diff --git a/advisories/unreviewed/2024/06/GHSA-grhv-62hf-9jg3/GHSA-grhv-62hf-9jg3.json b/advisories/unreviewed/2024/06/GHSA-grhv-62hf-9jg3/GHSA-grhv-62hf-9jg3.json index cd101107502..0657bb5a820 100644 --- a/advisories/unreviewed/2024/06/GHSA-grhv-62hf-9jg3/GHSA-grhv-62hf-9jg3.json +++ b/advisories/unreviewed/2024/06/GHSA-grhv-62hf-9jg3/GHSA-grhv-62hf-9jg3.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-grhv-62hf-9jg3", - "modified": "2024-08-19T18:32:03Z", + "modified": "2024-09-12T12:30:27Z", "published": "2024-06-20T12:31:21Z", "aliases": [ "CVE-2022-48733" @@ -25,6 +25,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/28b21c558a3753171097193b6f6602a94169093a" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/7e4c72dbaf62f8978af8321a24dbd35566d3a78a" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/9372fa1d73da5f1673921e365d0cd2c27ec7adc2" diff --git a/advisories/unreviewed/2024/06/GHSA-wqp9-f35v-h4f9/GHSA-wqp9-f35v-h4f9.json b/advisories/unreviewed/2024/06/GHSA-wqp9-f35v-h4f9/GHSA-wqp9-f35v-h4f9.json index 53e6bb6d01c..68ec59104a5 100644 --- a/advisories/unreviewed/2024/06/GHSA-wqp9-f35v-h4f9/GHSA-wqp9-f35v-h4f9.json +++ b/advisories/unreviewed/2024/06/GHSA-wqp9-f35v-h4f9/GHSA-wqp9-f35v-h4f9.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-wqp9-f35v-h4f9", - "modified": "2024-08-01T21:31:40Z", + "modified": "2024-09-12T12:30:27Z", "published": "2024-06-19T15:30:53Z", "aliases": [ "CVE-2024-38577" @@ -25,6 +25,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/08186d0c5fb64a1cc4b43e009314ee6b173ed222" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/17c43211d45f13d1badea3942b76bf16bcc49281" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/1a240e138071b25944ded0f5b3e357aa99fabcb7" @@ -37,6 +41,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/6593d857ce5b5b802fb73d8091ac9c84b92c1697" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/af7b560c88fb420099e29890aa682b8a3efc8784" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/cc5645fddb0ce28492b15520306d092730dffa48" diff --git a/advisories/unreviewed/2024/08/GHSA-44m4-gm9r-m853/GHSA-44m4-gm9r-m853.json b/advisories/unreviewed/2024/08/GHSA-44m4-gm9r-m853/GHSA-44m4-gm9r-m853.json index e8088742a77..4deb423b853 100644 --- a/advisories/unreviewed/2024/08/GHSA-44m4-gm9r-m853/GHSA-44m4-gm9r-m853.json +++ b/advisories/unreviewed/2024/08/GHSA-44m4-gm9r-m853/GHSA-44m4-gm9r-m853.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-44m4-gm9r-m853", - "modified": "2024-09-05T21:31:33Z", + "modified": "2024-09-12T12:30:28Z", "published": "2024-08-26T12:31:19Z", "aliases": [ "CVE-2024-43897" @@ -25,6 +25,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/2edbb3e8838c672cd7e247e47989df9d03fc6668" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/413e785a89f8bde0d4156a54b8ac2fa003c06756" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/6772c4868a8e7ad5305957cdb834ce881793acb7" diff --git a/advisories/unreviewed/2024/08/GHSA-899c-qvc8-9hpp/GHSA-899c-qvc8-9hpp.json b/advisories/unreviewed/2024/08/GHSA-899c-qvc8-9hpp/GHSA-899c-qvc8-9hpp.json index 54d55edda52..83071bf4220 100644 --- a/advisories/unreviewed/2024/08/GHSA-899c-qvc8-9hpp/GHSA-899c-qvc8-9hpp.json +++ b/advisories/unreviewed/2024/08/GHSA-899c-qvc8-9hpp/GHSA-899c-qvc8-9hpp.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-899c-qvc8-9hpp", - "modified": "2024-08-08T15:31:29Z", + "modified": "2024-09-12T12:30:27Z", "published": "2024-08-07T18:30:44Z", "aliases": [ "CVE-2024-42246" @@ -21,10 +21,26 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-42246" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/02ee1976edb21a96ce8e3fd4ef563f14cc16d041" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/5d8254e012996cee1a0f9cc920531cb7e4d9a011" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/626dfed5fa3bfb41e0dffd796032b555b69f9cde" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/934247ea65bc5eca8bdb7f8c0ddc15cef992a5d6" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/bc790261218952635f846aaf90bcc0974f6f62c6" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/d6c686c01c5f12ff8f7264e0ddf71df6cb0d4414" diff --git a/advisories/unreviewed/2024/08/GHSA-hqfw-8gwg-7r3q/GHSA-hqfw-8gwg-7r3q.json b/advisories/unreviewed/2024/08/GHSA-hqfw-8gwg-7r3q/GHSA-hqfw-8gwg-7r3q.json index 4d6a3b3721a..7e59273cb09 100644 --- a/advisories/unreviewed/2024/08/GHSA-hqfw-8gwg-7r3q/GHSA-hqfw-8gwg-7r3q.json +++ b/advisories/unreviewed/2024/08/GHSA-hqfw-8gwg-7r3q/GHSA-hqfw-8gwg-7r3q.