diff --git a/advisories/github-reviewed/2017/10/GHSA-9p3v-wf2w-v29c/GHSA-9p3v-wf2w-v29c.json b/advisories/github-reviewed/2017/10/GHSA-9p3v-wf2w-v29c/GHSA-9p3v-wf2w-v29c.json index 7e3eb819e64..055fa2b8d36 100644 --- a/advisories/github-reviewed/2017/10/GHSA-9p3v-wf2w-v29c/GHSA-9p3v-wf2w-v29c.json +++ b/advisories/github-reviewed/2017/10/GHSA-9p3v-wf2w-v29c/GHSA-9p3v-wf2w-v29c.json @@ -8,9 +8,7 @@ ], "summary": "Moderate severity vulnerability that affects rails", "details": "Cross-site scripting (XSS) vulnerability in the strip_tags function in Ruby on Rails before 2.2.s, and 2.3.x before 2.3.5, allows remote attackers to inject arbitrary web script or HTML via vectors involving non-printing ASCII characters, related to HTML::Tokenizer and actionpack/lib/action_controller/vendor/html-scanner/html/node.rb.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2017/10/GHSA-9wrq-xvmp-xjc8/GHSA-9wrq-xvmp-xjc8.json b/advisories/github-reviewed/2017/10/GHSA-9wrq-xvmp-xjc8/GHSA-9wrq-xvmp-xjc8.json index 6f62b852c39..6df9bdddcf2 100644 --- a/advisories/github-reviewed/2017/10/GHSA-9wrq-xvmp-xjc8/GHSA-9wrq-xvmp-xjc8.json +++ b/advisories/github-reviewed/2017/10/GHSA-9wrq-xvmp-xjc8/GHSA-9wrq-xvmp-xjc8.json @@ -8,9 +8,7 @@ ], "summary": "High severity vulnerability that affects rails.", "details": "Unspecified vulnerability in the \"dependency resolution mechanism\" in Ruby on Rails 1.1.0 through 1.1.5 allows remote attackers to execute arbitrary Ruby code via a URL that is not properly handled in the routing code, which leads to a denial of service (application hang) or \"data loss,\" a different vulnerability than CVE-2006-4111.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -95,9 +93,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2020-06-16T21:29:44Z", diff --git a/advisories/github-reviewed/2017/10/GHSA-fjfg-q662-gm6j/GHSA-fjfg-q662-gm6j.json b/advisories/github-reviewed/2017/10/GHSA-fjfg-q662-gm6j/GHSA-fjfg-q662-gm6j.json index 6607d18e5d6..469edb1b74c 100644 --- a/advisories/github-reviewed/2017/10/GHSA-fjfg-q662-gm6j/GHSA-fjfg-q662-gm6j.json +++ b/advisories/github-reviewed/2017/10/GHSA-fjfg-q662-gm6j/GHSA-fjfg-q662-gm6j.json @@ -8,9 +8,7 @@ ], "summary": "Moderate severity vulnerability that affects rails", "details": "Rails before 1.2.4, as used for Ruby on Rails, allows remote attackers and ActiveResource servers to determine the existence of arbitrary files and read arbitrary XML files via the Hash.from_xml (Hash#from_xml) method, which uses XmlSimple (XML::Simple) unsafely, as demonstrated by reading passwords from the Pidgin (Gaim) .purple/accounts.xml file.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2017/10/GHSA-gm25-fpmr-43fj/GHSA-gm25-fpmr-43fj.json b/advisories/github-reviewed/2017/10/GHSA-gm25-fpmr-43fj/GHSA-gm25-fpmr-43fj.json index 5f299e05664..fdfa5bdbd6e 100644 --- a/advisories/github-reviewed/2017/10/GHSA-gm25-fpmr-43fj/GHSA-gm25-fpmr-43fj.json +++ b/advisories/github-reviewed/2017/10/GHSA-gm25-fpmr-43fj/GHSA-gm25-fpmr-43fj.json @@ -8,9 +8,7 @@ ], "summary": "Moderate severity vulnerability that affects rails", "details": "Cross-site scripting (XSS) vulnerability in the to_json (ActiveRecord::Base#to_json) function in Ruby on Rails before edge 9606 allows remote attackers to inject arbitrary web script via the input values.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2017/10/GHSA-j24p-r6wx-r79w/GHSA-j24p-r6wx-r79w.json b/advisories/github-reviewed/2017/10/GHSA-j24p-r6wx-r79w/GHSA-j24p-r6wx-r79w.json index fd2fc0c28cb..914581fc204 100644 --- a/advisories/github-reviewed/2017/10/GHSA-j24p-r6wx-r79w/GHSA-j24p-r6wx-r79w.json +++ b/advisories/github-reviewed/2017/10/GHSA-j24p-r6wx-r79w/GHSA-j24p-r6wx-r79w.json @@ -8,9 +8,7 @@ ], "summary": "High severity vulnerability that affects thin", "details": "lib/thin/connection.rb in Thin web server before 1.2.4 relies on the X-Forwarded-For header to determine the IP address of the client, which allows remote attackers to spoof the IP address and hide activities via a modified X-Forwarded-For header.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2017/10/GHSA-jmgf-p46x-982h/GHSA-jmgf-p46x-982h.json b/advisories/github-reviewed/2017/10/GHSA-jmgf-p46x-982h/GHSA-jmgf-p46x-982h.json index 66e53f2d547..e4ce7c13319 100644 --- a/advisories/github-reviewed/2017/10/GHSA-jmgf-p46x-982h/GHSA-jmgf-p46x-982h.json +++ b/advisories/github-reviewed/2017/10/GHSA-jmgf-p46x-982h/GHSA-jmgf-p46x-982h.json @@ -8,9 +8,7 @@ ], "summary": "rails is vulnerable to CRLF injection", "details": "CRLF injection vulnerability in Ruby on Rails before 2.0.5 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a crafted URL to the redirect_to function.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2017/10/GHSA-jwhv-rgqc-fqj5/GHSA-jwhv-rgqc-fqj5.json b/advisories/github-reviewed/2017/10/GHSA-jwhv-rgqc-fqj5/GHSA-jwhv-rgqc-fqj5.json index 35b1bbec794..a55794da4ef 100644 --- a/advisories/github-reviewed/2017/10/GHSA-jwhv-rgqc-fqj5/GHSA-jwhv-rgqc-fqj5.json +++ b/advisories/github-reviewed/2017/10/GHSA-jwhv-rgqc-fqj5/GHSA-jwhv-rgqc-fqj5.json @@ -8,9 +8,7 @@ ], "summary": "Session fixation vulnerability in Rails ", "details": "Session fixation vulnerability in Rails before 1.2.4, as used for Ruby on Rails, allows remote attackers to hijack web sessions via unspecified vectors related to \"URL-based sessions.\"", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2017/10/GHSA-p4c6-77gc-694x/GHSA-p4c6-77gc-694x.json b/advisories/github-reviewed/2017/10/GHSA-p4c6-77gc-694x/GHSA-p4c6-77gc-694x.json index 152ea39cd90..5b51af6de4b 100644 --- a/advisories/github-reviewed/2017/10/GHSA-p4c6-77gc-694x/GHSA-p4c6-77gc-694x.json +++ b/advisories/github-reviewed/2017/10/GHSA-p4c6-77gc-694x/GHSA-p4c6-77gc-694x.json @@ -8,9 +8,7 @@ ], "summary": "session fixation protection mechanism in cgi_process.rb in Rails", "details": "The session fixation protection mechanism in cgi_process.rb in Rails 1.2.4, as used in Ruby on Rails, removes the :cookie_only attribute from the DEFAULT_SESSION_OPTIONS constant, which effectively causes cookie_only to be applied only to the first instantiation of CgiRequest, which allows remote attackers to conduct session fixation attacks. NOTE: this is due to an incomplete fix for CVE-2007-5380.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2017/10/GHSA-rvpq-5xqx-pfpp/GHSA-rvpq-5xqx-pfpp.json b/advisories/github-reviewed/2017/10/GHSA-rvpq-5xqx-pfpp/GHSA-rvpq-5xqx-pfpp.json index 905f9cff4ac..fca41bb9ecb 100644 --- a/advisories/github-reviewed/2017/10/GHSA-rvpq-5xqx-pfpp/GHSA-rvpq-5xqx-pfpp.json +++ b/advisories/github-reviewed/2017/10/GHSA-rvpq-5xqx-pfpp/GHSA-rvpq-5xqx-pfpp.json @@ -8,9 +8,7 @@ ], "summary": "Ruby on Rails vulnerable to code injection", "details": "Ruby on Rails before 1.1.5 allows remote attackers to execute Ruby code with \"severe\" or \"serious\" impact via a File Upload request with an HTTP header that modifies the LOAD_PATH variable, a different vulnerability than CVE-2006-4112.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/08/GHSA-3fg9-hcq5-vxrc/GHSA-3fg9-hcq5-vxrc.json b/advisories/github-reviewed/2022/08/GHSA-3fg9-hcq5-vxrc/GHSA-3fg9-hcq5-vxrc.json index 05033a0a27b..9d8064a1204 100644 --- a/advisories/github-reviewed/2022/08/GHSA-3fg9-hcq5-vxrc/GHSA-3fg9-hcq5-vxrc.json +++ b/advisories/github-reviewed/2022/08/GHSA-3fg9-hcq5-vxrc/GHSA-3fg9-hcq5-vxrc.json @@ -3,14 +3,10 @@ "id": "GHSA-3fg9-hcq5-vxrc", "modified": "2022-08-30T19:55:41Z", "published": "2022-08-30T19:55:41Z", - "aliases": [ - - ], + "aliases": [], "summary": "iana-time-zone vulnerable to use after free in MacOS / iOS implementation", "details": "In iana-time-zone v0.1.43 a use-after-free bug in the MacOS / iOS implementation was introduced.\n\nThe copied system time zone was released before its name was copied.\nIf the system time zone was changed between the call of `CFRelease` and `str::to_owned()`,\nrandom memory would be copied.\n", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/08/GHSA-56x4-j7p9-fcf9/GHSA-56x4-j7p9-fcf9.json b/advisories/github-reviewed/2022/08/GHSA-56x4-j7p9-fcf9/GHSA-56x4-j7p9-fcf9.json index 26bd71500a3..ef3b4daec90 100644 --- a/advisories/github-reviewed/2022/08/GHSA-56x4-j7p9-fcf9/GHSA-56x4-j7p9-fcf9.json +++ b/advisories/github-reviewed/2022/08/GHSA-56x4-j7p9-fcf9/GHSA-56x4-j7p9-fcf9.json @@ -3,14 +3,10 @@ "id": "GHSA-56x4-j7p9-fcf9", "modified": "2022-08-30T20:31:21Z", "published": "2022-08-30T20:31:21Z", - "aliases": [ - - ], + "aliases": [], "summary": "Command Injection in moment-timezone", "details": "### Impact\n\nAll versions of moment-timezone from 0.1.0 contain build tasks vulnerable to command injection.\n\n* if Alice uses tzdata pipeline to package moment-timezone on her own (for example via `grunt data:2014d`, where `2014d` stands for the version of the tzdata to be used from IANA's website),\n* and Alice let's Mallory select the version (`2014d` in our example), then Mallory can execute arbitrary commands on the machine running the grunt task, with the same privilege as the grunt task\n\n#### Am I affected?\n\n##### Do you build custom versions of moment-timezone with grunt?\n\nIf no, you're not affected.\n\n##### Do you allow a third party to specify which particular version you want build?\n\nIf yes, you're vulnerable to command injection -- third party may execute arbitrary commands on the system running grunt task with the same privileges as grunt task.\n\n### Description\n\n#### Command Injection via grunt-zdownload.js and MITM on iana's ftp endpoint\n\nThe `tasks/data-download.js` script takes in a parameter from grunt and uses it to form a command line which is then executed:\n\n```\n6 module.exports = function (grunt) {\n7 grunt.registerTask('data-download', '1. Download data from iana.org/time-zones.', function (version) {\n8 version = version || 'latest';\n\n10 var done = this.async(),\n11 src = 'ftp://ftp.iana.org/tz/tzdata-latest.tar.gz',\n12 curl = path.resolve('temp/curl', version, 'data.tar.gz'),\n13 dest = path.resolve('temp/download', version);\n...\n24 exec('curl ' + src + ' -o ' + curl + ' && cd ' + dest + ' && gzip -dc ' + curl + ' | tar -xf -', function (err) {\n```\n\nOrdinarily, one one run this script using something like `grunt data-download:2014d`, in which case version would have the value `2014d`. However, if an attacker were to provide additional content on the command line, they would be able to execute arbitrary code\n\n```\nroot@e94ba0490b65:/usr/src/app/moment-timezone# grunt 'data-download:2014d ; echo flag>/tmp/foo #'\n\\Running \"data-download:2014d ; echo flag>/tmp/foo #\" (data-download) task\n>> Downloading https://data.iana.org/time-zones/releases/tzdata2014d ; echo flag>/tmp/foo #.tar.gz\n>> Downloaded https://data.iana.org/time-zones/releases/tzdata2014d ; echo flag>/tmp/foo #.tar.gz\n\nDone.\nroot@e94ba0490b65:/usr/src/app/moment-timezone# cat /tmp/foo\nflag\n```\n\n#### Command Injection via data-zdump.js\n\nThe `tasks/data-zdump.js` script reads a list of files present in a temporary directory (created by previous tasks), and for each one, assembles and executes a command line without sanitization. As a result, an attacker able to influence the contents of that directory could gain code execution. This attack is exacerbated by timezone data being downloaded via cleartext FTP (described above), but beyond that, an attacker at iana.org able to modify the timezone files could disrupt any systems that build moment-timezone.\n\n```\n15 files = grunt.file.expand({ filter : 'isFile', cwd : 'temp/zic/' + version }, '**/*');\n...\n27 function next () {\n...\n33 var file = files.pop(),\n34 src = path.join(zicBase, file),\n35 dest = path.join(zdumpBase, file);\n36 exec('zdump -v ' + src, { maxBuffer: 20*1024*1024 }, function (err, stdout) {\n```\n\nIn this case, an attacker able to add a file to `temp/zic/2014d` (for example) with a filename like `Z; curl www.example.com` would influence the called to exec on line 36 and run arbitrary code. There are a few minor challenges in exploiting this, since the string needs to be a valid filename.\n\n#### Command Injection via data-zic.js\n\nSimilar to the vulnerability in /tasks/data-download.js, the /tasks/data-zic.js script takes a version from the command line and uses it as part of a command line, executed without sanitization.\n\n```\n10 var done = this.async(),\n11 dest = path.resolve('temp/zic', version),\n...\n22 var file = files.shift(),\n23 src = path.resolve('temp/download', version, file);\n24\n25 exec('zic -d ' + dest + ' ' + src, function (err) {\n```\n\nAs a result, an attacker able to influence that string can run arbitrary commands. Of course, it requires an attacker able to influence the command passed to grunt, so may be unlikely in practice.\n\n```\nroot@e94ba0490b65:/usr/src/app/moment-timezone# grunt 'data-zic:2014d; echo hi > /tmp/evil; echo '\nRunning \"data-zic:2014d; echo hi > /tmp/evil; echo \" (data-zic) task\nexec: zid -d /usr/src/app/moment-timezone/temp/zic/2014d; echo hi > /tmp/evil; echo /usr/src/app/moment-timezone/temp/download/2014d; echo hi > /tmp/evil; echo /africa\n...\n\nroot@e94ba0490b65:/usr/src/app/moment-timezone# cat /tmp/evil\nhi\n```\n\n### Patches\n\nThe supplied patch on top of 0.5.34 is applicable with minor tweaks to all affected versions. It switches `exec` to `execFile` so arbitrary bash fragments won't be executed any more.\n\n### References\n\n* https://knowledge-base.secureflag.com/vulnerabilities/code_injection/os_command_injection_nodejs.html\n* https://auth0.com/blog/preventing-command-injection-attacks-in-node-js-apps/", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -47,9 +43,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": true, "github_reviewed_at": "2022-08-30T20:31:21Z", diff --git a/advisories/github-reviewed/2022/08/GHSA-8mgq-6r2q-82w9/GHSA-8mgq-6r2q-82w9.json b/advisories/github-reviewed/2022/08/GHSA-8mgq-6r2q-82w9/GHSA-8mgq-6r2q-82w9.json index 0aeb0010d96..a16dde65749 100644 --- a/advisories/github-reviewed/2022/08/GHSA-8mgq-6r2q-82w9/GHSA-8mgq-6r2q-82w9.json +++ b/advisories/github-reviewed/2022/08/GHSA-8mgq-6r2q-82w9/GHSA-8mgq-6r2q-82w9.json @@ -3,14 +3,10 @@ "id": "GHSA-8mgq-6r2q-82w9", "modified": "2022-08-30T20:54:12Z", "published": "2022-08-30T20:54:12Z", - "aliases": [ - - ], + "aliases": [], "summary": "Captcha Bypass in strapi-plugin-ezforms", "details": "### Impact\nUsers using any captcha providers\n\n### Patches\n>0.1.0\n\n### References\n[Issue](https://github.com/excl-networks/strapi-plugin-ezforms/issues/15)\n", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -51,9 +47,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2022-08-30T20:54:12Z", diff --git a/advisories/github-reviewed/2022/08/GHSA-jwh2-vrr9-vcp2/GHSA-jwh2-vrr9-vcp2.json b/advisories/github-reviewed/2022/08/GHSA-jwh2-vrr9-vcp2/GHSA-jwh2-vrr9-vcp2.json index 326f672911c..29265a5f3a3 100644 --- a/advisories/github-reviewed/2022/08/GHSA-jwh2-vrr9-vcp2/GHSA-jwh2-vrr9-vcp2.json +++ b/advisories/github-reviewed/2022/08/GHSA-jwh2-vrr9-vcp2/GHSA-jwh2-vrr9-vcp2.json @@ -3,14 +3,10 @@ "id": "GHSA-jwh2-vrr9-vcp2", "modified": "2022-08-30T19:53:54Z", "published": "2022-08-30T19:53:54Z", - "aliases": [ - - ], + "aliases": [], "summary": "mz-avro's incorrect use of `set_len` allows for un-initialized memory", "details": "Affected versions of this crate passes an uninitialized buffer to a user-provided `Read` \nimplementation.\n\nArbitrary `Read` implementations can read from the uninitialized buffer (memory exposure)\nand also can return incorrect number of bytes written to the buffer.\nReading from uninitialized memory produces undefined values that can quickly invoke\nundefined behavior.\n\nNote: there is only UB in the case where a user provides a struct whose `Read`\nimplementation inspects the buffer passed to `read_exact` before writing to it.\nThis is an unidiomatic (albeit possible) `Read` implementation.\n\nSee https://github.com/MaterializeInc/materialize/issues/8669 for details.\n", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -47,9 +43,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2022-08-30T19:53:54Z", diff --git a/advisories/github-reviewed/2022/08/GHSA-pfhr-pccp-hwmh/GHSA-pfhr-pccp-hwmh.json b/advisories/github-reviewed/2022/08/GHSA-pfhr-pccp-hwmh/GHSA-pfhr-pccp-hwmh.json index 603f4c0f178..7a2b17e4024 100644 --- a/advisories/github-reviewed/2022/08/GHSA-pfhr-pccp-hwmh/GHSA-pfhr-pccp-hwmh.json +++ b/advisories/github-reviewed/2022/08/GHSA-pfhr-pccp-hwmh/GHSA-pfhr-pccp-hwmh.json @@ -3,9 +3,7 @@ "id": "GHSA-pfhr-pccp-hwmh", "modified": "2022-08-30T20:06:02Z", "published": "2022-08-30T20:06:02Z", - "aliases": [ - - ], + "aliases": [], "summary": "Network Policies & (Clusterwide) Cilium Network Policies with namespace label selectors may unexpectedly select pods with maliciously crafted labels", "details": "### Impact\n\nIf a user has Network Policies with namespace selectors selecting labels of namespaces, or (clusterwide) Cilium Network Policies matching on namespace labels, then it is possible for an attacker with Kubernetes pod deploy rights (either directly or indirectly via higher-level APIs such as Deployment, Daemonset etc) to craft additional pod labels such that the pod is selected by another policy that exists rather than the expected policy. \n\n### Patches\n\nThe problem has been fixed and is available on versions >=1.10.14, >=1.11.8, >=1.12.1\n\n### Workarounds\n\nThere are no workarounds available.\n\n### Acknowledgements\n\nThe Cilium community has worked together with members of Isovalent to prepare these mitigations. Special thanks to Sander Mathijssen for not only highlighting the issue but also proposing a resolution. \n\n### For more information\n\nIf you have any questions or comments about this advisory, please reach out on [Slack](https://docs.cilium.io/en/latest/community/community/#slack).\n\nAs usual, if you think you found a related vulnerability, we strongly encourage you to report security vulnerabilities to our private security mailing list: [security@cilium.io](mailto:security@cilium.io) - first, before disclosing them in any public forums. This is a private mailing list where only members of the Cilium internal security team are subscribed to, and is treated as top priority.\n", "severity": [ @@ -105,9 +103,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2022-08-30T20:06:02Z", diff --git a/advisories/github-reviewed/2022/08/GHSA-rv3r-vqjj-8c76/GHSA-rv3r-vqjj-8c76.json b/advisories/github-reviewed/2022/08/GHSA-rv3r-vqjj-8c76/GHSA-rv3r-vqjj-8c76.json index 5ef9ec498f8..59cad774a98 100644 --- a/advisories/github-reviewed/2022/08/GHSA-rv3r-vqjj-8c76/GHSA-rv3r-vqjj-8c76.json +++ b/advisories/github-reviewed/2022/08/GHSA-rv3r-vqjj-8c76/GHSA-rv3r-vqjj-8c76.json @@ -3,9 +3,7 @@ "id": "GHSA-rv3r-vqjj-8c76", "modified": "2022-08-30T20:53:03Z", "published": "2022-08-30T20:53:03Z", - "aliases": [ - - ], + "aliases": [], "summary": "Cross-site scripting from content entered in the tags and multiselect fields", "details": "### Introduction\n\nCross-site scripting (XSS) is a type of vulnerability that allows to execute any kind of JavaScript code inside the Panel session of the same or other users. In the Panel, a harmful script can for example trigger requests to Kirby's API with the permissions of the victim.\n\nSuch vulnerabilities are critical if you might have potential attackers in your group of authenticated Panel users. They can escalate their privileges if they get access to the Panel session of an admin user. Depending on your site, other JavaScript-powered attacks are possible.\n\n### Impact\n\nThe tags and multiselect fields allow to select tags from an autocompleted list. The tags field also allows to enter new tags or edit existing tags. Kirby already handled escaping of the autocompleted tags, but unfortunately the Panel used HTML rendering for new or edited tags as well as for custom tags from the content file.\n\nThis allowed **attackers with Panel access** to store malicious HTML code in a tag. The browser of the victim who visited the modified page in the Panel will then have rendered this malicious HTML code.\n\nIt also allowed **self-inflicted XSS attacks** in the tags field (meaning that malicious code is executed in the browser of the user who entered it). This could be used in social engineering attacks where a victim is convinced by an attacker to enter malicious code into a tags field.\n\n**Visitors without Panel access** could *only* use this attack vector if your site allows changing the content of a tags or multiselect field from a frontend form (for example user self-registration or the creation of pages from a contact or other frontend form). If you validate or sanitize the provided form data, you are already protected against such attacks by external visitors.\n\nYou are also *not* affected by these vulnerabilities if your site doesn't have untrustworthy users with Panel access or a way to modify field values from the frontend or if you don't use the tags or multiselect fields.\n\n### Patches\n\nThe problems have been patched in [Kirby 3.5.8.1](https://github.com/getkirby/kirby/releases/tag/3.5.8.1), [Kirby 3.6.6.1](https://github.com/getkirby/kirby/releases/tag/3.6.6.1) and [Kirby 3.7.4](https://github.com/getkirby/kirby/releases/tag/3.7.4). Please update to one of these or a [later version](https://github.com/getkirby/kirby/releases) to fix the vulnerabilities.\n\n**Note:** The fixes for these vulnerabilities have the side effect that values in the tags and multiselect fields that come from dynamic options are displayed with double escaping (e.g. the `&` character is displayed as `&`). In the fix for Kirby 3.5, every value in the tags field is displayed with double escaping when dynamic options are enabled, while dynamic options themselves are displayed with triple escaping. We will fix the double/triple escaping issues with a refactoring of the options fields (tags, multiselect, checkboxes, radio, select and toggles) in Kirby 3.8.\n\n### Workarounds\n\nWe recommend to update to one of the patch releases. If you cannot update immediately, you can work around the issue by disabling the tags and multiselect fields. This can be done by uncommenting these fields from all your blueprints.", "severity": [ diff --git a/advisories/github-reviewed/2022/08/GHSA-v78c-4p63-2j6c/GHSA-v78c-4p63-2j6c.json b/advisories/github-reviewed/2022/08/GHSA-v78c-4p63-2j6c/GHSA-v78c-4p63-2j6c.json index fd7abecf7a0..bb648968413 100644 --- a/advisories/github-reviewed/2022/08/GHSA-v78c-4p63-2j6c/GHSA-v78c-4p63-2j6c.json +++ b/advisories/github-reviewed/2022/08/GHSA-v78c-4p63-2j6c/GHSA-v78c-4p63-2j6c.json @@ -3,14 +3,10 @@ "id": "GHSA-v78c-4p63-2j6c", "modified": "2022-08-30T20:28:43Z", "published": "2022-08-30T20:28:43Z", - "aliases": [ - - ], + "aliases": [], "summary": "Cleartext Transmission of Sensitive Information in moment-timezone", "details": "### Impact\n\n* if Alice uses `grunt data` (or `grunt release`) to prepare a custom-build, moment-timezone with the latest tzdata from IANA's website\n* and Mallory intercepts the request to IANA's unencrypted ftp server, Mallory can serve data which might exploit further stages of the moment-timezone tzdata pipeline, or potentially produce a tainted version of moment-timezone (practicality of such attacks is not proved)\n\n### Patches\nProblem has been patched in version 0.5.35, patch should be applicable with minor modifications to all affected versions. The patch includes changing the FTP endpoint with an HTTPS endpoint.\n\n### Workarounds\nSpecify the exact version of tzdata (like `2014d`, full command being `grunt data:2014d`, then run the rest of the release tasks by hand), or just apply the patch before issuing the grunt command.\n", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/09/GHSA-2gg5-7c4v-6xx2/GHSA-2gg5-7c4v-6xx2.json b/advisories/github-reviewed/2022/09/GHSA-2gg5-7c4v-6xx2/GHSA-2gg5-7c4v-6xx2.json index 177650df894..4bd34bf7223 100644 --- a/advisories/github-reviewed/2022/09/GHSA-2gg5-7c4v-6xx2/GHSA-2gg5-7c4v-6xx2.json +++ b/advisories/github-reviewed/2022/09/GHSA-2gg5-7c4v-6xx2/GHSA-2gg5-7c4v-6xx2.json @@ -4,9 +4,7 @@ "modified": "2022-09-19T20:19:08Z", "published": "2022-09-15T00:00:19Z", "withdrawn": "2022-09-16T20:59:09Z", - "aliases": [ - - ], + "aliases": [], "summary": "Duplicate of GHSA-m77f-652q-wwp4", "details": "## Duplicate advisory\nThis advisory is a duplicate of [GHSA-m77f-652q-wwp4](https://github.com/advisories/GHSA-m77f-652q-wwp4). This link is maintained to preserve external references.\n\n## Original Description\n::from_request would not, by default, set a limit for the size of the request body. That meant if a malicious peer would send a very large (or infinite) body your server might run out of memory and crash. This also applies to these extractors which used Bytes::from_request internally: axum::extract::Form axum::extract::Json String", "severity": [ diff --git a/advisories/github-reviewed/2022/09/GHSA-74w3-p89x-ffgh/GHSA-74w3-p89x-ffgh.json b/advisories/github-reviewed/2022/09/GHSA-74w3-p89x-ffgh/GHSA-74w3-p89x-ffgh.json index 086e41bc4c9..15d8f8ba241 100644 --- a/advisories/github-reviewed/2022/09/GHSA-74w3-p89x-ffgh/GHSA-74w3-p89x-ffgh.json +++ b/advisories/github-reviewed/2022/09/GHSA-74w3-p89x-ffgh/GHSA-74w3-p89x-ffgh.json @@ -4,14 +4,10 @@ "modified": "2022-09-19T14:25:17Z", "published": "2022-09-16T21:03:19Z", "withdrawn": "2022-09-19T14:25:17Z", - "aliases": [ - - ], + "aliases": [], "summary": "ansi_term is Unmaintained", "details": "## Withdrawn Advisory\nThis advisory has been withdrawn because it does not discuss a particular vulnerability in the code of `ansi_term`.\n\n## Original Description\nThe maintainer has adviced this crate is deprecated and will not receive any maintenance.\n\nThe crate does not seem to have much dependencies and may or may not be ok to use as-is.\n\nLast release seems to have been three years ago.\n", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -45,9 +41,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": true, "github_reviewed_at": "2022-09-16T21:03:19Z", diff --git a/advisories/github-reviewed/2022/09/GHSA-g468-qj8g-vcjc/GHSA-g468-qj8g-vcjc.json b/advisories/github-reviewed/2022/09/GHSA-g468-qj8g-vcjc/GHSA-g468-qj8g-vcjc.json index ad0c82220d8..c213b0cd821 100644 --- a/advisories/github-reviewed/2022/09/GHSA-g468-qj8g-vcjc/GHSA-g468-qj8g-vcjc.json +++ b/advisories/github-reviewed/2022/09/GHSA-g468-qj8g-vcjc/GHSA-g468-qj8g-vcjc.json @@ -8,9 +8,7 @@ ], "summary": "TensorFlow vulnerable to `CHECK`-fail in `tensorflow::full_type::SubstituteFromAttrs`", "details": "### Impact\nWhen [`tensorflow::full_type::SubstituteFromAttrs`](https://github.com/tensorflow/tensorflow/blob/master/tensorflow/core/ops/math_ops.cc) receives a `FullTypeDef& t` that is not exactly three args, it triggers a `CHECK`-fail instead of returning a status.\n```cpp\nStatus SubstituteForEach(AttrMap& attrs, FullTypeDef& t) {\n DCHECK_EQ(t.args_size(), 3);\n\n const auto& cont = t.args(0);\n const auto& tmpl = t.args(1);\n const auto& t_var = t.args(2);\n```\n\n### Patches\nWe have patched the issue in GitHub commit [6104f0d4091c260ce9352f9155f7e9b725eab012](https://github.com/tensorflow/tensorflow/commit/6104f0d4091c260ce9352f9155f7e9b725eab012).\nThe fix will be included in TensorFlow 2.10.0. We will also cherrypick this commit on TensorFlow 2.9.1, TensorFlow 2.8.1, and TensorFlow 2.7.2, as these are also affected and still in supported range.\n\n\n### For more information\nPlease consult [our security guide](https://github.com/tensorflow/tensorflow/blob/master/SECURITY.md) for more information regarding the security model and how to contact us with issues and questions.\n", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/09/GHSA-rh87-q4vg-m45j/GHSA-rh87-q4vg-m45j.json b/advisories/github-reviewed/2022/09/GHSA-rh87-q4vg-m45j/GHSA-rh87-q4vg-m45j.json index 6bedcd8b27b..ca6bb46a76e 100644 --- a/advisories/github-reviewed/2022/09/GHSA-rh87-q4vg-m45j/GHSA-rh87-q4vg-m45j.json +++ b/advisories/github-reviewed/2022/09/GHSA-rh87-q4vg-m45j/GHSA-rh87-q4vg-m45j.json @@ -8,9 +8,7 @@ ], "summary": "TensorFlow vulnerable to integer overflow in math ops", "details": "### Impact\nWhen [`RangeSize`](https://github.com/tensorflow/tensorflow/blob/master/tensorflow/core/ops/math_ops.cc) receives values that do not fit into an `int64_t`, it crashes.\n```cpp\n auto size = (std::is_integral::value\n ? ((Eigen::numext::abs(limit - start) +\n Eigen::numext::abs(delta) - T(1)) /\n Eigen::numext::abs(delta))\n : (Eigen::numext::ceil(\n Eigen::numext::abs((limit - start) / delta))));\n\n // This check does not cover all cases.\n if (size > std::numeric_limits::max()) {\n return errors::InvalidArgument(\"Requires ((limit - start) / delta) <= \",\n std::numeric_limits::max());\n }\n\n c->set_output(0, c->Vector(static_cast(size)));\n return Status::OK();\n}\n```\n\n### Patches\nWe have patched the issue in GitHub commit [37e64539cd29fcfb814c4451152a60f5d107b0f0](https://github.com/tensorflow/tensorflow/commit/37e64539cd29fcfb814c4451152a60f5d107b0f0).\nThe fix will be included in TensorFlow 2.10.0. We will also cherrypick this commit on TensorFlow 2.9.1, TensorFlow 2.8.1, and TensorFlow 2.7.2, as these are also affected and still in supported range.\n\n\n### For more information\nPlease consult [our security guide](https://github.com/tensorflow/tensorflow/blob/master/SECURITY.md) for more information regarding the security model and how to contact us with issues and questions.\n", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2023/03/GHSA-3x8x-79m2-3w2w/GHSA-3x8x-79m2-3w2w.json b/advisories/github-reviewed/2023/03/GHSA-3x8x-79m2-3w2w/GHSA-3x8x-79m2-3w2w.json index 7075a35f5d2..11934a3a304 100644 --- a/advisories/github-reviewed/2023/03/GHSA-3x8x-79m2-3w2w/GHSA-3x8x-79m2-3w2w.json +++ b/advisories/github-reviewed/2023/03/GHSA-3x8x-79m2-3w2w/GHSA-3x8x-79m2-3w2w.json @@ -85,9 +85,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2023-03-20T21:14:14Z", diff --git a/advisories/github-reviewed/2024/08/GHSA-p6w9-r443-r752/GHSA-p6w9-r443-r752.json b/advisories/github-reviewed/2024/08/GHSA-p6w9-r443-r752/GHSA-p6w9-r443-r752.json index 89025263006..76c4e2787f9 100644 --- a/advisories/github-reviewed/2024/08/GHSA-p6w9-r443-r752/GHSA-p6w9-r443-r752.json +++ b/advisories/github-reviewed/2024/08/GHSA-p6w9-r443-r752/GHSA-p6w9-r443-r752.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-p6w9-r443-r752", - "modified": "2024-08-08T17:00:32Z", + "modified": "2024-11-18T16:27:01Z", "published": "2024-08-08T14:53:57Z", "aliases": [ "CVE-2024-42357" @@ -142,7 +142,7 @@ "cwe_ids": [ "CWE-89" ], - "severity": "HIGH", + "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2024-08-08T14:53:57Z", "nvd_published_at": "2024-08-08T15:15:18Z" diff --git a/advisories/github-reviewed/2024/08/GHSA-rg2q-2jh9-447q/GHSA-rg2q-2jh9-447q.json b/advisories/github-reviewed/2024/08/GHSA-rg2q-2jh9-447q/GHSA-rg2q-2jh9-447q.json index 75de93c0bd5..dcc66a79563 100644 --- a/advisories/github-reviewed/2024/08/GHSA-rg2q-2jh9-447q/GHSA-rg2q-2jh9-447q.json +++ b/advisories/github-reviewed/2024/08/GHSA-rg2q-2jh9-447q/GHSA-rg2q-2jh9-447q.json @@ -3,9 +3,7 @@ "id": "GHSA-rg2q-2jh9-447q", "modified": "2024-08-08T17:03:07Z", "published": "2024-08-08T16:30:50Z", - "aliases": [ - - ], + "aliases": [], "summary": "Gas mispricing in cosmwasm-vm", "details": "**Component:** wasmvm\n**Criticality:** Medium ([ACMv1](https://github.com/interchainio/security/blob/main/resources/CLASSIFICATION_MATRIX.md): I:Moderate; L:Likely)\n**Patched versions:** wasmvm 1.5.4, 2.0.3, 2.1.2\n\nSome Wasm operations take significantly more gas than our benchmarks indicated. This can lead to missing the [gas target](https://github.com/CosmWasm/cosmwasm/blob/e50490c4199a234200a497219b27f071c3409f58/docs/GAS.md#cosmwasm-gas-pricing) we defined by a factor of ~10x. This means a malicious contract could take 10 times as much time to execute as expected, which can be used to temporarily DoS a chain.\n\nSee [CWA-2024-004](https://github.com/CosmWasm/advisories/blob/main/CWAs/CWA-2024-004.md) for more details.\n", "severity": [ diff --git a/advisories/unreviewed/2021/11/GHSA-px6h-65pj-6gq3/GHSA-px6h-65pj-6gq3.json b/advisories/unreviewed/2021/11/GHSA-px6h-65pj-6gq3/GHSA-px6h-65pj-6gq3.json index eb31ecdef5a..e084f138fc1 100644 --- a/advisories/unreviewed/2021/11/GHSA-px6h-65pj-6gq3/GHSA-px6h-65pj-6gq3.json +++ b/advisories/unreviewed/2021/11/GHSA-px6h-65pj-6gq3/GHSA-px6h-65pj-6gq3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2021/12/GHSA-7cjm-mv56-4mg4/GHSA-7cjm-mv56-4mg4.json b/advisories/unreviewed/2021/12/GHSA-7cjm-mv56-4mg4/GHSA-7cjm-mv56-4mg4.json index ebca604adba..0b609bb65e1 100644 --- a/advisories/unreviewed/2021/12/GHSA-7cjm-mv56-4mg4/GHSA-7cjm-mv56-4mg4.json +++ b/advisories/unreviewed/2021/12/GHSA-7cjm-mv56-4mg4/GHSA-7cjm-mv56-4mg4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/01/GHSA-wvx9-9phh-9j3h/GHSA-wvx9-9phh-9j3h.json b/advisories/unreviewed/2022/01/GHSA-wvx9-9phh-9j3h/GHSA-wvx9-9phh-9j3h.json index 79f8fecb041..b27fa0f5b0d 100644 --- a/advisories/unreviewed/2022/01/GHSA-wvx9-9phh-9j3h/GHSA-wvx9-9phh-9j3h.json +++ b/advisories/unreviewed/2022/01/GHSA-wvx9-9phh-9j3h/GHSA-wvx9-9phh-9j3h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/02/GHSA-fm8h-mgjv-jww5/GHSA-fm8h-mgjv-jww5.json b/advisories/unreviewed/2022/02/GHSA-fm8h-mgjv-jww5/GHSA-fm8h-mgjv-jww5.json index 8e72c2e10f6..242c40d28b6 100644 --- a/advisories/unreviewed/2022/02/GHSA-fm8h-mgjv-jww5/GHSA-fm8h-mgjv-jww5.json +++ b/advisories/unreviewed/2022/02/GHSA-fm8h-mgjv-jww5/GHSA-fm8h-mgjv-jww5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/03/GHSA-grqq-3jqg-g95p/GHSA-grqq-3jqg-g95p.json b/advisories/unreviewed/2022/03/GHSA-grqq-3jqg-g95p/GHSA-grqq-3jqg-g95p.json index 15f837e6e39..909bd286a33 100644 --- a/advisories/unreviewed/2022/03/GHSA-grqq-3jqg-g95p/GHSA-grqq-3jqg-g95p.json +++ b/advisories/unreviewed/2022/03/GHSA-grqq-3jqg-g95p/GHSA-grqq-3jqg-g95p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/03/GHSA-rv49-vpf7-3h48/GHSA-rv49-vpf7-3h48.json b/advisories/unreviewed/2022/03/GHSA-rv49-vpf7-3h48/GHSA-rv49-vpf7-3h48.json index fcfaec5089e..b948e0be4a6 100644 --- a/advisories/unreviewed/2022/03/GHSA-rv49-vpf7-3h48/GHSA-rv49-vpf7-3h48.json +++ b/advisories/unreviewed/2022/03/GHSA-rv49-vpf7-3h48/GHSA-rv49-vpf7-3h48.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/03/GHSA-wm74-7g5x-vq4x/GHSA-wm74-7g5x-vq4x.json b/advisories/unreviewed/2022/03/GHSA-wm74-7g5x-vq4x/GHSA-wm74-7g5x-vq4x.json index 2c34d65b94b..97d8f31623b 100644 --- a/advisories/unreviewed/2022/03/GHSA-wm74-7g5x-vq4x/GHSA-wm74-7g5x-vq4x.json +++ b/advisories/unreviewed/2022/03/GHSA-wm74-7g5x-vq4x/GHSA-wm74-7g5x-vq4x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-24g4-fh3x-4f5h/GHSA-24g4-fh3x-4f5h.json b/advisories/unreviewed/2022/04/GHSA-24g4-fh3x-4f5h/GHSA-24g4-fh3x-4f5h.json index 55d7b3d3036..c2a3e01ac14 100644 --- a/advisories/unreviewed/2022/04/GHSA-24g4-fh3x-4f5h/GHSA-24g4-fh3x-4f5h.json +++ b/advisories/unreviewed/2022/04/GHSA-24g4-fh3x-4f5h/GHSA-24g4-fh3x-4f5h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-283g-w9m2-fg76/GHSA-283g-w9m2-fg76.json b/advisories/unreviewed/2022/04/GHSA-283g-w9m2-fg76/GHSA-283g-w9m2-fg76.json index ebd6e72347d..bcac832c6f4 100644 --- a/advisories/unreviewed/2022/04/GHSA-283g-w9m2-fg76/GHSA-283g-w9m2-fg76.json +++ b/advisories/unreviewed/2022/04/GHSA-283g-w9m2-fg76/GHSA-283g-w9m2-fg76.json @@ -7,12 +7,8 @@ "CVE-2003-0403" ], "details": "Vignette StoryServer 5 and Vignette V/5 allows remote attackers to read and modify license information, and cause a denial of service (service halt) by directly accessing the /vgn/license template.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2932-f892-c8hc/GHSA-2932-f892-c8hc.json b/advisories/unreviewed/2022/04/GHSA-2932-f892-c8hc/GHSA-2932-f892-c8hc.json index 7903c944948..f9cb2851350 100644 --- a/advisories/unreviewed/2022/04/GHSA-2932-f892-c8hc/GHSA-2932-f892-c8hc.json +++ b/advisories/unreviewed/2022/04/GHSA-2932-f892-c8hc/GHSA-2932-f892-c8hc.json @@ -7,12 +7,8 @@ "CVE-2003-0359" ], "details": "nethack 3.4.0 and earlier installs certain setgid binaries with insecure permissions, which allows local users to gain privileges by replacing the original binaries with malicious code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2c2r-rcrh-5h3h/GHSA-2c2r-rcrh-5h3h.json b/advisories/unreviewed/2022/04/GHSA-2c2r-rcrh-5h3h/GHSA-2c2r-rcrh-5h3h.json index b2ea2624619..c5d91ff54b0 100644 --- a/advisories/unreviewed/2022/04/GHSA-2c2r-rcrh-5h3h/GHSA-2c2r-rcrh-5h3h.json +++ b/advisories/unreviewed/2022/04/GHSA-2c2r-rcrh-5h3h/GHSA-2c2r-rcrh-5h3h.json @@ -7,12 +7,8 @@ "CVE-2003-0398" ], "details": "Vignette StoryServer 4 and 5, and Vignette V/5 and V/6, with the SSI EXEC feature enabled, allows remote attackers to execute arbitrary code via a text variable to a Vignette Application that is later displayed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2fcg-48pf-99vm/GHSA-2fcg-48pf-99vm.json b/advisories/unreviewed/2022/04/GHSA-2fcg-48pf-99vm/GHSA-2fcg-48pf-99vm.json index 3a364503a28..09d979ba5de 100644 --- a/advisories/unreviewed/2022/04/GHSA-2fcg-48pf-99vm/GHSA-2fcg-48pf-99vm.json +++ b/advisories/unreviewed/2022/04/GHSA-2fcg-48pf-99vm/GHSA-2fcg-48pf-99vm.json @@ -7,12 +7,8 @@ "CVE-2003-0404" ], "details": "Multiple Cross Site Scripting (XSS) vulnerabilities in Vignette StoryServer 4 and 5, and Vignette V/5 and V/6, allow remote attackers to insert arbitrary HTML and script via text variables, as demonstrated using the errInfo parameter of the default login template.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2qwc-x3pr-2jgf/GHSA-2qwc-x3pr-2jgf.json b/advisories/unreviewed/2022/04/GHSA-2qwc-x3pr-2jgf/GHSA-2qwc-x3pr-2jgf.json index e75aa0bb371..eaa2ceabe7d 100644 --- a/advisories/unreviewed/2022/04/GHSA-2qwc-x3pr-2jgf/GHSA-2qwc-x3pr-2jgf.json +++ b/advisories/unreviewed/2022/04/GHSA-2qwc-x3pr-2jgf/GHSA-2qwc-x3pr-2jgf.json @@ -7,12 +7,8 @@ "CVE-2003-0444" ], "details": "Heap-based buffer overflow in GTKSee 0.5 and 0.5.1 allows remote attackers to execute arbitrary code via a PNG image of certain color depths.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2vr6-j9xc-hjxh/GHSA-2vr6-j9xc-hjxh.json b/advisories/unreviewed/2022/04/GHSA-2vr6-j9xc-hjxh/GHSA-2vr6-j9xc-hjxh.json index df41601da54..c09bf42f9cf 100644 --- a/advisories/unreviewed/2022/04/GHSA-2vr6-j9xc-hjxh/GHSA-2vr6-j9xc-hjxh.json +++ b/advisories/unreviewed/2022/04/GHSA-2vr6-j9xc-hjxh/GHSA-2vr6-j9xc-hjxh.json @@ -7,12 +7,8 @@ "CVE-2003-0381" ], "details": "Multiple vulnerabilities in noweb 2.9 and earlier creates temporary files insecurely, which allows local users to overwrite arbitrary files via multiple vectors including the noroff script.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2wm7-744x-3ghp/GHSA-2wm7-744x-3ghp.json b/advisories/unreviewed/2022/04/GHSA-2wm7-744x-3ghp/GHSA-2wm7-744x-3ghp.json index 4e97000883b..1cdf7ea2961 100644 --- a/advisories/unreviewed/2022/04/GHSA-2wm7-744x-3ghp/GHSA-2wm7-744x-3ghp.json +++ b/advisories/unreviewed/2022/04/GHSA-2wm7-744x-3ghp/GHSA-2wm7-744x-3ghp.json @@ -7,12 +7,8 @@ "CVE-2003-0408" ], "details": "Buffer overflow in Uptime Client (UpClient) 5.0b7, and possibly other versions, allows local users to gain privileges via a long -p argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-32cw-4h2j-22vc/GHSA-32cw-4h2j-22vc.json b/advisories/unreviewed/2022/04/GHSA-32cw-4h2j-22vc/GHSA-32cw-4h2j-22vc.json index 425284ec2a8..e2afae25613 100644 --- a/advisories/unreviewed/2022/04/GHSA-32cw-4h2j-22vc/GHSA-32cw-4h2j-22vc.json +++ b/advisories/unreviewed/2022/04/GHSA-32cw-4h2j-22vc/GHSA-32cw-4h2j-22vc.json @@ -7,12 +7,8 @@ "CVE-2003-0345" ], "details": "Buffer overflow in the SMB capability for Microsoft Windows XP, 2000, and NT allows remote attackers to cause a denial of service and possibly execute arbitrary code via an SMB packet that specifies a smaller buffer length than is required.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-32hm-fpxx-4r4p/GHSA-32hm-fpxx-4r4p.json b/advisories/unreviewed/2022/04/GHSA-32hm-fpxx-4r4p/GHSA-32hm-fpxx-4r4p.json index 264e657f4e4..187ef029599 100644 --- a/advisories/unreviewed/2022/04/GHSA-32hm-fpxx-4r4p/GHSA-32hm-fpxx-4r4p.json +++ b/advisories/unreviewed/2022/04/GHSA-32hm-fpxx-4r4p/GHSA-32hm-fpxx-4r4p.json @@ -7,12 +7,8 @@ "CVE-2003-0334" ], "details": "BitchX IRC client 1.0c20cvs and earlier allows attackers to cause a denial of service (core dump) via certain channel mode changes that are not properly handled in names.c.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3jrx-9rpx-73p9/GHSA-3jrx-9rpx-73p9.json b/advisories/unreviewed/2022/04/GHSA-3jrx-9rpx-73p9/GHSA-3jrx-9rpx-73p9.json index ae0064bfac7..5246b579fc2 100644 --- a/advisories/unreviewed/2022/04/GHSA-3jrx-9rpx-73p9/GHSA-3jrx-9rpx-73p9.json +++ b/advisories/unreviewed/2022/04/GHSA-3jrx-9rpx-73p9/GHSA-3jrx-9rpx-73p9.json @@ -7,12 +7,8 @@ "CVE-2003-0365" ], "details": "ICQLite 2003a creates the ICQ Lite directory with an ACE for \"Full Control\" privileges for Interactive Users, which allows local users to gain privileges as other users by replacing the executables with malicious programs.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3mcf-r5g4-57jg/GHSA-3mcf-r5g4-57jg.json b/advisories/unreviewed/2022/04/GHSA-3mcf-r5g4-57jg/GHSA-3mcf-r5g4-57jg.json index 4b573acbe81..33de788d75f 100644 --- a/advisories/unreviewed/2022/04/GHSA-3mcf-r5g4-57jg/GHSA-3mcf-r5g4-57jg.json +++ b/advisories/unreviewed/2022/04/GHSA-3mcf-r5g4-57jg/GHSA-3mcf-r5g4-57jg.json @@ -7,12 +7,8 @@ "CVE-2003-0427" ], "details": "Buffer overflow in mikmod 3.1.6 and earlier allows remote attackers to execute arbitrary code via an archive file that contains a file with a long filename.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-43cj-rvm4-7798/GHSA-43cj-rvm4-7798.json b/advisories/unreviewed/2022/04/GHSA-43cj-rvm4-7798/GHSA-43cj-rvm4-7798.json index 9c8788dd5a7..d52fa2ebbcf 100644 --- a/advisories/unreviewed/2022/04/GHSA-43cj-rvm4-7798/GHSA-43cj-rvm4-7798.json +++ b/advisories/unreviewed/2022/04/GHSA-43cj-rvm4-7798/GHSA-43cj-rvm4-7798.json @@ -7,12 +7,8 @@ "CVE-2003-0419" ], "details": "SMC Networks Barricade Wireless Cable/DSL Broadband Router SMC7004VWBR allows remote attackers to cause a denial of service via certain packets to PPTP port 1723 on the internal interface.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-443h-2c59-36vf/GHSA-443h-2c59-36vf.json b/advisories/unreviewed/2022/04/GHSA-443h-2c59-36vf/GHSA-443h-2c59-36vf.json index 1f39823dee5..37241649b1e 100644 --- a/advisories/unreviewed/2022/04/GHSA-443h-2c59-36vf/GHSA-443h-2c59-36vf.json +++ b/advisories/unreviewed/2022/04/GHSA-443h-2c59-36vf/GHSA-443h-2c59-36vf.json @@ -7,12 +7,8 @@ "CVE-2003-0388" ], "details": "pam_wheel in Linux-PAM 0.78, with the trust option enabled and the use_uid option disabled, allows local users to spoof log entries and gain privileges by causing getlogin() to return a spoofed user name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-445q-2cxg-hghh/GHSA-445q-2cxg-hghh.json b/advisories/unreviewed/2022/04/GHSA-445q-2cxg-hghh/GHSA-445q-2cxg-hghh.json index 1de4bc1b7d6..653394a3b07 100644 --- a/advisories/unreviewed/2022/04/GHSA-445q-2cxg-hghh/GHSA-445q-2cxg-hghh.json +++ b/advisories/unreviewed/2022/04/GHSA-445q-2cxg-hghh/GHSA-445q-2cxg-hghh.json @@ -7,12 +7,8 @@ "CVE-2003-0401" ], "details": "Vignette StoryServer and Vignette V/5 allows remote attackers to obtain sensitive information via a request for the /vgn/style template.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-45hg-qfm9-g6xh/GHSA-45hg-qfm9-g6xh.json b/advisories/unreviewed/2022/04/GHSA-45hg-qfm9-g6xh/GHSA-45hg-qfm9-g6xh.json index a25fb7f19a2..676bf3c48f5 100644 --- a/advisories/unreviewed/2022/04/GHSA-45hg-qfm9-g6xh/GHSA-45hg-qfm9-g6xh.json +++ b/advisories/unreviewed/2022/04/GHSA-45hg-qfm9-g6xh/GHSA-45hg-qfm9-g6xh.json @@ -7,12 +7,8 @@ "CVE-2003-0389" ], "details": "Cross-site scripting (XSS) vulnerability in the secure redirect function of RSA ACE/Agent 5.0 for Windows, and 5.x for Web, allows remote attackers to insert arbitrary web script and possibly cause users to enter a passphrase via a GET request containing the script.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4jcm-v2j2-cwr5/GHSA-4jcm-v2j2-cwr5.json b/advisories/unreviewed/2022/04/GHSA-4jcm-v2j2-cwr5/GHSA-4jcm-v2j2-cwr5.json index 5976fbbb537..61699039e60 100644 --- a/advisories/unreviewed/2022/04/GHSA-4jcm-v2j2-cwr5/GHSA-4jcm-v2j2-cwr5.json +++ b/advisories/unreviewed/2022/04/GHSA-4jcm-v2j2-cwr5/GHSA-4jcm-v2j2-cwr5.json @@ -7,12 +7,8 @@ "CVE-2003-0406" ], "details": "PalmVNC 1.40 and earlier stores passwords in plaintext in the PalmVNCDB, which is backed up to PCs that the Palm is synchronized with, which could allow attackers to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4m62-5w64-x54q/GHSA-4m62-5w64-x54q.json b/advisories/unreviewed/2022/04/GHSA-4m62-5w64-x54q/GHSA-4m62-5w64-x54q.json index cb8f5c1f5c4..6de00084501 100644 --- a/advisories/unreviewed/2022/04/GHSA-4m62-5w64-x54q/GHSA-4m62-5w64-x54q.json +++ b/advisories/unreviewed/2022/04/GHSA-4m62-5w64-x54q/GHSA-4m62-5w64-x54q.json @@ -7,12 +7,8 @@ "CVE-2003-0445" ], "details": "Buffer overflow in webfs before 1.17.1 allows remote attackers to execute arbitrary code via an HTTP request with a long Request-URI.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5275-h44v-8688/GHSA-5275-h44v-8688.json b/advisories/unreviewed/2022/04/GHSA-5275-h44v-8688/GHSA-5275-h44v-8688.json index 8b55de4c7a1..14209b64d4d 100644 --- a/advisories/unreviewed/2022/04/GHSA-5275-h44v-8688/GHSA-5275-h44v-8688.json +++ b/advisories/unreviewed/2022/04/GHSA-5275-h44v-8688/GHSA-5275-h44v-8688.json @@ -7,12 +7,8 @@ "CVE-2003-0417" ], "details": "Directory traversal vulnerability in Son hServer 0.2 allows remote attackers to read arbitrary files via \".|.\" (modified dot-dot) sequences.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-52r7-gmhc-j7x9/GHSA-52r7-gmhc-j7x9.json b/advisories/unreviewed/2022/04/GHSA-52r7-gmhc-j7x9/GHSA-52r7-gmhc-j7x9.json index 4b6360ec7ff..0849895081e 100644 --- a/advisories/unreviewed/2022/04/GHSA-52r7-gmhc-j7x9/GHSA-52r7-gmhc-j7x9.json +++ b/advisories/unreviewed/2022/04/GHSA-52r7-gmhc-j7x9/GHSA-52r7-gmhc-j7x9.json @@ -7,12 +7,8 @@ "CVE-2003-0353" ], "details": "Buffer overflow in a component of SQL-DMO for Microsoft Data Access Components (MDAC) 2.5 through 2.7 allows remote attackers to execute arbitrary code via a long response to a broadcast request to UDP port 1434.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5hf8-5ggr-mhv2/GHSA-5hf8-5ggr-mhv2.json b/advisories/unreviewed/2022/04/GHSA-5hf8-5ggr-mhv2/GHSA-5hf8-5ggr-mhv2.json index 6e11ce13cc8..19e604c354e 100644 --- a/advisories/unreviewed/2022/04/GHSA-5hf8-5ggr-mhv2/GHSA-5hf8-5ggr-mhv2.json +++ b/advisories/unreviewed/2022/04/GHSA-5hf8-5ggr-mhv2/GHSA-5hf8-5ggr-mhv2.json @@ -7,12 +7,8 @@ "CVE-2003-0441" ], "details": "Multiple buffer overflows in Orville Write (orville-write) 2.53 and earlier allow local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5mgf-54x8-68gc/GHSA-5mgf-54x8-68gc.json b/advisories/unreviewed/2022/04/GHSA-5mgf-54x8-68gc/GHSA-5mgf-54x8-68gc.json index 25561bc1776..946e5d0e218 100644 --- a/advisories/unreviewed/2022/04/GHSA-5mgf-54x8-68gc/GHSA-5mgf-54x8-68gc.json +++ b/advisories/unreviewed/2022/04/GHSA-5mgf-54x8-68gc/GHSA-5mgf-54x8-68gc.json @@ -7,12 +7,8 @@ "CVE-2003-0360" ], "details": "Multiple buffer overflows in gPS before 1.0.0 allow attackers to cause a denial of service and possibly execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-64vq-wgg6-6rp5/GHSA-64vq-wgg6-6rp5.json b/advisories/unreviewed/2022/04/GHSA-64vq-wgg6-6rp5/GHSA-64vq-wgg6-6rp5.json index 62c0aa6b32c..2f89ed106dd 100644 --- a/advisories/unreviewed/2022/04/GHSA-64vq-wgg6-6rp5/GHSA-64vq-wgg6-6rp5.json +++ b/advisories/unreviewed/2022/04/GHSA-64vq-wgg6-6rp5/GHSA-64vq-wgg6-6rp5.json @@ -7,12 +7,8 @@ "CVE-2003-0405" ], "details": "Vignette StoryServer 5 and Vignette V/6 allows remote attackers to execute arbitrary TCL code via (1) an HTTP query or cookie which is processed in the NEEDS command, or (2) an HTTP Referrer that is processed in the VALID_PATHS command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6v6f-c78w-p95p/GHSA-6v6f-c78w-p95p.json b/advisories/unreviewed/2022/04/GHSA-6v6f-c78w-p95p/GHSA-6v6f-c78w-p95p.json index eb1fa2b5510..267d0b38466 100644 --- a/advisories/unreviewed/2022/04/GHSA-6v6f-c78w-p95p/GHSA-6v6f-c78w-p95p.json +++ b/advisories/unreviewed/2022/04/GHSA-6v6f-c78w-p95p/GHSA-6v6f-c78w-p95p.json @@ -7,12 +7,8 @@ "CVE-2003-0421" ], "details": "Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to cause a denial of service (crash) via an MS-DOS device name (e.g. AUX) in a request to HTTP port 1220, a different vulnerability than CVE-2003-0502.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6wrq-2cp2-xpmf/GHSA-6wrq-2cp2-xpmf.json b/advisories/unreviewed/2022/04/GHSA-6wrq-2cp2-xpmf/GHSA-6wrq-2cp2-xpmf.json index 6f31a3f64ed..7a4b3dc54d8 100644 --- a/advisories/unreviewed/2022/04/GHSA-6wrq-2cp2-xpmf/GHSA-6wrq-2cp2-xpmf.json +++ b/advisories/unreviewed/2022/04/GHSA-6wrq-2cp2-xpmf/GHSA-6wrq-2cp2-xpmf.json @@ -7,12 +7,8 @@ "CVE-2003-0410" ], "details": "Buffer overflow in AnalogX Proxy 4.13 allows remote attackers to execute arbitrary code via a long URL to port 6588.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-744m-3gc5-g83v/GHSA-744m-3gc5-g83v.json b/advisories/unreviewed/2022/04/GHSA-744m-3gc5-g83v/GHSA-744m-3gc5-g83v.json index e8303a62c46..df9a5240439 100644 --- a/advisories/unreviewed/2022/04/GHSA-744m-3gc5-g83v/GHSA-744m-3gc5-g83v.json +++ b/advisories/unreviewed/2022/04/GHSA-744m-3gc5-g83v/GHSA-744m-3gc5-g83v.json @@ -7,12 +7,8 @@ "CVE-2003-0435" ], "details": "Buffer overflow in net_swapscore for typespeed 0.4.1 and earlier allows remote attackers to execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-74c6-q6wh-qj3x/GHSA-74c6-q6wh-qj3x.json b/advisories/unreviewed/2022/04/GHSA-74c6-q6wh-qj3x/GHSA-74c6-q6wh-qj3x.json index 333befcedcf..2cc981c05f3 100644 --- a/advisories/unreviewed/2022/04/GHSA-74c6-q6wh-qj3x/GHSA-74c6-q6wh-qj3x.json +++ b/advisories/unreviewed/2022/04/GHSA-74c6-q6wh-qj3x/GHSA-74c6-q6wh-qj3x.json @@ -7,12 +7,8 @@ "CVE-2003-0425" ], "details": "Directory traversal vulnerability in Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to read arbitrary files via a ... (triple dot) in an HTTP request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-75hc-ghm4-5q92/GHSA-75hc-ghm4-5q92.json b/advisories/unreviewed/2022/04/GHSA-75hc-ghm4-5q92/GHSA-75hc-ghm4-5q92.json index d77340b6730..c36200a57b3 100644 --- a/advisories/unreviewed/2022/04/GHSA-75hc-ghm4-5q92/GHSA-75hc-ghm4-5q92.json +++ b/advisories/unreviewed/2022/04/GHSA-75hc-ghm4-5q92/GHSA-75hc-ghm4-5q92.json @@ -7,12 +7,8 @@ "CVE-2003-0452" ], "details": "Buffer overflows in osh before 1.7-11 allow local users to execute arbitrary code and bypass shell restrictions via (1) long environment variables or (2) long \"file redirections.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-76rc-w7g9-c6q2/GHSA-76rc-w7g9-c6q2.json b/advisories/unreviewed/2022/04/GHSA-76rc-w7g9-c6q2/GHSA-76rc-w7g9-c6q2.json index 8202bf4dec3..95baff909f5 100644 --- a/advisories/unreviewed/2022/04/GHSA-76rc-w7g9-c6q2/GHSA-76rc-w7g9-c6q2.json +++ b/advisories/unreviewed/2022/04/GHSA-76rc-w7g9-c6q2/GHSA-76rc-w7g9-c6q2.json @@ -7,12 +7,8 @@ "CVE-2003-0382" ], "details": "Buffer overflow in Eterm 0.9.2 allows local users to gain privileges via a long ETERMPATH environment variable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7854-5v42-f557/GHSA-7854-5v42-f557.json b/advisories/unreviewed/2022/04/GHSA-7854-5v42-f557/GHSA-7854-5v42-f557.json index a6470c30fc2..d7e90e9c5a3 100644 --- a/advisories/unreviewed/2022/04/GHSA-7854-5v42-f557/GHSA-7854-5v42-f557.json +++ b/advisories/unreviewed/2022/04/GHSA-7854-5v42-f557/GHSA-7854-5v42-f557.json @@ -7,12 +7,8 @@ "CVE-2003-0502" ], "details": "Apple QuickTime / Darwin Streaming Server before 4.1.3g allows remote attackers to cause a denial of service (crash) via a .. (dot dot) sequence followed by an MS-DOS device name (e.g. AUX) in a request to HTTP port 1220, a different vulnerability than CVE-2003-0421.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-78fx-p2gm-vm87/GHSA-78fx-p2gm-vm87.json b/advisories/unreviewed/2022/04/GHSA-78fx-p2gm-vm87/GHSA-78fx-p2gm-vm87.json index 40b7ced8c57..57494f6cb23 100644 --- a/advisories/unreviewed/2022/04/GHSA-78fx-p2gm-vm87/GHSA-78fx-p2gm-vm87.json +++ b/advisories/unreviewed/2022/04/GHSA-78fx-p2gm-vm87/GHSA-78fx-p2gm-vm87.json @@ -7,12 +7,8 @@ "CVE-2003-0378" ], "details": "The Kerberos login authentication feature in Mac OS X, when used with an LDAPv3 server and LDAP bind authentication, may send cleartext passwords to the LDAP server when the AuthenticationAuthority attribute is not set.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-78hw-pqrc-rwg4/GHSA-78hw-pqrc-rwg4.json b/advisories/unreviewed/2022/04/GHSA-78hw-pqrc-rwg4/GHSA-78hw-pqrc-rwg4.json index a4f70e7c316..e578d1b0603 100644 --- a/advisories/unreviewed/2022/04/GHSA-78hw-pqrc-rwg4/GHSA-78hw-pqrc-rwg4.json +++ b/advisories/unreviewed/2022/04/GHSA-78hw-pqrc-rwg4/GHSA-78hw-pqrc-rwg4.json @@ -7,12 +7,8 @@ "CVE-2003-0437" ], "details": "Buffer overflow in search.cgi for mnoGoSearch 3.2.10 allows remote attackers to execute arbitrary code via a long tmplt parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7gj4-4645-h286/GHSA-7gj4-4645-h286.json b/advisories/unreviewed/2022/04/GHSA-7gj4-4645-h286/GHSA-7gj4-4645-h286.json index 799ea24441a..e47cc47fad3 100644 --- a/advisories/unreviewed/2022/04/GHSA-7gj4-4645-h286/GHSA-7gj4-4645-h286.json +++ b/advisories/unreviewed/2022/04/GHSA-7gj4-4645-h286/GHSA-7gj4-4645-h286.json @@ -7,12 +7,8 @@ "CVE-2003-0343" ], "details": "BlackMoon FTP Server 2.6 Free Edition, and possibly other distributions and versions, generates an \"Account does not exist\" error message when an invalid username is entered, which makes it easier for remote attackers to conduct brute force attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7vrv-hpp3-h923/GHSA-7vrv-hpp3-h923.json b/advisories/unreviewed/2022/04/GHSA-7vrv-hpp3-h923/GHSA-7vrv-hpp3-h923.json index 6f1232e3254..81c0171c531 100644 --- a/advisories/unreviewed/2022/04/GHSA-7vrv-hpp3-h923/GHSA-7vrv-hpp3-h923.json +++ b/advisories/unreviewed/2022/04/GHSA-7vrv-hpp3-h923/GHSA-7vrv-hpp3-h923.json @@ -7,12 +7,8 @@ "CVE-2003-0413" ], "details": "Cross-site scripting (XSS) vulnerability in the webapps-simple sample application for (1) Sun ONE Application Server 7.0 for Windows 2000/XP or (2) Sun Java System Web Server 6.1 allows remote attackers to insert arbitrary web script or HTML via an HTTP request that generates an \"Invalid JSP file\" error, which inserts the text in the resulting error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7w86-fqqh-7v6v/GHSA-7w86-fqqh-7v6v.json b/advisories/unreviewed/2022/04/GHSA-7w86-fqqh-7v6v/GHSA-7w86-fqqh-7v6v.json index 59d1e8e59ea..ce4349f4515 100644 --- a/advisories/unreviewed/2022/04/GHSA-7w86-fqqh-7v6v/GHSA-7w86-fqqh-7v6v.json +++ b/advisories/unreviewed/2022/04/GHSA-7w86-fqqh-7v6v/GHSA-7w86-fqqh-7v6v.json @@ -7,12 +7,8 @@ "CVE-2003-0458" ], "details": "Unknown vulnerability in HP NonStop Server D40.00 through D48.03, and G01.00 through G06.20, allows local users to gain additional privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-855w-49h5-qfw4/GHSA-855w-49h5-qfw4.json b/advisories/unreviewed/2022/04/GHSA-855w-49h5-qfw4/GHSA-855w-49h5-qfw4.json index e16f6d63de7..bd69a404088 100644 --- a/advisories/unreviewed/2022/04/GHSA-855w-49h5-qfw4/GHSA-855w-49h5-qfw4.json +++ b/advisories/unreviewed/2022/04/GHSA-855w-49h5-qfw4/GHSA-855w-49h5-qfw4.json @@ -7,12 +7,8 @@ "CVE-2003-0342" ], "details": "BlackMoon FTP Server 2.6 Free Edition, and possibly other distributions and versions, stores user names and passwords in plaintext in the blackmoon.mdb file, which can allow local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-857w-p662-mpmp/GHSA-857w-p662-mpmp.json b/advisories/unreviewed/2022/04/GHSA-857w-p662-mpmp/GHSA-857w-p662-mpmp.json index f077372aff9..feefe2d239a 100644 --- a/advisories/unreviewed/2022/04/GHSA-857w-p662-mpmp/GHSA-857w-p662-mpmp.json +++ b/advisories/unreviewed/2022/04/GHSA-857w-p662-mpmp/GHSA-857w-p662-mpmp.json @@ -7,12 +7,8 @@ "CVE-2003-0434" ], "details": "Various PDF viewers including (1) Adobe Acrobat 5.06 and (2) Xpdf 1.01 allow remote attackers to execute arbitrary commands via shell metacharacters in an embedded hyperlink.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8753-xfxj-9r3f/GHSA-8753-xfxj-9r3f.json b/advisories/unreviewed/2022/04/GHSA-8753-xfxj-9r3f/GHSA-8753-xfxj-9r3f.json index 892e472bcfa..a70559aabaf 100644 --- a/advisories/unreviewed/2022/04/GHSA-8753-xfxj-9r3f/GHSA-8753-xfxj-9r3f.json +++ b/advisories/unreviewed/2022/04/GHSA-8753-xfxj-9r3f/GHSA-8753-xfxj-9r3f.json @@ -7,12 +7,8 @@ "CVE-2003-0414" ], "details": "The installation of Sun ONE Application Server 7.0 for Windows 2000/XP creates a statefile with world-readable permissions, which allows local users to gain privileges by reading a plaintext password in the statefile.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8c96-w9m5-2cx3/GHSA-8c96-w9m5-2cx3.json b/advisories/unreviewed/2022/04/GHSA-8c96-w9m5-2cx3/GHSA-8c96-w9m5-2cx3.json index 5dc482526d8..894eccec73e 100644 --- a/advisories/unreviewed/2022/04/GHSA-8c96-w9m5-2cx3/GHSA-8c96-w9m5-2cx3.json +++ b/advisories/unreviewed/2022/04/GHSA-8c96-w9m5-2cx3/GHSA-8c96-w9m5-2cx3.json @@ -7,12 +7,8 @@ "CVE-2003-0344" ], "details": "Buffer overflow in Microsoft Internet Explorer 5.01, 5.5, and 6.0 allows remote attackers to execute arbitrary code via / (slash) characters in the Type property of an Object tag in a web page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8cfj-7pmq-h9m9/GHSA-8cfj-7pmq-h9m9.json b/advisories/unreviewed/2022/04/GHSA-8cfj-7pmq-h9m9/GHSA-8cfj-7pmq-h9m9.json index 39b4c1d7cbe..21f4407bdd3 100644 --- a/advisories/unreviewed/2022/04/GHSA-8cfj-7pmq-h9m9/GHSA-8cfj-7pmq-h9m9.json +++ b/advisories/unreviewed/2022/04/GHSA-8cfj-7pmq-h9m9/GHSA-8cfj-7pmq-h9m9.json @@ -7,12 +7,8 @@ "CVE-2003-0372" ], "details": "Signed integer vulnerability in libnasl in Nessus before 2.0.6 allows local users with plugin upload privileges to cause a denial of service (core dump) and possibly execute arbitrary code by causing a negative argument to be provided to the insstr function as used in a NASL script.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8cwx-q8q6-7gpg/GHSA-8cwx-q8q6-7gpg.json b/advisories/unreviewed/2022/04/GHSA-8cwx-q8q6-7gpg/GHSA-8cwx-q8q6-7gpg.json index 05d9d59c881..1d9011be85e 100644 --- a/advisories/unreviewed/2022/04/GHSA-8cwx-q8q6-7gpg/GHSA-8cwx-q8q6-7gpg.json +++ b/advisories/unreviewed/2022/04/GHSA-8cwx-q8q6-7gpg/GHSA-8cwx-q8q6-7gpg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-8hqj-7rmc-v58x/GHSA-8hqj-7rmc-v58x.json b/advisories/unreviewed/2022/04/GHSA-8hqj-7rmc-v58x/GHSA-8hqj-7rmc-v58x.json index 2028f34eb7a..9a201983ec0 100644 --- a/advisories/unreviewed/2022/04/GHSA-8hqj-7rmc-v58x/GHSA-8hqj-7rmc-v58x.json +++ b/advisories/unreviewed/2022/04/GHSA-8hqj-7rmc-v58x/GHSA-8hqj-7rmc-v58x.json @@ -7,12 +7,8 @@ "CVE-2003-0390" ], "details": "Multiple buffer overflows in Options Parsing Tool (OPT) shared library 3.18 and earlier, when used in setuid programs, may allow local users to execute arbitrary code via long command line options that are fed into macros such as opt_warn_2, as used in functions such as opt_atoi.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8vrg-v3rr-5xmf/GHSA-8vrg-v3rr-5xmf.json b/advisories/unreviewed/2022/04/GHSA-8vrg-v3rr-5xmf/GHSA-8vrg-v3rr-5xmf.json index 871ef0624f9..55b633907a5 100644 --- a/advisories/unreviewed/2022/04/GHSA-8vrg-v3rr-5xmf/GHSA-8vrg-v3rr-5xmf.json +++ b/advisories/unreviewed/2022/04/GHSA-8vrg-v3rr-5xmf/GHSA-8vrg-v3rr-5xmf.json @@ -7,12 +7,8 @@ "CVE-2003-0396" ], "details": "Buffer overflow in les for ATM on Linux (linux-atm) before 2.4.1, if used setuid, allows local users to gain privileges via a long -f command line argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8x73-xrpj-qfx7/GHSA-8x73-xrpj-qfx7.json b/advisories/unreviewed/2022/04/GHSA-8x73-xrpj-qfx7/GHSA-8x73-xrpj-qfx7.json index 56d7ba10cfd..cf18cc3992c 100644 --- a/advisories/unreviewed/2022/04/GHSA-8x73-xrpj-qfx7/GHSA-8x73-xrpj-qfx7.json +++ b/advisories/unreviewed/2022/04/GHSA-8x73-xrpj-qfx7/GHSA-8x73-xrpj-qfx7.json @@ -7,12 +7,8 @@ "CVE-2003-0461" ], "details": "/proc/tty/driver/serial in Linux 2.4.x reveals the exact number of characters used in serial links, which could allow local users to obtain potentially sensitive information such as the length of passwords.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9276-2w6v-wx4c/GHSA-9276-2w6v-wx4c.json b/advisories/unreviewed/2022/04/GHSA-9276-2w6v-wx4c/GHSA-9276-2w6v-wx4c.json index 49c7eb8a0ee..fccf1104822 100644 --- a/advisories/unreviewed/2022/04/GHSA-9276-2w6v-wx4c/GHSA-9276-2w6v-wx4c.json +++ b/advisories/unreviewed/2022/04/GHSA-9276-2w6v-wx4c/GHSA-9276-2w6v-wx4c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-953v-cmq7-xgqr/GHSA-953v-cmq7-xgqr.json b/advisories/unreviewed/2022/04/GHSA-953v-cmq7-xgqr/GHSA-953v-cmq7-xgqr.json index a20424dfc82..bf59fbc5e76 100644 --- a/advisories/unreviewed/2022/04/GHSA-953v-cmq7-xgqr/GHSA-953v-cmq7-xgqr.json +++ b/advisories/unreviewed/2022/04/GHSA-953v-cmq7-xgqr/GHSA-953v-cmq7-xgqr.json @@ -7,12 +7,8 @@ "CVE-2003-0391" ], "details": "Format string vulnerability in Magic WinMail Server 2.3, and possibly other 2.x versions, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers in the PASS command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-962r-p552-3jjc/GHSA-962r-p552-3jjc.json b/advisories/unreviewed/2022/04/GHSA-962r-p552-3jjc/GHSA-962r-p552-3jjc.json index 758742a4851..d13b8cd7638 100644 --- a/advisories/unreviewed/2022/04/GHSA-962r-p552-3jjc/GHSA-962r-p552-3jjc.json +++ b/advisories/unreviewed/2022/04/GHSA-962r-p552-3jjc/GHSA-962r-p552-3jjc.json @@ -7,12 +7,8 @@ "CVE-2003-0448" ], "details": "Portmon 1.7 and possibly earlier versions allows local users to read and write arbitrary files via the (1) -c (host file) or (2) -l (log file) command line options.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9cgx-mwj5-qw86/GHSA-9cgx-mwj5-qw86.json b/advisories/unreviewed/2022/04/GHSA-9cgx-mwj5-qw86/GHSA-9cgx-mwj5-qw86.json index d8d0cd0cc70..c6aad435d7e 100644 --- a/advisories/unreviewed/2022/04/GHSA-9cgx-mwj5-qw86/GHSA-9cgx-mwj5-qw86.json +++ b/advisories/unreviewed/2022/04/GHSA-9cgx-mwj5-qw86/GHSA-9cgx-mwj5-qw86.json @@ -7,12 +7,8 @@ "CVE-2003-0438" ], "details": "eldav WebDAV client for Emacs, version 0.7.2 and earlier, allows local users to create or overwrite arbitrary files via a symlink attack on temporary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9cjc-2xqw-jc7g/GHSA-9cjc-2xqw-jc7g.json b/advisories/unreviewed/2022/04/GHSA-9cjc-2xqw-jc7g/GHSA-9cjc-2xqw-jc7g.json index 3d448bf60a9..2695243628e 100644 --- a/advisories/unreviewed/2022/04/GHSA-9cjc-2xqw-jc7g/GHSA-9cjc-2xqw-jc7g.json +++ b/advisories/unreviewed/2022/04/GHSA-9cjc-2xqw-jc7g/GHSA-9cjc-2xqw-jc7g.json @@ -7,12 +7,8 @@ "CVE-2003-0426" ], "details": "The installation of Apple QuickTime / Darwin Streaming Server before 4.1.3f starts the administration server with a \"Setup Assistant\" page that allows remote attackers to set the administrator password and gain privileges before the real administrator.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9cxf-vv6j-h6r9/GHSA-9cxf-vv6j-h6r9.json b/advisories/unreviewed/2022/04/GHSA-9cxf-vv6j-h6r9/GHSA-9cxf-vv6j-h6r9.json index 0893387ac46..075e39d3659 100644 --- a/advisories/unreviewed/2022/04/GHSA-9cxf-vv6j-h6r9/GHSA-9cxf-vv6j-h6r9.json +++ b/advisories/unreviewed/2022/04/GHSA-9cxf-vv6j-h6r9/GHSA-9cxf-vv6j-h6r9.json @@ -7,12 +7,8 @@ "CVE-2003-0370" ], "details": "Konqueror Embedded and KDE 2.2.2 and earlier does not validate the Common Name (CN) field for X.509 Certificates, which could allow remote attackers to spoof certificates via a man-in-the-middle attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9hfx-gwch-cr6c/GHSA-9hfx-gwch-cr6c.json b/advisories/unreviewed/2022/04/GHSA-9hfx-gwch-cr6c/GHSA-9hfx-gwch-cr6c.json index 2418ea94fbe..9c9e3524982 100644 --- a/advisories/unreviewed/2022/04/GHSA-9hfx-gwch-cr6c/GHSA-9hfx-gwch-cr6c.json +++ b/advisories/unreviewed/2022/04/GHSA-9hfx-gwch-cr6c/GHSA-9hfx-gwch-cr6c.json @@ -7,12 +7,8 @@ "CVE-2003-0363" ], "details": "Format string vulnerability in LICQ 1.2.6, 1.0.3 and possibly other versions allows remote attackers to perform unknown actions via format string specifiers.