diff --git a/CVE-2024/CVE-2024-246xx/CVE-2024-24683.json b/CVE-2024/CVE-2024-246xx/CVE-2024-24683.json new file mode 100644 index 00000000000..155d09eb85d --- /dev/null +++ b/CVE-2024/CVE-2024-246xx/CVE-2024-24683.json @@ -0,0 +1,32 @@ +{ + "id": "CVE-2024-24683", + "sourceIdentifier": "security@apache.org", + "published": "2024-03-19T09:15:06.630", + "lastModified": "2024-03-19T09:15:06.630", + "vulnStatus": "Received", + "descriptions": [ + { + "lang": "en", + "value": "Improper Input Validation vulnerability in Apache Hop Engine.This issue affects Apache Hop Engine: before 2.8.0.\n\nUsers are recommended to upgrade to version 2.8.0, which fixes the issue.\n\nWhen Hop Server writes links to the\u00a0PrepareExecutionPipelineServlet page one of the parameters provided to the user was not properly escaped.\nThe variable not properly escaped is the \"id\", which is not directly accessible by users creating pipelines making the risk of exploiting this low.\n\nThis issue only affects users using the Hop Server component and does not directly affect the client." + } + ], + "metrics": {}, + "weaknesses": [ + { + "source": "security@apache.org", + "type": "Secondary", + "description": [ + { + "lang": "en", + "value": "CWE-20" + } + ] + } + ], + "references": [ + { + "url": "https://lists.apache.org/thread/ts203zssv1n9qth1wdlhk2bhos3vcq6t", + "source": "security@apache.org" + } + ] +} \ No newline at end of file diff --git a/README.md b/README.md index f5f24b502ec..0703ce4782c 100644 --- a/README.md +++ b/README.md @@ -9,13 +9,13 @@ Repository synchronizes with the NVD every 2 hours. ### Last Repository Update ```plain -2024-03-19T09:00:53.869974+00:00 +2024-03-19T11:00:38.574098+00:00 ``` ### Most recent CVE Modification Timestamp synchronized with NVD ```plain -2024-03-19T08:15:06.713000+00:00 +2024-03-19T09:15:06.630000+00:00 ``` ### Last Data Feed Release @@ -29,27 +29,20 @@ Download and Changelog: [Click](https://github.com/fkie-cad/nvd-json-data-feeds/ ### Total Number of included CVEs ```plain -241962 +241963 ``` ### CVEs added in the last Commit -Recently added CVEs: `6` +Recently added CVEs: `1` -* [CVE-2024-0054](CVE-2024/CVE-2024-00xx/CVE-2024-0054.json) (`2024-03-19T07:15:07.033`) -* [CVE-2024-0055](CVE-2024/CVE-2024-00xx/CVE-2024-0055.json) (`2024-03-19T07:15:08.667`) -* [CVE-2024-22453](CVE-2024/CVE-2024-224xx/CVE-2024-22453.json) (`2024-03-19T08:15:06.480`) -* [CVE-2024-24042](CVE-2024/CVE-2024-240xx/CVE-2024-24042.json) (`2024-03-19T07:15:09.097`) -* [CVE-2024-24043](CVE-2024/CVE-2024-240xx/CVE-2024-24043.json) (`2024-03-19T07:15:09.517`) -* [CVE-2024-25942](CVE-2024/CVE-2024-259xx/CVE-2024-25942.json) (`2024-03-19T08:15:06.713`) +* [CVE-2024-24683](CVE-2024/CVE-2024-246xx/CVE-2024-24683.json) (`2024-03-19T09:15:06.630`) ### CVEs