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-hqfw-8gwg-7r3q", - "modified": "2024-08-22T18:31:20Z", + "modified": "2024-09-12T12:30:27Z", "published": "2024-08-17T12:30:33Z", "aliases": [ "CVE-2024-43854" @@ -21,14 +21,26 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-43854" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/129f95948a96105c1fad8e612c9097763e88ac5f" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/23a19655fb56f241e592041156dfb1c6d04da644" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/3fd11fe4f20756b4c0847f755a64cd96f8c6a005" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/899ee2c3829c5ac14bfc7d3c4a5846c0b709b78f" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/9f4af4cf08f9a0329ade3d938f55d2220c40d0a6" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/cf6b45ea7a8df0f61bded1dc4a8561ac6ad143d2" diff --git a/advisories/unreviewed/2024/08/GHSA-hxw3-49vc-4rrp/GHSA-hxw3-49vc-4rrp.json b/advisories/unreviewed/2024/08/GHSA-hxw3-49vc-4rrp/GHSA-hxw3-49vc-4rrp.json index 91861d8838d..bef4c0942d5 100644 --- a/advisories/unreviewed/2024/08/GHSA-hxw3-49vc-4rrp/GHSA-hxw3-49vc-4rrp.json +++ b/advisories/unreviewed/2024/08/GHSA-hxw3-49vc-4rrp/GHSA-hxw3-49vc-4rrp.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-hxw3-49vc-4rrp", - "modified": "2024-09-05T21:31:33Z", + "modified": "2024-09-12T12:30:28Z", "published": "2024-08-26T12:31:19Z", "aliases": [ "CVE-2024-43892" @@ -29,9 +29,21 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/51c0b1bb7541f8893ec1accba59eb04361a70946" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/56fd70f4aa8b82199dbe7e99366b1fd7a04d86fb" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/912736a0435ef40e6a4ae78197ccb5553cb80b05" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/9972605a238339b85bd16b084eed5f18414d22db" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/e6cc9ff2ac0b5df9f25eb790934c3104f6710278" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/08/GHSA-mv84-ggqf-6q3w/GHSA-mv84-ggqf-6q3w.json b/advisories/unreviewed/2024/08/GHSA-mv84-ggqf-6q3w/GHSA-mv84-ggqf-6q3w.json index d07ac183ae4..cffb37625e5 100644 --- a/advisories/unreviewed/2024/08/GHSA-mv84-ggqf-6q3w/GHSA-mv84-ggqf-6q3w.json +++ b/advisories/unreviewed/2024/08/GHSA-mv84-ggqf-6q3w/GHSA-mv84-ggqf-6q3w.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-mv84-ggqf-6q3w", - "modified": "2024-08-27T15:32:44Z", + "modified": "2024-09-12T12:30:28Z", "published": "2024-08-26T12:31:20Z", "aliases": [ "CVE-2024-43905" @@ -21,6 +21,14 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-43905" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/0fa11f9df96217c2785b040629ff1a16900fb51c" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/2ac9deb7e087f0b461c3559d9eaa6b9cf19d3fa8" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/2e538944996d0dd497faf8ee81f8bfcd3aca7d80" diff --git a/advisories/unreviewed/2024/08/GHSA-vgj5-hqjj-6hcj/GHSA-vgj5-hqjj-6hcj.json b/advisories/unreviewed/2024/08/GHSA-vgj5-hqjj-6hcj/GHSA-vgj5-hqjj-6hcj.json index 3bbc5f46b4b..c041f846733 100644 --- a/advisories/unreviewed/2024/08/GHSA-vgj5-hqjj-6hcj/GHSA-vgj5-hqjj-6hcj.json +++ b/advisories/unreviewed/2024/08/GHSA-vgj5-hqjj-6hcj/GHSA-vgj5-hqjj-6hcj.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-vgj5-hqjj-6hcj", - "modified": "2024-09-08T09:30:27Z", + "modified": "2024-09-12T12:30:27Z", "published": "2024-08-17T12:30:32Z", "aliases": [ "CVE-2024-43835" @@ -18,6 +18,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-43835" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/19ac6f29bf64304ef04630c8ab56ecd2059d7aa1" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/468a729b78895893d0e580ceea49bed8ada2a2bd" @@ -26,6 +30,18 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/6b5325f2457521bbece29499970c0117a648c620" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/842a97b5e44f0c8a9fc356fe976e0e13ddcf7783" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/cc7340f18e45886121c131227985d64ef666012f" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/d3af435e8ace119e58d8e21d3d2d6a4e7c4a4baa" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/f5e9a22d19bb98a7e86034db85eb295e94187caa" diff --git a/advisories/unreviewed/2024/09/GHSA-9chw-m2j3-37f5/GHSA-9chw-m2j3-37f5.json b/advisories/unreviewed/2024/09/GHSA-9chw-m2j3-37f5/GHSA-9chw-m2j3-37f5.json new file mode 100644 index 00000000000..0548a0bded7 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-9chw-m2j3-37f5/GHSA-9chw-m2j3-37f5.