diff --git a/advisories/github-reviewed/2021/09/GHSA-4574-qv3w-fcmg/GHSA-4574-qv3w-fcmg.json b/advisories/github-reviewed/2021/09/GHSA-4574-qv3w-fcmg/GHSA-4574-qv3w-fcmg.json index ba74ba03dcb..291ff9e1117 100644 --- a/advisories/github-reviewed/2021/09/GHSA-4574-qv3w-fcmg/GHSA-4574-qv3w-fcmg.json +++ b/advisories/github-reviewed/2021/09/GHSA-4574-qv3w-fcmg/GHSA-4574-qv3w-fcmg.json @@ -25,10 +25,10 @@ "type": "ECOSYSTEM", "events": [ { - "introduced": "4.0.0" + "introduced": "0" }, { - "fixed": "4.1.22" + "fixed": "3.1.3" } ] } @@ -44,10 +44,10 @@ "type": "ECOSYSTEM", "events": [ { - "introduced": "0" + "introduced": "4.0.0" }, { - "fixed": "3.1.3" + "fixed": "4.1.22" } ] } @@ -83,10 +83,18 @@ "type": "WEB", "url": "https://github.com/Codeception/Codeception/blob/4.1/ext/RunProcess.php#L52" }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/codeception/codeception/CVE-2021-23420.yaml" + }, { "type": "WEB", "url": "https://github.com/JinYiTong/poc" }, + { + "type": "ADVISORY", + "url": "https://github.com/advisories/GHSA-4574-qv3w-fcmg" + }, { "type": "WEB", "url": "https://snyk.io/vuln/SNYK-PHP-CODECEPTIONCODECEPTION-1324585" diff --git a/advisories/github-reviewed/2022/05/GHSA-hhfw-xxhm-pf32/GHSA-hhfw-xxhm-pf32.json b/advisories/github-reviewed/2022/05/GHSA-hhfw-xxhm-pf32/GHSA-hhfw-xxhm-pf32.json index c682903d9bd..f972bcd0bf9 100644 --- a/advisories/github-reviewed/2022/05/GHSA-hhfw-xxhm-pf32/GHSA-hhfw-xxhm-pf32.json +++ b/advisories/github-reviewed/2022/05/GHSA-hhfw-xxhm-pf32/GHSA-hhfw-xxhm-pf32.json @@ -52,6 +52,10 @@ "type": "PACKAGE", "url": "https://github.com/ADOdb/ADOdb" }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/adodb/adodb-php/CVE-2016-4855.yaml" + }, { "type": "WEB", "url": "https://security.gentoo.org/glsa/201701-59" diff --git a/advisories/github-reviewed/2022/05/GHSA-m8x6-6r63-qvj2/GHSA-m8x6-6r63-qvj2.json b/advisories/github-reviewed/2022/05/GHSA-m8x6-6r63-qvj2/GHSA-m8x6-6r63-qvj2.json index 8fb0eeccde0..a2962b82040 100644 --- a/advisories/github-reviewed/2022/05/GHSA-m8x6-6r63-qvj2/GHSA-m8x6-6r63-qvj2.json +++ b/advisories/github-reviewed/2022/05/GHSA-m8x6-6r63-qvj2/GHSA-m8x6-6r63-qvj2.json @@ -33,6 +33,25 @@ ] } ] + }, + { + "package": { + "ecosystem": "Packagist", + "name": "contao/contao" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "4.13.0" + }, + { + "fixed": "4.13.3" + } + ] + } + ] } ], "references": [ @@ -52,6 +71,14 @@ "type": "WEB", "url": "https://contao.org/en/security-advisories/cross-site-scripting-via-canonical-url.html" }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/contao/contao/CVE-2022-24899.yaml" + }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/contao/core-bundle/CVE-2022-24899.yaml" + }, { "type": "PACKAGE", "url": "https://github.com/contao/contao"