summaryrefslogtreecommitdiffstats
path: root/data
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2023-08-11 11:36:04 +0200
committerSalvatore Bonaccorso <carnil@debian.org>2023-08-11 11:36:04 +0200
commit09cbdc3e6518b3f10898a22b8633ed3eece5fe7f (patch)
treefde54d11af858cf7822d123fc939ca1e54aeddb2 /data
parent1a61d88652e5819d90243d069e33be8a541e303f (diff)
Add two new PHP CVEs
Diffstat (limited to 'data')
-rw-r--r--data/CVE/list12
1 files changed, 10 insertions, 2 deletions
diff --git a/data/CVE/list b/data/CVE/list
index c0772fb041..3266c47492 100644
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -25,9 +25,17 @@ CVE-2023-40224 (MISP 2.4174 allows XSS in app/View/Events/index.ctp.)
CVE-2023-40014 (OpenZeppelin Contracts is a library for secure smart contract developm ...)
TODO: check
CVE-2023-3824 (In PHP version 8.0.* before 8.0.30, 8.1.* before 8.1.22, and 8.2.* bef ...)
- TODO: check
+ - php8.2 <unfixed>
+ - php7.4 <removed>
+ - php7.3 <removed>
+ NOTE: https://github.com/php/php-src/security/advisories/GHSA-jqcx-ccgc-xwhv
+ NOTE: Fixed in: 8.0.30, 8.1.22, 8.2.8
CVE-2023-3823 (In PHP versions 8.0.* before 8.0.30, 8.1.* before 8.1.22, and 8.2.* be ...)
- TODO: check
+ - php8.2 <unfixed>
+ - php7.4 <removed>
+ - php7.3 <removed>
+ NOTE: https://github.com/php/php-src/security/advisories/GHSA-3qrf-m4j2-pcrr
+ NOTE: Fixed in: 8.0.30, 8.1.22, 8.2.8
CVE-2023-39553 (Improper Input Validation vulnerability in Apache Software Foundation ...)
TODO: check
CVE-2023-38333 (Zoho ManageEngine Applications Manager through 16530 allows reflected ...)

© 2014-2024 Faster IT GmbH | imprint | privacy policy