mirror of
https://github.com/netbirdio/advisory-database.git
synced 2026-05-22 18:04:22 -07:00
Publish Advisories
GHSA-56wv-2wr9-3h9r GHSA-43fp-rhv2-5gv8 GHSA-fprp-p869-w6q2 GHSA-5rwm-2xw8-hh9p GHSA-gvpc-3pj6-4m9w GHSA-j74q-mv2c-rxmp GHSA-58fx-7v9q-3g56
This commit is contained in:
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-56wv-2wr9-3h9r",
|
||||
"modified": "2024-09-20T17:12:16Z",
|
||||
"modified": "2025-02-12T18:33:20Z",
|
||||
"published": "2021-10-12T16:30:37Z",
|
||||
"aliases": [
|
||||
"CVE-2020-12607"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-43fp-rhv2-5gv8",
|
||||
"modified": "2024-09-13T17:46:06Z",
|
||||
"modified": "2025-02-12T18:33:24Z",
|
||||
"published": "2022-12-07T23:05:18Z",
|
||||
"aliases": [
|
||||
"CVE-2022-23491"
|
||||
@@ -63,6 +63,10 @@
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://groups.google.com/a/mozilla.org/g/dev-security-policy/c/oxX69KFvsm4/m/yLohoVqtCgAJ"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://security.netapp.com/advisory/ntap-20230223-0010"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-fprp-p869-w6q2",
|
||||
"modified": "2024-09-30T16:17:28Z",
|
||||
"modified": "2025-02-12T18:33:26Z",
|
||||
"published": "2023-04-05T03:30:17Z",
|
||||
"aliases": [
|
||||
"CVE-2023-29374"
|
||||
|
||||
@@ -1,13 +1,13 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-5rwm-2xw8-hh9p",
|
||||
"modified": "2024-02-21T00:11:35Z",
|
||||
"modified": "2025-02-12T18:33:28Z",
|
||||
"published": "2024-02-20T00:30:37Z",
|
||||
"aliases": [
|
||||
"CVE-2024-1651"
|
||||
],
|
||||
"summary": "Deserialization of Untrusted Data in Torrentpier",
|
||||
"details": "Torrentpier version 2.4.1 allows executing arbitrary commands on the server.\n\nThis is possible because the application is vulnerable to insecure deserialization.\n\n\n\n\n",
|
||||
"details": "Torrentpier version 2.4.1 allows executing arbitrary commands on the server.\n\nThis is possible because the application is vulnerable to insecure deserialization.",
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
|
||||
@@ -1,13 +1,13 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-gvpc-3pj6-4m9w",
|
||||
"modified": "2024-05-21T15:39:46Z",
|
||||
"modified": "2025-02-12T18:33:38Z",
|
||||
"published": "2024-05-21T14:47:24Z",
|
||||
"aliases": [
|
||||
"CVE-2024-35218"
|
||||
],
|
||||
"summary": "Umbraco CMS Vulnerable to Stored XSS on Content Page Through Markdown Editor Preview Pane",
|
||||
"details": "### Impact\nStored Cross-site scripting (XSS) enable attackers that have access to backoffice to bring malicious content into a website or application.\n\n### Affected versions\nUmbraco CMS >= 8.00\n\n### Patches\nThis is fixed in 8.18.13, 10.8.4, 12.3.7, 13.1.1 by implementing IHtmlSanitizer\n\n\n\n\n",
|
||||
"details": "### Impact\nStored Cross-site scripting (XSS) enable attackers that have access to backoffice to bring malicious content into a website or application.\n\n### Affected versions\nUmbraco CMS >= 8.00\n\n### Patches\nThis is fixed in 8.18.13, 10.8.4, 12.3.7, 13.1.1 by implementing IHtmlSanitizer",
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-j74q-mv2c-rxmp",
|
||||
"modified": "2024-05-21T15:39:38Z",
|
||||
"modified": "2025-02-12T18:33:35Z",
|
||||
"published": "2024-05-21T14:29:18Z",
|
||||
"aliases": [
|
||||
"CVE-2024-34071"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-58fx-7v9q-3g56",
|
||||
"modified": "2025-01-28T20:40:01Z",
|
||||
"modified": "2025-02-12T18:32:43Z",
|
||||
"published": "2025-01-28T18:31:28Z",
|
||||
"aliases": [
|
||||
"CVE-2024-13484"
|
||||
|
||||
Reference in New Issue
Block a user