From fa6a7b6510b69f9798e1a7fffafcca85217d2ec9 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Fri, 15 Mar 2024 15:31:59 +0000 Subject: [PATCH] Advisory Database Sync --- .../GHSA-23gm-fr88-2r8c.json | 11 +++-- .../GHSA-25g3-q597-79m8.json | 11 +++-- .../GHSA-6vr7-3j3q-8546.json | 11 +++-- .../GHSA-7gq6-cq6r-rrpx.json | 11 +++-- .../GHSA-gr5c-gf9x-ww6q.json | 11 +++-- .../GHSA-j66f-jc3v-93vp.json | 11 +++-- .../GHSA-j737-8h5g-42g9.json | 11 +++-- .../GHSA-x6xm-ghm9-28cr.json | 11 +++-- .../GHSA-23rp-qg5j-5vm7.json | 38 +++++++++++++++++ .../GHSA-267q-7c3v-5639.json | 35 ++++++++++++++++ .../GHSA-2fqc-82r2-29m5.json | 38 +++++++++++++++++ .../GHSA-3fmc-m947-75m7.json | 38 +++++++++++++++++ .../GHSA-3v79-p2r2-6744.json | 38 +++++++++++++++++ .../GHSA-4q5v-9h2g-q5rg.json | 38 +++++++++++++++++ .../GHSA-78f7-4rg3-3m3h.json | 38 +++++++++++++++++ .../GHSA-7vp8-r4hc-c8hm.json | 38 +++++++++++++++++ .../GHSA-88vg-w9c4-73rj.json | 38 +++++++++++++++++ .../GHSA-cmmr-m837-c539.json | 38 +++++++++++++++++ .../GHSA-f527-6p69-g47f.json | 38 +++++++++++++++++ .../GHSA-f6mw-hgw7-8wr3.json | 35 ++++++++++++++++ .../GHSA-fjmx-p29g-c9jh.json | 38 +++++++++++++++++ .../GHSA-h2v7-3fqq-7ff5.json | 42 +++++++++++++++++++ .../GHSA-h3h4-5vcv-376h.json | 38 +++++++++++++++++ .../GHSA-hhmq-2c6m-mgv4.json | 2 +- .../GHSA-jg7x-vf3c-4w2p.json | 42 +++++++++++++++++++ .../GHSA-jjf7-vp9p-j843.json | 38 +++++++++++++++++ .../GHSA-jw74-jmpx-mj4j.json | 38 +++++++++++++++++ .../GHSA-p8rh-8mxv-5w8q.json | 35 ++++++++++++++++ .../GHSA-pv5w-g537-v27f.json | 42 +++++++++++++++++++ .../GHSA-q7vp-g92j-c6ph.json | 38 +++++++++++++++++ .../GHSA-rh9q-p39g-xcv7.json | 38 +++++++++++++++++ .../GHSA-v3wq-mp87-4m6r.json | 38 +++++++++++++++++ .../GHSA-v7mm-7g9x-pvgv.json | 38 +++++++++++++++++ .../GHSA-w98r-cv47-64m4.json | 42 +++++++++++++++++++ .../GHSA-x69q-xg96-5x9w.json | 38 +++++++++++++++++ .../GHSA-xrvm-7f7g-5v3x.json | 38 +++++++++++++++++ 36 files changed, 1090 insertions(+), 33 deletions(-) create mode 100644 advisories/unreviewed/2024/03/GHSA-23rp-qg5j-5vm7/GHSA-23rp-qg5j-5vm7.json create mode 100644 advisories/unreviewed/2024/03/GHSA-267q-7c3v-5639/GHSA-267q-7c3v-5639.json create mode 100644 advisories/unreviewed/2024/03/GHSA-2fqc-82r2-29m5/GHSA-2fqc-82r2-29m5.json create mode 100644 advisories/unreviewed/2024/03/GHSA-3fmc-m947-75m7/GHSA-3fmc-m947-75m7.json create mode 100644 advisories/unreviewed/2024/03/GHSA-3v79-p2r2-6744/GHSA-3v79-p2r2-6744.json create mode 100644 advisories/unreviewed/2024/03/GHSA-4q5v-9h2g-q5rg/GHSA-4q5v-9h2g-q5rg.json create mode 100644 advisories/unreviewed/2024/03/GHSA-78f7-4rg3-3m3h/GHSA-78f7-4rg3-3m3h.json create mode 100644 advisories/unreviewed/2024/03/GHSA-7vp8-r4hc-c8hm/GHSA-7vp8-r4hc-c8hm.json create mode 100644 advisories/unreviewed/2024/03/GHSA-88vg-w9c4-73rj/GHSA-88vg-w9c4-73rj.json create mode 100644 advisories/unreviewed/2024/03/GHSA-cmmr-m837-c539/GHSA-cmmr-m837-c539.json create mode 100644 advisories/unreviewed/2024/03/GHSA-f527-6p69-g47f/GHSA-f527-6p69-g47f.json create mode 100644 advisories/unreviewed/2024/03/GHSA-f6mw-hgw7-8wr3/GHSA-f6mw-hgw7-8wr3.json create mode 100644 advisories/unreviewed/2024/03/GHSA-fjmx-p29g-c9jh/GHSA-fjmx-p29g-c9jh.json create mode 100644 advisories/unreviewed/2024/03/GHSA-h2v7-3fqq-7ff5/GHSA-h2v7-3fqq-7ff5.json create mode 100644 advisories/unreviewed/2024/03/GHSA-h3h4-5vcv-376h/GHSA-h3h4-5vcv-376h.json create mode 100644 advisories/unreviewed/2024/03/GHSA-jg7x-vf3c-4w2p/GHSA-jg7x-vf3c-4w2p.json create mode 100644 advisories/unreviewed/2024/03/GHSA-jjf7-vp9p-j843/GHSA-jjf7-vp9p-j843.json create mode 100644 advisories/unreviewed/2024/03/GHSA-jw74-jmpx-mj4j/GHSA-jw74-jmpx-mj4j.json create mode 100644 advisories/unreviewed/2024/03/GHSA-p8rh-8mxv-5w8q/GHSA-p8rh-8mxv-5w8q.json create mode 100644 advisories/unreviewed/2024/03/GHSA-pv5w-g537-v27f/GHSA-pv5w-g537-v27f.json create mode 100644 advisories/unreviewed/2024/03/GHSA-q7vp-g92j-c6ph/GHSA-q7vp-g92j-c6ph.json create mode 100644 advisories/unreviewed/2024/03/GHSA-rh9q-p39g-xcv7/GHSA-rh9q-p39g-xcv7.json create mode 100644 advisories/unreviewed/2024/03/GHSA-v3wq-mp87-4m6r/GHSA-v3wq-mp87-4m6r.json create mode 100644 advisories/unreviewed/2024/03/GHSA-v7mm-7g9x-pvgv/GHSA-v7mm-7g9x-pvgv.json create mode 100644 advisories/unreviewed/2024/03/GHSA-w98r-cv47-64m4/GHSA-w98r-cv47-64m4.json create mode 100644 advisories/unreviewed/2024/03/GHSA-x69q-xg96-5x9w/GHSA-x69q-xg96-5x9w.json create mode 100644 advisories/unreviewed/2024/03/GHSA-xrvm-7f7g-5v3x/GHSA-xrvm-7f7g-5v3x.json diff --git a/advisories/unreviewed/2024/02/GHSA-23gm-fr88-2r8c/GHSA-23gm-fr88-2r8c.json b/advisories/unreviewed/2024/02/GHSA-23gm-fr88-2r8c/GHSA-23gm-fr88-2r8c.json index 37e645d4e0b..04109f02bf0 100644 --- a/advisories/unreviewed/2024/02/GHSA-23gm-fr88-2r8c/GHSA-23gm-fr88-2r8c.json +++ b/advisories/unreviewed/2024/02/GHSA-23gm-fr88-2r8c/GHSA-23gm-fr88-2r8c.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-23gm-fr88-2r8c", - "modified": "2024-03-01T15:31:36Z", + "modified": "2024-03-15T15:30:42Z", "published": "2024-02-20T18:30:34Z", "aliases": [ "CVE-2023-52434" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nsmb: client: fix potential OOBs in smb2_parse_contexts()\n\nValidate offsets and lengths before dereferencing create contexts in\nsmb2_parse_contexts().