Auto-Update: 2024-06-27T08:00:19.659598+00:00

This commit is contained in:
cad-safe-bot 2024-06-27 08:03:12 +00:00
parent d544c52318
commit e061209ee7
8 changed files with 188 additions and 15 deletions

View File

@ -0,0 +1,20 @@
{
"id": "CVE-2024-1330",
"sourceIdentifier": "contact@wpscan.com",
"published": "2024-06-27T06:15:09.800",
"lastModified": "2024-06-27T06:15:09.800",
"vulnStatus": "Received",
"descriptions": [
{
"lang": "en",
"value": "The kadence-blocks-pro WordPress plugin before 2.3.8 does not prevent users with at least the contributor role using some of its shortcode's functionalities to leak arbitrary options from the database."
}
],
"metrics": {},
"references": [
{
"url": "https://wpscan.com/vulnerability/1988815b-7a53-4657-9b1c-1f83c9f9ccfd/",
"source": "contact@wpscan.com"
}
]
}

View File

@ -0,0 +1,43 @@
{
"id": "CVE-2024-22231",
"sourceIdentifier": "security@vmware.com",
"published": "2024-06-27T07:15:52.623",
"lastModified": "2024-06-27T07:15:52.623",
"vulnStatus": "Received",
"descriptions": [
{
"lang": "en",
"value": "Syndic cache directory creation is vulnerable to a directory traversal attack in salt project which can lead\u00a0a malicious attacker to create an arbitrary directory on a Salt master."
}
],
"metrics": {
"cvssMetricV31": [
{
"source": "security@vmware.com",
"type": "Secondary",
"cvssData": {
"version": "3.1",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:L/A:N",
"attackVector": "NETWORK",
"attackComplexity": "LOW",
"privilegesRequired": "LOW",
"userInteraction": "NONE",
"scope": "CHANGED",
"confidentialityImpact": "NONE",
"integrityImpact": "LOW",
"availabilityImpact": "NONE",
"baseScore": 5.0,
"baseSeverity": "MEDIUM"
},
"exploitabilityScore": 3.1,
"impactScore": 1.4
}
]
},
"references": [
{
"url": "https://saltproject.io/security-announcements/2024-01-31-advisory/",
"source": "security@vmware.com"
}
]
}

View File

@ -0,0 +1,43 @@
{
"id": "CVE-2024-22232",
"sourceIdentifier": "security@vmware.com",
"published": "2024-06-27T07:15:54.227",
"lastModified": "2024-06-27T07:15:54.227",
"vulnStatus": "Received",
"descriptions": [
{
"lang": "en",
"value": "A specially crafted url can be created which leads to a directory traversal in the salt file server.\nA malicious user can read an arbitrary file from a Salt master\u2019s filesystem."
}
],
"metrics": {
"cvssMetricV31": [
{
"source": "security@vmware.com",
"type": "Secondary",
"cvssData": {
"version": "3.1",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N",
"attackVector": "NETWORK",
"attackComplexity": "LOW",
"privilegesRequired": "LOW",
"userInteraction": "NONE",
"scope": "CHANGED",
"confidentialityImpact": "HIGH",
"integrityImpact": "NONE",
"availabilityImpact": "NONE",
"baseScore": 7.7,
"baseSeverity": "HIGH"
},
"exploitabilityScore": 3.1,
"impactScore": 4.0
}
]
},
"references": [
{
"url": "https://saltproject.io/security-announcements/2024-01-31-advisory/",
"source": "security@vmware.com"
}
]
}

View File

@ -0,0 +1,20 @@
{
"id": "CVE-2024-3111",
"sourceIdentifier": "contact@wpscan.com",
"published": "2024-06-27T06:15:11.643",
"lastModified": "2024-06-27T06:15:11.643",
"vulnStatus": "Received",
"descriptions": [
{
"lang": "en",
"value": "The Interactive Content WordPress plugin before 1.15.8 does not validate uploads which could allow a Contributors and above to update malicious SVG files, leading to Stored Cross-Site Scripting issues"
}
],
"metrics": {},
"references": [
{
"url": "https://wpscan.com/vulnerability/7c39f3b5-d407-4eb0-aa34-b498fe196c55/",
"source": "contact@wpscan.com"
}
]
}