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9jv3-rx3r-3xpm/GHSA-9jv3-rx3r-3xpm.json b/advisories/unreviewed/2022/04/GHSA-9jv3-rx3r-3xpm/GHSA-9jv3-rx3r-3xpm.json index 95110ce31ac..b1d68f7530a 100644 --- a/advisories/unreviewed/2022/04/GHSA-9jv3-rx3r-3xpm/GHSA-9jv3-rx3r-3xpm.json +++ b/advisories/unreviewed/2022/04/GHSA-9jv3-rx3r-3xpm/GHSA-9jv3-rx3r-3xpm.json @@ -7,12 +7,8 @@ "CVE-2003-0449" ], "details": "Progress Database 9.1 to 9.1D06 trusts user input to find and load libraries using dlopen, which allows local users to gain privileges via (1) a PATH environment variable that points to malicious libraries, as demonstrated using libjutil.so in_proapsv, or (2) the -installdir command line parameter, as demonstrated using librocket_r.so in _dbagent.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9p5h-wr4h-3hj7/GHSA-9p5h-wr4h-3hj7.json b/advisories/unreviewed/2022/04/GHSA-9p5h-wr4h-3hj7/GHSA-9p5h-wr4h-3hj7.json index 44d2a12a802..35d7e6fdfec 100644 --- a/advisories/unreviewed/2022/04/GHSA-9p5h-wr4h-3hj7/GHSA-9p5h-wr4h-3hj7.json +++ b/advisories/unreviewed/2022/04/GHSA-9p5h-wr4h-3hj7/GHSA-9p5h-wr4h-3hj7.json @@ -7,12 +7,8 @@ "CVE-2003-0453" ], "details": "traceroute-nanog 6.1.1 allows local users to overwrite unauthorized memory and possibly execute arbitrary code via certain \"nprobes\" and \"max_ttl\" arguments that cause an integer overflow that is used when allocating memory, which leads to a buffer overflow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9x2r-5f7q-7jgp/GHSA-9x2r-5f7q-7jgp.json b/advisories/unreviewed/2022/04/GHSA-9x2r-5f7q-7jgp/GHSA-9x2r-5f7q-7jgp.json index 30cd71d559c..ba347c241aa 100644 --- a/advisories/unreviewed/2022/04/GHSA-9x2r-5f7q-7jgp/GHSA-9x2r-5f7q-7jgp.json +++ b/advisories/unreviewed/2022/04/GHSA-9x2r-5f7q-7jgp/GHSA-9x2r-5f7q-7jgp.json @@ -7,12 +7,8 @@ "CVE-2003-0416" ], "details": "Cross-site scripting (XSS) vulnerability in index.cgi for Bandmin 1.4 allows remote attackers to insert arbitrary HTML or script via (1) the year parameter in a showmonth action, (2) the month parameter in a showmonth action, or (3) the host parameter in a showhost action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9xmq-7rwm-gr8h/GHSA-9xmq-7rwm-gr8h.json b/advisories/unreviewed/2022/04/GHSA-9xmq-7rwm-gr8h/GHSA-9xmq-7rwm-gr8h.json index 254aa93d9f8..31cca2a40ec 100644 --- a/advisories/unreviewed/2022/04/GHSA-9xmq-7rwm-gr8h/GHSA-9xmq-7rwm-gr8h.json +++ b/advisories/unreviewed/2022/04/GHSA-9xmq-7rwm-gr8h/GHSA-9xmq-7rwm-gr8h.json @@ -7,12 +7,8 @@ "CVE-2003-0424" ], "details": "Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to obtain the source code for scripts by appending encoded space (%20) or . (%2e) characters to an HTTP request for the script, e.g. view_broadcast.cgi.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c35q-7hfm-3hxp/GHSA-c35q-7hfm-3hxp.json b/advisories/unreviewed/2022/04/GHSA-c35q-7hfm-3hxp/GHSA-c35q-7hfm-3hxp.json index 457d5d87a5c..221a999b27a 100644 --- a/advisories/unreviewed/2022/04/GHSA-c35q-7hfm-3hxp/GHSA-c35q-7hfm-3hxp.json +++ b/advisories/unreviewed/2022/04/GHSA-c35q-7hfm-3hxp/GHSA-c35q-7hfm-3hxp.json @@ -7,12 +7,8 @@ "CVE-2003-0446" ], "details": "Cross-site scripting (XSS) in Internet Explorer 5.5 and 6.0, possibly in a component that is also used by other Microsoft products, allows remote attackers to insert arbitrary web script via an XML file that contains a parse error, which inserts the script in the resulting error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c4fg-wvr4-wwx7/GHSA-c4fg-wvr4-wwx7.json b/advisories/unreviewed/2022/04/GHSA-c4fg-wvr4-wwx7/GHSA-c4fg-wvr4-wwx7.json index 3ad488fd089..d4cb7dfa630 100644 --- a/advisories/unreviewed/2022/04/GHSA-c4fg-wvr4-wwx7/GHSA-c4fg-wvr4-wwx7.json +++ b/advisories/unreviewed/2022/04/GHSA-c4fg-wvr4-wwx7/GHSA-c4fg-wvr4-wwx7.json @@ -7,12 +7,8 @@ "CVE-2003-0422" ], "details": "Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to cause a denial of service (crash) via a request to view_broadcast.cgi that does not contain the required parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c6w7-f575-7q9f/GHSA-c6w7-f575-7q9f.json b/advisories/unreviewed/2022/04/GHSA-c6w7-f575-7q9f/GHSA-c6w7-f575-7q9f.json index b40e0af6595..0e6c81a6f64 100644 --- a/advisories/unreviewed/2022/04/GHSA-c6w7-f575-7q9f/GHSA-c6w7-f575-7q9f.json +++ b/advisories/unreviewed/2022/04/GHSA-c6w7-f575-7q9f/GHSA-c6w7-f575-7q9f.json @@ -7,12 +7,8 @@ "CVE-2003-0333" ], "details": "Multiple buffer overflows in kermit in HP-UX 10.20 and 11.00 (C-Kermit 6.0.192 and possibly other versions before 8.0) allow local users to gain privileges via long arguments to (1) ask, (2) askq, (3) define, (4) assign, and (5) getc, some of which may share the same underlying function \"doask,\" a different vulnerability than CVE-2001-0085.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cf67-p57q-gjjc/GHSA-cf67-p57q-gjjc.json b/advisories/unreviewed/2022/04/GHSA-cf67-p57q-gjjc/GHSA-cf67-p57q-gjjc.json index ac9c28fb4ae..58ccf88c15a 100644 --- a/advisories/unreviewed/2022/04/GHSA-cf67-p57q-gjjc/GHSA-cf67-p57q-gjjc.json +++ b/advisories/unreviewed/2022/04/GHSA-cf67-p57q-gjjc/GHSA-cf67-p57q-gjjc.json @@ -7,12 +7,8 @@ "CVE-2003-0354" ], "details": "Unknown vulnerability in GNU Ghostscript before 7.07 allows attackers to execute arbitrary commands, even when -dSAFER is enabled, via a PostScript file that causes the commands to be executed from a malicious print job.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cfg2-vfcc-x2mc/GHSA-cfg2-vfcc-x2mc.json b/advisories/unreviewed/2022/04/GHSA-cfg2-vfcc-x2mc/GHSA-cfg2-vfcc-x2mc.json index 8d95d8fb707..bfa66ab3ebb 100644 --- a/advisories/unreviewed/2022/04/GHSA-cfg2-vfcc-x2mc/GHSA-cfg2-vfcc-x2mc.json +++ b/advisories/unreviewed/2022/04/GHSA-cfg2-vfcc-x2mc/GHSA-cfg2-vfcc-x2mc.json @@ -7,12 +7,8 @@ "CVE-2003-0357" ], "details": "Multiple integer overflow vulnerabilities in Ethereal 0.9.11 and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via the (1) Mount and (2) PPP dissectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-chqf-3xcg-g2xg/GHSA-chqf-3xcg-g2xg.json b/advisories/unreviewed/2022/04/GHSA-chqf-3xcg-g2xg/GHSA-chqf-3xcg-g2xg.json index cbe57ab216e..bfe3b965ed8 100644 --- a/advisories/unreviewed/2022/04/GHSA-chqf-3xcg-g2xg/GHSA-chqf-3xcg-g2xg.json +++ b/advisories/unreviewed/2022/04/GHSA-chqf-3xcg-g2xg/GHSA-chqf-3xcg-g2xg.json @@ -7,12 +7,8 @@ "CVE-2003-0394" ], "details": "objects.inc.php4 in BLNews 2.1.3 allows remote attackers to execute arbitrary PHP code via a Server[path] parameter that points to malicious code on an attacker-controlled web site.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cjw2-5cwp-38g8/GHSA-cjw2-5cwp-38g8.json b/advisories/unreviewed/2022/04/GHSA-cjw2-5cwp-38g8/GHSA-cjw2-5cwp-38g8.json index 8627121eeb5..77cb2bc2a79 100644 --- a/advisories/unreviewed/2022/04/GHSA-cjw2-5cwp-38g8/GHSA-cjw2-5cwp-38g8.json +++ b/advisories/unreviewed/2022/04/GHSA-cjw2-5cwp-38g8/GHSA-cjw2-5cwp-38g8.json @@ -7,12 +7,8 @@ "CVE-2003-0338" ], "details": "Directory traversal vulnerability in WsMp3 daemon (WsMp3d) 0.0.10 and earlier allows remote attackers to read and execute arbitrary files via .. (dot dot) sequences in HTTP GET or POST requests.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cw35-p78f-2qfc/GHSA-cw35-p78f-2qfc.json b/advisories/unreviewed/2022/04/GHSA-cw35-p78f-2qfc/GHSA-cw35-p78f-2qfc.json index fb54c98fb71..fc4132cf0f2 100644 --- a/advisories/unreviewed/2022/04/GHSA-cw35-p78f-2qfc/GHSA-cw35-p78f-2qfc.json +++ b/advisories/unreviewed/2022/04/GHSA-cw35-p78f-2qfc/GHSA-cw35-p78f-2qfc.json @@ -7,12 +7,8 @@ "CVE-2003-0450" ], "details": "Cistron RADIUS daemon (radiusd-cistron) 1.6.6 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a large value in an NAS-Port attribute, which is interpreted as a negative number and causes a buffer overflow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f5hg-gqmv-qw9q/GHSA-f5hg-gqmv-qw9q.json b/advisories/unreviewed/2022/04/GHSA-f5hg-gqmv-qw9q/GHSA-f5hg-gqmv-qw9q.json index 84d066cb47d..10bc88729c8 100644 --- a/advisories/unreviewed/2022/04/GHSA-f5hg-gqmv-qw9q/GHSA-f5hg-gqmv-qw9q.json +++ b/advisories/unreviewed/2022/04/GHSA-f5hg-gqmv-qw9q/GHSA-f5hg-gqmv-qw9q.json @@ -7,12 +7,8 @@ "CVE-2003-0420" ], "details": "Information leak in dsimportexport for Apple Macintosh OS X Server 10.2.6 allows local users to obtain the username and password of the account running the tool.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f8w5-h9cf-8mrv/GHSA-f8w5-h9cf-8mrv.json b/advisories/unreviewed/2022/04/GHSA-f8w5-h9cf-8mrv/GHSA-f8w5-h9cf-8mrv.json index 0017612298f..fd10be667f6 100644 --- a/advisories/unreviewed/2022/04/GHSA-f8w5-h9cf-8mrv/GHSA-f8w5-h9cf-8mrv.json +++ b/advisories/unreviewed/2022/04/GHSA-f8w5-h9cf-8mrv/GHSA-f8w5-h9cf-8mrv.json @@ -7,12 +7,8 @@ "CVE-2003-0375" ], "details": "Cross-site scripting (XSS) vulnerability in member.php of XMBforum XMB 1.8.x (aka Partagium) allows remote attackers to insert arbitrary HTML and web script via the \"member\" parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fhg8-x68j-q4r6/GHSA-fhg8-x68j-q4r6.json b/advisories/unreviewed/2022/04/GHSA-fhg8-x68j-q4r6/GHSA-fhg8-x68j-q4r6.json index c792b81165e..036dd5c9440 100644 --- a/advisories/unreviewed/2022/04/GHSA-fhg8-x68j-q4r6/GHSA-fhg8-x68j-q4r6.json +++ b/advisories/unreviewed/2022/04/GHSA-fhg8-x68j-q4r6/GHSA-fhg8-x68j-q4r6.json @@ -7,12 +7,8 @@ "CVE-2003-0339" ], "details": "Multiple heap-based buffer overflows in WsMp3 daemon (WsMp3d) 0.0.10 and earlier allow remote attackers to execute arbitrary code via long HTTP requests.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fj58-wx8h-r7ww/GHSA-fj58-wx8h-r7ww.json b/advisories/unreviewed/2022/04/GHSA-fj58-wx8h-r7ww/GHSA-fj58-wx8h-r7ww.json index 5be79b9ce56..161f618e239 100644 --- a/advisories/unreviewed/2022/04/GHSA-fj58-wx8h-r7ww/GHSA-fj58-wx8h-r7ww.json +++ b/advisories/unreviewed/2022/04/GHSA-fj58-wx8h-r7ww/GHSA-fj58-wx8h-r7ww.json @@ -7,12 +7,8 @@ "CVE-2003-0374" ], "details": "Multiple unknown vulnerabilities in Nessus before 2.0.6, in libnessus and possibly libnasl, a different set of vulnerabilities than those identified by CVE-2003-0372 and CVE-2003-0373, aka \"similar issues in other nasl functions as well as in libnessus.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fj8h-jv3v-jq49/GHSA-fj8h-jv3v-jq49.json b/advisories/unreviewed/2022/04/GHSA-fj8h-jv3v-jq49/GHSA-fj8h-jv3v-jq49.json index 548563a30b1..198d6f3451a 100644 --- a/advisories/unreviewed/2022/04/GHSA-fj8h-jv3v-jq49/GHSA-fj8h-jv3v-jq49.json +++ b/advisories/unreviewed/2022/04/GHSA-fj8h-jv3v-jq49/GHSA-fj8h-jv3v-jq49.json @@ -7,12 +7,8 @@ "CVE-2003-0336" ], "details": "Qualcomm Eudora 5.2.1 allows remote attackers to read arbitrary files via an email message with a carriage return (CR) character in a spoofed \"Attachment Converted:\" string, which is not properly handled by Eudora.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fmv5-5g2r-j58v/GHSA-fmv5-5g2r-j58v.json b/advisories/unreviewed/2022/04/GHSA-fmv5-5g2r-j58v/GHSA-fmv5-5g2r-j58v.json index ac4c20eb9f9..a41c394dd4f 100644 --- a/advisories/unreviewed/2022/04/GHSA-fmv5-5g2r-j58v/GHSA-fmv5-5g2r-j58v.json +++ b/advisories/unreviewed/2022/04/GHSA-fmv5-5g2r-j58v/GHSA-fmv5-5g2r-j58v.json @@ -7,12 +7,8 @@ "CVE-2003-0451" ], "details": "Multiple buffer overflows in xbl before 1.0k allow local users to gain privileges via certain long command line arguments.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g4pg-gr8x-mfcf/GHSA-g4pg-gr8x-mfcf.json b/advisories/unreviewed/2022/04/GHSA-g4pg-gr8x-mfcf/GHSA-g4pg-gr8x-mfcf.json index 8b79d06a483..fce598f9411 100644 --- a/advisories/unreviewed/2022/04/GHSA-g4pg-gr8x-mfcf/GHSA-g4pg-gr8x-mfcf.json +++ b/advisories/unreviewed/2022/04/GHSA-g4pg-gr8x-mfcf/GHSA-g4pg-gr8x-mfcf.json @@ -7,12 +7,8 @@ "CVE-2003-0393" ], "details": "Privacyware Privatefirewall 3.0 does not block certain incoming packets when in \"Filter Internet Traffic\" or Deny Internet Traffic\" modes, which allows remote attackers to identify running services via FIN scans or Xmas scans.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gf79-rq99-fffp/GHSA-gf79-rq99-fffp.json b/advisories/unreviewed/2022/04/GHSA-gf79-rq99-fffp/GHSA-gf79-rq99-fffp.json index c28c2c2e634..c7f21b25d23 100644 --- a/advisories/unreviewed/2022/04/GHSA-gf79-rq99-fffp/GHSA-gf79-rq99-fffp.json +++ b/advisories/unreviewed/2022/04/GHSA-gf79-rq99-fffp/GHSA-gf79-rq99-fffp.json @@ -7,12 +7,8 @@ "CVE-2003-0352" ], "details": "Buffer overflow in a certain DCOM interface for RPC in Microsoft Windows NT 4.0, 2000, XP, and Server 2003 allows remote attackers to execute arbitrary code via a malformed message, as exploited by the Blaster/MSblast/LovSAN and Nachi/Welchia worms.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -76,9 +72,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gfj4-c257-f65m/GHSA-gfj4-c257-f65m.json b/advisories/unreviewed/2022/04/GHSA-gfj4-c257-f65m/GHSA-gfj4-c257-f65m.json index 913720c390e..d35356b51af 100644 --- a/advisories/unreviewed/2022/04/GHSA-gfj4-c257-f65m/GHSA-gfj4-c257-f65m.json +++ b/advisories/unreviewed/2022/04/GHSA-gfj4-c257-f65m/GHSA-gfj4-c257-f65m.json @@ -7,12 +7,8 @@ "CVE-2003-0392" ], "details": "Directory traversal vulnerability in ST FTP Service 3.0 allows remote attackers to list arbitrary directories via a CD command with a DoS drive letter argument (e.g. E:).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gj6g-3m57-qv5h/GHSA-gj6g-3m57-qv5h.json b/advisories/unreviewed/2022/04/GHSA-gj6g-3m57-qv5h/GHSA-gj6g-3m57-qv5h.json index a9cb1ea550a..04e22e02839 100644 --- a/advisories/unreviewed/2022/04/GHSA-gj6g-3m57-qv5h/GHSA-gj6g-3m57-qv5h.json +++ b/advisories/unreviewed/2022/04/GHSA-gj6g-3m57-qv5h/GHSA-gj6g-3m57-qv5h.json @@ -7,12 +7,8 @@ "CVE-2003-0412" ], "details": "Sun ONE Application Server 7.0 for Windows 2000/XP does not log the complete URI of a long HTTP request, which could allow remote attackers to hide malicious activities.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gjc9-4phw-5wf4/GHSA-gjc9-4phw-5wf4.json b/advisories/unreviewed/2022/04/GHSA-gjc9-4phw-5wf4/GHSA-gjc9-4phw-5wf4.json index 8cff5fd5981..7d9707a716a 100644 --- a/advisories/unreviewed/2022/04/GHSA-gjc9-4phw-5wf4/GHSA-gjc9-4phw-5wf4.json +++ b/advisories/unreviewed/2022/04/GHSA-gjc9-4phw-5wf4/GHSA-gjc9-4phw-5wf4.json @@ -7,12 +7,8 @@ "CVE-2003-0332" ], "details": "The ISAPI extension in BadBlue 1.7 through 2.2, and possibly earlier versions, modifies the first two letters of a filename extension after performing a security check, which allows remote attackers to bypass authentication via a filename with a .ats extension instead of a .hts extension.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gjxx-2j37-vmcp/GHSA-gjxx-2j37-vmcp.json b/advisories/unreviewed/2022/04/GHSA-gjxx-2j37-vmcp/GHSA-gjxx-2j37-vmcp.json index fc51e1277c9..09f062b3b0c 100644 --- a/advisories/unreviewed/2022/04/GHSA-gjxx-2j37-vmcp/GHSA-gjxx-2j37-vmcp.json +++ b/advisories/unreviewed/2022/04/GHSA-gjxx-2j37-vmcp/GHSA-gjxx-2j37-vmcp.json @@ -7,12 +7,8 @@ "CVE-2003-0400" ], "details": "Vignette StoryServer and Vignette V/5 does not properly calculate the size of text variables, which causes Vignette to return unauthorized portions of memory, as demonstrated using the \"-->\" string in a CookieName argument to the login template, referred to as a \"memory leak\" in some reports.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h59w-g68x-v974/GHSA-h59w-g68x-v974.json b/advisories/unreviewed/2022/04/GHSA-h59w-g68x-v974/GHSA-h59w-g68x-v974.json index 4b5500e8350..c03e7c2e612 100644 --- a/advisories/unreviewed/2022/04/GHSA-h59w-g68x-v974/GHSA-h59w-g68x-v974.json +++ b/advisories/unreviewed/2022/04/GHSA-h59w-g68x-v974/GHSA-h59w-g68x-v974.json @@ -7,12 +7,8 @@ "CVE-2003-0358" ], "details": "Buffer overflow in (1) nethack 3.4.0 and earlier, and (2) falconseye 1.9.3 and earlier, which is based on nethack, allows local users to gain privileges via a long -s command line option.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-h92j-qhmf-wvjj/GHSA-h92j-qhmf-wvjj.json b/advisories/unreviewed/2022/04/GHSA-h92j-qhmf-wvjj/GHSA-h92j-qhmf-wvjj.json index 62fda643490..30f264ae69c 100644 --- a/advisories/unreviewed/2022/04/GHSA-h92j-qhmf-wvjj/GHSA-h92j-qhmf-wvjj.json +++ b/advisories/unreviewed/2022/04/GHSA-h92j-qhmf-wvjj/GHSA-h92j-qhmf-wvjj.json @@ -7,12 +7,8 @@ "CVE-2003-0454" ], "details": "Multiple buffer overflows in xgalaga 2.0.34 and earlier allow local users to gain privileges via a long HOME environment variable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hpvv-rrg9-q2p9/GHSA-hpvv-rrg9-q2p9.json b/advisories/unreviewed/2022/04/GHSA-hpvv-rrg9-q2p9/GHSA-hpvv-rrg9-q2p9.json index 59b092797ba..cc0e8c4aaa0 100644 --- a/advisories/unreviewed/2022/04/GHSA-hpvv-rrg9-q2p9/GHSA-hpvv-rrg9-q2p9.json +++ b/advisories/unreviewed/2022/04/GHSA-hpvv-rrg9-q2p9/GHSA-hpvv-rrg9-q2p9.json @@ -7,12 +7,8 @@ "CVE-2003-0499" ], "details": "Mantis 0.17.5 and earlier stores its database password in cleartext in a world-readable configuration file, which allows local users to perform unauthorized database operations.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hwp4-c63x-fx95/GHSA-hwp4-c63x-fx95.json b/advisories/unreviewed/2022/04/GHSA-hwp4-c63x-fx95/GHSA-hwp4-c63x-fx95.json index b6e2a5f1a82..c861b29a59c 100644 --- a/advisories/unreviewed/2022/04/GHSA-hwp4-c63x-fx95/GHSA-hwp4-c63x-fx95.json +++ b/advisories/unreviewed/2022/04/GHSA-hwp4-c63x-fx95/GHSA-hwp4-c63x-fx95.json @@ -7,12 +7,8 @@ "CVE-2003-0409" ], "details": "Buffer overflow in BRS WebWeaver 1.04 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long HTTP (1) POST or (2) HEAD request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j9v6-gw7c-pgcv/GHSA-j9v6-gw7c-pgcv.json b/advisories/unreviewed/2022/04/GHSA-j9v6-gw7c-pgcv/GHSA-j9v6-gw7c-pgcv.json index a4fd357a2af..ffa6560ef6b 100644 --- a/advisories/unreviewed/2022/04/GHSA-j9v6-gw7c-pgcv/GHSA-j9v6-gw7c-pgcv.json +++ b/advisories/unreviewed/2022/04/GHSA-j9v6-gw7c-pgcv/GHSA-j9v6-gw7c-pgcv.json @@ -7,12 +7,8 @@ "CVE-2003-0341" ], "details": "Cross-site scripting (XSS) vulnerability in Owl Intranet Engine 0.71 and earlier allows remote attackers to insert arbitrary script via the Search field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jp7h-w5mf-w95f/GHSA-jp7h-w5mf-w95f.json b/advisories/unreviewed/2022/04/GHSA-jp7h-w5mf-w95f/GHSA-jp7h-w5mf-w95f.json index 95f08eee2cd..e7e1b844a94 100644 --- a/advisories/unreviewed/2022/04/GHSA-jp7h-w5mf-w95f/GHSA-jp7h-w5mf-w95f.json +++ b/advisories/unreviewed/2022/04/GHSA-jp7h-w5mf-w95f/GHSA-jp7h-w5mf-w95f.json @@ -7,12 +7,8 @@ "CVE-2003-0433" ], "details": "Multiple buffer overflows in gnocatan 0.6.1 and earlier allow attackers to execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jqjh-x3wr-gv43/GHSA-jqjh-x3wr-gv43.json b/advisories/unreviewed/2022/04/GHSA-jqjh-x3wr-gv43/GHSA-jqjh-x3wr-gv43.json index 3388f0c5d33..d863cf54bd1 100644 --- a/advisories/unreviewed/2022/04/GHSA-jqjh-x3wr-gv43/GHSA-jqjh-x3wr-gv43.json +++ b/advisories/unreviewed/2022/04/GHSA-jqjh-x3wr-gv43/GHSA-jqjh-x3wr-gv43.json @@ -7,12 +7,8 @@ "CVE-2003-0376" ], "details": "Buffer overflow in Eudora 5.2.1 allows remote attackers to cause a denial of service (crash and failed restart) and possibly execute arbitrary code via an Attachment Converted argument with a large number of . (dot) characters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jxxw-m5f9-26wp/GHSA-jxxw-m5f9-26wp.json b/advisories/unreviewed/2022/04/GHSA-jxxw-m5f9-26wp/GHSA-jxxw-m5f9-26wp.json index a1c8024eae9..50b2936ea1e 100644 --- a/advisories/unreviewed/2022/04/GHSA-jxxw-m5f9-26wp/GHSA-jxxw-m5f9-26wp.json +++ b/advisories/unreviewed/2022/04/GHSA-jxxw-m5f9-26wp/GHSA-jxxw-m5f9-26wp.json @@ -7,12 +7,8 @@ "CVE-2003-0380" ], "details": "Buffer overflow in atftp daemon (atftpd) 0.6.1 and earlier, and possibly later versions, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long filename.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-m8cm-53hj-2mjp/GHSA-m8cm-53hj-2mjp.json b/advisories/unreviewed/2022/04/GHSA-m8cm-53hj-2mjp/GHSA-m8cm-53hj-2mjp.json index 82b4ffd3a17..248e8eb88bc 100644 --- a/advisories/unreviewed/2022/04/GHSA-m8cm-53hj-2mjp/GHSA-m8cm-53hj-2mjp.json +++ b/advisories/unreviewed/2022/04/GHSA-m8cm-53hj-2mjp/GHSA-m8cm-53hj-2mjp.json @@ -7,12 +7,8 @@ "CVE-2003-0371" ], "details": "Buffer overflow in Prishtina FTP client 1.x allows remote FTP servers to cause a denial of service (crash) and possibly execute arbitrary code via a long FTP banner.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mh42-89mv-q3ww/GHSA-mh42-89mv-q3ww.json b/advisories/unreviewed/2022/04/GHSA-mh42-89mv-q3ww/GHSA-mh42-89mv-q3ww.json index 2c2359e9691..769736c6673 100644 --- a/advisories/unreviewed/2022/04/GHSA-mh42-89mv-q3ww/GHSA-mh42-89mv-q3ww.json +++ b/advisories/unreviewed/2022/04/GHSA-mh42-89mv-q3ww/GHSA-mh42-89mv-q3ww.json @@ -7,12 +7,8 @@ "CVE-2003-0337" ], "details": "The ckconfig command in lsadmin for Load Sharing Facility (LSF) 5.1 allows local users to execute arbitrary programs by modifying the LSF_ENVDIR environment variable to reference an alternate lsf.conf file, then modifying LSF_SERVERDIR to point to a malicious lim program, which lsadmin then executes.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mj59-v7f2-cq3c/GHSA-mj59-v7f2-cq3c.json b/advisories/unreviewed/2022/04/GHSA-mj59-v7f2-cq3c/GHSA-mj59-v7f2-cq3c.json index b0e4d0b8341..5a97557f867 100644 --- a/advisories/unreviewed/2022/04/GHSA-mj59-v7f2-cq3c/GHSA-mj59-v7f2-cq3c.json +++ b/advisories/unreviewed/2022/04/GHSA-mj59-v7f2-cq3c/GHSA-mj59-v7f2-cq3c.json @@ -7,12 +7,8 @@ "CVE-2003-0368" ], "details": "Nokia Gateway GPRS support node (GGSN) allows remote attackers to cause a denial of service (kernel panic) via a malformed IP packet with a 0xFF TCP option.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-mjj5-jqj3-25q9/GHSA-mjj5-jqj3-25q9.json b/advisories/unreviewed/2022/04/GHSA-mjj5-jqj3-25q9/GHSA-mjj5-jqj3-25q9.json index 02a2b0f33f5..98ae5b281f5 100644 --- a/advisories/unreviewed/2022/04/GHSA-mjj5-jqj3-25q9/GHSA-mjj5-jqj3-25q9.json +++ b/advisories/unreviewed/2022/04/GHSA-mjj5-jqj3-25q9/GHSA-mjj5-jqj3-25q9.json @@ -7,12 +7,8 @@ "CVE-2003-0455" ], "details": "The imagemagick libmagick library 5.5 and earlier creates temporary files insecurely, which allows local users to create or overwrite arbitrary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mq6c-rp54-x83h/GHSA-mq6c-rp54-x83h.json b/advisories/unreviewed/2022/04/GHSA-mq6c-rp54-x83h/GHSA-mq6c-rp54-x83h.json index 0da11751888..269a1375fb7 100644 --- a/advisories/unreviewed/2022/04/GHSA-mq6c-rp54-x83h/GHSA-mq6c-rp54-x83h.json +++ b/advisories/unreviewed/2022/04/GHSA-mq6c-rp54-x83h/GHSA-mq6c-rp54-x83h.json @@ -7,12 +7,8 @@ "CVE-2003-0397" ], "details": "Buffer overflow in FastTrack (FT) network code, as used in Kazaa 2.0.2 and possibly other versions and products, allows remote attackers to execute arbitrary code via a packet containing a large list of supernodes, aka \"Packet 0' death.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mw28-fqq6-34jq/GHSA-mw28-fqq6-34jq.json b/advisories/unreviewed/2022/04/GHSA-mw28-fqq6-34jq/GHSA-mw28-fqq6-34jq.json index 87ab792134b..f988f44ea26 100644 --- a/advisories/unreviewed/2022/04/GHSA-mw28-fqq6-34jq/GHSA-mw28-fqq6-34jq.json +++ b/advisories/unreviewed/2022/04/GHSA-mw28-fqq6-34jq/GHSA-mw28-fqq6-34jq.json @@ -7,12 +7,8 @@ "CVE-2003-0399" ], "details": "Vignette StoryServer 4 and 5, Vignette V/5, and possibly other versions allows remote attackers to perform unauthorized SELECT queries by setting the vgn_creds cookie to an arbitrary value and directly accessing the save template.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p685-86cj-cwf4/GHSA-p685-86cj-cwf4.json b/advisories/unreviewed/2022/04/GHSA-p685-86cj-cwf4/GHSA-p685-86cj-cwf4.json index 77e04c84f89..e6efb5d1e09 100644 --- a/advisories/unreviewed/2022/04/GHSA-p685-86cj-cwf4/GHSA-p685-86cj-cwf4.json +++ b/advisories/unreviewed/2022/04/GHSA-p685-86cj-cwf4/GHSA-p685-86cj-cwf4.json @@ -7,12 +7,8 @@ "CVE-2003-0373" ], "details": "Multiple buffer overflows in libnasl in Nessus before 2.0.6 allow local users with plugin upload privileges to cause a denial of service (core dump) and possibly execute arbitrary code via (1) a long proto argument to the scanner_add_port function, (2) a long user argument to the ftp_log_in function, (3) a long pass argument to the ftp_log_in function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-pfc7-m6xf-fmg6/GHSA-pfc7-m6xf-fmg6.json b/advisories/unreviewed/2022/04/GHSA-pfc7-m6xf-fmg6/GHSA-pfc7-m6xf-fmg6.json index 9b46f5e78d3..68b05412522 100644 --- a/advisories/unreviewed/2022/04/GHSA-pfc7-m6xf-fmg6/GHSA-pfc7-m6xf-fmg6.json +++ b/advisories/unreviewed/2022/04/GHSA-pfc7-m6xf-fmg6/GHSA-pfc7-m6xf-fmg6.json @@ -7,12 +7,8 @@ "CVE-2003-0459" ], "details": "KDE Konqueror for KDE 3.1.2 and earlier does not remove authentication credentials from URLs of the \"user:password@host\" form in the HTTP-Referer header, which could allow remote web sites to steal the credentials for pages that link to the sites.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pmf8-3rx6-9hmm/GHSA-pmf8-3rx6-9hmm.json b/advisories/unreviewed/2022/04/GHSA-pmf8-3rx6-9hmm/GHSA-pmf8-3rx6-9hmm.json index db139a8d6e4..d0d35aa3c3d 100644 --- a/advisories/unreviewed/2022/04/GHSA-pmf8-3rx6-9hmm/GHSA-pmf8-3rx6-9hmm.json +++ b/advisories/unreviewed/2022/04/GHSA-pmf8-3rx6-9hmm/GHSA-pmf8-3rx6-9hmm.json @@ -7,12 +7,8 @@ "CVE-2003-0347" ], "details": "Heap-based buffer overflow in VBE.DLL and VBE6.DLL of Microsoft Visual Basic for Applications (VBA) SDK 5.0 through 6.3 allows remote attackers to execute arbitrary code via a document with a long ID parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pq29-2m6m-938v/GHSA-pq29-2m6m-938v.json b/advisories/unreviewed/2022/04/GHSA-pq29-2m6m-938v/GHSA-pq29-2m6m-938v.json index 8d114e5cdaa..3e88e99fe58 100644 --- a/advisories/unreviewed/2022/04/GHSA-pq29-2m6m-938v/GHSA-pq29-2m6m-938v.json +++ b/advisories/unreviewed/2022/04/GHSA-pq29-2m6m-938v/GHSA-pq29-2m6m-938v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-q24x-8vpq-q3xv/GHSA-q24x-8vpq-q3xv.json b/advisories/unreviewed/2022/04/GHSA-q24x-8vpq-q3xv/GHSA-q24x-8vpq-q3xv.json index 9cc99104333..03cc6562501 100644 --- a/advisories/unreviewed/2022/04/GHSA-q24x-8vpq-q3xv/GHSA-q24x-8vpq-q3xv.json +++ b/advisories/unreviewed/2022/04/GHSA-q24x-8vpq-q3xv/GHSA-q24x-8vpq-q3xv.json @@ -7,12 +7,8 @@ "CVE-2003-0436" ], "details": "Buffer overflow in search.cgi for mnoGoSearch 3.1.20 allows remote attackers to execute arbitrary code via a long ul parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q2vx-jxvf-g6gg/GHSA-q2vx-jxvf-g6gg.json b/advisories/unreviewed/2022/04/GHSA-q2vx-jxvf-g6gg/GHSA-q2vx-jxvf-g6gg.json index 67b9ff27d86..d949b4503fc 100644 --- a/advisories/unreviewed/2022/04/GHSA-q2vx-jxvf-g6gg/GHSA-q2vx-jxvf-g6gg.json +++ b/advisories/unreviewed/2022/04/GHSA-q2vx-jxvf-g6gg/GHSA-q2vx-jxvf-g6gg.json @@ -7,12 +7,8 @@ "CVE-2003-0415" ], "details": "Remote PC Access Server 2.2 allows remote attackers to cause a denial of service (crash) by receiving packets from the server and sending them back to the server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q3hr-92fv-qfpf/GHSA-q3hr-92fv-qfpf.json b/advisories/unreviewed/2022/04/GHSA-q3hr-92fv-qfpf/GHSA-q3hr-92fv-qfpf.json index 263bc06b454..648ec11d454 100644 --- a/advisories/unreviewed/2022/04/GHSA-q3hr-92fv-qfpf/GHSA-q3hr-92fv-qfpf.json +++ b/advisories/unreviewed/2022/04/GHSA-q3hr-92fv-qfpf/GHSA-q3hr-92fv-qfpf.json @@ -7,12 +7,8 @@ "CVE-2003-0385" ], "details": "Buffer overflow in xaos 3.0-23 and earlier, when running setuid, allows local users to gain root privileges via a long -language option.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q96r-f8gg-v2g6/GHSA-q96r-f8gg-v2g6.json b/advisories/unreviewed/2022/04/GHSA-q96r-f8gg-v2g6/GHSA-q96r-f8gg-v2g6.json index 2ca166c1a2f..5fc1baad10f 100644 --- a/advisories/unreviewed/2022/04/GHSA-q96r-f8gg-v2g6/GHSA-q96r-f8gg-v2g6.json +++ b/advisories/unreviewed/2022/04/GHSA-q96r-f8gg-v2g6/GHSA-q96r-f8gg-v2g6.json @@ -7,12 +7,8 @@ "CVE-2003-0462" ], "details": "A race condition in the way env_start and env_end pointers are initialized in the execve system call and used in fs/proc/base.c on Linux 2.4 allows local users to cause a denial of service (crash).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qh2g-9c2g-cvcr/GHSA-qh2g-9c2g-cvcr.json b/advisories/unreviewed/2022/04/GHSA-qh2g-9c2g-cvcr/GHSA-qh2g-9c2g-cvcr.json index aaf8eb0eab0..225d81caa75 100644 --- a/advisories/unreviewed/2022/04/GHSA-qh2g-9c2g-cvcr/GHSA-qh2g-9c2g-cvcr.json +++ b/advisories/unreviewed/2022/04/GHSA-qh2g-9c2g-cvcr/GHSA-qh2g-9c2g-cvcr.json @@ -7,12 +7,8 @@ "CVE-2003-0460" ], "details": "The rotatelogs program on Apache before 1.3.28, for Windows and OS/2 systems, does not properly ignore certain control characters that are received over the pipe, which could allow remote attackers to cause a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qrv9-7f6p-fwph/GHSA-qrv9-7f6p-fwph.json b/advisories/unreviewed/2022/04/GHSA-qrv9-7f6p-fwph/GHSA-qrv9-7f6p-fwph.json index 084d3ae976b..afa8658a66f 100644 --- a/advisories/unreviewed/2022/04/GHSA-qrv9-7f6p-fwph/GHSA-qrv9-7f6p-fwph.json +++ b/advisories/unreviewed/2022/04/GHSA-qrv9-7f6p-fwph/GHSA-qrv9-7f6p-fwph.json @@ -7,12 +7,8 @@ "CVE-2003-0464" ], "details": "The RPC code in Linux kernel 2.4 sets the reuse flag when sockets are created, which could allow local users to bind to UDP ports that are used by privileged services such as nfsd.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qwjj-948r-x92x/GHSA-qwjj-948r-x92x.json b/advisories/unreviewed/2022/04/GHSA-qwjj-948r-x92x/GHSA-qwjj-948r-x92x.json index 32cf4f7c5aa..a4e718406c2 100644 --- a/advisories/unreviewed/2022/04/GHSA-qwjj-948r-x92x/GHSA-qwjj-948r-x92x.json +++ b/advisories/unreviewed/2022/04/GHSA-qwjj-948r-x92x/GHSA-qwjj-948r-x92x.json @@ -7,12 +7,8 @@ "CVE-2003-0407" ], "details": "Buffer overflow in gbnserver for Gnome Batalla Naval 1.0.4 allows remote attackers to execute arbitrary code via a long connection string.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-r2rv-gwxf-r94c/GHSA-r2rv-gwxf-r94c.json b/advisories/unreviewed/2022/04/GHSA-r2rv-gwxf-r94c/GHSA-r2rv-gwxf-r94c.json index 61cb840a32b..8f6ad242eaa 100644 --- a/advisories/unreviewed/2022/04/GHSA-r2rv-gwxf-r94c/GHSA-r2rv-gwxf-r94c.json +++ b/advisories/unreviewed/2022/04/GHSA-r2rv-gwxf-r94c/GHSA-r2rv-gwxf-r94c.json @@ -7,12 +7,8 @@ "CVE-2003-0366" ], "details": "lyskom-server 2.0.7 and earlier allows unauthenticated users to cause a denial of service (CPU consumption) via a large query.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rm83-v85h-374x/GHSA-rm83-v85h-374x.json b/advisories/unreviewed/2022/04/GHSA-rm83-v85h-374x/GHSA-rm83-v85h-374x.json index bbfb6d48a4d..01663755e9d 100644 --- a/advisories/unreviewed/2022/04/GHSA-rm83-v85h-374x/GHSA-rm83-v85h-374x.json +++ b/advisories/unreviewed/2022/04/GHSA-rm83-v85h-374x/GHSA-rm83-v85h-374x.json @@ -7,12 +7,8 @@ "CVE-2003-0447" ], "details": "The Custom HTTP Errors capability in Internet Explorer 5.01, 5.5 and 6.0 allows remote attackers to execute script in the Local Zone via an argument to shdocvw.dll that causes a \"javascript:\" link to be generated.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rrvm-c9w2-q588/GHSA-rrvm-c9w2-q588.json b/advisories/unreviewed/2022/04/GHSA-rrvm-c9w2-q588/GHSA-rrvm-c9w2-q588.json index 084c0011abf..7838d75313d 100644 --- a/advisories/unreviewed/2022/04/GHSA-rrvm-c9w2-q588/GHSA-rrvm-c9w2-q588.json +++ b/advisories/unreviewed/2022/04/GHSA-rrvm-c9w2-q588/GHSA-rrvm-c9w2-q588.json @@ -7,12 +7,8 @@ "CVE-2003-0418" ], "details": "The Linux 2.0 kernel IP stack does not properly calculate the size of an ICMP citation, which causes it to include portions of unauthorized memory in ICMP error responses.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rwrv-cg6w-mmfr/GHSA-rwrv-cg6w-mmfr.json b/advisories/unreviewed/2022/04/GHSA-rwrv-cg6w-mmfr/GHSA-rwrv-cg6w-mmfr.json index 01db29ed4e4..b4525a27faa 100644 --- a/advisories/unreviewed/2022/04/GHSA-rwrv-cg6w-mmfr/GHSA-rwrv-cg6w-mmfr.json +++ b/advisories/unreviewed/2022/04/GHSA-rwrv-cg6w-mmfr/GHSA-rwrv-cg6w-mmfr.json @@ -7,12 +7,8 @@ "CVE-2003-0348" ], "details": "A certain Microsoft Windows Media Player 9 Series ActiveX control allows remote attackers to view and manipulate the Media Library on the local system via HTML script.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-v54v-27r8-vpr7/GHSA-v54v-27r8-vpr7.json b/advisories/unreviewed/2022/04/GHSA-v54v-27r8-vpr7/GHSA-v54v-27r8-vpr7.json index d2eabfaffc6..bddb67647f9 100644 --- a/advisories/unreviewed/2022/04/GHSA-v54v-27r8-vpr7/GHSA-v54v-27r8-vpr7.json +++ b/advisories/unreviewed/2022/04/GHSA-v54v-27r8-vpr7/GHSA-v54v-27r8-vpr7.json @@ -7,12 +7,8 @@ "CVE-2003-0456" ], "details": "VisNetic WebSite 3.5 allows remote attackers to obtain the full pathname of the server via a request containing a folder that does not exist, which leaks the pathname in an error message, as demonstrated using _vti_bin/fpcount.exe.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-v5jm-f6r9-5ggr/GHSA-v5jm-f6r9-5ggr.json b/advisories/unreviewed/2022/04/GHSA-v5jm-f6r9-5ggr/GHSA-v5jm-f6r9-5ggr.json index a1e02e6ff2a..1ebb67a9eb5 100644 --- a/advisories/unreviewed/2022/04/GHSA-v5jm-f6r9-5ggr/GHSA-v5jm-f6r9-5ggr.json +++ b/advisories/unreviewed/2022/04/GHSA-v5jm-f6r9-5ggr/GHSA-v5jm-f6r9-5ggr.json @@ -7,12 +7,8 @@ "CVE-2003-0361" ], "details": "gPS before 1.1.0 does not properly follow the rgpsp connection source acceptation policy as specified in the rgpsp.conf file, which could allow unauthorized remote attackers to connect to rgpsp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vf7g-c5gv-vfxf/GHSA-vf7g-c5gv-vfxf.json b/advisories/unreviewed/2022/04/GHSA-vf7g-c5gv-vfxf/GHSA-vf7g-c5gv-vfxf.json index efd64eb04de..15b2c5c285f 100644 --- a/advisories/unreviewed/2022/04/GHSA-vf7g-c5gv-vfxf/GHSA-vf7g-c5gv-vfxf.json +++ b/advisories/unreviewed/2022/04/GHSA-vf7g-c5gv-vfxf/GHSA-vf7g-c5gv-vfxf.json @@ -7,12 +7,8 @@ "CVE-2003-0350" ], "details": "The control for listing accessibility options in the Accessibility Utility Manager on Windows 2000 (ListView) does not properly handle Windows messages, which allows local users to execute arbitrary code via a \"Shatter\" style message to the Utility Manager that references a user-controlled callback function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vg7r-f2jg-5449/GHSA-vg7r-f2jg-5449.json b/advisories/unreviewed/2022/04/GHSA-vg7r-f2jg-5449/GHSA-vg7r-f2jg-5449.json index c1e6e9c3c6a..ac8e38ea820 100644 --- a/advisories/unreviewed/2022/04/GHSA-vg7r-f2jg-5449/GHSA-vg7r-f2jg-5449.json +++ b/advisories/unreviewed/2022/04/GHSA-vg7r-f2jg-5449/GHSA-vg7r-f2jg-5449.json @@ -7,12 +7,8 @@ "CVE-2003-0349" ], "details": "Buffer overflow in the streaming media component for logging multicast requests in the ISAPI for the logging capability of Microsoft Windows Media Services (nsiislog.dll), as installed in IIS 5.0, allows remote attackers to execute arbitrary code via a large POST request to nsiislog.dll.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vj5m-w4ph-5wwj/GHSA-vj5m-w4ph-5wwj.json b/advisories/unreviewed/2022/04/GHSA-vj5m-w4ph-5wwj/GHSA-vj5m-w4ph-5wwj.json index a7a5f52d375..0b17bbd3096 100644 --- a/advisories/unreviewed/2022/04/GHSA-vj5m-w4ph-5wwj/GHSA-vj5m-w4ph-5wwj.json +++ b/advisories/unreviewed/2022/04/GHSA-vj5m-w4ph-5wwj/GHSA-vj5m-w4ph-5wwj.json @@ -7,12 +7,8 @@ "CVE-2003-0367" ], "details": "znew in the gzip package allows local users to overwrite arbitrary files via a symlink attack on temporary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-vw2r-qp4f-v952/GHSA-vw2r-qp4f-v952.json b/advisories/unreviewed/2022/04/GHSA-vw2r-qp4f-v952/GHSA-vw2r-qp4f-v952.json index 353307b89f9..d3c6bd51f89 100644 --- a/advisories/unreviewed/2022/04/GHSA-vw2r-qp4f-v952/GHSA-vw2r-qp4f-v952.json +++ b/advisories/unreviewed/2022/04/GHSA-vw2r-qp4f-v952/GHSA-vw2r-qp4f-v952.json @@ -7,12 +7,8 @@ "CVE-2003-0340" ], "details": "Demarc Puresecure 1.6 stores authentication information for the logging server in plaintext, which allows attackers to steal login names and passwords to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wc5r-jmxq-6gr5/GHSA-wc5r-jmxq-6gr5.json b/advisories/unreviewed/2022/04/GHSA-wc5r-jmxq-6gr5/GHSA-wc5r-jmxq-6gr5.json index 507ddf349da..5ac5694d5f6 100644 --- a/advisories/unreviewed/2022/04/GHSA-wc5r-jmxq-6gr5/GHSA-wc5r-jmxq-6gr5.json +++ b/advisories/unreviewed/2022/04/GHSA-wc5r-jmxq-6gr5/GHSA-wc5r-jmxq-6gr5.json @@ -7,12 +7,8 @@ "CVE-2003-0362" ], "details": "Buffer overflow in gPS before 0.10.2 may allow local users to cause a denial of service (SIGSEGV) in rgpsp via long command lines.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wcw5-33pv-6vmr/GHSA-wcw5-33pv-6vmr.json b/advisories/unreviewed/2022/04/GHSA-wcw5-33pv-6vmr/GHSA-wcw5-33pv-6vmr.json index 8f8b456b769..fb36b7b69ae 100644 --- a/advisories/unreviewed/2022/04/GHSA-wcw5-33pv-6vmr/GHSA-wcw5-33pv-6vmr.json +++ b/advisories/unreviewed/2022/04/GHSA-wcw5-33pv-6vmr/GHSA-wcw5-33pv-6vmr.json @@ -7,12 +7,8 @@ "CVE-2003-0402" ], "details": "The default login template (/vgn/login) in Vignette StoryServer 5 and Vignette V/5 generates different responses whether a user exists or not, which allows remote attackers to identify valid usernames via brute force attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wpf2-wvqg-3wf6/GHSA-wpf2-wvqg-3wf6.json b/advisories/unreviewed/2022/04/GHSA-wpf2-wvqg-3wf6/GHSA-wpf2-wvqg-3wf6.json index 1b790fe2ecc..350e7476e22 100644 --- a/advisories/unreviewed/2022/04/GHSA-wpf2-wvqg-3wf6/GHSA-wpf2-wvqg-3wf6.json +++ b/advisories/unreviewed/2022/04/GHSA-wpf2-wvqg-3wf6/GHSA-wpf2-wvqg-3wf6.json @@ -7,12 +7,8 @@ "CVE-2003-0346" ], "details": "Multiple integer overflows in a Microsoft Windows DirectX MIDI library (QUARTZ.DLL) allow remote attackers to execute arbitrary code via a MIDI (.mid) file with (1) large length for a Text or Copyright string, or (2) a large number of tracks, which leads to a heap-based buffer overflow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wpq3-wrwx-wvhp/GHSA-wpq3-wrwx-wvhp.json b/advisories/unreviewed/2022/04/GHSA-wpq3-wrwx-wvhp/GHSA-wpq3-wrwx-wvhp.json index 77df770f4b2..6245d1c3d54 100644 --- a/advisories/unreviewed/2022/04/GHSA-wpq3-wrwx-wvhp/GHSA-wpq3-wrwx-wvhp.json +++ b/advisories/unreviewed/2022/04/GHSA-wpq3-wrwx-wvhp/GHSA-wpq3-wrwx-wvhp.json @@ -7,12 +7,8 @@ "CVE-2003-0364" ], "details": "The TCP/IP fragment reassembly handling in the Linux kernel 2.4 allows remote attackers to cause a denial of service (CPU consumption) via certain packets that cause a large number of hash table collisions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wv39-mwwx-972q/GHSA-wv39-mwwx-972q.json b/advisories/unreviewed/2022/04/GHSA-wv39-mwwx-972q/GHSA-wv39-mwwx-972q.json index 2405febf1f2..b32fe69e402 100644 --- a/advisories/unreviewed/2022/04/GHSA-wv39-mwwx-972q/GHSA-wv39-mwwx-972q.json +++ b/advisories/unreviewed/2022/04/GHSA-wv39-mwwx-972q/GHSA-wv39-mwwx-972q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-wvcr-2gc8-63gg/GHSA-wvcr-2gc8-63gg.json b/advisories/unreviewed/2022/04/GHSA-wvcr-2gc8-63gg/GHSA-wvcr-2gc8-63gg.json index 5618cbf491a..e39d8788b77 100644 --- a/advisories/unreviewed/2022/04/GHSA-wvcr-2gc8-63gg/GHSA-wvcr-2gc8-63gg.json +++ b/advisories/unreviewed/2022/04/GHSA-wvcr-2gc8-63gg/GHSA-wvcr-2gc8-63gg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-wxg6-2r9f-5wx2/GHSA-wxg6-2r9f-5wx2.json b/advisories/unreviewed/2022/04/GHSA-wxg6-2r9f-5wx2/GHSA-wxg6-2r9f-5wx2.json index 7209025f26e..6b1c45fb0c6 100644 --- a/advisories/unreviewed/2022/04/GHSA-wxg6-2r9f-5wx2/GHSA-wxg6-2r9f-5wx2.json +++ b/advisories/unreviewed/2022/04/GHSA-wxg6-2r9f-5wx2/GHSA-wxg6-2r9f-5wx2.json @@ -7,12 +7,8 @@ "CVE-2003-0440" ], "details": "The (1) semi MIME library 1.14.5 and earlier, and (2) wemi 1.14.0 and possibly other versions, allows local users to overwrite arbitrary files via a symlink attack on temporary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-x65w-xp74-jp4x/GHSA-x65w-xp74-jp4x.json b/advisories/unreviewed/2022/04/GHSA-x65w-xp74-jp4x/GHSA-x65w-xp74-jp4x.json index 67dd1dbb4e7..1e6a5ec440d 100644 --- a/advisories/unreviewed/2022/04/GHSA-x65w-xp74-jp4x/GHSA-x65w-xp74-jp4x.json +++ b/advisories/unreviewed/2022/04/GHSA-x65w-xp74-jp4x/GHSA-x65w-xp74-jp4x.json @@ -7,12 +7,8 @@ "CVE-2003-0423" ], "details": "parse_xml.cgi in Apple QuickTime / Darwin Streaming Server before 4.1.3g allows remote attackers to obtain the source code for parseable files via the filename parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xgff-48h7-pjqg/GHSA-xgff-48h7-pjqg.json b/advisories/unreviewed/2022/04/GHSA-xgff-48h7-pjqg/GHSA-xgff-48h7-pjqg.json index 8534b166f81..2d81ad0a7c2 100644 --- a/advisories/unreviewed/2022/04/GHSA-xgff-48h7-pjqg/GHSA-xgff-48h7-pjqg.json +++ b/advisories/unreviewed/2022/04/GHSA-xgff-48h7-pjqg/GHSA-xgff-48h7-pjqg.json @@ -7,12 +7,8 @@ "CVE-2003-0355" ], "details": "Safari 1.0 Beta 2 (v73) and earlier does not validate the Common Name (CN) field for X.509 Certificates, which could allow remote attackers to spoof certificates.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xjxx-r5cf-4p2h/GHSA-xjxx-r5cf-4p2h.json b/advisories/unreviewed/2022/04/GHSA-xjxx-r5cf-4p2h/GHSA-xjxx-r5cf-4p2h.json index 87aead97cc6..8b7cfe927f8 100644 --- a/advisories/unreviewed/2022/04/GHSA-xjxx-r5cf-4p2h/GHSA-xjxx-r5cf-4p2h.json +++ b/advisories/unreviewed/2022/04/GHSA-xjxx-r5cf-4p2h/GHSA-xjxx-r5cf-4p2h.json @@ -7,12 +7,8 @@ "CVE-2003-0379" ], "details": "Unknown vulnerability in Apple File Service (AFP Server) for Mac OS X Server, when sharing files on a UFS or re-shared NFS volume, allows remote attackers to overwrite arbitrary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xx7m-rfgv-w2gg/GHSA-xx7m-rfgv-w2gg.json b/advisories/unreviewed/2022/04/GHSA-xx7m-rfgv-w2gg/GHSA-xx7m-rfgv-w2gg.json index 29e6bc2c7fe..f2f1f6c491a 100644 --- a/advisories/unreviewed/2022/04/GHSA-xx7m-rfgv-w2gg/GHSA-xx7m-rfgv-w2gg.json +++ b/advisories/unreviewed/2022/04/GHSA-xx7m-rfgv-w2gg/GHSA-xx7m-rfgv-w2gg.json @@ -7,12 +7,8 @@ "CVE-2003-0442" ], "details": "Cross-site scripting (XSS) vulnerability in the transparent SID support capability for PHP before 4.3.2 (session.use_trans_sid) allows remote attackers to insert arbitrary script via the PHPSESSID parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -76,9 +72,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-225v-j4r6-q4hx/GHSA-225v-j4r6-q4hx.json b/advisories/unreviewed/2022/05/GHSA-225v-j4r6-q4hx/GHSA-225v-j4r6-q4hx.json index 7fd2b314c96..71ce6a0f0b7 100644 --- a/advisories/unreviewed/2022/05/GHSA-225v-j4r6-q4hx/GHSA-225v-j4r6-q4hx.json +++ b/advisories/unreviewed/2022/05/GHSA-225v-j4r6-q4hx/GHSA-225v-j4r6-q4hx.json @@ -7,12 +7,8 @@ "CVE-2020-3148" ], "details": "A vulnerability in the web-based interface of Cisco Prime Network Registrar (CPNR) could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected system. The vulnerability is due to insufficient CSRF protections in the web-based interface. An attacker could exploit this vulnerability by persuading a targeted user, with an active administrative session on the affected device, to click a malicious link. A successful exploit could allow an attacker to change the device's configuration, which could include the ability to edit or create user accounts of any privilege level. Some changes to the device's configuration could negatively impact the availability of networking services for other devices on networks managed by CPNR.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2279-4crg-c8c8/GHSA-2279-4crg-c8c8.json b/advisories/unreviewed/2022/05/GHSA-2279-4crg-c8c8/GHSA-2279-4crg-c8c8.json index 40aa9e0c516..285fe629193 100644 --- a/advisories/unreviewed/2022/05/GHSA-2279-4crg-c8c8/GHSA-2279-4crg-c8c8.json +++ b/advisories/unreviewed/2022/05/GHSA-2279-4crg-c8c8/GHSA-2279-4crg-c8c8.json @@ -7,12 +7,8 @@ "CVE-2018-19599" ], "details": "Monstra CMS 1.6 allows XSS via an uploaded SVG document to the admin/index.php?id=filesmanager&path=uploads/ URI. NOTE: this is a discontinued product.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-237h-5fc4-8x3g/GHSA-237h-5fc4-8x3g.json b/advisories/unreviewed/2022/05/GHSA-237h-5fc4-8x3g/GHSA-237h-5fc4-8x3g.json index bde7766e72a..6669983d32c 100644 --- a/advisories/unreviewed/2022/05/GHSA-237h-5fc4-8x3g/GHSA-237h-5fc4-8x3g.json +++ b/advisories/unreviewed/2022/05/GHSA-237h-5fc4-8x3g/GHSA-237h-5fc4-8x3g.json @@ -7,12 +7,8 @@ "CVE-2020-3841" ], "details": "The issue was addressed with improved UI handling. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, Safari 13.0.5. A local user may unknowingly send a password unencrypted over the network.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-239c-jmhv-334g/GHSA-239c-jmhv-334g.json b/advisories/unreviewed/2022/05/GHSA-239c-jmhv-334g/GHSA-239c-jmhv-334g.json index 63aa3084e13..8eb2e1cfded 100644 --- a/advisories/unreviewed/2022/05/GHSA-239c-jmhv-334g/GHSA-239c-jmhv-334g.json +++ b/advisories/unreviewed/2022/05/GHSA-239c-jmhv-334g/GHSA-239c-jmhv-334g.json @@ -7,12 +7,8 @@ "CVE-2019-20486" ], "details": "An issue was discovered on NETGEAR WNR1000V4 1.1.0.54 devices. Multiple pages (setup.cgi and adv_index.htm) within the web management console are vulnerable to stored XSS, as demonstrated by the configuration of the UI language.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-24gf-6fhm-ccvq/GHSA-24gf-6fhm-ccvq.json b/advisories/unreviewed/2022/05/GHSA-24gf-6fhm-ccvq/GHSA-24gf-6fhm-ccvq.json index 2a8eb496b4c..216cd5ee4d7 100644 --- a/advisories/unreviewed/2022/05/GHSA-24gf-6fhm-ccvq/GHSA-24gf-6fhm-ccvq.json +++ b/advisories/unreviewed/2022/05/GHSA-24gf-6fhm-ccvq/GHSA-24gf-6fhm-ccvq.json @@ -7,12 +7,8 @@ "CVE-2019-14081" ], "details": "Buffer Over-read when WLAN module gets a WMI message for SAR limits with invalid number of limits to be enforced in Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking in APQ8098, IPQ8074, MSM8998, QCA8081, QCN7605, QCS605, SDA660, SDA845, SDM630, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SM8150, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-24jw-qhh7-33q6/GHSA-24jw-qhh7-33q6.json b/advisories/unreviewed/2022/05/GHSA-24jw-qhh7-33q6/GHSA-24jw-qhh7-33q6.json index c6895b22c01..cbb6bdb1b70 100644 --- a/advisories/unreviewed/2022/05/GHSA-24jw-qhh7-33q6/GHSA-24jw-qhh7-33q6.json +++ b/advisories/unreviewed/2022/05/GHSA-24jw-qhh7-33q6/GHSA-24jw-qhh7-33q6.json @@ -7,12 +7,8 @@ "CVE-2019-10706" ], "details": "Western Digital SanDisk SanDisk X300, X300s, X400, and X600 devices: The firmware update authentication method relies on a symmetric HMAC digest. The key used to validate this digest is present in a protected area of the device, and if extracted could be used to install arbitrary firmware to other devices.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-24xp-x43w-h622/GHSA-24xp-x43w-h622.json b/advisories/unreviewed/2022/05/GHSA-24xp-x43w-h622/GHSA-24xp-x43w-h622.json index 8682cbc8803..108e73cdb3e 100644 --- a/advisories/unreviewed/2022/05/GHSA-24xp-x43w-h622/GHSA-24xp-x43w-h622.json +++ b/advisories/unreviewed/2022/05/GHSA-24xp-x43w-h622/GHSA-24xp-x43w-h622.json @@ -7,12 +7,8 @@ "CVE-2020-3128" ], "details": "Multiple vulnerabilities in Cisco Webex Network Recording Player for Microsoft Windows and Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerabilities are due to insufficient validation of certain elements within a Webex recording that is stored in either the Advanced Recording Format (ARF) or the Webex Recording Format (WRF). An attacker could exploit these vulnerabilities by sending a malicious ARF or WRF file to a user through a link or email attachment and persuading the user to open the file on the local system. A successful exploit could allow the attacker to execute arbitrary code on the affected system with the privileges of the targeted user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-25gf-3pvp-fcgp/GHSA-25gf-3pvp-fcgp.json b/advisories/unreviewed/2022/05/GHSA-25gf-3pvp-fcgp/GHSA-25gf-3pvp-fcgp.json index bf1c1e141b3..fd16503767f 100644 --- a/advisories/unreviewed/2022/05/GHSA-25gf-3pvp-fcgp/GHSA-25gf-3pvp-fcgp.json +++ b/advisories/unreviewed/2022/05/GHSA-25gf-3pvp-fcgp/GHSA-25gf-3pvp-fcgp.json @@ -7,12 +7,8 @@ "CVE-2020-3870" ], "details": "An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, macOS Catalina 10.15.3, tvOS 13.3.1, watchOS 6.1.2. Processing a maliciously crafted image may lead to arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-25hm-6gxf-m348/GHSA-25hm-6gxf-m348.json b/advisories/unreviewed/2022/05/GHSA-25hm-6gxf-m348/GHSA-25hm-6gxf-m348.json index 8fb16e25a2e..487ebcc35ff 100644 --- a/advisories/unreviewed/2022/05/GHSA-25hm-6gxf-m348/GHSA-25hm-6gxf-m348.json +++ b/advisories/unreviewed/2022/05/GHSA-25hm-6gxf-m348/GHSA-25hm-6gxf-m348.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-265m-mr24-fcwv/GHSA-265m-mr24-fcwv.json b/advisories/unreviewed/2022/05/GHSA-265m-mr24-fcwv/GHSA-265m-mr24-fcwv.json index e4517f81a77..bb0b484e72f 100644 --- a/advisories/unreviewed/2022/05/GHSA-265m-mr24-fcwv/GHSA-265m-mr24-fcwv.json +++ b/advisories/unreviewed/2022/05/GHSA-265m-mr24-fcwv/GHSA-265m-mr24-fcwv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2896-6gvq-8vjr/GHSA-2896-6gvq-8vjr.json b/advisories/unreviewed/2022/05/GHSA-2896-6gvq-8vjr/GHSA-2896-6gvq-8vjr.json index e69ba3cfd19..524538d3346 100644 --- a/advisories/unreviewed/2022/05/GHSA-2896-6gvq-8vjr/GHSA-2896-6gvq-8vjr.json +++ b/advisories/unreviewed/2022/05/GHSA-2896-6gvq-8vjr/GHSA-2896-6gvq-8vjr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-29pj-p885-q429/GHSA-29pj-p885-q429.json b/advisories/unreviewed/2022/05/GHSA-29pj-p885-q429/GHSA-29pj-p885-q429.json index d84e8f4e61c..c4b69ae275c 100644 --- a/advisories/unreviewed/2022/05/GHSA-29pj-p885-q429/GHSA-29pj-p885-q429.json +++ b/advisories/unreviewed/2022/05/GHSA-29pj-p885-q429/GHSA-29pj-p885-q429.json @@ -7,12 +7,8 @@ "CVE-2019-19986" ], "details": "An issue was discovered in Selesta Visual Access Manager (VAM) 4.15.0 through 4.29. An attacker without authentication is able to execute arbitrary SQL SELECT statements by injecting the HTTP (POST or GET) parameter persoid into /tools/VamPersonPhoto.php. The SQL Injection type is Error-based (this means that relies on error messages thrown by the database server to obtain information about the structure of the database).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-29wf-fqjv-94f8/GHSA-29wf-fqjv-94f8.json b/advisories/unreviewed/2022/05/GHSA-29wf-fqjv-94f8/GHSA-29wf-fqjv-94f8.json index ca368ed3564..ffbdc8a9766 100644 --- a/advisories/unreviewed/2022/05/GHSA-29wf-fqjv-94f8/GHSA-29wf-fqjv-94f8.json +++ b/advisories/unreviewed/2022/05/GHSA-29wf-fqjv-94f8/GHSA-29wf-fqjv-94f8.json @@ -7,12 +7,8 @@ "CVE-2019-4301" ], "details": "BigFix Self-Service Application (SSA) is vulnerable to arbitrary code execution if Javascript code is included in Running Message or Post Message HTML.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2ccq-7hwj-4734/GHSA-2ccq-7hwj-4734.json b/advisories/unreviewed/2022/05/GHSA-2ccq-7hwj-4734/GHSA-2ccq-7hwj-4734.json index cafa74ff4c0..dcf4cd7efbe 100644 --- a/advisories/unreviewed/2022/05/GHSA-2ccq-7hwj-4734/GHSA-2ccq-7hwj-4734.json +++ b/advisories/unreviewed/2022/05/GHSA-2ccq-7hwj-4734/GHSA-2ccq-7hwj-4734.json @@ -7,12 +7,8 @@ "CVE-2020-0051" ], "details": "In onCreate of SettingsHomepageActivity, there is a possible tapjacking attack. This could lead to local escalation of privilege in Settings with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-138442483", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2cm9-frr4-6q2v/GHSA-2cm9-frr4-6q2v.json b/advisories/unreviewed/2022/05/GHSA-2cm9-frr4-6q2v/GHSA-2cm9-frr4-6q2v.json index 6681bec8c23..3e248800461 100644 --- a/advisories/unreviewed/2022/05/GHSA-2cm9-frr4-6q2v/GHSA-2cm9-frr4-6q2v.json +++ b/advisories/unreviewed/2022/05/GHSA-2cm9-frr4-6q2v/GHSA-2cm9-frr4-6q2v.json @@ -7,12 +7,8 @@ "CVE-2020-3853" ], "details": "A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, macOS Catalina 10.15.3, tvOS 13.3.1, watchOS 6.1.2. A malicious application may be able to execute arbitrary code with system privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2ffq-f4m4-q248/GHSA-2ffq-f4m4-q248.json b/advisories/unreviewed/2022/05/GHSA-2ffq-f4m4-q248/GHSA-2ffq-f4m4-q248.json index 6ad169e3db6..008f8d509e8 100644 --- a/advisories/unreviewed/2022/05/GHSA-2ffq-f4m4-q248/GHSA-2ffq-f4m4-q248.json +++ b/advisories/unreviewed/2022/05/GHSA-2ffq-f4m4-q248/GHSA-2ffq-f4m4-q248.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2g45-mrfv-r6f4/GHSA-2g45-mrfv-r6f4.json b/advisories/unreviewed/2022/05/GHSA-2g45-mrfv-r6f4/GHSA-2g45-mrfv-r6f4.json index 6217a89f305..7ce0162f363 100644 --- a/advisories/unreviewed/2022/05/GHSA-2g45-mrfv-r6f4/GHSA-2g45-mrfv-r6f4.json +++ b/advisories/unreviewed/2022/05/GHSA-2g45-mrfv-r6f4/GHSA-2g45-mrfv-r6f4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2g5q-49cr-4f7j/GHSA-2g5q-49cr-4f7j.json b/advisories/unreviewed/2022/05/GHSA-2g5q-49cr-4f7j/GHSA-2g5q-49cr-4f7j.json index dd0821db684..3a3eb12b771 100644 --- a/advisories/unreviewed/2022/05/GHSA-2g5q-49cr-4f7j/GHSA-2g5q-49cr-4f7j.json +++ b/advisories/unreviewed/2022/05/GHSA-2g5q-49cr-4f7j/GHSA-2g5q-49cr-4f7j.json @@ -7,12 +7,8 @@ "CVE-2020-6793" ], "details": "When processing an email message with an ill-formed envelope, Thunderbird could read data from a random memory location. This vulnerability affects Thunderbird < 68.5.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2g7j-m3mp-pr8p/GHSA-2g7j-m3mp-pr8p.json b/advisories/unreviewed/2022/05/GHSA-2g7j-m3mp-pr8p/GHSA-2g7j-m3mp-pr8p.json index 68ebc1a9514..c7e999ffc95 100644 --- a/advisories/unreviewed/2022/05/GHSA-2g7j-m3mp-pr8p/GHSA-2g7j-m3mp-pr8p.json +++ b/advisories/unreviewed/2022/05/GHSA-2g7j-m3mp-pr8p/GHSA-2g7j-m3mp-pr8p.json @@ -7,12 +7,8 @@ "CVE-2019-5155" ], "details": "An exploitable command injection vulnerability exists in the cloud connectivity feature of WAGO PFC200. An attacker can inject operating system commands into any of the parameter values contained in the firmware update command. This affects WAGO PFC200 Firmware version 03.02.02(14), version 03.01.07(13), and version 03.00.39(12)", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2gx8-cvf4-pwjh/GHSA-2gx8-cvf4-pwjh.json b/advisories/unreviewed/2022/05/GHSA-2gx8-cvf4-pwjh/GHSA-2gx8-cvf4-pwjh.json index 0ec4e19a1d8..2d2bb88f604 100644 --- a/advisories/unreviewed/2022/05/GHSA-2gx8-cvf4-pwjh/GHSA-2gx8-cvf4-pwjh.json +++ b/advisories/unreviewed/2022/05/GHSA-2gx8-cvf4-pwjh/GHSA-2gx8-cvf4-pwjh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2j4p-5xx5-582x/GHSA-2j4p-5xx5-582x.json b/advisories/unreviewed/2022/05/GHSA-2j4p-5xx5-582x/GHSA-2j4p-5xx5-582x.json index 1f58a8d31df..c338e07390b 100644 --- a/advisories/unreviewed/2022/05/GHSA-2j4p-5xx5-582x/GHSA-2j4p-5xx5-582x.json +++ b/advisories/unreviewed/2022/05/GHSA-2j4p-5xx5-582x/GHSA-2j4p-5xx5-582x.json @@ -7,12 +7,8 @@ "CVE-2020-4162" ], "details": "IBM InfoSphere Information Server 11.5 and 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 174342.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2j6m-77gv-ggf6/GHSA-2j6m-77gv-ggf6.json b/advisories/unreviewed/2022/05/GHSA-2j6m-77gv-ggf6/GHSA-2j6m-77gv-ggf6.json index 71320b1570b..fbdb6a47c92 100644 --- a/advisories/unreviewed/2022/05/GHSA-2j6m-77gv-ggf6/GHSA-2j6m-77gv-ggf6.json +++ b/advisories/unreviewed/2022/05/GHSA-2j6m-77gv-ggf6/GHSA-2j6m-77gv-ggf6.json @@ -7,12 +7,8 @@ "CVE-2019-19370" ], "details": "A cross-site scripting (XSS) vulnerability in the web conferencing component of the Mitel MiCollab application before 9.0.15 for Android could allow an unauthenticated attacker to conduct a reflected cross-site scripting (XSS) attack due to insufficient validation in the file upload interface. A successful exploit could allow an attacker to execute arbitrary scripts.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2mcw-g4r6-c9vv/GHSA-2mcw-g4r6-c9vv.json b/advisories/unreviewed/2022/05/GHSA-2mcw-g4r6-c9vv/GHSA-2mcw-g4r6-c9vv.json index 0ed4b3ed57c..20e7f6fb7a8 100644 --- a/advisories/unreviewed/2022/05/GHSA-2mcw-g4r6-c9vv/GHSA-2mcw-g4r6-c9vv.json +++ b/advisories/unreviewed/2022/05/GHSA-2mcw-g4r6-c9vv/GHSA-2mcw-g4r6-c9vv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2qf4-9rx4-94ww/GHSA-2qf4-9rx4-94ww.json b/advisories/unreviewed/2022/05/GHSA-2qf4-9rx4-94ww/GHSA-2qf4-9rx4-94ww.json index f826da8c4b3..9a6baeab781 100644 --- a/advisories/unreviewed/2022/05/GHSA-2qf4-9rx4-94ww/GHSA-2qf4-9rx4-94ww.json +++ b/advisories/unreviewed/2022/05/GHSA-2qf4-9rx4-94ww/GHSA-2qf4-9rx4-94ww.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2qh8-fp5p-2xx2/GHSA-2qh8-fp5p-2xx2.json b/advisories/unreviewed/2022/05/GHSA-2qh8-fp5p-2xx2/GHSA-2qh8-fp5p-2xx2.json index 7b780dbd483..2351221faf8 100644 --- a/advisories/unreviewed/2022/05/GHSA-2qh8-fp5p-2xx2/GHSA-2qh8-fp5p-2xx2.json +++ b/advisories/unreviewed/2022/05/GHSA-2qh8-fp5p-2xx2/GHSA-2qh8-fp5p-2xx2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2rq5-qmgj-689w/GHSA-2rq5-qmgj-689w.json b/advisories/unreviewed/2022/05/GHSA-2rq5-qmgj-689w/GHSA-2rq5-qmgj-689w.json index 42850c83240..452209f6b33 100644 --- a/advisories/unreviewed/2022/05/GHSA-2rq5-qmgj-689w/GHSA-2rq5-qmgj-689w.json +++ b/advisories/unreviewed/2022/05/GHSA-2rq5-qmgj-689w/GHSA-2rq5-qmgj-689w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2v3r-qqr5-3x33/GHSA-2v3r-qqr5-3x33.json b/advisories/unreviewed/2022/05/GHSA-2v3r-qqr5-3x33/GHSA-2v3r-qqr5-3x33.json index cab8c8a6348..0684528441e 100644 --- a/advisories/unreviewed/2022/05/GHSA-2v3r-qqr5-3x33/GHSA-2v3r-qqr5-3x33.json +++ b/advisories/unreviewed/2022/05/GHSA-2v3r-qqr5-3x33/GHSA-2v3r-qqr5-3x33.json @@ -7,12 +7,8 @@ "CVE-2020-6794" ], "details": "If a user saved passwords before Thunderbird 60 and then later set a master password, an unencrypted copy of these passwords is still accessible. This is because the older stored password file was not deleted when the data was copied to a new format starting in Thunderbird 60. The new master password is added only on the new file. This could allow the exposure of stored password data outside of user expectations. This vulnerability affects Thunderbird < 68.5.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2vjg-3gv4-46c6/GHSA-2vjg-3gv4-46c6.json b/advisories/unreviewed/2022/05/GHSA-2vjg-3gv4-46c6/GHSA-2vjg-3gv4-46c6.json index 115254e2c62..3ebf4bc14bb 100644 --- a/advisories/unreviewed/2022/05/GHSA-2vjg-3gv4-46c6/GHSA-2vjg-3gv4-46c6.json +++ b/advisories/unreviewed/2022/05/GHSA-2vjg-3gv4-46c6/GHSA-2vjg-3gv4-46c6.json @@ -7,12 +7,8 @@ "CVE-2020-4292" ], "details": "IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, 1.0.2, 1.0.3, and 1.0.4 uses a cross-domain policy file that includes domains that should not be trusted which could disclose sensitive information. IBM X-Force ID: 176335.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2w65-mq8q-34q9/GHSA-2w65-mq8q-34q9.json b/advisories/unreviewed/2022/05/GHSA-2w65-mq8q-34q9/GHSA-2w65-mq8q-34q9.json index 31865145867..4034434176a 100644 --- a/advisories/unreviewed/2022/05/GHSA-2w65-mq8q-34q9/GHSA-2w65-mq8q-34q9.json +++ b/advisories/unreviewed/2022/05/GHSA-2w65-mq8q-34q9/GHSA-2w65-mq8q-34q9.json @@ -7,12 +7,8 @@ "CVE-2020-9458" ], "details": "In the RegistrationMagic plugin through 4.6.0.3 for WordPress, the export function allows remote authenticated users (with minimal privileges) to export submitted form data and settings via class_rm_form_controller.php rm_form_export.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2wfg-x9mx-mrx5/GHSA-2wfg-x9mx-mrx5.json b/advisories/unreviewed/2022/05/GHSA-2wfg-x9mx-mrx5/GHSA-2wfg-x9mx-mrx5.json index 22697a1f411..64f6afc6198 100644 --- a/advisories/unreviewed/2022/05/GHSA-2wfg-x9mx-mrx5/GHSA-2wfg-x9mx-mrx5.json +++ b/advisories/unreviewed/2022/05/GHSA-2wfg-x9mx-mrx5/GHSA-2wfg-x9mx-mrx5.json @@ -7,12 +7,8 @@ "CVE-2020-9476" ], "details": "ARRIS TG1692A devices allow remote attackers to discover the administrator login name and password by reading the /login page and performing base64 decoding.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2whj-38mw-g8jm/GHSA-2whj-38mw-g8jm.json b/advisories/unreviewed/2022/05/GHSA-2whj-38mw-g8jm/GHSA-2whj-38mw-g8jm.json index 6f1b7b5259b..958572ccf77 100644 --- a/advisories/unreviewed/2022/05/GHSA-2whj-38mw-g8jm/GHSA-2whj-38mw-g8jm.json +++ b/advisories/unreviewed/2022/05/GHSA-2whj-38mw-g8jm/GHSA-2whj-38mw-g8jm.json @@ -7,12 +7,8 @@ "CVE-2020-3164" ], "details": "A vulnerability in the web-based management interface of Cisco AsyncOS for Cisco Email Security Appliance (ESA), Cisco Web Security Appliance (WSA), and Cisco Content Security Management Appliance (SMA) could allow an unauthenticated remote attacker to cause high CPU usage on an affected device, resulting in a denial of service (DoS) condition. The vulnerability is due to improper validation of specific HTTP request headers. An attacker could exploit this vulnerability by sending a malformed HTTP request to an affected device. A successful exploit could allow the attacker to trigger a prolonged status of high CPU utilization relative to the GUI process(es). Upon successful exploitation of this vulnerability, an affected device will still be operative, but its response time and overall performance may be degraded.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2wq8-mxfj-4758/GHSA-2wq8-mxfj-4758.json b/advisories/unreviewed/2022/05/GHSA-2wq8-mxfj-4758/GHSA-2wq8-mxfj-4758.json index 27779ac21f9..cea5c046890 100644 --- a/advisories/unreviewed/2022/05/GHSA-2wq8-mxfj-4758/GHSA-2wq8-mxfj-4758.json +++ b/advisories/unreviewed/2022/05/GHSA-2wq8-mxfj-4758/GHSA-2wq8-mxfj-4758.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3265-gcxr-vjvp/GHSA-3265-gcxr-vjvp.json b/advisories/unreviewed/2022/05/GHSA-3265-gcxr-vjvp/GHSA-3265-gcxr-vjvp.json index ef18d020386..85340f66362 100644 --- a/advisories/unreviewed/2022/05/GHSA-3265-gcxr-vjvp/GHSA-3265-gcxr-vjvp.json +++ b/advisories/unreviewed/2022/05/GHSA-3265-gcxr-vjvp/GHSA-3265-gcxr-vjvp.json @@ -7,12 +7,8 @@ "CVE-2019-14032" ], "details": "Memory use after free issue in audio due to lack of resource control in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8017, APQ8053, APQ8096AU, APQ8098, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, MSM8905, MSM8909W, MSM8953, MSM8996AU, Nicobar, QCS405, QCS605, Rennell, SA6155P, Saipan, SC8180X, SDA845, SDM670, SDM710, SDM845, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-33r4-hmp8-j73x/GHSA-33r4-hmp8-j73x.json b/advisories/unreviewed/2022/05/GHSA-33r4-hmp8-j73x/GHSA-33r4-hmp8-j73x.json index 70c6a51395d..c27c7b09618 100644 --- a/advisories/unreviewed/2022/05/GHSA-33r4-hmp8-j73x/GHSA-33r4-hmp8-j73x.json +++ b/advisories/unreviewed/2022/05/GHSA-33r4-hmp8-j73x/GHSA-33r4-hmp8-j73x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-33vg-9h99-96pc/GHSA-33vg-9h99-96pc.json b/advisories/unreviewed/2022/05/GHSA-33vg-9h99-96pc/GHSA-33vg-9h99-96pc.json index 717f753c040..4436cc06892 100644 --- a/advisories/unreviewed/2022/05/GHSA-33vg-9h99-96pc/GHSA-33vg-9h99-96pc.json +++ b/advisories/unreviewed/2022/05/GHSA-33vg-9h99-96pc/GHSA-33vg-9h99-96pc.json @@ -7,12 +7,8 @@ "CVE-2019-8741" ], "details": "A denial of service issue was addressed with improved input validation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-36f4-j6rh-2hw2/GHSA-36f4-j6rh-2hw2.json b/advisories/unreviewed/2022/05/GHSA-36f4-j6rh-2hw2/GHSA-36f4-j6rh-2hw2.json index 02fcb4ec0c1..cdda3d36d6b 100644 --- a/advisories/unreviewed/2022/05/GHSA-36f4-j6rh-2hw2/GHSA-36f4-j6rh-2hw2.json +++ b/advisories/unreviewed/2022/05/GHSA-36f4-j6rh-2hw2/GHSA-36f4-j6rh-2hw2.json @@ -7,12 +7,8 @@ "CVE-2019-13010" ], "details": "An issue was discovered in GitLab Enterprise Edition 8.3 through 12.0.2. The color codes decoder was vulnerable to a resource depletion attack if specific formats were used. It has Incorrect Access Control.