Skip to content

File tree

7 files changed

+48
-8
lines changed

7 files changed

+48
-8
lines changed

advisories/github-reviewed/2024/02/GHSA-6qvw-249j-h44c/GHSA-6qvw-249j-h44c.json

Lines changed: 5 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-6qvw-249j-h44c",
4-
"modified": "2024-08-14T22:14:48Z",
4+
"modified": "2025-11-04T16:50:03Z",
55
"published": "2024-02-29T03:33:14Z",
66
"aliases": [
77
"CVE-2023-51775"
@@ -47,6 +47,10 @@
4747
{
4848
"type": "WEB",
4949
"url": "https://bitbucket.org/b_c/jose4j/issues/212"
50+
},
51+
{
52+
"type": "WEB",
53+
"url": "https://security.netapp.com/advisory/ntap-20241108-0002"
5054
}
5155
],
5256
"database_specific": {

advisories/github-reviewed/2024/05/GHSA-4rmg-292m-wg3w/GHSA-4rmg-292m-wg3w.json

Lines changed: 6 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,13 +1,13 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-4rmg-292m-wg3w",
4-
"modified": "2024-05-29T18:44:30Z",
4+
"modified": "2025-11-04T16:50:38Z",
55
"published": "2024-05-29T18:44:30Z",
66
"aliases": [
77
"CVE-2024-35226"
88
],
99
"summary": "Smarty vulnerable to PHP Code Injection by malicious attribute in extends-tag",
10-
"details": "### Impact\nTemplate authors could inject php code by choosing a malicous file name for an extends-tag. Users that cannot fully trust template authors should update asap.\n\n### Patches\nPlease upgrade to the most recent version of Smarty v4 or v5. There is no patch for v3.\n\n",
10+
"details": "### Impact\nTemplate authors could inject php code by choosing a malicous file name for an extends-tag. Users that cannot fully trust template authors should update asap.\n\n### Patches\nPlease upgrade to the most recent version of Smarty v4 or v5. There is no patch for v3.",
1111
"severity": [
1212
{
1313
"type": "CVSS_V3",
@@ -70,6 +70,10 @@
7070
{
7171
"type": "PACKAGE",
7272
"url": "https://github.com/smarty-php/smarty"
73+
},
74+
{
75+
"type": "WEB",
76+
"url": "https://lists.debian.org/debian-lts-announce/2024/11/msg00013.html"
7377
}
7478
],
7579
"database_specific": {

advisories/github-reviewed/2024/05/GHSA-h75v-3vvj-5mfj/GHSA-h75v-3vvj-5mfj.json

Lines changed: 5 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-h75v-3vvj-5mfj",
4-
"modified": "2024-06-10T18:30:57Z",
4+
"modified": "2025-11-04T16:50:23Z",
55
"published": "2024-05-06T14:20:59Z",
66
"aliases": [
77
"CVE-2024-34064"
@@ -52,6 +52,10 @@
5252
"type": "PACKAGE",
5353
"url": "https://github.com/pallets/jinja"
5454
},
55+
{
56+
"type": "WEB",
57+
"url": "https://lists.debian.org/debian-lts-announce/2024/12/msg00009.html"
58+
},
5559
{
5660
"type": "WEB",
5761
"url": "https://lists.fedoraproject.org/archives/list/[email protected]/message/567XIGSZMABG6TSMYWD7MIYNJSUQQRUC"

advisories/github-reviewed/2024/06/GHSA-34jh-p97f-mpxf/GHSA-34jh-p97f-mpxf.json

Lines changed: 13 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-34jh-p97f-mpxf",
4-
"modified": "2024-12-18T22:20:24Z",
4+
"modified": "2025-11-04T16:50:51Z",
55
"published": "2024-06-17T21:37:20Z",
66
"aliases": [
77
"CVE-2024-37891"
@@ -74,6 +74,18 @@
7474
{
7575
"type": "PACKAGE",
7676
"url": "https://github.com/urllib3/urllib3"
77+
},
78+
{
79+
"type": "WEB",
80+
"url": "https://lists.debian.org/debian-lts-announce/2024/12/msg00020.html"
81+
},
82+
{
83+
"type": "WEB",
84+
"url": "https://security.netapp.com/advisory/ntap-20240822-0003"
85+
},
86+
{
87+
"type": "WEB",
88+
"url": "https://www.vicarius.io/vsociety/posts/proxy-authorization-header-handling-vulnerability-in-urllib3-cve-2024-37891"
7789
}
7890
],
7991
"database_specific": {

advisories/github-reviewed/2024/07/GHSA-c8m8-j448-xjx7/GHSA-c8m8-j448-xjx7.json

Lines changed: 9 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-c8m8-j448-xjx7",
4-
"modified": "2024-11-18T16:26:56Z",
4+
"modified": "2025-11-04T16:51:06Z",
55
"published": "2024-07-29T16:33:11Z",
66
"aliases": [
77
"CVE-2024-41671"
@@ -62,6 +62,14 @@
6262
{
6363
"type": "PACKAGE",
6464
"url": "https://github.com/twisted/twisted"
65+
},
66+
{
67+
"type": "WEB",
68+
"url": "https://lists.debian.org/debian-lts-announce/2024/11/msg00028.html"
69+
},
70+
{
71+
"type": "WEB",
72+
"url": "https://www.vicarius.io/vsociety/posts/disordered-http-pipeline-in-twistedweb-cve-2024-4167"
6573
}
6674
],
6775
"database_specific": {

advisories/github-reviewed/2024/07/GHSA-cf56-g6w6-pqq2/GHSA-cf56-g6w6-pqq2.json

Lines changed: 5 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-cf56-g6w6-pqq2",
4-
"modified": "2024-09-11T21:37:53Z",
4+
"modified": "2025-11-04T16:51:18Z",
55
"published": "2024-07-29T17:29:36Z",
66
"aliases": [
77
"CVE-2024-41810"
@@ -62,6 +62,10 @@
6262
{
6363
"type": "PACKAGE",
6464
"url": "https://github.com/twisted/twisted"
65+
},
66+
{
67+
"type": "WEB",
68+
"url": "https://lists.debian.org/debian-lts-announce/2024/11/msg00028.html"
6569
}
6670
],
6771
"database_specific": {

advisories/github-reviewed/2024/08/GHSA-f7q4-pwc6-w24p/GHSA-f7q4-pwc6-w24p.json

Lines changed: 5 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-f7q4-pwc6-w24p",
4-
"modified": "2024-08-15T17:53:38Z",
4+
"modified": "2025-11-04T16:51:32Z",
55
"published": "2024-08-02T09:31:35Z",
66
"aliases": [
77
"CVE-2024-42459"
@@ -62,6 +62,10 @@
6262
{
6363
"type": "PACKAGE",
6464
"url": "https://github.com/indutny/elliptic"
65+
},
66+
{
67+
"type": "WEB",
68+
"url": "https://security.netapp.com/advisory/ntap-20241004-0005"
6569
}
6670
],
6771
"database_specific": {

0 commit comments

Comments
 (0)