Skip to content

Every change, newest first

What a record said when it was published, what it says now, and the commit that changed it.

11,999 record changes · 5,026 advisory changes · newest first · grouped by dayCSVJSONRSS

Since
Counted changes, newest first, one line per change to a CVE record or a GHSA advisory, or per run of identical changes collapsed into one line.
Changed on, The day the change first became visible in the catalog's public history. Not the day the record was amended, which is earlier by an unknown margin.KindRecord or advisory, Which record was edited: a CVE id where the change was to the CVE catalog or the CISA KEV list, a GHSA id where it was to a GitHub advisory. The two are different units and are never counted together.Vendor or package, The vendor and product a CVE record names, with the organisation that publishes the record under them; or the package an advisory names and its registry.What changedDays to revision, The earlier stated value's interval. For a version boundary, it ends at the first replacement of that value; the reported current value may appear later. Starting points differ by kind: record publication, advisory publication, or the observed introduction of a KEV field value. Intervals are not directly comparable across kinds. Missing dates mean unknown, never zero. This does not date when a value became wrong.
Tue 4 Jul 2023· 1 advisory change
2023-07-04published 2018-08-08Advisory severity changedGHSA-pxqr-8v54-m2hjCVE-2016-10522whole advisoryhighstated at publication MODERATE, now states HIGHNo CVSS vector was stated in the first observed version.not dated
Mon 3 Jul 2023· 66 record changes · 3 advisory changes
2023-07-03Product addedCVE-2023-25515not named as affected at publication, now names gpu display driver for windows and linuxDays to revision 10
2023-07-03Product added64 rows, one per record and productNECnot named as affected at publication, now names aterm wf300hp and 15 moreDays to revision 5
2023-07-03same kind of change as the line aboveCVE-2023-3330same vendor as the line abovenot named as affected at publication, now names aterm wf300hpDays to revision 5
2023-07-03same kind of change as the line aboveCVE-2023-3330same vendor as the line abovenot named as affected at publication, now names aterm wg1400hpDays to revision 5
2023-07-03same kind of change as the line aboveCVE-2023-3330same vendor as the line abovenot named as affected at publication, now names aterm wg1800hpDays to revision 5
2023-07-03same kind of change as the line aboveCVE-2023-3330same vendor as the line abovenot named as affected at publication, now names aterm wg1800hp2Days to revision 5
2023-07-03same kind of change as the line aboveCVE-2023-3330same vendor as the line abovenot named as affected at publication, now names aterm wg2600hpDays to revision 5
2023-07-03same kind of change as the line aboveCVE-2023-3330same vendor as the line abovenot named as affected at publication, now names aterm wg2600hp2Days to revision 5
2023-07-03same kind of change as the line aboveCVE-2023-3330same vendor as the line abovenot named as affected at publication, now names aterm wg300hpDays to revision 5
2023-07-03same kind of change as the line aboveCVE-2023-3330same vendor as the line abovenot named as affected at publication, now names aterm wg600hpDays to revision 5
56 more rows in this change are not listed here. Open all 64 rows
2023-07-03CVSS base score changedCVE-2023-25515
whole record
nvidia
stated at publication 7.1, now states 7.8CVSS v3.1 · base scoreHighHighDays to revision 10
2023-07-03published 2022-02-15Package added to advisoryGHSA-x5m6-jh4r-34mvCVE-2014-0177moderatenot named as affected when the advisory was published, now names hubnot dated
2023-07-03published 2023-06-22Advisory severity changedGHSA-w65q-jcmv-28gjCVE-2023-32571whole advisorycriticalstated at publication MODERATE, now states CRITICALNo CVSS vector was stated in the first observed version.Days to revision 11
2023-07-03published 2023-06-23Advisory severity changedGHSA-hhqm-f4m4-pq39CVE-2023-30260whole advisoryhighstated at publication MODERATE, now states HIGHNo CVSS vector was stated in the first observed version.Days to revision 10
Fri 30 Jun 2023· 10 record changes · 9 advisory changes
2023-06-302 commitsProduct addednot named as affected at publication, now names powershell 7.2Branches and original-value intervals are stated on each row.Days to revision 16 to 17
2023-06-30same kind of change as the line aboveCVE-2023-24895same vendor as the line abovesame change as the line aboveDays to revision 16
2023-06-30same kind of change as the line aboveCVE-2023-24936same vendor as the line abovesame change as the line aboveDays to revision 16
