U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2023-50728

Change History

Initial Analysis by NIST 12/19/2023 3:43:55 PM

Action Type Old Value New Value
Added CVSS V3.1

								
							
							
						
NIST AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Added CPE Configuration

								
							
							
						
OR
     *cpe:2.3:a:octokit:app:14.0.1:*:*:*:*:node.js:*:*
     *cpe:2.3:a:octokit:octokit:*:*:*:*:*:node.js:*:* versions up to (excluding) 3.1.2
     *cpe:2.3:a:octokit:webhooks:*:*:*:*:*:node.js:*:* versions up to (excluding) 9.26.3
     *cpe:2.3:a:octokit:webhooks:*:*:*:*:*:node.js:*:* versions from (including) 10.0.0 up to (excluding) 10.9.2
     *cpe:2.3:a:octokit:webhooks:*:*:*:*:*:node.js:*:* versions from (including) 11.0.0 up to (excluding) 11.1.2
     *cpe:2.3:a:octokit:webhooks:*:*:*:*:*:node.js:*:* versions from (including) 12.0.0 up to (excluding) 12.0.4
Added CPE Configuration

								
							
							
						
OR
     *cpe:2.3:a:probot:probot:*:*:*:*:*:node.js:*:* versions up to (excluding) 12.3.3
Changed Reference Type
https://github.com/octokit/app.js/releases/tag/v14.0.2 No Types Assigned
https://github.com/octokit/app.js/releases/tag/v14.0.2 Release Notes
Changed Reference Type
https://github.com/octokit/octokit.js/releases/tag/v3.1.2 No Types Assigned
https://github.com/octokit/octokit.js/releases/tag/v3.1.2 Release Notes
Changed Reference Type
https://github.com/octokit/webhooks.js/releases/tag/v10.9.2 No Types Assigned
https://github.com/octokit/webhooks.js/releases/tag/v10.9.2 Release Notes
Changed Reference Type
https://github.com/octokit/webhooks.js/releases/tag/v11.1.2 No Types Assigned
https://github.com/octokit/webhooks.js/releases/tag/v11.1.2 Release Notes
Changed Reference Type
https://github.com/octokit/webhooks.js/releases/tag/v12.0.4 No Types Assigned
https://github.com/octokit/webhooks.js/releases/tag/v12.0.4 Release Notes
Changed Reference Type
https://github.com/octokit/webhooks.js/releases/tag/v9.26.3 No Types Assigned
https://github.com/octokit/webhooks.js/releases/tag/v9.26.3 Release Notes
Changed Reference Type
https://github.com/octokit/webhooks.js/security/advisories/GHSA-pwfr-8pq7-x9qv No Types Assigned
https://github.com/octokit/webhooks.js/security/advisories/GHSA-pwfr-8pq7-x9qv Vendor Advisory
Changed Reference Type
https://github.com/probot/probot/releases/tag/v12.3.3 No Types Assigned
https://github.com/probot/probot/releases/tag/v12.3.3 Release Notes