From 0e99fb5746ee4182ce4400bf4863c23d1a781431 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Ren=C3=A9=20Helmke?= Date: Sun, 7 May 2023 02:00:27 +0200 Subject: [PATCH] Auto-Update: 2023-05-07T00:00:24.382783+00:00 --- CVE-2023/CVE-2023-254xx/CVE-2023-25491.json | 55 +++++++++++++++++++++ README.md | 12 ++--- 2 files changed, 61 insertions(+), 6 deletions(-) create mode 100644 CVE-2023/CVE-2023-254xx/CVE-2023-25491.json diff --git a/CVE-2023/CVE-2023-254xx/CVE-2023-25491.json b/CVE-2023/CVE-2023-254xx/CVE-2023-25491.json new file mode 100644 index 00000000000..5001cc9252e --- /dev/null +++ b/CVE-2023/CVE-2023-254xx/CVE-2023-25491.json @@ -0,0 +1,55 @@ +{ + "id": "CVE-2023-25491", + "sourceIdentifier": "audit@patchstack.com", + "published": "2023-05-06T23:15:09.230", + "lastModified": "2023-05-06T23:15:09.230", + "vulnStatus": "Received", + "descriptions": [ + { + "lang": "en", + "value": "Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability\u00a0in Samuel Marshall JCH Optimize plugin <=\u00a03.2.2 versions." + } + ], + "metrics": { + "cvssMetricV31": [ + { + "source": "audit@patchstack.com", + "type": "Secondary", + "cvssData": { + "version": "3.1", + "vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L", + "attackVector": "NETWORK", + "attackComplexity": "LOW", + "privilegesRequired": "HIGH", + "userInteraction": "REQUIRED", + "scope": "CHANGED", + "confidentialityImpact": "LOW", + "integrityImpact": "LOW", + "availabilityImpact": "LOW", + "baseScore": 5.9, + "baseSeverity": "MEDIUM" + }, + "exploitabilityScore": 1.7, + "impactScore": 3.7 + } + ] + }, + "weaknesses": [ + { + "source": "audit@patchstack.com", + "type": "Primary", + "description": [ + { + "lang": "en", + "value": "CWE-79" + } + ] + } + ], + "references": [ + { + "url": "https://patchstack.com/database/vulnerability/jch-optimize/wordpress-jch-optimize-plugin-3-2-2-cross-site-scripting-xss-vulnerability?_s_id=cve", + "source": "audit@patchstack.com" + } + ] +} \ No newline at end of file diff --git a/README.md b/README.md index b484859ed6b..d64e295c92a 100644 --- a/README.md +++ b/README.md @@ -9,13 +9,13 @@ Repository synchronizes with the NVD every 2 hours. ### Last Repository Update ```plain -2023-05-06T21:55:24.420816+00:00 +2023-05-07T00:00:24.382783+00:00 ``` ### Most recent CVE Modification Timestamp synchronized with NVD ```plain -2023-05-06T20:15:09.223000+00:00 +2023-05-06T23:15:09.230000+00:00 ``` ### Last Data Feed Release @@ -29,20 +29,20 @@ Download and Changelog: [Click](releases/latest) ### Total Number of included CVEs ```plain -214181 +214182 ``` ### CVEs added in the last Commit -Recently added CVEs: `0` +Recently added CVEs: `1` +* [CVE-2023-25491](CVE-2023/CVE-2023-254xx/CVE-2023-25491.json) (`2023-05-06T23:15:09.230`) ### CVEs modified in the last Commit -Recently modified CVEs: `1` +Recently modified CVEs: `0` -* [CVE-2023-29842](CVE-2023/CVE-2023-298xx/CVE-2023-29842.json) (`2023-05-06T20:15:09.223`) ## Download and Usage