From 3180dca898ce331e6b69a85a824e95f4027b91ab Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Sat, 13 Aug 2022 03:14:25 +0000 Subject: [PATCH] Advisory Database Sync --- .../2017/10/GHSA-cf36-985g-v73c/GHSA-cf36-985g-v73c.json | 8 ++++---- .../2017/10/GHSA-cfjh-p3g4-3q2f/GHSA-cfjh-p3g4-3q2f.json | 8 ++++---- .../2017/10/GHSA-cj92-c4fj-w9c5/GHSA-cj92-c4fj-w9c5.json | 8 ++++---- .../2017/10/GHSA-cpjc-p7fc-j9xh/GHSA-cpjc-p7fc-j9xh.json | 8 ++++---- .../2017/10/GHSA-cqr7-78pj-3g7j/GHSA-cqr7-78pj-3g7j.json | 8 ++++---- .../2017/10/GHSA-f522-ffg8-j8r6/GHSA-f522-ffg8-j8r6.json | 8 ++++---- .../2017/10/GHSA-f7f4-5w9j-23p2/GHSA-f7f4-5w9j-23p2.json | 8 ++++---- .../2017/10/GHSA-fgmx-8h93-26fh/GHSA-fgmx-8h93-26fh.json | 8 ++++---- .../2017/10/GHSA-fhj9-cjjh-27vm/GHSA-fhj9-cjjh-27vm.json | 8 ++++---- .../2017/10/GHSA-g89m-3wjw-h857/GHSA-g89m-3wjw-h857.json | 8 ++++---- .../2017/10/GHSA-gcqq-w6gr-h9j9/GHSA-gcqq-w6gr-h9j9.json | 8 ++++---- .../2017/10/GHSA-gfjr-3jmm-4g9v/GHSA-gfjr-3jmm-4g9v.json | 8 ++++---- .../2017/10/GHSA-ghqm-pgxj-37gq/GHSA-ghqm-pgxj-37gq.json | 8 ++++---- .../2017/10/GHSA-gvcj-pfq2-wxj7/GHSA-gvcj-pfq2-wxj7.json | 8 ++++---- .../2017/10/GHSA-h5g2-38x9-4gv3/GHSA-h5g2-38x9-4gv3.json | 8 ++++---- .../2017/10/GHSA-h6w6-xmqv-7q78/GHSA-h6w6-xmqv-7q78.json | 8 ++++---- .../2017/10/GHSA-h77x-m5q8-c29h/GHSA-h77x-m5q8-c29h.json | 8 ++++---- .../2017/10/GHSA-h835-75hw-pj89/GHSA-h835-75hw-pj89.json | 8 ++++---- .../2017/10/GHSA-hgmw-x865-hf9x/GHSA-hgmw-x865-hf9x.json | 8 ++++---- .../2017/10/GHSA-hgpp-pp89-4fgf/GHSA-hgpp-pp89-4fgf.json | 8 ++++---- .../2017/10/GHSA-hjcp-j389-59ff/GHSA-hjcp-j389-59ff.json | 8 ++++---- .../2017/10/GHSA-hpcf-8vf9-q4gj/GHSA-hpcf-8vf9-q4gj.json | 8 ++++---- .../2017/10/GHSA-j24p-r6wx-r79w/GHSA-j24p-r6wx-r79w.json | 8 ++++---- .../2017/10/GHSA-j5hj-fhc9-g24m/GHSA-j5hj-fhc9-g24m.json | 8 ++++---- .../2017/10/GHSA-j838-vfpq-fmf2/GHSA-j838-vfpq-fmf2.json | 8 ++++---- .../2017/10/GHSA-jg4m-q6w8-vrjp/GHSA-jg4m-q6w8-vrjp.json | 8 ++++---- .../2017/10/GHSA-jgqf-hwc5-hh37/GHSA-jgqf-hwc5-hh37.json | 8 ++++---- .../2017/10/GHSA-jjv7-qpx3-h62q/GHSA-jjv7-qpx3-h62q.json | 8 ++++---- .../2017/10/GHSA-jmgf-p46x-982h/GHSA-jmgf-p46x-982h.json | 8 ++++---- .../2017/10/GHSA-jmgw-6vjg-jjwg/GHSA-jmgw-6vjg-jjwg.json | 8 ++++---- .../2017/10/GHSA-jmm9-2p29-vh2w/GHSA-jmm9-2p29-vh2w.json | 8 ++++---- .../2017/10/GHSA-jwhv-rgqc-fqj5/GHSA-jwhv-rgqc-fqj5.json | 8 ++++---- .../2017/10/GHSA-jxhw-mg8m-2pj8/GHSA-jxhw-mg8m-2pj8.json | 8 ++++---- .../2017/10/GHSA-m46p-ggm5-5j83/GHSA-m46p-ggm5-5j83.json | 8 ++++---- .../2017/10/GHSA-mgx3-27hr-mfgp/GHSA-mgx3-27hr-mfgp.json | 8 ++++---- .../2017/10/GHSA-mx9f-w8qq-q5jf/GHSA-mx9f-w8qq-q5jf.json | 8 ++++---- .../2017/10/GHSA-p463-639r-q9g9/GHSA-p463-639r-q9g9.json | 8 ++++---- .../2017/10/GHSA-p65m-qr5x-rrqq/GHSA-p65m-qr5x-rrqq.json | 8 ++++---- .../2017/10/GHSA-pchc-949f-53m5/GHSA-pchc-949f-53m5.json | 8 ++++---- .../2017/10/GHSA-q44r-f2hm-v76v/GHSA-q44r-f2hm-v76v.json | 8 ++++---- .../2017/10/GHSA-q5pq-pgrv-fh89/GHSA-q5pq-pgrv-fh89.json | 8 ++++---- .../2017/10/GHSA-q86f-fmqf-qrf6/GHSA-q86f-fmqf-qrf6.json | 8 ++++---- .../2017/10/GHSA-qqxp-xp9v-vvx6/GHSA-qqxp-xp9v-vvx6.json | 8 ++++---- .../2017/10/GHSA-r5hc-9xx5-97rw/GHSA-r5hc-9xx5-97rw.json | 8 ++++---- .../2017/10/GHSA-r7q2-5gqg-6c7q/GHSA-r7q2-5gqg-6c7q.json | 8 ++++---- .../2017/10/GHSA-r9c2-cr39-c8g6/GHSA-r9c2-cr39-c8g6.json | 8 ++++---- .../2017/10/GHSA-rgr4-9jh5-j4j6/GHSA-rgr4-9jh5-j4j6.json | 8 ++++---- .../2017/10/GHSA-rp63-jfmw-532w/GHSA-rp63-jfmw-532w.json | 8 ++++---- .../2017/10/GHSA-rprj-g6xc-p5gq/GHSA-rprj-g6xc-p5gq.json | 8 ++++---- .../2017/10/GHSA-v2r9-c84j-v7xm/GHSA-v2r9-c84j-v7xm.json | 8 ++++---- .../2017/10/GHSA-v3rr-cph9-2g2q/GHSA-v3rr-cph9-2g2q.json | 8 ++++---- .../2017/10/GHSA-v5jg-558j-q67c/GHSA-v5jg-558j-q67c.json | 8 ++++---- .../2017/10/GHSA-v633-x5vv-hqwc/GHSA-v633-x5vv-hqwc.json | 8 ++++---- .../2017/10/GHSA-v9v4-7jp6-8c73/GHSA-v9v4-7jp6-8c73.json | 8 ++++---- .../2017/10/GHSA-vxf6-w9mp-95hm/GHSA-vxf6-w9mp-95hm.json | 8 ++++---- .../2017/10/GHSA-w37c-q653-qg95/GHSA-w37c-q653-qg95.json | 8 ++++---- .../2017/10/GHSA-w3w8-37jv-2c58/GHSA-w3w8-37jv-2c58.json | 8 ++++---- .../2017/10/GHSA-wcm2-9c89-wmfm/GHSA-wcm2-9c89-wmfm.json | 8 ++++---- .../2017/10/GHSA-wpw7-wxjm-cw8r/GHSA-wpw7-wxjm-cw8r.json | 8 ++++---- .../2017/10/GHSA-xf96-32q2-9rw2/GHSA-xf96-32q2-9rw2.json | 8 ++++---- .../2017/10/GHSA-xqg8-cv3h-xppv/GHSA-xqg8-cv3h-xppv.json | 8 ++++---- .../2017/10/GHSA-xwg4-93c6-3h42/GHSA-xwg4-93c6-3h42.json | 8 ++++---- .../2017/10/GHSA-xxr8-833v-c7wc/GHSA-xxr8-833v-c7wc.json | 8 ++++---- .../2017/11/GHSA-hwcf-pp87-7x6p/GHSA-hwcf-pp87-7x6p.json | 8 ++++---- .../2017/11/GHSA-pjj4-w39g-pw54/GHSA-pjj4-w39g-pw54.json | 8 ++++---- .../2017/11/GHSA-q97v-764g-r2rp/GHSA-q97v-764g-r2rp.json | 8 ++++---- .../2017/11/GHSA-wmjf-jpjj-9f3j/GHSA-wmjf-jpjj-9f3j.json | 8 ++++---- .../2017/11/GHSA-wwh7-4jw9-33x6/GHSA-wwh7-4jw9-33x6.json | 8 ++++---- .../2017/11/GHSA-x7p2-x2j6-mwhr/GHSA-x7p2-x2j6-mwhr.json | 8 ++++---- .../2017/12/GHSA-h9mj-fghc-664w/GHSA-h9mj-fghc-664w.json | 8 ++++---- .../2017/12/GHSA-pm9p-9926-w68m/GHSA-pm9p-9926-w68m.json | 8 ++++---- .../2018/01/GHSA-m7p8-9w66-9frm/GHSA-m7p8-9w66-9frm.json | 8 ++++---- .../2018/01/GHSA-mvw8-v767-qhjm/GHSA-mvw8-v767-qhjm.json | 8 ++++---- .../2018/01/GHSA-rmxg-73gg-4p98/GHSA-rmxg-73gg-4p98.json | 8 ++++---- .../2018/03/GHSA-h6rj-8r3c-9gpj/GHSA-h6rj-8r3c-9gpj.json | 8 ++++---- .../2018/03/GHSA-hwhh-2fwm-cfgw/GHSA-hwhh-2fwm-cfgw.json | 8 ++++---- .../2018/03/GHSA-wfwm-chj7-w59r/GHSA-wfwm-chj7-w59r.json | 8 ++++---- .../2018/03/GHSA-x7rv-cr6v-4vm4/GHSA-x7rv-cr6v-4vm4.json | 8 ++++---- .../2018/04/GHSA-vpch-rxw3-fgx8/GHSA-vpch-rxw3-fgx8.json | 8 ++++---- .../2018/05/GHSA-gvpx-9459-w3mj/GHSA-gvpx-9459-w3mj.json | 8 ++++---- .../2018/07/GHSA-fwr5-q9rx-294f/GHSA-fwr5-q9rx-294f.json | 8 ++++---- .../2018/07/GHSA-fxpg-gg9g-76gj/GHSA-fxpg-gg9g-76gj.json | 8 ++++---- .../2018/07/GHSA-g7j3-p357-cw8p/GHSA-g7j3-p357-cw8p.json | 8 ++++---- .../2018/07/GHSA-g7q5-pjjr-gqvp/GHSA-g7q5-pjjr-gqvp.json | 8 ++++---- .../2018/07/GHSA-gcr6-rf47-jrgf/GHSA-gcr6-rf47-jrgf.json | 8 ++++---- .../2018/07/GHSA-h6hq-c896-w882/GHSA-h6hq-c896-w882.json | 8 ++++---- .../2018/07/GHSA-h95j-h2rv-qrg4/GHSA-h95j-h2rv-qrg4.json | 8 ++++---- .../2018/07/GHSA-hggx-3h72-49ww/GHSA-hggx-3h72-49ww.json | 8 ++++---- .../2018/07/GHSA-hvr8-466p-75rh/GHSA-hvr8-466p-75rh.json | 8 ++++---- .../2018/07/GHSA-hxf9-7h4c-f5jv/GHSA-hxf9-7h4c-f5jv.json | 8 ++++---- .../2018/07/GHSA-hxxf-q3w9-4xgw/GHSA-hxxf-q3w9-4xgw.json | 8 ++++---- .../2018/07/GHSA-jcpv-g9rr-qxrc/GHSA-jcpv-g9rr-qxrc.json | 8 ++++---- .../2018/07/GHSA-mj4x-wcxf-hm8x/GHSA-mj4x-wcxf-hm8x.json | 8 ++++---- .../2018/07/GHSA-mm62-wxc8-cf7m/GHSA-mm62-wxc8-cf7m.json | 8 ++++---- .../2018/07/GHSA-p6h9-gw49-rqm4/GHSA-p6h9-gw49-rqm4.json | 8 ++++---- .../2018/07/GHSA-p7xc-35m8-57pr/GHSA-p7xc-35m8-57pr.json | 8 ++++---- .../2018/07/GHSA-pcwm-8jc3-qxvj/GHSA-pcwm-8jc3-qxvj.json | 8 ++++---- .../2018/07/GHSA-prr5-pfr8-q9f3/GHSA-prr5-pfr8-q9f3.json | 8 ++++---- .../2018/07/GHSA-pvhp-v9qp-xf5r/GHSA-pvhp-v9qp-xf5r.json | 8 ++++---- .../2018/07/GHSA-r38r-qp28-2m63/GHSA-r38r-qp28-2m63.json | 8 ++++---- .../2018/07/GHSA-rwr3-c2q8-gm56/GHSA-rwr3-c2q8-gm56.json | 8 ++++---- .../2018/07/GHSA-vcqg-cmv3-wj57/GHSA-vcqg-cmv3-wj57.json | 8 ++++---- .../2018/07/GHSA-w4vg-rf63-f3j3/GHSA-w4vg-rf63-f3j3.json | 8 ++++---- .../2018/07/GHSA-x88j-93vc-wpmp/GHSA-x88j-93vc-wpmp.json | 8 ++++---- .../2018/07/GHSA-xpm8-98mx-h4c5/GHSA-xpm8-98mx-h4c5.json | 8 ++++---- .../2018/08/GHSA-cqxw-3p7v-p9gr/GHSA-cqxw-3p7v-p9gr.json | 8 ++++---- .../2018/08/GHSA-gf7h-vg5v-cch6/GHSA-gf7h-vg5v-cch6.json | 8 ++++---- .../2018/08/GHSA-hg4c-rgvm-964g/GHSA-hg4c-rgvm-964g.json | 8 ++++---- .../2018/08/GHSA-hgg3-g7gr-66r7/GHSA-hgg3-g7gr-66r7.json | 8 ++++---- .../2018/08/GHSA-m2q3-53fq-7h66/GHSA-m2q3-53fq-7h66.json | 8 ++++---- .../2018/08/GHSA-mf6w-45cf-qhmp/GHSA-mf6w-45cf-qhmp.json | 8 ++++---- .../2018/08/GHSA-vcfp-ppqw-mf23/GHSA-vcfp-ppqw-mf23.json | 8 ++++---- .../2018/08/GHSA-x489-jjwm-52g7/GHSA-x489-jjwm-52g7.json | 8 ++++---- .../2018/08/GHSA-x7q3-67vc-wvcf/GHSA-x7q3-67vc-wvcf.json | 8 ++++---- .../2018/08/GHSA-xrr4-74mc-rpjc/GHSA-xrr4-74mc-rpjc.json | 8 ++++---- .../2018/09/GHSA-fpcv-j2q9-vqhw/GHSA-fpcv-j2q9-vqhw.json | 8 ++++---- .../2018/09/GHSA-fpwp-69xv-c67f/GHSA-fpwp-69xv-c67f.json | 8 ++++---- .../2018/09/GHSA-h6h9-pphv-m266/GHSA-h6h9-pphv-m266.json | 8 ++++---- .../2018/09/GHSA-pp57-mqmh-44h7/GHSA-pp57-mqmh-44h7.json | 8 ++++---- .../2018/09/GHSA-rq8g-5pc5-wrhr/GHSA-rq8g-5pc5-wrhr.json | 8 ++++---- .../2018/09/GHSA-vqcq-mrmw-mcmg/GHSA-vqcq-mrmw-mcmg.json | 8 ++++---- .../2018/10/GHSA-cf3c-fffp-34qh/GHSA-cf3c-fffp-34qh.json | 8 ++++---- .../2018/10/GHSA-cvj4-g3gx-8vqq/GHSA-cvj4-g3gx-8vqq.json | 8 ++++---- .../2018/10/GHSA-f2j6-wrhh-v25m/GHSA-f2j6-wrhh-v25m.json | 8 ++++---- .../2018/10/GHSA-fjqm-246c-mwqg/GHSA-fjqm-246c-mwqg.json | 8 ++++---- .../2018/10/GHSA-fxwv-953p-7qpf/GHSA-fxwv-953p-7qpf.json | 8 ++++---- .../2018/10/GHSA-g556-x5vx-qh59/GHSA-g556-x5vx-qh59.json | 8 ++++---- .../2018/10/GHSA-gr4c-5rq6-cgh3/GHSA-gr4c-5rq6-cgh3.json | 8 ++++---- .../2018/10/GHSA-h39x-m55c-v55h/GHSA-h39x-m55c-v55h.json | 8 ++++---- .../2018/10/GHSA-h3wv-47xm-4mg6/GHSA-h3wv-47xm-4mg6.json | 8 ++++---- .../2018/10/GHSA-h8q5-g2cj-qr5h/GHSA-h8q5-g2cj-qr5h.json | 8 ++++---- .../2018/10/GHSA-hvpr-9cr6-q5v7/GHSA-hvpr-9cr6-q5v7.json | 8 ++++---- .../2018/10/GHSA-j53j-gmr9-h8g3/GHSA-j53j-gmr9-h8g3.json | 8 ++++---- .../2018/10/GHSA-jc7r-v6fg-2gpf/GHSA-jc7r-v6fg-2gpf.json | 8 ++++---- .../2018/10/GHSA-jg4f-jqm5-4mgq/GHSA-jg4f-jqm5-4mgq.json | 8 ++++---- .../2018/10/GHSA-jwcc-j78w-j73w/GHSA-jwcc-j78w-j73w.json | 8 ++++---- .../2018/10/GHSA-mh7g-99w9-xpjm/GHSA-mh7g-99w9-xpjm.json | 8 ++++---- .../2018/10/GHSA-p28m-34f6-967q/GHSA-p28m-34f6-967q.json | 8 ++++---- .../2018/10/GHSA-p8ww-vv84-c2rm/GHSA-p8ww-vv84-c2rm.json | 8 ++++---- .../2018/10/GHSA-q25j-gcmv-5qpp/GHSA-q25j-gcmv-5qpp.json | 8 ++++---- .../2018/10/GHSA-q7pf-qr96-2vq5/GHSA-q7pf-qr96-2vq5.json | 8 ++++---- .../2018/10/GHSA-qcj7-g2j5-g7r3/GHSA-qcj7-g2j5-g7r3.json | 8 ++++---- .../2018/10/GHSA-qhv9-728r-6jqg/GHSA-qhv9-728r-6jqg.json | 8 ++++---- .../2018/10/GHSA-qvxv-pmq9-4q7g/GHSA-qvxv-pmq9-4q7g.json | 8 ++++---- .../2018/10/GHSA-qw8w-2xcp-xg59/GHSA-qw8w-2xcp-xg59.json | 8 ++++---- .../2018/10/GHSA-qw93-45r3-p66p/GHSA-qw93-45r3-p66p.json | 8 ++++---- .../2018/10/GHSA-qw96-mm2g-c8m7/GHSA-qw96-mm2g-c8m7.json | 8 ++++---- .../2018/10/GHSA-qxxx-2pp7-5hmx/GHSA-qxxx-2pp7-5hmx.json | 8 ++++---- .../2018/10/GHSA-r97x-3g8f-gx3m/GHSA-r97x-3g8f-gx3m.json | 8 ++++---- .../2018/10/GHSA-r9ch-m4fh-fc7q/GHSA-r9ch-m4fh-fc7q.json | 8 ++++---- .../2018/10/GHSA-rf4j-j272-fj86/GHSA-rf4j-j272-fj86.json | 8 ++++---- .../2018/10/GHSA-rrvx-pwf8-p59p/GHSA-rrvx-pwf8-p59p.json | 8 ++++---- .../2018/10/GHSA-v6wr-fch2-vm5w/GHSA-v6wr-fch2-vm5w.json | 8 ++++---- .../2018/10/GHSA-vgvf-9jh3-fg75/GHSA-vgvf-9jh3-fg75.json | 8 ++++---- .../2018/10/GHSA-w285-wf9q-5w69/GHSA-w285-wf9q-5w69.json | 8 ++++---- .../2018/10/GHSA-xjrr-xv9m-4pw5/GHSA-xjrr-xv9m-4pw5.json | 8 ++++---- .../2018/10/GHSA-xm6r-4466-mr74/GHSA-xm6r-4466-mr74.json | 8 ++++---- .../2018/11/GHSA-qv2v-m59f-v5fw/GHSA-qv2v-m59f-v5fw.json | 8 ++++---- .../2018/11/GHSA-r3vr-prwv-86g9/GHSA-r3vr-prwv-86g9.json | 8 ++++---- .../2018/11/GHSA-vqgp-4jgj-5j64/GHSA-vqgp-4jgj-5j64.json | 8 ++++---- .../2018/11/GHSA-vxp9-wv2f-wqmw/GHSA-vxp9-wv2f-wqmw.json | 8 ++++---- .../2018/12/GHSA-cq27-v7xp-c356/GHSA-cq27-v7xp-c356.json | 8 ++++---- .../2018/12/GHSA-gfv6-cj92-g3hx/GHSA-gfv6-cj92-g3hx.json | 8 ++++---- .../2018/12/GHSA-h4x4-5qp2-wp46/GHSA-h4x4-5qp2-wp46.json | 8 ++++---- .../2018/12/GHSA-j5rj-g695-342r/GHSA-j5rj-g695-342r.json | 8 ++++---- .../2018/12/GHSA-p69g-f978-xxv9/GHSA-p69g-f978-xxv9.json | 8 ++++---- .../2018/12/GHSA-vwr2-wj63-86gr/GHSA-vwr2-wj63-86gr.json | 8 ++++---- .../2018/12/GHSA-xmvg-w4f9-99r7/GHSA-xmvg-w4f9-99r7.json | 8 ++++---- .../2019/01/GHSA-cf66-xwfp-gvc4/GHSA-cf66-xwfp-gvc4.json | 8 ++++---- .../2019/01/GHSA-h4hv-m4h4-mhwg/GHSA-h4hv-m4h4-mhwg.json | 8 ++++---- .../2019/01/GHSA-j87c-cj65-vmh5/GHSA-j87c-cj65-vmh5.json | 8 ++++---- .../2019/01/GHSA-j88m-953w-8r2c/GHSA-j88m-953w-8r2c.json | 8 ++++---- .../2019/01/GHSA-m9mq-p2f9-cfqv/GHSA-m9mq-p2f9-cfqv.json | 8 ++++---- .../2019/01/GHSA-q485-j897-qc27/GHSA-q485-j897-qc27.json | 8 ++++---- .../2019/01/GHSA-r28v-mw67-m5p9/GHSA-r28v-mw67-m5p9.json | 8 ++++---- .../2019/01/GHSA-wjxj-f8rg-99wx/GHSA-wjxj-f8rg-99wx.json | 8 ++++---- .../2019/01/GHSA-xvwv-6wvx-px9x/GHSA-xvwv-6wvx-px9x.json | 8 ++++---- .../2019/02/GHSA-cr79-9pwf-r6f5/GHSA-cr79-9pwf-r6f5.json | 8 ++++---- .../2019/02/GHSA-g2pf-qjgf-6fw3/GHSA-g2pf-qjgf-6fw3.json | 8 ++++---- .../2019/02/GHSA-g785-775g-f2g8/GHSA-g785-775g-f2g8.json | 8 ++++---- .../2019/02/GHSA-mg8r-9g6j-hwv9/GHSA-mg8r-9g6j-hwv9.json | 8 ++++---- .../2019/02/GHSA-mgr2-3mpv-43gc/GHSA-mgr2-3mpv-43gc.json | 8 ++++---- .../2019/02/GHSA-pjxw-22xf-6pwc/GHSA-pjxw-22xf-6pwc.json | 8 ++++---- .../2019/02/GHSA-rv95-4wxj-6fqq/GHSA-rv95-4wxj-6fqq.json | 8 ++++---- .../2019/02/GHSA-vqmr-957g-r7w3/GHSA-vqmr-957g-r7w3.json | 8 ++++---- .../2019/02/GHSA-wh4h-v3f2-r2pp/GHSA-wh4h-v3f2-r2pp.json | 8 ++++---- .../2019/02/GHSA-xwjh-cp99-cj8q/GHSA-xwjh-cp99-cj8q.json | 6 +----- .../2019/03/GHSA-fx7m-j728-mjw3/GHSA-fx7m-j728-mjw3.json | 8 ++++---- .../2019/03/GHSA-gp32-7h29-rpxm/GHSA-gp32-7h29-rpxm.json | 8 ++++---- .../2019/03/GHSA-vv4c-g6q7-p3q7/GHSA-vv4c-g6q7-p3q7.json | 8 ++++---- .../2019/03/GHSA-xmc8-cjfr-phx3/GHSA-xmc8-cjfr-phx3.json | 8 ++++---- .../2019/04/GHSA-hj2j-77xm-mc5v/GHSA-hj2j-77xm-mc5v.json | 8 ++++---- .../2019/04/GHSA-qj3f-9gmq-fwv5/GHSA-qj3f-9gmq-fwv5.json | 8 ++++---- .../2019/04/GHSA-rcx2-m7jp-p9wj/GHSA-rcx2-m7jp-p9wj.json | 8 ++++---- .../2019/04/GHSA-rg3q-jxmp-pvjj/GHSA-rg3q-jxmp-pvjj.json | 8 ++++---- .../2019/04/GHSA-rv62-4pmj-xw6h/GHSA-rv62-4pmj-xw6h.json | 8 ++++---- .../2019/04/GHSA-vqqv-v9m2-48p2/GHSA-vqqv-v9m2-48p2.json | 8 ++++---- .../2019/04/GHSA-w6j4-3gh2-9f5j/GHSA-w6j4-3gh2-9f5j.json | 8 ++++---- .../2019/07/GHSA-p3w6-jcg4-52xh/GHSA-p3w6-jcg4-52xh.json | 8 ++++---- .../2019/09/GHSA-mc84-xr9p-938r/GHSA-mc84-xr9p-938r.json | 8 ++++---- .../2019/09/GHSA-v6cj-r88p-92rm/GHSA-v6cj-r88p-92rm.json | 8 ++++---- .../2019/09/GHSA-vf23-f26f-mjj9/GHSA-vf23-f26f-mjj9.json | 8 ++++---- .../2019/10/GHSA-mvqp-q37c-wf9j/GHSA-mvqp-q37c-wf9j.json | 8 ++++---- .../2019/12/GHSA-m6cx-g6qm-p2cx/GHSA-m6cx-g6qm-p2cx.json | 8 ++++---- .../2020/06/GHSA-7hwc-46rm-65jh/GHSA-7hwc-46rm-65jh.json | 8 ++++---- .../2020/06/GHSA-9959-6p3m-wxpc/GHSA-9959-6p3m-wxpc.json | 8 ++++---- .../2020/06/GHSA-c265-37vj-cwcc/GHSA-c265-37vj-cwcc.json | 8 ++++---- .../2020/06/GHSA-c2q3-4qrh-fm48/GHSA-c2q3-4qrh-fm48.json | 8 ++++---- .../2020/06/GHSA-g753-jx37-7xwh/GHSA-g753-jx37-7xwh.json | 8 ++++---- .../2020/06/GHSA-j823-4qch-3rgm/GHSA-j823-4qch-3rgm.json | 8 ++++---- .../2020/06/GHSA-mc6h-4qgp-37qh/GHSA-mc6h-4qgp-37qh.json | 8 ++++---- .../2020/06/GHSA-mhp6-pxh8-r675/GHSA-mhp6-pxh8-r675.json | 8 ++++---- .../2020/06/GHSA-p8c3-7rj8-q963/GHSA-p8c3-7rj8-q963.json | 8 ++++---- .../2020/06/GHSA-q3gh-5r98-j4h3/GHSA-q3gh-5r98-j4h3.json | 8 ++++---- .../2020/06/GHSA-rgh3-987h-wpmw/GHSA-rgh3-987h-wpmw.json | 8 ++++---- .../2020/06/GHSA-v4rh-8p82-6h5w/GHSA-v4rh-8p82-6h5w.json | 8 ++++---- .../2020/06/GHSA-w3f4-3q6j-rh82/GHSA-w3f4-3q6j-rh82.json | 8 ++++---- .../2020/06/GHSA-xfv3-rrfm-f2rv/GHSA-xfv3-rrfm-f2rv.json | 8 ++++---- .../2020/06/GHSA-xxxq-chmp-67g4/GHSA-xxxq-chmp-67g4.json | 8 ++++---- .../2020/07/GHSA-2v5c-755p-p4gv/GHSA-2v5c-755p-p4gv.json | 8 ++++---- .../2020/07/GHSA-3x94-fv5h-5q2c/GHSA-3x94-fv5h-5q2c.json | 8 ++++---- .../2020/07/GHSA-43fq-w8qq-v88h/GHSA-43fq-w8qq-v88h.json | 8 ++++---- .../2020/07/GHSA-43jj-2rwc-2m3f/GHSA-43jj-2rwc-2m3f.json | 8 ++++---- .../2020/07/GHSA-5f9h-9pjv-v6j7/GHSA-5f9h-9pjv-v6j7.json | 8 ++++---- .../2020/07/GHSA-7hmh-8gwv-mfvq/GHSA-7hmh-8gwv-mfvq.json | 8 ++++---- .../2020/07/GHSA-7xcx-6wjh-7xp2/GHSA-7xcx-6wjh-7xp2.json | 8 ++++---- .../2020/07/GHSA-8843-m7mw-mxqm/GHSA-8843-m7mw-mxqm.json | 8 ++++---- .../2020/07/GHSA-9h4g-27m8-qjrg/GHSA-9h4g-27m8-qjrg.json | 6 +----- .../2020/07/GHSA-9qcf-c26r-x5rf/GHSA-9qcf-c26r-x5rf.json | 8 ++++---- .../2020/07/GHSA-cqhg-xjhh-p8hf/GHSA-cqhg-xjhh-p8hf.json | 8 ++++---- .../2020/07/GHSA-f7f4-hqp2-7prc/GHSA-f7f4-hqp2-7prc.json | 8 ++++---- .../2020/07/GHSA-f97h-2pfx-f59f/GHSA-f97h-2pfx-f59f.json | 6 +----- .../2020/07/GHSA-fpqv-x9hm-35j9/GHSA-fpqv-x9hm-35j9.json | 8 ++++---- .../2020/07/GHSA-gm9x-q798-hmr4/GHSA-gm9x-q798-hmr4.json | 8 ++++---- .../2020/07/GHSA-gprm-xqrc-c2j3/GHSA-gprm-xqrc-c2j3.json | 8 ++++---- .../2020/07/GHSA-jmqm-f2gx-4fjv/GHSA-jmqm-f2gx-4fjv.json | 8 ++++---- .../2020/07/GHSA-jphg-qwrw-7w9g/GHSA-jphg-qwrw-7w9g.json | 8 ++++---- .../2020/07/GHSA-m5vr-3m74-jwxp/GHSA-m5vr-3m74-jwxp.json | 8 ++++---- .../2020/07/GHSA-p6mc-m468-83gw/GHSA-p6mc-m468-83gw.json | 8 ++++---- .../2020/07/GHSA-vc9j-fhvv-8vrf/GHSA-vc9j-fhvv-8vrf.json | 8 ++++---- .../2020/07/GHSA-vh7m-p724-62c2/GHSA-vh7m-p724-62c2.json | 8 ++++---- .../2020/07/GHSA-vj42-xq3r-hr3r/GHSA-vj42-xq3r-hr3r.json | 8 ++++---- .../2020/07/GHSA-wwgf-3xp7-cxj4/GHSA-wwgf-3xp7-cxj4.json | 8 ++++---- .../2020/08/GHSA-2828-9vh6-9m6j/GHSA-2828-9vh6-9m6j.json | 8 ++++---- .../2020/08/GHSA-28gr-86hg-r48w/GHSA-28gr-86hg-r48w.json | 8 ++++---- .../2020/08/GHSA-363h-vj6q-3cmj/GHSA-363h-vj6q-3cmj.json | 8 ++++---- .../2020/08/GHSA-3j95-fjv2-3m4p/GHSA-3j95-fjv2-3m4p.json | 6 +----- .../2020/08/GHSA-3mvg-rrrw-m7ph/GHSA-3mvg-rrrw-m7ph.json | 8 ++++---- .../2020/08/GHSA-49rv-g7w5-m8xx/GHSA-49rv-g7w5-m8xx.json | 8 ++++---- .../2020/08/GHSA-5cp4-xmrw-59wf/GHSA-5cp4-xmrw-59wf.json | 8 ++++---- .../2020/08/GHSA-6898-wx94-8jq8/GHSA-6898-wx94-8jq8.json | 8 ++++---- .../2020/08/GHSA-69rr-wvh9-6c4q/GHSA-69rr-wvh9-6c4q.json | 6 +----- .../2020/08/GHSA-82mg-x548-gq3j/GHSA-82mg-x548-gq3j.json | 8 ++++---- .../2020/08/GHSA-86qr-9vqc-pgc6/GHSA-86qr-9vqc-pgc6.json | 8 ++++---- .../2020/08/GHSA-9vxc-g2jx-qj3p/GHSA-9vxc-g2jx-qj3p.json | 8 ++++---- .../2020/08/GHSA-9wcg-jrwf-8gg7/GHSA-9wcg-jrwf-8gg7.json | 8 ++++---- .../2020/08/GHSA-9x4c-63pf-525f/GHSA-9x4c-63pf-525f.json | 8 ++++---- .../2020/08/GHSA-c3x7-gjmx-r2ff/GHSA-c3x7-gjmx-r2ff.json | 8 ++++---- .../2020/08/GHSA-cf8j-64h9-6q58/GHSA-cf8j-64h9-6q58.json | 8 ++++---- .../2020/08/GHSA-crf2-xm6x-46p6/GHSA-crf2-xm6x-46p6.json | 8 ++++---- .../2020/08/GHSA-f5w6-r7rg-mcgq/GHSA-f5w6-r7rg-mcgq.json | 8 ++++---- .../2020/08/GHSA-f93j-hmcr-jcwh/GHSA-f93j-hmcr-jcwh.json | 8 ++++---- .../2020/08/GHSA-gr4j-r575-g665/GHSA-gr4j-r575-g665.json | 8 ++++---- .../2020/08/GHSA-h698-r4hm-w94p/GHSA-h698-r4hm-w94p.json | 8 ++++---- .../2020/08/GHSA-j7wp-vjj6-cp5m/GHSA-j7wp-vjj6-cp5m.json | 6 +----- .../2020/08/GHSA-m75h-cghq-c8h5/GHSA-m75h-cghq-c8h5.json | 8 ++++---- .../2020/08/GHSA-mqm2-cgpr-p4m6/GHSA-mqm2-cgpr-p4m6.json | 8 ++++---- .../2020/08/GHSA-q6j3-c4wc-63vw/GHSA-q6j3-c4wc-63vw.json | 8 ++++---- .../2020/08/GHSA-v6fx-752r-ccp2/GHSA-v6fx-752r-ccp2.json | 8 ++++---- .../2020/08/GHSA-vjfr-p6hp-jqqw/GHSA-vjfr-p6hp-jqqw.json | 8 ++++---- .../2020/08/GHSA-w542-cpp9-r3g7/GHSA-w542-cpp9-r3g7.json | 8 ++++---- .../2020/08/GHSA-whrh-9j4q-g7ph/GHSA-whrh-9j4q-g7ph.json | 8 ++++---- .../2020/09/GHSA-46m8-42hm-wvvw/GHSA-46m8-42hm-wvvw.json | 8 ++++---- .../2020/09/GHSA-4v9q-hm2p-68c4/GHSA-4v9q-hm2p-68c4.json | 8 ++++---- .../2020/09/GHSA-5v9h-q3gj-c32x/GHSA-5v9h-q3gj-c32x.json | 8 ++++---- .../2020/09/GHSA-63m4-fhf2-cmf7/GHSA-63m4-fhf2-cmf7.json | 8 ++++---- .../2020/09/GHSA-7f59-x49p-v8mq/GHSA-7f59-x49p-v8mq.json | 8 ++++---- .../2020/09/GHSA-c7pp-g2v2-2766/GHSA-c7pp-g2v2-2766.json | 8 ++++---- .../2020/09/GHSA-cjj8-wfrx-jqcf/GHSA-cjj8-wfrx-jqcf.json | 8 ++++---- .../2020/09/GHSA-g336-c7wv-8hp3/GHSA-g336-c7wv-8hp3.json | 8 ++++---- .../2020/09/GHSA-gg6m-fhqv-hg56/GHSA-gg6m-fhqv-hg56.json | 8 ++++---- .../2020/09/GHSA-gjcw-v447-2w7q/GHSA-gjcw-v447-2w7q.json | 8 ++++---- .../2020/09/GHSA-gjhx-gxwx-jx9j/GHSA-gjhx-gxwx-jx9j.json | 8 ++++---- .../2020/09/GHSA-gvg7-pp82-cff3/GHSA-gvg7-pp82-cff3.json | 8 ++++---- .../2020/09/GHSA-hg78-c92r-hvwr/GHSA-hg78-c92r-hvwr.json | 8 ++++---- .../2020/09/GHSA-mrx7-8hxf-f853/GHSA-mrx7-8hxf-f853.json | 8 ++++---- .../2020/09/GHSA-p239-93f7-h6xf/GHSA-p239-93f7-h6xf.json | 8 ++++---- .../2020/09/GHSA-pjh3-jv7w-9jpr/GHSA-pjh3-jv7w-9jpr.json | 8 ++++---- .../2020/09/GHSA-r87w-47m8-22w3/GHSA-r87w-47m8-22w3.json | 8 ++++---- .../2020/09/GHSA-v2jq-9475-r5g8/GHSA-v2jq-9475-r5g8.json | 8 ++++---- .../2020/09/GHSA-v3jv-wrf4-5845/GHSA-v3jv-wrf4-5845.json | 8 ++++---- .../2020/09/GHSA-v5hp-35hw-cw5x/GHSA-v5hp-35hw-cw5x.json | 8 ++++---- 292 files changed, 1150 insertions(+), 1174 deletions(-) diff --git a/advisories/github-reviewed/2017/10/GHSA-cf36-985g-v73c/GHSA-cf36-985g-v73c.json b/advisories/github-reviewed/2017/10/GHSA-cf36-985g-v73c/GHSA-cf36-985g-v73c.json index 903b0a4e4a7..961da15e79d 100644 --- a/advisories/github-reviewed/2017/10/GHSA-cf36-985g-v73c/GHSA-cf36-985g-v73c.json +++ b/advisories/github-reviewed/2017/10/GHSA-cf36-985g-v73c/GHSA-cf36-985g-v73c.json @@ -45,6 +45,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-cf36-985g-v73c" }, + { + "type": "PACKAGE", + "url": "https://github.com/mkdynamic/omniauth-faceboo" + }, { "type": "WEB", "url": "https://groups.google.com/d/msg/ruby-security-ann/-tJHNlTiPh4/9SJxdEWLIawJ" @@ -64,10 +68,6 @@ { "type": "WEB", "url": "http://www.osvdb.org/99693" - }, - { - "type": "PACKAGE", - "url": "https://github.com/mkdynamic/omniauth-faceboo" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-cfjh-p3g4-3q2f/GHSA-cfjh-p3g4-3q2f.json b/advisories/github-reviewed/2017/10/GHSA-cfjh-p3g4-3q2f/GHSA-cfjh-p3g4-3q2f.json index 667f550bc58..de0e3df9aa1 100644 --- a/advisories/github-reviewed/2017/10/GHSA-cfjh-p3g4-3q2f/GHSA-cfjh-p3g4-3q2f.json +++ b/advisories/github-reviewed/2017/10/GHSA-cfjh-p3g4-3q2f/GHSA-cfjh-p3g4-3q2f.json @@ -53,6 +53,10 @@ "type": "WEB", "url": "https://github.com/markedjs/marked/commit/fc372d1c6293267722e33f2719d57cebd67b3da1" }, + { + "type": "PACKAGE", + "url": "https://github.com/markedjs/marked" + }, { "type": "WEB", "url": "https://nodesecurity.io/advisories/marked_vbscript_injection" @@ -68,10 +72,6 @@ { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2015/01/23/2" - }, - { - "type": "PACKAGE", - "url": "https://github.com/markedjs/marked" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-cj92-c4fj-w9c5/GHSA-cj92-c4fj-w9c5.json b/advisories/github-reviewed/2017/10/GHSA-cj92-c4fj-w9c5/GHSA-cj92-c4fj-w9c5.json index 04714c03dba..47477e74970 100644 --- a/advisories/github-reviewed/2017/10/GHSA-cj92-c4fj-w9c5/GHSA-cj92-c4fj-w9c5.json +++ b/advisories/github-reviewed/2017/10/GHSA-cj92-c4fj-w9c5/GHSA-cj92-c4fj-w9c5.json @@ -53,6 +53,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-cj92-c4fj-w9c5" }, + { + "type": "PACKAGE", + "url": "https://github.com/mikel/mail" + }, { "type": "WEB", "url": "http://lists.fedoraproject.org/pipermail/package-announce/2012-May/080645.html" @@ -76,10 +80,6 @@ { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2012/04/26/1" - }, - { - "type": "PACKAGE", - "url": "https://github.com/mikel/mail" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-cpjc-p7fc-j9xh/GHSA-cpjc-p7fc-j9xh.json b/advisories/github-reviewed/2017/10/GHSA-cpjc-p7fc-j9xh/GHSA-cpjc-p7fc-j9xh.json index f931eef8c9d..42efca72c73 100644 --- a/advisories/github-reviewed/2017/10/GHSA-cpjc-p7fc-j9xh/GHSA-cpjc-p7fc-j9xh.json +++ b/advisories/github-reviewed/2017/10/GHSA-cpjc-p7fc-j9xh/GHSA-cpjc-p7fc-j9xh.json @@ -45,6 +45,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-cpjc-p7fc-j9xh" }, + { + "type": "PACKAGE", + "url": "https://github.com/mikel/mail" + }, { "type": "WEB", "url": "https://github.com/mikel/mail/raw/master/patches/20110126_sendmail.patch" @@ -68,10 +72,6 @@ { "type": "WEB", "url": "http://www.vupen.com/english/advisories/2011/0233" - }, - { - "type": "PACKAGE", - "url": "https://github.com/mikel/mail" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-cqr7-78pj-3g7j/GHSA-cqr7-78pj-3g7j.json b/advisories/github-reviewed/2017/10/GHSA-cqr7-78pj-3g7j/GHSA-cqr7-78pj-3g7j.json index 021d35741bc..b4d789cddd9 100644 --- a/advisories/github-reviewed/2017/10/GHSA-cqr7-78pj-3g7j/GHSA-cqr7-78pj-3g7j.json +++ b/advisories/github-reviewed/2017/10/GHSA-cqr7-78pj-3g7j/GHSA-cqr7-78pj-3g7j.json @@ -45,6 +45,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-cqr7-78pj-3g7j" }, + { + "type": "PACKAGE", + "url": "https://github.com/spumko/hapi" + }, { "type": "WEB", "url": "https://nodesecurity.io/advisories/hapi_File_descriptor_leak_DoS_vulnerability" @@ -60,10 +64,6 @@ { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2014/05/15/2" - }, - { - "type": "PACKAGE", - "url": "https://github.com/spumko/hapi" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-f522-ffg8-j8r6/GHSA-f522-ffg8-j8r6.json b/advisories/github-reviewed/2017/10/GHSA-f522-ffg8-j8r6/GHSA-f522-ffg8-j8r6.json index 3226a82a587..39a2ee949d9 100644 --- a/advisories/github-reviewed/2017/10/GHSA-f522-ffg8-j8r6/GHSA-f522-ffg8-j8r6.json +++ b/advisories/github-reviewed/2017/10/GHSA-f522-ffg8-j8r6/GHSA-f522-ffg8-j8r6.json @@ -79,6 +79,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-f522-ffg8-j8r6" }, + { + "type": "PACKAGE", + "url": "https://github.com/mafintosh/is-my-json-valid" + }, { "type": "WEB", "url": "https://nodesecurity.io/advisories/76" @@ -90,10 +94,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/76" - }, - { - "type": "PACKAGE", - "url": "https://github.com/mafintosh/is-my-json-valid" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-f7f4-5w9j-23p2/GHSA-f7f4-5w9j-23p2.json b/advisories/github-reviewed/2017/10/GHSA-f7f4-5w9j-23p2/GHSA-f7f4-5w9j-23p2.json index 6ee92d3b5a2..c12b4fa9fb5 100644 --- a/advisories/github-reviewed/2017/10/GHSA-f7f4-5w9j-23p2/GHSA-f7f4-5w9j-23p2.json +++ b/advisories/github-reviewed/2017/10/GHSA-f7f4-5w9j-23p2/GHSA-f7f4-5w9j-23p2.json @@ -48,6 +48,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-f7f4-5w9j-23p2" }, + { + "type": "PACKAGE", + "url": "https://github.com/spejman/festivaltts4r" + }, { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2017/01/31/14" @@ -55,10 +59,6 @@ { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2017/02/02/5" - }, - { - "type": "PACKAGE", - "url": "https://github.com/spejman/festivaltts4r" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-fgmx-8h93-26fh/GHSA-fgmx-8h93-26fh.json b/advisories/github-reviewed/2017/10/GHSA-fgmx-8h93-26fh/GHSA-fgmx-8h93-26fh.json index 11564d8eed7..495e14d052c 100644 --- a/advisories/github-reviewed/2017/10/GHSA-fgmx-8h93-26fh/GHSA-fgmx-8h93-26fh.json +++ b/advisories/github-reviewed/2017/10/GHSA-fgmx-8h93-26fh/GHSA-fgmx-8h93-26fh.json @@ -49,6 +49,10 @@ "type": "WEB", "url": "https://gist.github.com/homakov/3673012" }, + { + "type": "PACKAGE", + "url": "https://github.com/Shopify/omniauth-shopify-oauth2" + }, { "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-fgmx-8h93-26fh" @@ -60,10 +64,6 @@ { "type": "WEB", "url": "http://seclists.org/oss-sec/2013/q1/304" - }, - { - "type": "PACKAGE", - "url": "https://github.com/Shopify/omniauth-shopify-oauth2" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-fhj9-cjjh-27vm/GHSA-fhj9-cjjh-27vm.json b/advisories/github-reviewed/2017/10/GHSA-fhj9-cjjh-27vm/GHSA-fhj9-cjjh-27vm.json index 084a7e8afff..1684336cdfd 100644 --- a/advisories/github-reviewed/2017/10/GHSA-fhj9-cjjh-27vm/GHSA-fhj9-cjjh-27vm.json +++ b/advisories/github-reviewed/2017/10/GHSA-fhj9-cjjh-27vm/GHSA-fhj9-cjjh-27vm.json @@ -60,6 +60,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-fhj9-cjjh-27vm" }, + { + "type": "PACKAGE", + "url": "https://github.com/rails/rails/tree/v6.1.4.1/activerecord" + }, { "type": "WEB", "url": "https://groups.google.com/group/rubyonrails-security/msg/302ec7ce90f13837?dmode=source&output=gplain" @@ -103,10 +107,6 @@ { "type": "WEB", "url": "http://www.osvdb.org/90073" - }, - { - "type": "PACKAGE", - "url": "https://github.com/rails/rails/tree/v6.1.4.1/activerecord" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-g89m-3wjw-h857/GHSA-g89m-3wjw-h857.json b/advisories/github-reviewed/2017/10/GHSA-g89m-3wjw-h857/GHSA-g89m-3wjw-h857.json index 0d97478cadc..ae776696178 100644 --- a/advisories/github-reviewed/2017/10/GHSA-g89m-3wjw-h857/GHSA-g89m-3wjw-h857.json +++ b/advisories/github-reviewed/2017/10/GHSA-g89m-3wjw-h857/GHSA-g89m-3wjw-h857.json @@ -72,6 +72,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-g89m-3wjw-h857" }, + { + "type": "PACKAGE", + "url": "https://github.com/puppetlabs/puppet" + }, { "type": "WEB", "url": "http://lists.opensuse.org/opensuse-security-announce/2012-08/msg00006.html" @@ -95,10 +99,6 @@ { "type": "WEB", "url": "http://www.ubuntu.com/usn/USN-1506-1" - }, - { - "type": "PACKAGE", - "url": "https://github.com/puppetlabs/puppet" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-gcqq-w6gr-h9j9/GHSA-gcqq-w6gr-h9j9.json b/advisories/github-reviewed/2017/10/GHSA-gcqq-w6gr-h9j9/GHSA-gcqq-w6gr-h9j9.json index 6ec3209fa9e..6640f336b29 100644 --- a/advisories/github-reviewed/2017/10/GHSA-gcqq-w6gr-h9j9/GHSA-gcqq-w6gr-h9j9.json +++ b/advisories/github-reviewed/2017/10/GHSA-gcqq-w6gr-h9j9/GHSA-gcqq-w6gr-h9j9.json @@ -48,6 +48,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-gcqq-w6gr-h9j9" }, + { + "type": "PACKAGE", + "url": "https://github.com/rubyzip/rubyzip" + }, { "type": "WEB", "url": "https://github.com/rubyzip/rubyzip/releases" @@ -59,10 +63,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/96445" - }, - { - "type": "PACKAGE", - "url": "https://github.com/rubyzip/rubyzip" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-gfjr-3jmm-4g9v/GHSA-gfjr-3jmm-4g9v.json b/advisories/github-reviewed/2017/10/GHSA-gfjr-3jmm-4g9v/GHSA-gfjr-3jmm-4g9v.json index e90c163f602..bc7bc549244 100644 --- a/advisories/github-reviewed/2017/10/GHSA-gfjr-3jmm-4g9v/GHSA-gfjr-3jmm-4g9v.json +++ b/advisories/github-reviewed/2017/10/GHSA-gfjr-3jmm-4g9v/GHSA-gfjr-3jmm-4g9v.json @@ -44,6 +44,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-gfjr-3jmm-4g9v" }, + { + "type": "PACKAGE", + "url": "https://github.com/npm/npm" + }, { "type": "WEB", "url": "https://github.com/npm/npm/releases/tag/v2.7.5" @@ -59,10 +63,6 @@ { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2016/04/20/11" - }, - { - "type": "PACKAGE", - "url": "https://github.com/npm/npm" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-ghqm-pgxj-37gq/GHSA-ghqm-pgxj-37gq.json b/advisories/github-reviewed/2017/10/GHSA-ghqm-pgxj-37gq/GHSA-ghqm-pgxj-37gq.json index 3efaf6101cc..4659e2933c7 100644 --- a/advisories/github-reviewed/2017/10/GHSA-ghqm-pgxj-37gq/GHSA-ghqm-pgxj-37gq.json +++ b/advisories/github-reviewed/2017/10/GHSA-ghqm-pgxj-37gq/GHSA-ghqm-pgxj-37gq.json @@ -48,6 +48,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-ghqm-pgxj-37gq" }, + { + "type": "PACKAGE", + "url": "https://github.com/rails/rails-html-sanitizer/" + }, { "type": "WEB", "url": "https://groups.google.com/forum/message/raw?msg=rubyonrails-security/uh--W4TDwmI/m_CVZtdbFQAJ" @@ -71,10 +75,6 @@ { "type": "WEB", "url": "http://www.securitytracker.com/id/1034816" - }, - { - "type": "PACKAGE", - "url": "https://github.com/rails/rails-html-sanitizer/" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-gvcj-pfq2-wxj7/GHSA-gvcj-pfq2-wxj7.json b/advisories/github-reviewed/2017/10/GHSA-gvcj-pfq2-wxj7/GHSA-gvcj-pfq2-wxj7.json index d289205f0eb..5656c9cae1a 100644 --- a/advisories/github-reviewed/2017/10/GHSA-gvcj-pfq2-wxj7/GHSA-gvcj-pfq2-wxj7.json +++ b/advisories/github-reviewed/2017/10/GHSA-gvcj-pfq2-wxj7/GHSA-gvcj-pfq2-wxj7.json @@ -52,6 +52,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-gvcj-pfq2-wxj7" }, + { + "type": "PACKAGE", + "url": "https://github.com/electron/electron" + }, { "type": "WEB", "url": "http://jvn.jp/en/jp/JVN00324715/index.html" @@ -59,10 +63,6 @@ { "type": "WEB", "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2016-000054" - }, - { - "type": "PACKAGE", - "url": "https://github.com/electron/electron" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-h5g2-38x9-4gv3/GHSA-h5g2-38x9-4gv3.json b/advisories/github-reviewed/2017/10/GHSA-h5g2-38x9-4gv3/GHSA-h5g2-38x9-4gv3.json index 30947bc4a87..5597608340a 100644 --- a/advisories/github-reviewed/2017/10/GHSA-h5g2-38x9-4gv3/GHSA-h5g2-38x9-4gv3.json +++ b/advisories/github-reviewed/2017/10/GHSA-h5g2-38x9-4gv3/GHSA-h5g2-38x9-4gv3.json @@ -71,6 +71,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-h5g2-38x9-4gv3" }, + { + "type": "PACKAGE", + "url": "https://github.com/halostatue/minitar" + }, { "type": "WEB", "url": "https://puppet.com/security/cve/cve-2016-10173" @@ -94,10 +98,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/95874" - }, - { - "type": "PACKAGE", - "url": "https://github.com/halostatue/minitar" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-h6w6-xmqv-7q78/GHSA-h6w6-xmqv-7q78.json b/advisories/github-reviewed/2017/10/GHSA-h6w6-xmqv-7q78/GHSA-h6w6-xmqv-7q78.json index 12b19f5b63e..3343482a503 100644 --- a/advisories/github-reviewed/2017/10/GHSA-h6w6-xmqv-7q78/GHSA-h6w6-xmqv-7q78.json +++ b/advisories/github-reviewed/2017/10/GHSA-h6w6-xmqv-7q78/GHSA-h6w6-xmqv-7q78.json @@ -68,6 +68,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-h6w6-xmqv-7q78" }, + { + "type": "PACKAGE", + "url": "https://github.com/rails/rails" + }, { "type": "WEB", "url": "http://groups.google.com/group/rubyonrails-security/msg/b1a85d36b0f9dd30?dmode=source&output=gplain" @@ -107,10 +111,6 @@ { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2011/08/22/5" - }, - { - "type": "PACKAGE", - "url": "https://github.com/rails/rails" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-h77x-m5q8-c29h/GHSA-h77x-m5q8-c29h.json b/advisories/github-reviewed/2017/10/GHSA-h77x-m5q8-c29h/GHSA-h77x-m5q8-c29h.json index 72a101891df..03a6946c708 100644 --- a/advisories/github-reviewed/2017/10/GHSA-h77x-m5q8-c29h/GHSA-h77x-m5q8-c29h.json +++ b/advisories/github-reviewed/2017/10/GHSA-h77x-m5q8-c29h/GHSA-h77x-m5q8-c29h.json @@ -106,6 +106,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-h77x-m5q8-c29h" }, + { + "type": "PACKAGE", + "url": "https://github.com/rack/rack/" + }, { "type": "WEB", "url": "https://github.com/rack/rack/blob/master/README.rdoc" @@ -125,10 +129,6 @@ { "type": "WEB", "url": "http://rhn.redhat.com/errata/RHSA-2013-0548.html" - }, - { - "type": "PACKAGE", - "url": "https://github.com/rack/rack/" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-h835-75hw-pj89/GHSA-h835-75hw-pj89.json b/advisories/github-reviewed/2017/10/GHSA-h835-75hw-pj89/GHSA-h835-75hw-pj89.json index 41c2f4a0477..55a041fc9a7 100644 --- a/advisories/github-reviewed/2017/10/GHSA-h835-75hw-pj89/GHSA-h835-75hw-pj89.json +++ b/advisories/github-reviewed/2017/10/GHSA-h835-75hw-pj89/GHSA-h835-75hw-pj89.json @@ -79,6 +79,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-h835-75hw-pj89" }, + { + "type": "PACKAGE", + "url": "https://github.com/rails/rails" + }, { "type": "WEB", "url": "https://groups.google.com/group/rubyonrails-security/msg/8f1bbe1cef8c6caf?dmode=source&output=gplain" @@ -94,10 +98,6 @@ { "type": "WEB", "url": "http://weblog.rubyonrails.org/2012/8/9/ann-rails-3-2-8-has-been-released/" - }, - { - "type": "PACKAGE", - "url": "https://github.com/rails/rails" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-hgmw-x865-hf9x/GHSA-hgmw-x865-hf9x.json b/advisories/github-reviewed/2017/10/GHSA-hgmw-x865-hf9x/GHSA-hgmw-x865-hf9x.json index bedb842635f..ebc2d59de64 100644 --- a/advisories/github-reviewed/2017/10/GHSA-hgmw-x865-hf9x/GHSA-hgmw-x865-hf9x.json +++ b/advisories/github-reviewed/2017/10/GHSA-hgmw-x865-hf9x/GHSA-hgmw-x865-hf9x.json @@ -41,6 +41,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-hgmw-x865-hf9x" }, + { + "type": "PACKAGE", + "url": "https://github.com/ozeron/prawn-arabic" + }, { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2014/03/10/8" @@ -52,10 +56,6 @@ { "type": "WEB", "url": "http://www.vapid.dhs.org/advisories/arabic-ruby-gem.html" - }, - { - "type": "PACKAGE", - "url": "https://github.com/ozeron/prawn-arabic" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-hgpp-pp89-4fgf/GHSA-hgpp-pp89-4fgf.json b/advisories/github-reviewed/2017/10/GHSA-hgpp-pp89-4fgf/GHSA-hgpp-pp89-4fgf.json index fe1f23ffa36..0b799bc1ca3 100644 --- a/advisories/github-reviewed/2017/10/GHSA-hgpp-pp89-4fgf/GHSA-hgpp-pp89-4fgf.json +++ b/advisories/github-reviewed/2017/10/GHSA-hgpp-pp89-4fgf/GHSA-hgpp-pp89-4fgf.json @@ -79,6 +79,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-hgpp-pp89-4fgf" }, + { + "type": "PACKAGE", + "url": "https://github.com/rails/rails" + }, { "type": "WEB", "url": "https://groups.google.com/group/rubyonrails-security/msg/d890f8d58b5fbf32?dmode=source&output=gplain" @@ -106,10 +110,6 @@ { "type": "WEB", "url": "http://rhn.redhat.com/errata/RHSA-2013-0154.html" - }, - { - "type": "PACKAGE", - "url": "https://github.com/rails/rails" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-hjcp-j389-59ff/GHSA-hjcp-j389-59ff.json b/advisories/github-reviewed/2017/10/GHSA-hjcp-j389-59ff/GHSA-hjcp-j389-59ff.json index dd0d3f910e4..b2dacf5699a 100644 --- a/advisories/github-reviewed/2017/10/GHSA-hjcp-j389-59ff/GHSA-hjcp-j389-59ff.json +++ b/advisories/github-reviewed/2017/10/GHSA-hjcp-j389-59ff/GHSA-hjcp-j389-59ff.json @@ -48,6 +48,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-hjcp-j389-59ff" }, + { + "type": "PACKAGE", + "url": "https://github.com/chjj/marked" + }, { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/BO2RMVVZVV6NFTU46B5RYRK7ZCXYARZS/" @@ -75,10 +79,6 @@ { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2016/04/20/11" - }, - { - "type": "PACKAGE", - "url": "https://github.com/chjj/marked" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-hpcf-8vf9-q4gj/GHSA-hpcf-8vf9-q4gj.json b/advisories/github-reviewed/2017/10/GHSA-hpcf-8vf9-q4gj/GHSA-hpcf-8vf9-q4gj.json index 98f06266be0..ee56f36f645 100644 --- a/advisories/github-reviewed/2017/10/GHSA-hpcf-8vf9-q4gj/GHSA-hpcf-8vf9-q4gj.json +++ b/advisories/github-reviewed/2017/10/GHSA-hpcf-8vf9-q4gj/GHSA-hpcf-8vf9-q4gj.json @@ -56,6 +56,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-hpcf-8vf9-q4gj" }, + { + "type": "PACKAGE", + "url": "https://github.com/jquery/jquery-ui" + }, { "type": "WEB", "url": "https://jqueryui.com/changelog/1.12.0/" @@ -155,10 +159,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/104823" - }, - { - "type": "PACKAGE", - "url": "https://github.com/jquery/jquery-ui" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-j24p-r6wx-r79w/GHSA-j24p-r6wx-r79w.json b/advisories/github-reviewed/2017/10/GHSA-j24p-r6wx-r79w/GHSA-j24p-r6wx-r79w.json index b958ddea41f..282431a3c16 100644 --- a/advisories/github-reviewed/2017/10/GHSA-j24p-r6wx-r79w/GHSA-j24p-r6wx-r79w.json +++ b/advisories/github-reviewed/2017/10/GHSA-j24p-r6wx-r79w/GHSA-j24p-r6wx-r79w.json @@ -41,6 +41,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-j24p-r6wx-r79w" }, + { + "type": "PACKAGE", + "url": "http://github.com/macournoyer/thin" + }, { "type": "WEB", "url": "http://github.com/macournoyer/thin/blob/master/CHANGELOG" @@ -52,10 +56,6 @@ { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2009/09/12/1" - }, - { - "type": "PACKAGE", - "url": "http://github.com/macournoyer/thin" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-j5hj-fhc9-g24m/GHSA-j5hj-fhc9-g24m.json b/advisories/github-reviewed/2017/10/GHSA-j5hj-fhc9-g24m/GHSA-j5hj-fhc9-g24m.json index 7b4c7e245b7..24e685006be 100644 --- a/advisories/github-reviewed/2017/10/GHSA-j5hj-fhc9-g24m/GHSA-j5hj-fhc9-g24m.json +++ b/advisories/github-reviewed/2017/10/GHSA-j5hj-fhc9-g24m/GHSA-j5hj-fhc9-g24m.json @@ -44,6 +44,10 @@ "type": "WEB", "url": "https://github.com/MiniProfiler/rack-mini-profiler/commit/4273771d65f1a7411e3ef5843329308d0e2d257c" }, + { + "type": "PACKAGE", + "url": "https://github.com/MiniProfiler/rack-mini-profiler/" + }, { "type": "WEB", "url": "https://github.com/MiniProfiler/rack-mini-profiler/blob/v0.10.1/CHANGELOG.md" @@ -55,10 +59,6 @@ { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2016/06/10/2" - }, - { - "type": "PACKAGE", - "url": "https://github.com/MiniProfiler/rack-mini-profiler/" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-j838-vfpq-fmf2/GHSA-j838-vfpq-fmf2.json b/advisories/github-reviewed/2017/10/GHSA-j838-vfpq-fmf2/GHSA-j838-vfpq-fmf2.json index 389ad898920..12bfe36afc0 100644 --- a/advisories/github-reviewed/2017/10/GHSA-j838-vfpq-fmf2/GHSA-j838-vfpq-fmf2.json +++ b/advisories/github-reviewed/2017/10/GHSA-j838-vfpq-fmf2/GHSA-j838-vfpq-fmf2.json @@ -79,6 +79,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-j838-vfpq-fmf2" }, + { + "type": "PACKAGE", + "url": "https://github.com/rails/rails" + }, { "type": "WEB", "url": "https://groups.google.com/group/rubyonrails-security/msg/78b9817a5943f6d6?dmode=source&output=gplain" @@ -118,10 +122,6 @@ { "type": "WEB", "url": "http://weblog.rubyonrails.org/2013/3/18/SEC-ANN-Rails-3-2-13-3-1-12-and-2-3-18-have-been-released/" - }, - { - "type": "PACKAGE", - "url": "https://github.com/rails/rails" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-jg4m-q6w8-vrjp/GHSA-jg4m-q6w8-vrjp.json b/advisories/github-reviewed/2017/10/GHSA-jg4m-q6w8-vrjp/GHSA-jg4m-q6w8-vrjp.json index a361fb2ff00..1570bf826d4 100644 --- a/advisories/github-reviewed/2017/10/GHSA-jg4m-q6w8-vrjp/GHSA-jg4m-q6w8-vrjp.json +++ b/advisories/github-reviewed/2017/10/GHSA-jg4m-q6w8-vrjp/GHSA-jg4m-q6w8-vrjp.json @@ -45,13 +45,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-jg4m-q6w8-vrjp" }, - { - "type": "WEB", - "url": "http://www.openwall.com/lists/oss-security/2013/08/03/2" - }, { "type": "PACKAGE", "url": "https://github.com/rcook/rgpg" + }, + { + "type": "WEB", + "url": "http://www.openwall.com/lists/oss-security/2013/08/03/2" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-jgqf-hwc5-hh37/GHSA-jgqf-hwc5-hh37.json b/advisories/github-reviewed/2017/10/GHSA-jgqf-hwc5-hh37/GHSA-jgqf-hwc5-hh37.json index 8c38c37799f..325e2165d74 100644 --- a/advisories/github-reviewed/2017/10/GHSA-jgqf-hwc5-hh37/GHSA-jgqf-hwc5-hh37.json +++ b/advisories/github-reviewed/2017/10/GHSA-jgqf-hwc5-hh37/GHSA-jgqf-hwc5-hh37.json @@ -52,6 +52,10 @@ "type": "WEB", "url": "https://github.com/expressjs/serve-static/blob/master/HISTORY.md#181--2015-01-20" }, + { + "type": "PACKAGE", + "url": "https://github.com/pillarjs/send" + }, { "type": "WEB", "url": "https://nodesecurity.io/advisories/56" @@ -67,10 +71,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/96435" - }, - { - "type": "PACKAGE", - "url": "https://github.com/pillarjs/send" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-jjv7-qpx3-h62q/GHSA-jjv7-qpx3-h62q.json b/advisories/github-reviewed/2017/10/GHSA-jjv7-qpx3-h62q/GHSA-jjv7-qpx3-h62q.json index 5581eff307e..7e3852f402f 100644 --- a/advisories/github-reviewed/2017/10/GHSA-jjv7-qpx3-h62q/GHSA-jjv7-qpx3-h62q.json +++ b/advisories/github-reviewed/2017/10/GHSA-jjv7-qpx3-h62q/GHSA-jjv7-qpx3-h62q.json @@ -57,6 +57,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-jjv7-qpx3-h62q" }, + { + "type": "PACKAGE", + "url": "https://github.com/visionmedia/node-querystring" + }, { "type": "WEB", "url": "https://nodesecurity.io/advisories/qs_dos_memory_exhaustion" @@ -84,10 +88,6 @@ { "type": "WEB", "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687928" - }, - { - "type": "PACKAGE", - "url": "https://github.com/visionmedia/node-querystring" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-jmgf-p46x-982h/GHSA-jmgf-p46x-982h.json b/advisories/github-reviewed/2017/10/GHSA-jmgf-p46x-982h/GHSA-jmgf-p46x-982h.json index 890e683bde9..9681c436607 100644 --- a/advisories/github-reviewed/2017/10/GHSA-jmgf-p46x-982h/GHSA-jmgf-p46x-982h.json +++ b/advisories/github-reviewed/2017/10/GHSA-jmgf-p46x-982h/GHSA-jmgf-p46x-982h.json @@ -41,6 +41,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-jmgf-p46x-982h" }, + { + "type": "PACKAGE", + "url": "http://github.com/rails/rails" + }, { "type": "WEB", "url": "http://github.com/rails/rails/commit/7282ed863ca7e6f928bae9162c9a63a98775a19d" @@ -60,10 +64,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/32359" - }, - { - "type": "PACKAGE", - "url": "http://github.com/rails/rails" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-jmgw-6vjg-jjwg/GHSA-jmgw-6vjg-jjwg.json b/advisories/github-reviewed/2017/10/GHSA-jmgw-6vjg-jjwg/GHSA-jmgw-6vjg-jjwg.json index d600bedeb82..8f844c771b6 100644 --- a/advisories/github-reviewed/2017/10/GHSA-jmgw-6vjg-jjwg/GHSA-jmgw-6vjg-jjwg.json +++ b/advisories/github-reviewed/2017/10/GHSA-jmgw-6vjg-jjwg/GHSA-jmgw-6vjg-jjwg.json @@ -102,6 +102,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-jmgw-6vjg-jjwg" }, + { + "type": "PACKAGE", + "url": "https://github.com/rails/rails" + }, { "type": "WEB", "url": "https://groups.google.com/group/rubyonrails-security/msg/c1432d0f8c70e89d?dmode=source&output=gplain" @@ -153,10 +157,6 @@ { "type": "WEB", "url": "http://www.kb.cert.org/vuls/id/628463" - }, - { - "type": "PACKAGE", - "url": "https://github.com/rails/rails" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-jmm9-2p29-vh2w/GHSA-jmm9-2p29-vh2w.json b/advisories/github-reviewed/2017/10/GHSA-jmm9-2p29-vh2w/GHSA-jmm9-2p29-vh2w.json index 8dba34d5ecf..fd5a0c7bc05 100644 --- a/advisories/github-reviewed/2017/10/GHSA-jmm9-2p29-vh2w/GHSA-jmm9-2p29-vh2w.json +++ b/advisories/github-reviewed/2017/10/GHSA-jmm9-2p29-vh2w/GHSA-jmm9-2p29-vh2w.json @@ -41,6 +41,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-jmm9-2p29-vh2w" }, + { + "type": "PACKAGE", + "url": "https://github.com/rails/rails" + }, { "type": "WEB", "url": "http://groups.google.com/group/rubyonrails-security/msg/4e19864cf6ad40ad?dmode=source&output=gplain" @@ -64,10 +68,6 @@ { "type": "WEB", "url": "http://www.vupen.com/english/advisories/2011/0877" - }, - { - "type": "PACKAGE", - "url": "https://github.com/rails/rails" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-jwhv-rgqc-fqj5/GHSA-jwhv-rgqc-fqj5.json b/advisories/github-reviewed/2017/10/GHSA-jwhv-rgqc-fqj5/GHSA-jwhv-rgqc-fqj5.json index 893dc0cdde5..b4d76cb228d 100644 --- a/advisories/github-reviewed/2017/10/GHSA-jwhv-rgqc-fqj5/GHSA-jwhv-rgqc-fqj5.json +++ b/advisories/github-reviewed/2017/10/GHSA-jwhv-rgqc-fqj5/GHSA-jwhv-rgqc-fqj5.json @@ -41,6 +41,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-jwhv-rgqc-fqj5" }, + { + "type": "PACKAGE", + "url": "https://github.com/rails/rails" + }, { "type": "WEB", "url": "http://bugs.gentoo.org/show_bug.cgi?id=195315" @@ -92,10 +96,6 @@ { "type": "WEB", "url": "http://www.vupen.com/english/advisories/2007/4238" - }, - { - "type": "PACKAGE", - "url": "https://github.com/rails/rails" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-jxhw-mg8m-2pj8/GHSA-jxhw-mg8m-2pj8.json b/advisories/github-reviewed/2017/10/GHSA-jxhw-mg8m-2pj8/GHSA-jxhw-mg8m-2pj8.json index 4f34f4664bb..1433864b50d 100644 --- a/advisories/github-reviewed/2017/10/GHSA-jxhw-mg8m-2pj8/GHSA-jxhw-mg8m-2pj8.json +++ b/advisories/github-reviewed/2017/10/GHSA-jxhw-mg8m-2pj8/GHSA-jxhw-mg8m-2pj8.json @@ -98,6 +98,10 @@ "type": "WEB", "url": "https://github.com/Snorby/snorby/issues/261" }, + { + "type": "PACKAGE", + "url": "https://github.com/Snorby/snorby" + }, { "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-jxhw-mg8m-2pj8" @@ -125,10 +129,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/57577" - }, - { - "type": "PACKAGE", - "url": "https://github.com/Snorby/snorby" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-m46p-ggm5-5j83/GHSA-m46p-ggm5-5j83.json b/advisories/github-reviewed/2017/10/GHSA-m46p-ggm5-5j83/GHSA-m46p-ggm5-5j83.json index 4e11124252f..f267dc2a88c 100644 --- a/advisories/github-reviewed/2017/10/GHSA-m46p-ggm5-5j83/GHSA-m46p-ggm5-5j83.json +++ b/advisories/github-reviewed/2017/10/GHSA-m46p-ggm5-5j83/GHSA-m46p-ggm5-5j83.json @@ -60,6 +60,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-m46p-ggm5-5j83" }, + { + "type": "PACKAGE", + "url": "https://github.com/rails/rails" + }, { "type": "WEB", "url": "https://groups.google.com/forum/message/raw?msg=rubyonrails-security/tfp6gZCtzr4/j8LUHmu7fIEJ" @@ -91,10 +95,6 @@ { "type": "WEB", "url": "http://www.securitytracker.com/id/1029782" - }, - { - "type": "PACKAGE", - "url": "https://github.com/rails/rails" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-mgx3-27hr-mfgp/GHSA-mgx3-27hr-mfgp.json b/advisories/github-reviewed/2017/10/GHSA-mgx3-27hr-mfgp/GHSA-mgx3-27hr-mfgp.json index f1ccc266307..4a740866392 100644 --- a/advisories/github-reviewed/2017/10/GHSA-mgx3-27hr-mfgp/GHSA-mgx3-27hr-mfgp.json +++ b/advisories/github-reviewed/2017/10/GHSA-mgx3-27hr-mfgp/GHSA-mgx3-27hr-mfgp.json @@ -49,6 +49,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-mgx3-27hr-mfgp" }, + { + "type": "PACKAGE", + "url": "https://github.com/jnunemaker/httparty" + }, { "type": "WEB", "url": "https://support.cloud.engineyard.com/entries/22915701-january-14-2013-security-vulnerabilities-httparty-extlib-crack-nori-update-these-gems-immediately" @@ -56,10 +60,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/58260" - }, - { - "type": "PACKAGE", - "url": "https://github.com/jnunemaker/httparty" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-mx9f-w8qq-q5jf/GHSA-mx9f-w8qq-q5jf.json b/advisories/github-reviewed/2017/10/GHSA-mx9f-w8qq-q5jf/GHSA-mx9f-w8qq-q5jf.json index 9f5dab96c96..7e591bbb71a 100644 --- a/advisories/github-reviewed/2017/10/GHSA-mx9f-w8qq-q5jf/GHSA-mx9f-w8qq-q5jf.json +++ b/advisories/github-reviewed/2017/10/GHSA-mx9f-w8qq-q5jf/GHSA-mx9f-w8qq-q5jf.json @@ -45,6 +45,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-mx9f-w8qq-q5jf" }, + { + "type": "PACKAGE", + "url": "https://github.com/rest-client/rest-client" + }, { "type": "WEB", "url": "http://lists.opensuse.org/opensuse-updates/2015-04/msg00026.html" @@ -56,10 +60,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/74415" - }, - { - "type": "PACKAGE", - "url": "https://github.com/rest-client/rest-client" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-p463-639r-q9g9/GHSA-p463-639r-q9g9.json b/advisories/github-reviewed/2017/10/GHSA-p463-639r-q9g9/GHSA-p463-639r-q9g9.json index c7f8fe3fade..da49d90597a 100644 --- a/advisories/github-reviewed/2017/10/GHSA-p463-639r-q9g9/GHSA-p463-639r-q9g9.json +++ b/advisories/github-reviewed/2017/10/GHSA-p463-639r-q9g9/GHSA-p463-639r-q9g9.json @@ -68,6 +68,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-p463-639r-q9g9" }, + { + "type": "PACKAGE", + "url": "https://github.com/markevans/dragonfly" + }, { "type": "WEB", "url": "https://groups.google.com/forum/?fromgroups=#!topic/dragonfly-users/3c3WIU3VQTo" @@ -79,10 +83,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/58225" - }, - { - "type": "PACKAGE", - "url": "https://github.com/markevans/dragonfly" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-p65m-qr5x-rrqq/GHSA-p65m-qr5x-rrqq.json b/advisories/github-reviewed/2017/10/GHSA-p65m-qr5x-rrqq/GHSA-p65m-qr5x-rrqq.json index cfecea365c9..a2c2144a5b9 100644 --- a/advisories/github-reviewed/2017/10/GHSA-p65m-qr5x-rrqq/GHSA-p65m-qr5x-rrqq.json +++ b/advisories/github-reviewed/2017/10/GHSA-p65m-qr5x-rrqq/GHSA-p65m-qr5x-rrqq.json @@ -49,6 +49,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-p65m-qr5x-rrqq" }, + { + "type": "PACKAGE", + "url": "https://github.com/webbynode/webbynode" + }, { "type": "WEB", "url": "http://archives.neohapsis.com/archives/bugtraq/2013-12/0079.html" @@ -76,10 +80,6 @@ { "type": "WEB", "url": "http://www.vapid.dhs.org/advisories/webbynode-command-inj.html" - }, - { - "type": "PACKAGE", - "url": "https://github.com/webbynode/webbynode" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-pchc-949f-53m5/GHSA-pchc-949f-53m5.json b/advisories/github-reviewed/2017/10/GHSA-pchc-949f-53m5/GHSA-pchc-949f-53m5.json index 86743ff90d9..4be4c39593a 100644 --- a/advisories/github-reviewed/2017/10/GHSA-pchc-949f-53m5/GHSA-pchc-949f-53m5.json +++ b/advisories/github-reviewed/2017/10/GHSA-pchc-949f-53m5/GHSA-pchc-949f-53m5.json @@ -49,6 +49,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-pchc-949f-53m5" }, + { + "type": "PACKAGE", + "url": "https://github.com/sferik/multi_xml" + }, { "type": "WEB", "url": "https://groups.google.com/forum/?fromgroups=#!topic/ruby-grape/fthDkMgIOa0" @@ -60,10 +64,6 @@ { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2013/01/11/9" - }, - { - "type": "PACKAGE", - "url": "https://github.com/sferik/multi_xml" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-q44r-f2hm-v76v/GHSA-q44r-f2hm-v76v.json b/advisories/github-reviewed/2017/10/GHSA-q44r-f2hm-v76v/GHSA-q44r-f2hm-v76v.json index 0005093c908..50e4e5dad48 100644 --- a/advisories/github-reviewed/2017/10/GHSA-q44r-f2hm-v76v/GHSA-q44r-f2hm-v76v.json +++ b/advisories/github-reviewed/2017/10/GHSA-q44r-f2hm-v76v/GHSA-q44r-f2hm-v76v.json @@ -72,6 +72,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-q44r-f2hm-v76v" }, + { + "type": "PACKAGE", + "url": "https://github.com/puppetlabs/puppet" + }, { "type": "WEB", "url": "http://lists.opensuse.org/opensuse-security-announce/2012-08/msg00006.html" @@ -95,10 +99,6 @@ { "type": "WEB", "url": "http://www.ubuntu.com/usn/USN-1506-1" - }, - { - "type": "PACKAGE", - "url": "https://github.com/puppetlabs/puppet" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-q5pq-pgrv-fh89/GHSA-q5pq-pgrv-fh89.json b/advisories/github-reviewed/2017/10/GHSA-q5pq-pgrv-fh89/GHSA-q5pq-pgrv-fh89.json index a02781e6b48..7b3ea7ada89 100644 --- a/advisories/github-reviewed/2017/10/GHSA-q5pq-pgrv-fh89/GHSA-q5pq-pgrv-fh89.json +++ b/advisories/github-reviewed/2017/10/GHSA-q5pq-pgrv-fh89/GHSA-q5pq-pgrv-fh89.json @@ -49,13 +49,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-q5pq-pgrv-fh89" }, - { - "type": "WEB", - "url": "http://www.openwall.com/lists/oss-security/2014/11/11/6" - }, { "type": "PACKAGE", "url": "https://github.com/skoranga/node-dns-sync" + }, + { + "type": "WEB", + "url": "http://www.openwall.com/lists/oss-security/2014/11/11/6" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-q86f-fmqf-qrf6/GHSA-q86f-fmqf-qrf6.json b/advisories/github-reviewed/2017/10/GHSA-q86f-fmqf-qrf6/GHSA-q86f-fmqf-qrf6.json index 572e229ef75..1ac0135221e 100644 --- a/advisories/github-reviewed/2017/10/GHSA-q86f-fmqf-qrf6/GHSA-q86f-fmqf-qrf6.json +++ b/advisories/github-reviewed/2017/10/GHSA-q86f-fmqf-qrf6/GHSA-q86f-fmqf-qrf6.json @@ -60,6 +60,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-q86f-fmqf-qrf6" }, + { + "type": "PACKAGE", + "url": "https://github.com/rubysec/ruby-advisory-db" + }, { "type": "WEB", "url": "https://rubysec.com/advisories/mail-OSVDB-131677" @@ -71,10 +75,6 @@ { "type": "WEB", "url": "http://www.mbsd.jp/Whitepaper/smtpi.pdf" - }, - { - "type": "PACKAGE", - "url": "https://github.com/rubysec/ruby-advisory-db" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-qqxp-xp9v-vvx6/GHSA-qqxp-xp9v-vvx6.json b/advisories/github-reviewed/2017/10/GHSA-qqxp-xp9v-vvx6/GHSA-qqxp-xp9v-vvx6.json index e645bc94d8e..d07a69cfdc2 100644 --- a/advisories/github-reviewed/2017/10/GHSA-qqxp-xp9v-vvx6/GHSA-qqxp-xp9v-vvx6.json +++ b/advisories/github-reviewed/2017/10/GHSA-qqxp-xp9v-vvx6/GHSA-qqxp-xp9v-vvx6.json @@ -60,6 +60,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-qqxp-xp9v-vvx6" }, + { + "type": "PACKAGE", + "url": "https://github.com/jquery/jquery" + }, { "type": "WEB", "url": "http://bugs.jqueryui.com/ticket/8859" @@ -87,10 +91,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/71107" - }, - { - "type": "PACKAGE", - "url": "https://github.com/jquery/jquery" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-r5hc-9xx5-97rw/GHSA-r5hc-9xx5-97rw.json b/advisories/github-reviewed/2017/10/GHSA-r5hc-9xx5-97rw/GHSA-r5hc-9xx5-97rw.json index de08a0d2bb6..b174d75882c 100644 --- a/advisories/github-reviewed/2017/10/GHSA-r5hc-9xx5-97rw/GHSA-r5hc-9xx5-97rw.json +++ b/advisories/github-reviewed/2017/10/GHSA-r5hc-9xx5-97rw/GHSA-r5hc-9xx5-97rw.json @@ -45,6 +45,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-r5hc-9xx5-97rw" }, + { + "type": "PACKAGE", + "url": "https://github.com/svenfuchs/i18n" + }, { "type": "WEB", "url": "https://groups.google.com/forum/message/raw?msg=ruby-security-ann/pLrh6DUw998/bLFEyIO4k_EJ" @@ -64,10 +68,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/64076" - }, - { - "type": "PACKAGE", - "url": "https://github.com/svenfuchs/i18n" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-r7q2-5gqg-6c7q/GHSA-r7q2-5gqg-6c7q.json b/advisories/github-reviewed/2017/10/GHSA-r7q2-5gqg-6c7q/GHSA-r7q2-5gqg-6c7q.json index ea1a66704e2..d6eda02f79f 100644 --- a/advisories/github-reviewed/2017/10/GHSA-r7q2-5gqg-6c7q/GHSA-r7q2-5gqg-6c7q.json +++ b/advisories/github-reviewed/2017/10/GHSA-r7q2-5gqg-6c7q/GHSA-r7q2-5gqg-6c7q.json @@ -49,6 +49,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-r7q2-5gqg-6c7q" }, + { + "type": "PACKAGE", + "url": "https://github.com/rails/rails" + }, { "type": "WEB", "url": "http://groups.google.com/group/rubyonrails-security/msg/cbbbba6e4f7eaf61?dmode=source&output=gplain" @@ -88,10 +92,6 @@ { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2011/08/22/5" - }, - { - "type": "PACKAGE", - "url": "https://github.com/rails/rails" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-r9c2-cr39-c8g6/GHSA-r9c2-cr39-c8g6.json b/advisories/github-reviewed/2017/10/GHSA-r9c2-cr39-c8g6/GHSA-r9c2-cr39-c8g6.json index 1d0bd29bf4a..249fd8e691e 100644 --- a/advisories/github-reviewed/2017/10/GHSA-r9c2-cr39-c8g6/GHSA-r9c2-cr39-c8g6.json +++ b/advisories/github-reviewed/2017/10/GHSA-r9c2-cr39-c8g6/GHSA-r9c2-cr39-c8g6.json @@ -48,6 +48,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-r9c2-cr39-c8g6" }, + { + "type": "PACKAGE", + "url": "https://github.com/rails/rails-html-sanitizer" + }, { "type": "WEB", "url": "https://groups.google.com/forum/message/raw?msg=ruby-security-ann/OU9ugTZcbjc/uksRkSxZEgAJ" @@ -79,10 +83,6 @@ { "type": "WEB", "url": "http://www.securitytracker.com/id/1034816" - }, - { - "type": "PACKAGE", - "url": "https://github.com/rails/rails-html-sanitizer" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-rgr4-9jh5-j4j6/GHSA-rgr4-9jh5-j4j6.json b/advisories/github-reviewed/2017/10/GHSA-rgr4-9jh5-j4j6/GHSA-rgr4-9jh5-j4j6.json index 75651b083aa..4fd16d444bb 100644 --- a/advisories/github-reviewed/2017/10/GHSA-rgr4-9jh5-j4j6/GHSA-rgr4-9jh5-j4j6.json +++ b/advisories/github-reviewed/2017/10/GHSA-rgr4-9jh5-j4j6/GHSA-rgr4-9jh5-j4j6.json @@ -60,6 +60,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-rgr4-9jh5-j4j6" }, + { + "type": "PACKAGE", + "url": "https://github.com/rack/rack" + }, { "type": "WEB", "url": "https://github.com/rack/rack/blob/master/HISTORY.md" @@ -103,10 +107,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/75232" - }, - { - "type": "PACKAGE", - "url": "https://github.com/rack/rack" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-rp63-jfmw-532w/GHSA-rp63-jfmw-532w.json b/advisories/github-reviewed/2017/10/GHSA-rp63-jfmw-532w/GHSA-rp63-jfmw-532w.json index 9ece2705f46..727fb3b52c1 100644 --- a/advisories/github-reviewed/2017/10/GHSA-rp63-jfmw-532w/GHSA-rp63-jfmw-532w.json +++ b/advisories/github-reviewed/2017/10/GHSA-rp63-jfmw-532w/GHSA-rp63-jfmw-532w.json @@ -57,6 +57,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-rp63-jfmw-532w" }, + { + "type": "PACKAGE", + "url": "https://github.com/mikel/mail" + }, { "type": "WEB", "url": "https://github.com/mikel/mail/blob/9beb079c70d236a5ad2e1ba95b2c977e55deb7af/CHANGELOG.rdoc" @@ -84,10 +88,6 @@ { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2012/04/26/1" - }, - { - "type": "PACKAGE", - "url": "https://github.com/mikel/mail" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-rprj-g6xc-p5gq/GHSA-rprj-g6xc-p5gq.json b/advisories/github-reviewed/2017/10/GHSA-rprj-g6xc-p5gq/GHSA-rprj-g6xc-p5gq.json index e8860f7bafc..a6db4681c05 100644 --- a/advisories/github-reviewed/2017/10/GHSA-rprj-g6xc-p5gq/GHSA-rprj-g6xc-p5gq.json +++ b/advisories/github-reviewed/2017/10/GHSA-rprj-g6xc-p5gq/GHSA-rprj-g6xc-p5gq.json @@ -49,6 +49,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-rprj-g6xc-p5gq" }, + { + "type": "PACKAGE", + "url": "https://github.com/schneems/wicked" + }, { "type": "WEB", "url": "http://seclists.org/oss-sec/2013/q4/43" @@ -60,10 +64,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/62891" - }, - { - "type": "PACKAGE", - "url": "https://github.com/schneems/wicked" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-v2r9-c84j-v7xm/GHSA-v2r9-c84j-v7xm.json b/advisories/github-reviewed/2017/10/GHSA-v2r9-c84j-v7xm/GHSA-v2r9-c84j-v7xm.json index e1b3786417c..4136aa38dc3 100644 --- a/advisories/github-reviewed/2017/10/GHSA-v2r9-c84j-v7xm/GHSA-v2r9-c84j-v7xm.json +++ b/advisories/github-reviewed/2017/10/GHSA-v2r9-c84j-v7xm/GHSA-v2r9-c84j-v7xm.json @@ -49,6 +49,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-v2r9-c84j-v7xm" }, + { + "type": "PACKAGE", + "url": "https://github.com/rdoc/rdoc" + }, { "type": "WEB", "url": "http://blog.segment7.net/2013/02/06/rdoc-xss-vulnerability-cve-2013-0256-releases-3-9-5-3-12-1-4-0-0-rc-2" @@ -88,10 +92,6 @@ { "type": "WEB", "url": "http://www.ubuntu.com/usn/USN-1733-1" - }, - { - "type": "PACKAGE", - "url": "https://github.com/rdoc/rdoc" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-v3rr-cph9-2g2q/GHSA-v3rr-cph9-2g2q.json b/advisories/github-reviewed/2017/10/GHSA-v3rr-cph9-2g2q/GHSA-v3rr-cph9-2g2q.json index 77369d2ab5e..0f9e00a1dc5 100644 --- a/advisories/github-reviewed/2017/10/GHSA-v3rr-cph9-2g2q/GHSA-v3rr-cph9-2g2q.json +++ b/advisories/github-reviewed/2017/10/GHSA-v3rr-cph9-2g2q/GHSA-v3rr-cph9-2g2q.json @@ -45,6 +45,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-v3rr-cph9-2g2q" }, + { + "type": "PACKAGE", + "url": "https://github.com/josh/rack-ssl" + }, { "type": "WEB", "url": "http://lists.opensuse.org/opensuse-updates/2014-04/msg00032.html" @@ -60,10 +64,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/66314" - }, - { - "type": "PACKAGE", - "url": "https://github.com/josh/rack-ssl" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-v5jg-558j-q67c/GHSA-v5jg-558j-q67c.json b/advisories/github-reviewed/2017/10/GHSA-v5jg-558j-q67c/GHSA-v5jg-558j-q67c.json index 0a52205bbf6..120d309886b 100644 --- a/advisories/github-reviewed/2017/10/GHSA-v5jg-558j-q67c/GHSA-v5jg-558j-q67c.json +++ b/advisories/github-reviewed/2017/10/GHSA-v5jg-558j-q67c/GHSA-v5jg-558j-q67c.json @@ -68,6 +68,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-v5jg-558j-q67c" }, + { + "type": "PACKAGE", + "url": "https://github.com/rails/rails" + }, { "type": "WEB", "url": "http://groups.google.com/group/rubyonrails-security/msg/fd41ab62966e0fd1?dmode=source&output=gplain" @@ -119,10 +123,6 @@ { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2011/08/22/5" - }, - { - "type": "PACKAGE", - "url": "https://github.com/rails/rails" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-v633-x5vv-hqwc/GHSA-v633-x5vv-hqwc.json b/advisories/github-reviewed/2017/10/GHSA-v633-x5vv-hqwc/GHSA-v633-x5vv-hqwc.json index f9b6841c155..b08355e8bbc 100644 --- a/advisories/github-reviewed/2017/10/GHSA-v633-x5vv-hqwc/GHSA-v633-x5vv-hqwc.json +++ b/advisories/github-reviewed/2017/10/GHSA-v633-x5vv-hqwc/GHSA-v633-x5vv-hqwc.json @@ -48,6 +48,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-v633-x5vv-hqwc" }, + { + "type": "PACKAGE", + "url": "https://github.com/expressjs/serve-index" + }, { "type": "WEB", "url": "https://nodesecurity.io/advisories/34" @@ -63,10 +67,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/96392" - }, - { - "type": "PACKAGE", - "url": "https://github.com/expressjs/serve-index" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-v9v4-7jp6-8c73/GHSA-v9v4-7jp6-8c73.json b/advisories/github-reviewed/2017/10/GHSA-v9v4-7jp6-8c73/GHSA-v9v4-7jp6-8c73.json index d4d6916ef61..f2cbb837aad 100644 --- a/advisories/github-reviewed/2017/10/GHSA-v9v4-7jp6-8c73/GHSA-v9v4-7jp6-8c73.json +++ b/advisories/github-reviewed/2017/10/GHSA-v9v4-7jp6-8c73/GHSA-v9v4-7jp6-8c73.json @@ -66,6 +66,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-v9v4-7jp6-8c73" }, + { + "type": "PACKAGE", + "url": "https://github.com/rails/rails" + }, { "type": "WEB", "url": "http://groups.google.com/group/rubyonrails-security/msg/663b600d4471e0d4?dmode=source&output=gplain" @@ -93,10 +97,6 @@ { "type": "WEB", "url": "http://weblog.rubyonrails.org/2011/6/8/potential-xss-vulnerability-in-ruby-on-rails-applications" - }, - { - "type": "PACKAGE", - "url": "https://github.com/rails/rails" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-vxf6-w9mp-95hm/GHSA-vxf6-w9mp-95hm.json b/advisories/github-reviewed/2017/10/GHSA-vxf6-w9mp-95hm/GHSA-vxf6-w9mp-95hm.json index b9a0a8573fa..39aa4b52193 100644 --- a/advisories/github-reviewed/2017/10/GHSA-vxf6-w9mp-95hm/GHSA-vxf6-w9mp-95hm.json +++ b/advisories/github-reviewed/2017/10/GHSA-vxf6-w9mp-95hm/GHSA-vxf6-w9mp-95hm.json @@ -49,13 +49,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-vxf6-w9mp-95hm" }, - { - "type": "WEB", - "url": "http://puppetlabs.com/security/cve/cve-2012-3408/" - }, { "type": "PACKAGE", "url": "https://github.com/puppetlabs/puppet" + }, + { + "type": "WEB", + "url": "http://puppetlabs.com/security/cve/cve-2012-3408/" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-w37c-q653-qg95/GHSA-w37c-q653-qg95.json b/advisories/github-reviewed/2017/10/GHSA-w37c-q653-qg95/GHSA-w37c-q653-qg95.json index 5f46235bc18..1f3f5dafd38 100644 --- a/advisories/github-reviewed/2017/10/GHSA-w37c-q653-qg95/GHSA-w37c-q653-qg95.json +++ b/advisories/github-reviewed/2017/10/GHSA-w37c-q653-qg95/GHSA-w37c-q653-qg95.json @@ -41,6 +41,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-w37c-q653-qg95" }, + { + "type": "PACKAGE", + "url": "https://github.com/rails/rails" + }, { "type": "WEB", "url": "https://groups.google.com/forum/message/raw?msg=ruby-security-ann/5ZI1-H5OoIM/ZNq4FoR2GnIJ" @@ -52,10 +56,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/64071" - }, - { - "type": "PACKAGE", - "url": "https://github.com/rails/rails" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-w3w8-37jv-2c58/GHSA-w3w8-37jv-2c58.json b/advisories/github-reviewed/2017/10/GHSA-w3w8-37jv-2c58/GHSA-w3w8-37jv-2c58.json index 8fbd11e4879..18e693717af 100644 --- a/advisories/github-reviewed/2017/10/GHSA-w3w8-37jv-2c58/GHSA-w3w8-37jv-2c58.json +++ b/advisories/github-reviewed/2017/10/GHSA-w3w8-37jv-2c58/GHSA-w3w8-37jv-2c58.json @@ -48,6 +48,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-w3w8-37jv-2c58" }, + { + "type": "PACKAGE", + "url": "https://github.com/janl/mustache.js" + }, { "type": "WEB", "url": "https://nodesecurity.io/advisories/62" @@ -67,10 +71,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/96436" - }, - { - "type": "PACKAGE", - "url": "https://github.com/janl/mustache.js" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-wcm2-9c89-wmfm/GHSA-wcm2-9c89-wmfm.json b/advisories/github-reviewed/2017/10/GHSA-wcm2-9c89-wmfm/GHSA-wcm2-9c89-wmfm.json index dd70f17d56e..adc0edee8c7 100644 --- a/advisories/github-reviewed/2017/10/GHSA-wcm2-9c89-wmfm/GHSA-wcm2-9c89-wmfm.json +++ b/advisories/github-reviewed/2017/10/GHSA-wcm2-9c89-wmfm/GHSA-wcm2-9c89-wmfm.json @@ -49,6 +49,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-wcm2-9c89-wmfm" }, + { + "type": "PACKAGE", + "url": "https://github.com/jquery/jquery-ui" + }, { "type": "WEB", "url": "https://lists.apache.org/thread.html/519eb0fd45642dcecd9ff74cb3e71c20a4753f7d82e2f07864b5108f@%3Cdev.drill.apache.org%3E" @@ -108,10 +112,6 @@ { "type": "WEB", "url": "http://www.securitytracker.com/id/1037035" - }, - { - "type": "PACKAGE", - "url": "https://github.com/jquery/jquery-ui" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-wpw7-wxjm-cw8r/GHSA-wpw7-wxjm-cw8r.json b/advisories/github-reviewed/2017/10/GHSA-wpw7-wxjm-cw8r/GHSA-wpw7-wxjm-cw8r.json index 42641d15935..a64e94693e2 100644 --- a/advisories/github-reviewed/2017/10/GHSA-wpw7-wxjm-cw8r/GHSA-wpw7-wxjm-cw8r.json +++ b/advisories/github-reviewed/2017/10/GHSA-wpw7-wxjm-cw8r/GHSA-wpw7-wxjm-cw8r.json @@ -60,6 +60,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-wpw7-wxjm-cw8r" }, + { + "type": "PACKAGE", + "url": "https://github.com/rails/rails" + }, { "type": "WEB", "url": "https://groups.google.com/forum/message/raw?msg=ruby-security-ann/niK4drpSHT4/g8JW8ZsayRkJ" @@ -103,10 +107,6 @@ { "type": "WEB", "url": "http://www.debian.org/security/2014/dsa-2888" - }, - { - "type": "PACKAGE", - "url": "https://github.com/rails/rails" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-xf96-32q2-9rw2/GHSA-xf96-32q2-9rw2.json b/advisories/github-reviewed/2017/10/GHSA-xf96-32q2-9rw2/GHSA-xf96-32q2-9rw2.json index dc35e1b13e9..9698375351d 100644 --- a/advisories/github-reviewed/2017/10/GHSA-xf96-32q2-9rw2/GHSA-xf96-32q2-9rw2.json +++ b/advisories/github-reviewed/2017/10/GHSA-xf96-32q2-9rw2/GHSA-xf96-32q2-9rw2.json @@ -45,6 +45,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-xf96-32q2-9rw2" }, + { + "type": "PACKAGE", + "url": "https://github.com/rails/rails" + }, { "type": "WEB", "url": "http://blog.innerewut.de/2008/6/16/why-you-should-upgrade-to-rails-2-1" @@ -100,10 +104,6 @@ { "type": "WEB", "url": "http://www.vupen.com/english/advisories/2008/2562" - }, - { - "type": "PACKAGE", - "url": "https://github.com/rails/rails" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-xqg8-cv3h-xppv/GHSA-xqg8-cv3h-xppv.json b/advisories/github-reviewed/2017/10/GHSA-xqg8-cv3h-xppv/GHSA-xqg8-cv3h-xppv.json index 07cff93a212..db0011969ca 100644 --- a/advisories/github-reviewed/2017/10/GHSA-xqg8-cv3h-xppv/GHSA-xqg8-cv3h-xppv.json +++ b/advisories/github-reviewed/2017/10/GHSA-xqg8-cv3h-xppv/GHSA-xqg8-cv3h-xppv.json @@ -52,6 +52,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-xqg8-cv3h-xppv" }, + { + "type": "PACKAGE", + "url": "https://github.com/sequelize/sequelize" + }, { "type": "WEB", "url": "https://nodesecurity.io/advisories/sequelize-sql-injection-order" @@ -63,10 +67,6 @@ { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2015/01/23/2" - }, - { - "type": "PACKAGE", - "url": "https://github.com/sequelize/sequelize" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-xwg4-93c6-3h42/GHSA-xwg4-93c6-3h42.json b/advisories/github-reviewed/2017/10/GHSA-xwg4-93c6-3h42/GHSA-xwg4-93c6-3h42.json index 866eb3c169d..212f5a728d4 100644 --- a/advisories/github-reviewed/2017/10/GHSA-xwg4-93c6-3h42/GHSA-xwg4-93c6-3h42.json +++ b/advisories/github-reviewed/2017/10/GHSA-xwg4-93c6-3h42/GHSA-xwg4-93c6-3h42.json @@ -57,6 +57,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-xwg4-93c6-3h42" }, + { + "type": "PACKAGE", + "url": "https://github.com/visionmedia/send" + }, { "type": "WEB", "url": "https://nodesecurity.io/advisories/send-directory-traversal" @@ -104,10 +108,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/70100" - }, - { - "type": "PACKAGE", - "url": "https://github.com/visionmedia/send" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/10/GHSA-xxr8-833v-c7wc/GHSA-xxr8-833v-c7wc.json b/advisories/github-reviewed/2017/10/GHSA-xxr8-833v-c7wc/GHSA-xxr8-833v-c7wc.json index 7dc75bc0c83..ea49e4813eb 100644 --- a/advisories/github-reviewed/2017/10/GHSA-xxr8-833v-c7wc/GHSA-xxr8-833v-c7wc.json +++ b/advisories/github-reviewed/2017/10/GHSA-xxr8-833v-c7wc/GHSA-xxr8-833v-c7wc.json @@ -64,6 +64,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-xxr8-833v-c7wc" }, + { + "type": "PACKAGE", + "url": "https://github.com/rails/rails" + }, { "type": "WEB", "url": "http://groups.google.com/group/rubyonrails-security/browse_thread/thread/2b61d70fb73c7cc5?pli=1" @@ -95,10 +99,6 @@ { "type": "WEB", "url": "http://www.securitytracker.com/id?1026342" - }, - { - "type": "PACKAGE", - "url": "https://github.com/rails/rails" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/11/GHSA-hwcf-pp87-7x6p/GHSA-hwcf-pp87-7x6p.json b/advisories/github-reviewed/2017/11/GHSA-hwcf-pp87-7x6p/GHSA-hwcf-pp87-7x6p.json index 53250d83060..53aaecc39e7 100644 --- a/advisories/github-reviewed/2017/11/GHSA-hwcf-pp87-7x6p/GHSA-hwcf-pp87-7x6p.json +++ b/advisories/github-reviewed/2017/11/GHSA-hwcf-pp87-7x6p/GHSA-hwcf-pp87-7x6p.json @@ -48,13 +48,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-hwcf-pp87-7x6p" }, - { - "type": "WEB", - "url": "http://www.securityfocus.com/bid/101889" - }, { "type": "PACKAGE", "url": "https://github.com/mde/ejs" + }, + { + "type": "WEB", + "url": "http://www.securityfocus.com/bid/101889" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/11/GHSA-pjj4-w39g-pw54/GHSA-pjj4-w39g-pw54.json b/advisories/github-reviewed/2017/11/GHSA-pjj4-w39g-pw54/GHSA-pjj4-w39g-pw54.json index 566fc5e8c32..50c91460140 100644 --- a/advisories/github-reviewed/2017/11/GHSA-pjj4-w39g-pw54/GHSA-pjj4-w39g-pw54.json +++ b/advisories/github-reviewed/2017/11/GHSA-pjj4-w39g-pw54/GHSA-pjj4-w39g-pw54.json @@ -51,13 +51,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-pjj4-w39g-pw54" }, - { - "type": "WEB", - "url": "https://rubygems.org/gems/ox/versions/2.8.0" - }, { "type": "PACKAGE", "url": "https://github.com/ohler55/ox" + }, + { + "type": "WEB", + "url": "https://rubygems.org/gems/ox/versions/2.8.0" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/11/GHSA-q97v-764g-r2rp/GHSA-q97v-764g-r2rp.json b/advisories/github-reviewed/2017/11/GHSA-q97v-764g-r2rp/GHSA-q97v-764g-r2rp.json index 1930ca84892..c6892632ff2 100644 --- a/advisories/github-reviewed/2017/11/GHSA-q97v-764g-r2rp/GHSA-q97v-764g-r2rp.json +++ b/advisories/github-reviewed/2017/11/GHSA-q97v-764g-r2rp/GHSA-q97v-764g-r2rp.json @@ -71,6 +71,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-q97v-764g-r2rp" }, + { + "type": "PACKAGE", + "url": "https://github.com/gollum/gollum" + }, { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2015/01/03/19" @@ -78,10 +82,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/71499" - }, - { - "type": "PACKAGE", - "url": "https://github.com/gollum/gollum" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/11/GHSA-wmjf-jpjj-9f3j/GHSA-wmjf-jpjj-9f3j.json b/advisories/github-reviewed/2017/11/GHSA-wmjf-jpjj-9f3j/GHSA-wmjf-jpjj-9f3j.json index 18e30227266..125ff2a53bc 100644 --- a/advisories/github-reviewed/2017/11/GHSA-wmjf-jpjj-9f3j/GHSA-wmjf-jpjj-9f3j.json +++ b/advisories/github-reviewed/2017/11/GHSA-wmjf-jpjj-9f3j/GHSA-wmjf-jpjj-9f3j.json @@ -51,13 +51,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-wmjf-jpjj-9f3j" }, - { - "type": "WEB", - "url": "http://www.openwall.com/lists/oss-security/2017/05/01/14" - }, { "type": "PACKAGE", "url": "https://github.com/bbatsov/rubocop" + }, + { + "type": "WEB", + "url": "http://www.openwall.com/lists/oss-security/2017/05/01/14" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/11/GHSA-wwh7-4jw9-33x6/GHSA-wwh7-4jw9-33x6.json b/advisories/github-reviewed/2017/11/GHSA-wwh7-4jw9-33x6/GHSA-wwh7-4jw9-33x6.json index 0532c71ed6a..4a66cbda655 100644 --- a/advisories/github-reviewed/2017/11/GHSA-wwh7-4jw9-33x6/GHSA-wwh7-4jw9-33x6.json +++ b/advisories/github-reviewed/2017/11/GHSA-wwh7-4jw9-33x6/GHSA-wwh7-4jw9-33x6.json @@ -48,6 +48,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-wwh7-4jw9-33x6" }, + { + "type": "PACKAGE", + "url": "https://github.com/brianmario/yajl-ruby" + }, { "type": "WEB", "url": "https://lists.debian.org/debian-lts-announce/2017/11/msg00010.html" @@ -55,10 +59,6 @@ { "type": "WEB", "url": "https://rubygems.org/gems/yajl-ruby" - }, - { - "type": "PACKAGE", - "url": "https://github.com/brianmario/yajl-ruby" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/11/GHSA-x7p2-x2j6-mwhr/GHSA-x7p2-x2j6-mwhr.json b/advisories/github-reviewed/2017/11/GHSA-x7p2-x2j6-mwhr/GHSA-x7p2-x2j6-mwhr.json index c45159a5d1c..264c186128b 100644 --- a/advisories/github-reviewed/2017/11/GHSA-x7p2-x2j6-mwhr/GHSA-x7p2-x2j6-mwhr.json +++ b/advisories/github-reviewed/2017/11/GHSA-x7p2-x2j6-mwhr/GHSA-x7p2-x2j6-mwhr.json @@ -44,13 +44,13 @@ "type": "WEB", "url": "https://github.com/PierreRambaud/gemirro/commit/9659f9b7ce15a723da8e361bd41b9203b19c97de" }, - { - "type": "ADVISORY", - "url": "https://github.com/advisories/GHSA-x7p2-x2j6-mwhr" - }, { "type": "PACKAGE", "url": "https://github.com/PierreRambaud/gemirro" + }, + { + "type": "ADVISORY", + "url": "https://github.com/advisories/GHSA-x7p2-x2j6-mwhr" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/12/GHSA-h9mj-fghc-664w/GHSA-h9mj-fghc-664w.json b/advisories/github-reviewed/2017/12/GHSA-h9mj-fghc-664w/GHSA-h9mj-fghc-664w.json index 8d3bacf591c..9edab2b3373 100644 --- a/advisories/github-reviewed/2017/12/GHSA-h9mj-fghc-664w/GHSA-h9mj-fghc-664w.json +++ b/advisories/github-reviewed/2017/12/GHSA-h9mj-fghc-664w/GHSA-h9mj-fghc-664w.json @@ -48,6 +48,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-h9mj-fghc-664w" }, + { + "type": "PACKAGE", + "url": "https://github.com/mqttjs/MQTT.js" + }, { "type": "WEB", "url": "https://github.com/mqttjs/MQTT.js/releases/tag/v2.15.0" @@ -63,10 +67,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/555" - }, - { - "type": "PACKAGE", - "url": "https://github.com/mqttjs/MQTT.js" } ], "database_specific": { diff --git a/advisories/github-reviewed/2017/12/GHSA-pm9p-9926-w68m/GHSA-pm9p-9926-w68m.json b/advisories/github-reviewed/2017/12/GHSA-pm9p-9926-w68m/GHSA-pm9p-9926-w68m.json index 132d34c1068..bf6148c6420 100644 --- a/advisories/github-reviewed/2017/12/GHSA-pm9p-9926-w68m/GHSA-pm9p-9926-w68m.json +++ b/advisories/github-reviewed/2017/12/GHSA-pm9p-9926-w68m/GHSA-pm9p-9926-w68m.json @@ -56,6 +56,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-pm9p-9926-w68m" }, + { + "type": "PACKAGE", + "url": "https://github.com/jfhbrook/node-ecstatic" + }, { "type": "WEB", "url": "https://www.checkmarx.com/advisories/denial-of-service-dos-vulnerability-in-ecstatic-npm-package/" @@ -63,10 +67,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/553" - }, - { - "type": "PACKAGE", - "url": "https://github.com/jfhbrook/node-ecstatic" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/01/GHSA-m7p8-9w66-9frm/GHSA-m7p8-9w66-9frm.json b/advisories/github-reviewed/2018/01/GHSA-m7p8-9w66-9frm/GHSA-m7p8-9w66-9frm.json index 87157a58f17..413f6799625 100644 --- a/advisories/github-reviewed/2018/01/GHSA-m7p8-9w66-9frm/GHSA-m7p8-9w66-9frm.json +++ b/advisories/github-reviewed/2018/01/GHSA-m7p8-9w66-9frm/GHSA-m7p8-9w66-9frm.json @@ -52,13 +52,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-m7p8-9w66-9frm" }, - { - "type": "WEB", - "url": "http://openwall.com/lists/oss-security/2017/12/17/10" - }, { "type": "PACKAGE", "url": "https://github.com/ruby-ldap/ruby-net-ldap" + }, + { + "type": "WEB", + "url": "http://openwall.com/lists/oss-security/2017/12/17/10" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/01/GHSA-mvw8-v767-qhjm/GHSA-mvw8-v767-qhjm.json b/advisories/github-reviewed/2018/01/GHSA-mvw8-v767-qhjm/GHSA-mvw8-v767-qhjm.json index 815d6498918..65f8f4886e1 100644 --- a/advisories/github-reviewed/2018/01/GHSA-mvw8-v767-qhjm/GHSA-mvw8-v767-qhjm.json +++ b/advisories/github-reviewed/2018/01/GHSA-mvw8-v767-qhjm/GHSA-mvw8-v767-qhjm.json @@ -44,13 +44,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-mvw8-v767-qhjm" }, - { - "type": "WEB", - "url": "https://github.com/imsebao/404team/blob/master/radiantcms.md" - }, { "type": "PACKAGE", "url": "https://github.com/imsebao/404team" + }, + { + "type": "WEB", + "url": "https://github.com/imsebao/404team/blob/master/radiantcms.md" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/01/GHSA-rmxg-73gg-4p98/GHSA-rmxg-73gg-4p98.json b/advisories/github-reviewed/2018/01/GHSA-rmxg-73gg-4p98/GHSA-rmxg-73gg-4p98.json index 2b9a3887948..e0687a4bbc6 100644 --- a/advisories/github-reviewed/2018/01/GHSA-rmxg-73gg-4p98/GHSA-rmxg-73gg-4p98.json +++ b/advisories/github-reviewed/2018/01/GHSA-rmxg-73gg-4p98/GHSA-rmxg-73gg-4p98.json @@ -72,6 +72,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-rmxg-73gg-4p98" }, + { + "type": "PACKAGE", + "url": "https://github.com/jquery/jquery" + }, { "type": "WEB", "url": "https://ics-cert.us-cert.gov/advisories/ICSA-18-212-04" @@ -203,10 +207,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/105658" - }, - { - "type": "PACKAGE", - "url": "https://github.com/jquery/jquery" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/03/GHSA-h6rj-8r3c-9gpj/GHSA-h6rj-8r3c-9gpj.json b/advisories/github-reviewed/2018/03/GHSA-h6rj-8r3c-9gpj/GHSA-h6rj-8r3c-9gpj.json index 1ca0896a42c..a7011dd575d 100644 --- a/advisories/github-reviewed/2018/03/GHSA-h6rj-8r3c-9gpj/GHSA-h6rj-8r3c-9gpj.json +++ b/advisories/github-reviewed/2018/03/GHSA-h6rj-8r3c-9gpj/GHSA-h6rj-8r3c-9gpj.json @@ -71,6 +71,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-h6rj-8r3c-9gpj" }, + { + "type": "PACKAGE", + "url": "https://github.com/mongodb/bson-ruby" + }, { "type": "WEB", "url": "https://github.com/mongodb/bson-ruby/compare/7446d7c6764dfda8dc4480ce16d5c023e74be5ca...28f34978a85b689a4480b4d343389bf4886522e7" @@ -86,10 +90,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/75045" - }, - { - "type": "PACKAGE", - "url": "https://github.com/mongodb/bson-ruby" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/03/GHSA-hwhh-2fwm-cfgw/GHSA-hwhh-2fwm-cfgw.json b/advisories/github-reviewed/2018/03/GHSA-hwhh-2fwm-cfgw/GHSA-hwhh-2fwm-cfgw.json index cf2000c304f..52b6a97baa6 100644 --- a/advisories/github-reviewed/2018/03/GHSA-hwhh-2fwm-cfgw/GHSA-hwhh-2fwm-cfgw.json +++ b/advisories/github-reviewed/2018/03/GHSA-hwhh-2fwm-cfgw/GHSA-hwhh-2fwm-cfgw.json @@ -59,13 +59,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-hwhh-2fwm-cfgw" }, - { - "type": "WEB", - "url": "https://github.com/doorkeeper-gem/doorkeeper/releases/tag/v4.3.0" - }, { "type": "PACKAGE", "url": "https://github.com/doorkeeper-gem/doorkeeper" + }, + { + "type": "WEB", + "url": "https://github.com/doorkeeper-gem/doorkeeper/releases/tag/v4.3.0" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/03/GHSA-wfwm-chj7-w59r/GHSA-wfwm-chj7-w59r.json b/advisories/github-reviewed/2018/03/GHSA-wfwm-chj7-w59r/GHSA-wfwm-chj7-w59r.json index ae96278ce93..38d8f6ba51d 100644 --- a/advisories/github-reviewed/2018/03/GHSA-wfwm-chj7-w59r/GHSA-wfwm-chj7-w59r.json +++ b/advisories/github-reviewed/2018/03/GHSA-wfwm-chj7-w59r/GHSA-wfwm-chj7-w59r.json @@ -48,13 +48,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-wfwm-chj7-w59r" }, - { - "type": "WEB", - "url": "https://rubygems.org/gems/ox/versions/2.8.1" - }, { "type": "PACKAGE", "url": "https://github.com/ohler55/ox" + }, + { + "type": "WEB", + "url": "https://rubygems.org/gems/ox/versions/2.8.1" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/03/GHSA-x7rv-cr6v-4vm4/GHSA-x7rv-cr6v-4vm4.json b/advisories/github-reviewed/2018/03/GHSA-x7rv-cr6v-4vm4/GHSA-x7rv-cr6v-4vm4.json index 2f9225ffdf9..3ee98194f25 100644 --- a/advisories/github-reviewed/2018/03/GHSA-x7rv-cr6v-4vm4/GHSA-x7rv-cr6v-4vm4.json +++ b/advisories/github-reviewed/2018/03/GHSA-x7rv-cr6v-4vm4/GHSA-x7rv-cr6v-4vm4.json @@ -48,6 +48,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-x7rv-cr6v-4vm4" }, + { + "type": "PACKAGE", + "url": "https://github.com/flavorjones/loofah/" + }, { "type": "WEB", "url": "https://security.netapp.com/advisory/ntap-20191122-0003/" @@ -59,10 +63,6 @@ { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2018/03/19/5" - }, - { - "type": "PACKAGE", - "url": "https://github.com/flavorjones/loofah/" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/04/GHSA-vpch-rxw3-fgx8/GHSA-vpch-rxw3-fgx8.json b/advisories/github-reviewed/2018/04/GHSA-vpch-rxw3-fgx8/GHSA-vpch-rxw3-fgx8.json index ffef5733a9e..b2195b4b98d 100644 --- a/advisories/github-reviewed/2018/04/GHSA-vpch-rxw3-fgx8/GHSA-vpch-rxw3-fgx8.json +++ b/advisories/github-reviewed/2018/04/GHSA-vpch-rxw3-fgx8/GHSA-vpch-rxw3-fgx8.json @@ -44,6 +44,10 @@ "type": "WEB", "url": "https://github.com/RisingStack/protect/issues/16" }, + { + "type": "PACKAGE", + "url": "https://github.com/RisingStack/protect" + }, { "type": "WEB", "url": "https://github.com/RisingStack/protect/blob/60b0c91e86686d34e5202419ce9ae7e8dc08edcd/lib/rules/xss.js#L4-L13" @@ -63,10 +67,6 @@ { "type": "WEB", "url": "http://embed.plnkr.co/xHbhB29JWWyMUMeHsLrm" - }, - { - "type": "PACKAGE", - "url": "https://github.com/RisingStack/protect" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/05/GHSA-gvpx-9459-w3mj/GHSA-gvpx-9459-w3mj.json b/advisories/github-reviewed/2018/05/GHSA-gvpx-9459-w3mj/GHSA-gvpx-9459-w3mj.json index 13102160a45..89b52d0892c 100644 --- a/advisories/github-reviewed/2018/05/GHSA-gvpx-9459-w3mj/GHSA-gvpx-9459-w3mj.json +++ b/advisories/github-reviewed/2018/05/GHSA-gvpx-9459-w3mj/GHSA-gvpx-9459-w3mj.json @@ -48,6 +48,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-gvpx-9459-w3mj" }, + { + "type": "PACKAGE", + "url": "https://github.com/ckeditor/ckeditor5-link" + }, { "type": "WEB", "url": "https://github.com/ckeditor/ckeditor5-link/blob/master/CHANGELOG.md#1001-2018-05-22" @@ -59,10 +63,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/1154" - }, - { - "type": "PACKAGE", - "url": "https://github.com/ckeditor/ckeditor5-link" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/07/GHSA-fwr5-q9rx-294f/GHSA-fwr5-q9rx-294f.json b/advisories/github-reviewed/2018/07/GHSA-fwr5-q9rx-294f/GHSA-fwr5-q9rx-294f.json index fb5f371fd6d..a3e18ef44ff 100644 --- a/advisories/github-reviewed/2018/07/GHSA-fwr5-q9rx-294f/GHSA-fwr5-q9rx-294f.json +++ b/advisories/github-reviewed/2018/07/GHSA-fwr5-q9rx-294f/GHSA-fwr5-q9rx-294f.json @@ -64,6 +64,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-fwr5-q9rx-294f" }, + { + "type": "PACKAGE", + "url": "https://github.com/django/django" + }, { "type": "WEB", "url": "http://archives.neohapsis.com/archives/fulldisclosure/2010-12/0580.html" @@ -131,10 +135,6 @@ { "type": "WEB", "url": "http://www.vupen.com/english/advisories/2011/0098" - }, - { - "type": "PACKAGE", - "url": "https://github.com/django/django" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/07/GHSA-fxpg-gg9g-76gj/GHSA-fxpg-gg9g-76gj.json b/advisories/github-reviewed/2018/07/GHSA-fxpg-gg9g-76gj/GHSA-fxpg-gg9g-76gj.json index 96e9239d90e..b91d2f4eb11 100644 --- a/advisories/github-reviewed/2018/07/GHSA-fxpg-gg9g-76gj/GHSA-fxpg-gg9g-76gj.json +++ b/advisories/github-reviewed/2018/07/GHSA-fxpg-gg9g-76gj/GHSA-fxpg-gg9g-76gj.json @@ -49,6 +49,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-fxpg-gg9g-76gj" }, + { + "type": "PACKAGE", + "url": "https://github.com/django/django" + }, { "type": "WEB", "url": "http://marc.info/?l=oss-security&m=128403961700444&w=2" @@ -64,10 +68,6 @@ { "type": "WEB", "url": "http://www.ubuntu.com/usn/USN-1004-1" - }, - { - "type": "PACKAGE", - "url": "https://github.com/django/django" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/07/GHSA-g7j3-p357-cw8p/GHSA-g7j3-p357-cw8p.json b/advisories/github-reviewed/2018/07/GHSA-g7j3-p357-cw8p/GHSA-g7j3-p357-cw8p.json index 5ecf351145d..f310bba0942 100644 --- a/advisories/github-reviewed/2018/07/GHSA-g7j3-p357-cw8p/GHSA-g7j3-p357-cw8p.json +++ b/advisories/github-reviewed/2018/07/GHSA-g7j3-p357-cw8p/GHSA-g7j3-p357-cw8p.json @@ -55,6 +55,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-g7j3-p357-cw8p" }, + { + "type": "PACKAGE", + "url": "https://github.com/shy2850/node-server" + }, { "type": "WEB", "url": "https://nodesecurity.io/advisories/346" @@ -62,10 +66,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/346" - }, - { - "type": "PACKAGE", - "url": "https://github.com/shy2850/node-server" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/07/GHSA-g7q5-pjjr-gqvp/GHSA-g7q5-pjjr-gqvp.json b/advisories/github-reviewed/2018/07/GHSA-g7q5-pjjr-gqvp/GHSA-g7q5-pjjr-gqvp.json index 9c338edaec4..352a6f0f800 100644 --- a/advisories/github-reviewed/2018/07/GHSA-g7q5-pjjr-gqvp/GHSA-g7q5-pjjr-gqvp.json +++ b/advisories/github-reviewed/2018/07/GHSA-g7q5-pjjr-gqvp/GHSA-g7q5-pjjr-gqvp.json @@ -64,6 +64,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-g7q5-pjjr-gqvp" }, + { + "type": "PACKAGE", + "url": "https://github.com/salesforce/tough-cookie" + }, { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/6VEBDTGNHVM677SLZDEHMWOP3ISMZSFT/" @@ -83,10 +87,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/101185" - }, - { - "type": "PACKAGE", - "url": "https://github.com/salesforce/tough-cookie" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/07/GHSA-gcr6-rf47-jrgf/GHSA-gcr6-rf47-jrgf.json b/advisories/github-reviewed/2018/07/GHSA-gcr6-rf47-jrgf/GHSA-gcr6-rf47-jrgf.json index 3c565dd63f3..1754b278444 100644 --- a/advisories/github-reviewed/2018/07/GHSA-gcr6-rf47-jrgf/GHSA-gcr6-rf47-jrgf.json +++ b/advisories/github-reviewed/2018/07/GHSA-gcr6-rf47-jrgf/GHSA-gcr6-rf47-jrgf.json @@ -49,6 +49,10 @@ "type": "WEB", "url": "https://github.com/jazzband/tablib/commit/69abfc3ada5d754cb152119c0b4777043657cb6e" }, + { + "type": "PACKAGE", + "url": "https://github.com/jazzband/tablib" + }, { "type": "WEB", "url": "https://security.gentoo.org/glsa/201811-18" @@ -60,10 +64,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/99076" - }, - { - "type": "PACKAGE", - "url": "https://github.com/jazzband/tablib" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/07/GHSA-h6hq-c896-w882/GHSA-h6hq-c896-w882.json b/advisories/github-reviewed/2018/07/GHSA-h6hq-c896-w882/GHSA-h6hq-c896-w882.json index a756b5ffcb7..f1180ed2fa1 100644 --- a/advisories/github-reviewed/2018/07/GHSA-h6hq-c896-w882/GHSA-h6hq-c896-w882.json +++ b/advisories/github-reviewed/2018/07/GHSA-h6hq-c896-w882/GHSA-h6hq-c896-w882.json @@ -64,6 +64,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-h6hq-c896-w882" }, + { + "type": "PACKAGE", + "url": "https://github.com/plone/Plone" + }, { "type": "WEB", "url": "http://osvdb.org/72728" @@ -91,10 +95,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/48005" - }, - { - "type": "PACKAGE", - "url": "https://github.com/plone/Plone" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/07/GHSA-h95j-h2rv-qrg4/GHSA-h95j-h2rv-qrg4.json b/advisories/github-reviewed/2018/07/GHSA-h95j-h2rv-qrg4/GHSA-h95j-h2rv-qrg4.json index 1a9421ecc1d..8a558c906d1 100644 --- a/advisories/github-reviewed/2018/07/GHSA-h95j-h2rv-qrg4/GHSA-h95j-h2rv-qrg4.json +++ b/advisories/github-reviewed/2018/07/GHSA-h95j-h2rv-qrg4/GHSA-h95j-h2rv-qrg4.json @@ -64,6 +64,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-h95j-h2rv-qrg4" }, + { + "type": "PACKAGE", + "url": "https://github.com/django/django" + }, { "type": "WEB", "url": "https://hermes.opensuse.org/messages/14700881" @@ -91,10 +95,6 @@ { "type": "WEB", "url": "http://www.debian.org/security/2011/dsa-2332" - }, - { - "type": "PACKAGE", - "url": "https://github.com/django/django" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/07/GHSA-hggx-3h72-49ww/GHSA-hggx-3h72-49ww.json b/advisories/github-reviewed/2018/07/GHSA-hggx-3h72-49ww/GHSA-hggx-3h72-49ww.json index 0fa2e7d816d..20514816676 100644 --- a/advisories/github-reviewed/2018/07/GHSA-hggx-3h72-49ww/GHSA-hggx-3h72-49ww.json +++ b/advisories/github-reviewed/2018/07/GHSA-hggx-3h72-49ww/GHSA-hggx-3h72-49ww.json @@ -48,6 +48,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-hggx-3h72-49ww" }, + { + "type": "PACKAGE", + "url": "https://github.com/python-pillow/Pillow" + }, { "type": "WEB", "url": "https://github.com/python-pillow/Pillow/blob/c3cb690fed5d4bf0c45576759de55d054916c165/CHANGES.rst" @@ -59,10 +63,6 @@ { "type": "WEB", "url": "http://www.debian.org/security/2016/dsa-3499" - }, - { - "type": "PACKAGE", - "url": "https://github.com/python-pillow/Pillow" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/07/GHSA-hvr8-466p-75rh/GHSA-hvr8-466p-75rh.json b/advisories/github-reviewed/2018/07/GHSA-hvr8-466p-75rh/GHSA-hvr8-466p-75rh.json index 7dfb44d2174..f69b962f33c 100644 --- a/advisories/github-reviewed/2018/07/GHSA-hvr8-466p-75rh/GHSA-hvr8-466p-75rh.json +++ b/advisories/github-reviewed/2018/07/GHSA-hvr8-466p-75rh/GHSA-hvr8-466p-75rh.json @@ -52,6 +52,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-hvr8-466p-75rh" }, + { + "type": "PACKAGE", + "url": "https://github.com/python-pillow/Pillow" + }, { "type": "WEB", "url": "https://github.com/python-pillow/Pillow/blob/c3cb690fed5d4bf0c45576759de55d054916c165/CHANGES.rst" @@ -63,10 +67,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/86064" - }, - { - "type": "PACKAGE", - "url": "https://github.com/python-pillow/Pillow" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/07/GHSA-hxf9-7h4c-f5jv/GHSA-hxf9-7h4c-f5jv.json b/advisories/github-reviewed/2018/07/GHSA-hxf9-7h4c-f5jv/GHSA-hxf9-7h4c-f5jv.json index af8b1c72796..c930bb922d5 100644 --- a/advisories/github-reviewed/2018/07/GHSA-hxf9-7h4c-f5jv/GHSA-hxf9-7h4c-f5jv.json +++ b/advisories/github-reviewed/2018/07/GHSA-hxf9-7h4c-f5jv/GHSA-hxf9-7h4c-f5jv.json @@ -61,6 +61,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-hxf9-7h4c-f5jv" }, + { + "type": "PACKAGE", + "url": "https://github.com/anymail/django-anymail" + }, { "type": "WEB", "url": "https://github.com/anymail/django-anymail/releases/tag/v1.2.1" @@ -72,10 +76,6 @@ { "type": "WEB", "url": "https://www.debian.org/security/2018/dsa-4107" - }, - { - "type": "PACKAGE", - "url": "https://github.com/anymail/django-anymail" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/07/GHSA-hxxf-q3w9-4xgw/GHSA-hxxf-q3w9-4xgw.json b/advisories/github-reviewed/2018/07/GHSA-hxxf-q3w9-4xgw/GHSA-hxxf-q3w9-4xgw.json index cd6fd72af33..9d6c0594975 100644 --- a/advisories/github-reviewed/2018/07/GHSA-hxxf-q3w9-4xgw/GHSA-hxxf-q3w9-4xgw.json +++ b/advisories/github-reviewed/2018/07/GHSA-hxxf-q3w9-4xgw/GHSA-hxxf-q3w9-4xgw.json @@ -73,6 +73,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-hxxf-q3w9-4xgw" }, + { + "type": "PACKAGE", + "url": "https://github.com/eslint/eslint-scope" + }, { "type": "WEB", "url": "https://snyk.io/vuln/SNYK-JS-ESLINTSCOPE-11120" @@ -80,10 +84,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/673" - }, - { - "type": "PACKAGE", - "url": "https://github.com/eslint/eslint-scope" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/07/GHSA-jcpv-g9rr-qxrc/GHSA-jcpv-g9rr-qxrc.json b/advisories/github-reviewed/2018/07/GHSA-jcpv-g9rr-qxrc/GHSA-jcpv-g9rr-qxrc.json index f443ff9547c..196ce56045b 100644 --- a/advisories/github-reviewed/2018/07/GHSA-jcpv-g9rr-qxrc/GHSA-jcpv-g9rr-qxrc.json +++ b/advisories/github-reviewed/2018/07/GHSA-jcpv-g9rr-qxrc/GHSA-jcpv-g9rr-qxrc.json @@ -75,6 +75,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-jcpv-g9rr-qxrc" }, + { + "type": "PACKAGE", + "url": "https://github.com/hueniverse/hawk" + }, { "type": "WEB", "url": "https://nodesecurity.io/advisories/77" @@ -90,10 +94,6 @@ { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2016/02/20/2" - }, - { - "type": "PACKAGE", - "url": "https://github.com/hueniverse/hawk" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/07/GHSA-mj4x-wcxf-hm8x/GHSA-mj4x-wcxf-hm8x.json b/advisories/github-reviewed/2018/07/GHSA-mj4x-wcxf-hm8x/GHSA-mj4x-wcxf-hm8x.json index 8a0010296f8..f968f517596 100644 --- a/advisories/github-reviewed/2018/07/GHSA-mj4x-wcxf-hm8x/GHSA-mj4x-wcxf-hm8x.json +++ b/advisories/github-reviewed/2018/07/GHSA-mj4x-wcxf-hm8x/GHSA-mj4x-wcxf-hm8x.json @@ -48,13 +48,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-mj4x-wcxf-hm8x" }, - { - "type": "WEB", - "url": "https://www.debian.org/security/2018/dsa-4283" - }, { "type": "PACKAGE", "url": "https://github.com/nov/json-jwt" + }, + { + "type": "WEB", + "url": "https://www.debian.org/security/2018/dsa-4283" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/07/GHSA-mm62-wxc8-cf7m/GHSA-mm62-wxc8-cf7m.json b/advisories/github-reviewed/2018/07/GHSA-mm62-wxc8-cf7m/GHSA-mm62-wxc8-cf7m.json index 0a5fa0c7226..b8a6c2e8374 100644 --- a/advisories/github-reviewed/2018/07/GHSA-mm62-wxc8-cf7m/GHSA-mm62-wxc8-cf7m.json +++ b/advisories/github-reviewed/2018/07/GHSA-mm62-wxc8-cf7m/GHSA-mm62-wxc8-cf7m.json @@ -51,6 +51,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-mm62-wxc8-cf7m" }, + { + "type": "PACKAGE", + "url": "https://github.com/commenthol/serialize-to-js" + }, { "type": "WEB", "url": "https://opsecx.com/index.php/2017/02/08/exploiting-node-js-deserialization-bug-for-remote-code-execution/" @@ -66,10 +70,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/96223" - }, - { - "type": "PACKAGE", - "url": "https://github.com/commenthol/serialize-to-js" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/07/GHSA-p6h9-gw49-rqm4/GHSA-p6h9-gw49-rqm4.json b/advisories/github-reviewed/2018/07/GHSA-p6h9-gw49-rqm4/GHSA-p6h9-gw49-rqm4.json index 880b6b8bd48..b784a18c874 100644 --- a/advisories/github-reviewed/2018/07/GHSA-p6h9-gw49-rqm4/GHSA-p6h9-gw49-rqm4.json +++ b/advisories/github-reviewed/2018/07/GHSA-p6h9-gw49-rqm4/GHSA-p6h9-gw49-rqm4.json @@ -56,13 +56,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-p6h9-gw49-rqm4" }, - { - "type": "WEB", - "url": "https://github.com/trentm/python-markdown2/blob/master/CHANGES.md#python-markdown2-236" - }, { "type": "PACKAGE", "url": "https://github.com/trentm/python-markdown2" + }, + { + "type": "WEB", + "url": "https://github.com/trentm/python-markdown2/blob/master/CHANGES.md#python-markdown2-236" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/07/GHSA-p7xc-35m8-57pr/GHSA-p7xc-35m8-57pr.json b/advisories/github-reviewed/2018/07/GHSA-p7xc-35m8-57pr/GHSA-p7xc-35m8-57pr.json index b828620b77d..64987e3ecd9 100644 --- a/advisories/github-reviewed/2018/07/GHSA-p7xc-35m8-57pr/GHSA-p7xc-35m8-57pr.json +++ b/advisories/github-reviewed/2018/07/GHSA-p7xc-35m8-57pr/GHSA-p7xc-35m8-57pr.json @@ -44,13 +44,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-p7xc-35m8-57pr" }, - { - "type": "WEB", - "url": "https://github.com/fedora-infra/fedmsg/blob/0.18.2/CHANGELOG.rst" - }, { "type": "PACKAGE", "url": "https://github.com/fedora-infra/fedmsg" + }, + { + "type": "WEB", + "url": "https://github.com/fedora-infra/fedmsg/blob/0.18.2/CHANGELOG.rst" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/07/GHSA-pcwm-8jc3-qxvj/GHSA-pcwm-8jc3-qxvj.json b/advisories/github-reviewed/2018/07/GHSA-pcwm-8jc3-qxvj/GHSA-pcwm-8jc3-qxvj.json index 1d6fcf04ebe..39dc155a3c1 100644 --- a/advisories/github-reviewed/2018/07/GHSA-pcwm-8jc3-qxvj/GHSA-pcwm-8jc3-qxvj.json +++ b/advisories/github-reviewed/2018/07/GHSA-pcwm-8jc3-qxvj/GHSA-pcwm-8jc3-qxvj.json @@ -45,6 +45,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-pcwm-8jc3-qxvj" }, + { + "type": "PACKAGE", + "url": "https://github.com/plone/plone" + }, { "type": "WEB", "url": "http://archives.neohapsis.com/archives/bugtraq/2011-12/0181.html" @@ -64,10 +68,6 @@ { "type": "WEB", "url": "http://www.ocert.org/advisories/ocert-2011-003.html" - }, - { - "type": "PACKAGE", - "url": "https://github.com/plone/plone" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/07/GHSA-prr5-pfr8-q9f3/GHSA-prr5-pfr8-q9f3.json b/advisories/github-reviewed/2018/07/GHSA-prr5-pfr8-q9f3/GHSA-prr5-pfr8-q9f3.json index 834e6a162be..3b6c35aaa36 100644 --- a/advisories/github-reviewed/2018/07/GHSA-prr5-pfr8-q9f3/GHSA-prr5-pfr8-q9f3.json +++ b/advisories/github-reviewed/2018/07/GHSA-prr5-pfr8-q9f3/GHSA-prr5-pfr8-q9f3.json @@ -63,6 +63,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-prr5-pfr8-q9f3" }, + { + "type": "PACKAGE", + "url": "https://github.com/plone/Products.CMFPlone" + }, { "type": "WEB", "url": "https://github.com/plone/Products.CMFPlone/blob/4.2.3/docs/CHANGES.txt" @@ -78,10 +82,6 @@ { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2012/11/10/1" - }, - { - "type": "PACKAGE", - "url": "https://github.com/plone/Products.CMFPlone" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/07/GHSA-pvhp-v9qp-xf5r/GHSA-pvhp-v9qp-xf5r.json b/advisories/github-reviewed/2018/07/GHSA-pvhp-v9qp-xf5r/GHSA-pvhp-v9qp-xf5r.json index b1f705299ad..780218bd3a3 100644 --- a/advisories/github-reviewed/2018/07/GHSA-pvhp-v9qp-xf5r/GHSA-pvhp-v9qp-xf5r.json +++ b/advisories/github-reviewed/2018/07/GHSA-pvhp-v9qp-xf5r/GHSA-pvhp-v9qp-xf5r.json @@ -59,6 +59,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-4103" }, + { + "type": "PACKAGE", + "url": "https://bitbucket.org/jespern/django-piston" + }, { "type": "WEB", "url": "https://bitbucket.org/jespern/django-piston/commits/91bdaec89543/" @@ -82,10 +86,6 @@ { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2011/11/01/10" - }, - { - "type": "PACKAGE", - "url": "https://bitbucket.org/jespern/django-piston" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/07/GHSA-r38r-qp28-2m63/GHSA-r38r-qp28-2m63.json b/advisories/github-reviewed/2018/07/GHSA-r38r-qp28-2m63/GHSA-r38r-qp28-2m63.json index bacce95c422..6387d80244f 100644 --- a/advisories/github-reviewed/2018/07/GHSA-r38r-qp28-2m63/GHSA-r38r-qp28-2m63.json +++ b/advisories/github-reviewed/2018/07/GHSA-r38r-qp28-2m63/GHSA-r38r-qp28-2m63.json @@ -58,13 +58,13 @@ "type": "WEB", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1116485" }, - { - "type": "WEB", - "url": "http://www.openwall.com/lists/oss-security/2015/02/07/1" - }, { "type": "PACKAGE", "url": "https://github.com/python-rope/rope" + }, + { + "type": "WEB", + "url": "http://www.openwall.com/lists/oss-security/2015/02/07/1" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/07/GHSA-rwr3-c2q8-gm56/GHSA-rwr3-c2q8-gm56.json b/advisories/github-reviewed/2018/07/GHSA-rwr3-c2q8-gm56/GHSA-rwr3-c2q8-gm56.json index 274888b5f3e..c58b33871b9 100644 --- a/advisories/github-reviewed/2018/07/GHSA-rwr3-c2q8-gm56/GHSA-rwr3-c2q8-gm56.json +++ b/advisories/github-reviewed/2018/07/GHSA-rwr3-c2q8-gm56/GHSA-rwr3-c2q8-gm56.json @@ -52,6 +52,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-rwr3-c2q8-gm56" }, + { + "type": "PACKAGE", + "url": "https://github.com/python-pillow/Pillow/" + }, { "type": "WEB", "url": "https://security.gentoo.org/glsa/201612-52" @@ -67,10 +71,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/94234" - }, - { - "type": "PACKAGE", - "url": "https://github.com/python-pillow/Pillow/" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/07/GHSA-vcqg-cmv3-wj57/GHSA-vcqg-cmv3-wj57.json b/advisories/github-reviewed/2018/07/GHSA-vcqg-cmv3-wj57/GHSA-vcqg-cmv3-wj57.json index b0fa72cd1cb..4f4e76e418c 100644 --- a/advisories/github-reviewed/2018/07/GHSA-vcqg-cmv3-wj57/GHSA-vcqg-cmv3-wj57.json +++ b/advisories/github-reviewed/2018/07/GHSA-vcqg-cmv3-wj57/GHSA-vcqg-cmv3-wj57.json @@ -45,6 +45,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-vcqg-cmv3-wj57" }, + { + "type": "PACKAGE", + "url": "https://github.com/muaz-khan/Reliable-Signaler" + }, { "type": "WEB", "url": "https://nodesecurity.io/advisories/385" @@ -52,10 +56,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/385" - }, - { - "type": "PACKAGE", - "url": "https://github.com/muaz-khan/Reliable-Signaler" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/07/GHSA-w4vg-rf63-f3j3/GHSA-w4vg-rf63-f3j3.json b/advisories/github-reviewed/2018/07/GHSA-w4vg-rf63-f3j3/GHSA-w4vg-rf63-f3j3.json index f9224a5fc03..6ce70dbedf0 100644 --- a/advisories/github-reviewed/2018/07/GHSA-w4vg-rf63-f3j3/GHSA-w4vg-rf63-f3j3.json +++ b/advisories/github-reviewed/2018/07/GHSA-w4vg-rf63-f3j3/GHSA-w4vg-rf63-f3j3.json @@ -52,6 +52,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-w4vg-rf63-f3j3" }, + { + "type": "PACKAGE", + "url": "https://github.com/python-pillow/Pillow" + }, { "type": "WEB", "url": "https://security.gentoo.org/glsa/201612-52" @@ -67,10 +71,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/94234" - }, - { - "type": "PACKAGE", - "url": "https://github.com/python-pillow/Pillow" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/07/GHSA-x88j-93vc-wpmp/GHSA-x88j-93vc-wpmp.json b/advisories/github-reviewed/2018/07/GHSA-x88j-93vc-wpmp/GHSA-x88j-93vc-wpmp.json index 049c3e45ac0..a751d35313b 100644 --- a/advisories/github-reviewed/2018/07/GHSA-x88j-93vc-wpmp/GHSA-x88j-93vc-wpmp.json +++ b/advisories/github-reviewed/2018/07/GHSA-x88j-93vc-wpmp/GHSA-x88j-93vc-wpmp.json @@ -64,6 +64,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-x88j-93vc-wpmp" }, + { + "type": "PACKAGE", + "url": "https://github.com/django/django" + }, { "type": "WEB", "url": "https://hermes.opensuse.org/messages/14700881" @@ -91,10 +95,6 @@ { "type": "WEB", "url": "http://www.debian.org/security/2011/dsa-2332" - }, - { - "type": "PACKAGE", - "url": "https://github.com/django/django" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/07/GHSA-xpm8-98mx-h4c5/GHSA-xpm8-98mx-h4c5.json b/advisories/github-reviewed/2018/07/GHSA-xpm8-98mx-h4c5/GHSA-xpm8-98mx-h4c5.json index 4b2cef9ddeb..d9c8275fd10 100644 --- a/advisories/github-reviewed/2018/07/GHSA-xpm8-98mx-h4c5/GHSA-xpm8-98mx-h4c5.json +++ b/advisories/github-reviewed/2018/07/GHSA-xpm8-98mx-h4c5/GHSA-xpm8-98mx-h4c5.json @@ -57,13 +57,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-xpm8-98mx-h4c5" }, - { - "type": "WEB", - "url": "https://joel-malwarebenchmark.github.io/blog/2017/11/08/cve-2017-16615-critical-restful-web-applications-vulnerability/" - }, { "type": "PACKAGE", "url": "https://github.com/thanethomson/MLAlchemy" + }, + { + "type": "WEB", + "url": "https://joel-malwarebenchmark.github.io/blog/2017/11/08/cve-2017-16615-critical-restful-web-applications-vulnerability/" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/08/GHSA-cqxw-3p7v-p9gr/GHSA-cqxw-3p7v-p9gr.json b/advisories/github-reviewed/2018/08/GHSA-cqxw-3p7v-p9gr/GHSA-cqxw-3p7v-p9gr.json index abfd87c246f..e62b32b3f16 100644 --- a/advisories/github-reviewed/2018/08/GHSA-cqxw-3p7v-p9gr/GHSA-cqxw-3p7v-p9gr.json +++ b/advisories/github-reviewed/2018/08/GHSA-cqxw-3p7v-p9gr/GHSA-cqxw-3p7v-p9gr.json @@ -48,13 +48,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-cqxw-3p7v-p9gr" }, - { - "type": "WEB", - "url": "https://github.com/phusion/passenger/blob/stable-5.1/CHANGELOG" - }, { "type": "PACKAGE", "url": "https://github.com/phusion/passenger/" + }, + { + "type": "WEB", + "url": "https://github.com/phusion/passenger/blob/stable-5.1/CHANGELOG" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/08/GHSA-gf7h-vg5v-cch6/GHSA-gf7h-vg5v-cch6.json b/advisories/github-reviewed/2018/08/GHSA-gf7h-vg5v-cch6/GHSA-gf7h-vg5v-cch6.json index 2adf2164de9..87d4b039dc7 100644 --- a/advisories/github-reviewed/2018/08/GHSA-gf7h-vg5v-cch6/GHSA-gf7h-vg5v-cch6.json +++ b/advisories/github-reviewed/2018/08/GHSA-gf7h-vg5v-cch6/GHSA-gf7h-vg5v-cch6.json @@ -40,6 +40,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-16198" }, + { + "type": "PACKAGE", + "url": "https://github.com/JacksonGL/NPM-Vuln-PoC" + }, { "type": "WEB", "url": "https://github.com/JacksonGL/NPM-Vuln-PoC/blob/master/directory-traversal/ritp" @@ -55,10 +59,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/432" - }, - { - "type": "PACKAGE", - "url": "https://github.com/JacksonGL/NPM-Vuln-PoC" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/08/GHSA-hg4c-rgvm-964g/GHSA-hg4c-rgvm-964g.json b/advisories/github-reviewed/2018/08/GHSA-hg4c-rgvm-964g/GHSA-hg4c-rgvm-964g.json index bfa3a6eb168..14a41c919b2 100644 --- a/advisories/github-reviewed/2018/08/GHSA-hg4c-rgvm-964g/GHSA-hg4c-rgvm-964g.json +++ b/advisories/github-reviewed/2018/08/GHSA-hg4c-rgvm-964g/GHSA-hg4c-rgvm-964g.json @@ -101,6 +101,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-hg4c-rgvm-964g" }, + { + "type": "PACKAGE", + "url": "https://github.com/geopython/pycsw" + }, { "type": "WEB", "url": "https://patch-diff.githubusercontent.com/raw/geopython/pycsw/pull/474.patch" @@ -112,10 +116,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/94302" - }, - { - "type": "PACKAGE", - "url": "https://github.com/geopython/pycsw" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/08/GHSA-hgg3-g7gr-66r7/GHSA-hgg3-g7gr-66r7.json b/advisories/github-reviewed/2018/08/GHSA-hgg3-g7gr-66r7/GHSA-hgg3-g7gr-66r7.json index b7d2e2f1e5c..b7a65bd35b6 100644 --- a/advisories/github-reviewed/2018/08/GHSA-hgg3-g7gr-66r7/GHSA-hgg3-g7gr-66r7.json +++ b/advisories/github-reviewed/2018/08/GHSA-hgg3-g7gr-66r7/GHSA-hgg3-g7gr-66r7.json @@ -44,6 +44,10 @@ "type": "WEB", "url": "https://github.com/Legrandin/pycryptodome/issues/198" }, + { + "type": "PACKAGE", + "url": "https://github.com/Legrandin/pycryptodome" + }, { "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-hgg3-g7gr-66r7" @@ -51,10 +55,6 @@ { "type": "WEB", "url": "https://whitehatck01.blogspot.com/2018/08/integer-overflow-vulnerability-in.html" - }, - { - "type": "PACKAGE", - "url": "https://github.com/Legrandin/pycryptodome" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/08/GHSA-m2q3-53fq-7h66/GHSA-m2q3-53fq-7h66.json b/advisories/github-reviewed/2018/08/GHSA-m2q3-53fq-7h66/GHSA-m2q3-53fq-7h66.json index 36102f551e9..f3015f90996 100644 --- a/advisories/github-reviewed/2018/08/GHSA-m2q3-53fq-7h66/GHSA-m2q3-53fq-7h66.json +++ b/advisories/github-reviewed/2018/08/GHSA-m2q3-53fq-7h66/GHSA-m2q3-53fq-7h66.json @@ -49,6 +49,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-m2q3-53fq-7h66" }, + { + "type": "PACKAGE", + "url": "https://github.com/gollum/gollum" + }, { "type": "WEB", "url": "http://jvn.jp/en/jp/JVN27548431/index.html" @@ -60,10 +64,6 @@ { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2015/09/22/12" - }, - { - "type": "PACKAGE", - "url": "https://github.com/gollum/gollum" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/08/GHSA-mf6w-45cf-qhmp/GHSA-mf6w-45cf-qhmp.json b/advisories/github-reviewed/2018/08/GHSA-mf6w-45cf-qhmp/GHSA-mf6w-45cf-qhmp.json index 5b0022e75d7..693b6aae238 100644 --- a/advisories/github-reviewed/2018/08/GHSA-mf6w-45cf-qhmp/GHSA-mf6w-45cf-qhmp.json +++ b/advisories/github-reviewed/2018/08/GHSA-mf6w-45cf-qhmp/GHSA-mf6w-45cf-qhmp.json @@ -52,13 +52,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-mf6w-45cf-qhmp" }, - { - "type": "WEB", - "url": "http://www.securityfocus.com/bid/81433" - }, { "type": "PACKAGE", "url": "https://github.com/square/git-fastclone" + }, + { + "type": "WEB", + "url": "http://www.securityfocus.com/bid/81433" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/08/GHSA-vcfp-ppqw-mf23/GHSA-vcfp-ppqw-mf23.json b/advisories/github-reviewed/2018/08/GHSA-vcfp-ppqw-mf23/GHSA-vcfp-ppqw-mf23.json index a47ed6f749f..e480cbf8087 100644 --- a/advisories/github-reviewed/2018/08/GHSA-vcfp-ppqw-mf23/GHSA-vcfp-ppqw-mf23.json +++ b/advisories/github-reviewed/2018/08/GHSA-vcfp-ppqw-mf23/GHSA-vcfp-ppqw-mf23.json @@ -41,6 +41,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-vcfp-ppqw-mf23" }, + { + "type": "PACKAGE", + "url": "https://github.com/fis-dev/fis-sass" + }, { "type": "WEB", "url": "https://nodesecurity.io/advisories/287" @@ -48,10 +52,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/287" - }, - { - "type": "PACKAGE", - "url": "https://github.com/fis-dev/fis-sass" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/08/GHSA-x489-jjwm-52g7/GHSA-x489-jjwm-52g7.json b/advisories/github-reviewed/2018/08/GHSA-x489-jjwm-52g7/GHSA-x489-jjwm-52g7.json index 987367b1ebb..75e730606da 100644 --- a/advisories/github-reviewed/2018/08/GHSA-x489-jjwm-52g7/GHSA-x489-jjwm-52g7.json +++ b/advisories/github-reviewed/2018/08/GHSA-x489-jjwm-52g7/GHSA-x489-jjwm-52g7.json @@ -52,6 +52,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-x489-jjwm-52g7" }, + { + "type": "PACKAGE", + "url": "https://github.com/tinfoil/devise-two-factor" + }, { "type": "WEB", "url": "https://github.com/tinfoil/devise-two-factor/blob/master/UPGRADING.md" @@ -67,10 +71,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/76789" - }, - { - "type": "PACKAGE", - "url": "https://github.com/tinfoil/devise-two-factor" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/08/GHSA-x7q3-67vc-wvcf/GHSA-x7q3-67vc-wvcf.json b/advisories/github-reviewed/2018/08/GHSA-x7q3-67vc-wvcf/GHSA-x7q3-67vc-wvcf.json index caee4b74134..8d628533b86 100644 --- a/advisories/github-reviewed/2018/08/GHSA-x7q3-67vc-wvcf/GHSA-x7q3-67vc-wvcf.json +++ b/advisories/github-reviewed/2018/08/GHSA-x7q3-67vc-wvcf/GHSA-x7q3-67vc-wvcf.json @@ -41,6 +41,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-x7q3-67vc-wvcf" }, + { + "type": "PACKAGE", + "url": "https://github.com/gcpantazis/grunt-images" + }, { "type": "WEB", "url": "https://nodesecurity.io/advisories/255" @@ -48,10 +52,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/255" - }, - { - "type": "PACKAGE", - "url": "https://github.com/gcpantazis/grunt-images" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/08/GHSA-xrr4-74mc-rpjc/GHSA-xrr4-74mc-rpjc.json b/advisories/github-reviewed/2018/08/GHSA-xrr4-74mc-rpjc/GHSA-xrr4-74mc-rpjc.json index 01c96bf8d4b..17a91a12303 100644 --- a/advisories/github-reviewed/2018/08/GHSA-xrr4-74mc-rpjc/GHSA-xrr4-74mc-rpjc.json +++ b/advisories/github-reviewed/2018/08/GHSA-xrr4-74mc-rpjc/GHSA-xrr4-74mc-rpjc.json @@ -52,13 +52,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-xrr4-74mc-rpjc" }, - { - "type": "WEB", - "url": "https://pythonhosted.org/Pyro/12-changes.html" - }, { "type": "PACKAGE", "url": "https://github.com/irmen/Pyro3" + }, + { + "type": "WEB", + "url": "https://pythonhosted.org/Pyro/12-changes.html" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/09/GHSA-fpcv-j2q9-vqhw/GHSA-fpcv-j2q9-vqhw.json b/advisories/github-reviewed/2018/09/GHSA-fpcv-j2q9-vqhw/GHSA-fpcv-j2q9-vqhw.json index 42560110c73..787395cda69 100644 --- a/advisories/github-reviewed/2018/09/GHSA-fpcv-j2q9-vqhw/GHSA-fpcv-j2q9-vqhw.json +++ b/advisories/github-reviewed/2018/09/GHSA-fpcv-j2q9-vqhw/GHSA-fpcv-j2q9-vqhw.json @@ -44,6 +44,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-fpcv-j2q9-vqhw" }, + { + "type": "PACKAGE", + "url": "https://gitlab.com/mayan-edms/mayan-edms" + }, { "type": "WEB", "url": "https://gitlab.com/mayan-edms/mayan-edms/blob/master/HISTORY.rst" @@ -55,10 +59,6 @@ { "type": "WEB", "url": "https://gitlab.com/mayan-edms/mayan-edms/issues/494" - }, - { - "type": "PACKAGE", - "url": "https://gitlab.com/mayan-edms/mayan-edms" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/09/GHSA-fpwp-69xv-c67f/GHSA-fpwp-69xv-c67f.json b/advisories/github-reviewed/2018/09/GHSA-fpwp-69xv-c67f/GHSA-fpwp-69xv-c67f.json index f66a95037ad..0f17ea67a06 100644 --- a/advisories/github-reviewed/2018/09/GHSA-fpwp-69xv-c67f/GHSA-fpwp-69xv-c67f.json +++ b/advisories/github-reviewed/2018/09/GHSA-fpwp-69xv-c67f/GHSA-fpwp-69xv-c67f.json @@ -48,13 +48,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-fpwp-69xv-c67f" }, - { - "type": "WEB", - "url": "https://github.com/aio-libs/aiohttp-session/blob/master/aiohttp_session/redis_storage.py#L60" - }, { "type": "PACKAGE", "url": "https://github.com/aio-libs/aiohttp-session" + }, + { + "type": "WEB", + "url": "https://github.com/aio-libs/aiohttp-session/blob/master/aiohttp_session/redis_storage.py#L60" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/09/GHSA-h6h9-pphv-m266/GHSA-h6h9-pphv-m266.json b/advisories/github-reviewed/2018/09/GHSA-h6h9-pphv-m266/GHSA-h6h9-pphv-m266.json index 7c27fcbfb5a..f8fe0b3f492 100644 --- a/advisories/github-reviewed/2018/09/GHSA-h6h9-pphv-m266/GHSA-h6h9-pphv-m266.json +++ b/advisories/github-reviewed/2018/09/GHSA-h6h9-pphv-m266/GHSA-h6h9-pphv-m266.json @@ -48,13 +48,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-h6h9-pphv-m266" }, - { - "type": "WEB", - "url": "https://github.com/bram85/topydo/blob/master/topydo/lib/ListFormat.py#L292" - }, { "type": "PACKAGE", "url": "https://github.com/bram85/topydo" + }, + { + "type": "WEB", + "url": "https://github.com/bram85/topydo/blob/master/topydo/lib/ListFormat.py#L292" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/09/GHSA-pp57-mqmh-44h7/GHSA-pp57-mqmh-44h7.json b/advisories/github-reviewed/2018/09/GHSA-pp57-mqmh-44h7/GHSA-pp57-mqmh-44h7.json index 2edbbf6b6d6..09935ad33c5 100644 --- a/advisories/github-reviewed/2018/09/GHSA-pp57-mqmh-44h7/GHSA-pp57-mqmh-44h7.json +++ b/advisories/github-reviewed/2018/09/GHSA-pp57-mqmh-44h7/GHSA-pp57-mqmh-44h7.json @@ -60,6 +60,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-pp57-mqmh-44h7" }, + { + "type": "PACKAGE", + "url": "https://github.com/scravy/node-macaddress" + }, { "type": "WEB", "url": "https://github.com/scravy/node-macaddress/releases/tag/0.2.9" @@ -71,10 +75,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/654" - }, - { - "type": "PACKAGE", - "url": "https://github.com/scravy/node-macaddress" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/09/GHSA-rq8g-5pc5-wrhr/GHSA-rq8g-5pc5-wrhr.json b/advisories/github-reviewed/2018/09/GHSA-rq8g-5pc5-wrhr/GHSA-rq8g-5pc5-wrhr.json index 4841e42b34f..7f9e511dfdc 100644 --- a/advisories/github-reviewed/2018/09/GHSA-rq8g-5pc5-wrhr/GHSA-rq8g-5pc5-wrhr.json +++ b/advisories/github-reviewed/2018/09/GHSA-rq8g-5pc5-wrhr/GHSA-rq8g-5pc5-wrhr.json @@ -48,6 +48,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-rq8g-5pc5-wrhr" }, + { + "type": "PACKAGE", + "url": "https://github.com/hapijs/cryptiles" + }, { "type": "WEB", "url": "https://github.com/nodejs/security-wg/blob/master/vuln/npm/476.json" @@ -59,10 +63,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/720" - }, - { - "type": "PACKAGE", - "url": "https://github.com/hapijs/cryptiles" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/09/GHSA-vqcq-mrmw-mcmg/GHSA-vqcq-mrmw-mcmg.json b/advisories/github-reviewed/2018/09/GHSA-vqcq-mrmw-mcmg/GHSA-vqcq-mrmw-mcmg.json index 0e327e9c7ee..ac1475eb43f 100644 --- a/advisories/github-reviewed/2018/09/GHSA-vqcq-mrmw-mcmg/GHSA-vqcq-mrmw-mcmg.json +++ b/advisories/github-reviewed/2018/09/GHSA-vqcq-mrmw-mcmg/GHSA-vqcq-mrmw-mcmg.json @@ -55,6 +55,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-vqcq-mrmw-mcmg" }, + { + "type": "PACKAGE", + "url": "https://github.com/rubyzip/rubyzip" + }, { "type": "WEB", "url": "https://lists.debian.org/debian-lts-announce/2018/08/msg00013.html" @@ -62,10 +66,6 @@ { "type": "WEB", "url": "https://lists.debian.org/debian-lts-announce/2020/08/msg00002.html" - }, - { - "type": "PACKAGE", - "url": "https://github.com/rubyzip/rubyzip" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-cf3c-fffp-34qh/GHSA-cf3c-fffp-34qh.json b/advisories/github-reviewed/2018/10/GHSA-cf3c-fffp-34qh/GHSA-cf3c-fffp-34qh.json index 209c2c377de..3b0aff15a46 100644 --- a/advisories/github-reviewed/2018/10/GHSA-cf3c-fffp-34qh/GHSA-cf3c-fffp-34qh.json +++ b/advisories/github-reviewed/2018/10/GHSA-cf3c-fffp-34qh/GHSA-cf3c-fffp-34qh.json @@ -44,6 +44,10 @@ "type": "WEB", "url": "https://github.com/PyconUK/ConferenceScheduler-cli/issues/19" }, + { + "type": "PACKAGE", + "url": "https://github.com/PyconUK/ConferenceScheduler-cli" + }, { "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-cf3c-fffp-34qh" @@ -51,10 +55,6 @@ { "type": "WEB", "url": "https://joel-malwarebenchmark.github.io/blog/2020/04/25/cve-2018-14572-conference-scheduler-cli/" - }, - { - "type": "PACKAGE", - "url": "https://github.com/PyconUK/ConferenceScheduler-cli" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-cvj4-g3gx-8vqq/GHSA-cvj4-g3gx-8vqq.json b/advisories/github-reviewed/2018/10/GHSA-cvj4-g3gx-8vqq/GHSA-cvj4-g3gx-8vqq.json index 5c880860323..7e585a8f888 100644 --- a/advisories/github-reviewed/2018/10/GHSA-cvj4-g3gx-8vqq/GHSA-cvj4-g3gx-8vqq.json +++ b/advisories/github-reviewed/2018/10/GHSA-cvj4-g3gx-8vqq/GHSA-cvj4-g3gx-8vqq.json @@ -44,6 +44,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-cvj4-g3gx-8vqq" }, + { + "type": "PACKAGE", + "url": "https://github.com/restlet/restlet-framework-java" + }, { "type": "WEB", "url": "https://github.com/restlet/restlet-framework-java/wiki/XEE-security-enhancements" @@ -51,10 +55,6 @@ { "type": "WEB", "url": "https://lgtm.com/blog/restlet_CVE-2017-14949" - }, - { - "type": "PACKAGE", - "url": "https://github.com/restlet/restlet-framework-java" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-f2j6-wrhh-v25m/GHSA-f2j6-wrhh-v25m.json b/advisories/github-reviewed/2018/10/GHSA-f2j6-wrhh-v25m/GHSA-f2j6-wrhh-v25m.json index 390d1871f63..8696e942072 100644 --- a/advisories/github-reviewed/2018/10/GHSA-f2j6-wrhh-v25m/GHSA-f2j6-wrhh-v25m.json +++ b/advisories/github-reviewed/2018/10/GHSA-f2j6-wrhh-v25m/GHSA-f2j6-wrhh-v25m.json @@ -140,6 +140,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-f2j6-wrhh-v25m" }, + { + "type": "PACKAGE", + "url": "https://github.com/paramiko/paramiko" + }, { "type": "WEB", "url": "https://herolab.usd.de/wp-content/uploads/sites/4/usd20180023.txt" @@ -163,10 +167,6 @@ { "type": "WEB", "url": "https://usn.ubuntu.com/3796-3/" - }, - { - "type": "PACKAGE", - "url": "https://github.com/paramiko/paramiko" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-fjqm-246c-mwqg/GHSA-fjqm-246c-mwqg.json b/advisories/github-reviewed/2018/10/GHSA-fjqm-246c-mwqg/GHSA-fjqm-246c-mwqg.json index a1da32638cc..b9dd4dccb41 100644 --- a/advisories/github-reviewed/2018/10/GHSA-fjqm-246c-mwqg/GHSA-fjqm-246c-mwqg.json +++ b/advisories/github-reviewed/2018/10/GHSA-fjqm-246c-mwqg/GHSA-fjqm-246c-mwqg.json @@ -75,6 +75,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-fjqm-246c-mwqg" }, + { + "type": "PACKAGE", + "url": "https://github.com/bcgit/bc-java" + }, { "type": "WEB", "url": "https://lists.debian.org/debian-lts-announce/2018/07/msg00009.html" @@ -90,10 +94,6 @@ { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpuoct2020.html" - }, - { - "type": "PACKAGE", - "url": "https://github.com/bcgit/bc-java" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-fxwv-953p-7qpf/GHSA-fxwv-953p-7qpf.json b/advisories/github-reviewed/2018/10/GHSA-fxwv-953p-7qpf/GHSA-fxwv-953p-7qpf.json index 638f7e2090a..18012b0fde9 100644 --- a/advisories/github-reviewed/2018/10/GHSA-fxwv-953p-7qpf/GHSA-fxwv-953p-7qpf.json +++ b/advisories/github-reviewed/2018/10/GHSA-fxwv-953p-7qpf/GHSA-fxwv-953p-7qpf.json @@ -75,6 +75,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-fxwv-953p-7qpf" }, + { + "type": "PACKAGE", + "url": "https://github.com/phusion/passenger" + }, { "type": "WEB", "url": "https://lists.debian.org/debian-lts-announce/2018/06/msg00007.html" @@ -94,10 +98,6 @@ { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2015/12/07/2" - }, - { - "type": "PACKAGE", - "url": "https://github.com/phusion/passenger" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-g556-x5vx-qh59/GHSA-g556-x5vx-qh59.json b/advisories/github-reviewed/2018/10/GHSA-g556-x5vx-qh59/GHSA-g556-x5vx-qh59.json index 4ae92fc66a8..233b15353f5 100644 --- a/advisories/github-reviewed/2018/10/GHSA-g556-x5vx-qh59/GHSA-g556-x5vx-qh59.json +++ b/advisories/github-reviewed/2018/10/GHSA-g556-x5vx-qh59/GHSA-g556-x5vx-qh59.json @@ -44,13 +44,13 @@ "type": "WEB", "url": "https://github.com/BigBadaboom/androidsvg/issues/122" }, - { - "type": "ADVISORY", - "url": "https://github.com/advisories/GHSA-g556-x5vx-qh59" - }, { "type": "PACKAGE", "url": "https://github.com/BigBadaboom/androidsvg" + }, + { + "type": "ADVISORY", + "url": "https://github.com/advisories/GHSA-g556-x5vx-qh59" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-gr4c-5rq6-cgh3/GHSA-gr4c-5rq6-cgh3.json b/advisories/github-reviewed/2018/10/GHSA-gr4c-5rq6-cgh3/GHSA-gr4c-5rq6-cgh3.json index 6df2e770151..63f57281179 100644 --- a/advisories/github-reviewed/2018/10/GHSA-gr4c-5rq6-cgh3/GHSA-gr4c-5rq6-cgh3.json +++ b/advisories/github-reviewed/2018/10/GHSA-gr4c-5rq6-cgh3/GHSA-gr4c-5rq6-cgh3.json @@ -51,6 +51,10 @@ "type": "WEB", "url": "https://github.com/OPCFoundation/UA-.NETStandard/commit/ebcf026a54dd0c9052cff009d96d827ac923d150" }, + { + "type": "PACKAGE", + "url": "https://github.com/OPCFoundation/UA-.NETStandard" + }, { "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-gr4c-5rq6-cgh3" @@ -62,10 +66,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/108688" - }, - { - "type": "PACKAGE", - "url": "https://github.com/OPCFoundation/UA-.NETStandard" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-h39x-m55c-v55h/GHSA-h39x-m55c-v55h.json b/advisories/github-reviewed/2018/10/GHSA-h39x-m55c-v55h/GHSA-h39x-m55c-v55h.json index 0a7a76274f8..fb9065ad5e9 100644 --- a/advisories/github-reviewed/2018/10/GHSA-h39x-m55c-v55h/GHSA-h39x-m55c-v55h.json +++ b/advisories/github-reviewed/2018/10/GHSA-h39x-m55c-v55h/GHSA-h39x-m55c-v55h.json @@ -52,13 +52,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-h39x-m55c-v55h" }, - { - "type": "WEB", - "url": "https://lists.apache.org/thread.html/rd0e44e8ef71eeaaa3cf3d1b8b41eb25894372e2995ec908ce7624d26@%3Ccommits.pulsar.apache.org%3E" - }, { "type": "PACKAGE", "url": "https://github.com/vert-x3/vertx-web" + }, + { + "type": "WEB", + "url": "https://lists.apache.org/thread.html/rd0e44e8ef71eeaaa3cf3d1b8b41eb25894372e2995ec908ce7624d26@%3Ccommits.pulsar.apache.org%3E" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-h3wv-47xm-4mg6/GHSA-h3wv-47xm-4mg6.json b/advisories/github-reviewed/2018/10/GHSA-h3wv-47xm-4mg6/GHSA-h3wv-47xm-4mg6.json index 6bd498b0869..43c773d086d 100644 --- a/advisories/github-reviewed/2018/10/GHSA-h3wv-47xm-4mg6/GHSA-h3wv-47xm-4mg6.json +++ b/advisories/github-reviewed/2018/10/GHSA-h3wv-47xm-4mg6/GHSA-h3wv-47xm-4mg6.json @@ -48,6 +48,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-h3wv-47xm-4mg6" }, + { + "type": "PACKAGE", + "url": "https://github.com/blackears/svgSalamander" + }, { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/3V7RIIO3HO4RNDBN2PARLIDAL3RPV2OX/" @@ -75,10 +79,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/95871" - }, - { - "type": "PACKAGE", - "url": "https://github.com/blackears/svgSalamander" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-h8q5-g2cj-qr5h/GHSA-h8q5-g2cj-qr5h.json b/advisories/github-reviewed/2018/10/GHSA-h8q5-g2cj-qr5h/GHSA-h8q5-g2cj-qr5h.json index 62757c2a9be..fa11ce01139 100644 --- a/advisories/github-reviewed/2018/10/GHSA-h8q5-g2cj-qr5h/GHSA-h8q5-g2cj-qr5h.json +++ b/advisories/github-reviewed/2018/10/GHSA-h8q5-g2cj-qr5h/GHSA-h8q5-g2cj-qr5h.json @@ -48,6 +48,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-h8q5-g2cj-qr5h" }, + { + "type": "PACKAGE", + "url": "https://github.com/apache/tika" + }, { "type": "WEB", "url": "https://lists.apache.org/thread.html/88de8350cda9b184888ec294c813c5bd8a2081de8fd3666f8904bc05@%3Cdev.tika.apache.org%3E" @@ -59,10 +63,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/105585" - }, - { - "type": "PACKAGE", - "url": "https://github.com/apache/tika" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-hvpr-9cr6-q5v7/GHSA-hvpr-9cr6-q5v7.json b/advisories/github-reviewed/2018/10/GHSA-hvpr-9cr6-q5v7/GHSA-hvpr-9cr6-q5v7.json index 1adae31cacc..5e0a363eaab 100644 --- a/advisories/github-reviewed/2018/10/GHSA-hvpr-9cr6-q5v7/GHSA-hvpr-9cr6-q5v7.json +++ b/advisories/github-reviewed/2018/10/GHSA-hvpr-9cr6-q5v7/GHSA-hvpr-9cr6-q5v7.json @@ -75,6 +75,10 @@ "type": "WEB", "url": "https://lists.apache.org/thread.html/b4014ea7c5830ca1fc28edd5cafedfe93ad4af2d9e69c961c5def31d@%3Ccommits.camel.apache.org%3E" }, + { + "type": "PACKAGE", + "url": "https://www.github.com/mbechler/marshalsec" + }, { "type": "WEB", "url": "https://www.github.com/mbechler/marshalsec/blob/master/marshalsec.pdf?raw=true" @@ -90,10 +94,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/96321" - }, - { - "type": "PACKAGE", - "url": "https://www.github.com/mbechler/marshalsec" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-j53j-gmr9-h8g3/GHSA-j53j-gmr9-h8g3.json b/advisories/github-reviewed/2018/10/GHSA-j53j-gmr9-h8g3/GHSA-j53j-gmr9-h8g3.json index f12bdc046d9..1ea8a6639dd 100644 --- a/advisories/github-reviewed/2018/10/GHSA-j53j-gmr9-h8g3/GHSA-j53j-gmr9-h8g3.json +++ b/advisories/github-reviewed/2018/10/GHSA-j53j-gmr9-h8g3/GHSA-j53j-gmr9-h8g3.json @@ -44,6 +44,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-j53j-gmr9-h8g3" }, + { + "type": "PACKAGE", + "url": "https://github.com/apache/tika" + }, { "type": "WEB", "url": "https://lists.apache.org/thread.html/72df7a3f0dda49a912143a1404b489837a11f374dfd1961061873a91@%3Cdev.tika.apache.org%3E" @@ -51,10 +55,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/105513" - }, - { - "type": "PACKAGE", - "url": "https://github.com/apache/tika" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-jc7r-v6fg-2gpf/GHSA-jc7r-v6fg-2gpf.json b/advisories/github-reviewed/2018/10/GHSA-jc7r-v6fg-2gpf/GHSA-jc7r-v6fg-2gpf.json index 9cd05b29e31..06eae85e8ea 100644 --- a/advisories/github-reviewed/2018/10/GHSA-jc7r-v6fg-2gpf/GHSA-jc7r-v6fg-2gpf.json +++ b/advisories/github-reviewed/2018/10/GHSA-jc7r-v6fg-2gpf/GHSA-jc7r-v6fg-2gpf.json @@ -145,6 +145,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-jc7r-v6fg-2gpf" }, + { + "type": "PACKAGE", + "url": "https://github.com/apache/cxf" + }, { "type": "WEB", "url": "https://lists.apache.org/thread.html/1f8ff31df204ad0374ab26ad333169e0387a5e7ec92422f337431866@%3Cdev.cxf.apache.org%3E" @@ -196,10 +200,6 @@ { "type": "WEB", "url": "http://www.securitytracker.com/id/1041199" - }, - { - "type": "PACKAGE", - "url": "https://github.com/apache/cxf" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-jg4f-jqm5-4mgq/GHSA-jg4f-jqm5-4mgq.json b/advisories/github-reviewed/2018/10/GHSA-jg4f-jqm5-4mgq/GHSA-jg4f-jqm5-4mgq.json index 26ddd3b28bb..51c9b878c46 100644 --- a/advisories/github-reviewed/2018/10/GHSA-jg4f-jqm5-4mgq/GHSA-jg4f-jqm5-4mgq.json +++ b/advisories/github-reviewed/2018/10/GHSA-jg4f-jqm5-4mgq/GHSA-jg4f-jqm5-4mgq.json @@ -61,13 +61,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-jg4f-jqm5-4mgq" }, - { - "type": "WEB", - "url": "http://www.securityfocus.com/bid/94109" - }, { "type": "PACKAGE", "url": "https://github.com/ansible/ansible" + }, + { + "type": "WEB", + "url": "http://www.securityfocus.com/bid/94109" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-jwcc-j78w-j73w/GHSA-jwcc-j78w-j73w.json b/advisories/github-reviewed/2018/10/GHSA-jwcc-j78w-j73w/GHSA-jwcc-j78w-j73w.json index ca8d5a8e84f..1f25fa3ea28 100644 --- a/advisories/github-reviewed/2018/10/GHSA-jwcc-j78w-j73w/GHSA-jwcc-j78w-j73w.json +++ b/advisories/github-reviewed/2018/10/GHSA-jwcc-j78w-j73w/GHSA-jwcc-j78w-j73w.json @@ -99,6 +99,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-jwcc-j78w-j73w" }, + { + "type": "PACKAGE", + "url": "https://github.com/ansible/ansible" + }, { "type": "WEB", "url": "https://usn.ubuntu.com/4072-1/" @@ -106,10 +110,6 @@ { "type": "WEB", "url": "https://www.debian.org/security/2019/dsa-4396" - }, - { - "type": "PACKAGE", - "url": "https://github.com/ansible/ansible" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-mh7g-99w9-xpjm/GHSA-mh7g-99w9-xpjm.json b/advisories/github-reviewed/2018/10/GHSA-mh7g-99w9-xpjm/GHSA-mh7g-99w9-xpjm.json index 02425d7a9e1..a12ee061568 100644 --- a/advisories/github-reviewed/2018/10/GHSA-mh7g-99w9-xpjm/GHSA-mh7g-99w9-xpjm.json +++ b/advisories/github-reviewed/2018/10/GHSA-mh7g-99w9-xpjm/GHSA-mh7g-99w9-xpjm.json @@ -118,6 +118,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-mh7g-99w9-xpjm" }, + { + "type": "PACKAGE", + "url": "https://github.com/apache/lucene" + }, { "type": "WEB", "url": "https://lists.apache.org/thread.html/r140128dc6bb4f4e0b6a39e962c7ca25a8cbc8e48ed766176c931fccc@%3Cusers.solr.apache.org%3E" @@ -177,10 +181,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/101261" - }, - { - "type": "PACKAGE", - "url": "https://github.com/apache/lucene" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-p28m-34f6-967q/GHSA-p28m-34f6-967q.json b/advisories/github-reviewed/2018/10/GHSA-p28m-34f6-967q/GHSA-p28m-34f6-967q.json index bd0cf3ab05f..19a3994bd51 100644 --- a/advisories/github-reviewed/2018/10/GHSA-p28m-34f6-967q/GHSA-p28m-34f6-967q.json +++ b/advisories/github-reviewed/2018/10/GHSA-p28m-34f6-967q/GHSA-p28m-34f6-967q.json @@ -52,6 +52,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-p28m-34f6-967q" }, + { + "type": "PACKAGE", + "url": "https://github.com/pyca/pyopenssl" + }, { "type": "WEB", "url": "https://usn.ubuntu.com/3813-1/" @@ -59,10 +63,6 @@ { "type": "WEB", "url": "http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00014.html" - }, - { - "type": "PACKAGE", - "url": "https://github.com/pyca/pyopenssl" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-p8ww-vv84-c2rm/GHSA-p8ww-vv84-c2rm.json b/advisories/github-reviewed/2018/10/GHSA-p8ww-vv84-c2rm/GHSA-p8ww-vv84-c2rm.json index 5cbfb5ebd9f..176dd19437f 100644 --- a/advisories/github-reviewed/2018/10/GHSA-p8ww-vv84-c2rm/GHSA-p8ww-vv84-c2rm.json +++ b/advisories/github-reviewed/2018/10/GHSA-p8ww-vv84-c2rm/GHSA-p8ww-vv84-c2rm.json @@ -70,13 +70,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-p8ww-vv84-c2rm" }, - { - "type": "WEB", - "url": "https://www.kb.cert.org/vuls/id/845332" - }, { "type": "PACKAGE", "url": "https://github.com/orientechnologies/orientdb" + }, + { + "type": "WEB", + "url": "https://www.kb.cert.org/vuls/id/845332" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-q25j-gcmv-5qpp/GHSA-q25j-gcmv-5qpp.json b/advisories/github-reviewed/2018/10/GHSA-q25j-gcmv-5qpp/GHSA-q25j-gcmv-5qpp.json index 52b15daecdf..aabad97b10e 100644 --- a/advisories/github-reviewed/2018/10/GHSA-q25j-gcmv-5qpp/GHSA-q25j-gcmv-5qpp.json +++ b/advisories/github-reviewed/2018/10/GHSA-q25j-gcmv-5qpp/GHSA-q25j-gcmv-5qpp.json @@ -67,13 +67,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-q25j-gcmv-5qpp" }, - { - "type": "WEB", - "url": "https://github.com/martinfrancois/CVE-2018-1000529" - }, { "type": "PACKAGE", "url": "https://github.com/grails-fields-plugin/grails-fields" + }, + { + "type": "WEB", + "url": "https://github.com/martinfrancois/CVE-2018-1000529" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-q7pf-qr96-2vq5/GHSA-q7pf-qr96-2vq5.json b/advisories/github-reviewed/2018/10/GHSA-q7pf-qr96-2vq5/GHSA-q7pf-qr96-2vq5.json index 249bbc6641f..7b9d902ba24 100644 --- a/advisories/github-reviewed/2018/10/GHSA-q7pf-qr96-2vq5/GHSA-q7pf-qr96-2vq5.json +++ b/advisories/github-reviewed/2018/10/GHSA-q7pf-qr96-2vq5/GHSA-q7pf-qr96-2vq5.json @@ -63,6 +63,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-q7pf-qr96-2vq5" }, + { + "type": "PACKAGE", + "url": "https://github.com/swagger-api/swagger-parser" + }, { "type": "WEB", "url": "https://github.com/swagger-api/swagger-parser/releases/tag/v1.0.31" @@ -70,10 +74,6 @@ { "type": "WEB", "url": "https://lgtm.com/blog/swagger_snakeyaml_CVE-2017-1000207_CVE-2017-1000208" - }, - { - "type": "PACKAGE", - "url": "https://github.com/swagger-api/swagger-parser" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-qcj7-g2j5-g7r3/GHSA-qcj7-g2j5-g7r3.json b/advisories/github-reviewed/2018/10/GHSA-qcj7-g2j5-g7r3/GHSA-qcj7-g2j5-g7r3.json index 493e04b782d..4589707d388 100644 --- a/advisories/github-reviewed/2018/10/GHSA-qcj7-g2j5-g7r3/GHSA-qcj7-g2j5-g7r3.json +++ b/advisories/github-reviewed/2018/10/GHSA-qcj7-g2j5-g7r3/GHSA-qcj7-g2j5-g7r3.json @@ -75,6 +75,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-qcj7-g2j5-g7r3" }, + { + "type": "PACKAGE", + "url": "https://github.com/bcgit/bc-java" + }, { "type": "WEB", "url": "https://lists.debian.org/debian-lts-announce/2018/07/msg00009.html" @@ -90,10 +94,6 @@ { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpuoct2020.html" - }, - { - "type": "PACKAGE", - "url": "https://github.com/bcgit/bc-java" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-qhv9-728r-6jqg/GHSA-qhv9-728r-6jqg.json b/advisories/github-reviewed/2018/10/GHSA-qhv9-728r-6jqg/GHSA-qhv9-728r-6jqg.json index 85eeaaa8151..e325ff65f51 100644 --- a/advisories/github-reviewed/2018/10/GHSA-qhv9-728r-6jqg/GHSA-qhv9-728r-6jqg.json +++ b/advisories/github-reviewed/2018/10/GHSA-qhv9-728r-6jqg/GHSA-qhv9-728r-6jqg.json @@ -64,6 +64,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-qhv9-728r-6jqg" }, + { + "type": "PACKAGE", + "url": "https://github.com/salesforce/tough-cookie" + }, { "type": "WEB", "url": "https://www.ibm.com/blogs/psirt/ibm-security-bulletin-ibm-api-connect-is-affected-by-node-js-tough-cookie-module-vulnerability-to-a-denial-of-service-cve-2016-1000232/" @@ -71,10 +75,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/130" - }, - { - "type": "PACKAGE", - "url": "https://github.com/salesforce/tough-cookie" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-qvxv-pmq9-4q7g/GHSA-qvxv-pmq9-4q7g.json b/advisories/github-reviewed/2018/10/GHSA-qvxv-pmq9-4q7g/GHSA-qvxv-pmq9-4q7g.json index 405f44eda36..c701a12ef94 100644 --- a/advisories/github-reviewed/2018/10/GHSA-qvxv-pmq9-4q7g/GHSA-qvxv-pmq9-4q7g.json +++ b/advisories/github-reviewed/2018/10/GHSA-qvxv-pmq9-4q7g/GHSA-qvxv-pmq9-4q7g.json @@ -94,6 +94,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-qvxv-pmq9-4q7g" }, + { + "type": "PACKAGE", + "url": "https://github.com/scala/scala" + }, { "type": "WEB", "url": "https://lists.apache.org/thread.html/053d9ce4d579b02203db18545fee5e33f35f2932885459b74d1e4272@%3Cissues.activemq.apache.org%3E" @@ -157,10 +161,6 @@ { "type": "WEB", "url": "http://scala-lang.org/news/security-update-nov17.html" - }, - { - "type": "PACKAGE", - "url": "https://github.com/scala/scala" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-qw8w-2xcp-xg59/GHSA-qw8w-2xcp-xg59.json b/advisories/github-reviewed/2018/10/GHSA-qw8w-2xcp-xg59/GHSA-qw8w-2xcp-xg59.json index 7109a45ac5f..dd0c3d927d1 100644 --- a/advisories/github-reviewed/2018/10/GHSA-qw8w-2xcp-xg59/GHSA-qw8w-2xcp-xg59.json +++ b/advisories/github-reviewed/2018/10/GHSA-qw8w-2xcp-xg59/GHSA-qw8w-2xcp-xg59.json @@ -56,6 +56,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-qw8w-2xcp-xg59" }, + { + "type": "PACKAGE", + "url": "https://github.com/phusion/passenger" + }, { "type": "WEB", "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-February/149032.html" @@ -67,10 +71,6 @@ { "type": "WEB", "url": "http://openwall.com/lists/oss-security/2014/01/30/3" - }, - { - "type": "PACKAGE", - "url": "https://github.com/phusion/passenger" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-qw93-45r3-p66p/GHSA-qw93-45r3-p66p.json b/advisories/github-reviewed/2018/10/GHSA-qw93-45r3-p66p/GHSA-qw93-45r3-p66p.json index 8d700479551..ee6a32b53b8 100644 --- a/advisories/github-reviewed/2018/10/GHSA-qw93-45r3-p66p/GHSA-qw93-45r3-p66p.json +++ b/advisories/github-reviewed/2018/10/GHSA-qw93-45r3-p66p/GHSA-qw93-45r3-p66p.json @@ -52,13 +52,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-qw93-45r3-p66p" }, - { - "type": "WEB", - "url": "https://www.npmjs.com/advisories/717" - }, { "type": "PACKAGE", "url": "https://github.com/schnittstabil/merge-options" + }, + { + "type": "WEB", + "url": "https://www.npmjs.com/advisories/717" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-qw96-mm2g-c8m7/GHSA-qw96-mm2g-c8m7.json b/advisories/github-reviewed/2018/10/GHSA-qw96-mm2g-c8m7/GHSA-qw96-mm2g-c8m7.json index 35d44388c62..e629b8547aa 100644 --- a/advisories/github-reviewed/2018/10/GHSA-qw96-mm2g-c8m7/GHSA-qw96-mm2g-c8m7.json +++ b/advisories/github-reviewed/2018/10/GHSA-qw96-mm2g-c8m7/GHSA-qw96-mm2g-c8m7.json @@ -44,13 +44,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-qw96-mm2g-c8m7" }, - { - "type": "WEB", - "url": "https://github.com/zeit/next.js/releases/tag/7.0.2" - }, { "type": "PACKAGE", "url": "https://github.com/zeit/next.js" + }, + { + "type": "WEB", + "url": "https://github.com/zeit/next.js/releases/tag/7.0.2" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-qxxx-2pp7-5hmx/GHSA-qxxx-2pp7-5hmx.json b/advisories/github-reviewed/2018/10/GHSA-qxxx-2pp7-5hmx/GHSA-qxxx-2pp7-5hmx.json index 69d2a3cfc6f..b6fb3c2fef7 100644 --- a/advisories/github-reviewed/2018/10/GHSA-qxxx-2pp7-5hmx/GHSA-qxxx-2pp7-5hmx.json +++ b/advisories/github-reviewed/2018/10/GHSA-qxxx-2pp7-5hmx/GHSA-qxxx-2pp7-5hmx.json @@ -204,6 +204,10 @@ "type": "WEB", "url": "https://cwiki.apache.org/confluence/display/WW/S2-055" }, + { + "type": "PACKAGE", + "url": "https://github.com/FasterXML/jackson-databind" + }, { "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-qxxx-2pp7-5hmx" @@ -327,10 +331,6 @@ { "type": "WEB", "url": "http://www.securitytracker.com/id/1040360" - }, - { - "type": "PACKAGE", - "url": "https://github.com/FasterXML/jackson-databind" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-r97x-3g8f-gx3m/GHSA-r97x-3g8f-gx3m.json b/advisories/github-reviewed/2018/10/GHSA-r97x-3g8f-gx3m/GHSA-r97x-3g8f-gx3m.json index 752ff5ee37c..1a694d7fc7b 100644 --- a/advisories/github-reviewed/2018/10/GHSA-r97x-3g8f-gx3m/GHSA-r97x-3g8f-gx3m.json +++ b/advisories/github-reviewed/2018/10/GHSA-r97x-3g8f-gx3m/GHSA-r97x-3g8f-gx3m.json @@ -75,6 +75,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-r97x-3g8f-gx3m" }, + { + "type": "PACKAGE", + "url": "https://github.com/bcgit/bc-java" + }, { "type": "WEB", "url": "https://security.netapp.com/advisory/ntap-20181127-0004/" @@ -82,10 +86,6 @@ { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpuoct2020.html" - }, - { - "type": "PACKAGE", - "url": "https://github.com/bcgit/bc-java" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-r9ch-m4fh-fc7q/GHSA-r9ch-m4fh-fc7q.json b/advisories/github-reviewed/2018/10/GHSA-r9ch-m4fh-fc7q/GHSA-r9ch-m4fh-fc7q.json index deee4e6059a..e7ec9bb8874 100644 --- a/advisories/github-reviewed/2018/10/GHSA-r9ch-m4fh-fc7q/GHSA-r9ch-m4fh-fc7q.json +++ b/advisories/github-reviewed/2018/10/GHSA-r9ch-m4fh-fc7q/GHSA-r9ch-m4fh-fc7q.json @@ -75,6 +75,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-r9ch-m4fh-fc7q" }, + { + "type": "PACKAGE", + "url": "https://github.com/bcgit/bc-java" + }, { "type": "WEB", "url": "https://lists.debian.org/debian-lts-announce/2018/07/msg00009.html" @@ -90,10 +94,6 @@ { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpuoct2020.html" - }, - { - "type": "PACKAGE", - "url": "https://github.com/bcgit/bc-java" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-rf4j-j272-fj86/GHSA-rf4j-j272-fj86.json b/advisories/github-reviewed/2018/10/GHSA-rf4j-j272-fj86/GHSA-rf4j-j272-fj86.json index a2e8730c1ea..1c75a65637a 100644 --- a/advisories/github-reviewed/2018/10/GHSA-rf4j-j272-fj86/GHSA-rf4j-j272-fj86.json +++ b/advisories/github-reviewed/2018/10/GHSA-rf4j-j272-fj86/GHSA-rf4j-j272-fj86.json @@ -63,6 +63,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-rf4j-j272-fj86" }, + { + "type": "PACKAGE", + "url": "https://github.com/django/django" + }, { "type": "WEB", "url": "https://usn.ubuntu.com/3559-1/" @@ -74,10 +78,6 @@ { "type": "WEB", "url": "http://www.securitytracker.com/id/1040422" - }, - { - "type": "PACKAGE", - "url": "https://github.com/django/django" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-rrvx-pwf8-p59p/GHSA-rrvx-pwf8-p59p.json b/advisories/github-reviewed/2018/10/GHSA-rrvx-pwf8-p59p/GHSA-rrvx-pwf8-p59p.json index 4cdf8d3f1e3..bdff721d235 100644 --- a/advisories/github-reviewed/2018/10/GHSA-rrvx-pwf8-p59p/GHSA-rrvx-pwf8-p59p.json +++ b/advisories/github-reviewed/2018/10/GHSA-rrvx-pwf8-p59p/GHSA-rrvx-pwf8-p59p.json @@ -75,6 +75,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-rrvx-pwf8-p59p" }, + { + "type": "PACKAGE", + "url": "https://github.com/bcgit/bc-java" + }, { "type": "WEB", "url": "https://lists.apache.org/thread.html/708d94141126eac03011144a971a6411fcac16d9c248d1d535a39451@%3Csolr-user.lucene.apache.org%3E" @@ -94,10 +98,6 @@ { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpuoct2020.html" - }, - { - "type": "PACKAGE", - "url": "https://github.com/bcgit/bc-java" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-v6wr-fch2-vm5w/GHSA-v6wr-fch2-vm5w.json b/advisories/github-reviewed/2018/10/GHSA-v6wr-fch2-vm5w/GHSA-v6wr-fch2-vm5w.json index 85fb423d8c4..41ea8670b08 100644 --- a/advisories/github-reviewed/2018/10/GHSA-v6wr-fch2-vm5w/GHSA-v6wr-fch2-vm5w.json +++ b/advisories/github-reviewed/2018/10/GHSA-v6wr-fch2-vm5w/GHSA-v6wr-fch2-vm5w.json @@ -70,13 +70,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-v6wr-fch2-vm5w" }, - { - "type": "WEB", - "url": "https://www.kb.cert.org/vuls/id/845332" - }, { "type": "PACKAGE", "url": "https://github.com/orientechnologies/orientdb" + }, + { + "type": "WEB", + "url": "https://www.kb.cert.org/vuls/id/845332" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-vgvf-9jh3-fg75/GHSA-vgvf-9jh3-fg75.json b/advisories/github-reviewed/2018/10/GHSA-vgvf-9jh3-fg75/GHSA-vgvf-9jh3-fg75.json index 2d814f8343f..b9c7afa8efc 100644 --- a/advisories/github-reviewed/2018/10/GHSA-vgvf-9jh3-fg75/GHSA-vgvf-9jh3-fg75.json +++ b/advisories/github-reviewed/2018/10/GHSA-vgvf-9jh3-fg75/GHSA-vgvf-9jh3-fg75.json @@ -67,13 +67,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-vgvf-9jh3-fg75" }, - { - "type": "WEB", - "url": "https://lgtm.com/blog/swagger_snakeyaml_CVE-2017-1000207_CVE-2017-1000208" - }, { "type": "PACKAGE", "url": "https://github.com/swagger-api/swagger-parser" + }, + { + "type": "WEB", + "url": "https://lgtm.com/blog/swagger_snakeyaml_CVE-2017-1000207_CVE-2017-1000208" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-w285-wf9q-5w69/GHSA-w285-wf9q-5w69.json b/advisories/github-reviewed/2018/10/GHSA-w285-wf9q-5w69/GHSA-w285-wf9q-5w69.json index c9f1f76bdd3..95fb4c7e75e 100644 --- a/advisories/github-reviewed/2018/10/GHSA-w285-wf9q-5w69/GHSA-w285-wf9q-5w69.json +++ b/advisories/github-reviewed/2018/10/GHSA-w285-wf9q-5w69/GHSA-w285-wf9q-5w69.json @@ -75,6 +75,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-w285-wf9q-5w69" }, + { + "type": "PACKAGE", + "url": "https://github.com/bcgit/bc-java" + }, { "type": "WEB", "url": "https://security.netapp.com/advisory/ntap-20181127-0004/" @@ -82,10 +86,6 @@ { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpuoct2020.html" - }, - { - "type": "PACKAGE", - "url": "https://github.com/bcgit/bc-java" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-xjrr-xv9m-4pw5/GHSA-xjrr-xv9m-4pw5.json b/advisories/github-reviewed/2018/10/GHSA-xjrr-xv9m-4pw5/GHSA-xjrr-xv9m-4pw5.json index 7e2300cacf1..8b00380afec 100644 --- a/advisories/github-reviewed/2018/10/GHSA-xjrr-xv9m-4pw5/GHSA-xjrr-xv9m-4pw5.json +++ b/advisories/github-reviewed/2018/10/GHSA-xjrr-xv9m-4pw5/GHSA-xjrr-xv9m-4pw5.json @@ -55,13 +55,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-xjrr-xv9m-4pw5" }, - { - "type": "WEB", - "url": "https://github.com/alibaba/fastjson/wiki/security_update_20170315" - }, { "type": "PACKAGE", "url": "https://github.com/alibaba/fastjson" + }, + { + "type": "WEB", + "url": "https://github.com/alibaba/fastjson/wiki/security_update_20170315" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/10/GHSA-xm6r-4466-mr74/GHSA-xm6r-4466-mr74.json b/advisories/github-reviewed/2018/10/GHSA-xm6r-4466-mr74/GHSA-xm6r-4466-mr74.json index d1e0361e7a1..7262e8f3b80 100644 --- a/advisories/github-reviewed/2018/10/GHSA-xm6r-4466-mr74/GHSA-xm6r-4466-mr74.json +++ b/advisories/github-reviewed/2018/10/GHSA-xm6r-4466-mr74/GHSA-xm6r-4466-mr74.json @@ -44,6 +44,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-xm6r-4466-mr74" }, + { + "type": "PACKAGE", + "url": "https://github.com/orientechnologies/orientdb" + }, { "type": "WEB", "url": "https://github.com/orientechnologies/orientdb/wiki/OrientDB-2.2-Release-Notes#2223---july-11-2017" @@ -51,10 +55,6 @@ { "type": "WEB", "url": "http://www.heavensec.org/?p=1703" - }, - { - "type": "PACKAGE", - "url": "https://github.com/orientechnologies/orientdb" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/11/GHSA-qv2v-m59f-v5fw/GHSA-qv2v-m59f-v5fw.json b/advisories/github-reviewed/2018/11/GHSA-qv2v-m59f-v5fw/GHSA-qv2v-m59f-v5fw.json index aa0580109d0..b97e2f119cc 100644 --- a/advisories/github-reviewed/2018/11/GHSA-qv2v-m59f-v5fw/GHSA-qv2v-m59f-v5fw.json +++ b/advisories/github-reviewed/2018/11/GHSA-qv2v-m59f-v5fw/GHSA-qv2v-m59f-v5fw.json @@ -59,6 +59,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-qv2v-m59f-v5fw" }, + { + "type": "PACKAGE", + "url": "https://github.com/socketio/socket.io" + }, { "type": "WEB", "url": "https://nodesecurity.io/advisories/321" @@ -66,10 +70,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/321" - }, - { - "type": "PACKAGE", - "url": "https://github.com/socketio/socket.io" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/11/GHSA-r3vr-prwv-86g9/GHSA-r3vr-prwv-86g9.json b/advisories/github-reviewed/2018/11/GHSA-r3vr-prwv-86g9/GHSA-r3vr-prwv-86g9.json index 789001c5614..056947f9ccf 100644 --- a/advisories/github-reviewed/2018/11/GHSA-r3vr-prwv-86g9/GHSA-r3vr-prwv-86g9.json +++ b/advisories/github-reviewed/2018/11/GHSA-r3vr-prwv-86g9/GHSA-r3vr-prwv-86g9.json @@ -40,6 +40,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-1927" }, + { + "type": "PACKAGE", + "url": "https://bitbucket.org/vinay.sajip/python-gnupg" + }, { "type": "WEB", "url": "https://code.google.com/p/python-gnupg/" @@ -71,10 +75,6 @@ { "type": "WEB", "url": "http://www.debian.org/security/2014/dsa-2946" - }, - { - "type": "PACKAGE", - "url": "https://bitbucket.org/vinay.sajip/python-gnupg" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/11/GHSA-vqgp-4jgj-5j64/GHSA-vqgp-4jgj-5j64.json b/advisories/github-reviewed/2018/11/GHSA-vqgp-4jgj-5j64/GHSA-vqgp-4jgj-5j64.json index 78374514981..79a4e7bf146 100644 --- a/advisories/github-reviewed/2018/11/GHSA-vqgp-4jgj-5j64/GHSA-vqgp-4jgj-5j64.json +++ b/advisories/github-reviewed/2018/11/GHSA-vqgp-4jgj-5j64/GHSA-vqgp-4jgj-5j64.json @@ -48,6 +48,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-vqgp-4jgj-5j64" }, + { + "type": "PACKAGE", + "url": "https://github.com/ethereum/py-evm" + }, { "type": "WEB", "url": "https://twitter.com/AlexanderFisher/status/1060923428641878019" @@ -59,10 +63,6 @@ { "type": "WEB", "url": "https://www.reddit.com/r/ethereum/comments/9vkk2g/netta_labs_claim_to_have_found_a_vulnerability_in/e9d3wyx/" - }, - { - "type": "PACKAGE", - "url": "https://github.com/ethereum/py-evm" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/11/GHSA-vxp9-wv2f-wqmw/GHSA-vxp9-wv2f-wqmw.json b/advisories/github-reviewed/2018/11/GHSA-vxp9-wv2f-wqmw/GHSA-vxp9-wv2f-wqmw.json index 0b5f93e8337..059b933dc96 100644 --- a/advisories/github-reviewed/2018/11/GHSA-vxp9-wv2f-wqmw/GHSA-vxp9-wv2f-wqmw.json +++ b/advisories/github-reviewed/2018/11/GHSA-vxp9-wv2f-wqmw/GHSA-vxp9-wv2f-wqmw.json @@ -55,13 +55,13 @@ "type": "WEB", "url": "https://github.com/apache/superset/commit/2c72a7ae4fc0a8bac1f037a79efa90e1c5549710" }, - { - "type": "WEB", - "url": "https://www.exploit-db.com/exploits/45933/" - }, { "type": "PACKAGE", "url": "https://github.com/apache/superset" + }, + { + "type": "WEB", + "url": "https://www.exploit-db.com/exploits/45933/" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/12/GHSA-cq27-v7xp-c356/GHSA-cq27-v7xp-c356.json b/advisories/github-reviewed/2018/12/GHSA-cq27-v7xp-c356/GHSA-cq27-v7xp-c356.json index 06f6ab88e3b..10fb2cafd11 100644 --- a/advisories/github-reviewed/2018/12/GHSA-cq27-v7xp-c356/GHSA-cq27-v7xp-c356.json +++ b/advisories/github-reviewed/2018/12/GHSA-cq27-v7xp-c356/GHSA-cq27-v7xp-c356.json @@ -56,6 +56,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-cq27-v7xp-c356" }, + { + "type": "PACKAGE", + "url": "https://github.com/dlitz/pycrypto" + }, { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/C6BWNADPLKDBBQBUT3P75W7HAJCE7M3B/" @@ -79,10 +83,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/95122" - }, - { - "type": "PACKAGE", - "url": "https://github.com/dlitz/pycrypto" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/12/GHSA-gfv6-cj92-g3hx/GHSA-gfv6-cj92-g3hx.json b/advisories/github-reviewed/2018/12/GHSA-gfv6-cj92-g3hx/GHSA-gfv6-cj92-g3hx.json index 809dafc85ba..d80ce8e422f 100644 --- a/advisories/github-reviewed/2018/12/GHSA-gfv6-cj92-g3hx/GHSA-gfv6-cj92-g3hx.json +++ b/advisories/github-reviewed/2018/12/GHSA-gfv6-cj92-g3hx/GHSA-gfv6-cj92-g3hx.json @@ -44,13 +44,13 @@ "type": "WEB", "url": "https://github.com/OpenKMIP/PyKMIP/issues/430" }, - { - "type": "ADVISORY", - "url": "https://github.com/advisories/GHSA-gfv6-cj92-g3hx" - }, { "type": "PACKAGE", "url": "https://github.com/OpenKMIP/PyKMIP" + }, + { + "type": "ADVISORY", + "url": "https://github.com/advisories/GHSA-gfv6-cj92-g3hx" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/12/GHSA-h4x4-5qp2-wp46/GHSA-h4x4-5qp2-wp46.json b/advisories/github-reviewed/2018/12/GHSA-h4x4-5qp2-wp46/GHSA-h4x4-5qp2-wp46.json index 3a9554b2d88..48f0f1e7099 100644 --- a/advisories/github-reviewed/2018/12/GHSA-h4x4-5qp2-wp46/GHSA-h4x4-5qp2-wp46.json +++ b/advisories/github-reviewed/2018/12/GHSA-h4x4-5qp2-wp46/GHSA-h4x4-5qp2-wp46.json @@ -52,6 +52,10 @@ "type": "WEB", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1665601" }, + { + "type": "PACKAGE", + "url": "https://github.com/FasterXML/jackson-modules-java8" + }, { "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-h4x4-5qp2-wp46" @@ -99,10 +103,6 @@ { "type": "WEB", "url": "https://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.html" - }, - { - "type": "PACKAGE", - "url": "https://github.com/FasterXML/jackson-modules-java8" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/12/GHSA-j5rj-g695-342r/GHSA-j5rj-g695-342r.json b/advisories/github-reviewed/2018/12/GHSA-j5rj-g695-342r/GHSA-j5rj-g695-342r.json index 3878b7baa41..3eb19dadddb 100644 --- a/advisories/github-reviewed/2018/12/GHSA-j5rj-g695-342r/GHSA-j5rj-g695-342r.json +++ b/advisories/github-reviewed/2018/12/GHSA-j5rj-g695-342r/GHSA-j5rj-g695-342r.json @@ -131,6 +131,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-j5rj-g695-342r" }, + { + "type": "PACKAGE", + "url": "https://github.com/asteinhauser/fat_free_crm/" + }, { "type": "WEB", "url": "https://github.com/fatfreecrm/fat_free_crm/wiki/XSS-Vulnerability-%282018-10-27%29" @@ -138,10 +142,6 @@ { "type": "WEB", "url": "https://groups.google.com/forum/#!topic/fat-free-crm-users/TxsdZXSe7Jc" - }, - { - "type": "PACKAGE", - "url": "https://github.com/asteinhauser/fat_free_crm/" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/12/GHSA-p69g-f978-xxv9/GHSA-p69g-f978-xxv9.json b/advisories/github-reviewed/2018/12/GHSA-p69g-f978-xxv9/GHSA-p69g-f978-xxv9.json index 6772cbdcbf1..b18394f3d50 100644 --- a/advisories/github-reviewed/2018/12/GHSA-p69g-f978-xxv9/GHSA-p69g-f978-xxv9.json +++ b/advisories/github-reviewed/2018/12/GHSA-p69g-f978-xxv9/GHSA-p69g-f978-xxv9.json @@ -48,6 +48,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-p69g-f978-xxv9" }, + { + "type": "PACKAGE", + "url": "https://github.com/spotify/luigi" + }, { "type": "WEB", "url": "https://github.com/spotify/luigi/blob/2.7.9/luigi/server.py#L67" @@ -55,10 +59,6 @@ { "type": "WEB", "url": "https://groups.google.com/forum/#!topic/luigi-user/ZgfRTpBsVUY" - }, - { - "type": "PACKAGE", - "url": "https://github.com/spotify/luigi" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/12/GHSA-vwr2-wj63-86gr/GHSA-vwr2-wj63-86gr.json b/advisories/github-reviewed/2018/12/GHSA-vwr2-wj63-86gr/GHSA-vwr2-wj63-86gr.json index 3e8e34e8a3c..258d903a62e 100644 --- a/advisories/github-reviewed/2018/12/GHSA-vwr2-wj63-86gr/GHSA-vwr2-wj63-86gr.json +++ b/advisories/github-reviewed/2018/12/GHSA-vwr2-wj63-86gr/GHSA-vwr2-wj63-86gr.json @@ -49,13 +49,13 @@ "type": "WEB", "url": "https://github.com/nodejs/security-wg/blob/master/vuln/npm/484.json" }, - { - "type": "WEB", - "url": "https://www.npmjs.com/advisories/744" - }, { "type": "PACKAGE", "url": "https://github.com/tikonen/blog/tree/master/simplehttpserver" + }, + { + "type": "WEB", + "url": "https://www.npmjs.com/advisories/744" } ], "database_specific": { diff --git a/advisories/github-reviewed/2018/12/GHSA-xmvg-w4f9-99r7/GHSA-xmvg-w4f9-99r7.json b/advisories/github-reviewed/2018/12/GHSA-xmvg-w4f9-99r7/GHSA-xmvg-w4f9-99r7.json index 3f3ba436688..054a2e40b8f 100644 --- a/advisories/github-reviewed/2018/12/GHSA-xmvg-w4f9-99r7/GHSA-xmvg-w4f9-99r7.json +++ b/advisories/github-reviewed/2018/12/GHSA-xmvg-w4f9-99r7/GHSA-xmvg-w4f9-99r7.json @@ -48,13 +48,13 @@ "type": "WEB", "url": "https://0dd.zone/2018/10/28/bw-calendar-engine-XXE-MitM/" }, - { - "type": "ADVISORY", - "url": "https://github.com/advisories/GHSA-xmvg-w4f9-99r7" - }, { "type": "PACKAGE", "url": "https://github.com/Bedework/bw-calendar-engine" + }, + { + "type": "ADVISORY", + "url": "https://github.com/advisories/GHSA-xmvg-w4f9-99r7" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/01/GHSA-cf66-xwfp-gvc4/GHSA-cf66-xwfp-gvc4.json b/advisories/github-reviewed/2019/01/GHSA-cf66-xwfp-gvc4/GHSA-cf66-xwfp-gvc4.json index ed0f0105d56..056e070bb01 100644 --- a/advisories/github-reviewed/2019/01/GHSA-cf66-xwfp-gvc4/GHSA-cf66-xwfp-gvc4.json +++ b/advisories/github-reviewed/2019/01/GHSA-cf66-xwfp-gvc4/GHSA-cf66-xwfp-gvc4.json @@ -52,6 +52,10 @@ "type": "WEB", "url": "https://github.com/webpack/webpack-dev-server/commit/f18e5adf123221a1015be63e1ca2491ca45b8d10" }, + { + "type": "PACKAGE", + "url": "https://github.com/webpack/webpack-dev-server" + }, { "type": "WEB", "url": "https://github.com/webpack/webpack-dev-server/blob/master/CHANGELOG.md#3111-2018-12-21" @@ -59,10 +63,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/725" - }, - { - "type": "PACKAGE", - "url": "https://github.com/webpack/webpack-dev-server" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/01/GHSA-h4hv-m4h4-mhwg/GHSA-h4hv-m4h4-mhwg.json b/advisories/github-reviewed/2019/01/GHSA-h4hv-m4h4-mhwg/GHSA-h4hv-m4h4-mhwg.json index 95de743d7a0..c601f4d9ed7 100644 --- a/advisories/github-reviewed/2019/01/GHSA-h4hv-m4h4-mhwg/GHSA-h4hv-m4h4-mhwg.json +++ b/advisories/github-reviewed/2019/01/GHSA-h4hv-m4h4-mhwg/GHSA-h4hv-m4h4-mhwg.json @@ -82,6 +82,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-h4hv-m4h4-mhwg" }, + { + "type": "PACKAGE", + "url": "https://github.com/django/django" + }, { "type": "WEB", "url": "https://www.djangoproject.com/weblog/2017/apr/04/security-releases/" @@ -97,10 +101,6 @@ { "type": "WEB", "url": "http://www.securitytracker.com/id/1038177" - }, - { - "type": "PACKAGE", - "url": "https://github.com/django/django" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/01/GHSA-j87c-cj65-vmh5/GHSA-j87c-cj65-vmh5.json b/advisories/github-reviewed/2019/01/GHSA-j87c-cj65-vmh5/GHSA-j87c-cj65-vmh5.json index 93293876f91..cf33a85a998 100644 --- a/advisories/github-reviewed/2019/01/GHSA-j87c-cj65-vmh5/GHSA-j87c-cj65-vmh5.json +++ b/advisories/github-reviewed/2019/01/GHSA-j87c-cj65-vmh5/GHSA-j87c-cj65-vmh5.json @@ -52,13 +52,13 @@ "type": "WEB", "url": "https://bugs.chromium.org/p/chromium/issues/detail?id=759111" }, - { - "type": "ADVISORY", - "url": "https://github.com/advisories/GHSA-j87c-cj65-vmh5" - }, { "type": "PACKAGE", "url": "https://github.com/GoogleChrome/rendertron" + }, + { + "type": "ADVISORY", + "url": "https://github.com/advisories/GHSA-j87c-cj65-vmh5" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/01/GHSA-j88m-953w-8r2c/GHSA-j88m-953w-8r2c.json b/advisories/github-reviewed/2019/01/GHSA-j88m-953w-8r2c/GHSA-j88m-953w-8r2c.json index b62dfcb7f90..d6bb7aa8505 100644 --- a/advisories/github-reviewed/2019/01/GHSA-j88m-953w-8r2c/GHSA-j88m-953w-8r2c.json +++ b/advisories/github-reviewed/2019/01/GHSA-j88m-953w-8r2c/GHSA-j88m-953w-8r2c.json @@ -52,13 +52,13 @@ "type": "WEB", "url": "https://bugs.chromium.org/p/chromium/issues/detail?id=759111" }, - { - "type": "ADVISORY", - "url": "https://github.com/advisories/GHSA-j88m-953w-8r2c" - }, { "type": "PACKAGE", "url": "https://github.com/GoogleChrome/rendertron" + }, + { + "type": "ADVISORY", + "url": "https://github.com/advisories/GHSA-j88m-953w-8r2c" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/01/GHSA-m9mq-p2f9-cfqv/GHSA-m9mq-p2f9-cfqv.json b/advisories/github-reviewed/2019/01/GHSA-m9mq-p2f9-cfqv/GHSA-m9mq-p2f9-cfqv.json index 5260507af45..e277def150d 100644 --- a/advisories/github-reviewed/2019/01/GHSA-m9mq-p2f9-cfqv/GHSA-m9mq-p2f9-cfqv.json +++ b/advisories/github-reviewed/2019/01/GHSA-m9mq-p2f9-cfqv/GHSA-m9mq-p2f9-cfqv.json @@ -57,13 +57,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-m9mq-p2f9-cfqv" }, - { - "type": "WEB", - "url": "https://github.com/mozilla/bleach/releases/tag/v2.1.3" - }, { "type": "PACKAGE", "url": "https://github.com/mozilla/bleach" + }, + { + "type": "WEB", + "url": "https://github.com/mozilla/bleach/releases/tag/v2.1.3" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/01/GHSA-q485-j897-qc27/GHSA-q485-j897-qc27.json b/advisories/github-reviewed/2019/01/GHSA-q485-j897-qc27/GHSA-q485-j897-qc27.json index a7d8e22105e..a9e397c16ad 100644 --- a/advisories/github-reviewed/2019/01/GHSA-q485-j897-qc27/GHSA-q485-j897-qc27.json +++ b/advisories/github-reviewed/2019/01/GHSA-q485-j897-qc27/GHSA-q485-j897-qc27.json @@ -51,6 +51,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-q485-j897-qc27" }, + { + "type": "PACKAGE", + "url": "https://github.com/zhutougg/c3p0" + }, { "type": "WEB", "url": "https://lists.debian.org/debian-lts-announce/2018/12/msg00021.html" @@ -62,10 +66,6 @@ { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/MQ47OFV57Y2DAHMGA5H3JOL4WHRWRFN4/" - }, - { - "type": "PACKAGE", - "url": "https://github.com/zhutougg/c3p0" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/01/GHSA-r28v-mw67-m5p9/GHSA-r28v-mw67-m5p9.json b/advisories/github-reviewed/2019/01/GHSA-r28v-mw67-m5p9/GHSA-r28v-mw67-m5p9.json index dacca5c2183..43f1caad4a9 100644 --- a/advisories/github-reviewed/2019/01/GHSA-r28v-mw67-m5p9/GHSA-r28v-mw67-m5p9.json +++ b/advisories/github-reviewed/2019/01/GHSA-r28v-mw67-m5p9/GHSA-r28v-mw67-m5p9.json @@ -98,6 +98,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-r28v-mw67-m5p9" }, + { + "type": "PACKAGE", + "url": "https://github.com/django/django" + }, { "type": "WEB", "url": "https://lists.debian.org/debian-lts-announce/2018/03/msg00006.html" @@ -117,10 +121,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/103361" - }, - { - "type": "PACKAGE", - "url": "https://github.com/django/django" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/01/GHSA-wjxj-f8rg-99wx/GHSA-wjxj-f8rg-99wx.json b/advisories/github-reviewed/2019/01/GHSA-wjxj-f8rg-99wx/GHSA-wjxj-f8rg-99wx.json index 41fb08602b2..2580c7fec2e 100644 --- a/advisories/github-reviewed/2019/01/GHSA-wjxj-f8rg-99wx/GHSA-wjxj-f8rg-99wx.json +++ b/advisories/github-reviewed/2019/01/GHSA-wjxj-f8rg-99wx/GHSA-wjxj-f8rg-99wx.json @@ -48,6 +48,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-wjxj-f8rg-99wx" }, + { + "type": "PACKAGE", + "url": "https://github.com/apache/thrift" + }, { "type": "WEB", "url": "https://lists.apache.org/thread.html/07c3cd5a2953a4b253eee4437b1397b1603d0f886437e19b657d2c54@%3Ccommits.cassandra.apache.org%3E" @@ -143,10 +147,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/106551" - }, - { - "type": "PACKAGE", - "url": "https://github.com/apache/thrift" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/01/GHSA-xvwv-6wvx-px9x/GHSA-xvwv-6wvx-px9x.json b/advisories/github-reviewed/2019/01/GHSA-xvwv-6wvx-px9x/GHSA-xvwv-6wvx-px9x.json index 88527ca0c88..5e5129d1838 100644 --- a/advisories/github-reviewed/2019/01/GHSA-xvwv-6wvx-px9x/GHSA-xvwv-6wvx-px9x.json +++ b/advisories/github-reviewed/2019/01/GHSA-xvwv-6wvx-px9x/GHSA-xvwv-6wvx-px9x.json @@ -63,13 +63,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-xvwv-6wvx-px9x" }, - { - "type": "WEB", - "url": "https://plone.org/security/hotfix/20171128/an-open-redirection-when-calling-a-specific-url" - }, { "type": "PACKAGE", "url": "https://github.com/plone/Plone" + }, + { + "type": "WEB", + "url": "https://plone.org/security/hotfix/20171128/an-open-redirection-when-calling-a-specific-url" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/02/GHSA-cr79-9pwf-r6f5/GHSA-cr79-9pwf-r6f5.json b/advisories/github-reviewed/2019/02/GHSA-cr79-9pwf-r6f5/GHSA-cr79-9pwf-r6f5.json index 10fcabb836d..e0292a2213e 100644 --- a/advisories/github-reviewed/2019/02/GHSA-cr79-9pwf-r6f5/GHSA-cr79-9pwf-r6f5.json +++ b/advisories/github-reviewed/2019/02/GHSA-cr79-9pwf-r6f5/GHSA-cr79-9pwf-r6f5.json @@ -44,6 +44,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-cr79-9pwf-r6f5" }, + { + "type": "PACKAGE", + "url": "https://github.com/rse/node-prince" + }, { "type": "WEB", "url": "https://nodesecurity.io/advisories/185" @@ -51,10 +55,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/185" - }, - { - "type": "PACKAGE", - "url": "https://github.com/rse/node-prince" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/02/GHSA-g2pf-qjgf-6fw3/GHSA-g2pf-qjgf-6fw3.json b/advisories/github-reviewed/2019/02/GHSA-g2pf-qjgf-6fw3/GHSA-g2pf-qjgf-6fw3.json index e731bc2ee19..70b84f5c9af 100644 --- a/advisories/github-reviewed/2019/02/GHSA-g2pf-qjgf-6fw3/GHSA-g2pf-qjgf-6fw3.json +++ b/advisories/github-reviewed/2019/02/GHSA-g2pf-qjgf-6fw3/GHSA-g2pf-qjgf-6fw3.json @@ -37,6 +37,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-10607" }, + { + "type": "PACKAGE", + "url": "https://github.com/OpenframeProject/Openframe-glslViewer" + }, { "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-g2pf-qjgf-6fw3" @@ -48,10 +52,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/208" - }, - { - "type": "PACKAGE", - "url": "https://github.com/OpenframeProject/Openframe-glslViewer" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/02/GHSA-g785-775g-f2g8/GHSA-g785-775g-f2g8.json b/advisories/github-reviewed/2019/02/GHSA-g785-775g-f2g8/GHSA-g785-775g-f2g8.json index 18888e3798e..8861d51dc0f 100644 --- a/advisories/github-reviewed/2019/02/GHSA-g785-775g-f2g8/GHSA-g785-775g-f2g8.json +++ b/advisories/github-reviewed/2019/02/GHSA-g785-775g-f2g8/GHSA-g785-775g-f2g8.json @@ -37,6 +37,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-10602" }, + { + "type": "PACKAGE", + "url": "https://github.com/HaxeFoundation/npm-haxe" + }, { "type": "WEB", "url": "https://nodesecurity.io/advisories/177" @@ -44,10 +48,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/177" - }, - { - "type": "PACKAGE", - "url": "https://github.com/HaxeFoundation/npm-haxe" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/02/GHSA-mg8r-9g6j-hwv9/GHSA-mg8r-9g6j-hwv9.json b/advisories/github-reviewed/2019/02/GHSA-mg8r-9g6j-hwv9/GHSA-mg8r-9g6j-hwv9.json index 9fbb3aa3ea0..39f58a01a79 100644 --- a/advisories/github-reviewed/2019/02/GHSA-mg8r-9g6j-hwv9/GHSA-mg8r-9g6j-hwv9.json +++ b/advisories/github-reviewed/2019/02/GHSA-mg8r-9g6j-hwv9/GHSA-mg8r-9g6j-hwv9.json @@ -55,6 +55,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-mg8r-9g6j-hwv9" }, + { + "type": "PACKAGE", + "url": "https://github.com/dwyl/hapi-auth-jwt2" + }, { "type": "WEB", "url": "https://nodesecurity.io/advisories/81" @@ -62,10 +66,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/81" - }, - { - "type": "PACKAGE", - "url": "https://github.com/dwyl/hapi-auth-jwt2" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/02/GHSA-mgr2-3mpv-43gc/GHSA-mgr2-3mpv-43gc.json b/advisories/github-reviewed/2019/02/GHSA-mgr2-3mpv-43gc/GHSA-mgr2-3mpv-43gc.json index 349a5094acd..9dd4d14c98f 100644 --- a/advisories/github-reviewed/2019/02/GHSA-mgr2-3mpv-43gc/GHSA-mgr2-3mpv-43gc.json +++ b/advisories/github-reviewed/2019/02/GHSA-mgr2-3mpv-43gc/GHSA-mgr2-3mpv-43gc.json @@ -37,6 +37,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-10616" }, + { + "type": "PACKAGE", + "url": "https://github.com/OpenframeProject/Openframe-Image" + }, { "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-mgr2-3mpv-43gc" @@ -48,10 +52,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/218" - }, - { - "type": "PACKAGE", - "url": "https://github.com/OpenframeProject/Openframe-Image" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/02/GHSA-pjxw-22xf-6pwc/GHSA-pjxw-22xf-6pwc.json b/advisories/github-reviewed/2019/02/GHSA-pjxw-22xf-6pwc/GHSA-pjxw-22xf-6pwc.json index 6a12b7f3ca6..af27b51a494 100644 --- a/advisories/github-reviewed/2019/02/GHSA-pjxw-22xf-6pwc/GHSA-pjxw-22xf-6pwc.json +++ b/advisories/github-reviewed/2019/02/GHSA-pjxw-22xf-6pwc/GHSA-pjxw-22xf-6pwc.json @@ -45,13 +45,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-pjxw-22xf-6pwc" }, - { - "type": "WEB", - "url": "https://www.npmjs.com/advisories/778" - }, { "type": "PACKAGE", "url": "https://github.com/jonschlinkert/defaults-deep" + }, + { + "type": "WEB", + "url": "https://www.npmjs.com/advisories/778" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/02/GHSA-rv95-4wxj-6fqq/GHSA-rv95-4wxj-6fqq.json b/advisories/github-reviewed/2019/02/GHSA-rv95-4wxj-6fqq/GHSA-rv95-4wxj-6fqq.json index 2da38cae2d2..a32e8f89137 100644 --- a/advisories/github-reviewed/2019/02/GHSA-rv95-4wxj-6fqq/GHSA-rv95-4wxj-6fqq.json +++ b/advisories/github-reviewed/2019/02/GHSA-rv95-4wxj-6fqq/GHSA-rv95-4wxj-6fqq.json @@ -48,13 +48,13 @@ "type": "WEB", "url": "https://github.com/Pylons/colander/pull/323" }, - { - "type": "ADVISORY", - "url": "https://github.com/advisories/GHSA-rv95-4wxj-6fqq" - }, { "type": "PACKAGE", "url": "https://github.com/Pylons/colander" + }, + { + "type": "ADVISORY", + "url": "https://github.com/advisories/GHSA-rv95-4wxj-6fqq" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/02/GHSA-vqmr-957g-r7w3/GHSA-vqmr-957g-r7w3.json b/advisories/github-reviewed/2019/02/GHSA-vqmr-957g-r7w3/GHSA-vqmr-957g-r7w3.json index f8d9cb2759a..458bf23a075 100644 --- a/advisories/github-reviewed/2019/02/GHSA-vqmr-957g-r7w3/GHSA-vqmr-957g-r7w3.json +++ b/advisories/github-reviewed/2019/02/GHSA-vqmr-957g-r7w3/GHSA-vqmr-957g-r7w3.json @@ -52,13 +52,13 @@ "type": "WEB", "url": "https://bugs.chromium.org/p/chromium/issues/detail?id=759111" }, - { - "type": "ADVISORY", - "url": "https://github.com/advisories/GHSA-vqmr-957g-r7w3" - }, { "type": "PACKAGE", "url": "https://github.com/GoogleChrome/rendertron" + }, + { + "type": "ADVISORY", + "url": "https://github.com/advisories/GHSA-vqmr-957g-r7w3" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/02/GHSA-wh4h-v3f2-r2pp/GHSA-wh4h-v3f2-r2pp.json b/advisories/github-reviewed/2019/02/GHSA-wh4h-v3f2-r2pp/GHSA-wh4h-v3f2-r2pp.json index 0eb01a0aa22..67d9bc7b3a8 100644 --- a/advisories/github-reviewed/2019/02/GHSA-wh4h-v3f2-r2pp/GHSA-wh4h-v3f2-r2pp.json +++ b/advisories/github-reviewed/2019/02/GHSA-wh4h-v3f2-r2pp/GHSA-wh4h-v3f2-r2pp.json @@ -86,6 +86,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-wh4h-v3f2-r2pp" }, + { + "type": "PACKAGE", + "url": "https://github.com/django/django" + }, { "type": "WEB", "url": "https://groups.google.com/forum/#!topic/django-announce/WTwEAprR0IQ" @@ -121,10 +125,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/106964" - }, - { - "type": "PACKAGE", - "url": "https://github.com/django/django" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/02/GHSA-xwjh-cp99-cj8q/GHSA-xwjh-cp99-cj8q.json b/advisories/github-reviewed/2019/02/GHSA-xwjh-cp99-cj8q/GHSA-xwjh-cp99-cj8q.json index 391261a24e1..a00ced9aaa1 100644 --- a/advisories/github-reviewed/2019/02/GHSA-xwjh-cp99-cj8q/GHSA-xwjh-cp99-cj8q.json +++ b/advisories/github-reviewed/2019/02/GHSA-xwjh-cp99-cj8q/GHSA-xwjh-cp99-cj8q.json @@ -45,7 +45,7 @@ "url": "https://github.com/advisories/GHSA-xwjh-cp99-cj8q" }, { - "type": "WEB", + "type": "PACKAGE", "url": "https://github.com/ionic-team/cordova-plugin-ionic-webview" }, { @@ -59,10 +59,6 @@ { "type": "WEB", "url": "http://jvn.jp/en/jp/JVN60497148/index.html" - }, - { - "type": "PACKAGE", - "url": "https://github.com/ionic-team/cordova-plugin-ionic-webview" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/03/GHSA-fx7m-j728-mjw3/GHSA-fx7m-j728-mjw3.json b/advisories/github-reviewed/2019/03/GHSA-fx7m-j728-mjw3/GHSA-fx7m-j728-mjw3.json index 51fc35a2f66..4e01aeb9ef5 100644 --- a/advisories/github-reviewed/2019/03/GHSA-fx7m-j728-mjw3/GHSA-fx7m-j728-mjw3.json +++ b/advisories/github-reviewed/2019/03/GHSA-fx7m-j728-mjw3/GHSA-fx7m-j728-mjw3.json @@ -56,13 +56,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-fx7m-j728-mjw3" }, - { - "type": "WEB", - "url": "https://www.x41-dsec.de/lab/advisories/x41-2018-009-uaparser/" - }, { "type": "PACKAGE", "url": "https://github.com/ua-parser/uap-core" + }, + { + "type": "WEB", + "url": "https://www.x41-dsec.de/lab/advisories/x41-2018-009-uaparser/" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/03/GHSA-gp32-7h29-rpxm/GHSA-gp32-7h29-rpxm.json b/advisories/github-reviewed/2019/03/GHSA-gp32-7h29-rpxm/GHSA-gp32-7h29-rpxm.json index 442ac623aef..8733480427e 100644 --- a/advisories/github-reviewed/2019/03/GHSA-gp32-7h29-rpxm/GHSA-gp32-7h29-rpxm.json +++ b/advisories/github-reviewed/2019/03/GHSA-gp32-7h29-rpxm/GHSA-gp32-7h29-rpxm.json @@ -60,6 +60,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-gp32-7h29-rpxm" }, + { + "type": "PACKAGE", + "url": "https://github.com/checkstyle/checkstyle" + }, { "type": "WEB", "url": "https://lists.apache.org/thread.html/6bf8bbbca826e883f09ba40bc0d319350e1d6d4cf4df7c9e399b2699@%3Ccommits.fluo.apache.org%3E" @@ -99,10 +103,6 @@ { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/VJPT54USMGWT3Y6XVXLDEHKRUY2EI4OE/" - }, - { - "type": "PACKAGE", - "url": "https://github.com/checkstyle/checkstyle" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/03/GHSA-vv4c-g6q7-p3q7/GHSA-vv4c-g6q7-p3q7.json b/advisories/github-reviewed/2019/03/GHSA-vv4c-g6q7-p3q7/GHSA-vv4c-g6q7-p3q7.json index f46acb8c88b..2fd3492ff80 100644 --- a/advisories/github-reviewed/2019/03/GHSA-vv4c-g6q7-p3q7/GHSA-vv4c-g6q7-p3q7.json +++ b/advisories/github-reviewed/2019/03/GHSA-vv4c-g6q7-p3q7/GHSA-vv4c-g6q7-p3q7.json @@ -52,13 +52,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-vv4c-g6q7-p3q7" }, - { - "type": "WEB", - "url": "https://github.com/doorkeeper-gem/doorkeeper-openid_connect/blob/master/CHANGELOG.md" - }, { "type": "PACKAGE", "url": "https://github.com/doorkeeper-gem/doorkeeper-openid_connect" + }, + { + "type": "WEB", + "url": "https://github.com/doorkeeper-gem/doorkeeper-openid_connect/blob/master/CHANGELOG.md" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/03/GHSA-xmc8-cjfr-phx3/GHSA-xmc8-cjfr-phx3.json b/advisories/github-reviewed/2019/03/GHSA-xmc8-cjfr-phx3/GHSA-xmc8-cjfr-phx3.json index 91006393f8f..73de60d1e28 100644 --- a/advisories/github-reviewed/2019/03/GHSA-xmc8-cjfr-phx3/GHSA-xmc8-cjfr-phx3.json +++ b/advisories/github-reviewed/2019/03/GHSA-xmc8-cjfr-phx3/GHSA-xmc8-cjfr-phx3.json @@ -48,6 +48,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-xmc8-cjfr-phx3" }, + { + "type": "PACKAGE", + "url": "https://github.com/highcharts/highcharts" + }, { "type": "WEB", "url": "https://security.netapp.com/advisory/ntap-20190715-0001/" @@ -59,10 +63,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/793" - }, - { - "type": "PACKAGE", - "url": "https://github.com/highcharts/highcharts" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/04/GHSA-hj2j-77xm-mc5v/GHSA-hj2j-77xm-mc5v.json b/advisories/github-reviewed/2019/04/GHSA-hj2j-77xm-mc5v/GHSA-hj2j-77xm-mc5v.json index 5ca98385533..d249a005748 100644 --- a/advisories/github-reviewed/2019/04/GHSA-hj2j-77xm-mc5v/GHSA-hj2j-77xm-mc5v.json +++ b/advisories/github-reviewed/2019/04/GHSA-hj2j-77xm-mc5v/GHSA-hj2j-77xm-mc5v.json @@ -68,6 +68,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-hj2j-77xm-mc5v" }, + { + "type": "PACKAGE", + "url": "https://github.com/pallets/jinja" + }, { "type": "WEB", "url": "https://palletsprojects.com/blog/jinja-281-released/" @@ -87,10 +91,6 @@ { "type": "WEB", "url": "http://lists.opensuse.org/opensuse-security-announce/2019-06/msg00064.html" - }, - { - "type": "PACKAGE", - "url": "https://github.com/pallets/jinja" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/04/GHSA-qj3f-9gmq-fwv5/GHSA-qj3f-9gmq-fwv5.json b/advisories/github-reviewed/2019/04/GHSA-qj3f-9gmq-fwv5/GHSA-qj3f-9gmq-fwv5.json index c92b64229b3..dc013e77c50 100644 --- a/advisories/github-reviewed/2019/04/GHSA-qj3f-9gmq-fwv5/GHSA-qj3f-9gmq-fwv5.json +++ b/advisories/github-reviewed/2019/04/GHSA-qj3f-9gmq-fwv5/GHSA-qj3f-9gmq-fwv5.json @@ -44,6 +44,10 @@ "type": "WEB", "url": "https://github.com/Khan/simple-markdown/pull/63" }, + { + "type": "PACKAGE", + "url": "https://github.com/Khan/simple-markdown" + }, { "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-qj3f-9gmq-fwv5" @@ -67,10 +71,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/package/simple-markdown/v/0.4.4" - }, - { - "type": "PACKAGE", - "url": "https://github.com/Khan/simple-markdown" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/04/GHSA-rcx2-m7jp-p9wj/GHSA-rcx2-m7jp-p9wj.json b/advisories/github-reviewed/2019/04/GHSA-rcx2-m7jp-p9wj/GHSA-rcx2-m7jp-p9wj.json index a7e8b77129c..9982b7230da 100644 --- a/advisories/github-reviewed/2019/04/GHSA-rcx2-m7jp-p9wj/GHSA-rcx2-m7jp-p9wj.json +++ b/advisories/github-reviewed/2019/04/GHSA-rcx2-m7jp-p9wj/GHSA-rcx2-m7jp-p9wj.json @@ -48,13 +48,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-rcx2-m7jp-p9wj" }, - { - "type": "WEB", - "url": "https://github.com/jupyter/notebook/compare/16cf97c...b8e30ea" - }, { "type": "PACKAGE", "url": "https://github.com/jupyter/notebook" + }, + { + "type": "WEB", + "url": "https://github.com/jupyter/notebook/compare/16cf97c...b8e30ea" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/04/GHSA-rg3q-jxmp-pvjj/GHSA-rg3q-jxmp-pvjj.json b/advisories/github-reviewed/2019/04/GHSA-rg3q-jxmp-pvjj/GHSA-rg3q-jxmp-pvjj.json index de36961172a..ef7874d9b6c 100644 --- a/advisories/github-reviewed/2019/04/GHSA-rg3q-jxmp-pvjj/GHSA-rg3q-jxmp-pvjj.json +++ b/advisories/github-reviewed/2019/04/GHSA-rg3q-jxmp-pvjj/GHSA-rg3q-jxmp-pvjj.json @@ -44,13 +44,13 @@ "type": "WEB", "url": "https://github.com/Dogfalo/materialize/issues/6286" }, - { - "type": "ADVISORY", - "url": "https://github.com/advisories/GHSA-rg3q-jxmp-pvjj" - }, { "type": "PACKAGE", "url": "https://github.com/Dogfalo/materialize" + }, + { + "type": "ADVISORY", + "url": "https://github.com/advisories/GHSA-rg3q-jxmp-pvjj" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/04/GHSA-rv62-4pmj-xw6h/GHSA-rv62-4pmj-xw6h.json b/advisories/github-reviewed/2019/04/GHSA-rv62-4pmj-xw6h/GHSA-rv62-4pmj-xw6h.json index 7b9fbdf1862..37e671535a8 100644 --- a/advisories/github-reviewed/2019/04/GHSA-rv62-4pmj-xw6h/GHSA-rv62-4pmj-xw6h.json +++ b/advisories/github-reviewed/2019/04/GHSA-rv62-4pmj-xw6h/GHSA-rv62-4pmj-xw6h.json @@ -79,6 +79,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-rv62-4pmj-xw6h" }, + { + "type": "PACKAGE", + "url": "https://github.com/jupyter/notebook" + }, { "type": "WEB", "url": "https://github.com/jupyter/notebook/compare/05aa4b2...16cf97c" @@ -90,10 +94,6 @@ { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/VMDPJBVXOVO6LYGAT46VZNHH6JKSCURO/" - }, - { - "type": "PACKAGE", - "url": "https://github.com/jupyter/notebook" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/04/GHSA-vqqv-v9m2-48p2/GHSA-vqqv-v9m2-48p2.json b/advisories/github-reviewed/2019/04/GHSA-vqqv-v9m2-48p2/GHSA-vqqv-v9m2-48p2.json index 9576f8f9ba4..dd7def505ab 100644 --- a/advisories/github-reviewed/2019/04/GHSA-vqqv-v9m2-48p2/GHSA-vqqv-v9m2-48p2.json +++ b/advisories/github-reviewed/2019/04/GHSA-vqqv-v9m2-48p2/GHSA-vqqv-v9m2-48p2.json @@ -51,6 +51,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-vqqv-v9m2-48p2" }, + { + "type": "PACKAGE", + "url": "https://github.com/twbs/bootstrap-sass" + }, { "type": "WEB", "url": "https://snyk.io/blog/malicious-remote-code-execution-backdoor-discovered-in-the-popular-bootstrap-sass-ruby-gem/" @@ -62,10 +66,6 @@ { "type": "WEB", "url": "http://dgb.github.io/2019/04/05/bootstrap-sass-backdoor.html" - }, - { - "type": "PACKAGE", - "url": "https://github.com/twbs/bootstrap-sass" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/04/GHSA-w6j4-3gh2-9f5j/GHSA-w6j4-3gh2-9f5j.json b/advisories/github-reviewed/2019/04/GHSA-w6j4-3gh2-9f5j/GHSA-w6j4-3gh2-9f5j.json index aa1248a636f..a0538b0fbcc 100644 --- a/advisories/github-reviewed/2019/04/GHSA-w6j4-3gh2-9f5j/GHSA-w6j4-3gh2-9f5j.json +++ b/advisories/github-reviewed/2019/04/GHSA-w6j4-3gh2-9f5j/GHSA-w6j4-3gh2-9f5j.json @@ -44,6 +44,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-w6j4-3gh2-9f5j" }, + { + "type": "PACKAGE", + "url": "https://github.com/apache/airflow" + }, { "type": "WEB", "url": "https://lists.apache.org/thread.html/2de387213d45bc626d27554a1bde7b8c67d08720901f82a50b6f4231@%3Cdev.airflow.apache.org%3E" @@ -55,10 +59,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/107869" - }, - { - "type": "PACKAGE", - "url": "https://github.com/apache/airflow" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/07/GHSA-p3w6-jcg4-52xh/GHSA-p3w6-jcg4-52xh.json b/advisories/github-reviewed/2019/07/GHSA-p3w6-jcg4-52xh/GHSA-p3w6-jcg4-52xh.json index 384d55894c6..665291a132c 100644 --- a/advisories/github-reviewed/2019/07/GHSA-p3w6-jcg4-52xh/GHSA-p3w6-jcg4-52xh.json +++ b/advisories/github-reviewed/2019/07/GHSA-p3w6-jcg4-52xh/GHSA-p3w6-jcg4-52xh.json @@ -57,13 +57,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-p3w6-jcg4-52xh" }, - { - "type": "WEB", - "url": "https://github.com/apragacz/django-rest-registration/releases/tag/0.5.0" - }, { "type": "PACKAGE", "url": "https://github.com/apragacz/django-rest-registration" + }, + { + "type": "WEB", + "url": "https://github.com/apragacz/django-rest-registration/releases/tag/0.5.0" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/09/GHSA-mc84-xr9p-938r/GHSA-mc84-xr9p-938r.json b/advisories/github-reviewed/2019/09/GHSA-mc84-xr9p-938r/GHSA-mc84-xr9p-938r.json index 83c64d2c382..9fb463d8cdb 100644 --- a/advisories/github-reviewed/2019/09/GHSA-mc84-xr9p-938r/GHSA-mc84-xr9p-938r.json +++ b/advisories/github-reviewed/2019/09/GHSA-mc84-xr9p-938r/GHSA-mc84-xr9p-938r.json @@ -44,13 +44,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-mc84-xr9p-938r" }, - { - "type": "WEB", - "url": "https://snyk.io/vuln/SNYK-JS-GENERATORJHIPSTER-536074" - }, { "type": "PACKAGE", "url": "https://github.com/jhipster/generator-jhipster/" + }, + { + "type": "WEB", + "url": "https://snyk.io/vuln/SNYK-JS-GENERATORJHIPSTER-536074" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/09/GHSA-v6cj-r88p-92rm/GHSA-v6cj-r88p-92rm.json b/advisories/github-reviewed/2019/09/GHSA-v6cj-r88p-92rm/GHSA-v6cj-r88p-92rm.json index 04802e8e9a4..22072354a1b 100644 --- a/advisories/github-reviewed/2019/09/GHSA-v6cj-r88p-92rm/GHSA-v6cj-r88p-92rm.json +++ b/advisories/github-reviewed/2019/09/GHSA-v6cj-r88p-92rm/GHSA-v6cj-r88p-92rm.json @@ -44,13 +44,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-v6cj-r88p-92rm" }, - { - "type": "WEB", - "url": "https://snyk.io/vuln/SNYK-JS-CENTRA-536073" - }, { "type": "PACKAGE", "url": "https://github.com/ethanent/centra" + }, + { + "type": "WEB", + "url": "https://snyk.io/vuln/SNYK-JS-CENTRA-536073" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/09/GHSA-vf23-f26f-mjj9/GHSA-vf23-f26f-mjj9.json b/advisories/github-reviewed/2019/09/GHSA-vf23-f26f-mjj9/GHSA-vf23-f26f-mjj9.json index f1a86865ac7..365d34c2e8d 100644 --- a/advisories/github-reviewed/2019/09/GHSA-vf23-f26f-mjj9/GHSA-vf23-f26f-mjj9.json +++ b/advisories/github-reviewed/2019/09/GHSA-vf23-f26f-mjj9/GHSA-vf23-f26f-mjj9.json @@ -52,6 +52,10 @@ "type": "WEB", "url": "https://github.com/Wocanilo/CVE-2019-14537" }, + { + "type": "PACKAGE", + "url": "https://github.com/YOURLS/YOURLS" + }, { "type": "WEB", "url": "https://github.com/YOURLS/YOURLS/commits/master" @@ -67,10 +71,6 @@ { "type": "WEB", "url": "https://security-garage.com/index.php/cves/cve-2019-14537-api-authentication-bypass-via-type-juggling" - }, - { - "type": "PACKAGE", - "url": "https://github.com/YOURLS/YOURLS" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/10/GHSA-mvqp-q37c-wf9j/GHSA-mvqp-q37c-wf9j.json b/advisories/github-reviewed/2019/10/GHSA-mvqp-q37c-wf9j/GHSA-mvqp-q37c-wf9j.json index 27182599018..db67797f497 100644 --- a/advisories/github-reviewed/2019/10/GHSA-mvqp-q37c-wf9j/GHSA-mvqp-q37c-wf9j.json +++ b/advisories/github-reviewed/2019/10/GHSA-mvqp-q37c-wf9j/GHSA-mvqp-q37c-wf9j.json @@ -56,6 +56,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-mvqp-q37c-wf9j" }, + { + "type": "PACKAGE", + "url": "https://github.com/ratpack/ratpack" + }, { "type": "WEB", "url": "https://github.com/ratpack/ratpack/releases/tag/v1.7.5" @@ -63,10 +67,6 @@ { "type": "WEB", "url": "https://ratpack.io/versions/1.7.5" - }, - { - "type": "PACKAGE", - "url": "https://github.com/ratpack/ratpack" } ], "database_specific": { diff --git a/advisories/github-reviewed/2019/12/GHSA-m6cx-g6qm-p2cx/GHSA-m6cx-g6qm-p2cx.json b/advisories/github-reviewed/2019/12/GHSA-m6cx-g6qm-p2cx/GHSA-m6cx-g6qm-p2cx.json index 4f20d208dda..89bccaa842e 100644 --- a/advisories/github-reviewed/2019/12/GHSA-m6cx-g6qm-p2cx/GHSA-m6cx-g6qm-p2cx.json +++ b/advisories/github-reviewed/2019/12/GHSA-m6cx-g6qm-p2cx/GHSA-m6cx-g6qm-p2cx.json @@ -72,6 +72,10 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-m6cx-g6qm-p2cx" }, + { + "type": "PACKAGE", + "url": "https://github.com/npm/cli" + }, { "type": "WEB", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/Z36UKPO5F3PQ3Q2POMF5LEKXWAH5RUFP/" @@ -91,10 +95,6 @@ { "type": "WEB", "url": "http://lists.opensuse.org/opensuse-security-announce/2020-01/msg00027.html" - }, - { - "type": "PACKAGE", - "url": "https://github.com/npm/cli" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/06/GHSA-7hwc-46rm-65jh/GHSA-7hwc-46rm-65jh.json b/advisories/github-reviewed/2020/06/GHSA-7hwc-46rm-65jh/GHSA-7hwc-46rm-65jh.json index 4c0a82c0aca..6f70076f76e 100644 --- a/advisories/github-reviewed/2020/06/GHSA-7hwc-46rm-65jh/GHSA-7hwc-46rm-65jh.json +++ b/advisories/github-reviewed/2020/06/GHSA-7hwc-46rm-65jh/GHSA-7hwc-46rm-65jh.json @@ -68,6 +68,10 @@ "type": "WEB", "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/125800" }, + { + "type": "PACKAGE", + "url": "https://github.com/x-stream/xstream" + }, { "type": "WEB", "url": "https://www-prd-trops.events.ibm.com/node/715749" @@ -87,10 +91,6 @@ { "type": "WEB", "url": "http://x-stream.github.io/CVE-2017-7957.html" - }, - { - "type": "PACKAGE", - "url": "https://github.com/x-stream/xstream" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/06/GHSA-9959-6p3m-wxpc/GHSA-9959-6p3m-wxpc.json b/advisories/github-reviewed/2020/06/GHSA-9959-6p3m-wxpc/GHSA-9959-6p3m-wxpc.json index 82d3642e501..e0b06754103 100644 --- a/advisories/github-reviewed/2020/06/GHSA-9959-6p3m-wxpc/GHSA-9959-6p3m-wxpc.json +++ b/advisories/github-reviewed/2020/06/GHSA-9959-6p3m-wxpc/GHSA-9959-6p3m-wxpc.json @@ -45,6 +45,10 @@ "type": "WEB", "url": "https://github.com/netty/netty/commit/2fa9400a59d0563a66908aba55c41e7285a04994" }, + { + "type": "PACKAGE", + "url": "https://github.com/netty/netty" + }, { "type": "WEB", "url": "https://lists.debian.org/debian-lts-announce/2020/02/msg00018.html" @@ -60,10 +64,6 @@ { "type": "WEB", "url": "http://secunia.com/advisories/59196" - }, - { - "type": "PACKAGE", - "url": "https://github.com/netty/netty" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/06/GHSA-c265-37vj-cwcc/GHSA-c265-37vj-cwcc.json b/advisories/github-reviewed/2020/06/GHSA-c265-37vj-cwcc/GHSA-c265-37vj-cwcc.json index 4da657f5191..d697c73a622 100644 --- a/advisories/github-reviewed/2020/06/GHSA-c265-37vj-cwcc/GHSA-c265-37vj-cwcc.json +++ b/advisories/github-reviewed/2020/06/GHSA-c265-37vj-cwcc/GHSA-c265-37vj-cwcc.json @@ -51,6 +51,10 @@ "type": "WEB", "url": "https://github.com/FasterXML/jackson-databind/commit/99001cdb6807b5c7b170ec6a9092ecbb618ae79c" }, + { + "type": "PACKAGE", + "url": "https://github.com/FasterXML/jackson-databind" + }, { "type": "WEB", "url": "https://lists.debian.org/debian-lts-announce/2020/07/msg00001.html" @@ -86,10 +90,6 @@ { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpuoct2021.html" - }, - { - "type": "PACKAGE", - "url": "https://github.com/FasterXML/jackson-databind" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/06/GHSA-c2q3-4qrh-fm48/GHSA-c2q3-4qrh-fm48.json b/advisories/github-reviewed/2020/06/GHSA-c2q3-4qrh-fm48/GHSA-c2q3-4qrh-fm48.json index ea13760d56a..8d2a81ead0e 100644 --- a/advisories/github-reviewed/2020/06/GHSA-c2q3-4qrh-fm48/GHSA-c2q3-4qrh-fm48.json +++ b/advisories/github-reviewed/2020/06/GHSA-c2q3-4qrh-fm48/GHSA-c2q3-4qrh-fm48.json @@ -51,6 +51,10 @@ "type": "WEB", "url": "https://github.com/FasterXML/jackson-databind/commit/5c8642aeae9c756b438ab7637c90ef3c77966e6e" }, + { + "type": "PACKAGE", + "url": "https://github.com/FasterXML/jackson-databind" + }, { "type": "WEB", "url": "https://lists.debian.org/debian-lts-announce/2020/07/msg00001.html" @@ -86,10 +90,6 @@ { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpuoct2021.html" - }, - { - "type": "PACKAGE", - "url": "https://github.com/FasterXML/jackson-databind" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/06/GHSA-g753-jx37-7xwh/GHSA-g753-jx37-7xwh.json b/advisories/github-reviewed/2020/06/GHSA-g753-jx37-7xwh/GHSA-g753-jx37-7xwh.json index 78acdbcbabb..9618b6cd29b 100644 --- a/advisories/github-reviewed/2020/06/GHSA-g753-jx37-7xwh/GHSA-g753-jx37-7xwh.json +++ b/advisories/github-reviewed/2020/06/GHSA-g753-jx37-7xwh/GHSA-g753-jx37-7xwh.json @@ -48,6 +48,10 @@ "type": "WEB", "url": "https://github.com/kjur/jsrsasign/commit/9dcb89c57408a3d4b5b66aa9138426bd92819e73" }, + { + "type": "PACKAGE", + "url": "https://github.com/kjur/jsrsasign" + }, { "type": "WEB", "url": "https://github.com/kjur/jsrsasign/releases/tag/8.0.13" @@ -63,10 +67,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/1505" - }, - { - "type": "PACKAGE", - "url": "https://github.com/kjur/jsrsasign" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/06/GHSA-j823-4qch-3rgm/GHSA-j823-4qch-3rgm.json b/advisories/github-reviewed/2020/06/GHSA-j823-4qch-3rgm/GHSA-j823-4qch-3rgm.json index 1de2647d5bd..aaa8abe83a9 100644 --- a/advisories/github-reviewed/2020/06/GHSA-j823-4qch-3rgm/GHSA-j823-4qch-3rgm.json +++ b/advisories/github-reviewed/2020/06/GHSA-j823-4qch-3rgm/GHSA-j823-4qch-3rgm.json @@ -51,6 +51,10 @@ "type": "WEB", "url": "https://github.com/FasterXML/jackson-databind/commit/d1c67a0396e84c08d0558fbb843b5bd1f26e1921" }, + { + "type": "PACKAGE", + "url": "https://github.com/FasterXML/jackson-databind" + }, { "type": "WEB", "url": "https://lists.debian.org/debian-lts-announce/2020/07/msg00001.html" @@ -86,10 +90,6 @@ { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpuoct2021.html" - }, - { - "type": "PACKAGE", - "url": "https://github.com/FasterXML/jackson-databind" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/06/GHSA-mc6h-4qgp-37qh/GHSA-mc6h-4qgp-37qh.json b/advisories/github-reviewed/2020/06/GHSA-mc6h-4qgp-37qh/GHSA-mc6h-4qgp-37qh.json index 20722378342..2145979fcec 100644 --- a/advisories/github-reviewed/2020/06/GHSA-mc6h-4qgp-37qh/GHSA-mc6h-4qgp-37qh.json +++ b/advisories/github-reviewed/2020/06/GHSA-mc6h-4qgp-37qh/GHSA-mc6h-4qgp-37qh.json @@ -51,6 +51,10 @@ "type": "WEB", "url": "https://github.com/FasterXML/jackson-databind/commit/f6d9c664f6d481703138319f6a0f1fdbddb3a259" }, + { + "type": "PACKAGE", + "url": "https://github.com/FasterXML/jackson-databind" + }, { "type": "WEB", "url": "https://lists.debian.org/debian-lts-announce/2020/07/msg00001.html" @@ -78,10 +82,6 @@ { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpuoct2021.html" - }, - { - "type": "PACKAGE", - "url": "https://github.com/FasterXML/jackson-databind" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/06/GHSA-mhp6-pxh8-r675/GHSA-mhp6-pxh8-r675.json b/advisories/github-reviewed/2020/06/GHSA-mhp6-pxh8-r675/GHSA-mhp6-pxh8-r675.json index 1b8c28c5375..588a7a1db4e 100644 --- a/advisories/github-reviewed/2020/06/GHSA-mhp6-pxh8-r675/GHSA-mhp6-pxh8-r675.json +++ b/advisories/github-reviewed/2020/06/GHSA-mhp6-pxh8-r675/GHSA-mhp6-pxh8-r675.json @@ -48,6 +48,10 @@ "type": "WEB", "url": "https://github.com/angular/angular.js/pull/17028," }, + { + "type": "PACKAGE", + "url": "https://github.com/angular/angular.js" + }, { "type": "WEB", "url": "https://lists.apache.org/thread.html/r198985c02829ba8285ed4f9b1de54a33b5f31b08bb38ac51fc86961b@%3Cozone-issues.hadoop.apache.org%3E" @@ -91,10 +95,6 @@ { "type": "WEB", "url": "https://snyk.io/vuln/SNYK-JS-ANGULAR-570058" - }, - { - "type": "PACKAGE", - "url": "https://github.com/angular/angular.js" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/06/GHSA-p8c3-7rj8-q963/GHSA-p8c3-7rj8-q963.json b/advisories/github-reviewed/2020/06/GHSA-p8c3-7rj8-q963/GHSA-p8c3-7rj8-q963.json index ba23fb73129..aeb63a7fb8a 100644 --- a/advisories/github-reviewed/2020/06/GHSA-p8c3-7rj8-q963/GHSA-p8c3-7rj8-q963.json +++ b/advisories/github-reviewed/2020/06/GHSA-p8c3-7rj8-q963/GHSA-p8c3-7rj8-q963.json @@ -56,6 +56,10 @@ "type": "WEB", "url": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-14966" }, + { + "type": "PACKAGE", + "url": "https://github.com/kjur/jsrsasign" + }, { "type": "WEB", "url": "https://github.com/kjur/jsrsasign/releases/tag/8.0.17" @@ -87,10 +91,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/package/jsrsasign" - }, - { - "type": "PACKAGE", - "url": "https://github.com/kjur/jsrsasign" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/06/GHSA-q3gh-5r98-j4h3/GHSA-q3gh-5r98-j4h3.json