Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[GHSA-2v42-xp3j-47m4] Xuxueli xxl-job template injection vulnerability #4269

Open
wants to merge 2 commits into
base: unam4/advisory-improvement-4269
Choose a base branch
from

Conversation

unam4
Copy link

@unam4 unam4 commented Apr 15, 2024

Updates

  • Affected products
  • Description

Comments
Cve vulnerability description error

@github-actions github-actions bot changed the base branch from main to unam4/advisory-improvement-4269 April 15, 2024 06:55
@shelbyc
Copy link

shelbyc commented Apr 15, 2024

👋 Hi @unam4, Do you have a reference link to support the changes to the description and the CVSS?

@unam4
Copy link
Author

unam4 commented Apr 16, 2024

👋嗨@unam4,您是否有参考链接来支持对描述和 CVSS 的更改?
Yes, I found this loophole and submitted it.

@taladrane
Copy link
Collaborator

👋 This pull request has been marked as stale because it has been open with no activity. You can: comment on the issue or remove the stale label to hold stale off for a while, add the Keep label to hold stale off permanently, or do nothing. If you do nothing this pull request will be closed eventually by the stale bot. Please see CONTRIBUTING.md for more policy details.

@taladrane taladrane added the Stale label May 2, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

3 participants