From 2f8823b5f43e99cfa792d7a18daa091bfbe481cd Mon Sep 17 00:00:00 2001 From: Chris Earle Date: Mon, 16 Dec 2024 15:42:58 -0700 Subject: [PATCH] Improve GHSA-mfj5-cf8g-g2fv --- .../GHSA-mfj5-cf8g-g2fv.json | 25 ++++++++++++++++--- 1 file changed, 22 insertions(+), 3 deletions(-) diff --git a/advisories/github-reviewed/2024/12/GHSA-mfj5-cf8g-g2fv/GHSA-mfj5-cf8g-g2fv.json b/advisories/github-reviewed/2024/12/GHSA-mfj5-cf8g-g2fv/GHSA-mfj5-cf8g-g2fv.json index 99400a23d3df9..7067835fbf6d6 100644 --- a/advisories/github-reviewed/2024/12/GHSA-mfj5-cf8g-g2fv/GHSA-mfj5-cf8g-g2fv.json +++ b/advisories/github-reviewed/2024/12/GHSA-mfj5-cf8g-g2fv/GHSA-mfj5-cf8g-g2fv.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-mfj5-cf8g-g2fv", - "modified": "2024-12-12T22:21:55Z", + "modified": "2024-12-12T22:21:56Z", "published": "2024-12-02T20:04:43Z", "aliases": [ "CVE-2024-53990" @@ -11,7 +11,7 @@ "severity": [ { "type": "CVSS_V4", - "score": "CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + "score": "CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N" } ], "affected": [ @@ -25,7 +25,7 @@ "type": "ECOSYSTEM", "events": [ { - "introduced": "2.1.0" + "introduced": "3.0.0" }, { "fixed": "3.0.1" @@ -33,6 +33,25 @@ ] } ] + }, + { + "package": { + "ecosystem": "Maven", + "name": "org.asynchttpclient:async-http-client" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "2.1.0" + }, + { + "fixed": "2.12.4" + } + ] + } + ] } ], "references": [