diff --git a/advisories/unreviewed/2024/01/GHSA-3h2h-j4vg-8xm8/GHSA-3h2h-j4vg-8xm8.json b/advisories/unreviewed/2024/01/GHSA-3h2h-j4vg-8xm8/GHSA-3h2h-j4vg-8xm8.json new file mode 100644 index 00000000000..0ce54e5298b --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-3h2h-j4vg-8xm8/GHSA-3h2h-j4vg-8xm8.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3h2h-j4vg-8xm8", + "modified": "2024-01-28T03:30:35Z", + "published": "2024-01-28T03:30:35Z", + "aliases": [ + "CVE-2024-23743" + ], + "details": "An issue in Notion for macOS version 3.1.0 and before, allows remote attackers to execute arbitrary code via the RunAsNode and enableNodeClilnspectArguments components.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-23743" + }, + { + "type": "WEB", + "url": "https://github.com/V3x0r/CVE-2024-23743" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-28T02:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-g343-63vq-2wq6/GHSA-g343-63vq-2wq6.json b/advisories/unreviewed/2024/01/GHSA-g343-63vq-2wq6/GHSA-g343-63vq-2wq6.json new file mode 100644 index 00000000000..eb1171c2824 --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-g343-63vq-2wq6/GHSA-g343-63vq-2wq6.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-g343-63vq-2wq6", + "modified": "2024-01-28T03:30:35Z", + "published": "2024-01-28T03:30:35Z", + "aliases": [ + "CVE-2024-23738" + ], + "details": "An issue in Postman version 10.22 and before on macOS allows a remote attacker to execute arbitrary code via the RunAsNode and enableNodeClilnspectArguments settings.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-23738" + }, + { + "type": "WEB", + "url": "https://github.com/V3x0r/CVE-2024-23738" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-28T01:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-p5q6-j3pf-jwc7/GHSA-p5q6-j3pf-jwc7.json b/advisories/unreviewed/2024/01/GHSA-p5q6-j3pf-jwc7/GHSA-p5q6-j3pf-jwc7.json new file mode 100644 index 00000000000..9998043a56a --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-p5q6-j3pf-jwc7/GHSA-p5q6-j3pf-jwc7.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p5q6-j3pf-jwc7", + "modified": "2024-01-28T03:30:35Z", + "published": "2024-01-28T03:30:35Z", + "aliases": [ + "CVE-2024-23742" + ], + "details": "An issue in Loom on macOS version 0.196.1 and before, allows remote attackers to execute arbitrary code via the RunAsNode and enableNodeClilnspectArguments settings.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-23742" + }, + { + "type": "WEB", + "url": "https://github.com/V3x0r/CVE-2024-23742" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-28T03:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-w2m4-7x76-qjmh/GHSA-w2m4-7x76-qjmh.json b/advisories/unreviewed/2024/01/GHSA-w2m4-7x76-qjmh/GHSA-w2m4-7x76-qjmh.json new file mode 100644 index 00000000000..da0c43462f5 --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-w2m4-7x76-qjmh/GHSA-w2m4-7x76-qjmh.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-w2m4-7x76-qjmh", + "modified": "2024-01-28T03:30:35Z", + "published": "2024-01-28T03:30:35Z", + "aliases": [ + "CVE-2024-23739" + ], + "details": "An issue in Discord for macOS version 0.0.291 and before, allows remote attackers to execute arbitrary code via the RunAsNode and enableNodeClilnspectArguments settings.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-23739" + }, + { + "type": "WEB", + "url": "https://github.com/V3x0r/CVE-2024-23739" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-28T03:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-wpfm-839m-3pxg/GHSA-wpfm-839m-3pxg.json b/advisories/unreviewed/2024/01/GHSA-wpfm-839m-3pxg/GHSA-wpfm-839m-3pxg.json new file mode 100644 index 00000000000..f60ec2c1ad6 --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-wpfm-839m-3pxg/GHSA-wpfm-839m-3pxg.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-wpfm-839m-3pxg", + "modified": "2024-01-28T03:30:35Z", + "published": "2024-01-28T03:30:35Z", + "aliases": [ + "CVE-2024-23741" + ], + "details": "An issue in Hyper on macOS version 3.4.1 and before, allows remote attackers to execute arbitrary code via the RunAsNode and enableNodeClilnspectArguments settings.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-23741" + }, + { + "type": "WEB", + "url": "https://github.com/V3x0r/CVE-2024-23741" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-28T03:15:08Z" + } +} \ No newline at end of file