Auto-Update: 2025-04-02T04:00:19.906640+00:00

This commit is contained in:
cad-safe-bot 2025-04-02 04:03:52 +00:00
parent d8f1a20daa
commit c6218f92d5
3 changed files with 82 additions and 35 deletions

View File

@ -0,0 +1,60 @@
{
"id": "CVE-2025-2779",
"sourceIdentifier": "security@wordfence.com",
"published": "2025-04-02T02:15:14.380",
"lastModified": "2025-04-02T02:15:14.380",
"vulnStatus": "Received",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "The Insert Headers and Footers Code \u2013 HT Script plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the ajax_dismiss function in all versions up to, and including, 1.1.2. This makes it possible for authenticated attackers, with Subscriber-level access and above, to update option values to 1/true on the WordPress site. This can be leveraged to update an option that would create an error on the site and deny access to legitimate users or be used to set some values to true, such as registration."
}
],
"metrics": {
"cvssMetricV31": [
{
"source": "security@wordfence.com",
"type": "Primary",
"cvssData": {
"version": "3.1",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N",
"baseScore": 6.5,
"baseSeverity": "MEDIUM",
"attackVector": "NETWORK",
"attackComplexity": "LOW",
"privilegesRequired": "LOW",
"userInteraction": "NONE",
"scope": "UNCHANGED",
"confidentialityImpact": "NONE",
"integrityImpact": "HIGH",
"availabilityImpact": "NONE"
},
"exploitabilityScore": 2.8,
"impactScore": 3.6
}
]
},
"weaknesses": [
{
"source": "security@wordfence.com",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-862"
}
]
}
],
"references": [
{
"url": "https://plugins.trac.wordpress.org/browser/insert-headers-and-footers-script/tags/1.1.2/admin/class-rating-notice.php#L59",
"source": "security@wordfence.com"
},
{
"url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/75bc2295-bf9a-430f-92b7-d380eed6df11?source=cve",
"source": "security@wordfence.com"
}
]
}

View File

@ -13,13 +13,13 @@ Repository synchronizes with the NVD every 2 hours.
### Last Repository Update
```plain
2025-04-02T02:00:19.991871+00:00
2025-04-02T04:00:19.906640+00:00
```
### Most recent CVE Modification Timestamp synchronized with NVD
```plain
2025-04-02T01:15:38.690000+00:00
2025-04-02T02:15:14.380000+00:00
```
### Last Data Feed Release
@ -33,34 +33,20 @@ Download and Changelog: [Click](https://github.com/fkie-cad/nvd-json-data-feeds/
### Total Number of included CVEs
```plain
288171
288172
```
### CVEs added in the last Commit
Recently added CVEs: `14`
Recently added CVEs: `1`
- [CVE-2025-27692](CVE-2025/CVE-2025-276xx/CVE-2025-27692.json) (`2025-04-02T01:15:37.117`)
- [CVE-2025-27693](CVE-2025/CVE-2025-276xx/CVE-2025-27693.json) (`2025-04-02T01:15:37.283`)
- [CVE-2025-27694](CVE-2025/CVE-2025-276xx/CVE-2025-27694.json) (`2025-04-02T01:15:37.430`)
- [CVE-2025-29981](CVE-2025/CVE-2025-299xx/CVE-2025-29981.json) (`2025-04-02T01:15:37.577`)
- [CVE-2025-29982](CVE-2025/CVE-2025-299xx/CVE-2025-29982.json) (`2025-04-02T01:15:37.723`)
- [CVE-2025-3066](CVE-2025/CVE-2025-30xx/CVE-2025-3066.json) (`2025-04-02T01:15:37.873`)
- [CVE-2025-3067](CVE-2025/CVE-2025-30xx/CVE-2025-3067.json) (`2025-04-02T01:15:38.010`)
- [CVE-2025-3068](CVE-2025/CVE-2025-30xx/CVE-2025-3068.json) (`2025-04-02T01:15:38.093`)
- [CVE-2025-3069](CVE-2025/CVE-2025-30xx/CVE-2025-3069.json) (`2025-04-02T01:15:38.187`)
- [CVE-2025-3070](CVE-2025/CVE-2025-30xx/CVE-2025-3070.json) (`2025-04-02T01:15:38.283`)
- [CVE-2025-3071](CVE-2025/CVE-2025-30xx/CVE-2025-3071.json) (`2025-04-02T01:15:38.413`)
- [CVE-2025-3072](CVE-2025/CVE-2025-30xx/CVE-2025-3072.json) (`2025-04-02T01:15:38.503`)
- [CVE-2025-3073](CVE-2025/CVE-2025-30xx/CVE-2025-3073.json) (`2025-04-02T01:15:38.600`)
- [CVE-2025-3074](CVE-2025/CVE-2025-30xx/CVE-2025-3074.json) (`2025-04-02T01:15:38.690`)
- [CVE-2025-2779](CVE-2025/CVE-2025-27xx/CVE-2025-2779.json) (`2025-04-02T02:15:14.380`)
### CVEs modified in the last Commit
Recently modified CVEs: `1`
Recently modified CVEs: `0`
- [CVE-2025-24813](CVE-2025/CVE-2025-248xx/CVE-2025-24813.json) (`2025-04-02T01:00:02.367`)
## Download and Usage

