Skip to content

Every change, newest first

What a record said when it was published, what it says now, and the commit that changed it.

11,999 record changes · 5,026 advisory changes · newest first · grouped by dayCSVJSONRSS

Since
Counted changes, newest first, one line per change to a CVE record or a GHSA advisory, or per run of identical changes collapsed into one line.
Changed on, The day the change first became visible in the catalog's public history. Not the day the record was amended, which is earlier by an unknown margin.KindRecord or advisory, Which record was edited: a CVE id where the change was to the CVE catalog or the CISA KEV list, a GHSA id where it was to a GitHub advisory. The two are different units and are never counted together.Vendor or package, The vendor and product a CVE record names, with the organisation that publishes the record under them; or the package an advisory names and its registry.What changedDays to revision, The earlier stated value's interval. For a version boundary, it ends at the first replacement of that value; the reported current value may appear later. Starting points differ by kind: record publication, advisory publication, or the observed introduction of a KEV field value. Intervals are not directly comparable across kinds. Missing dates mean unknown, never zero. This does not date when a value became wrong.
Mon 11 Sep 2023· 10 advisory changes
2023-09-11published 2019-02-07Advisory severity changedGHSA-649c-x44h-4q7vCVE-2018-16480whole advisorymoderatestated at publication LOW, now states MODERATENo CVSS vector was stated in the first observed version.not dated
2023-09-11published 2019-09-11Advisory severity changedGHSA-xf27-jqwv-gf3rCVE-2019-5479whole advisoryhighstated at publication MODERATE, now states HIGHNo CVSS vector was stated in the first observed version.not dated
2023-09-11published 2018-09-17Advisory severity changedGHSA-cfhg-9x44-78h2CVE-2018-16460whole advisorycriticalstated at publication MODERATE, now states CRITICALNo CVSS vector was stated in the first observed version.not dated
2023-09-11published 2022-02-09Advisory severity changedGHSA-926x-m6m5-3mmpCVE-2019-10803whole advisorycriticalstated at publication HIGH, now states CRITICALThe severity label changed while the stated CVSS vectors stayed the same.not dated
2023-09-11published 2020-09-01Advisory severity changedGHSA-2r7f-4h2c-5x73CVE-2016-1000249whole advisoryhighstated at publication CRITICAL, now states HIGHNo CVSS vector was stated in the first observed version.not dated
2023-09-11published 2021-01-19Advisory severity changedwhole advisoryhighstated at publication MODERATE, now states HIGHThe severity label changed while the stated CVSS vectors stayed the same.not dated
2023-09-11published 2021-01-19same kind of change as the line aboveGHSA-vfxj-qg93-7wwcCVE-2018-10189same package and registry as the line abovehighsame change as the line abovenot dated
2023-09-11published 2021-01-19same kind of change as the line aboveGHSA-6x98-fx9j-7c78CVE-2017-1000489same package and registry as the line abovehighsame change as the line abovenot dated
2023-09-11published 2021-01-19Advisory severity changedGHSA-5w74-jx7m-x6hvCVE-2018-8071whole advisorymoderatestated at publication LOW, now states MODERATEThe severity label changed while the stated CVSS vectors stayed the same.not dated
2023-09-11published 2021-01-19Advisory severity changedGHSA-xcf7-cj8q-pcjmCVE-2018-11198whole advisorymoderatestated at publication LOW, now states MODERATENo CVSS vector was stated in the first observed version.not dated
2023-09-11published 2021-01-19Advisory severity changedGHSA-qpgw-2c72-4c89CVE-2017-1000490whole advisorymoderatestated at publication HIGH, now states MODERATEThe severity label changed while the stated CVSS vectors stayed the same.not dated
Sat 9 Sep 2023· 1 advisory change
2023-09-09published 2018-08-06Advisory severity changedGHSA-fv9m-f7w4-889cCVE-2017-16207whole advisoryhighstated at publication MODERATE, now states HIGHNo CVSS vector was stated in the first observed version.not dated
Fri 8 Sep 2023· 1 record change · 13 advisory changes
2023-09-08CVSS base score changedCVE-2023-3572
whole record
CERTVDE
stated at publication 9.9, now states 10.0CVSS v3.1 · base scoreCriticalCriticalDays to revision 31