2023-06-30same kind of change as the line aboveCVE-2023-29331same vendor as the line abovesame change as the line aboveDays to revision 16
2023-06-30same kind of change as the line aboveCVE-2023-33126same vendor as the line abovesame change as the line aboveDays to revision 17
2023-06-30same kind of change as the line aboveCVE-2023-24897same vendor as the line abovesame change as the line aboveDays to revision 16
2023-06-30Product addednot named as affected at publication, now names powershell 7.3Days to revision 16 to 17
2023-06-30same kind of change as the line aboveCVE-2023-24895same vendor as the line abovesame change as the line aboveDays to revision 16
2023-06-30same kind of change as the line aboveCVE-2023-24936same vendor as the line abovesame change as the line aboveDays to revision 16
2023-06-30same kind of change as the line aboveCVE-2023-29331same vendor as the line abovesame change as the line aboveDays to revision 16
2023-06-30same kind of change as the line aboveCVE-2023-32032same vendor as the line abovesame change as the line aboveDays to revision 17
2023-06-30same kind of change as the line aboveCVE-2023-33128same vendor as the line abovesame change as the line aboveDays to revision 17
2023-06-30published 2023-06-16Advisory severity changedGHSA-xc8m-28vv-4pjcCVE-2023-2431whole advisorymoderatestated at publication LOW, now states MODERATEA vector changed on a shared CVSS version. The band and vector edits may have occurred separately.Days to revision 15
2023-06-30published 2021-11-23Advisory severity changedGHSA-g3p2-hfqr-9m25CVE-2021-22968whole advisoryhighstated at publication MODERATE, now states HIGHNo CVSS vector was stated in the first observed version.not dated
2023-06-30published 2021-05-11Advisory severity changedGHSA-23x4-m842-fmwfCVE-2021-21428whole advisorycriticalstated at publication HIGH, now states CRITICALThe severity label changed while the stated CVSS vectors stayed the same.not dated
2023-06-30published 2023-06-21 to 2023-06-22Advisory severity changedwhole advisoryhighstated at publication MODERATE, now states HIGHNo CVSS vector was stated in the first observed version.Days to revision 8 to 9
2023-06-30published 2023-06-22same kind of change as the line aboveGHSA-xxp4-mf4h-6cwmCVE-2023-35133same package and registry as the line abovehighsame change as the line aboveDays to revision 8
2023-06-30published 2023-06-21same kind of change as the line aboveGHSA-mppv-79ch-vw6qCVE-2023-34981same package and registry as the line abovehighsame change as the line aboveDays to revision 9
2023-06-30published 2023-06-22Advisory severity changedGHSA-q2fp-jw87-86pxCVE-2023-29931whole advisorycriticalstated at publication MODERATE, now states CRITICALNo CVSS vector was stated in the first observed version.Days to revision 8
2023-06-30published 2023-06-23Advisory severity changedGHSA-hm75-8w6h-4f8fCVE-2023-3302whole advisoryhighstated at publication MODERATE, now states HIGHCVSS versions were removed or replaced; no shared version's vector was rescored.Days to revision 7
2023-06-30published 2022-03-12 to 2023-05-26Advisory withdrawnwhole advisory2 bandswithdrawn 2023-06-30Days to revision 35 to 476
2023-06-30published 2022-03-12same kind of change as the line aboveGHSA-65f3-3278-7m65same package and registry as the line abovehighwithdrawn 2023-06-30Days to revision 476
2023-06-30published 2023-05-26same kind of change as the line aboveGHSA-c892-cwq6-qrqfsame package and registry as the line abovemoderatewithdrawn 2023-06-30Days to revision 35
Thu 29 Jun 2023· 1 record change
2023-06-29Record state changedCVE-2023-35170
whole record
GitHub_M
stated at publication PUBLISHED, now states REJECTEDDays to revision 3
Wed 28 Jun 2023· 1 record change · 6 advisory changes
2023-06-28Fix version movedCVE-2023-3389
linuxkernel
Google
stated at publication 6.0, now states 6.4Release branch starts at 0.same dayDays to revision 0
2023-06-28published 2023-06-21Advisory severity changedGHSA-fqhp-rhm6-8rrjCVE-2023-33289whole advisoryhighstated at publication MODERATE, now states HIGHNo CVSS vector was stated in the first observed version.Days to revision 7
2023-06-28published 2023-06-21 to 2023-06-22Advisory severity changedwhole advisorycriticalstated at publication MODERATE, now states CRITICALNo CVSS vector was stated in the first observed version.Days to revision 6 to 7
2023-06-28published 2023-06-22same kind of change as the line aboveGHSA-5m3m-q8cq-77g4CVE-2023-36097same package and registry as the line abovecriticalsame change as the line aboveDays to revision 6
2023-06-28published 2023-06-21same kind of change as the line aboveGHSA-hp5w-w29m-vg63CVE-2023-34340same package and registry as the line abovecriticalsame change as the line aboveDays to revision 7
