Skip to content

Commit 575b77e

Browse files

File tree

5 files changed

+48
-11
lines changed

5 files changed

+48
-11
lines changed

advisories/github-reviewed/2025/01/GHSA-8vmr-h7h5-cqhg/GHSA-8vmr-h7h5-cqhg.json

+6-2
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-8vmr-h7h5-cqhg",
4-
"modified": "2025-01-16T19:05:01Z",
4+
"modified": "2025-01-16T22:35:37Z",
55
"published": "2025-01-16T19:05:01Z",
66
"aliases": [
77
"CVE-2024-36402"
@@ -40,6 +40,10 @@
4040
"type": "WEB",
4141
"url": "https://github.com/t2bot/matrix-media-repo/security/advisories/GHSA-8vmr-h7h5-cqhg"
4242
},
43+
{
44+
"type": "ADVISORY",
45+
"url": "https://nvd.nist.gov/vuln/detail/CVE-2024-36402"
46+
},
4347
{
4448
"type": "WEB",
4549
"url": "https://github.com/matrix-org/matrix-spec-proposals/pull/3916"
@@ -56,6 +60,6 @@
5660
"severity": "MODERATE",
5761
"github_reviewed": true,
5862
"github_reviewed_at": "2025-01-16T19:05:01Z",
59-
"nvd_published_at": null
63+
"nvd_published_at": "2025-01-16T20:15:32Z"
6064
}
6165
}

advisories/github-reviewed/2025/01/GHSA-gp86-q8hg-fpxj/GHSA-gp86-q8hg-fpxj.json

+6-2
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-gp86-q8hg-fpxj",
4-
"modified": "2025-01-16T19:07:43Z",
4+
"modified": "2025-01-16T22:36:04Z",
55
"published": "2025-01-16T19:07:43Z",
66
"aliases": [
77
"CVE-2024-52791"
@@ -43,6 +43,10 @@
4343
"type": "WEB",
4444
"url": "https://github.com/t2bot/matrix-media-repo/security/advisories/GHSA-gp86-q8hg-fpxj"
4545
},
46+
{
47+
"type": "ADVISORY",
48+
"url": "https://nvd.nist.gov/vuln/detail/CVE-2024-52791"
49+
},
4650
{
4751
"type": "PACKAGE",
4852
"url": "https://github.com/t2bot/matrix-media-repo"
@@ -59,6 +63,6 @@
5963
"severity": "MODERATE",
6064
"github_reviewed": true,
6165
"github_reviewed_at": "2025-01-16T19:07:43Z",
62-
"nvd_published_at": null
66+
"nvd_published_at": "2025-01-16T20:15:32Z"
6367
}
6468
}

advisories/github-reviewed/2025/01/GHSA-r6jg-jfv6-2fjv/GHSA-r6jg-jfv6-2fjv.json

+18-2
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-r6jg-jfv6-2fjv",
4-
"modified": "2025-01-16T19:35:02Z",
4+
"modified": "2025-01-16T22:35:55Z",
55
"published": "2025-01-16T19:35:02Z",
66
"aliases": [
77
"CVE-2024-52602"
@@ -43,13 +43,29 @@
4343
"type": "WEB",
4444
"url": "https://github.com/t2bot/matrix-media-repo/security/advisories/GHSA-r6jg-jfv6-2fjv"
4545
},
46+
{
47+
"type": "ADVISORY",
48+
"url": "https://nvd.nist.gov/vuln/detail/CVE-2024-52602"
49+
},
4650
{
4751
"type": "PACKAGE",
4852
"url": "https://github.com/t2bot/matrix-media-repo"
4953
},
5054
{
5155
"type": "WEB",
5256
"url": "https://github.com/t2bot/matrix-media-repo/releases/tag/v1.3.8"
57+
},
58+
{
59+
"type": "WEB",
60+
"url": "https://learn.snyk.io/lesson/ssrf-server-side-request-forgery"
61+
},
62+
{
63+
"type": "WEB",
64+
"url": "https://owasp.org/www-community/attacks/Server_Side_Request_Forgery"
65+
},
66+
{
67+
"type": "WEB",
68+
"url": "https://www.agwa.name/blog/post/preventing_server_side_request_forgery_in_golang"
5369
}
5470
],
5571
"database_specific": {
@@ -59,6 +75,6 @@
5975
"severity": "MODERATE",
6076
"github_reviewed": true,
6177
"github_reviewed_at": "2025-01-16T19:35:02Z",
62-
"nvd_published_at": null
78+
"nvd_published_at": "2025-01-16T20:15:32Z"
6379
}
6480
}

advisories/github-reviewed/2025/01/GHSA-rcxc-wjgw-579r/GHSA-rcxc-wjgw-579r.json

+8-3
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-rcxc-wjgw-579r",
4-
"modified": "2025-01-16T19:35:09Z",
4+
"modified": "2025-01-16T22:36:15Z",
55
"published": "2025-01-16T19:35:09Z",
66
"aliases": [
77
"CVE-2024-56515"
@@ -43,6 +43,10 @@
4343
"type": "WEB",
4444
"url": "https://github.com/t2bot/matrix-media-repo/security/advisories/GHSA-rcxc-wjgw-579r"
4545
},
46+
{
47+
"type": "ADVISORY",
48+
"url": "https://nvd.nist.gov/vuln/detail/CVE-2024-56515"
49+
},
4650
{
4751
"type": "PACKAGE",
4852
"url": "https://github.com/t2bot/matrix-media-repo"
@@ -54,11 +58,12 @@
5458
],
5559
"database_specific": {
5660
"cwe_ids": [
57-
"CWE-434"
61+
"CWE-434",
62+
"CWE-502"
5863
],
5964
"severity": "MODERATE",
6065
"github_reviewed": true,
6166
"github_reviewed_at": "2025-01-16T19:35:09Z",
62-
"nvd_published_at": null
67+
"nvd_published_at": "2025-01-16T20:15:33Z"
6368
}
6469
}

advisories/github-reviewed/2025/01/GHSA-vc2m-hw89-qjxf/GHSA-vc2m-hw89-qjxf.json

+10-2
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-vc2m-hw89-qjxf",
4-
"modified": "2025-01-16T19:05:12Z",
4+
"modified": "2025-01-16T22:35:46Z",
55
"published": "2025-01-16T19:05:12Z",
66
"aliases": [
77
"CVE-2024-36403"
@@ -40,6 +40,14 @@
4040
"type": "WEB",
4141
"url": "https://github.com/t2bot/matrix-media-repo/security/advisories/GHSA-vc2m-hw89-qjxf"
4242
},
43+
{
44+
"type": "ADVISORY",
45+
"url": "https://nvd.nist.gov/vuln/detail/CVE-2024-36403"
46+
},
47+
{
48+
"type": "WEB",
49+
"url": "https://en.wikipedia.org/wiki/Leaky_bucket#As_a_meter"
50+
},
4351
{
4452
"type": "PACKAGE",
4553
"url": "https://github.com/t2bot/matrix-media-repo"
@@ -52,6 +60,6 @@
5260
"severity": "MODERATE",
5361
"github_reviewed": true,
5462
"github_reviewed_at": "2025-01-16T19:05:12Z",
55-
"nvd_published_at": null
63+
"nvd_published_at": "2025-01-16T20:15:32Z"
5664
}
5765
}

0 commit comments

Comments
 (0)