From e42699cd75133d37ab0e243af87b5b85e3bad20c Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Sat, 26 Apr 2025 00:32:28 +0000 Subject: [PATCH] Publish Advisories GHSA-mg83-c7gq-rv5c GHSA-6f7q-j62j-5545 GHSA-g2m5-6x74-9mv6 GHSA-grqq-hcc7-crmr GHSA-mq5w-grf9-5rp9 GHSA-pm93-pg55-r2jm GHSA-26mg-p594-q328 GHSA-8343-fjcx-gwpw GHSA-pp5v-6vv5-vc6c --- .../GHSA-mg83-c7gq-rv5c/GHSA-mg83-c7gq-rv5c.json | 6 +++++- .../GHSA-6f7q-j62j-5545/GHSA-6f7q-j62j-5545.json | 6 +++++- .../GHSA-g2m5-6x74-9mv6/GHSA-g2m5-6x74-9mv6.json | 6 +++++- .../GHSA-grqq-hcc7-crmr/GHSA-grqq-hcc7-crmr.json | 6 +++++- .../GHSA-mq5w-grf9-5rp9/GHSA-mq5w-grf9-5rp9.json | 6 +++++- .../GHSA-pm93-pg55-r2jm/GHSA-pm93-pg55-r2jm.json | 6 +++++- .../GHSA-26mg-p594-q328/GHSA-26mg-p594-q328.json | 6 +++++- .../GHSA-8343-fjcx-gwpw/GHSA-8343-fjcx-gwpw.json | 15 +++++++++++---- .../GHSA-pp5v-6vv5-vc6c/GHSA-pp5v-6vv5-vc6c.json | 15 +++++++++++---- 9 files changed, 57 insertions(+), 15 deletions(-) diff --git a/advisories/github-reviewed/2025/03/GHSA-mg83-c7gq-rv5c/GHSA-mg83-c7gq-rv5c.json b/advisories/github-reviewed/2025/03/GHSA-mg83-c7gq-rv5c/GHSA-mg83-c7gq-rv5c.json index add58698fd5..a1005146a13 100644 --- a/advisories/github-reviewed/2025/03/GHSA-mg83-c7gq-rv5c/GHSA-mg83-c7gq-rv5c.json +++ b/advisories/github-reviewed/2025/03/GHSA-mg83-c7gq-rv5c/GHSA-mg83-c7gq-rv5c.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-mg83-c7gq-rv5c", - "modified": "2025-03-20T19:42:39Z", + "modified": "2025-04-26T00:30:24Z", "published": "2025-03-20T06:31:09Z", "aliases": [ "CVE-2025-22228" @@ -177,6 +177,10 @@ "type": "PACKAGE", "url": "https://github.com/spring-projects/spring-security" }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20250425-0009" + }, { "type": "WEB", "url": "https://spring.io/security/cve-2025-22228" diff --git a/advisories/unreviewed/2022/05/GHSA-6f7q-j62j-5545/GHSA-6f7q-j62j-5545.json b/advisories/unreviewed/2022/05/GHSA-6f7q-j62j-5545/GHSA-6f7q-j62j-5545.json index 0ee1887474a..675efe9334b 100644 --- a/advisories/unreviewed/2022/05/GHSA-6f7q-j62j-5545/GHSA-6f7q-j62j-5545.json +++ b/advisories/unreviewed/2022/05/GHSA-6f7q-j62j-5545/GHSA-6f7q-j62j-5545.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-6f7q-j62j-5545", - "modified": "2022-05-13T01:28:58Z", + "modified": "2025-04-26T00:30:23Z", "published": "2022-05-13T01:28:58Z", "aliases": [ "CVE-2018-5733" @@ -35,6 +35,10 @@ "type": "WEB", "url": "https://lists.debian.org/debian-lts-announce/2018/03/msg00015.html" }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20250425-0010" + }, { "type": "WEB", "url": "https://usn.ubuntu.com/3586-1" diff --git a/advisories/unreviewed/2024/07/GHSA-g2m5-6x74-9mv6/GHSA-g2m5-6x74-9mv6.json b/advisories/unreviewed/2024/07/GHSA-g2m5-6x74-9mv6/GHSA-g2m5-6x74-9mv6.json index f0e911dd04d..a94d559976d 100644 --- a/advisories/unreviewed/2024/07/GHSA-g2m5-6x74-9mv6/GHSA-g2m5-6x74-9mv6.json +++ b/advisories/unreviewed/2024/07/GHSA-g2m5-6x74-9mv6/GHSA-g2m5-6x74-9mv6.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-g2m5-6x74-9mv6", - "modified": "2024-07-26T15:31:50Z", + "modified": "2025-04-26T00:30:23Z", "published": "2024-07-24T15:31:27Z", "aliases": [ "CVE-2024-6096" @@ -22,6 +22,10 @@ { "type": "WEB", "url": "https://docs.telerik.com/reporting/knowledge-base/unsafe-reflection-CVE-2024-6096" + }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20250425-0003" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/10/GHSA-grqq-hcc7-crmr/GHSA-grqq-hcc7-crmr.json b/advisories/unreviewed/2024/10/GHSA-grqq-hcc7-crmr/GHSA-grqq-hcc7-crmr.json index f6029e785df..206de6d6de9 100644 --- a/advisories/unreviewed/2024/10/GHSA-grqq-hcc7-crmr/GHSA-grqq-hcc7-crmr.json +++ b/advisories/unreviewed/2024/10/GHSA-grqq-hcc7-crmr/GHSA-grqq-hcc7-crmr.