Skip to content

[GHSA-gxmc-34w7-fv72] Correct CWE for CVE-2022-39949 - #9486

Open
IgorKorkin wants to merge 1 commit into
github:IgorKorkin/advisory-improvement-9486from
IgorKorkin:fix-GHSA-gxmc-34w7-fv72-cwe
Open

[GHSA-gxmc-34w7-fv72] Correct CWE for CVE-2022-39949#9486
IgorKorkin wants to merge 1 commit into
github:IgorKorkin/advisory-improvement-9486from
IgorKorkin:fix-GHSA-gxmc-34w7-fv72-cwe

Conversation

@IgorKorkin

Copy link
Copy Markdown

Problem

The current advisory description identifies CVE-2022-39949 as an
"improper control of a resource through its lifetime" vulnerability and
explicitly references CWE-664.

However, the advisory's database_specific.cwe_ids field currently contains:

CWE-404

This is inconsistent with the advisory description and the Fortinet CNA data.

Change

  • Replace CWE-404 with CWE-664.

Evidence

Scope

This pull request updates one existing public advisory only and changes
only the CWE metadata.

@github-actions
github-actions Bot changed the base branch from main to IgorKorkin/advisory-improvement-9486 September 13, 2026 19:51
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant