From 39452e99614ea1b9c93859669498f90db1afde9f Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Fri, 29 Nov 2024 05:12:45 +0000 Subject: [PATCH] Advisory Database Sync --- .../05/GHSA-g2vx-8v47-4vhh/GHSA-g2vx-8v47-4vhh.json | 4 +--- .../05/GHSA-r2xf-w5pj-9pw8/GHSA-r2xf-w5pj-9pw8.json | 4 +--- .../12/GHSA-8r76-fr72-j32w/GHSA-8r76-fr72-j32w.json | 12 +++--------- .../12/GHSA-9v25-r5q2-2p6w/GHSA-9v25-r5q2-2p6w.json | 12 +++--------- .../03/GHSA-hc6q-2mpp-qw7j/GHSA-hc6q-2mpp-qw7j.json | 4 +--- .../06/GHSA-4vc8-pg5c-vg4x/GHSA-4vc8-pg5c-vg4x.json | 4 +--- .../06/GHSA-cq42-vhv7-xr7p/GHSA-cq42-vhv7-xr7p.json | 4 +--- .../12/GHSA-c894-282r-px6w/GHSA-c894-282r-px6w.json | 4 +--- .../12/GHSA-pmj6-jq7v-c2r6/GHSA-pmj6-jq7v-c2r6.json | 4 +--- .../12/GHSA-x5r4-fjpr-vr8v/GHSA-x5r4-fjpr-vr8v.json | 4 +--- .../01/GHSA-qffg-f4f5-j77v/GHSA-qffg-f4f5-j77v.json | 4 +--- .../02/GHSA-3f53-58pp-pg79/GHSA-3f53-58pp-pg79.json | 4 +--- .../02/GHSA-4jqv-ghx3-vc2h/GHSA-4jqv-ghx3-vc2h.json | 4 +--- .../02/GHSA-x37m-35qq-p254/GHSA-x37m-35qq-p254.json | 4 +--- .../03/GHSA-3466-9q3x-93wx/GHSA-3466-9q3x-93wx.json | 4 +--- .../03/GHSA-4crw-v2wh-7pcj/GHSA-4crw-v2wh-7pcj.json | 8 ++------ .../03/GHSA-5g47-45xh-p83v/GHSA-5g47-45xh-p83v.json | 4 +--- .../03/GHSA-6829-6wg5-7hhh/GHSA-6829-6wg5-7hhh.json | 8 ++------ .../03/GHSA-76r2-hr22-g5f2/GHSA-76r2-hr22-g5f2.json | 8 ++------ .../03/GHSA-7jgh-7hm4-3fmv/GHSA-7jgh-7hm4-3fmv.json | 8 ++------ .../03/GHSA-c36x-474x-cmm9/GHSA-c36x-474x-cmm9.json | 8 ++------ .../03/GHSA-ffgv-qjpf-62hv/GHSA-ffgv-qjpf-62hv.json | 8 ++------ .../03/GHSA-fxhj-vjvm-j527/GHSA-fxhj-vjvm-j527.json | 4 +--- .../03/GHSA-hmjj-fwv3-rhm2/GHSA-hmjj-fwv3-rhm2.json | 8 ++------ .../03/GHSA-mcmv-w2jg-7fvh/GHSA-mcmv-w2jg-7fvh.json | 8 ++------ .../03/GHSA-wm63-7mw9-jg6q/GHSA-wm63-7mw9-jg6q.json | 8 ++------ .../03/GHSA-xhmr-j39f-mv9p/GHSA-xhmr-j39f-mv9p.json | 8 ++------ .../04/GHSA-27gf-ff72-jfqr/GHSA-27gf-ff72-jfqr.json | 12 +++--------- .../04/GHSA-2mg9-gqjh-3ggm/GHSA-2mg9-gqjh-3ggm.json | 12 +++--------- .../04/GHSA-2pfv-488g-27p3/GHSA-2pfv-488g-27p3.json | 12 +++--------- .../04/GHSA-2wm7-6r5c-mjpc/GHSA-2wm7-6r5c-mjpc.json | 8 ++------ .../04/GHSA-2xgp-3983-29gm/GHSA-2xgp-3983-29gm.json | 12 +++--------- .../04/GHSA-3367-m896-h674/GHSA-3367-m896-h674.json | 8 ++------ .../04/GHSA-34f7-g82v-435m/GHSA-34f7-g82v-435m.json | 12 +++--------- .../04/GHSA-34pq-hxpf-w27h/GHSA-34pq-hxpf-w27h.json | 12 +++--------- .../04/GHSA-37qm-483g-mfv8/GHSA-37qm-483g-mfv8.json | 12 +++--------- .../04/GHSA-396q-53q6-gx75/GHSA-396q-53q6-gx75.json | 12 +++--------- .../04/GHSA-3h8r-hv7f-jgcx/GHSA-3h8r-hv7f-jgcx.json | 12 +++--------- .../04/GHSA-3hmx-5jq6-252x/GHSA-3hmx-5jq6-252x.json | 12 +++--------- .../04/GHSA-3j2h-fq3g-cjhp/GHSA-3j2h-fq3g-cjhp.json | 12 +++--------- .../04/GHSA-3r2c-g2rm-78cq/GHSA-3r2c-g2rm-78cq.json | 12 +++--------- .../04/GHSA-3rvg-g59j-rvrh/GHSA-3rvg-g59j-rvrh.json | 12 +++--------- .../04/GHSA-46x7-g574-2w2v/GHSA-46x7-g574-2w2v.json | 12 +++--------- .../04/GHSA-4c68-92p7-xggr/GHSA-4c68-92p7-xggr.json | 12 +++--------- .../04/GHSA-4jvw-4fhr-v7mv/GHSA-4jvw-4fhr-v7mv.json | 12 +++--------- .../04/GHSA-4rcm-2c69-4jh9/GHSA-4rcm-2c69-4jh9.json | 12 +++--------- .../04/GHSA-4x6c-6ppx-5vjq/GHSA-4x6c-6ppx-5vjq.json | 12 +++--------- .../04/GHSA-4xc4-j2qx-w95p/GHSA-4xc4-j2qx-w95p.json | 12 +++--------- .../04/GHSA-52fg-2wrh-pq8q/GHSA-52fg-2wrh-pq8q.json | 12 +++--------- .../04/GHSA-52wv-9457-3g76/GHSA-52wv-9457-3g76.json | 12 +++--------- .../04/GHSA-538h-25m5-6jrw/GHSA-538h-25m5-6jrw.json | 12 +++--------- .../04/GHSA-53rp-c272-jw32/GHSA-53rp-c272-jw32.json | 12 +++--------- .../04/GHSA-547x-fp54-q9j3/GHSA-547x-fp54-q9j3.json | 12 +++--------- .../04/GHSA-567r-hhw5-gfvq/GHSA-567r-hhw5-gfvq.json | 12 +++--------- .../04/GHSA-58qg-hjfp-7643/GHSA-58qg-hjfp-7643.json | 12 +++--------- .../04/GHSA-5949-54q2-grjg/GHSA-5949-54q2-grjg.json | 12 +++--------- .../04/GHSA-5984-j2rg-qm7x/GHSA-5984-j2rg-qm7x.json | 12 +++--------- .../04/GHSA-5fqp-4gw6-3ph8/GHSA-5fqp-4gw6-3ph8.json | 12 +++--------- .../04/GHSA-682g-mjx4-8wwv/GHSA-682g-mjx4-8wwv.json | 12 +++--------- .../04/GHSA-697w-964q-395w/GHSA-697w-964q-395w.json | 12 +++--------- .../04/GHSA-6cjc-9cq5-fc4r/GHSA-6cjc-9cq5-fc4r.json | 12 +++--------- .../04/GHSA-6cjw-cjmh-r6rm/GHSA-6cjw-cjmh-r6rm.json | 12 +++--------- .../04/GHSA-6fq7-3q96-vw9x/GHSA-6fq7-3q96-vw9x.json | 12 +++--------- .../04/GHSA-6wjf-4887-cj22/GHSA-6wjf-4887-cj22.json | 4 +--- .../04/GHSA-73vq-vfrf-93x8/GHSA-73vq-vfrf-93x8.json | 12 +++--------- .../04/GHSA-765g-qxmj-pjrx/GHSA-765g-qxmj-pjrx.json | 12 +++--------- .../04/GHSA-7755-v4fr-vrxx/GHSA-7755-v4fr-vrxx.json | 12 +++--------- .../04/GHSA-78jm-gvg2-2jfx/GHSA-78jm-gvg2-2jfx.json | 12 +++--------- .../04/GHSA-79hc-q675-w3mx/GHSA-79hc-q675-w3mx.json | 12 +++--------- .../04/GHSA-7h84-xvh7-f4r4/GHSA-7h84-xvh7-f4r4.json | 12 +++--------- .../04/GHSA-7pwx-75rm-fxfq/GHSA-7pwx-75rm-fxfq.json | 12 +++--------- .../04/GHSA-7qpm-q5rp-cvqf/GHSA-7qpm-q5rp-cvqf.json | 12 +++--------- .../04/GHSA-7whv-c26v-wrw2/GHSA-7whv-c26v-wrw2.json | 4 +--- .../04/GHSA-88gq-r6mm-hr99/GHSA-88gq-r6mm-hr99.json | 12 +++--------- .../04/GHSA-93w2-mg33-r998/GHSA-93w2-mg33-r998.json | 12 +++--------- .../04/GHSA-9729-395c-wp97/GHSA-9729-395c-wp97.json | 12 +++--------- .../04/GHSA-976v-3xrm-785r/GHSA-976v-3xrm-785r.json | 12 +++--------- .../04/GHSA-998v-2qg9-284c/GHSA-998v-2qg9-284c.json | 12 +++--------- .../04/GHSA-9jwp-q2wm-62wh/GHSA-9jwp-q2wm-62wh.json | 12 +++--------- .../04/GHSA-c22c-879v-fc62/GHSA-c22c-879v-fc62.json | 12 +++--------- .../04/GHSA-c2w5-h6v5-wf8j/GHSA-c2w5-h6v5-wf8j.json | 12 +++--------- .../04/GHSA-c62h-wfv7-hw42/GHSA-c62h-wfv7-hw42.json | 12 +++--------- .../04/GHSA-ccxh-933v-rq23/GHSA-ccxh-933v-rq23.json | 12 +++--------- .../04/GHSA-chpc-74wh-x234/GHSA-chpc-74wh-x234.json | 12 +++--------- .../04/GHSA-cr5m-c8fx-9pvc/GHSA-cr5m-c8fx-9pvc.json | 12 +++--------- .../04/GHSA-f76v-57j8-425v/GHSA-f76v-57j8-425v.json | 12 +++--------- .../04/GHSA-f7w2-c6cq-8jqg/GHSA-f7w2-c6cq-8jqg.json | 12 +++--------- .../04/GHSA-fcfq-f9jq-4c28/GHSA-fcfq-f9jq-4c28.json | 12 +++--------- .../04/GHSA-fff4-6jqp-pqh2/GHSA-fff4-6jqp-pqh2.json | 12 +++--------- .../04/GHSA-fg2g-48g8-4xwm/GHSA-fg2g-48g8-4xwm.json | 12 +++--------- .../04/GHSA-frm5-658v-2f23/GHSA-frm5-658v-2f23.json | 12 +++--------- .../04/GHSA-g22v-2gp9-xpmh/GHSA-g22v-2gp9-xpmh.json | 8 ++------ .../04/GHSA-g344-mjvh-jcp5/GHSA-g344-mjvh-jcp5.json | 12 +++--------- .../04/GHSA-g58c-99hx-fmc6/GHSA-g58c-99hx-fmc6.json | 12 +++--------- .../04/GHSA-g5jc-xm45-6763/GHSA-g5jc-xm45-6763.json | 12 +++--------- .../04/GHSA-g5m7-gw4j-cjhj/GHSA-g5m7-gw4j-cjhj.json | 12 +++--------- .../04/GHSA-g5p4-qw97-m7r5/GHSA-g5p4-qw97-m7r5.json | 12 +++--------- .../04/GHSA-g6jp-h358-2v9g/GHSA-g6jp-h358-2v9g.json | 12 +++--------- .../04/GHSA-g827-fm54-46xv/GHSA-g827-fm54-46xv.json | 12 +++--------- .../04/GHSA-g889-x6p3-66f6/GHSA-g889-x6p3-66f6.json | 12 +++--------- .../04/GHSA-gggj-8j7g-cpwh/GHSA-gggj-8j7g-cpwh.json | 12 +++--------- .../04/GHSA-gjfh-48cm-22xw/GHSA-gjfh-48cm-22xw.json | 12 +++--------- .../04/GHSA-gvxh-v3hv-2g35/GHSA-gvxh-v3hv-2g35.json | 12 +++--------- .../04/GHSA-h455-mfvg-53mp/GHSA-h455-mfvg-53mp.json | 12 +++--------- .../04/GHSA-h63x-8w34-4hj2/GHSA-h63x-8w34-4hj2.json | 12 +++--------- .../04/GHSA-h7mr-chr8-q245/GHSA-h7mr-chr8-q245.json | 12 +++--------- .../04/GHSA-h876-2gr4-3rq5/GHSA-h876-2gr4-3rq5.json | 12 +++--------- .../04/GHSA-hc82-7mvf-f3c5/GHSA-hc82-7mvf-f3c5.json | 12 +++--------- .../04/GHSA-hcmr-mv5h-wj39/GHSA-hcmr-mv5h-wj39.json | 12 +++--------- .../04/GHSA-hrrj-9rqm-m5rx/GHSA-hrrj-9rqm-m5rx.json | 12 +++--------- .../04/GHSA-hw2f-876w-6xvx/GHSA-hw2f-876w-6xvx.json | 12 +++--------- .../04/GHSA-j487-27wr-29q4/GHSA-j487-27wr-29q4.json | 12 +++--------- .../04/GHSA-j4g2-g246-6526/GHSA-j4g2-g246-6526.json | 12 +++--------- .../04/GHSA-j88w-3rg6-x4gj/GHSA-j88w-3rg6-x4gj.json | 12 +++--------- .../04/GHSA-jcf3-cm7w-7v5j/GHSA-jcf3-cm7w-7v5j.json | 12 +++--------- .../04/GHSA-jfh9-vp9v-wh4v/GHSA-jfh9-vp9v-wh4v.json | 12 +++--------- .../04/GHSA-jq5m-56vh-g5fr/GHSA-jq5m-56vh-g5fr.json | 12 +++--------- .../04/GHSA-jr8c-jq2f-gfh3/GHSA-jr8c-jq2f-gfh3.json | 12 +++--------- .../04/GHSA-jrv6-w97f-q9vv/GHSA-jrv6-w97f-q9vv.json | 12 +++--------- .../04/GHSA-jw6j-588w-5rcx/GHSA-jw6j-588w-5rcx.json | 12 +++--------- .../04/GHSA-jx68-8j6j-8v87/GHSA-jx68-8j6j-8v87.json | 12 +++--------- .../04/GHSA-m4m3-6vcg-7fh3/GHSA-m4m3-6vcg-7fh3.json | 12 +++--------- .../04/GHSA-m59v-mjv4-379q/GHSA-m59v-mjv4-379q.json | 12 +++--------- .../04/GHSA-mpxg-5frr-vc3r/GHSA-mpxg-5frr-vc3r.json | 12 +++--------- .../04/GHSA-mq7q-m7gg-x8gh/GHSA-mq7q-m7gg-x8gh.json | 12 +++--------- .../04/GHSA-mrqj-pqq8-9fx3/GHSA-mrqj-pqq8-9fx3.json | 12 +++--------- .../04/GHSA-mxw3-4cwc-mr3p/GHSA-mxw3-4cwc-mr3p.json | 12 +++--------- .../04/GHSA-p267-cj3r-wj88/GHSA-p267-cj3r-wj88.json | 12 +++--------- .../04/GHSA-p59f-g5mj-4hqq/GHSA-p59f-g5mj-4hqq.json | 12 +++--------- .../04/GHSA-p6q8-hh72-gjjx/GHSA-p6q8-hh72-gjjx.json | 12 +++--------- .../04/GHSA-p8mh-8cvx-pv92/GHSA-p8mh-8cvx-pv92.json | 12 +++--------- .../04/GHSA-pg42-38hv-3f6h/GHSA-pg42-38hv-3f6h.json | 12 +++--------- .../04/GHSA-ph8q-v7mf-3mfr/GHSA-ph8q-v7mf-3mfr.json | 12 +++--------- .../04/GHSA-ph96-6g2v-q3cq/GHSA-ph96-6g2v-q3cq.json | 12 +++--------- .../04/GHSA-pp2f-p95f-2xhx/GHSA-pp2f-p95f-2xhx.json | 4 +--- .../04/GHSA-pq3h-q9vp-54r6/GHSA-pq3h-q9vp-54r6.json | 4 +--- .../04/GHSA-q2j4-m428-f363/GHSA-q2j4-m428-f363.json | 12 +++--------- .../04/GHSA-q486-58cq-c7gq/GHSA-q486-58cq-c7gq.json | 12 +++--------- .../04/GHSA-q4v2-vr66-2qp6/GHSA-q4v2-vr66-2qp6.json | 12 +++--------- .../04/GHSA-q6wc-wpm6-pf8j/GHSA-q6wc-wpm6-pf8j.json | 12 +++--------- .../04/GHSA-qr5c-3r3w-6h26/GHSA-qr5c-3r3w-6h26.json | 12 +++--------- .../04/GHSA-qxfh-fxwp-jv55/GHSA-qxfh-fxwp-jv55.json | 12 +++--------- .../04/GHSA-r4m8-4q3x-xfcc/GHSA-r4m8-4q3x-xfcc.json | 12 +++--------- .../04/GHSA-r7g3-cvfv-cr4w/GHSA-r7g3-cvfv-cr4w.json | 12 +++--------- .../04/GHSA-r8jx-rgwf-cw4w/GHSA-r8jx-rgwf-cw4w.json | 12 +++--------- .../04/GHSA-rf8w-rp5f-f625/GHSA-rf8w-rp5f-f625.json | 12 +++--------- .../04/GHSA-rgrc-m757-f2p2/GHSA-rgrc-m757-f2p2.json | 12 +++--------- .../04/GHSA-rh3j-mw5f-8w7p/GHSA-rh3j-mw5f-8w7p.json | 12 +++--------- .../04/GHSA-vhfh-368p-rg9f/GHSA-vhfh-368p-rg9f.json | 12 +++--------- .../04/GHSA-vmcm-2hp4-rp5v/GHSA-vmcm-2hp4-rp5v.json | 12 +++--------- .../04/GHSA-vw5f-6vw7-vhhj/GHSA-vw5f-6vw7-vhhj.json | 12 +++--------- .../04/GHSA-w5fx-fj77-4247/GHSA-w5fx-fj77-4247.json | 12 +++--------- .../04/GHSA-w5j6-fmxr-5fr8/GHSA-w5j6-fmxr-5fr8.json | 12 +++--------- .../04/GHSA-w7j2-4h84-4q9m/GHSA-w7j2-4h84-4q9m.json | 12 +++--------- .../04/GHSA-w8h9-v75r-48q9/GHSA-w8h9-v75r-48q9.json | 12 +++--------- .../04/GHSA-w8mm-pp8v-w2qj/GHSA-w8mm-pp8v-w2qj.json | 12 +++--------- .../04/GHSA-wc7h-rjv2-pvjh/GHSA-wc7h-rjv2-pvjh.json | 12 +++--------- .../04/GHSA-wq95-mwj7-34mh/GHSA-wq95-mwj7-34mh.json | 8 ++------ .../04/GHSA-wqf6-fx9r-6p5h/GHSA-wqf6-fx9r-6p5h.json | 12 +++--------- .../04/GHSA-wr9w-p9gv-6q7p/GHSA-wr9w-p9gv-6q7p.json | 12 +++--------- .../04/GHSA-wwgv-vf3h-hmgf/GHSA-wwgv-vf3h-hmgf.json | 12 +++--------- .../04/GHSA-wwh9-4j47-4fcq/GHSA-wwh9-4j47-4fcq.json | 12 +++--------- .../04/GHSA-wx3j-8h4r-qj57/GHSA-wx3j-8h4r-qj57.json | 12 +++--------- .../04/GHSA-x2j2-wmj4-cgv8/GHSA-x2j2-wmj4-cgv8.json | 12 +++--------- .../04/GHSA-x348-qgpx-h8qg/GHSA-x348-qgpx-h8qg.json | 12 +++--------- .../04/GHSA-x78p-3cmg-8mqw/GHSA-x78p-3cmg-8mqw.json | 8 ++------ .../04/GHSA-xc56-2wgw-3623/GHSA-xc56-2wgw-3623.json | 4 +--- .../04/GHSA-xgg5-44qv-95wx/GHSA-xgg5-44qv-95wx.json | 12 +++--------- .../04/GHSA-xh9x-3wgg-3wwg/GHSA-xh9x-3wgg-3wwg.json | 12 +++--------- .../04/GHSA-xhhr-v6vq-6mcw/GHSA-xhhr-v6vq-6mcw.json | 12 +++--------- .../04/GHSA-xm2m-chg4-j873/GHSA-xm2m-chg4-j873.json | 12 +++--------- .../04/GHSA-xmvv-4vx6-5fqj/GHSA-xmvv-4vx6-5fqj.json | 12 +++--------- .../04/GHSA-xvhj-83gv-vjmg/GHSA-xvhj-83gv-vjmg.json | 12 +++--------- .../05/GHSA-22fr-qxwq-hh33/GHSA-22fr-qxwq-hh33.json | 8 ++------ .../05/GHSA-239h-283c-gxph/GHSA-239h-283c-gxph.json | 8 ++------ .../05/GHSA-243x-jj6v-4fj8/GHSA-243x-jj6v-4fj8.json | 8 ++------ .../05/GHSA-253r-3vgg-gj92/GHSA-253r-3vgg-gj92.json | 12 +++--------- .../05/GHSA-26cj-x9h8-rx93/GHSA-26cj-x9h8-rx93.json | 8 ++------ .../05/GHSA-2cm7-grw6-w6x7/GHSA-2cm7-grw6-w6x7.json | 8 ++------ .../05/GHSA-2cqv-mfgc-j2h4/GHSA-2cqv-mfgc-j2h4.json | 8 ++------ .../05/GHSA-2cqx-cjpv-4c7m/GHSA-2cqx-cjpv-4c7m.json | 8 ++------ .../05/GHSA-2cvc-xf33-4m7f/GHSA-2cvc-xf33-4m7f.json | 8 ++------ .../05/GHSA-2gvv-5vxj-jrw7/GHSA-2gvv-5vxj-jrw7.json | 8 ++------ .../05/GHSA-2h67-7cm6-5mr3/GHSA-2h67-7cm6-5mr3.json | 12 +++--------- .../05/GHSA-2hqr-548x-6625/GHSA-2hqr-548x-6625.json | 8 ++------ .../05/GHSA-2j5g-6x52-988w/GHSA-2j5g-6x52-988w.json | 8 ++------ .../05/GHSA-2j5j-7jpr-whqc/GHSA-2j5j-7jpr-whqc.json | 4 +--- .../05/GHSA-2jg8-c8q8-842v/GHSA-2jg8-c8q8-842v.json | 8 ++------ .../05/GHSA-2jvc-fw3x-6gp3/GHSA-2jvc-fw3x-6gp3.json | 8 ++------ .../05/GHSA-2pwv-866g-6jw3/GHSA-2pwv-866g-6jw3.json | 8 ++------ .../05/GHSA-2q3r-568x-rqmv/GHSA-2q3r-568x-rqmv.json | 4 +--- .../05/GHSA-2q62-rw6m-pchg/GHSA-2q62-rw6m-pchg.json | 8 ++------ .../05/GHSA-2qv5-c5x6-3fqr/GHSA-2qv5-c5x6-3fqr.json | 8 ++------ .../05/GHSA-2qvg-hmrm-p9gh/GHSA-2qvg-hmrm-p9gh.json | 8 ++------ .../05/GHSA-2r3h-qggj-vxg9/GHSA-2r3h-qggj-vxg9.json | 8 ++------ .../05/GHSA-2rfm-q54c-ww9j/GHSA-2rfm-q54c-ww9j.json | 8 ++------ .../05/GHSA-2vq4-6g9q-2xjq/GHSA-2vq4-6g9q-2xjq.json | 8 ++------ .../05/GHSA-2w49-pm36-8jp5/GHSA-2w49-pm36-8jp5.json | 8 ++------ .../05/GHSA-2wfq-mq88-h9xc/GHSA-2wfq-mq88-h9xc.json | 8 ++------ .../05/GHSA-2x2j-4f7v-4vp9/GHSA-2x2j-4f7v-4vp9.json | 8 ++------ .../05/GHSA-327v-v4jp-xxvm/GHSA-327v-v4jp-xxvm.json | 8 ++------ .../05/GHSA-33cf-w34p-g6pj/GHSA-33cf-w34p-g6pj.json | 8 ++------ .../05/GHSA-346p-qx4x-g348/GHSA-346p-qx4x-g348.json | 8 ++------ .../05/GHSA-3496-765w-5xgq/GHSA-3496-765w-5xgq.json | 8 ++------ .../05/GHSA-356p-vp2q-7rg4/GHSA-356p-vp2q-7rg4.json | 8 ++------ .../05/GHSA-36jc-62gq-crx2/GHSA-36jc-62gq-crx2.json | 8 ++------ .../05/GHSA-36mq-qwm2-6rpp/GHSA-36mq-qwm2-6rpp.json | 8 ++------ .../05/GHSA-375c-626v-c7m7/GHSA-375c-626v-c7m7.json | 4 +--- .../05/GHSA-37ff-c5mh-pmpm/GHSA-37ff-c5mh-pmpm.json | 8 ++------ .../05/GHSA-386r-9hqf-3f7p/GHSA-386r-9hqf-3f7p.json | 8 ++------ .../05/GHSA-3899-4f66-wx7p/GHSA-3899-4f66-wx7p.json | 8 ++------ .../05/GHSA-38q2-qj9f-p542/GHSA-38q2-qj9f-p542.json | 8 ++------ .../05/GHSA-3946-qxr3-66h7/GHSA-3946-qxr3-66h7.json | 8 ++------ .../05/GHSA-3c7w-74wv-vg2f/GHSA-3c7w-74wv-vg2f.json | 8 ++------ .../05/GHSA-3cvg-mw7q-93pw/GHSA-3cvg-mw7q-93pw.json | 8 ++------ .../05/GHSA-3f2m-pjf9-h8qx/GHSA-3f2m-pjf9-h8qx.json | 8 ++------ .../05/GHSA-3f7x-qm4p-6qjv/GHSA-3f7x-qm4p-6qjv.json | 8 ++------ .../05/GHSA-3g22-36vj-437q/GHSA-3g22-36vj-437q.json | 8 ++------ .../05/GHSA-3grh-xhcf-mgx4/GHSA-3grh-xhcf-mgx4.json | 8 ++------ .../05/GHSA-3gwj-v962-64pr/GHSA-3gwj-v962-64pr.json | 12 +++--------- .../05/GHSA-3hx9-jrq9-5mh9/GHSA-3hx9-jrq9-5mh9.json | 8 ++------ .../05/GHSA-3j43-3g85-j77v/GHSA-3j43-3g85-j77v.json | 8 ++------ .../05/GHSA-3j6w-7mhc-r5hr/GHSA-3j6w-7mhc-r5hr.json | 12 +++--------- .../05/GHSA-3j95-8976-jfmp/GHSA-3j95-8976-jfmp.json | 8 ++------ .../05/GHSA-3jhw-mxw2-vh5x/GHSA-3jhw-mxw2-vh5x.json | 8 ++------ .../05/GHSA-3jm3-wf93-rc5x/GHSA-3jm3-wf93-rc5x.json | 8 ++------ .../05/GHSA-3pfh-89c7-75qg/GHSA-3pfh-89c7-75qg.json | 4 +--- .../05/GHSA-3qgm-cw58-7h2p/GHSA-3qgm-cw58-7h2p.json | 8 ++------ .../05/GHSA-3rc9-qgq4-2p4w/GHSA-3rc9-qgq4-2p4w.json | 8 ++------ .../05/GHSA-3v2j-f789-x3jr/GHSA-3v2j-f789-x3jr.json | 8 ++------ .../05/GHSA-3w6g-24mq-35j6/GHSA-3w6g-24mq-35j6.json | 8 ++------ .../05/GHSA-3wv2-v64p-7q7m/GHSA-3wv2-v64p-7q7m.json | 8 ++------ .../05/GHSA-3x56-fp32-hw97/GHSA-3x56-fp32-hw97.json | 12 +++--------- .../05/GHSA-3x7p-q29c-47qm/GHSA-3x7p-q29c-47qm.json | 8 ++------ .../05/GHSA-3xcq-6vjj-wqx7/GHSA-3xcq-6vjj-wqx7.json | 4 +--- .../05/GHSA-3xfq-3889-4q8m/GHSA-3xfq-3889-4q8m.json | 8 ++------ .../05/GHSA-3xv5-g593-pv7f/GHSA-3xv5-g593-pv7f.json | 8 ++------ .../05/GHSA-425j-2mfw-73xx/GHSA-425j-2mfw-73xx.json | 8 ++------ .../05/GHSA-427q-fqw6-mhwm/GHSA-427q-fqw6-mhwm.json | 12 +++--------- .../05/GHSA-42gg-rrg8-33cj/GHSA-42gg-rrg8-33cj.json | 8 ++------ .../05/GHSA-42qq-mh3v-978m/GHSA-42qq-mh3v-978m.json | 4 +--- .../05/GHSA-42wg-x8j8-xh4h/GHSA-42wg-x8j8-xh4h.json | 8 ++------ .../05/GHSA-43g3-5cf8-2gm2/GHSA-43g3-5cf8-2gm2.json | 8 ++------ .../05/GHSA-43vh-m5cv-9pgr/GHSA-43vh-m5cv-9pgr.json | 8 ++------ .../05/GHSA-44c2-6hw8-fv7w/GHSA-44c2-6hw8-fv7w.json | 8 ++------ .../05/GHSA-457q-vj84-7r8r/GHSA-457q-vj84-7r8r.json | 8 ++------ .../05/GHSA-45cc-9wgf-p2qq/GHSA-45cc-9wgf-p2qq.json | 8 ++------ .../05/GHSA-45qj-m3fv-x87x/GHSA-45qj-m3fv-x87x.json | 8 ++------ .../05/GHSA-47gg-jmh3-w48g/GHSA-47gg-jmh3-w48g.json | 8 ++------ .../05/GHSA-492c-w6p5-gppm/GHSA-492c-w6p5-gppm.json | 8 ++------ .../05/GHSA-4fh9-jvf5-584j/GHSA-4fh9-jvf5-584j.json | 12 +++--------- .../05/GHSA-4g99-xhm8-2rwc/GHSA-4g99-xhm8-2rwc.json | 4 +--- .../05/GHSA-4g9q-xh6r-r9gw/GHSA-4g9q-xh6r-r9gw.json | 8 ++------ .../05/GHSA-4h59-pfrp-mwp4/GHSA-4h59-pfrp-mwp4.json | 8 ++------ .../05/GHSA-4h8j-fjxw-9pcc/GHSA-4h8j-fjxw-9pcc.json | 8 ++------ .../05/GHSA-4h99-r3f2-hx6m/GHSA-4h99-r3f2-hx6m.json | 8 ++------ .../05/GHSA-4hg9-r3gw-2m9q/GHSA-4hg9-r3gw-2m9q.json | 4 +--- .../05/GHSA-4hhp-72c4-mc6m/GHSA-4hhp-72c4-mc6m.json | 12 +++--------- .../05/GHSA-4hv7-632m-j4jc/GHSA-4hv7-632m-j4jc.json | 8 ++------ .../05/GHSA-4j7x-9959-phm5/GHSA-4j7x-9959-phm5.json | 4 +--- .../05/GHSA-4jhh-wmhx-r4j7/GHSA-4jhh-wmhx-r4j7.json | 8 ++------ .../05/GHSA-4pj4-7m9h-v9gf/GHSA-4pj4-7m9h-v9gf.json | 8 ++------ .../05/GHSA-4pxg-vm27-pj3f/GHSA-4pxg-vm27-pj3f.json | 8 ++------ .../05/GHSA-4q43-hrcp-8j28/GHSA-4q43-hrcp-8j28.json | 8 ++------ .../05/GHSA-4rg7-j3g7-39cf/GHSA-4rg7-j3g7-39cf.json | 8 ++------ .../05/GHSA-4wm4-5vmp-66g7/GHSA-4wm4-5vmp-66g7.json | 8 ++------ .../05/GHSA-527v-pg89-4p69/GHSA-527v-pg89-4p69.json | 8 ++------ .../05/GHSA-53g2-3hfr-5746/GHSA-53g2-3hfr-5746.json | 4 +--- .../05/GHSA-53v6-77g8-mpch/GHSA-53v6-77g8-mpch.json | 8 ++------ .../05/GHSA-54c6-8fc4-h2j7/GHSA-54c6-8fc4-h2j7.json | 8 ++------ .../05/GHSA-54fr-cp53-9gm6/GHSA-54fr-cp53-9gm6.json | 8 ++------ .../05/GHSA-54vj-mhfr-m645/GHSA-54vj-mhfr-m645.json | 8 ++------ .../05/GHSA-55qw-8gmw-8c9w/GHSA-55qw-8gmw-8c9w.json | 8 ++------ .../05/GHSA-5732-xrx9-2xhf/GHSA-5732-xrx9-2xhf.json | 12 +++--------- .../05/GHSA-5745-gm5c-ghc4/GHSA-5745-gm5c-ghc4.json | 12 +++--------- .../05/GHSA-57v4-px6g-hxrm/GHSA-57v4-px6g-hxrm.json | 8 ++------ .../05/GHSA-57xj-7245-9x56/GHSA-57xj-7245-9x56.json | 8 ++------ .../05/GHSA-587h-jw63-jwf2/GHSA-587h-jw63-jwf2.json | 8 ++------ .../05/GHSA-5996-m95h-vq3m/GHSA-5996-m95h-vq3m.json | 12 +++--------- .../05/GHSA-5cff-vfpf-qq5f/GHSA-5cff-vfpf-qq5f.json | 8 ++------ .../05/GHSA-5ch9-xc8v-9jw8/GHSA-5ch9-xc8v-9jw8.json | 8 ++------ .../05/GHSA-5cmc-7w2j-jpj5/GHSA-5cmc-7w2j-jpj5.json | 8 ++------ .../05/GHSA-5f89-cfxh-c74m/GHSA-5f89-cfxh-c74m.json | 12 +++--------- .../05/GHSA-5f9v-j4qm-jv7q/GHSA-5f9v-j4qm-jv7q.json | 8 ++------ .../05/GHSA-5fhf-qx23-f7hx/GHSA-5fhf-qx23-f7hx.json | 8 ++------ .../05/GHSA-5fwv-7jpm-2g8v/GHSA-5fwv-7jpm-2g8v.json | 8 ++------ .../05/GHSA-5h56-5v9q-6vx2/GHSA-5h56-5v9q-6vx2.json | 8 ++------ .../05/GHSA-5hfp-prmh-cr3m/GHSA-5hfp-prmh-cr3m.json | 8 ++------ .../05/GHSA-5j2f-fr5v-53mc/GHSA-5j2f-fr5v-53mc.json | 8 ++------ .../05/GHSA-5jrc-q622-h2ww/GHSA-5jrc-q622-h2ww.json | 8 ++------ .../05/GHSA-5jwp-q2gq-chgq/GHSA-5jwp-q2gq-chgq.json | 12 +++--------- .../05/GHSA-5m9g-c8g6-jvf7/GHSA-5m9g-c8g6-jvf7.json | 8 ++------ .../05/GHSA-5pc6-9cmx-jhrg/GHSA-5pc6-9cmx-jhrg.json | 8 ++------ .../05/GHSA-5q44-mpwv-jf5p/GHSA-5q44-mpwv-jf5p.json | 8 ++------ .../05/GHSA-5v3r-jp8c-c7wh/GHSA-5v3r-jp8c-c7wh.json | 8 ++------ .../05/GHSA-5v7v-8wfp-pqqp/GHSA-5v7v-8wfp-pqqp.json | 8 ++------ .../05/GHSA-5vmw-6f78-pj9m/GHSA-5vmw-6f78-pj9m.json | 8 ++------ .../05/GHSA-637g-65xr-xr73/GHSA-637g-65xr-xr73.json | 8 ++------ .../05/GHSA-64qr-mfgf-96mm/GHSA-64qr-mfgf-96mm.json | 8 ++------ .../05/GHSA-64ww-85jr-gp6p/GHSA-64ww-85jr-gp6p.json | 8 ++------ .../05/GHSA-6542-cc58-3fvq/GHSA-6542-cc58-3fvq.json | 8 ++------ .../05/GHSA-65xw-v37r-whx2/GHSA-65xw-v37r-whx2.json | 8 ++------ .../05/GHSA-6658-gv7v-29hj/GHSA-6658-gv7v-29hj.json | 8 ++------ .../05/GHSA-668g-x35h-7p9r/GHSA-668g-x35h-7p9r.json | 8 ++------ .../05/GHSA-66fh-7c2j-p86h/GHSA-66fh-7c2j-p86h.json | 12 +++--------- .../05/GHSA-67jr-8mqf-vqcc/GHSA-67jr-8mqf-vqcc.json | 4 +--- .../05/GHSA-67wr-rj87-j8qx/GHSA-67wr-rj87-j8qx.json | 8 ++------ .../05/GHSA-6832-99rj-8mx2/GHSA-6832-99rj-8mx2.json | 12 +++--------- .../05/GHSA-693c-q93p-45vc/GHSA-693c-q93p-45vc.json | 8 ++------ .../05/GHSA-69h7-5pmq-j396/GHSA-69h7-5pmq-j396.json | 8 ++------ .../05/GHSA-6f2v-fr8c-c9r8/GHSA-6f2v-fr8c-c9r8.json | 8 ++------ .../05/GHSA-6f9q-3x2v-r6cg/GHSA-6f9q-3x2v-r6cg.json | 8 ++------ .../05/GHSA-6fxm-3vcm-r45p/GHSA-6fxm-3vcm-r45p.json | 8 ++------ .../05/GHSA-6gh5-7x7m-462j/GHSA-6gh5-7x7m-462j.json | 8 ++------ .../05/GHSA-6gj8-w93h-3r46/GHSA-6gj8-w93h-3r46.json | 4 +--- .../05/GHSA-6gx3-j623-7698/GHSA-6gx3-j623-7698.json | 8 ++------ .../05/GHSA-6m8q-4w6f-jp44/GHSA-6m8q-4w6f-jp44.json | 8 ++------ .../05/GHSA-6mr5-9ph2-p38v/GHSA-6mr5-9ph2-p38v.json | 12 +++--------- .../05/GHSA-6pj8-q9pf-wvp7/GHSA-6pj8-q9pf-wvp7.json | 12 +++--------- .../05/GHSA-6q9c-667c-xvww/GHSA-6q9c-667c-xvww.json | 8 ++------ .../05/GHSA-6qqr-fcpw-r77q/GHSA-6qqr-fcpw-r77q.json | 8 ++------ .../05/GHSA-6qx3-hcm8-xh2m/GHSA-6qx3-hcm8-xh2m.json | 8 ++------ .../05/GHSA-6rcv-8mm2-fprm/GHSA-6rcv-8mm2-fprm.json | 8 ++------ .../05/GHSA-6rmh-mmff-jmfj/GHSA-6rmh-mmff-jmfj.json | 8 ++------ .../05/GHSA-6rx8-2pr9-jv9w/GHSA-6rx8-2pr9-jv9w.json | 12 +++--------- .../05/GHSA-6v44-4w2g-hxp9/GHSA-6v44-4w2g-hxp9.json | 8 ++------ .../05/GHSA-6w26-5ccg-87xc/GHSA-6w26-5ccg-87xc.json | 8 ++------ .../05/GHSA-6w62-mvw6-xggx/GHSA-6w62-mvw6-xggx.json | 8 ++------ .../05/GHSA-7399-8gqj-gp2j/GHSA-7399-8gqj-gp2j.json | 8 ++------ .../05/GHSA-739c-pfq4-x6vc/GHSA-739c-pfq4-x6vc.json | 8 ++------ .../05/GHSA-73jg-p8q6-m47j/GHSA-73jg-p8q6-m47j.json | 8 ++------ .../05/GHSA-74qh-vr52-6vv4/GHSA-74qh-vr52-6vv4.json | 8 ++------ .../05/GHSA-75h6-mgvv-q4gr/GHSA-75h6-mgvv-q4gr.json | 8 ++------ .../05/GHSA-76cm-vv6x-f8wv/GHSA-76cm-vv6x-f8wv.json | 4 +--- .../05/GHSA-76v6-7m6g-p6v4/GHSA-76v6-7m6g-p6v4.json | 8 ++------ .../05/GHSA-77qx-69hx-pmqh/GHSA-77qx-69hx-pmqh.json | 4 +--- .../05/GHSA-784m-xw5j-hrmc/GHSA-784m-xw5j-hrmc.json | 8 ++------ .../05/GHSA-7c72-wmjh-7cpf/GHSA-7c72-wmjh-7cpf.json | 4 +--- .../05/GHSA-7cwx-58fg-fmmx/GHSA-7cwx-58fg-fmmx.json | 8 ++------ .../05/GHSA-7cxf-96qq-3hcr/GHSA-7cxf-96qq-3hcr.json | 8 ++------ .../05/GHSA-7f2c-fj5r-9f75/GHSA-7f2c-fj5r-9f75.json | 8 ++------ .../05/GHSA-7g34-hmj9-wxmc/GHSA-7g34-hmj9-wxmc.json | 8 ++------ .../05/GHSA-7g6h-m62g-mmqr/GHSA-7g6h-m62g-mmqr.json | 8 ++------ .../05/GHSA-7gmw-9v7c-j4r8/GHSA-7gmw-9v7c-j4r8.json | 12 +++--------- .../05/GHSA-7gwx-j9qc-6c6w/GHSA-7gwx-j9qc-6c6w.json | 8 ++------ .../05/GHSA-7hm8-3c6v-r562/GHSA-7hm8-3c6v-r562.json | 12 +++--------- .../05/GHSA-7hx6-pmgh-3p98/GHSA-7hx6-pmgh-3p98.json | 8 ++------ .../05/GHSA-7j3h-rx7g-x4p6/GHSA-7j3h-rx7g-x4p6.json | 4 +--- .../05/GHSA-7j6g-h8xc-2hrv/GHSA-7j6g-h8xc-2hrv.json | 12 +++--------- .../05/GHSA-7q2f-66h6-82pj/GHSA-7q2f-66h6-82pj.json | 8 ++------ .../05/GHSA-7q7j-9q5r-4p9v/GHSA-7q7j-9q5r-4p9v.json | 8 ++------ .../05/GHSA-7qxp-7cvx-2478/GHSA-7qxp-7cvx-2478.json | 8 ++------ .../05/GHSA-7r93-vjf4-cwc6/GHSA-7r93-vjf4-cwc6.json | 8 ++------ .../05/GHSA-7v67-cgqp-fx55/GHSA-7v67-cgqp-fx55.json | 8 ++------ .../05/GHSA-7v77-4p7w-7fgm/GHSA-7v77-4p7w-7fgm.json | 8 ++------ .../05/GHSA-7vr9-xc65-cx9c/GHSA-7vr9-xc65-cx9c.json | 4 +--- .../05/GHSA-7w6c-5ppj-58vf/GHSA-7w6c-5ppj-58vf.json | 8 ++------ .../05/GHSA-7wh8-4j2m-2xff/GHSA-7wh8-4j2m-2xff.json | 8 ++------ .../05/GHSA-7x8g-hv53-vc47/GHSA-7x8g-hv53-vc47.json | 8 ++------ .../05/GHSA-7xc8-789c-xf8q/GHSA-7xc8-789c-xf8q.json | 8 ++------ .../05/GHSA-827x-wg6m-4v6r/GHSA-827x-wg6m-4v6r.json | 12 +++--------- .../05/GHSA-84gw-f25v-grqx/GHSA-84gw-f25v-grqx.json | 8 ++------ .../05/GHSA-84m5-j9v6-4q32/GHSA-84m5-j9v6-4q32.json | 8 ++------ .../05/GHSA-84rj-w682-g977/GHSA-84rj-w682-g977.json | 4 +--- .../05/GHSA-857m-xj2v-vhp3/GHSA-857m-xj2v-vhp3.json | 8 ++------ .../05/GHSA-85fm-24gx-qx9x/GHSA-85fm-24gx-qx9x.json | 8 ++------ .../05/GHSA-8749-qhqv-q6fm/GHSA-8749-qhqv-q6fm.json | 8 ++------ .../05/GHSA-87cm-47xv-j472/GHSA-87cm-47xv-j472.json | 8 ++------ .../05/GHSA-8886-48wg-hx3v/GHSA-8886-48wg-hx3v.json | 8 ++------ .../05/GHSA-888q-3vrq-2mw3/GHSA-888q-3vrq-2mw3.json | 8 ++------ .../05/GHSA-88fq-v57q-2cv7/GHSA-88fq-v57q-2cv7.json | 12 +++--------- .../05/GHSA-88jq-f6jw-8w6c/GHSA-88jq-f6jw-8w6c.json | 8 ++------ .../05/GHSA-898v-h686-8h79/GHSA-898v-h686-8h79.json | 4 +--- .../05/GHSA-8f9r-9957-fj34/GHSA-8f9r-9957-fj34.json | 4 +--- .../05/GHSA-8g5p-g58h-hr3v/GHSA-8g5p-g58h-hr3v.json | 8 ++------ .../05/GHSA-8h84-r7fq-5pcm/GHSA-8h84-r7fq-5pcm.json | 8 ++------ .../05/GHSA-8h8v-4pgc-x2vp/GHSA-8h8v-4pgc-x2vp.json | 8 ++------ .../05/GHSA-8hfg-c2jc-x92h/GHSA-8hfg-c2jc-x92h.json | 8 ++------ .../05/GHSA-8hgq-8qm6-pq2v/GHSA-8hgq-8qm6-pq2v.json | 8 ++------ .../05/GHSA-8j42-w4ff-mq7x/GHSA-8j42-w4ff-mq7x.json | 12 +++--------- .../05/GHSA-8j77-5wmx-mgjf/GHSA-8j77-5wmx-mgjf.json | 4 +--- .../05/GHSA-8j96-m43p-rp5v/GHSA-8j96-m43p-rp5v.json | 12 +++--------- .../05/GHSA-8jq9-gwrr-4cqw/GHSA-8jq9-gwrr-4cqw.json | 8 ++------ .../05/GHSA-8mp8-8j2j-r39v/GHSA-8mp8-8j2j-r39v.json | 8 ++------ .../05/GHSA-8vcf-f9qh-vxjr/GHSA-8vcf-f9qh-vxjr.json | 8 ++------ .../05/GHSA-8wx2-w44v-5fxv/GHSA-8wx2-w44v-5fxv.json | 8 ++------ .../05/GHSA-9246-2mcc-pf87/GHSA-9246-2mcc-pf87.json | 8 ++------ .../05/GHSA-925x-95jq-3vgq/GHSA-925x-95jq-3vgq.json | 8 ++------ .../05/GHSA-92hg-jjmr-6gv2/GHSA-92hg-jjmr-6gv2.json | 8 ++------ .../05/GHSA-92pj-cjhq-xw9c/GHSA-92pj-cjhq-xw9c.json | 8 ++------ .../05/GHSA-93f9-wg2h-r6p5/GHSA-93f9-wg2h-r6p5.json | 8 ++------ .../05/GHSA-943p-ppxw-x2h4/GHSA-943p-ppxw-x2h4.json | 8 ++------ .../05/GHSA-94cq-h6f7-9rvw/GHSA-94cq-h6f7-9rvw.json | 8 ++------ .../05/GHSA-94q8-gmc5-fvp3/GHSA-94q8-gmc5-fvp3.json | 8 ++------ .../05/GHSA-9526-q7c5-6pc6/GHSA-9526-q7c5-6pc6.json | 4 +--- .../05/GHSA-95vg-hp9r-6q5x/GHSA-95vg-hp9r-6q5x.json | 8 ++------ .../05/GHSA-95w2-x8cx-c96f/GHSA-95w2-x8cx-c96f.json | 8 ++------ .../05/GHSA-9645-cj65-jfjp/GHSA-9645-cj65-jfjp.json | 8 ++------ .../05/GHSA-9682-j923-q58c/GHSA-9682-j923-q58c.json | 4 +--- .../05/GHSA-969c-xcr8-6f87/GHSA-969c-xcr8-6f87.json | 8 ++------ .../05/GHSA-96mc-r65q-rp99/GHSA-96mc-r65q-rp99.json | 8 ++------ .../05/GHSA-987v-cgj9-6w7p/GHSA-987v-cgj9-6w7p.json | 8 ++------ .../05/GHSA-988w-p627-h6w6/GHSA-988w-p627-h6w6.json | 8 ++------ .../05/GHSA-98f9-9r42-6h8r/GHSA-98f9-9r42-6h8r.json | 8 ++------ .../05/GHSA-98j3-8c3p-wjgw/GHSA-98j3-8c3p-wjgw.json | 12 +++--------- .../05/GHSA-9cc9-7jvq-f37c/GHSA-9cc9-7jvq-f37c.json | 12 +++--------- .../05/GHSA-9cmh-vcwr-g56w/GHSA-9cmh-vcwr-g56w.json | 8 ++------ .../05/GHSA-9cp9-p8gv-hvjp/GHSA-9cp9-p8gv-hvjp.json | 8 ++------ .../05/GHSA-9f4c-6r28-3vgp/GHSA-9f4c-6r28-3vgp.json | 8 ++------ .../05/GHSA-9fgh-6w4g-5r53/GHSA-9fgh-6w4g-5r53.json | 8 ++------ .../05/GHSA-9fv2-mhpr-vp74/GHSA-9fv2-mhpr-vp74.json | 8 ++------ .../05/GHSA-9hh8-9m39-758p/GHSA-9hh8-9m39-758p.json | 4 +--- .../05/GHSA-9hxw-w8qr-8whf/GHSA-9hxw-w8qr-8whf.json | 8 ++------ .../05/GHSA-9mg9-93fp-h68f/GHSA-9mg9-93fp-h68f.json | 12 +++--------- .../05/GHSA-9mm6-26v4-pgr2/GHSA-9mm6-26v4-pgr2.json | 8 ++------ .../05/GHSA-9rm6-q34g-q949/GHSA-9rm6-q34g-q949.json | 4 +--- .../05/GHSA-9vx6-2r2f-g9qw/GHSA-9vx6-2r2f-g9qw.json | 8 ++------ .../05/GHSA-9vxc-xx4f-gp2p/GHSA-9vxc-xx4f-gp2p.json | 8 ++------ .../05/GHSA-9wr9-qg9q-m8vj/GHSA-9wr9-qg9q-m8vj.json | 8 ++------ .../05/GHSA-9xm7-qxg2-g5p4/GHSA-9xm7-qxg2-g5p4.json | 8 ++------ .../05/GHSA-c2x9-7pw3-qgwx/GHSA-c2x9-7pw3-qgwx.json | 12 +++--------- .../05/GHSA-c3hj-2397-cgqm/GHSA-c3hj-2397-cgqm.json | 8 ++------ .../05/GHSA-c423-vwh6-449m/GHSA-c423-vwh6-449m.json | 8 ++------ .../05/GHSA-c4f6-mx8c-8v9m/GHSA-c4f6-mx8c-8v9m.json | 8 ++------ .../05/GHSA-c4hp-f86j-vc55/GHSA-c4hp-f86j-vc55.json | 8 ++------ .../05/GHSA-c4j5-68fc-gm69/GHSA-c4j5-68fc-gm69.json | 8 ++------ .../05/GHSA-c538-784j-qcxc/GHSA-c538-784j-qcxc.json | 8 ++------ .../05/GHSA-c5hg-hx4v-7q6w/GHSA-c5hg-hx4v-7q6w.json | 8 ++------ .../05/GHSA-c627-2gcf-x56f/GHSA-c627-2gcf-x56f.json | 12 +++--------- .../05/GHSA-c6w7-fh4x-6grf/GHSA-c6w7-fh4x-6grf.json | 8 ++------ .../05/GHSA-c788-7228-4w94/GHSA-c788-7228-4w94.json | 12 +++--------- .../05/GHSA-c78g-42vj-2xq3/GHSA-c78g-42vj-2xq3.json | 4 +--- .../05/GHSA-c8j9-wpjx-gc58/GHSA-c8j9-wpjx-gc58.json | 8 ++------ .../05/GHSA-c96p-67jc-gfv2/GHSA-c96p-67jc-gfv2.json | 8 ++------ .../05/GHSA-ccvp-35p9-69x5/GHSA-ccvp-35p9-69x5.json | 8 ++------ .../05/GHSA-cf3w-c88r-w8cf/GHSA-cf3w-c88r-w8cf.json | 8 ++------ .../05/GHSA-cg53-x73j-7f7x/GHSA-cg53-x73j-7f7x.json | 8 ++------ .../05/GHSA-cg7r-5xgw-w475/GHSA-cg7r-5xgw-w475.json | 8 ++------ .../05/GHSA-chm7-74w6-xvpf/GHSA-chm7-74w6-xvpf.json | 8 ++------ .../05/GHSA-cj9c-5245-m5rj/GHSA-cj9c-5245-m5rj.json | 4 +--- .../05/GHSA-cm65-67cq-fq4v/GHSA-cm65-67cq-fq4v.json | 8 ++------ .../05/GHSA-cmqj-w77g-23w3/GHSA-cmqj-w77g-23w3.json | 12 +++--------- .../05/GHSA-cp22-2989-32j9/GHSA-cp22-2989-32j9.json | 4 +--- .../05/GHSA-cp77-jfvp-qpxx/GHSA-cp77-jfvp-qpxx.json | 4 +--- .../05/GHSA-cq82-f654-8cvc/GHSA-cq82-f654-8cvc.json | 8 ++------ .../05/GHSA-cr23-gw9g-5cwj/GHSA-cr23-gw9g-5cwj.json | 8 ++------ .../05/GHSA-cr4g-c387-95hx/GHSA-cr4g-c387-95hx.json | 8 ++------ .../05/GHSA-cr82-m62c-8j4w/GHSA-cr82-m62c-8j4w.json | 8 ++------ .../05/GHSA-crcc-3c88-jfqc/GHSA-crcc-3c88-jfqc.json | 12 +++--------- .../05/GHSA-crrf-7wcm-2c9m/GHSA-crrf-7wcm-2c9m.json | 8 ++------ .../05/GHSA-cvjj-3hj3-h52w/GHSA-cvjj-3hj3-h52w.json | 8 ++------ .../05/GHSA-cvpm-h3w4-gr4m/GHSA-cvpm-h3w4-gr4m.json | 8 ++------ .../05/GHSA-cw22-47j6-2cpf/GHSA-cw22-47j6-2cpf.json | 8 ++------ .../05/GHSA-cw3m-4r2p-cpmg/GHSA-cw3m-4r2p-cpmg.json | 8 ++------ .../05/GHSA-cxf7-jm74-c5qg/GHSA-cxf7-jm74-c5qg.json | 8 ++------ .../05/GHSA-cxpp-2492-jpgw/GHSA-cxpp-2492-jpgw.json | 8 ++------ .../05/GHSA-f2rm-99fw-5555/GHSA-f2rm-99fw-5555.json | 8 ++------ .../05/GHSA-f335-pm7q-gvcv/GHSA-f335-pm7q-gvcv.json | 4 +--- .../05/GHSA-f3wv-rx3x-v6fh/GHSA-f3wv-rx3x-v6fh.json | 8 ++------ .../05/GHSA-f534-wv46-r4jg/GHSA-f534-wv46-r4jg.json | 8 ++------ .../05/GHSA-f537-rwg7-cjw7/GHSA-f537-rwg7-cjw7.json | 8 ++------ .../05/GHSA-f547-35w9-xxjr/GHSA-f547-35w9-xxjr.json | 8 ++------ .../05/GHSA-f57w-r4hj-rw7w/GHSA-f57w-r4hj-rw7w.json | 8 ++------ .../05/GHSA-f5m4-7rpp-8pcx/GHSA-f5m4-7rpp-8pcx.json | 8 ++------ .../05/GHSA-f637-jpfq-3wv2/GHSA-f637-jpfq-3wv2.json | 8 ++------ .../05/GHSA-f6xm-7hh7-hhmf/GHSA-f6xm-7hh7-hhmf.json | 8 ++------ .../05/GHSA-f785-26gp-36f7/GHSA-f785-26gp-36f7.json | 12 +++--------- .../05/GHSA-f7vw-h87v-qcxm/GHSA-f7vw-h87v-qcxm.json | 12 +++--------- .../05/GHSA-f92h-24fv-q8vj/GHSA-f92h-24fv-q8vj.json | 8 ++------ .../05/GHSA-f9r5-j6qc-fj25/GHSA-f9r5-j6qc-fj25.json | 8 ++------ .../05/GHSA-fcrv-fj4v-2w98/GHSA-fcrv-fj4v-2w98.json | 12 +++--------- .../05/GHSA-fg87-2627-3rxj/GHSA-fg87-2627-3rxj.json | 8 ++------ .../05/GHSA-fg8g-5752-vv79/GHSA-fg8g-5752-vv79.json | 8 ++------ .../05/GHSA-fgq9-mc3x-7pq8/GHSA-fgq9-mc3x-7pq8.json | 4 +--- .../05/GHSA-fh3v-hmj6-hfgc/GHSA-fh3v-hmj6-hfgc.json | 8 ++------ .../05/GHSA-fmpw-4cjx-968h/GHSA-fmpw-4cjx-968h.json | 8 ++------ .../05/GHSA-fp78-9jrc-578g/GHSA-fp78-9jrc-578g.json | 12 +++--------- .../05/GHSA-fr9h-qp6m-f727/GHSA-fr9h-qp6m-f727.json | 12 +++--------- .../05/GHSA-fvg6-36gh-2gwj/GHSA-fvg6-36gh-2gwj.json | 8 ++------ .../05/GHSA-fx65-x2vv-6c9m/GHSA-fx65-x2vv-6c9m.json | 8 ++------ .../05/GHSA-fxm9-pj4r-698p/GHSA-fxm9-pj4r-698p.json | 8 ++------ .../05/GHSA-fxqq-3w9f-87xc/GHSA-fxqq-3w9f-87xc.json | 8 ++------ .../05/GHSA-g38c-wvg3-qp2h/GHSA-g38c-wvg3-qp2h.json | 4 +--- .../05/GHSA-g448-wcxf-78wc/GHSA-g448-wcxf-78wc.json | 12 +++--------- .../05/GHSA-g4mx-vhr8-g9g7/GHSA-g4mx-vhr8-g9g7.json | 8 ++------ .../05/GHSA-g4xj-2594-cc4j/GHSA-g4xj-2594-cc4j.json | 12 +++--------- .../05/GHSA-g5g7-5r9g-2xpx/GHSA-g5g7-5r9g-2xpx.json | 8 ++------ .../05/GHSA-g5mf-xw7v-rmr9/GHSA-g5mf-xw7v-rmr9.json | 8 ++------ .../05/GHSA-g5w5-9x35-5297/GHSA-g5w5-9x35-5297.json | 8 ++------ .../05/GHSA-g64m-c5v8-26mc/GHSA-g64m-c5v8-26mc.json | 8 ++------ .../05/GHSA-g6hc-9fvw-fvfx/GHSA-g6hc-9fvw-fvfx.json | 8 ++------ .../05/GHSA-g6qm-p3jr-vj64/GHSA-g6qm-p3jr-vj64.json | 8 ++------ .../05/GHSA-g763-g64f-m23g/GHSA-g763-g64f-m23g.json | 12 +++--------- .../05/GHSA-g7h4-mcf5-vrf5/GHSA-g7h4-mcf5-vrf5.json | 8 ++------ .../05/GHSA-g8hh-gfgv-c2m8/GHSA-g8hh-gfgv-c2m8.json | 4 +--- .../05/GHSA-gc8f-p869-6jhm/GHSA-gc8f-p869-6jhm.json | 8 ++------ .../05/GHSA-gch7-4cwr-hjjh/GHSA-gch7-4cwr-hjjh.json | 8 ++------ .../05/GHSA-gfcr-hr3x-v6r9/GHSA-gfcr-hr3x-v6r9.json | 4 +--- .../05/GHSA-gff4-9rfx-4pcw/GHSA-gff4-9rfx-4pcw.json | 8 ++------ .../05/GHSA-gfm3-3hp2-f82x/GHSA-gfm3-3hp2-f82x.json | 8 ++------ .../05/GHSA-gg38-746h-m28j/GHSA-gg38-746h-m28j.json | 8 ++------ .../05/GHSA-ghjv-m4m6-fcxw/GHSA-ghjv-m4m6-fcxw.json | 8 ++------ .../05/GHSA-gjj5-vggp-jg8p/GHSA-gjj5-vggp-jg8p.json | 8 ++------ .../05/GHSA-gpg3-wq7x-w9rj/GHSA-gpg3-wq7x-w9rj.json | 8 ++------ .../05/GHSA-gph7-96qh-f4cv/GHSA-gph7-96qh-f4cv.json | 8 ++------ .../05/GHSA-gq3h-3p4j-vffv/GHSA-gq3h-3p4j-vffv.json | 8 ++------ .../05/GHSA-gq98-m2mr-9mrv/GHSA-gq98-m2mr-9mrv.json | 8 ++------ .../05/GHSA-gqgc-5jm8-qf2w/GHSA-gqgc-5jm8-qf2w.json | 8 ++------ .../05/GHSA-gqx6-mwq7-ccgm/GHSA-gqx6-mwq7-ccgm.json | 8 ++------ .../05/GHSA-grmj-8wvf-p5xh/GHSA-grmj-8wvf-p5xh.json | 4 +--- .../05/GHSA-gv63-32vm-56hx/GHSA-gv63-32vm-56hx.json | 8 ++------ .../05/GHSA-gx4g-83m8-7hhx/GHSA-gx4g-83m8-7hhx.json | 8 ++------ .../05/GHSA-h32m-4g5f-5rv2/GHSA-h32m-4g5f-5rv2.json | 12 +++--------- .../05/GHSA-h38w-g4mp-rwv7/GHSA-h38w-g4mp-rwv7.json | 8 ++------ .../05/GHSA-h496-jfcc-fq24/GHSA-h496-jfcc-fq24.json | 12 +++--------- .../05/GHSA-h4h7-jgfc-7q2j/GHSA-h4h7-jgfc-7q2j.json | 8 ++------ .../05/GHSA-h524-q6jx-7vf6/GHSA-h524-q6jx-7vf6.json | 8 ++------ .../05/GHSA-h549-4pw3-34x9/GHSA-h549-4pw3-34x9.json | 8 ++------ .../05/GHSA-h5gw-cg2f-8hj5/GHSA-h5gw-cg2f-8hj5.json | 8 ++------ .../05/GHSA-h5vh-qch6-xh9m/GHSA-h5vh-qch6-xh9m.json | 8 ++------ .../05/GHSA-h6gh-5696-7fpq/GHSA-h6gh-5696-7fpq.json | 12 +++--------- .../05/GHSA-h7h6-qvjq-8mhm/GHSA-h7h6-qvjq-8mhm.json | 8 ++------ .../05/GHSA-h8fc-h6j5-v645/GHSA-h8fc-h6j5-v645.json | 12 +++--------- .../05/GHSA-h9xp-3922-7v5q/GHSA-h9xp-3922-7v5q.json | 8 ++------ .../05/GHSA-hcc7-mq5f-p6fm/GHSA-hcc7-mq5f-p6fm.json | 8 ++------ .../05/GHSA-hf3r-r99x-986x/GHSA-hf3r-r99x-986x.json | 8 ++------ .../05/GHSA-hf7r-8668-4mm7/GHSA-hf7r-8668-4mm7.json | 8 ++------ .../05/GHSA-hfhh-3vvv-4gqf/GHSA-hfhh-3vvv-4gqf.json | 8 ++------ .../05/GHSA-hg33-63vh-hrfx/GHSA-hg33-63vh-hrfx.json | 8 ++------ .../05/GHSA-hg3w-24rp-mf42/GHSA-hg3w-24rp-mf42.json | 8 ++------ .../05/GHSA-hgc7-2xcm-jrxv/GHSA-hgc7-2xcm-jrxv.json | 8 ++------ .../05/GHSA-hj5r-2q87-qf8g/GHSA-hj5r-2q87-qf8g.json | 8 ++------ .../05/GHSA-hm82-rjqc-48fq/GHSA-hm82-rjqc-48fq.json | 8 ++------ .../05/GHSA-hmj2-jg94-8gqq/GHSA-hmj2-jg94-8gqq.json | 8 ++------ .../05/GHSA-hpfw-6cc8-9hhj/GHSA-hpfw-6cc8-9hhj.json | 8 ++------ .../05/GHSA-hpqr-pfj5-7rfx/GHSA-hpqr-pfj5-7rfx.json | 8 ++------ .../05/GHSA-hpw3-822x-7j7j/GHSA-hpw3-822x-7j7j.json | 8 ++------ .../05/GHSA-hqcj-mm82-w3pc/GHSA-hqcj-mm82-w3pc.json | 8 ++------ .../05/GHSA-hrx4-qqgq-jr2r/GHSA-hrx4-qqgq-jr2r.json | 8 ++------ .../05/GHSA-hvqq-xv72-5qhj/GHSA-hvqq-xv72-5qhj.json | 12 +++--------- .../05/GHSA-hx64-qv2g-ph4q/GHSA-hx64-qv2g-ph4q.json | 8 ++------ .../05/GHSA-hxh2-4r7r-jcw6/GHSA-hxh2-4r7r-jcw6.json | 8 ++------ .../05/GHSA-j3jc-48fv-7w6q/GHSA-j3jc-48fv-7w6q.json | 8 ++------ .../05/GHSA-j3x9-vvcx-3wc5/GHSA-j3x9-vvcx-3wc5.json | 4 +--- .../05/GHSA-j4fr-x79w-x7mp/GHSA-j4fr-x79w-x7mp.json | 8 ++------ .../05/GHSA-j56c-jw7v-92vw/GHSA-j56c-jw7v-92vw.json | 8 ++------ .../05/GHSA-j5cx-chhx-m9h2/GHSA-j5cx-chhx-m9h2.json | 4 +--- .../05/GHSA-j5rq-6w98-hx99/GHSA-j5rq-6w98-hx99.json | 12 +++--------- .../05/GHSA-j6gq-g7hh-gvmp/GHSA-j6gq-g7hh-gvmp.json | 8 ++------ .../05/GHSA-j76w-jg9r-w5vr/GHSA-j76w-jg9r-w5vr.json | 8 ++------ .../05/GHSA-j9h7-v335-8gcp/GHSA-j9h7-v335-8gcp.json | 8 ++------ .../05/GHSA-j9m5-gvp8-2g77/GHSA-j9m5-gvp8-2g77.json | 12 +++--------- .../05/GHSA-j9vp-hmqw-qv3c/GHSA-j9vp-hmqw-qv3c.json | 12 +++--------- .../05/GHSA-jg4r-vvqm-988m/GHSA-jg4r-vvqm-988m.json | 8 ++------ .../05/GHSA-jg74-g2r7-p8mf/GHSA-jg74-g2r7-p8mf.json | 12 +++--------- .../05/GHSA-jgwc-xqm9-2rmm/GHSA-jgwc-xqm9-2rmm.json | 8 ++------ .../05/GHSA-jhf7-x7rx-7fc9/GHSA-jhf7-x7rx-7fc9.json | 8 ++------ .../05/GHSA-jhw4-9gwh-59ww/GHSA-jhw4-9gwh-59ww.json | 8 ++------ .../05/GHSA-jj4c-53qh-fp5v/GHSA-jj4c-53qh-fp5v.json | 8 ++------ .../05/GHSA-jjh2-2h2c-9qqq/GHSA-jjh2-2h2c-9qqq.json | 8 ++------ .../05/GHSA-jjqh-7hrg-q6jq/GHSA-jjqh-7hrg-q6jq.json | 8 ++------ .../05/GHSA-jmhj-34rw-524w/GHSA-jmhj-34rw-524w.json | 8 ++------ .../05/GHSA-jmp9-fm29-29mr/GHSA-jmp9-fm29-29mr.json | 8 ++------ .../05/GHSA-jqj4-298c-3hhv/GHSA-jqj4-298c-3hhv.json | 8 ++------ .../05/GHSA-jqwj-jqv8-9wmv/GHSA-jqwj-jqv8-9wmv.json | 8 ++------ .../05/GHSA-jrvj-xjqq-wvhc/GHSA-jrvj-xjqq-wvhc.json | 8 ++------ .../05/GHSA-jv36-m28h-q393/GHSA-jv36-m28h-q393.json | 8 ++------ .../05/GHSA-jvrj-mg4m-mpx3/GHSA-jvrj-mg4m-mpx3.json | 8 ++------ .../05/GHSA-jwxx-hpqc-j7wm/GHSA-jwxx-hpqc-j7wm.json | 8 ++------ .../05/GHSA-m3cm-h6wg-q547/GHSA-m3cm-h6wg-q547.json | 12 +++--------- .../05/GHSA-m3wc-g5cv-5v98/GHSA-m3wc-g5cv-5v98.json | 12 +++--------- .../05/GHSA-m43q-5c9p-x5fh/GHSA-m43q-5c9p-x5fh.json | 8 ++------ .../05/GHSA-m4xv-ghfq-5mrj/GHSA-m4xv-ghfq-5mrj.json | 8 ++------ .../05/GHSA-m538-3c4g-4cx5/GHSA-m538-3c4g-4cx5.json | 12 +++--------- .../05/GHSA-m694-ffqc-42hh/GHSA-m694-ffqc-42hh.json | 8 ++------ .../05/GHSA-m6jj-v4vv-f2hj/GHSA-m6jj-v4vv-f2hj.json | 8 ++------ .../05/GHSA-m74v-w86v-39q5/GHSA-m74v-w86v-39q5.json | 8 ++------ .../05/GHSA-m785-q8fj-8w82/GHSA-m785-q8fj-8w82.json | 8 ++------ .../05/GHSA-m82p-m5vr-cmhm/GHSA-m82p-m5vr-cmhm.json | 8 ++------ .../05/GHSA-m866-f94v-cjww/GHSA-m866-f94v-cjww.json | 12 +++--------- .../05/GHSA-m8mw-7m8x-jh2h/GHSA-m8mw-7m8x-jh2h.json | 8 ++------ .../05/GHSA-m8xw-66cv-rfr6/GHSA-m8xw-66cv-rfr6.json | 8 ++------ .../05/GHSA-m9r3-pgr2-ppr5/GHSA-m9r3-pgr2-ppr5.json | 8 ++------ .../05/GHSA-mcp5-3g3r-5wm5/GHSA-mcp5-3g3r-5wm5.json | 8 ++------ .../05/GHSA-mhcx-4c5f-w275/GHSA-mhcx-4c5f-w275.json | 8 ++------ .../05/GHSA-mhj5-cwc2-fxgx/GHSA-mhj5-cwc2-fxgx.json | 4 +--- .../05/GHSA-mjqr-j4x8-38w5/GHSA-mjqr-j4x8-38w5.json | 8 ++------ .../05/GHSA-mm45-c98x-rq98/GHSA-mm45-c98x-rq98.json | 8 ++------ .../05/GHSA-mm4v-hxm2-mccj/GHSA-mm4v-hxm2-mccj.json | 8 ++------ .../05/GHSA-mm57-2rfm-crr2/GHSA-mm57-2rfm-crr2.json | 8 ++------ .../05/GHSA-mmw4-5h79-rrh6/GHSA-mmw4-5h79-rrh6.json | 12 +++--------- .../05/GHSA-mp2p-wmm5-65r7/GHSA-mp2p-wmm5-65r7.json | 12 +++--------- .../05/GHSA-mpxw-95w2-p523/GHSA-mpxw-95w2-p523.json | 8 ++------ .../05/GHSA-mqwf-vg2c-5ch3/GHSA-mqwf-vg2c-5ch3.json | 4 +--- .../05/GHSA-mrjp-f6vx-73jf/GHSA-mrjp-f6vx-73jf.json | 8 ++------ .../05/GHSA-mv8q-667q-35v7/GHSA-mv8q-667q-35v7.json | 8 ++------ .../05/GHSA-mwfg-6wv9-379f/GHSA-mwfg-6wv9-379f.json | 4 +--- .../05/GHSA-mx3q-x87f-8pxm/GHSA-mx3q-x87f-8pxm.json | 8 ++------ .../05/GHSA-mx68-p244-fggc/GHSA-mx68-p244-fggc.json | 8 ++------ .../05/GHSA-mxg2-jj7m-q6v8/GHSA-mxg2-jj7m-q6v8.json | 8 ++------ .../05/GHSA-p276-c5v8-f347/GHSA-p276-c5v8-f347.json | 8 ++------ .../05/GHSA-p47j-xx8m-fjr9/GHSA-p47j-xx8m-fjr9.json | 8 ++------ .../05/GHSA-p47q-7w75-c3j3/GHSA-p47q-7w75-c3j3.json | 8 ++------ .../05/GHSA-p532-pqr4-xw4g/GHSA-p532-pqr4-xw4g.json | 8 ++------ .../05/GHSA-p5ph-fpgv-7c3v/GHSA-p5ph-fpgv-7c3v.json | 8 ++------ .../05/GHSA-p7jj-vwwf-c644/GHSA-p7jj-vwwf-c644.json | 4 +--- .../05/GHSA-p854-92x2-rx7x/GHSA-p854-92x2-rx7x.json | 8 ++------ .../05/GHSA-pc88-5q83-cf4p/GHSA-pc88-5q83-cf4p.json | 4 +--- .../05/GHSA-pcwp-p8jm-7xc7/GHSA-pcwp-p8jm-7xc7.json | 8 ++------ .../05/GHSA-pfgx-f7x8-8985/GHSA-pfgx-f7x8-8985.json | 12 +++--------- .../05/GHSA-pfq8-gmrx-7h6x/GHSA-pfq8-gmrx-7h6x.json | 8 ++------ .../05/GHSA-ph92-fm2f-7w7p/GHSA-ph92-fm2f-7w7p.json | 8 ++------ .../05/GHSA-phcj-55fg-4r29/GHSA-phcj-55fg-4r29.json | 8 ++------ .../05/GHSA-phh2-62x4-4jfj/GHSA-phh2-62x4-4jfj.json | 8 ++------ .../05/GHSA-phjf-vhjh-qv5p/GHSA-phjf-vhjh-qv5p.json | 8 ++------ .../05/GHSA-pj5f-493m-r596/GHSA-pj5f-493m-r596.json | 12 +++--------- .../05/GHSA-pjjj-hpx9-qmc6/GHSA-pjjj-hpx9-qmc6.json | 8 ++------ .../05/GHSA-pjv3-5grh-rmm4/GHSA-pjv3-5grh-rmm4.json | 8 ++------ .../05/GHSA-pmq5-vgh2-fjq5/GHSA-pmq5-vgh2-fjq5.json | 8 ++------ .../05/GHSA-ppch-842g-chcf/GHSA-ppch-842g-chcf.json | 8 ++------ .../05/GHSA-pqf8-45f6-3rgv/GHSA-pqf8-45f6-3rgv.json | 8 ++------ .../05/GHSA-pv7p-2x54-xvc3/GHSA-pv7p-2x54-xvc3.json | 8 ++------ .../05/GHSA-pxxg-w7cj-99fp/GHSA-pxxg-w7cj-99fp.json | 8 ++------ .../05/GHSA-q23g-5crp-275m/GHSA-q23g-5crp-275m.json | 8 ++------ .../05/GHSA-q38p-89cx-mcrc/GHSA-q38p-89cx-mcrc.json | 8 ++------ .../05/GHSA-q3hc-qvq7-7gmj/GHSA-q3hc-qvq7-7gmj.json | 8 ++------ .../05/GHSA-q449-r33x-v693/GHSA-q449-r33x-v693.json | 8 ++------ .../05/GHSA-q4jm-4p9g-2h6g/GHSA-q4jm-4p9g-2h6g.json | 8 ++------ .../05/GHSA-q4v7-mpx5-4v38/GHSA-q4v7-mpx5-4v38.json | 12 +++--------- .../05/GHSA-q622-qgp9-63h7/GHSA-q622-qgp9-63h7.json | 8 ++------ .../05/GHSA-q663-qwpj-9w6q/GHSA-q663-qwpj-9w6q.json | 8 ++------ .../05/GHSA-q66j-gj7h-p9hm/GHSA-q66j-gj7h-p9hm.json | 4 +--- .../05/GHSA-q952-vrp9-648w/GHSA-q952-vrp9-648w.json | 8 ++------ .../05/GHSA-q9qc-v68f-53f3/GHSA-q9qc-v68f-53f3.json | 8 ++------ .../05/GHSA-qfv9-rhfv-64hr/GHSA-qfv9-rhfv-64hr.json | 12 +++--------- .../05/GHSA-qgr9-4rvm-qxmp/GHSA-qgr9-4rvm-qxmp.json | 8 ++------ .../05/GHSA-qh5q-fpqr-qwj9/GHSA-qh5q-fpqr-qwj9.json | 8 ++------ .../05/GHSA-qj3r-57x6-6667/GHSA-qj3r-57x6-6667.json | 8 ++------ .../05/GHSA-qj3w-cxqj-5rxq/GHSA-qj3w-cxqj-5rxq.json | 8 ++------ .../05/GHSA-qj8p-f375-fv39/GHSA-qj8p-f375-fv39.json | 8 ++------ .../05/GHSA-qjv2-p92g-q4wq/GHSA-qjv2-p92g-q4wq.json | 8 ++------ .../05/GHSA-qm74-j33c-557g/GHSA-qm74-j33c-557g.json | 8 ++------ .../05/GHSA-qmmq-6cfg-qc67/GHSA-qmmq-6cfg-qc67.json | 12 +++--------- .../05/GHSA-qpj4-2wrv-fg4g/GHSA-qpj4-2wrv-fg4g.json | 8 ++------ .../05/GHSA-qpxg-jggc-73jp/GHSA-qpxg-jggc-73jp.json | 8 ++------ .../05/GHSA-qq7j-g886-9qqh/GHSA-qq7j-g886-9qqh.json | 8 ++------ .../05/GHSA-qqr2-jjq7-8fwx/GHSA-qqr2-jjq7-8fwx.json | 8 ++------ .../05/GHSA-qr9g-4j4m-2f7q/GHSA-qr9g-4j4m-2f7q.json | 8 ++------ .../05/GHSA-qrxp-3jr9-xcc9/GHSA-qrxp-3jr9-xcc9.json | 8 ++------ .../05/GHSA-qw54-9qj3-wxh7/GHSA-qw54-9qj3-wxh7.json | 8 ++------ .../05/GHSA-qxjq-5hf8-7hff/GHSA-qxjq-5hf8-7hff.json | 8 ++------ .../05/GHSA-r23c-vx43-32vg/GHSA-r23c-vx43-32vg.json | 8 ++------ .../05/GHSA-r379-mpqq-hxmh/GHSA-r379-mpqq-hxmh.json | 8 ++------ .../05/GHSA-r3wp-7g4q-74qv/GHSA-r3wp-7g4q-74qv.json | 8 ++------ .../05/GHSA-r454-8j2h-fwqp/GHSA-r454-8j2h-fwqp.json | 4 +--- .../05/GHSA-r54x-g9vf-56fv/GHSA-r54x-g9vf-56fv.json | 8 ++------ .../05/GHSA-r6f8-28gg-x96j/GHSA-r6f8-28gg-x96j.json | 8 ++------ .../05/GHSA-r8fq-xfh5-mvgx/GHSA-r8fq-xfh5-mvgx.json | 8 ++------ .../05/GHSA-rc6c-3j97-8gfm/GHSA-rc6c-3j97-8gfm.json | 12 +++--------- .../05/GHSA-rc6x-59rr-4g8r/GHSA-rc6x-59rr-4g8r.json | 4 +--- .../05/GHSA-rc9r-x5j2-h9cq/GHSA-rc9r-x5j2-h9cq.json | 8 ++------ .../05/GHSA-rcr9-98rj-4395/GHSA-rcr9-98rj-4395.json | 12 +++--------- .../05/GHSA-rf5f-q4mx-qc4v/GHSA-rf5f-q4mx-qc4v.json | 8 ++------ .../05/GHSA-rg77-jjpv-33p3/GHSA-rg77-jjpv-33p3.json | 8 ++------ .../05/GHSA-rhcr-gqff-r4v3/GHSA-rhcr-gqff-r4v3.json | 8 ++------ .../05/GHSA-rj74-4cv2-w7rf/GHSA-rj74-4cv2-w7rf.json | 8 ++------ .../05/GHSA-rj77-cp45-4q8h/GHSA-rj77-cp45-4q8h.json | 8 ++------ .../05/GHSA-rqcp-6gmj-fpgx/GHSA-rqcp-6gmj-fpgx.json | 8 ++------ .../05/GHSA-rrv5-9g7j-vq28/GHSA-rrv5-9g7j-vq28.json | 8 ++------ .../05/GHSA-rv2g-592x-h2qq/GHSA-rv2g-592x-h2qq.json | 8 ++------ .../05/GHSA-rxgq-mf23-45xc/GHSA-rxgq-mf23-45xc.json | 8 ++------ .../05/GHSA-rxjr-qfmr-c739/GHSA-rxjr-qfmr-c739.json | 8 ++------ .../05/GHSA-rxwh-cw27-c33v/GHSA-rxwh-cw27-c33v.json | 8 ++------ .../05/GHSA-v36p-6rf8-wx94/GHSA-v36p-6rf8-wx94.json | 8 ++------ .../05/GHSA-v37v-92mh-7r2f/GHSA-v37v-92mh-7r2f.json | 8 ++------ .../05/GHSA-v3h5-8p7p-2vrg/GHSA-v3h5-8p7p-2vrg.json | 4 +--- .../05/GHSA-v3vp-qqmj-ggrj/GHSA-v3vp-qqmj-ggrj.json | 8 ++------ .../05/GHSA-v4w4-xxpq-3p77/GHSA-v4w4-xxpq-3p77.json | 8 ++------ .../05/GHSA-v64j-j7w9-c2vj/GHSA-v64j-j7w9-c2vj.json | 8 ++------ .../05/GHSA-v6vj-vcw7-qf3c/GHSA-v6vj-vcw7-qf3c.json | 8 ++------ .../05/GHSA-v6w2-2rvc-2pmq/GHSA-v6w2-2rvc-2pmq.json | 8 ++------ .../05/GHSA-v7m2-rcm9-7785/GHSA-v7m2-rcm9-7785.json | 8 ++------ .../05/GHSA-v7xj-x69j-92c7/GHSA-v7xj-x69j-92c7.json | 8 ++------ .../05/GHSA-v865-wgvp-j2q9/GHSA-v865-wgvp-j2q9.json | 8 ++------ .../05/GHSA-v8gh-pvhq-x9gh/GHSA-v8gh-pvhq-x9gh.json | 12 +++--------- .../05/GHSA-v9wv-gjqw-3pfr/GHSA-v9wv-gjqw-3pfr.json | 8 ++------ .../05/GHSA-vc2p-5mxr-hx98/GHSA-vc2p-5mxr-hx98.json | 8 ++------ .../05/GHSA-vcv7-328f-35m5/GHSA-vcv7-328f-35m5.json | 8 ++------ .../05/GHSA-vf5j-54pj-5cc2/GHSA-vf5j-54pj-5cc2.json | 12 +++--------- .../05/GHSA-vf79-fxj5-j7c4/GHSA-vf79-fxj5-j7c4.json | 8 ++------ .../05/GHSA-vf9r-c7v2-7275/GHSA-vf9r-c7v2-7275.json | 8 ++------ .../05/GHSA-vfg6-2jp3-7c54/GHSA-vfg6-2jp3-7c54.json | 8 ++------ .../05/GHSA-vgvv-hj3p-69r2/GHSA-vgvv-hj3p-69r2.json | 8 ++------ .../05/GHSA-vj42-7xv9-r62v/GHSA-vj42-7xv9-r62v.json | 4 +--- .../05/GHSA-vjmg-qh6v-526r/GHSA-vjmg-qh6v-526r.json | 8 ++------ .../05/GHSA-vjxv-h84w-vj5j/GHSA-vjxv-h84w-vj5j.json | 8 ++------ .../05/GHSA-vp99-jwhh-r3xw/GHSA-vp99-jwhh-r3xw.json | 8 ++------ .../05/GHSA-vppj-q42f-96w5/GHSA-vppj-q42f-96w5.json | 4 +--- .../05/GHSA-vq9w-f7pp-xwj5/GHSA-vq9w-f7pp-xwj5.json | 8 ++------ .../05/GHSA-vqfr-3pj8-54gm/GHSA-vqfr-3pj8-54gm.json | 12 +++--------- .../05/GHSA-vqgg-ch69-x69v/GHSA-vqgg-ch69-x69v.json | 8 ++------ .../05/GHSA-vqmf-2v99-hhqq/GHSA-vqmf-2v99-hhqq.json | 8 ++------ .../05/GHSA-vqpw-67xr-mj7x/GHSA-vqpw-67xr-mj7x.json | 12 +++--------- .../05/GHSA-vrx9-j28q-wm7x/GHSA-vrx9-j28q-wm7x.json | 8 ++------ .../05/GHSA-vv27-2433-5mq8/GHSA-vv27-2433-5mq8.json | 4 +--- .../05/GHSA-vw24-c2gm-hpjc/GHSA-vw24-c2gm-hpjc.json | 8 ++------ .../05/GHSA-vw8x-xjwp-7888/GHSA-vw8x-xjwp-7888.json | 8 ++------ .../05/GHSA-vwfv-p8p3-m4r7/GHSA-vwfv-p8p3-m4r7.json | 8 ++------ .../05/GHSA-vxgg-6fp7-rx59/GHSA-vxgg-6fp7-rx59.json | 8 ++------ .../05/GHSA-w2p3-47c3-r8h2/GHSA-w2p3-47c3-r8h2.json | 8 ++------ .../05/GHSA-w3f4-m5x7-jjxh/GHSA-w3f4-m5x7-jjxh.json | 8 ++------ .../05/GHSA-w3wx-pfgj-qgv3/GHSA-w3wx-pfgj-qgv3.json | 4 +--- .../05/GHSA-w3xr-26m4-xc8m/GHSA-w3xr-26m4-xc8m.json | 4 +--- .../05/GHSA-w4gq-6hmw-x862/GHSA-w4gq-6hmw-x862.json | 8 ++------ .../05/GHSA-w4p5-jc3g-29j3/GHSA-w4p5-jc3g-29j3.json | 8 ++------ .../05/GHSA-w6hx-h678-hv82/GHSA-w6hx-h678-hv82.json | 8 ++------ .../05/GHSA-w7p8-wf2r-rw5h/GHSA-w7p8-wf2r-rw5h.json | 8 ++------ .../05/GHSA-w7r3-x8vq-r9vp/GHSA-w7r3-x8vq-r9vp.json | 8 ++------ .../05/GHSA-w82c-75f7-qr29/GHSA-w82c-75f7-qr29.json | 8 ++------ .../05/GHSA-w8wp-h42w-f3m4/GHSA-w8wp-h42w-f3m4.json | 8 ++------ .../05/GHSA-w986-fvg4-hvqg/GHSA-w986-fvg4-hvqg.json | 12 +++--------- .../05/GHSA-w9wf-7g3r-xgx7/GHSA-w9wf-7g3r-xgx7.json | 8 ++------ .../05/GHSA-wfh6-xhqh-h5xw/GHSA-wfh6-xhqh-h5xw.json | 8 ++------ .../05/GHSA-wg76-c5w5-h7xg/GHSA-wg76-c5w5-h7xg.json | 8 ++------ .../05/GHSA-wg9c-53cp-4j79/GHSA-wg9c-53cp-4j79.json | 8 ++------ .../05/GHSA-whhf-44jp-82gr/GHSA-whhf-44jp-82gr.json | 8 ++------ .../05/GHSA-wj4q-g69x-hrg9/GHSA-wj4q-g69x-hrg9.json | 4 +--- .../05/GHSA-wj66-8qrh-6rxf/GHSA-wj66-8qrh-6rxf.json | 8 ++------ .../05/GHSA-wj9h-qr23-xmqh/GHSA-wj9h-qr23-xmqh.json | 8 ++------ .../05/GHSA-wjv7-jqjx-m675/GHSA-wjv7-jqjx-m675.json | 8 ++------ .../05/GHSA-wm2q-rjqh-v4ff/GHSA-wm2q-rjqh-v4ff.json | 8 ++------ .../05/GHSA-wmcj-6965-gm4j/GHSA-wmcj-6965-gm4j.json | 8 ++------ .../05/GHSA-wmf5-gp42-gq5m/GHSA-wmf5-gp42-gq5m.json | 8 ++------ .../05/GHSA-wmhr-fwp2-cchm/GHSA-wmhr-fwp2-cchm.json | 4 +--- .../05/GHSA-wq5p-2cwp-p8wr/GHSA-wq5p-2cwp-p8wr.json | 8 ++------ .../05/GHSA-wq79-2f22-34w5/GHSA-wq79-2f22-34w5.json | 8 ++------ .../05/GHSA-wrfq-hrw9-9rm3/GHSA-wrfq-hrw9-9rm3.json | 8 ++------ .../05/GHSA-wrfx-v3mv-pvww/GHSA-wrfx-v3mv-pvww.json | 4 +--- .../05/GHSA-wvp6-r3f2-3fpj/GHSA-wvp6-r3f2-3fpj.json | 8 ++------ .../05/GHSA-ww7r-3h84-p2r6/GHSA-ww7r-3h84-p2r6.json | 8 ++------ .../05/GHSA-wx3j-3x93-528x/GHSA-wx3j-3x93-528x.json | 12 +++--------- .../05/GHSA-wxpj-m284-3v3q/GHSA-wxpj-m284-3v3q.json | 12 +++--------- .../05/GHSA-x282-2jwx-hvgg/GHSA-x282-2jwx-hvgg.json | 4 +--- .../05/GHSA-x3p4-v5g6-w6pw/GHSA-x3p4-v5g6-w6pw.json | 8 ++------ .../05/GHSA-x3vj-997j-97hq/GHSA-x3vj-997j-97hq.json | 8 ++------ .../05/GHSA-x3wc-cjrx-mc5h/GHSA-x3wc-cjrx-mc5h.json | 8 ++------ .../05/GHSA-x486-4h5g-3687/GHSA-x486-4h5g-3687.json | 8 ++------ .../05/GHSA-x592-jf8v-v754/GHSA-x592-jf8v-v754.json | 8 ++------ .../05/GHSA-x995-5r6x-9xh3/GHSA-x995-5r6x-9xh3.json | 8 ++------ .../05/GHSA-x9xh-p9v3-367p/GHSA-x9xh-p9v3-367p.json | 8 ++------ .../05/GHSA-xf78-rxvh-6xrr/GHSA-xf78-rxvh-6xrr.json | 12 +++--------- .../05/GHSA-xhr2-gj6g-mm67/GHSA-xhr2-gj6g-mm67.json | 8 ++------ .../05/GHSA-xjm9-9gr6-gcpx/GHSA-xjm9-9gr6-gcpx.json | 4 +--- .../05/GHSA-xjpv-48qr-cg8g/GHSA-xjpv-48qr-cg8g.json | 12 +++--------- .../05/GHSA-xjww-8m9x-vvj8/GHSA-xjww-8m9x-vvj8.json | 8 ++------ .../05/GHSA-xm5q-57c6-qx3w/GHSA-xm5q-57c6-qx3w.json | 12 +++--------- .../05/GHSA-xm77-mpc2-5mxx/GHSA-xm77-mpc2-5mxx.json | 8 ++------ .../05/GHSA-xp58-v8qq-x8jr/GHSA-xp58-v8qq-x8jr.json | 8 ++------ .../05/GHSA-xpc3-gf76-6g72/GHSA-xpc3-gf76-6g72.json | 8 ++------ .../05/GHSA-xphr-pxpv-957v/GHSA-xphr-pxpv-957v.json | 8 ++------ .../05/GHSA-xqvv-5qpx-cjj8/GHSA-xqvv-5qpx-cjj8.json | 8 ++------ .../05/GHSA-xqw2-5rg4-323p/GHSA-xqw2-5rg4-323p.json | 8 ++------ .../05/GHSA-xrg7-hhwv-8fc8/GHSA-xrg7-hhwv-8fc8.json | 8 ++------ .../05/GHSA-xrmc-6wqq-99wc/GHSA-xrmc-6wqq-99wc.json | 8 ++------ .../05/GHSA-xv46-hhwp-vf34/GHSA-xv46-hhwp-vf34.json | 8 ++------ .../05/GHSA-xvgf-q2mq-jv66/GHSA-xvgf-q2mq-jv66.json | 12 +++--------- .../05/GHSA-xvmv-wg5c-7x3w/GHSA-xvmv-wg5c-7x3w.json | 4 +--- .../05/GHSA-xvpg-g5h6-mqww/GHSA-xvpg-g5h6-mqww.json | 8 ++------ .../05/GHSA-xvxg-wp8f-g8h4/GHSA-xvxg-wp8f-g8h4.json | 8 ++------ .../05/GHSA-xw2v-4pf9-qj5w/GHSA-xw2v-4pf9-qj5w.json | 4 +--- .../05/GHSA-xwh3-6m65-fmmj/GHSA-xwh3-6m65-fmmj.json | 8 ++------ .../05/GHSA-xwvv-wrqp-xgj5/GHSA-xwvv-wrqp-xgj5.json | 8 ++------ .../05/GHSA-xx79-5295-gw9g/GHSA-xx79-5295-gw9g.json | 8 ++------ .../05/GHSA-xxqr-hj46-74ww/GHSA-xxqr-hj46-74ww.json | 8 ++------ .../07/GHSA-g3fx-wrq8-cp3q/GHSA-g3fx-wrq8-cp3q.json | 4 +--- .../07/GHSA-hqj8-9ccg-2g84/GHSA-hqj8-9ccg-2g84.json | 4 +--- .../07/GHSA-m3xw-wjv6-wx6x/GHSA-m3xw-wjv6-wx6x.json | 4 +--- .../10/GHSA-4cf4-hqwp-cpp8/GHSA-4cf4-hqwp-cpp8.json | 4 +--- .../10/GHSA-h3vx-8rv6-2h7x/GHSA-h3vx-8rv6-2h7x.json | 4 +--- .../12/GHSA-3jfg-74jc-hjq4/GHSA-3jfg-74jc-hjq4.json | 4 +--- .../12/GHSA-55c6-2hvf-w64f/GHSA-55c6-2hvf-w64f.json | 4 +--- .../12/GHSA-58rj-c7p7-f4h9/GHSA-58rj-c7p7-f4h9.json | 4 +--- .../12/GHSA-6839-6jhx-rcv7/GHSA-6839-6jhx-rcv7.json | 4 +--- .../12/GHSA-6cwc-7j5r-rwvf/GHSA-6cwc-7j5r-rwvf.json | 4 +--- .../12/GHSA-6rxp-85rj-wm6w/GHSA-6rxp-85rj-wm6w.json | 4 +--- .../12/GHSA-7496-f8r6-4592/GHSA-7496-f8r6-4592.json | 4 +--- .../12/GHSA-8474-8wmh-7hj8/GHSA-8474-8wmh-7hj8.json | 4 +--- .../12/GHSA-8h84-vmjf-pcmj/GHSA-8h84-vmjf-pcmj.json | 4 +--- .../12/GHSA-982x-5mm8-vrmm/GHSA-982x-5mm8-vrmm.json | 4 +--- .../12/GHSA-9fhw-hf7x-9gjc/GHSA-9fhw-hf7x-9gjc.json | 4 +--- .../12/GHSA-9fhx-7rcp-9rfp/GHSA-9fhx-7rcp-9rfp.json | 4 +--- .../12/GHSA-9mgg-3gj3-77pg/GHSA-9mgg-3gj3-77pg.json | 4 +--- .../12/GHSA-9q3r-h2q9-4rwf/GHSA-9q3r-h2q9-4rwf.json | 4 +--- .../12/GHSA-9xjf-29m8-3mfq/GHSA-9xjf-29m8-3mfq.json | 4 +--- .../12/GHSA-c57x-gf5c-cc83/GHSA-c57x-gf5c-cc83.json | 4 +--- .../12/GHSA-c888-5r7v-37mw/GHSA-c888-5r7v-37mw.json | 8 ++------ .../12/GHSA-c8f6-x9xm-x27g/GHSA-c8f6-x9xm-x27g.json | 4 +--- .../12/GHSA-cgvm-v5x3-2hm9/GHSA-cgvm-v5x3-2hm9.json | 4 +--- .../12/GHSA-cqwg-qq7j-c4fr/GHSA-cqwg-qq7j-c4fr.json | 4 +--- .../12/GHSA-f5w3-55f2-v2g9/GHSA-f5w3-55f2-v2g9.json | 4 +--- .../12/GHSA-ghhq-5mmr-7wf5/GHSA-ghhq-5mmr-7wf5.json | 8 ++------ .../12/GHSA-gpf3-4fw6-p76w/GHSA-gpf3-4fw6-p76w.json | 4 +--- .../12/GHSA-hw2j-4vj7-9j38/GHSA-hw2j-4vj7-9j38.json | 4 +--- .../12/GHSA-j3qr-j5r5-64mp/GHSA-j3qr-j5r5-64mp.json | 4 +--- .../12/GHSA-jj68-3qxc-xvjv/GHSA-jj68-3qxc-xvjv.json | 8 ++------ .../12/GHSA-jqxp-vjx4-h9pv/GHSA-jqxp-vjx4-h9pv.json | 4 +--- .../12/GHSA-jv2g-hj6c-v276/GHSA-jv2g-hj6c-v276.json | 4 +--- .../12/GHSA-mxh9-fhfx-h2jh/GHSA-mxh9-fhfx-h2jh.json | 4 +--- .../12/GHSA-p3v4-rqhv-6x2v/GHSA-p3v4-rqhv-6x2v.json | 4 +--- .../12/GHSA-pcwp-jh7x-746c/GHSA-pcwp-jh7x-746c.json | 4 +--- .../12/GHSA-pf2r-9hw6-gx66/GHSA-pf2r-9hw6-gx66.json | 8 ++------ .../12/GHSA-prq4-rjxr-m2fq/GHSA-prq4-rjxr-m2fq.json | 4 +--- .../12/GHSA-pvp9-84c2-p559/GHSA-pvp9-84c2-p559.json | 8 ++------ .../12/GHSA-q34j-q58v-2jmm/GHSA-q34j-q58v-2jmm.json | 4 +--- .../12/GHSA-qj34-24mc-v6wc/GHSA-qj34-24mc-v6wc.json | 4 +--- .../12/GHSA-qqrr-4grg-q6v3/GHSA-qqrr-4grg-q6v3.json | 8 ++------ .../12/GHSA-qr42-43fq-qffx/GHSA-qr42-43fq-qffx.json | 8 ++------ .../12/GHSA-qxrr-wrhx-j83r/GHSA-qxrr-wrhx-j83r.json | 4 +--- .../12/GHSA-r2p3-rmqj-8988/GHSA-r2p3-rmqj-8988.json | 4 +--- .../12/GHSA-v3j5-cg8r-8v4j/GHSA-v3j5-cg8r-8v4j.json | 4 +--- .../12/GHSA-vvhh-g843-7vrh/GHSA-vvhh-g843-7vrh.json | 4 +--- .../12/GHSA-w3mw-7pp7-5rcf/GHSA-w3mw-7pp7-5rcf.json | 4 +--- .../12/GHSA-w9pr-59v3-7rgc/GHSA-w9pr-59v3-7rgc.json | 4 +--- .../12/GHSA-wmxm-7j47-5ww2/GHSA-wmxm-7j47-5ww2.json | 4 +--- .../12/GHSA-wp5g-24xx-jcg4/GHSA-wp5g-24xx-jcg4.json | 4 +--- .../12/GHSA-wq87-g3m8-cq98/GHSA-wq87-g3m8-cq98.json | 4 +--- .../12/GHSA-ww7w-3qfh-v54h/GHSA-ww7w-3qfh-v54h.json | 8 ++------ .../12/GHSA-wx82-f75f-hq8v/GHSA-wx82-f75f-hq8v.json | 4 +--- .../12/GHSA-x2cv-2r65-3xpp/GHSA-x2cv-2r65-3xpp.json | 4 +--- .../01/GHSA-2995-qwmm-cm3p/GHSA-2995-qwmm-cm3p.json | 8 ++------ .../01/GHSA-3mgf-mj76-7964/GHSA-3mgf-mj76-7964.json | 4 +--- .../01/GHSA-3pjq-c8pr-33gx/GHSA-3pjq-c8pr-33gx.json | 8 ++------ .../01/GHSA-3rq8-3g2v-4r35/GHSA-3rq8-3g2v-4r35.json | 4 +--- .../01/GHSA-6324-2p78-9j67/GHSA-6324-2p78-9j67.json | 8 ++------ .../01/GHSA-6ghc-mcpm-3hv7/GHSA-6ghc-mcpm-3hv7.json | 4 +--- .../01/GHSA-6r75-2f3x-5v9m/GHSA-6r75-2f3x-5v9m.json | 4 +--- .../01/GHSA-779g-8q6v-4g8g/GHSA-779g-8q6v-4g8g.json | 4 +--- .../01/GHSA-8r38-jrwh-8grw/GHSA-8r38-jrwh-8grw.json | 4 +--- .../01/GHSA-989j-wgv4-2q6m/GHSA-989j-wgv4-2q6m.json | 4 +--- .../01/GHSA-c67f-vfh2-px5g/GHSA-c67f-vfh2-px5g.json | 4 +--- .../01/GHSA-c77h-4xgf-q558/GHSA-c77h-4xgf-q558.json | 4 +--- .../01/GHSA-cgx2-fm93-35wf/GHSA-cgx2-fm93-35wf.json | 4 +--- .../01/GHSA-gg3r-g8xg-rm82/GHSA-gg3r-g8xg-rm82.json | 4 +--- .../01/GHSA-jpw8-vg77-hg97/GHSA-jpw8-vg77-hg97.json | 8 ++------ .../01/GHSA-jwcg-x754-2vpg/GHSA-jwcg-x754-2vpg.json | 4 +--- .../01/GHSA-m893-832r-qfw5/GHSA-m893-832r-qfw5.json | 4 +--- .../01/GHSA-mj85-hmjp-qxp4/GHSA-mj85-hmjp-qxp4.json | 4 +--- .../01/GHSA-mjgm-cpqr-4j59/GHSA-mjgm-cpqr-4j59.json | 4 +--- .../01/GHSA-mmcw-8x5c-5j75/GHSA-mmcw-8x5c-5j75.json | 8 ++------ .../01/GHSA-mpq2-r2jc-4wmr/GHSA-mpq2-r2jc-4wmr.json | 8 ++------ .../01/GHSA-qm38-g6p6-r6vr/GHSA-qm38-g6p6-r6vr.json | 8 ++------ .../01/GHSA-qq72-vc8r-56w8/GHSA-qq72-vc8r-56w8.json | 4 +--- .../01/GHSA-r3qf-4hq8-7cm8/GHSA-r3qf-4hq8-7cm8.json | 4 +--- .../01/GHSA-rhm6-355p-2674/GHSA-rhm6-355p-2674.json | 4 +--- .../01/GHSA-vxmx-jvj7-7m48/GHSA-vxmx-jvj7-7m48.json | 8 ++------ .../01/GHSA-x2mv-r7m7-mf57/GHSA-x2mv-r7m7-mf57.json | 4 +--- .../01/GHSA-xr99-q8hp-qjj7/GHSA-xr99-q8hp-qjj7.json | 4 +--- .../02/GHSA-8hw9-jqh3-h2rx/GHSA-8hw9-jqh3-h2rx.json | 4 +--- .../04/GHSA-7p8q-cvq9-54g6/GHSA-7p8q-cvq9-54g6.json | 4 +--- .../06/GHSA-cjjg-rvc7-5p7r/GHSA-cjjg-rvc7-5p7r.json | 12 +++--------- .../06/GHSA-f2cj-5636-4j38/GHSA-f2cj-5636-4j38.json | 4 +--- .../06/GHSA-f88c-p55f-gcw8/GHSA-f88c-p55f-gcw8.json | 12 +++--------- .../06/GHSA-h6fr-rh94-prmv/GHSA-h6fr-rh94-prmv.json | 4 +--- .../06/GHSA-v9pp-h525-vwm9/GHSA-v9pp-h525-vwm9.json | 4 +--- .../06/GHSA-xch8-fp3g-32mq/GHSA-xch8-fp3g-32mq.json | 4 +--- .../10/GHSA-6px3-qxvf-fwv5/GHSA-6px3-qxvf-fwv5.json | 4 +--- .../10/GHSA-9jvg-rv57-qj93/GHSA-9jvg-rv57-qj93.json | 4 +--- .../10/GHSA-jhv5-cxf2-r67v/GHSA-jhv5-cxf2-r67v.json | 4 +--- .../12/GHSA-2qrw-655g-f524/GHSA-2qrw-655g-f524.json | 4 +--- .../12/GHSA-4779-3f76-8vx3/GHSA-4779-3f76-8vx3.json | 4 +--- .../12/GHSA-phhr-cqm7-gjv6/GHSA-phhr-cqm7-gjv6.json | 4 +--- .../12/GHSA-r8h5-fm59-g356/GHSA-r8h5-fm59-g356.json | 8 ++------ .../01/GHSA-3h6x-952r-xr8p/GHSA-3h6x-952r-xr8p.json | 8 ++------ .../01/GHSA-4287-v2hm-q9f2/GHSA-4287-v2hm-q9f2.json | 4 +--- .../01/GHSA-73m5-j333-fcwc/GHSA-73m5-j333-fcwc.json | 8 ++------ .../01/GHSA-93px-8x98-j7p2/GHSA-93px-8x98-j7p2.json | 4 +--- .../03/GHSA-jprr-pf4r-gvp5/GHSA-jprr-pf4r-gvp5.json | 8 ++------ .../05/GHSA-c6h3-g88w-qcm8/GHSA-c6h3-g88w-qcm8.json | 4 +--- .../05/GHSA-fcgh-hm5r-m53h/GHSA-fcgh-hm5r-m53h.json | 4 +--- .../05/GHSA-gprr-m8wv-39v4/GHSA-gprr-m8wv-39v4.json | 12 +++--------- .../06/GHSA-227p-7qgj-96v9/GHSA-227p-7qgj-96v9.json | 4 +--- .../06/GHSA-23pr-fhrm-f58r/GHSA-23pr-fhrm-f58r.json | 4 +--- .../06/GHSA-294x-mfp7-qj66/GHSA-294x-mfp7-qj66.json | 4 +--- .../06/GHSA-349w-vchp-x42g/GHSA-349w-vchp-x42g.json | 12 +++--------- .../06/GHSA-38gh-44mj-6cx9/GHSA-38gh-44mj-6cx9.json | 4 +--- .../06/GHSA-3989-vpff-cvxj/GHSA-3989-vpff-cvxj.json | 4 +--- .../06/GHSA-3cff-hppc-4g4r/GHSA-3cff-hppc-4g4r.json | 4 +--- .../06/GHSA-3fc6-rfv9-rx3p/GHSA-3fc6-rfv9-rx3p.json | 8 ++------ .../06/GHSA-3x3h-w82j-w642/GHSA-3x3h-w82j-w642.json | 12 +++--------- .../06/GHSA-457m-vq92-44f4/GHSA-457m-vq92-44f4.json | 4 +--- .../06/GHSA-45w7-mp7w-9jhm/GHSA-45w7-mp7w-9jhm.json | 4 +--- .../06/GHSA-47wc-gh7x-58g7/GHSA-47wc-gh7x-58g7.json | 4 +--- .../06/GHSA-482g-x733-43f8/GHSA-482g-x733-43f8.json | 12 +++--------- .../06/GHSA-483w-q33g-j5qq/GHSA-483w-q33g-j5qq.json | 8 ++------ .../06/GHSA-4936-pv53-5frr/GHSA-4936-pv53-5frr.json | 4 +--- .../06/GHSA-4pg5-hx4c-34cx/GHSA-4pg5-hx4c-34cx.json | 4 +--- .../06/GHSA-56c5-9v4w-8rjp/GHSA-56c5-9v4w-8rjp.json | 8 ++------ .../06/GHSA-597m-8j3v-mvc5/GHSA-597m-8j3v-mvc5.json | 8 ++------ .../06/GHSA-59h5-f896-qx2f/GHSA-59h5-f896-qx2f.json | 4 +--- .../06/GHSA-5gww-p4cx-wj7p/GHSA-5gww-p4cx-wj7p.json | 12 +++--------- .../06/GHSA-74f6-jvr9-qch3/GHSA-74f6-jvr9-qch3.json | 4 +--- .../06/GHSA-75r7-wf67-87f9/GHSA-75r7-wf67-87f9.json | 4 +--- .../06/GHSA-7682-crgj-3p5h/GHSA-7682-crgj-3p5h.json | 4 +--- .../06/GHSA-794c-cp85-xv63/GHSA-794c-cp85-xv63.json | 4 +--- .../06/GHSA-7f6c-vw35-vwgh/GHSA-7f6c-vw35-vwgh.json | 4 +--- .../06/GHSA-7mqf-f8fg-5rvr/GHSA-7mqf-f8fg-5rvr.json | 4 +--- .../06/GHSA-83xj-7jxp-xh57/GHSA-83xj-7jxp-xh57.json | 4 +--- .../06/GHSA-8pqc-r2rx-5hhc/GHSA-8pqc-r2rx-5hhc.json | 8 ++------ .../06/GHSA-8xmg-v9fm-xcgv/GHSA-8xmg-v9fm-xcgv.json | 8 ++------ .../06/GHSA-9267-324r-qccw/GHSA-9267-324r-qccw.json | 8 ++------ .../06/GHSA-976j-29v7-qjc5/GHSA-976j-29v7-qjc5.json | 4 +--- .../06/GHSA-9c5q-5mvp-7rhh/GHSA-9c5q-5mvp-7rhh.json | 8 ++------ .../06/GHSA-9g3p-2g77-4wq8/GHSA-9g3p-2g77-4wq8.json | 4 +--- .../06/GHSA-9j2p-qj34-2h4c/GHSA-9j2p-qj34-2h4c.json | 12 +++--------- .../06/GHSA-cpf9-v223-82fq/GHSA-cpf9-v223-82fq.json | 4 +--- .../06/GHSA-cqx6-vqmj-2pph/GHSA-cqx6-vqmj-2pph.json | 4 +--- .../06/GHSA-f3c2-fcqx-5mpj/GHSA-f3c2-fcqx-5mpj.json | 4 +--- .../06/GHSA-f557-c6mq-9h68/GHSA-f557-c6mq-9h68.json | 8 ++------ .../06/GHSA-f9h4-h7gc-c283/GHSA-f9h4-h7gc-c283.json | 12 +++--------- .../06/GHSA-fm6m-fmh2-f72v/GHSA-fm6m-fmh2-f72v.json | 4 +--- .../06/GHSA-fp9r-pfv9-88w5/GHSA-fp9r-pfv9-88w5.json | 4 +--- .../06/GHSA-g459-66wh-4437/GHSA-g459-66wh-4437.json | 4 +--- .../06/GHSA-gj47-rgj5-5jrf/GHSA-gj47-rgj5-5jrf.json | 8 ++------ .../06/GHSA-h9rg-mrq2-9rc6/GHSA-h9rg-mrq2-9rc6.json | 8 ++------ .../06/GHSA-hch4-9x92-2rqw/GHSA-hch4-9x92-2rqw.json | 4 +--- .../06/GHSA-hf2j-ff52-p8cx/GHSA-hf2j-ff52-p8cx.json | 4 +--- .../06/GHSA-hgwf-5rc9-7vr3/GHSA-hgwf-5rc9-7vr3.json | 4 +--- .../06/GHSA-hh55-gjrq-j457/GHSA-hh55-gjrq-j457.json | 4 +--- .../06/GHSA-j253-hr3w-xhj7/GHSA-j253-hr3w-xhj7.json | 4 +--- .../06/GHSA-j37r-fj8f-2g89/GHSA-j37r-fj8f-2g89.json | 4 +--- .../06/GHSA-j648-xv8c-m9c7/GHSA-j648-xv8c-m9c7.json | 4 +--- .../06/GHSA-jf94-q4q8-6jgg/GHSA-jf94-q4q8-6jgg.json | 4 +--- .../06/GHSA-jh5v-jf43-r2r2/GHSA-jh5v-jf43-r2r2.json | 4 +--- .../06/GHSA-jrv5-734x-jwfc/GHSA-jrv5-734x-jwfc.json | 4 +--- .../06/GHSA-jw3j-2jxx-89fm/GHSA-jw3j-2jxx-89fm.json | 4 +--- .../06/GHSA-jw5j-hq8v-39jg/GHSA-jw5j-hq8v-39jg.json | 4 +--- .../06/GHSA-jw96-4rcp-6fj6/GHSA-jw96-4rcp-6fj6.json | 4 +--- .../06/GHSA-m57w-mwxg-jc43/GHSA-m57w-mwxg-jc43.json | 4 +--- .../06/GHSA-m95c-chfx-gfmj/GHSA-m95c-chfx-gfmj.json | 4 +--- .../06/GHSA-mf32-4qcq-96wh/GHSA-mf32-4qcq-96wh.json | 4 +--- .../06/GHSA-mp2w-fjq2-347v/GHSA-mp2w-fjq2-347v.json | 4 +--- .../06/GHSA-mv75-qm55-5jjf/GHSA-mv75-qm55-5jjf.json | 4 +--- .../06/GHSA-q4rw-2q7c-5q83/GHSA-q4rw-2q7c-5q83.json | 4 +--- .../06/GHSA-q5cc-c5xp-qh6h/GHSA-q5cc-c5xp-qh6h.json | 4 +--- .../06/GHSA-qx77-6fv2-rf7p/GHSA-qx77-6fv2-rf7p.json | 4 +--- .../06/GHSA-r3pr-q6h2-2wph/GHSA-r3pr-q6h2-2wph.json | 4 +--- .../06/GHSA-r3w6-p6hr-rww6/GHSA-r3w6-p6hr-rww6.json | 4 +--- .../06/GHSA-r62h-v64h-w564/GHSA-r62h-v64h-w564.json | 4 +--- .../06/GHSA-rg55-87jg-v3wr/GHSA-rg55-87jg-v3wr.json | 4 +--- .../06/GHSA-rx7g-f84f-jxv9/GHSA-rx7g-f84f-jxv9.json | 12 +++--------- .../06/GHSA-v5m7-r9rr-hxp7/GHSA-v5m7-r9rr-hxp7.json | 4 +--- .../06/GHSA-v9ph-8hf4-hgrx/GHSA-v9ph-8hf4-hgrx.json | 4 +--- .../06/GHSA-w3vp-r637-3fhj/GHSA-w3vp-r637-3fhj.json | 4 +--- .../06/GHSA-whjr-hx5f-gg2r/GHSA-whjr-hx5f-gg2r.json | 4 +--- .../06/GHSA-wxj4-wcg8-679f/GHSA-wxj4-wcg8-679f.json | 4 +--- .../06/GHSA-xpr6-7hp9-9mvv/GHSA-xpr6-7hp9-9mvv.json | 4 +--- .../06/GHSA-xwj5-5q25-vqmg/GHSA-xwj5-5q25-vqmg.json | 8 ++------ 957 files changed, 1917 insertions(+), 5751 deletions(-) diff --git a/advisories/github-reviewed/2022/05/GHSA-g2vx-8v47-4vhh/GHSA-g2vx-8v47-4vhh.json b/advisories/github-reviewed/2022/05/GHSA-g2vx-8v47-4vhh/GHSA-g2vx-8v47-4vhh.json index d9ffedd79af..5ea62b7e87e 100644 --- a/advisories/github-reviewed/2022/05/GHSA-g2vx-8v47-4vhh/GHSA-g2vx-8v47-4vhh.json +++ b/advisories/github-reviewed/2022/05/GHSA-g2vx-8v47-4vhh/GHSA-g2vx-8v47-4vhh.json @@ -8,9 +8,7 @@ ], "summary": "CakePHP allows remote attackers to modify internal Cake cache and execute arbitrary code", "details": "The `_validatePost` function in `libs/controller/components/security.php` in CakePHP 1.3.x through 1.3.5 and 1.2.8 allows remote attackers to modify the internal Cake cache and execute arbitrary code via a crafted `data[_Token][fields]` value that is processed by the unserialize function, as demonstrated by modifying the `file_map` cache to execute arbitrary local files.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/05/GHSA-r2xf-w5pj-9pw8/GHSA-r2xf-w5pj-9pw8.json b/advisories/github-reviewed/2022/05/GHSA-r2xf-w5pj-9pw8/GHSA-r2xf-w5pj-9pw8.json index 0e34badf505..3164e3e3305 100644 --- a/advisories/github-reviewed/2022/05/GHSA-r2xf-w5pj-9pw8/GHSA-r2xf-w5pj-9pw8.json +++ b/advisories/github-reviewed/2022/05/GHSA-r2xf-w5pj-9pw8/GHSA-r2xf-w5pj-9pw8.json @@ -8,9 +8,7 @@ ], "summary": "Apache Syncope JEXL Code Injection", "details": "Apache Syncope 1.0.0 before 1.0.9 and 1.1.0 before 1.1.7 allows remote administrators to execute arbitrary Java code via vectors related to Apache Commons JEXL expressions, \"derived schema definition,\" \"user / role templates,\" and \"account links of resource mappings.\"", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/12/GHSA-8r76-fr72-j32w/GHSA-8r76-fr72-j32w.json b/advisories/github-reviewed/2022/12/GHSA-8r76-fr72-j32w/GHSA-8r76-fr72-j32w.json index 9e19d4206fb..066c8fbc568 100644 --- a/advisories/github-reviewed/2022/12/GHSA-8r76-fr72-j32w/GHSA-8r76-fr72-j32w.json +++ b/advisories/github-reviewed/2022/12/GHSA-8r76-fr72-j32w/GHSA-8r76-fr72-j32w.json @@ -3,14 +3,10 @@ "id": "GHSA-8r76-fr72-j32w", "modified": "2022-12-12T22:02:42Z", "published": "2022-12-12T22:02:42Z", - "aliases": [ - - ], + "aliases": [], "summary": "Creator Verification Error when Bubblegum Activate", "details": "This was an error found by @metamania01 of the Audit Company Solshield.\n\nIt allowed one to verify a creator that did not sign by making use of a provision in Token Metadata that allows Creators who have signed compressed nfts to allow them to decompress with verified creators.\n\nThe issue is now patched.\nFor more info see.\nhttps://twitter.com/thehasheddude/status/1601642138143375360", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -70,9 +66,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2022-12-12T22:02:42Z", diff --git a/advisories/github-reviewed/2022/12/GHSA-9v25-r5q2-2p6w/GHSA-9v25-r5q2-2p6w.json b/advisories/github-reviewed/2022/12/GHSA-9v25-r5q2-2p6w/GHSA-9v25-r5q2-2p6w.json index d3ec2ba30f6..159507633d2 100644 --- a/advisories/github-reviewed/2022/12/GHSA-9v25-r5q2-2p6w/GHSA-9v25-r5q2-2p6w.json +++ b/advisories/github-reviewed/2022/12/GHSA-9v25-r5q2-2p6w/GHSA-9v25-r5q2-2p6w.json @@ -3,14 +3,10 @@ "id": "GHSA-9v25-r5q2-2p6w", "modified": "2022-12-12T22:03:19Z", "published": "2022-12-12T22:03:19Z", - "aliases": [ - - ], + "aliases": [], "summary": "Candy Machine Set Collection During Mint Missing Check", "details": "A problem with Candy Machine V2 allow minting NFTs to an arbitrary collection due to a missing check.\n\nHere is a description of the exploit:\nDetails:\nHere is the tx/ix to exploit:\nTransaction:\nIx 1: candy_machine v2, mint_nft, passing in empty metadata -1\nIx 2: custom handler, 0\n\t\tcpi A --> token_metadata create_metadata_account, creates NFT\n\t\tcpi B --> candy_machine v2, set_collection_during_mint\nIx 1 passes our first check for empty metadata, but eventually will hit a bot tax and return Ok. We do have a CPI check in this function but even if we hit that or moved it to the top, it returns Ok as a bot tax and still enables the issue.\nIx 2, cpi A is Ok and mints an arbitrary NFT.\nIx 2, cpi B checks the previous instruction using index_relative_to_current-1. This turns out to be Ix 1 which was Ok, so then your newly minted arbitrary NFT is successfully added to the collection.\nConclusion:\nCandy machine could be out of NFTs and it still works. If the CM is closed, (we think?) it doesn't get to the check.\nThe fix needs to be in set_collection_during_mint that current program ID id candy_machine_v2. It checks previous program ID but doesn't check current.\n\nNOTE: THIS DOES NOT AFFECT Cmv3\n", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -50,9 +46,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2022-12-12T22:03:19Z", diff --git a/advisories/github-reviewed/2023/03/GHSA-hc6q-2mpp-qw7j/GHSA-hc6q-2mpp-qw7j.json b/advisories/github-reviewed/2023/03/GHSA-hc6q-2mpp-qw7j/GHSA-hc6q-2mpp-qw7j.json index 9d434d0a15c..32f2804f939 100644 --- a/advisories/github-reviewed/2023/03/GHSA-hc6q-2mpp-qw7j/GHSA-hc6q-2mpp-qw7j.json +++ b/advisories/github-reviewed/2023/03/GHSA-hc6q-2mpp-qw7j/GHSA-hc6q-2mpp-qw7j.json @@ -62,9 +62,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": true, "github_reviewed_at": "2023-03-14T15:03:08Z", diff --git a/advisories/github-reviewed/2024/06/GHSA-4vc8-pg5c-vg4x/GHSA-4vc8-pg5c-vg4x.json b/advisories/github-reviewed/2024/06/GHSA-4vc8-pg5c-vg4x/GHSA-4vc8-pg5c-vg4x.json index 453b6d40178..d8d11c8e302 100644 --- a/advisories/github-reviewed/2024/06/GHSA-4vc8-pg5c-vg4x/GHSA-4vc8-pg5c-vg4x.json +++ b/advisories/github-reviewed/2024/06/GHSA-4vc8-pg5c-vg4x/GHSA-4vc8-pg5c-vg4x.json @@ -3,9 +3,7 @@ "id": "GHSA-4vc8-pg5c-vg4x", "modified": "2024-06-12T19:41:05Z", "published": "2024-06-12T19:41:05Z", - "aliases": [ - - ], + "aliases": [], "summary": "Keycloak's improper input validation allows using email as username", "details": "Keycloak allows the use of email as a username and doesn't check that an account with this email already exists. That could lead to the unability to reset/login with email for the user. This is caused by usernames being evaluated before emails.", "severity": [ diff --git a/advisories/github-reviewed/2024/06/GHSA-cq42-vhv7-xr7p/GHSA-cq42-vhv7-xr7p.json b/advisories/github-reviewed/2024/06/GHSA-cq42-vhv7-xr7p/GHSA-cq42-vhv7-xr7p.json index 9f89b7b7ebb..afc445d4e9e 100644 --- a/advisories/github-reviewed/2024/06/GHSA-cq42-vhv7-xr7p/GHSA-cq42-vhv7-xr7p.json +++ b/advisories/github-reviewed/2024/06/GHSA-cq42-vhv7-xr7p/GHSA-cq42-vhv7-xr7p.json @@ -3,9 +3,7 @@ "id": "GHSA-cq42-vhv7-xr7p", "modified": "2024-06-12T19:42:21Z", "published": "2024-06-12T19:42:21Z", - "aliases": [ - - ], + "aliases": [], "summary": "Keycloak Denial of Service via account lockout", "details": "In any realm set with \"User (Self) registration\" a user that is registered with a username in email format can be \"locked out\" (denied from logging in) using his username.", "severity": [ diff --git a/advisories/unreviewed/2021/12/GHSA-c894-282r-px6w/GHSA-c894-282r-px6w.json b/advisories/unreviewed/2021/12/GHSA-c894-282r-px6w/GHSA-c894-282r-px6w.json index 5f7246c6f1d..373b2f18bae 100644 --- a/advisories/unreviewed/2021/12/GHSA-c894-282r-px6w/GHSA-c894-282r-px6w.json +++ b/advisories/unreviewed/2021/12/GHSA-c894-282r-px6w/GHSA-c894-282r-px6w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2021/12/GHSA-pmj6-jq7v-c2r6/GHSA-pmj6-jq7v-c2r6.json b/advisories/unreviewed/2021/12/GHSA-pmj6-jq7v-c2r6/GHSA-pmj6-jq7v-c2r6.json index 02320250a96..88d72f9fd9e 100644 --- a/advisories/unreviewed/2021/12/GHSA-pmj6-jq7v-c2r6/GHSA-pmj6-jq7v-c2r6.json +++ b/advisories/unreviewed/2021/12/GHSA-pmj6-jq7v-c2r6/GHSA-pmj6-jq7v-c2r6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2021/12/GHSA-x5r4-fjpr-vr8v/GHSA-x5r4-fjpr-vr8v.json b/advisories/unreviewed/2021/12/GHSA-x5r4-fjpr-vr8v/GHSA-x5r4-fjpr-vr8v.json index fef1ecc8b51..81a41076052 100644 --- a/advisories/unreviewed/2021/12/GHSA-x5r4-fjpr-vr8v/GHSA-x5r4-fjpr-vr8v.json +++ b/advisories/unreviewed/2021/12/GHSA-x5r4-fjpr-vr8v/GHSA-x5r4-fjpr-vr8v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/01/GHSA-qffg-f4f5-j77v/GHSA-qffg-f4f5-j77v.json b/advisories/unreviewed/2022/01/GHSA-qffg-f4f5-j77v/GHSA-qffg-f4f5-j77v.json index 1861f4d1a09..3bd74e42091 100644 --- a/advisories/unreviewed/2022/01/GHSA-qffg-f4f5-j77v/GHSA-qffg-f4f5-j77v.json +++ b/advisories/unreviewed/2022/01/GHSA-qffg-f4f5-j77v/GHSA-qffg-f4f5-j77v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/02/GHSA-3f53-58pp-pg79/GHSA-3f53-58pp-pg79.json b/advisories/unreviewed/2022/02/GHSA-3f53-58pp-pg79/GHSA-3f53-58pp-pg79.json index f7c5ef390a2..6d88ca88155 100644 --- a/advisories/unreviewed/2022/02/GHSA-3f53-58pp-pg79/GHSA-3f53-58pp-pg79.json +++ b/advisories/unreviewed/2022/02/GHSA-3f53-58pp-pg79/GHSA-3f53-58pp-pg79.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/02/GHSA-4jqv-ghx3-vc2h/GHSA-4jqv-ghx3-vc2h.json b/advisories/unreviewed/2022/02/GHSA-4jqv-ghx3-vc2h/GHSA-4jqv-ghx3-vc2h.json index 45ef4bc78d4..0d9242b6dbd 100644 --- a/advisories/unreviewed/2022/02/GHSA-4jqv-ghx3-vc2h/GHSA-4jqv-ghx3-vc2h.json +++ b/advisories/unreviewed/2022/02/GHSA-4jqv-ghx3-vc2h/GHSA-4jqv-ghx3-vc2h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/02/GHSA-x37m-35qq-p254/GHSA-x37m-35qq-p254.json b/advisories/unreviewed/2022/02/GHSA-x37m-35qq-p254/GHSA-x37m-35qq-p254.json index 98b9f16d0f3..397a0045920 100644 --- a/advisories/unreviewed/2022/02/GHSA-x37m-35qq-p254/GHSA-x37m-35qq-p254.json +++ b/advisories/unreviewed/2022/02/GHSA-x37m-35qq-p254/GHSA-x37m-35qq-p254.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/03/GHSA-3466-9q3x-93wx/GHSA-3466-9q3x-93wx.json b/advisories/unreviewed/2022/03/GHSA-3466-9q3x-93wx/GHSA-3466-9q3x-93wx.json index 7f94ccc4a00..674eaf40e8f 100644 --- a/advisories/unreviewed/2022/03/GHSA-3466-9q3x-93wx/GHSA-3466-9q3x-93wx.json +++ b/advisories/unreviewed/2022/03/GHSA-3466-9q3x-93wx/GHSA-3466-9q3x-93wx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/03/GHSA-4crw-v2wh-7pcj/GHSA-4crw-v2wh-7pcj.json b/advisories/unreviewed/2022/03/GHSA-4crw-v2wh-7pcj/GHSA-4crw-v2wh-7pcj.json index 4ecdcdb030e..b1bc910f37d 100644 --- a/advisories/unreviewed/2022/03/GHSA-4crw-v2wh-7pcj/GHSA-4crw-v2wh-7pcj.json +++ b/advisories/unreviewed/2022/03/GHSA-4crw-v2wh-7pcj/GHSA-4crw-v2wh-7pcj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/03/GHSA-5g47-45xh-p83v/GHSA-5g47-45xh-p83v.json b/advisories/unreviewed/2022/03/GHSA-5g47-45xh-p83v/GHSA-5g47-45xh-p83v.json index bdd652aeb75..c75c100e238 100644 --- a/advisories/unreviewed/2022/03/GHSA-5g47-45xh-p83v/GHSA-5g47-45xh-p83v.json +++ b/advisories/unreviewed/2022/03/GHSA-5g47-45xh-p83v/GHSA-5g47-45xh-p83v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/03/GHSA-6829-6wg5-7hhh/GHSA-6829-6wg5-7hhh.json b/advisories/unreviewed/2022/03/GHSA-6829-6wg5-7hhh/GHSA-6829-6wg5-7hhh.json index 0dae55f8379..7ea8991f97c 100644 --- a/advisories/unreviewed/2022/03/GHSA-6829-6wg5-7hhh/GHSA-6829-6wg5-7hhh.json +++ b/advisories/unreviewed/2022/03/GHSA-6829-6wg5-7hhh/GHSA-6829-6wg5-7hhh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/03/GHSA-76r2-hr22-g5f2/GHSA-76r2-hr22-g5f2.json b/advisories/unreviewed/2022/03/GHSA-76r2-hr22-g5f2/GHSA-76r2-hr22-g5f2.json index 5f7bdf6c9dc..bfa830aad41 100644 --- a/advisories/unreviewed/2022/03/GHSA-76r2-hr22-g5f2/GHSA-76r2-hr22-g5f2.json +++ b/advisories/unreviewed/2022/03/GHSA-76r2-hr22-g5f2/GHSA-76r2-hr22-g5f2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/03/GHSA-7jgh-7hm4-3fmv/GHSA-7jgh-7hm4-3fmv.json b/advisories/unreviewed/2022/03/GHSA-7jgh-7hm4-3fmv/GHSA-7jgh-7hm4-3fmv.json index df52df571ce..78916f44af2 100644 --- a/advisories/unreviewed/2022/03/GHSA-7jgh-7hm4-3fmv/GHSA-7jgh-7hm4-3fmv.json +++ b/advisories/unreviewed/2022/03/GHSA-7jgh-7hm4-3fmv/GHSA-7jgh-7hm4-3fmv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/03/GHSA-c36x-474x-cmm9/GHSA-c36x-474x-cmm9.json b/advisories/unreviewed/2022/03/GHSA-c36x-474x-cmm9/GHSA-c36x-474x-cmm9.json index a3440637c7e..bab771f3ec6 100644 --- a/advisories/unreviewed/2022/03/GHSA-c36x-474x-cmm9/GHSA-c36x-474x-cmm9.json +++ b/advisories/unreviewed/2022/03/GHSA-c36x-474x-cmm9/GHSA-c36x-474x-cmm9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/03/GHSA-ffgv-qjpf-62hv/GHSA-ffgv-qjpf-62hv.json b/advisories/unreviewed/2022/03/GHSA-ffgv-qjpf-62hv/GHSA-ffgv-qjpf-62hv.json index 75bfd248221..528f9f00549 100644 --- a/advisories/unreviewed/2022/03/GHSA-ffgv-qjpf-62hv/GHSA-ffgv-qjpf-62hv.json +++ b/advisories/unreviewed/2022/03/GHSA-ffgv-qjpf-62hv/GHSA-ffgv-qjpf-62hv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/03/GHSA-fxhj-vjvm-j527/GHSA-fxhj-vjvm-j527.json b/advisories/unreviewed/2022/03/GHSA-fxhj-vjvm-j527/GHSA-fxhj-vjvm-j527.json index bc60dc5b585..fbda9e11030 100644 --- a/advisories/unreviewed/2022/03/GHSA-fxhj-vjvm-j527/GHSA-fxhj-vjvm-j527.json +++ b/advisories/unreviewed/2022/03/GHSA-fxhj-vjvm-j527/GHSA-fxhj-vjvm-j527.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/03/GHSA-hmjj-fwv3-rhm2/GHSA-hmjj-fwv3-rhm2.json b/advisories/unreviewed/2022/03/GHSA-hmjj-fwv3-rhm2/GHSA-hmjj-fwv3-rhm2.json index ec741c57e36..bb04b3e151b 100644 --- a/advisories/unreviewed/2022/03/GHSA-hmjj-fwv3-rhm2/GHSA-hmjj-fwv3-rhm2.json +++ b/advisories/unreviewed/2022/03/GHSA-hmjj-fwv3-rhm2/GHSA-hmjj-fwv3-rhm2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/03/GHSA-mcmv-w2jg-7fvh/GHSA-mcmv-w2jg-7fvh.json b/advisories/unreviewed/2022/03/GHSA-mcmv-w2jg-7fvh/GHSA-mcmv-w2jg-7fvh.json index ca3d07dd173..7b28af0e7c8 100644 --- a/advisories/unreviewed/2022/03/GHSA-mcmv-w2jg-7fvh/GHSA-mcmv-w2jg-7fvh.json +++ b/advisories/unreviewed/2022/03/GHSA-mcmv-w2jg-7fvh/GHSA-mcmv-w2jg-7fvh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/03/GHSA-wm63-7mw9-jg6q/GHSA-wm63-7mw9-jg6q.json b/advisories/unreviewed/2022/03/GHSA-wm63-7mw9-jg6q/GHSA-wm63-7mw9-jg6q.json index 6cf20cd174a..9d9bbd73983 100644 --- a/advisories/unreviewed/2022/03/GHSA-wm63-7mw9-jg6q/GHSA-wm63-7mw9-jg6q.json +++ b/advisories/unreviewed/2022/03/GHSA-wm63-7mw9-jg6q/GHSA-wm63-7mw9-jg6q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/03/GHSA-xhmr-j39f-mv9p/GHSA-xhmr-j39f-mv9p.json b/advisories/unreviewed/2022/03/GHSA-xhmr-j39f-mv9p/GHSA-xhmr-j39f-mv9p.json index 1447981c247..e781f5483bb 100644 --- a/advisories/unreviewed/2022/03/GHSA-xhmr-j39f-mv9p/GHSA-xhmr-j39f-mv9p.json +++ b/advisories/unreviewed/2022/03/GHSA-xhmr-j39f-mv9p/GHSA-xhmr-j39f-mv9p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-27gf-ff72-jfqr/GHSA-27gf-ff72-jfqr.json b/advisories/unreviewed/2022/04/GHSA-27gf-ff72-jfqr/GHSA-27gf-ff72-jfqr.json index 759c3c23c4b..35e4b7b47a4 100644 --- a/advisories/unreviewed/2022/04/GHSA-27gf-ff72-jfqr/GHSA-27gf-ff72-jfqr.json +++ b/advisories/unreviewed/2022/04/GHSA-27gf-ff72-jfqr/GHSA-27gf-ff72-jfqr.json @@ -7,12 +7,8 @@ "CVE-2000-0430" ], "details": "Cart32 allows remote attackers to access sensitive debugging information by appending /expdate to the URL request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2mg9-gqjh-3ggm/GHSA-2mg9-gqjh-3ggm.json b/advisories/unreviewed/2022/04/GHSA-2mg9-gqjh-3ggm/GHSA-2mg9-gqjh-3ggm.json index ebfb496a2de..c0f8c37b0be 100644 --- a/advisories/unreviewed/2022/04/GHSA-2mg9-gqjh-3ggm/GHSA-2mg9-gqjh-3ggm.json +++ b/advisories/unreviewed/2022/04/GHSA-2mg9-gqjh-3ggm/GHSA-2mg9-gqjh-3ggm.json @@ -7,12 +7,8 @@ "CVE-2000-0538" ], "details": "ColdFusion Administrator for ColdFusion 4.5.1 and earlier allows remote attackers to cause a denial of service via a long login password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2pfv-488g-27p3/GHSA-2pfv-488g-27p3.json b/advisories/unreviewed/2022/04/GHSA-2pfv-488g-27p3/GHSA-2pfv-488g-27p3.json index e6b244d26a9..9c12068e161 100644 --- a/advisories/unreviewed/2022/04/GHSA-2pfv-488g-27p3/GHSA-2pfv-488g-27p3.json +++ b/advisories/unreviewed/2022/04/GHSA-2pfv-488g-27p3/GHSA-2pfv-488g-27p3.json @@ -7,12 +7,8 @@ "CVE-2000-0421" ], "details": "The process_bug.cgi script in Bugzilla allows remote attackers to execute arbitrary commands via shell metacharacters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2wm7-6r5c-mjpc/GHSA-2wm7-6r5c-mjpc.json b/advisories/unreviewed/2022/04/GHSA-2wm7-6r5c-mjpc/GHSA-2wm7-6r5c-mjpc.json index 15e7a3adee8..b11e9ae589b 100644 --- a/advisories/unreviewed/2022/04/GHSA-2wm7-6r5c-mjpc/GHSA-2wm7-6r5c-mjpc.json +++ b/advisories/unreviewed/2022/04/GHSA-2wm7-6r5c-mjpc/GHSA-2wm7-6r5c-mjpc.json @@ -7,12 +7,8 @@ "CVE-2000-0546" ], "details": "Buffer overflow in Kerberos 4 KDC program allows remote attackers to cause a denial of service via the lastrealm variable in the set_tgtkey function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-2xgp-3983-29gm/GHSA-2xgp-3983-29gm.json b/advisories/unreviewed/2022/04/GHSA-2xgp-3983-29gm/GHSA-2xgp-3983-29gm.json index eae308bd0b2..d8f188a6e72 100644 --- a/advisories/unreviewed/2022/04/GHSA-2xgp-3983-29gm/GHSA-2xgp-3983-29gm.json +++ b/advisories/unreviewed/2022/04/GHSA-2xgp-3983-29gm/GHSA-2xgp-3983-29gm.json @@ -7,12 +7,8 @@ "CVE-2000-0386" ], "details": "FileMaker Pro 5 Web Companion allows remote attackers to send anonymous or forged email.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3367-m896-h674/GHSA-3367-m896-h674.json b/advisories/unreviewed/2022/04/GHSA-3367-m896-h674/GHSA-3367-m896-h674.json index 2261badd371..fa6b487fe74 100644 --- a/advisories/unreviewed/2022/04/GHSA-3367-m896-h674/GHSA-3367-m896-h674.json +++ b/advisories/unreviewed/2022/04/GHSA-3367-m896-h674/GHSA-3367-m896-h674.json @@ -7,12 +7,8 @@ "CVE-2002-1750" ], "details": "csGuestbook.cgi in CGISCRIPT.NET csGuestbook 1.0 allows remote attackers to execute arbitrary Perl code via the setup parameter, which is processed by the Perl eval function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-34f7-g82v-435m/GHSA-34f7-g82v-435m.json b/advisories/unreviewed/2022/04/GHSA-34f7-g82v-435m/GHSA-34f7-g82v-435m.json index 09672213d38..734571c6428 100644 --- a/advisories/unreviewed/2022/04/GHSA-34f7-g82v-435m/GHSA-34f7-g82v-435m.json +++ b/advisories/unreviewed/2022/04/GHSA-34f7-g82v-435m/GHSA-34f7-g82v-435m.json @@ -7,12 +7,8 @@ "CVE-2000-0416" ], "details": "NTMail 5.x allows network users to bypass the NTMail proxy restrictions by redirecting their requests to NTMail's web configuration server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-34pq-hxpf-w27h/GHSA-34pq-hxpf-w27h.json b/advisories/unreviewed/2022/04/GHSA-34pq-hxpf-w27h/GHSA-34pq-hxpf-w27h.json index fbccdaae715..033966dbbef 100644 --- a/advisories/unreviewed/2022/04/GHSA-34pq-hxpf-w27h/GHSA-34pq-hxpf-w27h.json +++ b/advisories/unreviewed/2022/04/GHSA-34pq-hxpf-w27h/GHSA-34pq-hxpf-w27h.json @@ -7,12 +7,8 @@ "CVE-2000-0365" ], "details": "Red Hat Linux 6.0 installs the /dev/pts file system with insecure modes, which allows local users to write to other tty devices.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-37qm-483g-mfv8/GHSA-37qm-483g-mfv8.json b/advisories/unreviewed/2022/04/GHSA-37qm-483g-mfv8/GHSA-37qm-483g-mfv8.json index f6598fca2b0..b6272ddfd65 100644 --- a/advisories/unreviewed/2022/04/GHSA-37qm-483g-mfv8/GHSA-37qm-483g-mfv8.json +++ b/advisories/unreviewed/2022/04/GHSA-37qm-483g-mfv8/GHSA-37qm-483g-mfv8.json @@ -7,12 +7,8 @@ "CVE-2000-0524" ], "details": "Microsoft Outlook and Outlook Express allow remote attackers to cause a denial of service by sending email messages with blank fields such as BCC, Reply-To, Return-Path, or From.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-396q-53q6-gx75/GHSA-396q-53q6-gx75.json b/advisories/unreviewed/2022/04/GHSA-396q-53q6-gx75/GHSA-396q-53q6-gx75.json index d48e4fd691e..18425267241 100644 --- a/advisories/unreviewed/2022/04/GHSA-396q-53q6-gx75/GHSA-396q-53q6-gx75.json +++ b/advisories/unreviewed/2022/04/GHSA-396q-53q6-gx75/GHSA-396q-53q6-gx75.json @@ -7,12 +7,8 @@ "CVE-2000-0520" ], "details": "Buffer overflow in restore program 0.4b17 and earlier in dump package allows local users to execute arbitrary commands via a long tape name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3h8r-hv7f-jgcx/GHSA-3h8r-hv7f-jgcx.json b/advisories/unreviewed/2022/04/GHSA-3h8r-hv7f-jgcx/GHSA-3h8r-hv7f-jgcx.json index 2301be4364b..5a26b3c76ed 100644 --- a/advisories/unreviewed/2022/04/GHSA-3h8r-hv7f-jgcx/GHSA-3h8r-hv7f-jgcx.json +++ b/advisories/unreviewed/2022/04/GHSA-3h8r-hv7f-jgcx/GHSA-3h8r-hv7f-jgcx.json @@ -7,12 +7,8 @@ "CVE-2000-0503" ], "details": "The IFRAME of the WebBrowser control in Internet Explorer 5.01 allows a remote attacker to violate the cross frame security policy via the NavigateComplete2 event.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3hmx-5jq6-252x/GHSA-3hmx-5jq6-252x.json b/advisories/unreviewed/2022/04/GHSA-3hmx-5jq6-252x/GHSA-3hmx-5jq6-252x.json index 5b8e6c5d403..1c0aa679ac7 100644 --- a/advisories/unreviewed/2022/04/GHSA-3hmx-5jq6-252x/GHSA-3hmx-5jq6-252x.json +++ b/advisories/unreviewed/2022/04/GHSA-3hmx-5jq6-252x/GHSA-3hmx-5jq6-252x.json @@ -7,12 +7,8 @@ "CVE-2000-0427" ], "details": "The Aladdin Knowledge Systems eToken device allows attackers with physical access to the device to obtain sensitive information without knowing the PIN of the owner by resetting the PIN in the EEPROM.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3j2h-fq3g-cjhp/GHSA-3j2h-fq3g-cjhp.json b/advisories/unreviewed/2022/04/GHSA-3j2h-fq3g-cjhp/GHSA-3j2h-fq3g-cjhp.json index 2db7922885d..9f74ff9acb3 100644 --- a/advisories/unreviewed/2022/04/GHSA-3j2h-fq3g-cjhp/GHSA-3j2h-fq3g-cjhp.json +++ b/advisories/unreviewed/2022/04/GHSA-3j2h-fq3g-cjhp/GHSA-3j2h-fq3g-cjhp.json @@ -7,12 +7,8 @@ "CVE-2000-0460" ], "details": "Buffer overflow in KDE kdesud on Linux allows local uses to gain privileges via a long DISPLAY environmental variable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3r2c-g2rm-78cq/GHSA-3r2c-g2rm-78cq.json b/advisories/unreviewed/2022/04/GHSA-3r2c-g2rm-78cq/GHSA-3r2c-g2rm-78cq.json index 93d12e5d4c3..b440a3c886b 100644 --- a/advisories/unreviewed/2022/04/GHSA-3r2c-g2rm-78cq/GHSA-3r2c-g2rm-78cq.json +++ b/advisories/unreviewed/2022/04/GHSA-3r2c-g2rm-78cq/GHSA-3r2c-g2rm-78cq.json @@ -7,12 +7,8 @@ "CVE-2000-0473" ], "details": "Buffer overflow in AnalogX SimpleServer 1.05 allows a remote attacker to cause a denial of service via a long GET request for a program in the cgi-bin directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3rvg-g59j-rvrh/GHSA-3rvg-g59j-rvrh.json b/advisories/unreviewed/2022/04/GHSA-3rvg-g59j-rvrh/GHSA-3rvg-g59j-rvrh.json index 4e5bead2410..caacea61796 100644 --- a/advisories/unreviewed/2022/04/GHSA-3rvg-g59j-rvrh/GHSA-3rvg-g59j-rvrh.json +++ b/advisories/unreviewed/2022/04/GHSA-3rvg-g59j-rvrh/GHSA-3rvg-g59j-rvrh.json @@ -7,12 +7,8 @@ "CVE-2000-0385" ], "details": "FileMaker Pro 5 Web Companion allows remote attackers to bypass Field-Level database security restrictions via the XML publishing or email capabilities.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-46x7-g574-2w2v/GHSA-46x7-g574-2w2v.json b/advisories/unreviewed/2022/04/GHSA-46x7-g574-2w2v/GHSA-46x7-g574-2w2v.json index 95c57209629..56ff7df0e5e 100644 --- a/advisories/unreviewed/2022/04/GHSA-46x7-g574-2w2v/GHSA-46x7-g574-2w2v.json +++ b/advisories/unreviewed/2022/04/GHSA-46x7-g574-2w2v/GHSA-46x7-g574-2w2v.json @@ -7,12 +7,8 @@ "CVE-2000-0414" ], "details": "Vulnerability in shutdown command for HP-UX 11.X and 10.X allows allows local users to gain privileges via malformed input variables.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4c68-92p7-xggr/GHSA-4c68-92p7-xggr.json b/advisories/unreviewed/2022/04/GHSA-4c68-92p7-xggr/GHSA-4c68-92p7-xggr.json index 6ce87d20b4d..f52bc1c9077 100644 --- a/advisories/unreviewed/2022/04/GHSA-4c68-92p7-xggr/GHSA-4c68-92p7-xggr.json +++ b/advisories/unreviewed/2022/04/GHSA-4c68-92p7-xggr/GHSA-4c68-92p7-xggr.json @@ -7,12 +7,8 @@ "CVE-2000-0452" ], "details": "Buffer overflow in the ESMTP service of Lotus Domino Server 5.0.1 allows remote attackers to cause a denial of service via a long MAIL FROM command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4jvw-4fhr-v7mv/GHSA-4jvw-4fhr-v7mv.json b/advisories/unreviewed/2022/04/GHSA-4jvw-4fhr-v7mv/GHSA-4jvw-4fhr-v7mv.json index 93e3fa4ab72..9f135544ffe 100644 --- a/advisories/unreviewed/2022/04/GHSA-4jvw-4fhr-v7mv/GHSA-4jvw-4fhr-v7mv.json +++ b/advisories/unreviewed/2022/04/GHSA-4jvw-4fhr-v7mv/GHSA-4jvw-4fhr-v7mv.json @@ -7,12 +7,8 @@ "CVE-2000-0389" ], "details": "Buffer overflow in krb_rd_req function in Kerberos 4 and 5 allows remote attackers to gain root privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4rcm-2c69-4jh9/GHSA-4rcm-2c69-4jh9.json b/advisories/unreviewed/2022/04/GHSA-4rcm-2c69-4jh9/GHSA-4rcm-2c69-4jh9.json index 8c5f86c42d8..d73beddf33c 100644 --- a/advisories/unreviewed/2022/04/GHSA-4rcm-2c69-4jh9/GHSA-4rcm-2c69-4jh9.json +++ b/advisories/unreviewed/2022/04/GHSA-4rcm-2c69-4jh9/GHSA-4rcm-2c69-4jh9.json @@ -7,12 +7,8 @@ "CVE-2000-0439" ], "details": "Internet Explorer 4.0 and 5.0 allows a malicious web site to obtain client cookies from another domain by including that domain name and escaped characters in a URL, aka the \"Unauthorized Cookie Access\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4x6c-6ppx-5vjq/GHSA-4x6c-6ppx-5vjq.json b/advisories/unreviewed/2022/04/GHSA-4x6c-6ppx-5vjq/GHSA-4x6c-6ppx-5vjq.json index 1aec3b41e10..adb988337d2 100644 --- a/advisories/unreviewed/2022/04/GHSA-4x6c-6ppx-5vjq/GHSA-4x6c-6ppx-5vjq.json +++ b/advisories/unreviewed/2022/04/GHSA-4x6c-6ppx-5vjq/GHSA-4x6c-6ppx-5vjq.json @@ -7,12 +7,8 @@ "CVE-2000-0406" ], "details": "Netscape Communicator before version 4.73 and Navigator 4.07 do not properly validate SSL certificates, which allows remote attackers to steal information by redirecting traffic from a legitimate web server to their own malicious server, aka the \"Acros-Suencksen SSL\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4xc4-j2qx-w95p/GHSA-4xc4-j2qx-w95p.json b/advisories/unreviewed/2022/04/GHSA-4xc4-j2qx-w95p/GHSA-4xc4-j2qx-w95p.json index d62ed8d6a60..1691c80cd2b 100644 --- a/advisories/unreviewed/2022/04/GHSA-4xc4-j2qx-w95p/GHSA-4xc4-j2qx-w95p.json +++ b/advisories/unreviewed/2022/04/GHSA-4xc4-j2qx-w95p/GHSA-4xc4-j2qx-w95p.json @@ -7,12 +7,8 @@ "CVE-2000-0468" ], "details": "man in HP-UX 10.20 and 11 allows local attackers to overwrite files via a symlink attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-52fg-2wrh-pq8q/GHSA-52fg-2wrh-pq8q.json b/advisories/unreviewed/2022/04/GHSA-52fg-2wrh-pq8q/GHSA-52fg-2wrh-pq8q.json index f9f0e4b54e4..a03b9870b58 100644 --- a/advisories/unreviewed/2022/04/GHSA-52fg-2wrh-pq8q/GHSA-52fg-2wrh-pq8q.json +++ b/advisories/unreviewed/2022/04/GHSA-52fg-2wrh-pq8q/GHSA-52fg-2wrh-pq8q.json @@ -7,12 +7,8 @@ "CVE-2000-0383" ], "details": "The file transfer component of AOL Instant Messenger (AIM) reveals the physical path of the transferred file to the remote recipient.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-52wv-9457-3g76/GHSA-52wv-9457-3g76.json b/advisories/unreviewed/2022/04/GHSA-52wv-9457-3g76/GHSA-52wv-9457-3g76.json index e33d7fb9789..ce913c77344 100644 --- a/advisories/unreviewed/2022/04/GHSA-52wv-9457-3g76/GHSA-52wv-9457-3g76.json +++ b/advisories/unreviewed/2022/04/GHSA-52wv-9457-3g76/GHSA-52wv-9457-3g76.json @@ -7,12 +7,8 @@ "CVE-2000-0551" ], "details": "The file transfer mechanism in Danware NetOp 6.0 does not provide authentication, which allows remote attackers to access and modify arbitrary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-538h-25m5-6jrw/GHSA-538h-25m5-6jrw.json b/advisories/unreviewed/2022/04/GHSA-538h-25m5-6jrw/GHSA-538h-25m5-6jrw.json index 7ec3bb3a264..533037e8759 100644 --- a/advisories/unreviewed/2022/04/GHSA-538h-25m5-6jrw/GHSA-538h-25m5-6jrw.json +++ b/advisories/unreviewed/2022/04/GHSA-538h-25m5-6jrw/GHSA-538h-25m5-6jrw.json @@ -7,12 +7,8 @@ "CVE-2000-0492" ], "details": "PassWD 1.2 uses weak encryption (trivial encoding) to store passwords, which allows an attacker who can read the password file to easliy decrypt the passwords.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-53rp-c272-jw32/GHSA-53rp-c272-jw32.json b/advisories/unreviewed/2022/04/GHSA-53rp-c272-jw32/GHSA-53rp-c272-jw32.json index a2f7a1371ba..ec4f4e5049f 100644 --- a/advisories/unreviewed/2022/04/GHSA-53rp-c272-jw32/GHSA-53rp-c272-jw32.json +++ b/advisories/unreviewed/2022/04/GHSA-53rp-c272-jw32/GHSA-53rp-c272-jw32.json @@ -7,12 +7,8 @@ "CVE-2000-0420" ], "details": "The default configuration of SYSKEY in Windows 2000 stores the startup key in the registry, which could allow an attacker tor ecover it and use it to decrypt Encrypted File System (EFS) data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-547x-fp54-q9j3/GHSA-547x-fp54-q9j3.json b/advisories/unreviewed/2022/04/GHSA-547x-fp54-q9j3/GHSA-547x-fp54-q9j3.json index b524b73c00e..b5fe7b98045 100644 --- a/advisories/unreviewed/2022/04/GHSA-547x-fp54-q9j3/GHSA-547x-fp54-q9j3.json +++ b/advisories/unreviewed/2022/04/GHSA-547x-fp54-q9j3/GHSA-547x-fp54-q9j3.json @@ -7,12 +7,8 @@ "CVE-2000-0474" ], "details": "Real Networks RealServer 7.x allows remote attackers to cause a denial of service via a malformed request for a page in the viewsource directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-567r-hhw5-gfvq/GHSA-567r-hhw5-gfvq.json b/advisories/unreviewed/2022/04/GHSA-567r-hhw5-gfvq/GHSA-567r-hhw5-gfvq.json index 66be41d90e0..e08d4c38d08 100644 --- a/advisories/unreviewed/2022/04/GHSA-567r-hhw5-gfvq/GHSA-567r-hhw5-gfvq.json +++ b/advisories/unreviewed/2022/04/GHSA-567r-hhw5-gfvq/GHSA-567r-hhw5-gfvq.json @@ -7,12 +7,8 @@ "CVE-2000-0401" ], "details": "Buffer overflows in redirect.exe and changepw.exe in PDGSoft shopping cart allow remote attackers to execute arbitrary commands via a long query string.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-58qg-hjfp-7643/GHSA-58qg-hjfp-7643.json b/advisories/unreviewed/2022/04/GHSA-58qg-hjfp-7643/GHSA-58qg-hjfp-7643.json index f6250b5c121..4525fdd8120 100644 --- a/advisories/unreviewed/2022/04/GHSA-58qg-hjfp-7643/GHSA-58qg-hjfp-7643.json +++ b/advisories/unreviewed/2022/04/GHSA-58qg-hjfp-7643/GHSA-58qg-hjfp-7643.json @@ -7,12 +7,8 @@ "CVE-2000-0489" ], "details": "FreeBSD, NetBSD, and OpenBSD allow an attacker to cause a denial of service by creating a large number of socket pairs using the socketpair function, setting a large buffer size via setsockopt, then writing large buffers.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5949-54q2-grjg/GHSA-5949-54q2-grjg.json b/advisories/unreviewed/2022/04/GHSA-5949-54q2-grjg/GHSA-5949-54q2-grjg.json index e5122c60d2f..4ab20feecb1 100644 --- a/advisories/unreviewed/2022/04/GHSA-5949-54q2-grjg/GHSA-5949-54q2-grjg.json +++ b/advisories/unreviewed/2022/04/GHSA-5949-54q2-grjg/GHSA-5949-54q2-grjg.json @@ -7,12 +7,8 @@ "CVE-2000-0378" ], "details": "The pam_console PAM module in Linux systems performs a chown on various devices upon a user login, but an open file descriptor for those devices can be maintained after the user logs out, which allows that user to sniff activity on these devices when subsequent users log in.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5984-j2rg-qm7x/GHSA-5984-j2rg-qm7x.json b/advisories/unreviewed/2022/04/GHSA-5984-j2rg-qm7x/GHSA-5984-j2rg-qm7x.json index 3b90115c5ae..d40328fb5e0 100644 --- a/advisories/unreviewed/2022/04/GHSA-5984-j2rg-qm7x/GHSA-5984-j2rg-qm7x.json +++ b/advisories/unreviewed/2022/04/GHSA-5984-j2rg-qm7x/GHSA-5984-j2rg-qm7x.json @@ -7,12 +7,8 @@ "CVE-2000-0425" ], "details": "Buffer overflow in the Web Archives component of L-Soft LISTSERV 1.8 allows remote attackers to execute arbitrary commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5fqp-4gw6-3ph8/GHSA-5fqp-4gw6-3ph8.json b/advisories/unreviewed/2022/04/GHSA-5fqp-4gw6-3ph8/GHSA-5fqp-4gw6-3ph8.json index 6deb553418d..413d60ac596 100644 --- a/advisories/unreviewed/2022/04/GHSA-5fqp-4gw6-3ph8/GHSA-5fqp-4gw6-3ph8.json +++ b/advisories/unreviewed/2022/04/GHSA-5fqp-4gw6-3ph8/GHSA-5fqp-4gw6-3ph8.json @@ -7,12 +7,8 @@ "CVE-2000-0450" ], "details": "Vulnerability in bbd server in Big Brother System and Network Monitor allows an attacker to execute arbitrary commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-682g-mjx4-8wwv/GHSA-682g-mjx4-8wwv.json b/advisories/unreviewed/2022/04/GHSA-682g-mjx4-8wwv/GHSA-682g-mjx4-8wwv.json index 07e12b04fd5..deb357778f6 100644 --- a/advisories/unreviewed/2022/04/GHSA-682g-mjx4-8wwv/GHSA-682g-mjx4-8wwv.json +++ b/advisories/unreviewed/2022/04/GHSA-682g-mjx4-8wwv/GHSA-682g-mjx4-8wwv.json @@ -7,12 +7,8 @@ "CVE-2000-0485" ], "details": "Microsoft SQL Server allows local users to obtain database passwords via the Data Transformation Service (DTS) package Properties dialog, aka the \"DTS Password\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-697w-964q-395w/GHSA-697w-964q-395w.json b/advisories/unreviewed/2022/04/GHSA-697w-964q-395w/GHSA-697w-964q-395w.json index 375f99fa09a..c3187ba84c9 100644 --- a/advisories/unreviewed/2022/04/GHSA-697w-964q-395w/GHSA-697w-964q-395w.json +++ b/advisories/unreviewed/2022/04/GHSA-697w-964q-395w/GHSA-697w-964q-395w.json @@ -7,12 +7,8 @@ "CVE-2000-0501" ], "details": "Race condition in MDaemon 2.8.5.0 POP server allows local users to cause a denial of service by entering a UIDL command and quickly exiting the server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6cjc-9cq5-fc4r/GHSA-6cjc-9cq5-fc4r.json b/advisories/unreviewed/2022/04/GHSA-6cjc-9cq5-fc4r/GHSA-6cjc-9cq5-fc4r.json index a5ddaa1af9d..c5c0d60d08a 100644 --- a/advisories/unreviewed/2022/04/GHSA-6cjc-9cq5-fc4r/GHSA-6cjc-9cq5-fc4r.json +++ b/advisories/unreviewed/2022/04/GHSA-6cjc-9cq5-fc4r/GHSA-6cjc-9cq5-fc4r.json @@ -7,12 +7,8 @@ "CVE-2000-0459" ], "details": "IMP does not remove files properly if the MSWordView application quits, which allows local users to cause a denial of service by filling up the disk space by requesting a large number of documents and prematurely stopping the request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6cjw-cjmh-r6rm/GHSA-6cjw-cjmh-r6rm.json b/advisories/unreviewed/2022/04/GHSA-6cjw-cjmh-r6rm/GHSA-6cjw-cjmh-r6rm.json index 3b510620f87..09214770969 100644 --- a/advisories/unreviewed/2022/04/GHSA-6cjw-cjmh-r6rm/GHSA-6cjw-cjmh-r6rm.json +++ b/advisories/unreviewed/2022/04/GHSA-6cjw-cjmh-r6rm/GHSA-6cjw-cjmh-r6rm.json @@ -7,12 +7,8 @@ "CVE-2000-0467" ], "details": "Buffer overflow in Linux splitvt 1.6.3 and earlier allows local users to gain root privileges via a long password in the screen locking function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6fq7-3q96-vw9x/GHSA-6fq7-3q96-vw9x.json b/advisories/unreviewed/2022/04/GHSA-6fq7-3q96-vw9x/GHSA-6fq7-3q96-vw9x.json index efe3c776ae1..54337538b3f 100644 --- a/advisories/unreviewed/2022/04/GHSA-6fq7-3q96-vw9x/GHSA-6fq7-3q96-vw9x.json +++ b/advisories/unreviewed/2022/04/GHSA-6fq7-3q96-vw9x/GHSA-6fq7-3q96-vw9x.json @@ -7,12 +7,8 @@ "CVE-2000-0426" ], "details": "UltraBoard 1.6 and other versions allow remote attackers to cause a denial of service by referencing UltraBoard in the Session parameter, which causes UltraBoard to fork copies of itself.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6wjf-4887-cj22/GHSA-6wjf-4887-cj22.json b/advisories/unreviewed/2022/04/GHSA-6wjf-4887-cj22/GHSA-6wjf-4887-cj22.json index 6af2b4b42f2..30ebe9c1b5b 100644 --- a/advisories/unreviewed/2022/04/GHSA-6wjf-4887-cj22/GHSA-6wjf-4887-cj22.json +++ b/advisories/unreviewed/2022/04/GHSA-6wjf-4887-cj22/GHSA-6wjf-4887-cj22.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-73vq-vfrf-93x8/GHSA-73vq-vfrf-93x8.json b/advisories/unreviewed/2022/04/GHSA-73vq-vfrf-93x8/GHSA-73vq-vfrf-93x8.json index 8110b39ce79..dcccf50d08d 100644 --- a/advisories/unreviewed/2022/04/GHSA-73vq-vfrf-93x8/GHSA-73vq-vfrf-93x8.json +++ b/advisories/unreviewed/2022/04/GHSA-73vq-vfrf-93x8/GHSA-73vq-vfrf-93x8.json @@ -7,12 +7,8 @@ "CVE-2000-0396" ], "details": "The add.exe program in the Carello shopping cart software allows remote attackers to duplicate files on the server, which could allow the attacker to read source code for web scripts such as .ASP files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-765g-qxmj-pjrx/GHSA-765g-qxmj-pjrx.json b/advisories/unreviewed/2022/04/GHSA-765g-qxmj-pjrx/GHSA-765g-qxmj-pjrx.json index 01ead122c61..c13d20125f8 100644 --- a/advisories/unreviewed/2022/04/GHSA-765g-qxmj-pjrx/GHSA-765g-qxmj-pjrx.json +++ b/advisories/unreviewed/2022/04/GHSA-765g-qxmj-pjrx/GHSA-765g-qxmj-pjrx.json @@ -7,12 +7,8 @@ "CVE-2000-0384" ], "details": "NetStructure 7110 and 7180 have undocumented accounts (servnow, root, and wizard) whose passwords are easily guessable from the NetStructure's MAC address, which could allow remote attackers to gain root access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7755-v4fr-vrxx/GHSA-7755-v4fr-vrxx.json b/advisories/unreviewed/2022/04/GHSA-7755-v4fr-vrxx/GHSA-7755-v4fr-vrxx.json index fd37d0b418d..ffb54dd4786 100644 --- a/advisories/unreviewed/2022/04/GHSA-7755-v4fr-vrxx/GHSA-7755-v4fr-vrxx.json +++ b/advisories/unreviewed/2022/04/GHSA-7755-v4fr-vrxx/GHSA-7755-v4fr-vrxx.json @@ -7,12 +7,8 @@ "CVE-2000-0444" ], "details": "HP Web JetAdmin 6.0 allows remote attackers to cause a denial of service via a malformed URL to port 8000.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-78jm-gvg2-2jfx/GHSA-78jm-gvg2-2jfx.json b/advisories/unreviewed/2022/04/GHSA-78jm-gvg2-2jfx/GHSA-78jm-gvg2-2jfx.json index 7cc852d5f4b..59a1d36b7dd 100644 --- a/advisories/unreviewed/2022/04/GHSA-78jm-gvg2-2jfx/GHSA-78jm-gvg2-2jfx.json +++ b/advisories/unreviewed/2022/04/GHSA-78jm-gvg2-2jfx/GHSA-78jm-gvg2-2jfx.json @@ -7,12 +7,8 @@ "CVE-2000-0514" ], "details": "GSSFTP FTP daemon in Kerberos 5 1.1.x does not properly restrict access to some FTP commands, which allows remote attackers to cause a denial of service, and local users to gain root privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-79hc-q675-w3mx/GHSA-79hc-q675-w3mx.json b/advisories/unreviewed/2022/04/GHSA-79hc-q675-w3mx/GHSA-79hc-q675-w3mx.json index a2949b6a388..e21f7fff576 100644 --- a/advisories/unreviewed/2022/04/GHSA-79hc-q675-w3mx/GHSA-79hc-q675-w3mx.json +++ b/advisories/unreviewed/2022/04/GHSA-79hc-q675-w3mx/GHSA-79hc-q675-w3mx.json @@ -7,12 +7,8 @@ "CVE-2000-0526" ], "details": "mailview.cgi CGI program in MailStudio 2000 2.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7h84-xvh7-f4r4/GHSA-7h84-xvh7-f4r4.json b/advisories/unreviewed/2022/04/GHSA-7h84-xvh7-f4r4/GHSA-7h84-xvh7-f4r4.json index 3b8ec66f23a..ae73a9e6acd 100644 --- a/advisories/unreviewed/2022/04/GHSA-7h84-xvh7-f4r4/GHSA-7h84-xvh7-f4r4.json +++ b/advisories/unreviewed/2022/04/GHSA-7h84-xvh7-f4r4/GHSA-7h84-xvh7-f4r4.json @@ -7,12 +7,8 @@ "CVE-2000-0535" ], "details": "OpenSSL 0.9.4 and OpenSSH for FreeBSD do not properly check for the existence of the /dev/random or /dev/urandom devices, which are absent on FreeBSD Alpha systems, which causes them to produce weak keys which may be more easily broken.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7pwx-75rm-fxfq/GHSA-7pwx-75rm-fxfq.json b/advisories/unreviewed/2022/04/GHSA-7pwx-75rm-fxfq/GHSA-7pwx-75rm-fxfq.json index 937597f591a..ebdf2b719e1 100644 --- a/advisories/unreviewed/2022/04/GHSA-7pwx-75rm-fxfq/GHSA-7pwx-75rm-fxfq.json +++ b/advisories/unreviewed/2022/04/GHSA-7pwx-75rm-fxfq/GHSA-7pwx-75rm-fxfq.json @@ -7,12 +7,8 @@ "CVE-2000-0515" ], "details": "The snmpd.conf configuration file for the SNMP daemon (snmpd) in HP-UX 11.0 is world writable, which allows local users to modify SNMP configuration or gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7qpm-q5rp-cvqf/GHSA-7qpm-q5rp-cvqf.json b/advisories/unreviewed/2022/04/GHSA-7qpm-q5rp-cvqf/GHSA-7qpm-q5rp-cvqf.json index fba1e45678b..ba1bf31fe8d 100644 --- a/advisories/unreviewed/2022/04/GHSA-7qpm-q5rp-cvqf/GHSA-7qpm-q5rp-cvqf.json +++ b/advisories/unreviewed/2022/04/GHSA-7qpm-q5rp-cvqf/GHSA-7qpm-q5rp-cvqf.json @@ -7,12 +7,8 @@ "CVE-2000-0431" ], "details": "Cobalt RaQ2 and RaQ3 does not properly set the access permissions and ownership for files that are uploaded via FrontPage, which allows attackers to bypass cgiwrap and modify files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7whv-c26v-wrw2/GHSA-7whv-c26v-wrw2.json b/advisories/unreviewed/2022/04/GHSA-7whv-c26v-wrw2/GHSA-7whv-c26v-wrw2.json index 56303a9e9ca..1465edbebbf 100644 --- a/advisories/unreviewed/2022/04/GHSA-7whv-c26v-wrw2/GHSA-7whv-c26v-wrw2.json +++ b/advisories/unreviewed/2022/04/GHSA-7whv-c26v-wrw2/GHSA-7whv-c26v-wrw2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-88gq-r6mm-hr99/GHSA-88gq-r6mm-hr99.json b/advisories/unreviewed/2022/04/GHSA-88gq-r6mm-hr99/GHSA-88gq-r6mm-hr99.json index 5fa5deae4cb..9a651883395 100644 --- a/advisories/unreviewed/2022/04/GHSA-88gq-r6mm-hr99/GHSA-88gq-r6mm-hr99.json +++ b/advisories/unreviewed/2022/04/GHSA-88gq-r6mm-hr99/GHSA-88gq-r6mm-hr99.json @@ -7,12 +7,8 @@ "CVE-2000-0502" ], "details": "Mcafee VirusScan 4.03 does not properly restrict access to the alert text file before it is sent to the Central Alert Server, which allows local users to modify alerts in an arbitrary fashion.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-93w2-mg33-r998/GHSA-93w2-mg33-r998.json b/advisories/unreviewed/2022/04/GHSA-93w2-mg33-r998/GHSA-93w2-mg33-r998.json index bac460978bb..13f44947595 100644 --- a/advisories/unreviewed/2022/04/GHSA-93w2-mg33-r998/GHSA-93w2-mg33-r998.json +++ b/advisories/unreviewed/2022/04/GHSA-93w2-mg33-r998/GHSA-93w2-mg33-r998.json @@ -7,12 +7,8 @@ "CVE-2000-0527" ], "details": "userreg.cgi CGI program in MailStudio 2000 2.0 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9729-395c-wp97/GHSA-9729-395c-wp97.json b/advisories/unreviewed/2022/04/GHSA-9729-395c-wp97/GHSA-9729-395c-wp97.json index d580dce5651..84079331260 100644 --- a/advisories/unreviewed/2022/04/GHSA-9729-395c-wp97/GHSA-9729-395c-wp97.json +++ b/advisories/unreviewed/2022/04/GHSA-9729-395c-wp97/GHSA-9729-395c-wp97.json @@ -7,12 +7,8 @@ "CVE-2000-0441" ], "details": "Vulnerability in AIX 3.2.x and 4.x allows local users to gain write access to files on locally or remotely mounted AIX filesystems.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-976v-3xrm-785r/GHSA-976v-3xrm-785r.json b/advisories/unreviewed/2022/04/GHSA-976v-3xrm-785r/GHSA-976v-3xrm-785r.json index b32054ee5bc..19b712e4a00 100644 --- a/advisories/unreviewed/2022/04/GHSA-976v-3xrm-785r/GHSA-976v-3xrm-785r.json +++ b/advisories/unreviewed/2022/04/GHSA-976v-3xrm-785r/GHSA-976v-3xrm-785r.json @@ -7,12 +7,8 @@ "CVE-2000-0470" ], "details": "Allegro RomPager HTTP server allows remote attackers to cause a denial of service via a malformed authentication request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-998v-2qg9-284c/GHSA-998v-2qg9-284c.json b/advisories/unreviewed/2022/04/GHSA-998v-2qg9-284c/GHSA-998v-2qg9-284c.json index 279ab1104b9..55a6353034a 100644 --- a/advisories/unreviewed/2022/04/GHSA-998v-2qg9-284c/GHSA-998v-2qg9-284c.json +++ b/advisories/unreviewed/2022/04/GHSA-998v-2qg9-284c/GHSA-998v-2qg9-284c.json @@ -7,12 +7,8 @@ "CVE-2000-0423" ], "details": "Buffer overflow in Netwin DNEWSWEB CGI program allows remote attackers to execute arbitrary commands via long parameters such as group, cmd, and utag.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9jwp-q2wm-62wh/GHSA-9jwp-q2wm-62wh.json b/advisories/unreviewed/2022/04/GHSA-9jwp-q2wm-62wh/GHSA-9jwp-q2wm-62wh.json index 2e06b9b8cf6..50a40c2a1f3 100644 --- a/advisories/unreviewed/2022/04/GHSA-9jwp-q2wm-62wh/GHSA-9jwp-q2wm-62wh.json +++ b/advisories/unreviewed/2022/04/GHSA-9jwp-q2wm-62wh/GHSA-9jwp-q2wm-62wh.json @@ -7,12 +7,8 @@ "CVE-2000-0392" ], "details": "Buffer overflow in ksu in Kerberos 5 allows local users to gain root privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c22c-879v-fc62/GHSA-c22c-879v-fc62.json b/advisories/unreviewed/2022/04/GHSA-c22c-879v-fc62/GHSA-c22c-879v-fc62.json index 5af71b9ec93..20b4a91090c 100644 --- a/advisories/unreviewed/2022/04/GHSA-c22c-879v-fc62/GHSA-c22c-879v-fc62.json +++ b/advisories/unreviewed/2022/04/GHSA-c22c-879v-fc62/GHSA-c22c-879v-fc62.json @@ -7,12 +7,8 @@ "CVE-2000-0536" ], "details": "xinetd 2.1.8.x does not properly restrict connections if hostnames are used for access control and the connecting host does not have a reverse DNS entry.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c2w5-h6v5-wf8j/GHSA-c2w5-h6v5-wf8j.json b/advisories/unreviewed/2022/04/GHSA-c2w5-h6v5-wf8j/GHSA-c2w5-h6v5-wf8j.json index 01a7da5fc8e..0e111e8c222 100644 --- a/advisories/unreviewed/2022/04/GHSA-c2w5-h6v5-wf8j/GHSA-c2w5-h6v5-wf8j.json +++ b/advisories/unreviewed/2022/04/GHSA-c2w5-h6v5-wf8j/GHSA-c2w5-h6v5-wf8j.json @@ -7,12 +7,8 @@ "CVE-2000-0424" ], "details": "The CGI counter 4.0.7 by George Burgyan allows remote attackers to execute arbitrary commands via shell metacharacters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c62h-wfv7-hw42/GHSA-c62h-wfv7-hw42.json b/advisories/unreviewed/2022/04/GHSA-c62h-wfv7-hw42/GHSA-c62h-wfv7-hw42.json index f2056a07042..a1fc818328b 100644 --- a/advisories/unreviewed/2022/04/GHSA-c62h-wfv7-hw42/GHSA-c62h-wfv7-hw42.json +++ b/advisories/unreviewed/2022/04/GHSA-c62h-wfv7-hw42/GHSA-c62h-wfv7-hw42.json @@ -7,12 +7,8 @@ "CVE-2000-0417" ], "details": "The HTTP administration interface to the Cayman 3220-H DSL router allows remote attackers to cause a denial of service via a long username or password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-ccxh-933v-rq23/GHSA-ccxh-933v-rq23.json b/advisories/unreviewed/2022/04/GHSA-ccxh-933v-rq23/GHSA-ccxh-933v-rq23.json index 6576ba592ba..be32e3a0b39 100644 --- a/advisories/unreviewed/2022/04/GHSA-ccxh-933v-rq23/GHSA-ccxh-933v-rq23.json +++ b/advisories/unreviewed/2022/04/GHSA-ccxh-933v-rq23/GHSA-ccxh-933v-rq23.json @@ -7,12 +7,8 @@ "CVE-2000-0481" ], "details": "Buffer overflow in KDE Kmail allows a remote attacker to cause a denial of service via an attachment with a long file name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-chpc-74wh-x234/GHSA-chpc-74wh-x234.json b/advisories/unreviewed/2022/04/GHSA-chpc-74wh-x234/GHSA-chpc-74wh-x234.json index 6c9c9c64f2b..270214d51a2 100644 --- a/advisories/unreviewed/2022/04/GHSA-chpc-74wh-x234/GHSA-chpc-74wh-x234.json +++ b/advisories/unreviewed/2022/04/GHSA-chpc-74wh-x234/GHSA-chpc-74wh-x234.json @@ -7,12 +7,8 @@ "CVE-2000-0432" ], "details": "The calender.pl and the calendar_admin.pl calendar scripts by Matt Kruse allow remote attackers to execute arbitrary commands via shell metacharacters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cr5m-c8fx-9pvc/GHSA-cr5m-c8fx-9pvc.json b/advisories/unreviewed/2022/04/GHSA-cr5m-c8fx-9pvc/GHSA-cr5m-c8fx-9pvc.json index 0073721b12c..6f4db6ebf16 100644 --- a/advisories/unreviewed/2022/04/GHSA-cr5m-c8fx-9pvc/GHSA-cr5m-c8fx-9pvc.json +++ b/advisories/unreviewed/2022/04/GHSA-cr5m-c8fx-9pvc/GHSA-cr5m-c8fx-9pvc.json @@ -7,12 +7,8 @@ "CVE-2000-0454" ], "details": "Buffer overflow in Linux cdrecord allows local users to gain privileges via the dev parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f76v-57j8-425v/GHSA-f76v-57j8-425v.json b/advisories/unreviewed/2022/04/GHSA-f76v-57j8-425v/GHSA-f76v-57j8-425v.json index db5961002b2..47bd96237ed 100644 --- a/advisories/unreviewed/2022/04/GHSA-f76v-57j8-425v/GHSA-f76v-57j8-425v.json +++ b/advisories/unreviewed/2022/04/GHSA-f76v-57j8-425v/GHSA-f76v-57j8-425v.json @@ -7,12 +7,8 @@ "CVE-2000-0418" ], "details": "The Cayman 3220-H DSL router allows remote attackers to cause a denial of service via oversized ICMP echo (ping) requests.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f7w2-c6cq-8jqg/GHSA-f7w2-c6cq-8jqg.json b/advisories/unreviewed/2022/04/GHSA-f7w2-c6cq-8jqg/GHSA-f7w2-c6cq-8jqg.json index efcd91aab1f..fa380bfcc33 100644 --- a/advisories/unreviewed/2022/04/GHSA-f7w2-c6cq-8jqg/GHSA-f7w2-c6cq-8jqg.json +++ b/advisories/unreviewed/2022/04/GHSA-f7w2-c6cq-8jqg/GHSA-f7w2-c6cq-8jqg.json @@ -7,12 +7,8 @@ "CVE-2000-0466" ], "details": "AIX cdmount allows local users to gain root privileges via shell metacharacters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fcfq-f9jq-4c28/GHSA-fcfq-f9jq-4c28.json b/advisories/unreviewed/2022/04/GHSA-fcfq-f9jq-4c28/GHSA-fcfq-f9jq-4c28.json index bbd521381f6..7deca9bdfad 100644 --- a/advisories/unreviewed/2022/04/GHSA-fcfq-f9jq-4c28/GHSA-fcfq-f9jq-4c28.json +++ b/advisories/unreviewed/2022/04/GHSA-fcfq-f9jq-4c28/GHSA-fcfq-f9jq-4c28.json @@ -7,12 +7,8 @@ "CVE-2000-0415" ], "details": "Buffer overflow in Outlook Express 4.x allows attackers to cause a denial of service via a mail or news message that has a .jpg or .bmp attachment with a long file name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fff4-6jqp-pqh2/GHSA-fff4-6jqp-pqh2.json b/advisories/unreviewed/2022/04/GHSA-fff4-6jqp-pqh2/GHSA-fff4-6jqp-pqh2.json index 5e50be98561..aad77d8833e 100644 --- a/advisories/unreviewed/2022/04/GHSA-fff4-6jqp-pqh2/GHSA-fff4-6jqp-pqh2.json +++ b/advisories/unreviewed/2022/04/GHSA-fff4-6jqp-pqh2/GHSA-fff4-6jqp-pqh2.json @@ -7,12 +7,8 @@ "CVE-2000-0442" ], "details": "Qpopper 2.53 and earlier allows local users to gain privileges via a formatting string in the From: header, which is processed by the euidl command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fg2g-48g8-4xwm/GHSA-fg2g-48g8-4xwm.json b/advisories/unreviewed/2022/04/GHSA-fg2g-48g8-4xwm/GHSA-fg2g-48g8-4xwm.json index f332148a4b7..f8e0751dddf 100644 --- a/advisories/unreviewed/2022/04/GHSA-fg2g-48g8-4xwm/GHSA-fg2g-48g8-4xwm.json +++ b/advisories/unreviewed/2022/04/GHSA-fg2g-48g8-4xwm/GHSA-fg2g-48g8-4xwm.json @@ -7,12 +7,8 @@ "CVE-2000-0438" ], "details": "Buffer overflow in fdmount on Linux systems allows local users in the \"floppy\" group to execute arbitrary commands via a long mountpoint parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-frm5-658v-2f23/GHSA-frm5-658v-2f23.json b/advisories/unreviewed/2022/04/GHSA-frm5-658v-2f23/GHSA-frm5-658v-2f23.json index 38065de41e2..743f146f46e 100644 --- a/advisories/unreviewed/2022/04/GHSA-frm5-658v-2f23/GHSA-frm5-658v-2f23.json +++ b/advisories/unreviewed/2022/04/GHSA-frm5-658v-2f23/GHSA-frm5-658v-2f23.json @@ -7,12 +7,8 @@ "CVE-2000-0398" ], "details": "Buffer overflow in wconsole.dll in Rockliffe MailSite Management Agent allows remote attackers to execute arbitrary commands via a long query_string parameter in the HTTP GET request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g22v-2gp9-xpmh/GHSA-g22v-2gp9-xpmh.json b/advisories/unreviewed/2022/04/GHSA-g22v-2gp9-xpmh/GHSA-g22v-2gp9-xpmh.json index 7cd75dbf4ec..a53865206ee 100644 --- a/advisories/unreviewed/2022/04/GHSA-g22v-2gp9-xpmh/GHSA-g22v-2gp9-xpmh.json +++ b/advisories/unreviewed/2022/04/GHSA-g22v-2gp9-xpmh/GHSA-g22v-2gp9-xpmh.json @@ -7,12 +7,8 @@ "CVE-2000-0380" ], "details": "The IOS HTTP service in Cisco routers and switches running IOS 11.1 through 12.1 allows remote attackers to cause a denial of service by requesting a URL that contains a %% string.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-g344-mjvh-jcp5/GHSA-g344-mjvh-jcp5.json b/advisories/unreviewed/2022/04/GHSA-g344-mjvh-jcp5/GHSA-g344-mjvh-jcp5.json index c5a4d1b0190..4ef3b24c126 100644 --- a/advisories/unreviewed/2022/04/GHSA-g344-mjvh-jcp5/GHSA-g344-mjvh-jcp5.json +++ b/advisories/unreviewed/2022/04/GHSA-g344-mjvh-jcp5/GHSA-g344-mjvh-jcp5.json @@ -7,12 +7,8 @@ "CVE-2000-0518" ], "details": "Internet Explorer 4.x and 5.x does not properly verify all contents of an SSL certificate if a connection is made to the server via an image or a frame, aka one of two different \"SSL Certificate Validation\" vulnerabilities.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g58c-99hx-fmc6/GHSA-g58c-99hx-fmc6.json b/advisories/unreviewed/2022/04/GHSA-g58c-99hx-fmc6/GHSA-g58c-99hx-fmc6.json index f17afc0307e..6b049e07bfe 100644 --- a/advisories/unreviewed/2022/04/GHSA-g58c-99hx-fmc6/GHSA-g58c-99hx-fmc6.json +++ b/advisories/unreviewed/2022/04/GHSA-g58c-99hx-fmc6/GHSA-g58c-99hx-fmc6.json @@ -7,12 +7,8 @@ "CVE-2000-0448" ], "details": "The WebShield SMTP Management Tool version 4.5.44 does not properly restrict access to the management port when an IP address does not resolve to a hostname, which allows remote attackers to access the configuration via the GET_CONFIG command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g5jc-xm45-6763/GHSA-g5jc-xm45-6763.json b/advisories/unreviewed/2022/04/GHSA-g5jc-xm45-6763/GHSA-g5jc-xm45-6763.json index ca12b08e9c2..26883a6a86a 100644 --- a/advisories/unreviewed/2022/04/GHSA-g5jc-xm45-6763/GHSA-g5jc-xm45-6763.json +++ b/advisories/unreviewed/2022/04/GHSA-g5jc-xm45-6763/GHSA-g5jc-xm45-6763.json @@ -7,12 +7,8 @@ "CVE-2000-0419" ], "details": "The Office 2000 UA ActiveX Control is marked as \"safe for scripting,\" which allows remote attackers to conduct unauthorized activities via the \"Show Me\" function in Office Help, aka the \"Office 2000 UA Control\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g5m7-gw4j-cjhj/GHSA-g5m7-gw4j-cjhj.json b/advisories/unreviewed/2022/04/GHSA-g5m7-gw4j-cjhj/GHSA-g5m7-gw4j-cjhj.json index 2a32882444e..41f84d22795 100644 --- a/advisories/unreviewed/2022/04/GHSA-g5m7-gw4j-cjhj/GHSA-g5m7-gw4j-cjhj.json +++ b/advisories/unreviewed/2022/04/GHSA-g5m7-gw4j-cjhj/GHSA-g5m7-gw4j-cjhj.json @@ -7,12 +7,8 @@ "CVE-2000-0486" ], "details": "Buffer overflow in Cisco TACACS+ tac_plus server allows remote attackers to cause a denial of service via a malformed packet with a long length field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g5p4-qw97-m7r5/GHSA-g5p4-qw97-m7r5.json b/advisories/unreviewed/2022/04/GHSA-g5p4-qw97-m7r5/GHSA-g5p4-qw97-m7r5.json index 5455989a514..a4047df785a 100644 --- a/advisories/unreviewed/2022/04/GHSA-g5p4-qw97-m7r5/GHSA-g5p4-qw97-m7r5.json +++ b/advisories/unreviewed/2022/04/GHSA-g5p4-qw97-m7r5/GHSA-g5p4-qw97-m7r5.json @@ -7,12 +7,8 @@ "CVE-2000-0395" ], "details": "Buffer overflow in CProxy 3.3 allows remote users to cause a denial of service via a long HTTP request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g6jp-h358-2v9g/GHSA-g6jp-h358-2v9g.json b/advisories/unreviewed/2022/04/GHSA-g6jp-h358-2v9g/GHSA-g6jp-h358-2v9g.json index 6883f6cdf8b..62717cea368 100644 --- a/advisories/unreviewed/2022/04/GHSA-g6jp-h358-2v9g/GHSA-g6jp-h358-2v9g.json +++ b/advisories/unreviewed/2022/04/GHSA-g6jp-h358-2v9g/GHSA-g6jp-h358-2v9g.json @@ -7,12 +7,8 @@ "CVE-2000-0484" ], "details": "Small HTTP Server ver 3.06 contains a memory corruption bug causing a memory overflow. The overflowed buffer crashes into a Structured Exception Handler resulting in a Denial of Service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g827-fm54-46xv/GHSA-g827-fm54-46xv.json b/advisories/unreviewed/2022/04/GHSA-g827-fm54-46xv/GHSA-g827-fm54-46xv.json index 5899c3f6943..4f7ae807d2d 100644 --- a/advisories/unreviewed/2022/04/GHSA-g827-fm54-46xv/GHSA-g827-fm54-46xv.json +++ b/advisories/unreviewed/2022/04/GHSA-g827-fm54-46xv/GHSA-g827-fm54-46xv.json @@ -7,12 +7,8 @@ "CVE-2000-0443" ], "details": "The web interface server in HP Web JetAdmin 5.6 allows remote attackers to read arbitrary files via a .. (dot dot) attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g889-x6p3-66f6/GHSA-g889-x6p3-66f6.json b/advisories/unreviewed/2022/04/GHSA-g889-x6p3-66f6/GHSA-g889-x6p3-66f6.json index 09180f3e095..b8d1926e0f6 100644 --- a/advisories/unreviewed/2022/04/GHSA-g889-x6p3-66f6/GHSA-g889-x6p3-66f6.json +++ b/advisories/unreviewed/2022/04/GHSA-g889-x6p3-66f6/GHSA-g889-x6p3-66f6.json @@ -7,12 +7,8 @@ "CVE-2000-0507" ], "details": "Imate Webmail Server 2.5 allows remote attackers to cause a denial of service via a long HELO command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gggj-8j7g-cpwh/GHSA-gggj-8j7g-cpwh.json b/advisories/unreviewed/2022/04/GHSA-gggj-8j7g-cpwh/GHSA-gggj-8j7g-cpwh.json index 043d3044a19..acdfebaac89 100644 --- a/advisories/unreviewed/2022/04/GHSA-gggj-8j7g-cpwh/GHSA-gggj-8j7g-cpwh.json +++ b/advisories/unreviewed/2022/04/GHSA-gggj-8j7g-cpwh/GHSA-gggj-8j7g-cpwh.json @@ -7,12 +7,8 @@ "CVE-2000-0411" ], "details": "Matt Wright's FormMail CGI script allows remote attackers to obtain environmental variables via the env_report parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gjfh-48cm-22xw/GHSA-gjfh-48cm-22xw.json b/advisories/unreviewed/2022/04/GHSA-gjfh-48cm-22xw/GHSA-gjfh-48cm-22xw.json index 03befaf2b09..be931a47133 100644 --- a/advisories/unreviewed/2022/04/GHSA-gjfh-48cm-22xw/GHSA-gjfh-48cm-22xw.json +++ b/advisories/unreviewed/2022/04/GHSA-gjfh-48cm-22xw/GHSA-gjfh-48cm-22xw.json @@ -7,12 +7,8 @@ "CVE-2000-0534" ], "details": "The apsfilter software in the FreeBSD ports package does not properly read user filter configurations, which allows local users to execute commands as the lpd user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gvxh-v3hv-2g35/GHSA-gvxh-v3hv-2g35.json b/advisories/unreviewed/2022/04/GHSA-gvxh-v3hv-2g35/GHSA-gvxh-v3hv-2g35.json index d04487d48f2..f87cee2f644 100644 --- a/advisories/unreviewed/2022/04/GHSA-gvxh-v3hv-2g35/GHSA-gvxh-v3hv-2g35.json +++ b/advisories/unreviewed/2022/04/GHSA-gvxh-v3hv-2g35/GHSA-gvxh-v3hv-2g35.json @@ -7,12 +7,8 @@ "CVE-2000-0469" ], "details": "Selena Sol WebBanner 4.0 allows remote attackers to read arbitrary files via a .. (dot dot) attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h455-mfvg-53mp/GHSA-h455-mfvg-53mp.json b/advisories/unreviewed/2022/04/GHSA-h455-mfvg-53mp/GHSA-h455-mfvg-53mp.json index c8703bfebd6..6e5f07e1e27 100644 --- a/advisories/unreviewed/2022/04/GHSA-h455-mfvg-53mp/GHSA-h455-mfvg-53mp.json +++ b/advisories/unreviewed/2022/04/GHSA-h455-mfvg-53mp/GHSA-h455-mfvg-53mp.json @@ -7,12 +7,8 @@ "CVE-2000-0516" ], "details": "When configured to store configuration information in an LDAP directory, Shiva Access Manager 5.0.0 stores the root DN (Distinguished Name) name and password in cleartext in a file that is world readable, which allows local users to compromise the LDAP server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h63x-8w34-4hj2/GHSA-h63x-8w34-4hj2.json b/advisories/unreviewed/2022/04/GHSA-h63x-8w34-4hj2/GHSA-h63x-8w34-4hj2.json index 49637e2e8e4..a0adfc29bd2 100644 --- a/advisories/unreviewed/2022/04/GHSA-h63x-8w34-4hj2/GHSA-h63x-8w34-4hj2.json +++ b/advisories/unreviewed/2022/04/GHSA-h63x-8w34-4hj2/GHSA-h63x-8w34-4hj2.json @@ -7,12 +7,8 @@ "CVE-2000-0517" ], "details": "Netscape 4.73 and earlier does not properly warn users about a potentially invalid certificate if the user has previously accepted the certificate for a different web site, which could allow remote attackers to spoof a legitimate web site by compromising that site's DNS information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h7mr-chr8-q245/GHSA-h7mr-chr8-q245.json b/advisories/unreviewed/2022/04/GHSA-h7mr-chr8-q245/GHSA-h7mr-chr8-q245.json index 45e1b1357a8..af443e7b64a 100644 --- a/advisories/unreviewed/2022/04/GHSA-h7mr-chr8-q245/GHSA-h7mr-chr8-q245.json +++ b/advisories/unreviewed/2022/04/GHSA-h7mr-chr8-q245/GHSA-h7mr-chr8-q245.json @@ -7,12 +7,8 @@ "CVE-2000-0422" ], "details": "Buffer overflow in Netwin DMailWeb CGI program allows remote attackers to execute arbitrary commands via a long utoken parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h876-2gr4-3rq5/GHSA-h876-2gr4-3rq5.json b/advisories/unreviewed/2022/04/GHSA-h876-2gr4-3rq5/GHSA-h876-2gr4-3rq5.json index 129a53d6940..a0c00e03c5b 100644 --- a/advisories/unreviewed/2022/04/GHSA-h876-2gr4-3rq5/GHSA-h876-2gr4-3rq5.json +++ b/advisories/unreviewed/2022/04/GHSA-h876-2gr4-3rq5/GHSA-h876-2gr4-3rq5.json @@ -7,12 +7,8 @@ "CVE-2000-0490" ], "details": "Buffer overflow in the NetWin DSMTP 2.7q in the NetWin dmail package allows remote attackers to execute arbitrary commands via a long ETRN request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hc82-7mvf-f3c5/GHSA-hc82-7mvf-f3c5.json b/advisories/unreviewed/2022/04/GHSA-hc82-7mvf-f3c5/GHSA-hc82-7mvf-f3c5.json index a4e81bf7d55..3fc0f973a9d 100644 --- a/advisories/unreviewed/2022/04/GHSA-hc82-7mvf-f3c5/GHSA-hc82-7mvf-f3c5.json +++ b/advisories/unreviewed/2022/04/GHSA-hc82-7mvf-f3c5/GHSA-hc82-7mvf-f3c5.json @@ -7,12 +7,8 @@ "CVE-2000-0479" ], "details": "Dragon FTP server allows remote attackers to cause a denial of service via a long USER command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hcmr-mv5h-wj39/GHSA-hcmr-mv5h-wj39.json b/advisories/unreviewed/2022/04/GHSA-hcmr-mv5h-wj39/GHSA-hcmr-mv5h-wj39.json index 7de212b54b9..58970fa36f9 100644 --- a/advisories/unreviewed/2022/04/GHSA-hcmr-mv5h-wj39/GHSA-hcmr-mv5h-wj39.json +++ b/advisories/unreviewed/2022/04/GHSA-hcmr-mv5h-wj39/GHSA-hcmr-mv5h-wj39.json @@ -7,12 +7,8 @@ "CVE-2000-0505" ], "details": "The Apache 1.3.x HTTP server for Windows platforms allows remote attackers to list directory contents by requesting a URL containing a large number of / characters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hrrj-9rqm-m5rx/GHSA-hrrj-9rqm-m5rx.json b/advisories/unreviewed/2022/04/GHSA-hrrj-9rqm-m5rx/GHSA-hrrj-9rqm-m5rx.json index 5a93fe3118f..241d9559e75 100644 --- a/advisories/unreviewed/2022/04/GHSA-hrrj-9rqm-m5rx/GHSA-hrrj-9rqm-m5rx.json +++ b/advisories/unreviewed/2022/04/GHSA-hrrj-9rqm-m5rx/GHSA-hrrj-9rqm-m5rx.json @@ -7,12 +7,8 @@ "CVE-2000-0525" ], "details": "OpenSSH does not properly drop privileges when the UseLogin option is enabled, which allows local users to execute arbitrary commands by providing the command to the ssh daemon.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hw2f-876w-6xvx/GHSA-hw2f-876w-6xvx.json b/advisories/unreviewed/2022/04/GHSA-hw2f-876w-6xvx/GHSA-hw2f-876w-6xvx.json index ef3512d98e3..832dbca149b 100644 --- a/advisories/unreviewed/2022/04/GHSA-hw2f-876w-6xvx/GHSA-hw2f-876w-6xvx.json +++ b/advisories/unreviewed/2022/04/GHSA-hw2f-876w-6xvx/GHSA-hw2f-876w-6xvx.json @@ -7,12 +7,8 @@ "CVE-2000-0390" ], "details": "Buffer overflow in krb425_conv_principal function in Kerberos 5 allows remote attackers to gain root privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j487-27wr-29q4/GHSA-j487-27wr-29q4.json b/advisories/unreviewed/2022/04/GHSA-j487-27wr-29q4/GHSA-j487-27wr-29q4.json index 8dfdfa08923..075e1a6d486 100644 --- a/advisories/unreviewed/2022/04/GHSA-j487-27wr-29q4/GHSA-j487-27wr-29q4.json +++ b/advisories/unreviewed/2022/04/GHSA-j487-27wr-29q4/GHSA-j487-27wr-29q4.json @@ -7,12 +7,8 @@ "CVE-2000-0477" ], "details": "Buffer overflow in Norton Antivirus for Exchange (NavExchange) allows remote attackers to cause a denial of service via a .zip file that contains long file names.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j4g2-g246-6526/GHSA-j4g2-g246-6526.json b/advisories/unreviewed/2022/04/GHSA-j4g2-g246-6526/GHSA-j4g2-g246-6526.json index a1b515601b6..4097d297c52 100644 --- a/advisories/unreviewed/2022/04/GHSA-j4g2-g246-6526/GHSA-j4g2-g246-6526.json +++ b/advisories/unreviewed/2022/04/GHSA-j4g2-g246-6526/GHSA-j4g2-g246-6526.json @@ -7,12 +7,8 @@ "CVE-2000-0500" ], "details": "The default configuration of BEA WebLogic 5.1.0 allows a remote attacker to view source code of programs by requesting a URL beginning with /file/, which causes the default servlet to display the file without further processing.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j88w-3rg6-x4gj/GHSA-j88w-3rg6-x4gj.json b/advisories/unreviewed/2022/04/GHSA-j88w-3rg6-x4gj/GHSA-j88w-3rg6-x4gj.json index 610c4ce9425..f9f7d363fcf 100644 --- a/advisories/unreviewed/2022/04/GHSA-j88w-3rg6-x4gj/GHSA-j88w-3rg6-x4gj.json +++ b/advisories/unreviewed/2022/04/GHSA-j88w-3rg6-x4gj/GHSA-j88w-3rg6-x4gj.json @@ -7,12 +7,8 @@ "CVE-2000-0458" ], "details": "The MSWordView application in IMP creates world-readable files in the /tmp directory, which allows other local users to read potentially sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jcf3-cm7w-7v5j/GHSA-jcf3-cm7w-7v5j.json b/advisories/unreviewed/2022/04/GHSA-jcf3-cm7w-7v5j/GHSA-jcf3-cm7w-7v5j.json index 46bb8eb5780..720931ff033 100644 --- a/advisories/unreviewed/2022/04/GHSA-jcf3-cm7w-7v5j/GHSA-jcf3-cm7w-7v5j.json +++ b/advisories/unreviewed/2022/04/GHSA-jcf3-cm7w-7v5j/GHSA-jcf3-cm7w-7v5j.json @@ -7,12 +7,8 @@ "CVE-2000-0399" ], "details": "Buffer overflow in MDaemon POP server allows remote attackers to cause a denial of service via a long user name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jfh9-vp9v-wh4v/GHSA-jfh9-vp9v-wh4v.json b/advisories/unreviewed/2022/04/GHSA-jfh9-vp9v-wh4v/GHSA-jfh9-vp9v-wh4v.json index b3ac4cc5426..bfe623e68f3 100644 --- a/advisories/unreviewed/2022/04/GHSA-jfh9-vp9v-wh4v/GHSA-jfh9-vp9v-wh4v.json +++ b/advisories/unreviewed/2022/04/GHSA-jfh9-vp9v-wh4v/GHSA-jfh9-vp9v-wh4v.json @@ -7,12 +7,8 @@ "CVE-2000-0382" ], "details": "ColdFusion ClusterCATS appends stale query string arguments to a URL during HTML redirection, which may provide sensitive information to the redirected site.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jq5m-56vh-g5fr/GHSA-jq5m-56vh-g5fr.json b/advisories/unreviewed/2022/04/GHSA-jq5m-56vh-g5fr/GHSA-jq5m-56vh-g5fr.json index b13c86c5a7f..e12c269c9b1 100644 --- a/advisories/unreviewed/2022/04/GHSA-jq5m-56vh-g5fr/GHSA-jq5m-56vh-g5fr.json +++ b/advisories/unreviewed/2022/04/GHSA-jq5m-56vh-g5fr/GHSA-jq5m-56vh-g5fr.json @@ -7,12 +7,8 @@ "CVE-2000-0404" ], "details": "The CIFS Computer Browser service allows remote attackers to cause a denial of service by sending a ResetBrowser frame to the Master Browser, aka the \"ResetBrowser Frame\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jr8c-jq2f-gfh3/GHSA-jr8c-jq2f-gfh3.json b/advisories/unreviewed/2022/04/GHSA-jr8c-jq2f-gfh3/GHSA-jr8c-jq2f-gfh3.json index 41ee49770cd..ae8880f1052 100644 --- a/advisories/unreviewed/2022/04/GHSA-jr8c-jq2f-gfh3/GHSA-jr8c-jq2f-gfh3.json +++ b/advisories/unreviewed/2022/04/GHSA-jr8c-jq2f-gfh3/GHSA-jr8c-jq2f-gfh3.json @@ -7,12 +7,8 @@ "CVE-2000-0449" ], "details": "Omnis Studio 2.4 uses weak encryption (trivial encoding) for encrypting database fields.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jrv6-w97f-q9vv/GHSA-jrv6-w97f-q9vv.json b/advisories/unreviewed/2022/04/GHSA-jrv6-w97f-q9vv/GHSA-jrv6-w97f-q9vv.json index a7fc9c35e86..5bd17483fa6 100644 --- a/advisories/unreviewed/2022/04/GHSA-jrv6-w97f-q9vv/GHSA-jrv6-w97f-q9vv.json +++ b/advisories/unreviewed/2022/04/GHSA-jrv6-w97f-q9vv/GHSA-jrv6-w97f-q9vv.json @@ -7,12 +7,8 @@ "CVE-2000-0495" ], "details": "Microsoft Windows Media Encoder allows remote attackers to cause a denial of service via a malformed request, aka the \"Malformed Windows Media Encoder Request\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jw6j-588w-5rcx/GHSA-jw6j-588w-5rcx.json b/advisories/unreviewed/2022/04/GHSA-jw6j-588w-5rcx/GHSA-jw6j-588w-5rcx.json index e05028642cf..7bbda463402 100644 --- a/advisories/unreviewed/2022/04/GHSA-jw6j-588w-5rcx/GHSA-jw6j-588w-5rcx.json +++ b/advisories/unreviewed/2022/04/GHSA-jw6j-588w-5rcx/GHSA-jw6j-588w-5rcx.json @@ -7,12 +7,8 @@ "CVE-2000-0475" ], "details": "Windows 2000 allows a local user process to access another user's desktop within the same windows station, aka the \"Desktop Separation\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jx68-8j6j-8v87/GHSA-jx68-8j6j-8v87.json b/advisories/unreviewed/2022/04/GHSA-jx68-8j6j-8v87/GHSA-jx68-8j6j-8v87.json index dae9bf99c5b..9c524665f89 100644 --- a/advisories/unreviewed/2022/04/GHSA-jx68-8j6j-8v87/GHSA-jx68-8j6j-8v87.json +++ b/advisories/unreviewed/2022/04/GHSA-jx68-8j6j-8v87/GHSA-jx68-8j6j-8v87.json @@ -7,12 +7,8 @@ "CVE-2000-0413" ], "details": "The shtml.exe program in the FrontPage extensions package of IIS 4.0 and 5.0 allows remote attackers to determine the physical path of HTML, HTM, ASP, and SHTML files by requesting a file that does not exist, which generates an error message that reveals the path.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-m4m3-6vcg-7fh3/GHSA-m4m3-6vcg-7fh3.json b/advisories/unreviewed/2022/04/GHSA-m4m3-6vcg-7fh3/GHSA-m4m3-6vcg-7fh3.json index 2d2fad16c72..5bad9ab991f 100644 --- a/advisories/unreviewed/2022/04/GHSA-m4m3-6vcg-7fh3/GHSA-m4m3-6vcg-7fh3.json +++ b/advisories/unreviewed/2022/04/GHSA-m4m3-6vcg-7fh3/GHSA-m4m3-6vcg-7fh3.json @@ -7,12 +7,8 @@ "CVE-2000-0487" ], "details": "The Protected Store in Windows 2000 does not properly select the strongest encryption when available, which causes it to use a default of 40-bit encryption instead of 56-bit DES encryption, aka the \"Protected Store Key Length\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-m59v-mjv4-379q/GHSA-m59v-mjv4-379q.json b/advisories/unreviewed/2022/04/GHSA-m59v-mjv4-379q/GHSA-m59v-mjv4-379q.json index 2b81896c8ee..3ce51859954 100644 --- a/advisories/unreviewed/2022/04/GHSA-m59v-mjv4-379q/GHSA-m59v-mjv4-379q.json +++ b/advisories/unreviewed/2022/04/GHSA-m59v-mjv4-379q/GHSA-m59v-mjv4-379q.json @@ -7,12 +7,8 @@ "CVE-2000-0409" ], "details": "Netscape 4.73 and earlier follows symlinks when it imports a new certificate, which allows local users to overwrite files of the user importing the certificate.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mpxg-5frr-vc3r/GHSA-mpxg-5frr-vc3r.json b/advisories/unreviewed/2022/04/GHSA-mpxg-5frr-vc3r/GHSA-mpxg-5frr-vc3r.json index cc229d9530c..2188ba0dfbd 100644 --- a/advisories/unreviewed/2022/04/GHSA-mpxg-5frr-vc3r/GHSA-mpxg-5frr-vc3r.json +++ b/advisories/unreviewed/2022/04/GHSA-mpxg-5frr-vc3r/GHSA-mpxg-5frr-vc3r.json @@ -7,12 +7,8 @@ "CVE-2000-0433" ], "details": "The SuSE aaa_base package installs some system accounts with home directories set to /tmp, which allows local users to gain privileges to those accounts by creating standard user startup scripts such as profiles.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mq7q-m7gg-x8gh/GHSA-mq7q-m7gg-x8gh.json b/advisories/unreviewed/2022/04/GHSA-mq7q-m7gg-x8gh/GHSA-mq7q-m7gg-x8gh.json index f634bd97d25..e8635117dab 100644 --- a/advisories/unreviewed/2022/04/GHSA-mq7q-m7gg-x8gh/GHSA-mq7q-m7gg-x8gh.json +++ b/advisories/unreviewed/2022/04/GHSA-mq7q-m7gg-x8gh/GHSA-mq7q-m7gg-x8gh.json @@ -7,12 +7,8 @@ "CVE-2000-0403" ], "details": "The CIFS Computer Browser service on Windows NT 4.0 allows a remote attacker to cause a denial of service by sending a large number of host announcement requests to the master browse tables, aka the \"HostAnnouncement Flooding\" or \"HostAnnouncement Frame\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mrqj-pqq8-9fx3/GHSA-mrqj-pqq8-9fx3.json b/advisories/unreviewed/2022/04/GHSA-mrqj-pqq8-9fx3/GHSA-mrqj-pqq8-9fx3.json index 0192819f2ec..38c79796ac9 100644 --- a/advisories/unreviewed/2022/04/GHSA-mrqj-pqq8-9fx3/GHSA-mrqj-pqq8-9fx3.json +++ b/advisories/unreviewed/2022/04/GHSA-mrqj-pqq8-9fx3/GHSA-mrqj-pqq8-9fx3.json @@ -7,12 +7,8 @@ "CVE-2000-0437" ], "details": "Buffer overflow in the CyberPatrol daemon \"cyberdaemon\" used in gauntlet and WebShield allows remote attackers to cause a denial of service or execute arbitrary commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mxw3-4cwc-mr3p/GHSA-mxw3-4cwc-mr3p.json b/advisories/unreviewed/2022/04/GHSA-mxw3-4cwc-mr3p/GHSA-mxw3-4cwc-mr3p.json index 9fde8925b37..e757552c6cd 100644 --- a/advisories/unreviewed/2022/04/GHSA-mxw3-4cwc-mr3p/GHSA-mxw3-4cwc-mr3p.json +++ b/advisories/unreviewed/2022/04/GHSA-mxw3-4cwc-mr3p/GHSA-mxw3-4cwc-mr3p.json @@ -7,12 +7,8 @@ "CVE-2000-0509" ], "details": "Buffer overflows in the finger and whois demonstration scripts in Sambar Server 4.3 allow remote attackers to execute arbitrary commands via a long hostname.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p267-cj3r-wj88/GHSA-p267-cj3r-wj88.json b/advisories/unreviewed/2022/04/GHSA-p267-cj3r-wj88/GHSA-p267-cj3r-wj88.json index 198fa74738e..7ffe87ab744 100644 --- a/advisories/unreviewed/2022/04/GHSA-p267-cj3r-wj88/GHSA-p267-cj3r-wj88.json +++ b/advisories/unreviewed/2022/04/GHSA-p267-cj3r-wj88/GHSA-p267-cj3r-wj88.json @@ -7,12 +7,8 @@ "CVE-2000-0464" ], "details": "Internet Explorer 4.x and 5.x allows remote attackers to execute arbitrary commands via a buffer overflow in the ActiveX parameter parsing capability, aka the \"Malformed Component Attribute\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p59f-g5mj-4hqq/GHSA-p59f-g5mj-4hqq.json b/advisories/unreviewed/2022/04/GHSA-p59f-g5mj-4hqq/GHSA-p59f-g5mj-4hqq.json index 01b817d81bd..6b5df5328c2 100644 --- a/advisories/unreviewed/2022/04/GHSA-p59f-g5mj-4hqq/GHSA-p59f-g5mj-4hqq.json +++ b/advisories/unreviewed/2022/04/GHSA-p59f-g5mj-4hqq/GHSA-p59f-g5mj-4hqq.json @@ -7,12 +7,8 @@ "CVE-2000-0379" ], "details": "The Netopia R9100 router does not prevent authenticated users from modifying SNMP tables, even if the administrator has configured it to do so.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p6q8-hh72-gjjx/GHSA-p6q8-hh72-gjjx.json b/advisories/unreviewed/2022/04/GHSA-p6q8-hh72-gjjx/GHSA-p6q8-hh72-gjjx.json index 74e66056e08..1d4b7ff8baa 100644 --- a/advisories/unreviewed/2022/04/GHSA-p6q8-hh72-gjjx/GHSA-p6q8-hh72-gjjx.json +++ b/advisories/unreviewed/2022/04/GHSA-p6q8-hh72-gjjx/GHSA-p6q8-hh72-gjjx.json @@ -7,12 +7,8 @@ "CVE-2000-0478" ], "details": "In some cases, Norton Antivirus for Exchange (NavExchange) enters a \"fail-open\" state which allows viruses to pass through the server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p8mh-8cvx-pv92/GHSA-p8mh-8cvx-pv92.json b/advisories/unreviewed/2022/04/GHSA-p8mh-8cvx-pv92/GHSA-p8mh-8cvx-pv92.json index 9469a441027..2758a84fbc0 100644 --- a/advisories/unreviewed/2022/04/GHSA-p8mh-8cvx-pv92/GHSA-p8mh-8cvx-pv92.json +++ b/advisories/unreviewed/2022/04/GHSA-p8mh-8cvx-pv92/GHSA-p8mh-8cvx-pv92.json @@ -7,12 +7,8 @@ "CVE-2000-0504" ], "details": "libICE in XFree86 allows remote attackers to cause a denial of service by specifying a large value which is not properly checked by the SKIP_STRING macro.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pg42-38hv-3f6h/GHSA-pg42-38hv-3f6h.json b/advisories/unreviewed/2022/04/GHSA-pg42-38hv-3f6h/GHSA-pg42-38hv-3f6h.json index 1b9a5ba8ce8..9cdc4af180c 100644 --- a/advisories/unreviewed/2022/04/GHSA-pg42-38hv-3f6h/GHSA-pg42-38hv-3f6h.json +++ b/advisories/unreviewed/2022/04/GHSA-pg42-38hv-3f6h/GHSA-pg42-38hv-3f6h.json @@ -7,12 +7,8 @@ "CVE-2000-0523" ], "details": "Buffer overflow in the logging feature of EServ 2.9.2 and earlier allows an attacker to execute arbitrary commands via a long MKD command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-ph8q-v7mf-3mfr/GHSA-ph8q-v7mf-3mfr.json b/advisories/unreviewed/2022/04/GHSA-ph8q-v7mf-3mfr/GHSA-ph8q-v7mf-3mfr.json index 3a7d9bac65b..161868a4687 100644 --- a/advisories/unreviewed/2022/04/GHSA-ph8q-v7mf-3mfr/GHSA-ph8q-v7mf-3mfr.json +++ b/advisories/unreviewed/2022/04/GHSA-ph8q-v7mf-3mfr/GHSA-ph8q-v7mf-3mfr.json @@ -7,12 +7,8 @@ "CVE-2000-0393" ], "details": "The KDE kscd program does not drop privileges when executing a program specified in a user's SHELL environmental variable, which allows the user to gain privileges by specifying an alternate program to execute.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-ph96-6g2v-q3cq/GHSA-ph96-6g2v-q3cq.json b/advisories/unreviewed/2022/04/GHSA-ph96-6g2v-q3cq/GHSA-ph96-6g2v-q3cq.json index 901fc98cb74..f2af8eea222 100644 --- a/advisories/unreviewed/2022/04/GHSA-ph96-6g2v-q3cq/GHSA-ph96-6g2v-q3cq.json +++ b/advisories/unreviewed/2022/04/GHSA-ph96-6g2v-q3cq/GHSA-ph96-6g2v-q3cq.json @@ -7,12 +7,8 @@ "CVE-2000-0531" ], "details": "Linux gpm program allows local users to cause a denial of service by flooding the /dev/gpmctl device with STREAM sockets.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pp2f-p95f-2xhx/GHSA-pp2f-p95f-2xhx.json b/advisories/unreviewed/2022/04/GHSA-pp2f-p95f-2xhx/GHSA-pp2f-p95f-2xhx.json index 0e9e75f2400..363b5390ce5 100644 --- a/advisories/unreviewed/2022/04/GHSA-pp2f-p95f-2xhx/GHSA-pp2f-p95f-2xhx.json +++ b/advisories/unreviewed/2022/04/GHSA-pp2f-p95f-2xhx/GHSA-pp2f-p95f-2xhx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-pq3h-q9vp-54r6/GHSA-pq3h-q9vp-54r6.json b/advisories/unreviewed/2022/04/GHSA-pq3h-q9vp-54r6/GHSA-pq3h-q9vp-54r6.json index 866337953e3..7ff504d2687 100644 --- a/advisories/unreviewed/2022/04/GHSA-pq3h-q9vp-54r6/GHSA-pq3h-q9vp-54r6.json +++ b/advisories/unreviewed/2022/04/GHSA-pq3h-q9vp-54r6/GHSA-pq3h-q9vp-54r6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-q2j4-m428-f363/GHSA-q2j4-m428-f363.json b/advisories/unreviewed/2022/04/GHSA-q2j4-m428-f363/GHSA-q2j4-m428-f363.json index 7895aa84b20..33b1eddaedb 100644 --- a/advisories/unreviewed/2022/04/GHSA-q2j4-m428-f363/GHSA-q2j4-m428-f363.json +++ b/advisories/unreviewed/2022/04/GHSA-q2j4-m428-f363/GHSA-q2j4-m428-f363.json @@ -7,12 +7,8 @@ "CVE-2000-0494" ], "details": "Veritas Volume Manager creates a world writable .server_pids file, which allows local users to add arbitrary commands into the file, which is then executed by the vmsa_server script.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q486-58cq-c7gq/GHSA-q486-58cq-c7gq.json b/advisories/unreviewed/2022/04/GHSA-q486-58cq-c7gq/GHSA-q486-58cq-c7gq.json index 57237f05235..361d3df3212 100644 --- a/advisories/unreviewed/2022/04/GHSA-q486-58cq-c7gq/GHSA-q486-58cq-c7gq.json +++ b/advisories/unreviewed/2022/04/GHSA-q486-58cq-c7gq/GHSA-q486-58cq-c7gq.json @@ -7,12 +7,8 @@ "CVE-2000-0493" ], "details": "Buffer overflow in Simple Network Time Sync (SMTS) daemon allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long string.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q4v2-vr66-2qp6/GHSA-q4v2-vr66-2qp6.json b/advisories/unreviewed/2022/04/GHSA-q4v2-vr66-2qp6/GHSA-q4v2-vr66-2qp6.json index a458cdeef71..da901f1d152 100644 --- a/advisories/unreviewed/2022/04/GHSA-q4v2-vr66-2qp6/GHSA-q4v2-vr66-2qp6.json +++ b/advisories/unreviewed/2022/04/GHSA-q4v2-vr66-2qp6/GHSA-q4v2-vr66-2qp6.json @@ -7,12 +7,8 @@ "CVE-2000-0537" ], "details": "BRU backup software allows local users to append data to arbitrary files by specifying an alternate configuration file with the BRUEXECLOG environmental variable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q6wc-wpm6-pf8j/GHSA-q6wc-wpm6-pf8j.json b/advisories/unreviewed/2022/04/GHSA-q6wc-wpm6-pf8j/GHSA-q6wc-wpm6-pf8j.json index 10ccec9845f..3bf97ef0776 100644 --- a/advisories/unreviewed/2022/04/GHSA-q6wc-wpm6-pf8j/GHSA-q6wc-wpm6-pf8j.json +++ b/advisories/unreviewed/2022/04/GHSA-q6wc-wpm6-pf8j/GHSA-q6wc-wpm6-pf8j.json @@ -7,12 +7,8 @@ "CVE-2000-0451" ], "details": "The Intel express 8100 ISDN router allows remote attackers to cause a denial of service via oversized or fragmented ICMP packets.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qr5c-3r3w-6h26/GHSA-qr5c-3r3w-6h26.json b/advisories/unreviewed/2022/04/GHSA-qr5c-3r3w-6h26/GHSA-qr5c-3r3w-6h26.json index fd03cc5e129..30bd5abcf5a 100644 --- a/advisories/unreviewed/2022/04/GHSA-qr5c-3r3w-6h26/GHSA-qr5c-3r3w-6h26.json +++ b/advisories/unreviewed/2022/04/GHSA-qr5c-3r3w-6h26/GHSA-qr5c-3r3w-6h26.json @@ -7,12 +7,8 @@ "CVE-2000-0429" ], "details": "A backdoor password in Cart32 3.0 and earlier allows remote attackers to execute arbitrary commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qxfh-fxwp-jv55/GHSA-qxfh-fxwp-jv55.json b/advisories/unreviewed/2022/04/GHSA-qxfh-fxwp-jv55/GHSA-qxfh-fxwp-jv55.json index bb0d167e60e..cf29f7af572 100644 --- a/advisories/unreviewed/2022/04/GHSA-qxfh-fxwp-jv55/GHSA-qxfh-fxwp-jv55.json +++ b/advisories/unreviewed/2022/04/GHSA-qxfh-fxwp-jv55/GHSA-qxfh-fxwp-jv55.json @@ -7,12 +7,8 @@ "CVE-2000-0508" ], "details": "rpc.lockd in Red Hat Linux 6.1 and 6.2 allows remote attackers to cause a denial of service via a malformed request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-r4m8-4q3x-xfcc/GHSA-r4m8-4q3x-xfcc.json b/advisories/unreviewed/2022/04/GHSA-r4m8-4q3x-xfcc/GHSA-r4m8-4q3x-xfcc.json index 7154a93905a..a5823c12910 100644 --- a/advisories/unreviewed/2022/04/GHSA-r4m8-4q3x-xfcc/GHSA-r4m8-4q3x-xfcc.json +++ b/advisories/unreviewed/2022/04/GHSA-r4m8-4q3x-xfcc/GHSA-r4m8-4q3x-xfcc.json @@ -7,12 +7,8 @@ "CVE-2000-0445" ], "details": "The pgpk command in PGP 5.x on Unix systems uses an insufficiently random data source for non-interactive key pair generation, which may produce predictable keys.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-r7g3-cvfv-cr4w/GHSA-r7g3-cvfv-cr4w.json b/advisories/unreviewed/2022/04/GHSA-r7g3-cvfv-cr4w/GHSA-r7g3-cvfv-cr4w.json index ede5dcce229..3c5d30439e2 100644 --- a/advisories/unreviewed/2022/04/GHSA-r7g3-cvfv-cr4w/GHSA-r7g3-cvfv-cr4w.json +++ b/advisories/unreviewed/2022/04/GHSA-r7g3-cvfv-cr4w/GHSA-r7g3-cvfv-cr4w.json @@ -7,12 +7,8 @@ "CVE-2000-0482" ], "details": "Check Point Firewall-1 allows remote attackers to cause a denial of service by sending a large number of malformed fragmented IP packets.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-r8jx-rgwf-cw4w/GHSA-r8jx-rgwf-cw4w.json b/advisories/unreviewed/2022/04/GHSA-r8jx-rgwf-cw4w/GHSA-r8jx-rgwf-cw4w.json index e43f054ec5a..53006334c9d 100644 --- a/advisories/unreviewed/2022/04/GHSA-r8jx-rgwf-cw4w/GHSA-r8jx-rgwf-cw4w.json +++ b/advisories/unreviewed/2022/04/GHSA-r8jx-rgwf-cw4w/GHSA-r8jx-rgwf-cw4w.json @@ -7,12 +7,8 @@ "CVE-2000-0391" ], "details": "Buffer overflow in krshd in Kerberos 5 allows remote attackers to gain root privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rf8w-rp5f-f625/GHSA-rf8w-rp5f-f625.json b/advisories/unreviewed/2022/04/GHSA-rf8w-rp5f-f625/GHSA-rf8w-rp5f-f625.json index e43f3930c34..f07247b0c6d 100644 --- a/advisories/unreviewed/2022/04/GHSA-rf8w-rp5f-f625/GHSA-rf8w-rp5f-f625.json +++ b/advisories/unreviewed/2022/04/GHSA-rf8w-rp5f-f625/GHSA-rf8w-rp5f-f625.json @@ -7,12 +7,8 @@ "CVE-2000-0465" ], "details": "Internet Explorer 4.x and 5.x does not properly verify the domain of a frame within a browser window, which allows a remote attacker to read client files via the frame, aka the \"Frame Domain Verification\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rgrc-m757-f2p2/GHSA-rgrc-m757-f2p2.json b/advisories/unreviewed/2022/04/GHSA-rgrc-m757-f2p2/GHSA-rgrc-m757-f2p2.json index d99b5b3e6a1..8b854447fd4 100644 --- a/advisories/unreviewed/2022/04/GHSA-rgrc-m757-f2p2/GHSA-rgrc-m757-f2p2.json +++ b/advisories/unreviewed/2022/04/GHSA-rgrc-m757-f2p2/GHSA-rgrc-m757-f2p2.json @@ -7,12 +7,8 @@ "CVE-2000-0447" ], "details": "Buffer overflow in WebShield SMTP 4.5.44 allows remote attackers to execute arbitrary commands via a long configuration parameter to the WebShield remote management service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rh3j-mw5f-8w7p/GHSA-rh3j-mw5f-8w7p.json b/advisories/unreviewed/2022/04/GHSA-rh3j-mw5f-8w7p/GHSA-rh3j-mw5f-8w7p.json index a915f4b1b15..2540960e792 100644 --- a/advisories/unreviewed/2022/04/GHSA-rh3j-mw5f-8w7p/GHSA-rh3j-mw5f-8w7p.json +++ b/advisories/unreviewed/2022/04/GHSA-rh3j-mw5f-8w7p/GHSA-rh3j-mw5f-8w7p.json @@ -7,12 +7,8 @@ "CVE-2000-0463" ], "details": "BeOS 5.0 allows remote attackers to cause a denial of service via fragmented TCP packets.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vhfh-368p-rg9f/GHSA-vhfh-368p-rg9f.json b/advisories/unreviewed/2022/04/GHSA-vhfh-368p-rg9f/GHSA-vhfh-368p-rg9f.json index 6a0b109aebd..1f052616b73 100644 --- a/advisories/unreviewed/2022/04/GHSA-vhfh-368p-rg9f/GHSA-vhfh-368p-rg9f.json +++ b/advisories/unreviewed/2022/04/GHSA-vhfh-368p-rg9f/GHSA-vhfh-368p-rg9f.json @@ -7,12 +7,8 @@ "CVE-2000-0434" ], "details": "The administrative password for the Allmanage web site administration software is stored in plaintext in a file which could be accessed by remote attackers.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vmcm-2hp4-rp5v/GHSA-vmcm-2hp4-rp5v.json b/advisories/unreviewed/2022/04/GHSA-vmcm-2hp4-rp5v/GHSA-vmcm-2hp4-rp5v.json index 43b23eaec84..60f3b3b91d4 100644 --- a/advisories/unreviewed/2022/04/GHSA-vmcm-2hp4-rp5v/GHSA-vmcm-2hp4-rp5v.json +++ b/advisories/unreviewed/2022/04/GHSA-vmcm-2hp4-rp5v/GHSA-vmcm-2hp4-rp5v.json @@ -7,12 +7,8 @@ "CVE-2000-0435" ], "details": "The allmanageup.pl file upload CGI script in the Allmanage Website administration software 2.6 can be called directly by remote attackers, which allows them to modify user accounts or web pages.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vw5f-6vw7-vhhj/GHSA-vw5f-6vw7-vhhj.json b/advisories/unreviewed/2022/04/GHSA-vw5f-6vw7-vhhj/GHSA-vw5f-6vw7-vhhj.json index a8093accb9b..017d989a12b 100644 --- a/advisories/unreviewed/2022/04/GHSA-vw5f-6vw7-vhhj/GHSA-vw5f-6vw7-vhhj.json +++ b/advisories/unreviewed/2022/04/GHSA-vw5f-6vw7-vhhj/GHSA-vw5f-6vw7-vhhj.json @@ -7,12 +7,8 @@ "CVE-2000-0471" ], "details": "Buffer overflow in ufsrestore in Solaris 8 and earlier allows local users to gain root privileges via a long pathname.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w5fx-fj77-4247/GHSA-w5fx-fj77-4247.json b/advisories/unreviewed/2022/04/GHSA-w5fx-fj77-4247/GHSA-w5fx-fj77-4247.json index 65b37c99c1e..7f96c5e5ed3 100644 --- a/advisories/unreviewed/2022/04/GHSA-w5fx-fj77-4247/GHSA-w5fx-fj77-4247.json +++ b/advisories/unreviewed/2022/04/GHSA-w5fx-fj77-4247/GHSA-w5fx-fj77-4247.json @@ -7,12 +7,8 @@ "CVE-2000-0532" ], "details": "A FreeBSD patch for SSH on 2000-01-14 configures ssh to listen on port 722 as well as port 22, which might allow remote attackers to access SSH through port 722 even if port 22 is otherwise filtered.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w5j6-fmxr-5fr8/GHSA-w5j6-fmxr-5fr8.json b/advisories/unreviewed/2022/04/GHSA-w5j6-fmxr-5fr8/GHSA-w5j6-fmxr-5fr8.json index 1d326461b1f..27bcde3b3ab 100644 --- a/advisories/unreviewed/2022/04/GHSA-w5j6-fmxr-5fr8/GHSA-w5j6-fmxr-5fr8.json +++ b/advisories/unreviewed/2022/04/GHSA-w5j6-fmxr-5fr8/GHSA-w5j6-fmxr-5fr8.json @@ -7,12 +7,8 @@ "CVE-2000-0457" ], "details": "ISM.DLL in IIS 4.0 and 5.0 allows remote attackers to read file contents by requesting the file and appending a large number of encoded spaces (%20) and terminated with a .htr extension, aka the \".HTR File Fragment Reading\" or \"File Fragment Reading via .HTR\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w7j2-4h84-4q9m/GHSA-w7j2-4h84-4q9m.json b/advisories/unreviewed/2022/04/GHSA-w7j2-4h84-4q9m/GHSA-w7j2-4h84-4q9m.json index b184dd19360..57cffec0dec 100644 --- a/advisories/unreviewed/2022/04/GHSA-w7j2-4h84-4q9m/GHSA-w7j2-4h84-4q9m.json +++ b/advisories/unreviewed/2022/04/GHSA-w7j2-4h84-4q9m/GHSA-w7j2-4h84-4q9m.json @@ -7,12 +7,8 @@ "CVE-2000-0480" ], "details": "Dragon telnet server allows remote attackers to cause a denial of service via a long username.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w8h9-v75r-48q9/GHSA-w8h9-v75r-48q9.json b/advisories/unreviewed/2022/04/GHSA-w8h9-v75r-48q9/GHSA-w8h9-v75r-48q9.json index dbca8bde12d..8d701f4f9c1 100644 --- a/advisories/unreviewed/2022/04/GHSA-w8h9-v75r-48q9/GHSA-w8h9-v75r-48q9.json +++ b/advisories/unreviewed/2022/04/GHSA-w8h9-v75r-48q9/GHSA-w8h9-v75r-48q9.json @@ -7,12 +7,8 @@ "CVE-2000-0446" ], "details": "Buffer overflow in MDBMS database server allows remote attackers to execute arbitrary commands via a long string.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w8mm-pp8v-w2qj/GHSA-w8mm-pp8v-w2qj.json b/advisories/unreviewed/2022/04/GHSA-w8mm-pp8v-w2qj/GHSA-w8mm-pp8v-w2qj.json index e722a36d204..41a7e77d287 100644 --- a/advisories/unreviewed/2022/04/GHSA-w8mm-pp8v-w2qj/GHSA-w8mm-pp8v-w2qj.json +++ b/advisories/unreviewed/2022/04/GHSA-w8mm-pp8v-w2qj/GHSA-w8mm-pp8v-w2qj.json @@ -7,12 +7,8 @@ "CVE-2000-0519" ], "details": "Internet Explorer 4.x and 5.x does not properly re-validate an SSL certificate if the user establishes a new SSL session with the same server during the same Internet Explorer session, aka one of two different \"SSL Certificate Validation\" vulnerabilities.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wc7h-rjv2-pvjh/GHSA-wc7h-rjv2-pvjh.json b/advisories/unreviewed/2022/04/GHSA-wc7h-rjv2-pvjh/GHSA-wc7h-rjv2-pvjh.json index 06cd597b04e..8c5736afe4c 100644 --- a/advisories/unreviewed/2022/04/GHSA-wc7h-rjv2-pvjh/GHSA-wc7h-rjv2-pvjh.json +++ b/advisories/unreviewed/2022/04/GHSA-wc7h-rjv2-pvjh/GHSA-wc7h-rjv2-pvjh.json @@ -7,12 +7,8 @@ "CVE-2000-0428" ], "details": "Buffer overflow in the SMTP gateway for InterScan Virus Wall 3.32 and earlier allows a remote attacker to execute arbitrary commands via a long filename for a uuencoded attachment.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wq95-mwj7-34mh/GHSA-wq95-mwj7-34mh.json b/advisories/unreviewed/2022/04/GHSA-wq95-mwj7-34mh/GHSA-wq95-mwj7-34mh.json index af12c33324f..8ee9c08d1fd 100644 --- a/advisories/unreviewed/2022/04/GHSA-wq95-mwj7-34mh/GHSA-wq95-mwj7-34mh.json +++ b/advisories/unreviewed/2022/04/GHSA-wq95-mwj7-34mh/GHSA-wq95-mwj7-34mh.json @@ -7,12 +7,8 @@ "CVE-2000-0400" ], "details": "The Microsoft Active Movie ActiveX Control in Internet Explorer 5 does not restrict which file types can be downloaded, which allows an attacker to download any type of file to a user's system by encoding it within an email message or news post.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-wqf6-fx9r-6p5h/GHSA-wqf6-fx9r-6p5h.json b/advisories/unreviewed/2022/04/GHSA-wqf6-fx9r-6p5h/GHSA-wqf6-fx9r-6p5h.json index abc861d758d..fe3469d0c4d 100644 --- a/advisories/unreviewed/2022/04/GHSA-wqf6-fx9r-6p5h/GHSA-wqf6-fx9r-6p5h.json +++ b/advisories/unreviewed/2022/04/GHSA-wqf6-fx9r-6p5h/GHSA-wqf6-fx9r-6p5h.json @@ -7,12 +7,8 @@ "CVE-2000-0375" ], "details": "The kernel in FreeBSD 3.2 follows symbolic links when it creates core dump files, which allows local attackers to modify arbitrary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wr9w-p9gv-6q7p/GHSA-wr9w-p9gv-6q7p.json b/advisories/unreviewed/2022/04/GHSA-wr9w-p9gv-6q7p/GHSA-wr9w-p9gv-6q7p.json index a6acc27653a..9e14e960f0a 100644 --- a/advisories/unreviewed/2022/04/GHSA-wr9w-p9gv-6q7p/GHSA-wr9w-p9gv-6q7p.json +++ b/advisories/unreviewed/2022/04/GHSA-wr9w-p9gv-6q7p/GHSA-wr9w-p9gv-6q7p.json @@ -7,12 +7,8 @@ "CVE-2000-0402" ], "details": "The Mixed Mode authentication capability in Microsoft SQL Server 7.0 stores the System Administrator (sa) account in plaintext in a log file which is readable by any user, aka the \"SQL Server 7.0 Service Pack Password\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wwgv-vf3h-hmgf/GHSA-wwgv-vf3h-hmgf.json b/advisories/unreviewed/2022/04/GHSA-wwgv-vf3h-hmgf/GHSA-wwgv-vf3h-hmgf.json index e05d6014339..3ba9e26251a 100644 --- a/advisories/unreviewed/2022/04/GHSA-wwgv-vf3h-hmgf/GHSA-wwgv-vf3h-hmgf.json +++ b/advisories/unreviewed/2022/04/GHSA-wwgv-vf3h-hmgf/GHSA-wwgv-vf3h-hmgf.json @@ -7,12 +7,8 @@ "CVE-2000-0539" ], "details": "Servlet examples in Allaire JRun 2.3.x allow remote attackers to obtain sensitive information, e.g. listing HttpSession ID's via the SessionServlet servlet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wwh9-4j47-4fcq/GHSA-wwh9-4j47-4fcq.json b/advisories/unreviewed/2022/04/GHSA-wwh9-4j47-4fcq/GHSA-wwh9-4j47-4fcq.json index 4e09a1fc990..fe29de63b32 100644 --- a/advisories/unreviewed/2022/04/GHSA-wwh9-4j47-4fcq/GHSA-wwh9-4j47-4fcq.json +++ b/advisories/unreviewed/2022/04/GHSA-wwh9-4j47-4fcq/GHSA-wwh9-4j47-4fcq.json @@ -7,12 +7,8 @@ "CVE-2000-0488" ], "details": "Buffer overflow in ITHouse mail server 1.04 allows remote attackers to execute arbitrary commands via a long RCPT TO mail command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wx3j-8h4r-qj57/GHSA-wx3j-8h4r-qj57.json b/advisories/unreviewed/2022/04/GHSA-wx3j-8h4r-qj57/GHSA-wx3j-8h4r-qj57.json index 0f69ae9fe0a..f31681d1d8b 100644 --- a/advisories/unreviewed/2022/04/GHSA-wx3j-8h4r-qj57/GHSA-wx3j-8h4r-qj57.json +++ b/advisories/unreviewed/2022/04/GHSA-wx3j-8h4r-qj57/GHSA-wx3j-8h4r-qj57.json @@ -7,12 +7,8 @@ "CVE-2000-0408" ], "details": "IIS 4.05 and 5.0 allow remote attackers to cause a denial of service via a long, complex URL that appears to contain a large number of file extensions, aka the \"Malformed Extension Data in URL\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-x2j2-wmj4-cgv8/GHSA-x2j2-wmj4-cgv8.json b/advisories/unreviewed/2022/04/GHSA-x2j2-wmj4-cgv8/GHSA-x2j2-wmj4-cgv8.json index c5438550915..2bdb16935d7 100644 --- a/advisories/unreviewed/2022/04/GHSA-x2j2-wmj4-cgv8/GHSA-x2j2-wmj4-cgv8.json +++ b/advisories/unreviewed/2022/04/GHSA-x2j2-wmj4-cgv8/GHSA-x2j2-wmj4-cgv8.json @@ -7,12 +7,8 @@ "CVE-2000-0407" ], "details": "Buffer overflow in Solaris netpr program allows local users to execute arbitrary commands via a long -p option.