Skip to content

Commit fc60e10

Browse files
Advisory Database Sync
1 parent 14731d3 commit fc60e10

71 files changed

Lines changed: 1274 additions & 116 deletions

File tree

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

advisories/unreviewed/2022/09/GHSA-xhpr-rjf3-gg6p/GHSA-xhpr-rjf3-gg6p.json

Lines changed: 5 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-xhpr-rjf3-gg6p",
4-
"modified": "2022-09-27T00:00:18Z",
4+
"modified": "2026-04-14T15:30:28Z",
55
"published": "2022-09-25T00:00:27Z",
66
"aliases": [
77
"CVE-2022-2785"
@@ -23,6 +23,10 @@
2323
"type": "WEB",
2424
"url": "https://git.kernel.org/bpf/bpf/c/86f44fcec22c"
2525
},
26+
{
27+
"type": "WEB",
28+
"url": "https://lore.kernel.org/bpf/20220816205517.682470-1-zhuyifei%40google.com/T/#t"
29+
},
2630
{
2731
"type": "WEB",
2832
"url": "https://lore.kernel.org/bpf/20220816205517.682470-1-zhuyifei@google.com/T/#t"

advisories/unreviewed/2026/01/GHSA-c23h-wjw2-xvwf/GHSA-c23h-wjw2-xvwf.json

Lines changed: 5 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-c23h-wjw2-xvwf",
4-
"modified": "2026-01-15T18:31:32Z",
4+
"modified": "2026-04-14T15:30:28Z",
55
"published": "2026-01-15T18:31:32Z",
66
"aliases": [
77
"CVE-2025-67246"
@@ -19,6 +19,10 @@
1919
"type": "ADVISORY",
2020
"url": "https://nvd.nist.gov/vuln/detail/CVE-2025-67246"
2121
},
22+
{
23+
"type": "WEB",
24+
"url": "https://github.com/CDipper/CVE-2025-67246"
25+
},
2226
{
2327
"type": "WEB",
2428
"url": "https://github.com/CDipper/CVE-Publication"

advisories/unreviewed/2026/01/GHSA-g6jg-q927-wwmp/GHSA-g6jg-q927-wwmp.json

Lines changed: 5 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-g6jg-q927-wwmp",
4-
"modified": "2026-01-09T18:31:36Z",
4+
"modified": "2026-04-14T15:30:28Z",
55
"published": "2026-01-09T18:31:36Z",
66
"aliases": [
77
"CVE-2025-67133"
@@ -23,6 +23,10 @@
2323
"type": "WEB",
2424
"url": "https://threadpoolx.gitbook.io/docs/cve/cve-2025-67133-denial-of-service-via-unauthenticated-ble-connection"
2525
},
26+
{
27+
"type": "WEB",
28+
"url": "https://www.vidaworld.com"
29+
},
2630
{
2731
"type": "WEB",
2832
"url": "http://hero.com"

advisories/unreviewed/2026/02/GHSA-5h67-qfvj-ggxp/GHSA-5h67-qfvj-ggxp.json

Lines changed: 5 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,13 +1,17 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-5h67-qfvj-ggxp",
4-
"modified": "2026-02-03T03:30:27Z",
4+
"modified": "2026-04-14T15:30:28Z",
55
"published": "2026-02-03T03:30:27Z",
66
"aliases": [
77
"CVE-2025-67476"
88
],
99
"details": "Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/Import/ImportableOldRevisionImporter.Php.\n\nThis issue affects MediaWiki: from * before 1.44.3, 1.45.1.",
1010
"severity": [
11+
{
12+
"type": "CVSS_V3",
13+
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N"
14+
},
1115
{
1216
"type": "CVSS_V4",
1317
"score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"

advisories/unreviewed/2026/02/GHSA-5rc9-qhhx-3j46/GHSA-5rc9-qhhx-3j46.json

Lines changed: 7 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,13 +1,17 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-5rc9-qhhx-3j46",
4-
"modified": "2026-02-03T00:30:18Z",
4+
"modified": "2026-04-14T15:30:28Z",
55
"published": "2026-02-03T00:30:18Z",
66
"aliases": [
77
"CVE-2026-0924"
88
],
99
"details": "BuhoCleaner contains an insecure XPC service that allows local, unprivileged users to escalate their privileges to root via insecure functions.This issue affects BuhoCleaner: 1.15.2.",
1010
"severity": [
11+
{
12+
"type": "CVSS_V3",
13+
"score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H"
14+
},
1115
{
1216
"type": "CVSS_V4",
1317
"score": "CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
@@ -34,7 +38,8 @@
3438
],
3539
"database_specific": {
3640
"cwe_ids": [
37-
"CWE-362"
41+
"CWE-362",
42+
"CWE-367"
3843
],
3944
"severity": "HIGH",
4045
"github_reviewed": false,

