Publish Advisories

GHSA-4q89-84pm-r2p6
GHSA-7xj4-f8gj-5g77
GHSA-xvv7-9gx9-6xh5
This commit is contained in:
advisory-database[bot]
2024-10-07 06:32:05 +00:00
parent 6275bb1772
commit fed5e839be
3 changed files with 78 additions and 1 deletions
@@ -25,7 +25,8 @@
],
"database_specific": {
"cwe_ids": [
"CWE-20"
"CWE-20",
"CWE-617"
],
"severity": null,
"github_reviewed": false,
@@ -0,0 +1,38 @@
{
"schema_version": "1.4.0",
"id": "GHSA-7xj4-f8gj-5g77",
"modified": "2024-10-07T06:30:21Z",
"published": "2024-10-07T06:30:21Z",
"aliases": [
"CVE-2024-47335"
],
"details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Bit Form Bit Form Contact Form Plugin allows SQL Injection.This issue affects Bit Form Contact Form Plugin: from n/a through 2.13.11.",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:L"
}
],
"affected": [
],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47335"
},
{
"type": "WEB",
"url": "https://patchstack.com/database/vulnerability/bit-form/wordpress-bit-form-plugin-2-13-11-sql-injection-vulnerability?_s_id=cve"
}
],
"database_specific": {
"cwe_ids": [
"CWE-89"
],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-10-07T06:15:04Z"
}
}
@@ -0,0 +1,38 @@
{
"schema_version": "1.4.0",
"id": "GHSA-xvv7-9gx9-6xh5",
"modified": "2024-10-07T06:30:21Z",
"published": "2024-10-07T06:30:21Z",
"aliases": [
"CVE-2024-47344"
],
"details": "Exposure of Sensitive Information to an Unauthorized Actor vulnerability in StylemixThemes uListing.This issue affects uListing: from n/a through 2.1.5.",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N"
}
],
"affected": [
],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47344"
},
{
"type": "WEB",
"url": "https://patchstack.com/database/vulnerability/ulisting/wordpress-ulisting-plugin-2-1-5-sensitive-data-exposure-vulnerability?_s_id=cve"
}
],
"database_specific": {
"cwe_ids": [
"CWE-200"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-10-07T06:15:04Z"
}
}