Publish Advisories

GHSA-5xr8-j973-j64p
GHSA-mfrx-9g8m-q563
GHSA-pw32-jj49-66pq
GHSA-mrvw-5jm3-7j8x
GHSA-wfpm-qchc-6cf9
GHSA-xjg3-c793-7v2j
This commit is contained in:
advisory-database[bot]
2025-02-08 03:33:00 +00:00
parent f9cf87b268
commit eef66f735d
6 changed files with 42 additions and 15 deletions
@@ -29,7 +29,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-119"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -29,7 +29,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-653"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -29,7 +29,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-119"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -1,13 +1,18 @@
{
"schema_version": "1.4.0",
"id": "GHSA-mrvw-5jm3-7j8x",
"modified": "2025-02-08T00:32:17Z",
"modified": "2025-02-08T03:31:12Z",
"published": "2025-02-08T00:32:17Z",
"aliases": [
"CVE-2024-55272"
],
"details": "An issue in Brainasoft Braina v2.8 allows a remote attacker to obtain sensitive information via the chat window function.",
"severity": [],
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"
}
],
"affected": [],
"references": [
{
@@ -20,8 +25,10 @@
}
],
"database_specific": {
"cwe_ids": [],
"severity": null,
"cwe_ids": [
"CWE-200"
],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2025-02-07T22:15:13Z"
@@ -1,13 +1,18 @@
{
"schema_version": "1.4.0",
"id": "GHSA-wfpm-qchc-6cf9",
"modified": "2025-02-08T00:32:18Z",
"modified": "2025-02-08T03:31:12Z",
"published": "2025-02-08T00:32:18Z",
"aliases": [
"CVE-2024-57606"
],
"details": "SQL injection vulnerability in Beijing Guoju Information Technology Co., Ltd JeecgBoot v.3.7.2 allows a remote attacker to obtain sensitive information via the getTotalData component.",
"severity": [],
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"
}
],
"affected": [],
"references": [
{
@@ -20,8 +25,10 @@
}
],
"database_specific": {
"cwe_ids": [],
"severity": null,
"cwe_ids": [
"CWE-200"
],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2025-02-07T22:15:13Z"
@@ -1,13 +1,18 @@
{
"schema_version": "1.4.0",
"id": "GHSA-xjg3-c793-7v2j",
"modified": "2025-02-08T00:32:17Z",
"modified": "2025-02-08T03:31:12Z",
"published": "2025-02-08T00:32:17Z",
"aliases": [
"CVE-2024-55215"
],
"details": "An issue in trojan v.2.0.0 through v.2.15.3 allows a remote attacker to escalate privileges via the initialization interface /auth/register.",
"severity": [],
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
"affected": [],
"references": [
{
@@ -20,8 +25,10 @@
}
],
"database_specific": {
"cwe_ids": [],
"severity": null,
"cwe_ids": [
"CWE-269"
],
"severity": "CRITICAL",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2025-02-07T22:15:13Z"