Advisory Database Sync

This commit is contained in:
advisory-database[bot]
2025-02-11 18:32:25 +00:00
parent 45e666cf0b
commit fa3e1db641
192 changed files with 5016 additions and 102 deletions
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-3cvf-fpq3-c29m",
"modified": "2023-04-14T06:30:16Z",
"modified": "2025-02-11T18:31:11Z",
"published": "2023-04-11T21:31:01Z",
"aliases": [
"CVE-2023-25415"
@@ -34,7 +34,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-400"
"CWE-400",
"CWE-770"
],
"severity": "HIGH",
"github_reviewed": false,
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-5c7q-4xhv-cmw9",
"modified": "2023-04-14T06:30:15Z",
"modified": "2025-02-11T18:31:11Z",
"published": "2023-04-11T21:31:01Z",
"aliases": [
"CVE-2023-25413"
@@ -25,7 +25,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-384"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-788m-mc5j-98p8",
"modified": "2023-04-07T21:30:16Z",
"modified": "2025-02-11T18:30:59Z",
"published": "2023-04-02T00:30:18Z",
"aliases": [
"CVE-2023-26822"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-82cc-5xg5-62m7",
"modified": "2023-04-14T06:30:16Z",
"modified": "2025-02-11T18:31:11Z",
"published": "2023-04-11T21:31:01Z",
"aliases": [
"CVE-2023-25411"
@@ -34,6 +34,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-639",
"CWE-863"
],
"severity": "MODERATE",
@@ -34,6 +34,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-284",
"CWE-863"
],
"severity": "MODERATE",
@@ -41,7 +41,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-284"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -33,7 +33,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-94"
],
"severity": "CRITICAL",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-r57w-p77g-3j43",
"modified": "2023-04-14T21:30:25Z",
"modified": "2025-02-11T18:31:00Z",
"published": "2023-04-10T15:30:25Z",
"aliases": [
"CVE-2023-1381"
@@ -29,7 +29,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-284"
],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-xfx8-2v9j-75g4",
"modified": "2023-04-14T06:30:15Z",
"modified": "2025-02-11T18:31:11Z",
"published": "2023-04-11T21:31:02Z",
"aliases": [
"CVE-2023-25407"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-xx9q-x7hp-rwhj",
"modified": "2023-04-17T18:30:29Z",
"modified": "2025-02-11T18:31:09Z",
"published": "2023-04-11T12:30:24Z",
"aliases": [
"CVE-2023-27179"
@@ -27,6 +27,10 @@
"type": "WEB",
"url": "https://knowledge-base.secureflag.com/vulnerabilities/unrestricted_file_download/unrestricted_file_download_vulnerability.html"
},
{
"type": "WEB",
"url": "https://packetstorm.news/files/id/171894"
},
{
"type": "WEB",
"url": "https://www.gdidees.eu/cms-1-0.html"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-xxpv-gwrv-58xv",
"modified": "2023-04-14T06:30:15Z",
"modified": "2025-02-11T18:31:11Z",
"published": "2023-04-11T21:31:01Z",
"aliases": [
"CVE-2023-25414"
@@ -25,7 +25,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-770"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
@@ -1,12 +1,12 @@
{
"schema_version": "1.4.0",
"id": "GHSA-m24w-wg7m-x27h",
"modified": "2024-02-27T18:31:01Z",
"modified": "2025-02-11T18:31:11Z",
"published": "2024-02-27T18:31:01Z",
"aliases": [
"CVE-2024-1403"
],
"details": "In OpenEdge Authentication Gateway and AdminServer prior to 11.7.19, 12.2.14, 12.8.1 on all platforms supported by the OpenEdge product, an authentication bypass vulnerability has been identified.  The\nvulnerability is a bypass to authentication based on a failure to properly\nhandle username and password. Certain unexpected\ncontent passed into the credentials can lead to unauthorized access without proper\nauthentication.   \n\n\n\n\n\n\n",
"details": "In OpenEdge Authentication Gateway and AdminServer prior to 11.7.19, 12.2.14, 12.8.1 on all platforms supported by the OpenEdge product, an authentication bypass vulnerability has been identified.  The\nvulnerability is a bypass to authentication based on a failure to properly\nhandle username and password. Certain unexpected\ncontent passed into the credentials can lead to unauthorized access without proper\nauthentication.  ",
"severity": [
{
"type": "CVSS_V3",
@@ -1,12 +1,12 @@
{
"schema_version": "1.4.0",
"id": "GHSA-35gq-67f6-phh5",
"modified": "2024-03-29T15:30:33Z",
"modified": "2025-02-11T18:31:13Z",
"published": "2024-03-29T15:30:33Z",
"aliases": [
"CVE-2024-30508"
],
"details": "Missing Authorization vulnerability in ThimPress WP Hotel Booking.This issue affects WP Hotel Booking: from n/a through 2.0.9.2.\n\n",
"details": "Missing Authorization vulnerability in ThimPress WP Hotel Booking.This issue affects WP Hotel Booking: from n/a through 2.0.9.2.",
"severity": [
{
"type": "CVSS_V3",
@@ -1,12 +1,12 @@
{
"schema_version": "1.4.0",
"id": "GHSA-6cxc-vjp6-ff53",
"modified": "2024-03-27T12:30:41Z",
"modified": "2025-02-11T18:31:12Z",
"published": "2024-03-27T12:30:41Z",
"aliases": [
"CVE-2024-29931"
],
"details": "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Go Maps (formerly WP Google Maps) WP Google Maps allows Reflected XSS.This issue affects WP Google Maps: from n/a through 9.0.29.\n\n",
"details": "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Go Maps (formerly WP Google Maps) WP Google Maps allows Reflected XSS.This issue affects WP Google Maps: from n/a through 9.0.29.",
"severity": [
{
"type": "CVSS_V3",
@@ -1,12 +1,12 @@
{
"schema_version": "1.4.0",
"id": "GHSA-9qhm-743f-cwmp",
"modified": "2024-03-29T15:30:33Z",
"modified": "2025-02-11T18:31:12Z",
"published": "2024-03-29T15:30:33Z",
"aliases": [
"CVE-2024-30502"
],
"details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WP Travel Engine.This issue affects WP Travel Engine: from n/a through 5.7.9.\n\n",
"details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WP Travel Engine.This issue affects WP Travel Engine: from n/a through 5.7.9.",
"severity": [
{
"type": "CVSS_V3",
@@ -29,7 +29,9 @@
}
],
"database_specific": {
"cwe_ids": [],
"cwe_ids": [
"CWE-79"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,

Some files were not shown because too many files have changed in this diff Show More