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3c3m-ffrh-rq6p/GHSA-3c3m-ffrh-rq6p.json b/advisories/unreviewed/2022/05/GHSA-3c3m-ffrh-rq6p/GHSA-3c3m-ffrh-rq6p.json index 14bbc53c9a1..ce23061639e 100644 --- a/advisories/unreviewed/2022/05/GHSA-3c3m-ffrh-rq6p/GHSA-3c3m-ffrh-rq6p.json +++ b/advisories/unreviewed/2022/05/GHSA-3c3m-ffrh-rq6p/GHSA-3c3m-ffrh-rq6p.json @@ -7,12 +7,8 @@ "CVE-2020-10220" ], "details": "An issue was discovered in rConfig through 3.9.4. The web interface is prone to a SQL injection via the commands.inc.php searchColumn parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3c82-7w3j-5vr9/GHSA-3c82-7w3j-5vr9.json b/advisories/unreviewed/2022/05/GHSA-3c82-7w3j-5vr9/GHSA-3c82-7w3j-5vr9.json index aee58865ccc..69ac4a5f91a 100644 --- a/advisories/unreviewed/2022/05/GHSA-3c82-7w3j-5vr9/GHSA-3c82-7w3j-5vr9.json +++ b/advisories/unreviewed/2022/05/GHSA-3c82-7w3j-5vr9/GHSA-3c82-7w3j-5vr9.json @@ -7,12 +7,8 @@ "CVE-2020-0055" ], "details": "In l2c_link_process_num_completed_pkts of l2c_link.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-141617601", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3cgf-8jcr-8fvv/GHSA-3cgf-8jcr-8fvv.json b/advisories/unreviewed/2022/05/GHSA-3cgf-8jcr-8fvv/GHSA-3cgf-8jcr-8fvv.json index 9e7503b31b9..b8ab3dd2bfb 100644 --- a/advisories/unreviewed/2022/05/GHSA-3cgf-8jcr-8fvv/GHSA-3cgf-8jcr-8fvv.json +++ b/advisories/unreviewed/2022/05/GHSA-3cgf-8jcr-8fvv/GHSA-3cgf-8jcr-8fvv.json @@ -7,12 +7,8 @@ "CVE-2019-10586" ], "details": "Filling media attribute tag names without validating the destination buffer size which can result in the buffer overflow in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8017, APQ8053, APQ8096AU, APQ8098, MDM9150, MDM9205, MDM9206, MDM9607, MDM9615, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, MSM8998, Nicobar, QCM2150, QCS605, QM215, Rennell, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3cxg-2w2v-rw6r/GHSA-3cxg-2w2v-rw6r.json b/advisories/unreviewed/2022/05/GHSA-3cxg-2w2v-rw6r/GHSA-3cxg-2w2v-rw6r.json index 3581fd7378a..283deb303c8 100644 --- a/advisories/unreviewed/2022/05/GHSA-3cxg-2w2v-rw6r/GHSA-3cxg-2w2v-rw6r.json +++ b/advisories/unreviewed/2022/05/GHSA-3cxg-2w2v-rw6r/GHSA-3cxg-2w2v-rw6r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3f62-5j9w-457w/GHSA-3f62-5j9w-457w.json b/advisories/unreviewed/2022/05/GHSA-3f62-5j9w-457w/GHSA-3f62-5j9w-457w.json index aebf4f4c453..6ff10df989c 100644 --- a/advisories/unreviewed/2022/05/GHSA-3f62-5j9w-457w/GHSA-3f62-5j9w-457w.json +++ b/advisories/unreviewed/2022/05/GHSA-3f62-5j9w-457w/GHSA-3f62-5j9w-457w.json @@ -7,12 +7,8 @@ "CVE-2020-3839" ], "details": "A validation issue was addressed with improved input sanitization. This issue is fixed in macOS Catalina 10.15.3. An application may be able to read restricted memory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3fxq-98r3-r3g2/GHSA-3fxq-98r3-r3g2.json b/advisories/unreviewed/2022/05/GHSA-3fxq-98r3-r3g2/GHSA-3fxq-98r3-r3g2.json index 48202d85765..45625e428e0 100644 --- a/advisories/unreviewed/2022/05/GHSA-3fxq-98r3-r3g2/GHSA-3fxq-98r3-r3g2.json +++ b/advisories/unreviewed/2022/05/GHSA-3fxq-98r3-r3g2/GHSA-3fxq-98r3-r3g2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3hq2-84r5-gccw/GHSA-3hq2-84r5-gccw.json b/advisories/unreviewed/2022/05/GHSA-3hq2-84r5-gccw/GHSA-3hq2-84r5-gccw.json index 10b53359e46..74b35c10479 100644 --- a/advisories/unreviewed/2022/05/GHSA-3hq2-84r5-gccw/GHSA-3hq2-84r5-gccw.json +++ b/advisories/unreviewed/2022/05/GHSA-3hq2-84r5-gccw/GHSA-3hq2-84r5-gccw.json @@ -7,12 +7,8 @@ "CVE-2020-3192" ], "details": "A vulnerability in the web-based management interface of Cisco Prime Collaboration Provisioning could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface. The vulnerability is due to insufficient validation of user-supplied input by the web-based management interface. An attacker could exploit this vulnerability by persuading a user of the interface to click a crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the interface or access sensitive, browser-based information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3j3p-9qrf-3242/GHSA-3j3p-9qrf-3242.json b/advisories/unreviewed/2022/05/GHSA-3j3p-9qrf-3242/GHSA-3j3p-9qrf-3242.json index f8246d29ecc..0c8145f80d1 100644 --- a/advisories/unreviewed/2022/05/GHSA-3j3p-9qrf-3242/GHSA-3j3p-9qrf-3242.json +++ b/advisories/unreviewed/2022/05/GHSA-3j3p-9qrf-3242/GHSA-3j3p-9qrf-3242.json @@ -7,12 +7,8 @@ "CVE-2018-19516" ], "details": "messagepartthemes/default/defaultrenderer.cpp in messagelib in KDE Applications before 18.12.0 does not properly restrict the handling of an http-equiv=\"REFRESH\" value.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3pjj-89j6-25qq/GHSA-3pjj-89j6-25qq.json b/advisories/unreviewed/2022/05/GHSA-3pjj-89j6-25qq/GHSA-3pjj-89j6-25qq.json index 556fccb10ad..c4e0a61615d 100644 --- a/advisories/unreviewed/2022/05/GHSA-3pjj-89j6-25qq/GHSA-3pjj-89j6-25qq.json +++ b/advisories/unreviewed/2022/05/GHSA-3pjj-89j6-25qq/GHSA-3pjj-89j6-25qq.json @@ -7,12 +7,8 @@ "CVE-2015-5686" ], "details": "Parts of the Puppet Enterprise Console 3.x were found to be susceptible to clickjacking and CSRF (Cross-Site Request Forgery) attacks. This would allow an attacker to redirect user input to an untrusted site or hijack a user session.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3pqg-mc4c-xrv2/GHSA-3pqg-mc4c-xrv2.json b/advisories/unreviewed/2022/05/GHSA-3pqg-mc4c-xrv2/GHSA-3pqg-mc4c-xrv2.json index ed1d2fd60a3..229b0000034 100644 --- a/advisories/unreviewed/2022/05/GHSA-3pqg-mc4c-xrv2/GHSA-3pqg-mc4c-xrv2.json +++ b/advisories/unreviewed/2022/05/GHSA-3pqg-mc4c-xrv2/GHSA-3pqg-mc4c-xrv2.json @@ -7,12 +7,8 @@ "CVE-2019-19943" ], "details": "The HTTP service in quickweb.exe in Pablo Quick 'n Easy Web Server 3.3.8 allows Remote Unauthenticated Heap Memory Corruption via a large host or domain parameter. It may be possible to achieve remote code execution because of a double free.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3pvg-8h3w-fc9m/GHSA-3pvg-8h3w-fc9m.json b/advisories/unreviewed/2022/05/GHSA-3pvg-8h3w-fc9m/GHSA-3pvg-8h3w-fc9m.json index 26b7ad39642..44bb963d085 100644 --- a/advisories/unreviewed/2022/05/GHSA-3pvg-8h3w-fc9m/GHSA-3pvg-8h3w-fc9m.json +++ b/advisories/unreviewed/2022/05/GHSA-3pvg-8h3w-fc9m/GHSA-3pvg-8h3w-fc9m.json @@ -7,12 +7,8 @@ "CVE-2019-19773" ], "details": "Various Lexmark products have stored XSS in the embedded web server used in older generation Lexmark devices. Affected products are available in http://support.lexmark.com/index?page=content&id=TE935&locale=en&userlocale=EN_US.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3qvh-rmmw-6m99/GHSA-3qvh-rmmw-6m99.json b/advisories/unreviewed/2022/05/GHSA-3qvh-rmmw-6m99/GHSA-3qvh-rmmw-6m99.json index a6756c288cb..aa079fa7e55 100644 --- a/advisories/unreviewed/2022/05/GHSA-3qvh-rmmw-6m99/GHSA-3qvh-rmmw-6m99.json +++ b/advisories/unreviewed/2022/05/GHSA-3qvh-rmmw-6m99/GHSA-3qvh-rmmw-6m99.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3r65-3r65-m2fx/GHSA-3r65-3r65-m2fx.json b/advisories/unreviewed/2022/05/GHSA-3r65-3r65-m2fx/GHSA-3r65-3r65-m2fx.json index 6a2374dc73f..c765c713957 100644 --- a/advisories/unreviewed/2022/05/GHSA-3r65-3r65-m2fx/GHSA-3r65-3r65-m2fx.json +++ b/advisories/unreviewed/2022/05/GHSA-3r65-3r65-m2fx/GHSA-3r65-3r65-m2fx.json @@ -7,12 +7,8 @@ "CVE-2019-9095" ], "details": "An issue was discovered on Moxa MGate MB3170 and MB3270 devices before 4.1, MB3280 and MB3480 devices before 3.1, MB3660 devices before 2.3, and MB3180 devices before 2.1. An attacker may be able to intercept weakly encrypted passwords and gain administrative access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3r67-8cp3-xvp4/GHSA-3r67-8cp3-xvp4.json b/advisories/unreviewed/2022/05/GHSA-3r67-8cp3-xvp4/GHSA-3r67-8cp3-xvp4.json index 3fc8297c207..eae53cbe14b 100644 --- a/advisories/unreviewed/2022/05/GHSA-3r67-8cp3-xvp4/GHSA-3r67-8cp3-xvp4.json +++ b/advisories/unreviewed/2022/05/GHSA-3r67-8cp3-xvp4/GHSA-3r67-8cp3-xvp4.json @@ -7,12 +7,8 @@ "CVE-2019-9102" ], "details": "An issue was discovered on Moxa MGate MB3170 and MB3270 devices before 4.1, MB3280 and MB3480 devices before 3.1, MB3660 devices before 2.3, and MB3180 devices before 2.1. A predictable mechanism of generating tokens allows remote attackers to bypass the cross-site request forgery (CSRF) protection mechanism.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3wh2-grp4-7497/GHSA-3wh2-grp4-7497.json b/advisories/unreviewed/2022/05/GHSA-3wh2-grp4-7497/GHSA-3wh2-grp4-7497.json index 2d7e196069c..8215afb5eae 100644 --- a/advisories/unreviewed/2022/05/GHSA-3wh2-grp4-7497/GHSA-3wh2-grp4-7497.json +++ b/advisories/unreviewed/2022/05/GHSA-3wh2-grp4-7497/GHSA-3wh2-grp4-7497.json @@ -7,12 +7,8 @@ "CVE-2019-14095" ], "details": "Buffer overflow occurs while processing LMP packet in which name length parameter exceeds value specified in BT-specification in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8016, APQ8017, APQ8053, APQ8076, APQ8096, APQ8096AU, APQ8098, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8939, MSM8940, MSM8953, MSM8996, MSM8996AU, MSM8998, Nicobar, QCA6174A, QCA6390, QCA6574AU, QCA9377, QCA9379, QCA9886, QCM2150, QCN7605, QCS404, QCS405, QCS605, QM215, Rennell, SA6155P, Saipan, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3xq3-v83g-gh97/GHSA-3xq3-v83g-gh97.json b/advisories/unreviewed/2022/05/GHSA-3xq3-v83g-gh97/GHSA-3xq3-v83g-gh97.json index 5feb016248a..78ee58727fc 100644 --- a/advisories/unreviewed/2022/05/GHSA-3xq3-v83g-gh97/GHSA-3xq3-v83g-gh97.json +++ b/advisories/unreviewed/2022/05/GHSA-3xq3-v83g-gh97/GHSA-3xq3-v83g-gh97.json @@ -7,12 +7,8 @@ "CVE-2020-9434" ], "details": "openssl_x509_check_ip_asc in lua-openssl 0.7.7-1 mishandles X.509 certificate validation because it uses lua_pushboolean for certain non-boolean return values.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-429h-653h-9h2w/GHSA-429h-653h-9h2w.json b/advisories/unreviewed/2022/05/GHSA-429h-653h-9h2w/GHSA-429h-653h-9h2w.json index 330f6e3fed6..df44f63ba0a 100644 --- a/advisories/unreviewed/2022/05/GHSA-429h-653h-9h2w/GHSA-429h-653h-9h2w.json +++ b/advisories/unreviewed/2022/05/GHSA-429h-653h-9h2w/GHSA-429h-653h-9h2w.json @@ -7,12 +7,8 @@ "CVE-2019-14083" ], "details": "While parsing Service Descriptor Extended Attribute received as part of SDF frame, there is a possibility that incorrect length is specified in the attribute length field of extended SSI which can lead to integer underflow in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8053, APQ8096, APQ8098, IPQ6018, IPQ8074, MSM8996AU, MSM8998, Nicobar, QCA6174A, QCA6390, QCA6574AU, QCA8081, QCA9377, QCA9379, QCN7605, QCS404, QCS405, QCS605, Rennell, SC8180X, SDA660, SDA845, SDM630, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SM6150, SM7150, SM8150, SXR1130, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-43cv-3rg5-mpgp/GHSA-43cv-3rg5-mpgp.json b/advisories/unreviewed/2022/05/GHSA-43cv-3rg5-mpgp/GHSA-43cv-3rg5-mpgp.json index e7d5d5d9df6..0fd5cbb2516 100644 --- a/advisories/unreviewed/2022/05/GHSA-43cv-3rg5-mpgp/GHSA-43cv-3rg5-mpgp.json +++ b/advisories/unreviewed/2022/05/GHSA-43cv-3rg5-mpgp/GHSA-43cv-3rg5-mpgp.json @@ -7,12 +7,8 @@ "CVE-2020-0084" ], "details": "In several functions of NotificationManagerService.java, there are missing permission checks. This could lead to local escalation of privilege by creating fake system notifications with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-143339775", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-44pg-r8gr-j75x/GHSA-44pg-r8gr-j75x.json b/advisories/unreviewed/2022/05/GHSA-44pg-r8gr-j75x/GHSA-44pg-r8gr-j75x.json index 6dae106e5a4..52628b6bc64 100644 --- a/advisories/unreviewed/2022/05/GHSA-44pg-r8gr-j75x/GHSA-44pg-r8gr-j75x.json +++ b/advisories/unreviewed/2022/05/GHSA-44pg-r8gr-j75x/GHSA-44pg-r8gr-j75x.json @@ -7,12 +7,8 @@ "CVE-2020-3174" ], "details": "A vulnerability in the anycast gateway feature of Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to cause a device to learn invalid Address Resolution Protocol (ARP) entries. The ARP entries are for nonlocal IP addresses for the subnet. The vulnerability is due to improper validation of a received gratuitous ARP (GARP) request. An attacker could exploit this vulnerability by sending a malicious GARP packet on the local subnet to cause the ARP table on the device to become corrupted. A successful exploit could allow the attacker to populate the ARP table with incorrect entries, which could lead to traffic disruptions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-45cf-5rxq-xpqr/GHSA-45cf-5rxq-xpqr.json b/advisories/unreviewed/2022/05/GHSA-45cf-5rxq-xpqr/GHSA-45cf-5rxq-xpqr.json index af32d5652cd..f76c53f64d3 100644 --- a/advisories/unreviewed/2022/05/GHSA-45cf-5rxq-xpqr/GHSA-45cf-5rxq-xpqr.json +++ b/advisories/unreviewed/2022/05/GHSA-45cf-5rxq-xpqr/GHSA-45cf-5rxq-xpqr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-46rp-6wrc-96x2/GHSA-46rp-6wrc-96x2.json b/advisories/unreviewed/2022/05/GHSA-46rp-6wrc-96x2/GHSA-46rp-6wrc-96x2.json index f8b1088c210..7bb69910f0f 100644 --- a/advisories/unreviewed/2022/05/GHSA-46rp-6wrc-96x2/GHSA-46rp-6wrc-96x2.json +++ b/advisories/unreviewed/2022/05/GHSA-46rp-6wrc-96x2/GHSA-46rp-6wrc-96x2.json @@ -7,12 +7,8 @@ "CVE-2020-10105" ], "details": "An issue was discovered in Zammad 3.0 through 3.2. It returns source code of static resources when submitting an OPTIONS request, rather than a GET request. Disclosure of source code allows for an attacker to formulate more precise attacks. Source code was disclosed for the file 404.html (/zammad/public/404.html)", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4fq8-3w3j-58jx/GHSA-4fq8-3w3j-58jx.json b/advisories/unreviewed/2022/05/GHSA-4fq8-3w3j-58jx/GHSA-4fq8-3w3j-58jx.json index 358838ee40d..a14a1b5eeb9 100644 --- a/advisories/unreviewed/2022/05/GHSA-4fq8-3w3j-58jx/GHSA-4fq8-3w3j-58jx.json +++ b/advisories/unreviewed/2022/05/GHSA-4fq8-3w3j-58jx/GHSA-4fq8-3w3j-58jx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4fq8-68gc-cjqm/GHSA-4fq8-68gc-cjqm.json b/advisories/unreviewed/2022/05/GHSA-4fq8-68gc-cjqm/GHSA-4fq8-68gc-cjqm.json index 12443a964c7..2bd127adf43 100644 --- a/advisories/unreviewed/2022/05/GHSA-4fq8-68gc-cjqm/GHSA-4fq8-68gc-cjqm.json +++ b/advisories/unreviewed/2022/05/GHSA-4fq8-68gc-cjqm/GHSA-4fq8-68gc-cjqm.json @@ -7,12 +7,8 @@ "CVE-2019-9859" ], "details": "Vesta Control Panel (VestaCP) 0.9.7 through 0.9.8-23 is vulnerable to an authenticated command execution that can result in remote root access on the server. The platform works with PHP as the frontend language and uses shell scripts to execute system actions. PHP executes shell script through the dangerous command exec. This function can be dangerous if arguments passed to it are not filtered. Every user input in VestaCP that is used as an argument is filtered with the escapeshellarg function. This function comes from the PHP library directly and its description is as follows: "escapeshellarg() adds single quotes around a string and quotes/escapes any existing single quotes allowing you to pass a string directly to a shell function and having it be treated as a single safe argument." It means that if you give Username, it will have 'Username' as a replacement. This works well and protects users from exploiting this potentially dangerous exec function. Unfortunately, VestaCP uses this escapeshellarg function incorrectly in several places.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4hwc-x4x9-6gfq/GHSA-4hwc-x4x9-6gfq.json b/advisories/unreviewed/2022/05/GHSA-4hwc-x4x9-6gfq/GHSA-4hwc-x4x9-6gfq.json index 390da5b0a32..b72dae326bd 100644 --- a/advisories/unreviewed/2022/05/GHSA-4hwc-x4x9-6gfq/GHSA-4hwc-x4x9-6gfq.json +++ b/advisories/unreviewed/2022/05/GHSA-4hwc-x4x9-6gfq/GHSA-4hwc-x4x9-6gfq.json @@ -7,12 +7,8 @@ "CVE-2020-6863" ], "details": "ZTE E8820V3 router product is impacted by a permission and access control vulnerability. Attackers could use this vulnerability to tamper with DDNS parameters and send DoS attacks on the specified URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4m8j-77pp-fvjx/GHSA-4m8j-77pp-fvjx.json b/advisories/unreviewed/2022/05/GHSA-4m8j-77pp-fvjx/GHSA-4m8j-77pp-fvjx.json index 7f545c37bf0..7e64ccb2f16 100644 --- a/advisories/unreviewed/2022/05/GHSA-4m8j-77pp-fvjx/GHSA-4m8j-77pp-fvjx.json +++ b/advisories/unreviewed/2022/05/GHSA-4m8j-77pp-fvjx/GHSA-4m8j-77pp-fvjx.json @@ -7,12 +7,8 @@ "CVE-2020-3176" ], "details": "A vulnerability in Cisco Remote PHY Device Software could allow an authenticated, local attacker to execute commands on the underlying Linux shell of an affected device with root privileges. The vulnerability exists because the affected software does not properly sanitize user-supplied input. An attacker who has valid administrator access to an affected device could exploit this vulnerability by supplying certain CLI commands with crafted arguments. A successful exploit could allow the attacker to run arbitrary commands as the root user, which could result in a complete system compromise.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4mrg-rj5w-4j8j/GHSA-4mrg-rj5w-4j8j.json b/advisories/unreviewed/2022/05/GHSA-4mrg-rj5w-4j8j/GHSA-4mrg-rj5w-4j8j.json index dfed0c2f2e6..f116cfe37fe 100644 --- a/advisories/unreviewed/2022/05/GHSA-4mrg-rj5w-4j8j/GHSA-4mrg-rj5w-4j8j.json +++ b/advisories/unreviewed/2022/05/GHSA-4mrg-rj5w-4j8j/GHSA-4mrg-rj5w-4j8j.json @@ -7,12 +7,8 @@ "CVE-2020-9433" ], "details": "openssl_x509_check_email in lua-openssl 0.7.7-1 mishandles X.509 certificate validation because it uses lua_pushboolean for certain non-boolean return values.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4pgq-jrr4-gr53/GHSA-4pgq-jrr4-gr53.json b/advisories/unreviewed/2022/05/GHSA-4pgq-jrr4-gr53/GHSA-4pgq-jrr4-gr53.json index c2ed238ecac..d76270e678c 100644 --- a/advisories/unreviewed/2022/05/GHSA-4pgq-jrr4-gr53/GHSA-4pgq-jrr4-gr53.json +++ b/advisories/unreviewed/2022/05/GHSA-4pgq-jrr4-gr53/GHSA-4pgq-jrr4-gr53.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4qh2-wppx-cq27/GHSA-4qh2-wppx-cq27.json b/advisories/unreviewed/2022/05/GHSA-4qh2-wppx-cq27/GHSA-4qh2-wppx-cq27.json index acb99da3786..938fa4f83d8 100644 --- a/advisories/unreviewed/2022/05/GHSA-4qh2-wppx-cq27/GHSA-4qh2-wppx-cq27.json +++ b/advisories/unreviewed/2022/05/GHSA-4qh2-wppx-cq27/GHSA-4qh2-wppx-cq27.json @@ -7,12 +7,8 @@ "CVE-2020-9465" ], "details": "An issue was discovered in EyesOfNetwork eonweb 5.1 through 5.3 before 5.3-3. The eonweb web interface is prone to a SQL injection, allowing an unauthenticated attacker to perform various tasks such as authentication bypass via the user_id field in a cookie.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4rfx-gjvx-jp3h/GHSA-4rfx-gjvx-jp3h.json b/advisories/unreviewed/2022/05/GHSA-4rfx-gjvx-jp3h/GHSA-4rfx-gjvx-jp3h.json index 0f3958940aa..90c5729e73b 100644 --- a/advisories/unreviewed/2022/05/GHSA-4rfx-gjvx-jp3h/GHSA-4rfx-gjvx-jp3h.json +++ b/advisories/unreviewed/2022/05/GHSA-4rfx-gjvx-jp3h/GHSA-4rfx-gjvx-jp3h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4v4f-2vvr-7hf5/GHSA-4v4f-2vvr-7hf5.json b/advisories/unreviewed/2022/05/GHSA-4v4f-2vvr-7hf5/GHSA-4v4f-2vvr-7hf5.json index cc57fe77edc..ffe1b62258e 100644 --- a/advisories/unreviewed/2022/05/GHSA-4v4f-2vvr-7hf5/GHSA-4v4f-2vvr-7hf5.json +++ b/advisories/unreviewed/2022/05/GHSA-4v4f-2vvr-7hf5/GHSA-4v4f-2vvr-7hf5.json @@ -7,12 +7,8 @@ "CVE-2020-10184" ], "details": "The verify endpoint in YubiKey Validation Server before 2.40 does not check the length of SQL queries, which allows remote attackers to cause a denial of service, aka SQL injection. NOTE: this issue is potentially relevant to persons outside Yubico who operate a self-hosted OTP validation service; the issue does NOT affect YubiCloud.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4v82-25rx-c86g/GHSA-4v82-25rx-c86g.json b/advisories/unreviewed/2022/05/GHSA-4v82-25rx-c86g/GHSA-4v82-25rx-c86g.json index 451683e5b6b..201ad1450cb 100644 --- a/advisories/unreviewed/2022/05/GHSA-4v82-25rx-c86g/GHSA-4v82-25rx-c86g.json +++ b/advisories/unreviewed/2022/05/GHSA-4v82-25rx-c86g/GHSA-4v82-25rx-c86g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4vhp-vr67-vg4f/GHSA-4vhp-vr67-vg4f.json b/advisories/unreviewed/2022/05/GHSA-4vhp-vr67-vg4f/GHSA-4vhp-vr67-vg4f.json index 5d7b92f8a9d..1b285bcc889 100644 --- a/advisories/unreviewed/2022/05/GHSA-4vhp-vr67-vg4f/GHSA-4vhp-vr67-vg4f.json +++ b/advisories/unreviewed/2022/05/GHSA-4vhp-vr67-vg4f/GHSA-4vhp-vr67-vg4f.json @@ -7,12 +7,8 @@ "CVE-2020-5539" ], "details": "GRANDIT Ver.1.6, Ver.2.0, Ver.2.1, Ver.2.2, Ver.2.3, and Ver.3.0 do not properly manage sessions, which allows remote attackers to impersonate an arbitrary user and then alter or disclose the information via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4whc-9477-gmg3/GHSA-4whc-9477-gmg3.json b/advisories/unreviewed/2022/05/GHSA-4whc-9477-gmg3/GHSA-4whc-9477-gmg3.json index 7ca6fc0d095..8f88e36d55e 100644 --- a/advisories/unreviewed/2022/05/GHSA-4whc-9477-gmg3/GHSA-4whc-9477-gmg3.json +++ b/advisories/unreviewed/2022/05/GHSA-4whc-9477-gmg3/GHSA-4whc-9477-gmg3.json @@ -7,12 +7,8 @@ "CVE-2020-3185" ], "details": "A vulnerability in the web-based management interface of Cisco TelePresence Management Suite (TMS) could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface. The vulnerability is due to insufficient input validation by the web-based management interface. An attacker could exploit this vulnerability by inserting malicious data in a specific data field in the interface. A successful exploit could allow the attacker to execute arbitrary script code in the context of the affected web-based management interface or access sensitive, browser-based information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4whv-ch98-q6fp/GHSA-4whv-ch98-q6fp.json b/advisories/unreviewed/2022/05/GHSA-4whv-ch98-q6fp/GHSA-4whv-ch98-q6fp.json index cccf7c2e6f5..d2b3abebcdc 100644 --- a/advisories/unreviewed/2022/05/GHSA-4whv-ch98-q6fp/GHSA-4whv-ch98-q6fp.json +++ b/advisories/unreviewed/2022/05/GHSA-4whv-ch98-q6fp/GHSA-4whv-ch98-q6fp.json @@ -7,12 +7,8 @@ "CVE-2020-6795" ], "details": "When processing a message that contains multiple S/MIME signatures, a bug in the MIME processing code caused a null pointer dereference, leading to an unexploitable crash. This vulnerability affects Thunderbird < 68.5.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-527g-rgh6-mp67/GHSA-527g-rgh6-mp67.json b/advisories/unreviewed/2022/05/GHSA-527g-rgh6-mp67/GHSA-527g-rgh6-mp67.json index 5aa821fd06c..f70bec7ef8f 100644 --- a/advisories/unreviewed/2022/05/GHSA-527g-rgh6-mp67/GHSA-527g-rgh6-mp67.json +++ b/advisories/unreviewed/2022/05/GHSA-527g-rgh6-mp67/GHSA-527g-rgh6-mp67.json @@ -7,12 +7,8 @@ "CVE-2019-14071" ], "details": "Compromised reset handler may bypass access control due to AC config is being reset if debug path is enabled to collect secure or non-secure ram dumps in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8017, APQ8053, APQ8096, APQ8096AU, IPQ6018, MDM9205, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996, MSM8996AU, MSM8998, Nicobar, QCM2150, QCS404, QCS405, QCS605, QM215, Rennell, SA6155P, SC8180X, SDA660, SDA845, SDM429, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX24, SDX55, SM6150, SM7150, SM8150, SXR1130, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-52fp-4722-wcjw/GHSA-52fp-4722-wcjw.json b/advisories/unreviewed/2022/05/GHSA-52fp-4722-wcjw/GHSA-52fp-4722-wcjw.json index 052f8aaf3f9..78cbfc1d8a3 100644 --- a/advisories/unreviewed/2022/05/GHSA-52fp-4722-wcjw/GHSA-52fp-4722-wcjw.json +++ b/advisories/unreviewed/2022/05/GHSA-52fp-4722-wcjw/GHSA-52fp-4722-wcjw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-544h-6wr4-cv4m/GHSA-544h-6wr4-cv4m.json b/advisories/unreviewed/2022/05/GHSA-544h-6wr4-cv4m/GHSA-544h-6wr4-cv4m.json index 6601ed5161c..f0f1995f5e5 100644 --- a/advisories/unreviewed/2022/05/GHSA-544h-6wr4-cv4m/GHSA-544h-6wr4-cv4m.json +++ b/advisories/unreviewed/2022/05/GHSA-544h-6wr4-cv4m/GHSA-544h-6wr4-cv4m.json @@ -7,12 +7,8 @@ "CVE-2019-10546" ], "details": "Buffer overflow can occur in WLAN firmware while parsing beacon/probe_response frames during roaming in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking in APQ8096, APQ8096AU, IPQ6018, IPQ8074, MDM9607, MDM9640, MDM9650, MSM8996AU, Nicobar, QCA6174A, QCA6574, QCA6574AU, QCA6584, QCA6584AU, QCA8081, QCA9377, QCA9379, QCS404, QCS605, Rennell, SA6155P, SC8180X, SDA660, SDA845, SDM630, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5473-pqp3-92vj/GHSA-5473-pqp3-92vj.json b/advisories/unreviewed/2022/05/GHSA-5473-pqp3-92vj/GHSA-5473-pqp3-92vj.json index 435e4455e0c..7f2a2294c41 100644 --- a/advisories/unreviewed/2022/05/GHSA-5473-pqp3-92vj/GHSA-5473-pqp3-92vj.json +++ b/advisories/unreviewed/2022/05/GHSA-5473-pqp3-92vj/GHSA-5473-pqp3-92vj.json @@ -7,12 +7,8 @@ "CVE-2020-3157" ], "details": "A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based interface. The vulnerability is due to insufficient validation of user-supplied input to the web-based management interface. An attacker could exploit this vulnerability by crafting a malicious configuration and saving it to the targeted system. An exploit could allow the attacker to execute arbitrary script code in the context of the affected interface or access sensitive, browser-based information when an administrator views the configuration. An attacker would need write permissions to exploit this vulnerability successfully.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-557w-9268-3wvw/GHSA-557w-9268-3wvw.json b/advisories/unreviewed/2022/05/GHSA-557w-9268-3wvw/GHSA-557w-9268-3wvw.json index 6dc1819064d..94d00331543 100644 --- a/advisories/unreviewed/2022/05/GHSA-557w-9268-3wvw/GHSA-557w-9268-3wvw.json +++ b/advisories/unreviewed/2022/05/GHSA-557w-9268-3wvw/GHSA-557w-9268-3wvw.json @@ -7,12 +7,8 @@ "CVE-2020-0049" ], "details": "In onReadBuffer() of StreamingSource.cpp, there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-140177694", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-56q9-jqvf-whqc/GHSA-56q9-jqvf-whqc.json b/advisories/unreviewed/2022/05/GHSA-56q9-jqvf-whqc/GHSA-56q9-jqvf-whqc.json index 7c534b0cc70..b5b380282f3 100644 --- a/advisories/unreviewed/2022/05/GHSA-56q9-jqvf-whqc/GHSA-56q9-jqvf-whqc.json +++ b/advisories/unreviewed/2022/05/GHSA-56q9-jqvf-whqc/GHSA-56q9-jqvf-whqc.json @@ -7,12 +7,8 @@ "CVE-2019-13011" ], "details": "An issue was discovered in GitLab Enterprise Edition 8.11.0 through 12.0.2. By using brute-force a user with access to a project, but not it's repository could create a list of merge requests template names. It has excessive algorithmic complexity.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-59f5-p3f5-g79r/GHSA-59f5-p3f5-g79r.json b/advisories/unreviewed/2022/05/GHSA-59f5-p3f5-g79r/GHSA-59f5-p3f5-g79r.json index 73f66115a97..03331f7ffdb 100644 --- a/advisories/unreviewed/2022/05/GHSA-59f5-p3f5-g79r/GHSA-59f5-p3f5-g79r.json +++ b/advisories/unreviewed/2022/05/GHSA-59f5-p3f5-g79r/GHSA-59f5-p3f5-g79r.json @@ -7,12 +7,8 @@ "CVE-2020-9756" ], "details": "Patriot Viper RGB Driver 1.1 and prior exposes IOCTL and allows insufficient access control. The IOCTL Codes 0x80102050 and 0x80102054 allows a local user with low privileges to read/write 1/2/4 bytes from or to an IO port. This could be leveraged in a number of ways to ultimately run code with elevated privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-59q5-crp9-8r37/GHSA-59q5-crp9-8r37.json b/advisories/unreviewed/2022/05/GHSA-59q5-crp9-8r37/GHSA-59q5-crp9-8r37.json index 12d1a498d19..580e07f1ef4 100644 --- a/advisories/unreviewed/2022/05/GHSA-59q5-crp9-8r37/GHSA-59q5-crp9-8r37.json +++ b/advisories/unreviewed/2022/05/GHSA-59q5-crp9-8r37/GHSA-59q5-crp9-8r37.json @@ -7,12 +7,8 @@ "CVE-2020-10103" ], "details": "An XSS issue was discovered in Zammad 3.0 through 3.2. Malicious code can be provided by a low-privileged user through the File Upload functionality in Zammad. The malicious JavaScript will execute within the browser of any user who opens a specially crafted link to the uploaded file with an active Zammad session.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5fjw-rfff-jp7h/GHSA-5fjw-rfff-jp7h.json b/advisories/unreviewed/2022/05/GHSA-5fjw-rfff-jp7h/GHSA-5fjw-rfff-jp7h.json index 29a8030faed..ec5595b8d25 100644 --- a/advisories/unreviewed/2022/05/GHSA-5fjw-rfff-jp7h/GHSA-5fjw-rfff-jp7h.json +++ b/advisories/unreviewed/2022/05/GHSA-5fjw-rfff-jp7h/GHSA-5fjw-rfff-jp7h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5fqc-97j2-wr46/GHSA-5fqc-97j2-wr46.json b/advisories/unreviewed/2022/05/GHSA-5fqc-97j2-wr46/GHSA-5fqc-97j2-wr46.json index b21ad512165..5f311f29f1f 100644 --- a/advisories/unreviewed/2022/05/GHSA-5fqc-97j2-wr46/GHSA-5fqc-97j2-wr46.json +++ b/advisories/unreviewed/2022/05/GHSA-5fqc-97j2-wr46/GHSA-5fqc-97j2-wr46.json @@ -7,12 +7,8 @@ "CVE-2020-10376" ], "details": "Technicolor TC7337NET 08.89.17.23.03 devices allow remote attackers to discover passwords by sniffing the network for an \"Authorization: Basic\" HTTP header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5fqw-8f7q-58m9/GHSA-5fqw-8f7q-58m9.json b/advisories/unreviewed/2022/05/GHSA-5fqw-8f7q-58m9/GHSA-5fqw-8f7q-58m9.json index 5586ddc8bbb..993bf96ad6a 100644 --- a/advisories/unreviewed/2022/05/GHSA-5fqw-8f7q-58m9/GHSA-5fqw-8f7q-58m9.json +++ b/advisories/unreviewed/2022/05/GHSA-5fqw-8f7q-58m9/GHSA-5fqw-8f7q-58m9.json @@ -7,12 +7,8 @@ "CVE-2020-5402" ], "details": "In Cloud Foundry UAA, versions prior to 74.14.0, a CSRF vulnerability exists due to the OAuth2 state parameter not being checked in the callback function when authenticating with external identity providers.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5g96-3868-4x48/GHSA-5g96-3868-4x48.json b/advisories/unreviewed/2022/05/GHSA-5g96-3868-4x48/GHSA-5g96-3868-4x48.json index 4f6ddd1cd51..56e6fdd54b1 100644 --- a/advisories/unreviewed/2022/05/GHSA-5g96-3868-4x48/GHSA-5g96-3868-4x48.json +++ b/advisories/unreviewed/2022/05/GHSA-5g96-3868-4x48/GHSA-5g96-3868-4x48.json @@ -7,12 +7,8 @@ "CVE-2019-5134" ], "details": "An exploitable regular expression without anchors vulnerability exists in the Web-Based Management (WBM) authentication functionality of WAGO PFC200 versions 03.00.39(12) and 03.01.07(13), and WAGO PFC100 version 03.00.39(12). A specially crafted authentication request can bypass regular expression filters, resulting in sensitive information disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5h38-q5jv-xvq2/GHSA-5h38-q5jv-xvq2.json b/advisories/unreviewed/2022/05/GHSA-5h38-q5jv-xvq2/GHSA-5h38-q5jv-xvq2.json index abf37e897bc..ec98fc4df4d 100644 --- a/advisories/unreviewed/2022/05/GHSA-5h38-q5jv-xvq2/GHSA-5h38-q5jv-xvq2.json +++ b/advisories/unreviewed/2022/05/GHSA-5h38-q5jv-xvq2/GHSA-5h38-q5jv-xvq2.json @@ -7,12 +7,8 @@ "CVE-2020-0061" ], "details": "In Pixel Recorder, there is a possible permissions bypass allowing arbitrary apps to record audio. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-145504977", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5h6m-gmr5-q25w/GHSA-5h6m-gmr5-q25w.json b/advisories/unreviewed/2022/05/GHSA-5h6m-gmr5-q25w/GHSA-5h6m-gmr5-q25w.json index a91af75a632..d7a727e6af4 100644 --- a/advisories/unreviewed/2022/05/GHSA-5h6m-gmr5-q25w/GHSA-5h6m-gmr5-q25w.json +++ b/advisories/unreviewed/2022/05/GHSA-5h6m-gmr5-q25w/GHSA-5h6m-gmr5-q25w.json @@ -7,12 +7,8 @@ "CVE-2020-3834" ], "details": "A memory corruption issue was addressed with improved state management. This issue is fixed in watchOS 6.1.2. An application may be able to execute arbitrary code with kernel privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5mpv-gx4c-6m44/GHSA-5mpv-gx4c-6m44.json b/advisories/unreviewed/2022/05/GHSA-5mpv-gx4c-6m44/GHSA-5mpv-gx4c-6m44.json index f5df4a56330..628cee0f9c8 100644 --- a/advisories/unreviewed/2022/05/GHSA-5mpv-gx4c-6m44/GHSA-5mpv-gx4c-6m44.json +++ b/advisories/unreviewed/2022/05/GHSA-5mpv-gx4c-6m44/GHSA-5mpv-gx4c-6m44.json @@ -7,12 +7,8 @@ "CVE-2015-7338" ], "details": "SQL Injection exists in AcyMailing Joomla Component before 4.9.5 via exportgeolocorder in a geolocation_longitude request to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5mxj-8vqf-cpf9/GHSA-5mxj-8vqf-cpf9.json b/advisories/unreviewed/2022/05/GHSA-5mxj-8vqf-cpf9/GHSA-5mxj-8vqf-cpf9.json index c9d5efdb596..aa8ecf9e7eb 100644 --- a/advisories/unreviewed/2022/05/GHSA-5mxj-8vqf-cpf9/GHSA-5mxj-8vqf-cpf9.json +++ b/advisories/unreviewed/2022/05/GHSA-5mxj-8vqf-cpf9/GHSA-5mxj-8vqf-cpf9.json @@ -7,12 +7,8 @@ "CVE-2019-13005" ], "details": "An issue was discovered in GitLab Enterprise Edition and Community Edition 1.10 through 12.0.2. The GitLab graphql service was vulnerable to multiple authorization issues that disclosed restricted user, group, and repository metadata to unauthorized users. It has Incorrect Access Control.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5p3m-cq5g-w2cc/GHSA-5p3m-cq5g-w2cc.json b/advisories/unreviewed/2022/05/GHSA-5p3m-cq5g-w2cc/GHSA-5p3m-cq5g-w2cc.json index ea0b05462b2..5fe50fc3e0e 100644 --- a/advisories/unreviewed/2022/05/GHSA-5p3m-cq5g-w2cc/GHSA-5p3m-cq5g-w2cc.json +++ b/advisories/unreviewed/2022/05/GHSA-5p3m-cq5g-w2cc/GHSA-5p3m-cq5g-w2cc.json @@ -7,12 +7,8 @@ "CVE-2019-14098" ], "details": "Possible buffer overflow in data offload handler due to lack of check of keydata length when copying data in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8017, APQ8053, APQ8064, APQ8096, APQ8096AU, IPQ6018, IPQ8074, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, MSM8996AU, Nicobar, QCA4531, QCA6174A, QCA6564, QCA6574, QCA6574AU, QCA6584, QCA6584AU, QCA9377, QCA9379, QCA9886, QCS405, QCS605, Rennell, SA6155P, SC8180X, SDA660, SDM630, SDM636, SDM660, SDM670, SDM710, SDM845, SDX20, SDX24, SM6150, SM7150, SM8150, SXR1130, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5prq-gjqm-96r8/GHSA-5prq-gjqm-96r8.json b/advisories/unreviewed/2022/05/GHSA-5prq-gjqm-96r8/GHSA-5prq-gjqm-96r8.json index 02496b3492a..05a8fbb5fa1 100644 --- a/advisories/unreviewed/2022/05/GHSA-5prq-gjqm-96r8/GHSA-5prq-gjqm-96r8.json +++ b/advisories/unreviewed/2022/05/GHSA-5prq-gjqm-96r8/GHSA-5prq-gjqm-96r8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5qgx-q55q-4jm7/GHSA-5qgx-q55q-4jm7.json b/advisories/unreviewed/2022/05/GHSA-5qgx-q55q-4jm7/GHSA-5qgx-q55q-4jm7.json index caa2ae5944e..222f269aa45 100644 --- a/advisories/unreviewed/2022/05/GHSA-5qgx-q55q-4jm7/GHSA-5qgx-q55q-4jm7.json +++ b/advisories/unreviewed/2022/05/GHSA-5qgx-q55q-4jm7/GHSA-5qgx-q55q-4jm7.json @@ -7,12 +7,8 @@ "CVE-2020-9544" ], "details": "An issue was discovered on D-Link DSL-2640B E1 EU_1.01 devices. The administrative interface doesn't perform authentication checks for a firmware-update POST request. Any attacker that can access the administrative interface can install firmware of their choice.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5r7m-hrh6-rw2h/GHSA-5r7m-hrh6-rw2h.json b/advisories/unreviewed/2022/05/GHSA-5r7m-hrh6-rw2h/GHSA-5r7m-hrh6-rw2h.json index c648831be8f..ca6798b1c3a 100644 --- a/advisories/unreviewed/2022/05/GHSA-5r7m-hrh6-rw2h/GHSA-5r7m-hrh6-rw2h.json +++ b/advisories/unreviewed/2022/05/GHSA-5r7m-hrh6-rw2h/GHSA-5r7m-hrh6-rw2h.json @@ -7,12 +7,8 @@ "CVE-2019-17646" ], "details": "An issue was discovered in Centreon before 18.10.8, 19.04.5, and 19.10.2. It provides sensitive information via an unauthenticated direct request for api/external.php?object=centreon_metric&action=listByService.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5rwc-h8m7-5hcc/GHSA-5rwc-h8m7-5hcc.json b/advisories/unreviewed/2022/05/GHSA-5rwc-h8m7-5hcc/GHSA-5rwc-h8m7-5hcc.json index b2368497e4b..9c7dbb9810f 100644 --- a/advisories/unreviewed/2022/05/GHSA-5rwc-h8m7-5hcc/GHSA-5rwc-h8m7-5hcc.json +++ b/advisories/unreviewed/2022/05/GHSA-5rwc-h8m7-5hcc/GHSA-5rwc-h8m7-5hcc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5wg4-rfc2-hgh3/GHSA-5wg4-rfc2-hgh3.json b/advisories/unreviewed/2022/05/GHSA-5wg4-rfc2-hgh3/GHSA-5wg4-rfc2-hgh3.json index 421c712c171..ff92b76357d 100644 --- a/advisories/unreviewed/2022/05/GHSA-5wg4-rfc2-hgh3/GHSA-5wg4-rfc2-hgh3.json +++ b/advisories/unreviewed/2022/05/GHSA-5wg4-rfc2-hgh3/GHSA-5wg4-rfc2-hgh3.json @@ -7,12 +7,8 @@ "CVE-2020-4082" ], "details": "The HCL Connections 5.5 help system is vulnerable to cross-site scripting, caused by improper validation of user-supplied input. A remote attacker could exploit this vulnerability using a specially-crafted URL to execute script in a victim's Web browser within the security context of the hosting Web site, once the URL is clicked. An attacker could use this vulnerability to steal the victim's cookie-based authentication credentials.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5x8m-hfm4-97cp/GHSA-5x8m-hfm4-97cp.json b/advisories/unreviewed/2022/05/GHSA-5x8m-hfm4-97cp/GHSA-5x8m-hfm4-97cp.json index e2eacda2ec7..bdf4112b4c4 100644 --- a/advisories/unreviewed/2022/05/GHSA-5x8m-hfm4-97cp/GHSA-5x8m-hfm4-97cp.json +++ b/advisories/unreviewed/2022/05/GHSA-5x8m-hfm4-97cp/GHSA-5x8m-hfm4-97cp.json @@ -7,12 +7,8 @@ "CVE-2019-14097" ], "details": "Possible buffer overflow in WLAN Parser due to lack of length check when copying data in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8096, APQ8096AU, APQ8098, IPQ6018, IPQ8074, MDM9607, MDM9640, MDM9650, MSM8996AU, MSM8998, Nicobar, QCA6174A, QCA6574, QCA6574AU, QCA6584, QCA6584AU, QCA8081, QCA9377, QCA9379, QCN7605, QCS405, QCS605, Rennell, SA6155P, SC8180X, SDA660, SDA845, SDM630, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5xvc-mqqw-gm7p/GHSA-5xvc-mqqw-gm7p.json b/advisories/unreviewed/2022/05/GHSA-5xvc-mqqw-gm7p/GHSA-5xvc-mqqw-gm7p.json index 71652bbcad1..ad484b12dd0 100644 --- a/advisories/unreviewed/2022/05/GHSA-5xvc-mqqw-gm7p/GHSA-5xvc-mqqw-gm7p.json +++ b/advisories/unreviewed/2022/05/GHSA-5xvc-mqqw-gm7p/GHSA-5xvc-mqqw-gm7p.json @@ -7,12 +7,8 @@ "CVE-2019-13009" ], "details": "An issue was discovered in GitLab Community and Enterprise Edition 9.2 through 12.0.2. Uploaded files associated with unsaved personal snippets were accessible to unauthorized users due to improper permission settings. It allows Uncontrolled Resource Consumption.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-639q-4j2p-pfqv/GHSA-639q-4j2p-pfqv.json b/advisories/unreviewed/2022/05/GHSA-639q-4j2p-pfqv/GHSA-639q-4j2p-pfqv.json index e9b6d0e96e1..9c2963dd5c6 100644 --- a/advisories/unreviewed/2022/05/GHSA-639q-4j2p-pfqv/GHSA-639q-4j2p-pfqv.json +++ b/advisories/unreviewed/2022/05/GHSA-639q-4j2p-pfqv/GHSA-639q-4j2p-pfqv.json @@ -7,12 +7,8 @@ "CVE-2015-3006" ], "details": "On the QFX3500 and QFX3600 platforms, the number of bytes collected from the RANDOM_INTERRUPT entropy source when the device boots up is insufficient, possibly leading to weak or duplicate SSH keys or self-signed SSL/TLS certificates. Entropy increases after the system has been up and running for some time, but immediately after boot, the entropy is very low. This issue only affects the QFX3500 and QFX3600 switches. No other Juniper Networks products or platforms are affected by this weak entropy vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-652w-8hjc-rf6j/GHSA-652w-8hjc-rf6j.json b/advisories/unreviewed/2022/05/GHSA-652w-8hjc-rf6j/GHSA-652w-8hjc-rf6j.json index ba33ce94aef..a23f76bbc77 100644 --- a/advisories/unreviewed/2022/05/GHSA-652w-8hjc-rf6j/GHSA-652w-8hjc-rf6j.json +++ b/advisories/unreviewed/2022/05/GHSA-652w-8hjc-rf6j/GHSA-652w-8hjc-rf6j.json @@ -7,12 +7,8 @@ "CVE-2020-3869" ], "details": "An issue existed in the handling of the local user's self-view. The issue was corrected with improved logic. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1. A remote FaceTime user may be able to cause the local user's camera self-view to display the incorrect camera.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-668h-jj3f-7j9q/GHSA-668h-jj3f-7j9q.json b/advisories/unreviewed/2022/05/GHSA-668h-jj3f-7j9q/GHSA-668h-jj3f-7j9q.json index cb33d0d60fe..df6fa3eeea2 100644 --- a/advisories/unreviewed/2022/05/GHSA-668h-jj3f-7j9q/GHSA-668h-jj3f-7j9q.json +++ b/advisories/unreviewed/2022/05/GHSA-668h-jj3f-7j9q/GHSA-668h-jj3f-7j9q.json @@ -7,12 +7,8 @@ "CVE-2020-0059" ], "details": "In btm_ble_batchscan_filter_track_adv_vse_cback of btm_ble_batchscan.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-142543524", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-66f3-j5p3-p6pc/GHSA-66f3-j5p3-p6pc.json b/advisories/unreviewed/2022/05/GHSA-66f3-j5p3-p6pc/GHSA-66f3-j5p3-p6pc.json index e5cced9fd4b..de8dcc73355 100644 --- a/advisories/unreviewed/2022/05/GHSA-66f3-j5p3-p6pc/GHSA-66f3-j5p3-p6pc.json +++ b/advisories/unreviewed/2022/05/GHSA-66f3-j5p3-p6pc/GHSA-66f3-j5p3-p6pc.json @@ -7,12 +7,8 @@ "CVE-2020-10212" ], "details": "upload.php in Responsive FileManager 9.13.4 and 9.14.0 allows SSRF via the url parameter because file-extension blocking is mishandled and because it is possible for a DNS hostname to resolve to an internal IP address. For example, an SSRF attempt may succeed if a .ico filename is added to the PATH_INFO. Also, an attacker could create a DNS hostname that resolves to the 0.0.0.0 IP address for DNS pinning. NOTE: this issue exists because of an incomplete fix for CVE-2018-14728.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-66vr-p69c-g8wf/GHSA-66vr-p69c-g8wf.json b/advisories/unreviewed/2022/05/GHSA-66vr-p69c-g8wf/GHSA-66vr-p69c-g8wf.json index 985420b7957..1dd22d94474 100644 --- a/advisories/unreviewed/2022/05/GHSA-66vr-p69c-g8wf/GHSA-66vr-p69c-g8wf.json +++ b/advisories/unreviewed/2022/05/GHSA-66vr-p69c-g8wf/GHSA-66vr-p69c-g8wf.json @@ -7,12 +7,8 @@ "CVE-2020-9282" ], "details": "In Mahara 18.10 before 18.10.5, 19.04 before 19.04.4, and 19.10 before 19.10.2, certain personal information is discoverable inspecting network responses on the 'Edit access' screen when sharing portfolios.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-67vf-6vph-7w9w/GHSA-67vf-6vph-7w9w.json b/advisories/unreviewed/2022/05/GHSA-67vf-6vph-7w9w/GHSA-67vf-6vph-7w9w.json index af7663fadce..d795b7fa3ec 100644 --- a/advisories/unreviewed/2022/05/GHSA-67vf-6vph-7w9w/GHSA-67vf-6vph-7w9w.json +++ b/advisories/unreviewed/2022/05/GHSA-67vf-6vph-7w9w/GHSA-67vf-6vph-7w9w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-68fc-ww4v-53wj/GHSA-68fc-ww4v-53wj.json b/advisories/unreviewed/2022/05/GHSA-68fc-ww4v-53wj/GHSA-68fc-ww4v-53wj.json index 297594d9229..f237ddef0b1 100644 --- a/advisories/unreviewed/2022/05/GHSA-68fc-ww4v-53wj/GHSA-68fc-ww4v-53wj.json +++ b/advisories/unreviewed/2022/05/GHSA-68fc-ww4v-53wj/GHSA-68fc-ww4v-53wj.json @@ -7,12 +7,8 @@ "CVE-2019-17642" ], "details": "An issue was discovered in Centreon before 18.10.8, 19.10.1, and 19.04.2. It allows CSRF with resultant remote command execution via shell metacharacters in a POST to centreon-autodiscovery-server/views/scan/ajax/call.php in the Autodiscovery plugin.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-68vx-jgvw-wrx5/GHSA-68vx-jgvw-wrx5.json b/advisories/unreviewed/2022/05/GHSA-68vx-jgvw-wrx5/GHSA-68vx-jgvw-wrx5.json index 588b0a95d9c..fea268d4752 100644 --- a/advisories/unreviewed/2022/05/GHSA-68vx-jgvw-wrx5/GHSA-68vx-jgvw-wrx5.json +++ b/advisories/unreviewed/2022/05/GHSA-68vx-jgvw-wrx5/GHSA-68vx-jgvw-wrx5.json @@ -7,12 +7,8 @@ "CVE-2020-0047" ], "details": "In setMasterMute of AudioService.java, there is a missing permission check. This could lead to local silencing of audio with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-141622311", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-68xc-xqw9-7x6f/GHSA-68xc-xqw9-7x6f.json b/advisories/unreviewed/2022/05/GHSA-68xc-xqw9-7x6f/GHSA-68xc-xqw9-7x6f.json index 986e6526480..ab3813b14a1 100644 --- a/advisories/unreviewed/2022/05/GHSA-68xc-xqw9-7x6f/GHSA-68xc-xqw9-7x6f.json +++ b/advisories/unreviewed/2022/05/GHSA-68xc-xqw9-7x6f/GHSA-68xc-xqw9-7x6f.json @@ -7,12 +7,8 @@ "CVE-2020-9372" ], "details": "The Appointment Booking Calendar plugin before 1.3.35 for WordPress allows user input (in fields such as Description or Name) in any booking form to be any formula, which then could be exported via the Bookings list tab in /wp-admin/admin.php?page=cpabc_appointments.php. The attacker could achieve remote code execution via CSV injection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6c8m-466q-4g9c/GHSA-6c8m-466q-4g9c.json b/advisories/unreviewed/2022/05/GHSA-6c8m-466q-4g9c/GHSA-6c8m-466q-4g9c.json index 080279dd893..317f23ad5de 100644 --- a/advisories/unreviewed/2022/05/GHSA-6c8m-466q-4g9c/GHSA-6c8m-466q-4g9c.json +++ b/advisories/unreviewed/2022/05/GHSA-6c8m-466q-4g9c/GHSA-6c8m-466q-4g9c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6ccx-cmhg-89c5/GHSA-6ccx-cmhg-89c5.json b/advisories/unreviewed/2022/05/GHSA-6ccx-cmhg-89c5/GHSA-6ccx-cmhg-89c5.json index 84ecdccd5a9..bae6385bf22 100644 --- a/advisories/unreviewed/2022/05/GHSA-6ccx-cmhg-89c5/GHSA-6ccx-cmhg-89c5.json +++ b/advisories/unreviewed/2022/05/GHSA-6ccx-cmhg-89c5/GHSA-6ccx-cmhg-89c5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6gfp-9cvf-5g87/GHSA-6gfp-9cvf-5g87.json b/advisories/unreviewed/2022/05/GHSA-6gfp-9cvf-5g87/GHSA-6gfp-9cvf-5g87.json index 47db59d8736..0ffcbd335b3 100644 --- a/advisories/unreviewed/2022/05/GHSA-6gfp-9cvf-5g87/GHSA-6gfp-9cvf-5g87.json +++ b/advisories/unreviewed/2022/05/GHSA-6gfp-9cvf-5g87/GHSA-6gfp-9cvf-5g87.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6gv4-2ccp-8f55/GHSA-6gv4-2ccp-8f55.json b/advisories/unreviewed/2022/05/GHSA-6gv4-2ccp-8f55/GHSA-6gv4-2ccp-8f55.json index 16355403926..14d712bc15c 100644 --- a/advisories/unreviewed/2022/05/GHSA-6gv4-2ccp-8f55/GHSA-6gv4-2ccp-8f55.json +++ b/advisories/unreviewed/2022/05/GHSA-6gv4-2ccp-8f55/GHSA-6gv4-2ccp-8f55.json @@ -7,12 +7,8 @@ "CVE-2019-18903" ], "details": "A Use After Free vulnerability in wicked of SUSE Linux Enterprise Server 12, SUSE Linux Enterprise Server 15; openSUSE Leap 15.1, Factory allows remote attackers to cause DoS or potentially code execution. This issue affects: SUSE Linux Enterprise Server 12 wicked versions prior to 0.6.60-2.18.1. SUSE Linux Enterprise Server 15 wicked versions prior to 0.6.60-28.26.1. openSUSE Leap 15.1 wicked versions prior to 0.6.60-lp151.2.9.1. openSUSE Factory wicked versions prior to 0.6.62.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6jp5-62j7-6445/GHSA-6jp5-62j7-6445.json b/advisories/unreviewed/2022/05/GHSA-6jp5-62j7-6445/GHSA-6jp5-62j7-6445.json index ad94d6b5929..d01e634e0c8 100644 --- a/advisories/unreviewed/2022/05/GHSA-6jp5-62j7-6445/GHSA-6jp5-62j7-6445.json +++ b/advisories/unreviewed/2022/05/GHSA-6jp5-62j7-6445/GHSA-6jp5-62j7-6445.json @@ -7,12 +7,8 @@ "CVE-2019-9096" ], "details": "An issue was discovered on Moxa MGate MB3170 and MB3270 devices before 4.1, MB3280 and MB3480 devices before 3.1, MB3660 devices before 2.3, and MB3180 devices before 2.1. Insufficient password requirements for the MGate web application may allow an attacker to gain access by brute-forcing account passwords.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6jwf-9gvr-hw8m/GHSA-6jwf-9gvr-hw8m.json b/advisories/unreviewed/2022/05/GHSA-6jwf-9gvr-hw8m/GHSA-6jwf-9gvr-hw8m.json index 799f9465e6f..1a9a7c8e118 100644 --- a/advisories/unreviewed/2022/05/GHSA-6jwf-9gvr-hw8m/GHSA-6jwf-9gvr-hw8m.json +++ b/advisories/unreviewed/2022/05/GHSA-6jwf-9gvr-hw8m/GHSA-6jwf-9gvr-hw8m.json @@ -7,12 +7,8 @@ "CVE-2019-12428" ], "details": "An issue was discovered in GitLab Community and Enterprise Edition 6.8 through 11.11. Users could bypass the mandatory external authentication provider sign-in restrictions by sending a specially crafted request. It has Improper Authorization.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6mwv-mqqw-2j35/GHSA-6mwv-mqqw-2j35.json b/advisories/unreviewed/2022/05/GHSA-6mwv-mqqw-2j35/GHSA-6mwv-mqqw-2j35.json index 82226d649e2..6df34d12a6f 100644 --- a/advisories/unreviewed/2022/05/GHSA-6mwv-mqqw-2j35/GHSA-6mwv-mqqw-2j35.json +++ b/advisories/unreviewed/2022/05/GHSA-6mwv-mqqw-2j35/GHSA-6mwv-mqqw-2j35.json @@ -7,12 +7,8 @@ "CVE-2019-13004" ], "details": "An issue was discovered in GitLab Community and Enterprise Edition 11.10 through 12.0.2. When specific encoded characters were added to comments, the comments section would become inaccessible. It has Incorrect Access Control (issue 1 of 2).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6p46-7gq6-xc33/GHSA-6p46-7gq6-xc33.json b/advisories/unreviewed/2022/05/GHSA-6p46-7gq6-xc33/GHSA-6p46-7gq6-xc33.json index f12bac9132d..374d4150b51 100644 --- a/advisories/unreviewed/2022/05/GHSA-6p46-7gq6-xc33/GHSA-6p46-7gq6-xc33.json +++ b/advisories/unreviewed/2022/05/GHSA-6p46-7gq6-xc33/GHSA-6p46-7gq6-xc33.json @@ -7,12 +7,8 @@ "CVE-2020-9470" ], "details": "An issue was discovered in Wing FTP Server 6.2.5 before February 2020. Due to insecure permissions when handling session cookies, a local user may view the contents of the session and session_admin directories, which expose active session cookies within the Wing FTP HTTP interface and administration panel. These cookies may be used to hijack user and administrative sessions, including the ability to execute Lua commands as root within the administration panel.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6px3-jrp3-j5gc/GHSA-6px3-jrp3-j5gc.json b/advisories/unreviewed/2022/05/GHSA-6px3-jrp3-j5gc/GHSA-6px3-jrp3-j5gc.json index 83f71322dc6..0604ffe44a0 100644 --- a/advisories/unreviewed/2022/05/GHSA-6px3-jrp3-j5gc/GHSA-6px3-jrp3-j5gc.json +++ b/advisories/unreviewed/2022/05/GHSA-6px3-jrp3-j5gc/GHSA-6px3-jrp3-j5gc.json @@ -7,12 +7,8 @@ "CVE-2015-7344" ], "details": "HikaShop Joomla Component before 2.6.0 has XSS via an injected payload[/caption].", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6qq4-j9r6-gj4w/GHSA-6qq4-j9r6-gj4w.json b/advisories/unreviewed/2022/05/GHSA-6qq4-j9r6-gj4w/GHSA-6qq4-j9r6-gj4w.json index 6962406f1d2..9e3a9d74eff 100644 --- a/advisories/unreviewed/2022/05/GHSA-6qq4-j9r6-gj4w/GHSA-6qq4-j9r6-gj4w.json +++ b/advisories/unreviewed/2022/05/GHSA-6qq4-j9r6-gj4w/GHSA-6qq4-j9r6-gj4w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6rxj-gw9w-96gv/GHSA-6rxj-gw9w-96gv.json b/advisories/unreviewed/2022/05/GHSA-6rxj-gw9w-96gv/GHSA-6rxj-gw9w-96gv.json index 4f794255011..f3fdd391ba0 100644 --- a/advisories/unreviewed/2022/05/GHSA-6rxj-gw9w-96gv/GHSA-6rxj-gw9w-96gv.json +++ b/advisories/unreviewed/2022/05/GHSA-6rxj-gw9w-96gv/GHSA-6rxj-gw9w-96gv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6vj2-ch3r-gcc3/GHSA-6vj2-ch3r-gcc3.json b/advisories/unreviewed/2022/05/GHSA-6vj2-ch3r-gcc3/GHSA-6vj2-ch3r-gcc3.json index 01ba8861898..e5fe4b7fc87 100644 --- a/advisories/unreviewed/2022/05/GHSA-6vj2-ch3r-gcc3/GHSA-6vj2-ch3r-gcc3.json +++ b/advisories/unreviewed/2022/05/GHSA-6vj2-ch3r-gcc3/GHSA-6vj2-ch3r-gcc3.json @@ -7,12 +7,8 @@ "CVE-2019-4672" ], "details": "IBM QRadar Advisor 1.1 through 2.5 could allow an unauthorized attacker to obtain sensitive information from specially crafted HTTP requests that could aid in further attacks against the system. IBM X-Force ID: 171438.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6vrv-86x4-94q8/GHSA-6vrv-86x4-94q8.json b/advisories/unreviewed/2022/05/GHSA-6vrv-86x4-94q8/GHSA-6vrv-86x4-94q8.json index 7bdf3c617e9..0b5561f2a23 100644 --- a/advisories/unreviewed/2022/05/GHSA-6vrv-86x4-94q8/GHSA-6vrv-86x4-94q8.json +++ b/advisories/unreviewed/2022/05/GHSA-6vrv-86x4-94q8/GHSA-6vrv-86x4-94q8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6vvr-9x9v-68j4/GHSA-6vvr-9x9v-68j4.json b/advisories/unreviewed/2022/05/GHSA-6vvr-9x9v-68j4/GHSA-6vvr-9x9v-68j4.json index 12d966e5c9a..6303c88857e 100644 --- a/advisories/unreviewed/2022/05/GHSA-6vvr-9x9v-68j4/GHSA-6vvr-9x9v-68j4.json +++ b/advisories/unreviewed/2022/05/GHSA-6vvr-9x9v-68j4/GHSA-6vvr-9x9v-68j4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-72xv-qm2q-w5cf/GHSA-72xv-qm2q-w5cf.json b/advisories/unreviewed/2022/05/GHSA-72xv-qm2q-w5cf/GHSA-72xv-qm2q-w5cf.json index e13cf02d1ef..a0401d269c5 100644 --- a/advisories/unreviewed/2022/05/GHSA-72xv-qm2q-w5cf/GHSA-72xv-qm2q-w5cf.json +++ b/advisories/unreviewed/2022/05/GHSA-72xv-qm2q-w5cf/GHSA-72xv-qm2q-w5cf.json @@ -7,12 +7,8 @@ "CVE-2019-10603" ], "details": "Use after free issue occurs If the real device interface goes down and a route lookup is performed while sending a raw IPv6 message in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8053, APQ8096AU, APQ8098, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, MSM8917, MSM8937, MSM8996AU, QCN7605, SDA845, SDM630, SDM636, SDM660, SDX20, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-75fp-hxc3-f56v/GHSA-75fp-hxc3-f56v.json b/advisories/unreviewed/2022/05/GHSA-75fp-hxc3-f56v/GHSA-75fp-hxc3-f56v.json index d1f38a5e646..33e07aeccf3 100644 --- a/advisories/unreviewed/2022/05/GHSA-75fp-hxc3-f56v/GHSA-75fp-hxc3-f56v.json +++ b/advisories/unreviewed/2022/05/GHSA-75fp-hxc3-f56v/GHSA-75fp-hxc3-f56v.json @@ -7,12 +7,8 @@ "CVE-2019-12434" ], "details": "An issue was discovered in GitLab Community and Enterprise Edition 10.6 through 11.11. Users could guess the URL slug of private projects through the contrast of the destination URLs of issues linked in comments. It allows Information Disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7665-fcc5-89rw/GHSA-7665-fcc5-89rw.json b/advisories/unreviewed/2022/05/GHSA-7665-fcc5-89rw/GHSA-7665-fcc5-89rw.json index 0d45a2aad5c..7c83335db63 100644 --- a/advisories/unreviewed/2022/05/GHSA-7665-fcc5-89rw/GHSA-7665-fcc5-89rw.json +++ b/advisories/unreviewed/2022/05/GHSA-7665-fcc5-89rw/GHSA-7665-fcc5-89rw.json @@ -7,12 +7,8 @@ "CVE-2019-10593" ], "details": "Buffer overflow can occur when processing non standard SDP video Image attribute parameter in a VILTE\\VOLTE call in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8017, APQ8053, APQ8076, APQ8096, APQ8096AU, APQ8098, MDM9150, MDM9206, MDM9607, MDM9640, MDM9645, MDM9650, MDM9655, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, MSM8998, Nicobar, QCM2150, QCS605, QM215, Rennell, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-76gp-2rvp-j8f4/GHSA-76gp-2rvp-j8f4.json b/advisories/unreviewed/2022/05/GHSA-76gp-2rvp-j8f4/GHSA-76gp-2rvp-j8f4.json index 94fcea7232f..1c25c4c38d8 100644 --- a/advisories/unreviewed/2022/05/GHSA-76gp-2rvp-j8f4/GHSA-76gp-2rvp-j8f4.json +++ b/advisories/unreviewed/2022/05/GHSA-76gp-2rvp-j8f4/GHSA-76gp-2rvp-j8f4.json @@ -7,12 +7,8 @@ "CVE-2020-3181" ], "details": "A vulnerability in the malware detection functionality in Cisco Advanced Malware Protection (AMP) in Cisco AsyncOS Software for Cisco Email Security Appliances (ESAs) could allow an unauthenticated remote attacker to exhaust resources on an affected device. The vulnerability is due to insufficient control over system memory allocation. An attacker could exploit this vulnerability by sending a crafted email through the targeted device. A successful exploit could allow the attacker to cause an email attachment that contains malware to be delivered to a user and cause email processing delays.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-782j-x6h5-5vmq/GHSA-782j-x6h5-5vmq.json b/advisories/unreviewed/2022/05/GHSA-782j-x6h5-5vmq/GHSA-782j-x6h5-5vmq.json index b912e093d24..c1f2853c747 100644 --- a/advisories/unreviewed/2022/05/GHSA-782j-x6h5-5vmq/GHSA-782j-x6h5-5vmq.json +++ b/advisories/unreviewed/2022/05/GHSA-782j-x6h5-5vmq/GHSA-782j-x6h5-5vmq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-78qw-h77p-37m8/GHSA-78qw-h77p-37m8.json b/advisories/unreviewed/2022/05/GHSA-78qw-h77p-37m8/GHSA-78qw-h77p-37m8.json index cffe6e2f52b..f92d6ff67c0 100644 --- a/advisories/unreviewed/2022/05/GHSA-78qw-h77p-37m8/GHSA-78qw-h77p-37m8.json +++ b/advisories/unreviewed/2022/05/GHSA-78qw-h77p-37m8/GHSA-78qw-h77p-37m8.json @@ -7,12 +7,8 @@ "CVE-2018-11838" ], "details": "Possible double free issue in WLAN due to lack of checking memory free condition. in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music in APQ8053, MDM9640, SDA660, SDM636, SDM660, SDX20", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-79w3-7qxh-q2r4/GHSA-79w3-7qxh-q2r4.json b/advisories/unreviewed/2022/05/GHSA-79w3-7qxh-q2r4/GHSA-79w3-7qxh-q2r4.json index 0ed1bfeaac7..2bf87a8155c 100644 --- a/advisories/unreviewed/2022/05/GHSA-79w3-7qxh-q2r4/GHSA-79w3-7qxh-q2r4.json +++ b/advisories/unreviewed/2022/05/GHSA-79w3-7qxh-q2r4/GHSA-79w3-7qxh-q2r4.json @@ -7,12 +7,8 @@ "CVE-2020-7988" ], "details": "An issue was discovered in tools/pass-change/result.php in phpIPAM 1.4. CSRF can be used to change the password of any user/admin, to escalate privileges, and to gain access to more data and functionality. This issue exists due to the lack of a requirement to provide the old password, and the lack of security tokens.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7f23-hrjq-296p/GHSA-7f23-hrjq-296p.json b/advisories/unreviewed/2022/05/GHSA-7f23-hrjq-296p/GHSA-7f23-hrjq-296p.json index fc6c78e626d..af49dca8827 100644 --- a/advisories/unreviewed/2022/05/GHSA-7f23-hrjq-296p/GHSA-7f23-hrjq-296p.json +++ b/advisories/unreviewed/2022/05/GHSA-7f23-hrjq-296p/GHSA-7f23-hrjq-296p.json @@ -7,12 +7,8 @@ "CVE-2019-9101" ], "details": "An issue was discovered on Moxa MGate MB3170 and MB3270 devices before 4.1, MB3280 and MB3480 devices before 3.1, MB3660 devices before 2.3, and MB3180 devices before 2.1. Sensitive information is sent to the web server in cleartext, which may allow an attacker to discover the credentials if they are able to observe traffic between the web browser and the server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7ghg-ph3f-6pjf/GHSA-7ghg-ph3f-6pjf.json b/advisories/unreviewed/2022/05/GHSA-7ghg-ph3f-6pjf/GHSA-7ghg-ph3f-6pjf.json index 87b39dbd15f..9fee40293c7 100644 --- a/advisories/unreviewed/2022/05/GHSA-7ghg-ph3f-6pjf/GHSA-7ghg-ph3f-6pjf.json +++ b/advisories/unreviewed/2022/05/GHSA-7ghg-ph3f-6pjf/GHSA-7ghg-ph3f-6pjf.json @@ -7,12 +7,8 @@ "CVE-2019-7007" ], "details": "A directory traversal vulnerability has been found in the Avaya Equinox Management(iView)versions R9.1.9.0 and earlier. Successful exploitation could potentially allow an unauthenticated attacker to access files that are outside the restricted directory on the remote server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7gmp-pxhm-rr39/GHSA-7gmp-pxhm-rr39.json b/advisories/unreviewed/2022/05/GHSA-7gmp-pxhm-rr39/GHSA-7gmp-pxhm-rr39.json index 834d96b14bd..5f9a81670e2 100644 --- a/advisories/unreviewed/2022/05/GHSA-7gmp-pxhm-rr39/GHSA-7gmp-pxhm-rr39.json +++ b/advisories/unreviewed/2022/05/GHSA-7gmp-pxhm-rr39/GHSA-7gmp-pxhm-rr39.json @@ -7,12 +7,8 @@ "CVE-2020-0062" ], "details": "In Euicc, there is a possible information disclosure due to an included test Certificate. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-143232031", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7m66-gpgj-f3cr/GHSA-7m66-gpgj-f3cr.json b/advisories/unreviewed/2022/05/GHSA-7m66-gpgj-f3cr/GHSA-7m66-gpgj-f3cr.json index 85fce147196..2d8d2c358b5 100644 --- a/advisories/unreviewed/2022/05/GHSA-7m66-gpgj-f3cr/GHSA-7m66-gpgj-f3cr.json +++ b/advisories/unreviewed/2022/05/GHSA-7m66-gpgj-f3cr/GHSA-7m66-gpgj-f3cr.json @@ -7,12 +7,8 @@ "CVE-2020-1981" ], "details": "A predictable temporary filename vulnerability in PAN-OS allows local privilege escalation. This issue allows a local attacker who bypassed the restricted shell to execute commands as a low privileged user and gain root access on the PAN-OS hardware or virtual appliance. This issue affects only PAN-OS 8.1 versions earlier than PAN-OS 8.1.13. This issue does not affect PAN-OS 7.1, PAN-OS 9.0, or later PAN-OS versions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7mmj-72wg-6gpv/GHSA-7mmj-72wg-6gpv.json b/advisories/unreviewed/2022/05/GHSA-7mmj-72wg-6gpv/GHSA-7mmj-72wg-6gpv.json index 827c3f73197..a18b42b899d 100644 --- a/advisories/unreviewed/2022/05/GHSA-7mmj-72wg-6gpv/GHSA-7mmj-72wg-6gpv.json +++ b/advisories/unreviewed/2022/05/GHSA-7mmj-72wg-6gpv/GHSA-7mmj-72wg-6gpv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7mvx-jp9h-p8gh/GHSA-7mvx-jp9h-p8gh.json b/advisories/unreviewed/2022/05/GHSA-7mvx-jp9h-p8gh/GHSA-7mvx-jp9h-p8gh.json index 0db560a5444..02771bb25e4 100644 --- a/advisories/unreviewed/2022/05/GHSA-7mvx-jp9h-p8gh/GHSA-7mvx-jp9h-p8gh.json +++ b/advisories/unreviewed/2022/05/GHSA-7mvx-jp9h-p8gh/GHSA-7mvx-jp9h-p8gh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7p47-84pr-xwv2/GHSA-7p47-84pr-xwv2.json b/advisories/unreviewed/2022/05/GHSA-7p47-84pr-xwv2/GHSA-7p47-84pr-xwv2.json index aafbbaa2299..1912c254684 100644 --- a/advisories/unreviewed/2022/05/GHSA-7p47-84pr-xwv2/GHSA-7p47-84pr-xwv2.json +++ b/advisories/unreviewed/2022/05/GHSA-7p47-84pr-xwv2/GHSA-7p47-84pr-xwv2.json @@ -7,12 +7,8 @@ "CVE-2019-14015" ], "details": "A stack-based buffer overflow exists in the initialization of the identification stage due to lack of check on the number of templates provided. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8096, APQ8096AU, MDM9205, MSM8996, MSM8996AU, Nicobar, QCS404, QCS405, QCS605, Rennell, SA6155P, SC8180X, SDA660, SDA845, SDM630, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX24, SDX55, SM6150, SM7150, SM8150, SXR1130, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7pqv-vffj-rhrq/GHSA-7pqv-vffj-rhrq.json b/advisories/unreviewed/2022/05/GHSA-7pqv-vffj-rhrq/GHSA-7pqv-vffj-rhrq.json index 7a3620d8bfa..ec2e57bbfd9 100644 --- a/advisories/unreviewed/2022/05/GHSA-7pqv-vffj-rhrq/GHSA-7pqv-vffj-rhrq.json +++ b/advisories/unreviewed/2022/05/GHSA-7pqv-vffj-rhrq/GHSA-7pqv-vffj-rhrq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7qpv-j474-3p24/GHSA-7qpv-j474-3p24.json b/advisories/unreviewed/2022/05/GHSA-7qpv-j474-3p24/GHSA-7qpv-j474-3p24.json index 7435a1ccc42..b04e7204be0 100644 --- a/advisories/unreviewed/2022/05/GHSA-7qpv-j474-3p24/GHSA-7qpv-j474-3p24.json +++ b/advisories/unreviewed/2022/05/GHSA-7qpv-j474-3p24/GHSA-7qpv-j474-3p24.json @@ -7,12 +7,8 @@ "CVE-2018-20343" ], "details": "Multiple buffer overflow vulnerabilities have been found in Ken Silverman Build Engine 1. An attacker could craft a special map file to execute arbitrary code when the map file is loaded.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7v8v-3xwh-j47p/GHSA-7v8v-3xwh-j47p.json b/advisories/unreviewed/2022/05/GHSA-7v8v-3xwh-j47p/GHSA-7v8v-3xwh-j47p.json index baab000ff6e..e25d15c1044 100644 --- a/advisories/unreviewed/2022/05/GHSA-7v8v-3xwh-j47p/GHSA-7v8v-3xwh-j47p.json +++ b/advisories/unreviewed/2022/05/GHSA-7v8v-3xwh-j47p/GHSA-7v8v-3xwh-j47p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7wr3-h277-5p7q/GHSA-7wr3-h277-5p7q.json b/advisories/unreviewed/2022/05/GHSA-7wr3-h277-5p7q/GHSA-7wr3-h277-5p7q.json index 6920adf999a..a65f157a311 100644 --- a/advisories/unreviewed/2022/05/GHSA-7wr3-h277-5p7q/GHSA-7wr3-h277-5p7q.json +++ b/advisories/unreviewed/2022/05/GHSA-7wr3-h277-5p7q/GHSA-7wr3-h277-5p7q.json @@ -7,12 +7,8 @@ "CVE-2020-10248" ], "details": "BWA DiREX-Pro 1.2181 devices allow remote attackers to discover passwords via a direct request to val_users.php3.