From 5022556e13804964312854bbbb26854ede89cd8b Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Thu, 28 Nov 2024 05:17:35 +0000 Subject: [PATCH] Advisory Database Sync --- .../10/GHSA-jmm9-2p29-vh2w/GHSA-jmm9-2p29-vh2w.json | 4 +--- .../08/GHSA-4q53-fqhc-cr46/GHSA-4q53-fqhc-cr46.json | 4 +--- .../05/GHSA-32w9-2qpc-5f9v/GHSA-32w9-2qpc-5f9v.json | 4 +--- .../12/GHSA-47xh-qxqv-mgvg/GHSA-47xh-qxqv-mgvg.json | 8 ++------ .../12/GHSA-q7qq-9gx2-ggxv/GHSA-q7qq-9gx2-ggxv.json | 8 ++------ .../03/GHSA-2563-fp9c-mgm8/GHSA-2563-fp9c-mgm8.json | 4 +--- .../03/GHSA-wm8x-php5-hvq6/GHSA-wm8x-php5-hvq6.json | 12 +++--------- .../10/GHSA-rm7j-f5g5-27vv/GHSA-rm7j-f5g5-27vv.json | 4 +--- .../04/GHSA-22qq-g5f9-r82v/GHSA-22qq-g5f9-r82v.json | 12 +++--------- .../04/GHSA-23h9-h5hh-w97x/GHSA-23h9-h5hh-w97x.json | 8 ++------ .../04/GHSA-2497-mh3q-frq7/GHSA-2497-mh3q-frq7.json | 12 +++--------- .../04/GHSA-249j-v9cr-p779/GHSA-249j-v9cr-p779.json | 12 +++--------- .../04/GHSA-24gh-95jq-75q6/GHSA-24gh-95jq-75q6.json | 12 +++--------- .../04/GHSA-24v9-cchp-66h8/GHSA-24v9-cchp-66h8.json | 12 +++--------- .../04/GHSA-2534-c44q-6xm5/GHSA-2534-c44q-6xm5.json | 12 +++--------- .../04/GHSA-25w4-83pf-9vjv/GHSA-25w4-83pf-9vjv.json | 12 +++--------- .../04/GHSA-269j-j44g-6c79/GHSA-269j-j44g-6c79.json | 12 +++--------- .../04/GHSA-276f-pggp-38m8/GHSA-276f-pggp-38m8.json | 12 +++--------- .../04/GHSA-29mp-vjf6-73c4/GHSA-29mp-vjf6-73c4.json | 12 +++--------- .../04/GHSA-2cw4-669c-6q7c/GHSA-2cw4-669c-6q7c.json | 12 +++--------- .../04/GHSA-2g24-99jw-85x7/GHSA-2g24-99jw-85x7.json | 12 +++--------- .../04/GHSA-2h87-x45x-cx46/GHSA-2h87-x45x-cx46.json | 12 +++--------- .../04/GHSA-2hhg-c3w2-vgr6/GHSA-2hhg-c3w2-vgr6.json | 12 +++--------- .../04/GHSA-2mg5-26r6-fpmg/GHSA-2mg5-26r6-fpmg.json | 12 +++--------- .../04/GHSA-2v53-xxqh-55cg/GHSA-2v53-xxqh-55cg.json | 12 +++--------- .../04/GHSA-2w6p-9jq8-5xfq/GHSA-2w6p-9jq8-5xfq.json | 12 +++--------- .../04/GHSA-2wvh-w7fv-6223/GHSA-2wvh-w7fv-6223.json | 12 +++--------- .../04/GHSA-2xfv-3xp8-jwv5/GHSA-2xfv-3xp8-jwv5.json | 12 +++--------- .../04/GHSA-349j-652r-ghg9/GHSA-349j-652r-ghg9.json | 12 +++--------- .../04/GHSA-38x8-c543-7468/GHSA-38x8-c543-7468.json | 12 +++--------- .../04/GHSA-3m3c-pvwf-4p64/GHSA-3m3c-pvwf-4p64.json | 12 +++--------- .../04/GHSA-3p2x-2cfv-p7xm/GHSA-3p2x-2cfv-p7xm.json | 12 +++--------- .../04/GHSA-3vr6-cm7r-pmpq/GHSA-3vr6-cm7r-pmpq.json | 12 +++--------- .../04/GHSA-3vrg-5j8v-8v4x/GHSA-3vrg-5j8v-8v4x.json | 12 +++--------- .../04/GHSA-3vv5-76vv-6h5f/GHSA-3vv5-76vv-6h5f.json | 12 +++--------- .../04/GHSA-4565-7jh8-9r34/GHSA-4565-7jh8-9r34.json | 12 +++--------- .../04/GHSA-45f9-vv4q-cgjw/GHSA-45f9-vv4q-cgjw.json | 12 +++--------- .../04/GHSA-48f4-f7g4-fr7r/GHSA-48f4-f7g4-fr7r.json | 12 +++--------- .../04/GHSA-4pq3-767m-6x5g/GHSA-4pq3-767m-6x5g.json | 8 ++------ .../04/GHSA-4pvm-mp59-j2rf/GHSA-4pvm-mp59-j2rf.json | 12 +++--------- .../04/GHSA-4x5x-96mg-mgf7/GHSA-4x5x-96mg-mgf7.json | 12 +++--------- .../04/GHSA-5ff7-p7hw-6x23/GHSA-5ff7-p7hw-6x23.json | 12 +++--------- .../04/GHSA-5fhm-3rf4-cfq4/GHSA-5fhm-3rf4-cfq4.json | 12 +++--------- .../04/GHSA-5fjq-4fxg-rx9m/GHSA-5fjq-4fxg-rx9m.json | 12 +++--------- .../04/GHSA-5j5j-qcr8-cxv4/GHSA-5j5j-qcr8-cxv4.json | 12 +++--------- .../04/GHSA-5mh2-6fm3-6r87/GHSA-5mh2-6fm3-6r87.json | 12 +++--------- .../04/GHSA-5r64-7xgq-qr72/GHSA-5r64-7xgq-qr72.json | 12 +++--------- .../04/GHSA-5rhm-2fg6-w34r/GHSA-5rhm-2fg6-w34r.json | 12 +++--------- .../04/GHSA-5rvx-fq47-p5r5/GHSA-5rvx-fq47-p5r5.json | 12 +++--------- .../04/GHSA-62j2-7hqq-4gqf/GHSA-62j2-7hqq-4gqf.json | 12 +++--------- .../04/GHSA-633w-j862-v7j8/GHSA-633w-j862-v7j8.json | 12 +++--------- .../04/GHSA-67cc-jx4w-3hpw/GHSA-67cc-jx4w-3hpw.json | 12 +++--------- .../04/GHSA-68g7-f6pm-w964/GHSA-68g7-f6pm-w964.json | 12 +++--------- .../04/GHSA-6fqr-wrf4-vr9r/GHSA-6fqr-wrf4-vr9r.json | 12 +++--------- .../04/GHSA-6h6g-p926-x7hr/GHSA-6h6g-p926-x7hr.json | 12 +++--------- .../04/GHSA-6hfq-cp5h-927v/GHSA-6hfq-cp5h-927v.json | 12 +++--------- .../04/GHSA-6jpq-mq42-2436/GHSA-6jpq-mq42-2436.json | 12 +++--------- .../04/GHSA-6m32-75x3-93rf/GHSA-6m32-75x3-93rf.json | 12 +++--------- .../04/GHSA-6m8c-5c42-fpgx/GHSA-6m8c-5c42-fpgx.json | 12 +++--------- .../04/GHSA-6m8x-9x29-g395/GHSA-6m8x-9x29-g395.json | 12 +++--------- .../04/GHSA-6p52-7j69-f67w/GHSA-6p52-7j69-f67w.json | 12 +++--------- .../04/GHSA-6qw8-9hf4-7xx4/GHSA-6qw8-9hf4-7xx4.json | 12 +++--------- .../04/GHSA-6wfw-9vqf-w3fj/GHSA-6wfw-9vqf-w3fj.json | 12 +++--------- .../04/GHSA-6wx2-xqp3-gggw/GHSA-6wx2-xqp3-gggw.json | 8 ++------ .../04/GHSA-6xxg-crg2-rwch/GHSA-6xxg-crg2-rwch.json | 12 +++--------- .../04/GHSA-786v-6x87-g35h/GHSA-786v-6x87-g35h.json | 12 +++--------- .../04/GHSA-793j-ggmw-r33w/GHSA-793j-ggmw-r33w.json | 12 +++--------- .../04/GHSA-7g28-9q87-f5g3/GHSA-7g28-9q87-f5g3.json | 12 +++--------- .../04/GHSA-7gq9-m389-5v2h/GHSA-7gq9-m389-5v2h.json | 12 +++--------- .../04/GHSA-7r76-xfcg-jhgf/GHSA-7r76-xfcg-jhgf.json | 12 +++--------- .../04/GHSA-7v5f-v3rh-wvf7/GHSA-7v5f-v3rh-wvf7.json | 12 +++--------- .../04/GHSA-7wxp-pmh5-8mh5/GHSA-7wxp-pmh5-8mh5.json | 12 +++--------- .../04/GHSA-85m2-347j-wh42/GHSA-85m2-347j-wh42.json | 12 +++--------- .../04/GHSA-8cm7-v6p7-4vvh/GHSA-8cm7-v6p7-4vvh.json | 12 +++--------- .../04/GHSA-8hxr-8xgg-w97m/GHSA-8hxr-8xgg-w97m.json | 12 +++--------- .../04/GHSA-8mfv-mcqq-xr4w/GHSA-8mfv-mcqq-xr4w.json | 12 +++--------- .../04/GHSA-8mmc-rxvx-8vhr/GHSA-8mmc-rxvx-8vhr.json | 12 +++--------- .../04/GHSA-8p23-49qp-93f7/GHSA-8p23-49qp-93f7.json | 12 +++--------- .../04/GHSA-8wv9-2cq2-2qcw/GHSA-8wv9-2cq2-2qcw.json | 12 +++--------- .../04/GHSA-9289-82mv-9386/GHSA-9289-82mv-9386.json | 12 +++--------- .../04/GHSA-9cgv-5rj9-j8x4/GHSA-9cgv-5rj9-j8x4.json | 8 ++------ .../04/GHSA-9f35-p2r2-7gw3/GHSA-9f35-p2r2-7gw3.json | 12 +++--------- .../04/GHSA-9mrm-q5cw-83wg/GHSA-9mrm-q5cw-83wg.json | 12 +++--------- .../04/GHSA-9p7c-879j-x62m/GHSA-9p7c-879j-x62m.json | 12 +++--------- .../04/GHSA-9p8v-2mj7-h2rj/GHSA-9p8v-2mj7-h2rj.json | 12 +++--------- .../04/GHSA-9q3h-6m25-g67f/GHSA-9q3h-6m25-g67f.json | 12 +++--------- .../04/GHSA-c8j5-94mc-2xxr/GHSA-c8j5-94mc-2xxr.json | 12 +++--------- .../04/GHSA-cgqm-4mh8-6xw8/GHSA-cgqm-4mh8-6xw8.json | 12 +++--------- .../04/GHSA-ch3h-gjmw-x9f6/GHSA-ch3h-gjmw-x9f6.json | 12 +++--------- .../04/GHSA-ch7p-8m55-hr5j/GHSA-ch7p-8m55-hr5j.json | 12 +++--------- .../04/GHSA-cwhc-mwv4-cfxj/GHSA-cwhc-mwv4-cfxj.json | 12 +++--------- .../04/GHSA-cwr5-qr66-jg4j/GHSA-cwr5-qr66-jg4j.json | 12 +++--------- .../04/GHSA-f226-8488-rr3p/GHSA-f226-8488-rr3p.json | 12 +++--------- .../04/GHSA-f6cc-5mf4-hmhc/GHSA-f6cc-5mf4-hmhc.json | 12 +++--------- .../04/GHSA-f6g9-34fc-hhvx/GHSA-f6g9-34fc-hhvx.json | 12 +++--------- .../04/GHSA-f75q-gjfc-pp99/GHSA-f75q-gjfc-pp99.json | 12 +++--------- .../04/GHSA-f7hc-7g36-w53c/GHSA-f7hc-7g36-w53c.json | 12 +++--------- .../04/GHSA-f9hp-fgg5-7659/GHSA-f9hp-fgg5-7659.json | 12 +++--------- .../04/GHSA-fgq5-97jj-jmcq/GHSA-fgq5-97jj-jmcq.json | 12 +++--------- .../04/GHSA-fh4q-8w8x-42wv/GHSA-fh4q-8w8x-42wv.json | 12 +++--------- .../04/GHSA-fh9x-3h5x-gmx4/GHSA-fh9x-3h5x-gmx4.json | 12 +++--------- .../04/GHSA-frcm-cm8j-hpw7/GHSA-frcm-cm8j-hpw7.json | 12 +++--------- .../04/GHSA-fvph-hq46-669j/GHSA-fvph-hq46-669j.json | 12 +++--------- .../04/GHSA-fvq6-vx4f-wh62/GHSA-fvq6-vx4f-wh62.json | 12 +++--------- .../04/GHSA-g44v-5967-q2q9/GHSA-g44v-5967-q2q9.json | 12 +++--------- .../04/GHSA-g69g-278f-w7r2/GHSA-g69g-278f-w7r2.json | 12 +++--------- .../04/GHSA-g7hr-jcr3-qr24/GHSA-g7hr-jcr3-qr24.json | 12 +++--------- .../04/GHSA-g7q3-qg8x-gfjw/GHSA-g7q3-qg8x-gfjw.json | 12 +++--------- .../04/GHSA-g8hr-vgx8-5639/GHSA-g8hr-vgx8-5639.json | 12 +++--------- .../04/GHSA-gcqg-g524-q8fj/GHSA-gcqg-g524-q8fj.json | 12 +++--------- .../04/GHSA-gfxr-93wv-9pp3/GHSA-gfxr-93wv-9pp3.json | 12 +++--------- .../04/GHSA-gj6m-2h53-62ch/GHSA-gj6m-2h53-62ch.json | 12 +++--------- .../04/GHSA-gjvj-mxx4-qrvq/GHSA-gjvj-mxx4-qrvq.json | 12 +++--------- .../04/GHSA-gm78-rpv9-p8x5/GHSA-gm78-rpv9-p8x5.json | 12 +++--------- .../04/GHSA-h3h6-mm98-c6p9/GHSA-h3h6-mm98-c6p9.json | 12 +++--------- .../04/GHSA-h4hw-89ff-xxj6/GHSA-h4hw-89ff-xxj6.json | 12 +++--------- .../04/GHSA-h4v9-xfr4-ch4g/GHSA-h4v9-xfr4-ch4g.json | 12 +++--------- .../04/GHSA-h6p7-m8x8-8xgp/GHSA-h6p7-m8x8-8xgp.json | 12 +++--------- .../04/GHSA-h73j-wj9f-w749/GHSA-h73j-wj9f-w749.json | 12 +++--------- .../04/GHSA-h8c5-whqm-fhgj/GHSA-h8c5-whqm-fhgj.json | 12 +++--------- .../04/GHSA-hc8c-mwgj-737m/GHSA-hc8c-mwgj-737m.json | 12 +++--------- .../04/GHSA-hf7m-5pcw-jhm9/GHSA-hf7m-5pcw-jhm9.json | 12 +++--------- .../04/GHSA-hfvp-w94h-cf79/GHSA-hfvp-w94h-cf79.json | 12 +++--------- .../04/GHSA-hg37-fr4j-j65p/GHSA-hg37-fr4j-j65p.json | 12 +++--------- .../04/GHSA-hjj2-rgq8-8f3v/GHSA-hjj2-rgq8-8f3v.json | 12 +++--------- .../04/GHSA-hq6v-cqr3-x8q4/GHSA-hq6v-cqr3-x8q4.json | 12 +++--------- .../04/GHSA-hwr7-hw2w-cf69/GHSA-hwr7-hw2w-cf69.json | 12 +++--------- .../04/GHSA-j5mw-wq25-jc27/GHSA-j5mw-wq25-jc27.json | 12 +++--------- .../04/GHSA-j966-frr2-8mv3/GHSA-j966-frr2-8mv3.json | 8 ++------ .../04/GHSA-jfp8-f5ch-mpxj/GHSA-jfp8-f5ch-mpxj.json | 12 +++--------- .../04/GHSA-jjpg-phm3-xf38/GHSA-jjpg-phm3-xf38.json | 12 +++--------- .../04/GHSA-jx75-hx64-35mh/GHSA-jx75-hx64-35mh.json | 12 +++--------- .../04/GHSA-m4jp-mh99-vhwh/GHSA-m4jp-mh99-vhwh.json | 12 +++--------- .../04/GHSA-m52g-c6j4-c9q9/GHSA-m52g-c6j4-c9q9.json | 12 +++--------- .../04/GHSA-m664-4g2h-4p39/GHSA-m664-4g2h-4p39.json | 12 +++--------- .../04/GHSA-m6cf-98c3-98p5/GHSA-m6cf-98c3-98p5.json | 12 +++--------- .../04/GHSA-m6m4-jfcg-hj5w/GHSA-m6m4-jfcg-hj5w.json | 12 +++--------- .../04/GHSA-m84w-pr2q-p5w6/GHSA-m84w-pr2q-p5w6.json | 12 +++--------- .../04/GHSA-m9h2-j85p-w95r/GHSA-m9h2-j85p-w95r.json | 12 +++--------- .../04/GHSA-mg4r-5c5w-3mrx/GHSA-mg4r-5c5w-3mrx.json | 12 +++--------- .../04/GHSA-mjcj-xgcf-w8x7/GHSA-mjcj-xgcf-w8x7.json | 12 +++--------- .../04/GHSA-mmrr-cxj4-wjr9/GHSA-mmrr-cxj4-wjr9.json | 12 +++--------- .../04/GHSA-mr57-xj49-8455/GHSA-mr57-xj49-8455.json | 12 +++--------- .../04/GHSA-mr7m-j7jh-35hw/GHSA-mr7m-j7jh-35hw.json | 12 +++--------- .../04/GHSA-p3pq-pvrp-rwx3/GHSA-p3pq-pvrp-rwx3.json | 12 +++--------- .../04/GHSA-p492-gw5r-h3qq/GHSA-p492-gw5r-h3qq.json | 12 +++--------- .../04/GHSA-p4c3-4p45-qjfp/GHSA-p4c3-4p45-qjfp.json | 12 +++--------- .../04/GHSA-p4jh-q59v-v76c/GHSA-p4jh-q59v-v76c.json | 12 +++--------- .../04/GHSA-p6pc-hx95-227x/GHSA-p6pc-hx95-227x.json | 12 +++--------- .../04/GHSA-p7j9-6f6w-fhcg/GHSA-p7j9-6f6w-fhcg.json | 12 +++--------- .../04/GHSA-pg3w-3352-ph3c/GHSA-pg3w-3352-ph3c.json | 12 +++--------- .../04/GHSA-pg4x-f3qp-5vxc/GHSA-pg4x-f3qp-5vxc.json | 12 +++--------- .../04/GHSA-phc7-j7hq-369x/GHSA-phc7-j7hq-369x.json | 12 +++--------- .../04/GHSA-pjrr-69h2-f25x/GHSA-pjrr-69h2-f25x.json | 12 +++--------- .../04/GHSA-pq63-4vgj-rxhv/GHSA-pq63-4vgj-rxhv.json | 12 +++--------- .../04/GHSA-pvv5-wpf8-qq2m/GHSA-pvv5-wpf8-qq2m.json | 12 +++--------- .../04/GHSA-q6cx-wgqr-cmmx/GHSA-q6cx-wgqr-cmmx.json | 12 +++--------- .../04/GHSA-qfm9-fxw9-qx37/GHSA-qfm9-fxw9-qx37.json | 12 +++--------- .../04/GHSA-qfmq-375w-cfvc/GHSA-qfmq-375w-cfvc.json | 12 +++--------- .../04/GHSA-qg73-p34x-r86c/GHSA-qg73-p34x-r86c.json | 12 +++--------- .../04/GHSA-qgcw-frwg-8fc6/GHSA-qgcw-frwg-8fc6.json | 12 +++--------- .../04/GHSA-qhjw-939w-vp4h/GHSA-qhjw-939w-vp4h.json | 12 +++--------- .../04/GHSA-qpvf-9394-g8pr/GHSA-qpvf-9394-g8pr.json | 12 +++--------- .../04/GHSA-qvp9-3f4h-9jjj/GHSA-qvp9-3f4h-9jjj.json | 12 +++--------- .../04/GHSA-qx32-c2q2-cgcr/GHSA-qx32-c2q2-cgcr.json | 12 +++--------- .../04/GHSA-r3jv-3fjc-hr47/GHSA-r3jv-3fjc-hr47.json | 12 +++--------- .../04/GHSA-r5vr-fp8w-fm26/GHSA-r5vr-fp8w-fm26.json | 12 +++--------- .../04/GHSA-r75m-8jm4-cmqh/GHSA-r75m-8jm4-cmqh.json | 12 +++--------- .../04/GHSA-r93c-fqgf-vv5h/GHSA-r93c-fqgf-vv5h.json | 12 +++--------- .../04/GHSA-rf64-vpcw-m8c6/GHSA-rf64-vpcw-m8c6.json | 12 +++--------- .../04/GHSA-rfg7-c2cq-64vm/GHSA-rfg7-c2cq-64vm.json | 12 +++--------- .../04/GHSA-rj84-m96v-25xp/GHSA-rj84-m96v-25xp.json | 12 +++--------- .../04/GHSA-rm2p-jhqp-33q2/GHSA-rm2p-jhqp-33q2.json | 12 +++--------- .../04/GHSA-rp6m-6h7f-9mhj/GHSA-rp6m-6h7f-9mhj.json | 12 +++--------- .../04/GHSA-rpm8-r324-vq2q/GHSA-rpm8-r324-vq2q.json | 12 +++--------- .../04/GHSA-rr6j-c7gr-v839/GHSA-rr6j-c7gr-v839.json | 12 +++--------- .../04/GHSA-rrv7-q4hc-8648/GHSA-rrv7-q4hc-8648.json | 12 +++--------- .../04/GHSA-rx95-529p-86fc/GHSA-rx95-529p-86fc.json | 8 ++------ .../04/GHSA-rxcm-wv5c-68gr/GHSA-rxcm-wv5c-68gr.json | 12 +++--------- .../04/GHSA-rxgx-f27q-r49h/GHSA-rxgx-f27q-r49h.json | 12 +++--------- .../04/GHSA-rxj6-jfgp-j36w/GHSA-rxj6-jfgp-j36w.json | 12 +++--------- .../04/GHSA-v2xf-m5vw-px6j/GHSA-v2xf-m5vw-px6j.json | 12 +++--------- .../04/GHSA-v492-qprp-rvhr/GHSA-v492-qprp-rvhr.json | 12 +++--------- .../04/GHSA-v4h7-vp6f-m3c3/GHSA-v4h7-vp6f-m3c3.json | 12 +++--------- .../04/GHSA-v6fh-54gr-cvvc/GHSA-v6fh-54gr-cvvc.json | 12 +++--------- .../04/GHSA-v6q8-f3pg-p46q/GHSA-v6q8-f3pg-p46q.json | 12 +++--------- .../04/GHSA-v6wg-hp5f-hcpq/GHSA-v6wg-hp5f-hcpq.json | 12 +++--------- .../04/GHSA-v7hr-fgm3-v42f/GHSA-v7hr-fgm3-v42f.json | 12 +++--------- .../04/GHSA-v935-84rg-x298/GHSA-v935-84rg-x298.json | 12 +++--------- .../04/GHSA-vhf7-p3q6-249f/GHSA-vhf7-p3q6-249f.json | 12 +++--------- .../04/GHSA-vj74-5mp3-38mp/GHSA-vj74-5mp3-38mp.json | 12 +++--------- .../04/GHSA-vv4v-whgw-9284/GHSA-vv4v-whgw-9284.json | 12 +++--------- .../04/GHSA-vw27-grvr-mcmx/GHSA-vw27-grvr-mcmx.json | 12 +++--------- .../04/GHSA-vwgc-f9cf-rp7w/GHSA-vwgc-f9cf-rp7w.json | 4 +--- .../04/GHSA-vwxm-8m4v-97wg/GHSA-vwxm-8m4v-97wg.json | 12 +++--------- .../04/GHSA-w27r-2xr6-37p7/GHSA-w27r-2xr6-37p7.json | 12 +++--------- .../04/GHSA-w7j3-x6cj-xxx3/GHSA-w7j3-x6cj-xxx3.json | 12 +++--------- .../04/GHSA-w8mp-vfgg-7w4g/GHSA-w8mp-vfgg-7w4g.json | 12 +++--------- .../04/GHSA-w979-wcrr-7whw/GHSA-w979-wcrr-7whw.json | 8 ++------ .../04/GHSA-w97w-7vwf-xwfj/GHSA-w97w-7vwf-xwfj.json | 12 +++--------- .../04/GHSA-wf2p-c7pp-qfjr/GHSA-wf2p-c7pp-qfjr.json | 12 +++--------- .../04/GHSA-wmcx-jvg5-m384/GHSA-wmcx-jvg5-m384.json | 12 +++--------- .../04/GHSA-wv58-cxvm-2w2g/GHSA-wv58-cxvm-2w2g.json | 12 +++--------- .../04/GHSA-ww9x-2fxq-63hf/GHSA-ww9x-2fxq-63hf.json | 12 +++--------- .../04/GHSA-wx9x-xhr6-89jv/GHSA-wx9x-xhr6-89jv.json | 12 +++--------- .../04/GHSA-x4wm-prrg-m255/GHSA-x4wm-prrg-m255.json | 12 +++--------- .../04/GHSA-xcpv-777v-f4v3/GHSA-xcpv-777v-f4v3.json | 12 +++--------- .../04/GHSA-xf5q-rhr2-cvv9/GHSA-xf5q-rhr2-cvv9.json | 12 +++--------- .../04/GHSA-xfcm-6xgr-cx4p/GHSA-xfcm-6xgr-cx4p.json | 12 +++--------- .../04/GHSA-xrg8-2wfr-qxc5/GHSA-xrg8-2wfr-qxc5.json | 12 +++--------- .../04/GHSA-xvrf-gvhf-wxf6/GHSA-xvrf-gvhf-wxf6.json | 12 +++--------- .../04/GHSA-xxmm-cxv2-23w9/GHSA-xxmm-cxv2-23w9.json | 12 +++--------- .../05/GHSA-235v-x92p-pm5g/GHSA-235v-x92p-pm5g.json | 8 ++------ .../05/GHSA-23p3-rx33-wm34/GHSA-23p3-rx33-wm34.json | 8 ++------ .../05/GHSA-23xg-w5j8-3ff2/GHSA-23xg-w5j8-3ff2.json | 8 ++------ .../05/GHSA-26hg-8v7r-7fj4/GHSA-26hg-8v7r-7fj4.json | 12 +++--------- .../05/GHSA-28g5-frp5-r2wv/GHSA-28g5-frp5-r2wv.json | 12 +++--------- .../05/GHSA-296g-m5cw-f8p9/GHSA-296g-m5cw-f8p9.json | 12 +++--------- .../05/GHSA-2cpf-r6vv-ph3v/GHSA-2cpf-r6vv-ph3v.json | 12 +++--------- .../05/GHSA-2f9x-cj33-r657/GHSA-2f9x-cj33-r657.json | 12 +++--------- .../05/GHSA-2g9r-9f99-v27g/GHSA-2g9r-9f99-v27g.json | 4 +--- .../05/GHSA-2j5p-cf62-8pj2/GHSA-2j5p-cf62-8pj2.json | 12 +++--------- .../05/GHSA-2m3h-85m6-j7q7/GHSA-2m3h-85m6-j7q7.json | 12 +++--------- .../05/GHSA-2p3q-x3x4-ww4x/GHSA-2p3q-x3x4-ww4x.json | 12 +++--------- .../05/GHSA-2rqw-4rc9-x55v/GHSA-2rqw-4rc9-x55v.json | 8 ++------ .../05/GHSA-2v7r-x2hj-38c2/GHSA-2v7r-x2hj-38c2.json | 8 ++------ .../05/GHSA-2vhw-349f-2gq5/GHSA-2vhw-349f-2gq5.json | 12 +++--------- .../05/GHSA-2vv2-2vj2-h668/GHSA-2vv2-2vj2-h668.json | 12 +++--------- .../05/GHSA-2wjv-2phj-464p/GHSA-2wjv-2phj-464p.json | 12 +++--------- .../05/GHSA-2wrf-hf7j-cx32/GHSA-2wrf-hf7j-cx32.json | 8 ++------ .../05/GHSA-2x2h-mgrr-fp68/GHSA-2x2h-mgrr-fp68.json | 8 ++------ .../05/GHSA-32pr-fhrf-3qp7/GHSA-32pr-fhrf-3qp7.json | 8 ++------ .../05/GHSA-33rh-fh49-758p/GHSA-33rh-fh49-758p.json | 12 +++--------- .../05/GHSA-34jf-34wf-852g/GHSA-34jf-34wf-852g.json | 12 +++--------- .../05/GHSA-36h3-8635-w5mx/GHSA-36h3-8635-w5mx.json | 12 +++--------- .../05/GHSA-378c-82xp-8xq7/GHSA-378c-82xp-8xq7.json | 12 +++--------- .../05/GHSA-3797-gmjf-45gm/GHSA-3797-gmjf-45gm.json | 4 +--- .../05/GHSA-37wp-r5gr-q42h/GHSA-37wp-r5gr-q42h.json | 12 +++--------- .../05/GHSA-389w-7x48-4h9g/GHSA-389w-7x48-4h9g.json | 8 ++------ .../05/GHSA-397g-f6c8-vgwj/GHSA-397g-f6c8-vgwj.json | 8 ++------ .../05/GHSA-39c2-pr35-fgxx/GHSA-39c2-pr35-fgxx.json | 8 ++------ .../05/GHSA-3c4x-fg4r-33wq/GHSA-3c4x-fg4r-33wq.json | 8 ++------ .../05/GHSA-3cj6-6mmq-x25x/GHSA-3cj6-6mmq-x25x.json | 12 +++--------- .../05/GHSA-3hpx-h84h-gq2r/GHSA-3hpx-h84h-gq2r.json | 8 ++------ .../05/GHSA-3jcm-w957-2h9v/GHSA-3jcm-w957-2h9v.json | 12 +++--------- .../05/GHSA-3mcx-mwcf-7jc7/GHSA-3mcx-mwcf-7jc7.json | 12 +++--------- .../05/GHSA-3mjh-34gx-h2r7/GHSA-3mjh-34gx-h2r7.json | 12 +++--------- .../05/GHSA-3mw4-pmpc-h76j/GHSA-3mw4-pmpc-h76j.json | 8 ++------ .../05/GHSA-3pqr-r447-f4mh/GHSA-3pqr-r447-f4mh.json | 12 +++--------- .../05/GHSA-3q77-c23g-8p2h/GHSA-3q77-c23g-8p2h.json | 12 +++--------- .../05/GHSA-3qh5-7339-m5xf/GHSA-3qh5-7339-m5xf.json | 12 +++--------- .../05/GHSA-3vgw-chq8-wqp9/GHSA-3vgw-chq8-wqp9.json | 8 ++------ .../05/GHSA-42p5-fr58-hv5x/GHSA-42p5-fr58-hv5x.json | 8 ++------ .../05/GHSA-42v9-rj5j-m2v5/GHSA-42v9-rj5j-m2v5.json | 12 +++--------- .../05/GHSA-435h-hqgw-fqgf/GHSA-435h-hqgw-fqgf.json | 8 ++------ .../05/GHSA-437p-qmwc-q8jh/GHSA-437p-qmwc-q8jh.json | 12 +++--------- .../05/GHSA-4387-mfcp-5cpf/GHSA-4387-mfcp-5cpf.json | 12 +++--------- .../05/GHSA-43fm-mhm5-jf78/GHSA-43fm-mhm5-jf78.json | 8 ++------ .../05/GHSA-43fm-r495-g6gq/GHSA-43fm-r495-g6gq.json | 8 ++------ .../05/GHSA-43x3-5v8m-8xf2/GHSA-43x3-5v8m-8xf2.json | 8 ++------ .../05/GHSA-44cp-gcp7-fxgm/GHSA-44cp-gcp7-fxgm.json | 8 ++------ .../05/GHSA-45fh-j4qp-56jm/GHSA-45fh-j4qp-56jm.json | 8 ++------ .../05/GHSA-4635-6x6c-c5r7/GHSA-4635-6x6c-c5r7.json | 8 ++------ .../05/GHSA-4653-jj47-h6j5/GHSA-4653-jj47-h6j5.json | 12 +++--------- .../05/GHSA-46jr-vf5g-x3fg/GHSA-46jr-vf5g-x3fg.json | 8 ++------ .../05/GHSA-48gx-3vxx-x8h6/GHSA-48gx-3vxx-x8h6.json | 12 +++--------- .../05/GHSA-48rp-gmw7-r283/GHSA-48rp-gmw7-r283.json | 8 ++------ .../05/GHSA-48xv-3rm6-fh3c/GHSA-48xv-3rm6-fh3c.json | 12 +++--------- .../05/GHSA-494p-63gx-3f9p/GHSA-494p-63gx-3f9p.json | 8 ++------ .../05/GHSA-49h2-5v2g-m54m/GHSA-49h2-5v2g-m54m.json | 12 +++--------- .../05/GHSA-4fv4-55mw-p3v4/GHSA-4fv4-55mw-p3v4.json | 8 ++------ .../05/GHSA-4fxx-mff3-3wwr/GHSA-4fxx-mff3-3wwr.json | 12 +++--------- .../05/GHSA-4gcx-h2fv-f6c9/GHSA-4gcx-h2fv-f6c9.json | 12 +++--------- .../05/GHSA-4gwr-f7fq-56wc/GHSA-4gwr-f7fq-56wc.json | 4 +--- .../05/GHSA-4j46-43h4-q52j/GHSA-4j46-43h4-q52j.json | 12 +++--------- .../05/GHSA-4jcj-9hpq-7w3m/GHSA-4jcj-9hpq-7w3m.json | 8 ++------ .../05/GHSA-4jwv-x3w6-42jv/GHSA-4jwv-x3w6-42jv.json | 12 +++--------- .../05/GHSA-4mxw-7xgq-cm5c/GHSA-4mxw-7xgq-cm5c.json | 4 +--- .../05/GHSA-4r4r-223f-8hjj/GHSA-4r4r-223f-8hjj.json | 8 ++------ .../05/GHSA-4r5w-h6p7-33h7/GHSA-4r5w-h6p7-33h7.json | 12 +++--------- .../05/GHSA-4rx9-gpfg-xh6c/GHSA-4rx9-gpfg-xh6c.json | 12 +++--------- .../05/GHSA-4v4v-6cx5-x258/GHSA-4v4v-6cx5-x258.json | 12 +++--------- .../05/GHSA-4wr2-m35f-fgqf/GHSA-4wr2-m35f-fgqf.json | 12 +++--------- .../05/GHSA-4wrg-fcqh-8cg6/GHSA-4wrg-fcqh-8cg6.json | 12 +++--------- .../05/GHSA-4x5f-xw5j-gv58/GHSA-4x5f-xw5j-gv58.json | 12 +++--------- .../05/GHSA-4xcq-p4x2-qg99/GHSA-4xcq-p4x2-qg99.json | 8 ++------ .../05/GHSA-4xrq-chxw-6p75/GHSA-4xrq-chxw-6p75.json | 12 +++--------- .../05/GHSA-52f2-92w4-mx97/GHSA-52f2-92w4-mx97.json | 4 +--- .../05/GHSA-53jf-8wq6-r7jr/GHSA-53jf-8wq6-r7jr.json | 12 +++--------- .../05/GHSA-543h-m4r4-6jx2/GHSA-543h-m4r4-6jx2.json | 8 ++------ .../05/GHSA-55jh-j327-hq52/GHSA-55jh-j327-hq52.json | 8 ++------ .../05/GHSA-55p9-927h-wfvq/GHSA-55p9-927h-wfvq.json | 8 ++------ .../05/GHSA-55qq-3jg8-6rq4/GHSA-55qq-3jg8-6rq4.json | 12 +++--------- .../05/GHSA-5634-wp84-cm8x/GHSA-5634-wp84-cm8x.json | 12 +++--------- .../05/GHSA-5767-3wrr-r2px/GHSA-5767-3wrr-r2px.json | 12 +++--------- .../05/GHSA-5c78-vcj8-vwr5/GHSA-5c78-vcj8-vwr5.json | 12 +++--------- .../05/GHSA-5cgw-69cq-5ggq/GHSA-5cgw-69cq-5ggq.json | 12 +++--------- .../05/GHSA-5g86-qjm3-wfq4/GHSA-5g86-qjm3-wfq4.json | 4 +--- .../05/GHSA-5gw3-gj8j-f364/GHSA-5gw3-gj8j-f364.json | 12 +++--------- .../05/GHSA-5gxw-2hpv-42v7/GHSA-5gxw-2hpv-42v7.json | 12 +++--------- .../05/GHSA-5h36-xpf2-wm7c/GHSA-5h36-xpf2-wm7c.json | 8 ++------ .../05/GHSA-5m7w-q5h8-8h9j/GHSA-5m7w-q5h8-8h9j.json | 8 ++------ .../05/GHSA-5rv6-786c-qwh8/GHSA-5rv6-786c-qwh8.json | 12 +++--------- .../05/GHSA-5vmr-4758-3pqr/GHSA-5vmr-4758-3pqr.json | 4 +--- .../05/GHSA-5vvx-h4ff-cgq4/GHSA-5vvx-h4ff-cgq4.json | 8 ++------ .../05/GHSA-5wpq-6r82-j39f/GHSA-5wpq-6r82-j39f.json | 12 +++--------- .../05/GHSA-5wqx-v74v-cwq8/GHSA-5wqx-v74v-cwq8.json | 12 +++--------- .../05/GHSA-5xmj-47rh-c64f/GHSA-5xmj-47rh-c64f.json | 12 +++--------- .../05/GHSA-624j-v5v7-qjpg/GHSA-624j-v5v7-qjpg.json | 8 ++------ .../05/GHSA-62vh-cjp3-26j8/GHSA-62vh-cjp3-26j8.json | 12 +++--------- .../05/GHSA-632h-99v3-p9pw/GHSA-632h-99v3-p9pw.json | 8 ++------ .../05/GHSA-647j-cjrc-j33x/GHSA-647j-cjrc-j33x.json | 4 +--- .../05/GHSA-67r3-q6qw-jw7p/GHSA-67r3-q6qw-jw7p.json | 12 +++--------- .../05/GHSA-67xg-7gqq-pccf/GHSA-67xg-7gqq-pccf.json | 8 ++------ .../05/GHSA-683v-gpq7-jpjg/GHSA-683v-gpq7-jpjg.json | 12 +++--------- .../05/GHSA-689j-fxw4-9jvq/GHSA-689j-fxw4-9jvq.json | 8 ++------ .../05/GHSA-68qq-h9q4-8pq4/GHSA-68qq-h9q4-8pq4.json | 12 +++--------- .../05/GHSA-6cj3-3fxc-vmr2/GHSA-6cj3-3fxc-vmr2.json | 8 ++------ .../05/GHSA-6f2w-97m7-p3vw/GHSA-6f2w-97m7-p3vw.json | 12 +++--------- .../05/GHSA-6f38-24fq-5q25/GHSA-6f38-24fq-5q25.json | 12 +++--------- .../05/GHSA-6fq7-r3q7-fv44/GHSA-6fq7-r3q7-fv44.json | 12 +++--------- .../05/GHSA-6g8h-c25m-ph57/GHSA-6g8h-c25m-ph57.json | 8 ++------ .../05/GHSA-6gc7-mhjg-cg5c/GHSA-6gc7-mhjg-cg5c.json | 8 ++------ .../05/GHSA-6jxg-4jpx-jgfm/GHSA-6jxg-4jpx-jgfm.json | 8 ++------ .../05/GHSA-6pgf-fcrx-j998/GHSA-6pgf-fcrx-j998.json | 12 +++--------- .../05/GHSA-6pqp-3jf8-m667/GHSA-6pqp-3jf8-m667.json | 12 +++--------- .../05/GHSA-6qhj-5898-8677/GHSA-6qhj-5898-8677.json | 8 ++------ .../05/GHSA-6whr-hpw2-4rj7/GHSA-6whr-hpw2-4rj7.json | 12 +++--------- .../05/GHSA-6wrg-vw54-78h2/GHSA-6wrg-vw54-78h2.json | 8 ++------ .../05/GHSA-6wrv-35h9-3pj7/GHSA-6wrv-35h9-3pj7.json | 12 +++--------- .../05/GHSA-6wvc-hc5h-7fqv/GHSA-6wvc-hc5h-7fqv.json | 12 +++--------- .../05/GHSA-6x34-4pjh-4442/GHSA-6x34-4pjh-4442.json | 12 +++--------- .../05/GHSA-72jg-wqh4-qw67/GHSA-72jg-wqh4-qw67.json | 12 +++--------- .../05/GHSA-73vm-8jvg-jpqh/GHSA-73vm-8jvg-jpqh.json | 8 ++------ .../05/GHSA-7459-h4w5-fw6x/GHSA-7459-h4w5-fw6x.json | 8 ++------ .../05/GHSA-75m5-c552-3jp8/GHSA-75m5-c552-3jp8.json | 12 +++--------- .../05/GHSA-75wp-9wrr-h226/GHSA-75wp-9wrr-h226.json | 8 ++------ .../05/GHSA-7648-6xxf-429g/GHSA-7648-6xxf-429g.json | 12 +++--------- .../05/GHSA-78cq-mwm8-f6xp/GHSA-78cq-mwm8-f6xp.json | 12 +++--------- .../05/GHSA-7f25-77mc-425h/GHSA-7f25-77mc-425h.json | 8 ++------ .../05/GHSA-7gcr-rp9v-fqcf/GHSA-7gcr-rp9v-fqcf.json | 12 +++--------- .../05/GHSA-7grw-2xfw-qjvm/GHSA-7grw-2xfw-qjvm.json | 4 +--- .../05/GHSA-7hhh-9v5f-7qv9/GHSA-7hhh-9v5f-7qv9.json | 8 ++------ .../05/GHSA-7jxw-rmvp-2543/GHSA-7jxw-rmvp-2543.json | 8 ++------ .../05/GHSA-7mch-5p8p-x68j/GHSA-7mch-5p8p-x68j.json | 8 ++------ .../05/GHSA-7mrg-rx92-2rfc/GHSA-7mrg-rx92-2rfc.json | 12 +++--------- .../05/GHSA-7mv4-3q74-r9q2/GHSA-7mv4-3q74-r9q2.json | 12 +++--------- .../05/GHSA-7p5p-7qq5-cc86/GHSA-7p5p-7qq5-cc86.json | 12 +++--------- .../05/GHSA-7pq2-x2gr-qh8x/GHSA-7pq2-x2gr-qh8x.json | 8 ++------ .../05/GHSA-7pwf-23g4-vh4h/GHSA-7pwf-23g4-vh4h.json | 4 +--- .../05/GHSA-7q2h-j6h8-gpm7/GHSA-7q2h-j6h8-gpm7.json | 12 +++--------- .../05/GHSA-7q4v-7cxx-h42j/GHSA-7q4v-7cxx-h42j.json | 12 +++--------- .../05/GHSA-7qv8-fcr4-9523/GHSA-7qv8-fcr4-9523.json | 12 +++--------- .../05/GHSA-7rmq-9jg5-p74g/GHSA-7rmq-9jg5-p74g.json | 8 ++------ .../05/GHSA-7rph-qx8r-r9gw/GHSA-7rph-qx8r-r9gw.json | 8 ++------ .../05/GHSA-7w4p-5m4j-2jfc/GHSA-7w4p-5m4j-2jfc.json | 12 +++--------- .../05/GHSA-7w73-r2r4-59x8/GHSA-7w73-r2r4-59x8.json | 12 +++--------- .../05/GHSA-7x5p-w7r4-hq6m/GHSA-7x5p-w7r4-hq6m.json | 12 +++--------- .../05/GHSA-8272-q9p2-v9j7/GHSA-8272-q9p2-v9j7.json | 8 ++------ .../05/GHSA-838g-g793-hh7g/GHSA-838g-g793-hh7g.json | 12 +++--------- .../05/GHSA-8458-39qw-vw27/GHSA-8458-39qw-vw27.json | 12 +++--------- .../05/GHSA-849w-wv4j-9jqv/GHSA-849w-wv4j-9jqv.json | 8 ++------ .../05/GHSA-85jg-q38h-8h97/GHSA-85jg-q38h-8h97.json | 12 +++--------- .../05/GHSA-862c-64g7-8p44/GHSA-862c-64g7-8p44.json | 12 +++--------- .../05/GHSA-864v-vr6f-7f4j/GHSA-864v-vr6f-7f4j.json | 8 ++------ .../05/GHSA-86cc-wh6w-cw2h/GHSA-86cc-wh6w-cw2h.json | 12 +++--------- .../05/GHSA-86wp-7cjf-fh2f/GHSA-86wp-7cjf-fh2f.json | 4 +--- .../05/GHSA-882h-r829-x8q5/GHSA-882h-r829-x8q5.json | 12 +++--------- .../05/GHSA-88cp-7c7w-6vx6/GHSA-88cp-7c7w-6vx6.json | 12 +++--------- .../05/GHSA-89fw-2hfj-ppp2/GHSA-89fw-2hfj-ppp2.json | 12 +++--------- .../05/GHSA-8c4p-575f-fq4h/GHSA-8c4p-575f-fq4h.json | 8 ++------ .../05/GHSA-8cq7-pp3f-m9m4/GHSA-8cq7-pp3f-m9m4.json | 8 ++------ .../05/GHSA-8cw6-v85x-2m9p/GHSA-8cw6-v85x-2m9p.json | 12 +++--------- .../05/GHSA-8fc5-c477-8j2w/GHSA-8fc5-c477-8j2w.json | 8 ++------ .../05/GHSA-8gmw-3fcx-gm64/GHSA-8gmw-3fcx-gm64.json | 4 +--- .../05/GHSA-8h8f-m8mg-qwg8/GHSA-8h8f-m8mg-qwg8.json | 4 +--- .../05/GHSA-8hvv-4qf7-wmrv/GHSA-8hvv-4qf7-wmrv.json | 8 ++------ .../05/GHSA-8mc8-gh78-5fvq/GHSA-8mc8-gh78-5fvq.json | 12 +++--------- .../05/GHSA-8mjx-247g-8657/GHSA-8mjx-247g-8657.json | 8 ++------ .../05/GHSA-8qq4-4mf9-45qp/GHSA-8qq4-4mf9-45qp.json | 12 +++--------- .../05/GHSA-8qqf-qhmm-w3cm/GHSA-8qqf-qhmm-w3cm.json | 4 +--- .../05/GHSA-8w2r-w7pw-v78c/GHSA-8w2r-w7pw-v78c.json | 12 +++--------- .../05/GHSA-8wh6-v49g-v744/GHSA-8wh6-v49g-v744.json | 12 +++--------- .../05/GHSA-8x99-rqcq-6fvg/GHSA-8x99-rqcq-6fvg.json | 12 +++--------- .../05/GHSA-939r-7q8p-37qg/GHSA-939r-7q8p-37qg.json | 12 +++--------- .../05/GHSA-95wm-mm55-cxhx/GHSA-95wm-mm55-cxhx.json | 4 +--- .../05/GHSA-97vq-mgmh-2r8q/GHSA-97vq-mgmh-2r8q.json | 4 +--- .../05/GHSA-987m-f965-83w4/GHSA-987m-f965-83w4.json | 12 +++--------- .../05/GHSA-995g-c6vj-4959/GHSA-995g-c6vj-4959.json | 12 +++--------- .../05/GHSA-9997-3397-vj9g/GHSA-9997-3397-vj9g.json | 8 ++------ .../05/GHSA-9ch6-gr3w-j9vf/GHSA-9ch6-gr3w-j9vf.json | 4 +--- .../05/GHSA-9cxv-jvg2-hxq8/GHSA-9cxv-jvg2-hxq8.json | 12 +++--------- .../05/GHSA-9g78-xvpc-6fhg/GHSA-9g78-xvpc-6fhg.json | 8 ++------ .../05/GHSA-9gh7-v5wg-4f3q/GHSA-9gh7-v5wg-4f3q.json | 12 +++--------- .../05/GHSA-9pcm-2c87-cmr2/GHSA-9pcm-2c87-cmr2.json | 12 +++--------- .../05/GHSA-9q2w-3c47-gq6j/GHSA-9q2w-3c47-gq6j.json | 12 +++--------- .../05/GHSA-9q9r-c9rx-65r2/GHSA-9q9r-c9rx-65r2.json | 8 ++------ .../05/GHSA-9qr2-f94j-cm59/GHSA-9qr2-f94j-cm59.json | 12 +++--------- .../05/GHSA-9rm7-vxm7-wq42/GHSA-9rm7-vxm7-wq42.json | 12 +++--------- .../05/GHSA-9rpg-w3f6-9mpm/GHSA-9rpg-w3f6-9mpm.json | 8 ++------ .../05/GHSA-c2qp-x363-pmpr/GHSA-c2qp-x363-pmpr.json | 8 ++------ .../05/GHSA-c3mj-6473-8rrx/GHSA-c3mj-6473-8rrx.json | 12 +++--------- .../05/GHSA-c453-37mp-9fx2/GHSA-c453-37mp-9fx2.json | 8 ++------ .../05/GHSA-c4c3-828j-hx3w/GHSA-c4c3-828j-hx3w.json | 12 +++--------- .../05/GHSA-c4hc-x3gr-85q7/GHSA-c4hc-x3gr-85q7.json | 8 ++------ .../05/GHSA-c4hv-hmhc-gj65/GHSA-c4hv-hmhc-gj65.json | 8 ++------ .../05/GHSA-c59p-qfxj-cxm7/GHSA-c59p-qfxj-cxm7.json | 12 +++--------- .../05/GHSA-c5jh-vrhw-3469/GHSA-c5jh-vrhw-3469.json | 12 +++--------- .../05/GHSA-c6pv-qcpj-v34m/GHSA-c6pv-qcpj-v34m.json | 8 ++------ .../05/GHSA-c6x6-whcr-cxp5/GHSA-c6x6-whcr-cxp5.json | 12 +++--------- .../05/GHSA-c9wh-fj9q-2xrv/GHSA-c9wh-fj9q-2xrv.json | 12 +++--------- .../05/GHSA-cc9g-8gq4-65mp/GHSA-cc9g-8gq4-65mp.json | 4 +--- .../05/GHSA-ccj2-xhg7-jrxc/GHSA-ccj2-xhg7-jrxc.json | 12 +++--------- .../05/GHSA-cg2w-mf57-v7rg/GHSA-cg2w-mf57-v7rg.json | 4 +--- .../05/GHSA-cgf9-gjp4-6wg6/GHSA-cgf9-gjp4-6wg6.json | 8 ++------ .../05/GHSA-cggv-m6ff-v652/GHSA-cggv-m6ff-v652.json | 12 +++--------- .../05/GHSA-cjpf-59h6-hrc4/GHSA-cjpf-59h6-hrc4.json | 12 +++--------- .../05/GHSA-cmcx-h36r-grrw/GHSA-cmcx-h36r-grrw.json | 8 ++------ .../05/GHSA-cmm9-mgm5-9r42/GHSA-cmm9-mgm5-9r42.json | 12 +++--------- .../05/GHSA-cp55-7mp2-6mc5/GHSA-cp55-7mp2-6mc5.json | 12 +++--------- .../05/GHSA-cp5j-vccm-fqwx/GHSA-cp5j-vccm-fqwx.json | 12 +++--------- .../05/GHSA-cpxw-453r-hpg9/GHSA-cpxw-453r-hpg9.json | 12 +++--------- .../05/GHSA-cq58-5c97-qv25/GHSA-cq58-5c97-qv25.json | 8 ++------ .../05/GHSA-cqx4-jqpq-wx8p/GHSA-cqx4-jqpq-wx8p.json | 12 +++--------- .../05/GHSA-cr92-4pr9-789r/GHSA-cr92-4pr9-789r.json | 4 +--- .../05/GHSA-cv4g-3f4x-7fw8/GHSA-cv4g-3f4x-7fw8.json | 8 ++------ .../05/GHSA-cw43-3hjf-j7v7/GHSA-cw43-3hjf-j7v7.json | 12 +++--------- .../05/GHSA-cw8x-hmwg-frr3/GHSA-cw8x-hmwg-frr3.json | 12 +++--------- .../05/GHSA-cwqx-xrfh-m9p5/GHSA-cwqx-xrfh-m9p5.json | 12 +++--------- .../05/GHSA-cx5r-gmc4-vxp6/GHSA-cx5r-gmc4-vxp6.json | 12 +++--------- .../05/GHSA-cxcg-m8xj-3xgj/GHSA-cxcg-m8xj-3xgj.json | 8 ++------ .../05/GHSA-cxmq-2hg4-w57p/GHSA-cxmq-2hg4-w57p.json | 12 +++--------- .../05/GHSA-cxvf-qrfm-r86m/GHSA-cxvf-qrfm-r86m.json | 12 +++--------- .../05/GHSA-f25w-4h6f-frg3/GHSA-f25w-4h6f-frg3.json | 4 +--- .../05/GHSA-f2fx-qc7x-585h/GHSA-f2fx-qc7x-585h.json | 12 +++--------- .../05/GHSA-f2mq-55m8-mhhw/GHSA-f2mq-55m8-mhhw.json | 12 +++--------- .../05/GHSA-f7gq-m8w9-39fh/GHSA-f7gq-m8w9-39fh.json | 12 +++--------- .../05/GHSA-f87g-8q5h-c2xf/GHSA-f87g-8q5h-c2xf.json | 4 +--- .../05/GHSA-f93f-c5gm-48jr/GHSA-f93f-c5gm-48jr.json | 8 ++------ .../05/GHSA-f9w8-q7vq-ch2g/GHSA-f9w8-q7vq-ch2g.json | 12 +++--------- .../05/GHSA-fc6g-9746-9j7g/GHSA-fc6g-9746-9j7g.json | 12 +++--------- .../05/GHSA-fch3-rmwr-242v/GHSA-fch3-rmwr-242v.json | 12 +++--------- .../05/GHSA-ff5x-7f98-9896/GHSA-ff5x-7f98-9896.json | 12 +++--------- .../05/GHSA-ffrh-qjc2-38wm/GHSA-ffrh-qjc2-38wm.json | 8 ++------ .../05/GHSA-fg28-v9fx-wgww/GHSA-fg28-v9fx-wgww.json | 12 +++--------- .../05/GHSA-fg3m-2j7h-hh89/GHSA-fg3m-2j7h-hh89.json | 8 ++------ .../05/GHSA-fgmr-rcwc-wh2p/GHSA-fgmr-rcwc-wh2p.json | 8 ++------ .../05/GHSA-fgv2-95mg-h2m9/GHSA-fgv2-95mg-h2m9.json | 8 ++------ .../05/GHSA-fh67-h479-rx4h/GHSA-fh67-h479-rx4h.json | 8 ++------ .../05/GHSA-fhjj-6gr2-w5wg/GHSA-fhjj-6gr2-w5wg.json | 12 +++--------- .../05/GHSA-fm7w-qw4q-fjmw/GHSA-fm7w-qw4q-fjmw.json | 12 +++--------- .../05/GHSA-fmpm-2fhr-jw4j/GHSA-fmpm-2fhr-jw4j.json | 12 +++--------- .../05/GHSA-fp83-q3j6-rggc/GHSA-fp83-q3j6-rggc.json | 4 +--- .../05/GHSA-fpmm-r4rm-5rg2/GHSA-fpmm-r4rm-5rg2.json | 12 +++--------- .../05/GHSA-fq7f-2c8x-fv43/GHSA-fq7f-2c8x-fv43.json | 8 ++------ .../05/GHSA-fr85-fm4x-7g26/GHSA-fr85-fm4x-7g26.json | 8 ++------ .../05/GHSA-fr8v-vr33-9j9c/GHSA-fr8v-vr33-9j9c.json | 8 ++------ .../05/GHSA-fv83-f7r2-29wc/GHSA-fv83-f7r2-29wc.json | 12 +++--------- .../05/GHSA-fvfj-h98g-m96v/GHSA-fvfj-h98g-m96v.json | 8 ++------ .../05/GHSA-fwmm-vfgg-4f84/GHSA-fwmm-vfgg-4f84.json | 12 +++--------- .../05/GHSA-g2x4-xwq5-85w3/GHSA-g2x4-xwq5-85w3.json | 8 ++------ .../05/GHSA-g5gv-j2x8-cxr2/GHSA-g5gv-j2x8-cxr2.json | 4 +--- .../05/GHSA-g5hm-28jr-53fh/GHSA-g5hm-28jr-53fh.json | 4 +--- .../05/GHSA-g5hw-7f7p-926r/GHSA-g5hw-7f7p-926r.json | 12 +++--------- .../05/GHSA-g5v3-9q89-5r4p/GHSA-g5v3-9q89-5r4p.json | 12 +++--------- .../05/GHSA-g64q-v8cm-wr64/GHSA-g64q-v8cm-wr64.json | 12 +++--------- .../05/GHSA-g65v-mxwq-6x57/GHSA-g65v-mxwq-6x57.json | 12 +++--------- .../05/GHSA-g6j2-7rfr-vwqx/GHSA-g6j2-7rfr-vwqx.json | 4 +--- .../05/GHSA-gcx3-7mfr-m9mp/GHSA-gcx3-7mfr-m9mp.json | 12 +++--------- .../05/GHSA-gfx3-chv9-3c94/GHSA-gfx3-chv9-3c94.json | 8 ++------ .../05/GHSA-gg26-hjx8-2qpm/GHSA-gg26-hjx8-2qpm.json | 12 +++--------- .../05/GHSA-gg7p-jc5w-p68m/GHSA-gg7p-jc5w-p68m.json | 12 +++--------- .../05/GHSA-ghfj-4v63-j27q/GHSA-ghfj-4v63-j27q.json | 12 +++--------- .../05/GHSA-ghj2-fhw7-mwmw/GHSA-ghj2-fhw7-mwmw.json | 12 +++--------- .../05/GHSA-ghvr-qx8j-cvxq/GHSA-ghvr-qx8j-cvxq.json | 12 +++--------- .../05/GHSA-gj62-72x5-vwvc/GHSA-gj62-72x5-vwvc.json | 4 +--- .../05/GHSA-gmhq-vm7x-p5c3/GHSA-gmhq-vm7x-p5c3.json | 12 +++--------- .../05/GHSA-gr85-jmxj-9p7g/GHSA-gr85-jmxj-9p7g.json | 12 +++--------- .../05/GHSA-grc8-24j5-x6fj/GHSA-grc8-24j5-x6fj.json | 8 ++------ .../05/GHSA-grq6-472c-73fx/GHSA-grq6-472c-73fx.json | 12 +++--------- .../05/GHSA-gv78-mqw3-qh76/GHSA-gv78-mqw3-qh76.json | 8 ++------ .../05/GHSA-gw3g-cf9f-jmp2/GHSA-gw3g-cf9f-jmp2.json | 12 +++--------- .../05/GHSA-gwj2-7fw9-8jcx/GHSA-gwj2-7fw9-8jcx.json | 4 +--- .../05/GHSA-gxv4-cqjv-gg3m/GHSA-gxv4-cqjv-gg3m.json | 8 ++------ .../05/GHSA-h245-x3rp-cpq4/GHSA-h245-x3rp-cpq4.json | 12 +++--------- .../05/GHSA-h2cg-59q7-cp5x/GHSA-h2cg-59q7-cp5x.json | 12 +++--------- .../05/GHSA-h2j6-v888-8gxm/GHSA-h2j6-v888-8gxm.json | 12 +++--------- .../05/GHSA-h3m8-vp3w-7c77/GHSA-h3m8-vp3w-7c77.json | 12 +++--------- .../05/GHSA-h48v-g2fp-97x2/GHSA-h48v-g2fp-97x2.json | 12 +++--------- .../05/GHSA-h5rh-jw67-x3pc/GHSA-h5rh-jw67-x3pc.json | 8 ++------ .../05/GHSA-h5vj-g7qc-m75w/GHSA-h5vj-g7qc-m75w.json | 12 +++--------- .../05/GHSA-h6cx-vr2q-r4vv/GHSA-h6cx-vr2q-r4vv.json | 12 +++--------- .../05/GHSA-h77r-523x-wxpw/GHSA-h77r-523x-wxpw.json | 8 ++------ .../05/GHSA-h8xc-cp2p-x3fc/GHSA-h8xc-cp2p-x3fc.json | 12 +++--------- .../05/GHSA-h9hx-frq3-jv6m/GHSA-h9hx-frq3-jv6m.json | 12 +++--------- .../05/GHSA-hc53-772h-hrgp/GHSA-hc53-772h-hrgp.json | 8 ++------ .../05/GHSA-hc63-fv38-p9mv/GHSA-hc63-fv38-p9mv.json | 4 +--- .../05/GHSA-hcgh-3x98-2p2v/GHSA-hcgh-3x98-2p2v.json | 8 ++------ .../05/GHSA-hf3r-qpxc-4ph4/GHSA-hf3r-qpxc-4ph4.json | 8 ++------ .../05/GHSA-hf62-537c-x632/GHSA-hf62-537c-x632.json | 12 +++--------- .../05/GHSA-hfvj-8h9h-mffc/GHSA-hfvj-8h9h-mffc.json | 8 ++------ .../05/GHSA-hgvv-3627-37xx/GHSA-hgvv-3627-37xx.json | 8 ++------ .../05/GHSA-hjcw-2822-8qqv/GHSA-hjcw-2822-8qqv.json | 12 +++--------- .../05/GHSA-hm27-q8gj-j3w3/GHSA-hm27-q8gj-j3w3.json | 12 +++--------- .../05/GHSA-hpg2-wgv6-vgm5/GHSA-hpg2-wgv6-vgm5.json | 8 ++------ .../05/GHSA-hr85-6hw5-vqgh/GHSA-hr85-6hw5-vqgh.json | 12 +++--------- .../05/GHSA-hrgv-3gf4-fvpc/GHSA-hrgv-3gf4-fvpc.json | 4 +--- .../05/GHSA-hvgf-279c-6rmq/GHSA-hvgf-279c-6rmq.json | 12 +++--------- .../05/GHSA-hvrx-8j5q-54c6/GHSA-hvrx-8j5q-54c6.json | 4 +--- .../05/GHSA-hxwv-6335-26h5/GHSA-hxwv-6335-26h5.json | 4 +--- .../05/GHSA-j224-c526-25gp/GHSA-j224-c526-25gp.json | 12 +++--------- .../05/GHSA-j23c-hpx8-w7p9/GHSA-j23c-hpx8-w7p9.json | 12 +++--------- .../05/GHSA-j2jw-2c2w-rpfh/GHSA-j2jw-2c2w-rpfh.json | 4 +--- .../05/GHSA-j3ww-xcqh-98r2/GHSA-j3ww-xcqh-98r2.json | 12 +++--------- .../05/GHSA-j42j-7596-mcr4/GHSA-j42j-7596-mcr4.json | 4 +--- .../05/GHSA-j43j-jqvq-xffr/GHSA-j43j-jqvq-xffr.json | 12 +++--------- .../05/GHSA-j47x-5r4f-5mpx/GHSA-j47x-5r4f-5mpx.json | 8 ++------ .../05/GHSA-j53q-vx25-fmqm/GHSA-j53q-vx25-fmqm.json | 12 +++--------- .../05/GHSA-j7rm-4jv6-mjvw/GHSA-j7rm-4jv6-mjvw.json | 12 +++--------- .../05/GHSA-j899-9773-9wjf/GHSA-j899-9773-9wjf.json | 8 ++------ .../05/GHSA-j8hf-m5mw-qxmx/GHSA-j8hf-m5mw-qxmx.json | 12 +++--------- .../05/GHSA-j8xj-m5wx-48gv/GHSA-j8xj-m5wx-48gv.json | 8 ++------ .../05/GHSA-jchr-7v8h-ch5r/GHSA-jchr-7v8h-ch5r.json | 8 ++------ .../05/GHSA-jg88-2ggx-qcpg/GHSA-jg88-2ggx-qcpg.json | 12 +++--------- .../05/GHSA-jgg4-3qfh-59c9/GHSA-jgg4-3qfh-59c9.json | 12 +++--------- .../05/GHSA-jgg8-q968-j8hx/GHSA-jgg8-q968-j8hx.json | 8 ++------ .../05/GHSA-jh5p-5rg5-g924/GHSA-jh5p-5rg5-g924.json | 8 ++------ .../05/GHSA-jhpx-hv8x-hgq4/GHSA-jhpx-hv8x-hgq4.json | 12 +++--------- .../05/GHSA-jj4x-qm7q-jmm9/GHSA-jj4x-qm7q-jmm9.json | 4 +--- .../05/GHSA-jjf5-33c4-34wr/GHSA-jjf5-33c4-34wr.json | 12 +++--------- .../05/GHSA-jjhg-485j-q4rr/GHSA-jjhg-485j-q4rr.json | 12 +++--------- .../05/GHSA-jmff-76g5-wgqf/GHSA-jmff-76g5-wgqf.json | 12 +++--------- .../05/GHSA-jp6c-5v5f-m9j9/GHSA-jp6c-5v5f-m9j9.json | 12 +++--------- .../05/GHSA-jpgv-32fg-p7jv/GHSA-jpgv-32fg-p7jv.json | 12 +++--------- .../05/GHSA-jpr9-4qqq-466f/GHSA-jpr9-4qqq-466f.json | 12 +++--------- .../05/GHSA-jqp6-4x34-x7q7/GHSA-jqp6-4x34-x7q7.json | 12 +++--------- .../05/GHSA-jvc8-5wqv-h35h/GHSA-jvc8-5wqv-h35h.json | 12 +++--------- .../05/GHSA-jvjf-g4pg-rxjm/GHSA-jvjf-g4pg-rxjm.json | 12 +++--------- .../05/GHSA-m258-8c72-m4v5/GHSA-m258-8c72-m4v5.json | 12 +++--------- .../05/GHSA-m2w4-7552-957p/GHSA-m2w4-7552-957p.json | 12 +++--------- .../05/GHSA-m37h-24px-f6hg/GHSA-m37h-24px-f6hg.json | 8 ++------ .../05/GHSA-m3gr-2w33-7p4p/GHSA-m3gr-2w33-7p4p.json | 12 +++--------- .../05/GHSA-m3r6-89c4-786j/GHSA-m3r6-89c4-786j.json | 8 ++------ .../05/GHSA-m622-8qr4-g6gf/GHSA-m622-8qr4-g6gf.json | 12 +++--------- .../05/GHSA-m777-7jfr-8wgh/GHSA-m777-7jfr-8wgh.json | 12 +++--------- .../05/GHSA-m7f9-q2xq-xmc4/GHSA-m7f9-q2xq-xmc4.json | 12 +++--------- .../05/GHSA-m7hv-cw89-969h/GHSA-m7hv-cw89-969h.json | 8 ++------ .../05/GHSA-m7x8-9www-ff8c/GHSA-m7x8-9www-ff8c.json | 8 ++------ .../05/GHSA-m82h-9vwq-8x29/GHSA-m82h-9vwq-8x29.json | 12 +++--------- .../05/GHSA-m8g3-2q7j-6rxg/GHSA-m8g3-2q7j-6rxg.json | 4 +--- .../05/GHSA-mc84-jhmm-wh3q/GHSA-mc84-jhmm-wh3q.json | 12 +++--------- .../05/GHSA-mg46-fgw7-xxfg/GHSA-mg46-fgw7-xxfg.json | 4 +--- .../05/GHSA-mhxp-v7wq-3qqc/GHSA-mhxp-v7wq-3qqc.json | 12 +++--------- .../05/GHSA-mjhp-68j4-wwx7/GHSA-mjhp-68j4-wwx7.json | 8 ++------ .../05/GHSA-mjrj-9494-78rr/GHSA-mjrj-9494-78rr.json | 4 +--- .../05/GHSA-mpp6-67pf-jph5/GHSA-mpp6-67pf-jph5.json | 8 ++------ .../05/GHSA-mqwp-q473-jp33/GHSA-mqwp-q473-jp33.json | 8 ++------ .../05/GHSA-mrg8-5g36-q5f9/GHSA-mrg8-5g36-q5f9.json | 12 +++--------- .../05/GHSA-mvqf-qv79-prcc/GHSA-mvqf-qv79-prcc.json | 12 +++--------- .../05/GHSA-mwc4-hr5w-h77r/GHSA-mwc4-hr5w-h77r.json | 12 +++--------- .../05/GHSA-mwc4-px37-jrx4/GHSA-mwc4-px37-jrx4.json | 12 +++--------- .../05/GHSA-mwj9-hhpc-wqxr/GHSA-mwj9-hhpc-wqxr.json | 8 ++------ .../05/GHSA-mwm2-vw9r-qw3f/GHSA-mwm2-vw9r-qw3f.json | 8 ++------ .../05/GHSA-p34r-945f-4cg9/GHSA-p34r-945f-4cg9.json | 8 ++------ .../05/GHSA-p459-78qc-42gg/GHSA-p459-78qc-42gg.json | 12 +++--------- .../05/GHSA-p45r-9639-7568/GHSA-p45r-9639-7568.json | 12 +++--------- .../05/GHSA-p4m4-hrvw-wv96/GHSA-p4m4-hrvw-wv96.json | 8 ++------ .../05/GHSA-p4x2-xpx5-wf7r/GHSA-p4x2-xpx5-wf7r.json | 12 +++--------- .../05/GHSA-p6p8-j2vx-pqvh/GHSA-p6p8-j2vx-pqvh.json | 12 +++--------- .../05/GHSA-pf4w-prfj-vwv2/GHSA-pf4w-prfj-vwv2.json | 8 ++------ .../05/GHSA-phhf-m45q-vcxw/GHSA-phhf-m45q-vcxw.json | 12 +++--------- .../05/GHSA-pr55-m2r8-wvg6/GHSA-pr55-m2r8-wvg6.json | 8 ++------ .../05/GHSA-pr83-4gh9-4jr6/GHSA-pr83-4gh9-4jr6.json | 4 +--- .../05/GHSA-prc9-q436-4pmp/GHSA-prc9-q436-4pmp.json | 8 ++------ .../05/GHSA-pvvh-p89j-w44m/GHSA-pvvh-p89j-w44m.json | 8 ++------ .../05/GHSA-pw2r-p8xv-w6g3/GHSA-pw2r-p8xv-w6g3.json | 12 +++--------- .../05/GHSA-pw7g-7762-p5qw/GHSA-pw7g-7762-p5qw.json | 12 +++--------- .../05/GHSA-pxwh-qmjv-phrw/GHSA-pxwh-qmjv-phrw.json | 8 ++------ .../05/GHSA-q29h-6vx8-xrwg/GHSA-q29h-6vx8-xrwg.json | 12 +++--------- .../05/GHSA-q2xq-8h7m-vrfm/GHSA-q2xq-8h7m-vrfm.json | 4 +--- .../05/GHSA-q42j-4cv4-vf65/GHSA-q42j-4cv4-vf65.json | 12 +++--------- .../05/GHSA-q4v5-5cqg-jf5j/GHSA-q4v5-5cqg-jf5j.json | 12 +++--------- .../05/GHSA-q4vw-qm8m-m5p7/GHSA-q4vw-qm8m-m5p7.json | 12 +++--------- .../05/GHSA-q55g-848v-f654/GHSA-q55g-848v-f654.json | 12 +++--------- .../05/GHSA-q5g8-585j-mh24/GHSA-q5g8-585j-mh24.json | 12 +++--------- .../05/GHSA-q5p2-r47g-84cm/GHSA-q5p2-r47g-84cm.json | 8 ++------ .../05/GHSA-q5v7-9h83-6g6f/GHSA-q5v7-9h83-6g6f.json | 12 +++--------- .../05/GHSA-q66q-fr3w-pc9j/GHSA-q66q-fr3w-pc9j.json | 12 +++--------- .../05/GHSA-q6fp-hjwx-q999/GHSA-q6fp-hjwx-q999.json | 8 ++------ .../05/GHSA-q6qf-9p94-wx75/GHSA-q6qf-9p94-wx75.json | 12 +++--------- .../05/GHSA-q6xv-fmfc-gjvg/GHSA-q6xv-fmfc-gjvg.json | 12 +++--------- .../05/GHSA-q7x3-rwx8-4wrg/GHSA-q7x3-rwx8-4wrg.json | 12 +++--------- .../05/GHSA-q83w-2c4p-x7mv/GHSA-q83w-2c4p-x7mv.json | 12 +++--------- .../05/GHSA-q86j-858x-v75c/GHSA-q86j-858x-v75c.json | 12 +++--------- .../05/GHSA-q8gr-rr8w-mwmq/GHSA-q8gr-rr8w-mwmq.json | 8 ++------ .../05/GHSA-q9gh-gp47-m5f2/GHSA-q9gh-gp47-m5f2.json | 8 ++------ .../05/GHSA-qf5p-c774-j224/GHSA-qf5p-c774-j224.json | 8 ++------ .../05/GHSA-qf8r-xr22-fxr5/GHSA-qf8r-xr22-fxr5.json | 12 +++--------- .../05/GHSA-qfhx-mfmg-3wfg/GHSA-qfhx-mfmg-3wfg.json | 12 +++--------- .../05/GHSA-qhrf-g4xj-h78x/GHSA-qhrf-g4xj-h78x.json | 8 ++------ .../05/GHSA-qjff-6hhq-wmw2/GHSA-qjff-6hhq-wmw2.json | 12 +++--------- .../05/GHSA-qm25-rqq9-7jcr/GHSA-qm25-rqq9-7jcr.json | 12 +++--------- .../05/GHSA-qq4g-m927-9x4x/GHSA-qq4g-m927-9x4x.json | 12 +++--------- .../05/GHSA-qq5f-7r3p-w96c/GHSA-qq5f-7r3p-w96c.json | 12 +++--------- .../05/GHSA-qq76-xxp3-9gp3/GHSA-qq76-xxp3-9gp3.json | 12 +++--------- .../05/GHSA-qqjx-v7vc-77w8/GHSA-qqjx-v7vc-77w8.json | 8 ++------ .../05/GHSA-qv66-5g67-qh59/GHSA-qv66-5g67-qh59.json | 12 +++--------- .../05/GHSA-qvqw-f2fv-45jw/GHSA-qvqw-f2fv-45jw.json | 12 +++--------- .../05/GHSA-qw7x-mqhv-j7rm/GHSA-qw7x-mqhv-j7rm.json | 12 +++--------- .../05/GHSA-qxhh-fxxq-pvgv/GHSA-qxhh-fxxq-pvgv.json | 12 +++--------- .../05/GHSA-r26h-642q-j6cg/GHSA-r26h-642q-j6cg.json | 12 +++--------- .../05/GHSA-r2gh-2rxr-qq44/GHSA-r2gh-2rxr-qq44.json | 12 +++--------- .../05/GHSA-r2mg-x3w3-w45q/GHSA-r2mg-x3w3-w45q.json | 12 +++--------- .../05/GHSA-r2pq-px9m-8f6r/GHSA-r2pq-px9m-8f6r.json | 12 +++--------- .../05/GHSA-r35w-x8hj-pw5h/GHSA-r35w-x8hj-pw5h.json | 12 +++--------- .../05/GHSA-r3g8-jcj5-f35g/GHSA-r3g8-jcj5-f35g.json | 12 +++--------- .../05/GHSA-r3v6-c98w-p4j5/GHSA-r3v6-c98w-p4j5.json | 12 +++--------- .../05/GHSA-r63f-25g5-v4wf/GHSA-r63f-25g5-v4wf.json | 12 +++--------- .../05/GHSA-r6cm-93j6-3mh3/GHSA-r6cm-93j6-3mh3.json | 12 +++--------- .../05/GHSA-r6hf-6mpj-h47p/GHSA-r6hf-6mpj-h47p.json | 12 +++--------- .../05/GHSA-r7hj-hp8c-gmhv/GHSA-r7hj-hp8c-gmhv.json | 8 ++------ .../05/GHSA-r7jw-rw59-w3xm/GHSA-r7jw-rw59-w3xm.json | 12 +++--------- .../05/GHSA-r8qp-p4ff-wjxq/GHSA-r8qp-p4ff-wjxq.json | 12 +++--------- .../05/GHSA-r92q-j6h7-wh5j/GHSA-r92q-j6h7-wh5j.json | 12 +++--------- .../05/GHSA-r93v-r2h3-5m93/GHSA-r93v-r2h3-5m93.json | 12 +++--------- .../05/GHSA-r9gg-v7f9-vwcg/GHSA-r9gg-v7f9-vwcg.json | 12 +++--------- .../05/GHSA-rc96-hg8v-6p4g/GHSA-rc96-hg8v-6p4g.json | 12 +++--------- .../05/GHSA-rcjj-gp97-vvv5/GHSA-rcjj-gp97-vvv5.json | 12 +++--------- .../05/GHSA-rf7m-m6ch-rqm3/GHSA-rf7m-m6ch-rqm3.json | 4 +--- .../05/GHSA-rf99-h2h2-8738/GHSA-rf99-h2h2-8738.json | 12 +++--------- .../05/GHSA-rfp6-h7x3-4ggx/GHSA-rfp6-h7x3-4ggx.json | 12 +++--------- .../05/GHSA-rfwm-pmjm-jff2/GHSA-rfwm-pmjm-jff2.json | 8 ++------ .../05/GHSA-rg8c-w227-4wq4/GHSA-rg8c-w227-4wq4.json | 12 +++--------- .../05/GHSA-rgcf-v2qh-fw5r/GHSA-rgcf-v2qh-fw5r.json | 4 +--- .../05/GHSA-rh92-6783-v73r/GHSA-rh92-6783-v73r.json | 12 +++--------- .../05/GHSA-rhjg-fh2p-jpv5/GHSA-rhjg-fh2p-jpv5.json | 8 ++------ .../05/GHSA-rhp7-22rq-wh36/GHSA-rhp7-22rq-wh36.json | 8 ++------ .../05/GHSA-rprx-wwgg-c958/GHSA-rprx-wwgg-c958.json | 8 ++------ .../05/GHSA-rq5w-64f5-3925/GHSA-rq5w-64f5-3925.json | 12 +++--------- .../05/GHSA-rq94-jq55-p6ff/GHSA-rq94-jq55-p6ff.json | 8 ++------ .../05/GHSA-rqmc-r2j8-rwq3/GHSA-rqmc-r2j8-rwq3.json | 12 +++--------- .../05/GHSA-rqpf-8394-mfqh/GHSA-rqpf-8394-mfqh.json | 8 ++------ .../05/GHSA-rr2x-68r9-76qv/GHSA-rr2x-68r9-76qv.json | 8 ++------ .../05/GHSA-rrq9-269w-q3xr/GHSA-rrq9-269w-q3xr.json | 12 +++--------- .../05/GHSA-rv58-frxq-x4f4/GHSA-rv58-frxq-x4f4.json | 8 ++------ .../05/GHSA-rvvm-x4j5-wgw3/GHSA-rvvm-x4j5-wgw3.json | 12 +++--------- .../05/GHSA-v2w7-xjpq-rmv5/GHSA-v2w7-xjpq-rmv5.json | 8 ++------ .../05/GHSA-v33g-rjxr-6hm4/GHSA-v33g-rjxr-6hm4.json | 12 +++--------- .../05/GHSA-v393-hrm3-64jv/GHSA-v393-hrm3-64jv.json | 12 +++--------- .../05/GHSA-v3vr-v6hx-4xrx/GHSA-v3vr-v6hx-4xrx.json | 8 ++------ .../05/GHSA-v42h-cjgv-79ww/GHSA-v42h-cjgv-79ww.json | 12 +++--------- .../05/GHSA-v4j7-h442-4c52/GHSA-v4j7-h442-4c52.json | 8 ++------ .../05/GHSA-v4pj-8r82-6phx/GHSA-v4pj-8r82-6phx.json | 12 +++--------- .../05/GHSA-v59x-rqxr-74j5/GHSA-v59x-rqxr-74j5.json | 12 +++--------- .../05/GHSA-v7fw-2gqv-66rx/GHSA-v7fw-2gqv-66rx.json | 12 +++--------- .../05/GHSA-v7j4-xwpv-vf3q/GHSA-v7j4-xwpv-vf3q.json | 8 ++------ .../05/GHSA-v8x9-cq2c-v358/GHSA-v8x9-cq2c-v358.json | 8 ++------ .../05/GHSA-v947-2822-fhxc/GHSA-v947-2822-fhxc.json | 8 ++------ .../05/GHSA-v99v-qgch-h5q5/GHSA-v99v-qgch-h5q5.json | 8 ++------ .../05/GHSA-v9gq-c7q6-67rc/GHSA-v9gq-c7q6-67rc.json | 12 +++--------- .../05/GHSA-vc6m-jhq8-gmhj/GHSA-vc6m-jhq8-gmhj.json | 12 +++--------- .../05/GHSA-vf9q-4vq5-rg7j/GHSA-vf9q-4vq5-rg7j.json | 8 ++------ .../05/GHSA-vf9x-mrwf-g89p/GHSA-vf9x-mrwf-g89p.json | 12 +++--------- .../05/GHSA-vmff-qqc4-4g3c/GHSA-vmff-qqc4-4g3c.json | 8 ++------ .../05/GHSA-vmqg-547g-3f2r/GHSA-vmqg-547g-3f2r.json | 4 +--- .../05/GHSA-vr8h-63cg-wc5g/GHSA-vr8h-63cg-wc5g.json | 12 +++--------- .../05/GHSA-vwhc-xx59-6jfx/GHSA-vwhc-xx59-6jfx.json | 12 +++--------- .../05/GHSA-w2pr-2387-vxgh/GHSA-w2pr-2387-vxgh.json | 8 ++------ .../05/GHSA-w2rg-v998-6982/GHSA-w2rg-v998-6982.json | 4 +--- .../05/GHSA-w2rr-j9v9-9342/GHSA-w2rr-j9v9-9342.json | 12 +++--------- .../05/GHSA-w32x-6946-hh6j/GHSA-w32x-6946-hh6j.json | 12 +++--------- .../05/GHSA-w3w2-3jp4-4c4g/GHSA-w3w2-3jp4-4c4g.json | 12 +++--------- .../05/GHSA-w426-v599-whp2/GHSA-w426-v599-whp2.json | 12 +++--------- .../05/GHSA-w57h-38rg-v7ww/GHSA-w57h-38rg-v7ww.json | 4 +--- .../05/GHSA-w62j-fxqj-2wqh/GHSA-w62j-fxqj-2wqh.json | 8 ++------ .../05/GHSA-w656-4w26-4m89/GHSA-w656-4w26-4m89.json | 8 ++------ .../05/GHSA-w785-mqqm-9895/GHSA-w785-mqqm-9895.json | 8 ++------ .../05/GHSA-w84q-5c2r-x6wg/GHSA-w84q-5c2r-x6wg.json | 4 +--- .../05/GHSA-w8pj-jc9c-cq4v/GHSA-w8pj-jc9c-cq4v.json | 12 +++--------- .../05/GHSA-wc6m-2q93-p5qr/GHSA-wc6m-2q93-p5qr.json | 8 ++------ .../05/GHSA-wm4c-fv79-j3v9/GHSA-wm4c-fv79-j3v9.json | 12 +++--------- .../05/GHSA-wmhf-m2r4-mcrp/GHSA-wmhf-m2r4-mcrp.json | 4 +--- .../05/GHSA-wmw3-jfvx-7mfr/GHSA-wmw3-jfvx-7mfr.json | 8 ++------ .../05/GHSA-wp3x-cvf7-rqrm/GHSA-wp3x-cvf7-rqrm.json | 4 +--- .../05/GHSA-wq2w-hx52-r5gj/GHSA-wq2w-hx52-r5gj.json | 8 ++------ .../05/GHSA-wq94-3874-qv2h/GHSA-wq94-3874-qv2h.json | 12 +++--------- .../05/GHSA-wrqh-vg7q-4h79/GHSA-wrqh-vg7q-4h79.json | 8 ++------ .../05/GHSA-ww7c-jvvf-833h/GHSA-ww7c-jvvf-833h.json | 12 +++--------- .../05/GHSA-wx69-vm3h-3cgv/GHSA-wx69-vm3h-3cgv.json | 8 ++------ .../05/GHSA-wxmm-482m-cm8h/GHSA-wxmm-482m-cm8h.json | 8 ++------ .../05/GHSA-wxwf-j52f-79g8/GHSA-wxwf-j52f-79g8.json | 8 ++------ .../05/GHSA-x28g-jx38-xw6g/GHSA-x28g-jx38-xw6g.json | 12 +++--------- .../05/GHSA-x29x-mq6w-9q67/GHSA-x29x-mq6w-9q67.json | 4 +--- .../05/GHSA-x3cf-27qr-5pww/GHSA-x3cf-27qr-5pww.json | 8 ++------ .../05/GHSA-x5wg-hpq8-9gf3/GHSA-x5wg-hpq8-9gf3.json | 8 ++------ .../05/GHSA-x6c7-c3v8-xmwc/GHSA-x6c7-c3v8-xmwc.json | 12 +++--------- .../05/GHSA-x6j6-cjpj-gpm9/GHSA-x6j6-cjpj-gpm9.json | 12 +++--------- .../05/GHSA-x72c-34x9-qrm4/GHSA-x72c-34x9-qrm4.json | 4 +--- .../05/GHSA-x7gg-cwpw-28p9/GHSA-x7gg-cwpw-28p9.json | 8 ++------ .../05/GHSA-x7qm-3r7g-3p97/GHSA-x7qm-3r7g-3p97.json | 8 ++------ .../05/GHSA-x83m-q23q-xv5j/GHSA-x83m-q23q-xv5j.json | 4 +--- .../05/GHSA-x8g9-h939-cmr5/GHSA-x8g9-h939-cmr5.json | 12 +++--------- .../05/GHSA-xf33-8qpp-q25c/GHSA-xf33-8qpp-q25c.json | 12 +++--------- .../05/GHSA-xfhc-xhx2-ffp9/GHSA-xfhc-xhx2-ffp9.json | 12 +++--------- .../05/GHSA-xg5f-prh7-r529/GHSA-xg5f-prh7-r529.json | 8 ++------ .../05/GHSA-xm4h-5598-382p/GHSA-xm4h-5598-382p.json | 12 +++--------- .../05/GHSA-xmgp-m2m3-m8g4/GHSA-xmgp-m2m3-m8g4.json | 8 ++------ .../05/GHSA-xq2c-xc9f-44f4/GHSA-xq2c-xc9f-44f4.json | 12 +++--------- .../05/GHSA-xqh7-34g2-j95q/GHSA-xqh7-34g2-j95q.json | 12 +++--------- .../05/GHSA-xqhm-wxf5-mjg6/GHSA-xqhm-wxf5-mjg6.json | 8 ++------ .../05/GHSA-xqxr-66xr-xfq3/GHSA-xqxr-66xr-xfq3.json | 12 +++--------- .../05/GHSA-xrvh-jj58-rj6p/GHSA-xrvh-jj58-rj6p.json | 8 ++------ .../05/GHSA-xrvj-pv83-89qp/GHSA-xrvj-pv83-89qp.json | 8 ++------ .../05/GHSA-xw6q-jj4q-5cjw/GHSA-xw6q-jj4q-5cjw.json | 4 +--- .../05/GHSA-xwv4-ppgv-h9j7/GHSA-xwv4-ppgv-h9j7.json | 12 +++--------- .../05/GHSA-xxqg-cq6p-jpqq/GHSA-xxqg-cq6p-jpqq.json | 12 +++--------- .../11/GHSA-2gp5-q39j-fmr2/GHSA-2gp5-q39j-fmr2.json | 4 +--- .../11/GHSA-3f9m-5fq4-x2wr/GHSA-3f9m-5fq4-x2wr.json | 4 +--- .../11/GHSA-3g68-h29c-7326/GHSA-3g68-h29c-7326.json | 4 +--- .../11/GHSA-476m-cqhq-mc6w/GHSA-476m-cqhq-mc6w.json | 4 +--- .../11/GHSA-589q-4ff5-q295/GHSA-589q-4ff5-q295.json | 4 +--- .../11/GHSA-59w9-v72g-j4rg/GHSA-59w9-v72g-j4rg.json | 4 +--- .../11/GHSA-5r42-pgpf-xr9w/GHSA-5r42-pgpf-xr9w.json | 4 +--- .../11/GHSA-6q84-mpc4-83g2/GHSA-6q84-mpc4-83g2.json | 4 +--- .../11/GHSA-75q5-4hc3-3q65/GHSA-75q5-4hc3-3q65.json | 4 +--- .../11/GHSA-7hfw-w75q-mqr2/GHSA-7hfw-w75q-mqr2.json | 4 +--- .../11/GHSA-7hmx-q6g5-9hwx/GHSA-7hmx-q6g5-9hwx.json | 4 +--- .../11/GHSA-8736-x895-x6jp/GHSA-8736-x895-x6jp.json | 4 +--- .../11/GHSA-9ff9-jpcp-gg2m/GHSA-9ff9-jpcp-gg2m.json | 4 +--- .../11/GHSA-cvh5-fmm6-wx9v/GHSA-cvh5-fmm6-wx9v.json | 4 +--- .../11/GHSA-f353-2q7w-48fm/GHSA-f353-2q7w-48fm.json | 4 +--- .../11/GHSA-fp36-pmr8-vj9p/GHSA-fp36-pmr8-vj9p.json | 4 +--- .../11/GHSA-hgwc-78jr-63c3/GHSA-hgwc-78jr-63c3.json | 4 +--- .../11/GHSA-j2jg-m77h-283j/GHSA-j2jg-m77h-283j.json | 4 +--- .../11/GHSA-m7q8-qfg8-w5hc/GHSA-m7q8-qfg8-w5hc.json | 4 +--- .../11/GHSA-p9v5-43w4-jhw3/GHSA-p9v5-43w4-jhw3.json | 4 +--- .../11/GHSA-qq7j-4r39-whmx/GHSA-qq7j-4r39-whmx.json | 4 +--- .../11/GHSA-qvfg-q6v8-7jx8/GHSA-qvfg-q6v8-7jx8.json | 4 +--- .../11/GHSA-rm3p-6j6m-68q8/GHSA-rm3p-6j6m-68q8.json | 4 +--- .../11/GHSA-v7pm-56h6-94x6/GHSA-v7pm-56h6-94x6.json | 4 +--- .../11/GHSA-wpp2-f4wp-vr8h/GHSA-wpp2-f4wp-vr8h.json | 4 +--- .../11/GHSA-xhx8-9r5h-vm7p/GHSA-xhx8-9r5h-vm7p.json | 4 +--- .../12/GHSA-234p-hx4f-3rv4/GHSA-234p-hx4f-3rv4.json | 4 +--- .../12/GHSA-29f7-g67q-jv68/GHSA-29f7-g67q-jv68.json | 4 +--- .../12/GHSA-2m5x-xrc7-mrxp/GHSA-2m5x-xrc7-mrxp.json | 4 +--- .../12/GHSA-32pv-q2cq-cp4v/GHSA-32pv-q2cq-cp4v.json | 4 +--- .../12/GHSA-362p-jc7p-cx87/GHSA-362p-jc7p-cx87.json | 4 +--- .../12/GHSA-366w-rp6m-qm5x/GHSA-366w-rp6m-qm5x.json | 4 +--- .../12/GHSA-38gm-wvj3-rc26/GHSA-38gm-wvj3-rc26.json | 4 +--- .../12/GHSA-3cqm-26w8-85g8/GHSA-3cqm-26w8-85g8.json | 4 +--- .../12/GHSA-3f75-4wmv-vpf2/GHSA-3f75-4wmv-vpf2.json | 4 +--- .../12/GHSA-3j85-6864-55p3/GHSA-3j85-6864-55p3.json | 4 +--- .../12/GHSA-3m72-27jq-pc52/GHSA-3m72-27jq-pc52.json | 8 ++------ .../12/GHSA-3v68-hp3q-c376/GHSA-3v68-hp3q-c376.json | 4 +--- .../12/GHSA-436h-cr23-m9m7/GHSA-436h-cr23-m9m7.json | 4 +--- .../12/GHSA-43gx-fr8q-99g5/GHSA-43gx-fr8q-99g5.json | 4 +--- .../12/GHSA-4h8f-5jwq-q4wm/GHSA-4h8f-5jwq-q4wm.json | 8 ++------ .../12/GHSA-532m-cp5f-9hgq/GHSA-532m-cp5f-9hgq.json | 4 +--- .../12/GHSA-5459-wr9w-wpcp/GHSA-5459-wr9w-wpcp.json | 4 +--- .../12/GHSA-5949-jwff-8f6q/GHSA-5949-jwff-8f6q.json | 4 +--- .../12/GHSA-5ffr-q63g-qhpp/GHSA-5ffr-q63g-qhpp.json | 4 +--- .../12/GHSA-5frx-2qvr-6r92/GHSA-5frx-2qvr-6r92.json | 8 ++------ .../12/GHSA-5h2w-44mr-8x27/GHSA-5h2w-44mr-8x27.json | 4 +--- .../12/GHSA-5m26-rxgp-4rm5/GHSA-5m26-rxgp-4rm5.json | 4 +--- .../12/GHSA-65mj-gx4w-87vh/GHSA-65mj-gx4w-87vh.json | 4 +--- .../12/GHSA-6p88-w6c7-7m2h/GHSA-6p88-w6c7-7m2h.json | 4 +--- .../12/GHSA-6pf3-q3cx-w87c/GHSA-6pf3-q3cx-w87c.json | 4 +--- .../12/GHSA-6r4q-gfjj-jhwr/GHSA-6r4q-gfjj-jhwr.json | 4 +--- .../12/GHSA-6vhw-xj9w-j95w/GHSA-6vhw-xj9w-j95w.json | 4 +--- .../12/GHSA-7gq3-x8v2-qv98/GHSA-7gq3-x8v2-qv98.json | 4 +--- .../12/GHSA-7hx6-3mh5-45rj/GHSA-7hx6-3mh5-45rj.json | 4 +--- .../12/GHSA-7m75-8m3p-hxvm/GHSA-7m75-8m3p-hxvm.json | 4 +--- .../12/GHSA-7w3r-g8xj-vrvx/GHSA-7w3r-g8xj-vrvx.json | 4 +--- .../12/GHSA-7x93-m29h-6j9q/GHSA-7x93-m29h-6j9q.json | 4 +--- .../12/GHSA-8474-5px4-qjvg/GHSA-8474-5px4-qjvg.json | 4 +--- .../12/GHSA-8f2g-2pcw-qj92/GHSA-8f2g-2pcw-qj92.json | 4 +--- .../12/GHSA-8mr2-8r3v-fj69/GHSA-8mr2-8r3v-fj69.json | 8 ++------ .../12/GHSA-92hg-r7h2-589f/GHSA-92hg-r7h2-589f.json | 4 +--- .../12/GHSA-9879-5jr5-xwq3/GHSA-9879-5jr5-xwq3.json | 4 +--- .../12/GHSA-9h74-mx6m-3v5r/GHSA-9h74-mx6m-3v5r.json | 4 +--- .../12/GHSA-9p2g-49fh-fv3m/GHSA-9p2g-49fh-fv3m.json | 4 +--- .../12/GHSA-9w3p-jqjp-v5ww/GHSA-9w3p-jqjp-v5ww.json | 4 +--- .../12/GHSA-9wxc-wwm3-4wvf/GHSA-9wxc-wwm3-4wvf.json | 4 +--- .../12/GHSA-c9cm-rvww-38hx/GHSA-c9cm-rvww-38hx.json | 4 +--- .../12/GHSA-cc5j-v6q7-cx9f/GHSA-cc5j-v6q7-cx9f.json | 4 +--- .../12/GHSA-cgmg-fw4f-9qc5/GHSA-cgmg-fw4f-9qc5.json | 4 +--- .../12/GHSA-cpj8-ppjf-3vrf/GHSA-cpj8-ppjf-3vrf.json | 4 +--- .../12/GHSA-cvcg-29j6-c4g8/GHSA-cvcg-29j6-c4g8.json | 4 +--- .../12/GHSA-cvqq-hjjc-jrc6/GHSA-cvqq-hjjc-jrc6.json | 8 ++------ .../12/GHSA-ffcj-jj5c-qxj6/GHSA-ffcj-jj5c-qxj6.json | 4 +--- .../12/GHSA-fxqp-h355-f3r4/GHSA-fxqp-h355-f3r4.json | 4 +--- .../12/GHSA-g2g2-6grg-2jm4/GHSA-g2g2-6grg-2jm4.json | 4 +--- .../12/GHSA-g83w-9px8-cmhv/GHSA-g83w-9px8-cmhv.json | 4 +--- .../12/GHSA-ggr5-58mq-975v/GHSA-ggr5-58mq-975v.json | 4 +--- .../12/GHSA-ggw6-9p9v-2x3p/GHSA-ggw6-9p9v-2x3p.json | 4 +--- .../12/GHSA-gjgw-rx73-rvp5/GHSA-gjgw-rx73-rvp5.json | 4 +--- .../12/GHSA-gwm8-pp4m-5w63/GHSA-gwm8-pp4m-5w63.json | 4 +--- .../12/GHSA-h5xc-q687-w54m/GHSA-h5xc-q687-w54m.json | 4 +--- .../12/GHSA-h7fc-j8f4-xjj8/GHSA-h7fc-j8f4-xjj8.json | 4 +--- .../12/GHSA-h8wm-ccrj-94x5/GHSA-h8wm-ccrj-94x5.json | 4 +--- .../12/GHSA-h98c-hq83-wq3c/GHSA-h98c-hq83-wq3c.json | 4 +--- .../12/GHSA-hhvv-m62h-5c8j/GHSA-hhvv-m62h-5c8j.json | 4 +--- .../12/GHSA-hjvh-7p9j-42v8/GHSA-hjvh-7p9j-42v8.json | 4 +--- .../12/GHSA-j268-37pf-rvx9/GHSA-j268-37pf-rvx9.json | 4 +--- .../12/GHSA-j9j4-mv7g-fq63/GHSA-j9j4-mv7g-fq63.json | 4 +--- .../12/GHSA-jv9j-c3pv-5hqf/GHSA-jv9j-c3pv-5hqf.json | 4 +--- .../12/GHSA-jx63-7q59-f3fj/GHSA-jx63-7q59-f3fj.json | 4 +--- .../12/GHSA-pgv2-pwvq-76wq/GHSA-pgv2-pwvq-76wq.json | 4 +--- .../12/GHSA-pvr2-2hwp-5vqc/GHSA-pvr2-2hwp-5vqc.json | 4 +--- .../12/GHSA-r8rq-8q99-cp9f/GHSA-r8rq-8q99-cp9f.json | 4 +--- .../12/GHSA-r9p3-w49v-jhxq/GHSA-r9p3-w49v-jhxq.json | 4 +--- .../12/GHSA-v9f2-7gjf-86f5/GHSA-v9f2-7gjf-86f5.json | 4 +--- .../12/GHSA-v9p8-rxvf-6pf4/GHSA-v9p8-rxvf-6pf4.json | 4 +--- .../12/GHSA-w657-6g6r-c5p3/GHSA-w657-6g6r-c5p3.json | 4 +--- .../12/GHSA-w774-x8gc-78vf/GHSA-w774-x8gc-78vf.json | 4 +--- .../12/GHSA-w9rw-7qmg-8ggc/GHSA-w9rw-7qmg-8ggc.json | 4 +--- .../12/GHSA-wcr3-8jhg-v89r/GHSA-wcr3-8jhg-v89r.json | 4 +--- .../12/GHSA-wh4p-p8wc-5h67/GHSA-wh4p-p8wc-5h67.json | 4 +--- .../12/GHSA-wmrj-q5cv-w5wg/GHSA-wmrj-q5cv-w5wg.json | 4 +--- .../12/GHSA-wpwv-wrpr-fm7f/GHSA-wpwv-wrpr-fm7f.json | 4 +--- .../12/GHSA-x2v8-685r-x7hf/GHSA-x2v8-685r-x7hf.json | 4 +--- .../12/GHSA-x86f-5wf6-vh2v/GHSA-x86f-5wf6-vh2v.json | 4 +--- .../01/GHSA-2m96-fxj3-h8fg/GHSA-2m96-fxj3-h8fg.json | 4 +--- .../01/GHSA-4xm9-j87c-v95w/GHSA-4xm9-j87c-v95w.json | 4 +--- .../01/GHSA-5f68-jm8v-355j/GHSA-5f68-jm8v-355j.json | 4 +--- .../01/GHSA-5mpw-67fp-pg56/GHSA-5mpw-67fp-pg56.json | 4 +--- .../01/GHSA-5qj3-2mwp-vp67/GHSA-5qj3-2mwp-vp67.json | 4 +--- .../01/GHSA-5rfm-q8cg-pq99/GHSA-5rfm-q8cg-pq99.json | 4 +--- .../01/GHSA-72vc-2hjp-vr3j/GHSA-72vc-2hjp-vr3j.json | 4 +--- .../01/GHSA-8mrr-p2f9-9f86/GHSA-8mrr-p2f9-9f86.json | 4 +--- .../01/GHSA-cghw-hvr5-w2m2/GHSA-cghw-hvr5-w2m2.json | 4 +--- .../01/GHSA-f3r5-v4wr-72qr/GHSA-f3r5-v4wr-72qr.json | 4 +--- .../01/GHSA-fvm6-h6r9-qcr2/GHSA-fvm6-h6r9-qcr2.json | 4 +--- .../01/GHSA-fxmm-jp7q-8qvp/GHSA-fxmm-jp7q-8qvp.json | 4 +--- .../01/GHSA-h3gc-m3gf-r5pr/GHSA-h3gc-m3gf-r5pr.json | 4 +--- .../01/GHSA-j34c-3gp7-29jp/GHSA-j34c-3gp7-29jp.json | 4 +--- .../01/GHSA-j77g-rccp-fpvv/GHSA-j77g-rccp-fpvv.json | 4 +--- .../01/GHSA-j9p6-6m27-5xwj/GHSA-j9p6-6m27-5xwj.json | 4 +--- .../01/GHSA-jc6w-v2gh-gqx3/GHSA-jc6w-v2gh-gqx3.json | 4 +--- .../01/GHSA-m6pp-3qrg-p5x2/GHSA-m6pp-3qrg-p5x2.json | 4 +--- .../01/GHSA-mxhq-87fx-96v9/GHSA-mxhq-87fx-96v9.json | 4 +--- .../01/GHSA-p2w9-mv5p-65w6/GHSA-p2w9-mv5p-65w6.json | 4 +--- .../01/GHSA-phx8-4x5v-wgc8/GHSA-phx8-4x5v-wgc8.json | 4 +--- .../01/GHSA-q4cw-h889-p6jj/GHSA-q4cw-h889-p6jj.json | 4 +--- .../01/GHSA-r293-6wjm-x8g7/GHSA-r293-6wjm-x8g7.json | 4 +--- .../01/GHSA-v96g-9h62-76pj/GHSA-v96g-9h62-76pj.json | 4 +--- .../01/GHSA-xcgc-gw57-wr9f/GHSA-xcgc-gw57-wr9f.json | 4 +--- .../02/GHSA-27wm-p6hh-jm27/GHSA-27wm-p6hh-jm27.json | 4 +--- .../02/GHSA-36v3-rxv6-r759/GHSA-36v3-rxv6-r759.json | 4 +--- .../02/GHSA-3c52-h4x3-2jhm/GHSA-3c52-h4x3-2jhm.json | 4 +--- .../02/GHSA-3f3j-x9h2-qcf8/GHSA-3f3j-x9h2-qcf8.json | 4 +--- .../02/GHSA-3hqh-h748-xjx8/GHSA-3hqh-h748-xjx8.json | 4 +--- .../02/GHSA-4r4v-x4wj-59wx/GHSA-4r4v-x4wj-59wx.json | 4 +--- .../02/GHSA-5gh3-4wwv-vgpw/GHSA-5gh3-4wwv-vgpw.json | 4 +--- .../02/GHSA-6xwm-gvm9-8cff/GHSA-6xwm-gvm9-8cff.json | 4 +--- .../02/GHSA-7mjw-898c-2hq9/GHSA-7mjw-898c-2hq9.json | 8 ++------ .../02/GHSA-7mph-v368-wmv3/GHSA-7mph-v368-wmv3.json | 4 +--- .../02/GHSA-7rfw-qh9g-vg98/GHSA-7rfw-qh9g-vg98.json | 4 +--- .../02/GHSA-8mvx-pm2m-j8f7/GHSA-8mvx-pm2m-j8f7.json | 8 ++------ .../02/GHSA-92r6-gw4h-q44j/GHSA-92r6-gw4h-q44j.json | 4 +--- .../02/GHSA-cjpc-pmr4-774q/GHSA-cjpc-pmr4-774q.json | 4 +--- .../02/GHSA-cjq2-j283-vj49/GHSA-cjq2-j283-vj49.json | 8 ++------ .../02/GHSA-cph3-m93x-vw8v/GHSA-cph3-m93x-vw8v.json | 4 +--- .../02/GHSA-cxwh-9cmm-77cp/GHSA-cxwh-9cmm-77cp.json | 4 +--- .../02/GHSA-f6xw-jpr8-c7ph/GHSA-f6xw-jpr8-c7ph.json | 4 +--- .../02/GHSA-gmxc-973j-62f2/GHSA-gmxc-973j-62f2.json | 4 +--- .../02/GHSA-hjqf-pmj4-5mh7/GHSA-hjqf-pmj4-5mh7.json | 4 +--- .../02/GHSA-j82c-6hc3-3qc4/GHSA-j82c-6hc3-3qc4.json | 8 ++------ .../02/GHSA-jv4h-v7cw-4f5c/GHSA-jv4h-v7cw-4f5c.json | 8 ++------ .../02/GHSA-p3rj-h8c5-jhpv/GHSA-p3rj-h8c5-jhpv.json | 8 ++------ .../02/GHSA-p67h-hgq7-6v2w/GHSA-p67h-hgq7-6v2w.json | 4 +--- .../02/GHSA-qg8x-2gcc-v7rf/GHSA-qg8x-2gcc-v7rf.json | 4 +--- .../02/GHSA-qgw4-v4wc-4ghq/GHSA-qgw4-v4wc-4ghq.json | 4 +--- .../02/GHSA-rgh5-cmxw-p8hg/GHSA-rgh5-cmxw-p8hg.json | 4 +--- .../02/GHSA-v8p7-4m38-955w/GHSA-v8p7-4m38-955w.json | 4 +--- .../02/GHSA-vgvf-4jhr-3w37/GHSA-vgvf-4jhr-3w37.json | 4 +--- .../02/GHSA-vm26-wxgq-mf6w/GHSA-vm26-wxgq-mf6w.json | 8 ++------ .../02/GHSA-w5rv-9f58-c4f3/GHSA-w5rv-9f58-c4f3.json | 4 +--- .../02/GHSA-wc59-h2vv-mqjr/GHSA-wc59-h2vv-mqjr.json | 8 ++------ .../02/GHSA-wf4c-f488-7hm7/GHSA-wf4c-f488-7hm7.json | 4 +--- .../02/GHSA-wrpm-rwcg-5qv2/GHSA-wrpm-rwcg-5qv2.json | 4 +--- .../02/GHSA-xh63-f847-m5r7/GHSA-xh63-f847-m5r7.json | 4 +--- .../03/GHSA-5xv2-wxv2-g8gj/GHSA-5xv2-wxv2-g8gj.json | 12 +++--------- .../03/GHSA-66jx-q2p3-498c/GHSA-66jx-q2p3-498c.json | 12 +++--------- .../03/GHSA-6ff3-hp98-m9fj/GHSA-6ff3-hp98-m9fj.json | 12 +++--------- .../03/GHSA-9cc4-v85v-gfqw/GHSA-9cc4-v85v-gfqw.json | 12 +++--------- .../03/GHSA-9ppx-3j9g-766w/GHSA-9ppx-3j9g-766w.json | 4 +--- .../03/GHSA-fqhm-5chv-426x/GHSA-fqhm-5chv-426x.json | 12 +++--------- .../03/GHSA-g5hg-3x62-v52f/GHSA-g5hg-3x62-v52f.json | 4 +--- .../03/GHSA-g9qh-rq49-9mf3/GHSA-g9qh-rq49-9mf3.json | 12 +++--------- .../03/GHSA-hm3v-4f8w-942g/GHSA-hm3v-4f8w-942g.json | 12 +++--------- .../03/GHSA-rhgg-cx4q-jj36/GHSA-rhgg-cx4q-jj36.json | 12 +++--------- .../03/GHSA-vvj2-hwcp-w2c5/GHSA-vvj2-hwcp-w2c5.json | 12 +++--------- .../03/GHSA-w253-3fr6-2346/GHSA-w253-3fr6-2346.json | 12 +++--------- .../03/GHSA-xxch-2c9x-xp27/GHSA-xxch-2c9x-xp27.json | 12 +++--------- .../08/GHSA-fchh-435h-cf8h/GHSA-fchh-435h-cf8h.json | 4 +--- .../09/GHSA-4w9h-xcp4-6v33/GHSA-4w9h-xcp4-6v33.json | 4 +--- .../01/GHSA-vv27-3h8m-wwqq/GHSA-vv27-3h8m-wwqq.json | 4 +--- .../05/GHSA-2pcw-j73g-x4xv/GHSA-2pcw-j73g-x4xv.json | 4 +--- .../05/GHSA-3cmg-6cwf-442f/GHSA-3cmg-6cwf-442f.json | 4 +--- .../05/GHSA-3jvh-pgp8-6866/GHSA-3jvh-pgp8-6866.json | 4 +--- .../05/GHSA-3wf3-9vwr-cm6w/GHSA-3wf3-9vwr-cm6w.json | 4 +--- .../05/GHSA-3wpq-gjx8-r7c8/GHSA-3wpq-gjx8-r7c8.json | 4 +--- .../05/GHSA-3xj2-xvqh-gvp5/GHSA-3xj2-xvqh-gvp5.json | 4 +--- .../05/GHSA-425c-w8px-7q9c/GHSA-425c-w8px-7q9c.json | 4 +--- .../05/GHSA-44m2-445p-2rrj/GHSA-44m2-445p-2rrj.json | 8 ++------ .../05/GHSA-478c-g9v8-v6r2/GHSA-478c-g9v8-v6r2.json | 4 +--- .../05/GHSA-48cf-pw67-hg9m/GHSA-48cf-pw67-hg9m.json | 8 ++------ .../05/GHSA-48g2-452q-4xqc/GHSA-48g2-452q-4xqc.json | 4 +--- .../05/GHSA-4hg9-hxx4-2h2w/GHSA-4hg9-hxx4-2h2w.json | 4 +--- .../05/GHSA-4mwh-2xx5-5vp9/GHSA-4mwh-2xx5-5vp9.json | 8 ++------ .../05/GHSA-54q9-gw6j-4h5c/GHSA-54q9-gw6j-4h5c.json | 4 +--- .../05/GHSA-5977-vhpg-p3hq/GHSA-5977-vhpg-p3hq.json | 4 +--- .../05/GHSA-5x5p-62r5-2xx8/GHSA-5x5p-62r5-2xx8.json | 4 +--- .../05/GHSA-6ff3-gqc7-rp56/GHSA-6ff3-gqc7-rp56.json | 4 +--- .../05/GHSA-6r9h-2p8r-jf6r/GHSA-6r9h-2p8r-jf6r.json | 4 +--- .../05/GHSA-7858-7mgv-mwpj/GHSA-7858-7mgv-mwpj.json | 4 +--- .../05/GHSA-7cf9-vp5v-3mxg/GHSA-7cf9-vp5v-3mxg.json | 8 ++------ .../05/GHSA-7pwx-w32q-3p7r/GHSA-7pwx-w32q-3p7r.json | 4 +--- .../05/GHSA-7q49-g67j-hfp2/GHSA-7q49-g67j-hfp2.json | 4 +--- .../05/GHSA-7rmp-9hrq-f45x/GHSA-7rmp-9hrq-f45x.json | 4 +--- .../05/GHSA-7vww-mjq5-vh3j/GHSA-7vww-mjq5-vh3j.json | 4 +--- .../05/GHSA-8j48-r5wc-gvr3/GHSA-8j48-r5wc-gvr3.json | 4 +--- .../05/GHSA-928h-v43x-jjq6/GHSA-928h-v43x-jjq6.json | 4 +--- .../05/GHSA-972q-cq35-55qp/GHSA-972q-cq35-55qp.json | 4 +--- .../05/GHSA-97qf-22x7-5h5h/GHSA-97qf-22x7-5h5h.json | 4 +--- .../05/GHSA-995f-rv3r-c9mx/GHSA-995f-rv3r-c9mx.json | 4 +--- .../05/GHSA-9g97-rgrc-9vhg/GHSA-9g97-rgrc-9vhg.json | 8 ++------ .../05/GHSA-c2m9-m7gx-6446/GHSA-c2m9-m7gx-6446.json | 4 +--- .../05/GHSA-c43w-gr2q-7prv/GHSA-c43w-gr2q-7prv.json | 4 +--- .../05/GHSA-cgvp-vvrf-hjp4/GHSA-cgvp-vvrf-hjp4.json | 8 ++------ .../05/GHSA-cjf8-hcqf-6652/GHSA-cjf8-hcqf-6652.json | 8 ++------ .../05/GHSA-f3wf-gw24-9r2q/GHSA-f3wf-gw24-9r2q.json | 4 +--- .../05/GHSA-f9qv-x24h-c8g8/GHSA-f9qv-x24h-c8g8.json | 4 +--- .../05/GHSA-fq6v-fprc-9m9q/GHSA-fq6v-fprc-9m9q.json | 4 +--- .../05/GHSA-g8jf-2c26-3mph/GHSA-g8jf-2c26-3mph.json | 4 +--- .../05/GHSA-gwj2-vqgr-4qxf/GHSA-gwj2-vqgr-4qxf.json | 4 +--- .../05/GHSA-h7mw-v93q-r9c3/GHSA-h7mw-v93q-r9c3.json | 8 ++------ .../05/GHSA-hc9q-4g3h-9577/GHSA-hc9q-4g3h-9577.json | 4 +--- .../05/GHSA-hj6w-5v7m-rj3p/GHSA-hj6w-5v7m-rj3p.json | 4 +--- .../05/GHSA-hmcp-9hcm-m3q7/GHSA-hmcp-9hcm-m3q7.json | 4 +--- .../05/GHSA-hvrj-9f39-j96h/GHSA-hvrj-9f39-j96h.json | 4 +--- .../05/GHSA-hw37-xg77-53hx/GHSA-hw37-xg77-53hx.json | 4 +--- .../05/GHSA-hw84-c76j-h87p/GHSA-hw84-c76j-h87p.json | 8 ++------ .../05/GHSA-j226-hwhh-899j/GHSA-j226-hwhh-899j.json | 4 +--- .../05/GHSA-j495-9vj6-gx3w/GHSA-j495-9vj6-gx3w.json | 8 ++------ .../05/GHSA-jph2-jcqw-q5qf/GHSA-jph2-jcqw-q5qf.json | 4 +--- .../05/GHSA-jvcm-pc6m-g646/GHSA-jvcm-pc6m-g646.json | 4 +--- .../05/GHSA-mc92-hrx8-xcrm/GHSA-mc92-hrx8-xcrm.json | 4 +--- .../05/GHSA-mhcv-2f7w-4c7r/GHSA-mhcv-2f7w-4c7r.json | 4 +--- .../05/GHSA-p7q5-4hfm-m8fh/GHSA-p7q5-4hfm-m8fh.json | 4 +--- .../05/GHSA-p7wr-w92h-qvhj/GHSA-p7wr-w92h-qvhj.json | 4 +--- .../05/GHSA-q2r8-99fj-x7qv/GHSA-q2r8-99fj-x7qv.json | 4 +--- .../05/GHSA-qc29-c5fh-cmcf/GHSA-qc29-c5fh-cmcf.json | 4 +--- .../05/GHSA-qf48-wmxr-h59x/GHSA-qf48-wmxr-h59x.json | 4 +--- .../05/GHSA-qp39-c68g-7r9p/GHSA-qp39-c68g-7r9p.json | 4 +--- .../05/GHSA-qxgc-qp86-4mg6/GHSA-qxgc-qp86-4mg6.json | 8 ++------ .../05/GHSA-qxwm-c26v-rvwg/GHSA-qxwm-c26v-rvwg.json | 4 +--- .../05/GHSA-r67f-7g4f-5cfq/GHSA-r67f-7g4f-5cfq.json | 4 +--- .../05/GHSA-rg8v-554v-gv5q/GHSA-rg8v-554v-gv5q.json | 4 +--- .../05/GHSA-rj65-h7q6-63qc/GHSA-rj65-h7q6-63qc.json | 4 +--- .../05/GHSA-rx2j-whx7-3jv5/GHSA-rx2j-whx7-3jv5.json | 4 +--- .../05/GHSA-v435-c8wm-qmjm/GHSA-v435-c8wm-qmjm.json | 4 +--- .../05/GHSA-vpj2-mh86-xpmv/GHSA-vpj2-mh86-xpmv.json | 4 +--- .../05/GHSA-vx8m-7cr4-h238/GHSA-vx8m-7cr4-h238.json | 4 +--- .../05/GHSA-w6fg-m995-mg4j/GHSA-w6fg-m995-mg4j.json | 4 +--- .../05/GHSA-wjww-p2cv-rw2v/GHSA-wjww-p2cv-rw2v.json | 4 +--- .../05/GHSA-wpvh-7c2r-23rh/GHSA-wpvh-7c2r-23rh.json | 4 +--- .../05/GHSA-x348-5vv2-6fqv/GHSA-x348-5vv2-6fqv.json | 4 +--- .../05/GHSA-x4jq-jv8m-hfq5/GHSA-x4jq-jv8m-hfq5.json | 4 +--- .../05/GHSA-x7f5-8755-9m9j/GHSA-x7f5-8755-9m9j.json | 4 +--- .../05/GHSA-xgph-64jm-fq69/GHSA-xgph-64jm-fq69.json | 4 +--- 972 files changed, 2157 insertions(+), 6471 deletions(-) diff --git a/advisories/github-reviewed/2017/10/GHSA-jmm9-2p29-vh2w/GHSA-jmm9-2p29-vh2w.json b/advisories/github-reviewed/2017/10/GHSA-jmm9-2p29-vh2w/GHSA-jmm9-2p29-vh2w.json index bebbe811bfa..0851a71ff57 100644 --- a/advisories/github-reviewed/2017/10/GHSA-jmm9-2p29-vh2w/GHSA-jmm9-2p29-vh2w.json +++ b/advisories/github-reviewed/2017/10/GHSA-jmm9-2p29-vh2w/GHSA-jmm9-2p29-vh2w.json @@ -8,9 +8,7 @@ ], "summary": "activerecord vulnerable to SQL Injection", "details": "Ruby on Rails 3.0.x before 3.0.4 does not ensure that arguments to the limit function specify integer values, which makes it easier for remote attackers to conduct SQL injection attacks via a non-numeric argument.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2018/08/GHSA-4q53-fqhc-cr46/GHSA-4q53-fqhc-cr46.json b/advisories/github-reviewed/2018/08/GHSA-4q53-fqhc-cr46/GHSA-4q53-fqhc-cr46.json index 5da8fc22acd..a420d037cb6 100644 --- a/advisories/github-reviewed/2018/08/GHSA-4q53-fqhc-cr46/GHSA-4q53-fqhc-cr46.json +++ b/advisories/github-reviewed/2018/08/GHSA-4q53-fqhc-cr46/GHSA-4q53-fqhc-cr46.json @@ -8,9 +8,7 @@ ], "summary": "ember-source Cross-site Scripting vulnerability", "details": "Cross-site scripting (XSS) vulnerability in the link-to helper in Ember.js 1.2.x before 1.2.2, 1.3.x before 1.3.2, and 1.4.x before 1.4.0-beta.6, when used in non-block form, allows remote attackers to inject arbitrary web script or HTML via the title attribute.