Skip to content

Commit e72b525

Browse files
Advisory Database Sync
1 parent e3263ad commit e72b525

55 files changed

Lines changed: 576 additions & 152 deletions

File tree

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

advisories/unreviewed/2022/05/GHSA-4crg-m9w3-g9fc/GHSA-4crg-m9w3-g9fc.json

Lines changed: 26 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -1,19 +1,40 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-4crg-m9w3-g9fc",
4-
"modified": "2022-05-17T05:16:58Z",
4+
"modified": "2026-05-15T00:30:29Z",
55
"published": "2022-05-17T05:16:58Z",
66
"aliases": [
77
"CVE-2012-4549"
88
],
99
"details": "The processInvocation function in org.jboss.as.ejb3.security.AuthorizationInterceptor in JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) before 6.0.1, authorizes all requests when no roles are allowed for an Enterprise Java Beans (EJB) method invocation, which allows attackers to bypass intended access restrictions for EJB methods.",
10-
"severity": [],
10+
"severity": [
11+
{
12+
"type": "CVSS_V3",
13+
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N"
14+
}
15+
],
1116
"affected": [],
1217
"references": [
1318
{
1419
"type": "ADVISORY",
1520
"url": "https://nvd.nist.gov/vuln/detail/CVE-2012-4549"
1621
},
22+
{
23+
"type": "WEB",
24+
"url": "https://access.redhat.com/errata/RHSA-2012:1591"
25+
},
26+
{
27+
"type": "WEB",
28+
"url": "https://access.redhat.com/errata/RHSA-2012:1592"
29+
},
30+
{
31+
"type": "WEB",
32+
"url": "https://access.redhat.com/errata/RHSA-2012:1594"
33+
},
34+
{
35+
"type": "WEB",
36+
"url": "https://access.redhat.com/security/cve/CVE-2012-4549"
37+
},
1738
{
1839
"type": "WEB",
1940
"url": "http://rhn.redhat.com/errata/RHSA-2012-1591.html"
@@ -32,7 +53,9 @@
3253
}
3354
],
3455
"database_specific": {
35-
"cwe_ids": [],
56+
"cwe_ids": [
57+
"CWE-266"
58+
],
3659
"severity": "MODERATE",
3760
"github_reviewed": false,
3861
"github_reviewed_at": null,

advisories/unreviewed/2022/05/GHSA-gg53-v4gc-qv5q/GHSA-gg53-v4gc-qv5q.json

Lines changed: 26 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -1,19 +1,40 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-gg53-v4gc-qv5q",
4-
"modified": "2022-05-17T05:10:25Z",
4+
"modified": "2026-05-15T00:30:28Z",
55
"published": "2022-05-17T05:10:25Z",
66
"aliases": [
77
"CVE-2012-4550"
88
],
99
"details": "JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) before 6.0.1, when using role-based authorization for Enterprise Java Beans (EJB) access, does not call the intended authorization modules, which prevents JACC permissions from being applied and allows remote attackers to obtain access to the EJB.",
10-
"severity": [],
10+
"severity": [
11+
{
12+
"type": "CVSS_V3",
13+
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N"
14+
}
15+
],
1116
"affected": [],
1217
"references": [
1318
{
1419
"type": "ADVISORY",
1520
"url": "https://nvd.nist.gov/vuln/detail/CVE-2012-4550"
1621
},
22+
{
23+
"type": "WEB",
24+
"url": "https://access.redhat.com/errata/RHSA-2012:1591"
25+
},
26+
{
27+
"type": "WEB",
28+
"url": "https://access.redhat.com/errata/RHSA-2012:1592"
29+
},
30+
{
31+
"type": "WEB",
32+
"url": "https://access.redhat.com/errata/RHSA-2012:1594"
33+
},
34+
{
35+
"type": "WEB",
36+
"url": "https://access.redhat.com/security/cve/CVE-2012-4550"
37+
},
1738
{
1839
"type": "WEB",
1940
"url": "http://rhn.redhat.com/errata/RHSA-2012-1591.html"
@@ -32,7 +53,9 @@
3253
}
3354
],
3455
"database_specific": {
35-
"cwe_ids": [],
56+
"cwe_ids": [
57+
"CWE-280"
58+
],
3659
"severity": "MODERATE",
3760
"github_reviewed": false,
3861
"github_reviewed_at": null,

