From ff3feb4e81924497c4416ea86345592115598ba2 Mon Sep 17 00:00:00 2001 From: Christian Flothmann Date: Thu, 18 Apr 2024 10:41:52 +0200 Subject: [PATCH] add CVE-2024-29800 for timber/timber --- timber/timber/CVE-2024-29800.yaml | 14 ++++++++++++++ 1 file changed, 14 insertions(+) create mode 100644 timber/timber/CVE-2024-29800.yaml diff --git a/timber/timber/CVE-2024-29800.yaml b/timber/timber/CVE-2024-29800.yaml new file mode 100644 index 00000000..324cf91c --- /dev/null +++ b/timber/timber/CVE-2024-29800.yaml @@ -0,0 +1,14 @@ +title: Deserialization of Untrusted Data in timber/timber +link: https://github.com/timber/timber/security/advisories/GHSA-6363-v5m4-fvq3 +cve: CVE-2024-29800 +branches: + 1.23.x: + time: 2024-04-10 16:25:00 + versions: ['>=0.16.6', '<1.23.1'] + 1.24.x: + time: 2024-04-10 16:24:00 + versions: ['>=1.24.0', '<1.24.1'] + 2.x: + time: 2024-04-10 16:50:00 + versions: ['>=2.0.0', '<2.1.0'] +reference: composer://timber/timber