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-824q-6pf3-99mj/GHSA-824q-6pf3-99mj.json b/advisories/unreviewed/2022/05/GHSA-824q-6pf3-99mj/GHSA-824q-6pf3-99mj.json index 12c7be7a6f7..3547f597a05 100644 --- a/advisories/unreviewed/2022/05/GHSA-824q-6pf3-99mj/GHSA-824q-6pf3-99mj.json +++ b/advisories/unreviewed/2022/05/GHSA-824q-6pf3-99mj/GHSA-824q-6pf3-99mj.json @@ -7,12 +7,8 @@ "CVE-2019-14030" ], "details": "The size of a buffer is determined by addition and multiplications operations that have the potential to overflow due to lack of bound check in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking in MDM9205, QCS404, Rennell, SC8180X, SDM845, SDM850, SDX55, SM6150, SM7150, SM8150, SM8250, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-82hx-cp56-ffj8/GHSA-82hx-cp56-ffj8.json b/advisories/unreviewed/2022/05/GHSA-82hx-cp56-ffj8/GHSA-82hx-cp56-ffj8.json index 56a15f2a65c..9c47eda0d18 100644 --- a/advisories/unreviewed/2022/05/GHSA-82hx-cp56-ffj8/GHSA-82hx-cp56-ffj8.json +++ b/advisories/unreviewed/2022/05/GHSA-82hx-cp56-ffj8/GHSA-82hx-cp56-ffj8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-82r8-9jg2-xfc8/GHSA-82r8-9jg2-xfc8.json b/advisories/unreviewed/2022/05/GHSA-82r8-9jg2-xfc8/GHSA-82r8-9jg2-xfc8.json index 16ece23471e..4bf32172fbd 100644 --- a/advisories/unreviewed/2022/05/GHSA-82r8-9jg2-xfc8/GHSA-82r8-9jg2-xfc8.json +++ b/advisories/unreviewed/2022/05/GHSA-82r8-9jg2-xfc8/GHSA-82r8-9jg2-xfc8.json @@ -7,12 +7,8 @@ "CVE-2019-11686" ], "details": "Western Digital SanDisk X300, X300s, X400, and X600 devices: A vulnerability in the wear-leveling algorithm of the drive may cause cryptographically sensitive parameters (such as data encryption keys) to remain on the drive media after their intended erasure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-838v-88q9-7fmf/GHSA-838v-88q9-7fmf.json b/advisories/unreviewed/2022/05/GHSA-838v-88q9-7fmf/GHSA-838v-88q9-7fmf.json index 45e92b3a3ae..395d2e0783a 100644 --- a/advisories/unreviewed/2022/05/GHSA-838v-88q9-7fmf/GHSA-838v-88q9-7fmf.json +++ b/advisories/unreviewed/2022/05/GHSA-838v-88q9-7fmf/GHSA-838v-88q9-7fmf.json @@ -7,12 +7,8 @@ "CVE-2020-1792" ], "details": "Honor V10 smartphones with versions earlier than BKL-AL20 10.0.0.156(C00E156R2P4) and versions earlier than BKL-L09 10.0.0.146(C432E4R1P4) have an out of bounds write vulnerability. The software writes data past the end of the intended buffer because of insufficient validation of certain parameter when initializing certain driver program. An attacker could trick the user into installing a malicious application, successful exploit could cause the device to reboot.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-83fg-h4qw-7574/GHSA-83fg-h4qw-7574.json b/advisories/unreviewed/2022/05/GHSA-83fg-h4qw-7574/GHSA-83fg-h4qw-7574.json index 0e4b8728b4e..8e67ae68a49 100644 --- a/advisories/unreviewed/2022/05/GHSA-83fg-h4qw-7574/GHSA-83fg-h4qw-7574.json +++ b/advisories/unreviewed/2022/05/GHSA-83fg-h4qw-7574/GHSA-83fg-h4qw-7574.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-855j-mwpj-m8mc/GHSA-855j-mwpj-m8mc.json b/advisories/unreviewed/2022/05/GHSA-855j-mwpj-m8mc/GHSA-855j-mwpj-m8mc.json index 84de6cf3bf5..9039c019ba8 100644 --- a/advisories/unreviewed/2022/05/GHSA-855j-mwpj-m8mc/GHSA-855j-mwpj-m8mc.json +++ b/advisories/unreviewed/2022/05/GHSA-855j-mwpj-m8mc/GHSA-855j-mwpj-m8mc.json @@ -7,12 +7,8 @@ "CVE-2020-5535" ], "details": "OpenBlocks IoT VX2 prior to Ver.4.0.0 (Ver.3 Series) allows an attacker on the same network segment to execute arbitrary OS commands with root privileges via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-85q9-82qf-837m/GHSA-85q9-82qf-837m.json b/advisories/unreviewed/2022/05/GHSA-85q9-82qf-837m/GHSA-85q9-82qf-837m.json index 81daa5bfdfd..e54e8665a91 100644 --- a/advisories/unreviewed/2022/05/GHSA-85q9-82qf-837m/GHSA-85q9-82qf-837m.json +++ b/advisories/unreviewed/2022/05/GHSA-85q9-82qf-837m/GHSA-85q9-82qf-837m.json @@ -7,12 +7,8 @@ "CVE-2020-10101" ], "details": "An issue was discovered in Zammad 3.0 through 3.2. The WebSocket server crashes when messages in non-JSON format are sent by an attacker. The message format is not properly checked and parsing errors not handled. This leads to a crash of the service process.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-86qf-2vwh-94x2/GHSA-86qf-2vwh-94x2.json b/advisories/unreviewed/2022/05/GHSA-86qf-2vwh-94x2/GHSA-86qf-2vwh-94x2.json index 8356e062da7..a5ed7bf8229 100644 --- a/advisories/unreviewed/2022/05/GHSA-86qf-2vwh-94x2/GHSA-86qf-2vwh-94x2.json +++ b/advisories/unreviewed/2022/05/GHSA-86qf-2vwh-94x2/GHSA-86qf-2vwh-94x2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-885p-3vg4-wqw2/GHSA-885p-3vg4-wqw2.json b/advisories/unreviewed/2022/05/GHSA-885p-3vg4-wqw2/GHSA-885p-3vg4-wqw2.json index 9140f72a521..ab4ef527419 100644 --- a/advisories/unreviewed/2022/05/GHSA-885p-3vg4-wqw2/GHSA-885p-3vg4-wqw2.json +++ b/advisories/unreviewed/2022/05/GHSA-885p-3vg4-wqw2/GHSA-885p-3vg4-wqw2.json @@ -7,12 +7,8 @@ "CVE-2020-10098" ], "details": "An XSS issue was discovered in Zammad 3.0 through 3.2. Malicious code can be provided by a low-privileged user through the Email functionality. The malicious JavaScript will execute within the browser of any user who opens the Ticket with the Article created from that Email.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-88cv-hj2h-fwvf/GHSA-88cv-hj2h-fwvf.json b/advisories/unreviewed/2022/05/GHSA-88cv-hj2h-fwvf/GHSA-88cv-hj2h-fwvf.json index 54205debc71..01b7da737b2 100644 --- a/advisories/unreviewed/2022/05/GHSA-88cv-hj2h-fwvf/GHSA-88cv-hj2h-fwvf.json +++ b/advisories/unreviewed/2022/05/GHSA-88cv-hj2h-fwvf/GHSA-88cv-hj2h-fwvf.json @@ -7,12 +7,8 @@ "CVE-2020-9432" ], "details": "openssl_x509_check_host in lua-openssl 0.7.7-1 mishandles X.509 certificate validation because it uses lua_pushboolean for certain non-boolean return values.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-88g7-cmj2-gcxr/GHSA-88g7-cmj2-gcxr.json b/advisories/unreviewed/2022/05/GHSA-88g7-cmj2-gcxr/GHSA-88g7-cmj2-gcxr.json index 6527fd47f93..0cac2ca9238 100644 --- a/advisories/unreviewed/2022/05/GHSA-88g7-cmj2-gcxr/GHSA-88g7-cmj2-gcxr.json +++ b/advisories/unreviewed/2022/05/GHSA-88g7-cmj2-gcxr/GHSA-88g7-cmj2-gcxr.json @@ -7,12 +7,8 @@ "CVE-2020-3844" ], "details": "This issue was addressed with improved checks. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1. Users removed from an iMessage conversation may still be able to alter state.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8c45-q5hv-c92h/GHSA-8c45-q5hv-c92h.json b/advisories/unreviewed/2022/05/GHSA-8c45-q5hv-c92h/GHSA-8c45-q5hv-c92h.json index 9b492f93d11..b35a634926d 100644 --- a/advisories/unreviewed/2022/05/GHSA-8c45-q5hv-c92h/GHSA-8c45-q5hv-c92h.json +++ b/advisories/unreviewed/2022/05/GHSA-8c45-q5hv-c92h/GHSA-8c45-q5hv-c92h.json @@ -7,12 +7,8 @@ "CVE-2020-8810" ], "details": "An issue was discovered in Gurux GXDLMS Director through 8.5.1905.1301. When downloading OBIS codes, it does not verify that the downloaded files are actual OBIS codes and doesn't check for path traversal. This allows the attacker exploiting CVE-2020-8809 to send executable files and place them in an autorun directory, or to place DLLs inside the existing GXDLMS Director installation (run on next execution of GXDLMS Director). This can be used to achieve code execution even if the user doesn't have any add-ins installed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8fr3-2wj2-rr45/GHSA-8fr3-2wj2-rr45.json b/advisories/unreviewed/2022/05/GHSA-8fr3-2wj2-rr45/GHSA-8fr3-2wj2-rr45.json index 65ddec8ef47..abfddf632e3 100644 --- a/advisories/unreviewed/2022/05/GHSA-8fr3-2wj2-rr45/GHSA-8fr3-2wj2-rr45.json +++ b/advisories/unreviewed/2022/05/GHSA-8fr3-2wj2-rr45/GHSA-8fr3-2wj2-rr45.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8h3q-5823-cjpv/GHSA-8h3q-5823-cjpv.json b/advisories/unreviewed/2022/05/GHSA-8h3q-5823-cjpv/GHSA-8h3q-5823-cjpv.json index a498297b636..d20410afe1e 100644 --- a/advisories/unreviewed/2022/05/GHSA-8h3q-5823-cjpv/GHSA-8h3q-5823-cjpv.json +++ b/advisories/unreviewed/2022/05/GHSA-8h3q-5823-cjpv/GHSA-8h3q-5823-cjpv.json @@ -7,12 +7,8 @@ "CVE-2020-6799" ], "details": "Command line arguments could have been injected during Firefox invocation as a shell handler for certain unsupported file types. This required Firefox to be configured as the default handler for a given file type and for a file downloaded to be opened in a third party application that insufficiently sanitized URL data. In that situation, clicking a link in the third party application could have been used to retrieve and execute files whose location was supplied through command line arguments. Note: This issue only affects Windows operating systems and when Firefox is configured as the default handler for non-default filetypes. Other operating systems are unaffected. This vulnerability affects Firefox < 73 and Firefox < ESR68.5.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8w9v-97h7-m2j5/GHSA-8w9v-97h7-m2j5.json b/advisories/unreviewed/2022/05/GHSA-8w9v-97h7-m2j5/GHSA-8w9v-97h7-m2j5.json index f81a8affb13..cb2391e06dd 100644 --- a/advisories/unreviewed/2022/05/GHSA-8w9v-97h7-m2j5/GHSA-8w9v-97h7-m2j5.json +++ b/advisories/unreviewed/2022/05/GHSA-8w9v-97h7-m2j5/GHSA-8w9v-97h7-m2j5.json @@ -7,12 +7,8 @@ "CVE-2020-7042" ], "details": "An issue was discovered in openfortivpn 1.11.0 when used with OpenSSL 1.0.2 or later. tunnel.c mishandles certificate validation because the hostname check operates on uninitialized memory. The outcome is that a valid certificate is never accepted (only a malformed certificate may be accepted).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-927r-wpc8-9m3x/GHSA-927r-wpc8-9m3x.json b/advisories/unreviewed/2022/05/GHSA-927r-wpc8-9m3x/GHSA-927r-wpc8-9m3x.json index 6298294865b..14c2d584a48 100644 --- a/advisories/unreviewed/2022/05/GHSA-927r-wpc8-9m3x/GHSA-927r-wpc8-9m3x.json +++ b/advisories/unreviewed/2022/05/GHSA-927r-wpc8-9m3x/GHSA-927r-wpc8-9m3x.json @@ -7,12 +7,8 @@ "CVE-2019-15299" ], "details": "An issue was discovered in Centreon Web through 19.04.3. When a user changes his password on his profile page, the contact_autologin_key field in the database becomes blank when it should be NULL. This makes it possible to partially bypass authentication.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-92j6-rm53-2g46/GHSA-92j6-rm53-2g46.json b/advisories/unreviewed/2022/05/GHSA-92j6-rm53-2g46/GHSA-92j6-rm53-2g46.json index 83d961df9d4..1f594616338 100644 --- a/advisories/unreviewed/2022/05/GHSA-92j6-rm53-2g46/GHSA-92j6-rm53-2g46.json +++ b/advisories/unreviewed/2022/05/GHSA-92j6-rm53-2g46/GHSA-92j6-rm53-2g46.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-932h-4f26-84hm/GHSA-932h-4f26-84hm.json b/advisories/unreviewed/2022/05/GHSA-932h-4f26-84hm/GHSA-932h-4f26-84hm.json index 48028e09a2e..c477809cf70 100644 --- a/advisories/unreviewed/2022/05/GHSA-932h-4f26-84hm/GHSA-932h-4f26-84hm.json +++ b/advisories/unreviewed/2022/05/GHSA-932h-4f26-84hm/GHSA-932h-4f26-84hm.json @@ -7,12 +7,8 @@ "CVE-2019-10612" ], "details": "UTCB object has a function pointer called by the reaper to deallocate its memory resources and this address can potentially be corrupted by stack overflow in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking in MDM9205, MDM9650, QCS605, SA6155P, SC8180X, SDA845, SDM670, SDM710, SDM845, SDM850, SDX55, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9695-x59r-82q9/GHSA-9695-x59r-82q9.json b/advisories/unreviewed/2022/05/GHSA-9695-x59r-82q9/GHSA-9695-x59r-82q9.json index 9afd8cd9fdd..43f4534f303 100644 --- a/advisories/unreviewed/2022/05/GHSA-9695-x59r-82q9/GHSA-9695-x59r-82q9.json +++ b/advisories/unreviewed/2022/05/GHSA-9695-x59r-82q9/GHSA-9695-x59r-82q9.json @@ -7,12 +7,8 @@ "CVE-2020-10173" ], "details": "Comtrend VR-3033 DE11-416SSG-C01_R02.A2pvI042j1.d26m devices have Multiple Authenticated Command Injection vulnerabilities via the ping and traceroute diagnostic pages, as demonstrated by shell metacharacters in the pingIpAddress parameter to ping.cgi.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-96rm-85p6-9xv5/GHSA-96rm-85p6-9xv5.json b/advisories/unreviewed/2022/05/GHSA-96rm-85p6-9xv5/GHSA-96rm-85p6-9xv5.json index a9f5dd99317..4b41a25bb28 100644 --- a/advisories/unreviewed/2022/05/GHSA-96rm-85p6-9xv5/GHSA-96rm-85p6-9xv5.json +++ b/advisories/unreviewed/2022/05/GHSA-96rm-85p6-9xv5/GHSA-96rm-85p6-9xv5.json @@ -7,12 +7,8 @@ "CVE-2020-0057" ], "details": "In btm_process_inq_results of btm_inq.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-141620271", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9727-xj59-f5g3/GHSA-9727-xj59-f5g3.json b/advisories/unreviewed/2022/05/GHSA-9727-xj59-f5g3/GHSA-9727-xj59-f5g3.json index eb4dfbb81df..bdf78a1baff 100644 --- a/advisories/unreviewed/2022/05/GHSA-9727-xj59-f5g3/GHSA-9727-xj59-f5g3.json +++ b/advisories/unreviewed/2022/05/GHSA-9727-xj59-f5g3/GHSA-9727-xj59-f5g3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-974p-hcqc-3w9p/GHSA-974p-hcqc-3w9p.json b/advisories/unreviewed/2022/05/GHSA-974p-hcqc-3w9p/GHSA-974p-hcqc-3w9p.json index 4cfb0748896..d1a64bc2ea4 100644 --- a/advisories/unreviewed/2022/05/GHSA-974p-hcqc-3w9p/GHSA-974p-hcqc-3w9p.json +++ b/advisories/unreviewed/2022/05/GHSA-974p-hcqc-3w9p/GHSA-974p-hcqc-3w9p.json @@ -7,12 +7,8 @@ "CVE-2020-5328" ], "details": "Dell EMC Isilon OneFS versions prior to 8.2.0 contain an unauthorized access vulnerability due to a lack of thorough authorization checks when SyncIQ is licensed, but encrypted syncs are not marked as required. When this happens, loss of control of the cluster can occur.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9789-x2qq-rrpj/GHSA-9789-x2qq-rrpj.json b/advisories/unreviewed/2022/05/GHSA-9789-x2qq-rrpj/GHSA-9789-x2qq-rrpj.json index 8aa73787ac5..3f1fcfde049 100644 --- a/advisories/unreviewed/2022/05/GHSA-9789-x2qq-rrpj/GHSA-9789-x2qq-rrpj.json +++ b/advisories/unreviewed/2022/05/GHSA-9789-x2qq-rrpj/GHSA-9789-x2qq-rrpj.json @@ -7,12 +7,8 @@ "CVE-2020-10099" ], "details": "An XSS issue was discovered in Zammad 3.0 through 3.2. Malicious code can be provided by a low-privileged user through the Ticket functionality in Zammad. The malicious JavaScript will execute within the browser of any user who opens the ticket or has the ticket within the Toolbar.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-98cm-m9m2-v6qv/GHSA-98cm-m9m2-v6qv.json b/advisories/unreviewed/2022/05/GHSA-98cm-m9m2-v6qv/GHSA-98cm-m9m2-v6qv.json index 59f06b97382..56cdcd5138f 100644 --- a/advisories/unreviewed/2022/05/GHSA-98cm-m9m2-v6qv/GHSA-98cm-m9m2-v6qv.json +++ b/advisories/unreviewed/2022/05/GHSA-98cm-m9m2-v6qv/GHSA-98cm-m9m2-v6qv.json @@ -7,12 +7,8 @@ "CVE-2020-1861" ], "details": "CloudEngine 12800 with versions of V200R001C00SPC600,V200R001C00SPC700,V200R002C01,V200R002C50SPC800,V200R002C50SPC800PWE,V200R003C00SPC810,V200R003C00SPC810PWE,V200R005C00SPC600,V200R005C00SPC800,V200R005C00SPC800PWE,V200R005C10,V200R005C10SPC300 have an information leakage vulnerability in some Huawei products. In some special cases, an authenticated attacker can exploit this vulnerability because the software processes data improperly. Successful exploitation may lead to information leakage.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-99px-89x2-wp2v/GHSA-99px-89x2-wp2v.json b/advisories/unreviewed/2022/05/GHSA-99px-89x2-wp2v/GHSA-99px-89x2-wp2v.json index b82abd017bc..c08e1062501 100644 --- a/advisories/unreviewed/2022/05/GHSA-99px-89x2-wp2v/GHSA-99px-89x2-wp2v.json +++ b/advisories/unreviewed/2022/05/GHSA-99px-89x2-wp2v/GHSA-99px-89x2-wp2v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9cxv-8fwp-3hgq/GHSA-9cxv-8fwp-3hgq.json b/advisories/unreviewed/2022/05/GHSA-9cxv-8fwp-3hgq/GHSA-9cxv-8fwp-3hgq.json index 5f0dbd82075..df42ae1de71 100644 --- a/advisories/unreviewed/2022/05/GHSA-9cxv-8fwp-3hgq/GHSA-9cxv-8fwp-3hgq.json +++ b/advisories/unreviewed/2022/05/GHSA-9cxv-8fwp-3hgq/GHSA-9cxv-8fwp-3hgq.json @@ -7,12 +7,8 @@ "CVE-2020-9369" ], "details": "Sympa 6.2.38 through 6.2.52 allows remote attackers to cause a denial of service (disk consumption from temporary files, and a flood of notifications to listmasters) via a series of requests with malformed parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9fm6-ffj9-f3wc/GHSA-9fm6-ffj9-f3wc.json b/advisories/unreviewed/2022/05/GHSA-9fm6-ffj9-f3wc/GHSA-9fm6-ffj9-f3wc.json index 8c787d3a09f..27d2fcc242b 100644 --- a/advisories/unreviewed/2022/05/GHSA-9fm6-ffj9-f3wc/GHSA-9fm6-ffj9-f3wc.json +++ b/advisories/unreviewed/2022/05/GHSA-9fm6-ffj9-f3wc/GHSA-9fm6-ffj9-f3wc.json @@ -7,12 +7,8 @@ "CVE-2020-4278" ], "details": "IBM Platform LSF 9.1 and 10.1, IBM Spectrum LSF Suite 10.2, and IBM Spectrum Suite for HPA 10.2 could allow a local user to escalate their privileges due to weak file permissions when specific debug settings are enabled in a Linux or Unix enviornment. IBM X-Force ID: 176137.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9gfm-rj34-h4pm/GHSA-9gfm-rj34-h4pm.json b/advisories/unreviewed/2022/05/GHSA-9gfm-rj34-h4pm/GHSA-9gfm-rj34-h4pm.json index 8e7cb091d13..2a3c8403edf 100644 --- a/advisories/unreviewed/2022/05/GHSA-9gfm-rj34-h4pm/GHSA-9gfm-rj34-h4pm.json +++ b/advisories/unreviewed/2022/05/GHSA-9gfm-rj34-h4pm/GHSA-9gfm-rj34-h4pm.json @@ -7,12 +7,8 @@ "CVE-2019-17229" ], "details": "includes/options.php in the motors-car-dealership-classified-listings (aka Motors - Car Dealer & Classified Ads) plugin through 1.4.0 for WordPress has multiple stored XSS issues.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9gq3-q3gq-f9h8/GHSA-9gq3-q3gq-f9h8.json b/advisories/unreviewed/2022/05/GHSA-9gq3-q3gq-f9h8/GHSA-9gq3-q3gq-f9h8.json index dea6ae1a4a8..407b14aafa4 100644 --- a/advisories/unreviewed/2022/05/GHSA-9gq3-q3gq-f9h8/GHSA-9gq3-q3gq-f9h8.json +++ b/advisories/unreviewed/2022/05/GHSA-9gq3-q3gq-f9h8/GHSA-9gq3-q3gq-f9h8.json @@ -7,12 +7,8 @@ "CVE-2020-3846" ], "details": "A buffer overflow was addressed with improved size validation. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, macOS Catalina 10.15.3, tvOS 13.3.1, watchOS 6.1.2, iTunes for Windows 12.10.4, iCloud for Windows 11.0, iCloud for Windows 7.17. Processing maliciously crafted XML may lead to an unexpected application termination or arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9gwg-x6v6-wrxq/GHSA-9gwg-x6v6-wrxq.json b/advisories/unreviewed/2022/05/GHSA-9gwg-x6v6-wrxq/GHSA-9gwg-x6v6-wrxq.json index 31b88c44bb7..62afed9dfea 100644 --- a/advisories/unreviewed/2022/05/GHSA-9gwg-x6v6-wrxq/GHSA-9gwg-x6v6-wrxq.json +++ b/advisories/unreviewed/2022/05/GHSA-9gwg-x6v6-wrxq/GHSA-9gwg-x6v6-wrxq.json @@ -7,12 +7,8 @@ "CVE-2015-7340" ], "details": "JEvents Joomla Component before 3.4.0 RC6 has SQL Injection via evid in a Manage Events action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9jpf-vg83-7m3q/GHSA-9jpf-vg83-7m3q.json b/advisories/unreviewed/2022/05/GHSA-9jpf-vg83-7m3q/GHSA-9jpf-vg83-7m3q.json index 9f416c901c5..49d8b02ab01 100644 --- a/advisories/unreviewed/2022/05/GHSA-9jpf-vg83-7m3q/GHSA-9jpf-vg83-7m3q.json +++ b/advisories/unreviewed/2022/05/GHSA-9jpf-vg83-7m3q/GHSA-9jpf-vg83-7m3q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9jvq-xw87-98jx/GHSA-9jvq-xw87-98jx.json b/advisories/unreviewed/2022/05/GHSA-9jvq-xw87-98jx/GHSA-9jvq-xw87-98jx.json index 21289a54166..205de536b60 100644 --- a/advisories/unreviewed/2022/05/GHSA-9jvq-xw87-98jx/GHSA-9jvq-xw87-98jx.json +++ b/advisories/unreviewed/2022/05/GHSA-9jvq-xw87-98jx/GHSA-9jvq-xw87-98jx.json @@ -7,12 +7,8 @@ "CVE-2020-3842" ], "details": "A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, macOS Catalina 10.15.3, tvOS 13.3.1, watchOS 6.1.2. An application may be able to execute arbitrary code with kernel privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9mr9-86gh-mpx9/GHSA-9mr9-86gh-mpx9.json b/advisories/unreviewed/2022/05/GHSA-9mr9-86gh-mpx9/GHSA-9mr9-86gh-mpx9.json index 8f516bcb730..124a412bbdc 100644 --- a/advisories/unreviewed/2022/05/GHSA-9mr9-86gh-mpx9/GHSA-9mr9-86gh-mpx9.json +++ b/advisories/unreviewed/2022/05/GHSA-9mr9-86gh-mpx9/GHSA-9mr9-86gh-mpx9.json @@ -7,12 +7,8 @@ "CVE-2019-14082" ], "details": "Potential buffer over-read due to lack of bound check of memory offset passed in WLAN firmware in Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking in IPQ8074, MDM9206, MDM9207C, MDM9607, QCN7605, SM8150", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9p4m-gvr2-2mpp/GHSA-9p4m-gvr2-2mpp.json b/advisories/unreviewed/2022/05/GHSA-9p4m-gvr2-2mpp/GHSA-9p4m-gvr2-2mpp.json index 854441a0917..fa4e10408b6 100644 --- a/advisories/unreviewed/2022/05/GHSA-9p4m-gvr2-2mpp/GHSA-9p4m-gvr2-2mpp.json +++ b/advisories/unreviewed/2022/05/GHSA-9p4m-gvr2-2mpp/GHSA-9p4m-gvr2-2mpp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9qqx-j93w-hf68/GHSA-9qqx-j93w-hf68.json b/advisories/unreviewed/2022/05/GHSA-9qqx-j93w-hf68/GHSA-9qqx-j93w-hf68.json index b513d243b42..6811d566cb5 100644 --- a/advisories/unreviewed/2022/05/GHSA-9qqx-j93w-hf68/GHSA-9qqx-j93w-hf68.json +++ b/advisories/unreviewed/2022/05/GHSA-9qqx-j93w-hf68/GHSA-9qqx-j93w-hf68.json @@ -7,12 +7,8 @@ "CVE-2019-10587" ], "details": "Possible Stack overflow can occur when processing a large SDP body or non standard SDP body without right delimiters in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8017, APQ8053, APQ8096, APQ8096AU, APQ8098, MDM9150, MDM9206, MDM9607, MDM9615, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, MSM8998, Nicobar, QCM2150, QCS605, QM215, Rennell, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9rxj-vjg6-w53x/GHSA-9rxj-vjg6-w53x.json b/advisories/unreviewed/2022/05/GHSA-9rxj-vjg6-w53x/GHSA-9rxj-vjg6-w53x.json index ec29277cd4b..9fe52a426aa 100644 --- a/advisories/unreviewed/2022/05/GHSA-9rxj-vjg6-w53x/GHSA-9rxj-vjg6-w53x.json +++ b/advisories/unreviewed/2022/05/GHSA-9rxj-vjg6-w53x/GHSA-9rxj-vjg6-w53x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -63,9 +61,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9x8f-568x-88r7/GHSA-9x8f-568x-88r7.json b/advisories/unreviewed/2022/05/GHSA-9x8f-568x-88r7/GHSA-9x8f-568x-88r7.json index 13774be7ca0..a1edf70916e 100644 --- a/advisories/unreviewed/2022/05/GHSA-9x8f-568x-88r7/GHSA-9x8f-568x-88r7.json +++ b/advisories/unreviewed/2022/05/GHSA-9x8f-568x-88r7/GHSA-9x8f-568x-88r7.json @@ -7,12 +7,8 @@ "CVE-2018-5951" ], "details": "An issue was discovered in Mikrotik RouterOS. Crafting a packet that has a size of 1 byte and sending it to an IPv6 address of a RouterOS box with IP Protocol 97 will cause RouterOS to reboot imminently. All versions of RouterOS that supports EoIPv6 are vulnerable to this attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c238-w6xv-cj4m/GHSA-c238-w6xv-cj4m.json b/advisories/unreviewed/2022/05/GHSA-c238-w6xv-cj4m/GHSA-c238-w6xv-cj4m.json index 85afeefaa56..3b943cf7356 100644 --- a/advisories/unreviewed/2022/05/GHSA-c238-w6xv-cj4m/GHSA-c238-w6xv-cj4m.json +++ b/advisories/unreviewed/2022/05/GHSA-c238-w6xv-cj4m/GHSA-c238-w6xv-cj4m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c2p9-pmvg-phh2/GHSA-c2p9-pmvg-phh2.json b/advisories/unreviewed/2022/05/GHSA-c2p9-pmvg-phh2/GHSA-c2p9-pmvg-phh2.json index 6b824be37a9..ff5dbe49e21 100644 --- a/advisories/unreviewed/2022/05/GHSA-c2p9-pmvg-phh2/GHSA-c2p9-pmvg-phh2.json +++ b/advisories/unreviewed/2022/05/GHSA-c2p9-pmvg-phh2/GHSA-c2p9-pmvg-phh2.json @@ -7,12 +7,8 @@ "CVE-2019-10591" ], "details": "Null pointer dereference can happen when parsing udta atom which is non-standard and having invalid depth in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8017, APQ8053, APQ8096AU, APQ8098, MDM9206, MDM9207C, MDM9607, MSM8905, MSM8909W, MSM8917, MSM8939, MSM8953, MSM8996, MSM8996AU, MSM8998, Nicobar, QCS405, QCS605, QM215, Rennell, SA6155P, Saipan, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDX20, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c2xm-2fm6-9338/GHSA-c2xm-2fm6-9338.json b/advisories/unreviewed/2022/05/GHSA-c2xm-2fm6-9338/GHSA-c2xm-2fm6-9338.json index e863303cf95..6d0dd2b7860 100644 --- a/advisories/unreviewed/2022/05/GHSA-c2xm-2fm6-9338/GHSA-c2xm-2fm6-9338.json +++ b/advisories/unreviewed/2022/05/GHSA-c2xm-2fm6-9338/GHSA-c2xm-2fm6-9338.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c385-6jmf-qhj8/GHSA-c385-6jmf-qhj8.json b/advisories/unreviewed/2022/05/GHSA-c385-6jmf-qhj8/GHSA-c385-6jmf-qhj8.json index a4ab08682cb..60fe92ca0b1 100644 --- a/advisories/unreviewed/2022/05/GHSA-c385-6jmf-qhj8/GHSA-c385-6jmf-qhj8.json +++ b/advisories/unreviewed/2022/05/GHSA-c385-6jmf-qhj8/GHSA-c385-6jmf-qhj8.json @@ -7,12 +7,8 @@ "CVE-2020-10372" ], "details": "Ramp AltitudeCDN Altimeter before 2.4.0 allows authenticated Stored XSS via the vdms/ipmapping.jsp location field to the dms/rest/services/datastore/createOrEditValueForKey URI.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c3mf-x864-vg86/GHSA-c3mf-x864-vg86.json b/advisories/unreviewed/2022/05/GHSA-c3mf-x864-vg86/GHSA-c3mf-x864-vg86.json index c559571867a..c6291d60a9b 100644 --- a/advisories/unreviewed/2022/05/GHSA-c3mf-x864-vg86/GHSA-c3mf-x864-vg86.json +++ b/advisories/unreviewed/2022/05/GHSA-c3mf-x864-vg86/GHSA-c3mf-x864-vg86.json @@ -7,12 +7,8 @@ "CVE-2020-6792" ], "details": "When deriving an identifier for an email message, uninitialized memory was used in addition to the message contents. This vulnerability affects Thunderbird < 68.5.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c4cp-hjxc-9m9g/GHSA-c4cp-hjxc-9m9g.json b/advisories/unreviewed/2022/05/GHSA-c4cp-hjxc-9m9g/GHSA-c4cp-hjxc-9m9g.json index 5d8c0628040..81d0d5ef583 100644 --- a/advisories/unreviewed/2022/05/GHSA-c4cp-hjxc-9m9g/GHSA-c4cp-hjxc-9m9g.json +++ b/advisories/unreviewed/2022/05/GHSA-c4cp-hjxc-9m9g/GHSA-c4cp-hjxc-9m9g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c54c-x29c-v3w9/GHSA-c54c-x29c-v3w9.json b/advisories/unreviewed/2022/05/GHSA-c54c-x29c-v3w9/GHSA-c54c-x29c-v3w9.json index 645ca5c3b8f..94359a9d6c3 100644 --- a/advisories/unreviewed/2022/05/GHSA-c54c-x29c-v3w9/GHSA-c54c-x29c-v3w9.json +++ b/advisories/unreviewed/2022/05/GHSA-c54c-x29c-v3w9/GHSA-c54c-x29c-v3w9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c5m3-qh48-5wjh/GHSA-c5m3-qh48-5wjh.json b/advisories/unreviewed/2022/05/GHSA-c5m3-qh48-5wjh/GHSA-c5m3-qh48-5wjh.json index 0f834e4adbe..5084da72e61 100644 --- a/advisories/unreviewed/2022/05/GHSA-c5m3-qh48-5wjh/GHSA-c5m3-qh48-5wjh.json +++ b/advisories/unreviewed/2022/05/GHSA-c5m3-qh48-5wjh/GHSA-c5m3-qh48-5wjh.json @@ -7,12 +7,8 @@ "CVE-2019-10549" ], "details": "Null pointer dereference issue can happen due to improper validation of CSEQ header response received from network in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in MSM8905, MSM8909, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, Nicobar, QCM2150, QM215, Rennell, SC8180X, SDM429, SDM429W, SDM439, SDM450, SDM632, SDX24, SDX55, SM6150, SM7150, SM8150", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c68p-p38j-3rqx/GHSA-c68p-p38j-3rqx.json b/advisories/unreviewed/2022/05/GHSA-c68p-p38j-3rqx/GHSA-c68p-p38j-3rqx.json index 2428343802f..fb8e8e82ff0 100644 --- a/advisories/unreviewed/2022/05/GHSA-c68p-p38j-3rqx/GHSA-c68p-p38j-3rqx.json +++ b/advisories/unreviewed/2022/05/GHSA-c68p-p38j-3rqx/GHSA-c68p-p38j-3rqx.json @@ -7,12 +7,8 @@ "CVE-2019-19381" ], "details": "oauth/oauth2/v1/saml/ in Abacus OAuth Login 2019_01_r4_20191021_0000 before prior to R4 (20.11.2019 Hotfix) allows Reflected Cross Site Scripting (XSS) via an error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c6fw-9pjp-59cm/GHSA-c6fw-9pjp-59cm.json b/advisories/unreviewed/2022/05/GHSA-c6fw-9pjp-59cm/GHSA-c6fw-9pjp-59cm.json index a85fda56317..a99005d5ec8 100644 --- a/advisories/unreviewed/2022/05/GHSA-c6fw-9pjp-59cm/GHSA-c6fw-9pjp-59cm.json +++ b/advisories/unreviewed/2022/05/GHSA-c6fw-9pjp-59cm/GHSA-c6fw-9pjp-59cm.json @@ -7,12 +7,8 @@ "CVE-2019-19277" ], "details": "A vulnerability has been identified in SIPORT MP (All versions < 3.1.4). Vulnerable versions of the device allow the creation of special accounts (\"service users\") with administrative privileges that could enable a remote authenticated attacker to perform actions that are not visible to other users of the system, such as granting persons access to a secured area.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c77w-xw87-xvp3/GHSA-c77w-xw87-xvp3.json b/advisories/unreviewed/2022/05/GHSA-c77w-xw87-xvp3/GHSA-c77w-xw87-xvp3.json index 4b3a011b5dc..e712d47bc33 100644 --- a/advisories/unreviewed/2022/05/GHSA-c77w-xw87-xvp3/GHSA-c77w-xw87-xvp3.json +++ b/advisories/unreviewed/2022/05/GHSA-c77w-xw87-xvp3/GHSA-c77w-xw87-xvp3.json @@ -7,12 +7,8 @@ "CVE-2020-9431" ], "details": "In Wireshark 3.2.0 to 3.2.1, 3.0.0 to 3.0.8, and 2.6.0 to 2.6.14, the LTE RRC dissector could leak memory. This was addressed in epan/dissectors/packet-lte-rrc.c by adjusting certain append operations.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ccm4-6rr2-68rf/GHSA-ccm4-6rr2-68rf.json b/advisories/unreviewed/2022/05/GHSA-ccm4-6rr2-68rf/GHSA-ccm4-6rr2-68rf.json index 513a814af87..ac7b0b0c279 100644 --- a/advisories/unreviewed/2022/05/GHSA-ccm4-6rr2-68rf/GHSA-ccm4-6rr2-68rf.json +++ b/advisories/unreviewed/2022/05/GHSA-ccm4-6rr2-68rf/GHSA-ccm4-6rr2-68rf.json @@ -7,12 +7,8 @@ "CVE-2019-10550" ], "details": "Buffer Over-read when UE is trying to process the message received form the network without zero termination in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in MDM9206, MDM9607, MDM9640, MDM9650, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, Nicobar, QCM2150, QCS605, QM215, Rennell, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cgfh-7jxj-w8w8/GHSA-cgfh-7jxj-w8w8.json b/advisories/unreviewed/2022/05/GHSA-cgfh-7jxj-w8w8/GHSA-cgfh-7jxj-w8w8.json index f368858765f..32a86f2d79f 100644 --- a/advisories/unreviewed/2022/05/GHSA-cgfh-7jxj-w8w8/GHSA-cgfh-7jxj-w8w8.json +++ b/advisories/unreviewed/2022/05/GHSA-cgfh-7jxj-w8w8/GHSA-cgfh-7jxj-w8w8.json @@ -7,12 +7,8 @@ "CVE-2020-4083" ], "details": "HCL Connections 6.5 is vulnerable to possible information leakage. Connections could disclose sensitive information via trace logs to a local user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-chxj-cccp-c8h2/GHSA-chxj-cccp-c8h2.json b/advisories/unreviewed/2022/05/GHSA-chxj-cccp-c8h2/GHSA-chxj-cccp-c8h2.json index ac1fd98ba4e..33e3a99165f 100644 --- a/advisories/unreviewed/2022/05/GHSA-chxj-cccp-c8h2/GHSA-chxj-cccp-c8h2.json +++ b/advisories/unreviewed/2022/05/GHSA-chxj-cccp-c8h2/GHSA-chxj-cccp-c8h2.json @@ -7,12 +7,8 @@ "CVE-2020-9418" ], "details": "An untrusted search path vulnerability in the installer of PDFescape Desktop version 4.0.22 and earlier allows an attacker to gain privileges and execute code via DLL hijacking.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cjhv-77fv-j3wp/GHSA-cjhv-77fv-j3wp.json b/advisories/unreviewed/2022/05/GHSA-cjhv-77fv-j3wp/GHSA-cjhv-77fv-j3wp.json index c658263357f..31d7f26eda2 100644 --- a/advisories/unreviewed/2022/05/GHSA-cjhv-77fv-j3wp/GHSA-cjhv-77fv-j3wp.json +++ b/advisories/unreviewed/2022/05/GHSA-cjhv-77fv-j3wp/GHSA-cjhv-77fv-j3wp.json @@ -7,12 +7,8 @@ "CVE-2020-6407" ], "details": "Out of bounds memory access in streams in Google Chrome prior to 80.0.3987.122 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cjwj-m7ff-q83c/GHSA-cjwj-m7ff-q83c.json b/advisories/unreviewed/2022/05/GHSA-cjwj-m7ff-q83c/GHSA-cjwj-m7ff-q83c.json index 7aef09d0653..b7c3868484d 100644 --- a/advisories/unreviewed/2022/05/GHSA-cjwj-m7ff-q83c/GHSA-cjwj-m7ff-q83c.json +++ b/advisories/unreviewed/2022/05/GHSA-cjwj-m7ff-q83c/GHSA-cjwj-m7ff-q83c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cm8g-p75f-jwq6/GHSA-cm8g-p75f-jwq6.json b/advisories/unreviewed/2022/05/GHSA-cm8g-p75f-jwq6/GHSA-cm8g-p75f-jwq6.json index 6fdf43bd7b4..0568e6d3ab3 100644 --- a/advisories/unreviewed/2022/05/GHSA-cm8g-p75f-jwq6/GHSA-cm8g-p75f-jwq6.json +++ b/advisories/unreviewed/2022/05/GHSA-cm8g-p75f-jwq6/GHSA-cm8g-p75f-jwq6.json @@ -7,12 +7,8 @@ "CVE-2020-0029" ], "details": "In the WifiConfigManager, there is a possible storage of location history which can only be deleted by triggering a factory reset. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-140065828", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cr2h-5rwf-jg3m/GHSA-cr2h-5rwf-jg3m.json b/advisories/unreviewed/2022/05/GHSA-cr2h-5rwf-jg3m/GHSA-cr2h-5rwf-jg3m.json index f8f4c5e1335..d49943aec0b 100644 --- a/advisories/unreviewed/2022/05/GHSA-cr2h-5rwf-jg3m/GHSA-cr2h-5rwf-jg3m.json +++ b/advisories/unreviewed/2022/05/GHSA-cr2h-5rwf-jg3m/GHSA-cr2h-5rwf-jg3m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-crq2-xjm7-62p8/GHSA-crq2-xjm7-62p8.json b/advisories/unreviewed/2022/05/GHSA-crq2-xjm7-62p8/GHSA-crq2-xjm7-62p8.json index 1545dcc95e3..2c04042fd37 100644 --- a/advisories/unreviewed/2022/05/GHSA-crq2-xjm7-62p8/GHSA-crq2-xjm7-62p8.json +++ b/advisories/unreviewed/2022/05/GHSA-crq2-xjm7-62p8/GHSA-crq2-xjm7-62p8.json @@ -7,12 +7,8 @@ "CVE-2019-3696" ], "details": "A Improper Limitation of a Pathname to a Restricted Directory vulnerability in the packaging of pcp of SUSE Linux Enterprise High Performance Computing 15-ESPOS, SUSE Linux Enterprise High Performance Computing 15-LTSS, SUSE Linux Enterprise Module for Development Tools 15, SUSE Linux Enterprise Module for Development Tools 15-SP1, SUSE Linux Enterprise Module for Open Buildservice Development Tools 15, SUSE Linux Enterprise Server 15-LTSS, SUSE Linux Enterprise Server for SAP 15, SUSE Linux Enterprise Software Development Kit 12-SP4, SUSE Linux Enterprise Software Development Kit 12-SP5; openSUSE Leap 15.1 allows local user pcp to overwrite arbitrary files with arbitrary content. This issue affects: SUSE Linux Enterprise High Performance Computing 15-ESPOS pcp versions prior to 3.11.9-5.8.1. SUSE Linux Enterprise High Performance Computing 15-LTSS pcp versions prior to 3.11.9-5.8.1. SUSE Linux Enterprise Module for Development Tools 15 pcp versions prior to 3.11.9-5.8.1. SUSE Linux Enterprise Module for Development Tools 15-SP1 pcp versions prior to 4.3.1-3.5.3. SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 pcp versions prior to 3.11.9-5.8.1. SUSE Linux Enterprise Server 15-LTSS pcp versions prior to 3.11.9-5.8.1. SUSE Linux Enterprise Server for SAP 15 pcp versions prior to 3.11.9-5.8.1. SUSE Linux Enterprise Software Development Kit 12-SP4 pcp versions prior to 3.11.9-6.14.1. SUSE Linux Enterprise Software Development Kit 12-SP5 pcp versions prior to 3.11.9-6.14.1. openSUSE Leap 15.1 pcp versions prior to 4.3.1-lp151.2.3.1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cvmp-6jp5-68fr/GHSA-cvmp-6jp5-68fr.json b/advisories/unreviewed/2022/05/GHSA-cvmp-6jp5-68fr/GHSA-cvmp-6jp5-68fr.json index 3a8b655cfb5..2d4f519f6f2 100644 --- a/advisories/unreviewed/2022/05/GHSA-cvmp-6jp5-68fr/GHSA-cvmp-6jp5-68fr.json +++ b/advisories/unreviewed/2022/05/GHSA-cvmp-6jp5-68fr/GHSA-cvmp-6jp5-68fr.json @@ -7,12 +7,8 @@ "CVE-2019-14048" ], "details": "Possible out of bound memory access while playing a crafted clip in media player in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in SM8150", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cvxg-mfrc-h7wv/GHSA-cvxg-mfrc-h7wv.json b/advisories/unreviewed/2022/05/GHSA-cvxg-mfrc-h7wv/GHSA-cvxg-mfrc-h7wv.json index db3cfd23e83..6185c39b5c5 100644 --- a/advisories/unreviewed/2022/05/GHSA-cvxg-mfrc-h7wv/GHSA-cvxg-mfrc-h7wv.json +++ b/advisories/unreviewed/2022/05/GHSA-cvxg-mfrc-h7wv/GHSA-cvxg-mfrc-h7wv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cwqf-6rvq-hm26/GHSA-cwqf-6rvq-hm26.json b/advisories/unreviewed/2022/05/GHSA-cwqf-6rvq-hm26/GHSA-cwqf-6rvq-hm26.json index 46abd4e9fb3..f6dfa8eef06 100644 --- a/advisories/unreviewed/2022/05/GHSA-cwqf-6rvq-hm26/GHSA-cwqf-6rvq-hm26.json +++ b/advisories/unreviewed/2022/05/GHSA-cwqf-6rvq-hm26/GHSA-cwqf-6rvq-hm26.json @@ -7,12 +7,8 @@ "CVE-2020-10107" ], "details": "PHPGurukul Daily Expense Tracker System 1.0 is vulnerable to stored XSS, as demonstrated by the ExpenseItem or ExpenseCost parameter in manage-expense.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cx25-8g49-fx7q/GHSA-cx25-8g49-fx7q.json b/advisories/unreviewed/2022/05/GHSA-cx25-8g49-fx7q/GHSA-cx25-8g49-fx7q.json index aabf08bc071..5bef6075110 100644 --- a/advisories/unreviewed/2022/05/GHSA-cx25-8g49-fx7q/GHSA-cx25-8g49-fx7q.json +++ b/advisories/unreviewed/2022/05/GHSA-cx25-8g49-fx7q/GHSA-cx25-8g49-fx7q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cx3v-v29m-9vj4/GHSA-cx3v-v29m-9vj4.json b/advisories/unreviewed/2022/05/GHSA-cx3v-v29m-9vj4/GHSA-cx3v-v29m-9vj4.json index 9837eee6a07..988f040c36b 100644 --- a/advisories/unreviewed/2022/05/GHSA-cx3v-v29m-9vj4/GHSA-cx3v-v29m-9vj4.json +++ b/advisories/unreviewed/2022/05/GHSA-cx3v-v29m-9vj4/GHSA-cx3v-v29m-9vj4.json @@ -7,12 +7,8 @@ "CVE-2020-0066" ], "details": "In the netlink driver, there is a possible out of bounds write due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-65025077", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cx75-44jc-g7gv/GHSA-cx75-44jc-g7gv.json b/advisories/unreviewed/2022/05/GHSA-cx75-44jc-g7gv/GHSA-cx75-44jc-g7gv.json index 10d29ef84dc..66812df11b3 100644 --- a/advisories/unreviewed/2022/05/GHSA-cx75-44jc-g7gv/GHSA-cx75-44jc-g7gv.json +++ b/advisories/unreviewed/2022/05/GHSA-cx75-44jc-g7gv/GHSA-cx75-44jc-g7gv.json @@ -7,12 +7,8 @@ "CVE-2019-12442" ], "details": "An issue was discovered in GitLab Enterprise Edition 11.7 through 11.11. The epic details page contained a lack of input validation and output encoding issue which resulted in a persistent XSS vulnerability on child epics.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f47r-9fwr-4p3h/GHSA-f47r-9fwr-4p3h.json b/advisories/unreviewed/2022/05/GHSA-f47r-9fwr-4p3h/GHSA-f47r-9fwr-4p3h.json index 1f9c3e74af1..8aa20b2e61c 100644 --- a/advisories/unreviewed/2022/05/GHSA-f47r-9fwr-4p3h/GHSA-f47r-9fwr-4p3h.json +++ b/advisories/unreviewed/2022/05/GHSA-f47r-9fwr-4p3h/GHSA-f47r-9fwr-4p3h.json @@ -7,12 +7,8 @@ "CVE-2019-19279" ], "details": "A vulnerability has been identified in SIPROTEC 4 and SIPROTEC Compact relays equipped with EN100 Ethernet communication modules (All versions). Specially crafted packets sent to port 50000/UDP of the EN100 Ethernet communication modules could cause a Denial-of-Service of the affected device. A manual reboot is required to recover the service of the device. At the time of advisory publication no public exploitation of this security vulnerability was known to Siemens.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f533-6h52-99jc/GHSA-f533-6h52-99jc.json b/advisories/unreviewed/2022/05/GHSA-f533-6h52-99jc/GHSA-f533-6h52-99jc.json index 62590a45a62..97181d58ef6 100644 --- a/advisories/unreviewed/2022/05/GHSA-f533-6h52-99jc/GHSA-f533-6h52-99jc.json +++ b/advisories/unreviewed/2022/05/GHSA-f533-6h52-99jc/GHSA-f533-6h52-99jc.json @@ -7,12 +7,8 @@ "CVE-2020-9430" ], "details": "In Wireshark 3.2.0 to 3.2.1, 3.0.0 to 3.0.8, and 2.6.0 to 2.6.14, the WiMax DLMAP dissector could crash. This was addressed in plugins/epan/wimax/msg_dlmap.c by validating a length field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f7h6-pm8g-v4c4/GHSA-f7h6-pm8g-v4c4.json b/advisories/unreviewed/2022/05/GHSA-f7h6-pm8g-v4c4/GHSA-f7h6-pm8g-v4c4.json index f227bf7a1f0..f6d8cdb8df2 100644 --- a/advisories/unreviewed/2022/05/GHSA-f7h6-pm8g-v4c4/GHSA-f7h6-pm8g-v4c4.json +++ b/advisories/unreviewed/2022/05/GHSA-f7h6-pm8g-v4c4/GHSA-f7h6-pm8g-v4c4.json @@ -7,12 +7,8 @@ "CVE-2015-7342" ], "details": "JNews Joomla Component before 8.5.0 allows SQL injection via upload thumbnail, Queue Search Field, Subscribers Search Field, or Newsletters Search Field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f7j2-6v4c-hjxw/GHSA-f7j2-6v4c-hjxw.json b/advisories/unreviewed/2022/05/GHSA-f7j2-6v4c-hjxw/GHSA-f7j2-6v4c-hjxw.json index c6742a0e608..f145d637290 100644 --- a/advisories/unreviewed/2022/05/GHSA-f7j2-6v4c-hjxw/GHSA-f7j2-6v4c-hjxw.json +++ b/advisories/unreviewed/2022/05/GHSA-f7j2-6v4c-hjxw/GHSA-f7j2-6v4c-hjxw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f98g-j2jx-44x5/GHSA-f98g-j2jx-44x5.json b/advisories/unreviewed/2022/05/GHSA-f98g-j2jx-44x5/GHSA-f98g-j2jx-44x5.json index fa2244f2d44..3c9e0b88840 100644 --- a/advisories/unreviewed/2022/05/GHSA-f98g-j2jx-44x5/GHSA-f98g-j2jx-44x5.json +++ b/advisories/unreviewed/2022/05/GHSA-f98g-j2jx-44x5/GHSA-f98g-j2jx-44x5.json @@ -7,12 +7,8 @@ "CVE-2019-5106" ], "details": "A hard-coded encryption key vulnerability exists in the authentication functionality of WAGO e!Cockpit version 1.5.1.1. An attacker with access to communications between e!Cockpit and CoDeSyS Gateway can trivially recover the password of any user attempting to log in, in plain text.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f9rg-9f28-2cxr/GHSA-f9rg-9f28-2cxr.json b/advisories/unreviewed/2022/05/GHSA-f9rg-9f28-2cxr/GHSA-f9rg-9f28-2cxr.json index 94337d01cd3..d256e0028b8 100644 --- a/advisories/unreviewed/2022/05/GHSA-f9rg-9f28-2cxr/GHSA-f9rg-9f28-2cxr.json +++ b/advisories/unreviewed/2022/05/GHSA-f9rg-9f28-2cxr/GHSA-f9rg-9f28-2cxr.json @@ -7,12 +7,8 @@ "CVE-2019-9099" ], "details": "An issue was discovered on Moxa MGate MB3170 and MB3270 devices before 4.1, MB3280 and MB3480 devices before 3.1, MB3660 devices before 2.3, and MB3180 devices before 2.1. A Buffer overflow in the built-in web server allows remote attackers to initiate DoS, and probably to execute arbitrary code (issue 1 of 2).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f9xp-8xgg-pq48/GHSA-f9xp-8xgg-pq48.json b/advisories/unreviewed/2022/05/GHSA-f9xp-8xgg-pq48/GHSA-f9xp-8xgg-pq48.json index a52129998d3..de307f06c64 100644 --- a/advisories/unreviewed/2022/05/GHSA-f9xp-8xgg-pq48/GHSA-f9xp-8xgg-pq48.json +++ b/advisories/unreviewed/2022/05/GHSA-f9xp-8xgg-pq48/GHSA-f9xp-8xgg-pq48.json @@ -7,12 +7,8 @@ "CVE-2018-8877" ], "details": "Information disclosure in Asuswrt-Merlin firmware for ASUS devices older than 384.4 and ASUS firmware before 3.0.0.4.382.50470 for devices allows remote attackers to acquire information on internal network IP address ranges by reading the new_lan_ip variable on the error_page.htm page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fc4r-w956-8rc6/GHSA-fc4r-w956-8rc6.json b/advisories/unreviewed/2022/05/GHSA-fc4r-w956-8rc6/GHSA-fc4r-w956-8rc6.json index 51c40725f51..7a34e71caa0 100644 --- a/advisories/unreviewed/2022/05/GHSA-fc4r-w956-8rc6/GHSA-fc4r-w956-8rc6.json +++ b/advisories/unreviewed/2022/05/GHSA-fc4r-w956-8rc6/GHSA-fc4r-w956-8rc6.json @@ -7,12 +7,8 @@ "CVE-2018-14384" ], "details": "The Website Manager module in SEO Panel 3.13.0 and earlier is affected by a stored Cross-Site Scripting (XSS) vulnerability, allowing remote authenticated attackers to inject arbitrary web script or HTML via the websites.php name parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ff36-9fww-2r59/GHSA-ff36-9fww-2r59.json b/advisories/unreviewed/2022/05/GHSA-ff36-9fww-2r59/GHSA-ff36-9fww-2r59.json index d17d67e6469..4ff2d135265 100644 --- a/advisories/unreviewed/2022/05/GHSA-ff36-9fww-2r59/GHSA-ff36-9fww-2r59.json +++ b/advisories/unreviewed/2022/05/GHSA-ff36-9fww-2r59/GHSA-ff36-9fww-2r59.json @@ -7,12 +7,8 @@ "CVE-2020-3835" ], "details": "A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Catalina 10.15.3. A malicious application may be able to access restricted files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ff7w-x79r-f4xr/GHSA-ff7w-x79r-f4xr.json b/advisories/unreviewed/2022/05/GHSA-ff7w-x79r-f4xr/GHSA-ff7w-x79r-f4xr.json index 15577bfd69c..bc4fe7cf569 100644 --- a/advisories/unreviewed/2022/05/GHSA-ff7w-x79r-f4xr/GHSA-ff7w-x79r-f4xr.json +++ b/advisories/unreviewed/2022/05/GHSA-ff7w-x79r-f4xr/GHSA-ff7w-x79r-f4xr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fg5q-wrph-3qf4/GHSA-fg5q-wrph-3qf4.json b/advisories/unreviewed/2022/05/GHSA-fg5q-wrph-3qf4/GHSA-fg5q-wrph-3qf4.json index ddb777fd4da..d2c6a434c6b 100644 --- a/advisories/unreviewed/2022/05/GHSA-fg5q-wrph-3qf4/GHSA-fg5q-wrph-3qf4.json +++ b/advisories/unreviewed/2022/05/GHSA-fg5q-wrph-3qf4/GHSA-fg5q-wrph-3qf4.json @@ -7,12 +7,8 @@ "CVE-2020-9477" ], "details": "An issue was discovered on HUMAX HGA12R-02 BRGCAA 1.1.53 devices. A vulnerability in the authentication functionality in the web-based interface could allow an unauthenticated remote attacker to capture packets at the time of authentication and gain access to the cleartext password. An attacker could use this access to create a new user account or control the device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fgj4-2vhm-6cjx/GHSA-fgj4-2vhm-6cjx.json b/advisories/unreviewed/2022/05/GHSA-fgj4-2vhm-6cjx/GHSA-fgj4-2vhm-6cjx.json index 35f334559d4..cc90f5e2293 100644 --- a/advisories/unreviewed/2022/05/GHSA-fgj4-2vhm-6cjx/GHSA-fgj4-2vhm-6cjx.json +++ b/advisories/unreviewed/2022/05/GHSA-fgj4-2vhm-6cjx/GHSA-fgj4-2vhm-6cjx.json @@ -7,12 +7,8 @@ "CVE-2020-0056" ], "details": "In btu_hcif_connection_comp_evt of btu_hcif.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-141619686", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fj2w-2856-965h/GHSA-fj2w-2856-965h.json b/advisories/unreviewed/2022/05/GHSA-fj2w-2856-965h/GHSA-fj2w-2856-965h.json index b313b465ab5..cd0a6260da8 100644 --- a/advisories/unreviewed/2022/05/GHSA-fj2w-2856-965h/GHSA-fj2w-2856-965h.json +++ b/advisories/unreviewed/2022/05/GHSA-fj2w-2856-965h/GHSA-fj2w-2856-965h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fp99-97qf-cjjf/GHSA-fp99-97qf-cjjf.json b/advisories/unreviewed/2022/05/GHSA-fp99-97qf-cjjf/GHSA-fp99-97qf-cjjf.json index 2da8d132b8f..f0e186bbc45 100644 --- a/advisories/unreviewed/2022/05/GHSA-fp99-97qf-cjjf/GHSA-fp99-97qf-cjjf.json +++ b/advisories/unreviewed/2022/05/GHSA-fp99-97qf-cjjf/GHSA-fp99-97qf-cjjf.json @@ -7,12 +7,8 @@ "CVE-2020-6971" ], "details": "In Emerson ValveLink v12.0.264 to v13.4.118, a vulnerability in the ValveLink software may allow a local, unprivileged, trusted insider to escalate privileges due to insecure configuration parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fp9w-wxwp-jp2c/GHSA-fp9w-wxwp-jp2c.json b/advisories/unreviewed/2022/05/GHSA-fp9w-wxwp-jp2c/GHSA-fp9w-wxwp-jp2c.json index b1879c03e7d..8d1d1fe7ba8 100644 --- a/advisories/unreviewed/2022/05/GHSA-fp9w-wxwp-jp2c/GHSA-fp9w-wxwp-jp2c.json +++ b/advisories/unreviewed/2022/05/GHSA-fp9w-wxwp-jp2c/GHSA-fp9w-wxwp-jp2c.json @@ -7,12 +7,8 @@ "CVE-2020-9018" ], "details": "LiteCart through 2.2.1 allows admin/?app=users&doc=edit_user CSRF to add a user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fq9g-vccc-q7c7/GHSA-fq9g-vccc-q7c7.json b/advisories/unreviewed/2022/05/GHSA-fq9g-vccc-q7c7/GHSA-fq9g-vccc-q7c7.json index ebf92cc6a3b..e73672715d6 100644 --- a/advisories/unreviewed/2022/05/GHSA-fq9g-vccc-q7c7/GHSA-fq9g-vccc-q7c7.json +++ b/advisories/unreviewed/2022/05/GHSA-fq9g-vccc-q7c7/GHSA-fq9g-vccc-q7c7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fr38-j2q5-r3j5/GHSA-fr38-j2q5-r3j5.json b/advisories/unreviewed/2022/05/GHSA-fr38-j2q5-r3j5/GHSA-fr38-j2q5-r3j5.json index 308700c443f..ad31c8cb983 100644 --- a/advisories/unreviewed/2022/05/GHSA-fr38-j2q5-r3j5/GHSA-fr38-j2q5-r3j5.json +++ b/advisories/unreviewed/2022/05/GHSA-fr38-j2q5-r3j5/GHSA-fr38-j2q5-r3j5.json @@ -7,12 +7,8 @@ "CVE-2020-10193" ], "details": "ESET Archive Support Module before 1294 allows virus-detection bypass via crafted RAR Compression Information in an archive. This affects versions before 1294 of Smart Security Premium, Internet Security, NOD32 Antivirus, Cyber Security Pro (macOS), Cyber Security (macOS), Mobile Security for Android, Smart TV Security, and NOD32 Antivirus 4 for Linux Desktop.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fr8m-m3qx-84vr/GHSA-fr8m-m3qx-84vr.json b/advisories/unreviewed/2022/05/GHSA-fr8m-m3qx-84vr/GHSA-fr8m-m3qx-84vr.json index 256ebf1d2c4..a8954079b46 100644 --- a/advisories/unreviewed/2022/05/GHSA-fr8m-m3qx-84vr/GHSA-fr8m-m3qx-84vr.json +++ b/advisories/unreviewed/2022/05/GHSA-fr8m-m3qx-84vr/GHSA-fr8m-m3qx-84vr.json @@ -7,12 +7,8 @@ "CVE-2020-0038" ], "details": "In rw_i93_sm_update_ndef of rw_i93.cc, there is a possible read of uninitialized data due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-143109193", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fv67-43fc-pmc9/GHSA-fv67-43fc-pmc9.json b/advisories/unreviewed/2022/05/GHSA-fv67-43fc-pmc9/GHSA-fv67-43fc-pmc9.json index 62bfede9045..7043531ade4 100644 --- a/advisories/unreviewed/2022/05/GHSA-fv67-43fc-pmc9/GHSA-fv67-43fc-pmc9.json +++ b/advisories/unreviewed/2022/05/GHSA-fv67-43fc-pmc9/GHSA-fv67-43fc-pmc9.json @@ -7,12 +7,8 @@ "CVE-2020-10250" ], "details": "BWA DiREX-Pro 1.2181 devices allow remote attackers to execute arbitrary OS commands via shell metacharacters in the PKG parameter to uninstall.php3.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fwhf-m439-4q37/GHSA-fwhf-m439-4q37.json b/advisories/unreviewed/2022/05/GHSA-fwhf-m439-4q37/GHSA-fwhf-m439-4q37.json index 217bb62004e..4dfe230137f 100644 --- a/advisories/unreviewed/2022/05/GHSA-fwhf-m439-4q37/GHSA-fwhf-m439-4q37.json +++ b/advisories/unreviewed/2022/05/GHSA-fwhf-m439-4q37/GHSA-fwhf-m439-4q37.json @@ -7,12 +7,8 @@ "CVE-2020-9531" ], "details": "An issue was discovered on Xiaomi MIUI V11.0.5.0.QFAEUXM devices. In the Web resources of GetApps(com.xiaomi.mipicks), the parameters passed in are read and executed. After reading the resource files, relevant components open the link of the incoming URL. Although the URL is safe and can pass security detection, the data carried in the parameters are loaded and executed. An attacker can use NFC tools to get close enough to a user's unlocked phone to cause apps to be installed and information to be leaked. This is fixed on version: 2001122.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g23p-pfjq-33rc/GHSA-g23p-pfjq-33rc.json b/advisories/unreviewed/2022/05/GHSA-g23p-pfjq-33rc/GHSA-g23p-pfjq-33rc.json index 690f7947b8c..59fb54113e1 100644 --- a/advisories/unreviewed/2022/05/GHSA-g23p-pfjq-33rc/GHSA-g23p-pfjq-33rc.json +++ b/advisories/unreviewed/2022/05/GHSA-g23p-pfjq-33rc/GHSA-g23p-pfjq-33rc.json @@ -7,12 +7,8 @@ "CVE-2019-5149" ], "details": "The WBM web application on firmwares prior to 03.02.02 and 03.01.07 on the WAGO PFC100 and PFC2000, respectively, runs on a lighttpd web server and makes use of the FastCGI module, which is intended to provide high performance for all Internet applications without the penalties of Web server APIs. However, the default configuration of this module appears to limit the number of concurrent php-cgi processes to two, which can be abused to cause a denial of service of the entire web server. This affects WAGO PFC200 Firmware version 03.00.39(12) and version 03.01.07(13), and WAGO PFC100 Firmware version 03.00.39(12) and version 03.02.02(14).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g25m-mg72-9v2w/GHSA-g25m-mg72-9v2w.json b/advisories/unreviewed/2022/05/GHSA-g25m-mg72-9v2w/GHSA-g25m-mg72-9v2w.json index 336798f0217..2f1f8df1f95 100644 --- a/advisories/unreviewed/2022/05/GHSA-g25m-mg72-9v2w/GHSA-g25m-mg72-9v2w.json +++ b/advisories/unreviewed/2022/05/GHSA-g25m-mg72-9v2w/GHSA-g25m-mg72-9v2w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g273-hx3q-rm8g/GHSA-g273-hx3q-rm8g.json b/advisories/unreviewed/2022/05/GHSA-g273-hx3q-rm8g/GHSA-g273-hx3q-rm8g.json index 2641d06bdf8..6ae60819c30 100644 --- a/advisories/unreviewed/2022/05/GHSA-g273-hx3q-rm8g/GHSA-g273-hx3q-rm8g.json +++ b/advisories/unreviewed/2022/05/GHSA-g273-hx3q-rm8g/GHSA-g273-hx3q-rm8g.json @@ -7,12 +7,8 @@ "CVE-2020-6864" ], "details": "ZTE E8820V3 router product is impacted by an information leak vulnerability. Attackers could use this vulnerability to to gain wireless passwords. After obtaining the wireless password, the attacker could collect information and attack the router.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g3rc-3g7j-g4vg/GHSA-g3rc-3g7j-g4vg.json b/advisories/unreviewed/2022/05/GHSA-g3rc-3g7j-g4vg/GHSA-g3rc-3g7j-g4vg.json index 61fd63dcbb2..2156e7cc132 100644 --- a/advisories/unreviewed/2022/05/GHSA-g3rc-3g7j-g4vg/GHSA-g3rc-3g7j-g4vg.json +++ b/advisories/unreviewed/2022/05/GHSA-g3rc-3g7j-g4vg/GHSA-g3rc-3g7j-g4vg.json @@ -7,12 +7,8 @@ "CVE-2020-0063" ], "details": "In SurfaceFlinger, it is possible to override UI confirmation screen protected by the TEE. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-143128911", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g45q-xh8v-2xr4/GHSA-g45q-xh8v-2xr4.json b/advisories/unreviewed/2022/05/GHSA-g45q-xh8v-2xr4/GHSA-g45q-xh8v-2xr4.json index bde2d03f757..9b9f2192f2e 100644 --- a/advisories/unreviewed/2022/05/GHSA-g45q-xh8v-2xr4/GHSA-g45q-xh8v-2xr4.json +++ b/advisories/unreviewed/2022/05/GHSA-g45q-xh8v-2xr4/GHSA-g45q-xh8v-2xr4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g4wv-rqvc-h4jp/GHSA-g4wv-rqvc-h4jp.json b/advisories/unreviewed/2022/05/GHSA-g4wv-rqvc-h4jp/GHSA-g4wv-rqvc-h4jp.json index a91d253b3d6..1e2e9c30cdc 100644 --- a/advisories/unreviewed/2022/05/GHSA-g4wv-rqvc-h4jp/GHSA-g4wv-rqvc-h4jp.json +++ b/advisories/unreviewed/2022/05/GHSA-g4wv-rqvc-h4jp/GHSA-g4wv-rqvc-h4jp.json @@ -7,12 +7,8 @@ "CVE-2019-12443" ], "details": "An issue was discovered in GitLab Community and Enterprise Edition 10.2 through 11.11. Multiple features contained Server-Side Request Forgery (SSRF) vulnerabilities caused by an insufficient validation to prevent DNS rebinding attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g5hr-56gw-qv92/GHSA-g5hr-56gw-qv92.json b/advisories/unreviewed/2022/05/GHSA-g5hr-56gw-qv92/GHSA-g5hr-56gw-qv92.json index e3ebe48cb73..5fd6872859b 100644 --- a/advisories/unreviewed/2022/05/GHSA-g5hr-56gw-qv92/GHSA-g5hr-56gw-qv92.json +++ b/advisories/unreviewed/2022/05/GHSA-g5hr-56gw-qv92/GHSA-g5hr-56gw-qv92.json @@ -7,12 +7,8 @@ "CVE-2020-3857" ], "details": "A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, macOS Catalina 10.15.3, tvOS 13.3.1, watchOS 6.1.2. An application may be able to execute arbitrary code with system privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g9vg-v2c4-24j4/GHSA-g9vg-v2c4-24j4.json b/advisories/unreviewed/2022/05/GHSA-g9vg-v2c4-24j4/GHSA-g9vg-v2c4-24j4.json index 5c4ad6153bc..144eace0d6f 100644 --- a/advisories/unreviewed/2022/05/GHSA-g9vg-v2c4-24j4/GHSA-g9vg-v2c4-24j4.json +++ b/advisories/unreviewed/2022/05/GHSA-g9vg-v2c4-24j4/GHSA-g9vg-v2c4-24j4.json @@ -7,12 +7,8 @@ "CVE-2019-12183" ], "details": "Incorrect Access Control in Safescan Timemoto TM-616 and TA-8000 series allows remote attackers to read any file via the administrative API.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gffh-9h9q-xv2h/GHSA-gffh-9h9q-xv2h.json b/advisories/unreviewed/2022/05/GHSA-gffh-9h9q-xv2h/GHSA-gffh-9h9q-xv2h.json index ead39d6412d..4b73df8612d 100644 --- a/advisories/unreviewed/2022/05/GHSA-gffh-9h9q-xv2h/GHSA-gffh-9h9q-xv2h.json +++ b/advisories/unreviewed/2022/05/GHSA-gffh-9h9q-xv2h/GHSA-gffh-9h9q-xv2h.json @@ -7,12 +7,8 @@ "CVE-2016-11020" ], "details": "Kunena before 5.0.4 does not restrict avatar file extensions to gif, jpeg, jpg, and png. This can lead to XSS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gfgf-64cp-gxh7/GHSA-gfgf-64cp-gxh7.json b/advisories/unreviewed/2022/05/GHSA-gfgf-64cp-gxh7/GHSA-gfgf-64cp-gxh7.json index bdac8a6aad3..244d7631488 100644 --- a/advisories/unreviewed/2022/05/GHSA-gfgf-64cp-gxh7/GHSA-gfgf-64cp-gxh7.json +++ b/advisories/unreviewed/2022/05/GHSA-gfgf-64cp-gxh7/GHSA-gfgf-64cp-gxh7.json @@ -7,12 +7,8 @@ "CVE-2020-9044" ], "details": "XXE vulnerability exists in the Metasys family of product Web Services which has the potential to facilitate DoS attacks or harvesting of ASCII server files. This affects Johnson Controls' Metasys Application and Data Server (ADS, ADS-Lite) versions 10.1 and prior; Metasys Extended Application and Data Server (ADX) versions 10.1 and prior; Metasys Open Data Server (ODS) versions 10.1 and prior; Metasys Open Application Server (OAS) version 10.1; Metasys Network Automation Engine (NAE55 only) versions 9.0.1, 9.0.2, 9.0.3, 9.0.5, 9.0.6; Metasys Network Integration Engine (NIE55/NIE59) versions 9.0.1, 9.0.2, 9.0.3, 9.0.5, 9.0.6; Metasys NAE85 and NIE85 versions 10.1 and prior; Metasys LonWorks Control Server (LCS) versions 10.1 and prior; Metasys System Configuration Tool (SCT) versions 13.2 and prior; Metasys Smoke Control Network Automation Engine (NAE55, UL 864 UUKL/ORD-C100-13 UUKLC 10th Edition Listed) version 8.1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gg44-7cm8-6gv3/GHSA-gg44-7cm8-6gv3.json b/advisories/unreviewed/2022/05/GHSA-gg44-7cm8-6gv3/GHSA-gg44-7cm8-6gv3.json index 261ceca16a6..37f586e6937 100644 --- a/advisories/unreviewed/2022/05/GHSA-gg44-7cm8-6gv3/GHSA-gg44-7cm8-6gv3.json +++ b/advisories/unreviewed/2022/05/GHSA-gg44-7cm8-6gv3/GHSA-gg44-7cm8-6gv3.json @@ -7,12 +7,8 @@ "CVE-2020-3845" ], "details": "A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Catalina 10.15.3. An application may be able to execute arbitrary code with system privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ghwx-pgfr-72jw/GHSA-ghwx-pgfr-72jw.json b/advisories/unreviewed/2022/05/GHSA-ghwx-pgfr-72jw/GHSA-ghwx-pgfr-72jw.json index 2c5cdf494ba..b874f2f6b26 100644 --- a/advisories/unreviewed/2022/05/GHSA-ghwx-pgfr-72jw/GHSA-ghwx-pgfr-72jw.json +++ b/advisories/unreviewed/2022/05/GHSA-ghwx-pgfr-72jw/GHSA-ghwx-pgfr-72jw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gj3x-586x-w7gm/GHSA-gj3x-586x-w7gm.json b/advisories/unreviewed/2022/05/GHSA-gj3x-586x-w7gm/GHSA-gj3x-586x-w7gm.json index 402fc22617b..1cf536a7f98 100644 --- a/advisories/unreviewed/2022/05/GHSA-gj3x-586x-w7gm/GHSA-gj3x-586x-w7gm.json +++ b/advisories/unreviewed/2022/05/GHSA-gj3x-586x-w7gm/GHSA-gj3x-586x-w7gm.json @@ -7,12 +7,8 @@ "CVE-2020-7041" ], "details": "An issue was discovered in openfortivpn 1.11.0 when used with OpenSSL 1.0.2 or later. tunnel.c mishandles certificate validation because an X509_check_host negative error code is interpreted as a successful return value.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gjfq-q65w-382h/GHSA-gjfq-q65w-382h.json b/advisories/unreviewed/2022/05/GHSA-gjfq-q65w-382h/GHSA-gjfq-q65w-382h.json index 35fb780ee6e..406bbed6930 100644 --- a/advisories/unreviewed/2022/05/GHSA-gjfq-q65w-382h/GHSA-gjfq-q65w-382h.json +++ b/advisories/unreviewed/2022/05/GHSA-gjfq-q65w-382h/GHSA-gjfq-q65w-382h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gmf4-rxmx-v3cp/GHSA-gmf4-rxmx-v3cp.json b/advisories/unreviewed/2022/05/GHSA-gmf4-rxmx-v3cp/GHSA-gmf4-rxmx-v3cp.json index 6c17257fce0..4bc9af99f1e 100644 --- a/advisories/unreviewed/2022/05/GHSA-gmf4-rxmx-v3cp/GHSA-gmf4-rxmx-v3cp.json +++ b/advisories/unreviewed/2022/05/GHSA-gmf4-rxmx-v3cp/GHSA-gmf4-rxmx-v3cp.json @@ -7,12 +7,8 @@ "CVE-2015-7339" ], "details": "JCE Joomla Component 2.5.0 to 2.5.2 allows arbitrary file upload via a .php file extension for an image file to the /com_jce/editor/libraries/classes/browser.php script.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gmqm-wgp3-r69q/GHSA-gmqm-wgp3-r69q.json b/advisories/unreviewed/2022/05/GHSA-gmqm-wgp3-r69q/GHSA-gmqm-wgp3-r69q.json index fb9da4522cd..36de986328d 100644 --- a/advisories/unreviewed/2022/05/GHSA-gmqm-wgp3-r69q/GHSA-gmqm-wgp3-r69q.json +++ b/advisories/unreviewed/2022/05/GHSA-gmqm-wgp3-r69q/GHSA-gmqm-wgp3-r69q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gpxf-jmjf-rr7p/GHSA-gpxf-jmjf-rr7p.json b/advisories/unreviewed/2022/05/GHSA-gpxf-jmjf-rr7p/GHSA-gpxf-jmjf-rr7p.json index 484267fb29f..d84463bf33f 100644 --- a/advisories/unreviewed/2022/05/GHSA-gpxf-jmjf-rr7p/GHSA-gpxf-jmjf-rr7p.json +++ b/advisories/unreviewed/2022/05/GHSA-gpxf-jmjf-rr7p/GHSA-gpxf-jmjf-rr7p.json @@ -7,12 +7,8 @@ "CVE-2019-12433" ], "details": "An issue was discovered in GitLab Community and Enterprise Edition 11.7 through 11.11. It has Improper Input Validation. Restricted visibility settings allow creating internal projects in private groups, leading to multiple permission issues.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gq46-88q9-g4c6/GHSA-gq46-88q9-g4c6.json b/advisories/unreviewed/2022/05/GHSA-gq46-88q9-g4c6/GHSA-gq46-88q9-g4c6.json index 078bbd7e7b0..4a5faeb3177 100644 --- a/advisories/unreviewed/2022/05/GHSA-gq46-88q9-g4c6/GHSA-gq46-88q9-g4c6.json +++ b/advisories/unreviewed/2022/05/GHSA-gq46-88q9-g4c6/GHSA-gq46-88q9-g4c6.json @@ -7,12 +7,8 @@ "CVE-2018-15820" ], "details": "EasyIO EasyIO-30P devices before 2.0.5.27 allow XSS via the dev.htm GDN parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gqgc-jgf2-j2gr/GHSA-gqgc-jgf2-j2gr.json b/advisories/unreviewed/2022/05/GHSA-gqgc-jgf2-j2gr/GHSA-gqgc-jgf2-j2gr.json index c67c7a03ef5..bdef74894be 100644 --- a/advisories/unreviewed/2022/05/GHSA-gqgc-jgf2-j2gr/GHSA-gqgc-jgf2-j2gr.json +++ b/advisories/unreviewed/2022/05/GHSA-gqgc-jgf2-j2gr/GHSA-gqgc-jgf2-j2gr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gr3m-wrg7-rj7p/GHSA-gr3m-wrg7-rj7p.json b/advisories/unreviewed/2022/05/GHSA-gr3m-wrg7-rj7p/GHSA-gr3m-wrg7-rj7p.json index 07df20cbc59..028060e3021 100644 --- a/advisories/unreviewed/2022/05/GHSA-gr3m-wrg7-rj7p/GHSA-gr3m-wrg7-rj7p.json +++ b/advisories/unreviewed/2022/05/GHSA-gr3m-wrg7-rj7p/GHSA-gr3m-wrg7-rj7p.json @@ -7,12 +7,8 @@ "CVE-2020-3825" ], "details": "Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, tvOS 13.3.1, Safari 13.0.5, iTunes for Windows 12.10.4, iCloud for Windows 11.0, iCloud for Windows 7.17. Processing maliciously crafted web content may lead to arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gv23-rrw9-jxh8/GHSA-gv23-rrw9-jxh8.json b/advisories/unreviewed/2022/05/GHSA-gv23-rrw9-jxh8/GHSA-gv23-rrw9-jxh8.json index a0d67ae1e1a..48cf3b1c38f 100644 --- a/advisories/unreviewed/2022/05/GHSA-gv23-rrw9-jxh8/GHSA-gv23-rrw9-jxh8.json +++ b/advisories/unreviewed/2022/05/GHSA-gv23-rrw9-jxh8/GHSA-gv23-rrw9-jxh8.json @@ -7,12 +7,8 @@ "CVE-2019-10554" ], "details": "Multiple Read overflows issue due to improper length check while decoding Identity Request in CSdomain/Authentication Reject in CS domain/ PRAU accept/while logging DL message in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8017, APQ8053, APQ8096, APQ8096AU, APQ8098, MDM9150, MDM9205, MDM9206, MDM9607, MDM9615, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8939, MSM8940, MSM8953, MSM8996AU, MSM8998, Nicobar, QCM2150, QCS605, QM215, Rennell, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gvj3-42m2-8xqw/GHSA-gvj3-42m2-8xqw.json b/advisories/unreviewed/2022/05/GHSA-gvj3-42m2-8xqw/GHSA-gvj3-42m2-8xqw.json index 243f7b0e7e1..e7be7014937 100644 --- a/advisories/unreviewed/2022/05/GHSA-gvj3-42m2-8xqw/GHSA-gvj3-42m2-8xqw.json +++ b/advisories/unreviewed/2022/05/GHSA-gvj3-42m2-8xqw/GHSA-gvj3-42m2-8xqw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gw3x-gpwc-g528/GHSA-gw3x-gpwc-g528.json b/advisories/unreviewed/2022/05/GHSA-gw3x-gpwc-g528/GHSA-gw3x-gpwc-g528.json index b4237a81617..b51b05e9f7a 100644 --- a/advisories/unreviewed/2022/05/GHSA-gw3x-gpwc-g528/GHSA-gw3x-gpwc-g528.json +++ b/advisories/unreviewed/2022/05/GHSA-gw3x-gpwc-g528/GHSA-gw3x-gpwc-g528.json @@ -7,12 +7,8 @@ "CVE-2019-13003" ], "details": "An issue was discovered in GitLab Community and Enterprise Edition before 12.0.3. One of the parsers used by Gilab CI was vulnerable to a resource exhaustion attack. It allows Uncontrolled Resource Consumption.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gw5f-59p9-rrpc/GHSA-gw5f-59p9-rrpc.json b/advisories/unreviewed/2022/05/GHSA-gw5f-59p9-rrpc/GHSA-gw5f-59p9-rrpc.json index c298cda67cc..3f02a167fc5 100644 --- a/advisories/unreviewed/2022/05/GHSA-gw5f-59p9-rrpc/GHSA-gw5f-59p9-rrpc.json +++ b/advisories/unreviewed/2022/05/GHSA-gw5f-59p9-rrpc/GHSA-gw5f-59p9-rrpc.json @@ -7,12 +7,8 @@ "CVE-2020-0031" ], "details": "In triggerAugmentedAutofillLocked and related functions of Session.java, it is possible for Augmented Autofill to display sensitive information to the user inappropriately. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-141703197", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gw5h-q2x4-wff3/GHSA-gw5h-q2x4-wff3.json b/advisories/unreviewed/2022/05/GHSA-gw5h-q2x4-wff3/GHSA-gw5h-q2x4-wff3.json index dfe14ece22f..9b36bbd4710 100644 --- a/advisories/unreviewed/2022/05/GHSA-gw5h-q2x4-wff3/GHSA-gw5h-q2x4-wff3.json +++ b/advisories/unreviewed/2022/05/GHSA-gw5h-q2x4-wff3/GHSA-gw5h-q2x4-wff3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gx87-4m2g-vcf2/GHSA-gx87-4m2g-vcf2.json b/advisories/unreviewed/2022/05/GHSA-gx87-4m2g-vcf2/GHSA-gx87-4m2g-vcf2.json index f9539a520b1..5e01416faca 100644 --- a/advisories/unreviewed/2022/05/GHSA-gx87-4m2g-vcf2/GHSA-gx87-4m2g-vcf2.json +++ b/advisories/unreviewed/2022/05/GHSA-gx87-4m2g-vcf2/GHSA-gx87-4m2g-vcf2.json @@ -7,12 +7,8 @@ "CVE-2020-6801" ], "details": "Mozilla developers reported memory safety bugs present in Firefox 72. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 73.