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/05/GHSA-32w9-2qpc-5f9v/GHSA-32w9-2qpc-5f9v.json b/advisories/github-reviewed/2022/05/GHSA-32w9-2qpc-5f9v/GHSA-32w9-2qpc-5f9v.json index e35245d24f3..1da665827a3 100644 --- a/advisories/github-reviewed/2022/05/GHSA-32w9-2qpc-5f9v/GHSA-32w9-2qpc-5f9v.json +++ b/advisories/github-reviewed/2022/05/GHSA-32w9-2qpc-5f9v/GHSA-32w9-2qpc-5f9v.json @@ -111,9 +111,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2022-11-01T23:33:48Z", diff --git a/advisories/github-reviewed/2022/12/GHSA-47xh-qxqv-mgvg/GHSA-47xh-qxqv-mgvg.json b/advisories/github-reviewed/2022/12/GHSA-47xh-qxqv-mgvg/GHSA-47xh-qxqv-mgvg.json index ab6c2a6be1c..fddf0356f45 100644 --- a/advisories/github-reviewed/2022/12/GHSA-47xh-qxqv-mgvg/GHSA-47xh-qxqv-mgvg.json +++ b/advisories/github-reviewed/2022/12/GHSA-47xh-qxqv-mgvg/GHSA-47xh-qxqv-mgvg.json @@ -3,14 +3,10 @@ "id": "GHSA-47xh-qxqv-mgvg", "modified": "2022-12-02T22:24:44Z", "published": "2022-12-02T22:24:44Z", - "aliases": [ - - ], + "aliases": [], "summary": "kube-httpcache is vulnerable to Cross-Site Request Forgery (CSRF)", "details": "### Impact\n\n> A request forgery attack can be performed on Varnish Cache servers that have the HTTP/2 protocol turned on. An attacker may introduce characters through the HTTP/2 pseudo-headers that are invalid in the context of an HTTP/1 request line, causing the Varnish server to produce invalid HTTP/1 requests to the backend. This may in turn be used to successfully exploit vulnerabilities in a server behind the Varnish server.\n> -- https://varnish-cache.org/security/VSV00011.html#vsv00011\n\n### Patches\n\nThis is fixed in Varnish 6.0.11; Varnish 6.0.11 is available in `kube-httpcache` versions v0.7.1 and later.\n\n### Workarounds\n\nSee [upstream mitigation hints](https://varnish-cache.org/security/VSV00011.html#mitigation).\n\n### References\n\n- https://varnish-cache.org/security/VSV00011.html#vsv00011\n\n", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/12/GHSA-q7qq-9gx2-ggxv/GHSA-q7qq-9gx2-ggxv.json b/advisories/github-reviewed/2022/12/GHSA-q7qq-9gx2-ggxv/GHSA-q7qq-9gx2-ggxv.json index 564ea9111e9..57409489851 100644 --- a/advisories/github-reviewed/2022/12/GHSA-q7qq-9gx2-ggxv/GHSA-q7qq-9gx2-ggxv.json +++ b/advisories/github-reviewed/2022/12/GHSA-q7qq-9gx2-ggxv/GHSA-q7qq-9gx2-ggxv.json @@ -3,14 +3,10 @@ "id": "GHSA-q7qq-9gx2-ggxv", "modified": "2022-12-02T22:26:45Z", "published": "2022-12-02T22:26:45Z", - "aliases": [ - - ], + "aliases": [], "summary": "phpxmlrpc vulnerable to argument injection", "details": "phpxmlrpc vulnerable to argument injection via local file access in `Client:send` via manipulation of `$protocol` argument.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2023/03/GHSA-2563-fp9c-mgm8/GHSA-2563-fp9c-mgm8.json b/advisories/github-reviewed/2023/03/GHSA-2563-fp9c-mgm8/GHSA-2563-fp9c-mgm8.json index 5915572487b..2327c339c18 100644 --- a/advisories/github-reviewed/2023/03/GHSA-2563-fp9c-mgm8/GHSA-2563-fp9c-mgm8.json +++ b/advisories/github-reviewed/2023/03/GHSA-2563-fp9c-mgm8/GHSA-2563-fp9c-mgm8.json @@ -8,9 +8,7 @@ ], "summary": "Moodle Session Fixation vulnerability", "details": "In Moodle, a remote code execution risk was identified in the Shibboleth authentication plugin.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2023/03/GHSA-wm8x-php5-hvq6/GHSA-wm8x-php5-hvq6.json b/advisories/github-reviewed/2023/03/GHSA-wm8x-php5-hvq6/GHSA-wm8x-php5-hvq6.json index 10681ddb2e2..f6037b9ee34 100644 --- a/advisories/github-reviewed/2023/03/GHSA-wm8x-php5-hvq6/GHSA-wm8x-php5-hvq6.json +++ b/advisories/github-reviewed/2023/03/GHSA-wm8x-php5-hvq6/GHSA-wm8x-php5-hvq6.json @@ -3,14 +3,10 @@ "id": "GHSA-wm8x-php5-hvq6", "modified": "2023-03-07T20:13:19Z", "published": "2023-03-07T20:13:19Z", - "aliases": [ - - ], + "aliases": [], "summary": "Maligned causes incorrect deallocation", "details": "`maligned::align_first` manually allocates with an alignment larger than T, and then uses `Vec::from_raw_parts` on that allocation to get a `Vec`.\n\n[`GlobalAlloc::dealloc`](https://doc.rust-lang.org/std/alloc/trait.GlobalAlloc.html#tymethod.dealloc) requires that the `layout` argument must be the same layout that was used to allocate that block of memory.\n\nWhen deallocating, `Box` and `Vec` may not respect the specified alignment and can cause undefined behavior.\n", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -51,9 +47,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2023-03-07T20:13:19Z", diff --git a/advisories/github-reviewed/2023/10/GHSA-rm7j-f5g5-27vv/GHSA-rm7j-f5g5-27vv.json b/advisories/github-reviewed/2023/10/GHSA-rm7j-f5g5-27vv/GHSA-rm7j-f5g5-27vv.json index a903e183a44..99160461269 100644 --- a/advisories/github-reviewed/2023/10/GHSA-rm7j-f5g5-27vv/GHSA-rm7j-f5g5-27vv.json +++ b/advisories/github-reviewed/2023/10/GHSA-rm7j-f5g5-27vv/GHSA-rm7j-f5g5-27vv.json @@ -4,9 +4,7 @@ "modified": "2024-06-21T21:33:58Z", "published": "2023-10-12T18:30:28Z", "withdrawn": "2023-11-14T22:24:36Z", - "aliases": [ - - ], + "aliases": [], "summary": "Duplicate Advisory: Denial of Service in JSON-Java", "details": "## Duplicate Advisory\nThis advisory has been withdrawn because it is a duplicate of GHSA-4jq9-2xhw-jpx7. This link is maintained to preserve external references.\n\n## Original Description\nDenial of Service in JSON-Java versions prior to 20230618.  A bug in the parser means that an input string of modest size can lead to indefinite amounts of memory being used.  \n", "severity": [ diff --git a/advisories/unreviewed/2022/04/GHSA-22qq-g5f9-r82v/GHSA-22qq-g5f9-r82v.json b/advisories/unreviewed/2022/04/GHSA-22qq-g5f9-r82v/GHSA-22qq-g5f9-r82v.json index d48ed437c93..c9a7a2c2928 100644 --- a/advisories/unreviewed/2022/04/GHSA-22qq-g5f9-r82v/GHSA-22qq-g5f9-r82v.json +++ b/advisories/unreviewed/2022/04/GHSA-22qq-g5f9-r82v/GHSA-22qq-g5f9-r82v.json @@ -7,12 +7,8 @@ "CVE-2004-0352" ], "details": "Cisco 11000 Series Content Services Switches (CSS) running WebNS 5.0(x) before 05.0(04.07)S, and 6.10(x) before 06.10(02.05)S allow remote attackers to cause a denial of service (device reset) via a malformed packet to UDP port 5002.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-23h9-h5hh-w97x/GHSA-23h9-h5hh-w97x.json b/advisories/unreviewed/2022/04/GHSA-23h9-h5hh-w97x/GHSA-23h9-h5hh-w97x.json index e6300b2d65c..f22506c55a8 100644 --- a/advisories/unreviewed/2022/04/GHSA-23h9-h5hh-w97x/GHSA-23h9-h5hh-w97x.json +++ b/advisories/unreviewed/2022/04/GHSA-23h9-h5hh-w97x/GHSA-23h9-h5hh-w97x.json @@ -7,12 +7,8 @@ "CVE-2004-0455" ], "details": "Buffer overflow in cgi.c in www-sql before 0.5.7 allows local users to execute arbitrary code via a web page that is processed by www-sql.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-2497-mh3q-frq7/GHSA-2497-mh3q-frq7.json b/advisories/unreviewed/2022/04/GHSA-2497-mh3q-frq7/GHSA-2497-mh3q-frq7.json index 00d15fb93f9..aa582eaa6e0 100644 --- a/advisories/unreviewed/2022/04/GHSA-2497-mh3q-frq7/GHSA-2497-mh3q-frq7.json +++ b/advisories/unreviewed/2022/04/GHSA-2497-mh3q-frq7/GHSA-2497-mh3q-frq7.json @@ -7,12 +7,8 @@ "CVE-2004-0349" ], "details": "Directory traversal vulnerability in GWeb HTTP Server 0.6 allows remote attackers to view arbitrary files via a .. (dot dot) in the URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-249j-v9cr-p779/GHSA-249j-v9cr-p779.json b/advisories/unreviewed/2022/04/GHSA-249j-v9cr-p779/GHSA-249j-v9cr-p779.json index 1723aa5b860..e3589dd275c 100644 --- a/advisories/unreviewed/2022/04/GHSA-249j-v9cr-p779/GHSA-249j-v9cr-p779.json +++ b/advisories/unreviewed/2022/04/GHSA-249j-v9cr-p779/GHSA-249j-v9cr-p779.json @@ -7,12 +7,8 @@ "CVE-2004-0453" ], "details": "Format string vulnerability in the monitor \"memory dump\" command in VICE 1.6 to 1.14 allows local users to cause a denial of service (emulator crash) and possibly execute arbitrary code via format string specifiers in an output string.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-24gh-95jq-75q6/GHSA-24gh-95jq-75q6.json b/advisories/unreviewed/2022/04/GHSA-24gh-95jq-75q6/GHSA-24gh-95jq-75q6.json index dbe2410e933..d4effb17d55 100644 --- a/advisories/unreviewed/2022/04/GHSA-24gh-95jq-75q6/GHSA-24gh-95jq-75q6.json +++ b/advisories/unreviewed/2022/04/GHSA-24gh-95jq-75q6/GHSA-24gh-95jq-75q6.json @@ -7,12 +7,8 @@ "CVE-2004-0420" ], "details": "The Windows Shell application in Windows 98, Windows ME, Windows NT 4.0, Windows 2000, Windows XP, and Windows Server 2003 allows remote attackers to execute arbitrary code by spoofing the type of a file via a CLSID specifier in the filename, as demonstrated using Internet Explorer 6.0.2800.1106 on Windows XP.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -76,9 +72,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-24v9-cchp-66h8/GHSA-24v9-cchp-66h8.json b/advisories/unreviewed/2022/04/GHSA-24v9-cchp-66h8/GHSA-24v9-cchp-66h8.json index 85a4d9dc415..4debb5d3312 100644 --- a/advisories/unreviewed/2022/04/GHSA-24v9-cchp-66h8/GHSA-24v9-cchp-66h8.json +++ b/advisories/unreviewed/2022/04/GHSA-24v9-cchp-66h8/GHSA-24v9-cchp-66h8.json @@ -7,12 +7,8 @@ "CVE-2004-0281" ], "details": "Caucho Technology Resin 2.1.12 allows remote attackers to gain sensitive information and view the contents of the /WEB-INF/ directory via an HTTP request for \"WEB-INF..\", which is equivalent to \"WEB-INF\" in Windows.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2534-c44q-6xm5/GHSA-2534-c44q-6xm5.json b/advisories/unreviewed/2022/04/GHSA-2534-c44q-6xm5/GHSA-2534-c44q-6xm5.json index 4c5fc785019..b9933e9568d 100644 --- a/advisories/unreviewed/2022/04/GHSA-2534-c44q-6xm5/GHSA-2534-c44q-6xm5.json +++ b/advisories/unreviewed/2022/04/GHSA-2534-c44q-6xm5/GHSA-2534-c44q-6xm5.json @@ -7,12 +7,8 @@ "CVE-2004-0293" ], "details": "Directory traversal vulnerability in ShopCartCGI 2.3 allows remote attackers to retrieve arbitrary files via a .. (dot dot) in a HTTP request to (1) gotopage.cgi or (2) genindexpage.cgi.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-25w4-83pf-9vjv/GHSA-25w4-83pf-9vjv.json b/advisories/unreviewed/2022/04/GHSA-25w4-83pf-9vjv/GHSA-25w4-83pf-9vjv.json index d2607c8cbcb..259777f1e2f 100644 --- a/advisories/unreviewed/2022/04/GHSA-25w4-83pf-9vjv/GHSA-25w4-83pf-9vjv.json +++ b/advisories/unreviewed/2022/04/GHSA-25w4-83pf-9vjv/GHSA-25w4-83pf-9vjv.json @@ -7,12 +7,8 @@ "CVE-2004-0310" ], "details": "Cross-site scripting (XSS) vulnerability in LiveJournal 1.0 and 1.1 allows remote attackers to execute Javascript as other users via the stylesheet, which does not strip the semicolon or parentheses, as demonstrated using a background:url.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-269j-j44g-6c79/GHSA-269j-j44g-6c79.json b/advisories/unreviewed/2022/04/GHSA-269j-j44g-6c79/GHSA-269j-j44g-6c79.json index d403ecfb045..940a04c4122 100644 --- a/advisories/unreviewed/2022/04/GHSA-269j-j44g-6c79/GHSA-269j-j44g-6c79.json +++ b/advisories/unreviewed/2022/04/GHSA-269j-j44g-6c79/GHSA-269j-j44g-6c79.json @@ -7,12 +7,8 @@ "CVE-2004-0275" ], "details": "SQL injection vulnerability in calendar_download.php in BosDates 3.2 and earlier allows remote attackers to obtain sensitive information and gain access via the calendar parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-276f-pggp-38m8/GHSA-276f-pggp-38m8.json b/advisories/unreviewed/2022/04/GHSA-276f-pggp-38m8/GHSA-276f-pggp-38m8.json index 88ea196644a..c20fe7d7afb 100644 --- a/advisories/unreviewed/2022/04/GHSA-276f-pggp-38m8/GHSA-276f-pggp-38m8.json +++ b/advisories/unreviewed/2022/04/GHSA-276f-pggp-38m8/GHSA-276f-pggp-38m8.json @@ -7,12 +7,8 @@ "CVE-2004-0261" ], "details": "oj.cgi in OpenJournal 2.0 through 2.0.5 allows remote attackers to bypass authentication and access the control panel via a 0 in the uid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-29mp-vjf6-73c4/GHSA-29mp-vjf6-73c4.json b/advisories/unreviewed/2022/04/GHSA-29mp-vjf6-73c4/GHSA-29mp-vjf6-73c4.json index b9f5c2fac5e..3108e89b988 100644 --- a/advisories/unreviewed/2022/04/GHSA-29mp-vjf6-73c4/GHSA-29mp-vjf6-73c4.json +++ b/advisories/unreviewed/2022/04/GHSA-29mp-vjf6-73c4/GHSA-29mp-vjf6-73c4.json @@ -7,12 +7,8 @@ "CVE-2004-0345" ], "details": "Buffer overflow in Red Faction client 1.20 and earlier allows remote servers to execute arbitrary code via a long server name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2cw4-669c-6q7c/GHSA-2cw4-669c-6q7c.json b/advisories/unreviewed/2022/04/GHSA-2cw4-669c-6q7c/GHSA-2cw4-669c-6q7c.json index 7f0ccf86882..937d16c9018 100644 --- a/advisories/unreviewed/2022/04/GHSA-2cw4-669c-6q7c/GHSA-2cw4-669c-6q7c.json +++ b/advisories/unreviewed/2022/04/GHSA-2cw4-669c-6q7c/GHSA-2cw4-669c-6q7c.json @@ -7,12 +7,8 @@ "CVE-2004-0379" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Microsoft SharePoint Portal Server 2001 allow remote attackers to process arbitrary web content and steal cookies via certain server scripts.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2g24-99jw-85x7/GHSA-2g24-99jw-85x7.json b/advisories/unreviewed/2022/04/GHSA-2g24-99jw-85x7/GHSA-2g24-99jw-85x7.json index 9392f6998fb..31023f00e29 100644 --- a/advisories/unreviewed/2022/04/GHSA-2g24-99jw-85x7/GHSA-2g24-99jw-85x7.json +++ b/advisories/unreviewed/2022/04/GHSA-2g24-99jw-85x7/GHSA-2g24-99jw-85x7.json @@ -7,12 +7,8 @@ "CVE-2004-0292" ], "details": "Buffer overflow in KarjaSoft Sami HTTP Server 1.0.4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long HTTP GET request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2h87-x45x-cx46/GHSA-2h87-x45x-cx46.json b/advisories/unreviewed/2022/04/GHSA-2h87-x45x-cx46/GHSA-2h87-x45x-cx46.json index f66b3d308b0..3fbfed05dab 100644 --- a/advisories/unreviewed/2022/04/GHSA-2h87-x45x-cx46/GHSA-2h87-x45x-cx46.json +++ b/advisories/unreviewed/2022/04/GHSA-2h87-x45x-cx46/GHSA-2h87-x45x-cx46.json @@ -7,12 +7,8 @@ "CVE-2004-0335" ], "details": "LAN SUITE Web Mail 602Pro, when configured to use the \"Directory browsing\" feature, allows remote attackers to obtain a directory listing via an HTTP request to (1) index.html, (2) cgi-bin/, or (3) users/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2hhg-c3w2-vgr6/GHSA-2hhg-c3w2-vgr6.json b/advisories/unreviewed/2022/04/GHSA-2hhg-c3w2-vgr6/GHSA-2hhg-c3w2-vgr6.json index a2733ad3907..5d2e52591ba 100644 --- a/advisories/unreviewed/2022/04/GHSA-2hhg-c3w2-vgr6/GHSA-2hhg-c3w2-vgr6.json +++ b/advisories/unreviewed/2022/04/GHSA-2hhg-c3w2-vgr6/GHSA-2hhg-c3w2-vgr6.json @@ -7,12 +7,8 @@ "CVE-2004-0259" ], "details": "The check_referer() function in Formmail.php 5.0 and earlier allows remote attackers to bypass access restrictions via an empty or spoofed HTTP Referer, as demonstrated using an application on the same web server that contains a cross-site scripting (XSS) issue.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2mg5-26r6-fpmg/GHSA-2mg5-26r6-fpmg.json b/advisories/unreviewed/2022/04/GHSA-2mg5-26r6-fpmg/GHSA-2mg5-26r6-fpmg.json index f7226163892..eed2d03ff15 100644 --- a/advisories/unreviewed/2022/04/GHSA-2mg5-26r6-fpmg/GHSA-2mg5-26r6-fpmg.json +++ b/advisories/unreviewed/2022/04/GHSA-2mg5-26r6-fpmg/GHSA-2mg5-26r6-fpmg.json @@ -7,12 +7,8 @@ "CVE-2004-0363" ], "details": "Stack-based buffer overflow in the SymSpamHelper ActiveX component (symspam.dll) in Norton AntiSpam 2004, as used in Norton Internet Security 2004, allows remote attackers to execute arbitrary code via a long parameter to the LaunchCustomRuleWizard method.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2v53-xxqh-55cg/GHSA-2v53-xxqh-55cg.json b/advisories/unreviewed/2022/04/GHSA-2v53-xxqh-55cg/GHSA-2v53-xxqh-55cg.json index e0c2977e29e..c8f85c0a9f8 100644 --- a/advisories/unreviewed/2022/04/GHSA-2v53-xxqh-55cg/GHSA-2v53-xxqh-55cg.json +++ b/advisories/unreviewed/2022/04/GHSA-2v53-xxqh-55cg/GHSA-2v53-xxqh-55cg.json @@ -7,12 +7,8 @@ "CVE-2004-0354" ], "details": "Multiple format string vulnerabilities in GNU Anubis 3.6.0 through 3.6.2, 3.9.92 and 3.9.93 allow remote attackers to execute arbitrary code via format string specifiers in strings passed to (1) the info function in log.c, (2) the anubis_error function in errs.c, or (3) the ssl_error function in ssl.c.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2w6p-9jq8-5xfq/GHSA-2w6p-9jq8-5xfq.json b/advisories/unreviewed/2022/04/GHSA-2w6p-9jq8-5xfq/GHSA-2w6p-9jq8-5xfq.json index 204d219dd02..72fde4b4dbd 100644 --- a/advisories/unreviewed/2022/04/GHSA-2w6p-9jq8-5xfq/GHSA-2w6p-9jq8-5xfq.json +++ b/advisories/unreviewed/2022/04/GHSA-2w6p-9jq8-5xfq/GHSA-2w6p-9jq8-5xfq.json @@ -7,12 +7,8 @@ "CVE-2004-0339" ], "details": "Cross-site scripting (XSS) vulnerability in ViewTopic.php in phpBB, possibly 2.0.6c and earlier, allows remote attackers to execute arbitrary script or HTML as other users via the postorder parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2wvh-w7fv-6223/GHSA-2wvh-w7fv-6223.json b/advisories/unreviewed/2022/04/GHSA-2wvh-w7fv-6223/GHSA-2wvh-w7fv-6223.json index b16cd4e936c..87d1eabf0b2 100644 --- a/advisories/unreviewed/2022/04/GHSA-2wvh-w7fv-6223/GHSA-2wvh-w7fv-6223.json +++ b/advisories/unreviewed/2022/04/GHSA-2wvh-w7fv-6223/GHSA-2wvh-w7fv-6223.json @@ -7,12 +7,8 @@ "CVE-2004-0319" ], "details": "Cross-site scripting (XSS) vulnerability in the font tag in ezBoard 7.3u allows remote attackers to execute arbitrary script as other users, as demonstrated using the background:url in a (1) font color or (2) font face argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2xfv-3xp8-jwv5/GHSA-2xfv-3xp8-jwv5.json b/advisories/unreviewed/2022/04/GHSA-2xfv-3xp8-jwv5/GHSA-2xfv-3xp8-jwv5.json index 06105f2e347..11e37b905bf 100644 --- a/advisories/unreviewed/2022/04/GHSA-2xfv-3xp8-jwv5/GHSA-2xfv-3xp8-jwv5.json +++ b/advisories/unreviewed/2022/04/GHSA-2xfv-3xp8-jwv5/GHSA-2xfv-3xp8-jwv5.json @@ -7,12 +7,8 @@ "CVE-2004-0320" ], "details": "Unknown vulnerability in nCipher Hardware Security Modules (HSM) 1.67.x through 1.99.x allows local users to access secrets stored in the module's run-time memory via certain sequences of commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-349j-652r-ghg9/GHSA-349j-652r-ghg9.json b/advisories/unreviewed/2022/04/GHSA-349j-652r-ghg9/GHSA-349j-652r-ghg9.json index 2d030922969..f8f3241c1a8 100644 --- a/advisories/unreviewed/2022/04/GHSA-349j-652r-ghg9/GHSA-349j-652r-ghg9.json +++ b/advisories/unreviewed/2022/04/GHSA-349j-652r-ghg9/GHSA-349j-652r-ghg9.json @@ -7,12 +7,8 @@ "CVE-2004-0459" ], "details": "The Clear Channel Assessment (CCA) algorithm in the IEEE 802.11 wireless protocol, when using DSSS transmission encoding, allows remote attackers to cause a denial of service via a certain RF signal that causes a channel to appear busy (aka \"jabber\"), which prevents devices from transmitting data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-38x8-c543-7468/GHSA-38x8-c543-7468.json b/advisories/unreviewed/2022/04/GHSA-38x8-c543-7468/GHSA-38x8-c543-7468.json index 2261aae1231..84ae333797f 100644 --- a/advisories/unreviewed/2022/04/GHSA-38x8-c543-7468/GHSA-38x8-c543-7468.json +++ b/advisories/unreviewed/2022/04/GHSA-38x8-c543-7468/GHSA-38x8-c543-7468.json @@ -7,12 +7,8 @@ "CVE-2004-0304" ], "details": "SQL injection vulnerability in browse_items.asp in WebCortex WebStores 2000 6.0 allows remote attackers to gain unauthorized access and execute arbitrary commands via the Search_Text parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3m3c-pvwf-4p64/GHSA-3m3c-pvwf-4p64.json b/advisories/unreviewed/2022/04/GHSA-3m3c-pvwf-4p64/GHSA-3m3c-pvwf-4p64.json index c102a451936..ae20d72ae89 100644 --- a/advisories/unreviewed/2022/04/GHSA-3m3c-pvwf-4p64/GHSA-3m3c-pvwf-4p64.json +++ b/advisories/unreviewed/2022/04/GHSA-3m3c-pvwf-4p64/GHSA-3m3c-pvwf-4p64.json @@ -7,12 +7,8 @@ "CVE-2004-0448" ], "details": "Format string vulnerability in the log function for jftpgw 0.13.4 and earlier allows remote authenticated users to execute arbitrary code via format string specifiers in certain syslog messages.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3p2x-2cfv-p7xm/GHSA-3p2x-2cfv-p7xm.json b/advisories/unreviewed/2022/04/GHSA-3p2x-2cfv-p7xm/GHSA-3p2x-2cfv-p7xm.json index 1e814a83614..ccb3cbf3414 100644 --- a/advisories/unreviewed/2022/04/GHSA-3p2x-2cfv-p7xm/GHSA-3p2x-2cfv-p7xm.json +++ b/advisories/unreviewed/2022/04/GHSA-3p2x-2cfv-p7xm/GHSA-3p2x-2cfv-p7xm.json @@ -7,12 +7,8 @@ "CVE-2004-0231" ], "details": "Multiple vulnerabilities in Midnight Commander (mc) before 4.6.0, with unknown impact, related to \"Insecure temporary file and directory creations.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3vr6-cm7r-pmpq/GHSA-3vr6-cm7r-pmpq.json b/advisories/unreviewed/2022/04/GHSA-3vr6-cm7r-pmpq/GHSA-3vr6-cm7r-pmpq.json index 85d50323d6c..743bcc28b4d 100644 --- a/advisories/unreviewed/2022/04/GHSA-3vr6-cm7r-pmpq/GHSA-3vr6-cm7r-pmpq.json +++ b/advisories/unreviewed/2022/04/GHSA-3vr6-cm7r-pmpq/GHSA-3vr6-cm7r-pmpq.json @@ -7,12 +7,8 @@ "CVE-2004-0299" ], "details": "Buffer overflow in smallftpd 0.99 allows local users to cause a denial of service (crash) via an FTP request with a large number of \"/\" (slash) characters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3vrg-5j8v-8v4x/GHSA-3vrg-5j8v-8v4x.json b/advisories/unreviewed/2022/04/GHSA-3vrg-5j8v-8v4x/GHSA-3vrg-5j8v-8v4x.json index 39de7d726b5..e5b7d3716b8 100644 --- a/advisories/unreviewed/2022/04/GHSA-3vrg-5j8v-8v4x/GHSA-3vrg-5j8v-8v4x.json +++ b/advisories/unreviewed/2022/04/GHSA-3vrg-5j8v-8v4x/GHSA-3vrg-5j8v-8v4x.json @@ -7,12 +7,8 @@ "CVE-2004-0462" ], "details": "The built-in web servers for multiple networking devices do not set the Secure attribute for sensitive cookies in HTTPS sessions, which could cause the user agent to send those cookies in plaintext over an HTTP session with the same server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3vv5-76vv-6h5f/GHSA-3vv5-76vv-6h5f.json b/advisories/unreviewed/2022/04/GHSA-3vv5-76vv-6h5f/GHSA-3vv5-76vv-6h5f.json index 563f3739584..3d728088683 100644 --- a/advisories/unreviewed/2022/04/GHSA-3vv5-76vv-6h5f/GHSA-3vv5-76vv-6h5f.json +++ b/advisories/unreviewed/2022/04/GHSA-3vv5-76vv-6h5f/GHSA-3vv5-76vv-6h5f.json @@ -7,12 +7,8 @@ "CVE-2004-0258" ], "details": "Multiple buffer overflows in RealOne Player, RealOne Player 2.0, RealOne Enterprise Desktop, and RealPlayer Enterprise allow remote attackers to execute arbitrary code via malformed (1) .RP, (2) .RT, (3) .RAM, (4) .RPM or (5) .SMIL files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4565-7jh8-9r34/GHSA-4565-7jh8-9r34.json b/advisories/unreviewed/2022/04/GHSA-4565-7jh8-9r34/GHSA-4565-7jh8-9r34.json index 2e291cd5818..f35913d8197 100644 --- a/advisories/unreviewed/2022/04/GHSA-4565-7jh8-9r34/GHSA-4565-7jh8-9r34.json +++ b/advisories/unreviewed/2022/04/GHSA-4565-7jh8-9r34/GHSA-4565-7jh8-9r34.json @@ -7,12 +7,8 @@ "CVE-2004-0324" ], "details": "Confirm 0.62 and earlier could allow remote attackers to execute arbitrary code via an e-mail header that contains shell metacharacters such as \", `, |, ;, or $.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-45f9-vv4q-cgjw/GHSA-45f9-vv4q-cgjw.json b/advisories/unreviewed/2022/04/GHSA-45f9-vv4q-cgjw/GHSA-45f9-vv4q-cgjw.json index 804df847b6e..4dabe3fce98 100644 --- a/advisories/unreviewed/2022/04/GHSA-45f9-vv4q-cgjw/GHSA-45f9-vv4q-cgjw.json +++ b/advisories/unreviewed/2022/04/GHSA-45f9-vv4q-cgjw/GHSA-45f9-vv4q-cgjw.json @@ -7,12 +7,8 @@ "CVE-2004-0239" ], "details": "SQL injection vulnerability in showphoto.php in PhotoPost PHP Pro 4.6 and earlier allows remote attackers to gain unauthorized access via the photo variable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-48f4-f7g4-fr7r/GHSA-48f4-f7g4-fr7r.json b/advisories/unreviewed/2022/04/GHSA-48f4-f7g4-fr7r/GHSA-48f4-f7g4-fr7r.json index cf399150897..eb0adb299ef 100644 --- a/advisories/unreviewed/2022/04/GHSA-48f4-f7g4-fr7r/GHSA-48f4-f7g4-fr7r.json +++ b/advisories/unreviewed/2022/04/GHSA-48f4-f7g4-fr7r/GHSA-48f4-f7g4-fr7r.json @@ -7,12 +7,8 @@ "CVE-2004-0302" ], "details": "Directory traversal vulnerability in OWLS 1.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the (1) file parameter in index.php, (2) editfile in glossary.php, or (3) editfile in newmultiplechoice.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4pq3-767m-6x5g/GHSA-4pq3-767m-6x5g.json b/advisories/unreviewed/2022/04/GHSA-4pq3-767m-6x5g/GHSA-4pq3-767m-6x5g.json index b6ad2b15e16..deba02d91f3 100644 --- a/advisories/unreviewed/2022/04/GHSA-4pq3-767m-6x5g/GHSA-4pq3-767m-6x5g.json +++ b/advisories/unreviewed/2022/04/GHSA-4pq3-767m-6x5g/GHSA-4pq3-767m-6x5g.json @@ -7,12 +7,8 @@ "CVE-2004-0273" ], "details": "Directory traversal vulnerability in RealOne Player, RealOne Player 2.0, and RealOne Enterprise Desktop allows remote attackers to upload arbitrary files via an RMP file that contains .. (dot dot) sequences in a .rjs skin file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-4pvm-mp59-j2rf/GHSA-4pvm-mp59-j2rf.json b/advisories/unreviewed/2022/04/GHSA-4pvm-mp59-j2rf/GHSA-4pvm-mp59-j2rf.json index eaeb58b05ff..07c5722fc21 100644 --- a/advisories/unreviewed/2022/04/GHSA-4pvm-mp59-j2rf/GHSA-4pvm-mp59-j2rf.json +++ b/advisories/unreviewed/2022/04/GHSA-4pvm-mp59-j2rf/GHSA-4pvm-mp59-j2rf.json @@ -7,12 +7,8 @@ "CVE-2004-0433" ], "details": "Multiple buffer overflows in the Real-Time Streaming Protocol (RTSP) client for (1) MPlayer before 1.0pre4 and (2) xine lib (xine-lib) before 1-rc4, when playing Real RTSP (realrtsp) streams, allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via (a) long URLs, (b) long Real server responses, or (c) long Real Data Transport (RDT) packets.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4x5x-96mg-mgf7/GHSA-4x5x-96mg-mgf7.json b/advisories/unreviewed/2022/04/GHSA-4x5x-96mg-mgf7/GHSA-4x5x-96mg-mgf7.json index 9555d529bfe..80922a05f29 100644 --- a/advisories/unreviewed/2022/04/GHSA-4x5x-96mg-mgf7/GHSA-4x5x-96mg-mgf7.json +++ b/advisories/unreviewed/2022/04/GHSA-4x5x-96mg-mgf7/GHSA-4x5x-96mg-mgf7.json @@ -7,12 +7,8 @@ "CVE-2004-0291" ], "details": "SQL injection vulnerability in post.php for YaBB SE 1.5.4 and 1.5.5 allows remote attackers to obtain hashed passwords via the quote parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5ff7-p7hw-6x23/GHSA-5ff7-p7hw-6x23.json b/advisories/unreviewed/2022/04/GHSA-5ff7-p7hw-6x23/GHSA-5ff7-p7hw-6x23.json index e2379bd48ac..24ad0af7314 100644 --- a/advisories/unreviewed/2022/04/GHSA-5ff7-p7hw-6x23/GHSA-5ff7-p7hw-6x23.json +++ b/advisories/unreviewed/2022/04/GHSA-5ff7-p7hw-6x23/GHSA-5ff7-p7hw-6x23.json @@ -7,12 +7,8 @@ "CVE-2004-0340" ], "details": "Stack-based buffer overflow in WFTPD Pro Server 3.21 Release 1, Pro Server 3.20 Release 2, Server 3.21 Release 1, and Server 3.10 allows local users to execute arbitrary code via long (1) LIST, (2) NLST, or (3) STAT commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5fhm-3rf4-cfq4/GHSA-5fhm-3rf4-cfq4.json b/advisories/unreviewed/2022/04/GHSA-5fhm-3rf4-cfq4/GHSA-5fhm-3rf4-cfq4.json index befaafdd350..2a8047ba8cf 100644 --- a/advisories/unreviewed/2022/04/GHSA-5fhm-3rf4-cfq4/GHSA-5fhm-3rf4-cfq4.json +++ b/advisories/unreviewed/2022/04/GHSA-5fhm-3rf4-cfq4/GHSA-5fhm-3rf4-cfq4.json @@ -7,12 +7,8 @@ "CVE-2004-0425" ], "details": "Heap-based buffer overflow in SiteMinder Affiliate Agent 4.x allows remote attackers to execute arbitrary code via a large SMPROFILE cookie.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5fjq-4fxg-rx9m/GHSA-5fjq-4fxg-rx9m.json b/advisories/unreviewed/2022/04/GHSA-5fjq-4fxg-rx9m/GHSA-5fjq-4fxg-rx9m.json index ed3eaca6162..36c2e5a2d43 100644 --- a/advisories/unreviewed/2022/04/GHSA-5fjq-4fxg-rx9m/GHSA-5fjq-4fxg-rx9m.json +++ b/advisories/unreviewed/2022/04/GHSA-5fjq-4fxg-rx9m/GHSA-5fjq-4fxg-rx9m.json @@ -7,12 +7,8 @@ "CVE-2004-0350" ], "details": "SpiderSales shopping cart does not enforce a minimum length for the private key, which can make it easier for local users to obtain the private key by factoring.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5j5j-qcr8-cxv4/GHSA-5j5j-qcr8-cxv4.json b/advisories/unreviewed/2022/04/GHSA-5j5j-qcr8-cxv4/GHSA-5j5j-qcr8-cxv4.json index 707c3519c44..0fc99c3b233 100644 --- a/advisories/unreviewed/2022/04/GHSA-5j5j-qcr8-cxv4/GHSA-5j5j-qcr8-cxv4.json +++ b/advisories/unreviewed/2022/04/GHSA-5j5j-qcr8-cxv4/GHSA-5j5j-qcr8-cxv4.json @@ -7,12 +7,8 @@ "CVE-2004-0391" ], "details": "Cisco Wireless LAN Solution Engine (WLSE) 2.0 through 2.5 and Hosting Solution Engine (HSE) 1.7 through 1.7.3 have a hardcoded username and password, which allows remote attackers to add new users, modify existing users, and change configuration.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5mh2-6fm3-6r87/GHSA-5mh2-6fm3-6r87.json b/advisories/unreviewed/2022/04/GHSA-5mh2-6fm3-6r87/GHSA-5mh2-6fm3-6r87.json index 6bfdce9021f..2ca04ca315a 100644 --- a/advisories/unreviewed/2022/04/GHSA-5mh2-6fm3-6r87/GHSA-5mh2-6fm3-6r87.json +++ b/advisories/unreviewed/2022/04/GHSA-5mh2-6fm3-6r87/GHSA-5mh2-6fm3-6r87.json @@ -7,12 +7,8 @@ "CVE-2004-0295" ], "details": "TsFtpSrv.exe in Broker FTP 6.1.0.0 allows remote attackers to cause a denial of service (CPU consumption) via an open idle connection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5r64-7xgq-qr72/GHSA-5r64-7xgq-qr72.json b/advisories/unreviewed/2022/04/GHSA-5r64-7xgq-qr72/GHSA-5r64-7xgq-qr72.json index 4183657f74e..4414eeff508 100644 --- a/advisories/unreviewed/2022/04/GHSA-5r64-7xgq-qr72/GHSA-5r64-7xgq-qr72.json +++ b/advisories/unreviewed/2022/04/GHSA-5r64-7xgq-qr72/GHSA-5r64-7xgq-qr72.json @@ -7,12 +7,8 @@ "CVE-2004-0252" ], "details": "TYPSoft FTP Server 1.10 allows remote attackers to cause a denial of service (CPU consumption) via an empty USER name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5rhm-2fg6-w34r/GHSA-5rhm-2fg6-w34r.json b/advisories/unreviewed/2022/04/GHSA-5rhm-2fg6-w34r/GHSA-5rhm-2fg6-w34r.json index 285357b3fbb..75cce40a9b8 100644 --- a/advisories/unreviewed/2022/04/GHSA-5rhm-2fg6-w34r/GHSA-5rhm-2fg6-w34r.json +++ b/advisories/unreviewed/2022/04/GHSA-5rhm-2fg6-w34r/GHSA-5rhm-2fg6-w34r.json @@ -7,12 +7,8 @@ "CVE-2004-0262" ], "details": "Stack-based buffer overflow in The Palace 3.5 and earlier client allows remote attackers to execute arbitrary code via a link to a palace:// url followed by a long server address string.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5rvx-fq47-p5r5/GHSA-5rvx-fq47-p5r5.json b/advisories/unreviewed/2022/04/GHSA-5rvx-fq47-p5r5/GHSA-5rvx-fq47-p5r5.json index 3136e2d1b7e..763c1df508c 100644 --- a/advisories/unreviewed/2022/04/GHSA-5rvx-fq47-p5r5/GHSA-5rvx-fq47-p5r5.json +++ b/advisories/unreviewed/2022/04/GHSA-5rvx-fq47-p5r5/GHSA-5rvx-fq47-p5r5.json @@ -7,12 +7,8 @@ "CVE-2004-0303" ], "details": "OWLS 1.0 allows remote attackers to retrieve arbitrary files via absolute pathnames in (1) the file parameter in /glossaries/index.php, (2) the filename parameter in /readings/index.php, or (3) the filename parameter in /multiplechoice/resultsignore.php, as demonstrated using /etc/passwd.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-62j2-7hqq-4gqf/GHSA-62j2-7hqq-4gqf.json b/advisories/unreviewed/2022/04/GHSA-62j2-7hqq-4gqf/GHSA-62j2-7hqq-4gqf.json index 587d63210dd..f6fd74e6420 100644 --- a/advisories/unreviewed/2022/04/GHSA-62j2-7hqq-4gqf/GHSA-62j2-7hqq-4gqf.json +++ b/advisories/unreviewed/2022/04/GHSA-62j2-7hqq-4gqf/GHSA-62j2-7hqq-4gqf.json @@ -7,12 +7,8 @@ "CVE-2004-0277" ], "details": "Format string vulnerability in Dream FTP 1.02 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers in the username.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-633w-j862-v7j8/GHSA-633w-j862-v7j8.json b/advisories/unreviewed/2022/04/GHSA-633w-j862-v7j8/GHSA-633w-j862-v7j8.json index 8a38723033a..85e1d2ada12 100644 --- a/advisories/unreviewed/2022/04/GHSA-633w-j862-v7j8/GHSA-633w-j862-v7j8.json +++ b/advisories/unreviewed/2022/04/GHSA-633w-j862-v7j8/GHSA-633w-j862-v7j8.json @@ -7,12 +7,8 @@ "CVE-2004-0300" ], "details": "SQL injection vulnerability in Online Store Kit 3.0 allows remote attackers to inject arbitrary SQL and gain unauthorized access via (1) the cat parameter in shop.php, (2) the id parameter in more.php, (3) the cat_manufacturer parameter in shop_by_brand.php, or (4) the id parameter in listing.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-67cc-jx4w-3hpw/GHSA-67cc-jx4w-3hpw.json b/advisories/unreviewed/2022/04/GHSA-67cc-jx4w-3hpw/GHSA-67cc-jx4w-3hpw.json index 7602c757889..e8e4463366d 100644 --- a/advisories/unreviewed/2022/04/GHSA-67cc-jx4w-3hpw/GHSA-67cc-jx4w-3hpw.json +++ b/advisories/unreviewed/2022/04/GHSA-67cc-jx4w-3hpw/GHSA-67cc-jx4w-3hpw.json @@ -7,12 +7,8 @@ "CVE-2004-0233" ], "details": "Utempter allows device names that contain .. (dot dot) directory traversal sequences, which allows local users to overwrite arbitrary files via a symlink attack on device names in combination with an application that trusts the utmp or wtmp files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-68g7-f6pm-w964/GHSA-68g7-f6pm-w964.json b/advisories/unreviewed/2022/04/GHSA-68g7-f6pm-w964/GHSA-68g7-f6pm-w964.json index 591df13726b..1e2abbb0d16 100644 --- a/advisories/unreviewed/2022/04/GHSA-68g7-f6pm-w964/GHSA-68g7-f6pm-w964.json +++ b/advisories/unreviewed/2022/04/GHSA-68g7-f6pm-w964/GHSA-68g7-f6pm-w964.json @@ -7,12 +7,8 @@ "CVE-2004-0238" ], "details": "Multiple buffer overflows in Overkill (0verkill) 0.15pre3 might allow local users to execute arbitrary code in the client via a long HOME environment variable in the (1) load_cfg and (2) save_cfg functions; possibly allow remote attackers to execute arbitrary code via long strings to (3) the send_message function; and, in the server, via (4) the parse_command_line function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6fqr-wrf4-vr9r/GHSA-6fqr-wrf4-vr9r.json b/advisories/unreviewed/2022/04/GHSA-6fqr-wrf4-vr9r/GHSA-6fqr-wrf4-vr9r.json index b501f40ae2c..f80a5e7bc07 100644 --- a/advisories/unreviewed/2022/04/GHSA-6fqr-wrf4-vr9r/GHSA-6fqr-wrf4-vr9r.json +++ b/advisories/unreviewed/2022/04/GHSA-6fqr-wrf4-vr9r/GHSA-6fqr-wrf4-vr9r.json @@ -7,12 +7,8 @@ "CVE-2004-0430" ], "details": "Stack-based buffer overflow in AppleFileServer for Mac OS X 10.3.3 and earlier allows remote attackers to execute arbitrary code via a LoginExt packet for a Cleartext Password User Authentication Method (UAM) request with a PathName argument that includes an AFPName type string that is longer than the associated length field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6h6g-p926-x7hr/GHSA-6h6g-p926-x7hr.json b/advisories/unreviewed/2022/04/GHSA-6h6g-p926-x7hr/GHSA-6h6g-p926-x7hr.json index c6eed5aee5b..029ce5beb78 100644 --- a/advisories/unreviewed/2022/04/GHSA-6h6g-p926-x7hr/GHSA-6h6g-p926-x7hr.json +++ b/advisories/unreviewed/2022/04/GHSA-6h6g-p926-x7hr/GHSA-6h6g-p926-x7hr.json @@ -7,12 +7,8 @@ "CVE-2004-0451" ], "details": "Multiple format string vulnerabilities in the (1) logquit, (2) logerr, or (3) loginfo functions in Software Upgrade Protocol (SUP) allows remote attackers to execute arbitrary code via format string specifiers in messages that are logged by syslog.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6hfq-cp5h-927v/GHSA-6hfq-cp5h-927v.json b/advisories/unreviewed/2022/04/GHSA-6hfq-cp5h-927v/GHSA-6hfq-cp5h-927v.json index 0eb64b3f98a..f4d312ed4ba 100644 --- a/advisories/unreviewed/2022/04/GHSA-6hfq-cp5h-927v/GHSA-6hfq-cp5h-927v.json +++ b/advisories/unreviewed/2022/04/GHSA-6hfq-cp5h-927v/GHSA-6hfq-cp5h-927v.json @@ -7,12 +7,8 @@ "CVE-2004-0336" ], "details": "LAN SUITE Web Mail 602Pro allows remote attackers to gain sensitive information via the mail login form, which contains the path to the mail directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6jpq-mq42-2436/GHSA-6jpq-mq42-2436.json b/advisories/unreviewed/2022/04/GHSA-6jpq-mq42-2436/GHSA-6jpq-mq42-2436.json index 175d37e9740..e8b930280fb 100644 --- a/advisories/unreviewed/2022/04/GHSA-6jpq-mq42-2436/GHSA-6jpq-mq42-2436.json +++ b/advisories/unreviewed/2022/04/GHSA-6jpq-mq42-2436/GHSA-6jpq-mq42-2436.json @@ -7,12 +7,8 @@ "CVE-2004-0383" ], "details": "Unknown vulnerability in Mail for Mac OS X 10.3.3 and 10.2.8, with unknown impact, related to \"the handling of HTML-formatted email.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6m32-75x3-93rf/GHSA-6m32-75x3-93rf.json b/advisories/unreviewed/2022/04/GHSA-6m32-75x3-93rf/GHSA-6m32-75x3-93rf.json index ec2555930e4..5e63246ca2a 100644 --- a/advisories/unreviewed/2022/04/GHSA-6m32-75x3-93rf/GHSA-6m32-75x3-93rf.json +++ b/advisories/unreviewed/2022/04/GHSA-6m32-75x3-93rf/GHSA-6m32-75x3-93rf.json @@ -7,12 +7,8 @@ "CVE-2004-0296" ], "details": "TsFtpSrv.exe in Broker FTP 6.1.0.0 allows remote attackers to cause a TsFtpSrv.exe to exit with an exception by opening and immediately closing a connection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6m8c-5c42-fpgx/GHSA-6m8c-5c42-fpgx.json b/advisories/unreviewed/2022/04/GHSA-6m8c-5c42-fpgx/GHSA-6m8c-5c42-fpgx.json index 8a6149839b3..5c8003e1deb 100644 --- a/advisories/unreviewed/2022/04/GHSA-6m8c-5c42-fpgx/GHSA-6m8c-5c42-fpgx.json +++ b/advisories/unreviewed/2022/04/GHSA-6m8c-5c42-fpgx/GHSA-6m8c-5c42-fpgx.json @@ -7,12 +7,8 @@ "CVE-2004-0317" ], "details": "Buffer overflow in eauth in Load Sharing Facility 4.x, 5.x, and 6.x allows local users or remote attackers within the LSF cluster to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a long LSF_From_PC parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6m8x-9x29-g395/GHSA-6m8x-9x29-g395.json b/advisories/unreviewed/2022/04/GHSA-6m8x-9x29-g395/GHSA-6m8x-9x29-g395.json index 9e09252c247..e64d6e1c3b2 100644 --- a/advisories/unreviewed/2022/04/GHSA-6m8x-9x29-g395/GHSA-6m8x-9x29-g395.json +++ b/advisories/unreviewed/2022/04/GHSA-6m8x-9x29-g395/GHSA-6m8x-9x29-g395.json @@ -7,12 +7,8 @@ "CVE-2004-0278" ], "details": "Ratbag game engine, as used in products such as Dirt Track Racing, Leadfoot, and World of Outlaws Spring Cars, allows remote attackers to cause a denial of service (CPU consumption) via a TCP packet that specifies the length of data to read and then sends a second TCP packet that contains less data than specified, which causes Ratbag to repeatedly check the socket for more data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6p52-7j69-f67w/GHSA-6p52-7j69-f67w.json b/advisories/unreviewed/2022/04/GHSA-6p52-7j69-f67w/GHSA-6p52-7j69-f67w.json index c5d3eb4f8b0..e91a217625c 100644 --- a/advisories/unreviewed/2022/04/GHSA-6p52-7j69-f67w/GHSA-6p52-7j69-f67w.json +++ b/advisories/unreviewed/2022/04/GHSA-6p52-7j69-f67w/GHSA-6p52-7j69-f67w.json @@ -7,12 +7,8 @@ "CVE-2004-0445" ], "details": "The SYMDNS.SYS driver in Symantec Norton Internet Security and Professional 2002 through 2004, Norton Personal Firewall 2002 through 2004, Norton AntiSpam 2004, Client Firewall 5.01 and 5.1.1, and Client Security 1.0 through 2.0 allows remote attackers to cause a denial of service (CPU consumption from infinite loop) via a DNS response with a compressed name pointer that points to itself.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6qw8-9hf4-7xx4/GHSA-6qw8-9hf4-7xx4.json b/advisories/unreviewed/2022/04/GHSA-6qw8-9hf4-7xx4/GHSA-6qw8-9hf4-7xx4.json index 834e4fef04b..82b12478c4e 100644 --- a/advisories/unreviewed/2022/04/GHSA-6qw8-9hf4-7xx4/GHSA-6qw8-9hf4-7xx4.json +++ b/advisories/unreviewed/2022/04/GHSA-6qw8-9hf4-7xx4/GHSA-6qw8-9hf4-7xx4.json @@ -7,12 +7,8 @@ "CVE-2004-0328" ], "details": "Gigabyte Gn-B46B 2.4Ghz wireless broadband router firmware 1.003.00 allows local users on the same local network as the router to bypass authentication by using a copy of the router's html menu on a separate system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6wfw-9vqf-w3fj/GHSA-6wfw-9vqf-w3fj.json b/advisories/unreviewed/2022/04/GHSA-6wfw-9vqf-w3fj/GHSA-6wfw-9vqf-w3fj.json index afa334ff5aa..78c4b247c91 100644 --- a/advisories/unreviewed/2022/04/GHSA-6wfw-9vqf-w3fj/GHSA-6wfw-9vqf-w3fj.json +++ b/advisories/unreviewed/2022/04/GHSA-6wfw-9vqf-w3fj/GHSA-6wfw-9vqf-w3fj.json @@ -7,12 +7,8 @@ "CVE-2004-0325" ], "details": "TYPSoft FTP Server 1.10 allows remote authenticated users to cause a denial of service (CPU consumption) via \"//../\" arguments to (1) mkd, (2) xmkd, (3) dele, (4) size, (5) retr, (6) stor, (7) appe, (8) rnfr, (9) rnto, (10) rmd, or (11) xrmd, as demonstrated using \"//../qwerty\".", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6wx2-xqp3-gggw/GHSA-6wx2-xqp3-gggw.json b/advisories/unreviewed/2022/04/GHSA-6wx2-xqp3-gggw/GHSA-6wx2-xqp3-gggw.json index 110d720ce6b..aab65138355 100644 --- a/advisories/unreviewed/2022/04/GHSA-6wx2-xqp3-gggw/GHSA-6wx2-xqp3-gggw.json +++ b/advisories/unreviewed/2022/04/GHSA-6wx2-xqp3-gggw/GHSA-6wx2-xqp3-gggw.json @@ -7,12 +7,8 @@ "CVE-2004-0244" ], "details": "Cisco 6000, 6500, and 7600 series systems with Multilayer Switch Feature Card 2 (MSFC2) and a FlexWAN or OSM module allow local users to cause a denial of service (hang or reset) by sending a layer 2 frame packet that encapsulates a layer 3 packet, but has inconsistent length values with that packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-6xxg-crg2-rwch/GHSA-6xxg-crg2-rwch.json b/advisories/unreviewed/2022/04/GHSA-6xxg-crg2-rwch/GHSA-6xxg-crg2-rwch.json index ec69ce9ff8e..72dbca6e7f1 100644 --- a/advisories/unreviewed/2022/04/GHSA-6xxg-crg2-rwch/GHSA-6xxg-crg2-rwch.json +++ b/advisories/unreviewed/2022/04/GHSA-6xxg-crg2-rwch/GHSA-6xxg-crg2-rwch.json @@ -7,12 +7,8 @@ "CVE-2004-0432" ], "details": "ProFTPD 1.2.9 treats the Allow and Deny directives for CIDR based ACL entries as if they were AllowAll, which could allow FTP clients to bypass intended access restrictions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-786v-6x87-g35h/GHSA-786v-6x87-g35h.json b/advisories/unreviewed/2022/04/GHSA-786v-6x87-g35h/GHSA-786v-6x87-g35h.json index 7657094ec4b..4207efe25c4 100644 --- a/advisories/unreviewed/2022/04/GHSA-786v-6x87-g35h/GHSA-786v-6x87-g35h.json +++ b/advisories/unreviewed/2022/04/GHSA-786v-6x87-g35h/GHSA-786v-6x87-g35h.json @@ -7,12 +7,8 @@ "CVE-2004-0428" ], "details": "Unknown vulnerability in CoreFoundation in Mac OS X 10.3.3 and Mac OS X 10.3.3 Server, related to \"the handling of an environment variable,\" has unknown attack vectors and unknown impact.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-793j-ggmw-r33w/GHSA-793j-ggmw-r33w.json b/advisories/unreviewed/2022/04/GHSA-793j-ggmw-r33w/GHSA-793j-ggmw-r33w.json index 1d67d162943..6a63170b06f 100644 --- a/advisories/unreviewed/2022/04/GHSA-793j-ggmw-r33w/GHSA-793j-ggmw-r33w.json +++ b/advisories/unreviewed/2022/04/GHSA-793j-ggmw-r33w/GHSA-793j-ggmw-r33w.json @@ -7,12 +7,8 @@ "CVE-2004-0307" ], "details": "Cisco ONS 15327 before 4.1(3), ONS 15454 before 4.6(1), and ONS 15454 SD before 4.1(3) allows remote attackers to cause a denial of service (reset) by not sending the ACK portion of the TCP three-way handshake and sending an invalid response instead.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7g28-9q87-f5g3/GHSA-7g28-9q87-f5g3.json b/advisories/unreviewed/2022/04/GHSA-7g28-9q87-f5g3/GHSA-7g28-9q87-f5g3.json index dae2d53df9c..aba46fddc43 100644 --- a/advisories/unreviewed/2022/04/GHSA-7g28-9q87-f5g3/GHSA-7g28-9q87-f5g3.json +++ b/advisories/unreviewed/2022/04/GHSA-7g28-9q87-f5g3/GHSA-7g28-9q87-f5g3.json @@ -7,12 +7,8 @@ "CVE-2004-0298" ], "details": "CesarFTP 0.99e allows remote attackers to cause a denial of service (CPU consumption) via a long RETR parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7gq9-m389-5v2h/GHSA-7gq9-m389-5v2h.json b/advisories/unreviewed/2022/04/GHSA-7gq9-m389-5v2h/GHSA-7gq9-m389-5v2h.json index 6ce1f04057b..2e9b592e2e2 100644 --- a/advisories/unreviewed/2022/04/GHSA-7gq9-m389-5v2h/GHSA-7gq9-m389-5v2h.json +++ b/advisories/unreviewed/2022/04/GHSA-7gq9-m389-5v2h/GHSA-7gq9-m389-5v2h.json @@ -7,12 +7,8 @@ "CVE-2004-0444" ], "details": "Multiple vulnerabilities in SYMDNS.SYS for Symantec Norton Internet Security and Professional 2002 through 2004, Norton Personal Firewall 2002 through 2004, Norton AntiSpam 2004, Client Firewall 5.01 and 5.1.1, and Client Security 1.0 through 2.0 allow remote attackers to cause a denial of service or execute arbitrary code via (1) a manipulated length byte in the first-level decoding routine for NetBIOS Name Service (NBNS) that modifies an index variable and leads to a stack-based buffer overflow, (2) a heap-based corruption problem in an NBNS response that is missing certain RR fields, and (3) a stack-based buffer overflow in the DNS component via a Resource Record (RR) with a long canonical name (CNAME) field composed of many smaller components.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -104,9 +100,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7r76-xfcg-jhgf/GHSA-7r76-xfcg-jhgf.json b/advisories/unreviewed/2022/04/GHSA-7r76-xfcg-jhgf/GHSA-7r76-xfcg-jhgf.json index facff9f3af5..1627378ed98 100644 --- a/advisories/unreviewed/2022/04/GHSA-7r76-xfcg-jhgf/GHSA-7r76-xfcg-jhgf.json +++ b/advisories/unreviewed/2022/04/GHSA-7r76-xfcg-jhgf/GHSA-7r76-xfcg-jhgf.json @@ -7,12 +7,8 @@ "CVE-2004-0309" ], "details": "Stack-based buffer overflow in the SMTP service support in vsmon.exe in Zone Labs ZoneAlarm before 4.5.538.001, ZoneLabs Integrity client 4.0 before 4.0.146.046, and 4.5 before 4.5.085, allows remote attackers to execute arbitrary code via a long RCPT TO argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7v5f-v3rh-wvf7/GHSA-7v5f-v3rh-wvf7.json b/advisories/unreviewed/2022/04/GHSA-7v5f-v3rh-wvf7/GHSA-7v5f-v3rh-wvf7.json index c3b5b1cfc28..c0dea626460 100644 --- a/advisories/unreviewed/2022/04/GHSA-7v5f-v3rh-wvf7/GHSA-7v5f-v3rh-wvf7.json +++ b/advisories/unreviewed/2022/04/GHSA-7v5f-v3rh-wvf7/GHSA-7v5f-v3rh-wvf7.json @@ -7,12 +7,8 @@ "CVE-2004-0290" ], "details": "Buffer overflow in Purge Jihad 2.0.1 and earlier allows remote game servers to execute arbitrary code via an information packet that contains large (1) battle type and (2) map name fields.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7wxp-pmh5-8mh5/GHSA-7wxp-pmh5-8mh5.json b/advisories/unreviewed/2022/04/GHSA-7wxp-pmh5-8mh5/GHSA-7wxp-pmh5-8mh5.json index 6ede51d64e4..4dbaf597efd 100644 --- a/advisories/unreviewed/2022/04/GHSA-7wxp-pmh5-8mh5/GHSA-7wxp-pmh5-8mh5.json +++ b/advisories/unreviewed/2022/04/GHSA-7wxp-pmh5-8mh5/GHSA-7wxp-pmh5-8mh5.json @@ -7,12 +7,8 @@ "CVE-2004-0263" ], "details": "PHP 4.3.4 and earlier in Apache 1.x and 2.x (mod_php) can leak global variables between virtual hosts that are handled by the same Apache child process but have different settings, which could allow remote attackers to obtain sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-85m2-347j-wh42/GHSA-85m2-347j-wh42.json b/advisories/unreviewed/2022/04/GHSA-85m2-347j-wh42/GHSA-85m2-347j-wh42.json index 6135e2ead73..a8dc143221e 100644 --- a/advisories/unreviewed/2022/04/GHSA-85m2-347j-wh42/GHSA-85m2-347j-wh42.json +++ b/advisories/unreviewed/2022/04/GHSA-85m2-347j-wh42/GHSA-85m2-347j-wh42.json @@ -7,12 +7,8 @@ "CVE-2004-0407" ], "details": "The HTML form upload capability in ColdFusion MX 6.1 does not reclaim disk space if an upload is interrupted, which allows remote attackers to cause a denial of service (disk consumption) by repeatedly uploading files and interrupting the uploads before they finish.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8cm7-v6p7-4vvh/GHSA-8cm7-v6p7-4vvh.json b/advisories/unreviewed/2022/04/GHSA-8cm7-v6p7-4vvh/GHSA-8cm7-v6p7-4vvh.json index d49ef171935..e1086656852 100644 --- a/advisories/unreviewed/2022/04/GHSA-8cm7-v6p7-4vvh/GHSA-8cm7-v6p7-4vvh.json +++ b/advisories/unreviewed/2022/04/GHSA-8cm7-v6p7-4vvh/GHSA-8cm7-v6p7-4vvh.json @@ -7,12 +7,8 @@ "CVE-2004-0288" ], "details": "Buffer overflow in the UdmDocToTextBuf function in mnoGoSearch 3.2.13 through 3.2.15 could allow remote attackers to execute arbitrary code by indexing a large document.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8hxr-8xgg-w97m/GHSA-8hxr-8xgg-w97m.json b/advisories/unreviewed/2022/04/GHSA-8hxr-8xgg-w97m/GHSA-8hxr-8xgg-w97m.json index c430a98f4c6..7aa98cc0900 100644 --- a/advisories/unreviewed/2022/04/GHSA-8hxr-8xgg-w97m/GHSA-8hxr-8xgg-w97m.json +++ b/advisories/unreviewed/2022/04/GHSA-8hxr-8xgg-w97m/GHSA-8hxr-8xgg-w97m.json @@ -7,12 +7,8 @@ "CVE-2004-0426" ], "details": "rsync before 2.6.1 does not properly sanitize paths when running a read/write daemon without using chroot, which allows remote attackers to write files outside of the module's path.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -112,9 +108,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8mfv-mcqq-xr4w/GHSA-8mfv-mcqq-xr4w.json b/advisories/unreviewed/2022/04/GHSA-8mfv-mcqq-xr4w/GHSA-8mfv-mcqq-xr4w.json index ef9e9e758f8..9fd0a861885 100644 --- a/advisories/unreviewed/2022/04/GHSA-8mfv-mcqq-xr4w/GHSA-8mfv-mcqq-xr4w.json +++ b/advisories/unreviewed/2022/04/GHSA-8mfv-mcqq-xr4w/GHSA-8mfv-mcqq-xr4w.json @@ -7,12 +7,8 @@ "CVE-2004-0246" ], "details": "Multiple PHP remote file inclusion vulnerabilities in (1) fonctions.lib.php, (2) derniers_commentaires.php, and (3) admin.php in Les Commentaires 2.0 allow remote attackers to execute arbitrary PHP code via the rep parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8mmc-rxvx-8vhr/GHSA-8mmc-rxvx-8vhr.json b/advisories/unreviewed/2022/04/GHSA-8mmc-rxvx-8vhr/GHSA-8mmc-rxvx-8vhr.json index a9cc88273f3..13c1ceed49f 100644 --- a/advisories/unreviewed/2022/04/GHSA-8mmc-rxvx-8vhr/GHSA-8mmc-rxvx-8vhr.json +++ b/advisories/unreviewed/2022/04/GHSA-8mmc-rxvx-8vhr/GHSA-8mmc-rxvx-8vhr.json @@ -7,12 +7,8 @@ "CVE-2004-0457" ], "details": "The mysqlhotcopy script in mysql 4.0.20 and earlier, when using the scp method from the mysql-server package, allows local users to overwrite arbitrary files via a symlink attack on temporary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8p23-49qp-93f7/GHSA-8p23-49qp-93f7.json b/advisories/unreviewed/2022/04/GHSA-8p23-49qp-93f7/GHSA-8p23-49qp-93f7.json index 9a8375aa0fc..72990338baa 100644 --- a/advisories/unreviewed/2022/04/GHSA-8p23-49qp-93f7/GHSA-8p23-49qp-93f7.json +++ b/advisories/unreviewed/2022/04/GHSA-8p23-49qp-93f7/GHSA-8p23-49qp-93f7.json @@ -7,12 +7,8 @@ "CVE-2004-0318" ], "details": "Load Sharing Facility (LSF) 4.x, 5.x, and 6.x uses the LSF_EAUTH_UID environment variable, if it exists, instead of the real UID of the user, which could allow remote attackers within the local cluster to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8wv9-2cq2-2qcw/GHSA-8wv9-2cq2-2qcw.json b/advisories/unreviewed/2022/04/GHSA-8wv9-2cq2-2qcw/GHSA-8wv9-2cq2-2qcw.json index 20796ff6b75..a8762748547 100644 --- a/advisories/unreviewed/2022/04/GHSA-8wv9-2cq2-2qcw/GHSA-8wv9-2cq2-2qcw.json +++ b/advisories/unreviewed/2022/04/GHSA-8wv9-2cq2-2qcw/GHSA-8wv9-2cq2-2qcw.json @@ -7,12 +7,8 @@ "CVE-2004-0321" ], "details": "Team Factor 1.25 and earlier allows remote attackers to cause a denial of service (crash) via a packet that uses a negative number to specify the size of the data block that follows, which causes Team Factor to read unallocated memory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9289-82mv-9386/GHSA-9289-82mv-9386.json b/advisories/unreviewed/2022/04/GHSA-9289-82mv-9386/GHSA-9289-82mv-9386.json index f771286994e..390e6d58ff5 100644 --- a/advisories/unreviewed/2022/04/GHSA-9289-82mv-9386/GHSA-9289-82mv-9386.json +++ b/advisories/unreviewed/2022/04/GHSA-9289-82mv-9386/GHSA-9289-82mv-9386.json @@ -7,12 +7,8 @@ "CVE-2004-0395" ], "details": "The xatitv program in the gatos package does not properly drop root privileges when the configuration file does not exist, which allows local users to execute arbitrary commands via shell metacharacters in a system call.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9cgv-5rj9-j8x4/GHSA-9cgv-5rj9-j8x4.json b/advisories/unreviewed/2022/04/GHSA-9cgv-5rj9-j8x4/GHSA-9cgv-5rj9-j8x4.json index ffb5fb48dcf..186ceed390e 100644 --- a/advisories/unreviewed/2022/04/GHSA-9cgv-5rj9-j8x4/GHSA-9cgv-5rj9-j8x4.json +++ b/advisories/unreviewed/2022/04/GHSA-9cgv-5rj9-j8x4/GHSA-9cgv-5rj9-j8x4.json @@ -7,12 +7,8 @@ "CVE-2004-0330" ], "details": "Buffer overflow in Serv-U ftp before 5.0.0.4 allows remote authenticated users to execute arbitrary code via a long time zone argument to the MDTM command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-9f35-p2r2-7gw3/GHSA-9f35-p2r2-7gw3.json b/advisories/unreviewed/2022/04/GHSA-9f35-p2r2-7gw3/GHSA-9f35-p2r2-7gw3.json index 00215e4c458..ddb044ce17d 100644 --- a/advisories/unreviewed/2022/04/GHSA-9f35-p2r2-7gw3/GHSA-9f35-p2r2-7gw3.json +++ b/advisories/unreviewed/2022/04/GHSA-9f35-p2r2-7gw3/GHSA-9f35-p2r2-7gw3.json @@ -7,12 +7,8 @@ "CVE-2004-0348" ], "details": "SQL injection vulnerability in viewCart.asp in SpiderSales shopping cart software allows remote attackers to execute arbitrary SQL via the userId parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9mrm-q5cw-83wg/GHSA-9mrm-q5cw-83wg.json b/advisories/unreviewed/2022/04/GHSA-9mrm-q5cw-83wg/GHSA-9mrm-q5cw-83wg.json index f6d23e84e78..835cf557373 100644 --- a/advisories/unreviewed/2022/04/GHSA-9mrm-q5cw-83wg/GHSA-9mrm-q5cw-83wg.json +++ b/advisories/unreviewed/2022/04/GHSA-9mrm-q5cw-83wg/GHSA-9mrm-q5cw-83wg.json @@ -7,12 +7,8 @@ "CVE-2004-0356" ], "details": "Stack-based buffer overflow in Supervisor Report Center in SL Mail Pro 2.0.9 and earlier allows remote attackers to execute arbitrary code via an HTTP request with a long HTTP sub-version.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9p7c-879j-x62m/GHSA-9p7c-879j-x62m.json b/advisories/unreviewed/2022/04/GHSA-9p7c-879j-x62m/GHSA-9p7c-879j-x62m.json index c28fc369b49..69e04771a68 100644 --- a/advisories/unreviewed/2022/04/GHSA-9p7c-879j-x62m/GHSA-9p7c-879j-x62m.json +++ b/advisories/unreviewed/2022/04/GHSA-9p7c-879j-x62m/GHSA-9p7c-879j-x62m.json @@ -7,12 +7,8 @@ "CVE-2004-0311" ], "details": "American Power Conversion (APC) Web/SNMP Management SmartSlot Card 3.0 through 3.0.3 and 3.21 are shipped with a default password of TENmanUFactOryPOWER, which allows remote attackers to gain unauthorized access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9p8v-2mj7-h2rj/GHSA-9p8v-2mj7-h2rj.json b/advisories/unreviewed/2022/04/GHSA-9p8v-2mj7-h2rj/GHSA-9p8v-2mj7-h2rj.json index 8628a4c4e7c..d8e111d6904 100644 --- a/advisories/unreviewed/2022/04/GHSA-9p8v-2mj7-h2rj/GHSA-9p8v-2mj7-h2rj.json +++ b/advisories/unreviewed/2022/04/GHSA-9p8v-2mj7-h2rj/GHSA-9p8v-2mj7-h2rj.json @@ -7,12 +7,8 @@ "CVE-2004-0267" ], "details": "The (1) inoregupdate, (2) uniftest, or (3) unimove scripts in eTrust InoculateIT for Linux 6.0 allow local users to overwrite arbitrary files via a symlink attack on files in /tmp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9q3h-6m25-g67f/GHSA-9q3h-6m25-g67f.json b/advisories/unreviewed/2022/04/GHSA-9q3h-6m25-g67f/GHSA-9q3h-6m25-g67f.json index 1649df93fde..98ed4388b6f 100644 --- a/advisories/unreviewed/2022/04/GHSA-9q3h-6m25-g67f/GHSA-9q3h-6m25-g67f.json +++ b/advisories/unreviewed/2022/04/GHSA-9q3h-6m25-g67f/GHSA-9q3h-6m25-g67f.json @@ -7,12 +7,8 @@ "CVE-2004-0376" ], "details": "oftpd 0.3.6 and earlier allows remote attackers to cause a denial of service (crash) via a PORT command with a large value.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c8j5-94mc-2xxr/GHSA-c8j5-94mc-2xxr.json b/advisories/unreviewed/2022/04/GHSA-c8j5-94mc-2xxr/GHSA-c8j5-94mc-2xxr.json index a734a93135d..2f3600fa9dc 100644 --- a/advisories/unreviewed/2022/04/GHSA-c8j5-94mc-2xxr/GHSA-c8j5-94mc-2xxr.json +++ b/advisories/unreviewed/2022/04/GHSA-c8j5-94mc-2xxr/GHSA-c8j5-94mc-2xxr.json @@ -7,12 +7,8 @@ "CVE-2004-0266" ], "details": "SQL injection vulnerability in the \"public message\" capability (public_message) for Php-Nuke 6.x to 7.1.0 allows remote attackers to obtain the administrator password via the c_mid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cgqm-4mh8-6xw8/GHSA-cgqm-4mh8-6xw8.json b/advisories/unreviewed/2022/04/GHSA-cgqm-4mh8-6xw8/GHSA-cgqm-4mh8-6xw8.json index 3022e6ac488..5a1cad9c324 100644 --- a/advisories/unreviewed/2022/04/GHSA-cgqm-4mh8-6xw8/GHSA-cgqm-4mh8-6xw8.json +++ b/advisories/unreviewed/2022/04/GHSA-cgqm-4mh8-6xw8/GHSA-cgqm-4mh8-6xw8.json @@ -7,12 +7,8 @@ "CVE-2004-0387" ], "details": "Stack-based buffer overflow in the RT3 plugin, as used in RealPlayer 8, RealOne Player, RealOne Player 10 beta, and RealOne Player Enterprise, allows remote attackers to execute arbitrary code via a malformed .R3T file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-ch3h-gjmw-x9f6/GHSA-ch3h-gjmw-x9f6.json b/advisories/unreviewed/2022/04/GHSA-ch3h-gjmw-x9f6/GHSA-ch3h-gjmw-x9f6.json index 5f269851a8b..f078d66180f 100644 --- a/advisories/unreviewed/2022/04/GHSA-ch3h-gjmw-x9f6/GHSA-ch3h-gjmw-x9f6.json +++ b/advisories/unreviewed/2022/04/GHSA-ch3h-gjmw-x9f6/GHSA-ch3h-gjmw-x9f6.json @@ -7,12 +7,8 @@ "CVE-2004-0316" ], "details": "Buffer overflow in Avirt Soho 4.3 allows remote attackers to cause a denial of service (crash) via (1) a large GET request to port 1080 or (2) a large GET request of % characters to port 8080.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-ch7p-8m55-hr5j/GHSA-ch7p-8m55-hr5j.json b/advisories/unreviewed/2022/04/GHSA-ch7p-8m55-hr5j/GHSA-ch7p-8m55-hr5j.json index 23f0ed6b4eb..7b967115f00 100644 --- a/advisories/unreviewed/2022/04/GHSA-ch7p-8m55-hr5j/GHSA-ch7p-8m55-hr5j.json +++ b/advisories/unreviewed/2022/04/GHSA-ch7p-8m55-hr5j/GHSA-ch7p-8m55-hr5j.json @@ -7,12 +7,8 @@ "CVE-2004-0359" ], "details": "Cross-site scripting (XSS) vulnerability in index.php for Invision Power Board 1.3 final allows remote attackers to execute arbitrary script as other users via the (1) c, (2) f, (3) showtopic, (4) showuser, or (5) username parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cwhc-mwv4-cfxj/GHSA-cwhc-mwv4-cfxj.json b/advisories/unreviewed/2022/04/GHSA-cwhc-mwv4-cfxj/GHSA-cwhc-mwv4-cfxj.json index 376c368f22f..fc38138ea01 100644 --- a/advisories/unreviewed/2022/04/GHSA-cwhc-mwv4-cfxj/GHSA-cwhc-mwv4-cfxj.json +++ b/advisories/unreviewed/2022/04/GHSA-cwhc-mwv4-cfxj/GHSA-cwhc-mwv4-cfxj.json @@ -7,12 +7,8 @@ "CVE-2004-0355" ], "details": "Invision Power Board 1.3 Final allows remote attackers to gain sensitive information by selecting a file for \"Personal Photo\" that is not an image file, which displays the installation path in an error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cwr5-qr66-jg4j/GHSA-cwr5-qr66-jg4j.json b/advisories/unreviewed/2022/04/GHSA-cwr5-qr66-jg4j/GHSA-cwr5-qr66-jg4j.json index 133821b4af1..90f893f5430 100644 --- a/advisories/unreviewed/2022/04/GHSA-cwr5-qr66-jg4j/GHSA-cwr5-qr66-jg4j.json +++ b/advisories/unreviewed/2022/04/GHSA-cwr5-qr66-jg4j/GHSA-cwr5-qr66-jg4j.json @@ -7,12 +7,8 @@ "CVE-2004-0358" ], "details": "Cross-site scripting (XSS) vulnerability in VirtuaNews Admin Panel Pro 1.0.3 allows remote attackers to execute arbitrary script as other users via (1) the mainnews parameter in admin.php, (2) the expand parameter in admin.php, (3) the id parameter in admin.php, (4) the catid parameter in admin.php, or (5) an unnamed parameter during the newslogo_upload action in admin.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f226-8488-rr3p/GHSA-f226-8488-rr3p.json b/advisories/unreviewed/2022/04/GHSA-f226-8488-rr3p/GHSA-f226-8488-rr3p.json index 67fd8fff8e1..14644055019 100644 --- a/advisories/unreviewed/2022/04/GHSA-f226-8488-rr3p/GHSA-f226-8488-rr3p.json +++ b/advisories/unreviewed/2022/04/GHSA-f226-8488-rr3p/GHSA-f226-8488-rr3p.json @@ -7,12 +7,8 @@ "CVE-2004-0466" ], "details": "WebConnect 6.5, 6.4.4, and possibly earlier versions allows remote attackers to cause a denial of service (hang) via a URL containing an MS-DOS device name such as (1) AUX, (2) CON, (3) PRN, (4) COM1, or (5) LPT1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f6cc-5mf4-hmhc/GHSA-f6cc-5mf4-hmhc.json b/advisories/unreviewed/2022/04/GHSA-f6cc-5mf4-hmhc/GHSA-f6cc-5mf4-hmhc.json index de3d5a2427e..d29ee73655d 100644 --- a/advisories/unreviewed/2022/04/GHSA-f6cc-5mf4-hmhc/GHSA-f6cc-5mf4-hmhc.json +++ b/advisories/unreviewed/2022/04/GHSA-f6cc-5mf4-hmhc/GHSA-f6cc-5mf4-hmhc.json @@ -7,12 +7,8 @@ "CVE-2004-0284" ], "details": "Microsoft Internet Explorer 6.0, Outlook 2002, and Outlook 2003 allow remote attackers to cause a denial of service (CPU consumption), if \"Do not save encrypted pages to disk\" is disabled, via a web site or HTML e-mail that contains two null characters (%00) after the host name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f6g9-34fc-hhvx/GHSA-f6g9-34fc-hhvx.json b/advisories/unreviewed/2022/04/GHSA-f6g9-34fc-hhvx/GHSA-f6g9-34fc-hhvx.json index a5a790f5e31..6ba63c47bdc 100644 --- a/advisories/unreviewed/2022/04/GHSA-f6g9-34fc-hhvx/GHSA-f6g9-34fc-hhvx.json +++ b/advisories/unreviewed/2022/04/GHSA-f6g9-34fc-hhvx/GHSA-f6g9-34fc-hhvx.json @@ -7,12 +7,8 @@ "CVE-2004-0351" ], "details": "Spider Sales shopping cart stores the private key in the same database and table as the public key, which allows local users with access to the database to decrypt data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f75q-gjfc-pp99/GHSA-f75q-gjfc-pp99.json b/advisories/unreviewed/2022/04/GHSA-f75q-gjfc-pp99/GHSA-f75q-gjfc-pp99.json index 863029f9bc3..f93601618df 100644 --- a/advisories/unreviewed/2022/04/GHSA-f75q-gjfc-pp99/GHSA-f75q-gjfc-pp99.json +++ b/advisories/unreviewed/2022/04/GHSA-f75q-gjfc-pp99/GHSA-f75q-gjfc-pp99.json @@ -7,12 +7,8 @@ "CVE-2004-0313" ], "details": "Buffer overflow in PSOProxy 0.91 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long HTTP request, as demonstrated using a long (1) GET argument or (2) method name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f7hc-7g36-w53c/GHSA-f7hc-7g36-w53c.json b/advisories/unreviewed/2022/04/GHSA-f7hc-7g36-w53c/GHSA-f7hc-7g36-w53c.json index 5dca4552b9c..d055e011d02 100644 --- a/advisories/unreviewed/2022/04/GHSA-f7hc-7g36-w53c/GHSA-f7hc-7g36-w53c.json +++ b/advisories/unreviewed/2022/04/GHSA-f7hc-7g36-w53c/GHSA-f7hc-7g36-w53c.json @@ -7,12 +7,8 @@ "CVE-2004-0243" ], "details": "AIX 4.3.3 through AIX 5.1, when direct remote login is disabled, displays a different message if the password is correct, which allows remote attackers to guess the password via brute force methods.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f9hp-fgg5-7659/GHSA-f9hp-fgg5-7659.json b/advisories/unreviewed/2022/04/GHSA-f9hp-fgg5-7659/GHSA-f9hp-fgg5-7659.json index e464ffce3ff..d0a6017d783 100644 --- a/advisories/unreviewed/2022/04/GHSA-f9hp-fgg5-7659/GHSA-f9hp-fgg5-7659.json +++ b/advisories/unreviewed/2022/04/GHSA-f9hp-fgg5-7659/GHSA-f9hp-fgg5-7659.json @@ -7,12 +7,8 @@ "CVE-2004-0280" ], "details": "Caucho Technology Resin 2.1.12 allows remote attackers to view JSP source via an HTTP request to a .jsp file that ends in a \"%20\" (encoded space character), e.g. index.jsp%20.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fgq5-97jj-jmcq/GHSA-fgq5-97jj-jmcq.json b/advisories/unreviewed/2022/04/GHSA-fgq5-97jj-jmcq/GHSA-fgq5-97jj-jmcq.json index 5c5e40a5ca0..247734ed7c4 100644 --- a/advisories/unreviewed/2022/04/GHSA-fgq5-97jj-jmcq/GHSA-fgq5-97jj-jmcq.json +++ b/advisories/unreviewed/2022/04/GHSA-fgq5-97jj-jmcq/GHSA-fgq5-97jj-jmcq.json @@ -7,12 +7,8 @@ "CVE-2004-0255" ], "details": "Xlight 1.52, with log to screen enabled, allows remote attackers to cause a denial of service by requesting a long directory consisting of . (dot) and / (slash) characters, which causes the server to crash when the administrator views the log file, possibly triggering a buffer overflow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fh4q-8w8x-42wv/GHSA-fh4q-8w8x-42wv.json b/advisories/unreviewed/2022/04/GHSA-fh4q-8w8x-42wv/GHSA-fh4q-8w8x-42wv.json index 6bf004a110f..af037991e0c 100644 --- a/advisories/unreviewed/2022/04/GHSA-fh4q-8w8x-42wv/GHSA-fh4q-8w8x-42wv.json +++ b/advisories/unreviewed/2022/04/GHSA-fh4q-8w8x-42wv/GHSA-fh4q-8w8x-42wv.json @@ -7,12 +7,8 @@ "CVE-2004-0228" ], "details": "Integer signedness error in the cpufreq proc handler (cpufreq_procctl) in Linux kernel 2.6 allows local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fh9x-3h5x-gmx4/GHSA-fh9x-3h5x-gmx4.json b/advisories/unreviewed/2022/04/GHSA-fh9x-3h5x-gmx4/GHSA-fh9x-3h5x-gmx4.json index d6b3f41c961..0cd42b97b0c 100644 --- a/advisories/unreviewed/2022/04/GHSA-fh9x-3h5x-gmx4/GHSA-fh9x-3h5x-gmx4.json +++ b/advisories/unreviewed/2022/04/GHSA-fh9x-3h5x-gmx4/GHSA-fh9x-3h5x-gmx4.json @@ -7,12 +7,8 @@ "CVE-2004-0402" ], "details": "Buffer overflow in xpcd-svga in xpcd before 2.08, and possibly other versions, may allow local users to execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-frcm-cm8j-hpw7/GHSA-frcm-cm8j-hpw7.json b/advisories/unreviewed/2022/04/GHSA-frcm-cm8j-hpw7/GHSA-frcm-cm8j-hpw7.json index 9e975aeac55..c6b1256783a 100644 --- a/advisories/unreviewed/2022/04/GHSA-frcm-cm8j-hpw7/GHSA-frcm-cm8j-hpw7.json +++ b/advisories/unreviewed/2022/04/GHSA-frcm-cm8j-hpw7/GHSA-frcm-cm8j-hpw7.json @@ -7,12 +7,8 @@ "CVE-2004-0216" ], "details": "Integer overflow in the Install Engine (inseng.dll) for Internet Explorer 5.01, 5.5, and 6 allows remote attackers to execute arbitrary code via a malicious website or HTML email with a long .CAB file name, which triggers the integer overflow when calculating a buffer length and leads to a heap-based buffer overflow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -80,9 +76,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fvph-hq46-669j/GHSA-fvph-hq46-669j.json b/advisories/unreviewed/2022/04/GHSA-fvph-hq46-669j/GHSA-fvph-hq46-669j.json index c892f6730fa..7799d3972b2 100644 --- a/advisories/unreviewed/2022/04/GHSA-fvph-hq46-669j/GHSA-fvph-hq46-669j.json +++ b/advisories/unreviewed/2022/04/GHSA-fvph-hq46-669j/GHSA-fvph-hq46-669j.json @@ -7,12 +7,8 @@ "CVE-2004-0337" ], "details": "Cross-site scripting (XSS) vulnerability in LAN SUITE Web Mail 602Pro allows remote attackers to execute arbitrary script or HTML as other users via a URL to index.html, followed by a / (slash) and the desired script. NOTE: the vendor states that this bug could not be reproduced, so this issue may be REJECTed in the future.