From 49e2d969dd518d5c8ed3f0154b18fa4ac18c7ffb Mon Sep 17 00:00:00 2001 From: cad-safe-bot Date: Tue, 16 Apr 2024 06:03:29 +0000 Subject: [PATCH] Auto-Update: 2024-04-16T06:00:40.364041+00:00 --- CVE-2024/CVE-2024-316xx/CVE-2024-31634.json | 20 ++++++++++++++++++++ CVE-2024/CVE-2024-317xx/CVE-2024-31783.json | 20 ++++++++++++++++++++ CVE-2024/CVE-2024-317xx/CVE-2024-31784.json | 20 ++++++++++++++++++++ README.md | 15 ++++++++------- _state.csv | 7 +++++-- 5 files changed, 73 insertions(+), 9 deletions(-) create mode 100644 CVE-2024/CVE-2024-316xx/CVE-2024-31634.json create mode 100644 CVE-2024/CVE-2024-317xx/CVE-2024-31783.json create mode 100644 CVE-2024/CVE-2024-317xx/CVE-2024-31784.json diff --git a/CVE-2024/CVE-2024-316xx/CVE-2024-31634.json b/CVE-2024/CVE-2024-316xx/CVE-2024-31634.json new file mode 100644 index 00000000000..1caeb43939c --- /dev/null +++ b/CVE-2024/CVE-2024-316xx/CVE-2024-31634.json @@ -0,0 +1,20 @@ +{ + "id": "CVE-2024-31634", + "sourceIdentifier": "cve@mitre.org", + "published": "2024-04-16T04:15:08.463", + "lastModified": "2024-04-16T04:15:08.463", + "vulnStatus": "Received", + "descriptions": [ + { + "lang": "en", + "value": "Cross Site Scripting (XSS) vulnerability in Xunruicms versions 4.6.3 and before, allows remote attacker to execute arbitrary code via the Security.php file in the catalog \\XunRuiCMS\\dayrui\\Fcms\\Library." + } + ], + "metrics": {}, + "references": [ + { + "url": "https://github.com/buchilajiao1/CVE/blob/main/xunruicms/xunruicms.md", + "source": "cve@mitre.org" + } + ] +} \ No newline at end of file diff --git a/CVE-2024/CVE-2024-317xx/CVE-2024-31783.json b/CVE-2024/CVE-2024-317xx/CVE-2024-31783.json new file mode 100644 index 00000000000..790541365cb --- /dev/null +++ b/CVE-2024/CVE-2024-317xx/CVE-2024-31783.json @@ -0,0 +1,20 @@ +{ + "id": "CVE-2024-31783", + "sourceIdentifier": "cve@mitre.org", + "published": "2024-04-16T04:15:09.140", + "lastModified": "2024-04-16T04:15:09.140", + "vulnStatus": "Received", + "descriptions": [ + { + "lang": "en", + "value": "Cross Site Scripting (XSS) vulnerability in Typora v.1.6.7 and before, allows a local attacker to obtain sensitive information via a crafted script during markdown file creation." + } + ], + "metrics": {}, + "references": [ + { + "url": "https://github.com/0x0fc/TyporaXSS/blob/main/TyporaXSS.md", + "source": "cve@mitre.org" + } + ] +} \ No newline at end of file diff --git a/CVE-2024/CVE-2024-317xx/CVE-2024-31784.json b/CVE-2024/CVE-2024-317xx/CVE-2024-31784.json new file mode 100644 index 00000000000..ae9247affb0 --- /dev/null +++ b/CVE-2024/CVE-2024-317xx/CVE-2024-31784.json @@ -0,0 +1,20 @@ +{ + "id": "CVE-2024-31784", + "sourceIdentifier": "cve@mitre.org", + "published": "2024-04-16T04:15:09.200", + "lastModified": "2024-04-16T04:15:09.200", + "vulnStatus": "Received", + "descriptions": [ + { + "lang": "en", + "value": "An issue in Typora v.1.8.10 and before, allows a local attacker to obtain sensitive information and execute arbitrary code via a crafted payload to the src component." + } + ], + "metrics": {}, + "references": [ + { + "url": "https://github.com/0x0fc/TyporaIframe/blob/main/TyporaIframeVuln.md", + "source": "cve@mitre.org" + } + ] +} \ No newline at end of file diff --git a/README.md b/README.md index f8baa8269d6..4407f069961 100644 --- a/README.md +++ b/README.md @@ -13,13 +13,13 @@ Repository synchronizes with the NVD every 2 hours. ### Last Repository Update ```plain -2024-04-16T04:00:39.741643+00:00 +2024-04-16T06:00:40.364041+00:00 ``` ### Most recent CVE Modification Timestamp synchronized with NVD ```plain -2024-04-16T03:15:06.393000+00:00 +2024-04-16T04:15:09.200000+00:00 ``` ### Last Data Feed Release @@ -33,21 +33,22 @@ Download and Changelog: [Click](https://github.com/fkie-cad/nvd-json-data-feeds/ ### Total Number of included CVEs ```plain -245675 +245678 ``` ### CVEs added in the last Commit -Recently added CVEs: `0` +Recently added CVEs: `3` +- [CVE-2024-31634](CVE-2024/CVE-2024-316xx/CVE-2024-31634.json) (`2024-04-16T04:15:08.463`) +- [CVE-2024-31783](CVE-2024/CVE-2024-317xx/CVE-2024-31783.json) (`2024-04-16T04:15:09.140`) +- [CVE-2024-31784](CVE-2024/CVE-2024-317xx/CVE-2024-31784.json) (`2024-04-16T04:15:09.200`) ### CVEs modified in the last Commit -Recently modified CVEs: `2` +Recently modified CVEs: `0` -- [CVE-2023-6814](CVE-2023/CVE-2023-68xx/CVE-2023-6814.json) (`2024-04-16T03:15:06.230`) -- [CVE-2024-25629](CVE-2024/CVE-2024-256xx/CVE-2024-25629.json) (`2024-04-16T03:15:06.393`) ## Download and Usage diff --git a/_state.csv b/_state.csv index 2ac21737896..13fc8938368 100644 --- a/_state.csv +++ b/_state.csv @@ -237859,7 +237859,7 @@ CVE-2023-6807,0,0,8211ca38107dc4f9b4127c6352451c7045672cf7336c16fcb14315bbd9ab06 CVE-2023-6808,0,0,453d7720ba5e9cbfc061121430ec5679037ea2f22b990571ad72c0ac48f6ec8b,2024-02-09T16:49:29.023000 CVE-2023-6809,0,0,da849ebc66bf4be9594f5a16c6489da06b73ea4d1114ad0ea42cbcbd1d55570a,2024-03-13T18:16:18.563000 CVE-2023-6811,0,0,0ae434dca3175548a9ca9dc42c6f8d10f94870a185713460da5dc58ca1a03a92,2024-04-11T12:47:44.137000 -CVE-2023-6814,0,1,f914980738323f0d89710adfa1af6d51adf8e3bc868f5019d57b30c5b4448cc4,2024-04-16T03:15:06.230000 +CVE-2023-6814,0,0,f914980738323f0d89710adfa1af6d51adf8e3bc868f5019d57b30c5b4448cc4,2024-04-16T03:15:06.230000 CVE-2023-6815,0,0,2907a8b4ff24102c477c46109fb1fabfce42d3c6fd03f18fcb9bbd39f14ee3a0,2024-02-14T04:15:08.497000 CVE-2023-6816,0,0,e7839a0ba60fd8f45333ca3d0c1da185b693b7e81293656670d077cc9777a76a,2024-03-07T17:15:12.180000 CVE-2023-6817,0,0,15a873d76f1c7613f3959855e73f950459b6718d3731740781c6b052a6a56c9a,2024-02-08T16:15:47.270000 @@ -242448,7 +242448,7 @@ CVE-2024-25625,0,0,aa9fbe54dd7bd2282f80b78321777ab8fac3f81631cae43246d091ee25cf0 CVE-2024-25626,0,0,d9f83485f5fb6b4cc55a1d4f971342f8155aa2e72270d86c4d53f59fca85dc97,2024-02-20T19:50:53.960000 CVE-2024-25627,0,0,2bcab79d49f96281ac7197c55bb9f9a5171d7b9aac31488886e6d6a908f6c3e8,2024-02-16T21:39:50.223000 CVE-2024-25628,0,0,80b7a5f2deb7812c880a14f3ad5933114e243f6db0abb31e68cb47ea4c9ddedc,2024-02-16T21:39:50.223000 -CVE-2024-25629,0,1,dff163be68e4d5d8dbb9022aad62a83b560d4bf362326db988d97b86a5f1819f,2024-04-16T03:15:06.393000 +CVE-2024-25629,0,0,dff163be68e4d5d8dbb9022aad62a83b560d4bf362326db988d97b86a5f1819f,2024-04-16T03:15:06.393000 CVE-2024-2563,0,0,ab218bcaef8961ea4a4fecbec8472cfaeb0dcd8e5dc06b641e97caca7ece71ae,2024-04-11T01:25:28.267000 CVE-2024-25630,0,0,a57a628f28495cd842b0c66428735d2693acec87d73be247a3978c9f39f89b72,2024-02-20T19:50:53.960000 CVE-2024-25631,0,0,762b89556b501c655b7561ea12ef304be15c2e928b2e552489636c84deba37af,2024-02-20T19:50:53.960000 @@ -245268,6 +245268,7 @@ CVE-2024-3158,0,0,d2414412e299d1c6c6fd5c25934ca9d016ec38ac6210ea884f5d6eabc2220b CVE-2024-3159,0,0,ab3d3fc3f58ff99c2f10e23574a75e665f3343c344ecfe71138e927973febb6e,2024-04-08T18:48:40.217000 CVE-2024-3160,0,0,f58561faca7869291dbd40f98b5207b12f048bddf4323b50e2fa0b0605fe77f4,2024-04-11T01:25:55.513000 CVE-2024-3162,0,0,7209bf9b1b4a4f41543ae01bfd19e9aec1dd355164cd1434a8cb5548ea161c65,2024-04-03T12:38:04.840000 +CVE-2024-31634,1,1,19564b78dd2e8c6f1c4071d3437219d1546ac64123c723e301839d8b19971620,2024-04-16T04:15:08.463000 CVE-2024-3164,0,0,7f780c294c8831979bff32bef1a48b2e6fa61521035bd6f029f476ca7c0385b5,2024-04-11T01:25:55.603000 CVE-2024-31648,0,0,a016bcd573857722aa31bc350635e46363d927042b391222b2d909ae932753ae,2024-04-15T21:15:07.503000 CVE-2024-31649,0,0,07adaca885ecb1795870b6c469b09c65117f501d49932f9bf55d132fd09732de,2024-04-15T21:15:07.547000 @@ -245278,6 +245279,8 @@ CVE-2024-31652,0,0,90276002c53daa175a8ae9f59f3d7cfe67a16d5f61ea7574390897425f025 CVE-2024-3167,0,0,f4a160a1382e038713f603968880deb87a3b362a15bab9fc55aa42721dc9dd6e,2024-04-10T13:23:38.787000 CVE-2024-31678,0,0,6d17d4ce9eaa15ebb6367a838566d027b53ddba56e09f333fd8cadacfd1d2447,2024-04-12T12:44:04.930000 CVE-2024-3178,0,0,e1b2edc538f836ffb506a17d476e0f961db2588242ddd1b2358ad3487cd818bf,2024-04-04T12:48:41.700000 +CVE-2024-31783,1,1,446f2fc1a687465cf17bf49f6974f026e98dc501df8adec628749ef9b1165b86,2024-04-16T04:15:09.140000 +CVE-2024-31784,1,1,7ee83ce9dd5cadf2e1f87cf5fb5c146a067d8c0736ae25bda731f702e93214a8,2024-04-16T04:15:09.200000 CVE-2024-3179,0,0,5abb24f6a5051585dee8d043e9230e5c2a9202caf7e3c5044373b856d11a8a98,2024-04-04T12:48:41.700000 CVE-2024-3180,0,0,cb7e6ecd5dde884356237a2b2dbf7b6ac67d07b2baecdd8da937f602eadd96a4,2024-04-04T12:48:41.700000 CVE-2024-31805,0,0,191a14c2d5ae7968331c5203389f4ad20337fe28197ac48f135f3f3b37941d31,2024-04-08T18:48:40.217000