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gx8j-3gxx-r6x6/GHSA-gx8j-3gxx-r6x6.json b/advisories/unreviewed/2022/05/GHSA-gx8j-3gxx-r6x6/GHSA-gx8j-3gxx-r6x6.json index ce723073d22..0c2964b4b73 100644 --- a/advisories/unreviewed/2022/05/GHSA-gx8j-3gxx-r6x6/GHSA-gx8j-3gxx-r6x6.json +++ b/advisories/unreviewed/2022/05/GHSA-gx8j-3gxx-r6x6/GHSA-gx8j-3gxx-r6x6.json @@ -7,12 +7,8 @@ "CVE-2020-3182" ], "details": "A vulnerability in the multicast DNS (mDNS) protocol configuration of Cisco Webex Meetings Client for MacOS could allow an unauthenticated adjacent attacker to obtain sensitive information about the device on which the Webex client is running. The vulnerability exists because sensitive information is included in the mDNS reply. An attacker could exploit this vulnerability by doing an mDNS query for a particular service against an affected device. A successful exploit could allow the attacker to gain access to sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h2gj-vmvr-rvwv/GHSA-h2gj-vmvr-rvwv.json b/advisories/unreviewed/2022/05/GHSA-h2gj-vmvr-rvwv/GHSA-h2gj-vmvr-rvwv.json index 4d83073d0c7..9cbd4a926a1 100644 --- a/advisories/unreviewed/2022/05/GHSA-h2gj-vmvr-rvwv/GHSA-h2gj-vmvr-rvwv.json +++ b/advisories/unreviewed/2022/05/GHSA-h2gj-vmvr-rvwv/GHSA-h2gj-vmvr-rvwv.json @@ -7,12 +7,8 @@ "CVE-2020-10215" ], "details": "An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. They allow remote attackers to execute arbitrary commands via the dns_query_name parameter in a dns_query.cgi POST request. TRENDnet TEW-632BRP 1.010B32 is also affected.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h2w4-xw94-vcj3/GHSA-h2w4-xw94-vcj3.json b/advisories/unreviewed/2022/05/GHSA-h2w4-xw94-vcj3/GHSA-h2w4-xw94-vcj3.json index 947db12eab7..448eb07e15b 100644 --- a/advisories/unreviewed/2022/05/GHSA-h2w4-xw94-vcj3/GHSA-h2w4-xw94-vcj3.json +++ b/advisories/unreviewed/2022/05/GHSA-h2w4-xw94-vcj3/GHSA-h2w4-xw94-vcj3.json @@ -7,12 +7,8 @@ "CVE-2019-13121" ], "details": "An issue was discovered in GitLab Enterprise Edition 10.6 through 12.0.2. The GitHub project integration was vulnerable to an SSRF vulnerability which allowed an attacker to make requests to local network resources. It has Incorrect Access Control.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h485-jr3p-6h83/GHSA-h485-jr3p-6h83.json b/advisories/unreviewed/2022/05/GHSA-h485-jr3p-6h83/GHSA-h485-jr3p-6h83.json index 273efb95440..792bba35189 100644 --- a/advisories/unreviewed/2022/05/GHSA-h485-jr3p-6h83/GHSA-h485-jr3p-6h83.json +++ b/advisories/unreviewed/2022/05/GHSA-h485-jr3p-6h83/GHSA-h485-jr3p-6h83.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h5g4-pg5p-f88v/GHSA-h5g4-pg5p-f88v.json b/advisories/unreviewed/2022/05/GHSA-h5g4-pg5p-f88v/GHSA-h5g4-pg5p-f88v.json index 6f352d79d57..857615dbe91 100644 --- a/advisories/unreviewed/2022/05/GHSA-h5g4-pg5p-f88v/GHSA-h5g4-pg5p-f88v.json +++ b/advisories/unreviewed/2022/05/GHSA-h5g4-pg5p-f88v/GHSA-h5g4-pg5p-f88v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h5g9-527f-9gp8/GHSA-h5g9-527f-9gp8.json b/advisories/unreviewed/2022/05/GHSA-h5g9-527f-9gp8/GHSA-h5g9-527f-9gp8.json index 2ebf81aaa3a..89688ed83e2 100644 --- a/advisories/unreviewed/2022/05/GHSA-h5g9-527f-9gp8/GHSA-h5g9-527f-9gp8.json +++ b/advisories/unreviewed/2022/05/GHSA-h5g9-527f-9gp8/GHSA-h5g9-527f-9gp8.json @@ -7,12 +7,8 @@ "CVE-2019-14061" ], "details": "Null-pointer dereference can occur while accessing the segment element info when it is not allocated and assigned in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8017, APQ8053, APQ8064, APQ8096AU, APQ8098, MDM9206, MDM9207C, MDM9607, MSM8905, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8939, MSM8940, MSM8953, MSM8996, MSM8996AU, Nicobar, QCS405, QCS605, QM215, Rennell, Saipan, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDX20, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h5p7-cpc2-2j2r/GHSA-h5p7-cpc2-2j2r.json b/advisories/unreviewed/2022/05/GHSA-h5p7-cpc2-2j2r/GHSA-h5p7-cpc2-2j2r.json index cede29ce2c3..277052d9a22 100644 --- a/advisories/unreviewed/2022/05/GHSA-h5p7-cpc2-2j2r/GHSA-h5p7-cpc2-2j2r.json +++ b/advisories/unreviewed/2022/05/GHSA-h5p7-cpc2-2j2r/GHSA-h5p7-cpc2-2j2r.json @@ -7,12 +7,8 @@ "CVE-2019-10064" ], "details": "hostapd before 2.6, in EAP mode, makes calls to the rand() and random() standard library functions without any preceding srand() or srandom() call, which results in inappropriate use of deterministic values. This was fixed in conjunction with CVE-2016-10743.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h6gj-jhrr-g634/GHSA-h6gj-jhrr-g634.json b/advisories/unreviewed/2022/05/GHSA-h6gj-jhrr-g634/GHSA-h6gj-jhrr-g634.json index 41737dddc24..3a256babd84 100644 --- a/advisories/unreviewed/2022/05/GHSA-h6gj-jhrr-g634/GHSA-h6gj-jhrr-g634.json +++ b/advisories/unreviewed/2022/05/GHSA-h6gj-jhrr-g634/GHSA-h6gj-jhrr-g634.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h93x-rrp4-r26c/GHSA-h93x-rrp4-r26c.json b/advisories/unreviewed/2022/05/GHSA-h93x-rrp4-r26c/GHSA-h93x-rrp4-r26c.json index 8e3030805a9..700da543c3b 100644 --- a/advisories/unreviewed/2022/05/GHSA-h93x-rrp4-r26c/GHSA-h93x-rrp4-r26c.json +++ b/advisories/unreviewed/2022/05/GHSA-h93x-rrp4-r26c/GHSA-h93x-rrp4-r26c.json @@ -7,12 +7,8 @@ "CVE-2019-13001" ], "details": "An issue was discovered in GitLab Community and Enterprise Edition 11.9 and later through 12.0.2. GitLab Snippets were vulnerable to an authorization issue that allowed unauthorized users to add comments to a private snippet. It allows authentication bypass.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h98j-87f6-38m2/GHSA-h98j-87f6-38m2.json b/advisories/unreviewed/2022/05/GHSA-h98j-87f6-38m2/GHSA-h98j-87f6-38m2.json index 8fb8bcc40cb..ed7f2b8aad5 100644 --- a/advisories/unreviewed/2022/05/GHSA-h98j-87f6-38m2/GHSA-h98j-87f6-38m2.json +++ b/advisories/unreviewed/2022/05/GHSA-h98j-87f6-38m2/GHSA-h98j-87f6-38m2.json @@ -7,12 +7,8 @@ "CVE-2020-8634" ], "details": "Wing FTP Server v6.2.3 for Linux, macOS, and Solaris sets insecure permissions on files modified within the HTTP file management interface, resulting in files being saved with world-readable and world-writable permissions. If a sensitive system file were edited this way, a low-privilege user may escalate privileges to root.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hf77-c8vc-7pmp/GHSA-hf77-c8vc-7pmp.json b/advisories/unreviewed/2022/05/GHSA-hf77-c8vc-7pmp/GHSA-hf77-c8vc-7pmp.json index e4be039d326..348bc578b49 100644 --- a/advisories/unreviewed/2022/05/GHSA-hf77-c8vc-7pmp/GHSA-hf77-c8vc-7pmp.json +++ b/advisories/unreviewed/2022/05/GHSA-hf77-c8vc-7pmp/GHSA-hf77-c8vc-7pmp.json @@ -7,12 +7,8 @@ "CVE-2020-9008" ], "details": "Stored Cross-site scripting (XSS) vulnerability in Blackboard Learn/PeopleTool v9.1 allows users to inject arbitrary web script via the Tile widget in the People Tool profile editor.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hfw3-rm2f-q8qh/GHSA-hfw3-rm2f-q8qh.json b/advisories/unreviewed/2022/05/GHSA-hfw3-rm2f-q8qh/GHSA-hfw3-rm2f-q8qh.json index 9377f5430ae..ab9605bbe4c 100644 --- a/advisories/unreviewed/2022/05/GHSA-hfw3-rm2f-q8qh/GHSA-hfw3-rm2f-q8qh.json +++ b/advisories/unreviewed/2022/05/GHSA-hfw3-rm2f-q8qh/GHSA-hfw3-rm2f-q8qh.json @@ -7,12 +7,8 @@ "CVE-2020-5342" ], "details": "Dell Digital Delivery versions prior to 3.5.2015 contain an incorrect default permissions vulnerability. A locally authenticated low-privileged malicious user could exploit this vulnerability to run an arbitrary executable with administrative privileges on the affected system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hg2c-v89x-vqw7/GHSA-hg2c-v89x-vqw7.json b/advisories/unreviewed/2022/05/GHSA-hg2c-v89x-vqw7/GHSA-hg2c-v89x-vqw7.json index bbe5e626474..dd393cbade9 100644 --- a/advisories/unreviewed/2022/05/GHSA-hg2c-v89x-vqw7/GHSA-hg2c-v89x-vqw7.json +++ b/advisories/unreviewed/2022/05/GHSA-hg2c-v89x-vqw7/GHSA-hg2c-v89x-vqw7.json @@ -7,12 +7,8 @@ "CVE-2019-5157" ], "details": "An exploitable command injection vulnerability exists in the Cloud Connectivity functionality of WAGO PFC200 Firmware versions 03.02.02(14), 03.01.07(13), and 03.00.39(12). An attacker can inject OS commands into the TimeoutUnconfirmed parameter value contained in the Firmware Update command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hgx7-g7w4-8845/GHSA-hgx7-g7w4-8845.json b/advisories/unreviewed/2022/05/GHSA-hgx7-g7w4-8845/GHSA-hgx7-g7w4-8845.json index 9109f1d0dd6..08a58dd3bbd 100644 --- a/advisories/unreviewed/2022/05/GHSA-hgx7-g7w4-8845/GHSA-hgx7-g7w4-8845.json +++ b/advisories/unreviewed/2022/05/GHSA-hgx7-g7w4-8845/GHSA-hgx7-g7w4-8845.json @@ -7,12 +7,8 @@ "CVE-2020-10192" ], "details": "An issue was discovered in Munkireport before 5.3.0.3923. An unauthenticated actor can send a custom XSS payload through the /report/broken_client endpoint. The payload will be executed by any authenticated users browsing the application. This concerns app/views/listings/default.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hm4c-x6v5-6m98/GHSA-hm4c-x6v5-6m98.json b/advisories/unreviewed/2022/05/GHSA-hm4c-x6v5-6m98/GHSA-hm4c-x6v5-6m98.json index 10e5b9b2ad0..334b2690aa5 100644 --- a/advisories/unreviewed/2022/05/GHSA-hm4c-x6v5-6m98/GHSA-hm4c-x6v5-6m98.json +++ b/advisories/unreviewed/2022/05/GHSA-hm4c-x6v5-6m98/GHSA-hm4c-x6v5-6m98.json @@ -7,12 +7,8 @@ "CVE-2020-9429" ], "details": "In Wireshark 3.2.0 to 3.2.1, the WireGuard dissector could crash. This was addressed in epan/dissectors/packet-wireguard.c by handling the situation where a certain data structure intentionally has a NULL value.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hqrv-q53h-4xwq/GHSA-hqrv-q53h-4xwq.json b/advisories/unreviewed/2022/05/GHSA-hqrv-q53h-4xwq/GHSA-hqrv-q53h-4xwq.json index 3fd563218e4..ca67c6ba707 100644 --- a/advisories/unreviewed/2022/05/GHSA-hqrv-q53h-4xwq/GHSA-hqrv-q53h-4xwq.json +++ b/advisories/unreviewed/2022/05/GHSA-hqrv-q53h-4xwq/GHSA-hqrv-q53h-4xwq.json @@ -7,12 +7,8 @@ "CVE-2019-13002" ], "details": "An issue was discovered in GitLab Community and Enterprise Edition 11.10 through 12.0.2. Unauthorized users were able to read pipeline information of the last merge request. It has Incorrect Access Control.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hrfq-pcgw-qw23/GHSA-hrfq-pcgw-qw23.json b/advisories/unreviewed/2022/05/GHSA-hrfq-pcgw-qw23/GHSA-hrfq-pcgw-qw23.json index 7e5122d2c1a..d840d7d833b 100644 --- a/advisories/unreviewed/2022/05/GHSA-hrfq-pcgw-qw23/GHSA-hrfq-pcgw-qw23.json +++ b/advisories/unreviewed/2022/05/GHSA-hrfq-pcgw-qw23/GHSA-hrfq-pcgw-qw23.json @@ -7,12 +7,8 @@ "CVE-2020-9455" ], "details": "The RegistrationMagic plugin through 4.6.0.3 for WordPress allows remote authenticated users (with minimal privileges) to send arbitrary emails on behalf of the site via class_rm_user_services.php send_email_user_view.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hrj2-4hpm-cjw9/GHSA-hrj2-4hpm-cjw9.json b/advisories/unreviewed/2022/05/GHSA-hrj2-4hpm-cjw9/GHSA-hrj2-4hpm-cjw9.json index 6755f025326..ba8658f90f6 100644 --- a/advisories/unreviewed/2022/05/GHSA-hrj2-4hpm-cjw9/GHSA-hrj2-4hpm-cjw9.json +++ b/advisories/unreviewed/2022/05/GHSA-hrj2-4hpm-cjw9/GHSA-hrj2-4hpm-cjw9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hrmr-g9x6-f5v8/GHSA-hrmr-g9x6-f5v8.json b/advisories/unreviewed/2022/05/GHSA-hrmr-g9x6-f5v8/GHSA-hrmr-g9x6-f5v8.json index f4c3ba56e16..b8cd2482bef 100644 --- a/advisories/unreviewed/2022/05/GHSA-hrmr-g9x6-f5v8/GHSA-hrmr-g9x6-f5v8.json +++ b/advisories/unreviewed/2022/05/GHSA-hrmr-g9x6-f5v8/GHSA-hrmr-g9x6-f5v8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hrvp-xfff-m4f8/GHSA-hrvp-xfff-m4f8.json b/advisories/unreviewed/2022/05/GHSA-hrvp-xfff-m4f8/GHSA-hrvp-xfff-m4f8.json index 4bbf9a42e24..f675ff4de79 100644 --- a/advisories/unreviewed/2022/05/GHSA-hrvp-xfff-m4f8/GHSA-hrvp-xfff-m4f8.json +++ b/advisories/unreviewed/2022/05/GHSA-hrvp-xfff-m4f8/GHSA-hrvp-xfff-m4f8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j28m-qhxw-4r5g/GHSA-j28m-qhxw-4r5g.json b/advisories/unreviewed/2022/05/GHSA-j28m-qhxw-4r5g/GHSA-j28m-qhxw-4r5g.json index ab1a0636fbd..9be0b817856 100644 --- a/advisories/unreviewed/2022/05/GHSA-j28m-qhxw-4r5g/GHSA-j28m-qhxw-4r5g.json +++ b/advisories/unreviewed/2022/05/GHSA-j28m-qhxw-4r5g/GHSA-j28m-qhxw-4r5g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j4c7-wg39-qp3p/GHSA-j4c7-wg39-qp3p.json b/advisories/unreviewed/2022/05/GHSA-j4c7-wg39-qp3p/GHSA-j4c7-wg39-qp3p.json index f661a802f3e..396b1e3387c 100644 --- a/advisories/unreviewed/2022/05/GHSA-j4c7-wg39-qp3p/GHSA-j4c7-wg39-qp3p.json +++ b/advisories/unreviewed/2022/05/GHSA-j4c7-wg39-qp3p/GHSA-j4c7-wg39-qp3p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j68c-rj4v-fjjr/GHSA-j68c-rj4v-fjjr.json b/advisories/unreviewed/2022/05/GHSA-j68c-rj4v-fjjr/GHSA-j68c-rj4v-fjjr.json index 54e7da31935..dd5b9216d53 100644 --- a/advisories/unreviewed/2022/05/GHSA-j68c-rj4v-fjjr/GHSA-j68c-rj4v-fjjr.json +++ b/advisories/unreviewed/2022/05/GHSA-j68c-rj4v-fjjr/GHSA-j68c-rj4v-fjjr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j8cf-x3wp-585x/GHSA-j8cf-x3wp-585x.json b/advisories/unreviewed/2022/05/GHSA-j8cf-x3wp-585x/GHSA-j8cf-x3wp-585x.json index cec26a53318..4d9d3cbe51c 100644 --- a/advisories/unreviewed/2022/05/GHSA-j8cf-x3wp-585x/GHSA-j8cf-x3wp-585x.json +++ b/advisories/unreviewed/2022/05/GHSA-j8cf-x3wp-585x/GHSA-j8cf-x3wp-585x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j8p4-7v92-r64p/GHSA-j8p4-7v92-r64p.json b/advisories/unreviewed/2022/05/GHSA-j8p4-7v92-r64p/GHSA-j8p4-7v92-r64p.json index 5eadab91d46..28324ac3f1e 100644 --- a/advisories/unreviewed/2022/05/GHSA-j8p4-7v92-r64p/GHSA-j8p4-7v92-r64p.json +++ b/advisories/unreviewed/2022/05/GHSA-j8p4-7v92-r64p/GHSA-j8p4-7v92-r64p.json @@ -7,12 +7,8 @@ "CVE-2019-12444" ], "details": "An issue was discovered in GitLab Community and Enterprise Edition 8.9 through 11.11. Wiki Pages contained a lack of input validation which resulted in a persistent XSS vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j97v-vvwp-6wx4/GHSA-j97v-vvwp-6wx4.json b/advisories/unreviewed/2022/05/GHSA-j97v-vvwp-6wx4/GHSA-j97v-vvwp-6wx4.json index 22102f272d0..b5cfb3dee51 100644 --- a/advisories/unreviewed/2022/05/GHSA-j97v-vvwp-6wx4/GHSA-j97v-vvwp-6wx4.json +++ b/advisories/unreviewed/2022/05/GHSA-j97v-vvwp-6wx4/GHSA-j97v-vvwp-6wx4.json @@ -7,12 +7,8 @@ "CVE-2020-0085" ], "details": "In setBluetoothTethering of PanService.java, there is a possible permission bypass due to a missing permission check. This could lead to local escalation of privilege to activate tethering with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-134487438", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jcf6-pm7w-jrq7/GHSA-jcf6-pm7w-jrq7.json b/advisories/unreviewed/2022/05/GHSA-jcf6-pm7w-jrq7/GHSA-jcf6-pm7w-jrq7.json index bd5452035f2..743e787719d 100644 --- a/advisories/unreviewed/2022/05/GHSA-jcf6-pm7w-jrq7/GHSA-jcf6-pm7w-jrq7.json +++ b/advisories/unreviewed/2022/05/GHSA-jcf6-pm7w-jrq7/GHSA-jcf6-pm7w-jrq7.json @@ -7,12 +7,8 @@ "CVE-2019-20107" ], "details": "Multiple SQL injection vulnerabilities in TestLink through 1.9.19 allows remote authenticated users to execute arbitrary SQL commands via the (1) tproject_id parameter to keywordsView.php; the (2) req_spec_id parameter to reqSpecCompareRevisions.php; the (3) requirement_id parameter to reqCompareVersions.php; the (4) build_id parameter to planUpdateTC.php; the (5) tplan_id parameter to newest_tcversions.php; the (6) tplan_id parameter to tcCreatedPerUserGUI.php; the (7) tcase_id parameter to tcAssign2Tplan.php; or the (8) testcase_id parameter to tcCompareVersions.php. Authentication is often easy to achieve: a guest account, that can execute this attack, can be created by anyone in the default configuration.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jfw6-954q-w7rj/GHSA-jfw6-954q-w7rj.json b/advisories/unreviewed/2022/05/GHSA-jfw6-954q-w7rj/GHSA-jfw6-954q-w7rj.json index a71b3b840b7..a2e479c547a 100644 --- a/advisories/unreviewed/2022/05/GHSA-jfw6-954q-w7rj/GHSA-jfw6-954q-w7rj.json +++ b/advisories/unreviewed/2022/05/GHSA-jfw6-954q-w7rj/GHSA-jfw6-954q-w7rj.json @@ -7,12 +7,8 @@ "CVE-2015-3641" ], "details": "bitcoind and Bitcoin-Qt prior to 0.10.2 allow attackers to cause a denial of service (disabled functionality such as a client application crash) via an \"Easy\" attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jfx9-rv29-g4qf/GHSA-jfx9-rv29-g4qf.json b/advisories/unreviewed/2022/05/GHSA-jfx9-rv29-g4qf/GHSA-jfx9-rv29-g4qf.json index daafe1fdf0e..933b0114028 100644 --- a/advisories/unreviewed/2022/05/GHSA-jfx9-rv29-g4qf/GHSA-jfx9-rv29-g4qf.json +++ b/advisories/unreviewed/2022/05/GHSA-jfx9-rv29-g4qf/GHSA-jfx9-rv29-g4qf.json @@ -7,12 +7,8 @@ "CVE-2020-8952" ], "details": "Fiserv Accurate Reconciliation 2.19.0 allows XSS via the logout.jsp timeOut parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jfxx-j2vh-frq9/GHSA-jfxx-j2vh-frq9.json b/advisories/unreviewed/2022/05/GHSA-jfxx-j2vh-frq9/GHSA-jfxx-j2vh-frq9.json index 90ad05401b3..a3907e65ee7 100644 --- a/advisories/unreviewed/2022/05/GHSA-jfxx-j2vh-frq9/GHSA-jfxx-j2vh-frq9.json +++ b/advisories/unreviewed/2022/05/GHSA-jfxx-j2vh-frq9/GHSA-jfxx-j2vh-frq9.json @@ -7,12 +7,8 @@ "CVE-2019-4598" ], "details": "IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 167881.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jgr4-5mrv-w8ph/GHSA-jgr4-5mrv-w8ph.json b/advisories/unreviewed/2022/05/GHSA-jgr4-5mrv-w8ph/GHSA-jgr4-5mrv-w8ph.json index c236705b760..9cdfe39d534 100644 --- a/advisories/unreviewed/2022/05/GHSA-jgr4-5mrv-w8ph/GHSA-jgr4-5mrv-w8ph.json +++ b/advisories/unreviewed/2022/05/GHSA-jgr4-5mrv-w8ph/GHSA-jgr4-5mrv-w8ph.json @@ -7,12 +7,8 @@ "CVE-2020-5401" ], "details": "Cloud Foundry Routing Release, versions prior to 0.197.0, contains GoRouter, which allows malicious clients to send invalid headers, causing caching layers to reject subsequent legitimate clients trying to access the app.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jhrr-f782-m5jp/GHSA-jhrr-f782-m5jp.json b/advisories/unreviewed/2022/05/GHSA-jhrr-f782-m5jp/GHSA-jhrr-f782-m5jp.json index 02bdbcd7770..2bcf4bdd295 100644 --- a/advisories/unreviewed/2022/05/GHSA-jhrr-f782-m5jp/GHSA-jhrr-f782-m5jp.json +++ b/advisories/unreviewed/2022/05/GHSA-jhrr-f782-m5jp/GHSA-jhrr-f782-m5jp.json @@ -7,12 +7,8 @@ "CVE-2020-4222" ], "details": "IBM Spectrum Protect Plus 10.1.0 and 10.1.5 could allow a remote attacker to execute arbitrary code on the system. By using a specially crafted HTTP command, an attacker could exploit this vulnerability to execute arbitrary command on the system. IBM X-Force ID: 175091.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jjvh-6pgx-c757/GHSA-jjvh-6pgx-c757.json b/advisories/unreviewed/2022/05/GHSA-jjvh-6pgx-c757/GHSA-jjvh-6pgx-c757.json index 13761c8f2c6..e35c4ebd344 100644 --- a/advisories/unreviewed/2022/05/GHSA-jjvh-6pgx-c757/GHSA-jjvh-6pgx-c757.json +++ b/advisories/unreviewed/2022/05/GHSA-jjvh-6pgx-c757/GHSA-jjvh-6pgx-c757.json @@ -7,12 +7,8 @@ "CVE-2020-3831" ], "details": "A race condition was addressed with improved locking. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1. An application may be able to execute arbitrary code with kernel privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jp3h-xgvc-w3w2/GHSA-jp3h-xgvc-w3w2.json b/advisories/unreviewed/2022/05/GHSA-jp3h-xgvc-w3w2/GHSA-jp3h-xgvc-w3w2.json index 88c033b0d1c..bc33079d2aa 100644 --- a/advisories/unreviewed/2022/05/GHSA-jp3h-xgvc-w3w2/GHSA-jp3h-xgvc-w3w2.json +++ b/advisories/unreviewed/2022/05/GHSA-jp3h-xgvc-w3w2/GHSA-jp3h-xgvc-w3w2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jqgr-9x2q-cpxh/GHSA-jqgr-9x2q-cpxh.json b/advisories/unreviewed/2022/05/GHSA-jqgr-9x2q-cpxh/GHSA-jqgr-9x2q-cpxh.json index 8d17598058c..40e3a3b1a7d 100644 --- a/advisories/unreviewed/2022/05/GHSA-jqgr-9x2q-cpxh/GHSA-jqgr-9x2q-cpxh.json +++ b/advisories/unreviewed/2022/05/GHSA-jqgr-9x2q-cpxh/GHSA-jqgr-9x2q-cpxh.json @@ -7,12 +7,8 @@ "CVE-2020-1876" ], "details": "NIP6800;Secospace USG6600;USG9500 with versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have an out-of-bounds write vulnerability. An unauthenticated attacker crafts malformed packets with specific parameter and sends the packets to the affected products. Due to insufficient validation of packets, which may be exploited to cause the process reboot.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jv8x-mwvf-3j5w/GHSA-jv8x-mwvf-3j5w.json b/advisories/unreviewed/2022/05/GHSA-jv8x-mwvf-3j5w/GHSA-jv8x-mwvf-3j5w.json index fa0351c1682..ae3d70808fd 100644 --- a/advisories/unreviewed/2022/05/GHSA-jv8x-mwvf-3j5w/GHSA-jv8x-mwvf-3j5w.json +++ b/advisories/unreviewed/2022/05/GHSA-jv8x-mwvf-3j5w/GHSA-jv8x-mwvf-3j5w.json @@ -7,12 +7,8 @@ "CVE-2019-17647" ], "details": "An issue was discovered in Centreon before 2.8.30, 18.10.8, 19.04.5, and 19.10.2. SQL Injection exists via the include/monitoring/status/Hosts/xml/hostXML.php instance parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jvq4-xpx6-3rjc/GHSA-jvq4-xpx6-3rjc.json b/advisories/unreviewed/2022/05/GHSA-jvq4-xpx6-3rjc/GHSA-jvq4-xpx6-3rjc.json index 03dbb5815a3..c48b654ea9d 100644 --- a/advisories/unreviewed/2022/05/GHSA-jvq4-xpx6-3rjc/GHSA-jvq4-xpx6-3rjc.json +++ b/advisories/unreviewed/2022/05/GHSA-jvq4-xpx6-3rjc/GHSA-jvq4-xpx6-3rjc.json @@ -7,12 +7,8 @@ "CVE-2020-3923" ], "details": "DVR firmware in TAT-76 and TAT-77 series of products, provided by TONNET, contain misconfigured authentication mechanism. Attackers can crack the default password and gain access to the system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jwr4-5r98-4fgp/GHSA-jwr4-5r98-4fgp.json b/advisories/unreviewed/2022/05/GHSA-jwr4-5r98-4fgp/GHSA-jwr4-5r98-4fgp.json index 8a05e42a64a..68917f5cfab 100644 --- a/advisories/unreviewed/2022/05/GHSA-jwr4-5r98-4fgp/GHSA-jwr4-5r98-4fgp.json +++ b/advisories/unreviewed/2022/05/GHSA-jwr4-5r98-4fgp/GHSA-jwr4-5r98-4fgp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jx55-gvx7-5qqp/GHSA-jx55-gvx7-5qqp.json b/advisories/unreviewed/2022/05/GHSA-jx55-gvx7-5qqp/GHSA-jx55-gvx7-5qqp.json index 8db1b1c81aa..16a637d01ba 100644 --- a/advisories/unreviewed/2022/05/GHSA-jx55-gvx7-5qqp/GHSA-jx55-gvx7-5qqp.json +++ b/advisories/unreviewed/2022/05/GHSA-jx55-gvx7-5qqp/GHSA-jx55-gvx7-5qqp.json @@ -7,12 +7,8 @@ "CVE-2020-3858" ], "details": "A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1. An application may be able to execute arbitrary code with kernel privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jxjm-m65c-whjc/GHSA-jxjm-m65c-whjc.json b/advisories/unreviewed/2022/05/GHSA-jxjm-m65c-whjc/GHSA-jxjm-m65c-whjc.json index 421961910a9..5e0426372cd 100644 --- a/advisories/unreviewed/2022/05/GHSA-jxjm-m65c-whjc/GHSA-jxjm-m65c-whjc.json +++ b/advisories/unreviewed/2022/05/GHSA-jxjm-m65c-whjc/GHSA-jxjm-m65c-whjc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m2fm-gm84-v5jq/GHSA-m2fm-gm84-v5jq.json b/advisories/unreviewed/2022/05/GHSA-m2fm-gm84-v5jq/GHSA-m2fm-gm84-v5jq.json index 03ad1d5fa89..f9670dbe800 100644 --- a/advisories/unreviewed/2022/05/GHSA-m2fm-gm84-v5jq/GHSA-m2fm-gm84-v5jq.json +++ b/advisories/unreviewed/2022/05/GHSA-m2fm-gm84-v5jq/GHSA-m2fm-gm84-v5jq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m2r7-w5rx-6vqg/GHSA-m2r7-w5rx-6vqg.json b/advisories/unreviewed/2022/05/GHSA-m2r7-w5rx-6vqg/GHSA-m2r7-w5rx-6vqg.json index 03a32f4c54b..63cbe0eeebf 100644 --- a/advisories/unreviewed/2022/05/GHSA-m2r7-w5rx-6vqg/GHSA-m2r7-w5rx-6vqg.json +++ b/advisories/unreviewed/2022/05/GHSA-m2r7-w5rx-6vqg/GHSA-m2r7-w5rx-6vqg.json @@ -7,12 +7,8 @@ "CVE-2020-8540" ], "details": "An XML external entity (XXE) vulnerability iin Zoho ManageEngine Desktop Central before the 07-Mar-2020 update allows remote unauthenticated users to read arbitrary files or conduct server-side request forgery (SSRF) attacks via a crafted DTD in an XML request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m3wc-qjv8-4j69/GHSA-m3wc-qjv8-4j69.json b/advisories/unreviewed/2022/05/GHSA-m3wc-qjv8-4j69/GHSA-m3wc-qjv8-4j69.json index a629abe526c..48e67c25558 100644 --- a/advisories/unreviewed/2022/05/GHSA-m3wc-qjv8-4j69/GHSA-m3wc-qjv8-4j69.json +++ b/advisories/unreviewed/2022/05/GHSA-m3wc-qjv8-4j69/GHSA-m3wc-qjv8-4j69.json @@ -7,12 +7,8 @@ "CVE-2019-19990" ], "details": "An issue was discovered in Selesta Visual Access Manager (VAM) 4.15.0 through 4.29. Multiple Stored Cross-site scripting (XSS) vulnerabilities allow remote authenticated users to inject arbitrary web script or HTML via the web pages /monitor/s_headmodel.php and /vam/vam_user.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m4jc-c528-7g8x/GHSA-m4jc-c528-7g8x.json b/advisories/unreviewed/2022/05/GHSA-m4jc-c528-7g8x/GHSA-m4jc-c528-7g8x.json index 5320b0efbc1..aeed4a22409 100644 --- a/advisories/unreviewed/2022/05/GHSA-m4jc-c528-7g8x/GHSA-m4jc-c528-7g8x.json +++ b/advisories/unreviewed/2022/05/GHSA-m4jc-c528-7g8x/GHSA-m4jc-c528-7g8x.json @@ -7,12 +7,8 @@ "CVE-2020-10102" ], "details": "An issue was discovered in Zammad 3.0 through 3.2. The Forgot Password functionality is implemented in a way that would enable an anonymous user to guess valid user emails. In the current implementation, the application responds differently depending on whether the input supplied was recognized as associated with a valid user. This behavior could be used as part of a two-stage automated attack. During the first stage, an attacker would iterate through a list of account names to determine which correspond to valid accounts. During the second stage, the attacker would use a list of common passwords to attempt to brute force credentials for accounts that were recognized by the system in the first stage.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m4qv-p2xf-7g7f/GHSA-m4qv-p2xf-7g7f.json b/advisories/unreviewed/2022/05/GHSA-m4qv-p2xf-7g7f/GHSA-m4qv-p2xf-7g7f.json index 1b2c75c75e4..249e5db5741 100644 --- a/advisories/unreviewed/2022/05/GHSA-m4qv-p2xf-7g7f/GHSA-m4qv-p2xf-7g7f.json +++ b/advisories/unreviewed/2022/05/GHSA-m4qv-p2xf-7g7f/GHSA-m4qv-p2xf-7g7f.json @@ -7,12 +7,8 @@ "CVE-2020-8635" ], "details": "Wing FTP Server v6.2.3 for Linux, macOS, and Solaris sets insecure permissions on installation directories and configuration files. This allows local users to arbitrarily create FTP users with full privileges, and escalate privileges within the operating system by modifying system files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m5jf-7x3g-f295/GHSA-m5jf-7x3g-f295.json b/advisories/unreviewed/2022/05/GHSA-m5jf-7x3g-f295/GHSA-m5jf-7x3g-f295.json index 20ed77eba49..a855aa05313 100644 --- a/advisories/unreviewed/2022/05/GHSA-m5jf-7x3g-f295/GHSA-m5jf-7x3g-f295.json +++ b/advisories/unreviewed/2022/05/GHSA-m5jf-7x3g-f295/GHSA-m5jf-7x3g-f295.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m7pr-p7wp-qgg3/GHSA-m7pr-p7wp-qgg3.json b/advisories/unreviewed/2022/05/GHSA-m7pr-p7wp-qgg3/GHSA-m7pr-p7wp-qgg3.json index 885c2f1e30d..52b7e6837c7 100644 --- a/advisories/unreviewed/2022/05/GHSA-m7pr-p7wp-qgg3/GHSA-m7pr-p7wp-qgg3.json +++ b/advisories/unreviewed/2022/05/GHSA-m7pr-p7wp-qgg3/GHSA-m7pr-p7wp-qgg3.json @@ -7,12 +7,8 @@ "CVE-2020-9456" ], "details": "In the RegistrationMagic plugin through 4.6.0.3 for WordPress, the user controller allows remote authenticated users (with minimal privileges) to elevate their privileges to administrator via class_rm_user_controller.php rm_user_edit.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m978-hcqw-jcmw/GHSA-m978-hcqw-jcmw.json b/advisories/unreviewed/2022/05/GHSA-m978-hcqw-jcmw/GHSA-m978-hcqw-jcmw.json index 1e1ccb825dc..7bb5a5f9cc5 100644 --- a/advisories/unreviewed/2022/05/GHSA-m978-hcqw-jcmw/GHSA-m978-hcqw-jcmw.json +++ b/advisories/unreviewed/2022/05/GHSA-m978-hcqw-jcmw/GHSA-m978-hcqw-jcmw.json @@ -7,12 +7,8 @@ "CVE-2020-9758" ], "details": "An issue was discovered in chat.php in LiveZilla Live Chat 8.0.1.3 (Helpdesk). A blind JavaScript injection lies in the name parameter. Triggering this can fetch the username and passwords of the helpdesk employees in the URI. This leads to a privilege escalation, from unauthenticated to user-level access, leading to full account takeover. The attack fetches multiple credentials because they are stored in the database (stored XSS). This affects the mobile/chat URI via the lgn and psswrd parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mf7h-4qw9-wc8m/GHSA-mf7h-4qw9-wc8m.json b/advisories/unreviewed/2022/05/GHSA-mf7h-4qw9-wc8m/GHSA-mf7h-4qw9-wc8m.json index 2d592a3909e..affa433f21f 100644 --- a/advisories/unreviewed/2022/05/GHSA-mf7h-4qw9-wc8m/GHSA-mf7h-4qw9-wc8m.json +++ b/advisories/unreviewed/2022/05/GHSA-mf7h-4qw9-wc8m/GHSA-mf7h-4qw9-wc8m.json @@ -7,12 +7,8 @@ "CVE-2019-14031" ], "details": "Buffer overflow can occur while parsing RSN IE containing list of PMK ID`s which are more than the buffer size in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8017, APQ8053, APQ8064, APQ8096, APQ8096AU, APQ8098, IPQ6018, IPQ8074, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, MSM8996, MSM8996AU, MSM8998, Nicobar, QCA4531, QCA6174A, QCA6564, QCA6574, QCA6574AU, QCA6584, QCA6584AU, QCA8081, QCA9377, QCA9379, QCA9886, QCN7605, QCS405, QCS605, SA6155P, SC8180X, SDA660, SDA845, SDM630, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mg74-mw7r-v7j9/GHSA-mg74-mw7r-v7j9.json b/advisories/unreviewed/2022/05/GHSA-mg74-mw7r-v7j9/GHSA-mg74-mw7r-v7j9.json index e66616307c6..8b115b0eaa0 100644 --- a/advisories/unreviewed/2022/05/GHSA-mg74-mw7r-v7j9/GHSA-mg74-mw7r-v7j9.json +++ b/advisories/unreviewed/2022/05/GHSA-mg74-mw7r-v7j9/GHSA-mg74-mw7r-v7j9.json @@ -7,12 +7,8 @@ "CVE-2020-9442" ], "details": "OpenVPN Connect 3.1.0.361 on Windows has Insecure Permissions for %PROGRAMDATA%\\OpenVPN Connect\\drivers\\tap\\amd64\\win10, which allows local users to gain privileges by copying a malicious drvstore.dll there.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mh9g-743p-49cw/GHSA-mh9g-743p-49cw.json b/advisories/unreviewed/2022/05/GHSA-mh9g-743p-49cw/GHSA-mh9g-743p-49cw.json index 37192843c70..5168c2fa636 100644 --- a/advisories/unreviewed/2022/05/GHSA-mh9g-743p-49cw/GHSA-mh9g-743p-49cw.json +++ b/advisories/unreviewed/2022/05/GHSA-mh9g-743p-49cw/GHSA-mh9g-743p-49cw.json @@ -7,12 +7,8 @@ "CVE-2020-8113" ], "details": "GitLab 10.7 and later through 12.7.2 has Incorrect Access Control.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mmx9-rpw6-mxwp/GHSA-mmx9-rpw6-mxwp.json b/advisories/unreviewed/2022/05/GHSA-mmx9-rpw6-mxwp/GHSA-mmx9-rpw6-mxwp.json index b3088d3aa7d..b4fed1dbb71 100644 --- a/advisories/unreviewed/2022/05/GHSA-mmx9-rpw6-mxwp/GHSA-mmx9-rpw6-mxwp.json +++ b/advisories/unreviewed/2022/05/GHSA-mmx9-rpw6-mxwp/GHSA-mmx9-rpw6-mxwp.json @@ -7,12 +7,8 @@ "CVE-2018-19798" ], "details": "Fleetco Fleet Maintenance Management (FMM) 1.2 and earlier allows uploading an arbitrary \".php\" file with the application/x-php Content-Type to the accidents_add.php?submit=1 URI, as demonstrated by the value_Images_1 field, which leads to remote command execution on the remote server. Any authenticated user can exploit this.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mpj3-4vv5-g8qc/GHSA-mpj3-4vv5-g8qc.json b/advisories/unreviewed/2022/05/GHSA-mpj3-4vv5-g8qc/GHSA-mpj3-4vv5-g8qc.json index be9e28c2478..bd264dfc04f 100644 --- a/advisories/unreviewed/2022/05/GHSA-mpj3-4vv5-g8qc/GHSA-mpj3-4vv5-g8qc.json +++ b/advisories/unreviewed/2022/05/GHSA-mpj3-4vv5-g8qc/GHSA-mpj3-4vv5-g8qc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mpqh-vcrx-rgx2/GHSA-mpqh-vcrx-rgx2.json b/advisories/unreviewed/2022/05/GHSA-mpqh-vcrx-rgx2/GHSA-mpqh-vcrx-rgx2.json index 2cd3d2992ff..296e0d5f0cc 100644 --- a/advisories/unreviewed/2022/05/GHSA-mpqh-vcrx-rgx2/GHSA-mpqh-vcrx-rgx2.json +++ b/advisories/unreviewed/2022/05/GHSA-mpqh-vcrx-rgx2/GHSA-mpqh-vcrx-rgx2.json @@ -7,12 +7,8 @@ "CVE-2019-17549" ], "details": "ESET Cyber Security before 6.8.1.0 is vulnerable to a denial-of-service allowing any user to stop (kill) ESET processes. An attacker can abuse this bug to stop the protection from ESET and launch his attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mq57-ppc7-5g58/GHSA-mq57-ppc7-5g58.json b/advisories/unreviewed/2022/05/GHSA-mq57-ppc7-5g58/GHSA-mq57-ppc7-5g58.json index 11c1d348792..2067066c10d 100644 --- a/advisories/unreviewed/2022/05/GHSA-mq57-ppc7-5g58/GHSA-mq57-ppc7-5g58.json +++ b/advisories/unreviewed/2022/05/GHSA-mq57-ppc7-5g58/GHSA-mq57-ppc7-5g58.json @@ -7,12 +7,8 @@ "CVE-2019-10526" ], "details": "Out of bound write in WLAN driver due to NULL character not properly placed after SSID name in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music in APQ8009, APQ8017, APQ8053, APQ8096AU, MDM9150, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, QCA6174A, QCA6574AU, QCA9377, QCA9379, QCN7605, QCS405, QCS605, SC8180X, SDA845, SDM450, SDX20, SDX24, SDX55, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mqr5-x6q4-772g/GHSA-mqr5-x6q4-772g.json b/advisories/unreviewed/2022/05/GHSA-mqr5-x6q4-772g/GHSA-mqr5-x6q4-772g.json index 959c06b2fe6..e0e8c6bc844 100644 --- a/advisories/unreviewed/2022/05/GHSA-mqr5-x6q4-772g/GHSA-mqr5-x6q4-772g.json +++ b/advisories/unreviewed/2022/05/GHSA-mqr5-x6q4-772g/GHSA-mqr5-x6q4-772g.json @@ -7,12 +7,8 @@ "CVE-2019-4557" ], "details": "IBM Qradar Advisor 1.1 through 2.5 with Watson uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 166206.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mrvq-4vr3-5c8f/GHSA-mrvq-4vr3-5c8f.json b/advisories/unreviewed/2022/05/GHSA-mrvq-4vr3-5c8f/GHSA-mrvq-4vr3-5c8f.json index 49e832c314b..3d14f9b02b1 100644 --- a/advisories/unreviewed/2022/05/GHSA-mrvq-4vr3-5c8f/GHSA-mrvq-4vr3-5c8f.json +++ b/advisories/unreviewed/2022/05/GHSA-mrvq-4vr3-5c8f/GHSA-mrvq-4vr3-5c8f.json @@ -7,12 +7,8 @@ "CVE-2020-3828" ], "details": "A lock screen issue allowed access to contacts on a locked device. This issue was addressed with improved state management. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1. A person with physical access to an iOS device may be able to access contacts from the lock screen.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mv53-3jm2-g7cq/GHSA-mv53-3jm2-g7cq.json b/advisories/unreviewed/2022/05/GHSA-mv53-3jm2-g7cq/GHSA-mv53-3jm2-g7cq.json index f849cf3f59b..9c88f68c4bd 100644 --- a/advisories/unreviewed/2022/05/GHSA-mv53-3jm2-g7cq/GHSA-mv53-3jm2-g7cq.json +++ b/advisories/unreviewed/2022/05/GHSA-mv53-3jm2-g7cq/GHSA-mv53-3jm2-g7cq.json @@ -7,12 +7,8 @@ "CVE-2018-16356" ], "details": "An issue was discovered in PbootCMS. There is a SQL injection via the api.php/List/index order parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mw9g-hwpr-h3rv/GHSA-mw9g-hwpr-h3rv.json b/advisories/unreviewed/2022/05/GHSA-mw9g-hwpr-h3rv/GHSA-mw9g-hwpr-h3rv.json index 9ce5dcd9d41..577d8af8361 100644 --- a/advisories/unreviewed/2022/05/GHSA-mw9g-hwpr-h3rv/GHSA-mw9g-hwpr-h3rv.json +++ b/advisories/unreviewed/2022/05/GHSA-mw9g-hwpr-h3rv/GHSA-mw9g-hwpr-h3rv.json @@ -7,12 +7,8 @@ "CVE-2020-10174" ], "details": "init_tmp in TeeJee.FileSystem.vala in Timeshift before 20.03 unsafely reuses a preexisting temporary directory in the predictable location /tmp/timeshift. It follows symlinks in this location or uses directories owned by unprivileged users. Because Timeshift also executes scripts under this location, an attacker can attempt to win a race condition to replace scripts created by Timeshift with attacker-controlled scripts. Upon success, an attacker-controlled script is executed with full root privileges. This logic is practically always triggered when Timeshift runs regardless of the command-line arguments used.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mwpf-rfm3-vwfv/GHSA-mwpf-rfm3-vwfv.json b/advisories/unreviewed/2022/05/GHSA-mwpf-rfm3-vwfv/GHSA-mwpf-rfm3-vwfv.json index e1b27939d98..8cf3a2fb229 100644 --- a/advisories/unreviewed/2022/05/GHSA-mwpf-rfm3-vwfv/GHSA-mwpf-rfm3-vwfv.json +++ b/advisories/unreviewed/2022/05/GHSA-mwpf-rfm3-vwfv/GHSA-mwpf-rfm3-vwfv.json @@ -7,12 +7,8 @@ "CVE-2020-1875" ], "details": "NIP6800;Secospace USG6600;USG9500 products versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have an invalid pointer access vulnerability. The software system access an invalid pointer when an abnormal condition occurs in certain operation. Successful exploit could cause certain process reboot. Affected product versions include:NIP6800 versions V500R001C30,V500R001C60SPC500;Secospace USG6600 versions V500R001C30SPC200,V500R001C30SPC600,V500R001C60SPC500;USG9500 versions V500R001C30SPC200,V500R001C30SPC600,V500R001C60SPC500.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mx5h-crf7-xxv9/GHSA-mx5h-crf7-xxv9.json b/advisories/unreviewed/2022/05/GHSA-mx5h-crf7-xxv9/GHSA-mx5h-crf7-xxv9.json index 1f0c9c95615..999c21ce947 100644 --- a/advisories/unreviewed/2022/05/GHSA-mx5h-crf7-xxv9/GHSA-mx5h-crf7-xxv9.json +++ b/advisories/unreviewed/2022/05/GHSA-mx5h-crf7-xxv9/GHSA-mx5h-crf7-xxv9.json @@ -7,12 +7,8 @@ "CVE-2020-6796" ], "details": "A content process could have modified shared memory relating to crash reporting information, crash itself, and cause an out-of-bound write. This could have caused memory corruption and a potentially exploitable crash. This vulnerability affects Firefox < 73 and Firefox < ESR68.5.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p2vv-g8rx-7jqj/GHSA-p2vv-g8rx-7jqj.json b/advisories/unreviewed/2022/05/GHSA-p2vv-g8rx-7jqj/GHSA-p2vv-g8rx-7jqj.json index f77d98b099c..415d24913eb 100644 --- a/advisories/unreviewed/2022/05/GHSA-p2vv-g8rx-7jqj/GHSA-p2vv-g8rx-7jqj.json +++ b/advisories/unreviewed/2022/05/GHSA-p2vv-g8rx-7jqj/GHSA-p2vv-g8rx-7jqj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p3w5-fpg6-wrh9/GHSA-p3w5-fpg6-wrh9.json b/advisories/unreviewed/2022/05/GHSA-p3w5-fpg6-wrh9/GHSA-p3w5-fpg6-wrh9.json index 86e2b2e7a88..5db42f26b60 100644 --- a/advisories/unreviewed/2022/05/GHSA-p3w5-fpg6-wrh9/GHSA-p3w5-fpg6-wrh9.json +++ b/advisories/unreviewed/2022/05/GHSA-p3w5-fpg6-wrh9/GHSA-p3w5-fpg6-wrh9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p4qp-fw5j-87q5/GHSA-p4qp-fw5j-87q5.json b/advisories/unreviewed/2022/05/GHSA-p4qp-fw5j-87q5/GHSA-p4qp-fw5j-87q5.json index ef1b0892497..4c271d9f019 100644 --- a/advisories/unreviewed/2022/05/GHSA-p4qp-fw5j-87q5/GHSA-p4qp-fw5j-87q5.json +++ b/advisories/unreviewed/2022/05/GHSA-p4qp-fw5j-87q5/GHSA-p4qp-fw5j-87q5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p4v6-955x-fq79/GHSA-p4v6-955x-fq79.json b/advisories/unreviewed/2022/05/GHSA-p4v6-955x-fq79/GHSA-p4v6-955x-fq79.json index 12e8de59077..8b60d6c9159 100644 --- a/advisories/unreviewed/2022/05/GHSA-p4v6-955x-fq79/GHSA-p4v6-955x-fq79.json +++ b/advisories/unreviewed/2022/05/GHSA-p4v6-955x-fq79/GHSA-p4v6-955x-fq79.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p533-q52w-q6fm/GHSA-p533-q52w-q6fm.json b/advisories/unreviewed/2022/05/GHSA-p533-q52w-q6fm/GHSA-p533-q52w-q6fm.json index 8b901026b5f..fb2146bea14 100644 --- a/advisories/unreviewed/2022/05/GHSA-p533-q52w-q6fm/GHSA-p533-q52w-q6fm.json +++ b/advisories/unreviewed/2022/05/GHSA-p533-q52w-q6fm/GHSA-p533-q52w-q6fm.json @@ -7,12 +7,8 @@ "CVE-2020-8439" ], "details": "Monstra CMS through 3.0.4 allows remote authenticated users to take over arbitrary user accounts via a modified login parameter to an edit URI, as demonstrated by login=victim to the users/21/edit URI.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p572-p2f7-5jjq/GHSA-p572-p2f7-5jjq.json b/advisories/unreviewed/2022/05/GHSA-p572-p2f7-5jjq/GHSA-p572-p2f7-5jjq.json index a1a4d40cdd0..be8a29bd414 100644 --- a/advisories/unreviewed/2022/05/GHSA-p572-p2f7-5jjq/GHSA-p572-p2f7-5jjq.json +++ b/advisories/unreviewed/2022/05/GHSA-p572-p2f7-5jjq/GHSA-p572-p2f7-5jjq.json @@ -7,12 +7,8 @@ "CVE-2019-10553" ], "details": "Multiple Read overflows due to improper length checks while decoding authentication in Cs domain/RAU Reject and TC cmd in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8017, APQ8053, APQ8096, APQ8096AU, APQ8098, MDM9150, MDM9205, MDM9206, MDM9607, MDM9615, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, MSM8998, Nicobar, QCM2150, QCS605, QM215, Rennell, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p5h3-5359-vcx7/GHSA-p5h3-5359-vcx7.json b/advisories/unreviewed/2022/05/GHSA-p5h3-5359-vcx7/GHSA-p5h3-5359-vcx7.json index 86cad04bfb1..a5be6a60cd1 100644 --- a/advisories/unreviewed/2022/05/GHSA-p5h3-5359-vcx7/GHSA-p5h3-5359-vcx7.json +++ b/advisories/unreviewed/2022/05/GHSA-p5h3-5359-vcx7/GHSA-p5h3-5359-vcx7.json @@ -7,12 +7,8 @@ "CVE-2020-3826" ], "details": "An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, macOS Catalina 10.15.3, tvOS 13.3.1, watchOS 6.1.2, iTunes for Windows 12.10.4, iCloud for Windows 11.0, iCloud for Windows 7.17. Processing a maliciously crafted image may lead to arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p5w7-5575-crv3/GHSA-p5w7-5575-crv3.json b/advisories/unreviewed/2022/05/GHSA-p5w7-5575-crv3/GHSA-p5w7-5575-crv3.json index 4ab8fcfaec8..cf3a908ccee 100644 --- a/advisories/unreviewed/2022/05/GHSA-p5w7-5575-crv3/GHSA-p5w7-5575-crv3.json +++ b/advisories/unreviewed/2022/05/GHSA-p5w7-5575-crv3/GHSA-p5w7-5575-crv3.json @@ -7,12 +7,8 @@ "CVE-2020-5327" ], "details": "Dell Security Management Server versions prior to 10.2.10 contain a Java RMI Deserialization of Untrusted Data vulnerability. When the server is exposed to the internet and Windows Firewall is disabled, a remote unauthenticated attacker may exploit this vulnerability by sending a crafted RMI request to execute arbitrary code on the target host.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p629-7xm6-fgf5/GHSA-p629-7xm6-fgf5.json b/advisories/unreviewed/2022/05/GHSA-p629-7xm6-fgf5/GHSA-p629-7xm6-fgf5.json index b2020d1279a..a7dc983884f 100644 --- a/advisories/unreviewed/2022/05/GHSA-p629-7xm6-fgf5/GHSA-p629-7xm6-fgf5.json +++ b/advisories/unreviewed/2022/05/GHSA-p629-7xm6-fgf5/GHSA-p629-7xm6-fgf5.json @@ -7,12 +7,8 @@ "CVE-2019-2311" ], "details": "Possible buffer overflow in WLAN handler due to lack of validation of destination buffer size before copying it in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8017, APQ8053, APQ8096, APQ8096AU, APQ8098, IPQ8074, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, MSM8996, MSM8996AU, MSM8998, QCA6174A, QCA6574, QCA6574AU, QCA6584, QCA6584AU, QCA8081, QCA9377, QCA9379, QCA9886, QCS605, SA6155P, SDA660, SDA845, SDM630, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SM6150, SM7150, SM8150, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p674-869c-g45q/GHSA-p674-869c-g45q.json b/advisories/unreviewed/2022/05/GHSA-p674-869c-g45q/GHSA-p674-869c-g45q.json index bd4a55f8e05..2a030ef8b5c 100644 --- a/advisories/unreviewed/2022/05/GHSA-p674-869c-g45q/GHSA-p674-869c-g45q.json +++ b/advisories/unreviewed/2022/05/GHSA-p674-869c-g45q/GHSA-p674-869c-g45q.json @@ -7,12 +7,8 @@ "CVE-2019-14072" ], "details": "Unhandled paging request is observed due to dereferencing an already freed object because of race condition between sparse free and sparse bind ioctls which access the same physical entry in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8096AU, APQ8098, MDM9607, MSM8909W, MSM8939, MSM8953, MSM8996AU, Nicobar, QCS405, QCS605, Rennell, SA6155P, Saipan, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM450, SDM632, SDM670, SDM710, SDM845, SDX24, SDX55, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p8hp-p5rw-j34r/GHSA-p8hp-p5rw-j34r.json b/advisories/unreviewed/2022/05/GHSA-p8hp-p5rw-j34r/GHSA-p8hp-p5rw-j34r.json index 31da67b232c..21bc2ed8b42 100644 --- a/advisories/unreviewed/2022/05/GHSA-p8hp-p5rw-j34r/GHSA-p8hp-p5rw-j34r.json +++ b/advisories/unreviewed/2022/05/GHSA-p8hp-p5rw-j34r/GHSA-p8hp-p5rw-j34r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p8m8-h68h-w543/GHSA-p8m8-h68h-w543.json b/advisories/unreviewed/2022/05/GHSA-p8m8-h68h-w543/GHSA-p8m8-h68h-w543.json index e8683c91b7b..4dd129ec616 100644 --- a/advisories/unreviewed/2022/05/GHSA-p8m8-h68h-w543/GHSA-p8m8-h68h-w543.json +++ b/advisories/unreviewed/2022/05/GHSA-p8m8-h68h-w543/GHSA-p8m8-h68h-w543.json @@ -7,12 +7,8 @@ "CVE-2020-0048" ], "details": "In onTransact of IAudioFlinger.cpp, there is a possible stack information leak due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-139417189", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p9wc-6qg4-wxc8/GHSA-p9wc-6qg4-wxc8.json b/advisories/unreviewed/2022/05/GHSA-p9wc-6qg4-wxc8/GHSA-p9wc-6qg4-wxc8.json index dfad48ed6cf..f2dbacf00a9 100644 --- a/advisories/unreviewed/2022/05/GHSA-p9wc-6qg4-wxc8/GHSA-p9wc-6qg4-wxc8.json +++ b/advisories/unreviewed/2022/05/GHSA-p9wc-6qg4-wxc8/GHSA-p9wc-6qg4-wxc8.json @@ -7,12 +7,8 @@ "CVE-2020-4283" ], "details": "IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, 1.0.2, 1.0.3, and 1.0.4 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data. IBM X-Force ID: 176206.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pcfq-353m-qfj5/GHSA-pcfq-353m-qfj5.json b/advisories/unreviewed/2022/05/GHSA-pcfq-353m-qfj5/GHSA-pcfq-353m-qfj5.json index ecaa5e39477..5d3a4549ab8 100644 --- a/advisories/unreviewed/2022/05/GHSA-pcfq-353m-qfj5/GHSA-pcfq-353m-qfj5.json +++ b/advisories/unreviewed/2022/05/GHSA-pcfq-353m-qfj5/GHSA-pcfq-353m-qfj5.json @@ -7,12 +7,8 @@ "CVE-2020-4210" ], "details": "IBM Spectrum Protect Plus 10.1.0 and 10.1.5 could allow a remote attacker to execute arbitrary code on the system. By using a specially crafted HTTP command, an attacker could exploit this vulnerability to execute arbitrary command on the system. IBM X-Force ID: 175020.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pfrp-2qvp-2xjj/GHSA-pfrp-2qvp-2xjj.json b/advisories/unreviewed/2022/05/GHSA-pfrp-2qvp-2xjj/GHSA-pfrp-2qvp-2xjj.json index ced6883e726..e75f95e8fa8 100644 --- a/advisories/unreviewed/2022/05/GHSA-pfrp-2qvp-2xjj/GHSA-pfrp-2qvp-2xjj.json +++ b/advisories/unreviewed/2022/05/GHSA-pfrp-2qvp-2xjj/GHSA-pfrp-2qvp-2xjj.json @@ -7,12 +7,8 @@ "CVE-2019-19772" ], "details": "Various Lexmark products have reflected XSS in the embedded web server used in older generation Lexmark devices. Affected products are available in http://support.lexmark.com/index?page=content&id=TE935&locale=en&userlocale=EN_US.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pfv9-ff57-j64p/GHSA-pfv9-ff57-j64p.json b/advisories/unreviewed/2022/05/GHSA-pfv9-ff57-j64p/GHSA-pfv9-ff57-j64p.json index a9b06a4b49e..b4ac95bcff2 100644 --- a/advisories/unreviewed/2022/05/GHSA-pfv9-ff57-j64p/GHSA-pfv9-ff57-j64p.json +++ b/advisories/unreviewed/2022/05/GHSA-pfv9-ff57-j64p/GHSA-pfv9-ff57-j64p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pg24-x875-7fv7/GHSA-pg24-x875-7fv7.json b/advisories/unreviewed/2022/05/GHSA-pg24-x875-7fv7/GHSA-pg24-x875-7fv7.json index 826eb3ee83b..956f0bbfa6e 100644 --- a/advisories/unreviewed/2022/05/GHSA-pg24-x875-7fv7/GHSA-pg24-x875-7fv7.json +++ b/advisories/unreviewed/2022/05/GHSA-pg24-x875-7fv7/GHSA-pg24-x875-7fv7.json @@ -7,12 +7,8 @@ "CVE-2019-10705" ], "details": "Western Digital SanDisk X600 devices in certain configurations, a vulnerability in the access control mechanism of the drive may allow data to be decrypted without knowledge of proper authentication credentials.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pgq5-f878-vwpf/GHSA-pgq5-f878-vwpf.json b/advisories/unreviewed/2022/05/GHSA-pgq5-f878-vwpf/GHSA-pgq5-f878-vwpf.json index e9fb633d68f..871e2125c02 100644 --- a/advisories/unreviewed/2022/05/GHSA-pgq5-f878-vwpf/GHSA-pgq5-f878-vwpf.json +++ b/advisories/unreviewed/2022/05/GHSA-pgq5-f878-vwpf/GHSA-pgq5-f878-vwpf.json @@ -7,12 +7,8 @@ "CVE-2019-5135" ], "details": "An exploitable timing discrepancy vulnerability exists in the authentication functionality of the Web-Based Management (WBM) web application on WAGO PFC100/200 controllers. The WBM application makes use of the PHP crypt() function which can be exploited to disclose hashed user credentials. This affects WAGO PFC200 Firmware version 03.00.39(12) and version 03.01.07(13), and WAGO PFC100 Firmware version 03.00.39(12).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pgw8-4v8r-q22q/GHSA-pgw8-4v8r-q22q.json b/advisories/unreviewed/2022/05/GHSA-pgw8-4v8r-q22q/GHSA-pgw8-4v8r-q22q.json index ff4c8d01a26..1fe17905154 100644 --- a/advisories/unreviewed/2022/05/GHSA-pgw8-4v8r-q22q/GHSA-pgw8-4v8r-q22q.json +++ b/advisories/unreviewed/2022/05/GHSA-pgw8-4v8r-q22q/GHSA-pgw8-4v8r-q22q.json @@ -7,12 +7,8 @@ "CVE-2020-5536" ], "details": "OpenBlocks IoT VX2 prior to Ver.4.0.0 (Ver.3 Series) allows an attacker on the same network segment to bypass authentication and to initialize the device via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pj28-mxqq-37cw/GHSA-pj28-mxqq-37cw.json b/advisories/unreviewed/2022/05/GHSA-pj28-mxqq-37cw/GHSA-pj28-mxqq-37cw.json index 56db1652620..072303702c6 100644 --- a/advisories/unreviewed/2022/05/GHSA-pj28-mxqq-37cw/GHSA-pj28-mxqq-37cw.json +++ b/advisories/unreviewed/2022/05/GHSA-pj28-mxqq-37cw/GHSA-pj28-mxqq-37cw.json @@ -7,12 +7,8 @@ "CVE-2020-3854" ], "details": "A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Catalina 10.15.3. An application may be able to execute arbitrary code with system privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pj86-pw82-x94v/GHSA-pj86-pw82-x94v.json b/advisories/unreviewed/2022/05/GHSA-pj86-pw82-x94v/GHSA-pj86-pw82-x94v.json index 604541aad62..86acf32f69f 100644 --- a/advisories/unreviewed/2022/05/GHSA-pj86-pw82-x94v/GHSA-pj86-pw82-x94v.json +++ b/advisories/unreviewed/2022/05/GHSA-pj86-pw82-x94v/GHSA-pj86-pw82-x94v.json @@ -7,12 +7,8 @@ "CVE-2020-9466" ], "details": "The Export Users to CSV plugin through 1.4.2 for WordPress allows CSV Injection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pjgc-v69x-rhfq/GHSA-pjgc-v69x-rhfq.json b/advisories/unreviewed/2022/05/GHSA-pjgc-v69x-rhfq/GHSA-pjgc-v69x-rhfq.json index 61234b53e1c..6662a2d4db7 100644 --- a/advisories/unreviewed/2022/05/GHSA-pjgc-v69x-rhfq/GHSA-pjgc-v69x-rhfq.json +++ b/advisories/unreviewed/2022/05/GHSA-pjgc-v69x-rhfq/GHSA-pjgc-v69x-rhfq.json @@ -7,12 +7,8 @@ "CVE-2020-3840" ], "details": "An off by one issue existed in the handling of racoon configuration files. This issue was addressed through improved bounds checking. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, macOS Catalina 10.15.3, tvOS 13.3.1. Loading a maliciously crafted racoon configuration file may lead to arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pjw6-vwfh-v9px/GHSA-pjw6-vwfh-v9px.json b/advisories/unreviewed/2022/05/GHSA-pjw6-vwfh-v9px/GHSA-pjw6-vwfh-v9px.json index bb692dc8447..bab1aaf0fdf 100644 --- a/advisories/unreviewed/2022/05/GHSA-pjw6-vwfh-v9px/GHSA-pjw6-vwfh-v9px.json +++ b/advisories/unreviewed/2022/05/GHSA-pjw6-vwfh-v9px/GHSA-pjw6-vwfh-v9px.json @@ -7,12 +7,8 @@ "CVE-2019-14028" ], "details": "Buffer overwrite during memcpy due to lack of check on SSID length validation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8017, APQ8053, APQ8064, APQ8096, APQ8096AU, APQ8098, IPQ6018, IPQ8074, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, MSM8996AU, MSM8998, Nicobar, QCA4531, QCA6174A, QCA6564, QCA6574, QCA6574AU, QCA6584, QCA6584AU, QCA8081, QCA9377, QCA9379, QCA9886, QCN7605, QCS404, QCS405, QCS605, Rennell, SA6155P, SC8180X, SDA660, SDA845, SDM630, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pmcc-x97j-6q5m/GHSA-pmcc-x97j-6q5m.json b/advisories/unreviewed/2022/05/GHSA-pmcc-x97j-6q5m/GHSA-pmcc-x97j-6q5m.json index a0f85a59e19..d6aa3d35169 100644 --- a/advisories/unreviewed/2022/05/GHSA-pmcc-x97j-6q5m/GHSA-pmcc-x97j-6q5m.json +++ b/advisories/unreviewed/2022/05/GHSA-pmcc-x97j-6q5m/GHSA-pmcc-x97j-6q5m.json @@ -7,12 +7,8 @@ "CVE-2020-10216" ], "details": "An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. They allow remote attackers to execute arbitrary commands via the date parameter in a system_time.cgi POST request. TRENDnet TEW-632BRP 1.010B32 is also affected.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ppg2-62fj-4rw3/GHSA-ppg2-62fj-4rw3.json b/advisories/unreviewed/2022/05/GHSA-ppg2-62fj-4rw3/GHSA-ppg2-62fj-4rw3.json index fde64f9ecb5..53d6b86ec22 100644 --- a/advisories/unreviewed/2022/05/GHSA-ppg2-62fj-4rw3/GHSA-ppg2-62fj-4rw3.json +++ b/advisories/unreviewed/2022/05/GHSA-ppg2-62fj-4rw3/GHSA-ppg2-62fj-4rw3.json @@ -7,12 +7,8 @@ "CVE-2020-10097" ], "details": "An issue was discovered in Zammad 3.0 through 3.2. It may respond with verbose error messages that disclose internal application or infrastructure information. This information could aid attackers in successfully exploiting other vulnerabilities.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pr7r-78gh-g536/GHSA-pr7r-78gh-g536.json b/advisories/unreviewed/2022/05/GHSA-pr7r-78gh-g536/GHSA-pr7r-78gh-g536.json index 227864a7f46..de62d7e2e7c 100644 --- a/advisories/unreviewed/2022/05/GHSA-pr7r-78gh-g536/GHSA-pr7r-78gh-g536.json +++ b/advisories/unreviewed/2022/05/GHSA-pr7r-78gh-g536/GHSA-pr7r-78gh-g536.json @@ -7,12 +7,8 @@ "CVE-2019-7589" ], "details": "A vulnerability with the SmartService API Service option exists whereby an unauthorized user could potentially exploit this to upload malicious code to the server that could be executed at system level privileges. This affects Johnson Controls' Kantech EntraPass Corporate Edition versions 8.0 and prior; Kantech EntraPass Global Edition versions 8.0 and prior.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-prj6-hx5v-v39w/GHSA-prj6-hx5v-v39w.json b/advisories/unreviewed/2022/05/GHSA-prj6-hx5v-v39w/GHSA-prj6-hx5v-v39w.json index 699647a196d..631fa228c15 100644 --- a/advisories/unreviewed/2022/05/GHSA-prj6-hx5v-v39w/GHSA-prj6-hx5v-v39w.json +++ b/advisories/unreviewed/2022/05/GHSA-prj6-hx5v-v39w/GHSA-prj6-hx5v-v39w.json @@ -7,12 +7,8 @@ "CVE-2020-0083" ], "details": "In setRequirePmfInternal of sta_network.cpp, there is a possible default value being improperly applied due to a logic error. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-142797954", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pv45-3557-fx76/GHSA-pv45-3557-fx76.json b/advisories/unreviewed/2022/05/GHSA-pv45-3557-fx76/GHSA-pv45-3557-fx76.json index 0e607972ac3..da3cfb1a077 100644 --- a/advisories/unreviewed/2022/05/GHSA-pv45-3557-fx76/GHSA-pv45-3557-fx76.json +++ b/advisories/unreviewed/2022/05/GHSA-pv45-3557-fx76/GHSA-pv45-3557-fx76.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pw88-vjvh-qg94/GHSA-pw88-vjvh-qg94.json b/advisories/unreviewed/2022/05/GHSA-pw88-vjvh-qg94/GHSA-pw88-vjvh-qg94.json index 24bfbd130ee..509f6cad575 100644 --- a/advisories/unreviewed/2022/05/GHSA-pw88-vjvh-qg94/GHSA-pw88-vjvh-qg94.json +++ b/advisories/unreviewed/2022/05/GHSA-pw88-vjvh-qg94/GHSA-pw88-vjvh-qg94.json @@ -7,12 +7,8 @@ "CVE-2019-14086" ], "details": "Possible integer overflow while checking the length of frame which is a 32 bit integer and is added to another 32 bit integer which can lead to unexpected result during the check in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in APQ8098, MDM9607, MSM8998, QCA6584, QCN7605, QCS605, SDA660, SDM630, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SM6150, SM7150, SM8150, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-px7h-6j69-959r/GHSA-px7h-6j69-959r.json b/advisories/unreviewed/2022/05/GHSA-px7h-6j69-959r/GHSA-px7h-6j69-959r.json index 7a0c3f625f8..df24616728a 100644 --- a/advisories/unreviewed/2022/05/GHSA-px7h-6j69-959r/GHSA-px7h-6j69-959r.json +++ b/advisories/unreviewed/2022/05/GHSA-px7h-6j69-959r/GHSA-px7h-6j69-959r.json @@ -7,12 +7,8 @@ "CVE-2020-9530" ], "details": "An issue was discovered on Xiaomi MIUI V11.0.5.0.QFAEUXM devices. The export component of GetApps(com.xiaomi.mipicks) mishandles the functionality of opening other components. Attackers need to induce users to open specific web pages in a specific network environment. By jumping to the WebView component of Messaging(com.android.MMS) and loading malicious web pages, information leakage can occur. This is fixed on version: 2001122; 11.0.1.54.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pxgv-6gmm-ggxw/GHSA-pxgv-6gmm-ggxw.json b/advisories/unreviewed/2022/05/GHSA-pxgv-6gmm-ggxw/GHSA-pxgv-6gmm-ggxw.json index 8b289b23bfc..677328ea915 100644 --- a/advisories/unreviewed/2022/05/GHSA-pxgv-6gmm-ggxw/GHSA-pxgv-6gmm-ggxw.json +++ b/advisories/unreviewed/2022/05/GHSA-pxgv-6gmm-ggxw/GHSA-pxgv-6gmm-ggxw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pxh2-6x4h-4pfv/GHSA-pxh2-6x4h-4pfv.json b/advisories/unreviewed/2022/05/GHSA-pxh2-6x4h-4pfv/GHSA-pxh2-6x4h-4pfv.json index 4774a53a9e7..cd912f1c5ef 100644 --- a/advisories/unreviewed/2022/05/GHSA-pxh2-6x4h-4pfv/GHSA-pxh2-6x4h-4pfv.json +++ b/advisories/unreviewed/2022/05/GHSA-pxh2-6x4h-4pfv/GHSA-pxh2-6x4h-4pfv.json @@ -7,12 +7,8 @@ "CVE-2019-10065" ], "details": "An issue was discovered in Open Ticket Request System (OTRS) 7.0 through 7.0.6. An attacker who is logged into OTRS as a customer user can use the search result screens to disclose information from internal FAQ articles, a different vulnerability than CVE-2019-9753.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pxq6-8799-5v2r/GHSA-pxq6-8799-5v2r.json b/advisories/unreviewed/2022/05/GHSA-pxq6-8799-5v2r/GHSA-pxq6-8799-5v2r.json index ea44eb1ffcb..eb35e0e96b1 100644 --- a/advisories/unreviewed/2022/05/GHSA-pxq6-8799-5v2r/GHSA-pxq6-8799-5v2r.json +++ b/advisories/unreviewed/2022/05/GHSA-pxq6-8799-5v2r/GHSA-pxq6-8799-5v2r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q25j-wqmf-f5jm/GHSA-q25j-wqmf-f5jm.json b/advisories/unreviewed/2022/05/GHSA-q25j-wqmf-f5jm/GHSA-q25j-wqmf-f5jm.json index 1222eff3412..0e67467cebd 100644 --- a/advisories/unreviewed/2022/05/GHSA-q25j-wqmf-f5jm/GHSA-q25j-wqmf-f5jm.json +++ b/advisories/unreviewed/2022/05/GHSA-q25j-wqmf-f5jm/GHSA-q25j-wqmf-f5jm.json @@ -7,12 +7,8 @@ "CVE-2019-2317" ], "details": "The secret key used to make the Initial Sequence Number in the TCP SYN packet could be brute forced and therefore can be predicted in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MSM8905, MSM8909, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, Nicobar, QCM2150, QM215, SC8180X, SDM429, SDM439, SDM450, SDM632, SDX24, SDX55, SM6150, SM7150, SM8150", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q2xm-58cp-q89j/GHSA-q2xm-58cp-q89j.json b/advisories/unreviewed/2022/05/GHSA-q2xm-58cp-q89j/GHSA-q2xm-58cp-q89j.json index c4246b16f75..acf3b0ed85f 100644 --- a/advisories/unreviewed/2022/05/GHSA-q2xm-58cp-q89j/GHSA-q2xm-58cp-q89j.json +++ b/advisories/unreviewed/2022/05/GHSA-q2xm-58cp-q89j/GHSA-q2xm-58cp-q89j.json @@ -7,12 +7,8 @@ "CVE-2020-0045" ], "details": "In StatsService::command of StatsService.cpp, there is possible memory corruption due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-141243101", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q3vp-f397-99rf/GHSA-q3vp-f397-99rf.json b/advisories/unreviewed/2022/05/GHSA-q3vp-f397-99rf/GHSA-q3vp-f397-99rf.json index 2c5584caa14..691582892f2 100644 --- a/advisories/unreviewed/2022/05/GHSA-q3vp-f397-99rf/GHSA-q3vp-f397-99rf.json +++ b/advisories/unreviewed/2022/05/GHSA-q3vp-f397-99rf/GHSA-q3vp-f397-99rf.json @@ -7,12 +7,8 @@ "CVE-2015-7341" ], "details": "JNews Joomla Component before 8.5.0 allows arbitrary File Upload via Subscribers or Templates, as demonstrated by the .php5 extension.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q44r-xw3x-72c6/GHSA-q44r-xw3x-72c6.json b/advisories/unreviewed/2022/05/GHSA-q44r-xw3x-72c6/GHSA-q44r-xw3x-72c6.json index 75a25b099b0..c2effc6f1bb 100644 --- a/advisories/unreviewed/2022/05/GHSA-q44r-xw3x-72c6/GHSA-q44r-xw3x-72c6.json +++ b/advisories/unreviewed/2022/05/GHSA-q44r-xw3x-72c6/GHSA-q44r-xw3x-72c6.json @@ -7,12 +7,8 @@ "CVE-2020-9428" ], "details": "In Wireshark 3.2.0 to 3.2.1, 3.0.0 to 3.0.8, and 2.6.0 to 2.6.14, the EAP dissector could crash. This was addressed in epan/dissectors/packet-eap.c by using more careful sscanf parsing.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q53p-vg4g-3rxp/GHSA-q53p-vg4g-3rxp.json b/advisories/unreviewed/2022/05/GHSA-q53p-vg4g-3rxp/GHSA-q53p-vg4g-3rxp.json index 8c9c2da6268..569b387a42a 100644 --- a/advisories/unreviewed/2022/05/GHSA-q53p-vg4g-3rxp/GHSA-q53p-vg4g-3rxp.json +++ b/advisories/unreviewed/2022/05/GHSA-q53p-vg4g-3rxp/GHSA-q53p-vg4g-3rxp.json @@ -7,12 +7,8 @@ "CVE-2019-18336" ], "details": "A vulnerability has been identified in SIMATIC S7-300 CPU family (incl. related ET200 CPUs and SIPLUS variants) (All versions < V3.X.17), SINUMERIK 840D sl (All versions). Specially crafted packets sent to port 102/tcp (Profinet) could cause the affected device to go into defect mode. A restart is required in order to recover the system. Successful exploitation requires an attacker to have network access to port 102/tcp, with no authentication. No user interation is required. At the time of advisory publication no public exploitation of this security vulnerability was known.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q5pj-mjjc-c94j/GHSA-q5pj-mjjc-c94j.json b/advisories/unreviewed/2022/05/GHSA-q5pj-mjjc-c94j/GHSA-q5pj-mjjc-c94j.json index 3d756f9a5db..51df4f31ae4 100644 --- a/advisories/unreviewed/2022/05/GHSA-q5pj-mjjc-c94j/GHSA-q5pj-mjjc-c94j.json +++ b/advisories/unreviewed/2022/05/GHSA-q5pj-mjjc-c94j/GHSA-q5pj-mjjc-c94j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q5w8-77gv-454j/GHSA-q5w8-77gv-454j.json b/advisories/unreviewed/2022/05/GHSA-q5w8-77gv-454j/GHSA-q5w8-77gv-454j.json index fb3e48c7d95..304c570e6b8 100644 --- a/advisories/unreviewed/2022/05/GHSA-q5w8-77gv-454j/GHSA-q5w8-77gv-454j.json +++ b/advisories/unreviewed/2022/05/GHSA-q5w8-77gv-454j/GHSA-q5w8-77gv-454j.json @@ -7,12 +7,8 @@ "CVE-2020-10096" ], "details": "An issue was discovered in Zammad 3.0 through 3.2. It does not prevent caching of confidential data within browser memory. An attacker who either remotely compromises or obtains physical access to a user's workstation can browse the browser cache contents and obtain sensitive information. The attacker does not need to be authenticated with the application to view this information, as it would be available via the browser cache.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q666-mvxm-pc33/GHSA-q666-mvxm-pc33.json b/advisories/unreviewed/2022/05/GHSA-q666-mvxm-pc33/GHSA-q666-mvxm-pc33.json index b2a1234d4db..44c7ff7429a 100644 --- a/advisories/unreviewed/2022/05/GHSA-q666-mvxm-pc33/GHSA-q666-mvxm-pc33.json +++ b/advisories/unreviewed/2022/05/GHSA-q666-mvxm-pc33/GHSA-q666-mvxm-pc33.json @@ -7,12 +7,8 @@ "CVE-2020-0053" ], "details": "In convertHidlNanDataPathInitiatorRequestToLegacy, and convertHidlNanDataPathIndicationResponseToLegacy of hidl_struct_util.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-143789898", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q6h5-x7cx-j9jg/GHSA-q6h5-x7cx-j9jg.json b/advisories/unreviewed/2022/05/GHSA-q6h5-x7cx-j9jg/GHSA-q6h5-x7cx-j9jg.json index 33a0c8380c4..306b20f8df1 100644 --- a/advisories/unreviewed/2022/05/GHSA-q6h5-x7cx-j9jg/GHSA-q6h5-x7cx-j9jg.json +++ b/advisories/unreviewed/2022/05/GHSA-q6h5-x7cx-j9jg/GHSA-q6h5-x7cx-j9jg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q76f-w8qm-ccrj/GHSA-q76f-w8qm-ccrj.json b/advisories/unreviewed/2022/05/GHSA-q76f-w8qm-ccrj/GHSA-q76f-w8qm-ccrj.json index f180e02b3ea..0259e1c6aa4 100644 --- a/advisories/unreviewed/2022/05/GHSA-q76f-w8qm-ccrj/GHSA-q76f-w8qm-ccrj.json +++ b/advisories/unreviewed/2022/05/GHSA-q76f-w8qm-ccrj/GHSA-q76f-w8qm-ccrj.json @@ -7,12 +7,8 @@ "CVE-2020-6803" ], "details": "An open redirect is present on the gateway's login page, which could cause a user to be redirected to a malicious site after logging in.