diff --git a/advisories/unreviewed/2023/08/GHSA-2868-gw76-97vq/GHSA-2868-gw76-97vq.json b/advisories/unreviewed/2023/08/GHSA-2868-gw76-97vq/GHSA-2868-gw76-97vq.json index f73a4c6b42c..9785ad18259 100644 --- a/advisories/unreviewed/2023/08/GHSA-2868-gw76-97vq/GHSA-2868-gw76-97vq.json +++ b/advisories/unreviewed/2023/08/GHSA-2868-gw76-97vq/GHSA-2868-gw76-97vq.json @@ -28,6 +28,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-119", "CWE-78" ], "severity": null, diff --git a/advisories/unreviewed/2023/08/GHSA-prv9-x3jf-3mm9/GHSA-prv9-x3jf-3mm9.json b/advisories/unreviewed/2023/08/GHSA-prv9-x3jf-3mm9/GHSA-prv9-x3jf-3mm9.json new file mode 100644 index 00000000000..caf660d88d3 --- /dev/null +++ b/advisories/unreviewed/2023/08/GHSA-prv9-x3jf-3mm9/GHSA-prv9-x3jf-3mm9.json @@ -0,0 +1,43 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-prv9-x3jf-3mm9", + "modified": "2023-08-25T06:30:15Z", + "published": "2023-08-25T06:30:15Z", + "aliases": [ + "CVE-2023-40530" + ], + "details": "Improper authorization in handler for custom URL scheme issue in 'Skylark' App for Android 6.2.13 and earlier and 'Skylark' App for iOS 6.2.13 and earlier allows an attacker to lead a user to access an arbitrary website via another application installed on the user's device.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-40530" + }, + { + "type": "WEB", + "url": "https://apps.apple.com/jp/app/%E3%81%99%E3%81%8B%E3%81%84%E3%82%89%E3%83%BC%E3%81%8F%E3%82%A2%E3%83%97%E3%83%AA/id906930478" + }, + { + "type": "WEB", + "url": "https://jvn.jp/en/jp/JVN03447226/" + }, + { + "type": "WEB", + "url": "https://play.google.com/store/apps/details?id=jp.co.skylark.app.gusto" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file