2023-09-08published 2019-11-12Package added to advisoryGHSA-g996-q5r8-w7g2CVE-2019-10909moderatenot named as affected when the advisory was published, now names drupal/corenot dated
2023-09-08published 2018-08-09 to 2018-10-09Advisory severity changedwhole advisorymoderatestated at publication LOW, now states MODERATENo CVSS vector was stated in the first observed version.not dated
2023-09-08published 2018-08-09same kind of change as the line aboveGHSA-8225-6cvr-8pqpCVE-2017-16129same package and registry as the line abovemoderatesame change as the line abovenot dated
2023-09-08published 2018-10-09same kind of change as the line aboveGHSA-6g33-f262-xjp4CVE-2017-16028same package and registry as the line abovemoderatesame change as the line abovenot dated
2023-09-08published 2018-11-01Advisory severity changedGHSA-rwg6-3fmj-w4wxCVE-2017-16061whole advisoryhighstated at publication CRITICAL, now states HIGHNo CVSS vector was stated in the first observed version.not dated
2023-09-08published 2018-11-09Advisory severity changedGHSA-q257-vv4p-fg92CVE-2017-16005whole advisoryhighstated at publication LOW, now states HIGHNo CVSS vector was stated in the first observed version.not dated
2023-09-08published 2018-07-23 to 2018-08-29Advisory severity changedwhole advisoryhighstated at publication MODERATE, now states HIGHNo CVSS vector was stated in the first observed version.not dated
2023-09-08published 2018-08-29same kind of change as the line aboveGHSA-j866-8vxx-27hxCVE-2017-16072same package and registry as the line abovehighsame change as the line abovenot dated
2023-09-08published 2018-07-23same kind of change as the line aboveGHSA-8qp3-pvwc-2g4pCVE-2017-16054same package and registry as the line abovehighsame change as the line abovenot dated
2023-09-08published 2019-02-18Advisory severity changedGHSA-m8pw-h8qj-rgj9CVE-2016-10673whole advisoryhighstated at publication MODERATE, now states HIGHNo CVSS vector was stated in the first observed version.not dated
2023-09-08published 2023-09-07Advisory severity changedGHSA-w8vq-3hf9-xppxCVE-2023-41317whole advisorymoderatestated at publication HIGH, now states MODERATEA vector changed on a shared CVSS version. The band and vector edits may have occurred separately.Days to revision 1
2023-09-08published 2018-09-18Advisory severity changedGHSA-4wch-fwmx-cf47CVE-2017-0930whole advisorymoderatestated at publication HIGH, now states MODERATENo CVSS vector was stated in the first observed version.not dated
2023-09-08published 2020-06-05Advisory severity changedGHSA-v8v8-6859-qxm4CVE-2020-8149whole advisorycriticalstated at publication HIGH, now states CRITICALNo CVSS vector was stated in the first observed version.not dated
2023-09-08published 2017-11-15Advisory severity changedGHSA-mw35-24gh-f82wCVE-2017-7474whole advisorycriticalstated at publication HIGH, now states CRITICALNo CVSS vector was stated in the first observed version.not dated
2023-09-08published 2023-09-04Advisory severity changedGHSA-4hg4-9mf5-wxxqCVE-2023-41052whole advisorymoderatestated at publication LOW, now states MODERATENo CVSS vector was stated in the first observed version.Days to revision 4
Thu 7 Sep 2023· 34 advisory changes
2023-09-07published 2020-06-15Package added to advisoryGHSA-mvr2-9pj6-7w5jmoderatenot named as affected when the advisory was published, now names com.google.guava:guava-jdk5 and 4 morenot dated
2023-09-07published 2020-06-15same kind of change as the line aboveGHSA-mvr2-9pj6-7w5jCVE-2018-10237same package registry as the line abovemoderatenot named as affected when the advisory was published, now names com.google.guava:guava-jdk5not dated
2023-09-07published 2020-06-15same kind of change as the line aboveGHSA-mvr2-9pj6-7w5jCVE-2018-10237same package registry as the line abovemoderatenot named as affected when the advisory was published, now names com.googlecode.guava-osgi:guava-osginot dated
2023-09-07published 2020-06-15same kind of change as the line aboveGHSA-mvr2-9pj6-7w5jCVE-2018-10237same package registry as the line abovemoderatenot named as affected when the advisory was published, now names de.mhus.ports:vaadin-shared-depsnot dated
2023-09-07published 2020-06-15same kind of change as the line aboveGHSA-mvr2-9pj6-7w5jCVE-2018-10237same package registry as the line abovemoderatenot named as affected when the advisory was published, now names org.hudsonci.lib.guava:guavanot dated
2023-09-07published 2020-06-15same kind of change as the line aboveGHSA-mvr2-9pj6-7w5jCVE-2018-10237same package registry as the line abovemoderatenot named as affected when the advisory was published, now names org.sonatype.sisu:sisu-guavanot dated
2023-09-07published 2018-11-06Advisory severity changedGHSA-23xp-j737-282vCVE-2018-16473whole advisorymoderatestated at publication HIGH, now states MODERATENo CVSS vector was stated in the first observed version.not dated
2023-09-07published 2018-07-18 to 2018-11-09Advisory severity changedwhole advisoryhighstated at publication MODERATE, now states HIGHNo CVSS vector was stated in the first observed version.not dated
2023-09-07published 2018-11-09same kind of change as the line aboveGHSA-3p8f-j2vw-7hw9CVE-2017-16059same package and registry as the line abovehighsame change as the line abovenot dated
2023-09-07published 2018-10-10same kind of change as the line aboveGHSA-j68r-23hj-xf9cCVE-2017-16064same package and registry as the line abovehighsame change as the line abovenot dated
2023-09-07published 2018-10-09same kind of change as the line aboveGHSA-cqjg-whmm-8gv6CVE-2017-16013same package and registry as the line abovehighsame change as the line abovenot dated
2023-09-07published 2018-08-29same kind of change as the line aboveGHSA-xh56-3f5w-9h25CVE-2017-16071same package and registry as the line abovehighsame change as the line abovenot dated
2023-09-07published 2018-07-23same kind of change as the line aboveGHSA-22j5-38qv-pxx7CVE-2017-16051same package and registry as the line abovehighsame change as the line abovenot dated
2023-09-07published 2018-09-17same kind of change as the line aboveGHSA-5cv7-r488-wc5xCVE-2017-16073same package and registry as the line abovehighsame change as the line abovenot dated
2023-09-07published 2018-08-29same kind of change as the line aboveGHSA-3wxq-7r8m-qpmgCVE-2017-16068same package and registry as the line abovehighsame change as the line abovenot dated
2023-09-07published 2018-08-29same kind of change as the line aboveGHSA-5hxw-r847-qfwpCVE-2017-16066same package and registry as the line abovehighsame change as the line abovenot dated
4 more rows in this change are not listed here. Open all 12 rows
2023-09-07published 2018-08-29Advisory severity changedGHSA-22gq-x6pg-752jCVE-2017-16065whole advisoryhighstated at publication CRITICAL, now states HIGHNo CVSS vector was stated in the first observed version.not dated
2023-09-07published 2019-02-18Advisory severity changedGHSA-vfvf-mqq8-rwqcCVE-2016-10531whole advisorymoderatestated at publication HIGH, now states MODERATENo CVSS vector was stated in the first observed version.not dated
2023-09-07published 2020-09-01Advisory severity changedwhole advisorycriticalstated at publication MODERATE, now states CRITICALNo CVSS vector was stated in the first observed version.not dated
2023-09-07published 2020-09-01same kind of change as the line aboveGHSA-cwcp-6c48-fm7mCVE-2017-16020same package and registry as the line abovecriticalsame change as the line abovenot dated
2023-09-07published 2020-09-01same kind of change as the line aboveGHSA-428f-mh7w-6w2xCVE-2017-16127same package and registry as the line abovecriticalsame change as the line abovenot dated
2023-09-07published 2023-08-31 to 2023-09-01Advisory severity changedwhole advisoryhighstated at publication MODERATE, now states HIGHNo CVSS vector was stated in the first observed version.Days to revision 6 to 8
2023-09-07published 2023-09-01same kind of change as the line aboveGHSA-94w5-rf69-2h6cCVE-2023-39685same package and registry as the line abovehighsame change as the line aboveDays to revision 6
2023-09-07published 2023-08-31same kind of change as the line aboveGHSA-9v85-q87q-g4vgCVE-2023-39139same package and registry as the line abovehighsame change as the line aboveDays to revision 8
2023-09-07published 2018-07-26 to 2018-11-01Advisory severity changedwhole advisoryhighstated at publication LOW, now states HIGHNo CVSS vector was stated in the first observed version.not dated
2023-09-07published 2018-11-01same kind of change as the line aboveGHSA-f9cm-qmx5-m98hCVE-2018-16469same package and registry as the line abovehighsame change as the line abovenot dated