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-x348-qgpx-h8qg/GHSA-x348-qgpx-h8qg.json b/advisories/unreviewed/2022/04/GHSA-x348-qgpx-h8qg/GHSA-x348-qgpx-h8qg.json index 33fcb29a853..644a3bcfed4 100644 --- a/advisories/unreviewed/2022/04/GHSA-x348-qgpx-h8qg/GHSA-x348-qgpx-h8qg.json +++ b/advisories/unreviewed/2022/04/GHSA-x348-qgpx-h8qg/GHSA-x348-qgpx-h8qg.json @@ -7,12 +7,8 @@ "CVE-2000-0521" ], "details": "Savant web server allows remote attackers to read source code of CGI scripts via a GET request that does not include the HTTP version number.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-x78p-3cmg-8mqw/GHSA-x78p-3cmg-8mqw.json b/advisories/unreviewed/2022/04/GHSA-x78p-3cmg-8mqw/GHSA-x78p-3cmg-8mqw.json index 78d5f0d8271..c17ac6af2e6 100644 --- a/advisories/unreviewed/2022/04/GHSA-x78p-3cmg-8mqw/GHSA-x78p-3cmg-8mqw.json +++ b/advisories/unreviewed/2022/04/GHSA-x78p-3cmg-8mqw/GHSA-x78p-3cmg-8mqw.json @@ -7,12 +7,8 @@ "CVE-2000-0547" ], "details": "Buffer overflow in Kerberos 4 KDC program allows remote attackers to cause a denial of service via the localrealm variable in the process_v4 function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-xc56-2wgw-3623/GHSA-xc56-2wgw-3623.json b/advisories/unreviewed/2022/04/GHSA-xc56-2wgw-3623/GHSA-xc56-2wgw-3623.json index 2256ce74442..7a7ccd3eb30 100644 --- a/advisories/unreviewed/2022/04/GHSA-xc56-2wgw-3623/GHSA-xc56-2wgw-3623.json +++ b/advisories/unreviewed/2022/04/GHSA-xc56-2wgw-3623/GHSA-xc56-2wgw-3623.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-xgg5-44qv-95wx/GHSA-xgg5-44qv-95wx.json b/advisories/unreviewed/2022/04/GHSA-xgg5-44qv-95wx/GHSA-xgg5-44qv-95wx.json index fae006b4677..3141c922d3f 100644 --- a/advisories/unreviewed/2022/04/GHSA-xgg5-44qv-95wx/GHSA-xgg5-44qv-95wx.json +++ b/advisories/unreviewed/2022/04/GHSA-xgg5-44qv-95wx/GHSA-xgg5-44qv-95wx.json @@ -7,12 +7,8 @@ "CVE-2000-0381" ], "details": "The Gossamer Threads DBMan db.cgi CGI script allows remote attackers to view environmental variables and setup information by referencing a non-existing database in the db parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xh9x-3wgg-3wwg/GHSA-xh9x-3wgg-3wwg.json b/advisories/unreviewed/2022/04/GHSA-xh9x-3wgg-3wwg/GHSA-xh9x-3wgg-3wwg.json index 77853e001a0..7961de68b9d 100644 --- a/advisories/unreviewed/2022/04/GHSA-xh9x-3wgg-3wwg/GHSA-xh9x-3wgg-3wwg.json +++ b/advisories/unreviewed/2022/04/GHSA-xh9x-3wgg-3wwg/GHSA-xh9x-3wgg-3wwg.json @@ -7,12 +7,8 @@ "CVE-2000-0394" ], "details": "NetProwler 3.0 allows remote attackers to cause a denial of service by sending malformed IP packets that trigger NetProwler's Man-in-the-Middle signature.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xhhr-v6vq-6mcw/GHSA-xhhr-v6vq-6mcw.json b/advisories/unreviewed/2022/04/GHSA-xhhr-v6vq-6mcw/GHSA-xhhr-v6vq-6mcw.json index 57fd2099f3c..7b361a62cd4 100644 --- a/advisories/unreviewed/2022/04/GHSA-xhhr-v6vq-6mcw/GHSA-xhhr-v6vq-6mcw.json +++ b/advisories/unreviewed/2022/04/GHSA-xhhr-v6vq-6mcw/GHSA-xhhr-v6vq-6mcw.json @@ -7,12 +7,8 @@ "CVE-2000-0436" ], "details": "MetaProducts Offline Explorer 1.2 and earlier allows remote attackers to access arbitrary files via a .. (dot dot) attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xm2m-chg4-j873/GHSA-xm2m-chg4-j873.json b/advisories/unreviewed/2022/04/GHSA-xm2m-chg4-j873/GHSA-xm2m-chg4-j873.json index 2696ef9f64a..23c0cd55933 100644 --- a/advisories/unreviewed/2022/04/GHSA-xm2m-chg4-j873/GHSA-xm2m-chg4-j873.json +++ b/advisories/unreviewed/2022/04/GHSA-xm2m-chg4-j873/GHSA-xm2m-chg4-j873.json @@ -7,12 +7,8 @@ "CVE-2000-0410" ], "details": "ColdFusion Server 4.5.1 allows remote attackers to cause a denial of service by making repeated requests to a CFCACHE tagged cache file that is not stored in memory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xmvv-4vx6-5fqj/GHSA-xmvv-4vx6-5fqj.json b/advisories/unreviewed/2022/04/GHSA-xmvv-4vx6-5fqj/GHSA-xmvv-4vx6-5fqj.json index 1dcf7264280..a4462d24b5a 100644 --- a/advisories/unreviewed/2022/04/GHSA-xmvv-4vx6-5fqj/GHSA-xmvv-4vx6-5fqj.json +++ b/advisories/unreviewed/2022/04/GHSA-xmvv-4vx6-5fqj/GHSA-xmvv-4vx6-5fqj.json @@ -7,12 +7,8 @@ "CVE-2000-0397" ], "details": "The EMURL web-based email account software encodes predictable identifiers in user session URLs, which allows a remote attacker to access a user's email account.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xvhj-83gv-vjmg/GHSA-xvhj-83gv-vjmg.json b/advisories/unreviewed/2022/04/GHSA-xvhj-83gv-vjmg/GHSA-xvhj-83gv-vjmg.json index 3664b09d1a3..3b20a1b8ed7 100644 --- a/advisories/unreviewed/2022/04/GHSA-xvhj-83gv-vjmg/GHSA-xvhj-83gv-vjmg.json +++ b/advisories/unreviewed/2022/04/GHSA-xvhj-83gv-vjmg/GHSA-xvhj-83gv-vjmg.json @@ -7,12 +7,8 @@ "CVE-2000-0405" ], "details": "Buffer overflow in L0pht AntiSniff allows remote attackers to execute arbitrary commands via a malformed DNS response packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-22fr-qxwq-hh33/GHSA-22fr-qxwq-hh33.json b/advisories/unreviewed/2022/05/GHSA-22fr-qxwq-hh33/GHSA-22fr-qxwq-hh33.json index 91608e45950..af67732746a 100644 --- a/advisories/unreviewed/2022/05/GHSA-22fr-qxwq-hh33/GHSA-22fr-qxwq-hh33.json +++ b/advisories/unreviewed/2022/05/GHSA-22fr-qxwq-hh33/GHSA-22fr-qxwq-hh33.json @@ -7,12 +7,8 @@ "CVE-2020-8693" ], "details": "Improper buffer restrictions in the firmware of the Intel(R) Ethernet 700 Series Controllers may allow a privileged user to potentially enable escalation of privilege and/or denial of service via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-239h-283c-gxph/GHSA-239h-283c-gxph.json b/advisories/unreviewed/2022/05/GHSA-239h-283c-gxph/GHSA-239h-283c-gxph.json index 4d33caa5be5..9c0e169659a 100644 --- a/advisories/unreviewed/2022/05/GHSA-239h-283c-gxph/GHSA-239h-283c-gxph.json +++ b/advisories/unreviewed/2022/05/GHSA-239h-283c-gxph/GHSA-239h-283c-gxph.json @@ -7,12 +7,8 @@ "CVE-2019-12412" ], "details": "A flaw in the libapreq2 v2.07 to v2.13 multipart parser can deference a null pointer leading to a process crash. A remote attacker could send a request causing a process crash which could lead to a denial of service attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-243x-jj6v-4fj8/GHSA-243x-jj6v-4fj8.json b/advisories/unreviewed/2022/05/GHSA-243x-jj6v-4fj8/GHSA-243x-jj6v-4fj8.json index c41e35b8749..28cddab4d0c 100644 --- a/advisories/unreviewed/2022/05/GHSA-243x-jj6v-4fj8/GHSA-243x-jj6v-4fj8.json +++ b/advisories/unreviewed/2022/05/GHSA-243x-jj6v-4fj8/GHSA-243x-jj6v-4fj8.json @@ -7,12 +7,8 @@ "CVE-2020-4651" ], "details": "IBM Maximo Spatial Asset Management 7.6.0.3, 7.6.0.4, 7.6.0.5, and 7.6.1.0 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 186024.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-253r-3vgg-gj92/GHSA-253r-3vgg-gj92.json b/advisories/unreviewed/2022/05/GHSA-253r-3vgg-gj92/GHSA-253r-3vgg-gj92.json index fcfeb54e074..6d2ea450a1e 100644 --- a/advisories/unreviewed/2022/05/GHSA-253r-3vgg-gj92/GHSA-253r-3vgg-gj92.json +++ b/advisories/unreviewed/2022/05/GHSA-253r-3vgg-gj92/GHSA-253r-3vgg-gj92.json @@ -7,12 +7,8 @@ "CVE-2020-5947" ], "details": "In versions 16.0.0-16.0.0.1 and 15.1.0-15.1.1, on specific BIG-IP platforms, attackers may be able to obtain TCP sequence numbers from the BIG-IP system that can be reused in future connections with the same source and destination port and IP numbers. Only these platforms are affected: BIG-IP 2000 series (C112), BIG-IP 4000 series (C113), BIG-IP i2000 series (C117), BIG-IP i4000 series (C115), BIG-IP Virtual Edition (VE).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-26cj-x9h8-rx93/GHSA-26cj-x9h8-rx93.json b/advisories/unreviewed/2022/05/GHSA-26cj-x9h8-rx93/GHSA-26cj-x9h8-rx93.json index 1aad08d6afa..357b0e1f0ec 100644 --- a/advisories/unreviewed/2022/05/GHSA-26cj-x9h8-rx93/GHSA-26cj-x9h8-rx93.json +++ b/advisories/unreviewed/2022/05/GHSA-26cj-x9h8-rx93/GHSA-26cj-x9h8-rx93.json @@ -7,12 +7,8 @@ "CVE-2020-7841" ], "details": "Improper input validation vulnerability exists in TOBESOFT XPLATFORM which could cause arbitrary .hta file execution when the command string is begun with http://, https://, mailto://", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2cm7-grw6-w6x7/GHSA-2cm7-grw6-w6x7.json b/advisories/unreviewed/2022/05/GHSA-2cm7-grw6-w6x7/GHSA-2cm7-grw6-w6x7.json index 4d22f828959..86d66e6bdbe 100644 --- a/advisories/unreviewed/2022/05/GHSA-2cm7-grw6-w6x7/GHSA-2cm7-grw6-w6x7.json +++ b/advisories/unreviewed/2022/05/GHSA-2cm7-grw6-w6x7/GHSA-2cm7-grw6-w6x7.json @@ -7,12 +7,8 @@ "CVE-2020-29063" ], "details": "An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 97168P, FD1002S, FD1104, FD1104B, FD1104S, FD1104SN, FD1108S, FD1204S-R2, FD1204SN, FD1204SN-R2, FD1208S-R2, FD1216S-R1, FD1608GS, FD1608SN, FD1616GS, FD1616SN, and FD8000 devices. A custom encryption algorithm is used to store encrypted passwords. This algorithm will XOR the password with the hardcoded *j7a(L#yZ98sSd5HfSgGjMj8;Ss;d)(*&^#@$a2s0i3g value.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2cqv-mfgc-j2h4/GHSA-2cqv-mfgc-j2h4.json b/advisories/unreviewed/2022/05/GHSA-2cqv-mfgc-j2h4/GHSA-2cqv-mfgc-j2h4.json index f433dc949b1..c7dad07f88f 100644 --- a/advisories/unreviewed/2022/05/GHSA-2cqv-mfgc-j2h4/GHSA-2cqv-mfgc-j2h4.json +++ b/advisories/unreviewed/2022/05/GHSA-2cqv-mfgc-j2h4/GHSA-2cqv-mfgc-j2h4.json @@ -7,12 +7,8 @@ "CVE-2020-28054" ], "details": "JamoDat TSMManager Collector version up to 6.5.0.21 is vulnerable to an Authorization Bypass because the Collector component is not properly validating an authenticated session with the Viewer. If the Viewer has been modified (binary patched) and the Bypass Login functionality is being used, an attacker can request every Collector's functionality as if they were a properly logged-in user: administrating connected instances, reviewing logs, editing configurations, accessing the instances' consoles, accessing hardware configurations, etc.Exploiting this vulnerability won't grant an attacker access nor control on remote ISP servers as no credentials is sent with the request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2cqx-cjpv-4c7m/GHSA-2cqx-cjpv-4c7m.json b/advisories/unreviewed/2022/05/GHSA-2cqx-cjpv-4c7m/GHSA-2cqx-cjpv-4c7m.json index 7dc352f48c2..fd6576fff21 100644 --- a/advisories/unreviewed/2022/05/GHSA-2cqx-cjpv-4c7m/GHSA-2cqx-cjpv-4c7m.json +++ b/advisories/unreviewed/2022/05/GHSA-2cqx-cjpv-4c7m/GHSA-2cqx-cjpv-4c7m.json @@ -7,12 +7,8 @@ "CVE-2020-28577" ], "details": "An improper access control information disclosure vulnerability in Trend Micro Apex One and OfficeScan XG SP1 could allow an unauthenticated user to connect to the product server and reveal server hostname and db names.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2cvc-xf33-4m7f/GHSA-2cvc-xf33-4m7f.json b/advisories/unreviewed/2022/05/GHSA-2cvc-xf33-4m7f/GHSA-2cvc-xf33-4m7f.json index 9dc7bdedca6..169c9627b91 100644 --- a/advisories/unreviewed/2022/05/GHSA-2cvc-xf33-4m7f/GHSA-2cvc-xf33-4m7f.json +++ b/advisories/unreviewed/2022/05/GHSA-2cvc-xf33-4m7f/GHSA-2cvc-xf33-4m7f.json @@ -7,12 +7,8 @@ "CVE-2019-19874" ], "details": "An issue was discovered in B&R Industrial Automation APROL before R4.2 V7.08. Some web scripts in the web interface allowed injection and execution of arbitrary unintended commands on the web server, a different vulnerability than CVE-2019-16364.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2gvv-5vxj-jrw7/GHSA-2gvv-5vxj-jrw7.json b/advisories/unreviewed/2022/05/GHSA-2gvv-5vxj-jrw7/GHSA-2gvv-5vxj-jrw7.json index 8d9c6881e53..7b26d96295d 100644 --- a/advisories/unreviewed/2022/05/GHSA-2gvv-5vxj-jrw7/GHSA-2gvv-5vxj-jrw7.json +++ b/advisories/unreviewed/2022/05/GHSA-2gvv-5vxj-jrw7/GHSA-2gvv-5vxj-jrw7.json @@ -7,12 +7,8 @@ "CVE-2020-7554" ], "details": "A CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists in IGSS Definition (Def.exe) version 14.0.0.20247 that could cause Remote Code Execution when malicious CGF (Configuration Group File) file is imported to IGSS Definition.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2h67-7cm6-5mr3/GHSA-2h67-7cm6-5mr3.json b/advisories/unreviewed/2022/05/GHSA-2h67-7cm6-5mr3/GHSA-2h67-7cm6-5mr3.json index 1eb62e1f909..20990a2dd5e 100644 --- a/advisories/unreviewed/2022/05/GHSA-2h67-7cm6-5mr3/GHSA-2h67-7cm6-5mr3.json +++ b/advisories/unreviewed/2022/05/GHSA-2h67-7cm6-5mr3/GHSA-2h67-7cm6-5mr3.json @@ -7,12 +7,8 @@ "CVE-2020-8353" ], "details": "Prior to August 10, 2020, some Lenovo Desktop and Workstation systems were shipped with the Embedded Host Based Configuration (EHBC) feature of Intel AMT enabled. This could allow an administrative user with local access to configure Intel AMT.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2hqr-548x-6625/GHSA-2hqr-548x-6625.json b/advisories/unreviewed/2022/05/GHSA-2hqr-548x-6625/GHSA-2hqr-548x-6625.json index ffa4047999b..f3d018654cb 100644 --- a/advisories/unreviewed/2022/05/GHSA-2hqr-548x-6625/GHSA-2hqr-548x-6625.json +++ b/advisories/unreviewed/2022/05/GHSA-2hqr-548x-6625/GHSA-2hqr-548x-6625.json @@ -7,12 +7,8 @@ "CVE-2020-25465" ], "details": "Null Pointer Dereference. in xObjectBindingFromExpression at moddable/xs/sources/xsSyntaxical.c:3419 in Moddable SDK before OS200908 causes a denial of service (SEGV).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2j5g-6x52-988w/GHSA-2j5g-6x52-988w.json b/advisories/unreviewed/2022/05/GHSA-2j5g-6x52-988w/GHSA-2j5g-6x52-988w.json index ef9e1532b86..f154c24016c 100644 --- a/advisories/unreviewed/2022/05/GHSA-2j5g-6x52-988w/GHSA-2j5g-6x52-988w.json +++ b/advisories/unreviewed/2022/05/GHSA-2j5g-6x52-988w/GHSA-2j5g-6x52-988w.json @@ -7,12 +7,8 @@ "CVE-2020-6316" ], "details": "SAP ERP and SAP S/4 HANA allows an authenticated user to see cost records to objects to which he has no authorization in PS reporting, leading to Missing Authorization check.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2j5j-7jpr-whqc/GHSA-2j5j-7jpr-whqc.json b/advisories/unreviewed/2022/05/GHSA-2j5j-7jpr-whqc/GHSA-2j5j-7jpr-whqc.json index 8ea7e6597cc..da955abfa8e 100644 --- a/advisories/unreviewed/2022/05/GHSA-2j5j-7jpr-whqc/GHSA-2j5j-7jpr-whqc.json +++ b/advisories/unreviewed/2022/05/GHSA-2j5j-7jpr-whqc/GHSA-2j5j-7jpr-whqc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2jg8-c8q8-842v/GHSA-2jg8-c8q8-842v.json b/advisories/unreviewed/2022/05/GHSA-2jg8-c8q8-842v/GHSA-2jg8-c8q8-842v.json index f7122bde5af..b3d45732f9b 100644 --- a/advisories/unreviewed/2022/05/GHSA-2jg8-c8q8-842v/GHSA-2jg8-c8q8-842v.json +++ b/advisories/unreviewed/2022/05/GHSA-2jg8-c8q8-842v/GHSA-2jg8-c8q8-842v.json @@ -7,12 +7,8 @@ "CVE-2020-28139" ], "details": "SourceCodester Online Clothing Store 1.0 is affected by a cross-site scripting (XSS) vulnerability via a Offer Detail field in offer.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2jvc-fw3x-6gp3/GHSA-2jvc-fw3x-6gp3.json b/advisories/unreviewed/2022/05/GHSA-2jvc-fw3x-6gp3/GHSA-2jvc-fw3x-6gp3.json index 3d63aac12b9..4de182816fd 100644 --- a/advisories/unreviewed/2022/05/GHSA-2jvc-fw3x-6gp3/GHSA-2jvc-fw3x-6gp3.json +++ b/advisories/unreviewed/2022/05/GHSA-2jvc-fw3x-6gp3/GHSA-2jvc-fw3x-6gp3.json @@ -7,12 +7,8 @@ "CVE-2020-25464" ], "details": "Heap buffer overflow at moddable/xs/sources/xsDebug.c in Moddable SDK before before 20200903. The top stack frame is only partially initialized because the stack overflowed while creating the frame. This leads to a crash in the code sending the stack frame to the debugger.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2pwv-866g-6jw3/GHSA-2pwv-866g-6jw3.json b/advisories/unreviewed/2022/05/GHSA-2pwv-866g-6jw3/GHSA-2pwv-866g-6jw3.json index 105c967288d..6bd7cfce947 100644 --- a/advisories/unreviewed/2022/05/GHSA-2pwv-866g-6jw3/GHSA-2pwv-866g-6jw3.json +++ b/advisories/unreviewed/2022/05/GHSA-2pwv-866g-6jw3/GHSA-2pwv-866g-6jw3.json @@ -7,12 +7,8 @@ "CVE-2020-13620" ], "details": "Fastweb FASTGate GPON FGA2130FWB devices through 2020-05-26 allow CSRF via the router administration web panel, leading to an attacker's ability to perform administrative actions such as modifying the configuration.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2q3r-568x-rqmv/GHSA-2q3r-568x-rqmv.json b/advisories/unreviewed/2022/05/GHSA-2q3r-568x-rqmv/GHSA-2q3r-568x-rqmv.json index 227d1323c75..0b701c47178 100644 --- a/advisories/unreviewed/2022/05/GHSA-2q3r-568x-rqmv/GHSA-2q3r-568x-rqmv.json +++ b/advisories/unreviewed/2022/05/GHSA-2q3r-568x-rqmv/GHSA-2q3r-568x-rqmv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2q62-rw6m-pchg/GHSA-2q62-rw6m-pchg.json b/advisories/unreviewed/2022/05/GHSA-2q62-rw6m-pchg/GHSA-2q62-rw6m-pchg.json index 2cd1fd5c58c..9ce8341882d 100644 --- a/advisories/unreviewed/2022/05/GHSA-2q62-rw6m-pchg/GHSA-2q62-rw6m-pchg.json +++ b/advisories/unreviewed/2022/05/GHSA-2q62-rw6m-pchg/GHSA-2q62-rw6m-pchg.json @@ -7,12 +7,8 @@ "CVE-2005-3302" ], "details": "Eval injection vulnerability in bvh_import.py in Blender 2.36 allows attackers to execute arbitrary Python code via a hierarchy element in a .bvh file, which is supplied to an eval function call.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2qv5-c5x6-3fqr/GHSA-2qv5-c5x6-3fqr.json b/advisories/unreviewed/2022/05/GHSA-2qv5-c5x6-3fqr/GHSA-2qv5-c5x6-3fqr.json index 783a30e1ebf..7eb8eb011a0 100644 --- a/advisories/unreviewed/2022/05/GHSA-2qv5-c5x6-3fqr/GHSA-2qv5-c5x6-3fqr.json +++ b/advisories/unreviewed/2022/05/GHSA-2qv5-c5x6-3fqr/GHSA-2qv5-c5x6-3fqr.json @@ -7,12 +7,8 @@ "CVE-2020-27916" ], "details": "An out-of-bounds write was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1, iOS 14.2 and iPadOS 14.2, tvOS 14.2, watchOS 7.1. Processing a maliciously crafted audio file may lead to arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2qvg-hmrm-p9gh/GHSA-2qvg-hmrm-p9gh.json b/advisories/unreviewed/2022/05/GHSA-2qvg-hmrm-p9gh/GHSA-2qvg-hmrm-p9gh.json index 3613021baec..539b8f5b720 100644 --- a/advisories/unreviewed/2022/05/GHSA-2qvg-hmrm-p9gh/GHSA-2qvg-hmrm-p9gh.json +++ b/advisories/unreviewed/2022/05/GHSA-2qvg-hmrm-p9gh/GHSA-2qvg-hmrm-p9gh.json @@ -7,12 +7,8 @@ "CVE-2020-29378" ], "details": "An issue was discovered on V-SOL V1600D V2.03.69 and V2.03.57, V1600D4L V1.01.49, V1600D-MINI V1.01.48, V1600G1 V2.0.7 and V1.9.7, and V1600G2 V1.1.4 OLT devices. It is possible to elevate the privilege of a CLI user (to full administrative access) by using the password !j@l#y$z%x6x7q8c9z) for the enable command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2r3h-qggj-vxg9/GHSA-2r3h-qggj-vxg9.json b/advisories/unreviewed/2022/05/GHSA-2r3h-qggj-vxg9/GHSA-2r3h-qggj-vxg9.json index 4266bacbbfb..82e32a84a61 100644 --- a/advisories/unreviewed/2022/05/GHSA-2r3h-qggj-vxg9/GHSA-2r3h-qggj-vxg9.json +++ b/advisories/unreviewed/2022/05/GHSA-2r3h-qggj-vxg9/GHSA-2r3h-qggj-vxg9.json @@ -7,12 +7,8 @@ "CVE-2019-19873" ], "details": "An issue was discovered in B&R Industrial Automation APROL before R4.2 V7.08. An attacker can get information from the AprolSqlServer DBMS by bypassing authentication, a different vulnerability than CVE-2019-16356 and CVE-2019-9983.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2rfm-q54c-ww9j/GHSA-2rfm-q54c-ww9j.json b/advisories/unreviewed/2022/05/GHSA-2rfm-q54c-ww9j/GHSA-2rfm-q54c-ww9j.json index e9af5a59566..94b8305da2c 100644 --- a/advisories/unreviewed/2022/05/GHSA-2rfm-q54c-ww9j/GHSA-2rfm-q54c-ww9j.json +++ b/advisories/unreviewed/2022/05/GHSA-2rfm-q54c-ww9j/GHSA-2rfm-q54c-ww9j.json @@ -7,12 +7,8 @@ "CVE-2020-26956" ], "details": "In some cases, removing HTML elements during sanitization would keep existing SVG event handlers and therefore lead to XSS. This vulnerability affects Firefox < 83, Firefox ESR < 78.5, and Thunderbird < 78.5.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2vq4-6g9q-2xjq/GHSA-2vq4-6g9q-2xjq.json b/advisories/unreviewed/2022/05/GHSA-2vq4-6g9q-2xjq/GHSA-2vq4-6g9q-2xjq.json index 1f01396b7d9..11cf3bc5662 100644 --- a/advisories/unreviewed/2022/05/GHSA-2vq4-6g9q-2xjq/GHSA-2vq4-6g9q-2xjq.json +++ b/advisories/unreviewed/2022/05/GHSA-2vq4-6g9q-2xjq/GHSA-2vq4-6g9q-2xjq.json @@ -7,12 +7,8 @@ "CVE-2020-5800" ], "details": "The Eat Spray Love mobile app for both iOS and Android contains logic that allows users to bypass authentication and retrieve or modify information that they would not normally have access to.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2w49-pm36-8jp5/GHSA-2w49-pm36-8jp5.json b/advisories/unreviewed/2022/05/GHSA-2w49-pm36-8jp5/GHSA-2w49-pm36-8jp5.json index 6fdef63d59b..87c839c0cf2 100644 --- a/advisories/unreviewed/2022/05/GHSA-2w49-pm36-8jp5/GHSA-2w49-pm36-8jp5.json +++ b/advisories/unreviewed/2022/05/GHSA-2w49-pm36-8jp5/GHSA-2w49-pm36-8jp5.json @@ -7,12 +7,8 @@ "CVE-2020-27895" ], "details": "An information disclosure issue existed in the transition of program state. This issue was addressed with improved state handling. This issue is fixed in iTunes 12.11 for Windows. A malicious application may be able to access local users Apple IDs.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2wfq-mq88-h9xc/GHSA-2wfq-mq88-h9xc.json b/advisories/unreviewed/2022/05/GHSA-2wfq-mq88-h9xc/GHSA-2wfq-mq88-h9xc.json index 7b1e93b6418..133ca428531 100644 --- a/advisories/unreviewed/2022/05/GHSA-2wfq-mq88-h9xc/GHSA-2wfq-mq88-h9xc.json +++ b/advisories/unreviewed/2022/05/GHSA-2wfq-mq88-h9xc/GHSA-2wfq-mq88-h9xc.json @@ -7,12 +7,8 @@ "CVE-2020-26962" ], "details": "Cross-origin iframes that contained a login form could have been recognized by the login autofill service, and populated. This could have been used in clickjacking attacks, as well as be read across partitions in dynamic first party isolation. This vulnerability affects Firefox < 83.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2x2j-4f7v-4vp9/GHSA-2x2j-4f7v-4vp9.json b/advisories/unreviewed/2022/05/GHSA-2x2j-4f7v-4vp9/GHSA-2x2j-4f7v-4vp9.json index 8b37cdf15a6..676b95a6fcb 100644 --- a/advisories/unreviewed/2022/05/GHSA-2x2j-4f7v-4vp9/GHSA-2x2j-4f7v-4vp9.json +++ b/advisories/unreviewed/2022/05/GHSA-2x2j-4f7v-4vp9/GHSA-2x2j-4f7v-4vp9.json @@ -7,12 +7,8 @@ "CVE-2020-5678" ], "details": "Stored cross-site scripting vulnerability in GROWI v3.8.1 and earlier allows remote attackers to inject arbitrary script via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-327v-v4jp-xxvm/GHSA-327v-v4jp-xxvm.json b/advisories/unreviewed/2022/05/GHSA-327v-v4jp-xxvm/GHSA-327v-v4jp-xxvm.json index 4657eb92253..3c35c6c1e84 100644 --- a/advisories/unreviewed/2022/05/GHSA-327v-v4jp-xxvm/GHSA-327v-v4jp-xxvm.json +++ b/advisories/unreviewed/2022/05/GHSA-327v-v4jp-xxvm/GHSA-327v-v4jp-xxvm.json @@ -7,12 +7,8 @@ "CVE-2020-5676" ], "details": "GROWI v4.1.3 and earlier allow remote attackers to obtain information which is not allowed to access via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-33cf-w34p-g6pj/GHSA-33cf-w34p-g6pj.json b/advisories/unreviewed/2022/05/GHSA-33cf-w34p-g6pj/GHSA-33cf-w34p-g6pj.json index e7940fd064e..078394f1201 100644 --- a/advisories/unreviewed/2022/05/GHSA-33cf-w34p-g6pj/GHSA-33cf-w34p-g6pj.json +++ b/advisories/unreviewed/2022/05/GHSA-33cf-w34p-g6pj/GHSA-33cf-w34p-g6pj.json @@ -7,12 +7,8 @@ "CVE-2020-25705" ], "details": "A flaw in the way reply ICMP packets are limited in the Linux kernel functionality was found that allows to quickly scan open UDP ports. This flaw allows an off-path remote user to effectively bypassing source port UDP randomization. The highest threat from this vulnerability is to confidentiality and possibly integrity, because software that relies on UDP source port randomization are indirectly affected as well. Kernel versions before 5.10 may be vulnerable to this issue.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-346p-qx4x-g348/GHSA-346p-qx4x-g348.json b/advisories/unreviewed/2022/05/GHSA-346p-qx4x-g348/GHSA-346p-qx4x-g348.json index 73b564bf715..847343e881a 100644 --- a/advisories/unreviewed/2022/05/GHSA-346p-qx4x-g348/GHSA-346p-qx4x-g348.json +++ b/advisories/unreviewed/2022/05/GHSA-346p-qx4x-g348/GHSA-346p-qx4x-g348.json @@ -7,12 +7,8 @@ "CVE-2020-28896" ], "details": "Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $ssl_force_tls was processed if an IMAP server's initial server response was invalid. The connection was not properly closed, and the code could continue attempting to authenticate. This could result in authentication credentials being exposed on an unencrypted connection, or to a machine-in-the-middle.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3496-765w-5xgq/GHSA-3496-765w-5xgq.json b/advisories/unreviewed/2022/05/GHSA-3496-765w-5xgq/GHSA-3496-765w-5xgq.json index 7cd8d818675..b7a2fafbda8 100644 --- a/advisories/unreviewed/2022/05/GHSA-3496-765w-5xgq/GHSA-3496-765w-5xgq.json +++ b/advisories/unreviewed/2022/05/GHSA-3496-765w-5xgq/GHSA-3496-765w-5xgq.json @@ -7,12 +7,8 @@ "CVE-2020-29056" ], "details": "An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 97168P, FD1002S, FD1104, FD1104B, FD1104S, FD1104SN, FD1108S, FD1204S-R2, FD1204SN, FD1204SN-R2, FD1208S-R2, FD1216S-R1, FD1608GS, FD1608SN, FD1616GS, FD1616SN, and FD8000 devices. One can escape from a shell and acquire root privileges by leveraging the TFTP download configuration.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-356p-vp2q-7rg4/GHSA-356p-vp2q-7rg4.json b/advisories/unreviewed/2022/05/GHSA-356p-vp2q-7rg4/GHSA-356p-vp2q-7rg4.json index ba8ead594bf..26a8266de26 100644 --- a/advisories/unreviewed/2022/05/GHSA-356p-vp2q-7rg4/GHSA-356p-vp2q-7rg4.json +++ b/advisories/unreviewed/2022/05/GHSA-356p-vp2q-7rg4/GHSA-356p-vp2q-7rg4.json @@ -7,12 +7,8 @@ "CVE-2019-19878" ], "details": "An issue was discovered in B&R Industrial Automation APROL before R4.2 V7.08. An attacker can get access to historical data from AprolSqlServer by bypassing authentication, a different vulnerability than CVE-2019-16358.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-36jc-62gq-crx2/GHSA-36jc-62gq-crx2.json b/advisories/unreviewed/2022/05/GHSA-36jc-62gq-crx2/GHSA-36jc-62gq-crx2.json index f1226dc313c..9ed687ed371 100644 --- a/advisories/unreviewed/2022/05/GHSA-36jc-62gq-crx2/GHSA-36jc-62gq-crx2.json +++ b/advisories/unreviewed/2022/05/GHSA-36jc-62gq-crx2/GHSA-36jc-62gq-crx2.json @@ -7,12 +7,8 @@ "CVE-2020-5638" ], "details": "Cross-site scripting vulnerability in desknet's NEO (desknet's NEO Small License V5.5 R1.5 and earlier, and desknet's NEO Enterprise License V5.5 R1.5 and earlier) allows remote attackers to inject arbitrary script via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-36mq-qwm2-6rpp/GHSA-36mq-qwm2-6rpp.json b/advisories/unreviewed/2022/05/GHSA-36mq-qwm2-6rpp/GHSA-36mq-qwm2-6rpp.json index 2c019617a01..6e121832f95 100644 --- a/advisories/unreviewed/2022/05/GHSA-36mq-qwm2-6rpp/GHSA-36mq-qwm2-6rpp.json +++ b/advisories/unreviewed/2022/05/GHSA-36mq-qwm2-6rpp/GHSA-36mq-qwm2-6rpp.json @@ -7,12 +7,8 @@ "CVE-2020-17528" ], "details": "Out-of-bounds Write vulnerability in TCP stack of Apache NuttX (incubating) versions up to and including 9.1.0 and 10.0.0 allows attacker to corrupt memory by supplying arbitrary urgent data pointer offsets within TCP packets including beyond the length of the packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-375c-626v-c7m7/GHSA-375c-626v-c7m7.json b/advisories/unreviewed/2022/05/GHSA-375c-626v-c7m7/GHSA-375c-626v-c7m7.json index 17c957b7fee..2fb48d3f590 100644 --- a/advisories/unreviewed/2022/05/GHSA-375c-626v-c7m7/GHSA-375c-626v-c7m7.json +++ b/advisories/unreviewed/2022/05/GHSA-375c-626v-c7m7/GHSA-375c-626v-c7m7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-37ff-c5mh-pmpm/GHSA-37ff-c5mh-pmpm.json b/advisories/unreviewed/2022/05/GHSA-37ff-c5mh-pmpm/GHSA-37ff-c5mh-pmpm.json index a3a91096275..d0d6f87d47f 100644 --- a/advisories/unreviewed/2022/05/GHSA-37ff-c5mh-pmpm/GHSA-37ff-c5mh-pmpm.json +++ b/advisories/unreviewed/2022/05/GHSA-37ff-c5mh-pmpm/GHSA-37ff-c5mh-pmpm.json @@ -7,12 +7,8 @@ "CVE-2020-8691" ], "details": "A logic issue in the firmware of the Intel(R) Ethernet 700 Series Controllers may allow a privileged user to potentially enable escalation of privilege and/or denial of service via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-386r-9hqf-3f7p/GHSA-386r-9hqf-3f7p.json b/advisories/unreviewed/2022/05/GHSA-386r-9hqf-3f7p/GHSA-386r-9hqf-3f7p.json index 1c2e9798017..f8f6a6fbc74 100644 --- a/advisories/unreviewed/2022/05/GHSA-386r-9hqf-3f7p/GHSA-386r-9hqf-3f7p.json +++ b/advisories/unreviewed/2022/05/GHSA-386r-9hqf-3f7p/GHSA-386r-9hqf-3f7p.json @@ -7,12 +7,8 @@ "CVE-2020-25181" ], "details": "WECON PLC Editor Versions 1.3.8 and prior has a heap-based buffer overflow vulnerabilities have been identified that may allow arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3899-4f66-wx7p/GHSA-3899-4f66-wx7p.json b/advisories/unreviewed/2022/05/GHSA-3899-4f66-wx7p/GHSA-3899-4f66-wx7p.json index f0249e642c9..0e6d5370767 100644 --- a/advisories/unreviewed/2022/05/GHSA-3899-4f66-wx7p/GHSA-3899-4f66-wx7p.json +++ b/advisories/unreviewed/2022/05/GHSA-3899-4f66-wx7p/GHSA-3899-4f66-wx7p.json @@ -7,12 +7,8 @@ "CVE-2020-28130" ], "details": "An Arbitrary File Upload in the Upload Image component in SourceCodester Online Library Management System 1.0 allows the user to conduct remote code execution via admin/borrower/index.php?view=add because .php files can be uploaded to admin/borrower/photos (under the web root).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-38q2-qj9f-p542/GHSA-38q2-qj9f-p542.json b/advisories/unreviewed/2022/05/GHSA-38q2-qj9f-p542/GHSA-38q2-qj9f-p542.json index 46ac35ca758..452e52dc1c5 100644 --- a/advisories/unreviewed/2022/05/GHSA-38q2-qj9f-p542/GHSA-38q2-qj9f-p542.json +++ b/advisories/unreviewed/2022/05/GHSA-38q2-qj9f-p542/GHSA-38q2-qj9f-p542.json @@ -7,12 +7,8 @@ "CVE-2020-7337" ], "details": "Incorrect Permission Assignment for Critical Resource vulnerability in McAfee VirusScan Enterprise (VSE) prior to 8.8 Patch 16 allows local administrators to bypass local security protection through VSE not correctly integrating with Windows Defender Application Control via careful manipulation of the Code Integrity checks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3946-qxr3-66h7/GHSA-3946-qxr3-66h7.json b/advisories/unreviewed/2022/05/GHSA-3946-qxr3-66h7/GHSA-3946-qxr3-66h7.json index 3c5981f1f1d..b4b98230df3 100644 --- a/advisories/unreviewed/2022/05/GHSA-3946-qxr3-66h7/GHSA-3946-qxr3-66h7.json +++ b/advisories/unreviewed/2022/05/GHSA-3946-qxr3-66h7/GHSA-3946-qxr3-66h7.json @@ -7,12 +7,8 @@ "CVE-2020-28580" ], "details": "A command injection vulnerability in AddVLANItem of Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an authenticated, remote attacker to send specially crafted HTTP messages and execute arbitrary OS commands with elevated privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3c7w-74wv-vg2f/GHSA-3c7w-74wv-vg2f.json b/advisories/unreviewed/2022/05/GHSA-3c7w-74wv-vg2f/GHSA-3c7w-74wv-vg2f.json index f1280abf12c..b03851ca56b 100644 --- a/advisories/unreviewed/2022/05/GHSA-3c7w-74wv-vg2f/GHSA-3c7w-74wv-vg2f.json +++ b/advisories/unreviewed/2022/05/GHSA-3c7w-74wv-vg2f/GHSA-3c7w-74wv-vg2f.json @@ -7,12 +7,8 @@ "CVE-2019-19286" ], "details": "A vulnerability has been identified in XHQ (All Versions < 6.1). The web interface could allow SQL injection attacks if an attacker is able to modify content of particular web pages.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3cvg-mw7q-93pw/GHSA-3cvg-mw7q-93pw.json b/advisories/unreviewed/2022/05/GHSA-3cvg-mw7q-93pw/GHSA-3cvg-mw7q-93pw.json index 6f20e4063e2..a8d0b672e11 100644 --- a/advisories/unreviewed/2022/05/GHSA-3cvg-mw7q-93pw/GHSA-3cvg-mw7q-93pw.json +++ b/advisories/unreviewed/2022/05/GHSA-3cvg-mw7q-93pw/GHSA-3cvg-mw7q-93pw.json @@ -7,12 +7,8 @@ "CVE-2020-5426" ], "details": "Scheduler for TAS prior to version 1.4.0 was permitting plaintext transmission of UAA client token by sending it over a non-TLS connection. This also depended on the configuration of the MySQL server which is used to cache a UAA client token used by the service. If intercepted the token can give an attacker admin level access in the cloud controller.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3f2m-pjf9-h8qx/GHSA-3f2m-pjf9-h8qx.json b/advisories/unreviewed/2022/05/GHSA-3f2m-pjf9-h8qx/GHSA-3f2m-pjf9-h8qx.json index 16c8c3d8817..5b22309ace8 100644 --- a/advisories/unreviewed/2022/05/GHSA-3f2m-pjf9-h8qx/GHSA-3f2m-pjf9-h8qx.json +++ b/advisories/unreviewed/2022/05/GHSA-3f2m-pjf9-h8qx/GHSA-3f2m-pjf9-h8qx.json @@ -7,12 +7,8 @@ "CVE-2020-28581" ], "details": "A command injection vulnerability in ModifyVLANItem of Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an authenticated, remote attacker to send specially crafted HTTP messages and execute arbitrary OS commands with elevated privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3f7x-qm4p-6qjv/GHSA-3f7x-qm4p-6qjv.json b/advisories/unreviewed/2022/05/GHSA-3f7x-qm4p-6qjv/GHSA-3f7x-qm4p-6qjv.json index d022e51eeaa..bc81fa20d6d 100644 --- a/advisories/unreviewed/2022/05/GHSA-3f7x-qm4p-6qjv/GHSA-3f7x-qm4p-6qjv.json +++ b/advisories/unreviewed/2022/05/GHSA-3f7x-qm4p-6qjv/GHSA-3f7x-qm4p-6qjv.json @@ -7,12 +7,8 @@ "CVE-2020-29137" ], "details": "cPanel before 90.0.17 allows self-XSS via the WHM Transfer Tool interface (SEC-577).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3g22-36vj-437q/GHSA-3g22-36vj-437q.json b/advisories/unreviewed/2022/05/GHSA-3g22-36vj-437q/GHSA-3g22-36vj-437q.json index 5260a1fb074..5710052e0ab 100644 --- a/advisories/unreviewed/2022/05/GHSA-3g22-36vj-437q/GHSA-3g22-36vj-437q.json +++ b/advisories/unreviewed/2022/05/GHSA-3g22-36vj-437q/GHSA-3g22-36vj-437q.json @@ -7,12 +7,8 @@ "CVE-2020-7567" ], "details": "A CWE-311: Missing Encryption of Sensitive Data vulnerability exists in Modicon M221 (all references, all versions) that could allow the attacker to find the password hash when the attacker has captured the traffic between EcoStruxure Machine - Basic software and Modicon M221 controller and broke the encryption keys.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3grh-xhcf-mgx4/GHSA-3grh-xhcf-mgx4.json b/advisories/unreviewed/2022/05/GHSA-3grh-xhcf-mgx4/GHSA-3grh-xhcf-mgx4.json index b3f768b5f1a..3549b9849f2 100644 --- a/advisories/unreviewed/2022/05/GHSA-3grh-xhcf-mgx4/GHSA-3grh-xhcf-mgx4.json +++ b/advisories/unreviewed/2022/05/GHSA-3grh-xhcf-mgx4/GHSA-3grh-xhcf-mgx4.json @@ -7,12 +7,8 @@ "CVE-2020-10762" ], "details": "An information-disclosure flaw was found in the way that gluster-block before 0.5.1 logs the output from gluster-block CLI operations. This includes recording passwords to the cmd_history.log file which is world-readable. This flaw allows local users to obtain sensitive information by reading the log file. The highest threat from this vulnerability is to data confidentiality.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3gwj-v962-64pr/GHSA-3gwj-v962-64pr.json b/advisories/unreviewed/2022/05/GHSA-3gwj-v962-64pr/GHSA-3gwj-v962-64pr.json index a632fcd3d38..69de030f63a 100644 --- a/advisories/unreviewed/2022/05/GHSA-3gwj-v962-64pr/GHSA-3gwj-v962-64pr.json +++ b/advisories/unreviewed/2022/05/GHSA-3gwj-v962-64pr/GHSA-3gwj-v962-64pr.json @@ -7,12 +7,8 @@ "CVE-2019-19869" ], "details": "An issue was discovered in B&R Industrial Automation APROL before R4.2 V7.08. PVs could be changed (unencrypted) by using the IosHttp service and the JSON interface.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3hx9-jrq9-5mh9/GHSA-3hx9-jrq9-5mh9.json b/advisories/unreviewed/2022/05/GHSA-3hx9-jrq9-5mh9/GHSA-3hx9-jrq9-5mh9.json index 9c7c1028f8e..f17af8cb743 100644 --- a/advisories/unreviewed/2022/05/GHSA-3hx9-jrq9-5mh9/GHSA-3hx9-jrq9-5mh9.json +++ b/advisories/unreviewed/2022/05/GHSA-3hx9-jrq9-5mh9/GHSA-3hx9-jrq9-5mh9.json @@ -7,12 +7,8 @@ "CVE-2020-25667" ], "details": "TIFFGetProfiles() in /coders/tiff.c calls strstr() which causes a large out-of-bounds read when it searches for `\"dc:format=\\\"image/dng\\\"` within `profile` due to improper string handling, when a crafted input file is provided to ImageMagick. The patch uses a StringInfo type instead of a raw C string to remedy this. This could cause an impact to availability of the application. This flaw affects ImageMagick versions prior to 7.0.9-0.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3j43-3g85-j77v/GHSA-3j43-3g85-j77v.json b/advisories/unreviewed/2022/05/GHSA-3j43-3g85-j77v/GHSA-3j43-3g85-j77v.json index 4bc575ee877..c181716e6d5 100644 --- a/advisories/unreviewed/2022/05/GHSA-3j43-3g85-j77v/GHSA-3j43-3g85-j77v.json +++ b/advisories/unreviewed/2022/05/GHSA-3j43-3g85-j77v/GHSA-3j43-3g85-j77v.json @@ -7,12 +7,8 @@ "CVE-2020-3441" ], "details": "A vulnerability in Cisco Webex Meetings and Cisco Webex Meetings Server could allow an unauthenticated, remote attacker to view sensitive information from the meeting room lobby. This vulnerability is due to insufficient protection of sensitive participant information. An attacker could exploit this vulnerability by browsing the Webex roster. A successful exploit could allow the attacker to gather information about other Webex participants, such as email address and IP address, while waiting in the lobby.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3j6w-7mhc-r5hr/GHSA-3j6w-7mhc-r5hr.json b/advisories/unreviewed/2022/05/GHSA-3j6w-7mhc-r5hr/GHSA-3j6w-7mhc-r5hr.json index e60150e0d13..b7bf809c918 100644 --- a/advisories/unreviewed/2022/05/GHSA-3j6w-7mhc-r5hr/GHSA-3j6w-7mhc-r5hr.json +++ b/advisories/unreviewed/2022/05/GHSA-3j6w-7mhc-r5hr/GHSA-3j6w-7mhc-r5hr.json @@ -7,12 +7,8 @@ "CVE-2020-27556" ], "details": "A predictable device ID in BASETech GE-131 BT-1837836 firmware 20180921 allows unauthenticated remote attackers to connect to the device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3j95-8976-jfmp/GHSA-3j95-8976-jfmp.json b/advisories/unreviewed/2022/05/GHSA-3j95-8976-jfmp/GHSA-3j95-8976-jfmp.json index 060bed1935c..fa2612b3c42 100644 --- a/advisories/unreviewed/2022/05/GHSA-3j95-8976-jfmp/GHSA-3j95-8976-jfmp.json +++ b/advisories/unreviewed/2022/05/GHSA-3j95-8976-jfmp/GHSA-3j95-8976-jfmp.json @@ -7,12 +7,8 @@ "CVE-2020-28332" ], "details": "Barco wePresent WiPG-1600W devices download code without an Integrity Check. Affected Version(s): 2.5.1.8, 2.5.0.25, 2.5.0.24, 2.4.1.19. The Barco wePresent WiPG-1600W firmware does not perform verification of digitally signed firmware updates and is susceptible to processing and installing modified/malicious images.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3jhw-mxw2-vh5x/GHSA-3jhw-mxw2-vh5x.json b/advisories/unreviewed/2022/05/GHSA-3jhw-mxw2-vh5x/GHSA-3jhw-mxw2-vh5x.json index fcaaf6d05f7..44eb5724650 100644 --- a/advisories/unreviewed/2022/05/GHSA-3jhw-mxw2-vh5x/GHSA-3jhw-mxw2-vh5x.json +++ b/advisories/unreviewed/2022/05/GHSA-3jhw-mxw2-vh5x/GHSA-3jhw-mxw2-vh5x.json @@ -7,12 +7,8 @@ "CVE-2020-28251" ], "details": "NETSCOUT AirMagnet Enterprise 11.1.4 build 37257 and earlier has a sensor escalated privileges vulnerability that can be exploited to provide someone with administrative access to a sensor, with credentials to invoke a command to provide root access to the operating system. The attacker must complete a straightforward password-cracking exercise.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3jm3-wf93-rc5x/GHSA-3jm3-wf93-rc5x.json b/advisories/unreviewed/2022/05/GHSA-3jm3-wf93-rc5x/GHSA-3jm3-wf93-rc5x.json index 07e4605a223..53c545fe76f 100644 --- a/advisories/unreviewed/2022/05/GHSA-3jm3-wf93-rc5x/GHSA-3jm3-wf93-rc5x.json +++ b/advisories/unreviewed/2022/05/GHSA-3jm3-wf93-rc5x/GHSA-3jm3-wf93-rc5x.json @@ -7,12 +7,8 @@ "CVE-2020-6879" ], "details": "Some ZTE devices have input verification vulnerabilities. The devices support configuring a static prefix through the web management page. The restriction of the front-end code can be bypassed by constructing a POST request message and sending the request to the creation of a static routing rule configuration interface. The WEB service backend fails to effectively verify the abnormal input. As a result, the attacker can successfully use the vulnerability to tamper parameter values. This affects: ZXHN Z500 V1.0.0.2B1.1000 and ZXHN F670L V1.1.10P1N2E. This is fixed in ZXHN Z500 V1.0.1.1B1.1000 and ZXHN F670L V1.1.10P2N2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3pfh-89c7-75qg/GHSA-3pfh-89c7-75qg.json b/advisories/unreviewed/2022/05/GHSA-3pfh-89c7-75qg/GHSA-3pfh-89c7-75qg.json index 0d462eeb475..4bc748fcd39 100644 --- a/advisories/unreviewed/2022/05/GHSA-3pfh-89c7-75qg/GHSA-3pfh-89c7-75qg.json +++ b/advisories/unreviewed/2022/05/GHSA-3pfh-89c7-75qg/GHSA-3pfh-89c7-75qg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3qgm-cw58-7h2p/GHSA-3qgm-cw58-7h2p.json b/advisories/unreviewed/2022/05/GHSA-3qgm-cw58-7h2p/GHSA-3qgm-cw58-7h2p.json index b03c9ca1384..ff6541d5684 100644 --- a/advisories/unreviewed/2022/05/GHSA-3qgm-cw58-7h2p/GHSA-3qgm-cw58-7h2p.json +++ b/advisories/unreviewed/2022/05/GHSA-3qgm-cw58-7h2p/GHSA-3qgm-cw58-7h2p.json @@ -7,12 +7,8 @@ "CVE-2020-26958" ], "details": "Firefox did not block execution of scripts with incorrect MIME types when the response was intercepted and cached through a ServiceWorker. This could lead to a cross-site script inclusion vulnerability, or a Content Security Policy bypass. This vulnerability affects Firefox < 83, Firefox ESR < 78.5, and Thunderbird < 78.5.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3rc9-qgq4-2p4w/GHSA-3rc9-qgq4-2p4w.json b/advisories/unreviewed/2022/05/GHSA-3rc9-qgq4-2p4w/GHSA-3rc9-qgq4-2p4w.json index ed973185dca..e6af5886ac1 100644 --- a/advisories/unreviewed/2022/05/GHSA-3rc9-qgq4-2p4w/GHSA-3rc9-qgq4-2p4w.json +++ b/advisories/unreviewed/2022/05/GHSA-3rc9-qgq4-2p4w/GHSA-3rc9-qgq4-2p4w.json @@ -7,12 +7,8 @@ "CVE-2020-28175" ], "details": "There is a local privilege escalation vulnerability in Alfredo Milani Comparetti SpeedFan 4.52. Attackers can use constructed programs to increase user privileges", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3v2j-f789-x3jr/GHSA-3v2j-f789-x3jr.json b/advisories/unreviewed/2022/05/GHSA-3v2j-f789-x3jr/GHSA-3v2j-f789-x3jr.json index 4c0aecbf5a5..60231dd4c5d 100644 --- a/advisories/unreviewed/2022/05/GHSA-3v2j-f789-x3jr/GHSA-3v2j-f789-x3jr.json +++ b/advisories/unreviewed/2022/05/GHSA-3v2j-f789-x3jr/GHSA-3v2j-f789-x3jr.json @@ -7,12 +7,8 @@ "CVE-2020-7571" ], "details": "A CWE-79 Multiple Improper Neutralization of Input During Web Page Generation (Cross-site Scripting Reflected) vulnerability exists in EcoStruxure Building Operation WebReports V1.9 - V3.1 that could cause a remote attacker to inject arbitrary web script or HTML due to incorrect sanitization of user supplied data and achieve a Cross-Site Scripting reflected attack against other WebReport users.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3w6g-24mq-35j6/GHSA-3w6g-24mq-35j6.json b/advisories/unreviewed/2022/05/GHSA-3w6g-24mq-35j6/GHSA-3w6g-24mq-35j6.json index 5b2ddef4990..c69b8adb151 100644 --- a/advisories/unreviewed/2022/05/GHSA-3w6g-24mq-35j6/GHSA-3w6g-24mq-35j6.json +++ b/advisories/unreviewed/2022/05/GHSA-3w6g-24mq-35j6/GHSA-3w6g-24mq-35j6.json @@ -7,12 +7,8 @@ "CVE-2020-7550" ], "details": "A CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists in IGSS Definition (Def.exe) version 14.0.0.20247 and prior that could cause Remote Code Execution when malicious CGF (Configuration Group File) file is imported to IGSS Definition.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3wv2-v64p-7q7m/GHSA-3wv2-v64p-7q7m.json b/advisories/unreviewed/2022/05/GHSA-3wv2-v64p-7q7m/GHSA-3wv2-v64p-7q7m.json index cbdf88f9698..60bc70d9106 100644 --- a/advisories/unreviewed/2022/05/GHSA-3wv2-v64p-7q7m/GHSA-3wv2-v64p-7q7m.json +++ b/advisories/unreviewed/2022/05/GHSA-3wv2-v64p-7q7m/GHSA-3wv2-v64p-7q7m.json @@ -7,12 +7,8 @@ "CVE-2019-19285" ], "details": "A vulnerability has been identified in XHQ (All Versions < 6.1). The web interface could allow injections that could lead to XSS attacks if unsuspecting users are tricked into accessing a malicious link.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3x56-fp32-hw97/GHSA-3x56-fp32-hw97.json b/advisories/unreviewed/2022/05/GHSA-3x56-fp32-hw97/GHSA-3x56-fp32-hw97.json index 66cffa88870..bd19a650212 100644 --- a/advisories/unreviewed/2022/05/GHSA-3x56-fp32-hw97/GHSA-3x56-fp32-hw97.json +++ b/advisories/unreviewed/2022/05/GHSA-3x56-fp32-hw97/GHSA-3x56-fp32-hw97.json @@ -7,12 +7,8 @@ "CVE-2020-26964" ], "details": "If the Remote Debugging via USB feature was enabled in Firefox for Android on an Android version prior to Android 6.0, untrusted apps could have connected to the feature and operated with the privileges of the browser to read and interact with web content. The feature was implemented as a unix domain socket, protected by the Android SELinux policy; however, SELinux was not enforced for versions prior to 6.0. This was fixed by removing the Remote Debugging via USB feature from affected devices. *Note: This issue only affected Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 83.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3x7p-q29c-47qm/GHSA-3x7p-q29c-47qm.json b/advisories/unreviewed/2022/05/GHSA-3x7p-q29c-47qm/GHSA-3x7p-q29c-47qm.json index 3b114709476..843b20d8e5a 100644 --- a/advisories/unreviewed/2022/05/GHSA-3x7p-q29c-47qm/GHSA-3x7p-q29c-47qm.json +++ b/advisories/unreviewed/2022/05/GHSA-3x7p-q29c-47qm/GHSA-3x7p-q29c-47qm.json @@ -7,12 +7,8 @@ "CVE-2018-16723" ], "details": "In Jingyun Antivirus v2.4.2.39, the driver file (ZySandbox.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x12364020.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3xcq-6vjj-wqx7/GHSA-3xcq-6vjj-wqx7.json b/advisories/unreviewed/2022/05/GHSA-3xcq-6vjj-wqx7/GHSA-3xcq-6vjj-wqx7.json index 5648ba491cb..6e3277d7e52 100644 --- a/advisories/unreviewed/2022/05/GHSA-3xcq-6vjj-wqx7/GHSA-3xcq-6vjj-wqx7.json +++ b/advisories/unreviewed/2022/05/GHSA-3xcq-6vjj-wqx7/GHSA-3xcq-6vjj-wqx7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3xfq-3889-4q8m/GHSA-3xfq-3889-4q8m.json b/advisories/unreviewed/2022/05/GHSA-3xfq-3889-4q8m/GHSA-3xfq-3889-4q8m.json index 7dbb39d2c2d..549d45d324c 100644 --- a/advisories/unreviewed/2022/05/GHSA-3xfq-3889-4q8m/GHSA-3xfq-3889-4q8m.json +++ b/advisories/unreviewed/2022/05/GHSA-3xfq-3889-4q8m/GHSA-3xfq-3889-4q8m.json @@ -7,12 +7,8 @@ "CVE-2020-8766" ], "details": "Improper conditions check in the Intel(R) SGX DCAP software before version 1.6 may allow an unauthenticated user to potentially enable denial of service via adjacent access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3xv5-g593-pv7f/GHSA-3xv5-g593-pv7f.json b/advisories/unreviewed/2022/05/GHSA-3xv5-g593-pv7f/GHSA-3xv5-g593-pv7f.json index 71c0d947fd5..b63e7ee9e71 100644 --- a/advisories/unreviewed/2022/05/GHSA-3xv5-g593-pv7f/GHSA-3xv5-g593-pv7f.json +++ b/advisories/unreviewed/2022/05/GHSA-3xv5-g593-pv7f/GHSA-3xv5-g593-pv7f.json @@ -7,12 +7,8 @@ "CVE-2020-29441" ], "details": "An issue was discovered in the Upload Widget in OutSystems Platform 10 before 10.0.1019.0. An unauthenticated attacker can upload arbitrary files. In some cases, this attack may consume the available database space (Denial of Service), corrupt legitimate data if files are being processed asynchronously, or deny access to legitimate uploaded files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-425j-2mfw-73xx/GHSA-425j-2mfw-73xx.json b/advisories/unreviewed/2022/05/GHSA-425j-2mfw-73xx/GHSA-425j-2mfw-73xx.json index 13a25a4f8cf..fab1ba9255e 100644 --- a/advisories/unreviewed/2022/05/GHSA-425j-2mfw-73xx/GHSA-425j-2mfw-73xx.json +++ b/advisories/unreviewed/2022/05/GHSA-425j-2mfw-73xx/GHSA-425j-2mfw-73xx.json @@ -7,12 +7,8 @@ "CVE-2020-28978" ], "details": "The Canto plugin 1.3.0 for WordPress contains blind SSRF vulnerability. It allows an unauthenticated attacker can make a request to any internal and external server via /includes/lib/tree.php?subdomain=SSRF.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-427q-fqw6-mhwm/GHSA-427q-fqw6-mhwm.json b/advisories/unreviewed/2022/05/GHSA-427q-fqw6-mhwm/GHSA-427q-fqw6-mhwm.json index 714875b6a67..ab7207928dc 100644 --- a/advisories/unreviewed/2022/05/GHSA-427q-fqw6-mhwm/GHSA-427q-fqw6-mhwm.json +++ b/advisories/unreviewed/2022/05/GHSA-427q-fqw6-mhwm/GHSA-427q-fqw6-mhwm.json @@ -7,12 +7,8 @@ "CVE-2020-12595" ], "details": "An information disclosure flaw allows a malicious, authenticated, privileged web UI user to obtain a password for a remote SCP backup server that they might not otherwise be authorized to access. This affects SMG prior to 10.7.4.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-42gg-rrg8-33cj/GHSA-42gg-rrg8-33cj.json b/advisories/unreviewed/2022/05/GHSA-42gg-rrg8-33cj/GHSA-42gg-rrg8-33cj.json index bcae5ebbacf..f498f999599 100644 --- a/advisories/unreviewed/2022/05/GHSA-42gg-rrg8-33cj/GHSA-42gg-rrg8-33cj.json +++ b/advisories/unreviewed/2022/05/GHSA-42gg-rrg8-33cj/GHSA-42gg-rrg8-33cj.json @@ -7,12 +7,8 @@ "CVE-2020-26508" ], "details": "The WebTools component on Canon Oce ColorWave 3500 5.1.1.0 devices allows attackers to retrieve stored SMB credentials via the export feature, even though these are intentionally inaccessible in the UI.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-42qq-mh3v-978m/GHSA-42qq-mh3v-978m.json b/advisories/unreviewed/2022/05/GHSA-42qq-mh3v-978m/GHSA-42qq-mh3v-978m.json index cc3e1448c2d..f929e2aa4eb 100644 --- a/advisories/unreviewed/2022/05/GHSA-42qq-mh3v-978m/GHSA-42qq-mh3v-978m.json +++ b/advisories/unreviewed/2022/05/GHSA-42qq-mh3v-978m/GHSA-42qq-mh3v-978m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-42wg-x8j8-xh4h/GHSA-42wg-x8j8-xh4h.json b/advisories/unreviewed/2022/05/GHSA-42wg-x8j8-xh4h/GHSA-42wg-x8j8-xh4h.json index f657e483b44..4166c735cde 100644 --- a/advisories/unreviewed/2022/05/GHSA-42wg-x8j8-xh4h/GHSA-42wg-x8j8-xh4h.json +++ b/advisories/unreviewed/2022/05/GHSA-42wg-x8j8-xh4h/GHSA-42wg-x8j8-xh4h.json @@ -7,12 +7,8 @@ "CVE-2020-28994" ], "details": "A SQL injection vulnerability was discovered in Karenderia Multiple Restaurant System, affecting versions 5.4.2 and below. The vulnerability allows for an unauthenticated attacker to perform various tasks such as modifying and leaking all contents of the database.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-43g3-5cf8-2gm2/GHSA-43g3-5cf8-2gm2.json b/advisories/unreviewed/2022/05/GHSA-43g3-5cf8-2gm2/GHSA-43g3-5cf8-2gm2.json index 95a925404c6..6f749f9e4ae 100644 --- a/advisories/unreviewed/2022/05/GHSA-43g3-5cf8-2gm2/GHSA-43g3-5cf8-2gm2.json +++ b/advisories/unreviewed/2022/05/GHSA-43g3-5cf8-2gm2/GHSA-43g3-5cf8-2gm2.json @@ -7,12 +7,8 @@ "CVE-2020-29600" ], "details": "In AWStats through 7.7, cgi-bin/awstats.pl?config= accepts an absolute pathname, even though it was intended to only read a file in the /etc/awstats/awstats.conf format. NOTE: this issue exists because of an incomplete fix for CVE-2017-1000501.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-43vh-m5cv-9pgr/GHSA-43vh-m5cv-9pgr.json b/advisories/unreviewed/2022/05/GHSA-43vh-m5cv-9pgr/GHSA-43vh-m5cv-9pgr.json index 141bc6f261a..846e4a70036 100644 --- a/advisories/unreviewed/2022/05/GHSA-43vh-m5cv-9pgr/GHSA-43vh-m5cv-9pgr.json +++ b/advisories/unreviewed/2022/05/GHSA-43vh-m5cv-9pgr/GHSA-43vh-m5cv-9pgr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-44c2-6hw8-fv7w/GHSA-44c2-6hw8-fv7w.json b/advisories/unreviewed/2022/05/GHSA-44c2-6hw8-fv7w/GHSA-44c2-6hw8-fv7w.json index 16d614a2a00..6c169b5d20e 100644 --- a/advisories/unreviewed/2022/05/GHSA-44c2-6hw8-fv7w/GHSA-44c2-6hw8-fv7w.json +++ b/advisories/unreviewed/2022/05/GHSA-44c2-6hw8-fv7w/GHSA-44c2-6hw8-fv7w.json @@ -7,12 +7,8 @@ "CVE-2020-29539" ], "details": "A Cross-Site Scripting (XSS) issue in WebUI Translation in Systran Pure Neural Server before 9.7.0 allows a threat actor to have a remote authenticated user run JavaScript from a malicious site.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-457q-vj84-7r8r/GHSA-457q-vj84-7r8r.json b/advisories/unreviewed/2022/05/GHSA-457q-vj84-7r8r/GHSA-457q-vj84-7r8r.json index 01b81525175..98e775733ea 100644 --- a/advisories/unreviewed/2022/05/GHSA-457q-vj84-7r8r/GHSA-457q-vj84-7r8r.json +++ b/advisories/unreviewed/2022/05/GHSA-457q-vj84-7r8r/GHSA-457q-vj84-7r8r.json @@ -7,12 +7,8 @@ "CVE-2020-25660" ], "details": "A flaw was found in the Cephx authentication protocol in versions before 15.2.6 and before 14.2.14, where it does not verify Ceph clients correctly and is then vulnerable to replay attacks in Nautilus. This flaw allows an attacker with access to the Ceph cluster network to authenticate with the Ceph service via a packet sniffer and perform actions allowed by the Ceph service. This issue is a reintroduction of CVE-2018-1128, affecting the msgr2 protocol. The msgr 2 protocol is used for all communication except older clients that do not support the msgr2 protocol. The msgr1 protocol is not affected. The highest threat from this vulnerability is to confidentiality, integrity, and system availability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-45cc-9wgf-p2qq/GHSA-45cc-9wgf-p2qq.json b/advisories/unreviewed/2022/05/GHSA-45cc-9wgf-p2qq/GHSA-45cc-9wgf-p2qq.json index 244530dfabf..a81b7257d59 100644 --- a/advisories/unreviewed/2022/05/GHSA-45cc-9wgf-p2qq/GHSA-45cc-9wgf-p2qq.json +++ b/advisories/unreviewed/2022/05/GHSA-45cc-9wgf-p2qq/GHSA-45cc-9wgf-p2qq.json @@ -7,12 +7,8 @@ "CVE-2020-7568" ], "details": "A CWE-200: Exposure of Sensitive Information to an Unauthorized Actor vulnerability exists in Modicon M221 (all references, all versions) that could allow non sensitive information disclosure when the attacker has captured the traffic between EcoStruxure Machine - Basic software and Modicon M221 controller.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-45qj-m3fv-x87x/GHSA-45qj-m3fv-x87x.json b/advisories/unreviewed/2022/05/GHSA-45qj-m3fv-x87x/GHSA-45qj-m3fv-x87x.json index ee8389a3dd0..185c15e926c 100644 --- a/advisories/unreviewed/2022/05/GHSA-45qj-m3fv-x87x/GHSA-45qj-m3fv-x87x.json +++ b/advisories/unreviewed/2022/05/GHSA-45qj-m3fv-x87x/GHSA-45qj-m3fv-x87x.json @@ -7,12 +7,8 @@ "CVE-2020-9849" ], "details": "An information disclosure issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.0.1, watchOS 7.0, iOS 14.0 and iPadOS 14.0, iTunes for Windows 12.10.9, iCloud for Windows 11.5, tvOS 14.0. A remote attacker may be able to leak memory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-47gg-jmh3-w48g/GHSA-47gg-jmh3-w48g.json b/advisories/unreviewed/2022/05/GHSA-47gg-jmh3-w48g/GHSA-47gg-jmh3-w48g.json index 248908e320f..31c443a3948 100644 --- a/advisories/unreviewed/2022/05/GHSA-47gg-jmh3-w48g/GHSA-47gg-jmh3-w48g.json +++ b/advisories/unreviewed/2022/05/GHSA-47gg-jmh3-w48g/GHSA-47gg-jmh3-w48g.json @@ -7,12 +7,8 @@ "CVE-2020-16850" ], "details": "Mitsubishi MELSEC iQ-R Series PLCs with firmware 49 allow an unauthenticated attacker to halt the industrial process by sending a crafted packet over the network. This denial of service attack exposes Improper Input Validation. After halting, physical access to the PLC is required in order to restore production, and the device state is lost. This is related to R04CPU, RJ71GF11-T2, R04CPU, and RJ71GF11-T2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-492c-w6p5-gppm/GHSA-492c-w6p5-gppm.json b/advisories/unreviewed/2022/05/GHSA-492c-w6p5-gppm/GHSA-492c-w6p5-gppm.json index 43ba1c3e198..66df55538a4 100644 --- a/advisories/unreviewed/2022/05/GHSA-492c-w6p5-gppm/GHSA-492c-w6p5-gppm.json +++ b/advisories/unreviewed/2022/05/GHSA-492c-w6p5-gppm/GHSA-492c-w6p5-gppm.json @@ -7,12 +7,8 @@ "CVE-2020-5641" ], "details": "Cross-site request forgery (CSRF) vulnerability in GS108Ev3 firmware version 2.06.10 and earlier allows remote attackers to hijack the authentication of administrators and the product's settings may be changed without the user's intention or consent via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4fh9-jvf5-584j/GHSA-4fh9-jvf5-584j.json b/advisories/unreviewed/2022/05/GHSA-4fh9-jvf5-584j/GHSA-4fh9-jvf5-584j.json index a0abe235bb1..2a0240c94c2 100644 --- a/advisories/unreviewed/2022/05/GHSA-4fh9-jvf5-584j/GHSA-4fh9-jvf5-584j.json +++ b/advisories/unreviewed/2022/05/GHSA-4fh9-jvf5-584j/GHSA-4fh9-jvf5-584j.json @@ -7,12 +7,8 @@ "CVE-2020-26961" ], "details": "When DNS over HTTPS is in use, it intentionally filters RFC1918 and related IP ranges from the responses as these do not make sense coming from a DoH resolver. However when an IPv4 address was mapped through IPv6, these addresses were erroneously let through, leading to a potential DNS Rebinding attack. This vulnerability affects Firefox < 83, Firefox ESR < 78.5, and Thunderbird < 78.5.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4g99-xhm8-2rwc/GHSA-4g99-xhm8-2rwc.json b/advisories/unreviewed/2022/05/GHSA-4g99-xhm8-2rwc/GHSA-4g99-xhm8-2rwc.json index eca097d1a51..fa08f565f57 100644 --- a/advisories/unreviewed/2022/05/GHSA-4g99-xhm8-2rwc/GHSA-4g99-xhm8-2rwc.json +++ b/advisories/unreviewed/2022/05/GHSA-4g99-xhm8-2rwc/GHSA-4g99-xhm8-2rwc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4g9q-xh6r-r9gw/GHSA-4g9q-xh6r-r9gw.json b/advisories/unreviewed/2022/05/GHSA-4g9q-xh6r-r9gw/GHSA-4g9q-xh6r-r9gw.json index cbb113e55f6..df28d850bab 100644 --- a/advisories/unreviewed/2022/05/GHSA-4g9q-xh6r-r9gw/GHSA-4g9q-xh6r-r9gw.json +++ b/advisories/unreviewed/2022/05/GHSA-4g9q-xh6r-r9gw/GHSA-4g9q-xh6r-r9gw.json @@ -7,12 +7,8 @@ "CVE-2018-16720" ], "details": "In Jingyun Antivirus v2.4.2.39, the driver file (ZySandbox.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x1236001c, a related issue to CVE-2018-16304.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4h59-pfrp-mwp4/GHSA-4h59-pfrp-mwp4.json b/advisories/unreviewed/2022/05/GHSA-4h59-pfrp-mwp4/GHSA-4h59-pfrp-mwp4.json index e905afaa762..f6c6b1f2dbc 100644 --- a/advisories/unreviewed/2022/05/GHSA-4h59-pfrp-mwp4/GHSA-4h59-pfrp-mwp4.json +++ b/advisories/unreviewed/2022/05/GHSA-4h59-pfrp-mwp4/GHSA-4h59-pfrp-mwp4.json @@ -7,12 +7,8 @@ "CVE-2020-28950" ], "details": "The installer of Kaspersky Anti-Ransomware Tool (KART) prior to KART 4.0 Patch C was vulnerable to a DLL hijacking attack that allowed an attacker to elevate privileges during installation process.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4h8j-fjxw-9pcc/GHSA-4h8j-fjxw-9pcc.json b/advisories/unreviewed/2022/05/GHSA-4h8j-fjxw-9pcc/GHSA-4h8j-fjxw-9pcc.json index 770ccaab603..fc2a126248f 100644 --- a/advisories/unreviewed/2022/05/GHSA-4h8j-fjxw-9pcc/GHSA-4h8j-fjxw-9pcc.json +++ b/advisories/unreviewed/2022/05/GHSA-4h8j-fjxw-9pcc/GHSA-4h8j-fjxw-9pcc.json @@ -7,12 +7,8 @@ "CVE-2020-7569" ], "details": "A CWE-434 Unrestricted Upload of File with Dangerous Type vulnerability exists in EcoStruxure Building Operation WebReports V1.9 - V3.1 that could cause an authenticated remote user being able to upload arbitrary files due to incorrect verification of user supplied files and achieve remote code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4h99-r3f2-hx6m/GHSA-4h99-r3f2-hx6m.json b/advisories/unreviewed/2022/05/GHSA-4h99-r3f2-hx6m/GHSA-4h99-r3f2-hx6m.json index 19c8069402c..b2a5b81af27 100644 --- a/advisories/unreviewed/2022/05/GHSA-4h99-r3f2-hx6m/GHSA-4h99-r3f2-hx6m.json +++ b/advisories/unreviewed/2022/05/GHSA-4h99-r3f2-hx6m/GHSA-4h99-r3f2-hx6m.json @@ -7,12 +7,8 @@ "CVE-2020-29380" ], "details": "An issue was discovered on V-SOL V1600D V2.03.69 and V2.03.57, V1600D4L V1.01.49, V1600D-MINI V1.01.48, V1600G1 V2.0.7 and V1.9.7, and V1600G2 V1.1.4 OLT devices. TELNET is offered by default but SSH is not always available. An attacker can intercept passwords sent in cleartext and conduct a man-in-the-middle attack on the management of the appliance.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4hg9-r3gw-2m9q/GHSA-4hg9-r3gw-2m9q.json b/advisories/unreviewed/2022/05/GHSA-4hg9-r3gw-2m9q/GHSA-4hg9-r3gw-2m9q.json index 9dc170d8609..8884689ff13 100644 --- a/advisories/unreviewed/2022/05/GHSA-4hg9-r3gw-2m9q/GHSA-4hg9-r3gw-2m9q.json +++ b/advisories/unreviewed/2022/05/GHSA-4hg9-r3gw-2m9q/GHSA-4hg9-r3gw-2m9q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4hhp-72c4-mc6m/GHSA-4hhp-72c4-mc6m.json b/advisories/unreviewed/2022/05/GHSA-4hhp-72c4-mc6m/GHSA-4hhp-72c4-mc6m.json index cb8594eecb8..1907885214f 100644 --- a/advisories/unreviewed/2022/05/GHSA-4hhp-72c4-mc6m/GHSA-4hhp-72c4-mc6m.json +++ b/advisories/unreviewed/2022/05/GHSA-4hhp-72c4-mc6m/GHSA-4hhp-72c4-mc6m.json @@ -7,12 +7,8 @@ "CVE-2020-23741" ], "details": "In AnyView (network police) network monitoring software 4.6.0.1, there is a local denial of service vulnerability in AnyView, attackers can use a constructed program to cause a computer crash (BSOD).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4hv7-632m-j4jc/GHSA-4hv7-632m-j4jc.json b/advisories/unreviewed/2022/05/GHSA-4hv7-632m-j4jc/GHSA-4hv7-632m-j4jc.json index 9fc6850b0ee..8406672a6ee 100644 --- a/advisories/unreviewed/2022/05/GHSA-4hv7-632m-j4jc/GHSA-4hv7-632m-j4jc.json +++ b/advisories/unreviewed/2022/05/GHSA-4hv7-632m-j4jc/GHSA-4hv7-632m-j4jc.json @@ -7,12 +7,8 @@ "CVE-2020-26129" ], "details": "In JetBrains Ktor before 1.4.1, HTTP request smuggling was possible.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4j7x-9959-phm5/GHSA-4j7x-9959-phm5.json b/advisories/unreviewed/2022/05/GHSA-4j7x-9959-phm5/GHSA-4j7x-9959-phm5.json index 1187650f8f2..88f9c3d9cdf 100644 --- a/advisories/unreviewed/2022/05/GHSA-4j7x-9959-phm5/GHSA-4j7x-9959-phm5.json +++ b/advisories/unreviewed/2022/05/GHSA-4j7x-9959-phm5/GHSA-4j7x-9959-phm5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4jhh-wmhx-r4j7/GHSA-4jhh-wmhx-r4j7.json b/advisories/unreviewed/2022/05/GHSA-4jhh-wmhx-r4j7/GHSA-4jhh-wmhx-r4j7.json index 43ff4739f90..b7b5678785b 100644 --- a/advisories/unreviewed/2022/05/GHSA-4jhh-wmhx-r4j7/GHSA-4jhh-wmhx-r4j7.json +++ b/advisories/unreviewed/2022/05/GHSA-4jhh-wmhx-r4j7/GHSA-4jhh-wmhx-r4j7.json @@ -7,12 +7,8 @@ "CVE-2020-29392" ], "details": "The Estil Hill Lock Password Manager Safe app 2.3 for iOS has a *#06#* backdoor password. An attacker with physical access can unlock the password manager without knowing the master password set by the user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4pj4-7m9h-v9gf/GHSA-4pj4-7m9h-v9gf.json b/advisories/unreviewed/2022/05/GHSA-4pj4-7m9h-v9gf/GHSA-4pj4-7m9h-v9gf.json index db7898af977..fcbfb29e46b 100644 --- a/advisories/unreviewed/2022/05/GHSA-4pj4-7m9h-v9gf/GHSA-4pj4-7m9h-v9gf.json +++ b/advisories/unreviewed/2022/05/GHSA-4pj4-7m9h-v9gf/GHSA-4pj4-7m9h-v9gf.json @@ -7,12 +7,8 @@ "CVE-2020-0466" ], "details": "In do_epoll_ctl and ep_loop_check_proc of eventpoll.c, there is a possible use after free due to a logic error. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-147802478References: Upstream kernel", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4pxg-vm27-pj3f/GHSA-4pxg-vm27-pj3f.json b/advisories/unreviewed/2022/05/GHSA-4pxg-vm27-pj3f/GHSA-4pxg-vm27-pj3f.json index 927d5ad98cf..c3bd8a86564 100644 --- a/advisories/unreviewed/2022/05/GHSA-4pxg-vm27-pj3f/GHSA-4pxg-vm27-pj3f.json +++ b/advisories/unreviewed/2022/05/GHSA-4pxg-vm27-pj3f/GHSA-4pxg-vm27-pj3f.json @@ -7,12 +7,8 @@ "CVE-2020-14234" ], "details": "HCL Domino is susceptible to a Denial of Service vulnerability due to improper validation of user-supplied input, potentially giving an attacker the ability to crash the server. Versions previous to release 9.0.1 FP10 IF6 and release 10.0.1 are affected.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4q43-hrcp-8j28/GHSA-4q43-hrcp-8j28.json b/advisories/unreviewed/2022/05/GHSA-4q43-hrcp-8j28/GHSA-4q43-hrcp-8j28.json index 692a7922ea8..fcd6ded9406 100644 --- a/advisories/unreviewed/2022/05/GHSA-4q43-hrcp-8j28/GHSA-4q43-hrcp-8j28.json +++ b/advisories/unreviewed/2022/05/GHSA-4q43-hrcp-8j28/GHSA-4q43-hrcp-8j28.json @@ -7,12 +7,8 @@ "CVE-2020-28092" ], "details": "PESCMS Team 2.3.2 has multiple reflected XSS via the id parameter:?g=Team&m=Task&a=my&status=3&id=,?g=Team&m=Task&a=my&status=0&id=,?g=Team&m=Task&a=my&status=1&id=,?g=Team&m=Task&a=my&status=10&id=", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4rg7-j3g7-39cf/GHSA-4rg7-j3g7-39cf.json b/advisories/unreviewed/2022/05/GHSA-4rg7-j3g7-39cf/GHSA-4rg7-j3g7-39cf.json index b703e5f7612..fc5a01df42b 100644 --- a/advisories/unreviewed/2022/05/GHSA-4rg7-j3g7-39cf/GHSA-4rg7-j3g7-39cf.json +++ b/advisories/unreviewed/2022/05/GHSA-4rg7-j3g7-39cf/GHSA-4rg7-j3g7-39cf.json @@ -7,12 +7,8 @@ "CVE-2020-29381" ], "details": "An issue was discovered on V-SOL V1600D V2.03.69 and V2.03.57, V1600D4L V1.01.49, V1600D-MINI V1.01.48, V1600G1 V2.0.7 and V1.9.7, and V1600G2 V1.1.4 OLT devices. Command injection can occur in \"upload tftp syslog\" and \"upload tftp configuration\" in the CLI via a crafted filename.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4wm4-5vmp-66g7/GHSA-4wm4-5vmp-66g7.json b/advisories/unreviewed/2022/05/GHSA-4wm4-5vmp-66g7/GHSA-4wm4-5vmp-66g7.json index e127b85e747..cecf843209a 100644 --- a/advisories/unreviewed/2022/05/GHSA-4wm4-5vmp-66g7/GHSA-4wm4-5vmp-66g7.json +++ b/advisories/unreviewed/2022/05/GHSA-4wm4-5vmp-66g7/GHSA-4wm4-5vmp-66g7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-527v-pg89-4p69/GHSA-527v-pg89-4p69.json b/advisories/unreviewed/2022/05/GHSA-527v-pg89-4p69/GHSA-527v-pg89-4p69.json index 5b7d03f07a6..31d294517cb 100644 --- a/advisories/unreviewed/2022/05/GHSA-527v-pg89-4p69/GHSA-527v-pg89-4p69.json +++ b/advisories/unreviewed/2022/05/GHSA-527v-pg89-4p69/GHSA-527v-pg89-4p69.json @@ -7,12 +7,8 @@ "CVE-2020-27486" ], "details": "Garmin Forerunner 235 before 8.20 is affected by: Buffer Overflow. The component is: ConnectIQ TVM. The attack vector is: To exploit the vulnerability, the attacker must upload a malicious ConnectIQ application to the ConnectIQ store. The ConnectIQ program interpreter trusts the string length provided in the data section of the PRG file. It allocates memory for the string immediately, and then copies the string into the TVM object by using a function similar to strcpy. This copy can exceed the length of the allocated string data and overwrite heap data. A successful exploit would allow a ConnectIQ app store application to escape and perform activities outside the restricted application execution environment.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-53g2-3hfr-5746/GHSA-53g2-3hfr-5746.json b/advisories/unreviewed/2022/05/GHSA-53g2-3hfr-5746/GHSA-53g2-3hfr-5746.json index 6cc222f170e..4d7ff68bfff 100644 --- a/advisories/unreviewed/2022/05/GHSA-53g2-3hfr-5746/GHSA-53g2-3hfr-5746.json +++ b/advisories/unreviewed/2022/05/GHSA-53g2-3hfr-5746/GHSA-53g2-3hfr-5746.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-53v6-77g8-mpch/GHSA-53v6-77g8-mpch.json b/advisories/unreviewed/2022/05/GHSA-53v6-77g8-mpch/GHSA-53v6-77g8-mpch.json index 2bbf0b063dd..70a83058879 100644 --- a/advisories/unreviewed/2022/05/GHSA-53v6-77g8-mpch/GHSA-53v6-77g8-mpch.json +++ b/advisories/unreviewed/2022/05/GHSA-53v6-77g8-mpch/GHSA-53v6-77g8-mpch.json @@ -7,12 +7,8 @@ "CVE-2020-25839" ], "details": "NetIQ Identity Manager 4.8 prior to version 4.8 SP2 HF1 are affected by an injection vulnerability. This vulnerability is fixed in NetIQ IdM 4.8 SP2 HF1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-54c6-8fc4-h2j7/GHSA-54c6-8fc4-h2j7.json b/advisories/unreviewed/2022/05/GHSA-54c6-8fc4-h2j7/GHSA-54c6-8fc4-h2j7.json index 50cd777e8df..667c947202b 100644 --- a/advisories/unreviewed/2022/05/GHSA-54c6-8fc4-h2j7/GHSA-54c6-8fc4-h2j7.json +++ b/advisories/unreviewed/2022/05/GHSA-54c6-8fc4-h2j7/GHSA-54c6-8fc4-h2j7.json @@ -7,12 +7,8 @@ "CVE-2020-14207" ], "details": "The DiveBook plugin 1.1.4 for WordPress was prone to a SQL injection within divelog.php, allowing unauthenticated users to retrieve data from the database via the divelog.php filter_diver parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-54fr-cp53-9gm6/GHSA-54fr-cp53-9gm6.json b/advisories/unreviewed/2022/05/GHSA-54fr-cp53-9gm6/GHSA-54fr-cp53-9gm6.json index 67b2f0169aa..2420b620f18 100644 --- a/advisories/unreviewed/2022/05/GHSA-54fr-cp53-9gm6/GHSA-54fr-cp53-9gm6.json +++ b/advisories/unreviewed/2022/05/GHSA-54fr-cp53-9gm6/GHSA-54fr-cp53-9gm6.json @@ -7,12 +7,8 @@ "CVE-2020-17901" ], "details": "Cross-site request forgery (CSRF) in PbootCMS 1.3.2 allows attackers to change the password of a user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-54vj-mhfr-m645/GHSA-54vj-mhfr-m645.json b/advisories/unreviewed/2022/05/GHSA-54vj-mhfr-m645/GHSA-54vj-mhfr-m645.json index cd95bf82321..d5b6b211719 100644 --- a/advisories/unreviewed/2022/05/GHSA-54vj-mhfr-m645/GHSA-54vj-mhfr-m645.json +++ b/advisories/unreviewed/2022/05/GHSA-54vj-mhfr-m645/GHSA-54vj-mhfr-m645.json @@ -7,12 +7,8 @@ "CVE-2020-15300" ], "details": "SuiteCRM through 7.11.13 has an Open Redirect in the Documents module via a crafted SVG document.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-55qw-8gmw-8c9w/GHSA-55qw-8gmw-8c9w.json b/advisories/unreviewed/2022/05/GHSA-55qw-8gmw-8c9w/GHSA-55qw-8gmw-8c9w.json index 78c7955ff30..6ef3de944bb 100644 --- a/advisories/unreviewed/2022/05/GHSA-55qw-8gmw-8c9w/GHSA-55qw-8gmw-8c9w.json +++ b/advisories/unreviewed/2022/05/GHSA-55qw-8gmw-8c9w/GHSA-55qw-8gmw-8c9w.json @@ -7,12 +7,8 @@ "CVE-2020-12524" ], "details": "Uncontrolled Resource Consumption can be exploited to cause the Phoenix Contact HMIs BTP 2043W, BTP 2070W and BTP 2102W in all versions to become unresponsive and not accurately update the display content (Denial of Service).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5732-xrx9-2xhf/GHSA-5732-xrx9-2xhf.json b/advisories/unreviewed/2022/05/GHSA-5732-xrx9-2xhf/GHSA-5732-xrx9-2xhf.json index 40ce79dc058..2ef9da58275 100644 --- a/advisories/unreviewed/2022/05/GHSA-5732-xrx9-2xhf/GHSA-5732-xrx9-2xhf.json +++ b/advisories/unreviewed/2022/05/GHSA-5732-xrx9-2xhf/GHSA-5732-xrx9-2xhf.json @@ -7,12 +7,8 @@ "CVE-2019-14587" ], "details": "Logic issue EDK II may allow an unauthenticated user to potentially enable denial of service via adjacent access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5745-gm5c-ghc4/GHSA-5745-gm5c-ghc4.json b/advisories/unreviewed/2022/05/GHSA-5745-gm5c-ghc4/GHSA-5745-gm5c-ghc4.json index e8a13461350..b4ba087b1a3 100644 --- a/advisories/unreviewed/2022/05/GHSA-5745-gm5c-ghc4/GHSA-5745-gm5c-ghc4.json +++ b/advisories/unreviewed/2022/05/GHSA-5745-gm5c-ghc4/GHSA-5745-gm5c-ghc4.json @@ -7,12 +7,8 @@ "CVE-2020-29580" ], "details": "The official storm Docker images before 1.2.1 contain a blank password for a root user. Systems using the Storm Docker container deployed by affected versions of the Docker image may allow an remote attacker to achieve root access with a blank password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-57v4-px6g-hxrm/GHSA-57v4-px6g-hxrm.json b/advisories/unreviewed/2022/05/GHSA-57v4-px6g-hxrm/GHSA-57v4-px6g-hxrm.json index ee69ff61dbf..740408b92d0 100644 --- a/advisories/unreviewed/2022/05/GHSA-57v4-px6g-hxrm/GHSA-57v4-px6g-hxrm.json +++ b/advisories/unreviewed/2022/05/GHSA-57v4-px6g-hxrm/GHSA-57v4-px6g-hxrm.json @@ -7,12 +7,8 @@ "CVE-2019-14562" ], "details": "Integer overflow in DxeImageVerificationHandler() EDK II may allow an authenticated user to potentially enable denial of service via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-57xj-7245-9x56/GHSA-57xj-7245-9x56.json b/advisories/unreviewed/2022/05/GHSA-57xj-7245-9x56/GHSA-57xj-7245-9x56.json index b9695dd1a3d..346c4ac2d2c 100644 --- a/advisories/unreviewed/2022/05/GHSA-57xj-7245-9x56/GHSA-57xj-7245-9x56.json +++ b/advisories/unreviewed/2022/05/GHSA-57xj-7245-9x56/GHSA-57xj-7245-9x56.json @@ -7,12 +7,8 @@ "CVE-2020-29055" ], "details": "An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 97168P, FD1002S, FD1104, FD1104B, FD1104S, FD1104SN, FD1108S, FD1204S-R2, FD1204SN, FD1204SN-R2, FD1208S-R2, FD1216S-R1, FD1608GS, FD1608SN, FD1616GS, FD1616SN, and FD8000 devices. By default, the appliance can be managed remotely only with HTTP, telnet, and SNMP. It doesn't support SSL/TLS for HTTP or SSH. An attacker can intercept passwords sent in cleartext and conduct man-in-the-middle attacks on the management of the appliance.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-587h-jw63-jwf2/GHSA-587h-jw63-jwf2.json b/advisories/unreviewed/2022/05/GHSA-587h-jw63-jwf2/GHSA-587h-jw63-jwf2.json index 460b617c362..e1a0f3accfd 100644 --- a/advisories/unreviewed/2022/05/GHSA-587h-jw63-jwf2/GHSA-587h-jw63-jwf2.json +++ b/advisories/unreviewed/2022/05/GHSA-587h-jw63-jwf2/GHSA-587h-jw63-jwf2.json @@ -7,12 +7,8 @@ "CVE-2020-27423" ], "details": "Anuko Time Tracker v1.19.23.5311 lacks rate limit on the password reset module which allows attacker to perform Denial of Service attack on any legitimate user's mailbox", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5996-m95h-vq3m/GHSA-5996-m95h-vq3m.json b/advisories/unreviewed/2022/05/GHSA-5996-m95h-vq3m/GHSA-5996-m95h-vq3m.json index 8788a597f6d..d9fa7f5196b 100644 --- a/advisories/unreviewed/2022/05/GHSA-5996-m95h-vq3m/GHSA-5996-m95h-vq3m.json +++ b/advisories/unreviewed/2022/05/GHSA-5996-m95h-vq3m/GHSA-5996-m95h-vq3m.json @@ -7,12 +7,8 @@ "CVE-2020-6939" ], "details": "Tableau Server installations configured with Site-Specific SAML that allows the APIs to be used by unauthenticated users. If exploited, this could allow a malicious user to configure Site-Specific SAML settings and could lead to account takeover for users of that site. Tableau Server versions affected on both Windows and Linux are: 2018.2 through 2018.2.27, 2018.3 through 2018.3.24, 2019.1 through 2019.1.22, 2019.2 through 2019.2.18, 2019.3 through 2019.3.14, 2019.4 through 2019.4.13, 2020.1 through 2020.1.10, 2020.2 through 2020.2.7, and 2020.3 through 2020.3.2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5cff-vfpf-qq5f/GHSA-5cff-vfpf-qq5f.json b/advisories/unreviewed/2022/05/GHSA-5cff-vfpf-qq5f/GHSA-5cff-vfpf-qq5f.json index 35dc7fd92e7..f3b2b2ef1a2 100644 --- a/advisories/unreviewed/2022/05/GHSA-5cff-vfpf-qq5f/GHSA-5cff-vfpf-qq5f.json +++ b/advisories/unreviewed/2022/05/GHSA-5cff-vfpf-qq5f/GHSA-5cff-vfpf-qq5f.json @@ -7,12 +7,8 @@ "CVE-2020-28726" ], "details": "Open redirect in SeedDMS 6.0.13 via the dropfolderfileform1 parameter to out/out.AddDocument.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5ch9-xc8v-9jw8/GHSA-5ch9-xc8v-9jw8.json b/advisories/unreviewed/2022/05/GHSA-5ch9-xc8v-9jw8/GHSA-5ch9-xc8v-9jw8.json index 1a89676b93a..179d8871bc1 100644 --- a/advisories/unreviewed/2022/05/GHSA-5ch9-xc8v-9jw8/GHSA-5ch9-xc8v-9jw8.json +++ b/advisories/unreviewed/2022/05/GHSA-5ch9-xc8v-9jw8/GHSA-5ch9-xc8v-9jw8.json @@ -7,12 +7,8 @@ "CVE-2020-7199" ], "details": "A security vulnerability has been identified in the HPE Edgeline Infrastructure Manager, also known as HPE Edgeline Infrastructure Management Software. The vulnerability could be remotely exploited to bypass remote authentication leading to execution of arbitrary commands, gaining privileged access, causing denial of service, and changing the configuration.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5cmc-7w2j-jpj5/GHSA-5cmc-7w2j-jpj5.json b/advisories/unreviewed/2022/05/GHSA-5cmc-7w2j-jpj5/GHSA-5cmc-7w2j-jpj5.json index 6bb1d186435..93630db688d 100644 --- a/advisories/unreviewed/2022/05/GHSA-5cmc-7w2j-jpj5/GHSA-5cmc-7w2j-jpj5.json +++ b/advisories/unreviewed/2022/05/GHSA-5cmc-7w2j-jpj5/GHSA-5cmc-7w2j-jpj5.json @@ -7,12 +7,8 @@ "CVE-2019-14559" ], "details": "Uncontrolled resource consumption in EDK II may allow an unauthenticated user to potentially enable denial of service via network access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5f89-cfxh-c74m/GHSA-5f89-cfxh-c74m.json b/advisories/unreviewed/2022/05/GHSA-5f89-cfxh-c74m/GHSA-5f89-cfxh-c74m.json index 880b2c56204..3234699b68f 100644 --- a/advisories/unreviewed/2022/05/GHSA-5f89-cfxh-c74m/GHSA-5f89-cfxh-c74m.json +++ b/advisories/unreviewed/2022/05/GHSA-5f89-cfxh-c74m/GHSA-5f89-cfxh-c74m.json @@ -7,12 +7,8 @@ "CVE-2020-27130" ], "details": "A vulnerability in Cisco Security Manager could allow an unauthenticated, remote attacker to gain access to sensitive information. The vulnerability is due to improper validation of directory traversal character sequences within requests to an affected device. An attacker could exploit this vulnerability by sending a crafted request to the affected device. A successful exploit could allow the attacker to download arbitrary files from the affected device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5f9v-j4qm-jv7q/GHSA-5f9v-j4qm-jv7q.json b/advisories/unreviewed/2022/05/GHSA-5f9v-j4qm-jv7q/GHSA-5f9v-j4qm-jv7q.json index e29c9f6fa8d..b6ba63beab8 100644 --- a/advisories/unreviewed/2022/05/GHSA-5f9v-j4qm-jv7q/GHSA-5f9v-j4qm-jv7q.json +++ b/advisories/unreviewed/2022/05/GHSA-5f9v-j4qm-jv7q/GHSA-5f9v-j4qm-jv7q.json @@ -7,12 +7,8 @@ "CVE-2020-25400" ], "details": "Cross domain policies in Taskcafe Project Management tool before version 0.1.0 and 0.1.1 allows remote attackers to access sensitive data such as access token.