\n\nThis fixes following oops when accessing invalid create contexts from\nserver:\n\n BUG: unable to handle page fault for address: ffff8881178d8cc3\n #PF: supervisor read access in kernel mode\n #PF: error_code(0x0000) - not-present page\n PGD 4a01067 P4D 4a01067 PUD 0\n Oops: 0000 [#1] PREEMPT SMP NOPTI\n CPU: 3 PID: 1736 Comm: mount.cifs Not tainted 6.7.0-rc4 #1\n Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS\n rel-1.16.2-3-gd478f380-rebuilt.opensuse.org 04/01/2014\n RIP: 0010:smb2_parse_contexts+0xa0/0x3a0 [cifs]\n Code: f8 10 75 13 48 b8 93 ad 25 50 9c b4 11 e7 49 39 06 0f 84 d2 00\n 00 00 8b 45 00 85 c0 74 61 41 29 c5 48 01 c5 41 83 fd 0f 76 55 <0f> b7\n 7d 04 0f b7 45 06 4c 8d 74 3d 00 66 83 f8 04 75 bc ba 04 00\n RSP: 0018:ffffc900007939e0 EFLAGS: 00010216\n RAX: ffffc90000793c78 RBX: ffff8880180cc000 RCX: ffffc90000793c90\n RDX: ffffc90000793cc0 RSI: ffff8880178d8cc0 RDI: ffff8880180cc000\n RBP: ffff8881178d8cbf R08: ffffc90000793c22 R09: 0000000000000000\n R10: ffff8880180cc000 R11: 0000000000000024 R12: 0000000000000000\n R13: 0000000000000020 R14: 0000000000000000 R15: ffffc90000793c22\n FS: 00007f873753cbc0(0000) GS:ffff88806bc00000(0000)\n knlGS:0000000000000000\n CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\n CR2: ffff8881178d8cc3 CR3: 00000000181ca000 CR4: 0000000000750ef0\n PKRU: 55555554\n Call Trace:\n \n ? __die+0x23/0x70\n ? page_fault_oops+0x181/0x480\n ? search_module_extables+0x19/0x60\n ? srso_alias_return_thunk+0x5/0xfbef5\n ? exc_page_fault+0x1b6/0x1c0\n ? asm_exc_page_fault+0x26/0x30\n ? smb2_parse_contexts+0xa0/0x3a0 [cifs]\n SMB2_open+0x38d/0x5f0 [cifs]\n ? smb2_is_path_accessible+0x138/0x260 [cifs]\n smb2_is_path_accessible+0x138/0x260 [cifs]\n cifs_is_path_remote+0x8d/0x230 [cifs]\n cifs_mount+0x7e/0x350 [cifs]\n cifs_smb3_do_mount+0x128/0x780 [cifs]\n smb3_get_tree+0xd9/0x290 [cifs]\n vfs_get_tree+0x2c/0x100\n ? capable+0x37/0x70\n path_mount+0x2d7/0xb80\n ? srso_alias_return_thunk+0x5/0xfbef5\n ? _raw_spin_unlock_irqrestore+0x44/0x60\n __x64_sys_mount+0x11a/0x150\n do_syscall_64+0x47/0xf0\n entry_SYSCALL_64_after_hwframe+0x6f/0x77\n RIP: 0033:0x7f8737657b1e", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -41,9 +44,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-119" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-20T18:15:50Z" diff --git a/advisories/unreviewed/2024/02/GHSA-25g3-q597-79m8/GHSA-25g3-q597-79m8.json b/advisories/unreviewed/2024/02/GHSA-25g3-q597-79m8/GHSA-25g3-q597-79m8.json index 3743af99365..4164d55a10d 100644 --- a/advisories/unreviewed/2024/02/GHSA-25g3-q597-79m8/GHSA-25g3-q597-79m8.json +++ b/advisories/unreviewed/2024/02/GHSA-25g3-q597-79m8/GHSA-25g3-q597-79m8.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-25g3-q597-79m8", - "modified": "2024-02-20T21:30:26Z", + "modified": "2024-03-15T15:30:42Z", "published": "2024-02-20T21:30:26Z", "aliases": [ "CVE-2023-52438" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nbinder: fix use-after-free in shinker's callback\n\nThe mmap read lock is used during the shrinker's callback, which means\nthat using alloc->vma pointer isn't safe as it can race with munmap().\nAs of commit dd2283f2605e (\"mm: mmap: zap pages with read mmap_sem in\nmunmap\") the mmap lock is downgraded after the vma has been isolated.\n\nI was able to reproduce this issue by manually adding some delays and\ntriggering page reclaiming through the shrinker's debug sysfs. The\nfollowing KASAN report confirms the UAF:\n\n ==================================================================\n BUG: KASAN: slab-use-after-free in zap_page_range_single+0x470/0x4b8\n Read of size 8 at addr ffff356ed50e50f0 by task bash/478\n\n CPU: 1 PID: 478 Comm: bash Not tainted 6.6.0-rc5-00055-g1c8b86a3799f-dirty #70\n Hardware name: linux,dummy-virt (DT)\n Call trace:\n zap_page_range_single+0x470/0x4b8\n binder_alloc_free_page+0x608/0xadc\n __list_lru_walk_one+0x130/0x3b0\n list_lru_walk_node+0xc4/0x22c\n binder_shrink_scan+0x108/0x1dc\n shrinker_debugfs_scan_write+0x2b4/0x500\n full_proxy_write+0xd4/0x140\n vfs_write+0x1ac/0x758\n ksys_write+0xf0/0x1dc\n __arm64_sys_write+0x6c/0x9c\n\n Allocated by task 492:\n kmem_cache_alloc+0x130/0x368\n vm_area_alloc+0x2c/0x190\n mmap_region+0x258/0x18bc\n do_mmap+0x694/0xa60\n vm_mmap_pgoff+0x170/0x29c\n ksys_mmap_pgoff+0x290/0x3a0\n __arm64_sys_mmap+0xcc/0x144\n\n Freed by task 491:\n kmem_cache_free+0x17c/0x3c8\n vm_area_free_rcu_cb+0x74/0x98\n rcu_core+0xa38/0x26d4\n rcu_core_si+0x10/0x1c\n __do_softirq+0x2fc/0xd24\n\n Last potentially related work creation:\n __call_rcu_common.constprop.0+0x6c/0xba0\n call_rcu+0x10/0x1c\n vm_area_free+0x18/0x24\n remove_vma+0xe4/0x118\n do_vmi_align_munmap.isra.0+0x718/0xb5c\n do_vmi_munmap+0xdc/0x1fc\n __vm_munmap+0x10c/0x278\n __arm64_sys_munmap+0x58/0x7c\n\nFix this issue by performing instead a vma_lookup() which will fail to\nfind the vma that was isolated before the mmap lock downgrade. Note that\nthis option has better performance than upgrading to a mmap write lock\nwhich would increase contention. Plus, mmap_write_trylock() has been\nrecently removed anyway.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -49,9 +52,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-416" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-20T21:15:08Z" diff --git a/advisories/unreviewed/2024/02/GHSA-6vr7-3j3q-8546/GHSA-6vr7-3j3q-8546.json b/advisories/unreviewed/2024/02/GHSA-6vr7-3j3q-8546/GHSA-6vr7-3j3q-8546.json index 72472f74cfd..71d8309b67c 100644 --- a/advisories/unreviewed/2024/02/GHSA-6vr7-3j3q-8546/GHSA-6vr7-3j3q-8546.json +++ b/advisories/unreviewed/2024/02/GHSA-6vr7-3j3q-8546/GHSA-6vr7-3j3q-8546.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-6vr7-3j3q-8546", - "modified": "2024-02-23T09:30:38Z", + "modified": "2024-03-15T15:30:42Z", "published": "2024-02-20T21:30:25Z", "aliases": [ "CVE-2023-52435" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: prevent mss overflow in skb_segment()\n\nOnce again syzbot is able to crash the kernel in skb_segment() [1]\n\nGSO_BY_FRAGS is a forbidden value, but unfortunately the following\ncomputation in skb_segment() can reach it quite easily :\n\n\tmss = mss * partial_segs;\n\n65535 = 3 * 5 * 17 * 257, so many initial values of mss can lead to\na bad final result.\n\nMake sure to limit segmentation so that the new mss value is smaller\nthan GSO_BY_FRAGS.