2023-09-07published 2018-07-26same kind of change as the line aboveGHSA-9g9w-hmvj-5h57CVE-2018-3722same package and registry as the line abovehighsame change as the line abovenot dated
2023-09-07published 2023-08-31Advisory severity changedGHSA-r285-q736-9v95CVE-2023-39137whole advisoryhighstated at publication LOW, now states HIGHNo CVSS vector was stated in the first observed version.Days to revision 8
2023-09-07published 2022-09-16Advisory severity changedGHSA-7f3x-2wcx-hww8CVE-2022-37260whole advisoryhighstated at publication LOW, now states HIGHNo CVSS vector was stated in the first observed version.not dated
2023-09-07published 2021-12-10Advisory severity changedGHSA-792j-9wj3-j634CVE-2021-44684whole advisorycriticalstated at publication MODERATE, now states CRITICALNo CVSS vector was stated in the first observed version.not dated
2023-09-07published 2019-02-07Advisory severity changedGHSA-675m-85rw-j3w4CVE-2018-16489whole advisorycriticalstated at publication MODERATE, now states CRITICALNo CVSS vector was stated in the first observed version.not dated
2023-09-07published 2019-02-07Advisory severity changedGHSA-h466-j336-74wxCVE-2018-16490whole advisoryhighstated at publication MODERATE, now states HIGHNo CVSS vector was stated in the first observed version.not dated
2023-09-07published 2021-02-10Advisory severity changedGHSA-7ggw-h8pp-r95rCVE-2021-3311whole advisorycriticalstated at publication LOW, now states CRITICALNo CVSS vector was stated in the first observed version.not dated
2023-09-07published 2022-12-13Advisory severity changedGHSA-3w37-5p3p-jv92CVE-2022-46363whole advisoryhighstated at publication MODERATE, now states HIGHNo CVSS vector was stated in the first observed version.Days to revision 268
2023-09-07published 2021-05-06Advisory severity changedGHSA-36fm-v9wv-56jfCVE-2020-10596whole advisorymoderatestated at publication LOW, now states MODERATEThe severity label changed while the stated CVSS vectors stayed the same.not dated
Wed 6 Sep 2023· 1 record change · 5 advisory changes
2023-09-06CVSS base score changedCVE-2023-41040
whole record
GitHub_M
stated at publication 5.3, now states 4.0CVSS v3.1 · base scoreMediumMediumDays to revision 7
2023-09-06published 2018-07-20Advisory severity changedGHSA-rvj9-8cvx-3vq9CVE-2017-16007whole advisorymoderatestated at publication HIGH, now states MODERATENo CVSS vector was stated in the first observed version.not dated
2023-09-06published 2023-08-31Advisory severity changedwhole advisoryhighstated at publication MODERATE, now states HIGHNo CVSS vector was stated in the first observed version.Days to revision 7
2023-09-06published 2023-08-31same kind of change as the line aboveGHSA-g454-wj9r-jpg4CVE-2023-39135same package and registry as the line abovehighsame change as the line aboveDays to revision 7
2023-09-06published 2023-08-31same kind of change as the line aboveGHSA-c2cc-3569-6jh2CVE-2023-39138same package and registry as the line abovehighsame change as the line aboveDays to revision 7
2023-09-06published 2023-09-01Advisory severity changedGHSA-f73w-4m7g-ch9xCVE-2023-39631whole advisorycriticalstated at publication HIGH, now states CRITICALNo CVSS vector was stated in the first observed version.Days to revision 5
2023-09-06published 2023-08-08Advisory severity changedGHSA-rg2c-cfxv-qp6fCVE-2023-3894whole advisoryhighstated at publication MODERATE, now states HIGHA vector changed on a shared CVSS version. The band and vector edits may have occurred separately.Days to revision 29
Tue 5 Sep 2023· 2 record changes · 13 advisory changes
2023-09-05Product addedCVE-2023-4004not named as affected at publication, now names red hat enterprise linux 8.4 advanced mission critical update supportDays to revision 36
2023-09-05Record state changedCVE-2023-32086
whole record
Pega
stated at publication PUBLISHED, now states REJECTEDDays to revision 0
2023-09-05published 2021-09-23Package added to advisoryGHSA-3j6g-hxx5-3q26moderatenot named as affected when the advisory was published, now names org.apache.kafka:kafka-clients and 3 morenot dated
2023-09-05published 2021-09-23same kind of change as the line aboveGHSA-3j6g-hxx5-3q26CVE-2021-38153same package registry as the line abovemoderatenot named as affected when the advisory was published, now names org.apache.kafka:kafka-clientsnot dated