advisories/unreviewed/2026/02/GHSA-pm8w-jq9r-x5rp/GHSA-pm8w-jq9r-x5rp.json

Lines changed: 9 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-pm8w-jq9r-x5rp",
4-
"modified": "2026-05-12T15:31:14Z",
4+
"modified": "2026-05-15T00:30:29Z",
55
"published": "2026-02-09T15:30:31Z",
66
"aliases": [
77
"CVE-2025-14831"
@@ -103,6 +103,14 @@
103103
"type": "WEB",
104104
"url": "https://access.redhat.com/errata/RHSA-2026:16174"
105105
},
106+
{
107+
"type": "WEB",
108+
"url": "https://access.redhat.com/errata/RHSA-2026:16009"
109+
},
110+
{
111+
"type": "WEB",
112+
"url": "https://access.redhat.com/errata/RHSA-2026:16008"
113+
},
106114
{
107115
"type": "WEB",
108116
"url": "https://access.redhat.com/errata/RHSA-2026:13812"

advisories/unreviewed/2026/03/GHSA-2vwv-vqpv-v8vc/GHSA-2vwv-vqpv-v8vc.json

Lines changed: 13 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-2vwv-vqpv-v8vc",
4-
"modified": "2026-05-13T18:30:32Z",
4+
"modified": "2026-05-15T00:30:29Z",
55
"published": "2026-03-30T09:31:29Z",
66
"aliases": [
77
"CVE-2026-5121"
@@ -91,6 +91,18 @@
9191
"type": "WEB",
9292
"url": "https://access.redhat.com/errata/RHSA-2026:16174"
9393
},
94+
{
95+
"type": "WEB",
96+
"url": "https://access.redhat.com/errata/RHSA-2026:16030"
97+
},
98+
{
99+
"type": "WEB",
100+
"url": "https://access.redhat.com/errata/RHSA-2026:16009"
101+
},
102+
{
103+
"type": "WEB",
104+
"url": "https://access.redhat.com/errata/RHSA-2026:16008"
105+
},
94106
{
95107
"type": "WEB",
96108
"url": "https://access.redhat.com/errata/RHSA-2026:15087"

advisories/unreviewed/2026/03/GHSA-9pr2-m366-8728/GHSA-9pr2-m366-8728.json

Lines changed: 13 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-9pr2-m366-8728",
4-
"modified": "2026-05-12T12:32:13Z",
4+
"modified": "2026-05-15T00:30:29Z",
55
"published": "2026-03-31T09:31:42Z",
66
"aliases": [
77
"CVE-2026-5201"
@@ -39,6 +39,18 @@
3939
"type": "WEB",
4040
"url": "https://access.redhat.com/errata/RHSA-2026:16174"
4141
},
42+
{
43+
"type": "WEB",
44+
"url": "https://access.redhat.com/errata/RHSA-2026:16030"
45+
},
46+
{
47+
"type": "WEB",
48+
"url": "https://access.redhat.com/errata/RHSA-2026:16009"
49+
},
50+
{
51+
"type": "WEB",
52+
"url": "https://access.redhat.com/errata/RHSA-2026:16008"
53+
},
4254
{
4355
"type": "WEB",
4456
"url": "https://access.redhat.com/errata/RHSA-2026:12115"

advisories/unreviewed/2026/03/GHSA-c75f-55f6-f63q/GHSA-c75f-55f6-f63q.json

Lines changed: 13 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-c75f-55f6-f63q",
4-
"modified": "2026-05-13T18:30:32Z",
4+
"modified": "2026-05-15T00:30:29Z",
55
"published": "2026-03-19T15:31:21Z",
66
"aliases": [
77
"CVE-2026-4424"
@@ -95,6 +95,18 @@
9595
"type": "WEB",
9696
"url": "https://access.redhat.com/errata/RHSA-2026:16174"
9797
},
98+
{
99+
"type": "WEB",
100+
"url": "https://access.redhat.com/errata/RHSA-2026:16030"
101+
},
102+
{
103+
"type": "WEB",
104+
"url": "https://access.redhat.com/errata/RHSA-2026:16009"
105+
},
106+
{
107+
"type": "WEB",
108+
"url": "https://access.redhat.com/errata/RHSA-2026:16008"
109+
},
98110
{
99111
"type": "WEB",
100112
"url": "https://access.redhat.com/errata/RHSA-2026:15087"