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9chw-m2j3-37f5", + "modified": "2024-09-12T12:30:28Z", + "published": "2024-09-12T12:30:28Z", + "aliases": [ + "CVE-2024-8749" + ], + "details": "SQL injection vulnerability in idoit pro version 28. This vulnerability could allow an attacker to send a specially crafted query to the ID parameter in /var/www/html/src/classes/modules/api/model/cmdb/isys_api_model_cmdb_objects_by_relation.class.php and retrieve all the information stored in the database.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8749" + }, + { + "type": "WEB", + "url": "https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-synetics-idoit-pro" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-12T12:15:53Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-cmmj-jc2h-55pm/GHSA-cmmj-jc2h-55pm.json b/advisories/unreviewed/2024/09/GHSA-cmmj-jc2h-55pm/GHSA-cmmj-jc2h-55pm.json new file mode 100644 index 00000000000..d785b898ef8 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-cmmj-jc2h-55pm/GHSA-cmmj-jc2h-55pm.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cmmj-jc2h-55pm", + "modified": "2024-09-12T12:30:28Z", + "published": "2024-09-12T12:30:28Z", + "aliases": [ + "CVE-2024-8750" + ], + "details": "Cross-site Scripting (XSS) vulnerability in idoit pro version 28. This vulnerability allows an attacker to retrieve session details of an authenticated user due to lack of proper sanitization of the following parameters (id,lang,mNavID,name,pID,treeNode,type,view).", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8750" + }, + { + "type": "WEB", + "url": "https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-synetics-idoit-pro" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-12T12:15:54Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-mgf7-9fq3-64j5/GHSA-mgf7-9fq3-64j5.json b/advisories/unreviewed/2024/09/GHSA-mgf7-9fq3-64j5/GHSA-mgf7-9fq3-64j5.json index 7519defaf8d..ad0918efb7f 100644 --- a/advisories/unreviewed/2024/09/GHSA-mgf7-9fq3-64j5/GHSA-mgf7-9fq3-64j5.json +++ b/advisories/unreviewed/2024/09/GHSA-mgf7-9fq3-64j5/GHSA-mgf7-9fq3-64j5.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-mgf7-9fq3-64j5", - "modified": "2024-09-08T09:30:27Z", + "modified": "2024-09-12T12:30:28Z", "published": "2024-09-04T21:30:32Z", "aliases": [ "CVE-2024-44974" @@ -36,6 +36,14 @@ { "type": "WEB", "url": "https://git.kernel.org/stable/c/9a9afbbc3fbfca4975eea4aa5b18556db5a0c0b8" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/ddee5b4b6a1cc03c1e9921cf34382e094c2009f1" + }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/f2c865e9e3ca44fc06b5f73b29a954775e4dbb38" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/09/GHSA-rhqc-rfxh-qj7g/GHSA-rhqc-rfxh-qj7g.json b/advisories/unreviewed/2024/09/GHSA-rhqc-rfxh-qj7g/GHSA-rhqc-rfxh-qj7g.json index 7143c07baca..78b0a45fa7f 100644 --- a/advisories/unreviewed/2024/09/GHSA-rhqc-rfxh-qj7g/GHSA-rhqc-rfxh-qj7g.json +++ b/advisories/unreviewed/2024/09/GHSA-rhqc-rfxh-qj7g/GHSA-rhqc-rfxh-qj7g.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-rhqc-rfxh-qj7g", - "modified": "2024-09-11T18:31:04Z", + "modified": "2024-09-12T12:30:28Z", "published": "2024-09-11T18:31:04Z", "aliases": [ "CVE-2024-45009" @@ -26,6 +26,10 @@ "type": "WEB", "url": "https://git.kernel.org/stable/c/2060f1efab370b496c4903b840844ecaff324c3c" }, + { + "type": "WEB", + "url": "https://git.kernel.org/stable/c/35b31f5549ede4070566b949781e83495906b43d" + }, { "type": "WEB", "url": "https://git.kernel.org/stable/c/85b866e4c4e63a1d7afb58f1e24273caad03d0b7"