diff --git a/advisories/github-reviewed/2022/05/GHSA-2pqc-gv8q-pvqv/GHSA-2pqc-gv8q-pvqv.json b/advisories/github-reviewed/2022/05/GHSA-2pqc-gv8q-pvqv/GHSA-2pqc-gv8q-pvqv.json index 10cc278be1d..2ad1ceb6451 100644 --- a/advisories/github-reviewed/2022/05/GHSA-2pqc-gv8q-pvqv/GHSA-2pqc-gv8q-pvqv.json +++ b/advisories/github-reviewed/2022/05/GHSA-2pqc-gv8q-pvqv/GHSA-2pqc-gv8q-pvqv.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-2pqc-gv8q-pvqv", - "modified": "2023-08-03T19:53:31Z", + "modified": "2024-09-16T14:42:41Z", "published": "2022-05-17T01:57:52Z", "aliases": [ "CVE-2015-5081" @@ -12,6 +12,10 @@ { "type": "CVSS_V3", "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N" } ], "affected": [ @@ -44,7 +48,7 @@ "type": "ECOSYSTEM", "events": [ { - "introduced": "3.1.0" + "introduced": "3.1.0b1" }, { "fixed": "3.1.1" @@ -59,10 +63,18 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-5081" }, + { + "type": "WEB", + "url": "https://github.com/divio/django-cms/commit/f77cbc607d6e2a62e63287d37ad320109a2cc78a" + }, { "type": "WEB", "url": "https://github.com/django-cms/django-cms/commit/f77cbc607d6e2a62e63287d37ad320109a2cc78a" }, + { + "type": "WEB", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/django-cms/PYSEC-2017-11.yaml" + }, { "type": "WEB", "url": "https://www.django-cms.org/en/blog/2015/06/27/311-3014-release" diff --git a/advisories/unreviewed/2023/07/GHSA-2m35-m4g6-x835/GHSA-2m35-m4g6-x835.json b/advisories/unreviewed/2023/07/GHSA-2m35-m4g6-x835/GHSA-2m35-m4g6-x835.json index e40d917c070..25ebaab18d9 100644 --- a/advisories/unreviewed/2023/07/GHSA-2m35-m4g6-x835/GHSA-2m35-m4g6-x835.json +++ b/advisories/unreviewed/2023/07/GHSA-2m35-m4g6-x835/GHSA-2m35-m4g6-x835.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-2m35-m4g6-x835", - "modified": "2024-04-04T06:21:09Z", + "modified": "2024-09-16T14:37:20Z", "published": "2023-07-25T18:30:32Z", "aliases": [ "CVE-2023-3773" diff --git a/advisories/unreviewed/2023/07/GHSA-86p4-vhr6-2vv3/GHSA-86p4-vhr6-2vv3.json b/advisories/unreviewed/2023/07/GHSA-86p4-vhr6-2vv3/GHSA-86p4-vhr6-2vv3.json index 3982c6188c1..0262ea39ae5 100644 --- a/advisories/unreviewed/2023/07/GHSA-86p4-vhr6-2vv3/GHSA-86p4-vhr6-2vv3.json +++ b/advisories/unreviewed/2023/07/GHSA-86p4-vhr6-2vv3/GHSA-86p4-vhr6-2vv3.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-86p4-vhr6-2vv3", - "modified": "2023-11-14T21:30:49Z", + "modified": "2024-09-16T14:37:20Z", "published": "2023-07-20T18:33:43Z", "aliases": [ "CVE-2023-34967" diff --git a/advisories/unreviewed/2023/07/GHSA-cfhp-p6xr-24g5/GHSA-cfhp-p6xr-24g5.json b/advisories/unreviewed/2023/07/GHSA-cfhp-p6xr-24g5/GHSA-cfhp-p6xr-24g5.json index 90e0098a556..e073c38f62c 100644 --- a/advisories/unreviewed/2023/07/GHSA-cfhp-p6xr-24g5/GHSA-cfhp-p6xr-24g5.json +++ b/advisories/unreviewed/2023/07/GHSA-cfhp-p6xr-24g5/GHSA-cfhp-p6xr-24g5.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-cfhp-p6xr-24g5", - "modified": "2023-11-14T21:30:49Z", + "modified": "2024-09-16T14:37:20Z", "published": "2023-07-20T18:33:43Z", "aliases": [ "CVE-2023-34968" diff --git a/advisories/unreviewed/2023/08/GHSA-pcv9-72q8-27vc/GHSA-pcv9-72q8-27vc.json b/advisories/unreviewed/2023/08/GHSA-pcv9-72q8-27vc/GHSA-pcv9-72q8-27vc.json index 4200fc71e99..e94106b2946 100644 --- a/advisories/unreviewed/2023/08/GHSA-pcv9-72q8-27vc/GHSA-pcv9-72q8-27vc.json +++ b/advisories/unreviewed/2023/08/GHSA-pcv9-72q8-27vc/GHSA-pcv9-72q8-27vc.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-pcv9-72q8-27vc", - "modified": "2024-08-26T18:33:31Z", + "modified": "2024-09-16T14:37:21Z", "published": "2023-08-07T15:30:27Z", "aliases": [ "CVE-2023-4147" diff --git a/advisories/unreviewed/2023/08/GHSA-wm25-c777-f2h3/GHSA-wm25-c777-f2h3.json b/advisories/unreviewed/2023/08/GHSA-wm25-c777-f2h3/GHSA-wm25-c777-f2h3.json index 8e559bac6cd..dfcebf9a5b4 100644 --- a/advisories/unreviewed/2023/08/GHSA-wm25-c777-f2h3/GHSA-wm25-c777-f2h3.json +++ b/advisories/unreviewed/2023/08/GHSA-wm25-c777-f2h3/GHSA-wm25-c777-f2h3.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-wm25-c777-f2h3", - "modified": "2023-11-02T03:30:25Z", + "modified": "2024-09-16T14:37:21Z", "published": "2023-08-09T15:30:15Z", "aliases": [ "CVE-2023-4273" @@ -21,6 +21,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-4273" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2023:6583" + }, { "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2023-4273" @@ -60,6 +64,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-121", "CWE-787" ], "severity": "MODERATE", diff --git a/advisories/unreviewed/2023/08/GHSA-wp8h-m67c-cxpw/GHSA-wp8h-m67c-cxpw.json b/advisories/unreviewed/2023/08/GHSA-wp8h-m67c-cxpw/GHSA-wp8h-m67c-cxpw.json index 8383ea9f17c..312ee5645bf 100644 --- a/advisories/unreviewed/2023/08/GHSA-wp8h-m67c-cxpw/GHSA-wp8h-m67c-cxpw.json +++ b/advisories/unreviewed/2023/08/GHSA-wp8h-m67c-cxpw/GHSA-wp8h-m67c-cxpw.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-wp8h-m67c-cxpw", - "modified": "2023-11-09T21:30:34Z", + "modified": "2024-09-16T14:37:21Z", "published": "2023-08-23T12:30:28Z", "aliases": [ "CVE-2023-3899" diff --git a/advisories/unreviewed/2023/09/GHSA-5f52-v49r-796w/GHSA-5f52-v49r-796w.json b/advisories/unreviewed/2023/09/GHSA-5f52-v49r-796w/GHSA-5f52-v49r-796w.json index 4ebf05fc01f..839e80ae537 100644 --- a/advisories/unreviewed/2023/09/GHSA-5f52-v49r-796w/GHSA-5f52-v49r-796w.json +++ b/advisories/unreviewed/2023/09/GHSA-5f52-v49r-796w/GHSA-5f52-v49r-796w.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-5f52-v49r-796w", - "modified": "2023-11-21T18:30:25Z", + "modified": "2024-09-16T14:37:21Z", "published": "2023-09-18T18:30:28Z", "aliases": [ "CVE-2023-4806" diff --git a/advisories/unreviewed/2023/09/GHSA-hmf7-f8gf-8f4p/GHSA-hmf7-f8gf-8f4p.json b/advisories/unreviewed/2023/09/GHSA-hmf7-f8gf-8f4p/GHSA-hmf7-f8gf-8f4p.json index 9d26927fa35..d02c7e598e5 100644 --- a/advisories/unreviewed/2023/09/GHSA-hmf7-f8gf-8f4p/GHSA-hmf7-f8gf-8f4p.json +++ b/advisories/unreviewed/2023/09/GHSA-hmf7-f8gf-8f4p/GHSA-hmf7-f8gf-8f4p.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-hmf7-f8gf-8f4p", - "modified": "2023-11-16T18:30:23Z", + "modified": "2024-09-16T14:37:21Z", "published": "2023-09-18T18:30:28Z", "aliases": [ "CVE-2023-4527" diff --git a/advisories/unreviewed/2023/09/GHSA-qx6j-g797-jg9r/GHSA-qx6j-g797-jg9r.json b/advisories/unreviewed/2023/09/GHSA-qx6j-g797-jg9r/GHSA-qx6j-g797-jg9r.json index 1b4a4d2845f..575d2966974 100644 --- a/advisories/unreviewed/2023/09/GHSA-qx6j-g797-jg9r/GHSA-qx6j-g797-jg9r.json +++ b/advisories/unreviewed/2023/09/GHSA-qx6j-g797-jg9r/GHSA-qx6j-g797-jg9r.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-qx6j-g797-jg9r", - "modified": "2023-11-10T18:30:18Z", + "modified": "2024-09-16T14:37:21Z", "published": "2023-09-13T00:30:18Z", "aliases": [ "CVE-2023-4813" diff --git a/advisories/unreviewed/2023/12/GHSA-3f9w-7983-qcmq/GHSA-3f9w-7983-qcmq.json b/advisories/unreviewed/2023/12/GHSA-3f9w-7983-qcmq/GHSA-3f9w-7983-qcmq.json index 5b388b0b4e3..15fa0f3ecfe 100644 --- a/advisories/unreviewed/2023/12/GHSA-3f9w-7983-qcmq/GHSA-3f9w-7983-qcmq.json +++ b/advisories/unreviewed/2023/12/GHSA-3f9w-7983-qcmq/GHSA-3f9w-7983-qcmq.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-3f9w-7983-qcmq", - "modified": "2023-12-10T18:30:18Z", + "modified": "2024-09-16T14:37:22Z", "published": "2023-12-10T18:30:18Z", "aliases": [ "CVE-2023-5868" diff --git a/advisories/unreviewed/2023/12/GHSA-488m-w9fp-5mm2/GHSA-488m-w9fp-5mm2.json b/advisories/unreviewed/2023/12/GHSA-488m-w9fp-5mm2/GHSA-488m-w9fp-5mm2.json index 4653f227856..d2f4aa2c9f3 100644 --- a/advisories/unreviewed/2023/12/GHSA-488m-w9fp-5mm2/GHSA-488m-w9fp-5mm2.json +++ b/advisories/unreviewed/2023/12/GHSA-488m-w9fp-5mm2/GHSA-488m-w9fp-5mm2.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-488m-w9fp-5mm2", - "modified": "2023-12-28T21:30:37Z", + "modified": "2024-09-16T14:37:22Z", "published": "2023-12-28T21:30:37Z", "aliases": [ "CVE-2023-5236" diff --git a/advisories/unreviewed/2023/12/GHSA-5gp7-j4r7-g66f/GHSA-5gp7-j4r7-g66f.json b/advisories/unreviewed/2023/12/GHSA-5gp7-j4r7-g66f/GHSA-5gp7-j4r7-g66f.json index 848136f25e7..0e8ed929637 100644 --- a/advisories/unreviewed/2023/12/GHSA-5gp7-j4r7-g66f/GHSA-5gp7-j4r7-g66f.json +++ b/advisories/unreviewed/2023/12/GHSA-5gp7-j4r7-g66f/GHSA-5gp7-j4r7-g66f.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-5gp7-j4r7-g66f", - "modified": "2023-12-10T18:30:18Z", + "modified": "2024-09-16T14:37:22Z", "published": "2023-12-10T18:30:18Z", "aliases": [ "CVE-2023-5870" diff --git a/advisories/unreviewed/2023/12/GHSA-9625-p7pg-3cxg/GHSA-9625-p7pg-3cxg.json b/advisories/unreviewed/2023/12/GHSA-9625-p7pg-3cxg/GHSA-9625-p7pg-3cxg.json index 7a5fb48d36f..5fd774ae76f 100644 --- a/advisories/unreviewed/2023/12/GHSA-9625-p7pg-3cxg/GHSA-9625-p7pg-3cxg.json +++ b/advisories/unreviewed/2023/12/GHSA-9625-p7pg-3cxg/GHSA-9625-p7pg-3cxg.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-9625-p7pg-3cxg", - "modified": "2023-12-10T18:30:18Z", + "modified": "2024-09-16T14:37:22Z", "published": "2023-12-10T18:30:18Z", "aliases": [ "CVE-2023-5869" diff --git a/advisories/unreviewed/2023/12/GHSA-fhr7-8jx4-r9cp/GHSA-fhr7-8jx4-r9cp.json b/advisories/unreviewed/2023/12/GHSA-fhr7-8jx4-r9cp/GHSA-fhr7-8jx4-r9cp.json index 876bd8dfeca..80c7bcd7ee8 100644 --- a/advisories/unreviewed/2023/12/GHSA-fhr7-8jx4-r9cp/GHSA-fhr7-8jx4-r9cp.json +++ b/advisories/unreviewed/2023/12/GHSA-fhr7-8jx4-r9cp/GHSA-fhr7-8jx4-r9cp.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-fhr7-8jx4-r9cp", - "modified": "2023-12-30T00:30:23Z", + "modified": "2024-09-16T14:37:22Z", "published": "2023-12-30T00:30:23Z", "aliases": [ "CVE-2023-3628" diff --git a/advisories/unreviewed/2023/12/GHSA-r4w2-hjmr-36m7/GHSA-r4w2-hjmr-36m7.json b/advisories/unreviewed/2023/12/GHSA-r4w2-hjmr-36m7/GHSA-r4w2-hjmr-36m7.json index ce76b1f3825..730c90b34f3 100644 --- a/advisories/unreviewed/2023/12/GHSA-r4w2-hjmr-36m7/GHSA-r4w2-hjmr-36m7.json +++ b/advisories/unreviewed/2023/12/GHSA-r4w2-hjmr-36m7/GHSA-r4w2-hjmr-36m7.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-r4w2-hjmr-36m7", - "modified": "2023-12-30T00:30:23Z", + "modified": "2024-09-16T14:37:22Z", "published": "2023-12-30T00:30:23Z", "aliases": [ "CVE-2023-3629" diff --git a/advisories/unreviewed/2024/01/GHSA-qmff-49xc-7rf6/GHSA-qmff-49xc-7rf6.json b/advisories/unreviewed/2024/01/GHSA-qmff-49xc-7rf6/GHSA-qmff-49xc-7rf6.json index a7e8ece3173..56f8e966757 100644 --- a/advisories/unreviewed/2024/01/GHSA-qmff-49xc-7rf6/GHSA-qmff-49xc-7rf6.json +++ b/advisories/unreviewed/2024/01/GHSA-qmff-49xc-7rf6/GHSA-qmff-49xc-7rf6.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-qmff-49xc-7rf6", - "modified": "2024-07-08T18:31:15Z", + "modified": "2024-09-16T14:37:23Z", "published": "2024-01-17T18:31:36Z", "aliases": [ "CVE-2024-0646" diff --git a/advisories/unreviewed/2024/04/GHSA-pcqx-8h4p-6r69/GHSA-pcqx-8h4p-6r69.json b/advisories/unreviewed/2024/04/GHSA-pcqx-8h4p-6r69/GHSA-pcqx-8h4p-6r69.json index 4eeec4369ac..2b85f702b7e 100644 --- a/advisories/unreviewed/2024/04/GHSA-pcqx-8h4p-6r69/GHSA-pcqx-8h4p-6r69.json +++ b/advisories/unreviewed/2024/04/GHSA-pcqx-8h4p-6r69/GHSA-pcqx-8h4p-6r69.json @@ -28,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-200" + "CWE-200", + "CWE-89" ], "severity": "CRITICAL", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/05/GHSA-4433-jwm9-48r5/GHSA-4433-jwm9-48r5.json b/advisories/unreviewed/2024/05/GHSA-4433-jwm9-48r5/GHSA-4433-jwm9-48r5.json index 97ed2412c54..0b0db617e05 100644 --- a/advisories/unreviewed/2024/05/GHSA-4433-jwm9-48r5/GHSA-4433-jwm9-48r5.json +++ b/advisories/unreviewed/2024/05/GHSA-4433-jwm9-48r5/GHSA-4433-jwm9-48r5.json @@ -40,7 +40,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-22" + "CWE-22", + "CWE-843" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/05/GHSA-xp6h-p4cj-42w8/GHSA-xp6h-p4cj-42w8.json b/advisories/unreviewed/2024/05/GHSA-xp6h-p4cj-42w8/GHSA-xp6h-p4cj-42w8.json index 84d57730062..c2bff0616ed 100644 --- a/advisories/unreviewed/2024/05/GHSA-xp6h-p4cj-42w8/GHSA-xp6h-p4cj-42w8.json +++ b/advisories/unreviewed/2024/05/GHSA-xp6h-p4cj-42w8/GHSA-xp6h-p4cj-42w8.json @@ -32,7 +32,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-79" + "CWE-79", + "CWE-90" ], "severity": "CRITICAL", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/06/GHSA-2774-v47p-f5v6/GHSA-2774-v47p-f5v6.json b/advisories/unreviewed/2024/06/GHSA-2774-v47p-f5v6/GHSA-2774-v47p-f5v6.json index 2d5069c62ac..c4d82251423 100644 --- a/advisories/unreviewed/2024/06/GHSA-2774-v47p-f5v6/GHSA-2774-v47p-f5v6.json +++ b/advisories/unreviewed/2024/06/GHSA-2774-v47p-f5v6/GHSA-2774-v47p-f5v6.json @@ -1,14 +1,21 @@ { "schema_version": "1.4.0", "id": "GHSA-2774-v47p-f5v6", - "modified": "2024-06-25T18:31:21Z", + "modified": "2024-09-16T14:37:24Z", "published": "2024-06-25T18:31:21Z", "aliases": [ "CVE-2024-5988" ], "details": "Due to an improper input validation, an unauthenticated threat actor can send a malicious message to invoke a local or remote executable and cause a remote code execution condition on the Rockwell Automation ThinManager® ThinServer™.