diff --git a/advisories/github-reviewed/2024/05/GHSA-6wvf-f2vw-3425/GHSA-6wvf-f2vw-3425.json b/advisories/github-reviewed/2024/05/GHSA-6wvf-f2vw-3425/GHSA-6wvf-f2vw-3425.json index bb4d67ee9f8..22e274afa35 100644 --- a/advisories/github-reviewed/2024/05/GHSA-6wvf-f2vw-3425/GHSA-6wvf-f2vw-3425.json +++ b/advisories/github-reviewed/2024/05/GHSA-6wvf-f2vw-3425/GHSA-6wvf-f2vw-3425.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-6wvf-f2vw-3425", - "modified": "2024-10-16T09:30:30Z", + "modified": "2024-10-17T03:31:32Z", "published": "2024-05-14T18:30:52Z", "aliases": [ "CVE-2024-3727" @@ -88,7 +88,7 @@ }, { "type": "WEB", - "url": "https://access.redhat.com/errata/RHSA-2024:0045" + "url": "https://access.redhat.com/security/cve/CVE-2024-3727" }, { "type": "WEB", @@ -142,6 +142,10 @@ "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/SFVSMR7TNLO2KPWJSW4CF64C2QMQXCIN" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2024:0045" + }, { "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2024:3718" @@ -204,7 +208,7 @@ }, { "type": "WEB", - "url": "https://access.redhat.com/security/cve/CVE-2024-3727" + "url": "https://access.redhat.com/errata/RHSA-2024:7941" } ], "database_specific": { diff --git a/advisories/unreviewed/2022/05/GHSA-8q69-pw39-hpqh/GHSA-8q69-pw39-hpqh.json b/advisories/unreviewed/2022/05/GHSA-8q69-pw39-hpqh/GHSA-8q69-pw39-hpqh.json index 432ec24786a..a12ca0f05c0 100644 --- a/advisories/unreviewed/2022/05/GHSA-8q69-pw39-hpqh/GHSA-8q69-pw39-hpqh.json +++ b/advisories/unreviewed/2022/05/GHSA-8q69-pw39-hpqh/GHSA-8q69-pw39-hpqh.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-8q69-pw39-hpqh", - "modified": "2023-12-31T18:30:33Z", + "modified": "2024-10-17T03:31:31Z", "published": "2022-05-24T17:35:51Z", "aliases": [ "CVE-2020-16971" @@ -21,6 +21,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2020-16971" }, + { + "type": "WEB", + "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2020-16971" + }, { "type": "WEB", "url": "https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-16971" diff --git a/advisories/unreviewed/2024/09/GHSA-5ggj-j87m-p7xh/GHSA-5ggj-j87m-p7xh.json b/advisories/unreviewed/2024/09/GHSA-5ggj-j87m-p7xh/GHSA-5ggj-j87m-p7xh.json index e1d29551cc5..f57577c6dc2 100644 --- a/advisories/unreviewed/2024/09/GHSA-5ggj-j87m-p7xh/GHSA-5ggj-j87m-p7xh.json +++ b/advisories/unreviewed/2024/09/GHSA-5ggj-j87m-p7xh/GHSA-5ggj-j87m-p7xh.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-5ggj-j87m-p7xh", - "modified": "2024-09-26T21:31:11Z", + "modified": "2024-10-17T03:31:31Z", "published": "2024-09-26T09:31:42Z", "aliases": [ "CVE-2024-47044" @@ -25,6 +25,10 @@ "type": "WEB", "url": "https://jvn.jp/en/jp/JVN78356367" }, + { + "type": "WEB", + "url": "https://web116.jp/ced/support/news/contents/2024/20240930.html" + }, { "type": "WEB", "url": "https://web116.jp/ced/support/version/broadband/500mi" diff --git a/advisories/unreviewed/2024/10/GHSA-624h-qc7h-qm64/GHSA-624h-qc7h-qm64.json b/advisories/unreviewed/2024/10/GHSA-624h-qc7h-qm64/GHSA-624h-qc7h-qm64.json new file mode 100644 index 00000000000..e93b231a1e5 --- /dev/null +++ b/advisories/unreviewed/2024/10/GHSA-624h-qc7h-qm64/GHSA-624h-qc7h-qm64.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-624h-qc7h-qm64", + "modified": "2024-10-17T03:31:31Z", + "published": "2024-10-17T03:31:31Z", + "aliases": [ + "CVE-2024-9240" + ], + "details": "The ReDi Restaurant Reservation plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 24.0902. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9240" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/redi-restaurant-reservation/trunk/templates/admin_welcome_no_page.php?rev=2988247#L41" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3167881/redi-restaurant-reservation/trunk/templates/admin_welcome_no_page.php" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/bb9fc87e-b376-49ce-ba69-5acef9deda4d?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-10-17T02:15:03Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/10/GHSA-7wrv-9f62-9f8c/GHSA-7wrv-9f62-9f8c.json b/advisories/unreviewed/2024/10/GHSA-7wrv-9f62-9f8c/GHSA-7wrv-9f62-9f8c.json new file mode 100644 index 00000000000..ce673dc1345 --- /dev/null +++ b/advisories/unreviewed/2024/10/GHSA-7wrv-9f62-9f8c/GHSA-7wrv-9f62-9f8c.