2023-09-05published 2021-09-23same kind of change as the line aboveGHSA-3j6g-hxx5-3q26CVE-2021-38153same package registry as the line abovemoderatenot named as affected when the advisory was published, now names org.apache.kafka:kafka_2.11not dated
2023-09-05published 2021-09-23same kind of change as the line aboveGHSA-3j6g-hxx5-3q26CVE-2021-38153same package registry as the line abovemoderatenot named as affected when the advisory was published, now names org.apache.kafka:kafka_2.12not dated
2023-09-05published 2021-09-23same kind of change as the line aboveGHSA-3j6g-hxx5-3q26CVE-2021-38153same package registry as the line abovemoderatenot named as affected when the advisory was published, now names org.apache.kafka:kafka_2.13not dated
2023-09-05published 2022-01-06Package added to advisoryGHSA-2h63-qp69-fwvwCVE-2020-11987highnot named as affected when the advisory was published, now names org.apache.xmlgraphics:batik-svgbrowsernot dated
2023-09-05published 2023-07-05Package added to advisoryGHSA-hr8g-6v94-x4m9moderatenot named as affected when the advisory was published, now names org.bouncycastle:bcprov-debug-jdk15on and 2 moreDays to revision 63
2023-09-05published 2023-07-05same kind of change as the line aboveGHSA-hr8g-6v94-x4m9CVE-2023-33201same package registry as the line abovemoderatenot named as affected when the advisory was published, now names org.bouncycastle:bcprov-debug-jdk15onDays to revision 63
2023-09-05published 2023-07-05same kind of change as the line aboveGHSA-hr8g-6v94-x4m9CVE-2023-33201same package registry as the line abovemoderatenot named as affected when the advisory was published, now names org.bouncycastle:bcprov-ext-jdk15onDays to revision 63
2023-09-05published 2023-07-05same kind of change as the line aboveGHSA-hr8g-6v94-x4m9CVE-2023-33201same package registry as the line abovemoderatenot named as affected when the advisory was published, now names org.bouncycastle:bcprov-jdk15onDays to revision 63
2023-09-05published 2019-04-10Package added to advisoryGHSA-f6f2-pwrj-64h3CVE-2019-10868highnot named as affected when the advisory was published, now names trytondnot dated
2023-09-05published 2019-04-26Package added to advisoryGHSA-6c3j-c64m-qhgqCVE-2019-11358moderatenot named as affected when the advisory was published, now names djangonot dated
2023-09-05published 2021-09-01Advisory severity changedGHSA-h97f-5258-5593CVE-2021-38384whole advisorycriticalstated at publication MODERATE, now states CRITICALThe severity label changed while the stated CVSS vectors stayed the same.not dated
2023-09-05published 2022-02-09Advisory severity changedGHSA-mqgv-67vx-g4m5CVE-2020-28442whole advisorycriticalstated at publication HIGH, now states CRITICALThe severity label changed while the stated CVSS vectors stayed the same.not dated
2023-09-05published 2021-12-10Advisory severity changedGHSA-hg2p-2cvq-4ppvCVE-2020-7642whole advisorymoderatestated at publication LOW, now states MODERATEThe severity label changed while the stated CVSS vectors stayed the same.not dated
Mon 4 Sep 2023· 2 advisory changes
2023-09-04published 2022-01-12Advisory severity changedGHSA-pw3c-h7wp-cvhxCVE-2022-22815whole advisorymoderatestated at publication CRITICAL, now states MODERATEA vector changed on a shared CVSS version. The band and vector edits may have occurred separately.not dated
2023-09-04published 2021-03-18Advisory severity changedGHSA-hf64-x4gq-p99hCVE-2020-35655whole advisorymoderatestated at publication HIGH, now states MODERATEA CVSS version was added; the existing vectors stayed the same.not dated
Fri 1 Sep 2023· 9 advisory changes
2023-09-01published 2019-01-04Advisory severity changedGHSA-38rv-5jqc-m2cvCVE-2017-0906whole advisorycriticalstated at publication HIGH, now states CRITICALNo CVSS vector was stated in the first observed version.not dated
2023-09-01published 2023-08-21 to 2023-08-28Advisory severity changedwhole advisoryhighstated at publication MODERATE, now states HIGHNo CVSS vector was stated in the first observed version.Days to revision 4 to 11
2023-09-01published 2023-08-22same kind of change as the line aboveGHSA-j55r-787p-m549CVE-2023-40185same package and registry as the line abovehighsame change as the line aboveDays to revision 10
