Advisory Database Sync

This commit is contained in:
advisory-database[bot]
2025-05-27 15:32:50 +00:00
parent 94b4deaf9c
commit f703aea863
51 changed files with 951 additions and 38 deletions
@@ -29,7 +29,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-119"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-5v8v-cp6r-mq7c",
"modified": "2022-09-27T00:00:20Z",
"modified": "2025-05-27T15:31:17Z",
"published": "2022-09-25T00:00:27Z",
"aliases": [
"CVE-2022-41322"
@@ -31,6 +31,14 @@
"type": "WEB",
"url": "https://github.com/kovidgoyal/kitty/compare/v0.26.1...v0.26.2"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/47RK7MBSVY5BWDUTYMJUFPBAYFSWMTOI"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6RRNAPU33PHEH64P77YL3AJO6CTZGHTX"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/47RK7MBSVY5BWDUTYMJUFPBAYFSWMTOI"
@@ -33,7 +33,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-98"
],
"severity": "CRITICAL",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -45,7 +45,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-200"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-h886-rpm5-x6pr",
"modified": "2022-09-25T00:00:15Z",
"modified": "2025-05-27T15:31:16Z",
"published": "2022-09-23T00:00:29Z",
"aliases": [
"CVE-2022-31937"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-qj7c-f3xj-jxpv",
"modified": "2022-09-27T00:00:21Z",
"modified": "2025-05-27T15:31:17Z",
"published": "2022-09-25T00:00:21Z",
"aliases": [
"CVE-2022-40188"
@@ -27,6 +27,18 @@
"type": "WEB",
"url": "https://lists.debian.org/debian-lts-announce/2022/10/msg00008.html"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HIMDNIUI7GTUEKIBBYYW7OCTJQFPDNXL"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/S2VE5K3VDUHJOIA2IGT3G5R76IBADMNE"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/XO6LIVQS62MI5GG4OVYB5RHVZMYNHAHG"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/HIMDNIUI7GTUEKIBBYYW7OCTJQFPDNXL"
@@ -42,7 +54,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-400"
"CWE-400",
"CWE-407"
],
"severity": "HIGH",
"github_reviewed": false,
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-x2rq-mrc8-r79h",
"modified": "2022-09-25T00:00:15Z",
"modified": "2025-05-27T15:31:16Z",
"published": "2022-09-25T00:00:15Z",
"aliases": [
"CVE-2022-37235"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-x6xq-xccv-wjp3",
"modified": "2022-09-28T00:00:25Z",
"modified": "2025-05-27T15:31:16Z",
"published": "2022-09-23T00:00:30Z",
"aliases": [
"CVE-2022-37234"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-244w-g82v-mjgw",
"modified": "2023-12-13T21:30:28Z",
"modified": "2025-05-27T15:31:17Z",
"published": "2023-12-11T06:30:26Z",
"aliases": [
"CVE-2023-48425"
@@ -25,7 +25,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-20"
],
"severity": "CRITICAL",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -61,7 +61,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-200"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -29,7 +29,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-276"
],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-x9qc-m3q8-9g77",
"modified": "2023-12-12T09:30:32Z",
"modified": "2025-05-27T15:31:18Z",
"published": "2023-12-12T09:30:32Z",
"aliases": [
"CVE-2023-41117"
@@ -1,12 +1,12 @@
{
"schema_version": "1.4.0",
"id": "GHSA-pfvj-h8r5-43h5",
"modified": "2024-04-11T03:34:59Z",
"modified": "2025-05-27T15:31:19Z",
"published": "2024-04-11T03:34:59Z",
"aliases": [
"CVE-2024-27967"
],
"details": "Cross-Site Request Forgery (CSRF) vulnerability in Michael Leithold DSGVO All in one for WP.This issue affects DSGVO All in one for WP: from n/a through 4.3.\n\n",