View File

@ -0,0 +1,20 @@
{
"id": "CVE-2024-4664",
"sourceIdentifier": "contact@wpscan.com",
"published": "2024-06-27T06:15:13.627",
"lastModified": "2024-06-27T06:15:13.627",
"vulnStatus": "Received",
"descriptions": [
{
"lang": "en",
"value": "The WP Chat App WordPress plugin before 3.6.5 does not sanitise and escape some of its settings, which could allow high privilege users such as admins to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed."
}
],
"metrics": {},
"references": [
{
"url": "https://wpscan.com/vulnerability/46ada0b4-f3cd-44fb-a568-3345e639bdb6/",
"source": "contact@wpscan.com"
}
]
}

View File

@ -0,0 +1,20 @@
{
"id": "CVE-2024-4704",
"sourceIdentifier": "contact@wpscan.com",
"published": "2024-06-27T06:15:14.697",
"lastModified": "2024-06-27T06:15:14.697",
"vulnStatus": "Received",
"descriptions": [
{
"lang": "en",
"value": "The Contact Form 7 WordPress plugin before 5.9.5 has an open redirect that allows an attacker to utilize a false URL and redirect to the URL of their choosing."
}
],
"metrics": {},
"references": [
{
"url": "https://wpscan.com/vulnerability/8bdcdb5a-9026-4157-8592-345df8fb1a17/",
"source": "contact@wpscan.com"
}
]
}

View File

@ -13,13 +13,13 @@ Repository synchronizes with the NVD every 2 hours.
### Last Repository Update
```plain
2024-06-27T06:00:18.677764+00:00
2024-06-27T08:00:19.659598+00:00
```
### Most recent CVE Modification Timestamp synchronized with NVD
```plain
2024-06-27T05:15:51.700000+00:00
2024-06-27T07:15:54.227000+00:00
```
### Last Data Feed Release
@ -33,24 +33,25 @@ Download and Changelog: [Click](https://github.com/fkie-cad/nvd-json-data-feeds/
### Total Number of included CVEs
```plain
255294
255300
```
### CVEs added in the last Commit
Recently added CVEs: `3`
Recently added CVEs: `6`
- [CVE-2024-4569](CVE-2024/CVE-2024-45xx/CVE-2024-4569.json) (`2024-06-27T04:15:11.537`)
- [CVE-2024-4570](CVE-2024/CVE-2024-45xx/CVE-2024-4570.json) (`2024-06-27T04:15:12.553`)
- [CVE-2024-6283](CVE-2024/CVE-2024-62xx/CVE-2024-6283.json) (`2024-06-27T05:15:51.700`)
- [CVE-2024-1330](CVE-2024/CVE-2024-13xx/CVE-2024-1330.json) (`2024-06-27T06:15:09.800`)
- [CVE-2024-22231](CVE-2024/CVE-2024-222xx/CVE-2024-22231.json) (`2024-06-27T07:15:52.623`)
- [CVE-2024-22232](CVE-2024/CVE-2024-222xx/CVE-2024-22232.json) (`2024-06-27T07:15:54.227`)
- [CVE-2024-3111](CVE-2024/CVE-2024-31xx/CVE-2024-3111.json) (`2024-06-27T06:15:11.643`)
- [CVE-2024-4664](CVE-2024/CVE-2024-46xx/CVE-2024-4664.json) (`2024-06-27T06:15:13.627`)
- [CVE-2024-4704](CVE-2024/CVE-2024-47xx/CVE-2024-4704.json) (`2024-06-27T06:15:14.697`)
### CVEs modified in the last Commit
Recently modified CVEs: `2`
Recently modified CVEs: `0`
- [CVE-2024-1394](CVE-2024/CVE-2024-13xx/CVE-2024-1394.json) (`2024-06-27T05:15:50.317`)
- [CVE-2024-5154](CVE-2024/CVE-2024-51xx/CVE-2024-5154.json) (`2024-06-27T05:15:51.567`)
## Download and Usage

