From b11dab9f5187152221d8d09bc8ebf525e268d048 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Ren=C3=A9=20Helmke?= Date: Sun, 7 May 2023 04:00:28 +0200 Subject: [PATCH] Auto-Update: 2023-05-07T02:00:25.114131+00:00 --- CVE-2023/CVE-2023-244xx/CVE-2023-24400.json | 55 +++++++++++++++++++++ README.md | 10 ++-- 2 files changed, 60 insertions(+), 5 deletions(-) create mode 100644 CVE-2023/CVE-2023-244xx/CVE-2023-24400.json diff --git a/CVE-2023/CVE-2023-244xx/CVE-2023-24400.json b/CVE-2023/CVE-2023-244xx/CVE-2023-24400.json new file mode 100644 index 00000000000..7ab71b807ef --- /dev/null +++ b/CVE-2023/CVE-2023-244xx/CVE-2023-24400.json @@ -0,0 +1,55 @@ +{ + "id": "CVE-2023-24400", + "sourceIdentifier": "audit@patchstack.com", + "published": "2023-05-07T00:15:09.023", + "lastModified": "2023-05-07T00:15:09.023", + "vulnStatus": "Received", + "descriptions": [ + { + "lang": "en", + "value": "Auth. (contributor+) Cross-Site Scripting (XSS) vulnerability in Hu-manity.Co Cookie Notice & Compliance for GDPR / CCPA plugin <=\u00a02.4.6 versions." + } + ], + "metrics": { + "cvssMetricV31": [ + { + "source": "audit@patchstack.com", + "type": "Secondary", + "cvssData": { + "version": "3.1", + "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L", + "attackVector": "NETWORK", + "attackComplexity": "LOW", + "privilegesRequired": "LOW", + "userInteraction": "REQUIRED", + "scope": "CHANGED", + "confidentialityImpact": "LOW", + "integrityImpact": "LOW", + "availabilityImpact": "LOW", + "baseScore": 6.5, + "baseSeverity": "MEDIUM" + }, + "exploitabilityScore": 2.3, + "impactScore": 3.7 + } + ] + }, + "weaknesses": [ + { + "source": "audit@patchstack.com", + "type": "Primary", + "description": [ + { + "lang": "en", + "value": "CWE-79" + } + ] + } + ], + "references": [ + { + "url": "https://patchstack.com/database/vulnerability/cookie-notice/wordpress-cookie-notice-compliance-for-gdpr-ccpa-plugin-2-4-6-cross-site-scripting-xss-vulnerability", + "source": "audit@patchstack.com" + } + ] +} \ No newline at end of file diff --git a/README.md b/README.md index d64e295c92a..dd9f82ebe9c 100644 --- a/README.md +++ b/README.md @@ -9,13 +9,13 @@ Repository synchronizes with the NVD every 2 hours. ### Last Repository Update ```plain -2023-05-07T00:00:24.382783+00:00 +2023-05-07T02:00:25.114131+00:00 ``` ### Most recent CVE Modification Timestamp synchronized with NVD ```plain -2023-05-06T23:15:09.230000+00:00 +2023-05-07T00:15:09.023000+00:00 ``` ### Last Data Feed Release @@ -23,20 +23,20 @@ Repository synchronizes with the NVD every 2 hours. Download and Changelog: [Click](releases/latest) ```plain -2023-05-06T00:00:20.956955+00:00 +2023-05-07T00:00:20.963203+00:00 ``` ### Total Number of included CVEs ```plain -214182 +214183 ``` ### CVEs added in the last Commit Recently added CVEs: `1` -* [CVE-2023-25491](CVE-2023/CVE-2023-254xx/CVE-2023-25491.json) (`2023-05-06T23:15:09.230`) +* [CVE-2023-24400](CVE-2023/CVE-2023-244xx/CVE-2023-24400.json) (`2023-05-07T00:15:09.023`) ### CVEs modified in the last Commit