2023-06-28published 2023-06-20Advisory severity changedGHSA-h7cw-44vp-jq7hCVE-2023-35166whole advisoryhighstated at publication CRITICAL, now states HIGHA vector changed on a shared CVSS version. The band and vector edits may have occurred separately.Days to revision 8
2023-06-28published 2023-06-23Advisory severity changedGHSA-vmxg-wx6c-4f3rCVE-2023-3303whole advisorylowstated at publication MODERATE, now states LOWCVSS versions were removed or replaced; no shared version's vector was rescored.Days to revision 5
2023-06-28published 2023-06-13Advisory withdrawnGHSA-3x74-v64j-qc3fCVE-2023-30179whole advisoryhighwithdrawn 2023-06-28Days to revision 15
Tue 27 Jun 2023· 16 advisory changes
2023-06-27published 2023-06-19 to 2023-06-20Advisory severity changedwhole advisorycriticalstated at publication MODERATE, now states CRITICALNo CVSS vector was stated in the first observed version.Days to revision 7 to 9
2023-06-27published 2023-06-20same kind of change as the line aboveGHSA-6643-h7h5-x9whCVE-2023-34541same package and registry as the line abovecriticalsame change as the line aboveDays to revision 7
2023-06-27published 2023-06-20same kind of change as the line aboveGHSA-6vf2-mfmr-qqqwCVE-2020-21489same package and registry as the line abovecriticalsame change as the line aboveDays to revision 7
2023-06-27published 2023-06-20same kind of change as the line aboveGHSA-q3q5-qvh5-cmw5CVE-2020-21174same package and registry as the line abovecriticalsame change as the line aboveDays to revision 7
2023-06-27published 2023-06-19same kind of change as the line aboveGHSA-7q8c-49f4-4c8qCVE-2023-35839same package and registry as the line abovecriticalsame change as the line aboveDays to revision 9
2023-06-27published 2023-06-20Advisory severity changedGHSA-4cw3-rhqx-vqwrCVE-2020-20726whole advisoryhighstated at publication MODERATE, now states HIGHNo CVSS vector was stated in the first observed version.Days to revision 7
2023-06-27published 2022-03-11Advisory severity changedGHSA-jr9c-h74f-2v28CVE-2022-0905whole advisoryhighstated at publication MODERATE, now states HIGHNo CVSS vector was stated in the first observed version.not dated
2023-06-27published 2023-06-14Advisory severity changedwhole advisoryhighstated at publication LOW, now states HIGHNo CVSS vector was stated in the first observed version.Days to revision 13
2023-06-27published 2023-06-14same kind of change as the line aboveGHSA-p4c9-x742-qh8cCVE-2023-34616same package and registry as the line abovehighsame change as the line aboveDays to revision 13
2023-06-27published 2023-06-14same kind of change as the line aboveGHSA-75r3-38rh-pmxvCVE-2023-34613same package and registry as the line abovehighsame change as the line aboveDays to revision 13
2023-06-27published 2023-06-14same kind of change as the line aboveGHSA-5wfc-hjrc-gq87CVE-2023-34620same package and registry as the line abovehighsame change as the line aboveDays to revision 13
2023-06-27published 2023-06-14same kind of change as the line aboveGHSA-66gv-5m8q-rrjcCVE-2023-34614same package and registry as the line abovehighsame change as the line aboveDays to revision 13
2023-06-27published 2023-06-14same kind of change as the line aboveGHSA-75m3-f4hr-2vh9CVE-2023-35110same package and registry as the line abovehighsame change as the line aboveDays to revision 13
2023-06-27published 2023-06-14same kind of change as the line aboveGHSA-779h-3r69-4f5pCVE-2023-34610same package and registry as the line abovehighsame change as the line aboveDays to revision 13
2023-06-27published 2023-06-14same kind of change as the line aboveGHSA-mx27-gg24-h2jcCVE-2023-34612same package and registry as the line abovehighsame change as the line aboveDays to revision 13
2023-06-27published 2020-07-07Advisory severity changedGHSA-vjv6-gq77-3mjwCVE-2020-15232whole advisorycriticalstated at publication LOW, now states CRITICALThe severity label changed while the stated CVSS vectors stayed the same.not dated
2023-06-27published 2023-06-16Advisory severity changedGHSA-934g-fvcc-4833CVE-2023-34659whole advisorycriticalstated at publication HIGH, now states CRITICALNo CVSS vector was stated in the first observed version.Days to revision 11
2023-06-27published 2021-05-06Advisory withdrawnGHSA-p7j5-4mwm-hv86whole advisorymoderatewithdrawn 2023-06-27Days to revision 782
Mon 26 Jun 2023· 3 advisory changes
2023-06-26published 2023-06-15Advisory severity changedGHSA-p2qf-9vp6-3jjqCVE-2023-3276whole advisoryhighstated at publication MODERATE, now states HIGHCVSS versions were removed or replaced; no shared version's vector was rescored.Days to revision 11