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5fhf-qx23-f7hx/GHSA-5fhf-qx23-f7hx.json b/advisories/unreviewed/2022/05/GHSA-5fhf-qx23-f7hx/GHSA-5fhf-qx23-f7hx.json index eb5a6b1da07..d5f2ca60cfb 100644 --- a/advisories/unreviewed/2022/05/GHSA-5fhf-qx23-f7hx/GHSA-5fhf-qx23-f7hx.json +++ b/advisories/unreviewed/2022/05/GHSA-5fhf-qx23-f7hx/GHSA-5fhf-qx23-f7hx.json @@ -7,12 +7,8 @@ "CVE-2020-26552" ], "details": "An issue was discovered in Aviatrix Controller before R6.0.2483. Multiple executable files, that implement API endpoints, do not require a valid session ID for access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5fwv-7jpm-2g8v/GHSA-5fwv-7jpm-2g8v.json b/advisories/unreviewed/2022/05/GHSA-5fwv-7jpm-2g8v/GHSA-5fwv-7jpm-2g8v.json index 710bedd597e..8a5ae17c514 100644 --- a/advisories/unreviewed/2022/05/GHSA-5fwv-7jpm-2g8v/GHSA-5fwv-7jpm-2g8v.json +++ b/advisories/unreviewed/2022/05/GHSA-5fwv-7jpm-2g8v/GHSA-5fwv-7jpm-2g8v.json @@ -7,12 +7,8 @@ "CVE-2020-26554" ], "details": "REDDOXX MailDepot 2033 (aka 2.3.3022) allows XSS via an incoming HTML e-mail message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5h56-5v9q-6vx2/GHSA-5h56-5v9q-6vx2.json b/advisories/unreviewed/2022/05/GHSA-5h56-5v9q-6vx2/GHSA-5h56-5v9q-6vx2.json index 4b71f841398..b018d43db1b 100644 --- a/advisories/unreviewed/2022/05/GHSA-5h56-5v9q-6vx2/GHSA-5h56-5v9q-6vx2.json +++ b/advisories/unreviewed/2022/05/GHSA-5h56-5v9q-6vx2/GHSA-5h56-5v9q-6vx2.json @@ -7,12 +7,8 @@ "CVE-2020-25111" ], "details": "An issue was discovered in the IPv6 stack in Contiki through 3.0. There is an insufficient check for the IPv6 header length. This leads to Denial-of-Service and potential Remote Code Execution via a crafted ICMPv6 echo packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5hfp-prmh-cr3m/GHSA-5hfp-prmh-cr3m.json b/advisories/unreviewed/2022/05/GHSA-5hfp-prmh-cr3m/GHSA-5hfp-prmh-cr3m.json index 8555d989d0c..fd1699eae8a 100644 --- a/advisories/unreviewed/2022/05/GHSA-5hfp-prmh-cr3m/GHSA-5hfp-prmh-cr3m.json +++ b/advisories/unreviewed/2022/05/GHSA-5hfp-prmh-cr3m/GHSA-5hfp-prmh-cr3m.json @@ -7,12 +7,8 @@ "CVE-2020-7551" ], "details": "A CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists in IGSS Definition (Def.exe) version 14.0.0.20247 that could cause Remote Code Execution when malicious CGF (Configuration Group File) file is imported to IGSS Definition.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5j2f-fr5v-53mc/GHSA-5j2f-fr5v-53mc.json b/advisories/unreviewed/2022/05/GHSA-5j2f-fr5v-53mc/GHSA-5j2f-fr5v-53mc.json index 9263ef3ea49..55a44a56876 100644 --- a/advisories/unreviewed/2022/05/GHSA-5j2f-fr5v-53mc/GHSA-5j2f-fr5v-53mc.json +++ b/advisories/unreviewed/2022/05/GHSA-5j2f-fr5v-53mc/GHSA-5j2f-fr5v-53mc.json @@ -7,12 +7,8 @@ "CVE-2020-28953" ], "details": "In BigBlueButton before 2.2.29, a user can vote more than once in a single poll.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5jrc-q622-h2ww/GHSA-5jrc-q622-h2ww.json b/advisories/unreviewed/2022/05/GHSA-5jrc-q622-h2ww/GHSA-5jrc-q622-h2ww.json index 195580d7877..e544c86d9f7 100644 --- a/advisories/unreviewed/2022/05/GHSA-5jrc-q622-h2ww/GHSA-5jrc-q622-h2ww.json +++ b/advisories/unreviewed/2022/05/GHSA-5jrc-q622-h2ww/GHSA-5jrc-q622-h2ww.json @@ -7,12 +7,8 @@ "CVE-2020-17529" ], "details": "Out-of-bounds Write vulnerability in TCP Stack of Apache NuttX (incubating) versions up to and including 9.1.0 and 10.0.0 allows attacker to corrupt memory by supplying and invalid fragmentation offset value specified in the IP header. This is only impacts builds with both CONFIG_EXPERIMENTAL and CONFIG_NET_TCP_REASSEMBLY build flags enabled.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5jwp-q2gq-chgq/GHSA-5jwp-q2gq-chgq.json b/advisories/unreviewed/2022/05/GHSA-5jwp-q2gq-chgq/GHSA-5jwp-q2gq-chgq.json index 5330c0c8442..49815f6f9ca 100644 --- a/advisories/unreviewed/2022/05/GHSA-5jwp-q2gq-chgq/GHSA-5jwp-q2gq-chgq.json +++ b/advisories/unreviewed/2022/05/GHSA-5jwp-q2gq-chgq/GHSA-5jwp-q2gq-chgq.json @@ -7,12 +7,8 @@ "CVE-2020-8677" ], "details": "Improper access control in the Intel(R) Visual Compute Accelerator 2, all versions, may allow a privileged user to potentially enable denial of service via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5m9g-c8g6-jvf7/GHSA-5m9g-c8g6-jvf7.json b/advisories/unreviewed/2022/05/GHSA-5m9g-c8g6-jvf7/GHSA-5m9g-c8g6-jvf7.json index c69111e2b95..ba93e92c4d0 100644 --- a/advisories/unreviewed/2022/05/GHSA-5m9g-c8g6-jvf7/GHSA-5m9g-c8g6-jvf7.json +++ b/advisories/unreviewed/2022/05/GHSA-5m9g-c8g6-jvf7/GHSA-5m9g-c8g6-jvf7.json @@ -7,12 +7,8 @@ "CVE-2020-4704" ], "details": "IBM Content Navigator 3.0CD is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 187189.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5pc6-9cmx-jhrg/GHSA-5pc6-9cmx-jhrg.json b/advisories/unreviewed/2022/05/GHSA-5pc6-9cmx-jhrg/GHSA-5pc6-9cmx-jhrg.json index bc8b86bf76b..34125232577 100644 --- a/advisories/unreviewed/2022/05/GHSA-5pc6-9cmx-jhrg/GHSA-5pc6-9cmx-jhrg.json +++ b/advisories/unreviewed/2022/05/GHSA-5pc6-9cmx-jhrg/GHSA-5pc6-9cmx-jhrg.json @@ -7,12 +7,8 @@ "CVE-2020-25738" ], "details": "CyberArk Endpoint Privilege Manager (EPM) 11.1.0.173 allows attackers to bypass a Credential Theft protection mechanism by injecting a DLL into a process that normally has credential access, such as a Chrome process that reads credentials from a SQLite database.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5q44-mpwv-jf5p/GHSA-5q44-mpwv-jf5p.json b/advisories/unreviewed/2022/05/GHSA-5q44-mpwv-jf5p/GHSA-5q44-mpwv-jf5p.json index fcf9df6a950..fce73cd6042 100644 --- a/advisories/unreviewed/2022/05/GHSA-5q44-mpwv-jf5p/GHSA-5q44-mpwv-jf5p.json +++ b/advisories/unreviewed/2022/05/GHSA-5q44-mpwv-jf5p/GHSA-5q44-mpwv-jf5p.json @@ -7,12 +7,8 @@ "CVE-2019-14563" ], "details": "Integer truncation in EDK II may allow an authenticated user to potentially enable escalation of privilege via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5v3r-jp8c-c7wh/GHSA-5v3r-jp8c-c7wh.json b/advisories/unreviewed/2022/05/GHSA-5v3r-jp8c-c7wh/GHSA-5v3r-jp8c-c7wh.json index 84a8c024ff9..27fe098cbf6 100644 --- a/advisories/unreviewed/2022/05/GHSA-5v3r-jp8c-c7wh/GHSA-5v3r-jp8c-c7wh.json +++ b/advisories/unreviewed/2022/05/GHSA-5v3r-jp8c-c7wh/GHSA-5v3r-jp8c-c7wh.json @@ -7,12 +7,8 @@ "CVE-2020-25210" ], "details": "In JetBrains YouTrack before 2020.3.7955, an attacker could access workflow rules without appropriate access grants.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5v7v-8wfp-pqqp/GHSA-5v7v-8wfp-pqqp.json b/advisories/unreviewed/2022/05/GHSA-5v7v-8wfp-pqqp/GHSA-5v7v-8wfp-pqqp.json index ea57de522cb..48b808796ae 100644 --- a/advisories/unreviewed/2022/05/GHSA-5v7v-8wfp-pqqp/GHSA-5v7v-8wfp-pqqp.json +++ b/advisories/unreviewed/2022/05/GHSA-5v7v-8wfp-pqqp/GHSA-5v7v-8wfp-pqqp.json @@ -7,12 +7,8 @@ "CVE-2020-25653" ], "details": "A race condition vulnerability was found in the way the spice-vdagentd daemon handled new client connections. This flaw may allow an unprivileged local guest user to become the active agent for spice-vdagentd, possibly resulting in a denial of service or information leakage from the host. The highest threat from this vulnerability is to data confidentiality as well as system availability. This flaw affects spice-vdagent versions 0.20 and prior.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5vmw-6f78-pj9m/GHSA-5vmw-6f78-pj9m.json b/advisories/unreviewed/2022/05/GHSA-5vmw-6f78-pj9m/GHSA-5vmw-6f78-pj9m.json index 5eb139185c7..20f6f557d7d 100644 --- a/advisories/unreviewed/2022/05/GHSA-5vmw-6f78-pj9m/GHSA-5vmw-6f78-pj9m.json +++ b/advisories/unreviewed/2022/05/GHSA-5vmw-6f78-pj9m/GHSA-5vmw-6f78-pj9m.json @@ -7,12 +7,8 @@ "CVE-2020-28977" ], "details": "The Canto plugin 1.3.0 for WordPress contains blind SSRF vulnerability. It allows an unauthenticated attacker can make a request to any internal and external server via /includes/lib/get.php?subdomain=SSRF.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-637g-65xr-xr73/GHSA-637g-65xr-xr73.json b/advisories/unreviewed/2022/05/GHSA-637g-65xr-xr73/GHSA-637g-65xr-xr73.json index 2e90e754686..52ba4cbf718 100644 --- a/advisories/unreviewed/2022/05/GHSA-637g-65xr-xr73/GHSA-637g-65xr-xr73.json +++ b/advisories/unreviewed/2022/05/GHSA-637g-65xr-xr73/GHSA-637g-65xr-xr73.json @@ -7,12 +7,8 @@ "CVE-2020-25677" ], "details": "Ceph-ansible 4.0.34.1 creates /etc/ceph/iscsi-gateway.conf with insecure default permissions, allowing any user to read the sensitive information within.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-64qr-mfgf-96mm/GHSA-64qr-mfgf-96mm.json b/advisories/unreviewed/2022/05/GHSA-64qr-mfgf-96mm/GHSA-64qr-mfgf-96mm.json index 50e00e4760b..c295e363c14 100644 --- a/advisories/unreviewed/2022/05/GHSA-64qr-mfgf-96mm/GHSA-64qr-mfgf-96mm.json +++ b/advisories/unreviewed/2022/05/GHSA-64qr-mfgf-96mm/GHSA-64qr-mfgf-96mm.json @@ -7,12 +7,8 @@ "CVE-2020-28575" ], "details": "A heap-based buffer overflow privilege escalation vulnerability in Trend Micro ServerProtect for Linux 3.0 may allow an attacker to escalate privileges on affected installations. An attacker must first obtain the ability to execute high-privileged code on the target in order to exploit this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-64ww-85jr-gp6p/GHSA-64ww-85jr-gp6p.json b/advisories/unreviewed/2022/05/GHSA-64ww-85jr-gp6p/GHSA-64ww-85jr-gp6p.json index 346e705d0e3..745e21ed9f9 100644 --- a/advisories/unreviewed/2022/05/GHSA-64ww-85jr-gp6p/GHSA-64ww-85jr-gp6p.json +++ b/advisories/unreviewed/2022/05/GHSA-64ww-85jr-gp6p/GHSA-64ww-85jr-gp6p.json @@ -7,12 +7,8 @@ "CVE-2017-14451" ], "details": "An exploitable out-of-bounds read vulnerability exists in libevm (Ethereum Virtual Machine) of CPP-Ethereum. A specially crafted smart contract code can cause an out-of-bounds read which can subsequently trigger an out-of-bounds write resulting in remote code execution. An attacker can create/send malicious smart contract to trigger this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6542-cc58-3fvq/GHSA-6542-cc58-3fvq.json b/advisories/unreviewed/2022/05/GHSA-6542-cc58-3fvq/GHSA-6542-cc58-3fvq.json index 8201918256d..d8a02bf590f 100644 --- a/advisories/unreviewed/2022/05/GHSA-6542-cc58-3fvq/GHSA-6542-cc58-3fvq.json +++ b/advisories/unreviewed/2022/05/GHSA-6542-cc58-3fvq/GHSA-6542-cc58-3fvq.json @@ -7,12 +7,8 @@ "CVE-2020-28927" ], "details": "There is a Stored XSS in Magicpin v2.1 in the User Registration section. Each time an admin visits the manage user section from the admin panel, the XSS triggers and the attacker can able to steal the cookie according to the crafted payload.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-65xw-v37r-whx2/GHSA-65xw-v37r-whx2.json b/advisories/unreviewed/2022/05/GHSA-65xw-v37r-whx2/GHSA-65xw-v37r-whx2.json index b0eb6c00aa9..2303ac93052 100644 --- a/advisories/unreviewed/2022/05/GHSA-65xw-v37r-whx2/GHSA-65xw-v37r-whx2.json +++ b/advisories/unreviewed/2022/05/GHSA-65xw-v37r-whx2/GHSA-65xw-v37r-whx2.json @@ -7,12 +7,8 @@ "CVE-2020-19668" ], "details": "Unverified indexs into the array lead to out of bound access in the gif_out_code function in fromgif.c in libsixel 1.8.6.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6658-gv7v-29hj/GHSA-6658-gv7v-29hj.json b/advisories/unreviewed/2022/05/GHSA-6658-gv7v-29hj/GHSA-6658-gv7v-29hj.json index af5629c4824..bc3f8b7da42 100644 --- a/advisories/unreviewed/2022/05/GHSA-6658-gv7v-29hj/GHSA-6658-gv7v-29hj.json +++ b/advisories/unreviewed/2022/05/GHSA-6658-gv7v-29hj/GHSA-6658-gv7v-29hj.json @@ -7,12 +7,8 @@ "CVE-2020-27557" ], "details": "Unprotected Storage of Credentials vulnerability in BASETech GE-131 BT-1837836 firmware 20180921 allows local users to gain access to the video streaming username and password via SQLite files containing plain text credentials.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-668g-x35h-7p9r/GHSA-668g-x35h-7p9r.json b/advisories/unreviewed/2022/05/GHSA-668g-x35h-7p9r/GHSA-668g-x35h-7p9r.json index db9ae31bdb2..ff3f533dc2a 100644 --- a/advisories/unreviewed/2022/05/GHSA-668g-x35h-7p9r/GHSA-668g-x35h-7p9r.json +++ b/advisories/unreviewed/2022/05/GHSA-668g-x35h-7p9r/GHSA-668g-x35h-7p9r.json @@ -7,12 +7,8 @@ "CVE-2020-27554" ], "details": "Cleartext Transmission of Sensitive Information vulnerability in BASETech GE-131 BT-1837836 firmware 20180921 exists which could leak sensitive information transmitted between the mobile app and the camera device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-66fh-7c2j-p86h/GHSA-66fh-7c2j-p86h.json b/advisories/unreviewed/2022/05/GHSA-66fh-7c2j-p86h/GHSA-66fh-7c2j-p86h.json index ea1da66f297..15de6819a5c 100644 --- a/advisories/unreviewed/2022/05/GHSA-66fh-7c2j-p86h/GHSA-66fh-7c2j-p86h.json +++ b/advisories/unreviewed/2022/05/GHSA-66fh-7c2j-p86h/GHSA-66fh-7c2j-p86h.json @@ -7,12 +7,8 @@ "CVE-2020-29577" ], "details": "The official znc docker images before 1.7.1-slim contain a blank password for a root user. Systems using the znc docker container deployed by affected versions of the Docker image may allow an remote attacker to achieve root access with a blank password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-67jr-8mqf-vqcc/GHSA-67jr-8mqf-vqcc.json b/advisories/unreviewed/2022/05/GHSA-67jr-8mqf-vqcc/GHSA-67jr-8mqf-vqcc.json index b28c25b31d5..b15af29a0b1 100644 --- a/advisories/unreviewed/2022/05/GHSA-67jr-8mqf-vqcc/GHSA-67jr-8mqf-vqcc.json +++ b/advisories/unreviewed/2022/05/GHSA-67jr-8mqf-vqcc/GHSA-67jr-8mqf-vqcc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-67wr-rj87-j8qx/GHSA-67wr-rj87-j8qx.json b/advisories/unreviewed/2022/05/GHSA-67wr-rj87-j8qx/GHSA-67wr-rj87-j8qx.json index cc5402b7aa5..b3cc42b24d8 100644 --- a/advisories/unreviewed/2022/05/GHSA-67wr-rj87-j8qx/GHSA-67wr-rj87-j8qx.json +++ b/advisories/unreviewed/2022/05/GHSA-67wr-rj87-j8qx/GHSA-67wr-rj87-j8qx.json @@ -7,12 +7,8 @@ "CVE-2020-27585" ], "details": "Quick Heal Total Security before 19.0 allows attackers with local admin rights to modify sensitive anti virus settings via a brute-attack on the settings password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6832-99rj-8mx2/GHSA-6832-99rj-8mx2.json b/advisories/unreviewed/2022/05/GHSA-6832-99rj-8mx2/GHSA-6832-99rj-8mx2.json index 95b5c8d1828..820a17670bd 100644 --- a/advisories/unreviewed/2022/05/GHSA-6832-99rj-8mx2/GHSA-6832-99rj-8mx2.json +++ b/advisories/unreviewed/2022/05/GHSA-6832-99rj-8mx2/GHSA-6832-99rj-8mx2.json @@ -7,12 +7,8 @@ "CVE-2020-4475" ], "details": "IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5 and 6.0.0.0 through 6.0.3.2 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-693c-q93p-45vc/GHSA-693c-q93p-45vc.json b/advisories/unreviewed/2022/05/GHSA-693c-q93p-45vc/GHSA-693c-q93p-45vc.json index 9e2b462622b..fdf18bb4b69 100644 --- a/advisories/unreviewed/2022/05/GHSA-693c-q93p-45vc/GHSA-693c-q93p-45vc.json +++ b/advisories/unreviewed/2022/05/GHSA-693c-q93p-45vc/GHSA-693c-q93p-45vc.json @@ -7,12 +7,8 @@ "CVE-2020-27555" ], "details": "Use of default credentials for the telnet server in BASETech GE-131 BT-1837836 firmware 20180921 allows remote attackers to execute arbitrary system commands as the root user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-69h7-5pmq-j396/GHSA-69h7-5pmq-j396.json b/advisories/unreviewed/2022/05/GHSA-69h7-5pmq-j396/GHSA-69h7-5pmq-j396.json index c2c34e7caa0..24a4839a759 100644 --- a/advisories/unreviewed/2022/05/GHSA-69h7-5pmq-j396/GHSA-69h7-5pmq-j396.json +++ b/advisories/unreviewed/2022/05/GHSA-69h7-5pmq-j396/GHSA-69h7-5pmq-j396.json @@ -7,12 +7,8 @@ "CVE-2019-19283" ], "details": "A vulnerability has been identified in XHQ (All Versions < 6.1). The application's web server could expose non-sensitive information about the server's architecture. This could allow an attacker to adapt further attacks to the version in place.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6f2v-fr8c-c9r8/GHSA-6f2v-fr8c-c9r8.json b/advisories/unreviewed/2022/05/GHSA-6f2v-fr8c-c9r8/GHSA-6f2v-fr8c-c9r8.json index a4a9ef80fce..cd48ca5c3bf 100644 --- a/advisories/unreviewed/2022/05/GHSA-6f2v-fr8c-c9r8/GHSA-6f2v-fr8c-c9r8.json +++ b/advisories/unreviewed/2022/05/GHSA-6f2v-fr8c-c9r8/GHSA-6f2v-fr8c-c9r8.json @@ -7,12 +7,8 @@ "CVE-2020-25832" ], "details": "Reflected Cross Site scripting vulnerability on Micro Focus Filr product, affecting version 4.2.1. The vulnerability could be exploited to perform Reflected XSS attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6f9q-3x2v-r6cg/GHSA-6f9q-3x2v-r6cg.json b/advisories/unreviewed/2022/05/GHSA-6f9q-3x2v-r6cg/GHSA-6f9q-3x2v-r6cg.json index 125da3f2594..fe04b2030d2 100644 --- a/advisories/unreviewed/2022/05/GHSA-6f9q-3x2v-r6cg/GHSA-6f9q-3x2v-r6cg.json +++ b/advisories/unreviewed/2022/05/GHSA-6f9q-3x2v-r6cg/GHSA-6f9q-3x2v-r6cg.json @@ -7,12 +7,8 @@ "CVE-2020-29003" ], "details": "The PollNY extension for MediaWiki through 1.35 allows XSS via an answer option for a poll question, entered during Special:CreatePoll or Special:UpdatePoll.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6fxm-3vcm-r45p/GHSA-6fxm-3vcm-r45p.json b/advisories/unreviewed/2022/05/GHSA-6fxm-3vcm-r45p/GHSA-6fxm-3vcm-r45p.json index 537f2981082..0e641016aac 100644 --- a/advisories/unreviewed/2022/05/GHSA-6fxm-3vcm-r45p/GHSA-6fxm-3vcm-r45p.json +++ b/advisories/unreviewed/2022/05/GHSA-6fxm-3vcm-r45p/GHSA-6fxm-3vcm-r45p.json @@ -7,12 +7,8 @@ "CVE-2020-29656" ], "details": "An information disclosure vulnerability exists in RT-AC88U Download Master before 3.1.0.108. A direct access to /downloadmaster/dm_apply.cgi?action_mode=initial&download_type=General&special_cgi=get_language makes it possible to reach \"unknown functionality\" in a \"known to be easy\" manner via an unspecified \"public exploit.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6gh5-7x7m-462j/GHSA-6gh5-7x7m-462j.json b/advisories/unreviewed/2022/05/GHSA-6gh5-7x7m-462j/GHSA-6gh5-7x7m-462j.json index d98843e0caf..6d8b2f05a95 100644 --- a/advisories/unreviewed/2022/05/GHSA-6gh5-7x7m-462j/GHSA-6gh5-7x7m-462j.json +++ b/advisories/unreviewed/2022/05/GHSA-6gh5-7x7m-462j/GHSA-6gh5-7x7m-462j.json @@ -7,12 +7,8 @@ "CVE-2020-28582" ], "details": "An improper access control information disclosure vulnerability in Trend Micro Apex One and OfficeScan XG SP1 could allow an unauthenticated user to connect to the product server and reveal number of managed agents.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6gj8-w93h-3r46/GHSA-6gj8-w93h-3r46.json b/advisories/unreviewed/2022/05/GHSA-6gj8-w93h-3r46/GHSA-6gj8-w93h-3r46.json index a313c496b10..98c2dc93356 100644 --- a/advisories/unreviewed/2022/05/GHSA-6gj8-w93h-3r46/GHSA-6gj8-w93h-3r46.json +++ b/advisories/unreviewed/2022/05/GHSA-6gj8-w93h-3r46/GHSA-6gj8-w93h-3r46.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6gx3-j623-7698/GHSA-6gx3-j623-7698.json b/advisories/unreviewed/2022/05/GHSA-6gx3-j623-7698/GHSA-6gx3-j623-7698.json index b4e37d1d1b9..c888cc423f7 100644 --- a/advisories/unreviewed/2022/05/GHSA-6gx3-j623-7698/GHSA-6gx3-j623-7698.json +++ b/advisories/unreviewed/2022/05/GHSA-6gx3-j623-7698/GHSA-6gx3-j623-7698.json @@ -7,12 +7,8 @@ "CVE-2020-4127" ], "details": "HCL Domino is susceptible to a Login CSRF vulnerability. With a valid credential, an attacker could trick a user into accessing a system under another ID or use an intranet user's system to access internal systems from the internet. Fixes are available in HCL Domino versions 9.0.1 FP10 IF6, 10.0.1 FP6 and 11.0.1 FP1 and later.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6m8q-4w6f-jp44/GHSA-6m8q-4w6f-jp44.json b/advisories/unreviewed/2022/05/GHSA-6m8q-4w6f-jp44/GHSA-6m8q-4w6f-jp44.json index 274c700d8b6..67d8f29b3df 100644 --- a/advisories/unreviewed/2022/05/GHSA-6m8q-4w6f-jp44/GHSA-6m8q-4w6f-jp44.json +++ b/advisories/unreviewed/2022/05/GHSA-6m8q-4w6f-jp44/GHSA-6m8q-4w6f-jp44.json @@ -7,12 +7,8 @@ "CVE-2020-29058" ], "details": "An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 97168P, FD1002S, FD1104, FD1104B, FD1104S, FD1104SN, FD1108S, FD1204S-R2, FD1204SN, FD1204SN-R2, FD1208S-R2, FD1216S-R1, FD1608GS, FD1608SN, FD1616GS, FD1616SN, and FD8000 devices. Attackers can discover cleartext web-server credentials via certain /opt/lighttpd/web/cgi/ requests.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6mr5-9ph2-p38v/GHSA-6mr5-9ph2-p38v.json b/advisories/unreviewed/2022/05/GHSA-6mr5-9ph2-p38v/GHSA-6mr5-9ph2-p38v.json index b983ffb02fd..0590bb7046d 100644 --- a/advisories/unreviewed/2022/05/GHSA-6mr5-9ph2-p38v/GHSA-6mr5-9ph2-p38v.json +++ b/advisories/unreviewed/2022/05/GHSA-6mr5-9ph2-p38v/GHSA-6mr5-9ph2-p38v.json @@ -7,12 +7,8 @@ "CVE-2020-29439" ], "details": "Tesla Model X vehicles before 2020-11-23 have key fobs that rely on five VIN digits for the authentication needed for a body control module (BCM) to initiate a Bluetooth wake-up action. (The full VIN is visible from outside the vehicle.)", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6pj8-q9pf-wvp7/GHSA-6pj8-q9pf-wvp7.json b/advisories/unreviewed/2022/05/GHSA-6pj8-q9pf-wvp7/GHSA-6pj8-q9pf-wvp7.json index 831ee388b7c..dc7f128ee44 100644 --- a/advisories/unreviewed/2022/05/GHSA-6pj8-q9pf-wvp7/GHSA-6pj8-q9pf-wvp7.json +++ b/advisories/unreviewed/2022/05/GHSA-6pj8-q9pf-wvp7/GHSA-6pj8-q9pf-wvp7.json @@ -7,12 +7,8 @@ "CVE-2020-29534" ], "details": "An issue was discovered in the Linux kernel before 5.9.3. io_uring takes a non-refcounted reference to the files_struct of the process that submitted a request, causing execve() to incorrectly optimize unshare_fd(), aka CID-0f2122045b94.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6q9c-667c-xvww/GHSA-6q9c-667c-xvww.json b/advisories/unreviewed/2022/05/GHSA-6q9c-667c-xvww/GHSA-6q9c-667c-xvww.json index d091d115813..e467ebf59fc 100644 --- a/advisories/unreviewed/2022/05/GHSA-6q9c-667c-xvww/GHSA-6q9c-667c-xvww.json +++ b/advisories/unreviewed/2022/05/GHSA-6q9c-667c-xvww/GHSA-6q9c-667c-xvww.json @@ -7,12 +7,8 @@ "CVE-2020-29071" ], "details": "An XSS issue was found in the Shares feature of LiquidFiles before 3.3.19. The issue arises from the insecure rendering of HTML files uploaded to the platform as attachments, when the -htmlview URL is directly accessed. The impact ranges from executing commands as root on the server to retrieving sensitive information about encrypted e-mails, depending on the permissions of the target user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6qqr-fcpw-r77q/GHSA-6qqr-fcpw-r77q.json b/advisories/unreviewed/2022/05/GHSA-6qqr-fcpw-r77q/GHSA-6qqr-fcpw-r77q.json index 58823bdace2..4ebf1f67230 100644 --- a/advisories/unreviewed/2022/05/GHSA-6qqr-fcpw-r77q/GHSA-6qqr-fcpw-r77q.json +++ b/advisories/unreviewed/2022/05/GHSA-6qqr-fcpw-r77q/GHSA-6qqr-fcpw-r77q.json @@ -7,12 +7,8 @@ "CVE-2020-14191" ], "details": "Affected versions of Atlassian Fisheye/Crucible allow remote attackers to impact the application's availability via a Denial of Service (DoS) vulnerability in the MessageBundleResource within Atlassian Gadgets. The affected versions are before version 4.8.4.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6qx3-hcm8-xh2m/GHSA-6qx3-hcm8-xh2m.json b/advisories/unreviewed/2022/05/GHSA-6qx3-hcm8-xh2m/GHSA-6qx3-hcm8-xh2m.json index fcc31664d0e..b954071321f 100644 --- a/advisories/unreviewed/2022/05/GHSA-6qx3-hcm8-xh2m/GHSA-6qx3-hcm8-xh2m.json +++ b/advisories/unreviewed/2022/05/GHSA-6qx3-hcm8-xh2m/GHSA-6qx3-hcm8-xh2m.json @@ -7,12 +7,8 @@ "CVE-2020-5797" ], "details": "UNIX Symbolic Link (Symlink) Following in TP-Link Archer C9(US)_V1_180125 firmware allows an unauthenticated actor, with physical access and network access, to read sensitive files and write to a limited set of files after plugging a crafted USB drive into the router.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6rcv-8mm2-fprm/GHSA-6rcv-8mm2-fprm.json b/advisories/unreviewed/2022/05/GHSA-6rcv-8mm2-fprm/GHSA-6rcv-8mm2-fprm.json index f451dd55ab5..f7871eee958 100644 --- a/advisories/unreviewed/2022/05/GHSA-6rcv-8mm2-fprm/GHSA-6rcv-8mm2-fprm.json +++ b/advisories/unreviewed/2022/05/GHSA-6rcv-8mm2-fprm/GHSA-6rcv-8mm2-fprm.json @@ -7,12 +7,8 @@ "CVE-2020-9972" ], "details": "A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 14.0 and iPadOS 14.0. Processing a maliciously crafted USD file may lead to unexpected application termination or arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6rmh-mmff-jmfj/GHSA-6rmh-mmff-jmfj.json b/advisories/unreviewed/2022/05/GHSA-6rmh-mmff-jmfj/GHSA-6rmh-mmff-jmfj.json index 994d91f0e44..4f25fa3774c 100644 --- a/advisories/unreviewed/2022/05/GHSA-6rmh-mmff-jmfj/GHSA-6rmh-mmff-jmfj.json +++ b/advisories/unreviewed/2022/05/GHSA-6rmh-mmff-jmfj/GHSA-6rmh-mmff-jmfj.json @@ -7,12 +7,8 @@ "CVE-2020-25652" ], "details": "A flaw was found in the spice-vdagentd daemon, where it did not properly handle client connections that can be established via the UNIX domain socket in `/run/spice-vdagentd/spice-vdagent-sock`. Any unprivileged local guest user could use this flaw to prevent legitimate agents from connecting to the spice-vdagentd daemon, resulting in a denial of service. The highest threat from this vulnerability is to system availability. This flaw affects spice-vdagent versions 0.20 and prior.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6rx8-2pr9-jv9w/GHSA-6rx8-2pr9-jv9w.json b/advisories/unreviewed/2022/05/GHSA-6rx8-2pr9-jv9w/GHSA-6rx8-2pr9-jv9w.json index 196032813f8..154e83a5e34 100644 --- a/advisories/unreviewed/2022/05/GHSA-6rx8-2pr9-jv9w/GHSA-6rx8-2pr9-jv9w.json +++ b/advisories/unreviewed/2022/05/GHSA-6rx8-2pr9-jv9w/GHSA-6rx8-2pr9-jv9w.json @@ -7,12 +7,8 @@ "CVE-2020-26963" ], "details": "Repeated calls to the history and location interfaces could have been used to hang the browser. This was addressed by introducing rate-limiting to these API calls. This vulnerability affects Firefox < 83.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6v44-4w2g-hxp9/GHSA-6v44-4w2g-hxp9.json b/advisories/unreviewed/2022/05/GHSA-6v44-4w2g-hxp9/GHSA-6v44-4w2g-hxp9.json index d5f27cdc0b8..673777fd9ba 100644 --- a/advisories/unreviewed/2022/05/GHSA-6v44-4w2g-hxp9/GHSA-6v44-4w2g-hxp9.json +++ b/advisories/unreviewed/2022/05/GHSA-6v44-4w2g-hxp9/GHSA-6v44-4w2g-hxp9.json @@ -7,12 +7,8 @@ "CVE-2020-29660" ], "details": "A locking inconsistency issue was discovered in the tty subsystem of the Linux kernel through 5.9.13. drivers/tty/tty_io.c and drivers/tty/tty_jobctrl.c may allow a read-after-free attack against TIOCGSID, aka CID-c8bcd9c5be24.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6w26-5ccg-87xc/GHSA-6w26-5ccg-87xc.json b/advisories/unreviewed/2022/05/GHSA-6w26-5ccg-87xc/GHSA-6w26-5ccg-87xc.json index fda1bf260aa..61dbd919227 100644 --- a/advisories/unreviewed/2022/05/GHSA-6w26-5ccg-87xc/GHSA-6w26-5ccg-87xc.json +++ b/advisories/unreviewed/2022/05/GHSA-6w26-5ccg-87xc/GHSA-6w26-5ccg-87xc.json @@ -7,12 +7,8 @@ "CVE-2020-12594" ], "details": "A privilege escalation flaw allows a malicious, authenticated, privileged CLI user to escalate their privileges on the system and gain full control over the SMG appliance. This affects SMG prior to 10.7.4.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6w62-mvw6-xggx/GHSA-6w62-mvw6-xggx.json b/advisories/unreviewed/2022/05/GHSA-6w62-mvw6-xggx/GHSA-6w62-mvw6-xggx.json index 30b4c57b6d5..3c3be64e63c 100644 --- a/advisories/unreviewed/2022/05/GHSA-6w62-mvw6-xggx/GHSA-6w62-mvw6-xggx.json +++ b/advisories/unreviewed/2022/05/GHSA-6w62-mvw6-xggx/GHSA-6w62-mvw6-xggx.json @@ -7,12 +7,8 @@ "CVE-2020-28914" ], "details": "An improper file permissions vulnerability affects Kata Containers prior to 1.11.5. When using a Kubernetes hostPath volume and mounting either a file or directory into a container as readonly, the file/directory is mounted as readOnly inside the container, but is still writable inside the guest. For a container breakout situation, a malicious guest can potentially modify or delete files/directories expected to be read-only.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7399-8gqj-gp2j/GHSA-7399-8gqj-gp2j.json b/advisories/unreviewed/2022/05/GHSA-7399-8gqj-gp2j/GHSA-7399-8gqj-gp2j.json index aedbf36455a..d07a94dbedd 100644 --- a/advisories/unreviewed/2022/05/GHSA-7399-8gqj-gp2j/GHSA-7399-8gqj-gp2j.json +++ b/advisories/unreviewed/2022/05/GHSA-7399-8gqj-gp2j/GHSA-7399-8gqj-gp2j.json @@ -7,12 +7,8 @@ "CVE-2020-28845" ], "details": "A CSV injection vulnerability in the Admin portal for Netskope 75.0 allows an unauthenticated user to inject malicious payload in admin's portal thus leads to compromise admin's system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-739c-pfq4-x6vc/GHSA-739c-pfq4-x6vc.json b/advisories/unreviewed/2022/05/GHSA-739c-pfq4-x6vc/GHSA-739c-pfq4-x6vc.json index a9366ee8460..65540f86f77 100644 --- a/advisories/unreviewed/2022/05/GHSA-739c-pfq4-x6vc/GHSA-739c-pfq4-x6vc.json +++ b/advisories/unreviewed/2022/05/GHSA-739c-pfq4-x6vc/GHSA-739c-pfq4-x6vc.json @@ -7,12 +7,8 @@ "CVE-2019-19872" ], "details": "An issue was discovered in B&R Industrial Automation APROL before R4.2 V7.08. The AprolLoader could be used to inject and execute arbitrary unintended commands via an unspecified attack scenario, a different vulnerability than CVE-2019-16364.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-73jg-p8q6-m47j/GHSA-73jg-p8q6-m47j.json b/advisories/unreviewed/2022/05/GHSA-73jg-p8q6-m47j/GHSA-73jg-p8q6-m47j.json index a592902af8a..1a534d34397 100644 --- a/advisories/unreviewed/2022/05/GHSA-73jg-p8q6-m47j/GHSA-73jg-p8q6-m47j.json +++ b/advisories/unreviewed/2022/05/GHSA-73jg-p8q6-m47j/GHSA-73jg-p8q6-m47j.json @@ -7,12 +7,8 @@ "CVE-2020-24815" ], "details": "A Server-Side Request Forgery (SSRF) affecting the PDF generation in MicroStrategy 10.4, 2019 before Update 6, and 2020 before Update 2 allows authenticated users to access the content of internal network resources or leak files from the local system via HTML containers embedded in a dossier/dashboard document. NOTE: 10.4., no fix will be released as version will reach end-of-life on 31/12/2020.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-74qh-vr52-6vv4/GHSA-74qh-vr52-6vv4.json b/advisories/unreviewed/2022/05/GHSA-74qh-vr52-6vv4/GHSA-74qh-vr52-6vv4.json index fc154248d77..03cd61e8630 100644 --- a/advisories/unreviewed/2022/05/GHSA-74qh-vr52-6vv4/GHSA-74qh-vr52-6vv4.json +++ b/advisories/unreviewed/2022/05/GHSA-74qh-vr52-6vv4/GHSA-74qh-vr52-6vv4.json @@ -7,12 +7,8 @@ "CVE-2020-9114" ], "details": "FusionCompute versions 6.3.0, 6.3.1, 6.5.0, 6.5.1 and 8.0.0 have a privilege escalation vulnerability. Due to improper privilege management, an attacker with common privilege may access some specific files and get the administrator privilege in the affected products. Successful exploit will cause privilege escalation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-75h6-mgvv-q4gr/GHSA-75h6-mgvv-q4gr.json b/advisories/unreviewed/2022/05/GHSA-75h6-mgvv-q4gr/GHSA-75h6-mgvv-q4gr.json index 73464c1f96d..08010a9c2f8 100644 --- a/advisories/unreviewed/2022/05/GHSA-75h6-mgvv-q4gr/GHSA-75h6-mgvv-q4gr.json +++ b/advisories/unreviewed/2022/05/GHSA-75h6-mgvv-q4gr/GHSA-75h6-mgvv-q4gr.json @@ -7,12 +7,8 @@ "CVE-2020-29059" ], "details": "An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 97168P, FD1002S, FD1104, FD1104B, FD1104S, FD1104SN, FD1108S, FD1204S-R2, FD1204SN, FD1204SN-R2, FD1208S-R2, FD1216S-R1, FD1608GS, FD1608SN, FD1616GS, FD1616SN, and FD8000 devices. There is a default panger123 password for the suma123 account for certain old firmware.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-76cm-vv6x-f8wv/GHSA-76cm-vv6x-f8wv.json b/advisories/unreviewed/2022/05/GHSA-76cm-vv6x-f8wv/GHSA-76cm-vv6x-f8wv.json index da2da10f979..ff694c833e8 100644 --- a/advisories/unreviewed/2022/05/GHSA-76cm-vv6x-f8wv/GHSA-76cm-vv6x-f8wv.json +++ b/advisories/unreviewed/2022/05/GHSA-76cm-vv6x-f8wv/GHSA-76cm-vv6x-f8wv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-76v6-7m6g-p6v4/GHSA-76v6-7m6g-p6v4.json b/advisories/unreviewed/2022/05/GHSA-76v6-7m6g-p6v4/GHSA-76v6-7m6g-p6v4.json index f4902302dbe..0daf7307157 100644 --- a/advisories/unreviewed/2022/05/GHSA-76v6-7m6g-p6v4/GHSA-76v6-7m6g-p6v4.json +++ b/advisories/unreviewed/2022/05/GHSA-76v6-7m6g-p6v4/GHSA-76v6-7m6g-p6v4.json @@ -7,12 +7,8 @@ "CVE-2020-27950" ], "details": "A memory initialization issue was addressed. This issue is fixed in macOS Big Sur 11.0.1, watchOS 7.1, iOS 12.4.9, watchOS 6.2.9, Security Update 2020-006 High Sierra, Security Update 2020-006 Mojave, iOS 14.2 and iPadOS 14.2, watchOS 5.3.9, macOS Catalina 10.15.7 Supplemental Update, macOS Catalina 10.15.7 Update. A malicious application may be able to disclose kernel memory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-77qx-69hx-pmqh/GHSA-77qx-69hx-pmqh.json b/advisories/unreviewed/2022/05/GHSA-77qx-69hx-pmqh/GHSA-77qx-69hx-pmqh.json index 92e0f3305a8..652a15f231a 100644 --- a/advisories/unreviewed/2022/05/GHSA-77qx-69hx-pmqh/GHSA-77qx-69hx-pmqh.json +++ b/advisories/unreviewed/2022/05/GHSA-77qx-69hx-pmqh/GHSA-77qx-69hx-pmqh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-784m-xw5j-hrmc/GHSA-784m-xw5j-hrmc.json b/advisories/unreviewed/2022/05/GHSA-784m-xw5j-hrmc/GHSA-784m-xw5j-hrmc.json index 64c4e8c9f22..438a9ce9dd7 100644 --- a/advisories/unreviewed/2022/05/GHSA-784m-xw5j-hrmc/GHSA-784m-xw5j-hrmc.json +++ b/advisories/unreviewed/2022/05/GHSA-784m-xw5j-hrmc/GHSA-784m-xw5j-hrmc.json @@ -7,12 +7,8 @@ "CVE-2020-5674" ], "details": "Untrusted search path vulnerability in the installers of multiple SEIKO EPSON products allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7c72-wmjh-7cpf/GHSA-7c72-wmjh-7cpf.json b/advisories/unreviewed/2022/05/GHSA-7c72-wmjh-7cpf/GHSA-7c72-wmjh-7cpf.json index 01d3965f6ad..1013172e41f 100644 --- a/advisories/unreviewed/2022/05/GHSA-7c72-wmjh-7cpf/GHSA-7c72-wmjh-7cpf.json +++ b/advisories/unreviewed/2022/05/GHSA-7c72-wmjh-7cpf/GHSA-7c72-wmjh-7cpf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7cwx-58fg-fmmx/GHSA-7cwx-58fg-fmmx.json b/advisories/unreviewed/2022/05/GHSA-7cwx-58fg-fmmx/GHSA-7cwx-58fg-fmmx.json index 340b8c54545..593cee0143a 100644 --- a/advisories/unreviewed/2022/05/GHSA-7cwx-58fg-fmmx/GHSA-7cwx-58fg-fmmx.json +++ b/advisories/unreviewed/2022/05/GHSA-7cwx-58fg-fmmx/GHSA-7cwx-58fg-fmmx.json @@ -7,12 +7,8 @@ "CVE-2020-7553" ], "details": "A CWE-787 Out-of-bounds Write vulnerability exists in IGSS Definition (Def.exe) version 14.0.0.20247 that could cause Remote Code Execution when malicious CGF (Configuration Group File) file is imported to IGSS Definition.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7cxf-96qq-3hcr/GHSA-7cxf-96qq-3hcr.json b/advisories/unreviewed/2022/05/GHSA-7cxf-96qq-3hcr/GHSA-7cxf-96qq-3hcr.json index 4624ffaed9b..5cfcb78a892 100644 --- a/advisories/unreviewed/2022/05/GHSA-7cxf-96qq-3hcr/GHSA-7cxf-96qq-3hcr.json +++ b/advisories/unreviewed/2022/05/GHSA-7cxf-96qq-3hcr/GHSA-7cxf-96qq-3hcr.json @@ -7,12 +7,8 @@ "CVE-2020-7033" ], "details": "A Cross Site Scripting (XSS) Vulnerability on the Unified Portal Client (web client) used in Avaya Equinox Conferencing can allow an authenticated user to perform XSS attacks. The affected versions of Equinox Conferencing includes all 9.x versions before 9.1.10.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7f2c-fj5r-9f75/GHSA-7f2c-fj5r-9f75.json b/advisories/unreviewed/2022/05/GHSA-7f2c-fj5r-9f75/GHSA-7f2c-fj5r-9f75.json index 8a70451e597..00abd2a1173 100644 --- a/advisories/unreviewed/2022/05/GHSA-7f2c-fj5r-9f75/GHSA-7f2c-fj5r-9f75.json +++ b/advisories/unreviewed/2022/05/GHSA-7f2c-fj5r-9f75/GHSA-7f2c-fj5r-9f75.json @@ -7,12 +7,8 @@ "CVE-2020-8279" ], "details": "Missing validation of server certificates for out-going connections in Nextcloud Social < 0.4.0 allowed a man-in-the-middle attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7g34-hmj9-wxmc/GHSA-7g34-hmj9-wxmc.json b/advisories/unreviewed/2022/05/GHSA-7g34-hmj9-wxmc/GHSA-7g34-hmj9-wxmc.json index 93799cbeb5a..441c8c2e5bd 100644 --- a/advisories/unreviewed/2022/05/GHSA-7g34-hmj9-wxmc/GHSA-7g34-hmj9-wxmc.json +++ b/advisories/unreviewed/2022/05/GHSA-7g34-hmj9-wxmc/GHSA-7g34-hmj9-wxmc.json @@ -7,12 +7,8 @@ "CVE-2020-29384" ], "details": "An issue was discovered in PNGOUT 2020-01-15. When compressing a crafted PNG file, it encounters an integer overflow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7g6h-m62g-mmqr/GHSA-7g6h-m62g-mmqr.json b/advisories/unreviewed/2022/05/GHSA-7g6h-m62g-mmqr/GHSA-7g6h-m62g-mmqr.json index d42cb868202..b179d390c42 100644 --- a/advisories/unreviewed/2022/05/GHSA-7g6h-m62g-mmqr/GHSA-7g6h-m62g-mmqr.json +++ b/advisories/unreviewed/2022/05/GHSA-7g6h-m62g-mmqr/GHSA-7g6h-m62g-mmqr.json @@ -7,12 +7,8 @@ "CVE-2020-8539" ], "details": "Kia Motors Head Unit with Software version: SOP.003.30.18.0703, SOP.005.7.181019, and SOP.007.1.191209 may allow an attacker to inject unauthorized commands, by executing the micomd executable deamon, to trigger unintended functionalities. In addition, this executable may be used by an attacker to inject commands to generate CAN frames that are sent into the M-CAN bus (Multimedia CAN bus) of the vehicle.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7gmw-9v7c-j4r8/GHSA-7gmw-9v7c-j4r8.json b/advisories/unreviewed/2022/05/GHSA-7gmw-9v7c-j4r8/GHSA-7gmw-9v7c-j4r8.json index 4fbebc79258..ad58362b113 100644 --- a/advisories/unreviewed/2022/05/GHSA-7gmw-9v7c-j4r8/GHSA-7gmw-9v7c-j4r8.json +++ b/advisories/unreviewed/2022/05/GHSA-7gmw-9v7c-j4r8/GHSA-7gmw-9v7c-j4r8.json @@ -7,12 +7,8 @@ "CVE-2020-8582" ], "details": "Element Software versions prior to 12.2 and HCI versions prior to 1.8P1 are susceptible to a vulnerability which could allow an authenticated user to view sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7gwx-j9qc-6c6w/GHSA-7gwx-j9qc-6c6w.json b/advisories/unreviewed/2022/05/GHSA-7gwx-j9qc-6c6w/GHSA-7gwx-j9qc-6c6w.json index 7a638fbaeb4..dbc30bc4583 100644 --- a/advisories/unreviewed/2022/05/GHSA-7gwx-j9qc-6c6w/GHSA-7gwx-j9qc-6c6w.json +++ b/advisories/unreviewed/2022/05/GHSA-7gwx-j9qc-6c6w/GHSA-7gwx-j9qc-6c6w.json @@ -7,12 +7,8 @@ "CVE-2020-28928" ], "details": "In musl libc through 1.2.1, wcsnrtombs mishandles particular combinations of destination buffer size and source character limit, as demonstrated by an invalid write access (buffer overflow).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7hm8-3c6v-r562/GHSA-7hm8-3c6v-r562.json b/advisories/unreviewed/2022/05/GHSA-7hm8-3c6v-r562/GHSA-7hm8-3c6v-r562.json index 314d75c96b2..3a2632d30f3 100644 --- a/advisories/unreviewed/2022/05/GHSA-7hm8-3c6v-r562/GHSA-7hm8-3c6v-r562.json +++ b/advisories/unreviewed/2022/05/GHSA-7hm8-3c6v-r562/GHSA-7hm8-3c6v-r562.json @@ -7,12 +7,8 @@ "CVE-2020-13349" ], "details": "An issue has been discovered in GitLab EE affecting all versions starting from 8.12. A regular expression related to a file path resulted in the Advanced Search feature susceptible to catastrophic backtracking. Affected versions are >=8.12, <13.3.9,>=13.4, <13.4.5,>=13.5, <13.5.2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7hx6-pmgh-3p98/GHSA-7hx6-pmgh-3p98.json b/advisories/unreviewed/2022/05/GHSA-7hx6-pmgh-3p98/GHSA-7hx6-pmgh-3p98.json index db8a2209604..dd2756578e5 100644 --- a/advisories/unreviewed/2022/05/GHSA-7hx6-pmgh-3p98/GHSA-7hx6-pmgh-3p98.json +++ b/advisories/unreviewed/2022/05/GHSA-7hx6-pmgh-3p98/GHSA-7hx6-pmgh-3p98.json @@ -7,12 +7,8 @@ "CVE-2020-27251" ], "details": "A heap overflow vulnerability exists within FactoryTalk Linx Version 6.11 and prior. This vulnerability could allow a remote, unauthenticated attacker to send malicious port ranges, which could result in remote code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7j3h-rx7g-x4p6/GHSA-7j3h-rx7g-x4p6.json b/advisories/unreviewed/2022/05/GHSA-7j3h-rx7g-x4p6/GHSA-7j3h-rx7g-x4p6.json index 33564c3dd5d..ef33103f078 100644 --- a/advisories/unreviewed/2022/05/GHSA-7j3h-rx7g-x4p6/GHSA-7j3h-rx7g-x4p6.json +++ b/advisories/unreviewed/2022/05/GHSA-7j3h-rx7g-x4p6/GHSA-7j3h-rx7g-x4p6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7j6g-h8xc-2hrv/GHSA-7j6g-h8xc-2hrv.json b/advisories/unreviewed/2022/05/GHSA-7j6g-h8xc-2hrv/GHSA-7j6g-h8xc-2hrv.json index 5910e23e462..68462bf0bbf 100644 --- a/advisories/unreviewed/2022/05/GHSA-7j6g-h8xc-2hrv/GHSA-7j6g-h8xc-2hrv.json +++ b/advisories/unreviewed/2022/05/GHSA-7j6g-h8xc-2hrv/GHSA-7j6g-h8xc-2hrv.json @@ -7,12 +7,8 @@ "CVE-2020-10013" ], "details": "A logic issue was addressed with improved state management. This issue is fixed in tvOS 14.0, iOS 14.0 and iPadOS 14.0. An application may be able to execute arbitrary code with kernel privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7q2f-66h6-82pj/GHSA-7q2f-66h6-82pj.json b/advisories/unreviewed/2022/05/GHSA-7q2f-66h6-82pj/GHSA-7q2f-66h6-82pj.json index 7dca23bbcd8..3d9f121383b 100644 --- a/advisories/unreviewed/2022/05/GHSA-7q2f-66h6-82pj/GHSA-7q2f-66h6-82pj.json +++ b/advisories/unreviewed/2022/05/GHSA-7q2f-66h6-82pj/GHSA-7q2f-66h6-82pj.json @@ -7,12 +7,8 @@ "CVE-2020-29042" ], "details": "An issue was discovered in BigBlueButton through 2.2.29. A brute-force attack may occur because an unlimited number of codes can be entered for a meeting that is protected by an access code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7q7j-9q5r-4p9v/GHSA-7q7j-9q5r-4p9v.json b/advisories/unreviewed/2022/05/GHSA-7q7j-9q5r-4p9v/GHSA-7q7j-9q5r-4p9v.json index 5ed66efdea5..1c5e09ad1f2 100644 --- a/advisories/unreviewed/2022/05/GHSA-7q7j-9q5r-4p9v/GHSA-7q7j-9q5r-4p9v.json +++ b/advisories/unreviewed/2022/05/GHSA-7q7j-9q5r-4p9v/GHSA-7q7j-9q5r-4p9v.json @@ -7,12 +7,8 @@ "CVE-2020-29657" ], "details": "In JerryScript 2.3.0, there is an out-of-bounds read in main_print_unhandled_exception in the main-utils.c file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7qxp-7cvx-2478/GHSA-7qxp-7cvx-2478.json b/advisories/unreviewed/2022/05/GHSA-7qxp-7cvx-2478/GHSA-7qxp-7cvx-2478.json index d16324f73b1..5e784a800c6 100644 --- a/advisories/unreviewed/2022/05/GHSA-7qxp-7cvx-2478/GHSA-7qxp-7cvx-2478.json +++ b/advisories/unreviewed/2022/05/GHSA-7qxp-7cvx-2478/GHSA-7qxp-7cvx-2478.json @@ -7,12 +7,8 @@ "CVE-2020-29376" ], "details": "An issue was discovered on V-SOL V1600D V2.03.69 and V2.03.57, V1600D4L V1.01.49, V1600D-MINI V1.01.48, V1600G1 V2.0.7 and V1.9.7, and V1600G2 V1.1.4 OLT devices. There is an !j@l#y$z%x6x7q8c9z) password for the admin account to authenticate to the TELNET service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7r93-vjf4-cwc6/GHSA-7r93-vjf4-cwc6.json b/advisories/unreviewed/2022/05/GHSA-7r93-vjf4-cwc6/GHSA-7r93-vjf4-cwc6.json index 5bcc26da691..11b11e1a349 100644 --- a/advisories/unreviewed/2022/05/GHSA-7r93-vjf4-cwc6/GHSA-7r93-vjf4-cwc6.json +++ b/advisories/unreviewed/2022/05/GHSA-7r93-vjf4-cwc6/GHSA-7r93-vjf4-cwc6.json @@ -7,12 +7,8 @@ "CVE-2020-10143" ], "details": "Macrium Reflect includes an OpenSSL component that specifies an OPENSSLDIR variable as C:\\openssl\\. Macrium Reflect contains a privileged service that uses this OpenSSL component. Because unprivileged Windows users can create subdirectories off of the system root, a user can create the appropriate path to a specially-crafted openssl.cnf file to achieve arbitrary code execution with SYSTEM privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7v67-cgqp-fx55/GHSA-7v67-cgqp-fx55.json b/advisories/unreviewed/2022/05/GHSA-7v67-cgqp-fx55/GHSA-7v67-cgqp-fx55.json index 2e4c4fbce36..2e6bdcc4a9a 100644 --- a/advisories/unreviewed/2022/05/GHSA-7v67-cgqp-fx55/GHSA-7v67-cgqp-fx55.json +++ b/advisories/unreviewed/2022/05/GHSA-7v67-cgqp-fx55/GHSA-7v67-cgqp-fx55.json @@ -7,12 +7,8 @@ "CVE-2020-29364" ], "details": "In NetArt News Lister 1.0.0, the news headlines vulnerable to stored xss attacks. Attackers can inject codes in news titles.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7v77-4p7w-7fgm/GHSA-7v77-4p7w-7fgm.json b/advisories/unreviewed/2022/05/GHSA-7v77-4p7w-7fgm/GHSA-7v77-4p7w-7fgm.json index b24dd3dbbec..d3618ec6002 100644 --- a/advisories/unreviewed/2022/05/GHSA-7v77-4p7w-7fgm/GHSA-7v77-4p7w-7fgm.json +++ b/advisories/unreviewed/2022/05/GHSA-7v77-4p7w-7fgm/GHSA-7v77-4p7w-7fgm.json @@ -7,12 +7,8 @@ "CVE-2020-28579" ], "details": "A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an authenticated, remote attacker to send a specially crafted HTTP message and achieve remote code execution with elevated privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7vr9-xc65-cx9c/GHSA-7vr9-xc65-cx9c.json b/advisories/unreviewed/2022/05/GHSA-7vr9-xc65-cx9c/GHSA-7vr9-xc65-cx9c.json index 1e8270496e7..6d92804396a 100644 --- a/advisories/unreviewed/2022/05/GHSA-7vr9-xc65-cx9c/GHSA-7vr9-xc65-cx9c.json +++ b/advisories/unreviewed/2022/05/GHSA-7vr9-xc65-cx9c/GHSA-7vr9-xc65-cx9c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7w6c-5ppj-58vf/GHSA-7w6c-5ppj-58vf.json b/advisories/unreviewed/2022/05/GHSA-7w6c-5ppj-58vf/GHSA-7w6c-5ppj-58vf.json index 574a529e7b6..19cc69c6df6 100644 --- a/advisories/unreviewed/2022/05/GHSA-7w6c-5ppj-58vf/GHSA-7w6c-5ppj-58vf.json +++ b/advisories/unreviewed/2022/05/GHSA-7w6c-5ppj-58vf/GHSA-7w6c-5ppj-58vf.json @@ -7,12 +7,8 @@ "CVE-2020-25462" ], "details": "Heap buffer overflow in the fxCheckArrowFunction function at moddable/xs/sources/xsSyntaxical.c:3562 in Moddable SDK before OS200903.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7wh8-4j2m-2xff/GHSA-7wh8-4j2m-2xff.json b/advisories/unreviewed/2022/05/GHSA-7wh8-4j2m-2xff/GHSA-7wh8-4j2m-2xff.json index b6c72da468b..15f95d952f5 100644 --- a/advisories/unreviewed/2022/05/GHSA-7wh8-4j2m-2xff/GHSA-7wh8-4j2m-2xff.json +++ b/advisories/unreviewed/2022/05/GHSA-7wh8-4j2m-2xff/GHSA-7wh8-4j2m-2xff.json @@ -7,12 +7,8 @@ "CVE-2020-28576" ], "details": "An improper access control information disclosure vulnerability in Trend Micro Apex One and OfficeScan XG SP1 could allow an unauthenticated user to connect to the product server and reveal version and build information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7x8g-hv53-vc47/GHSA-7x8g-hv53-vc47.json b/advisories/unreviewed/2022/05/GHSA-7x8g-hv53-vc47/GHSA-7x8g-hv53-vc47.json index 72fb14e0007..300e41eeb5c 100644 --- a/advisories/unreviewed/2022/05/GHSA-7x8g-hv53-vc47/GHSA-7x8g-hv53-vc47.json +++ b/advisories/unreviewed/2022/05/GHSA-7x8g-hv53-vc47/GHSA-7x8g-hv53-vc47.json @@ -7,12 +7,8 @@ "CVE-2020-6317" ], "details": "In certain situations, an attacker with regular user credentials and local access to an ASE cockpit installation can access sensitive information which appears in the installation log files. This information although sensitive is of limited utility and cannot be used to further access, modify or render unavailable any other information in the cockpit or system. This affects SAP Adaptive Server Enterprise, Versions - 15.7, 16.0.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7xc8-789c-xf8q/GHSA-7xc8-789c-xf8q.json b/advisories/unreviewed/2022/05/GHSA-7xc8-789c-xf8q/GHSA-7xc8-789c-xf8q.json index cac39e03ba4..f612a150521 100644 --- a/advisories/unreviewed/2022/05/GHSA-7xc8-789c-xf8q/GHSA-7xc8-789c-xf8q.json +++ b/advisories/unreviewed/2022/05/GHSA-7xc8-789c-xf8q/GHSA-7xc8-789c-xf8q.json @@ -7,12 +7,8 @@ "CVE-2020-28583" ], "details": "An improper access control information disclosure vulnerability in Trend Micro Apex One and OfficeScan XG SP1 could allow an unauthenticated user to connect to the product server and reveal version, build and patch information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-827x-wg6m-4v6r/GHSA-827x-wg6m-4v6r.json b/advisories/unreviewed/2022/05/GHSA-827x-wg6m-4v6r/GHSA-827x-wg6m-4v6r.json index dc60ddccc81..a25db8646ee 100644 --- a/advisories/unreviewed/2022/05/GHSA-827x-wg6m-4v6r/GHSA-827x-wg6m-4v6r.json +++ b/advisories/unreviewed/2022/05/GHSA-827x-wg6m-4v6r/GHSA-827x-wg6m-4v6r.json @@ -7,12 +7,8 @@ "CVE-2020-6157" ], "details": "Opera Touch for iOS before version 2.4.5 is vulnerable to an address bar spoofing attack. The vulnerability allows a malicious page to trick the browser into showing an address of a different page. This may allow the malicious page to impersonate another page and trick a user into providing sensitive data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-84gw-f25v-grqx/GHSA-84gw-f25v-grqx.json b/advisories/unreviewed/2022/05/GHSA-84gw-f25v-grqx/GHSA-84gw-f25v-grqx.json index fd584116490..c03fef2495e 100644 --- a/advisories/unreviewed/2022/05/GHSA-84gw-f25v-grqx/GHSA-84gw-f25v-grqx.json +++ b/advisories/unreviewed/2022/05/GHSA-84gw-f25v-grqx/GHSA-84gw-f25v-grqx.json @@ -7,12 +7,8 @@ "CVE-2020-26968" ], "details": "Mozilla developers reported memory safety bugs present in Firefox 82 and Firefox ESR 78.4. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 83, Firefox ESR < 78.5, and Thunderbird < 78.5.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-84m5-j9v6-4q32/GHSA-84m5-j9v6-4q32.json b/advisories/unreviewed/2022/05/GHSA-84m5-j9v6-4q32/GHSA-84m5-j9v6-4q32.json index 111f67081c6..d1c8ee0a28f 100644 --- a/advisories/unreviewed/2022/05/GHSA-84m5-j9v6-4q32/GHSA-84m5-j9v6-4q32.json +++ b/advisories/unreviewed/2022/05/GHSA-84m5-j9v6-4q32/GHSA-84m5-j9v6-4q32.json @@ -7,12 +7,8 @@ "CVE-2020-29061" ], "details": "An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 97168P, FD1002S, FD1104, FD1104B, FD1104S, FD1104SN, FD1108S, FD1204S-R2, FD1204SN, FD1204SN-R2, FD1208S-R2, FD1216S-R1, FD1608GS, FD1608SN, FD1616GS, FD1616SN, and FD8000 devices. There is a default root126 password for the root account.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-84rj-w682-g977/GHSA-84rj-w682-g977.json b/advisories/unreviewed/2022/05/GHSA-84rj-w682-g977/GHSA-84rj-w682-g977.json index 6ae97837042..aa9e270c37d 100644 --- a/advisories/unreviewed/2022/05/GHSA-84rj-w682-g977/GHSA-84rj-w682-g977.json +++ b/advisories/unreviewed/2022/05/GHSA-84rj-w682-g977/GHSA-84rj-w682-g977.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-857m-xj2v-vhp3/GHSA-857m-xj2v-vhp3.json b/advisories/unreviewed/2022/05/GHSA-857m-xj2v-vhp3/GHSA-857m-xj2v-vhp3.json index ad5358233c5..df74bcef3a8 100644 --- a/advisories/unreviewed/2022/05/GHSA-857m-xj2v-vhp3/GHSA-857m-xj2v-vhp3.json +++ b/advisories/unreviewed/2022/05/GHSA-857m-xj2v-vhp3/GHSA-857m-xj2v-vhp3.json @@ -7,12 +7,8 @@ "CVE-2020-13350" ], "details": "CSRF in runner administration page in all versions of GitLab CE/EE allows an attacker who's able to target GitLab instance administrators to pause/resume runners. Affected versions are >=13.5.0, <13.5.2,>=13.4.0, <13.4.5,<13.3.9.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-85fm-24gx-qx9x/GHSA-85fm-24gx-qx9x.json b/advisories/unreviewed/2022/05/GHSA-85fm-24gx-qx9x/GHSA-85fm-24gx-qx9x.json index 2e27631a459..84f7bf4e499 100644 --- a/advisories/unreviewed/2022/05/GHSA-85fm-24gx-qx9x/GHSA-85fm-24gx-qx9x.json +++ b/advisories/unreviewed/2022/05/GHSA-85fm-24gx-qx9x/GHSA-85fm-24gx-qx9x.json @@ -7,12 +7,8 @@ "CVE-2020-27125" ], "details": "A vulnerability in Cisco Security Manager could allow an unauthenticated, remote attacker to access sensitive information on an affected system. The vulnerability is due to insufficient protection of static credentials in the affected software. An attacker could exploit this vulnerability by viewing source code. A successful exploit could allow the attacker to view static credentials, which the attacker could use to carry out further attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8749-qhqv-q6fm/GHSA-8749-qhqv-q6fm.json b/advisories/unreviewed/2022/05/GHSA-8749-qhqv-q6fm/GHSA-8749-qhqv-q6fm.json index 4c6e2b6f700..3578140b97b 100644 --- a/advisories/unreviewed/2022/05/GHSA-8749-qhqv-q6fm/GHSA-8749-qhqv-q6fm.json +++ b/advisories/unreviewed/2022/05/GHSA-8749-qhqv-q6fm/GHSA-8749-qhqv-q6fm.json @@ -7,12 +7,8 @@ "CVE-2020-29002" ], "details": "includes/CologneBlueTemplate.php in the CologneBlue skin for MediaWiki through 1.35 allows XSS via a qbfind message supplied by an administrator.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-87cm-47xv-j472/GHSA-87cm-47xv-j472.json b/advisories/unreviewed/2022/05/GHSA-87cm-47xv-j472/GHSA-87cm-47xv-j472.json index 0f69372f18c..ffb276f4967 100644 --- a/advisories/unreviewed/2022/05/GHSA-87cm-47xv-j472/GHSA-87cm-47xv-j472.json +++ b/advisories/unreviewed/2022/05/GHSA-87cm-47xv-j472/GHSA-87cm-47xv-j472.json @@ -7,12 +7,8 @@ "CVE-2020-15710" ], "details": "Potential double free in Bluez 5 module of PulseAudio could allow a local attacker to leak memory or crash the program. The modargs variable may be freed twice in the fail condition in src/modules/bluetooth/module-bluez5-device.c and src/modules/bluetooth/module-bluez5-device.c. Fixed in 1:8.0-0ubuntu3.14.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8886-48wg-hx3v/GHSA-8886-48wg-hx3v.json b/advisories/unreviewed/2022/05/GHSA-8886-48wg-hx3v/GHSA-8886-48wg-hx3v.json index ff7c0ae583d..9db6433fcb0 100644 --- a/advisories/unreviewed/2022/05/GHSA-8886-48wg-hx3v/GHSA-8886-48wg-hx3v.json +++ b/advisories/unreviewed/2022/05/GHSA-8886-48wg-hx3v/GHSA-8886-48wg-hx3v.json @@ -7,12 +7,8 @@ "CVE-2020-28917" ], "details": "An issue was discovered in the view_statistics (aka View frontend statistics) extension before 2.0.1 for TYPO3. It saves all GET and POST data of TYPO3 frontend requests to the database. Depending on the extensions used on a TYPO3 website, sensitive data (e.g., cleartext passwords if ext:felogin is installed) may be saved.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-888q-3vrq-2mw3/GHSA-888q-3vrq-2mw3.json b/advisories/unreviewed/2022/05/GHSA-888q-3vrq-2mw3/GHSA-888q-3vrq-2mw3.json index 5931a34043d..a6e98228322 100644 --- a/advisories/unreviewed/2022/05/GHSA-888q-3vrq-2mw3/GHSA-888q-3vrq-2mw3.json +++ b/advisories/unreviewed/2022/05/GHSA-888q-3vrq-2mw3/GHSA-888q-3vrq-2mw3.json @@ -7,12 +7,8 @@ "CVE-2020-28946" ], "details": "An improper webserver configuration on Plum IK-401 devices with firmware before 1.02 allows an attacker (with network access to the device) to obtain the configuration file, including hashed credential data. Successful exploitation could allow access to hashed credential data with a single unauthenticated GET request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-88fq-v57q-2cv7/GHSA-88fq-v57q-2cv7.json b/advisories/unreviewed/2022/05/GHSA-88fq-v57q-2cv7/GHSA-88fq-v57q-2cv7.json index 7c7809f5f0b..49c6ec89cc6 100644 --- a/advisories/unreviewed/2022/05/GHSA-88fq-v57q-2cv7/GHSA-88fq-v57q-2cv7.json +++ b/advisories/unreviewed/2022/05/GHSA-88fq-v57q-2cv7/GHSA-88fq-v57q-2cv7.json @@ -7,12 +7,8 @@ "CVE-2020-11830" ], "details": "QualityProtect has a vulnerability to execute arbitrary system commands, affected product is com.oppo.qualityprotect V2.0.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-88jq-f6jw-8w6c/GHSA-88jq-f6jw-8w6c.json b/advisories/unreviewed/2022/05/GHSA-88jq-f6jw-8w6c/GHSA-88jq-f6jw-8w6c.json index f44f37176de..a514e43b198 100644 --- a/advisories/unreviewed/2022/05/GHSA-88jq-f6jw-8w6c/GHSA-88jq-f6jw-8w6c.json +++ b/advisories/unreviewed/2022/05/GHSA-88jq-f6jw-8w6c/GHSA-88jq-f6jw-8w6c.json @@ -7,12 +7,8 @@ "CVE-2020-11829" ], "details": "Dynamic loading of services in the backup and restore SDK leads to elevated privileges, affected product is com.coloros.codebook V2.0.0_5493e40_200722.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-898v-h686-8h79/GHSA-898v-h686-8h79.json b/advisories/unreviewed/2022/05/GHSA-898v-h686-8h79/GHSA-898v-h686-8h79.json index d25969e471c..9f8de1b556a 100644 --- a/advisories/unreviewed/2022/05/GHSA-898v-h686-8h79/GHSA-898v-h686-8h79.json +++ b/advisories/unreviewed/2022/05/GHSA-898v-h686-8h79/GHSA-898v-h686-8h79.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8f9r-9957-fj34/GHSA-8f9r-9957-fj34.json b/advisories/unreviewed/2022/05/GHSA-8f9r-9957-fj34/GHSA-8f9r-9957-fj34.json index 4148c796051..d56d4ccfd4d 100644 --- a/advisories/unreviewed/2022/05/GHSA-8f9r-9957-fj34/GHSA-8f9r-9957-fj34.json +++ b/advisories/unreviewed/2022/05/GHSA-8f9r-9957-fj34/GHSA-8f9r-9957-fj34.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8g5p-g58h-hr3v/GHSA-8g5p-g58h-hr3v.json b/advisories/unreviewed/2022/05/GHSA-8g5p-g58h-hr3v/GHSA-8g5p-g58h-hr3v.json index 363236e63d3..c79db20c8d8 100644 --- a/advisories/unreviewed/2022/05/GHSA-8g5p-g58h-hr3v/GHSA-8g5p-g58h-hr3v.json +++ b/advisories/unreviewed/2022/05/GHSA-8g5p-g58h-hr3v/GHSA-8g5p-g58h-hr3v.json @@ -7,12 +7,8 @@ "CVE-2020-28421" ], "details": "CA Unified Infrastructure Management 20.1 and earlier contains a vulnerability in the robot (controller) component that allows local attackers to elevate privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8h84-r7fq-5pcm/GHSA-8h84-r7fq-5pcm.json b/advisories/unreviewed/2022/05/GHSA-8h84-r7fq-5pcm/GHSA-8h84-r7fq-5pcm.json index 5cfac0b28f4..480a7e272fd 100644 --- a/advisories/unreviewed/2022/05/GHSA-8h84-r7fq-5pcm/GHSA-8h84-r7fq-5pcm.json +++ b/advisories/unreviewed/2022/05/GHSA-8h84-r7fq-5pcm/GHSA-8h84-r7fq-5pcm.json @@ -7,12 +7,8 @@ "CVE-2020-27752" ], "details": "A flaw was found in ImageMagick in MagickCore/quantum-private.h. An attacker who submits a crafted file that is processed by ImageMagick could trigger a heap buffer overflow. This would most likely lead to an impact to application availability, but could potentially lead to an impact to data integrity as well. This flaw affects ImageMagick versions prior to 7.0.9-0.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8h8v-4pgc-x2vp/GHSA-8h8v-4pgc-x2vp.json b/advisories/unreviewed/2022/05/GHSA-8h8v-4pgc-x2vp/GHSA-8h8v-4pgc-x2vp.json index b79a9a17185..5310b982847 100644 --- a/advisories/unreviewed/2022/05/GHSA-8h8v-4pgc-x2vp/GHSA-8h8v-4pgc-x2vp.json +++ b/advisories/unreviewed/2022/05/GHSA-8h8v-4pgc-x2vp/GHSA-8h8v-4pgc-x2vp.json @@ -7,12 +7,8 @@ "CVE-2020-7563" ], "details": "A CWE-787: Out-of-bounds Write vulnerability exists in the Web Server on Modicon M340, Modicon Quantum and Modicon Premium Legacy offers and their Communication Modules (see notification for details) which could cause corruption of data, a crash, or code execution when uploading a specially crafted file on the controller over FTP.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8hfg-c2jc-x92h/GHSA-8hfg-c2jc-x92h.json b/advisories/unreviewed/2022/05/GHSA-8hfg-c2jc-x92h/GHSA-8hfg-c2jc-x92h.json index 8bfa3731427..885e97873ff 100644 --- a/advisories/unreviewed/2022/05/GHSA-8hfg-c2jc-x92h/GHSA-8hfg-c2jc-x92h.json +++ b/advisories/unreviewed/2022/05/GHSA-8hfg-c2jc-x92h/GHSA-8hfg-c2jc-x92h.json @@ -7,12 +7,8 @@ "CVE-2020-15301" ], "details": "SuiteCRM through 7.11.13 allows CSV Injection via registration fields in the Accounts, Contacts, Opportunities, and Leads modules. These fields are mishandled during a Download Import File Template operation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8hgq-8qm6-pq2v/GHSA-8hgq-8qm6-pq2v.json b/advisories/unreviewed/2022/05/GHSA-8hgq-8qm6-pq2v/GHSA-8hgq-8qm6-pq2v.json index 5e26ca8ef76..3eb43be71af 100644 --- a/advisories/unreviewed/2022/05/GHSA-8hgq-8qm6-pq2v/GHSA-8hgq-8qm6-pq2v.json +++ b/advisories/unreviewed/2022/05/GHSA-8hgq-8qm6-pq2v/GHSA-8hgq-8qm6-pq2v.json @@ -7,12 +7,8 @@ "CVE-2020-4650" ], "details": "IBM Maximo Spatial Asset Management 7.6.0.3, 7.6.0.4, 7.6.0.5, and 7.6.1.0 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 186023.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8j42-w4ff-mq7x/GHSA-8j42-w4ff-mq7x.json b/advisories/unreviewed/2022/05/GHSA-8j42-w4ff-mq7x/GHSA-8j42-w4ff-mq7x.json index 71cd0d10c15..bb7da767176 100644 --- a/advisories/unreviewed/2022/05/GHSA-8j42-w4ff-mq7x/GHSA-8j42-w4ff-mq7x.json +++ b/advisories/unreviewed/2022/05/GHSA-8j42-w4ff-mq7x/GHSA-8j42-w4ff-mq7x.json @@ -7,12 +7,8 @@ "CVE-2020-23727" ], "details": "There is a local denial of service vulnerability in the Antiy Zhijia Terminal Defense System 5.0.2.10121559 and an attacker can cause a computer crash (BSOD).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8j77-5wmx-mgjf/GHSA-8j77-5wmx-mgjf.json b/advisories/unreviewed/2022/05/GHSA-8j77-5wmx-mgjf/GHSA-8j77-5wmx-mgjf.json index b8d0000e469..1366b966506 100644 --- a/advisories/unreviewed/2022/05/GHSA-8j77-5wmx-mgjf/GHSA-8j77-5wmx-mgjf.json +++ b/advisories/unreviewed/2022/05/GHSA-8j77-5wmx-mgjf/GHSA-8j77-5wmx-mgjf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8j96-m43p-rp5v/GHSA-8j96-m43p-rp5v.json b/advisories/unreviewed/2022/05/GHSA-8j96-m43p-rp5v/GHSA-8j96-m43p-rp5v.json index d550e5135da..19a682b40c4 100644 --- a/advisories/unreviewed/2022/05/GHSA-8j96-m43p-rp5v/GHSA-8j96-m43p-rp5v.json +++ b/advisories/unreviewed/2022/05/GHSA-8j96-m43p-rp5v/GHSA-8j96-m43p-rp5v.json @@ -7,12 +7,8 @@ "CVE-2020-29601" ], "details": "The official notary docker images before signer-0.6.1-1 contain a blank password for a root user. System using the notary docker container deployed by affected versions of the docker image may allow an remote attacker to achieve root access with a blank password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8jq9-gwrr-4cqw/GHSA-8jq9-gwrr-4cqw.json b/advisories/unreviewed/2022/05/GHSA-8jq9-gwrr-4cqw/GHSA-8jq9-gwrr-4cqw.json index 586352f56f7..81140d6dcd4 100644 --- a/advisories/unreviewed/2022/05/GHSA-8jq9-gwrr-4cqw/GHSA-8jq9-gwrr-4cqw.json +++ b/advisories/unreviewed/2022/05/GHSA-8jq9-gwrr-4cqw/GHSA-8jq9-gwrr-4cqw.json @@ -7,12 +7,8 @@ "CVE-2020-10146" ], "details": "The Microsoft Teams online service contains a stored cross-site scripting vulnerability in the displayName parameter that can be exploited on Teams clients to obtain sensitive information such as authentication tokens and to possibly execute arbitrary commands. This vulnerability was fixed for all Teams users in the online service on or around October 2020.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8mp8-8j2j-r39v/GHSA-8mp8-8j2j-r39v.json b/advisories/unreviewed/2022/05/GHSA-8mp8-8j2j-r39v/GHSA-8mp8-8j2j-r39v.json index bfc296b7479..01faeadcdf2 100644 --- a/advisories/unreviewed/2022/05/GHSA-8mp8-8j2j-r39v/GHSA-8mp8-8j2j-r39v.json +++ b/advisories/unreviewed/2022/05/GHSA-8mp8-8j2j-r39v/GHSA-8mp8-8j2j-r39v.json @@ -7,12 +7,8 @@ "CVE-2020-28573" ], "details": "An improper access control information disclosure vulnerability in Trend Micro Apex One and OfficeScan XG SP1 could allow an unauthenticated user to connect to the product server and reveal the total agents managed by the server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8vcf-f9qh-vxjr/GHSA-8vcf-f9qh-vxjr.json b/advisories/unreviewed/2022/05/GHSA-8vcf-f9qh-vxjr/GHSA-8vcf-f9qh-vxjr.json index 3515d769328..d75275e31dd 100644 --- a/advisories/unreviewed/2022/05/GHSA-8vcf-f9qh-vxjr/GHSA-8vcf-f9qh-vxjr.json +++ b/advisories/unreviewed/2022/05/GHSA-8vcf-f9qh-vxjr/GHSA-8vcf-f9qh-vxjr.json @@ -7,12 +7,8 @@ "CVE-2020-7558" ], "details": "A CWE-787 Out-of-bounds Write vulnerability exists in IGSS Definition (Def.exe) version 14.0.0.20247 that could cause Remote Code Execution when malicious CGF (Configuration Group File) file is imported to IGSS Definition.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8wx2-w44v-5fxv/GHSA-8wx2-w44v-5fxv.json b/advisories/unreviewed/2022/05/GHSA-8wx2-w44v-5fxv/GHSA-8wx2-w44v-5fxv.json index 2fc7c157845..321e2b53b43 100644 --- a/advisories/unreviewed/2022/05/GHSA-8wx2-w44v-5fxv/GHSA-8wx2-w44v-5fxv.json +++ b/advisories/unreviewed/2022/05/GHSA-8wx2-w44v-5fxv/GHSA-8wx2-w44v-5fxv.json @@ -7,12 +7,8 @@ "CVE-2020-8669" ], "details": "Improper input validation in the Intel(R) Data Center Manager Console before version 3.6.2 may allow an authenticated user to potentially enable information disclosure via network access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9246-2mcc-pf87/GHSA-9246-2mcc-pf87.json b/advisories/unreviewed/2022/05/GHSA-9246-2mcc-pf87/GHSA-9246-2mcc-pf87.json index c95974ba33d..591eb1c45c2 100644 --- a/advisories/unreviewed/2022/05/GHSA-9246-2mcc-pf87/GHSA-9246-2mcc-pf87.json +++ b/advisories/unreviewed/2022/05/GHSA-9246-2mcc-pf87/GHSA-9246-2mcc-pf87.json @@ -7,12 +7,8 @@ "CVE-2020-14190" ], "details": "Affected versions of Atlassian Fisheye/Crucible allow remote attackers to achieve Regex Denial of Service via user-supplied regex in EyeQL. The affected versions are before version 4.8.4.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-925x-95jq-3vgq/GHSA-925x-95jq-3vgq.json b/advisories/unreviewed/2022/05/GHSA-925x-95jq-3vgq/GHSA-925x-95jq-3vgq.json index c051ecc8ff6..267c578f758 100644 --- a/advisories/unreviewed/2022/05/GHSA-925x-95jq-3vgq/GHSA-925x-95jq-3vgq.json +++ b/advisories/unreviewed/2022/05/GHSA-925x-95jq-3vgq/GHSA-925x-95jq-3vgq.json @@ -7,12 +7,8 @@ "CVE-2020-3471" ], "details": "A vulnerability in Cisco Webex Meetings and Cisco Webex Meetings Server could allow an unauthenticated, remote attacker to maintain bidirectional audio despite being expelled from an active Webex session. The vulnerability is due to a synchronization issue between meeting and media services on a vulnerable Webex site. An attacker could exploit this vulnerability by sending crafted requests to a vulnerable Cisco Webex Meetings or Cisco Webex Meetings Server site. A successful exploit could allow the attacker to maintain the audio connection of a Webex session despite being expelled.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-92hg-jjmr-6gv2/GHSA-92hg-jjmr-6gv2.json b/advisories/unreviewed/2022/05/GHSA-92hg-jjmr-6gv2/GHSA-92hg-jjmr-6gv2.json index ecfbc907ee4..7c0ac6884e1 100644 --- a/advisories/unreviewed/2022/05/GHSA-92hg-jjmr-6gv2/GHSA-92hg-jjmr-6gv2.json +++ b/advisories/unreviewed/2022/05/GHSA-92hg-jjmr-6gv2/GHSA-92hg-jjmr-6gv2.json @@ -7,12 +7,8 @@ "CVE-2020-8133" ], "details": "A wrong generation of the passphrase for the encrypted block in Nextcloud Server 19.0.1 allowed an attacker to overwrite blocks in a file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-92pj-cjhq-xw9c/GHSA-92pj-cjhq-xw9c.json b/advisories/unreviewed/2022/05/GHSA-92pj-cjhq-xw9c/GHSA-92pj-cjhq-xw9c.json index f275b71a84c..0aef4077488 100644 --- a/advisories/unreviewed/2022/05/GHSA-92pj-cjhq-xw9c/GHSA-92pj-cjhq-xw9c.json +++ b/advisories/unreviewed/2022/05/GHSA-92pj-cjhq-xw9c/GHSA-92pj-cjhq-xw9c.json @@ -7,12 +7,8 @@ "CVE-2020-4771" ], "details": "IBM Spectrum Protect Operations Center 8.1.0.000 through 8.1.10.and 7.1.0.000 through 7.1.11 could allow a remote attacker to obtain sensitive information, caused by improper authentication of a websocket endpoint. By using known tools to subscribe to the websocket event stream, an attacker could exploit this vulnerability to obtain sensitive information. IBM X-Force ID: 188993.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-93f9-wg2h-r6p5/GHSA-93f9-wg2h-r6p5.json b/advisories/unreviewed/2022/05/GHSA-93f9-wg2h-r6p5/GHSA-93f9-wg2h-r6p5.json index 28ef7b00558..29dd50b2ff6 100644 --- a/advisories/unreviewed/2022/05/GHSA-93f9-wg2h-r6p5/GHSA-93f9-wg2h-r6p5.json +++ b/advisories/unreviewed/2022/05/GHSA-93f9-wg2h-r6p5/GHSA-93f9-wg2h-r6p5.json @@ -7,12 +7,8 @@ "CVE-2020-7565" ], "details": "A CWE-326: Inadequate Encryption Strength vulnerability exists in Modicon M221 (all references, all versions) that could allow the attacker to break the encryption key when the attacker has captured the traffic between EcoStruxure Machine - Basic software and Modicon M221 controller.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-943p-ppxw-x2h4/GHSA-943p-ppxw-x2h4.json b/advisories/unreviewed/2022/05/GHSA-943p-ppxw-x2h4/GHSA-943p-ppxw-x2h4.json index df3f7a9535c..bb80fda8185 100644 --- a/advisories/unreviewed/2022/05/GHSA-943p-ppxw-x2h4/GHSA-943p-ppxw-x2h4.json +++ b/advisories/unreviewed/2022/05/GHSA-943p-ppxw-x2h4/GHSA-943p-ppxw-x2h4.json @@ -7,12 +7,8 @@ "CVE-2020-9950" ], "details": "A use after free issue was addressed with improved memory management. This issue is fixed in watchOS 7.0, tvOS 14.0, Safari 14.0, iOS 14.0 and iPadOS 14.0. Processing maliciously crafted web content may lead to arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-94cq-h6f7-9rvw/GHSA-94cq-h6f7-9rvw.json b/advisories/unreviewed/2022/05/GHSA-94cq-h6f7-9rvw/GHSA-94cq-h6f7-9rvw.json index 90060860d92..85e1e7e084d 100644 --- a/advisories/unreviewed/2022/05/GHSA-94cq-h6f7-9rvw/GHSA-94cq-h6f7-9rvw.json +++ b/advisories/unreviewed/2022/05/GHSA-94cq-h6f7-9rvw/GHSA-94cq-h6f7-9rvw.json @@ -7,12 +7,8 @@ "CVE-2020-7378" ], "details": "CRIXP OpenCRX version 4.30 and 5.0-20200717 and prior suffers from an unverified password change vulnerability. An attacker who is able to connect to the affected OpenCRX instance can change the password of any user, including admin-Standard, to any chosen value. This issue was resolved in version 5.0-20200904, released September 4, 2020.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-94q8-gmc5-fvp3/GHSA-94q8-gmc5-fvp3.json b/advisories/unreviewed/2022/05/GHSA-94q8-gmc5-fvp3/GHSA-94q8-gmc5-fvp3.json index a3150ee6e27..b46480a65fb 100644 --- a/advisories/unreviewed/2022/05/GHSA-94q8-gmc5-fvp3/GHSA-94q8-gmc5-fvp3.json +++ b/advisories/unreviewed/2022/05/GHSA-94q8-gmc5-fvp3/GHSA-94q8-gmc5-fvp3.json @@ -7,12 +7,8 @@ "CVE-2020-28005" ], "details": "httpd on TP-Link TL-WPA4220 devices (hardware versions 2 through 4) allows remote authenticated users to trigger a buffer overflow (causing a denial of service) by sending a POST request to the /admin/syslog endpoint. Fixed version: TL-WPA4220(EU)_V4_201023", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9526-q7c5-6pc6/GHSA-9526-q7c5-6pc6.json b/advisories/unreviewed/2022/05/GHSA-9526-q7c5-6pc6/GHSA-9526-q7c5-6pc6.json index 9483387e202..2cbd9fc7b09 100644 --- a/advisories/unreviewed/2022/05/GHSA-9526-q7c5-6pc6/GHSA-9526-q7c5-6pc6.json +++ b/advisories/unreviewed/2022/05/GHSA-9526-q7c5-6pc6/GHSA-9526-q7c5-6pc6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-95vg-hp9r-6q5x/GHSA-95vg-hp9r-6q5x.json b/advisories/unreviewed/2022/05/GHSA-95vg-hp9r-6q5x/GHSA-95vg-hp9r-6q5x.json index cb7c2451cf6..1c1a568cba9 100644 --- a/advisories/unreviewed/2022/05/GHSA-95vg-hp9r-6q5x/GHSA-95vg-hp9r-6q5x.json +++ b/advisories/unreviewed/2022/05/GHSA-95vg-hp9r-6q5x/GHSA-95vg-hp9r-6q5x.json @@ -7,12 +7,8 @@ "CVE-2020-0458" ], "details": "In SPDIFEncoder::writeBurstBufferBytes and related methods of SPDIFEncoder.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-9 Android-10 Android-8.0 Android-8.1Android ID: A-160265164", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-95w2-x8cx-c96f/GHSA-95w2-x8cx-c96f.json b/advisories/unreviewed/2022/05/GHSA-95w2-x8cx-c96f/GHSA-95w2-x8cx-c96f.json index 279d88841e7..a8e45b445ff 100644 --- a/advisories/unreviewed/2022/05/GHSA-95w2-x8cx-c96f/GHSA-95w2-x8cx-c96f.json +++ b/advisories/unreviewed/2022/05/GHSA-95w2-x8cx-c96f/GHSA-95w2-x8cx-c96f.json @@ -7,12 +7,8 @@ "CVE-2020-7570" ], "details": "A CWE-79 Improper Neutralization of Input During Web Page Generation (Cross-site Scripting Stored) vulnerability exists in EcoStruxure Building Operation WebReports V1.9 - V3.1 that could cause an authenticated remote user being able to inject arbitrary web script or HTML due to incorrect sanitization of user-supplied data and achieve a Cross-Site Scripting stored attack against other WebReport users.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9645-cj65-jfjp/GHSA-9645-cj65-jfjp.json b/advisories/unreviewed/2022/05/GHSA-9645-cj65-jfjp/GHSA-9645-cj65-jfjp.json index 8f7dc14a987..0efdcf28e2f 100644 --- a/advisories/unreviewed/2022/05/GHSA-9645-cj65-jfjp/GHSA-9645-cj65-jfjp.json +++ b/advisories/unreviewed/2022/05/GHSA-9645-cj65-jfjp/GHSA-9645-cj65-jfjp.json @@ -7,12 +7,8 @@ "CVE-2020-28877" ], "details": "Buffer overflow in in the copy_msg_element function for the devDiscoverHandle server in the TP-Link WR and WDR series, including WDR7400, WDR7500, WDR7660, WDR7800, WDR8400, WDR8500, WDR8600, WDR8620, WDR8640, WDR8660, WR880N, WR886N, WR890N, WR890N, WR882N, and WR708N.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9682-j923-q58c/GHSA-9682-j923-q58c.json b/advisories/unreviewed/2022/05/GHSA-9682-j923-q58c/GHSA-9682-j923-q58c.json index 588a178f4c8..0336ce7d67f 100644 --- a/advisories/unreviewed/2022/05/GHSA-9682-j923-q58c/GHSA-9682-j923-q58c.json +++ b/advisories/unreviewed/2022/05/GHSA-9682-j923-q58c/GHSA-9682-j923-q58c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-969c-xcr8-6f87/GHSA-969c-xcr8-6f87.json b/advisories/unreviewed/2022/05/GHSA-969c-xcr8-6f87/GHSA-969c-xcr8-6f87.json index 3c0463a2f97..839eb57e221 100644 --- a/advisories/unreviewed/2022/05/GHSA-969c-xcr8-6f87/GHSA-969c-xcr8-6f87.json +++ b/advisories/unreviewed/2022/05/GHSA-969c-xcr8-6f87/GHSA-969c-xcr8-6f87.json @@ -7,12 +7,8 @@ "CVE-2020-14351" ], "details": "A flaw was found in the Linux kernel. A use-after-free memory flaw was found in the perf subsystem allowing a local attacker with permission to monitor perf events to corrupt memory and possibly escalate privileges. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-96mc-r65q-rp99/GHSA-96mc-r65q-rp99.json b/advisories/unreviewed/2022/05/GHSA-96mc-r65q-rp99/GHSA-96mc-r65q-rp99.json index 1587718398a..80d6a930054 100644 --- a/advisories/unreviewed/2022/05/GHSA-96mc-r65q-rp99/GHSA-96mc-r65q-rp99.json +++ b/advisories/unreviewed/2022/05/GHSA-96mc-r65q-rp99/GHSA-96mc-r65q-rp99.json @@ -7,12 +7,8 @@ "CVE-2020-5675" ], "details": "Out-of-bounds read issue in GT21 model of GOT2000 series (GT2107-WTBD all versions, GT2107-WTSD all versions, GT2104-RTBD all versions, GT2104-PMBD all versions, and GT2103-PMBD all versions), GS21 model of GOT series (GS2110-WTBD all versions and GS2107-WTBD all versions), and Tension Controller LE7-40GU-L all versions allows a remote attacker to cause a denial-of-service (DoS) condition by sending a specially crafted packet. As a result, deterioration of communication performance or a denial-of-service (DoS) condition of the TCP communication functions of the products may occur.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-987v-cgj9-6w7p/GHSA-987v-cgj9-6w7p.json b/advisories/unreviewed/2022/05/GHSA-987v-cgj9-6w7p/GHSA-987v-cgj9-6w7p.json index a93f8f2206f..2e500524720 100644 --- a/advisories/unreviewed/2022/05/GHSA-987v-cgj9-6w7p/GHSA-987v-cgj9-6w7p.json +++ b/advisories/unreviewed/2022/05/GHSA-987v-cgj9-6w7p/GHSA-987v-cgj9-6w7p.json @@ -7,12 +7,8 @@ "CVE-2020-23735" ], "details": "In Saibo Cyber Game Accelerator 3.7.9 there is a local privilege escalation vulnerability. Attackers can use the constructed program to increase user privileges", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-988w-p627-h6w6/GHSA-988w-p627-h6w6.json b/advisories/unreviewed/2022/05/GHSA-988w-p627-h6w6/GHSA-988w-p627-h6w6.json index e335dc32b9a..86a85c72456 100644 --- a/advisories/unreviewed/2022/05/GHSA-988w-p627-h6w6/GHSA-988w-p627-h6w6.json +++ b/advisories/unreviewed/2022/05/GHSA-988w-p627-h6w6/GHSA-988w-p627-h6w6.json @@ -7,12 +7,8 @@ "CVE-2020-26933" ], "details": "Trusted Computing Group (TCG) Trusted Platform Module Library Family 2.0 Library Specification Revisions 1.38 through 1.59 has Incorrect Access Control during a non-orderly TPM shut-down that uses USE_DA_USED. Improper initialization of this shut-down may result in susceptibility to a dictionary attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-98f9-9r42-6h8r/GHSA-98f9-9r42-6h8r.json b/advisories/unreviewed/2022/05/GHSA-98f9-9r42-6h8r/GHSA-98f9-9r42-6h8r.json index 53cbf6e1065..f80c8cb873f 100644 --- a/advisories/unreviewed/2022/05/GHSA-98f9-9r42-6h8r/GHSA-98f9-9r42-6h8r.json +++ b/advisories/unreviewed/2022/05/GHSA-98f9-9r42-6h8r/GHSA-98f9-9r42-6h8r.json @@ -7,12 +7,8 @@ "CVE-2020-28350" ], "details": "A Cross Site Scripting (XSS) vulnerability exists in OPAC in Sokrates SOWA SowaSQL through 5.6.1 via the sowacgi.php typ parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-98j3-8c3p-wjgw/GHSA-98j3-8c3p-wjgw.json b/advisories/unreviewed/2022/05/GHSA-98j3-8c3p-wjgw/GHSA-98j3-8c3p-wjgw.json index 4f3e6617e43..11d69b9f8d7 100644 --- a/advisories/unreviewed/2022/05/GHSA-98j3-8c3p-wjgw/GHSA-98j3-8c3p-wjgw.json +++ b/advisories/unreviewed/2022/05/GHSA-98j3-8c3p-wjgw/GHSA-98j3-8c3p-wjgw.json @@ -7,12 +7,8 @@ "CVE-2020-27905" ], "details": "A memory corruption issue was addressed with improved state management. This issue is fixed in iOS 14.2 and iPadOS 14.2, tvOS 14.2, watchOS 7.1. A malicious application may be able to execute arbitrary code with system privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9cc9-7jvq-f37c/GHSA-9cc9-7jvq-f37c.json b/advisories/unreviewed/2022/05/GHSA-9cc9-7jvq-f37c/GHSA-9cc9-7jvq-f37c.json index fa81ea1aa63..8b45b735461 100644 --- a/advisories/unreviewed/2022/05/GHSA-9cc9-7jvq-f37c/GHSA-9cc9-7jvq-f37c.json +++ b/advisories/unreviewed/2022/05/GHSA-9cc9-7jvq-f37c/GHSA-9cc9-7jvq-f37c.json @@ -7,12 +7,8 @@ "CVE-2020-13352" ], "details": "Private group info is leaked leaked in GitLab CE/EE version 10.2 and above, when the project is moved from private to public group. Affected versions are: >=10.2, <13.3.9,>=13.4, <13.4.5,>=13.5, <13.5.2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9cmh-vcwr-g56w/GHSA-9cmh-vcwr-g56w.json b/advisories/unreviewed/2022/05/GHSA-9cmh-vcwr-g56w/GHSA-9cmh-vcwr-g56w.json index e0265d84000..b2af63929dd 100644 --- a/advisories/unreviewed/2022/05/GHSA-9cmh-vcwr-g56w/GHSA-9cmh-vcwr-g56w.json +++ b/advisories/unreviewed/2022/05/GHSA-9cmh-vcwr-g56w/GHSA-9cmh-vcwr-g56w.json @@ -7,12 +7,8 @@ "CVE-2020-9115" ], "details": "ManageOne versions 6.5.1.1.B010, 6.5.1.1.B020, 6.5.1.1.B030, 6.5.1.1.B040, ,6.5.1.1.B050, 8.0.0 and 8.0.1 have a command injection vulnerability. An attacker with high privileges may exploit this vulnerability through some operations on the plug-in component. Due to insufficient input validation of some parameters, the attacker can exploit this vulnerability to inject commands to the target device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9cp9-p8gv-hvjp/GHSA-9cp9-p8gv-hvjp.json b/advisories/unreviewed/2022/05/GHSA-9cp9-p8gv-hvjp/GHSA-9cp9-p8gv-hvjp.json index 858898bccac..cdf123930d5 100644 --- a/advisories/unreviewed/2022/05/GHSA-9cp9-p8gv-hvjp/GHSA-9cp9-p8gv-hvjp.json +++ b/advisories/unreviewed/2022/05/GHSA-9cp9-p8gv-hvjp/GHSA-9cp9-p8gv-hvjp.json @@ -7,12 +7,8 @@ "CVE-2020-4886" ], "details": "IBM InfoSphere Information Server 11.7 stores sensitive information in the browser's history that could be obtained by a user who has access to the same system. IBM X-Force ID: 190910.