\n\n[1]\n\ngeneral protection fault, probably for non-canonical address 0xdffffc000000000e: 0000 [#1] PREEMPT SMP KASAN\nKASAN: null-ptr-deref in range [0x0000000000000070-0x0000000000000077]\nCPU: 1 PID: 5079 Comm: syz-executor993 Not tainted 6.7.0-rc4-syzkaller-00141-g1ae4cd3cbdd0 #0\nHardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 11/10/2023\nRIP: 0010:skb_segment+0x181d/0x3f30 net/core/skbuff.c:4551\nCode: 83 e3 02 e9 fb ed ff ff e8 90 68 1c f9 48 8b 84 24 f8 00 00 00 48 8d 78 70 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 <0f> b6 04 02 84 c0 74 08 3c 03 0f 8e 8a 21 00 00 48 8b 84 24 f8 00\nRSP: 0018:ffffc900043473d0 EFLAGS: 00010202\nRAX: dffffc0000000000 RBX: 0000000000010046 RCX: ffffffff886b1597\nRDX: 000000000000000e RSI: ffffffff886b2520 RDI: 0000000000000070\nRBP: ffffc90004347578 R08: 0000000000000005 R09: 000000000000ffff\nR10: 000000000000ffff R11: 0000000000000002 R12: ffff888063202ac0\nR13: 0000000000010000 R14: 000000000000ffff R15: 0000000000000046\nFS: 0000555556e7e380(0000) GS:ffff8880b9900000(0000) knlGS:0000000000000000\nCS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\nCR2: 0000000020010000 CR3: 0000000027ee2000 CR4: 00000000003506f0\nDR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000\nDR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400\nCall Trace:\n\nudp6_ufo_fragment+0xa0e/0xd00 net/ipv6/udp_offload.c:109\nipv6_gso_segment+0x534/0x17e0 net/ipv6/ip6_offload.c:120\nskb_mac_gso_segment+0x290/0x610 net/core/gso.c:53\n__skb_gso_segment+0x339/0x710 net/core/gso.c:124\nskb_gso_segment include/net/gso.h:83 [inline]\nvalidate_xmit_skb+0x36c/0xeb0 net/core/dev.c:3626\n__dev_queue_xmit+0x6f3/0x3d60 net/core/dev.c:4338\ndev_queue_xmit include/linux/netdevice.h:3134 [inline]\npacket_xmit+0x257/0x380 net/packet/af_packet.c:276\npacket_snd net/packet/af_packet.c:3087 [inline]\npacket_sendmsg+0x24c6/0x5220 net/packet/af_packet.c:3119\nsock_sendmsg_nosec net/socket.c:730 [inline]\n__sock_sendmsg+0xd5/0x180 net/socket.c:745\n__sys_sendto+0x255/0x340 net/socket.c:2190\n__do_sys_sendto net/socket.c:2202 [inline]\n__se_sys_sendto net/socket.c:2198 [inline]\n__x64_sys_sendto+0xe0/0x1b0 net/socket.c:2198\ndo_syscall_x64 arch/x86/entry/common.c:52 [inline]\ndo_syscall_64+0x40/0x110 arch/x86/entry/common.c:83\nentry_SYSCALL_64_after_hwframe+0x63/0x6b\nRIP: 0033:0x7f8692032aa9\nCode: 28 00 00 00 75 05 48 83 c4 28 c3 e8 d1 19 00 00 90 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 c7 c1 b8 ff ff ff f7 d8 64 89 01 48\nRSP: 002b:00007fff8d685418 EFLAGS: 00000246 ORIG_RAX: 000000000000002c\nRAX: ffffffffffffffda RBX: 0000000000000003 RCX: 00007f8692032aa9\nRDX: 0000000000010048 RSI: 00000000200000c0 RDI: 0000000000000003\nRBP: 00000000000f4240 R08: 0000000020000540 R09: 0000000000000014\nR10: 0000000000000000 R11: 0000000000000246 R12: 00007fff8d685480\nR13: 0000000000000001 R14: 00007fff8d685480 R15: 0000000000000003\n\nModules linked in:\n---[ end trace 0000000000000000 ]---\nRIP: 0010:skb_segment+0x181d/0x3f30 net/core/skbuff.c:4551\nCode: 83 e3 02 e9 fb ed ff ff e8 90 68 1c f9 48 8b 84 24 f8 00 00 00 48 8d 78 70 48 b8 00 00 00 00 00 fc ff df 48 89 fa 48 c1 ea 03 <0f> b6 04 02 84 c0 74 08 3c 03 0f 8e 8a 21 00 00 48 8b 84 24 f8 00\nRSP: 0018:ffffc900043473d0 EFLAGS: 00010202\nRAX: dffffc0000000000 RBX: 0000000000010046 RCX: ffffffff886b1597\nRDX: 000000000000000e RSI: ffffffff886b2520 RDI: 0000000000000070\nRBP: ffffc90004347578 R0\n---truncated---", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -45,9 +48,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-119" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-20T20:15:08Z" diff --git a/advisories/unreviewed/2024/02/GHSA-7gq6-cq6r-rrpx/GHSA-7gq6-cq6r-rrpx.json b/advisories/unreviewed/2024/02/GHSA-7gq6-cq6r-rrpx/GHSA-7gq6-cq6r-rrpx.json index 1dc21aad398..8181125bb4d 100644 --- a/advisories/unreviewed/2024/02/GHSA-7gq6-cq6r-rrpx/GHSA-7gq6-cq6r-rrpx.json +++ b/advisories/unreviewed/2024/02/GHSA-7gq6-cq6r-rrpx/GHSA-7gq6-cq6r-rrpx.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-7gq6-cq6r-rrpx", - "modified": "2024-02-20T21:30:26Z", + "modified": "2024-03-15T15:30:42Z", "published": "2024-02-20T21:30:26Z", "aliases": [ "CVE-2023-52439" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nuio: Fix use-after-free in uio_open\n\ncore-1\t\t\t\tcore-2\n-------------------------------------------------------\nuio_unregister_device\t\tuio_open\n\t\t\t\tidev = idr_find()\ndevice_unregister(&idev->dev)\nput_device(&idev->dev)\nuio_device_release\n\t\t\t\tget_device(&idev->dev)\nkfree(idev)\nuio_free_minor(minor)\n\t\t\t\tuio_release\n\t\t\t\tput_device(&idev->dev)\n\t\t\t\tkfree(idev)\n-------------------------------------------------------\n\nIn the core-1 uio_unregister_device(), the device_unregister will kfree\nidev when the idev->dev kobject ref is 1. But after core-1\ndevice_unregister, put_device and before doing kfree, the core-2 may\nget_device. Then:\n1. After core-1 kfree idev, the core-2 will do use-after-free for idev.\n2. When core-2 do uio_release and put_device, the idev will be double\n freed.\n\nTo address this issue, we can get idev atomic & inc idev reference with\nminor_lock.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -53,9 +56,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-415" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-20T21:15:08Z" diff --git a/advisories/unreviewed/2024/02/GHSA-gr5c-gf9x-ww6q/GHSA-gr5c-gf9x-ww6q.json b/advisories/unreviewed/2024/02/GHSA-gr5c-gf9x-ww6q/GHSA-gr5c-gf9x-ww6q.json index 7904c3a94e3..a4290ae735b 100644 --- a/advisories/unreviewed/2024/02/GHSA-gr5c-gf9x-ww6q/GHSA-gr5c-gf9x-ww6q.json +++ b/advisories/unreviewed/2024/02/GHSA-gr5c-gf9x-ww6q/GHSA-gr5c-gf9x-ww6q.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-gr5c-gf9x-ww6q", - "modified": "2024-02-21T09:31:01Z", + "modified": "2024-03-15T15:30:42Z", "published": "2024-02-21T09:31:01Z", "aliases": [ "CVE-2023-52440" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nksmbd: fix slub overflow in ksmbd_decode_ntlmssp_auth_blob()\n\nIf authblob->SessionKey.Length is bigger than session key\nsize(CIFS_KEY_SIZE), slub overflow can happen in key exchange codes.\ncifs_arc4_crypt copy to session key array from SessionKey from client.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -41,9 +44,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-119" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-21T08:15:45Z" diff --git a/advisories/unreviewed/2024/02/GHSA-j66f-jc3v-93vp/GHSA-j66f-jc3v-93vp.json b/advisories/unreviewed/2024/02/GHSA-j66f-jc3v-93vp/GHSA-j66f-jc3v-93vp.json index 4587b40d0fd..756139b4f2d 100644 --- a/advisories/unreviewed/2024/02/GHSA-j66f-jc3v-93vp/GHSA-j66f-jc3v-93vp.json +++ b/advisories/unreviewed/2024/02/GHSA-j66f-jc3v-93vp/GHSA-j66f-jc3v-93vp.