2023-06-26published 2023-06-14Advisory severity changedGHSA-jv4x-j47q-6qvpCVE-2023-34624whole advisoryhighstated at publication LOW, now states HIGHNo CVSS vector was stated in the first observed version.Days to revision 12
2023-06-26published 2020-09-01Advisory severity changedGHSA-2pqj-h3vj-pqgwCVE-2012-6708whole advisorymoderatestated at publication HIGH, now states MODERATENo CVSS vector was stated in the first observed version.not dated
Fri 23 Jun 2023· 2 record changes · 2 advisory changes
2023-06-23Affected range extendedCVE-2023-2986
tychesoftwaresabandoned cart lite for woocommerce
Wordfence
stated at publication 5.14.2, now states 5.15.1Release branch starts at 0.Days to revision 16
2023-06-23CVSS base score changedCVE-2023-28043
whole record
dell
stated at publication 6.3, now states 6.5CVSS v3.1 · base scoreMediumMediumDays to revision 22
2023-06-23published 2023-01-18 to 2023-06-14Advisory severity changedwhole advisoryhighstated at publication LOW, now states HIGHNo CVSS vector was stated in the first observed version.Days to revision 9 to 156
2023-06-23published 2023-06-14same kind of change as the line aboveGHSA-fj64-qprx-q7vqCVE-2023-34617same package and registry as the line abovehighsame change as the line aboveDays to revision 9
2023-06-23published 2023-01-18same kind of change as the line aboveGHSA-65f5-mfpf-vfhjCVE-2022-44570same package and registry as the line abovehighsame change as the line aboveDays to revision 156
Wed 21 Jun 2023· 55 record changes · 4 advisory changes
2023-06-21Product addedCVE-2023-0457Mitsubishinot named as affected at publication, now names melsec iq-r series r00cpu and 54 moreDays to revision 110
2023-06-21same kind of change as the line aboveCVE-2023-0457same vendor as the line abovenot named as affected at publication, now names melsec iq-r series r00cpuDays to revision 110
2023-06-21same kind of change as the line aboveCVE-2023-0457same vendor as the line abovenot named as affected at publication, now names melsec iq-r series r01cpuDays to revision 110
2023-06-21same kind of change as the line aboveCVE-2023-0457same vendor as the line abovenot named as affected at publication, now names melsec iq-r series r02cpuDays to revision 110
2023-06-21same kind of change as the line aboveCVE-2023-0457same vendor as the line abovenot named as affected at publication, now names melsec iq-r series r04cpuDays to revision 110
2023-06-21same kind of change as the line aboveCVE-2023-0457same vendor as the line abovenot named as affected at publication, now names melsec iq-r series r04encpuDays to revision 110
2023-06-21same kind of change as the line aboveCVE-2023-0457same vendor as the line abovenot named as affected at publication, now names melsec iq-r series r08cpuDays to revision 110
2023-06-21same kind of change as the line aboveCVE-2023-0457same vendor as the line abovenot named as affected at publication, now names melsec iq-r series r08encpuDays to revision 110
2023-06-21same kind of change as the line aboveCVE-2023-0457same vendor as the line abovenot named as affected at publication, now names melsec iq-r series r08pcpuDays to revision 110
47 more rows in this change are not listed here. Open all 55 rows
2023-06-21published 2023-06-14Advisory severity changedGHSA-4g42-gqrg-4633CVE-2023-34396whole advisoryhighstated at publication MODERATE, now states HIGHA vector changed on a shared CVSS version. The band and vector edits may have occurred separately.Days to revision 8
2023-06-21published 2023-06-13Advisory severity changedGHSA-7mcw-xmx3-7p8mCVE-2023-33695whole advisoryhighstated at publication MODERATE, now states HIGHNo CVSS vector was stated in the first observed version.Days to revision 8
2023-06-21published 2023-06-12Advisory severity changedGHSA-65wh-g8x8-gm2hCVE-2023-34212whole advisorymoderatestated at publication HIGH, now states MODERATENo CVSS vector was stated in the first observed version.Days to revision 9
2023-06-21published 2017-12-28Advisory withdrawnGHSA-7fpw-cfc4-3p2cwhole advisoryhighwithdrawn 2023-06-21Days to revision 2,001
Tue 20 Jun 2023· 1 advisory change
2023-06-20published 2019-03-14Advisory severity changedGHSA-77rv-6vfw-x4gcCVE-2019-3778whole advisorymoderatestated at publication CRITICAL, now states MODERATENo CVSS vector was stated in the first observed version.not dated
Mon 19 Jun 2023· 2 record changes · 4 advisory changes
2023-06-19Product addedCVE-2023-3311VulDBnot named as affected at publication, now names online-shopping-system-advancedDays to revision 1
2023-06-19Record state changedCVE-2023-35825
whole record
mitre
stated at publication PUBLISHED, now states REJECTEDnot dated