View File

@ -285430,7 +285430,7 @@ CVE-2025-2481,0,0,c2c28d972678d70cba9bebdec9ea93fe1d44de9c5f8caa95f7b1a4769c38aa
CVE-2025-24810,0,0,5dc96a04891b646d8f099d1fa627e0a60065bb9f47866c74211a0f5415867e23,2025-01-28T05:15:11.413000
CVE-2025-24811,0,0,2da7e99907675b0c3b84fff601eb43c4c4c27c662d95c7205901bce5bb8705d8,2025-02-11T11:15:16.907000
CVE-2025-24812,0,0,3542fd62679fcd1754aabe0f38d924c5bd34578dfc13aa46aeaa150dd810a16a,2025-02-11T11:15:17.080000
CVE-2025-24813,0,1,f7331bb40ec2dcc0353aeab62186a5c231864e3c581b537158dc3c468fdabb44,2025-04-02T01:00:02.367000
CVE-2025-24813,0,0,f7331bb40ec2dcc0353aeab62186a5c231864e3c581b537158dc3c468fdabb44,2025-04-02T01:00:02.367000
CVE-2025-24814,0,0,778c51f4f444afc315901ebeb1d1515ad066d9ae9182f0d62b926c00ff924803,2025-02-15T01:15:11.157000
CVE-2025-2482,0,0,be7a8d723327735044c6ecc1944caac7a739318f0bdbfa562a15b7f5a44fe782,2025-03-22T07:15:25.307000
CVE-2025-24826,0,0,afc4a3c6aa0e8288830e8c91cc81c25b8636a1b49a80120ea49c59c3d903f3ac,2025-01-28T21:15:18.817000
@ -286846,9 +286846,9 @@ CVE-2025-27683,0,0,7e20c72afe8c88bc84d73e31c2ba29fb18f4a737228bf1bf47c1090223f9e
CVE-2025-27684,0,0,240682932b2a460f603a664c7d08c6697d3ad68db39d84d7af33037bb7ea91b8,2025-04-01T20:45:03.630000
CVE-2025-27685,0,0,f1cd2113ab987f8aa8854222629b62161d79f2c62b06433ec39fa30503650db2,2025-04-01T20:44:56.343000
CVE-2025-27688,0,0,37bfd097838352d3a2c81f7e24a7a0eef1d098aec6c34d136894861caf071b8f,2025-03-18T16:15:27.980000
CVE-2025-27692,1,1,9ca37d99405705bc3811a9ef260a33dffb32c6a5759c2fd82f54af204311ff49,2025-04-02T01:15:37.117000
CVE-2025-27693,1,1,0eef02cc0236343b6aa16a2eb59cdb732e91f389e90fb92a5fef21e8140d0fc7,2025-04-02T01:15:37.283000
CVE-2025-27694,1,1,c891683dcfd971294e72cdfba4f5a33a48aecbde78c1324919a1d3fd57042b60,2025-04-02T01:15:37.430000
CVE-2025-27692,0,0,9ca37d99405705bc3811a9ef260a33dffb32c6a5759c2fd82f54af204311ff49,2025-04-02T01:15:37.117000
CVE-2025-27693,0,0,0eef02cc0236343b6aa16a2eb59cdb732e91f389e90fb92a5fef21e8140d0fc7,2025-04-02T01:15:37.283000
CVE-2025-27694,0,0,c891683dcfd971294e72cdfba4f5a33a48aecbde78c1324919a1d3fd57042b60,2025-04-02T01:15:37.430000
CVE-2025-27704,0,0,86d6df9596e1ab01bb839e39075597fb6abcd0e8a7145e06c224ef11d5c72693,2025-03-19T19:15:47.390000
CVE-2025-27705,0,0,c5ff1aec7cfc8542770275a002f6e0d41571adb88f3dd40ea1ae12b57d47c3ea,2025-03-19T20:15:19.727000
CVE-2025-27715,0,0,3945a29c5f5d17f328e68afe21b406dfe2951d48ca4e13bc184b7c24d7c6efed,2025-03-27T15:01:03.360000
@ -286881,6 +286881,7 @@ CVE-2025-27786,0,0,d5fcf6854bf4e051e48ac285297811cb2b1007a0851f10df4fdbb776c79f1
