From 90a86dfe5375aed42f53891ce2722a4876fcfa56 Mon Sep 17 00:00:00 2001 From: cad-safe-bot Date: Sun, 17 Nov 2024 11:03:21 +0000 Subject: [PATCH] Auto-Update: 2024-11-17T11:00:19.408487+00:00 --- CVE-2024/CVE-2024-215xx/CVE-2024-21540.json | 58 ++------------------- README.md | 10 ++-- _state.csv | 4 +- 3 files changed, 12 insertions(+), 60 deletions(-) diff --git a/CVE-2024/CVE-2024-215xx/CVE-2024-21540.json b/CVE-2024/CVE-2024-215xx/CVE-2024-21540.json index 7e4d55778bf..988702c0920 100644 --- a/CVE-2024/CVE-2024-215xx/CVE-2024-21540.json +++ b/CVE-2024/CVE-2024-215xx/CVE-2024-21540.json @@ -2,63 +2,15 @@ "id": "CVE-2024-21540", "sourceIdentifier": "report@snyk.io", "published": "2024-11-13T05:15:12.997", - "lastModified": "2024-11-13T17:01:16.850", - "vulnStatus": "Awaiting Analysis", + "lastModified": "2024-11-17T09:15:11.853", + "vulnStatus": "Rejected", "cveTags": [], "descriptions": [ { "lang": "en", - "value": "All versions of the package source-map-support are vulnerable to Directory Traversal in the retrieveSourceMap function." - }, - { - "lang": "es", - "value": "Todas las versiones del paquete source-map-support son vulnerables a Directory Traversal en la funci\u00f3n retrieveSourceMap." + "value": "Rejected reason: This issue is not a vulnerability because no real attack scenario can happen." } ], - "metrics": { - "cvssMetricV31": [ - { - "source": "report@snyk.io", - "type": "Secondary", - "cvssData": { - "version": "3.1", - "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N", - "attackVector": "NETWORK", - "attackComplexity": "LOW", - "privilegesRequired": "NONE", - "userInteraction": "NONE", - "scope": "UNCHANGED", - "confidentialityImpact": "HIGH", - "integrityImpact": "NONE", - "availabilityImpact": "NONE", - "baseScore": 7.5, - "baseSeverity": "HIGH" - }, - "exploitabilityScore": 3.9, - "impactScore": 3.6 - } - ] - }, - "weaknesses": [ - { - "source": "report@snyk.io", - "type": "Secondary", - "description": [ - { - "lang": "en", - "value": "CWE-22" - } - ] - } - ], - "references": [ - { - "url": "https://gist.github.com/mcoimbra/0f889d69b39c1c09aa6a8c001072402e", - "source": "report@snyk.io" - }, - { - "url": "https://security.snyk.io/vuln/SNYK-JS-SOURCEMAPSUPPORT-6112477", - "source": "report@snyk.io" - } - ] + "metrics": {}, + "references": [] } \ No newline at end of file diff --git a/README.md b/README.md index dea45a8a379..8d010c38713 100644 --- a/README.md +++ b/README.md @@ -13,13 +13,13 @@ Repository synchronizes with the NVD every 2 hours. ### Last Repository Update ```plain -2024-11-17T07:00:20.109398+00:00 +2024-11-17T11:00:19.408487+00:00 ``` ### Most recent CVE Modification Timestamp synchronized with NVD ```plain -2024-11-17T05:15:04.760000+00:00 +2024-11-17T09:15:11.853000+00:00 ``` ### Last Data Feed Release @@ -38,15 +38,15 @@ Download and Changelog: [Click](https://github.com/fkie-cad/nvd-json-data-feeds/ ### CVEs added in the last Commit -Recently added CVEs: `1` +Recently added CVEs: `0` -- [CVE-2024-52876](CVE-2024/CVE-2024-528xx/CVE-2024-52876.json) (`2024-11-17T05:15:04.760`) ### CVEs modified in the last Commit -Recently modified CVEs: `0` +Recently modified CVEs: `1` +- [CVE-2024-21540](CVE-2024/CVE-2024-215xx/CVE-2024-21540.json) (`2024-11-17T09:15:11.853`) ## Download and Usage diff --git a/_state.csv b/_state.csv index 4b33c692c47..84a1f74d4d7 100644 --- a/_state.csv +++ b/_state.csv @@ -245452,7 +245452,7 @@ CVE-2024-21536,0,0,4f914cfe6666bcd465a58ac4926a267d85d3e48bad9af0623e3ff24aeb06f CVE-2024-21537,0,0,b5c780dab93a9075b9d24d6af4e9f73fa194b201a9c6953f660e67892e16f17b,2024-11-01T12:57:03.417000 CVE-2024-21538,0,0,e8cdab9c6756d7f91f4358b51c5fdc4acd8293095dfa14f99a5a2ff2dfe3d783,2024-11-08T19:01:03.880000 CVE-2024-2154,0,0,ab5f0b39bb38e5c25606bad964d563e0edda059ff34db22b99ca2b3670b021ff,2024-05-17T02:38:04.970000 -CVE-2024-21540,0,0,8235ae5f7f436486b5b1a166d14445727fb8206ff9ae51552f753c170b6162a1,2024-11-13T17:01:16.850000 +CVE-2024-21540,0,1,ca361900c1eaa9a3b1242a94b8aed82eaba7c8170c10a4efa35cbfaad6b1984c,2024-11-17T09:15:11.853000 CVE-2024-21541,0,0,373acd5e14ddf4ee5ebb476557660e01f865be6144d1960555899268f402376b,2024-11-13T17:01:16.850000 CVE-2024-21545,0,0,614ed901d7a98204a096c9331020afa9e58729de6a0c722ccca7898674ea9a4d,2024-09-26T13:32:02.803000 CVE-2024-2155,0,0,499612150b3a1be829ef430bb3388eb54a55d7bb52271f37f2a76ceb8af6c56f,2024-05-17T02:38:05.063000 @@ -266397,7 +266397,7 @@ CVE-2024-52867,0,0,46907a1243872463172cd86185858507407fc754b16f3742c816c529d86cc CVE-2024-5287,0,0,13c5ee44df7955897b1f2b3c68a920faa26439fbe1c9c489df67cb947fa427e4,2024-08-01T13:59:45.123000 CVE-2024-52871,0,0,1910ab17db2061018c381c7526f17daf85fcdb812f81d4b94584f73e6b7b08df,2024-11-17T04:15:03.973000 CVE-2024-52872,0,0,c2383408e4a6799080aae9df014676ca7d0533dda7b29f5e70e342a606581850,2024-11-17T04:15:04.047000 -CVE-2024-52876,1,1,145c7923f19bec6cacf4c34e4d20a60afb40790718da05ab7738ffc3a2161dec,2024-11-17T05:15:04.760000 +CVE-2024-52876,0,0,145c7923f19bec6cacf4c34e4d20a60afb40790718da05ab7738ffc3a2161dec,2024-11-17T05:15:04.760000 CVE-2024-5288,0,0,099c1d3c2643003d52a5f473484a6d38731263e3329a5baa027f91acf149389c,2024-08-28T12:57:39.090000 CVE-2024-5289,0,0,a02da373ddf627c39a88f09ba37230dcf191b29c84a32613f97fcb834cd9c524,2024-06-28T13:13:36.980000 CVE-2024-5290,0,0,35d091933943d3d7227642594800fb6801417d7c5ce37502d2fb6d1c6a076c33,2024-09-17T13:09:13.683000