diff --git a/advisories/github-reviewed/2022/09/GHSA-m54f-rp6r-rrrm/GHSA-m54f-rp6r-rrrm.json b/advisories/github-reviewed/2022/09/GHSA-m54f-rp6r-rrrm/GHSA-m54f-rp6r-rrrm.json index aa46480f0da..cfa482a7e0f 100644 --- a/advisories/github-reviewed/2022/09/GHSA-m54f-rp6r-rrrm/GHSA-m54f-rp6r-rrrm.json +++ b/advisories/github-reviewed/2022/09/GHSA-m54f-rp6r-rrrm/GHSA-m54f-rp6r-rrrm.json @@ -1,13 +1,13 @@ { "schema_version": "1.4.0", "id": "GHSA-m54f-rp6r-rrrm", - "modified": "2022-09-30T06:23:00Z", + "modified": "2024-05-07T12:45:01Z", "published": "2022-09-29T00:00:22Z", "aliases": [ "CVE-2022-40929" ], "summary": "XXL-JOB contains a Command execution vulnerability in background tasks ", - "details": "XXL-JOB versions 2.2.0 and prior contain a Command execution vulnerability in background tasks.", + "details": "XXL-JOB versions 2.2.0 and prior contain a Command execution vulnerability in background tasks.\n\nNOTE: this is disputed because the issues/4929 report is about an intended and supported use case (running arbitrary Bash scripts on behalf of users).", "severity": [ { "type": "CVSS_V3",