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-j66f-jc3v-93vp", - "modified": "2024-02-28T03:30:30Z", + "modified": "2024-03-15T15:30:42Z", "published": "2024-02-21T15:30:45Z", "aliases": [ "CVE-2024-26582" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: tls: fix use-after-free with partial reads and async decrypt\n\ntls_decrypt_sg doesn't take a reference on the pages from clear_skb,\nso the put_page() in tls_decrypt_done releases them, and we trigger\na use-after-free in process_rx_list when we try to read from the\npartially-read skb.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -45,9 +48,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-416" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-21T15:15:09Z" diff --git a/advisories/unreviewed/2024/02/GHSA-j737-8h5g-42g9/GHSA-j737-8h5g-42g9.json b/advisories/unreviewed/2024/02/GHSA-j737-8h5g-42g9/GHSA-j737-8h5g-42g9.json index f7511a51ba2..afe483abca8 100644 --- a/advisories/unreviewed/2024/02/GHSA-j737-8h5g-42g9/GHSA-j737-8h5g-42g9.json +++ b/advisories/unreviewed/2024/02/GHSA-j737-8h5g-42g9/GHSA-j737-8h5g-42g9.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-j737-8h5g-42g9", - "modified": "2024-02-28T03:30:30Z", + "modified": "2024-03-15T15:30:42Z", "published": "2024-02-21T15:30:45Z", "aliases": [ "CVE-2024-26583" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ntls: fix race between async notify and socket close\n\nThe submitting thread (one which called recvmsg/sendmsg)\nmay exit as soon as the async crypto handler calls complete()\nso any code past that point risks touching already freed data.\n\nTry to avoid the locking and extra flags altogether.\nHave the main thread hold an extra reference, this way\nwe can depend solely on the atomic ref counter for\nsynchronization.\n\nDon't futz with reiniting the completion, either, we are now\ntightly controlling when completion fires.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -45,9 +48,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-362" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-21T15:15:09Z" diff --git a/advisories/unreviewed/2024/02/GHSA-x6xm-ghm9-28cr/GHSA-x6xm-ghm9-28cr.json b/advisories/unreviewed/2024/02/GHSA-x6xm-ghm9-28cr/GHSA-x6xm-ghm9-28cr.json index 025ee262469..cfccf8a3c41 100644 --- a/advisories/unreviewed/2024/02/GHSA-x6xm-ghm9-28cr/GHSA-x6xm-ghm9-28cr.json +++ b/advisories/unreviewed/2024/02/GHSA-x6xm-ghm9-28cr/GHSA-x6xm-ghm9-28cr.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-x6xm-ghm9-28cr", - "modified": "2024-02-21T09:31:01Z", + "modified": "2024-03-15T15:30:42Z", "published": "2024-02-21T09:31:01Z", "aliases": [ "CVE-2023-52441" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nksmbd: fix out of bounds in init_smb2_rsp_hdr()\n\nIf client send smb2 negotiate request and then send smb1 negotiate\nrequest, init_smb2_rsp_hdr is called for smb1 negotiate request since\nneed_neg is set to false. This patch ignore smb1 packets after ->need_neg\nis set to false.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-119" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-21T08:15:45Z" diff --git a/advisories/unreviewed/2024/03/GHSA-23rp-qg5j-5vm7/GHSA-23rp-qg5j-5vm7.json b/advisories/unreviewed/2024/03/GHSA-23rp-qg5j-5vm7/GHSA-23rp-qg5j-5vm7.json new file mode 100644 index 00000000000..991d85f37c8 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-23rp-qg5j-5vm7/GHSA-23rp-qg5j-5vm7.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-23rp-qg5j-5vm7", + "modified": "2024-03-15T15:30:44Z", + "published": "2024-03-15T15:30:44Z", + "aliases": [ + "CVE-2023-50898" + ], + "details": "Missing Authorization vulnerability in sirv.Com Sirv.This issue affects Sirv: from n/a through 7.1.2.\n\n", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-50898" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/sirv/wordpress-image-optimizer-resizer-and-cdn-sirv-plugin-7-1-2-broken-access-control-csrf-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-862" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-15T15:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-267q-7c3v-5639/GHSA-267q-7c3v-5639.json b/advisories/unreviewed/2024/03/GHSA-267q-7c3v-5639/GHSA-267q-7c3v-5639.json new file mode 100644 index 00000000000..6e0ac65fa11 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-267q-7c3v-5639/GHSA-267q-7c3v-5639.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-267q-7c3v-5639", + "modified": "2024-03-15T15:30:44Z", + "published": "2024-03-15T15:30:44Z", + "aliases": [ + "CVE-2024-28318" + ], + "details": "gpac 2.3-DEV-rev921-g422b78ecf-master was discovered to contain a out of boundary write vulnerability via swf_get_string at scene_manager/swf_parse.c:325", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-28318" + }, + { + "type": "WEB", + "url": "https://github.com/gpac/gpac/issues/2764" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-15T15:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-2fqc-82r2-29m5/GHSA-2fqc-82r2-29m5.json b/advisories/unreviewed/2024/03/GHSA-2fqc-82r2-29m5/GHSA-2fqc-82r2-29m5.json new file mode 100644 index 00000000000..d9858f485f5 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-2fqc-82r2-29m5/GHSA-2fqc-82r2-29m5.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2fqc-82r2-29m5", + "modified": "2024-03-15T15:30:43Z", + "published": "2024-03-15T15:30:43Z", + "aliases": [ + "CVE-2024-25598" + ], + "details": "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Livemesh Livemesh Addons for Elementor allows Stored XSS.This issue affects Livemesh Addons for Elementor: from n/a through 8.3.