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9f4c-6r28-3vgp/GHSA-9f4c-6r28-3vgp.json b/advisories/unreviewed/2022/05/GHSA-9f4c-6r28-3vgp/GHSA-9f4c-6r28-3vgp.json index d1179750c6b..8c3e76275dc 100644 --- a/advisories/unreviewed/2022/05/GHSA-9f4c-6r28-3vgp/GHSA-9f4c-6r28-3vgp.json +++ b/advisories/unreviewed/2022/05/GHSA-9f4c-6r28-3vgp/GHSA-9f4c-6r28-3vgp.json @@ -7,12 +7,8 @@ "CVE-2020-15349" ], "details": "BinaryNights ForkLift 3.x before 3.4 has a local privilege escalation vulnerability because the privileged helper tool implements an XPC interface that allows file operations to any process (copy, move, delete) as root and changing permissions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9fgh-6w4g-5r53/GHSA-9fgh-6w4g-5r53.json b/advisories/unreviewed/2022/05/GHSA-9fgh-6w4g-5r53/GHSA-9fgh-6w4g-5r53.json index 605fff3db3a..47beeab2c6e 100644 --- a/advisories/unreviewed/2022/05/GHSA-9fgh-6w4g-5r53/GHSA-9fgh-6w4g-5r53.json +++ b/advisories/unreviewed/2022/05/GHSA-9fgh-6w4g-5r53/GHSA-9fgh-6w4g-5r53.json @@ -7,12 +7,8 @@ "CVE-2020-29284" ], "details": "The file view-chair-list.php in Multi Restaurant Table Reservation System 1.0 does not perform input validation on the table_id parameter which allows unauthenticated SQL Injection. An attacker can send malicious input in the GET request to /dashboard/view-chair-list.php?table_id= to trigger the vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9fv2-mhpr-vp74/GHSA-9fv2-mhpr-vp74.json b/advisories/unreviewed/2022/05/GHSA-9fv2-mhpr-vp74/GHSA-9fv2-mhpr-vp74.json index 38e74e8d977..61976d32b04 100644 --- a/advisories/unreviewed/2022/05/GHSA-9fv2-mhpr-vp74/GHSA-9fv2-mhpr-vp74.json +++ b/advisories/unreviewed/2022/05/GHSA-9fv2-mhpr-vp74/GHSA-9fv2-mhpr-vp74.json @@ -7,12 +7,8 @@ "CVE-2020-26829" ], "details": "SAP NetWeaver AS JAVA (P2P Cluster Communication), versions - 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, allows arbitrary connections from processes because of missing authentication check, that are outside the cluster and even outside the network segment dedicated for the internal cluster communication. As result, an unauthenticated attacker can invoke certain functions that would otherwise be restricted to system administrators only, including access to system administration functions or shutting down the system completely.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9hh8-9m39-758p/GHSA-9hh8-9m39-758p.json b/advisories/unreviewed/2022/05/GHSA-9hh8-9m39-758p/GHSA-9hh8-9m39-758p.json index a466f012c95..ae584f41dd4 100644 --- a/advisories/unreviewed/2022/05/GHSA-9hh8-9m39-758p/GHSA-9hh8-9m39-758p.json +++ b/advisories/unreviewed/2022/05/GHSA-9hh8-9m39-758p/GHSA-9hh8-9m39-758p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9hxw-w8qr-8whf/GHSA-9hxw-w8qr-8whf.json b/advisories/unreviewed/2022/05/GHSA-9hxw-w8qr-8whf/GHSA-9hxw-w8qr-8whf.json index ef55a3e7abf..ef1209f7d2f 100644 --- a/advisories/unreviewed/2022/05/GHSA-9hxw-w8qr-8whf/GHSA-9hxw-w8qr-8whf.json +++ b/advisories/unreviewed/2022/05/GHSA-9hxw-w8qr-8whf/GHSA-9hxw-w8qr-8whf.json @@ -7,12 +7,8 @@ "CVE-2015-9550" ], "details": "An issue was discovered on TOTOLINK A850R-V1 through 1.0.1-B20150707.1612 and F1-V2 through 1.1-B20150708.1646 devices. By sending a specific hel,xasf packet to the WAN interface, it is possible to open the web management interface on the WAN interface.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9mg9-93fp-h68f/GHSA-9mg9-93fp-h68f.json b/advisories/unreviewed/2022/05/GHSA-9mg9-93fp-h68f/GHSA-9mg9-93fp-h68f.json index 82572cc8e12..7e70b9581f2 100644 --- a/advisories/unreviewed/2022/05/GHSA-9mg9-93fp-h68f/GHSA-9mg9-93fp-h68f.json +++ b/advisories/unreviewed/2022/05/GHSA-9mg9-93fp-h68f/GHSA-9mg9-93fp-h68f.json @@ -7,12 +7,8 @@ "CVE-2020-27904" ], "details": "A logic issue existed resulting in memory corruption. This was addressed with improved state management. This issue is fixed in macOS Big Sur 11.0.1. An application may be able to execute arbitrary code with kernel privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9mm6-26v4-pgr2/GHSA-9mm6-26v4-pgr2.json b/advisories/unreviewed/2022/05/GHSA-9mm6-26v4-pgr2/GHSA-9mm6-26v4-pgr2.json index feabf289973..96f3f9ac219 100644 --- a/advisories/unreviewed/2022/05/GHSA-9mm6-26v4-pgr2/GHSA-9mm6-26v4-pgr2.json +++ b/advisories/unreviewed/2022/05/GHSA-9mm6-26v4-pgr2/GHSA-9mm6-26v4-pgr2.json @@ -7,12 +7,8 @@ "CVE-2020-7335" ], "details": "Privilege Escalation vulnerability in Microsoft Windows client McAfee Total Protection (MTP) prior to 16.0.29 allows local users to gain elevated privileges via careful manipulation of a folder by creating a junction link. This exploits a lack of protection through a timing issue and is only exploitable in a small time window.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9rm6-q34g-q949/GHSA-9rm6-q34g-q949.json b/advisories/unreviewed/2022/05/GHSA-9rm6-q34g-q949/GHSA-9rm6-q34g-q949.json index 5b282122f4b..c3c2c6c82a6 100644 --- a/advisories/unreviewed/2022/05/GHSA-9rm6-q34g-q949/GHSA-9rm6-q34g-q949.json +++ b/advisories/unreviewed/2022/05/GHSA-9rm6-q34g-q949/GHSA-9rm6-q34g-q949.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9vx6-2r2f-g9qw/GHSA-9vx6-2r2f-g9qw.json b/advisories/unreviewed/2022/05/GHSA-9vx6-2r2f-g9qw/GHSA-9vx6-2r2f-g9qw.json index 008089fba3d..b3a577a72a0 100644 --- a/advisories/unreviewed/2022/05/GHSA-9vx6-2r2f-g9qw/GHSA-9vx6-2r2f-g9qw.json +++ b/advisories/unreviewed/2022/05/GHSA-9vx6-2r2f-g9qw/GHSA-9vx6-2r2f-g9qw.json @@ -7,12 +7,8 @@ "CVE-2020-28578" ], "details": "A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an unauthenticated, remote attacker to send a specially crafted HTTP message and achieve remote code execution with elevated privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9vxc-xx4f-gp2p/GHSA-9vxc-xx4f-gp2p.json b/advisories/unreviewed/2022/05/GHSA-9vxc-xx4f-gp2p/GHSA-9vxc-xx4f-gp2p.json index 2847fba4beb..7bc2a9fa4fd 100644 --- a/advisories/unreviewed/2022/05/GHSA-9vxc-xx4f-gp2p/GHSA-9vxc-xx4f-gp2p.json +++ b/advisories/unreviewed/2022/05/GHSA-9vxc-xx4f-gp2p/GHSA-9vxc-xx4f-gp2p.json @@ -7,12 +7,8 @@ "CVE-2020-29043" ], "details": "An issue was discovered in BigBlueButton through 2.2.29. When at attacker is able to view an account_activations/edit?token= URI, the attacker can create an approved user account associated with an email address that has an arbitrary domain name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9wr9-qg9q-m8vj/GHSA-9wr9-qg9q-m8vj.json b/advisories/unreviewed/2022/05/GHSA-9wr9-qg9q-m8vj/GHSA-9wr9-qg9q-m8vj.json index 28ecbd9928e..66f411a3fc1 100644 --- a/advisories/unreviewed/2022/05/GHSA-9wr9-qg9q-m8vj/GHSA-9wr9-qg9q-m8vj.json +++ b/advisories/unreviewed/2022/05/GHSA-9wr9-qg9q-m8vj/GHSA-9wr9-qg9q-m8vj.json @@ -7,12 +7,8 @@ "CVE-2020-28947" ], "details": "In MISP 2.4.134, XSS exists in the template element index view because the id parameter is mishandled.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9xm7-qxg2-g5p4/GHSA-9xm7-qxg2-g5p4.json b/advisories/unreviewed/2022/05/GHSA-9xm7-qxg2-g5p4/GHSA-9xm7-qxg2-g5p4.json index 4751c5010c2..d1cb07a31c5 100644 --- a/advisories/unreviewed/2022/05/GHSA-9xm7-qxg2-g5p4/GHSA-9xm7-qxg2-g5p4.json +++ b/advisories/unreviewed/2022/05/GHSA-9xm7-qxg2-g5p4/GHSA-9xm7-qxg2-g5p4.json @@ -7,12 +7,8 @@ "CVE-2020-29562" ], "details": "The iconv function in the GNU C Library (aka glibc or libc6) 2.30 to 2.32, when converting UCS4 text containing an irreversible character, fails an assertion in the code path and aborts the program, potentially resulting in a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c2x9-7pw3-qgwx/GHSA-c2x9-7pw3-qgwx.json b/advisories/unreviewed/2022/05/GHSA-c2x9-7pw3-qgwx/GHSA-c2x9-7pw3-qgwx.json index e2865e187c8..478560b4167 100644 --- a/advisories/unreviewed/2022/05/GHSA-c2x9-7pw3-qgwx/GHSA-c2x9-7pw3-qgwx.json +++ b/advisories/unreviewed/2022/05/GHSA-c2x9-7pw3-qgwx/GHSA-c2x9-7pw3-qgwx.json @@ -7,12 +7,8 @@ "CVE-2015-9551" ], "details": "An issue was discovered on TOTOLINK A850R-V1 through 1.0.1-B20150707.1612 and F1-V2 through 1.1-B20150708.1646 devices. There is Remote Code Execution in the management interface via the formSysCmd sysCmd parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c3hj-2397-cgqm/GHSA-c3hj-2397-cgqm.json b/advisories/unreviewed/2022/05/GHSA-c3hj-2397-cgqm/GHSA-c3hj-2397-cgqm.json index 2a9314f8dd3..8f58daee967 100644 --- a/advisories/unreviewed/2022/05/GHSA-c3hj-2397-cgqm/GHSA-c3hj-2397-cgqm.json +++ b/advisories/unreviewed/2022/05/GHSA-c3hj-2397-cgqm/GHSA-c3hj-2397-cgqm.json @@ -7,12 +7,8 @@ "CVE-2020-29655" ], "details": "An injection vulnerability exists in RT-AC88U Download Master before 3.1.0.108. Accessing Main_Login.asp?flag=1&productname=FOOBAR&url=/downloadmaster/task.asp will redirect to the login site, which will show the value of the parameter productname within the title. An attacker might be able to influence the appearance of the login page, aka text injection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c423-vwh6-449m/GHSA-c423-vwh6-449m.json b/advisories/unreviewed/2022/05/GHSA-c423-vwh6-449m/GHSA-c423-vwh6-449m.json index efe3b811365..37de701e27b 100644 --- a/advisories/unreviewed/2022/05/GHSA-c423-vwh6-449m/GHSA-c423-vwh6-449m.json +++ b/advisories/unreviewed/2022/05/GHSA-c423-vwh6-449m/GHSA-c423-vwh6-449m.json @@ -7,12 +7,8 @@ "CVE-2020-9247" ], "details": "There is a buffer overflow vulnerability in several Huawei products. The system does not sufficiently validate certain configuration parameter which is passed from user that would cause buffer overflow. The attacker should trick the user into installing and running a malicious application with a high privilege, successful exploit may cause code execution. Affected product include Huawei HONOR 20 PRO, Mate 20, Mate 20 Pro, Mate 20 X, P30, P30 Pro, Hima-L29C, Laya-AL00EP, Princeton-AL10B, Tony-AL00B, Yale-L61A, Yale-TL00B and YaleP-AL10B.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c4f6-mx8c-8v9m/GHSA-c4f6-mx8c-8v9m.json b/advisories/unreviewed/2022/05/GHSA-c4f6-mx8c-8v9m/GHSA-c4f6-mx8c-8v9m.json index 47ffc54ac0a..9f194083b21 100644 --- a/advisories/unreviewed/2022/05/GHSA-c4f6-mx8c-8v9m/GHSA-c4f6-mx8c-8v9m.json +++ b/advisories/unreviewed/2022/05/GHSA-c4f6-mx8c-8v9m/GHSA-c4f6-mx8c-8v9m.json @@ -7,12 +7,8 @@ "CVE-2020-28574" ], "details": "A unauthenticated path traversal arbitrary remote file deletion vulnerability in Trend Micro Worry-Free Business Security 10 SP1 could allow an unauthenticated attacker to exploit the vulnerability and modify or delete arbitrary files on the product's management console.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c4hp-f86j-vc55/GHSA-c4hp-f86j-vc55.json b/advisories/unreviewed/2022/05/GHSA-c4hp-f86j-vc55/GHSA-c4hp-f86j-vc55.json index dbedd09a57a..08250da71ce 100644 --- a/advisories/unreviewed/2022/05/GHSA-c4hp-f86j-vc55/GHSA-c4hp-f86j-vc55.json +++ b/advisories/unreviewed/2022/05/GHSA-c4hp-f86j-vc55/GHSA-c4hp-f86j-vc55.json @@ -7,12 +7,8 @@ "CVE-2020-3985" ], "details": "The SD-WAN Orchestrator 3.3.2 prior to 3.3.2 P3 and 3.4.x prior to 3.4.4 allows an access to set arbitrary authorization levels leading to a privilege escalation issue. An authenticated SD-WAN Orchestrator user may exploit an application weakness and call a vulnerable API to elevate their privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c4j5-68fc-gm69/GHSA-c4j5-68fc-gm69.json b/advisories/unreviewed/2022/05/GHSA-c4j5-68fc-gm69/GHSA-c4j5-68fc-gm69.json index 26a3722befd..42ea39e9bf7 100644 --- a/advisories/unreviewed/2022/05/GHSA-c4j5-68fc-gm69/GHSA-c4j5-68fc-gm69.json +++ b/advisories/unreviewed/2022/05/GHSA-c4j5-68fc-gm69/GHSA-c4j5-68fc-gm69.json @@ -7,12 +7,8 @@ "CVE-2020-9965" ], "details": "An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1, watchOS 7.0, tvOS 14.0, iOS 14.0 and iPadOS 14.0. An application may be able to execute arbitrary code with kernel privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c538-784j-qcxc/GHSA-c538-784j-qcxc.json b/advisories/unreviewed/2022/05/GHSA-c538-784j-qcxc/GHSA-c538-784j-qcxc.json index 079bfa23703..8dcadc14985 100644 --- a/advisories/unreviewed/2022/05/GHSA-c538-784j-qcxc/GHSA-c538-784j-qcxc.json +++ b/advisories/unreviewed/2022/05/GHSA-c538-784j-qcxc/GHSA-c538-784j-qcxc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c5hg-hx4v-7q6w/GHSA-c5hg-hx4v-7q6w.json b/advisories/unreviewed/2022/05/GHSA-c5hg-hx4v-7q6w/GHSA-c5hg-hx4v-7q6w.json index 56b515067b6..1ab17fe8104 100644 --- a/advisories/unreviewed/2022/05/GHSA-c5hg-hx4v-7q6w/GHSA-c5hg-hx4v-7q6w.json +++ b/advisories/unreviewed/2022/05/GHSA-c5hg-hx4v-7q6w/GHSA-c5hg-hx4v-7q6w.json @@ -7,12 +7,8 @@ "CVE-2020-25664" ], "details": "In WriteOnePNGImage() of the PNG coder at coders/png.c, an improper call to AcquireVirtualMemory() and memset() allows for an out-of-bounds write later when PopShortPixel() from MagickCore/quantum-private.h is called. The patch fixes the calls by adding 256 to rowbytes. An attacker who is able to supply a specially crafted image could affect availability with a low impact to data integrity. This flaw affects ImageMagick versions prior to 6.9.10-68 and 7.0.8-68.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c627-2gcf-x56f/GHSA-c627-2gcf-x56f.json b/advisories/unreviewed/2022/05/GHSA-c627-2gcf-x56f/GHSA-c627-2gcf-x56f.json index 027cde06de7..1aff821cc23 100644 --- a/advisories/unreviewed/2022/05/GHSA-c627-2gcf-x56f/GHSA-c627-2gcf-x56f.json +++ b/advisories/unreviewed/2022/05/GHSA-c627-2gcf-x56f/GHSA-c627-2gcf-x56f.json @@ -7,12 +7,8 @@ "CVE-2020-26966" ], "details": "Searching for a single word from the address bar caused an mDNS request to be sent on the local network searching for a hostname consisting of that string; resulting in an information leak. *Note: This issue only affected Windows operating systems. Other operating systems are unaffected.*. This vulnerability affects Firefox < 83, Firefox ESR < 78.5, and Thunderbird < 78.5.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c6w7-fh4x-6grf/GHSA-c6w7-fh4x-6grf.json b/advisories/unreviewed/2022/05/GHSA-c6w7-fh4x-6grf/GHSA-c6w7-fh4x-6grf.json index 8b6f3664ed3..0fa18fd0ff2 100644 --- a/advisories/unreviewed/2022/05/GHSA-c6w7-fh4x-6grf/GHSA-c6w7-fh4x-6grf.json +++ b/advisories/unreviewed/2022/05/GHSA-c6w7-fh4x-6grf/GHSA-c6w7-fh4x-6grf.json @@ -7,12 +7,8 @@ "CVE-2020-23740" ], "details": "In DriverGenius 9.61.5480.28 there is a local privilege escalation vulnerability in the driver wizard, attackers can use constructed programs to increase user privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c788-7228-4w94/GHSA-c788-7228-4w94.json b/advisories/unreviewed/2022/05/GHSA-c788-7228-4w94/GHSA-c788-7228-4w94.json index f0688d3074a..616a8227bcd 100644 --- a/advisories/unreviewed/2022/05/GHSA-c788-7228-4w94/GHSA-c788-7228-4w94.json +++ b/advisories/unreviewed/2022/05/GHSA-c788-7228-4w94/GHSA-c788-7228-4w94.json @@ -7,12 +7,8 @@ "CVE-2020-29069" ], "details": "_get_flag_ip_localdb in server/mhn/ui/utils.py in Modern Honey Network (MHN) through 2020-11-23 allows attackers to cause a denial-of-service via an IP address that is absent from a local geolocation database, because the code tries to uppercase a return value even if that value is not a string.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c78g-42vj-2xq3/GHSA-c78g-42vj-2xq3.json b/advisories/unreviewed/2022/05/GHSA-c78g-42vj-2xq3/GHSA-c78g-42vj-2xq3.json index 4c753a3e795..7127d0ef24b 100644 --- a/advisories/unreviewed/2022/05/GHSA-c78g-42vj-2xq3/GHSA-c78g-42vj-2xq3.json +++ b/advisories/unreviewed/2022/05/GHSA-c78g-42vj-2xq3/GHSA-c78g-42vj-2xq3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c8j9-wpjx-gc58/GHSA-c8j9-wpjx-gc58.json b/advisories/unreviewed/2022/05/GHSA-c8j9-wpjx-gc58/GHSA-c8j9-wpjx-gc58.json index 21a8a5ef50a..6c46a8b8eb5 100644 --- a/advisories/unreviewed/2022/05/GHSA-c8j9-wpjx-gc58/GHSA-c8j9-wpjx-gc58.json +++ b/advisories/unreviewed/2022/05/GHSA-c8j9-wpjx-gc58/GHSA-c8j9-wpjx-gc58.json @@ -7,12 +7,8 @@ "CVE-2020-28333" ], "details": "Barco wePresent WiPG-1600W devices allow Authentication Bypass. Affected Version(s): 2.5.1.8. The Barco wePresent WiPG-1600W web interface does not use session cookies for tracking authenticated sessions. Instead, the web interface uses a \"SEID\" token that is appended to the end of URLs in GET requests. Thus the \"SEID\" would be exposed in web proxy logs and browser history. An attacker that is able to capture the \"SEID\" and originate requests from the same IP address (via a NAT device or web proxy) would be able to access the user interface of the device without having to know the credentials.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c96p-67jc-gfv2/GHSA-c96p-67jc-gfv2.json b/advisories/unreviewed/2022/05/GHSA-c96p-67jc-gfv2/GHSA-c96p-67jc-gfv2.json index fccc298d0c0..2b0470cb8c0 100644 --- a/advisories/unreviewed/2022/05/GHSA-c96p-67jc-gfv2/GHSA-c96p-67jc-gfv2.json +++ b/advisories/unreviewed/2022/05/GHSA-c96p-67jc-gfv2/GHSA-c96p-67jc-gfv2.json @@ -7,12 +7,8 @@ "CVE-2020-26936" ], "details": "Cloudera Data Engineering (CDE) before 1.1 was vulnerable to a CSRF attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ccvp-35p9-69x5/GHSA-ccvp-35p9-69x5.json b/advisories/unreviewed/2022/05/GHSA-ccvp-35p9-69x5/GHSA-ccvp-35p9-69x5.json index ff24a64e8ec..a393dc67ce2 100644 --- a/advisories/unreviewed/2022/05/GHSA-ccvp-35p9-69x5/GHSA-ccvp-35p9-69x5.json +++ b/advisories/unreviewed/2022/05/GHSA-ccvp-35p9-69x5/GHSA-ccvp-35p9-69x5.json @@ -7,12 +7,8 @@ "CVE-2020-11831" ], "details": "OvoiceManager has system permission to write vulnerability reports for arbitrary files, affected product is com.oppo.ovoicemanager V2.0.1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cf3w-c88r-w8cf/GHSA-cf3w-c88r-w8cf.json b/advisories/unreviewed/2022/05/GHSA-cf3w-c88r-w8cf/GHSA-cf3w-c88r-w8cf.json index 597b67b140d..ded17f51ea0 100644 --- a/advisories/unreviewed/2022/05/GHSA-cf3w-c88r-w8cf/GHSA-cf3w-c88r-w8cf.json +++ b/advisories/unreviewed/2022/05/GHSA-cf3w-c88r-w8cf/GHSA-cf3w-c88r-w8cf.json @@ -7,12 +7,8 @@ "CVE-2020-29054" ], "details": "An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 97168P, FD1002S, FD1104, FD1104B, FD1104S, FD1104SN, FD1108S, FD1204S-R2, FD1204SN, FD1204SN-R2, FD1208S-R2, FD1216S-R1, FD1608GS, FD1608SN, FD1616GS, FD1616SN, and FD8000 devices. Attackers can use \"show system infor\" to discover cleartext TELNET credentials.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cg53-x73j-7f7x/GHSA-cg53-x73j-7f7x.json b/advisories/unreviewed/2022/05/GHSA-cg53-x73j-7f7x/GHSA-cg53-x73j-7f7x.json index e4d8d369dc0..780e57c1a80 100644 --- a/advisories/unreviewed/2022/05/GHSA-cg53-x73j-7f7x/GHSA-cg53-x73j-7f7x.json +++ b/advisories/unreviewed/2022/05/GHSA-cg53-x73j-7f7x/GHSA-cg53-x73j-7f7x.json @@ -7,12 +7,8 @@ "CVE-2020-26072" ], "details": "A vulnerability in the SOAP API of Cisco IoT Field Network Director (FND) could allow an authenticated, remote attacker to access and modify information on devices that belong to a different domain. The vulnerability is due to insufficient authorization in the SOAP API. An attacker could exploit this vulnerability by sending SOAP API requests to affected devices for devices that are outside their authorized domain. A successful exploit could allow the attacker to access and modify information on devices that belong to a different domain.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cg7r-5xgw-w475/GHSA-cg7r-5xgw-w475.json b/advisories/unreviewed/2022/05/GHSA-cg7r-5xgw-w475/GHSA-cg7r-5xgw-w475.json index 9c56c40ecd1..a69d0625515 100644 --- a/advisories/unreviewed/2022/05/GHSA-cg7r-5xgw-w475/GHSA-cg7r-5xgw-w475.json +++ b/advisories/unreviewed/2022/05/GHSA-cg7r-5xgw-w475/GHSA-cg7r-5xgw-w475.json @@ -7,12 +7,8 @@ "CVE-2020-27409" ], "details": "OpenSIS Community Edition before 7.5 is affected by a cross-site scripting (XSS) vulnerability in SideForStudent.php via the modname parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-chm7-74w6-xvpf/GHSA-chm7-74w6-xvpf.json b/advisories/unreviewed/2022/05/GHSA-chm7-74w6-xvpf/GHSA-chm7-74w6-xvpf.json index d574f61af3b..4c70a344225 100644 --- a/advisories/unreviewed/2022/05/GHSA-chm7-74w6-xvpf/GHSA-chm7-74w6-xvpf.json +++ b/advisories/unreviewed/2022/05/GHSA-chm7-74w6-xvpf/GHSA-chm7-74w6-xvpf.json @@ -7,12 +7,8 @@ "CVE-2018-16722" ], "details": "In Jingyun Antivirus v2.4.2.39, the driver file (ZySandbox.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x12360094, a related issue to CVE-2018-16305.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cj9c-5245-m5rj/GHSA-cj9c-5245-m5rj.json b/advisories/unreviewed/2022/05/GHSA-cj9c-5245-m5rj/GHSA-cj9c-5245-m5rj.json index b3f3dba48e3..349a8040f79 100644 --- a/advisories/unreviewed/2022/05/GHSA-cj9c-5245-m5rj/GHSA-cj9c-5245-m5rj.json +++ b/advisories/unreviewed/2022/05/GHSA-cj9c-5245-m5rj/GHSA-cj9c-5245-m5rj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cm65-67cq-fq4v/GHSA-cm65-67cq-fq4v.json b/advisories/unreviewed/2022/05/GHSA-cm65-67cq-fq4v/GHSA-cm65-67cq-fq4v.json index 56a8fa9299f..5577b36f6a4 100644 --- a/advisories/unreviewed/2022/05/GHSA-cm65-67cq-fq4v/GHSA-cm65-67cq-fq4v.json +++ b/advisories/unreviewed/2022/05/GHSA-cm65-67cq-fq4v/GHSA-cm65-67cq-fq4v.json @@ -7,12 +7,8 @@ "CVE-2020-28976" ], "details": "The Canto plugin 1.3.0 for WordPress contains a blind SSRF vulnerability. It allows an unauthenticated attacker can make a request to any internal and external server via /includes/lib/detail.php?subdomain=SSRF.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cmqj-w77g-23w3/GHSA-cmqj-w77g-23w3.json b/advisories/unreviewed/2022/05/GHSA-cmqj-w77g-23w3/GHSA-cmqj-w77g-23w3.json index 038eab372a4..b2a059559f8 100644 --- a/advisories/unreviewed/2022/05/GHSA-cmqj-w77g-23w3/GHSA-cmqj-w77g-23w3.json +++ b/advisories/unreviewed/2022/05/GHSA-cmqj-w77g-23w3/GHSA-cmqj-w77g-23w3.json @@ -7,12 +7,8 @@ "CVE-2020-29595" ], "details": "PlugIns\\IDE_ACDStd.apl in ACDSee Photo Studio Studio Professional 2021 14.0 Build 1705 has a User Mode Write AV starting at IDE_ACDStd!JPEGTransW+0x00000000000031aa.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cp22-2989-32j9/GHSA-cp22-2989-32j9.json b/advisories/unreviewed/2022/05/GHSA-cp22-2989-32j9/GHSA-cp22-2989-32j9.json index 307f0a7fccb..a7ca63c47a5 100644 --- a/advisories/unreviewed/2022/05/GHSA-cp22-2989-32j9/GHSA-cp22-2989-32j9.json +++ b/advisories/unreviewed/2022/05/GHSA-cp22-2989-32j9/GHSA-cp22-2989-32j9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cp77-jfvp-qpxx/GHSA-cp77-jfvp-qpxx.json b/advisories/unreviewed/2022/05/GHSA-cp77-jfvp-qpxx/GHSA-cp77-jfvp-qpxx.json index 6ed0548b548..482a94a9bc6 100644 --- a/advisories/unreviewed/2022/05/GHSA-cp77-jfvp-qpxx/GHSA-cp77-jfvp-qpxx.json +++ b/advisories/unreviewed/2022/05/GHSA-cp77-jfvp-qpxx/GHSA-cp77-jfvp-qpxx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cq82-f654-8cvc/GHSA-cq82-f654-8cvc.json b/advisories/unreviewed/2022/05/GHSA-cq82-f654-8cvc/GHSA-cq82-f654-8cvc.json index d23ce0ea495..8bf513980bc 100644 --- a/advisories/unreviewed/2022/05/GHSA-cq82-f654-8cvc/GHSA-cq82-f654-8cvc.json +++ b/advisories/unreviewed/2022/05/GHSA-cq82-f654-8cvc/GHSA-cq82-f654-8cvc.json @@ -7,12 +7,8 @@ "CVE-2020-15929" ], "details": "In Ortus TestBox 2.4.0 through 4.1.0, unvalidated query string parameters passed to system/runners/HTMLRunner.cfm allow an attacker to write an arbitrary CFM file (within the application's context) containing attacker-defined CFML tags, leading to Remote Code Execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cr23-gw9g-5cwj/GHSA-cr23-gw9g-5cwj.json b/advisories/unreviewed/2022/05/GHSA-cr23-gw9g-5cwj/GHSA-cr23-gw9g-5cwj.json index efcc3308453..7a7e7bc4eee 100644 --- a/advisories/unreviewed/2022/05/GHSA-cr23-gw9g-5cwj/GHSA-cr23-gw9g-5cwj.json +++ b/advisories/unreviewed/2022/05/GHSA-cr23-gw9g-5cwj/GHSA-cr23-gw9g-5cwj.json @@ -7,12 +7,8 @@ "CVE-2020-27483" ], "details": "Garmin Forerunner 235 before 8.20 is affected by: Array index error. The component is: ConnectIQ TVM. The attack vector is: To exploit the vulnerability, the attacker must upload a malicious ConnectIQ application to the ConnectIQ store. The ConnectIQ program interpreter trusts the offset provided for the stack value duplication instruction, DUP. The offset is unchecked and memory prior to the start of the execution stack can be read and treated as a TVM object. A successful exploit could use the vulnerability to leak runtime information such as the heap handle or pointer for a number of TVM context variables. Some reachable values may be controlled enough to forge a TVM object on the stack, leading to possible remote code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cr4g-c387-95hx/GHSA-cr4g-c387-95hx.json b/advisories/unreviewed/2022/05/GHSA-cr4g-c387-95hx/GHSA-cr4g-c387-95hx.json index 0cc6e34a1f1..a06d1cc980a 100644 --- a/advisories/unreviewed/2022/05/GHSA-cr4g-c387-95hx/GHSA-cr4g-c387-95hx.json +++ b/advisories/unreviewed/2022/05/GHSA-cr4g-c387-95hx/GHSA-cr4g-c387-95hx.json @@ -7,12 +7,8 @@ "CVE-2020-24723" ], "details": "Cross Site Scripting (XSS) vulnerability in the Registration page of the admin panel in PHPGurukul User Registration & Login and User Management System With admin panel 2.1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cr82-m62c-8j4w/GHSA-cr82-m62c-8j4w.json b/advisories/unreviewed/2022/05/GHSA-cr82-m62c-8j4w/GHSA-cr82-m62c-8j4w.json index 48c4c7d6212..99a3da8f7bd 100644 --- a/advisories/unreviewed/2022/05/GHSA-cr82-m62c-8j4w/GHSA-cr82-m62c-8j4w.json +++ b/advisories/unreviewed/2022/05/GHSA-cr82-m62c-8j4w/GHSA-cr82-m62c-8j4w.json @@ -7,12 +7,8 @@ "CVE-2020-5796" ], "details": "Improper preservation of permissions in Nagios XI 5.7.4 allows a local, low-privileged, authenticated user to weaken the permissions of files, resulting in low-privileged users being able to write to and execute arbitrary PHP code with root privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-crcc-3c88-jfqc/GHSA-crcc-3c88-jfqc.json b/advisories/unreviewed/2022/05/GHSA-crcc-3c88-jfqc/GHSA-crcc-3c88-jfqc.json index 6133a035ea1..2c9bf2b11f9 100644 --- a/advisories/unreviewed/2022/05/GHSA-crcc-3c88-jfqc/GHSA-crcc-3c88-jfqc.json +++ b/advisories/unreviewed/2022/05/GHSA-crcc-3c88-jfqc/GHSA-crcc-3c88-jfqc.json @@ -7,12 +7,8 @@ "CVE-2020-26954" ], "details": "When accepting a malicious intent from other installed apps, Firefox for Android accepted manifests from arbitrary file paths and allowed declaring webapp manifests for other origins. This could be used to gain fullscreen access for UI spoofing and could also lead to cross-origin attacks on targeted websites. *Note: This issue only affected Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 83.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-crrf-7wcm-2c9m/GHSA-crrf-7wcm-2c9m.json b/advisories/unreviewed/2022/05/GHSA-crrf-7wcm-2c9m/GHSA-crrf-7wcm-2c9m.json index e296872b5ae..a0960bd118f 100644 --- a/advisories/unreviewed/2022/05/GHSA-crrf-7wcm-2c9m/GHSA-crrf-7wcm-2c9m.json +++ b/advisories/unreviewed/2022/05/GHSA-crrf-7wcm-2c9m/GHSA-crrf-7wcm-2c9m.json @@ -7,12 +7,8 @@ "CVE-2020-27912" ], "details": "An out-of-bounds write was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1, watchOS 7.1, iOS 14.2 and iPadOS 14.2, iCloud for Windows 11.5, tvOS 14.2, iTunes 12.11 for Windows. Processing a maliciously crafted image may lead to arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cvjj-3hj3-h52w/GHSA-cvjj-3hj3-h52w.json b/advisories/unreviewed/2022/05/GHSA-cvjj-3hj3-h52w/GHSA-cvjj-3hj3-h52w.json index 2b2edd316c8..150ac6e6438 100644 --- a/advisories/unreviewed/2022/05/GHSA-cvjj-3hj3-h52w/GHSA-cvjj-3hj3-h52w.json +++ b/advisories/unreviewed/2022/05/GHSA-cvjj-3hj3-h52w/GHSA-cvjj-3hj3-h52w.json @@ -7,12 +7,8 @@ "CVE-2020-22394" ], "details": "In YzmCMS v5.5 the member contribution function in the editor contains a cross-site scripting (XSS) vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cvpm-h3w4-gr4m/GHSA-cvpm-h3w4-gr4m.json b/advisories/unreviewed/2022/05/GHSA-cvpm-h3w4-gr4m/GHSA-cvpm-h3w4-gr4m.json index 3835a0ea4fb..cdcc9430d2f 100644 --- a/advisories/unreviewed/2022/05/GHSA-cvpm-h3w4-gr4m/GHSA-cvpm-h3w4-gr4m.json +++ b/advisories/unreviewed/2022/05/GHSA-cvpm-h3w4-gr4m/GHSA-cvpm-h3w4-gr4m.json @@ -7,12 +7,8 @@ "CVE-2020-25266" ], "details": "AppImage appimaged before 1.0.3 does not properly check whether a downloaded file is a valid appimage. For example, it will accept a crafted mp3 file that contains an appimage, and install it.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cw22-47j6-2cpf/GHSA-cw22-47j6-2cpf.json b/advisories/unreviewed/2022/05/GHSA-cw22-47j6-2cpf/GHSA-cw22-47j6-2cpf.json index 6985a206b0d..5e207dede11 100644 --- a/advisories/unreviewed/2022/05/GHSA-cw22-47j6-2cpf/GHSA-cw22-47j6-2cpf.json +++ b/advisories/unreviewed/2022/05/GHSA-cw22-47j6-2cpf/GHSA-cw22-47j6-2cpf.json @@ -7,12 +7,8 @@ "CVE-2020-15928" ], "details": "In Ortus TestBox 2.4.0 through 4.1.0, unvalidated query string parameters to test-browser/index.cfm allow directory traversal.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cw3m-4r2p-cpmg/GHSA-cw3m-4r2p-cpmg.json b/advisories/unreviewed/2022/05/GHSA-cw3m-4r2p-cpmg/GHSA-cw3m-4r2p-cpmg.json index b2428aa2e46..bb77c016ada 100644 --- a/advisories/unreviewed/2022/05/GHSA-cw3m-4r2p-cpmg/GHSA-cw3m-4r2p-cpmg.json +++ b/advisories/unreviewed/2022/05/GHSA-cw3m-4r2p-cpmg/GHSA-cw3m-4r2p-cpmg.json @@ -7,12 +7,8 @@ "CVE-2020-27586" ], "details": "Quick Heal Total Security before version 19.0 transmits quarantine and sysinfo files via clear text.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cxf7-jm74-c5qg/GHSA-cxf7-jm74-c5qg.json b/advisories/unreviewed/2022/05/GHSA-cxf7-jm74-c5qg/GHSA-cxf7-jm74-c5qg.json index 53743066b66..bd8dce888de 100644 --- a/advisories/unreviewed/2022/05/GHSA-cxf7-jm74-c5qg/GHSA-cxf7-jm74-c5qg.json +++ b/advisories/unreviewed/2022/05/GHSA-cxf7-jm74-c5qg/GHSA-cxf7-jm74-c5qg.json @@ -7,12 +7,8 @@ "CVE-2020-14230" ], "details": "HCL Domino is susceptible to a Denial of Service vulnerability caused by improper validation of user-supplied input. A remote unauthenticated attacker could exploit this vulnerability using a specially-crafted email message to hang the server. Versions previous to releases 9.0.1 FP10 IF6, 10.0.1 FP5 and 11.0.1 are affected.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cxpp-2492-jpgw/GHSA-cxpp-2492-jpgw.json b/advisories/unreviewed/2022/05/GHSA-cxpp-2492-jpgw/GHSA-cxpp-2492-jpgw.json index 05ea9b1fc6d..e60ce534ab4 100644 --- a/advisories/unreviewed/2022/05/GHSA-cxpp-2492-jpgw/GHSA-cxpp-2492-jpgw.json +++ b/advisories/unreviewed/2022/05/GHSA-cxpp-2492-jpgw/GHSA-cxpp-2492-jpgw.json @@ -7,12 +7,8 @@ "CVE-2020-27695" ], "details": "Trend Micro Security 2020 (Consumer) contains a vulnerability in the installer package that could be exploited by placing a malicious DLL in a local directory which can lead to obtaining administrative privileges during the installation of the product.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f2rm-99fw-5555/GHSA-f2rm-99fw-5555.json b/advisories/unreviewed/2022/05/GHSA-f2rm-99fw-5555/GHSA-f2rm-99fw-5555.json index 9d3efb5f84c..316194d304e 100644 --- a/advisories/unreviewed/2022/05/GHSA-f2rm-99fw-5555/GHSA-f2rm-99fw-5555.json +++ b/advisories/unreviewed/2022/05/GHSA-f2rm-99fw-5555/GHSA-f2rm-99fw-5555.json @@ -7,12 +7,8 @@ "CVE-2020-28330" ], "details": "Barco wePresent WiPG-1600W devices have Unprotected Transport of Credentials. Affected Version(s): 2.5.1.8. An attacker armed with hardcoded API credentials (retrieved by exploiting CVE-2020-28329) can issue an authenticated query to display the admin password for the main web user interface listening on port 443/tcp of a Barco wePresent WiPG-1600W device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f335-pm7q-gvcv/GHSA-f335-pm7q-gvcv.json b/advisories/unreviewed/2022/05/GHSA-f335-pm7q-gvcv/GHSA-f335-pm7q-gvcv.json index 37cbc0c1010..84e94b24b4f 100644 --- a/advisories/unreviewed/2022/05/GHSA-f335-pm7q-gvcv/GHSA-f335-pm7q-gvcv.json +++ b/advisories/unreviewed/2022/05/GHSA-f335-pm7q-gvcv/GHSA-f335-pm7q-gvcv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f3wv-rx3x-v6fh/GHSA-f3wv-rx3x-v6fh.json b/advisories/unreviewed/2022/05/GHSA-f3wv-rx3x-v6fh/GHSA-f3wv-rx3x-v6fh.json index 149e0e6092a..f0ca890da16 100644 --- a/advisories/unreviewed/2022/05/GHSA-f3wv-rx3x-v6fh/GHSA-f3wv-rx3x-v6fh.json +++ b/advisories/unreviewed/2022/05/GHSA-f3wv-rx3x-v6fh/GHSA-f3wv-rx3x-v6fh.json @@ -7,12 +7,8 @@ "CVE-2020-27932" ], "details": "A type confusion issue was addressed with improved state handling. This issue is fixed in macOS Big Sur 11.0.1, watchOS 7.1, iOS 12.4.9, watchOS 6.2.9, Security Update 2020-006 High Sierra, Security Update 2020-006 Mojave, iOS 14.2 and iPadOS 14.2, watchOS 5.3.9, macOS Catalina 10.15.7 Supplemental Update, macOS Catalina 10.15.7 Update. A malicious application may be able to execute arbitrary code with kernel privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f534-wv46-r4jg/GHSA-f534-wv46-r4jg.json b/advisories/unreviewed/2022/05/GHSA-f534-wv46-r4jg/GHSA-f534-wv46-r4jg.json index 6a8694b4ea9..8289b0403cf 100644 --- a/advisories/unreviewed/2022/05/GHSA-f534-wv46-r4jg/GHSA-f534-wv46-r4jg.json +++ b/advisories/unreviewed/2022/05/GHSA-f534-wv46-r4jg/GHSA-f534-wv46-r4jg.json @@ -7,12 +7,8 @@ "CVE-2020-27614" ], "details": "AnyDesk for macOS versions 6.0.2 and older have a vulnerability in the XPC interface that does not properly validate client requests and allows local privilege escalation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f537-rwg7-cjw7/GHSA-f537-rwg7-cjw7.json b/advisories/unreviewed/2022/05/GHSA-f537-rwg7-cjw7/GHSA-f537-rwg7-cjw7.json index 7f4ba8e036b..40164e8bd57 100644 --- a/advisories/unreviewed/2022/05/GHSA-f537-rwg7-cjw7/GHSA-f537-rwg7-cjw7.json +++ b/advisories/unreviewed/2022/05/GHSA-f537-rwg7-cjw7/GHSA-f537-rwg7-cjw7.json @@ -7,12 +7,8 @@ "CVE-2020-4005" ], "details": "VMware ESXi (7.0 before ESXi70U1b-17168206, 6.7 before ESXi670-202011101-SG, 6.5 before ESXi650-202011301-SG) contains a privilege-escalation vulnerability that exists in the way certain system calls are being managed. A malicious actor with privileges within the VMX process only, may escalate their privileges on the affected system. Successful exploitation of this issue is only possible when chained with another vulnerability (e.g. CVE-2020-4004)", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f547-35w9-xxjr/GHSA-f547-35w9-xxjr.json b/advisories/unreviewed/2022/05/GHSA-f547-35w9-xxjr/GHSA-f547-35w9-xxjr.json index b91439b1f92..58b235a6523 100644 --- a/advisories/unreviewed/2022/05/GHSA-f547-35w9-xxjr/GHSA-f547-35w9-xxjr.json +++ b/advisories/unreviewed/2022/05/GHSA-f547-35w9-xxjr/GHSA-f547-35w9-xxjr.json @@ -7,12 +7,8 @@ "CVE-2020-28183" ], "details": "SQL injection vulnerability in SourceCodester Water Billing System 1.0 via the username and password parameters to process.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f57w-r4hj-rw7w/GHSA-f57w-r4hj-rw7w.json b/advisories/unreviewed/2022/05/GHSA-f57w-r4hj-rw7w/GHSA-f57w-r4hj-rw7w.json index 6011bb88c19..25b5525edf7 100644 --- a/advisories/unreviewed/2022/05/GHSA-f57w-r4hj-rw7w/GHSA-f57w-r4hj-rw7w.json +++ b/advisories/unreviewed/2022/05/GHSA-f57w-r4hj-rw7w/GHSA-f57w-r4hj-rw7w.json @@ -7,12 +7,8 @@ "CVE-2020-25014" ], "details": "A stack-based buffer overflow in fbwifi_continue.cgi on Zyxel UTM and VPN series of gateways running firmware version V4.30 through to V4.55 allows remote unauthenticated attackers to execute arbitrary code via a crafted http packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f5m4-7rpp-8pcx/GHSA-f5m4-7rpp-8pcx.json b/advisories/unreviewed/2022/05/GHSA-f5m4-7rpp-8pcx/GHSA-f5m4-7rpp-8pcx.json index 9d76cb209c0..fba62ae9d19 100644 --- a/advisories/unreviewed/2022/05/GHSA-f5m4-7rpp-8pcx/GHSA-f5m4-7rpp-8pcx.json +++ b/advisories/unreviewed/2022/05/GHSA-f5m4-7rpp-8pcx/GHSA-f5m4-7rpp-8pcx.json @@ -7,12 +7,8 @@ "CVE-2020-14260" ], "details": "HCL Domino is susceptible to a Buffer Overflow vulnerability in DXL due to improper validation of user input. A successful exploit could enable an attacker to crash Domino or execute attacker-controlled code on the server system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f637-jpfq-3wv2/GHSA-f637-jpfq-3wv2.json b/advisories/unreviewed/2022/05/GHSA-f637-jpfq-3wv2/GHSA-f637-jpfq-3wv2.json index e91a88e3335..955210676da 100644 --- a/advisories/unreviewed/2022/05/GHSA-f637-jpfq-3wv2/GHSA-f637-jpfq-3wv2.json +++ b/advisories/unreviewed/2022/05/GHSA-f637-jpfq-3wv2/GHSA-f637-jpfq-3wv2.json @@ -7,12 +7,8 @@ "CVE-2020-25650" ], "details": "A flaw was found in the way the spice-vdagentd daemon handled file transfers from the host system to the virtual machine. Any unprivileged local guest user with access to the UNIX domain socket path `/run/spice-vdagentd/spice-vdagent-sock` could use this flaw to perform a memory denial of service for spice-vdagentd or even other processes in the VM system. The highest threat from this vulnerability is to system availability. This flaw affects spice-vdagent versions 0.20 and previous versions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f6xm-7hh7-hhmf/GHSA-f6xm-7hh7-hhmf.json b/advisories/unreviewed/2022/05/GHSA-f6xm-7hh7-hhmf/GHSA-f6xm-7hh7-hhmf.json index cfe877c6b9e..6739799a433 100644 --- a/advisories/unreviewed/2022/05/GHSA-f6xm-7hh7-hhmf/GHSA-f6xm-7hh7-hhmf.json +++ b/advisories/unreviewed/2022/05/GHSA-f6xm-7hh7-hhmf/GHSA-f6xm-7hh7-hhmf.json @@ -7,12 +7,8 @@ "CVE-2020-7555" ], "details": "A CWE-787 Out-of-bounds Write vulnerability exists in IGSS Definition (Def.exe) version 14.0.0.20247 that could cause Remote Code Execution when malicious CGF (Configuration Group File) file is imported to IGSS Definition.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f785-26gp-36f7/GHSA-f785-26gp-36f7.json b/advisories/unreviewed/2022/05/GHSA-f785-26gp-36f7/GHSA-f785-26gp-36f7.json index 98e5fb10512..f23bb133dd8 100644 --- a/advisories/unreviewed/2022/05/GHSA-f785-26gp-36f7/GHSA-f785-26gp-36f7.json +++ b/advisories/unreviewed/2022/05/GHSA-f785-26gp-36f7/GHSA-f785-26gp-36f7.json @@ -7,12 +7,8 @@ "CVE-2020-29575" ], "details": "The official elixir Docker images before 1.8.0-alpine (Alpine specific) contain a blank password for a root user. Systems using the elixir Linux Docker container deployed by affected versions of the Docker image may allow a remote attacker to achieve root access with a blank password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f7vw-h87v-qcxm/GHSA-f7vw-h87v-qcxm.json b/advisories/unreviewed/2022/05/GHSA-f7vw-h87v-qcxm/GHSA-f7vw-h87v-qcxm.json index 2d87c966416..b2d205d29f2 100644 --- a/advisories/unreviewed/2022/05/GHSA-f7vw-h87v-qcxm/GHSA-f7vw-h87v-qcxm.json +++ b/advisories/unreviewed/2022/05/GHSA-f7vw-h87v-qcxm/GHSA-f7vw-h87v-qcxm.json @@ -7,12 +7,8 @@ "CVE-2020-29564" ], "details": "The official Consul Docker images 0.7.1 through 1.4.2 contain a blank password for a root user. System using the Consul Docker container deployed by affected versions of the Docker image may allow a remote attacker to achieve root access with a blank password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f92h-24fv-q8vj/GHSA-f92h-24fv-q8vj.json b/advisories/unreviewed/2022/05/GHSA-f92h-24fv-q8vj/GHSA-f92h-24fv-q8vj.json index d8f343e775e..3b2c60934aa 100644 --- a/advisories/unreviewed/2022/05/GHSA-f92h-24fv-q8vj/GHSA-f92h-24fv-q8vj.json +++ b/advisories/unreviewed/2022/05/GHSA-f92h-24fv-q8vj/GHSA-f92h-24fv-q8vj.json @@ -7,12 +7,8 @@ "CVE-2020-27192" ], "details": "BinaryNights ForkLift 3.4 was compiled with the com.apple.security.cs.disable-library-validation flag enabled which allowed a local attacker to inject code into ForkLift. This would allow the attacker to run malicious code with escalated privileges through ForkLift's helper tool.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f9r5-j6qc-fj25/GHSA-f9r5-j6qc-fj25.json b/advisories/unreviewed/2022/05/GHSA-f9r5-j6qc-fj25/GHSA-f9r5-j6qc-fj25.json index 0c1c056d69d..9912d6da536 100644 --- a/advisories/unreviewed/2022/05/GHSA-f9r5-j6qc-fj25/GHSA-f9r5-j6qc-fj25.json +++ b/advisories/unreviewed/2022/05/GHSA-f9r5-j6qc-fj25/GHSA-f9r5-j6qc-fj25.json @@ -7,12 +7,8 @@ "CVE-2020-16600" ], "details": "A Use After Free vulnerability exists in Artifex Software, Inc. MuPDF library 1.17.0-rc1 and earlier when a valid page was followed by a page with invalid pixmap dimensions, causing bander - a static - to point to previously freed memory instead of a newband_writer.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fcrv-fj4v-2w98/GHSA-fcrv-fj4v-2w98.json b/advisories/unreviewed/2022/05/GHSA-fcrv-fj4v-2w98/GHSA-fcrv-fj4v-2w98.json index 48d71c3c82c..72c6243a005 100644 --- a/advisories/unreviewed/2022/05/GHSA-fcrv-fj4v-2w98/GHSA-fcrv-fj4v-2w98.json +++ b/advisories/unreviewed/2022/05/GHSA-fcrv-fj4v-2w98/GHSA-fcrv-fj4v-2w98.json @@ -7,12 +7,8 @@ "CVE-2020-0467" ], "details": "In onUserStopped of Vpn.java, there is a possible resetting of user preferences due to a logic issue. This could lead to local information disclosure of secure network traffic over a non-VPN link with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-8.1 Android-9Android ID: A-168500792", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fg87-2627-3rxj/GHSA-fg87-2627-3rxj.json b/advisories/unreviewed/2022/05/GHSA-fg87-2627-3rxj/GHSA-fg87-2627-3rxj.json index 2ec0ddb250d..9cbc894edd8 100644 --- a/advisories/unreviewed/2022/05/GHSA-fg87-2627-3rxj/GHSA-fg87-2627-3rxj.json +++ b/advisories/unreviewed/2022/05/GHSA-fg87-2627-3rxj/GHSA-fg87-2627-3rxj.json @@ -7,12 +7,8 @@ "CVE-2020-3531" ], "details": "A vulnerability in the REST API of Cisco IoT Field Network Director (FND) could allow an unauthenticated, remote attacker to access the back-end database of an affected system. The vulnerability exists because the affected software does not properly authenticate REST API calls. An attacker could exploit this vulnerability by obtaining a cross-site request forgery (CSRF) token and then using the token with REST API requests. A successful exploit could allow the attacker to access the back-end database of the affected device and read, alter, or drop information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fg8g-5752-vv79/GHSA-fg8g-5752-vv79.json b/advisories/unreviewed/2022/05/GHSA-fg8g-5752-vv79/GHSA-fg8g-5752-vv79.json index f0a5871bd74..aae8263f04a 100644 --- a/advisories/unreviewed/2022/05/GHSA-fg8g-5752-vv79/GHSA-fg8g-5752-vv79.json +++ b/advisories/unreviewed/2022/05/GHSA-fg8g-5752-vv79/GHSA-fg8g-5752-vv79.json @@ -7,12 +7,8 @@ "CVE-2020-4128" ], "details": "HCL Domino is susceptible to a lockout policy bypass vulnerability in the ID Vault service. An unauthenticated attacker could use this vulnerability to mount a brute force attack against the ID Vault service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fgq9-mc3x-7pq8/GHSA-fgq9-mc3x-7pq8.json b/advisories/unreviewed/2022/05/GHSA-fgq9-mc3x-7pq8/GHSA-fgq9-mc3x-7pq8.json index daf798a4f3f..8bd8786e6f1 100644 --- a/advisories/unreviewed/2022/05/GHSA-fgq9-mc3x-7pq8/GHSA-fgq9-mc3x-7pq8.json +++ b/advisories/unreviewed/2022/05/GHSA-fgq9-mc3x-7pq8/GHSA-fgq9-mc3x-7pq8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fh3v-hmj6-hfgc/GHSA-fh3v-hmj6-hfgc.json b/advisories/unreviewed/2022/05/GHSA-fh3v-hmj6-hfgc/GHSA-fh3v-hmj6-hfgc.json index 1653a546b3e..55bff3babae 100644 --- a/advisories/unreviewed/2022/05/GHSA-fh3v-hmj6-hfgc/GHSA-fh3v-hmj6-hfgc.json +++ b/advisories/unreviewed/2022/05/GHSA-fh3v-hmj6-hfgc/GHSA-fh3v-hmj6-hfgc.json @@ -7,12 +7,8 @@ "CVE-2020-28091" ], "details": "cxuucms v3 has a SQL injection vulnerability, which can lead to the leakage of all database data via the keywords parameter via search.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fmpw-4cjx-968h/GHSA-fmpw-4cjx-968h.json b/advisories/unreviewed/2022/05/GHSA-fmpw-4cjx-968h/GHSA-fmpw-4cjx-968h.json index 6285981a041..ace698e1d86 100644 --- a/advisories/unreviewed/2022/05/GHSA-fmpw-4cjx-968h/GHSA-fmpw-4cjx-968h.json +++ b/advisories/unreviewed/2022/05/GHSA-fmpw-4cjx-968h/GHSA-fmpw-4cjx-968h.json @@ -7,12 +7,8 @@ "CVE-2020-0457" ], "details": "There is a possible out of bounds write due to a missing bounds check.Product: AndroidVersions: Android SoCAndroid ID: A-170367562", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fp78-9jrc-578g/GHSA-fp78-9jrc-578g.json b/advisories/unreviewed/2022/05/GHSA-fp78-9jrc-578g/GHSA-fp78-9jrc-578g.json index 986681d8a09..f2d51d5ea69 100644 --- a/advisories/unreviewed/2022/05/GHSA-fp78-9jrc-578g/GHSA-fp78-9jrc-578g.json +++ b/advisories/unreviewed/2022/05/GHSA-fp78-9jrc-578g/GHSA-fp78-9jrc-578g.json @@ -7,12 +7,8 @@ "CVE-2020-27925" ], "details": "An issue existed in the handling of incoming calls. The issue was addressed with additional state checks. This issue is fixed in iOS 14.2 and iPadOS 14.2. A user may answer two calls simultaneously without indication they have answered a second call.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fr9h-qp6m-f727/GHSA-fr9h-qp6m-f727.json b/advisories/unreviewed/2022/05/GHSA-fr9h-qp6m-f727/GHSA-fr9h-qp6m-f727.json index 245b9cf3734..fe4edfe2212 100644 --- a/advisories/unreviewed/2022/05/GHSA-fr9h-qp6m-f727/GHSA-fr9h-qp6m-f727.json +++ b/advisories/unreviewed/2022/05/GHSA-fr9h-qp6m-f727/GHSA-fr9h-qp6m-f727.json @@ -7,12 +7,8 @@ "CVE-2020-27696" ], "details": "Trend Micro Security 2020 (Consumer) contains a vulnerability in the installer package that could be exploited by placing a specific Windows system directory which can lead to obtaining administrative privileges during the installation of the product.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fvg6-36gh-2gwj/GHSA-fvg6-36gh-2gwj.json b/advisories/unreviewed/2022/05/GHSA-fvg6-36gh-2gwj/GHSA-fvg6-36gh-2gwj.json index d30bf6cff4c..24d08810f5b 100644 --- a/advisories/unreviewed/2022/05/GHSA-fvg6-36gh-2gwj/GHSA-fvg6-36gh-2gwj.json +++ b/advisories/unreviewed/2022/05/GHSA-fvg6-36gh-2gwj/GHSA-fvg6-36gh-2gwj.json @@ -7,12 +7,8 @@ "CVE-2019-19875" ], "details": "An issue was discovered in B&R Industrial Automation APROL before R4.2 V7.08. Arbitrary commands could be injected (using Python scripts) via the AprolCluster script that is invoked via sudo and thus executes with root privileges, a different vulnerability than CVE-2019-16364.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fx65-x2vv-6c9m/GHSA-fx65-x2vv-6c9m.json b/advisories/unreviewed/2022/05/GHSA-fx65-x2vv-6c9m/GHSA-fx65-x2vv-6c9m.json index cfb7b6aadcd..b1bff7e26fa 100644 --- a/advisories/unreviewed/2022/05/GHSA-fx65-x2vv-6c9m/GHSA-fx65-x2vv-6c9m.json +++ b/advisories/unreviewed/2022/05/GHSA-fx65-x2vv-6c9m/GHSA-fx65-x2vv-6c9m.json @@ -7,12 +7,8 @@ "CVE-2020-26837" ], "details": "SAP Solution Manager 7.2 (User Experience Monitoring), version - 7.2, allows an authenticated user to upload a malicious script that can exploit an existing path traversal vulnerability to compromise confidentiality exposing elements of the file system, partially compromise integrity allowing the modification of some configurations and partially compromise availability by making certain services unavailable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fxm9-pj4r-698p/GHSA-fxm9-pj4r-698p.json b/advisories/unreviewed/2022/05/GHSA-fxm9-pj4r-698p/GHSA-fxm9-pj4r-698p.json index 8101ba1a86f..7711133be06 100644 --- a/advisories/unreviewed/2022/05/GHSA-fxm9-pj4r-698p/GHSA-fxm9-pj4r-698p.json +++ b/advisories/unreviewed/2022/05/GHSA-fxm9-pj4r-698p/GHSA-fxm9-pj4r-698p.json @@ -7,12 +7,8 @@ "CVE-2020-4001" ], "details": "The SD-WAN Orchestrator 3.3.2, 3.4.x, and 4.0.x has default passwords allowing for a Pass-the-Hash Attack. SD-WAN Orchestrator ships with default passwords for predefined accounts which may lead to to a Pass-the-Hash attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fxqq-3w9f-87xc/GHSA-fxqq-3w9f-87xc.json b/advisories/unreviewed/2022/05/GHSA-fxqq-3w9f-87xc/GHSA-fxqq-3w9f-87xc.json index 9bb703174b6..9e433998e64 100644 --- a/advisories/unreviewed/2022/05/GHSA-fxqq-3w9f-87xc/GHSA-fxqq-3w9f-87xc.json +++ b/advisories/unreviewed/2022/05/GHSA-fxqq-3w9f-87xc/GHSA-fxqq-3w9f-87xc.json @@ -7,12 +7,8 @@ "CVE-2020-26826" ], "details": "Process Integration Monitoring of SAP NetWeaver AS JAVA, versions - 7.31, 7.40, 7.50, allows an attacker to upload any file (including script files) without proper file format validation, leading to Unrestricted File Upload.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g38c-wvg3-qp2h/GHSA-g38c-wvg3-qp2h.json b/advisories/unreviewed/2022/05/GHSA-g38c-wvg3-qp2h/GHSA-g38c-wvg3-qp2h.json index 19eb46c468f..6e3e888af06 100644 --- a/advisories/unreviewed/2022/05/GHSA-g38c-wvg3-qp2h/GHSA-g38c-wvg3-qp2h.json +++ b/advisories/unreviewed/2022/05/GHSA-g38c-wvg3-qp2h/GHSA-g38c-wvg3-qp2h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g448-wcxf-78wc/GHSA-g448-wcxf-78wc.json b/advisories/unreviewed/2022/05/GHSA-g448-wcxf-78wc/GHSA-g448-wcxf-78wc.json index 8359194fa7d..1a9dfb348ec 100644 --- a/advisories/unreviewed/2022/05/GHSA-g448-wcxf-78wc/GHSA-g448-wcxf-78wc.json +++ b/advisories/unreviewed/2022/05/GHSA-g448-wcxf-78wc/GHSA-g448-wcxf-78wc.json @@ -7,12 +7,8 @@ "CVE-2020-23726" ], "details": "There is a local denial of service vulnerability in Wise Care 365 5.5.4, attackers can cause computer crash (BSOD).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g4mx-vhr8-g9g7/GHSA-g4mx-vhr8-g9g7.json b/advisories/unreviewed/2022/05/GHSA-g4mx-vhr8-g9g7/GHSA-g4mx-vhr8-g9g7.json index 46b1ccde1e8..cbc7dee0f9a 100644 --- a/advisories/unreviewed/2022/05/GHSA-g4mx-vhr8-g9g7/GHSA-g4mx-vhr8-g9g7.json +++ b/advisories/unreviewed/2022/05/GHSA-g4mx-vhr8-g9g7/GHSA-g4mx-vhr8-g9g7.json @@ -7,12 +7,8 @@ "CVE-2020-25499" ], "details": "TOTOLINK A3002RU-V2.0.0 B20190814.1034 allows authenticated remote users to modify the system's 'Run Command'. An attacker can use this functionality to execute arbitrary OS commands on the router.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g4xj-2594-cc4j/GHSA-g4xj-2594-cc4j.json b/advisories/unreviewed/2022/05/GHSA-g4xj-2594-cc4j/GHSA-g4xj-2594-cc4j.json index 3ff6e4f4a4f..6a70aeabf70 100644 --- a/advisories/unreviewed/2022/05/GHSA-g4xj-2594-cc4j/GHSA-g4xj-2594-cc4j.json +++ b/advisories/unreviewed/2022/05/GHSA-g4xj-2594-cc4j/GHSA-g4xj-2594-cc4j.json @@ -7,12 +7,8 @@ "CVE-2020-26967" ], "details": "When listening for page changes with a Mutation Observer, a malicious web page could confuse Firefox Screenshots into interacting with elements other than those that it injected into the page. This would lead to internal errors and unexpected behavior in the Screenshots code. This vulnerability affects Firefox < 83.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g5g7-5r9g-2xpx/GHSA-g5g7-5r9g-2xpx.json b/advisories/unreviewed/2022/05/GHSA-g5g7-5r9g-2xpx/GHSA-g5g7-5r9g-2xpx.json index b69506e6b38..5b431fb01ae 100644 --- a/advisories/unreviewed/2022/05/GHSA-g5g7-5r9g-2xpx/GHSA-g5g7-5r9g-2xpx.json +++ b/advisories/unreviewed/2022/05/GHSA-g5g7-5r9g-2xpx/GHSA-g5g7-5r9g-2xpx.json @@ -7,12 +7,8 @@ "CVE-2019-19877" ], "details": "An issue was discovered in B&R Industrial Automation APROL before R4.2 V7.08. An attacker can get access to sensitive information outside the working directory via Directory Traversal attacks against AprolSqlServer, a different vulnerability than CVE-2019-16357.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g5mf-xw7v-rmr9/GHSA-g5mf-xw7v-rmr9.json b/advisories/unreviewed/2022/05/GHSA-g5mf-xw7v-rmr9/GHSA-g5mf-xw7v-rmr9.json index b4a9b3d209c..cd06f86969f 100644 --- a/advisories/unreviewed/2022/05/GHSA-g5mf-xw7v-rmr9/GHSA-g5mf-xw7v-rmr9.json +++ b/advisories/unreviewed/2022/05/GHSA-g5mf-xw7v-rmr9/GHSA-g5mf-xw7v-rmr9.json @@ -7,12 +7,8 @@ "CVE-2020-13354" ], "details": "A potential DOS vulnerability was discovered in GitLab CE/EE starting with version 12.6. The container registry name check could cause exponential number of backtracks for certain user supplied values resulting in high CPU usage. Affected versions are: >=12.6, <13.3.9.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g5w5-9x35-5297/GHSA-g5w5-9x35-5297.json b/advisories/unreviewed/2022/05/GHSA-g5w5-9x35-5297/GHSA-g5w5-9x35-5297.json index 878ad1f3925..9568d09f805 100644 --- a/advisories/unreviewed/2022/05/GHSA-g5w5-9x35-5297/GHSA-g5w5-9x35-5297.json +++ b/advisories/unreviewed/2022/05/GHSA-g5w5-9x35-5297/GHSA-g5w5-9x35-5297.json @@ -7,12 +7,8 @@ "CVE-2020-26510" ], "details": "Airleader Master <= 6.21 devices have default credentials that can be used to access the exposed Tomcat Manager for deployment of a new .war file, with resultant remote code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g64m-c5v8-26mc/GHSA-g64m-c5v8-26mc.json b/advisories/unreviewed/2022/05/GHSA-g64m-c5v8-26mc/GHSA-g64m-c5v8-26mc.json index dbb29da8c91..1e08a068252 100644 --- a/advisories/unreviewed/2022/05/GHSA-g64m-c5v8-26mc/GHSA-g64m-c5v8-26mc.json +++ b/advisories/unreviewed/2022/05/GHSA-g64m-c5v8-26mc/GHSA-g64m-c5v8-26mc.json @@ -7,12 +7,8 @@ "CVE-2020-7552" ], "details": "A CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists in IGSS Definition (Def.exe) version 14.0.0.20247 that could cause Remote Code Execution when malicious CGF (Configuration Group File) file is imported to IGSS Definition.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g6hc-9fvw-fvfx/GHSA-g6hc-9fvw-fvfx.json b/advisories/unreviewed/2022/05/GHSA-g6hc-9fvw-fvfx/GHSA-g6hc-9fvw-fvfx.json index 8e8110eed81..aaff1931af7 100644 --- a/advisories/unreviewed/2022/05/GHSA-g6hc-9fvw-fvfx/GHSA-g6hc-9fvw-fvfx.json +++ b/advisories/unreviewed/2022/05/GHSA-g6hc-9fvw-fvfx/GHSA-g6hc-9fvw-fvfx.json @@ -7,12 +7,8 @@ "CVE-2020-8676" ], "details": "Improper access control in the Intel(R) Visual Compute Accelerator 2, all versions, may allow a privileged user to potentially enable escalation of privilege via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g6qm-p3jr-vj64/GHSA-g6qm-p3jr-vj64.json b/advisories/unreviewed/2022/05/GHSA-g6qm-p3jr-vj64/GHSA-g6qm-p3jr-vj64.json index 856075ac6c7..ff021a80b2f 100644 --- a/advisories/unreviewed/2022/05/GHSA-g6qm-p3jr-vj64/GHSA-g6qm-p3jr-vj64.json +++ b/advisories/unreviewed/2022/05/GHSA-g6qm-p3jr-vj64/GHSA-g6qm-p3jr-vj64.json @@ -7,12 +7,8 @@ "CVE-2020-10772" ], "details": "An incomplete fix for CVE-2020-12662 was shipped for Unbound in Red Hat Enterprise Linux 7, as part of erratum RHSA-2020:2414. Vulnerable versions of Unbound could still amplify an incoming query into a large number of queries directed to a target, even with a lower amplification ratio compared to versions of Unbound that shipped before the mentioned erratum. This issue is about the incomplete fix for CVE-2020-12662, and it does not affect upstream versions of Unbound.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g763-g64f-m23g/GHSA-g763-g64f-m23g.json b/advisories/unreviewed/2022/05/GHSA-g763-g64f-m23g/GHSA-g763-g64f-m23g.json index 01eb842db6a..c51ca297061 100644 --- a/advisories/unreviewed/2022/05/GHSA-g763-g64f-m23g/GHSA-g763-g64f-m23g.json +++ b/advisories/unreviewed/2022/05/GHSA-g763-g64f-m23g/GHSA-g763-g64f-m23g.json @@ -7,12 +7,8 @@ "CVE-2020-8354" ], "details": "A potential vulnerability in the SMI callback function used in the VariableServiceSmm driver in some Lenovo Notebook models may allow arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g7h4-mcf5-vrf5/GHSA-g7h4-mcf5-vrf5.json b/advisories/unreviewed/2022/05/GHSA-g7h4-mcf5-vrf5/GHSA-g7h4-mcf5-vrf5.json index b9741e89814..7d6c3595634 100644 --- a/advisories/unreviewed/2022/05/GHSA-g7h4-mcf5-vrf5/GHSA-g7h4-mcf5-vrf5.json +++ b/advisories/unreviewed/2022/05/GHSA-g7h4-mcf5-vrf5/GHSA-g7h4-mcf5-vrf5.json @@ -7,12 +7,8 @@ "CVE-2020-27126" ], "details": "A vulnerability in an API of Cisco Webex Meetings could allow an unauthenticated, remote attacker to conduct cross-site scripting attacks. The vulnerability is due to improper validation of user-supplied input to an application programmatic interface (API) within Cisco Webex Meetings. An attacker could exploit this vulnerability by convincing a targeted user to follow a link designed to submit malicious input to the API used by Cisco Webex Meetings. A successful exploit could allow the attacker to conduct cross-site scripting attacks and potentially gain access to sensitive browser-based information from the system of a targeted user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g8hh-gfgv-c2m8/GHSA-g8hh-gfgv-c2m8.json b/advisories/unreviewed/2022/05/GHSA-g8hh-gfgv-c2m8/GHSA-g8hh-gfgv-c2m8.json index c027fa07130..fc4ada5fa28 100644 --- a/advisories/unreviewed/2022/05/GHSA-g8hh-gfgv-c2m8/GHSA-g8hh-gfgv-c2m8.json +++ b/advisories/unreviewed/2022/05/GHSA-g8hh-gfgv-c2m8/GHSA-g8hh-gfgv-c2m8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gc8f-p869-6jhm/GHSA-gc8f-p869-6jhm.json b/advisories/unreviewed/2022/05/GHSA-gc8f-p869-6jhm/GHSA-gc8f-p869-6jhm.json index 8c60c83ccd5..c6173053165 100644 --- a/advisories/unreviewed/2022/05/GHSA-gc8f-p869-6jhm/GHSA-gc8f-p869-6jhm.json +++ b/advisories/unreviewed/2022/05/GHSA-gc8f-p869-6jhm/GHSA-gc8f-p869-6jhm.json @@ -7,12 +7,8 @@ "CVE-2020-28922" ], "details": "An issue was discovered in Devid Espenschied PC Analyser through 4.10. The PCADRVX64.SYS kernel driver exposes IOCTL functionality that allows low-privilege users to read and write arbitrary physical memory. This could lead to arbitrary Ring-0 code execution and escalation of privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gch7-4cwr-hjjh/GHSA-gch7-4cwr-hjjh.json b/advisories/unreviewed/2022/05/GHSA-gch7-4cwr-hjjh/GHSA-gch7-4cwr-hjjh.json index 7accf32f961..cb44a43c7f9 100644 --- a/advisories/unreviewed/2022/05/GHSA-gch7-4cwr-hjjh/GHSA-gch7-4cwr-hjjh.json +++ b/advisories/unreviewed/2022/05/GHSA-gch7-4cwr-hjjh/GHSA-gch7-4cwr-hjjh.json @@ -7,12 +7,8 @@ "CVE-2020-4937" ], "details": "IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 6.0.3.2 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 191814.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gfcr-hr3x-v6r9/GHSA-gfcr-hr3x-v6r9.json b/advisories/unreviewed/2022/05/GHSA-gfcr-hr3x-v6r9/GHSA-gfcr-hr3x-v6r9.json index 3f5aa2f1565..a5928e5981a 100644 --- a/advisories/unreviewed/2022/05/GHSA-gfcr-hr3x-v6r9/GHSA-gfcr-hr3x-v6r9.json +++ b/advisories/unreviewed/2022/05/GHSA-gfcr-hr3x-v6r9/GHSA-gfcr-hr3x-v6r9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gff4-9rfx-4pcw/GHSA-gff4-9rfx-4pcw.json b/advisories/unreviewed/2022/05/GHSA-gff4-9rfx-4pcw/GHSA-gff4-9rfx-4pcw.json index 8e05075a86d..c23740e6993 100644 --- a/advisories/unreviewed/2022/05/GHSA-gff4-9rfx-4pcw/GHSA-gff4-9rfx-4pcw.json +++ b/advisories/unreviewed/2022/05/GHSA-gff4-9rfx-4pcw/GHSA-gff4-9rfx-4pcw.json @@ -7,12 +7,8 @@ "CVE-2020-28362" ], "details": "Go before 1.14.12 and 1.15.x before 1.15.4 allows Denial of Service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gfm3-3hp2-f82x/GHSA-gfm3-3hp2-f82x.json b/advisories/unreviewed/2022/05/GHSA-gfm3-3hp2-f82x/GHSA-gfm3-3hp2-f82x.json index fecc6e42414..c491ce4b629 100644 --- a/advisories/unreviewed/2022/05/GHSA-gfm3-3hp2-f82x/GHSA-gfm3-3hp2-f82x.json +++ b/advisories/unreviewed/2022/05/GHSA-gfm3-3hp2-f82x/GHSA-gfm3-3hp2-f82x.json @@ -7,12 +7,8 @@ "CVE-2019-19289" ], "details": "A vulnerability has been identified in XHQ (All Versions < 6.1). The web interface could allow a Cross-Site Request Forgery (CSRF) attack if an unsuspecting user is tricked into accessing a malicious link.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gg38-746h-m28j/GHSA-gg38-746h-m28j.json b/advisories/unreviewed/2022/05/GHSA-gg38-746h-m28j/GHSA-gg38-746h-m28j.json index 4150b184f7b..09804d24e58 100644 --- a/advisories/unreviewed/2022/05/GHSA-gg38-746h-m28j/GHSA-gg38-746h-m28j.json +++ b/advisories/unreviewed/2022/05/GHSA-gg38-746h-m28j/GHSA-gg38-746h-m28j.json @@ -7,12 +7,8 @@ "CVE-2020-27553" ], "details": "A directory traversal vulnerability in BASETech GE-131 BT-1837836 firmware 20180921 allows unauthenticated remote attackers to gain access to sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ghjv-m4m6-fcxw/GHSA-ghjv-m4m6-fcxw.json b/advisories/unreviewed/2022/05/GHSA-ghjv-m4m6-fcxw/GHSA-ghjv-m4m6-fcxw.json index 69ed770aa4e..6850880843c 100644 --- a/advisories/unreviewed/2022/05/GHSA-ghjv-m4m6-fcxw/GHSA-ghjv-m4m6-fcxw.json +++ b/advisories/unreviewed/2022/05/GHSA-ghjv-m4m6-fcxw/GHSA-ghjv-m4m6-fcxw.json @@ -7,12 +7,8 @@ "CVE-2020-29389" ], "details": "The official Crux Linux Docker images 3.0 through 3.4 contain a blank password for a root user. System using the Crux Linux Docker container deployed by affected versions of the Docker image may allow an attacker to achieve root access with a blank password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gjj5-vggp-jg8p/GHSA-gjj5-vggp-jg8p.json b/advisories/unreviewed/2022/05/GHSA-gjj5-vggp-jg8p/GHSA-gjj5-vggp-jg8p.json index 90199484637..e04797cfc72 100644 --- a/advisories/unreviewed/2022/05/GHSA-gjj5-vggp-jg8p/GHSA-gjj5-vggp-jg8p.json +++ b/advisories/unreviewed/2022/05/GHSA-gjj5-vggp-jg8p/GHSA-gjj5-vggp-jg8p.json @@ -7,12 +7,8 @@ "CVE-2020-25651" ], "details": "A flaw was found in the SPICE file transfer protocol. File data from the host system can end up in full or in parts in the client connection of an illegitimate local user in the VM system. Active file transfers from other users could also be interrupted, resulting in a denial of service. The highest threat from this vulnerability is to data confidentiality as well as system availability. This flaw affects spice-vdagent versions 0.20 and prior.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gpg3-wq7x-w9rj/GHSA-gpg3-wq7x-w9rj.json b/advisories/unreviewed/2022/05/GHSA-gpg3-wq7x-w9rj/GHSA-gpg3-wq7x-w9rj.json index 641aa19df7a..56c074d121a 100644 --- a/advisories/unreviewed/2022/05/GHSA-gpg3-wq7x-w9rj/GHSA-gpg3-wq7x-w9rj.json +++ b/advisories/unreviewed/2022/05/GHSA-gpg3-wq7x-w9rj/GHSA-gpg3-wq7x-w9rj.json @@ -7,12 +7,8 @@ "CVE-2020-26762" ], "details": "A stack-based buffer-overflow exists in Edimax IP-Camera IC-3116W (v3.06) and IC-3140W (v3.07), which allows an unauthenticated, unauthorized attacker to perform remote-code-execution due to a crafted GET-Request. The overflow occurs in binary ipcam_cgi due to a missing type check in function doGetSysteminfo(). This has been fixed in version: IC-3116W v3.08.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gph7-96qh-f4cv/GHSA-gph7-96qh-f4cv.json b/advisories/unreviewed/2022/05/GHSA-gph7-96qh-f4cv/GHSA-gph7-96qh-f4cv.json index 635b42f5d19..e34c7aeb798 100644 --- a/advisories/unreviewed/2022/05/GHSA-gph7-96qh-f4cv/GHSA-gph7-96qh-f4cv.json +++ b/advisories/unreviewed/2022/05/GHSA-gph7-96qh-f4cv/GHSA-gph7-96qh-f4cv.json @@ -7,12 +7,8 @@ "CVE-2020-27900" ], "details": "An issue existed in the handling of snapshots. The issue was resolved with improved permissions logic. This issue is fixed in macOS Big Sur 11.0.1. A malicious application may be able to preview files it does not have access to.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gq3h-3p4j-vffv/GHSA-gq3h-3p4j-vffv.json b/advisories/unreviewed/2022/05/GHSA-gq3h-3p4j-vffv/GHSA-gq3h-3p4j-vffv.json index 2f1d1e687fa..201e28c6feb 100644 --- a/advisories/unreviewed/2022/05/GHSA-gq3h-3p4j-vffv/GHSA-gq3h-3p4j-vffv.json +++ b/advisories/unreviewed/2022/05/GHSA-gq3h-3p4j-vffv/GHSA-gq3h-3p4j-vffv.json @@ -7,12 +7,8 @@ "CVE-2020-3419" ], "details": "A vulnerability in Cisco Webex Meetings and Cisco Webex Meetings Server could allow an unauthenticated, remote attacker to join a Webex session without appearing on the participant list. This vulnerability is due to improper handling of authentication tokens by a vulnerable Webex site. An attacker could exploit this vulnerability by sending crafted requests to a vulnerable Cisco Webex Meetings or Cisco Webex Meetings Server site. A successful exploit requires the attacker to have access to join a Webex meeting, including applicable meeting join links and passwords. The attacker could then exploit this vulnerability to join meetings, without appearing in the participant list, while having full access to audio, video, chat, and screen sharing capabilities.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gq98-m2mr-9mrv/GHSA-gq98-m2mr-9mrv.json b/advisories/unreviewed/2022/05/GHSA-gq98-m2mr-9mrv/GHSA-gq98-m2mr-9mrv.json index 7ebfe744327..9390036fd3e 100644 --- a/advisories/unreviewed/2022/05/GHSA-gq98-m2mr-9mrv/GHSA-gq98-m2mr-9mrv.json +++ b/advisories/unreviewed/2022/05/GHSA-gq98-m2mr-9mrv/GHSA-gq98-m2mr-9mrv.json @@ -7,12 +7,8 @@ "CVE-2020-4739" ], "details": "IBM DB2 Accessories Suite for Linux, UNIX, and Windows, DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 could allow a local authenticated attacker to execute arbitrary code on the system, caused by DLL search order hijacking vulnerability in Microsoft Windows client. By placing a specially crafted file in a compromised folder, an attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 188149.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gqgc-5jm8-qf2w/GHSA-gqgc-5jm8-qf2w.json b/advisories/unreviewed/2022/05/GHSA-gqgc-5jm8-qf2w/GHSA-gqgc-5jm8-qf2w.json index 86e583d19d3..4fd63b83237 100644 --- a/advisories/unreviewed/2022/05/GHSA-gqgc-5jm8-qf2w/GHSA-gqgc-5jm8-qf2w.json +++ b/advisories/unreviewed/2022/05/GHSA-gqgc-5jm8-qf2w/GHSA-gqgc-5jm8-qf2w.json @@ -7,12 +7,8 @@ "CVE-2020-26952" ], "details": "Incorrect bookkeeping of functions inlined during JIT compilation could have led to memory corruption and a potentially exploitable crash when handling out-of-memory errors. This vulnerability affects Firefox < 83.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gqx6-mwq7-ccgm/GHSA-gqx6-mwq7-ccgm.json b/advisories/unreviewed/2022/05/GHSA-gqx6-mwq7-ccgm/GHSA-gqx6-mwq7-ccgm.json index 359f33307ed..e4be4a248a1 100644 --- a/advisories/unreviewed/2022/05/GHSA-gqx6-mwq7-ccgm/GHSA-gqx6-mwq7-ccgm.json +++ b/advisories/unreviewed/2022/05/GHSA-gqx6-mwq7-ccgm/GHSA-gqx6-mwq7-ccgm.json @@ -7,12 +7,8 @@ "CVE-2020-28133" ], "details": "An issue was discovered in SourceCodester Simple Grocery Store Sales And Inventory System 1.0. There was authentication bypass in web login functionality allows an attacker to gain client privileges via SQL injection in sales_inventory/login.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-grmj-8wvf-p5xh/GHSA-grmj-8wvf-p5xh.json b/advisories/unreviewed/2022/05/GHSA-grmj-8wvf-p5xh/GHSA-grmj-8wvf-p5xh.json index 4727e4aa3cc..99d7fc670fa 100644 --- a/advisories/unreviewed/2022/05/GHSA-grmj-8wvf-p5xh/GHSA-grmj-8wvf-p5xh.json +++ b/advisories/unreviewed/2022/05/GHSA-grmj-8wvf-p5xh/GHSA-grmj-8wvf-p5xh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gv63-32vm-56hx/GHSA-gv63-32vm-56hx.json b/advisories/unreviewed/2022/05/GHSA-gv63-32vm-56hx/GHSA-gv63-32vm-56hx.json index 97e75aadf58..449183e960e 100644 --- a/advisories/unreviewed/2022/05/GHSA-gv63-32vm-56hx/GHSA-gv63-32vm-56hx.json +++ b/advisories/unreviewed/2022/05/GHSA-gv63-32vm-56hx/GHSA-gv63-32vm-56hx.json @@ -7,12 +7,8 @@ "CVE-2020-29373" ], "details": "An issue was discovered in fs/io_uring.c in the Linux kernel before 5.6. It unsafely handles the root directory during path lookups, and thus a process inside a mount namespace can escape to unintended filesystem locations, aka CID-ff002b30181d.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gx4g-83m8-7hhx/GHSA-gx4g-83m8-7hhx.json b/advisories/unreviewed/2022/05/GHSA-gx4g-83m8-7hhx/GHSA-gx4g-83m8-7hhx.json index e2b459e27f2..3f234b688a1 100644 --- a/advisories/unreviewed/2022/05/GHSA-gx4g-83m8-7hhx/GHSA-gx4g-83m8-7hhx.json +++ b/advisories/unreviewed/2022/05/GHSA-gx4g-83m8-7hhx/GHSA-gx4g-83m8-7hhx.json @@ -7,12 +7,8 @@ "CVE-2020-29240" ], "details": "Lepton-CMS 4.7.0 is affected by cross-site scripting (XSS). An attacker can inject the XSS payload in the URL field of the admin page and each time an admin visits the Menu-Pages-Pages Overview section, the XSS will be triggered.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h32m-4g5f-5rv2/GHSA-h32m-4g5f-5rv2.json b/advisories/unreviewed/2022/05/GHSA-h32m-4g5f-5rv2/GHSA-h32m-4g5f-5rv2.json index 5be86fd31d2..088d3371c71 100644 --- a/advisories/unreviewed/2022/05/GHSA-h32m-4g5f-5rv2/GHSA-h32m-4g5f-5rv2.json +++ b/advisories/unreviewed/2022/05/GHSA-h32m-4g5f-5rv2/GHSA-h32m-4g5f-5rv2.json @@ -7,12 +7,8 @@ "CVE-2020-13356" ], "details": "An issue has been discovered in GitLab CE/EE affecting all versions starting from 8.8.9. A specially crafted request could bypass Multipart protection and read files in certain specific paths on the server. Affected versions are: >=8.8.9, <13.3.9,>=13.4, <13.4.5,>=13.5, <13.5.2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h38w-g4mp-rwv7/GHSA-h38w-g4mp-rwv7.json b/advisories/unreviewed/2022/05/GHSA-h38w-g4mp-rwv7/GHSA-h38w-g4mp-rwv7.json index 64f553b08bc..ead62e111ab 100644 --- a/advisories/unreviewed/2022/05/GHSA-h38w-g4mp-rwv7/GHSA-h38w-g4mp-rwv7.json +++ b/advisories/unreviewed/2022/05/GHSA-h38w-g4mp-rwv7/GHSA-h38w-g4mp-rwv7.json @@ -7,12 +7,8 @@ "CVE-2020-16123" ], "details": "An Ubuntu-specific patch in PulseAudio created a race condition where the snap policy module would fail to identify a client connection from a snap as coming from a snap if SCM_CREDENTIALS were missing, allowing the snap to connect to PulseAudio without proper confinement. This could be exploited by an attacker to expose sensitive information. Fixed in 1:13.99.3-1ubuntu2, 1:13.99.2-1ubuntu2.1, 1:13.99.1-1ubuntu3.8, 1:11.1-1ubuntu7.11, and 1:8.0-0ubuntu3.15.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h496-jfcc-fq24/GHSA-h496-jfcc-fq24.json b/advisories/unreviewed/2022/05/GHSA-h496-jfcc-fq24/GHSA-h496-jfcc-fq24.json index f818df4154b..1167ad59725 100644 --- a/advisories/unreviewed/2022/05/GHSA-h496-jfcc-fq24/GHSA-h496-jfcc-fq24.json +++ b/advisories/unreviewed/2022/05/GHSA-h496-jfcc-fq24/GHSA-h496-jfcc-fq24.json @@ -7,12 +7,8 @@ "CVE-2020-29578" ], "details": "The official piwik Docker images before fpm-alpine (Alpine specific) contain a blank password for a root user. Systems using the Piwik Docker container deployed by affected versions of the Docker image may allow an remote attacker to achieve root access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h4h7-jgfc-7q2j/GHSA-h4h7-jgfc-7q2j.json b/advisories/unreviewed/2022/05/GHSA-h4h7-jgfc-7q2j/GHSA-h4h7-jgfc-7q2j.json index 9c84a9b7840..6fb3398d02b 100644 --- a/advisories/unreviewed/2022/05/GHSA-h4h7-jgfc-7q2j/GHSA-h4h7-jgfc-7q2j.json +++ b/advisories/unreviewed/2022/05/GHSA-h4h7-jgfc-7q2j/GHSA-h4h7-jgfc-7q2j.json @@ -7,12 +7,8 @@ "CVE-2020-26509" ], "details": "Airleader Master and Easy <= 6.21 devices have default credentials that can be used for a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h524-q6jx-7vf6/GHSA-h524-q6jx-7vf6.json b/advisories/unreviewed/2022/05/GHSA-h524-q6jx-7vf6/GHSA-h524-q6jx-7vf6.json index 04f1bf25d8c..443593ed5c5 100644 --- a/advisories/unreviewed/2022/05/GHSA-h524-q6jx-7vf6/GHSA-h524-q6jx-7vf6.json +++ b/advisories/unreviewed/2022/05/GHSA-h524-q6jx-7vf6/GHSA-h524-q6jx-7vf6.json @@ -7,12 +7,8 @@ "CVE-2020-4627" ], "details": "IBM Cloud Pak for Security 1.3.0.1(CP4S) potentially vulnerable to CVS Injection. A remote attacker could execute arbitrary commands on the system, caused by improper validation of csv file contents. IBM X-Force ID: 185367.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h549-4pw3-34x9/GHSA-h549-4pw3-34x9.json b/advisories/unreviewed/2022/05/GHSA-h549-4pw3-34x9/GHSA-h549-4pw3-34x9.json index a99e47ed243..7697cf78d7c 100644 --- a/advisories/unreviewed/2022/05/GHSA-h549-4pw3-34x9/GHSA-h549-4pw3-34x9.json +++ b/advisories/unreviewed/2022/05/GHSA-h549-4pw3-34x9/GHSA-h549-4pw3-34x9.json @@ -7,12 +7,8 @@ "CVE-2020-25663" ], "details": "A call to ConformPixelInfo() in the SetImageAlphaChannel() routine of /MagickCore/channel.c caused a subsequent heap-use-after-free or heap-buffer-overflow READ when GetPixelRed() or GetPixelBlue() was called. This could occur if an attacker is able to submit a malicious image file to be processed by ImageMagick and could lead to denial of service. It likely would not lead to anything further because the memory is used as pixel data and not e.g. a function pointer. This flaw affects ImageMagick versions prior to 7.0.9-0.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h5gw-cg2f-8hj5/GHSA-h5gw-cg2f-8hj5.json b/advisories/unreviewed/2022/05/GHSA-h5gw-cg2f-8hj5/GHSA-h5gw-cg2f-8hj5.json index be04327e972..af75feb88c7 100644 --- a/advisories/unreviewed/2022/05/GHSA-h5gw-cg2f-8hj5/GHSA-h5gw-cg2f-8hj5.json +++ b/advisories/unreviewed/2022/05/GHSA-h5gw-cg2f-8hj5/GHSA-h5gw-cg2f-8hj5.json @@ -7,12 +7,8 @@ "CVE-2020-16598" ], "details": "A Null Pointer Dereference vulnerability exists in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.34, in debug_get_real_type, as demonstrated in objdump, that can cause a denial of service via a crafted file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h5vh-qch6-xh9m/GHSA-h5vh-qch6-xh9m.json b/advisories/unreviewed/2022/05/GHSA-h5vh-qch6-xh9m/GHSA-h5vh-qch6-xh9m.json index 97101c26a00..bced2075da0 100644 --- a/advisories/unreviewed/2022/05/GHSA-h5vh-qch6-xh9m/GHSA-h5vh-qch6-xh9m.json +++ b/advisories/unreviewed/2022/05/GHSA-h5vh-qch6-xh9m/GHSA-h5vh-qch6-xh9m.json @@ -7,12 +7,8 @@ "CVE-2020-27906" ], "details": "Multiple integer overflows were addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1. A remote attacker may be able to cause unexpected application termination or heap corruption.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h6gh-5696-7fpq/GHSA-h6gh-5696-7fpq.json b/advisories/unreviewed/2022/05/GHSA-h6gh-5696-7fpq/GHSA-h6gh-5696-7fpq.json index 562b7523648..dbc58b524c9 100644 --- a/advisories/unreviewed/2022/05/GHSA-h6gh-5696-7fpq/GHSA-h6gh-5696-7fpq.json +++ b/advisories/unreviewed/2022/05/GHSA-h6gh-5696-7fpq/GHSA-h6gh-5696-7fpq.json @@ -7,12 +7,8 @@ "CVE-2020-27929" ], "details": "A logic issue existed in the handling of Group FaceTime calls. The issue was addressed with improved state management. This issue is fixed in iOS 12.4.9. A user may send video in Group FaceTime calls without knowing that they have done so.