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fvq6-vx4f-wh62/GHSA-fvq6-vx4f-wh62.json b/advisories/unreviewed/2022/04/GHSA-fvq6-vx4f-wh62/GHSA-fvq6-vx4f-wh62.json index e54ee22e6df..4639afac4f5 100644 --- a/advisories/unreviewed/2022/04/GHSA-fvq6-vx4f-wh62/GHSA-fvq6-vx4f-wh62.json +++ b/advisories/unreviewed/2022/04/GHSA-fvq6-vx4f-wh62/GHSA-fvq6-vx4f-wh62.json @@ -7,12 +7,8 @@ "CVE-2004-0408" ], "details": "Buffer overflow in the child_service function in the ident2 ident daemon allows remote attackers to execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g44v-5967-q2q9/GHSA-g44v-5967-q2q9.json b/advisories/unreviewed/2022/04/GHSA-g44v-5967-q2q9/GHSA-g44v-5967-q2q9.json index e81637f9bd5..4d28ea7f0d4 100644 --- a/advisories/unreviewed/2022/04/GHSA-g44v-5967-q2q9/GHSA-g44v-5967-q2q9.json +++ b/advisories/unreviewed/2022/04/GHSA-g44v-5967-q2q9/GHSA-g44v-5967-q2q9.json @@ -7,12 +7,8 @@ "CVE-2004-0279" ], "details": "AIM Sniff (aimSniff.pl) 0.9b allows local users to overwrite arbitrary files via a symlink attack on /tmp/AS.log.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g69g-278f-w7r2/GHSA-g69g-278f-w7r2.json b/advisories/unreviewed/2022/04/GHSA-g69g-278f-w7r2/GHSA-g69g-278f-w7r2.json index 18910bb3236..4ad90744f06 100644 --- a/advisories/unreviewed/2022/04/GHSA-g69g-278f-w7r2/GHSA-g69g-278f-w7r2.json +++ b/advisories/unreviewed/2022/04/GHSA-g69g-278f-w7r2/GHSA-g69g-278f-w7r2.json @@ -7,12 +7,8 @@ "CVE-2004-0301" ], "details": "Cross-site scripting (XSS) vulnerability in more.php for Online Store Kit 3.0 allows remote attackers to inject arbitrary HTML via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g7hr-jcr3-qr24/GHSA-g7hr-jcr3-qr24.json b/advisories/unreviewed/2022/04/GHSA-g7hr-jcr3-qr24/GHSA-g7hr-jcr3-qr24.json index 0bddc8eca2a..78fb13ec047 100644 --- a/advisories/unreviewed/2022/04/GHSA-g7hr-jcr3-qr24/GHSA-g7hr-jcr3-qr24.json +++ b/advisories/unreviewed/2022/04/GHSA-g7hr-jcr3-qr24/GHSA-g7hr-jcr3-qr24.json @@ -7,12 +7,8 @@ "CVE-2004-0431" ], "details": "Integer overflow in Apple QuickTime (QuickTime.qts) before 6.5.1 allows attackers to execute arbitrary code via a large \"number of entries\" field in the sample-to-chunk table data for a .mov movie file, which leads to a heap-based buffer overflow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g7q3-qg8x-gfjw/GHSA-g7q3-qg8x-gfjw.json b/advisories/unreviewed/2022/04/GHSA-g7q3-qg8x-gfjw/GHSA-g7q3-qg8x-gfjw.json index 44ac2d5bca3..8308e33c585 100644 --- a/advisories/unreviewed/2022/04/GHSA-g7q3-qg8x-gfjw/GHSA-g7q3-qg8x-gfjw.json +++ b/advisories/unreviewed/2022/04/GHSA-g7q3-qg8x-gfjw/GHSA-g7q3-qg8x-gfjw.json @@ -7,12 +7,8 @@ "CVE-2004-0401" ], "details": "Unknown vulnerability in libtasn1 0.1.x before 0.1.2, and 0.2.x before 0.2.7, related to the DER parsing functions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g8hr-vgx8-5639/GHSA-g8hr-vgx8-5639.json b/advisories/unreviewed/2022/04/GHSA-g8hr-vgx8-5639/GHSA-g8hr-vgx8-5639.json index 3af7b3826d5..02a47ba8da8 100644 --- a/advisories/unreviewed/2022/04/GHSA-g8hr-vgx8-5639/GHSA-g8hr-vgx8-5639.json +++ b/advisories/unreviewed/2022/04/GHSA-g8hr-vgx8-5639/GHSA-g8hr-vgx8-5639.json @@ -7,12 +7,8 @@ "CVE-2004-0260" ], "details": "The AddToMailingList function in CactuSoft CactuShop 5.0 Lite contains a backdoor that allows remote attackers to delete arbitrary files via an email address that starts with |||.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gcqg-g524-q8fj/GHSA-gcqg-g524-q8fj.json b/advisories/unreviewed/2022/04/GHSA-gcqg-g524-q8fj/GHSA-gcqg-g524-q8fj.json index 8c3decc8081..b986c10e891 100644 --- a/advisories/unreviewed/2022/04/GHSA-gcqg-g524-q8fj/GHSA-gcqg-g524-q8fj.json +++ b/advisories/unreviewed/2022/04/GHSA-gcqg-g524-q8fj/GHSA-gcqg-g524-q8fj.json @@ -7,12 +7,8 @@ "CVE-2004-0372" ], "details": "xine allows local users to overwrite arbitrary files via a symlink attack on a bug report email that is generated by the (1) xine-bugreport or (2) xine-check scripts.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gfxr-93wv-9pp3/GHSA-gfxr-93wv-9pp3.json b/advisories/unreviewed/2022/04/GHSA-gfxr-93wv-9pp3/GHSA-gfxr-93wv-9pp3.json index 34ba8604bf8..60581aa11e4 100644 --- a/advisories/unreviewed/2022/04/GHSA-gfxr-93wv-9pp3/GHSA-gfxr-93wv-9pp3.json +++ b/advisories/unreviewed/2022/04/GHSA-gfxr-93wv-9pp3/GHSA-gfxr-93wv-9pp3.json @@ -7,12 +7,8 @@ "CVE-2004-0289" ], "details": "Buffer overflow in sdbscan in SignatureDB 0.1.1 allows local users to cause a denial of service (segmentation fault) via a database file that contains a large key parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gj6m-2h53-62ch/GHSA-gj6m-2h53-62ch.json b/advisories/unreviewed/2022/04/GHSA-gj6m-2h53-62ch/GHSA-gj6m-2h53-62ch.json index 834cea5c592..37b546c3b4b 100644 --- a/advisories/unreviewed/2022/04/GHSA-gj6m-2h53-62ch/GHSA-gj6m-2h53-62ch.json +++ b/advisories/unreviewed/2022/04/GHSA-gj6m-2h53-62ch/GHSA-gj6m-2h53-62ch.json @@ -7,12 +7,8 @@ "CVE-2004-0229" ], "details": "The framebuffer driver in Linux kernel 2.6.x does not properly use the fb_copy_cmap function, with unknown impact.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gjvj-mxx4-qrvq/GHSA-gjvj-mxx4-qrvq.json b/advisories/unreviewed/2022/04/GHSA-gjvj-mxx4-qrvq/GHSA-gjvj-mxx4-qrvq.json index da59b366cfa..bd932b96581 100644 --- a/advisories/unreviewed/2022/04/GHSA-gjvj-mxx4-qrvq/GHSA-gjvj-mxx4-qrvq.json +++ b/advisories/unreviewed/2022/04/GHSA-gjvj-mxx4-qrvq/GHSA-gjvj-mxx4-qrvq.json @@ -7,12 +7,8 @@ "CVE-2004-0294" ], "details": "YaBB 1 SP 1.3.1 displays different error messages when a user exists or not, which makes it easier for remote attackers to identify valid users and conduct a brute force password guessing attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gm78-rpv9-p8x5/GHSA-gm78-rpv9-p8x5.json b/advisories/unreviewed/2022/04/GHSA-gm78-rpv9-p8x5/GHSA-gm78-rpv9-p8x5.json index 52e3a32a687..fed3601f075 100644 --- a/advisories/unreviewed/2022/04/GHSA-gm78-rpv9-p8x5/GHSA-gm78-rpv9-p8x5.json +++ b/advisories/unreviewed/2022/04/GHSA-gm78-rpv9-p8x5/GHSA-gm78-rpv9-p8x5.json @@ -7,12 +7,8 @@ "CVE-2004-0271" ], "details": "Multiple cross-site scripting vulnerabilities (XSS) in MaxWebPortal allow remote attackers to execute arbitrary web script as other users via (1) the sub_name parameter of dl_showall.asp, (2) the SendTo parameter in Personal Messages, (3) the HTTP_REFERER for down.asp, or (4) the image name of an Avatar in the register form.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h3h6-mm98-c6p9/GHSA-h3h6-mm98-c6p9.json b/advisories/unreviewed/2022/04/GHSA-h3h6-mm98-c6p9/GHSA-h3h6-mm98-c6p9.json index df37d68bd02..d4cdf2b2b36 100644 --- a/advisories/unreviewed/2022/04/GHSA-h3h6-mm98-c6p9/GHSA-h3h6-mm98-c6p9.json +++ b/advisories/unreviewed/2022/04/GHSA-h3h6-mm98-c6p9/GHSA-h3h6-mm98-c6p9.json @@ -7,12 +7,8 @@ "CVE-2004-0214" ], "details": "Buffer overflow in Microsoft Internet Explorer and Explorer on Windows XP SP1, WIndows 2000, Windows 98, and Windows Me may allow remote malicious servers to cause a denial of service (application crash) and possibly execute arbitrary code via long share names, as demonstrated using Samba.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -88,9 +84,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h4hw-89ff-xxj6/GHSA-h4hw-89ff-xxj6.json b/advisories/unreviewed/2022/04/GHSA-h4hw-89ff-xxj6/GHSA-h4hw-89ff-xxj6.json index 326b30b242f..ca90f9c8488 100644 --- a/advisories/unreviewed/2022/04/GHSA-h4hw-89ff-xxj6/GHSA-h4hw-89ff-xxj6.json +++ b/advisories/unreviewed/2022/04/GHSA-h4hw-89ff-xxj6/GHSA-h4hw-89ff-xxj6.json @@ -7,12 +7,8 @@ "CVE-2004-0347" ], "details": "Cross-site scripting (XSS) vulnerability in delhomepage.cgi in NetScreen-SA 5000 Series running firmware 3.3 Patch 1 (build 4797) allows remote authenticated users to execute arbitrary script as other users via the row parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h4v9-xfr4-ch4g/GHSA-h4v9-xfr4-ch4g.json b/advisories/unreviewed/2022/04/GHSA-h4v9-xfr4-ch4g/GHSA-h4v9-xfr4-ch4g.json index 83234a3e8e0..84b1ea4caff 100644 --- a/advisories/unreviewed/2022/04/GHSA-h4v9-xfr4-ch4g/GHSA-h4v9-xfr4-ch4g.json +++ b/advisories/unreviewed/2022/04/GHSA-h4v9-xfr4-ch4g/GHSA-h4v9-xfr4-ch4g.json @@ -7,12 +7,8 @@ "CVE-2004-0306" ], "details": "Cisco ONS 15327 before 4.1(3), ONS 15454 before 4.6(1), ONS 15454 SD before 4.1(3), and Cisco ONS 15600 before 1.3(0) enable TFTP service on UDP port 69 by default, which allows remote attackers to GET or PUT ONS system files on the current active TCC in the /flash0 or /flash1 directories.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h6p7-m8x8-8xgp/GHSA-h6p7-m8x8-8xgp.json b/advisories/unreviewed/2022/04/GHSA-h6p7-m8x8-8xgp/GHSA-h6p7-m8x8-8xgp.json index 7113021ea2d..4b2c7a34a56 100644 --- a/advisories/unreviewed/2022/04/GHSA-h6p7-m8x8-8xgp/GHSA-h6p7-m8x8-8xgp.json +++ b/advisories/unreviewed/2022/04/GHSA-h6p7-m8x8-8xgp/GHSA-h6p7-m8x8-8xgp.json @@ -7,12 +7,8 @@ "CVE-2004-0341" ], "details": "WFTPD Pro Server 3.21 Release 1 allocates memory for a command until a 0Ah byte (newline) is sent, which allows local users to cause a denial of service (CPU consumption) by continuing to send a long command that does not contain a newline.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h73j-wj9f-w749/GHSA-h73j-wj9f-w749.json b/advisories/unreviewed/2022/04/GHSA-h73j-wj9f-w749/GHSA-h73j-wj9f-w749.json index 3c91d6b72de..74146b97ca1 100644 --- a/advisories/unreviewed/2022/04/GHSA-h73j-wj9f-w749/GHSA-h73j-wj9f-w749.json +++ b/advisories/unreviewed/2022/04/GHSA-h73j-wj9f-w749/GHSA-h73j-wj9f-w749.json @@ -7,12 +7,8 @@ "CVE-2004-0232" ], "details": "Multiple format string vulnerabilities in Midnight Commander (mc) before 4.6.0 may allow attackers to cause a denial of service or execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h8c5-whqm-fhgj/GHSA-h8c5-whqm-fhgj.json b/advisories/unreviewed/2022/04/GHSA-h8c5-whqm-fhgj/GHSA-h8c5-whqm-fhgj.json index ce0bdcb5455..4bfd6383ec3 100644 --- a/advisories/unreviewed/2022/04/GHSA-h8c5-whqm-fhgj/GHSA-h8c5-whqm-fhgj.json +++ b/advisories/unreviewed/2022/04/GHSA-h8c5-whqm-fhgj/GHSA-h8c5-whqm-fhgj.json @@ -7,12 +7,8 @@ "CVE-2004-0240" ], "details": "Directory traversal vulnerability in X-Cart 3.4.3 allows remote attackers to view arbitrary files via a .. (dot dot) in the shop_closed_file argument to auth.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hc8c-mwgj-737m/GHSA-hc8c-mwgj-737m.json b/advisories/unreviewed/2022/04/GHSA-hc8c-mwgj-737m/GHSA-hc8c-mwgj-737m.json index 3508a7f5521..588da1ad265 100644 --- a/advisories/unreviewed/2022/04/GHSA-hc8c-mwgj-737m/GHSA-hc8c-mwgj-737m.json +++ b/advisories/unreviewed/2022/04/GHSA-hc8c-mwgj-737m/GHSA-hc8c-mwgj-737m.json @@ -7,12 +7,8 @@ "CVE-2004-0236" ], "details": "SQL injection vulnerability in login.asp in thePHOTOtool allows remote attackers to gain unauthorized access via the password field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hf7m-5pcw-jhm9/GHSA-hf7m-5pcw-jhm9.json b/advisories/unreviewed/2022/04/GHSA-hf7m-5pcw-jhm9/GHSA-hf7m-5pcw-jhm9.json index 32fa4187179..839e1cca79c 100644 --- a/advisories/unreviewed/2022/04/GHSA-hf7m-5pcw-jhm9/GHSA-hf7m-5pcw-jhm9.json +++ b/advisories/unreviewed/2022/04/GHSA-hf7m-5pcw-jhm9/GHSA-hf7m-5pcw-jhm9.json @@ -7,12 +7,8 @@ "CVE-2004-0264" ], "details": "palmhttpd for PalmOS allows remote attackers to cause a denial of service (crash) by establishing two simultaneous HTTP connections, which exceeds the PalmOS accept queue.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hfvp-w94h-cf79/GHSA-hfvp-w94h-cf79.json b/advisories/unreviewed/2022/04/GHSA-hfvp-w94h-cf79/GHSA-hfvp-w94h-cf79.json index 8a170b9d71b..ce3692a99d7 100644 --- a/advisories/unreviewed/2022/04/GHSA-hfvp-w94h-cf79/GHSA-hfvp-w94h-cf79.json +++ b/advisories/unreviewed/2022/04/GHSA-hfvp-w94h-cf79/GHSA-hfvp-w94h-cf79.json @@ -7,12 +7,8 @@ "CVE-2004-0333" ], "details": "Buffer overflow in the UUDeview package, as used in WinZip 6.2 through WinZip 8.1 SR-1, and possibly other packages, allows remote attackers to execute arbitrary code via a MIME archive with certain long MIME parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hg37-fr4j-j65p/GHSA-hg37-fr4j-j65p.json b/advisories/unreviewed/2022/04/GHSA-hg37-fr4j-j65p/GHSA-hg37-fr4j-j65p.json index ef3b7579e63..b5982def33c 100644 --- a/advisories/unreviewed/2022/04/GHSA-hg37-fr4j-j65p/GHSA-hg37-fr4j-j65p.json +++ b/advisories/unreviewed/2022/04/GHSA-hg37-fr4j-j65p/GHSA-hg37-fr4j-j65p.json @@ -7,12 +7,8 @@ "CVE-2004-0248" ], "details": "Cross-site scripting vulnerability (XSS) in PHPX 3.2.3 allows remote attackers to execute arbitrary script as other users by injecting arbitrary HTML or script into (1) keywords argument of main.inc.php, (2) body argument of help.inc.php, or (3) the subject field in Personal Messages and Forum.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hjj2-rgq8-8f3v/GHSA-hjj2-rgq8-8f3v.json b/advisories/unreviewed/2022/04/GHSA-hjj2-rgq8-8f3v/GHSA-hjj2-rgq8-8f3v.json index befff8b9449..a0c74518e2e 100644 --- a/advisories/unreviewed/2022/04/GHSA-hjj2-rgq8-8f3v/GHSA-hjj2-rgq8-8f3v.json +++ b/advisories/unreviewed/2022/04/GHSA-hjj2-rgq8-8f3v/GHSA-hjj2-rgq8-8f3v.json @@ -7,12 +7,8 @@ "CVE-2004-0344" ], "details": "Directory traversal vulnerability in ModifyMessage.php in YaBB SE 1.5.4 through 1.5.5b allows remote attackers to delete arbitrary files via a .. (dot dot) in the attachOld parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hq6v-cqr3-x8q4/GHSA-hq6v-cqr3-x8q4.json b/advisories/unreviewed/2022/04/GHSA-hq6v-cqr3-x8q4/GHSA-hq6v-cqr3-x8q4.json index cf78b964581..af724cc7bae 100644 --- a/advisories/unreviewed/2022/04/GHSA-hq6v-cqr3-x8q4/GHSA-hq6v-cqr3-x8q4.json +++ b/advisories/unreviewed/2022/04/GHSA-hq6v-cqr3-x8q4/GHSA-hq6v-cqr3-x8q4.json @@ -7,12 +7,8 @@ "CVE-2004-0467" ], "details": "Juniper JUNOS 5.x through JUNOS 7.x allows remote attackers to cause a denial of service (routing disabled) via a large number of MPLS packets, which are not filtered or verified before being sent to the Routing Engine, which reduces the speed at which other packets are processed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hwr7-hw2w-cf69/GHSA-hwr7-hw2w-cf69.json b/advisories/unreviewed/2022/04/GHSA-hwr7-hw2w-cf69/GHSA-hwr7-hw2w-cf69.json index 1653ffb7d5c..0305da45fc4 100644 --- a/advisories/unreviewed/2022/04/GHSA-hwr7-hw2w-cf69/GHSA-hwr7-hw2w-cf69.json +++ b/advisories/unreviewed/2022/04/GHSA-hwr7-hw2w-cf69/GHSA-hwr7-hw2w-cf69.json @@ -7,12 +7,8 @@ "CVE-2004-0413" ], "details": "libsvn_ra_svn in Subversion 1.0.4 trusts the length field of (1) svn://, (2) svn+ssh://, and (3) other svn protocol URL strings, which allows remote attackers to cause a denial of service (memory consumption) and possibly execute arbitrary code via an integer overflow that leads to a heap-based buffer overflow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j5mw-wq25-jc27/GHSA-j5mw-wq25-jc27.json b/advisories/unreviewed/2022/04/GHSA-j5mw-wq25-jc27/GHSA-j5mw-wq25-jc27.json index 68f631c44d9..7140dc48b31 100644 --- a/advisories/unreviewed/2022/04/GHSA-j5mw-wq25-jc27/GHSA-j5mw-wq25-jc27.json +++ b/advisories/unreviewed/2022/04/GHSA-j5mw-wq25-jc27/GHSA-j5mw-wq25-jc27.json @@ -7,12 +7,8 @@ "CVE-2004-0274" ], "details": "Share.mod in Eggheads Eggdrop IRC bot 1.6.10 through 1.6.15 can mistakenly assign STAT_OFFERED status to a bot that is not a sharebot, which allows remote attackers to use STAT_OFFERED to promote a bot to a sharebot and conduct unauthorized activities.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j966-frr2-8mv3/GHSA-j966-frr2-8mv3.json b/advisories/unreviewed/2022/04/GHSA-j966-frr2-8mv3/GHSA-j966-frr2-8mv3.json index 8ec1dee1c07..44aca192871 100644 --- a/advisories/unreviewed/2022/04/GHSA-j966-frr2-8mv3/GHSA-j966-frr2-8mv3.json +++ b/advisories/unreviewed/2022/04/GHSA-j966-frr2-8mv3/GHSA-j966-frr2-8mv3.json @@ -7,12 +7,8 @@ "CVE-2004-0276" ], "details": "The get_real_string function in Monkey HTTP Daemon (monkeyd) 0.8.1 and earlier allows remote attackers to cause a denial of service (crash) via an HTTP request with a sequence of \"%\" characters and a missing Host field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-jfp8-f5ch-mpxj/GHSA-jfp8-f5ch-mpxj.json b/advisories/unreviewed/2022/04/GHSA-jfp8-f5ch-mpxj/GHSA-jfp8-f5ch-mpxj.json index 7b9d4c6ace7..4058fc9b19e 100644 --- a/advisories/unreviewed/2022/04/GHSA-jfp8-f5ch-mpxj/GHSA-jfp8-f5ch-mpxj.json +++ b/advisories/unreviewed/2022/04/GHSA-jfp8-f5ch-mpxj/GHSA-jfp8-f5ch-mpxj.json @@ -7,12 +7,8 @@ "CVE-2004-0237" ], "details": "Directory traversal vulnerability in index.php in Aprox PHP Portal allows remote attackers to read arbitrary files via a full pathname in the show parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jjpg-phm3-xf38/GHSA-jjpg-phm3-xf38.json b/advisories/unreviewed/2022/04/GHSA-jjpg-phm3-xf38/GHSA-jjpg-phm3-xf38.json index 1d0a7fa9336..af7cd8823cf 100644 --- a/advisories/unreviewed/2022/04/GHSA-jjpg-phm3-xf38/GHSA-jjpg-phm3-xf38.json +++ b/advisories/unreviewed/2022/04/GHSA-jjpg-phm3-xf38/GHSA-jjpg-phm3-xf38.json @@ -7,12 +7,8 @@ "CVE-2004-0251" ], "details": "Cross-site scripting (XSS) vulnerability in rxgoogle.cgi allows remote attackers to execute arbitrary script as other users via the query parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jx75-hx64-35mh/GHSA-jx75-hx64-35mh.json b/advisories/unreviewed/2022/04/GHSA-jx75-hx64-35mh/GHSA-jx75-hx64-35mh.json index 2730931f53f..3fb38f323e2 100644 --- a/advisories/unreviewed/2022/04/GHSA-jx75-hx64-35mh/GHSA-jx75-hx64-35mh.json +++ b/advisories/unreviewed/2022/04/GHSA-jx75-hx64-35mh/GHSA-jx75-hx64-35mh.json @@ -7,12 +7,8 @@ "CVE-2004-0409" ], "details": "Stack-based buffer overflow in the Socks-5 proxy code for XChat 1.8.0 to 2.0.8, with socks5 traversal enabled, allows remote attackers to execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-m4jp-mh99-vhwh/GHSA-m4jp-mh99-vhwh.json b/advisories/unreviewed/2022/04/GHSA-m4jp-mh99-vhwh/GHSA-m4jp-mh99-vhwh.json index f8d7729fa39..c3cafc6dc7d 100644 --- a/advisories/unreviewed/2022/04/GHSA-m4jp-mh99-vhwh/GHSA-m4jp-mh99-vhwh.json +++ b/advisories/unreviewed/2022/04/GHSA-m4jp-mh99-vhwh/GHSA-m4jp-mh99-vhwh.json @@ -7,12 +7,8 @@ "CVE-2004-0268" ], "details": "Multiple buffer overflows in EvolutionX 3921 and 3935 allow remote attackers to cause a denial of service (hang) via (1) a long cd command to the FTP server, or (2) a long dir command to the telnet server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-m52g-c6j4-c9q9/GHSA-m52g-c6j4-c9q9.json b/advisories/unreviewed/2022/04/GHSA-m52g-c6j4-c9q9/GHSA-m52g-c6j4-c9q9.json index 4e690582c06..5623ed8052e 100644 --- a/advisories/unreviewed/2022/04/GHSA-m52g-c6j4-c9q9/GHSA-m52g-c6j4-c9q9.json +++ b/advisories/unreviewed/2022/04/GHSA-m52g-c6j4-c9q9/GHSA-m52g-c6j4-c9q9.json @@ -7,12 +7,8 @@ "CVE-2004-0329" ], "details": "FreeChat 1.1.1a allows remote attackers to cause a denial of service (crash) via certain unexpected strings, as demonstrated using \"aaaaa\".", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-m664-4g2h-4p39/GHSA-m664-4g2h-4p39.json b/advisories/unreviewed/2022/04/GHSA-m664-4g2h-4p39/GHSA-m664-4g2h-4p39.json index 23103d5e0e1..e41c4731192 100644 --- a/advisories/unreviewed/2022/04/GHSA-m664-4g2h-4p39/GHSA-m664-4g2h-4p39.json +++ b/advisories/unreviewed/2022/04/GHSA-m664-4g2h-4p39/GHSA-m664-4g2h-4p39.json @@ -7,12 +7,8 @@ "CVE-2004-0423" ], "details": "The log_event function in ssmtp 2.50.6 and earlier allows local users to overwrite arbitrary files via a symlink attack on the ssmtp.log temporary log file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-m6cf-98c3-98p5/GHSA-m6cf-98c3-98p5.json b/advisories/unreviewed/2022/04/GHSA-m6cf-98c3-98p5/GHSA-m6cf-98c3-98p5.json index 1193c49cb5a..cf22318f7d6 100644 --- a/advisories/unreviewed/2022/04/GHSA-m6cf-98c3-98p5/GHSA-m6cf-98c3-98p5.json +++ b/advisories/unreviewed/2022/04/GHSA-m6cf-98c3-98p5/GHSA-m6cf-98c3-98p5.json @@ -7,12 +7,8 @@ "CVE-2004-0465" ], "details": "Directory traversal vulnerability in jretest.html in WebConnect 6.5 and 6.4.4, and possibly earlier versions, allows remote attackers to read keys within arbitrary INI formatted files via \"..//\" sequences in the WCP_USER parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-m6m4-jfcg-hj5w/GHSA-m6m4-jfcg-hj5w.json b/advisories/unreviewed/2022/04/GHSA-m6m4-jfcg-hj5w/GHSA-m6m4-jfcg-hj5w.json index b3b95ef1bed..a14f2f653f4 100644 --- a/advisories/unreviewed/2022/04/GHSA-m6m4-jfcg-hj5w/GHSA-m6m4-jfcg-hj5w.json +++ b/advisories/unreviewed/2022/04/GHSA-m6m4-jfcg-hj5w/GHSA-m6m4-jfcg-hj5w.json @@ -7,12 +7,8 @@ "CVE-2004-0283" ], "details": "Mailmgr 1.2.3 allows local users to overwrite arbitrary files via a symlink attack on (1) /tmp/mailmgr.unsort, (2) /tmp/mailmgr.tmp, or (3) /tmp/mailmgr.sort.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-m84w-pr2q-p5w6/GHSA-m84w-pr2q-p5w6.json b/advisories/unreviewed/2022/04/GHSA-m84w-pr2q-p5w6/GHSA-m84w-pr2q-p5w6.json index 537e4e5b949..03fef6b69a8 100644 --- a/advisories/unreviewed/2022/04/GHSA-m84w-pr2q-p5w6/GHSA-m84w-pr2q-p5w6.json +++ b/advisories/unreviewed/2022/04/GHSA-m84w-pr2q-p5w6/GHSA-m84w-pr2q-p5w6.json @@ -7,12 +7,8 @@ "CVE-2004-0360" ], "details": "Unknown vulnerability in passwd(1) in Solaris 8.0 and 9.0 allows local users to gain privileges via unknown attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-m9h2-j85p-w95r/GHSA-m9h2-j85p-w95r.json b/advisories/unreviewed/2022/04/GHSA-m9h2-j85p-w95r/GHSA-m9h2-j85p-w95r.json index fa4061d2583..406e7d91b27 100644 --- a/advisories/unreviewed/2022/04/GHSA-m9h2-j85p-w95r/GHSA-m9h2-j85p-w95r.json +++ b/advisories/unreviewed/2022/04/GHSA-m9h2-j85p-w95r/GHSA-m9h2-j85p-w95r.json @@ -7,12 +7,8 @@ "CVE-2004-0282" ], "details": "Crob FTP daemon 3.5.2 allows remote attackers to cause a denial of service (crash) by repeatedly connecting to and disconnecting from the server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mg4r-5c5w-3mrx/GHSA-mg4r-5c5w-3mrx.json b/advisories/unreviewed/2022/04/GHSA-mg4r-5c5w-3mrx/GHSA-mg4r-5c5w-3mrx.json index 11f1d710633..c99013d3ff6 100644 --- a/advisories/unreviewed/2022/04/GHSA-mg4r-5c5w-3mrx/GHSA-mg4r-5c5w-3mrx.json +++ b/advisories/unreviewed/2022/04/GHSA-mg4r-5c5w-3mrx/GHSA-mg4r-5c5w-3mrx.json @@ -7,12 +7,8 @@ "CVE-2004-0422" ], "details": "flim before 1.14.3 creates temporary files insecurely, which allows local users to overwrite arbitrary files of the Emacs user via a symlink attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mjcj-xgcf-w8x7/GHSA-mjcj-xgcf-w8x7.json b/advisories/unreviewed/2022/04/GHSA-mjcj-xgcf-w8x7/GHSA-mjcj-xgcf-w8x7.json index 2460720157e..ddc452e7ed3 100644 --- a/advisories/unreviewed/2022/04/GHSA-mjcj-xgcf-w8x7/GHSA-mjcj-xgcf-w8x7.json +++ b/advisories/unreviewed/2022/04/GHSA-mjcj-xgcf-w8x7/GHSA-mjcj-xgcf-w8x7.json @@ -7,12 +7,8 @@ "CVE-2004-0393" ], "details": "Format string vulnerability in the msg function for rlpr daemon (rlprd) 2.0.4 allows remote attackers to execute arbitrary code via format string specifiers in a buffer that can not be resolved, which is provided to the syslog function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mmrr-cxj4-wjr9/GHSA-mmrr-cxj4-wjr9.json b/advisories/unreviewed/2022/04/GHSA-mmrr-cxj4-wjr9/GHSA-mmrr-cxj4-wjr9.json index 674c9ad82fb..541fd988ddb 100644 --- a/advisories/unreviewed/2022/04/GHSA-mmrr-cxj4-wjr9/GHSA-mmrr-cxj4-wjr9.json +++ b/advisories/unreviewed/2022/04/GHSA-mmrr-cxj4-wjr9/GHSA-mmrr-cxj4-wjr9.json @@ -7,12 +7,8 @@ "CVE-2004-0357" ], "details": "Stack-based buffer overflows in SL Mail Pro 2.0.9 allow remote attackers to execute arbitrary code via (1) user.dll, (2) loadpageadmin.dll or (3) loadpageuser.dll.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mr57-xj49-8455/GHSA-mr57-xj49-8455.json b/advisories/unreviewed/2022/04/GHSA-mr57-xj49-8455/GHSA-mr57-xj49-8455.json index 9b0b947427b..ecea25ef948 100644 --- a/advisories/unreviewed/2022/04/GHSA-mr57-xj49-8455/GHSA-mr57-xj49-8455.json +++ b/advisories/unreviewed/2022/04/GHSA-mr57-xj49-8455/GHSA-mr57-xj49-8455.json @@ -7,12 +7,8 @@ "CVE-2004-0327" ], "details": "Directory traversal vulnerability in functions.php in PhpNewsManager 1.46 allows remote attackers to retrieve arbitrary files via .. (dot dot) sequences in the clang parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mr7m-j7jh-35hw/GHSA-mr7m-j7jh-35hw.json b/advisories/unreviewed/2022/04/GHSA-mr7m-j7jh-35hw/GHSA-mr7m-j7jh-35hw.json index a0cde75a2ab..21af6f13360 100644 --- a/advisories/unreviewed/2022/04/GHSA-mr7m-j7jh-35hw/GHSA-mr7m-j7jh-35hw.json +++ b/advisories/unreviewed/2022/04/GHSA-mr7m-j7jh-35hw/GHSA-mr7m-j7jh-35hw.json @@ -7,12 +7,8 @@ "CVE-2004-0270" ], "details": "libclamav in Clam AntiVirus 0.65 allows remote attackers to cause a denial of service (crash) via a uuencoded e-mail message with an invalid line length (e.g., a lowercase character), which causes an assert error in clamd that terminates the calling program.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p3pq-pvrp-rwx3/GHSA-p3pq-pvrp-rwx3.json b/advisories/unreviewed/2022/04/GHSA-p3pq-pvrp-rwx3/GHSA-p3pq-pvrp-rwx3.json index 8ad3dafc890..5c4091a8f13 100644 --- a/advisories/unreviewed/2022/04/GHSA-p3pq-pvrp-rwx3/GHSA-p3pq-pvrp-rwx3.json +++ b/advisories/unreviewed/2022/04/GHSA-p3pq-pvrp-rwx3/GHSA-p3pq-pvrp-rwx3.json @@ -7,12 +7,8 @@ "CVE-2004-0469" ], "details": "Buffer overflow in the ISAKMP functionality for Check Point VPN-1 and FireWall-1 NG products, before VPN-1/FireWall-1 R55 HFA-03, R54 HFA-410 and NG FP3 HFA-325, or VPN-1 SecuRemote/SecureClient R56, may allow remote attackers to execute arbitrary code during VPN tunnel negotiation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p492-gw5r-h3qq/GHSA-p492-gw5r-h3qq.json b/advisories/unreviewed/2022/04/GHSA-p492-gw5r-h3qq/GHSA-p492-gw5r-h3qq.json index 9e5c74f439a..3603a3b3036 100644 --- a/advisories/unreviewed/2022/04/GHSA-p492-gw5r-h3qq/GHSA-p492-gw5r-h3qq.json +++ b/advisories/unreviewed/2022/04/GHSA-p492-gw5r-h3qq/GHSA-p492-gw5r-h3qq.json @@ -7,12 +7,8 @@ "CVE-2004-0388" ], "details": "The mysqld_multi script in MySQL allows local users to overwrite arbitrary files via a symlink attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -76,9 +72,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p4c3-4p45-qjfp/GHSA-p4c3-4p45-qjfp.json b/advisories/unreviewed/2022/04/GHSA-p4c3-4p45-qjfp/GHSA-p4c3-4p45-qjfp.json index 5ccc15e4296..7dc82915c43 100644 --- a/advisories/unreviewed/2022/04/GHSA-p4c3-4p45-qjfp/GHSA-p4c3-4p45-qjfp.json +++ b/advisories/unreviewed/2022/04/GHSA-p4c3-4p45-qjfp/GHSA-p4c3-4p45-qjfp.json @@ -7,12 +7,8 @@ "CVE-2004-0242" ], "details": "X-Cart 3.4.3 allows remote attackers to gain sensitive information via a mode parameter with (1) phpinfo command or (2) perlinfo command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p4jh-q59v-v76c/GHSA-p4jh-q59v-v76c.json b/advisories/unreviewed/2022/04/GHSA-p4jh-q59v-v76c/GHSA-p4jh-q59v-v76c.json index addbf9afa50..d40ee8e90db 100644 --- a/advisories/unreviewed/2022/04/GHSA-p4jh-q59v-v76c/GHSA-p4jh-q59v-v76c.json +++ b/advisories/unreviewed/2022/04/GHSA-p4jh-q59v-v76c/GHSA-p4jh-q59v-v76c.json @@ -7,12 +7,8 @@ "CVE-2004-0338" ], "details": "SQL injection vulnerability in search.php for Invision Board Forum allows remote attackers to execute arbitrary SQL queries via the st parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p6pc-hx95-227x/GHSA-p6pc-hx95-227x.json b/advisories/unreviewed/2022/04/GHSA-p6pc-hx95-227x/GHSA-p6pc-hx95-227x.json index 35d67223620..a18c6800bbd 100644 --- a/advisories/unreviewed/2022/04/GHSA-p6pc-hx95-227x/GHSA-p6pc-hx95-227x.json +++ b/advisories/unreviewed/2022/04/GHSA-p6pc-hx95-227x/GHSA-p6pc-hx95-227x.json @@ -7,12 +7,8 @@ "CVE-2004-0353" ], "details": "Multiple buffer overflows in auth_ident() function in auth.c for GNU Anubis 3.6.0 through 3.6.2, 3.9.92 and 3.9.93 allow remote attackers to gain privileges via a long string.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p7j9-6f6w-fhcg/GHSA-p7j9-6f6w-fhcg.json b/advisories/unreviewed/2022/04/GHSA-p7j9-6f6w-fhcg/GHSA-p7j9-6f6w-fhcg.json index 0cd8382b74f..02e1904fc0b 100644 --- a/advisories/unreviewed/2022/04/GHSA-p7j9-6f6w-fhcg/GHSA-p7j9-6f6w-fhcg.json +++ b/advisories/unreviewed/2022/04/GHSA-p7j9-6f6w-fhcg/GHSA-p7j9-6f6w-fhcg.json @@ -7,12 +7,8 @@ "CVE-2004-0479" ], "details": "Internet Explorer 6 allows remote attackers to cause a denial of service (crash) via Javascript that creates a new popup window and disables the imagetoolbar functionality with a META tag, which triggers a null dereference.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pg3w-3352-ph3c/GHSA-pg3w-3352-ph3c.json b/advisories/unreviewed/2022/04/GHSA-pg3w-3352-ph3c/GHSA-pg3w-3352-ph3c.json index a86ad9a35ab..41281bbb652 100644 --- a/advisories/unreviewed/2022/04/GHSA-pg3w-3352-ph3c/GHSA-pg3w-3352-ph3c.json +++ b/advisories/unreviewed/2022/04/GHSA-pg3w-3352-ph3c/GHSA-pg3w-3352-ph3c.json @@ -7,12 +7,8 @@ "CVE-2004-0286" ], "details": "Buffer overflow in RobotFTP 1.0 and 2.0 beta 1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long username.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pg4x-f3qp-5vxc/GHSA-pg4x-f3qp-5vxc.json b/advisories/unreviewed/2022/04/GHSA-pg4x-f3qp-5vxc/GHSA-pg4x-f3qp-5vxc.json index 1a2e5a33bfd..3a0d6e22119 100644 --- a/advisories/unreviewed/2022/04/GHSA-pg4x-f3qp-5vxc/GHSA-pg4x-f3qp-5vxc.json +++ b/advisories/unreviewed/2022/04/GHSA-pg4x-f3qp-5vxc/GHSA-pg4x-f3qp-5vxc.json @@ -7,12 +7,8 @@ "CVE-2004-0375" ], "details": "SYMNDIS.SYS in Symantec Norton Internet Security 2003 and 2004, Norton Personal Firewall 2003 and 2004, Client Firewall 5.01 and 5.1.1, and Client Security 1.0 and 1.1 allow remote attackers to cause a denial of service (infinite loop) via a TCP packet with (1) SACK option or (2) Alternate Checksum Data option followed by a length of zero.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-phc7-j7hq-369x/GHSA-phc7-j7hq-369x.json b/advisories/unreviewed/2022/04/GHSA-phc7-j7hq-369x/GHSA-phc7-j7hq-369x.json index 37dde75e3a1..c3911ab89c5 100644 --- a/advisories/unreviewed/2022/04/GHSA-phc7-j7hq-369x/GHSA-phc7-j7hq-369x.json +++ b/advisories/unreviewed/2022/04/GHSA-phc7-j7hq-369x/GHSA-phc7-j7hq-369x.json @@ -7,12 +7,8 @@ "CVE-2004-0476" ], "details": "Buffer overflow in 3Com OfficeConnect Remote 812 ADSL Router 1.1.9.4 allows remote attackers to cause a denial of service (reboot or packet loss) via a long string containing Telnet escape characters to the Telnet port.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pjrr-69h2-f25x/GHSA-pjrr-69h2-f25x.json b/advisories/unreviewed/2022/04/GHSA-pjrr-69h2-f25x/GHSA-pjrr-69h2-f25x.json index 4c5823cb6f0..b7b8bc38ce7 100644 --- a/advisories/unreviewed/2022/04/GHSA-pjrr-69h2-f25x/GHSA-pjrr-69h2-f25x.json +++ b/advisories/unreviewed/2022/04/GHSA-pjrr-69h2-f25x/GHSA-pjrr-69h2-f25x.json @@ -7,12 +7,8 @@ "CVE-2004-0454" ], "details": "Buffer overflow in the msg function for rlpr daemon (rlprd) 2.04 allows local users to execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pq63-4vgj-rxhv/GHSA-pq63-4vgj-rxhv.json b/advisories/unreviewed/2022/04/GHSA-pq63-4vgj-rxhv/GHSA-pq63-4vgj-rxhv.json index 6abbd6a80c6..d4c8a023cce 100644 --- a/advisories/unreviewed/2022/04/GHSA-pq63-4vgj-rxhv/GHSA-pq63-4vgj-rxhv.json +++ b/advisories/unreviewed/2022/04/GHSA-pq63-4vgj-rxhv/GHSA-pq63-4vgj-rxhv.json @@ -7,12 +7,8 @@ "CVE-2004-0272" ], "details": "SQL injection vulnerability in MaxWebPortal allows remote attackers to inject arbitrary SQL code and gain sensitive information via the SendTo parameter in Personal Messages.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pvv5-wpf8-qq2m/GHSA-pvv5-wpf8-qq2m.json b/advisories/unreviewed/2022/04/GHSA-pvv5-wpf8-qq2m/GHSA-pvv5-wpf8-qq2m.json index a82d19b1a13..4d1ad1b83bc 100644 --- a/advisories/unreviewed/2022/04/GHSA-pvv5-wpf8-qq2m/GHSA-pvv5-wpf8-qq2m.json +++ b/advisories/unreviewed/2022/04/GHSA-pvv5-wpf8-qq2m/GHSA-pvv5-wpf8-qq2m.json @@ -7,12 +7,8 @@ "CVE-2004-0253" ], "details": "IBM Cloudscape 5.1 running jdk 1.4.2_03 allows remote attackers to execute arbitrary programs or cause a denial of service via certain SQL code, possibly due to a SQL injection vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q6cx-wgqr-cmmx/GHSA-q6cx-wgqr-cmmx.json b/advisories/unreviewed/2022/04/GHSA-q6cx-wgqr-cmmx/GHSA-q6cx-wgqr-cmmx.json index 0d8b72929e5..7c72b0aff81 100644 --- a/advisories/unreviewed/2022/04/GHSA-q6cx-wgqr-cmmx/GHSA-q6cx-wgqr-cmmx.json +++ b/advisories/unreviewed/2022/04/GHSA-q6cx-wgqr-cmmx/GHSA-q6cx-wgqr-cmmx.json @@ -7,12 +7,8 @@ "CVE-2004-0381" ], "details": "mysqlbug in MySQL allows local users to overwrite arbitrary files via a symlink attack on the failed-mysql-bugreport temporary file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qfm9-fxw9-qx37/GHSA-qfm9-fxw9-qx37.json b/advisories/unreviewed/2022/04/GHSA-qfm9-fxw9-qx37/GHSA-qfm9-fxw9-qx37.json index 53e2d56ad80..6dda1ae5117 100644 --- a/advisories/unreviewed/2022/04/GHSA-qfm9-fxw9-qx37/GHSA-qfm9-fxw9-qx37.json +++ b/advisories/unreviewed/2022/04/GHSA-qfm9-fxw9-qx37/GHSA-qfm9-fxw9-qx37.json @@ -7,12 +7,8 @@ "CVE-2004-0305" ], "details": "Cross-site scripting (XSS) vulnerability in error.asp in WebCortex WebStores 2000 6.0 allows remote attackers to execute arbitrary script as other users and steal session IDs via the Message_id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qfmq-375w-cfvc/GHSA-qfmq-375w-cfvc.json b/advisories/unreviewed/2022/04/GHSA-qfmq-375w-cfvc/GHSA-qfmq-375w-cfvc.json index e6fd820de2e..46429dcf863 100644 --- a/advisories/unreviewed/2022/04/GHSA-qfmq-375w-cfvc/GHSA-qfmq-375w-cfvc.json +++ b/advisories/unreviewed/2022/04/GHSA-qfmq-375w-cfvc/GHSA-qfmq-375w-cfvc.json @@ -7,12 +7,8 @@ "CVE-2004-0312" ], "details": "Linksys WAP55AG 1.07 allows remote attackers with access to an SNMP read only community string to gain access to read/write communtiy strings via a query for OID 1.3.6.1.4.1.3955.2.1.13.1.2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qg73-p34x-r86c/GHSA-qg73-p34x-r86c.json b/advisories/unreviewed/2022/04/GHSA-qg73-p34x-r86c/GHSA-qg73-p34x-r86c.json index abeb8210322..9ffac8a85b2 100644 --- a/advisories/unreviewed/2022/04/GHSA-qg73-p34x-r86c/GHSA-qg73-p34x-r86c.json +++ b/advisories/unreviewed/2022/04/GHSA-qg73-p34x-r86c/GHSA-qg73-p34x-r86c.json @@ -7,12 +7,8 @@ "CVE-2004-0429" ], "details": "Unknown vulnerability related to \"the handling of large requests\" in RAdmin for Apple Mac OS X 10.3.3 and Mac OS X 10.2.8 may allow attackers to have unknown impact via unknown attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qgcw-frwg-8fc6/GHSA-qgcw-frwg-8fc6.json b/advisories/unreviewed/2022/04/GHSA-qgcw-frwg-8fc6/GHSA-qgcw-frwg-8fc6.json index 7470dc1c8a2..7c8dffac1a0 100644 --- a/advisories/unreviewed/2022/04/GHSA-qgcw-frwg-8fc6/GHSA-qgcw-frwg-8fc6.json +++ b/advisories/unreviewed/2022/04/GHSA-qgcw-frwg-8fc6/GHSA-qgcw-frwg-8fc6.json @@ -7,12 +7,8 @@ "CVE-2004-0314" ], "details": "Cross-site scripting (XSS) vulnerability in done.jsp in WebzEdit 1.9 and earlier allows remote attackers to execute arbitrary script as other users via the message parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qhjw-939w-vp4h/GHSA-qhjw-939w-vp4h.json b/advisories/unreviewed/2022/04/GHSA-qhjw-939w-vp4h/GHSA-qhjw-939w-vp4h.json index 5b3729b2e80..35d26c9782b 100644 --- a/advisories/unreviewed/2022/04/GHSA-qhjw-939w-vp4h/GHSA-qhjw-939w-vp4h.json +++ b/advisories/unreviewed/2022/04/GHSA-qhjw-939w-vp4h/GHSA-qhjw-939w-vp4h.json @@ -7,12 +7,8 @@ "CVE-2004-0460" ], "details": "Buffer overflow in the logging capability for the DHCP daemon (DHCPD) for ISC DHCP 3.0.1rc12 and 3.0.1rc13 allows remote attackers to cause a denial of service (server crash) and possibly execute arbitrary code via multiple hostname options in (1) DISCOVER, (2) OFFER, (3) REQUEST, (4) ACK, or (5) NAK messages, which can generate a long string when writing to a log file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qpvf-9394-g8pr/GHSA-qpvf-9394-g8pr.json b/advisories/unreviewed/2022/04/GHSA-qpvf-9394-g8pr/GHSA-qpvf-9394-g8pr.json index 37c168c6544..cbf019f6fdf 100644 --- a/advisories/unreviewed/2022/04/GHSA-qpvf-9394-g8pr/GHSA-qpvf-9394-g8pr.json +++ b/advisories/unreviewed/2022/04/GHSA-qpvf-9394-g8pr/GHSA-qpvf-9394-g8pr.json @@ -7,12 +7,8 @@ "CVE-2004-0386" ], "details": "Buffer overflow in the HTTP parser for MPlayer 1.0pre3 and earlier, 0.90, and 0.91 allows remote attackers to execute arbitrary code via a long Location header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qvp9-3f4h-9jjj/GHSA-qvp9-3f4h-9jjj.json b/advisories/unreviewed/2022/04/GHSA-qvp9-3f4h-9jjj/GHSA-qvp9-3f4h-9jjj.json index 82f826cff66..07a83aec3f4 100644 --- a/advisories/unreviewed/2022/04/GHSA-qvp9-3f4h-9jjj/GHSA-qvp9-3f4h-9jjj.json +++ b/advisories/unreviewed/2022/04/GHSA-qvp9-3f4h-9jjj/GHSA-qvp9-3f4h-9jjj.json @@ -7,12 +7,8 @@ "CVE-2004-0315" ], "details": "Buffer overflow in Avirt Voice 4.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long GET request on port 1080.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qx32-c2q2-cgcr/GHSA-qx32-c2q2-cgcr.json b/advisories/unreviewed/2022/04/GHSA-qx32-c2q2-cgcr/GHSA-qx32-c2q2-cgcr.json index 30c31ba628a..cc67ec3e6d2 100644 --- a/advisories/unreviewed/2022/04/GHSA-qx32-c2q2-cgcr/GHSA-qx32-c2q2-cgcr.json +++ b/advisories/unreviewed/2022/04/GHSA-qx32-c2q2-cgcr/GHSA-qx32-c2q2-cgcr.json @@ -7,12 +7,8 @@ "CVE-2004-0400" ], "details": "Stack-based buffer overflow in Exim 4 before 4.33, when the headers_check_syntax option is enabled, allows remote attackers to cause a denial of service and possibly execute arbitrary code during the header check.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-r3jv-3fjc-hr47/GHSA-r3jv-3fjc-hr47.json b/advisories/unreviewed/2022/04/GHSA-r3jv-3fjc-hr47/GHSA-r3jv-3fjc-hr47.json index f30d90d6078..f42e0224380 100644 --- a/advisories/unreviewed/2022/04/GHSA-r3jv-3fjc-hr47/GHSA-r3jv-3fjc-hr47.json +++ b/advisories/unreviewed/2022/04/GHSA-r3jv-3fjc-hr47/GHSA-r3jv-3fjc-hr47.json @@ -7,12 +7,8 @@ "CVE-2004-0265" ], "details": "Cross-site scripting (XSS) vulnerability in modules.php for Php-Nuke 6.x-7.1.0 allows remote attackers to execute arbitrary script as other users via URL-encoded (1) title or (2) fname parameters in the News or Reviews modules.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-r5vr-fp8w-fm26/GHSA-r5vr-fp8w-fm26.json b/advisories/unreviewed/2022/04/GHSA-r5vr-fp8w-fm26/GHSA-r5vr-fp8w-fm26.json index 946c6fc1384..e34b7050f4c 100644 --- a/advisories/unreviewed/2022/04/GHSA-r5vr-fp8w-fm26/GHSA-r5vr-fp8w-fm26.json +++ b/advisories/unreviewed/2022/04/GHSA-r5vr-fp8w-fm26/GHSA-r5vr-fp8w-fm26.json @@ -7,12 +7,8 @@ "CVE-2004-0249" ], "details": "PHPX 2.0 through 3.2.4 allows remote attackers to gain access to other accounts by modifying the cookie's PXL variable to reference another userID.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-r75m-8jm4-cmqh/GHSA-r75m-8jm4-cmqh.json b/advisories/unreviewed/2022/04/GHSA-r75m-8jm4-cmqh/GHSA-r75m-8jm4-cmqh.json index f1029228f5c..d64c87a799b 100644 --- a/advisories/unreviewed/2022/04/GHSA-r75m-8jm4-cmqh/GHSA-r75m-8jm4-cmqh.json +++ b/advisories/unreviewed/2022/04/GHSA-r75m-8jm4-cmqh/GHSA-r75m-8jm4-cmqh.json @@ -7,12 +7,8 @@ "CVE-2004-0385" ], "details": "Heap-based buffer overflow in Oracle 9i Application Server Web Cache 9.0.4.0.0, 9.0.3.1.0, 9.0.2.3.0, and 9.0.0.4.0 allows remote attackers to execute arbitrary code via a long HTTP request method header to the Web Cache listener. NOTE: due to the vagueness of the Oracle advisory, it is not clear whether there are additional issues besides this overflow, although the advisory alludes to multiple \"vulnerabilities.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-r93c-fqgf-vv5h/GHSA-r93c-fqgf-vv5h.json b/advisories/unreviewed/2022/04/GHSA-r93c-fqgf-vv5h/GHSA-r93c-fqgf-vv5h.json index 4e92b9ee20e..1b2adbbb56b 100644 --- a/advisories/unreviewed/2022/04/GHSA-r93c-fqgf-vv5h/GHSA-r93c-fqgf-vv5h.json +++ b/advisories/unreviewed/2022/04/GHSA-r93c-fqgf-vv5h/GHSA-r93c-fqgf-vv5h.json @@ -7,12 +7,8 @@ "CVE-2004-0322" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in XMB 1.8 Final SP2 allow remote attackers to execute arbitrary script as other users via the (1) member parameter in member.php, (2) uid parameter in u2uadmin.php, (3) user parameter in editprofile.php, (4) an onmouseover event in an align tag when bbcode is allowed, or (5) img tag where bbcode is allowed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rf64-vpcw-m8c6/GHSA-rf64-vpcw-m8c6.json b/advisories/unreviewed/2022/04/GHSA-rf64-vpcw-m8c6/GHSA-rf64-vpcw-m8c6.json index b9e802f19a8..67eba06d81b 100644 --- a/advisories/unreviewed/2022/04/GHSA-rf64-vpcw-m8c6/GHSA-rf64-vpcw-m8c6.json +++ b/advisories/unreviewed/2022/04/GHSA-rf64-vpcw-m8c6/GHSA-rf64-vpcw-m8c6.json @@ -7,12 +7,8 @@ "CVE-2004-0399" ], "details": "Stack-based buffer overflow in Exim 3.35, and other versions before 4, when the sender_verify option is true, allows remote attackers to cause a denial of service and possibly execute arbitrary code during sender verification.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rfg7-c2cq-64vm/GHSA-rfg7-c2cq-64vm.json b/advisories/unreviewed/2022/04/GHSA-rfg7-c2cq-64vm/GHSA-rfg7-c2cq-64vm.json index 811f9009a0a..1537d8b3ee4 100644 --- a/advisories/unreviewed/2022/04/GHSA-rfg7-c2cq-64vm/GHSA-rfg7-c2cq-64vm.json +++ b/advisories/unreviewed/2022/04/GHSA-rfg7-c2cq-64vm/GHSA-rfg7-c2cq-64vm.json @@ -7,12 +7,8 @@ "CVE-2004-0250" ], "details": "SQL injection vulnerability in PhotoPost PHP Pro 4.6 and earlier allows remote attackers to gain privileges via (1) the product parameter in showproduct.php or (2) the cat parameter in showcat.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rj84-m96v-25xp/GHSA-rj84-m96v-25xp.json b/advisories/unreviewed/2022/04/GHSA-rj84-m96v-25xp/GHSA-rj84-m96v-25xp.json index 3f6a314a7f2..c18ad71d6ff 100644 --- a/advisories/unreviewed/2022/04/GHSA-rj84-m96v-25xp/GHSA-rj84-m96v-25xp.json +++ b/advisories/unreviewed/2022/04/GHSA-rj84-m96v-25xp/GHSA-rj84-m96v-25xp.json @@ -7,12 +7,8 @@ "CVE-2004-0471" ], "details": "BEA WebLogic Server and WebLogic Express 7.0 through SP5 and 8.1 through SP2 does not enforce site restrictions for starting and stopping servers for users in the Admin and Operator security roles, which allows unauthorized users to cause a denial of service (service shutdown).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rm2p-jhqp-33q2/GHSA-rm2p-jhqp-33q2.json b/advisories/unreviewed/2022/04/GHSA-rm2p-jhqp-33q2/GHSA-rm2p-jhqp-33q2.json index 11c1f71d8c9..affc44ebdae 100644 --- a/advisories/unreviewed/2022/04/GHSA-rm2p-jhqp-33q2/GHSA-rm2p-jhqp-33q2.json +++ b/advisories/unreviewed/2022/04/GHSA-rm2p-jhqp-33q2/GHSA-rm2p-jhqp-33q2.json @@ -7,12 +7,8 @@ "CVE-2004-0377" ], "details": "Buffer overflow in the win32_stat function for (1) ActiveState's ActivePerl and (2) Larry Wall's Perl before 5.8.3 allows local or remote attackers to execute arbitrary commands via filenames that end in a backslash character.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rp6m-6h7f-9mhj/GHSA-rp6m-6h7f-9mhj.json b/advisories/unreviewed/2022/04/GHSA-rp6m-6h7f-9mhj/GHSA-rp6m-6h7f-9mhj.json index 473aeb4a286..3237f6f550a 100644 --- a/advisories/unreviewed/2022/04/GHSA-rp6m-6h7f-9mhj/GHSA-rp6m-6h7f-9mhj.json +++ b/advisories/unreviewed/2022/04/GHSA-rp6m-6h7f-9mhj/GHSA-rp6m-6h7f-9mhj.json @@ -7,12 +7,8 @@ "CVE-2004-0323" ], "details": "Multiple SQL injection vulnerabilities in XMB 1.8 Final SP2 allow remote attackers to inject arbitrary SQL and gain privileges via the (1) ppp parameter in viewthread.php, (2) desc parameter in misc.php, (3) tpp parameter in forumdisplay.php, (4) ascdesc parameter in forumdisplay.php, or (5) the addon parameter in stats.php. NOTE: it has also been shown that item (3) is also in XMB 1.9 beta.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rpm8-r324-vq2q/GHSA-rpm8-r324-vq2q.json b/advisories/unreviewed/2022/04/GHSA-rpm8-r324-vq2q/GHSA-rpm8-r324-vq2q.json index 1e76ac756f8..9d492440d7c 100644 --- a/advisories/unreviewed/2022/04/GHSA-rpm8-r324-vq2q/GHSA-rpm8-r324-vq2q.json +++ b/advisories/unreviewed/2022/04/GHSA-rpm8-r324-vq2q/GHSA-rpm8-r324-vq2q.json @@ -7,12 +7,8 @@ "CVE-2004-0334" ], "details": "InnoMedia VideoPhone allows remote attackers to bypass Basic Authorization via an HTTP request to (1) videophone_admindetail.asp, (2) videophone_syscfg.asp, (3) videophone_upgrade.asp, or (4) videophone_sysctrl.asp that contains a trailing / (slash). NOTE: the original report mentioned AXIS 2100 Network Camera, but this was likely a cut-and-paste error.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rr6j-c7gr-v839/GHSA-rr6j-c7gr-v839.json b/advisories/unreviewed/2022/04/GHSA-rr6j-c7gr-v839/GHSA-rr6j-c7gr-v839.json index 045ae4b661e..442babe122d 100644 --- a/advisories/unreviewed/2022/04/GHSA-rr6j-c7gr-v839/GHSA-rr6j-c7gr-v839.json +++ b/advisories/unreviewed/2022/04/GHSA-rr6j-c7gr-v839/GHSA-rr6j-c7gr-v839.json @@ -7,12 +7,8 @@ "CVE-2004-0326" ], "details": "Buffer overflow in the web proxy for GateKeeper Pro 4.7 allows remote attackers to execute arbitrary code via a long GET request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rrv7-q4hc-8648/GHSA-rrv7-q4hc-8648.json b/advisories/unreviewed/2022/04/GHSA-rrv7-q4hc-8648/GHSA-rrv7-q4hc-8648.json index db1abaaebdc..98bd7e89e8d 100644 --- a/advisories/unreviewed/2022/04/GHSA-rrv7-q4hc-8648/GHSA-rrv7-q4hc-8648.json +++ b/advisories/unreviewed/2022/04/GHSA-rrv7-q4hc-8648/GHSA-rrv7-q4hc-8648.json @@ -7,12 +7,8 @@ "CVE-2004-0245" ], "details": "Web Crossing 4.x and 5.x allows remote attackers to cause a denial of service (crash) by sending a HTTP POST request with a large or negative Content-Length, which causes an integer divide-by-zero.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rx95-529p-86fc/GHSA-rx95-529p-86fc.json b/advisories/unreviewed/2022/04/GHSA-rx95-529p-86fc/GHSA-rx95-529p-86fc.json index 9455244a0f1..0dd4affbbeb 100644 --- a/advisories/unreviewed/2022/04/GHSA-rx95-529p-86fc/GHSA-rx95-529p-86fc.json +++ b/advisories/unreviewed/2022/04/GHSA-rx95-529p-86fc/GHSA-rx95-529p-86fc.json @@ -7,12 +7,8 @@ "CVE-2004-0398" ], "details": "Heap-based buffer overflow in the ne_rfc1036_parse date parsing function for the neon library (libneon) 0.24.5 and earlier, as used by cadaver before 0.22, allows remote WebDAV servers to execute arbitrary code on the client.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-rxcm-wv5c-68gr/GHSA-rxcm-wv5c-68gr.json b/advisories/unreviewed/2022/04/GHSA-rxcm-wv5c-68gr/GHSA-rxcm-wv5c-68gr.json index 184fa4a60e5..31584be2d76 100644 --- a/advisories/unreviewed/2022/04/GHSA-rxcm-wv5c-68gr/GHSA-rxcm-wv5c-68gr.json +++ b/advisories/unreviewed/2022/04/GHSA-rxcm-wv5c-68gr/GHSA-rxcm-wv5c-68gr.json @@ -7,12 +7,8 @@ "CVE-2004-0254" ], "details": "Cross-site scripting (XSS) vulnerability in Discuz! Board 2.x and 3.x allows remote attackers to execute arbitrary script as other users via an img tag.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rxgx-f27q-r49h/GHSA-rxgx-f27q-r49h.json b/advisories/unreviewed/2022/04/GHSA-rxgx-f27q-r49h/GHSA-rxgx-f27q-r49h.json index fe69325243f..deab03baf25 100644 --- a/advisories/unreviewed/2022/04/GHSA-rxgx-f27q-r49h/GHSA-rxgx-f27q-r49h.json +++ b/advisories/unreviewed/2022/04/GHSA-rxgx-f27q-r49h/GHSA-rxgx-f27q-r49h.json @@ -7,12 +7,8 @@ "CVE-2004-0450" ], "details": "Format string vulnerability in the printlog function in log2mail before 0.2.5.2 allows local users or remote attackers to execute arbitrary code via format string specifiers in a logfile monitored by log2mail.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rxj6-jfgp-j36w/GHSA-rxj6-jfgp-j36w.json b/advisories/unreviewed/2022/04/GHSA-rxj6-jfgp-j36w/GHSA-rxj6-jfgp-j36w.json index 71ba68fa70d..164858904e6 100644 --- a/advisories/unreviewed/2022/04/GHSA-rxj6-jfgp-j36w/GHSA-rxj6-jfgp-j36w.json +++ b/advisories/unreviewed/2022/04/GHSA-rxj6-jfgp-j36w/GHSA-rxj6-jfgp-j36w.json @@ -7,12 +7,8 @@ "CVE-2004-0332" ], "details": "Extremail 1.5.9 does not check passwords correctly when they are all digits or begin with a digit, which allows remote attackers to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-v2xf-m5vw-px6j/GHSA-v2xf-m5vw-px6j.json b/advisories/unreviewed/2022/04/GHSA-v2xf-m5vw-px6j/GHSA-v2xf-m5vw-px6j.json index aa92bff459c..66b0d15ca73 100644 --- a/advisories/unreviewed/2022/04/GHSA-v2xf-m5vw-px6j/GHSA-v2xf-m5vw-px6j.json +++ b/advisories/unreviewed/2022/04/GHSA-v2xf-m5vw-px6j/GHSA-v2xf-m5vw-px6j.json @@ -7,12 +7,8 @@ "CVE-2004-0456" ], "details": "Stack-based buffer overflow in pavuk 0.9pl28, 0.9pl27, and possibly other versions allows remote web sites to execute arbitrary code via a long HTTP Location header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-v492-qprp-rvhr/GHSA-v492-qprp-rvhr.json b/advisories/unreviewed/2022/04/GHSA-v492-qprp-rvhr/GHSA-v492-qprp-rvhr.json index caa684e0ba7..f8e51e58db1 100644 --- a/advisories/unreviewed/2022/04/GHSA-v492-qprp-rvhr/GHSA-v492-qprp-rvhr.json +++ b/advisories/unreviewed/2022/04/GHSA-v492-qprp-rvhr/GHSA-v492-qprp-rvhr.json @@ -7,12 +7,8 @@ "CVE-2004-0235" ], "details": "Multiple directory traversal vulnerabilities in LHA 1.14 allow remote attackers or local users to create arbitrary files via an LHA archive containing filenames with (1) .. sequences or (2) absolute pathnames with double leading slashes (\"//absolute/path\").", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -72,9 +68,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-v4h7-vp6f-m3c3/GHSA-v4h7-vp6f-m3c3.json b/advisories/unreviewed/2022/04/GHSA-v4h7-vp6f-m3c3/GHSA-v4h7-vp6f-m3c3.json index c167fa8ea94..bbe2aee6c42 100644 --- a/advisories/unreviewed/2022/04/GHSA-v4h7-vp6f-m3c3/GHSA-v4h7-vp6f-m3c3.json +++ b/advisories/unreviewed/2022/04/GHSA-v4h7-vp6f-m3c3/GHSA-v4h7-vp6f-m3c3.json @@ -7,12 +7,8 @@ "CVE-2004-0241" ], "details": "X-Cart 3.4.3 allows remote attackers to execute arbitrary commands via the perl_binary argument in (1) upgrade.php or (2) general.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-v6fh-54gr-cvvc/GHSA-v6fh-54gr-cvvc.json b/advisories/unreviewed/2022/04/GHSA-v6fh-54gr-cvvc/GHSA-v6fh-54gr-cvvc.json index 536965f3095..00753e481e4 100644 --- a/advisories/unreviewed/2022/04/GHSA-v6fh-54gr-cvvc/GHSA-v6fh-54gr-cvvc.json +++ b/advisories/unreviewed/2022/04/GHSA-v6fh-54gr-cvvc/GHSA-v6fh-54gr-cvvc.json @@ -7,12 +7,8 @@ "CVE-2004-0367" ], "details": "Ethereal 0.10.1 to 0.10.2 allows remote attackers to cause a denial of service (crash) via a zero-length Presentation protocol selector.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -76,9 +72,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-v6q8-f3pg-p46q/GHSA-v6q8-f3pg-p46q.json b/advisories/unreviewed/2022/04/GHSA-v6q8-f3pg-p46q/GHSA-v6q8-f3pg-p46q.json index 7430e221806..2378f4545cf 100644 --- a/advisories/unreviewed/2022/04/GHSA-v6q8-f3pg-p46q/GHSA-v6q8-f3pg-p46q.json +++ b/advisories/unreviewed/2022/04/GHSA-v6q8-f3pg-p46q/GHSA-v6q8-f3pg-p46q.json @@ -7,12 +7,8 @@ "CVE-2004-0374" ], "details": "Interchange before 5.0.1 allows remote attackers to \"expose the content of arbitrary variables\" and read or modify sensitive SQL information via an HTTP request ending with the \"__SQLUSER__\" string.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-v6wg-hp5f-hcpq/GHSA-v6wg-hp5f-hcpq.json b/advisories/unreviewed/2022/04/GHSA-v6wg-hp5f-hcpq/GHSA-v6wg-hp5f-hcpq.json index eccadc68b97..14ca9dc107a 100644 --- a/advisories/unreviewed/2022/04/GHSA-v6wg-hp5f-hcpq/GHSA-v6wg-hp5f-hcpq.json +++ b/advisories/unreviewed/2022/04/GHSA-v6wg-hp5f-hcpq/GHSA-v6wg-hp5f-hcpq.json @@ -7,12 +7,8 @@ "CVE-2004-0364" ], "details": "The WrapNISUM ActiveX component (WrapUM.dll) in Norton Internet Security 2004 is marked safe for scripting, which allows remote attackers to execute arbitrary programs via the LaunchURL method.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-v7hr-fgm3-v42f/GHSA-v7hr-fgm3-v42f.json b/advisories/unreviewed/2022/04/GHSA-v7hr-fgm3-v42f/GHSA-v7hr-fgm3-v42f.json index 9715156d2c9..4833b42ff3d 100644 --- a/advisories/unreviewed/2022/04/GHSA-v7hr-fgm3-v42f/GHSA-v7hr-fgm3-v42f.json +++ b/advisories/unreviewed/2022/04/GHSA-v7hr-fgm3-v42f/GHSA-v7hr-fgm3-v42f.json @@ -7,12 +7,8 @@ "CVE-2004-0256" ], "details": "GNU libtool before 1.5.2, during compile time, allows local users to overwrite arbitrary files via a symlink attack on libtool directories in /tmp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-v935-84rg-x298/GHSA-v935-84rg-x298.json b/advisories/unreviewed/2022/04/GHSA-v935-84rg-x298/GHSA-v935-84rg-x298.json index 826d337d22d..c5dbab61c1a 100644 --- a/advisories/unreviewed/2022/04/GHSA-v935-84rg-x298/GHSA-v935-84rg-x298.json +++ b/advisories/unreviewed/2022/04/GHSA-v935-84rg-x298/GHSA-v935-84rg-x298.json @@ -7,12 +7,8 @@ "CVE-2004-0404" ], "details": "logcheck before 1.1.1 allows local users to overwrite arbitrary files via a symlink attack on a temporary directory in /var/tmp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vhf7-p3q6-249f/GHSA-vhf7-p3q6-249f.json b/advisories/unreviewed/2022/04/GHSA-vhf7-p3q6-249f/GHSA-vhf7-p3q6-249f.json index c2af5784f75..fe08781d2df 100644 --- a/advisories/unreviewed/2022/04/GHSA-vhf7-p3q6-249f/GHSA-vhf7-p3q6-249f.json +++ b/advisories/unreviewed/2022/04/GHSA-vhf7-p3q6-249f/GHSA-vhf7-p3q6-249f.json @@ -7,12 +7,8 @@ "CVE-2004-0297" ], "details": "Buffer overflow in the Lightweight Directory Access Protocol (LDAP) daemon (iLDAP.exe 3.9.15.10) in Ipswitch IMail Server 8.03 allows remote attackers to cause a denial of service (crash) and execute arbitrary code via an LDAP message with a large tag length.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vj74-5mp3-38mp/GHSA-vj74-5mp3-38mp.json b/advisories/unreviewed/2022/04/GHSA-vj74-5mp3-38mp/GHSA-vj74-5mp3-38mp.json index bc45a98ef17..b0953d2c931 100644 --- a/advisories/unreviewed/2022/04/GHSA-vj74-5mp3-38mp/GHSA-vj74-5mp3-38mp.json +++ b/advisories/unreviewed/2022/04/GHSA-vj74-5mp3-38mp/GHSA-vj74-5mp3-38mp.json @@ -7,12 +7,8 @@ "CVE-2004-0287" ], "details": "Xlight FTP server 1.52 allows remote authenticated users to cause a denial of service (crash) via a RETR command with a long argument containing a large number of / (slash) characters, possibly triggering a buffer overflow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vv4v-whgw-9284/GHSA-vv4v-whgw-9284.json b/advisories/unreviewed/2022/04/GHSA-vv4v-whgw-9284/GHSA-vv4v-whgw-9284.json index 7851247bce3..73cad6415bd 100644 --- a/advisories/unreviewed/2022/04/GHSA-vv4v-whgw-9284/GHSA-vv4v-whgw-9284.json +++ b/advisories/unreviewed/2022/04/GHSA-vv4v-whgw-9284/GHSA-vv4v-whgw-9284.json @@ -7,12 +7,8 @@ "CVE-2004-0477" ], "details": "Unknown vulnerability in 3Com OfficeConnect Remote 812 ADSL Router allows remote attackers to bypass authentication via repeated attempts using any username and password. NOTE: this identifier was inadvertently re-used for another issue due to a typo; that issue was assigned CVE-2004-0447. This candidate is ONLY for the ADSL router bypass.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vw27-grvr-mcmx/GHSA-vw27-grvr-mcmx.json b/advisories/unreviewed/2022/04/GHSA-vw27-grvr-mcmx/GHSA-vw27-grvr-mcmx.json index 55495766ecb..036c7c10057 100644 --- a/advisories/unreviewed/2022/04/GHSA-vw27-grvr-mcmx/GHSA-vw27-grvr-mcmx.json +++ b/advisories/unreviewed/2022/04/GHSA-vw27-grvr-mcmx/GHSA-vw27-grvr-mcmx.json @@ -7,12 +7,8 @@ "CVE-2004-0227" ], "details": "Buffer overflow in the zms script in ZoneMinder before 1.19.2 may allow a remote attacker to execute arbitrary code via a long query string.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vwgc-f9cf-rp7w/GHSA-vwgc-f9cf-rp7w.json b/advisories/unreviewed/2022/04/GHSA-vwgc-f9cf-rp7w/GHSA-vwgc-f9cf-rp7w.json index 7b471bd21c6..50062240609 100644 --- a/advisories/unreviewed/2022/04/GHSA-vwgc-f9cf-rp7w/GHSA-vwgc-f9cf-rp7w.json +++ b/advisories/unreviewed/2022/04/GHSA-vwgc-f9cf-rp7w/GHSA-vwgc-f9cf-rp7w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-vwxm-8m4v-97wg/GHSA-vwxm-8m4v-97wg.json b/advisories/unreviewed/2022/04/GHSA-vwxm-8m4v-97wg/GHSA-vwxm-8m4v-97wg.json index 901f5871a53..86585237e0c 100644 --- a/advisories/unreviewed/2022/04/GHSA-vwxm-8m4v-97wg/GHSA-vwxm-8m4v-97wg.json +++ b/advisories/unreviewed/2022/04/GHSA-vwxm-8m4v-97wg/GHSA-vwxm-8m4v-97wg.json @@ -7,12 +7,8 @@ "CVE-2004-0397" ], "details": "Stack-based buffer overflow during the apr_time_t data conversion in Subversion 1.0.2 and earlier allows remote attackers to execute arbitrary code via a (1) DAV2 REPORT query or (2) get-dated-rev svn-protocol command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -72,9 +68,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w27r-2xr6-37p7/GHSA-w27r-2xr6-37p7.json b/advisories/unreviewed/2022/04/GHSA-w27r-2xr6-37p7/GHSA-w27r-2xr6-37p7.json index be1faffdc44..d9a3e04492d 100644 --- a/advisories/unreviewed/2022/04/GHSA-w27r-2xr6-37p7/GHSA-w27r-2xr6-37p7.json +++ b/advisories/unreviewed/2022/04/GHSA-w27r-2xr6-37p7/GHSA-w27r-2xr6-37p7.json @@ -7,12 +7,8 @@ "CVE-2004-0390" ], "details": "SCO OpenServer 5.0.5 through 5.0.7 only supports Xauthority style access control when users log in using scologin, which allows remote attackers to gain unauthorized access to an X session via other X login methods.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w7j3-x6cj-xxx3/GHSA-w7j3-x6cj-xxx3.json b/advisories/unreviewed/2022/04/GHSA-w7j3-x6cj-xxx3/GHSA-w7j3-x6cj-xxx3.json index 88c37ac8dac..610385343bd 100644 --- a/advisories/unreviewed/2022/04/GHSA-w7j3-x6cj-xxx3/GHSA-w7j3-x6cj-xxx3.json +++ b/advisories/unreviewed/2022/04/GHSA-w7j3-x6cj-xxx3/GHSA-w7j3-x6cj-xxx3.json @@ -7,12 +7,8 @@ "CVE-2004-0361" ], "details": "The Javascript engine in Safari 1.2 and earlier allows remote attackers to cause a denial of service (segmentation fault) by creating a new Array object with a large size value, then writing into that array.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w8mp-vfgg-7w4g/GHSA-w8mp-vfgg-7w4g.json b/advisories/unreviewed/2022/04/GHSA-w8mp-vfgg-7w4g/GHSA-w8mp-vfgg-7w4g.json index 801a157db8b..7390ed3ebc3 100644 --- a/advisories/unreviewed/2022/04/GHSA-w8mp-vfgg-7w4g/GHSA-w8mp-vfgg-7w4g.json +++ b/advisories/unreviewed/2022/04/GHSA-w8mp-vfgg-7w4g/GHSA-w8mp-vfgg-7w4g.json @@ -7,12 +7,8 @@ "CVE-2004-0362" ], "details": "Multiple stack-based buffer overflows in the ICQ parsing routines of the ISS Protocol Analysis Module (PAM) component, as used in various RealSecure, Proventia, and BlackICE products, allow remote attackers to execute arbitrary code via a SRV_MULTI response containing a SRV_USER_ONLINE response packet and a SRV_META_USER response packet with long (1) nickname, (2) firstname, (3) lastname, or (4) email address fields, as exploited by the Witty worm.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w979-wcrr-7whw/GHSA-w979-wcrr-7whw.json b/advisories/unreviewed/2022/04/GHSA-w979-wcrr-7whw/GHSA-w979-wcrr-7whw.json index 4245db7d390..cd146f9dcb9 100644 --- a/advisories/unreviewed/2022/04/GHSA-w979-wcrr-7whw/GHSA-w979-wcrr-7whw.json +++ b/advisories/unreviewed/2022/04/GHSA-w979-wcrr-7whw/GHSA-w979-wcrr-7whw.json @@ -7,12 +7,8 @@ "CVE-2004-0234" ], "details": "Multiple stack-based buffer overflows in the get_header function in header.c for LHA 1.14, as used in products such as Barracuda Spam Firewall, allow remote attackers or local users to execute arbitrary code via long directory or file names in an LHA archive, which triggers the overflow when testing or extracting the archive.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-w97w-7vwf-xwfj/GHSA-w97w-7vwf-xwfj.json b/advisories/unreviewed/2022/04/GHSA-w97w-7vwf-xwfj/GHSA-w97w-7vwf-xwfj.json index 19f49f6b3a5..0a33ccaf1f1 100644 --- a/advisories/unreviewed/2022/04/GHSA-w97w-7vwf-xwfj/GHSA-w97w-7vwf-xwfj.json +++ b/advisories/unreviewed/2022/04/GHSA-w97w-7vwf-xwfj/GHSA-w97w-7vwf-xwfj.json @@ -7,12 +7,8 @@ "CVE-2004-0343" ], "details": "Multiple SQL injection vulnerabilities in YaBB SE 1.5.4 through 1.5.5b allow remote attackers to execute arbitrary SQL via (1) the msg parameter in ModifyMessage.php or (2) the postid parameter in ModifyMessage.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wf2p-c7pp-qfjr/GHSA-wf2p-c7pp-qfjr.json b/advisories/unreviewed/2022/04/GHSA-wf2p-c7pp-qfjr/GHSA-wf2p-c7pp-qfjr.json index 5b4480cbabf..26e1c5b9b8d 100644 --- a/advisories/unreviewed/2022/04/GHSA-wf2p-c7pp-qfjr/GHSA-wf2p-c7pp-qfjr.json +++ b/advisories/unreviewed/2022/04/GHSA-wf2p-c7pp-qfjr/GHSA-wf2p-c7pp-qfjr.json @@ -7,12 +7,8 @@ "CVE-2004-0247" ], "details": "The client and server of Chaser 1.50 and earlier allow remote attackers to cause a denial of service (crash via exception) via a UDP packet with a length field that is greater than the actual data length, which causes Chaser to read unexpected memory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wmcx-jvg5-m384/GHSA-wmcx-jvg5-m384.json b/advisories/unreviewed/2022/04/GHSA-wmcx-jvg5-m384/GHSA-wmcx-jvg5-m384.json index bf12af997ce..1ae27ff0e6c 100644 --- a/advisories/unreviewed/2022/04/GHSA-wmcx-jvg5-m384/GHSA-wmcx-jvg5-m384.json +++ b/advisories/unreviewed/2022/04/GHSA-wmcx-jvg5-m384/GHSA-wmcx-jvg5-m384.json @@ -7,12 +7,8 @@ "CVE-2004-0461" ], "details": "The DHCP daemon (DHCPD) for ISC DHCP 3.0.1rc12 and 3.0.1rc13, when compiled in environments that do not provide the vsnprintf function, uses C include files that define vsnprintf to use the less safe vsprintf function, which can lead to buffer overflow vulnerabilities that enable a denial of service (server crash) and possibly execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wv58-cxvm-2w2g/GHSA-wv58-cxvm-2w2g.json b/advisories/unreviewed/2022/04/GHSA-wv58-cxvm-2w2g/GHSA-wv58-cxvm-2w2g.json index 010393e5e80..c135ef16d77 100644 --- a/advisories/unreviewed/2022/04/GHSA-wv58-cxvm-2w2g/GHSA-wv58-cxvm-2w2g.json +++ b/advisories/unreviewed/2022/04/GHSA-wv58-cxvm-2w2g/GHSA-wv58-cxvm-2w2g.json @@ -7,12 +7,8 @@ "CVE-2004-0380" ], "details": "The MHTML protocol handler in Microsoft Outlook Express 5.5 SP2 through Outlook Express 6 SP1 allows remote attackers to bypass domain restrictions and execute arbitrary code, as demonstrated on Internet Explorer using script in a compiled help (CHM) file that references the InfoTech Storage (ITS) protocol handlers such as (1) ms-its, (2) ms-itss, (3) its, or (4) mk:@MSITStore, aka the \"MHTML URL Processing Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -76,9 +72,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-ww9x-2fxq-63hf/GHSA-ww9x-2fxq-63hf.json b/advisories/unreviewed/2022/04/GHSA-ww9x-2fxq-63hf/GHSA-ww9x-2fxq-63hf.json index 31408966550..b25ce935757 100644 --- a/advisories/unreviewed/2022/04/GHSA-ww9x-2fxq-63hf/GHSA-ww9x-2fxq-63hf.json +++ b/advisories/unreviewed/2022/04/GHSA-ww9x-2fxq-63hf/GHSA-ww9x-2fxq-63hf.json @@ -7,12 +7,8 @@ "CVE-2004-0331" ], "details": "Heap-based buffer overflow in Dell OpenManage Web Server 3.4.0 allows remote attackers to cause a denial of service (crash) via a HTTP POST with a long application variable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wx9x-xhr6-89jv/GHSA-wx9x-xhr6-89jv.json b/advisories/unreviewed/2022/04/GHSA-wx9x-xhr6-89jv/GHSA-wx9x-xhr6-89jv.json index 23151c57b5a..fdee42960df 100644 --- a/advisories/unreviewed/2022/04/GHSA-wx9x-xhr6-89jv/GHSA-wx9x-xhr6-89jv.json +++ b/advisories/unreviewed/2022/04/GHSA-wx9x-xhr6-89jv/GHSA-wx9x-xhr6-89jv.json @@ -7,12 +7,8 @@ "CVE-2004-0437" ], "details": "Titan FTP Server version 3.01 build 163, and possibly other versions before build 169, allows remote authenticated users to cause a denial of service (crash) by disconnecting from the system during a \"LIST -L\" command, which causes Titan to access an invalid socket.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-x4wm-prrg-m255/GHSA-x4wm-prrg-m255.json b/advisories/unreviewed/2022/04/GHSA-x4wm-prrg-m255/GHSA-x4wm-prrg-m255.json index f1c4e71b327..0abf2657eae 100644 --- a/advisories/unreviewed/2022/04/GHSA-x4wm-prrg-m255/GHSA-x4wm-prrg-m255.json +++ b/advisories/unreviewed/2022/04/GHSA-x4wm-prrg-m255/GHSA-x4wm-prrg-m255.json @@ -7,12 +7,8 @@ "CVE-2004-0369" ], "details": "Buffer overflow in Entrust LibKmp ISAKMP library, as used by Symantec Enterprise Firewall 7.0 through 8.0, Gateway Security 5300 1.0, Gateway Security 5400 2.0, and VelociRaptor 1.5, allows remote attackers to execute arbitrary code via a crafted ISAKMP payload.