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } ], "affected": [ @@ -27,7 +34,7 @@ "cwe_ids": [ "CWE-20" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-25T16:15:24Z" diff --git a/advisories/unreviewed/2024/06/GHSA-c8f7-vvrw-73c7/GHSA-c8f7-vvrw-73c7.json b/advisories/unreviewed/2024/06/GHSA-c8f7-vvrw-73c7/GHSA-c8f7-vvrw-73c7.json index bfd7d09b22b..254d8e77483 100644 --- a/advisories/unreviewed/2024/06/GHSA-c8f7-vvrw-73c7/GHSA-c8f7-vvrw-73c7.json +++ b/advisories/unreviewed/2024/06/GHSA-c8f7-vvrw-73c7/GHSA-c8f7-vvrw-73c7.json @@ -32,7 +32,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-200" + "CWE-200", + "CWE-22" ], "severity": "CRITICAL", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/06/GHSA-f935-6jhc-wv29/GHSA-f935-6jhc-wv29.json b/advisories/unreviewed/2024/06/GHSA-f935-6jhc-wv29/GHSA-f935-6jhc-wv29.json index 5cc6365417d..fb189532921 100644 --- a/advisories/unreviewed/2024/06/GHSA-f935-6jhc-wv29/GHSA-f935-6jhc-wv29.json +++ b/advisories/unreviewed/2024/06/GHSA-f935-6jhc-wv29/GHSA-f935-6jhc-wv29.json @@ -28,6 +28,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-352", "CWE-79" ], "severity": "HIGH", diff --git a/advisories/unreviewed/2024/06/GHSA-gxqj-2fg2-r9jh/GHSA-gxqj-2fg2-r9jh.json b/advisories/unreviewed/2024/06/GHSA-gxqj-2fg2-r9jh/GHSA-gxqj-2fg2-r9jh.json index 723c74c941c..3cfbd84fe3b 100644 --- a/advisories/unreviewed/2024/06/GHSA-gxqj-2fg2-r9jh/GHSA-gxqj-2fg2-r9jh.json +++ b/advisories/unreviewed/2024/06/GHSA-gxqj-2fg2-r9jh/GHSA-gxqj-2fg2-r9jh.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-gxqj-2fg2-r9jh", - "modified": "2024-06-18T00:31:28Z", + "modified": "2024-09-16T14:37:24Z", "published": "2024-06-18T00:31:28Z", "aliases": [ "CVE-2024-6083" @@ -11,6 +11,10 @@ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], "affected": [ diff --git a/advisories/unreviewed/2024/06/GHSA-hfr5-33pv-p28w/GHSA-hfr5-33pv-p28w.json b/advisories/unreviewed/2024/06/GHSA-hfr5-33pv-p28w/GHSA-hfr5-33pv-p28w.json index 543fefa77d9..49cc6e01b16 100644 --- a/advisories/unreviewed/2024/06/GHSA-hfr5-33pv-p28w/GHSA-hfr5-33pv-p28w.json +++ b/advisories/unreviewed/2024/06/GHSA-hfr5-33pv-p28w/GHSA-hfr5-33pv-p28w.json @@ -1,14 +1,21 @@ { "schema_version": "1.4.0", "id": "GHSA-hfr5-33pv-p28w", - "modified": "2024-06-25T18:31:22Z", + "modified": "2024-09-16T14:37:24Z", "published": "2024-06-25T18:31:22Z", "aliases": [ "CVE-2024-5990" ], "details": "Due to an improper input validation, an unauthenticated threat actor can send a malicious message to a monitor thread within Rockwell Automation ThinServer™ and cause a denial-of-service condition on the affected device.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } ], "affected": [ @@ -27,7 +34,7 @@ "cwe_ids": [ "CWE-20" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-25T16:15:25Z" diff --git a/advisories/unreviewed/2024/06/GHSA-mg3w-329f-wm8c/GHSA-mg3w-329f-wm8c.json b/advisories/unreviewed/2024/06/GHSA-mg3w-329f-wm8c/GHSA-mg3w-329f-wm8c.json index 95c4e21e124..3b737cc2461 100644 --- a/advisories/unreviewed/2024/06/GHSA-mg3w-329f-wm8c/GHSA-mg3w-329f-wm8c.json +++ b/advisories/unreviewed/2024/06/GHSA-mg3w-329f-wm8c/GHSA-mg3w-329f-wm8c.json @@ -1,14 +1,21 @@ { "schema_version": "1.4.0", "id": "GHSA-mg3w-329f-wm8c", - "modified": "2024-06-25T18:31:21Z", + "modified": "2024-09-16T14:37:24Z", "published": "2024-06-25T18:31:21Z", "aliases": [ "CVE-2024-5989" ], "details": "Due to an improper input validation, an unauthenticated threat actor can send a malicious message to invoke SQL injection into the program and cause a remote code execution condition on the Rockwell Automation ThinManager® ThinServer™.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } ], "affected": [ @@ -27,7 +34,7 @@ "cwe_ids": [ "CWE-20" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-25T16:15:25Z" diff --git a/advisories/unreviewed/2024/06/GHSA-r24r-m7ff-ghq2/GHSA-r24r-m7ff-ghq2.json b/advisories/unreviewed/2024/06/GHSA-r24r-m7ff-ghq2/GHSA-r24r-m7ff-ghq2.json index be193cf5359..46a7a2246fe 100644 --- a/advisories/unreviewed/2024/06/GHSA-r24r-m7ff-ghq2/GHSA-r24r-m7ff-ghq2.json +++ b/advisories/unreviewed/2024/06/GHSA-r24r-m7ff-ghq2/GHSA-r24r-m7ff-ghq2.json @@ -32,6 +32,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-200", "CWE-22", "CWE-400" ], diff --git a/advisories/unreviewed/2024/07/GHSA-ffrr-6f6g-mc3r/GHSA-ffrr-6f6g-mc3r.json b/advisories/unreviewed/2024/07/GHSA-ffrr-6f6g-mc3r/GHSA-ffrr-6f6g-mc3r.json index cfa17d53526..cfec3cffef3 100644 --- a/advisories/unreviewed/2024/07/GHSA-ffrr-6f6g-mc3r/GHSA-ffrr-6f6g-mc3r.json +++ b/advisories/unreviewed/2024/07/GHSA-ffrr-6f6g-mc3r/GHSA-ffrr-6f6g-mc3r.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-ffrr-6f6g-mc3r", - "modified": "2024-07-30T09:32:02Z", + "modified": "2024-09-16T14:37:24Z", "published": "2024-07-30T09:32:02Z", "aliases": [ "CVE-2024-42144" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nthermal/drivers/mediatek/lvts_thermal: Check NULL ptr on lvts_data\n\nVerify that lvts_data is not NULL before using it.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-30T08:15:06Z" diff --git a/advisories/unreviewed/2024/07/GHSA-hcp4-6c7v-w8f2/GHSA-hcp4-6c7v-w8f2.json b/advisories/unreviewed/2024/07/GHSA-hcp4-6c7v-w8f2/GHSA-hcp4-6c7v-w8f2.json index 13df11c0bd8..38f20ca4749 100644 --- a/advisories/unreviewed/2024/07/GHSA-hcp4-6c7v-w8f2/GHSA-hcp4-6c7v-w8f2.json +++ b/advisories/unreviewed/2024/07/GHSA-hcp4-6c7v-w8f2/GHSA-hcp4-6c7v-w8f2.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-hcp4-6c7v-w8f2", - "modified": "2024-07-30T09:32:02Z", + "modified": "2024-09-16T14:37:24Z", "published": "2024-07-30T09:32:02Z", "aliases": [ "CVE-2024-42136" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ncdrom: rearrange last_media_change check to avoid unintentional overflow\n\nWhen running syzkaller with the newly reintroduced signed integer wrap\nsanitizer we encounter this splat:\n\n[ 366.015950] UBSAN: signed-integer-overflow in ../drivers/cdrom/cdrom.c:2361:33\n[ 366.021089] -9223372036854775808 - 346321 cannot be represented in type '__s64' (aka 'long long')\n[ 366.025894] program syz-executor.4 is using a deprecated SCSI ioctl, please convert it to SG_IO\n[ 366.027502] CPU: 5 PID: 28472 Comm: syz-executor.7 Not tainted 6.8.0-rc2-00035-gb3ef86b5a957 #1\n[ 366.027512] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS 1.16.3-debian-1.16.3-2 04/01/2014\n[ 366.027518] Call Trace:\n[ 366.027523] \n[ 366.027533] dump_stack_lvl+0x93/0xd0\n[ 366.027899] handle_overflow+0x171/0x1b0\n[ 366.038787] ata1.00: invalid multi_count 32 ignored\n[ 366.043924] cdrom_ioctl+0x2c3f/0x2d10\n[ 366.063932] ? __pm_runtime_resume+0xe6/0x130\n[ 366.071923] sr_block_ioctl+0x15d/0x1d0\n[ 366.074624] ? __pfx_sr_block_ioctl+0x10/0x10\n[ 366.077642] blkdev_ioctl+0x419/0x500\n[ 366.080231] ? __pfx_blkdev_ioctl+0x10/0x10\n...\n\nHistorically, the signed integer overflow sanitizer did not work in the\nkernel due to its interaction with `-fwrapv` but this has since been\nchanged [1] in the newest version of Clang. It was re-enabled in the\nkernel with Commit 557f8c582a9ba8ab (\"ubsan: Reintroduce signed overflow\nsanitizer\").\n\nLet's rearrange the check to not perform any arithmetic, thus not\ntripping the sanitizer.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-190" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-30T08:15:05Z" diff --git a/advisories/unreviewed/2024/07/GHSA-hq79-5p4q-xv2w/GHSA-hq79-5p4q-xv2w.json b/advisories/unreviewed/2024/07/GHSA-hq79-5p4q-xv2w/GHSA-hq79-5p4q-xv2w.json index bbce6ca8367..e4020a6787e 100644 --- a/advisories/unreviewed/2024/07/GHSA-hq79-5p4q-xv2w/GHSA-hq79-5p4q-xv2w.json +++ b/advisories/unreviewed/2024/07/GHSA-hq79-5p4q-xv2w/GHSA-hq79-5p4q-xv2w.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-hq79-5p4q-xv2w", - "modified": "2024-07-30T09:31:52Z", + "modified": "2024-09-16T14:37:24Z", "published": "2024-07-30T09:31:52Z", "aliases": [ "CVE-2024-42122" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amd/display: Add NULL pointer check for kzalloc\n\n[Why & How]\nCheck return pointer of kzalloc before using it.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-30T08:15:04Z" diff --git a/advisories/unreviewed/2024/07/GHSA-vc72-g5gr-jp4w/GHSA-vc72-g5gr-jp4w.json b/advisories/unreviewed/2024/07/GHSA-vc72-g5gr-jp4w/GHSA-vc72-g5gr-jp4w.json index 215589b45d1..86ba3aaa076 100644 --- a/advisories/unreviewed/2024/07/GHSA-vc72-g5gr-jp4w/GHSA-vc72-g5gr-jp4w.json +++ b/advisories/unreviewed/2024/07/GHSA-vc72-g5gr-jp4w/GHSA-vc72-g5gr-jp4w.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-vc72-g5gr-jp4w", - "modified": "2024-08-19T06:30:52Z", + "modified": "2024-09-16T14:37:24Z", "published": "2024-07-30T09:32:01Z", "aliases": [ "CVE-2024-42131" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nmm: avoid overflows in dirty throttling logic\n\nThe dirty throttling logic is interspersed with assumptions that dirty\nlimits in PAGE_SIZE units fit into 32-bit (so that various multiplications\nfit into 64-bits). If limits end up being larger, we will hit overflows,\npossible divisions by 0 etc. Fix these problems by never allowing so\nlarge dirty limits as they have dubious practical value anyway. For\ndirty_bytes / dirty_background_bytes interfaces we can just refuse to set\nso large limits. For dirty_ratio / dirty_background_ratio it isn't so\nsimple as the dirty limit is computed from the amount of available memory\nwhich can change due to memory hotplug etc. So when converting dirty\nlimits from ratios to numbers of pages, we just don't allow the result to\nexceed UINT_MAX.\n\nThis is root-only triggerable problem which occurs when the operator\nsets dirty limits to >16 TB.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-190" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-30T08:15:05Z" diff --git a/advisories/unreviewed/2024/07/GHSA-vmr8-6pr2-r534/GHSA-vmr8-6pr2-r534.json b/advisories/unreviewed/2024/07/GHSA-vmr8-6pr2-r534/GHSA-vmr8-6pr2-r534.json index 14f593b1833..5cd7e0acab3 100644 --- a/advisories/unreviewed/2024/07/GHSA-vmr8-6pr2-r534/GHSA-vmr8-6pr2-r534.json +++ b/advisories/unreviewed/2024/07/GHSA-vmr8-6pr2-r534/GHSA-vmr8-6pr2-r534.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-vmr8-6pr2-r534", - "modified": "2024-07-30T09:32:02Z", + "modified": "2024-09-16T14:37:24Z", "published": "2024-07-30T09:32:02Z", "aliases": [ "CVE-2024-42137" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: qca: Fix BT enable failure again for QCA6390 after warm reboot\n\nCommit 272970be3dab (\"Bluetooth: hci_qca: Fix driver shutdown on closed\nserdev\") will cause below regression issue:\n\nBT can't be enabled after below steps:\ncold boot -> enable BT -> disable BT -> warm reboot -> BT enable failure\nif property enable-gpios is not configured within DT|ACPI for QCA6390.\n\nThe commit is to fix a use-after-free issue within qca_serdev_shutdown()\nby adding condition to avoid the serdev is flushed or wrote after closed\nbut also introduces this regression issue regarding above steps since the\nVSC is not sent to reset controller during warm reboot.\n\nFixed by sending the VSC to reset controller within qca_serdev_shutdown()\nonce BT was ever enabled, and the use-after-free issue is also fixed by\nthis change since the serdev is still opened before it is flushed or wrote.\n\nVerified by the reported machine Dell XPS 13 9310 laptop over below two\nkernel commits:\ncommit e00fc2700a3f (\"Bluetooth: btusb: Fix triggering coredump\nimplementation for QCA\") of bluetooth-next tree.\ncommit b23d98d46d28 (\"Bluetooth: btusb: Fix triggering coredump\nimplementation for QCA\") of linus mainline tree.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -47,7 +50,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-30T08:15:05Z" diff --git a/advisories/unreviewed/2024/08/GHSA-c3hg-qcg2-fhv2/GHSA-c3hg-qcg2-fhv2.json b/advisories/unreviewed/2024/08/GHSA-c3hg-qcg2-fhv2/GHSA-c3hg-qcg2-fhv2.json index 32c15fc4bb8..1a599d7f27f 100644 --- a/advisories/unreviewed/2024/08/GHSA-c3hg-qcg2-fhv2/GHSA-c3hg-qcg2-fhv2.json +++ b/advisories/unreviewed/2024/08/GHSA-c3hg-qcg2-fhv2/GHSA-c3hg-qcg2-fhv2.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-c3hg-qcg2-fhv2", - "modified": "2024-08-12T15:30:50Z", + "modified": "2024-09-16T14:37:24Z", "published": "2024-08-12T15:30:50Z", "aliases": [ "CVE-2024-40478" ], "details": "A Stored Cross Site Scripting (XSS) vulnerability was found in \"/admin/afeedback.php\" in Kashipara Online Exam System v1.0, which allows remote attackers to execute arbitrary code via \"rname\" and \"email\" parameter fields", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-12T13:38:28Z" diff --git a/advisories/unreviewed/2024/09/GHSA-263w-f6fg-v2x5/GHSA-263w-f6fg-v2x5.json b/advisories/unreviewed/2024/09/GHSA-263w-f6fg-v2x5/GHSA-263w-f6fg-v2x5.json index 0ab5bb43584..df876238373 100644 --- a/advisories/unreviewed/2024/09/GHSA-263w-f6fg-v2x5/GHSA-263w-f6fg-v2x5.json +++ b/advisories/unreviewed/2024/09/GHSA-263w-f6fg-v2x5/GHSA-263w-f6fg-v2x5.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-263w-f6fg-v2x5", - "modified": "2024-09-13T06:30:43Z", + "modified": "2024-09-16T14:37:26Z", "published": "2024-09-13T06:30:43Z", "aliases": [ "CVE-2024-46686" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nsmb/client: avoid dereferencing rdata=NULL in smb2_new_read_req()\n\nThis happens when called from SMB2_read() while using rdma\nand reaching the rdma_readwrite_threshold.