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h7h6-qvjq-8mhm/GHSA-h7h6-qvjq-8mhm.json b/advisories/unreviewed/2022/05/GHSA-h7h6-qvjq-8mhm/GHSA-h7h6-qvjq-8mhm.json index ebefe9d0f84..67297ab678f 100644 --- a/advisories/unreviewed/2022/05/GHSA-h7h6-qvjq-8mhm/GHSA-h7h6-qvjq-8mhm.json +++ b/advisories/unreviewed/2022/05/GHSA-h7h6-qvjq-8mhm/GHSA-h7h6-qvjq-8mhm.json @@ -7,12 +7,8 @@ "CVE-2020-9954" ], "details": "A buffer overflow issue was addressed with improved memory handling. This issue is fixed in watchOS 7.0, tvOS 14.0, macOS Catalina 10.15.7, Security Update 2020-005 High Sierra, Security Update 2020-005 Mojave, iOS 14.0 and iPadOS 14.0. Playing a malicious audio file may lead to arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h8fc-h6j5-v645/GHSA-h8fc-h6j5-v645.json b/advisories/unreviewed/2022/05/GHSA-h8fc-h6j5-v645/GHSA-h8fc-h6j5-v645.json index 2e88561cbd4..c90974b635d 100644 --- a/advisories/unreviewed/2022/05/GHSA-h8fc-h6j5-v645/GHSA-h8fc-h6j5-v645.json +++ b/advisories/unreviewed/2022/05/GHSA-h8fc-h6j5-v645/GHSA-h8fc-h6j5-v645.json @@ -7,12 +7,8 @@ "CVE-2020-29057" ], "details": "An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 97168P, FD1002S, FD1104, FD1104B, FD1104S, FD1104SN, FD1108S, FD1204S-R2, FD1204SN, FD1204SN-R2, FD1208S-R2, FD1216S-R1, FD1608GS, FD1608SN, FD1616GS, FD1616SN, and FD8000 devices. It allows remote attackers to cause a denial of service (reboot) by sending random bytes to the telnet server on port 23, aka a \"shawarma\" attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h9xp-3922-7v5q/GHSA-h9xp-3922-7v5q.json b/advisories/unreviewed/2022/05/GHSA-h9xp-3922-7v5q/GHSA-h9xp-3922-7v5q.json index 8e412f3595d..d5830f18a1e 100644 --- a/advisories/unreviewed/2022/05/GHSA-h9xp-3922-7v5q/GHSA-h9xp-3922-7v5q.json +++ b/advisories/unreviewed/2022/05/GHSA-h9xp-3922-7v5q/GHSA-h9xp-3922-7v5q.json @@ -7,12 +7,8 @@ "CVE-2020-4002" ], "details": "The SD-WAN Orchestrator 3.3.2 prior to 3.3.2 P3, 3.4.x prior to 3.4.4, and 4.0.x prior to 4.0.1 handles system parameters in an insecure way. An authenticated SD-WAN Orchestrator user with high privileges may be able to execute arbitrary code on the underlying operating system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hcc7-mq5f-p6fm/GHSA-hcc7-mq5f-p6fm.json b/advisories/unreviewed/2022/05/GHSA-hcc7-mq5f-p6fm/GHSA-hcc7-mq5f-p6fm.json index 57da8213b7a..974db00a78f 100644 --- a/advisories/unreviewed/2022/05/GHSA-hcc7-mq5f-p6fm/GHSA-hcc7-mq5f-p6fm.json +++ b/advisories/unreviewed/2022/05/GHSA-hcc7-mq5f-p6fm/GHSA-hcc7-mq5f-p6fm.json @@ -7,12 +7,8 @@ "CVE-2020-8278" ], "details": "Improper access control in Nextcloud Social app version 0.3.1 allowed to read posts of any user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hf3r-r99x-986x/GHSA-hf3r-r99x-986x.json b/advisories/unreviewed/2022/05/GHSA-hf3r-r99x-986x/GHSA-hf3r-r99x-986x.json index b7763a4ec10..1c004ce1566 100644 --- a/advisories/unreviewed/2022/05/GHSA-hf3r-r99x-986x/GHSA-hf3r-r99x-986x.json +++ b/advisories/unreviewed/2022/05/GHSA-hf3r-r99x-986x/GHSA-hf3r-r99x-986x.json @@ -7,12 +7,8 @@ "CVE-2020-29458" ], "details": "Textpattern CMS 4.6.2 allows CSRF via the prefs subsystem.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hf7r-8668-4mm7/GHSA-hf7r-8668-4mm7.json b/advisories/unreviewed/2022/05/GHSA-hf7r-8668-4mm7/GHSA-hf7r-8668-4mm7.json index b73c076c3f1..3d0300d522d 100644 --- a/advisories/unreviewed/2022/05/GHSA-hf7r-8668-4mm7/GHSA-hf7r-8668-4mm7.json +++ b/advisories/unreviewed/2022/05/GHSA-hf7r-8668-4mm7/GHSA-hf7r-8668-4mm7.json @@ -7,12 +7,8 @@ "CVE-2020-27911" ], "details": "An integer overflow was addressed through improved input validation. This issue is fixed in macOS Big Sur 11.0.1, watchOS 7.1, iOS 14.2 and iPadOS 14.2, iCloud for Windows 11.5, tvOS 14.2, iTunes 12.11 for Windows. A remote attacker may be able to cause unexpected application termination or arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hfhh-3vvv-4gqf/GHSA-hfhh-3vvv-4gqf.json b/advisories/unreviewed/2022/05/GHSA-hfhh-3vvv-4gqf/GHSA-hfhh-3vvv-4gqf.json index 5c4b27c0548..6a2450c81f4 100644 --- a/advisories/unreviewed/2022/05/GHSA-hfhh-3vvv-4gqf/GHSA-hfhh-3vvv-4gqf.json +++ b/advisories/unreviewed/2022/05/GHSA-hfhh-3vvv-4gqf/GHSA-hfhh-3vvv-4gqf.json @@ -7,12 +7,8 @@ "CVE-2020-28206" ], "details": "An issue was discovered in Bitrix24 Bitrix Framework (1c site management) 20.0. An \"User enumeration and Improper Restriction of Excessive Authentication Attempts\" vulnerability exists in the admin login form, allowing a remote user to enumerate users in the administrator group. This also allows brute-force attacks on the passwords of users not in the administrator group.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hg33-63vh-hrfx/GHSA-hg33-63vh-hrfx.json b/advisories/unreviewed/2022/05/GHSA-hg33-63vh-hrfx/GHSA-hg33-63vh-hrfx.json index bc064db95a2..69c662fefbb 100644 --- a/advisories/unreviewed/2022/05/GHSA-hg33-63vh-hrfx/GHSA-hg33-63vh-hrfx.json +++ b/advisories/unreviewed/2022/05/GHSA-hg33-63vh-hrfx/GHSA-hg33-63vh-hrfx.json @@ -7,12 +7,8 @@ "CVE-2020-29375" ], "details": "An issue was discovered on V-SOL V1600D V2.03.69 and V2.03.57, V1600D4L V1.01.49, V1600D-MINI V1.01.48, V1600G1 V2.0.7 and V1.9.7, and V1600G2 V1.1.4 OLT devices. An low-privileged (non-admin) attacker can use a hardcoded password (4ef9cea10b2362f15ba4558b1d5c081f) to create an admin user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hg3w-24rp-mf42/GHSA-hg3w-24rp-mf42.json b/advisories/unreviewed/2022/05/GHSA-hg3w-24rp-mf42/GHSA-hg3w-24rp-mf42.json index d4e14fe1fea..7f9a779d40c 100644 --- a/advisories/unreviewed/2022/05/GHSA-hg3w-24rp-mf42/GHSA-hg3w-24rp-mf42.json +++ b/advisories/unreviewed/2022/05/GHSA-hg3w-24rp-mf42/GHSA-hg3w-24rp-mf42.json @@ -7,12 +7,8 @@ "CVE-2020-7548" ], "details": "A CWE-330 - Use of Insufficiently Random Values vulnerability exists in Smartlink, PowerTag, and Wiser Series Gateways (see security notification for version information) that could allow unauthorized users to login.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hgc7-2xcm-jrxv/GHSA-hgc7-2xcm-jrxv.json b/advisories/unreviewed/2022/05/GHSA-hgc7-2xcm-jrxv/GHSA-hgc7-2xcm-jrxv.json index 977d379bfb1..cd1ec1e7cb3 100644 --- a/advisories/unreviewed/2022/05/GHSA-hgc7-2xcm-jrxv/GHSA-hgc7-2xcm-jrxv.json +++ b/advisories/unreviewed/2022/05/GHSA-hgc7-2xcm-jrxv/GHSA-hgc7-2xcm-jrxv.json @@ -7,12 +7,8 @@ "CVE-2020-0099" ], "details": "In addWindow of WindowManagerService.java, there is a possible window overlay attack due to an insecure default value. This could lead to local escalation of privilege via tapjacking with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-141745510", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hj5r-2q87-qf8g/GHSA-hj5r-2q87-qf8g.json b/advisories/unreviewed/2022/05/GHSA-hj5r-2q87-qf8g/GHSA-hj5r-2q87-qf8g.json index ba544030155..45c3dfd348c 100644 --- a/advisories/unreviewed/2022/05/GHSA-hj5r-2q87-qf8g/GHSA-hj5r-2q87-qf8g.json +++ b/advisories/unreviewed/2022/05/GHSA-hj5r-2q87-qf8g/GHSA-hj5r-2q87-qf8g.json @@ -7,12 +7,8 @@ "CVE-2020-4006" ], "details": "VMware Workspace One Access, Access Connector, Identity Manager, and Identity Manager Connector address have a command injection vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hm82-rjqc-48fq/GHSA-hm82-rjqc-48fq.json b/advisories/unreviewed/2022/05/GHSA-hm82-rjqc-48fq/GHSA-hm82-rjqc-48fq.json index 1627cd93365..6e3c790679d 100644 --- a/advisories/unreviewed/2022/05/GHSA-hm82-rjqc-48fq/GHSA-hm82-rjqc-48fq.json +++ b/advisories/unreviewed/2022/05/GHSA-hm82-rjqc-48fq/GHSA-hm82-rjqc-48fq.json @@ -7,12 +7,8 @@ "CVE-2019-20934" ], "details": "An issue was discovered in the Linux kernel before 5.2.6. On NUMA systems, the Linux fair scheduler has a use-after-free in show_numa_stats() because NUMA fault statistics are inappropriately freed, aka CID-16d51a590a8c.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hmj2-jg94-8gqq/GHSA-hmj2-jg94-8gqq.json b/advisories/unreviewed/2022/05/GHSA-hmj2-jg94-8gqq/GHSA-hmj2-jg94-8gqq.json index 5e9e8082f75..e5514187297 100644 --- a/advisories/unreviewed/2022/05/GHSA-hmj2-jg94-8gqq/GHSA-hmj2-jg94-8gqq.json +++ b/advisories/unreviewed/2022/05/GHSA-hmj2-jg94-8gqq/GHSA-hmj2-jg94-8gqq.json @@ -7,12 +7,8 @@ "CVE-2020-4626" ], "details": "IBM Cloud Pak for Security 1.3.0.1 (CP4S) could reveal sensitive information about the internal network to an authenticated user using a specially crafted HTTP request. IBM X-Force ID: 185362.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hpfw-6cc8-9hhj/GHSA-hpfw-6cc8-9hhj.json b/advisories/unreviewed/2022/05/GHSA-hpfw-6cc8-9hhj/GHSA-hpfw-6cc8-9hhj.json index 9bde602c4cc..fdf00ec275f 100644 --- a/advisories/unreviewed/2022/05/GHSA-hpfw-6cc8-9hhj/GHSA-hpfw-6cc8-9hhj.json +++ b/advisories/unreviewed/2022/05/GHSA-hpfw-6cc8-9hhj/GHSA-hpfw-6cc8-9hhj.json @@ -7,12 +7,8 @@ "CVE-2020-16128" ], "details": "The aptdaemon DBus interface disclosed file existence disclosure by setting Terminal/DebconfSocket properties, aka GHSL-2020-192 and GHSL-2020-196. This affected versions prior to 1.1.1+bzr982-0ubuntu34.1, 1.1.1+bzr982-0ubuntu32.3, 1.1.1+bzr982-0ubuntu19.5, 1.1.1+bzr982-0ubuntu14.5.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hpqr-pfj5-7rfx/GHSA-hpqr-pfj5-7rfx.json b/advisories/unreviewed/2022/05/GHSA-hpqr-pfj5-7rfx/GHSA-hpqr-pfj5-7rfx.json index 71a8fffe2ae..c74cf2d6e8a 100644 --- a/advisories/unreviewed/2022/05/GHSA-hpqr-pfj5-7rfx/GHSA-hpqr-pfj5-7rfx.json +++ b/advisories/unreviewed/2022/05/GHSA-hpqr-pfj5-7rfx/GHSA-hpqr-pfj5-7rfx.json @@ -7,12 +7,8 @@ "CVE-2020-8351" ], "details": "A privilege escalation vulnerability was reported in Lenovo PCManager prior to version 3.0.50.9162 that could allow an authenticated user to execute code with elevated privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hpw3-822x-7j7j/GHSA-hpw3-822x-7j7j.json b/advisories/unreviewed/2022/05/GHSA-hpw3-822x-7j7j/GHSA-hpw3-822x-7j7j.json index c7ec920f285..53bdf3f3c86 100644 --- a/advisories/unreviewed/2022/05/GHSA-hpw3-822x-7j7j/GHSA-hpw3-822x-7j7j.json +++ b/advisories/unreviewed/2022/05/GHSA-hpw3-822x-7j7j/GHSA-hpw3-822x-7j7j.json @@ -7,12 +7,8 @@ "CVE-2020-25475" ], "details": "SimplePHPscripts News Script PHP Pro 2.3 is affected by a SQL Injection via the id parameter in an editNews action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hqcj-mm82-w3pc/GHSA-hqcj-mm82-w3pc.json b/advisories/unreviewed/2022/05/GHSA-hqcj-mm82-w3pc/GHSA-hqcj-mm82-w3pc.json index a2dc34ae29c..3a3941ce56e 100644 --- a/advisories/unreviewed/2022/05/GHSA-hqcj-mm82-w3pc/GHSA-hqcj-mm82-w3pc.json +++ b/advisories/unreviewed/2022/05/GHSA-hqcj-mm82-w3pc/GHSA-hqcj-mm82-w3pc.json @@ -7,12 +7,8 @@ "CVE-2020-4000" ], "details": "The SD-WAN Orchestrator 3.3.2 prior to 3.3.2 P3, 3.4.x prior to 3.4.4, and 4.0.x prior to 4.0.1 allows for executing files through directory traversal. An authenticated SD-WAN Orchestrator user is able to traversal directories which may lead to code execution of files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hrx4-qqgq-jr2r/GHSA-hrx4-qqgq-jr2r.json b/advisories/unreviewed/2022/05/GHSA-hrx4-qqgq-jr2r/GHSA-hrx4-qqgq-jr2r.json index 3a9ed06e611..17feeb98ce5 100644 --- a/advisories/unreviewed/2022/05/GHSA-hrx4-qqgq-jr2r/GHSA-hrx4-qqgq-jr2r.json +++ b/advisories/unreviewed/2022/05/GHSA-hrx4-qqgq-jr2r/GHSA-hrx4-qqgq-jr2r.json @@ -7,12 +7,8 @@ "CVE-2018-16719" ], "details": "In Jingyun Antivirus v2.4.2.39, the driver file (hookbody.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x00221482.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hvqq-xv72-5qhj/GHSA-hvqq-xv72-5qhj.json b/advisories/unreviewed/2022/05/GHSA-hvqq-xv72-5qhj/GHSA-hvqq-xv72-5qhj.json index d69ef5adc4d..e64f84c47b4 100644 --- a/advisories/unreviewed/2022/05/GHSA-hvqq-xv72-5qhj/GHSA-hvqq-xv72-5qhj.json +++ b/advisories/unreviewed/2022/05/GHSA-hvqq-xv72-5qhj/GHSA-hvqq-xv72-5qhj.json @@ -7,12 +7,8 @@ "CVE-2020-29581" ], "details": "The official spiped docker images before 1.5-alpine contain a blank password for a root user. Systems using the spiped docker container deployed by affected versions of the docker image may allow an remote attacker to achieve root access with a blank password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hx64-qv2g-ph4q/GHSA-hx64-qv2g-ph4q.json b/advisories/unreviewed/2022/05/GHSA-hx64-qv2g-ph4q/GHSA-hx64-qv2g-ph4q.json index 03a550d423f..fecd6f0765c 100644 --- a/advisories/unreviewed/2022/05/GHSA-hx64-qv2g-ph4q/GHSA-hx64-qv2g-ph4q.json +++ b/advisories/unreviewed/2022/05/GHSA-hx64-qv2g-ph4q/GHSA-hx64-qv2g-ph4q.json @@ -7,12 +7,8 @@ "CVE-2020-26550" ], "details": "An issue was discovered in Aviatrix Controller before R5.3.1151. An encrypted file containing credentials to unrelated systems is protected by a three-character key.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hxh2-4r7r-jcw6/GHSA-hxh2-4r7r-jcw6.json b/advisories/unreviewed/2022/05/GHSA-hxh2-4r7r-jcw6/GHSA-hxh2-4r7r-jcw6.json index 26802775bad..55c18df3aed 100644 --- a/advisories/unreviewed/2022/05/GHSA-hxh2-4r7r-jcw6/GHSA-hxh2-4r7r-jcw6.json +++ b/advisories/unreviewed/2022/05/GHSA-hxh2-4r7r-jcw6/GHSA-hxh2-4r7r-jcw6.json @@ -7,12 +7,8 @@ "CVE-2020-29285" ], "details": "SQL injection vulnerability was discovered in Point of Sales in PHP/PDO 1.0, which can be exploited via the id parameter to edit_category.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j3jc-48fv-7w6q/GHSA-j3jc-48fv-7w6q.json b/advisories/unreviewed/2022/05/GHSA-j3jc-48fv-7w6q/GHSA-j3jc-48fv-7w6q.json index 3f9f504a4b0..1a6d83980f8 100644 --- a/advisories/unreviewed/2022/05/GHSA-j3jc-48fv-7w6q/GHSA-j3jc-48fv-7w6q.json +++ b/advisories/unreviewed/2022/05/GHSA-j3jc-48fv-7w6q/GHSA-j3jc-48fv-7w6q.json @@ -7,12 +7,8 @@ "CVE-2020-26838" ], "details": "SAP Business Warehouse, versions - 700, 701, 702, 731, 740, 750, 751, 752, 753, 754, 755, 782, and SAP BW4HANA, versions - 100, 200 allows an attacker authenticated with (high) developer privileges to submit a crafted request to generate and execute code without requiring any user interaction. It is possible to craft a request which will result in the execution of Operating System commands leading to Code Injection vulnerability which could completely compromise the confidentiality, integrity and availability of the server and any data or other applications running on it.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j3x9-vvcx-3wc5/GHSA-j3x9-vvcx-3wc5.json b/advisories/unreviewed/2022/05/GHSA-j3x9-vvcx-3wc5/GHSA-j3x9-vvcx-3wc5.json index 689d27d4709..4f77aa267ea 100644 --- a/advisories/unreviewed/2022/05/GHSA-j3x9-vvcx-3wc5/GHSA-j3x9-vvcx-3wc5.json +++ b/advisories/unreviewed/2022/05/GHSA-j3x9-vvcx-3wc5/GHSA-j3x9-vvcx-3wc5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j4fr-x79w-x7mp/GHSA-j4fr-x79w-x7mp.json b/advisories/unreviewed/2022/05/GHSA-j4fr-x79w-x7mp/GHSA-j4fr-x79w-x7mp.json index 4e8a2f48ba9..a11cf54b504 100644 --- a/advisories/unreviewed/2022/05/GHSA-j4fr-x79w-x7mp/GHSA-j4fr-x79w-x7mp.json +++ b/advisories/unreviewed/2022/05/GHSA-j4fr-x79w-x7mp/GHSA-j4fr-x79w-x7mp.json @@ -7,12 +7,8 @@ "CVE-2020-29070" ], "details": "osCommerce 2.3.4.1 has XSS vulnerability via the authenticated user entering the XSS payload into the title section of newsletters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j56c-jw7v-92vw/GHSA-j56c-jw7v-92vw.json b/advisories/unreviewed/2022/05/GHSA-j56c-jw7v-92vw/GHSA-j56c-jw7v-92vw.json index b11c4f8d503..a8c2af346d0 100644 --- a/advisories/unreviewed/2022/05/GHSA-j56c-jw7v-92vw/GHSA-j56c-jw7v-92vw.json +++ b/advisories/unreviewed/2022/05/GHSA-j56c-jw7v-92vw/GHSA-j56c-jw7v-92vw.json @@ -7,12 +7,8 @@ "CVE-2020-29133" ], "details": "jsp/upload.jsp in Coremail XT 5.0 allows XSS via an uploaded personal signature, as demonstrated by a .jpg.html filename in the signImgFile parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j5cx-chhx-m9h2/GHSA-j5cx-chhx-m9h2.json b/advisories/unreviewed/2022/05/GHSA-j5cx-chhx-m9h2/GHSA-j5cx-chhx-m9h2.json index 6807e760633..040c2758f83 100644 --- a/advisories/unreviewed/2022/05/GHSA-j5cx-chhx-m9h2/GHSA-j5cx-chhx-m9h2.json +++ b/advisories/unreviewed/2022/05/GHSA-j5cx-chhx-m9h2/GHSA-j5cx-chhx-m9h2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j5rq-6w98-hx99/GHSA-j5rq-6w98-hx99.json b/advisories/unreviewed/2022/05/GHSA-j5rq-6w98-hx99/GHSA-j5rq-6w98-hx99.json index a7bf7cb37db..af442a8c487 100644 --- a/advisories/unreviewed/2022/05/GHSA-j5rq-6w98-hx99/GHSA-j5rq-6w98-hx99.json +++ b/advisories/unreviewed/2022/05/GHSA-j5rq-6w98-hx99/GHSA-j5rq-6w98-hx99.json @@ -7,12 +7,8 @@ "CVE-2020-29279" ], "details": "PHP remote file inclusion in the assign_resume_tpl method in Application/Common/Controller/BaseController.class.php in 74CMS before 6.0.48 allows remote code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j6gq-g7hh-gvmp/GHSA-j6gq-g7hh-gvmp.json b/advisories/unreviewed/2022/05/GHSA-j6gq-g7hh-gvmp/GHSA-j6gq-g7hh-gvmp.json index b09ca371e0e..b77041a63b7 100644 --- a/advisories/unreviewed/2022/05/GHSA-j6gq-g7hh-gvmp/GHSA-j6gq-g7hh-gvmp.json +++ b/advisories/unreviewed/2022/05/GHSA-j6gq-g7hh-gvmp/GHSA-j6gq-g7hh-gvmp.json @@ -7,12 +7,8 @@ "CVE-2020-27917" ], "details": "A use after free issue was addressed with improved memory management. This issue is fixed in macOS Big Sur 11.0.1, watchOS 7.1, iOS 14.2 and iPadOS 14.2, iCloud for Windows 11.5, tvOS 14.2, iTunes 12.11 for Windows. Processing maliciously crafted web content may lead to code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j76w-jg9r-w5vr/GHSA-j76w-jg9r-w5vr.json b/advisories/unreviewed/2022/05/GHSA-j76w-jg9r-w5vr/GHSA-j76w-jg9r-w5vr.json index 9dfc58f076a..c57208bb9de 100644 --- a/advisories/unreviewed/2022/05/GHSA-j76w-jg9r-w5vr/GHSA-j76w-jg9r-w5vr.json +++ b/advisories/unreviewed/2022/05/GHSA-j76w-jg9r-w5vr/GHSA-j76w-jg9r-w5vr.json @@ -7,12 +7,8 @@ "CVE-2020-13355" ], "details": "An issue has been discovered in GitLab CE/EE affecting all versions starting from 8.14. A path traversal is found in LFS Upload that allows attacker to overwrite certain specific paths on the server. Affected versions are: >=8.14, <13.3.9,>=13.4, <13.4.5,>=13.5, <13.5.2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j9h7-v335-8gcp/GHSA-j9h7-v335-8gcp.json b/advisories/unreviewed/2022/05/GHSA-j9h7-v335-8gcp/GHSA-j9h7-v335-8gcp.json index 8fce2bff36b..4aafe93d92d 100644 --- a/advisories/unreviewed/2022/05/GHSA-j9h7-v335-8gcp/GHSA-j9h7-v335-8gcp.json +++ b/advisories/unreviewed/2022/05/GHSA-j9h7-v335-8gcp/GHSA-j9h7-v335-8gcp.json @@ -7,12 +7,8 @@ "CVE-2020-7566" ], "details": "A CWE-334: Small Space of Random Values vulnerability exists in Modicon M221 (all references, all versions) that could allow the attacker to break the encryption keys when the attacker has captured the traffic between EcoStruxure Machine - Basic software and Modicon M221 controller.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j9m5-gvp8-2g77/GHSA-j9m5-gvp8-2g77.json b/advisories/unreviewed/2022/05/GHSA-j9m5-gvp8-2g77/GHSA-j9m5-gvp8-2g77.json index a52f7e0254a..e0b545a6a51 100644 --- a/advisories/unreviewed/2022/05/GHSA-j9m5-gvp8-2g77/GHSA-j9m5-gvp8-2g77.json +++ b/advisories/unreviewed/2022/05/GHSA-j9m5-gvp8-2g77/GHSA-j9m5-gvp8-2g77.json @@ -7,12 +7,8 @@ "CVE-2020-9963" ], "details": "The issue was addressed with improved handling of icon caches. This issue is fixed in macOS Big Sur 11.0.1, iOS 14.0 and iPadOS 14.0. A malicious app may be able to determine the existence of files on the computer.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j9vp-hmqw-qv3c/GHSA-j9vp-hmqw-qv3c.json b/advisories/unreviewed/2022/05/GHSA-j9vp-hmqw-qv3c/GHSA-j9vp-hmqw-qv3c.json index a8fdce22467..36f543a357b 100644 --- a/advisories/unreviewed/2022/05/GHSA-j9vp-hmqw-qv3c/GHSA-j9vp-hmqw-qv3c.json +++ b/advisories/unreviewed/2022/05/GHSA-j9vp-hmqw-qv3c/GHSA-j9vp-hmqw-qv3c.json @@ -7,12 +7,8 @@ "CVE-2020-27191" ], "details": "LionWiki before 3.2.12 allows an unauthenticated user to read files as the web server user via crafted string in the index.php f1 variable, aka Local File Inclusion. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jg4r-vvqm-988m/GHSA-jg4r-vvqm-988m.json b/advisories/unreviewed/2022/05/GHSA-jg4r-vvqm-988m/GHSA-jg4r-vvqm-988m.json index d73beaa2a3d..ceb89eb12f0 100644 --- a/advisories/unreviewed/2022/05/GHSA-jg4r-vvqm-988m/GHSA-jg4r-vvqm-988m.json +++ b/advisories/unreviewed/2022/05/GHSA-jg4r-vvqm-988m/GHSA-jg4r-vvqm-988m.json @@ -7,12 +7,8 @@ "CVE-2020-26405" ], "details": "Path traversal vulnerability in package upload functionality in GitLab CE/EE starting from 12.8 allows an attacker to save packages in arbitrary locations. Affected versions are >=12.8, <13.3.9,>=13.4, <13.4.5,>=13.5, <13.5.2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jg74-g2r7-p8mf/GHSA-jg74-g2r7-p8mf.json b/advisories/unreviewed/2022/05/GHSA-jg74-g2r7-p8mf/GHSA-jg74-g2r7-p8mf.json index 9e96c74855b..389b4306f52 100644 --- a/advisories/unreviewed/2022/05/GHSA-jg74-g2r7-p8mf/GHSA-jg74-g2r7-p8mf.json +++ b/advisories/unreviewed/2022/05/GHSA-jg74-g2r7-p8mf/GHSA-jg74-g2r7-p8mf.json @@ -7,12 +7,8 @@ "CVE-2019-14575" ], "details": "Logic issue in DxeImageVerificationHandler() for EDK II may allow an authenticated user to potentially enable escalation of privilege via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jgwc-xqm9-2rmm/GHSA-jgwc-xqm9-2rmm.json b/advisories/unreviewed/2022/05/GHSA-jgwc-xqm9-2rmm/GHSA-jgwc-xqm9-2rmm.json index 210a142b3fe..1f909f13518 100644 --- a/advisories/unreviewed/2022/05/GHSA-jgwc-xqm9-2rmm/GHSA-jgwc-xqm9-2rmm.json +++ b/advisories/unreviewed/2022/05/GHSA-jgwc-xqm9-2rmm/GHSA-jgwc-xqm9-2rmm.json @@ -7,12 +7,8 @@ "CVE-2018-16721" ], "details": "In Jingyun Antivirus v2.4.2.39, the driver file (ZySandbox.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x12360090, a related issue to CVE-2018-16306.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jhf7-x7rx-7fc9/GHSA-jhf7-x7rx-7fc9.json b/advisories/unreviewed/2022/05/GHSA-jhf7-x7rx-7fc9/GHSA-jhf7-x7rx-7fc9.json index 9535c6e7b05..8ca5fd1f46d 100644 --- a/advisories/unreviewed/2022/05/GHSA-jhf7-x7rx-7fc9/GHSA-jhf7-x7rx-7fc9.json +++ b/advisories/unreviewed/2022/05/GHSA-jhf7-x7rx-7fc9/GHSA-jhf7-x7rx-7fc9.json @@ -7,12 +7,8 @@ "CVE-2020-7562" ], "details": "A CWE-125: Out-of-Bounds Read vulnerability exists in the Web Server on Modicon M340, Modicon Quantum and Modicon Premium Legacy offers and their Communication Modules (see notification for details) which could cause a segmentation fault or a buffer overflow when uploading a specially crafted file on the controller over FTP.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jhw4-9gwh-59ww/GHSA-jhw4-9gwh-59ww.json b/advisories/unreviewed/2022/05/GHSA-jhw4-9gwh-59ww/GHSA-jhw4-9gwh-59ww.json index a7da80ec76a..c728165903d 100644 --- a/advisories/unreviewed/2022/05/GHSA-jhw4-9gwh-59ww/GHSA-jhw4-9gwh-59ww.json +++ b/advisories/unreviewed/2022/05/GHSA-jhw4-9gwh-59ww/GHSA-jhw4-9gwh-59ww.json @@ -7,12 +7,8 @@ "CVE-2020-28688" ], "details": "The add artwork functionality in ARTWORKS GALLERY IN PHP, CSS, JAVASCRIPT, AND MYSQL 1.0 allows remote attackers to upload arbitrary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jj4c-53qh-fp5v/GHSA-jj4c-53qh-fp5v.json b/advisories/unreviewed/2022/05/GHSA-jj4c-53qh-fp5v/GHSA-jj4c-53qh-fp5v.json index c79487b427b..7aaf647c9d2 100644 --- a/advisories/unreviewed/2022/05/GHSA-jj4c-53qh-fp5v/GHSA-jj4c-53qh-fp5v.json +++ b/advisories/unreviewed/2022/05/GHSA-jj4c-53qh-fp5v/GHSA-jj4c-53qh-fp5v.json @@ -7,12 +7,8 @@ "CVE-2020-5423" ], "details": "CAPI (Cloud Controller) versions prior to 1.101.0 are vulnerable to a denial-of-service attack in which an unauthenticated malicious attacker can send specially-crafted YAML files to certain endpoints, causing the YAML parser to consume excessive CPU and RAM.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jjh2-2h2c-9qqq/GHSA-jjh2-2h2c-9qqq.json b/advisories/unreviewed/2022/05/GHSA-jjh2-2h2c-9qqq/GHSA-jjh2-2h2c-9qqq.json index 299cb8b202d..191981939ef 100644 --- a/advisories/unreviewed/2022/05/GHSA-jjh2-2h2c-9qqq/GHSA-jjh2-2h2c-9qqq.json +++ b/advisories/unreviewed/2022/05/GHSA-jjh2-2h2c-9qqq/GHSA-jjh2-2h2c-9qqq.json @@ -7,12 +7,8 @@ "CVE-2020-6880" ], "details": "A ZXELINK wireless controller has a SQL injection vulnerability. A remote attacker does not need to log in. By sending malicious SQL statements, because the device does not properly filter parameters, successful use can obtain management rights. This affects: ZXV10 W908 all versions before MIPS_A_1022IPV6R3T6P7Y20.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jjqh-7hrg-q6jq/GHSA-jjqh-7hrg-q6jq.json b/advisories/unreviewed/2022/05/GHSA-jjqh-7hrg-q6jq/GHSA-jjqh-7hrg-q6jq.json index d121a9403a8..765c3077f3d 100644 --- a/advisories/unreviewed/2022/05/GHSA-jjqh-7hrg-q6jq/GHSA-jjqh-7hrg-q6jq.json +++ b/advisories/unreviewed/2022/05/GHSA-jjqh-7hrg-q6jq/GHSA-jjqh-7hrg-q6jq.json @@ -7,12 +7,8 @@ "CVE-2020-4718" ], "details": "IBM Jazz Reporting Service 6.0.6, 6.0.6.1, 7.0, and 7.0.1 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 187731.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jmhj-34rw-524w/GHSA-jmhj-34rw-524w.json b/advisories/unreviewed/2022/05/GHSA-jmhj-34rw-524w/GHSA-jmhj-34rw-524w.json index 5e756b2b2de..49d4a203627 100644 --- a/advisories/unreviewed/2022/05/GHSA-jmhj-34rw-524w/GHSA-jmhj-34rw-524w.json +++ b/advisories/unreviewed/2022/05/GHSA-jmhj-34rw-524w/GHSA-jmhj-34rw-524w.json @@ -7,12 +7,8 @@ "CVE-2020-26965" ], "details": "Some websites have a feature \"Show Password\" where clicking a button will change a password field into a textbook field, revealing the typed password. If, when using a software keyboard that remembers user input, a user typed their password and used that feature, the type of the password field was changed, resulting in a keyboard layout change and the possibility for the software keyboard to remember the typed password. This vulnerability affects Firefox < 83, Firefox ESR < 78.5, and Thunderbird < 78.5.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jmp9-fm29-29mr/GHSA-jmp9-fm29-29mr.json b/advisories/unreviewed/2022/05/GHSA-jmp9-fm29-29mr/GHSA-jmp9-fm29-29mr.json index 27f9ce017ef..66e7773f257 100644 --- a/advisories/unreviewed/2022/05/GHSA-jmp9-fm29-29mr/GHSA-jmp9-fm29-29mr.json +++ b/advisories/unreviewed/2022/05/GHSA-jmp9-fm29-29mr/GHSA-jmp9-fm29-29mr.json @@ -7,12 +7,8 @@ "CVE-2020-26960" ], "details": "If the Compact() method was called on an nsTArray, the array could have been reallocated without updating other pointers, leading to a potential use-after-free and exploitable crash. This vulnerability affects Firefox < 83, Firefox ESR < 78.5, and Thunderbird < 78.5.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jqj4-298c-3hhv/GHSA-jqj4-298c-3hhv.json b/advisories/unreviewed/2022/05/GHSA-jqj4-298c-3hhv/GHSA-jqj4-298c-3hhv.json index 26355c9d098..ee8b09cfa76 100644 --- a/advisories/unreviewed/2022/05/GHSA-jqj4-298c-3hhv/GHSA-jqj4-298c-3hhv.json +++ b/advisories/unreviewed/2022/05/GHSA-jqj4-298c-3hhv/GHSA-jqj4-298c-3hhv.json @@ -7,12 +7,8 @@ "CVE-2020-26830" ], "details": "SAP Solution Manager 7.2 (User Experience Monitoring), version - 7.2, does not perform necessary authorization checks for an authenticated user. Due to inadequate access control, a network attacker authenticated as a regular user can use operations which should be restricted to administrators. These operations can be used to Change the User Experience Monitoring configuration, obtain details about the configured SAP Solution Manager agents, Deploy a malicious User Experience Monitoring script.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jqwj-jqv8-9wmv/GHSA-jqwj-jqv8-9wmv.json b/advisories/unreviewed/2022/05/GHSA-jqwj-jqv8-9wmv/GHSA-jqwj-jqv8-9wmv.json index e409aba9ec9..6a945f21637 100644 --- a/advisories/unreviewed/2022/05/GHSA-jqwj-jqv8-9wmv/GHSA-jqwj-jqv8-9wmv.json +++ b/advisories/unreviewed/2022/05/GHSA-jqwj-jqv8-9wmv/GHSA-jqwj-jqv8-9wmv.json @@ -7,12 +7,8 @@ "CVE-2020-25189" ], "details": "The affected product is vulnerable to three stack-based buffer overflows, which may allow an unauthenticated attacker to remotely execute arbitrary code on the IP150 (firmware versions 5.02.09).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jrvj-xjqq-wvhc/GHSA-jrvj-xjqq-wvhc.json b/advisories/unreviewed/2022/05/GHSA-jrvj-xjqq-wvhc/GHSA-jrvj-xjqq-wvhc.json index 5e1fe930ecc..26622b3e114 100644 --- a/advisories/unreviewed/2022/05/GHSA-jrvj-xjqq-wvhc/GHSA-jrvj-xjqq-wvhc.json +++ b/advisories/unreviewed/2022/05/GHSA-jrvj-xjqq-wvhc/GHSA-jrvj-xjqq-wvhc.json @@ -7,12 +7,8 @@ "CVE-2020-9128" ], "details": "FusionCompute versions 8.0.0 have an insecure encryption algorithm vulnerability. Attackers with high permissions can exploit this vulnerability to cause information leak.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jv36-m28h-q393/GHSA-jv36-m28h-q393.json b/advisories/unreviewed/2022/05/GHSA-jv36-m28h-q393/GHSA-jv36-m28h-q393.json index 9afc754f8e0..7fc0781d27e 100644 --- a/advisories/unreviewed/2022/05/GHSA-jv36-m28h-q393/GHSA-jv36-m28h-q393.json +++ b/advisories/unreviewed/2022/05/GHSA-jv36-m28h-q393/GHSA-jv36-m28h-q393.json @@ -7,12 +7,8 @@ "CVE-2020-29440" ], "details": "Tesla Model X vehicles before 2020-11-23 do not perform certificate validation during an attempt to pair a new key fob with the body control module (BCM). This allows an attacker (who is inside a vehicle, or is otherwise able to send data over the CAN bus) to start and drive the vehicle with a spoofed key fob.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jvrj-mg4m-mpx3/GHSA-jvrj-mg4m-mpx3.json b/advisories/unreviewed/2022/05/GHSA-jvrj-mg4m-mpx3/GHSA-jvrj-mg4m-mpx3.json index 4d8e79a1530..ae3ea4e910b 100644 --- a/advisories/unreviewed/2022/05/GHSA-jvrj-mg4m-mpx3/GHSA-jvrj-mg4m-mpx3.json +++ b/advisories/unreviewed/2022/05/GHSA-jvrj-mg4m-mpx3/GHSA-jvrj-mg4m-mpx3.json @@ -7,12 +7,8 @@ "CVE-2020-26122" ], "details": "Inspur NF5266M5 through 3.21.2 and other server M5 devices allow remote code execution via administrator privileges. The Baseboard Management Controller (BMC) program of INSPUR server is weak in checking the firmware and lacks the signature verification mechanism, the attacker who obtains the administrator's rights can control the BMC by inserting malicious code into the firmware program and bypassing the current verification mechanism to upgrade the BMC.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jwxx-hpqc-j7wm/GHSA-jwxx-hpqc-j7wm.json b/advisories/unreviewed/2022/05/GHSA-jwxx-hpqc-j7wm/GHSA-jwxx-hpqc-j7wm.json index 37ec8bdde6b..4746f176ccd 100644 --- a/advisories/unreviewed/2022/05/GHSA-jwxx-hpqc-j7wm/GHSA-jwxx-hpqc-j7wm.json +++ b/advisories/unreviewed/2022/05/GHSA-jwxx-hpqc-j7wm/GHSA-jwxx-hpqc-j7wm.json @@ -7,12 +7,8 @@ "CVE-2020-27131" ], "details": "Multiple vulnerabilities in the Java deserialization function that is used by Cisco Security Manager could allow an unauthenticated, remote attacker to execute arbitrary commands on an affected device. These vulnerabilities are due to insecure deserialization of user-supplied content by the affected software. An attacker could exploit these vulnerabilities by sending a malicious serialized Java object to a specific listener on an affected system. A successful exploit could allow the attacker to execute arbitrary commands on the device with the privileges of NT AUTHORITY\\SYSTEM on the Windows target host. Cisco has not released software updates that address these vulnerabilities.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m3cm-h6wg-q547/GHSA-m3cm-h6wg-q547.json b/advisories/unreviewed/2022/05/GHSA-m3cm-h6wg-q547/GHSA-m3cm-h6wg-q547.json index 7d0d42763ba..0dd6ea3528d 100644 --- a/advisories/unreviewed/2022/05/GHSA-m3cm-h6wg-q547/GHSA-m3cm-h6wg-q547.json +++ b/advisories/unreviewed/2022/05/GHSA-m3cm-h6wg-q547/GHSA-m3cm-h6wg-q547.json @@ -7,12 +7,8 @@ "CVE-2020-26831" ], "details": "SAP BusinessObjects BI Platform (Crystal Report), versions - 4.1, 4.2, 4.3, does not sufficiently validate uploaded XML entities during crystal report generation due to missing XML validation, An attacker with basic privileges can inject some arbitrary XML entities leading to internal file disclosure, internal directories disclosure, Server-Side Request Forgery (SSRF) and denial-of-service (DoS).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m3wc-g5cv-5v98/GHSA-m3wc-g5cv-5v98.json b/advisories/unreviewed/2022/05/GHSA-m3wc-g5cv-5v98/GHSA-m3wc-g5cv-5v98.json index 3e911be50eb..71f60d8900e 100644 --- a/advisories/unreviewed/2022/05/GHSA-m3wc-g5cv-5v98/GHSA-m3wc-g5cv-5v98.json +++ b/advisories/unreviewed/2022/05/GHSA-m3wc-g5cv-5v98/GHSA-m3wc-g5cv-5v98.json @@ -7,12 +7,8 @@ "CVE-2020-16849" ], "details": "An issue was discovered on Canon MF237w 06.07 devices. An \"Improper Handling of Length Parameter Inconsistency\" issue in the IPv4/ICMPv4 component, when handling a packet sent by an unauthenticated network attacker, may expose Sensitive Information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m43q-5c9p-x5fh/GHSA-m43q-5c9p-x5fh.json b/advisories/unreviewed/2022/05/GHSA-m43q-5c9p-x5fh/GHSA-m43q-5c9p-x5fh.json index 6308c4d8b58..6cd91253b7a 100644 --- a/advisories/unreviewed/2022/05/GHSA-m43q-5c9p-x5fh/GHSA-m43q-5c9p-x5fh.json +++ b/advisories/unreviewed/2022/05/GHSA-m43q-5c9p-x5fh/GHSA-m43q-5c9p-x5fh.json @@ -7,12 +7,8 @@ "CVE-2020-27753" ], "details": "There are several memory leaks in the MIFF coder in /coders/miff.c due to improper image depth values, which can be triggered by a specially crafted input file. These leaks could potentially lead to an impact to application availability or cause a denial of service. It was originally reported that the issues were in `AcquireMagickMemory()` because that is where LeakSanitizer detected the leaks, but the patch resolves issues in the MIFF coder, which incorrectly handles data being passed to `AcquireMagickMemory()`. This flaw affects ImageMagick versions prior to 7.0.9-0.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m4xv-ghfq-5mrj/GHSA-m4xv-ghfq-5mrj.json b/advisories/unreviewed/2022/05/GHSA-m4xv-ghfq-5mrj/GHSA-m4xv-ghfq-5mrj.json index bf87864ac89..091eba0666a 100644 --- a/advisories/unreviewed/2022/05/GHSA-m4xv-ghfq-5mrj/GHSA-m4xv-ghfq-5mrj.json +++ b/advisories/unreviewed/2022/05/GHSA-m4xv-ghfq-5mrj/GHSA-m4xv-ghfq-5mrj.json @@ -7,12 +7,8 @@ "CVE-2020-4783" ], "details": "IBM Spectrum Protect Plus 10.1.0 through 10.1.6 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. An attacker could exploit this vulnerability to obtain sensitive information using man in the middle techniques. IBM X-Force ID: 189214.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m538-3c4g-4cx5/GHSA-m538-3c4g-4cx5.json b/advisories/unreviewed/2022/05/GHSA-m538-3c4g-4cx5/GHSA-m538-3c4g-4cx5.json index f05110ce61a..5856c4de6d3 100644 --- a/advisories/unreviewed/2022/05/GHSA-m538-3c4g-4cx5/GHSA-m538-3c4g-4cx5.json +++ b/advisories/unreviewed/2022/05/GHSA-m538-3c4g-4cx5/GHSA-m538-3c4g-4cx5.json @@ -7,12 +7,8 @@ "CVE-2020-11990" ], "details": "We have resolved a security issue in the camera plugin that could have affected certain Cordova (Android) applications. An attacker who could install (or lead the victim to install) a specially crafted (or malicious) Android application would be able to access pictures taken with the app externally.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m694-ffqc-42hh/GHSA-m694-ffqc-42hh.json b/advisories/unreviewed/2022/05/GHSA-m694-ffqc-42hh/GHSA-m694-ffqc-42hh.json index 6398fd5f82a..be2e3d821e9 100644 --- a/advisories/unreviewed/2022/05/GHSA-m694-ffqc-42hh/GHSA-m694-ffqc-42hh.json +++ b/advisories/unreviewed/2022/05/GHSA-m694-ffqc-42hh/GHSA-m694-ffqc-42hh.json @@ -7,12 +7,8 @@ "CVE-2020-27927" ], "details": "An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.0.1, iOS 14.2 and iPadOS 14.2, tvOS 14.2, watchOS 7.1. Processing a maliciously crafted font file may lead to arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m6jj-v4vv-f2hj/GHSA-m6jj-v4vv-f2hj.json b/advisories/unreviewed/2022/05/GHSA-m6jj-v4vv-f2hj/GHSA-m6jj-v4vv-f2hj.json index f1255431dca..8ed619ba00c 100644 --- a/advisories/unreviewed/2022/05/GHSA-m6jj-v4vv-f2hj/GHSA-m6jj-v4vv-f2hj.json +++ b/advisories/unreviewed/2022/05/GHSA-m6jj-v4vv-f2hj/GHSA-m6jj-v4vv-f2hj.json @@ -7,12 +7,8 @@ "CVE-2020-27624" ], "details": "JetBrains YouTrack before 2020.3.888 was vulnerable to SSRF.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m74v-w86v-39q5/GHSA-m74v-w86v-39q5.json b/advisories/unreviewed/2022/05/GHSA-m74v-w86v-39q5/GHSA-m74v-w86v-39q5.json index dfd7056b8bb..efd5ca62296 100644 --- a/advisories/unreviewed/2022/05/GHSA-m74v-w86v-39q5/GHSA-m74v-w86v-39q5.json +++ b/advisories/unreviewed/2022/05/GHSA-m74v-w86v-39q5/GHSA-m74v-w86v-39q5.json @@ -7,12 +7,8 @@ "CVE-2020-29053" ], "details": "HRSALE 2.0.0 allows XSS via the admin/project/projects_calendar set_date parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m785-q8fj-8w82/GHSA-m785-q8fj-8w82.json b/advisories/unreviewed/2022/05/GHSA-m785-q8fj-8w82/GHSA-m785-q8fj-8w82.json index e297e105f97..7bc16e9be1c 100644 --- a/advisories/unreviewed/2022/05/GHSA-m785-q8fj-8w82/GHSA-m785-q8fj-8w82.json +++ b/advisories/unreviewed/2022/05/GHSA-m785-q8fj-8w82/GHSA-m785-q8fj-8w82.json @@ -7,12 +7,8 @@ "CVE-2020-4760" ], "details": "IBM Content Navigator 3.0CD is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 188737.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m82p-m5vr-cmhm/GHSA-m82p-m5vr-cmhm.json b/advisories/unreviewed/2022/05/GHSA-m82p-m5vr-cmhm/GHSA-m82p-m5vr-cmhm.json index 42c18196a09..ea9626ffff9 100644 --- a/advisories/unreviewed/2022/05/GHSA-m82p-m5vr-cmhm/GHSA-m82p-m5vr-cmhm.json +++ b/advisories/unreviewed/2022/05/GHSA-m82p-m5vr-cmhm/GHSA-m82p-m5vr-cmhm.json @@ -7,12 +7,8 @@ "CVE-2020-26816" ], "details": "SAP AS JAVA (Key Storage Service), versions - 7.10, 7.11, 7.20 ,7.30, 7.31, 7.40, 7.50, has the key material which is stored in the SAP NetWeaver AS Java Key Storage service stored in the database in the DER encoded format and is not encrypted. This enables an attacker who has administrator access to the SAP NetWeaver AS Java to decode the keys because of missing encryption and get some application data and client credentials of adjacent systems. This highly impacts Confidentiality as information disclosed could contain client credentials of adjacent systems.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m866-f94v-cjww/GHSA-m866-f94v-cjww.json b/advisories/unreviewed/2022/05/GHSA-m866-f94v-cjww/GHSA-m866-f94v-cjww.json index 0eccf79978e..5a6a2521fd1 100644 --- a/advisories/unreviewed/2022/05/GHSA-m866-f94v-cjww/GHSA-m866-f94v-cjww.json +++ b/advisories/unreviewed/2022/05/GHSA-m866-f94v-cjww/GHSA-m866-f94v-cjww.json @@ -7,12 +7,8 @@ "CVE-2020-29579" ], "details": "The official Express Gateway Docker images before 1.14.0 contain a blank password for a root user. Systems using the Express Gateway Docker container deployed by affected versions of the Docker image may allow an remote attacker to achieve root access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m8mw-7m8x-jh2h/GHSA-m8mw-7m8x-jh2h.json b/advisories/unreviewed/2022/05/GHSA-m8mw-7m8x-jh2h/GHSA-m8mw-7m8x-jh2h.json index 74f8b626ceb..a4ba9c84820 100644 --- a/advisories/unreviewed/2022/05/GHSA-m8mw-7m8x-jh2h/GHSA-m8mw-7m8x-jh2h.json +++ b/advisories/unreviewed/2022/05/GHSA-m8mw-7m8x-jh2h/GHSA-m8mw-7m8x-jh2h.json @@ -7,12 +7,8 @@ "CVE-2020-26969" ], "details": "Mozilla developers reported memory safety bugs present in Firefox 82. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 83.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m8xw-66cv-rfr6/GHSA-m8xw-66cv-rfr6.json b/advisories/unreviewed/2022/05/GHSA-m8xw-66cv-rfr6/GHSA-m8xw-66cv-rfr6.json index 2cb34114d8a..c1f5fb34d3a 100644 --- a/advisories/unreviewed/2022/05/GHSA-m8xw-66cv-rfr6/GHSA-m8xw-66cv-rfr6.json +++ b/advisories/unreviewed/2022/05/GHSA-m8xw-66cv-rfr6/GHSA-m8xw-66cv-rfr6.json @@ -7,12 +7,8 @@ "CVE-2020-7564" ], "details": "A CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability exists in the Web Server on Modicon M340, Modicon Quantum and Modicon Premium Legacy offers and their Communication Modules (see notification for details) which could cause write access and the execution of commands when uploading a specially crafted file on the controller over FTP.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m9r3-pgr2-ppr5/GHSA-m9r3-pgr2-ppr5.json b/advisories/unreviewed/2022/05/GHSA-m9r3-pgr2-ppr5/GHSA-m9r3-pgr2-ppr5.json index fc774879142..f18dacd35c3 100644 --- a/advisories/unreviewed/2022/05/GHSA-m9r3-pgr2-ppr5/GHSA-m9r3-pgr2-ppr5.json +++ b/advisories/unreviewed/2022/05/GHSA-m9r3-pgr2-ppr5/GHSA-m9r3-pgr2-ppr5.json @@ -7,12 +7,8 @@ "CVE-2020-4625" ], "details": "IBM Cloud Pak for Security 1.3.0.1(CP4S) could allow a remote attacker to obtain sensitive information, caused by the failure to set the HTTPOnly flag. A remote attacker could exploit this vulnerability to obtain sensitive information from the cookie.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mcp5-3g3r-5wm5/GHSA-mcp5-3g3r-5wm5.json b/advisories/unreviewed/2022/05/GHSA-mcp5-3g3r-5wm5/GHSA-mcp5-3g3r-5wm5.json index 4e28e8dec70..4e8c0d0e0c2 100644 --- a/advisories/unreviewed/2022/05/GHSA-mcp5-3g3r-5wm5/GHSA-mcp5-3g3r-5wm5.json +++ b/advisories/unreviewed/2022/05/GHSA-mcp5-3g3r-5wm5/GHSA-mcp5-3g3r-5wm5.json @@ -7,12 +7,8 @@ "CVE-2005-2498" ], "details": "Eval injection vulnerability in PHPXMLRPC 1.1.1 and earlier (PEAR XML-RPC for PHP), as used in multiple products including (1) Drupal, (2) phpAdsNew, (3) phpPgAds, and (4) phpgroupware, allows remote attackers to execute arbitrary PHP code via certain nested XML tags in a PHP document that should not be nested, which are injected into an eval function call, a different vulnerability than CVE-2005-1921.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mhcx-4c5f-w275/GHSA-mhcx-4c5f-w275.json b/advisories/unreviewed/2022/05/GHSA-mhcx-4c5f-w275/GHSA-mhcx-4c5f-w275.json index 1180fe319cb..51d20febd80 100644 --- a/advisories/unreviewed/2022/05/GHSA-mhcx-4c5f-w275/GHSA-mhcx-4c5f-w275.json +++ b/advisories/unreviewed/2022/05/GHSA-mhcx-4c5f-w275/GHSA-mhcx-4c5f-w275.json @@ -7,12 +7,8 @@ "CVE-2020-29138" ], "details": "Incorrect Access Control in the configuration backup path in SAGEMCOM F@ST3486 NET DOCSIS 3.0, software NET_4.109.0, allows remote unauthenticated users to download the router configuration file via the /backupsettings.conf URI, when any valid session is running.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mhj5-cwc2-fxgx/GHSA-mhj5-cwc2-fxgx.json b/advisories/unreviewed/2022/05/GHSA-mhj5-cwc2-fxgx/GHSA-mhj5-cwc2-fxgx.json index 9d7a41cf7fc..f4dbb88aea0 100644 --- a/advisories/unreviewed/2022/05/GHSA-mhj5-cwc2-fxgx/GHSA-mhj5-cwc2-fxgx.json +++ b/advisories/unreviewed/2022/05/GHSA-mhj5-cwc2-fxgx/GHSA-mhj5-cwc2-fxgx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mjqr-j4x8-38w5/GHSA-mjqr-j4x8-38w5.json b/advisories/unreviewed/2022/05/GHSA-mjqr-j4x8-38w5/GHSA-mjqr-j4x8-38w5.json index a6289ada83d..5f4d746de63 100644 --- a/advisories/unreviewed/2022/05/GHSA-mjqr-j4x8-38w5/GHSA-mjqr-j4x8-38w5.json +++ b/advisories/unreviewed/2022/05/GHSA-mjqr-j4x8-38w5/GHSA-mjqr-j4x8-38w5.json @@ -7,12 +7,8 @@ "CVE-2020-14205" ], "details": "The DiveBook plugin 1.1.4 for WordPress is prone to improper access control in the Log Dive form because it fails to perform authorization checks. An attacker may leverage this issue to manipulate the integrity of dive logs.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mm45-c98x-rq98/GHSA-mm45-c98x-rq98.json b/advisories/unreviewed/2022/05/GHSA-mm45-c98x-rq98/GHSA-mm45-c98x-rq98.json index fa63ed11327..cb4804859cb 100644 --- a/advisories/unreviewed/2022/05/GHSA-mm45-c98x-rq98/GHSA-mm45-c98x-rq98.json +++ b/advisories/unreviewed/2022/05/GHSA-mm45-c98x-rq98/GHSA-mm45-c98x-rq98.json @@ -7,12 +7,8 @@ "CVE-2020-5388" ], "details": "Dell Inspiron 15 7579 2-in-1 BIOS versions prior to 1.31.0 contain an Improper SMM communication buffer verification vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mm4v-hxm2-mccj/GHSA-mm4v-hxm2-mccj.json b/advisories/unreviewed/2022/05/GHSA-mm4v-hxm2-mccj/GHSA-mm4v-hxm2-mccj.json index 47c6113ccc4..1c6531c8341 100644 --- a/advisories/unreviewed/2022/05/GHSA-mm4v-hxm2-mccj/GHSA-mm4v-hxm2-mccj.json +++ b/advisories/unreviewed/2022/05/GHSA-mm4v-hxm2-mccj/GHSA-mm4v-hxm2-mccj.json @@ -7,12 +7,8 @@ "CVE-2020-9116" ], "details": "Huawei FusionCompute versions 6.5.1 and 8.0.0 have a command injection vulnerability. An authenticated, remote attacker can craft specific request to exploit this vulnerability. Due to insufficient verification, this could be exploited to cause the attackers to obtain higher privilege.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mm57-2rfm-crr2/GHSA-mm57-2rfm-crr2.json b/advisories/unreviewed/2022/05/GHSA-mm57-2rfm-crr2/GHSA-mm57-2rfm-crr2.json index 7c4e389b1ac..4975a118687 100644 --- a/advisories/unreviewed/2022/05/GHSA-mm57-2rfm-crr2/GHSA-mm57-2rfm-crr2.json +++ b/advisories/unreviewed/2022/05/GHSA-mm57-2rfm-crr2/GHSA-mm57-2rfm-crr2.json @@ -7,12 +7,8 @@ "CVE-2020-28572" ], "details": "A vulnerability in Trend Micro Apex One could allow an unprivileged user to abuse the product installer to reinstall the agent with additional malicious code in the context of a higher privilege.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mmw4-5h79-rrh6/GHSA-mmw4-5h79-rrh6.json b/advisories/unreviewed/2022/05/GHSA-mmw4-5h79-rrh6/GHSA-mmw4-5h79-rrh6.json index 5e03ed24a55..72e971d275b 100644 --- a/advisories/unreviewed/2022/05/GHSA-mmw4-5h79-rrh6/GHSA-mmw4-5h79-rrh6.json +++ b/advisories/unreviewed/2022/05/GHSA-mmw4-5h79-rrh6/GHSA-mmw4-5h79-rrh6.json @@ -7,12 +7,8 @@ "CVE-2020-25463" ], "details": "Invalid Memory Access in fxUTF8Decode at moddable/xs/sources/xsCommon.c:916 in Moddable SDK before OS200908 causes a denial of service (SEGV).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mp2p-wmm5-65r7/GHSA-mp2p-wmm5-65r7.json b/advisories/unreviewed/2022/05/GHSA-mp2p-wmm5-65r7/GHSA-mp2p-wmm5-65r7.json index 850ed61257a..bf12c1f5f20 100644 --- a/advisories/unreviewed/2022/05/GHSA-mp2p-wmm5-65r7/GHSA-mp2p-wmm5-65r7.json +++ b/advisories/unreviewed/2022/05/GHSA-mp2p-wmm5-65r7/GHSA-mp2p-wmm5-65r7.json @@ -7,12 +7,8 @@ "CVE-2020-27623" ], "details": "JetBrains IdeaVim before version 0.58 might have caused an information leak in limited circumstances.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mpxw-95w2-p523/GHSA-mpxw-95w2-p523.json b/advisories/unreviewed/2022/05/GHSA-mpxw-95w2-p523/GHSA-mpxw-95w2-p523.json index e9de81f81dc..4aa2f224c75 100644 --- a/advisories/unreviewed/2022/05/GHSA-mpxw-95w2-p523/GHSA-mpxw-95w2-p523.json +++ b/advisories/unreviewed/2022/05/GHSA-mpxw-95w2-p523/GHSA-mpxw-95w2-p523.json @@ -7,12 +7,8 @@ "CVE-2020-7842" ], "details": "Improper Input validation vulnerability exists in Netis Korea D'live AP which could cause arbitrary command injection and execution when the time setting (using ntpServerlp1 parameter) for the users. This affects D'live set-top box AP(WF2429TB) v1.1.10.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mqwf-vg2c-5ch3/GHSA-mqwf-vg2c-5ch3.json b/advisories/unreviewed/2022/05/GHSA-mqwf-vg2c-5ch3/GHSA-mqwf-vg2c-5ch3.json index 58e2439be0c..a524ddab35d 100644 --- a/advisories/unreviewed/2022/05/GHSA-mqwf-vg2c-5ch3/GHSA-mqwf-vg2c-5ch3.json +++ b/advisories/unreviewed/2022/05/GHSA-mqwf-vg2c-5ch3/GHSA-mqwf-vg2c-5ch3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mrjp-f6vx-73jf/GHSA-mrjp-f6vx-73jf.json b/advisories/unreviewed/2022/05/GHSA-mrjp-f6vx-73jf/GHSA-mrjp-f6vx-73jf.json index a540994c44f..9b202a24e03 100644 --- a/advisories/unreviewed/2022/05/GHSA-mrjp-f6vx-73jf/GHSA-mrjp-f6vx-73jf.json +++ b/advisories/unreviewed/2022/05/GHSA-mrjp-f6vx-73jf/GHSA-mrjp-f6vx-73jf.json @@ -7,12 +7,8 @@ "CVE-2020-29283" ], "details": "An SQL injection vulnerability was discovered in Online Doctor Appointment Booking System PHP and Mysql via the q parameter to getuser.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mv8q-667q-35v7/GHSA-mv8q-667q-35v7.json b/advisories/unreviewed/2022/05/GHSA-mv8q-667q-35v7/GHSA-mv8q-667q-35v7.json index 2957cc406d8..4e317937bff 100644 --- a/advisories/unreviewed/2022/05/GHSA-mv8q-667q-35v7/GHSA-mv8q-667q-35v7.json +++ b/advisories/unreviewed/2022/05/GHSA-mv8q-667q-35v7/GHSA-mv8q-667q-35v7.json @@ -7,12 +7,8 @@ "CVE-2020-0455" ], "details": "There is a possible out of bounds write due to a missing bounds check.Product: AndroidVersions: Android SoCAndroid ID: A-170372514", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mwfg-6wv9-379f/GHSA-mwfg-6wv9-379f.json b/advisories/unreviewed/2022/05/GHSA-mwfg-6wv9-379f/GHSA-mwfg-6wv9-379f.json index a5b5c865f04..573b59b4f97 100644 --- a/advisories/unreviewed/2022/05/GHSA-mwfg-6wv9-379f/GHSA-mwfg-6wv9-379f.json +++ b/advisories/unreviewed/2022/05/GHSA-mwfg-6wv9-379f/GHSA-mwfg-6wv9-379f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mx3q-x87f-8pxm/GHSA-mx3q-x87f-8pxm.json b/advisories/unreviewed/2022/05/GHSA-mx3q-x87f-8pxm/GHSA-mx3q-x87f-8pxm.json index ee94587ecb0..612d7f2ba1c 100644 --- a/advisories/unreviewed/2022/05/GHSA-mx3q-x87f-8pxm/GHSA-mx3q-x87f-8pxm.json +++ b/advisories/unreviewed/2022/05/GHSA-mx3q-x87f-8pxm/GHSA-mx3q-x87f-8pxm.json @@ -7,12 +7,8 @@ "CVE-2020-7962" ], "details": "An issue was discovered in One Identity Password Manager 5.8. An attacker could enumerate valid answers for a user. It is possible for an attacker to detect a valid answer based on the HTTP response content, and reuse this answer later for a password reset on a chosen password. The enumeration is possible because, within the HTTP response content, WRONG ID is only returned when the answer is incorrect.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mx68-p244-fggc/GHSA-mx68-p244-fggc.json b/advisories/unreviewed/2022/05/GHSA-mx68-p244-fggc/GHSA-mx68-p244-fggc.json index a5405bd1ee9..eab43755379 100644 --- a/advisories/unreviewed/2022/05/GHSA-mx68-p244-fggc/GHSA-mx68-p244-fggc.json +++ b/advisories/unreviewed/2022/05/GHSA-mx68-p244-fggc/GHSA-mx68-p244-fggc.json @@ -7,12 +7,8 @@ "CVE-2020-15437" ], "details": "The Linux kernel before version 5.8 is vulnerable to a NULL pointer dereference in drivers/tty/serial/8250/8250_core.c:serial8250_isa_init_ports() that allows local users to cause a denial of service by using the p->serial_in pointer which uninitialized.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mxg2-jj7m-q6v8/GHSA-mxg2-jj7m-q6v8.json b/advisories/unreviewed/2022/05/GHSA-mxg2-jj7m-q6v8/GHSA-mxg2-jj7m-q6v8.json index f8d6b421e75..2d66c6ad99c 100644 --- a/advisories/unreviewed/2022/05/GHSA-mxg2-jj7m-q6v8/GHSA-mxg2-jj7m-q6v8.json +++ b/advisories/unreviewed/2022/05/GHSA-mxg2-jj7m-q6v8/GHSA-mxg2-jj7m-q6v8.json @@ -7,12 +7,8 @@ "CVE-2020-25159" ], "details": "499ES EtherNet/IP (ENIP) Adaptor Source Code is vulnerable to a stack-based buffer overflow, which may allow an attacker to send a specially crafted packet that may result in a denial-of-service condition or code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p276-c5v8-f347/GHSA-p276-c5v8-f347.json b/advisories/unreviewed/2022/05/GHSA-p276-c5v8-f347/GHSA-p276-c5v8-f347.json index 1a97b2665ec..2439b90b62b 100644 --- a/advisories/unreviewed/2022/05/GHSA-p276-c5v8-f347/GHSA-p276-c5v8-f347.json +++ b/advisories/unreviewed/2022/05/GHSA-p276-c5v8-f347/GHSA-p276-c5v8-f347.json @@ -7,12 +7,8 @@ "CVE-2020-27902" ], "details": "An authentication issue was addressed with improved state management. This issue is fixed in iOS 14.2 and iPadOS 14.2. A person with physical access to an iOS device may be able to access stored passwords without authentication.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p47j-xx8m-fjr9/GHSA-p47j-xx8m-fjr9.json b/advisories/unreviewed/2022/05/GHSA-p47j-xx8m-fjr9/GHSA-p47j-xx8m-fjr9.json index 3ab4e729f76..2930dcadbfb 100644 --- a/advisories/unreviewed/2022/05/GHSA-p47j-xx8m-fjr9/GHSA-p47j-xx8m-fjr9.json +++ b/advisories/unreviewed/2022/05/GHSA-p47j-xx8m-fjr9/GHSA-p47j-xx8m-fjr9.json @@ -7,12 +7,8 @@ "CVE-2020-4900" ], "details": "IBM Business Automation Workflow 19.0.0.3 stores potentially sensitive information in log files that could be read by a local user. IBM X-Force ID: 190991.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p47q-7w75-c3j3/GHSA-p47q-7w75-c3j3.json b/advisories/unreviewed/2022/05/GHSA-p47q-7w75-c3j3/GHSA-p47q-7w75-c3j3.json index 5870001b078..266a8bbe0de 100644 --- a/advisories/unreviewed/2022/05/GHSA-p47q-7w75-c3j3/GHSA-p47q-7w75-c3j3.json +++ b/advisories/unreviewed/2022/05/GHSA-p47q-7w75-c3j3/GHSA-p47q-7w75-c3j3.json @@ -7,12 +7,8 @@ "CVE-2020-29282" ], "details": "SQL injection vulnerability in BloodX 1.0 allows attackers to bypass authentication.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p532-pqr4-xw4g/GHSA-p532-pqr4-xw4g.json b/advisories/unreviewed/2022/05/GHSA-p532-pqr4-xw4g/GHSA-p532-pqr4-xw4g.json index 0b8fd4324fd..52ad0e88486 100644 --- a/advisories/unreviewed/2022/05/GHSA-p532-pqr4-xw4g/GHSA-p532-pqr4-xw4g.json +++ b/advisories/unreviewed/2022/05/GHSA-p532-pqr4-xw4g/GHSA-p532-pqr4-xw4g.json @@ -7,12 +7,8 @@ "CVE-2020-27926" ], "details": "A use after free issue was addressed with improved memory management. This issue is fixed in iOS 14.2 and iPadOS 14.2. Processing maliciously crafted web content may lead to arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p5ph-fpgv-7c3v/GHSA-p5ph-fpgv-7c3v.json b/advisories/unreviewed/2022/05/GHSA-p5ph-fpgv-7c3v/GHSA-p5ph-fpgv-7c3v.json index 989ba5a467a..5c748ad65b8 100644 --- a/advisories/unreviewed/2022/05/GHSA-p5ph-fpgv-7c3v/GHSA-p5ph-fpgv-7c3v.json +++ b/advisories/unreviewed/2022/05/GHSA-p5ph-fpgv-7c3v/GHSA-p5ph-fpgv-7c3v.json @@ -7,12 +7,8 @@ "CVE-2020-4624" ], "details": "IBM Cloud Pak for Security 1.3.0.1 (CP4S) uses weaker than expected cryptographic algorithms during negotiation could allow an attacker to decrypt sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p7jj-vwwf-c644/GHSA-p7jj-vwwf-c644.json b/advisories/unreviewed/2022/05/GHSA-p7jj-vwwf-c644/GHSA-p7jj-vwwf-c644.json index 65b542d7129..691892f4033 100644 --- a/advisories/unreviewed/2022/05/GHSA-p7jj-vwwf-c644/GHSA-p7jj-vwwf-c644.json +++ b/advisories/unreviewed/2022/05/GHSA-p7jj-vwwf-c644/GHSA-p7jj-vwwf-c644.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p854-92x2-rx7x/GHSA-p854-92x2-rx7x.json b/advisories/unreviewed/2022/05/GHSA-p854-92x2-rx7x/GHSA-p854-92x2-rx7x.json index 05431b0531f..b850c563706 100644 --- a/advisories/unreviewed/2022/05/GHSA-p854-92x2-rx7x/GHSA-p854-92x2-rx7x.json +++ b/advisories/unreviewed/2022/05/GHSA-p854-92x2-rx7x/GHSA-p854-92x2-rx7x.json @@ -7,12 +7,8 @@ "CVE-2017-2910" ], "details": "An exploitable Out-of-bounds Write vulnerability exists in the xls_addCell function of libxls 2.0. A specially crafted xls file can cause a memory corruption resulting in remote code execution. An attacker can send malicious xls file to trigger this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pc88-5q83-cf4p/GHSA-pc88-5q83-cf4p.json b/advisories/unreviewed/2022/05/GHSA-pc88-5q83-cf4p/GHSA-pc88-5q83-cf4p.json index 51d2f460640..0e46217e61d 100644 --- a/advisories/unreviewed/2022/05/GHSA-pc88-5q83-cf4p/GHSA-pc88-5q83-cf4p.json +++ b/advisories/unreviewed/2022/05/GHSA-pc88-5q83-cf4p/GHSA-pc88-5q83-cf4p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pcwp-p8jm-7xc7/GHSA-pcwp-p8jm-7xc7.json b/advisories/unreviewed/2022/05/GHSA-pcwp-p8jm-7xc7/GHSA-pcwp-p8jm-7xc7.json index f6b09cb9391..dad24fb6c06 100644 --- a/advisories/unreviewed/2022/05/GHSA-pcwp-p8jm-7xc7/GHSA-pcwp-p8jm-7xc7.json +++ b/advisories/unreviewed/2022/05/GHSA-pcwp-p8jm-7xc7/GHSA-pcwp-p8jm-7xc7.json @@ -7,12 +7,8 @@ "CVE-2020-27930" ], "details": "A memory corruption issue was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1, watchOS 7.1, iOS 12.4.9, watchOS 6.2.9, Security Update 2020-006 High Sierra, Security Update 2020-006 Mojave, iOS 14.2 and iPadOS 14.2, watchOS 5.3.9, macOS Catalina 10.15.7 Supplemental Update, macOS Catalina 10.15.7 Update. Processing a maliciously crafted font may lead to arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pfgx-f7x8-8985/GHSA-pfgx-f7x8-8985.json b/advisories/unreviewed/2022/05/GHSA-pfgx-f7x8-8985/GHSA-pfgx-f7x8-8985.json index ac6a31a143c..8e4a942bd9b 100644 --- a/advisories/unreviewed/2022/05/GHSA-pfgx-f7x8-8985/GHSA-pfgx-f7x8-8985.json +++ b/advisories/unreviewed/2022/05/GHSA-pfgx-f7x8-8985/GHSA-pfgx-f7x8-8985.json @@ -7,12 +7,8 @@ "CVE-2020-25265" ], "details": "AppImage libappimage before 1.0.3 allows attackers to trigger an overwrite of a system-installed .desktop file by providing a .desktop file that contains Name= with path components.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pfq8-gmrx-7h6x/GHSA-pfq8-gmrx-7h6x.json b/advisories/unreviewed/2022/05/GHSA-pfq8-gmrx-7h6x/GHSA-pfq8-gmrx-7h6x.json index 4e4329ed778..b9288b25822 100644 --- a/advisories/unreviewed/2022/05/GHSA-pfq8-gmrx-7h6x/GHSA-pfq8-gmrx-7h6x.json +++ b/advisories/unreviewed/2022/05/GHSA-pfq8-gmrx-7h6x/GHSA-pfq8-gmrx-7h6x.json @@ -7,12 +7,8 @@ "CVE-2020-28921" ], "details": "An issue was discovered in Devid Espenschied PC Analyser through 4.10. The PCADRVX64.SYS kernel driver exposes IOCTL functionality that allows low-privilege users to read and write to arbitrary Model Specific Registers (MSRs). This could lead to arbitrary Ring-0 code execution and escalation of privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ph92-fm2f-7w7p/GHSA-ph92-fm2f-7w7p.json b/advisories/unreviewed/2022/05/GHSA-ph92-fm2f-7w7p/GHSA-ph92-fm2f-7w7p.json index fab1d39ca48..262e62aab2e 100644 --- a/advisories/unreviewed/2022/05/GHSA-ph92-fm2f-7w7p/GHSA-ph92-fm2f-7w7p.json +++ b/advisories/unreviewed/2022/05/GHSA-ph92-fm2f-7w7p/GHSA-ph92-fm2f-7w7p.json @@ -7,12 +7,8 @@ "CVE-2019-14586" ], "details": "Use after free vulnerability in EDK II may allow an authenticated user to potentially enable escalation of privilege, information disclosure and/or denial of service via adjacent access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-phcj-55fg-4r29/GHSA-phcj-55fg-4r29.json b/advisories/unreviewed/2022/05/GHSA-phcj-55fg-4r29/GHSA-phcj-55fg-4r29.json index b5675f61f25..147f40657b2 100644 --- a/advisories/unreviewed/2022/05/GHSA-phcj-55fg-4r29/GHSA-phcj-55fg-4r29.json +++ b/advisories/unreviewed/2022/05/GHSA-phcj-55fg-4r29/GHSA-phcj-55fg-4r29.json @@ -7,12 +7,8 @@ "CVE-2020-14206" ], "details": "The DiveBook plugin 1.1.4 for WordPress is prone to unauthenticated XSS within the filter function (via an arbitrary parameter).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-phh2-62x4-4jfj/GHSA-phh2-62x4-4jfj.json b/advisories/unreviewed/2022/05/GHSA-phh2-62x4-4jfj/GHSA-phh2-62x4-4jfj.json index 3efc7b24ce5..0c14a4fc1ca 100644 --- a/advisories/unreviewed/2022/05/GHSA-phh2-62x4-4jfj/GHSA-phh2-62x4-4jfj.json +++ b/advisories/unreviewed/2022/05/GHSA-phh2-62x4-4jfj/GHSA-phh2-62x4-4jfj.json @@ -7,12 +7,8 @@ "CVE-2020-27626" ], "details": "JetBrains YouTrack before 2020.3.5333 was vulnerable to SSRF.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-phjf-vhjh-qv5p/GHSA-phjf-vhjh-qv5p.json b/advisories/unreviewed/2022/05/GHSA-phjf-vhjh-qv5p/GHSA-phjf-vhjh-qv5p.json index 2eef1275053..be6c564277b 100644 --- a/advisories/unreviewed/2022/05/GHSA-phjf-vhjh-qv5p/GHSA-phjf-vhjh-qv5p.json +++ b/advisories/unreviewed/2022/05/GHSA-phjf-vhjh-qv5p/GHSA-phjf-vhjh-qv5p.json @@ -7,12 +7,8 @@ "CVE-2020-28086" ], "details": "pass through 1.7.3 has a possibility of using a password for an unintended resource. For exploitation to occur, the user must do a git pull, decrypt a password, and log into a remote service with the password. If an attacker controls the central Git server or one of the other members' machines, and also controls one of the services already in the password store, they can rename one of the password files in the Git repository to something else: pass doesn't correctly verify that the content of a file matches the filename, so a user might be tricked into decrypting the wrong password and sending that to a service that the attacker controls. NOTE: for environments in which this threat model is of concern, signing commits can be a solution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pj5f-493m-r596/GHSA-pj5f-493m-r596.json b/advisories/unreviewed/2022/05/GHSA-pj5f-493m-r596/GHSA-pj5f-493m-r596.json index c47d90c3710..a5dda3ae764 100644 --- a/advisories/unreviewed/2022/05/GHSA-pj5f-493m-r596/GHSA-pj5f-493m-r596.json +++ b/advisories/unreviewed/2022/05/GHSA-pj5f-493m-r596/GHSA-pj5f-493m-r596.json @@ -7,12 +7,8 @@ "CVE-2020-29602" ], "details": "The official irssi docker images before 1.1-alpine (Alpine specific) contain a blank password for a root user. System using the irssi docker container deployed by affected versions of the Docker image may allow an remote attacker to achieve root access with a blank password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pjjj-hpx9-qmc6/GHSA-pjjj-hpx9-qmc6.json b/advisories/unreviewed/2022/05/GHSA-pjjj-hpx9-qmc6/GHSA-pjjj-hpx9-qmc6.json index 92e3a7e0c2a..01afa764bf6 100644 --- a/advisories/unreviewed/2022/05/GHSA-pjjj-hpx9-qmc6/GHSA-pjjj-hpx9-qmc6.json +++ b/advisories/unreviewed/2022/05/GHSA-pjjj-hpx9-qmc6/GHSA-pjjj-hpx9-qmc6.json @@ -7,12 +7,8 @@ "CVE-2020-29438" ], "details": "Tesla Model X vehicles before 2020-11-23 have key fobs that accept firmware updates without signature verification. This allows attackers to construct firmware that retrieves an unlock code from a secure enclave chip.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pjv3-5grh-rmm4/GHSA-pjv3-5grh-rmm4.json b/advisories/unreviewed/2022/05/GHSA-pjv3-5grh-rmm4/GHSA-pjv3-5grh-rmm4.json index 3c48eb641bc..fd48494a43d 100644 --- a/advisories/unreviewed/2022/05/GHSA-pjv3-5grh-rmm4/GHSA-pjv3-5grh-rmm4.json +++ b/advisories/unreviewed/2022/05/GHSA-pjv3-5grh-rmm4/GHSA-pjv3-5grh-rmm4.json @@ -7,12 +7,8 @@ "CVE-2020-2049" ], "details": "A local privilege escalation vulnerability exists in Palo Alto Networks Cortex XDR Agent on the Windows platform that allows an authenticated local Windows user to execute programs with SYSTEM privileges. This requires the user to have the privilege to create files in the Windows root directory. This issue impacts: All versions of Cortex XDR Agent 7.1 with content update 149 and earlier versions; All versions of Cortex XDR Agent 7.2 with content update 149 and earlier versions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pmq5-vgh2-fjq5/GHSA-pmq5-vgh2-fjq5.json b/advisories/unreviewed/2022/05/GHSA-pmq5-vgh2-fjq5/GHSA-pmq5-vgh2-fjq5.json index ceaf6aad38f..9c7b69e1d12 100644 --- a/advisories/unreviewed/2022/05/GHSA-pmq5-vgh2-fjq5/GHSA-pmq5-vgh2-fjq5.json +++ b/advisories/unreviewed/2022/05/GHSA-pmq5-vgh2-fjq5/GHSA-pmq5-vgh2-fjq5.json @@ -7,12 +7,8 @@ "CVE-2020-0468" ], "details": "In listen() and related functions of TelephonyRegistry.java, there is a possible permissions bypass of location permissions due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11Android ID: A-158484422", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ppch-842g-chcf/GHSA-ppch-842g-chcf.json b/advisories/unreviewed/2022/05/GHSA-ppch-842g-chcf/GHSA-ppch-842g-chcf.json index a26201d3279..4ad32e245a6 100644 --- a/advisories/unreviewed/2022/05/GHSA-ppch-842g-chcf/GHSA-ppch-842g-chcf.json +++ b/advisories/unreviewed/2022/05/GHSA-ppch-842g-chcf/GHSA-ppch-842g-chcf.json @@ -7,12 +7,8 @@ "CVE-2020-23520" ], "details": "imcat 5.2 allows an authenticated file upload and consequently remote code execution via the picture functionality.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pqf8-45f6-3rgv/GHSA-pqf8-45f6-3rgv.json b/advisories/unreviewed/2022/05/GHSA-pqf8-45f6-3rgv/GHSA-pqf8-45f6-3rgv.json index 1d208e95507..9388f2165fc 100644 --- a/advisories/unreviewed/2022/05/GHSA-pqf8-45f6-3rgv/GHSA-pqf8-45f6-3rgv.json +++ b/advisories/unreviewed/2022/05/GHSA-pqf8-45f6-3rgv/GHSA-pqf8-45f6-3rgv.json @@ -7,12 +7,8 @@ "CVE-2020-29127" ], "details": "An issue was discovered on Fujitsu Eternus Storage DX200 S4 devices through 2020-11-25. After logging into the portal as a root user (using any web browser), the portal can be accessed with root privileges when the URI cgi-bin/csp?cspid={XXXXXXXXXX}&csppage=cgi_PgOverview&csplang=en is visited from a different web browser.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pv7p-2x54-xvc3/GHSA-pv7p-2x54-xvc3.json b/advisories/unreviewed/2022/05/GHSA-pv7p-2x54-xvc3/GHSA-pv7p-2x54-xvc3.json index 9e495d12bb2..765aea450c5 100644 --- a/advisories/unreviewed/2022/05/GHSA-pv7p-2x54-xvc3/GHSA-pv7p-2x54-xvc3.json +++ b/advisories/unreviewed/2022/05/GHSA-pv7p-2x54-xvc3/GHSA-pv7p-2x54-xvc3.json @@ -7,12 +7,8 @@ "CVE-2020-29062" ], "details": "An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 97168P, FD1002S, FD1104, FD1104B, FD1104S, FD1104SN, FD1108S, FD1204S-R2, FD1204SN, FD1204SN-R2, FD1208S-R2, FD1216S-R1, FD1608GS, FD1608SN, FD1616GS, FD1616SN, and FD8000 devices. There is a default blank password for the guest account.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pxxg-w7cj-99fp/GHSA-pxxg-w7cj-99fp.json b/advisories/unreviewed/2022/05/GHSA-pxxg-w7cj-99fp/GHSA-pxxg-w7cj-99fp.json index e0084a870a7..4197bd44e2d 100644 --- a/advisories/unreviewed/2022/05/GHSA-pxxg-w7cj-99fp/GHSA-pxxg-w7cj-99fp.json +++ b/advisories/unreviewed/2022/05/GHSA-pxxg-w7cj-99fp/GHSA-pxxg-w7cj-99fp.json @@ -7,12 +7,8 @@ "CVE-2020-28937" ], "details": "OpenClinic version 0.8.2 is affected by a missing authentication vulnerability that allows unauthenticated users to access any patient's medical test results, possibly resulting in disclosure of Protected Health Information (PHI) stored in the application, via a direct request for the /tests/ URI.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q23g-5crp-275m/GHSA-q23g-5crp-275m.json b/advisories/unreviewed/2022/05/GHSA-q23g-5crp-275m/GHSA-q23g-5crp-275m.json index 4256b988d62..5989bd93553 100644 --- a/advisories/unreviewed/2022/05/GHSA-q23g-5crp-275m/GHSA-q23g-5crp-275m.json +++ b/advisories/unreviewed/2022/05/GHSA-q23g-5crp-275m/GHSA-q23g-5crp-275m.json @@ -7,12 +7,8 @@ "CVE-2020-25952" ], "details": "SQL injection vulnerability in PHPGurukul User Registration & Login and User Management System With admin panel 2.1 allows remote attackers to execute arbitrary SQL commands and bypass authentication.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q38p-89cx-mcrc/GHSA-q38p-89cx-mcrc.json b/advisories/unreviewed/2022/05/GHSA-q38p-89cx-mcrc/GHSA-q38p-89cx-mcrc.json index 162f2dca98e..75d947f5ac1 100644 --- a/advisories/unreviewed/2022/05/GHSA-q38p-89cx-mcrc/GHSA-q38p-89cx-mcrc.json +++ b/advisories/unreviewed/2022/05/GHSA-q38p-89cx-mcrc/GHSA-q38p-89cx-mcrc.json @@ -7,12 +7,8 @@ "CVE-2020-14193" ], "details": "Affected versions of Automation for Jira - Server allowed remote attackers to read and render files as mustache templates in files inside the WEB-INF/classes & /jira/bin directories via a template injection vulnerability in Jira smart values using mustache partials. The affected versions are those before version 7.1.15.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q3hc-qvq7-7gmj/GHSA-q3hc-qvq7-7gmj.json b/advisories/unreviewed/2022/05/GHSA-q3hc-qvq7-7gmj/GHSA-q3hc-qvq7-7gmj.json index 3bf5fb472de..4a8fe28eedf 100644 --- a/advisories/unreviewed/2022/05/GHSA-q3hc-qvq7-7gmj/GHSA-q3hc-qvq7-7gmj.json +++ b/advisories/unreviewed/2022/05/GHSA-q3hc-qvq7-7gmj/GHSA-q3hc-qvq7-7gmj.json @@ -7,12 +7,8 @@ "CVE-2019-14553" ], "details": "Improper authentication in EDK II may allow a privileged user to potentially enable information disclosure via network access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q449-r33x-v693/GHSA-q449-r33x-v693.json b/advisories/unreviewed/2022/05/GHSA-q449-r33x-v693/GHSA-q449-r33x-v693.json index 49dbeca2176..3da97ecdd63 100644 --- a/advisories/unreviewed/2022/05/GHSA-q449-r33x-v693/GHSA-q449-r33x-v693.json +++ b/advisories/unreviewed/2022/05/GHSA-q449-r33x-v693/GHSA-q449-r33x-v693.json @@ -7,12 +7,8 @@ "CVE-2020-27484" ], "details": "Garmin Forerunner 235 before 8.20 is affected by: Integer Overflow. The component is: ConnectIQ TVM. The attack vector is: To exploit the vulnerability, the attacker must upload a malicious ConnectIQ application to the ConnectIQ store. The ConnectIQ program interpreter fails to check for overflow when allocating the array for the NEWA instruction. This a constrained read/write primitive across the entire MAX32630 address space. A successful exploit would allow a ConnectIQ app store application to escape and perform activities outside the restricted application execution environment.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q4jm-4p9g-2h6g/GHSA-q4jm-4p9g-2h6g.json b/advisories/unreviewed/2022/05/GHSA-q4jm-4p9g-2h6g/GHSA-q4jm-4p9g-2h6g.json index c427fc618b6..e0cf6948627 100644 --- a/advisories/unreviewed/2022/05/GHSA-q4jm-4p9g-2h6g/GHSA-q4jm-4p9g-2h6g.json +++ b/advisories/unreviewed/2022/05/GHSA-q4jm-4p9g-2h6g/GHSA-q4jm-4p9g-2h6g.json @@ -7,12 +7,8 @@ "CVE-2020-27255" ], "details": "A heap overflow vulnerability exists within FactoryTalk Linx Version 6.11 and prior. This vulnerability could allow a remote, unauthenticated attacker to send malicious set attribute requests, which could result in the leaking of sensitive information. This information disclosure could lead to the bypass of address space layout randomization (ASLR).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q4v7-mpx5-4v38/GHSA-q4v7-mpx5-4v38.json b/advisories/unreviewed/2022/05/GHSA-q4v7-mpx5-4v38/GHSA-q4v7-mpx5-4v38.json index 56d2c0f241a..4742785a233 100644 --- a/advisories/unreviewed/2022/05/GHSA-q4v7-mpx5-4v38/GHSA-q4v7-mpx5-4v38.json +++ b/advisories/unreviewed/2022/05/GHSA-q4v7-mpx5-4v38/GHSA-q4v7-mpx5-4v38.json @@ -7,12 +7,8 @@ "CVE-2020-8583" ], "details": "Element Software versions prior to 12.2 and HCI versions prior to 1.8P1 are susceptible to a vulnerability which could allow an attacker to discover sensitive information by intercepting its transmission within an https session.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q622-qgp9-63h7/GHSA-q622-qgp9-63h7.json b/advisories/unreviewed/2022/05/GHSA-q622-qgp9-63h7/GHSA-q622-qgp9-63h7.json index d3c7bda2e35..cd4e11bae68 100644 --- a/advisories/unreviewed/2022/05/GHSA-q622-qgp9-63h7/GHSA-q622-qgp9-63h7.json +++ b/advisories/unreviewed/2022/05/GHSA-q622-qgp9-63h7/GHSA-q622-qgp9-63h7.json @@ -7,12 +7,8 @@ "CVE-2020-3470" ], "details": "Multiple vulnerabilities in the API subsystem of Cisco Integrated Management Controller (IMC) could allow an unauthenticated, remote attacker to execute arbitrary code with root privileges. The vulnerabilities are due to improper boundary checks for certain user-supplied input. An attacker could exploit these vulnerabilities by sending a crafted HTTP request to the API subsystem of an affected system. When this request is processed, an exploitable buffer overflow condition may occur. A successful exploit could allow the attacker to execute arbitrary code with root privileges on the underlying operating system (OS).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q663-qwpj-9w6q/GHSA-q663-qwpj-9w6q.json b/advisories/unreviewed/2022/05/GHSA-q663-qwpj-9w6q/GHSA-q663-qwpj-9w6q.json index 32969a613e3..173a3a174e0 100644 --- a/advisories/unreviewed/2022/05/GHSA-q663-qwpj-9w6q/GHSA-q663-qwpj-9w6q.json +++ b/advisories/unreviewed/2022/05/GHSA-q663-qwpj-9w6q/GHSA-q663-qwpj-9w6q.json @@ -7,12 +7,8 @@ "CVE-2020-29540" ], "details": "API calls in the Translation API feature in Systran Pure Neural Server before 9.7.0 allow a threat actor to use the Systran Pure Neural Server as a Denial-of-Service proxy by sending a large amount of translation requests to a destination host on any given TCP port regardless of whether a web service is running on the destination port.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q66j-gj7h-p9hm/GHSA-q66j-gj7h-p9hm.json b/advisories/unreviewed/2022/05/GHSA-q66j-gj7h-p9hm/GHSA-q66j-gj7h-p9hm.json index e5fe36d0401..4d0df241540 100644 --- a/advisories/unreviewed/2022/05/GHSA-q66j-gj7h-p9hm/GHSA-q66j-gj7h-p9hm.json +++ b/advisories/unreviewed/2022/05/GHSA-q66j-gj7h-p9hm/GHSA-q66j-gj7h-p9hm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q952-vrp9-648w/GHSA-q952-vrp9-648w.json b/advisories/unreviewed/2022/05/GHSA-q952-vrp9-648w/GHSA-q952-vrp9-648w.json index 79c5e7d9f6c..cdbc78257a8 100644 --- a/advisories/unreviewed/2022/05/GHSA-q952-vrp9-648w/GHSA-q952-vrp9-648w.json +++ b/advisories/unreviewed/2022/05/GHSA-q952-vrp9-648w/GHSA-q952-vrp9-648w.json @@ -7,12 +7,8 @@ "CVE-2020-8750" ], "details": "Use after free in Kernel Mode Driver for Intel(R) TXE versions before 3.1.80 and 4.0.30 may allow an authenticated user to potentially enable escalation of privilege via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q9qc-v68f-53f3/GHSA-q9qc-v68f-53f3.json b/advisories/unreviewed/2022/05/GHSA-q9qc-v68f-53f3/GHSA-q9qc-v68f-53f3.json index 0f1450b3606..7f386148680 100644 --- a/advisories/unreviewed/2022/05/GHSA-q9qc-v68f-53f3/GHSA-q9qc-v68f-53f3.json +++ b/advisories/unreviewed/2022/05/GHSA-q9qc-v68f-53f3/GHSA-q9qc-v68f-53f3.json @@ -7,12 +7,8 @@ "CVE-2020-27485" ], "details": "Garmin Forerunner 235 before 8.20 is affected by: Array index error. The component is: ConnectIQ TVM. The attack vector is: To exploit the vulnerability, the attacker must upload a malicious ConnectIQ application to the ConnectIQ store. The ConnectIQ program interpreter fails to check the index provided when accessing the local variable in the LGETV and LPUTV instructions. This provides the ability to both read and write memory outside the bounds of the TVM context allocation. It can be leveraged to construct a use-after-free scenario, leading to a constrained read/write primitive across the entire MAX32630 address space. A successful exploit would allow a ConnectIQ app store application to escape and perform activities outside the restricted application execution environment.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qfv9-rhfv-64hr/GHSA-qfv9-rhfv-64hr.json b/advisories/unreviewed/2022/05/GHSA-qfv9-rhfv-64hr/GHSA-qfv9-rhfv-64hr.json index 4e5b1bed34f..1d0f03f47ae 100644 --- a/advisories/unreviewed/2022/05/GHSA-qfv9-rhfv-64hr/GHSA-qfv9-rhfv-64hr.json +++ b/advisories/unreviewed/2022/05/GHSA-qfv9-rhfv-64hr/GHSA-qfv9-rhfv-64hr.json @@ -7,12 +7,8 @@ "CVE-2020-13958" ], "details": "A vulnerability in Apache OpenOffice scripting events allows an attacker to construct documents containing hyperlinks pointing to an executable on the target users file system. These hyperlinks can be triggered unconditionally. In fixed versions no internal protocol may be called from the document event handler and other hyperlinks require a control-click.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qgr9-4rvm-qxmp/GHSA-qgr9-4rvm-qxmp.json b/advisories/unreviewed/2022/05/GHSA-qgr9-4rvm-qxmp/GHSA-qgr9-4rvm-qxmp.json index 4c167f9535b..29786cb9eca 100644 --- a/advisories/unreviewed/2022/05/GHSA-qgr9-4rvm-qxmp/GHSA-qgr9-4rvm-qxmp.json +++ b/advisories/unreviewed/2022/05/GHSA-qgr9-4rvm-qxmp/GHSA-qgr9-4rvm-qxmp.json @@ -7,12 +7,8 @@ "CVE-2020-25889" ], "details": "Online Bus Booking System Project Using PHP/MySQL version 1.0 has SQL injection via the login page. By placing SQL injection payload on the login page attackers can bypass the authentication and can gain the admin privilege.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qh5q-fpqr-qwj9/GHSA-qh5q-fpqr-qwj9.json b/advisories/unreviewed/2022/05/GHSA-qh5q-fpqr-qwj9/GHSA-qh5q-fpqr-qwj9.json index b113e28af19..1c93a41c758 100644 --- a/advisories/unreviewed/2022/05/GHSA-qh5q-fpqr-qwj9/GHSA-qh5q-fpqr-qwj9.json +++ b/advisories/unreviewed/2022/05/GHSA-qh5q-fpqr-qwj9/GHSA-qh5q-fpqr-qwj9.json @@ -7,12 +7,8 @@ "CVE-2019-19284" ], "details": "A vulnerability has been identified in XHQ (All Versions < 6.1). The web interface could allow Cross-Site Scripting (XSS) attacks if an attacker is able to modify content of particular web pages, causing the application to behave in unexpected ways for legitimate users.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qj3r-57x6-6667/GHSA-qj3r-57x6-6667.json b/advisories/unreviewed/2022/05/GHSA-qj3r-57x6-6667/GHSA-qj3r-57x6-6667.json index 1ae673ea298..8c1f2bcc21a 100644 --- a/advisories/unreviewed/2022/05/GHSA-qj3r-57x6-6667/GHSA-qj3r-57x6-6667.json +++ b/advisories/unreviewed/2022/05/GHSA-qj3r-57x6-6667/GHSA-qj3r-57x6-6667.json @@ -7,12 +7,8 @@ "CVE-2020-22723" ], "details": "A cross-site scripting (XSS) vulnerability in Beijing Liangjing Zhicheng Technology Co., Ltd ljcmsshop version 1.14 allows remote attackers to inject arbitrary web script or HTML via user.php by registering an account directly in the user center, and then adding the payload to the delivery address.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qj3w-cxqj-5rxq/GHSA-qj3w-cxqj-5rxq.json b/advisories/unreviewed/2022/05/GHSA-qj3w-cxqj-5rxq/GHSA-qj3w-cxqj-5rxq.json index b6b6a157d29..89e86743ab4 100644 --- a/advisories/unreviewed/2022/05/GHSA-qj3w-cxqj-5rxq/GHSA-qj3w-cxqj-5rxq.json +++ b/advisories/unreviewed/2022/05/GHSA-qj3w-cxqj-5rxq/GHSA-qj3w-cxqj-5rxq.json @@ -7,12 +7,8 @@ "CVE-2020-27903" ], "details": "This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Big Sur 11.0.1. An application may be able to gain elevated privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qj8p-f375-fv39/GHSA-qj8p-f375-fv39.json b/advisories/unreviewed/2022/05/GHSA-qj8p-f375-fv39/GHSA-qj8p-f375-fv39.json index 41722f1ac5e..9c386f7d70f 100644 --- a/advisories/unreviewed/2022/05/GHSA-qj8p-f375-fv39/GHSA-qj8p-f375-fv39.json +++ b/advisories/unreviewed/2022/05/GHSA-qj8p-f375-fv39/GHSA-qj8p-f375-fv39.json @@ -7,12 +7,8 @@ "CVE-2020-4126" ], "details": "HCL iNotes is susceptible to a sensitive cookie exposure vulnerability. This can allow an unauthenticated remote attacker to capture the cookie by intercepting its transmission within an http session. Fixes are available in HCL Domino and iNotes versions 10.0.1 FP6 and 11.0.1 FP2 and later.