diff --git a/advisories/github-reviewed/2022/09/GHSA-8gq9-2x98-w8hf/GHSA-8gq9-2x98-w8hf.json b/advisories/github-reviewed/2022/09/GHSA-8gq9-2x98-w8hf/GHSA-8gq9-2x98-w8hf.json index aa00ca4e9b9..3deb7c5b6a8 100644 --- a/advisories/github-reviewed/2022/09/GHSA-8gq9-2x98-w8hf/GHSA-8gq9-2x98-w8hf.json +++ b/advisories/github-reviewed/2022/09/GHSA-8gq9-2x98-w8hf/GHSA-8gq9-2x98-w8hf.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-8gq9-2x98-w8hf", - "modified": "2023-04-27T15:52:04Z", + "modified": "2024-07-05T21:23:56Z", "published": "2022-09-23T20:31:15Z", "aliases": [ "CVE-2022-1941" @@ -113,6 +113,14 @@ "type": "WEB", "url": "https://lists.debian.org/debian-lts-announce/2023/04/msg00019.html" }, + { + "type": "WEB", + "url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/CBAUKJQL6O4TIWYBENORSY5P43TVB4M3" + }, + { + "type": "WEB", + "url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/MPCGUT3T5L6C3IDWUPSUO22QDCGQKTOP" + }, { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/CBAUKJQL6O4TIWYBENORSY5P43TVB4M3" @@ -121,6 +129,10 @@ "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/MPCGUT3T5L6C3IDWUPSUO22QDCGQKTOP" }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20240705-0001" + }, { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2022/09/27/1" diff --git a/advisories/github-reviewed/2024/05/GHSA-4qww-rxq6-x7gf/GHSA-4qww-rxq6-x7gf.json b/advisories/github-reviewed/2024/05/GHSA-4qww-rxq6-x7gf/GHSA-4qww-rxq6-x7gf.json index 858f2e5ccc6..5c64457c358 100644 --- a/advisories/github-reviewed/2024/05/GHSA-4qww-rxq6-x7gf/GHSA-4qww-rxq6-x7gf.json +++ b/advisories/github-reviewed/2024/05/GHSA-4qww-rxq6-x7gf/GHSA-4qww-rxq6-x7gf.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-4qww-rxq6-x7gf", - "modified": "2024-06-04T15:51:17Z", + "modified": "2024-07-05T21:24:27Z", "published": "2024-05-31T21:30:52Z", "aliases": [ "CVE-2024-33996" @@ -9,7 +9,10 @@ "summary": "Moodle broken access control when setting calendar event type", "details": "Incorrect validation of allowed event types in a calendar web service made it possible for some users to create events with types/audiences they did not have permission to publish to.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:N/I:H/A:N" + } ], "affected": [ { diff --git a/advisories/github-reviewed/2024/05/GHSA-7735-w2jp-gvg6/GHSA-7735-w2jp-gvg6.json b/advisories/github-reviewed/2024/05/GHSA-7735-w2jp-gvg6/GHSA-7735-w2jp-gvg6.json index 97250cf8266..b60a2fe3bf7 100644 --- a/advisories/github-reviewed/2024/05/GHSA-7735-w2jp-gvg6/GHSA-7735-w2jp-gvg6.json +++ b/advisories/github-reviewed/2024/05/GHSA-7735-w2jp-gvg6/GHSA-7735-w2jp-gvg6.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-7735-w2jp-gvg6", - "modified": "2024-06-04T15:15:52Z", + "modified": "2024-07-05T21:24:47Z", "published": "2024-05-31T15:30:37Z", "aliases": [ "CVE-2024-5565" @@ -51,7 +51,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-77" + "CWE-77", + "CWE-94" ], "severity": "HIGH", "github_reviewed": true, diff --git a/advisories/github-reviewed/2024/05/GHSA-gq9f-8rj4-w7jc/GHSA-gq9f-8rj4-w7jc.json b/advisories/github-reviewed/2024/05/GHSA-gq9f-8rj4-w7jc/GHSA-gq9f-8rj4-w7jc.json index a025be81950..17769b7aa7b 100644 --- a/advisories/github-reviewed/2024/05/GHSA-gq9f-8rj4-w7jc/GHSA-gq9f-8rj4-w7jc.json +++ b/advisories/github-reviewed/2024/05/GHSA-gq9f-8rj4-w7jc/GHSA-gq9f-8rj4-w7jc.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-gq9f-8rj4-w7jc", - "modified": "2024-06-04T15:54:04Z", + "modified": "2024-07-05T21:23:04Z", "published": "2024-05-31T21:30:54Z", "aliases": [ "CVE-2024-34001" @@ -9,7 +9,10 @@ "summary": "Moodle CSRF risk in admin preset tool management of presets", "details": "Actions in the admin preset tool did not include the necessary token to prevent a CSRF risk.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H" + } ], "affected": [ { @@ -88,7 +91,7 @@ "cwe_ids": [ "CWE-352" ], - "severity": "MODERATE", + "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2024-06-04T15:54:04Z", "nvd_published_at": "2024-05-31T20:15:10Z"