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xcpv-777v-f4v3/GHSA-xcpv-777v-f4v3.json b/advisories/unreviewed/2022/04/GHSA-xcpv-777v-f4v3/GHSA-xcpv-777v-f4v3.json index 459ec89d790..f09337fa076 100644 --- a/advisories/unreviewed/2022/04/GHSA-xcpv-777v-f4v3/GHSA-xcpv-777v-f4v3.json +++ b/advisories/unreviewed/2022/04/GHSA-xcpv-777v-f4v3/GHSA-xcpv-777v-f4v3.json @@ -7,12 +7,8 @@ "CVE-2004-0419" ], "details": "XDM in XFree86 opens a chooserFd TCP socket even when DisplayManager.requestPort is 0, which could allow remote attackers to connect to the port, in violation of the intended restrictions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xf5q-rhr2-cvv9/GHSA-xf5q-rhr2-cvv9.json b/advisories/unreviewed/2022/04/GHSA-xf5q-rhr2-cvv9/GHSA-xf5q-rhr2-cvv9.json index ed425ecfe3d..de24080f783 100644 --- a/advisories/unreviewed/2022/04/GHSA-xf5q-rhr2-cvv9/GHSA-xf5q-rhr2-cvv9.json +++ b/advisories/unreviewed/2022/04/GHSA-xf5q-rhr2-cvv9/GHSA-xf5q-rhr2-cvv9.json @@ -7,12 +7,8 @@ "CVE-2004-0215" ], "details": "Microsoft Outlook Express 5.5 and 6 allows attackers to cause a denial of service (application crash) via a malformed e-mail header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xfcm-6xgr-cx4p/GHSA-xfcm-6xgr-cx4p.json b/advisories/unreviewed/2022/04/GHSA-xfcm-6xgr-cx4p/GHSA-xfcm-6xgr-cx4p.json index 16d92ca3859..20d6c5ed1df 100644 --- a/advisories/unreviewed/2022/04/GHSA-xfcm-6xgr-cx4p/GHSA-xfcm-6xgr-cx4p.json +++ b/advisories/unreviewed/2022/04/GHSA-xfcm-6xgr-cx4p/GHSA-xfcm-6xgr-cx4p.json @@ -7,12 +7,8 @@ "CVE-2004-0269" ], "details": "SQL injection vulnerability in PHP-Nuke 6.9 and earlier, and possibly 7.x, allows remote attackers to inject arbitrary SQL code and gain sensitive information via (1) the category variable in the Search module or (2) the admin variable in the Web_Links module.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xrg8-2wfr-qxc5/GHSA-xrg8-2wfr-qxc5.json b/advisories/unreviewed/2022/04/GHSA-xrg8-2wfr-qxc5/GHSA-xrg8-2wfr-qxc5.json index 5f8befff9c0..b05b52ba0fa 100644 --- a/advisories/unreviewed/2022/04/GHSA-xrg8-2wfr-qxc5/GHSA-xrg8-2wfr-qxc5.json +++ b/advisories/unreviewed/2022/04/GHSA-xrg8-2wfr-qxc5/GHSA-xrg8-2wfr-qxc5.json @@ -7,12 +7,8 @@ "CVE-2004-0382" ], "details": "Unknown vulnerability in the CUPS printing system in Mac OS X 10.3.3 and Mac OS X 10.2.8 with unknown impact, possibly related to a configuration file setting.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xvrf-gvhf-wxf6/GHSA-xvrf-gvhf-wxf6.json b/advisories/unreviewed/2022/04/GHSA-xvrf-gvhf-wxf6/GHSA-xvrf-gvhf-wxf6.json index 14952b489f3..1553f7e0d89 100644 --- a/advisories/unreviewed/2022/04/GHSA-xvrf-gvhf-wxf6/GHSA-xvrf-gvhf-wxf6.json +++ b/advisories/unreviewed/2022/04/GHSA-xvrf-gvhf-wxf6/GHSA-xvrf-gvhf-wxf6.json @@ -7,12 +7,8 @@ "CVE-2004-0308" ], "details": "Unknown vulnerability in Cisco ONS 15327 before 4.1(3), ONS 15454 before 4.6(1), ONS 15454 SD before 4.1(3), and Cisco ONS15600 before 1.3(0) allows a superuser whose account is locked out, disabled, or suspended to gain unauthorized access via a Telnet connection to the VxWorks shell.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xxmm-cxv2-23w9/GHSA-xxmm-cxv2-23w9.json b/advisories/unreviewed/2022/04/GHSA-xxmm-cxv2-23w9/GHSA-xxmm-cxv2-23w9.json index 8a9950e8e03..c0f3c8f3e28 100644 --- a/advisories/unreviewed/2022/04/GHSA-xxmm-cxv2-23w9/GHSA-xxmm-cxv2-23w9.json +++ b/advisories/unreviewed/2022/04/GHSA-xxmm-cxv2-23w9/GHSA-xxmm-cxv2-23w9.json @@ -7,12 +7,8 @@ "CVE-2004-0468" ], "details": "Memory leak in Juniper JUNOS Packet Forwarding Engine (PFE) allows remote attackers to cause a denial of service (memory exhaustion and device reboot) via certain IPv6 packets.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-235v-x92p-pm5g/GHSA-235v-x92p-pm5g.json b/advisories/unreviewed/2022/05/GHSA-235v-x92p-pm5g/GHSA-235v-x92p-pm5g.json index 14342fc2980..7a023272777 100644 --- a/advisories/unreviewed/2022/05/GHSA-235v-x92p-pm5g/GHSA-235v-x92p-pm5g.json +++ b/advisories/unreviewed/2022/05/GHSA-235v-x92p-pm5g/GHSA-235v-x92p-pm5g.json @@ -7,12 +7,8 @@ "CVE-2020-6476" ], "details": "Insufficient policy enforcement in tab strip in Google Chrome prior to 83.0.4103.61 allowed an attacker who convinced a user to install a malicious extension to bypass navigation restrictions via a crafted Chrome Extension.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-23p3-rx33-wm34/GHSA-23p3-rx33-wm34.json b/advisories/unreviewed/2022/05/GHSA-23p3-rx33-wm34/GHSA-23p3-rx33-wm34.json index 1601a80ebf9..2cf947f02d7 100644 --- a/advisories/unreviewed/2022/05/GHSA-23p3-rx33-wm34/GHSA-23p3-rx33-wm34.json +++ b/advisories/unreviewed/2022/05/GHSA-23p3-rx33-wm34/GHSA-23p3-rx33-wm34.json @@ -7,12 +7,8 @@ "CVE-2020-13414" ], "details": "An issue was discovered in Aviatrix Controller before 5.4.1204. It contains credentials unused by the software.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-23xg-w5j8-3ff2/GHSA-23xg-w5j8-3ff2.json b/advisories/unreviewed/2022/05/GHSA-23xg-w5j8-3ff2/GHSA-23xg-w5j8-3ff2.json index 3ffdb72a41a..255f94d9adc 100644 --- a/advisories/unreviewed/2022/05/GHSA-23xg-w5j8-3ff2/GHSA-23xg-w5j8-3ff2.json +++ b/advisories/unreviewed/2022/05/GHSA-23xg-w5j8-3ff2/GHSA-23xg-w5j8-3ff2.json @@ -7,12 +7,8 @@ "CVE-2020-13129" ], "details": "An issue was discovered in the stashcat app through 3.9.1 for macOS, Windows, Android, iOS, and possibly other platforms. The GET method is used with client_key and device_id data in the query string, which allows attackers to obtain sensitive information by reading web-server logs.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-26hg-8v7r-7fj4/GHSA-26hg-8v7r-7fj4.json b/advisories/unreviewed/2022/05/GHSA-26hg-8v7r-7fj4/GHSA-26hg-8v7r-7fj4.json index 11689d85845..f79da253a0f 100644 --- a/advisories/unreviewed/2022/05/GHSA-26hg-8v7r-7fj4/GHSA-26hg-8v7r-7fj4.json +++ b/advisories/unreviewed/2022/05/GHSA-26hg-8v7r-7fj4/GHSA-26hg-8v7r-7fj4.json @@ -7,12 +7,8 @@ "CVE-2019-9682" ], "details": "Dahua devices with Build time before December 2019 use strong security login mode by default, but in order to be compatible with the normal login of early devices, some devices retain the weak security login mode that users can control. If the user uses a weak security login method, an attacker can monitor the device network to intercept network packets to attack the device. So it is recommended that the user disable this login method.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-28g5-frp5-r2wv/GHSA-28g5-frp5-r2wv.json b/advisories/unreviewed/2022/05/GHSA-28g5-frp5-r2wv/GHSA-28g5-frp5-r2wv.json index 5def14bd695..2269e989b5d 100644 --- a/advisories/unreviewed/2022/05/GHSA-28g5-frp5-r2wv/GHSA-28g5-frp5-r2wv.json +++ b/advisories/unreviewed/2022/05/GHSA-28g5-frp5-r2wv/GHSA-28g5-frp5-r2wv.json @@ -7,12 +7,8 @@ "CVE-2019-19166" ], "details": "Tobesoft XPlatform v9.1, 9.2.0, 9.2.1 and 9.2.2 have a vulnerability that can load unauthorized DLL files. It allows attacker to cause remote code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-296g-m5cw-f8p9/GHSA-296g-m5cw-f8p9.json b/advisories/unreviewed/2022/05/GHSA-296g-m5cw-f8p9/GHSA-296g-m5cw-f8p9.json index 99529a8bebe..291fcb4b73d 100644 --- a/advisories/unreviewed/2022/05/GHSA-296g-m5cw-f8p9/GHSA-296g-m5cw-f8p9.json +++ b/advisories/unreviewed/2022/05/GHSA-296g-m5cw-f8p9/GHSA-296g-m5cw-f8p9.json @@ -7,12 +7,8 @@ "CVE-2020-3344" ], "details": "A vulnerability in Cisco AMP for Endpoints Linux Connector Software and Cisco AMP for Endpoints Mac Connector Software could allow an authenticated, local attacker to cause a buffer overflow on an affected device. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sending a crafted packet to an affected device. A successful exploit could allow the attacker to cause the Cisco AMP for Endpoints service to crash and restart.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2cpf-r6vv-ph3v/GHSA-2cpf-r6vv-ph3v.json b/advisories/unreviewed/2022/05/GHSA-2cpf-r6vv-ph3v/GHSA-2cpf-r6vv-ph3v.json index 0df9d98926c..28df34dcc1a 100644 --- a/advisories/unreviewed/2022/05/GHSA-2cpf-r6vv-ph3v/GHSA-2cpf-r6vv-ph3v.json +++ b/advisories/unreviewed/2022/05/GHSA-2cpf-r6vv-ph3v/GHSA-2cpf-r6vv-ph3v.json @@ -7,12 +7,8 @@ "CVE-2020-12882" ], "details": "Submitty through 20.04.01 allows XSS via upload of an SVG document, as demonstrated by an attack by a Student against a Teaching Fellow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2f9x-cj33-r657/GHSA-2f9x-cj33-r657.json b/advisories/unreviewed/2022/05/GHSA-2f9x-cj33-r657/GHSA-2f9x-cj33-r657.json index b564772e3d3..78b538554d1 100644 --- a/advisories/unreviewed/2022/05/GHSA-2f9x-cj33-r657/GHSA-2f9x-cj33-r657.json +++ b/advisories/unreviewed/2022/05/GHSA-2f9x-cj33-r657/GHSA-2f9x-cj33-r657.json @@ -7,12 +7,8 @@ "CVE-2020-7267" ], "details": "Privilege Escalation vulnerability in McAfee VirusScan Enterprise (VSE) for Linux prior to 2.0.3 Hotfix 2635000 allows local users to delete files the user would otherwise not have access to via manipulating symbolic links to redirect a McAfee delete action to an unintended file. This is achieved through running a malicious script or program on the target machine.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2g9r-9f99-v27g/GHSA-2g9r-9f99-v27g.json b/advisories/unreviewed/2022/05/GHSA-2g9r-9f99-v27g/GHSA-2g9r-9f99-v27g.json index 19e42cc2eca..ab58d2ad751 100644 --- a/advisories/unreviewed/2022/05/GHSA-2g9r-9f99-v27g/GHSA-2g9r-9f99-v27g.json +++ b/advisories/unreviewed/2022/05/GHSA-2g9r-9f99-v27g/GHSA-2g9r-9f99-v27g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2j5p-cf62-8pj2/GHSA-2j5p-cf62-8pj2.json b/advisories/unreviewed/2022/05/GHSA-2j5p-cf62-8pj2/GHSA-2j5p-cf62-8pj2.json index 8355ff1f009..31c5677409e 100644 --- a/advisories/unreviewed/2022/05/GHSA-2j5p-cf62-8pj2/GHSA-2j5p-cf62-8pj2.json +++ b/advisories/unreviewed/2022/05/GHSA-2j5p-cf62-8pj2/GHSA-2j5p-cf62-8pj2.json @@ -7,12 +7,8 @@ "CVE-2020-13390" ], "details": "An issue was discovered on Tenda AC6 V1.0 V15.03.05.19_multi_TD01, AC9 V1.0 V15.03.05.19(6318)_CN, AC9 V3.0 V15.03.06.42_multi, AC15 V1.0 V15.03.05.19_multi_TD01, and AC18 V15.03.05.19(6318_)_CN devices. There is a buffer overflow vulnerability in the router's web server -- httpd. While processing the /goform/addressNat entrys and mitInterface parameters for a POST request, a value is directly used in a sprintf to a local variable placed on the stack, which overwrites the return address of a function. An attacker can construct a payload to carry out arbitrary code execution attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2m3h-85m6-j7q7/GHSA-2m3h-85m6-j7q7.json b/advisories/unreviewed/2022/05/GHSA-2m3h-85m6-j7q7/GHSA-2m3h-85m6-j7q7.json index b6b353060d4..21874346d40 100644 --- a/advisories/unreviewed/2022/05/GHSA-2m3h-85m6-j7q7/GHSA-2m3h-85m6-j7q7.json +++ b/advisories/unreviewed/2022/05/GHSA-2m3h-85m6-j7q7/GHSA-2m3h-85m6-j7q7.json @@ -7,12 +7,8 @@ "CVE-2020-12685" ], "details": "XSS in the admin help system admin/help.html and admin/quicklinks.html in Interchange 4.7.0 through 5.11.x allows remote attackers to steal credentials or data via browser JavaScript.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2p3q-x3x4-ww4x/GHSA-2p3q-x3x4-ww4x.json b/advisories/unreviewed/2022/05/GHSA-2p3q-x3x4-ww4x/GHSA-2p3q-x3x4-ww4x.json index f44ba3f0d84..7b12696f0f1 100644 --- a/advisories/unreviewed/2022/05/GHSA-2p3q-x3x4-ww4x/GHSA-2p3q-x3x4-ww4x.json +++ b/advisories/unreviewed/2022/05/GHSA-2p3q-x3x4-ww4x/GHSA-2p3q-x3x4-ww4x.json @@ -7,12 +7,8 @@ "CVE-2020-7473" ], "details": "In certain situations, all versions of Citrix ShareFile StorageZones (aka storage zones) Controller, including the most recent 5.10.x releases as of May 2020, allow unauthenticated attackers to access the documents and folders of ShareFile users. NOTE: unlike most CVEs, exploitability depends on the product version that was in use when a particular setup step was performed, NOT the product version that is in use during a current assessment of a CVE consumer's product inventory. Specifically, the vulnerability can be exploited if a storage zone was created by one of these product versions: 5.9.0, 5.8.0, 5.7.0, 5.6.0, 5.5.0, or earlier. This CVE differs from CVE-2020-8982 and CVE-2020-8983 but has essentially the same risk.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2rqw-4rc9-x55v/GHSA-2rqw-4rc9-x55v.json b/advisories/unreviewed/2022/05/GHSA-2rqw-4rc9-x55v/GHSA-2rqw-4rc9-x55v.json index 69534f69f17..bb8f49e4b0e 100644 --- a/advisories/unreviewed/2022/05/GHSA-2rqw-4rc9-x55v/GHSA-2rqw-4rc9-x55v.json +++ b/advisories/unreviewed/2022/05/GHSA-2rqw-4rc9-x55v/GHSA-2rqw-4rc9-x55v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -75,9 +73,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2v7r-x2hj-38c2/GHSA-2v7r-x2hj-38c2.json b/advisories/unreviewed/2022/05/GHSA-2v7r-x2hj-38c2/GHSA-2v7r-x2hj-38c2.json index 504818bf205..7b82e8a046d 100644 --- a/advisories/unreviewed/2022/05/GHSA-2v7r-x2hj-38c2/GHSA-2v7r-x2hj-38c2.json +++ b/advisories/unreviewed/2022/05/GHSA-2v7r-x2hj-38c2/GHSA-2v7r-x2hj-38c2.json @@ -7,12 +7,8 @@ "CVE-2020-11550" ], "details": "An issue was discovered on NETGEAR Orbi Tri-Band Business WiFi Add-on Satellite (SRS60) AC3000 V2.5.1.106, Outdoor Satellite (RBS50Y) V2.5.1.106, and Pro Tri-Band Business WiFi Router (SRR60) AC3000 V2.5.1.106. The administrative SOAP interface allows an unauthenticated remote leak of sensitive/arbitrary Wi-Fi information, such as SSIDs and Pre-Shared-Keys (PSK).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2vhw-349f-2gq5/GHSA-2vhw-349f-2gq5.json b/advisories/unreviewed/2022/05/GHSA-2vhw-349f-2gq5/GHSA-2vhw-349f-2gq5.json index 7029963db29..720c7698794 100644 --- a/advisories/unreviewed/2022/05/GHSA-2vhw-349f-2gq5/GHSA-2vhw-349f-2gq5.json +++ b/advisories/unreviewed/2022/05/GHSA-2vhw-349f-2gq5/GHSA-2vhw-349f-2gq5.json @@ -7,12 +7,8 @@ "CVE-2020-2002" ], "details": "An authentication bypass by spoofing vulnerability exists in the authentication daemon and User-ID components of Palo Alto Networks PAN-OS by failing to verify the integrity of the Kerberos key distribution center (KDC) before authenticating users. This affects all forms of authentication that use a Kerberos authentication profile. A man-in-the-middle type of attacker with the ability to intercept communication between PAN-OS and KDC can login to PAN-OS as an administrator. This issue affects: PAN-OS 7.1 versions earlier than 7.1.26; PAN-OS 8.0 versions earlier than 8.0.21; PAN-OS 8.1 versions earlier than 8.1.13; PAN-OS 9.0 versions earlier than 9.0.6.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2vv2-2vj2-h668/GHSA-2vv2-2vj2-h668.json b/advisories/unreviewed/2022/05/GHSA-2vv2-2vj2-h668/GHSA-2vv2-2vj2-h668.json index 035277868cf..b301ec61c37 100644 --- a/advisories/unreviewed/2022/05/GHSA-2vv2-2vj2-h668/GHSA-2vv2-2vj2-h668.json +++ b/advisories/unreviewed/2022/05/GHSA-2vv2-2vj2-h668/GHSA-2vv2-2vj2-h668.json @@ -7,12 +7,8 @@ "CVE-2019-19517" ], "details": "Intelbras RF1200 1.1.3 devices allow CSRF to bypass the login.html form, as demonstrated by launching a scrapy process.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2wjv-2phj-464p/GHSA-2wjv-2phj-464p.json b/advisories/unreviewed/2022/05/GHSA-2wjv-2phj-464p/GHSA-2wjv-2phj-464p.json index d2aa430af5b..7270b816722 100644 --- a/advisories/unreviewed/2022/05/GHSA-2wjv-2phj-464p/GHSA-2wjv-2phj-464p.json +++ b/advisories/unreviewed/2022/05/GHSA-2wjv-2phj-464p/GHSA-2wjv-2phj-464p.json @@ -7,12 +7,8 @@ "CVE-2020-10067" ], "details": "A malicious userspace application can cause a integer overflow and bypass security checks performed by system call handlers. The impact would depend on the underlying system call and can range from denial of service to information leak to memory corruption resulting in code execution within the kernel. See NCC-ZEP-005 This issue affects: zephyrproject-rtos zephyr version 1.14.1 and later versions. version 2.1.0 and later versions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2wrf-hf7j-cx32/GHSA-2wrf-hf7j-cx32.json b/advisories/unreviewed/2022/05/GHSA-2wrf-hf7j-cx32/GHSA-2wrf-hf7j-cx32.json index bbd34bf9134..68977a56dad 100644 --- a/advisories/unreviewed/2022/05/GHSA-2wrf-hf7j-cx32/GHSA-2wrf-hf7j-cx32.json +++ b/advisories/unreviewed/2022/05/GHSA-2wrf-hf7j-cx32/GHSA-2wrf-hf7j-cx32.json @@ -7,12 +7,8 @@ "CVE-2019-19721" ], "details": "An off-by-one error in the DecodeBlock function in codec/sdl_image.c in VideoLAN VLC media player before 3.0.9 allows remote attackers to cause a denial of service (memory corruption) via a crafted image file. NOTE: this may be related to the SDL_Image product.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2x2h-mgrr-fp68/GHSA-2x2h-mgrr-fp68.json b/advisories/unreviewed/2022/05/GHSA-2x2h-mgrr-fp68/GHSA-2x2h-mgrr-fp68.json index 6f450d1a80c..fd71461343b 100644 --- a/advisories/unreviewed/2022/05/GHSA-2x2h-mgrr-fp68/GHSA-2x2h-mgrr-fp68.json +++ b/advisories/unreviewed/2022/05/GHSA-2x2h-mgrr-fp68/GHSA-2x2h-mgrr-fp68.json @@ -7,12 +7,8 @@ "CVE-2019-17562" ], "details": "A buffer overflow vulnerability has been found in the baremetal component of Apache CloudStack. This applies to all versions prior to 4.13.1. The vulnerability is due to the lack of validation of the mac parameter in baremetal virtual router. If you insert an arbitrary shell command into the mac parameter, v-router will process the command. For example: Normal: http://{GW}:10086/baremetal/provisiondone/{mac}, Abnormal: http://{GW}:10086/baremetal/provisiondone/#';whoami;#. Mitigation of this issue is an upgrade to Apache CloudStack 4.13.1.0 or beyond.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-32pr-fhrf-3qp7/GHSA-32pr-fhrf-3qp7.json b/advisories/unreviewed/2022/05/GHSA-32pr-fhrf-3qp7/GHSA-32pr-fhrf-3qp7.json index 1fb5fbaf5be..6f277778c62 100644 --- a/advisories/unreviewed/2022/05/GHSA-32pr-fhrf-3qp7/GHSA-32pr-fhrf-3qp7.json +++ b/advisories/unreviewed/2022/05/GHSA-32pr-fhrf-3qp7/GHSA-32pr-fhrf-3qp7.json @@ -7,12 +7,8 @@ "CVE-2020-6467" ], "details": "Use after free in WebRTC in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-33rh-fh49-758p/GHSA-33rh-fh49-758p.json b/advisories/unreviewed/2022/05/GHSA-33rh-fh49-758p/GHSA-33rh-fh49-758p.json index ce84b1314f6..b5aa0627179 100644 --- a/advisories/unreviewed/2022/05/GHSA-33rh-fh49-758p/GHSA-33rh-fh49-758p.json +++ b/advisories/unreviewed/2022/05/GHSA-33rh-fh49-758p/GHSA-33rh-fh49-758p.json @@ -7,12 +7,8 @@ "CVE-2020-8896" ], "details": "A Buffer Overflow vulnerability in the khcrypt implementation in Google Earth Pro versions up to and including 7.3.2 allows an attacker to perform a Man-in-the-Middle attack using a specially crafted key to read data past the end of the buffer used to hold it. Mitigation: Update to Google Earth Pro 7.3.3.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-34jf-34wf-852g/GHSA-34jf-34wf-852g.json b/advisories/unreviewed/2022/05/GHSA-34jf-34wf-852g/GHSA-34jf-34wf-852g.json index a44f4a22c42..afeb4074dc8 100644 --- a/advisories/unreviewed/2022/05/GHSA-34jf-34wf-852g/GHSA-34jf-34wf-852g.json +++ b/advisories/unreviewed/2022/05/GHSA-34jf-34wf-852g/GHSA-34jf-34wf-852g.json @@ -7,12 +7,8 @@ "CVE-2020-5574" ], "details": "HTML attribute value injection vulnerability in Movable Type series (Movable Type 7 r.4606 (7.2.1) and earlier (Movable Type 7), Movable Type Advanced 7 r.4606 (7.2.1) and earlier (Movable Type Advanced 7), Movable Type for AWS 7 r.4606 (7.2.1) and earlier (Movable Type for AWS 7), Movable Type 6.5.3 and earlier (Movable Type 6.5), Movable Type Advanced 6.5.3 and earlier (Movable Type Advanced 6.5), Movable Type 6.3.11 and earlier (Movable Type 6.3), Movable Type Advanced 6.3.11 and earlier (Movable Type 6.3), Movable Type Premium 1.29 and earlier, and Movable Type Premium Advanced 1.29 and earlier) allows remote attackers to inject arbitrary HTML attribute value via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-36h3-8635-w5mx/GHSA-36h3-8635-w5mx.json b/advisories/unreviewed/2022/05/GHSA-36h3-8635-w5mx/GHSA-36h3-8635-w5mx.json index ac7133de091..d226c4d04bf 100644 --- a/advisories/unreviewed/2022/05/GHSA-36h3-8635-w5mx/GHSA-36h3-8635-w5mx.json +++ b/advisories/unreviewed/2022/05/GHSA-36h3-8635-w5mx/GHSA-36h3-8635-w5mx.json @@ -7,12 +7,8 @@ "CVE-2019-15878" ], "details": "In FreeBSD 12.1-STABLE before r352509, 11.3-STABLE before r352509, and 11.3-RELEASE before p9, an unprivileged local user can trigger a use-after-free situation due to improper checking in SCTP when an application tries to update an SCTP-AUTH shared key.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-378c-82xp-8xq7/GHSA-378c-82xp-8xq7.json b/advisories/unreviewed/2022/05/GHSA-378c-82xp-8xq7/GHSA-378c-82xp-8xq7.json index 98c7767eb82..d1272a351ad 100644 --- a/advisories/unreviewed/2022/05/GHSA-378c-82xp-8xq7/GHSA-378c-82xp-8xq7.json +++ b/advisories/unreviewed/2022/05/GHSA-378c-82xp-8xq7/GHSA-378c-82xp-8xq7.json @@ -7,12 +7,8 @@ "CVE-2020-5332" ], "details": "RSA Archer, versions prior to 6.7 P3 (6.7.0.3), contain a command injection vulnerability. AN authenticated malicious user with administrator privileges could potentially exploit this vulnerability to execute arbitrary commands on the system where the vulnerable application is deployed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3797-gmjf-45gm/GHSA-3797-gmjf-45gm.json b/advisories/unreviewed/2022/05/GHSA-3797-gmjf-45gm/GHSA-3797-gmjf-45gm.json index a36368e52cb..9acdd81dcf5 100644 --- a/advisories/unreviewed/2022/05/GHSA-3797-gmjf-45gm/GHSA-3797-gmjf-45gm.json +++ b/advisories/unreviewed/2022/05/GHSA-3797-gmjf-45gm/GHSA-3797-gmjf-45gm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-37wp-r5gr-q42h/GHSA-37wp-r5gr-q42h.json b/advisories/unreviewed/2022/05/GHSA-37wp-r5gr-q42h/GHSA-37wp-r5gr-q42h.json index 4c74b60b894..83092d3e9e8 100644 --- a/advisories/unreviewed/2022/05/GHSA-37wp-r5gr-q42h/GHSA-37wp-r5gr-q42h.json +++ b/advisories/unreviewed/2022/05/GHSA-37wp-r5gr-q42h/GHSA-37wp-r5gr-q42h.json @@ -7,12 +7,8 @@ "CVE-2020-3309" ], "details": "A vulnerability in Cisco Firepower Device Manager (FDM) On-Box software could allow an authenticated, remote attacker to overwrite arbitrary files on the underlying operating system of an affected device. The vulnerability is due to improper input validation. An attacker could exploit this vulnerability by uploading a malicious file to an affected device. A successful exploit could allow the attacker to overwrite arbitrary files on as well as modify the underlying operating system of an affected device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-389w-7x48-4h9g/GHSA-389w-7x48-4h9g.json b/advisories/unreviewed/2022/05/GHSA-389w-7x48-4h9g/GHSA-389w-7x48-4h9g.json index 1e878fe2c38..e1c0ab48189 100644 --- a/advisories/unreviewed/2022/05/GHSA-389w-7x48-4h9g/GHSA-389w-7x48-4h9g.json +++ b/advisories/unreviewed/2022/05/GHSA-389w-7x48-4h9g/GHSA-389w-7x48-4h9g.json @@ -7,12 +7,8 @@ "CVE-2020-10618" ], "details": "LCDS LAquis SCADA Versions 4.3.1 and prior. The affected product is vulnerable to sensitive information exposure by unauthorized users.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-397g-f6c8-vgwj/GHSA-397g-f6c8-vgwj.json b/advisories/unreviewed/2022/05/GHSA-397g-f6c8-vgwj/GHSA-397g-f6c8-vgwj.json index 6aefa2c83d4..133d4651637 100644 --- a/advisories/unreviewed/2022/05/GHSA-397g-f6c8-vgwj/GHSA-397g-f6c8-vgwj.json +++ b/advisories/unreviewed/2022/05/GHSA-397g-f6c8-vgwj/GHSA-397g-f6c8-vgwj.json @@ -7,12 +7,8 @@ "CVE-2020-4343" ], "details": "IBM i2 Intelligent Analyis Platform 9.2.1 could allow a remote attacker to execute arbitrary code on the system, caused by a memory corruption. By persuading a victim to open a specially crafted file, a remote attacker could exploit this vulnerability to execute arbitrary code on the system or cause the application to crash. IBM X-Force ID: 178244.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-39c2-pr35-fgxx/GHSA-39c2-pr35-fgxx.json b/advisories/unreviewed/2022/05/GHSA-39c2-pr35-fgxx/GHSA-39c2-pr35-fgxx.json index c33464d3eb0..3b0535107fb 100644 --- a/advisories/unreviewed/2022/05/GHSA-39c2-pr35-fgxx/GHSA-39c2-pr35-fgxx.json +++ b/advisories/unreviewed/2022/05/GHSA-39c2-pr35-fgxx/GHSA-39c2-pr35-fgxx.json @@ -7,12 +7,8 @@ "CVE-2020-4261" ], "details": "IBM i2 Intelligent Analyis Platform 9.2.1 could allow a local attacker to execute arbitrary code on the system, caused by a memory corruption. By persuading a victim to open a specially-crafted file, an attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 175644.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3c4x-fg4r-33wq/GHSA-3c4x-fg4r-33wq.json b/advisories/unreviewed/2022/05/GHSA-3c4x-fg4r-33wq/GHSA-3c4x-fg4r-33wq.json index 5253202886b..55136764232 100644 --- a/advisories/unreviewed/2022/05/GHSA-3c4x-fg4r-33wq/GHSA-3c4x-fg4r-33wq.json +++ b/advisories/unreviewed/2022/05/GHSA-3c4x-fg4r-33wq/GHSA-3c4x-fg4r-33wq.json @@ -7,12 +7,8 @@ "CVE-2020-1164" ], "details": "An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory, aka 'Windows Runtime Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1077, CVE-2020-1086, CVE-2020-1090, CVE-2020-1125, CVE-2020-1139, CVE-2020-1149, CVE-2020-1151, CVE-2020-1155, CVE-2020-1156, CVE-2020-1157, CVE-2020-1158.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3cj6-6mmq-x25x/GHSA-3cj6-6mmq-x25x.json b/advisories/unreviewed/2022/05/GHSA-3cj6-6mmq-x25x/GHSA-3cj6-6mmq-x25x.json index f544ba349a9..09bc2dde216 100644 --- a/advisories/unreviewed/2022/05/GHSA-3cj6-6mmq-x25x/GHSA-3cj6-6mmq-x25x.json +++ b/advisories/unreviewed/2022/05/GHSA-3cj6-6mmq-x25x/GHSA-3cj6-6mmq-x25x.json @@ -7,12 +7,8 @@ "CVE-2020-2013" ], "details": "A cleartext transmission of sensitive information vulnerability in Palo Alto Networks PAN-OS Panorama that discloses an authenticated PAN-OS administrator's PAN-OS session cookie. When an administrator issues a context switch request into a managed firewall with an affected PAN-OS Panorama version, their PAN-OS session cookie is transmitted over cleartext to the firewall. An attacker with the ability to intercept this network traffic between the firewall and Panorama can access the administrator's account and further manipulate devices managed by Panorama. This issue affects: PAN-OS 7.1 versions earlier than 7.1.26; PAN-OS 8.0 versions earlier than 8.0.21; PAN-OS 8.1 versions earlier than 8.1.13; PAN-OS 9.0 versions earlier than 9.0.6; and PAN-OS 9.1 versions earlier than 9.1.1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3hpx-h84h-gq2r/GHSA-3hpx-h84h-gq2r.json b/advisories/unreviewed/2022/05/GHSA-3hpx-h84h-gq2r/GHSA-3hpx-h84h-gq2r.json index cc6fa0742c3..dc9c23489c7 100644 --- a/advisories/unreviewed/2022/05/GHSA-3hpx-h84h-gq2r/GHSA-3hpx-h84h-gq2r.json +++ b/advisories/unreviewed/2022/05/GHSA-3hpx-h84h-gq2r/GHSA-3hpx-h84h-gq2r.json @@ -7,12 +7,8 @@ "CVE-2019-7247" ], "details": "An issue was discovered in AODDriver2.sys in AMD OverDrive. The vulnerable driver exposes a wrmsr instruction via IOCTL 0x81112ee0 and does not properly filter the Model Specific Register (MSR). Allowing arbitrary MSR writes can lead to Ring-0 code execution and escalation of privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3jcm-w957-2h9v/GHSA-3jcm-w957-2h9v.json b/advisories/unreviewed/2022/05/GHSA-3jcm-w957-2h9v/GHSA-3jcm-w957-2h9v.json index 7fac4d0354c..eae52c11278 100644 --- a/advisories/unreviewed/2022/05/GHSA-3jcm-w957-2h9v/GHSA-3jcm-w957-2h9v.json +++ b/advisories/unreviewed/2022/05/GHSA-3jcm-w957-2h9v/GHSA-3jcm-w957-2h9v.json @@ -7,12 +7,8 @@ "CVE-2020-12747" ], "details": "An issue was discovered on Samsung mobile devices with Q(10.0) (Exynos980 9630 and Exynos990 9830 chipsets) software. The Bootloader has a heap-based buffer overflow because of the mishandling of specific commands. The Samsung IDs are SVE-2020-16981, SVE-2020-16991 (May 2020).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3mcx-mwcf-7jc7/GHSA-3mcx-mwcf-7jc7.json b/advisories/unreviewed/2022/05/GHSA-3mcx-mwcf-7jc7/GHSA-3mcx-mwcf-7jc7.json index abc79920f7f..5b020030855 100644 --- a/advisories/unreviewed/2022/05/GHSA-3mcx-mwcf-7jc7/GHSA-3mcx-mwcf-7jc7.json +++ b/advisories/unreviewed/2022/05/GHSA-3mcx-mwcf-7jc7/GHSA-3mcx-mwcf-7jc7.json @@ -7,12 +7,8 @@ "CVE-2020-10859" ], "details": "Zoho ManageEngine Desktop Central before 10.0.484 allows authenticated arbitrary file writes during ZIP archive extraction via Directory Traversal in a crafted AppDependency API request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3mjh-34gx-h2r7/GHSA-3mjh-34gx-h2r7.json b/advisories/unreviewed/2022/05/GHSA-3mjh-34gx-h2r7/GHSA-3mjh-34gx-h2r7.json index d403f7f7ded..264bc30bf41 100644 --- a/advisories/unreviewed/2022/05/GHSA-3mjh-34gx-h2r7/GHSA-3mjh-34gx-h2r7.json +++ b/advisories/unreviewed/2022/05/GHSA-3mjh-34gx-h2r7/GHSA-3mjh-34gx-h2r7.json @@ -7,12 +7,8 @@ "CVE-2020-5833" ], "details": "Symantec Endpoint Protection Manager, prior to 14.3, may be susceptible to an out of bounds vulnerability, which is a type of issue that results in an existing application reading memory outside of the bounds of the memory that had been allocated to the program.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3mw4-pmpc-h76j/GHSA-3mw4-pmpc-h76j.json b/advisories/unreviewed/2022/05/GHSA-3mw4-pmpc-h76j/GHSA-3mw4-pmpc-h76j.json index c3fee532f49..cf032e0305e 100644 --- a/advisories/unreviewed/2022/05/GHSA-3mw4-pmpc-h76j/GHSA-3mw4-pmpc-h76j.json +++ b/advisories/unreviewed/2022/05/GHSA-3mw4-pmpc-h76j/GHSA-3mw4-pmpc-h76j.json @@ -7,12 +7,8 @@ "CVE-2019-18865" ], "details": "Information disclosure via error message discrepancies in authentication functions in Blaauw Remote Kiln Control through v3.00r4 allows an unauthenticated attacker to enumerate valid usernames.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3pqr-r447-f4mh/GHSA-3pqr-r447-f4mh.json b/advisories/unreviewed/2022/05/GHSA-3pqr-r447-f4mh/GHSA-3pqr-r447-f4mh.json index 8dae9877896..b9abcd2fa98 100644 --- a/advisories/unreviewed/2022/05/GHSA-3pqr-r447-f4mh/GHSA-3pqr-r447-f4mh.json +++ b/advisories/unreviewed/2022/05/GHSA-3pqr-r447-f4mh/GHSA-3pqr-r447-f4mh.json @@ -7,12 +7,8 @@ "CVE-2020-5576" ], "details": "Cross-site request forgery (CSRF) vulnerability in Movable Type series (Movable Type 7 r.4606 (7.2.1) and earlier (Movable Type 7), Movable Type Advanced 7 r.4606 (7.2.1) and earlier (Movable Type Advanced 7), Movable Type for AWS 7 r.4606 (7.2.1) and earlier (Movable Type for AWS 7), Movable Type 6.5.3 and earlier (Movable Type 6.5), Movable Type Advanced 6.5.3 and earlier (Movable Type Advanced 6.5), Movable Type 6.3.11 and earlier (Movable Type 6.3), Movable Type Advanced 6.3.11 and earlier (Movable Type 6.3), Movable Type Premium 1.29 and earlier, and Movable Type Premium Advanced 1.29 and earlier) allows remote attackers to hijack the authentication of administrators via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3q77-c23g-8p2h/GHSA-3q77-c23g-8p2h.json b/advisories/unreviewed/2022/05/GHSA-3q77-c23g-8p2h/GHSA-3q77-c23g-8p2h.json index 6eff5a0ea63..ae6de920292 100644 --- a/advisories/unreviewed/2022/05/GHSA-3q77-c23g-8p2h/GHSA-3q77-c23g-8p2h.json +++ b/advisories/unreviewed/2022/05/GHSA-3q77-c23g-8p2h/GHSA-3q77-c23g-8p2h.json @@ -7,12 +7,8 @@ "CVE-2019-19456" ], "details": "A Reflected XSS was found in the server selection box inside the login page at: enginemanager/loginfailed.html in Wowza Streaming Engine <= 4.x.x.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3qh5-7339-m5xf/GHSA-3qh5-7339-m5xf.json b/advisories/unreviewed/2022/05/GHSA-3qh5-7339-m5xf/GHSA-3qh5-7339-m5xf.json index 296bad53295..db1e85d7d8e 100644 --- a/advisories/unreviewed/2022/05/GHSA-3qh5-7339-m5xf/GHSA-3qh5-7339-m5xf.json +++ b/advisories/unreviewed/2022/05/GHSA-3qh5-7339-m5xf/GHSA-3qh5-7339-m5xf.json @@ -7,12 +7,8 @@ "CVE-2020-8157" ], "details": "UniFi Cloud Key firmware <= v1.1.10 for Cloud Key gen2 and Cloud Key gen2 Plus contains a vulnerability that allows unrestricted root access through the serial interface (UART).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3vgw-chq8-wqp9/GHSA-3vgw-chq8-wqp9.json b/advisories/unreviewed/2022/05/GHSA-3vgw-chq8-wqp9/GHSA-3vgw-chq8-wqp9.json index affc066c2cb..f44c1616dd6 100644 --- a/advisories/unreviewed/2022/05/GHSA-3vgw-chq8-wqp9/GHSA-3vgw-chq8-wqp9.json +++ b/advisories/unreviewed/2022/05/GHSA-3vgw-chq8-wqp9/GHSA-3vgw-chq8-wqp9.json @@ -7,12 +7,8 @@ "CVE-2020-4422" ], "details": "IBM i2 Intelligent Analyis Platform 9.2.1 could allow a remote attacker to execute arbitrary code on the system, caused by a memory corruption. By persuading a victim to open a specially crafted file, a remote attacker could exploit this vulnerability to execute arbitrary code on the system or cause the application to crash. IBM X-Force ID: 180167.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-42p5-fr58-hv5x/GHSA-42p5-fr58-hv5x.json b/advisories/unreviewed/2022/05/GHSA-42p5-fr58-hv5x/GHSA-42p5-fr58-hv5x.json index ab90dc9c7f4..8a922db871e 100644 --- a/advisories/unreviewed/2022/05/GHSA-42p5-fr58-hv5x/GHSA-42p5-fr58-hv5x.json +++ b/advisories/unreviewed/2022/05/GHSA-42p5-fr58-hv5x/GHSA-42p5-fr58-hv5x.json @@ -7,12 +7,8 @@ "CVE-2020-0097" ], "details": "In various methods of PackageManagerService.java, there is a possible permission bypass due to a missing condition for system apps. This could lead to local escalation of privilege with User privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-9 Android-10Android ID: A-145981139", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-42v9-rj5j-m2v5/GHSA-42v9-rj5j-m2v5.json b/advisories/unreviewed/2022/05/GHSA-42v9-rj5j-m2v5/GHSA-42v9-rj5j-m2v5.json index d5363cae10b..ebd2fa77df7 100644 --- a/advisories/unreviewed/2022/05/GHSA-42v9-rj5j-m2v5/GHSA-42v9-rj5j-m2v5.json +++ b/advisories/unreviewed/2022/05/GHSA-42v9-rj5j-m2v5/GHSA-42v9-rj5j-m2v5.json @@ -7,12 +7,8 @@ "CVE-2020-1173" ], "details": "A spoofing vulnerability exists in Microsoft Power BI Report Server in the way it validates the content-type of uploaded attachments, aka 'Microsoft Power BI Report Server Spoofing Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-435h-hqgw-fqgf/GHSA-435h-hqgw-fqgf.json b/advisories/unreviewed/2022/05/GHSA-435h-hqgw-fqgf/GHSA-435h-hqgw-fqgf.json index d33829f1e76..b880574599d 100644 --- a/advisories/unreviewed/2022/05/GHSA-435h-hqgw-fqgf/GHSA-435h-hqgw-fqgf.json +++ b/advisories/unreviewed/2022/05/GHSA-435h-hqgw-fqgf/GHSA-435h-hqgw-fqgf.json @@ -7,12 +7,8 @@ "CVE-2020-10060" ], "details": "In updatehub_probe, right after JSON parsing is complete, objects\\[1] is accessed from the output structure in two different places. If the JSON contained less than two elements, this access would reference unitialized stack memory. This could result in a crash, denial of service, or possibly an information leak. Recommend disabling updatehub until such a time as a fix can be made available. Provided the fix in CVE-2020-10059 is applied, the attack requires compromise of the server. See NCC-ZEP-030 This issue affects: zephyrproject-rtos zephyr version 2.1.0 and later versions. version 2.2.0 and later versions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-437p-qmwc-q8jh/GHSA-437p-qmwc-q8jh.json b/advisories/unreviewed/2022/05/GHSA-437p-qmwc-q8jh/GHSA-437p-qmwc-q8jh.json index d34ed3574c2..ef92ad6dfa2 100644 --- a/advisories/unreviewed/2022/05/GHSA-437p-qmwc-q8jh/GHSA-437p-qmwc-q8jh.json +++ b/advisories/unreviewed/2022/05/GHSA-437p-qmwc-q8jh/GHSA-437p-qmwc-q8jh.json @@ -7,12 +7,8 @@ "CVE-2020-6256" ], "details": "SAP Master Data Governance, versions - 748, 749, 750, 751, 752, 800, 801, 802, 803, 804, allows users to display change request details without having required authorizations, due to Missing Authorization Check.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4387-mfcp-5cpf/GHSA-4387-mfcp-5cpf.json b/advisories/unreviewed/2022/05/GHSA-4387-mfcp-5cpf/GHSA-4387-mfcp-5cpf.json index 17322e38716..336a694b2c9 100644 --- a/advisories/unreviewed/2022/05/GHSA-4387-mfcp-5cpf/GHSA-4387-mfcp-5cpf.json +++ b/advisories/unreviewed/2022/05/GHSA-4387-mfcp-5cpf/GHSA-4387-mfcp-5cpf.json @@ -7,12 +7,8 @@ "CVE-2020-2003" ], "details": "An external control of filename vulnerability in the command processing of PAN-OS allows an authenticated administrator to delete arbitrary system files affecting the integrity of the system or causing denial of service to all PAN-OS services. This issue affects: All versions of PAN-OS 7.1; PAN-OS 8.1 versions before 8.1.14; PAN-OS 9.0 versions before 9.0.7; PAN-OS 9.1 versions before 9.1.1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-43fm-mhm5-jf78/GHSA-43fm-mhm5-jf78.json b/advisories/unreviewed/2022/05/GHSA-43fm-mhm5-jf78/GHSA-43fm-mhm5-jf78.json index 51a5e7b4b00..e882d4ee6bc 100644 --- a/advisories/unreviewed/2022/05/GHSA-43fm-mhm5-jf78/GHSA-43fm-mhm5-jf78.json +++ b/advisories/unreviewed/2022/05/GHSA-43fm-mhm5-jf78/GHSA-43fm-mhm5-jf78.json @@ -7,12 +7,8 @@ "CVE-2020-7291" ], "details": "Privilege Escalation vulnerability in McAfee Active Response (MAR) for Mac prior to 2.4.3 Hotfix 1 allows a malicious script or program to perform functions that the local executing user has not been granted access to.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-43fm-r495-g6gq/GHSA-43fm-r495-g6gq.json b/advisories/unreviewed/2022/05/GHSA-43fm-r495-g6gq/GHSA-43fm-r495-g6gq.json index 1e0bfb613ad..8e58f67a3fc 100644 --- a/advisories/unreviewed/2022/05/GHSA-43fm-r495-g6gq/GHSA-43fm-r495-g6gq.json +++ b/advisories/unreviewed/2022/05/GHSA-43fm-r495-g6gq/GHSA-43fm-r495-g6gq.json @@ -7,12 +7,8 @@ "CVE-2020-9475" ], "details": "The S. Siedle & Soehne SG 150-0 Smart Gateway before 1.2.4 allows local privilege escalation via a race condition in logrotate. By using an exploit chain, an attacker with access to the network can get root access on the gateway.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-43x3-5v8m-8xf2/GHSA-43x3-5v8m-8xf2.json b/advisories/unreviewed/2022/05/GHSA-43x3-5v8m-8xf2/GHSA-43x3-5v8m-8xf2.json index 02ce2a42ca8..373bcd36d3a 100644 --- a/advisories/unreviewed/2022/05/GHSA-43x3-5v8m-8xf2/GHSA-43x3-5v8m-8xf2.json +++ b/advisories/unreviewed/2022/05/GHSA-43x3-5v8m-8xf2/GHSA-43x3-5v8m-8xf2.json @@ -7,12 +7,8 @@ "CVE-2020-11766" ], "details": "sendfax.php in iFAX AvantFAX before 3.3.6 and HylaFAX Enterprise Web Interface before 0.2.5 allows authenticated Command Injection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-44cp-gcp7-fxgm/GHSA-44cp-gcp7-fxgm.json b/advisories/unreviewed/2022/05/GHSA-44cp-gcp7-fxgm/GHSA-44cp-gcp7-fxgm.json index 83caf53b0e6..2b8af8bcdbc 100644 --- a/advisories/unreviewed/2022/05/GHSA-44cp-gcp7-fxgm/GHSA-44cp-gcp7-fxgm.json +++ b/advisories/unreviewed/2022/05/GHSA-44cp-gcp7-fxgm/GHSA-44cp-gcp7-fxgm.json @@ -7,12 +7,8 @@ "CVE-2020-12624" ], "details": "The League application before 2020-05-02 on Android sends a bearer token in an HTTP Authorization header to an arbitrary web site that hosts an external image because an OkHttp object is reused, which allows remote attackers to hijack sessions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-45fh-j4qp-56jm/GHSA-45fh-j4qp-56jm.json b/advisories/unreviewed/2022/05/GHSA-45fh-j4qp-56jm/GHSA-45fh-j4qp-56jm.json index d5a272ba76f..37c36fa3260 100644 --- a/advisories/unreviewed/2022/05/GHSA-45fh-j4qp-56jm/GHSA-45fh-j4qp-56jm.json +++ b/advisories/unreviewed/2022/05/GHSA-45fh-j4qp-56jm/GHSA-45fh-j4qp-56jm.json @@ -7,12 +7,8 @@ "CVE-2020-8830" ], "details": "CSRF in login.asp on Ruckus devices allows an attacker to access the panel, and use SSRF to perform scraping or other analysis via the SUBCA-1 field on the Wireless Admin screen.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4635-6x6c-c5r7/GHSA-4635-6x6c-c5r7.json b/advisories/unreviewed/2022/05/GHSA-4635-6x6c-c5r7/GHSA-4635-6x6c-c5r7.json index e5e38fbe5f3..67de978ed8f 100644 --- a/advisories/unreviewed/2022/05/GHSA-4635-6x6c-c5r7/GHSA-4635-6x6c-c5r7.json +++ b/advisories/unreviewed/2022/05/GHSA-4635-6x6c-c5r7/GHSA-4635-6x6c-c5r7.json @@ -7,12 +7,8 @@ "CVE-2020-8021" ], "details": "a Improper Access Control vulnerability in of Open Build Service allows remote attackers to read files of an OBS package where the sourceaccess/access is disabled This issue affects: Open Build Service versions prior to 2.10.5.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4653-jj47-h6j5/GHSA-4653-jj47-h6j5.json b/advisories/unreviewed/2022/05/GHSA-4653-jj47-h6j5/GHSA-4653-jj47-h6j5.json index 5a9059a1cc3..6c5dc1031c0 100644 --- a/advisories/unreviewed/2022/05/GHSA-4653-jj47-h6j5/GHSA-4653-jj47-h6j5.json +++ b/advisories/unreviewed/2022/05/GHSA-4653-jj47-h6j5/GHSA-4653-jj47-h6j5.json @@ -7,12 +7,8 @@ "CVE-2020-8034" ], "details": "Gollem before 3.0.13, as used in Horde Groupware Webmail Edition 5.2.22 and other products, is affected by a reflected Cross-Site Scripting (XSS) vulnerability via the HTTP GET dir parameter in the browser functionality, affecting breadcrumb output. An attacker can obtain access to a victim's webmail account by making them visit a malicious URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-46jr-vf5g-x3fg/GHSA-46jr-vf5g-x3fg.json b/advisories/unreviewed/2022/05/GHSA-46jr-vf5g-x3fg/GHSA-46jr-vf5g-x3fg.json index 98d48263c02..a96df9bb558 100644 --- a/advisories/unreviewed/2022/05/GHSA-46jr-vf5g-x3fg/GHSA-46jr-vf5g-x3fg.json +++ b/advisories/unreviewed/2022/05/GHSA-46jr-vf5g-x3fg/GHSA-46jr-vf5g-x3fg.json @@ -7,12 +7,8 @@ "CVE-2020-1158" ], "details": "An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory, aka 'Windows Runtime Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1077, CVE-2020-1086, CVE-2020-1090, CVE-2020-1125, CVE-2020-1139, CVE-2020-1149, CVE-2020-1151, CVE-2020-1155, CVE-2020-1156, CVE-2020-1157, CVE-2020-1164.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-48gx-3vxx-x8h6/GHSA-48gx-3vxx-x8h6.json b/advisories/unreviewed/2022/05/GHSA-48gx-3vxx-x8h6/GHSA-48gx-3vxx-x8h6.json index d8c2250f791..71837d0ce63 100644 --- a/advisories/unreviewed/2022/05/GHSA-48gx-3vxx-x8h6/GHSA-48gx-3vxx-x8h6.json +++ b/advisories/unreviewed/2022/05/GHSA-48gx-3vxx-x8h6/GHSA-48gx-3vxx-x8h6.json @@ -7,12 +7,8 @@ "CVE-2020-10028" ], "details": "Multiple syscalls with insufficient argument validation See NCC-ZEP-006 This issue affects: zephyrproject-rtos zephyr version 1.14.0 and later versions. version 2.1.0 and later versions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-48rp-gmw7-r283/GHSA-48rp-gmw7-r283.json b/advisories/unreviewed/2022/05/GHSA-48rp-gmw7-r283/GHSA-48rp-gmw7-r283.json index b8685bbd255..ddab7823855 100644 --- a/advisories/unreviewed/2022/05/GHSA-48rp-gmw7-r283/GHSA-48rp-gmw7-r283.json +++ b/advisories/unreviewed/2022/05/GHSA-48rp-gmw7-r283/GHSA-48rp-gmw7-r283.json @@ -7,12 +7,8 @@ "CVE-2020-1141" ], "details": "An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory, allowing an attacker to retrieve information from a targeted system, aka 'Windows GDI Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-0963, CVE-2020-1145, CVE-2020-1179.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-48xv-3rm6-fh3c/GHSA-48xv-3rm6-fh3c.json b/advisories/unreviewed/2022/05/GHSA-48xv-3rm6-fh3c/GHSA-48xv-3rm6-fh3c.json index 58320a1963e..2988396a1f3 100644 --- a/advisories/unreviewed/2022/05/GHSA-48xv-3rm6-fh3c/GHSA-48xv-3rm6-fh3c.json +++ b/advisories/unreviewed/2022/05/GHSA-48xv-3rm6-fh3c/GHSA-48xv-3rm6-fh3c.json @@ -7,12 +7,8 @@ "CVE-2020-9073" ], "details": "Huawei P20 smartphones with versions earlier than 10.0.0.156(C00E156R1P4) have an improper authentication vulnerability. The vulnerability is due to that when an user wants to do certain operation, the software insufficiently validate the user's identity. Attackers need to physically access the smartphone to exploit this vulnerability. Successful exploit could allow the attacker to bypass the limit of student mode function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-494p-63gx-3f9p/GHSA-494p-63gx-3f9p.json b/advisories/unreviewed/2022/05/GHSA-494p-63gx-3f9p/GHSA-494p-63gx-3f9p.json index b3464133699..3e7f53c8d0d 100644 --- a/advisories/unreviewed/2022/05/GHSA-494p-63gx-3f9p/GHSA-494p-63gx-3f9p.json +++ b/advisories/unreviewed/2022/05/GHSA-494p-63gx-3f9p/GHSA-494p-63gx-3f9p.json @@ -7,12 +7,8 @@ "CVE-2020-4264" ], "details": "IBM i2 Intelligent Analyis Platform 9.2.1 could allow a local attacker to execute arbitrary code on the system, caused by a memory corruption. By persuading a victim to open a specially-crafted file, an attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 175647.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-49h2-5v2g-m54m/GHSA-49h2-5v2g-m54m.json b/advisories/unreviewed/2022/05/GHSA-49h2-5v2g-m54m/GHSA-49h2-5v2g-m54m.json index 5eee6134132..710d7e7576b 100644 --- a/advisories/unreviewed/2022/05/GHSA-49h2-5v2g-m54m/GHSA-49h2-5v2g-m54m.json +++ b/advisories/unreviewed/2022/05/GHSA-49h2-5v2g-m54m/GHSA-49h2-5v2g-m54m.json @@ -7,12 +7,8 @@ "CVE-2020-7285" ], "details": "Privilege Escalation vulnerability in McAfee MVISION Endpoint prior to 20.5.0.94 allows a malicious script or program to perform functions that the local executing user has not been granted access to.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4fv4-55mw-p3v4/GHSA-4fv4-55mw-p3v4.json b/advisories/unreviewed/2022/05/GHSA-4fv4-55mw-p3v4/GHSA-4fv4-55mw-p3v4.json index 9f013bc975b..dba6deea4b9 100644 --- a/advisories/unreviewed/2022/05/GHSA-4fv4-55mw-p3v4/GHSA-4fv4-55mw-p3v4.json +++ b/advisories/unreviewed/2022/05/GHSA-4fv4-55mw-p3v4/GHSA-4fv4-55mw-p3v4.json @@ -7,12 +7,8 @@ "CVE-2020-12761" ], "details": "modules/loaders/loader_ico.c in imlib2 1.6.0 has an integer overflow (with resultant invalid memory allocations and out-of-bounds reads) via an icon with many colors in its color map.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4fxx-mff3-3wwr/GHSA-4fxx-mff3-3wwr.json b/advisories/unreviewed/2022/05/GHSA-4fxx-mff3-3wwr/GHSA-4fxx-mff3-3wwr.json index 9d5478f49af..30619ab0c97 100644 --- a/advisories/unreviewed/2022/05/GHSA-4fxx-mff3-3wwr/GHSA-4fxx-mff3-3wwr.json +++ b/advisories/unreviewed/2022/05/GHSA-4fxx-mff3-3wwr/GHSA-4fxx-mff3-3wwr.json @@ -7,12 +7,8 @@ "CVE-2020-3285" ], "details": "A vulnerability in the Transport Layer Security version 1.3 (TLS 1.3) policy with URL category functionality for Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass a configured TLS 1.3 policy to block traffic for a specific URL. The vulnerability is due to a logic error with Snort handling of the connection with the TLS 1.3 policy and URL category configuration. An attacker could exploit this vulnerability by sending crafted TLS 1.3 connections to an affected device. A successful exploit could allow the attacker to bypass the TLS 1.3 policy and access URLs that are outside the affected device and normally would be dropped.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4gcx-h2fv-f6c9/GHSA-4gcx-h2fv-f6c9.json b/advisories/unreviewed/2022/05/GHSA-4gcx-h2fv-f6c9/GHSA-4gcx-h2fv-f6c9.json index 9b6615a4bca..ca3a420908f 100644 --- a/advisories/unreviewed/2022/05/GHSA-4gcx-h2fv-f6c9/GHSA-4gcx-h2fv-f6c9.json +++ b/advisories/unreviewed/2022/05/GHSA-4gcx-h2fv-f6c9/GHSA-4gcx-h2fv-f6c9.json @@ -7,12 +7,8 @@ "CVE-2020-8018" ], "details": "A Incorrect Default Permissions vulnerability in the SLES15-SP1-CHOST-BYOS and SLES15-SP1-CAP-Deployment-BYOS images of SUSE Linux Enterprise Server 15 SP1 allows local attackers with the UID 1000 to escalate to root due to a /etc directory owned by the user This issue affects: SUSE Linux Enterprise Server 15 SP1 SLES15-SP1-CAP-Deployment-BYOS version 1.0.1 and prior versions; SLES15-SP1-CHOST-BYOS versions prior to 1.0.3 and prior versions;", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4gwr-f7fq-56wc/GHSA-4gwr-f7fq-56wc.json b/advisories/unreviewed/2022/05/GHSA-4gwr-f7fq-56wc/GHSA-4gwr-f7fq-56wc.json index bbac5221be2..df83aff660f 100644 --- a/advisories/unreviewed/2022/05/GHSA-4gwr-f7fq-56wc/GHSA-4gwr-f7fq-56wc.json +++ b/advisories/unreviewed/2022/05/GHSA-4gwr-f7fq-56wc/GHSA-4gwr-f7fq-56wc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4j46-43h4-q52j/GHSA-4j46-43h4-q52j.json b/advisories/unreviewed/2022/05/GHSA-4j46-43h4-q52j/GHSA-4j46-43h4-q52j.json index 6df23d7fb61..24ef3e99c2a 100644 --- a/advisories/unreviewed/2022/05/GHSA-4j46-43h4-q52j/GHSA-4j46-43h4-q52j.json +++ b/advisories/unreviewed/2022/05/GHSA-4j46-43h4-q52j/GHSA-4j46-43h4-q52j.json @@ -7,12 +7,8 @@ "CVE-2020-0092" ], "details": "In setHideSensitive of NotificationStackScrollLayout.java, there is a possible disclosure of sensitive notification content due to a permissions bypass. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-145135488", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4jcj-9hpq-7w3m/GHSA-4jcj-9hpq-7w3m.json b/advisories/unreviewed/2022/05/GHSA-4jcj-9hpq-7w3m/GHSA-4jcj-9hpq-7w3m.json index 517b522b825..756ff736563 100644 --- a/advisories/unreviewed/2022/05/GHSA-4jcj-9hpq-7w3m/GHSA-4jcj-9hpq-7w3m.json +++ b/advisories/unreviewed/2022/05/GHSA-4jcj-9hpq-7w3m/GHSA-4jcj-9hpq-7w3m.json @@ -7,12 +7,8 @@ "CVE-2020-1179" ], "details": "An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-0963, CVE-2020-1141, CVE-2020-1145.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4jwv-x3w6-42jv/GHSA-4jwv-x3w6-42jv.json b/advisories/unreviewed/2022/05/GHSA-4jwv-x3w6-42jv/GHSA-4jwv-x3w6-42jv.json index fd455d17aa3..0a152bafcd3 100644 --- a/advisories/unreviewed/2022/05/GHSA-4jwv-x3w6-42jv/GHSA-4jwv-x3w6-42jv.json +++ b/advisories/unreviewed/2022/05/GHSA-4jwv-x3w6-42jv/GHSA-4jwv-x3w6-42jv.json @@ -7,12 +7,8 @@ "CVE-2019-18869" ], "details": "Leftover Debug Code in Blaauw Remote Kiln Control through v3.00r4 allows a user to execute arbitrary php code via /default.php?idx=17.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4mxw-7xgq-cm5c/GHSA-4mxw-7xgq-cm5c.json b/advisories/unreviewed/2022/05/GHSA-4mxw-7xgq-cm5c/GHSA-4mxw-7xgq-cm5c.json index ec351e29f64..dc7adc5ceab 100644 --- a/advisories/unreviewed/2022/05/GHSA-4mxw-7xgq-cm5c/GHSA-4mxw-7xgq-cm5c.json +++ b/advisories/unreviewed/2022/05/GHSA-4mxw-7xgq-cm5c/GHSA-4mxw-7xgq-cm5c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4r4r-223f-8hjj/GHSA-4r4r-223f-8hjj.json b/advisories/unreviewed/2022/05/GHSA-4r4r-223f-8hjj/GHSA-4r4r-223f-8hjj.json index 03b0af3bcf3..26cca3d4bd9 100644 --- a/advisories/unreviewed/2022/05/GHSA-4r4r-223f-8hjj/GHSA-4r4r-223f-8hjj.json +++ b/advisories/unreviewed/2022/05/GHSA-4r4r-223f-8hjj/GHSA-4r4r-223f-8hjj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4r5w-h6p7-33h7/GHSA-4r5w-h6p7-33h7.json b/advisories/unreviewed/2022/05/GHSA-4r5w-h6p7-33h7/GHSA-4r5w-h6p7-33h7.json index 862bf96d69a..666c975b57b 100644 --- a/advisories/unreviewed/2022/05/GHSA-4r5w-h6p7-33h7/GHSA-4r5w-h6p7-33h7.json +++ b/advisories/unreviewed/2022/05/GHSA-4r5w-h6p7-33h7/GHSA-4r5w-h6p7-33h7.json @@ -7,12 +7,8 @@ "CVE-2020-7264" ], "details": "Privilege Escalation vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 Hotfix 199847 allows local users to delete files the user would otherwise not have access to via manipulating symbolic links to redirect a McAfee delete action to an unintended file. This is achieved through running a malicious script or program on the target machine.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4rx9-gpfg-xh6c/GHSA-4rx9-gpfg-xh6c.json b/advisories/unreviewed/2022/05/GHSA-4rx9-gpfg-xh6c/GHSA-4rx9-gpfg-xh6c.json index 780279ea8ad..0037d5863f6 100644 --- a/advisories/unreviewed/2022/05/GHSA-4rx9-gpfg-xh6c/GHSA-4rx9-gpfg-xh6c.json +++ b/advisories/unreviewed/2022/05/GHSA-4rx9-gpfg-xh6c/GHSA-4rx9-gpfg-xh6c.json @@ -7,12 +7,8 @@ "CVE-2020-12652" ], "details": "The __mptctl_ioctl function in drivers/message/fusion/mptctl.c in the Linux kernel before 5.4.14 allows local users to hold an incorrect lock during the ioctl operation and trigger a race condition, i.e., a \"double fetch\" vulnerability, aka CID-28d76df18f0a. NOTE: the vendor states \"The security impact of this bug is not as bad as it could have been because these operations are all privileged and root already has enormous destructive power.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4v4v-6cx5-x258/GHSA-4v4v-6cx5-x258.json b/advisories/unreviewed/2022/05/GHSA-4v4v-6cx5-x258/GHSA-4v4v-6cx5-x258.json index 162651e2613..c53ad9bb1a7 100644 --- a/advisories/unreviewed/2022/05/GHSA-4v4v-6cx5-x258/GHSA-4v4v-6cx5-x258.json +++ b/advisories/unreviewed/2022/05/GHSA-4v4v-6cx5-x258/GHSA-4v4v-6cx5-x258.json @@ -7,12 +7,8 @@ "CVE-2020-9524" ], "details": "Cross Site scripting vulnerability on Micro Focus Enterprise Server and Enterprise developer, affecting all versions prior to version 5.0 Patch Update 8. The vulnerability could allow an attacker to trigger administrative actions when an administrator viewed malicious data left by the attacker (stored XSS) or followed a malicious link (reflected XSS).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4wr2-m35f-fgqf/GHSA-4wr2-m35f-fgqf.json b/advisories/unreviewed/2022/05/GHSA-4wr2-m35f-fgqf/GHSA-4wr2-m35f-fgqf.json index 6617767b15a..f8142cef8e5 100644 --- a/advisories/unreviewed/2022/05/GHSA-4wr2-m35f-fgqf/GHSA-4wr2-m35f-fgqf.json +++ b/advisories/unreviewed/2022/05/GHSA-4wr2-m35f-fgqf/GHSA-4wr2-m35f-fgqf.json @@ -7,12 +7,8 @@ "CVE-2019-15083" ], "details": "Default installations of Zoho ManageEngine ServiceDesk Plus 10.0 before 10500 are vulnerable to XSS injected by a workstation local administrator. Using the installed program names of the computer as a vector, the local administrator can execute code on the Manage Engine ServiceDesk administrator side. At \"Asset Home > Server > > software\" the administrator of ManageEngine can control what software is installed on the workstation. This table shows all the installed program names in the Software column. In this field, a remote attacker can inject malicious code in order to execute it when the ManageEngine administrator visualizes this page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4wrg-fcqh-8cg6/GHSA-4wrg-fcqh-8cg6.json b/advisories/unreviewed/2022/05/GHSA-4wrg-fcqh-8cg6/GHSA-4wrg-fcqh-8cg6.json index ab909823f8b..fcd47513866 100644 --- a/advisories/unreviewed/2022/05/GHSA-4wrg-fcqh-8cg6/GHSA-4wrg-fcqh-8cg6.json +++ b/advisories/unreviewed/2022/05/GHSA-4wrg-fcqh-8cg6/GHSA-4wrg-fcqh-8cg6.json @@ -7,12 +7,8 @@ "CVE-2020-6244" ], "details": "SAP Business Client, version 7.0, allows an attacker after a successful social engineering attack to inject malicious code as a DLL file in untrusted directories that can be executed by the application, due to uncontrolled search path element. An attacker could thereby control the behavior of the application.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4x5f-xw5j-gv58/GHSA-4x5f-xw5j-gv58.json b/advisories/unreviewed/2022/05/GHSA-4x5f-xw5j-gv58/GHSA-4x5f-xw5j-gv58.json index ede372858e8..b51d59e9db6 100644 --- a/advisories/unreviewed/2022/05/GHSA-4x5f-xw5j-gv58/GHSA-4x5f-xw5j-gv58.json +++ b/advisories/unreviewed/2022/05/GHSA-4x5f-xw5j-gv58/GHSA-4x5f-xw5j-gv58.json @@ -7,12 +7,8 @@ "CVE-2020-1732" ], "details": "A flaw was found in Soteria before 1.0.1, in a way that multiple requests occurring concurrently causing security identity corruption across concurrent threads when using EE Security with WildFly Elytron which can lead to the possibility of being handled using the identity from another request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4xcq-p4x2-qg99/GHSA-4xcq-p4x2-qg99.json b/advisories/unreviewed/2022/05/GHSA-4xcq-p4x2-qg99/GHSA-4xcq-p4x2-qg99.json index 039ea0b094b..f8d0a48c4a8 100644 --- a/advisories/unreviewed/2022/05/GHSA-4xcq-p4x2-qg99/GHSA-4xcq-p4x2-qg99.json +++ b/advisories/unreviewed/2022/05/GHSA-4xcq-p4x2-qg99/GHSA-4xcq-p4x2-qg99.json @@ -7,12 +7,8 @@ "CVE-2020-6471" ], "details": "Insufficient policy enforcement in developer tools in Google Chrome prior to 83.0.4103.61 allowed an attacker who convinced a user to install a malicious extension to potentially perform a sandbox escape via a crafted Chrome Extension.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4xrq-chxw-6p75/GHSA-4xrq-chxw-6p75.json b/advisories/unreviewed/2022/05/GHSA-4xrq-chxw-6p75/GHSA-4xrq-chxw-6p75.json index ada62c0be9b..0d6cb9ba8e3 100644 --- a/advisories/unreviewed/2022/05/GHSA-4xrq-chxw-6p75/GHSA-4xrq-chxw-6p75.json +++ b/advisories/unreviewed/2022/05/GHSA-4xrq-chxw-6p75/GHSA-4xrq-chxw-6p75.json @@ -7,12 +7,8 @@ "CVE-2020-12735" ], "details": "reset.php in DomainMOD 4.13.0 uses insufficient entropy for password reset requests, leading to account takeover.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-52f2-92w4-mx97/GHSA-52f2-92w4-mx97.json b/advisories/unreviewed/2022/05/GHSA-52f2-92w4-mx97/GHSA-52f2-92w4-mx97.json index a383e6095e1..d777f83d269 100644 --- a/advisories/unreviewed/2022/05/GHSA-52f2-92w4-mx97/GHSA-52f2-92w4-mx97.json +++ b/advisories/unreviewed/2022/05/GHSA-52f2-92w4-mx97/GHSA-52f2-92w4-mx97.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-53jf-8wq6-r7jr/GHSA-53jf-8wq6-r7jr.json b/advisories/unreviewed/2022/05/GHSA-53jf-8wq6-r7jr/GHSA-53jf-8wq6-r7jr.json index 030e3f6af58..7aaa9ffaf0a 100644 --- a/advisories/unreviewed/2022/05/GHSA-53jf-8wq6-r7jr/GHSA-53jf-8wq6-r7jr.json +++ b/advisories/unreviewed/2022/05/GHSA-53jf-8wq6-r7jr/GHSA-53jf-8wq6-r7jr.json @@ -7,12 +7,8 @@ "CVE-2020-13416" ], "details": "An issue was discovered in Aviatrix Controller before 5.4.1066. A Controller Web Interface session token parameter is not required on an API call, which opens the application up to a Cross Site Request Forgery (CSRF) vulnerability for password resets.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-543h-m4r4-6jx2/GHSA-543h-m4r4-6jx2.json b/advisories/unreviewed/2022/05/GHSA-543h-m4r4-6jx2/GHSA-543h-m4r4-6jx2.json index 48f9784cbaa..5e276c94f46 100644 --- a/advisories/unreviewed/2022/05/GHSA-543h-m4r4-6jx2/GHSA-543h-m4r4-6jx2.json +++ b/advisories/unreviewed/2022/05/GHSA-543h-m4r4-6jx2/GHSA-543h-m4r4-6jx2.json @@ -7,12 +7,8 @@ "CVE-2020-6250" ], "details": "SAP Adaptive Server Enterprise, version 16.0, allows an authenticated attacker to exploit certain misconfigured endpoints exposed over the adjacent network, to read system administrator password leading to Information Disclosure. This could help the attacker to read/write any data and even stop the server like an administrator.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-55jh-j327-hq52/GHSA-55jh-j327-hq52.json b/advisories/unreviewed/2022/05/GHSA-55jh-j327-hq52/GHSA-55jh-j327-hq52.json index 56a48a53921..b22392bf263 100644 --- a/advisories/unreviewed/2022/05/GHSA-55jh-j327-hq52/GHSA-55jh-j327-hq52.json +++ b/advisories/unreviewed/2022/05/GHSA-55jh-j327-hq52/GHSA-55jh-j327-hq52.json @@ -7,12 +7,8 @@ "CVE-2020-1175" ], "details": "A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1051, CVE-2020-1174, CVE-2020-1176.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-55p9-927h-wfvq/GHSA-55p9-927h-wfvq.json b/advisories/unreviewed/2022/05/GHSA-55p9-927h-wfvq/GHSA-55p9-927h-wfvq.json index b7e37903511..b9ac4c7bf5c 100644 --- a/advisories/unreviewed/2022/05/GHSA-55p9-927h-wfvq/GHSA-55p9-927h-wfvq.json +++ b/advisories/unreviewed/2022/05/GHSA-55p9-927h-wfvq/GHSA-55p9-927h-wfvq.json @@ -7,12 +7,8 @@ "CVE-2020-13146" ], "details": "Studio in Open edX Ironwood 2.5 allows CSV injection because an added cohort in Course>Instructor>Cohorts may contain a formula that is exported via the \"Course>Data Downloads>Reports>Download profile info\" feature.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-55qq-3jg8-6rq4/GHSA-55qq-3jg8-6rq4.json b/advisories/unreviewed/2022/05/GHSA-55qq-3jg8-6rq4/GHSA-55qq-3jg8-6rq4.json index 7082fa925f2..6483449355e 100644 --- a/advisories/unreviewed/2022/05/GHSA-55qq-3jg8-6rq4/GHSA-55qq-3jg8-6rq4.json +++ b/advisories/unreviewed/2022/05/GHSA-55qq-3jg8-6rq4/GHSA-55qq-3jg8-6rq4.json @@ -7,12 +7,8 @@ "CVE-2020-4345" ], "details": "IBM i 7.2, 7.3, and 7.4 users running complex SQL statements under a specific set of circumstances may allow a local user to obtain sensitive information that they should not have access to. IBM X-Force ID: 178318.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5634-wp84-cm8x/GHSA-5634-wp84-cm8x.json b/advisories/unreviewed/2022/05/GHSA-5634-wp84-cm8x/GHSA-5634-wp84-cm8x.json index 81f44f64a3a..85b1cc71148 100644 --- a/advisories/unreviewed/2022/05/GHSA-5634-wp84-cm8x/GHSA-5634-wp84-cm8x.json +++ b/advisories/unreviewed/2022/05/GHSA-5634-wp84-cm8x/GHSA-5634-wp84-cm8x.json @@ -7,12 +7,8 @@ "CVE-2020-4429" ], "details": "IBM Data Risk Manager 2.0.1, 2.0.2, 2.0.3, 2.0.4, 2.0.5, and 2.0.6 contains a default password for an IDRM administrative account. A remote attacker could exploit this vulnerability to login and execute arbitrary code on the system with root privileges. IBM X-Force ID: 180534.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5767-3wrr-r2px/GHSA-5767-3wrr-r2px.json b/advisories/unreviewed/2022/05/GHSA-5767-3wrr-r2px/GHSA-5767-3wrr-r2px.json index 1521a87e38e..cb36e552582 100644 --- a/advisories/unreviewed/2022/05/GHSA-5767-3wrr-r2px/GHSA-5767-3wrr-r2px.json +++ b/advisories/unreviewed/2022/05/GHSA-5767-3wrr-r2px/GHSA-5767-3wrr-r2px.json @@ -7,12 +7,8 @@ "CVE-2017-18771" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects R9000 before 1.0.2.40, R6100 before 1.0.1.1, 6R7500 before 1.0.0.110, R7500v2 before 1.0.3.20, R7800 before 1.0.2.36, WNDR4300v2 before 1.0.0.48, and WNR2000v5 before 1.0.0.58.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5c78-vcj8-vwr5/GHSA-5c78-vcj8-vwr5.json b/advisories/unreviewed/2022/05/GHSA-5c78-vcj8-vwr5/GHSA-5c78-vcj8-vwr5.json index 9042fe9198c..bdeb1c573fa 100644 --- a/advisories/unreviewed/2022/05/GHSA-5c78-vcj8-vwr5/GHSA-5c78-vcj8-vwr5.json +++ b/advisories/unreviewed/2022/05/GHSA-5c78-vcj8-vwr5/GHSA-5c78-vcj8-vwr5.json @@ -7,12 +7,8 @@ "CVE-2020-10024" ], "details": "The arm platform-specific code uses a signed integer comparison when validating system call numbers. An attacker who has obtained code execution within a user thread is able to elevate privileges to that of the kernel. See NCC-ZEP-001 This issue affects: zephyrproject-rtos zephyr version 1.14.0 and later versions. version 2.1.0 and later versions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5cgw-69cq-5ggq/GHSA-5cgw-69cq-5ggq.json b/advisories/unreviewed/2022/05/GHSA-5cgw-69cq-5ggq/GHSA-5cgw-69cq-5ggq.json index 1a8ce6cbd08..8365ebf4381 100644 --- a/advisories/unreviewed/2022/05/GHSA-5cgw-69cq-5ggq/GHSA-5cgw-69cq-5ggq.json +++ b/advisories/unreviewed/2022/05/GHSA-5cgw-69cq-5ggq/GHSA-5cgw-69cq-5ggq.json @@ -7,12 +7,8 @@ "CVE-2020-1995" ], "details": "A NULL pointer dereference vulnerability in Palo Alto Networks PAN-OS allows an authenticated administrator to send a request that causes the rasmgr daemon to crash. Repeated attempts to send this request result in denial of service to all PAN-OS services by restarting the device and putting it into maintenance mode. This issue affects: PAN-OS 9.1 versions earlier than 9.1.2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5g86-qjm3-wfq4/GHSA-5g86-qjm3-wfq4.json b/advisories/unreviewed/2022/05/GHSA-5g86-qjm3-wfq4/GHSA-5g86-qjm3-wfq4.json index 015a0ae6945..25b2aae0fe8 100644 --- a/advisories/unreviewed/2022/05/GHSA-5g86-qjm3-wfq4/GHSA-5g86-qjm3-wfq4.json +++ b/advisories/unreviewed/2022/05/GHSA-5g86-qjm3-wfq4/GHSA-5g86-qjm3-wfq4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5gw3-gj8j-f364/GHSA-5gw3-gj8j-f364.json b/advisories/unreviewed/2022/05/GHSA-5gw3-gj8j-f364/GHSA-5gw3-gj8j-f364.json index 1fbf7a57a86..b31b44b038e 100644 --- a/advisories/unreviewed/2022/05/GHSA-5gw3-gj8j-f364/GHSA-5gw3-gj8j-f364.json +++ b/advisories/unreviewed/2022/05/GHSA-5gw3-gj8j-f364/GHSA-5gw3-gj8j-f364.json @@ -7,12 +7,8 @@ "CVE-2020-11807" ], "details": "Because of Unrestricted Upload of a File with a Dangerous Type, Sourcefabric Newscoop 4.4.7 allows an authenticated user to execute arbitrary PHP code (and sometimes terminal commands) on a server by making an avatar update and then visiting the avatar file under the /images/ path.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5gxw-2hpv-42v7/GHSA-5gxw-2hpv-42v7.json b/advisories/unreviewed/2022/05/GHSA-5gxw-2hpv-42v7/GHSA-5gxw-2hpv-42v7.json index e7ebc0a2304..86c69035a6d 100644 --- a/advisories/unreviewed/2022/05/GHSA-5gxw-2hpv-42v7/GHSA-5gxw-2hpv-42v7.json +++ b/advisories/unreviewed/2022/05/GHSA-5gxw-2hpv-42v7/GHSA-5gxw-2hpv-42v7.json @@ -7,12 +7,8 @@ "CVE-2020-12708" ], "details": "Multiple cross-site scripting vulnerabilities in PHP-Fusion 9.03.50 allow remote attackers to inject arbitrary web script or HTML via the cat_id parameter to downloads/downloads.php or article.php. NOTE: this might overlap CVE-2012-6043.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5h36-xpf2-wm7c/GHSA-5h36-xpf2-wm7c.json b/advisories/unreviewed/2022/05/GHSA-5h36-xpf2-wm7c/GHSA-5h36-xpf2-wm7c.json index 796a011e95c..71d0085db39 100644 --- a/advisories/unreviewed/2022/05/GHSA-5h36-xpf2-wm7c/GHSA-5h36-xpf2-wm7c.json +++ b/advisories/unreviewed/2022/05/GHSA-5h36-xpf2-wm7c/GHSA-5h36-xpf2-wm7c.json @@ -7,12 +7,8 @@ "CVE-2020-13154" ], "details": "Zoho ManageEngine Service Plus before 11.1 build 11112 allows low-privilege authenticated users to discover the File Protection password via a getFileProtectionSettings call to AjaxServlet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5m7w-q5h8-8h9j/GHSA-5m7w-q5h8-8h9j.json b/advisories/unreviewed/2022/05/GHSA-5m7w-q5h8-8h9j/GHSA-5m7w-q5h8-8h9j.json index 5979f21bda8..8e8fc38f6fd 100644 --- a/advisories/unreviewed/2022/05/GHSA-5m7w-q5h8-8h9j/GHSA-5m7w-q5h8-8h9j.json +++ b/advisories/unreviewed/2022/05/GHSA-5m7w-q5h8-8h9j/GHSA-5m7w-q5h8-8h9j.json @@ -7,12 +7,8 @@ "CVE-2020-6262" ], "details": "Service Data Download in SAP Application Server ABAP (ST-PI, before versions 2008_1_46C, 2008_1_620, 2008_1_640, 2008_1_700, 2008_1_710, 740) allows an attacker to inject code that can be executed by the application. An attacker could thereby control the behavior of the application and the whole ABAP system leading to Code Injection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5rv6-786c-qwh8/GHSA-5rv6-786c-qwh8.json b/advisories/unreviewed/2022/05/GHSA-5rv6-786c-qwh8/GHSA-5rv6-786c-qwh8.json index 6305286fd7a..2685ac07148 100644 --- a/advisories/unreviewed/2022/05/GHSA-5rv6-786c-qwh8/GHSA-5rv6-786c-qwh8.json +++ b/advisories/unreviewed/2022/05/GHSA-5rv6-786c-qwh8/GHSA-5rv6-786c-qwh8.json @@ -7,12 +7,8 @@ "CVE-2020-12255" ], "details": "rConfig 3.9.4 is vulnerable to remote code execution due to improper validation in the file upload functionality. vendor.crud.php accepts a file upload by checking content-type without considering the file extension and header. Thus, an attacker can exploit this by uploading a .php file to vendor.php that contains arbitrary PHP code and changing the content-type to image/gif.