2023-09-01published 2023-08-28same kind of change as the line aboveGHSA-8q28-pw9g-w82cCVE-2023-40195same package and registry as the line abovehighsame change as the line aboveDays to revision 4
2023-09-01published 2023-08-28same kind of change as the line aboveGHSA-g3m9-pr5m-4cvpCVE-2023-27604same package and registry as the line abovehighsame change as the line aboveDays to revision 4
2023-09-01published 2023-08-21same kind of change as the line aboveGHSA-v6c8-pwhq-288mCVE-2023-39106same package and registry as the line abovehighsame change as the line aboveDays to revision 11
2023-09-01published 2023-08-23Advisory severity changedGHSA-4f8m-7h83-9f6mCVE-2023-40572whole advisoryhighstated at publication CRITICAL, now states HIGHA vector changed on a shared CVSS version. The band and vector edits may have occurred separately.Days to revision 9
2023-09-01published 2023-08-23Advisory severity changedGHSA-v86x-5fm3-5p7jCVE-2023-40577whole advisorymoderatestated at publication HIGH, now states MODERATEA vector changed on a shared CVSS version. The band and vector edits may have occurred separately.Days to revision 9
2023-09-01published 2023-04-25Advisory severity changedGHSA-xv83-x443-7rmwCVE-2023-30609whole advisoryhighstated at publication MODERATE, now states HIGHA vector changed on a shared CVSS version. The band and vector edits may have occurred separately.Days to revision 129
2023-09-01published 2023-08-29Advisory severity changedGHSA-mhp6-jvpx-2p4mCVE-2023-40889whole advisorycriticalstated at publication MODERATE, now states CRITICALNo CVSS vector was stated in the first observed version.Days to revision 2
Thu 31 Aug 2023· 2 record changes · 9 advisory changes
2023-08-31Fix version movedCVE-2023-41743
acronisacronis cyber protect home office
stated at publication 40173, now states 40278Release branch starts at 0.same dayDays to revision 0
2023-08-31Record state changedCVE-2023-36119
whole record
mitre
stated at publication PUBLISHED, now states REJECTEDnot dated
2023-08-31published 2021-04-20Advisory severity changedGHSA-893h-35v4-mxqxCVE-2020-1737whole advisoryhighstated at publication MODERATE, now states HIGHA CVSS version was added; the existing vectors stayed the same.not dated
2023-08-31published 2023-08-22 to 2023-08-24Advisory severity changedwhole advisorymoderatestated at publication LOW, now states MODERATENo CVSS vector was stated in the first observed version.Days to revision 7 to 8
2023-08-31published 2023-08-24same kind of change as the line aboveGHSA-3x59-vrmc-5mx6CVE-2023-41167same package and registry as the line abovemoderatesame change as the line aboveDays to revision 7
2023-08-31published 2023-08-22same kind of change as the line aboveGHSA-5pv6-rprw-82wvCVE-2022-45582same package and registry as the line abovemoderatesame change as the line aboveDays to revision 8
2023-08-31published 2023-08-25Advisory severity changedGHSA-q3mw-pvr8-9ggcCVE-2023-41080whole advisorymoderatestated at publication HIGH, now states MODERATENo CVSS vector was stated in the first observed version.Days to revision 6
2023-08-31published 2023-08-21 to 2023-08-22Advisory severity changedwhole advisoryhighstated at publication MODERATE, now states HIGHNo CVSS vector was stated in the first observed version.Days to revision 9 to 10
2023-08-31published 2023-08-21same kind of change as the line aboveGHSA-2jc4-r94c-rp7hCVE-2022-46751same package and registry as the line abovehighsame change as the line aboveDays to revision 10
2023-08-31published 2023-08-22same kind of change as the line aboveGHSA-65rp-cv85-263xCVE-2022-34038same package and registry as the line abovehighsame change as the line aboveDays to revision 9
2023-08-31published 2023-07-06Advisory severity changedGHSA-g96c-x7rh-99r3CVE-2023-41045whole advisorylowstated at publication MODERATE, now states LOWNo CVSS vector was stated in the first observed version.Days to revision 56
2023-08-31published 2021-01-13Advisory severity changedGHSA-jxwx-85vp-gvwmCVE-2021-21252whole advisoryhighstated at publication MODERATE, now states HIGHNo CVSS vector was stated in the first observed version.not dated
2023-08-31published 2023-08-23Advisory severity changedGHSA-c8xw-vjgf-94hrCVE-2023-40025whole advisoryhighstated at publication MODERATE, now states HIGHA vector changed on a shared CVSS version. The band and vector edits may have occurred separately.Days to revision 7
Wed 30 Aug 2023· 3 record changes · 8 advisory changes
2023-08-30Product addedCVE-2023-32712not named as affected at publication, now names universal forwarderDays to revision 90
2023-08-30Product addedCVE-2023-23355qnapnot named as affected at publication, now names qutscloudDays to revision 154
2023-08-30Record state changedCVE-2023-39552
whole record
mitre
stated at publication PUBLISHED, now states REJECTEDDays to revision 26
2023-08-30published 2022-11-15Package added to advisoryGHSA-prjq-f4q3-fvfrCVE-2020-7731highnot named as affected when the advisory was published, now names github.com/russellhaering/goxmldsignot dated
2023-08-30published 2021-04-07Advisory severity changedGHSA-fjq3-5pxw-4wj4CVE-2020-7965whole advisoryhighstated at publication MODERATE, now states HIGHA CVSS version was added; the existing vectors stayed the same.not dated
2023-08-30published 2021-05-06Advisory severity changedGHSA-3vcg-8p79-jpcvCVE-2020-10799whole advisorycriticalstated at publication HIGH, now states CRITICALA CVSS version was added; the existing vectors stayed the same.not dated
2023-08-30published 2021-05-21Advisory severity changedGHSA-j756-f273-xhp4whole advisoryhighstated at publication CRITICAL, now states HIGHThe severity label changed while the stated CVSS vectors stayed the same.not dated
2023-08-30published 2021-05-21Advisory severity changedGHSA-hmm9-r2m2-qg9wwhole advisoryhighstated at publication LOW, now states HIGHThe severity label changed while the stated CVSS vectors stayed the same.not dated
2023-08-30published 2022-02-11Advisory severity changedGHSA-h2x7-2ff6-v32pCVE-2022-2583whole advisorylowstated at publication HIGH, now states LOWNo CVSS vector was stated in the first observed version.not dated
2023-08-30published 2022-04-08Advisory severity changedGHSA-g3vv-g2j5-45f2CVE-2022-2584whole advisoryhighstated at publication MODERATE, now states HIGHNo CVSS vector was stated in the first observed version.not dated
2023-08-30published 2023-08-22Advisory severity changedGHSA-gq5f-xv48-2365CVE-2022-44729whole advisoryhighstated at publication MODERATE, now states HIGHNo CVSS vector was stated in the first observed version.Days to revision 8
Tue 29 Aug 2023· 7 advisory changes
2023-08-29published 2023-08-21Advisory severity changedGHSA-h8cm-3v5f-rgp6CVE-2023-40176whole advisorymoderatestated at publication CRITICAL, now states MODERATEA vector changed on a shared CVSS version. The band and vector edits may have occurred separately.Days to revision 8
2023-08-29published 2021-08-02Advisory severity changedGHSA-fp52-qw33-mfmwCVE-2020-16250whole advisoryhighstated at publication CRITICAL, now states HIGHA vector changed on a shared CVSS version. The band and vector edits may have occurred separately.not dated
2023-08-29published 2023-08-23Advisory severity changedGHSA-5f35-pq34-c87qCVE-2023-39441whole advisorymoderatestated at publication HIGH, now states MODERATENo CVSS vector was stated in the first observed version.Days to revision 6
2023-08-29published 2023-08-23Advisory severity changedGHSA-pm87-24wq-r8w9CVE-2023-40273whole advisoryhighstated at publication MODERATE, now states HIGHNo CVSS vector was stated in the first observed version.Days to revision 6
2023-08-29published 2023-08-23Advisory severity changedGHSA-x2mh-8fmc-rqghCVE-2023-37379whole advisoryhighstated at publication LOW, now states HIGHNo CVSS vector was stated in the first observed version.Days to revision 6
2023-08-29published 2023-08-24Advisory severity changedGHSA-crqf-q9fp-hwjwCVE-2023-34040whole advisoryhighstated at publication MODERATE, now states HIGHA vector changed on a shared CVSS version. The band and vector edits may have occurred separately.Days to revision 5
2023-08-29published 2022-05-17Advisory severity changedGHSA-hxvp-655x-xxqvCVE-2014-0135whole advisorylowstated at publication MODERATE, now states LOWThe severity label changed while the stated CVSS vectors stayed the same.Days to revision 469
Mon 28 Aug 2023· 1 record change · 4 advisory changes
2023-08-28Record state changedCVE-2023-37151
whole record
mitre
stated at publication PUBLISHED, now states REJECTEDnot dated