2023-06-19published 2017-10-24Package added to advisory4 rows, one per advisory and packagemoderatenot named as affected when the advisory was published, now names actionpack and 1 morenot dated
2023-06-19published 2017-10-24same kind of change as the line aboveGHSA-v9v4-7jp6-8c73CVE-2011-2197same package registry as the line abovemoderatenot named as affected when the advisory was published, now names actionpacknot dated
2023-06-19published 2017-10-24same kind of change as the line aboveGHSA-v9v4-7jp6-8c73CVE-2011-2197same package registry as the line abovemoderatenot named as affected when the advisory was published, now names activesupportnot dated
2023-06-19published 2017-10-24same kind of change as the line aboveGHSA-8qrh-h9m2-5fvfCVE-2009-3009same package registry as the line abovemoderatenot named as affected when the advisory was published, now names actionpacknot dated
2023-06-19published 2017-10-24same kind of change as the line aboveGHSA-8qrh-h9m2-5fvfCVE-2009-3009same package registry as the line abovemoderatenot named as affected when the advisory was published, now names activesupportnot dated
Sat 17 Jun 2023· 5 record changes
2023-06-17CVSS base score changedCVE-2023-23416
whole record
microsoft
stated at publication 8.4, now states 7.8CVSS v3.1 · base scoreHighHighDays to revision 94
2023-06-17CVSS base score changedCVE-2023-24856
whole record
microsoft
stated at publication 6.5, now states 7.5CVSS v3.1 · base scoreMediumHighDays to revision 94
2023-06-17CVSS base score changedCVE-2023-24921
whole record
microsoft
stated at publication 4.1, now states 5.4CVSS v3.1 · base scoreMediumMediumDays to revision 94
2023-06-17CVSS base score changedCVE-2023-28288
whole record
microsoft
stated at publication 6.5, now states 8.1CVSS v3.1 · base scoreMediumHighDays to revision 66
2023-06-17CVSS base score changedCVE-2023-28301
whole record
microsoft
stated at publication 4.2, now states 3.7CVSS v3.1 · base scoreMediumLowDays to revision 66
Fri 16 Jun 2023· 2 record changes · 7 advisory changes
2023-06-16Product addedCVE-2023-2431not named as affected at publication, now names kubernetesDays to revision 0
2023-06-16CVSS base score changedCVE-2023-2431
whole record
kubernetes
stated at publication 6.5, now states 3.4CVSS v3.1 · base scoreMediumLowDays to revision 0
2023-06-16published 2023-06-12Advisory severity changedGHSA-3w3w-pxmm-2w2jCVE-2020-36732whole advisorymoderatestated at publication HIGH, now states MODERATENo CVSS vector was stated in the first observed version.Days to revision 5
2023-06-16published 2023-06-07Advisory severity changedGHSA-v3v9-3jf4-5pxxCVE-2023-33510whole advisoryhighstated at publication MODERATE, now states HIGHNo CVSS vector was stated in the first observed version.Days to revision 9
2023-06-16published 2023-06-06Advisory severity changedGHSA-9m3v-v4r5-ppx7CVE-2023-33957whole advisorymoderatestated at publication LOW, now states MODERATEA vector changed on a shared CVSS version. The band and vector edits may have occurred separately.Days to revision 10
2023-06-16published 2023-06-10Advisory severity changedGHSA-p7xm-g427-jxfcCVE-2023-3190whole advisorymoderatestated at publication LOW, now states MODERATECVSS versions were removed or replaced; no shared version's vector was rescored.Days to revision 6
2023-06-16published 2023-06-10Advisory severity changedGHSA-qmw8-x364-xxxmCVE-2023-3191whole advisorymoderatestated at publication HIGH, now states MODERATECVSS versions were removed or replaced; no shared version's vector was rescored.Days to revision 6
2023-06-16published 2023-06-07Advisory severity changedGHSA-c29g-q3h3-mwcfCVE-2023-33496whole advisorycriticalstated at publication MODERATE, now states CRITICALNo CVSS vector was stated in the first observed version.Days to revision 9
2023-06-16published 2023-03-14Advisory severity changedGHSA-hw7c-3rfg-p46jCVE-2023-24535whole advisoryhighstated at publication LOW, now states HIGHNo CVSS vector was stated in the first observed version.Days to revision 94
Wed 14 Jun 2023· 5 record changes · 2 advisory changes
2023-06-14Product addedCVE-2023-1709icscertnot named as affected at publication, now names library apdflDays to revision 7
2023-06-14CVSS base score changedCVE-2023-34251
whole record
GitHub_M
stated at publication 9.1, now states 10.0CVSS v3.1 · base scoreCriticalCriticalDays to revision 0
2023-06-14CVSS base score changedCVE-2023-34252
whole record
GitHub_M
stated at publication 7.2, now states 8.8CVSS v3.1 · base scoreHighHighDays to revision 0
2023-06-14CVSS base score changedCVE-2023-28069
whole record
dell
stated at publication 7.1, now states 6.1CVSS v3.1 · base scoreHighMediumDays to revision 70
2023-06-14Record state changedCVE-2023-34585
whole record
mitre