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5vmr-4758-3pqr/GHSA-5vmr-4758-3pqr.json b/advisories/unreviewed/2022/05/GHSA-5vmr-4758-3pqr/GHSA-5vmr-4758-3pqr.json index a2b6f3f53d6..e2e93341d61 100644 --- a/advisories/unreviewed/2022/05/GHSA-5vmr-4758-3pqr/GHSA-5vmr-4758-3pqr.json +++ b/advisories/unreviewed/2022/05/GHSA-5vmr-4758-3pqr/GHSA-5vmr-4758-3pqr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5vvx-h4ff-cgq4/GHSA-5vvx-h4ff-cgq4.json b/advisories/unreviewed/2022/05/GHSA-5vvx-h4ff-cgq4/GHSA-5vvx-h4ff-cgq4.json index 5e3e02ae162..e9c45acfeb1 100644 --- a/advisories/unreviewed/2022/05/GHSA-5vvx-h4ff-cgq4/GHSA-5vvx-h4ff-cgq4.json +++ b/advisories/unreviewed/2022/05/GHSA-5vvx-h4ff-cgq4/GHSA-5vvx-h4ff-cgq4.json @@ -7,12 +7,8 @@ "CVE-2020-12876" ], "details": "Veritas APTARE versions prior to 10.4 allowed remote users to access several unintended files on the server. This vulnerability only impacts Windows server deployments.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5wpq-6r82-j39f/GHSA-5wpq-6r82-j39f.json b/advisories/unreviewed/2022/05/GHSA-5wpq-6r82-j39f/GHSA-5wpq-6r82-j39f.json index 4aef6481ec3..87d08efffb8 100644 --- a/advisories/unreviewed/2022/05/GHSA-5wpq-6r82-j39f/GHSA-5wpq-6r82-j39f.json +++ b/advisories/unreviewed/2022/05/GHSA-5wpq-6r82-j39f/GHSA-5wpq-6r82-j39f.json @@ -7,12 +7,8 @@ "CVE-2020-12750" ], "details": "An issue was discovered on Samsung mobile devices with Q(10.0) software. Attackers can bypass Factory Reset Protection (FRP) via SPEN. The Samsung ID is SVE-2020-17019 (May 2020).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5wqx-v74v-cwq8/GHSA-5wqx-v74v-cwq8.json b/advisories/unreviewed/2022/05/GHSA-5wqx-v74v-cwq8/GHSA-5wqx-v74v-cwq8.json index 4a3059a17ce..fa7abcb57ff 100644 --- a/advisories/unreviewed/2022/05/GHSA-5wqx-v74v-cwq8/GHSA-5wqx-v74v-cwq8.json +++ b/advisories/unreviewed/2022/05/GHSA-5wqx-v74v-cwq8/GHSA-5wqx-v74v-cwq8.json @@ -7,12 +7,8 @@ "CVE-2020-6258" ], "details": "SAP Identity Management, version 8.0, does not perform necessary authorization checks for an authenticated user, allowing the attacker to view certain sensitive information of the victim, leading to Missing Authorization Check.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5xmj-47rh-c64f/GHSA-5xmj-47rh-c64f.json b/advisories/unreviewed/2022/05/GHSA-5xmj-47rh-c64f/GHSA-5xmj-47rh-c64f.json index 1f8c0b5d6bc..4f2ab6067c9 100644 --- a/advisories/unreviewed/2022/05/GHSA-5xmj-47rh-c64f/GHSA-5xmj-47rh-c64f.json +++ b/advisories/unreviewed/2022/05/GHSA-5xmj-47rh-c64f/GHSA-5xmj-47rh-c64f.json @@ -7,12 +7,8 @@ "CVE-2020-12608" ], "details": "An issue was discovered in SolarWinds MSP PME (Patch Management Engine) Cache Service before 1.1.15 in the Advanced Monitoring Agent. There are insecure file permissions for %PROGRAMDATA%\\SolarWinds MSP\\SolarWinds.MSP.CacheService\\config\\. This can lead to code execution by changing the CacheService.xml SISServerURL parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-624j-v5v7-qjpg/GHSA-624j-v5v7-qjpg.json b/advisories/unreviewed/2022/05/GHSA-624j-v5v7-qjpg/GHSA-624j-v5v7-qjpg.json index e00ca912f15..995335b7a88 100644 --- a/advisories/unreviewed/2022/05/GHSA-624j-v5v7-qjpg/GHSA-624j-v5v7-qjpg.json +++ b/advisories/unreviewed/2022/05/GHSA-624j-v5v7-qjpg/GHSA-624j-v5v7-qjpg.json @@ -7,12 +7,8 @@ "CVE-2020-3188" ], "details": "A vulnerability in how Cisco Firepower Threat Defense (FTD) Software handles session timeouts for management connections could allow an unauthenticated, remote attacker to cause a buildup of remote management connections to an affected device, which could result in a denial of service (DoS) condition. The vulnerability exists because the default session timeout period for specific to-the-box remote management connections is too long. An attacker could exploit this vulnerability by sending a large and sustained number of crafted remote management connections to an affected device, resulting in a buildup of those connections over time. A successful exploit could allow the attacker to cause the remote management interface or Cisco Firepower Device Manager (FDM) to stop responding and cause other management functions to go offline, resulting in a DoS condition. The user traffic that is flowing through the device would not be affected, and the DoS condition would be isolated to remote management only.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-62vh-cjp3-26j8/GHSA-62vh-cjp3-26j8.json b/advisories/unreviewed/2022/05/GHSA-62vh-cjp3-26j8/GHSA-62vh-cjp3-26j8.json index 1f950f41881..0e10c5ede96 100644 --- a/advisories/unreviewed/2022/05/GHSA-62vh-cjp3-26j8/GHSA-62vh-cjp3-26j8.json +++ b/advisories/unreviewed/2022/05/GHSA-62vh-cjp3-26j8/GHSA-62vh-cjp3-26j8.json @@ -7,12 +7,8 @@ "CVE-2017-18774" ], "details": "Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects D6100 before 1.0.0.55, D7800 before V1.0.1.24, R7100LG before V1.0.0.32, WNDR4300v1 before 1.0.2.90, and WNDR4500v3 before 1.0.0.48.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-632h-99v3-p9pw/GHSA-632h-99v3-p9pw.json b/advisories/unreviewed/2022/05/GHSA-632h-99v3-p9pw/GHSA-632h-99v3-p9pw.json index da4b98d12f0..436be25e44f 100644 --- a/advisories/unreviewed/2022/05/GHSA-632h-99v3-p9pw/GHSA-632h-99v3-p9pw.json +++ b/advisories/unreviewed/2022/05/GHSA-632h-99v3-p9pw/GHSA-632h-99v3-p9pw.json @@ -7,12 +7,8 @@ "CVE-2020-1190" ], "details": "An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in memory, aka 'Windows State Repository Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1124, CVE-2020-1131, CVE-2020-1134, CVE-2020-1144, CVE-2020-1184, CVE-2020-1185, CVE-2020-1186, CVE-2020-1187, CVE-2020-1188, CVE-2020-1189, CVE-2020-1191.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-647j-cjrc-j33x/GHSA-647j-cjrc-j33x.json b/advisories/unreviewed/2022/05/GHSA-647j-cjrc-j33x/GHSA-647j-cjrc-j33x.json index 5c7d0c69347..24ec3df82c7 100644 --- a/advisories/unreviewed/2022/05/GHSA-647j-cjrc-j33x/GHSA-647j-cjrc-j33x.json +++ b/advisories/unreviewed/2022/05/GHSA-647j-cjrc-j33x/GHSA-647j-cjrc-j33x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-67r3-q6qw-jw7p/GHSA-67r3-q6qw-jw7p.json b/advisories/unreviewed/2022/05/GHSA-67r3-q6qw-jw7p/GHSA-67r3-q6qw-jw7p.json index afb6f441228..5f58d394d50 100644 --- a/advisories/unreviewed/2022/05/GHSA-67r3-q6qw-jw7p/GHSA-67r3-q6qw-jw7p.json +++ b/advisories/unreviewed/2022/05/GHSA-67r3-q6qw-jw7p/GHSA-67r3-q6qw-jw7p.json @@ -7,12 +7,8 @@ "CVE-2020-1997" ], "details": "An open redirection vulnerability in the GlobalProtect component of Palo Alto Networks PAN-OS allows an attacker to specify an arbitrary redirection target away from the trusted GlobalProtect gateway. If the user then successfully authenticates it will cause them to access an unexpected and potentially malicious website. This issue affects: PAN-OS 7.1 versions earlier than 7.1.26; PAN-OS 8.0 versions earlier than 8.0.14.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-67xg-7gqq-pccf/GHSA-67xg-7gqq-pccf.json b/advisories/unreviewed/2022/05/GHSA-67xg-7gqq-pccf/GHSA-67xg-7gqq-pccf.json index c5e93c4647e..f1beccf299e 100644 --- a/advisories/unreviewed/2022/05/GHSA-67xg-7gqq-pccf/GHSA-67xg-7gqq-pccf.json +++ b/advisories/unreviewed/2022/05/GHSA-67xg-7gqq-pccf/GHSA-67xg-7gqq-pccf.json @@ -7,12 +7,8 @@ "CVE-2020-12108" ], "details": "/options/mailman in GNU Mailman before 2.1.31 allows Arbitrary Content Injection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-683v-gpq7-jpjg/GHSA-683v-gpq7-jpjg.json b/advisories/unreviewed/2022/05/GHSA-683v-gpq7-jpjg/GHSA-683v-gpq7-jpjg.json index bd58cb8104e..8caee0b7134 100644 --- a/advisories/unreviewed/2022/05/GHSA-683v-gpq7-jpjg/GHSA-683v-gpq7-jpjg.json +++ b/advisories/unreviewed/2022/05/GHSA-683v-gpq7-jpjg/GHSA-683v-gpq7-jpjg.json @@ -7,12 +7,8 @@ "CVE-2020-5750" ], "details": "Insufficient output sanitization in TCExam 14.2.2 allows a remote, unauthenticated attacker to conduct persistent cross-site scripting (XSS) attacks via the self-registration feature.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-689j-fxw4-9jvq/GHSA-689j-fxw4-9jvq.json b/advisories/unreviewed/2022/05/GHSA-689j-fxw4-9jvq/GHSA-689j-fxw4-9jvq.json index 860f0a1dea0..2997867143a 100644 --- a/advisories/unreviewed/2022/05/GHSA-689j-fxw4-9jvq/GHSA-689j-fxw4-9jvq.json +++ b/advisories/unreviewed/2022/05/GHSA-689j-fxw4-9jvq/GHSA-689j-fxw4-9jvq.json @@ -7,12 +7,8 @@ "CVE-2020-4299" ], "details": "IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 6.0.3.1 could expose sensitive information to a user through a specially crafted HTTP request. IBM X-Force ID: 176606.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-68qq-h9q4-8pq4/GHSA-68qq-h9q4-8pq4.json b/advisories/unreviewed/2022/05/GHSA-68qq-h9q4-8pq4/GHSA-68qq-h9q4-8pq4.json index f108eea12a6..bc46ab52df9 100644 --- a/advisories/unreviewed/2022/05/GHSA-68qq-h9q4-8pq4/GHSA-68qq-h9q4-8pq4.json +++ b/advisories/unreviewed/2022/05/GHSA-68qq-h9q4-8pq4/GHSA-68qq-h9q4-8pq4.json @@ -7,12 +7,8 @@ "CVE-2020-11715" ], "details": "Panasonic P99 devices through 2020-04-10 have Incorrect Access Control. NOTE: the vendor states that all affected products are at \"End-of-software-support.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6cj3-3fxc-vmr2/GHSA-6cj3-3fxc-vmr2.json b/advisories/unreviewed/2022/05/GHSA-6cj3-3fxc-vmr2/GHSA-6cj3-3fxc-vmr2.json index 98306a06544..c5b07657644 100644 --- a/advisories/unreviewed/2022/05/GHSA-6cj3-3fxc-vmr2/GHSA-6cj3-3fxc-vmr2.json +++ b/advisories/unreviewed/2022/05/GHSA-6cj3-3fxc-vmr2/GHSA-6cj3-3fxc-vmr2.json @@ -7,12 +7,8 @@ "CVE-2020-1187" ], "details": "An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in memory, aka 'Windows State Repository Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1124, CVE-2020-1131, CVE-2020-1134, CVE-2020-1144, CVE-2020-1184, CVE-2020-1185, CVE-2020-1186, CVE-2020-1188, CVE-2020-1189, CVE-2020-1190, CVE-2020-1191.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6f2w-97m7-p3vw/GHSA-6f2w-97m7-p3vw.json b/advisories/unreviewed/2022/05/GHSA-6f2w-97m7-p3vw/GHSA-6f2w-97m7-p3vw.json index 0c831389538..24d2a5932fa 100644 --- a/advisories/unreviewed/2022/05/GHSA-6f2w-97m7-p3vw/GHSA-6f2w-97m7-p3vw.json +++ b/advisories/unreviewed/2022/05/GHSA-6f2w-97m7-p3vw/GHSA-6f2w-97m7-p3vw.json @@ -7,12 +7,8 @@ "CVE-2020-4286" ], "details": "IBM InfoSphere Information Server 11.3, 11.5, and 11.7 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 176268.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6f38-24fq-5q25/GHSA-6f38-24fq-5q25.json b/advisories/unreviewed/2022/05/GHSA-6f38-24fq-5q25/GHSA-6f38-24fq-5q25.json index ef271d15568..8eeace56270 100644 --- a/advisories/unreviewed/2022/05/GHSA-6f38-24fq-5q25/GHSA-6f38-24fq-5q25.json +++ b/advisories/unreviewed/2022/05/GHSA-6f38-24fq-5q25/GHSA-6f38-24fq-5q25.json @@ -7,12 +7,8 @@ "CVE-2020-12749" ], "details": "An issue was discovered on Samsung mobile devices with P(9.0) (Exynos chipsets) software. The S.LSI Wi-Fi drivers have a buffer overflow. The Samsung ID is SVE-2020-16906 (May 2020).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6fq7-r3q7-fv44/GHSA-6fq7-r3q7-fv44.json b/advisories/unreviewed/2022/05/GHSA-6fq7-r3q7-fv44/GHSA-6fq7-r3q7-fv44.json index 82fb1e45a51..4b64f937efb 100644 --- a/advisories/unreviewed/2022/05/GHSA-6fq7-r3q7-fv44/GHSA-6fq7-r3q7-fv44.json +++ b/advisories/unreviewed/2022/05/GHSA-6fq7-r3q7-fv44/GHSA-6fq7-r3q7-fv44.json @@ -7,12 +7,8 @@ "CVE-2020-4209" ], "details": "IBM Spectrum Protect Plus 10.1.0 through 10.1.5 could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request containing \"dot dot\" sequences (/../) to create arbitrary files on the system. IBM X-Force ID: 175019.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6g8h-c25m-ph57/GHSA-6g8h-c25m-ph57.json b/advisories/unreviewed/2022/05/GHSA-6g8h-c25m-ph57/GHSA-6g8h-c25m-ph57.json index c0a64ba104e..ea65c3aa2c3 100644 --- a/advisories/unreviewed/2022/05/GHSA-6g8h-c25m-ph57/GHSA-6g8h-c25m-ph57.json +++ b/advisories/unreviewed/2022/05/GHSA-6g8h-c25m-ph57/GHSA-6g8h-c25m-ph57.json @@ -7,12 +7,8 @@ "CVE-2020-12002" ], "details": "Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0. Multiple stack-based buffer overflow vulnerabilities exist caused by a lack of proper validation of the length of user-supplied data, which may allow remote code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6gc7-mhjg-cg5c/GHSA-6gc7-mhjg-cg5c.json b/advisories/unreviewed/2022/05/GHSA-6gc7-mhjg-cg5c/GHSA-6gc7-mhjg-cg5c.json index 2e4ff97453a..47c121735c3 100644 --- a/advisories/unreviewed/2022/05/GHSA-6gc7-mhjg-cg5c/GHSA-6gc7-mhjg-cg5c.json +++ b/advisories/unreviewed/2022/05/GHSA-6gc7-mhjg-cg5c/GHSA-6gc7-mhjg-cg5c.json @@ -7,12 +7,8 @@ "CVE-2020-5836" ], "details": "Symantec Endpoint Protection, prior to 14.3, can potentially reset the ACLs on a file as a limited user while Symantec Endpoint Protection's Tamper Protection feature is disabled.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6jxg-4jpx-jgfm/GHSA-6jxg-4jpx-jgfm.json b/advisories/unreviewed/2022/05/GHSA-6jxg-4jpx-jgfm/GHSA-6jxg-4jpx-jgfm.json index 17373e81379..dd862d0d19f 100644 --- a/advisories/unreviewed/2022/05/GHSA-6jxg-4jpx-jgfm/GHSA-6jxg-4jpx-jgfm.json +++ b/advisories/unreviewed/2022/05/GHSA-6jxg-4jpx-jgfm/GHSA-6jxg-4jpx-jgfm.json @@ -7,12 +7,8 @@ "CVE-2020-1185" ], "details": "An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in memory, aka 'Windows State Repository Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1124, CVE-2020-1131, CVE-2020-1134, CVE-2020-1144, CVE-2020-1184, CVE-2020-1186, CVE-2020-1187, CVE-2020-1188, CVE-2020-1189, CVE-2020-1190, CVE-2020-1191.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6pgf-fcrx-j998/GHSA-6pgf-fcrx-j998.json b/advisories/unreviewed/2022/05/GHSA-6pgf-fcrx-j998/GHSA-6pgf-fcrx-j998.json index 100e5a036d3..466996c1f02 100644 --- a/advisories/unreviewed/2022/05/GHSA-6pgf-fcrx-j998/GHSA-6pgf-fcrx-j998.json +++ b/advisories/unreviewed/2022/05/GHSA-6pgf-fcrx-j998/GHSA-6pgf-fcrx-j998.json @@ -7,12 +7,8 @@ "CVE-2020-7803" ], "details": "IMGTech Co,Ltd ZInsX.ocx ActiveX Control in Zoneplayer 2.0.1.3, version 2.0.1.4 and prior versions on Windows. File Donwload vulnerability in ZInsX.ocx of IMGTech Co,Ltd Zoneplayer allows attacker to cause arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6pqp-3jf8-m667/GHSA-6pqp-3jf8-m667.json b/advisories/unreviewed/2022/05/GHSA-6pqp-3jf8-m667/GHSA-6pqp-3jf8-m667.json index ccfa912d8d2..7008a22a9cb 100644 --- a/advisories/unreviewed/2022/05/GHSA-6pqp-3jf8-m667/GHSA-6pqp-3jf8-m667.json +++ b/advisories/unreviewed/2022/05/GHSA-6pqp-3jf8-m667/GHSA-6pqp-3jf8-m667.json @@ -7,12 +7,8 @@ "CVE-2020-5835" ], "details": "Symantec Endpoint Protection Manager, prior to 14.3, has a race condition in client remote deployment which may result in an elevation of privilege on the remote machine.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6qhj-5898-8677/GHSA-6qhj-5898-8677.json b/advisories/unreviewed/2022/05/GHSA-6qhj-5898-8677/GHSA-6qhj-5898-8677.json index 7554da3c612..524126e36d6 100644 --- a/advisories/unreviewed/2022/05/GHSA-6qhj-5898-8677/GHSA-6qhj-5898-8677.json +++ b/advisories/unreviewed/2022/05/GHSA-6qhj-5898-8677/GHSA-6qhj-5898-8677.json @@ -7,12 +7,8 @@ "CVE-2020-12755" ], "details": "fishProtocol::establishConnection in fish/fish.cpp in KDE kio-extras through 20.04.0 makes a cacheAuthentication call even if the user had not set the keepPassword option. This may lead to unintended KWallet storage of a password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6whr-hpw2-4rj7/GHSA-6whr-hpw2-4rj7.json b/advisories/unreviewed/2022/05/GHSA-6whr-hpw2-4rj7/GHSA-6whr-hpw2-4rj7.json index 899ed4e6da2..bddf68c7640 100644 --- a/advisories/unreviewed/2022/05/GHSA-6whr-hpw2-4rj7/GHSA-6whr-hpw2-4rj7.json +++ b/advisories/unreviewed/2022/05/GHSA-6whr-hpw2-4rj7/GHSA-6whr-hpw2-4rj7.json @@ -7,12 +7,8 @@ "CVE-2020-12743" ], "details": "An issue was discovered in Gazie 7.32. A successful installation does not remove or block (or in any other way prevent use of) its own file /setup/install/setup.php, meaning that anyone can request it without authentication. This file allows arbitrary PHP file inclusion via a hidden_req POST parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6wrg-vw54-78h2/GHSA-6wrg-vw54-78h2.json b/advisories/unreviewed/2022/05/GHSA-6wrg-vw54-78h2/GHSA-6wrg-vw54-78h2.json index 5a3fe4880d7..505133ced66 100644 --- a/advisories/unreviewed/2022/05/GHSA-6wrg-vw54-78h2/GHSA-6wrg-vw54-78h2.json +++ b/advisories/unreviewed/2022/05/GHSA-6wrg-vw54-78h2/GHSA-6wrg-vw54-78h2.json @@ -7,12 +7,8 @@ "CVE-2020-12116" ], "details": "Zoho ManageEngine OpManager Stable build before 124196 and Released build before 125125 allows an unauthenticated attacker to read arbitrary files on the server by sending a crafted request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6wrv-35h9-3pj7/GHSA-6wrv-35h9-3pj7.json b/advisories/unreviewed/2022/05/GHSA-6wrv-35h9-3pj7/GHSA-6wrv-35h9-3pj7.json index d4d6bff1c18..df8fcdf999d 100644 --- a/advisories/unreviewed/2022/05/GHSA-6wrv-35h9-3pj7/GHSA-6wrv-35h9-3pj7.json +++ b/advisories/unreviewed/2022/05/GHSA-6wrv-35h9-3pj7/GHSA-6wrv-35h9-3pj7.json @@ -7,12 +7,8 @@ "CVE-2008-4109" ], "details": "A certain Debian patch for OpenSSH before 4.3p2-9etch3 on etch; before 4.6p1-1 on sid and lenny; and on other distributions such as SUSE uses functions that are not async-signal-safe in the signal handler for login timeouts, which allows remote attackers to cause a denial of service (connection slot exhaustion) via multiple login attempts. NOTE: this issue exists because of an incorrect fix for CVE-2006-5051.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6wvc-hc5h-7fqv/GHSA-6wvc-hc5h-7fqv.json b/advisories/unreviewed/2022/05/GHSA-6wvc-hc5h-7fqv/GHSA-6wvc-hc5h-7fqv.json index e9e5103f200..3f6a2cc2b45 100644 --- a/advisories/unreviewed/2022/05/GHSA-6wvc-hc5h-7fqv/GHSA-6wvc-hc5h-7fqv.json +++ b/advisories/unreviewed/2022/05/GHSA-6wvc-hc5h-7fqv/GHSA-6wvc-hc5h-7fqv.json @@ -7,12 +7,8 @@ "CVE-2020-12440" ], "details": "NGINX through 1.18.0 allows an HTTP request smuggling attack that can lead to cache poisoning, credential hijacking, or security bypass.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6x34-4pjh-4442/GHSA-6x34-4pjh-4442.json b/advisories/unreviewed/2022/05/GHSA-6x34-4pjh-4442/GHSA-6x34-4pjh-4442.json index e1c5a1cd15d..007a206126d 100644 --- a/advisories/unreviewed/2022/05/GHSA-6x34-4pjh-4442/GHSA-6x34-4pjh-4442.json +++ b/advisories/unreviewed/2022/05/GHSA-6x34-4pjh-4442/GHSA-6x34-4pjh-4442.json @@ -7,12 +7,8 @@ "CVE-2020-13093" ], "details": "iSpyConnect.com Agent DVR before 2.7.1.0 allows directory traversal.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-72jg-wqh4-qw67/GHSA-72jg-wqh4-qw67.json b/advisories/unreviewed/2022/05/GHSA-72jg-wqh4-qw67/GHSA-72jg-wqh4-qw67.json index 58c8c329fc7..0369c7e00b1 100644 --- a/advisories/unreviewed/2022/05/GHSA-72jg-wqh4-qw67/GHSA-72jg-wqh4-qw67.json +++ b/advisories/unreviewed/2022/05/GHSA-72jg-wqh4-qw67/GHSA-72jg-wqh4-qw67.json @@ -7,12 +7,8 @@ "CVE-2020-10620" ], "details": "Opto 22 SoftPAC Project Version 9.6 and prior. SoftPAC communication does not include any credentials. This allows an attacker with network access to directly communicate with SoftPAC, including, for example, stopping the service remotely.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-73vm-8jvg-jpqh/GHSA-73vm-8jvg-jpqh.json b/advisories/unreviewed/2022/05/GHSA-73vm-8jvg-jpqh/GHSA-73vm-8jvg-jpqh.json index f5d6d7c4610..f74d30b4110 100644 --- a/advisories/unreviewed/2022/05/GHSA-73vm-8jvg-jpqh/GHSA-73vm-8jvg-jpqh.json +++ b/advisories/unreviewed/2022/05/GHSA-73vm-8jvg-jpqh/GHSA-73vm-8jvg-jpqh.json @@ -7,12 +7,8 @@ "CVE-2020-9315" ], "details": "** PRODUCT NOT SUPPORTED WHEN ASSIGNED ** Oracle iPlanet Web Server 7.0.x has Incorrect Access Control for admingui/version URIs in the Administration console, as demonstrated by unauthenticated read access to encryption keys. NOTE: a related support policy can be found in the www.oracle.com references attached to this CVE.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7459-h4w5-fw6x/GHSA-7459-h4w5-fw6x.json b/advisories/unreviewed/2022/05/GHSA-7459-h4w5-fw6x/GHSA-7459-h4w5-fw6x.json index 7783719b58a..e653e85bdc0 100644 --- a/advisories/unreviewed/2022/05/GHSA-7459-h4w5-fw6x/GHSA-7459-h4w5-fw6x.json +++ b/advisories/unreviewed/2022/05/GHSA-7459-h4w5-fw6x/GHSA-7459-h4w5-fw6x.json @@ -7,12 +7,8 @@ "CVE-2019-13022" ], "details": "Bond JetSelect (all versions) has an issue in the Java class (ENCtool.jar) and corresponding password generation algorithm (used to set initial passwords upon first installation). It XORs the plaintext into the 'encrypted' password that is then stored within the database. These steps are able to be trivially reversed, allowing for escalation of privilege within the JetSelect application through obtaining the passwords of JetSelect administrators. JetSelect administrators have the ability to modify and delete all networking configuration across a vessel, as well as altering network configuration of all managed network devices (switches, routers).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-75m5-c552-3jp8/GHSA-75m5-c552-3jp8.json b/advisories/unreviewed/2022/05/GHSA-75m5-c552-3jp8/GHSA-75m5-c552-3jp8.json index c54ddb65a52..acab86c633a 100644 --- a/advisories/unreviewed/2022/05/GHSA-75m5-c552-3jp8/GHSA-75m5-c552-3jp8.json +++ b/advisories/unreviewed/2022/05/GHSA-75m5-c552-3jp8/GHSA-75m5-c552-3jp8.json @@ -7,12 +7,8 @@ "CVE-2019-20802" ], "details": "An issue was discovered in the Readdle Documents app before 6.9.7 for iOS. The application's file-transfer web server improperly displays directory names, leading to Stored XSS, which may be used to steal a user's data. This requires user interaction because there is no known direct way for an attacker to create a crafted directory name on a victim's device. However, a crafted directory name can occur if a victim extracts a ZIP archive that was provided by an attacker.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-75wp-9wrr-h226/GHSA-75wp-9wrr-h226.json b/advisories/unreviewed/2022/05/GHSA-75wp-9wrr-h226/GHSA-75wp-9wrr-h226.json index c144ab89201..868808906fc 100644 --- a/advisories/unreviewed/2022/05/GHSA-75wp-9wrr-h226/GHSA-75wp-9wrr-h226.json +++ b/advisories/unreviewed/2022/05/GHSA-75wp-9wrr-h226/GHSA-75wp-9wrr-h226.json @@ -7,12 +7,8 @@ "CVE-2020-10971" ], "details": "An issue was discovered on Wavlink WL-WN579G3 M79X3.V5030.180719, WL-WN575A3 RPT75A3.V4300.180801, and WL-WN530HG4 M30HG4.V5030.191116 devices. A crafted POST request can be sent to adm.cgi that will result in the execution of the supplied command if there is an active session at the same time. The POST request itself is not validated to ensure it came from the active session.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7648-6xxf-429g/GHSA-7648-6xxf-429g.json b/advisories/unreviewed/2022/05/GHSA-7648-6xxf-429g/GHSA-7648-6xxf-429g.json index 13e9fc4abd6..039cf23f88f 100644 --- a/advisories/unreviewed/2022/05/GHSA-7648-6xxf-429g/GHSA-7648-6xxf-429g.json +++ b/advisories/unreviewed/2022/05/GHSA-7648-6xxf-429g/GHSA-7648-6xxf-429g.json @@ -7,12 +7,8 @@ "CVE-2020-1994" ], "details": "A predictable temporary file vulnerability in PAN-OS allows a local authenticated user with shell access to corrupt arbitrary system files affecting the integrity of the system. This issue affects: All versions of PAN-OS 7.1 and 8.0; PAN-OS 8.1 versions earlier than 8.1.13; PAN-OS 9.0 versions earlier than 9.0.7.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-78cq-mwm8-f6xp/GHSA-78cq-mwm8-f6xp.json b/advisories/unreviewed/2022/05/GHSA-78cq-mwm8-f6xp/GHSA-78cq-mwm8-f6xp.json index 05d03dfbaf8..f3b9039fa52 100644 --- a/advisories/unreviewed/2022/05/GHSA-78cq-mwm8-f6xp/GHSA-78cq-mwm8-f6xp.json +++ b/advisories/unreviewed/2022/05/GHSA-78cq-mwm8-f6xp/GHSA-78cq-mwm8-f6xp.json @@ -7,12 +7,8 @@ "CVE-2020-8033" ], "details": "Ruckus R500 3.4.2.0.384 devices allow XSS via the index.asp Device Name field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7f25-77mc-425h/GHSA-7f25-77mc-425h.json b/advisories/unreviewed/2022/05/GHSA-7f25-77mc-425h/GHSA-7f25-77mc-425h.json index f3d71fdc0fb..9615c7c3dc0 100644 --- a/advisories/unreviewed/2022/05/GHSA-7f25-77mc-425h/GHSA-7f25-77mc-425h.json +++ b/advisories/unreviewed/2022/05/GHSA-7f25-77mc-425h/GHSA-7f25-77mc-425h.json @@ -7,12 +7,8 @@ "CVE-2020-0105" ], "details": "In onKeyguardVisibilityChanged of key_store_service.cpp, there is a missing permission check. This could lead to local escalation of privilege, allowing apps to use keyguard-bound keys when the screen is locked, with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-9 Android-10Android ID: A-144285084", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7gcr-rp9v-fqcf/GHSA-7gcr-rp9v-fqcf.json b/advisories/unreviewed/2022/05/GHSA-7gcr-rp9v-fqcf/GHSA-7gcr-rp9v-fqcf.json index 346b098be3a..5c94920f13a 100644 --- a/advisories/unreviewed/2022/05/GHSA-7gcr-rp9v-fqcf/GHSA-7gcr-rp9v-fqcf.json +++ b/advisories/unreviewed/2022/05/GHSA-7gcr-rp9v-fqcf/GHSA-7gcr-rp9v-fqcf.json @@ -7,12 +7,8 @@ "CVE-2020-8035" ], "details": "The image view functionality in Horde Groupware Webmail Edition before 5.2.22 is affected by a stored Cross-Site Scripting (XSS) vulnerability via an SVG image upload containing a JavaScript payload. An attacker can obtain access to a victim's webmail account by making them visit a malicious URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7grw-2xfw-qjvm/GHSA-7grw-2xfw-qjvm.json b/advisories/unreviewed/2022/05/GHSA-7grw-2xfw-qjvm/GHSA-7grw-2xfw-qjvm.json index 4c5c168dab8..97c0743c76a 100644 --- a/advisories/unreviewed/2022/05/GHSA-7grw-2xfw-qjvm/GHSA-7grw-2xfw-qjvm.json +++ b/advisories/unreviewed/2022/05/GHSA-7grw-2xfw-qjvm/GHSA-7grw-2xfw-qjvm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7hhh-9v5f-7qv9/GHSA-7hhh-9v5f-7qv9.json b/advisories/unreviewed/2022/05/GHSA-7hhh-9v5f-7qv9/GHSA-7hhh-9v5f-7qv9.json index 025f71c01aa..be2730dd9eb 100644 --- a/advisories/unreviewed/2022/05/GHSA-7hhh-9v5f-7qv9/GHSA-7hhh-9v5f-7qv9.json +++ b/advisories/unreviewed/2022/05/GHSA-7hhh-9v5f-7qv9/GHSA-7hhh-9v5f-7qv9.json @@ -7,12 +7,8 @@ "CVE-2020-1145" ], "details": "An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory, allowing an attacker to retrieve information from a targeted system, aka 'Windows GDI Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-0963, CVE-2020-1141, CVE-2020-1179.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7jxw-rmvp-2543/GHSA-7jxw-rmvp-2543.json b/advisories/unreviewed/2022/05/GHSA-7jxw-rmvp-2543/GHSA-7jxw-rmvp-2543.json index 1be75a57907..caffe69ae7f 100644 --- a/advisories/unreviewed/2022/05/GHSA-7jxw-rmvp-2543/GHSA-7jxw-rmvp-2543.json +++ b/advisories/unreviewed/2022/05/GHSA-7jxw-rmvp-2543/GHSA-7jxw-rmvp-2543.json @@ -7,12 +7,8 @@ "CVE-2020-11551" ], "details": "An issue was discovered on NETGEAR Orbi Tri-Band Business WiFi Add-on Satellite (SRS60) AC3000 V2.5.1.106, Outdoor Satellite (RBS50Y) V2.5.1.106, and Pro Tri-Band Business WiFi Router (SRR60) AC3000 V2.5.1.106. The administrative SOAP interface allows an unauthenticated remote write of arbitrary Wi-Fi configuration data such as authentication details (e.g., the Web-admin password), network settings, DNS settings, system administration interface configuration, etc.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7mch-5p8p-x68j/GHSA-7mch-5p8p-x68j.json b/advisories/unreviewed/2022/05/GHSA-7mch-5p8p-x68j/GHSA-7mch-5p8p-x68j.json index e742b978279..9abc366d09b 100644 --- a/advisories/unreviewed/2022/05/GHSA-7mch-5p8p-x68j/GHSA-7mch-5p8p-x68j.json +++ b/advisories/unreviewed/2022/05/GHSA-7mch-5p8p-x68j/GHSA-7mch-5p8p-x68j.json @@ -7,12 +7,8 @@ "CVE-2020-6866" ], "details": "A ZTE product is impacted by a resource management error vulnerability. An attacker could exploit this vulnerability to cause a denial of service by issuing a specific command. This affects: ZXCTN 6500 version V2.10.00R3B87.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7mrg-rx92-2rfc/GHSA-7mrg-rx92-2rfc.json b/advisories/unreviewed/2022/05/GHSA-7mrg-rx92-2rfc/GHSA-7mrg-rx92-2rfc.json index 43baca922f1..bb6d41a74f1 100644 --- a/advisories/unreviewed/2022/05/GHSA-7mrg-rx92-2rfc/GHSA-7mrg-rx92-2rfc.json +++ b/advisories/unreviewed/2022/05/GHSA-7mrg-rx92-2rfc/GHSA-7mrg-rx92-2rfc.json @@ -7,12 +7,8 @@ "CVE-2019-19169" ], "details": "Dext5.ocx ActiveX 5.0.0.116 and eariler versions contain a vulnerability, which could allow remote attacker to download arbitrary file by setting the arguments to the activex method. This can be leveraged for code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7mv4-3q74-r9q2/GHSA-7mv4-3q74-r9q2.json b/advisories/unreviewed/2022/05/GHSA-7mv4-3q74-r9q2/GHSA-7mv4-3q74-r9q2.json index 9e1de6b387a..e31ed3912fa 100644 --- a/advisories/unreviewed/2022/05/GHSA-7mv4-3q74-r9q2/GHSA-7mv4-3q74-r9q2.json +++ b/advisories/unreviewed/2022/05/GHSA-7mv4-3q74-r9q2/GHSA-7mv4-3q74-r9q2.json @@ -7,12 +7,8 @@ "CVE-2018-10756" ], "details": "Use-after-free in libtransmission/variant.c in Transmission before 3.00 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted torrent file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7p5p-7qq5-cc86/GHSA-7p5p-7qq5-cc86.json b/advisories/unreviewed/2022/05/GHSA-7p5p-7qq5-cc86/GHSA-7p5p-7qq5-cc86.json index a76c80d7283..40fb984cebe 100644 --- a/advisories/unreviewed/2022/05/GHSA-7p5p-7qq5-cc86/GHSA-7p5p-7qq5-cc86.json +++ b/advisories/unreviewed/2022/05/GHSA-7p5p-7qq5-cc86/GHSA-7p5p-7qq5-cc86.json @@ -7,12 +7,8 @@ "CVE-2018-20225" ], "details": "An issue was discovered in pip (all versions) because it installs the version with the highest version number, even if the user had intended to obtain a private package from a private index. This only affects use of the --extra-index-url option, and exploitation requires that the package does not already exist in the public index (and thus the attacker can put the package there with an arbitrary version number).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7pq2-x2gr-qh8x/GHSA-7pq2-x2gr-qh8x.json b/advisories/unreviewed/2022/05/GHSA-7pq2-x2gr-qh8x/GHSA-7pq2-x2gr-qh8x.json index 7b71009a35d..8c5eeffa546 100644 --- a/advisories/unreviewed/2022/05/GHSA-7pq2-x2gr-qh8x/GHSA-7pq2-x2gr-qh8x.json +++ b/advisories/unreviewed/2022/05/GHSA-7pq2-x2gr-qh8x/GHSA-7pq2-x2gr-qh8x.json @@ -7,12 +7,8 @@ "CVE-2020-5745" ], "details": "Cross-site request forgery in TCExam 14.2.2 allows a remote attacker to perform sensitive application actions by tricking legitimate users into clicking a crafted link.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7pwf-23g4-vh4h/GHSA-7pwf-23g4-vh4h.json b/advisories/unreviewed/2022/05/GHSA-7pwf-23g4-vh4h/GHSA-7pwf-23g4-vh4h.json index 7a5af5c100f..a562317b15c 100644 --- a/advisories/unreviewed/2022/05/GHSA-7pwf-23g4-vh4h/GHSA-7pwf-23g4-vh4h.json +++ b/advisories/unreviewed/2022/05/GHSA-7pwf-23g4-vh4h/GHSA-7pwf-23g4-vh4h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7q2h-j6h8-gpm7/GHSA-7q2h-j6h8-gpm7.json b/advisories/unreviewed/2022/05/GHSA-7q2h-j6h8-gpm7/GHSA-7q2h-j6h8-gpm7.json index ac5ab73e596..4ff55da452e 100644 --- a/advisories/unreviewed/2022/05/GHSA-7q2h-j6h8-gpm7/GHSA-7q2h-j6h8-gpm7.json +++ b/advisories/unreviewed/2022/05/GHSA-7q2h-j6h8-gpm7/GHSA-7q2h-j6h8-gpm7.json @@ -7,12 +7,8 @@ "CVE-2020-13393" ], "details": "An issue was discovered on Tenda AC6 V1.0 V15.03.05.19_multi_TD01, AC9 V1.0 V15.03.05.19(6318)_CN, AC9 V3.0 V15.03.06.42_multi, AC15 V1.0 V15.03.05.19_multi_TD01, and AC18 V15.03.05.19(6318_)_CN devices. There is a buffer overflow vulnerability in the router's web server -- httpd. While processing the /goform/saveParentControlInfo deviceId and time parameters for a POST request, a value is directly used in a strcpy to a local variable placed on the stack, which overwrites the return address of a function. An attacker can construct a payload to carry out arbitrary code execution attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7q4v-7cxx-h42j/GHSA-7q4v-7cxx-h42j.json b/advisories/unreviewed/2022/05/GHSA-7q4v-7cxx-h42j/GHSA-7q4v-7cxx-h42j.json index 4c7cb1a8282..239524a3b17 100644 --- a/advisories/unreviewed/2022/05/GHSA-7q4v-7cxx-h42j/GHSA-7q4v-7cxx-h42j.json +++ b/advisories/unreviewed/2022/05/GHSA-7q4v-7cxx-h42j/GHSA-7q4v-7cxx-h42j.json @@ -7,12 +7,8 @@ "CVE-2020-5335" ], "details": "RSA Archer, versions prior to 6.7 P2 (6.7.0.2), contain a cross-site request forgery vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability by tricking a victim application user to send arbitrary requests to the vulnerable application to perform server operations with the privileges of the authenticated victim user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7qv8-fcr4-9523/GHSA-7qv8-fcr4-9523.json b/advisories/unreviewed/2022/05/GHSA-7qv8-fcr4-9523/GHSA-7qv8-fcr4-9523.json index dbe1c9605b6..4b50d39fc46 100644 --- a/advisories/unreviewed/2022/05/GHSA-7qv8-fcr4-9523/GHSA-7qv8-fcr4-9523.json +++ b/advisories/unreviewed/2022/05/GHSA-7qv8-fcr4-9523/GHSA-7qv8-fcr4-9523.json @@ -7,12 +7,8 @@ "CVE-2020-3280" ], "details": "A vulnerability in the Java Remote Management Interface of Cisco Unified Contact Center Express (Unified CCX) could allow an unauthenticated, remote attacker to execute arbitrary code on an affected device. The vulnerability is due to insecure deserialization of user-supplied content by the affected software. An attacker could exploit this vulnerability by sending a malicious serialized Java object to a specific listener on an affected system. A successful exploit could allow the attacker to execute arbitrary code as the root user on an affected device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7rmq-9jg5-p74g/GHSA-7rmq-9jg5-p74g.json b/advisories/unreviewed/2022/05/GHSA-7rmq-9jg5-p74g/GHSA-7rmq-9jg5-p74g.json index d7beac98b6c..7848f63ab3b 100644 --- a/advisories/unreviewed/2022/05/GHSA-7rmq-9jg5-p74g/GHSA-7rmq-9jg5-p74g.json +++ b/advisories/unreviewed/2022/05/GHSA-7rmq-9jg5-p74g/GHSA-7rmq-9jg5-p74g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -99,9 +97,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7rph-qx8r-r9gw/GHSA-7rph-qx8r-r9gw.json b/advisories/unreviewed/2022/05/GHSA-7rph-qx8r-r9gw/GHSA-7rph-qx8r-r9gw.json index 39723807327..da41bc09cf2 100644 --- a/advisories/unreviewed/2022/05/GHSA-7rph-qx8r-r9gw/GHSA-7rph-qx8r-r9gw.json +++ b/advisories/unreviewed/2022/05/GHSA-7rph-qx8r-r9gw/GHSA-7rph-qx8r-r9gw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -67,9 +65,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7w4p-5m4j-2jfc/GHSA-7w4p-5m4j-2jfc.json b/advisories/unreviewed/2022/05/GHSA-7w4p-5m4j-2jfc/GHSA-7w4p-5m4j-2jfc.json index 07a892b9951..c4ca9256e29 100644 --- a/advisories/unreviewed/2022/05/GHSA-7w4p-5m4j-2jfc/GHSA-7w4p-5m4j-2jfc.json +++ b/advisories/unreviewed/2022/05/GHSA-7w4p-5m4j-2jfc/GHSA-7w4p-5m4j-2jfc.json @@ -7,12 +7,8 @@ "CVE-2020-10634" ], "details": "SAE IT-systems FW-50 Remote Telemetry Unit (RTU). A specially crafted request could allow an attacker to view the file structure of the affected device and access files that should be inaccessible.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7w73-r2r4-59x8/GHSA-7w73-r2r4-59x8.json b/advisories/unreviewed/2022/05/GHSA-7w73-r2r4-59x8/GHSA-7w73-r2r4-59x8.json index 96566a27f29..af733918f67 100644 --- a/advisories/unreviewed/2022/05/GHSA-7w73-r2r4-59x8/GHSA-7w73-r2r4-59x8.json +++ b/advisories/unreviewed/2022/05/GHSA-7w73-r2r4-59x8/GHSA-7w73-r2r4-59x8.json @@ -7,12 +7,8 @@ "CVE-2020-12683" ], "details": "Katyshop2 before 2.12 has multiple stored XSS issues.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7x5p-w7r4-hq6m/GHSA-7x5p-w7r4-hq6m.json b/advisories/unreviewed/2022/05/GHSA-7x5p-w7r4-hq6m/GHSA-7x5p-w7r4-hq6m.json index b01b8e67690..253273d70ed 100644 --- a/advisories/unreviewed/2022/05/GHSA-7x5p-w7r4-hq6m/GHSA-7x5p-w7r4-hq6m.json +++ b/advisories/unreviewed/2022/05/GHSA-7x5p-w7r4-hq6m/GHSA-7x5p-w7r4-hq6m.json @@ -7,12 +7,8 @@ "CVE-2019-20795" ], "details": "iproute2 before 5.1.0 has a use-after-free in get_netnsid_from_name in ip/ipnetns.c.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8272-q9p2-v9j7/GHSA-8272-q9p2-v9j7.json b/advisories/unreviewed/2022/05/GHSA-8272-q9p2-v9j7/GHSA-8272-q9p2-v9j7.json index 20765bf86a1..0927ff190f9 100644 --- a/advisories/unreviewed/2022/05/GHSA-8272-q9p2-v9j7/GHSA-8272-q9p2-v9j7.json +++ b/advisories/unreviewed/2022/05/GHSA-8272-q9p2-v9j7/GHSA-8272-q9p2-v9j7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -75,9 +73,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-838g-g793-hh7g/GHSA-838g-g793-hh7g.json b/advisories/unreviewed/2022/05/GHSA-838g-g793-hh7g/GHSA-838g-g793-hh7g.json index dfb180556a0..2e1a405167f 100644 --- a/advisories/unreviewed/2022/05/GHSA-838g-g793-hh7g/GHSA-838g-g793-hh7g.json +++ b/advisories/unreviewed/2022/05/GHSA-838g-g793-hh7g/GHSA-838g-g793-hh7g.json @@ -7,12 +7,8 @@ "CVE-2020-1897" ], "details": "A use-after-free is possible due to an error in lifetime management in the request adaptor when a malicious client invokes request error handling in a specific sequence. This issue affects versions of proxygen prior to v2020.05.18.00.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8458-39qw-vw27/GHSA-8458-39qw-vw27.json b/advisories/unreviewed/2022/05/GHSA-8458-39qw-vw27/GHSA-8458-39qw-vw27.json index 689758146f3..ebceae51656 100644 --- a/advisories/unreviewed/2022/05/GHSA-8458-39qw-vw27/GHSA-8458-39qw-vw27.json +++ b/advisories/unreviewed/2022/05/GHSA-8458-39qw-vw27/GHSA-8458-39qw-vw27.json @@ -7,12 +7,8 @@ "CVE-2020-13121" ], "details": "Submitty through 20.04.01 has an open redirect via authentication/login?old= during an invalid login attempt.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-849w-wv4j-9jqv/GHSA-849w-wv4j-9jqv.json b/advisories/unreviewed/2022/05/GHSA-849w-wv4j-9jqv/GHSA-849w-wv4j-9jqv.json index b5ca566ea3b..4a4a0dbb7c3 100644 --- a/advisories/unreviewed/2022/05/GHSA-849w-wv4j-9jqv/GHSA-849w-wv4j-9jqv.json +++ b/advisories/unreviewed/2022/05/GHSA-849w-wv4j-9jqv/GHSA-849w-wv4j-9jqv.json @@ -7,12 +7,8 @@ "CVE-2020-0110" ], "details": "In psi_write of psi.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-148159562References: Upstream kernel", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-85jg-q38h-8h97/GHSA-85jg-q38h-8h97.json b/advisories/unreviewed/2022/05/GHSA-85jg-q38h-8h97/GHSA-85jg-q38h-8h97.json index ad25e435dd7..6ac425f83fc 100644 --- a/advisories/unreviewed/2022/05/GHSA-85jg-q38h-8h97/GHSA-85jg-q38h-8h97.json +++ b/advisories/unreviewed/2022/05/GHSA-85jg-q38h-8h97/GHSA-85jg-q38h-8h97.json @@ -7,12 +7,8 @@ "CVE-2020-0220" ], "details": "In crus_afe_callback of msm-cirrus-playback.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-139739561", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-862c-64g7-8p44/GHSA-862c-64g7-8p44.json b/advisories/unreviewed/2022/05/GHSA-862c-64g7-8p44/GHSA-862c-64g7-8p44.json index 166f722d7e4..22e075c6757 100644 --- a/advisories/unreviewed/2022/05/GHSA-862c-64g7-8p44/GHSA-862c-64g7-8p44.json +++ b/advisories/unreviewed/2022/05/GHSA-862c-64g7-8p44/GHSA-862c-64g7-8p44.json @@ -7,12 +7,8 @@ "CVE-2020-2010" ], "details": "An OS command injection vulnerability in PAN-OS management interface allows an authenticated administrator to execute arbitrary OS commands with root privileges. This issue affects: All versions of PAN-OS 7.1 and 8.0; PAN-OS 8.1 versions earlier than 8.1.14; PAN-OS 9.0 versions earlier than 9.0.7.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-864v-vr6f-7f4j/GHSA-864v-vr6f-7f4j.json b/advisories/unreviewed/2022/05/GHSA-864v-vr6f-7f4j/GHSA-864v-vr6f-7f4j.json index 8fc83d4907e..7a00eaee4b3 100644 --- a/advisories/unreviewed/2022/05/GHSA-864v-vr6f-7f4j/GHSA-864v-vr6f-7f4j.json +++ b/advisories/unreviewed/2022/05/GHSA-864v-vr6f-7f4j/GHSA-864v-vr6f-7f4j.json @@ -7,12 +7,8 @@ "CVE-2020-4263" ], "details": "IBM i2 Intelligent Analyis Platform 9.2.1 could allow a local attacker to execute arbitrary code on the system, caused by a memory corruption. By persuading a victim to open a specially-crafted file, an attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 175646.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-86cc-wh6w-cw2h/GHSA-86cc-wh6w-cw2h.json b/advisories/unreviewed/2022/05/GHSA-86cc-wh6w-cw2h/GHSA-86cc-wh6w-cw2h.json index d10d1e8b42c..9a1d0e4755e 100644 --- a/advisories/unreviewed/2022/05/GHSA-86cc-wh6w-cw2h/GHSA-86cc-wh6w-cw2h.json +++ b/advisories/unreviewed/2022/05/GHSA-86cc-wh6w-cw2h/GHSA-86cc-wh6w-cw2h.json @@ -7,12 +7,8 @@ "CVE-2020-4430" ], "details": "IBM Data Risk Manager 2.0.1, 2.0.2, 2.0.3, 2.0.4, 2.0.5, and 2.0.6 could allow a remote authenticated attacker to traverse directories on the system. An attacker could send a specially-crafted URL request to download arbitrary files from the system. IBM X-Force ID: 180535.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-86wp-7cjf-fh2f/GHSA-86wp-7cjf-fh2f.json b/advisories/unreviewed/2022/05/GHSA-86wp-7cjf-fh2f/GHSA-86wp-7cjf-fh2f.json index 81636dc69e7..9fcbea73a57 100644 --- a/advisories/unreviewed/2022/05/GHSA-86wp-7cjf-fh2f/GHSA-86wp-7cjf-fh2f.json +++ b/advisories/unreviewed/2022/05/GHSA-86wp-7cjf-fh2f/GHSA-86wp-7cjf-fh2f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-882h-r829-x8q5/GHSA-882h-r829-x8q5.json b/advisories/unreviewed/2022/05/GHSA-882h-r829-x8q5/GHSA-882h-r829-x8q5.json index 49384e44564..59cae4bbf19 100644 --- a/advisories/unreviewed/2022/05/GHSA-882h-r829-x8q5/GHSA-882h-r829-x8q5.json +++ b/advisories/unreviewed/2022/05/GHSA-882h-r829-x8q5/GHSA-882h-r829-x8q5.json @@ -7,12 +7,8 @@ "CVE-2020-7287" ], "details": "Privilege Escalation vulnerability in McAfee Exploit Detection and Response (EDR) for Linux prior to 3.1.0 Hotfix 1 allows a malicious script or program to perform functions that the local executing user has not been granted access to.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-88cp-7c7w-6vx6/GHSA-88cp-7c7w-6vx6.json b/advisories/unreviewed/2022/05/GHSA-88cp-7c7w-6vx6/GHSA-88cp-7c7w-6vx6.json index e257a1ed6b6..1b8eec7a5c3 100644 --- a/advisories/unreviewed/2022/05/GHSA-88cp-7c7w-6vx6/GHSA-88cp-7c7w-6vx6.json +++ b/advisories/unreviewed/2022/05/GHSA-88cp-7c7w-6vx6/GHSA-88cp-7c7w-6vx6.json @@ -7,12 +7,8 @@ "CVE-2020-12679" ], "details": "A reflected cross-site scripting (XSS) vulnerability in the Mitel ShoreTel Conference Web Application 19.50.1000.0 before MiVoice Connect 18.7 SP2 allows remote attackers to inject arbitrary JavaScript and HTML via the PATH_INFO to home.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-89fw-2hfj-ppp2/GHSA-89fw-2hfj-ppp2.json b/advisories/unreviewed/2022/05/GHSA-89fw-2hfj-ppp2/GHSA-89fw-2hfj-ppp2.json index fd7c68c32ce..fefbb714be9 100644 --- a/advisories/unreviewed/2022/05/GHSA-89fw-2hfj-ppp2/GHSA-89fw-2hfj-ppp2.json +++ b/advisories/unreviewed/2022/05/GHSA-89fw-2hfj-ppp2/GHSA-89fw-2hfj-ppp2.json @@ -7,12 +7,8 @@ "CVE-2020-10630" ], "details": "SAE IT-systems FW-50 Remote Telemetry Unit (RTU). The software does not neutralize or incorrectly neutralizes user-controllable input before it is placed in the output used as a webpage that is served to other users.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8c4p-575f-fq4h/GHSA-8c4p-575f-fq4h.json b/advisories/unreviewed/2022/05/GHSA-8c4p-575f-fq4h/GHSA-8c4p-575f-fq4h.json index 0c0e93ff846..a871db599f9 100644 --- a/advisories/unreviewed/2022/05/GHSA-8c4p-575f-fq4h/GHSA-8c4p-575f-fq4h.json +++ b/advisories/unreviewed/2022/05/GHSA-8c4p-575f-fq4h/GHSA-8c4p-575f-fq4h.json @@ -7,12 +7,8 @@ "CVE-2020-13413" ], "details": "An issue was discovered in Aviatrix Controller before 5.4.1204. There is a Observable Response Discrepancy from the API, which makes it easier to perform user enumeration via brute force.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8cq7-pp3f-m9m4/GHSA-8cq7-pp3f-m9m4.json b/advisories/unreviewed/2022/05/GHSA-8cq7-pp3f-m9m4/GHSA-8cq7-pp3f-m9m4.json index b1e57384667..13eb506d4c6 100644 --- a/advisories/unreviewed/2022/05/GHSA-8cq7-pp3f-m9m4/GHSA-8cq7-pp3f-m9m4.json +++ b/advisories/unreviewed/2022/05/GHSA-8cq7-pp3f-m9m4/GHSA-8cq7-pp3f-m9m4.json @@ -7,12 +7,8 @@ "CVE-2019-4478" ], "details": "IBM Maximo Asset Management 7.6.0, and 7.6.1 could allow an authenticated user to obtain highly sensitive information that they should not normally have access to. IBM X-Force ID: 163998.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8cw6-v85x-2m9p/GHSA-8cw6-v85x-2m9p.json b/advisories/unreviewed/2022/05/GHSA-8cw6-v85x-2m9p/GHSA-8cw6-v85x-2m9p.json index 1dcddc9e149..80a1cd00e2d 100644 --- a/advisories/unreviewed/2022/05/GHSA-8cw6-v85x-2m9p/GHSA-8cw6-v85x-2m9p.json +++ b/advisories/unreviewed/2022/05/GHSA-8cw6-v85x-2m9p/GHSA-8cw6-v85x-2m9p.json @@ -7,12 +7,8 @@ "CVE-2020-4365" ], "details": "IBM WebSphere Application Server 8.5 is vulnerable to server-side request forgery. By sending a specially crafted request, a remote authenticated attacker could exploit this vulnerability to obtain sensitive data. IBM X-Force ID: 178964.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8fc5-c477-8j2w/GHSA-8fc5-c477-8j2w.json b/advisories/unreviewed/2022/05/GHSA-8fc5-c477-8j2w/GHSA-8fc5-c477-8j2w.json index 9e6668a55e6..3c1f75762f8 100644 --- a/advisories/unreviewed/2022/05/GHSA-8fc5-c477-8j2w/GHSA-8fc5-c477-8j2w.json +++ b/advisories/unreviewed/2022/05/GHSA-8fc5-c477-8j2w/GHSA-8fc5-c477-8j2w.json @@ -7,12 +7,8 @@ "CVE-2020-9314" ], "details": "** PRODUCT NOT SUPPORTED WHEN ASSIGNED ** Oracle iPlanet Web Server 7.0.x allows image injection in the Administration console via the productNameSrc parameter to an admingui URI. This issue exists because of an incomplete fix for CVE-2012-0516. NOTE: a related support policy can be found in the www.oracle.com references attached to this CVE.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8gmw-3fcx-gm64/GHSA-8gmw-3fcx-gm64.json b/advisories/unreviewed/2022/05/GHSA-8gmw-3fcx-gm64/GHSA-8gmw-3fcx-gm64.json index 38fc309c6a4..e6868aff167 100644 --- a/advisories/unreviewed/2022/05/GHSA-8gmw-3fcx-gm64/GHSA-8gmw-3fcx-gm64.json +++ b/advisories/unreviewed/2022/05/GHSA-8gmw-3fcx-gm64/GHSA-8gmw-3fcx-gm64.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8h8f-m8mg-qwg8/GHSA-8h8f-m8mg-qwg8.json b/advisories/unreviewed/2022/05/GHSA-8h8f-m8mg-qwg8/GHSA-8h8f-m8mg-qwg8.json index db31604687e..45ab607fe7f 100644 --- a/advisories/unreviewed/2022/05/GHSA-8h8f-m8mg-qwg8/GHSA-8h8f-m8mg-qwg8.json +++ b/advisories/unreviewed/2022/05/GHSA-8h8f-m8mg-qwg8/GHSA-8h8f-m8mg-qwg8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8hvv-4qf7-wmrv/GHSA-8hvv-4qf7-wmrv.json b/advisories/unreviewed/2022/05/GHSA-8hvv-4qf7-wmrv/GHSA-8hvv-4qf7-wmrv.json index a7be69ce2f5..38bb2ca86ff 100644 --- a/advisories/unreviewed/2022/05/GHSA-8hvv-4qf7-wmrv/GHSA-8hvv-4qf7-wmrv.json +++ b/advisories/unreviewed/2022/05/GHSA-8hvv-4qf7-wmrv/GHSA-8hvv-4qf7-wmrv.json @@ -7,12 +7,8 @@ "CVE-2020-1137" ], "details": "An elevation of privilege vulnerability exists in the way the Windows Push Notification Service handles objects in memory, aka 'Windows Push Notification Service Elevation of Privilege Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8mc8-gh78-5fvq/GHSA-8mc8-gh78-5fvq.json b/advisories/unreviewed/2022/05/GHSA-8mc8-gh78-5fvq/GHSA-8mc8-gh78-5fvq.json index 086b2848e3f..5c6990e0edc 100644 --- a/advisories/unreviewed/2022/05/GHSA-8mc8-gh78-5fvq/GHSA-8mc8-gh78-5fvq.json +++ b/advisories/unreviewed/2022/05/GHSA-8mc8-gh78-5fvq/GHSA-8mc8-gh78-5fvq.json @@ -7,12 +7,8 @@ "CVE-2020-3178" ], "details": "Multiple vulnerabilities in the web-based GUI of Cisco AsyncOS Software for Cisco Content Security Management Appliance (SMA) could allow an unauthenticated, remote attacker to redirect a user to a malicious web page. The vulnerabilities are due to improper input validation of the parameters of an HTTP request. An attacker could exploit these vulnerabilities by intercepting an HTTP request and modifying it to redirect a user to a specific malicious URL. A successful exploit could allow the attacker to redirect a user to a malicious web page or to obtain sensitive browser-based information. This type of attack is commonly referred to as an open redirect attack and is used in phishing attacks to get users to unknowingly visit malicious sites.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8mjx-247g-8657/GHSA-8mjx-247g-8657.json b/advisories/unreviewed/2022/05/GHSA-8mjx-247g-8657/GHSA-8mjx-247g-8657.json index ec4b647fdbc..a3fc3bed0fb 100644 --- a/advisories/unreviewed/2022/05/GHSA-8mjx-247g-8657/GHSA-8mjx-247g-8657.json +++ b/advisories/unreviewed/2022/05/GHSA-8mjx-247g-8657/GHSA-8mjx-247g-8657.json @@ -7,12 +7,8 @@ "CVE-2020-12785" ], "details": "cPanel before 86.0.14 allows attackers to obtain access to the current working directory via the account backup feature (SEC-540).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8qq4-4mf9-45qp/GHSA-8qq4-4mf9-45qp.json b/advisories/unreviewed/2022/05/GHSA-8qq4-4mf9-45qp/GHSA-8qq4-4mf9-45qp.json index e743334bb79..20c01838ac4 100644 --- a/advisories/unreviewed/2022/05/GHSA-8qq4-4mf9-45qp/GHSA-8qq4-4mf9-45qp.json +++ b/advisories/unreviewed/2022/05/GHSA-8qq4-4mf9-45qp/GHSA-8qq4-4mf9-45qp.json @@ -7,12 +7,8 @@ "CVE-2020-12737" ], "details": "An issue was discovered in Maxum Rumpus before 8.2.12 on macOS. Authenticated users can perform a path traversal using double escaped characters, enabling read access to arbitrary files on the server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8qqf-qhmm-w3cm/GHSA-8qqf-qhmm-w3cm.json b/advisories/unreviewed/2022/05/GHSA-8qqf-qhmm-w3cm/GHSA-8qqf-qhmm-w3cm.json index b26de8a6285..5bff0125794 100644 --- a/advisories/unreviewed/2022/05/GHSA-8qqf-qhmm-w3cm/GHSA-8qqf-qhmm-w3cm.json +++ b/advisories/unreviewed/2022/05/GHSA-8qqf-qhmm-w3cm/GHSA-8qqf-qhmm-w3cm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8w2r-w7pw-v78c/GHSA-8w2r-w7pw-v78c.json b/advisories/unreviewed/2022/05/GHSA-8w2r-w7pw-v78c/GHSA-8w2r-w7pw-v78c.json index 7dbb43616f0..b7456821f71 100644 --- a/advisories/unreviewed/2022/05/GHSA-8w2r-w7pw-v78c/GHSA-8w2r-w7pw-v78c.json +++ b/advisories/unreviewed/2022/05/GHSA-8w2r-w7pw-v78c/GHSA-8w2r-w7pw-v78c.json @@ -7,12 +7,8 @@ "CVE-2020-13415" ], "details": "An issue was discovered in Aviatrix Controller through 5.1. An attacker with any signed SAML assertion from the Identity Provider can establish a connection (even if that SAML assertion has expired or is from a user who is not authorized to access Aviatrix), aka XML Signature Wrapping.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8wh6-v49g-v744/GHSA-8wh6-v49g-v744.json b/advisories/unreviewed/2022/05/GHSA-8wh6-v49g-v744/GHSA-8wh6-v49g-v744.json index 25fc26aa8b8..24d92382659 100644 --- a/advisories/unreviewed/2022/05/GHSA-8wh6-v49g-v744/GHSA-8wh6-v49g-v744.json +++ b/advisories/unreviewed/2022/05/GHSA-8wh6-v49g-v744/GHSA-8wh6-v49g-v744.json @@ -7,12 +7,8 @@ "CVE-2020-6652" ], "details": "Incorrect Privilege Assignment vulnerability in Eaton's Intelligent Power Manager (IPM) v1.67 & prior allow non-admin users to upload the system configuration files by sending specially crafted requests. This can result in non-admin users manipulating the system configurations via uploading the configurations with incorrect parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8x99-rqcq-6fvg/GHSA-8x99-rqcq-6fvg.json b/advisories/unreviewed/2022/05/GHSA-8x99-rqcq-6fvg/GHSA-8x99-rqcq-6fvg.json index 8b99f348dcf..c540db3125e 100644 --- a/advisories/unreviewed/2022/05/GHSA-8x99-rqcq-6fvg/GHSA-8x99-rqcq-6fvg.json +++ b/advisories/unreviewed/2022/05/GHSA-8x99-rqcq-6fvg/GHSA-8x99-rqcq-6fvg.json @@ -7,12 +7,8 @@ "CVE-2015-7946" ], "details": "Information Exposure vulnerability in Unity8 as used on the Ubuntu phone and possibly also in Unity8 shipped elsewhere. This allows an attacker to enable the MTP service by opening the emergency dialer. Fixed in 8.11+16.04.20160111.1-0ubuntu1 and 8.11+15.04.20160122-0ubuntu1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-939r-7q8p-37qg/GHSA-939r-7q8p-37qg.json b/advisories/unreviewed/2022/05/GHSA-939r-7q8p-37qg/GHSA-939r-7q8p-37qg.json index fafb33e661f..4d7ccb999b7 100644 --- a/advisories/unreviewed/2022/05/GHSA-939r-7q8p-37qg/GHSA-939r-7q8p-37qg.json +++ b/advisories/unreviewed/2022/05/GHSA-939r-7q8p-37qg/GHSA-939r-7q8p-37qg.json @@ -7,12 +7,8 @@ "CVE-2020-12042" ], "details": "Opto 22 SoftPAC Project Version 9.6 and prior. Paths specified within the zip files used to update the SoftPAC firmware are not sanitized. As a result, an attacker with user privileges can gain arbitrary file write access with system access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-95wm-mm55-cxhx/GHSA-95wm-mm55-cxhx.json b/advisories/unreviewed/2022/05/GHSA-95wm-mm55-cxhx/GHSA-95wm-mm55-cxhx.json index 83be45a513d..1ce6a0c6d60 100644 --- a/advisories/unreviewed/2022/05/GHSA-95wm-mm55-cxhx/GHSA-95wm-mm55-cxhx.json +++ b/advisories/unreviewed/2022/05/GHSA-95wm-mm55-cxhx/GHSA-95wm-mm55-cxhx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-97vq-mgmh-2r8q/GHSA-97vq-mgmh-2r8q.json b/advisories/unreviewed/2022/05/GHSA-97vq-mgmh-2r8q/GHSA-97vq-mgmh-2r8q.json index a6a5af01aee..060719efbe2 100644 --- a/advisories/unreviewed/2022/05/GHSA-97vq-mgmh-2r8q/GHSA-97vq-mgmh-2r8q.json +++ b/advisories/unreviewed/2022/05/GHSA-97vq-mgmh-2r8q/GHSA-97vq-mgmh-2r8q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-987m-f965-83w4/GHSA-987m-f965-83w4.json b/advisories/unreviewed/2022/05/GHSA-987m-f965-83w4/GHSA-987m-f965-83w4.json index f4132378f49..5564eecf598 100644 --- a/advisories/unreviewed/2022/05/GHSA-987m-f965-83w4/GHSA-987m-f965-83w4.json +++ b/advisories/unreviewed/2022/05/GHSA-987m-f965-83w4/GHSA-987m-f965-83w4.json @@ -7,12 +7,8 @@ "CVE-2020-12748" ], "details": "An issue was discovered on Samsung mobile devices with Q(10.0) software. Attackers can bypass the locked-state protection mechanism and designate a different preferred SIM card. The Samsung ID is SVE-2020-16594 (May 2020).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-995g-c6vj-4959/GHSA-995g-c6vj-4959.json b/advisories/unreviewed/2022/05/GHSA-995g-c6vj-4959/GHSA-995g-c6vj-4959.json index 49acd1e14ef..80d3f5d844c 100644 --- a/advisories/unreviewed/2022/05/GHSA-995g-c6vj-4959/GHSA-995g-c6vj-4959.json +++ b/advisories/unreviewed/2022/05/GHSA-995g-c6vj-4959/GHSA-995g-c6vj-4959.json @@ -7,12 +7,8 @@ "CVE-2020-12765" ], "details": "Solis Miolo 2.0 allows index.php?module=install&action=view&item= Directory Traversal.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9997-3397-vj9g/GHSA-9997-3397-vj9g.json b/advisories/unreviewed/2022/05/GHSA-9997-3397-vj9g/GHSA-9997-3397-vj9g.json index b80425865da..c64f04a2cd9 100644 --- a/advisories/unreviewed/2022/05/GHSA-9997-3397-vj9g/GHSA-9997-3397-vj9g.json +++ b/advisories/unreviewed/2022/05/GHSA-9997-3397-vj9g/GHSA-9997-3397-vj9g.json @@ -7,12 +7,8 @@ "CVE-2020-0098" ], "details": "In navigateUpToLocked of ActivityStack.java, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-8.0 Android-8.1 Android-9Android ID: A-144285917", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9ch6-gr3w-j9vf/GHSA-9ch6-gr3w-j9vf.json b/advisories/unreviewed/2022/05/GHSA-9ch6-gr3w-j9vf/GHSA-9ch6-gr3w-j9vf.json index 6ac17b596cf..a9c4c823b02 100644 --- a/advisories/unreviewed/2022/05/GHSA-9ch6-gr3w-j9vf/GHSA-9ch6-gr3w-j9vf.json +++ b/advisories/unreviewed/2022/05/GHSA-9ch6-gr3w-j9vf/GHSA-9ch6-gr3w-j9vf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9cxv-jvg2-hxq8/GHSA-9cxv-jvg2-hxq8.json b/advisories/unreviewed/2022/05/GHSA-9cxv-jvg2-hxq8/GHSA-9cxv-jvg2-hxq8.json index 14be23eae64..da4851b34c5 100644 --- a/advisories/unreviewed/2022/05/GHSA-9cxv-jvg2-hxq8/GHSA-9cxv-jvg2-hxq8.json +++ b/advisories/unreviewed/2022/05/GHSA-9cxv-jvg2-hxq8/GHSA-9cxv-jvg2-hxq8.json @@ -7,12 +7,8 @@ "CVE-2019-19514" ], "details": "Ayision Ays-WR01 v28K.RPT.20161224 devices allow stored XSS in basic repeater settings via an SSID.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9g78-xvpc-6fhg/GHSA-9g78-xvpc-6fhg.json b/advisories/unreviewed/2022/05/GHSA-9g78-xvpc-6fhg/GHSA-9g78-xvpc-6fhg.json index 5970f3732bb..1a2c8c71c3e 100644 --- a/advisories/unreviewed/2022/05/GHSA-9g78-xvpc-6fhg/GHSA-9g78-xvpc-6fhg.json +++ b/advisories/unreviewed/2022/05/GHSA-9g78-xvpc-6fhg/GHSA-9g78-xvpc-6fhg.json @@ -7,12 +7,8 @@ "CVE-2020-8792" ], "details": "The OKLOK (3.1.1) mobile companion app for Fingerprint Bluetooth Padlock FB50 (2.3) has an information-exposure issue. In the mobile app, an attempt to add an already-bound lock by its barcode reveals the email address of the account to which the lock is bound, as well as the name of the lock. Valid barcode inputs can be easily guessed because barcode strings follow a predictable pattern. Correctly guessed valid barcode inputs entered through the app interface disclose arbitrary users' email addresses and lock names.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9gh7-v5wg-4f3q/GHSA-9gh7-v5wg-4f3q.json b/advisories/unreviewed/2022/05/GHSA-9gh7-v5wg-4f3q/GHSA-9gh7-v5wg-4f3q.json index 2e78615efbc..664c076ae13 100644 --- a/advisories/unreviewed/2022/05/GHSA-9gh7-v5wg-4f3q/GHSA-9gh7-v5wg-4f3q.json +++ b/advisories/unreviewed/2022/05/GHSA-9gh7-v5wg-4f3q/GHSA-9gh7-v5wg-4f3q.json @@ -7,12 +7,8 @@ "CVE-2020-12475" ], "details": "TP-Link Omada Controller Software 3.2.6 allows Directory Traversal for reading arbitrary files via com.tp_link.eap.web.portal.PortalController.getAdvertiseFile in /opt/tplink/EAPController/lib/eap-web-3.2.6.jar.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9pcm-2c87-cmr2/GHSA-9pcm-2c87-cmr2.json b/advisories/unreviewed/2022/05/GHSA-9pcm-2c87-cmr2/GHSA-9pcm-2c87-cmr2.json index 7120f52e8f8..ba25e790e11 100644 --- a/advisories/unreviewed/2022/05/GHSA-9pcm-2c87-cmr2/GHSA-9pcm-2c87-cmr2.json +++ b/advisories/unreviewed/2022/05/GHSA-9pcm-2c87-cmr2/GHSA-9pcm-2c87-cmr2.json @@ -7,12 +7,8 @@ "CVE-2020-2009" ], "details": "An external control of filename vulnerability in the SD WAN component of Palo Alto Networks PAN-OS Panorama allows an authenticated administrator to send a request that results in the creation and write of an arbitrary file on all firewalls managed by the Panorama. In some cases this results in arbitrary code execution with root permissions. This issue affects: All versions of PAN-OS 7.1; PAN-OS 8.1 versions earlier than 8.1.14; PAN-OS 9.0 versions earlier than 9.0.7.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9q2w-3c47-gq6j/GHSA-9q2w-3c47-gq6j.json b/advisories/unreviewed/2022/05/GHSA-9q2w-3c47-gq6j/GHSA-9q2w-3c47-gq6j.json index 77f9566a41b..a61879604ac 100644 --- a/advisories/unreviewed/2022/05/GHSA-9q2w-3c47-gq6j/GHSA-9q2w-3c47-gq6j.json +++ b/advisories/unreviewed/2022/05/GHSA-9q2w-3c47-gq6j/GHSA-9q2w-3c47-gq6j.json @@ -7,12 +7,8 @@ "CVE-2020-12856" ], "details": "OpenTrace, as used in COVIDSafe through v1.0.17, TraceTogether, ABTraceTogether, and other applications on iOS and Android, allows remote attackers to conduct long-term re-identification attacks and possibly have unspecified other impact, because of how Bluetooth is used.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9q9r-c9rx-65r2/GHSA-9q9r-c9rx-65r2.json b/advisories/unreviewed/2022/05/GHSA-9q9r-c9rx-65r2/GHSA-9q9r-c9rx-65r2.json index 584d74a29fa..4a5e34823f3 100644 --- a/advisories/unreviewed/2022/05/GHSA-9q9r-c9rx-65r2/GHSA-9q9r-c9rx-65r2.json +++ b/advisories/unreviewed/2022/05/GHSA-9q9r-c9rx-65r2/GHSA-9q9r-c9rx-65r2.json @@ -7,12 +7,8 @@ "CVE-2020-7288" ], "details": "Privilege Escalation vulnerability in McAfee Exploit Detection and Response (EDR) for Mac prior to 3.1.0 Hotfix 1 allows a malicious script or program to perform functions that the local executing user has not been granted access to.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9qr2-f94j-cm59/GHSA-9qr2-f94j-cm59.json b/advisories/unreviewed/2022/05/GHSA-9qr2-f94j-cm59/GHSA-9qr2-f94j-cm59.json index 43d89e32cac..0ead62f6537 100644 --- a/advisories/unreviewed/2022/05/GHSA-9qr2-f94j-cm59/GHSA-9qr2-f94j-cm59.json +++ b/advisories/unreviewed/2022/05/GHSA-9qr2-f94j-cm59/GHSA-9qr2-f94j-cm59.json @@ -7,12 +7,8 @@ "CVE-2020-12677" ], "details": "An issue was discovered in Progress MOVEit Automation Web Admin. A Web Admin application endpoint failed to adequately sanitize malicious input, which could allow an unauthenticated attacker to execute arbitrary code in a victim's browser, aka XSS. This affects 2018 - 2018.0 prior to 2018.0.3, 2018 SP1 - 2018.2 prior to 2018.2.3, 2018 SP2 - 2018.3 prior to 2018.3.7, 2019 - 2019.0 prior to 2019.0.3, 2019.1 - 2019.1 prior to 2019.1.2, and 2019.2 - 2019.2 prior to 2019.2.2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9rm7-vxm7-wq42/GHSA-9rm7-vxm7-wq42.json b/advisories/unreviewed/2022/05/GHSA-9rm7-vxm7-wq42/GHSA-9rm7-vxm7-wq42.json index f205f4a39c2..af1ab8e87c0 100644 --- a/advisories/unreviewed/2022/05/GHSA-9rm7-vxm7-wq42/GHSA-9rm7-vxm7-wq42.json +++ b/advisories/unreviewed/2022/05/GHSA-9rm7-vxm7-wq42/GHSA-9rm7-vxm7-wq42.json @@ -7,12 +7,8 @@ "CVE-2020-12657" ], "details": "An issue was discovered in the Linux kernel before 5.6.5. There is a use-after-free in block/bfq-iosched.c related to bfq_idle_slice_timer_body.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9rpg-w3f6-9mpm/GHSA-9rpg-w3f6-9mpm.json b/advisories/unreviewed/2022/05/GHSA-9rpg-w3f6-9mpm/GHSA-9rpg-w3f6-9mpm.json index 54fa1db7904..2e120a5178a 100644 --- a/advisories/unreviewed/2022/05/GHSA-9rpg-w3f6-9mpm/GHSA-9rpg-w3f6-9mpm.json +++ b/advisories/unreviewed/2022/05/GHSA-9rpg-w3f6-9mpm/GHSA-9rpg-w3f6-9mpm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -55,9 +53,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c2qp-x363-pmpr/GHSA-c2qp-x363-pmpr.json b/advisories/unreviewed/2022/05/GHSA-c2qp-x363-pmpr/GHSA-c2qp-x363-pmpr.json index 242474bd017..4925f83463c 100644 --- a/advisories/unreviewed/2022/05/GHSA-c2qp-x363-pmpr/GHSA-c2qp-x363-pmpr.json +++ b/advisories/unreviewed/2022/05/GHSA-c2qp-x363-pmpr/GHSA-c2qp-x363-pmpr.json @@ -7,12 +7,8 @@ "CVE-2020-6248" ], "details": "SAP Adaptive Server Enterprise (Backup Server), version 16.0, does not perform the necessary validation checks for an authenticated user while executing DUMP or LOAD command allowing arbitrary code execution or Code Injection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c3mj-6473-8rrx/GHSA-c3mj-6473-8rrx.json b/advisories/unreviewed/2022/05/GHSA-c3mj-6473-8rrx/GHSA-c3mj-6473-8rrx.json index 9c354af6a76..9e653c0a839 100644 --- a/advisories/unreviewed/2022/05/GHSA-c3mj-6473-8rrx/GHSA-c3mj-6473-8rrx.json +++ b/advisories/unreviewed/2022/05/GHSA-c3mj-6473-8rrx/GHSA-c3mj-6473-8rrx.json @@ -7,12 +7,8 @@ "CVE-2019-19167" ], "details": "Tobesoft Nexacro v2019.9.25.1 and earlier version have an arbitrary code execution vulnerability by using method supported by Nexacro14 ActiveX Control. It allows attacker to cause remote code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c453-37mp-9fx2/GHSA-c453-37mp-9fx2.json b/advisories/unreviewed/2022/05/GHSA-c453-37mp-9fx2/GHSA-c453-37mp-9fx2.json index 5c0a7e06551..2c07d980c44 100644 --- a/advisories/unreviewed/2022/05/GHSA-c453-37mp-9fx2/GHSA-c453-37mp-9fx2.json +++ b/advisories/unreviewed/2022/05/GHSA-c453-37mp-9fx2/GHSA-c453-37mp-9fx2.json @@ -7,12 +7,8 @@ "CVE-2020-4421" ], "details": "IBM WebSphere Application Liberty 19.0.0.5 through 20.0.0.4 could allow an authenticated user using openidconnect to spoof another users identify. IBM X-Force ID: 180084.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c4c3-828j-hx3w/GHSA-c4c3-828j-hx3w.json b/advisories/unreviewed/2022/05/GHSA-c4c3-828j-hx3w/GHSA-c4c3-828j-hx3w.json index f1ec7a5c87b..f25c730ebc5 100644 --- a/advisories/unreviewed/2022/05/GHSA-c4c3-828j-hx3w/GHSA-c4c3-828j-hx3w.json +++ b/advisories/unreviewed/2022/05/GHSA-c4c3-828j-hx3w/GHSA-c4c3-828j-hx3w.json @@ -7,12 +7,8 @@ "CVE-2020-8100" ], "details": "Improper Input Validation vulnerability in the cevakrnl.rv0 module as used in the Bitdefender Engines allows an attacker to trigger a denial of service while scanning a specially-crafted sample. This issue affects: Bitdefender Bitdefender Engines versions prior to 7.84063.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c4hc-x3gr-85q7/GHSA-c4hc-x3gr-85q7.json b/advisories/unreviewed/2022/05/GHSA-c4hc-x3gr-85q7/GHSA-c4hc-x3gr-85q7.json index 8811a0c1f46..bd86df5bab8 100644 --- a/advisories/unreviewed/2022/05/GHSA-c4hc-x3gr-85q7/GHSA-c4hc-x3gr-85q7.json +++ b/advisories/unreviewed/2022/05/GHSA-c4hc-x3gr-85q7/GHSA-c4hc-x3gr-85q7.json @@ -7,12 +7,8 @@ "CVE-2020-1153" ], "details": "A remote code execution vulnerability exists in the way that Microsoft Graphics Components handle objects in memory, aka 'Microsoft Graphics Components Remote Code Execution Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c4hv-hmhc-gj65/GHSA-c4hv-hmhc-gj65.json b/advisories/unreviewed/2022/05/GHSA-c4hv-hmhc-gj65/GHSA-c4hv-hmhc-gj65.json index d0b82a11b2c..28ff32ae549 100644 --- a/advisories/unreviewed/2022/05/GHSA-c4hv-hmhc-gj65/GHSA-c4hv-hmhc-gj65.json +++ b/advisories/unreviewed/2022/05/GHSA-c4hv-hmhc-gj65/GHSA-c4hv-hmhc-gj65.json @@ -7,12 +7,8 @@ "CVE-2020-6243" ], "details": "Under certain conditions, SAP Adaptive Server Enterprise (XP Server on Windows Platform), versions 15.7, 16.0, does not perform the necessary checks for an authenticated user while executing the extended stored procedure, allowing an attacker to read, modify, delete restricted data on connected servers, leading to Code Injection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c59p-qfxj-cxm7/GHSA-c59p-qfxj-cxm7.json b/advisories/unreviewed/2022/05/GHSA-c59p-qfxj-cxm7/GHSA-c59p-qfxj-cxm7.json index aad216548da..c702b58cde0 100644 --- a/advisories/unreviewed/2022/05/GHSA-c59p-qfxj-cxm7/GHSA-c59p-qfxj-cxm7.json +++ b/advisories/unreviewed/2022/05/GHSA-c59p-qfxj-cxm7/GHSA-c59p-qfxj-cxm7.json @@ -7,12 +7,8 @@ "CVE-2020-2007" ], "details": "An OS command injection vulnerability in the management server component of PAN-OS allows an authenticated user to potentially execute arbitrary commands with root privileges. This issue affects: All PAN-OS 7.1 versions; PAN-OS 8.1 versions earlier than 8.1.14; PAN-OS 9.0 versions earlier than 9.0.7.