\n\n", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-25598" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/addons-for-elementor/wordpress-elementor-addons-by-livemesh-plugin-8-3-cross-site-scripting-xss-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-15T13:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-3fmc-m947-75m7/GHSA-3fmc-m947-75m7.json b/advisories/unreviewed/2024/03/GHSA-3fmc-m947-75m7/GHSA-3fmc-m947-75m7.json new file mode 100644 index 00000000000..0178b0ec96f --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-3fmc-m947-75m7/GHSA-3fmc-m947-75m7.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3fmc-m947-75m7", + "modified": "2024-03-15T15:30:43Z", + "published": "2024-03-15T15:30:43Z", + "aliases": [ + "CVE-2024-27193" + ], + "details": "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PayU PayU India allows Reflected XSS.This issue affects PayU India: from n/a through 3.8.2.\n\n", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-27193" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/payu-india/wordpress-payu-india-plugin-3-8-2-reflected-cross-site-scripting-xss-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-15T13:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-3v79-p2r2-6744/GHSA-3v79-p2r2-6744.json b/advisories/unreviewed/2024/03/GHSA-3v79-p2r2-6744/GHSA-3v79-p2r2-6744.json new file mode 100644 index 00000000000..43dea20d97c --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-3v79-p2r2-6744/GHSA-3v79-p2r2-6744.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3v79-p2r2-6744", + "modified": "2024-03-15T15:30:43Z", + "published": "2024-03-15T15:30:43Z", + "aliases": [ + "CVE-2024-27192" + ], + "details": "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Scott Reilly Configure SMTP allows Reflected XSS.This issue affects Configure SMTP: from n/a through 3.1.\n\n", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-27192" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/configure-smtp/wordpress-configure-smtp-plugin-3-1-reflected-cross-site-scripting-xss-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-15T13:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-4q5v-9h2g-q5rg/GHSA-4q5v-9h2g-q5rg.json b/advisories/unreviewed/2024/03/GHSA-4q5v-9h2g-q5rg/GHSA-4q5v-9h2g-q5rg.json new file mode 100644 index 00000000000..b41c3d5751b --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-4q5v-9h2g-q5rg/GHSA-4q5v-9h2g-q5rg.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4q5v-9h2g-q5rg", + "modified": "2024-03-15T15:30:43Z", + "published": "2024-03-15T15:30:43Z", + "aliases": [ + "CVE-2024-25596" + ], + "details": "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Doofinder Doofinder for WooCommerce allows Stored XSS.This issue affects Doofinder for WooCommerce: from n/a through 2.1.8.\n\n", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-25596" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/doofinder-for-woocommerce/wordpress-doofinder-for-woocommerce-plugin-2-1-8-cross-site-scripting-xss-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-15T14:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-78f7-4rg3-3m3h/GHSA-78f7-4rg3-3m3h.json b/advisories/unreviewed/2024/03/GHSA-78f7-4rg3-3m3h/GHSA-78f7-4rg3-3m3h.json new file mode 100644 index 00000000000..56f19f51c07 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-78f7-4rg3-3m3h/GHSA-78f7-4rg3-3m3h.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-78f7-4rg3-3m3h", + "modified": "2024-03-15T15:30:44Z", + "published": "2024-03-15T15:30:44Z", + "aliases": [ + "CVE-2023-51522" + ], + "details": "Cross-Site Request Forgery (CSRF) vulnerability in Cozmoslabs Paid Member Subscriptions.This issue affects Paid Member Subscriptions: from n/a through 2.10.4.\n\n", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-51522" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/paid-member-subscriptions/wordpress-paid-membership-subscriptions-plugin-2-10-4-cross-site-request-forgery-csrf-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-352" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-15T15:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-7vp8-r4hc-c8hm/GHSA-7vp8-r4hc-c8hm.json b/advisories/unreviewed/2024/03/GHSA-7vp8-r4hc-c8hm/GHSA-7vp8-r4hc-c8hm.json new file mode 100644 index 00000000000..cc2cf164cf3 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-7vp8-r4hc-c8hm/GHSA-7vp8-r4hc-c8hm.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7vp8-r4hc-c8hm", + "modified": "2024-03-15T15:30:43Z", + "published": "2024-03-15T15:30:43Z", + "aliases": [ + "CVE-2024-25919" + ], + "details": "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Hiroaki Miyashita Custom Field Template allows Stored XSS.This issue affects Custom Field Template: from n/a through 2.6.\n\n", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-25919" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/custom-field-template/wordpress-custom-field-template-plugin-2-6-cross-site-scripting-xss-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-15T13:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-88vg-w9c4-73rj/GHSA-88vg-w9c4-73rj.json b/advisories/unreviewed/2024/03/GHSA-88vg-w9c4-73rj/GHSA-88vg-w9c4-73rj.json new file mode 100644 index 00000000000..b6263e324e5 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-88vg-w9c4-73rj/GHSA-88vg-w9c4-73rj.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-88vg-w9c4-73rj", + "modified": "2024-03-15T15:30:43Z", + "published": "2024-03-15T15:30:43Z", + "aliases": [ + "CVE-2024-25592" + ], + "details": "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPMU DEV Broken Link Checker allows Stored XSS.This issue affects Broken Link Checker: from n/a through 2.2.3.\n\n", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-25592" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/broken-link-checker/wordpress-broken-link-checker-plugin-2-2-3-cross-site-scripting-xss-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-15T14:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-cmmr-m837-c539/GHSA-cmmr-m837-c539.json b/advisories/unreviewed/2024/03/GHSA-cmmr-m837-c539/GHSA-cmmr-m837-c539.json new file mode 100644 index 00000000000..c633cfa44ef --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-cmmr-m837-c539/GHSA-cmmr-m837-c539.