From cbd0bfc74219f906c6b9c58d310a78962892f985 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Wed, 9 Oct 2024 23:48:39 +0000 Subject: [PATCH] Publish GHSA-jj78-5fmv-mv28 --- .../10/GHSA-jj78-5fmv-mv28/GHSA-jj78-5fmv-mv28.json | 12 ++++++------ 1 file changed, 6 insertions(+), 6 deletions(-) diff --git a/advisories/github-reviewed/2024/10/GHSA-jj78-5fmv-mv28/GHSA-jj78-5fmv-mv28.json b/advisories/github-reviewed/2024/10/GHSA-jj78-5fmv-mv28/GHSA-jj78-5fmv-mv28.json index f07818bfa4b..1d8141bc13c 100644 --- a/advisories/github-reviewed/2024/10/GHSA-jj78-5fmv-mv28/GHSA-jj78-5fmv-mv28.json +++ b/advisories/github-reviewed/2024/10/GHSA-jj78-5fmv-mv28/GHSA-jj78-5fmv-mv28.json @@ -1,13 +1,13 @@ { "schema_version": "1.4.0", "id": "GHSA-jj78-5fmv-mv28", - "modified": "2024-10-09T17:03:12Z", + "modified": "2024-10-09T23:46:55Z", "published": "2024-10-03T21:31:05Z", "aliases": [ "CVE-2024-9266" ], "summary": "Express Open Redirect vulnerability", - "details": "URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Express. This vulnerability affects the use of the Express Response object. This issue impacts Express: from 3.4.5 before 4.0.0.", + "details": "URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Express. This vulnerability affects the use of the Express Response object. This issue impacts Express: from 3.4.5 before 4.0.0-rc1.", "severity": [ { "type": "CVSS_V3", @@ -30,13 +30,13 @@ "events": [ { "introduced": "3.4.5" + }, + { + "fixed": "4.0.0-rc1" } ] } - ], - "database_specific": { - "last_known_affected_version_range": "< 4.0.0" - } + ] } ], "references": [