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c5jh-vrhw-3469/GHSA-c5jh-vrhw-3469.json b/advisories/unreviewed/2022/05/GHSA-c5jh-vrhw-3469/GHSA-c5jh-vrhw-3469.json index 7b0bbc500f6..371a76b10f6 100644 --- a/advisories/unreviewed/2022/05/GHSA-c5jh-vrhw-3469/GHSA-c5jh-vrhw-3469.json +++ b/advisories/unreviewed/2022/05/GHSA-c5jh-vrhw-3469/GHSA-c5jh-vrhw-3469.json @@ -7,12 +7,8 @@ "CVE-2019-5500" ], "details": "Certain versions of the NetApp Service Processor and Baseboard Management Controller firmware allow a remote unauthenticated attacker to cause a Denial of Service (DoS).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c6pv-qcpj-v34m/GHSA-c6pv-qcpj-v34m.json b/advisories/unreviewed/2022/05/GHSA-c6pv-qcpj-v34m/GHSA-c6pv-qcpj-v34m.json index b611a0928a4..775332f22f4 100644 --- a/advisories/unreviewed/2022/05/GHSA-c6pv-qcpj-v34m/GHSA-c6pv-qcpj-v34m.json +++ b/advisories/unreviewed/2022/05/GHSA-c6pv-qcpj-v34m/GHSA-c6pv-qcpj-v34m.json @@ -7,12 +7,8 @@ "CVE-2019-13023" ], "details": "An issue was discovered in all versions of Bond JetSelect. Within the JetSelect Application, the web interface hides RADIUS secrets, WPA passwords, and SNMP strings from 'non administrative' users using HTML 'password field' obfuscation. By using Developer tools or similar, it is possible to change the obfuscation so that the credentials are visible.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c6x6-whcr-cxp5/GHSA-c6x6-whcr-cxp5.json b/advisories/unreviewed/2022/05/GHSA-c6x6-whcr-cxp5/GHSA-c6x6-whcr-cxp5.json index 5dd92492eb4..e8762743cf9 100644 --- a/advisories/unreviewed/2022/05/GHSA-c6x6-whcr-cxp5/GHSA-c6x6-whcr-cxp5.json +++ b/advisories/unreviewed/2022/05/GHSA-c6x6-whcr-cxp5/GHSA-c6x6-whcr-cxp5.json @@ -7,12 +7,8 @@ "CVE-2017-18753" ], "details": "Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects: D6220, running firmware versions prior to 1.0.0.40 D8500, running firmware versions prior to 1.0.3.39 EX3700, running firmware versions prior to 1.0.0.70 EX3800, running firmware versions prior to 1.0.0.70 EX6000, running firmware versions prior to 1.0.0.30 EX6100, running firmware versions prior to 1.0.2.22 EX6120, running firmware versions prior to 1.0.0.40 EX6130, running firmware versions prior to 1.0.0.22 EX6150v1, running firmware versions prior to 1.0.0.42 EX6200, running firmware versions prior to 1.0.3.88 EX7000, running firmware versions prior to 1.0.0.66 R6300v2, running firmware versions prior to 1.0.4.18 R6400, running firmware versions prior to 1.0.1.24 R6400v2, running firmware versions prior to 1.0.2.32 R6700, running firmware versions prior to 1.0.1.22 R6700v3, running firmware versions prior to 1.0.2.32 R6900, running firmware versions prior to 1.0.1.22 R7000, running firmware versions prior to 1.0.9.6 R6900P, running firmware versions prior to 1.0.0.56 R7000P, running firmware versions prior to 1.0.0.56 R7100LG, running firmware versions prior to 1.0.0.42 R7300DST, running firmware versions prior to 1.0.0.54 R7900, running firmware versions prior to 1.0.1.26 R8300, running firmware versions prior to 1.0.2.106 R8500, running firmware versions prior to 1.0.2.106 WN2500RPv2, running firmware versions prior to 1.0.1.54 WNR3500Lv2, running firmware versions prior to 1.2.0.46", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c9wh-fj9q-2xrv/GHSA-c9wh-fj9q-2xrv.json b/advisories/unreviewed/2022/05/GHSA-c9wh-fj9q-2xrv/GHSA-c9wh-fj9q-2xrv.json index f6d478cf69a..e935583a824 100644 --- a/advisories/unreviewed/2022/05/GHSA-c9wh-fj9q-2xrv/GHSA-c9wh-fj9q-2xrv.json +++ b/advisories/unreviewed/2022/05/GHSA-c9wh-fj9q-2xrv/GHSA-c9wh-fj9q-2xrv.json @@ -7,12 +7,8 @@ "CVE-2020-6259" ], "details": "Under certain conditions SAP Adaptive Server Enterprise, versions 15.7, 16.0, allows an attacker to access information which would otherwise be restricted leading to Missing Authorization Check.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cc9g-8gq4-65mp/GHSA-cc9g-8gq4-65mp.json b/advisories/unreviewed/2022/05/GHSA-cc9g-8gq4-65mp/GHSA-cc9g-8gq4-65mp.json index 3292bfe7455..2d1e2159e27 100644 --- a/advisories/unreviewed/2022/05/GHSA-cc9g-8gq4-65mp/GHSA-cc9g-8gq4-65mp.json +++ b/advisories/unreviewed/2022/05/GHSA-cc9g-8gq4-65mp/GHSA-cc9g-8gq4-65mp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ccj2-xhg7-jrxc/GHSA-ccj2-xhg7-jrxc.json b/advisories/unreviewed/2022/05/GHSA-ccj2-xhg7-jrxc/GHSA-ccj2-xhg7-jrxc.json index c2a80892444..8811651f7d6 100644 --- a/advisories/unreviewed/2022/05/GHSA-ccj2-xhg7-jrxc/GHSA-ccj2-xhg7-jrxc.json +++ b/advisories/unreviewed/2022/05/GHSA-ccj2-xhg7-jrxc/GHSA-ccj2-xhg7-jrxc.json @@ -7,12 +7,8 @@ "CVE-2020-10023" ], "details": "The shell subsystem contains a buffer overflow, whereby an adversary with physical access to the device is able to cause a memory corruption, resulting in denial of service or possibly code execution within the Zephyr kernel. See NCC-NCC-019 This issue affects: zephyrproject-rtos zephyr version 1.14.0 and later versions. version 2.1.0 and later versions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cg2w-mf57-v7rg/GHSA-cg2w-mf57-v7rg.json b/advisories/unreviewed/2022/05/GHSA-cg2w-mf57-v7rg/GHSA-cg2w-mf57-v7rg.json index d8c33c8dca3..b23790376f5 100644 --- a/advisories/unreviewed/2022/05/GHSA-cg2w-mf57-v7rg/GHSA-cg2w-mf57-v7rg.json +++ b/advisories/unreviewed/2022/05/GHSA-cg2w-mf57-v7rg/GHSA-cg2w-mf57-v7rg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cgf9-gjp4-6wg6/GHSA-cgf9-gjp4-6wg6.json b/advisories/unreviewed/2022/05/GHSA-cgf9-gjp4-6wg6/GHSA-cgf9-gjp4-6wg6.json index 96d7ef163bb..3c35421ec86 100644 --- a/advisories/unreviewed/2022/05/GHSA-cgf9-gjp4-6wg6/GHSA-cgf9-gjp4-6wg6.json +++ b/advisories/unreviewed/2022/05/GHSA-cgf9-gjp4-6wg6/GHSA-cgf9-gjp4-6wg6.json @@ -7,12 +7,8 @@ "CVE-2019-18868" ], "details": "Blaauw Remote Kiln Control through v3.00r4 allows an unauthenticated attacker to access MySQL credentials in cleartext in /engine/db.inc, /lang/nl.bak, or /lang/en.bak.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cggv-m6ff-v652/GHSA-cggv-m6ff-v652.json b/advisories/unreviewed/2022/05/GHSA-cggv-m6ff-v652/GHSA-cggv-m6ff-v652.json index db6d1749433..1a8a421ffef 100644 --- a/advisories/unreviewed/2022/05/GHSA-cggv-m6ff-v652/GHSA-cggv-m6ff-v652.json +++ b/advisories/unreviewed/2022/05/GHSA-cggv-m6ff-v652/GHSA-cggv-m6ff-v652.json @@ -7,12 +7,8 @@ "CVE-2020-13149" ], "details": "Weak permissions on the \"%PROGRAMDATA%\\MSI\\Dragon Center\" folder in Dragon Center 2.6.2003.2401, shipped with Micro-Star MSI Gaming laptops, allows local authenticated users to overwrite system files and gain escalated privileges. One attack method is to change the Recommended App binary within App.json. Another attack method is to use this part of %PROGRAMDATA% for mounting an RPC Control directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cjpf-59h6-hrc4/GHSA-cjpf-59h6-hrc4.json b/advisories/unreviewed/2022/05/GHSA-cjpf-59h6-hrc4/GHSA-cjpf-59h6-hrc4.json index e8897bad7c1..9c1335ab487 100644 --- a/advisories/unreviewed/2022/05/GHSA-cjpf-59h6-hrc4/GHSA-cjpf-59h6-hrc4.json +++ b/advisories/unreviewed/2022/05/GHSA-cjpf-59h6-hrc4/GHSA-cjpf-59h6-hrc4.json @@ -7,12 +7,8 @@ "CVE-2020-5337" ], "details": "RSA Archer, versions prior to 6.7 P1 (6.7.0.1), contain a URL redirection vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability to redirect application users to arbitrary web URLs by tricking the victim users to click on maliciously crafted links. The vulnerability could be used to conduct phishing attacks that cause users to unknowingly visit malicious sites.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cmcx-h36r-grrw/GHSA-cmcx-h36r-grrw.json b/advisories/unreviewed/2022/05/GHSA-cmcx-h36r-grrw/GHSA-cmcx-h36r-grrw.json index cc918c3c187..1e74c638949 100644 --- a/advisories/unreviewed/2022/05/GHSA-cmcx-h36r-grrw/GHSA-cmcx-h36r-grrw.json +++ b/advisories/unreviewed/2022/05/GHSA-cmcx-h36r-grrw/GHSA-cmcx-h36r-grrw.json @@ -7,12 +7,8 @@ "CVE-2020-12431" ], "details": "A Windows privilege change issue was discovered in Splashtop Software Updater before 1.5.6.16. Insecure permissions on the configuration file and named pipe allow for local privilege escalation to NT AUTHORITY/SYSTEM, by forcing a permission change to any Splashtop files and directories, with resultant DLL hijacking. This product is bundled with Splashtop Streamer (before 3.3.8.0) and Splashtop Business (before 3.3.8.0).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cmm9-mgm5-9r42/GHSA-cmm9-mgm5-9r42.json b/advisories/unreviewed/2022/05/GHSA-cmm9-mgm5-9r42/GHSA-cmm9-mgm5-9r42.json index c0043bb71ce..4f8ceb8ee75 100644 --- a/advisories/unreviewed/2022/05/GHSA-cmm9-mgm5-9r42/GHSA-cmm9-mgm5-9r42.json +++ b/advisories/unreviewed/2022/05/GHSA-cmm9-mgm5-9r42/GHSA-cmm9-mgm5-9r42.json @@ -7,12 +7,8 @@ "CVE-2020-13091" ], "details": "pandas through 1.0.3 can unserialize and execute commands from an untrusted file that is passed to the read_pickle() function, if __reduce__ makes an os.system call.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cp55-7mp2-6mc5/GHSA-cp55-7mp2-6mc5.json b/advisories/unreviewed/2022/05/GHSA-cp55-7mp2-6mc5/GHSA-cp55-7mp2-6mc5.json index f8165a42b06..28df174203f 100644 --- a/advisories/unreviewed/2022/05/GHSA-cp55-7mp2-6mc5/GHSA-cp55-7mp2-6mc5.json +++ b/advisories/unreviewed/2022/05/GHSA-cp55-7mp2-6mc5/GHSA-cp55-7mp2-6mc5.json @@ -7,12 +7,8 @@ "CVE-2017-18760" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects R8300 before 1.0.2.104 and R8500 before 1.0.2.104.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cp5j-vccm-fqwx/GHSA-cp5j-vccm-fqwx.json b/advisories/unreviewed/2022/05/GHSA-cp5j-vccm-fqwx/GHSA-cp5j-vccm-fqwx.json index 825cdbafd97..22fa06cfd65 100644 --- a/advisories/unreviewed/2022/05/GHSA-cp5j-vccm-fqwx/GHSA-cp5j-vccm-fqwx.json +++ b/advisories/unreviewed/2022/05/GHSA-cp5j-vccm-fqwx/GHSA-cp5j-vccm-fqwx.json @@ -7,12 +7,8 @@ "CVE-2020-5747" ], "details": "Insufficient output sanitization in TCExam 14.2.2 allows a remote, authenticated attacker to conduct persistent cross-site scripting (XSS) attacks by creating a crafted test.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cpxw-453r-hpg9/GHSA-cpxw-453r-hpg9.json b/advisories/unreviewed/2022/05/GHSA-cpxw-453r-hpg9/GHSA-cpxw-453r-hpg9.json index 53a3a2c9c4d..9882ca15961 100644 --- a/advisories/unreviewed/2022/05/GHSA-cpxw-453r-hpg9/GHSA-cpxw-453r-hpg9.json +++ b/advisories/unreviewed/2022/05/GHSA-cpxw-453r-hpg9/GHSA-cpxw-453r-hpg9.json @@ -7,12 +7,8 @@ "CVE-2020-10022" ], "details": "A malformed JSON payload that is received from an UpdateHub server may trigger memory corruption in the Zephyr OS. This could result in a denial of service in the best case, or code execution in the worst case. See NCC-NCC-016 This issue affects: zephyrproject-rtos zephyr version 2.1.0 and later versions. version 2.2.0 and later versions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cq58-5c97-qv25/GHSA-cq58-5c97-qv25.json b/advisories/unreviewed/2022/05/GHSA-cq58-5c97-qv25/GHSA-cq58-5c97-qv25.json index 528614127ec..17f48bb7fe6 100644 --- a/advisories/unreviewed/2022/05/GHSA-cq58-5c97-qv25/GHSA-cq58-5c97-qv25.json +++ b/advisories/unreviewed/2022/05/GHSA-cq58-5c97-qv25/GHSA-cq58-5c97-qv25.json @@ -7,12 +7,8 @@ "CVE-2020-13167" ], "details": "Netsweeper through 6.4.3 allows unauthenticated remote code execution because webadmin/tools/unixlogin.php (with certain Referer headers) launches a command line with client-supplied parameters, and allows injection of shell metacharacters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cqx4-jqpq-wx8p/GHSA-cqx4-jqpq-wx8p.json b/advisories/unreviewed/2022/05/GHSA-cqx4-jqpq-wx8p/GHSA-cqx4-jqpq-wx8p.json index e6352fb91f1..fd324c23d38 100644 --- a/advisories/unreviewed/2022/05/GHSA-cqx4-jqpq-wx8p/GHSA-cqx4-jqpq-wx8p.json +++ b/advisories/unreviewed/2022/05/GHSA-cqx4-jqpq-wx8p/GHSA-cqx4-jqpq-wx8p.json @@ -7,12 +7,8 @@ "CVE-2020-12258" ], "details": "rConfig 3.9.4 is vulnerable to session fixation because session expiry and randomization are mishandled. The application can reuse a session via PHPSESSID. Also, an attacker can exploit this vulnerability in conjunction with CVE-2020-12256 or CVE-2020-12259.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cr92-4pr9-789r/GHSA-cr92-4pr9-789r.json b/advisories/unreviewed/2022/05/GHSA-cr92-4pr9-789r/GHSA-cr92-4pr9-789r.json index 7c3b39c37cc..c2773be4070 100644 --- a/advisories/unreviewed/2022/05/GHSA-cr92-4pr9-789r/GHSA-cr92-4pr9-789r.json +++ b/advisories/unreviewed/2022/05/GHSA-cr92-4pr9-789r/GHSA-cr92-4pr9-789r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cv4g-3f4x-7fw8/GHSA-cv4g-3f4x-7fw8.json b/advisories/unreviewed/2022/05/GHSA-cv4g-3f4x-7fw8/GHSA-cv4g-3f4x-7fw8.json index 6d2afefcdbb..83c167823d6 100644 --- a/advisories/unreviewed/2022/05/GHSA-cv4g-3f4x-7fw8/GHSA-cv4g-3f4x-7fw8.json +++ b/advisories/unreviewed/2022/05/GHSA-cv4g-3f4x-7fw8/GHSA-cv4g-3f4x-7fw8.json @@ -7,12 +7,8 @@ "CVE-2020-3341" ], "details": "A vulnerability in the PDF archive parsing module in Clam AntiVirus (ClamAV) Software versions 0.101 - 0.102.2 could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to a stack buffer overflow read. An attacker could exploit this vulnerability by sending a crafted PDF file to an affected device. An exploit could allow the attacker to cause the ClamAV scanning process crash, resulting in a denial of service condition.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cw43-3hjf-j7v7/GHSA-cw43-3hjf-j7v7.json b/advisories/unreviewed/2022/05/GHSA-cw43-3hjf-j7v7/GHSA-cw43-3hjf-j7v7.json index 45e939d858b..7dd3b78351d 100644 --- a/advisories/unreviewed/2022/05/GHSA-cw43-3hjf-j7v7/GHSA-cw43-3hjf-j7v7.json +++ b/advisories/unreviewed/2022/05/GHSA-cw43-3hjf-j7v7/GHSA-cw43-3hjf-j7v7.json @@ -7,12 +7,8 @@ "CVE-2020-12256" ], "details": "rConfig 3.9.4 is vulnerable to reflected XSS. The devicemgmnt.php file improperly validates user input. An attacker can exploit this by crafting arbitrary JavaScript in the deviceId GET parameter to devicemgmnt.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cw8x-hmwg-frr3/GHSA-cw8x-hmwg-frr3.json b/advisories/unreviewed/2022/05/GHSA-cw8x-hmwg-frr3/GHSA-cw8x-hmwg-frr3.json index d03bf19000c..7a259596d96 100644 --- a/advisories/unreviewed/2022/05/GHSA-cw8x-hmwg-frr3/GHSA-cw8x-hmwg-frr3.json +++ b/advisories/unreviewed/2022/05/GHSA-cw8x-hmwg-frr3/GHSA-cw8x-hmwg-frr3.json @@ -7,12 +7,8 @@ "CVE-2020-5749" ], "details": "Insufficient output sanitization in TCExam 14.2.2 allows a remote, authenticated attacker to conduct persistent cross-site scripting (XSS) attacks by creating a crafted group.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cwqx-xrfh-m9p5/GHSA-cwqx-xrfh-m9p5.json b/advisories/unreviewed/2022/05/GHSA-cwqx-xrfh-m9p5/GHSA-cwqx-xrfh-m9p5.json index 8983d6fb6fb..5edd0f24c39 100644 --- a/advisories/unreviewed/2022/05/GHSA-cwqx-xrfh-m9p5/GHSA-cwqx-xrfh-m9p5.json +++ b/advisories/unreviewed/2022/05/GHSA-cwqx-xrfh-m9p5/GHSA-cwqx-xrfh-m9p5.json @@ -7,12 +7,8 @@ "CVE-2020-10794" ], "details": "Gira TKS-IP-Gateway 4.0.7.7 is vulnerable to unauthenticated path traversal that allows an attacker to download the application database. This can be combined with CVE-2020-10795 for remote root access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cx5r-gmc4-vxp6/GHSA-cx5r-gmc4-vxp6.json b/advisories/unreviewed/2022/05/GHSA-cx5r-gmc4-vxp6/GHSA-cx5r-gmc4-vxp6.json index 4f014ba468b..756deea51ae 100644 --- a/advisories/unreviewed/2022/05/GHSA-cx5r-gmc4-vxp6/GHSA-cx5r-gmc4-vxp6.json +++ b/advisories/unreviewed/2022/05/GHSA-cx5r-gmc4-vxp6/GHSA-cx5r-gmc4-vxp6.json @@ -7,12 +7,8 @@ "CVE-2020-4195" ], "details": "IBM API Connect V2018.4.1.0 through 2018.4.1.10 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. IBM X-Force ID: 174859.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cxcg-m8xj-3xgj/GHSA-cxcg-m8xj-3xgj.json b/advisories/unreviewed/2022/05/GHSA-cxcg-m8xj-3xgj/GHSA-cxcg-m8xj-3xgj.json index 240129deb89..38e0a0be35c 100644 --- a/advisories/unreviewed/2022/05/GHSA-cxcg-m8xj-3xgj/GHSA-cxcg-m8xj-3xgj.json +++ b/advisories/unreviewed/2022/05/GHSA-cxcg-m8xj-3xgj/GHSA-cxcg-m8xj-3xgj.json @@ -7,12 +7,8 @@ "CVE-2020-0091" ], "details": "In mnld, an incorrect configuration in driver_cfg of mnld for meta factory mode.Product: AndroidVersions: Android SoCAndroid ID: A-149808700", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cxmq-2hg4-w57p/GHSA-cxmq-2hg4-w57p.json b/advisories/unreviewed/2022/05/GHSA-cxmq-2hg4-w57p/GHSA-cxmq-2hg4-w57p.json index a63fb34c5f6..d365b572810 100644 --- a/advisories/unreviewed/2022/05/GHSA-cxmq-2hg4-w57p/GHSA-cxmq-2hg4-w57p.json +++ b/advisories/unreviewed/2022/05/GHSA-cxmq-2hg4-w57p/GHSA-cxmq-2hg4-w57p.json @@ -7,12 +7,8 @@ "CVE-2020-12018" ], "details": "Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0. An out-of-bounds vulnerability exists that may allow access to unauthorized data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cxvf-qrfm-r86m/GHSA-cxvf-qrfm-r86m.json b/advisories/unreviewed/2022/05/GHSA-cxvf-qrfm-r86m/GHSA-cxvf-qrfm-r86m.json index 9056e9e4a48..5817b1846b0 100644 --- a/advisories/unreviewed/2022/05/GHSA-cxvf-qrfm-r86m/GHSA-cxvf-qrfm-r86m.json +++ b/advisories/unreviewed/2022/05/GHSA-cxvf-qrfm-r86m/GHSA-cxvf-qrfm-r86m.json @@ -7,12 +7,8 @@ "CVE-2020-1939" ], "details": "The Apache NuttX (Incubating) project provides an optional separate \"apps\" repository which contains various optional components and example programs. One of these, ftpd, had a NULL pointer dereference bug. The NuttX RTOS itself is not affected. Users of the optional apps repository are affected only if they have enabled ftpd. Versions 6.15 to 8.2 are affected.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f25w-4h6f-frg3/GHSA-f25w-4h6f-frg3.json b/advisories/unreviewed/2022/05/GHSA-f25w-4h6f-frg3/GHSA-f25w-4h6f-frg3.json index acda72c04dd..940d634ef82 100644 --- a/advisories/unreviewed/2022/05/GHSA-f25w-4h6f-frg3/GHSA-f25w-4h6f-frg3.json +++ b/advisories/unreviewed/2022/05/GHSA-f25w-4h6f-frg3/GHSA-f25w-4h6f-frg3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f2fx-qc7x-585h/GHSA-f2fx-qc7x-585h.json b/advisories/unreviewed/2022/05/GHSA-f2fx-qc7x-585h/GHSA-f2fx-qc7x-585h.json index 82458ce671f..fce14867d43 100644 --- a/advisories/unreviewed/2022/05/GHSA-f2fx-qc7x-585h/GHSA-f2fx-qc7x-585h.json +++ b/advisories/unreviewed/2022/05/GHSA-f2fx-qc7x-585h/GHSA-f2fx-qc7x-585h.json @@ -7,12 +7,8 @@ "CVE-2020-10616" ], "details": "Opto 22 SoftPAC Project Version 9.6 and prior. SoftPAC does not specify the path of multiple imported .dll files. Therefore, an attacker can replace them and execute code whenever the service starts.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f2mq-55m8-mhhw/GHSA-f2mq-55m8-mhhw.json b/advisories/unreviewed/2022/05/GHSA-f2mq-55m8-mhhw/GHSA-f2mq-55m8-mhhw.json index fce40539640..112479b4f10 100644 --- a/advisories/unreviewed/2022/05/GHSA-f2mq-55m8-mhhw/GHSA-f2mq-55m8-mhhw.json +++ b/advisories/unreviewed/2022/05/GHSA-f2mq-55m8-mhhw/GHSA-f2mq-55m8-mhhw.json @@ -7,12 +7,8 @@ "CVE-2020-7286" ], "details": "Privilege Escalation vulnerability in McAfee Exploit Detection and Response (EDR) for Windows prior to 3.1.0 Hotfix 1 allows a malicious script or program to perform functions that the local executing user has not been granted access to.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f7gq-m8w9-39fh/GHSA-f7gq-m8w9-39fh.json b/advisories/unreviewed/2022/05/GHSA-f7gq-m8w9-39fh/GHSA-f7gq-m8w9-39fh.json index c00f6e20da8..170c3c5b6e8 100644 --- a/advisories/unreviewed/2022/05/GHSA-f7gq-m8w9-39fh/GHSA-f7gq-m8w9-39fh.json +++ b/advisories/unreviewed/2022/05/GHSA-f7gq-m8w9-39fh/GHSA-f7gq-m8w9-39fh.json @@ -7,12 +7,8 @@ "CVE-2020-4259" ], "details": "IBM Sterling File Gateway 2.2.0.0 through 6.0.3.1 could allow an authenticated user could manipulate cookie information and remove or add modules from the cookie to access functionality not authorized to. IBM X-Force ID: 175638.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f87g-8q5h-c2xf/GHSA-f87g-8q5h-c2xf.json b/advisories/unreviewed/2022/05/GHSA-f87g-8q5h-c2xf/GHSA-f87g-8q5h-c2xf.json index e21c2ca898d..9ae0f1f26e0 100644 --- a/advisories/unreviewed/2022/05/GHSA-f87g-8q5h-c2xf/GHSA-f87g-8q5h-c2xf.json +++ b/advisories/unreviewed/2022/05/GHSA-f87g-8q5h-c2xf/GHSA-f87g-8q5h-c2xf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f93f-c5gm-48jr/GHSA-f93f-c5gm-48jr.json b/advisories/unreviewed/2022/05/GHSA-f93f-c5gm-48jr/GHSA-f93f-c5gm-48jr.json index 15657546c51..9c01f8e6503 100644 --- a/advisories/unreviewed/2022/05/GHSA-f93f-c5gm-48jr/GHSA-f93f-c5gm-48jr.json +++ b/advisories/unreviewed/2022/05/GHSA-f93f-c5gm-48jr/GHSA-f93f-c5gm-48jr.json @@ -7,12 +7,8 @@ "CVE-2020-12752" ], "details": "An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (with TEEGRIS) software. Attackers can determine user credentials via a brute-force attack against the Gatekeeper trustlet. The Samsung ID is SVE-2020-16908 (May 2020).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f9w8-q7vq-ch2g/GHSA-f9w8-q7vq-ch2g.json b/advisories/unreviewed/2022/05/GHSA-f9w8-q7vq-ch2g/GHSA-f9w8-q7vq-ch2g.json index acef3d785ee..11537902a77 100644 --- a/advisories/unreviewed/2022/05/GHSA-f9w8-q7vq-ch2g/GHSA-f9w8-q7vq-ch2g.json +++ b/advisories/unreviewed/2022/05/GHSA-f9w8-q7vq-ch2g/GHSA-f9w8-q7vq-ch2g.json @@ -7,12 +7,8 @@ "CVE-2020-13442" ], "details": "A Remote code execution vulnerability exists in DEXT5Upload in DEXT5 through 2.7.1402870. An attacker can upload a PHP file via dext5handler.jsp handler because the uploaded file is stored under dext5uploadeddata/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fc6g-9746-9j7g/GHSA-fc6g-9746-9j7g.json b/advisories/unreviewed/2022/05/GHSA-fc6g-9746-9j7g/GHSA-fc6g-9746-9j7g.json index 7f87429870a..21f8cc3f375 100644 --- a/advisories/unreviewed/2022/05/GHSA-fc6g-9746-9j7g/GHSA-fc6g-9746-9j7g.json +++ b/advisories/unreviewed/2022/05/GHSA-fc6g-9746-9j7g/GHSA-fc6g-9746-9j7g.json @@ -7,12 +7,8 @@ "CVE-2020-4092" ], "details": "\"If port encryption is not enabled on the Domino Server, HCL Nomad on Android and iOS Platforms will communicate in clear text and does not currently have a user interface option to change the setting to request an encrypted communication channel with the Domino server. This can potentially expose sensitive information including but not limited to server names, user IDs and document content.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fch3-rmwr-242v/GHSA-fch3-rmwr-242v.json b/advisories/unreviewed/2022/05/GHSA-fch3-rmwr-242v/GHSA-fch3-rmwr-242v.json index ff490b31831..50ac94d6d25 100644 --- a/advisories/unreviewed/2022/05/GHSA-fch3-rmwr-242v/GHSA-fch3-rmwr-242v.json +++ b/advisories/unreviewed/2022/05/GHSA-fch3-rmwr-242v/GHSA-fch3-rmwr-242v.json @@ -7,12 +7,8 @@ "CVE-2020-0100" ], "details": "In onTransact of IHDCP.cpp, there is a possible out of bounds read due to incorrect error handling. This could lead to local information disclosure of data from a privileged process with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.1 Android-8.0Android ID: A-150156584", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ff5x-7f98-9896/GHSA-ff5x-7f98-9896.json b/advisories/unreviewed/2022/05/GHSA-ff5x-7f98-9896/GHSA-ff5x-7f98-9896.json index 77f02bc2a27..1842eb5877b 100644 --- a/advisories/unreviewed/2022/05/GHSA-ff5x-7f98-9896/GHSA-ff5x-7f98-9896.json +++ b/advisories/unreviewed/2022/05/GHSA-ff5x-7f98-9896/GHSA-ff5x-7f98-9896.json @@ -7,12 +7,8 @@ "CVE-2019-19515" ], "details": "Ayision Ays-WR01 v28K.RPT.20161224 devices allow stored XSS in wireless settings.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ffrh-qjc2-38wm/GHSA-ffrh-qjc2-38wm.json b/advisories/unreviewed/2022/05/GHSA-ffrh-qjc2-38wm/GHSA-ffrh-qjc2-38wm.json index 24b549b2887..40456251407 100644 --- a/advisories/unreviewed/2022/05/GHSA-ffrh-qjc2-38wm/GHSA-ffrh-qjc2-38wm.json +++ b/advisories/unreviewed/2022/05/GHSA-ffrh-qjc2-38wm/GHSA-ffrh-qjc2-38wm.json @@ -7,12 +7,8 @@ "CVE-2020-10724" ], "details": "A vulnerability was found in DPDK versions 18.11 and above. The vhost-crypto library code is missing validations for user-supplied values, potentially allowing an information leak through an out-of-bounds memory read.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fg28-v9fx-wgww/GHSA-fg28-v9fx-wgww.json b/advisories/unreviewed/2022/05/GHSA-fg28-v9fx-wgww/GHSA-fg28-v9fx-wgww.json index 9bbda69de4a..58f13b39f6f 100644 --- a/advisories/unreviewed/2022/05/GHSA-fg28-v9fx-wgww/GHSA-fg28-v9fx-wgww.json +++ b/advisories/unreviewed/2022/05/GHSA-fg28-v9fx-wgww/GHSA-fg28-v9fx-wgww.json @@ -7,12 +7,8 @@ "CVE-2020-8799" ], "details": "A Stored XSS vulnerability has been found in the administration page of the WTI Like Post plugin through 1.4.5 for WordPress. Once the administrator has submitted the data, the script stored is executed for all the users visiting the website.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fg3m-2j7h-hh89/GHSA-fg3m-2j7h-hh89.json b/advisories/unreviewed/2022/05/GHSA-fg3m-2j7h-hh89/GHSA-fg3m-2j7h-hh89.json index dfef259b5ba..df3d6d89e3b 100644 --- a/advisories/unreviewed/2022/05/GHSA-fg3m-2j7h-hh89/GHSA-fg3m-2j7h-hh89.json +++ b/advisories/unreviewed/2022/05/GHSA-fg3m-2j7h-hh89/GHSA-fg3m-2j7h-hh89.json @@ -7,12 +7,8 @@ "CVE-2020-12877" ], "details": "Veritas APTARE versions prior to 10.4 allowed sensitive information to be accessible without authentication.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fgmr-rcwc-wh2p/GHSA-fgmr-rcwc-wh2p.json b/advisories/unreviewed/2022/05/GHSA-fgmr-rcwc-wh2p/GHSA-fgmr-rcwc-wh2p.json index c62465e5984..0c607ba3836 100644 --- a/advisories/unreviewed/2022/05/GHSA-fgmr-rcwc-wh2p/GHSA-fgmr-rcwc-wh2p.json +++ b/advisories/unreviewed/2022/05/GHSA-fgmr-rcwc-wh2p/GHSA-fgmr-rcwc-wh2p.json @@ -7,12 +7,8 @@ "CVE-2020-8791" ], "details": "The OKLOK (3.1.1) mobile companion app for Fingerprint Bluetooth Padlock FB50 (2.3) allows remote attackers to submit API requests using authenticated but unauthorized tokens, resulting in IDOR issues. A remote attacker can use their own token to make unauthorized API requests on behalf of arbitrary user IDs. Valid and current user IDs are trivial to guess because of the user ID assignment convention used by the app. A remote attacker could harvest email addresses, unsalted MD5 password hashes, owner-assigned lock names, and owner-assigned fingerprint names for any range of arbitrary user IDs.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fgv2-95mg-h2m9/GHSA-fgv2-95mg-h2m9.json b/advisories/unreviewed/2022/05/GHSA-fgv2-95mg-h2m9/GHSA-fgv2-95mg-h2m9.json index bf6227ada7e..a2dc1242de0 100644 --- a/advisories/unreviewed/2022/05/GHSA-fgv2-95mg-h2m9/GHSA-fgv2-95mg-h2m9.json +++ b/advisories/unreviewed/2022/05/GHSA-fgv2-95mg-h2m9/GHSA-fgv2-95mg-h2m9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -95,9 +93,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fh67-h479-rx4h/GHSA-fh67-h479-rx4h.json b/advisories/unreviewed/2022/05/GHSA-fh67-h479-rx4h/GHSA-fh67-h479-rx4h.json index 2382f36f36c..c923b4585c0 100644 --- a/advisories/unreviewed/2022/05/GHSA-fh67-h479-rx4h/GHSA-fh67-h479-rx4h.json +++ b/advisories/unreviewed/2022/05/GHSA-fh67-h479-rx4h/GHSA-fh67-h479-rx4h.json @@ -7,12 +7,8 @@ "CVE-2020-1142" ], "details": "An elevation of privilege vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory, aka 'Windows GDI Elevation of Privilege Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fhjj-6gr2-w5wg/GHSA-fhjj-6gr2-w5wg.json b/advisories/unreviewed/2022/05/GHSA-fhjj-6gr2-w5wg/GHSA-fhjj-6gr2-w5wg.json index 3bc579eaa73..7f270a942a0 100644 --- a/advisories/unreviewed/2022/05/GHSA-fhjj-6gr2-w5wg/GHSA-fhjj-6gr2-w5wg.json +++ b/advisories/unreviewed/2022/05/GHSA-fhjj-6gr2-w5wg/GHSA-fhjj-6gr2-w5wg.json @@ -7,12 +7,8 @@ "CVE-2020-10059" ], "details": "The UpdateHub module disables DTLS peer checking, which allows for a man in the middle attack. This is mitigated by firmware images requiring valid signatures. However, there is no benefit to using DTLS without the peer checking. See NCC-ZEP-018 This issue affects: zephyrproject-rtos zephyr version 2.1.0 and later versions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fm7w-qw4q-fjmw/GHSA-fm7w-qw4q-fjmw.json b/advisories/unreviewed/2022/05/GHSA-fm7w-qw4q-fjmw/GHSA-fm7w-qw4q-fjmw.json index a9aeef4874a..a6d64c6d01d 100644 --- a/advisories/unreviewed/2022/05/GHSA-fm7w-qw4q-fjmw/GHSA-fm7w-qw4q-fjmw.json +++ b/advisories/unreviewed/2022/05/GHSA-fm7w-qw4q-fjmw/GHSA-fm7w-qw4q-fjmw.json @@ -7,12 +7,8 @@ "CVE-2020-2014" ], "details": "An OS Command Injection vulnerability in PAN-OS management server allows authenticated users to inject and execute arbitrary shell commands with root privileges. This issue affects: All versions of PAN-OS 7.1 and 8.0; PAN-OS 8.1 versions earlier than 8.1.14; PAN-OS 9.0 versions earlier than 9.0.7.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fmpm-2fhr-jw4j/GHSA-fmpm-2fhr-jw4j.json b/advisories/unreviewed/2022/05/GHSA-fmpm-2fhr-jw4j/GHSA-fmpm-2fhr-jw4j.json index f2a76bd2425..d6c283d4626 100644 --- a/advisories/unreviewed/2022/05/GHSA-fmpm-2fhr-jw4j/GHSA-fmpm-2fhr-jw4j.json +++ b/advisories/unreviewed/2022/05/GHSA-fmpm-2fhr-jw4j/GHSA-fmpm-2fhr-jw4j.json @@ -7,12 +7,8 @@ "CVE-2020-3343" ], "details": "A vulnerability in Cisco AMP for Endpoints Linux Connector Software and Cisco AMP for Endpoints Mac Connector Software could allow an authenticated, local attacker to cause a buffer overflow on an affected device. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sending a crafted packet to an affected device. A successful exploit could allow the attacker to cause the Cisco AMP for Endpoints service to crash and restart.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fp83-q3j6-rggc/GHSA-fp83-q3j6-rggc.json b/advisories/unreviewed/2022/05/GHSA-fp83-q3j6-rggc/GHSA-fp83-q3j6-rggc.json index f2097d19469..49ec7cfe6aa 100644 --- a/advisories/unreviewed/2022/05/GHSA-fp83-q3j6-rggc/GHSA-fp83-q3j6-rggc.json +++ b/advisories/unreviewed/2022/05/GHSA-fp83-q3j6-rggc/GHSA-fp83-q3j6-rggc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fpmm-r4rm-5rg2/GHSA-fpmm-r4rm-5rg2.json b/advisories/unreviewed/2022/05/GHSA-fpmm-r4rm-5rg2/GHSA-fpmm-r4rm-5rg2.json index 84f12c8baa5..1b7e51bf0c3 100644 --- a/advisories/unreviewed/2022/05/GHSA-fpmm-r4rm-5rg2/GHSA-fpmm-r4rm-5rg2.json +++ b/advisories/unreviewed/2022/05/GHSA-fpmm-r4rm-5rg2/GHSA-fpmm-r4rm-5rg2.json @@ -7,12 +7,8 @@ "CVE-2020-5575" ], "details": "Cross-site scripting vulnerability in Movable Type series (Movable Type 7 r.4606 (7.2.1) and earlier (Movable Type 7), Movable Type Advanced 7 r.4606 (7.2.1) and earlier (Movable Type Advanced 7), Movable Type for AWS 7 r.4606 (7.2.1) and earlier (Movable Type for AWS 7), Movable Type 6.5.3 and earlier (Movable Type 6.5), Movable Type Advanced 6.5.3 and earlier (Movable Type Advanced 6.5), Movable Type 6.3.11 and earlier (Movable Type 6.3), Movable Type Advanced 6.3.11 and earlier (Movable Type 6.3), Movable Type Premium 1.29 and earlier, and Movable Type Premium Advanced 1.29 and earlier) allows remote attackers to inject arbitrary script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fq7f-2c8x-fv43/GHSA-fq7f-2c8x-fv43.json b/advisories/unreviewed/2022/05/GHSA-fq7f-2c8x-fv43/GHSA-fq7f-2c8x-fv43.json index 7333bdbad15..80ba3d7bfe1 100644 --- a/advisories/unreviewed/2022/05/GHSA-fq7f-2c8x-fv43/GHSA-fq7f-2c8x-fv43.json +++ b/advisories/unreviewed/2022/05/GHSA-fq7f-2c8x-fv43/GHSA-fq7f-2c8x-fv43.json @@ -7,12 +7,8 @@ "CVE-2020-1155" ], "details": "An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory, aka 'Windows Runtime Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1077, CVE-2020-1086, CVE-2020-1090, CVE-2020-1125, CVE-2020-1139, CVE-2020-1149, CVE-2020-1151, CVE-2020-1156, CVE-2020-1157, CVE-2020-1158, CVE-2020-1164.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fr85-fm4x-7g26/GHSA-fr85-fm4x-7g26.json b/advisories/unreviewed/2022/05/GHSA-fr85-fm4x-7g26/GHSA-fr85-fm4x-7g26.json index f797ebc6372..5a88ff1f912 100644 --- a/advisories/unreviewed/2022/05/GHSA-fr85-fm4x-7g26/GHSA-fr85-fm4x-7g26.json +++ b/advisories/unreviewed/2022/05/GHSA-fr85-fm4x-7g26/GHSA-fr85-fm4x-7g26.json @@ -7,12 +7,8 @@ "CVE-2020-12874" ], "details": "Veritas APTARE versions prior to 10.4 included code that bypassed the normal login process when specific authentication credentials were provided to the server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fr8v-vr33-9j9c/GHSA-fr8v-vr33-9j9c.json b/advisories/unreviewed/2022/05/GHSA-fr8v-vr33-9j9c/GHSA-fr8v-vr33-9j9c.json index cebcc2bc046..13a88873008 100644 --- a/advisories/unreviewed/2022/05/GHSA-fr8v-vr33-9j9c/GHSA-fr8v-vr33-9j9c.json +++ b/advisories/unreviewed/2022/05/GHSA-fr8v-vr33-9j9c/GHSA-fr8v-vr33-9j9c.json @@ -7,12 +7,8 @@ "CVE-2020-12751" ], "details": "An issue was discovered on Samsung mobile devices with O(8.X), P(9.0), and Q(10.0) software. The Quram image codec library allows attackers to overwrite memory and execute arbitrary code via crafted JPEG data that is mishandled during decoding. The Samsung ID is SVE-2020-16943 (May 2020).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fv83-f7r2-29wc/GHSA-fv83-f7r2-29wc.json b/advisories/unreviewed/2022/05/GHSA-fv83-f7r2-29wc/GHSA-fv83-f7r2-29wc.json index b36fc394bf1..3e231464e54 100644 --- a/advisories/unreviewed/2022/05/GHSA-fv83-f7r2-29wc/GHSA-fv83-f7r2-29wc.json +++ b/advisories/unreviewed/2022/05/GHSA-fv83-f7r2-29wc/GHSA-fv83-f7r2-29wc.json @@ -7,12 +7,8 @@ "CVE-2020-4411" ], "details": "The Spectrum Scale 4.2.0.0 through 4.2.3.21 and 5.0.0.0 through 5.0.4.3 file system component is affected by a denial of service vulnerability in its kernel module that could allow an attacker to cause a denial of service condition on the affected system. To exploit this vulnerability, a local attacker could invoke a subset of ioctls on the Spectrum Scale device with non-valid arguments. This could allow the attacker to crash the kernel. IBM X-Force ID: 179986.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fvfj-h98g-m96v/GHSA-fvfj-h98g-m96v.json b/advisories/unreviewed/2022/05/GHSA-fvfj-h98g-m96v/GHSA-fvfj-h98g-m96v.json index fc13478876a..013e80c43cc 100644 --- a/advisories/unreviewed/2022/05/GHSA-fvfj-h98g-m96v/GHSA-fvfj-h98g-m96v.json +++ b/advisories/unreviewed/2022/05/GHSA-fvfj-h98g-m96v/GHSA-fvfj-h98g-m96v.json @@ -7,12 +7,8 @@ "CVE-2020-12427" ], "details": "The Western Digital WD Discovery application before 3.8.229 for MyCloud Home on Windows and macOS is vulnerable to CSRF, with impacts such as stealing data, modifying disk contents, or exhausting disk space.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fwmm-vfgg-4f84/GHSA-fwmm-vfgg-4f84.json b/advisories/unreviewed/2022/05/GHSA-fwmm-vfgg-4f84/GHSA-fwmm-vfgg-4f84.json index 11853b165f8..fb82a6310f6 100644 --- a/advisories/unreviewed/2022/05/GHSA-fwmm-vfgg-4f84/GHSA-fwmm-vfgg-4f84.json +++ b/advisories/unreviewed/2022/05/GHSA-fwmm-vfgg-4f84/GHSA-fwmm-vfgg-4f84.json @@ -7,12 +7,8 @@ "CVE-2020-3255" ], "details": "A vulnerability in the packet processing functionality of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to inefficient memory management. An attacker could exploit this vulnerability by sending a high rate of IPv4 or IPv6 traffic through an affected device. This traffic would need to match a configured block action in an access control policy. An exploit could allow the attacker to cause a memory exhaustion condition on the affected device, which would result in a DoS for traffic transiting the device, as well as sluggish performance of the management interface. Once the flood is stopped, performance should return to previous states.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g2x4-xwq5-85w3/GHSA-g2x4-xwq5-85w3.json b/advisories/unreviewed/2022/05/GHSA-g2x4-xwq5-85w3/GHSA-g2x4-xwq5-85w3.json index 863fd7f17ef..e3bd293380b 100644 --- a/advisories/unreviewed/2022/05/GHSA-g2x4-xwq5-85w3/GHSA-g2x4-xwq5-85w3.json +++ b/advisories/unreviewed/2022/05/GHSA-g2x4-xwq5-85w3/GHSA-g2x4-xwq5-85w3.json @@ -7,12 +7,8 @@ "CVE-2020-4288" ], "details": "IBM i2 Intelligent Analyis Platform 9.2.1 could allow a remote attacker to execute arbitrary code on the system, caused by a memory corruption error. By persuading a victim to open a specially-crafted document, a remote attacker could exploit this vulnerability to execute arbitrary code on the system with the privileges of the victim or cause the application to crash. IBM X-Force ID: 176270.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g5gv-j2x8-cxr2/GHSA-g5gv-j2x8-cxr2.json b/advisories/unreviewed/2022/05/GHSA-g5gv-j2x8-cxr2/GHSA-g5gv-j2x8-cxr2.json index 93bdaca9924..42e7779ce17 100644 --- a/advisories/unreviewed/2022/05/GHSA-g5gv-j2x8-cxr2/GHSA-g5gv-j2x8-cxr2.json +++ b/advisories/unreviewed/2022/05/GHSA-g5gv-j2x8-cxr2/GHSA-g5gv-j2x8-cxr2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g5hm-28jr-53fh/GHSA-g5hm-28jr-53fh.json b/advisories/unreviewed/2022/05/GHSA-g5hm-28jr-53fh/GHSA-g5hm-28jr-53fh.json index 8f0398e2b42..70cff1e96f1 100644 --- a/advisories/unreviewed/2022/05/GHSA-g5hm-28jr-53fh/GHSA-g5hm-28jr-53fh.json +++ b/advisories/unreviewed/2022/05/GHSA-g5hm-28jr-53fh/GHSA-g5hm-28jr-53fh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g5hw-7f7p-926r/GHSA-g5hw-7f7p-926r.json b/advisories/unreviewed/2022/05/GHSA-g5hw-7f7p-926r/GHSA-g5hw-7f7p-926r.json index 92f490ddd78..47312a401b7 100644 --- a/advisories/unreviewed/2022/05/GHSA-g5hw-7f7p-926r/GHSA-g5hw-7f7p-926r.json +++ b/advisories/unreviewed/2022/05/GHSA-g5hw-7f7p-926r/GHSA-g5hw-7f7p-926r.json @@ -7,12 +7,8 @@ "CVE-2019-17066" ], "details": "In Ivanti WorkSpace Control before 10.4.40.0, a user can elevate rights on the system by hijacking certain user registries. This is possible because pwrgrid.exe first checks the Current User registry hives (HKCU) when starting an application with elevated rights.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g5v3-9q89-5r4p/GHSA-g5v3-9q89-5r4p.json b/advisories/unreviewed/2022/05/GHSA-g5v3-9q89-5r4p/GHSA-g5v3-9q89-5r4p.json index c14efcf664a..1d249941e35 100644 --- a/advisories/unreviewed/2022/05/GHSA-g5v3-9q89-5r4p/GHSA-g5v3-9q89-5r4p.json +++ b/advisories/unreviewed/2022/05/GHSA-g5v3-9q89-5r4p/GHSA-g5v3-9q89-5r4p.json @@ -7,12 +7,8 @@ "CVE-2020-13392" ], "details": "An issue was discovered on Tenda AC6 V1.0 V15.03.05.19_multi_TD01, AC9 V1.0 V15.03.05.19(6318)_CN, AC9 V3.0 V15.03.06.42_multi, AC15 V1.0 V15.03.05.19_multi_TD01, and AC18 V15.03.05.19(6318_)_CN devices. There is a buffer overflow vulnerability in the router's web server -- httpd. While processing the /goform/setcfm funcpara1 parameter for a POST request, a value is directly used in a sprintf to a local variable placed on the stack, which overwrites the return address of a function. An attacker can construct a payload to carry out arbitrary code execution attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g64q-v8cm-wr64/GHSA-g64q-v8cm-wr64.json b/advisories/unreviewed/2022/05/GHSA-g64q-v8cm-wr64/GHSA-g64q-v8cm-wr64.json index 35f62a39b80..af3c969458a 100644 --- a/advisories/unreviewed/2022/05/GHSA-g64q-v8cm-wr64/GHSA-g64q-v8cm-wr64.json +++ b/advisories/unreviewed/2022/05/GHSA-g64q-v8cm-wr64/GHSA-g64q-v8cm-wr64.json @@ -7,12 +7,8 @@ "CVE-2020-12742" ], "details": "The iubenda-cookie-law-solution plugin before 2.3.5 for WordPress does not restrict URL sanitization to http protocols.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g65v-mxwq-6x57/GHSA-g65v-mxwq-6x57.json b/advisories/unreviewed/2022/05/GHSA-g65v-mxwq-6x57/GHSA-g65v-mxwq-6x57.json index bf0343ae344..82f574ec510 100644 --- a/advisories/unreviewed/2022/05/GHSA-g65v-mxwq-6x57/GHSA-g65v-mxwq-6x57.json +++ b/advisories/unreviewed/2022/05/GHSA-g65v-mxwq-6x57/GHSA-g65v-mxwq-6x57.json @@ -7,12 +7,8 @@ "CVE-2020-12257" ], "details": "rConfig 3.9.4 is vulnerable to cross-site request forgery (CSRF) because it lacks implementation of CSRF protection such as a CSRF token. An attacker can leverage this vulnerability by creating a form (add a user, delete a user, or edit a user).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g6j2-7rfr-vwqx/GHSA-g6j2-7rfr-vwqx.json b/advisories/unreviewed/2022/05/GHSA-g6j2-7rfr-vwqx/GHSA-g6j2-7rfr-vwqx.json index 7ff473550f2..3a61548eea4 100644 --- a/advisories/unreviewed/2022/05/GHSA-g6j2-7rfr-vwqx/GHSA-g6j2-7rfr-vwqx.json +++ b/advisories/unreviewed/2022/05/GHSA-g6j2-7rfr-vwqx/GHSA-g6j2-7rfr-vwqx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gcx3-7mfr-m9mp/GHSA-gcx3-7mfr-m9mp.json b/advisories/unreviewed/2022/05/GHSA-gcx3-7mfr-m9mp/GHSA-gcx3-7mfr-m9mp.json index 1b4adbb1400..16e6847089e 100644 --- a/advisories/unreviewed/2022/05/GHSA-gcx3-7mfr-m9mp/GHSA-gcx3-7mfr-m9mp.json +++ b/advisories/unreviewed/2022/05/GHSA-gcx3-7mfr-m9mp/GHSA-gcx3-7mfr-m9mp.json @@ -7,12 +7,8 @@ "CVE-2020-13118" ], "details": "An issue was discovered in Mikrotik-Router-Monitoring-System through 2018-10-22. SQL Injection exists in check_community.php via the parameter community.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gfx3-chv9-3c94/GHSA-gfx3-chv9-3c94.json b/advisories/unreviewed/2022/05/GHSA-gfx3-chv9-3c94/GHSA-gfx3-chv9-3c94.json index c1aa8830757..ca6bf8b324c 100644 --- a/advisories/unreviewed/2022/05/GHSA-gfx3-chv9-3c94/GHSA-gfx3-chv9-3c94.json +++ b/advisories/unreviewed/2022/05/GHSA-gfx3-chv9-3c94/GHSA-gfx3-chv9-3c94.json @@ -7,12 +7,8 @@ "CVE-2020-13417" ], "details": "An Elevation of Privilege issue was discovered in Aviatrix VPN Client before 2.10.7, because of an incomplete fix for CVE-2020-7224. This affects Linux, macOS, and Windows installations for certain OpenSSL parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gg26-hjx8-2qpm/GHSA-gg26-hjx8-2qpm.json b/advisories/unreviewed/2022/05/GHSA-gg26-hjx8-2qpm/GHSA-gg26-hjx8-2qpm.json index f40b092aefe..3dde2fb835c 100644 --- a/advisories/unreviewed/2022/05/GHSA-gg26-hjx8-2qpm/GHSA-gg26-hjx8-2qpm.json +++ b/advisories/unreviewed/2022/05/GHSA-gg26-hjx8-2qpm/GHSA-gg26-hjx8-2qpm.json @@ -7,12 +7,8 @@ "CVE-2019-19162" ], "details": "A use-after-free vulnerability in the TOBESOFT XPLATFORM versions 9.1 to 9.2.2 may lead to code execution on a system running it.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gg7p-jc5w-p68m/GHSA-gg7p-jc5w-p68m.json b/advisories/unreviewed/2022/05/GHSA-gg7p-jc5w-p68m/GHSA-gg7p-jc5w-p68m.json index 820f1bb89ed..cc9c7888677 100644 --- a/advisories/unreviewed/2022/05/GHSA-gg7p-jc5w-p68m/GHSA-gg7p-jc5w-p68m.json +++ b/advisories/unreviewed/2022/05/GHSA-gg7p-jc5w-p68m/GHSA-gg7p-jc5w-p68m.json @@ -7,12 +7,8 @@ "CVE-2018-8956" ], "details": "ntpd in ntp 4.2.8p10, 4.2.8p11, 4.2.8p12 and 4.2.8p13 allow remote attackers to prevent a broadcast client from synchronizing its clock with a broadcast NTP server via soofed mode 3 and mode 5 packets. The attacker must either be a part of the same broadcast network or control a slave in that broadcast network that can capture certain required packets on the attacker's behalf and send them to the attacker.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ghfj-4v63-j27q/GHSA-ghfj-4v63-j27q.json b/advisories/unreviewed/2022/05/GHSA-ghfj-4v63-j27q/GHSA-ghfj-4v63-j27q.json index b8fa3acaeb5..c90e0002116 100644 --- a/advisories/unreviewed/2022/05/GHSA-ghfj-4v63-j27q/GHSA-ghfj-4v63-j27q.json +++ b/advisories/unreviewed/2022/05/GHSA-ghfj-4v63-j27q/GHSA-ghfj-4v63-j27q.json @@ -7,12 +7,8 @@ "CVE-2020-9474" ], "details": "The S. Siedle & Soehne SG 150-0 Smart Gateway before 1.2.4 allows remote code execution via the backup functionality in the web frontend. By using an exploit chain, an attacker with access to the network can get root access on the gateway.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ghj2-fhw7-mwmw/GHSA-ghj2-fhw7-mwmw.json b/advisories/unreviewed/2022/05/GHSA-ghj2-fhw7-mwmw/GHSA-ghj2-fhw7-mwmw.json index 238b2503b0d..c93912b5569 100644 --- a/advisories/unreviewed/2022/05/GHSA-ghj2-fhw7-mwmw/GHSA-ghj2-fhw7-mwmw.json +++ b/advisories/unreviewed/2022/05/GHSA-ghj2-fhw7-mwmw/GHSA-ghj2-fhw7-mwmw.json @@ -7,12 +7,8 @@ "CVE-2020-12703" ], "details": "UliCMS before 2020.2 has XSS during PackageController uninstall.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ghvr-qx8j-cvxq/GHSA-ghvr-qx8j-cvxq.json b/advisories/unreviewed/2022/05/GHSA-ghvr-qx8j-cvxq/GHSA-ghvr-qx8j-cvxq.json index 1fefdef3907..ad14c014f82 100644 --- a/advisories/unreviewed/2022/05/GHSA-ghvr-qx8j-cvxq/GHSA-ghvr-qx8j-cvxq.json +++ b/advisories/unreviewed/2022/05/GHSA-ghvr-qx8j-cvxq/GHSA-ghvr-qx8j-cvxq.json @@ -7,12 +7,8 @@ "CVE-2019-18867" ], "details": "Browsable directories in Blaauw Remote Kiln Control through v3.00r4 allow an attacker to enumerate sensitive filenames and locations, including source code. This affects /ajax/, /common/, /engine/, /flash/, /images/, /Images/, /jscripts/, /lang/, /layout/, /programs/, and /sms/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gj62-72x5-vwvc/GHSA-gj62-72x5-vwvc.json b/advisories/unreviewed/2022/05/GHSA-gj62-72x5-vwvc/GHSA-gj62-72x5-vwvc.json index bc21bedd9b7..910e1e0c7e8 100644 --- a/advisories/unreviewed/2022/05/GHSA-gj62-72x5-vwvc/GHSA-gj62-72x5-vwvc.json +++ b/advisories/unreviewed/2022/05/GHSA-gj62-72x5-vwvc/GHSA-gj62-72x5-vwvc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gmhq-vm7x-p5c3/GHSA-gmhq-vm7x-p5c3.json b/advisories/unreviewed/2022/05/GHSA-gmhq-vm7x-p5c3/GHSA-gmhq-vm7x-p5c3.json index 2ebee85ef27..94a9602c13c 100644 --- a/advisories/unreviewed/2022/05/GHSA-gmhq-vm7x-p5c3/GHSA-gmhq-vm7x-p5c3.json +++ b/advisories/unreviewed/2022/05/GHSA-gmhq-vm7x-p5c3/GHSA-gmhq-vm7x-p5c3.json @@ -7,12 +7,8 @@ "CVE-2020-10058" ], "details": "Multiple syscalls in the Kscan subsystem perform insufficient argument validation, allowing code executing in userspace to potentially gain elevated privileges. See NCC-ZEP-006 This issue affects: zephyrproject-rtos zephyr version 2.1.0 and later versions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gr85-jmxj-9p7g/GHSA-gr85-jmxj-9p7g.json b/advisories/unreviewed/2022/05/GHSA-gr85-jmxj-9p7g/GHSA-gr85-jmxj-9p7g.json index 6ec2a201e07..369fc16f93a 100644 --- a/advisories/unreviewed/2022/05/GHSA-gr85-jmxj-9p7g/GHSA-gr85-jmxj-9p7g.json +++ b/advisories/unreviewed/2022/05/GHSA-gr85-jmxj-9p7g/GHSA-gr85-jmxj-9p7g.json @@ -7,12 +7,8 @@ "CVE-2020-12766" ], "details": "Gnuteca 3.8 allows action=main:search:simpleSearch SQL Injection via the exemplaryStatusId parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-grc8-24j5-x6fj/GHSA-grc8-24j5-x6fj.json b/advisories/unreviewed/2022/05/GHSA-grc8-24j5-x6fj/GHSA-grc8-24j5-x6fj.json index 13103059911..fff8082fc36 100644 --- a/advisories/unreviewed/2022/05/GHSA-grc8-24j5-x6fj/GHSA-grc8-24j5-x6fj.json +++ b/advisories/unreviewed/2022/05/GHSA-grc8-24j5-x6fj/GHSA-grc8-24j5-x6fj.json @@ -7,12 +7,8 @@ "CVE-2020-1191" ], "details": "An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in memory, aka 'Windows State Repository Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1124, CVE-2020-1131, CVE-2020-1134, CVE-2020-1144, CVE-2020-1184, CVE-2020-1185, CVE-2020-1186, CVE-2020-1187, CVE-2020-1188, CVE-2020-1189, CVE-2020-1190.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-grq6-472c-73fx/GHSA-grq6-472c-73fx.json b/advisories/unreviewed/2022/05/GHSA-grq6-472c-73fx/GHSA-grq6-472c-73fx.json index 38311e96ce2..052af66fd36 100644 --- a/advisories/unreviewed/2022/05/GHSA-grq6-472c-73fx/GHSA-grq6-472c-73fx.json +++ b/advisories/unreviewed/2022/05/GHSA-grq6-472c-73fx/GHSA-grq6-472c-73fx.json @@ -7,12 +7,8 @@ "CVE-2020-1996" ], "details": "A missing authorization vulnerability in the management server component of PAN-OS Panorama allows a remote unauthenticated user to inject messages into the management server ms.log file. This vulnerability can be leveraged to obfuscate an ongoing attack or fabricate log entries in the ms.log file This issue affects: All versions of PAN-OS 7.1 and 8.0; PAN-OS 8.1 versions earlier than 8.1.14; PAN-OS 9.0 versions earlier than 9.0.9.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gv78-mqw3-qh76/GHSA-gv78-mqw3-qh76.json b/advisories/unreviewed/2022/05/GHSA-gv78-mqw3-qh76/GHSA-gv78-mqw3-qh76.json index 3d7269cb707..48be46c5583 100644 --- a/advisories/unreviewed/2022/05/GHSA-gv78-mqw3-qh76/GHSA-gv78-mqw3-qh76.json +++ b/advisories/unreviewed/2022/05/GHSA-gv78-mqw3-qh76/GHSA-gv78-mqw3-qh76.json @@ -7,12 +7,8 @@ "CVE-2020-0109" ], "details": "In simulatePackageSuspendBroadcast of NotificationManagerService.java, there is a missing permission check. This could lead to local escalation of privilege by creating fake system notifications with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-9 Android-10Android ID: A-148059175", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gw3g-cf9f-jmp2/GHSA-gw3g-cf9f-jmp2.json b/advisories/unreviewed/2022/05/GHSA-gw3g-cf9f-jmp2/GHSA-gw3g-cf9f-jmp2.json index 96d547dd765..cfef3acfbd7 100644 --- a/advisories/unreviewed/2022/05/GHSA-gw3g-cf9f-jmp2/GHSA-gw3g-cf9f-jmp2.json +++ b/advisories/unreviewed/2022/05/GHSA-gw3g-cf9f-jmp2/GHSA-gw3g-cf9f-jmp2.json @@ -7,12 +7,8 @@ "CVE-2020-13389" ], "details": "An issue was discovered on Tenda AC6 V1.0 V15.03.05.19_multi_TD01, AC9 V1.0 V15.03.05.19(6318)_CN, AC9 V3.0 V15.03.06.42_multi, AC15 V1.0 V15.03.05.19_multi_TD01, and AC18 V15.03.05.19(6318_)_CN devices. There is a buffer overflow vulnerability in the router's web server -- httpd. While processing the /goform/openSchedWifi schedStartTime and schedEndTime parameters for a POST request, a value is directly used in a strcpy to a local variable placed on the stack, which overwrites the return address of a function. An attacker can construct a payload to carry out arbitrary code execution attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gwj2-7fw9-8jcx/GHSA-gwj2-7fw9-8jcx.json b/advisories/unreviewed/2022/05/GHSA-gwj2-7fw9-8jcx/GHSA-gwj2-7fw9-8jcx.json index 6f6f7ef0d30..a7631901e7b 100644 --- a/advisories/unreviewed/2022/05/GHSA-gwj2-7fw9-8jcx/GHSA-gwj2-7fw9-8jcx.json +++ b/advisories/unreviewed/2022/05/GHSA-gwj2-7fw9-8jcx/GHSA-gwj2-7fw9-8jcx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gxv4-cqjv-gg3m/GHSA-gxv4-cqjv-gg3m.json b/advisories/unreviewed/2022/05/GHSA-gxv4-cqjv-gg3m/GHSA-gxv4-cqjv-gg3m.json index cbcbcce6026..a2336e2e41d 100644 --- a/advisories/unreviewed/2022/05/GHSA-gxv4-cqjv-gg3m/GHSA-gxv4-cqjv-gg3m.json +++ b/advisories/unreviewed/2022/05/GHSA-gxv4-cqjv-gg3m/GHSA-gxv4-cqjv-gg3m.json @@ -7,12 +7,8 @@ "CVE-2020-12038" ], "details": "Products that use EDS Subsystem: Version 28.0.1 and prior (FactoryTalk Linx software (Previously called RSLinx Enterprise): Versions 6.00, 6.10, and 6.11, RSLinx Classic: Version 4.11.00 and prior, RSNetWorx software: Version 28.00.00 and prior, Studio 5000 Logix Designer software: Version 32 and prior) is vulnerable. A memory corruption vulnerability exists in the algorithm that matches square brackets in the EDS subsystem. This may allow an attacker to craft specialized EDS files to crash the EDSParser COM object, leading to denial-of-service conditions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h245-x3rp-cpq4/GHSA-h245-x3rp-cpq4.json b/advisories/unreviewed/2022/05/GHSA-h245-x3rp-cpq4/GHSA-h245-x3rp-cpq4.json index 4fd0c530427..abbfe7d8d55 100644 --- a/advisories/unreviewed/2022/05/GHSA-h245-x3rp-cpq4/GHSA-h245-x3rp-cpq4.json +++ b/advisories/unreviewed/2022/05/GHSA-h245-x3rp-cpq4/GHSA-h245-x3rp-cpq4.json @@ -7,12 +7,8 @@ "CVE-2020-8789" ], "details": "Composr 10.0.30 allows Persistent XSS via a Usergroup name under the Security configuration.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h2cg-59q7-cp5x/GHSA-h2cg-59q7-cp5x.json b/advisories/unreviewed/2022/05/GHSA-h2cg-59q7-cp5x/GHSA-h2cg-59q7-cp5x.json index e2b5be42e89..e4fd3fb0c8c 100644 --- a/advisories/unreviewed/2022/05/GHSA-h2cg-59q7-cp5x/GHSA-h2cg-59q7-cp5x.json +++ b/advisories/unreviewed/2022/05/GHSA-h2cg-59q7-cp5x/GHSA-h2cg-59q7-cp5x.json @@ -7,12 +7,8 @@ "CVE-2020-12832" ], "details": "The simple-file-list plugin before 4.2.8 for WordPress mishandles a .. sequence within a pathname in cases where front-side file management occurs on a non-Linux platform.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h2j6-v888-8gxm/GHSA-h2j6-v888-8gxm.json b/advisories/unreviewed/2022/05/GHSA-h2j6-v888-8gxm/GHSA-h2j6-v888-8gxm.json index 1ff1d3e59e0..2b07db651ef 100644 --- a/advisories/unreviewed/2022/05/GHSA-h2j6-v888-8gxm/GHSA-h2j6-v888-8gxm.json +++ b/advisories/unreviewed/2022/05/GHSA-h2j6-v888-8gxm/GHSA-h2j6-v888-8gxm.json @@ -7,12 +7,8 @@ "CVE-2020-3186" ], "details": "A vulnerability in the management access list configuration of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass a configured management interface access list on an affected system. The vulnerability is due to the configuration of different management access lists, with ports allowed in one access list and denied in another. An attacker could exploit this vulnerability by sending crafted remote management traffic to the local IP address of an affected system. A successful exploit could allow the attacker to bypass the configured management access list policies, and traffic to the management interface would not be properly denied.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h3m8-vp3w-7c77/GHSA-h3m8-vp3w-7c77.json b/advisories/unreviewed/2022/05/GHSA-h3m8-vp3w-7c77/GHSA-h3m8-vp3w-7c77.json index 3d0b27877d8..0533b2434c6 100644 --- a/advisories/unreviewed/2022/05/GHSA-h3m8-vp3w-7c77/GHSA-h3m8-vp3w-7c77.json +++ b/advisories/unreviewed/2022/05/GHSA-h3m8-vp3w-7c77/GHSA-h3m8-vp3w-7c77.json @@ -7,12 +7,8 @@ "CVE-2020-12746" ], "details": "An issue was discovered on Samsung mobile devices with O(8.X), P(9.0), and Q(10.0) (Exynos chipsets) software. Attackers can bypass the Secure Bootloader protection mechanism via a heap-based buffer overflow to execute arbitrary code. The Samsung ID is SVE-2020-16712 (May 2020).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h48v-g2fp-97x2/GHSA-h48v-g2fp-97x2.json b/advisories/unreviewed/2022/05/GHSA-h48v-g2fp-97x2/GHSA-h48v-g2fp-97x2.json index f9e60551a1d..e53dbecb357 100644 --- a/advisories/unreviewed/2022/05/GHSA-h48v-g2fp-97x2/GHSA-h48v-g2fp-97x2.json +++ b/advisories/unreviewed/2022/05/GHSA-h48v-g2fp-97x2/GHSA-h48v-g2fp-97x2.json @@ -7,12 +7,8 @@ "CVE-2020-12014" ], "details": "Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0. Input is not properly sanitized and may allow an attacker to inject SQL commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h5rh-jw67-x3pc/GHSA-h5rh-jw67-x3pc.json b/advisories/unreviewed/2022/05/GHSA-h5rh-jw67-x3pc/GHSA-h5rh-jw67-x3pc.json index 1de2e58197a..fffe082999d 100644 --- a/advisories/unreviewed/2022/05/GHSA-h5rh-jw67-x3pc/GHSA-h5rh-jw67-x3pc.json +++ b/advisories/unreviewed/2022/05/GHSA-h5rh-jw67-x3pc/GHSA-h5rh-jw67-x3pc.json @@ -7,12 +7,8 @@ "CVE-2019-7246" ], "details": "An issue was discovered in atillk64.sys in AMD ATI Diagnostics Hardware Abstraction Sys/Overclocking Utility 5.11.9.0. The vulnerable driver exposes a wrmsr instruction and does not properly filter the Model Specific Register (MSR). Allowing arbitrary MSR writes can lead to Ring-0 code execution and escalation of privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h5vj-g7qc-m75w/GHSA-h5vj-g7qc-m75w.json b/advisories/unreviewed/2022/05/GHSA-h5vj-g7qc-m75w/GHSA-h5vj-g7qc-m75w.json index 5adb1a6c5b9..cd22c111f18 100644 --- a/advisories/unreviewed/2022/05/GHSA-h5vj-g7qc-m75w/GHSA-h5vj-g7qc-m75w.json +++ b/advisories/unreviewed/2022/05/GHSA-h5vj-g7qc-m75w/GHSA-h5vj-g7qc-m75w.json @@ -7,12 +7,8 @@ "CVE-2020-6651" ], "details": "Improper Input Validation in Eaton's Intelligent Power Manager (IPM) v 1.67 & prior on file name during configuration file import functionality allows attackers to perform command injection or code execution via specially crafted file names while uploading the configuration file in the application.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h6cx-vr2q-r4vv/GHSA-h6cx-vr2q-r4vv.json b/advisories/unreviewed/2022/05/GHSA-h6cx-vr2q-r4vv/GHSA-h6cx-vr2q-r4vv.json index 2b9c7805288..8e77faceb89 100644 --- a/advisories/unreviewed/2022/05/GHSA-h6cx-vr2q-r4vv/GHSA-h6cx-vr2q-r4vv.json +++ b/advisories/unreviewed/2022/05/GHSA-h6cx-vr2q-r4vv/GHSA-h6cx-vr2q-r4vv.json @@ -7,12 +7,8 @@ "CVE-2020-5343" ], "details": "Dell Client platforms restored using a Dell OS recovery image downloaded before December 20, 2019, may contain an insecure inherited permissions vulnerability. A local authenticated malicious user with low privileges could exploit this vulnerability to gain unauthorized access on the root folder.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h77r-523x-wxpw/GHSA-h77r-523x-wxpw.json b/advisories/unreviewed/2022/05/GHSA-h77r-523x-wxpw/GHSA-h77r-523x-wxpw.json index 57f792e887d..b949b263798 100644 --- a/advisories/unreviewed/2022/05/GHSA-h77r-523x-wxpw/GHSA-h77r-523x-wxpw.json +++ b/advisories/unreviewed/2022/05/GHSA-h77r-523x-wxpw/GHSA-h77r-523x-wxpw.json @@ -7,12 +7,8 @@ "CVE-2020-4468" ], "details": "IBM i2 Intelligent Analyis Platform 9.2.1 could allow a remote attacker to execute arbitrary code on the system, caused by memory corruption. By persuading a victim to open a specially-crafted document, a remote attacker could exploit this vulnerability to execute arbitrary code on the system with the privileges of the victim or cause the application to crash. IBM X-Force ID: 181723.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h8xc-cp2p-x3fc/GHSA-h8xc-cp2p-x3fc.json b/advisories/unreviewed/2022/05/GHSA-h8xc-cp2p-x3fc/GHSA-h8xc-cp2p-x3fc.json index 11d957be4b5..c141c287c88 100644 --- a/advisories/unreviewed/2022/05/GHSA-h8xc-cp2p-x3fc/GHSA-h8xc-cp2p-x3fc.json +++ b/advisories/unreviewed/2022/05/GHSA-h8xc-cp2p-x3fc/GHSA-h8xc-cp2p-x3fc.json @@ -7,12 +7,8 @@ "CVE-2020-7805" ], "details": "An issue was discovered on KT Slim egg IML500 (R7283, R8112, R8424) and IML520 (R8112, R8368, R8411) wifi device. This issue is a command injection allowing attackers to execute arbitrary OS commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h9hx-frq3-jv6m/GHSA-h9hx-frq3-jv6m.json b/advisories/unreviewed/2022/05/GHSA-h9hx-frq3-jv6m/GHSA-h9hx-frq3-jv6m.json index 0faed3c2fc4..a4f65c12073 100644 --- a/advisories/unreviewed/2022/05/GHSA-h9hx-frq3-jv6m/GHSA-h9hx-frq3-jv6m.json +++ b/advisories/unreviewed/2022/05/GHSA-h9hx-frq3-jv6m/GHSA-h9hx-frq3-jv6m.json @@ -7,12 +7,8 @@ "CVE-2020-2006" ], "details": "A stack-based buffer overflow vulnerability in the management server component of PAN-OS that allows an authenticated user to potentially execute arbitrary code with root privileges. This issue affects: All versions of PAN-OS 7.1 and 8.0; PAN-OS 8.1 versions earlier than 8.1.14.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hc53-772h-hrgp/GHSA-hc53-772h-hrgp.json b/advisories/unreviewed/2022/05/GHSA-hc53-772h-hrgp/GHSA-hc53-772h-hrgp.json index 8371eb2725b..fab4737335a 100644 --- a/advisories/unreviewed/2022/05/GHSA-hc53-772h-hrgp/GHSA-hc53-772h-hrgp.json +++ b/advisories/unreviewed/2022/05/GHSA-hc53-772h-hrgp/GHSA-hc53-772h-hrgp.json @@ -7,12 +7,8 @@ "CVE-2020-3189" ], "details": "A vulnerability in the VPN System Logging functionality for Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a memory leak that can deplete system memory over time, which can cause unexpected system behaviors or device crashes. The vulnerability is due to the system memory not being properly freed for a VPN System Logging event generated when a VPN session is created or deleted. An attacker could exploit this vulnerability by repeatedly creating or deleting a VPN tunnel connection, which could leak a small amount of system memory for each logging event. A successful exploit could allow the attacker to cause system memory depletion, which can lead to a systemwide denial of service (DoS) condition. The attacker does not have any control of whether VPN System Logging is configured or not on the device, but it is enabled by default.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hc63-fv38-p9mv/GHSA-hc63-fv38-p9mv.json b/advisories/unreviewed/2022/05/GHSA-hc63-fv38-p9mv/GHSA-hc63-fv38-p9mv.json index 60a4db23b5d..731d642c582 100644 --- a/advisories/unreviewed/2022/05/GHSA-hc63-fv38-p9mv/GHSA-hc63-fv38-p9mv.json +++ b/advisories/unreviewed/2022/05/GHSA-hc63-fv38-p9mv/GHSA-hc63-fv38-p9mv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hcgh-3x98-2p2v/GHSA-hcgh-3x98-2p2v.json b/advisories/unreviewed/2022/05/GHSA-hcgh-3x98-2p2v/GHSA-hcgh-3x98-2p2v.json index 3fe37251448..dad95d3d772 100644 --- a/advisories/unreviewed/2022/05/GHSA-hcgh-3x98-2p2v/GHSA-hcgh-3x98-2p2v.json +++ b/advisories/unreviewed/2022/05/GHSA-hcgh-3x98-2p2v/GHSA-hcgh-3x98-2p2v.json @@ -7,12 +7,8 @@ "CVE-2020-12068" ], "details": "An issue was discovered in CODESYS Development System before 3.5.16.0. CODESYS WebVisu and CODESYS Remote TargetVisu are susceptible to privilege escalation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hf3r-qpxc-4ph4/GHSA-hf3r-qpxc-4ph4.json b/advisories/unreviewed/2022/05/GHSA-hf3r-qpxc-4ph4/GHSA-hf3r-qpxc-4ph4.json index bc35dafd59e..f785b3ee5e4 100644 --- a/advisories/unreviewed/2022/05/GHSA-hf3r-qpxc-4ph4/GHSA-hf3r-qpxc-4ph4.json +++ b/advisories/unreviewed/2022/05/GHSA-hf3r-qpxc-4ph4/GHSA-hf3r-qpxc-4ph4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -87,9 +85,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hf62-537c-x632/GHSA-hf62-537c-x632.json b/advisories/unreviewed/2022/05/GHSA-hf62-537c-x632/GHSA-hf62-537c-x632.json index 13dda8b3f7a..a409d788366 100644 --- a/advisories/unreviewed/2022/05/GHSA-hf62-537c-x632/GHSA-hf62-537c-x632.json +++ b/advisories/unreviewed/2022/05/GHSA-hf62-537c-x632/GHSA-hf62-537c-x632.json @@ -7,12 +7,8 @@ "CVE-2020-13394" ], "details": "An issue was discovered on Tenda AC6 V1.0 V15.03.05.19_multi_TD01, AC9 V1.0 V15.03.05.19(6318)_CN, AC9 V3.0 V15.03.06.42_multi, AC15 V1.0 V15.03.05.19_multi_TD01, and AC18 V15.03.05.19(6318_)_CN devices. There is a buffer overflow vulnerability in the router's web server -- httpd. While processing the /goform/SetNetControlList list parameter for a POST request, a value is directly used in a strcpy to a local variable placed on the stack, which overwrites the return address of a function. An attacker can construct a payload to carry out arbitrary code execution attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hfvj-8h9h-mffc/GHSA-hfvj-8h9h-mffc.json b/advisories/unreviewed/2022/05/GHSA-hfvj-8h9h-mffc/GHSA-hfvj-8h9h-mffc.json index 7a5105a02c4..fe8e639bdd5 100644 --- a/advisories/unreviewed/2022/05/GHSA-hfvj-8h9h-mffc/GHSA-hfvj-8h9h-mffc.json +++ b/advisories/unreviewed/2022/05/GHSA-hfvj-8h9h-mffc/GHSA-hfvj-8h9h-mffc.json @@ -7,12 +7,8 @@ "CVE-2020-10626" ], "details": "In Fazecast jSerialComm, Version 2.2.2 and prior, an uncontrolled search path element vulnerability could allow a malicious DLL file with the same name of any resident DLLs inside the software installation to execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hgvv-3627-37xx/GHSA-hgvv-3627-37xx.json b/advisories/unreviewed/2022/05/GHSA-hgvv-3627-37xx/GHSA-hgvv-3627-37xx.json index ec961028527..9c4b33323b0 100644 --- a/advisories/unreviewed/2022/05/GHSA-hgvv-3627-37xx/GHSA-hgvv-3627-37xx.json +++ b/advisories/unreviewed/2022/05/GHSA-hgvv-3627-37xx/GHSA-hgvv-3627-37xx.json @@ -7,12 +7,8 @@ "CVE-2020-10690" ], "details": "There is a use-after-free in kernel versions before 5.5 due to a race condition between the release of ptp_clock and cdev while resource deallocation. When a (high privileged) process allocates a ptp device file (like /dev/ptpX) and voluntarily goes to sleep. During this time if the underlying device is removed, it can cause an exploitable condition as the process wakes up to terminate and clean all attached files. The system crashes due to the cdev structure being invalid (as already freed) which is pointed to by the inode.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hjcw-2822-8qqv/GHSA-hjcw-2822-8qqv.json b/advisories/unreviewed/2022/05/GHSA-hjcw-2822-8qqv/GHSA-hjcw-2822-8qqv.json index 79a8843c6d4..b94c6db340c 100644 --- a/advisories/unreviewed/2022/05/GHSA-hjcw-2822-8qqv/GHSA-hjcw-2822-8qqv.json +++ b/advisories/unreviewed/2022/05/GHSA-hjcw-2822-8qqv/GHSA-hjcw-2822-8qqv.json @@ -7,12 +7,8 @@ "CVE-2020-10654" ], "details": "Ping Identity PingID SSH before 4.0.14 contains a heap buffer overflow in PingID-enrolled servers. This condition can be potentially exploited into a Remote Code Execution vector on the authenticating endpoint.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hm27-q8gj-j3w3/GHSA-hm27-q8gj-j3w3.json b/advisories/unreviewed/2022/05/GHSA-hm27-q8gj-j3w3/GHSA-hm27-q8gj-j3w3.json index 71b08843e87..5d4b841ebe9 100644 --- a/advisories/unreviewed/2022/05/GHSA-hm27-q8gj-j3w3/GHSA-hm27-q8gj-j3w3.json +++ b/advisories/unreviewed/2022/05/GHSA-hm27-q8gj-j3w3/GHSA-hm27-q8gj-j3w3.json @@ -7,12 +7,8 @@ "CVE-2019-18870" ], "details": "A path traversal via the iniFile parameter in excel.php in Blaauw Remote Kiln Control through v3.00r4 allows an authenticated attacker to download arbitrary files from the host machine.