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-13T06:15:13Z" diff --git a/advisories/unreviewed/2024/09/GHSA-32p2-3fx9-4m6x/GHSA-32p2-3fx9-4m6x.json b/advisories/unreviewed/2024/09/GHSA-32p2-3fx9-4m6x/GHSA-32p2-3fx9-4m6x.json new file mode 100644 index 00000000000..e8c433f9b31 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-32p2-3fx9-4m6x/GHSA-32p2-3fx9-4m6x.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-32p2-3fx9-4m6x", + "modified": "2024-09-16T14:37:27Z", + "published": "2024-09-16T14:37:27Z", + "aliases": [ + "CVE-2024-44060" + ], + "details": "Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Jennifer Hall Filmix allows Reflected XSS.This issue affects Filmix: from n/a through 1.1.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-44060" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/filmix/wordpress-filmix-theme-1-1-reflected-cross-site-scripting-xss-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-15T08:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-36p3-3fj3-g9p5/GHSA-36p3-3fj3-g9p5.json b/advisories/unreviewed/2024/09/GHSA-36p3-3fj3-g9p5/GHSA-36p3-3fj3-g9p5.json new file mode 100644 index 00000000000..16873d5b34d --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-36p3-3fj3-g9p5/GHSA-36p3-3fj3-g9p5.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-36p3-3fj3-g9p5", + "modified": "2024-09-16T14:37:28Z", + "published": "2024-09-16T14:37:28Z", + "aliases": [ + "CVE-2024-8776" + ], + "details": "SmartRobot from INTUMIT does not properly validate a specific page parameter, allowing unautheticated remote attackers to inject JavaScript code to the parameter for Reflected Cross-site Scripting attacks.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8776" + }, + { + "type": "WEB", + "url": "https://www.twcert.org.tw/en/cp-139-8070-d10bc-2.html" + }, + { + "type": "WEB", + "url": "https://www.twcert.org.tw/tw/cp-132-8069-73393-1.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-16T06:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-3f92-cwf9-rgvq/GHSA-3f92-cwf9-rgvq.json b/advisories/unreviewed/2024/09/GHSA-3f92-cwf9-rgvq/GHSA-3f92-cwf9-rgvq.json new file mode 100644 index 00000000000..b84607090b7 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-3f92-cwf9-rgvq/GHSA-3f92-cwf9-rgvq.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3f92-cwf9-rgvq", + "modified": "2024-09-16T14:37:26Z", + "published": "2024-09-16T14:37:26Z", + "aliases": [ + "CVE-2024-8246" + ], + "details": "The Post Form – Registration Form – Profile Form for User Profiles – Frontend Content Forms for User Submissions (UGC) plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 2.8.11. This is due to plugin not properly restricting what users have access to set the default role on registration forms. This makes it possible for authenticated attackers, with contributor-level access and above, to create a registration form with a custom role that allows them to register as administrators.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8246" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3149760/buddyforms/trunk/includes/admin/form-builder/meta-boxes/metabox-registration.php" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/40760f60-b81a-447b-a2c8-83c7666ce410?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-269" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-14T04:15:04Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-3xq2-w6j4-c99r/GHSA-3xq2-w6j4-c99r.json b/advisories/unreviewed/2024/09/GHSA-3xq2-w6j4-c99r/GHSA-3xq2-w6j4-c99r.json new file mode 100644 index 00000000000..a4f939d346d --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-3xq2-w6j4-c99r/GHSA-3xq2-w6j4-c99r.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3xq2-w6j4-c99r", + "modified": "2024-09-16T14:37:28Z", + "published": "2024-09-16T14:37:28Z", + "aliases": [ + "CVE-2024-22399" + ], + "details": "Deserialization of Untrusted Data vulnerability in Apache Seata. \n\nWhen developers disable authentication on the Seata-Server and do not use the Seata client SDK dependencies, they may construct uncontrolled serialized malicious requests by directly sending bytecode based on the Seata private protocol.\n\nThis issue affects Apache Seata: 2.0.0, from 1.0.0 through 1.8.0.\n\nUsers are recommended to upgrade to version 2.1.0/1.8.1, which fixes the issue.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-22399" + }, + { + "type": "WEB", + "url": "https://lists.apache.org/thread/91nzzlxyj4nmks85gbzwkkjtbmnmlkc4" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-502" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-16T12:15:02Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-46hr-3cq3-mcgp/GHSA-46hr-3cq3-mcgp.json b/advisories/unreviewed/2024/09/GHSA-46hr-3cq3-mcgp/GHSA-46hr-3cq3-mcgp.json new file mode 100644 index 00000000000..4c60140271f --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-46hr-3cq3-mcgp/GHSA-46hr-3cq3-mcgp.json @@ -0,0 +1,43 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-46hr-3cq3-mcgp", + "modified": "2024-09-16T14:37:28Z", + "published": "2024-09-16T14:37:28Z", + "aliases": [ + "CVE-2024-46943" + ], + "details": "An issue was discovered in OpenDaylight Authentication, Authorization and Accounting (AAA) through 0.19.3. A rogue controller can join a cluster to impersonate an offline peer, even if this rogue controller does not possess the complete cluster configuration information.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-46943" + }, + { + "type": "WEB", + "url": "https://docs.opendaylight.org/en/latest/release-notes/projects/aaa.html" + }, + { + "type": "WEB", + "url": "https://doi.org/10.48550/arXiv.2408.16940" + }, + { + "type": "WEB", + "url": "https://lf-opendaylight.atlassian.net/browse/AAA-285" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-15T23:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-499r-h8wp-rfvm/GHSA-499r-h8wp-rfvm.json b/advisories/unreviewed/2024/09/GHSA-499r-h8wp-rfvm/GHSA-499r-h8wp-rfvm.json index 9bd6822b49e..a6077edd8af 100644 --- a/advisories/unreviewed/2024/09/GHSA-499r-h8wp-rfvm/GHSA-499r-h8wp-rfvm.json +++ b/advisories/unreviewed/2024/09/GHSA-499r-h8wp-rfvm/GHSA-499r-h8wp-rfvm.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-499r-h8wp-rfvm", - "modified": "2024-09-09T09:30:45Z", + "modified": "2024-09-16T14:37:25Z", "published": "2024-09-09T09:30:45Z", "aliases": [ "CVE-2024-45203" ], "details": "Improper authorization in handler for custom URL scheme issue in \"@cosme\" App for Android versions prior 5.69.0 and \"@cosme\" App for iOS versions prior to 6.74.0 allows an attacker to lead a user to access an arbitrary website via the vulnerable App. As a result, the user may become a victim of a phishing attack.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-09T07:15:17Z" diff --git a/advisories/unreviewed/2024/09/GHSA-4jmq-3rrv-cmcc/GHSA-4jmq-3rrv-cmcc.json b/advisories/unreviewed/2024/09/GHSA-4jmq-3rrv-cmcc/GHSA-4jmq-3rrv-cmcc.json new file mode 100644 index 00000000000..1dcfd3579dc --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-4jmq-3rrv-cmcc/GHSA-4jmq-3rrv-cmcc.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4jmq-3rrv-cmcc", + "modified": "2024-09-16T14:37:27Z", + "published": "2024-09-16T14:37:27Z", + "aliases": [ + "CVE-2024-44062" + ], + "details": "Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Hiroaki Miyashita Custom Field Template allows Stored XSS.This issue affects Custom Field Template: from n/a through 2.6.5.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-44062" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/custom-field-template/wordpress-custom-field-template-plugin-2-6-5-cross-site-scripting-xss-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-15T08:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-4xg2-5xf7-v37m/GHSA-4xg2-5xf7-v37m.json b/advisories/unreviewed/2024/09/GHSA-4xg2-5xf7-v37m/GHSA-4xg2-5xf7-v37m.json new file mode 100644 index 00000000000..d3d328d9ad2 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-4xg2-5xf7-v37m/GHSA-4xg2-5xf7-v37m.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4xg2-5xf7-v37m", + "modified": "2024-09-16T14:37:27Z", + "published": "2024-09-16T14:37:27Z", + "aliases": [ + "CVE-2024-45455" + ], + "details": "Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in JoomUnited WP Meta SEO allows Stored XSS.This issue affects WP Meta SEO: from n/a through 4.5.13.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-45455" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/wp-meta-seo/wordpress-wp-meta-seo-plugin-4-5-13-cross-site-scripting-xss-vulnerability-2?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-15T08:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-5785-6rg8-vqjc/GHSA-5785-6rg8-vqjc.json b/advisories/unreviewed/2024/09/GHSA-5785-6rg8-vqjc/GHSA-5785-6rg8-vqjc.json index 022975b6067..b116cff7b96 100644 --- a/advisories/unreviewed/2024/09/GHSA-5785-6rg8-vqjc/GHSA-5785-6rg8-vqjc.json +++ b/advisories/unreviewed/2024/09/GHSA-5785-6rg8-vqjc/GHSA-5785-6rg8-vqjc.json @@ -29,6 +29,7 @@ "database_specific": { "cwe_ids": [ "CWE-121", + "CWE-125", "CWE-787" ], "severity": "MODERATE", diff --git a/advisories/unreviewed/2024/09/GHSA-58rh-53vh-8w68/GHSA-58rh-53vh-8w68.json b/advisories/unreviewed/2024/09/GHSA-58rh-53vh-8w68/GHSA-58rh-53vh-8w68.json index bf0e1343297..85a651c35f9 100644 --- a/advisories/unreviewed/2024/09/GHSA-58rh-53vh-8w68/GHSA-58rh-53vh-8w68.json +++ b/advisories/unreviewed/2024/09/GHSA-58rh-53vh-8w68/GHSA-58rh-53vh-8w68.json @@ -1,13 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-58rh-53vh-8w68", - "modified": "2024-09-06T18:31:35Z", + "modified": "2024-09-16T14:37:25Z", "published": "2024-09-06T18:31:35Z", "aliases": [ "CVE-2024-38640" ], "details": "A cross-site scripting (XSS) vulnerability has been reported to affect Download Station. If exploited, the vulnerability could allow authenticated users to inject malicious code via a network.\n\nWe have already fixed the vulnerability in the following version:\nDownload Station 5.8.6.283 ( 2024/06/21 ) and later", "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + }, { "type": "CVSS_V4", "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:H/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" diff --git a/advisories/unreviewed/2024/09/GHSA-5fx5-p3qx-6q26/GHSA-5fx5-p3qx-6q26.json b/advisories/unreviewed/2024/09/GHSA-5fx5-p3qx-6q26/GHSA-5fx5-p3qx-6q26.json new file mode 100644 index 00000000000..9b631fe8077 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-5fx5-p3qx-6q26/GHSA-5fx5-p3qx-6q26.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5fx5-p3qx-6q26", + "modified": "2024-09-16T14:37:28Z", + "published": "2024-09-16T14:37:28Z", + "aliases": [ + "CVE-2024-46938" + ], + "details": "An issue was discovered in Sitecore Experience Platform (XP), Experience Manager (XM), and Experience Commerce (XC) 8.0 Initial Release through 10.4 Initial Release. An unauthenticated attacker can read arbitrary files.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-46938" + }, + { + "type": "WEB", + "url": "https://support.sitecore.com/kb?id=kb_article_view&sysparm_article=KB1003408" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-15T22:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-66r2-xm28-74w9/GHSA-66r2-xm28-74w9.json b/advisories/unreviewed/2024/09/GHSA-66r2-xm28-74w9/GHSA-66r2-xm28-74w9.json new file mode 100644 index 00000000000..6ee792f4b7f --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-66r2-xm28-74w9/GHSA-66r2-xm28-74w9.json @@ -0,0 +1,54 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-66r2-xm28-74w9", + "modified": "2024-09-16T14:37:27Z", + "published": "2024-09-16T14:37:27Z", + "aliases": [ + "CVE-2024-8865" + ], + "details": "A vulnerability was found in composiohq composio up to 0.5.8 and classified as problematic. Affected by this issue is the function path of the file composio\\server\\api.py. The manipulation of the argument file leads to path traversal. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:A/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8865" + }, + { + "type": "WEB", + "url": "https://rumbling-slice-eb0.notion.site/There-is-an-arbitrary-file-read-vulnerability-at-api-download-in-composiohq-composio-f0ec1ec26a5f434a97bb1ffde435a35b?pvs=4" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.277502" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.277502" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.403206" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-22" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-15T01:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-678c-c78x-9mgf/GHSA-678c-c78x-9mgf.json b/advisories/unreviewed/2024/09/GHSA-678c-c78x-9mgf/GHSA-678c-c78x-9mgf.json new file mode 100644 index 00000000000..d899af67064 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-678c-c78x-9mgf/GHSA-678c-c78x-9mgf.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-678c-c78x-9mgf", + "modified": "2024-09-16T14:37:27Z", + "published": "2024-09-16T14:37:27Z", + "aliases": [ + "CVE-2024-44058" + ], + "details": "Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CryoutCreations Parabola allows Stored XSS.This issue affects Parabola: from n/a through 2.4.1.