advisories/unreviewed/2026/03/GHSA-xrqh-48jh-pjv2/GHSA-xrqh-48jh-pjv2.json

Lines changed: 9 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-xrqh-48jh-pjv2",
4-
"modified": "2026-05-13T18:30:32Z",
4+
"modified": "2026-05-15T00:30:29Z",
55
"published": "2026-03-13T21:31:51Z",
66
"aliases": [
77
"CVE-2026-4111"
@@ -99,6 +99,14 @@
9999
"type": "WEB",
100100
"url": "https://access.redhat.com/errata/RHSA-2026:16174"
101101
},
102+
{
103+
"type": "WEB",
104+
"url": "https://access.redhat.com/errata/RHSA-2026:16009"
105+
},
106+
{
107+
"type": "WEB",
108+
"url": "https://access.redhat.com/errata/RHSA-2026:16008"
109+
},
102110
{
103111
"type": "WEB",
104112
"url": "https://access.redhat.com/errata/RHSA-2026:15087"

advisories/unreviewed/2026/05/GHSA-2863-2m4q-93pg/GHSA-2863-2m4q-93pg.json

Lines changed: 8 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -1,13 +1,18 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-2863-2m4q-93pg",
4-
"modified": "2026-05-14T21:30:46Z",
4+
"modified": "2026-05-15T00:30:30Z",
55
"published": "2026-05-14T21:30:46Z",
66
"aliases": [
77
"CVE-2026-8570"
88
],
99
"details": "Type Confusion in V8 in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Medium)",
10-
"severity": [],
10+
"severity": [
11+
{
12+
"type": "CVSS_V3",
13+
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N"
14+
}
15+
],
1116
"affected": [],
1217
"references": [
1318
{
@@ -27,7 +32,7 @@
2732
"cwe_ids": [
2833
"CWE-843"
2934
],
30-
"severity": null,
35+
"severity": "MODERATE",
3136
"github_reviewed": false,
3237
"github_reviewed_at": null,
3338
"nvd_published_at": "2026-05-14T20:17:19Z"

advisories/unreviewed/2026/05/GHSA-2gj8-f8hj-pwwh/GHSA-2gj8-f8hj-pwwh.json

Lines changed: 8 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -1,13 +1,18 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-2gj8-f8hj-pwwh",
4-
"modified": "2026-05-14T21:30:44Z",
4+
"modified": "2026-05-15T00:30:29Z",
55
"published": "2026-05-14T21:30:44Z",
66
"aliases": [
77
"CVE-2026-8513"
88
],
99
"details": "Use after free in Input in Google Chrome on Android prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)",
10-
"severity": [],
10+
"severity": [
11+
{
12+
"type": "CVSS_V3",
13+
"score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H"
14+
}
15+
],
1116
"affected": [],
1217
"references": [
1318
{
@@ -27,7 +32,7 @@
2732
"cwe_ids": [
2833
"CWE-416"
2934
],
30-
"severity": null,
35+
"severity": "HIGH",
3136
"github_reviewed": false,
3237
"github_reviewed_at": null,
3338
"nvd_published_at": "2026-05-14T20:17:11Z"

advisories/unreviewed/2026/05/GHSA-2mp2-jw3g-m6fw/GHSA-2mp2-jw3g-m6fw.json

Lines changed: 8 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -1,13 +1,18 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-2mp2-jw3g-m6fw",
4-
"modified": "2026-05-14T21:30:46Z",
4+
"modified": "2026-05-15T00:30:30Z",
55
"published": "2026-05-14T21:30:46Z",
66
"aliases": [
77
"CVE-2026-8573"
88
],
99
"details": "Integer overflow in Codecs in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker to potentially perform a sandbox escape via a crafted video file. (Chromium security severity: Medium)",
10-
"severity": [],
10+
"severity": [
11+
{
12+
"type": "CVSS_V3",
13+
"score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H"
14+
}
15+
],
1116
"affected": [],
1217
"references": [
1318
{
@@ -27,7 +32,7 @@
2732
"cwe_ids": [
2833
"CWE-472"
2934
],
30-
"severity": null,
35+
"severity": "HIGH",
3136
"github_reviewed": false,
3237
"github_reviewed_at": null,
3338
"nvd_published_at": "2026-05-14T20:17:19Z"

0 commit comments

Comments
 (0)