modified in the last Commit -Recently modified CVEs: `2` +Recently modified CVEs: `0` -* [CVE-2023-42790](CVE-2023/CVE-2023-427xx/CVE-2023-42790.json) (`2024-03-19T08:15:06.147`) -* [CVE-2023-48788](CVE-2023/CVE-2023-487xx/CVE-2023-48788.json) (`2024-03-19T08:15:06.373`) ## Download and Usage diff --git a/_state.csv b/_state.csv index 18663ee24ac..ce3e1bf76fc 100644 --- a/_state.csv +++ b/_state.csv @@ -230125,7 +230125,7 @@ CVE-2023-42787,0,0,d2e32fdcaebd006eadd533ba8a29ed23caf0307fff995ed88db2c58ae2047 CVE-2023-42788,0,0,5bef1975ed59cd6701a5c6bbed8dda53f3f68505397a976a2b099f108b659070,2024-01-12T22:15:12.640000 CVE-2023-42789,0,0,101c12081a96ef778c9fc9158a10f90ca213e4c68e8c0907ff6d5043d6752d06,2024-03-15T15:22:17.107000 CVE-2023-4279,0,0,c2e3019450af55a07054d390380759c5e0fa2e34b465501d298cd74551d5e5d2,2023-11-07T04:22:24.490000 -CVE-2023-42790,0,1,b4b2ac52d8ef552cdcca6ff264e1f281494fd2bfdb590f1e4279ab8796c86ae7,2024-03-19T08:15:06.147000 +CVE-2023-42790,0,0,b4b2ac52d8ef552cdcca6ff264e1f281494fd2bfdb590f1e4279ab8796c86ae7,2024-03-19T08:15:06.147000 CVE-2023-42791,0,0,27d45cceba3e4562352c7ede0404756c9d01f4154ce9e1abec4867c04764897a,2024-02-20T19:50:53.960000 CVE-2023-42792,0,0,dd24ffcdecd6ee52b22199ebd3870422060275bcb8dab633695cea3f8caa0706,2023-12-21T15:15:08.710000 CVE-2023-42793,0,0,543dfe1f320b6b248a7d52a1f9b64c360f3b0bdf054225947761bc8900ed87e1,2023-10-03T15:44:06.660000 @@ -233950,7 +233950,7 @@ CVE-2023-48780,0,0,81a46aadc83bef693702f0587720fb307d57733c38a40b0e9a0adbf977d5c CVE-2023-48781,0,0,0b8167a5eef8ab6e938308c388d4115607ba3ad1846d34aa073b91ec79ad8a40,2023-12-22T09:47:10.017000 CVE-2023-48782,0,0,88145c135f3d36dc2324e589083cb79dceef7bf357c73c33782a57f9910e4f66,2023-12-15T20:01:55.773000 CVE-2023-48783,0,0,ebc0e9b096de11f5bb2feb6ecedfda87f1114290b6bb005e0f4f19fb8a6d2ef6,2024-01-17T18:24:38.617000 -CVE-2023-48788,0,1,ad4c216351c42bcd5d4781646e670b4d1143b26fb73cd6dbadd9e138caef4506,2024-03-19T08:15:06.373000 +CVE-2023-48788,0,0,ad4c216351c42bcd5d4781646e670b4d1143b26fb73cd6dbadd9e138caef4506,2024-03-19T08:15:06.373000 CVE-2023-4879,0,0,fa584d11e9766c316d104762d8e4d48a31923cd7ce617f7440b7a809b8dd63fe,2023-09-18T18:58:43.767000 CVE-2023-48791,0,0,4e7d2cae3ad6ba11c4e276624bedca77887a0ee315b409ddadb10bd81db3bb45,2023-12-15T20:09:24.010000 CVE-2023-48792,0,0,a3c17617afe01ace18242f14c2f591f70a09281fccef1129ab04ab7743ac5ed0,2024-02-09T19:41:33.093000 @@ -237742,8 +237742,8 @@ CVE-2024-0050,0,0,ac4e7fe9d34761575417473ff0725a23428cba002d4bdba2ecc8c3f11dcdf6 CVE-2024-0051,0,0,1e10d7ae88cadc9f5a72832435250d22c26ea58118b48436460d9ab0abdd889a,2024-03-12T12:40:13.500000 CVE-2024-0052,0,0,982ec5f500f55c393e1ad95104d1acd01617089fcfa88bc636de292bcef45a51,2024-03-12T12:40:13.500000 CVE-2024-0053,0,0,260483d756f420e8962c4a32143c98e01fe118d5502a6b9f7b4edbf25e96bf4f,2024-03-12T12:40:13.500000 -CVE-2024-0054,1,1,3552e1d3e922d75516a78ab3f1411140d50345a0eebabee07273897f2c8adc04,2024-03-19T07:15:07.033000 -CVE-2024-0055,1,1,3460661a6f9f0f8643b57c7938cf658a4032397eb07fb1569d1574481d778c96,2024-03-19T07:15:08.667000 +CVE-2024-0054,0,0,3552e1d3e922d75516a78ab3f1411140d50345a0eebabee07273897f2c8adc04,2024-03-19T07:15:07.033000 +CVE-2024-0055,0,0,3460661a6f9f0f8643b57c7938cf658a4032397eb07fb1569d1574481d778c96,2024-03-19T07:15:08.667000 CVE-2024-0056,0,0,8e4c5bb83a29ac8333eedaa800b8f7cbc24d65d51285a7605c7436e724c22f27,2024-02-27T20:42:01.233000 CVE-2024-0057,0,0,e4dc663a42ac696d9f4ea85b4eec7c26c470f055092858eb6ffdd99343f4d6bf,2024-02-27T20:41:51.863000 CVE-2024-0068,0,0,29054351872f671ffd0afada76da136d48518b88acaefb639ccc6c169ead07a3,2024-03-01T14:04:26.010000 @@ -239933,7 +239933,7 @@ CVE-2024-22445,0,0,874153d1fc6b93fe9f1bc951c0a860f76df46d0b4a1da0ccdd296d9b31c66 CVE-2024-22449,0,0,bbda7843d9766542fd731dac4991558c835fbecfc00731f79a512d8c0e63a23d,2024-02-03T00:30:30.737000 CVE-2024-2245,0,0,691730e073363309cbbedda1561ea8c86cfdfccb1b6917a0eaaacd61f92e651b,2024-03-07T13:52:27.110000 CVE-2024-22452,0,0,80a49da4f3f93f14d99e56090386038017924d30f728430f2aac9792c96b9939,2024-03-04T13:58:23.447000 -CVE-2024-22453,1,1,0d97d1ab802dde23679a52d547d0ba14c788d33b17beb79dc898db967b80b762,2024-03-19T08:15:06.480000 +CVE-2024-22453,0,0,0d97d1ab802dde23679a52d547d0ba14c788d33b17beb79dc898db967b80b762,2024-03-19T08:15:06.480000 CVE-2024-22454,0,0,323c0cbc8c3a94d57ed602cc461475e5ca2e60a686452caf750d59ecf708ba74,2024-02-27T17:10:16.097000 CVE-2024-22455,0,0,93b62f3ddef8805afbddbbac0392b16d3832897fc5287e2cb0477eb46d680dca,2024-02-14T13:59:35.580000 CVE-2024-22457,0,0,7279ce58ecce8320d3d09adc8f81224f08bd00041f311a050a60e7628b040618,2024-03-01T14:04:04.827000 @@ -240581,8 +240581,8 @@ CVE-2024-2403,0,0,db710ca0e617c3da526a0c52d62f8976f63ed0af009f8cc6c6ef6ea3cb5744 CVE-2024-24034,0,0,f4e2cb1ad61decc8759fc1601847f210f2a72bb15bd38e4d1e3133a19621c99b,2024-02-08T13:44:21.670000 CVE-2024-24035,0,0,77bbb29060dad0a4e27b56775f789e0b578831621d3fa9615a4c8def660cc461,2024-03-08T14:02:57.420000 CVE-2024-24041,0,0,f96650c9700d93c943d8efc95d65c599a8e77cc1d7aaa4ba87820d6237153959,2024-02-07T17:14:41.607000 -CVE-2024-24042,1,1,9b757c90c57cd5d1d10fe306a61b474dc9d79508ef1e555352eb52d5ba1e7c62,2024-03-19T07:15:09.097000 -CVE-2024-24043,1,1,3a611e6fbf058a328646fd276c24f5e7ff336bb5fc813d0bc4299dbc9a473942,2024-03-19T07:15:09.517000 +CVE-2024-24042,0,0,9b757c90c57cd5d1d10fe306a61b474dc9d79508ef1e555352eb52d5ba1e7c62,2024-03-19T07:15:09.097000 +CVE-2024-24043,0,0,3a611e6fbf058a328646fd276c24f5e7ff336bb5fc813d0bc4299dbc9a473942,2024-03-19T07:15:09.517000 CVE-2024-24059,0,0,3da8cffbcfd869f14b04835347f156c5cf1a6025fa9627a3ec1ec79a41a9d0be,2024-02-03T00:40:43.793000 CVE-2024-2406,0,0,93c22b844fdd3e9e5d23091d0d4a49fe9aed9112f23dba2ad0e01fb92984ecfa,2024-03-13T12:33:51.697000 CVE-2024-24060,0,0,3a6250076b98d97024da5e52a26f1f0c29807ef38de327e60f431783e4f1deaa,2024-02-03T00:40:48.600000 @@ -240751,6 +240751,7 @@ CVE-2024-24594,0,0,2d1d6ef3edb6eea27d760a77187cf0f21d8b0e3aa5e2b1e9eb45515b37617 CVE-2024-24595,0,0,53aa45116d4573f7c0b646b17e4787137c5ab03b6e722457f3ddd917489c99e4,2024-02-13T14:08:55.650000 CVE-2024-24680,0,0,00c6b06cbd399fac9a1cb69a45fdeee991ea9572aae73c195704c3555b436eb7,2024-02-15T18:46:48.693000 CVE-2024-24681,0,0,705110c1a0575ef95794934b23101ccc4a6f384f7c61c4db9f4dbf9a8c528dd4,2024-02-26T13:42:22.567000 +CVE-2024-24683,1,1,14d1db8c42c1af073346b05caabd28a87136e12e5c900ba32df4dea78d909acf,2024-03-19T09:15:06.630000 CVE-2024-24690,0,0,4249963fcab3f64839ca35be1a62d20e5da7a24ba0a47ce2bf9c0d2ae28ac410,2024-02-14T13:59:35.580000 CVE-2024-24691,0,0,87a55408e5efa0a4e3ce695995ae48834f0ce6baa0932acdc26c28bc7459ff4b,2024-02-14T13:59:35.580000 CVE-2024-24692,0,0,96b263e11e7ffd264e5e6330a524d4e167d94ed5d670d61f6bb2c4bb8b02f370,2024-03-14T12:52:21.763000 @@ -241331,7 +241332,7 @@ CVE-2024-25936,0,0,8effd82663b8db2d960ef33e023d14a22fda9a759a9ee34ebfd84341bfced CVE-2024-2594,0,0,62f22797cf1e847607c0f48ec8428fa7570128cbcbde2cadf780cc6697bdf9c5,2024-03-18T19:40:00.173000 CVE-2024-25940,0,0,81faf8084be28ad3443bfad1349de788b40c215e318cb61e901b3079aac1c24e,2024-02-15T06:23:39.303000 CVE-2024-25941,0,0,ca1cef65d30f17057b47421c2700ecf50e418e7bf4da35eb3fcc2989f17ef1eb,2024-02-15T06:23:39.303000 -CVE-2024-25942,1,1,413a4a699ee3a4d6da7a88c45eaf655b380d00f6d235170f5e5e5f636c182c38,2024-03-19T08:15:06.713000 +CVE-2024-25942,0,0,413a4a699ee3a4d6da7a88c45eaf655b380d00f6d235170f5e5e5f636c182c38,2024-03-19T08:15:06.713000 CVE-2024-2595,0,0,2deb54d18ba7636df2c2b5e2f14f094eeefaa5b876ae68e9d3b6166f648310d6,2024-03-18T19:40:00.173000 CVE-2024-25951,0,0,4cab9db546da1535e7f7aa83987aad28b8aa7aeb3328d636aa2cd78c27a2b2c1,2024-03-11T01:32:39.697000 CVE-2024-2596,0,0,978865da9be9e1fb873a9c434a053f33d1f0c5219abdf12becebd1212242ea79,2024-03-18T19:40:00.173000