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-44058" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/parabola/wordpress-parabola-theme-2-4-1-cross-site-scripting-xss-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-15T09:15:03Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-6hmq-m3mm-wvrh/GHSA-6hmq-m3mm-wvrh.json b/advisories/unreviewed/2024/09/GHSA-6hmq-m3mm-wvrh/GHSA-6hmq-m3mm-wvrh.json new file mode 100644 index 00000000000..d2a7096e542 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-6hmq-m3mm-wvrh/GHSA-6hmq-m3mm-wvrh.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6hmq-m3mm-wvrh", + "modified": "2024-09-16T14:37:26Z", + "published": "2024-09-16T14:37:26Z", + "aliases": [ + "CVE-2024-8797" + ], + "details": "The WP Booking System – Booking Calendar plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg & remove_query_arg without appropriate escaping on the URL in all versions up to, and including, 2.0.19.8. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8797" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/wp-booking-system/tags/2.0.19.10/includes/modules/update-checker/views/view-register-website.php#L21" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3150487%40wp-booking-system&new=3150487%40wp-booking-system&sfp_email=&sfph_mail=" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/1bea55b5-b2d7-4eaf-8868-d2645ce18619?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-14T06:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-754w-8w8c-rvmg/GHSA-754w-8w8c-rvmg.json b/advisories/unreviewed/2024/09/GHSA-754w-8w8c-rvmg/GHSA-754w-8w8c-rvmg.json new file mode 100644 index 00000000000..a00338334d2 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-754w-8w8c-rvmg/GHSA-754w-8w8c-rvmg.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-754w-8w8c-rvmg", + "modified": "2024-09-16T14:37:28Z", + "published": "2024-09-16T14:37:28Z", + "aliases": [ + "CVE-2024-45694" + ], + "details": "The web service of certain models of D-Link wireless routers contains a Stack-based Buffer Overflow vulnerability, which allows unauthenticated remote attackers to exploit this vulnerability to execute arbitrary code on the device.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-45694" + }, + { + "type": "WEB", + "url": "https://www.twcert.org.tw/en/cp-139-8081-3fb39-2.html" + }, + { + "type": "WEB", + "url": "https://www.twcert.org.tw/tw/cp-132-8080-7f494-1.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-16T07:15:02Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-78c9-5p24-9jcg/GHSA-78c9-5p24-9jcg.json b/advisories/unreviewed/2024/09/GHSA-78c9-5p24-9jcg/GHSA-78c9-5p24-9jcg.json index 49f1afdfdb0..0a301ec8ac5 100644 --- a/advisories/unreviewed/2024/09/GHSA-78c9-5p24-9jcg/GHSA-78c9-5p24-9jcg.json +++ b/advisories/unreviewed/2024/09/GHSA-78c9-5p24-9jcg/GHSA-78c9-5p24-9jcg.json @@ -1,13 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-78c9-5p24-9jcg", - "modified": "2024-09-06T18:31:35Z", + "modified": "2024-09-16T14:37:25Z", "published": "2024-09-06T18:31:35Z", "aliases": [ "CVE-2024-38642" ], "details": "An improper certificate validation vulnerability has been reported to affect QuMagie. If exploited, the vulnerability could allow local network users to compromise the security of the system via unspecified vectors.\n\nWe have already fixed the vulnerability in the following version:\nQuMagie 2.3.1 and later", "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + }, { "type": "CVSS_V4", "score": "CVSS:4.0/AV:P/AC:L/AT:P/PR:N/UI:N/VC:N/VI:L/VA:L/SC:N/SI:L/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" diff --git a/advisories/unreviewed/2024/09/GHSA-7gm4-4495-5666/GHSA-7gm4-4495-5666.json b/advisories/unreviewed/2024/09/GHSA-7gm4-4495-5666/GHSA-7gm4-4495-5666.json new file mode 100644 index 00000000000..3d439e269d1 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-7gm4-4495-5666/GHSA-7gm4-4495-5666.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7gm4-4495-5666", + "modified": "2024-09-16T14:37:28Z", + "published": "2024-09-16T14:37:28Z", + "aliases": [ + "CVE-2024-8777" + ], + "details": "OMFLOW from The SYSCOM Group has an information leakage vulnerability, allowing unauthorized remote attackers to read arbitrary system configurations. If LDAP authentication is enabled, attackers can obtain plaintext credentials.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8777" + }, + { + "type": "WEB", + "url": "https://www.twcert.org.tw/en/cp-139-8072-928a5-2.html" + }, + { + "type": "WEB", + "url": "https://www.twcert.org.tw/tw/cp-132-8071-46589-1.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-200" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-16T06:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-7mqh-9jjg-r8c8/GHSA-7mqh-9jjg-r8c8.json b/advisories/unreviewed/2024/09/GHSA-7mqh-9jjg-r8c8/GHSA-7mqh-9jjg-r8c8.json new file mode 100644 index 00000000000..a6e7630b7f9 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-7mqh-9jjg-r8c8/GHSA-7mqh-9jjg-r8c8.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7mqh-9jjg-r8c8", + "modified": "2024-09-16T14:37:28Z", + "published": "2024-09-16T14:37:28Z", + "aliases": [ + "CVE-2024-46451" + ], + "details": "TOTOLINK AC1200 T8 v4.1.5cu.861_B20230220 has a buffer overflow vulnerability in the setWiFiAclRules function via the desc parameter.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-46451" + }, + { + "type": "WEB", + "url": "https://github.com/offshore0315/loT-vulnerable/blob/main/TOTOLINK/AC1200%20T8/setWiFiAclRules.md" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-16T13:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-7v6r-jgcw-v2j9/GHSA-7v6r-jgcw-v2j9.json b/advisories/unreviewed/2024/09/GHSA-7v6r-jgcw-v2j9/GHSA-7v6r-jgcw-v2j9.json new file mode 100644 index 00000000000..883a2498358 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-7v6r-jgcw-v2j9/GHSA-7v6r-jgcw-v2j9.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7v6r-jgcw-v2j9", + "modified": "2024-09-16T14:37:29Z", + "published": "2024-09-16T14:37:28Z", + "aliases": [ + "CVE-2024-46937" + ], + "details": "An improper access control (IDOR) vulnerability in the /api-selfportal/get-info-token-properties endpoint in MFASOFT Secure Authentication Server (SAS) 1.8.x through 1.9.x before 1.9.040924 allows remote attackers gain access to user tokens without authentication. The is a brute-force attack on the serial parameter by number identifier: GA00001, GA00002, GA00003, etc.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-46937" + }, + { + "type": "WEB", + "url": "https://github.com/WI1D-41/IDOR-in-MFASOFT-Secure-Authentication-Server" + }, + { + "type": "WEB", + "url": "https://mfasoft.ru" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-16T13:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-83f6-495c-ff9q/GHSA-83f6-495c-ff9q.json b/advisories/unreviewed/2024/09/GHSA-83f6-495c-ff9q/GHSA-83f6-495c-ff9q.json new file mode 100644 index 00000000000..fc23373eed7 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-83f6-495c-ff9q/GHSA-83f6-495c-ff9q.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-83f6-495c-ff9q", + "modified": "2024-09-16T14:37:26Z", + "published": "2024-09-16T14:37:26Z", + "aliases": [ + "CVE-2024-8271" + ], + "details": "The The FOX – Currency Switcher Professional for WooCommerce plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 1.4.2.1. This is due to the software allowing users to execute an action that does not properly validate a value before running do_shortcode in the 'woocs_get_custom_price_html' function. This makes it possible for unauthenticated attackers to execute arbitrary shortcodes.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8271" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/woocommerce-currency-switcher/tags/1.4.2.1/classes/woocs.php#L4604" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3150596%40woocommerce-currency-switcher&new=3150596%40woocommerce-currency-switcher&sfp_email=&sfph_mail=" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/dec51bd6-2ffe-47b6-9423-6131395bf439?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-94" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-14T03:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-8v8r-m9m9-p8q3/GHSA-8v8r-m9m9-p8q3.json b/advisories/unreviewed/2024/09/GHSA-8v8r-m9m9-p8q3/GHSA-8v8r-m9m9-p8q3.json new file mode 100644 index 00000000000..03615b46fdb --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-8v8r-m9m9-p8q3/GHSA-8v8r-m9m9-p8q3.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8v8r-m9m9-p8q3", + "modified": "2024-09-16T14:37:27Z", + "published": "2024-09-16T14:37:27Z", + "aliases": [ + "CVE-2024-44063" + ], + "details": "Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Happyforms allows Stored XSS.This issue affects Happyforms: from n/a through 1.26.0.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-44063" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/happyforms/wordpress-happyforms-plugin-1-26-0-cross-site-scripting-xss-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-15T08:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-8x4p-8r4m-q8jg/GHSA-8x4p-8r4m-q8jg.json b/advisories/unreviewed/2024/09/GHSA-8x4p-8r4m-q8jg/GHSA-8x4p-8r4m-q8jg.json new file mode 100644 index 00000000000..856441b842c --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-8x4p-8r4m-q8jg/GHSA-8x4p-8r4m-q8jg.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8x4p-8r4m-q8jg", + "modified": "2024-09-16T14:37:27Z", + "published": "2024-09-16T14:37:27Z", + "aliases": [ + "CVE-2024-45460" + ], + "details": "Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Manu225 Flipping Cards allows Stored XSS.This issue affects Flipping Cards: from n/a through 1.30.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-45460" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/flipping-cards/wordpress-flipping-cards-plugin-1-30-cross-site-scripting-xss-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-15T08:15:14Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-9h42-jv2f-gc8x/GHSA-9h42-jv2f-gc8x.json b/advisories/unreviewed/2024/09/GHSA-9h42-jv2f-gc8x/GHSA-9h42-jv2f-gc8x.json new file mode 100644 index 00000000000..fb2ee43120d --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-9h42-jv2f-gc8x/GHSA-9h42-jv2f-gc8x.json @@ -0,0 +1,54 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9h42-jv2f-gc8x", + "modified": "2024-09-16T14:37:28Z", + "published": "2024-09-16T14:37:28Z", + "aliases": [ + "CVE-2024-8869" + ], + "details": "A vulnerability classified as critical has been found in TOTOLINK A720R 4.1.5. Affected is the function exportOvpn. The manipulation leads to os command injection. It is possible to launch the attack remotely. The complexity of an attack is rather high. The exploitability is told to be difficult. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8869" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.277506" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.277506" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.403211" + }, + { + "type": "WEB", + "url": "https://www.totolink.net" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-78" + ], + "severity": "LOW", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-15T11:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-9q57-6634-5vrw/GHSA-9q57-6634-5vrw.json b/advisories/unreviewed/2024/09/GHSA-9q57-6634-5vrw/GHSA-9q57-6634-5vrw.json new file mode 100644 index 00000000000..e80a2251efd --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-9q57-6634-5vrw/GHSA-9q57-6634-5vrw.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9q57-6634-5vrw", + "modified": "2024-09-16T14:37:27Z", + "published": "2024-09-16T14:37:26Z", + "aliases": [ + "CVE-2024-8669" + ], + "details": "The Backuply – Backup, Restore, Migrate and Clone plugin for WordPress is vulnerable to SQL Injection via the 'options' parameter passed to the backuply_wp_clone_sql() function in all versions up to, and including, 1.3.4 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with administrator-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8669" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/backuply/trunk/functions.php#L1477" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3151205" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/6a061553-c988-4a31-a0a2-7a2608faa33f?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-14T04:15:04Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-9wfx-jpxp-q2rh/GHSA-9wfx-jpxp-q2rh.json b/advisories/unreviewed/2024/09/GHSA-9wfx-jpxp-q2rh/GHSA-9wfx-jpxp-q2rh.json new file mode 100644 index 00000000000..8ea6f619fd5 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-9wfx-jpxp-q2rh/GHSA-9wfx-jpxp-q2rh.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9wfx-jpxp-q2rh", + "modified": "2024-09-16T14:37:27Z", + "published": "2024-09-16T14:37:27Z", + "aliases": [ + "CVE-2024-44054" + ], + "details": "Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CryoutCreations Fluida allows Stored XSS.This issue affects Fluida: from n/a through 1.8.8.