CVE-2025-27787,0,0,155035fe75bae04ee902cac5759b78779c185535cde642fccfdd2b025dec0163,2025-03-19T21:15:40.923000
CVE-2025-27788,0,0,fb59384d45f520106866a8941a0e80392b74b89be61422860443d123f9c14688,2025-03-12T14:15:16.770000
CVE-2025-27789,0,0,1d6dffc84798f01608e4f99792545443ae7fe01f00fb8a5ade60b9d3392855a3,2025-03-11T20:15:18.330000
CVE-2025-2779,1,1,ab5aa8ddcd71e371102b83a057416518f3f1d5dbc8941edde117ce3c9f83c992,2025-04-02T02:15:14.380000
CVE-2025-27792,0,0,b74c7d86509a90375e7b6ae418264a1e46ee3163db3412e248a72d4623f714ea,2025-03-12T14:15:16.930000
CVE-2025-27793,0,0,8ae5ea10e12dcadd7fbe7d01abf4cd47c8df86334043c5ca8ff67abda3373704,2025-03-27T16:45:12.210000
CVE-2025-27794,0,0,47c8a224a9da192501495c41d8ba404a5aafbecae295a4123a21e1f273ce3e14,2025-03-12T14:15:17.033000
@ -287264,8 +287265,8 @@ CVE-2025-2996,0,0,7bbdd53b483fc5fbc9f485fbcd7ea4957b8c349b8017466a9f0d8bb20d8814
CVE-2025-2997,0,0,bc69099f8d7511956f428361eaf24eeb839dd67cac5eb37cbb44b2b22459dbf9,2025-04-01T20:26:30.593000
CVE-2025-2998,0,0,827aa23e1866da63b394bb2878f39c7208b378e6225cdb1e91f5f1852d0e36c0,2025-04-01T20:26:30.593000
CVE-2025-29980,0,0,02b1f4fe8cc2958b2decdcfb4a2e99acadf56a3773103d9215c6253bff189364,2025-03-20T20:15:33.233000
CVE-2025-29981,1,1,09c28e3ee545109db38128e7f5d516fe3a6a99af856d0f50210b74debfea6398,2025-04-02T01:15:37.577000
CVE-2025-29982,1,1,443f279ec3e8f8ec74d9581c45f6c19a36b2a204d80517adb9c5466221fe93dc,2025-04-02T01:15:37.723000
CVE-2025-29981,0,0,09c28e3ee545109db38128e7f5d516fe3a6a99af856d0f50210b74debfea6398,2025-04-02T01:15:37.577000
CVE-2025-29982,0,0,443f279ec3e8f8ec74d9581c45f6c19a36b2a204d80517adb9c5466221fe93dc,2025-04-02T01:15:37.723000
CVE-2025-2999,0,0,81444588dd7906e6c8cac51c6c8e57e7e231b44db369bc45695ecb3a2d560ed4,2025-04-01T20:26:22.890000
CVE-2025-29993,0,0,5a3aa3d216416e2fe2b892d0a3793dacda985a3191a3f3e25b8b0846fab45986,2025-03-27T16:45:27.850000
CVE-2025-29994,0,0,8b1d4c4db8a5bb026ac4bf9b653f3b25d05b3b75f8c87e310d6dd90fa8b8e6c7,2025-03-13T12:15:13.660000
@ -287567,18 +287568,18 @@ CVE-2025-30620,0,0,c08b515269c7c0e04b1b49f9e6c2ffe9756d4e917a1b7d90dc4cbb8598369
CVE-2025-30621,0,0,8c6a6eedc9f943375208fa96aeb0d151078d5fa54598208cfb233511cfe9bf71,2025-03-27T16:44:44.143000
CVE-2025-30622,0,0,797c397d49f77f00a276d4088c4e3466e59efa0b6ce4fa17d94546d3a32ca074,2025-04-01T20:26:11.547000
CVE-2025-30623,0,0,a8e0620fa0eff69e53f34c91bac6562d90d04f91188fb9d1c9bfa47d4c96dabd,2025-03-27T16:44:44.143000
CVE-2025-3066,1,1,2dc9237ed16bea3a669d44eb9c63d5f5d3da5f52c8da53369eb787262bef2b6b,2025-04-02T01:15:37.873000