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7wrv-9f62-9f8c", + "modified": "2024-10-17T03:31:31Z", + "published": "2024-10-17T03:31:31Z", + "aliases": [ + "CVE-2024-9862" + ], + "details": "The Miniorange OTP Verification with Firebase plugin for WordPress is vulnerable to Arbitrary User Password Change in versions up to, and including, 3.6.0. This is due to the plugin providing user-controlled access to objects, letting a user bypass authorization and access system resources, and the user current password check is missing. This makes it possible for unauthenticated attackers to change user passwords and potentially take over administrator accounts.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9862" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/miniorange-firebase-sms-otp-verification/tags/3.6.0/handler/forms/class-loginform.php#L236" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3169869/miniorange-firebase-sms-otp-verification#file3" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/9c3df12d-e526-4a23-89d3-bfdcea9f7b2d?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-639" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-10-17T02:15:03Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/10/GHSA-7xjr-h9cq-3633/GHSA-7xjr-h9cq-3633.json b/advisories/unreviewed/2024/10/GHSA-7xjr-h9cq-3633/GHSA-7xjr-h9cq-3633.json new file mode 100644 index 00000000000..2e57423e9c2 --- /dev/null +++ b/advisories/unreviewed/2024/10/GHSA-7xjr-h9cq-3633/GHSA-7xjr-h9cq-3633.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7xjr-h9cq-3633", + "modified": "2024-10-17T03:31:31Z", + "published": "2024-10-17T03:31:31Z", + "aliases": [ + "CVE-2024-45766" + ], + "details": "Dell OpenManage Enterprise, version(s) OME 4.1 and prior, contain(s) an Improper Control of Generation of Code ('Code Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Code execution.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-45766" + }, + { + "type": "WEB", + "url": "https://www.dell.com/support/kbdoc/en-us/000237300/dsa-2024-426-security-update-for-dell-openmanage-enterprise-vulnerabilities" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-94" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-10-17T02:15:02Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/10/GHSA-9h89-9cwp-q9p5/GHSA-9h89-9cwp-q9p5.json b/advisories/unreviewed/2024/10/GHSA-9h89-9cwp-q9p5/GHSA-9h89-9cwp-q9p5.json new file mode 100644 index 00000000000..bfa8b792a68 --- /dev/null +++ b/advisories/unreviewed/2024/10/GHSA-9h89-9cwp-q9p5/GHSA-9h89-9cwp-q9p5.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9h89-9cwp-q9p5", + "modified": "2024-10-17T03:31:31Z", + "published": "2024-10-17T03:31:31Z", + "aliases": [ + "CVE-2024-9215" + ], + "details": "The Co-Authors, Multiple Authors and Guest Authors in an Author Box with PublishPress Authors plugin for WordPress is vulnerable to Insecure Direct Object Reference to Privilege Escalation/Account Takeover in all versions up to, and including, 4.7.1 via the action_edited_author() due to missing validation on the 'authors-user_id' user controlled key. This makes it possible for authenticated attackers, with Author-level access and above, to update arbitrary user accounts email addresses, including administrators, which can then be leveraged to reset that user's account password and gain access.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9215" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/publishpress-authors/tags/4.7.1/src/core/Classes/Author_Editor.php#L594" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3169244%40publishpress-authors&new=3169244%40publishpress-authors&sfp_email=&sfph_mail=#file7" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/d0506137-82e3-4988-9b23-370465a866c0?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-639" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-10-17T02:15:02Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/10/GHSA-c8q2-82x8-w4xj/GHSA-c8q2-82x8-w4xj.json b/advisories/unreviewed/2024/10/GHSA-c8q2-82x8-w4xj/GHSA-c8q2-82x8-w4xj.json new file mode 100644 index 00000000000..539193f1918 --- /dev/null +++ b/advisories/unreviewed/2024/10/GHSA-c8q2-82x8-w4xj/GHSA-c8q2-82x8-w4xj.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-c8q2-82x8-w4xj", + "modified": "2024-10-17T03:31:31Z", + "published": "2024-10-17T03:31:31Z", + "aliases": [ + "CVE-2024-9940" + ], + "details": "The Calculated Fields Form plugin for WordPress is vulnerable to HTML Injection in all versions up to, and including, 5.2.45. This is due to the plugin not properly neutralizing HTML elements from submitted forms. This makes it possible for unauthenticated attackers to inject arbitrary HTML that will render when the administrator views form submissions in their email.