Advisory Database Sync

This commit is contained in:
advisory-database[bot]
2024-01-05 18:31:36 +00:00
parent dafd1aa024
commit cc8d08dcc5
72 changed files with 1063 additions and 98 deletions
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-qmqc-m76c-pmrm",
"modified": "2023-09-12T18:30:22Z",
"modified": "2024-01-05T18:30:20Z",
"published": "2023-09-12T18:30:22Z",
"aliases": [
"CVE-2023-38146"
@@ -24,13 +24,17 @@
{
"type": "WEB",
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-38146"
},
{
"type": "WEB",
"url": "http://packetstormsecurity.com/files/176391/Themebleed-Windows-11-Themes-Arbitrary-Code-Execution.html"
}
],
"database_specific": {
"cwe_ids": [
],
"severity": null,
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2023-09-12T17:15:17Z"
@@ -28,7 +28,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-269"
],
"severity": "LOW",
"github_reviewed": false,
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-25jp-v3h8-rhhg",
"modified": "2023-12-29T15:30:36Z",
"modified": "2024-01-05T18:30:25Z",
"published": "2023-12-29T15:30:36Z",
"aliases": [
"CVE-2023-51378"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-2cfj-r94q-xgfj",
"modified": "2023-12-29T12:30:42Z",
"modified": "2024-01-05T18:30:25Z",
"published": "2023-12-29T12:30:42Z",
"aliases": [
"CVE-2023-50881"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-2gh4-q9qq-fc54",
"modified": "2023-12-29T12:30:41Z",
"modified": "2024-01-05T18:30:25Z",
"published": "2023-12-29T12:30:41Z",
"aliases": [
"CVE-2023-50901"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-398r-735q-g9wg",
"modified": "2023-12-28T12:30:19Z",
"modified": "2024-01-05T18:30:24Z",
"published": "2023-12-28T12:30:19Z",
"aliases": [
"CVE-2023-50853"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-3rp7-3qfg-r7f3",
"modified": "2023-12-29T15:30:36Z",
"modified": "2024-01-05T18:30:25Z",
"published": "2023-12-29T15:30:36Z",
"aliases": [
"CVE-2023-51470"
@@ -25,6 +25,10 @@
"type": "WEB",
"url": "https://github.com/openssh/openssh-portable/commit/881d9c6af9da4257c69c327c4e2f1508b2fa754b"
},
{
"type": "WEB",
"url": "https://security.netapp.com/advisory/ntap-20240105-0005/"
},
{
"type": "WEB",
"url": "https://www.debian.org/security/2023/dsa-5586"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-456m-rhjg-6cq3",
"modified": "2023-12-28T12:30:19Z",
"modified": "2024-01-05T18:30:24Z",
"published": "2023-12-28T12:30:19Z",
"aliases": [
"CVE-2023-50849"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-5gfw-4p9h-vh8j",
"modified": "2023-12-29T15:30:36Z",
"modified": "2024-01-05T18:30:25Z",
"published": "2023-12-29T15:30:36Z",
"aliases": [
"CVE-2023-51545"
@@ -33,6 +33,10 @@
"type": "WEB",
"url": "https://security.gentoo.org/glsa/202312-17"
},
{
"type": "WEB",
"url": "https://security.netapp.com/advisory/ntap-20240105-0005/"
},
{
"type": "WEB",
"url": "https://vin01.github.io/piptagole/ssh/security/openssh/libssh/remote-code-execution/2023/12/20/openssh-proxycommand-libssh-rce.html"
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-5rcq-25vc-g8qr",
"modified": "2023-12-24T06:30:32Z",
"modified": "2024-01-05T18:30:23Z",
"published": "2023-12-24T06:30:32Z",
"aliases": [
"CVE-2023-51765"
],
"details": "sendmail through at least 8.14.7 allows SMTP smuggling in certain configurations. Remote attackers can use a published exploitation technique to inject e-mail messages that appear to originate from the sendmail server, allowing bypass of an SPF protection mechanism. This occurs because sendmail supports <LF>.<CR><LF> but some other popular e-mail servers do not.",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N"
}
],
"affected": [
@@ -81,9 +84,9 @@
],
"database_specific": {
"cwe_ids": [
"CWE-345"
],
"severity": null,
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2023-12-24T06:15:07Z"
@@ -25,6 +25,10 @@
"type": "WEB",
"url": "https://binarly.io/posts/finding_logofail_the_dangers_of_image_parsing_during_system_boot/index.html"
},
{
"type": "WEB",
"url": "https://security.netapp.com/advisory/ntap-20240105-0002/"
},
{
"type": "WEB",
"url": "https://www.insyde.com/security-pledge"
@@ -28,7 +28,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-843"
],
"severity": "MODERATE",
"github_reviewed": false,
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-6hxc-6hfm-wgvq",
"modified": "2023-12-29T15:30:37Z",
"modified": "2024-01-05T18:30:25Z",
"published": "2023-12-29T15:30:37Z",
"aliases": [
"CVE-2023-51468"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-6p7c-wj96-hf8h",
"modified": "2023-12-29T15:30:36Z",
"modified": "2024-01-05T18:30:25Z",
"published": "2023-12-29T15:30:36Z",
"aliases": [
"CVE-2023-51414"
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-6pvf-3c4h-qg2h",
"modified": "2023-12-28T06:30:24Z",
"modified": "2024-01-05T18:30:24Z",
"published": "2023-12-28T06:30:24Z",
"aliases": [
"CVE-2023-51006"
],
"details": "An issue in the openFile method of Chinese Perpetual Calendar v9.0.0 allows attackers to read any file via unspecified vectors.",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"
}
],
"affected": [
@@ -27,7 +30,7 @@
"cwe_ids": [
],
"severity": null,
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2023-12-28T04:15:08Z"
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-6w7f-vrx5-q78q",
"modified": "2023-12-28T15:30:19Z",
"modified": "2024-01-05T18:30:24Z",
"published": "2023-12-28T15:30:19Z",
"aliases": [
"CVE-2023-50470"
],
"details": "A cross-site scripting (XSS) vulnerability in the component admin_ Video.php of SeaCMS v12.8 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
}
],
"affected": [
@@ -33,9 +36,9 @@
],
"database_specific": {
"cwe_ids": [
"CWE-79"
],
"severity": null,
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2023-12-28T15:15:07Z"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-87fm-wcxm-mcmx",
"modified": "2023-12-12T18:31:31Z",
"modified": "2024-01-05T18:30:21Z",
"published": "2023-12-06T18:31:05Z",
"aliases": [
"CVE-2023-39538"
@@ -24,6 +24,10 @@
{
"type": "WEB",
"url": "https://9443417.fs1.hubspotusercontent-na1.net/hubfs/9443417/Security%20Advisories/AMI-SA-2023009.pdf"
},
{
"type": "WEB",
"url": "https://security.netapp.com/advisory/ntap-20240105-0003/"
}
],
"database_specific": {
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-8cp4-ffj7-48q5",
"modified": "2023-12-29T15:30:37Z",
"modified": "2024-01-05T18:30:25Z",
"published": "2023-12-29T15:30:37Z",
"aliases": [
"CVE-2023-51527"

Some files were not shown because too many files have changed in this diff Show More