Skip to content

Commit f473e10

Browse files
authored
Merge pull request #792 from GrahamCampbell/guzzlehttp-guzzle-advisories
Add guzzlehttp/guzzle advisories and correct fix dates
2 parents 3a7766c + 91b18b2 commit f473e10

8 files changed

Lines changed: 31 additions & 13 deletions

‎guzzlehttp/guzzle/CVE-2016-5385.yaml‎

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -3,12 +3,12 @@ link: https://github.com/guzzle/guzzle/releases/tag/6.2.1
33
cve: CVE-2016-5385
44
branches:
55
master:
6-
time: 2015-07-15 17:14:23
6+
time: 2016-07-18 14:09:08
77
versions: ['>=6', '<6.2.1']
88
4.x:
9-
time: 2015-07-15 17:36:08
9+
time: 2016-07-15 17:44:18
1010
versions: ['>=4.0.0-rc2', '<4.2.4']
1111
"5.3":
12-
time: 2015-07-15 19:28:39
12+
time: 2016-07-15 19:28:39
1313
versions: ['>=5', '<5.3.1']
1414
reference: composer://guzzlehttp/guzzle

‎guzzlehttp/guzzle/CVE-2022-29248.yaml‎

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -3,10 +3,10 @@ link: https://github.com/guzzle/guzzle/security/advisories/GHSA-cwmx-hcrq-m
33
cve: CVE-2022-29248
44
branches:
55
master:
6-
time: 2022-05-25 13:24:00
6+
time: 2022-05-25 13:24:33
77
versions: ['>=7', '<7.4.3']
88
'6.x':
9-
time: 2022-05-25 13:21:00
9+
time: 2022-05-25 13:19:12
1010
versions: ['>=4', '<6.5.6']
1111

1212
reference: composer://guzzlehttp/guzzle

‎guzzlehttp/guzzle/CVE-2022-31042.yaml‎

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -3,10 +3,10 @@ link: https://github.com/guzzle/guzzle/security/advisories/GHSA-f2wf-25xc-6
33
cve: CVE-2022-31042
44
branches:
55
master:
6-
time: 2022-06-09 23:39:00
6+
time: 2022-06-09 21:39:15
77
versions: ['>=7', '<7.4.4']
88
'6.x':
9-
time: 2022-06-09 23:36:00
9+
time: 2022-06-09 21:36:50
1010
versions: ['>=4', '<6.5.7']
1111

1212
reference: composer://guzzlehttp/guzzle

‎guzzlehttp/guzzle/CVE-2022-31043.yaml‎

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -3,10 +3,10 @@ link: https://github.com/guzzle/guzzle/security/advisories/GHSA-w248-ffj2-4
33
cve: CVE-2022-31043
44
branches:
55
master:
6-
time: 2022-06-09 23:39:00
6+
time: 2022-06-09 21:39:15
77
versions: ['>=7', '<7.4.4']
88
'6.x':
9-
time: 2022-06-09 23:36:00
9+
time: 2022-06-09 21:36:50
1010
versions: ['>=4', '<6.5.7']
1111

1212
reference: composer://guzzlehttp/guzzle

‎guzzlehttp/guzzle/CVE-2022-31090.yaml‎

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -3,10 +3,10 @@ link: https://github.com/guzzle/guzzle/security/advisories/GHSA-25mq-v84q-4
33
cve: CVE-2022-31090
44
branches:
55
master:
6-
time: 2022-06-20 22:24:00
6+
time: 2022-06-20 22:16:13
77
versions: ['>=7', '<7.4.5']
88
'6.x':
9-
time: 2022-06-20 22:24:00
9+
time: 2022-06-20 22:16:07
1010
versions: ['>=4', '<6.5.8']
1111

1212
reference: composer://guzzlehttp/guzzle

‎guzzlehttp/guzzle/CVE-2022-31091.yaml‎

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -3,10 +3,10 @@ link: https://github.com/guzzle/guzzle/security/advisories/GHSA-q559-8m2m-g
33
cve: CVE-2022-31091
44
branches:
55
master:
6-
time: 2022-06-20 22:24:00
6+
time: 2022-06-20 22:16:13
77
versions: ['>=7', '<7.4.5']
88
'6.x':
9-
time: 2022-06-20 22:24:00
9+
time: 2022-06-20 22:16:07
1010
versions: ['>=4', '<6.5.8']
1111

1212
reference: composer://guzzlehttp/guzzle
Lines changed: 9 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,9 @@
1+
title: Silent HTTPS proxy downgrade to cleartext
2+
link: https://github.com/guzzle/guzzle/security/advisories/GHSA-wpwq-4j6v-78m3
3+
cve: CVE-2026-55568
4+
branches:
5+
'7.12':
6+
time: 2026-06-18 14:12:49
7+
versions: ['<7.12.1']
8+
9+
reference: composer://guzzlehttp/guzzle
Lines changed: 9 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,9 @@
1+
title: Dot-only cookie domains match all hosts
2+
link: https://github.com/guzzle/guzzle/security/advisories/GHSA-cwxw-98qj-8qjx
3+
cve: CVE-2026-55767
4+
branches:
5+
'7.12':
6+
time: 2026-06-18 14:12:49
7+
versions: ['<7.12.1']
8+
9+
reference: composer://guzzlehttp/guzzle

0 commit comments

Comments
 (0)