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cmmr-m837-c539", + "modified": "2024-03-15T15:30:43Z", + "published": "2024-03-15T15:30:43Z", + "aliases": [ + "CVE-2024-25593" + ], + "details": "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Basix NEX-Forms – Ultimate Form Builder allows Stored XSS.This issue affects NEX-Forms – Ultimate Form Builder: from n/a through 8.5.5.\n\n", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-25593" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/nex-forms-express-wp-form-builder/wordpress-nex-forms-plugin-8-5-5-cross-site-scripting-xss-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-15T14:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-f527-6p69-g47f/GHSA-f527-6p69-g47f.json b/advisories/unreviewed/2024/03/GHSA-f527-6p69-g47f/GHSA-f527-6p69-g47f.json new file mode 100644 index 00000000000..b8be5ddf142 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-f527-6p69-g47f/GHSA-f527-6p69-g47f.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-f527-6p69-g47f", + "modified": "2024-03-15T15:30:43Z", + "published": "2024-03-15T15:30:43Z", + "aliases": [ + "CVE-2024-25921" + ], + "details": "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Concerted Action Action Network allows Reflected XSS.This issue affects Action Network: from n/a through 1.4.2.\n\n", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-25921" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/wp-action-network/wordpress-action-network-plugin-1-4-2-reflected-cross-site-scripting-xss-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-15T13:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-f6mw-hgw7-8wr3/GHSA-f6mw-hgw7-8wr3.json b/advisories/unreviewed/2024/03/GHSA-f6mw-hgw7-8wr3/GHSA-f6mw-hgw7-8wr3.json new file mode 100644 index 00000000000..1ea28fdcdaf --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-f6mw-hgw7-8wr3/GHSA-f6mw-hgw7-8wr3.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-f6mw-hgw7-8wr3", + "modified": "2024-03-15T15:30:44Z", + "published": "2024-03-15T15:30:44Z", + "aliases": [ + "CVE-2024-28319" + ], + "details": "gpac 2.3-DEV-rev921-g422b78ecf-master was discovered to contain an out of boundary read vulnerability via gf_dash_setup_period media_tools/dash_client.c:6374", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-28319" + }, + { + "type": "WEB", + "url": "https://github.com/gpac/gpac/issues/2763" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-15T15:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-fjmx-p29g-c9jh/GHSA-fjmx-p29g-c9jh.json b/advisories/unreviewed/2024/03/GHSA-fjmx-p29g-c9jh/GHSA-fjmx-p29g-c9jh.json new file mode 100644 index 00000000000..edeb8503cd7 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-fjmx-p29g-c9jh/GHSA-fjmx-p29g-c9jh.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fjmx-p29g-c9jh", + "modified": "2024-03-15T15:30:44Z", + "published": "2024-03-15T15:30:44Z", + "aliases": [ + "CVE-2023-50886" + ], + "details": "Cross-Site Request Forgery (CSRF), Incorrect Authorization vulnerability in wpWax Legal Pages.This issue affects Legal Pages: from n/a through 1.3.7.\n\n", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-50886" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/legal-pages/wordpress-legal-pages-plugin-1-3-7-broken-access-control-csrf-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-352" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-15T15:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-h2v7-3fqq-7ff5/GHSA-h2v7-3fqq-7ff5.json b/advisories/unreviewed/2024/03/GHSA-h2v7-3fqq-7ff5/GHSA-h2v7-3fqq-7ff5.json new file mode 100644 index 00000000000..33bde068ef6 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-h2v7-3fqq-7ff5/GHSA-h2v7-3fqq-7ff5.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-h2v7-3fqq-7ff5", + "modified": "2024-03-15T15:30:44Z", + "published": "2024-03-15T15:30:44Z", + "aliases": [ + "CVE-2023-46179" + ], + "details": "IBM Sterling Secure Proxy 6.0.3 and 6.1.0 does not set the secure attribute on authorization tokens or session cookies. Attackers may be able to get the cookie values by sending a http:// link to a user or by planting this link in a site the user goes to. The cookie will be sent to the insecure link and the attacker can then obtain the cookie value by snooping the traffic. IBM X-Force ID: 269683.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-46179" + }, + { + "type": "WEB", + "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/269683" + }, + { + "type": "WEB", + "url": "https://www.ibm.com/support/pages/node/7142038" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-614" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-15T15:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-h3h4-5vcv-376h/GHSA-h3h4-5vcv-376h.json b/advisories/unreviewed/2024/03/GHSA-h3h4-5vcv-376h/GHSA-h3h4-5vcv-376h.json new file mode 100644 index 00000000000..4ee417731e0 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-h3h4-5vcv-376h/GHSA-h3h4-5vcv-376h.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-h3h4-5vcv-376h", + "modified": "2024-03-15T15:30:43Z", + "published": "2024-03-15T15:30:43Z", + "aliases": [ + "CVE-2024-27189" + ], + "details": "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in catchsquare WP Social Widget allows Stored XSS.This issue affects WP Social Widget: from n/a through 2.2.5.\n\n", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-27189" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/wp-social-widget/wordpress-wp-social-widget-plugin-2-2-5-cross-site-scripting-xss-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-15T13:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-hhmq-2c6m-mgv4/GHSA-hhmq-2c6m-mgv4.json b/advisories/unreviewed/2024/03/GHSA-hhmq-2c6m-mgv4/GHSA-hhmq-2c6m-mgv4.json index f05a21034dd..8d6cab54aa1 100644 --- a/advisories/unreviewed/2024/03/GHSA-hhmq-2c6m-mgv4/GHSA-hhmq-2c6m-mgv4.json +++ b/advisories/unreviewed/2024/03/GHSA-hhmq-2c6m-mgv4/GHSA-hhmq-2c6m-mgv4.