From 21732ee6f0de030ac57d923269492f56112639db Mon Sep 17 00:00:00 2001 From: DeadMan Date: Sat, 7 Feb 2026 20:41:36 -0800 Subject: [PATCH] Add missing CWE IDs to GHSA-4jqp-9qjv-57m2 The advisory summary references Missing Authentication for Critical Function (CWE-306) and Improper Authentication (CWE-287) but the cwe_ids field was empty. Added both CWEs to match the described vulnerability. --- .../2026/02/GHSA-4jqp-9qjv-57m2/GHSA-4jqp-9qjv-57m2.json | 5 ++++- 1 file changed, 4 insertions(+), 1 deletion(-) diff --git a/advisories/github-reviewed/2026/02/GHSA-4jqp-9qjv-57m2/GHSA-4jqp-9qjv-57m2.json b/advisories/github-reviewed/2026/02/GHSA-4jqp-9qjv-57m2/GHSA-4jqp-9qjv-57m2.json index 9c1dd8f2b8e21..2e2c0bd32f028 100644 --- a/advisories/github-reviewed/2026/02/GHSA-4jqp-9qjv-57m2/GHSA-4jqp-9qjv-57m2.json +++ b/advisories/github-reviewed/2026/02/GHSA-4jqp-9qjv-57m2/GHSA-4jqp-9qjv-57m2.json @@ -80,7 +80,10 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-306", + "CWE-287" + ], "severity": "CRITICAL", "github_reviewed": true, "github_reviewed_at": "2026-02-06T22:34:44Z",