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qjv2-p92g-q4wq/GHSA-qjv2-p92g-q4wq.json b/advisories/unreviewed/2022/05/GHSA-qjv2-p92g-q4wq/GHSA-qjv2-p92g-q4wq.json index 8733bbb2db5..4226131a5aa 100644 --- a/advisories/unreviewed/2022/05/GHSA-qjv2-p92g-q4wq/GHSA-qjv2-p92g-q4wq.json +++ b/advisories/unreviewed/2022/05/GHSA-qjv2-p92g-q4wq/GHSA-qjv2-p92g-q4wq.json @@ -7,12 +7,8 @@ "CVE-2020-29074" ], "details": "scan.c in x11vnc 0.9.16 uses IPC_CREAT|0777 in shmget calls, which allows access by actors other than the current user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qm74-j33c-557g/GHSA-qm74-j33c-557g.json b/advisories/unreviewed/2022/05/GHSA-qm74-j33c-557g/GHSA-qm74-j33c-557g.json index 8e5919355ab..4da5ed5347d 100644 --- a/advisories/unreviewed/2022/05/GHSA-qm74-j33c-557g/GHSA-qm74-j33c-557g.json +++ b/advisories/unreviewed/2022/05/GHSA-qm74-j33c-557g/GHSA-qm74-j33c-557g.json @@ -7,12 +7,8 @@ "CVE-2020-24227" ], "details": "Playground Sessions v2.5.582 (and earlier) for Windows, stores the user credentials in plain text allowing anyone with access to UserProfiles.sol to extract the email and password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qmmq-6cfg-qc67/GHSA-qmmq-6cfg-qc67.json b/advisories/unreviewed/2022/05/GHSA-qmmq-6cfg-qc67/GHSA-qmmq-6cfg-qc67.json index 620695e249d..889aa3839ab 100644 --- a/advisories/unreviewed/2022/05/GHSA-qmmq-6cfg-qc67/GHSA-qmmq-6cfg-qc67.json +++ b/advisories/unreviewed/2022/05/GHSA-qmmq-6cfg-qc67/GHSA-qmmq-6cfg-qc67.json @@ -7,12 +7,8 @@ "CVE-2020-4129" ], "details": "HCL Domino is susceptible to a lockout policy bypass vulnerability in the LDAP service. An unauthenticated attacker could use this vulnerability to mount a brute force attack against the LDAP service. Fixes are available in HCL Domino versions 9.0.1 FP10 IF6, 10.0.1 FP6 and 11.0.1 FP1 and later.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qpj4-2wrv-fg4g/GHSA-qpj4-2wrv-fg4g.json b/advisories/unreviewed/2022/05/GHSA-qpj4-2wrv-fg4g/GHSA-qpj4-2wrv-fg4g.json index 228ecf40447..8ff39d6ad7a 100644 --- a/advisories/unreviewed/2022/05/GHSA-qpj4-2wrv-fg4g/GHSA-qpj4-2wrv-fg4g.json +++ b/advisories/unreviewed/2022/05/GHSA-qpj4-2wrv-fg4g/GHSA-qpj4-2wrv-fg4g.json @@ -7,12 +7,8 @@ "CVE-2020-26828" ], "details": "SAP Disclosure Management, version - 10.1, provides capabilities for authorized users to upload and download content of specific file type. In some file types it is possible to enter formulas which can call external applications or execute scripts. The execution of a payload (script) on target machine could be used to steal and modify the data available in the spreadsheet", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qpxg-jggc-73jp/GHSA-qpxg-jggc-73jp.json b/advisories/unreviewed/2022/05/GHSA-qpxg-jggc-73jp/GHSA-qpxg-jggc-73jp.json index 5529e051a10..107c3143d29 100644 --- a/advisories/unreviewed/2022/05/GHSA-qpxg-jggc-73jp/GHSA-qpxg-jggc-73jp.json +++ b/advisories/unreviewed/2022/05/GHSA-qpxg-jggc-73jp/GHSA-qpxg-jggc-73jp.json @@ -7,12 +7,8 @@ "CVE-2020-29280" ], "details": "The Victor CMS v1.0 application is vulnerable to SQL injection via the 'search' parameter on the search.php page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qq7j-g886-9qqh/GHSA-qq7j-g886-9qqh.json b/advisories/unreviewed/2022/05/GHSA-qq7j-g886-9qqh/GHSA-qq7j-g886-9qqh.json index befd9e69f89..c16d7ab02b1 100644 --- a/advisories/unreviewed/2022/05/GHSA-qq7j-g886-9qqh/GHSA-qq7j-g886-9qqh.json +++ b/advisories/unreviewed/2022/05/GHSA-qq7j-g886-9qqh/GHSA-qq7j-g886-9qqh.json @@ -7,12 +7,8 @@ "CVE-2020-27898" ], "details": "A denial of service issue was addressed with improved state handling. This issue is fixed in macOS Big Sur 11.0.1. An attacker may be able to bypass Managed Frame Protection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qqr2-jjq7-8fwx/GHSA-qqr2-jjq7-8fwx.json b/advisories/unreviewed/2022/05/GHSA-qqr2-jjq7-8fwx/GHSA-qqr2-jjq7-8fwx.json index f97d8957700..dfebee7cf00 100644 --- a/advisories/unreviewed/2022/05/GHSA-qqr2-jjq7-8fwx/GHSA-qqr2-jjq7-8fwx.json +++ b/advisories/unreviewed/2022/05/GHSA-qqr2-jjq7-8fwx/GHSA-qqr2-jjq7-8fwx.json @@ -7,12 +7,8 @@ "CVE-2020-28210" ], "details": "A CWE-79 Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) vulnerability exists in EcoStruxure Building Operation WebStation V2.0 - V3.1 that could cause an attacker to inject HTML and JavaScript code into the user's browser.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qr9g-4j4m-2f7q/GHSA-qr9g-4j4m-2f7q.json b/advisories/unreviewed/2022/05/GHSA-qr9g-4j4m-2f7q/GHSA-qr9g-4j4m-2f7q.json index 410e3d99c7b..138b3df2095 100644 --- a/advisories/unreviewed/2022/05/GHSA-qr9g-4j4m-2f7q/GHSA-qr9g-4j4m-2f7q.json +++ b/advisories/unreviewed/2022/05/GHSA-qr9g-4j4m-2f7q/GHSA-qr9g-4j4m-2f7q.json @@ -7,12 +7,8 @@ "CVE-2020-25177" ], "details": "WECON PLC Editor Versions 1.3.8 and prior has a stack-based buffer overflow vulnerability has been identified that may allow arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qrxp-3jr9-xcc9/GHSA-qrxp-3jr9-xcc9.json b/advisories/unreviewed/2022/05/GHSA-qrxp-3jr9-xcc9/GHSA-qrxp-3jr9-xcc9.json index 65d854fad4a..42c61038fe9 100644 --- a/advisories/unreviewed/2022/05/GHSA-qrxp-3jr9-xcc9/GHSA-qrxp-3jr9-xcc9.json +++ b/advisories/unreviewed/2022/05/GHSA-qrxp-3jr9-xcc9/GHSA-qrxp-3jr9-xcc9.json @@ -7,12 +7,8 @@ "CVE-2020-4102" ], "details": "HCL Notes is susceptible to a Buffer Overflow vulnerability in DXL due to improper validation of user input. A successful exploit could enable an attacker to crash Notes or execute attacker-controlled code on the client system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qw54-9qj3-wxh7/GHSA-qw54-9qj3-wxh7.json b/advisories/unreviewed/2022/05/GHSA-qw54-9qj3-wxh7/GHSA-qw54-9qj3-wxh7.json index 0ebdfb84a18..d791c4bfaa5 100644 --- a/advisories/unreviewed/2022/05/GHSA-qw54-9qj3-wxh7/GHSA-qw54-9qj3-wxh7.json +++ b/advisories/unreviewed/2022/05/GHSA-qw54-9qj3-wxh7/GHSA-qw54-9qj3-wxh7.json @@ -7,12 +7,8 @@ "CVE-2020-28361" ], "details": "Kamailio before 5.4.0, as used in Sip Express Router (SER) in Sippy Softswitch 4.5 through 5.2 and other products, allows a bypass of a header-removal protection mechanism via whitespace characters. This occurs in the remove_hf function in the Kamailio textops module.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qxjq-5hf8-7hff/GHSA-qxjq-5hf8-7hff.json b/advisories/unreviewed/2022/05/GHSA-qxjq-5hf8-7hff/GHSA-qxjq-5hf8-7hff.json index eaac49d77b2..c680dbac7ec 100644 --- a/advisories/unreviewed/2022/05/GHSA-qxjq-5hf8-7hff/GHSA-qxjq-5hf8-7hff.json +++ b/advisories/unreviewed/2022/05/GHSA-qxjq-5hf8-7hff/GHSA-qxjq-5hf8-7hff.json @@ -7,12 +7,8 @@ "CVE-2020-27349" ], "details": "Aptdaemon performed policykit checks after interacting with potentially untrusted files with elevated privileges. This affected versions prior to 1.1.1+bzr982-0ubuntu34.1, 1.1.1+bzr982-0ubuntu32.3, 1.1.1+bzr982-0ubuntu19.5, 1.1.1+bzr982-0ubuntu14.5.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r23c-vx43-32vg/GHSA-r23c-vx43-32vg.json b/advisories/unreviewed/2022/05/GHSA-r23c-vx43-32vg/GHSA-r23c-vx43-32vg.json index 070dfd8b21f..67fcff46cda 100644 --- a/advisories/unreviewed/2022/05/GHSA-r23c-vx43-32vg/GHSA-r23c-vx43-32vg.json +++ b/advisories/unreviewed/2022/05/GHSA-r23c-vx43-32vg/GHSA-r23c-vx43-32vg.json @@ -7,12 +7,8 @@ "CVE-2020-25474" ], "details": "SimplePHPscripts News Script PHP Pro 2.3 is affected by a Cross Site Scripting (XSS) vulnerability via the editor_name parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r379-mpqq-hxmh/GHSA-r379-mpqq-hxmh.json b/advisories/unreviewed/2022/05/GHSA-r379-mpqq-hxmh/GHSA-r379-mpqq-hxmh.json index bd77954f609..5f7374951e0 100644 --- a/advisories/unreviewed/2022/05/GHSA-r379-mpqq-hxmh/GHSA-r379-mpqq-hxmh.json +++ b/advisories/unreviewed/2022/05/GHSA-r379-mpqq-hxmh/GHSA-r379-mpqq-hxmh.json @@ -7,12 +7,8 @@ "CVE-2020-3482" ], "details": "A vulnerability in the Traversal Using Relays around NAT (TURN) server component of Cisco Expressway software could allow an unauthenticated, remote attacker to bypass security controls and send network traffic to restricted destinations. The vulnerability is due to improper validation of specific connection information by the TURN server within the affected software. An attacker could exploit this issue by sending specially crafted network traffic to the affected software. A successful exploit could allow the attacker to send traffic through the affected software to destinations beyond the application, possibly allowing the attacker to gain unauthorized network access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r3wp-7g4q-74qv/GHSA-r3wp-7g4q-74qv.json b/advisories/unreviewed/2022/05/GHSA-r3wp-7g4q-74qv/GHSA-r3wp-7g4q-74qv.json index 2a99bd29401..92c5ca162dc 100644 --- a/advisories/unreviewed/2022/05/GHSA-r3wp-7g4q-74qv/GHSA-r3wp-7g4q-74qv.json +++ b/advisories/unreviewed/2022/05/GHSA-r3wp-7g4q-74qv/GHSA-r3wp-7g4q-74qv.json @@ -7,12 +7,8 @@ "CVE-2020-7557" ], "details": "A CWE-125 Out-of-bounds Read vulnerability exists in IGSS Definition (Def.exe) version 14.0.0.20247 that could cause Remote Code Execution when malicious CGF (Configuration Group File) file is imported to IGSS Definition.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r454-8j2h-fwqp/GHSA-r454-8j2h-fwqp.json b/advisories/unreviewed/2022/05/GHSA-r454-8j2h-fwqp/GHSA-r454-8j2h-fwqp.json index 2caca17c602..e1420ea4321 100644 --- a/advisories/unreviewed/2022/05/GHSA-r454-8j2h-fwqp/GHSA-r454-8j2h-fwqp.json +++ b/advisories/unreviewed/2022/05/GHSA-r454-8j2h-fwqp/GHSA-r454-8j2h-fwqp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r54x-g9vf-56fv/GHSA-r54x-g9vf-56fv.json b/advisories/unreviewed/2022/05/GHSA-r54x-g9vf-56fv/GHSA-r54x-g9vf-56fv.json index 459adecc249..dee941d7f0f 100644 --- a/advisories/unreviewed/2022/05/GHSA-r54x-g9vf-56fv/GHSA-r54x-g9vf-56fv.json +++ b/advisories/unreviewed/2022/05/GHSA-r54x-g9vf-56fv/GHSA-r54x-g9vf-56fv.json @@ -7,12 +7,8 @@ "CVE-2020-28329" ], "details": "Barco wePresent WiPG-1600W firmware includes a hardcoded API account and password that is discoverable by inspecting the firmware image. A malicious actor could use this password to access authenticated, administrative functions in the API. Affected Version(s): 2.5.1.8, 2.5.0.25, 2.5.0.24, 2.4.1.19.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r6f8-28gg-x96j/GHSA-r6f8-28gg-x96j.json b/advisories/unreviewed/2022/05/GHSA-r6f8-28gg-x96j/GHSA-r6f8-28gg-x96j.json index 6b3833e2765..6d330f7b427 100644 --- a/advisories/unreviewed/2022/05/GHSA-r6f8-28gg-x96j/GHSA-r6f8-28gg-x96j.json +++ b/advisories/unreviewed/2022/05/GHSA-r6f8-28gg-x96j/GHSA-r6f8-28gg-x96j.json @@ -7,12 +7,8 @@ "CVE-2020-28938" ], "details": "OpenClinic version 0.8.2 is affected by a stored XSS vulnerability in lib/Check.php that allows users of the application to force actions on behalf of other users.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r8fq-xfh5-mvgx/GHSA-r8fq-xfh5-mvgx.json b/advisories/unreviewed/2022/05/GHSA-r8fq-xfh5-mvgx/GHSA-r8fq-xfh5-mvgx.json index d2f08191896..74767124aab 100644 --- a/advisories/unreviewed/2022/05/GHSA-r8fq-xfh5-mvgx/GHSA-r8fq-xfh5-mvgx.json +++ b/advisories/unreviewed/2022/05/GHSA-r8fq-xfh5-mvgx/GHSA-r8fq-xfh5-mvgx.json @@ -7,12 +7,8 @@ "CVE-2020-26957" ], "details": "OneCRL was non-functional in the new Firefox for Android due to a missing service initialization. This could result in a failure to enforce some certificate revocations. *Note: This issue only affected Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 83.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rc6c-3j97-8gfm/GHSA-rc6c-3j97-8gfm.json b/advisories/unreviewed/2022/05/GHSA-rc6c-3j97-8gfm/GHSA-rc6c-3j97-8gfm.json index 69db1abf65a..7a26997f794 100644 --- a/advisories/unreviewed/2022/05/GHSA-rc6c-3j97-8gfm/GHSA-rc6c-3j97-8gfm.json +++ b/advisories/unreviewed/2022/05/GHSA-rc6c-3j97-8gfm/GHSA-rc6c-3j97-8gfm.json @@ -7,12 +7,8 @@ "CVE-2020-25473" ], "details": "SimplePHPscripts News Script PHP Pro 2.3 does not properly set the HttpOnly Flag from Session Cookies.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rc6x-59rr-4g8r/GHSA-rc6x-59rr-4g8r.json b/advisories/unreviewed/2022/05/GHSA-rc6x-59rr-4g8r/GHSA-rc6x-59rr-4g8r.json index b19d0a5bc21..46b8bb31218 100644 --- a/advisories/unreviewed/2022/05/GHSA-rc6x-59rr-4g8r/GHSA-rc6x-59rr-4g8r.json +++ b/advisories/unreviewed/2022/05/GHSA-rc6x-59rr-4g8r/GHSA-rc6x-59rr-4g8r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rc9r-x5j2-h9cq/GHSA-rc9r-x5j2-h9cq.json b/advisories/unreviewed/2022/05/GHSA-rc9r-x5j2-h9cq/GHSA-rc9r-x5j2-h9cq.json index efdbc4b1a9f..27afb2aad1c 100644 --- a/advisories/unreviewed/2022/05/GHSA-rc9r-x5j2-h9cq/GHSA-rc9r-x5j2-h9cq.json +++ b/advisories/unreviewed/2022/05/GHSA-rc9r-x5j2-h9cq/GHSA-rc9r-x5j2-h9cq.json @@ -7,12 +7,8 @@ "CVE-2020-7472" ], "details": "An authorization bypass and PHP local-file-include vulnerability in the installation component of SugarCRM before 8.0, 8.0 before 8.0.7, 9.0 before 9.0.4, and 10.0 before 10.0.0 allows for unauthenticated remote code execution against a configured SugarCRM instance via crafted HTTP requests. (This is exploitable even after installation is completed.).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rcr9-98rj-4395/GHSA-rcr9-98rj-4395.json b/advisories/unreviewed/2022/05/GHSA-rcr9-98rj-4395/GHSA-rcr9-98rj-4395.json index e36e2570321..39df98d2a67 100644 --- a/advisories/unreviewed/2022/05/GHSA-rcr9-98rj-4395/GHSA-rcr9-98rj-4395.json +++ b/advisories/unreviewed/2022/05/GHSA-rcr9-98rj-4395/GHSA-rcr9-98rj-4395.json @@ -7,12 +7,8 @@ "CVE-2020-5799" ], "details": "The Eat Spray Love mobile app for both iOS and Android contains a backdoor account that, when modified, allowed privileged access to restricted functionality and to other users' data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rf5f-q4mx-qc4v/GHSA-rf5f-q4mx-qc4v.json b/advisories/unreviewed/2022/05/GHSA-rf5f-q4mx-qc4v/GHSA-rf5f-q4mx-qc4v.json index f9d4ae3d8d6..bd9d7b91540 100644 --- a/advisories/unreviewed/2022/05/GHSA-rf5f-q4mx-qc4v/GHSA-rf5f-q4mx-qc4v.json +++ b/advisories/unreviewed/2022/05/GHSA-rf5f-q4mx-qc4v/GHSA-rf5f-q4mx-qc4v.json @@ -7,12 +7,8 @@ "CVE-2020-29371" ], "details": "An issue was discovered in romfs_dev_read in fs/romfs/storage.c in the Linux kernel before 5.8.4. Uninitialized memory leaks to userspace, aka CID-bcf85fcedfdd.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rg77-jjpv-33p3/GHSA-rg77-jjpv-33p3.json b/advisories/unreviewed/2022/05/GHSA-rg77-jjpv-33p3/GHSA-rg77-jjpv-33p3.json index 3ac44fc9088..6fde846232c 100644 --- a/advisories/unreviewed/2022/05/GHSA-rg77-jjpv-33p3/GHSA-rg77-jjpv-33p3.json +++ b/advisories/unreviewed/2022/05/GHSA-rg77-jjpv-33p3/GHSA-rg77-jjpv-33p3.json @@ -7,12 +7,8 @@ "CVE-2020-27408" ], "details": "OpenSIS Community Edition through 7.6 is affected by incorrect access controls for the file ResetUserInfo.php that allow an unauthenticated attacker to change the password of arbitrary users.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rhcr-gqff-r4v3/GHSA-rhcr-gqff-r4v3.json b/advisories/unreviewed/2022/05/GHSA-rhcr-gqff-r4v3/GHSA-rhcr-gqff-r4v3.json index 6fd1ac337b8..74e6c4024dd 100644 --- a/advisories/unreviewed/2022/05/GHSA-rhcr-gqff-r4v3/GHSA-rhcr-gqff-r4v3.json +++ b/advisories/unreviewed/2022/05/GHSA-rhcr-gqff-r4v3/GHSA-rhcr-gqff-r4v3.json @@ -7,12 +7,8 @@ "CVE-2020-28140" ], "details": "SourceCodester Online Clothing Store 1.0 is affected by an arbitrary file upload via the image upload feature of Products.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rj74-4cv2-w7rf/GHSA-rj74-4cv2-w7rf.json b/advisories/unreviewed/2022/05/GHSA-rj74-4cv2-w7rf/GHSA-rj74-4cv2-w7rf.json index de9679534ff..7525b07f147 100644 --- a/advisories/unreviewed/2022/05/GHSA-rj74-4cv2-w7rf/GHSA-rj74-4cv2-w7rf.json +++ b/advisories/unreviewed/2022/05/GHSA-rj74-4cv2-w7rf/GHSA-rj74-4cv2-w7rf.json @@ -7,12 +7,8 @@ "CVE-2020-5677" ], "details": "Reflected cross-site scripting vulnerability in GROWI v4.0.0 and earlier allows remote attackers to inject arbitrary script via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rj77-cp45-4q8h/GHSA-rj77-cp45-4q8h.json b/advisories/unreviewed/2022/05/GHSA-rj77-cp45-4q8h/GHSA-rj77-cp45-4q8h.json index bc3a0bfa4e2..bbf3f216403 100644 --- a/advisories/unreviewed/2022/05/GHSA-rj77-cp45-4q8h/GHSA-rj77-cp45-4q8h.json +++ b/advisories/unreviewed/2022/05/GHSA-rj77-cp45-4q8h/GHSA-rj77-cp45-4q8h.json @@ -7,12 +7,8 @@ "CVE-2020-2020" ], "details": "An improper handling of exceptional conditions vulnerability in Cortex XDR Agent allows a local authenticated Windows user to create files in the software's internal program directory that prevents the Cortex XDR Agent from starting. The exceptional condition is persistent and prevents Cortex XDR Agent from starting when the software or machine is restarted. This issue impacts: Cortex XDR Agent 5.0 versions earlier than 5.0.10; Cortex XDR Agent 6.1 versions earlier than 6.1.7; Cortex XDR Agent 7.0 versions earlier than 7.0.3; Cortex XDR Agent 7.1 versions earlier than 7.1.2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rqcp-6gmj-fpgx/GHSA-rqcp-6gmj-fpgx.json b/advisories/unreviewed/2022/05/GHSA-rqcp-6gmj-fpgx/GHSA-rqcp-6gmj-fpgx.json index ca7532d9bb3..8b44014a99d 100644 --- a/advisories/unreviewed/2022/05/GHSA-rqcp-6gmj-fpgx/GHSA-rqcp-6gmj-fpgx.json +++ b/advisories/unreviewed/2022/05/GHSA-rqcp-6gmj-fpgx/GHSA-rqcp-6gmj-fpgx.json @@ -7,12 +7,8 @@ "CVE-2019-16958" ], "details": "Cross-site Scripting (XSS) vulnerability in SolarWinds Web Help Desk 12.7.0 allows attacker to inject arbitrary web script or HTML via Location Name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rrv5-9g7j-vq28/GHSA-rrv5-9g7j-vq28.json b/advisories/unreviewed/2022/05/GHSA-rrv5-9g7j-vq28/GHSA-rrv5-9g7j-vq28.json index 697bac8c89c..110702866eb 100644 --- a/advisories/unreviewed/2022/05/GHSA-rrv5-9g7j-vq28/GHSA-rrv5-9g7j-vq28.json +++ b/advisories/unreviewed/2022/05/GHSA-rrv5-9g7j-vq28/GHSA-rrv5-9g7j-vq28.json @@ -7,12 +7,8 @@ "CVE-2020-25472" ], "details": "SimplePHPscripts News Script PHP Pro 2.3 is affected by a Cross Site Request Forgery (CSRF) vulnerability, which allows attackers to add new users.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rv2g-592x-h2qq/GHSA-rv2g-592x-h2qq.json b/advisories/unreviewed/2022/05/GHSA-rv2g-592x-h2qq/GHSA-rv2g-592x-h2qq.json index ec1d044da61..70bc3a18193 100644 --- a/advisories/unreviewed/2022/05/GHSA-rv2g-592x-h2qq/GHSA-rv2g-592x-h2qq.json +++ b/advisories/unreviewed/2022/05/GHSA-rv2g-592x-h2qq/GHSA-rv2g-592x-h2qq.json @@ -7,12 +7,8 @@ "CVE-2020-28687" ], "details": "The edit profile functionality in ARTWORKS GALLERY IN PHP, CSS, JAVASCRIPT, AND MYSQL 1.0 allows remote attackers to upload arbitrary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rxgq-mf23-45xc/GHSA-rxgq-mf23-45xc.json b/advisories/unreviewed/2022/05/GHSA-rxgq-mf23-45xc/GHSA-rxgq-mf23-45xc.json index 56a81c5ce4b..1effac12c50 100644 --- a/advisories/unreviewed/2022/05/GHSA-rxgq-mf23-45xc/GHSA-rxgq-mf23-45xc.json +++ b/advisories/unreviewed/2022/05/GHSA-rxgq-mf23-45xc/GHSA-rxgq-mf23-45xc.json @@ -7,12 +7,8 @@ "CVE-2020-24297" ], "details": "httpd on TP-Link TL-WPA4220 devices (versions 2 through 4) allows remote authenticated users to execute arbitrary OS commands by sending crafted POST requests to the endpoint /admin/powerline. Fixed version: TL-WPA4220(EU)_V4_201023", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rxjr-qfmr-c739/GHSA-rxjr-qfmr-c739.json b/advisories/unreviewed/2022/05/GHSA-rxjr-qfmr-c739/GHSA-rxjr-qfmr-c739.json index fed9a615c0c..c061e817579 100644 --- a/advisories/unreviewed/2022/05/GHSA-rxjr-qfmr-c739/GHSA-rxjr-qfmr-c739.json +++ b/advisories/unreviewed/2022/05/GHSA-rxjr-qfmr-c739/GHSA-rxjr-qfmr-c739.json @@ -7,12 +7,8 @@ "CVE-2019-7198" ], "details": "This command injection vulnerability allows attackers to execute arbitrary commands in a compromised application. QNAP have already fixed this vulnerability in the following versions of QTS and QuTS hero. QuTS hero h4.5.1.1472 build 20201031 and later QTS 4.5.1.1456 build 20201015 and later QTS 4.4.3.1354 build 20200702 and later", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rxwh-cw27-c33v/GHSA-rxwh-cw27-c33v.json b/advisories/unreviewed/2022/05/GHSA-rxwh-cw27-c33v/GHSA-rxwh-cw27-c33v.json index 509f097a174..13c652a63f5 100644 --- a/advisories/unreviewed/2022/05/GHSA-rxwh-cw27-c33v/GHSA-rxwh-cw27-c33v.json +++ b/advisories/unreviewed/2022/05/GHSA-rxwh-cw27-c33v/GHSA-rxwh-cw27-c33v.json @@ -7,12 +7,8 @@ "CVE-2020-29383" ], "details": "An issue was discovered on V-SOL V1600D4L V1.01.49 and V1600D-MINI V1.01.48 OLT devices. A hardcoded RSA private key (specific to V1600D4L and V1600D-MINI) is contained in the firmware images.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v36p-6rf8-wx94/GHSA-v36p-6rf8-wx94.json b/advisories/unreviewed/2022/05/GHSA-v36p-6rf8-wx94/GHSA-v36p-6rf8-wx94.json index 3a0fc28ddc9..f2389f9381d 100644 --- a/advisories/unreviewed/2022/05/GHSA-v36p-6rf8-wx94/GHSA-v36p-6rf8-wx94.json +++ b/advisories/unreviewed/2022/05/GHSA-v36p-6rf8-wx94/GHSA-v36p-6rf8-wx94.json @@ -7,12 +7,8 @@ "CVE-2020-8276" ], "details": "The implementation of Brave Desktop's privacy-preserving analytics system (P3A) between 1.1 and 1.18.35 logged the timestamp of when the user last opened an incognito window, including Tor windows. The intended behavior was to log the timestamp for incognito windows excluding Tor windows. Note that if a user has P3A enabled, the timestamp is not sent to Brave's server, but rather a value from:Used in last 24hUsed in last week but not 24hUsed in last 28 days but not weekEver used but not in last 28 daysNever usedThe privacy risk is low because a local attacker with disk access cannot tell if the timestamp corresponds to a Tor window or a non-Tor incognito window.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v37v-92mh-7r2f/GHSA-v37v-92mh-7r2f.json b/advisories/unreviewed/2022/05/GHSA-v37v-92mh-7r2f/GHSA-v37v-92mh-7r2f.json index b7eafc17059..6025201ff33 100644 --- a/advisories/unreviewed/2022/05/GHSA-v37v-92mh-7r2f/GHSA-v37v-92mh-7r2f.json +++ b/advisories/unreviewed/2022/05/GHSA-v37v-92mh-7r2f/GHSA-v37v-92mh-7r2f.json @@ -7,12 +7,8 @@ "CVE-2020-29377" ], "details": "An issue was discovered on V-SOL V1600D V2.03.69 OLT devices. The string K0LTdi@gnos312$ is compared to the password provided by the the remote attacker. If it matches, access is provided.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v3h5-8p7p-2vrg/GHSA-v3h5-8p7p-2vrg.json b/advisories/unreviewed/2022/05/GHSA-v3h5-8p7p-2vrg/GHSA-v3h5-8p7p-2vrg.json index e3615c03f29..d935bd6eba2 100644 --- a/advisories/unreviewed/2022/05/GHSA-v3h5-8p7p-2vrg/GHSA-v3h5-8p7p-2vrg.json +++ b/advisories/unreviewed/2022/05/GHSA-v3h5-8p7p-2vrg/GHSA-v3h5-8p7p-2vrg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v3vp-qqmj-ggrj/GHSA-v3vp-qqmj-ggrj.json b/advisories/unreviewed/2022/05/GHSA-v3vp-qqmj-ggrj/GHSA-v3vp-qqmj-ggrj.json index 94ad97fe72a..1b7bac1ea19 100644 --- a/advisories/unreviewed/2022/05/GHSA-v3vp-qqmj-ggrj/GHSA-v3vp-qqmj-ggrj.json +++ b/advisories/unreviewed/2022/05/GHSA-v3vp-qqmj-ggrj/GHSA-v3vp-qqmj-ggrj.json @@ -7,12 +7,8 @@ "CVE-2020-27587" ], "details": "Quick Heal Total Security before 19.0 allows attackers with local admin rights to obtain access to files in the File Vault via a brute-force attack on the password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v4w4-xxpq-3p77/GHSA-v4w4-xxpq-3p77.json b/advisories/unreviewed/2022/05/GHSA-v4w4-xxpq-3p77/GHSA-v4w4-xxpq-3p77.json index 0f6851736c3..8a56a501081 100644 --- a/advisories/unreviewed/2022/05/GHSA-v4w4-xxpq-3p77/GHSA-v4w4-xxpq-3p77.json +++ b/advisories/unreviewed/2022/05/GHSA-v4w4-xxpq-3p77/GHSA-v4w4-xxpq-3p77.json @@ -7,12 +7,8 @@ "CVE-2020-28915" ], "details": "A buffer over-read (at the framebuffer layer) in the fbcon code in the Linux kernel before 5.8.15 could be used by local attackers to read kernel memory, aka CID-6735b4632def.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v64j-j7w9-c2vj/GHSA-v64j-j7w9-c2vj.json b/advisories/unreviewed/2022/05/GHSA-v64j-j7w9-c2vj/GHSA-v64j-j7w9-c2vj.json index 650201530e7..e98ec0bd4b2 100644 --- a/advisories/unreviewed/2022/05/GHSA-v64j-j7w9-c2vj/GHSA-v64j-j7w9-c2vj.json +++ b/advisories/unreviewed/2022/05/GHSA-v64j-j7w9-c2vj/GHSA-v64j-j7w9-c2vj.json @@ -7,12 +7,8 @@ "CVE-2020-27127" ], "details": "Multiple vulnerabilities in Cisco Jabber for Windows, Jabber for MacOS, and Jabber for mobile platforms could allow an attacker to execute arbitrary programs on the underlying operating system (OS) with elevated privileges or gain access to sensitive information. For more information about these vulnerabilities, see the Details section of this advisory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v6vj-vcw7-qf3c/GHSA-v6vj-vcw7-qf3c.json b/advisories/unreviewed/2022/05/GHSA-v6vj-vcw7-qf3c/GHSA-v6vj-vcw7-qf3c.json index f8331f36864..0d3275f7463 100644 --- a/advisories/unreviewed/2022/05/GHSA-v6vj-vcw7-qf3c/GHSA-v6vj-vcw7-qf3c.json +++ b/advisories/unreviewed/2022/05/GHSA-v6vj-vcw7-qf3c/GHSA-v6vj-vcw7-qf3c.json @@ -7,12 +7,8 @@ "CVE-2020-28209" ], "details": "A CWE-428 Windows Unquoted Search Path vulnerability exists in EcoStruxure Building Operation Enterprise Server installer V1.9 - V3.1 and Enterprise Central installer V2.0 - V3.1 that could cause any local Windows user who has write permission on at least one of the subfolders of the Connect Agent service binary path, being able to gain the privilege of the user who started the service. By default, the Enterprise Server and Enterprise Central is always installed at a location requiring Administrator privileges so the vulnerability is only valid if the application has been installed on a non-secure location.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v6w2-2rvc-2pmq/GHSA-v6w2-2rvc-2pmq.json b/advisories/unreviewed/2022/05/GHSA-v6w2-2rvc-2pmq/GHSA-v6w2-2rvc-2pmq.json index 8e017c7f5e0..c3157a95425 100644 --- a/advisories/unreviewed/2022/05/GHSA-v6w2-2rvc-2pmq/GHSA-v6w2-2rvc-2pmq.json +++ b/advisories/unreviewed/2022/05/GHSA-v6w2-2rvc-2pmq/GHSA-v6w2-2rvc-2pmq.json @@ -7,12 +7,8 @@ "CVE-2020-4003" ], "details": "VMware SD-WAN Orchestrator 3.3.2 prior to 3.3.2 P3, 3.4.x prior to 3.4.4, and 4.0.x prior to 4.0.1 was found to be vulnerable to SQL-injection attacks allowing for potential information disclosure. An authenticated SD-WAN Orchestrator user may inject code into SQL queries which may lead to information disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v7m2-rcm9-7785/GHSA-v7m2-rcm9-7785.json b/advisories/unreviewed/2022/05/GHSA-v7m2-rcm9-7785/GHSA-v7m2-rcm9-7785.json index 0e870ed9536..45714348336 100644 --- a/advisories/unreviewed/2022/05/GHSA-v7m2-rcm9-7785/GHSA-v7m2-rcm9-7785.json +++ b/advisories/unreviewed/2022/05/GHSA-v7m2-rcm9-7785/GHSA-v7m2-rcm9-7785.json @@ -7,12 +7,8 @@ "CVE-2020-28993" ], "details": "A Directory Traversal vulnerability exists in ATX miniCMTS200a Broadband Gateway through 2.0 and Pico CMTS through 2.0. Successful exploitation of this vulnerability would allow an unauthenticated attacker to retrieve administrator credentials by sending a malicious POST request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v7xj-x69j-92c7/GHSA-v7xj-x69j-92c7.json b/advisories/unreviewed/2022/05/GHSA-v7xj-x69j-92c7/GHSA-v7xj-x69j-92c7.json index b5429662a6a..92b166f3be7 100644 --- a/advisories/unreviewed/2022/05/GHSA-v7xj-x69j-92c7/GHSA-v7xj-x69j-92c7.json +++ b/advisories/unreviewed/2022/05/GHSA-v7xj-x69j-92c7/GHSA-v7xj-x69j-92c7.json @@ -7,12 +7,8 @@ "CVE-2020-27755" ], "details": "in SetImageExtent() of /MagickCore/image.c, an incorrect image depth size can cause a memory leak because the code which checks for the proper image depth size does not reset the size in the event there is an invalid size. The patch resets the depth to a proper size before throwing an exception. The memory leak can be triggered by a crafted input file that is processed by ImageMagick and could cause an impact to application reliability, such as denial of service. This flaw affects ImageMagick versions prior to 7.0.9-0.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v865-wgvp-j2q9/GHSA-v865-wgvp-j2q9.json b/advisories/unreviewed/2022/05/GHSA-v865-wgvp-j2q9/GHSA-v865-wgvp-j2q9.json index 055daa54a41..4c63fe6de28 100644 --- a/advisories/unreviewed/2022/05/GHSA-v865-wgvp-j2q9/GHSA-v865-wgvp-j2q9.json +++ b/advisories/unreviewed/2022/05/GHSA-v865-wgvp-j2q9/GHSA-v865-wgvp-j2q9.json @@ -7,12 +7,8 @@ "CVE-2020-26836" ], "details": "SAP Solution Manager (Trace Analysis), version - 720, allows for misuse of a parameter in the application URL leading to Open Redirect vulnerability, an attacker can enter a link to malicious site which could trick the user to enter credentials or download malicious software, as a parameter in the application URL and share it with the end user who could potentially become a victim of the attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v8gh-pvhq-x9gh/GHSA-v8gh-pvhq-x9gh.json b/advisories/unreviewed/2022/05/GHSA-v8gh-pvhq-x9gh/GHSA-v8gh-pvhq-x9gh.json index ee47ac0a10c..e9802b80cd4 100644 --- a/advisories/unreviewed/2022/05/GHSA-v8gh-pvhq-x9gh/GHSA-v8gh-pvhq-x9gh.json +++ b/advisories/unreviewed/2022/05/GHSA-v8gh-pvhq-x9gh/GHSA-v8gh-pvhq-x9gh.json @@ -7,12 +7,8 @@ "CVE-2020-12593" ], "details": "Symantec Endpoint Detection & Response, prior to 4.5, may be susceptible to an information disclosure issue, which is a type of vulnerability that could potentially allow unauthorized access to data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v9wv-gjqw-3pfr/GHSA-v9wv-gjqw-3pfr.json b/advisories/unreviewed/2022/05/GHSA-v9wv-gjqw-3pfr/GHSA-v9wv-gjqw-3pfr.json index 223b5905760..2891799300e 100644 --- a/advisories/unreviewed/2022/05/GHSA-v9wv-gjqw-3pfr/GHSA-v9wv-gjqw-3pfr.json +++ b/advisories/unreviewed/2022/05/GHSA-v9wv-gjqw-3pfr/GHSA-v9wv-gjqw-3pfr.json @@ -7,12 +7,8 @@ "CVE-2020-25199" ], "details": "A heap-based buffer overflow vulnerability exists within the WECON LeviStudioU Release Build 2019-09-21 and prior when processing project files. Opening a specially crafted project file could allow an attacker to exploit and execute code under the privileges of the application.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vc2p-5mxr-hx98/GHSA-vc2p-5mxr-hx98.json b/advisories/unreviewed/2022/05/GHSA-vc2p-5mxr-hx98/GHSA-vc2p-5mxr-hx98.json index 8b4b1e277da..6ad3034c1cb 100644 --- a/advisories/unreviewed/2022/05/GHSA-vc2p-5mxr-hx98/GHSA-vc2p-5mxr-hx98.json +++ b/advisories/unreviewed/2022/05/GHSA-vc2p-5mxr-hx98/GHSA-vc2p-5mxr-hx98.json @@ -7,12 +7,8 @@ "CVE-2020-3392" ], "details": "A vulnerability in the API of Cisco IoT Field Network Director (FND) could allow an unauthenticated, remote attacker to view sensitive information on an affected system. The vulnerability exists because the affected software does not properly authenticate API calls. An attacker could exploit this vulnerability by sending API requests to an affected system. A successful exploit could allow the attacker to view sensitive information on the affected system, including information about the devices that the system manages, without authentication.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vcv7-328f-35m5/GHSA-vcv7-328f-35m5.json b/advisories/unreviewed/2022/05/GHSA-vcv7-328f-35m5/GHSA-vcv7-328f-35m5.json index fed84515c0a..1c34de7281b 100644 --- a/advisories/unreviewed/2022/05/GHSA-vcv7-328f-35m5/GHSA-vcv7-328f-35m5.json +++ b/advisories/unreviewed/2022/05/GHSA-vcv7-328f-35m5/GHSA-vcv7-328f-35m5.json @@ -7,12 +7,8 @@ "CVE-2020-29572" ], "details": "app/View/Elements/genericElements/SingleViews/Fields/genericField.ctp in MISP 2.4.135 has XSS via the authkey comment field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vf5j-54pj-5cc2/GHSA-vf5j-54pj-5cc2.json b/advisories/unreviewed/2022/05/GHSA-vf5j-54pj-5cc2/GHSA-vf5j-54pj-5cc2.json index 96f8b9e01bc..b6f52d066ca 100644 --- a/advisories/unreviewed/2022/05/GHSA-vf5j-54pj-5cc2/GHSA-vf5j-54pj-5cc2.json +++ b/advisories/unreviewed/2022/05/GHSA-vf5j-54pj-5cc2/GHSA-vf5j-54pj-5cc2.json @@ -7,12 +7,8 @@ "CVE-2020-8694" ], "details": "Insufficient access control in the Linux kernel driver for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vf79-fxj5-j7c4/GHSA-vf79-fxj5-j7c4.json b/advisories/unreviewed/2022/05/GHSA-vf79-fxj5-j7c4/GHSA-vf79-fxj5-j7c4.json index 40b6760c2b4..ac8d10aeeab 100644 --- a/advisories/unreviewed/2022/05/GHSA-vf79-fxj5-j7c4/GHSA-vf79-fxj5-j7c4.json +++ b/advisories/unreviewed/2022/05/GHSA-vf79-fxj5-j7c4/GHSA-vf79-fxj5-j7c4.json @@ -7,12 +7,8 @@ "CVE-2020-3984" ], "details": "The SD-WAN Orchestrator 3.3.2 prior to 3.3.2 P3 and 3.4.x prior to 3.4.4 does not apply correct input validation which allows for SQL-injection. An authenticated SD-WAN Orchestrator user may exploit a vulnerable API call using specially crafted SQL queries which may lead to unauthorized data access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vf9r-c7v2-7275/GHSA-vf9r-c7v2-7275.json b/advisories/unreviewed/2022/05/GHSA-vf9r-c7v2-7275/GHSA-vf9r-c7v2-7275.json index dc62b357098..8bc64c7c253 100644 --- a/advisories/unreviewed/2022/05/GHSA-vf9r-c7v2-7275/GHSA-vf9r-c7v2-7275.json +++ b/advisories/unreviewed/2022/05/GHSA-vf9r-c7v2-7275/GHSA-vf9r-c7v2-7275.json @@ -7,12 +7,8 @@ "CVE-2020-25537" ], "details": "File upload vulnerability exists in UCMS 1.5.0, and the attacker can take advantage of this vulnerability to obtain server management permission.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vfg6-2jp3-7c54/GHSA-vfg6-2jp3-7c54.json b/advisories/unreviewed/2022/05/GHSA-vfg6-2jp3-7c54/GHSA-vfg6-2jp3-7c54.json index af1ef9cd1a5..9203ee301e4 100644 --- a/advisories/unreviewed/2022/05/GHSA-vfg6-2jp3-7c54/GHSA-vfg6-2jp3-7c54.json +++ b/advisories/unreviewed/2022/05/GHSA-vfg6-2jp3-7c54/GHSA-vfg6-2jp3-7c54.json @@ -7,12 +7,8 @@ "CVE-2020-21665" ], "details": "In fastadmin V1.0.0.20191212_beta, when a user with administrator rights has logged in, a malicious parameter can be passed for SQL injection in URL /admin/ajax/weigh.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vgvv-hj3p-69r2/GHSA-vgvv-hj3p-69r2.json b/advisories/unreviewed/2022/05/GHSA-vgvv-hj3p-69r2/GHSA-vgvv-hj3p-69r2.json index ba7f10095f5..c52c68a287a 100644 --- a/advisories/unreviewed/2022/05/GHSA-vgvv-hj3p-69r2/GHSA-vgvv-hj3p-69r2.json +++ b/advisories/unreviewed/2022/05/GHSA-vgvv-hj3p-69r2/GHSA-vgvv-hj3p-69r2.json @@ -7,12 +7,8 @@ "CVE-2020-26551" ], "details": "An issue was discovered in Aviatrix Controller before R5.3.1151. Encrypted key values are stored in a readable file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vj42-7xv9-r62v/GHSA-vj42-7xv9-r62v.json b/advisories/unreviewed/2022/05/GHSA-vj42-7xv9-r62v/GHSA-vj42-7xv9-r62v.json index e2c4482fb53..f5be334e47b 100644 --- a/advisories/unreviewed/2022/05/GHSA-vj42-7xv9-r62v/GHSA-vj42-7xv9-r62v.json +++ b/advisories/unreviewed/2022/05/GHSA-vj42-7xv9-r62v/GHSA-vj42-7xv9-r62v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vjmg-qh6v-526r/GHSA-vjmg-qh6v-526r.json b/advisories/unreviewed/2022/05/GHSA-vjmg-qh6v-526r/GHSA-vjmg-qh6v-526r.json index ce3c763c6ae..4357f4d1013 100644 --- a/advisories/unreviewed/2022/05/GHSA-vjmg-qh6v-526r/GHSA-vjmg-qh6v-526r.json +++ b/advisories/unreviewed/2022/05/GHSA-vjmg-qh6v-526r/GHSA-vjmg-qh6v-526r.json @@ -7,12 +7,8 @@ "CVE-2020-29144" ], "details": "In Ericsson BSCS iX R18 Billing & Rating iX R18, MX is a web base module in BSCS iX that is vulnerable to stored XSS via an Alert Dashboard comment. In most test cases, session hijacking was also possible by utilizing the XSS vulnerability. This potentially allows for full account takeover, or exploiting admins' browsers by using the beef framework.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vjxv-h84w-vj5j/GHSA-vjxv-h84w-vj5j.json b/advisories/unreviewed/2022/05/GHSA-vjxv-h84w-vj5j/GHSA-vjxv-h84w-vj5j.json index 0d3a3cee48d..70b62484356 100644 --- a/advisories/unreviewed/2022/05/GHSA-vjxv-h84w-vj5j/GHSA-vjxv-h84w-vj5j.json +++ b/advisories/unreviewed/2022/05/GHSA-vjxv-h84w-vj5j/GHSA-vjxv-h84w-vj5j.json @@ -7,12 +7,8 @@ "CVE-2020-28942" ], "details": "An issue exists in PrimeKey EJBCA before 7.4.3 when enrolling with EST while proxied through an RA over the Peers protocol. As a part of EJBCA's domain security model, the peer connector allows the restriction of client certificates (for the RA, not the end user) to a limited set of allowed CAs, thus restricting the accessibility of that RA to the rights it has within a specific role. While this works for other protocols such as CMP, it was found that the EJBCA enrollment over an EST implementation bypasses this check, allowing enrollment with a valid client certificate through any functioning and authenticated RA connected to the CA. NOTE: an attacker must already have a trusted client certificate and authorization to enroll against the targeted CA.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vp99-jwhh-r3xw/GHSA-vp99-jwhh-r3xw.json b/advisories/unreviewed/2022/05/GHSA-vp99-jwhh-r3xw/GHSA-vp99-jwhh-r3xw.json index b6346213a48..b147ba1a8d6 100644 --- a/advisories/unreviewed/2022/05/GHSA-vp99-jwhh-r3xw/GHSA-vp99-jwhh-r3xw.json +++ b/advisories/unreviewed/2022/05/GHSA-vp99-jwhh-r3xw/GHSA-vp99-jwhh-r3xw.json @@ -7,12 +7,8 @@ "CVE-2020-25693" ], "details": "A flaw was found in CImg in versions prior to 2.9.3. Integer overflows leading to heap buffer overflows in load_pnm() can be triggered by a specially crafted input file processed by CImg, which can lead to an impact to application availability or data integrity.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vppj-q42f-96w5/GHSA-vppj-q42f-96w5.json b/advisories/unreviewed/2022/05/GHSA-vppj-q42f-96w5/GHSA-vppj-q42f-96w5.json index 7498843956c..e7540fd0101 100644 --- a/advisories/unreviewed/2022/05/GHSA-vppj-q42f-96w5/GHSA-vppj-q42f-96w5.json +++ b/advisories/unreviewed/2022/05/GHSA-vppj-q42f-96w5/GHSA-vppj-q42f-96w5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vq9w-f7pp-xwj5/GHSA-vq9w-f7pp-xwj5.json b/advisories/unreviewed/2022/05/GHSA-vq9w-f7pp-xwj5/GHSA-vq9w-f7pp-xwj5.json index 2aeea2fcdfa..92cfc6ec6db 100644 --- a/advisories/unreviewed/2022/05/GHSA-vq9w-f7pp-xwj5/GHSA-vq9w-f7pp-xwj5.json +++ b/advisories/unreviewed/2022/05/GHSA-vq9w-f7pp-xwj5/GHSA-vq9w-f7pp-xwj5.json @@ -7,12 +7,8 @@ "CVE-2020-29135" ], "details": "cPanel before 90.0.17 has multiple instances of URL parameter injection (SEC-567).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vqfr-3pj8-54gm/GHSA-vqfr-3pj8-54gm.json b/advisories/unreviewed/2022/05/GHSA-vqfr-3pj8-54gm/GHSA-vqfr-3pj8-54gm.json index 2abb77d4045..f7054c6ec8e 100644 --- a/advisories/unreviewed/2022/05/GHSA-vqfr-3pj8-54gm/GHSA-vqfr-3pj8-54gm.json +++ b/advisories/unreviewed/2022/05/GHSA-vqfr-3pj8-54gm/GHSA-vqfr-3pj8-54gm.json @@ -7,12 +7,8 @@ "CVE-2020-13348" ], "details": "An issue has been discovered in GitLab EE affecting all versions starting from 10.2. Required CODEOWNERS approval could be bypassed by targeting a branch without the CODEOWNERS file. Affected versions are >=10.2, <13.3.9,>=13.4, <13.4.5,>=13.5, <13.5.2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vqgg-ch69-x69v/GHSA-vqgg-ch69-x69v.json b/advisories/unreviewed/2022/05/GHSA-vqgg-ch69-x69v/GHSA-vqgg-ch69-x69v.json index 77b6ab86713..f753a1f7a44 100644 --- a/advisories/unreviewed/2022/05/GHSA-vqgg-ch69-x69v/GHSA-vqgg-ch69-x69v.json +++ b/advisories/unreviewed/2022/05/GHSA-vqgg-ch69-x69v/GHSA-vqgg-ch69-x69v.json @@ -7,12 +7,8 @@ "CVE-2020-28974" ], "details": "A slab-out-of-bounds read in fbcon in the Linux kernel before 5.9.7 could be used by local attackers to read privileged information or potentially crash the kernel, aka CID-3c4e0dff2095. This occurs because KD_FONT_OP_COPY in drivers/tty/vt/vt.c can be used for manipulations such as font height.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vqmf-2v99-hhqq/GHSA-vqmf-2v99-hhqq.json b/advisories/unreviewed/2022/05/GHSA-vqmf-2v99-hhqq/GHSA-vqmf-2v99-hhqq.json index 706d1c45f4d..8b302a47835 100644 --- a/advisories/unreviewed/2022/05/GHSA-vqmf-2v99-hhqq/GHSA-vqmf-2v99-hhqq.json +++ b/advisories/unreviewed/2022/05/GHSA-vqmf-2v99-hhqq/GHSA-vqmf-2v99-hhqq.json @@ -7,12 +7,8 @@ "CVE-2020-7572" ], "details": "A CWE-611 Improper Restriction of XML External Entity Reference vulnerability exists in EcoStruxure Building Operation WebReports V1.9 - V3.1 that could cause an authenticated remote user being able to inject arbitrary XML code and obtain disclosure of confidential data, denial of service, server side request forgery due to improper configuration of the XML parser.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vqpw-67xr-mj7x/GHSA-vqpw-67xr-mj7x.json b/advisories/unreviewed/2022/05/GHSA-vqpw-67xr-mj7x/GHSA-vqpw-67xr-mj7x.json index b6ad0388c06..00bcbf5ff4a 100644 --- a/advisories/unreviewed/2022/05/GHSA-vqpw-67xr-mj7x/GHSA-vqpw-67xr-mj7x.json +++ b/advisories/unreviewed/2022/05/GHSA-vqpw-67xr-mj7x/GHSA-vqpw-67xr-mj7x.json @@ -7,12 +7,8 @@ "CVE-2020-25461" ], "details": "Invalid Memory Access in the fxProxyGetter function in moddable/xs/sources/xsProxy.c in Moddable SDK before OS200908 causes a denial of service (SEGV).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vrx9-j28q-wm7x/GHSA-vrx9-j28q-wm7x.json b/advisories/unreviewed/2022/05/GHSA-vrx9-j28q-wm7x/GHSA-vrx9-j28q-wm7x.json index 892b08a2a2e..01caa54c769 100644 --- a/advisories/unreviewed/2022/05/GHSA-vrx9-j28q-wm7x/GHSA-vrx9-j28q-wm7x.json +++ b/advisories/unreviewed/2022/05/GHSA-vrx9-j28q-wm7x/GHSA-vrx9-j28q-wm7x.json @@ -7,12 +7,8 @@ "CVE-2020-28864" ], "details": "Buffer overflow in WinSCP 5.17.8 allows a malicious FTP server to cause a denial of service or possibly have other unspecified impact via a long file name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vv27-2433-5mq8/GHSA-vv27-2433-5mq8.json b/advisories/unreviewed/2022/05/GHSA-vv27-2433-5mq8/GHSA-vv27-2433-5mq8.json index 6a4fa661678..ae065e772c5 100644 --- a/advisories/unreviewed/2022/05/GHSA-vv27-2433-5mq8/GHSA-vv27-2433-5mq8.json +++ b/advisories/unreviewed/2022/05/GHSA-vv27-2433-5mq8/GHSA-vv27-2433-5mq8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vw24-c2gm-hpjc/GHSA-vw24-c2gm-hpjc.json b/advisories/unreviewed/2022/05/GHSA-vw24-c2gm-hpjc/GHSA-vw24-c2gm-hpjc.json index 302d3910668..191419d9cdb 100644 --- a/advisories/unreviewed/2022/05/GHSA-vw24-c2gm-hpjc/GHSA-vw24-c2gm-hpjc.json +++ b/advisories/unreviewed/2022/05/GHSA-vw24-c2gm-hpjc/GHSA-vw24-c2gm-hpjc.json @@ -7,12 +7,8 @@ "CVE-2020-7556" ], "details": "A CWE-787 Out-of-bounds Write vulnerability exists in IGSS Definition (Def.exe) version 14.0.0.20247 that could cause Remote Code Execution when malicious CGF (Configuration Group File) file is imported to IGSS Definition.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vw8x-xjwp-7888/GHSA-vw8x-xjwp-7888.json b/advisories/unreviewed/2022/05/GHSA-vw8x-xjwp-7888/GHSA-vw8x-xjwp-7888.json index 6107631f89a..84c737f8920 100644 --- a/advisories/unreviewed/2022/05/GHSA-vw8x-xjwp-7888/GHSA-vw8x-xjwp-7888.json +++ b/advisories/unreviewed/2022/05/GHSA-vw8x-xjwp-7888/GHSA-vw8x-xjwp-7888.json @@ -7,12 +7,8 @@ "CVE-2020-26953" ], "details": "It was possible to cause the browser to enter fullscreen mode without displaying the security UI; thus making it possible to attempt a phishing attack or otherwise confuse the user. This vulnerability affects Firefox < 83, Firefox ESR < 78.5, and Thunderbird < 78.5.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vwfv-p8p3-m4r7/GHSA-vwfv-p8p3-m4r7.json b/advisories/unreviewed/2022/05/GHSA-vwfv-p8p3-m4r7/GHSA-vwfv-p8p3-m4r7.json index cd32a01c605..7538deff8b5 100644 --- a/advisories/unreviewed/2022/05/GHSA-vwfv-p8p3-m4r7/GHSA-vwfv-p8p3-m4r7.json +++ b/advisories/unreviewed/2022/05/GHSA-vwfv-p8p3-m4r7/GHSA-vwfv-p8p3-m4r7.json @@ -7,12 +7,8 @@ "CVE-2020-1778" ], "details": "When OTRS uses multiple backends for user authentication (with LDAP), agents are able to login even if the account is set to invalid. This issue affects OTRS; 8.0.9 and prior versions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vxgg-6fp7-rx59/GHSA-vxgg-6fp7-rx59.json b/advisories/unreviewed/2022/05/GHSA-vxgg-6fp7-rx59/GHSA-vxgg-6fp7-rx59.json index 4525f3cd14e..8a3b834fc99 100644 --- a/advisories/unreviewed/2022/05/GHSA-vxgg-6fp7-rx59/GHSA-vxgg-6fp7-rx59.json +++ b/advisories/unreviewed/2022/05/GHSA-vxgg-6fp7-rx59/GHSA-vxgg-6fp7-rx59.json @@ -7,12 +7,8 @@ "CVE-2020-27991" ], "details": "Nagios XI before 5.7.5 is vulnerable to XSS in Account Information (Email field).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w2p3-47c3-r8h2/GHSA-w2p3-47c3-r8h2.json b/advisories/unreviewed/2022/05/GHSA-w2p3-47c3-r8h2/GHSA-w2p3-47c3-r8h2.json index 0f397943f36..dc82132c40d 100644 --- a/advisories/unreviewed/2022/05/GHSA-w2p3-47c3-r8h2/GHSA-w2p3-47c3-r8h2.json +++ b/advisories/unreviewed/2022/05/GHSA-w2p3-47c3-r8h2/GHSA-w2p3-47c3-r8h2.json @@ -7,12 +7,8 @@ "CVE-2020-28954" ], "details": "web/controllers/ApiController.groovy in BigBlueButton before 2.2.29 lacks certain parameter sanitization, as demonstrated by accepting control characters in a user name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w3f4-m5x7-jjxh/GHSA-w3f4-m5x7-jjxh.json b/advisories/unreviewed/2022/05/GHSA-w3f4-m5x7-jjxh/GHSA-w3f4-m5x7-jjxh.json index 5ce505b45e6..72ee587c237 100644 --- a/advisories/unreviewed/2022/05/GHSA-w3f4-m5x7-jjxh/GHSA-w3f4-m5x7-jjxh.json +++ b/advisories/unreviewed/2022/05/GHSA-w3f4-m5x7-jjxh/GHSA-w3f4-m5x7-jjxh.json @@ -7,12 +7,8 @@ "CVE-2020-29287" ], "details": "An SQL injection vulnerability was discovered in Car Rental Management System v1.0 can be exploited via the id parameter in view_car.php or the car_id parameter in booking.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w3wx-pfgj-qgv3/GHSA-w3wx-pfgj-qgv3.json b/advisories/unreviewed/2022/05/GHSA-w3wx-pfgj-qgv3/GHSA-w3wx-pfgj-qgv3.json index 040e338d77f..021d9a3d0ae 100644 --- a/advisories/unreviewed/2022/05/GHSA-w3wx-pfgj-qgv3/GHSA-w3wx-pfgj-qgv3.json +++ b/advisories/unreviewed/2022/05/GHSA-w3wx-pfgj-qgv3/GHSA-w3wx-pfgj-qgv3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w3xr-26m4-xc8m/GHSA-w3xr-26m4-xc8m.json b/advisories/unreviewed/2022/05/GHSA-w3xr-26m4-xc8m/GHSA-w3xr-26m4-xc8m.json index 4ef12cf9a6b..2aecda8e24f 100644 --- a/advisories/unreviewed/2022/05/GHSA-w3xr-26m4-xc8m/GHSA-w3xr-26m4-xc8m.json +++ b/advisories/unreviewed/2022/05/GHSA-w3xr-26m4-xc8m/GHSA-w3xr-26m4-xc8m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w4gq-6hmw-x862/GHSA-w4gq-6hmw-x862.json b/advisories/unreviewed/2022/05/GHSA-w4gq-6hmw-x862/GHSA-w4gq-6hmw-x862.json index fab9f5031ad..32c1b5429ed 100644 --- a/advisories/unreviewed/2022/05/GHSA-w4gq-6hmw-x862/GHSA-w4gq-6hmw-x862.json +++ b/advisories/unreviewed/2022/05/GHSA-w4gq-6hmw-x862/GHSA-w4gq-6hmw-x862.json @@ -7,12 +7,8 @@ "CVE-2020-26959" ], "details": "During browser shutdown, reference decrementing could have occured on a previously freed object, resulting in a use-after-free, memory corruption, and a potentially exploitable crash. This vulnerability affects Firefox < 83, Firefox ESR < 78.5, and Thunderbird < 78.5.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w4p5-jc3g-29j3/GHSA-w4p5-jc3g-29j3.json b/advisories/unreviewed/2022/05/GHSA-w4p5-jc3g-29j3/GHSA-w4p5-jc3g-29j3.json index 5325e5f04b1..eeda4b7f4b0 100644 --- a/advisories/unreviewed/2022/05/GHSA-w4p5-jc3g-29j3/GHSA-w4p5-jc3g-29j3.json +++ b/advisories/unreviewed/2022/05/GHSA-w4p5-jc3g-29j3/GHSA-w4p5-jc3g-29j3.json @@ -7,12 +7,8 @@ "CVE-2020-29379" ], "details": "An issue was discovered on V-SOL V1600D4L V1.01.49 and V1600D-MINI V1.01.48 OLT devices. During the process of updating the firmware, the update script starts a telnetd -l /bin/sh process that does not require authentication for TELNET access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w6hx-h678-hv82/GHSA-w6hx-h678-hv82.json b/advisories/unreviewed/2022/05/GHSA-w6hx-h678-hv82/GHSA-w6hx-h678-hv82.json index decfd48336d..06399e07111 100644 --- a/advisories/unreviewed/2022/05/GHSA-w6hx-h678-hv82/GHSA-w6hx-h678-hv82.json +++ b/advisories/unreviewed/2022/05/GHSA-w6hx-h678-hv82/GHSA-w6hx-h678-hv82.json @@ -7,12 +7,8 @@ "CVE-2020-27558" ], "details": "Use of an undocumented user in BASETech GE-131 BT-1837836 firmware 20180921 allows remote attackers to view the video stream.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w7p8-wf2r-rw5h/GHSA-w7p8-wf2r-rw5h.json b/advisories/unreviewed/2022/05/GHSA-w7p8-wf2r-rw5h/GHSA-w7p8-wf2r-rw5h.json index ef92dd5c4e9..c146a28fa35 100644 --- a/advisories/unreviewed/2022/05/GHSA-w7p8-wf2r-rw5h/GHSA-w7p8-wf2r-rw5h.json +++ b/advisories/unreviewed/2022/05/GHSA-w7p8-wf2r-rw5h/GHSA-w7p8-wf2r-rw5h.json @@ -7,12 +7,8 @@ "CVE-2020-26951" ], "details": "A parsing and event loading mismatch in Firefox's SVG code could have allowed load events to fire, even after sanitization. An attacker already capable of exploiting an XSS vulnerability in privileged internal pages could have used this attack to bypass our built-in sanitizer. This vulnerability affects Firefox < 83, Firefox ESR < 78.5, and Thunderbird < 78.5.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w7r3-x8vq-r9vp/GHSA-w7r3-x8vq-r9vp.json b/advisories/unreviewed/2022/05/GHSA-w7r3-x8vq-r9vp/GHSA-w7r3-x8vq-r9vp.json index d3309012b97..dbc393905d7 100644 --- a/advisories/unreviewed/2022/05/GHSA-w7r3-x8vq-r9vp/GHSA-w7r3-x8vq-r9vp.json +++ b/advisories/unreviewed/2022/05/GHSA-w7r3-x8vq-r9vp/GHSA-w7r3-x8vq-r9vp.json @@ -7,12 +7,8 @@ "CVE-2019-19876" ], "details": "An issue was discovered in B&R Industrial Automation APROL before R4.2 V7.08. An EnMon PHP script was vulnerable to SQL injection, a different vulnerability than CVE-2019-10006.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w82c-75f7-qr29/GHSA-w82c-75f7-qr29.json b/advisories/unreviewed/2022/05/GHSA-w82c-75f7-qr29/GHSA-w82c-75f7-qr29.json index daffe7429d9..6423049d17a 100644 --- a/advisories/unreviewed/2022/05/GHSA-w82c-75f7-qr29/GHSA-w82c-75f7-qr29.json +++ b/advisories/unreviewed/2022/05/GHSA-w82c-75f7-qr29/GHSA-w82c-75f7-qr29.json @@ -7,12 +7,8 @@ "CVE-2020-13799" ], "details": "Western Digital iNAND devices through 2020-06-03 allow Authentication Bypass via a capture-replay attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w8wp-h42w-f3m4/GHSA-w8wp-h42w-f3m4.json b/advisories/unreviewed/2022/05/GHSA-w8wp-h42w-f3m4/GHSA-w8wp-h42w-f3m4.json index ee468cf8227..8955fbbac4f 100644 --- a/advisories/unreviewed/2022/05/GHSA-w8wp-h42w-f3m4/GHSA-w8wp-h42w-f3m4.json +++ b/advisories/unreviewed/2022/05/GHSA-w8wp-h42w-f3m4/GHSA-w8wp-h42w-f3m4.json @@ -7,12 +7,8 @@ "CVE-2020-26970" ], "details": "When reading SMTP server status codes, Thunderbird writes an integer value to a position on the stack that is intended to contain just one byte. Depending on processor architecture and stack layout, this leads to stack corruption that may be exploitable. This vulnerability affects Thunderbird < 78.5.1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w986-fvg4-hvqg/GHSA-w986-fvg4-hvqg.json b/advisories/unreviewed/2022/05/GHSA-w986-fvg4-hvqg/GHSA-w986-fvg4-hvqg.json index 294654841f8..94b7d574372 100644 --- a/advisories/unreviewed/2022/05/GHSA-w986-fvg4-hvqg/GHSA-w986-fvg4-hvqg.json +++ b/advisories/unreviewed/2022/05/GHSA-w986-fvg4-hvqg/GHSA-w986-fvg4-hvqg.json @@ -7,12 +7,8 @@ "CVE-2020-4592" ], "details": "IBM MQ Appliance 9.1.CD and LTS could allow an authenticated user, under nondefault configuration to cause a data corruption attack due to an error when using segmented messages.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w9wf-7g3r-xgx7/GHSA-w9wf-7g3r-xgx7.json b/advisories/unreviewed/2022/05/GHSA-w9wf-7g3r-xgx7/GHSA-w9wf-7g3r-xgx7.json index bf79f7ba577..2f2d9b9e7d0 100644 --- a/advisories/unreviewed/2022/05/GHSA-w9wf-7g3r-xgx7/GHSA-w9wf-7g3r-xgx7.json +++ b/advisories/unreviewed/2022/05/GHSA-w9wf-7g3r-xgx7/GHSA-w9wf-7g3r-xgx7.json @@ -7,12 +7,8 @@ "CVE-2020-3367" ], "details": "A vulnerability in the log subscription subsystem of Cisco AsyncOS for the Cisco Secure Web Appliance (formerly Web Security Appliance) could allow an authenticated, local attacker to perform command injection and elevate privileges to root. This vulnerability is due to insufficient validation of user-supplied input for the web interface and CLI. An attacker could exploit this vulnerability by authenticating to the affected device and injecting scripting commands in the scope of the log subscription subsystem. A successful exploit could allow the attacker to execute arbitrary commands on the underlying operating system and elevate privileges to root.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wfh6-xhqh-h5xw/GHSA-wfh6-xhqh-h5xw.json b/advisories/unreviewed/2022/05/GHSA-wfh6-xhqh-h5xw/GHSA-wfh6-xhqh-h5xw.json index a68044bfc81..02eae20a6c1 100644 --- a/advisories/unreviewed/2022/05/GHSA-wfh6-xhqh-h5xw/GHSA-wfh6-xhqh-h5xw.json +++ b/advisories/unreviewed/2022/05/GHSA-wfh6-xhqh-h5xw/GHSA-wfh6-xhqh-h5xw.json @@ -7,12 +7,8 @@ "CVE-2020-29390" ], "details": "Zeroshell 3.9.3 contains a command injection vulnerability in the /cgi-bin/kerbynet StartSessionSubmit parameter that could allow an unauthenticated attacker to execute a system command by using shell metacharacters and the %0a character.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wg76-c5w5-h7xg/GHSA-wg76-c5w5-h7xg.json b/advisories/unreviewed/2022/05/GHSA-wg76-c5w5-h7xg/GHSA-wg76-c5w5-h7xg.json index 214afa83d74..935980ca401 100644 --- a/advisories/unreviewed/2022/05/GHSA-wg76-c5w5-h7xg/GHSA-wg76-c5w5-h7xg.json +++ b/advisories/unreviewed/2022/05/GHSA-wg76-c5w5-h7xg/GHSA-wg76-c5w5-h7xg.json @@ -7,12 +7,8 @@ "CVE-2020-13351" ], "details": "Insufficient permission checks in scheduled pipeline API in GitLab CE/EE 13.0+ allows an attacker to read variable names and values for scheduled pipelines on projects visible to the attacker. Affected versions are >=13.0, <13.3.9,>=13.4.0, <13.4.5,>=13.5.0, <13.5.2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wg9c-53cp-4j79/GHSA-wg9c-53cp-4j79.json b/advisories/unreviewed/2022/05/GHSA-wg9c-53cp-4j79/GHSA-wg9c-53cp-4j79.json index 31dbf2af258..8d6cd14fc81 100644 --- a/advisories/unreviewed/2022/05/GHSA-wg9c-53cp-4j79/GHSA-wg9c-53cp-4j79.json +++ b/advisories/unreviewed/2022/05/GHSA-wg9c-53cp-4j79/GHSA-wg9c-53cp-4j79.json @@ -7,12 +7,8 @@ "CVE-2020-28939" ], "details": "OpenClinic version 0.8.2 is affected by a medical/test_new.php insecure file upload vulnerability. This vulnerability allows authenticated users (with substantial privileges) to upload malicious files, such as PHP web shells, which can lead to arbitrary code execution on the application server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-whhf-44jp-82gr/GHSA-whhf-44jp-82gr.json b/advisories/unreviewed/2022/05/GHSA-whhf-44jp-82gr/GHSA-whhf-44jp-82gr.json index 413666f614f..ed5220121bd 100644 --- a/advisories/unreviewed/2022/05/GHSA-whhf-44jp-82gr/GHSA-whhf-44jp-82gr.json +++ b/advisories/unreviewed/2022/05/GHSA-whhf-44jp-82gr/GHSA-whhf-44jp-82gr.json @@ -7,12 +7,8 @@ "CVE-2020-27459" ], "details": "Chronoforeum 2.0.11 allows Stored XSS vulnerabilities when inserting a crafted payload into a post. If any user sees the post, the inserted XSS code is executed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wj4q-g69x-hrg9/GHSA-wj4q-g69x-hrg9.json b/advisories/unreviewed/2022/05/GHSA-wj4q-g69x-hrg9/GHSA-wj4q-g69x-hrg9.json index 2b16fd75d9a..6d45b74ecd1 100644 --- a/advisories/unreviewed/2022/05/GHSA-wj4q-g69x-hrg9/GHSA-wj4q-g69x-hrg9.json +++ b/advisories/unreviewed/2022/05/GHSA-wj4q-g69x-hrg9/GHSA-wj4q-g69x-hrg9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wj66-8qrh-6rxf/GHSA-wj66-8qrh-6rxf.json b/advisories/unreviewed/2022/05/GHSA-wj66-8qrh-6rxf/GHSA-wj66-8qrh-6rxf.json index ba2c7b041c7..3cf091d566f 100644 --- a/advisories/unreviewed/2022/05/GHSA-wj66-8qrh-6rxf/GHSA-wj66-8qrh-6rxf.json +++ b/advisories/unreviewed/2022/05/GHSA-wj66-8qrh-6rxf/GHSA-wj66-8qrh-6rxf.json @@ -7,12 +7,8 @@ "CVE-2020-29145" ], "details": "In Ericsson BSCS iX R18 Billing & Rating iX R18, ADMX is a web base module in BSCS iX that is vulnerable to stored XSS via the name or description field to a solutionUnitServlet?SuName=UserReferenceDataSU Access Rights Group. In most test cases, session hijacking was also possible by utilizing the XSS vulnerability. This potentially allows for full account takeover, or exploiting admins' browsers by using the beef framework.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wj9h-qr23-xmqh/GHSA-wj9h-qr23-xmqh.json b/advisories/unreviewed/2022/05/GHSA-wj9h-qr23-xmqh/GHSA-wj9h-qr23-xmqh.json index eaacf7a6d7a..e8808836716 100644 --- a/advisories/unreviewed/2022/05/GHSA-wj9h-qr23-xmqh/GHSA-wj9h-qr23-xmqh.json +++ b/advisories/unreviewed/2022/05/GHSA-wj9h-qr23-xmqh/GHSA-wj9h-qr23-xmqh.json @@ -7,12 +7,8 @@ "CVE-2020-3586" ], "details": "A vulnerability in the web-based management interface of Cisco DNA Spaces Connector could allow an unauthenticated, remote attacker to execute arbitrary commands on an affected device. The vulnerability is due to insufficient validation of user-supplied input in the web-based management interface. An attacker could exploit this vulnerability by sending crafted HTTP requests to the web-based management interface. A successful exploit could allow the attacker to execute arbitrary commands on the underling operating system with privileges of the web-based management application, which is running as a restricted user. This could result in changes being made to pages served by the web-based management application impacting the integrity or availability of the web-based management application.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wjv7-jqjx-m675/GHSA-wjv7-jqjx-m675.json b/advisories/unreviewed/2022/05/GHSA-wjv7-jqjx-m675/GHSA-wjv7-jqjx-m675.json index 70acf417eb0..16034ceff8c 100644 --- a/advisories/unreviewed/2022/05/GHSA-wjv7-jqjx-m675/GHSA-wjv7-jqjx-m675.json +++ b/advisories/unreviewed/2022/05/GHSA-wjv7-jqjx-m675/GHSA-wjv7-jqjx-m675.json @@ -7,12 +7,8 @@ "CVE-2020-5798" ], "details": "inSync Client installer for macOS versions v6.8.0 and prior could allow an attacker to gain privileges of a root user from a lower privileged user due to improper integrity checks and directory permissions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wm2q-rjqh-v4ff/GHSA-wm2q-rjqh-v4ff.json b/advisories/unreviewed/2022/05/GHSA-wm2q-rjqh-v4ff/GHSA-wm2q-rjqh-v4ff.json index e9fa4da0429..12c0a0a049a 100644 --- a/advisories/unreviewed/2022/05/GHSA-wm2q-rjqh-v4ff/GHSA-wm2q-rjqh-v4ff.json +++ b/advisories/unreviewed/2022/05/GHSA-wm2q-rjqh-v4ff/GHSA-wm2q-rjqh-v4ff.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wmcj-6965-gm4j/GHSA-wmcj-6965-gm4j.json b/advisories/unreviewed/2022/05/GHSA-wmcj-6965-gm4j/GHSA-wmcj-6965-gm4j.json index 38626d8147b..d57e3a2db6d 100644 --- a/advisories/unreviewed/2022/05/GHSA-wmcj-6965-gm4j/GHSA-wmcj-6965-gm4j.json +++ b/advisories/unreviewed/2022/05/GHSA-wmcj-6965-gm4j/GHSA-wmcj-6965-gm4j.json @@ -7,12 +7,8 @@ "CVE-2020-8271" ], "details": "Unauthenticated remote code execution with root privileges in Citrix SD-WAN Center versions before 11.2.2, 11.1.2b and 10.2.8", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wmf5-gp42-gq5m/GHSA-wmf5-gp42-gq5m.json b/advisories/unreviewed/2022/05/GHSA-wmf5-gp42-gq5m/GHSA-wmf5-gp42-gq5m.json index 4d94e61d22f..2fd7bac481d 100644 --- a/advisories/unreviewed/2022/05/GHSA-wmf5-gp42-gq5m/GHSA-wmf5-gp42-gq5m.json +++ b/advisories/unreviewed/2022/05/GHSA-wmf5-gp42-gq5m/GHSA-wmf5-gp42-gq5m.json @@ -7,12 +7,8 @@ "CVE-2020-29006" ], "details": "MISP before 2.4.135 lacks an ACL check, related to app/Controller/GalaxyElementsController.php and app/Model/GalaxyElement.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wmhr-fwp2-cchm/GHSA-wmhr-fwp2-cchm.json b/advisories/unreviewed/2022/05/GHSA-wmhr-fwp2-cchm/GHSA-wmhr-fwp2-cchm.json index 5db964bbf50..368a4838813 100644 --- a/advisories/unreviewed/2022/05/GHSA-wmhr-fwp2-cchm/GHSA-wmhr-fwp2-cchm.json +++ b/advisories/unreviewed/2022/05/GHSA-wmhr-fwp2-cchm/GHSA-wmhr-fwp2-cchm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wq5p-2cwp-p8wr/GHSA-wq5p-2cwp-p8wr.json b/advisories/unreviewed/2022/05/GHSA-wq5p-2cwp-p8wr/GHSA-wq5p-2cwp-p8wr.json index 523a59c2452..91dc7f5e2b5 100644 --- a/advisories/unreviewed/2022/05/GHSA-wq5p-2cwp-p8wr/GHSA-wq5p-2cwp-p8wr.json +++ b/advisories/unreviewed/2022/05/GHSA-wq5p-2cwp-p8wr/GHSA-wq5p-2cwp-p8wr.json @@ -7,12 +7,8 @@ "CVE-2020-12496" ], "details": "Endress+Hauser Ecograph T (Neutral/Private Label) (RSG35, ORSG35) and Memograph M (Neutral/Private Label) (RSG45, ORSG45) with Firmware version V2.0.0 and above is prone to exposure of sensitive information to an unauthorized actor. The firmware release has a dynamic token for each request submitted to the server, which makes repeating requests and analysis complex enough. Nevertheless, it's possible and during the analysis it was discovered that it also has an issue with the access-control matrix on the server-side. It was found that a user with low rights can get information from endpoints that should not be available to this user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wq79-2f22-34w5/GHSA-wq79-2f22-34w5.json b/advisories/unreviewed/2022/05/GHSA-wq79-2f22-34w5/GHSA-wq79-2f22-34w5.json index 3960f348f79..b122364d6a2 100644 --- a/advisories/unreviewed/2022/05/GHSA-wq79-2f22-34w5/GHSA-wq79-2f22-34w5.json +++ b/advisories/unreviewed/2022/05/GHSA-wq79-2f22-34w5/GHSA-wq79-2f22-34w5.json @@ -7,12 +7,8 @@ "CVE-2020-4759" ], "details": "IBM FileNet Content Manager 5.5.4 and 5.5.5 is potentially vulnerable to CVS Injection. A remote attacker could execute arbitrary commands on the system, caused by improper validation of csv file contents. IBM X-Force ID: 188736.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wrfq-hrw9-9rm3/GHSA-wrfq-hrw9-9rm3.json b/advisories/unreviewed/2022/05/GHSA-wrfq-hrw9-9rm3/GHSA-wrfq-hrw9-9rm3.json index 6b97d109833..2d08cc95757 100644 --- a/advisories/unreviewed/2022/05/GHSA-wrfq-hrw9-9rm3/GHSA-wrfq-hrw9-9rm3.json +++ b/advisories/unreviewed/2022/05/GHSA-wrfq-hrw9-9rm3/GHSA-wrfq-hrw9-9rm3.json @@ -7,12 +7,8 @@ "CVE-2020-11867" ], "details": "Audacity through 2.3.3 saves temporary files to /var/tmp/audacity-$USER by default. After Audacity creates the temporary directory, it sets its permissions to 755. Any user on the system can read and play the temporary audio .au files located there.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wrfx-v3mv-pvww/GHSA-wrfx-v3mv-pvww.json b/advisories/unreviewed/2022/05/GHSA-wrfx-v3mv-pvww/GHSA-wrfx-v3mv-pvww.json index 1291ac8dbbd..38349ff9e57 100644 --- a/advisories/unreviewed/2022/05/GHSA-wrfx-v3mv-pvww/GHSA-wrfx-v3mv-pvww.json +++ b/advisories/unreviewed/2022/05/GHSA-wrfx-v3mv-pvww/GHSA-wrfx-v3mv-pvww.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wvp6-r3f2-3fpj/GHSA-wvp6-r3f2-3fpj.json b/advisories/unreviewed/2022/05/GHSA-wvp6-r3f2-3fpj/GHSA-wvp6-r3f2-3fpj.json index e1535a6032a..435d16ddfe0 100644 --- a/advisories/unreviewed/2022/05/GHSA-wvp6-r3f2-3fpj/GHSA-wvp6-r3f2-3fpj.json +++ b/advisories/unreviewed/2022/05/GHSA-wvp6-r3f2-3fpj/GHSA-wvp6-r3f2-3fpj.json @@ -7,12 +7,8 @@ "CVE-2020-12495" ], "details": "Endress+Hauser Ecograph T (Neutral/Private Label) (RSG35, ORSG35) with Firmware version prior to V2.0.0 is prone to improper privilege management. The affected device has a web-based user interface with a role-based access system. Users with different roles have different write and read privileges. The access system is based on dynamic \"tokens\". The vulnerability is that user sessions are not closed correctly and a user with fewer rights is assigned the higher rights when he logs on.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ww7r-3h84-p2r6/GHSA-ww7r-3h84-p2r6.json b/advisories/unreviewed/2022/05/GHSA-ww7r-3h84-p2r6/GHSA-ww7r-3h84-p2r6.json index ff2037cdc01..56034482bca 100644 --- a/advisories/unreviewed/2022/05/GHSA-ww7r-3h84-p2r6/GHSA-ww7r-3h84-p2r6.json +++ b/advisories/unreviewed/2022/05/GHSA-ww7r-3h84-p2r6/GHSA-ww7r-3h84-p2r6.json @@ -7,12 +7,8 @@ "CVE-2020-28334" ], "details": "Barco wePresent WiPG-1600W devices use Hard-coded Credentials (issue 2 of 2). Affected Version(s): 2.5.1.8, 2.5.0.25, 2.5.0.24, 2.4.1.19. The Barco wePresent WiPG-1600W device has a hardcoded root password hash included in the firmware image. Exploiting CVE-2020-28329, CVE-2020-28330 and CVE-2020-28331 could potentially be used in a simple and automated exploit chain to go from unauthenticated remote attacker to root shell.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wx3j-3x93-528x/GHSA-wx3j-3x93-528x.json b/advisories/unreviewed/2022/05/GHSA-wx3j-3x93-528x/GHSA-wx3j-3x93-528x.json index 2a3b37becd5..29bb82306f8 100644 --- a/advisories/unreviewed/2022/05/GHSA-wx3j-3x93-528x/GHSA-wx3j-3x93-528x.json +++ b/advisories/unreviewed/2022/05/GHSA-wx3j-3x93-528x/GHSA-wx3j-3x93-528x.json @@ -7,12 +7,8 @@ "CVE-2020-26406" ], "details": "Certain SAST CiConfiguration information could be viewed by unauthorized users in GitLab EE starting with 13.3. This information was exposed through GraphQL to non-members of public projects with repository visibility restricted as well as guest members on private projects. Affected versions are: >=13.3, <13.3.9,>=13.4, <13.4.5,>=13.5, <13.5.2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wxpj-m284-3v3q/GHSA-wxpj-m284-3v3q.json b/advisories/unreviewed/2022/05/GHSA-wxpj-m284-3v3q/GHSA-wxpj-m284-3v3q.json index efeb7a26428..4bf2f368ae7 100644 --- a/advisories/unreviewed/2022/05/GHSA-wxpj-m284-3v3q/GHSA-wxpj-m284-3v3q.json +++ b/advisories/unreviewed/2022/05/GHSA-wxpj-m284-3v3q/GHSA-wxpj-m284-3v3q.json @@ -7,12 +7,8 @@ "CVE-2020-9922" ], "details": "A logic issue was addressed with improved state management. This issue is fixed in macOS Catalina 10.15.6, Security Update 2020-004 Mojave, Security Update 2020-004 High Sierra. Processing a maliciously crafted email may lead to writing arbitrary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x282-2jwx-hvgg/GHSA-x282-2jwx-hvgg.json b/advisories/unreviewed/2022/05/GHSA-x282-2jwx-hvgg/GHSA-x282-2jwx-hvgg.json index 5d7368a0668..b260daf8f2a 100644 --- a/advisories/unreviewed/2022/05/GHSA-x282-2jwx-hvgg/GHSA-x282-2jwx-hvgg.json +++ b/advisories/unreviewed/2022/05/GHSA-x282-2jwx-hvgg/GHSA-x282-2jwx-hvgg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x3p4-v5g6-w6pw/GHSA-x3p4-v5g6-w6pw.json b/advisories/unreviewed/2022/05/GHSA-x3p4-v5g6-w6pw/GHSA-x3p4-v5g6-w6pw.json index bc40a7c3cb8..f1580636377 100644 --- a/advisories/unreviewed/2022/05/GHSA-x3p4-v5g6-w6pw/GHSA-x3p4-v5g6-w6pw.json +++ b/advisories/unreviewed/2022/05/GHSA-x3p4-v5g6-w6pw/GHSA-x3p4-v5g6-w6pw.json @@ -7,12 +7,8 @@ "CVE-2020-8740" ], "details": "Out of bounds write in Intel BIOS platform sample code for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x3vj-997j-97hq/GHSA-x3vj-997j-97hq.json b/advisories/unreviewed/2022/05/GHSA-x3vj-997j-97hq/GHSA-x3vj-997j-97hq.json index 6908da12156..098593a1b8a 100644 --- a/advisories/unreviewed/2022/05/GHSA-x3vj-997j-97hq/GHSA-x3vj-997j-97hq.json +++ b/advisories/unreviewed/2022/05/GHSA-x3vj-997j-97hq/GHSA-x3vj-997j-97hq.json @@ -7,12 +7,8 @@ "CVE-2020-27207" ], "details": "Zetetic SQLCipher 4.x before 4.4.1 has a use-after-free, related to sqlcipher_codec_pragma and sqlite3Strlen30 in sqlite3.c. A remote denial of service attack can be performed. For example, a SQL injection can be used to execute the crafted SQL command sequence. After that, some unexpected RAM data is read.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x3wc-cjrx-mc5h/GHSA-x3wc-cjrx-mc5h.json b/advisories/unreviewed/2022/05/GHSA-x3wc-cjrx-mc5h/GHSA-x3wc-cjrx-mc5h.json index e7030ebbb97..23bf56e09f1 100644 --- a/advisories/unreviewed/2022/05/GHSA-x3wc-cjrx-mc5h/GHSA-x3wc-cjrx-mc5h.json +++ b/advisories/unreviewed/2022/05/GHSA-x3wc-cjrx-mc5h/GHSA-x3wc-cjrx-mc5h.json @@ -7,12 +7,8 @@ "CVE-2020-29561" ], "details": "An issue was discovered in SonicBOOM riscv-boom 3.0.0. For LR, it does not avoid acquiring a reservation in the case where a load translates successfully but still generates an exception.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x486-4h5g-3687/GHSA-x486-4h5g-3687.json b/advisories/unreviewed/2022/05/GHSA-x486-4h5g-3687/GHSA-x486-4h5g-3687.json index 6ac22f6503f..5d7d25043c5 100644 --- a/advisories/unreviewed/2022/05/GHSA-x486-4h5g-3687/GHSA-x486-4h5g-3687.json +++ b/advisories/unreviewed/2022/05/GHSA-x486-4h5g-3687/GHSA-x486-4h5g-3687.json @@ -7,12 +7,8 @@ "CVE-2020-20740" ], "details": "PDFResurrect before 0.20 lack of header validation checks causes heap-buffer-overflow in pdf_get_version().", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x592-jf8v-v754/GHSA-x592-jf8v-v754.json b/advisories/unreviewed/2022/05/GHSA-x592-jf8v-v754/GHSA-x592-jf8v-v754.json index dbaed9d7479..9366cd0927b 100644 --- a/advisories/unreviewed/2022/05/GHSA-x592-jf8v-v754/GHSA-x592-jf8v-v754.json +++ b/advisories/unreviewed/2022/05/GHSA-x592-jf8v-v754/GHSA-x592-jf8v-v754.json @@ -7,12 +7,8 @@ "CVE-2020-27253" ], "details": "A flaw exists in the Ingress/Egress checks routine of FactoryTalk Linx Version 6.11 and prior. This vulnerability could allow a remote, unauthenticated attacker to specifically craft a malicious packet resulting in a denial-of-service condition on the device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x995-5r6x-9xh3/GHSA-x995-5r6x-9xh3.json b/advisories/unreviewed/2022/05/GHSA-x995-5r6x-9xh3/GHSA-x995-5r6x-9xh3.json index f08133be3d3..7a88b0d5f49 100644 --- a/advisories/unreviewed/2022/05/GHSA-x995-5r6x-9xh3/GHSA-x995-5r6x-9xh3.json +++ b/advisories/unreviewed/2022/05/GHSA-x995-5r6x-9xh3/GHSA-x995-5r6x-9xh3.json @@ -7,12 +7,8 @@ "CVE-2020-13359" ], "details": "The Terraform API in GitLab CE/EE 12.10+ exposed the object storage signed URL on the delete operation allowing a malicious project maintainer to overwrite the Terraform state, bypassing audit and other business controls. Affected versions are >=12.10, <13.3.9,>=13.4, <13.4.5,>=13.5, <13.5.2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x9xh-p9v3-367p/GHSA-x9xh-p9v3-367p.json b/advisories/unreviewed/2022/05/GHSA-x9xh-p9v3-367p/GHSA-x9xh-p9v3-367p.json index 4daa0d3c30b..9a8ed15ce2b 100644 --- a/advisories/unreviewed/2022/05/GHSA-x9xh-p9v3-367p/GHSA-x9xh-p9v3-367p.json +++ b/advisories/unreviewed/2022/05/GHSA-x9xh-p9v3-367p/GHSA-x9xh-p9v3-367p.json @@ -7,12 +7,8 @@ "CVE-2020-27910" ], "details": "An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1, iOS 14.2 and iPadOS 14.2, tvOS 14.2, watchOS 7.1. Processing a maliciously crafted audio file may lead to arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xf78-rxvh-6xrr/GHSA-xf78-rxvh-6xrr.json b/advisories/unreviewed/2022/05/GHSA-xf78-rxvh-6xrr/GHSA-xf78-rxvh-6xrr.json index 875d31de294..bedd6d95477 100644 --- a/advisories/unreviewed/2022/05/GHSA-xf78-rxvh-6xrr/GHSA-xf78-rxvh-6xrr.json +++ b/advisories/unreviewed/2022/05/GHSA-xf78-rxvh-6xrr/GHSA-xf78-rxvh-6xrr.json @@ -7,12 +7,8 @@ "CVE-2020-23738" ], "details": "There is a local denial of service vulnerability in Advanced SystemCare 13 PRO 13.5.0.174. Attackers can use a constructed program to cause a computer crash (BSOD)", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xhr2-gj6g-mm67/GHSA-xhr2-gj6g-mm67.json b/advisories/unreviewed/2022/05/GHSA-xhr2-gj6g-mm67/GHSA-xhr2-gj6g-mm67.json index 3f3b2fec390..5d7fc8c5c61 100644 --- a/advisories/unreviewed/2022/05/GHSA-xhr2-gj6g-mm67/GHSA-xhr2-gj6g-mm67.json +++ b/advisories/unreviewed/2022/05/GHSA-xhr2-gj6g-mm67/GHSA-xhr2-gj6g-mm67.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xjm9-9gr6-gcpx/GHSA-xjm9-9gr6-gcpx.json b/advisories/unreviewed/2022/05/GHSA-xjm9-9gr6-gcpx/GHSA-xjm9-9gr6-gcpx.json index 174adf41e00..e3d7d2214ad 100644 --- a/advisories/unreviewed/2022/05/GHSA-xjm9-9gr6-gcpx/GHSA-xjm9-9gr6-gcpx.json +++ b/advisories/unreviewed/2022/05/GHSA-xjm9-9gr6-gcpx/GHSA-xjm9-9gr6-gcpx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xjpv-48qr-cg8g/GHSA-xjpv-48qr-cg8g.json b/advisories/unreviewed/2022/05/GHSA-xjpv-48qr-cg8g/GHSA-xjpv-48qr-cg8g.json index 0bf52e4e0b3..edce705df45 100644 --- a/advisories/unreviewed/2022/05/GHSA-xjpv-48qr-cg8g/GHSA-xjpv-48qr-cg8g.json +++ b/advisories/unreviewed/2022/05/GHSA-xjpv-48qr-cg8g/GHSA-xjpv-48qr-cg8g.json @@ -7,12 +7,8 @@ "CVE-2020-29576" ], "details": "The official eggdrop Docker images before 1.8.4rc2 contain a blank password for a root user. Systems using the Eggdrop Docker container deployed by affected versions of the Docker image may allow an remote attacker to achieve root access with a blank password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xjww-8m9x-vvj8/GHSA-xjww-8m9x-vvj8.json b/advisories/unreviewed/2022/05/GHSA-xjww-8m9x-vvj8/GHSA-xjww-8m9x-vvj8.json index d1f8e21f506..8403f89d00b 100644 --- a/advisories/unreviewed/2022/05/GHSA-xjww-8m9x-vvj8/GHSA-xjww-8m9x-vvj8.json +++ b/advisories/unreviewed/2022/05/GHSA-xjww-8m9x-vvj8/GHSA-xjww-8m9x-vvj8.json @@ -7,12 +7,8 @@ "CVE-2020-14258" ], "details": "HCL Notes is susceptible to a Denial of Service vulnerability caused by improper validation of user-supplied input. A remote unauthenticated attacker could exploit this vulnerability using a specially-crafted email message to hang the client. Versions 9, 10 and 11 are affected.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xm5q-57c6-qx3w/GHSA-xm5q-57c6-qx3w.json b/advisories/unreviewed/2022/05/GHSA-xm5q-57c6-qx3w/GHSA-xm5q-57c6-qx3w.json index 4d88a830a4d..0dc93c7ebeb 100644 --- a/advisories/unreviewed/2022/05/GHSA-xm5q-57c6-qx3w/GHSA-xm5q-57c6-qx3w.json +++ b/advisories/unreviewed/2022/05/GHSA-xm5q-57c6-qx3w/GHSA-xm5q-57c6-qx3w.json @@ -7,12 +7,8 @@ "CVE-2020-23736" ], "details": "There is a local denial of service vulnerability in DaDa accelerator 5.6.19.816,, attackers can use constructed programs to cause computer crashes (BSOD).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xm77-mpc2-5mxx/GHSA-xm77-mpc2-5mxx.json b/advisories/unreviewed/2022/05/GHSA-xm77-mpc2-5mxx/GHSA-xm77-mpc2-5mxx.json index 7eea452c046..09c41fdc6e6 100644 --- a/advisories/unreviewed/2022/05/GHSA-xm77-mpc2-5mxx/GHSA-xm77-mpc2-5mxx.json +++ b/advisories/unreviewed/2022/05/GHSA-xm77-mpc2-5mxx/GHSA-xm77-mpc2-5mxx.json @@ -7,12 +7,8 @@ "CVE-2020-25688" ], "details": "A flaw was found in rhacm versions before 2.0.5 and before 2.1.0. Two internal service APIs were incorrectly provisioned using a test certificate from the source repository. This would result in all installations using the same certificates. If an attacker could observe network traffic internal to a cluster, they could use the private key to decode API requests that should be protected by TLS sessions, potentially obtaining information they would not otherwise be able to. These certificates are not used for service authentication, so no opportunity for impersonation or active MITM attacks were made possible.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xp58-v8qq-x8jr/GHSA-xp58-v8qq-x8jr.json b/advisories/unreviewed/2022/05/GHSA-xp58-v8qq-x8jr/GHSA-xp58-v8qq-x8jr.json index d39d270f42c..5e9fcc3b505 100644 --- a/advisories/unreviewed/2022/05/GHSA-xp58-v8qq-x8jr/GHSA-xp58-v8qq-x8jr.json +++ b/advisories/unreviewed/2022/05/GHSA-xp58-v8qq-x8jr/GHSA-xp58-v8qq-x8jr.json @@ -7,12 +7,8 @@ "CVE-2020-0465" ], "details": "In various methods of hid-multitouch.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-162844689References: Upstream kernel", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xpc3-gf76-6g72/GHSA-xpc3-gf76-6g72.json b/advisories/unreviewed/2022/05/GHSA-xpc3-gf76-6g72/GHSA-xpc3-gf76-6g72.json index f4816d19c6a..e0c427202ee 100644 --- a/advisories/unreviewed/2022/05/GHSA-xpc3-gf76-6g72/GHSA-xpc3-gf76-6g72.json +++ b/advisories/unreviewed/2022/05/GHSA-xpc3-gf76-6g72/GHSA-xpc3-gf76-6g72.json @@ -7,12 +7,8 @@ "CVE-2020-8705" ], "details": "Insecure default initialization of resource in Intel(R) Boot Guard in Intel(R) CSME versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70, 13.0.40, 13.30.10, 14.0.45 and 14.5.25, Intel(R) TXE versions before 3.1.80 and 4.0.30, Intel(R) SPS versions before E5_04.01.04.400, E3_04.01.04.200, SoC-X_04.00.04.200 and SoC-A_04.00.04.300 may allow an unauthenticated user to potentially enable escalation of privileges via physical access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xphr-pxpv-957v/GHSA-xphr-pxpv-957v.json b/advisories/unreviewed/2022/05/GHSA-xphr-pxpv-957v/GHSA-xphr-pxpv-957v.json index 65a3e56f1a8..841cef911e5 100644 --- a/advisories/unreviewed/2022/05/GHSA-xphr-pxpv-957v/GHSA-xphr-pxpv-957v.json +++ b/advisories/unreviewed/2022/05/GHSA-xphr-pxpv-957v/GHSA-xphr-pxpv-957v.json @@ -7,12 +7,8 @@ "CVE-2020-29382" ], "details": "An issue was discovered on V-SOL V1600D V2.03.69 and V2.03.57, V1600G1 V2.0.7 and V1.9.7, and V1600G2 V1.1.4 OLT devices. A hardcoded RSA private key (specific to V1600D, V1600G1, and V1600G2) is contained in the firmware images.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xqvv-5qpx-cjj8/GHSA-xqvv-5qpx-cjj8.json b/advisories/unreviewed/2022/05/GHSA-xqvv-5qpx-cjj8/GHSA-xqvv-5qpx-cjj8.json index 3c206fd8aa3..382dbb8770f 100644 --- a/advisories/unreviewed/2022/05/GHSA-xqvv-5qpx-cjj8/GHSA-xqvv-5qpx-cjj8.json +++ b/advisories/unreviewed/2022/05/GHSA-xqvv-5qpx-cjj8/GHSA-xqvv-5qpx-cjj8.json @@ -7,12 +7,8 @@ "CVE-2020-4004" ], "details": "VMware ESXi (7.0 before ESXi70U1b-17168206, 6.7 before ESXi670-202011101-SG, 6.5 before ESXi650-202011301-SG), Workstation (15.x before 15.5.7), Fusion (11.x before 11.5.7) contain a use-after-free vulnerability in the XHCI USB controller. A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code as the virtual machine's VMX process running on the host.