Skip to content

Commit 2d2858f

Browse files
Merge pull request #7127 from github/westonsteimel-GHSA-wr62-c79q-cv37
2 parents 2672e7c + 5de368c commit 2d2858f

File tree

1 file changed

+77
-5
lines changed

1 file changed

+77
-5
lines changed

advisories/github-reviewed/2025/07/GHSA-wr62-c79q-cv37/GHSA-wr62-c79q-cv37.json

Lines changed: 77 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -12,10 +12,6 @@
1212
{
1313
"type": "CVSS_V3",
1414
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"
15-
},
16-
{
17-
"type": "CVSS_V4",
18-
"score": "CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:H/E:U"
1915
}
2016
],
2117
"affected": [
@@ -94,6 +90,82 @@
9490
]
9591
}
9692
]
93+
},
94+
{
95+
"package": {
96+
"ecosystem": "Maven",
97+
"name": "org.apache.tomcat.embed:tomcat-embed-core"
98+
},
99+
"ranges": [
100+
{
101+
"type": "ECOSYSTEM",
102+
"events": [
103+
{
104+
"introduced": "11.0.0-M1"
105+
},
106+
{
107+
"fixed": "11.0.9"
108+
}
109+
]
110+
}
111+
]
112+
},
113+
{
114+
"package": {
115+
"ecosystem": "Maven",
116+
"name": "org.apache.tomcat.embed:tomcat-embed-core"
117+
},
118+
"ranges": [
119+
{
120+
"type": "ECOSYSTEM",
121+
"events": [
122+
{
123+
"introduced": "10.1.0-M1"
124+
},
125+
{
126+
"fixed": "10.1.43"
127+
}
128+
]
129+
}
130+
]
131+
},
132+
{
133+
"package": {
134+
"ecosystem": "Maven",
135+
"name": "org.apache.tomcat.embed:tomcat-embed-core"
136+
},
137+
"ranges": [
138+
{
139+
"type": "ECOSYSTEM",
140+
"events": [
141+
{
142+
"introduced": "9.0.0.M1"
143+
},
144+
{
145+
"fixed": "9.0.107"
146+
}
147+
]
148+
}
149+
]
150+
},
151+
{
152+
"package": {
153+
"ecosystem": "Maven",
154+
"name": "org.apache.tomcat.embed:tomcat-embed-core"
155+
},
156+
"ranges": [
157+
{
158+
"type": "ECOSYSTEM",
159+
"events": [
160+
{
161+
"introduced": "8.5.0"
162+
},
163+
{
164+
"last_affected": "8.5.100"
165+
}
166+
]
167+
}
168+
]
97169
}
98170
],
99171
"references": [
@@ -134,7 +206,7 @@
134206
"cwe_ids": [
135207
"CWE-190"
136208
],
137-
"severity": "MODERATE",
209+
"severity": "HIGH",
138210
"github_reviewed": true,
139211
"github_reviewed_at": "2025-07-11T13:47:50Z",
140212
"nvd_published_at": "2025-07-10T19:15:25Z"

0 commit comments

Comments
 (0)