From 555b05b776af5c92de69d4b048401c12e180c478 Mon Sep 17 00:00:00 2001 From: Salvatore Bonaccorso Date: Mon, 14 Feb 2022 20:09:50 +0100 Subject: Update upstream information on CVE-2022-23630 --- data/CVE/list | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) (limited to 'data') diff --git a/data/CVE/list b/data/CVE/list index 92e3597495..bf00a2006d 100644 --- a/data/CVE/list +++ b/data/CVE/list @@ -4667,9 +4667,9 @@ CVE-2022-23632 CVE-2022-23631 (superjson is a program to allow JavaScript expressions to be serialize ...) TODO: check CVE-2022-23630 (Gradle is a build tool with a focus on build automation and support fo ...) - - gradle (Vulnerable node not yet uploaded) - NOTE: https://docs.gradle.org/7.4/release-notes.html - NOTE: https://github.com/gradle/gradle/commit/88ab9b652933bc3b2e3161b31ad8b8f4f0516351 (7.4.0) + - gradle (Vulnerable node not yet uploaded; introduced in 6.2) + NOTE: https://github.com/gradle/gradle/security/advisories/GHSA-9pf5-88jw-3qgr + NOTE: https://github.com/gradle/gradle/commit/88ab9b652933bc3b2e3161b31ad8b8f4f0516351 (v7.4.0-RC2) CVE-2022-23629 RESERVED CVE-2022-23628 (OPA is an open source, general-purpose policy engine. Under certain co ...) -- cgit v1.2.3