stated at publication PUBLISHED, now states REJECTEDnot dated
2023-06-14published 2023-06-09Advisory severity changedGHSA-ghqq-jfx7-f6m9CVE-2023-3172whole advisoryhighstated at publication MODERATE, now states HIGHCVSS versions were removed or replaced; no shared version's vector was rescored.Days to revision 6
2023-06-14published 2023-06-07Advisory severity changedGHSA-fqcv-rfp6-wv92CVE-2023-3142whole advisorymoderatestated at publication LOW, now states MODERATECVSS versions were removed or replaced; no shared version's vector was rescored.Days to revision 7
Tue 13 Jun 2023· 1 record change · 3 advisory changes
2023-06-13CVSS base score changedCVE-2023-24880
whole record
microsoft
stated at publication 5.4, now states 4.4CVSS v3.1 · base scoreMediumMediumDays to revision 91
2023-06-13published 2023-06-07Advisory severity changedGHSA-hh54-53m7-7ffjCVE-2023-33498whole advisoryhighstated at publication MODERATE, now states HIGHNo CVSS vector was stated in the first observed version.Days to revision 6
2023-06-13published 2021-08-25Advisory severity changedGHSA-xwxc-j97j-84gfwhole advisoryhighstated at publication MODERATE, now states HIGHNo CVSS vector was stated in the first observed version.not dated
2023-06-13published 2021-08-25Advisory severity changedGHSA-4x25-pvhw-5224CVE-2019-16143whole advisorycriticalstated at publication HIGH, now states CRITICALThe severity label changed while the stated CVSS vectors stayed the same.not dated
Mon 12 Jun 2023· 15 advisory changes
2023-06-12published 2022-05-17Package added to advisoryGHSA-95xq-v4m2-fq3rCVE-2013-4489moderatenot named as affected when the advisory was published, now names gitlab-gritDays to revision 392
2023-06-12published 2022-10-13Package added to advisoryGHSA-599f-7c49-w659CVE-2022-42889criticalnot named as affected when the advisory was published, now names com.guicedee.services:commons-textnot dated
2023-06-12published 2020-06-15Package added to advisoryGHSA-6hgm-866r-3cjvhighnot named as affected when the advisory was published, now names net.sourceforge.collections:collections-generic and 2 morenot dated
2023-06-12published 2020-06-15same kind of change as the line aboveGHSA-6hgm-866r-3cjvCVE-2015-6420same package registry as the line abovehighnot named as affected when the advisory was published, now names net.sourceforge.collections:collections-genericnot dated
2023-06-12published 2020-06-15same kind of change as the line aboveGHSA-6hgm-866r-3cjvCVE-2015-6420same package registry as the line abovehighnot named as affected when the advisory was published, now names org.apache.servicemix.bundles:org.apache.servicemix.bundles.collections-genericnot dated
2023-06-12published 2020-06-15same kind of change as the line aboveGHSA-6hgm-866r-3cjvCVE-2015-6420same package registry as the line abovehighnot named as affected when the advisory was published, now names org.apache.servicemix.bundles:org.apache.servicemix.bundles.commons-collectionsnot dated
2023-06-12published 2022-09-06Package added to advisoryGHSA-c4r9-r8fh-9vj2moderatenot named as affected when the advisory was published, now names be.cylab:snakeyaml and 5 morenot dated
2023-06-12published 2022-09-06same kind of change as the line aboveGHSA-c4r9-r8fh-9vj2CVE-2022-38749same package registry as the line abovemoderatenot named as affected when the advisory was published, now names be.cylab:snakeyamlnot dated
2023-06-12published 2022-09-06same kind of change as the line aboveGHSA-c4r9-r8fh-9vj2CVE-2022-38749same package registry as the line abovemoderatenot named as affected when the advisory was published, now names com.alipay.sofa.acts:acts-common-utilnot dated
2023-06-12published 2022-09-06same kind of change as the line aboveGHSA-c4r9-r8fh-9vj2CVE-2022-38749same package registry as the line abovemoderatenot named as affected when the advisory was published, now names io.prometheus.jmx:jmx_prometheus_httpservernot dated
2023-06-12published 2022-09-06same kind of change as the line aboveGHSA-c4r9-r8fh-9vj2CVE-2022-38749same package registry as the line abovemoderatenot named as affected when the advisory was published, now names io.prometheus.jmx:jmx_prometheus_httpserver_java6not dated
2023-06-12published 2022-09-06same kind of change as the line aboveGHSA-c4r9-r8fh-9vj2CVE-2022-38749same package registry as the line abovemoderatenot named as affected when the advisory was published, now names org.testifyproject.external:external-snakeyamlnot dated
2023-06-12published 2022-09-06same kind of change as the line aboveGHSA-c4r9-r8fh-9vj2CVE-2022-38749same package registry as the line abovemoderatenot named as affected when the advisory was published, now names pl.droidsonroids.yaml:snakeyamlnot dated