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xqw2-5rg4-323p/GHSA-xqw2-5rg4-323p.json b/advisories/unreviewed/2022/05/GHSA-xqw2-5rg4-323p/GHSA-xqw2-5rg4-323p.json index f8f3ce78312..a31db6f4c3c 100644 --- a/advisories/unreviewed/2022/05/GHSA-xqw2-5rg4-323p/GHSA-xqw2-5rg4-323p.json +++ b/advisories/unreviewed/2022/05/GHSA-xqw2-5rg4-323p/GHSA-xqw2-5rg4-323p.json @@ -7,12 +7,8 @@ "CVE-2020-4701" ], "details": "IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to a buffer overflow, caused by improper bounds checking which could allow a local attacker to execute arbitrary code on the system with root privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xrg7-hhwv-8fc8/GHSA-xrg7-hhwv-8fc8.json b/advisories/unreviewed/2022/05/GHSA-xrg7-hhwv-8fc8/GHSA-xrg7-hhwv-8fc8.json index d6fcbfb4fb5..ffee327de1c 100644 --- a/advisories/unreviewed/2022/05/GHSA-xrg7-hhwv-8fc8/GHSA-xrg7-hhwv-8fc8.json +++ b/advisories/unreviewed/2022/05/GHSA-xrg7-hhwv-8fc8/GHSA-xrg7-hhwv-8fc8.json @@ -7,12 +7,8 @@ "CVE-2020-8692" ], "details": "Insufficient access control in the firmware of the Intel(R) Ethernet 700 Series Controllers before version 7.3 may allow a privileged user to potentially enable escalation of privilege and/or denial of service via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xrmc-6wqq-99wc/GHSA-xrmc-6wqq-99wc.json b/advisories/unreviewed/2022/05/GHSA-xrmc-6wqq-99wc/GHSA-xrmc-6wqq-99wc.json index 2f19e743c27..09813e47697 100644 --- a/advisories/unreviewed/2022/05/GHSA-xrmc-6wqq-99wc/GHSA-xrmc-6wqq-99wc.json +++ b/advisories/unreviewed/2022/05/GHSA-xrmc-6wqq-99wc/GHSA-xrmc-6wqq-99wc.json @@ -7,12 +7,8 @@ "CVE-2020-25185" ], "details": "The affected product is vulnerable to five post-authentication buffer overflows, which may allow a logged in user to remotely execute arbitrary code on the IP150 (firmware versions 5.02.09).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xv46-hhwp-vf34/GHSA-xv46-hhwp-vf34.json b/advisories/unreviewed/2022/05/GHSA-xv46-hhwp-vf34/GHSA-xv46-hhwp-vf34.json index 0e30c76766c..882ad07778e 100644 --- a/advisories/unreviewed/2022/05/GHSA-xv46-hhwp-vf34/GHSA-xv46-hhwp-vf34.json +++ b/advisories/unreviewed/2022/05/GHSA-xv46-hhwp-vf34/GHSA-xv46-hhwp-vf34.json @@ -7,12 +7,8 @@ "CVE-2020-13358" ], "details": "A vulnerability in the internal Kubernetes agent api in GitLab CE/EE version 13.3 and above allows unauthorized access to private projects. Affected versions are: >=13.4, <13.4.5,>=13.3, <13.3.9,>=13.5, <13.5.2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xvgf-q2mq-jv66/GHSA-xvgf-q2mq-jv66.json b/advisories/unreviewed/2022/05/GHSA-xvgf-q2mq-jv66/GHSA-xvgf-q2mq-jv66.json index c77d40d5aad..af8973348bf 100644 --- a/advisories/unreviewed/2022/05/GHSA-xvgf-q2mq-jv66/GHSA-xvgf-q2mq-jv66.json +++ b/advisories/unreviewed/2022/05/GHSA-xvgf-q2mq-jv66/GHSA-xvgf-q2mq-jv66.json @@ -7,12 +7,8 @@ "CVE-2020-8352" ], "details": "In some Lenovo Desktop models, the Configuration Change Detection BIOS setting failed to detect SATA configuration changes.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xvmv-wg5c-7x3w/GHSA-xvmv-wg5c-7x3w.json b/advisories/unreviewed/2022/05/GHSA-xvmv-wg5c-7x3w/GHSA-xvmv-wg5c-7x3w.json index 2341a12e19d..d159fe5a7cf 100644 --- a/advisories/unreviewed/2022/05/GHSA-xvmv-wg5c-7x3w/GHSA-xvmv-wg5c-7x3w.json +++ b/advisories/unreviewed/2022/05/GHSA-xvmv-wg5c-7x3w/GHSA-xvmv-wg5c-7x3w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xvpg-g5h6-mqww/GHSA-xvpg-g5h6-mqww.json b/advisories/unreviewed/2022/05/GHSA-xvpg-g5h6-mqww/GHSA-xvpg-g5h6-mqww.json index 4bd7a104fd9..b47b8ea9f59 100644 --- a/advisories/unreviewed/2022/05/GHSA-xvpg-g5h6-mqww/GHSA-xvpg-g5h6-mqww.json +++ b/advisories/unreviewed/2022/05/GHSA-xvpg-g5h6-mqww/GHSA-xvpg-g5h6-mqww.json @@ -7,12 +7,8 @@ "CVE-2020-26955" ], "details": "When a user downloaded a file in Firefox for Android, if a cookie is set, it would have been re-sent during a subsequent file download operation on the same domain, regardless of whether the original and subsequent request were in private and non-private browsing modes. *Note: This issue only affected Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 83.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xvxg-wp8f-g8h4/GHSA-xvxg-wp8f-g8h4.json b/advisories/unreviewed/2022/05/GHSA-xvxg-wp8f-g8h4/GHSA-xvxg-wp8f-g8h4.json index d71293856fe..62c972653f7 100644 --- a/advisories/unreviewed/2022/05/GHSA-xvxg-wp8f-g8h4/GHSA-xvxg-wp8f-g8h4.json +++ b/advisories/unreviewed/2022/05/GHSA-xvxg-wp8f-g8h4/GHSA-xvxg-wp8f-g8h4.json @@ -7,12 +7,8 @@ "CVE-2020-9117" ], "details": "HUAWEI nova 4 versions earlier than 10.0.0.165(C01E34R2P4) and SydneyM-AL00 versions earlier than 10.0.0.165(C00E66R1P5) have an out-of-bounds read and write vulnerability. An attacker with specific permissions crafts malformed packet with specific parameter and sends the packet to the affected products. Due to insufficient validation of packet, which may be exploited to cause the information leakage or arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xw2v-4pf9-qj5w/GHSA-xw2v-4pf9-qj5w.json b/advisories/unreviewed/2022/05/GHSA-xw2v-4pf9-qj5w/GHSA-xw2v-4pf9-qj5w.json index 532f6b345b6..ba4fdffef38 100644 --- a/advisories/unreviewed/2022/05/GHSA-xw2v-4pf9-qj5w/GHSA-xw2v-4pf9-qj5w.json +++ b/advisories/unreviewed/2022/05/GHSA-xw2v-4pf9-qj5w/GHSA-xw2v-4pf9-qj5w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xwh3-6m65-fmmj/GHSA-xwh3-6m65-fmmj.json b/advisories/unreviewed/2022/05/GHSA-xwh3-6m65-fmmj/GHSA-xwh3-6m65-fmmj.json index 1d8f835c200..52cb4002e6e 100644 --- a/advisories/unreviewed/2022/05/GHSA-xwh3-6m65-fmmj/GHSA-xwh3-6m65-fmmj.json +++ b/advisories/unreviewed/2022/05/GHSA-xwh3-6m65-fmmj/GHSA-xwh3-6m65-fmmj.json @@ -7,12 +7,8 @@ "CVE-2020-26834" ], "details": "SAP HANA Database, version - 2.0, does not correctly validate the username when performing SAML bearer token-based user authentication. It is possible to manipulate a valid existing SAML bearer token to authenticate as a user whose name is identical to the truncated username for whom the SAML bearer token was issued.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xwvv-wrqp-xgj5/GHSA-xwvv-wrqp-xgj5.json b/advisories/unreviewed/2022/05/GHSA-xwvv-wrqp-xgj5/GHSA-xwvv-wrqp-xgj5.json index 280ce34388f..327699314c7 100644 --- a/advisories/unreviewed/2022/05/GHSA-xwvv-wrqp-xgj5/GHSA-xwvv-wrqp-xgj5.json +++ b/advisories/unreviewed/2022/05/GHSA-xwvv-wrqp-xgj5/GHSA-xwvv-wrqp-xgj5.json @@ -7,12 +7,8 @@ "CVE-2020-8690" ], "details": "Protection mechanism failure in Intel(R) Ethernet 700 Series Controllers before version 7.3 may allow a privileged user to potentially enable escalation of privilege and/or denial of service via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xx79-5295-gw9g/GHSA-xx79-5295-gw9g.json b/advisories/unreviewed/2022/05/GHSA-xx79-5295-gw9g/GHSA-xx79-5295-gw9g.json index c602916e889..2a5e75edf70 100644 --- a/advisories/unreviewed/2022/05/GHSA-xx79-5295-gw9g/GHSA-xx79-5295-gw9g.json +++ b/advisories/unreviewed/2022/05/GHSA-xx79-5295-gw9g/GHSA-xx79-5295-gw9g.json @@ -7,12 +7,8 @@ "CVE-2020-29060" ], "details": "An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 97168P, FD1002S, FD1104, FD1104B, FD1104S, FD1104SN, FD1108S, FD1204S-R2, FD1204SN, FD1204SN-R2, FD1208S-R2, FD1216S-R1, FD1608GS, FD1608SN, FD1616GS, FD1616SN, and FD8000 devices. There is a default debug124 password for the debug account.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xxqr-hj46-74ww/GHSA-xxqr-hj46-74ww.json b/advisories/unreviewed/2022/05/GHSA-xxqr-hj46-74ww/GHSA-xxqr-hj46-74ww.json index efa060b5f50..58e5e8217d4 100644 --- a/advisories/unreviewed/2022/05/GHSA-xxqr-hj46-74ww/GHSA-xxqr-hj46-74ww.json +++ b/advisories/unreviewed/2022/05/GHSA-xxqr-hj46-74ww/GHSA-xxqr-hj46-74ww.json @@ -7,12 +7,8 @@ "CVE-2020-28138" ], "details": "SourceCodester Online Clothing Store 1.0 is affected by a SQL Injection via the txtUserName parameter to login.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/07/GHSA-g3fx-wrq8-cp3q/GHSA-g3fx-wrq8-cp3q.json b/advisories/unreviewed/2022/07/GHSA-g3fx-wrq8-cp3q/GHSA-g3fx-wrq8-cp3q.json index dc82d72a41e..ba67496b71d 100644 --- a/advisories/unreviewed/2022/07/GHSA-g3fx-wrq8-cp3q/GHSA-g3fx-wrq8-cp3q.json +++ b/advisories/unreviewed/2022/07/GHSA-g3fx-wrq8-cp3q/GHSA-g3fx-wrq8-cp3q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/07/GHSA-hqj8-9ccg-2g84/GHSA-hqj8-9ccg-2g84.json b/advisories/unreviewed/2022/07/GHSA-hqj8-9ccg-2g84/GHSA-hqj8-9ccg-2g84.json index 076f6cd571c..c3b999489c9 100644 --- a/advisories/unreviewed/2022/07/GHSA-hqj8-9ccg-2g84/GHSA-hqj8-9ccg-2g84.json +++ b/advisories/unreviewed/2022/07/GHSA-hqj8-9ccg-2g84/GHSA-hqj8-9ccg-2g84.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/07/GHSA-m3xw-wjv6-wx6x/GHSA-m3xw-wjv6-wx6x.json b/advisories/unreviewed/2022/07/GHSA-m3xw-wjv6-wx6x/GHSA-m3xw-wjv6-wx6x.json index a9b774507b8..25337a1f1e8 100644 --- a/advisories/unreviewed/2022/07/GHSA-m3xw-wjv6-wx6x/GHSA-m3xw-wjv6-wx6x.json +++ b/advisories/unreviewed/2022/07/GHSA-m3xw-wjv6-wx6x/GHSA-m3xw-wjv6-wx6x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-4cf4-hqwp-cpp8/GHSA-4cf4-hqwp-cpp8.json b/advisories/unreviewed/2022/10/GHSA-4cf4-hqwp-cpp8/GHSA-4cf4-hqwp-cpp8.json index 8f7478e829c..764bc1853c0 100644 --- a/advisories/unreviewed/2022/10/GHSA-4cf4-hqwp-cpp8/GHSA-4cf4-hqwp-cpp8.json +++ b/advisories/unreviewed/2022/10/GHSA-4cf4-hqwp-cpp8/GHSA-4cf4-hqwp-cpp8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-h3vx-8rv6-2h7x/GHSA-h3vx-8rv6-2h7x.json b/advisories/unreviewed/2022/10/GHSA-h3vx-8rv6-2h7x/GHSA-h3vx-8rv6-2h7x.json index 89e162a70ee..d02ff8c4a0b 100644 --- a/advisories/unreviewed/2022/10/GHSA-h3vx-8rv6-2h7x/GHSA-h3vx-8rv6-2h7x.json +++ b/advisories/unreviewed/2022/10/GHSA-h3vx-8rv6-2h7x/GHSA-h3vx-8rv6-2h7x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-3jfg-74jc-hjq4/GHSA-3jfg-74jc-hjq4.json b/advisories/unreviewed/2022/12/GHSA-3jfg-74jc-hjq4/GHSA-3jfg-74jc-hjq4.json index c8fdf60d6c7..86930dadf8c 100644 --- a/advisories/unreviewed/2022/12/GHSA-3jfg-74jc-hjq4/GHSA-3jfg-74jc-hjq4.json +++ b/advisories/unreviewed/2022/12/GHSA-3jfg-74jc-hjq4/GHSA-3jfg-74jc-hjq4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-55c6-2hvf-w64f/GHSA-55c6-2hvf-w64f.json b/advisories/unreviewed/2022/12/GHSA-55c6-2hvf-w64f/GHSA-55c6-2hvf-w64f.json index 770ed428258..9586451f99f 100644 --- a/advisories/unreviewed/2022/12/GHSA-55c6-2hvf-w64f/GHSA-55c6-2hvf-w64f.json +++ b/advisories/unreviewed/2022/12/GHSA-55c6-2hvf-w64f/GHSA-55c6-2hvf-w64f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-58rj-c7p7-f4h9/GHSA-58rj-c7p7-f4h9.json b/advisories/unreviewed/2022/12/GHSA-58rj-c7p7-f4h9/GHSA-58rj-c7p7-f4h9.json index 4d18f33bcac..6bd3444a058 100644 --- a/advisories/unreviewed/2022/12/GHSA-58rj-c7p7-f4h9/GHSA-58rj-c7p7-f4h9.json +++ b/advisories/unreviewed/2022/12/GHSA-58rj-c7p7-f4h9/GHSA-58rj-c7p7-f4h9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-6839-6jhx-rcv7/GHSA-6839-6jhx-rcv7.json b/advisories/unreviewed/2022/12/GHSA-6839-6jhx-rcv7/GHSA-6839-6jhx-rcv7.json index 773953d58b6..aaacc532832 100644 --- a/advisories/unreviewed/2022/12/GHSA-6839-6jhx-rcv7/GHSA-6839-6jhx-rcv7.json +++ b/advisories/unreviewed/2022/12/GHSA-6839-6jhx-rcv7/GHSA-6839-6jhx-rcv7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-6cwc-7j5r-rwvf/GHSA-6cwc-7j5r-rwvf.json b/advisories/unreviewed/2022/12/GHSA-6cwc-7j5r-rwvf/GHSA-6cwc-7j5r-rwvf.json index baac8dff542..0ba40a942f3 100644 --- a/advisories/unreviewed/2022/12/GHSA-6cwc-7j5r-rwvf/GHSA-6cwc-7j5r-rwvf.json +++ b/advisories/unreviewed/2022/12/GHSA-6cwc-7j5r-rwvf/GHSA-6cwc-7j5r-rwvf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-6rxp-85rj-wm6w/GHSA-6rxp-85rj-wm6w.json b/advisories/unreviewed/2022/12/GHSA-6rxp-85rj-wm6w/GHSA-6rxp-85rj-wm6w.json index 789de7071da..c55e9eea859 100644 --- a/advisories/unreviewed/2022/12/GHSA-6rxp-85rj-wm6w/GHSA-6rxp-85rj-wm6w.json +++ b/advisories/unreviewed/2022/12/GHSA-6rxp-85rj-wm6w/GHSA-6rxp-85rj-wm6w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-7496-f8r6-4592/GHSA-7496-f8r6-4592.json b/advisories/unreviewed/2022/12/GHSA-7496-f8r6-4592/GHSA-7496-f8r6-4592.json index 4522e2a8f7d..54c27cc3d87 100644 --- a/advisories/unreviewed/2022/12/GHSA-7496-f8r6-4592/GHSA-7496-f8r6-4592.json +++ b/advisories/unreviewed/2022/12/GHSA-7496-f8r6-4592/GHSA-7496-f8r6-4592.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-8474-8wmh-7hj8/GHSA-8474-8wmh-7hj8.json b/advisories/unreviewed/2022/12/GHSA-8474-8wmh-7hj8/GHSA-8474-8wmh-7hj8.json index 1818e869e7d..91e7559118b 100644 --- a/advisories/unreviewed/2022/12/GHSA-8474-8wmh-7hj8/GHSA-8474-8wmh-7hj8.json +++ b/advisories/unreviewed/2022/12/GHSA-8474-8wmh-7hj8/GHSA-8474-8wmh-7hj8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-8h84-vmjf-pcmj/GHSA-8h84-vmjf-pcmj.json b/advisories/unreviewed/2022/12/GHSA-8h84-vmjf-pcmj/GHSA-8h84-vmjf-pcmj.json index 3f3319fff3e..c19f5a790da 100644 --- a/advisories/unreviewed/2022/12/GHSA-8h84-vmjf-pcmj/GHSA-8h84-vmjf-pcmj.json +++ b/advisories/unreviewed/2022/12/GHSA-8h84-vmjf-pcmj/GHSA-8h84-vmjf-pcmj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-982x-5mm8-vrmm/GHSA-982x-5mm8-vrmm.json b/advisories/unreviewed/2022/12/GHSA-982x-5mm8-vrmm/GHSA-982x-5mm8-vrmm.json index e85f3b058d9..31fc2df7b99 100644 --- a/advisories/unreviewed/2022/12/GHSA-982x-5mm8-vrmm/GHSA-982x-5mm8-vrmm.json +++ b/advisories/unreviewed/2022/12/GHSA-982x-5mm8-vrmm/GHSA-982x-5mm8-vrmm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-9fhw-hf7x-9gjc/GHSA-9fhw-hf7x-9gjc.json b/advisories/unreviewed/2022/12/GHSA-9fhw-hf7x-9gjc/GHSA-9fhw-hf7x-9gjc.json index 4793abd91bc..cb3e4b01ff2 100644 --- a/advisories/unreviewed/2022/12/GHSA-9fhw-hf7x-9gjc/GHSA-9fhw-hf7x-9gjc.json +++ b/advisories/unreviewed/2022/12/GHSA-9fhw-hf7x-9gjc/GHSA-9fhw-hf7x-9gjc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-9fhx-7rcp-9rfp/GHSA-9fhx-7rcp-9rfp.json b/advisories/unreviewed/2022/12/GHSA-9fhx-7rcp-9rfp/GHSA-9fhx-7rcp-9rfp.json index 4bdbc17516b..d5b34bc1c0b 100644 --- a/advisories/unreviewed/2022/12/GHSA-9fhx-7rcp-9rfp/GHSA-9fhx-7rcp-9rfp.json +++ b/advisories/unreviewed/2022/12/GHSA-9fhx-7rcp-9rfp/GHSA-9fhx-7rcp-9rfp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-9mgg-3gj3-77pg/GHSA-9mgg-3gj3-77pg.json b/advisories/unreviewed/2022/12/GHSA-9mgg-3gj3-77pg/GHSA-9mgg-3gj3-77pg.json index 633bdf822d7..65a498c9f64 100644 --- a/advisories/unreviewed/2022/12/GHSA-9mgg-3gj3-77pg/GHSA-9mgg-3gj3-77pg.json +++ b/advisories/unreviewed/2022/12/GHSA-9mgg-3gj3-77pg/GHSA-9mgg-3gj3-77pg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-9q3r-h2q9-4rwf/GHSA-9q3r-h2q9-4rwf.json b/advisories/unreviewed/2022/12/GHSA-9q3r-h2q9-4rwf/GHSA-9q3r-h2q9-4rwf.json index 1b263b23e08..46fcb6815bf 100644 --- a/advisories/unreviewed/2022/12/GHSA-9q3r-h2q9-4rwf/GHSA-9q3r-h2q9-4rwf.json +++ b/advisories/unreviewed/2022/12/GHSA-9q3r-h2q9-4rwf/GHSA-9q3r-h2q9-4rwf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-9xjf-29m8-3mfq/GHSA-9xjf-29m8-3mfq.json b/advisories/unreviewed/2022/12/GHSA-9xjf-29m8-3mfq/GHSA-9xjf-29m8-3mfq.json index 6b5927becd3..3d1571304ff 100644 --- a/advisories/unreviewed/2022/12/GHSA-9xjf-29m8-3mfq/GHSA-9xjf-29m8-3mfq.json +++ b/advisories/unreviewed/2022/12/GHSA-9xjf-29m8-3mfq/GHSA-9xjf-29m8-3mfq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-c57x-gf5c-cc83/GHSA-c57x-gf5c-cc83.json b/advisories/unreviewed/2022/12/GHSA-c57x-gf5c-cc83/GHSA-c57x-gf5c-cc83.json index 53dcafe2dcf..4604a0bc01c 100644 --- a/advisories/unreviewed/2022/12/GHSA-c57x-gf5c-cc83/GHSA-c57x-gf5c-cc83.json +++ b/advisories/unreviewed/2022/12/GHSA-c57x-gf5c-cc83/GHSA-c57x-gf5c-cc83.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-c888-5r7v-37mw/GHSA-c888-5r7v-37mw.json b/advisories/unreviewed/2022/12/GHSA-c888-5r7v-37mw/GHSA-c888-5r7v-37mw.json index ff82774fe05..30b66633762 100644 --- a/advisories/unreviewed/2022/12/GHSA-c888-5r7v-37mw/GHSA-c888-5r7v-37mw.json +++ b/advisories/unreviewed/2022/12/GHSA-c888-5r7v-37mw/GHSA-c888-5r7v-37mw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/12/GHSA-c8f6-x9xm-x27g/GHSA-c8f6-x9xm-x27g.json b/advisories/unreviewed/2022/12/GHSA-c8f6-x9xm-x27g/GHSA-c8f6-x9xm-x27g.json index 5d49f9a507b..edbb6aba316 100644 --- a/advisories/unreviewed/2022/12/GHSA-c8f6-x9xm-x27g/GHSA-c8f6-x9xm-x27g.json +++ b/advisories/unreviewed/2022/12/GHSA-c8f6-x9xm-x27g/GHSA-c8f6-x9xm-x27g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-cgvm-v5x3-2hm9/GHSA-cgvm-v5x3-2hm9.json b/advisories/unreviewed/2022/12/GHSA-cgvm-v5x3-2hm9/GHSA-cgvm-v5x3-2hm9.json index 389d1059e33..20d7c8659df 100644 --- a/advisories/unreviewed/2022/12/GHSA-cgvm-v5x3-2hm9/GHSA-cgvm-v5x3-2hm9.json +++ b/advisories/unreviewed/2022/12/GHSA-cgvm-v5x3-2hm9/GHSA-cgvm-v5x3-2hm9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-cqwg-qq7j-c4fr/GHSA-cqwg-qq7j-c4fr.json b/advisories/unreviewed/2022/12/GHSA-cqwg-qq7j-c4fr/GHSA-cqwg-qq7j-c4fr.json index 8efdd22125f..3f0f271a90d 100644 --- a/advisories/unreviewed/2022/12/GHSA-cqwg-qq7j-c4fr/GHSA-cqwg-qq7j-c4fr.json +++ b/advisories/unreviewed/2022/12/GHSA-cqwg-qq7j-c4fr/GHSA-cqwg-qq7j-c4fr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-f5w3-55f2-v2g9/GHSA-f5w3-55f2-v2g9.json b/advisories/unreviewed/2022/12/GHSA-f5w3-55f2-v2g9/GHSA-f5w3-55f2-v2g9.json index bda47b05e5d..519d9685d28 100644 --- a/advisories/unreviewed/2022/12/GHSA-f5w3-55f2-v2g9/GHSA-f5w3-55f2-v2g9.json +++ b/advisories/unreviewed/2022/12/GHSA-f5w3-55f2-v2g9/GHSA-f5w3-55f2-v2g9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-ghhq-5mmr-7wf5/GHSA-ghhq-5mmr-7wf5.json b/advisories/unreviewed/2022/12/GHSA-ghhq-5mmr-7wf5/GHSA-ghhq-5mmr-7wf5.json index 90793399185..77b988a66b2 100644 --- a/advisories/unreviewed/2022/12/GHSA-ghhq-5mmr-7wf5/GHSA-ghhq-5mmr-7wf5.json +++ b/advisories/unreviewed/2022/12/GHSA-ghhq-5mmr-7wf5/GHSA-ghhq-5mmr-7wf5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/12/GHSA-gpf3-4fw6-p76w/GHSA-gpf3-4fw6-p76w.json b/advisories/unreviewed/2022/12/GHSA-gpf3-4fw6-p76w/GHSA-gpf3-4fw6-p76w.json index 88002d924fa..c8d44083ded 100644 --- a/advisories/unreviewed/2022/12/GHSA-gpf3-4fw6-p76w/GHSA-gpf3-4fw6-p76w.json +++ b/advisories/unreviewed/2022/12/GHSA-gpf3-4fw6-p76w/GHSA-gpf3-4fw6-p76w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-hw2j-4vj7-9j38/GHSA-hw2j-4vj7-9j38.json b/advisories/unreviewed/2022/12/GHSA-hw2j-4vj7-9j38/GHSA-hw2j-4vj7-9j38.json index 4b9d53edb82..1ffd30bcb09 100644 --- a/advisories/unreviewed/2022/12/GHSA-hw2j-4vj7-9j38/GHSA-hw2j-4vj7-9j38.json +++ b/advisories/unreviewed/2022/12/GHSA-hw2j-4vj7-9j38/GHSA-hw2j-4vj7-9j38.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-j3qr-j5r5-64mp/GHSA-j3qr-j5r5-64mp.json b/advisories/unreviewed/2022/12/GHSA-j3qr-j5r5-64mp/GHSA-j3qr-j5r5-64mp.json index 38aa8b5af5a..33cef1180c9 100644 --- a/advisories/unreviewed/2022/12/GHSA-j3qr-j5r5-64mp/GHSA-j3qr-j5r5-64mp.json +++ b/advisories/unreviewed/2022/12/GHSA-j3qr-j5r5-64mp/GHSA-j3qr-j5r5-64mp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-jj68-3qxc-xvjv/GHSA-jj68-3qxc-xvjv.json b/advisories/unreviewed/2022/12/GHSA-jj68-3qxc-xvjv/GHSA-jj68-3qxc-xvjv.json index c432029235f..52eb70f1a38 100644 --- a/advisories/unreviewed/2022/12/GHSA-jj68-3qxc-xvjv/GHSA-jj68-3qxc-xvjv.json +++ b/advisories/unreviewed/2022/12/GHSA-jj68-3qxc-xvjv/GHSA-jj68-3qxc-xvjv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/12/GHSA-jqxp-vjx4-h9pv/GHSA-jqxp-vjx4-h9pv.json b/advisories/unreviewed/2022/12/GHSA-jqxp-vjx4-h9pv/GHSA-jqxp-vjx4-h9pv.json index 93fbf2a3873..8df98a18cba 100644 --- a/advisories/unreviewed/2022/12/GHSA-jqxp-vjx4-h9pv/GHSA-jqxp-vjx4-h9pv.json +++ b/advisories/unreviewed/2022/12/GHSA-jqxp-vjx4-h9pv/GHSA-jqxp-vjx4-h9pv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-jv2g-hj6c-v276/GHSA-jv2g-hj6c-v276.json b/advisories/unreviewed/2022/12/GHSA-jv2g-hj6c-v276/GHSA-jv2g-hj6c-v276.json index c92101f74fe..d392c7c406d 100644 --- a/advisories/unreviewed/2022/12/GHSA-jv2g-hj6c-v276/GHSA-jv2g-hj6c-v276.json +++ b/advisories/unreviewed/2022/12/GHSA-jv2g-hj6c-v276/GHSA-jv2g-hj6c-v276.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-mxh9-fhfx-h2jh/GHSA-mxh9-fhfx-h2jh.json b/advisories/unreviewed/2022/12/GHSA-mxh9-fhfx-h2jh/GHSA-mxh9-fhfx-h2jh.json index ebc55674c12..a7cbf023f58 100644 --- a/advisories/unreviewed/2022/12/GHSA-mxh9-fhfx-h2jh/GHSA-mxh9-fhfx-h2jh.json +++ b/advisories/unreviewed/2022/12/GHSA-mxh9-fhfx-h2jh/GHSA-mxh9-fhfx-h2jh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-p3v4-rqhv-6x2v/GHSA-p3v4-rqhv-6x2v.json b/advisories/unreviewed/2022/12/GHSA-p3v4-rqhv-6x2v/GHSA-p3v4-rqhv-6x2v.json index d6dfaddfcf7..00b8e2371ad 100644 --- a/advisories/unreviewed/2022/12/GHSA-p3v4-rqhv-6x2v/GHSA-p3v4-rqhv-6x2v.json +++ b/advisories/unreviewed/2022/12/GHSA-p3v4-rqhv-6x2v/GHSA-p3v4-rqhv-6x2v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-pcwp-jh7x-746c/GHSA-pcwp-jh7x-746c.json b/advisories/unreviewed/2022/12/GHSA-pcwp-jh7x-746c/GHSA-pcwp-jh7x-746c.json index 24bfdf696b5..e5d4099733d 100644 --- a/advisories/unreviewed/2022/12/GHSA-pcwp-jh7x-746c/GHSA-pcwp-jh7x-746c.json +++ b/advisories/unreviewed/2022/12/GHSA-pcwp-jh7x-746c/GHSA-pcwp-jh7x-746c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-pf2r-9hw6-gx66/GHSA-pf2r-9hw6-gx66.json b/advisories/unreviewed/2022/12/GHSA-pf2r-9hw6-gx66/GHSA-pf2r-9hw6-gx66.json index 2c0b8a3a5db..25cc81e558c 100644 --- a/advisories/unreviewed/2022/12/GHSA-pf2r-9hw6-gx66/GHSA-pf2r-9hw6-gx66.json +++ b/advisories/unreviewed/2022/12/GHSA-pf2r-9hw6-gx66/GHSA-pf2r-9hw6-gx66.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/12/GHSA-prq4-rjxr-m2fq/GHSA-prq4-rjxr-m2fq.json b/advisories/unreviewed/2022/12/GHSA-prq4-rjxr-m2fq/GHSA-prq4-rjxr-m2fq.json index 677762c24f9..5a6080022b2 100644 --- a/advisories/unreviewed/2022/12/GHSA-prq4-rjxr-m2fq/GHSA-prq4-rjxr-m2fq.json +++ b/advisories/unreviewed/2022/12/GHSA-prq4-rjxr-m2fq/GHSA-prq4-rjxr-m2fq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-pvp9-84c2-p559/GHSA-pvp9-84c2-p559.json b/advisories/unreviewed/2022/12/GHSA-pvp9-84c2-p559/GHSA-pvp9-84c2-p559.json index d61b8cd53a0..6a774e814e1 100644 --- a/advisories/unreviewed/2022/12/GHSA-pvp9-84c2-p559/GHSA-pvp9-84c2-p559.json +++ b/advisories/unreviewed/2022/12/GHSA-pvp9-84c2-p559/GHSA-pvp9-84c2-p559.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/12/GHSA-q34j-q58v-2jmm/GHSA-q34j-q58v-2jmm.json b/advisories/unreviewed/2022/12/GHSA-q34j-q58v-2jmm/GHSA-q34j-q58v-2jmm.json index 0a44a78c9e6..918e3786995 100644 --- a/advisories/unreviewed/2022/12/GHSA-q34j-q58v-2jmm/GHSA-q34j-q58v-2jmm.json +++ b/advisories/unreviewed/2022/12/GHSA-q34j-q58v-2jmm/GHSA-q34j-q58v-2jmm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-qj34-24mc-v6wc/GHSA-qj34-24mc-v6wc.json b/advisories/unreviewed/2022/12/GHSA-qj34-24mc-v6wc/GHSA-qj34-24mc-v6wc.json index d45b66ec338..eb7c0f94dcc 100644 --- a/advisories/unreviewed/2022/12/GHSA-qj34-24mc-v6wc/GHSA-qj34-24mc-v6wc.json +++ b/advisories/unreviewed/2022/12/GHSA-qj34-24mc-v6wc/GHSA-qj34-24mc-v6wc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-qqrr-4grg-q6v3/GHSA-qqrr-4grg-q6v3.json b/advisories/unreviewed/2022/12/GHSA-qqrr-4grg-q6v3/GHSA-qqrr-4grg-q6v3.json index 9da299db698..b81bd34229d 100644 --- a/advisories/unreviewed/2022/12/GHSA-qqrr-4grg-q6v3/GHSA-qqrr-4grg-q6v3.json +++ b/advisories/unreviewed/2022/12/GHSA-qqrr-4grg-q6v3/GHSA-qqrr-4grg-q6v3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/12/GHSA-qr42-43fq-qffx/GHSA-qr42-43fq-qffx.json b/advisories/unreviewed/2022/12/GHSA-qr42-43fq-qffx/GHSA-qr42-43fq-qffx.json index 93e6313e4b5..34f1231a192 100644 --- a/advisories/unreviewed/2022/12/GHSA-qr42-43fq-qffx/GHSA-qr42-43fq-qffx.json +++ b/advisories/unreviewed/2022/12/GHSA-qr42-43fq-qffx/GHSA-qr42-43fq-qffx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/12/GHSA-qxrr-wrhx-j83r/GHSA-qxrr-wrhx-j83r.json b/advisories/unreviewed/2022/12/GHSA-qxrr-wrhx-j83r/GHSA-qxrr-wrhx-j83r.json index 6db28ab8da6..3b3e7d172dd 100644 --- a/advisories/unreviewed/2022/12/GHSA-qxrr-wrhx-j83r/GHSA-qxrr-wrhx-j83r.json +++ b/advisories/unreviewed/2022/12/GHSA-qxrr-wrhx-j83r/GHSA-qxrr-wrhx-j83r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-r2p3-rmqj-8988/GHSA-r2p3-rmqj-8988.json b/advisories/unreviewed/2022/12/GHSA-r2p3-rmqj-8988/GHSA-r2p3-rmqj-8988.json index 3cd5ccaa340..15995473921 100644 --- a/advisories/unreviewed/2022/12/GHSA-r2p3-rmqj-8988/GHSA-r2p3-rmqj-8988.json +++ b/advisories/unreviewed/2022/12/GHSA-r2p3-rmqj-8988/GHSA-r2p3-rmqj-8988.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-v3j5-cg8r-8v4j/GHSA-v3j5-cg8r-8v4j.json b/advisories/unreviewed/2022/12/GHSA-v3j5-cg8r-8v4j/GHSA-v3j5-cg8r-8v4j.json index 2fb310e55d8..a0f9f2394a6 100644 --- a/advisories/unreviewed/2022/12/GHSA-v3j5-cg8r-8v4j/GHSA-v3j5-cg8r-8v4j.json +++ b/advisories/unreviewed/2022/12/GHSA-v3j5-cg8r-8v4j/GHSA-v3j5-cg8r-8v4j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-vvhh-g843-7vrh/GHSA-vvhh-g843-7vrh.json b/advisories/unreviewed/2022/12/GHSA-vvhh-g843-7vrh/GHSA-vvhh-g843-7vrh.json index 44c25fe1699..1ea7e3fbfc4 100644 --- a/advisories/unreviewed/2022/12/GHSA-vvhh-g843-7vrh/GHSA-vvhh-g843-7vrh.json +++ b/advisories/unreviewed/2022/12/GHSA-vvhh-g843-7vrh/GHSA-vvhh-g843-7vrh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-w3mw-7pp7-5rcf/GHSA-w3mw-7pp7-5rcf.json b/advisories/unreviewed/2022/12/GHSA-w3mw-7pp7-5rcf/GHSA-w3mw-7pp7-5rcf.json index c0609fcd45f..203517b6fbe 100644 --- a/advisories/unreviewed/2022/12/GHSA-w3mw-7pp7-5rcf/GHSA-w3mw-7pp7-5rcf.json +++ b/advisories/unreviewed/2022/12/GHSA-w3mw-7pp7-5rcf/GHSA-w3mw-7pp7-5rcf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-w9pr-59v3-7rgc/GHSA-w9pr-59v3-7rgc.json b/advisories/unreviewed/2022/12/GHSA-w9pr-59v3-7rgc/GHSA-w9pr-59v3-7rgc.json index 1a1aee6a0e9..35910f1c09c 100644 --- a/advisories/unreviewed/2022/12/GHSA-w9pr-59v3-7rgc/GHSA-w9pr-59v3-7rgc.json +++ b/advisories/unreviewed/2022/12/GHSA-w9pr-59v3-7rgc/GHSA-w9pr-59v3-7rgc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-wmxm-7j47-5ww2/GHSA-wmxm-7j47-5ww2.json b/advisories/unreviewed/2022/12/GHSA-wmxm-7j47-5ww2/GHSA-wmxm-7j47-5ww2.json index 3b2da7c4e02..21c888f5e07 100644 --- a/advisories/unreviewed/2022/12/GHSA-wmxm-7j47-5ww2/GHSA-wmxm-7j47-5ww2.json +++ b/advisories/unreviewed/2022/12/GHSA-wmxm-7j47-5ww2/GHSA-wmxm-7j47-5ww2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-wp5g-24xx-jcg4/GHSA-wp5g-24xx-jcg4.json b/advisories/unreviewed/2022/12/GHSA-wp5g-24xx-jcg4/GHSA-wp5g-24xx-jcg4.json index 14fe42f0efb..99af9e79243 100644 --- a/advisories/unreviewed/2022/12/GHSA-wp5g-24xx-jcg4/GHSA-wp5g-24xx-jcg4.json +++ b/advisories/unreviewed/2022/12/GHSA-wp5g-24xx-jcg4/GHSA-wp5g-24xx-jcg4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-wq87-g3m8-cq98/GHSA-wq87-g3m8-cq98.json b/advisories/unreviewed/2022/12/GHSA-wq87-g3m8-cq98/GHSA-wq87-g3m8-cq98.json index d68ba9da105..0472ee5d598 100644 --- a/advisories/unreviewed/2022/12/GHSA-wq87-g3m8-cq98/GHSA-wq87-g3m8-cq98.json +++ b/advisories/unreviewed/2022/12/GHSA-wq87-g3m8-cq98/GHSA-wq87-g3m8-cq98.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-ww7w-3qfh-v54h/GHSA-ww7w-3qfh-v54h.json b/advisories/unreviewed/2022/12/GHSA-ww7w-3qfh-v54h/GHSA-ww7w-3qfh-v54h.json index 24b5d84454a..96d08f8dc1e 100644 --- a/advisories/unreviewed/2022/12/GHSA-ww7w-3qfh-v54h/GHSA-ww7w-3qfh-v54h.json +++ b/advisories/unreviewed/2022/12/GHSA-ww7w-3qfh-v54h/GHSA-ww7w-3qfh-v54h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/12/GHSA-wx82-f75f-hq8v/GHSA-wx82-f75f-hq8v.json b/advisories/unreviewed/2022/12/GHSA-wx82-f75f-hq8v/GHSA-wx82-f75f-hq8v.json index 29b42b38947..c2fbf5c7110 100644 --- a/advisories/unreviewed/2022/12/GHSA-wx82-f75f-hq8v/GHSA-wx82-f75f-hq8v.json +++ b/advisories/unreviewed/2022/12/GHSA-wx82-f75f-hq8v/GHSA-wx82-f75f-hq8v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-x2cv-2r65-3xpp/GHSA-x2cv-2r65-3xpp.json b/advisories/unreviewed/2022/12/GHSA-x2cv-2r65-3xpp/GHSA-x2cv-2r65-3xpp.json index aac16845ff6..d72f068b2f2 100644 --- a/advisories/unreviewed/2022/12/GHSA-x2cv-2r65-3xpp/GHSA-x2cv-2r65-3xpp.json +++ b/advisories/unreviewed/2022/12/GHSA-x2cv-2r65-3xpp/GHSA-x2cv-2r65-3xpp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-2995-qwmm-cm3p/GHSA-2995-qwmm-cm3p.json b/advisories/unreviewed/2023/01/GHSA-2995-qwmm-cm3p/GHSA-2995-qwmm-cm3p.json index fa8e22101c9..f899b830411 100644 --- a/advisories/unreviewed/2023/01/GHSA-2995-qwmm-cm3p/GHSA-2995-qwmm-cm3p.json +++ b/advisories/unreviewed/2023/01/GHSA-2995-qwmm-cm3p/GHSA-2995-qwmm-cm3p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-3mgf-mj76-7964/GHSA-3mgf-mj76-7964.json b/advisories/unreviewed/2023/01/GHSA-3mgf-mj76-7964/GHSA-3mgf-mj76-7964.json index d726edc29ff..850c6361153 100644 --- a/advisories/unreviewed/2023/01/GHSA-3mgf-mj76-7964/GHSA-3mgf-mj76-7964.json +++ b/advisories/unreviewed/2023/01/GHSA-3mgf-mj76-7964/GHSA-3mgf-mj76-7964.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-3pjq-c8pr-33gx/GHSA-3pjq-c8pr-33gx.json b/advisories/unreviewed/2023/01/GHSA-3pjq-c8pr-33gx/GHSA-3pjq-c8pr-33gx.json index b6866551545..75e550fc533 100644 --- a/advisories/unreviewed/2023/01/GHSA-3pjq-c8pr-33gx/GHSA-3pjq-c8pr-33gx.json +++ b/advisories/unreviewed/2023/01/GHSA-3pjq-c8pr-33gx/GHSA-3pjq-c8pr-33gx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-3rq8-3g2v-4r35/GHSA-3rq8-3g2v-4r35.json b/advisories/unreviewed/2023/01/GHSA-3rq8-3g2v-4r35/GHSA-3rq8-3g2v-4r35.json index 1d68265b9bb..9d9bc1a1dc6 100644 --- a/advisories/unreviewed/2023/01/GHSA-3rq8-3g2v-4r35/GHSA-3rq8-3g2v-4r35.json +++ b/advisories/unreviewed/2023/01/GHSA-3rq8-3g2v-4r35/GHSA-3rq8-3g2v-4r35.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-6324-2p78-9j67/GHSA-6324-2p78-9j67.json b/advisories/unreviewed/2023/01/GHSA-6324-2p78-9j67/GHSA-6324-2p78-9j67.json index 5a7d1e40ba7..684d14796e5 100644 --- a/advisories/unreviewed/2023/01/GHSA-6324-2p78-9j67/GHSA-6324-2p78-9j67.json +++ b/advisories/unreviewed/2023/01/GHSA-6324-2p78-9j67/GHSA-6324-2p78-9j67.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-6ghc-mcpm-3hv7/GHSA-6ghc-mcpm-3hv7.json b/advisories/unreviewed/2023/01/GHSA-6ghc-mcpm-3hv7/GHSA-6ghc-mcpm-3hv7.json index 38d9fb2d76f..d4cffbcbdc0 100644 --- a/advisories/unreviewed/2023/01/GHSA-6ghc-mcpm-3hv7/GHSA-6ghc-mcpm-3hv7.json +++ b/advisories/unreviewed/2023/01/GHSA-6ghc-mcpm-3hv7/GHSA-6ghc-mcpm-3hv7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-6r75-2f3x-5v9m/GHSA-6r75-2f3x-5v9m.json b/advisories/unreviewed/2023/01/GHSA-6r75-2f3x-5v9m/GHSA-6r75-2f3x-5v9m.json index dc8e335997f..3f152404ebd 100644 --- a/advisories/unreviewed/2023/01/GHSA-6r75-2f3x-5v9m/GHSA-6r75-2f3x-5v9m.json +++ b/advisories/unreviewed/2023/01/GHSA-6r75-2f3x-5v9m/GHSA-6r75-2f3x-5v9m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-779g-8q6v-4g8g/GHSA-779g-8q6v-4g8g.json b/advisories/unreviewed/2023/01/GHSA-779g-8q6v-4g8g/GHSA-779g-8q6v-4g8g.json index 4d1f3d09504..47584fd37d9 100644 --- a/advisories/unreviewed/2023/01/GHSA-779g-8q6v-4g8g/GHSA-779g-8q6v-4g8g.json +++ b/advisories/unreviewed/2023/01/GHSA-779g-8q6v-4g8g/GHSA-779g-8q6v-4g8g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-8r38-jrwh-8grw/GHSA-8r38-jrwh-8grw.json b/advisories/unreviewed/2023/01/GHSA-8r38-jrwh-8grw/GHSA-8r38-jrwh-8grw.json index e6ae16a0ad3..6afccb8655f 100644 --- a/advisories/unreviewed/2023/01/GHSA-8r38-jrwh-8grw/GHSA-8r38-jrwh-8grw.json +++ b/advisories/unreviewed/2023/01/GHSA-8r38-jrwh-8grw/GHSA-8r38-jrwh-8grw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-989j-wgv4-2q6m/GHSA-989j-wgv4-2q6m.json b/advisories/unreviewed/2023/01/GHSA-989j-wgv4-2q6m/GHSA-989j-wgv4-2q6m.json index 6011ce6e573..5e860ed801c 100644 --- a/advisories/unreviewed/2023/01/GHSA-989j-wgv4-2q6m/GHSA-989j-wgv4-2q6m.json +++ b/advisories/unreviewed/2023/01/GHSA-989j-wgv4-2q6m/GHSA-989j-wgv4-2q6m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-c67f-vfh2-px5g/GHSA-c67f-vfh2-px5g.json b/advisories/unreviewed/2023/01/GHSA-c67f-vfh2-px5g/GHSA-c67f-vfh2-px5g.json index 165d8cfc3ce..9613908c5e3 100644 --- a/advisories/unreviewed/2023/01/GHSA-c67f-vfh2-px5g/GHSA-c67f-vfh2-px5g.json +++ b/advisories/unreviewed/2023/01/GHSA-c67f-vfh2-px5g/GHSA-c67f-vfh2-px5g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-c77h-4xgf-q558/GHSA-c77h-4xgf-q558.json b/advisories/unreviewed/2023/01/GHSA-c77h-4xgf-q558/GHSA-c77h-4xgf-q558.json index 3e01c7b765b..8c5e8dfbddb 100644 --- a/advisories/unreviewed/2023/01/GHSA-c77h-4xgf-q558/GHSA-c77h-4xgf-q558.json +++ b/advisories/unreviewed/2023/01/GHSA-c77h-4xgf-q558/GHSA-c77h-4xgf-q558.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-cgx2-fm93-35wf/GHSA-cgx2-fm93-35wf.json b/advisories/unreviewed/2023/01/GHSA-cgx2-fm93-35wf/GHSA-cgx2-fm93-35wf.json index 2933c422be3..3dc25e857f1 100644 --- a/advisories/unreviewed/2023/01/GHSA-cgx2-fm93-35wf/GHSA-cgx2-fm93-35wf.json +++ b/advisories/unreviewed/2023/01/GHSA-cgx2-fm93-35wf/GHSA-cgx2-fm93-35wf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-gg3r-g8xg-rm82/GHSA-gg3r-g8xg-rm82.json b/advisories/unreviewed/2023/01/GHSA-gg3r-g8xg-rm82/GHSA-gg3r-g8xg-rm82.json index e1a1de6d1aa..c249acd90a0 100644 --- a/advisories/unreviewed/2023/01/GHSA-gg3r-g8xg-rm82/GHSA-gg3r-g8xg-rm82.json +++ b/advisories/unreviewed/2023/01/GHSA-gg3r-g8xg-rm82/GHSA-gg3r-g8xg-rm82.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-jpw8-vg77-hg97/GHSA-jpw8-vg77-hg97.json b/advisories/unreviewed/2023/01/GHSA-jpw8-vg77-hg97/GHSA-jpw8-vg77-hg97.json index c3a81e7f05b..de70a496957 100644 --- a/advisories/unreviewed/2023/01/GHSA-jpw8-vg77-hg97/GHSA-jpw8-vg77-hg97.json +++ b/advisories/unreviewed/2023/01/GHSA-jpw8-vg77-hg97/GHSA-jpw8-vg77-hg97.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-jwcg-x754-2vpg/GHSA-jwcg-x754-2vpg.json b/advisories/unreviewed/2023/01/GHSA-jwcg-x754-2vpg/GHSA-jwcg-x754-2vpg.json index 943e053a44e..5ed3023f7e0 100644 --- a/advisories/unreviewed/2023/01/GHSA-jwcg-x754-2vpg/GHSA-jwcg-x754-2vpg.json +++ b/advisories/unreviewed/2023/01/GHSA-jwcg-x754-2vpg/GHSA-jwcg-x754-2vpg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-m893-832r-qfw5/GHSA-m893-832r-qfw5.json b/advisories/unreviewed/2023/01/GHSA-m893-832r-qfw5/GHSA-m893-832r-qfw5.json index 71a6c9bd6ad..11fde771a78 100644 --- a/advisories/unreviewed/2023/01/GHSA-m893-832r-qfw5/GHSA-m893-832r-qfw5.json +++ b/advisories/unreviewed/2023/01/GHSA-m893-832r-qfw5/GHSA-m893-832r-qfw5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-mj85-hmjp-qxp4/GHSA-mj85-hmjp-qxp4.json b/advisories/unreviewed/2023/01/GHSA-mj85-hmjp-qxp4/GHSA-mj85-hmjp-qxp4.json index 57e933e09b1..04256645a8b 100644 --- a/advisories/unreviewed/2023/01/GHSA-mj85-hmjp-qxp4/GHSA-mj85-hmjp-qxp4.json +++ b/advisories/unreviewed/2023/01/GHSA-mj85-hmjp-qxp4/GHSA-mj85-hmjp-qxp4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-mjgm-cpqr-4j59/GHSA-mjgm-cpqr-4j59.json b/advisories/unreviewed/2023/01/GHSA-mjgm-cpqr-4j59/GHSA-mjgm-cpqr-4j59.json index 790630b9039..0ac76a4c51b 100644 --- a/advisories/unreviewed/2023/01/GHSA-mjgm-cpqr-4j59/GHSA-mjgm-cpqr-4j59.json +++ b/advisories/unreviewed/2023/01/GHSA-mjgm-cpqr-4j59/GHSA-mjgm-cpqr-4j59.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-mmcw-8x5c-5j75/GHSA-mmcw-8x5c-5j75.json b/advisories/unreviewed/2023/01/GHSA-mmcw-8x5c-5j75/GHSA-mmcw-8x5c-5j75.json index cdf89eae881..a85f104c2de 100644 --- a/advisories/unreviewed/2023/01/GHSA-mmcw-8x5c-5j75/GHSA-mmcw-8x5c-5j75.json +++ b/advisories/unreviewed/2023/01/GHSA-mmcw-8x5c-5j75/GHSA-mmcw-8x5c-5j75.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-mpq2-r2jc-4wmr/GHSA-mpq2-r2jc-4wmr.json b/advisories/unreviewed/2023/01/GHSA-mpq2-r2jc-4wmr/GHSA-mpq2-r2jc-4wmr.json index b081523b2e5..828efed36b0 100644 --- a/advisories/unreviewed/2023/01/GHSA-mpq2-r2jc-4wmr/GHSA-mpq2-r2jc-4wmr.json +++ b/advisories/unreviewed/2023/01/GHSA-mpq2-r2jc-4wmr/GHSA-mpq2-r2jc-4wmr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-qm38-g6p6-r6vr/GHSA-qm38-g6p6-r6vr.json b/advisories/unreviewed/2023/01/GHSA-qm38-g6p6-r6vr/GHSA-qm38-g6p6-r6vr.json index e0010c352f6..b77a761064c 100644 --- a/advisories/unreviewed/2023/01/GHSA-qm38-g6p6-r6vr/GHSA-qm38-g6p6-r6vr.json +++ b/advisories/unreviewed/2023/01/GHSA-qm38-g6p6-r6vr/GHSA-qm38-g6p6-r6vr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-qq72-vc8r-56w8/GHSA-qq72-vc8r-56w8.json b/advisories/unreviewed/2023/01/GHSA-qq72-vc8r-56w8/GHSA-qq72-vc8r-56w8.json index cfd3f140dca..21df0005d65 100644 --- a/advisories/unreviewed/2023/01/GHSA-qq72-vc8r-56w8/GHSA-qq72-vc8r-56w8.json +++ b/advisories/unreviewed/2023/01/GHSA-qq72-vc8r-56w8/GHSA-qq72-vc8r-56w8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-r3qf-4hq8-7cm8/GHSA-r3qf-4hq8-7cm8.json b/advisories/unreviewed/2023/01/GHSA-r3qf-4hq8-7cm8/GHSA-r3qf-4hq8-7cm8.json index 6423edc59d6..3fc480ef22a 100644 --- a/advisories/unreviewed/2023/01/GHSA-r3qf-4hq8-7cm8/GHSA-r3qf-4hq8-7cm8.json +++ b/advisories/unreviewed/2023/01/GHSA-r3qf-4hq8-7cm8/GHSA-r3qf-4hq8-7cm8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-rhm6-355p-2674/GHSA-rhm6-355p-2674.json b/advisories/unreviewed/2023/01/GHSA-rhm6-355p-2674/GHSA-rhm6-355p-2674.json index 47ed599a4a3..1bef1490f7f 100644 --- a/advisories/unreviewed/2023/01/GHSA-rhm6-355p-2674/GHSA-rhm6-355p-2674.json +++ b/advisories/unreviewed/2023/01/GHSA-rhm6-355p-2674/GHSA-rhm6-355p-2674.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-vxmx-jvj7-7m48/GHSA-vxmx-jvj7-7m48.json b/advisories/unreviewed/2023/01/GHSA-vxmx-jvj7-7m48/GHSA-vxmx-jvj7-7m48.json index c4b27abc00e..df0cf87a7bd 100644 --- a/advisories/unreviewed/2023/01/GHSA-vxmx-jvj7-7m48/GHSA-vxmx-jvj7-7m48.json +++ b/advisories/unreviewed/2023/01/GHSA-vxmx-jvj7-7m48/GHSA-vxmx-jvj7-7m48.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-x2mv-r7m7-mf57/GHSA-x2mv-r7m7-mf57.json b/advisories/unreviewed/2023/01/GHSA-x2mv-r7m7-mf57/GHSA-x2mv-r7m7-mf57.json index ed98e98b762..5860dc4694d 100644 --- a/advisories/unreviewed/2023/01/GHSA-x2mv-r7m7-mf57/GHSA-x2mv-r7m7-mf57.json +++ b/advisories/unreviewed/2023/01/GHSA-x2mv-r7m7-mf57/GHSA-x2mv-r7m7-mf57.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-xr99-q8hp-qjj7/GHSA-xr99-q8hp-qjj7.json b/advisories/unreviewed/2023/01/GHSA-xr99-q8hp-qjj7/GHSA-xr99-q8hp-qjj7.json index 87e5dc77163..9eed0bf330e 100644 --- a/advisories/unreviewed/2023/01/GHSA-xr99-q8hp-qjj7/GHSA-xr99-q8hp-qjj7.json +++ b/advisories/unreviewed/2023/01/GHSA-xr99-q8hp-qjj7/GHSA-xr99-q8hp-qjj7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-8hw9-jqh3-h2rx/GHSA-8hw9-jqh3-h2rx.json b/advisories/unreviewed/2023/02/GHSA-8hw9-jqh3-h2rx/GHSA-8hw9-jqh3-h2rx.json index 6ebb9c8150c..baf43482005 100644 --- a/advisories/unreviewed/2023/02/GHSA-8hw9-jqh3-h2rx/GHSA-8hw9-jqh3-h2rx.json +++ b/advisories/unreviewed/2023/02/GHSA-8hw9-jqh3-h2rx/GHSA-8hw9-jqh3-h2rx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/04/GHSA-7p8q-cvq9-54g6/GHSA-7p8q-cvq9-54g6.json b/advisories/unreviewed/2023/04/GHSA-7p8q-cvq9-54g6/GHSA-7p8q-cvq9-54g6.json index 4dd0266237c..08b4cfef2d7 100644 --- a/advisories/unreviewed/2023/04/GHSA-7p8q-cvq9-54g6/GHSA-7p8q-cvq9-54g6.json +++ b/advisories/unreviewed/2023/04/GHSA-7p8q-cvq9-54g6/GHSA-7p8q-cvq9-54g6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/06/GHSA-cjjg-rvc7-5p7r/GHSA-cjjg-rvc7-5p7r.json b/advisories/unreviewed/2023/06/GHSA-cjjg-rvc7-5p7r/GHSA-cjjg-rvc7-5p7r.json index 03aacc95fbd..729457e049e 100644 --- a/advisories/unreviewed/2023/06/GHSA-cjjg-rvc7-5p7r/GHSA-cjjg-rvc7-5p7r.json +++ b/advisories/unreviewed/2023/06/GHSA-cjjg-rvc7-5p7r/GHSA-cjjg-rvc7-5p7r.json @@ -7,12 +7,8 @@ "CVE-2023-35843" ], "details": "NocoDB through 0.106.0 (or 0.109.1) has a path traversal vulnerability that allows an unauthenticated attacker to access arbitrary files on the server by manipulating the path parameter of the /download route. This vulnerability could allow an attacker to access sensitive files and data on the server, including configuration files, source code, and other sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/06/GHSA-f2cj-5636-4j38/GHSA-f2cj-5636-4j38.json b/advisories/unreviewed/2023/06/GHSA-f2cj-5636-4j38/GHSA-f2cj-5636-4j38.json index 8f9dd864e13..4a482f555d9 100644 --- a/advisories/unreviewed/2023/06/GHSA-f2cj-5636-4j38/GHSA-f2cj-5636-4j38.json +++ b/advisories/unreviewed/2023/06/GHSA-f2cj-5636-4j38/GHSA-f2cj-5636-4j38.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/06/GHSA-f88c-p55f-gcw8/GHSA-f88c-p55f-gcw8.json b/advisories/unreviewed/2023/06/GHSA-f88c-p55f-gcw8/GHSA-f88c-p55f-gcw8.json index e9414c6b6b8..e73a04ec33f 100644 --- a/advisories/unreviewed/2023/06/GHSA-f88c-p55f-gcw8/GHSA-f88c-p55f-gcw8.json +++ b/advisories/unreviewed/2023/06/GHSA-f88c-p55f-gcw8/GHSA-f88c-p55f-gcw8.json @@ -7,12 +7,8 @@ "CVE-2023-35825" ], "details": "An issue was discovered in the Linux kernel before 6.3.4. A use-after-free was found in r592_remove in drivers/memstick/host/r592.c.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/06/GHSA-h6fr-rh94-prmv/GHSA-h6fr-rh94-prmv.json b/advisories/unreviewed/2023/06/GHSA-h6fr-rh94-prmv/GHSA-h6fr-rh94-prmv.json index 11bf39537c2..3c0f20a133e 100644 --- a/advisories/unreviewed/2023/06/GHSA-h6fr-rh94-prmv/GHSA-h6fr-rh94-prmv.json +++ b/advisories/unreviewed/2023/06/GHSA-h6fr-rh94-prmv/GHSA-h6fr-rh94-prmv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/06/GHSA-v9pp-h525-vwm9/GHSA-v9pp-h525-vwm9.json b/advisories/unreviewed/2023/06/GHSA-v9pp-h525-vwm9/GHSA-v9pp-h525-vwm9.json index 850b1b2af5a..3fb3fb2ad81 100644 --- a/advisories/unreviewed/2023/06/GHSA-v9pp-h525-vwm9/GHSA-v9pp-h525-vwm9.json +++ b/advisories/unreviewed/2023/06/GHSA-v9pp-h525-vwm9/GHSA-v9pp-h525-vwm9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/06/GHSA-xch8-fp3g-32mq/GHSA-xch8-fp3g-32mq.json b/advisories/unreviewed/2023/06/GHSA-xch8-fp3g-32mq/GHSA-xch8-fp3g-32mq.json index 9d70654ca4d..931eea1f938 100644 --- a/advisories/unreviewed/2023/06/GHSA-xch8-fp3g-32mq/GHSA-xch8-fp3g-32mq.json +++ b/advisories/unreviewed/2023/06/GHSA-xch8-fp3g-32mq/GHSA-xch8-fp3g-32mq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-6px3-qxvf-fwv5/GHSA-6px3-qxvf-fwv5.json b/advisories/unreviewed/2023/10/GHSA-6px3-qxvf-fwv5/GHSA-6px3-qxvf-fwv5.json index 64ac5455638..048938e6072 100644 --- a/advisories/unreviewed/2023/10/GHSA-6px3-qxvf-fwv5/GHSA-6px3-qxvf-fwv5.json +++ b/advisories/unreviewed/2023/10/GHSA-6px3-qxvf-fwv5/GHSA-6px3-qxvf-fwv5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-9jvg-rv57-qj93/GHSA-9jvg-rv57-qj93.json b/advisories/unreviewed/2023/10/GHSA-9jvg-rv57-qj93/GHSA-9jvg-rv57-qj93.json index cd1e9c67dc1..49458eb8ebf 100644 --- a/advisories/unreviewed/2023/10/GHSA-9jvg-rv57-qj93/GHSA-9jvg-rv57-qj93.json +++ b/advisories/unreviewed/2023/10/GHSA-9jvg-rv57-qj93/GHSA-9jvg-rv57-qj93.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-jhv5-cxf2-r67v/GHSA-jhv5-cxf2-r67v.json b/advisories/unreviewed/2023/10/GHSA-jhv5-cxf2-r67v/GHSA-jhv5-cxf2-r67v.json index c229b0bb746..f0807e442c9 100644 --- a/advisories/unreviewed/2023/10/GHSA-jhv5-cxf2-r67v/GHSA-jhv5-cxf2-r67v.json +++ b/advisories/unreviewed/2023/10/GHSA-jhv5-cxf2-r67v/GHSA-jhv5-cxf2-r67v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-2qrw-655g-f524/GHSA-2qrw-655g-f524.json b/advisories/unreviewed/2023/12/GHSA-2qrw-655g-f524/GHSA-2qrw-655g-f524.json index e43853d21b3..581b28146b2 100644 --- a/advisories/unreviewed/2023/12/GHSA-2qrw-655g-f524/GHSA-2qrw-655g-f524.json +++ b/advisories/unreviewed/2023/12/GHSA-2qrw-655g-f524/GHSA-2qrw-655g-f524.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-4779-3f76-8vx3/GHSA-4779-3f76-8vx3.json b/advisories/unreviewed/2023/12/GHSA-4779-3f76-8vx3/GHSA-4779-3f76-8vx3.json index 7a225db58f0..36c9076c3ef 100644 --- a/advisories/unreviewed/2023/12/GHSA-4779-3f76-8vx3/GHSA-4779-3f76-8vx3.json +++ b/advisories/unreviewed/2023/12/GHSA-4779-3f76-8vx3/GHSA-4779-3f76-8vx3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-phhr-cqm7-gjv6/GHSA-phhr-cqm7-gjv6.json b/advisories/unreviewed/2023/12/GHSA-phhr-cqm7-gjv6/GHSA-phhr-cqm7-gjv6.json index c615a51ac38..06b871c7639 100644 --- a/advisories/unreviewed/2023/12/GHSA-phhr-cqm7-gjv6/GHSA-phhr-cqm7-gjv6.json +++ b/advisories/unreviewed/2023/12/GHSA-phhr-cqm7-gjv6/GHSA-phhr-cqm7-gjv6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-r8h5-fm59-g356/GHSA-r8h5-fm59-g356.json b/advisories/unreviewed/2023/12/GHSA-r8h5-fm59-g356/GHSA-r8h5-fm59-g356.json index cb907c5b925..ac4db5455b2 100644 --- a/advisories/unreviewed/2023/12/GHSA-r8h5-fm59-g356/GHSA-r8h5-fm59-g356.json +++ b/advisories/unreviewed/2023/12/GHSA-r8h5-fm59-g356/GHSA-r8h5-fm59-g356.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -87,9 +85,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/01/GHSA-3h6x-952r-xr8p/GHSA-3h6x-952r-xr8p.json b/advisories/unreviewed/2024/01/GHSA-3h6x-952r-xr8p/GHSA-3h6x-952r-xr8p.json index 522ab096652..ff3364d5796 100644 --- a/advisories/unreviewed/2024/01/GHSA-3h6x-952r-xr8p/GHSA-3h6x-952r-xr8p.json +++ b/advisories/unreviewed/2024/01/GHSA-3h6x-952r-xr8p/GHSA-3h6x-952r-xr8p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -107,9 +105,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/01/GHSA-4287-v2hm-q9f2/GHSA-4287-v2hm-q9f2.json b/advisories/unreviewed/2024/01/GHSA-4287-v2hm-q9f2/GHSA-4287-v2hm-q9f2.json index 3f08b5f0b27..1ed2dbf0f0f 100644 --- a/advisories/unreviewed/2024/01/GHSA-4287-v2hm-q9f2/GHSA-4287-v2hm-q9f2.json +++ b/advisories/unreviewed/2024/01/GHSA-4287-v2hm-q9f2/GHSA-4287-v2hm-q9f2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-73m5-j333-fcwc/GHSA-73m5-j333-fcwc.json b/advisories/unreviewed/2024/01/GHSA-73m5-j333-fcwc/GHSA-73m5-j333-fcwc.json index e917f0b5bf4..f1001f81296 100644 --- a/advisories/unreviewed/2024/01/GHSA-73m5-j333-fcwc/GHSA-73m5-j333-fcwc.json +++ b/advisories/unreviewed/2024/01/GHSA-73m5-j333-fcwc/GHSA-73m5-j333-fcwc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -107,9 +105,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/01/GHSA-93px-8x98-j7p2/GHSA-93px-8x98-j7p2.json b/advisories/unreviewed/2024/01/GHSA-93px-8x98-j7p2/GHSA-93px-8x98-j7p2.json index d2fb17e0d0b..7ccd6b09011 100644 --- a/advisories/unreviewed/2024/01/GHSA-93px-8x98-j7p2/GHSA-93px-8x98-j7p2.json +++ b/advisories/unreviewed/2024/01/GHSA-93px-8x98-j7p2/GHSA-93px-8x98-j7p2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-jprr-pf4r-gvp5/GHSA-jprr-pf4r-gvp5.json b/advisories/unreviewed/2024/03/GHSA-jprr-pf4r-gvp5/GHSA-jprr-pf4r-gvp5.json index 998482709b0..f7b8b843303 100644 --- a/advisories/unreviewed/2024/03/GHSA-jprr-pf4r-gvp5/GHSA-jprr-pf4r-gvp5.json +++ b/advisories/unreviewed/2024/03/GHSA-jprr-pf4r-gvp5/GHSA-jprr-pf4r-gvp5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -47,9 +45,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-c6h3-g88w-qcm8/GHSA-c6h3-g88w-qcm8.json b/advisories/unreviewed/2024/05/GHSA-c6h3-g88w-qcm8/GHSA-c6h3-g88w-qcm8.json index ab33da416c7..1ac58c9a41a 100644 --- a/advisories/unreviewed/2024/05/GHSA-c6h3-g88w-qcm8/GHSA-c6h3-g88w-qcm8.json +++ b/advisories/unreviewed/2024/05/GHSA-c6h3-g88w-qcm8/GHSA-c6h3-g88w-qcm8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-fcgh-hm5r-m53h/GHSA-fcgh-hm5r-m53h.json b/advisories/unreviewed/2024/05/GHSA-fcgh-hm5r-m53h/GHSA-fcgh-hm5r-m53h.json index 4ad21c0e43f..65b2580d7eb 100644 --- a/advisories/unreviewed/2024/05/GHSA-fcgh-hm5r-m53h/GHSA-fcgh-hm5r-m53h.json +++ b/advisories/unreviewed/2024/05/GHSA-fcgh-hm5r-m53h/GHSA-fcgh-hm5r-m53h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-gprr-m8wv-39v4/GHSA-gprr-m8wv-39v4.json b/advisories/unreviewed/2024/05/GHSA-gprr-m8wv-39v4/GHSA-gprr-m8wv-39v4.json index 97c9a2c1f71..59d11eb1b2b 100644 --- a/advisories/unreviewed/2024/05/GHSA-gprr-m8wv-39v4/GHSA-gprr-m8wv-39v4.json +++ b/advisories/unreviewed/2024/05/GHSA-gprr-m8wv-39v4/GHSA-gprr-m8wv-39v4.json @@ -7,12 +7,8 @@ "CVE-2023-52666" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nksmbd: fix potential circular locking issue in smb2_set_ea()\n\nsmb2_set_ea() can be called in parent inode lock range.\nSo add get_write argument to smb2_set_ea() not to call nested\nmnt_want_write().", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/06/GHSA-227p-7qgj-96v9/GHSA-227p-7qgj-96v9.json b/advisories/unreviewed/2024/06/GHSA-227p-7qgj-96v9/GHSA-227p-7qgj-96v9.json index e865c6892c1..3550c217cad 100644 --- a/advisories/unreviewed/2024/06/GHSA-227p-7qgj-96v9/GHSA-227p-7qgj-96v9.json +++ b/advisories/unreviewed/2024/06/GHSA-227p-7qgj-96v9/GHSA-227p-7qgj-96v9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-23pr-fhrm-f58r/GHSA-23pr-fhrm-f58r.json b/advisories/unreviewed/2024/06/GHSA-23pr-fhrm-f58r/GHSA-23pr-fhrm-f58r.json index 379f85e95a6..c7e40e1edf7 100644 --- a/advisories/unreviewed/2024/06/GHSA-23pr-fhrm-f58r/GHSA-23pr-fhrm-f58r.json +++ b/advisories/unreviewed/2024/06/GHSA-23pr-fhrm-f58r/GHSA-23pr-fhrm-f58r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-294x-mfp7-qj66/GHSA-294x-mfp7-qj66.json b/advisories/unreviewed/2024/06/GHSA-294x-mfp7-qj66/GHSA-294x-mfp7-qj66.json index 6454ae720e5..c2214db5887 100644 --- a/advisories/unreviewed/2024/06/GHSA-294x-mfp7-qj66/GHSA-294x-mfp7-qj66.json +++ b/advisories/unreviewed/2024/06/GHSA-294x-mfp7-qj66/GHSA-294x-mfp7-qj66.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-349w-vchp-x42g/GHSA-349w-vchp-x42g.json b/advisories/unreviewed/2024/06/GHSA-349w-vchp-x42g/GHSA-349w-vchp-x42g.json index 0607b262735..caf23350797 100644 --- a/advisories/unreviewed/2024/06/GHSA-349w-vchp-x42g/GHSA-349w-vchp-x42g.json +++ b/advisories/unreviewed/2024/06/GHSA-349w-vchp-x42g/GHSA-349w-vchp-x42g.json @@ -7,12 +7,8 @@ "CVE-2024-2230" ], "details": "Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/06/GHSA-38gh-44mj-6cx9/GHSA-38gh-44mj-6cx9.json b/advisories/unreviewed/2024/06/GHSA-38gh-44mj-6cx9/GHSA-38gh-44mj-6cx9.json index 5db84794835..646a4feed19 100644 --- a/advisories/unreviewed/2024/06/GHSA-38gh-44mj-6cx9/GHSA-38gh-44mj-6cx9.json +++ b/advisories/unreviewed/2024/06/GHSA-38gh-44mj-6cx9/GHSA-38gh-44mj-6cx9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-3989-vpff-cvxj/GHSA-3989-vpff-cvxj.json b/advisories/unreviewed/2024/06/GHSA-3989-vpff-cvxj/GHSA-3989-vpff-cvxj.json index 736c3e67cf2..4ae110c2aaa 100644 --- a/advisories/unreviewed/2024/06/GHSA-3989-vpff-cvxj/GHSA-3989-vpff-cvxj.json +++ b/advisories/unreviewed/2024/06/GHSA-3989-vpff-cvxj/GHSA-3989-vpff-cvxj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-3cff-hppc-4g4r/GHSA-3cff-hppc-4g4r.json b/advisories/unreviewed/2024/06/GHSA-3cff-hppc-4g4r/GHSA-3cff-hppc-4g4r.json index 14af9cb8d9f..9550dd72f7e 100644 --- a/advisories/unreviewed/2024/06/GHSA-3cff-hppc-4g4r/GHSA-3cff-hppc-4g4r.json +++ b/advisories/unreviewed/2024/06/GHSA-3cff-hppc-4g4r/GHSA-3cff-hppc-4g4r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-3fc6-rfv9-rx3p/GHSA-3fc6-rfv9-rx3p.json b/advisories/unreviewed/2024/06/GHSA-3fc6-rfv9-rx3p/GHSA-3fc6-rfv9-rx3p.json index 2d54bdbbc9a..78615d49f98 100644 --- a/advisories/unreviewed/2024/06/GHSA-3fc6-rfv9-rx3p/GHSA-3fc6-rfv9-rx3p.json +++ b/advisories/unreviewed/2024/06/GHSA-3fc6-rfv9-rx3p/GHSA-3fc6-rfv9-rx3p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/06/GHSA-3x3h-w82j-w642/GHSA-3x3h-w82j-w642.json b/advisories/unreviewed/2024/06/GHSA-3x3h-w82j-w642/GHSA-3x3h-w82j-w642.json index 61b63a8985a..6356a44b2aa 100644 --- a/advisories/unreviewed/2024/06/GHSA-3x3h-w82j-w642/GHSA-3x3h-w82j-w642.json +++ b/advisories/unreviewed/2024/06/GHSA-3x3h-w82j-w642/GHSA-3x3h-w82j-w642.json @@ -7,12 +7,8 @@ "CVE-2024-5782" ], "details": "Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/06/GHSA-457m-vq92-44f4/GHSA-457m-vq92-44f4.json b/advisories/unreviewed/2024/06/GHSA-457m-vq92-44f4/GHSA-457m-vq92-44f4.json index 412dd6b5ab7..165f9324689 100644 --- a/advisories/unreviewed/2024/06/GHSA-457m-vq92-44f4/GHSA-457m-vq92-44f4.json +++ b/advisories/unreviewed/2024/06/GHSA-457m-vq92-44f4/GHSA-457m-vq92-44f4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-45w7-mp7w-9jhm/GHSA-45w7-mp7w-9jhm.json b/advisories/unreviewed/2024/06/GHSA-45w7-mp7w-9jhm/GHSA-45w7-mp7w-9jhm.json index 881a3d47099..e3c0d1e088d 100644 --- a/advisories/unreviewed/2024/06/GHSA-45w7-mp7w-9jhm/GHSA-45w7-mp7w-9jhm.json +++ b/advisories/unreviewed/2024/06/GHSA-45w7-mp7w-9jhm/GHSA-45w7-mp7w-9jhm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-47wc-gh7x-58g7/GHSA-47wc-gh7x-58g7.json b/advisories/unreviewed/2024/06/GHSA-47wc-gh7x-58g7/GHSA-47wc-gh7x-58g7.json index ecc9e8d24fa..1c2b1353a04 100644 --- a/advisories/unreviewed/2024/06/GHSA-47wc-gh7x-58g7/GHSA-47wc-gh7x-58g7.json +++ b/advisories/unreviewed/2024/06/GHSA-47wc-gh7x-58g7/GHSA-47wc-gh7x-58g7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-482g-x733-43f8/GHSA-482g-x733-43f8.json b/advisories/unreviewed/2024/06/GHSA-482g-x733-43f8/GHSA-482g-x733-43f8.json index 44a7a0c664c..ce49416a5c5 100644 --- a/advisories/unreviewed/2024/06/GHSA-482g-x733-43f8/GHSA-482g-x733-43f8.json +++ b/advisories/unreviewed/2024/06/GHSA-482g-x733-43f8/GHSA-482g-x733-43f8.json @@ -7,12 +7,8 @@ "CVE-2024-5779" ], "details": "Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/06/GHSA-483w-q33g-j5qq/GHSA-483w-q33g-j5qq.json b/advisories/unreviewed/2024/06/GHSA-483w-q33g-j5qq/GHSA-483w-q33g-j5qq.json index d302f0bfd55..7f16aa5ced6 100644 --- a/advisories/unreviewed/2024/06/GHSA-483w-q33g-j5qq/GHSA-483w-q33g-j5qq.json +++ b/advisories/unreviewed/2024/06/GHSA-483w-q33g-j5qq/GHSA-483w-q33g-j5qq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/06/GHSA-4936-pv53-5frr/GHSA-4936-pv53-5frr.json b/advisories/unreviewed/2024/06/GHSA-4936-pv53-5frr/GHSA-4936-pv53-5frr.json index 1d2581888b9..1898121cd02 100644 --- a/advisories/unreviewed/2024/06/GHSA-4936-pv53-5frr/GHSA-4936-pv53-5frr.json +++ b/advisories/unreviewed/2024/06/GHSA-4936-pv53-5frr/GHSA-4936-pv53-5frr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-4pg5-hx4c-34cx/GHSA-4pg5-hx4c-34cx.json b/advisories/unreviewed/2024/06/GHSA-4pg5-hx4c-34cx/GHSA-4pg5-hx4c-34cx.json index 01c312833f8..8573e871830 100644 --- a/advisories/unreviewed/2024/06/GHSA-4pg5-hx4c-34cx/GHSA-4pg5-hx4c-34cx.json +++ b/advisories/unreviewed/2024/06/GHSA-4pg5-hx4c-34cx/GHSA-4pg5-hx4c-34cx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-56c5-9v4w-8rjp/GHSA-56c5-9v4w-8rjp.json b/advisories/unreviewed/2024/06/GHSA-56c5-9v4w-8rjp/GHSA-56c5-9v4w-8rjp.json index e6379cb2f1e..c916e1e5b8f 100644 --- a/advisories/unreviewed/2024/06/GHSA-56c5-9v4w-8rjp/GHSA-56c5-9v4w-8rjp.json +++ b/advisories/unreviewed/2024/06/GHSA-56c5-9v4w-8rjp/GHSA-56c5-9v4w-8rjp.json @@ -7,12 +7,8 @@ "CVE-2024-3468" ], "details": "There is a vulnerability in AVEVA PI Web API that could allow malicious code to execute on the PI Web API environment under the privileges of an interactive user that was socially engineered to use API XML import functionality with content supplied by an attacker.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-597m-8j3v-mvc5/GHSA-597m-8j3v-mvc5.json b/advisories/unreviewed/2024/06/GHSA-597m-8j3v-mvc5/GHSA-597m-8j3v-mvc5.json index 7e1bc451b6d..dcc051ff147 100644 --- a/advisories/unreviewed/2024/06/GHSA-597m-8j3v-mvc5/GHSA-597m-8j3v-mvc5.json +++ b/advisories/unreviewed/2024/06/GHSA-597m-8j3v-mvc5/GHSA-597m-8j3v-mvc5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/06/GHSA-59h5-f896-qx2f/GHSA-59h5-f896-qx2f.json b/advisories/unreviewed/2024/06/GHSA-59h5-f896-qx2f/GHSA-59h5-f896-qx2f.json index 83ab854917e..2a5b29a3d9d 100644 --- a/advisories/unreviewed/2024/06/GHSA-59h5-f896-qx2f/GHSA-59h5-f896-qx2f.json +++ b/advisories/unreviewed/2024/06/GHSA-59h5-f896-qx2f/GHSA-59h5-f896-qx2f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-5gww-p4cx-wj7p/GHSA-5gww-p4cx-wj7p.json b/advisories/unreviewed/2024/06/GHSA-5gww-p4cx-wj7p/GHSA-5gww-p4cx-wj7p.json index 909da48dcc2..a44d0d95bde 100644 --- a/advisories/unreviewed/2024/06/GHSA-5gww-p4cx-wj7p/GHSA-5gww-p4cx-wj7p.json +++ b/advisories/unreviewed/2024/06/GHSA-5gww-p4cx-wj7p/GHSA-5gww-p4cx-wj7p.json @@ -7,12 +7,8 @@ "CVE-2024-5783" ], "details": "Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/06/GHSA-74f6-jvr9-qch3/GHSA-74f6-jvr9-qch3.json b/advisories/unreviewed/2024/06/GHSA-74f6-jvr9-qch3/GHSA-74f6-jvr9-qch3.json index 4478fabe49f..a47a07edd10 100644 --- a/advisories/unreviewed/2024/06/GHSA-74f6-jvr9-qch3/GHSA-74f6-jvr9-qch3.json +++ b/advisories/unreviewed/2024/06/GHSA-74f6-jvr9-qch3/GHSA-74f6-jvr9-qch3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-75r7-wf67-87f9/GHSA-75r7-wf67-87f9.json b/advisories/unreviewed/2024/06/GHSA-75r7-wf67-87f9/GHSA-75r7-wf67-87f9.json index 2a68129e218..9ce3242f7ec 100644 --- a/advisories/unreviewed/2024/06/GHSA-75r7-wf67-87f9/GHSA-75r7-wf67-87f9.json +++ b/advisories/unreviewed/2024/06/GHSA-75r7-wf67-87f9/GHSA-75r7-wf67-87f9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-7682-crgj-3p5h/GHSA-7682-crgj-3p5h.json b/advisories/unreviewed/2024/06/GHSA-7682-crgj-3p5h/GHSA-7682-crgj-3p5h.json index 6e23605fc88..4d1ed527934 100644 --- a/advisories/unreviewed/2024/06/GHSA-7682-crgj-3p5h/GHSA-7682-crgj-3p5h.json +++ b/advisories/unreviewed/2024/06/GHSA-7682-crgj-3p5h/GHSA-7682-crgj-3p5h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-794c-cp85-xv63/GHSA-794c-cp85-xv63.json b/advisories/unreviewed/2024/06/GHSA-794c-cp85-xv63/GHSA-794c-cp85-xv63.json index 38098a6ea39..63c761b16fc 100644 --- a/advisories/unreviewed/2024/06/GHSA-794c-cp85-xv63/GHSA-794c-cp85-xv63.json +++ b/advisories/unreviewed/2024/06/GHSA-794c-cp85-xv63/GHSA-794c-cp85-xv63.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-7f6c-vw35-vwgh/GHSA-7f6c-vw35-vwgh.json b/advisories/unreviewed/2024/06/GHSA-7f6c-vw35-vwgh/GHSA-7f6c-vw35-vwgh.json index 52389da85fd..f957b62e602 100644 --- a/advisories/unreviewed/2024/06/GHSA-7f6c-vw35-vwgh/GHSA-7f6c-vw35-vwgh.json +++ b/advisories/unreviewed/2024/06/GHSA-7f6c-vw35-vwgh/GHSA-7f6c-vw35-vwgh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-7mqf-f8fg-5rvr/GHSA-7mqf-f8fg-5rvr.json b/advisories/unreviewed/2024/06/GHSA-7mqf-f8fg-5rvr/GHSA-7mqf-f8fg-5rvr.json index 7bca60637e8..9322fe11822 100644 --- a/advisories/unreviewed/2024/06/GHSA-7mqf-f8fg-5rvr/GHSA-7mqf-f8fg-5rvr.json +++ b/advisories/unreviewed/2024/06/GHSA-7mqf-f8fg-5rvr/GHSA-7mqf-f8fg-5rvr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-83xj-7jxp-xh57/GHSA-83xj-7jxp-xh57.json b/advisories/unreviewed/2024/06/GHSA-83xj-7jxp-xh57/GHSA-83xj-7jxp-xh57.json index bf11dfaace4..0e7e1d67922 100644 --- a/advisories/unreviewed/2024/06/GHSA-83xj-7jxp-xh57/GHSA-83xj-7jxp-xh57.json +++ b/advisories/unreviewed/2024/06/GHSA-83xj-7jxp-xh57/GHSA-83xj-7jxp-xh57.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-8pqc-r2rx-5hhc/GHSA-8pqc-r2rx-5hhc.json b/advisories/unreviewed/2024/06/GHSA-8pqc-r2rx-5hhc/GHSA-8pqc-r2rx-5hhc.json index 8ff3696a6ad..5ff10bc8669 100644 --- a/advisories/unreviewed/2024/06/GHSA-8pqc-r2rx-5hhc/GHSA-8pqc-r2rx-5hhc.json +++ b/advisories/unreviewed/2024/06/GHSA-8pqc-r2rx-5hhc/GHSA-8pqc-r2rx-5hhc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/06/GHSA-8xmg-v9fm-xcgv/GHSA-8xmg-v9fm-xcgv.json b/advisories/unreviewed/2024/06/GHSA-8xmg-v9fm-xcgv/GHSA-8xmg-v9fm-xcgv.json index d7e9bcbf4fb..8b39728b2b8 100644 --- a/advisories/unreviewed/2024/06/GHSA-8xmg-v9fm-xcgv/GHSA-8xmg-v9fm-xcgv.json +++ b/advisories/unreviewed/2024/06/GHSA-8xmg-v9fm-xcgv/GHSA-8xmg-v9fm-xcgv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/06/GHSA-9267-324r-qccw/GHSA-9267-324r-qccw.json b/advisories/unreviewed/2024/06/GHSA-9267-324r-qccw/GHSA-9267-324r-qccw.json index de683f6c2a3..3b722ef7887 100644 --- a/advisories/unreviewed/2024/06/GHSA-9267-324r-qccw/GHSA-9267-324r-qccw.json +++ b/advisories/unreviewed/2024/06/GHSA-9267-324r-qccw/GHSA-9267-324r-qccw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/06/GHSA-976j-29v7-qjc5/GHSA-976j-29v7-qjc5.json b/advisories/unreviewed/2024/06/GHSA-976j-29v7-qjc5/GHSA-976j-29v7-qjc5.json index 2a3da0fb25b..46e63d22441 100644 --- a/advisories/unreviewed/2024/06/GHSA-976j-29v7-qjc5/GHSA-976j-29v7-qjc5.json +++ b/advisories/unreviewed/2024/06/GHSA-976j-29v7-qjc5/GHSA-976j-29v7-qjc5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-9c5q-5mvp-7rhh/GHSA-9c5q-5mvp-7rhh.json b/advisories/unreviewed/2024/06/GHSA-9c5q-5mvp-7rhh/GHSA-9c5q-5mvp-7rhh.json index 43cb212fe0e..f78a26d60ef 100644 --- a/advisories/unreviewed/2024/06/GHSA-9c5q-5mvp-7rhh/GHSA-9c5q-5mvp-7rhh.json +++ b/advisories/unreviewed/2024/06/GHSA-9c5q-5mvp-7rhh/GHSA-9c5q-5mvp-7rhh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -47,9 +45,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/06/GHSA-9g3p-2g77-4wq8/GHSA-9g3p-2g77-4wq8.json b/advisories/unreviewed/2024/06/GHSA-9g3p-2g77-4wq8/GHSA-9g3p-2g77-4wq8.json index 5b6dc24dcf4..13ea4d89a92 100644 --- a/advisories/unreviewed/2024/06/GHSA-9g3p-2g77-4wq8/GHSA-9g3p-2g77-4wq8.json +++ b/advisories/unreviewed/2024/06/GHSA-9g3p-2g77-4wq8/GHSA-9g3p-2g77-4wq8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-9j2p-qj34-2h4c/GHSA-9j2p-qj34-2h4c.json b/advisories/unreviewed/2024/06/GHSA-9j2p-qj34-2h4c/GHSA-9j2p-qj34-2h4c.json index 44b60544610..3b19378916f 100644 --- a/advisories/unreviewed/2024/06/GHSA-9j2p-qj34-2h4c/GHSA-9j2p-qj34-2h4c.json +++ b/advisories/unreviewed/2024/06/GHSA-9j2p-qj34-2h4c/GHSA-9j2p-qj34-2h4c.json @@ -7,12 +7,8 @@ "CVE-2024-5778" ], "details": "Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/06/GHSA-cpf9-v223-82fq/GHSA-cpf9-v223-82fq.json b/advisories/unreviewed/2024/06/GHSA-cpf9-v223-82fq/GHSA-cpf9-v223-82fq.json index 85fda4a9cf0..7b6cbdc45e7 100644 --- a/advisories/unreviewed/2024/06/GHSA-cpf9-v223-82fq/GHSA-cpf9-v223-82fq.json +++ b/advisories/unreviewed/2024/06/GHSA-cpf9-v223-82fq/GHSA-cpf9-v223-82fq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-cqx6-vqmj-2pph/GHSA-cqx6-vqmj-2pph.json b/advisories/unreviewed/2024/06/GHSA-cqx6-vqmj-2pph/GHSA-cqx6-vqmj-2pph.json index 13f95915683..e07beb8d05c 100644 --- a/advisories/unreviewed/2024/06/GHSA-cqx6-vqmj-2pph/GHSA-cqx6-vqmj-2pph.json +++ b/advisories/unreviewed/2024/06/GHSA-cqx6-vqmj-2pph/GHSA-cqx6-vqmj-2pph.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-f3c2-fcqx-5mpj/GHSA-f3c2-fcqx-5mpj.json b/advisories/unreviewed/2024/06/GHSA-f3c2-fcqx-5mpj/GHSA-f3c2-fcqx-5mpj.json index 8f6a53dfdbc..be43e993afa 100644 --- a/advisories/unreviewed/2024/06/GHSA-f3c2-fcqx-5mpj/GHSA-f3c2-fcqx-5mpj.json +++ b/advisories/unreviewed/2024/06/GHSA-f3c2-fcqx-5mpj/GHSA-f3c2-fcqx-5mpj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-f557-c6mq-9h68/GHSA-f557-c6mq-9h68.json b/advisories/unreviewed/2024/06/GHSA-f557-c6mq-9h68/GHSA-f557-c6mq-9h68.json index b7d6d2b6270..4430b48773c 100644 --- a/advisories/unreviewed/2024/06/GHSA-f557-c6mq-9h68/GHSA-f557-c6mq-9h68.json +++ b/advisories/unreviewed/2024/06/GHSA-f557-c6mq-9h68/GHSA-f557-c6mq-9h68.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/06/GHSA-f9h4-h7gc-c283/GHSA-f9h4-h7gc-c283.json b/advisories/unreviewed/2024/06/GHSA-f9h4-h7gc-c283/GHSA-f9h4-h7gc-c283.json index d7f14d0bbc6..2d9a8ca1024 100644 --- a/advisories/unreviewed/2024/06/GHSA-f9h4-h7gc-c283/GHSA-f9h4-h7gc-c283.json +++ b/advisories/unreviewed/2024/06/GHSA-f9h4-h7gc-c283/GHSA-f9h4-h7gc-c283.json @@ -7,12 +7,8 @@ "CVE-2024-5781" ], "details": "Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/06/GHSA-fm6m-fmh2-f72v/GHSA-fm6m-fmh2-f72v.json b/advisories/unreviewed/2024/06/GHSA-fm6m-fmh2-f72v/GHSA-fm6m-fmh2-f72v.json index 65634595ce5..e97d345169c 100644 --- a/advisories/unreviewed/2024/06/GHSA-fm6m-fmh2-f72v/GHSA-fm6m-fmh2-f72v.json +++ b/advisories/unreviewed/2024/06/GHSA-fm6m-fmh2-f72v/GHSA-fm6m-fmh2-f72v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-fp9r-pfv9-88w5/GHSA-fp9r-pfv9-88w5.json b/advisories/unreviewed/2024/06/GHSA-fp9r-pfv9-88w5/GHSA-fp9r-pfv9-88w5.json index 35f4d0045d8..1222d0eeb7a 100644 --- a/advisories/unreviewed/2024/06/GHSA-fp9r-pfv9-88w5/GHSA-fp9r-pfv9-88w5.json +++ b/advisories/unreviewed/2024/06/GHSA-fp9r-pfv9-88w5/GHSA-fp9r-pfv9-88w5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-g459-66wh-4437/GHSA-g459-66wh-4437.json b/advisories/unreviewed/2024/06/GHSA-g459-66wh-4437/GHSA-g459-66wh-4437.json index a12060c4cbc..44019fd2937 100644 --- a/advisories/unreviewed/2024/06/GHSA-g459-66wh-4437/GHSA-g459-66wh-4437.json +++ b/advisories/unreviewed/2024/06/GHSA-g459-66wh-4437/GHSA-g459-66wh-4437.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-gj47-rgj5-5jrf/GHSA-gj47-rgj5-5jrf.json b/advisories/unreviewed/2024/06/GHSA-gj47-rgj5-5jrf/GHSA-gj47-rgj5-5jrf.json index cf682cb8140..0854609bbd5 100644 --- a/advisories/unreviewed/2024/06/GHSA-gj47-rgj5-5jrf/GHSA-gj47-rgj5-5jrf.json +++ b/advisories/unreviewed/2024/06/GHSA-gj47-rgj5-5jrf/GHSA-gj47-rgj5-5jrf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/06/GHSA-h9rg-mrq2-9rc6/GHSA-h9rg-mrq2-9rc6.json b/advisories/unreviewed/2024/06/GHSA-h9rg-mrq2-9rc6/GHSA-h9rg-mrq2-9rc6.json index d6bcef51b91..47b57116fe0 100644 --- a/advisories/unreviewed/2024/06/GHSA-h9rg-mrq2-9rc6/GHSA-h9rg-mrq2-9rc6.json +++ b/advisories/unreviewed/2024/06/GHSA-h9rg-mrq2-9rc6/GHSA-h9rg-mrq2-9rc6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/06/GHSA-hch4-9x92-2rqw/GHSA-hch4-9x92-2rqw.json b/advisories/unreviewed/2024/06/GHSA-hch4-9x92-2rqw/GHSA-hch4-9x92-2rqw.json index ba682e55b44..4e5306e3798 100644 --- a/advisories/unreviewed/2024/06/GHSA-hch4-9x92-2rqw/GHSA-hch4-9x92-2rqw.json +++ b/advisories/unreviewed/2024/06/GHSA-hch4-9x92-2rqw/GHSA-hch4-9x92-2rqw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-hf2j-ff52-p8cx/GHSA-hf2j-ff52-p8cx.json b/advisories/unreviewed/2024/06/GHSA-hf2j-ff52-p8cx/GHSA-hf2j-ff52-p8cx.json index d73edb1d4dd..2206ff71dd7 100644 --- a/advisories/unreviewed/2024/06/GHSA-hf2j-ff52-p8cx/GHSA-hf2j-ff52-p8cx.json +++ b/advisories/unreviewed/2024/06/GHSA-hf2j-ff52-p8cx/GHSA-hf2j-ff52-p8cx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-hgwf-5rc9-7vr3/GHSA-hgwf-5rc9-7vr3.json b/advisories/unreviewed/2024/06/GHSA-hgwf-5rc9-7vr3/GHSA-hgwf-5rc9-7vr3.json index dbe9e15e4cd..1cea2bcda29 100644 --- a/advisories/unreviewed/2024/06/GHSA-hgwf-5rc9-7vr3/GHSA-hgwf-5rc9-7vr3.json +++ b/advisories/unreviewed/2024/06/GHSA-hgwf-5rc9-7vr3/GHSA-hgwf-5rc9-7vr3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-hh55-gjrq-j457/GHSA-hh55-gjrq-j457.json b/advisories/unreviewed/2024/06/GHSA-hh55-gjrq-j457/GHSA-hh55-gjrq-j457.json index c1aba70d6b6..86c3dfd6e34 100644 --- a/advisories/unreviewed/2024/06/GHSA-hh55-gjrq-j457/GHSA-hh55-gjrq-j457.json +++ b/advisories/unreviewed/2024/06/GHSA-hh55-gjrq-j457/GHSA-hh55-gjrq-j457.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-j253-hr3w-xhj7/GHSA-j253-hr3w-xhj7.json b/advisories/unreviewed/2024/06/GHSA-j253-hr3w-xhj7/GHSA-j253-hr3w-xhj7.json index 5b1c3460795..948a0c2dea6 100644 --- a/advisories/unreviewed/2024/06/GHSA-j253-hr3w-xhj7/GHSA-j253-hr3w-xhj7.json +++ b/advisories/unreviewed/2024/06/GHSA-j253-hr3w-xhj7/GHSA-j253-hr3w-xhj7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-j37r-fj8f-2g89/GHSA-j37r-fj8f-2g89.json b/advisories/unreviewed/2024/06/GHSA-j37r-fj8f-2g89/GHSA-j37r-fj8f-2g89.json index 9e39509ba20..b0d9688d41b 100644 --- a/advisories/unreviewed/2024/06/GHSA-j37r-fj8f-2g89/GHSA-j37r-fj8f-2g89.json +++ b/advisories/unreviewed/2024/06/GHSA-j37r-fj8f-2g89/GHSA-j37r-fj8f-2g89.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-j648-xv8c-m9c7/GHSA-j648-xv8c-m9c7.json b/advisories/unreviewed/2024/06/GHSA-j648-xv8c-m9c7/GHSA-j648-xv8c-m9c7.json index c503bd6a66b..c27af67685a 100644 --- a/advisories/unreviewed/2024/06/GHSA-j648-xv8c-m9c7/GHSA-j648-xv8c-m9c7.json +++ b/advisories/unreviewed/2024/06/GHSA-j648-xv8c-m9c7/GHSA-j648-xv8c-m9c7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-jf94-q4q8-6jgg/GHSA-jf94-q4q8-6jgg.json b/advisories/unreviewed/2024/06/GHSA-jf94-q4q8-6jgg/GHSA-jf94-q4q8-6jgg.json index 203c412be76..3d30f612bcb 100644 --- a/advisories/unreviewed/2024/06/GHSA-jf94-q4q8-6jgg/GHSA-jf94-q4q8-6jgg.json +++ b/advisories/unreviewed/2024/06/GHSA-jf94-q4q8-6jgg/GHSA-jf94-q4q8-6jgg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-jh5v-jf43-r2r2/GHSA-jh5v-jf43-r2r2.json b/advisories/unreviewed/2024/06/GHSA-jh5v-jf43-r2r2/GHSA-jh5v-jf43-r2r2.json index 2b602c1f4e2..73d49252c79 100644 --- a/advisories/unreviewed/2024/06/GHSA-jh5v-jf43-r2r2/GHSA-jh5v-jf43-r2r2.json +++ b/advisories/unreviewed/2024/06/GHSA-jh5v-jf43-r2r2/GHSA-jh5v-jf43-r2r2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-jrv5-734x-jwfc/GHSA-jrv5-734x-jwfc.json b/advisories/unreviewed/2024/06/GHSA-jrv5-734x-jwfc/GHSA-jrv5-734x-jwfc.json index c85417c027f..a043f4cebd3 100644 --- a/advisories/unreviewed/2024/06/GHSA-jrv5-734x-jwfc/GHSA-jrv5-734x-jwfc.json +++ b/advisories/unreviewed/2024/06/GHSA-jrv5-734x-jwfc/GHSA-jrv5-734x-jwfc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-jw3j-2jxx-89fm/GHSA-jw3j-2jxx-89fm.json b/advisories/unreviewed/2024/06/GHSA-jw3j-2jxx-89fm/GHSA-jw3j-2jxx-89fm.json index 14d55b1791c..b7171b48e40 100644 --- a/advisories/unreviewed/2024/06/GHSA-jw3j-2jxx-89fm/GHSA-jw3j-2jxx-89fm.json +++ b/advisories/unreviewed/2024/06/GHSA-jw3j-2jxx-89fm/GHSA-jw3j-2jxx-89fm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-jw5j-hq8v-39jg/GHSA-jw5j-hq8v-39jg.json b/advisories/unreviewed/2024/06/GHSA-jw5j-hq8v-39jg/GHSA-jw5j-hq8v-39jg.json index 092ec3360ca..7470e995ff1 100644 --- a/advisories/unreviewed/2024/06/GHSA-jw5j-hq8v-39jg/GHSA-jw5j-hq8v-39jg.json +++ b/advisories/unreviewed/2024/06/GHSA-jw5j-hq8v-39jg/GHSA-jw5j-hq8v-39jg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-jw96-4rcp-6fj6/GHSA-jw96-4rcp-6fj6.json b/advisories/unreviewed/2024/06/GHSA-jw96-4rcp-6fj6/GHSA-jw96-4rcp-6fj6.json index 68b0dafd4c4..584d0dba3cb 100644 --- a/advisories/unreviewed/2024/06/GHSA-jw96-4rcp-6fj6/GHSA-jw96-4rcp-6fj6.json +++ b/advisories/unreviewed/2024/06/GHSA-jw96-4rcp-6fj6/GHSA-jw96-4rcp-6fj6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-m57w-mwxg-jc43/GHSA-m57w-mwxg-jc43.json b/advisories/unreviewed/2024/06/GHSA-m57w-mwxg-jc43/GHSA-m57w-mwxg-jc43.json index babe5ceb85e..12a757c7215 100644 --- a/advisories/unreviewed/2024/06/GHSA-m57w-mwxg-jc43/GHSA-m57w-mwxg-jc43.json +++ b/advisories/unreviewed/2024/06/GHSA-m57w-mwxg-jc43/GHSA-m57w-mwxg-jc43.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-m95c-chfx-gfmj/GHSA-m95c-chfx-gfmj.json b/advisories/unreviewed/2024/06/GHSA-m95c-chfx-gfmj/GHSA-m95c-chfx-gfmj.json index 08a43bd32d3..a9afff2c1a6 100644 --- a/advisories/unreviewed/2024/06/GHSA-m95c-chfx-gfmj/GHSA-m95c-chfx-gfmj.json +++ b/advisories/unreviewed/2024/06/GHSA-m95c-chfx-gfmj/GHSA-m95c-chfx-gfmj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-mf32-4qcq-96wh/GHSA-mf32-4qcq-96wh.json b/advisories/unreviewed/2024/06/GHSA-mf32-4qcq-96wh/GHSA-mf32-4qcq-96wh.json index 1dc295e42c3..fe697a8edf4 100644 --- a/advisories/unreviewed/2024/06/GHSA-mf32-4qcq-96wh/GHSA-mf32-4qcq-96wh.json +++ b/advisories/unreviewed/2024/06/GHSA-mf32-4qcq-96wh/GHSA-mf32-4qcq-96wh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-mp2w-fjq2-347v/GHSA-mp2w-fjq2-347v.json b/advisories/unreviewed/2024/06/GHSA-mp2w-fjq2-347v/GHSA-mp2w-fjq2-347v.json index a2df348b3e1..3074a6c77f7 100644 --- a/advisories/unreviewed/2024/06/GHSA-mp2w-fjq2-347v/GHSA-mp2w-fjq2-347v.json +++ b/advisories/unreviewed/2024/06/GHSA-mp2w-fjq2-347v/GHSA-mp2w-fjq2-347v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-mv75-qm55-5jjf/GHSA-mv75-qm55-5jjf.json b/advisories/unreviewed/2024/06/GHSA-mv75-qm55-5jjf/GHSA-mv75-qm55-5jjf.json index e665b00c4c2..e8bae4e0daa 100644 --- a/advisories/unreviewed/2024/06/GHSA-mv75-qm55-5jjf/GHSA-mv75-qm55-5jjf.json +++ b/advisories/unreviewed/2024/06/GHSA-mv75-qm55-5jjf/GHSA-mv75-qm55-5jjf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-q4rw-2q7c-5q83/GHSA-q4rw-2q7c-5q83.json b/advisories/unreviewed/2024/06/GHSA-q4rw-2q7c-5q83/GHSA-q4rw-2q7c-5q83.json index 22279ed0415..8016edaa464 100644 --- a/advisories/unreviewed/2024/06/GHSA-q4rw-2q7c-5q83/GHSA-q4rw-2q7c-5q83.json +++ b/advisories/unreviewed/2024/06/GHSA-q4rw-2q7c-5q83/GHSA-q4rw-2q7c-5q83.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-q5cc-c5xp-qh6h/GHSA-q5cc-c5xp-qh6h.json b/advisories/unreviewed/2024/06/GHSA-q5cc-c5xp-qh6h/GHSA-q5cc-c5xp-qh6h.json index 441bdfe325c..e1d4bb0244c 100644 --- a/advisories/unreviewed/2024/06/GHSA-q5cc-c5xp-qh6h/GHSA-q5cc-c5xp-qh6h.json +++ b/advisories/unreviewed/2024/06/GHSA-q5cc-c5xp-qh6h/GHSA-q5cc-c5xp-qh6h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-qx77-6fv2-rf7p/GHSA-qx77-6fv2-rf7p.json b/advisories/unreviewed/2024/06/GHSA-qx77-6fv2-rf7p/GHSA-qx77-6fv2-rf7p.json index da0b67318f0..cb5811c8c47 100644 --- a/advisories/unreviewed/2024/06/GHSA-qx77-6fv2-rf7p/GHSA-qx77-6fv2-rf7p.json +++ b/advisories/unreviewed/2024/06/GHSA-qx77-6fv2-rf7p/GHSA-qx77-6fv2-rf7p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-r3pr-q6h2-2wph/GHSA-r3pr-q6h2-2wph.json b/advisories/unreviewed/2024/06/GHSA-r3pr-q6h2-2wph/GHSA-r3pr-q6h2-2wph.json index 7a30666b87f..19b9756d129 100644 --- a/advisories/unreviewed/2024/06/GHSA-r3pr-q6h2-2wph/GHSA-r3pr-q6h2-2wph.json +++ b/advisories/unreviewed/2024/06/GHSA-r3pr-q6h2-2wph/GHSA-r3pr-q6h2-2wph.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-r3w6-p6hr-rww6/GHSA-r3w6-p6hr-rww6.json b/advisories/unreviewed/2024/06/GHSA-r3w6-p6hr-rww6/GHSA-r3w6-p6hr-rww6.json index 11a4eae4938..3fbdfa2558f 100644 --- a/advisories/unreviewed/2024/06/GHSA-r3w6-p6hr-rww6/GHSA-r3w6-p6hr-rww6.json +++ b/advisories/unreviewed/2024/06/GHSA-r3w6-p6hr-rww6/GHSA-r3w6-p6hr-rww6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-r62h-v64h-w564/GHSA-r62h-v64h-w564.json b/advisories/unreviewed/2024/06/GHSA-r62h-v64h-w564/GHSA-r62h-v64h-w564.json index 771e072c372..de474d6d622 100644 --- a/advisories/unreviewed/2024/06/GHSA-r62h-v64h-w564/GHSA-r62h-v64h-w564.json +++ b/advisories/unreviewed/2024/06/GHSA-r62h-v64h-w564/GHSA-r62h-v64h-w564.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-rg55-87jg-v3wr/GHSA-rg55-87jg-v3wr.json b/advisories/unreviewed/2024/06/GHSA-rg55-87jg-v3wr/GHSA-rg55-87jg-v3wr.json index 5c2f06df0d5..47dd1b5af53 100644 --- a/advisories/unreviewed/2024/06/GHSA-rg55-87jg-v3wr/GHSA-rg55-87jg-v3wr.json +++ b/advisories/unreviewed/2024/06/GHSA-rg55-87jg-v3wr/GHSA-rg55-87jg-v3wr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-rx7g-f84f-jxv9/GHSA-rx7g-f84f-jxv9.json b/advisories/unreviewed/2024/06/GHSA-rx7g-f84f-jxv9/GHSA-rx7g-f84f-jxv9.json index 121d90ad328..aa40bd525e1 100644 --- a/advisories/unreviewed/2024/06/GHSA-rx7g-f84f-jxv9/GHSA-rx7g-f84f-jxv9.json +++ b/advisories/unreviewed/2024/06/GHSA-rx7g-f84f-jxv9/GHSA-rx7g-f84f-jxv9.json @@ -7,12 +7,8 @@ "CVE-2024-5780" ], "details": "Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/06/GHSA-v5m7-r9rr-hxp7/GHSA-v5m7-r9rr-hxp7.json b/advisories/unreviewed/2024/06/GHSA-v5m7-r9rr-hxp7/GHSA-v5m7-r9rr-hxp7.json index ccf57d73222..f2eae2d28e9 100644 --- a/advisories/unreviewed/2024/06/GHSA-v5m7-r9rr-hxp7/GHSA-v5m7-r9rr-hxp7.json +++ b/advisories/unreviewed/2024/06/GHSA-v5m7-r9rr-hxp7/GHSA-v5m7-r9rr-hxp7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-v9ph-8hf4-hgrx/GHSA-v9ph-8hf4-hgrx.json b/advisories/unreviewed/2024/06/GHSA-v9ph-8hf4-hgrx/GHSA-v9ph-8hf4-hgrx.json index e424efe796f..f2edd2d7003 100644 --- a/advisories/unreviewed/2024/06/GHSA-v9ph-8hf4-hgrx/GHSA-v9ph-8hf4-hgrx.json +++ b/advisories/unreviewed/2024/06/GHSA-v9ph-8hf4-hgrx/GHSA-v9ph-8hf4-hgrx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-w3vp-r637-3fhj/GHSA-w3vp-r637-3fhj.json b/advisories/unreviewed/2024/06/GHSA-w3vp-r637-3fhj/GHSA-w3vp-r637-3fhj.json index a8b78a93fea..455975e59ee 100644 --- a/advisories/unreviewed/2024/06/GHSA-w3vp-r637-3fhj/GHSA-w3vp-r637-3fhj.json +++ b/advisories/unreviewed/2024/06/GHSA-w3vp-r637-3fhj/GHSA-w3vp-r637-3fhj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-whjr-hx5f-gg2r/GHSA-whjr-hx5f-gg2r.json b/advisories/unreviewed/2024/06/GHSA-whjr-hx5f-gg2r/GHSA-whjr-hx5f-gg2r.json index af7c53576de..ce2ead95ba4 100644 --- a/advisories/unreviewed/2024/06/GHSA-whjr-hx5f-gg2r/GHSA-whjr-hx5f-gg2r.json +++ b/advisories/unreviewed/2024/06/GHSA-whjr-hx5f-gg2r/GHSA-whjr-hx5f-gg2r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-wxj4-wcg8-679f/GHSA-wxj4-wcg8-679f.json b/advisories/unreviewed/2024/06/GHSA-wxj4-wcg8-679f/GHSA-wxj4-wcg8-679f.json index abcd570e772..91c1863c1c0 100644 --- a/advisories/unreviewed/2024/06/GHSA-wxj4-wcg8-679f/GHSA-wxj4-wcg8-679f.json +++ b/advisories/unreviewed/2024/06/GHSA-wxj4-wcg8-679f/GHSA-wxj4-wcg8-679f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-xpr6-7hp9-9mvv/GHSA-xpr6-7hp9-9mvv.json b/advisories/unreviewed/2024/06/GHSA-xpr6-7hp9-9mvv/GHSA-xpr6-7hp9-9mvv.json index f73ca19a2de..e77bd6bc916 100644 --- a/advisories/unreviewed/2024/06/GHSA-xpr6-7hp9-9mvv/GHSA-xpr6-7hp9-9mvv.json +++ b/advisories/unreviewed/2024/06/GHSA-xpr6-7hp9-9mvv/GHSA-xpr6-7hp9-9mvv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-xwj5-5q25-vqmg/GHSA-xwj5-5q25-vqmg.json b/advisories/unreviewed/2024/06/GHSA-xwj5-5q25-vqmg/GHSA-xwj5-5q25-vqmg.json index a28c9a169b2..5241b6f040e 100644 --- a/advisories/unreviewed/2024/06/GHSA-xwj5-5q25-vqmg/GHSA-xwj5-5q25-vqmg.json +++ b/advisories/unreviewed/2024/06/GHSA-xwj5-5q25-vqmg/GHSA-xwj5-5q25-vqmg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null,