2023-08-28published 2019-04-09Package added to advisorymoderatenot named as affected when the advisory was published, now names @materializecss/materializenot dated
2023-08-28published 2019-04-09same kind of change as the line aboveGHSA-7752-f4gf-94gcCVE-2019-11003same package registry as the line abovemoderatesame change as the line abovenot dated
2023-08-28published 2019-04-09same kind of change as the line aboveGHSA-98f7-p5rc-jx67CVE-2019-11002same package registry as the line abovemoderatesame change as the line abovenot dated
2023-08-28published 2019-04-09same kind of change as the line aboveGHSA-rg3q-jxmp-pvjjCVE-2019-11004same package registry as the line abovemoderatesame change as the line abovenot dated
2023-08-28published 2018-11-15Advisory severity changedGHSA-hg78-4f6x-99wqCVE-2018-16470whole advisoryhighstated at publication MODERATE, now states HIGHNo CVSS vector was stated in the first observed version.not dated
Sun 27 Aug 2023· 1 record change
2023-08-27Record state changedCVE-2023-32001
whole record
hackerone
stated at publication PUBLISHED, now states REJECTEDDays to revision 31
Fri 25 Aug 2023· 11 record changes
2023-08-25Product addedCVE-2023-3264trellixnot named as affected at publication, now names iboot pduDays to revision 11
2023-08-25CVSS base score changedCVE-2023-40031
whole record
GitHub_M
stated at publication 8.6, now states 7.8CVSS v3.1 · base scoreHighHighDays to revision 0
2023-08-25CVSS base score changed
whole record
GitHub_M
stated at publication 6.3, now states 5.5CVSS v3.1 · base scoreMediumMediumDays to revision 0
2023-08-25same kind of change as the line aboveCVE-2023-40036same vendor as the line abovesame change as the line aboveDays to revision 0
2023-08-25same kind of change as the line aboveCVE-2023-40164same vendor as the line abovesame change as the line aboveDays to revision 0
2023-08-25CVSS base score changedCVE-2023-22815
whole record
WDC PSIRT
stated at publication 6.0, now states 6.2CVSS v3.1 · base scoreMediumMediumDays to revision 56
2023-08-25CVSS base score changedCVE-2023-37860
whole record
CERTVDE
stated at publication 8.6, now states 7.5CVSS v3.1 · base scoreHighHighDays to revision 16
2023-08-25CVSS base score changed
whole record
CERTVDE
stated at publication 9.9, now states 8.8CVSS v3.1 · base scoreCriticalHighDays to revision 17
2023-08-25same kind of change as the line aboveCVE-2023-3570same vendor as the line abovesame change as the line aboveDays to revision 17
2023-08-25same kind of change as the line aboveCVE-2023-3571same vendor as the line abovesame change as the line aboveDays to revision 17
2023-08-25same kind of change as the line aboveCVE-2023-3573same vendor as the line abovesame change as the line aboveDays to revision 17
2023-08-25CVSS base score changedCVE-2023-2673
whole record
CERTVDE
stated at publication 5.8, now states 5.3CVSS v3.1 · base scoreMediumMediumDays to revision 73
2023-08-25CVSS base score changedCVE-2023-3262
whole record
trellix
stated at publication 6.2, now states 6.7CVSS v3.1 · base scoreMediumMediumDays to revision 11

Two units, never added: changes to a CVE record or KEV entry, and changes to a GitHub advisory. Rows, not records: a moved fix version or an extended range counts once per record, product and release branch; an added product once per record and product; every other kind once per record or advisory. Days to revision is how long the value first stated stood: from the record's or advisory's publication, or from the day a KEV field value was first seen, to the first commit that replaced it. An addition to KEV has no earlier value and shows none. A collapsed line is one publisher's run of identical changes on one day; it says how many, and opens to all of them.

Data sources and quality

Not checked: A CVE record published before 2023, and a KEV listing added before 2025-01-27, were never seen changing. An absence here is not evidence that a record held.

A change shown here is a change to a public record, evidenced by a commit anyone can read in the publisher's own history. It is not an assertion of wrongdoing, negligence or bad faith by any publisher or vendor, not evidence that any fix was incomplete, and not a statement about anyone's systems.

The units, the refusals, the cut-offs and every source, in full →

Check my CVEs against these changes →