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9940" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3168950%40calculated-fields-form&new=3168950%40calculated-fields-form&sfp_email=&sfph_mail=" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/e2c9f6a5-8698-4452-bf0a-c1d796b2fdad?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-75" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-10-17T02:15:04Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/10/GHSA-cc3h-2hrf-w63x/GHSA-cc3h-2hrf-w63x.json b/advisories/unreviewed/2024/10/GHSA-cc3h-2hrf-w63x/GHSA-cc3h-2hrf-w63x.json new file mode 100644 index 00000000000..f7bfb4f918e --- /dev/null +++ b/advisories/unreviewed/2024/10/GHSA-cc3h-2hrf-w63x/GHSA-cc3h-2hrf-w63x.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cc3h-2hrf-w63x", + "modified": "2024-10-17T03:31:31Z", + "published": "2024-10-17T03:31:31Z", + "aliases": [ + "CVE-2024-9863" + ], + "details": "The UserPro plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 3.6.0 due to the insecure 'administrator' default value for the 'default_user_role' option. This makes it possible for unauthenticated attackers to register an administrator user even if the registration form is disabled.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9863" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/miniorange-firebase-sms-otp-verification/tags/3.6.0/handler/forms/class-registrationform.php#L194" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3169869/miniorange-firebase-sms-otp-verification#file4" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/f04eab14-dd86-4145-b5eb-20d064bc8417?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-266" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-10-17T02:15:04Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/10/GHSA-m582-gvhc-6wg7/GHSA-m582-gvhc-6wg7.json b/advisories/unreviewed/2024/10/GHSA-m582-gvhc-6wg7/GHSA-m582-gvhc-6wg7.json new file mode 100644 index 00000000000..a43c415830f --- /dev/null +++ b/advisories/unreviewed/2024/10/GHSA-m582-gvhc-6wg7/GHSA-m582-gvhc-6wg7.json @@ -0,0 +1,50 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-m582-gvhc-6wg7", + "modified": "2024-10-17T03:31:31Z", + "published": "2024-10-17T03:31:31Z", + "aliases": [ + "CVE-2024-9861" + ], + "details": "The Miniorange OTP Verification with Firebase plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 3.6.0. This is due to missing validation on the token being supplied during the otp login through the plugin. This makes it possible for unauthenticated attackers to log in as any existing user on the site, such as an administrator, if they know the phone number associated with that user.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9861" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/miniorange-firebase-sms-otp-verification/tags/3.6.0/handler/forms/class-loginform.php#L144" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/miniorange-firebase-sms-otp-verification/tags/3.6.0/handler/forms/class-loginform.php#L190" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3169869/miniorange-firebase-sms-otp-verification#file3" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/04045ec3-dd8e-4ac5-bd73-eef6205ecc62?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-288" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-10-17T02:15:03Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/10/GHSA-rc48-r6qm-2vg9/GHSA-rc48-r6qm-2vg9.json b/advisories/unreviewed/2024/10/GHSA-rc48-r6qm-2vg9/GHSA-rc48-r6qm-2vg9.json new file mode 100644 index 00000000000..4137e6e410a --- /dev/null +++ b/advisories/unreviewed/2024/10/GHSA-rc48-r6qm-2vg9/GHSA-rc48-r6qm-2vg9.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rc48-r6qm-2vg9", + "modified": "2024-10-17T03:31:31Z", + "published": "2024-10-17T03:31:31Z", + "aliases": [ + "CVE-2024-45767" + ], + "details": "Dell OpenManage Enterprise, version(s) OME 4.1 and prior, contain(s) an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Information disclosure.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-45767" + }, + { + "type": "WEB", + "url": "https://www.dell.com/support/kbdoc/en-us/000237300/dsa-2024-426-security-update-for-dell-openmanage-enterprise-vulnerabilities" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-10-17T02:15:02Z" + } +} \ No newline at end of file