advisories/unreviewed/2026/02/GHSA-fq4p-ghcx-qxxg/GHSA-fq4p-ghcx-qxxg.json

Lines changed: 5 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,13 +1,17 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-fq4p-ghcx-qxxg",
4-
"modified": "2026-02-03T03:30:27Z",
4+
"modified": "2026-04-14T15:30:28Z",
55
"published": "2026-02-03T03:30:27Z",
66
"aliases": [
77
"CVE-2025-67484"
88
],
99
"details": "Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/Api/ApiFormatXml.Php.\n\nThis issue affects MediaWiki: from * before 1.39.16, 1.43.6, 1.44.3, 1.45.1.",
1010
"severity": [
11+
{
12+
"type": "CVSS_V3",
13+
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
14+
},
1115
{
1216
"type": "CVSS_V4",
1317
"score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:N/VA:N/SC:N/SI:N/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"

advisories/unreviewed/2026/02/GHSA-hx5c-rhqh-cc74/GHSA-hx5c-rhqh-cc74.json

Lines changed: 5 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,13 +1,17 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-hx5c-rhqh-cc74",
4-
"modified": "2026-02-03T03:30:27Z",
4+
"modified": "2026-04-14T15:30:28Z",
55
"published": "2026-02-03T03:30:27Z",
66
"aliases": [
77
"CVE-2025-61658"
88
],
99
"details": "Vulnerability in Wikimedia Foundation CheckUser. This vulnerability is associated with program files src/GlobalContributions/GlobalContributionsPager.Php.\n\nThis issue affects CheckUser: from * before 1.43.4, 1.44.1.",
1010
"severity": [
11+
{
12+
"type": "CVSS_V3",
13+
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N"
14+
},
1115
{
1216
"type": "CVSS_V4",
1317
"score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"

advisories/unreviewed/2026/02/GHSA-rg4c-x95m-9m4f/GHSA-rg4c-x95m-9m4f.json

Lines changed: 5 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,13 +1,17 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-rg4c-x95m-9m4f",
4-
"modified": "2026-02-03T03:30:27Z",
4+
"modified": "2026-04-14T15:30:28Z",
55
"published": "2026-02-03T03:30:27Z",
66
"aliases": [
77
"CVE-2025-67478"
88
],
99
"details": "Vulnerability in Wikimedia Foundation CheckUser. This vulnerability is associated with program files includes/Mail/UserMailer.Php.\n\nThis issue affects CheckUser: from * before 1.39.14, 1.43.4, 1.44.1.",
1010
"severity": [
11+
{
12+
"type": "CVSS_V3",
13+
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
14+
},
1115
{
1216
"type": "CVSS_V4",
1317
"score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:N/SC:N/SI:N/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"

advisories/unreviewed/2026/02/GHSA-wp7p-gm96-p2h8/GHSA-wp7p-gm96-p2h8.json

Lines changed: 5 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,13 +1,17 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-wp7p-gm96-p2h8",
4-
"modified": "2026-02-03T03:30:27Z",
4+
"modified": "2026-04-14T15:30:28Z",
55
"published": "2026-02-03T03:30:27Z",
66
"aliases": [
77
"CVE-2025-67480"
88
],
99
"details": "Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/Api/ApiQueryRevisionsBase.Php.\n\nThis issue affects MediaWiki: from * before 1.39.16, 1.43.6, 1.44.3, 1.45.1.",
1010
"severity": [
11+
{
12+
"type": "CVSS_V3",
13+
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N"
14+
},
1115
{
1216
"type": "CVSS_V4",
1317
"score": "CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:N/VI:N/VA:N/SC:N/SI:N/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"

advisories/unreviewed/2026/03/GHSA-2f6v-45w8-wr99/GHSA-2f6v-45w8-wr99.json

Lines changed: 5 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,13 +1,17 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-2f6v-45w8-wr99",
4-
"modified": "2026-03-20T18:31:19Z",
4+
"modified": "2026-04-14T15:30:28Z",
55
"published": "2026-03-20T18:31:19Z",
66
"aliases": [
77
"CVE-2026-22898"
88
],
99
"details": "A missing authentication for critical function vulnerability has been reported to affect QVR Pro. The remote attackers can then exploit the vulnerability to gain access to the system.\n\nWe have already fixed the vulnerability in the following version:\nQVR Pro 2.7.4.14 and later",
1010
"severity": [
11+
{
12+
"type": "CVSS_V3",
13+
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
14+
},
1115
{
1216
"type": "CVSS_V4",
1317
"score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"

0 commit comments

Comments
 (0)