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q7g7-fmmr-xhp8/GHSA-q7g7-fmmr-xhp8.json b/advisories/unreviewed/2022/05/GHSA-q7g7-fmmr-xhp8/GHSA-q7g7-fmmr-xhp8.json index 16a7aebfc4b..6ab23a42692 100644 --- a/advisories/unreviewed/2022/05/GHSA-q7g7-fmmr-xhp8/GHSA-q7g7-fmmr-xhp8.json +++ b/advisories/unreviewed/2022/05/GHSA-q7g7-fmmr-xhp8/GHSA-q7g7-fmmr-xhp8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q8m8-7jgv-237q/GHSA-q8m8-7jgv-237q.json b/advisories/unreviewed/2022/05/GHSA-q8m8-7jgv-237q/GHSA-q8m8-7jgv-237q.json index 9dcfb807bf7..64ec61d6d86 100644 --- a/advisories/unreviewed/2022/05/GHSA-q8m8-7jgv-237q/GHSA-q8m8-7jgv-237q.json +++ b/advisories/unreviewed/2022/05/GHSA-q8m8-7jgv-237q/GHSA-q8m8-7jgv-237q.json @@ -7,12 +7,8 @@ "CVE-2019-3698" ], "details": "UNIX Symbolic Link (Symlink) Following vulnerability in the cronjob shipped with nagios of SUSE Linux Enterprise Server 12, SUSE Linux Enterprise Server 11; openSUSE Factory allows local attackers to cause cause DoS or potentially escalate privileges by winning a race. This issue affects: SUSE Linux Enterprise Server 12 nagios version 3.5.1-5.27 and prior versions. SUSE Linux Enterprise Server 11 nagios version 3.0.6-1.25.36.3.1 and prior versions. openSUSE Factory nagios version 4.4.5-2.1 and prior versions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q8mr-vcxq-vpqm/GHSA-q8mr-vcxq-vpqm.json b/advisories/unreviewed/2022/05/GHSA-q8mr-vcxq-vpqm/GHSA-q8mr-vcxq-vpqm.json index 50ead6d3802..ba6a0186bdc 100644 --- a/advisories/unreviewed/2022/05/GHSA-q8mr-vcxq-vpqm/GHSA-q8mr-vcxq-vpqm.json +++ b/advisories/unreviewed/2022/05/GHSA-q8mr-vcxq-vpqm/GHSA-q8mr-vcxq-vpqm.json @@ -7,12 +7,8 @@ "CVE-2020-3193" ], "details": "A vulnerability in the web-based management interface of Cisco Prime Collaboration Provisioning could allow an unauthenticated, remote attacker to obtain sensitive information about an affected device. The vulnerability exists because replies from the web-based management interface include unnecessary server information. An attacker could exploit this vulnerability by inspecting replies received from the web-based management interface. A successful exploit could allow the attacker to obtain details about the operating system, including the web server version that is running on the device, which could be used to perform further attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q8pv-fm9c-m7xj/GHSA-q8pv-fm9c-m7xj.json b/advisories/unreviewed/2022/05/GHSA-q8pv-fm9c-m7xj/GHSA-q8pv-fm9c-m7xj.json index dd19ef74b57..5a6c3534563 100644 --- a/advisories/unreviewed/2022/05/GHSA-q8pv-fm9c-m7xj/GHSA-q8pv-fm9c-m7xj.json +++ b/advisories/unreviewed/2022/05/GHSA-q8pv-fm9c-m7xj/GHSA-q8pv-fm9c-m7xj.json @@ -7,12 +7,8 @@ "CVE-2019-20487" ], "details": "An issue was discovered on NETGEAR WNR1000V4 1.1.0.54 devices. Multiple actions within the WNR1000V4 web management console are vulnerable to an unauthenticated GET request (exploitable directly or through CSRF), as demonstrated by the setup.cgi?todo=save_htp_account URI.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q983-929c-4926/GHSA-q983-929c-4926.json b/advisories/unreviewed/2022/05/GHSA-q983-929c-4926/GHSA-q983-929c-4926.json index ea3e89d27f1..d0131ae53e4 100644 --- a/advisories/unreviewed/2022/05/GHSA-q983-929c-4926/GHSA-q983-929c-4926.json +++ b/advisories/unreviewed/2022/05/GHSA-q983-929c-4926/GHSA-q983-929c-4926.json @@ -7,12 +7,8 @@ "CVE-2020-0035" ], "details": "In query of TelephonyProvider.java, there is a possible access to SIM card info due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9Android ID: A-140622024", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q9r8-3fp5-x86x/GHSA-q9r8-3fp5-x86x.json b/advisories/unreviewed/2022/05/GHSA-q9r8-3fp5-x86x/GHSA-q9r8-3fp5-x86x.json index 33c1272f7b3..260193b3494 100644 --- a/advisories/unreviewed/2022/05/GHSA-q9r8-3fp5-x86x/GHSA-q9r8-3fp5-x86x.json +++ b/advisories/unreviewed/2022/05/GHSA-q9r8-3fp5-x86x/GHSA-q9r8-3fp5-x86x.json @@ -7,12 +7,8 @@ "CVE-2019-10552" ], "details": "Multiple Buffer Over-read issue can happen due to improper length checks while decoding Service Reject/RAU Reject/PTMSI Realloc cmd in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8017, APQ8053, APQ8096, APQ8096AU, APQ8098, MDM9150, MDM9205, MDM9206, MDM9607, MDM9615, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8939, MSM8940, MSM8953, MSM8996AU, MSM8998, Nicobar, QCM2150, QCS605, QM215, Rennell, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qcq2-v7h2-9wvh/GHSA-qcq2-v7h2-9wvh.json b/advisories/unreviewed/2022/05/GHSA-qcq2-v7h2-9wvh/GHSA-qcq2-v7h2-9wvh.json index c2107a6bf09..5ee3817eb13 100644 --- a/advisories/unreviewed/2022/05/GHSA-qcq2-v7h2-9wvh/GHSA-qcq2-v7h2-9wvh.json +++ b/advisories/unreviewed/2022/05/GHSA-qcq2-v7h2-9wvh/GHSA-qcq2-v7h2-9wvh.json @@ -7,12 +7,8 @@ "CVE-2020-9751" ], "details": "Naver Cloud Explorer before 2.2.2.11 allows the system to download an arbitrary file from the attacker's server and execute it during the upgrade.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qcxc-9v45-h4hx/GHSA-qcxc-9v45-h4hx.json b/advisories/unreviewed/2022/05/GHSA-qcxc-9v45-h4hx/GHSA-qcxc-9v45-h4hx.json index 91c7a739f17..6839895e343 100644 --- a/advisories/unreviewed/2022/05/GHSA-qcxc-9v45-h4hx/GHSA-qcxc-9v45-h4hx.json +++ b/advisories/unreviewed/2022/05/GHSA-qcxc-9v45-h4hx/GHSA-qcxc-9v45-h4hx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qf35-c7c2-rj5w/GHSA-qf35-c7c2-rj5w.json b/advisories/unreviewed/2022/05/GHSA-qf35-c7c2-rj5w/GHSA-qf35-c7c2-rj5w.json index 5794e687c8f..5396693a0fc 100644 --- a/advisories/unreviewed/2022/05/GHSA-qf35-c7c2-rj5w/GHSA-qf35-c7c2-rj5w.json +++ b/advisories/unreviewed/2022/05/GHSA-qf35-c7c2-rj5w/GHSA-qf35-c7c2-rj5w.json @@ -7,12 +7,8 @@ "CVE-2020-3829" ], "details": "An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, macOS Catalina 10.15.3, tvOS 13.3.1, watchOS 6.1.2. An application may be able to gain elevated privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qhhm-rhwq-mpvm/GHSA-qhhm-rhwq-mpvm.json b/advisories/unreviewed/2022/05/GHSA-qhhm-rhwq-mpvm/GHSA-qhhm-rhwq-mpvm.json index 130a7d621c1..108210ecd82 100644 --- a/advisories/unreviewed/2022/05/GHSA-qhhm-rhwq-mpvm/GHSA-qhhm-rhwq-mpvm.json +++ b/advisories/unreviewed/2022/05/GHSA-qhhm-rhwq-mpvm/GHSA-qhhm-rhwq-mpvm.json @@ -7,12 +7,8 @@ "CVE-2020-3837" ], "details": "A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, macOS Catalina 10.15.3, tvOS 13.3.1, watchOS 6.1.2. An application may be able to execute arbitrary code with kernel privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qj4w-fwrp-w527/GHSA-qj4w-fwrp-w527.json b/advisories/unreviewed/2022/05/GHSA-qj4w-fwrp-w527/GHSA-qj4w-fwrp-w527.json index 1400bbd2597..823893059f1 100644 --- a/advisories/unreviewed/2022/05/GHSA-qj4w-fwrp-w527/GHSA-qj4w-fwrp-w527.json +++ b/advisories/unreviewed/2022/05/GHSA-qj4w-fwrp-w527/GHSA-qj4w-fwrp-w527.json @@ -7,12 +7,8 @@ "CVE-2019-2300" ], "details": "Possible buffer overflow in WLAN handler due to lack of validation of destination buffer size before copying into it in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8017, APQ8053, APQ8096, APQ8098, IPQ8074, MDM9206, MDM9207C, MDM9607, MSM8996, MSM8996AU, MSM8998, QCA6174A, QCA6574AU, QCA8081, QCA9377, QCA9379, QCA9886, QCS605, SDA660, SDA845, SDM630, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SM6150, SM7150, SM8150, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qj55-crj2-57h4/GHSA-qj55-crj2-57h4.json b/advisories/unreviewed/2022/05/GHSA-qj55-crj2-57h4/GHSA-qj55-crj2-57h4.json index 7daaeca12cc..9a47dd9df5e 100644 --- a/advisories/unreviewed/2022/05/GHSA-qj55-crj2-57h4/GHSA-qj55-crj2-57h4.json +++ b/advisories/unreviewed/2022/05/GHSA-qj55-crj2-57h4/GHSA-qj55-crj2-57h4.json @@ -7,12 +7,8 @@ "CVE-2019-20502" ], "details": "An issue was discovered in EFS Easy Chat Server 3.1. There is a buffer overflow via a long body2.ghp message parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qjg6-3pj8-cqgj/GHSA-qjg6-3pj8-cqgj.json b/advisories/unreviewed/2022/05/GHSA-qjg6-3pj8-cqgj/GHSA-qjg6-3pj8-cqgj.json index 6866fd3703f..fde77052750 100644 --- a/advisories/unreviewed/2022/05/GHSA-qjg6-3pj8-cqgj/GHSA-qjg6-3pj8-cqgj.json +++ b/advisories/unreviewed/2022/05/GHSA-qjg6-3pj8-cqgj/GHSA-qjg6-3pj8-cqgj.json @@ -7,12 +7,8 @@ "CVE-2020-6800" ], "details": "Mozilla developers and community members reported memory safety bugs present in Firefox 72 and Firefox ESR 68.4. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. In general, these flaws cannot be exploited through email in the Thunderbird product because scripting is disabled when reading mail, but are potentially risks in browser or browser-like contexts. This vulnerability affects Thunderbird < 68.5, Firefox < 73, and Firefox < ESR68.5.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qm9j-3g67-35f8/GHSA-qm9j-3g67-35f8.json b/advisories/unreviewed/2022/05/GHSA-qm9j-3g67-35f8/GHSA-qm9j-3g67-35f8.json index 0e6c63920e4..e0406baa512 100644 --- a/advisories/unreviewed/2022/05/GHSA-qm9j-3g67-35f8/GHSA-qm9j-3g67-35f8.json +++ b/advisories/unreviewed/2022/05/GHSA-qm9j-3g67-35f8/GHSA-qm9j-3g67-35f8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qmq5-jqr9-2mv3/GHSA-qmq5-jqr9-2mv3.json b/advisories/unreviewed/2022/05/GHSA-qmq5-jqr9-2mv3/GHSA-qmq5-jqr9-2mv3.json index 87f41bc8a79..2f65ab27c5c 100644 --- a/advisories/unreviewed/2022/05/GHSA-qmq5-jqr9-2mv3/GHSA-qmq5-jqr9-2mv3.json +++ b/advisories/unreviewed/2022/05/GHSA-qmq5-jqr9-2mv3/GHSA-qmq5-jqr9-2mv3.json @@ -7,12 +7,8 @@ "CVE-2019-9103" ], "details": "An issue was discovered on Moxa MGate MB3170 and MB3270 devices before 4.1, MB3280 and MB3480 devices before 3.1, MB3660 devices before 2.3, and MB3180 devices before 2.1. An attacker can access sensitive information (e.g., conduct username disclosure attacks) on the built-in WEB-service without authorization.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qp3j-j89p-hj4x/GHSA-qp3j-j89p-hj4x.json b/advisories/unreviewed/2022/05/GHSA-qp3j-j89p-hj4x/GHSA-qp3j-j89p-hj4x.json index 09c3c8ee98b..58c4cf19a02 100644 --- a/advisories/unreviewed/2022/05/GHSA-qp3j-j89p-hj4x/GHSA-qp3j-j89p-hj4x.json +++ b/advisories/unreviewed/2022/05/GHSA-qp3j-j89p-hj4x/GHSA-qp3j-j89p-hj4x.json @@ -7,12 +7,8 @@ "CVE-2020-9454" ], "details": "A CSRF vulnerability in the RegistrationMagic plugin through 4.6.0.3 for WordPress allows remote attackers to forge requests on behalf of a site administrator to change all settings for the plugin, including deleting users, creating new roles with escalated privileges, and allowing PHP file uploads via forms.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qq47-fgpx-9vw4/GHSA-qq47-fgpx-9vw4.json b/advisories/unreviewed/2022/05/GHSA-qq47-fgpx-9vw4/GHSA-qq47-fgpx-9vw4.json index 33a5e73ca23..da223df1da1 100644 --- a/advisories/unreviewed/2022/05/GHSA-qq47-fgpx-9vw4/GHSA-qq47-fgpx-9vw4.json +++ b/advisories/unreviewed/2022/05/GHSA-qq47-fgpx-9vw4/GHSA-qq47-fgpx-9vw4.json @@ -7,12 +7,8 @@ "CVE-2017-12580" ], "details": "An issue was discovered in IDM UltraEdit through 24.10.0.32. To exploit the vulnerability, on unpatched Windows systems, an attacker could include in the same directory as the affected executable a DLL using the name of a Windows DLL. This DLL must be preloaded by the executable (for example, \"ntmarta.dll\"). When the installer EXE is executed by the user, the DLL located in the EXE's current directory will be loaded instead of the Windows DLL, allowing the attacker to run arbitrary code on the affected system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qq4j-h3cx-crr9/GHSA-qq4j-h3cx-crr9.json b/advisories/unreviewed/2022/05/GHSA-qq4j-h3cx-crr9/GHSA-qq4j-h3cx-crr9.json index 4cd5dd1e050..3bc5b3518a8 100644 --- a/advisories/unreviewed/2022/05/GHSA-qq4j-h3cx-crr9/GHSA-qq4j-h3cx-crr9.json +++ b/advisories/unreviewed/2022/05/GHSA-qq4j-h3cx-crr9/GHSA-qq4j-h3cx-crr9.json @@ -7,12 +7,8 @@ "CVE-2019-14050" ], "details": "Out-of-bound writes occurs due to lack of check of buffer size will cause buffer overflow only in 32bit architecture. in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8009, MDM9150, MDM9205, MDM9607, MDM9650, MSM8905, Nicobar, QCS405, QCS605, Rennell, SA6155P, SDA660, SDA845, SDM630, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX24, SM6150, SM7150, SM8150, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qqvw-2w25-wwh8/GHSA-qqvw-2w25-wwh8.json b/advisories/unreviewed/2022/05/GHSA-qqvw-2w25-wwh8/GHSA-qqvw-2w25-wwh8.json index e216acd733a..7b39e598a1e 100644 --- a/advisories/unreviewed/2022/05/GHSA-qqvw-2w25-wwh8/GHSA-qqvw-2w25-wwh8.json +++ b/advisories/unreviewed/2022/05/GHSA-qqvw-2w25-wwh8/GHSA-qqvw-2w25-wwh8.json @@ -7,12 +7,8 @@ "CVE-2020-1980" ], "details": "A shell command injection vulnerability in the PAN-OS CLI allows a local authenticated user to escape the restricted shell and escalate privileges. This issue affects only PAN-OS 8.1 versions earlier than PAN-OS 8.1.13. This issue does not affect PAN-OS 7.1, PAN-OS 9.0, or later PAN-OS versions. This issue is fixed in PAN-OS 8.1.13, and all later versions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qv49-69cc-w47j/GHSA-qv49-69cc-w47j.json b/advisories/unreviewed/2022/05/GHSA-qv49-69cc-w47j/GHSA-qv49-69cc-w47j.json index 46874fe5b9c..3e2fad63041 100644 --- a/advisories/unreviewed/2022/05/GHSA-qv49-69cc-w47j/GHSA-qv49-69cc-w47j.json +++ b/advisories/unreviewed/2022/05/GHSA-qv49-69cc-w47j/GHSA-qv49-69cc-w47j.json @@ -7,12 +7,8 @@ "CVE-2020-10233" ], "details": "In version 4.8.0 and earlier of The Sleuth Kit (TSK), there is a heap-based buffer over-read in ntfs_dinode_lookup in fs/ntfs.c.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qwm2-p76q-cw3g/GHSA-qwm2-p76q-cw3g.json b/advisories/unreviewed/2022/05/GHSA-qwm2-p76q-cw3g/GHSA-qwm2-p76q-cw3g.json index e13fbc7d274..b3beb16611f 100644 --- a/advisories/unreviewed/2022/05/GHSA-qwm2-p76q-cw3g/GHSA-qwm2-p76q-cw3g.json +++ b/advisories/unreviewed/2022/05/GHSA-qwm2-p76q-cw3g/GHSA-qwm2-p76q-cw3g.json @@ -7,12 +7,8 @@ "CVE-2020-6798" ], "details": "If a template tag was used in a select tag, the parser could be confused and allow JavaScript parsing and execution when it should not be allowed. A site that relied on the browser behaving correctly could suffer a cross-site scripting vulnerability as a result. In general, this flaw cannot be exploited through email in the Thunderbird product because scripting is disabled when reading mail, but is potentially a risk in browser or browser-like contexts. This vulnerability affects Thunderbird < 68.5, Firefox < 73, and Firefox < ESR68.5.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qwr4-m8jc-p6rf/GHSA-qwr4-m8jc-p6rf.json b/advisories/unreviewed/2022/05/GHSA-qwr4-m8jc-p6rf/GHSA-qwr4-m8jc-p6rf.json index 584fb64846e..3139dfc0e70 100644 --- a/advisories/unreviewed/2022/05/GHSA-qwr4-m8jc-p6rf/GHSA-qwr4-m8jc-p6rf.json +++ b/advisories/unreviewed/2022/05/GHSA-qwr4-m8jc-p6rf/GHSA-qwr4-m8jc-p6rf.json @@ -7,12 +7,8 @@ "CVE-2019-10604" ], "details": "Possibility of heap-buffer-overflow during last iteration of loop while populating image version information in diag command response packet, in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in APQ8053, APQ8096AU, APQ8098, MDM9607, MDM9640, MSM8909W, MSM8917, MSM8953, Nicobar, QCS605, QM215, Rennell, SA6155P, Saipan, SDA660, SDM429, SDM439, SDM450, SDM632, SDM670, SDM710, SDM845, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qx83-34c6-2jw3/GHSA-qx83-34c6-2jw3.json b/advisories/unreviewed/2022/05/GHSA-qx83-34c6-2jw3/GHSA-qx83-34c6-2jw3.json index 0c5829437a3..e26815ef27c 100644 --- a/advisories/unreviewed/2022/05/GHSA-qx83-34c6-2jw3/GHSA-qx83-34c6-2jw3.json +++ b/advisories/unreviewed/2022/05/GHSA-qx83-34c6-2jw3/GHSA-qx83-34c6-2jw3.json @@ -7,12 +7,8 @@ "CVE-2019-11345" ], "details": "Citrix SD-WAN Center 10.2.x before 10.2.1 and NetScaler SD-WAN Center 10.0.x before 10.0.7 allow XSS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qxm5-482p-wpc5/GHSA-qxm5-482p-wpc5.json b/advisories/unreviewed/2022/05/GHSA-qxm5-482p-wpc5/GHSA-qxm5-482p-wpc5.json index 3f54b8df952..04033bd332f 100644 --- a/advisories/unreviewed/2022/05/GHSA-qxm5-482p-wpc5/GHSA-qxm5-482p-wpc5.json +++ b/advisories/unreviewed/2022/05/GHSA-qxm5-482p-wpc5/GHSA-qxm5-482p-wpc5.json @@ -7,12 +7,8 @@ "CVE-2019-14027" ], "details": "Buffer overflow due to lack of upper bound check on channel length which is used for a loop. in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking in APQ8098, IPQ6018, IPQ8074, MSM8998, Nicobar, QCA8081, QCN7605, QCS404, QCS605, Rennell, SC8180X, SDA660, SDA845, SDM630, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SM6150, SM7150, SM8150, SXR1130, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qxvv-6mm7-75fh/GHSA-qxvv-6mm7-75fh.json b/advisories/unreviewed/2022/05/GHSA-qxvv-6mm7-75fh/GHSA-qxvv-6mm7-75fh.json index f7c8c43e080..cad1307ae67 100644 --- a/advisories/unreviewed/2022/05/GHSA-qxvv-6mm7-75fh/GHSA-qxvv-6mm7-75fh.json +++ b/advisories/unreviewed/2022/05/GHSA-qxvv-6mm7-75fh/GHSA-qxvv-6mm7-75fh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r234-gvxh-m2fv/GHSA-r234-gvxh-m2fv.json b/advisories/unreviewed/2022/05/GHSA-r234-gvxh-m2fv/GHSA-r234-gvxh-m2fv.json index 2bb2160ad75..fd5f664363a 100644 --- a/advisories/unreviewed/2022/05/GHSA-r234-gvxh-m2fv/GHSA-r234-gvxh-m2fv.json +++ b/advisories/unreviewed/2022/05/GHSA-r234-gvxh-m2fv/GHSA-r234-gvxh-m2fv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r259-m89p-gjgg/GHSA-r259-m89p-gjgg.json b/advisories/unreviewed/2022/05/GHSA-r259-m89p-gjgg/GHSA-r259-m89p-gjgg.json index 1497ec792dd..7580edaa327 100644 --- a/advisories/unreviewed/2022/05/GHSA-r259-m89p-gjgg/GHSA-r259-m89p-gjgg.json +++ b/advisories/unreviewed/2022/05/GHSA-r259-m89p-gjgg/GHSA-r259-m89p-gjgg.json @@ -7,12 +7,8 @@ "CVE-2020-5957" ], "details": "NVIDIA Windows GPU Display Driver, all versions, contains a vulnerability in the NVIDIA Control Panel component in which an attacker with local system access can corrupt a system file, which may lead to denial of service or escalation of privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r3cv-8v59-5mh6/GHSA-r3cv-8v59-5mh6.json b/advisories/unreviewed/2022/05/GHSA-r3cv-8v59-5mh6/GHSA-r3cv-8v59-5mh6.json index f575b0e208e..353cf7a0e43 100644 --- a/advisories/unreviewed/2022/05/GHSA-r3cv-8v59-5mh6/GHSA-r3cv-8v59-5mh6.json +++ b/advisories/unreviewed/2022/05/GHSA-r3cv-8v59-5mh6/GHSA-r3cv-8v59-5mh6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r42j-8h58-j557/GHSA-r42j-8h58-j557.json b/advisories/unreviewed/2022/05/GHSA-r42j-8h58-j557/GHSA-r42j-8h58-j557.json index d6eeb909766..2e2c3c37642 100644 --- a/advisories/unreviewed/2022/05/GHSA-r42j-8h58-j557/GHSA-r42j-8h58-j557.json +++ b/advisories/unreviewed/2022/05/GHSA-r42j-8h58-j557/GHSA-r42j-8h58-j557.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r4c9-6rrr-76p6/GHSA-r4c9-6rrr-76p6.json b/advisories/unreviewed/2022/05/GHSA-r4c9-6rrr-76p6/GHSA-r4c9-6rrr-76p6.json index 437a012f7d0..e27aea6f2a1 100644 --- a/advisories/unreviewed/2022/05/GHSA-r4c9-6rrr-76p6/GHSA-r4c9-6rrr-76p6.json +++ b/advisories/unreviewed/2022/05/GHSA-r4c9-6rrr-76p6/GHSA-r4c9-6rrr-76p6.json @@ -7,12 +7,8 @@ "CVE-2019-9097" ], "details": "An issue was discovered on Moxa MGate MB3170 and MB3270 devices before 4.1, MB3280 and MB3480 devices before 3.1, MB3660 devices before 2.3, and MB3180 devices before 2.1. A high rate of transit traffic may cause a low-memory condition and a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r4h4-rwx2-53cg/GHSA-r4h4-rwx2-53cg.json b/advisories/unreviewed/2022/05/GHSA-r4h4-rwx2-53cg/GHSA-r4h4-rwx2-53cg.json index edd38146d26..2f46f73cefe 100644 --- a/advisories/unreviewed/2022/05/GHSA-r4h4-rwx2-53cg/GHSA-r4h4-rwx2-53cg.json +++ b/advisories/unreviewed/2022/05/GHSA-r4h4-rwx2-53cg/GHSA-r4h4-rwx2-53cg.json @@ -7,12 +7,8 @@ "CVE-2020-0046" ], "details": "In DrmPlugin::releaseSecureStops of DrmPlugin.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-137284652", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r57c-c5gj-4hr8/GHSA-r57c-c5gj-4hr8.json b/advisories/unreviewed/2022/05/GHSA-r57c-c5gj-4hr8/GHSA-r57c-c5gj-4hr8.json index 2fc407b658d..0ff455255f5 100644 --- a/advisories/unreviewed/2022/05/GHSA-r57c-c5gj-4hr8/GHSA-r57c-c5gj-4hr8.json +++ b/advisories/unreviewed/2022/05/GHSA-r57c-c5gj-4hr8/GHSA-r57c-c5gj-4hr8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r58g-p5fc-5h6w/GHSA-r58g-p5fc-5h6w.json b/advisories/unreviewed/2022/05/GHSA-r58g-p5fc-5h6w/GHSA-r58g-p5fc-5h6w.json index 4f159007cea..25310025ee5 100644 --- a/advisories/unreviewed/2022/05/GHSA-r58g-p5fc-5h6w/GHSA-r58g-p5fc-5h6w.json +++ b/advisories/unreviewed/2022/05/GHSA-r58g-p5fc-5h6w/GHSA-r58g-p5fc-5h6w.json @@ -7,12 +7,8 @@ "CVE-2020-8809" ], "details": "Gurux GXDLMS Director prior to 8.5.1905.1301 downloads updates to add-ins and OBIS code over an unencrypted HTTP connection. A man-in-the-middle attacker can prompt the user to download updates by modifying the contents of gurux.fi/obis/files.xml and gurux.fi/updates/updates.xml. Then, the attacker can modify the contents of downloaded files. In the case of add-ins (if the user is using those), this will lead to code execution. In case of OBIS codes (which the user is always using as they are needed to communicate with the energy meters), this can lead to code execution when combined with CVE-2020-8810.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r5jc-c3q5-cv3r/GHSA-r5jc-c3q5-cv3r.json b/advisories/unreviewed/2022/05/GHSA-r5jc-c3q5-cv3r/GHSA-r5jc-c3q5-cv3r.json index ced7749271a..e3fc2d41b52 100644 --- a/advisories/unreviewed/2022/05/GHSA-r5jc-c3q5-cv3r/GHSA-r5jc-c3q5-cv3r.json +++ b/advisories/unreviewed/2022/05/GHSA-r5jc-c3q5-cv3r/GHSA-r5jc-c3q5-cv3r.json @@ -7,12 +7,8 @@ "CVE-2020-9459" ], "details": "Multiple Stored Cross-site scripting (XSS) vulnerabilities in the Webnus Modern Events Calendar Lite plugin through 5.1.6 for WordPress allows remote authenticated users (with minimal permissions) to inject arbitrary JavaScript, HTML, or CSS via Ajax actions. This affects mec_save_notifications and import_settings.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r5w6-vmvw-3856/GHSA-r5w6-vmvw-3856.json b/advisories/unreviewed/2022/05/GHSA-r5w6-vmvw-3856/GHSA-r5w6-vmvw-3856.json index 8974d732401..5fde050700a 100644 --- a/advisories/unreviewed/2022/05/GHSA-r5w6-vmvw-3856/GHSA-r5w6-vmvw-3856.json +++ b/advisories/unreviewed/2022/05/GHSA-r5w6-vmvw-3856/GHSA-r5w6-vmvw-3856.json @@ -7,12 +7,8 @@ "CVE-2019-14079" ], "details": "Access to the uninitialized variable when the driver tries to unmap the dma buffer of a request which was never mapped in the first place leading to kernel failure in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in APQ8009, APQ8053, MDM9607, MDM9640, MSM8909W, MSM8953, QCA6574AU, QCS605, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM632, SDM670, SDM710, SDM845, SDX24, SM8150, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r63f-xx72-hrcw/GHSA-r63f-xx72-hrcw.json b/advisories/unreviewed/2022/05/GHSA-r63f-xx72-hrcw/GHSA-r63f-xx72-hrcw.json index 177a88a15fc..156cfcdad60 100644 --- a/advisories/unreviewed/2022/05/GHSA-r63f-xx72-hrcw/GHSA-r63f-xx72-hrcw.json +++ b/advisories/unreviewed/2022/05/GHSA-r63f-xx72-hrcw/GHSA-r63f-xx72-hrcw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r65x-vmq7-cgg6/GHSA-r65x-vmq7-cgg6.json b/advisories/unreviewed/2022/05/GHSA-r65x-vmq7-cgg6/GHSA-r65x-vmq7-cgg6.json index dfe5fed8f32..ebfed4959ae 100644 --- a/advisories/unreviewed/2022/05/GHSA-r65x-vmq7-cgg6/GHSA-r65x-vmq7-cgg6.json +++ b/advisories/unreviewed/2022/05/GHSA-r65x-vmq7-cgg6/GHSA-r65x-vmq7-cgg6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r67h-45wp-63r3/GHSA-r67h-45wp-63r3.json b/advisories/unreviewed/2022/05/GHSA-r67h-45wp-63r3/GHSA-r67h-45wp-63r3.json index 5f32f9db3c5..306256d78de 100644 --- a/advisories/unreviewed/2022/05/GHSA-r67h-45wp-63r3/GHSA-r67h-45wp-63r3.json +++ b/advisories/unreviewed/2022/05/GHSA-r67h-45wp-63r3/GHSA-r67h-45wp-63r3.json @@ -7,12 +7,8 @@ "CVE-2019-4669" ], "details": "IBM Business Process Manager 8.5.7.0 through 8.5.7.0 2017.06, 8.6.0.0 through 8.6.0.0 CF2018.03, and IBM Business Automation Workflow 18.0.0.1 through 19.0.0.3 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 171254.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r8hw-2vg3-pcpx/GHSA-r8hw-2vg3-pcpx.json b/advisories/unreviewed/2022/05/GHSA-r8hw-2vg3-pcpx/GHSA-r8hw-2vg3-pcpx.json index 4d88b285ebf..b4e981b46e8 100644 --- a/advisories/unreviewed/2022/05/GHSA-r8hw-2vg3-pcpx/GHSA-r8hw-2vg3-pcpx.json +++ b/advisories/unreviewed/2022/05/GHSA-r8hw-2vg3-pcpx/GHSA-r8hw-2vg3-pcpx.json @@ -7,12 +7,8 @@ "CVE-2020-9517" ], "details": "There is an improper restriction of rendered UI layers or frames vulnerability in Micro Focus Service Manager Release Control versions 9.50 and 9.60. The vulnerability may result in the ability of malicious users to perform UI redress attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r9f5-9xmp-7m8w/GHSA-r9f5-9xmp-7m8w.json b/advisories/unreviewed/2022/05/GHSA-r9f5-9xmp-7m8w/GHSA-r9f5-9xmp-7m8w.json index 11444b519cb..97e957e401b 100644 --- a/advisories/unreviewed/2022/05/GHSA-r9f5-9xmp-7m8w/GHSA-r9f5-9xmp-7m8w.json +++ b/advisories/unreviewed/2022/05/GHSA-r9f5-9xmp-7m8w/GHSA-r9f5-9xmp-7m8w.json @@ -7,12 +7,8 @@ "CVE-2015-1583" ], "details": "Multiple cross-site request forgery (CSRF) vulnerabilities in ATutor 2.2 allow remote attackers to hijack the authentication of administrators for requests that (1) create an administrator account via a request to mods/_core/users/admins/create.php or (2) create a user account via a request to mods/_core/users/create_user.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rc96-pxf6-73c4/GHSA-rc96-pxf6-73c4.json b/advisories/unreviewed/2022/05/GHSA-rc96-pxf6-73c4/GHSA-rc96-pxf6-73c4.json index 380d9384a05..3b4bbe86117 100644 --- a/advisories/unreviewed/2022/05/GHSA-rc96-pxf6-73c4/GHSA-rc96-pxf6-73c4.json +++ b/advisories/unreviewed/2022/05/GHSA-rc96-pxf6-73c4/GHSA-rc96-pxf6-73c4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rfpx-7r27-mgh4/GHSA-rfpx-7r27-mgh4.json b/advisories/unreviewed/2022/05/GHSA-rfpx-7r27-mgh4/GHSA-rfpx-7r27-mgh4.json index 412e07c59fa..b967236aced 100644 --- a/advisories/unreviewed/2022/05/GHSA-rfpx-7r27-mgh4/GHSA-rfpx-7r27-mgh4.json +++ b/advisories/unreviewed/2022/05/GHSA-rfpx-7r27-mgh4/GHSA-rfpx-7r27-mgh4.json @@ -7,12 +7,8 @@ "CVE-2019-10594" ], "details": "Stack overflow can occur when SDP is received with multiple payload types in the FMTP attribute of a video M line in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8017, APQ8053, APQ8076, APQ8096, APQ8096AU, APQ8098, MDM9150, MDM9206, MDM9607, MDM9615, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, MSM8998, Nicobar, QCM2150, QCS605, QM215, Rennell, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rg4p-cggg-c32j/GHSA-rg4p-cggg-c32j.json b/advisories/unreviewed/2022/05/GHSA-rg4p-cggg-c32j/GHSA-rg4p-cggg-c32j.json index 16ec4ebffc1..b9c5d2c034c 100644 --- a/advisories/unreviewed/2022/05/GHSA-rg4p-cggg-c32j/GHSA-rg4p-cggg-c32j.json +++ b/advisories/unreviewed/2022/05/GHSA-rg4p-cggg-c32j/GHSA-rg4p-cggg-c32j.json @@ -7,12 +7,8 @@ "CVE-2019-4608" ], "details": "IBM Tivoli Workload Scheduler 9.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 168508.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rg8v-rp2w-69v6/GHSA-rg8v-rp2w-69v6.json b/advisories/unreviewed/2022/05/GHSA-rg8v-rp2w-69v6/GHSA-rg8v-rp2w-69v6.json index 05c830ca53d..99e5eeaff00 100644 --- a/advisories/unreviewed/2022/05/GHSA-rg8v-rp2w-69v6/GHSA-rg8v-rp2w-69v6.json +++ b/advisories/unreviewed/2022/05/GHSA-rg8v-rp2w-69v6/GHSA-rg8v-rp2w-69v6.json @@ -7,12 +7,8 @@ "CVE-2020-9449" ], "details": "An insecure random number generation vulnerability in BlaB! AX, BlaB! AX Pro, BlaB! WS (client), and BlaB! WS Pro (client) version 19.11 allows an attacker (with a guest or user session cookie) to escalate privileges by retrieving the cookie salt value and creating a valid session cookie for an arbitrary user or admin.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rgf4-9xrf-jpv4/GHSA-rgf4-9xrf-jpv4.json b/advisories/unreviewed/2022/05/GHSA-rgf4-9xrf-jpv4/GHSA-rgf4-9xrf-jpv4.json index abbe1b47ac9..5a7499c4c64 100644 --- a/advisories/unreviewed/2022/05/GHSA-rgf4-9xrf-jpv4/GHSA-rgf4-9xrf-jpv4.json +++ b/advisories/unreviewed/2022/05/GHSA-rgf4-9xrf-jpv4/GHSA-rgf4-9xrf-jpv4.json @@ -7,12 +7,8 @@ "CVE-2019-10569" ], "details": "Stack buffer overflow due to instance id is misplaced inside definition of hardware accelerated effects in makefile in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Mobile in APQ8053, APQ8098, MDM9607, MDM9640, MSM8998, QCS605, SC8180X, SDM439, SDM630, SDM636, SDM660, SDM845, SDX24, SDX55, SM6150, SM7150, SM8150, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rgf7-wr77-vhqc/GHSA-rgf7-wr77-vhqc.json b/advisories/unreviewed/2022/05/GHSA-rgf7-wr77-vhqc/GHSA-rgf7-wr77-vhqc.json index ca3867517fb..8ff57d0a7fa 100644 --- a/advisories/unreviewed/2022/05/GHSA-rgf7-wr77-vhqc/GHSA-rgf7-wr77-vhqc.json +++ b/advisories/unreviewed/2022/05/GHSA-rgf7-wr77-vhqc/GHSA-rgf7-wr77-vhqc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rggj-vg82-mprw/GHSA-rggj-vg82-mprw.json b/advisories/unreviewed/2022/05/GHSA-rggj-vg82-mprw/GHSA-rggj-vg82-mprw.json index 0daef10a376..7a3440c7c50 100644 --- a/advisories/unreviewed/2022/05/GHSA-rggj-vg82-mprw/GHSA-rggj-vg82-mprw.json +++ b/advisories/unreviewed/2022/05/GHSA-rggj-vg82-mprw/GHSA-rggj-vg82-mprw.json @@ -7,12 +7,8 @@ "CVE-2018-15819" ], "details": "EasyIO EasyIO-30P devices before 2.0.5.27 have Incorrect Access Control, related to webuser.js.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rh46-rhp9-6x53/GHSA-rh46-rhp9-6x53.json b/advisories/unreviewed/2022/05/GHSA-rh46-rhp9-6x53/GHSA-rh46-rhp9-6x53.json index a1eec676c46..93c25f1de20 100644 --- a/advisories/unreviewed/2022/05/GHSA-rh46-rhp9-6x53/GHSA-rh46-rhp9-6x53.json +++ b/advisories/unreviewed/2022/05/GHSA-rh46-rhp9-6x53/GHSA-rh46-rhp9-6x53.json @@ -7,12 +7,8 @@ "CVE-2020-4217" ], "details": "The IBM Spectrum Scale 4.2 and 5.0 file system component is affected by a denial of service security vulnerability. An attacker can force the Spectrum Scale mmfsd/mmsdrserv daemons to unexpectedly exit, impacting the functionality of the Spectrum Scale cluster and the availability of file systems managed by Spectrum Scale. IBM X-Force ID: 175067.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rm3c-r6h9-r9rg/GHSA-rm3c-r6h9-r9rg.json b/advisories/unreviewed/2022/05/GHSA-rm3c-r6h9-r9rg/GHSA-rm3c-r6h9-r9rg.json index afa64d3c2d8..fface65b9a0 100644 --- a/advisories/unreviewed/2022/05/GHSA-rm3c-r6h9-r9rg/GHSA-rm3c-r6h9-r9rg.json +++ b/advisories/unreviewed/2022/05/GHSA-rm3c-r6h9-r9rg/GHSA-rm3c-r6h9-r9rg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rm83-3224-p496/GHSA-rm83-3224-p496.json b/advisories/unreviewed/2022/05/GHSA-rm83-3224-p496/GHSA-rm83-3224-p496.json index f76adad367c..761ae49a7dc 100644 --- a/advisories/unreviewed/2022/05/GHSA-rm83-3224-p496/GHSA-rm83-3224-p496.json +++ b/advisories/unreviewed/2022/05/GHSA-rm83-3224-p496/GHSA-rm83-3224-p496.json @@ -7,12 +7,8 @@ "CVE-2019-19607" ], "details": "A SQL injection vulnerability in the web conferencing component of Mitel MiCollab AWV before 8.1.2.2 could allow an unauthenticated attack due to insufficient input validation for the session parameter. A successful exploit could allow an attacker to extract sensitive information from the database and execute arbitrary scripts.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rmh9-vccw-6fm8/GHSA-rmh9-vccw-6fm8.json b/advisories/unreviewed/2022/05/GHSA-rmh9-vccw-6fm8/GHSA-rmh9-vccw-6fm8.json index 3be80ac9263..292e97e3caf 100644 --- a/advisories/unreviewed/2022/05/GHSA-rmh9-vccw-6fm8/GHSA-rmh9-vccw-6fm8.json +++ b/advisories/unreviewed/2022/05/GHSA-rmh9-vccw-6fm8/GHSA-rmh9-vccw-6fm8.json @@ -7,12 +7,8 @@ "CVE-2020-10213" ], "details": "An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. They allow remote attackers to execute arbitrary commands via the wps_sta_enrollee_pin parameter in a set_sta_enrollee_pin.cgi POST request. TRENDnet TEW-632BRP 1.010B32 is also affected.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rp7r-wpfq-pr77/GHSA-rp7r-wpfq-pr77.json b/advisories/unreviewed/2022/05/GHSA-rp7r-wpfq-pr77/GHSA-rp7r-wpfq-pr77.json index 25d132db534..638a47fea52 100644 --- a/advisories/unreviewed/2022/05/GHSA-rp7r-wpfq-pr77/GHSA-rp7r-wpfq-pr77.json +++ b/advisories/unreviewed/2022/05/GHSA-rp7r-wpfq-pr77/GHSA-rp7r-wpfq-pr77.json @@ -7,12 +7,8 @@ "CVE-2020-9463" ], "details": "Centreon 19.10 allows remote authenticated users to execute arbitrary OS commands via shell metacharacters in the server_ip field in JSON data in an api/internal.php?object=centreon_configuration_remote request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rpjw-wq4m-v5j8/GHSA-rpjw-wq4m-v5j8.json b/advisories/unreviewed/2022/05/GHSA-rpjw-wq4m-v5j8/GHSA-rpjw-wq4m-v5j8.json index fdda284bed0..3509c79e5ea 100644 --- a/advisories/unreviewed/2022/05/GHSA-rpjw-wq4m-v5j8/GHSA-rpjw-wq4m-v5j8.json +++ b/advisories/unreviewed/2022/05/GHSA-rpjw-wq4m-v5j8/GHSA-rpjw-wq4m-v5j8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rpq3-7r39-wr67/GHSA-rpq3-7r39-wr67.json b/advisories/unreviewed/2022/05/GHSA-rpq3-7r39-wr67/GHSA-rpq3-7r39-wr67.json index dbd8022dc66..14d9d582379 100644 --- a/advisories/unreviewed/2022/05/GHSA-rpq3-7r39-wr67/GHSA-rpq3-7r39-wr67.json +++ b/advisories/unreviewed/2022/05/GHSA-rpq3-7r39-wr67/GHSA-rpq3-7r39-wr67.json @@ -7,12 +7,8 @@ "CVE-2019-13006" ], "details": "An issue was discovered in GitLab Community and Enterprise Edition 9.0 and through 12.0.2. Users with access to issues, but not the repository were able to view the number of related merge requests on an issue. It has Incorrect Access Control.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rq4m-766g-9mx4/GHSA-rq4m-766g-9mx4.json b/advisories/unreviewed/2022/05/GHSA-rq4m-766g-9mx4/GHSA-rq4m-766g-9mx4.json index 074546869d6..24f857057b8 100644 --- a/advisories/unreviewed/2022/05/GHSA-rq4m-766g-9mx4/GHSA-rq4m-766g-9mx4.json +++ b/advisories/unreviewed/2022/05/GHSA-rq4m-766g-9mx4/GHSA-rq4m-766g-9mx4.json @@ -7,12 +7,8 @@ "CVE-2020-9457" ], "details": "The RegistrationMagic plugin through 4.6.0.3 for WordPress allows remote authenticated users (with minimal privileges) to import custom vulnerable forms and change form settings via class_rm_form_settings_controller.php, resulting in privilege escalation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rqh9-9xqh-854h/GHSA-rqh9-9xqh-854h.json b/advisories/unreviewed/2022/05/GHSA-rqh9-9xqh-854h/GHSA-rqh9-9xqh-854h.json index e8994819a87..8728a2ab649 100644 --- a/advisories/unreviewed/2022/05/GHSA-rqh9-9xqh-854h/GHSA-rqh9-9xqh-854h.json +++ b/advisories/unreviewed/2022/05/GHSA-rqh9-9xqh-854h/GHSA-rqh9-9xqh-854h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rr49-pwf2-62mg/GHSA-rr49-pwf2-62mg.json b/advisories/unreviewed/2022/05/GHSA-rr49-pwf2-62mg/GHSA-rr49-pwf2-62mg.json index 9deaba9dfe0..90d3791f9ac 100644 --- a/advisories/unreviewed/2022/05/GHSA-rr49-pwf2-62mg/GHSA-rr49-pwf2-62mg.json +++ b/advisories/unreviewed/2022/05/GHSA-rr49-pwf2-62mg/GHSA-rr49-pwf2-62mg.json @@ -7,12 +7,8 @@ "CVE-2019-20489" ], "details": "An issue was discovered on NETGEAR WNR1000V4 1.1.0.54 devices. The web management interface (setup.cgi) has an authentication bypass and other problems that ultimately allow an attacker to remotely compromise the device from a malicious webpage. The attacker sends an FW_remote.htm&todo=cfg_init request without a cookie, reads the Set-Cookie header in the 401 Unauthorized response, and then repeats the FW_remote.htm&todo=cfg_init request with the specified cookie.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rr7p-xgf7-grw4/GHSA-rr7p-xgf7-grw4.json b/advisories/unreviewed/2022/05/GHSA-rr7p-xgf7-grw4/GHSA-rr7p-xgf7-grw4.json index 7ee6a7085be..3dbb4d6a03d 100644 --- a/advisories/unreviewed/2022/05/GHSA-rr7p-xgf7-grw4/GHSA-rr7p-xgf7-grw4.json +++ b/advisories/unreviewed/2022/05/GHSA-rr7p-xgf7-grw4/GHSA-rr7p-xgf7-grw4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rrwc-c46p-f3v6/GHSA-rrwc-c46p-f3v6.json b/advisories/unreviewed/2022/05/GHSA-rrwc-c46p-f3v6/GHSA-rrwc-c46p-f3v6.json index 8eefedf9e78..d778b64d802 100644 --- a/advisories/unreviewed/2022/05/GHSA-rrwc-c46p-f3v6/GHSA-rrwc-c46p-f3v6.json +++ b/advisories/unreviewed/2022/05/GHSA-rrwc-c46p-f3v6/GHSA-rrwc-c46p-f3v6.json @@ -7,12 +7,8 @@ "CVE-2020-7062" ], "details": "In PHP versions 7.2.x below 7.2.28, 7.3.x below 7.3.15 and 7.4.x below 7.4.3, when using file upload functionality, if upload progress tracking is enabled, but session.upload_progress.cleanup is set to 0 (disabled), and the file upload fails, the upload procedure would try to clean up data that does not exist and encounter null pointer dereference, which would likely lead to a crash.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rwpv-9gq4-x5g3/GHSA-rwpv-9gq4-x5g3.json b/advisories/unreviewed/2022/05/GHSA-rwpv-9gq4-x5g3/GHSA-rwpv-9gq4-x5g3.json index f9f5f00ea02..aeea385a1d0 100644 --- a/advisories/unreviewed/2022/05/GHSA-rwpv-9gq4-x5g3/GHSA-rwpv-9gq4-x5g3.json +++ b/advisories/unreviewed/2022/05/GHSA-rwpv-9gq4-x5g3/GHSA-rwpv-9gq4-x5g3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rx6c-qrhp-f4hq/GHSA-rx6c-qrhp-f4hq.json b/advisories/unreviewed/2022/05/GHSA-rx6c-qrhp-f4hq/GHSA-rx6c-qrhp-f4hq.json index 513be392a3d..5a5b9494d4e 100644 --- a/advisories/unreviewed/2022/05/GHSA-rx6c-qrhp-f4hq/GHSA-rx6c-qrhp-f4hq.json +++ b/advisories/unreviewed/2022/05/GHSA-rx6c-qrhp-f4hq/GHSA-rx6c-qrhp-f4hq.json @@ -7,12 +7,8 @@ "CVE-2019-9104" ], "details": "An issue was discovered on Moxa MGate MB3170 and MB3270 devices before 4.1, MB3280 and MB3480 devices before 3.1, MB3660 devices before 2.3, and MB3180 devices before 2.1. The application's configuration file contains parameters that represent passwords in cleartext.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rxp5-r45j-vr8c/GHSA-rxp5-r45j-vr8c.json b/advisories/unreviewed/2022/05/GHSA-rxp5-r45j-vr8c/GHSA-rxp5-r45j-vr8c.json index e57cf5fec89..e9a53705fc9 100644 --- a/advisories/unreviewed/2022/05/GHSA-rxp5-r45j-vr8c/GHSA-rxp5-r45j-vr8c.json +++ b/advisories/unreviewed/2022/05/GHSA-rxp5-r45j-vr8c/GHSA-rxp5-r45j-vr8c.json @@ -7,12 +7,8 @@ "CVE-2019-20488" ], "details": "An issue was discovered on NETGEAR WNR1000V4 1.1.0.54 devices. Multiple actions within the web management interface (setup.cgi) are vulnerable to command injection, allowing remote attackers to execute arbitrary commands, as demonstrated by shell metacharacters in the sysDNSHost parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v2j6-hw4v-8ch9/GHSA-v2j6-hw4v-8ch9.json b/advisories/unreviewed/2022/05/GHSA-v2j6-hw4v-8ch9/GHSA-v2j6-hw4v-8ch9.json index 9d7f686e1f5..aaecc5670d5 100644 --- a/advisories/unreviewed/2022/05/GHSA-v2j6-hw4v-8ch9/GHSA-v2j6-hw4v-8ch9.json +++ b/advisories/unreviewed/2022/05/GHSA-v2j6-hw4v-8ch9/GHSA-v2j6-hw4v-8ch9.json @@ -7,12 +7,8 @@ "CVE-2019-4595" ], "details": "IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a specially-crafted Web site, a remote attacker could exploit this vulnerability to spoof the URL displayed to redirect a user to a malicious Web site that would appear to be trusted. This could allow the attacker to obtain highly sensitive information or conduct further attacks against the victim. IBM X-Force ID: 167878.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v32g-5mrj-f8mf/GHSA-v32g-5mrj-f8mf.json b/advisories/unreviewed/2022/05/GHSA-v32g-5mrj-f8mf/GHSA-v32g-5mrj-f8mf.json index 49cfc7f435b..56181ba3469 100644 --- a/advisories/unreviewed/2022/05/GHSA-v32g-5mrj-f8mf/GHSA-v32g-5mrj-f8mf.json +++ b/advisories/unreviewed/2022/05/GHSA-v32g-5mrj-f8mf/GHSA-v32g-5mrj-f8mf.json @@ -7,12 +7,8 @@ "CVE-2020-0060" ], "details": "In query of SmsProvider.java and MmsSmsProvider.java, there is a possible permission bypass due to SQL injection. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-143229845", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v3cg-m279-6wh2/GHSA-v3cg-m279-6wh2.json b/advisories/unreviewed/2022/05/GHSA-v3cg-m279-6wh2/GHSA-v3cg-m279-6wh2.json index c36445549cc..181b331bae9 100644 --- a/advisories/unreviewed/2022/05/GHSA-v3cg-m279-6wh2/GHSA-v3cg-m279-6wh2.json +++ b/advisories/unreviewed/2022/05/GHSA-v3cg-m279-6wh2/GHSA-v3cg-m279-6wh2.json @@ -7,12 +7,8 @@ "CVE-2020-8987" ], "details": "Avast AntiTrack before 1.5.1.172 and AVG Antitrack before 2.0.0.178 proxies traffic to HTTPS sites but does not validate certificates, and thus a man-in-the-middle can host a malicious website using a self-signed certificate. No special action necessary by the victim using AntiTrack with \"Allow filtering of HTTPS traffic for tracking detection\" enabled. (This is the default configuration.)", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v5gv-3mwr-6223/GHSA-v5gv-3mwr-6223.json b/advisories/unreviewed/2022/05/GHSA-v5gv-3mwr-6223/GHSA-v5gv-3mwr-6223.json index a08b43af6d2..07531d45c67 100644 --- a/advisories/unreviewed/2022/05/GHSA-v5gv-3mwr-6223/GHSA-v5gv-3mwr-6223.json +++ b/advisories/unreviewed/2022/05/GHSA-v5gv-3mwr-6223/GHSA-v5gv-3mwr-6223.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v5rc-wm3q-v4fp/GHSA-v5rc-wm3q-v4fp.json b/advisories/unreviewed/2022/05/GHSA-v5rc-wm3q-v4fp/GHSA-v5rc-wm3q-v4fp.json index 7aeb93a45a4..6e459d0a006 100644 --- a/advisories/unreviewed/2022/05/GHSA-v5rc-wm3q-v4fp/GHSA-v5rc-wm3q-v4fp.json +++ b/advisories/unreviewed/2022/05/GHSA-v5rc-wm3q-v4fp/GHSA-v5rc-wm3q-v4fp.json @@ -7,12 +7,8 @@ "CVE-2020-1844" ], "details": "PCManager with versions earlier than 10.0.5.51 have a privilege escalation vulnerability in Huawei PCManager products. An authenticated, local attacker can perform specific operation to exploit this vulnerability. Successful exploitation may cause the attacker to obtain a higher privilege.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v65r-wc6r-r9x8/GHSA-v65r-wc6r-r9x8.json b/advisories/unreviewed/2022/05/GHSA-v65r-wc6r-r9x8/GHSA-v65r-wc6r-r9x8.json index 2a0b6629e6d..f9fb3d66c0a 100644 --- a/advisories/unreviewed/2022/05/GHSA-v65r-wc6r-r9x8/GHSA-v65r-wc6r-r9x8.json +++ b/advisories/unreviewed/2022/05/GHSA-v65r-wc6r-r9x8/GHSA-v65r-wc6r-r9x8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v8xr-mc49-hfww/GHSA-v8xr-mc49-hfww.json b/advisories/unreviewed/2022/05/GHSA-v8xr-mc49-hfww/GHSA-v8xr-mc49-hfww.json index e9dea4ea584..4a9105eebf2 100644 --- a/advisories/unreviewed/2022/05/GHSA-v8xr-mc49-hfww/GHSA-v8xr-mc49-hfww.json +++ b/advisories/unreviewed/2022/05/GHSA-v8xr-mc49-hfww/GHSA-v8xr-mc49-hfww.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vcff-vwv3-4mf7/GHSA-vcff-vwv3-4mf7.json b/advisories/unreviewed/2022/05/GHSA-vcff-vwv3-4mf7/GHSA-vcff-vwv3-4mf7.json index e1f7a99d500..deec3a711f5 100644 --- a/advisories/unreviewed/2022/05/GHSA-vcff-vwv3-4mf7/GHSA-vcff-vwv3-4mf7.json +++ b/advisories/unreviewed/2022/05/GHSA-vcff-vwv3-4mf7/GHSA-vcff-vwv3-4mf7.json @@ -7,12 +7,8 @@ "CVE-2020-1860" ], "details": "NIP6800;Secospace USG6600;USG9500 products with versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have an access control bypass vulnerability. Attackers that can access to the internal network can exploit this vulnerability with careful deployment. Successful exploit may cause the access control to be bypassed, and attackers can directly access the Internet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vf9r-m8g7-gv2c/GHSA-vf9r-m8g7-gv2c.json b/advisories/unreviewed/2022/05/GHSA-vf9r-m8g7-gv2c/GHSA-vf9r-m8g7-gv2c.json index e4e0c1872a6..6ce569b7571 100644 --- a/advisories/unreviewed/2022/05/GHSA-vf9r-m8g7-gv2c/GHSA-vf9r-m8g7-gv2c.json +++ b/advisories/unreviewed/2022/05/GHSA-vf9r-m8g7-gv2c/GHSA-vf9r-m8g7-gv2c.json @@ -7,12 +7,8 @@ "CVE-2020-3190" ], "details": "A vulnerability in the IPsec packet processor of Cisco IOS XR Software could allow an unauthenticated remote attacker to cause a denial of service (DoS) condition for IPsec sessions to an affected device. The vulnerability is due to improper handling of packets by the IPsec packet processor. An attacker could exploit this vulnerability by sending malicious ICMP error messages to an affected device that get punted to the IPsec packet processor. A successful exploit could allow the attacker to deplete IPsec memory, resulting in all future IPsec packets to an affected device being dropped by the device. Manual intervention is required to recover from this situation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vg9c-8448-62mh/GHSA-vg9c-8448-62mh.json b/advisories/unreviewed/2022/05/GHSA-vg9c-8448-62mh/GHSA-vg9c-8448-62mh.json index 20415f2cc07..b364c192427 100644 --- a/advisories/unreviewed/2022/05/GHSA-vg9c-8448-62mh/GHSA-vg9c-8448-62mh.json +++ b/advisories/unreviewed/2022/05/GHSA-vg9c-8448-62mh/GHSA-vg9c-8448-62mh.json @@ -7,12 +7,8 @@ "CVE-2020-9380" ], "details": "IPTV Smarters WEB TV PLAYER through 2020-02-22 allows attackers to execute OS commands by uploading a script.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vjpj-hgm2-fffq/GHSA-vjpj-hgm2-fffq.json b/advisories/unreviewed/2022/05/GHSA-vjpj-hgm2-fffq/GHSA-vjpj-hgm2-fffq.json index c59bb9a3b59..f0dcfc3f45c 100644 --- a/advisories/unreviewed/2022/05/GHSA-vjpj-hgm2-fffq/GHSA-vjpj-hgm2-fffq.json +++ b/advisories/unreviewed/2022/05/GHSA-vjpj-hgm2-fffq/GHSA-vjpj-hgm2-fffq.json @@ -7,12 +7,8 @@ "CVE-2019-19991" ], "details": "An issue was discovered in Selesta Visual Access Manager (VAM) 4.15.0 through 4.29. Multiple Reflected Cross-site scripting (XSS) vulnerabilities allow remote authenticated users to inject arbitrary web script or HTML via the web pages /vam/vam_anagraphic.php, /vam/vam_vamuser.php, /common/vamp_main.php, and /wiz/change_password.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vjqf-572p-w4xg/GHSA-vjqf-572p-w4xg.json b/advisories/unreviewed/2022/05/GHSA-vjqf-572p-w4xg/GHSA-vjqf-572p-w4xg.json index bd722a0d89f..cdaf81b8478 100644 --- a/advisories/unreviewed/2022/05/GHSA-vjqf-572p-w4xg/GHSA-vjqf-572p-w4xg.json +++ b/advisories/unreviewed/2022/05/GHSA-vjqf-572p-w4xg/GHSA-vjqf-572p-w4xg.json @@ -7,12 +7,8 @@ "CVE-2020-1874" ], "details": "NIP6800;Secospace USG6600;USG9500 products versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have a invalid pointer access vulnerability. The software system access an invalid pointer when operator logs in to the device and performs some operations. Successful exploit could cause certain process reboot.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vp46-q6gj-2xjc/GHSA-vp46-q6gj-2xjc.json b/advisories/unreviewed/2022/05/GHSA-vp46-q6gj-2xjc/GHSA-vp46-q6gj-2xjc.json index 3084ef36ed4..a9998894ed2 100644 --- a/advisories/unreviewed/2022/05/GHSA-vp46-q6gj-2xjc/GHSA-vp46-q6gj-2xjc.json +++ b/advisories/unreviewed/2022/05/GHSA-vp46-q6gj-2xjc/GHSA-vp46-q6gj-2xjc.json @@ -7,12 +7,8 @@ "CVE-2020-9550" ], "details": "Rubetek SmartHome 2020 devices use unencrypted 433 MHz communication between controllers and beacons, allowing an attacker to sniff and spoof beacon requests remotely.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vp53-cwf4-9466/GHSA-vp53-cwf4-9466.json b/advisories/unreviewed/2022/05/GHSA-vp53-cwf4-9466/GHSA-vp53-cwf4-9466.json index 8668af9742d..eeda3f3a665 100644 --- a/advisories/unreviewed/2022/05/GHSA-vp53-cwf4-9466/GHSA-vp53-cwf4-9466.json +++ b/advisories/unreviewed/2022/05/GHSA-vp53-cwf4-9466/GHSA-vp53-cwf4-9466.json @@ -7,12 +7,8 @@ "CVE-2019-12441" ], "details": "An issue was discovered in GitLab Community and Enterprise Edition 8.4 through 11.11. The protected branches feature contained a access control issue which resulted in a bypass of the protected branches restriction rules. It has Incorrect Access Control.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vpqq-5mrh-8rr5/GHSA-vpqq-5mrh-8rr5.json b/advisories/unreviewed/2022/05/GHSA-vpqq-5mrh-8rr5/GHSA-vpqq-5mrh-8rr5.json index cef1c5570d3..772a3058ff7 100644 --- a/advisories/unreviewed/2022/05/GHSA-vpqq-5mrh-8rr5/GHSA-vpqq-5mrh-8rr5.json +++ b/advisories/unreviewed/2022/05/GHSA-vpqq-5mrh-8rr5/GHSA-vpqq-5mrh-8rr5.json @@ -7,12 +7,8 @@ "CVE-2020-3830" ], "details": "A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Catalina 10.15.3. A malicious application may be able to overwrite arbitrary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vq6g-4p44-h8hq/GHSA-vq6g-4p44-h8hq.json b/advisories/unreviewed/2022/05/GHSA-vq6g-4p44-h8hq/GHSA-vq6g-4p44-h8hq.json index ced25c886a7..f994d99d233 100644 --- a/advisories/unreviewed/2022/05/GHSA-vq6g-4p44-h8hq/GHSA-vq6g-4p44-h8hq.json +++ b/advisories/unreviewed/2022/05/GHSA-vq6g-4p44-h8hq/GHSA-vq6g-4p44-h8hq.json @@ -7,12 +7,8 @@ "CVE-2020-3862" ], "details": "A denial of service issue was addressed with improved memory handling. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, tvOS 13.3.1, Safari 13.0.5, iTunes for Windows 12.10.4, iCloud for Windows 11.0, iCloud for Windows 7.17. A malicious website may be able to cause a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vr8p-gg49-j8hx/GHSA-vr8p-gg49-j8hx.json b/advisories/unreviewed/2022/05/GHSA-vr8p-gg49-j8hx/GHSA-vr8p-gg49-j8hx.json index 6348d1f241f..491b0fa5b4b 100644 --- a/advisories/unreviewed/2022/05/GHSA-vr8p-gg49-j8hx/GHSA-vr8p-gg49-j8hx.json +++ b/advisories/unreviewed/2022/05/GHSA-vr8p-gg49-j8hx/GHSA-vr8p-gg49-j8hx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -43,9 +41,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vrxh-v8jq-xh42/GHSA-vrxh-v8jq-xh42.json b/advisories/unreviewed/2022/05/GHSA-vrxh-v8jq-xh42/GHSA-vrxh-v8jq-xh42.json index 41f381a7b22..1e536637257 100644 --- a/advisories/unreviewed/2022/05/GHSA-vrxh-v8jq-xh42/GHSA-vrxh-v8jq-xh42.json +++ b/advisories/unreviewed/2022/05/GHSA-vrxh-v8jq-xh42/GHSA-vrxh-v8jq-xh42.json @@ -7,12 +7,8 @@ "CVE-2019-14026" ], "details": "Possible buffer overflow in WLAN WMI handler due to lack of ssid length check when copying data in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8017, APQ8053, APQ8096, APQ8096AU, APQ8098, IPQ6018, IPQ8074, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, MSM8996AU, MSM8998, Nicobar, QCA6174A, QCA6574, QCA6574AU, QCA6584AU, QCA8081, QCA9377, QCA9379, QCA9886, QCN7605, QCS404, QCS405, QCS605, Rennell, SA6155P, SC8180X, SDA660, SDA845, SDM630, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vv7f-8rp8-rq42/GHSA-vv7f-8rp8-rq42.json b/advisories/unreviewed/2022/05/GHSA-vv7f-8rp8-rq42/GHSA-vv7f-8rp8-rq42.json index b91aff57f61..509224b4043 100644 --- a/advisories/unreviewed/2022/05/GHSA-vv7f-8rp8-rq42/GHSA-vv7f-8rp8-rq42.json +++ b/advisories/unreviewed/2022/05/GHSA-vv7f-8rp8-rq42/GHSA-vv7f-8rp8-rq42.json @@ -7,12 +7,8 @@ "CVE-2019-5323" ], "details": "There are command injection vulnerabilities present in the AirWave application. Certain input fields controlled by an administrative user are not properly sanitized before being parsed by AirWave. If conditions are met, an attacker can obtain command execution on the host.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vv89-4gwh-j87x/GHSA-vv89-4gwh-j87x.json b/advisories/unreviewed/2022/05/GHSA-vv89-4gwh-j87x/GHSA-vv89-4gwh-j87x.json index 2b4f84b4b5c..6fd4bf12ca6 100644 --- a/advisories/unreviewed/2022/05/GHSA-vv89-4gwh-j87x/GHSA-vv89-4gwh-j87x.json +++ b/advisories/unreviewed/2022/05/GHSA-vv89-4gwh-j87x/GHSA-vv89-4gwh-j87x.json @@ -7,12 +7,8 @@ "CVE-2020-3836" ], "details": "An access issue was addressed with improved memory management. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, macOS Catalina 10.15.3, tvOS 13.3.1, watchOS 6.1.2. A malicious application may be able to determine kernel memory layout.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vvq9-3244-5g7w/GHSA-vvq9-3244-5g7w.json b/advisories/unreviewed/2022/05/GHSA-vvq9-3244-5g7w/GHSA-vvq9-3244-5g7w.json index 4a8eb2625ed..33ca3f07baa 100644 --- a/advisories/unreviewed/2022/05/GHSA-vvq9-3244-5g7w/GHSA-vvq9-3244-5g7w.json +++ b/advisories/unreviewed/2022/05/GHSA-vvq9-3244-5g7w/GHSA-vvq9-3244-5g7w.json @@ -7,12 +7,8 @@ "CVE-2019-10616" ], "details": "Possibility of null pointer access if the SPDM commands are executed in the non-standard way in TZ. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8016, MDM9150, MDM9206, MDM9607, MDM9650, MSM8905, MSM8909, MSM8909W, MSM8998, SA6155P, SDX24", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vx93-hvpm-489j/GHSA-vx93-hvpm-489j.json b/advisories/unreviewed/2022/05/GHSA-vx93-hvpm-489j/GHSA-vx93-hvpm-489j.json index 0e5db4fccf4..52088a3efc2 100644 --- a/advisories/unreviewed/2022/05/GHSA-vx93-hvpm-489j/GHSA-vx93-hvpm-489j.json +++ b/advisories/unreviewed/2022/05/GHSA-vx93-hvpm-489j/GHSA-vx93-hvpm-489j.json @@ -7,12 +7,8 @@ "CVE-2019-12446" ], "details": "An issue was discovered in GitLab Community and Enterprise Edition 8.3 through 11.11. It allows Information Exposure through an Error Message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w368-jpvv-7g4x/GHSA-w368-jpvv-7g4x.json b/advisories/unreviewed/2022/05/GHSA-w368-jpvv-7g4x/GHSA-w368-jpvv-7g4x.json index 79a0382c6c7..582610a53e6 100644 --- a/advisories/unreviewed/2022/05/GHSA-w368-jpvv-7g4x/GHSA-w368-jpvv-7g4x.json +++ b/advisories/unreviewed/2022/05/GHSA-w368-jpvv-7g4x/GHSA-w368-jpvv-7g4x.json @@ -7,12 +7,8 @@ "CVE-2020-9761" ], "details": "An issue was discovered in UNCTAD ASYCUDA World 2001 through 2020. The Java RMI Server has an Insecure Default Configuration, leading to Java Code Execution from a remote URL because an RMI Distributed Garbage Collector method is called.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w3wj-82f7-hf3v/GHSA-w3wj-82f7-hf3v.json b/advisories/unreviewed/2022/05/GHSA-w3wj-82f7-hf3v/GHSA-w3wj-82f7-hf3v.json index 00f90f5b108..3b26d71b3fb 100644 --- a/advisories/unreviewed/2022/05/GHSA-w3wj-82f7-hf3v/GHSA-w3wj-82f7-hf3v.json +++ b/advisories/unreviewed/2022/05/GHSA-w3wj-82f7-hf3v/GHSA-w3wj-82f7-hf3v.json @@ -7,12 +7,8 @@ "CVE-2020-9370" ], "details": "HUMAX HGA12R-02 BRGCAA 1.1.53 devices allow Session Hijacking.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w4wr-grpf-cvhh/GHSA-w4wr-grpf-cvhh.json b/advisories/unreviewed/2022/05/GHSA-w4wr-grpf-cvhh/GHSA-w4wr-grpf-cvhh.json index fb96ffacb68..a4c8bea2d04 100644 --- a/advisories/unreviewed/2022/05/GHSA-w4wr-grpf-cvhh/GHSA-w4wr-grpf-cvhh.json +++ b/advisories/unreviewed/2022/05/GHSA-w4wr-grpf-cvhh/GHSA-w4wr-grpf-cvhh.json @@ -7,12 +7,8 @@ "CVE-2020-1873" ], "details": "NIP6800;Secospace USG6600;USG9500 products with versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have an out-of-bounds read vulnerability. An unauthenticated attacker crafts malformed message with specific parameter and sends the message to the affected products. Due to insufficient validation of message, which may be exploited to cause the device reboot.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w548-5rqh-vggj/GHSA-w548-5rqh-vggj.json b/advisories/unreviewed/2022/05/GHSA-w548-5rqh-vggj/GHSA-w548-5rqh-vggj.json index 53db8702dca..d13ffeafaed 100644 --- a/advisories/unreviewed/2022/05/GHSA-w548-5rqh-vggj/GHSA-w548-5rqh-vggj.json +++ b/advisories/unreviewed/2022/05/GHSA-w548-5rqh-vggj/GHSA-w548-5rqh-vggj.json @@ -7,12 +7,8 @@ "CVE-2019-9098" ], "details": "An issue was discovered on Moxa MGate MB3170 and MB3270 devices before 4.1, MB3280 and MB3480 devices before 3.1, MB3660 devices before 2.3, and MB3180 devices before 2.1. An Integer overflow in the built-in web server allows remote attackers to initiate DoS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w579-wxj6-v6hq/GHSA-w579-wxj6-v6hq.json b/advisories/unreviewed/2022/05/GHSA-w579-wxj6-v6hq/GHSA-w579-wxj6-v6hq.json index a9d43fdea0e..067f64457ba 100644 --- a/advisories/unreviewed/2022/05/GHSA-w579-wxj6-v6hq/GHSA-w579-wxj6-v6hq.json +++ b/advisories/unreviewed/2022/05/GHSA-w579-wxj6-v6hq/GHSA-w579-wxj6-v6hq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w5fv-wc2w-7f46/GHSA-w5fv-wc2w-7f46.json b/advisories/unreviewed/2022/05/GHSA-w5fv-wc2w-7f46/GHSA-w5fv-wc2w-7f46.json index 23b2e46b13a..17237c1f7f5 100644 --- a/advisories/unreviewed/2022/05/GHSA-w5fv-wc2w-7f46/GHSA-w5fv-wc2w-7f46.json +++ b/advisories/unreviewed/2022/05/GHSA-w5fv-wc2w-7f46/GHSA-w5fv-wc2w-7f46.json @@ -7,12 +7,8 @@ "CVE-2019-17645" ], "details": "An issue was discovered in Centreon before 2.8.31, 18.10.9, 19.04.6, and 19.10.3. It provides sensitive information via an unauthenticated direct request for include/configuration/configObject/service/refreshMacroAjax.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w5vh-33ww-r5p2/GHSA-w5vh-33ww-r5p2.json b/advisories/unreviewed/2022/05/GHSA-w5vh-33ww-r5p2/GHSA-w5vh-33ww-r5p2.json index 3d3e9c4ffb4..8fbf77bfd21 100644 --- a/advisories/unreviewed/2022/05/GHSA-w5vh-33ww-r5p2/GHSA-w5vh-33ww-r5p2.json +++ b/advisories/unreviewed/2022/05/GHSA-w5vh-33ww-r5p2/GHSA-w5vh-33ww-r5p2.json @@ -7,12 +7,8 @@ "CVE-2020-9399" ], "details": "The Avast AV parsing engine allows virus-detection bypass via a crafted ZIP archive. This affects versions before 12 definitions 200114-0 of Antivirus Pro, Antivirus Pro Plus, and Antivirus for Linux.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w6h5-rjp3-hxvc/GHSA-w6h5-rjp3-hxvc.json b/advisories/unreviewed/2022/05/GHSA-w6h5-rjp3-hxvc/GHSA-w6h5-rjp3-hxvc.json index bcd13acc272..044fa023682 100644 --- a/advisories/unreviewed/2022/05/GHSA-w6h5-rjp3-hxvc/GHSA-w6h5-rjp3-hxvc.json +++ b/advisories/unreviewed/2022/05/GHSA-w6h5-rjp3-hxvc/GHSA-w6h5-rjp3-hxvc.json @@ -7,12 +7,8 @@ "CVE-2020-9054" ], "details": "Multiple ZyXEL network-attached storage (NAS) devices running firmware version 5.21 contain a pre-authentication command injection vulnerability, which may allow a remote, unauthenticated attacker to execute arbitrary code on a vulnerable device. ZyXEL NAS devices achieve authentication by using the weblogin.cgi CGI executable. This program fails to properly sanitize the username parameter that is passed to it. If the username parameter contains certain characters, it can allow command injection with the privileges of the web server that runs on the ZyXEL device. Although the web server does not run as the root user, ZyXEL devices include a setuid utility that can be leveraged to run any command with root privileges. As such, it should be assumed that exploitation of this vulnerability can lead to remote code execution with root privileges. By sending a specially-crafted HTTP POST or GET request to a vulnerable ZyXEL device, a remote, unauthenticated attacker may be able to execute arbitrary code on the device. This may happen by directly connecting to a device if it is directly exposed to an attacker. However, there are ways to trigger such crafted requests even if an attacker does not have direct connectivity to a vulnerable devices. For example, simply visiting a website can result in the compromise of any ZyXEL device that is reachable from the client system. Affected products include: NAS326 before firmware V5.21(AAZF.7)C0 NAS520 before firmware V5.21(AASZ.3)C0 NAS540 before firmware V5.21(AATB.4)C0 NAS542 before firmware V5.21(ABAG.4)C0 ZyXEL has made firmware updates available for NAS326, NAS520, NAS540, and NAS542 devices. Affected models that are end-of-support: NSA210, NSA220, NSA220+, NSA221, NSA310, NSA310S, NSA320, NSA320S, NSA325 and NSA325v2", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w7c9-cc46-h836/GHSA-w7c9-cc46-h836.json b/advisories/unreviewed/2022/05/GHSA-w7c9-cc46-h836/GHSA-w7c9-cc46-h836.json index 296144ee7a2..78f6c384215 100644 --- a/advisories/unreviewed/2022/05/GHSA-w7c9-cc46-h836/GHSA-w7c9-cc46-h836.json +++ b/advisories/unreviewed/2022/05/GHSA-w7c9-cc46-h836/GHSA-w7c9-cc46-h836.json @@ -7,12 +7,8 @@ "CVE-2019-14000" ], "details": "Lack of check that the RX FIFO write index that is read from shared RAM is less than the FIFO size results into memory corruption and potential information leakage in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8017, APQ8053, APQ8096, APQ8096AU, APQ8098, IPQ6018, IPQ8074, MDM9150, MDM9205, MDM9206, MDM9607, MDM9640, MDM9645, MDM9650, MDM9655, MSM8905, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996, MSM8996AU, MSM8998, Nicobar, QCA8081, QCM2150, QCS404, QCS405, QCS605, QM215, Rennell, SA6155P, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w7g4-j46v-jj9q/GHSA-w7g4-j46v-jj9q.json b/advisories/unreviewed/2022/05/GHSA-w7g4-j46v-jj9q/GHSA-w7g4-j46v-jj9q.json index 2f8b666c03d..cbc15e59258 100644 --- a/advisories/unreviewed/2022/05/GHSA-w7g4-j46v-jj9q/GHSA-w7g4-j46v-jj9q.json +++ b/advisories/unreviewed/2022/05/GHSA-w7g4-j46v-jj9q/GHSA-w7g4-j46v-jj9q.json @@ -7,12 +7,8 @@ "CVE-2020-10104" ], "details": "An issue was discovered in Zammad 3.0 through 3.2. After authentication, it transmits sensitive information to the user that may be compromised and used by an attacker to gain unauthorized access. Hashed passwords are returned to the user when visiting a certain URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w86w-xp8q-rq69/GHSA-w86w-xp8q-rq69.json b/advisories/unreviewed/2022/05/GHSA-w86w-xp8q-rq69/GHSA-w86w-xp8q-rq69.json index c3bd6bf65b1..228d5592632 100644 --- a/advisories/unreviewed/2022/05/GHSA-w86w-xp8q-rq69/GHSA-w86w-xp8q-rq69.json +++ b/advisories/unreviewed/2022/05/GHSA-w86w-xp8q-rq69/GHSA-w86w-xp8q-rq69.json @@ -7,12 +7,8 @@ "CVE-2019-14045" ], "details": "Possible buffer overflow while processing clientlog and serverlog due to lack of validation of data received in logs in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Mobile in APQ8096AU, QCS605, SDM439, SM8150, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w8qq-9h49-v34p/GHSA-w8qq-9h49-v34p.json b/advisories/unreviewed/2022/05/GHSA-w8qq-9h49-v34p/GHSA-w8qq-9h49-v34p.json index 9a42f25094d..eb79a0c0ee6 100644 --- a/advisories/unreviewed/2022/05/GHSA-w8qq-9h49-v34p/GHSA-w8qq-9h49-v34p.json +++ b/advisories/unreviewed/2022/05/GHSA-w8qq-9h49-v34p/GHSA-w8qq-9h49-v34p.json @@ -7,12 +7,8 @@ "CVE-2020-10100" ], "details": "An issue was discovered in Zammad 3.0 through 3.2. It allows for users to view ticket customer details associated with specific customers. However, the application does not properly implement access controls related to this functionality. As such, users of one company are able to access ticket data from other companies. Due to the multi-tenant nature of this application, users who can access ticket details from one organization to the next allows for users to exfiltrate potentially sensitive data of other companies.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w9v4-fxpq-mgpr/GHSA-w9v4-fxpq-mgpr.json b/advisories/unreviewed/2022/05/GHSA-w9v4-fxpq-mgpr/GHSA-w9v4-fxpq-mgpr.json index d8bfd4621fc..3c0c0952045 100644 --- a/advisories/unreviewed/2022/05/GHSA-w9v4-fxpq-mgpr/GHSA-w9v4-fxpq-mgpr.json +++ b/advisories/unreviewed/2022/05/GHSA-w9v4-fxpq-mgpr/GHSA-w9v4-fxpq-mgpr.json @@ -7,12 +7,8 @@ "CVE-2020-10249" ], "details": "BWA DiREX-Pro 1.2181 devices allow full path disclosure via an invalid name array parameter to val_soft.php3.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-whv5-w93h-96xh/GHSA-whv5-w93h-96xh.json b/advisories/unreviewed/2022/05/GHSA-whv5-w93h-96xh/GHSA-whv5-w93h-96xh.json index 4e6e2e15f9c..f3754b3a315 100644 --- a/advisories/unreviewed/2022/05/GHSA-whv5-w93h-96xh/GHSA-whv5-w93h-96xh.json +++ b/advisories/unreviewed/2022/05/GHSA-whv5-w93h-96xh/GHSA-whv5-w93h-96xh.json @@ -7,12 +7,8 @@ "CVE-2020-3868" ], "details": "Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, tvOS 13.3.1, Safari 13.0.5, iTunes for Windows 12.10.4, iCloud for Windows 11.0, iCloud for Windows 7.17. Processing maliciously crafted web content may lead to arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-whw6-6g6v-2r34/GHSA-whw6-6g6v-2r34.json b/advisories/unreviewed/2022/05/GHSA-whw6-6g6v-2r34/GHSA-whw6-6g6v-2r34.json index 77bf6043380..0123622531d 100644 --- a/advisories/unreviewed/2022/05/GHSA-whw6-6g6v-2r34/GHSA-whw6-6g6v-2r34.json +++ b/advisories/unreviewed/2022/05/GHSA-whw6-6g6v-2r34/GHSA-whw6-6g6v-2r34.json @@ -7,12 +7,8 @@ "CVE-2019-14029" ], "details": "Use-after-free in graphics module due to destroying already queued syncobj in error case in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8053, APQ8096AU, APQ8098, MDM9607, MSM8909W, MSM8953, MSM8996AU, Nicobar, QCS405, QCS605, Rennell, SA6155P, Saipan, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM632, SDM670, SDM710, SDM845, SDX24, SDX55, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wjqc-hf5j-wc82/GHSA-wjqc-hf5j-wc82.json b/advisories/unreviewed/2022/05/GHSA-wjqc-hf5j-wc82/GHSA-wjqc-hf5j-wc82.json index da3ce8c5980..72384103208 100644 --- a/advisories/unreviewed/2022/05/GHSA-wjqc-hf5j-wc82/GHSA-wjqc-hf5j-wc82.json +++ b/advisories/unreviewed/2022/05/GHSA-wjqc-hf5j-wc82/GHSA-wjqc-hf5j-wc82.json @@ -7,12 +7,8 @@ "CVE-2019-11355" ], "details": "An issue was discovered in Poly (formerly Polycom) HDX 3.1.13. A feature exists that allows the creation of a server / client certificate, or the upload of the user certificate, on the administrator's page. The value received from the user is the factor value of a shell script on the equipment. By entering a special character (such as a single quote) in a CN or other CSR field, one can insert a command into a factor value. A system command can be executed as root.