2023-06-12published 2017-10-24Package added to advisoryGHSA-75w6-p6mg-vh8jCVE-2011-0446moderatenot named as affected when the advisory was published, now names actionviewnot dated
2023-06-12published 2022-12-25Advisory severity changedGHSA-8gh8-hqwg-xf34CVE-2021-4279whole advisoryhighstated at publication MODERATE, now states HIGHNo CVSS vector was stated in the first observed version.Days to revision 169
2023-06-12published 2023-06-05 to 2023-06-06Advisory severity changedwhole advisoryhighstated at publication MODERATE, now states HIGHNo CVSS vector was stated in the first observed version.Days to revision 6 to 8
2023-06-12published 2023-06-06same kind of change as the line aboveGHSA-qcm3-vfq5-wfr2CVE-2023-31606same package and registry as the line abovehighsame change as the line aboveDays to revision 6
2023-06-12published 2023-06-05same kind of change as the line aboveGHSA-7gf7-jv65-wjmhCVE-2023-34411same package and registry as the line abovehighsame change as the line aboveDays to revision 8
Fri 9 Jun 2023· 9 advisory changes
2023-06-09published 2018-03-21Package added to advisoryGHSA-x7rv-cr6v-4vm4CVE-2018-8048moderatenot named as affected when the advisory was published, now names nokogirinot dated
2023-06-09published 2017-10-24Package added to advisory2 bandsnot named as affected when the advisory was published, now names actionpacknot dated
2023-06-09published 2017-10-24same kind of change as the line aboveGHSA-xrr4-p6fq-hjg7CVE-2016-0752same package registry as the line abovehighsame change as the line abovenot dated
2023-06-09published 2017-10-24same kind of change as the line aboveGHSA-vx9j-46rh-fqr8CVE-2016-2097same package registry as the line abovemoderatesame change as the line abovenot dated
2023-06-09published 2017-10-24same kind of change as the line aboveGHSA-m46p-ggm5-5j83CVE-2014-0081same package registry as the line abovemoderatesame change as the line abovenot dated
2023-06-09published 2017-10-24Advisory severity changedGHSA-9hx9-w2j6-rw76CVE-2013-2105whole advisorymoderatestated at publication LOW, now states MODERATEThe severity label changed while the stated CVSS vectors stayed the same.not dated
2023-06-09published 2019-03-13Advisory severity changedGHSA-m63j-wh5w-c252CVE-2019-5419whole advisoryhighstated at publication CRITICAL, now states HIGHThe severity label changed while the stated CVSS vectors stayed the same.not dated
2023-06-09published 2023-06-03Advisory severity changedGHSA-c6fv-3jm9-6r8fCVE-2023-3083whole advisoryhighstated at publication MODERATE, now states HIGHCVSS versions were removed or replaced; no shared version's vector was rescored.Days to revision 6
2023-06-09published 2023-06-01 to 2023-06-06Advisory withdrawnwhole advisory2 bandswithdrawn 2023-06-09Days to revision 3 to 9
2023-06-09published 2023-06-06same kind of change as the line aboveGHSA-wm7r-3qxj-5xgqsame package and registry as the line abovemoderatewithdrawn 2023-06-09Days to revision 3
2023-06-09published 2023-06-01same kind of change as the line aboveGHSA-qj8w-rv5x-2v9hsame package and registry as the line abovehighwithdrawn 2023-06-09Days to revision 9
Thu 8 Jun 2023· 1 record change · 2 advisory changes
2023-06-08Product addedCVE-2023-29403Gonot named as affected at publication, now names runtimeDays to revision 0
2023-06-08published 2023-05-26Advisory severity changedGHSA-xf96-w227-r7c4CVE-2023-20883whole advisoryhighstated at publication LOW, now states HIGHNo CVSS vector was stated in the first observed version.Days to revision 13
2023-06-08published 2023-06-01Advisory severity changedGHSA-qj8w-rv5x-2v9hwhole advisoryhighstated at publication MODERATE, now states HIGHNo CVSS vector was stated in the first observed version.Days to revision 7
Wed 7 Jun 2023· 1 record change · 3 advisory changes
2023-06-07CVSS base score changedCVE-2023-2909
whole record
ASUSTOR1
stated at publication 6.0, now states 8.5CVSS v3.1 · base scoreMediumHighDays to revision 7
2023-06-07published 2023-05-30Advisory severity changedGHSA-jqvr-j2vg-gjrvCVE-2023-34205whole advisorycriticalstated at publication MODERATE, now states CRITICALNo CVSS vector was stated in the first observed version.Days to revision 9
2023-06-07published 2023-05-31Advisory severity changedGHSA-h5g9-2p35-54c7CVE-2023-3009whole advisorymoderatestated at publication HIGH, now states MODERATECVSS versions were removed or replaced; no shared version's vector was rescored.Days to revision 7
2023-06-07published 2023-06-06Advisory severity changedGHSA-26c5-ppr8-f33pCVE-2023-32682whole advisorymoderatestated at publication LOW, now states MODERATENo CVSS vector was stated in the first observed version.Days to revision 1
Tue 6 Jun 2023· 2 record changes · 6 advisory changes