View File

@ -241737,6 +241737,7 @@ CVE-2024-1326,0,0,f742b2e1b0f964f5a5861c38f5d4ab056095ec8f5957f404653a524040bbf1
CVE-2024-1327,0,0,1b6e3f0296467e9f6b424925712e479dea0088dc2698e1adadd7f96bd6f1e88d,2024-04-03T12:38:04.840000
CVE-2024-1328,0,0,1e360ec5f794b47c3c1949d058d4dcab1ca058a0302ffe54a63801cf38181f90,2024-03-12T12:40:13.500000
CVE-2024-1329,0,0,c251ab89131ed5db620ce7b9371daf5508a26377e3f0f0d0996003e3074e8cd1,2024-02-15T18:27:28.837000
CVE-2024-1330,1,1,a740093dca39e13810ec35c068f9ffe0efbcf6132f835d103eff2dd191f136ab,2024-06-27T06:15:09.800000
CVE-2024-1331,0,0,1deb1e21efa47891bffcfc0f7c5a5a4e56a2cce5d50551f8ec8837f30ffffb10,2024-03-18T19:40:00.173000
CVE-2024-1332,0,0,ce91a247ee20b5086ffc922000a1236f0f0a17c39483df8ffb3ea515e6b84e26,2024-05-24T13:03:05.093000
CVE-2024-1333,0,0,258128469d54cc44538629ab13a661542f0353cc3076e7f49f79a63a3b1847c4,2024-03-18T19:40:00.173000
@ -241798,7 +241799,7 @@ CVE-2024-1390,0,0,71eb0c49e1915160a890c9df4d2040fa529dd6e699ca4bdcf3f6829a9c0e60
CVE-2024-1391,0,0,95159e2513e9127a66f6050cbc2679326245e87281e8aee9653919649cc97f74,2024-03-13T18:15:58.530000
CVE-2024-1392,0,0,0948736f211221c32ddb432668205bccae67223b950d877ef11c76bff68a1c8f,2024-03-13T18:15:58.530000
CVE-2024-1393,0,0,d7662d0cf4655f5dc37cac1727274e85c0d695350e85be99fa06d400366cbddc,2024-03-13T18:15:58.530000
CVE-2024-1394,0,1,165f33562f18e63e8a619116a51b597c395907033340f10ab7f53d479f543479,2024-06-27T05:15:50.317000
CVE-2024-1394,0,0,165f33562f18e63e8a619116a51b597c395907033340f10ab7f53d479f543479,2024-06-27T05:15:50.317000
CVE-2024-1395,0,0,bc906c24f3b97a1f76fb28d9eb27a1438a7ca78483d0c0a7452e9b7efa2da958,2024-05-03T14:17:53.690000
CVE-2024-1396,0,0,c2c7f8124754e0c20b02f3a3637cca1d95a3c2b253208efd7a2814f2d0550bd5,2024-05-02T18:00:37.360000
CVE-2024-1397,0,0,e6d8c9c2beca75d3fdc5f918cb423cf21913a9c807f46126d5b49c29c7bd60f0,2024-03-13T12:33:51.697000
@ -243688,6 +243689,8 @@ CVE-2024-22228,0,0,78d2b6e91237b41440665215c9b4e77ccc8811641b8c3516a01f9391d6778
CVE-2024-22229,0,0,942079f7535239209609b5cbc34a85ff0a40c69533135771fdb6410ce1778e0c,2024-01-30T23:01:36.513000
CVE-2024-2223,0,0,1b410a9ed5d5a5d32a9a4408c4dbc25d2dfc4cd58665c0d802a4cb2c5e3cd9dc,2024-04-10T13:24:22.187000
CVE-2024-22230,0,0,1dba8e437bacd8d1f2a5a22c03d0799f6c41b12fb7346ebf5256856880ee3b1a,2024-02-15T06:25:53.660000
CVE-2024-22231,1,1,6298a3ca64f578a8f1720ebd2ab9b15c71121a26361fca74842f3ff377e614ad,2024-06-27T07:15:52.623000
CVE-2024-22232,1,1,bca65f55698eb2209bcae54188205b4e34fadb7a2ddf6dee37dc10cd8196a28a,2024-06-27T07:15:54.227000
CVE-2024-22233,0,0,bff21a41ba975275ac98e274ec31aa2a57df5ec476a78347e5182122669daf71,2024-06-14T13:15:50.443000
CVE-2024-22234,0,0,ed66ea75d4f91bd4cf760a873ffa711eec74e184d0ed1b507bd27dedbdd28669,2024-03-15T11:15:08.857000
CVE-2024-22235,0,0,94dcf649455ce66e40f15519944aa08c6281ad01f157b931cb45eb28dc8bde92,2024-02-22T19:07:37.840000
@ -249498,6 +249501,7 @@ CVE-2024-31106,0,0,7cb1f35daa18e527942f97955d4cdc7012d7a5e8bc61668cb848c91352d21
CVE-2024-31107,0,0,b69b8308dca1c03345bc5c4ddd842b58a0a34c0913dd806068e33a5a7ea13d89,2024-04-01T01:12:59.077000
CVE-2024-31108,0,0,e198cb5e9a429619e29a035a74c1776abb842099061e8ee67790619ad5916e5b,2024-04-01T01:12:59.077000
CVE-2024-31109,0,0,3766de0285c03422fb77f1fd2a4106a3e09e42f3bd086e20e704d883507e7c67,2024-04-02T20:31:58.463000
CVE-2024-3111,1,1,b8f1e3d57f83d08308894e03473c9e4b4f6ccc5a78fb1c4d7a4b443b63eeb58c,2024-06-27T06:15:11.643000
CVE-2024-31110,0,0,cc696090cfd929541a1ca3b42d624a66dc89644b2049217890247603bee15f04,2024-04-01T01:12:59.077000
CVE-2024-31111,0,0,20d45ac72a8dd6f4bc57646746c10654f3c9393a1d038c4ffdb0368f82ed7ab9,2024-06-25T18:50:42.040000
CVE-2024-31112,0,0,4c0b6d124815c5fbc71413fa9db9ceb5adb5efe4d3f57754f8397ffa9f3c1ac9,2024-04-01T01:12:59.077000
@ -254220,8 +254224,8 @@ CVE-2024-4565,0,0,67d994d050778f99ebea00dffeedd75aa1729789c9eb9581753d556845ec5e
CVE-2024-4566,0,0,5bf64390fca62ba0e88600d1f0954e23dea48d7610695fd2ef891697361d3217,2024-05-21T12:37:59.687000
CVE-2024-4567,0,0,bff521ec958712c348010a89da0e0aec519b6a717613a798e9a8fee426de5e74,2024-05-14T16:11:39.510000
CVE-2024-4568,0,0,79c6e65478e2e86d702896e792fead76bbebdb118f8c0f66e6390a241a22321a,2024-05-07T13:39:32.710000
CVE-2024-4569,1,1,4d374bf4aa0a998cd8805faa062f30a5a01f5894ac3a808b5fdab21e616d67d4,2024-06-27T04:15:11.537000
CVE-2024-4570,1,1,53d92a300b6097fbe44eced6ba98930a3d6ad73ffe866e69ac621c24e3b085fc,2024-06-27T04:15:12.553000
CVE-2024-4569,0,0,4d374bf4aa0a998cd8805faa062f30a5a01f5894ac3a808b5fdab21e616d67d4,2024-06-27T04:15:11.537000
CVE-2024-4570,0,0,53d92a300b6097fbe44eced6ba98930a3d6ad73ffe866e69ac621c24e3b085fc,2024-06-27T04:15:12.553000
CVE-2024-4571,0,0,b379f15291a8a65b330c223bc6a31fd0a21b183a906c0a4077ca3cf5d38b8ad0,2024-05-14T15:44:05.750000
CVE-2024-4572,0,0,f5ca5c1acec751c453949e3111f6be45773ff402d3c1d2b8e88127a059aa7b1b,2024-05-14T15:44:06.153000
CVE-2024-4574,0,0,313ec0d117ac92e67c29da349740abe9395db1d3208f8156cb88d417271721b1,2024-05-14T16:11:39.510000
@ -254297,6 +254301,7 @@ CVE-2024-4656,0,0,23093c7ec18a8f42da4c8fc1c86b9aa6984d979cf63954576e1d3325484051
CVE-2024-4661,0,0,e86145aa3dfc1a1e846a3970af65d72463f2a51aba17ea6b9d5a34de37b2fc53,2024-06-10T02:52:08.267000
CVE-2024-4662,0,0,271820e0248036cdcfeea2da470b958f93caba3600263b2df375c674d931507f,2024-05-24T01:15:30.977000
CVE-2024-4663,0,0,ac32c04a2cae0071224eeefc80f9a000b8618e2f1af1abc8eb33d3a9321c7d70,2024-06-20T12:44:01.637000
CVE-2024-4664,1,1,38cf0eebbebc442a207c38063fc526843b13e1f6da677c69de1b54e3af17491d,2024-06-27T06:15:13.627000
CVE-2024-4666,0,0,dde8d66c76bdf850b898b9f95df0d92f0ac3da730c1f32826d61843a6ef06bf5,2024-05-15T16:40:19.330000
CVE-2024-4668,0,0,3c2f34d91ee8c9aacf0f125fe94ffbbe9a611b8f1a54ab65e0473cea71baad6f,2024-05-30T13:15:41.297000
CVE-2024-4669,0,0,cb3ea770e599714f2de5e50bc4195c130850e813b58882b88bfe234ded1dcd7f,2024-06-13T18:36:09.013000
@ -254329,6 +254334,7 @@ CVE-2024-4700,0,0,fd7d4a078191a1c31b5f2cfdfc5bd65709b727d250ddf2b831fd6aa84ec620
CVE-2024-4701,0,0,31c0f40927cc6a1a9aece611ec4491a5435df4e5c3a9daffc9dfb7710658ca96,2024-05-14T16:11:39.510000
CVE-2024-4702,0,0,391d02c5718dd442c026ca8f3973c4fe10894f8eeb54175158dc44cd7ef50d4a,2024-05-15T16:40:19.330000
CVE-2024-4703,0,0,2d052263ca03efcceae6f1a9b5190b0e61a795b9eb986321f967eeb0b20da62b,2024-06-11T18:06:31.967000
CVE-2024-4704,1,1,b35b347197593851ca07d1980ca3cbaa70b0cdac8bccfe11a0cb661c9fdff9b8,2024-06-27T06:15:14.697000
CVE-2024-4705,0,0,b45f335ad46575e30510e82573f02b490faa16d9b6ee89b66a9844ff390b53aa,2024-06-06T14:17:35.017000
CVE-2024-4706,0,0,a959e13293b1a5966007eb60c79cb973f34e4d1d8bd1c12986cac54d81ac9a3d,2024-05-24T01:15:30.977000
CVE-2024-4707,0,0,d6a01a1a459dfd9ab21945d56af40919cce44b311e282118c993194b130db955,2024-06-06T14:17:35.017000
@ -254678,7 +254684,7 @@ CVE-2024-5149,0,0,e167f321a43176bbe51b79fcd0ea912cf6c260f7c91862b43f4c0c9d62cbbb
CVE-2024-5150,0,0,b6666c6d6ac9830dd3015f5fc02fd79f0a3b63d41ee2e14f8cd76da933186cb1,2024-05-29T13:02:09.280000
CVE-2024-5152,0,0,897a950e1a56cf66b3762a0b7d02348f108b131c1556072d1a2c46cab20012e4,2024-06-06T14:17:35.017000
CVE-2024-5153,0,0,828bf0d922f71aaeb9a620d2a28fca02e54e4a39590cf3792a194a4a5970d881,2024-06-06T14:17:35.017000
CVE-2024-5154,0,1,0900f3ffde48a737774e31da15c4bd85a62398198c843c819abf1f8f6c6973c9,2024-06-27T05:15:51.567000
CVE-2024-5154,0,0,0900f3ffde48a737774e31da15c4bd85a62398198c843c819abf1f8f6c6973c9,2024-06-27T05:15:51.567000
CVE-2024-5155,0,0,2a20a869c58a8b80fd2bd862f76df12b43c40fbeec518ecb9ca464561a78cd98,2024-06-17T12:42:04.623000
CVE-2024-5156,0,0,04d3b26745087cecbd2208e3ae2166c72777f223725a2a397110c6609350eb95,2024-06-20T16:07:50.417000
CVE-2024-5157,0,0,968c06835e3febdba747d4dd49e60507daf1a01e5377b117ee6e566931506abf,2024-06-10T18:15:37.893000
@ -255269,7 +255275,7 @@ CVE-2024-6277,0,0,82a7caef84f140d39367b293ce24c3b1ac7d5afca66e1b97bc6dda0940bca5
CVE-2024-6278,0,0,b7497a594f7128876befcfd03ef67851e16926a50d842e021e87a9cd67006c16,2024-06-24T14:15:13.293000
CVE-2024-6279,0,0,aff2444fd4ca8a3e713d1d2803a8314b319d4a725e3aef2a87ea3d2f62dd68bf,2024-06-26T20:15:17.003000
CVE-2024-6280,0,0,4e5bdd720fdc6d68a51312dcfd366ac88ed5daebd5ed348aefe6d5aa74c57712,2024-06-24T12:57:36.513000
CVE-2024-6283,1,1,e5b8d9dcf06a6207ab42c26b08314df7b71607719a3c7d1c545ae2b0026a6c6b,2024-06-27T05:15:51.700000
CVE-2024-6283,0,0,e5b8d9dcf06a6207ab42c26b08314df7b71607719a3c7d1c545ae2b0026a6c6b,2024-06-27T05:15:51.700000
CVE-2024-6285,0,0,e2996efda4e983a3551e96b4c79fe85947d0c5facb8b6e94cf5ae2183076f6f4,2024-06-26T14:24:38.113000
CVE-2024-6287,0,0,91ea920d50ec75aef59aca2b29908a9542c1a59d5111a1068e10d538d24873e6,2024-06-26T14:36:08.507000
CVE-2024-6290,0,0,67d71c6eecc55d47dcb9d49fef6cb3eb904eb85c23231aa8b50f7ec84f4eca31,2024-06-27T03:15:51.093000

Can't render this file because it is too large.