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-grqq-hcc7-crmr", - "modified": "2025-02-10T21:31:33Z", + "modified": "2025-04-26T00:30:23Z", "published": "2024-10-22T18:32:12Z", "aliases": [ "CVE-2024-9287" @@ -58,6 +58,10 @@ { "type": "WEB", "url": "https://mail.python.org/archives/list/security-announce@python.org/thread/RSPJ2B5JL22FG3TKUJ7D7DQ4N5JRRBZL" + }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20250425-0006" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/11/GHSA-mq5w-grf9-5rp9/GHSA-mq5w-grf9-5rp9.json b/advisories/unreviewed/2024/11/GHSA-mq5w-grf9-5rp9/GHSA-mq5w-grf9-5rp9.json index a9bc1592e51..613f61ff295 100644 --- a/advisories/unreviewed/2024/11/GHSA-mq5w-grf9-5rp9/GHSA-mq5w-grf9-5rp9.json +++ b/advisories/unreviewed/2024/11/GHSA-mq5w-grf9-5rp9/GHSA-mq5w-grf9-5rp9.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-mq5w-grf9-5rp9", - "modified": "2024-11-14T12:31:02Z", + "modified": "2025-04-26T00:30:23Z", "published": "2024-11-14T12:31:02Z", "aliases": [ "CVE-2024-3447" @@ -34,6 +34,10 @@ { "type": "WEB", "url": "https://patchew.org/QEMU/20240404085549.16987-1-philmd@linaro.org" + }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20250425-0005" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-pm93-pg55-r2jm/GHSA-pm93-pg55-r2jm.json b/advisories/unreviewed/2025/02/GHSA-pm93-pg55-r2jm/GHSA-pm93-pg55-r2jm.json index 3608388bf83..a87a19bf968 100644 --- a/advisories/unreviewed/2025/02/GHSA-pm93-pg55-r2jm/GHSA-pm93-pg55-r2jm.json +++ b/advisories/unreviewed/2025/02/GHSA-pm93-pg55-r2jm/GHSA-pm93-pg55-r2jm.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-pm93-pg55-r2jm", - "modified": "2025-02-11T09:30:33Z", + "modified": "2025-04-26T00:30:24Z", "published": "2025-02-11T09:30:33Z", "aliases": [ "CVE-2025-1181" @@ -23,6 +23,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-1181" }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20250425-0007" + }, { "type": "WEB", "url": "https://sourceware.org/bugzilla/attachment.cgi?id=15918" diff --git a/advisories/unreviewed/2025/04/GHSA-26mg-p594-q328/GHSA-26mg-p594-q328.json b/advisories/unreviewed/2025/04/GHSA-26mg-p594-q328/GHSA-26mg-p594-q328.json index 8f97a829795..200cb4eeb8b 100644 --- a/advisories/unreviewed/2025/04/GHSA-26mg-p594-q328/GHSA-26mg-p594-q328.json +++ b/advisories/unreviewed/2025/04/GHSA-26mg-p594-q328/GHSA-26mg-p594-q328.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-26mg-p594-q328", - "modified": "2025-04-10T03:31:32Z", + "modified": "2025-04-26T00:30:24Z", "published": "2025-04-10T03:31:32Z", "aliases": [ "CVE-2025-32728" @@ -31,6 +31,10 @@ "type": "WEB", "url": "https://lists.mindrot.org/pipermail/openssh-unix-dev/2025-April/041879.html" }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20250425-0002" + }, { "type": "WEB", "url": "https://www.openssh.com/txt/release-10.0" diff --git a/advisories/unreviewed/2025/04/GHSA-8343-fjcx-gwpw/GHSA-8343-fjcx-gwpw.json b/advisories/unreviewed/2025/04/GHSA-8343-fjcx-gwpw/GHSA-8343-fjcx-gwpw.json index 8236fd7fddf..bb454598220 100644 --- a/advisories/unreviewed/2025/04/GHSA-8343-fjcx-gwpw/GHSA-8343-fjcx-gwpw.json +++ b/advisories/unreviewed/2025/04/GHSA-8343-fjcx-gwpw/GHSA-8343-fjcx-gwpw.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-8343-fjcx-gwpw", - "modified": "2025-04-25T21:31:33Z", + "modified": "2025-04-26T00:30:24Z", "published": "2025-04-25T21:31:33Z", "aliases": [ "CVE-2025-32983" ], "details": "NETSCOUT nGeniusONE before 6.4.0 b2350 allows Technical Information Disclosure via a Stack Trace.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-200" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-04-25T21:15:39Z" diff --git a/advisories/unreviewed/2025/04/GHSA-pp5v-6vv5-vc6c/GHSA-pp5v-6vv5-vc6c.json b/advisories/unreviewed/2025/04/GHSA-pp5v-6vv5-vc6c/GHSA-pp5v-6vv5-vc6c.json index f3f984a5de7..6693632e9fe 100644 --- a/advisories/unreviewed/2025/04/GHSA-pp5v-6vv5-vc6c/GHSA-pp5v-6vv5-vc6c.json +++ b/advisories/unreviewed/2025/04/GHSA-pp5v-6vv5-vc6c/GHSA-pp5v-6vv5-vc6c.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-pp5v-6vv5-vc6c", - "modified": "2025-04-25T21:31:33Z", + "modified": "2025-04-26T00:30:24Z", "published": "2025-04-25T21:31:33Z", "aliases": [ "CVE-2025-32984" ], "details": "NETSCOUT nGeniusONE before 6.4.0 b2350 allows Stored Cross-Site Scripting (XSS) via a certain POST parameter.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-04-25T21:15:39Z"