From da7e2ee2f779110161829f38932118abb25dd15a Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Thu, 5 Sep 2024 09:33:02 +0000 Subject: [PATCH] Publish Advisories GHSA-73x9-2874-qfh4 GHSA-72g9-7qqc-m4qv GHSA-7rrq-3qwj-x454 GHSA-8g6h-qpgr-rm99 GHSA-wwwc-q9ch-83c7 --- .../GHSA-73x9-2874-qfh4.json | 3 +- .../GHSA-72g9-7qqc-m4qv.json | 50 +++++++++++++++++++ .../GHSA-7rrq-3qwj-x454.json | 38 ++++++++++++++ .../GHSA-8g6h-qpgr-rm99.json | 50 +++++++++++++++++++ .../GHSA-wwwc-q9ch-83c7.json | 42 ++++++++++++++++ 5 files changed, 182 insertions(+), 1 deletion(-) create mode 100644 advisories/unreviewed/2024/09/GHSA-72g9-7qqc-m4qv/GHSA-72g9-7qqc-m4qv.json create mode 100644 advisories/unreviewed/2024/09/GHSA-7rrq-3qwj-x454/GHSA-7rrq-3qwj-x454.json create mode 100644 advisories/unreviewed/2024/09/GHSA-8g6h-qpgr-rm99/GHSA-8g6h-qpgr-rm99.json create mode 100644 advisories/unreviewed/2024/09/GHSA-wwwc-q9ch-83c7/GHSA-wwwc-q9ch-83c7.json diff --git a/advisories/unreviewed/2024/08/GHSA-73x9-2874-qfh4/GHSA-73x9-2874-qfh4.json b/advisories/unreviewed/2024/08/GHSA-73x9-2874-qfh4/GHSA-73x9-2874-qfh4.json index 97324cb8b5f..b05c6936884 100644 --- a/advisories/unreviewed/2024/08/GHSA-73x9-2874-qfh4/GHSA-73x9-2874-qfh4.json +++ b/advisories/unreviewed/2024/08/GHSA-73x9-2874-qfh4/GHSA-73x9-2874-qfh4.json @@ -28,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-89" + "CWE-89", + "CWE-943" ], "severity": "CRITICAL", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/09/GHSA-72g9-7qqc-m4qv/GHSA-72g9-7qqc-m4qv.json b/advisories/unreviewed/2024/09/GHSA-72g9-7qqc-m4qv/GHSA-72g9-7qqc-m4qv.json new file mode 100644 index 00000000000..c2677068699 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-72g9-7qqc-m4qv/GHSA-72g9-7qqc-m4qv.json @@ -0,0 +1,50 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-72g9-7qqc-m4qv", + "modified": "2024-09-05T09:31:32Z", + "published": "2024-09-05T09:31:32Z", + "aliases": [ + "CVE-2024-8363" + ], + "details": "The Share This Image plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's STI Buttons shortcode in all versions up to, and including, 2.02 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8363" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/share-this-image/tags/2.02/includes/class-sti-shortcodes.php#L40" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3146524" + }, + { + "type": "WEB", + "url": "https://wordpress.org/plugins/share-this-image/#developers" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/d01b6056-a38d-4a60-9cdc-68663aa2aed6?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-05T09:15:04Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-7rrq-3qwj-x454/GHSA-7rrq-3qwj-x454.json b/advisories/unreviewed/2024/09/GHSA-7rrq-3qwj-x454/GHSA-7rrq-3qwj-x454.json new file mode 100644 index 00000000000..740ed2f3820 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-7rrq-3qwj-x454/GHSA-7rrq-3qwj-x454.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7rrq-3qwj-x454", + "modified": "2024-09-05T09:31:31Z", + "published": "2024-09-05T09:31:31Z", + "aliases": [ + "CVE-2024-45107" + ], + "details": "Acrobat Reader versions 20.005.30636, 24.002.20964, 24.001.30123, 24.002.20991 and earlier are affected by a Use After Free vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-45107" + }, + { + "type": "WEB", + "url": "https://helpx.adobe.com/security/products/acrobat/apsb24-57.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-416" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-05T09:15:03Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-8g6h-qpgr-rm99/GHSA-8g6h-qpgr-rm99.json b/advisories/unreviewed/2024/09/GHSA-8g6h-qpgr-rm99/GHSA-8g6h-qpgr-rm99.json new file mode 100644 index 00000000000..fc511b09a87 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-8g6h-qpgr-rm99/GHSA-8g6h-qpgr-rm99.json @@ -0,0 +1,50 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8g6h-qpgr-rm99", + "modified": "2024-09-05T09:31:31Z", + "published": "2024-09-05T09:31:31Z", + "aliases": [ + "CVE-2024-6835" + ], + "details": "The Ivory Search – WordPress Search Plugin plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 5.5.6 via the ajax_load_posts function. This makes it possible for unauthenticated attackers to extract text data from password-protected posts using the boolean-based attack on the AJAX search form", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-6835" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/add-search-to-menu/tags/5.5.6/public/class-is-ajax.php#L45" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/add-search-to-menu/tags/5.5.6/public/partials/is-ajax-results.php#L57" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3145289" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/013f7c26-8348-4c54-af61-473a720a5095?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-200" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-05T07:15:02Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-wwwc-q9ch-83c7/GHSA-wwwc-q9ch-83c7.json b/advisories/unreviewed/2024/09/GHSA-wwwc-q9ch-83c7/GHSA-wwwc-q9ch-83c7.json new file mode 100644 index 00000000000..8533e3636f1 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-wwwc-q9ch-83c7/GHSA-wwwc-q9ch-83c7.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-wwwc-q9ch-83c7", + "modified": "2024-09-05T09:31:32Z", + "published": "2024-09-05T09:31:31Z", + "aliases": [ + "CVE-2024-5309" + ], + "details": "The Form Vibes – Database Manager for Forms plugin for WordPress is vulnerable to unauthorized access of data and modification of data due to a missing capability check on the fv_export_csv, reset_settings, save_settings, save_columns_settings, get_analytics_data, get_event_logs_data, delete_submissions, and get_submissions functions in all versions up to, and including, 1.4.12. This makes it possible for authenticated attackers, with Subscriber-level access and above, to perform multiple unauthorized actions. NOTE: This vulnerability is partially fixed in version 1.4.12.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5309" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3128705%40form-vibes&new=3128705%40form-vibes&sfp_email=&sfph_mail=" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/aba88c4c-93a4-4c1c-b239-68b5fec87146?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-862" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-05T09:15:04Z" + } +} \ No newline at end of file