File tree Expand file tree Collapse file tree 16 files changed +118
-30
lines changed
advisories/github-reviewed
2025/12/GHSA-hm5p-x4rq-38w4 Expand file tree Collapse file tree 16 files changed +118
-30
lines changed Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-hm5p-x4rq-38w4" ,
4- "modified" : " 2026-01-07T21:33:21Z " ,
4+ "modified" : " 2026-01-11T14:56:54Z " ,
55 "published" : " 2025-12-23T19:31:10Z" ,
66 "aliases" : [
77 " CVE-2025-68696"
5858 {
5959 "type" : " PACKAGE" ,
6060 "url" : " https://github.com/jnunemaker/httparty"
61+ },
62+ {
63+ "type" : " WEB" ,
64+ "url" : " https://github.com/rubysec/ruby-advisory-db/blob/master/gems/httparty/CVE-2025-68696.yml"
6165 }
6266 ],
6367 "database_specific" : {
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-2g22-wg49-fgv5" ,
4- "modified" : " 2026-01-09T18:41:47Z " ,
4+ "modified" : " 2026-01-11T14:55:48Z " ,
55 "published" : " 2026-01-09T18:41:47Z" ,
66 "aliases" : [
77 " CVE-2025-65091"
4343 "type" : " WEB" ,
4444 "url" : " https://github.com/xwiki-contrib/macro-fullcalendar/security/advisories/GHSA-2g22-wg49-fgv5"
4545 },
46+ {
47+ "type" : " ADVISORY" ,
48+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2025-65091"
49+ },
4650 {
4751 "type" : " WEB" ,
4852 "url" : " https://github.com/xwiki-contrib/macro-fullcalendar/commit/5fdcf06a05015786492fda69b4d9dea5460cc994"
5963 "severity" : " CRITICAL" ,
6064 "github_reviewed" : true ,
6165 "github_reviewed_at" : " 2026-01-09T18:41:47Z" ,
62- "nvd_published_at" : null
66+ "nvd_published_at" : " 2026-01-10T04:16:01Z "
6367 }
6468}
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-3ghg-3787-w2xr" ,
4- "modified" : " 2026-01-08T21:28:04Z " ,
4+ "modified" : " 2026-01-11T14:56:25Z " ,
55 "published" : " 2026-01-08T21:28:04Z" ,
66 "aliases" : [
77 " CVE-2026-22589"
9797 "type" : " WEB" ,
9898 "url" : " https://github.com/spree/spree/security/advisories/GHSA-3ghg-3787-w2xr"
9999 },
100+ {
101+ "type" : " ADVISORY" ,
102+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-22589"
103+ },
100104 {
101105 "type" : " WEB" ,
102106 "url" : " https://github.com/spree/spree/commit/16067def6de8e0742d55313e83b0fbab6d2fd795"
113117 "type" : " WEB" ,
114118 "url" : " https://github.com/spree/spree/commit/e1cff4605eb15472904602aebaf8f2d04852d6ad"
115119 },
120+ {
121+ "type" : " WEB" ,
122+ "url" : " https://github.com/rubysec/ruby-advisory-db/blob/master/gems/spree_core/CVE-2026-22589.yml"
123+ },
116124 {
117125 "type" : " PACKAGE" ,
118126 "url" : " https://github.com/spree/spree"
125133 "severity" : " HIGH" ,
126134 "github_reviewed" : true ,
127135 "github_reviewed_at" : " 2026-01-08T21:28:04Z" ,
128- "nvd_published_at" : null
136+ "nvd_published_at" : " 2026-01-10T04:16:01Z "
129137 }
130138}
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-5hvc-6wx8-mvv4" ,
4- "modified" : " 2026-01-09T21:05:13Z " ,
4+ "modified" : " 2026-01-11T14:55:08Z " ,
55 "published" : " 2026-01-09T21:05:13Z" ,
66 "aliases" : [
77 " CVE-2026-22608"
4343 "type" : " WEB" ,
4444 "url" : " https://github.com/trailofbits/fickling/security/advisories/GHSA-5hvc-6wx8-mvv4"
4545 },
46+ {
47+ "type" : " ADVISORY" ,
48+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-22608"
49+ },
4650 {
4751 "type" : " WEB" ,
4852 "url" : " https://github.com/trailofbits/fickling/pull/195"
6266 {
6367 "type" : " WEB" ,
6468 "url" : " https://github.com/trailofbits/fickling/blob/977b0769c13537cd96549c12bb537f05464cf09c/test/test_bypasses.py#L145"
69+ },
70+ {
71+ "type" : " WEB" ,
72+ "url" : " https://github.com/trailofbits/fickling/releases/tag/v0.1.7"
6573 }
6674 ],
6775 "database_specific" : {
7280 "severity" : " HIGH" ,
7381 "github_reviewed" : true ,
7482 "github_reviewed_at" : " 2026-01-09T21:05:13Z" ,
75- "nvd_published_at" : null
83+ "nvd_published_at" : " 2026-01-10T02:15:49Z "
7684 }
7785}
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-637h-ch24-xp9m" ,
4- "modified" : " 2026-01-09T18:35:57Z " ,
4+ "modified" : " 2026-01-11T14:55:42Z " ,
55 "published" : " 2026-01-09T18:35:57Z" ,
66 "aliases" : [
77 " CVE-2025-65090"
4343 "type" : " WEB" ,
4444 "url" : " https://github.com/xwiki-contrib/macro-fullcalendar/security/advisories/GHSA-637h-ch24-xp9m"
4545 },
46+ {
47+ "type" : " ADVISORY" ,
48+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2025-65090"
49+ },
4650 {
4751 "type" : " WEB" ,
