From f23eb517675a72b5bc6c336f92e47e319702532c Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Sun, 5 Nov 2023 06:31:38 +0000 Subject: [PATCH] Publish Advisories GHSA-g94p-45r2-v659 GHSA-qw78-hfxp-rc5g GHSA-rmx7-grxr-fhm3 --- .../GHSA-g94p-45r2-v659.json | 35 +++++++++++++++++++ .../GHSA-qw78-hfxp-rc5g.json | 35 +++++++++++++++++++ .../GHSA-rmx7-grxr-fhm3.json | 35 +++++++++++++++++++ 3 files changed, 105 insertions(+) create mode 100644 advisories/unreviewed/2023/11/GHSA-g94p-45r2-v659/GHSA-g94p-45r2-v659.json create mode 100644 advisories/unreviewed/2023/11/GHSA-qw78-hfxp-rc5g/GHSA-qw78-hfxp-rc5g.json create mode 100644 advisories/unreviewed/2023/11/GHSA-rmx7-grxr-fhm3/GHSA-rmx7-grxr-fhm3.json diff --git a/advisories/unreviewed/2023/11/GHSA-g94p-45r2-v659/GHSA-g94p-45r2-v659.json b/advisories/unreviewed/2023/11/GHSA-g94p-45r2-v659/GHSA-g94p-45r2-v659.json new file mode 100644 index 00000000000..491d4bc33a8 --- /dev/null +++ b/advisories/unreviewed/2023/11/GHSA-g94p-45r2-v659/GHSA-g94p-45r2-v659.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-g94p-45r2-v659", + "modified": "2023-11-05T06:30:25Z", + "published": "2023-11-05T06:30:25Z", + "aliases": [ + "CVE-2023-47260" + ], + "details": "Redmine before 4.2.11 and 5.0.x before 5.0.6 allows XSS via thumbnails.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-47260" + }, + { + "type": "WEB", + "url": "https://www.redmine.org/projects/redmine/wiki/Security_Advisories" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2023-11-05T04:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/11/GHSA-qw78-hfxp-rc5g/GHSA-qw78-hfxp-rc5g.json b/advisories/unreviewed/2023/11/GHSA-qw78-hfxp-rc5g/GHSA-qw78-hfxp-rc5g.json new file mode 100644 index 00000000000..1a7f12fd822 --- /dev/null +++ b/advisories/unreviewed/2023/11/GHSA-qw78-hfxp-rc5g/GHSA-qw78-hfxp-rc5g.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qw78-hfxp-rc5g", + "modified": "2023-11-05T06:30:25Z", + "published": "2023-11-05T06:30:25Z", + "aliases": [ + "CVE-2023-47259" + ], + "details": "Redmine before 4.2.11 and 5.0.x before 5.0.6 allows XSS in the Textile formatter.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-47259" + }, + { + "type": "WEB", + "url": "https://www.redmine.org/projects/redmine/wiki/Security_Advisories" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2023-11-05T04:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/11/GHSA-rmx7-grxr-fhm3/GHSA-rmx7-grxr-fhm3.json b/advisories/unreviewed/2023/11/GHSA-rmx7-grxr-fhm3/GHSA-rmx7-grxr-fhm3.json new file mode 100644 index 00000000000..4a7e9c2eb33 --- /dev/null +++ b/advisories/unreviewed/2023/11/GHSA-rmx7-grxr-fhm3/GHSA-rmx7-grxr-fhm3.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rmx7-grxr-fhm3", + "modified": "2023-11-05T06:30:25Z", + "published": "2023-11-05T06:30:25Z", + "aliases": [ + "CVE-2023-47258" + ], + "details": "Redmine before 4.2.11 and 5.0.x before 5.0.6 allows XSS in a Markdown formatter.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-47258" + }, + { + "type": "WEB", + "url": "https://www.redmine.org/projects/redmine/wiki/Security_Advisories" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2023-11-05T04:15:10Z" + } +} \ No newline at end of file