|
4957 | 4957 | "identifiers": { |
4958 | 4958 | "summary": "Regular Expression Denial of Service (ReDoS), Affecting moment package, versions >=2.18.0 <2.29.4", |
4959 | 4959 | "CVE": [ |
4960 | | - "CVE-2022-31129", |
4961 | | - "CVE-2023-22467" |
| 4960 | + "CVE-2022-31129" |
4962 | 4961 | ], |
4963 | 4962 | "githubID": "GHSA-wc69-rhjr-hc9g" |
4964 | 4963 | }, |
|
6815 | 6814 | "https://github.com/vercel/next.js" |
6816 | 6815 | ] |
6817 | 6816 | }, |
| 6817 | + { |
| 6818 | + "atOrAbove": "13.0.0", |
| 6819 | + "below": "13.5.8", |
| 6820 | + "cwe": [ |
| 6821 | + "CWE-770" |
| 6822 | + ], |
| 6823 | + "severity": "medium", |
| 6824 | + "identifiers": { |
| 6825 | + "summary": "Next.js Allows a Denial of Service (DoS) with Server Actions", |
| 6826 | + "CVE": [ |
| 6827 | + "CVE-2024-56332" |
| 6828 | + ], |
| 6829 | + "githubID": "GHSA-7m27-7ghc-44w9" |
| 6830 | + }, |
| 6831 | + "info": [ |
| 6832 | + "https://github.com/advisories/GHSA-7m27-7ghc-44w9", |
| 6833 | + "https://github.com/vercel/next.js/security/advisories/GHSA-7m27-7ghc-44w9", |
| 6834 | + "https://nvd.nist.gov/vuln/detail/CVE-2024-56332", |
| 6835 | + "https://github.com/vercel/next.js" |
| 6836 | + ] |
| 6837 | + }, |
6818 | 6838 | { |
6819 | 6839 | "atOrAbove": "13.4.0", |
6820 | 6840 | "below": "14.1.1", |
|
6906 | 6926 | "https://github.com/vercel/next.js", |
6907 | 6927 | "https://github.com/vercel/next.js/releases/tag/v14.2.15" |
6908 | 6928 | ] |
| 6929 | + }, |
| 6930 | + { |
| 6931 | + "atOrAbove": "14.0.0", |
| 6932 | + "below": "14.2.21", |
| 6933 | + "cwe": [ |
| 6934 | + "CWE-770" |
| 6935 | + ], |
| 6936 | + "severity": "medium", |
| 6937 | + "identifiers": { |
| 6938 | + "summary": "Next.js Allows a Denial of Service (DoS) with Server Actions", |
| 6939 | + "CVE": [ |
| 6940 | + "CVE-2024-56332" |
| 6941 | + ], |
| 6942 | + "githubID": "GHSA-7m27-7ghc-44w9" |
| 6943 | + }, |
| 6944 | + "info": [ |
| 6945 | + "https://github.com/advisories/GHSA-7m27-7ghc-44w9", |
| 6946 | + "https://github.com/vercel/next.js/security/advisories/GHSA-7m27-7ghc-44w9", |
| 6947 | + "https://nvd.nist.gov/vuln/detail/CVE-2024-56332", |
| 6948 | + "https://github.com/vercel/next.js" |
| 6949 | + ] |
| 6950 | + }, |
| 6951 | + { |
| 6952 | + "atOrAbove": "15.0.0", |
| 6953 | + "below": "15.1.2", |
| 6954 | + "cwe": [ |
| 6955 | + "CWE-770" |
| 6956 | + ], |
| 6957 | + "severity": "medium", |
| 6958 | + "identifiers": { |
| 6959 | + "summary": "Next.js Allows a Denial of Service (DoS) with Server Actions", |
| 6960 | + "CVE": [ |
| 6961 | + "CVE-2024-56332" |
| 6962 | + ], |
| 6963 | + "githubID": "GHSA-7m27-7ghc-44w9" |
| 6964 | + }, |
| 6965 | + "info": [ |
| 6966 | + "https://github.com/advisories/GHSA-7m27-7ghc-44w9", |
| 6967 | + "https://github.com/vercel/next.js/security/advisories/GHSA-7m27-7ghc-44w9", |
| 6968 | + "https://nvd.nist.gov/vuln/detail/CVE-2024-56332", |
| 6969 | + "https://github.com/vercel/next.js" |
| 6970 | + ] |
6909 | 6971 | } |
6910 | 6972 | ], |
6911 | 6973 | "extractors": { |
|
7867 | 7929 | "identifiers": { |
7868 | 7930 | "summary": "PDF.js vulnerable to arbitrary JavaScript execution upon opening a malicious PDF", |
7869 | 7931 | "CVE": [ |
7870 | | - "CVE-2024-34342", |
7871 | 7932 | "CVE-2024-4367" |
7872 | 7933 | ], |
7873 | 7934 | "githubID": "GHSA-wgrm-67xf-hhpq" |
|
0 commit comments