4852 "url" : " https://github.com/xwiki-contrib/macro-fullcalendar/commit/25bc14c181c9a92f493b20ac264388c7ba171884"
6367 "severity" : " MODERATE" ,
6468 "github_reviewed" : true ,
6569 "github_reviewed_at" : " 2026-01-09T18:35:57Z" ,
66- "nvd_published_at" : null
70+ "nvd_published_at" : " 2026-01-10T04:16:01Z "
6771 }
6872}
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-78p6-6878-8mj6" ,
4- "modified" : " 2026-01-09T22:35:35Z " ,
4+ "modified" : " 2026-01-11T14:56:39Z " ,
55 "published" : " 2026-01-09T22:35:35Z" ,
66 "aliases" : [
77 " CVE-2026-22699"
4040 "type" : " WEB" ,
4141 "url" : " https://github.com/RustCrypto/elliptic-curves/security/advisories/GHSA-78p6-6878-8mj6"
4242 },
43+ {
44+ "type" : " ADVISORY" ,
45+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-22699"
46+ },
4347 {
4448 "type" : " WEB" ,
4549 "url" : " https://github.com/RustCrypto/elliptic-curves/pull/1602"
6064 "severity" : " HIGH" ,
6165 "github_reviewed" : true ,
6266 "github_reviewed_at" : " 2026-01-09T22:35:35Z" ,
63- "nvd_published_at" : null
67+ "nvd_published_at" : " 2026-01-10T06:15:52Z "
6468 }
6569}
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-9cvc-h2w8-phrp" ,
4- "modified" : " 2026-01-09T18 :56:21Z " ,
4+ "modified" : " 2026-01-11T14 :56:00Z " ,
55 "published" : " 2026-01-09T18:56:21Z" ,
66 "aliases" : [
77 " CVE-2026-22611"
4040 "type" : " WEB" ,
4141 "url" : " https://github.com/aws/aws-sdk-net/security/advisories/GHSA-9cvc-h2w8-phrp"
4242 },
43+ {
44+ "type" : " ADVISORY" ,
45+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-22611"
46+ },
4347 {
4448 "type" : " PACKAGE" ,
4549 "url" : " https://github.com/aws/aws-sdk-net"
5256 "severity" : " LOW" ,
5357 "github_reviewed" : true ,
5458 "github_reviewed_at" : " 2026-01-09T18:56:21Z" ,
55- "nvd_published_at" : null
59+ "nvd_published_at" : " 2026-01-10T06:15:51Z "
5660 }
5761}
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-g268-72p7-9j6j" ,
4- "modified" : " 2026-01-08T21:37:21Z " ,
4+ "modified" : " 2026-01-11T14:57:07Z " ,
55 "published" : " 2026-01-08T21:27:03Z" ,
66 "aliases" : [
77 " CVE-2026-22588"
117117 "type" : " WEB" ,
118118 "url" : " https://github.com/spree/spree/commit/d3f961c442e0015661535cbd6eb22475f76d2dc7"
119119 },
120+ {
121+ "type" : " WEB" ,
122+ "url" : " https://github.com/rubysec/ruby-advisory-db/blob/master/gems/spree_api/CVE-2026-22588.yml"
123+ },
120124 {
121125 "type" : " PACKAGE" ,
122126 "url" : " https://github.com/spree/spree"
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-gxxc-m74c-f48x" ,
4- "modified" : " 2026-01-09T18:12:58Z " ,
4+ "modified" : " 2026-01-11T14:55:29Z " ,
55 "published" : " 2026-01-09T18:12:58Z" ,
66 "aliases" : [
77 " CVE-2025-61674"
6565 "type" : " WEB" ,
6666 "url" : " https://github.com/octobercms/october/security/advisories/GHSA-gxxc-m74c-f48x"
6767 },
68+ {
69+ "type" : " ADVISORY" ,
70+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2025-61674"
71+ },
6872 {
6973 "type" : " PACKAGE" ,
7074 "url" : " https://github.com/octobercms/october"
7781 "severity" : " MODERATE" ,
7882 "github_reviewed" : true ,
7983 "github_reviewed_at" : " 2026-01-09T18:12:58Z" ,
80- "nvd_published_at" : null
84+ "nvd_published_at" : " 2026-01-10T04:16:00Z "
8185 }
8286}
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-h4rm-mm56-xf63" ,
4- "modified" : " 2026-01-09T22:29:02Z " ,
4+ "modified" : " 2026-01-11T14:55:18Z " ,
55 "published" : " 2026-01-09T22:29:02Z" ,
66 "aliases" : [
77 " CVE-2026-22612"
4343 "type" : " WEB" ,
4444 "url" : " https://github.com/trailofbits/fickling/security/advisories/GHSA-h4rm-mm56-xf63"
4545 },
46+ {
47+ "type" : " ADVISORY" ,
48+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-22612"
49+ },
4650 {
4751 "type" : " WEB" ,
4852 "url" : " https://github.com/trailofbits/fickling/pull/195"
5862 {
5963 "type" : " WEB" ,
6064 "url" : " https://github.com/trailofbits/fickling/blob/977b0769c13537cd96549c12bb537f05464cf09c/test/test_bypasses.py#L349"
65+ },
66+ {
67+ "type" : " WEB" ,
68+ "url" : " https://github.com/trailofbits/fickling/releases/tag/v0.1.7"
6169 }
6270 ],
6371 "database_specific" : {
6775 "severity" : " HIGH" ,
6876 "github_reviewed" : true ,
6977 "github_reviewed_at" : " 2026-01-09T22:29:02Z" ,
70- "nvd_published_at" : null
78+ "nvd_published_at" : " 2026-01-10T02:15:50Z "
7179 }
7280}
You can’t perform that action at this time.
0 commit comments