"details": "Cross-Site Request Forgery (CSRF) vulnerability in Michael Leithold DSGVO All in one for WP.This issue affects DSGVO All in one for WP: from n/a through 4.3.",
"severity": [
{
"type": "CVSS_V3",
@@ -29,7 +29,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-129"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -46,7 +46,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-119"
"CWE-119",
"CWE-120"
],
"severity": "HIGH",
"github_reviewed": false,
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-23fp-mrfv-cwv4",
"modified": "2025-05-27T06:30:34Z",
"modified": "2025-05-27T15:31:25Z",
"published": "2025-05-27T06:30:34Z",
"aliases": [
"CVE-2025-48827"
@@ -22,6 +22,10 @@
{
"type": "WEB",
"url": "https://karmainsecurity.com/dont-call-that-protected-method-vbulletin-rce"
},
{
"type": "WEB",
"url": "https://kevintel.com/CVE-2025-48827"
}
],
"database_specific": {
@@ -46,7 +46,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-74"
"CWE-74",
"CWE-89"
],
"severity": "MODERATE",
"github_reviewed": false,
@@ -0,0 +1,64 @@
{
"schema_version": "1.4.0",
"id": "GHSA-3c6j-3hg7-vq95",
"modified": "2025-05-27T15:31:26Z",
"published": "2025-05-27T15:31:26Z",
"aliases": [
"CVE-2025-5244"
],
"details": "A vulnerability was found in GNU Binutils up to 2.44. It has been rated as critical. Affected by this issue is the function elf_gc_sweep of the file bfd/elflink.c of the component ld. The manipulation leads to memory corruption. An attack has to be approached locally. The exploit has been disclosed to the public and may be used. Upgrading to version 2.45 is able to address this issue. It is recommended to upgrade the affected component.",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L"
},
{
"type": "CVSS_V4",
"score": "CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
}
],
"affected": [],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2025-5244"
},
{
"type": "WEB",
"url": "https://sourceware.org/bugzilla/attachment.cgi?id=16010"
},
{
"type": "WEB",
"url": "https://sourceware.org/bugzilla/show_bug.cgi?id=32858"
},
{
"type": "WEB",
"url": "https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=d1458933830456e54223d9fc61f0d9b3a19256f5"
},
{
"type": "WEB",
"url": "https://vuldb.com/?ctiid.310346"
},
{
"type": "WEB",
"url": "https://vuldb.com/?id.310346"
},
{
"type": "WEB",
"url": "https://vuldb.com/?submit.584634"
},
{
"type": "WEB",
"url": "https://www.gnu.org"
}
],
"database_specific": {
"cwe_ids": [
"CWE-119"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2025-05-27T13:15:21Z"
}
}
@@ -0,0 +1,52 @@
{
"schema_version": "1.4.0",
"id": "GHSA-3hh2-42f8-hvgp",
"modified": "2025-05-27T15:31:28Z",
"published": "2025-05-27T15:31:28Z",
"aliases": [
"CVE-2025-5247"
],
"details": "A vulnerability, which was classified as critical, has been found in Gowabby HFish 0.1. This issue affects the function LoadUrl of the file \\view\\url.go. The manipulation of the argument r leads to improper authentication. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L"
},
{
"type": "CVSS_V4",
"score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
}
],
"affected": [],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2025-5247"
},
{
"type": "WEB",
"url": "https://github.com/A7cc/cve/issues/5"
},
{
"type": "WEB",
"url": "https://vuldb.com/?ctiid.310349"
},
{
"type": "WEB",
"url": "https://vuldb.com/?id.310349"
},
{
"type": "WEB",
"url": "https://vuldb.com/?submit.584798"
}
],
"database_specific": {
"cwe_ids": [
"CWE-287"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2025-05-27T15:15:36Z"
}
}
@@ -46,7 +46,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-74"
"CWE-74",
"CWE-89"
],
"severity": "MODERATE",
"github_reviewed": false,

Some files were not shown because too many files have changed in this diff Show More