CVE-2025-3067,1,1,a1cd7ecee7808b7e6eeee70125e8546a5e4ee2d55893fb24b796ccabf8cba6d9,2025-04-02T01:15:38.010000
CVE-2025-3066,0,0,2dc9237ed16bea3a669d44eb9c63d5f5d3da5f52c8da53369eb787262bef2b6b,2025-04-02T01:15:37.873000
CVE-2025-3067,0,0,a1cd7ecee7808b7e6eeee70125e8546a5e4ee2d55893fb24b796ccabf8cba6d9,2025-04-02T01:15:38.010000
CVE-2025-30672,0,0,3ded266990ba9009f55577f3f5d04302a5c6b8450014b92c80b83398ad23d15e,2025-04-01T20:26:11.547000
CVE-2025-30673,0,0,1cf76211fcfa10ad4c1393e8c6dafbf3bed92def83ca793b34e5eea95c528365,2025-04-01T20:26:11.547000
CVE-2025-30676,0,0,3e67eb6b5b390fd0a890a53592e5ec879a5cd04f0023bc4e82423b1868db6a78,2025-04-01T20:26:11.547000
CVE-2025-3068,1,1,091cc762d9b8a8f8a077c885a0683f5ea215e12b55d95a52c5aebce7ef6a86e4,2025-04-02T01:15:38.093000
CVE-2025-3069,1,1,ee8ca143266eb86d15c9848d2c3360cd19f3cc71787f917dbc410fab67008eb4,2025-04-02T01:15:38.187000
CVE-2025-3070,1,1,53c53f991861f7edd26c24e9fb702f7a6d4774d5803aca32533dfe8b8501e92e,2025-04-02T01:15:38.283000
CVE-2025-3071,1,1,b35b5cf222bbb77b2698400bcd639e542a2b5443d1d7db5767f2873521232f46,2025-04-02T01:15:38.413000
CVE-2025-3072,1,1,89bbf3614f5396edbb5e52d5f46ab7c379153dc4a1ae5b07a06c22c32e47481b,2025-04-02T01:15:38.503000
CVE-2025-3073,1,1,a931a3351eadab7ee300cef65f8faaccae3408f260751d9049570702898cefc4,2025-04-02T01:15:38.600000
CVE-2025-3074,1,1,45ec19092253c1036517bac5becbff3ee7ae7f49e5c3f825354b9ed9e5c8ed43,2025-04-02T01:15:38.690000
CVE-2025-3068,0,0,091cc762d9b8a8f8a077c885a0683f5ea215e12b55d95a52c5aebce7ef6a86e4,2025-04-02T01:15:38.093000
CVE-2025-3069,0,0,ee8ca143266eb86d15c9848d2c3360cd19f3cc71787f917dbc410fab67008eb4,2025-04-02T01:15:38.187000
CVE-2025-3070,0,0,53c53f991861f7edd26c24e9fb702f7a6d4774d5803aca32533dfe8b8501e92e,2025-04-02T01:15:38.283000
CVE-2025-3071,0,0,b35b5cf222bbb77b2698400bcd639e542a2b5443d1d7db5767f2873521232f46,2025-04-02T01:15:38.413000
CVE-2025-3072,0,0,89bbf3614f5396edbb5e52d5f46ab7c379153dc4a1ae5b07a06c22c32e47481b,2025-04-02T01:15:38.503000
CVE-2025-3073,0,0,a931a3351eadab7ee300cef65f8faaccae3408f260751d9049570702898cefc4,2025-04-02T01:15:38.600000
CVE-2025-3074,0,0,45ec19092253c1036517bac5becbff3ee7ae7f49e5c3f825354b9ed9e5c8ed43,2025-04-02T01:15:38.690000
CVE-2025-30741,0,0,a7ba724d5523a4cf0c1b38678a2ee1b0c99bfb24f80e0249782577c8771159ad,2025-03-27T16:45:46.410000
CVE-2025-30742,0,0,86ca35df94be3200dc999955b93d6c2b0d3e9fbdd347944fb57613c93c49228a,2025-03-27T16:45:46.410000
CVE-2025-30763,0,0,8cae761cd1fe343dec958c3bde26a021d7b611e1f3fb5c049ea6e8543db73e0c,2025-03-27T16:45:27.850000

Can't render this file because it is too large.