv6-2fjv.json b/advisories/github-reviewed/2025/01/GHSA-r6jg-jfv6-2fjv/GHSA-r6jg-jfv6-2fjv.json index 43e6d740fe4..776c75d70da 100644 --- a/advisories/github-reviewed/2025/01/GHSA-r6jg-jfv6-2fjv/GHSA-r6jg-jfv6-2fjv.json +++ b/advisories/github-reviewed/2025/01/GHSA-r6jg-jfv6-2fjv/GHSA-r6jg-jfv6-2fjv.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-r6jg-jfv6-2fjv", - "modified": "2025-01-16T22:35:55Z", + "modified": "2025-01-17T15:42:18Z", "published": "2025-01-16T19:35:02Z", "aliases": [ "CVE-2024-52602" @@ -63,6 +63,10 @@ "type": "WEB", "url": "https://owasp.org/www-community/attacks/Server_Side_Request_Forgery" }, + { + "type": "WEB", + "url": "https://pkg.go.dev/vuln/GO-2025-3399" + }, { "type": "WEB", "url": "https://www.agwa.name/blog/post/preventing_server_side_request_forgery_in_golang"