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wm5j-xh87-7h84/GHSA-wm5j-xh87-7h84.json b/advisories/unreviewed/2022/05/GHSA-wm5j-xh87-7h84/GHSA-wm5j-xh87-7h84.json index 9e2b3faa596..0f6c682be2e 100644 --- a/advisories/unreviewed/2022/05/GHSA-wm5j-xh87-7h84/GHSA-wm5j-xh87-7h84.json +++ b/advisories/unreviewed/2022/05/GHSA-wm5j-xh87-7h84/GHSA-wm5j-xh87-7h84.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wpgg-gcgq-v3vh/GHSA-wpgg-gcgq-v3vh.json b/advisories/unreviewed/2022/05/GHSA-wpgg-gcgq-v3vh/GHSA-wpgg-gcgq-v3vh.json index c921655ee1b..ec897dcf69b 100644 --- a/advisories/unreviewed/2022/05/GHSA-wpgg-gcgq-v3vh/GHSA-wpgg-gcgq-v3vh.json +++ b/advisories/unreviewed/2022/05/GHSA-wpgg-gcgq-v3vh/GHSA-wpgg-gcgq-v3vh.json @@ -7,12 +7,8 @@ "CVE-2019-20509" ], "details": "archive_read_support_format_lha.c in libarchive before 3.4.1 does not ensure valid sizes for UTF-16 input, which allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted LHA archive.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wpm2-8qvv-w4q9/GHSA-wpm2-8qvv-w4q9.json b/advisories/unreviewed/2022/05/GHSA-wpm2-8qvv-w4q9/GHSA-wpm2-8qvv-w4q9.json index 45f457cc702..2732066aa81 100644 --- a/advisories/unreviewed/2022/05/GHSA-wpm2-8qvv-w4q9/GHSA-wpm2-8qvv-w4q9.json +++ b/advisories/unreviewed/2022/05/GHSA-wpm2-8qvv-w4q9/GHSA-wpm2-8qvv-w4q9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wq9f-h6v9-87rm/GHSA-wq9f-h6v9-87rm.json b/advisories/unreviewed/2022/05/GHSA-wq9f-h6v9-87rm/GHSA-wq9f-h6v9-87rm.json index 81a008221dc..f60582b3715 100644 --- a/advisories/unreviewed/2022/05/GHSA-wq9f-h6v9-87rm/GHSA-wq9f-h6v9-87rm.json +++ b/advisories/unreviewed/2022/05/GHSA-wq9f-h6v9-87rm/GHSA-wq9f-h6v9-87rm.json @@ -7,12 +7,8 @@ "CVE-2020-6804" ], "details": "A reflected XSS vulnerability exists within the gateway, allowing an attacker to craft a specialized URL which could steal the user's authentication token. When combined with CVE-2020-6803, an attacker could fully compromise the system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wqgx-95g5-vh34/GHSA-wqgx-95g5-vh34.json b/advisories/unreviewed/2022/05/GHSA-wqgx-95g5-vh34/GHSA-wqgx-95g5-vh34.json index 7f1118e4887..8d2026a45ce 100644 --- a/advisories/unreviewed/2022/05/GHSA-wqgx-95g5-vh34/GHSA-wqgx-95g5-vh34.json +++ b/advisories/unreviewed/2022/05/GHSA-wqgx-95g5-vh34/GHSA-wqgx-95g5-vh34.json @@ -7,12 +7,8 @@ "CVE-2019-10577" ], "details": "Improper input validation while processing SIP URI received from the network will lead to buffer over-read and then to denial of service in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8017, APQ8053, APQ8096, APQ8096AU, APQ8098, MDM9150, MDM9205, MDM9206, MDM9607, MDM9615, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, MSM8998, Nicobar, QCM2150, QCS605, QM215, Rennell, Saipan, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ww6v-h9jg-qx5w/GHSA-ww6v-h9jg-qx5w.json b/advisories/unreviewed/2022/05/GHSA-ww6v-h9jg-qx5w/GHSA-ww6v-h9jg-qx5w.json index 9e7f1edeec4..3e69b711db4 100644 --- a/advisories/unreviewed/2022/05/GHSA-ww6v-h9jg-qx5w/GHSA-ww6v-h9jg-qx5w.json +++ b/advisories/unreviewed/2022/05/GHSA-ww6v-h9jg-qx5w/GHSA-ww6v-h9jg-qx5w.json @@ -7,12 +7,8 @@ "CVE-2019-14068" ], "details": "Out of bound access in msm routing due to lack of check of size before accessing in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8053, APQ8096AU, MDM9607, MSM8905, MSM8909W, Nicobar, QCS405, QCS605, Rennell, Saipan, SDM429W, SDM845, SDX20, SDX24, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ww7w-84qf-8pjh/GHSA-ww7w-84qf-8pjh.json b/advisories/unreviewed/2022/05/GHSA-ww7w-84qf-8pjh/GHSA-ww7w-84qf-8pjh.json index 5b401da2bef..3ed8f8c0d08 100644 --- a/advisories/unreviewed/2022/05/GHSA-ww7w-84qf-8pjh/GHSA-ww7w-84qf-8pjh.json +++ b/advisories/unreviewed/2022/05/GHSA-ww7w-84qf-8pjh/GHSA-ww7w-84qf-8pjh.json @@ -7,12 +7,8 @@ "CVE-2020-0054" ], "details": "In WifiNetworkSuggestionsManager of WifiNetworkSuggestionsManager.java, there is a possible permission revocation due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-146642727", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wxgf-f29q-qj6m/GHSA-wxgf-f29q-qj6m.json b/advisories/unreviewed/2022/05/GHSA-wxgf-f29q-qj6m/GHSA-wxgf-f29q-qj6m.json index aef4829ef57..b6eb3c82b25 100644 --- a/advisories/unreviewed/2022/05/GHSA-wxgf-f29q-qj6m/GHSA-wxgf-f29q-qj6m.json +++ b/advisories/unreviewed/2022/05/GHSA-wxgf-f29q-qj6m/GHSA-wxgf-f29q-qj6m.json @@ -7,12 +7,8 @@ "CVE-2019-13007" ], "details": "An issue was discovered in GitLab Community and Enterprise Edition 11.11 through 12.0.2. When an admin enabled one of the service templates, it was triggering an action that leads to resource depletion. It allows Uncontrolled Resource Consumption.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wxxw-9mfc-32jr/GHSA-wxxw-9mfc-32jr.json b/advisories/unreviewed/2022/05/GHSA-wxxw-9mfc-32jr/GHSA-wxxw-9mfc-32jr.json index a4ce0629e36..b7f73b86f1d 100644 --- a/advisories/unreviewed/2022/05/GHSA-wxxw-9mfc-32jr/GHSA-wxxw-9mfc-32jr.json +++ b/advisories/unreviewed/2022/05/GHSA-wxxw-9mfc-32jr/GHSA-wxxw-9mfc-32jr.json @@ -7,12 +7,8 @@ "CVE-2019-12445" ], "details": "An issue was discovered in GitLab Community and Enterprise Edition 8.4 through 11.11. A malicious user could execute JavaScript code on notes by importing a specially crafted project file. It allows XSS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x22j-8886-rjmh/GHSA-x22j-8886-rjmh.json b/advisories/unreviewed/2022/05/GHSA-x22j-8886-rjmh/GHSA-x22j-8886-rjmh.json index 031b6173a34..67cbbd4bbb9 100644 --- a/advisories/unreviewed/2022/05/GHSA-x22j-8886-rjmh/GHSA-x22j-8886-rjmh.json +++ b/advisories/unreviewed/2022/05/GHSA-x22j-8886-rjmh/GHSA-x22j-8886-rjmh.json @@ -7,12 +7,8 @@ "CVE-2020-6797" ], "details": "By downloading a file with the .fileloc extension, a semi-privileged extension could launch an arbitrary application on the user's computer. The attacker is restricted as they are unable to download non-quarantined files or supply command line arguments to the application, limiting the impact. Note: this issue only occurs on Mac OSX. Other operating systems are unaffected. This vulnerability affects Thunderbird < 68.5, Firefox < 73, and Firefox < ESR68.5.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x22r-v7xh-wg93/GHSA-x22r-v7xh-wg93.json b/advisories/unreviewed/2022/05/GHSA-x22r-v7xh-wg93/GHSA-x22r-v7xh-wg93.json index 84ec07cf4c2..58d6c7d6658 100644 --- a/advisories/unreviewed/2022/05/GHSA-x22r-v7xh-wg93/GHSA-x22r-v7xh-wg93.json +++ b/advisories/unreviewed/2022/05/GHSA-x22r-v7xh-wg93/GHSA-x22r-v7xh-wg93.json @@ -7,12 +7,8 @@ "CVE-2020-10251" ], "details": "In ImageMagick 7.0.9, an out-of-bounds read vulnerability exists within the ReadHEICImageByID function in coders\\heic.c. It can be triggered via an image with a width or height value that exceeds the actual size of the image.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x3gg-47w4-9h82/GHSA-x3gg-47w4-9h82.json b/advisories/unreviewed/2022/05/GHSA-x3gg-47w4-9h82/GHSA-x3gg-47w4-9h82.json index 560fddbe423..e531de01d8f 100644 --- a/advisories/unreviewed/2022/05/GHSA-x3gg-47w4-9h82/GHSA-x3gg-47w4-9h82.json +++ b/advisories/unreviewed/2022/05/GHSA-x3gg-47w4-9h82/GHSA-x3gg-47w4-9h82.json @@ -7,12 +7,8 @@ "CVE-2020-0050" ], "details": "In nfa_hciu_send_msg of nfa_hci_utils.cc, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege in the NFC server with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-124521372", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x3hm-crq5-m74w/GHSA-x3hm-crq5-m74w.json b/advisories/unreviewed/2022/05/GHSA-x3hm-crq5-m74w/GHSA-x3hm-crq5-m74w.json index 5b795a00535..48a9510d088 100644 --- a/advisories/unreviewed/2022/05/GHSA-x3hm-crq5-m74w/GHSA-x3hm-crq5-m74w.json +++ b/advisories/unreviewed/2022/05/GHSA-x3hm-crq5-m74w/GHSA-x3hm-crq5-m74w.json @@ -7,12 +7,8 @@ "CVE-2020-1979" ], "details": "A format string vulnerability in the PAN-OS log daemon (logd) on Panorama allows a local authenticated user to execute arbitrary code, bypassing the restricted shell and escalating privileges. This issue affects only PAN-OS 8.1 versions earlier than PAN-OS 8.1.13 on Panorama. This issue does not affect PAN-OS 7.1, PAN-OS 9.0, or later PAN-OS versions. This issue is fixed in PAN-OS 8.1.13 and all later PAN-OS 8.1 versions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x427-77qp-c976/GHSA-x427-77qp-c976.json b/advisories/unreviewed/2022/05/GHSA-x427-77qp-c976/GHSA-x427-77qp-c976.json index 64ee7161a7e..14b2da831b5 100644 --- a/advisories/unreviewed/2022/05/GHSA-x427-77qp-c976/GHSA-x427-77qp-c976.json +++ b/advisories/unreviewed/2022/05/GHSA-x427-77qp-c976/GHSA-x427-77qp-c976.json @@ -7,12 +7,8 @@ "CVE-2017-10992" ], "details": "In HPE Storage Essentials 9.5.0.142, there is Unauthenticated Java Deserialization with remote code execution via OS commands in a request to invoker/JMXInvokerServlet, aka PSRT110461.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x46j-fg45-fqp8/GHSA-x46j-fg45-fqp8.json b/advisories/unreviewed/2022/05/GHSA-x46j-fg45-fqp8/GHSA-x46j-fg45-fqp8.json index 3ffae8ecea1..948a14b99da 100644 --- a/advisories/unreviewed/2022/05/GHSA-x46j-fg45-fqp8/GHSA-x46j-fg45-fqp8.json +++ b/advisories/unreviewed/2022/05/GHSA-x46j-fg45-fqp8/GHSA-x46j-fg45-fqp8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x4wr-fxwh-p3m9/GHSA-x4wr-fxwh-p3m9.json b/advisories/unreviewed/2022/05/GHSA-x4wr-fxwh-p3m9/GHSA-x4wr-fxwh-p3m9.json index 8b2ecc9ee0a..1eb177d494c 100644 --- a/advisories/unreviewed/2022/05/GHSA-x4wr-fxwh-p3m9/GHSA-x4wr-fxwh-p3m9.json +++ b/advisories/unreviewed/2022/05/GHSA-x4wr-fxwh-p3m9/GHSA-x4wr-fxwh-p3m9.json @@ -7,12 +7,8 @@ "CVE-2019-14085" ], "details": "Possible Integer underflow in WLAN function due to lack of check of data received from user side in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in QCN7605, QCS605, SDA845, SDM670, SDM710, SDM845, SDM850, SM8150, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x679-h3r8-6399/GHSA-x679-h3r8-6399.json b/advisories/unreviewed/2022/05/GHSA-x679-h3r8-6399/GHSA-x679-h3r8-6399.json index d9c2dda674b..3e145d91bbe 100644 --- a/advisories/unreviewed/2022/05/GHSA-x679-h3r8-6399/GHSA-x679-h3r8-6399.json +++ b/advisories/unreviewed/2022/05/GHSA-x679-h3r8-6399/GHSA-x679-h3r8-6399.json @@ -7,12 +7,8 @@ "CVE-2020-10257" ], "details": "The ThemeREX Addons plugin before 2020-03-09 for WordPress lacks access control on the /trx_addons/v2/get/sc_layout REST API endpoint, allowing for PHP functions to be executed by any users, because includes/plugin.rest-api.php calls trx_addons_rest_get_sc_layout with an unsafe sc parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x6w2-r9qf-4mp5/GHSA-x6w2-r9qf-4mp5.json b/advisories/unreviewed/2022/05/GHSA-x6w2-r9qf-4mp5/GHSA-x6w2-r9qf-4mp5.json index 3aece926439..b6f5221eeaa 100644 --- a/advisories/unreviewed/2022/05/GHSA-x6w2-r9qf-4mp5/GHSA-x6w2-r9qf-4mp5.json +++ b/advisories/unreviewed/2022/05/GHSA-x6w2-r9qf-4mp5/GHSA-x6w2-r9qf-4mp5.json @@ -7,12 +7,8 @@ "CVE-2020-1877" ], "details": "NIP6800;Secospace USG6600;USG9500 with versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have an invalid pointer access vulnerability. The software system access an invalid pointer when administrator log in to the device and performs some operations. Successful exploit could cause certain process reboot.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x7j4-9cp2-wmh8/GHSA-x7j4-9cp2-wmh8.json b/advisories/unreviewed/2022/05/GHSA-x7j4-9cp2-wmh8/GHSA-x7j4-9cp2-wmh8.json index 8a1339b0a1e..d0e3423efc5 100644 --- a/advisories/unreviewed/2022/05/GHSA-x7j4-9cp2-wmh8/GHSA-x7j4-9cp2-wmh8.json +++ b/advisories/unreviewed/2022/05/GHSA-x7j4-9cp2-wmh8/GHSA-x7j4-9cp2-wmh8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x84r-583w-g39w/GHSA-x84r-583w-g39w.json b/advisories/unreviewed/2022/05/GHSA-x84r-583w-g39w/GHSA-x84r-583w-g39w.json index 94a0a23d4ce..6dae0f6d6a0 100644 --- a/advisories/unreviewed/2022/05/GHSA-x84r-583w-g39w/GHSA-x84r-583w-g39w.json +++ b/advisories/unreviewed/2022/05/GHSA-x84r-583w-g39w/GHSA-x84r-583w-g39w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x8c3-w66m-mxxx/GHSA-x8c3-w66m-mxxx.json b/advisories/unreviewed/2022/05/GHSA-x8c3-w66m-mxxx/GHSA-x8c3-w66m-mxxx.json index cd7c96cb8aa..ce39586d6ae 100644 --- a/advisories/unreviewed/2022/05/GHSA-x8c3-w66m-mxxx/GHSA-x8c3-w66m-mxxx.json +++ b/advisories/unreviewed/2022/05/GHSA-x8c3-w66m-mxxx/GHSA-x8c3-w66m-mxxx.json @@ -7,12 +7,8 @@ "CVE-2019-12431" ], "details": "An issue was discovered in GitLab Community and Enterprise Edition 8.13 through 11.11. Restricted users could access the metadata of private milestones through the Search API. It has Improper Access Control.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x8jm-4c7g-vg4f/GHSA-x8jm-4c7g-vg4f.json b/advisories/unreviewed/2022/05/GHSA-x8jm-4c7g-vg4f/GHSA-x8jm-4c7g-vg4f.json index 74b4d1d4a84..bc0c37f1ad5 100644 --- a/advisories/unreviewed/2022/05/GHSA-x8jm-4c7g-vg4f/GHSA-x8jm-4c7g-vg4f.json +++ b/advisories/unreviewed/2022/05/GHSA-x8jm-4c7g-vg4f/GHSA-x8jm-4c7g-vg4f.json @@ -7,12 +7,8 @@ "CVE-2019-5326" ], "details": "An administrative application user of or application user with write access to Aruba Airwave VisualRF is able to obtain code execution on the AMP platform. This is possible due to the ability to overwrite a file on disk which is subsequently deserialized by the Java application component.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x8mr-64rx-qcvm/GHSA-x8mr-64rx-qcvm.json b/advisories/unreviewed/2022/05/GHSA-x8mr-64rx-qcvm/GHSA-x8mr-64rx-qcvm.json index f0f1aecc829..c2407ec00de 100644 --- a/advisories/unreviewed/2022/05/GHSA-x8mr-64rx-qcvm/GHSA-x8mr-64rx-qcvm.json +++ b/advisories/unreviewed/2022/05/GHSA-x8mr-64rx-qcvm/GHSA-x8mr-64rx-qcvm.json @@ -7,12 +7,8 @@ "CVE-2020-7130" ], "details": "HPE OneView Global Dashboard (OVGD) 1.9 has a remote information disclosure vulnerability. HPE OneView Global Dashboard - After Upgrade or Install of OVGD Version 1.9, Appliance Firewall May Leave Ports Open. This is resolved in OVGD 1.91 or later.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x97q-g2hx-2vq7/GHSA-x97q-g2hx-2vq7.json b/advisories/unreviewed/2022/05/GHSA-x97q-g2hx-2vq7/GHSA-x97q-g2hx-2vq7.json index 8dd277dcb38..92431b895cf 100644 --- a/advisories/unreviewed/2022/05/GHSA-x97q-g2hx-2vq7/GHSA-x97q-g2hx-2vq7.json +++ b/advisories/unreviewed/2022/05/GHSA-x97q-g2hx-2vq7/GHSA-x97q-g2hx-2vq7.json @@ -7,12 +7,8 @@ "CVE-2019-5107" ], "details": "A cleartext transmission vulnerability exists in the network communication functionality of WAGO e!Cockpit version 1.5.1.1. An attacker with access to network traffic can easily intercept, interpret, and manipulate data coming from, or destined for e!Cockpit. This includes passwords, configurations, and binaries being transferred to endpoints.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x99c-f7pr-mjvv/GHSA-x99c-f7pr-mjvv.json b/advisories/unreviewed/2022/05/GHSA-x99c-f7pr-mjvv/GHSA-x99c-f7pr-mjvv.json index eca04a7464c..28bb02783a6 100644 --- a/advisories/unreviewed/2022/05/GHSA-x99c-f7pr-mjvv/GHSA-x99c-f7pr-mjvv.json +++ b/advisories/unreviewed/2022/05/GHSA-x99c-f7pr-mjvv/GHSA-x99c-f7pr-mjvv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x9c5-6633-6m5f/GHSA-x9c5-6633-6m5f.json b/advisories/unreviewed/2022/05/GHSA-x9c5-6633-6m5f/GHSA-x9c5-6633-6m5f.json index 0244d4e602b..1bba7eb88d4 100644 --- a/advisories/unreviewed/2022/05/GHSA-x9c5-6633-6m5f/GHSA-x9c5-6633-6m5f.json +++ b/advisories/unreviewed/2022/05/GHSA-x9c5-6633-6m5f/GHSA-x9c5-6633-6m5f.json @@ -7,12 +7,8 @@ "CVE-2020-3833" ], "details": "An inconsistent user interface issue was addressed with improved state management. This issue is fixed in Safari 13.0.5. Visiting a malicious website may lead to address bar spoofing.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xcc3-mxq7-rg5h/GHSA-xcc3-mxq7-rg5h.json b/advisories/unreviewed/2022/05/GHSA-xcc3-mxq7-rg5h/GHSA-xcc3-mxq7-rg5h.json index 31554cf26a2..473eb301252 100644 --- a/advisories/unreviewed/2022/05/GHSA-xcc3-mxq7-rg5h/GHSA-xcc3-mxq7-rg5h.json +++ b/advisories/unreviewed/2022/05/GHSA-xcc3-mxq7-rg5h/GHSA-xcc3-mxq7-rg5h.json @@ -7,12 +7,8 @@ "CVE-2020-10185" ], "details": "The sync endpoint in YubiKey Validation Server before 2.40 allows remote attackers to replay an OTP. NOTE: this issue is potentially relevant to persons outside Yubico who operate a self-hosted OTP validation service with a non-default configuration such as an open sync pool; the issue does NOT affect YubiCloud.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xcc5-p2w6-cc26/GHSA-xcc5-p2w6-cc26.json b/advisories/unreviewed/2022/05/GHSA-xcc5-p2w6-cc26/GHSA-xcc5-p2w6-cc26.json index 565071be699..c8ecd0915b7 100644 --- a/advisories/unreviewed/2022/05/GHSA-xcc5-p2w6-cc26/GHSA-xcc5-p2w6-cc26.json +++ b/advisories/unreviewed/2022/05/GHSA-xcc5-p2w6-cc26/GHSA-xcc5-p2w6-cc26.json @@ -7,12 +7,8 @@ "CVE-2019-12432" ], "details": "An issue was discovered in GitLab Community and Enterprise Edition 8.13 through 11.11. Non-member users who subscribed to issue notifications could access the title of confidential issues through the unsubscription page. It allows Information Disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xfg3-m85p-v8gm/GHSA-xfg3-m85p-v8gm.json b/advisories/unreviewed/2022/05/GHSA-xfg3-m85p-v8gm/GHSA-xfg3-m85p-v8gm.json index 2e8ef7afc14..880301dacaf 100644 --- a/advisories/unreviewed/2022/05/GHSA-xfg3-m85p-v8gm/GHSA-xfg3-m85p-v8gm.json +++ b/advisories/unreviewed/2022/05/GHSA-xfg3-m85p-v8gm/GHSA-xfg3-m85p-v8gm.json @@ -7,12 +7,8 @@ "CVE-2020-10214" ], "details": "An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. There is a stack-based buffer overflow in the httpd binary. It allows an authenticated user to execute arbitrary code via a POST to ntp_sync.cgi with a sufficiently long parameter ntp_server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xg3c-5p4v-jf24/GHSA-xg3c-5p4v-jf24.json b/advisories/unreviewed/2022/05/GHSA-xg3c-5p4v-jf24/GHSA-xg3c-5p4v-jf24.json index b78427e3627..2ab0d25d97a 100644 --- a/advisories/unreviewed/2022/05/GHSA-xg3c-5p4v-jf24/GHSA-xg3c-5p4v-jf24.json +++ b/advisories/unreviewed/2022/05/GHSA-xg3c-5p4v-jf24/GHSA-xg3c-5p4v-jf24.json @@ -7,12 +7,8 @@ "CVE-2020-0033" ], "details": "In CryptoPlugin::decrypt of CryptoPlugin.cpp, there is a possible out of bounds write due to stale pointer. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-144351324", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xg65-q3fp-hxwp/GHSA-xg65-q3fp-hxwp.json b/advisories/unreviewed/2022/05/GHSA-xg65-q3fp-hxwp/GHSA-xg65-q3fp-hxwp.json index 9b450160bd1..ba394018b83 100644 --- a/advisories/unreviewed/2022/05/GHSA-xg65-q3fp-hxwp/GHSA-xg65-q3fp-hxwp.json +++ b/advisories/unreviewed/2022/05/GHSA-xg65-q3fp-hxwp/GHSA-xg65-q3fp-hxwp.json @@ -7,12 +7,8 @@ "CVE-2020-0058" ], "details": "In l2c_rcv_acl_data of l2c_main.cc, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-141745011", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xh75-j2qv-65qf/GHSA-xh75-j2qv-65qf.json b/advisories/unreviewed/2022/05/GHSA-xh75-j2qv-65qf/GHSA-xh75-j2qv-65qf.json index c8d38e0e61b..db1d5a5c0b5 100644 --- a/advisories/unreviewed/2022/05/GHSA-xh75-j2qv-65qf/GHSA-xh75-j2qv-65qf.json +++ b/advisories/unreviewed/2022/05/GHSA-xh75-j2qv-65qf/GHSA-xh75-j2qv-65qf.json @@ -7,12 +7,8 @@ "CVE-2020-9408" ], "details": "The Spotfire library component of TIBCO Software Inc.'s TIBCO Spotfire Analytics Platform for AWS Marketplace and TIBCO Spotfire Server contains a vulnerability that theoretically allows an attacker with write permissions to the Spotfire Library, but not \"Script Author\" group permission, to modify attributes of files and objects saved to the library such that the system treats them as trusted. This could allow an attacker to cause the Spotfire Web Player, Analyst clients, and TERR Service into executing arbitrary code with the privileges of the system account that started those processes. Affected releases are TIBCO Software Inc.'s TIBCO Spotfire Analytics Platform for AWS Marketplace: versions 10.8.0 and below and TIBCO Spotfire Server: versions 7.11.9 and below, versions 7.12.0, 7.13.0, 7.14.0, 10.0.0, 10.0.1, 10.1.0, 10.2.0, 10.3.0, 10.3.1, 10.3.2, 10.3.3, 10.3.4, 10.3.5, and 10.3.6, versions 10.4.0, 10.5.0, 10.6.0, 10.6.1, 10.7.0, and 10.8.0.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xhp8-xqff-cr9g/GHSA-xhp8-xqff-cr9g.json b/advisories/unreviewed/2022/05/GHSA-xhp8-xqff-cr9g/GHSA-xhp8-xqff-cr9g.json index ab0823f54f1..af0ad611258 100644 --- a/advisories/unreviewed/2022/05/GHSA-xhp8-xqff-cr9g/GHSA-xhp8-xqff-cr9g.json +++ b/advisories/unreviewed/2022/05/GHSA-xhp8-xqff-cr9g/GHSA-xhp8-xqff-cr9g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xhq4-5269-2ffv/GHSA-xhq4-5269-2ffv.json b/advisories/unreviewed/2022/05/GHSA-xhq4-5269-2ffv/GHSA-xhq4-5269-2ffv.json index 4b7a17cfe4d..c904364ef03 100644 --- a/advisories/unreviewed/2022/05/GHSA-xhq4-5269-2ffv/GHSA-xhq4-5269-2ffv.json +++ b/advisories/unreviewed/2022/05/GHSA-xhq4-5269-2ffv/GHSA-xhq4-5269-2ffv.json @@ -7,12 +7,8 @@ "CVE-2018-21035" ], "details": "In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits cannot be configured. This makes it easier for attackers to cause a denial of service (memory consumption).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xj38-pj67-738p/GHSA-xj38-pj67-738p.json b/advisories/unreviewed/2022/05/GHSA-xj38-pj67-738p/GHSA-xj38-pj67-738p.json index b4cd6da02f7..3bf3b388964 100644 --- a/advisories/unreviewed/2022/05/GHSA-xj38-pj67-738p/GHSA-xj38-pj67-738p.json +++ b/advisories/unreviewed/2022/05/GHSA-xj38-pj67-738p/GHSA-xj38-pj67-738p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xmp4-jqff-7hx8/GHSA-xmp4-jqff-7hx8.json b/advisories/unreviewed/2022/05/GHSA-xmp4-jqff-7hx8/GHSA-xmp4-jqff-7hx8.json index 853ccf5f836..3bdf90b6a1d 100644 --- a/advisories/unreviewed/2022/05/GHSA-xmp4-jqff-7hx8/GHSA-xmp4-jqff-7hx8.json +++ b/advisories/unreviewed/2022/05/GHSA-xmp4-jqff-7hx8/GHSA-xmp4-jqff-7hx8.json @@ -7,12 +7,8 @@ "CVE-2020-3838" ], "details": "The issue was addressed with improved permissions logic. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, macOS Catalina 10.15.3, tvOS 13.3.1, watchOS 6.1.2. An application may be able to execute arbitrary code with system privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xpvv-w5mx-7x26/GHSA-xpvv-w5mx-7x26.json b/advisories/unreviewed/2022/05/GHSA-xpvv-w5mx-7x26/GHSA-xpvv-w5mx-7x26.json index fdc9a63f1b9..9419afdc597 100644 --- a/advisories/unreviewed/2022/05/GHSA-xpvv-w5mx-7x26/GHSA-xpvv-w5mx-7x26.json +++ b/advisories/unreviewed/2022/05/GHSA-xpvv-w5mx-7x26/GHSA-xpvv-w5mx-7x26.json @@ -7,12 +7,8 @@ "CVE-2020-10180" ], "details": "The ESET AV parsing engine allows virus-detection bypass via a crafted BZ2 Checksum field in an archive. This affects versions before 1294 of Smart Security Premium, Internet Security, NOD32 Antivirus, Cyber Security Pro (macOS), Cyber Security (macOS), Mobile Security for Android, Smart TV Security, and NOD32 Antivirus 4 for Linux Desktop.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xqhq-m8mv-g9wp/GHSA-xqhq-m8mv-g9wp.json b/advisories/unreviewed/2022/05/GHSA-xqhq-m8mv-g9wp/GHSA-xqhq-m8mv-g9wp.json index ace3a577337..f68f8b904c2 100644 --- a/advisories/unreviewed/2022/05/GHSA-xqhq-m8mv-g9wp/GHSA-xqhq-m8mv-g9wp.json +++ b/advisories/unreviewed/2022/05/GHSA-xqhq-m8mv-g9wp/GHSA-xqhq-m8mv-g9wp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xr9q-p253-xqxh/GHSA-xr9q-p253-xqxh.json b/advisories/unreviewed/2022/05/GHSA-xr9q-p253-xqxh/GHSA-xr9q-p253-xqxh.json index a3be3f06c46..a4ce68da881 100644 --- a/advisories/unreviewed/2022/05/GHSA-xr9q-p253-xqxh/GHSA-xr9q-p253-xqxh.json +++ b/advisories/unreviewed/2022/05/GHSA-xr9q-p253-xqxh/GHSA-xr9q-p253-xqxh.json @@ -7,12 +7,8 @@ "CVE-2020-0052" ], "details": "In smsSelected of AnswerFragment.java, there is a way to send an SMS from the lock screen due to a permissions bypass. This could lead to local escalation of privilege on the lock screen with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-137102479", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xrg5-3www-67qf/GHSA-xrg5-3www-67qf.json b/advisories/unreviewed/2022/05/GHSA-xrg5-3www-67qf/GHSA-xrg5-3www-67qf.json index e10866a5477..6b00ee9a196 100644 --- a/advisories/unreviewed/2022/05/GHSA-xrg5-3www-67qf/GHSA-xrg5-3www-67qf.json +++ b/advisories/unreviewed/2022/05/GHSA-xrg5-3www-67qf/GHSA-xrg5-3www-67qf.json @@ -7,12 +7,8 @@ "CVE-2015-7343" ], "details": "JNews Joomla Component before 8.5.0 has XSS via the mailingsearch parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xrq5-m5j9-gg5f/GHSA-xrq5-m5j9-gg5f.json b/advisories/unreviewed/2022/05/GHSA-xrq5-m5j9-gg5f/GHSA-xrq5-m5j9-gg5f.json index 79d907adb6d..067c0df3943 100644 --- a/advisories/unreviewed/2022/05/GHSA-xrq5-m5j9-gg5f/GHSA-xrq5-m5j9-gg5f.json +++ b/advisories/unreviewed/2022/05/GHSA-xrq5-m5j9-gg5f/GHSA-xrq5-m5j9-gg5f.json @@ -7,12 +7,8 @@ "CVE-2020-0036" ], "details": "In hasPermissions of PermissionMonitor.java, there is a possible access to restricted permissions due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-144679405", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xv6g-g79p-x344/GHSA-xv6g-g79p-x344.json b/advisories/unreviewed/2022/05/GHSA-xv6g-g79p-x344/GHSA-xv6g-g79p-x344.json index 18650302a81..cadb877c349 100644 --- a/advisories/unreviewed/2022/05/GHSA-xv6g-g79p-x344/GHSA-xv6g-g79p-x344.json +++ b/advisories/unreviewed/2022/05/GHSA-xv6g-g79p-x344/GHSA-xv6g-g79p-x344.json @@ -7,12 +7,8 @@ "CVE-2018-16357" ], "details": "An issue was discovered in PbootCMS. There is a SQL injection via the api.php/Cms/search order parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xvp4-22jh-479g/GHSA-xvp4-22jh-479g.json b/advisories/unreviewed/2022/05/GHSA-xvp4-22jh-479g/GHSA-xvp4-22jh-479g.json index ca1cb326647..86c8ad08362 100644 --- a/advisories/unreviewed/2022/05/GHSA-xvp4-22jh-479g/GHSA-xvp4-22jh-479g.json +++ b/advisories/unreviewed/2022/05/GHSA-xvp4-22jh-479g/GHSA-xvp4-22jh-479g.json @@ -7,12 +7,8 @@ "CVE-2020-10191" ], "details": "An issue was discovered in MunkiReport before 5.3.0. An authenticated actor can send a custom XSS payload through the /module/comment/save endpoint. The payload will be executed by any authenticated users browsing the application. This concerns app/controllers/client.php:detail.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xvvh-54m6-j663/GHSA-xvvh-54m6-j663.json b/advisories/unreviewed/2022/05/GHSA-xvvh-54m6-j663/GHSA-xvvh-54m6-j663.json index 9b9ec3fec0e..bc13de408b3 100644 --- a/advisories/unreviewed/2022/05/GHSA-xvvh-54m6-j663/GHSA-xvvh-54m6-j663.json +++ b/advisories/unreviewed/2022/05/GHSA-xvvh-54m6-j663/GHSA-xvvh-54m6-j663.json @@ -7,12 +7,8 @@ "CVE-2020-10106" ], "details": "PHPGurukul Daily Expense Tracker System 1.0 is vulnerable to SQL injection, as demonstrated by the email parameter in index.php or register.php. The SQL injection allows to dump the MySQL database and to bypass the login prompt.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/06/GHSA-3m87-6xrr-84pm/GHSA-3m87-6xrr-84pm.json b/advisories/unreviewed/2022/06/GHSA-3m87-6xrr-84pm/GHSA-3m87-6xrr-84pm.json index 7a539298d94..cd2dafad476 100644 --- a/advisories/unreviewed/2022/06/GHSA-3m87-6xrr-84pm/GHSA-3m87-6xrr-84pm.json +++ b/advisories/unreviewed/2022/06/GHSA-3m87-6xrr-84pm/GHSA-3m87-6xrr-84pm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/06/GHSA-467r-6mjf-fx3w/GHSA-467r-6mjf-fx3w.json b/advisories/unreviewed/2022/06/GHSA-467r-6mjf-fx3w/GHSA-467r-6mjf-fx3w.json index 91ef81e3627..03d74bf4fd4 100644 --- a/advisories/unreviewed/2022/06/GHSA-467r-6mjf-fx3w/GHSA-467r-6mjf-fx3w.json +++ b/advisories/unreviewed/2022/06/GHSA-467r-6mjf-fx3w/GHSA-467r-6mjf-fx3w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/06/GHSA-8932-gr4r-9hpv/GHSA-8932-gr4r-9hpv.json b/advisories/unreviewed/2022/06/GHSA-8932-gr4r-9hpv/GHSA-8932-gr4r-9hpv.json index 76ec8c48249..8e53eb7e0d7 100644 --- a/advisories/unreviewed/2022/06/GHSA-8932-gr4r-9hpv/GHSA-8932-gr4r-9hpv.json +++ b/advisories/unreviewed/2022/06/GHSA-8932-gr4r-9hpv/GHSA-8932-gr4r-9hpv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/06/GHSA-c938-72w7-26mv/GHSA-c938-72w7-26mv.json b/advisories/unreviewed/2022/06/GHSA-c938-72w7-26mv/GHSA-c938-72w7-26mv.json index 6c839d39043..6a5fde7412f 100644 --- a/advisories/unreviewed/2022/06/GHSA-c938-72w7-26mv/GHSA-c938-72w7-26mv.json +++ b/advisories/unreviewed/2022/06/GHSA-c938-72w7-26mv/GHSA-c938-72w7-26mv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/06/GHSA-cgq8-x9fm-m5vm/GHSA-cgq8-x9fm-m5vm.json b/advisories/unreviewed/2022/06/GHSA-cgq8-x9fm-m5vm/GHSA-cgq8-x9fm-m5vm.json index eb02e5b141b..9610aeb429b 100644 --- a/advisories/unreviewed/2022/06/GHSA-cgq8-x9fm-m5vm/GHSA-cgq8-x9fm-m5vm.json +++ b/advisories/unreviewed/2022/06/GHSA-cgq8-x9fm-m5vm/GHSA-cgq8-x9fm-m5vm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/06/GHSA-fp8x-7f8g-pj5f/GHSA-fp8x-7f8g-pj5f.json b/advisories/unreviewed/2022/06/GHSA-fp8x-7f8g-pj5f/GHSA-fp8x-7f8g-pj5f.json index 72e7f83e2d1..a2be0e0b293 100644 --- a/advisories/unreviewed/2022/06/GHSA-fp8x-7f8g-pj5f/GHSA-fp8x-7f8g-pj5f.json +++ b/advisories/unreviewed/2022/06/GHSA-fp8x-7f8g-pj5f/GHSA-fp8x-7f8g-pj5f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/06/GHSA-g7rf-g4j7-7fc4/GHSA-g7rf-g4j7-7fc4.json b/advisories/unreviewed/2022/06/GHSA-g7rf-g4j7-7fc4/GHSA-g7rf-g4j7-7fc4.json index 4890a6ad02b..a65f99b4e12 100644 --- a/advisories/unreviewed/2022/06/GHSA-g7rf-g4j7-7fc4/GHSA-g7rf-g4j7-7fc4.json +++ b/advisories/unreviewed/2022/06/GHSA-g7rf-g4j7-7fc4/GHSA-g7rf-g4j7-7fc4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/06/GHSA-m3p7-567v-px58/GHSA-m3p7-567v-px58.json b/advisories/unreviewed/2022/06/GHSA-m3p7-567v-px58/GHSA-m3p7-567v-px58.json index 862703210e5..972da1aba72 100644 --- a/advisories/unreviewed/2022/06/GHSA-m3p7-567v-px58/GHSA-m3p7-567v-px58.json +++ b/advisories/unreviewed/2022/06/GHSA-m3p7-567v-px58/GHSA-m3p7-567v-px58.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/06/GHSA-qj28-v8qh-ccqw/GHSA-qj28-v8qh-ccqw.json b/advisories/unreviewed/2022/06/GHSA-qj28-v8qh-ccqw/GHSA-qj28-v8qh-ccqw.json index bc030ae47d3..eb4809c5136 100644 --- a/advisories/unreviewed/2022/06/GHSA-qj28-v8qh-ccqw/GHSA-qj28-v8qh-ccqw.json +++ b/advisories/unreviewed/2022/06/GHSA-qj28-v8qh-ccqw/GHSA-qj28-v8qh-ccqw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/06/GHSA-qvv9-757j-qvmm/GHSA-qvv9-757j-qvmm.json b/advisories/unreviewed/2022/06/GHSA-qvv9-757j-qvmm/GHSA-qvv9-757j-qvmm.json index 243e9b9b0dc..2cb3967298a 100644 --- a/advisories/unreviewed/2022/06/GHSA-qvv9-757j-qvmm/GHSA-qvv9-757j-qvmm.json +++ b/advisories/unreviewed/2022/06/GHSA-qvv9-757j-qvmm/GHSA-qvv9-757j-qvmm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/06/GHSA-qvxh-3pw2-32v5/GHSA-qvxh-3pw2-32v5.json b/advisories/unreviewed/2022/06/GHSA-qvxh-3pw2-32v5/GHSA-qvxh-3pw2-32v5.json index a5161597283..8a6b386dd43 100644 --- a/advisories/unreviewed/2022/06/GHSA-qvxh-3pw2-32v5/GHSA-qvxh-3pw2-32v5.json +++ b/advisories/unreviewed/2022/06/GHSA-qvxh-3pw2-32v5/GHSA-qvxh-3pw2-32v5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/06/GHSA-r9cv-53c9-hgr9/GHSA-r9cv-53c9-hgr9.json b/advisories/unreviewed/2022/06/GHSA-r9cv-53c9-hgr9/GHSA-r9cv-53c9-hgr9.json index d9bd79e5d1b..53dc587450c 100644 --- a/advisories/unreviewed/2022/06/GHSA-r9cv-53c9-hgr9/GHSA-r9cv-53c9-hgr9.json +++ b/advisories/unreviewed/2022/06/GHSA-r9cv-53c9-hgr9/GHSA-r9cv-53c9-hgr9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/06/GHSA-v6gc-c23p-jg2v/GHSA-v6gc-c23p-jg2v.json b/advisories/unreviewed/2022/06/GHSA-v6gc-c23p-jg2v/GHSA-v6gc-c23p-jg2v.json index c32693be854..6e14108c76f 100644 --- a/advisories/unreviewed/2022/06/GHSA-v6gc-c23p-jg2v/GHSA-v6gc-c23p-jg2v.json +++ b/advisories/unreviewed/2022/06/GHSA-v6gc-c23p-jg2v/GHSA-v6gc-c23p-jg2v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/06/GHSA-v9x9-r7q4-rfx4/GHSA-v9x9-r7q4-rfx4.json b/advisories/unreviewed/2022/06/GHSA-v9x9-r7q4-rfx4/GHSA-v9x9-r7q4-rfx4.json index 0be660aadb6..614b653cefb 100644 --- a/advisories/unreviewed/2022/06/GHSA-v9x9-r7q4-rfx4/GHSA-v9x9-r7q4-rfx4.json +++ b/advisories/unreviewed/2022/06/GHSA-v9x9-r7q4-rfx4/GHSA-v9x9-r7q4-rfx4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/07/GHSA-w7rj-j5f6-772g/GHSA-w7rj-j5f6-772g.json b/advisories/unreviewed/2022/07/GHSA-w7rj-j5f6-772g/GHSA-w7rj-j5f6-772g.json index 96a4c07e884..b07c6cd5a41 100644 --- a/advisories/unreviewed/2022/07/GHSA-w7rj-j5f6-772g/GHSA-w7rj-j5f6-772g.json +++ b/advisories/unreviewed/2022/07/GHSA-w7rj-j5f6-772g/GHSA-w7rj-j5f6-772g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-29f2-5rg5-fpqh/GHSA-29f2-5rg5-fpqh.json b/advisories/unreviewed/2022/08/GHSA-29f2-5rg5-fpqh/GHSA-29f2-5rg5-fpqh.json index 6faa511eac3..4744e087d4a 100644 --- a/advisories/unreviewed/2022/08/GHSA-29f2-5rg5-fpqh/GHSA-29f2-5rg5-fpqh.json +++ b/advisories/unreviewed/2022/08/GHSA-29f2-5rg5-fpqh/GHSA-29f2-5rg5-fpqh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-4qh6-wmrm-mp28/GHSA-4qh6-wmrm-mp28.json b/advisories/unreviewed/2022/08/GHSA-4qh6-wmrm-mp28/GHSA-4qh6-wmrm-mp28.json index b99338c0dbd..d46bf14aaca 100644 --- a/advisories/unreviewed/2022/08/GHSA-4qh6-wmrm-mp28/GHSA-4qh6-wmrm-mp28.json +++ b/advisories/unreviewed/2022/08/GHSA-4qh6-wmrm-mp28/GHSA-4qh6-wmrm-mp28.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-65pv-gqpg-397f/GHSA-65pv-gqpg-397f.json b/advisories/unreviewed/2022/08/GHSA-65pv-gqpg-397f/GHSA-65pv-gqpg-397f.json index 6b8d7f8d9bf..6402d4c918e 100644 --- a/advisories/unreviewed/2022/08/GHSA-65pv-gqpg-397f/GHSA-65pv-gqpg-397f.json +++ b/advisories/unreviewed/2022/08/GHSA-65pv-gqpg-397f/GHSA-65pv-gqpg-397f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-6p44-5x7x-8vxj/GHSA-6p44-5x7x-8vxj.json b/advisories/unreviewed/2022/08/GHSA-6p44-5x7x-8vxj/GHSA-6p44-5x7x-8vxj.json index 565ce73f4e9..2206aae1587 100644 --- a/advisories/unreviewed/2022/08/GHSA-6p44-5x7x-8vxj/GHSA-6p44-5x7x-8vxj.json +++ b/advisories/unreviewed/2022/08/GHSA-6p44-5x7x-8vxj/GHSA-6p44-5x7x-8vxj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-88fw-cm3w-8cq5/GHSA-88fw-cm3w-8cq5.json b/advisories/unreviewed/2022/08/GHSA-88fw-cm3w-8cq5/GHSA-88fw-cm3w-8cq5.json index a8d171aa698..ef5a16fdc8f 100644 --- a/advisories/unreviewed/2022/08/GHSA-88fw-cm3w-8cq5/GHSA-88fw-cm3w-8cq5.json +++ b/advisories/unreviewed/2022/08/GHSA-88fw-cm3w-8cq5/GHSA-88fw-cm3w-8cq5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-8rff-xvx4-wwhh/GHSA-8rff-xvx4-wwhh.json b/advisories/unreviewed/2022/08/GHSA-8rff-xvx4-wwhh/GHSA-8rff-xvx4-wwhh.json index edc068a2493..7c0edce5595 100644 --- a/advisories/unreviewed/2022/08/GHSA-8rff-xvx4-wwhh/GHSA-8rff-xvx4-wwhh.json +++ b/advisories/unreviewed/2022/08/GHSA-8rff-xvx4-wwhh/GHSA-8rff-xvx4-wwhh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-9fpj-jhm5-p6h9/GHSA-9fpj-jhm5-p6h9.json b/advisories/unreviewed/2022/08/GHSA-9fpj-jhm5-p6h9/GHSA-9fpj-jhm5-p6h9.json index 197d6874c16..e5fd7016e75 100644 --- a/advisories/unreviewed/2022/08/GHSA-9fpj-jhm5-p6h9/GHSA-9fpj-jhm5-p6h9.json +++ b/advisories/unreviewed/2022/08/GHSA-9fpj-jhm5-p6h9/GHSA-9fpj-jhm5-p6h9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-9p4w-6fpq-fpm6/GHSA-9p4w-6fpq-fpm6.json b/advisories/unreviewed/2022/08/GHSA-9p4w-6fpq-fpm6/GHSA-9p4w-6fpq-fpm6.json index 5be1e878975..d4f43d07457 100644 --- a/advisories/unreviewed/2022/08/GHSA-9p4w-6fpq-fpm6/GHSA-9p4w-6fpq-fpm6.json +++ b/advisories/unreviewed/2022/08/GHSA-9p4w-6fpq-fpm6/GHSA-9p4w-6fpq-fpm6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-cf9j-7x8p-4gvv/GHSA-cf9j-7x8p-4gvv.json b/advisories/unreviewed/2022/08/GHSA-cf9j-7x8p-4gvv/GHSA-cf9j-7x8p-4gvv.json index d2e62385f3a..ebdc139f416 100644 --- a/advisories/unreviewed/2022/08/GHSA-cf9j-7x8p-4gvv/GHSA-cf9j-7x8p-4gvv.json +++ b/advisories/unreviewed/2022/08/GHSA-cf9j-7x8p-4gvv/GHSA-cf9j-7x8p-4gvv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-fxpp-6992-65m4/GHSA-fxpp-6992-65m4.json b/advisories/unreviewed/2022/08/GHSA-fxpp-6992-65m4/GHSA-fxpp-6992-65m4.json index f99e1382596..45cc0535300 100644 --- a/advisories/unreviewed/2022/08/GHSA-fxpp-6992-65m4/GHSA-fxpp-6992-65m4.json +++ b/advisories/unreviewed/2022/08/GHSA-fxpp-6992-65m4/GHSA-fxpp-6992-65m4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-g4pc-gj78-qfjj/GHSA-g4pc-gj78-qfjj.json b/advisories/unreviewed/2022/08/GHSA-g4pc-gj78-qfjj/GHSA-g4pc-gj78-qfjj.json index 75d543f9be2..1c89a4f5cb9 100644 --- a/advisories/unreviewed/2022/08/GHSA-g4pc-gj78-qfjj/GHSA-g4pc-gj78-qfjj.json +++ b/advisories/unreviewed/2022/08/GHSA-g4pc-gj78-qfjj/GHSA-g4pc-gj78-qfjj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-g4vf-3p39-qqvm/GHSA-g4vf-3p39-qqvm.json b/advisories/unreviewed/2022/08/GHSA-g4vf-3p39-qqvm/GHSA-g4vf-3p39-qqvm.json index b43f1eb0f3b..344442a090d 100644 --- a/advisories/unreviewed/2022/08/GHSA-g4vf-3p39-qqvm/GHSA-g4vf-3p39-qqvm.json +++ b/advisories/unreviewed/2022/08/GHSA-g4vf-3p39-qqvm/GHSA-g4vf-3p39-qqvm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/08/GHSA-gm2j-544r-33fw/GHSA-gm2j-544r-33fw.json b/advisories/unreviewed/2022/08/GHSA-gm2j-544r-33fw/GHSA-gm2j-544r-33fw.json index 1e1822af931..51ef8870a0c 100644 --- a/advisories/unreviewed/2022/08/GHSA-gm2j-544r-33fw/GHSA-gm2j-544r-33fw.json +++ b/advisories/unreviewed/2022/08/GHSA-gm2j-544r-33fw/GHSA-gm2j-544r-33fw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-h8qw-944w-6vhw/GHSA-h8qw-944w-6vhw.json b/advisories/unreviewed/2022/08/GHSA-h8qw-944w-6vhw/GHSA-h8qw-944w-6vhw.json index 3b2af808005..616a2f2cd1c 100644 --- a/advisories/unreviewed/2022/08/GHSA-h8qw-944w-6vhw/GHSA-h8qw-944w-6vhw.json +++ b/advisories/unreviewed/2022/08/GHSA-h8qw-944w-6vhw/GHSA-h8qw-944w-6vhw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-hv8p-prvv-v646/GHSA-hv8p-prvv-v646.json b/advisories/unreviewed/2022/08/GHSA-hv8p-prvv-v646/GHSA-hv8p-prvv-v646.json index 1922f7fe90b..ceefeeb4b07 100644 --- a/advisories/unreviewed/2022/08/GHSA-hv8p-prvv-v646/GHSA-hv8p-prvv-v646.json +++ b/advisories/unreviewed/2022/08/GHSA-hv8p-prvv-v646/GHSA-hv8p-prvv-v646.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-m7mv-m566-78j6/GHSA-m7mv-m566-78j6.json b/advisories/unreviewed/2022/08/GHSA-m7mv-m566-78j6/GHSA-m7mv-m566-78j6.json index 8850ff1b1c0..88a90780a2e 100644 --- a/advisories/unreviewed/2022/08/GHSA-m7mv-m566-78j6/GHSA-m7mv-m566-78j6.json +++ b/advisories/unreviewed/2022/08/GHSA-m7mv-m566-78j6/GHSA-m7mv-m566-78j6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-p9j9-qqwf-j574/GHSA-p9j9-qqwf-j574.json b/advisories/unreviewed/2022/08/GHSA-p9j9-qqwf-j574/GHSA-p9j9-qqwf-j574.json index 250de322e27..8a72fa7a667 100644 --- a/advisories/unreviewed/2022/08/GHSA-p9j9-qqwf-j574/GHSA-p9j9-qqwf-j574.json +++ b/advisories/unreviewed/2022/08/GHSA-p9j9-qqwf-j574/GHSA-p9j9-qqwf-j574.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-q3cp-qrxg-9wv4/GHSA-q3cp-qrxg-9wv4.json b/advisories/unreviewed/2022/08/GHSA-q3cp-qrxg-9wv4/GHSA-q3cp-qrxg-9wv4.json index 86aa5d3c995..21a523481a4 100644 --- a/advisories/unreviewed/2022/08/GHSA-q3cp-qrxg-9wv4/GHSA-q3cp-qrxg-9wv4.json +++ b/advisories/unreviewed/2022/08/GHSA-q3cp-qrxg-9wv4/GHSA-q3cp-qrxg-9wv4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-q6f7-v272-hqqq/GHSA-q6f7-v272-hqqq.json b/advisories/unreviewed/2022/08/GHSA-q6f7-v272-hqqq/GHSA-q6f7-v272-hqqq.json index e685b8db2ba..11c080fb041 100644 --- a/advisories/unreviewed/2022/08/GHSA-q6f7-v272-hqqq/GHSA-q6f7-v272-hqqq.json +++ b/advisories/unreviewed/2022/08/GHSA-q6f7-v272-hqqq/GHSA-q6f7-v272-hqqq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-q9mh-p233-5pvv/GHSA-q9mh-p233-5pvv.json b/advisories/unreviewed/2022/08/GHSA-q9mh-p233-5pvv/GHSA-q9mh-p233-5pvv.json index db19360cd52..2933b16e17e 100644 --- a/advisories/unreviewed/2022/08/GHSA-q9mh-p233-5pvv/GHSA-q9mh-p233-5pvv.json +++ b/advisories/unreviewed/2022/08/GHSA-q9mh-p233-5pvv/GHSA-q9mh-p233-5pvv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-r3p9-xjh5-cp2m/GHSA-r3p9-xjh5-cp2m.json b/advisories/unreviewed/2022/08/GHSA-r3p9-xjh5-cp2m/GHSA-r3p9-xjh5-cp2m.json index edfad4594bd..9a452379a0b 100644 --- a/advisories/unreviewed/2022/08/GHSA-r3p9-xjh5-cp2m/GHSA-r3p9-xjh5-cp2m.json +++ b/advisories/unreviewed/2022/08/GHSA-r3p9-xjh5-cp2m/GHSA-r3p9-xjh5-cp2m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-rg44-hwh5-vcpq/GHSA-rg44-hwh5-vcpq.json b/advisories/unreviewed/2022/08/GHSA-rg44-hwh5-vcpq/GHSA-rg44-hwh5-vcpq.json index 3c8d848a926..f1c11b22a2c 100644 --- a/advisories/unreviewed/2022/08/GHSA-rg44-hwh5-vcpq/GHSA-rg44-hwh5-vcpq.json +++ b/advisories/unreviewed/2022/08/GHSA-rg44-hwh5-vcpq/GHSA-rg44-hwh5-vcpq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-rprh-2gf9-vfmv/GHSA-rprh-2gf9-vfmv.json b/advisories/unreviewed/2022/08/GHSA-rprh-2gf9-vfmv/GHSA-rprh-2gf9-vfmv.json index c31fcecd37d..15ef8c39960 100644 --- a/advisories/unreviewed/2022/08/GHSA-rprh-2gf9-vfmv/GHSA-rprh-2gf9-vfmv.json +++ b/advisories/unreviewed/2022/08/GHSA-rprh-2gf9-vfmv/GHSA-rprh-2gf9-vfmv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-rq2q-g74h-7frw/GHSA-rq2q-g74h-7frw.json b/advisories/unreviewed/2022/08/GHSA-rq2q-g74h-7frw/GHSA-rq2q-g74h-7frw.json index 23e92124b6d..31fbf35b408 100644 --- a/advisories/unreviewed/2022/08/GHSA-rq2q-g74h-7frw/GHSA-rq2q-g74h-7frw.json +++ b/advisories/unreviewed/2022/08/GHSA-rq2q-g74h-7frw/GHSA-rq2q-g74h-7frw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-w882-jpr6-qrvg/GHSA-w882-jpr6-qrvg.json b/advisories/unreviewed/2022/08/GHSA-w882-jpr6-qrvg/GHSA-w882-jpr6-qrvg.json index c537872b75f..5149a4d398b 100644 --- a/advisories/unreviewed/2022/08/GHSA-w882-jpr6-qrvg/GHSA-w882-jpr6-qrvg.json +++ b/advisories/unreviewed/2022/08/GHSA-w882-jpr6-qrvg/GHSA-w882-jpr6-qrvg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-w99h-6vg9-hjrw/GHSA-w99h-6vg9-hjrw.json b/advisories/unreviewed/2022/08/GHSA-w99h-6vg9-hjrw/GHSA-w99h-6vg9-hjrw.json index 31ff7e73e92..271697067a1 100644 --- a/advisories/unreviewed/2022/08/GHSA-w99h-6vg9-hjrw/GHSA-w99h-6vg9-hjrw.json +++ b/advisories/unreviewed/2022/08/GHSA-w99h-6vg9-hjrw/GHSA-w99h-6vg9-hjrw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/09/GHSA-2p55-vr4g-qm2r/GHSA-2p55-vr4g-qm2r.json b/advisories/unreviewed/2022/09/GHSA-2p55-vr4g-qm2r/GHSA-2p55-vr4g-qm2r.json index 1c73906622b..8d33a9ecb70 100644 --- a/advisories/unreviewed/2022/09/GHSA-2p55-vr4g-qm2r/GHSA-2p55-vr4g-qm2r.json +++ b/advisories/unreviewed/2022/09/GHSA-2p55-vr4g-qm2r/GHSA-2p55-vr4g-qm2r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-2xm8-8q96-qxhc/GHSA-2xm8-8q96-qxhc.json b/advisories/unreviewed/2022/09/GHSA-2xm8-8q96-qxhc/GHSA-2xm8-8q96-qxhc.json index 0d33159ee9a..d2c74b212ef 100644 --- a/advisories/unreviewed/2022/09/GHSA-2xm8-8q96-qxhc/GHSA-2xm8-8q96-qxhc.json +++ b/advisories/unreviewed/2022/09/GHSA-2xm8-8q96-qxhc/GHSA-2xm8-8q96-qxhc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-349p-7pf8-f465/GHSA-349p-7pf8-f465.json b/advisories/unreviewed/2022/09/GHSA-349p-7pf8-f465/GHSA-349p-7pf8-f465.json index 83358ace998..dda6e433119 100644 --- a/advisories/unreviewed/2022/09/GHSA-349p-7pf8-f465/GHSA-349p-7pf8-f465.json +++ b/advisories/unreviewed/2022/09/GHSA-349p-7pf8-f465/GHSA-349p-7pf8-f465.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-3g8p-46fx-xh9m/GHSA-3g8p-46fx-xh9m.json b/advisories/unreviewed/2022/09/GHSA-3g8p-46fx-xh9m/GHSA-3g8p-46fx-xh9m.json index 6dd06e3ef00..5ab09508e33 100644 --- a/advisories/unreviewed/2022/09/GHSA-3g8p-46fx-xh9m/GHSA-3g8p-46fx-xh9m.json +++ b/advisories/unreviewed/2022/09/GHSA-3g8p-46fx-xh9m/GHSA-3g8p-46fx-xh9m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-3g95-xf53-275x/GHSA-3g95-xf53-275x.json b/advisories/unreviewed/2022/09/GHSA-3g95-xf53-275x/GHSA-3g95-xf53-275x.json index 1cfb622acc3..5f17ce80e90 100644 --- a/advisories/unreviewed/2022/09/GHSA-3g95-xf53-275x/GHSA-3g95-xf53-275x.json +++ b/advisories/unreviewed/2022/09/GHSA-3g95-xf53-275x/GHSA-3g95-xf53-275x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-3hq4-jm2f-8478/GHSA-3hq4-jm2f-8478.json b/advisories/unreviewed/2022/09/GHSA-3hq4-jm2f-8478/GHSA-3hq4-jm2f-8478.json index 51c619da1a5..dfb718048ac 100644 --- a/advisories/unreviewed/2022/09/GHSA-3hq4-jm2f-8478/GHSA-3hq4-jm2f-8478.json +++ b/advisories/unreviewed/2022/09/GHSA-3hq4-jm2f-8478/GHSA-3hq4-jm2f-8478.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-3mpj-g9cw-f3hj/GHSA-3mpj-g9cw-f3hj.json b/advisories/unreviewed/2022/09/GHSA-3mpj-g9cw-f3hj/GHSA-3mpj-g9cw-f3hj.json index 92e06213415..210aa1c3dba 100644 --- a/advisories/unreviewed/2022/09/GHSA-3mpj-g9cw-f3hj/GHSA-3mpj-g9cw-f3hj.json +++ b/advisories/unreviewed/2022/09/GHSA-3mpj-g9cw-f3hj/GHSA-3mpj-g9cw-f3hj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-42jf-jcvf-jgrw/GHSA-42jf-jcvf-jgrw.json b/advisories/unreviewed/2022/09/GHSA-42jf-jcvf-jgrw/GHSA-42jf-jcvf-jgrw.json index 74ac3ce58b7..60fe3c0ce07 100644 --- a/advisories/unreviewed/2022/09/GHSA-42jf-jcvf-jgrw/GHSA-42jf-jcvf-jgrw.json +++ b/advisories/unreviewed/2022/09/GHSA-42jf-jcvf-jgrw/GHSA-42jf-jcvf-jgrw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-459j-fx99-4969/GHSA-459j-fx99-4969.json b/advisories/unreviewed/2022/09/GHSA-459j-fx99-4969/GHSA-459j-fx99-4969.json index d5bcc8a2f0e..e54d476300e 100644 --- a/advisories/unreviewed/2022/09/GHSA-459j-fx99-4969/GHSA-459j-fx99-4969.json +++ b/advisories/unreviewed/2022/09/GHSA-459j-fx99-4969/GHSA-459j-fx99-4969.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-4fx3-r464-9c28/GHSA-4fx3-r464-9c28.json b/advisories/unreviewed/2022/09/GHSA-4fx3-r464-9c28/GHSA-4fx3-r464-9c28.json index 37689608f8e..fa41a0d7dd8 100644 --- a/advisories/unreviewed/2022/09/GHSA-4fx3-r464-9c28/GHSA-4fx3-r464-9c28.json +++ b/advisories/unreviewed/2022/09/GHSA-4fx3-r464-9c28/GHSA-4fx3-r464-9c28.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-56x5-64f5-4m37/GHSA-56x5-64f5-4m37.json b/advisories/unreviewed/2022/09/GHSA-56x5-64f5-4m37/GHSA-56x5-64f5-4m37.json index 65d78514649..67192bf9b8e 100644 --- a/advisories/unreviewed/2022/09/GHSA-56x5-64f5-4m37/GHSA-56x5-64f5-4m37.json +++ b/advisories/unreviewed/2022/09/GHSA-56x5-64f5-4m37/GHSA-56x5-64f5-4m37.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-57p4-2x7w-phr2/GHSA-57p4-2x7w-phr2.json b/advisories/unreviewed/2022/09/GHSA-57p4-2x7w-phr2/GHSA-57p4-2x7w-phr2.json index 52e86862da2..b86c903f2b6 100644 --- a/advisories/unreviewed/2022/09/GHSA-57p4-2x7w-phr2/GHSA-57p4-2x7w-phr2.json +++ b/advisories/unreviewed/2022/09/GHSA-57p4-2x7w-phr2/GHSA-57p4-2x7w-phr2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-5gr3-r9jq-3qcj/GHSA-5gr3-r9jq-3qcj.json b/advisories/unreviewed/2022/09/GHSA-5gr3-r9jq-3qcj/GHSA-5gr3-r9jq-3qcj.json index e5971d2d8bd..7eb2d9869f7 100644 --- a/advisories/unreviewed/2022/09/GHSA-5gr3-r9jq-3qcj/GHSA-5gr3-r9jq-3qcj.json +++ b/advisories/unreviewed/2022/09/GHSA-5gr3-r9jq-3qcj/GHSA-5gr3-r9jq-3qcj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-5hpg-vprm-c7r7/GHSA-5hpg-vprm-c7r7.json b/advisories/unreviewed/2022/09/GHSA-5hpg-vprm-c7r7/GHSA-5hpg-vprm-c7r7.json index 1ce88a4aaf0..58adf14ef16 100644 --- a/advisories/unreviewed/2022/09/GHSA-5hpg-vprm-c7r7/GHSA-5hpg-vprm-c7r7.json +++ b/advisories/unreviewed/2022/09/GHSA-5hpg-vprm-c7r7/GHSA-5hpg-vprm-c7r7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-64vr-q8xv-vj3c/GHSA-64vr-q8xv-vj3c.json b/advisories/unreviewed/2022/09/GHSA-64vr-q8xv-vj3c/GHSA-64vr-q8xv-vj3c.json index 6f070cb6fc2..f41475930fc 100644 --- a/advisories/unreviewed/2022/09/GHSA-64vr-q8xv-vj3c/GHSA-64vr-q8xv-vj3c.json +++ b/advisories/unreviewed/2022/09/GHSA-64vr-q8xv-vj3c/GHSA-64vr-q8xv-vj3c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/09/GHSA-66hg-757x-5pgv/GHSA-66hg-757x-5pgv.json b/advisories/unreviewed/2022/09/GHSA-66hg-757x-5pgv/GHSA-66hg-757x-5pgv.json index 9870ceb988f..b8a62d4c429 100644 --- a/advisories/unreviewed/2022/09/GHSA-66hg-757x-5pgv/GHSA-66hg-757x-5pgv.json +++ b/advisories/unreviewed/2022/09/GHSA-66hg-757x-5pgv/GHSA-66hg-757x-5pgv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-6x2g-9wvj-4q72/GHSA-6x2g-9wvj-4q72.json b/advisories/unreviewed/2022/09/GHSA-6x2g-9wvj-4q72/GHSA-6x2g-9wvj-4q72.json index 9ad831882f5..59b0cd45d0e 100644 --- a/advisories/unreviewed/2022/09/GHSA-6x2g-9wvj-4q72/GHSA-6x2g-9wvj-4q72.json +++ b/advisories/unreviewed/2022/09/GHSA-6x2g-9wvj-4q72/GHSA-6x2g-9wvj-4q72.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-7xcr-6p4f-q66v/GHSA-7xcr-6p4f-q66v.json b/advisories/unreviewed/2022/09/GHSA-7xcr-6p4f-q66v/GHSA-7xcr-6p4f-q66v.json index fdc9574e096..c94513b8305 100644 --- a/advisories/unreviewed/2022/09/GHSA-7xcr-6p4f-q66v/GHSA-7xcr-6p4f-q66v.json +++ b/advisories/unreviewed/2022/09/GHSA-7xcr-6p4f-q66v/GHSA-7xcr-6p4f-q66v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-7xr9-rmm4-cq6v/GHSA-7xr9-rmm4-cq6v.json b/advisories/unreviewed/2022/09/GHSA-7xr9-rmm4-cq6v/GHSA-7xr9-rmm4-cq6v.json index 1d9126ef58e..0c3cab25b74 100644 --- a/advisories/unreviewed/2022/09/GHSA-7xr9-rmm4-cq6v/GHSA-7xr9-rmm4-cq6v.json +++ b/advisories/unreviewed/2022/09/GHSA-7xr9-rmm4-cq6v/GHSA-7xr9-rmm4-cq6v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-8j78-7q6f-p35c/GHSA-8j78-7q6f-p35c.json b/advisories/unreviewed/2022/09/GHSA-8j78-7q6f-p35c/GHSA-8j78-7q6f-p35c.json index 9333f0a1ae8..7186ee1891e 100644 --- a/advisories/unreviewed/2022/09/GHSA-8j78-7q6f-p35c/GHSA-8j78-7q6f-p35c.json +++ b/advisories/unreviewed/2022/09/GHSA-8j78-7q6f-p35c/GHSA-8j78-7q6f-p35c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-8mh6-982p-25hv/GHSA-8mh6-982p-25hv.json b/advisories/unreviewed/2022/09/GHSA-8mh6-982p-25hv/GHSA-8mh6-982p-25hv.json index 71995f21750..bbc7cf5c6c3 100644 --- a/advisories/unreviewed/2022/09/GHSA-8mh6-982p-25hv/GHSA-8mh6-982p-25hv.json +++ b/advisories/unreviewed/2022/09/GHSA-8mh6-982p-25hv/GHSA-8mh6-982p-25hv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-8qfm-5jpx-jp3v/GHSA-8qfm-5jpx-jp3v.json b/advisories/unreviewed/2022/09/GHSA-8qfm-5jpx-jp3v/GHSA-8qfm-5jpx-jp3v.json index f5ebc5d7203..f90a2c8affa 100644 --- a/advisories/unreviewed/2022/09/GHSA-8qfm-5jpx-jp3v/GHSA-8qfm-5jpx-jp3v.json +++ b/advisories/unreviewed/2022/09/GHSA-8qfm-5jpx-jp3v/GHSA-8qfm-5jpx-jp3v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-9jg9-7mjm-x5wx/GHSA-9jg9-7mjm-x5wx.json b/advisories/unreviewed/2022/09/GHSA-9jg9-7mjm-x5wx/GHSA-9jg9-7mjm-x5wx.json index 741fec09a16..d924ad4f465 100644 --- a/advisories/unreviewed/2022/09/GHSA-9jg9-7mjm-x5wx/GHSA-9jg9-7mjm-x5wx.json +++ b/advisories/unreviewed/2022/09/GHSA-9jg9-7mjm-x5wx/GHSA-9jg9-7mjm-x5wx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-c2gj-fphg-qv3q/GHSA-c2gj-fphg-qv3q.json b/advisories/unreviewed/2022/09/GHSA-c2gj-fphg-qv3q/GHSA-c2gj-fphg-qv3q.json index 4c78eeeda21..6c8467db357 100644 --- a/advisories/unreviewed/2022/09/GHSA-c2gj-fphg-qv3q/GHSA-c2gj-fphg-qv3q.json +++ b/advisories/unreviewed/2022/09/GHSA-c2gj-fphg-qv3q/GHSA-c2gj-fphg-qv3q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-c2j6-f87v-4p3r/GHSA-c2j6-f87v-4p3r.json b/advisories/unreviewed/2022/09/GHSA-c2j6-f87v-4p3r/GHSA-c2j6-f87v-4p3r.json index dead8708f30..0a15c49841f 100644 --- a/advisories/unreviewed/2022/09/GHSA-c2j6-f87v-4p3r/GHSA-c2j6-f87v-4p3r.json +++ b/advisories/unreviewed/2022/09/GHSA-c2j6-f87v-4p3r/GHSA-c2j6-f87v-4p3r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-c4x3-h9wg-9x78/GHSA-c4x3-h9wg-9x78.json b/advisories/unreviewed/2022/09/GHSA-c4x3-h9wg-9x78/GHSA-c4x3-h9wg-9x78.json index 131625f3b6a..216237e2604 100644 --- a/advisories/unreviewed/2022/09/GHSA-c4x3-h9wg-9x78/GHSA-c4x3-h9wg-9x78.json +++ b/advisories/unreviewed/2022/09/GHSA-c4x3-h9wg-9x78/GHSA-c4x3-h9wg-9x78.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-cm58-r8g4-7v26/GHSA-cm58-r8g4-7v26.json b/advisories/unreviewed/2022/09/GHSA-cm58-r8g4-7v26/GHSA-cm58-r8g4-7v26.json index 8c6af4d023b..d63d16ffbb3 100644 --- a/advisories/unreviewed/2022/09/GHSA-cm58-r8g4-7v26/GHSA-cm58-r8g4-7v26.json +++ b/advisories/unreviewed/2022/09/GHSA-cm58-r8g4-7v26/GHSA-cm58-r8g4-7v26.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-cqcm-975c-w5xg/GHSA-cqcm-975c-w5xg.json b/advisories/unreviewed/2022/09/GHSA-cqcm-975c-w5xg/GHSA-cqcm-975c-w5xg.json index 92f55b74032..bd107edfb80 100644 --- a/advisories/unreviewed/2022/09/GHSA-cqcm-975c-w5xg/GHSA-cqcm-975c-w5xg.json +++ b/advisories/unreviewed/2022/09/GHSA-cqcm-975c-w5xg/GHSA-cqcm-975c-w5xg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-f4f7-96rj-qrp5/GHSA-f4f7-96rj-qrp5.json b/advisories/unreviewed/2022/09/GHSA-f4f7-96rj-qrp5/GHSA-f4f7-96rj-qrp5.json index d570711f71c..9b998963dff 100644 --- a/advisories/unreviewed/2022/09/GHSA-f4f7-96rj-qrp5/GHSA-f4f7-96rj-qrp5.json +++ b/advisories/unreviewed/2022/09/GHSA-f4f7-96rj-qrp5/GHSA-f4f7-96rj-qrp5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-g2pv-jwfp-hm99/GHSA-g2pv-jwfp-hm99.json b/advisories/unreviewed/2022/09/GHSA-g2pv-jwfp-hm99/GHSA-g2pv-jwfp-hm99.json index e2270ebf84b..fb28ae8b0f0 100644 --- a/advisories/unreviewed/2022/09/GHSA-g2pv-jwfp-hm99/GHSA-g2pv-jwfp-hm99.json +++ b/advisories/unreviewed/2022/09/GHSA-g2pv-jwfp-hm99/GHSA-g2pv-jwfp-hm99.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-gppw-9x58-fhf2/GHSA-gppw-9x58-fhf2.json b/advisories/unreviewed/2022/09/GHSA-gppw-9x58-fhf2/GHSA-gppw-9x58-fhf2.json index ee42b5ce371..d15d0343bd5 100644 --- a/advisories/unreviewed/2022/09/GHSA-gppw-9x58-fhf2/GHSA-gppw-9x58-fhf2.json +++ b/advisories/unreviewed/2022/09/GHSA-gppw-9x58-fhf2/GHSA-gppw-9x58-fhf2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-gvgm-6x66-j988/GHSA-gvgm-6x66-j988.json b/advisories/unreviewed/2022/09/GHSA-gvgm-6x66-j988/GHSA-gvgm-6x66-j988.json index 616a1710a57..c03a67d935f 100644 --- a/advisories/unreviewed/2022/09/GHSA-gvgm-6x66-j988/GHSA-gvgm-6x66-j988.json +++ b/advisories/unreviewed/2022/09/GHSA-gvgm-6x66-j988/GHSA-gvgm-6x66-j988.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-gw88-98xg-7785/GHSA-gw88-98xg-7785.json b/advisories/unreviewed/2022/09/GHSA-gw88-98xg-7785/GHSA-gw88-98xg-7785.json index fe7a6487682..eb427450b47 100644 --- a/advisories/unreviewed/2022/09/GHSA-gw88-98xg-7785/GHSA-gw88-98xg-7785.json +++ b/advisories/unreviewed/2022/09/GHSA-gw88-98xg-7785/GHSA-gw88-98xg-7785.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-h9r8-4qcv-4p6m/GHSA-h9r8-4qcv-4p6m.json b/advisories/unreviewed/2022/09/GHSA-h9r8-4qcv-4p6m/GHSA-h9r8-4qcv-4p6m.json index 778f707e53d..1cc0a847826 100644 --- a/advisories/unreviewed/2022/09/GHSA-h9r8-4qcv-4p6m/GHSA-h9r8-4qcv-4p6m.json +++ b/advisories/unreviewed/2022/09/GHSA-h9r8-4qcv-4p6m/GHSA-h9r8-4qcv-4p6m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-hhph-6qvj-8859/GHSA-hhph-6qvj-8859.json b/advisories/unreviewed/2022/09/GHSA-hhph-6qvj-8859/GHSA-hhph-6qvj-8859.json index 097af86398a..4871df78b4e 100644 --- a/advisories/unreviewed/2022/09/GHSA-hhph-6qvj-8859/GHSA-hhph-6qvj-8859.json +++ b/advisories/unreviewed/2022/09/GHSA-hhph-6qvj-8859/GHSA-hhph-6qvj-8859.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-j6fw-8c2x-xmgq/GHSA-j6fw-8c2x-xmgq.json b/advisories/unreviewed/2022/09/GHSA-j6fw-8c2x-xmgq/GHSA-j6fw-8c2x-xmgq.json index 20ac7cb2309..190d65e8807 100644 --- a/advisories/unreviewed/2022/09/GHSA-j6fw-8c2x-xmgq/GHSA-j6fw-8c2x-xmgq.json +++ b/advisories/unreviewed/2022/09/GHSA-j6fw-8c2x-xmgq/GHSA-j6fw-8c2x-xmgq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-j9rc-2hv9-v5v8/GHSA-j9rc-2hv9-v5v8.json b/advisories/unreviewed/2022/09/GHSA-j9rc-2hv9-v5v8/GHSA-j9rc-2hv9-v5v8.json index 182ad458194..ea53150a07d 100644 --- a/advisories/unreviewed/2022/09/GHSA-j9rc-2hv9-v5v8/GHSA-j9rc-2hv9-v5v8.json +++ b/advisories/unreviewed/2022/09/GHSA-j9rc-2hv9-v5v8/GHSA-j9rc-2hv9-v5v8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-jj96-j367-3jx7/GHSA-jj96-j367-3jx7.json b/advisories/unreviewed/2022/09/GHSA-jj96-j367-3jx7/GHSA-jj96-j367-3jx7.json index 50b1eee5671..9474383ed92 100644 --- a/advisories/unreviewed/2022/09/GHSA-jj96-j367-3jx7/GHSA-jj96-j367-3jx7.json +++ b/advisories/unreviewed/2022/09/GHSA-jj96-j367-3jx7/GHSA-jj96-j367-3jx7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-m732-653h-47jg/GHSA-m732-653h-47jg.json b/advisories/unreviewed/2022/09/GHSA-m732-653h-47jg/GHSA-m732-653h-47jg.json index 38a1f28d604..7830c657baa 100644 --- a/advisories/unreviewed/2022/09/GHSA-m732-653h-47jg/GHSA-m732-653h-47jg.json +++ b/advisories/unreviewed/2022/09/GHSA-m732-653h-47jg/GHSA-m732-653h-47jg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-mj2f-7f6m-rmcf/GHSA-mj2f-7f6m-rmcf.json b/advisories/unreviewed/2022/09/GHSA-mj2f-7f6m-rmcf/GHSA-mj2f-7f6m-rmcf.json index cc0fc5cbee4..934da6751d6 100644 --- a/advisories/unreviewed/2022/09/GHSA-mj2f-7f6m-rmcf/GHSA-mj2f-7f6m-rmcf.json +++ b/advisories/unreviewed/2022/09/GHSA-mj2f-7f6m-rmcf/GHSA-mj2f-7f6m-rmcf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-mwmr-r2xr-f57p/GHSA-mwmr-r2xr-f57p.json b/advisories/unreviewed/2022/09/GHSA-mwmr-r2xr-f57p/GHSA-mwmr-r2xr-f57p.json index 04bb92f267f..ddaa5b833c9 100644 --- a/advisories/unreviewed/2022/09/GHSA-mwmr-r2xr-f57p/GHSA-mwmr-r2xr-f57p.json +++ b/advisories/unreviewed/2022/09/GHSA-mwmr-r2xr-f57p/GHSA-mwmr-r2xr-f57p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-mxpf-8vh5-cqfx/GHSA-mxpf-8vh5-cqfx.json b/advisories/unreviewed/2022/09/GHSA-mxpf-8vh5-cqfx/GHSA-mxpf-8vh5-cqfx.json index 49ad9f5f875..2eb74ec29a2 100644 --- a/advisories/unreviewed/2022/09/GHSA-mxpf-8vh5-cqfx/GHSA-mxpf-8vh5-cqfx.json +++ b/advisories/unreviewed/2022/09/GHSA-mxpf-8vh5-cqfx/GHSA-mxpf-8vh5-cqfx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-p26j-hx3p-vjcf/GHSA-p26j-hx3p-vjcf.json b/advisories/unreviewed/2022/09/GHSA-p26j-hx3p-vjcf/GHSA-p26j-hx3p-vjcf.json index fad31ec404c..5003430a32b 100644 --- a/advisories/unreviewed/2022/09/GHSA-p26j-hx3p-vjcf/GHSA-p26j-hx3p-vjcf.json +++ b/advisories/unreviewed/2022/09/GHSA-p26j-hx3p-vjcf/GHSA-p26j-hx3p-vjcf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-p37g-3w4v-6868/GHSA-p37g-3w4v-6868.json b/advisories/unreviewed/2022/09/GHSA-p37g-3w4v-6868/GHSA-p37g-3w4v-6868.json index 37ff8f6471a..4b5a43c52c5 100644 --- a/advisories/unreviewed/2022/09/GHSA-p37g-3w4v-6868/GHSA-p37g-3w4v-6868.json +++ b/advisories/unreviewed/2022/09/GHSA-p37g-3w4v-6868/GHSA-p37g-3w4v-6868.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-p749-35wc-hvh4/GHSA-p749-35wc-hvh4.json b/advisories/unreviewed/2022/09/GHSA-p749-35wc-hvh4/GHSA-p749-35wc-hvh4.json index 971e22b9a86..b91f98fb2de 100644 --- a/advisories/unreviewed/2022/09/GHSA-p749-35wc-hvh4/GHSA-p749-35wc-hvh4.json +++ b/advisories/unreviewed/2022/09/GHSA-p749-35wc-hvh4/GHSA-p749-35wc-hvh4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-pcpv-9vhw-96hp/GHSA-pcpv-9vhw-96hp.json b/advisories/unreviewed/2022/09/GHSA-pcpv-9vhw-96hp/GHSA-pcpv-9vhw-96hp.json index dedc70bf249..4accfe1c23b 100644 --- a/advisories/unreviewed/2022/09/GHSA-pcpv-9vhw-96hp/GHSA-pcpv-9vhw-96hp.json +++ b/advisories/unreviewed/2022/09/GHSA-pcpv-9vhw-96hp/GHSA-pcpv-9vhw-96hp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-ppmm-vg73-p2w2/GHSA-ppmm-vg73-p2w2.json b/advisories/unreviewed/2022/09/GHSA-ppmm-vg73-p2w2/GHSA-ppmm-vg73-p2w2.json index 9db812dbd97..e87725dd25d 100644 --- a/advisories/unreviewed/2022/09/GHSA-ppmm-vg73-p2w2/GHSA-ppmm-vg73-p2w2.json +++ b/advisories/unreviewed/2022/09/GHSA-ppmm-vg73-p2w2/GHSA-ppmm-vg73-p2w2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-pq5g-2f3q-7fq7/GHSA-pq5g-2f3q-7fq7.json b/advisories/unreviewed/2022/09/GHSA-pq5g-2f3q-7fq7/GHSA-pq5g-2f3q-7fq7.json index 331fe4ccc00..65161191b01 100644 --- a/advisories/unreviewed/2022/09/GHSA-pq5g-2f3q-7fq7/GHSA-pq5g-2f3q-7fq7.json +++ b/advisories/unreviewed/2022/09/GHSA-pq5g-2f3q-7fq7/GHSA-pq5g-2f3q-7fq7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-prjx-q4r9-5f42/GHSA-prjx-q4r9-5f42.json b/advisories/unreviewed/2022/09/GHSA-prjx-q4r9-5f42/GHSA-prjx-q4r9-5f42.json index 14b5d724d4a..4f37211aa51 100644 --- a/advisories/unreviewed/2022/09/GHSA-prjx-q4r9-5f42/GHSA-prjx-q4r9-5f42.json +++ b/advisories/unreviewed/2022/09/GHSA-prjx-q4r9-5f42/GHSA-prjx-q4r9-5f42.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-q3jf-w4ph-7r73/GHSA-q3jf-w4ph-7r73.json b/advisories/unreviewed/2022/09/GHSA-q3jf-w4ph-7r73/GHSA-q3jf-w4ph-7r73.json index 31452a6f2ba..299008df88a 100644 --- a/advisories/unreviewed/2022/09/GHSA-q3jf-w4ph-7r73/GHSA-q3jf-w4ph-7r73.json +++ b/advisories/unreviewed/2022/09/GHSA-q3jf-w4ph-7r73/GHSA-q3jf-w4ph-7r73.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-q3xx-pg8c-jqh6/GHSA-q3xx-pg8c-jqh6.json b/advisories/unreviewed/2022/09/GHSA-q3xx-pg8c-jqh6/GHSA-q3xx-pg8c-jqh6.json index c8a570a7f67..30165a035dc 100644 --- a/advisories/unreviewed/2022/09/GHSA-q3xx-pg8c-jqh6/GHSA-q3xx-pg8c-jqh6.json +++ b/advisories/unreviewed/2022/09/GHSA-q3xx-pg8c-jqh6/GHSA-q3xx-pg8c-jqh6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-qqvf-cxm2-r29j/GHSA-qqvf-cxm2-r29j.json b/advisories/unreviewed/2022/09/GHSA-qqvf-cxm2-r29j/GHSA-qqvf-cxm2-r29j.json index fd83fb951f9..b7e73c83956 100644 --- a/advisories/unreviewed/2022/09/GHSA-qqvf-cxm2-r29j/GHSA-qqvf-cxm2-r29j.json +++ b/advisories/unreviewed/2022/09/GHSA-qqvf-cxm2-r29j/GHSA-qqvf-cxm2-r29j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-rmhm-v9m7-265m/GHSA-rmhm-v9m7-265m.json b/advisories/unreviewed/2022/09/GHSA-rmhm-v9m7-265m/GHSA-rmhm-v9m7-265m.json index 83813de1f73..9710eb61320 100644 --- a/advisories/unreviewed/2022/09/GHSA-rmhm-v9m7-265m/GHSA-rmhm-v9m7-265m.json +++ b/advisories/unreviewed/2022/09/GHSA-rmhm-v9m7-265m/GHSA-rmhm-v9m7-265m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-v5ff-5h42-rq97/GHSA-v5ff-5h42-rq97.json b/advisories/unreviewed/2022/09/GHSA-v5ff-5h42-rq97/GHSA-v5ff-5h42-rq97.json index ba2293c2092..b265e06dfe8 100644 --- a/advisories/unreviewed/2022/09/GHSA-v5ff-5h42-rq97/GHSA-v5ff-5h42-rq97.json +++ b/advisories/unreviewed/2022/09/GHSA-v5ff-5h42-rq97/GHSA-v5ff-5h42-rq97.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-v7rw-j234-3gj2/GHSA-v7rw-j234-3gj2.json b/advisories/unreviewed/2022/09/GHSA-v7rw-j234-3gj2/GHSA-v7rw-j234-3gj2.json index dbbee6ac8fc..924fbdd6564 100644 --- a/advisories/unreviewed/2022/09/GHSA-v7rw-j234-3gj2/GHSA-v7rw-j234-3gj2.json +++ b/advisories/unreviewed/2022/09/GHSA-v7rw-j234-3gj2/GHSA-v7rw-j234-3gj2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-vr82-c8xj-wgj5/GHSA-vr82-c8xj-wgj5.json b/advisories/unreviewed/2022/09/GHSA-vr82-c8xj-wgj5/GHSA-vr82-c8xj-wgj5.json index be2f05bf219..fe718f9fb7a 100644 --- a/advisories/unreviewed/2022/09/GHSA-vr82-c8xj-wgj5/GHSA-vr82-c8xj-wgj5.json +++ b/advisories/unreviewed/2022/09/GHSA-vr82-c8xj-wgj5/GHSA-vr82-c8xj-wgj5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-vrh3-3gfh-4pqx/GHSA-vrh3-3gfh-4pqx.json b/advisories/unreviewed/2022/09/GHSA-vrh3-3gfh-4pqx/GHSA-vrh3-3gfh-4pqx.json index 14439dbf4d2..a544c9a806a 100644 --- a/advisories/unreviewed/2022/09/GHSA-vrh3-3gfh-4pqx/GHSA-vrh3-3gfh-4pqx.json +++ b/advisories/unreviewed/2022/09/GHSA-vrh3-3gfh-4pqx/GHSA-vrh3-3gfh-4pqx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-wjh5-2jj8-8xpj/GHSA-wjh5-2jj8-8xpj.json b/advisories/unreviewed/2022/09/GHSA-wjh5-2jj8-8xpj/GHSA-wjh5-2jj8-8xpj.json index f44bcce3f45..ef487723d2d 100644 --- a/advisories/unreviewed/2022/09/GHSA-wjh5-2jj8-8xpj/GHSA-wjh5-2jj8-8xpj.json +++ b/advisories/unreviewed/2022/09/GHSA-wjh5-2jj8-8xpj/GHSA-wjh5-2jj8-8xpj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-wp87-5qfw-74x3/GHSA-wp87-5qfw-74x3.json b/advisories/unreviewed/2022/09/GHSA-wp87-5qfw-74x3/GHSA-wp87-5qfw-74x3.json index 714848850cf..879e4485086 100644 --- a/advisories/unreviewed/2022/09/GHSA-wp87-5qfw-74x3/GHSA-wp87-5qfw-74x3.json +++ b/advisories/unreviewed/2022/09/GHSA-wp87-5qfw-74x3/GHSA-wp87-5qfw-74x3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-ww77-xwjw-hmcq/GHSA-ww77-xwjw-hmcq.json b/advisories/unreviewed/2022/09/GHSA-ww77-xwjw-hmcq/GHSA-ww77-xwjw-hmcq.json index 061448eb6a0..45867651eb8 100644 --- a/advisories/unreviewed/2022/09/GHSA-ww77-xwjw-hmcq/GHSA-ww77-xwjw-hmcq.json +++ b/advisories/unreviewed/2022/09/GHSA-ww77-xwjw-hmcq/GHSA-ww77-xwjw-hmcq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-wxv8-3rq7-75c8/GHSA-wxv8-3rq7-75c8.json b/advisories/unreviewed/2022/09/GHSA-wxv8-3rq7-75c8/GHSA-wxv8-3rq7-75c8.json index 9dbf4bf1d07..376ef336f93 100644 --- a/advisories/unreviewed/2022/09/GHSA-wxv8-3rq7-75c8/GHSA-wxv8-3rq7-75c8.json +++ b/advisories/unreviewed/2022/09/GHSA-wxv8-3rq7-75c8/GHSA-wxv8-3rq7-75c8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-x6ff-wrhm-7h74/GHSA-x6ff-wrhm-7h74.json b/advisories/unreviewed/2022/09/GHSA-x6ff-wrhm-7h74/GHSA-x6ff-wrhm-7h74.json index 54389dbc044..df8594ea862 100644 --- a/advisories/unreviewed/2022/09/GHSA-x6ff-wrhm-7h74/GHSA-x6ff-wrhm-7h74.json +++ b/advisories/unreviewed/2022/09/GHSA-x6ff-wrhm-7h74/GHSA-x6ff-wrhm-7h74.