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-hhmq-2c6m-mgv4", - "modified": "2024-03-12T15:32:21Z", + "modified": "2024-03-15T15:30:42Z", "published": "2024-03-12T15:32:21Z", "aliases": [ "CVE-2024-23112" diff --git a/advisories/unreviewed/2024/03/GHSA-jg7x-vf3c-4w2p/GHSA-jg7x-vf3c-4w2p.json b/advisories/unreviewed/2024/03/GHSA-jg7x-vf3c-4w2p/GHSA-jg7x-vf3c-4w2p.json new file mode 100644 index 00000000000..7a943c89d04 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-jg7x-vf3c-4w2p/GHSA-jg7x-vf3c-4w2p.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-jg7x-vf3c-4w2p", + "modified": "2024-03-15T15:30:44Z", + "published": "2024-03-15T15:30:44Z", + "aliases": [ + "CVE-2023-46182" + ], + "details": "IBM Sterling Secure Proxy 6.0.3 and 6.1.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 269692.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-46182" + }, + { + "type": "WEB", + "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/269692" + }, + { + "type": "WEB", + "url": "https://www.ibm.com/support/pages/node/7142038" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-15T15:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-jjf7-vp9p-j843/GHSA-jjf7-vp9p-j843.json b/advisories/unreviewed/2024/03/GHSA-jjf7-vp9p-j843/GHSA-jjf7-vp9p-j843.json new file mode 100644 index 00000000000..0a842cb6ba8 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-jjf7-vp9p-j843/GHSA-jjf7-vp9p-j843.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-jjf7-vp9p-j843", + "modified": "2024-03-15T15:30:43Z", + "published": "2024-03-15T15:30:43Z", + "aliases": [ + "CVE-2024-2495" + ], + "details": "Cryptographic key vulnerability encoded in the FriendlyWrt firmware affecting version 2022-11-16.51b3d35. This vulnerability could allow an attacker to compromise the confidentiality and integrity of encrypted data.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-2495" + }, + { + "type": "WEB", + "url": "https://www.incibe.es/en/incibe-cert/notices/aviso/cryptographic-key-plain-text-vulnerability-friendlyelecs-friendlywrt" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-1321" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-15T13:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-jw74-jmpx-mj4j/GHSA-jw74-jmpx-mj4j.json b/advisories/unreviewed/2024/03/GHSA-jw74-jmpx-mj4j/GHSA-jw74-jmpx-mj4j.json new file mode 100644 index 00000000000..c94d2227fe3 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-jw74-jmpx-mj4j/GHSA-jw74-jmpx-mj4j.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-jw74-jmpx-mj4j", + "modified": "2024-03-15T15:30:43Z", + "published": "2024-03-15T15:30:43Z", + "aliases": [ + "CVE-2024-25934" + ], + "details": "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in FormFacade allows Stored XSS.This issue affects FormFacade: from n/a through 1.0.0.\n\n", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-25934" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/formfacade/wordpress-formfacade-plugin-1-0-0-cross-site-scripting-xss-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-15T13:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-p8rh-8mxv-5w8q/GHSA-p8rh-8mxv-5w8q.json b/advisories/unreviewed/2024/03/GHSA-p8rh-8mxv-5w8q/GHSA-p8rh-8mxv-5w8q.json new file mode 100644 index 00000000000..fa7e12e334d --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-p8rh-8mxv-5w8q/GHSA-p8rh-8mxv-5w8q.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p8rh-8mxv-5w8q", + "modified": "2024-03-15T15:30:43Z", + "published": "2024-03-15T15:30:43Z", + "aliases": [ + "CVE-2023-51525" + ], + "details": "Cross-Site Request Forgery (CSRF) vulnerability in Veribo, Roland Murg WP Simple Booking Calendar.This issue affects WP Simple Booking Calendar: from n/a through 2.0.8.4.\n\n", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-51525" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/wp-simple-booking-calendar/wordpress-wp-simple-booking-calendar-plugin-2-0-8-4-cross-site-request-forgery-csrf-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-352" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-15T14:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-pv5w-g537-v27f/GHSA-pv5w-g537-v27f.json b/advisories/unreviewed/2024/03/GHSA-pv5w-g537-v27f/GHSA-pv5w-g537-v27f.json new file mode 100644 index 00000000000..51b7b05eb6d --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-pv5w-g537-v27f/GHSA-pv5w-g537-v27f.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-pv5w-g537-v27f", + "modified": "2024-03-15T15:30:43Z", + "published": "2024-03-15T15:30:42Z", + "aliases": [ + "CVE-2023-6725" + ], + "details": "An access-control flaw was found in the OpenStack Designate component where private configuration information including access keys to BIND were improperly made world readable. A malicious attacker with access to any container could exploit this flaw to access sensitive information.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-6725" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/security/cve/CVE-2023-6725" + }, + { + "type": "WEB", + "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2249273" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-1220" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-15T13:15:06Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-q7vp-g92j-c6ph/GHSA-q7vp-g92j-c6ph.json b/advisories/unreviewed/2024/03/GHSA-q7vp-g92j-c6ph/GHSA-q7vp-g92j-c6ph.json new file mode 100644 index 00000000000..9aae73d2b3b --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-q7vp-g92j-c6ph/GHSA-q7vp-g92j-c6ph.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-q7vp-g92j-c6ph", + "modified": "2024-03-15T15:30:43Z", + "published": "2024-03-15T15:30:43Z", + "aliases": [ + "CVE-2024-25597" + ], + "details": "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Etoile Web Design Ultimate Reviews allows Stored XSS.This issue affects Ultimate Reviews: from n/a through 3.2.8.\n\n", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-25597" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/ultimate-reviews/wordpress-ultimate-reviews-plugin-3-2-8-unauthenticated-cross-site-scripting-xss-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-15T14:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-rh9q-p39g-xcv7/GHSA-rh9q-p39g-xcv7.json b/advisories/unreviewed/2024/03/GHSA-rh9q-p39g-xcv7/GHSA-rh9q-p39g-xcv7.json new file mode 100644 index 00000000000..f0b3de8e26a --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-rh9q-p39g-xcv7/GHSA-rh9q-p39g-xcv7.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rh9q-p39g-xcv7", + "modified": "2024-03-15T15:30:44Z", + "published": "2024-03-15T15:30:44Z", + "aliases": [ + "CVE-2023-51369" + ], + "details": "Cross-Site Request Forgery (CSRF) vulnerability in SysBasics Customize My Account for WooCommerce.This issue affects Customize My Account for WooCommerce: from n/a through 1.8.3.\n\n", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-51369" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/customize-my-account-for-woocommerce/wordpress-customize-my-account-for-woocommerce-plugin-1-8-3-cross-site-request-forgery-csrf-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-352" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-15T15:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-v3wq-mp87-4m6r/GHSA-v3wq-mp87-4m6r.json b/advisories/unreviewed/2024/03/GHSA-v3wq-mp87-4m6r/GHSA-v3wq-mp87-4m6r.json new file mode 100644 index 00000000000..3a8342ed963 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-v3wq-mp87-4m6r/GHSA-v3wq-mp87-4m6r.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-v3wq-mp87-4m6r", + "modified": "2024-03-15T15:30:43Z", + "published": "2024-03-15T15:30:43Z", + "aliases": [ + "CVE-2023-50861" + ], + "details": "Cross-Site Request Forgery (CSRF) vulnerability in realmag777 HUSKY – Products Filter for WooCommerce (formerly WOOF).This issue affects HUSKY – Products Filter for WooCommerce (formerly WOOF): from n/a through 1.3.4.3.\n\n", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-50861" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/woocommerce-products-filter/wordpress-husky-plugin-1-3-4-3-cross-site-request-forgery-csrf-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-352" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-15T14:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-v7mm-7g9x-pvgv/GHSA-v7mm-7g9x-pvgv.json b/advisories/unreviewed/2024/03/GHSA-v7mm-7g9x-pvgv/GHSA-v7mm-7g9x-pvgv.json new file mode 100644 index 00000000000..46cea698a16 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-v7mm-7g9x-pvgv/GHSA-v7mm-7g9x-pvgv.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-v7mm-7g9x-pvgv", + "modified": "2024-03-15T15:30:43Z", + "published": "2024-03-15T15:30:43Z", + "aliases": [ + "CVE-2024-25936" + ], + "details": "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in SoundCloud Inc., Lawrie Malen SoundCloud Shortcode allows Stored XSS.This issue affects SoundCloud Shortcode: from n/a through 4.0.1.\n\n", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-25936" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/soundcloud-shortcode/wordpress-soundcloud-shortcode-plugin-4-0-1-cross-site-scripting-xss-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-15T13:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-w98r-cv47-64m4/GHSA-w98r-cv47-64m4.json b/advisories/unreviewed/2024/03/GHSA-w98r-cv47-64m4/GHSA-w98r-cv47-64m4.json new file mode 100644 index 00000000000..9c743c60fc7 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-w98r-cv47-64m4/GHSA-w98r-cv47-64m4.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-w98r-cv47-64m4", + "modified": "2024-03-15T15:30:44Z", + "published": "2024-03-15T15:30:44Z", + "aliases": [ + "CVE-2023-47162" + ], + "details": "IBM Sterling Secure Proxy 6.0.3 and 6.1.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 270973.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-47162" + }, + { + "type": "WEB", + "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/270973" + }, + { + "type": "WEB", + "url": "https://www.ibm.com/support/pages/node/7142038" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-15T15:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-x69q-xg96-5x9w/GHSA-x69q-xg96-5x9w.json b/advisories/unreviewed/2024/03/GHSA-x69q-xg96-5x9w/GHSA-x69q-xg96-5x9w.json new file mode 100644 index 00000000000..72880795557 --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-x69q-xg96-5x9w/GHSA-x69q-xg96-5x9w.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-x69q-xg96-5x9w", + "modified": "2024-03-15T15:30:43Z", + "published": "2024-03-15T15:30:43Z", + "aliases": [ + "CVE-2024-27196" + ], + "details": "Cross Site Scripting (XSS) vulnerability in Joel Starnes postMash – custom post order allows Reflected XSS.This issue affects postMash – custom post order: from n/a through 1.2.0.\n\n", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-27196" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/postmash/wordpress-postmash-custom-post-order-plugin-1-2-0-reflected-cross-site-scripting-xss-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-15T13:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/03/GHSA-xrvm-7f7g-5v3x/GHSA-xrvm-7f7g-5v3x.json b/advisories/unreviewed/2024/03/GHSA-xrvm-7f7g-5v3x/GHSA-xrvm-7f7g-5v3x.json new file mode 100644 index 00000000000..d3a2154a4cb --- /dev/null +++ b/advisories/unreviewed/2024/03/GHSA-xrvm-7f7g-5v3x/GHSA-xrvm-7f7g-5v3x.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-xrvm-7f7g-5v3x", + "modified": "2024-03-15T15:30:43Z", + "published": "2024-03-15T15:30:43Z", + "aliases": [ + "CVE-2024-25916" + ], + "details": "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Joseph C Dolson My Calendar allows Stored XSS.This issue affects My Calendar: from n/a through 3.4.23.\n\n", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-25916" + }, + { + "type": "WEB", + "url": "https://patchstack.com/database/vulnerability/my-calendar/wordpress-my-calendar-plugin-3-4-23-cross-site-scripting-xss-vulnerability?_s_id=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-03-15T13:15:07Z" + } +} \ No newline at end of file