2023-06-06Product addedCVE-2023-22833not named as affected at publication, now names com.palantir.lime:lime2Days to revision 0
2023-06-06Record state changedCVE-2023-31508
whole record
mitre
stated at publication PUBLISHED, now states REJECTEDnot dated
2023-06-06published 2023-05-26 to 2023-05-29Advisory severity changedwhole advisoryhighstated at publication MODERATE, now states HIGHNo CVSS vector was stated in the first observed version.Days to revision 8 to 11
2023-06-06published 2023-05-29same kind of change as the line aboveGHSA-9wqr-5jp4-mjmhCVE-2023-30253same package and registry as the line abovehighsame change as the line aboveDays to revision 8
2023-06-06published 2023-05-26same kind of change as the line aboveGHSA-9mmj-64jh-ph9cCVE-2023-33779same package and registry as the line abovehighsame change as the line aboveDays to revision 11
2023-06-06published 2023-05-08Advisory severity changedGHSA-jchm-fm4q-c2fpCVE-2023-25754whole advisorycriticalstated at publication MODERATE, now states CRITICALNo CVSS vector was stated in the first observed version.Days to revision 29
2023-06-06published 2023-05-26Advisory severity changedGHSA-c892-cwq6-qrqfwhole advisorymoderatestated at publication LOW, now states MODERATENo CVSS vector was stated in the first observed version.Days to revision 11
2023-06-06published 2022-12-06 to 2023-05-12Advisory withdrawnwhole advisory2 bandswithdrawn 2023-06-06Days to revision 26 to 183
2023-06-06published 2023-05-12same kind of change as the line aboveGHSA-6mhc-hqr3-w466CVE-2023-31508same package and registry as the line abovemoderatewithdrawn 2023-06-06Days to revision 26
2023-06-06published 2022-12-06same kind of change as the line aboveGHSA-7vx2-5349-qj99CVE-2022-46464same package and registry as the line abovehighwithdrawn 2023-06-06Days to revision 183
Mon 5 Jun 2023· 3 record changes
2023-06-05Fix version moved
microsoftav1 video extension
stated at publication 1.1.51091.0, now states 1.1.60961.0Release branch starts at 1.1.0.Days to revision 27
2023-06-05same kind of change as the line aboveCVE-2023-29340same vendor as the line abovesame change as the line aboveRelease branch starts at 1.1.0.Days to revision 27
2023-06-05same kind of change as the line aboveCVE-2023-29341same vendor as the line abovesame change as the line aboveRelease branch starts at 1.1.0.Days to revision 27
2023-06-05Record state changedCVE-2023-34255
whole record
mitre
stated at publication PUBLISHED, now states REJECTEDnot dated
Sat 3 Jun 2023· 3 advisory changes
2023-06-03published 2023-05-24Advisory severity changedGHSA-w6f8-mxf5-4vf8CVE-2023-33948whole advisoryhighstated at publication MODERATE, now states HIGHA vector changed on a shared CVSS version. The band and vector edits may have occurred separately.Days to revision 9
2023-06-03published 2023-05-24Advisory severity changedwhole advisorymoderatestated at publication LOW, now states MODERATEA vector changed on a shared CVSS version. The band and vector edits may have occurred separately.Days to revision 9
2023-06-03published 2023-05-24same kind of change as the line aboveGHSA-769c-p92r-xgxjCVE-2023-33947same package and registry as the line abovemoderatesame change as the line aboveDays to revision 9
2023-06-03published 2023-05-24same kind of change as the line aboveGHSA-2868-ff44-43qvCVE-2023-33946same package and registry as the line abovemoderatesame change as the line aboveDays to revision 9

Two units, never added: changes to a CVE record or KEV entry, and changes to a GitHub advisory. Rows, not records: a moved fix version or an extended range counts once per record, product and release branch; an added product once per record and product; every other kind once per record or advisory. Days to revision is how long the value first stated stood: from the record's or advisory's publication, or from the day a KEV field value was first seen, to the first commit that replaced it. An addition to KEV has no earlier value and shows none. A collapsed line is one publisher's run of identical changes on one day; it says how many, and opens to all of them.

Data sources and quality

Not checked: A CVE record published before 2023, and a KEV listing added before 2025-01-27, were never seen changing. An absence here is not evidence that a record held.

A change shown here is a change to a public record, evidenced by a commit anyone can read in the publisher's own history. It is not an assertion of wrongdoing, negligence or bad faith by any publisher or vendor, not evidence that any fix was incomplete, and not a statement about anyone's systems.

The units, the refusals, the cut-offs and every source, in full →

Check my CVEs against these changes →