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hpg2-wgv6-vgm5/GHSA-hpg2-wgv6-vgm5.json b/advisories/unreviewed/2022/05/GHSA-hpg2-wgv6-vgm5/GHSA-hpg2-wgv6-vgm5.json index f17876ef0da..bcb770ac9d2 100644 --- a/advisories/unreviewed/2022/05/GHSA-hpg2-wgv6-vgm5/GHSA-hpg2-wgv6-vgm5.json +++ b/advisories/unreviewed/2022/05/GHSA-hpg2-wgv6-vgm5/GHSA-hpg2-wgv6-vgm5.json @@ -7,12 +7,8 @@ "CVE-2020-6861" ], "details": "A flawed protocol design in the Ledger Monero app before 1.5.1 for Ledger Nano and Ledger S devices allows a local attacker to extract the master spending key by sending crafted messages to this app selected on a PIN-entered Ledger connected to a host PC.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hr85-6hw5-vqgh/GHSA-hr85-6hw5-vqgh.json b/advisories/unreviewed/2022/05/GHSA-hr85-6hw5-vqgh/GHSA-hr85-6hw5-vqgh.json index 7a4440da8dc..f9a4fef130a 100644 --- a/advisories/unreviewed/2022/05/GHSA-hr85-6hw5-vqgh/GHSA-hr85-6hw5-vqgh.json +++ b/advisories/unreviewed/2022/05/GHSA-hr85-6hw5-vqgh/GHSA-hr85-6hw5-vqgh.json @@ -7,12 +7,8 @@ "CVE-2020-13145" ], "details": "Studio in Open edX Ironwood 2.5 allows users to upload SVG files via the \"Content>File Uploads\" screen. These files can contain JavaScript code and thus lead to Stored XSS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hrgv-3gf4-fvpc/GHSA-hrgv-3gf4-fvpc.json b/advisories/unreviewed/2022/05/GHSA-hrgv-3gf4-fvpc/GHSA-hrgv-3gf4-fvpc.json index 2d50ec64d20..397e2a4768e 100644 --- a/advisories/unreviewed/2022/05/GHSA-hrgv-3gf4-fvpc/GHSA-hrgv-3gf4-fvpc.json +++ b/advisories/unreviewed/2022/05/GHSA-hrgv-3gf4-fvpc/GHSA-hrgv-3gf4-fvpc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hvgf-279c-6rmq/GHSA-hvgf-279c-6rmq.json b/advisories/unreviewed/2022/05/GHSA-hvgf-279c-6rmq/GHSA-hvgf-279c-6rmq.json index b1d6d2ceb21..11a706dc856 100644 --- a/advisories/unreviewed/2022/05/GHSA-hvgf-279c-6rmq/GHSA-hvgf-279c-6rmq.json +++ b/advisories/unreviewed/2022/05/GHSA-hvgf-279c-6rmq/GHSA-hvgf-279c-6rmq.json @@ -7,12 +7,8 @@ "CVE-2020-2011" ], "details": "An improper input validation vulnerability in the configuration daemon of Palo Alto Networks PAN-OS Panorama allows for a remote unauthenticated user to send a specifically crafted registration request to the device that causes the configuration service to crash. Repeated attempts to send this request result in denial of service to all PAN-OS Panorama services by restarting the device and putting it into maintenance mode. This issue affects: All versions of PAN-OS 7.1, PAN-OS 8.0; PAN-OS 8.1 versions earlier than 8.1.14; PAN-OS 9.0 versions earlier than 9.0.7; PAN-OS 9.1 versions earlier than 9.1.0.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hvrx-8j5q-54c6/GHSA-hvrx-8j5q-54c6.json b/advisories/unreviewed/2022/05/GHSA-hvrx-8j5q-54c6/GHSA-hvrx-8j5q-54c6.json index d440f987a35..8047d442ef8 100644 --- a/advisories/unreviewed/2022/05/GHSA-hvrx-8j5q-54c6/GHSA-hvrx-8j5q-54c6.json +++ b/advisories/unreviewed/2022/05/GHSA-hvrx-8j5q-54c6/GHSA-hvrx-8j5q-54c6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hxwv-6335-26h5/GHSA-hxwv-6335-26h5.json b/advisories/unreviewed/2022/05/GHSA-hxwv-6335-26h5/GHSA-hxwv-6335-26h5.json index 3875be614c3..b031665574a 100644 --- a/advisories/unreviewed/2022/05/GHSA-hxwv-6335-26h5/GHSA-hxwv-6335-26h5.json +++ b/advisories/unreviewed/2022/05/GHSA-hxwv-6335-26h5/GHSA-hxwv-6335-26h5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j224-c526-25gp/GHSA-j224-c526-25gp.json b/advisories/unreviewed/2022/05/GHSA-j224-c526-25gp/GHSA-j224-c526-25gp.json index 5e686c75634..123b477312d 100644 --- a/advisories/unreviewed/2022/05/GHSA-j224-c526-25gp/GHSA-j224-c526-25gp.json +++ b/advisories/unreviewed/2022/05/GHSA-j224-c526-25gp/GHSA-j224-c526-25gp.json @@ -7,12 +7,8 @@ "CVE-2020-4384" ], "details": "IBM InfoSphere Information Server 11.3, 11.5, and 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 179265.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j23c-hpx8-w7p9/GHSA-j23c-hpx8-w7p9.json b/advisories/unreviewed/2022/05/GHSA-j23c-hpx8-w7p9/GHSA-j23c-hpx8-w7p9.json index f4556313032..4416b020f78 100644 --- a/advisories/unreviewed/2022/05/GHSA-j23c-hpx8-w7p9/GHSA-j23c-hpx8-w7p9.json +++ b/advisories/unreviewed/2022/05/GHSA-j23c-hpx8-w7p9/GHSA-j23c-hpx8-w7p9.json @@ -7,12 +7,8 @@ "CVE-2020-3256" ], "details": "A vulnerability in the web-based management interface of Cisco Hosted Collaboration Mediation Fulfillment (HCM-F) Software could allow an authenticated, remote attacker to gain read access to information that is stored on an affected system. To exploit this vulnerability, an attacker would need administrative privileges on the Cisco HCM-F Software. The vulnerability is due to improper handling of XML External Entity (XXE) entries when parsing certain XML files. An attacker could exploit this vulnerability by sending malicious requests that contain references in XML entities to an affected system. A successful exploit could allow the attacker to retrieve files from the local system, resulting in the disclosure of sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j2jw-2c2w-rpfh/GHSA-j2jw-2c2w-rpfh.json b/advisories/unreviewed/2022/05/GHSA-j2jw-2c2w-rpfh/GHSA-j2jw-2c2w-rpfh.json index 104fef2adc2..6af4c21cc9c 100644 --- a/advisories/unreviewed/2022/05/GHSA-j2jw-2c2w-rpfh/GHSA-j2jw-2c2w-rpfh.json +++ b/advisories/unreviewed/2022/05/GHSA-j2jw-2c2w-rpfh/GHSA-j2jw-2c2w-rpfh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j3ww-xcqh-98r2/GHSA-j3ww-xcqh-98r2.json b/advisories/unreviewed/2022/05/GHSA-j3ww-xcqh-98r2/GHSA-j3ww-xcqh-98r2.json index 9e3807ce877..1cffd60c1d2 100644 --- a/advisories/unreviewed/2022/05/GHSA-j3ww-xcqh-98r2/GHSA-j3ww-xcqh-98r2.json +++ b/advisories/unreviewed/2022/05/GHSA-j3ww-xcqh-98r2/GHSA-j3ww-xcqh-98r2.json @@ -7,12 +7,8 @@ "CVE-2020-12834" ], "details": "eQ-3 Homematic Central Control Unit (CCU)2 through 2.51.6 and CCU3 through 3.51.6 allow Remote Code Execution in the JSON API Method ReGa.runScript, by unauthenticated attackers with access to the web interface, due to the default auto-login feature being enabled during first-time setup (or factory reset).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j42j-7596-mcr4/GHSA-j42j-7596-mcr4.json b/advisories/unreviewed/2022/05/GHSA-j42j-7596-mcr4/GHSA-j42j-7596-mcr4.json index 656310ea3ce..b3ea7263311 100644 --- a/advisories/unreviewed/2022/05/GHSA-j42j-7596-mcr4/GHSA-j42j-7596-mcr4.json +++ b/advisories/unreviewed/2022/05/GHSA-j42j-7596-mcr4/GHSA-j42j-7596-mcr4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j43j-jqvq-xffr/GHSA-j43j-jqvq-xffr.json b/advisories/unreviewed/2022/05/GHSA-j43j-jqvq-xffr/GHSA-j43j-jqvq-xffr.json index 5477f881f5f..54a3f44a2dd 100644 --- a/advisories/unreviewed/2022/05/GHSA-j43j-jqvq-xffr/GHSA-j43j-jqvq-xffr.json +++ b/advisories/unreviewed/2022/05/GHSA-j43j-jqvq-xffr/GHSA-j43j-jqvq-xffr.json @@ -7,12 +7,8 @@ "CVE-2020-0102" ], "details": "In GattServer::SendResponse of gatt_server.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-143231677", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j47x-5r4f-5mpx/GHSA-j47x-5r4f-5mpx.json b/advisories/unreviewed/2022/05/GHSA-j47x-5r4f-5mpx/GHSA-j47x-5r4f-5mpx.json index be6dd6f84a6..d917d985159 100644 --- a/advisories/unreviewed/2022/05/GHSA-j47x-5r4f-5mpx/GHSA-j47x-5r4f-5mpx.json +++ b/advisories/unreviewed/2022/05/GHSA-j47x-5r4f-5mpx/GHSA-j47x-5r4f-5mpx.json @@ -7,12 +7,8 @@ "CVE-2020-13125" ], "details": "An issue was discovered in the \"Ultimate Addons for Elementor\" plugin before 1.24.2 for WordPress, as exploited in the wild in May 2020 in conjunction with CVE-2020-13126. Unauthenticated attackers can create users with the Subscriber role even if registration is disabled.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j53q-vx25-fmqm/GHSA-j53q-vx25-fmqm.json b/advisories/unreviewed/2022/05/GHSA-j53q-vx25-fmqm/GHSA-j53q-vx25-fmqm.json index de28b775aa9..ed403544e9d 100644 --- a/advisories/unreviewed/2022/05/GHSA-j53q-vx25-fmqm/GHSA-j53q-vx25-fmqm.json +++ b/advisories/unreviewed/2022/05/GHSA-j53q-vx25-fmqm/GHSA-j53q-vx25-fmqm.json @@ -7,12 +7,8 @@ "CVE-2020-3246" ], "details": "A vulnerability in the web server of Cisco Umbrella could allow an unauthenticated, remote attacker to perform a carriage return line feed (CRLF) injection attack against a user of an affected service. The vulnerability is due to insufficient validation of user input. An attacker could exploit this vulnerability by persuading a user to access a crafted URL. A successful exploit could allow the attacker to inject arbitrary HTTP headers into valid HTTP responses sent to the browser of the user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j7rm-4jv6-mjvw/GHSA-j7rm-4jv6-mjvw.json b/advisories/unreviewed/2022/05/GHSA-j7rm-4jv6-mjvw/GHSA-j7rm-4jv6-mjvw.json index ba8602bc6c6..ae428ec9fd6 100644 --- a/advisories/unreviewed/2022/05/GHSA-j7rm-4jv6-mjvw/GHSA-j7rm-4jv6-mjvw.json +++ b/advisories/unreviewed/2022/05/GHSA-j7rm-4jv6-mjvw/GHSA-j7rm-4jv6-mjvw.json @@ -7,12 +7,8 @@ "CVE-2020-5336" ], "details": "RSA Archer, versions prior to 6.7 P1 (6.7.0.1), contain a URL injection vulnerability. An unauthenticated attacker could potentially exploit this vulnerability by tricking a victim application user to execute malicious JavaScript code on the affected system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j899-9773-9wjf/GHSA-j899-9773-9wjf.json b/advisories/unreviewed/2022/05/GHSA-j899-9773-9wjf/GHSA-j899-9773-9wjf.json index 4005a65f508..702b1a40653 100644 --- a/advisories/unreviewed/2022/05/GHSA-j899-9773-9wjf/GHSA-j899-9773-9wjf.json +++ b/advisories/unreviewed/2022/05/GHSA-j899-9773-9wjf/GHSA-j899-9773-9wjf.json @@ -7,12 +7,8 @@ "CVE-2020-0090" ], "details": "An improper authorization in the receiver component of Email.Product: AndroidVersions: Android SoCAndroid ID: A-149813048", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j8hf-m5mw-qxmx/GHSA-j8hf-m5mw-qxmx.json b/advisories/unreviewed/2022/05/GHSA-j8hf-m5mw-qxmx/GHSA-j8hf-m5mw-qxmx.json index ec3f8e63f47..483e28d8b59 100644 --- a/advisories/unreviewed/2022/05/GHSA-j8hf-m5mw-qxmx/GHSA-j8hf-m5mw-qxmx.json +++ b/advisories/unreviewed/2022/05/GHSA-j8hf-m5mw-qxmx/GHSA-j8hf-m5mw-qxmx.json @@ -7,12 +7,8 @@ "CVE-2020-12764" ], "details": "Gnuteca 3.8 allows file.php?folder=/&file= Directory Traversal.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j8xj-m5wx-48gv/GHSA-j8xj-m5wx-48gv.json b/advisories/unreviewed/2022/05/GHSA-j8xj-m5wx-48gv/GHSA-j8xj-m5wx-48gv.json index 9ad9af8015d..f40a7eac27b 100644 --- a/advisories/unreviewed/2022/05/GHSA-j8xj-m5wx-48gv/GHSA-j8xj-m5wx-48gv.json +++ b/advisories/unreviewed/2022/05/GHSA-j8xj-m5wx-48gv/GHSA-j8xj-m5wx-48gv.json @@ -7,12 +7,8 @@ "CVE-2020-4346" ], "details": "IBM API Connect's V2018.4.1.0 through 2018.4.1.10 management server has an unsecured api which can be exploited by an unauthenticated attacker to obtain sensitive information. IBM X-Force ID: 178322.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jchr-7v8h-ch5r/GHSA-jchr-7v8h-ch5r.json b/advisories/unreviewed/2022/05/GHSA-jchr-7v8h-ch5r/GHSA-jchr-7v8h-ch5r.json index 535e9d3b7b3..0a7eb15cc04 100644 --- a/advisories/unreviewed/2022/05/GHSA-jchr-7v8h-ch5r/GHSA-jchr-7v8h-ch5r.json +++ b/advisories/unreviewed/2022/05/GHSA-jchr-7v8h-ch5r/GHSA-jchr-7v8h-ch5r.json @@ -7,12 +7,8 @@ "CVE-2020-1144" ], "details": "An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in memory, aka 'Windows State Repository Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1124, CVE-2020-1131, CVE-2020-1134, CVE-2020-1184, CVE-2020-1185, CVE-2020-1186, CVE-2020-1187, CVE-2020-1188, CVE-2020-1189, CVE-2020-1190, CVE-2020-1191.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jg88-2ggx-qcpg/GHSA-jg88-2ggx-qcpg.json b/advisories/unreviewed/2022/05/GHSA-jg88-2ggx-qcpg/GHSA-jg88-2ggx-qcpg.json index 0be95b93476..1e23c7d1b59 100644 --- a/advisories/unreviewed/2022/05/GHSA-jg88-2ggx-qcpg/GHSA-jg88-2ggx-qcpg.json +++ b/advisories/unreviewed/2022/05/GHSA-jg88-2ggx-qcpg/GHSA-jg88-2ggx-qcpg.json @@ -7,12 +7,8 @@ "CVE-2020-5748" ], "details": "Insufficient output sanitization in TCExam 14.2.2 allows a remote, unauthenticated attacker to conduct persistent cross-site scripting (XSS) attacks via the self-registration feature.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jgg4-3qfh-59c9/GHSA-jgg4-3qfh-59c9.json b/advisories/unreviewed/2022/05/GHSA-jgg4-3qfh-59c9/GHSA-jgg4-3qfh-59c9.json index 416d59bb0b4..87ff15a98f4 100644 --- a/advisories/unreviewed/2022/05/GHSA-jgg4-3qfh-59c9/GHSA-jgg4-3qfh-59c9.json +++ b/advisories/unreviewed/2022/05/GHSA-jgg4-3qfh-59c9/GHSA-jgg4-3qfh-59c9.json @@ -7,12 +7,8 @@ "CVE-2020-2015" ], "details": "A buffer overflow vulnerability in the PAN-OS management server allows authenticated users to crash system processes or potentially execute arbitrary code with root privileges. This issue affects: PAN-OS 7.1 versions earlier than 7.1.26; PAN-OS 8.0 versions earlier than 8.0.21; PAN-OS 8.1 versions earlier than 8.1.13; PAN-OS 9.0 versions earlier than 9.0.7; PAN-OS 9.1 versions earlier than 9.1.1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jgg8-q968-j8hx/GHSA-jgg8-q968-j8hx.json b/advisories/unreviewed/2022/05/GHSA-jgg8-q968-j8hx/GHSA-jgg8-q968-j8hx.json index ebc89f5d51e..aa999806f02 100644 --- a/advisories/unreviewed/2022/05/GHSA-jgg8-q968-j8hx/GHSA-jgg8-q968-j8hx.json +++ b/advisories/unreviewed/2022/05/GHSA-jgg8-q968-j8hx/GHSA-jgg8-q968-j8hx.json @@ -7,12 +7,8 @@ "CVE-2020-3327" ], "details": "A vulnerability in the ARJ archive parsing module in Clam AntiVirus (ClamAV) Software versions 0.102.2 could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to a heap buffer overflow read. An attacker could exploit this vulnerability by sending a crafted ARJ file to an affected device. An exploit could allow the attacker to cause the ClamAV scanning process crash, resulting in a denial of service condition.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jh5p-5rg5-g924/GHSA-jh5p-5rg5-g924.json b/advisories/unreviewed/2022/05/GHSA-jh5p-5rg5-g924/GHSA-jh5p-5rg5-g924.json index d7933371e4c..f9fcea8c103 100644 --- a/advisories/unreviewed/2022/05/GHSA-jh5p-5rg5-g924/GHSA-jh5p-5rg5-g924.json +++ b/advisories/unreviewed/2022/05/GHSA-jh5p-5rg5-g924/GHSA-jh5p-5rg5-g924.json @@ -7,12 +7,8 @@ "CVE-2020-4312" ], "details": "IBM Sterling B2B Integrator Standard Edition 5.2.0.0 trough 6.0.3.1 could allow an authenticated user to obtain sensitive information from a cached web page. IBM X-Force ID: 177089.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jhpx-hv8x-hgq4/GHSA-jhpx-hv8x-hgq4.json b/advisories/unreviewed/2022/05/GHSA-jhpx-hv8x-hgq4/GHSA-jhpx-hv8x-hgq4.json index 4d085a0da38..2d485355256 100644 --- a/advisories/unreviewed/2022/05/GHSA-jhpx-hv8x-hgq4/GHSA-jhpx-hv8x-hgq4.json +++ b/advisories/unreviewed/2022/05/GHSA-jhpx-hv8x-hgq4/GHSA-jhpx-hv8x-hgq4.json @@ -7,12 +7,8 @@ "CVE-2019-15879" ], "details": "In FreeBSD 12.1-STABLE before r356908, 12.1-RELEASE before p5, 11.3-STABLE before r356908, and 11.3-RELEASE before p9, a race condition in the cryptodev module permitted a data structure in the kernel to be used after it was freed, allowing an unprivileged process can overwrite arbitrary kernel memory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jj4x-qm7q-jmm9/GHSA-jj4x-qm7q-jmm9.json b/advisories/unreviewed/2022/05/GHSA-jj4x-qm7q-jmm9/GHSA-jj4x-qm7q-jmm9.json index 800f8225815..6fbf2e4bca1 100644 --- a/advisories/unreviewed/2022/05/GHSA-jj4x-qm7q-jmm9/GHSA-jj4x-qm7q-jmm9.json +++ b/advisories/unreviewed/2022/05/GHSA-jj4x-qm7q-jmm9/GHSA-jj4x-qm7q-jmm9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jjf5-33c4-34wr/GHSA-jjf5-33c4-34wr.json b/advisories/unreviewed/2022/05/GHSA-jjf5-33c4-34wr/GHSA-jjf5-33c4-34wr.json index 6dc9a995a5b..3b6312f0bee 100644 --- a/advisories/unreviewed/2022/05/GHSA-jjf5-33c4-34wr/GHSA-jjf5-33c4-34wr.json +++ b/advisories/unreviewed/2022/05/GHSA-jjf5-33c4-34wr/GHSA-jjf5-33c4-34wr.json @@ -7,12 +7,8 @@ "CVE-2020-8983" ], "details": "In certain situations, all versions of Citrix ShareFile StorageZones (aka storage zones) Controller, including the most recent 5.10.x releases as of May 2020, allow unauthenticated attackers to access the documents and folders of ShareFile users. NOTE: unlike most CVEs, exploitability depends on the product version that was in use when a particular setup step was performed, NOT the product version that is in use during a current assessment of a CVE consumer's product inventory. Specifically, the vulnerability can be exploited if a storage zone was created by one of these product versions: 5.9.0, 5.8.0, 5.7.0, 5.6.0, 5.5.0, or earlier. This CVE differs from CVE-2020-7473 and CVE-2020-8982 but has essentially the same risk.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jjhg-485j-q4rr/GHSA-jjhg-485j-q4rr.json b/advisories/unreviewed/2022/05/GHSA-jjhg-485j-q4rr/GHSA-jjhg-485j-q4rr.json index 7b93dced15d..bf4c10ca045 100644 --- a/advisories/unreviewed/2022/05/GHSA-jjhg-485j-q4rr/GHSA-jjhg-485j-q4rr.json +++ b/advisories/unreviewed/2022/05/GHSA-jjhg-485j-q4rr/GHSA-jjhg-485j-q4rr.json @@ -7,12 +7,8 @@ "CVE-2020-4412" ], "details": "The Spectrum Scale 4.2.0.0 through 4.2.3.21 and 5.0.0.0 through 5.0.4.3 file system component is affected by a denial of service security vulnerability. An attacker can force the Spectrum Scale mmfsd/mmsdrserv daemons to unexpectedly exit, impacting the functionality of the Spectrum Scale cluster and the availability of file systems managed by Spectrum Scale. IBM X-Force ID: 179987.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jmff-76g5-wgqf/GHSA-jmff-76g5-wgqf.json b/advisories/unreviewed/2022/05/GHSA-jmff-76g5-wgqf/GHSA-jmff-76g5-wgqf.json index 9e2393bf45d..ef029586a84 100644 --- a/advisories/unreviewed/2022/05/GHSA-jmff-76g5-wgqf/GHSA-jmff-76g5-wgqf.json +++ b/advisories/unreviewed/2022/05/GHSA-jmff-76g5-wgqf/GHSA-jmff-76g5-wgqf.json @@ -7,12 +7,8 @@ "CVE-2020-10612" ], "details": "Opto 22 SoftPAC Project Version 9.6 and prior. SoftPACAgent communicates with SoftPACMonitor over network Port 22000. However, this port is open without any restrictions. This allows an attacker with network access to control the SoftPACAgent service including updating SoftPAC firmware, starting or stopping service, or writing to certain registry values.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jp6c-5v5f-m9j9/GHSA-jp6c-5v5f-m9j9.json b/advisories/unreviewed/2022/05/GHSA-jp6c-5v5f-m9j9/GHSA-jp6c-5v5f-m9j9.json index 6ea7cde29eb..5e8c93afa8b 100644 --- a/advisories/unreviewed/2022/05/GHSA-jp6c-5v5f-m9j9/GHSA-jp6c-5v5f-m9j9.json +++ b/advisories/unreviewed/2022/05/GHSA-jp6c-5v5f-m9j9/GHSA-jp6c-5v5f-m9j9.json @@ -7,12 +7,8 @@ "CVE-2020-5898" ], "details": "In versions 7.1.5-7.1.9, BIG-IP Edge Client Windows Stonewall driver does not sanitize the pointer received from the userland. A local user on the Windows client system can send crafted DeviceIoControl requests to \\\\.\\urvpndrv device causing the Windows kernel to crash.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jpgv-32fg-p7jv/GHSA-jpgv-32fg-p7jv.json b/advisories/unreviewed/2022/05/GHSA-jpgv-32fg-p7jv/GHSA-jpgv-32fg-p7jv.json index 78547f29165..1c5940e5b5d 100644 --- a/advisories/unreviewed/2022/05/GHSA-jpgv-32fg-p7jv/GHSA-jpgv-32fg-p7jv.json +++ b/advisories/unreviewed/2022/05/GHSA-jpgv-32fg-p7jv/GHSA-jpgv-32fg-p7jv.json @@ -7,12 +7,8 @@ "CVE-2020-7806" ], "details": "Tobesoft Xplatform 9.2.2.250 and earlier version have an arbitrary code execution vulnerability by using method supported by Xplatform ActiveX Control. It allows attacker to cause remote code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jpr9-4qqq-466f/GHSA-jpr9-4qqq-466f.json b/advisories/unreviewed/2022/05/GHSA-jpr9-4qqq-466f/GHSA-jpr9-4qqq-466f.json index 9ed1fa15356..787a5a21238 100644 --- a/advisories/unreviewed/2022/05/GHSA-jpr9-4qqq-466f/GHSA-jpr9-4qqq-466f.json +++ b/advisories/unreviewed/2022/05/GHSA-jpr9-4qqq-466f/GHSA-jpr9-4qqq-466f.json @@ -7,12 +7,8 @@ "CVE-2020-7289" ], "details": "Privilege Escalation vulnerability in McAfee Active Response (MAR) for Windows prior to 2.4.3 Hotfix 1 allows a malicious script or program to perform functions that the local executing user has not been granted access to.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jqp6-4x34-x7q7/GHSA-jqp6-4x34-x7q7.json b/advisories/unreviewed/2022/05/GHSA-jqp6-4x34-x7q7/GHSA-jqp6-4x34-x7q7.json index 472cfb5acd1..cc5f0cc1fb3 100644 --- a/advisories/unreviewed/2022/05/GHSA-jqp6-4x34-x7q7/GHSA-jqp6-4x34-x7q7.json +++ b/advisories/unreviewed/2022/05/GHSA-jqp6-4x34-x7q7/GHSA-jqp6-4x34-x7q7.json @@ -7,12 +7,8 @@ "CVE-2020-11541" ], "details": "In TechSmith SnagIt before 20.1.1, an XML External Entity (XXE) injection issue exists that would allow a local attacker to exfiltrate data under the local Administrator account.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jvc8-5wqv-h35h/GHSA-jvc8-5wqv-h35h.json b/advisories/unreviewed/2022/05/GHSA-jvc8-5wqv-h35h/GHSA-jvc8-5wqv-h35h.json index 0c9a4d1b75d..e1d1e518e0b 100644 --- a/advisories/unreviewed/2022/05/GHSA-jvc8-5wqv-h35h/GHSA-jvc8-5wqv-h35h.json +++ b/advisories/unreviewed/2022/05/GHSA-jvc8-5wqv-h35h/GHSA-jvc8-5wqv-h35h.json @@ -7,12 +7,8 @@ "CVE-2020-12647" ], "details": "Unisys ALGOL Compiler 58.1 before 58.1a.15, 59.1 before 59.1a.9, and 60.0 before 60.0a.5 can emit invalid code sequences under rare circumstances related to syntax. The resulting code could, for example, trigger a system fault or adversely affect confidentiality, integrity, and availability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jvjf-g4pg-rxjm/GHSA-jvjf-g4pg-rxjm.json b/advisories/unreviewed/2022/05/GHSA-jvjf-g4pg-rxjm/GHSA-jvjf-g4pg-rxjm.json index 58c8ee81a19..45752742cf0 100644 --- a/advisories/unreviewed/2022/05/GHSA-jvjf-g4pg-rxjm/GHSA-jvjf-g4pg-rxjm.json +++ b/advisories/unreviewed/2022/05/GHSA-jvjf-g4pg-rxjm/GHSA-jvjf-g4pg-rxjm.json @@ -7,12 +7,8 @@ "CVE-2019-18871" ], "details": "A path traversal in debug.php accessed via default.php in Blaauw Remote Kiln Control through v3.00r4 allows an authenticated attacker to upload arbitrary files, leading to arbitrary remote code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m258-8c72-m4v5/GHSA-m258-8c72-m4v5.json b/advisories/unreviewed/2022/05/GHSA-m258-8c72-m4v5/GHSA-m258-8c72-m4v5.json index 9e8a2831147..8650f89db24 100644 --- a/advisories/unreviewed/2022/05/GHSA-m258-8c72-m4v5/GHSA-m258-8c72-m4v5.json +++ b/advisories/unreviewed/2022/05/GHSA-m258-8c72-m4v5/GHSA-m258-8c72-m4v5.json @@ -7,12 +7,8 @@ "CVE-2020-7265" ], "details": "Privilege Escalation vulnerability in McAfee Endpoint Security (ENS) for Mac prior to 10.6.9 allows local users to delete files the user would otherwise not have access to via manipulating symbolic links to redirect a McAfee delete action to an unintended file. This is achieved through running a malicious script or program on the target machine.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m2w4-7552-957p/GHSA-m2w4-7552-957p.json b/advisories/unreviewed/2022/05/GHSA-m2w4-7552-957p/GHSA-m2w4-7552-957p.json index 226cd8049b2..2e101ce236c 100644 --- a/advisories/unreviewed/2022/05/GHSA-m2w4-7552-957p/GHSA-m2w4-7552-957p.json +++ b/advisories/unreviewed/2022/05/GHSA-m2w4-7552-957p/GHSA-m2w4-7552-957p.json @@ -7,12 +7,8 @@ "CVE-2020-10795" ], "details": "Gira TKS-IP-Gateway 4.0.7.7 is vulnerable to authenticated remote code execution via the backup functionality of the web frontend. This can be combined with CVE-2020-10794 for remote root access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m37h-24px-f6hg/GHSA-m37h-24px-f6hg.json b/advisories/unreviewed/2022/05/GHSA-m37h-24px-f6hg/GHSA-m37h-24px-f6hg.json index cb82ecf7c9f..c4fb86d039b 100644 --- a/advisories/unreviewed/2022/05/GHSA-m37h-24px-f6hg/GHSA-m37h-24px-f6hg.json +++ b/advisories/unreviewed/2022/05/GHSA-m37h-24px-f6hg/GHSA-m37h-24px-f6hg.json @@ -7,12 +7,8 @@ "CVE-2020-12860" ], "details": "COVIDSafe through v1.0.17 allows a remote attacker to access phone name and model information because a BLE device can have four roles and COVIDSafe uses all of them. This allows for re-identification of a device, and potentially identification of the owner's name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m3gr-2w33-7p4p/GHSA-m3gr-2w33-7p4p.json b/advisories/unreviewed/2022/05/GHSA-m3gr-2w33-7p4p/GHSA-m3gr-2w33-7p4p.json index 14a4a0d1795..0a529e64b25 100644 --- a/advisories/unreviewed/2022/05/GHSA-m3gr-2w33-7p4p/GHSA-m3gr-2w33-7p4p.json +++ b/advisories/unreviewed/2022/05/GHSA-m3gr-2w33-7p4p/GHSA-m3gr-2w33-7p4p.json @@ -7,12 +7,8 @@ "CVE-2019-19164" ], "details": "dext5.ocx ActiveX Control in Dext5 Upload 5.0.0.112 and earlier versions contains a vulnerability that could allow remote files to be executed by setting the arguments to the activex method. A remote attacker could induce a user to access a crafted web page, causing damage such as malicious code infection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m3r6-89c4-786j/GHSA-m3r6-89c4-786j.json b/advisories/unreviewed/2022/05/GHSA-m3r6-89c4-786j/GHSA-m3r6-89c4-786j.json index f477a3d50ab..85cce2092ce 100644 --- a/advisories/unreviewed/2022/05/GHSA-m3r6-89c4-786j/GHSA-m3r6-89c4-786j.json +++ b/advisories/unreviewed/2022/05/GHSA-m3r6-89c4-786j/GHSA-m3r6-89c4-786j.json @@ -7,12 +7,8 @@ "CVE-2020-6252" ], "details": "Under certain conditions SAP Adaptive Server Enterprise (Cockpit), version 16.0, allows an attacker with access to local network, to get sensitive and confidential information, leading to Information Disclosure. It can be used to get user account credentials, tamper with system data and impact system availability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m622-8qr4-g6gf/GHSA-m622-8qr4-g6gf.json b/advisories/unreviewed/2022/05/GHSA-m622-8qr4-g6gf/GHSA-m622-8qr4-g6gf.json index 68dc2083988..c9c8ab819dd 100644 --- a/advisories/unreviewed/2022/05/GHSA-m622-8qr4-g6gf/GHSA-m622-8qr4-g6gf.json +++ b/advisories/unreviewed/2022/05/GHSA-m622-8qr4-g6gf/GHSA-m622-8qr4-g6gf.json @@ -7,12 +7,8 @@ "CVE-2020-13384" ], "details": "Monstra CMS 3.0.4 allows remote authenticated users to upload and execute arbitrary PHP code via admin/index.php?id=filesmanager because, for example, .php filenames are blocked but .php7 filenames are not, a related issue to CVE-2017-18048.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m777-7jfr-8wgh/GHSA-m777-7jfr-8wgh.json b/advisories/unreviewed/2022/05/GHSA-m777-7jfr-8wgh/GHSA-m777-7jfr-8wgh.json index df7ed966b60..be64cdb8264 100644 --- a/advisories/unreviewed/2022/05/GHSA-m777-7jfr-8wgh/GHSA-m777-7jfr-8wgh.json +++ b/advisories/unreviewed/2022/05/GHSA-m777-7jfr-8wgh/GHSA-m777-7jfr-8wgh.json @@ -7,12 +7,8 @@ "CVE-2020-11931" ], "details": "An Ubuntu-specific modification to Pulseaudio to provide security mediation for Snap-packaged applications was found to have a bypass of intended access restriction for snaps which plugs any of pulseaudio, audio-playback or audio-record via unloading the pulseaudio snap policy module. This issue affects: pulseaudio 1:8.0 versions prior to 1:8.0-0ubuntu3.12; 1:11.1 versions prior to 1:11.1-1ubuntu7.7; 1:13.0 versions prior to 1:13.0-1ubuntu1.2; 1:13.99.1 versions prior to 1:13.99.1-1ubuntu3.2;", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m7f9-q2xq-xmc4/GHSA-m7f9-q2xq-xmc4.json b/advisories/unreviewed/2022/05/GHSA-m7f9-q2xq-xmc4/GHSA-m7f9-q2xq-xmc4.json index 5c7b490e8c3..6ad3a221b6d 100644 --- a/advisories/unreviewed/2022/05/GHSA-m7f9-q2xq-xmc4/GHSA-m7f9-q2xq-xmc4.json +++ b/advisories/unreviewed/2022/05/GHSA-m7f9-q2xq-xmc4/GHSA-m7f9-q2xq-xmc4.json @@ -7,12 +7,8 @@ "CVE-2020-12798" ], "details": "Cellebrite UFED 5.0 to 7.5.0.845 implements local operating system policies that can be circumvented to obtain a command prompt via the Windows file dialog that is reachable via the Certificate-Based Authentication option of the Wireless Network Connection screen.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m7hv-cw89-969h/GHSA-m7hv-cw89-969h.json b/advisories/unreviewed/2022/05/GHSA-m7hv-cw89-969h/GHSA-m7hv-cw89-969h.json index 6f8eac85dec..294db48ee21 100644 --- a/advisories/unreviewed/2022/05/GHSA-m7hv-cw89-969h/GHSA-m7hv-cw89-969h.json +++ b/advisories/unreviewed/2022/05/GHSA-m7hv-cw89-969h/GHSA-m7hv-cw89-969h.json @@ -7,12 +7,8 @@ "CVE-2019-18864" ], "details": "/server-info and /server-status in Blaauw Remote Kiln Control through v3.00r4 allow an unauthenticated attacker to gain sensitive information about the host machine.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m7x8-9www-ff8c/GHSA-m7x8-9www-ff8c.json b/advisories/unreviewed/2022/05/GHSA-m7x8-9www-ff8c/GHSA-m7x8-9www-ff8c.json index 7e246c35f72..ed3e486d0eb 100644 --- a/advisories/unreviewed/2022/05/GHSA-m7x8-9www-ff8c/GHSA-m7x8-9www-ff8c.json +++ b/advisories/unreviewed/2022/05/GHSA-m7x8-9www-ff8c/GHSA-m7x8-9www-ff8c.json @@ -7,12 +7,8 @@ "CVE-2020-4467" ], "details": "IBM i2 Intelligent Analyis Platform 9.2.1 could allow a remote attacker to execute arbitrary code on the system, caused by memory corruption. By persuading a victim to open a specially-crafted document, a remote attacker could exploit this vulnerability to execute arbitrary code on the system with the privileges of the victim or cause the application to crash. IBM X-Force ID: 181721.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m82h-9vwq-8x29/GHSA-m82h-9vwq-8x29.json b/advisories/unreviewed/2022/05/GHSA-m82h-9vwq-8x29/GHSA-m82h-9vwq-8x29.json index cf576191659..d5518b8eb4e 100644 --- a/advisories/unreviewed/2022/05/GHSA-m82h-9vwq-8x29/GHSA-m82h-9vwq-8x29.json +++ b/advisories/unreviewed/2022/05/GHSA-m82h-9vwq-8x29/GHSA-m82h-9vwq-8x29.json @@ -7,12 +7,8 @@ "CVE-2020-7983" ], "details": "A CSRF issue in login.asp on Ruckus R500 3.4.2.0.384 devices allows remote attackers to access the panel or conduct SSRF attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m8g3-2q7j-6rxg/GHSA-m8g3-2q7j-6rxg.json b/advisories/unreviewed/2022/05/GHSA-m8g3-2q7j-6rxg/GHSA-m8g3-2q7j-6rxg.json index 445ed576406..61ce5545631 100644 --- a/advisories/unreviewed/2022/05/GHSA-m8g3-2q7j-6rxg/GHSA-m8g3-2q7j-6rxg.json +++ b/advisories/unreviewed/2022/05/GHSA-m8g3-2q7j-6rxg/GHSA-m8g3-2q7j-6rxg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mc84-jhmm-wh3q/GHSA-mc84-jhmm-wh3q.json b/advisories/unreviewed/2022/05/GHSA-mc84-jhmm-wh3q/GHSA-mc84-jhmm-wh3q.json index c6960741a99..21f578b1513 100644 --- a/advisories/unreviewed/2022/05/GHSA-mc84-jhmm-wh3q/GHSA-mc84-jhmm-wh3q.json +++ b/advisories/unreviewed/2022/05/GHSA-mc84-jhmm-wh3q/GHSA-mc84-jhmm-wh3q.json @@ -7,12 +7,8 @@ "CVE-2020-12687" ], "details": "An issue was discovered in Serpico before 1.3.3. The /admin/attacments_backup endpoint can be requested by non-admin authenticated users. This means that an attacker with a user account can retrieve all of the attachments of all users (including administrators) from the database.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mg46-fgw7-xxfg/GHSA-mg46-fgw7-xxfg.json b/advisories/unreviewed/2022/05/GHSA-mg46-fgw7-xxfg/GHSA-mg46-fgw7-xxfg.json index d3d1d2a98a6..ca0cc5ea4cf 100644 --- a/advisories/unreviewed/2022/05/GHSA-mg46-fgw7-xxfg/GHSA-mg46-fgw7-xxfg.json +++ b/advisories/unreviewed/2022/05/GHSA-mg46-fgw7-xxfg/GHSA-mg46-fgw7-xxfg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mhxp-v7wq-3qqc/GHSA-mhxp-v7wq-3qqc.json b/advisories/unreviewed/2022/05/GHSA-mhxp-v7wq-3qqc/GHSA-mhxp-v7wq-3qqc.json index aa7d9347f17..501bb954fce 100644 --- a/advisories/unreviewed/2022/05/GHSA-mhxp-v7wq-3qqc/GHSA-mhxp-v7wq-3qqc.json +++ b/advisories/unreviewed/2022/05/GHSA-mhxp-v7wq-3qqc/GHSA-mhxp-v7wq-3qqc.json @@ -7,12 +7,8 @@ "CVE-2020-1998" ], "details": "An improper authorization vulnerability in PAN-OS that mistakenly uses the permissions of local linux users instead of the intended SAML permissions of the account when the username is shared for the purposes of SSO authentication. This can result in authentication bypass and unintended resource access for the user. This issue affects: PAN-OS 7.1 versions earlier than 7.1.26; PAN-OS 8.0 versions earlier than 8.0.21; PAN-OS 8.1 versions earlier than 8.1.13; PAN-OS 9.0 versions earlier than 9.0.6; PAN-OS 9.1 versions earlier than 9.1.1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mjhp-68j4-wwx7/GHSA-mjhp-68j4-wwx7.json b/advisories/unreviewed/2022/05/GHSA-mjhp-68j4-wwx7/GHSA-mjhp-68j4-wwx7.json index 1b4ffe5f7b1..3d4519c9233 100644 --- a/advisories/unreviewed/2022/05/GHSA-mjhp-68j4-wwx7/GHSA-mjhp-68j4-wwx7.json +++ b/advisories/unreviewed/2022/05/GHSA-mjhp-68j4-wwx7/GHSA-mjhp-68j4-wwx7.json @@ -7,12 +7,8 @@ "CVE-2020-8020" ], "details": "A Improper Neutralization of Input During Web Page Generation vulnerability in open-build-service allows remote attackers to store arbitrary JS code to cause XSS. This issue affects: openSUSE open-build-service versions prior to 7cc32c8e2ff7290698e101d9a80a9dc29a5500fb.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mjrj-9494-78rr/GHSA-mjrj-9494-78rr.json b/advisories/unreviewed/2022/05/GHSA-mjrj-9494-78rr/GHSA-mjrj-9494-78rr.json index 3fa9dd230de..585ebb8a28d 100644 --- a/advisories/unreviewed/2022/05/GHSA-mjrj-9494-78rr/GHSA-mjrj-9494-78rr.json +++ b/advisories/unreviewed/2022/05/GHSA-mjrj-9494-78rr/GHSA-mjrj-9494-78rr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mpp6-67pf-jph5/GHSA-mpp6-67pf-jph5.json b/advisories/unreviewed/2022/05/GHSA-mpp6-67pf-jph5/GHSA-mpp6-67pf-jph5.json index baeb7140518..2fa35b838d7 100644 --- a/advisories/unreviewed/2022/05/GHSA-mpp6-67pf-jph5/GHSA-mpp6-67pf-jph5.json +++ b/advisories/unreviewed/2022/05/GHSA-mpp6-67pf-jph5/GHSA-mpp6-67pf-jph5.json @@ -7,12 +7,8 @@ "CVE-2020-11842" ], "details": "Information disclosure vulnerability in Micro Focus Verastream Host Integrator (VHI) product, affecting versions earlier than 7.8 Update 1 (7.8.49 or 7.8.0.49). The vulnerability allows an unauthenticated attackers to view information they may not have been authorized to view.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mqwp-q473-jp33/GHSA-mqwp-q473-jp33.json b/advisories/unreviewed/2022/05/GHSA-mqwp-q473-jp33/GHSA-mqwp-q473-jp33.json index 1ec0e45243f..03554a7cb3b 100644 --- a/advisories/unreviewed/2022/05/GHSA-mqwp-q473-jp33/GHSA-mqwp-q473-jp33.json +++ b/advisories/unreviewed/2022/05/GHSA-mqwp-q473-jp33/GHSA-mqwp-q473-jp33.json @@ -7,12 +7,8 @@ "CVE-2020-4265" ], "details": "IBM i2 Intelligent Analyis Platform 9.2.1 could allow a local attacker to execute arbitrary code on the system, caused by a memory corruption. By persuading a victim to open a specially-crafted file, an attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 175648.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mrg8-5g36-q5f9/GHSA-mrg8-5g36-q5f9.json b/advisories/unreviewed/2022/05/GHSA-mrg8-5g36-q5f9/GHSA-mrg8-5g36-q5f9.json index 893139fd812..6cf2c7b653e 100644 --- a/advisories/unreviewed/2022/05/GHSA-mrg8-5g36-q5f9/GHSA-mrg8-5g36-q5f9.json +++ b/advisories/unreviewed/2022/05/GHSA-mrg8-5g36-q5f9/GHSA-mrg8-5g36-q5f9.json @@ -7,12 +7,8 @@ "CVE-2020-2012" ], "details": "Improper restriction of XML external entity reference ('XXE') vulnerability in Palo Alto Networks Panorama management service allows remote unauthenticated attackers with network access to the Panorama management interface to read arbitrary files on the system. This issue affects: All versions of PAN-OS for Panorama 7.1 and 8.0; PAN-OS for Panorama 8.1 versions earlier than 8.1.13; PAN-OS for Panorama 9.0 versions earlier than 9.0.7.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mvqf-qv79-prcc/GHSA-mvqf-qv79-prcc.json b/advisories/unreviewed/2022/05/GHSA-mvqf-qv79-prcc/GHSA-mvqf-qv79-prcc.json index 5525e4977c0..2ad817978dd 100644 --- a/advisories/unreviewed/2022/05/GHSA-mvqf-qv79-prcc/GHSA-mvqf-qv79-prcc.json +++ b/advisories/unreviewed/2022/05/GHSA-mvqf-qv79-prcc/GHSA-mvqf-qv79-prcc.json @@ -7,12 +7,8 @@ "CVE-2020-0024" ], "details": "In onCreate of SettingsBaseActivity.java, there is a possible unauthorized setting modification due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-8.1 Android-9 Android-10 Android-8.0Android ID: A-137015265", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mwc4-hr5w-h77r/GHSA-mwc4-hr5w-h77r.json b/advisories/unreviewed/2022/05/GHSA-mwc4-hr5w-h77r/GHSA-mwc4-hr5w-h77r.json index 34c8011eef2..4a32535083b 100644 --- a/advisories/unreviewed/2022/05/GHSA-mwc4-hr5w-h77r/GHSA-mwc4-hr5w-h77r.json +++ b/advisories/unreviewed/2022/05/GHSA-mwc4-hr5w-h77r/GHSA-mwc4-hr5w-h77r.json @@ -7,12 +7,8 @@ "CVE-2020-11845" ], "details": "Cross Site Scripting vulnerability in Micro Focus Service Manager product. Affecting versions 9.50, 9.51, 9.52, 9.60, 9.61, 9.62, 9.63. The vulnerability could be exploited to allow remote attackers to inject arbitrary web script or HTML.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mwc4-px37-jrx4/GHSA-mwc4-px37-jrx4.json b/advisories/unreviewed/2022/05/GHSA-mwc4-px37-jrx4/GHSA-mwc4-px37-jrx4.json index e598021608a..9d4b987f2ad 100644 --- a/advisories/unreviewed/2022/05/GHSA-mwc4-px37-jrx4/GHSA-mwc4-px37-jrx4.json +++ b/advisories/unreviewed/2022/05/GHSA-mwc4-px37-jrx4/GHSA-mwc4-px37-jrx4.json @@ -7,12 +7,8 @@ "CVE-2020-10027" ], "details": "An attacker who has obtained code execution within a user thread is able to elevate privileges to that of the kernel. See NCC-ZEP-001 This issue affects: zephyrproject-rtos zephyr version 1.14.0 and later versions. version 2.1.0 and later versions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mwj9-hhpc-wqxr/GHSA-mwj9-hhpc-wqxr.json b/advisories/unreviewed/2022/05/GHSA-mwj9-hhpc-wqxr/GHSA-mwj9-hhpc-wqxr.json index c0501ce1ca5..cb99d8ca8fd 100644 --- a/advisories/unreviewed/2022/05/GHSA-mwj9-hhpc-wqxr/GHSA-mwj9-hhpc-wqxr.json +++ b/advisories/unreviewed/2022/05/GHSA-mwj9-hhpc-wqxr/GHSA-mwj9-hhpc-wqxr.json @@ -7,12 +7,8 @@ "CVE-2020-1165" ], "details": "An elevation of privilege vulnerability exists when Windows improperly handles calls to Clipboard Service, aka 'Windows Clipboard Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1111, CVE-2020-1121, CVE-2020-1166.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mwm2-vw9r-qw3f/GHSA-mwm2-vw9r-qw3f.json b/advisories/unreviewed/2022/05/GHSA-mwm2-vw9r-qw3f/GHSA-mwm2-vw9r-qw3f.json index 9a7dc6a4c91..6422926da6c 100644 --- a/advisories/unreviewed/2022/05/GHSA-mwm2-vw9r-qw3f/GHSA-mwm2-vw9r-qw3f.json +++ b/advisories/unreviewed/2022/05/GHSA-mwm2-vw9r-qw3f/GHSA-mwm2-vw9r-qw3f.json @@ -7,12 +7,8 @@ "CVE-2020-3310" ], "details": "A vulnerability in the XML parser code of Cisco Firepower Device Manager On-Box software could allow an authenticated, remote attacker to cause an affected system to become unstable or reload. The vulnerability is due to insufficient hardening of the XML parser configuration. An attacker could exploit this vulnerability in multiple ways using a malicious file: An attacker with administrative privileges could upload a malicious XML file on the system and cause the XML code to parse the malicious file. An attacker with Clientless Secure Sockets Layer (SSL) VPN access could exploit this vulnerability by sending a crafted XML file. A successful exploit would allow the attacker to crash the XML parser process, which could cause system instability, memory exhaustion, and in some cases lead to a reload of the affected system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p34r-945f-4cg9/GHSA-p34r-945f-4cg9.json b/advisories/unreviewed/2022/05/GHSA-p34r-945f-4cg9/GHSA-p34r-945f-4cg9.json index f4c953e872d..ffdca5416fc 100644 --- a/advisories/unreviewed/2022/05/GHSA-p34r-945f-4cg9/GHSA-p34r-945f-4cg9.json +++ b/advisories/unreviewed/2022/05/GHSA-p34r-945f-4cg9/GHSA-p34r-945f-4cg9.json @@ -7,12 +7,8 @@ "CVE-2020-1189" ], "details": "An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in memory, aka 'Windows State Repository Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1124, CVE-2020-1131, CVE-2020-1134, CVE-2020-1144, CVE-2020-1184, CVE-2020-1185, CVE-2020-1186, CVE-2020-1187, CVE-2020-1188, CVE-2020-1190, CVE-2020-1191.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p459-78qc-42gg/GHSA-p459-78qc-42gg.json b/advisories/unreviewed/2022/05/GHSA-p459-78qc-42gg/GHSA-p459-78qc-42gg.json index 72dcf829525..316c20a38f5 100644 --- a/advisories/unreviewed/2022/05/GHSA-p459-78qc-42gg/GHSA-p459-78qc-42gg.json +++ b/advisories/unreviewed/2022/05/GHSA-p459-78qc-42gg/GHSA-p459-78qc-42gg.json @@ -7,12 +7,8 @@ "CVE-2020-13128" ], "details": "An issue was discovered in Manolo GWTUpload 1.0.3. server/UploadServlet.java (the servlet for handling file upload) accepts a delay parameter that causes a thread to sleep. It can be abused to cause all of a server's threads to sleep, leading to denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p45r-9639-7568/GHSA-p45r-9639-7568.json b/advisories/unreviewed/2022/05/GHSA-p45r-9639-7568/GHSA-p45r-9639-7568.json index 792180db843..622c0d30901 100644 --- a/advisories/unreviewed/2022/05/GHSA-p45r-9639-7568/GHSA-p45r-9639-7568.json +++ b/advisories/unreviewed/2022/05/GHSA-p45r-9639-7568/GHSA-p45r-9639-7568.json @@ -7,12 +7,8 @@ "CVE-2020-2004" ], "details": "Under certain circumstances a user's password may be logged in cleartext in the PanGPS.log diagnostic file when logs are collected for troubleshooting on GlobalProtect app (also known as GlobalProtect Agent) for MacOS and Windows. For this issue to occur all of these conditions must be true: (1) 'Save User Credential' option should be set to 'Yes' in the GlobalProtect Portal's Agent configuration, (2) the GlobalProtect user manually selects a gateway, (3) and the logging level is set to 'Dump' while collecting troubleshooting logs. This issue does not affect GlobalProtect app on other platforms (for example iOS/Android/Linux). This issue affects GlobalProtect app 5.0 versions earlier than 5.0.9, GlobalProtect app 5.1 versions earlier than 5.1.2 on Windows or MacOS. Since becoming aware of the issue, Palo Alto Networks has safely deleted all the known GlobalProtectLogs zip files sent by customers with the credentials. We now filter and remove these credentials from all files sent to Customer Support. The GlobalProtectLogs zip files uploaded to Palo Alto Networks systems were only accessible by authorized personnel with valid Palo Alto Networks credentials. We do not have any evidence of malicious access or use of these credentials.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p4m4-hrvw-wv96/GHSA-p4m4-hrvw-wv96.json b/advisories/unreviewed/2022/05/GHSA-p4m4-hrvw-wv96/GHSA-p4m4-hrvw-wv96.json index 38525430ca4..8e44e9c6fa7 100644 --- a/advisories/unreviewed/2022/05/GHSA-p4m4-hrvw-wv96/GHSA-p4m4-hrvw-wv96.json +++ b/advisories/unreviewed/2022/05/GHSA-p4m4-hrvw-wv96/GHSA-p4m4-hrvw-wv96.json @@ -7,12 +7,8 @@ "CVE-2020-1195" ], "details": "An elevation of privilege vulnerability exists in Microsoft Edge (Chromium-based) when the Feedback extension improperly validates input, aka 'Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p4x2-xpx5-wf7r/GHSA-p4x2-xpx5-wf7r.json b/advisories/unreviewed/2022/05/GHSA-p4x2-xpx5-wf7r/GHSA-p4x2-xpx5-wf7r.json index e8e8125a9fc..55f451dc01b 100644 --- a/advisories/unreviewed/2022/05/GHSA-p4x2-xpx5-wf7r/GHSA-p4x2-xpx5-wf7r.json +++ b/advisories/unreviewed/2022/05/GHSA-p4x2-xpx5-wf7r/GHSA-p4x2-xpx5-wf7r.json @@ -7,12 +7,8 @@ "CVE-2020-13109" ], "details": "Morita Shogi 64 through 2020-05-02 for Nintendo 64 devices allows remote attackers to execute arbitrary code via crafted packet data to the built-in modem because 0x800b3e94 (aka the IF subcommand to top-level command 7) has a stack-based buffer overflow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p6p8-j2vx-pqvh/GHSA-p6p8-j2vx-pqvh.json b/advisories/unreviewed/2022/05/GHSA-p6p8-j2vx-pqvh/GHSA-p6p8-j2vx-pqvh.json index 84fa8baff8d..fc30b1e2bc7 100644 --- a/advisories/unreviewed/2022/05/GHSA-p6p8-j2vx-pqvh/GHSA-p6p8-j2vx-pqvh.json +++ b/advisories/unreviewed/2022/05/GHSA-p6p8-j2vx-pqvh/GHSA-p6p8-j2vx-pqvh.json @@ -7,12 +7,8 @@ "CVE-2020-6245" ], "details": "SAP Business Objects Business Intelligence Platform, version 4.2, allows an attacker with access to local instance, to inject file or code that can be executed by the application due to Improper Control of Resource Identifiers.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pf4w-prfj-vwv2/GHSA-pf4w-prfj-vwv2.json b/advisories/unreviewed/2022/05/GHSA-pf4w-prfj-vwv2/GHSA-pf4w-prfj-vwv2.json index 5185ab62154..1d39bcfad30 100644 --- a/advisories/unreviewed/2022/05/GHSA-pf4w-prfj-vwv2/GHSA-pf4w-prfj-vwv2.json +++ b/advisories/unreviewed/2022/05/GHSA-pf4w-prfj-vwv2/GHSA-pf4w-prfj-vwv2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -43,9 +41,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-phhf-m45q-vcxw/GHSA-phhf-m45q-vcxw.json b/advisories/unreviewed/2022/05/GHSA-phhf-m45q-vcxw/GHSA-phhf-m45q-vcxw.json index 24b9dfa783e..8100e97eb45 100644 --- a/advisories/unreviewed/2022/05/GHSA-phhf-m45q-vcxw/GHSA-phhf-m45q-vcxw.json +++ b/advisories/unreviewed/2022/05/GHSA-phhf-m45q-vcxw/GHSA-phhf-m45q-vcxw.json @@ -7,12 +7,8 @@ "CVE-2020-2016" ], "details": "A race condition due to insecure creation of a file in a temporary directory vulnerability in PAN-OS allows for root privilege escalation from a limited linux user account. This allows an attacker who has escaped the restricted shell as a low privilege administrator, possibly by exploiting another vulnerability, to escalate privileges to become root user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pr55-m2r8-wvg6/GHSA-pr55-m2r8-wvg6.json b/advisories/unreviewed/2022/05/GHSA-pr55-m2r8-wvg6/GHSA-pr55-m2r8-wvg6.json index f2ab1ef6d0a..2739c96fb52 100644 --- a/advisories/unreviewed/2022/05/GHSA-pr55-m2r8-wvg6/GHSA-pr55-m2r8-wvg6.json +++ b/advisories/unreviewed/2022/05/GHSA-pr55-m2r8-wvg6/GHSA-pr55-m2r8-wvg6.json @@ -7,12 +7,8 @@ "CVE-2020-1143" ], "details": "An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1054.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pr83-4gh9-4jr6/GHSA-pr83-4gh9-4jr6.json b/advisories/unreviewed/2022/05/GHSA-pr83-4gh9-4jr6/GHSA-pr83-4gh9-4jr6.json index 951d5230566..a46a46c5299 100644 --- a/advisories/unreviewed/2022/05/GHSA-pr83-4gh9-4jr6/GHSA-pr83-4gh9-4jr6.json +++ b/advisories/unreviewed/2022/05/GHSA-pr83-4gh9-4jr6/GHSA-pr83-4gh9-4jr6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-prc9-q436-4pmp/GHSA-prc9-q436-4pmp.json b/advisories/unreviewed/2022/05/GHSA-prc9-q436-4pmp/GHSA-prc9-q436-4pmp.json index 0d96312e4fd..1af1d1793c7 100644 --- a/advisories/unreviewed/2022/05/GHSA-prc9-q436-4pmp/GHSA-prc9-q436-4pmp.json +++ b/advisories/unreviewed/2022/05/GHSA-prc9-q436-4pmp/GHSA-prc9-q436-4pmp.json @@ -7,12 +7,8 @@ "CVE-2020-0104" ], "details": "In onShowingStateChanged of KeyguardStateMonitor.java, there is a possible inappropriate read due to a logic error. This could lead to local information disclosure of keyguard-protected data with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-9 Android-10Android ID: A-144430870", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pvvh-p89j-w44m/GHSA-pvvh-p89j-w44m.json b/advisories/unreviewed/2022/05/GHSA-pvvh-p89j-w44m/GHSA-pvvh-p89j-w44m.json index 6e4303903d7..7e0ef2aad11 100644 --- a/advisories/unreviewed/2022/05/GHSA-pvvh-p89j-w44m/GHSA-pvvh-p89j-w44m.json +++ b/advisories/unreviewed/2022/05/GHSA-pvvh-p89j-w44m/GHSA-pvvh-p89j-w44m.json @@ -7,12 +7,8 @@ "CVE-2020-12784" ], "details": "cPanel before 86.0.14 allows remote attackers to trigger a bandwidth suspension via mail log strings (SEC-505).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pw2r-p8xv-w6g3/GHSA-pw2r-p8xv-w6g3.json b/advisories/unreviewed/2022/05/GHSA-pw2r-p8xv-w6g3/GHSA-pw2r-p8xv-w6g3.json index bd9487aabdd..1a4b94a151d 100644 --- a/advisories/unreviewed/2022/05/GHSA-pw2r-p8xv-w6g3/GHSA-pw2r-p8xv-w6g3.json +++ b/advisories/unreviewed/2022/05/GHSA-pw2r-p8xv-w6g3/GHSA-pw2r-p8xv-w6g3.json @@ -7,12 +7,8 @@ "CVE-2017-18868" ], "details": "Digi XBee 2 devices do not have an effective protection mechanism against remote AT commands, because of issues related to the network stack upon which the ZigBee protocol is built.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pw7g-7762-p5qw/GHSA-pw7g-7762-p5qw.json b/advisories/unreviewed/2022/05/GHSA-pw7g-7762-p5qw/GHSA-pw7g-7762-p5qw.json index ef709a9966d..e14dc9b977a 100644 --- a/advisories/unreviewed/2022/05/GHSA-pw7g-7762-p5qw/GHSA-pw7g-7762-p5qw.json +++ b/advisories/unreviewed/2022/05/GHSA-pw7g-7762-p5qw/GHSA-pw7g-7762-p5qw.json @@ -7,12 +7,8 @@ "CVE-2019-20768" ], "details": "ServiceNow IT Service Management Kingston through Patch 14-1, London through Patch 7, and Madrid before patch 4 allow stored XSS via crafted sysparm_item_guid and sys_id parameters in an Incident Request to service_catalog.do.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pxwh-qmjv-phrw/GHSA-pxwh-qmjv-phrw.json b/advisories/unreviewed/2022/05/GHSA-pxwh-qmjv-phrw/GHSA-pxwh-qmjv-phrw.json index 24e509c5ee3..4820e7aceea 100644 --- a/advisories/unreviewed/2022/05/GHSA-pxwh-qmjv-phrw/GHSA-pxwh-qmjv-phrw.json +++ b/advisories/unreviewed/2022/05/GHSA-pxwh-qmjv-phrw/GHSA-pxwh-qmjv-phrw.json @@ -7,12 +7,8 @@ "CVE-2020-0221" ], "details": "Airbrush FW's scratch memory allocator is susceptible to numeric overflow. When the overflow occurs, the next allocation could potentially return a pointer within the previous allocation's memory, which could lead to improper memory access.Product: AndroidVersions: Android kernelAndroid ID: A-135772851", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q29h-6vx8-xrwg/GHSA-q29h-6vx8-xrwg.json b/advisories/unreviewed/2022/05/GHSA-q29h-6vx8-xrwg/GHSA-q29h-6vx8-xrwg.json index f24c5149f8c..0af916741d6 100644 --- a/advisories/unreviewed/2022/05/GHSA-q29h-6vx8-xrwg/GHSA-q29h-6vx8-xrwg.json +++ b/advisories/unreviewed/2022/05/GHSA-q29h-6vx8-xrwg/GHSA-q29h-6vx8-xrwg.json @@ -7,12 +7,8 @@ "CVE-2019-19168" ], "details": "Dext5.ocx ActiveX 5.0.0.116 and eariler versions contain a vulnerability, which could allow remote attacker to download and execute remote arbitrary file by setting the arguments to the activex method. This can be leveraged for code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q2xq-8h7m-vrfm/GHSA-q2xq-8h7m-vrfm.json b/advisories/unreviewed/2022/05/GHSA-q2xq-8h7m-vrfm/GHSA-q2xq-8h7m-vrfm.json index 77b6b7579f5..fd68b6df8a9 100644 --- a/advisories/unreviewed/2022/05/GHSA-q2xq-8h7m-vrfm/GHSA-q2xq-8h7m-vrfm.json +++ b/advisories/unreviewed/2022/05/GHSA-q2xq-8h7m-vrfm/GHSA-q2xq-8h7m-vrfm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q42j-4cv4-vf65/GHSA-q42j-4cv4-vf65.json b/advisories/unreviewed/2022/05/GHSA-q42j-4cv4-vf65/GHSA-q42j-4cv4-vf65.json index e7c3706c902..1d2f5a9b426 100644 --- a/advisories/unreviewed/2022/05/GHSA-q42j-4cv4-vf65/GHSA-q42j-4cv4-vf65.json +++ b/advisories/unreviewed/2022/05/GHSA-q42j-4cv4-vf65/GHSA-q42j-4cv4-vf65.json @@ -7,12 +7,8 @@ "CVE-2020-13126" ], "details": "An issue was discovered in the Elementor Pro plugin before 2.9.4 for WordPress, as exploited in the wild in May 2020 in conjunction with CVE-2020-13125. An attacker with the Subscriber role can upload arbitrary executable files to achieve remote code execution. NOTE: the free Elementor plugin is unaffected.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q4v5-5cqg-jf5j/GHSA-q4v5-5cqg-jf5j.json b/advisories/unreviewed/2022/05/GHSA-q4v5-5cqg-jf5j/GHSA-q4v5-5cqg-jf5j.json index 183700bd5da..8c36d556b14 100644 --- a/advisories/unreviewed/2022/05/GHSA-q4v5-5cqg-jf5j/GHSA-q4v5-5cqg-jf5j.json +++ b/advisories/unreviewed/2022/05/GHSA-q4v5-5cqg-jf5j/GHSA-q4v5-5cqg-jf5j.json @@ -7,12 +7,8 @@ "CVE-2020-2001" ], "details": "An external control of path and data vulnerability in the Palo Alto Networks PAN-OS Panorama XSLT processing logic that allows an unauthenticated user with network access to PAN-OS management interface to write attacker supplied file on the system and elevate privileges. This issue affects: All PAN-OS 7.1 Panorama versions; PAN-OS 8.0 versions earlier than 8.0.21 on Panorama; PAN-OS 8.1 versions earlier than 8.1.12 on Panorama; PAN-OS 9.0 versions earlier than 9.0.6 on Panorama.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q4vw-qm8m-m5p7/GHSA-q4vw-qm8m-m5p7.json b/advisories/unreviewed/2022/05/GHSA-q4vw-qm8m-m5p7/GHSA-q4vw-qm8m-m5p7.json index 5295e3cd0fd..455072e96c8 100644 --- a/advisories/unreviewed/2022/05/GHSA-q4vw-qm8m-m5p7/GHSA-q4vw-qm8m-m5p7.json +++ b/advisories/unreviewed/2022/05/GHSA-q4vw-qm8m-m5p7/GHSA-q4vw-qm8m-m5p7.json @@ -7,12 +7,8 @@ "CVE-2020-11431" ], "details": "The documentation component in i-net Clear Reports 16.0 to 19.2, HelpDesk 8.0 to 8.3, and PDFC 4.3 to 6.2 allows a remote unauthenticated attacker to read arbitrary system files and directories on the target server via Directory Traversal.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q55g-848v-f654/GHSA-q55g-848v-f654.json b/advisories/unreviewed/2022/05/GHSA-q55g-848v-f654/GHSA-q55g-848v-f654.json index 296bfac57e9..4192204e667 100644 --- a/advisories/unreviewed/2022/05/GHSA-q55g-848v-f654/GHSA-q55g-848v-f654.json +++ b/advisories/unreviewed/2022/05/GHSA-q55g-848v-f654/GHSA-q55g-848v-f654.json @@ -7,12 +7,8 @@ "CVE-2020-10957" ], "details": "In Dovecot before 2.3.10.1, unauthenticated sending of malformed parameters to a NOOP command causes a NULL Pointer Dereference and crash in submission-login, submission, or lmtp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q5g8-585j-mh24/GHSA-q5g8-585j-mh24.json b/advisories/unreviewed/2022/05/GHSA-q5g8-585j-mh24/GHSA-q5g8-585j-mh24.json index 17ef3c21f92..b3ce31a17c2 100644 --- a/advisories/unreviewed/2022/05/GHSA-q5g8-585j-mh24/GHSA-q5g8-585j-mh24.json +++ b/advisories/unreviewed/2022/05/GHSA-q5g8-585j-mh24/GHSA-q5g8-585j-mh24.json @@ -7,12 +7,8 @@ "CVE-2020-12448" ], "details": "GitLab EE 12.8 and later allows Exposure of Sensitive Information to an Unauthorized Actor via NuGet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q5p2-r47g-84cm/GHSA-q5p2-r47g-84cm.json b/advisories/unreviewed/2022/05/GHSA-q5p2-r47g-84cm/GHSA-q5p2-r47g-84cm.json index 8e7900f0fae..b9bb1bddafe 100644 --- a/advisories/unreviewed/2022/05/GHSA-q5p2-r47g-84cm/GHSA-q5p2-r47g-84cm.json +++ b/advisories/unreviewed/2022/05/GHSA-q5p2-r47g-84cm/GHSA-q5p2-r47g-84cm.json @@ -7,12 +7,8 @@ "CVE-2020-1064" ], "details": "A remote code execution vulnerability exists in the way that the MSHTML engine improperly validates input.An attacker could execute arbitrary code in the context of the current user, aka 'MSHTML Engine Remote Code Execution Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q5v7-9h83-6g6f/GHSA-q5v7-9h83-6g6f.json b/advisories/unreviewed/2022/05/GHSA-q5v7-9h83-6g6f/GHSA-q5v7-9h83-6g6f.json index 8c98c132426..d881d60d9d0 100644 --- a/advisories/unreviewed/2022/05/GHSA-q5v7-9h83-6g6f/GHSA-q5v7-9h83-6g6f.json +++ b/advisories/unreviewed/2022/05/GHSA-q5v7-9h83-6g6f/GHSA-q5v7-9h83-6g6f.json @@ -7,12 +7,8 @@ "CVE-2020-12259" ], "details": "rConfig 3.9.4 is vulnerable to reflected XSS. The configDevice.php file improperly validates user input. An attacker can exploit this vulnerability by crafting arbitrary JavaScript in the rid GET parameter of devicemgmnt.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q66q-fr3w-pc9j/GHSA-q66q-fr3w-pc9j.json b/advisories/unreviewed/2022/05/GHSA-q66q-fr3w-pc9j/GHSA-q66q-fr3w-pc9j.json index eeb430207da..0ea7cc978df 100644 --- a/advisories/unreviewed/2022/05/GHSA-q66q-fr3w-pc9j/GHSA-q66q-fr3w-pc9j.json +++ b/advisories/unreviewed/2022/05/GHSA-q66q-fr3w-pc9j/GHSA-q66q-fr3w-pc9j.json @@ -7,12 +7,8 @@ "CVE-2020-12763" ], "details": "TRENDnet ProView Wireless camera TV-IP512WN 1.0R 1.0.4 is vulnerable to an unauthenticated stack-based buffer overflow in handling RTSP packets. This may result in remote code execution or denial of service. The issue is in the binary rtspd (in /sbin) when parsing a long \"Authorization: Basic\" RTSP header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q6fp-hjwx-q999/GHSA-q6fp-hjwx-q999.json b/advisories/unreviewed/2022/05/GHSA-q6fp-hjwx-q999/GHSA-q6fp-hjwx-q999.json index b1dfbca567f..9dc86578d22 100644 --- a/advisories/unreviewed/2022/05/GHSA-q6fp-hjwx-q999/GHSA-q6fp-hjwx-q999.json +++ b/advisories/unreviewed/2022/05/GHSA-q6fp-hjwx-q999/GHSA-q6fp-hjwx-q999.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q6qf-9p94-wx75/GHSA-q6qf-9p94-wx75.json b/advisories/unreviewed/2022/05/GHSA-q6qf-9p94-wx75/GHSA-q6qf-9p94-wx75.json index b714b49417b..a3460d40597 100644 --- a/advisories/unreviewed/2022/05/GHSA-q6qf-9p94-wx75/GHSA-q6qf-9p94-wx75.json +++ b/advisories/unreviewed/2022/05/GHSA-q6qf-9p94-wx75/GHSA-q6qf-9p94-wx75.json @@ -7,12 +7,8 @@ "CVE-2020-6249" ], "details": "The use of an admin backend report within SAP Master Data Governance, versions - S4CORE 101, S4FND 102, 103, 104, SAP_BS_FND 748; allows an attacker to execute crafted database queries, exposing the backend database, leading to SQL Injection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q6xv-fmfc-gjvg/GHSA-q6xv-fmfc-gjvg.json b/advisories/unreviewed/2022/05/GHSA-q6xv-fmfc-gjvg/GHSA-q6xv-fmfc-gjvg.json index d319622a801..ce4c6b27432 100644 --- a/advisories/unreviewed/2022/05/GHSA-q6xv-fmfc-gjvg/GHSA-q6xv-fmfc-gjvg.json +++ b/advisories/unreviewed/2022/05/GHSA-q6xv-fmfc-gjvg/GHSA-q6xv-fmfc-gjvg.json @@ -7,12 +7,8 @@ "CVE-2020-12034" ], "details": "Products that use EDS Subsystem: Version 28.0.1 and prior (FactoryTalk Linx software (Previously called RSLinx Enterprise): Versions 6.00, 6.10, and 6.11, RSLinx Classic: Version 4.11.00 and prior, RSNetWorx software: Version 28.00.00 and prior, Studio 5000 Logix Designer software: Version 32 and prior) is vulnerable.The EDS subsystem does not provide adequate input sanitation, which may allow an attacker to craft specialized EDS files to inject SQL queries and manipulate the database storing the EDS files. This can lead to denial-of-service conditions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q7x3-rwx8-4wrg/GHSA-q7x3-rwx8-4wrg.json b/advisories/unreviewed/2022/05/GHSA-q7x3-rwx8-4wrg/GHSA-q7x3-rwx8-4wrg.json index ed58b2c12bc..7f6085e1fbc 100644 --- a/advisories/unreviewed/2022/05/GHSA-q7x3-rwx8-4wrg/GHSA-q7x3-rwx8-4wrg.json +++ b/advisories/unreviewed/2022/05/GHSA-q7x3-rwx8-4wrg/GHSA-q7x3-rwx8-4wrg.json @@ -7,12 +7,8 @@ "CVE-2020-12719" ], "details": "XXE during an EventPublisher update can occur in Management Console in WSO2 API Manager 3.0.0 and earlier, API Manager Analytics 2.5.0 and earlier, API Microgateway 2.2.0, Enterprise Integrator 6.4.0 and earlier, IS as Key Manager 5.9.0 and earlier, Identity Server 5.9.0 and earlier, and Identity Server Analytics 5.6.0 and earlier.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q83w-2c4p-x7mv/GHSA-q83w-2c4p-x7mv.json b/advisories/unreviewed/2022/05/GHSA-q83w-2c4p-x7mv/GHSA-q83w-2c4p-x7mv.json index 9b31a0b0c99..c94fa858a8a 100644 --- a/advisories/unreviewed/2022/05/GHSA-q83w-2c4p-x7mv/GHSA-q83w-2c4p-x7mv.json +++ b/advisories/unreviewed/2022/05/GHSA-q83w-2c4p-x7mv/GHSA-q83w-2c4p-x7mv.json @@ -7,12 +7,8 @@ "CVE-2020-5751" ], "details": "Insufficient output sanitization in TCExam 14.2.2 allows a remote, authenticated attacker to conduct persistent cross-site scripting (XSS) attacks by creating a crafted operator.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q86j-858x-v75c/GHSA-q86j-858x-v75c.json b/advisories/unreviewed/2022/05/GHSA-q86j-858x-v75c/GHSA-q86j-858x-v75c.json index 837427d0681..84b56f57185 100644 --- a/advisories/unreviewed/2022/05/GHSA-q86j-858x-v75c/GHSA-q86j-858x-v75c.json +++ b/advisories/unreviewed/2022/05/GHSA-q86j-858x-v75c/GHSA-q86j-858x-v75c.json @@ -7,12 +7,8 @@ "CVE-2020-12859" ], "details": "Unnecessary fields in the OpenTrace/BlueTrace protocol in COVIDSafe through v1.0.17 allow a remote attacker to identify a device model by observing cleartext payload data. This allows re-identification of devices, especially less common phone models or those in low-density situations.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q8gr-rr8w-mwmq/GHSA-q8gr-rr8w-mwmq.json b/advisories/unreviewed/2022/05/GHSA-q8gr-rr8w-mwmq/GHSA-q8gr-rr8w-mwmq.json index 017ee24840b..cb92992027f 100644 --- a/advisories/unreviewed/2022/05/GHSA-q8gr-rr8w-mwmq/GHSA-q8gr-rr8w-mwmq.json +++ b/advisories/unreviewed/2022/05/GHSA-q8gr-rr8w-mwmq/GHSA-q8gr-rr8w-mwmq.json @@ -7,12 +7,8 @@ "CVE-2020-12772" ], "details": "An issue was discovered in Ignite Realtime Spark 2.8.3 (and the ROAR plugin for it) on Windows. A chat message can include an IMG element with a SRC attribute referencing an external host's IP address. Upon access to this external host, the (NT)LM hashes of the user are sent with the HTTP request. This allows an attacker to collect these hashes, crack them, and potentially compromise the computer. (ROAR can be configured for automatic access. Also, access can occur if the user clicks.)", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q9gh-gp47-m5f2/GHSA-q9gh-gp47-m5f2.json b/advisories/unreviewed/2022/05/GHSA-q9gh-gp47-m5f2/GHSA-q9gh-gp47-m5f2.json index 005bdc39eb7..7a0234f8522 100644 --- a/advisories/unreviewed/2022/05/GHSA-q9gh-gp47-m5f2/GHSA-q9gh-gp47-m5f2.json +++ b/advisories/unreviewed/2022/05/GHSA-q9gh-gp47-m5f2/GHSA-q9gh-gp47-m5f2.json @@ -7,12 +7,8 @@ "CVE-2020-4262" ], "details": "IBM i2 Intelligent Analyis Platform 9.2.1 could allow a local attacker to execute arbitrary code on the system, caused by a memory corruption. By persuading a victim to open a specially-crafted file, an attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 175645.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qf5p-c774-j224/GHSA-qf5p-c774-j224.json b/advisories/unreviewed/2022/05/GHSA-qf5p-c774-j224/GHSA-qf5p-c774-j224.json index 312e389d9e5..b0f3a7e8887 100644 --- a/advisories/unreviewed/2022/05/GHSA-qf5p-c774-j224/GHSA-qf5p-c774-j224.json +++ b/advisories/unreviewed/2022/05/GHSA-qf5p-c774-j224/GHSA-qf5p-c774-j224.json @@ -7,12 +7,8 @@ "CVE-2020-1154" ], "details": "An elevation of privilege vulnerability exists when the Windows Common Log File System (CLFS) driver improperly handles objects in memory, aka 'Windows Common Log File System Driver Elevation of Privilege Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qf8r-xr22-fxr5/GHSA-qf8r-xr22-fxr5.json b/advisories/unreviewed/2022/05/GHSA-qf8r-xr22-fxr5/GHSA-qf8r-xr22-fxr5.json index 0caaa2a9389..5c17cfdb04c 100644 --- a/advisories/unreviewed/2022/05/GHSA-qf8r-xr22-fxr5/GHSA-qf8r-xr22-fxr5.json +++ b/advisories/unreviewed/2022/05/GHSA-qf8r-xr22-fxr5/GHSA-qf8r-xr22-fxr5.json @@ -7,12 +7,8 @@ "CVE-2020-4446" ], "details": "IBM Business Process Manager 8.0, 8.5, and 8.6 and IBM Business Automation Workflow 18.0 and 19.0 could allow a remote attacker to bypass security restrictions, caused by the failure to perform insufficient authorization checks. IBM X-Force ID: 181126.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qfhx-mfmg-3wfg/GHSA-qfhx-mfmg-3wfg.json b/advisories/unreviewed/2022/05/GHSA-qfhx-mfmg-3wfg/GHSA-qfhx-mfmg-3wfg.json index 974cee7c44e..6bdf5755b9e 100644 --- a/advisories/unreviewed/2022/05/GHSA-qfhx-mfmg-3wfg/GHSA-qfhx-mfmg-3wfg.json +++ b/advisories/unreviewed/2022/05/GHSA-qfhx-mfmg-3wfg/GHSA-qfhx-mfmg-3wfg.json @@ -7,12 +7,8 @@ "CVE-2020-5837" ], "details": "Symantec Endpoint Protection, prior to 14.3, may not respect file permissions when writing to log files that are replaced by symbolic links, which can lead to a potential elevation of privilege.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qhrf-g4xj-h78x/GHSA-qhrf-g4xj-h78x.json b/advisories/unreviewed/2022/05/GHSA-qhrf-g4xj-h78x/GHSA-qhrf-g4xj-h78x.json index e179b53945d..269db51d374 100644 --- a/advisories/unreviewed/2022/05/GHSA-qhrf-g4xj-h78x/GHSA-qhrf-g4xj-h78x.json +++ b/advisories/unreviewed/2022/05/GHSA-qhrf-g4xj-h78x/GHSA-qhrf-g4xj-h78x.json @@ -7,12 +7,8 @@ "CVE-2020-1150" ], "details": "A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in memory, aka 'Media Foundation Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2020-1028, CVE-2020-1126, CVE-2020-1136.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qjff-6hhq-wmw2/GHSA-qjff-6hhq-wmw2.json b/advisories/unreviewed/2022/05/GHSA-qjff-6hhq-wmw2/GHSA-qjff-6hhq-wmw2.json index 80e3faad4c2..6733940da12 100644 --- a/advisories/unreviewed/2022/05/GHSA-qjff-6hhq-wmw2/GHSA-qjff-6hhq-wmw2.json +++ b/advisories/unreviewed/2022/05/GHSA-qjff-6hhq-wmw2/GHSA-qjff-6hhq-wmw2.json @@ -7,12 +7,8 @@ "CVE-2018-5493" ], "details": "ATTO FibreBridge 7500N firmware versions prior to 2.90 are susceptible to a vulnerability which allows an unauthenticated remote attacker to cause Denial of Service (DoS).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qm25-rqq9-7jcr/GHSA-qm25-rqq9-7jcr.json b/advisories/unreviewed/2022/05/GHSA-qm25-rqq9-7jcr/GHSA-qm25-rqq9-7jcr.json index a3af16c29b0..6a52bf95595 100644 --- a/advisories/unreviewed/2022/05/GHSA-qm25-rqq9-7jcr/GHSA-qm25-rqq9-7jcr.json +++ b/advisories/unreviewed/2022/05/GHSA-qm25-rqq9-7jcr/GHSA-qm25-rqq9-7jcr.json @@ -7,12 +7,8 @@ "CVE-2020-10967" ], "details": "In Dovecot before 2.3.10.1, remote unauthenticated attackers can crash the lmtp or submission process by sending mail with an empty localpart.