From e0ad7c04327ee847025bc3bdfb648251f909aa63 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Mon, 5 Feb 2024 11:13:07 +0000 Subject: [PATCH] Publish Advisories GHSA-2wj9-434x-9hvp GHSA-347x-877p-hcwx GHSA-43gj-mj2w-wh46 GHSA-4j77-gg36-9864 --- .../GHSA-2wj9-434x-9hvp.json | 50 +++++++++++++++++ .../GHSA-347x-877p-hcwx.json | 38 +++++++++++-- .../GHSA-43gj-mj2w-wh46.json | 50 +++++++++++++++++ .../GHSA-4j77-gg36-9864.json | 56 ++++++++++++++++++- 4 files changed, 186 insertions(+), 8 deletions(-) diff --git a/advisories/github-reviewed/2020/05/GHSA-2wj9-434x-9hvp/GHSA-2wj9-434x-9hvp.json b/advisories/github-reviewed/2020/05/GHSA-2wj9-434x-9hvp/GHSA-2wj9-434x-9hvp.json index 97cba3dd265..cb7f6f80bb6 100644 --- a/advisories/github-reviewed/2020/05/GHSA-2wj9-434x-9hvp/GHSA-2wj9-434x-9hvp.json +++ b/advisories/github-reviewed/2020/05/GHSA-2wj9-434x-9hvp/GHSA-2wj9-434x-9hvp.json @@ -52,6 +52,44 @@ ] } ] + }, + { + "package": { + "ecosystem": "Packagist", + "name": "typo3/cms" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "10.0.0" + }, + { + "fixed": "10.4.2" + } + ] + } + ] + }, + { + "package": { + "ecosystem": "Packagist", + "name": "typo3/cms" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "9.0.0" + }, + { + "fixed": "9.5.17" + } + ] + } + ] } ], "references": [ @@ -62,6 +100,18 @@ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2020-11067" + }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/typo3/cms-core/CVE-2020-11067.yaml" + }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/typo3/cms/CVE-2020-11067.yaml" + }, + { + "type": "WEB", + "url": "https://typo3.org/security/advisory/typo3-core-sa-2020-005" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/05/GHSA-347x-877p-hcwx/GHSA-347x-877p-hcwx.json b/advisories/github-reviewed/2020/05/GHSA-347x-877p-hcwx/GHSA-347x-877p-hcwx.json index 18ab5e0c6fe..fcd884a6c27 100644 --- a/advisories/github-reviewed/2020/05/GHSA-347x-877p-hcwx/GHSA-347x-877p-hcwx.json +++ b/advisories/github-reviewed/2020/05/GHSA-347x-877p-hcwx/GHSA-347x-877p-hcwx.json @@ -25,17 +25,33 @@ "type": "ECOSYSTEM", "events": [ { - "introduced": "10.4.0" + "introduced": "10.0.0" }, { "fixed": "10.4.2" } ] } - ], - "database_specific": { - "last_known_affected_version_range": "<= 10.4.1" - } + ] + }, + { + "package": { + "ecosystem": "Packagist", + "name": "typo3/cms" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "10.0.0" + }, + { + "fixed": "10.4.2" + } + ] + } + ] } ], "references": [ @@ -46,6 +62,18 @@ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2020-11063" + }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/typo3/cms-core/CVE-2020-11063.yaml" + }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/typo3/cms/CVE-2020-11063.yaml" + }, + { + "type": "WEB", + "url": "https://typo3.org/security/advisory/typo3-core-sa-2020-001" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/05/GHSA-43gj-mj2w-wh46/GHSA-43gj-mj2w-wh46.json b/advisories/github-reviewed/2020/05/GHSA-43gj-mj2w-wh46/GHSA-43gj-mj2w-wh46.json index 89dc023c550..bfd6848306d 100644 --- a/advisories/github-reviewed/2020/05/GHSA-43gj-mj2w-wh46/GHSA-43gj-mj2w-wh46.json +++ b/advisories/github-reviewed/2020/05/GHSA-43gj-mj2w-wh46/GHSA-43gj-mj2w-wh46.json @@ -52,6 +52,44 @@ ] } ] + }, + { + "package": { + "ecosystem": "Packagist", + "name": "typo3/cms" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "10.0.0" + }, + { + "fixed": "10.4.2" + } + ] + } + ] + }, + { + "package": { + "ecosystem": "Packagist", + "name": "typo3/cms" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "9.0.0" + }, + { + "fixed": "9.5.17" + } + ] + } + ] } ], "references": [ @@ -62,6 +100,18 @@ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2020-11064" + }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/typo3/cms-core/CVE-2020-11064.yaml" + }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/typo3/cms/CVE-2020-11064.yaml" + }, + { + "type": "WEB", + "url": "https://typo3.org/security/advisory/typo3-core-sa-2020-002" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/05/GHSA-4j77-gg36-9864/GHSA-4j77-gg36-9864.json b/advisories/github-reviewed/2020/05/GHSA-4j77-gg36-9864/GHSA-4j77-gg36-9864.json index 9028f2930c3..3e485c27d5b 100644 --- a/advisories/github-reviewed/2020/05/GHSA-4j77-gg36-9864/GHSA-4j77-gg36-9864.json +++ b/advisories/github-reviewed/2020/05/GHSA-4j77-gg36-9864/GHSA-4j77-gg36-9864.json @@ -25,10 +25,10 @@ "type": "ECOSYSTEM", "events": [ { - "introduced": "9.5.12" + "introduced": "10.0.0" }, { - "fixed": "9.5.17" + "fixed": "10.4.2" } ] } @@ -44,7 +44,26 @@ "type": "ECOSYSTEM", "events": [ { - "introduced": "10.2.0" + "introduced": "9.0.0" + }, + { + "fixed": "9.5.17" + } + ] + } + ] + }, + { + "package": { + "ecosystem": "Packagist", + "name": "typo3/cms" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "10.0.0" }, { "fixed": "10.4.2" @@ -52,6 +71,25 @@ ] } ] + }, + { + "package": { + "ecosystem": "Packagist", + "name": "typo3/cms" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "9.0.0" + }, + { + "fixed": "9.5.17" + } + ] + } + ] } ], "references": [ @@ -62,6 +100,18 @@ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2020-11065" + }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/typo3/cms-core/CVE-2020-11065.yaml" + }, + { + "type": "WEB", + "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/typo3/cms/CVE-2020-11065.yaml" + }, + { + "type": "WEB", + "url": "https://typo3.org/security/advisory/typo3-core-sa-2020-003" } ], "database_specific": {