b/advisories/github-reviewed/2020/06/GHSA-q3gh-5r98-j4h3/GHSA-q3gh-5r98-j4h3.json index 817f45b149b..11025a36d89 100644 --- a/advisories/github-reviewed/2020/06/GHSA-q3gh-5r98-j4h3/GHSA-q3gh-5r98-j4h3.json +++ b/advisories/github-reviewed/2020/06/GHSA-q3gh-5r98-j4h3/GHSA-q3gh-5r98-j4h3.json @@ -59,6 +59,10 @@ "type": "WEB", "url": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-14968" }, + { + "type": "PACKAGE", + "url": "https://github.com/kjur/jsrsasign" + }, { "type": "WEB", "url": "https://github.com/kjur/jsrsasign/releases/tag/8.0.17" @@ -90,10 +94,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/package/jsrsasign" - }, - { - "type": "PACKAGE", - "url": "https://github.com/kjur/jsrsasign" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/06/GHSA-rgh3-987h-wpmw/GHSA-rgh3-987h-wpmw.json b/advisories/github-reviewed/2020/06/GHSA-rgh3-987h-wpmw/GHSA-rgh3-987h-wpmw.json index fa3090fc31d..ed926085c3e 100644 --- a/advisories/github-reviewed/2020/06/GHSA-rgh3-987h-wpmw/GHSA-rgh3-987h-wpmw.json +++ b/advisories/github-reviewed/2020/06/GHSA-rgh3-987h-wpmw/GHSA-rgh3-987h-wpmw.json @@ -44,6 +44,10 @@ "type": "WEB", "url": "https://github.com/x-stream/xstream/issues/25" }, + { + "type": "PACKAGE", + "url": "https://github.com/x-stream/xstream" + }, { "type": "WEB", "url": "https://snyk.io/vuln/SNYK-JAVA-COMTHOUGHTWORKSXSTREAM-30385" @@ -87,10 +91,6 @@ { "type": "WEB", "url": "http://x-stream.github.io/changes.html#1.4.9" - }, - { - "type": "PACKAGE", - "url": "https://github.com/x-stream/xstream" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/06/GHSA-v4rh-8p82-6h5w/GHSA-v4rh-8p82-6h5w.json b/advisories/github-reviewed/2020/06/GHSA-v4rh-8p82-6h5w/GHSA-v4rh-8p82-6h5w.json index 563cb45a92b..afbe6225f19 100644 --- a/advisories/github-reviewed/2020/06/GHSA-v4rh-8p82-6h5w/GHSA-v4rh-8p82-6h5w.json +++ b/advisories/github-reviewed/2020/06/GHSA-v4rh-8p82-6h5w/GHSA-v4rh-8p82-6h5w.json @@ -44,13 +44,13 @@ "type": "WEB", "url": "https://github.com/kevva/url-regex/issues/70" }, - { - "type": "WEB", - "url": "https://snyk.io/vuln/SNYK-JS-URLREGEX-569472" - }, { "type": "PACKAGE", "url": "https://github.com/kevva/url-regex" + }, + { + "type": "WEB", + "url": "https://snyk.io/vuln/SNYK-JS-URLREGEX-569472" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/06/GHSA-w3f4-3q6j-rh82/GHSA-w3f4-3q6j-rh82.json b/advisories/github-reviewed/2020/06/GHSA-w3f4-3q6j-rh82/GHSA-w3f4-3q6j-rh82.json index 0cf5af36902..87b6403b9fe 100644 --- a/advisories/github-reviewed/2020/06/GHSA-w3f4-3q6j-rh82/GHSA-w3f4-3q6j-rh82.json +++ b/advisories/github-reviewed/2020/06/GHSA-w3f4-3q6j-rh82/GHSA-w3f4-3q6j-rh82.json @@ -95,6 +95,10 @@ "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2019:3149" }, + { + "type": "PACKAGE", + "url": "https://github.com/FasterXML/jackson-databind" + }, { "type": "WEB", "url": "https://security.netapp.com/advisory/ntap-20180423-0002/" @@ -110,10 +114,6 @@ { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpuoct2020.html" - }, - { - "type": "PACKAGE", - "url": "https://github.com/FasterXML/jackson-databind" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/06/GHSA-xfv3-rrfm-f2rv/GHSA-xfv3-rrfm-f2rv.json b/advisories/github-reviewed/2020/06/GHSA-xfv3-rrfm-f2rv/GHSA-xfv3-rrfm-f2rv.json index 7d7bbc80286..a1612d5b885 100644 --- a/advisories/github-reviewed/2020/06/GHSA-xfv3-rrfm-f2rv/GHSA-xfv3-rrfm-f2rv.json +++ b/advisories/github-reviewed/2020/06/GHSA-xfv3-rrfm-f2rv/GHSA-xfv3-rrfm-f2rv.json @@ -63,6 +63,10 @@ "type": "WEB", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1222923" }, + { + "type": "PACKAGE", + "url": "https://github.com/netty/netty" + }, { "type": "WEB", "url": "https://lists.apache.org/thread.html/9317fd092b257a0815434b116a8af8daea6e920b6673f4fd5583d5fe@%3Ccommits.druid.apache.org%3E" @@ -106,10 +110,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/74704" - }, - { - "type": "PACKAGE", - "url": "https://github.com/netty/netty" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/06/GHSA-xxxq-chmp-67g4/GHSA-xxxq-chmp-67g4.json b/advisories/github-reviewed/2020/06/GHSA-xxxq-chmp-67g4/GHSA-xxxq-chmp-67g4.json index 565590b9243..b374503a0f9 100644 --- a/advisories/github-reviewed/2020/06/GHSA-xxxq-chmp-67g4/GHSA-xxxq-chmp-67g4.json +++ b/advisories/github-reviewed/2020/06/GHSA-xxxq-chmp-67g4/GHSA-xxxq-chmp-67g4.json @@ -52,6 +52,10 @@ "type": "WEB", "url": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-14967" }, + { + "type": "PACKAGE", + "url": "https://github.com/kjur/jsrsasign" + }, { "type": "WEB", "url": "https://github.com/kjur/jsrsasign/releases/tag/8.0.17" @@ -79,10 +83,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/package/jsrsasign" - }, - { - "type": "PACKAGE", - "url": "https://github.com/kjur/jsrsasign" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/07/GHSA-2v5c-755p-p4gv/GHSA-2v5c-755p-p4gv.json b/advisories/github-reviewed/2020/07/GHSA-2v5c-755p-p4gv/GHSA-2v5c-755p-p4gv.json index 4c1dd9b80e2..3ef4c840132 100644 --- a/advisories/github-reviewed/2020/07/GHSA-2v5c-755p-p4gv/GHSA-2v5c-755p-p4gv.json +++ b/advisories/github-reviewed/2020/07/GHSA-2v5c-755p-p4gv/GHSA-2v5c-755p-p4gv.json @@ -72,6 +72,10 @@ "type": "WEB", "url": "https://blog.jcoglan.com/2020/07/31/missing-tls-verification-in-faye/" }, + { + "type": "PACKAGE", + "url": "https://github.com/faye/faye-websocket-ruby" + }, { "type": "ADVISORY", "url": "https://securitylab.github.com/advisories/GHSL-2020-094-igrigorik-em-http-request" @@ -83,10 +87,6 @@ { "type": "WEB", "url": "https://www.rubydoc.info/github/eventmachine/eventmachine/EventMachine/Connection:start_tls" - }, - { - "type": "PACKAGE", - "url": "https://github.com/faye/faye-websocket-ruby" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/07/GHSA-3x94-fv5h-5q2c/GHSA-3x94-fv5h-5q2c.json b/advisories/github-reviewed/2020/07/GHSA-3x94-fv5h-5q2c/GHSA-3x94-fv5h-5q2c.json index 544aba00292..6eecbf83d7a 100644 --- a/advisories/github-reviewed/2020/07/GHSA-3x94-fv5h-5q2c/GHSA-3x94-fv5h-5q2c.json +++ b/advisories/github-reviewed/2020/07/GHSA-3x94-fv5h-5q2c/GHSA-3x94-fv5h-5q2c.json @@ -63,13 +63,13 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2020-15099" }, - { - "type": "WEB", - "url": "https://typo3.org/security/advisory/typo3-core-sa-2020-007" - }, { "type": "PACKAGE", "url": "https://github.com/TYPO3/TYPO3.CMS" + }, + { + "type": "WEB", + "url": "https://typo3.org/security/advisory/typo3-core-sa-2020-007" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/07/GHSA-43fq-w8qq-v88h/GHSA-43fq-w8qq-v88h.json b/advisories/github-reviewed/2020/07/GHSA-43fq-w8qq-v88h/GHSA-43fq-w8qq-v88h.json index f4c8d69c000..c07a6213969 100644 --- a/advisories/github-reviewed/2020/07/GHSA-43fq-w8qq-v88h/GHSA-43fq-w8qq-v88h.json +++ b/advisories/github-reviewed/2020/07/GHSA-43fq-w8qq-v88h/GHSA-43fq-w8qq-v88h.json @@ -52,6 +52,10 @@ "type": "WEB", "url": "https://github.com/python-pillow/Pillow/commit/2ef59fdbaeb756bc512ab3f2ad15ac45665b303d" }, + { + "type": "PACKAGE", + "url": "https://github.com/python-pillow/Pillow" + }, { "type": "WEB", "url": "https://github.com/python-pillow/Pillow/blob/master/docs/releasenotes/7.1.0.rst#security" @@ -83,10 +87,6 @@ { "type": "WEB", "url": "https://usn.ubuntu.com/4430-2/" - }, - { - "type": "PACKAGE", - "url": "https://github.com/python-pillow/Pillow" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/07/GHSA-43jj-2rwc-2m3f/GHSA-43jj-2rwc-2m3f.json b/advisories/github-reviewed/2020/07/GHSA-43jj-2rwc-2m3f/GHSA-43jj-2rwc-2m3f.json index dbf4d5a46a5..9fd2aaea949 100644 --- a/advisories/github-reviewed/2020/07/GHSA-43jj-2rwc-2m3f/GHSA-43jj-2rwc-2m3f.json +++ b/advisories/github-reviewed/2020/07/GHSA-43jj-2rwc-2m3f/GHSA-43jj-2rwc-2m3f.json @@ -63,6 +63,10 @@ "type": "WEB", "url": "https://forum.silverstripe.org/c/releases" }, + { + "type": "PACKAGE", + "url": "https://github.com/FriendsOfPHP/security-advisories" + }, { "type": "WEB", "url": "https://github.com/FriendsOfPHP/security-advisories/blob/master/silverstripe/framework/CVE-2019-14273.yaml" @@ -78,10 +82,6 @@ { "type": "WEB", "url": "https://www.silverstripe.org/download/security-releases/CVE-2019-14273" - }, - { - "type": "PACKAGE", - "url": "https://github.com/FriendsOfPHP/security-advisories" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/07/GHSA-5f9h-9pjv-v6j7/GHSA-5f9h-9pjv-v6j7.json b/advisories/github-reviewed/2020/07/GHSA-5f9h-9pjv-v6j7/GHSA-5f9h-9pjv-v6j7.json index 68aa24b9680..6a4e0338da8 100644 --- a/advisories/github-reviewed/2020/07/GHSA-5f9h-9pjv-v6j7/GHSA-5f9h-9pjv-v6j7.json +++ b/advisories/github-reviewed/2020/07/GHSA-5f9h-9pjv-v6j7/GHSA-5f9h-9pjv-v6j7.json @@ -48,6 +48,10 @@ "type": "WEB", "url": "https://hackerone.com/reports/434404" }, + { + "type": "PACKAGE", + "url": "https://github.com/rack/rack" + }, { "type": "WEB", "url": "https://github.com/rubysec/ruby-advisory-db/blob/master/gems/rack/CVE-2020-8161.yml" @@ -67,10 +71,6 @@ { "type": "WEB", "url": "https://usn.ubuntu.com/4561-1/" - }, - { - "type": "PACKAGE", - "url": "https://github.com/rack/rack" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/07/GHSA-7hmh-8gwv-mfvq/GHSA-7hmh-8gwv-mfvq.json b/advisories/github-reviewed/2020/07/GHSA-7hmh-8gwv-mfvq/GHSA-7hmh-8gwv-mfvq.json index 5bb7a669eb2..a36ea717e8f 100644 --- a/advisories/github-reviewed/2020/07/GHSA-7hmh-8gwv-mfvq/GHSA-7hmh-8gwv-mfvq.json +++ b/advisories/github-reviewed/2020/07/GHSA-7hmh-8gwv-mfvq/GHSA-7hmh-8gwv-mfvq.json @@ -66,6 +66,10 @@ "type": "WEB", "url": "https://github.com/apache/kylin/commit/e373c64c96a54a7abfe4bccb82e8feb60db04749" }, + { + "type": "PACKAGE", + "url": "https://github.com/apache/kylin" + }, { "type": "WEB", "url": "https://lists.apache.org/thread.html/r021baf9d8d4ae41e8c8332c167c4fa96c91b5086563d9be55d2d7acf@%3Ccommits.kylin.apache.org%3E" @@ -81,10 +85,6 @@ { "type": "WEB", "url": "https://snyk.io/vuln/SNYK-JAVA-ORGAPACHEKYLIN-552148" - }, - { - "type": "PACKAGE", - "url": "https://github.com/apache/kylin" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/07/GHSA-7xcx-6wjh-7xp2/GHSA-7xcx-6wjh-7xp2.json b/advisories/github-reviewed/2020/07/GHSA-7xcx-6wjh-7xp2/GHSA-7xcx-6wjh-7xp2.json index 131eeaccf52..506bb259ff4 100644 --- a/advisories/github-reviewed/2020/07/GHSA-7xcx-6wjh-7xp2/GHSA-7xcx-6wjh-7xp2.json +++ b/advisories/github-reviewed/2020/07/GHSA-7xcx-6wjh-7xp2/GHSA-7xcx-6wjh-7xp2.json @@ -37,13 +37,13 @@ "type": "WEB", "url": "https://github.com/conventional-changelog/standard-version/security/advisories/GHSA-7xcx-6wjh-7xp2" }, - { - "type": "WEB", - "url": "https://github.com/conventional-changelog/standard-version/tree/2f04ac8fc1c134a1981c23a093d4eece77d0bbb9" - }, { "type": "PACKAGE", "url": "https://github.com/conventional-changelog/standard-version" + }, + { + "type": "WEB", + "url": "https://github.com/conventional-changelog/standard-version/tree/2f04ac8fc1c134a1981c23a093d4eece77d0bbb9" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/07/GHSA-8843-m7mw-mxqm/GHSA-8843-m7mw-mxqm.json b/advisories/github-reviewed/2020/07/GHSA-8843-m7mw-mxqm/GHSA-8843-m7mw-mxqm.json index ab2945b170f..460b554f663 100644 --- a/advisories/github-reviewed/2020/07/GHSA-8843-m7mw-mxqm/GHSA-8843-m7mw-mxqm.json +++ b/advisories/github-reviewed/2020/07/GHSA-8843-m7mw-mxqm/GHSA-8843-m7mw-mxqm.json @@ -48,6 +48,10 @@ "type": "WEB", "url": "https://github.com/python-pillow/Pillow/commit/46f4a349b88915787fea3fb91348bb1665831bbb#diff-9478f2787e3ae9668a15123b165c23ac" }, + { + "type": "PACKAGE", + "url": "https://github.com/python-pillow/Pillow" + }, { "type": "WEB", "url": "https://github.com/python-pillow/Pillow/commits/master/src/libImaging" @@ -75,10 +79,6 @@ { "type": "WEB", "url": "https://usn.ubuntu.com/4430-2/" - }, - { - "type": "PACKAGE", - "url": "https://github.com/python-pillow/Pillow" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/07/GHSA-9h4g-27m8-qjrg/GHSA-9h4g-27m8-qjrg.json b/advisories/github-reviewed/2020/07/GHSA-9h4g-27m8-qjrg/GHSA-9h4g-27m8-qjrg.json index b7a55f63574..a0b8bdaff9d 100644 --- a/advisories/github-reviewed/2020/07/GHSA-9h4g-27m8-qjrg/GHSA-9h4g-27m8-qjrg.json +++ b/advisories/github-reviewed/2020/07/GHSA-9h4g-27m8-qjrg/GHSA-9h4g-27m8-qjrg.json @@ -45,7 +45,7 @@ "url": "https://github.com/advisories/GHSA-9h4g-27m8-qjrg" }, { - "type": "WEB", + "type": "PACKAGE", "url": "https://github.com/rico345100/socket.io-file" }, { @@ -55,10 +55,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/package/socket.io-file" - }, - { - "type": "PACKAGE", - "url": "https://github.com/rico345100/socket.io-file" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/07/GHSA-9qcf-c26r-x5rf/GHSA-9qcf-c26r-x5rf.json b/advisories/github-reviewed/2020/07/GHSA-9qcf-c26r-x5rf/GHSA-9qcf-c26r-x5rf.json index 7bcbf8c4b5c..067a7089c5d 100644 --- a/advisories/github-reviewed/2020/07/GHSA-9qcf-c26r-x5rf/GHSA-9qcf-c26r-x5rf.json +++ b/advisories/github-reviewed/2020/07/GHSA-9qcf-c26r-x5rf/GHSA-9qcf-c26r-x5rf.json @@ -52,6 +52,10 @@ "type": "WEB", "url": "https://github.com/quartz-scheduler/quartz/commit/13c1d45aa1db15d0fa0e4997139c99ba219be551" }, + { + "type": "PACKAGE", + "url": "https://github.com/quartz-scheduler/quartz" + }, { "type": "WEB", "url": "https://lists.apache.org/thread.html/172d405e556e2f1204be126bb3eb28c5115af91bcc1651b4e870bb82@%3Cdev.tomee.apache.org%3E" @@ -111,10 +115,6 @@ { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpuoct2021.html" - }, - { - "type": "PACKAGE", - "url": "https://github.com/quartz-scheduler/quartz" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/07/GHSA-cqhg-xjhh-p8hf/GHSA-cqhg-xjhh-p8hf.json b/advisories/github-reviewed/2020/07/GHSA-cqhg-xjhh-p8hf/GHSA-cqhg-xjhh-p8hf.json index 2838d46203c..169152a7fa7 100644 --- a/advisories/github-reviewed/2020/07/GHSA-cqhg-xjhh-p8hf/GHSA-cqhg-xjhh-p8hf.json +++ b/advisories/github-reviewed/2020/07/GHSA-cqhg-xjhh-p8hf/GHSA-cqhg-xjhh-p8hf.json @@ -48,6 +48,10 @@ "type": "WEB", "url": "https://github.com/python-pillow/Pillow/pull/4538" }, + { + "type": "PACKAGE", + "url": "https://github.com/python-pillow/Pillow" + }, { "type": "WEB", "url": "https://github.com/python-pillow/Pillow/commits/master/src/libImaging" @@ -83,10 +87,6 @@ { "type": "WEB", "url": "https://usn.ubuntu.com/4430-2/" - }, - { - "type": "PACKAGE", - "url": "https://github.com/python-pillow/Pillow" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/07/GHSA-f7f4-hqp2-7prc/GHSA-f7f4-hqp2-7prc.json b/advisories/github-reviewed/2020/07/GHSA-f7f4-hqp2-7prc/GHSA-f7f4-hqp2-7prc.json index 016c6e32c8f..76997a505a7 100644 --- a/advisories/github-reviewed/2020/07/GHSA-f7f4-hqp2-7prc/GHSA-f7f4-hqp2-7prc.json +++ b/advisories/github-reviewed/2020/07/GHSA-f7f4-hqp2-7prc/GHSA-f7f4-hqp2-7prc.json @@ -48,6 +48,10 @@ "type": "WEB", "url": "https://github.com/balderdashy/sails-hook-sockets/commit/ff02114eaec090ee51db48435cc32d451662606e" }, + { + "type": "PACKAGE", + "url": "https://github.com/balderdashy/sails-hook-sockets" + }, { "type": "WEB", "url": "https://github.com/balderdashy/sails/blob/56f8276f6501a144a03d1f0f28df4ccdb4ad82e2/CHANGELOG.md" @@ -55,10 +59,6 @@ { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2020/07/19/1" - }, - { - "type": "PACKAGE", - "url": "https://github.com/balderdashy/sails-hook-sockets" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/07/GHSA-f97h-2pfx-f59f/GHSA-f97h-2pfx-f59f.json b/advisories/github-reviewed/2020/07/GHSA-f97h-2pfx-f59f/GHSA-f97h-2pfx-f59f.json index 89123359c77..457ad567e21 100644 --- a/advisories/github-reviewed/2020/07/GHSA-f97h-2pfx-f59f/GHSA-f97h-2pfx-f59f.json +++ b/advisories/github-reviewed/2020/07/GHSA-f97h-2pfx-f59f/GHSA-f97h-2pfx-f59f.json @@ -41,16 +41,12 @@ "url": "https://nvd.nist.gov/vuln/detail/CVE-2020-7695" }, { - "type": "WEB", + "type": "PACKAGE", "url": "https://github.com/encode/uvicorn" }, { "type": "WEB", "url": "https://snyk.io/vuln/SNYK-PYTHON-UVICORN-570471" - }, - { - "type": "PACKAGE", - "url": "https://github.com/encode/uvicorn" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/07/GHSA-fpqv-x9hm-35j9/GHSA-fpqv-x9hm-35j9.json b/advisories/github-reviewed/2020/07/GHSA-fpqv-x9hm-35j9/GHSA-fpqv-x9hm-35j9.json index 05a24c03a36..9231330538f 100644 --- a/advisories/github-reviewed/2020/07/GHSA-fpqv-x9hm-35j9/GHSA-fpqv-x9hm-35j9.json +++ b/advisories/github-reviewed/2020/07/GHSA-fpqv-x9hm-35j9/GHSA-fpqv-x9hm-35j9.json @@ -48,6 +48,10 @@ "type": "WEB", "url": "https://github.com/kitodo/kitodo-presentation/commit/6a67256388350cc69efa7f36bbaee50c919ca23c" }, + { + "type": "PACKAGE", + "url": "https://github.com/kitodo/kitodo-presentation" + }, { "type": "WEB", "url": "https://typo3.org/help/security-advisories" @@ -55,10 +59,6 @@ { "type": "WEB", "url": "https://typo3.org/security/advisory/typo3-ext-sa-2020-015" - }, - { - "type": "PACKAGE", - "url": "https://github.com/kitodo/kitodo-presentation" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/07/GHSA-gm9x-q798-hmr4/GHSA-gm9x-q798-hmr4.json b/advisories/github-reviewed/2020/07/GHSA-gm9x-q798-hmr4/GHSA-gm9x-q798-hmr4.json index c022d535fa6..41fd4e75673 100644 --- a/advisories/github-reviewed/2020/07/GHSA-gm9x-q798-hmr4/GHSA-gm9x-q798-hmr4.json +++ b/advisories/github-reviewed/2020/07/GHSA-gm9x-q798-hmr4/GHSA-gm9x-q798-hmr4.json @@ -44,13 +44,13 @@ "type": "WEB", "url": "https://github.com/sh0ji/git-tags-remote/commit/a20488960cbd2c98455386108253094897ebfc1c" }, - { - "type": "WEB", - "url": "https://www.npmjs.com/advisories/1517" - }, { "type": "PACKAGE", "url": "https://github.com/sh0ji/git-tags-remote" + }, + { + "type": "WEB", + "url": "https://www.npmjs.com/advisories/1517" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/07/GHSA-gprm-xqrc-c2j3/GHSA-gprm-xqrc-c2j3.json b/advisories/github-reviewed/2020/07/GHSA-gprm-xqrc-c2j3/GHSA-gprm-xqrc-c2j3.json index a6e4de2352e..da9c22803fd 100644 --- a/advisories/github-reviewed/2020/07/GHSA-gprm-xqrc-c2j3/GHSA-gprm-xqrc-c2j3.json +++ b/advisories/github-reviewed/2020/07/GHSA-gprm-xqrc-c2j3/GHSA-gprm-xqrc-c2j3.json @@ -67,6 +67,10 @@ "type": "WEB", "url": "https://community.sonarsource.com/t/apache-kylin-3-0-1-command-injection-vulnerability/25706" }, + { + "type": "PACKAGE", + "url": "https://github.com/apache/kylin" + }, { "type": "WEB", "url": "https://lists.apache.org/thread.html/r021baf9d8d4ae41e8c8332c167c4fa96c91b5086563d9be55d2d7acf@%3Ccommits.kylin.apache.org%3E" @@ -98,10 +102,6 @@ { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2020/07/14/1" - }, - { - "type": "PACKAGE", - "url": "https://github.com/apache/kylin" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/07/GHSA-jmqm-f2gx-4fjv/GHSA-jmqm-f2gx-4fjv.json b/advisories/github-reviewed/2020/07/GHSA-jmqm-f2gx-4fjv/GHSA-jmqm-f2gx-4fjv.json index 5740bf6a9a1..f402174f6d1 100644 --- a/advisories/github-reviewed/2020/07/GHSA-jmqm-f2gx-4fjv/GHSA-jmqm-f2gx-4fjv.json +++ b/advisories/github-reviewed/2020/07/GHSA-jmqm-f2gx-4fjv/GHSA-jmqm-f2gx-4fjv.json @@ -67,13 +67,13 @@ "type": "WEB", "url": "https://github.com/npm/npm-registry-fetch/commit/18bf9b97fb1deecdba01ffb05580370846255c88" }, - { - "type": "WEB", - "url": "https://snyk.io/vuln/SNYK-JS-NPMREGISTRYFETCH-575432" - }, { "type": "PACKAGE", "url": "https://github.com/npm/npm-registry-fetch" + }, + { + "type": "WEB", + "url": "https://snyk.io/vuln/SNYK-JS-NPMREGISTRYFETCH-575432" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/07/GHSA-jphg-qwrw-7w9g/GHSA-jphg-qwrw-7w9g.json b/advisories/github-reviewed/2020/07/GHSA-jphg-qwrw-7w9g/GHSA-jphg-qwrw-7w9g.json index 5acc93801b7..a6462e0e0f2 100644 --- a/advisories/github-reviewed/2020/07/GHSA-jphg-qwrw-7w9g/GHSA-jphg-qwrw-7w9g.json +++ b/advisories/github-reviewed/2020/07/GHSA-jphg-qwrw-7w9g/GHSA-jphg-qwrw-7w9g.json @@ -40,6 +40,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2020-10663" }, + { + "type": "PACKAGE", + "url": "https://github.com/flori/json" + }, { "type": "WEB", "url": "https://github.com/flori/json/blob/master/CHANGES.md#2019-12-11-230" @@ -123,10 +127,6 @@ { "type": "WEB", "url": "http://seclists.org/fulldisclosure/2020/Dec/32" - }, - { - "type": "PACKAGE", - "url": "https://github.com/flori/json" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/07/GHSA-m5vr-3m74-jwxp/GHSA-m5vr-3m74-jwxp.json b/advisories/github-reviewed/2020/07/GHSA-m5vr-3m74-jwxp/GHSA-m5vr-3m74-jwxp.json index 70cd0d0df81..13442dc87db 100644 --- a/advisories/github-reviewed/2020/07/GHSA-m5vr-3m74-jwxp/GHSA-m5vr-3m74-jwxp.json +++ b/advisories/github-reviewed/2020/07/GHSA-m5vr-3m74-jwxp/GHSA-m5vr-3m74-jwxp.json @@ -71,6 +71,10 @@ "type": "WEB", "url": "https://github.com/TYPO3/TYPO3.CMS/commit/85d3e70dff35a99ef53f4b561114acfa9e5c47e1" }, + { + "type": "PACKAGE", + "url": "https://github.com/TYPO3/TYPO3.CMS" + }, { "type": "WEB", "url": "https://typo3.org/security/advisory/typo3-core-sa-2016-013" @@ -78,10 +82,6 @@ { "type": "WEB", "url": "https://typo3.org/security/advisory/typo3-core-sa-2020-008" - }, - { - "type": "PACKAGE", - "url": "https://github.com/TYPO3/TYPO3.CMS" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/07/GHSA-p6mc-m468-83gw/GHSA-p6mc-m468-83gw.json b/advisories/github-reviewed/2020/07/GHSA-p6mc-m468-83gw/GHSA-p6mc-m468-83gw.json index 91d342c29f4..725f5898942 100644 --- a/advisories/github-reviewed/2020/07/GHSA-p6mc-m468-83gw/GHSA-p6mc-m468-83gw.json +++ b/advisories/github-reviewed/2020/07/GHSA-p6mc-m468-83gw/GHSA-p6mc-m468-83gw.json @@ -75,6 +75,10 @@ "type": "WEB", "url": "https://hackerone.com/reports/712065" }, + { + "type": "PACKAGE", + "url": "https://github.com/lodash/lodash" + }, { "type": "WEB", "url": "https://security.netapp.com/advisory/ntap-20200724-0006/" @@ -102,10 +106,6 @@ { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpuoct2021.html" - }, - { - "type": "PACKAGE", - "url": "https://github.com/lodash/lodash" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/07/GHSA-vc9j-fhvv-8vrf/GHSA-vc9j-fhvv-8vrf.json b/advisories/github-reviewed/2020/07/GHSA-vc9j-fhvv-8vrf/GHSA-vc9j-fhvv-8vrf.json index 1a270c1755e..3a955198d10 100644 --- a/advisories/github-reviewed/2020/07/GHSA-vc9j-fhvv-8vrf/GHSA-vc9j-fhvv-8vrf.json +++ b/advisories/github-reviewed/2020/07/GHSA-vc9j-fhvv-8vrf/GHSA-vc9j-fhvv-8vrf.json @@ -51,13 +51,13 @@ "type": "WEB", "url": "https://github.com/LLK/scratch-vm/pull/2476/commits/90b9da45f4084958535338d1c4d71a22d6136aab" }, - { - "type": "WEB", - "url": "https://scratch.mit.edu/discuss/topic/422904/?page=1#post-4223443" - }, { "type": "PACKAGE", "url": "https://github.com/LLK/scratch-vm" + }, + { + "type": "WEB", + "url": "https://scratch.mit.edu/discuss/topic/422904/?page=1#post-4223443" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/07/GHSA-vh7m-p724-62c2/GHSA-vh7m-p724-62c2.json b/advisories/github-reviewed/2020/07/GHSA-vh7m-p724-62c2/GHSA-vh7m-p724-62c2.json index 2e7922f0588..319b9818eb0 100644 --- a/advisories/github-reviewed/2020/07/GHSA-vh7m-p724-62c2/GHSA-vh7m-p724-62c2.json +++ b/advisories/github-reviewed/2020/07/GHSA-vh7m-p724-62c2/GHSA-vh7m-p724-62c2.json @@ -44,6 +44,10 @@ "type": "WEB", "url": "https://github.com/indutny/elliptic/issues/226" }, + { + "type": "PACKAGE", + "url": "https://github.com/indutny/elliptic" + }, { "type": "WEB", "url": "https://medium.com/@herman_10687/malleability-attack-why-it-matters-7b5f59fb99a4" @@ -55,10 +59,6 @@ { "type": "WEB", "url": "https://yondon.blog/2019/01/01/how-not-to-use-ecdsa/" - }, - { - "type": "PACKAGE", - "url": "https://github.com/indutny/elliptic" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/07/GHSA-vj42-xq3r-hr3r/GHSA-vj42-xq3r-hr3r.json b/advisories/github-reviewed/2020/07/GHSA-vj42-xq3r-hr3r/GHSA-vj42-xq3r-hr3r.json index 36ca609c005..a790e61e964 100644 --- a/advisories/github-reviewed/2020/07/GHSA-vj42-xq3r-hr3r/GHSA-vj42-xq3r-hr3r.json +++ b/advisories/github-reviewed/2020/07/GHSA-vj42-xq3r-hr3r/GHSA-vj42-xq3r-hr3r.json @@ -52,6 +52,10 @@ "type": "WEB", "url": "https://github.com/python-pillow/Pillow/commit/ff60894d697d1992147b791101ad53a8bf1352e4" }, + { + "type": "PACKAGE", + "url": "https://github.com/python-pillow/Pillow" + }, { "type": "WEB", "url": "https://github.com/python-pillow/Pillow/blob/master/docs/releasenotes/7.1.0.rst#security" @@ -87,10 +91,6 @@ { "type": "WEB", "url": "https://usn.ubuntu.com/4430-2/" - }, - { - "type": "PACKAGE", - "url": "https://github.com/python-pillow/Pillow" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/07/GHSA-wwgf-3xp7-cxj4/GHSA-wwgf-3xp7-cxj4.json b/advisories/github-reviewed/2020/07/GHSA-wwgf-3xp7-cxj4/GHSA-wwgf-3xp7-cxj4.json index 13ce5d08a7f..5098ecf29d1 100644 --- a/advisories/github-reviewed/2020/07/GHSA-wwgf-3xp7-cxj4/GHSA-wwgf-3xp7-cxj4.json +++ b/advisories/github-reviewed/2020/07/GHSA-wwgf-3xp7-cxj4/GHSA-wwgf-3xp7-cxj4.json @@ -82,13 +82,13 @@ "type": "WEB", "url": "https://github.com/FriendsOfPHP/security-advisories/commit/942fd37245cb724ba8cc8d6f11f075a1bd53b338" }, - { - "type": "WEB", - "url": "https://snyk.io/vuln/SNYK-PHP-GOSWEBSOCKETBUNDLE-575401" - }, { "type": "PACKAGE", "url": "https://github.com/GeniusesOfSymfony/WebSocketBundle" + }, + { + "type": "WEB", + "url": "https://snyk.io/vuln/SNYK-PHP-GOSWEBSOCKETBUNDLE-575401" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/08/GHSA-2828-9vh6-9m6j/GHSA-2828-9vh6-9m6j.json b/advisories/github-reviewed/2020/08/GHSA-2828-9vh6-9m6j/GHSA-2828-9vh6-9m6j.json index eb46c3c45d5..7100fd3ab76 100644 --- a/advisories/github-reviewed/2020/08/GHSA-2828-9vh6-9m6j/GHSA-2828-9vh6-9m6j.json +++ b/advisories/github-reviewed/2020/08/GHSA-2828-9vh6-9m6j/GHSA-2828-9vh6-9m6j.json @@ -48,13 +48,13 @@ "type": "WEB", "url": "https://github.com/theupdateframework/tuf/issues/973" }, - { - "type": "WEB", - "url": "https://github.com/theupdateframework/tuf/commits/develop" - }, { "type": "PACKAGE", "url": "https://github.com/theupdateframework/tuf" + }, + { + "type": "WEB", + "url": "https://github.com/theupdateframework/tuf/commits/develop" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/08/GHSA-28gr-86hg-r48w/GHSA-28gr-86hg-r48w.json b/advisories/github-reviewed/2020/08/GHSA-28gr-86hg-r48w/GHSA-28gr-86hg-r48w.json index dceba5d047f..6d6505d4027 100644 --- a/advisories/github-reviewed/2020/08/GHSA-28gr-86hg-r48w/GHSA-28gr-86hg-r48w.json +++ b/advisories/github-reviewed/2020/08/GHSA-28gr-86hg-r48w/GHSA-28gr-86hg-r48w.json @@ -47,6 +47,10 @@ "type": "WEB", "url": "https://github.com/redhog/ep_imageconvert/pull/5" }, + { + "type": "PACKAGE", + "url": "https://github.com/redhog/ep_imageconvert" + }, { "type": "WEB", "url": "https://snyk.io/vuln/npm:ep_imageconvert:20130506" @@ -54,10 +58,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/7" - }, - { - "type": "PACKAGE", - "url": "https://github.com/redhog/ep_imageconvert" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/08/GHSA-363h-vj6q-3cmj/GHSA-363h-vj6q-3cmj.json b/advisories/github-reviewed/2020/08/GHSA-363h-vj6q-3cmj/GHSA-363h-vj6q-3cmj.json index 318bf55b211..9957db31bb6 100644 --- a/advisories/github-reviewed/2020/08/GHSA-363h-vj6q-3cmj/GHSA-363h-vj6q-3cmj.json +++ b/advisories/github-reviewed/2020/08/GHSA-363h-vj6q-3cmj/GHSA-363h-vj6q-3cmj.json @@ -45,6 +45,10 @@ "type": "WEB", "url": "https://github.com/patrickkettner" }, + { + "type": "PACKAGE", + "url": "https://github.com/spumko/hapi" + }, { "type": "WEB", "url": "https://www.npmjs.com/advisories/12" @@ -80,10 +84,6 @@ { "type": "WEB", "url": "http://www.securitytracker.com/id/1030533" - }, - { - "type": "PACKAGE", - "url": "https://github.com/spumko/hapi" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/08/GHSA-3j95-fjv2-3m4p/GHSA-3j95-fjv2-3m4p.json b/advisories/github-reviewed/2020/08/GHSA-3j95-fjv2-3m4p/GHSA-3j95-fjv2-3m4p.json index 7639147dcf5..c1c251b6890 100644 --- a/advisories/github-reviewed/2020/08/GHSA-3j95-fjv2-3m4p/GHSA-3j95-fjv2-3m4p.json +++ b/advisories/github-reviewed/2020/08/GHSA-3j95-fjv2-3m4p/GHSA-3j95-fjv2-3m4p.json @@ -49,16 +49,12 @@ "url": "https://github.com/ankane/chartkick/commit/ba67ab5e603de4d94676790fdac425f8199f1c4f" }, { - "type": "WEB", + "type": "PACKAGE", "url": "https://github.com/ankane/chartkick" }, { "type": "WEB", "url": "https://github.com/rubysec/ruby-advisory-db/blob/master/gems/chartkick/CVE-2020-16254.yml" - }, - { - "type": "PACKAGE", - "url": "https://github.com/ankane/chartkick" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/08/GHSA-3mvg-rrrw-m7ph/GHSA-3mvg-rrrw-m7ph.json b/advisories/github-reviewed/2020/08/GHSA-3mvg-rrrw-m7ph/GHSA-3mvg-rrrw-m7ph.json index be3786bed9f..0e78c0770f4 100644 --- a/advisories/github-reviewed/2020/08/GHSA-3mvg-rrrw-m7ph/GHSA-3mvg-rrrw-m7ph.json +++ b/advisories/github-reviewed/2020/08/GHSA-3mvg-rrrw-m7ph/GHSA-3mvg-rrrw-m7ph.json @@ -143,13 +143,13 @@ "type": "WEB", "url": "https://gist.github.com/kennyadsl/4618cd9797984cb64f7700a81bda889d" }, - { - "type": "WEB", - "url": "https://solidus.io/blog/2020/07/16/new-releases.html" - }, { "type": "PACKAGE", "url": "https://github.com/solidusio/solidus" + }, + { + "type": "WEB", + "url": "https://solidus.io/blog/2020/07/16/new-releases.html" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/08/GHSA-49rv-g7w5-m8xx/GHSA-49rv-g7w5-m8xx.json b/advisories/github-reviewed/2020/08/GHSA-49rv-g7w5-m8xx/GHSA-49rv-g7w5-m8xx.json index 85ef80130cd..ddf6d31fd66 100644 --- a/advisories/github-reviewed/2020/08/GHSA-49rv-g7w5-m8xx/GHSA-49rv-g7w5-m8xx.json +++ b/advisories/github-reviewed/2020/08/GHSA-49rv-g7w5-m8xx/GHSA-49rv-g7w5-m8xx.json @@ -60,6 +60,10 @@ "type": "WEB", "url": "https://github.com/ShielderSec/cve-2017-18635" }, + { + "type": "PACKAGE", + "url": "https://github.com/novnc/noVNC" + }, { "type": "WEB", "url": "https://github.com/novnc/noVNC/releases/tag/v0.6.2" @@ -87,10 +91,6 @@ { "type": "WEB", "url": "https://www.shielder.it/blog/exploiting-an-old-novnc-xss-cve-2017-18635-in-openstack/" - }, - { - "type": "PACKAGE", - "url": "https://github.com/novnc/noVNC" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/08/GHSA-5cp4-xmrw-59wf/GHSA-5cp4-xmrw-59wf.json b/advisories/github-reviewed/2020/08/GHSA-5cp4-xmrw-59wf/GHSA-5cp4-xmrw-59wf.json index 8b6abc1c532..82262f6c28c 100644 --- a/advisories/github-reviewed/2020/08/GHSA-5cp4-xmrw-59wf/GHSA-5cp4-xmrw-59wf.json +++ b/advisories/github-reviewed/2020/08/GHSA-5cp4-xmrw-59wf/GHSA-5cp4-xmrw-59wf.json @@ -56,13 +56,13 @@ "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-mhp6-pxh8-r675" }, - { - "type": "WEB", - "url": "https://snyk.io/vuln/SNYK-JS-ANGULAR-570058" - }, { "type": "PACKAGE", "url": "https://github.com/angular/angular.js" + }, + { + "type": "WEB", + "url": "https://snyk.io/vuln/SNYK-JS-ANGULAR-570058" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/08/GHSA-6898-wx94-8jq8/GHSA-6898-wx94-8jq8.json b/advisories/github-reviewed/2020/08/GHSA-6898-wx94-8jq8/GHSA-6898-wx94-8jq8.json index 900ecb2323f..c68560ccba1 100644 --- a/advisories/github-reviewed/2020/08/GHSA-6898-wx94-8jq8/GHSA-6898-wx94-8jq8.json +++ b/advisories/github-reviewed/2020/08/GHSA-6898-wx94-8jq8/GHSA-6898-wx94-8jq8.json @@ -47,6 +47,10 @@ "type": "WEB", "url": "https://github.com/mytrile/node-libnotify/commit/dfe7801d73a0dda10663a0ff3d0ec8b4d5f0d448" }, + { + "type": "PACKAGE", + "url": "https://github.com/mytrile/node-libnotify" + }, { "type": "WEB", "url": "https://nodesecurity.io/advisories/libnotify_potential_command_injection_in_libnotify.notify" @@ -62,10 +66,6 @@ { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2014/05/15/2" - }, - { - "type": "PACKAGE", - "url": "https://github.com/mytrile/node-libnotify" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/08/GHSA-69rr-wvh9-6c4q/GHSA-69rr-wvh9-6c4q.json b/advisories/github-reviewed/2020/08/GHSA-69rr-wvh9-6c4q/GHSA-69rr-wvh9-6c4q.json index acc4dbe82d9..939f42691c4 100644 --- a/advisories/github-reviewed/2020/08/GHSA-69rr-wvh9-6c4q/GHSA-69rr-wvh9-6c4q.json +++ b/advisories/github-reviewed/2020/08/GHSA-69rr-wvh9-6c4q/GHSA-69rr-wvh9-6c4q.json @@ -41,7 +41,7 @@ "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-3744" }, { - "type": "WEB", + "type": "PACKAGE", "url": "https://github.com/isaacs/st" }, { @@ -67,10 +67,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/67389" - }, - { - "type": "PACKAGE", - "url": "https://github.com/isaacs/st" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/08/GHSA-82mg-x548-gq3j/GHSA-82mg-x548-gq3j.json b/advisories/github-reviewed/2020/08/GHSA-82mg-x548-gq3j/GHSA-82mg-x548-gq3j.json index 8bc4a8d3db7..d0dfd5efd97 100644 --- a/advisories/github-reviewed/2020/08/GHSA-82mg-x548-gq3j/GHSA-82mg-x548-gq3j.json +++ b/advisories/github-reviewed/2020/08/GHSA-82mg-x548-gq3j/GHSA-82mg-x548-gq3j.json @@ -67,6 +67,10 @@ "type": "WEB", "url": "https://github.com/vesse/node-ldapauth-fork/commit/3feea43e243698bcaeffa904a7324f4d96df60e4" }, + { + "type": "PACKAGE", + "url": "https://github.com/vesse/node-ldapauth-fork" + }, { "type": "WEB", "url": "https://www.npmjs.com/advisories/18" @@ -86,10 +90,6 @@ { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2015/09/21/2" - }, - { - "type": "PACKAGE", - "url": "https://github.com/vesse/node-ldapauth-fork" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/08/GHSA-86qr-9vqc-pgc6/GHSA-86qr-9vqc-pgc6.json b/advisories/github-reviewed/2020/08/GHSA-86qr-9vqc-pgc6/GHSA-86qr-9vqc-pgc6.json index c318fa3ca93..c9f08ab43a0 100644 --- a/advisories/github-reviewed/2020/08/GHSA-86qr-9vqc-pgc6/GHSA-86qr-9vqc-pgc6.json +++ b/advisories/github-reviewed/2020/08/GHSA-86qr-9vqc-pgc6/GHSA-86qr-9vqc-pgc6.json @@ -101,6 +101,10 @@ "type": "WEB", "url": "https://github.com/spring-projects/spring-integration/commit/6a02b5abe97fabab6003d51b98dd45ab009a6e05" }, + { + "type": "PACKAGE", + "url": "https://github.com/spring-projects/spring-integration" + }, { "type": "WEB", "url": "https://tanzu.vmware.com/security/cve-2020-5413" @@ -120,10 +124,6 @@ { "type": "WEB", "url": "https://www.oracle.com/security-alerts/cpuoct2021.html" - }, - { - "type": "PACKAGE", - "url": "https://github.com/spring-projects/spring-integration" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/08/GHSA-9vxc-g2jx-qj3p/GHSA-9vxc-g2jx-qj3p.json b/advisories/github-reviewed/2020/08/GHSA-9vxc-g2jx-qj3p/GHSA-9vxc-g2jx-qj3p.json index 6a99462b3da..90a30668db4 100644 --- a/advisories/github-reviewed/2020/08/GHSA-9vxc-g2jx-qj3p/GHSA-9vxc-g2jx-qj3p.json +++ b/advisories/github-reviewed/2020/08/GHSA-9vxc-g2jx-qj3p/GHSA-9vxc-g2jx-qj3p.json @@ -44,6 +44,10 @@ "type": "WEB", "url": "https://github.com/leizongmin/tomato/commit/9e427d524e04a905312a3294c85e939ed7d57b8c" }, + { + "type": "PACKAGE", + "url": "https://github.com/leizongmin/tomato" + }, { "type": "WEB", "url": "https://nodesecurity.io/advisories/Tomato_API_Admin_Auth_Weakness" @@ -59,10 +63,6 @@ { "type": "WEB", "url": "http://www.openwall.com/lists/oss-security/2014/05/15/2" - }, - { - "type": "PACKAGE", - "url": "https://github.com/leizongmin/tomato" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/08/GHSA-9wcg-jrwf-8gg7/GHSA-9wcg-jrwf-8gg7.json b/advisories/github-reviewed/2020/08/GHSA-9wcg-jrwf-8gg7/GHSA-9wcg-jrwf-8gg7.json index e0d77fd7a52..30cb4b021d9 100644 --- a/advisories/github-reviewed/2020/08/GHSA-9wcg-jrwf-8gg7/GHSA-9wcg-jrwf-8gg7.json +++ b/advisories/github-reviewed/2020/08/GHSA-9wcg-jrwf-8gg7/GHSA-9wcg-jrwf-8gg7.json @@ -52,6 +52,10 @@ "type": "WEB", "url": "https://github.com/richardgirges/express-fileupload/commit/db495357d7557ceb5c034de91a7a574bd12f9b9f" }, + { + "type": "PACKAGE", + "url": "https://github.com/richardgirges/express-fileupload" + }, { "type": "WEB", "url": "https://security.netapp.com/advisory/ntap-20200821-0003/" @@ -59,10 +63,6 @@ { "type": "WEB", "url": "https://snyk.io/vuln/SNYK-JS-EXPRESSFILEUPLOAD-595969" - }, - { - "type": "PACKAGE", - "url": "https://github.com/richardgirges/express-fileupload" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/08/GHSA-9x4c-63pf-525f/GHSA-9x4c-63pf-525f.json b/advisories/github-reviewed/2020/08/GHSA-9x4c-63pf-525f/GHSA-9x4c-63pf-525f.json index e59006548d4..5e16f2576e6 100644 --- a/advisories/github-reviewed/2020/08/GHSA-9x4c-63pf-525f/GHSA-9x4c-63pf-525f.json +++ b/advisories/github-reviewed/2020/08/GHSA-9x4c-63pf-525f/GHSA-9x4c-63pf-525f.json @@ -52,6 +52,10 @@ "type": "WEB", "url": "https://github.com/triaxtec/openapi-python-client/commit/f7a56aae32cba823a77a84a1f10400799b19c19a" }, + { + "type": "PACKAGE", + "url": "https://github.com/openapi-generators/openapi-python-client" + }, { "type": "WEB", "url": "https://github.com/openapi-generators/openapi-python-client/releases/tag/v.0.5.3" @@ -63,10 +67,6 @@ { "type": "WEB", "url": "https://pypi.org/project/openapi-python-client/" - }, - { - "type": "PACKAGE", - "url": "https://github.com/openapi-generators/openapi-python-client" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/08/GHSA-c3x7-gjmx-r2ff/GHSA-c3x7-gjmx-r2ff.json b/advisories/github-reviewed/2020/08/GHSA-c3x7-gjmx-r2ff/GHSA-c3x7-gjmx-r2ff.json index 389e379d139..aa95333c33a 100644 --- a/advisories/github-reviewed/2020/08/GHSA-c3x7-gjmx-r2ff/GHSA-c3x7-gjmx-r2ff.json +++ b/advisories/github-reviewed/2020/08/GHSA-c3x7-gjmx-r2ff/GHSA-c3x7-gjmx-r2ff.json @@ -74,6 +74,10 @@ "type": "WEB", "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/99936" }, + { + "type": "PACKAGE", + "url": "https://github.com/expressjs/serve-static" + }, { "type": "WEB", "url": "https://snyk.io/vuln/npm:serve-static:20150113" @@ -89,10 +93,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/72064" - }, - { - "type": "PACKAGE", - "url": "https://github.com/expressjs/serve-static" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/08/GHSA-cf8j-64h9-6q58/GHSA-cf8j-64h9-6q58.json b/advisories/github-reviewed/2020/08/GHSA-cf8j-64h9-6q58/GHSA-cf8j-64h9-6q58.json index c42ae96d2ce..d89ae555c52 100644 --- a/advisories/github-reviewed/2020/08/GHSA-cf8j-64h9-6q58/GHSA-cf8j-64h9-6q58.json +++ b/advisories/github-reviewed/2020/08/GHSA-cf8j-64h9-6q58/GHSA-cf8j-64h9-6q58.json @@ -67,6 +67,10 @@ "type": "WEB", "url": "https://github.com/playframework/playframework/commit/c82de44fc50b7c58c6e0580f1f67ff08aa7bd154" }, + { + "type": "PACKAGE", + "url": "https://github.com/playframework/playframework" + }, { "type": "WEB", "url": "https://www.playframework.com/security/vulnerability" @@ -74,10 +78,6 @@ { "type": "WEB", "url": "https://www.playframework.com/security/vulnerability/CVE-2020-12480-CsrfBlacklistBypass" - }, - { - "type": "PACKAGE", - "url": "https://github.com/playframework/playframework" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/08/GHSA-crf2-xm6x-46p6/GHSA-crf2-xm6x-46p6.json b/advisories/github-reviewed/2020/08/GHSA-crf2-xm6x-46p6/GHSA-crf2-xm6x-46p6.json index 722199bece0..04bc6cd5651 100644 --- a/advisories/github-reviewed/2020/08/GHSA-crf2-xm6x-46p6/GHSA-crf2-xm6x-46p6.json +++ b/advisories/github-reviewed/2020/08/GHSA-crf2-xm6x-46p6/GHSA-crf2-xm6x-46p6.json @@ -67,13 +67,13 @@ "type": "WEB", "url": "https://github.com/OpenMage/magento-lts/commit/7c526bc6a6a51b57a1bab4c60f104dc36cde347a" }, - { - "type": "WEB", - "url": "https://helpx.adobe.com/security/products/magento/apsb20-47.html" - }, { "type": "PACKAGE", "url": "https://github.com/OpenMage/magento-lts" + }, + { + "type": "WEB", + "url": "https://helpx.adobe.com/security/products/magento/apsb20-47.html" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/08/GHSA-f5w6-r7rg-mcgq/GHSA-f5w6-r7rg-mcgq.json b/advisories/github-reviewed/2020/08/GHSA-f5w6-r7rg-mcgq/GHSA-f5w6-r7rg-mcgq.json index dd6b136e4e1..e77cbcbd6f8 100644 --- a/advisories/github-reviewed/2020/08/GHSA-f5w6-r7rg-mcgq/GHSA-f5w6-r7rg-mcgq.json +++ b/advisories/github-reviewed/2020/08/GHSA-f5w6-r7rg-mcgq/GHSA-f5w6-r7rg-mcgq.json @@ -44,6 +44,10 @@ "type": "WEB", "url": "https://github.com/chriso/validator.js/issues/152#issuecomment-48107184" }, + { + "type": "PACKAGE", + "url": "https://github.com/chriso/validator.js" + }, { "type": "WEB", "url": "https://snyk.io/vuln/npm:validator:20130705" @@ -51,10 +55,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/42" - }, - { - "type": "PACKAGE", - "url": "https://github.com/chriso/validator.js" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/08/GHSA-f93j-hmcr-jcwh/GHSA-f93j-hmcr-jcwh.json b/advisories/github-reviewed/2020/08/GHSA-f93j-hmcr-jcwh/GHSA-f93j-hmcr-jcwh.json index 577ecaa9c44..398cb0f37e7 100644 --- a/advisories/github-reviewed/2020/08/GHSA-f93j-hmcr-jcwh/GHSA-f93j-hmcr-jcwh.json +++ b/advisories/github-reviewed/2020/08/GHSA-f93j-hmcr-jcwh/GHSA-f93j-hmcr-jcwh.json @@ -67,6 +67,10 @@ "type": "WEB", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1229757" }, + { + "type": "PACKAGE", + "url": "https://github.com/mongoid/moped/" + }, { "type": "WEB", "url": "https://github.com/rubysec/ruby-advisory-db/blob/master/gems/moped/CVE-2015-4410.yml" @@ -110,10 +114,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/75045" - }, - { - "type": "PACKAGE", - "url": "https://github.com/mongoid/moped/" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/08/GHSA-gr4j-r575-g665/GHSA-gr4j-r575-g665.json b/advisories/github-reviewed/2020/08/GHSA-gr4j-r575-g665/GHSA-gr4j-r575-g665.json index b08bbffc1da..ec0e92216e8 100644 --- a/advisories/github-reviewed/2020/08/GHSA-gr4j-r575-g665/GHSA-gr4j-r575-g665.json +++ b/advisories/github-reviewed/2020/08/GHSA-gr4j-r575-g665/GHSA-gr4j-r575-g665.json @@ -59,6 +59,10 @@ "type": "WEB", "url": "https://github.com/highcharts/highcharts/issues/13559" }, + { + "type": "PACKAGE", + "url": "https://github.com/highcharts/highcharts" + }, { "type": "WEB", "url": "https://snyk.io/vuln/SNYK-JS-HIGHCHARTS-571995" @@ -66,10 +70,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/1227" - }, - { - "type": "PACKAGE", - "url": "https://github.com/highcharts/highcharts" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/08/GHSA-h698-r4hm-w94p/GHSA-h698-r4hm-w94p.json b/advisories/github-reviewed/2020/08/GHSA-h698-r4hm-w94p/GHSA-h698-r4hm-w94p.json index d1f52a15a2e..410ebec79bb 100644 --- a/advisories/github-reviewed/2020/08/GHSA-h698-r4hm-w94p/GHSA-h698-r4hm-w94p.json +++ b/advisories/github-reviewed/2020/08/GHSA-h698-r4hm-w94p/GHSA-h698-r4hm-w94p.json @@ -44,6 +44,10 @@ "type": "WEB", "url": "https://github.com/andzdroid/paypal-ipn/issues/11" }, + { + "type": "PACKAGE", + "url": "https://github.com/andzdroid/paypal-ipn" + }, { "type": "WEB", "url": "https://nodesecurity.io/advisories/26" @@ -51,10 +55,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/26" - }, - { - "type": "PACKAGE", - "url": "https://github.com/andzdroid/paypal-ipn" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/08/GHSA-j7wp-vjj6-cp5m/GHSA-j7wp-vjj6-cp5m.json b/advisories/github-reviewed/2020/08/GHSA-j7wp-vjj6-cp5m/GHSA-j7wp-vjj6-cp5m.json index a49cf8b6c94..4d394241b72 100644 --- a/advisories/github-reviewed/2020/08/GHSA-j7wp-vjj6-cp5m/GHSA-j7wp-vjj6-cp5m.json +++ b/advisories/github-reviewed/2020/08/GHSA-j7wp-vjj6-cp5m/GHSA-j7wp-vjj6-cp5m.json @@ -34,7 +34,7 @@ ], "references": [ { - "type": "WEB", + "type": "PACKAGE", "url": "https://github.com/telerik/kendo-angular-editor" }, { @@ -44,10 +44,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/1549" - }, - { - "type": "PACKAGE", - "url": "https://github.com/telerik/kendo-angular-editor" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/08/GHSA-m75h-cghq-c8h5/GHSA-m75h-cghq-c8h5.json b/advisories/github-reviewed/2020/08/GHSA-m75h-cghq-c8h5/GHSA-m75h-cghq-c8h5.json index 80954c40afb..d6b89c0d13e 100644 --- a/advisories/github-reviewed/2020/08/GHSA-m75h-cghq-c8h5/GHSA-m75h-cghq-c8h5.json +++ b/advisories/github-reviewed/2020/08/GHSA-m75h-cghq-c8h5/GHSA-m75h-cghq-c8h5.json @@ -37,6 +37,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-6393" }, + { + "type": "PACKAGE", + "url": "https://bitbucket.org/xi/libyaml" + }, { "type": "WEB", "url": "https://bitbucket.org/xi/libyaml/commits/bce8b60f0b9af69fa9fab3093d0a41ba243de048" @@ -132,10 +136,6 @@ { "type": "WEB", "url": "http://www.ubuntu.com/usn/USN-2098-1" - }, - { - "type": "PACKAGE", - "url": "https://bitbucket.org/xi/libyaml" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/08/GHSA-mqm2-cgpr-p4m6/GHSA-mqm2-cgpr-p4m6.json b/advisories/github-reviewed/2020/08/GHSA-mqm2-cgpr-p4m6/GHSA-mqm2-cgpr-p4m6.json index 9737503b714..dd83f1afde2 100644 --- a/advisories/github-reviewed/2020/08/GHSA-mqm2-cgpr-p4m6/GHSA-mqm2-cgpr-p4m6.json +++ b/advisories/github-reviewed/2020/08/GHSA-mqm2-cgpr-p4m6/GHSA-mqm2-cgpr-p4m6.json @@ -44,6 +44,10 @@ "type": "WEB", "url": "https://github.com/gettalong/kramdown/commit/1b8fd33c3120bfc6e5164b449e2c2fc9c9306fde" }, + { + "type": "PACKAGE", + "url": "https://github.com/gettalong/kramdown" + }, { "type": "WEB", "url": "https://github.com/gettalong/kramdown/compare/REL_2_2_1...REL_2_3_0" @@ -87,10 +91,6 @@ { "type": "WEB", "url": "https://www.debian.org/security/2020/dsa-4743" - }, - { - "type": "PACKAGE", - "url": "https://github.com/gettalong/kramdown" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/08/GHSA-q6j3-c4wc-63vw/GHSA-q6j3-c4wc-63vw.json b/advisories/github-reviewed/2020/08/GHSA-q6j3-c4wc-63vw/GHSA-q6j3-c4wc-63vw.json index 1387c78c9ae..90a788357c0 100644 --- a/advisories/github-reviewed/2020/08/GHSA-q6j3-c4wc-63vw/GHSA-q6j3-c4wc-63vw.json +++ b/advisories/github-reviewed/2020/08/GHSA-q6j3-c4wc-63vw/GHSA-q6j3-c4wc-63vw.json @@ -48,13 +48,13 @@ "type": "WEB", "url": "https://github.com/simonw/datasette/commit/7f10f0f7664d474c1be82bf668829e3b736a3d2b" }, - { - "type": "WEB", - "url": "https://snyk.io/vuln/SNYK-PYTHON-DATASETTE-598229" - }, { "type": "PACKAGE", "url": "https://github.com/simonw/datasette" + }, + { + "type": "WEB", + "url": "https://snyk.io/vuln/SNYK-PYTHON-DATASETTE-598229" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/08/GHSA-v6fx-752r-ccp2/GHSA-v6fx-752r-ccp2.json b/advisories/github-reviewed/2020/08/GHSA-v6fx-752r-ccp2/GHSA-v6fx-752r-ccp2.json index 835854d1159..59587f6807a 100644 --- a/advisories/github-reviewed/2020/08/GHSA-v6fx-752r-ccp2/GHSA-v6fx-752r-ccp2.json +++ b/advisories/github-reviewed/2020/08/GHSA-v6fx-752r-ccp2/GHSA-v6fx-752r-ccp2.json @@ -48,6 +48,10 @@ "type": "WEB", "url": "https://github.com/ankane/pghero/commit/14b67b32fed19a30aaf9826ee72f2a29cda604e9" }, + { + "type": "PACKAGE", + "url": "https://github.com/ankane/pghero" + }, { "type": "WEB", "url": "https://github.com/ankane/pghero/" @@ -59,10 +63,6 @@ { "type": "WEB", "url": "https://rubygems.org/gems/pghero" - }, - { - "type": "PACKAGE", - "url": "https://github.com/ankane/pghero" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/08/GHSA-vjfr-p6hp-jqqw/GHSA-vjfr-p6hp-jqqw.json b/advisories/github-reviewed/2020/08/GHSA-vjfr-p6hp-jqqw/GHSA-vjfr-p6hp-jqqw.json index c379947b510..7b26b468ea9 100644 --- a/advisories/github-reviewed/2020/08/GHSA-vjfr-p6hp-jqqw/GHSA-vjfr-p6hp-jqqw.json +++ b/advisories/github-reviewed/2020/08/GHSA-vjfr-p6hp-jqqw/GHSA-vjfr-p6hp-jqqw.json @@ -44,13 +44,13 @@ "type": "WEB", "url": "https://github.com/FredrikNoren/ungit/issues/486" }, - { - "type": "WEB", - "url": "https://www.npmjs.com/advisories/40" - }, { "type": "PACKAGE", "url": "https://github.com/FredrikNoren/ungit" + }, + { + "type": "WEB", + "url": "https://www.npmjs.com/advisories/40" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/08/GHSA-w542-cpp9-r3g7/GHSA-w542-cpp9-r3g7.json b/advisories/github-reviewed/2020/08/GHSA-w542-cpp9-r3g7/GHSA-w542-cpp9-r3g7.json index ff9cc803931..3a08de9e751 100644 --- a/advisories/github-reviewed/2020/08/GHSA-w542-cpp9-r3g7/GHSA-w542-cpp9-r3g7.json +++ b/advisories/github-reviewed/2020/08/GHSA-w542-cpp9-r3g7/GHSA-w542-cpp9-r3g7.json @@ -51,6 +51,10 @@ "type": "WEB", "url": "https://github.com/ankane/field_test/commit/defd3fdf457c22d7dc5b3be7048481947bd5f0d0" }, + { + "type": "PACKAGE", + "url": "https://github.com/ankane/field_test" + }, { "type": "WEB", "url": "https://github.com/rubysec/ruby-advisory-db/blob/master/gems/field_test/CVE-2020-16252.yml" @@ -58,10 +62,6 @@ { "type": "WEB", "url": "https://rubygems.org/gems/field_test" - }, - { - "type": "PACKAGE", - "url": "https://github.com/ankane/field_test" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/08/GHSA-whrh-9j4q-g7ph/GHSA-whrh-9j4q-g7ph.json b/advisories/github-reviewed/2020/08/GHSA-whrh-9j4q-g7ph/GHSA-whrh-9j4q-g7ph.json index 3ee40bc9b92..efef5d380bb 100644 --- a/advisories/github-reviewed/2020/08/GHSA-whrh-9j4q-g7ph/GHSA-whrh-9j4q-g7ph.json +++ b/advisories/github-reviewed/2020/08/GHSA-whrh-9j4q-g7ph/GHSA-whrh-9j4q-g7ph.json @@ -44,6 +44,10 @@ "type": "WEB", "url": "https://github.com/polaris-rbx/Polaris-React/commit/b64673d91e83c0737616a0770d8208727730808b" }, + { + "type": "PACKAGE", + "url": "https://github.com/polaris-rbx/Polaris-React" + }, { "type": "WEB", "url": "https://medium.com/cross-site-request-forgery-csrf/double-submit-cookie-pattern-65bb71d80d9f" @@ -59,10 +63,6 @@ { "type": "WEB", "url": "https://www.barracuda.com/glossary/csrf" - }, - { - "type": "PACKAGE", - "url": "https://github.com/polaris-rbx/Polaris-React" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/09/GHSA-46m8-42hm-wvvw/GHSA-46m8-42hm-wvvw.json b/advisories/github-reviewed/2020/09/GHSA-46m8-42hm-wvvw/GHSA-46m8-42hm-wvvw.json index 4e9a563bb88..8d5744f89d5 100644 --- a/advisories/github-reviewed/2020/09/GHSA-46m8-42hm-wvvw/GHSA-46m8-42hm-wvvw.json +++ b/advisories/github-reviewed/2020/09/GHSA-46m8-42hm-wvvw/GHSA-46m8-42hm-wvvw.json @@ -44,13 +44,13 @@ "type": "WEB", "url": "https://github.com/Ranks/emojione/issues/61" }, - { - "type": "WEB", - "url": "https://www.npmjs.com/advisories/129" - }, { "type": "PACKAGE", "url": "https://github.com/Ranks/emojione/" + }, + { + "type": "WEB", + "url": "https://www.npmjs.com/advisories/129" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/09/GHSA-4v9q-hm2p-68c4/GHSA-4v9q-hm2p-68c4.json b/advisories/github-reviewed/2020/09/GHSA-4v9q-hm2p-68c4/GHSA-4v9q-hm2p-68c4.json index e899f44cd76..3df88cf7ed9 100644 --- a/advisories/github-reviewed/2020/09/GHSA-4v9q-hm2p-68c4/GHSA-4v9q-hm2p-68c4.json +++ b/advisories/github-reviewed/2020/09/GHSA-4v9q-hm2p-68c4/GHSA-4v9q-hm2p-68c4.json @@ -38,6 +38,10 @@ "type": "WEB", "url": "https://github.com/qesuto/node-krb5/issues/13" }, + { + "type": "PACKAGE", + "url": "https://github.com/qesuto/node-krb5" + }, { "type": "WEB", "url": "https://www.npmjs.com/advisories/136" @@ -45,10 +49,6 @@ { "type": "WEB", "url": "http://archive.hack.lu/2010/Bouillon-Stealing-credentials-for-impersonation.pdf" - }, - { - "type": "PACKAGE", - "url": "https://github.com/qesuto/node-krb5" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/09/GHSA-5v9h-q3gj-c32x/GHSA-5v9h-q3gj-c32x.json b/advisories/github-reviewed/2020/09/GHSA-5v9h-q3gj-c32x/GHSA-5v9h-q3gj-c32x.json index 4330e0e8e30..19413bc7192 100644 --- a/advisories/github-reviewed/2020/09/GHSA-5v9h-q3gj-c32x/GHSA-5v9h-q3gj-c32x.json +++ b/advisories/github-reviewed/2020/09/GHSA-5v9h-q3gj-c32x/GHSA-5v9h-q3gj-c32x.json @@ -44,6 +44,10 @@ "type": "WEB", "url": "https://github.com/sequelize/sequelize/issues/6194" }, + { + "type": "PACKAGE", + "url": "https://github.com/sequelize/sequelize" + }, { "type": "WEB", "url": "https://snyk.io/vuln/npm:sequelize:20160718" @@ -51,10 +55,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/122" - }, - { - "type": "PACKAGE", - "url": "https://github.com/sequelize/sequelize" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/09/GHSA-63m4-fhf2-cmf7/GHSA-63m4-fhf2-cmf7.json b/advisories/github-reviewed/2020/09/GHSA-63m4-fhf2-cmf7/GHSA-63m4-fhf2-cmf7.json index eab3599f378..7476e87d019 100644 --- a/advisories/github-reviewed/2020/09/GHSA-63m4-fhf2-cmf7/GHSA-63m4-fhf2-cmf7.json +++ b/advisories/github-reviewed/2020/09/GHSA-63m4-fhf2-cmf7/GHSA-63m4-fhf2-cmf7.json @@ -44,6 +44,10 @@ "type": "WEB", "url": "https://github.com/KyleRoss/windows-cpu/commit/b75e19aa2f7459a9506bceb577ba2341fe273117" }, + { + "type": "PACKAGE", + "url": "https://github.com/KyleRoss/windows-cpu" + }, { "type": "WEB", "url": "https://github.com/KyleRoss/windows-cpu/blob/master/index.js#L81" @@ -55,10 +59,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/336" - }, - { - "type": "PACKAGE", - "url": "https://github.com/KyleRoss/windows-cpu" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/09/GHSA-7f59-x49p-v8mq/GHSA-7f59-x49p-v8mq.json b/advisories/github-reviewed/2020/09/GHSA-7f59-x49p-v8mq/GHSA-7f59-x49p-v8mq.json index 9309d4c4f7f..2d729e15427 100644 --- a/advisories/github-reviewed/2020/09/GHSA-7f59-x49p-v8mq/GHSA-7f59-x49p-v8mq.json +++ b/advisories/github-reviewed/2020/09/GHSA-7f59-x49p-v8mq/GHSA-7f59-x49p-v8mq.json @@ -45,13 +45,13 @@ "type": "WEB", "url": "https://github.com/swagger-api/swagger-ui/pull/1867" }, - { - "type": "WEB", - "url": "https://www.npmjs.com/advisories/123" - }, { "type": "PACKAGE", "url": "https://github.com/swagger-api/swagger-ui" + }, + { + "type": "WEB", + "url": "https://www.npmjs.com/advisories/123" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/09/GHSA-c7pp-g2v2-2766/GHSA-c7pp-g2v2-2766.json b/advisories/github-reviewed/2020/09/GHSA-c7pp-g2v2-2766/GHSA-c7pp-g2v2-2766.json index b5a43553c4a..40c83ab97e0 100644 --- a/advisories/github-reviewed/2020/09/GHSA-c7pp-g2v2-2766/GHSA-c7pp-g2v2-2766.json +++ b/advisories/github-reviewed/2020/09/GHSA-c7pp-g2v2-2766/GHSA-c7pp-g2v2-2766.json @@ -48,13 +48,13 @@ "type": "WEB", "url": "https://github.com/KartikTalwar/gmail.js/commit/a83436f499f9c01b04280af945a5a81137b6baf1" }, - { - "type": "WEB", - "url": "https://www.npmjs.com/advisories/125" - }, { "type": "PACKAGE", "url": "https://github.com/KartikTalwar/gmail.js" + }, + { + "type": "WEB", + "url": "https://www.npmjs.com/advisories/125" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/09/GHSA-cjj8-wfrx-jqcf/GHSA-cjj8-wfrx-jqcf.json b/advisories/github-reviewed/2020/09/GHSA-cjj8-wfrx-jqcf/GHSA-cjj8-wfrx-jqcf.json index 172bbf9b824..16525396409 100644 --- a/advisories/github-reviewed/2020/09/GHSA-cjj8-wfrx-jqcf/GHSA-cjj8-wfrx-jqcf.json +++ b/advisories/github-reviewed/2020/09/GHSA-cjj8-wfrx-jqcf/GHSA-cjj8-wfrx-jqcf.json @@ -41,13 +41,13 @@ "type": "WEB", "url": "https://github.com/nicolaskruchten/pivottable/pull/401" }, - { - "type": "WEB", - "url": "https://www.npmjs.com/advisories/139" - }, { "type": "PACKAGE", "url": "https://github.com/nicolaskruchten/pivottable" + }, + { + "type": "WEB", + "url": "https://www.npmjs.com/advisories/139" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/09/GHSA-g336-c7wv-8hp3/GHSA-g336-c7wv-8hp3.json b/advisories/github-reviewed/2020/09/GHSA-g336-c7wv-8hp3/GHSA-g336-c7wv-8hp3.json index 71787aced38..397a341034a 100644 --- a/advisories/github-reviewed/2020/09/GHSA-g336-c7wv-8hp3/GHSA-g336-c7wv-8hp3.json +++ b/advisories/github-reviewed/2020/09/GHSA-g336-c7wv-8hp3/GHSA-g336-c7wv-8hp3.json @@ -37,13 +37,13 @@ "type": "WEB", "url": "https://github.com/swagger-api/swagger-ui/issues/1617" }, - { - "type": "WEB", - "url": "https://www.npmjs.com/advisories/137" - }, { "type": "PACKAGE", "url": "https://github.com/swagger-api/swagger-ui" + }, + { + "type": "WEB", + "url": "https://www.npmjs.com/advisories/137" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/09/GHSA-gg6m-fhqv-hg56/GHSA-gg6m-fhqv-hg56.json b/advisories/github-reviewed/2020/09/GHSA-gg6m-fhqv-hg56/GHSA-gg6m-fhqv-hg56.json index 268c8ec0d75..cc813cb3d38 100644 --- a/advisories/github-reviewed/2020/09/GHSA-gg6m-fhqv-hg56/GHSA-gg6m-fhqv-hg56.json +++ b/advisories/github-reviewed/2020/09/GHSA-gg6m-fhqv-hg56/GHSA-gg6m-fhqv-hg56.json @@ -44,13 +44,13 @@ "type": "WEB", "url": "https://github.com/spumko/yar/issues/34" }, - { - "type": "WEB", - "url": "https://www.npmjs.com/advisories/44" - }, { "type": "PACKAGE", "url": "https://github.com/spumko/yar/" + }, + { + "type": "WEB", + "url": "https://www.npmjs.com/advisories/44" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/09/GHSA-gjcw-v447-2w7q/GHSA-gjcw-v447-2w7q.json b/advisories/github-reviewed/2020/09/GHSA-gjcw-v447-2w7q/GHSA-gjcw-v447-2w7q.json index 341509c8b95..1af96835674 100644 --- a/advisories/github-reviewed/2020/09/GHSA-gjcw-v447-2w7q/GHSA-gjcw-v447-2w7q.json +++ b/advisories/github-reviewed/2020/09/GHSA-gjcw-v447-2w7q/GHSA-gjcw-v447-2w7q.json @@ -48,6 +48,10 @@ "type": "WEB", "url": "https://auth0.com/blog/2015/03/31/critical-vulnerabilities-in-json-web-token-libraries/" }, + { + "type": "PACKAGE", + "url": "https://github.com/brianloveswords/node-jws" + }, { "type": "WEB", "url": "https://snyk.io/vuln/npm:jws:20160726" @@ -55,10 +59,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/88" - }, - { - "type": "PACKAGE", - "url": "https://github.com/brianloveswords/node-jws" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/09/GHSA-gjhx-gxwx-jx9j/GHSA-gjhx-gxwx-jx9j.json b/advisories/github-reviewed/2020/09/GHSA-gjhx-gxwx-jx9j/GHSA-gjhx-gxwx-jx9j.json index b2a1abb9052..cd4e63345c6 100644 --- a/advisories/github-reviewed/2020/09/GHSA-gjhx-gxwx-jx9j/GHSA-gjhx-gxwx-jx9j.json +++ b/advisories/github-reviewed/2020/09/GHSA-gjhx-gxwx-jx9j/GHSA-gjhx-gxwx-jx9j.json @@ -44,13 +44,13 @@ "type": "WEB", "url": "https://github.com/mbraak/jqTree/issues/437" }, - { - "type": "WEB", - "url": "https://www.npmjs.com/advisories/132" - }, { "type": "PACKAGE", "url": "https://github.com/mbraak/jqTree" + }, + { + "type": "WEB", + "url": "https://www.npmjs.com/advisories/132" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/09/GHSA-gvg7-pp82-cff3/GHSA-gvg7-pp82-cff3.json b/advisories/github-reviewed/2020/09/GHSA-gvg7-pp82-cff3/GHSA-gvg7-pp82-cff3.json index acb614da6d7..0929e5302c0 100644 --- a/advisories/github-reviewed/2020/09/GHSA-gvg7-pp82-cff3/GHSA-gvg7-pp82-cff3.json +++ b/advisories/github-reviewed/2020/09/GHSA-gvg7-pp82-cff3/GHSA-gvg7-pp82-cff3.json @@ -44,13 +44,13 @@ "type": "WEB", "url": "https://github.com/c3js/c3/issues/1536" }, - { - "type": "WEB", - "url": "https://www.npmjs.com/advisories/138" - }, { "type": "PACKAGE", "url": "https://github.com/c3js/c3" + }, + { + "type": "WEB", + "url": "https://www.npmjs.com/advisories/138" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/09/GHSA-hg78-c92r-hvwr/GHSA-hg78-c92r-hvwr.json b/advisories/github-reviewed/2020/09/GHSA-hg78-c92r-hvwr/GHSA-hg78-c92r-hvwr.json index 001d2814d18..e78f0c9e615 100644 --- a/advisories/github-reviewed/2020/09/GHSA-hg78-c92r-hvwr/GHSA-hg78-c92r-hvwr.json +++ b/advisories/github-reviewed/2020/09/GHSA-hg78-c92r-hvwr/GHSA-hg78-c92r-hvwr.json @@ -43,6 +43,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-1000242" }, + { + "type": "PACKAGE", + "url": "https://github.com/mqttjs/MQTT.js" + }, { "type": "WEB", "url": "https://github.com/mqttjs/MQTT.js/blob/388a084d7803934b18b43c1146c817deaa1396b1/lib/parse.js#L230" @@ -54,10 +58,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/140" - }, - { - "type": "PACKAGE", - "url": "https://github.com/mqttjs/MQTT.js" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/09/GHSA-mrx7-8hxf-f853/GHSA-mrx7-8hxf-f853.json b/advisories/github-reviewed/2020/09/GHSA-mrx7-8hxf-f853/GHSA-mrx7-8hxf-f853.json index e63fbbcc94e..01848c322b3 100644 --- a/advisories/github-reviewed/2020/09/GHSA-mrx7-8hxf-f853/GHSA-mrx7-8hxf-f853.json +++ b/advisories/github-reviewed/2020/09/GHSA-mrx7-8hxf-f853/GHSA-mrx7-8hxf-f853.json @@ -41,13 +41,13 @@ "type": "WEB", "url": "https://github.com/swagger-api/swagger-ui/issues/1863" }, - { - "type": "WEB", - "url": "https://www.npmjs.com/advisories/131" - }, { "type": "PACKAGE", "url": "https://github.com/swagger-api/swagger-ui/" + }, + { + "type": "WEB", + "url": "https://www.npmjs.com/advisories/131" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/09/GHSA-p239-93f7-h6xf/GHSA-p239-93f7-h6xf.json b/advisories/github-reviewed/2020/09/GHSA-p239-93f7-h6xf/GHSA-p239-93f7-h6xf.json index 2c278ed97f1..b4666a26a4a 100644 --- a/advisories/github-reviewed/2020/09/GHSA-p239-93f7-h6xf/GHSA-p239-93f7-h6xf.json +++ b/advisories/github-reviewed/2020/09/GHSA-p239-93f7-h6xf/GHSA-p239-93f7-h6xf.json @@ -48,13 +48,13 @@ "type": "WEB", "url": "https://community.rapid7.com/community/infosec/blog/2016/09/02/r7-2016-19-persistent-xss-via-unescaped-parameters-in-swagger-ui" }, - { - "type": "WEB", - "url": "https://www.npmjs.com/advisories/126" - }, { "type": "PACKAGE", "url": "https://github.com/swagger-api/swagger-ui" + }, + { + "type": "WEB", + "url": "https://www.npmjs.com/advisories/126" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/09/GHSA-pjh3-jv7w-9jpr/GHSA-pjh3-jv7w-9jpr.json b/advisories/github-reviewed/2020/09/GHSA-pjh3-jv7w-9jpr/GHSA-pjh3-jv7w-9jpr.json index c85fbd12192..af52ba5bb9c 100644 --- a/advisories/github-reviewed/2020/09/GHSA-pjh3-jv7w-9jpr/GHSA-pjh3-jv7w-9jpr.json +++ b/advisories/github-reviewed/2020/09/GHSA-pjh3-jv7w-9jpr/GHSA-pjh3-jv7w-9jpr.json @@ -44,13 +44,13 @@ "type": "WEB", "url": "https://github.com/aheckmann/gm/commit/5f5c77490aa84ed313405c88905eb4566135be31" }, - { - "type": "WEB", - "url": "https://www.npmjs.com/advisories/54" - }, { "type": "PACKAGE", "url": "https://github.com/aheckmann/gm" + }, + { + "type": "WEB", + "url": "https://www.npmjs.com/advisories/54" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/09/GHSA-r87w-47m8-22w3/GHSA-r87w-47m8-22w3.json b/advisories/github-reviewed/2020/09/GHSA-r87w-47m8-22w3/GHSA-r87w-47m8-22w3.json index b4bcd0d6924..abc3a148309 100644 --- a/advisories/github-reviewed/2020/09/GHSA-r87w-47m8-22w3/GHSA-r87w-47m8-22w3.json +++ b/advisories/github-reviewed/2020/09/GHSA-r87w-47m8-22w3/GHSA-r87w-47m8-22w3.json @@ -47,6 +47,10 @@ "type": "WEB", "url": "https://github.com/BorisMoore/jsrender/commit/f984e139deb0a7648d5b543860ec652c21f6dcf6" }, + { + "type": "PACKAGE", + "url": "https://github.com/BorisMoore/jsrender" + }, { "type": "WEB", "url": "https://snyk.io/vuln/SNYK-DOTNET-JSRENDER-60173" @@ -54,10 +58,6 @@ { "type": "WEB", "url": "https://www.npmjs.com/advisories/97" - }, - { - "type": "PACKAGE", - "url": "https://github.com/BorisMoore/jsrender" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/09/GHSA-v2jq-9475-r5g8/GHSA-v2jq-9475-r5g8.json b/advisories/github-reviewed/2020/09/GHSA-v2jq-9475-r5g8/GHSA-v2jq-9475-r5g8.json index 7654abdfc31..7f044b1004e 100644 --- a/advisories/github-reviewed/2020/09/GHSA-v2jq-9475-r5g8/GHSA-v2jq-9475-r5g8.json +++ b/advisories/github-reviewed/2020/09/GHSA-v2jq-9475-r5g8/GHSA-v2jq-9475-r5g8.json @@ -41,13 +41,13 @@ "type": "WEB", "url": "https://github.com/bootstrap-tagsinput/bootstrap-tagsinput/issues/501" }, - { - "type": "WEB", - "url": "https://www.npmjs.com/advisories/124" - }, { "type": "PACKAGE", "url": "https://github.com/bootstrap-tagsinput" + }, + { + "type": "WEB", + "url": "https://www.npmjs.com/advisories/124" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/09/GHSA-v3jv-wrf4-5845/GHSA-v3jv-wrf4-5845.json b/advisories/github-reviewed/2020/09/GHSA-v3jv-wrf4-5845/GHSA-v3jv-wrf4-5845.json index be367b319df..863ab95c2a5 100644 --- a/advisories/github-reviewed/2020/09/GHSA-v3jv-wrf4-5845/GHSA-v3jv-wrf4-5845.json +++ b/advisories/github-reviewed/2020/09/GHSA-v3jv-wrf4-5845/GHSA-v3jv-wrf4-5845.json @@ -57,6 +57,10 @@ "type": "WEB", "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/87141" }, + { + "type": "PACKAGE", + "url": "https://github.com/npm/npm" + }, { "type": "WEB", "url": "https://www.npmjs.com/advisories/152" @@ -72,10 +76,6 @@ { "type": "WEB", "url": "http://www.securityfocus.com/bid/61083" - }, - { - "type": "PACKAGE", - "url": "https://github.com/npm/npm" } ], "database_specific": { diff --git a/advisories/github-reviewed/2020/09/GHSA-v5hp-35hw-cw5x/GHSA-v5hp-35hw-cw5x.json b/advisories/github-reviewed/2020/09/GHSA-v5hp-35hw-cw5x/GHSA-v5hp-35hw-cw5x.json index 3eb0cbad591..03544ccd55d 100644 --- a/advisories/github-reviewed/2020/09/GHSA-v5hp-35hw-cw5x/GHSA-v5hp-35hw-cw5x.json +++ b/advisories/github-reviewed/2020/09/GHSA-v5hp-35hw-cw5x/GHSA-v5hp-35hw-cw5x.json @@ -48,13 +48,13 @@ "type": "WEB", "url": "https://github.com/rendrjs/rendr/pull/513" }, - { - "type": "WEB", - "url": "https://www.npmjs.com/advisories/128" - }, { "type": "PACKAGE", "url": "https://github.com/rendrjs/rendr-handlebars" + }, + { + "type": "WEB", + "url": "https://www.npmjs.com/advisories/128" } ], "database_specific": {