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-44054" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/fluida/wordpress-fluida-theme-1-8-8-cross-site-scripting-xss-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-15T09:15:02Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-c476-5cw2-72fp/GHSA-c476-5cw2-72fp.json b/advisories/unreviewed/2024/09/GHSA-c476-5cw2-72fp/GHSA-c476-5cw2-72fp.json new file mode 100644 index 00000000000..02164b07448 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-c476-5cw2-72fp/GHSA-c476-5cw2-72fp.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-c476-5cw2-72fp", + "modified": "2024-09-16T14:37:26Z", + "published": "2024-09-16T14:37:26Z", + "aliases": [ + "CVE-2024-8479" + ], + "details": "The The Simple Spoiler plugin for WordPress is vulnerable to arbitrary shortcode execution in versions 1.2 to 1.3. This is due to the plugin adding the filter add_filter('comment_text', 'do_shortcode'); which will run all shortcodes in comments. This makes it possible for unauthenticated attackers to execute arbitrary shortcodes.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8479" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/simple-spoiler/trunk/simple-spoiler.php#L108" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3151179%40simple-spoiler&new=3151179%40simple-spoiler&sfp_email=&sfph_mail=" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/8ffc76d8-b841-4c26-bbc6-1f96664efe36?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-94" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-14T04:15:04Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-c8rc-rqhp-jx57/GHSA-c8rc-rqhp-jx57.json b/advisories/unreviewed/2024/09/GHSA-c8rc-rqhp-jx57/GHSA-c8rc-rqhp-jx57.json new file mode 100644 index 00000000000..24b3ecc2a11 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-c8rc-rqhp-jx57/GHSA-c8rc-rqhp-jx57.json @@ -0,0 +1,54 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-c8rc-rqhp-jx57", + "modified": "2024-09-16T14:37:28Z", + "published": "2024-09-16T14:37:28Z", + "aliases": [ + "CVE-2024-8875" + ], + "details": "A vulnerability classified as critical was found in vedees wcms up to 0.3.2. Affected by this vulnerability is an unknown functionality of the file /wex/finder.php. The manipulation of the argument p leads to path traversal. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8875" + }, + { + "type": "WEB", + "url": "https://github.com/acmglz/bug2_report/blob/main/wcms%20has%20arbitrary%20file%20deletion.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.277507" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.277507" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.404206" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-22" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-15T22:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-c8w2-qg5p-pfw5/GHSA-c8w2-qg5p-pfw5.json b/advisories/unreviewed/2024/09/GHSA-c8w2-qg5p-pfw5/GHSA-c8w2-qg5p-pfw5.json new file mode 100644 index 00000000000..35b4cfd2274 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-c8w2-qg5p-pfw5/GHSA-c8w2-qg5p-pfw5.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-c8w2-qg5p-pfw5", + "modified": "2024-09-16T14:37:27Z", + "published": "2024-09-16T14:37:27Z", + "aliases": [ + "CVE-2024-44053" + ], + "details": "Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Mohammad Arif Opor Ayam allows Reflected XSS.This issue affects Opor Ayam: from n/a through 1.8.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-44053" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/opor-ayam/wordpress-opor-ayam-theme-1-8-reflected-cross-site-scripting-xss-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-15T09:15:02Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-chwm-h2rg-vxxf/GHSA-chwm-h2rg-vxxf.json b/advisories/unreviewed/2024/09/GHSA-chwm-h2rg-vxxf/GHSA-chwm-h2rg-vxxf.json new file mode 100644 index 00000000000..42aac92d667 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-chwm-h2rg-vxxf/GHSA-chwm-h2rg-vxxf.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-chwm-h2rg-vxxf", + "modified": "2024-09-16T14:37:28Z", + "published": "2024-09-16T14:37:28Z", + "aliases": [ + "CVE-2024-8780" + ], + "details": "OMFLOW from The SYSCOM Group does not properly restrict the query range of its data query functionality, allowing remote attackers with regular privileges to obtain accounts and password hashes of other users.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8780" + }, + { + "type": "WEB", + "url": "https://www.twcert.org.tw/en/cp-139-8078-36fc9-2.html" + }, + { + "type": "WEB", + "url": "https://www.twcert.org.tw/tw/cp-132-8077-7a7c0-1.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-200" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-16T06:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-cqpv-2227-9mjj/GHSA-cqpv-2227-9mjj.json b/advisories/unreviewed/2024/09/GHSA-cqpv-2227-9mjj/GHSA-cqpv-2227-9mjj.json new file mode 100644 index 00000000000..676be3db55c --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-cqpv-2227-9mjj/GHSA-cqpv-2227-9mjj.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cqpv-2227-9mjj", + "modified": "2024-09-16T14:37:26Z", + "published": "2024-09-16T14:37:26Z", + "aliases": [ + "CVE-2023-3410" + ], + "details": "The Bricks theme for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘customTag' attribute in versions up to, and including, 1.10.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with access to the Bricks Builder (admin-only by default), to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. This becomes more of an issue when Bricks Builder access is granted to lower-privileged users.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-3410" + }, + { + "type": "WEB", + "url": "https://bricksbuilder.io" + }, + { + "type": "WEB", + "url": "https://bricksbuilder.io/release/bricks-1-10-2" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/ba5e93a2-8f42-4747-86fa-297ba709be8f?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-14T09:15:01Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-crwj-f9hc-c6g4/GHSA-crwj-f9hc-c6g4.json b/advisories/unreviewed/2024/09/GHSA-crwj-f9hc-c6g4/GHSA-crwj-f9hc-c6g4.json index aacf47cb9cf..e3a60571acb 100644 --- a/advisories/unreviewed/2024/09/GHSA-crwj-f9hc-c6g4/GHSA-crwj-f9hc-c6g4.json +++ b/advisories/unreviewed/2024/09/GHSA-crwj-f9hc-c6g4/GHSA-crwj-f9hc-c6g4.json @@ -1,13 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-crwj-f9hc-c6g4", - "modified": "2024-09-06T18:31:35Z", + "modified": "2024-09-16T14:37:25Z", "published": "2024-09-06T18:31:35Z", "aliases": [ "CVE-2024-38641" ], "details": "An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow local network users to execute commands via unspecified vectors.\n\nWe have already fixed the vulnerability in the following versions:\nQTS 5.1.8.2823 build 20240712 and later\nQuTS hero h5.1.8.2823 build 20240712 and later", "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + }, { "type": "CVSS_V4", "score": "CVSS:4.0/AV:P/AC:H/AT:P/PR:N/UI:A/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" diff --git a/advisories/unreviewed/2024/09/GHSA-cvq3-wg24-45v2/GHSA-cvq3-wg24-45v2.json b/advisories/unreviewed/2024/09/GHSA-cvq3-wg24-45v2/GHSA-cvq3-wg24-45v2.json new file mode 100644 index 00000000000..54af249ab6f --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-cvq3-wg24-45v2/GHSA-cvq3-wg24-45v2.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cvq3-wg24-45v2", + "modified": "2024-09-16T14:37:27Z", + "published": "2024-09-16T14:37:27Z", + "aliases": [ + "CVE-2024-44057" + ], + "details": "Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CryoutCreations Nirvana allows Stored XSS.This issue affects Nirvana: from n/a through 1.6.3.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-44057" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/nirvana/wordpress-nirvana-theme-1-6-3-cross-site-scripting-xss-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-15T09:15:03Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-cwqr-9j7q-r9xh/GHSA-cwqr-9j7q-r9xh.json b/advisories/unreviewed/2024/09/GHSA-cwqr-9j7q-r9xh/GHSA-cwqr-9j7q-r9xh.json new file mode 100644 index 00000000000..c60a368eddb --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-cwqr-9j7q-r9xh/GHSA-cwqr-9j7q-r9xh.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cwqr-9j7q-r9xh", + "modified": "2024-09-16T14:37:26Z", + "published": "2024-09-16T14:37:26Z", + "aliases": [ + "CVE-2024-8039" + ], + "details": "Improper permission configurationDomain configuration vulnerability of the mobile application (com.afmobi.boomplayer) can lead to account takeover risks.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8039" + }, + { + "type": "WEB", + "url": "https://security.tecno.com/SRC/blogdetail/307?lang=en_US" + }, + { + "type": "WEB", + "url": "https://security.tecno.com/SRC/securityUpdates?type=SA" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-732" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-14T04:15:04Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-f4cg-5v3q-jpw3/GHSA-f4cg-5v3q-jpw3.json b/advisories/unreviewed/2024/09/GHSA-f4cg-5v3q-jpw3/GHSA-f4cg-5v3q-jpw3.json new file mode 100644 index 00000000000..7cabe2182e5 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-f4cg-5v3q-jpw3/GHSA-f4cg-5v3q-jpw3.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-f4cg-5v3q-jpw3", + "modified": "2024-09-16T14:37:27Z", + "published": "2024-09-16T14:37:27Z", + "aliases": [ + "CVE-2024-45459" + ], + "details": "Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in PickPlugins Product Slider for WooCommerce allows Reflected XSS.This issue affects Product Slider for WooCommerce: from n/a through 1.13.50.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-45459" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/woocommerce-products-slider/wordpress-product-slider-for-woocommerce-by-pickplugins-plugin-1-13-50-reflected-cross-site-scripting-xss-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-15T08:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-f5ww-mg69-335r/GHSA-f5ww-mg69-335r.json b/advisories/unreviewed/2024/09/GHSA-f5ww-mg69-335r/GHSA-f5ww-mg69-335r.json new file mode 100644 index 00000000000..9f282163ca9 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-f5ww-mg69-335r/GHSA-f5ww-mg69-335r.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-f5ww-mg69-335r", + "modified": "2024-09-16T14:37:27Z", + "published": "2024-09-16T14:37:27Z", + "aliases": [ + "CVE-2024-45458" + ], + "details": "Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Spiffy Plugins Spiffy Calendar allows Reflected XSS.This issue affects Spiffy Calendar: from n/a through 4.9.13.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-45458" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/spiffy-calendar/wordpress-spiffy-calendar-plugin-4-9-13-reflected-cross-site-scripting-xss-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-15T08:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-fg5m-m723-7mv6/GHSA-fg5m-m723-7mv6.json b/advisories/unreviewed/2024/09/GHSA-fg5m-m723-7mv6/GHSA-fg5m-m723-7mv6.json new file mode 100644 index 00000000000..4d43d4a5d4f --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-fg5m-m723-7mv6/GHSA-fg5m-m723-7mv6.json @@ -0,0 +1,54 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fg5m-m723-7mv6", + "modified": "2024-09-16T14:37:27Z", + "published": "2024-09-16T14:37:27Z", + "aliases": [ + "CVE-2024-8862" + ], + "details": "A vulnerability, which was classified as critical, has been found in h2oai h2o-3 3.46.0.4. This issue affects the function getConnectionSafe of the file /dtale/chart-data/1 of the component JDBC Connection Handler. The manipulation of the argument query leads to deserialization. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8862" + }, + { + "type": "WEB", + "url": "https://rumbling-slice-eb0.notion.site/Unauthenticated-Remote-Command-Execution-via-Panda-df-query-9dc40f0477ee4b65806de7921876c222?pvs=4" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.277499" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.277499" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.403200" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-502" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-14T20:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-fp3g-r7j4-vr8g/GHSA-fp3g-r7j4-vr8g.json b/advisories/unreviewed/2024/09/GHSA-fp3g-r7j4-vr8g/GHSA-fp3g-r7j4-vr8g.json index 5b7b1582afc..20612dc88ff 100644 --- a/advisories/unreviewed/2024/09/GHSA-fp3g-r7j4-vr8g/GHSA-fp3g-r7j4-vr8g.json +++ b/advisories/unreviewed/2024/09/GHSA-fp3g-r7j4-vr8g/GHSA-fp3g-r7j4-vr8g.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-fp3g-r7j4-vr8g", - "modified": "2024-09-13T06:30:43Z", + "modified": "2024-09-16T14:37:26Z", "published": "2024-09-13T06:30:43Z", "aliases": [ "CVE-2024-46685" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\npinctrl: single: fix potential NULL dereference in pcs_get_function()\n\npinmux_generic_get_function() can return NULL and the pointer 'function'\nwas dereferenced without checking against NULL. Add checking of pointer\n'function' in pcs_get_function().\n\nFound by code review.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-13T06:15:13Z" diff --git a/advisories/unreviewed/2024/09/GHSA-fq8w-cfr6-8fqg/GHSA-fq8w-cfr6-8fqg.json b/advisories/unreviewed/2024/09/GHSA-fq8w-cfr6-8fqg/GHSA-fq8w-cfr6-8fqg.json new file mode 100644 index 00000000000..c240c2d138c --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-fq8w-cfr6-8fqg/GHSA-fq8w-cfr6-8fqg.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fq8w-cfr6-8fqg", + "modified": "2024-09-16T14:37:28Z", + "published": "2024-09-16T14:37:28Z", + "aliases": [ + "CVE-2024-45833" + ], + "details": "Mattermost Mobile Apps versions <=2.18.0 fail to disable autocomplete during login while typing the password and visible password is selected, which allows the password to get saved in the dictionary when the user has Swiftkey as the default keyboard, the masking is off and the password contains a special character..", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-45833" + }, + { + "type": "WEB", + "url": "https://mattermost.com/security-updates" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-693" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-16T07:15:03Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-g5x5-v9cp-7w65/GHSA-g5x5-v9cp-7w65.json b/advisories/unreviewed/2024/09/GHSA-g5x5-v9cp-7w65/GHSA-g5x5-v9cp-7w65.json new file mode 100644 index 00000000000..67c698c89da --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-g5x5-v9cp-7w65/GHSA-g5x5-v9cp-7w65.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-g5x5-v9cp-7w65", + "modified": "2024-09-16T14:37:28Z", + "published": "2024-09-16T14:37:28Z", + "aliases": [ + "CVE-2024-8779" + ], + "details": "OMFLOW from The SYSCOM Group does not properly restrict access to the system settings modification functionality, allowing remote attackers with regular privileges to update system settings or create accounts with administrator privileges, thereby gaining control of the server.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8779" + }, + { + "type": "WEB", + "url": "https://www.twcert.org.tw/en/cp-139-8076-6ade0-2.html" + }, + { + "type": "WEB", + "url": "https://www.twcert.org.tw/tw/cp-132-8075-a0d06-1.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-284" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-16T06:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-g766-f3jj-h73r/GHSA-g766-f3jj-h73r.json b/advisories/unreviewed/2024/09/GHSA-g766-f3jj-h73r/GHSA-g766-f3jj-h73r.json new file mode 100644 index 00000000000..1e54170d81b --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-g766-f3jj-h73r/GHSA-g766-f3jj-h73r.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-g766-f3jj-h73r", + "modified": "2024-09-16T14:37:28Z", + "published": "2024-09-16T14:37:28Z", + "aliases": [ + "CVE-2024-8778" + ], + "details": "OMFLOW from The SYSCOM Group does not properly validate user input of the download functionality, allowing remote attackers with regular privileges to read arbitrary system files.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8778" + }, + { + "type": "WEB", + "url": "https://www.twcert.org.tw/en/cp-139-8074-66457-2.html" + }, + { + "type": "WEB", + "url": "https://www.twcert.org.tw/tw/cp-132-8073-ff771-1.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-36" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-16T06:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-gcwq-2mx4-wmcp/GHSA-gcwq-2mx4-wmcp.json b/advisories/unreviewed/2024/09/GHSA-gcwq-2mx4-wmcp/GHSA-gcwq-2mx4-wmcp.json new file mode 100644 index 00000000000..bbd7c30dbf0 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-gcwq-2mx4-wmcp/GHSA-gcwq-2mx4-wmcp.json @@ -0,0 +1,51 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gcwq-2mx4-wmcp", + "modified": "2024-09-16T14:37:28Z", + "published": "2024-09-16T14:37:28Z", + "aliases": [ + "CVE-2024-46958" + ], + "details": "In Nextcloud Desktop Client 3.13.1 through 3.13.3 on Linux, synchronized files (between the server and client) may become world writable or world readable. This is fixed in 3.13.4.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-46958" + }, + { + "type": "WEB", + "url": "https://github.com/nextcloud/desktop/issues/6863" + }, + { + "type": "WEB", + "url": "https://github.com/nextcloud/desktop/pull/6949" + }, + { + "type": "WEB", + "url": "https://github.com/nextcloud/desktop/pull/7092" + }, + { + "type": "WEB", + "url": "https://github.com/nextcloud/desktop/compare/v3.13.3...v3.13.4" + }, + { + "type": "WEB", + "url": "https://github.com/nextcloud/security-advisories/security/advisories" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-16T02:15:01Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-gp73-hc78-3ch8/GHSA-gp73-hc78-3ch8.json b/advisories/unreviewed/2024/09/GHSA-gp73-hc78-3ch8/GHSA-gp73-hc78-3ch8.json new file mode 100644 index 00000000000..0bfde4e6d84 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-gp73-hc78-3ch8/GHSA-gp73-hc78-3ch8.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gp73-hc78-3ch8", + "modified": "2024-09-16T14:37:27Z", + "published": "2024-09-16T14:37:27Z", + "aliases": [ + "CVE-2024-45456" + ], + "details": "Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in JoomUnited WP Meta SEO allows Stored XSS.This issue affects WP Meta SEO: from n/a through 4.5.13.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-45456" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/wp-meta-seo/wordpress-wp-meta-seo-plugin-4-5-13-cross-site-scripting-xss-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-15T08:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-grj2-x9v7-7qqx/GHSA-grj2-x9v7-7qqx.json b/advisories/unreviewed/2024/09/GHSA-grj2-x9v7-7qqx/GHSA-grj2-x9v7-7qqx.json index 48426d549b2..ed171346089 100644 --- a/advisories/unreviewed/2024/09/GHSA-grj2-x9v7-7qqx/GHSA-grj2-x9v7-7qqx.json +++ b/advisories/unreviewed/2024/09/GHSA-grj2-x9v7-7qqx/GHSA-grj2-x9v7-7qqx.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-grj2-x9v7-7qqx", - "modified": "2024-09-13T06:30:43Z", + "modified": "2024-09-16T14:37:26Z", "published": "2024-09-13T06:30:43Z", "aliases": [ "CVE-2024-46687" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nbtrfs: fix a use-after-free when hitting errors inside btrfs_submit_chunk()\n\n[BUG]\nThere is an internal report that KASAN is reporting use-after-free, with\nthe following backtrace:\n\n BUG: KASAN: slab-use-after-free in btrfs_check_read_bio+0xa68/0xb70 [btrfs]\n Read of size 4 at addr ffff8881117cec28 by task kworker/u16:2/45\n CPU: 1 UID: 0 PID: 45 Comm: kworker/u16:2 Not tainted 6.11.0-rc2-next-20240805-default+ #76\n Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.16.2-3-gd478f380-rebuilt.opensuse.org 04/01/2014\n Workqueue: btrfs-endio btrfs_end_bio_work [btrfs]\n Call Trace:\n dump_stack_lvl+0x61/0x80\n print_address_description.constprop.0+0x5e/0x2f0\n print_report+0x118/0x216\n kasan_report+0x11d/0x1f0\n btrfs_check_read_bio+0xa68/0xb70 [btrfs]\n process_one_work+0xce0/0x12a0\n worker_thread+0x717/0x1250\n kthread+0x2e3/0x3c0\n ret_from_fork+0x2d/0x70\n ret_from_fork_asm+0x11/0x20\n\n Allocated by task 20917:\n kasan_save_stack+0x37/0x60\n kasan_save_track+0x10/0x30\n __kasan_slab_alloc+0x7d/0x80\n kmem_cache_alloc_noprof+0x16e/0x3e0\n mempool_alloc_noprof+0x12e/0x310\n bio_alloc_bioset+0x3f0/0x7a0\n btrfs_bio_alloc+0x2e/0x50 [btrfs]\n submit_extent_page+0x4d1/0xdb0 [btrfs]\n btrfs_do_readpage+0x8b4/0x12a0 [btrfs]\n btrfs_readahead+0x29a/0x430 [btrfs]\n read_pages+0x1a7/0xc60\n page_cache_ra_unbounded+0x2ad/0x560\n filemap_get_pages+0x629/0xa20\n filemap_read+0x335/0xbf0\n vfs_read+0x790/0xcb0\n ksys_read+0xfd/0x1d0\n do_syscall_64+0x6d/0x140\n entry_SYSCALL_64_after_hwframe+0x4b/0x53\n\n Freed by task 20917:\n kasan_save_stack+0x37/0x60\n kasan_save_track+0x10/0x30\n kasan_save_free_info+0x37/0x50\n __kasan_slab_free+0x4b/0x60\n kmem_cache_free+0x214/0x5d0\n bio_free+0xed/0x180\n end_bbio_data_read+0x1cc/0x580 [btrfs]\n btrfs_submit_chunk+0x98d/0x1880 [btrfs]\n btrfs_submit_bio+0x33/0x70 [btrfs]\n submit_one_bio+0xd4/0x130 [btrfs]\n submit_extent_page+0x3ea/0xdb0 [btrfs]\n btrfs_do_readpage+0x8b4/0x12a0 [btrfs]\n btrfs_readahead+0x29a/0x430 [btrfs]\n read_pages+0x1a7/0xc60\n page_cache_ra_unbounded+0x2ad/0x560\n filemap_get_pages+0x629/0xa20\n filemap_read+0x335/0xbf0\n vfs_read+0x790/0xcb0\n ksys_read+0xfd/0x1d0\n do_syscall_64+0x6d/0x140\n entry_SYSCALL_64_after_hwframe+0x4b/0x53\n\n[CAUSE]\nAlthough I cannot reproduce the error, the report itself is good enough\nto pin down the cause.\n\nThe call trace is the regular endio workqueue context, but the\nfree-by-task trace is showing that during btrfs_submit_chunk() we\nalready hit a critical error, and is calling btrfs_bio_end_io() to error\nout. And the original endio function called bio_put() to free the whole\nbio.\n\nThis means a double freeing thus causing use-after-free, e.g.:\n\n1. Enter btrfs_submit_bio() with a read bio\n The read bio length is 128K, crossing two 64K stripes.\n\n2. The first run of btrfs_submit_chunk()\n\n2.1 Call btrfs_map_block(), which returns 64K\n2.2 Call btrfs_split_bio()\n Now there are two bios, one referring to the first 64K, the other\n referring to the second 64K.\n2.3 The first half is submitted.\n\n3. The second run of btrfs_submit_chunk()\n\n3.1 Call btrfs_map_block(), which by somehow failed\n Now we call btrfs_bio_end_io() to handle the error\n\n3.2 btrfs_bio_end_io() calls the original endio function\n Which is end_bbio_data_read(), and it calls bio_put() for the\n original bio.\n\n Now the original bio is freed.\n\n4. The submitted first 64K bio finished\n Now we call into btrfs_check_read_bio() and tries to advance the bio\n iter.\n But since the original bio (thus its iter) is already freed, we\n trigger the above use-after free.\n\n And even if the memory is not poisoned/corrupted, we will later call\n the original endio function, causing a double freeing.\n\n[FIX]\nInstead of calling btrfs_bio_end_io(), call btrfs_orig_bbio_end_io(),\nwhich has the extra check on split bios and do the pr\n---truncated---", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-415" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-13T06:15:13Z" diff --git a/advisories/unreviewed/2024/09/GHSA-gvcc-mwhq-ccvw/GHSA-gvcc-mwhq-ccvw.json b/advisories/unreviewed/2024/09/GHSA-gvcc-mwhq-ccvw/GHSA-gvcc-mwhq-ccvw.json new file mode 100644 index 00000000000..244aaf244bb --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-gvcc-mwhq-ccvw/GHSA-gvcc-mwhq-ccvw.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gvcc-mwhq-ccvw", + "modified": "2024-09-16T14:37:28Z", + "published": "2024-09-16T14:37:28Z", + "aliases": [ + "CVE-2024-45695" + ], + "details": "The web service of certain models of D-Link wireless routers contains a Stack-based Buffer Overflow vulnerability, which allows unauthenticated remote attackers to exploit this vulnerability to execute arbitrary code on the device.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-45695" + }, + { + "type": "WEB", + "url": "https://www.twcert.org.tw/en/cp-139-8083-a299e-2.html" + }, + { + "type": "WEB", + "url": "https://www.twcert.org.tw/tw/cp-132-8082-f1687-1.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-16T07:15:02Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-gx7g-q2xr-xm5f/GHSA-gx7g-q2xr-xm5f.json b/advisories/unreviewed/2024/09/GHSA-gx7g-q2xr-xm5f/GHSA-gx7g-q2xr-xm5f.json new file mode 100644 index 00000000000..6558f18fdf5 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-gx7g-q2xr-xm5f/GHSA-gx7g-q2xr-xm5f.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gx7g-q2xr-xm5f", + "modified": "2024-09-16T14:37:26Z", + "published": "2024-09-16T14:37:26Z", + "aliases": [ + "CVE-2024-6482" + ], + "details": "The Login with phone number plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 1.7.49. This is due to a lack of validation and missing capability check on user-supplied data in the 'lwp_update_password_action' function. This makes it possible for authenticated attackers, with Subscriber-level access and above, to update their role to any other role, including Administrator. The vulnerability was partially patched in version 1.7.40. The login with phone number pro plugin was required to exploit the vulnerability in versions 1.7.40 - 1.7.49.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-6482" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/login-with-phone-number/trunk/login-with-phonenumber.php#L3803" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3129185" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/de7cde2c-142c-4004-9302-be335265d87d?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-269" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-14T13:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-h478-hrvj-hrjq/GHSA-h478-hrvj-hrjq.json b/advisories/unreviewed/2024/09/GHSA-h478-hrvj-hrjq/GHSA-h478-hrvj-hrjq.json new file mode 100644 index 00000000000..0d184f1e2bf --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-h478-hrvj-hrjq/GHSA-h478-hrvj-hrjq.json @@ -0,0 +1,50 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-h478-hrvj-hrjq", + "modified": "2024-09-16T14:37:28Z", + "published": "2024-09-16T14:37:28Z", + "aliases": [ + "CVE-2024-8880" + ], + "details": "A vulnerability classified as critical has been found in playSMS 1.4.4/1.4.5/1.4.6/1.4.7. Affected is an unknown function of the file /playsms/index.php?app=main&inc=core_auth&route=forgot&op=forgot of the component Template Handler. The manipulation of the argument username/email/captcha leads to code injection. It is possible to launch the attack remotely. The complexity of an attack is rather high. The exploitability is told to be difficult. The exploit has been disclosed to the public and may be used. It is recommended to upgrade the affected component. The project maintainer was informed early about the issue. Investigation shows that playSMS up to 1.4.3 contained a fix but later versions re-introduced the flaw. As long as the latest version of the playsms/tpl package is used, the software is not affected. Version >=1.4.4 shall fix this issue for sure.