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-x83r-6vrr-539w/GHSA-x83r-6vrr-539w.json b/advisories/unreviewed/2022/09/GHSA-x83r-6vrr-539w/GHSA-x83r-6vrr-539w.json index fe47314e43e..0cdadaf7ca9 100644 --- a/advisories/unreviewed/2022/09/GHSA-x83r-6vrr-539w/GHSA-x83r-6vrr-539w.json +++ b/advisories/unreviewed/2022/09/GHSA-x83r-6vrr-539w/GHSA-x83r-6vrr-539w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-x9v2-5wgg-m7jr/GHSA-x9v2-5wgg-m7jr.json b/advisories/unreviewed/2022/09/GHSA-x9v2-5wgg-m7jr/GHSA-x9v2-5wgg-m7jr.json index 2fa598242ed..fb698824bce 100644 --- a/advisories/unreviewed/2022/09/GHSA-x9v2-5wgg-m7jr/GHSA-x9v2-5wgg-m7jr.json +++ b/advisories/unreviewed/2022/09/GHSA-x9v2-5wgg-m7jr/GHSA-x9v2-5wgg-m7jr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-xcwm-p6cv-jmg5/GHSA-xcwm-p6cv-jmg5.json b/advisories/unreviewed/2022/09/GHSA-xcwm-p6cv-jmg5/GHSA-xcwm-p6cv-jmg5.json index bafc823bb72..037209388bf 100644 --- a/advisories/unreviewed/2022/09/GHSA-xcwm-p6cv-jmg5/GHSA-xcwm-p6cv-jmg5.json +++ b/advisories/unreviewed/2022/09/GHSA-xcwm-p6cv-jmg5/GHSA-xcwm-p6cv-jmg5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-xf33-mc9j-49pw/GHSA-xf33-mc9j-49pw.json b/advisories/unreviewed/2022/09/GHSA-xf33-mc9j-49pw/GHSA-xf33-mc9j-49pw.json index cfc5cfa00e2..8dcbf9cfe49 100644 --- a/advisories/unreviewed/2022/09/GHSA-xf33-mc9j-49pw/GHSA-xf33-mc9j-49pw.json +++ b/advisories/unreviewed/2022/09/GHSA-xf33-mc9j-49pw/GHSA-xf33-mc9j-49pw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-xfwx-792p-42fx/GHSA-xfwx-792p-42fx.json b/advisories/unreviewed/2022/09/GHSA-xfwx-792p-42fx/GHSA-xfwx-792p-42fx.json index bcb53921b65..654740979a1 100644 --- a/advisories/unreviewed/2022/09/GHSA-xfwx-792p-42fx/GHSA-xfwx-792p-42fx.json +++ b/advisories/unreviewed/2022/09/GHSA-xfwx-792p-42fx/GHSA-xfwx-792p-42fx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-xm8p-x93c-wq9h/GHSA-xm8p-x93c-wq9h.json b/advisories/unreviewed/2022/09/GHSA-xm8p-x93c-wq9h/GHSA-xm8p-x93c-wq9h.json index 685084a668f..795e7715646 100644 --- a/advisories/unreviewed/2022/09/GHSA-xm8p-x93c-wq9h/GHSA-xm8p-x93c-wq9h.json +++ b/advisories/unreviewed/2022/09/GHSA-xm8p-x93c-wq9h/GHSA-xm8p-x93c-wq9h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-xxhx-8hf5-qg7v/GHSA-xxhx-8hf5-qg7v.json b/advisories/unreviewed/2022/09/GHSA-xxhx-8hf5-qg7v/GHSA-xxhx-8hf5-qg7v.json index 5bc903bcc26..b38078dc500 100644 --- a/advisories/unreviewed/2022/09/GHSA-xxhx-8hf5-qg7v/GHSA-xxhx-8hf5-qg7v.json +++ b/advisories/unreviewed/2022/09/GHSA-xxhx-8hf5-qg7v/GHSA-xxhx-8hf5-qg7v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-2jx3-rgf3-fqhj/GHSA-2jx3-rgf3-fqhj.json b/advisories/unreviewed/2022/10/GHSA-2jx3-rgf3-fqhj/GHSA-2jx3-rgf3-fqhj.json index 5a74c040919..0e7955dafe8 100644 --- a/advisories/unreviewed/2022/10/GHSA-2jx3-rgf3-fqhj/GHSA-2jx3-rgf3-fqhj.json +++ b/advisories/unreviewed/2022/10/GHSA-2jx3-rgf3-fqhj/GHSA-2jx3-rgf3-fqhj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/10/GHSA-34xx-8783-75f7/GHSA-34xx-8783-75f7.json b/advisories/unreviewed/2022/10/GHSA-34xx-8783-75f7/GHSA-34xx-8783-75f7.json index e5e3a0180a0..a8e609aa547 100644 --- a/advisories/unreviewed/2022/10/GHSA-34xx-8783-75f7/GHSA-34xx-8783-75f7.json +++ b/advisories/unreviewed/2022/10/GHSA-34xx-8783-75f7/GHSA-34xx-8783-75f7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-3cwx-43f4-r662/GHSA-3cwx-43f4-r662.json b/advisories/unreviewed/2022/10/GHSA-3cwx-43f4-r662/GHSA-3cwx-43f4-r662.json index 6ac15d70d6a..ec98b13102e 100644 --- a/advisories/unreviewed/2022/10/GHSA-3cwx-43f4-r662/GHSA-3cwx-43f4-r662.json +++ b/advisories/unreviewed/2022/10/GHSA-3cwx-43f4-r662/GHSA-3cwx-43f4-r662.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/11/GHSA-gp52-jhv2-m5vx/GHSA-gp52-jhv2-m5vx.json b/advisories/unreviewed/2022/11/GHSA-gp52-jhv2-m5vx/GHSA-gp52-jhv2-m5vx.json index aa76c649a0f..0164f0d0a6d 100644 --- a/advisories/unreviewed/2022/11/GHSA-gp52-jhv2-m5vx/GHSA-gp52-jhv2-m5vx.json +++ b/advisories/unreviewed/2022/11/GHSA-gp52-jhv2-m5vx/GHSA-gp52-jhv2-m5vx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-mf6m-m52m-43jc/GHSA-mf6m-m52m-43jc.json b/advisories/unreviewed/2022/11/GHSA-mf6m-m52m-43jc/GHSA-mf6m-m52m-43jc.json index f2cedff083d..a0710d25a78 100644 --- a/advisories/unreviewed/2022/11/GHSA-mf6m-m52m-43jc/GHSA-mf6m-m52m-43jc.json +++ b/advisories/unreviewed/2022/11/GHSA-mf6m-m52m-43jc/GHSA-mf6m-m52m-43jc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-6crm-v898-7xx4/GHSA-6crm-v898-7xx4.json b/advisories/unreviewed/2022/12/GHSA-6crm-v898-7xx4/GHSA-6crm-v898-7xx4.json index 9fc80350778..f28a71fbe50 100644 --- a/advisories/unreviewed/2022/12/GHSA-6crm-v898-7xx4/GHSA-6crm-v898-7xx4.json +++ b/advisories/unreviewed/2022/12/GHSA-6crm-v898-7xx4/GHSA-6crm-v898-7xx4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-hq9p-99h9-xh67/GHSA-hq9p-99h9-xh67.json b/advisories/unreviewed/2022/12/GHSA-hq9p-99h9-xh67/GHSA-hq9p-99h9-xh67.json index a8d16f31dad..db9211fa8c6 100644 --- a/advisories/unreviewed/2022/12/GHSA-hq9p-99h9-xh67/GHSA-hq9p-99h9-xh67.json +++ b/advisories/unreviewed/2022/12/GHSA-hq9p-99h9-xh67/GHSA-hq9p-99h9-xh67.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-298h-373h-w6rq/GHSA-298h-373h-w6rq.json b/advisories/unreviewed/2023/03/GHSA-298h-373h-w6rq/GHSA-298h-373h-w6rq.json index 8190ec51f20..bbedf63d57e 100644 --- a/advisories/unreviewed/2023/03/GHSA-298h-373h-w6rq/GHSA-298h-373h-w6rq.json +++ b/advisories/unreviewed/2023/03/GHSA-298h-373h-w6rq/GHSA-298h-373h-w6rq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-44h9-27pc-757g/GHSA-44h9-27pc-757g.json b/advisories/unreviewed/2023/03/GHSA-44h9-27pc-757g/GHSA-44h9-27pc-757g.json index f5eb6cee61a..d7e2ba02a1b 100644 --- a/advisories/unreviewed/2023/03/GHSA-44h9-27pc-757g/GHSA-44h9-27pc-757g.json +++ b/advisories/unreviewed/2023/03/GHSA-44h9-27pc-757g/GHSA-44h9-27pc-757g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-4f3p-pr3g-6qgf/GHSA-4f3p-pr3g-6qgf.json b/advisories/unreviewed/2023/03/GHSA-4f3p-pr3g-6qgf/GHSA-4f3p-pr3g-6qgf.json index 8fbf7fa6700..c094490097d 100644 --- a/advisories/unreviewed/2023/03/GHSA-4f3p-pr3g-6qgf/GHSA-4f3p-pr3g-6qgf.json +++ b/advisories/unreviewed/2023/03/GHSA-4f3p-pr3g-6qgf/GHSA-4f3p-pr3g-6qgf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-4qjv-73x8-gxq9/GHSA-4qjv-73x8-gxq9.json b/advisories/unreviewed/2023/03/GHSA-4qjv-73x8-gxq9/GHSA-4qjv-73x8-gxq9.json index be53aaa4d3d..6aaad56227f 100644 --- a/advisories/unreviewed/2023/03/GHSA-4qjv-73x8-gxq9/GHSA-4qjv-73x8-gxq9.json +++ b/advisories/unreviewed/2023/03/GHSA-4qjv-73x8-gxq9/GHSA-4qjv-73x8-gxq9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-4wpv-4xm9-99ff/GHSA-4wpv-4xm9-99ff.json b/advisories/unreviewed/2023/03/GHSA-4wpv-4xm9-99ff/GHSA-4wpv-4xm9-99ff.json index 17bfb081edc..4d1843afe7f 100644 --- a/advisories/unreviewed/2023/03/GHSA-4wpv-4xm9-99ff/GHSA-4wpv-4xm9-99ff.json +++ b/advisories/unreviewed/2023/03/GHSA-4wpv-4xm9-99ff/GHSA-4wpv-4xm9-99ff.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-556w-76xx-v8h9/GHSA-556w-76xx-v8h9.json b/advisories/unreviewed/2023/03/GHSA-556w-76xx-v8h9/GHSA-556w-76xx-v8h9.json index 77ad8511e63..0c56b4796ba 100644 --- a/advisories/unreviewed/2023/03/GHSA-556w-76xx-v8h9/GHSA-556w-76xx-v8h9.json +++ b/advisories/unreviewed/2023/03/GHSA-556w-76xx-v8h9/GHSA-556w-76xx-v8h9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-5rxg-w5rp-9mcr/GHSA-5rxg-w5rp-9mcr.json b/advisories/unreviewed/2023/03/GHSA-5rxg-w5rp-9mcr/GHSA-5rxg-w5rp-9mcr.json index c4f32ef1eac..6287e45dfe1 100644 --- a/advisories/unreviewed/2023/03/GHSA-5rxg-w5rp-9mcr/GHSA-5rxg-w5rp-9mcr.json +++ b/advisories/unreviewed/2023/03/GHSA-5rxg-w5rp-9mcr/GHSA-5rxg-w5rp-9mcr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-6xh6-fjxr-7xrg/GHSA-6xh6-fjxr-7xrg.json b/advisories/unreviewed/2023/03/GHSA-6xh6-fjxr-7xrg/GHSA-6xh6-fjxr-7xrg.json index 1421f0a1db4..27ec18a5b41 100644 --- a/advisories/unreviewed/2023/03/GHSA-6xh6-fjxr-7xrg/GHSA-6xh6-fjxr-7xrg.json +++ b/advisories/unreviewed/2023/03/GHSA-6xh6-fjxr-7xrg/GHSA-6xh6-fjxr-7xrg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-73qw-564r-5ff3/GHSA-73qw-564r-5ff3.json b/advisories/unreviewed/2023/03/GHSA-73qw-564r-5ff3/GHSA-73qw-564r-5ff3.json index 3ffb4f1a100..57402b1bed9 100644 --- a/advisories/unreviewed/2023/03/GHSA-73qw-564r-5ff3/GHSA-73qw-564r-5ff3.json +++ b/advisories/unreviewed/2023/03/GHSA-73qw-564r-5ff3/GHSA-73qw-564r-5ff3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-75qm-r76q-cx2g/GHSA-75qm-r76q-cx2g.json b/advisories/unreviewed/2023/03/GHSA-75qm-r76q-cx2g/GHSA-75qm-r76q-cx2g.json index f36b9042044..dd1717a3dc7 100644 --- a/advisories/unreviewed/2023/03/GHSA-75qm-r76q-cx2g/GHSA-75qm-r76q-cx2g.json +++ b/advisories/unreviewed/2023/03/GHSA-75qm-r76q-cx2g/GHSA-75qm-r76q-cx2g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-77v8-h5vq-j24g/GHSA-77v8-h5vq-j24g.json b/advisories/unreviewed/2023/03/GHSA-77v8-h5vq-j24g/GHSA-77v8-h5vq-j24g.json index 379a94f09ef..4b62a97a455 100644 --- a/advisories/unreviewed/2023/03/GHSA-77v8-h5vq-j24g/GHSA-77v8-h5vq-j24g.json +++ b/advisories/unreviewed/2023/03/GHSA-77v8-h5vq-j24g/GHSA-77v8-h5vq-j24g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-7fh4-9hp3-mcw9/GHSA-7fh4-9hp3-mcw9.json b/advisories/unreviewed/2023/03/GHSA-7fh4-9hp3-mcw9/GHSA-7fh4-9hp3-mcw9.json index 14e9bfea5f2..f019af9d7a6 100644 --- a/advisories/unreviewed/2023/03/GHSA-7fh4-9hp3-mcw9/GHSA-7fh4-9hp3-mcw9.json +++ b/advisories/unreviewed/2023/03/GHSA-7fh4-9hp3-mcw9/GHSA-7fh4-9hp3-mcw9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-7gxg-p47h-8xph/GHSA-7gxg-p47h-8xph.json b/advisories/unreviewed/2023/03/GHSA-7gxg-p47h-8xph/GHSA-7gxg-p47h-8xph.json index 257f394f6a2..a2a2b748981 100644 --- a/advisories/unreviewed/2023/03/GHSA-7gxg-p47h-8xph/GHSA-7gxg-p47h-8xph.json +++ b/advisories/unreviewed/2023/03/GHSA-7gxg-p47h-8xph/GHSA-7gxg-p47h-8xph.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-89hr-p4w8-gg8r/GHSA-89hr-p4w8-gg8r.json b/advisories/unreviewed/2023/03/GHSA-89hr-p4w8-gg8r/GHSA-89hr-p4w8-gg8r.json index fe1a18c9420..342d2a9f055 100644 --- a/advisories/unreviewed/2023/03/GHSA-89hr-p4w8-gg8r/GHSA-89hr-p4w8-gg8r.json +++ b/advisories/unreviewed/2023/03/GHSA-89hr-p4w8-gg8r/GHSA-89hr-p4w8-gg8r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-8px5-5hr4-658v/GHSA-8px5-5hr4-658v.json b/advisories/unreviewed/2023/03/GHSA-8px5-5hr4-658v/GHSA-8px5-5hr4-658v.json index a8ed3f3710b..7b618047989 100644 --- a/advisories/unreviewed/2023/03/GHSA-8px5-5hr4-658v/GHSA-8px5-5hr4-658v.json +++ b/advisories/unreviewed/2023/03/GHSA-8px5-5hr4-658v/GHSA-8px5-5hr4-658v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-8q9c-gjf4-37g9/GHSA-8q9c-gjf4-37g9.json b/advisories/unreviewed/2023/03/GHSA-8q9c-gjf4-37g9/GHSA-8q9c-gjf4-37g9.json index 60dfb561f84..4da96e4a8ee 100644 --- a/advisories/unreviewed/2023/03/GHSA-8q9c-gjf4-37g9/GHSA-8q9c-gjf4-37g9.json +++ b/advisories/unreviewed/2023/03/GHSA-8q9c-gjf4-37g9/GHSA-8q9c-gjf4-37g9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-8r65-4629-xvr9/GHSA-8r65-4629-xvr9.json b/advisories/unreviewed/2023/03/GHSA-8r65-4629-xvr9/GHSA-8r65-4629-xvr9.json index d4c832be576..ccfe92bdca9 100644 --- a/advisories/unreviewed/2023/03/GHSA-8r65-4629-xvr9/GHSA-8r65-4629-xvr9.json +++ b/advisories/unreviewed/2023/03/GHSA-8r65-4629-xvr9/GHSA-8r65-4629-xvr9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-cw4m-8qhc-m96h/GHSA-cw4m-8qhc-m96h.json b/advisories/unreviewed/2023/03/GHSA-cw4m-8qhc-m96h/GHSA-cw4m-8qhc-m96h.json index 7aa5d9c9ed0..acc138f91d3 100644 --- a/advisories/unreviewed/2023/03/GHSA-cw4m-8qhc-m96h/GHSA-cw4m-8qhc-m96h.json +++ b/advisories/unreviewed/2023/03/GHSA-cw4m-8qhc-m96h/GHSA-cw4m-8qhc-m96h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-h42j-7h79-mp5m/GHSA-h42j-7h79-mp5m.json b/advisories/unreviewed/2023/03/GHSA-h42j-7h79-mp5m/GHSA-h42j-7h79-mp5m.json index be4d51bf7ba..ee440a9f517 100644 --- a/advisories/unreviewed/2023/03/GHSA-h42j-7h79-mp5m/GHSA-h42j-7h79-mp5m.json +++ b/advisories/unreviewed/2023/03/GHSA-h42j-7h79-mp5m/GHSA-h42j-7h79-mp5m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-h55p-3mg5-547m/GHSA-h55p-3mg5-547m.json b/advisories/unreviewed/2023/03/GHSA-h55p-3mg5-547m/GHSA-h55p-3mg5-547m.json index d3dc872e81c..7359b595800 100644 --- a/advisories/unreviewed/2023/03/GHSA-h55p-3mg5-547m/GHSA-h55p-3mg5-547m.json +++ b/advisories/unreviewed/2023/03/GHSA-h55p-3mg5-547m/GHSA-h55p-3mg5-547m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-jwf2-24f2-pq4f/GHSA-jwf2-24f2-pq4f.json b/advisories/unreviewed/2023/03/GHSA-jwf2-24f2-pq4f/GHSA-jwf2-24f2-pq4f.json index 201cf3e22c0..13cbecc7914 100644 --- a/advisories/unreviewed/2023/03/GHSA-jwf2-24f2-pq4f/GHSA-jwf2-24f2-pq4f.json +++ b/advisories/unreviewed/2023/03/GHSA-jwf2-24f2-pq4f/GHSA-jwf2-24f2-pq4f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-jx5w-v74j-ch5p/GHSA-jx5w-v74j-ch5p.json b/advisories/unreviewed/2023/03/GHSA-jx5w-v74j-ch5p/GHSA-jx5w-v74j-ch5p.json index 40e11728c1d..c5d9a4524a6 100644 --- a/advisories/unreviewed/2023/03/GHSA-jx5w-v74j-ch5p/GHSA-jx5w-v74j-ch5p.json +++ b/advisories/unreviewed/2023/03/GHSA-jx5w-v74j-ch5p/GHSA-jx5w-v74j-ch5p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-mr5f-pvcc-f76m/GHSA-mr5f-pvcc-f76m.json b/advisories/unreviewed/2023/03/GHSA-mr5f-pvcc-f76m/GHSA-mr5f-pvcc-f76m.json index d59569c6d7c..92ae6de6657 100644 --- a/advisories/unreviewed/2023/03/GHSA-mr5f-pvcc-f76m/GHSA-mr5f-pvcc-f76m.json +++ b/advisories/unreviewed/2023/03/GHSA-mr5f-pvcc-f76m/GHSA-mr5f-pvcc-f76m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-p4mq-mqpj-7xcj/GHSA-p4mq-mqpj-7xcj.json b/advisories/unreviewed/2023/03/GHSA-p4mq-mqpj-7xcj/GHSA-p4mq-mqpj-7xcj.json index a027bc405b2..fbbad504483 100644 --- a/advisories/unreviewed/2023/03/GHSA-p4mq-mqpj-7xcj/GHSA-p4mq-mqpj-7xcj.json +++ b/advisories/unreviewed/2023/03/GHSA-p4mq-mqpj-7xcj/GHSA-p4mq-mqpj-7xcj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-pr3h-6qhj-vf3x/GHSA-pr3h-6qhj-vf3x.json b/advisories/unreviewed/2023/03/GHSA-pr3h-6qhj-vf3x/GHSA-pr3h-6qhj-vf3x.json index fcaa0e7ba7f..227438d7354 100644 --- a/advisories/unreviewed/2023/03/GHSA-pr3h-6qhj-vf3x/GHSA-pr3h-6qhj-vf3x.json +++ b/advisories/unreviewed/2023/03/GHSA-pr3h-6qhj-vf3x/GHSA-pr3h-6qhj-vf3x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-prxf-q746-335v/GHSA-prxf-q746-335v.json b/advisories/unreviewed/2023/03/GHSA-prxf-q746-335v/GHSA-prxf-q746-335v.json index f900ec6d73c..7dc194c193c 100644 --- a/advisories/unreviewed/2023/03/GHSA-prxf-q746-335v/GHSA-prxf-q746-335v.json +++ b/advisories/unreviewed/2023/03/GHSA-prxf-q746-335v/GHSA-prxf-q746-335v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-q49g-mvwf-3288/GHSA-q49g-mvwf-3288.json b/advisories/unreviewed/2023/03/GHSA-q49g-mvwf-3288/GHSA-q49g-mvwf-3288.json index 9074d7d1196..4e6c6c34bb5 100644 --- a/advisories/unreviewed/2023/03/GHSA-q49g-mvwf-3288/GHSA-q49g-mvwf-3288.json +++ b/advisories/unreviewed/2023/03/GHSA-q49g-mvwf-3288/GHSA-q49g-mvwf-3288.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-qf67-vmxx-gp4j/GHSA-qf67-vmxx-gp4j.json b/advisories/unreviewed/2023/03/GHSA-qf67-vmxx-gp4j/GHSA-qf67-vmxx-gp4j.json index 02fde2328ce..80389df6760 100644 --- a/advisories/unreviewed/2023/03/GHSA-qf67-vmxx-gp4j/GHSA-qf67-vmxx-gp4j.json +++ b/advisories/unreviewed/2023/03/GHSA-qf67-vmxx-gp4j/GHSA-qf67-vmxx-gp4j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-qqf7-5fh7-h8cx/GHSA-qqf7-5fh7-h8cx.json b/advisories/unreviewed/2023/03/GHSA-qqf7-5fh7-h8cx/GHSA-qqf7-5fh7-h8cx.json index 1463f834cb2..f3b5f2faf1d 100644 --- a/advisories/unreviewed/2023/03/GHSA-qqf7-5fh7-h8cx/GHSA-qqf7-5fh7-h8cx.json +++ b/advisories/unreviewed/2023/03/GHSA-qqf7-5fh7-h8cx/GHSA-qqf7-5fh7-h8cx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-qxfq-cw29-ppgr/GHSA-qxfq-cw29-ppgr.json b/advisories/unreviewed/2023/03/GHSA-qxfq-cw29-ppgr/GHSA-qxfq-cw29-ppgr.json index e4f3eccd9d1..be60f1599ee 100644 --- a/advisories/unreviewed/2023/03/GHSA-qxfq-cw29-ppgr/GHSA-qxfq-cw29-ppgr.json +++ b/advisories/unreviewed/2023/03/GHSA-qxfq-cw29-ppgr/GHSA-qxfq-cw29-ppgr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-v3r9-26gw-xcg8/GHSA-v3r9-26gw-xcg8.json b/advisories/unreviewed/2023/03/GHSA-v3r9-26gw-xcg8/GHSA-v3r9-26gw-xcg8.json index f607534348c..428b7de79b6 100644 --- a/advisories/unreviewed/2023/03/GHSA-v3r9-26gw-xcg8/GHSA-v3r9-26gw-xcg8.json +++ b/advisories/unreviewed/2023/03/GHSA-v3r9-26gw-xcg8/GHSA-v3r9-26gw-xcg8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-w242-9c5f-p4r9/GHSA-w242-9c5f-p4r9.json b/advisories/unreviewed/2023/03/GHSA-w242-9c5f-p4r9/GHSA-w242-9c5f-p4r9.json index 3e3439ed7cf..09d3a66f3c4 100644 --- a/advisories/unreviewed/2023/03/GHSA-w242-9c5f-p4r9/GHSA-w242-9c5f-p4r9.json +++ b/advisories/unreviewed/2023/03/GHSA-w242-9c5f-p4r9/GHSA-w242-9c5f-p4r9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-x832-cq5q-8hfc/GHSA-x832-cq5q-8hfc.json b/advisories/unreviewed/2023/03/GHSA-x832-cq5q-8hfc/GHSA-x832-cq5q-8hfc.json index 4276233a366..fe3b58ceb6b 100644 --- a/advisories/unreviewed/2023/03/GHSA-x832-cq5q-8hfc/GHSA-x832-cq5q-8hfc.json +++ b/advisories/unreviewed/2023/03/GHSA-x832-cq5q-8hfc/GHSA-x832-cq5q-8hfc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-xf98-7xfh-rcv5/GHSA-xf98-7xfh-rcv5.json b/advisories/unreviewed/2023/03/GHSA-xf98-7xfh-rcv5/GHSA-xf98-7xfh-rcv5.json index ab24c7bb7a1..8793a0d4dbf 100644 --- a/advisories/unreviewed/2023/03/GHSA-xf98-7xfh-rcv5/GHSA-xf98-7xfh-rcv5.json +++ b/advisories/unreviewed/2023/03/GHSA-xf98-7xfh-rcv5/GHSA-xf98-7xfh-rcv5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/04/GHSA-32w5-2rp6-rg25/GHSA-32w5-2rp6-rg25.json b/advisories/unreviewed/2023/04/GHSA-32w5-2rp6-rg25/GHSA-32w5-2rp6-rg25.json index 0348df338a9..9508827cb91 100644 --- a/advisories/unreviewed/2023/04/GHSA-32w5-2rp6-rg25/GHSA-32w5-2rp6-rg25.json +++ b/advisories/unreviewed/2023/04/GHSA-32w5-2rp6-rg25/GHSA-32w5-2rp6-rg25.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/04/GHSA-cwg2-4rcv-xcc4/GHSA-cwg2-4rcv-xcc4.json b/advisories/unreviewed/2023/04/GHSA-cwg2-4rcv-xcc4/GHSA-cwg2-4rcv-xcc4.json index 29376776203..56e7d70f439 100644 --- a/advisories/unreviewed/2023/04/GHSA-cwg2-4rcv-xcc4/GHSA-cwg2-4rcv-xcc4.json +++ b/advisories/unreviewed/2023/04/GHSA-cwg2-4rcv-xcc4/GHSA-cwg2-4rcv-xcc4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/04/GHSA-f93v-4jq6-g3hj/GHSA-f93v-4jq6-g3hj.json b/advisories/unreviewed/2023/04/GHSA-f93v-4jq6-g3hj/GHSA-f93v-4jq6-g3hj.json index e517f93f566..1b7d8c53a10 100644 --- a/advisories/unreviewed/2023/04/GHSA-f93v-4jq6-g3hj/GHSA-f93v-4jq6-g3hj.json +++ b/advisories/unreviewed/2023/04/GHSA-f93v-4jq6-g3hj/GHSA-f93v-4jq6-g3hj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/04/GHSA-fg78-345v-h62m/GHSA-fg78-345v-h62m.json b/advisories/unreviewed/2023/04/GHSA-fg78-345v-h62m/GHSA-fg78-345v-h62m.json index 1ac9fc3e850..accf3f1daf8 100644 --- a/advisories/unreviewed/2023/04/GHSA-fg78-345v-h62m/GHSA-fg78-345v-h62m.json +++ b/advisories/unreviewed/2023/04/GHSA-fg78-345v-h62m/GHSA-fg78-345v-h62m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/04/GHSA-rjrr-cv8g-4f69/GHSA-rjrr-cv8g-4f69.json b/advisories/unreviewed/2023/04/GHSA-rjrr-cv8g-4f69/GHSA-rjrr-cv8g-4f69.json index 0388c8202e9..1b8a8230295 100644 --- a/advisories/unreviewed/2023/04/GHSA-rjrr-cv8g-4f69/GHSA-rjrr-cv8g-4f69.json +++ b/advisories/unreviewed/2023/04/GHSA-rjrr-cv8g-4f69/GHSA-rjrr-cv8g-4f69.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/04/GHSA-v6rc-ppgp-5pmr/GHSA-v6rc-ppgp-5pmr.json b/advisories/unreviewed/2023/04/GHSA-v6rc-ppgp-5pmr/GHSA-v6rc-ppgp-5pmr.json index 54a92bb2a9d..8fa9541a673 100644 --- a/advisories/unreviewed/2023/04/GHSA-v6rc-ppgp-5pmr/GHSA-v6rc-ppgp-5pmr.json +++ b/advisories/unreviewed/2023/04/GHSA-v6rc-ppgp-5pmr/GHSA-v6rc-ppgp-5pmr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/04/GHSA-x3pg-369x-vc72/GHSA-x3pg-369x-vc72.json b/advisories/unreviewed/2023/04/GHSA-x3pg-369x-vc72/GHSA-x3pg-369x-vc72.json index c2343689822..8fd450dabfa 100644 --- a/advisories/unreviewed/2023/04/GHSA-x3pg-369x-vc72/GHSA-x3pg-369x-vc72.json +++ b/advisories/unreviewed/2023/04/GHSA-x3pg-369x-vc72/GHSA-x3pg-369x-vc72.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/07/GHSA-6xh5-pc73-j884/GHSA-6xh5-pc73-j884.json b/advisories/unreviewed/2023/07/GHSA-6xh5-pc73-j884/GHSA-6xh5-pc73-j884.json index 66858de3a98..e36cd1f8663 100644 --- a/advisories/unreviewed/2023/07/GHSA-6xh5-pc73-j884/GHSA-6xh5-pc73-j884.json +++ b/advisories/unreviewed/2023/07/GHSA-6xh5-pc73-j884/GHSA-6xh5-pc73-j884.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/07/GHSA-gcrv-hhf7-6qvh/GHSA-gcrv-hhf7-6qvh.json b/advisories/unreviewed/2023/07/GHSA-gcrv-hhf7-6qvh/GHSA-gcrv-hhf7-6qvh.json index d0a1c932ebc..5538cf4f0dd 100644 --- a/advisories/unreviewed/2023/07/GHSA-gcrv-hhf7-6qvh/GHSA-gcrv-hhf7-6qvh.json +++ b/advisories/unreviewed/2023/07/GHSA-gcrv-hhf7-6qvh/GHSA-gcrv-hhf7-6qvh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/07/GHSA-j5pg-9wf6-gxwr/GHSA-j5pg-9wf6-gxwr.json b/advisories/unreviewed/2023/07/GHSA-j5pg-9wf6-gxwr/GHSA-j5pg-9wf6-gxwr.json index 2489a590ba7..bd66f2ab634 100644 --- a/advisories/unreviewed/2023/07/GHSA-j5pg-9wf6-gxwr/GHSA-j5pg-9wf6-gxwr.json +++ b/advisories/unreviewed/2023/07/GHSA-j5pg-9wf6-gxwr/GHSA-j5pg-9wf6-gxwr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:A/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/07/GHSA-jq45-hqc5-f722/GHSA-jq45-hqc5-f722.json b/advisories/unreviewed/2023/07/GHSA-jq45-hqc5-f722/GHSA-jq45-hqc5-f722.json index 3f3717108b9..662e2702240 100644 --- a/advisories/unreviewed/2023/07/GHSA-jq45-hqc5-f722/GHSA-jq45-hqc5-f722.json +++ b/advisories/unreviewed/2023/07/GHSA-jq45-hqc5-f722/GHSA-jq45-hqc5-f722.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/08/GHSA-qw3m-jfhw-49pg/GHSA-qw3m-jfhw-49pg.json b/advisories/unreviewed/2023/08/GHSA-qw3m-jfhw-49pg/GHSA-qw3m-jfhw-49pg.json index 4179f57a0fc..2b0f4a79967 100644 --- a/advisories/unreviewed/2023/08/GHSA-qw3m-jfhw-49pg/GHSA-qw3m-jfhw-49pg.json +++ b/advisories/unreviewed/2023/08/GHSA-qw3m-jfhw-49pg/GHSA-qw3m-jfhw-49pg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-242g-8ghj-chq6/GHSA-242g-8ghj-chq6.json b/advisories/unreviewed/2023/11/GHSA-242g-8ghj-chq6/GHSA-242g-8ghj-chq6.json index 23ec45457cf..1116ebe74db 100644 --- a/advisories/unreviewed/2023/11/GHSA-242g-8ghj-chq6/GHSA-242g-8ghj-chq6.json +++ b/advisories/unreviewed/2023/11/GHSA-242g-8ghj-chq6/GHSA-242g-8ghj-chq6.json @@ -7,12 +7,8 @@ "CVE-2023-38914" ], "details": "Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-m6f5-8jqg-f8j6/GHSA-m6f5-8jqg-f8j6.json b/advisories/unreviewed/2023/11/GHSA-m6f5-8jqg-f8j6/GHSA-m6f5-8jqg-f8j6.json index c7771ebf247..8858c5e86cd 100644 --- a/advisories/unreviewed/2023/11/GHSA-m6f5-8jqg-f8j6/GHSA-m6f5-8jqg-f8j6.json +++ b/advisories/unreviewed/2023/11/GHSA-m6f5-8jqg-f8j6/GHSA-m6f5-8jqg-f8j6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-29rj-6gfr-wmfc/GHSA-29rj-6gfr-wmfc.json b/advisories/unreviewed/2023/12/GHSA-29rj-6gfr-wmfc/GHSA-29rj-6gfr-wmfc.json index 8d96bea0db2..e27f63c2dba 100644 --- a/advisories/unreviewed/2023/12/GHSA-29rj-6gfr-wmfc/GHSA-29rj-6gfr-wmfc.json +++ b/advisories/unreviewed/2023/12/GHSA-29rj-6gfr-wmfc/GHSA-29rj-6gfr-wmfc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-5c4j-jvmg-2xq2/GHSA-5c4j-jvmg-2xq2.json b/advisories/unreviewed/2023/12/GHSA-5c4j-jvmg-2xq2/GHSA-5c4j-jvmg-2xq2.json index 5fc182d030a..f302bc749f8 100644 --- a/advisories/unreviewed/2023/12/GHSA-5c4j-jvmg-2xq2/GHSA-5c4j-jvmg-2xq2.json +++ b/advisories/unreviewed/2023/12/GHSA-5c4j-jvmg-2xq2/GHSA-5c4j-jvmg-2xq2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-62hv-fgc6-fxm4/GHSA-62hv-fgc6-fxm4.json b/advisories/unreviewed/2023/12/GHSA-62hv-fgc6-fxm4/GHSA-62hv-fgc6-fxm4.json index 23191f30bb1..761f12f82d1 100644 --- a/advisories/unreviewed/2023/12/GHSA-62hv-fgc6-fxm4/GHSA-62hv-fgc6-fxm4.json +++ b/advisories/unreviewed/2023/12/GHSA-62hv-fgc6-fxm4/GHSA-62hv-fgc6-fxm4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-7pcg-c7pp-5c42/GHSA-7pcg-c7pp-5c42.json b/advisories/unreviewed/2023/12/GHSA-7pcg-c7pp-5c42/GHSA-7pcg-c7pp-5c42.json index 17671bf0753..396fee834cc 100644 --- a/advisories/unreviewed/2023/12/GHSA-7pcg-c7pp-5c42/GHSA-7pcg-c7pp-5c42.json +++ b/advisories/unreviewed/2023/12/GHSA-7pcg-c7pp-5c42/GHSA-7pcg-c7pp-5c42.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-7xwg-hh9r-4gjx/GHSA-7xwg-hh9r-4gjx.json b/advisories/unreviewed/2023/12/GHSA-7xwg-hh9r-4gjx/GHSA-7xwg-hh9r-4gjx.json index cdaf17403c1..87aa526d534 100644 --- a/advisories/unreviewed/2023/12/GHSA-7xwg-hh9r-4gjx/GHSA-7xwg-hh9r-4gjx.json +++ b/advisories/unreviewed/2023/12/GHSA-7xwg-hh9r-4gjx/GHSA-7xwg-hh9r-4gjx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-9vwc-6w53-v9f8/GHSA-9vwc-6w53-v9f8.json b/advisories/unreviewed/2023/12/GHSA-9vwc-6w53-v9f8/GHSA-9vwc-6w53-v9f8.json index 15feb144bdc..71e42c5e082 100644 --- a/advisories/unreviewed/2023/12/GHSA-9vwc-6w53-v9f8/GHSA-9vwc-6w53-v9f8.json +++ b/advisories/unreviewed/2023/12/GHSA-9vwc-6w53-v9f8/GHSA-9vwc-6w53-v9f8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-c2cg-3mhf-8vrh/GHSA-c2cg-3mhf-8vrh.json b/advisories/unreviewed/2023/12/GHSA-c2cg-3mhf-8vrh/GHSA-c2cg-3mhf-8vrh.json index 540a8d45741..06367272c52 100644 --- a/advisories/unreviewed/2023/12/GHSA-c2cg-3mhf-8vrh/GHSA-c2cg-3mhf-8vrh.json +++ b/advisories/unreviewed/2023/12/GHSA-c2cg-3mhf-8vrh/GHSA-c2cg-3mhf-8vrh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-hf9h-c8cv-r62j/GHSA-hf9h-c8cv-r62j.json b/advisories/unreviewed/2023/12/GHSA-hf9h-c8cv-r62j/GHSA-hf9h-c8cv-r62j.json index 851aa74e555..39d998a753f 100644 --- a/advisories/unreviewed/2023/12/GHSA-hf9h-c8cv-r62j/GHSA-hf9h-c8cv-r62j.json +++ b/advisories/unreviewed/2023/12/GHSA-hf9h-c8cv-r62j/GHSA-hf9h-c8cv-r62j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-jfg8-q228-h5m4/GHSA-jfg8-q228-h5m4.json b/advisories/unreviewed/2023/12/GHSA-jfg8-q228-h5m4/GHSA-jfg8-q228-h5m4.json index 5f8b402ddef..81beaea2ab9 100644 --- a/advisories/unreviewed/2023/12/GHSA-jfg8-q228-h5m4/GHSA-jfg8-q228-h5m4.json +++ b/advisories/unreviewed/2023/12/GHSA-jfg8-q228-h5m4/GHSA-jfg8-q228-h5m4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-jp67-5wh7-6mjx/GHSA-jp67-5wh7-6mjx.json b/advisories/unreviewed/2023/12/GHSA-jp67-5wh7-6mjx/GHSA-jp67-5wh7-6mjx.json index 5c7cd0825a0..eb5a270961f 100644 --- a/advisories/unreviewed/2023/12/GHSA-jp67-5wh7-6mjx/GHSA-jp67-5wh7-6mjx.json +++ b/advisories/unreviewed/2023/12/GHSA-jp67-5wh7-6mjx/GHSA-jp67-5wh7-6mjx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-m4r9-8h98-x643/GHSA-m4r9-8h98-x643.json b/advisories/unreviewed/2023/12/GHSA-m4r9-8h98-x643/GHSA-m4r9-8h98-x643.json index f964c8fdb5c..dd895b74eb2 100644 --- a/advisories/unreviewed/2023/12/GHSA-m4r9-8h98-x643/GHSA-m4r9-8h98-x643.json +++ b/advisories/unreviewed/2023/12/GHSA-m4r9-8h98-x643/GHSA-m4r9-8h98-x643.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-p2wf-95f3-q546/GHSA-p2wf-95f3-q546.json b/advisories/unreviewed/2023/12/GHSA-p2wf-95f3-q546/GHSA-p2wf-95f3-q546.json index 8656a9c127f..1c470d8bd14 100644 --- a/advisories/unreviewed/2023/12/GHSA-p2wf-95f3-q546/GHSA-p2wf-95f3-q546.json +++ b/advisories/unreviewed/2023/12/GHSA-p2wf-95f3-q546/GHSA-p2wf-95f3-q546.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-qg6p-r4hj-3683/GHSA-qg6p-r4hj-3683.json b/advisories/unreviewed/2023/12/GHSA-qg6p-r4hj-3683/GHSA-qg6p-r4hj-3683.json index c3861a08ae7..f4cbc31ff1e 100644 --- a/advisories/unreviewed/2023/12/GHSA-qg6p-r4hj-3683/GHSA-qg6p-r4hj-3683.json +++ b/advisories/unreviewed/2023/12/GHSA-qg6p-r4hj-3683/GHSA-qg6p-r4hj-3683.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-rq8j-xvfw-j2rc/GHSA-rq8j-xvfw-j2rc.json b/advisories/unreviewed/2023/12/GHSA-rq8j-xvfw-j2rc/GHSA-rq8j-xvfw-j2rc.json index 465ba422049..d6bf557e1f2 100644 --- a/advisories/unreviewed/2023/12/GHSA-rq8j-xvfw-j2rc/GHSA-rq8j-xvfw-j2rc.json +++ b/advisories/unreviewed/2023/12/GHSA-rq8j-xvfw-j2rc/GHSA-rq8j-xvfw-j2rc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-v968-6pmm-9qc5/GHSA-v968-6pmm-9qc5.json b/advisories/unreviewed/2023/12/GHSA-v968-6pmm-9qc5/GHSA-v968-6pmm-9qc5.json index 2f5afd12325..66ca70c433b 100644 --- a/advisories/unreviewed/2023/12/GHSA-v968-6pmm-9qc5/GHSA-v968-6pmm-9qc5.json +++ b/advisories/unreviewed/2023/12/GHSA-v968-6pmm-9qc5/GHSA-v968-6pmm-9qc5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-wrq3-v46f-59mp/GHSA-wrq3-v46f-59mp.json b/advisories/unreviewed/2023/12/GHSA-wrq3-v46f-59mp/GHSA-wrq3-v46f-59mp.json index 8649949e811..7b149707faf 100644 --- a/advisories/unreviewed/2023/12/GHSA-wrq3-v46f-59mp/GHSA-wrq3-v46f-59mp.json +++ b/advisories/unreviewed/2023/12/GHSA-wrq3-v46f-59mp/GHSA-wrq3-v46f-59mp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-8wq2-m78j-qq93/GHSA-8wq2-m78j-qq93.json b/advisories/unreviewed/2024/04/GHSA-8wq2-m78j-qq93/GHSA-8wq2-m78j-qq93.json index 40afa7205df..eebb9e67f27 100644 --- a/advisories/unreviewed/2024/04/GHSA-8wq2-m78j-qq93/GHSA-8wq2-m78j-qq93.json +++ b/advisories/unreviewed/2024/04/GHSA-8wq2-m78j-qq93/GHSA-8wq2-m78j-qq93.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-h47h-5hqh-63xw/GHSA-h47h-5hqh-63xw.json b/advisories/unreviewed/2024/04/GHSA-h47h-5hqh-63xw/GHSA-h47h-5hqh-63xw.json index 712cec5671e..2b18032f9a5 100644 --- a/advisories/unreviewed/2024/04/GHSA-h47h-5hqh-63xw/GHSA-h47h-5hqh-63xw.json +++ b/advisories/unreviewed/2024/04/GHSA-h47h-5hqh-63xw/GHSA-h47h-5hqh-63xw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-38cv-ch3v-j5cw/GHSA-38cv-ch3v-j5cw.json b/advisories/unreviewed/2024/05/GHSA-38cv-ch3v-j5cw/GHSA-38cv-ch3v-j5cw.json index b05a56d7a71..2b369f03be9 100644 --- a/advisories/unreviewed/2024/05/GHSA-38cv-ch3v-j5cw/GHSA-38cv-ch3v-j5cw.json +++ b/advisories/unreviewed/2024/05/GHSA-38cv-ch3v-j5cw/GHSA-38cv-ch3v-j5cw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-3rgg-fv5r-qj8f/GHSA-3rgg-fv5r-qj8f.json b/advisories/unreviewed/2024/05/GHSA-3rgg-fv5r-qj8f/GHSA-3rgg-fv5r-qj8f.json index 68f75870fdb..c09324ed2bc 100644 --- a/advisories/unreviewed/2024/05/GHSA-3rgg-fv5r-qj8f/GHSA-3rgg-fv5r-qj8f.json +++ b/advisories/unreviewed/2024/05/GHSA-3rgg-fv5r-qj8f/GHSA-3rgg-fv5r-qj8f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-c473-m4mh-crhw/GHSA-c473-m4mh-crhw.json b/advisories/unreviewed/2024/05/GHSA-c473-m4mh-crhw/GHSA-c473-m4mh-crhw.json index bc63eeda549..cf72f803513 100644 --- a/advisories/unreviewed/2024/05/GHSA-c473-m4mh-crhw/GHSA-c473-m4mh-crhw.json +++ b/advisories/unreviewed/2024/05/GHSA-c473-m4mh-crhw/GHSA-c473-m4mh-crhw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-gx5g-rjjv-754q/GHSA-gx5g-rjjv-754q.json b/advisories/unreviewed/2024/05/GHSA-gx5g-rjjv-754q/GHSA-gx5g-rjjv-754q.json index bc2bee8498e..ebc380cb568 100644 --- a/advisories/unreviewed/2024/05/GHSA-gx5g-rjjv-754q/GHSA-gx5g-rjjv-754q.json +++ b/advisories/unreviewed/2024/05/GHSA-gx5g-rjjv-754q/GHSA-gx5g-rjjv-754q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-rvfp-m6f3-8v6h/GHSA-rvfp-m6f3-8v6h.json b/advisories/unreviewed/2024/05/GHSA-rvfp-m6f3-8v6h/GHSA-rvfp-m6f3-8v6h.json index 180f707f969..0616aa2a196 100644 --- a/advisories/unreviewed/2024/05/GHSA-rvfp-m6f3-8v6h/GHSA-rvfp-m6f3-8v6h.json +++ b/advisories/unreviewed/2024/05/GHSA-rvfp-m6f3-8v6h/GHSA-rvfp-m6f3-8v6h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-485m-923f-95wx/GHSA-485m-923f-95wx.json b/advisories/unreviewed/2024/06/GHSA-485m-923f-95wx/GHSA-485m-923f-95wx.json index dfecd702126..a6125ef2091 100644 --- a/advisories/unreviewed/2024/06/GHSA-485m-923f-95wx/GHSA-485m-923f-95wx.json +++ b/advisories/unreviewed/2024/06/GHSA-485m-923f-95wx/GHSA-485m-923f-95wx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-75c9-4w8r-55h3/GHSA-75c9-4w8r-55h3.json b/advisories/unreviewed/2024/06/GHSA-75c9-4w8r-55h3/GHSA-75c9-4w8r-55h3.json index e4192874398..4c95eaed241 100644 --- a/advisories/unreviewed/2024/06/GHSA-75c9-4w8r-55h3/GHSA-75c9-4w8r-55h3.json +++ b/advisories/unreviewed/2024/06/GHSA-75c9-4w8r-55h3/GHSA-75c9-4w8r-55h3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-92vv-q3vr-c7f7/GHSA-92vv-q3vr-c7f7.json b/advisories/unreviewed/2024/06/GHSA-92vv-q3vr-c7f7/GHSA-92vv-q3vr-c7f7.json index 09943037258..2d9c7bcb517 100644 --- a/advisories/unreviewed/2024/06/GHSA-92vv-q3vr-c7f7/GHSA-92vv-q3vr-c7f7.json +++ b/advisories/unreviewed/2024/06/GHSA-92vv-q3vr-c7f7/GHSA-92vv-q3vr-c7f7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-97jv-xf89-qx5j/GHSA-97jv-xf89-qx5j.json b/advisories/unreviewed/2024/06/GHSA-97jv-xf89-qx5j/GHSA-97jv-xf89-qx5j.json index e0c8e7c78f4..b214ac75205 100644 --- a/advisories/unreviewed/2024/06/GHSA-97jv-xf89-qx5j/GHSA-97jv-xf89-qx5j.json +++ b/advisories/unreviewed/2024/06/GHSA-97jv-xf89-qx5j/GHSA-97jv-xf89-qx5j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-f6rh-pgcv-pqrj/GHSA-f6rh-pgcv-pqrj.json b/advisories/unreviewed/2024/06/GHSA-f6rh-pgcv-pqrj/GHSA-f6rh-pgcv-pqrj.json index e7168fe8ec4..01aff03facb 100644 --- a/advisories/unreviewed/2024/06/GHSA-f6rh-pgcv-pqrj/GHSA-f6rh-pgcv-pqrj.json +++ b/advisories/unreviewed/2024/06/GHSA-f6rh-pgcv-pqrj/GHSA-f6rh-pgcv-pqrj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-j65j-gpfr-72jv/GHSA-j65j-gpfr-72jv.json b/advisories/unreviewed/2024/06/GHSA-j65j-gpfr-72jv/GHSA-j65j-gpfr-72jv.json index 6df1aaea633..92a28c0c533 100644 --- a/advisories/unreviewed/2024/06/GHSA-j65j-gpfr-72jv/GHSA-j65j-gpfr-72jv.json +++ b/advisories/unreviewed/2024/06/GHSA-j65j-gpfr-72jv/GHSA-j65j-gpfr-72jv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-x6rq-p572-3385/GHSA-x6rq-p572-3385.json b/advisories/unreviewed/2024/06/GHSA-x6rq-p572-3385/GHSA-x6rq-p572-3385.json index e03057f46df..49ab354dc3f 100644 --- a/advisories/unreviewed/2024/06/GHSA-x6rq-p572-3385/GHSA-x6rq-p572-3385.json +++ b/advisories/unreviewed/2024/06/GHSA-x6rq-p572-3385/GHSA-x6rq-p572-3385.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-3j3m-66xm-qv3v/GHSA-3j3m-66xm-qv3v.json b/advisories/unreviewed/2024/07/GHSA-3j3m-66xm-qv3v/GHSA-3j3m-66xm-qv3v.json index e193c9e1d2e..5571676d841 100644 --- a/advisories/unreviewed/2024/07/GHSA-3j3m-66xm-qv3v/GHSA-3j3m-66xm-qv3v.json +++ b/advisories/unreviewed/2024/07/GHSA-3j3m-66xm-qv3v/GHSA-3j3m-66xm-qv3v.json @@ -17,9 +17,7 @@ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-45vr-76fp-gmwx/GHSA-45vr-76fp-gmwx.json b/advisories/unreviewed/2024/07/GHSA-45vr-76fp-gmwx/GHSA-45vr-76fp-gmwx.json index 36dc5b85dab..a3e694dcdd5 100644 --- a/advisories/unreviewed/2024/07/GHSA-45vr-76fp-gmwx/GHSA-45vr-76fp-gmwx.json +++ b/advisories/unreviewed/2024/07/GHSA-45vr-76fp-gmwx/GHSA-45vr-76fp-gmwx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-469q-xph2-fj4v/GHSA-469q-xph2-fj4v.json b/advisories/unreviewed/2024/07/GHSA-469q-xph2-fj4v/GHSA-469q-xph2-fj4v.json index bce138a2a0f..fd84e356406 100644 --- a/advisories/unreviewed/2024/07/GHSA-469q-xph2-fj4v/GHSA-469q-xph2-fj4v.json +++ b/advisories/unreviewed/2024/07/GHSA-469q-xph2-fj4v/GHSA-469q-xph2-fj4v.json @@ -17,9 +17,7 @@ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-4pvc-vf8h-5h32/GHSA-4pvc-vf8h-5h32.json b/advisories/unreviewed/2024/07/GHSA-4pvc-vf8h-5h32/GHSA-4pvc-vf8h-5h32.json index e0ec72cf42e..7f7a49dba74 100644 --- a/advisories/unreviewed/2024/07/GHSA-4pvc-vf8h-5h32/GHSA-4pvc-vf8h-5h32.json +++ b/advisories/unreviewed/2024/07/GHSA-4pvc-vf8h-5h32/GHSA-4pvc-vf8h-5h32.json @@ -17,9 +17,7 @@ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-5c32-c7wg-j2mf/GHSA-5c32-c7wg-j2mf.json b/advisories/unreviewed/2024/07/GHSA-5c32-c7wg-j2mf/GHSA-5c32-c7wg-j2mf.json index 71caa20ef11..ad2e253ff47 100644 --- a/advisories/unreviewed/2024/07/GHSA-5c32-c7wg-j2mf/GHSA-5c32-c7wg-j2mf.json +++ b/advisories/unreviewed/2024/07/GHSA-5c32-c7wg-j2mf/GHSA-5c32-c7wg-j2mf.json @@ -17,9 +17,7 @@ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-6fvv-3vw6-wp7c/GHSA-6fvv-3vw6-wp7c.json b/advisories/unreviewed/2024/07/GHSA-6fvv-3vw6-wp7c/GHSA-6fvv-3vw6-wp7c.json index 8113516aaeb..f3c7dd63c86 100644 --- a/advisories/unreviewed/2024/07/GHSA-6fvv-3vw6-wp7c/GHSA-6fvv-3vw6-wp7c.json +++ b/advisories/unreviewed/2024/07/GHSA-6fvv-3vw6-wp7c/GHSA-6fvv-3vw6-wp7c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-7j79-jvg5-vc33/GHSA-7j79-jvg5-vc33.json b/advisories/unreviewed/2024/07/GHSA-7j79-jvg5-vc33/GHSA-7j79-jvg5-vc33.json index 36e2bfdb7d5..8a6813ff7b4 100644 --- a/advisories/unreviewed/2024/07/GHSA-7j79-jvg5-vc33/GHSA-7j79-jvg5-vc33.json +++ b/advisories/unreviewed/2024/07/GHSA-7j79-jvg5-vc33/GHSA-7j79-jvg5-vc33.json @@ -17,9 +17,7 @@ "score": "CVSS:4.0/AV:A/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-848g-6c4v-w6p4/GHSA-848g-6c4v-w6p4.json b/advisories/unreviewed/2024/07/GHSA-848g-6c4v-w6p4/GHSA-848g-6c4v-w6p4.json index 3af038d5650..11d0af163d7 100644 --- a/advisories/unreviewed/2024/07/GHSA-848g-6c4v-w6p4/GHSA-848g-6c4v-w6p4.json +++ b/advisories/unreviewed/2024/07/GHSA-848g-6c4v-w6p4/GHSA-848g-6c4v-w6p4.json @@ -17,9 +17,7 @@ "score": "CVSS:4.0/AV:A/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-8rgv-22v7-w2h4/GHSA-8rgv-22v7-w2h4.json b/advisories/unreviewed/2024/07/GHSA-8rgv-22v7-w2h4/GHSA-8rgv-22v7-w2h4.json index cb9962414fb..6a9619bafd2 100644 --- a/advisories/unreviewed/2024/07/GHSA-8rgv-22v7-w2h4/GHSA-8rgv-22v7-w2h4.json +++ b/advisories/unreviewed/2024/07/GHSA-8rgv-22v7-w2h4/GHSA-8rgv-22v7-w2h4.json @@ -17,9 +17,7 @@ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-95qh-3x5w-9j86/GHSA-95qh-3x5w-9j86.json b/advisories/unreviewed/2024/07/GHSA-95qh-3x5w-9j86/GHSA-95qh-3x5w-9j86.json index 41b7037dbfa..3d329ed9d00 100644 --- a/advisories/unreviewed/2024/07/GHSA-95qh-3x5w-9j86/GHSA-95qh-3x5w-9j86.json +++ b/advisories/unreviewed/2024/07/GHSA-95qh-3x5w-9j86/GHSA-95qh-3x5w-9j86.json @@ -17,9 +17,7 @@ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-9xpj-wgrg-m9r4/GHSA-9xpj-wgrg-m9r4.json b/advisories/unreviewed/2024/07/GHSA-9xpj-wgrg-m9r4/GHSA-9xpj-wgrg-m9r4.json index 8aeacba028e..e8ad67cc5ed 100644 --- a/advisories/unreviewed/2024/07/GHSA-9xpj-wgrg-m9r4/GHSA-9xpj-wgrg-m9r4.json +++ b/advisories/unreviewed/2024/07/GHSA-9xpj-wgrg-m9r4/GHSA-9xpj-wgrg-m9r4.json @@ -17,9 +17,7 @@ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-fgq5-vx4r-rg7c/GHSA-fgq5-vx4r-rg7c.json b/advisories/unreviewed/2024/07/GHSA-fgq5-vx4r-rg7c/GHSA-fgq5-vx4r-rg7c.json index 55d545e476b..e2790ba3949 100644 --- a/advisories/unreviewed/2024/07/GHSA-fgq5-vx4r-rg7c/GHSA-fgq5-vx4r-rg7c.json +++ b/advisories/unreviewed/2024/07/GHSA-fgq5-vx4r-rg7c/GHSA-fgq5-vx4r-rg7c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-gxw4-wqj9-7x83/GHSA-gxw4-wqj9-7x83.json b/advisories/unreviewed/2024/07/GHSA-gxw4-wqj9-7x83/GHSA-gxw4-wqj9-7x83.json index f8d4b3c8159..59ef5537e73 100644 --- a/advisories/unreviewed/2024/07/GHSA-gxw4-wqj9-7x83/GHSA-gxw4-wqj9-7x83.json +++ b/advisories/unreviewed/2024/07/GHSA-gxw4-wqj9-7x83/GHSA-gxw4-wqj9-7x83.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-hg8f-ghpp-qpmq/GHSA-hg8f-ghpp-qpmq.json b/advisories/unreviewed/2024/07/GHSA-hg8f-ghpp-qpmq/GHSA-hg8f-ghpp-qpmq.json index 3669373db11..68e0627547b 100644 --- a/advisories/unreviewed/2024/07/GHSA-hg8f-ghpp-qpmq/GHSA-hg8f-ghpp-qpmq.json +++ b/advisories/unreviewed/2024/07/GHSA-hg8f-ghpp-qpmq/GHSA-hg8f-ghpp-qpmq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-j378-rg6j-2ff4/GHSA-j378-rg6j-2ff4.json b/advisories/unreviewed/2024/07/GHSA-j378-rg6j-2ff4/GHSA-j378-rg6j-2ff4.json index e763dcc4a4a..fe0e27a3b38 100644 --- a/advisories/unreviewed/2024/07/GHSA-j378-rg6j-2ff4/GHSA-j378-rg6j-2ff4.json +++ b/advisories/unreviewed/2024/07/GHSA-j378-rg6j-2ff4/GHSA-j378-rg6j-2ff4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-m8gx-f2mp-6p72/GHSA-m8gx-f2mp-6p72.json b/advisories/unreviewed/2024/07/GHSA-m8gx-f2mp-6p72/GHSA-m8gx-f2mp-6p72.json index 5cd1a3db842..116bb43e58e 100644 --- a/advisories/unreviewed/2024/07/GHSA-m8gx-f2mp-6p72/GHSA-m8gx-f2mp-6p72.json +++ b/advisories/unreviewed/2024/07/GHSA-m8gx-f2mp-6p72/GHSA-m8gx-f2mp-6p72.json @@ -17,9 +17,7 @@ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-mj9h-qp8g-g746/GHSA-mj9h-qp8g-g746.json b/advisories/unreviewed/2024/07/GHSA-mj9h-qp8g-g746/GHSA-mj9h-qp8g-g746.json index f268d9d1d0d..b832ab942bf 100644 --- a/advisories/unreviewed/2024/07/GHSA-mj9h-qp8g-g746/GHSA-mj9h-qp8g-g746.json +++ b/advisories/unreviewed/2024/07/GHSA-mj9h-qp8g-g746/GHSA-mj9h-qp8g-g746.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-pqmv-6w3c-fgq2/GHSA-pqmv-6w3c-fgq2.json b/advisories/unreviewed/2024/07/GHSA-pqmv-6w3c-fgq2/GHSA-pqmv-6w3c-fgq2.json index 26f3ff61d37..80b39d44574 100644 --- a/advisories/unreviewed/2024/07/GHSA-pqmv-6w3c-fgq2/GHSA-pqmv-6w3c-fgq2.json +++ b/advisories/unreviewed/2024/07/GHSA-pqmv-6w3c-fgq2/GHSA-pqmv-6w3c-fgq2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-q92f-2phr-4853/GHSA-q92f-2phr-4853.json b/advisories/unreviewed/2024/07/GHSA-q92f-2phr-4853/GHSA-q92f-2phr-4853.json index 5cb2e45e999..dc5672aa342 100644 --- a/advisories/unreviewed/2024/07/GHSA-q92f-2phr-4853/GHSA-q92f-2phr-4853.json +++ b/advisories/unreviewed/2024/07/GHSA-q92f-2phr-4853/GHSA-q92f-2phr-4853.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-qp33-9f6r-qxm2/GHSA-qp33-9f6r-qxm2.json b/advisories/unreviewed/2024/07/GHSA-qp33-9f6r-qxm2/GHSA-qp33-9f6r-qxm2.json index 51f4675c3e2..105ea5e9887 100644 --- a/advisories/unreviewed/2024/07/GHSA-qp33-9f6r-qxm2/GHSA-qp33-9f6r-qxm2.json +++ b/advisories/unreviewed/2024/07/GHSA-qp33-9f6r-qxm2/GHSA-qp33-9f6r-qxm2.json @@ -17,9 +17,7 @@ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-r968-6g59-6626/GHSA-r968-6g59-6626.json b/advisories/unreviewed/2024/07/GHSA-r968-6g59-6626/GHSA-r968-6g59-6626.json index 128b4f3b569..030a1cf7bf3 100644 --- a/advisories/unreviewed/2024/07/GHSA-r968-6g59-6626/GHSA-r968-6g59-6626.json +++ b/advisories/unreviewed/2024/07/GHSA-r968-6g59-6626/GHSA-r968-6g59-6626.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-rpw9-g7f5-hqpv/GHSA-rpw9-g7f5-hqpv.json b/advisories/unreviewed/2024/07/GHSA-rpw9-g7f5-hqpv/GHSA-rpw9-g7f5-hqpv.json index b68144ee928..b8a011217e2 100644 --- a/advisories/unreviewed/2024/07/GHSA-rpw9-g7f5-hqpv/GHSA-rpw9-g7f5-hqpv.json +++ b/advisories/unreviewed/2024/07/GHSA-rpw9-g7f5-hqpv/GHSA-rpw9-g7f5-hqpv.json @@ -17,9 +17,7 @@ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-v7qg-qfrr-c59x/GHSA-v7qg-qfrr-c59x.json b/advisories/unreviewed/2024/07/GHSA-v7qg-qfrr-c59x/GHSA-v7qg-qfrr-c59x.json index a924133b520..dc1b11f0027 100644 --- a/advisories/unreviewed/2024/07/GHSA-v7qg-qfrr-c59x/GHSA-v7qg-qfrr-c59x.json +++ b/advisories/unreviewed/2024/07/GHSA-v7qg-qfrr-c59x/GHSA-v7qg-qfrr-c59x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-w439-8pfm-9pjm/GHSA-w439-8pfm-9pjm.json b/advisories/unreviewed/2024/07/GHSA-w439-8pfm-9pjm/GHSA-w439-8pfm-9pjm.json index d86aca5e274..b22a43cdd55 100644 --- a/advisories/unreviewed/2024/07/GHSA-w439-8pfm-9pjm/GHSA-w439-8pfm-9pjm.json +++ b/advisories/unreviewed/2024/07/GHSA-w439-8pfm-9pjm/GHSA-w439-8pfm-9pjm.json @@ -17,9 +17,7 @@ "score": "CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-wrqm-q539-p6f5/GHSA-wrqm-q539-p6f5.json b/advisories/unreviewed/2024/07/GHSA-wrqm-q539-p6f5/GHSA-wrqm-q539-p6f5.json index 6cfd928f93c..0235cb2c9e2 100644 --- a/advisories/unreviewed/2024/07/GHSA-wrqm-q539-p6f5/GHSA-wrqm-q539-p6f5.json +++ b/advisories/unreviewed/2024/07/GHSA-wrqm-q539-p6f5/GHSA-wrqm-q539-p6f5.json @@ -17,9 +17,7 @@ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-x3c8-883v-436v/GHSA-x3c8-883v-436v.json b/advisories/unreviewed/2024/07/GHSA-x3c8-883v-436v/GHSA-x3c8-883v-436v.json index 75c002cab1b..6f77b8868f0 100644 --- a/advisories/unreviewed/2024/07/GHSA-x3c8-883v-436v/GHSA-x3c8-883v-436v.json +++ b/advisories/unreviewed/2024/07/GHSA-x3c8-883v-436v/GHSA-x3c8-883v-436v.json @@ -17,9 +17,7 @@ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-2rfg-hm52-w7vq/GHSA-2rfg-hm52-w7vq.json b/advisories/unreviewed/2024/08/GHSA-2rfg-hm52-w7vq/GHSA-2rfg-hm52-w7vq.json index 609fac1d5b6..f7b1939e86f 100644 --- a/advisories/unreviewed/2024/08/GHSA-2rfg-hm52-w7vq/GHSA-2rfg-hm52-w7vq.json +++ b/advisories/unreviewed/2024/08/GHSA-2rfg-hm52-w7vq/GHSA-2rfg-hm52-w7vq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-2rr5-68hg-rwmh/GHSA-2rr5-68hg-rwmh.json b/advisories/unreviewed/2024/08/GHSA-2rr5-68hg-rwmh/GHSA-2rr5-68hg-rwmh.json index e140441b45d..aced0aa6384 100644 --- a/advisories/unreviewed/2024/08/GHSA-2rr5-68hg-rwmh/GHSA-2rr5-68hg-rwmh.json +++ b/advisories/unreviewed/2024/08/GHSA-2rr5-68hg-rwmh/GHSA-2rr5-68hg-rwmh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/08/GHSA-363w-c2r8-4qv2/GHSA-363w-c2r8-4qv2.json b/advisories/unreviewed/2024/08/GHSA-363w-c2r8-4qv2/GHSA-363w-c2r8-4qv2.json index bc282aa04fc..5bd938d04b1 100644 --- a/advisories/unreviewed/2024/08/GHSA-363w-c2r8-4qv2/GHSA-363w-c2r8-4qv2.json +++ b/advisories/unreviewed/2024/08/GHSA-363w-c2r8-4qv2/GHSA-363w-c2r8-4qv2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-474x-3vv5-5q3g/GHSA-474x-3vv5-5q3g.json b/advisories/unreviewed/2024/08/GHSA-474x-3vv5-5q3g/GHSA-474x-3vv5-5q3g.json index 5b69ef85357..eed7bf9f574 100644 --- a/advisories/unreviewed/2024/08/GHSA-474x-3vv5-5q3g/GHSA-474x-3vv5-5q3g.json +++ b/advisories/unreviewed/2024/08/GHSA-474x-3vv5-5q3g/GHSA-474x-3vv5-5q3g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-4vx7-xmpj-mhxm/GHSA-4vx7-xmpj-mhxm.json b/advisories/unreviewed/2024/08/GHSA-4vx7-xmpj-mhxm/GHSA-4vx7-xmpj-mhxm.json index 385e867db10..d0599b4b058 100644 --- a/advisories/unreviewed/2024/08/GHSA-4vx7-xmpj-mhxm/GHSA-4vx7-xmpj-mhxm.json +++ b/advisories/unreviewed/2024/08/GHSA-4vx7-xmpj-mhxm/GHSA-4vx7-xmpj-mhxm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-54w4-6j43-whvq/GHSA-54w4-6j43-whvq.json b/advisories/unreviewed/2024/08/GHSA-54w4-6j43-whvq/GHSA-54w4-6j43-whvq.json index e75b58cdd20..9c58a5c8111 100644 --- a/advisories/unreviewed/2024/08/GHSA-54w4-6j43-whvq/GHSA-54w4-6j43-whvq.json +++ b/advisories/unreviewed/2024/08/GHSA-54w4-6j43-whvq/GHSA-54w4-6j43-whvq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-553f-xfwg-wrqr/GHSA-553f-xfwg-wrqr.json b/advisories/unreviewed/2024/08/GHSA-553f-xfwg-wrqr/GHSA-553f-xfwg-wrqr.json index fe7e7684782..cb9a2651453 100644 --- a/advisories/unreviewed/2024/08/GHSA-553f-xfwg-wrqr/GHSA-553f-xfwg-wrqr.json +++ b/advisories/unreviewed/2024/08/GHSA-553f-xfwg-wrqr/GHSA-553f-xfwg-wrqr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-557r-rm2w-qvrj/GHSA-557r-rm2w-qvrj.json b/advisories/unreviewed/2024/08/GHSA-557r-rm2w-qvrj/GHSA-557r-rm2w-qvrj.json index 3f6fec50b01..307b2652ec2 100644 --- a/advisories/unreviewed/2024/08/GHSA-557r-rm2w-qvrj/GHSA-557r-rm2w-qvrj.json +++ b/advisories/unreviewed/2024/08/GHSA-557r-rm2w-qvrj/GHSA-557r-rm2w-qvrj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-5hgw-6w8f-3f58/GHSA-5hgw-6w8f-3f58.json b/advisories/unreviewed/2024/08/GHSA-5hgw-6w8f-3f58/GHSA-5hgw-6w8f-3f58.json index df24d988dbd..07fbd6b6ae1 100644 --- a/advisories/unreviewed/2024/08/GHSA-5hgw-6w8f-3f58/GHSA-5hgw-6w8f-3f58.json +++ b/advisories/unreviewed/2024/08/GHSA-5hgw-6w8f-3f58/GHSA-5hgw-6w8f-3f58.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-5vqw-wppf-x433/GHSA-5vqw-wppf-x433.json b/advisories/unreviewed/2024/08/GHSA-5vqw-wppf-x433/GHSA-5vqw-wppf-x433.json index 5550cc10be0..268a9c32f80 100644 --- a/advisories/unreviewed/2024/08/GHSA-5vqw-wppf-x433/GHSA-5vqw-wppf-x433.json +++ b/advisories/unreviewed/2024/08/GHSA-5vqw-wppf-x433/GHSA-5vqw-wppf-x433.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-698w-c48m-rgg8/GHSA-698w-c48m-rgg8.json b/advisories/unreviewed/2024/08/GHSA-698w-c48m-rgg8/GHSA-698w-c48m-rgg8.json index d5a6b05fcfc..2da7a9585ff 100644 --- a/advisories/unreviewed/2024/08/GHSA-698w-c48m-rgg8/GHSA-698w-c48m-rgg8.json +++ b/advisories/unreviewed/2024/08/GHSA-698w-c48m-rgg8/GHSA-698w-c48m-rgg8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-6p6f-gc59-4w3f/GHSA-6p6f-gc59-4w3f.json b/advisories/unreviewed/2024/08/GHSA-6p6f-gc59-4w3f/GHSA-6p6f-gc59-4w3f.json index ae78e7c834b..8d36557d387 100644 --- a/advisories/unreviewed/2024/08/GHSA-6p6f-gc59-4w3f/GHSA-6p6f-gc59-4w3f.json +++ b/advisories/unreviewed/2024/08/GHSA-6p6f-gc59-4w3f/GHSA-6p6f-gc59-4w3f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-6xh7-8hpv-jjq6/GHSA-6xh7-8hpv-jjq6.json b/advisories/unreviewed/2024/08/GHSA-6xh7-8hpv-jjq6/GHSA-6xh7-8hpv-jjq6.json index 6ba58cdfee5..5277af471be 100644 --- a/advisories/unreviewed/2024/08/GHSA-6xh7-8hpv-jjq6/GHSA-6xh7-8hpv-jjq6.json +++ b/advisories/unreviewed/2024/08/GHSA-6xh7-8hpv-jjq6/GHSA-6xh7-8hpv-jjq6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-75hc-c75r-vgm6/GHSA-75hc-c75r-vgm6.json b/advisories/unreviewed/2024/08/GHSA-75hc-c75r-vgm6/GHSA-75hc-c75r-vgm6.json index 446fecbae38..b1abc7a7c04 100644 --- a/advisories/unreviewed/2024/08/GHSA-75hc-c75r-vgm6/GHSA-75hc-c75r-vgm6.json +++ b/advisories/unreviewed/2024/08/GHSA-75hc-c75r-vgm6/GHSA-75hc-c75r-vgm6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-762p-xx25-g6mq/GHSA-762p-xx25-g6mq.json b/advisories/unreviewed/2024/08/GHSA-762p-xx25-g6mq/GHSA-762p-xx25-g6mq.json index 8fde641ffdb..f208373189e 100644 --- a/advisories/unreviewed/2024/08/GHSA-762p-xx25-g6mq/GHSA-762p-xx25-g6mq.json +++ b/advisories/unreviewed/2024/08/GHSA-762p-xx25-g6mq/GHSA-762p-xx25-g6mq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-7j6j-8jww-jc3g/GHSA-7j6j-8jww-jc3g.json b/advisories/unreviewed/2024/08/GHSA-7j6j-8jww-jc3g/GHSA-7j6j-8jww-jc3g.json index 1dcb4bf83c8..32bdbea6310 100644 --- a/advisories/unreviewed/2024/08/GHSA-7j6j-8jww-jc3g/GHSA-7j6j-8jww-jc3g.json +++ b/advisories/unreviewed/2024/08/GHSA-7j6j-8jww-jc3g/GHSA-7j6j-8jww-jc3g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/08/GHSA-8m4w-86rm-r3rg/GHSA-8m4w-86rm-r3rg.json b/advisories/unreviewed/2024/08/GHSA-8m4w-86rm-r3rg/GHSA-8m4w-86rm-r3rg.json index 5c04a74d8f4..f6ff7968109 100644 --- a/advisories/unreviewed/2024/08/GHSA-8m4w-86rm-r3rg/GHSA-8m4w-86rm-r3rg.json +++ b/advisories/unreviewed/2024/08/GHSA-8m4w-86rm-r3rg/GHSA-8m4w-86rm-r3rg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-8pvg-48x5-gxj6/GHSA-8pvg-48x5-gxj6.json b/advisories/unreviewed/2024/08/GHSA-8pvg-48x5-gxj6/GHSA-8pvg-48x5-gxj6.json index 9aa60a9cf8e..19c1fba09d0 100644 --- a/advisories/unreviewed/2024/08/GHSA-8pvg-48x5-gxj6/GHSA-8pvg-48x5-gxj6.json +++ b/advisories/unreviewed/2024/08/GHSA-8pvg-48x5-gxj6/GHSA-8pvg-48x5-gxj6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-98fw-2rw5-qx3j/GHSA-98fw-2rw5-qx3j.json b/advisories/unreviewed/2024/08/GHSA-98fw-2rw5-qx3j/GHSA-98fw-2rw5-qx3j.json index 072aab68edd..47e8a9dad80 100644 --- a/advisories/unreviewed/2024/08/GHSA-98fw-2rw5-qx3j/GHSA-98fw-2rw5-qx3j.json +++ b/advisories/unreviewed/2024/08/GHSA-98fw-2rw5-qx3j/GHSA-98fw-2rw5-qx3j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-c2fg-vqvf-qqcj/GHSA-c2fg-vqvf-qqcj.json b/advisories/unreviewed/2024/08/GHSA-c2fg-vqvf-qqcj/GHSA-c2fg-vqvf-qqcj.json index 538cd8258c1..75d206f5f54 100644 --- a/advisories/unreviewed/2024/08/GHSA-c2fg-vqvf-qqcj/GHSA-c2fg-vqvf-qqcj.json +++ b/advisories/unreviewed/2024/08/GHSA-c2fg-vqvf-qqcj/GHSA-c2fg-vqvf-qqcj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/08/GHSA-ccg8-wmfg-jr2m/GHSA-ccg8-wmfg-jr2m.json b/advisories/unreviewed/2024/08/GHSA-ccg8-wmfg-jr2m/GHSA-ccg8-wmfg-jr2m.json index 0912222a41d..d8ca68cf7d1 100644 --- a/advisories/unreviewed/2024/08/GHSA-ccg8-wmfg-jr2m/GHSA-ccg8-wmfg-jr2m.json +++ b/advisories/unreviewed/2024/08/GHSA-ccg8-wmfg-jr2m/GHSA-ccg8-wmfg-jr2m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-cp63-qrw4-jq9g/GHSA-cp63-qrw4-jq9g.json b/advisories/unreviewed/2024/08/GHSA-cp63-qrw4-jq9g/GHSA-cp63-qrw4-jq9g.json index e4678db2eb1..40756fb2199 100644 --- a/advisories/unreviewed/2024/08/GHSA-cp63-qrw4-jq9g/GHSA-cp63-qrw4-jq9g.json +++ b/advisories/unreviewed/2024/08/GHSA-cp63-qrw4-jq9g/GHSA-cp63-qrw4-jq9g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-g92r-8x2f-9v8m/GHSA-g92r-8x2f-9v8m.json b/advisories/unreviewed/2024/08/GHSA-g92r-8x2f-9v8m/GHSA-g92r-8x2f-9v8m.json index d734a8c33dc..6d51a337166 100644 --- a/advisories/unreviewed/2024/08/GHSA-g92r-8x2f-9v8m/GHSA-g92r-8x2f-9v8m.json +++ b/advisories/unreviewed/2024/08/GHSA-g92r-8x2f-9v8m/GHSA-g92r-8x2f-9v8m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-g9q3-4xq5-wqcj/GHSA-g9q3-4xq5-wqcj.json b/advisories/unreviewed/2024/08/GHSA-g9q3-4xq5-wqcj/GHSA-g9q3-4xq5-wqcj.json index 3193943b8d2..f6556a8dfc5 100644 --- a/advisories/unreviewed/2024/08/GHSA-g9q3-4xq5-wqcj/GHSA-g9q3-4xq5-wqcj.json +++ b/advisories/unreviewed/2024/08/GHSA-g9q3-4xq5-wqcj/GHSA-g9q3-4xq5-wqcj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -47,9 +45,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/08/GHSA-ggh4-5hvc-554r/GHSA-ggh4-5hvc-554r.json b/advisories/unreviewed/2024/08/GHSA-ggh4-5hvc-554r/GHSA-ggh4-5hvc-554r.json index 62e780fba16..cab56d49fb1 100644 --- a/advisories/unreviewed/2024/08/GHSA-ggh4-5hvc-554r/GHSA-ggh4-5hvc-554r.json +++ b/advisories/unreviewed/2024/08/GHSA-ggh4-5hvc-554r/GHSA-ggh4-5hvc-554r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-gpcw-38mp-9ccf/GHSA-gpcw-38mp-9ccf.json b/advisories/unreviewed/2024/08/GHSA-gpcw-38mp-9ccf/GHSA-gpcw-38mp-9ccf.json index b168991a921..ba491e853c0 100644 --- a/advisories/unreviewed/2024/08/GHSA-gpcw-38mp-9ccf/GHSA-gpcw-38mp-9ccf.json +++ b/advisories/unreviewed/2024/08/GHSA-gpcw-38mp-9ccf/GHSA-gpcw-38mp-9ccf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-gpmp-jfx6-m9rh/GHSA-gpmp-jfx6-m9rh.json b/advisories/unreviewed/2024/08/GHSA-gpmp-jfx6-m9rh/GHSA-gpmp-jfx6-m9rh.json index 730da1cf07d..ef74a505db8 100644 --- a/advisories/unreviewed/2024/08/GHSA-gpmp-jfx6-m9rh/GHSA-gpmp-jfx6-m9rh.json +++ b/advisories/unreviewed/2024/08/GHSA-gpmp-jfx6-m9rh/GHSA-gpmp-jfx6-m9rh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-hjr8-mp59-p732/GHSA-hjr8-mp59-p732.json b/advisories/unreviewed/2024/08/GHSA-hjr8-mp59-p732/GHSA-hjr8-mp59-p732.json index db6924c3c49..e6d842e0656 100644 --- a/advisories/unreviewed/2024/08/GHSA-hjr8-mp59-p732/GHSA-hjr8-mp59-p732.json +++ b/advisories/unreviewed/2024/08/GHSA-hjr8-mp59-p732/GHSA-hjr8-mp59-p732.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-j85x-9rvx-crcg/GHSA-j85x-9rvx-crcg.json b/advisories/unreviewed/2024/08/GHSA-j85x-9rvx-crcg/GHSA-j85x-9rvx-crcg.json index 042918cf0e0..58c03bbfb0a 100644 --- a/advisories/unreviewed/2024/08/GHSA-j85x-9rvx-crcg/GHSA-j85x-9rvx-crcg.json +++ b/advisories/unreviewed/2024/08/GHSA-j85x-9rvx-crcg/GHSA-j85x-9rvx-crcg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-jxv8-jmp2-87p8/GHSA-jxv8-jmp2-87p8.json b/advisories/unreviewed/2024/08/GHSA-jxv8-jmp2-87p8/GHSA-jxv8-jmp2-87p8.json index ebc35f6e611..9e3d471b76f 100644 --- a/advisories/unreviewed/2024/08/GHSA-jxv8-jmp2-87p8/GHSA-jxv8-jmp2-87p8.json +++ b/advisories/unreviewed/2024/08/GHSA-jxv8-jmp2-87p8/GHSA-jxv8-jmp2-87p8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-m475-c2qh-xg8v/GHSA-m475-c2qh-xg8v.json b/advisories/unreviewed/2024/08/GHSA-m475-c2qh-xg8v/GHSA-m475-c2qh-xg8v.json index 01b55f1a53e..edca32dfb5d 100644 --- a/advisories/unreviewed/2024/08/GHSA-m475-c2qh-xg8v/GHSA-m475-c2qh-xg8v.json +++ b/advisories/unreviewed/2024/08/GHSA-m475-c2qh-xg8v/GHSA-m475-c2qh-xg8v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-m4qj-p3wv-ph7c/GHSA-m4qj-p3wv-ph7c.json b/advisories/unreviewed/2024/08/GHSA-m4qj-p3wv-ph7c/GHSA-m4qj-p3wv-ph7c.json index 3eb14c11ee4..9188278ecd4 100644 --- a/advisories/unreviewed/2024/08/GHSA-m4qj-p3wv-ph7c/GHSA-m4qj-p3wv-ph7c.json +++ b/advisories/unreviewed/2024/08/GHSA-m4qj-p3wv-ph7c/GHSA-m4qj-p3wv-ph7c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-mp78-hh2m-6j78/GHSA-mp78-hh2m-6j78.json b/advisories/unreviewed/2024/08/GHSA-mp78-hh2m-6j78/GHSA-mp78-hh2m-6j78.json index 31d697ca7fa..27fd59a04bb 100644 --- a/advisories/unreviewed/2024/08/GHSA-mp78-hh2m-6j78/GHSA-mp78-hh2m-6j78.json +++ b/advisories/unreviewed/2024/08/GHSA-mp78-hh2m-6j78/GHSA-mp78-hh2m-6j78.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-mvr5-c43p-gf5m/GHSA-mvr5-c43p-gf5m.json b/advisories/unreviewed/2024/08/GHSA-mvr5-c43p-gf5m/GHSA-mvr5-c43p-gf5m.json index b70ba2a7b47..c7333e6de57 100644 --- a/advisories/unreviewed/2024/08/GHSA-mvr5-c43p-gf5m/GHSA-mvr5-c43p-gf5m.json +++ b/advisories/unreviewed/2024/08/GHSA-mvr5-c43p-gf5m/GHSA-mvr5-c43p-gf5m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-pjph-5c8j-wm5g/GHSA-pjph-5c8j-wm5g.json b/advisories/unreviewed/2024/08/GHSA-pjph-5c8j-wm5g/GHSA-pjph-5c8j-wm5g.json index ce53829f140..93379ee3166 100644 --- a/advisories/unreviewed/2024/08/GHSA-pjph-5c8j-wm5g/GHSA-pjph-5c8j-wm5g.json +++ b/advisories/unreviewed/2024/08/GHSA-pjph-5c8j-wm5g/GHSA-pjph-5c8j-wm5g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/08/GHSA-pwjw-hqj5-93ch/GHSA-pwjw-hqj5-93ch.json b/advisories/unreviewed/2024/08/GHSA-pwjw-hqj5-93ch/GHSA-pwjw-hqj5-93ch.json index 2246b0380b4..bbd632b64d5 100644 --- a/advisories/unreviewed/2024/08/GHSA-pwjw-hqj5-93ch/GHSA-pwjw-hqj5-93ch.json +++ b/advisories/unreviewed/2024/08/GHSA-pwjw-hqj5-93ch/GHSA-pwjw-hqj5-93ch.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-q28r-ggr6-763f/GHSA-q28r-ggr6-763f.json b/advisories/unreviewed/2024/08/GHSA-q28r-ggr6-763f/GHSA-q28r-ggr6-763f.json index 1e3e479e625..cec91f80f68 100644 --- a/advisories/unreviewed/2024/08/GHSA-q28r-ggr6-763f/GHSA-q28r-ggr6-763f.json +++ b/advisories/unreviewed/2024/08/GHSA-q28r-ggr6-763f/GHSA-q28r-ggr6-763f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-qmvr-hqqr-gjg7/GHSA-qmvr-hqqr-gjg7.json b/advisories/unreviewed/2024/08/GHSA-qmvr-hqqr-gjg7/GHSA-qmvr-hqqr-gjg7.json index 166bf851c6f..561441fa86d 100644 --- a/advisories/unreviewed/2024/08/GHSA-qmvr-hqqr-gjg7/GHSA-qmvr-hqqr-gjg7.json +++ b/advisories/unreviewed/2024/08/GHSA-qmvr-hqqr-gjg7/GHSA-qmvr-hqqr-gjg7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/08/GHSA-r6p4-7q78-rfh2/GHSA-r6p4-7q78-rfh2.json b/advisories/unreviewed/2024/08/GHSA-r6p4-7q78-rfh2/GHSA-r6p4-7q78-rfh2.json index 4d01d6a4d5d..52f2baa4ef6 100644 --- a/advisories/unreviewed/2024/08/GHSA-r6p4-7q78-rfh2/GHSA-r6p4-7q78-rfh2.json +++ b/advisories/unreviewed/2024/08/GHSA-r6p4-7q78-rfh2/GHSA-r6p4-7q78-rfh2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-rx9p-j44h-69cp/GHSA-rx9p-j44h-69cp.json b/advisories/unreviewed/2024/08/GHSA-rx9p-j44h-69cp/GHSA-rx9p-j44h-69cp.json index 2d41b72f8b6..4c26a76bbb0 100644 --- a/advisories/unreviewed/2024/08/GHSA-rx9p-j44h-69cp/GHSA-rx9p-j44h-69cp.json +++ b/advisories/unreviewed/2024/08/GHSA-rx9p-j44h-69cp/GHSA-rx9p-j44h-69cp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-v66p-qc5x-9g87/GHSA-v66p-qc5x-9g87.json b/advisories/unreviewed/2024/08/GHSA-v66p-qc5x-9g87/GHSA-v66p-qc5x-9g87.json index 2421962c635..ed940ed4654 100644 --- a/advisories/unreviewed/2024/08/GHSA-v66p-qc5x-9g87/GHSA-v66p-qc5x-9g87.json +++ b/advisories/unreviewed/2024/08/GHSA-v66p-qc5x-9g87/GHSA-v66p-qc5x-9g87.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-v68r-5mx2-7m49/GHSA-v68r-5mx2-7m49.json b/advisories/unreviewed/2024/08/GHSA-v68r-5mx2-7m49/GHSA-v68r-5mx2-7m49.json index 4aa9441181f..1b0c61b0ec2 100644 --- a/advisories/unreviewed/2024/08/GHSA-v68r-5mx2-7m49/GHSA-v68r-5mx2-7m49.json +++ b/advisories/unreviewed/2024/08/GHSA-v68r-5mx2-7m49/GHSA-v68r-5mx2-7m49.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-v69c-3f9p-xq6p/GHSA-v69c-3f9p-xq6p.json b/advisories/unreviewed/2024/08/GHSA-v69c-3f9p-xq6p/GHSA-v69c-3f9p-xq6p.json index 8fb430667ca..b62e70baab3 100644 --- a/advisories/unreviewed/2024/08/GHSA-v69c-3f9p-xq6p/GHSA-v69c-3f9p-xq6p.json +++ b/advisories/unreviewed/2024/08/GHSA-v69c-3f9p-xq6p/GHSA-v69c-3f9p-xq6p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-vfhx-cqwc-hf57/GHSA-vfhx-cqwc-hf57.json b/advisories/unreviewed/2024/08/GHSA-vfhx-cqwc-hf57/GHSA-vfhx-cqwc-hf57.json index fbcde4ad905..842eb6577c6 100644 --- a/advisories/unreviewed/2024/08/GHSA-vfhx-cqwc-hf57/GHSA-vfhx-cqwc-hf57.json +++ b/advisories/unreviewed/2024/08/GHSA-vfhx-cqwc-hf57/GHSA-vfhx-cqwc-hf57.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-w6xf-p643-g6rw/GHSA-w6xf-p643-g6rw.json b/advisories/unreviewed/2024/08/GHSA-w6xf-p643-g6rw/GHSA-w6xf-p643-g6rw.json index a539a89252b..a8c3821420c 100644 --- a/advisories/unreviewed/2024/08/GHSA-w6xf-p643-g6rw/GHSA-w6xf-p643-g6rw.json +++ b/advisories/unreviewed/2024/08/GHSA-w6xf-p643-g6rw/GHSA-w6xf-p643-g6rw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-w7h7-v3m9-rv75/GHSA-w7h7-v3m9-rv75.json b/advisories/unreviewed/2024/08/GHSA-w7h7-v3m9-rv75/GHSA-w7h7-v3m9-rv75.json index dac2dc64902..f4401e07425 100644 --- a/advisories/unreviewed/2024/08/GHSA-w7h7-v3m9-rv75/GHSA-w7h7-v3m9-rv75.json +++ b/advisories/unreviewed/2024/08/GHSA-w7h7-v3m9-rv75/GHSA-w7h7-v3m9-rv75.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-w8g7-xg38-gqmx/GHSA-w8g7-xg38-gqmx.json b/advisories/unreviewed/2024/08/GHSA-w8g7-xg38-gqmx/GHSA-w8g7-xg38-gqmx.json index 038a04858f3..49eb9847932 100644 --- a/advisories/unreviewed/2024/08/GHSA-w8g7-xg38-gqmx/GHSA-w8g7-xg38-gqmx.json +++ b/advisories/unreviewed/2024/08/GHSA-w8g7-xg38-gqmx/GHSA-w8g7-xg38-gqmx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/08/GHSA-wg8h-xrpv-phxg/GHSA-wg8h-xrpv-phxg.json b/advisories/unreviewed/2024/08/GHSA-wg8h-xrpv-phxg/GHSA-wg8h-xrpv-phxg.json index ac4dc09436a..6188144a216 100644 --- a/advisories/unreviewed/2024/08/GHSA-wg8h-xrpv-phxg/GHSA-wg8h-xrpv-phxg.json +++ b/advisories/unreviewed/2024/08/GHSA-wg8h-xrpv-phxg/GHSA-wg8h-xrpv-phxg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-wpq2-4qxq-9vxc/GHSA-wpq2-4qxq-9vxc.json b/advisories/unreviewed/2024/08/GHSA-wpq2-4qxq-9vxc/GHSA-wpq2-4qxq-9vxc.json index a9645a3711a..ebdb63e2606 100644 --- a/advisories/unreviewed/2024/08/GHSA-wpq2-4qxq-9vxc/GHSA-wpq2-4qxq-9vxc.json +++ b/advisories/unreviewed/2024/08/GHSA-wpq2-4qxq-9vxc/GHSA-wpq2-4qxq-9vxc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-wvmh-7r32-grc6/GHSA-wvmh-7r32-grc6.json b/advisories/unreviewed/2024/08/GHSA-wvmh-7r32-grc6/GHSA-wvmh-7r32-grc6.json index c3b0346ec4a..66c62b701fa 100644 --- a/advisories/unreviewed/2024/08/GHSA-wvmh-7r32-grc6/GHSA-wvmh-7r32-grc6.json +++ b/advisories/unreviewed/2024/08/GHSA-wvmh-7r32-grc6/GHSA-wvmh-7r32-grc6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-wvp3-f576-fpv8/GHSA-wvp3-f576-fpv8.json b/advisories/unreviewed/2024/08/GHSA-wvp3-f576-fpv8/GHSA-wvp3-f576-fpv8.json index efd39c1fa91..8eac33b709c 100644 --- a/advisories/unreviewed/2024/08/GHSA-wvp3-f576-fpv8/GHSA-wvp3-f576-fpv8.json +++ b/advisories/unreviewed/2024/08/GHSA-wvp3-f576-fpv8/GHSA-wvp3-f576-fpv8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-x7x3-mj9c-m6x7/GHSA-x7x3-mj9c-m6x7.json b/advisories/unreviewed/2024/08/GHSA-x7x3-mj9c-m6x7/GHSA-x7x3-mj9c-m6x7.json index 54b98d61ecc..ac739113182 100644 --- a/advisories/unreviewed/2024/08/GHSA-x7x3-mj9c-m6x7/GHSA-x7x3-mj9c-m6x7.json +++ b/advisories/unreviewed/2024/08/GHSA-x7x3-mj9c-m6x7/GHSA-x7x3-mj9c-m6x7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-x8c6-chxp-2fjg/GHSA-x8c6-chxp-2fjg.json b/advisories/unreviewed/2024/08/GHSA-x8c6-chxp-2fjg/GHSA-x8c6-chxp-2fjg.json index b399beb5ae5..b68e9c48036 100644 --- a/advisories/unreviewed/2024/08/GHSA-x8c6-chxp-2fjg/GHSA-x8c6-chxp-2fjg.json +++ b/advisories/unreviewed/2024/08/GHSA-x8c6-chxp-2fjg/GHSA-x8c6-chxp-2fjg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-xmx3-9jpm-34m4/GHSA-xmx3-9jpm-34m4.json b/advisories/unreviewed/2024/08/GHSA-xmx3-9jpm-34m4/GHSA-xmx3-9jpm-34m4.json index 36520ae2fb3..d27833f940e 100644 --- a/advisories/unreviewed/2024/08/GHSA-xmx3-9jpm-34m4/GHSA-xmx3-9jpm-34m4.json +++ b/advisories/unreviewed/2024/08/GHSA-xmx3-9jpm-34m4/GHSA-xmx3-9jpm-34m4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-xwrx-6pgq-qmcj/GHSA-xwrx-6pgq-qmcj.json b/advisories/unreviewed/2024/08/GHSA-xwrx-6pgq-qmcj/GHSA-xwrx-6pgq-qmcj.json index 31bd1fa96af..b8e06b8f1ff 100644 --- a/advisories/unreviewed/2024/08/GHSA-xwrx-6pgq-qmcj/GHSA-xwrx-6pgq-qmcj.json +++ b/advisories/unreviewed/2024/08/GHSA-xwrx-6pgq-qmcj/GHSA-xwrx-6pgq-qmcj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY",