summaryrefslogtreecommitdiffstats
path: root/data
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2023-10-28 09:59:17 +0200
committerSalvatore Bonaccorso <carnil@debian.org>2023-10-28 09:59:17 +0200
commit97de0da9981aa7f8f9f9f99a224a1eb4ef6ae474 (patch)
tree29dfb41da06f9fb12f6d4c597f78ec4695dec4b9 /data
parent64b780a63ea6933076b95cfe2065e74809e45eee (diff)
Add CVE-2023-45960/dom4j
Diffstat (limited to 'data')
-rw-r--r--data/CVE/list5
1 files changed, 4 insertions, 1 deletions
diff --git a/data/CVE/list b/data/CVE/list
index 525abd6f47..5bd30bb754 100644
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -796,7 +796,10 @@ CVE-2023-46068 (Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability i
CVE-2023-46010 (An issue in SeaCMS v.12.9 allows an attacker to execute arbitrary comm ...)
NOT-FOR-US: SeaCMS
CVE-2023-45960 (An issue in dom4.j org.dom4.io.SAXReader v.2.1.4 and before allows a r ...)
- TODO: check
+ - dom4j <unfixed> (unimportant)
+ NOTE: https://github.com/dom4j/dom4j/issues/171
+ NOTE: Not considered as a vulnerability by upstream:
+ NOTE: https://github.com/dom4j/dom4j/issues/171#issuecomment-1781547256
CVE-2023-45837 (Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in XYDAC Ul ...)
NOT-FOR-US: WordPress plugin
CVE-2023-45835 (Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Libsyn L ...)

© 2014-2024 Faster IT GmbH | imprint | privacy policy