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8880" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.277524" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.277524" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.406095" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-94" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-16T01:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-h73x-4wxr-7f79/GHSA-h73x-4wxr-7f79.json b/advisories/unreviewed/2024/09/GHSA-h73x-4wxr-7f79/GHSA-h73x-4wxr-7f79.json new file mode 100644 index 00000000000..56de3e76f92 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-h73x-4wxr-7f79/GHSA-h73x-4wxr-7f79.json @@ -0,0 +1,54 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-h73x-4wxr-7f79", + "modified": "2024-09-16T14:37:28Z", + "published": "2024-09-16T14:37:28Z", + "aliases": [ + "CVE-2024-8876" + ], + "details": "A vulnerability, which was classified as problematic, has been found in xiaohe4966 TpMeCMS up to 1.3.3.1. Affected by this issue is some unknown functionality of the file /index/ajax/lang. The manipulation of the argument lang leads to path traversal. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 1.3.3.2 is able to address this issue. It is recommended to upgrade the affected component.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8876" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.277508" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.277508" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.404560" + }, + { + "type": "WEB", + "url": "https://wiki.shikangsi.com/post/share/12da81ed-2dad-4a75-9b1a-db9afe1e7b7b" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-22" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-15T22:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-h9rg-jfq5-wf8g/GHSA-h9rg-jfq5-wf8g.json b/advisories/unreviewed/2024/09/GHSA-h9rg-jfq5-wf8g/GHSA-h9rg-jfq5-wf8g.json new file mode 100644 index 00000000000..69334fba1e8 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-h9rg-jfq5-wf8g/GHSA-h9rg-jfq5-wf8g.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-h9rg-jfq5-wf8g", + "modified": "2024-09-16T14:37:28Z", + "published": "2024-09-16T14:37:28Z", + "aliases": [ + "CVE-2024-45696" + ], + "details": "Certain models of D-Link wireless routers contain hidden functionality. By sending specific packets to the web service, the attacker can forcibly enable the telnet service and log in using hard-coded credentials. The telnet service enabled through this method can only be accessed from within the same local network as the device.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-45696" + }, + { + "type": "WEB", + "url": "https://www.twcert.org.tw/en/cp-139-8087-c3e70-2.html" + }, + { + "type": "WEB", + "url": "https://www.twcert.org.tw/tw/cp-132-8086-93ed5-1.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-912" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-16T07:15:03Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-hh55-xqjj-vxv4/GHSA-hh55-xqjj-vxv4.json b/advisories/unreviewed/2024/09/GHSA-hh55-xqjj-vxv4/GHSA-hh55-xqjj-vxv4.json new file mode 100644 index 00000000000..96fa273630f --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-hh55-xqjj-vxv4/GHSA-hh55-xqjj-vxv4.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-hh55-xqjj-vxv4", + "modified": "2024-09-16T14:37:28Z", + "published": "2024-09-16T14:37:28Z", + "aliases": [ + "CVE-2024-46424" + ], + "details": "TOTOLINK AC1200 T8 v4.1.5cu.861_B20230220 has a buffer overflow vulnerability in the UploadCustomModule function, which allows attackers to cause a Denial of Service (DoS) via the File parameter.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-46424" + }, + { + "type": "WEB", + "url": "https://github.com/TTTJJJWWW/AHU-IoT-vulnerable/blob/main/TOTOLINK/AC1200T8/UploadCustomModule.md" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-16T13:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-hv38-h5pj-c96j/GHSA-hv38-h5pj-c96j.json b/advisories/unreviewed/2024/09/GHSA-hv38-h5pj-c96j/GHSA-hv38-h5pj-c96j.json new file mode 100644 index 00000000000..fee08130162 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-hv38-h5pj-c96j/GHSA-hv38-h5pj-c96j.json @@ -0,0 +1,43 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-hv38-h5pj-c96j", + "modified": "2024-09-16T14:37:28Z", + "published": "2024-09-16T14:37:28Z", + "aliases": [ + "CVE-2024-46942" + ], + "details": "In OpenDaylight Model-Driven Service Abstraction Layer (MD-SAL) through 13.0.1, a controller with a follower role can configure flow entries in an OpenDaylight clustering deployment.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-46942" + }, + { + "type": "WEB", + "url": "https://docs.opendaylight.org/en/latest/release-notes/projects/mdsal.html" + }, + { + "type": "WEB", + "url": "https://doi.org/10.48550/arXiv.2408.16940" + }, + { + "type": "WEB", + "url": "https://lf-opendaylight.atlassian.net/browse/MDSAL-869" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-15T23:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-j7q4-4r7g-3jf4/GHSA-j7q4-4r7g-3jf4.json b/advisories/unreviewed/2024/09/GHSA-j7q4-4r7g-3jf4/GHSA-j7q4-4r7g-3jf4.json new file mode 100644 index 00000000000..2dc953e4f73 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-j7q4-4r7g-3jf4/GHSA-j7q4-4r7g-3jf4.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-j7q4-4r7g-3jf4", + "modified": "2024-09-16T14:37:28Z", + "published": "2024-09-16T14:37:28Z", + "aliases": [ + "CVE-2024-1578" + ], + "details": "The MiCard PLUS Ci and MiCard PLUS BLE reader products developed by rf IDEAS and rebranded by NT-ware have a firmware fault that may result in characters randomly being dropped from some ID card reads, which would result in the wrong ID card number being assigned during ID card self-registration and might result in failed login attempts for end-users. Random characters being dropped from ID card numbers compromises the uniqueness of ID cards that can, therefore, result in a security issue if the users are using the ‘ID card self-registration’ function.", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:P/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-1578" + }, + { + "type": "WEB", + "url": "https://ntware.atlassian.net/wiki/spaces/SA/pages/11973853216/2024+Security+Advisory+Multiple+MiCard+PLUS+card+reader+dropped+characters" + }, + { + "type": "WEB", + "url": "https://www.canon-europe.com/psirt/advisory-information" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-1287" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-16T07:15:02Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-jf5x-p6mg-vvp7/GHSA-jf5x-p6mg-vvp7.json b/advisories/unreviewed/2024/09/GHSA-jf5x-p6mg-vvp7/GHSA-jf5x-p6mg-vvp7.json new file mode 100644 index 00000000000..ba7813fb630 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-jf5x-p6mg-vvp7/GHSA-jf5x-p6mg-vvp7.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-jf5x-p6mg-vvp7", + "modified": "2024-09-16T14:37:29Z", + "published": "2024-09-16T14:37:28Z", + "aliases": [ + "CVE-2024-46419" + ], + "details": "TOTOLINK AC1200 T8 v4.1.5cu.861_B20230220 has a buffer overflow vulnerability in the setWizardCfg function via the ssid5g parameter.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-46419" + }, + { + "type": "WEB", + "url": "https://github.com/TTTJJJWWW/AHU-IoT-vulnerable/blob/main/TOTOLINK/AC1200T8/setWizardCfg.md" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-16T14:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-jfw4-5phw-5pw7/GHSA-jfw4-5phw-5pw7.json b/advisories/unreviewed/2024/09/GHSA-jfw4-5phw-5pw7/GHSA-jfw4-5phw-5pw7.json new file mode 100644 index 00000000000..2f2b0b709dd --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-jfw4-5phw-5pw7/GHSA-jfw4-5phw-5pw7.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-jfw4-5phw-5pw7", + "modified": "2024-09-16T14:37:28Z", + "published": "2024-09-16T14:37:28Z", + "aliases": [ + "CVE-2024-46970" + ], + "details": "In JetBrains IntelliJ IDEA before 2024.1 hTML injection via the project name was possible", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-46970" + }, + { + "type": "WEB", + "url": "https://www.jetbrains.com/privacy-security/issues-fixed" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "LOW", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-16T11:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-jpxc-vmjf-9fcj/GHSA-jpxc-vmjf-9fcj.json b/advisories/unreviewed/2024/09/GHSA-jpxc-vmjf-9fcj/GHSA-jpxc-vmjf-9fcj.json new file mode 100644 index 00000000000..6bfad4c3da4 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-jpxc-vmjf-9fcj/GHSA-jpxc-vmjf-9fcj.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-jpxc-vmjf-9fcj", + "modified": "2024-09-16T14:37:26Z", + "published": "2024-09-16T14:37:26Z", + "aliases": [ + "CVE-2024-8775" + ], + "details": "A flaw was found in Ansible, where sensitive information stored in Ansible Vault files can be exposed in plaintext during the execution of a playbook. This occurs when using tasks such as include_vars to load vaulted variables without setting the no_log: true parameter, resulting in sensitive data being printed in the playbook output or logs. This can lead to the unintentional disclosure of secrets like passwords or API keys, compromising security and potentially allowing unauthorized access or actions.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8775" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/security/cve/CVE-2024-8775" + }, + { + "type": "WEB", + "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2312119" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-532" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-14T03:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-m62g-7v8j-3fwc/GHSA-m62g-7v8j-3fwc.json b/advisories/unreviewed/2024/09/GHSA-m62g-7v8j-3fwc/GHSA-m62g-7v8j-3fwc.json new file mode 100644 index 00000000000..5fffe4b878a --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-m62g-7v8j-3fwc/GHSA-m62g-7v8j-3fwc.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-m62g-7v8j-3fwc", + "modified": "2024-09-16T14:37:28Z", + "published": "2024-09-16T14:37:28Z", + "aliases": [ + "CVE-2024-46918" + ], + "details": "app/Controller/UserLoginProfilesController.php in MISP before 2.4.198 does not prevent an org admin from viewing sensitive login fields of another org admin in the same org.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-46918" + }, + { + "type": "WEB", + "url": "https://github.com/MISP/MISP/commit/3a5227d7b3d4518ac109af61979a00145a0de6fa" + }, + { + "type": "WEB", + "url": "https://github.com/MISP/MISP/compare/v2.4.197...v2.4.198" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-15T20:15:02Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-mfr5-p5vc-mx4q/GHSA-mfr5-p5vc-mx4q.json b/advisories/unreviewed/2024/09/GHSA-mfr5-p5vc-mx4q/GHSA-mfr5-p5vc-mx4q.json new file mode 100644 index 00000000000..f5cf6973b52 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-mfr5-p5vc-mx4q/GHSA-mfr5-p5vc-mx4q.json @@ -0,0 +1,58 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mfr5-p5vc-mx4q", + "modified": "2024-09-16T14:37:27Z", + "published": "2024-09-16T14:37:27Z", + "aliases": [ + "CVE-2024-8868" + ], + "details": "A vulnerability was found in code-projects Crud Operation System 1.0. It has been rated as critical. This issue affects some unknown processing of the file savedata.php. The manipulation of the argument sname leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8868" + }, + { + "type": "WEB", + "url": "https://github.com/ppp-src/a/issues/7" + }, + { + "type": "WEB", + "url": "https://code-projects.org" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.277505" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.277505" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.408322" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-15T03:15:02Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-mrmh-3hqh-pfw7/GHSA-mrmh-3hqh-pfw7.json b/advisories/unreviewed/2024/09/GHSA-mrmh-3hqh-pfw7/GHSA-mrmh-3hqh-pfw7.json new file mode 100644 index 00000000000..e41465d58c5 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-mrmh-3hqh-pfw7/GHSA-mrmh-3hqh-pfw7.json @@ -0,0 +1,54 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mrmh-3hqh-pfw7", + "modified": "2024-09-16T14:37:27Z", + "published": "2024-09-16T14:37:27Z", + "aliases": [ + "CVE-2024-8864" + ], + "details": "A vulnerability has been found in composiohq composio up to 0.5.6 and classified as critical. Affected by this vulnerability is the function Calculator of the file python/composio/tools/local/mathematical/actions/calculator.py. The manipulation leads to code injection. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:A/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8864" + }, + { + "type": "WEB", + "url": "https://rumbling-slice-eb0.notion.site/Composio-s-Local-tools-Mathematical-has-a-code-injection-risk-in-composiohq-composio-ea0e89ee10fe4edfb9a8cfeed158c765?pvs=4" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.277501" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.277501" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.403204" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-94" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-15T01:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-ph9f-2c4w-rghv/GHSA-ph9f-2c4w-rghv.json b/advisories/unreviewed/2024/09/GHSA-ph9f-2c4w-rghv/GHSA-ph9f-2c4w-rghv.json index 587ddb95044..80b45b0facc 100644 --- a/advisories/unreviewed/2024/09/GHSA-ph9f-2c4w-rghv/GHSA-ph9f-2c4w-rghv.json +++ b/advisories/unreviewed/2024/09/GHSA-ph9f-2c4w-rghv/GHSA-ph9f-2c4w-rghv.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-ph9f-2c4w-rghv", - "modified": "2024-09-09T09:30:45Z", + "modified": "2024-09-16T14:37:25Z", "published": "2024-09-09T09:30:45Z", "aliases": [ "CVE-2024-37288" diff --git a/advisories/unreviewed/2024/09/GHSA-pmhg-f7wc-c97m/GHSA-pmhg-f7wc-c97m.json b/advisories/unreviewed/2024/09/GHSA-pmhg-f7wc-c97m/GHSA-pmhg-f7wc-c97m.json new file mode 100644 index 00000000000..b32e1fecb28 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-pmhg-f7wc-c97m/GHSA-pmhg-f7wc-c97m.json @@ -0,0 +1,54 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-pmhg-f7wc-c97m", + "modified": "2024-09-16T14:37:27Z", + "published": "2024-09-16T14:37:27Z", + "aliases": [ + "CVE-2024-8863" + ], + "details": "A vulnerability, which was classified as problematic, was found in aimhubio aim up to 3.24. Affected is the function dangerouslySetInnerHTML of the file textbox.tsx of the component Text Explorer. The manipulation of the argument query leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8863" + }, + { + "type": "WEB", + "url": "https://rumbling-slice-eb0.notion.site/Stored-XSS-through-TEXT-EXPLORER-in-aimhubio-aim-d0f07b7194724950a673498546d80d43?pvs=4" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.277500" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.277500" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.403203" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-14T23:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-q2wf-44h2-28xg/GHSA-q2wf-44h2-28xg.json b/advisories/unreviewed/2024/09/GHSA-q2wf-44h2-28xg/GHSA-q2wf-44h2-28xg.json new file mode 100644 index 00000000000..d2c4fab7c62 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-q2wf-44h2-28xg/GHSA-q2wf-44h2-28xg.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-q2wf-44h2-28xg", + "modified": "2024-09-16T14:37:27Z", + "published": "2024-09-16T14:37:27Z", + "aliases": [ + "CVE-2024-44056" + ], + "details": "Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CryoutCreations Mantra allows Stored XSS.This issue affects Mantra: from n/a through 3.3.2.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-44056" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/mantra/wordpress-mantra-theme-3-3-2-cross-site-scripting-xss-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-15T09:15:02Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-q6v4-gcc8-vrgw/GHSA-q6v4-gcc8-vrgw.json b/advisories/unreviewed/2024/09/GHSA-q6v4-gcc8-vrgw/GHSA-q6v4-gcc8-vrgw.json new file mode 100644 index 00000000000..9979df16b64 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-q6v4-gcc8-vrgw/GHSA-q6v4-gcc8-vrgw.json @@ -0,0 +1,54 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-q6v4-gcc8-vrgw", + "modified": "2024-09-16T14:37:27Z", + "published": "2024-09-16T14:37:27Z", + "aliases": [ + "CVE-2024-8867" + ], + "details": "A vulnerability was found in Perfex CRM 3.1.6. It has been declared as problematic. This vulnerability affects unknown code of the file application/controllers/Clients.php of the component Parameter Handler. The manipulation of the argument message leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8867" + }, + { + "type": "WEB", + "url": "https://bytium.com/stored-cross-site-scripting-xss-vulnerability-in-perfex-crm" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.277504" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.277504" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.408014" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-15T03:15:01Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-qcv9-p6c5-w5pr/GHSA-qcv9-p6c5-w5pr.json b/advisories/unreviewed/2024/09/GHSA-qcv9-p6c5-w5pr/GHSA-qcv9-p6c5-w5pr.json new file mode 100644 index 00000000000..2568acf3564 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-qcv9-p6c5-w5pr/GHSA-qcv9-p6c5-w5pr.json @@ -0,0 +1,54 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qcv9-p6c5-w5pr", + "modified": "2024-09-16T14:37:27Z", + "published": "2024-09-16T14:37:27Z", + "aliases": [ + "CVE-2024-8866" + ], + "details": "A vulnerability was found in AutoCMS 5.4. It has been classified as problematic. This affects an unknown part of the file /admin/robot.php. The manipulation of the argument sidebar leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8866" + }, + { + "type": "WEB", + "url": "https://github.com/Hebing123/cve/issues/68" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.277503" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.277503" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.407460" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-15T02:15:01Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-rhpc-qcxc-cfwf/GHSA-rhpc-qcxc-cfwf.json b/advisories/unreviewed/2024/09/GHSA-rhpc-qcxc-cfwf/GHSA-rhpc-qcxc-cfwf.json new file mode 100644 index 00000000000..284591a0e1b --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-rhpc-qcxc-cfwf/GHSA-rhpc-qcxc-cfwf.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rhpc-qcxc-cfwf", + "modified": "2024-09-16T14:37:26Z", + "published": "2024-09-16T14:37:26Z", + "aliases": [ + "CVE-2024-8724" + ], + "details": "The Waitlist Woocommerce ( Back in stock notifier ) plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 2.7.5. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8724" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/waitlist-woocommerce/trunk/admin/templates/xoo-wl-import-form.php#L8" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3151186%40waitlist-woocommerce&new=3151186%40waitlist-woocommerce&sfp_email=&sfph_mail=" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/c298c87e-cf3c-4b72-bb0e-a01ca2dfe52f?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-14T04:15:05Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-rpwv-q4ch-7pvm/GHSA-rpwv-q4ch-7pvm.json b/advisories/unreviewed/2024/09/GHSA-rpwv-q4ch-7pvm/GHSA-rpwv-q4ch-7pvm.json new file mode 100644 index 00000000000..264fb3199b5 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-rpwv-q4ch-7pvm/GHSA-rpwv-q4ch-7pvm.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rpwv-q4ch-7pvm", + "modified": "2024-09-16T14:37:26Z", + "published": "2024-09-16T14:37:26Z", + "aliases": [ + "CVE-2022-3459" + ], + "details": "The WooCommerce Multiple Free Gift plugin for WordPress is vulnerable to gift manipulation in all versions up to, and including, 1.2.3. This is due to plugin not enforcing server-side checks on the products that can be added as a gift. This makes it possible for unauthenticated attackers to add non-gift items to their cart as a gift.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-3459" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/woocommerce-multiple-free-gift/trunk/lib/WFG_Frontend.class.php#L189" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/cdb9c321-1a2c-4593-9947-2071a908ee1c?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-639" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-14T03:15:02Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-rwqg-xwvm-5mmj/GHSA-rwqg-xwvm-5mmj.json b/advisories/unreviewed/2024/09/GHSA-rwqg-xwvm-5mmj/GHSA-rwqg-xwvm-5mmj.json new file mode 100644 index 00000000000..c254dabcfb1 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-rwqg-xwvm-5mmj/GHSA-rwqg-xwvm-5mmj.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rwqg-xwvm-5mmj", + "modified": "2024-09-16T14:37:27Z", + "published": "2024-09-16T14:37:27Z", + "aliases": [ + "CVE-2024-45457" + ], + "details": "Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Spiffy Plugins Spiffy Calendar allows Stored XSS.This issue affects Spiffy Calendar: from n/a through 4.9.13.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-45457" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/spiffy-calendar/wordpress-spiffy-calendar-plugin-4-9-13-cross-site-scripting-xss-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-15T08:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-vhp8-r33q-gvq2/GHSA-vhp8-r33q-gvq2.json b/advisories/unreviewed/2024/09/GHSA-vhp8-r33q-gvq2/GHSA-vhp8-r33q-gvq2.json new file mode 100644 index 00000000000..5793c9b9e2e --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-vhp8-r33q-gvq2/GHSA-vhp8-r33q-gvq2.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-vhp8-r33q-gvq2", + "modified": "2024-09-16T14:37:27Z", + "published": "2024-09-16T14:37:27Z", + "aliases": [ + "CVE-2024-44059" + ], + "details": "Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in MediaRon LLC Custom Query Blocks allows Stored XSS.This issue affects Custom Query Blocks: from n/a through 5.3.1.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-44059" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/post-type-archive-mapping/wordpress-custom-query-blocks-plugin-5-3-1-cross-site-scripting-xss-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-15T09:15:04Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-wj4j-qc2m-fgh7/GHSA-wj4j-qc2m-fgh7.json b/advisories/unreviewed/2024/09/GHSA-wj4j-qc2m-fgh7/GHSA-wj4j-qc2m-fgh7.json new file mode 100644 index 00000000000..f76df72f568 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-wj4j-qc2m-fgh7/GHSA-wj4j-qc2m-fgh7.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-wj4j-qc2m-fgh7", + "modified": "2024-09-16T14:37:28Z", + "published": "2024-09-16T14:37:28Z", + "aliases": [ + "CVE-2024-39613" + ], + "details": "Mattermost Desktop App versions <=5.8.0 fail to specify an absolute path when searching the cmd.exe file, which allows a local attacker who is able to put an cmd.exe file in the Downloads folder of a user's machine to cause remote code execution on that machine.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-39613" + }, + { + "type": "WEB", + "url": "https://mattermost.com/security-updates" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-427" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-16T07:15:02Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-wxf3-97x6-x82w/GHSA-wxf3-97x6-x82w.json b/advisories/unreviewed/2024/09/GHSA-wxf3-97x6-x82w/GHSA-wxf3-97x6-x82w.json new file mode 100644 index 00000000000..ee7061b71ed --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-wxf3-97x6-x82w/GHSA-wxf3-97x6-x82w.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-wxf3-97x6-x82w", + "modified": "2024-09-16T14:37:28Z", + "published": "2024-09-16T14:37:28Z", + "aliases": [ + "CVE-2024-45697" + ], + "details": "Certain models of D-Link wireless routers have a hidden functionality where the telnet service is enabled when the WAN port is plugged in. Unauthorized remote attackers can log in and execute OS commands using hard-coded credentials.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-45697" + }, + { + "type": "WEB", + "url": "https://www.twcert.org.tw/en/cp-139-8089-32df6-2.html" + }, + { + "type": "WEB", + "url": "https://www.twcert.org.tw/tw/cp-132-8088-590ed-1.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-912" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-16T07:15:03Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/09/GHSA-xj9g-c23g-r4pj/GHSA-xj9g-c23g-r4pj.json b/advisories/unreviewed/2024/09/GHSA-xj9g-c23g-r4pj/GHSA-xj9g-c23g-r4pj.json new file mode 100644 index 00000000000..33b1d167057 --- /dev/null +++ b/advisories/unreviewed/2024/09/GHSA-xj9g-c23g-r4pj/GHSA-xj9g-c23g-r4pj.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-xj9g-c23g-r4pj", + "modified": "2024-09-16T14:37:28Z", + "published": "2024-09-16T14:37:28Z", + "aliases": [ + "CVE-2024-45698" + ], + "details": "Certain models of D-Link wireless routers do not properly validate user input in the telnet service, allowing unauthenticated remote attackers to use hard-coded credentials to log into telnet and inject arbitrary OS commands, which can then be executed on the device.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-45698" + }, + { + "type": "WEB", + "url": "https://www.twcert.org.tw/en/cp-139-8091-bcd52-2.html" + }, + { + "type": "WEB", + "url": "https://www.twcert.org.tw/tw/cp-132-8090-bf06b-1.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-78" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-09-16T07:15:03Z" + } +} \ No newline at end of file