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -72,9 +68,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qq4g-m927-9x4x/GHSA-qq4g-m927-9x4x.json b/advisories/unreviewed/2022/05/GHSA-qq4g-m927-9x4x/GHSA-qq4g-m927-9x4x.json index a1383df8c0f..e3d844e6eb2 100644 --- a/advisories/unreviewed/2022/05/GHSA-qq4g-m927-9x4x/GHSA-qq4g-m927-9x4x.json +++ b/advisories/unreviewed/2022/05/GHSA-qq4g-m927-9x4x/GHSA-qq4g-m927-9x4x.json @@ -7,12 +7,8 @@ "CVE-2020-5577" ], "details": "Movable Type series (Movable Type 7 r.4606 (7.2.1) and earlier (Movable Type 7), Movable Type Advanced 7 r.4606 (7.2.1) and earlier (Movable Type Advanced 7), Movable Type for AWS 7 r.4606 (7.2.1) and earlier (Movable Type for AWS 7), Movable Type 6.5.3 and earlier (Movable Type 6.5), Movable Type Advanced 6.5.3 and earlier (Movable Type Advanced 6.5), Movable Type 6.3.11 and earlier (Movable Type 6.3), Movable Type Advanced 6.3.11 and earlier (Movable Type 6.3), Movable Type Premium 1.29 and earlier, and Movable Type Premium Advanced 1.29 and earlier) allow remote authenticated attackers to upload arbitrary files and execute a php script via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qq5f-7r3p-w96c/GHSA-qq5f-7r3p-w96c.json b/advisories/unreviewed/2022/05/GHSA-qq5f-7r3p-w96c/GHSA-qq5f-7r3p-w96c.json index 20e0f46123e..5dd9ab89f9e 100644 --- a/advisories/unreviewed/2022/05/GHSA-qq5f-7r3p-w96c/GHSA-qq5f-7r3p-w96c.json +++ b/advisories/unreviewed/2022/05/GHSA-qq5f-7r3p-w96c/GHSA-qq5f-7r3p-w96c.json @@ -7,12 +7,8 @@ "CVE-2020-10741" ], "details": "A flaw was found in the Linux kernel loose validation of child/parent process identification handling while filtering signal handlers. A local attacker is able to abuse this flaw to bypass checks to send any signal to a privileged process.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qq76-xxp3-9gp3/GHSA-qq76-xxp3-9gp3.json b/advisories/unreviewed/2022/05/GHSA-qq76-xxp3-9gp3/GHSA-qq76-xxp3-9gp3.json index f41bc8d8a54..c0a1a6f421c 100644 --- a/advisories/unreviewed/2022/05/GHSA-qq76-xxp3-9gp3/GHSA-qq76-xxp3-9gp3.json +++ b/advisories/unreviewed/2022/05/GHSA-qq76-xxp3-9gp3/GHSA-qq76-xxp3-9gp3.json @@ -7,12 +7,8 @@ "CVE-2020-7290" ], "details": "Privilege Escalation vulnerability in McAfee Active Response (MAR) for Linux prior to 2.4.3 Hotfix 1 allows a malicious script or program to perform functions that the local executing user has not been granted access to.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qqjx-v7vc-77w8/GHSA-qqjx-v7vc-77w8.json b/advisories/unreviewed/2022/05/GHSA-qqjx-v7vc-77w8/GHSA-qqjx-v7vc-77w8.json index 539db6ffc2a..9325d1a941d 100644 --- a/advisories/unreviewed/2022/05/GHSA-qqjx-v7vc-77w8/GHSA-qqjx-v7vc-77w8.json +++ b/advisories/unreviewed/2022/05/GHSA-qqjx-v7vc-77w8/GHSA-qqjx-v7vc-77w8.json @@ -7,12 +7,8 @@ "CVE-2020-12651" ], "details": "SecureCRT before 8.7.2 allows remote attackers to execute arbitrary code via an Integer Overflow and a Buffer Overflow because a banner can trigger a line number to CSI functions that exceeds INT_MAX.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qv66-5g67-qh59/GHSA-qv66-5g67-qh59.json b/advisories/unreviewed/2022/05/GHSA-qv66-5g67-qh59/GHSA-qv66-5g67-qh59.json index dbea00c0e52..13e955c3145 100644 --- a/advisories/unreviewed/2022/05/GHSA-qv66-5g67-qh59/GHSA-qv66-5g67-qh59.json +++ b/advisories/unreviewed/2022/05/GHSA-qv66-5g67-qh59/GHSA-qv66-5g67-qh59.json @@ -7,12 +7,8 @@ "CVE-2020-10019" ], "details": "USB DFU has a potential buffer overflow where the requested length (wLength) is not checked against the buffer size. This could be used by a malicious USB host to exploit the buffer overflow. See NCC-ZEP-002 This issue affects: zephyrproject-rtos zephyr version 1.14.1 and later versions. version 2.1.0 and later versions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qvqw-f2fv-45jw/GHSA-qvqw-f2fv-45jw.json b/advisories/unreviewed/2022/05/GHSA-qvqw-f2fv-45jw/GHSA-qvqw-f2fv-45jw.json index a75fb04f85a..d5b25dd20f6 100644 --- a/advisories/unreviewed/2022/05/GHSA-qvqw-f2fv-45jw/GHSA-qvqw-f2fv-45jw.json +++ b/advisories/unreviewed/2022/05/GHSA-qvqw-f2fv-45jw/GHSA-qvqw-f2fv-45jw.json @@ -7,12 +7,8 @@ "CVE-2020-1808" ], "details": "Huawei smartphones Honor View 20;Honor 20;Honor 20 PRO;Honor Magic2 with Versions earlier than 10.0.0.179(C636E3R4P3),Versions earlier than 10.0.0.180(C185E3R3P3),Versions earlier than 10.0.0.180(C432E10R3P4),Versions earlier than 10.0.0.188(C00E62R2P11);Versions earlier than 10.0.0.187(C00E60R4P11);Versions earlier than 10.0.0.187(C00E60R4P11);Versions earlier than 10.0.0.176(C00E60R2P11) have an out of bound read vulnerability. The software reads data past the end of the intended buffer. The attacker tricks the user into installing a crafted application, successful exploit may cause information disclosure or service abnormal.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qw7x-mqhv-j7rm/GHSA-qw7x-mqhv-j7rm.json b/advisories/unreviewed/2022/05/GHSA-qw7x-mqhv-j7rm/GHSA-qw7x-mqhv-j7rm.json index 9d299de9e6d..3e91454ea41 100644 --- a/advisories/unreviewed/2022/05/GHSA-qw7x-mqhv-j7rm/GHSA-qw7x-mqhv-j7rm.json +++ b/advisories/unreviewed/2022/05/GHSA-qw7x-mqhv-j7rm/GHSA-qw7x-mqhv-j7rm.json @@ -7,12 +7,8 @@ "CVE-2020-6956" ], "details": "PCS DEXICON 3.4.1 allows XSS via the loginName parameter in login_action.jsp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qxhh-fxxq-pvgv/GHSA-qxhh-fxxq-pvgv.json b/advisories/unreviewed/2022/05/GHSA-qxhh-fxxq-pvgv/GHSA-qxhh-fxxq-pvgv.json index 79af4cb0c0f..22eb09927fd 100644 --- a/advisories/unreviewed/2022/05/GHSA-qxhh-fxxq-pvgv/GHSA-qxhh-fxxq-pvgv.json +++ b/advisories/unreviewed/2022/05/GHSA-qxhh-fxxq-pvgv/GHSA-qxhh-fxxq-pvgv.json @@ -7,12 +7,8 @@ "CVE-2020-0094" ], "details": "In setImageHeight and setImageWidth of ExifUtils.cpp, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-9 Android-10Android ID: A-148223871", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r26h-642q-j6cg/GHSA-r26h-642q-j6cg.json b/advisories/unreviewed/2022/05/GHSA-r26h-642q-j6cg/GHSA-r26h-642q-j6cg.json index 2c794bc3bb0..9682bad90b6 100644 --- a/advisories/unreviewed/2022/05/GHSA-r26h-642q-j6cg/GHSA-r26h-642q-j6cg.json +++ b/advisories/unreviewed/2022/05/GHSA-r26h-642q-j6cg/GHSA-r26h-642q-j6cg.json @@ -7,12 +7,8 @@ "CVE-2020-11530" ], "details": "A blind SQL injection vulnerability is present in Chop Slider 3, a WordPress plugin. The vulnerability is introduced in the id GET parameter supplied to get_script/index.php, and allows an attacker to execute arbitrary SQL queries in the context of the WP database user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r2gh-2rxr-qq44/GHSA-r2gh-2rxr-qq44.json b/advisories/unreviewed/2022/05/GHSA-r2gh-2rxr-qq44/GHSA-r2gh-2rxr-qq44.json index 71f0a13daaf..bf1c90ec430 100644 --- a/advisories/unreviewed/2022/05/GHSA-r2gh-2rxr-qq44/GHSA-r2gh-2rxr-qq44.json +++ b/advisories/unreviewed/2022/05/GHSA-r2gh-2rxr-qq44/GHSA-r2gh-2rxr-qq44.json @@ -7,12 +7,8 @@ "CVE-2020-6257" ], "details": "SAP Business Objects Business Intelligence Platform (CMC and BI Launchpad) 4.2 does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r2mg-x3w3-w45q/GHSA-r2mg-x3w3-w45q.json b/advisories/unreviewed/2022/05/GHSA-r2mg-x3w3-w45q/GHSA-r2mg-x3w3-w45q.json index 4f5b5262aa2..8aaaa6a7879 100644 --- a/advisories/unreviewed/2022/05/GHSA-r2mg-x3w3-w45q/GHSA-r2mg-x3w3-w45q.json +++ b/advisories/unreviewed/2022/05/GHSA-r2mg-x3w3-w45q/GHSA-r2mg-x3w3-w45q.json @@ -7,12 +7,8 @@ "CVE-2020-12654" ], "details": "An issue was found in Linux kernel before 5.5.4. mwifiex_ret_wmm_get_status() in drivers/net/wireless/marvell/mwifiex/wmm.c allows a remote AP to trigger a heap-based buffer overflow because of an incorrect memcpy, aka CID-3a9b153c5591.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r2pq-px9m-8f6r/GHSA-r2pq-px9m-8f6r.json b/advisories/unreviewed/2022/05/GHSA-r2pq-px9m-8f6r/GHSA-r2pq-px9m-8f6r.json index acf085827d9..233dedc3d96 100644 --- a/advisories/unreviewed/2022/05/GHSA-r2pq-px9m-8f6r/GHSA-r2pq-px9m-8f6r.json +++ b/advisories/unreviewed/2022/05/GHSA-r2pq-px9m-8f6r/GHSA-r2pq-px9m-8f6r.json @@ -7,12 +7,8 @@ "CVE-2020-6241" ], "details": "SAP Adaptive Server Enterprise, version 16.0, allows an authenticated user to execute crafted database queries to elevate privileges of users in the system, leading to SQL Injection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r35w-x8hj-pw5h/GHSA-r35w-x8hj-pw5h.json b/advisories/unreviewed/2022/05/GHSA-r35w-x8hj-pw5h/GHSA-r35w-x8hj-pw5h.json index 175dabe5dbe..d7ee36dcc5a 100644 --- a/advisories/unreviewed/2022/05/GHSA-r35w-x8hj-pw5h/GHSA-r35w-x8hj-pw5h.json +++ b/advisories/unreviewed/2022/05/GHSA-r35w-x8hj-pw5h/GHSA-r35w-x8hj-pw5h.json @@ -7,12 +7,8 @@ "CVE-2020-13153" ], "details": "app/View/Events/resolved_attributes.ctp in MISP before 2.4.126 has XSS in the resolved attributes view.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r3g8-jcj5-f35g/GHSA-r3g8-jcj5-f35g.json b/advisories/unreviewed/2022/05/GHSA-r3g8-jcj5-f35g/GHSA-r3g8-jcj5-f35g.json index 6397da9a667..2c15e4fcf3a 100644 --- a/advisories/unreviewed/2022/05/GHSA-r3g8-jcj5-f35g/GHSA-r3g8-jcj5-f35g.json +++ b/advisories/unreviewed/2022/05/GHSA-r3g8-jcj5-f35g/GHSA-r3g8-jcj5-f35g.json @@ -7,12 +7,8 @@ "CVE-2020-5897" ], "details": "In versions 7.1.5-7.1.9, there is use-after-free memory vulnerability in the BIG-IP Edge Client Windows ActiveX component.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r3v6-c98w-p4j5/GHSA-r3v6-c98w-p4j5.json b/advisories/unreviewed/2022/05/GHSA-r3v6-c98w-p4j5/GHSA-r3v6-c98w-p4j5.json index 042f4e9250d..b02a056b77f 100644 --- a/advisories/unreviewed/2022/05/GHSA-r3v6-c98w-p4j5/GHSA-r3v6-c98w-p4j5.json +++ b/advisories/unreviewed/2022/05/GHSA-r3v6-c98w-p4j5/GHSA-r3v6-c98w-p4j5.json @@ -7,12 +7,8 @@ "CVE-2020-4428" ], "details": "IBM Data Risk Manager 2.0.1, 2.0.2, 2.0.3, 2.0.4, 2.0.5, and 2.0.6 could allow a remote authenticated attacker to execute arbitrary commands on the system. IBM X-Force ID: 180533.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r63f-25g5-v4wf/GHSA-r63f-25g5-v4wf.json b/advisories/unreviewed/2022/05/GHSA-r63f-25g5-v4wf/GHSA-r63f-25g5-v4wf.json index 98f710d0876..9d34070be1b 100644 --- a/advisories/unreviewed/2022/05/GHSA-r63f-25g5-v4wf/GHSA-r63f-25g5-v4wf.json +++ b/advisories/unreviewed/2022/05/GHSA-r63f-25g5-v4wf/GHSA-r63f-25g5-v4wf.json @@ -7,12 +7,8 @@ "CVE-2020-8154" ], "details": "An Insecure direct object reference vulnerability in Nextcloud Server 18.0.2 allowed an attacker to remote wipe devices of other users when sending a malicious request directly to the endpoint.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r6cm-93j6-3mh3/GHSA-r6cm-93j6-3mh3.json b/advisories/unreviewed/2022/05/GHSA-r6cm-93j6-3mh3/GHSA-r6cm-93j6-3mh3.json index 7071447d8f6..118f8204fef 100644 --- a/advisories/unreviewed/2022/05/GHSA-r6cm-93j6-3mh3/GHSA-r6cm-93j6-3mh3.json +++ b/advisories/unreviewed/2022/05/GHSA-r6cm-93j6-3mh3/GHSA-r6cm-93j6-3mh3.json @@ -7,12 +7,8 @@ "CVE-2020-2008" ], "details": "An OS command injection and external control of filename vulnerability in Palo Alto Networks PAN-OS allows authenticated administrators to execute code with root privileges or delete arbitrary system files and impact the system's integrity or cause a denial of service condition. This issue affects: All versions of PAN-OS 7.1 and 8.0; PAN-OS 8.1 versions earlier than 8.1.14.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r6hf-6mpj-h47p/GHSA-r6hf-6mpj-h47p.json b/advisories/unreviewed/2022/05/GHSA-r6hf-6mpj-h47p/GHSA-r6hf-6mpj-h47p.json index edd7f5281ac..a2217c871fb 100644 --- a/advisories/unreviewed/2022/05/GHSA-r6hf-6mpj-h47p/GHSA-r6hf-6mpj-h47p.json +++ b/advisories/unreviewed/2022/05/GHSA-r6hf-6mpj-h47p/GHSA-r6hf-6mpj-h47p.json @@ -7,12 +7,8 @@ "CVE-2020-7809" ], "details": "ALSong 3.46 and earlier version contain a Document Object Model (DOM) based cross-site scripting vulnerability caused by improper validation of user input. A remote attacker could exploit this vulnerability by tricking the victim to open ALSong Album(sab) file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r7hj-hp8c-gmhv/GHSA-r7hj-hp8c-gmhv.json b/advisories/unreviewed/2022/05/GHSA-r7hj-hp8c-gmhv/GHSA-r7hj-hp8c-gmhv.json index 907c5b28263..3aab9628cf1 100644 --- a/advisories/unreviewed/2022/05/GHSA-r7hj-hp8c-gmhv/GHSA-r7hj-hp8c-gmhv.json +++ b/advisories/unreviewed/2022/05/GHSA-r7hj-hp8c-gmhv/GHSA-r7hj-hp8c-gmhv.json @@ -7,12 +7,8 @@ "CVE-2020-0103" ], "details": "In a2dp_aac_decoder_cleanup of a2dp_aac_decoder.cc, there is a possible invalid free due to memory corruption. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-9Android ID: A-148107188", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r7jw-rw59-w3xm/GHSA-r7jw-rw59-w3xm.json b/advisories/unreviewed/2022/05/GHSA-r7jw-rw59-w3xm/GHSA-r7jw-rw59-w3xm.json index 7d773bcf08d..95718ce3a41 100644 --- a/advisories/unreviewed/2022/05/GHSA-r7jw-rw59-w3xm/GHSA-r7jw-rw59-w3xm.json +++ b/advisories/unreviewed/2022/05/GHSA-r7jw-rw59-w3xm/GHSA-r7jw-rw59-w3xm.json @@ -7,12 +7,8 @@ "CVE-2019-20797" ], "details": "An issue was discovered in e6y prboom-plus 2.5.1.5. There is a buffer overflow in client and server code responsible for handling received UDP packets, as demonstrated by I_SendPacket or I_SendPacketTo in i_network.c.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r8qp-p4ff-wjxq/GHSA-r8qp-p4ff-wjxq.json b/advisories/unreviewed/2022/05/GHSA-r8qp-p4ff-wjxq/GHSA-r8qp-p4ff-wjxq.json index a7cc4e81812..0491b157c8d 100644 --- a/advisories/unreviewed/2022/05/GHSA-r8qp-p4ff-wjxq/GHSA-r8qp-p4ff-wjxq.json +++ b/advisories/unreviewed/2022/05/GHSA-r8qp-p4ff-wjxq/GHSA-r8qp-p4ff-wjxq.json @@ -7,12 +7,8 @@ "CVE-2019-18866" ], "details": "Unauthenticated SQL injection via the username in the login mechanism in Blaauw Remote Kiln Control through v3.00r4 allows a user to extract arbitrary data from the rkc database.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r92q-j6h7-wh5j/GHSA-r92q-j6h7-wh5j.json b/advisories/unreviewed/2022/05/GHSA-r92q-j6h7-wh5j/GHSA-r92q-j6h7-wh5j.json index e319285a138..d7abaeac053 100644 --- a/advisories/unreviewed/2022/05/GHSA-r92q-j6h7-wh5j/GHSA-r92q-j6h7-wh5j.json +++ b/advisories/unreviewed/2022/05/GHSA-r92q-j6h7-wh5j/GHSA-r92q-j6h7-wh5j.json @@ -7,12 +7,8 @@ "CVE-2020-3329" ], "details": "A vulnerability in role-based access control of Cisco Integrated Management Controller (IMC) Supervisor, Cisco UCS Director, and Cisco UCS Director Express for Big Data could allow a read-only authenticated, remote attacker to disable user accounts on an affected system. The vulnerability is due to incorrect allocation of the enable/disable action button under the role-based access control code on an affected system. An attacker could exploit this vulnerability by authenticating as a read-only user and then updating the roles of other users to disable them. A successful exploit could allow the attacker to disable users, including administrative users.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r93v-r2h3-5m93/GHSA-r93v-r2h3-5m93.json b/advisories/unreviewed/2022/05/GHSA-r93v-r2h3-5m93/GHSA-r93v-r2h3-5m93.json index e5cf120675a..e9fc60b3be2 100644 --- a/advisories/unreviewed/2022/05/GHSA-r93v-r2h3-5m93/GHSA-r93v-r2h3-5m93.json +++ b/advisories/unreviewed/2022/05/GHSA-r93v-r2h3-5m93/GHSA-r93v-r2h3-5m93.json @@ -7,12 +7,8 @@ "CVE-2020-6253" ], "details": "Under certain conditions, SAP Adaptive Server Enterprise (Web Services), versions 15.7, 16.0, allows an authenticated user to execute crafted database queries to elevate their privileges, modify database objects, or execute commands they are not otherwise authorized to execute, leading to SQL Injection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r9gg-v7f9-vwcg/GHSA-r9gg-v7f9-vwcg.json b/advisories/unreviewed/2022/05/GHSA-r9gg-v7f9-vwcg/GHSA-r9gg-v7f9-vwcg.json index 2eb3205106e..ece7e45be8d 100644 --- a/advisories/unreviewed/2022/05/GHSA-r9gg-v7f9-vwcg/GHSA-r9gg-v7f9-vwcg.json +++ b/advisories/unreviewed/2022/05/GHSA-r9gg-v7f9-vwcg/GHSA-r9gg-v7f9-vwcg.json @@ -7,12 +7,8 @@ "CVE-2020-12718" ], "details": "In administration/comments.php in PHP-Fusion 9.03.50, an authenticated attacker can take advantage of a stored XSS vulnerability in the Preview Comment feature. The protection mechanism can be bypassed by using HTML event handlers such as ontoggle.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rc96-hg8v-6p4g/GHSA-rc96-hg8v-6p4g.json b/advisories/unreviewed/2022/05/GHSA-rc96-hg8v-6p4g/GHSA-rc96-hg8v-6p4g.json index d338d8a0e4c..0b15f1d9a95 100644 --- a/advisories/unreviewed/2022/05/GHSA-rc96-hg8v-6p4g/GHSA-rc96-hg8v-6p4g.json +++ b/advisories/unreviewed/2022/05/GHSA-rc96-hg8v-6p4g/GHSA-rc96-hg8v-6p4g.json @@ -7,12 +7,8 @@ "CVE-2020-8616" ], "details": "A malicious actor who intentionally exploits this lack of effective limitation on the number of fetches performed when processing referrals can, through the use of specially crafted referrals, cause a recursing server to issue a very large number of fetches in an attempt to process the referral. This has at least two potential effects: The performance of the recursing server can potentially be degraded by the additional work required to perform these fetches, and The attacker can exploit this behavior to use the recursing server as a reflector in a reflection attack with a high amplification factor.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -72,9 +68,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rcjj-gp97-vvv5/GHSA-rcjj-gp97-vvv5.json b/advisories/unreviewed/2022/05/GHSA-rcjj-gp97-vvv5/GHSA-rcjj-gp97-vvv5.json index 7bb2faa52fd..7520d88a608 100644 --- a/advisories/unreviewed/2022/05/GHSA-rcjj-gp97-vvv5/GHSA-rcjj-gp97-vvv5.json +++ b/advisories/unreviewed/2022/05/GHSA-rcjj-gp97-vvv5/GHSA-rcjj-gp97-vvv5.json @@ -7,12 +7,8 @@ "CVE-2020-9098" ], "details": "Huawei OceanStor 5310 product with version of V500R007C60SPC100 has an invalid pointer access vulnerability. The software system access an invalid pointer when attacker malformed packet. Due to the insufficient validation of some parameter, successful exploit could cause device reboot.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rf7m-m6ch-rqm3/GHSA-rf7m-m6ch-rqm3.json b/advisories/unreviewed/2022/05/GHSA-rf7m-m6ch-rqm3/GHSA-rf7m-m6ch-rqm3.json index a94ca6645e5..66e2a0614f6 100644 --- a/advisories/unreviewed/2022/05/GHSA-rf7m-m6ch-rqm3/GHSA-rf7m-m6ch-rqm3.json +++ b/advisories/unreviewed/2022/05/GHSA-rf7m-m6ch-rqm3/GHSA-rf7m-m6ch-rqm3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rf99-h2h2-8738/GHSA-rf99-h2h2-8738.json b/advisories/unreviewed/2022/05/GHSA-rf99-h2h2-8738/GHSA-rf99-h2h2-8738.json index ce24eb32ccc..dfd28cf981b 100644 --- a/advisories/unreviewed/2022/05/GHSA-rf99-h2h2-8738/GHSA-rf99-h2h2-8738.json +++ b/advisories/unreviewed/2022/05/GHSA-rf99-h2h2-8738/GHSA-rf99-h2h2-8738.json @@ -7,12 +7,8 @@ "CVE-2020-12704" ], "details": "UliCMS before 2020.2 has PageController stored XSS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rfp6-h7x3-4ggx/GHSA-rfp6-h7x3-4ggx.json b/advisories/unreviewed/2022/05/GHSA-rfp6-h7x3-4ggx/GHSA-rfp6-h7x3-4ggx.json index 5246f3d74a2..d5e8196a066 100644 --- a/advisories/unreviewed/2022/05/GHSA-rfp6-h7x3-4ggx/GHSA-rfp6-h7x3-4ggx.json +++ b/advisories/unreviewed/2022/05/GHSA-rfp6-h7x3-4ggx/GHSA-rfp6-h7x3-4ggx.json @@ -7,12 +7,8 @@ "CVE-2020-12022" ], "details": "Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0. An improper validation vulnerability exists that could allow an attacker to inject specially crafted input into memory where it can be executed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rfwm-pmjm-jff2/GHSA-rfwm-pmjm-jff2.json b/advisories/unreviewed/2022/05/GHSA-rfwm-pmjm-jff2/GHSA-rfwm-pmjm-jff2.json index 216a2e81696..b6081e89c5b 100644 --- a/advisories/unreviewed/2022/05/GHSA-rfwm-pmjm-jff2/GHSA-rfwm-pmjm-jff2.json +++ b/advisories/unreviewed/2022/05/GHSA-rfwm-pmjm-jff2/GHSA-rfwm-pmjm-jff2.json @@ -7,12 +7,8 @@ "CVE-2020-5538" ], "details": "Improper Access Control in PALLET CONTROL Ver. 6.3 and earlier allows authenticated attackers to execute arbitrary code with the SYSTEM privilege on the computer where PALLET CONTROL is installed via unspecified vectors. PalletControl 7 to 9.1 are not affected by this vulnerability, however under the environment where PLS Management Add-on Module is used, all versions are affected.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rg8c-w227-4wq4/GHSA-rg8c-w227-4wq4.json b/advisories/unreviewed/2022/05/GHSA-rg8c-w227-4wq4/GHSA-rg8c-w227-4wq4.json index 4d2f3573e7a..dbf0ad01a58 100644 --- a/advisories/unreviewed/2022/05/GHSA-rg8c-w227-4wq4/GHSA-rg8c-w227-4wq4.json +++ b/advisories/unreviewed/2022/05/GHSA-rg8c-w227-4wq4/GHSA-rg8c-w227-4wq4.json @@ -7,12 +7,8 @@ "CVE-2020-5834" ], "details": "Symantec Endpoint Protection Manager, prior to 14.3, may be susceptible to a directory traversal attack that could allow a remote actor to determine the size of files in the directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rgcf-v2qh-fw5r/GHSA-rgcf-v2qh-fw5r.json b/advisories/unreviewed/2022/05/GHSA-rgcf-v2qh-fw5r/GHSA-rgcf-v2qh-fw5r.json index 1ea95611653..610ea77f543 100644 --- a/advisories/unreviewed/2022/05/GHSA-rgcf-v2qh-fw5r/GHSA-rgcf-v2qh-fw5r.json +++ b/advisories/unreviewed/2022/05/GHSA-rgcf-v2qh-fw5r/GHSA-rgcf-v2qh-fw5r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rh92-6783-v73r/GHSA-rh92-6783-v73r.json b/advisories/unreviewed/2022/05/GHSA-rh92-6783-v73r/GHSA-rh92-6783-v73r.json index 589ae62d058..2fc3150aa42 100644 --- a/advisories/unreviewed/2022/05/GHSA-rh92-6783-v73r/GHSA-rh92-6783-v73r.json +++ b/advisories/unreviewed/2022/05/GHSA-rh92-6783-v73r/GHSA-rh92-6783-v73r.json @@ -7,12 +7,8 @@ "CVE-2020-2017" ], "details": "A DOM-Based Cross Site Scripting Vulnerability exists in PAN-OS and Panorama Management Web Interfaces. A remote attacker able to convince an authenticated administrator to click on a crafted link to PAN-OS and Panorama Web Interfaces could execute arbitrary JavaScript code in the administrator's browser and perform administrative actions. This issue affects: PAN-OS 7.1 versions earlier than 7.1.26; PAN-OS 8.0 versions earlier than 8.0.21; PAN-OS 8.1 versions earlier than 8.1.13; PAN-OS 9.0 versions earlier than 9.0.6.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rhjg-fh2p-jpv5/GHSA-rhjg-fh2p-jpv5.json b/advisories/unreviewed/2022/05/GHSA-rhjg-fh2p-jpv5/GHSA-rhjg-fh2p-jpv5.json index 2a24ab24b15..ffa8a7058e4 100644 --- a/advisories/unreviewed/2022/05/GHSA-rhjg-fh2p-jpv5/GHSA-rhjg-fh2p-jpv5.json +++ b/advisories/unreviewed/2022/05/GHSA-rhjg-fh2p-jpv5/GHSA-rhjg-fh2p-jpv5.json @@ -7,12 +7,8 @@ "CVE-2020-12663" ], "details": "Unbound before 1.10.1 has an infinite loop via malformed DNS answers received from upstream servers.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rhp7-22rq-wh36/GHSA-rhp7-22rq-wh36.json b/advisories/unreviewed/2022/05/GHSA-rhp7-22rq-wh36/GHSA-rhp7-22rq-wh36.json index 6a0a1cefd58..64b507ca4a8 100644 --- a/advisories/unreviewed/2022/05/GHSA-rhp7-22rq-wh36/GHSA-rhp7-22rq-wh36.json +++ b/advisories/unreviewed/2022/05/GHSA-rhp7-22rq-wh36/GHSA-rhp7-22rq-wh36.json @@ -7,12 +7,8 @@ "CVE-2020-6251" ], "details": "Under certain conditions or error scenarios SAP Business Objects Business Intelligence Platform, version 4.2, allows an attacker to access information which would otherwise be restricted.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rprx-wwgg-c958/GHSA-rprx-wwgg-c958.json b/advisories/unreviewed/2022/05/GHSA-rprx-wwgg-c958/GHSA-rprx-wwgg-c958.json index 5f3e08bcad8..9f4211bc340 100644 --- a/advisories/unreviewed/2022/05/GHSA-rprx-wwgg-c958/GHSA-rprx-wwgg-c958.json +++ b/advisories/unreviewed/2022/05/GHSA-rprx-wwgg-c958/GHSA-rprx-wwgg-c958.json @@ -7,12 +7,8 @@ "CVE-2020-3272" ], "details": "A vulnerability in the DHCP server of Cisco Prime Network Registrar could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to insufficient input validation of incoming DHCP traffic. An attacker could exploit this vulnerability by sending a crafted DHCP request to an affected device. A successful exploit could allow the attacker to cause a restart of the DHCP server process, causing a DoS condition.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rq5w-64f5-3925/GHSA-rq5w-64f5-3925.json b/advisories/unreviewed/2022/05/GHSA-rq5w-64f5-3925/GHSA-rq5w-64f5-3925.json index 444d907fc3e..17875dc4411 100644 --- a/advisories/unreviewed/2022/05/GHSA-rq5w-64f5-3925/GHSA-rq5w-64f5-3925.json +++ b/advisories/unreviewed/2022/05/GHSA-rq5w-64f5-3925/GHSA-rq5w-64f5-3925.json @@ -7,12 +7,8 @@ "CVE-2020-12754" ], "details": "An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 software. A crafted application can obtain control of device input via the window system service. The LG ID is LVE-SMP-170011 (May 2020).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rq94-jq55-p6ff/GHSA-rq94-jq55-p6ff.json b/advisories/unreviewed/2022/05/GHSA-rq94-jq55-p6ff/GHSA-rq94-jq55-p6ff.json index 94417bcd1c7..d22428266d0 100644 --- a/advisories/unreviewed/2022/05/GHSA-rq94-jq55-p6ff/GHSA-rq94-jq55-p6ff.json +++ b/advisories/unreviewed/2022/05/GHSA-rq94-jq55-p6ff/GHSA-rq94-jq55-p6ff.json @@ -7,12 +7,8 @@ "CVE-2020-4258" ], "details": "IBM i2 Intelligent Analyis Platform 9.2.1 could allow a local attacker to execute arbitrary code on the system, caused by a memory corruption. By persuading a victim to open a specially-crafted file, an attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 175637.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rqmc-r2j8-rwq3/GHSA-rqmc-r2j8-rwq3.json b/advisories/unreviewed/2022/05/GHSA-rqmc-r2j8-rwq3/GHSA-rqmc-r2j8-rwq3.json index 83ed9572729..ed6e2f5625e 100644 --- a/advisories/unreviewed/2022/05/GHSA-rqmc-r2j8-rwq3/GHSA-rqmc-r2j8-rwq3.json +++ b/advisories/unreviewed/2022/05/GHSA-rqmc-r2j8-rwq3/GHSA-rqmc-r2j8-rwq3.json @@ -7,12 +7,8 @@ "CVE-2020-9502" ], "details": "Some Dahua products with Build time before December 2019 have Session ID predictable vulnerabilities. During normal user access, an attacker can use the predicted Session ID to construct a data packet to attack the device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rqpf-8394-mfqh/GHSA-rqpf-8394-mfqh.json b/advisories/unreviewed/2022/05/GHSA-rqpf-8394-mfqh/GHSA-rqpf-8394-mfqh.json index 9041016f855..d9329d22bd0 100644 --- a/advisories/unreviewed/2022/05/GHSA-rqpf-8394-mfqh/GHSA-rqpf-8394-mfqh.json +++ b/advisories/unreviewed/2022/05/GHSA-rqpf-8394-mfqh/GHSA-rqpf-8394-mfqh.json @@ -7,12 +7,8 @@ "CVE-2020-12745" ], "details": "An issue was discovered on Samsung mobile devices with Q(10.0) software. Attackers can bypass the locked-state protection mechanism and access clipboard content via USSD. The Samsung ID is SVE-2019-16556 (May 2020).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rr2x-68r9-76qv/GHSA-rr2x-68r9-76qv.json b/advisories/unreviewed/2022/05/GHSA-rr2x-68r9-76qv/GHSA-rr2x-68r9-76qv.json index aff4d2acb7a..e8b99896718 100644 --- a/advisories/unreviewed/2022/05/GHSA-rr2x-68r9-76qv/GHSA-rr2x-68r9-76qv.json +++ b/advisories/unreviewed/2022/05/GHSA-rr2x-68r9-76qv/GHSA-rr2x-68r9-76qv.json @@ -7,12 +7,8 @@ "CVE-2020-1156" ], "details": "An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory, aka 'Windows Runtime Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1077, CVE-2020-1086, CVE-2020-1090, CVE-2020-1125, CVE-2020-1139, CVE-2020-1149, CVE-2020-1151, CVE-2020-1155, CVE-2020-1157, CVE-2020-1158, CVE-2020-1164.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rrq9-269w-q3xr/GHSA-rrq9-269w-q3xr.json b/advisories/unreviewed/2022/05/GHSA-rrq9-269w-q3xr/GHSA-rrq9-269w-q3xr.json index b59663bc416..3f59a4a3ed2 100644 --- a/advisories/unreviewed/2022/05/GHSA-rrq9-269w-q3xr/GHSA-rrq9-269w-q3xr.json +++ b/advisories/unreviewed/2022/05/GHSA-rrq9-269w-q3xr/GHSA-rrq9-269w-q3xr.json @@ -7,12 +7,8 @@ "CVE-2019-4266" ], "details": "IBM Maximo Anywhere 7.6.2.0, 7.6.2.1, 7.6.3.0, and 7.6.3.1 does not have device jailbreak detection which could result in an attacker gaining sensitive information about the device. IBM X-Force ID: 160199.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rv58-frxq-x4f4/GHSA-rv58-frxq-x4f4.json b/advisories/unreviewed/2022/05/GHSA-rv58-frxq-x4f4/GHSA-rv58-frxq-x4f4.json index 80ee7a12df4..2c4f37c04ac 100644 --- a/advisories/unreviewed/2022/05/GHSA-rv58-frxq-x4f4/GHSA-rv58-frxq-x4f4.json +++ b/advisories/unreviewed/2022/05/GHSA-rv58-frxq-x4f4/GHSA-rv58-frxq-x4f4.json @@ -7,12 +7,8 @@ "CVE-2020-10638" ], "details": "Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0. Multiple heap-based buffer overflow vulnerabilities exist caused by a lack of proper validation of the length of user-supplied data, which may allow remote code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rvvm-x4j5-wgw3/GHSA-rvvm-x4j5-wgw3.json b/advisories/unreviewed/2022/05/GHSA-rvvm-x4j5-wgw3/GHSA-rvvm-x4j5-wgw3.json index b6062877678..17c665578a2 100644 --- a/advisories/unreviewed/2022/05/GHSA-rvvm-x4j5-wgw3/GHSA-rvvm-x4j5-wgw3.json +++ b/advisories/unreviewed/2022/05/GHSA-rvvm-x4j5-wgw3/GHSA-rvvm-x4j5-wgw3.json @@ -7,12 +7,8 @@ "CVE-2020-10916" ], "details": "This vulnerability allows network-adjacent attackers to escalate privileges on affected installations of TP-Link TL-WA855RE Firmware Ver: 855rev4-up-ver1-0-1-P1[20191213-rel60361] Wi-Fi extenders. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The specific flaw exists within the first-time setup process. The issue results from the lack of proper validation on first-time setup requests. An attacker can leverage this vulnerability to reset the password for the Admin account and execute code in the context of the device. Was ZDI-CAN-10003.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v2w7-xjpq-rmv5/GHSA-v2w7-xjpq-rmv5.json b/advisories/unreviewed/2022/05/GHSA-v2w7-xjpq-rmv5/GHSA-v2w7-xjpq-rmv5.json index 8e4c30cb0b8..0ac2e9a2770 100644 --- a/advisories/unreviewed/2022/05/GHSA-v2w7-xjpq-rmv5/GHSA-v2w7-xjpq-rmv5.json +++ b/advisories/unreviewed/2022/05/GHSA-v2w7-xjpq-rmv5/GHSA-v2w7-xjpq-rmv5.json @@ -7,12 +7,8 @@ "CVE-2020-3283" ], "details": "A vulnerability in the Secure Sockets Layer (SSL)/Transport Layer Security (TLS) handler of Cisco Firepower Threat Defense (FTD) Software when running on the Cisco Firepower 1000 Series platform could allow an unauthenticated, remote attacker to trigger a denial of service (DoS) condition on an affected device. The vulnerability is due to a communication error between internal functions. An attacker could exploit this vulnerability by sending a crafted SSL/TLS message to an affected device. A successful exploit could allow the attacker to cause a buffer underrun, which leads to a crash. The crash causes the affected device to reload.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v33g-rjxr-6hm4/GHSA-v33g-rjxr-6hm4.json b/advisories/unreviewed/2022/05/GHSA-v33g-rjxr-6hm4/GHSA-v33g-rjxr-6hm4.json index 2959f217875..ab5716dc011 100644 --- a/advisories/unreviewed/2022/05/GHSA-v33g-rjxr-6hm4/GHSA-v33g-rjxr-6hm4.json +++ b/advisories/unreviewed/2022/05/GHSA-v33g-rjxr-6hm4/GHSA-v33g-rjxr-6hm4.json @@ -7,12 +7,8 @@ "CVE-2020-3253" ], "details": "A vulnerability in the support tunnel feature of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to access the shell of an affected device even though expert mode is disabled. The vulnerability is due to improper configuration of the support tunnel feature. An attacker could exploit this vulnerability by enabling the support tunnel, setting a key, and deriving the tunnel password. A successful exploit could allow the attacker to run any system command with root access on an affected device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v393-hrm3-64jv/GHSA-v393-hrm3-64jv.json b/advisories/unreviewed/2022/05/GHSA-v393-hrm3-64jv/GHSA-v393-hrm3-64jv.json index 45bfa44dd87..2eeadd70550 100644 --- a/advisories/unreviewed/2022/05/GHSA-v393-hrm3-64jv/GHSA-v393-hrm3-64jv.json +++ b/advisories/unreviewed/2022/05/GHSA-v393-hrm3-64jv/GHSA-v393-hrm3-64jv.json @@ -7,12 +7,8 @@ "CVE-2020-13391" ], "details": "An issue was discovered on Tenda AC6 V1.0 V15.03.05.19_multi_TD01, AC9 V1.0 V15.03.05.19(6318)_CN, AC9 V3.0 V15.03.06.42_multi, AC15 V1.0 V15.03.05.19_multi_TD01, and AC18 V15.03.05.19(6318_)_CN devices. There is a buffer overflow vulnerability in the router's web server -- httpd. While processing the /goform/SetSpeedWan speed_dir parameter for a POST request, a value is directly used in a sprintf to a local variable placed on the stack, which overwrites the return address of a function. An attacker can construct a payload to carry out arbitrary code execution attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v3vr-v6hx-4xrx/GHSA-v3vr-v6hx-4xrx.json b/advisories/unreviewed/2022/05/GHSA-v3vr-v6hx-4xrx/GHSA-v3vr-v6hx-4xrx.json index 4bb2060d343..7844589a7dd 100644 --- a/advisories/unreviewed/2022/05/GHSA-v3vr-v6hx-4xrx/GHSA-v3vr-v6hx-4xrx.json +++ b/advisories/unreviewed/2022/05/GHSA-v3vr-v6hx-4xrx/GHSA-v3vr-v6hx-4xrx.json @@ -7,12 +7,8 @@ "CVE-2020-1166" ], "details": "An elevation of privilege vulnerability exists when Windows improperly handles calls to Clipboard Service, aka 'Windows Clipboard Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1111, CVE-2020-1121, CVE-2020-1165.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v42h-cjgv-79ww/GHSA-v42h-cjgv-79ww.json b/advisories/unreviewed/2022/05/GHSA-v42h-cjgv-79ww/GHSA-v42h-cjgv-79ww.json index 29b75d09ee4..709cb327f8e 100644 --- a/advisories/unreviewed/2022/05/GHSA-v42h-cjgv-79ww/GHSA-v42h-cjgv-79ww.json +++ b/advisories/unreviewed/2022/05/GHSA-v42h-cjgv-79ww/GHSA-v42h-cjgv-79ww.json @@ -7,12 +7,8 @@ "CVE-2020-7266" ], "details": "Privilege Escalation vulnerability in McAfee VirusScan Enterprise (VSE) for Windows prior to 8.8 Patch 14 Hotfix 116778 allows local users to delete files the user would otherwise not have access to via manipulating symbolic links to redirect a McAfee delete action to an unintended file. This is achieved through running a malicious script or program on the target machine.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v4j7-h442-4c52/GHSA-v4j7-h442-4c52.json b/advisories/unreviewed/2022/05/GHSA-v4j7-h442-4c52/GHSA-v4j7-h442-4c52.json index fa441ccc7d2..9461b701148 100644 --- a/advisories/unreviewed/2022/05/GHSA-v4j7-h442-4c52/GHSA-v4j7-h442-4c52.json +++ b/advisories/unreviewed/2022/05/GHSA-v4j7-h442-4c52/GHSA-v4j7-h442-4c52.json @@ -7,12 +7,8 @@ "CVE-2020-9501" ], "details": "Attackers can obtain Cloud Key information from the Dahua Web P2P control in specific ways. Cloud Key is used to authenticate the connection between the client tool and the platform. An attacker may use the leaked Cloud Key to impersonate the client to connect to the platform, resulting in additional consumption of platform server resources. Versions with Build time before April 2020 are affected.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v4pj-8r82-6phx/GHSA-v4pj-8r82-6phx.json b/advisories/unreviewed/2022/05/GHSA-v4pj-8r82-6phx/GHSA-v4pj-8r82-6phx.json index 4d29c46fbec..6f8176a77d5 100644 --- a/advisories/unreviewed/2022/05/GHSA-v4pj-8r82-6phx/GHSA-v4pj-8r82-6phx.json +++ b/advisories/unreviewed/2022/05/GHSA-v4pj-8r82-6phx/GHSA-v4pj-8r82-6phx.json @@ -7,12 +7,8 @@ "CVE-2020-10958" ], "details": "In Dovecot before 2.3.10.1, a crafted SMTP/LMTP message triggers an unauthenticated use-after-free bug in submission-login, submission, or lmtp, and can lead to a crash under circumstances involving many newlines after a command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v59x-rqxr-74j5/GHSA-v59x-rqxr-74j5.json b/advisories/unreviewed/2022/05/GHSA-v59x-rqxr-74j5/GHSA-v59x-rqxr-74j5.json index 00ee9ed8081..5d3ca3a4b73 100644 --- a/advisories/unreviewed/2022/05/GHSA-v59x-rqxr-74j5/GHSA-v59x-rqxr-74j5.json +++ b/advisories/unreviewed/2022/05/GHSA-v59x-rqxr-74j5/GHSA-v59x-rqxr-74j5.json @@ -7,12 +7,8 @@ "CVE-2020-11549" ], "details": "An issue was discovered on NETGEAR Orbi Tri-Band Business WiFi Add-on Satellite (SRS60) AC3000 V2.5.1.106, Outdoor Satellite (RBS50Y) V2.5.1.106, and Pro Tri-Band Business WiFi Router (SRR60) AC3000 V2.5.1.106. The root account has the same password as the Web-admin component. Thus, by exploiting CVE-2020-11551, it is possible to achieve remote code execution with root privileges on the embedded Linux system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v7fw-2gqv-66rx/GHSA-v7fw-2gqv-66rx.json b/advisories/unreviewed/2022/05/GHSA-v7fw-2gqv-66rx/GHSA-v7fw-2gqv-66rx.json index 17338e6dda5..fd8ce63007a 100644 --- a/advisories/unreviewed/2022/05/GHSA-v7fw-2gqv-66rx/GHSA-v7fw-2gqv-66rx.json +++ b/advisories/unreviewed/2022/05/GHSA-v7fw-2gqv-66rx/GHSA-v7fw-2gqv-66rx.json @@ -7,12 +7,8 @@ "CVE-2020-10030" ], "details": "An issue has been found in PowerDNS Recursor 4.1.0 up to and including 4.3.0. It allows an attacker (with enough privileges to change the system's hostname) to cause disclosure of uninitialized memory content via a stack-based out-of-bounds read. It only occurs on systems where gethostname() does not have '\\0' termination of the returned string if the hostname is larger than the supplied buffer. (Linux systems are not affected because the buffer is always large enough. OpenBSD systems are not affected because the returned hostname always has '\\0' termination.) Under some conditions, this issue can lead to the writing of one '\\0' byte out-of-bounds on the stack, causing a denial of service or possibly arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v7j4-xwpv-vf3q/GHSA-v7j4-xwpv-vf3q.json b/advisories/unreviewed/2022/05/GHSA-v7j4-xwpv-vf3q/GHSA-v7j4-xwpv-vf3q.json index c46aed554b8..1e879a1b93f 100644 --- a/advisories/unreviewed/2022/05/GHSA-v7j4-xwpv-vf3q/GHSA-v7j4-xwpv-vf3q.json +++ b/advisories/unreviewed/2022/05/GHSA-v7j4-xwpv-vf3q/GHSA-v7j4-xwpv-vf3q.json @@ -7,12 +7,8 @@ "CVE-2020-0065" ], "details": "An improper authorization in the receiver component of the Android Suite Daemon.Product: AndroidVersions: Android SoCAndroid ID: A-149813448", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v8x9-cq2c-v358/GHSA-v8x9-cq2c-v358.json b/advisories/unreviewed/2022/05/GHSA-v8x9-cq2c-v358/GHSA-v8x9-cq2c-v358.json index aa66441f841..5adc09bda63 100644 --- a/advisories/unreviewed/2022/05/GHSA-v8x9-cq2c-v358/GHSA-v8x9-cq2c-v358.json +++ b/advisories/unreviewed/2022/05/GHSA-v8x9-cq2c-v358/GHSA-v8x9-cq2c-v358.json @@ -7,12 +7,8 @@ "CVE-2019-4667" ], "details": "IBM UrbanCode Deploy (UCD) 7.0.5.2 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. An attacker could exploit this vulnerability to obtain sensitive information using man in the middle techniques. IBM X-Force ID: 171249.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v947-2822-fhxc/GHSA-v947-2822-fhxc.json b/advisories/unreviewed/2022/05/GHSA-v947-2822-fhxc/GHSA-v947-2822-fhxc.json index 6b56cc2237b..b5e6eecad13 100644 --- a/advisories/unreviewed/2022/05/GHSA-v947-2822-fhxc/GHSA-v947-2822-fhxc.json +++ b/advisories/unreviewed/2022/05/GHSA-v947-2822-fhxc/GHSA-v947-2822-fhxc.json @@ -7,12 +7,8 @@ "CVE-2020-4266" ], "details": "IBM i2 Intelligent Analyis Platform 9.2.1 could allow a local attacker to execute arbitrary code on the system, caused by a memory corruption. By persuading a victim to open a specially-crafted file, an attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 175649.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v99v-qgch-h5q5/GHSA-v99v-qgch-h5q5.json b/advisories/unreviewed/2022/05/GHSA-v99v-qgch-h5q5/GHSA-v99v-qgch-h5q5.json index 2fc404e9fd7..bbdee925a20 100644 --- a/advisories/unreviewed/2022/05/GHSA-v99v-qgch-h5q5/GHSA-v99v-qgch-h5q5.json +++ b/advisories/unreviewed/2022/05/GHSA-v99v-qgch-h5q5/GHSA-v99v-qgch-h5q5.json @@ -7,12 +7,8 @@ "CVE-2020-13111" ], "details": "NaviServer 4.99.4 to 4.99.19 allows denial of service due to the nsd/driver.c ChunkedDecode function not properly validating the length of a chunk. A remote attacker can craft a chunked-transfer request that will result in a negative value being passed to memmove via the size parameter, causing the process to crash.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v9gq-c7q6-67rc/GHSA-v9gq-c7q6-67rc.json b/advisories/unreviewed/2022/05/GHSA-v9gq-c7q6-67rc/GHSA-v9gq-c7q6-67rc.json index 6798b3823bb..8fe8ae7b5f0 100644 --- a/advisories/unreviewed/2022/05/GHSA-v9gq-c7q6-67rc/GHSA-v9gq-c7q6-67rc.json +++ b/advisories/unreviewed/2022/05/GHSA-v9gq-c7q6-67rc/GHSA-v9gq-c7q6-67rc.json @@ -7,12 +7,8 @@ "CVE-2020-12706" ], "details": "Multiple Cross-site scripting vulnerabilities in PHP-Fusion 9.03.50 allow remote attackers to inject arbitrary web script or HTML via the go parameter to faq/faq_admin.php or shoutbox_panel/shoutbox_admin.php", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vc6m-jhq8-gmhj/GHSA-vc6m-jhq8-gmhj.json b/advisories/unreviewed/2022/05/GHSA-vc6m-jhq8-gmhj/GHSA-vc6m-jhq8-gmhj.json index 00f07365753..9dd32442e97 100644 --- a/advisories/unreviewed/2022/05/GHSA-vc6m-jhq8-gmhj/GHSA-vc6m-jhq8-gmhj.json +++ b/advisories/unreviewed/2022/05/GHSA-vc6m-jhq8-gmhj/GHSA-vc6m-jhq8-gmhj.json @@ -7,12 +7,8 @@ "CVE-2020-11462" ], "details": "An issue was discovered in OpenVPN Access Server before 2.7.0 and 2.8.x before 2.8.3. With the full featured RPC2 interface enabled, it is possible to achieve a temporary DoS state of the management interface when sending an XML Entity Expansion (XEE) payload to the XMLRPC based RPC2 interface. The duration of the DoS state depends on available memory and CPU speed. The default restricted mode of the RPC2 interface is NOT vulnerable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vf9q-4vq5-rg7j/GHSA-vf9q-4vq5-rg7j.json b/advisories/unreviewed/2022/05/GHSA-vf9q-4vq5-rg7j/GHSA-vf9q-4vq5-rg7j.json index 970a91d71ae..10cb2e66b34 100644 --- a/advisories/unreviewed/2022/05/GHSA-vf9q-4vq5-rg7j/GHSA-vf9q-4vq5-rg7j.json +++ b/advisories/unreviewed/2022/05/GHSA-vf9q-4vq5-rg7j/GHSA-vf9q-4vq5-rg7j.json @@ -7,12 +7,8 @@ "CVE-2020-0064" ], "details": "An improper authorization while processing the provisioning data.Product: AndroidVersions: Android SoCAndroid ID: A-149866855", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vf9x-mrwf-g89p/GHSA-vf9x-mrwf-g89p.json b/advisories/unreviewed/2022/05/GHSA-vf9x-mrwf-g89p/GHSA-vf9x-mrwf-g89p.json index a460a638abd..48d3b309b7f 100644 --- a/advisories/unreviewed/2022/05/GHSA-vf9x-mrwf-g89p/GHSA-vf9x-mrwf-g89p.json +++ b/advisories/unreviewed/2022/05/GHSA-vf9x-mrwf-g89p/GHSA-vf9x-mrwf-g89p.json @@ -7,12 +7,8 @@ "CVE-2020-10622" ], "details": "LCDS LAquis SCADA Versions 4.3.1 and prior. The affected product is vulnerable to arbitrary file creation by unauthorized users", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vmff-qqc4-4g3c/GHSA-vmff-qqc4-4g3c.json b/advisories/unreviewed/2022/05/GHSA-vmff-qqc4-4g3c/GHSA-vmff-qqc4-4g3c.json index e4cd363b948..3f7c75f8e22 100644 --- a/advisories/unreviewed/2022/05/GHSA-vmff-qqc4-4g3c/GHSA-vmff-qqc4-4g3c.json +++ b/advisories/unreviewed/2022/05/GHSA-vmff-qqc4-4g3c/GHSA-vmff-qqc4-4g3c.json @@ -7,12 +7,8 @@ "CVE-2020-4285" ], "details": "IBM i2 Intelligent Analyis Platform 9.2.1 could allow a remote attacker to execute arbitrary code on the system, caused by a memory corruption error. By persuading a victim to open a specially-crafted document, a remote attacker could exploit this vulnerability to execute arbitrary code on the system with the privileges of the victim or cause the application to crash. IBM X-Force ID: 176266", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vmqg-547g-3f2r/GHSA-vmqg-547g-3f2r.json b/advisories/unreviewed/2022/05/GHSA-vmqg-547g-3f2r/GHSA-vmqg-547g-3f2r.json index e74b202ef71..2495e1df37b 100644 --- a/advisories/unreviewed/2022/05/GHSA-vmqg-547g-3f2r/GHSA-vmqg-547g-3f2r.json +++ b/advisories/unreviewed/2022/05/GHSA-vmqg-547g-3f2r/GHSA-vmqg-547g-3f2r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vr8h-63cg-wc5g/GHSA-vr8h-63cg-wc5g.json b/advisories/unreviewed/2022/05/GHSA-vr8h-63cg-wc5g/GHSA-vr8h-63cg-wc5g.json index 79e2e4c4bb6..6e1f6ae6b00 100644 --- a/advisories/unreviewed/2022/05/GHSA-vr8h-63cg-wc5g/GHSA-vr8h-63cg-wc5g.json +++ b/advisories/unreviewed/2022/05/GHSA-vr8h-63cg-wc5g/GHSA-vr8h-63cg-wc5g.json @@ -7,12 +7,8 @@ "CVE-2020-5727" ], "details": "Authentication bypass using an alternate path or channel in SimpliSafe SS3 firmware 1.4 allows a local, unauthenticated attacker to pair a rogue keypad to an armed system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vwhc-xx59-6jfx/GHSA-vwhc-xx59-6jfx.json b/advisories/unreviewed/2022/05/GHSA-vwhc-xx59-6jfx/GHSA-vwhc-xx59-6jfx.json index 7b33e8dcdc7..aecf9f0c7e0 100644 --- a/advisories/unreviewed/2022/05/GHSA-vwhc-xx59-6jfx/GHSA-vwhc-xx59-6jfx.json +++ b/advisories/unreviewed/2022/05/GHSA-vwhc-xx59-6jfx/GHSA-vwhc-xx59-6jfx.json @@ -7,12 +7,8 @@ "CVE-2020-5746" ], "details": "Insufficient output sanitization in TCExam 14.2.2 allows a remote, authenticated attacker to conduct persistent cross-site scripting (XSS) attacks by creating a crafted test.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w2pr-2387-vxgh/GHSA-w2pr-2387-vxgh.json b/advisories/unreviewed/2022/05/GHSA-w2pr-2387-vxgh/GHSA-w2pr-2387-vxgh.json index bd753bf350d..9a8a1624ace 100644 --- a/advisories/unreviewed/2022/05/GHSA-w2pr-2387-vxgh/GHSA-w2pr-2387-vxgh.json +++ b/advisories/unreviewed/2022/05/GHSA-w2pr-2387-vxgh/GHSA-w2pr-2387-vxgh.json @@ -7,12 +7,8 @@ "CVE-2020-12662" ], "details": "Unbound before 1.10.1 has Insufficient Control of Network Message Volume, aka an \"NXNSAttack\" issue. This is triggered by random subdomains in the NSDNAME in NS records.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w2rg-v998-6982/GHSA-w2rg-v998-6982.json b/advisories/unreviewed/2022/05/GHSA-w2rg-v998-6982/GHSA-w2rg-v998-6982.json index d2126ffa0f2..7ccd7536c9a 100644 --- a/advisories/unreviewed/2022/05/GHSA-w2rg-v998-6982/GHSA-w2rg-v998-6982.json +++ b/advisories/unreviewed/2022/05/GHSA-w2rg-v998-6982/GHSA-w2rg-v998-6982.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w2rr-j9v9-9342/GHSA-w2rr-j9v9-9342.json b/advisories/unreviewed/2022/05/GHSA-w2rr-j9v9-9342/GHSA-w2rr-j9v9-9342.json index 39cd195dc64..63e6b7c8b2c 100644 --- a/advisories/unreviewed/2022/05/GHSA-w2rr-j9v9-9342/GHSA-w2rr-j9v9-9342.json +++ b/advisories/unreviewed/2022/05/GHSA-w2rr-j9v9-9342/GHSA-w2rr-j9v9-9342.json @@ -7,12 +7,8 @@ "CVE-2020-5334" ], "details": "RSA Archer, versions prior to 6.7 P2 (6.7.0.2), contains a Document Object Model (DOM) based cross-site scripting vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability by tricking a victim application user to supply malicious HTML or JavaScript code to DOM environment in the browser. The malicious code is then executed by the web browser in the context of the vulnerable web application.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w32x-6946-hh6j/GHSA-w32x-6946-hh6j.json b/advisories/unreviewed/2022/05/GHSA-w32x-6946-hh6j/GHSA-w32x-6946-hh6j.json index 8a62d5aa567..a0070b5144b 100644 --- a/advisories/unreviewed/2022/05/GHSA-w32x-6946-hh6j/GHSA-w32x-6946-hh6j.json +++ b/advisories/unreviewed/2022/05/GHSA-w32x-6946-hh6j/GHSA-w32x-6946-hh6j.json @@ -7,12 +7,8 @@ "CVE-2020-8829" ], "details": "CSRF on Intelbras CIP 92200 devices allows an attacker to access the panel and perform scraping or other analysis.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w3w2-3jp4-4c4g/GHSA-w3w2-3jp4-4c4g.json b/advisories/unreviewed/2022/05/GHSA-w3w2-3jp4-4c4g/GHSA-w3w2-3jp4-4c4g.json index ad32b29cb91..1ae7e1e2bb8 100644 --- a/advisories/unreviewed/2022/05/GHSA-w3w2-3jp4-4c4g/GHSA-w3w2-3jp4-4c4g.json +++ b/advisories/unreviewed/2022/05/GHSA-w3w2-3jp4-4c4g/GHSA-w3w2-3jp4-4c4g.json @@ -7,12 +7,8 @@ "CVE-2020-11531" ], "details": "The DataEngine Xnode Server application in Zoho ManageEngine DataSecurity Plus prior to 6.0.1 does not validate the database schema name when handling a DR-SCHEMA-SYNC request. This allows an authenticated attacker to execute code in the context of the product by writing a JSP file to the webroot directory via directory traversal.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w426-v599-whp2/GHSA-w426-v599-whp2.json b/advisories/unreviewed/2022/05/GHSA-w426-v599-whp2/GHSA-w426-v599-whp2.json index c7fb8c98b9d..159037face4 100644 --- a/advisories/unreviewed/2022/05/GHSA-w426-v599-whp2/GHSA-w426-v599-whp2.json +++ b/advisories/unreviewed/2022/05/GHSA-w426-v599-whp2/GHSA-w426-v599-whp2.json @@ -7,12 +7,8 @@ "CVE-2020-12705" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities exist in LeptonCMS before 4.6.0.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w57h-38rg-v7ww/GHSA-w57h-38rg-v7ww.json b/advisories/unreviewed/2022/05/GHSA-w57h-38rg-v7ww/GHSA-w57h-38rg-v7ww.json index 922fe1e2a02..79b6a0297b6 100644 --- a/advisories/unreviewed/2022/05/GHSA-w57h-38rg-v7ww/GHSA-w57h-38rg-v7ww.json +++ b/advisories/unreviewed/2022/05/GHSA-w57h-38rg-v7ww/GHSA-w57h-38rg-v7ww.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w62j-fxqj-2wqh/GHSA-w62j-fxqj-2wqh.json b/advisories/unreviewed/2022/05/GHSA-w62j-fxqj-2wqh/GHSA-w62j-fxqj-2wqh.json index abfbf29d30d..cab05d0eb2a 100644 --- a/advisories/unreviewed/2022/05/GHSA-w62j-fxqj-2wqh/GHSA-w62j-fxqj-2wqh.json +++ b/advisories/unreviewed/2022/05/GHSA-w62j-fxqj-2wqh/GHSA-w62j-fxqj-2wqh.json @@ -7,12 +7,8 @@ "CVE-2020-4287" ], "details": "IBM i2 Intelligent Analyis Platform 9.2.1 could allow a remote attacker to execute arbitrary code on the system, caused by a memory corruption error. By persuading a victim to open a specially-crafted document, a remote attacker could exploit this vulnerability to execute arbitrary code on the system with the privileges of the victim or cause the application to crash. IBM X-Force ID: 176269.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w656-4w26-4m89/GHSA-w656-4w26-4m89.json b/advisories/unreviewed/2022/05/GHSA-w656-4w26-4m89/GHSA-w656-4w26-4m89.json index 74c3c5be371..65ea97896ae 100644 --- a/advisories/unreviewed/2022/05/GHSA-w656-4w26-4m89/GHSA-w656-4w26-4m89.json +++ b/advisories/unreviewed/2022/05/GHSA-w656-4w26-4m89/GHSA-w656-4w26-4m89.json @@ -7,12 +7,8 @@ "CVE-2020-4257" ], "details": "IBM i2 Intelligent Analyis Platform 9.2.1 could allow a local attacker to execute arbitrary code on the system, caused by a memory corruption. By persuading a victim to open a specially-crafted file, an attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 175635.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w785-mqqm-9895/GHSA-w785-mqqm-9895.json b/advisories/unreviewed/2022/05/GHSA-w785-mqqm-9895/GHSA-w785-mqqm-9895.json index d8e450e24d1..9333e365f67 100644 --- a/advisories/unreviewed/2022/05/GHSA-w785-mqqm-9895/GHSA-w785-mqqm-9895.json +++ b/advisories/unreviewed/2022/05/GHSA-w785-mqqm-9895/GHSA-w785-mqqm-9895.json @@ -7,12 +7,8 @@ "CVE-2020-0106" ], "details": "In getCellLocation of PhoneInterfaceManager.java, there is a possible permission bypass due to a missing SDK version check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-148414207", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w84q-5c2r-x6wg/GHSA-w84q-5c2r-x6wg.json b/advisories/unreviewed/2022/05/GHSA-w84q-5c2r-x6wg/GHSA-w84q-5c2r-x6wg.json index b5fca51b1d4..75dbbaa66af 100644 --- a/advisories/unreviewed/2022/05/GHSA-w84q-5c2r-x6wg/GHSA-w84q-5c2r-x6wg.json +++ b/advisories/unreviewed/2022/05/GHSA-w84q-5c2r-x6wg/GHSA-w84q-5c2r-x6wg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w8pj-jc9c-cq4v/GHSA-w8pj-jc9c-cq4v.json b/advisories/unreviewed/2022/05/GHSA-w8pj-jc9c-cq4v/GHSA-w8pj-jc9c-cq4v.json index 6697820b2bc..cd419958b06 100644 --- a/advisories/unreviewed/2022/05/GHSA-w8pj-jc9c-cq4v/GHSA-w8pj-jc9c-cq4v.json +++ b/advisories/unreviewed/2022/05/GHSA-w8pj-jc9c-cq4v/GHSA-w8pj-jc9c-cq4v.json @@ -7,12 +7,8 @@ "CVE-2020-1993" ], "details": "The GlobalProtect Portal feature in PAN-OS does not set a new session identifier after a successful user login, which allows session fixation attacks, if an attacker is able to control a user's session ID. This issue affects: All PAN-OS 7.1 and 8.0 versions; PAN-OS 8.1 versions earlier than 8.1.14; PAN-OS 9.0 versions earlier than 9.0.8.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wc6m-2q93-p5qr/GHSA-wc6m-2q93-p5qr.json b/advisories/unreviewed/2022/05/GHSA-wc6m-2q93-p5qr/GHSA-wc6m-2q93-p5qr.json index 3d9c80907d9..49e83a4674f 100644 --- a/advisories/unreviewed/2022/05/GHSA-wc6m-2q93-p5qr/GHSA-wc6m-2q93-p5qr.json +++ b/advisories/unreviewed/2022/05/GHSA-wc6m-2q93-p5qr/GHSA-wc6m-2q93-p5qr.json @@ -7,12 +7,8 @@ "CVE-2020-11443" ], "details": "The MSI installer in Zoom before 4.6.10 on Windows follows Symbolic Links.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wm4c-fv79-j3v9/GHSA-wm4c-fv79-j3v9.json b/advisories/unreviewed/2022/05/GHSA-wm4c-fv79-j3v9/GHSA-wm4c-fv79-j3v9.json index 619d3ad646d..7b6438cb9b7 100644 --- a/advisories/unreviewed/2022/05/GHSA-wm4c-fv79-j3v9/GHSA-wm4c-fv79-j3v9.json +++ b/advisories/unreviewed/2022/05/GHSA-wm4c-fv79-j3v9/GHSA-wm4c-fv79-j3v9.json @@ -7,12 +7,8 @@ "CVE-2019-19454" ], "details": "An arbitrary file download was found in the \"Download Log\" functionality of Wowza Streaming Engine <= 4.x.x", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wmhf-m2r4-mcrp/GHSA-wmhf-m2r4-mcrp.json b/advisories/unreviewed/2022/05/GHSA-wmhf-m2r4-mcrp/GHSA-wmhf-m2r4-mcrp.json index 9bdd9c4f8dc..e8ea6d6a5fc 100644 --- a/advisories/unreviewed/2022/05/GHSA-wmhf-m2r4-mcrp/GHSA-wmhf-m2r4-mcrp.json +++ b/advisories/unreviewed/2022/05/GHSA-wmhf-m2r4-mcrp/GHSA-wmhf-m2r4-mcrp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wmw3-jfvx-7mfr/GHSA-wmw3-jfvx-7mfr.json b/advisories/unreviewed/2022/05/GHSA-wmw3-jfvx-7mfr/GHSA-wmw3-jfvx-7mfr.json index cc36ed5dbbd..5ee336f59ad 100644 --- a/advisories/unreviewed/2022/05/GHSA-wmw3-jfvx-7mfr/GHSA-wmw3-jfvx-7mfr.json +++ b/advisories/unreviewed/2022/05/GHSA-wmw3-jfvx-7mfr/GHSA-wmw3-jfvx-7mfr.json @@ -7,12 +7,8 @@ "CVE-2020-1176" ], "details": "A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1051, CVE-2020-1174, CVE-2020-1175.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wp3x-cvf7-rqrm/GHSA-wp3x-cvf7-rqrm.json b/advisories/unreviewed/2022/05/GHSA-wp3x-cvf7-rqrm/GHSA-wp3x-cvf7-rqrm.json index 38037bc1861..67c14d01fec 100644 --- a/advisories/unreviewed/2022/05/GHSA-wp3x-cvf7-rqrm/GHSA-wp3x-cvf7-rqrm.json +++ b/advisories/unreviewed/2022/05/GHSA-wp3x-cvf7-rqrm/GHSA-wp3x-cvf7-rqrm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wq2w-hx52-r5gj/GHSA-wq2w-hx52-r5gj.json b/advisories/unreviewed/2022/05/GHSA-wq2w-hx52-r5gj/GHSA-wq2w-hx52-r5gj.json index bceb789f1d7..f40e3453d11 100644 --- a/advisories/unreviewed/2022/05/GHSA-wq2w-hx52-r5gj/GHSA-wq2w-hx52-r5gj.json +++ b/advisories/unreviewed/2022/05/GHSA-wq2w-hx52-r5gj/GHSA-wq2w-hx52-r5gj.json @@ -7,12 +7,8 @@ "CVE-2020-6247" ], "details": "SAP Business Objects Business Intelligence Platform, version 4.2, allows an unauthenticated attacker to prevent legitimate users from accessing a service. Using a specially crafted request, the attacker can crash or flood the Central Management Server, thereby impacting system availability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wq94-3874-qv2h/GHSA-wq94-3874-qv2h.json b/advisories/unreviewed/2022/05/GHSA-wq94-3874-qv2h/GHSA-wq94-3874-qv2h.json index a2076070868..877f53e1af1 100644 --- a/advisories/unreviewed/2022/05/GHSA-wq94-3874-qv2h/GHSA-wq94-3874-qv2h.json +++ b/advisories/unreviewed/2022/05/GHSA-wq94-3874-qv2h/GHSA-wq94-3874-qv2h.json @@ -7,12 +7,8 @@ "CVE-2020-5896" ], "details": "On versions 7.1.5-7.1.9, the BIG-IP Edge Client's Windows Installer Service's temporary folder has weak file and folder permissions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wrqh-vg7q-4h79/GHSA-wrqh-vg7q-4h79.json b/advisories/unreviewed/2022/05/GHSA-wrqh-vg7q-4h79/GHSA-wrqh-vg7q-4h79.json index 80a3a8c42f1..f8206f3c71e 100644 --- a/advisories/unreviewed/2022/05/GHSA-wrqh-vg7q-4h79/GHSA-wrqh-vg7q-4h79.json +++ b/advisories/unreviewed/2022/05/GHSA-wrqh-vg7q-4h79/GHSA-wrqh-vg7q-4h79.json @@ -7,12 +7,8 @@ "CVE-2020-11532" ], "details": "Zoho ManageEngine DataSecurity Plus prior to 6.0.1 uses default admin credentials to communicate with a DataEngine Xnode server. This allows an attacker to bypass authentication for this server and execute all operations in the context of admin user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ww7c-jvvf-833h/GHSA-ww7c-jvvf-833h.json b/advisories/unreviewed/2022/05/GHSA-ww7c-jvvf-833h/GHSA-ww7c-jvvf-833h.json index 17f834af630..38148e8c15a 100644 --- a/advisories/unreviewed/2022/05/GHSA-ww7c-jvvf-833h/GHSA-ww7c-jvvf-833h.json +++ b/advisories/unreviewed/2022/05/GHSA-ww7c-jvvf-833h/GHSA-ww7c-jvvf-833h.json @@ -7,12 +7,8 @@ "CVE-2020-2005" ], "details": "A cross-site scripting (XSS) vulnerability exists when visiting malicious websites with the Palo Alto Networks GlobalProtect Clientless VPN that can compromise the user's active session. This issue affects: PAN-OS 7.1 versions earlier than 7.1.26; PAN-OS 8.0 versions earlier than 8.0.21; PAN-OS 8.1 versions earlier than 8.1.13; PAN-OS 9.0 versions earlier than 9.0.7.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wx69-vm3h-3cgv/GHSA-wx69-vm3h-3cgv.json b/advisories/unreviewed/2022/05/GHSA-wx69-vm3h-3cgv/GHSA-wx69-vm3h-3cgv.json index 07fbae230dd..d2135d98dcf 100644 --- a/advisories/unreviewed/2022/05/GHSA-wx69-vm3h-3cgv/GHSA-wx69-vm3h-3cgv.json +++ b/advisories/unreviewed/2022/05/GHSA-wx69-vm3h-3cgv/GHSA-wx69-vm3h-3cgv.json @@ -7,12 +7,8 @@ "CVE-2020-1763" ], "details": "An out-of-bounds buffer read flaw was found in the pluto daemon of libreswan from versions 3.27 till 3.31 where, an unauthenticated attacker could use this flaw to crash libreswan by sending specially-crafted IKEv1 Informational Exchange packets. The daemon respawns after the crash.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wxmm-482m-cm8h/GHSA-wxmm-482m-cm8h.json b/advisories/unreviewed/2022/05/GHSA-wxmm-482m-cm8h/GHSA-wxmm-482m-cm8h.json index 120660d2a8a..6bb8b7f5e0f 100644 --- a/advisories/unreviewed/2022/05/GHSA-wxmm-482m-cm8h/GHSA-wxmm-482m-cm8h.json +++ b/advisories/unreviewed/2022/05/GHSA-wxmm-482m-cm8h/GHSA-wxmm-482m-cm8h.json @@ -7,12 +7,8 @@ "CVE-2020-12826" ], "details": "A signal access-control issue was discovered in the Linux kernel before 5.6.5, aka CID-7395ea4e65c2. Because exec_id in include/linux/sched.h is only 32 bits, an integer overflow can interfere with a do_notify_parent protection mechanism. A child process can send an arbitrary signal to a parent process in a different security domain. Exploitation limitations include the amount of elapsed time before an integer overflow occurs, and the lack of scenarios where signals to a parent process present a substantial operational threat.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wxwf-j52f-79g8/GHSA-wxwf-j52f-79g8.json b/advisories/unreviewed/2022/05/GHSA-wxwf-j52f-79g8/GHSA-wxwf-j52f-79g8.json index 0968ab1629c..9ededc49d78 100644 --- a/advisories/unreviewed/2022/05/GHSA-wxwf-j52f-79g8/GHSA-wxwf-j52f-79g8.json +++ b/advisories/unreviewed/2022/05/GHSA-wxwf-j52f-79g8/GHSA-wxwf-j52f-79g8.json @@ -7,12 +7,8 @@ "CVE-2019-11048" ], "details": "In PHP versions 7.2.x below 7.2.31, 7.3.x below 7.3.18 and 7.4.x below 7.4.6, when HTTP file uploads are allowed, supplying overly long filenames or field names could lead PHP engine to try to allocate oversized memory storage, hit the memory limit and stop processing the request, without cleaning up temporary files created by upload request. This potentially could lead to accumulation of uncleaned temporary files exhausting the disk space on the target server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x28g-jx38-xw6g/GHSA-x28g-jx38-xw6g.json b/advisories/unreviewed/2022/05/GHSA-x28g-jx38-xw6g/GHSA-x28g-jx38-xw6g.json index 42b5d4fbe59..c75436f6dff 100644 --- a/advisories/unreviewed/2022/05/GHSA-x28g-jx38-xw6g/GHSA-x28g-jx38-xw6g.json +++ b/advisories/unreviewed/2022/05/GHSA-x28g-jx38-xw6g/GHSA-x28g-jx38-xw6g.json @@ -7,12 +7,8 @@ "CVE-2020-12707" ], "details": "An XSS vulnerability exists in modules/wysiwyg/save.php of LeptonCMS 4.5.0. This can be exploited because the only security measure used against XSS is the stripping of SCRIPT elements. A malicious actor can use HTML event handlers to run JavaScript instead of using SCRIPT elements.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x29x-mq6w-9q67/GHSA-x29x-mq6w-9q67.json b/advisories/unreviewed/2022/05/GHSA-x29x-mq6w-9q67/GHSA-x29x-mq6w-9q67.json index ba937ff9ea9..ef3c9ee8cf4 100644 --- a/advisories/unreviewed/2022/05/GHSA-x29x-mq6w-9q67/GHSA-x29x-mq6w-9q67.json +++ b/advisories/unreviewed/2022/05/GHSA-x29x-mq6w-9q67/GHSA-x29x-mq6w-9q67.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x3cf-27qr-5pww/GHSA-x3cf-27qr-5pww.json b/advisories/unreviewed/2022/05/GHSA-x3cf-27qr-5pww/GHSA-x3cf-27qr-5pww.json index 6d143a324df..9a3b96ae7a4 100644 --- a/advisories/unreviewed/2022/05/GHSA-x3cf-27qr-5pww/GHSA-x3cf-27qr-5pww.json +++ b/advisories/unreviewed/2022/05/GHSA-x3cf-27qr-5pww/GHSA-x3cf-27qr-5pww.json @@ -7,12 +7,8 @@ "CVE-2020-1186" ], "details": "An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in memory, aka 'Windows State Repository Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1124, CVE-2020-1131, CVE-2020-1134, CVE-2020-1144, CVE-2020-1184, CVE-2020-1185, CVE-2020-1187, CVE-2020-1188, CVE-2020-1189, CVE-2020-1190, CVE-2020-1191.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x5wg-hpq8-9gf3/GHSA-x5wg-hpq8-9gf3.json b/advisories/unreviewed/2022/05/GHSA-x5wg-hpq8-9gf3/GHSA-x5wg-hpq8-9gf3.json index 354ca4531e7..1300259dc32 100644 --- a/advisories/unreviewed/2022/05/GHSA-x5wg-hpq8-9gf3/GHSA-x5wg-hpq8-9gf3.json +++ b/advisories/unreviewed/2022/05/GHSA-x5wg-hpq8-9gf3/GHSA-x5wg-hpq8-9gf3.json @@ -7,12 +7,8 @@ "CVE-2020-12463" ], "details": "An elevation of privilege vulnerability exists in Avira Software Updater before 2.0.6.27476 due to improperly handling file hard links. This allows local users to obtain take control of arbitrary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x6c7-c3v8-xmwc/GHSA-x6c7-c3v8-xmwc.json b/advisories/unreviewed/2022/05/GHSA-x6c7-c3v8-xmwc/GHSA-x6c7-c3v8-xmwc.json index c39d1e319ac..442be8b1fd7 100644 --- a/advisories/unreviewed/2022/05/GHSA-x6c7-c3v8-xmwc/GHSA-x6c7-c3v8-xmwc.json +++ b/advisories/unreviewed/2022/05/GHSA-x6c7-c3v8-xmwc/GHSA-x6c7-c3v8-xmwc.json @@ -7,12 +7,8 @@ "CVE-2020-12696" ], "details": "The iframe plugin before 4.5 for WordPress does not sanitize a URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x6j6-cjpj-gpm9/GHSA-x6j6-cjpj-gpm9.json b/advisories/unreviewed/2022/05/GHSA-x6j6-cjpj-gpm9/GHSA-x6j6-cjpj-gpm9.json index 380a8e751c9..e242c93aadc 100644 --- a/advisories/unreviewed/2022/05/GHSA-x6j6-cjpj-gpm9/GHSA-x6j6-cjpj-gpm9.json +++ b/advisories/unreviewed/2022/05/GHSA-x6j6-cjpj-gpm9/GHSA-x6j6-cjpj-gpm9.json @@ -7,12 +7,8 @@ "CVE-2020-11932" ], "details": "It was discovered that the Subiquity installer for Ubuntu Server logged the LUKS full disk encryption password if one was entered.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x72c-34x9-qrm4/GHSA-x72c-34x9-qrm4.json b/advisories/unreviewed/2022/05/GHSA-x72c-34x9-qrm4/GHSA-x72c-34x9-qrm4.json index f94fe0395b1..b7ea733c1f2 100644 --- a/advisories/unreviewed/2022/05/GHSA-x72c-34x9-qrm4/GHSA-x72c-34x9-qrm4.json +++ b/advisories/unreviewed/2022/05/GHSA-x72c-34x9-qrm4/GHSA-x72c-34x9-qrm4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x7gg-cwpw-28p9/GHSA-x7gg-cwpw-28p9.json b/advisories/unreviewed/2022/05/GHSA-x7gg-cwpw-28p9/GHSA-x7gg-cwpw-28p9.json index 16785349638..c5dc2f2c5f5 100644 --- a/advisories/unreviewed/2022/05/GHSA-x7gg-cwpw-28p9/GHSA-x7gg-cwpw-28p9.json +++ b/advisories/unreviewed/2022/05/GHSA-x7gg-cwpw-28p9/GHSA-x7gg-cwpw-28p9.json @@ -7,12 +7,8 @@ "CVE-2020-8790" ], "details": "The OKLOK (3.1.1) mobile companion app for Fingerprint Bluetooth Padlock FB50 (2.3) has weak password requirements combined with improper restriction of excessive authentication attempts, which could allow a remote attacker to discover user credentials and obtain access via a brute force attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x7qm-3r7g-3p97/GHSA-x7qm-3r7g-3p97.json b/advisories/unreviewed/2022/05/GHSA-x7qm-3r7g-3p97/GHSA-x7qm-3r7g-3p97.json index 80f4ea13bca..55c15bf9c6b 100644 --- a/advisories/unreviewed/2022/05/GHSA-x7qm-3r7g-3p97/GHSA-x7qm-3r7g-3p97.json +++ b/advisories/unreviewed/2022/05/GHSA-x7qm-3r7g-3p97/GHSA-x7qm-3r7g-3p97.json @@ -7,12 +7,8 @@ "CVE-2019-13021" ], "details": "The administrative passwords for all versions of Bond JetSelect are stored within an unprotected file on the filesystem, rather than encrypted within the MySQL database. This backup copy of the passwords is made as part of the installation script, after the administrator has generated a password using ENCtool.jar (see CVE-2019-13022). This allows any low-privilege user who can read this file to trivially obtain the passwords for the administrative accounts of the JetSelect application. The path to the file containing the encoded password hash is /opt/JetSelect/SFC/resources/sfc-general-properties.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x83m-q23q-xv5j/GHSA-x83m-q23q-xv5j.json b/advisories/unreviewed/2022/05/GHSA-x83m-q23q-xv5j/GHSA-x83m-q23q-xv5j.json index 6b554e0e569..8b4d9d25708 100644 --- a/advisories/unreviewed/2022/05/GHSA-x83m-q23q-xv5j/GHSA-x83m-q23q-xv5j.json +++ b/advisories/unreviewed/2022/05/GHSA-x83m-q23q-xv5j/GHSA-x83m-q23q-xv5j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x8g9-h939-cmr5/GHSA-x8g9-h939-cmr5.json b/advisories/unreviewed/2022/05/GHSA-x8g9-h939-cmr5/GHSA-x8g9-h939-cmr5.json index 30f46e4b146..8cb96a9e1cf 100644 --- a/advisories/unreviewed/2022/05/GHSA-x8g9-h939-cmr5/GHSA-x8g9-h939-cmr5.json +++ b/advisories/unreviewed/2022/05/GHSA-x8g9-h939-cmr5/GHSA-x8g9-h939-cmr5.json @@ -7,12 +7,8 @@ "CVE-2020-1799" ], "details": "E6878-370 with versions of 10.0.3.1(H557SP27C233), 10.0.3.1(H563SP1C00), 10.0.3.1(H563SP1C233) has a use after free vulnerability. The software references memory after it has been freed in certain scenario, the attacker does a series of crafted operations through web portal, successful exploit could cause a use after free condition which may lead to malicious code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xf33-8qpp-q25c/GHSA-xf33-8qpp-q25c.json b/advisories/unreviewed/2022/05/GHSA-xf33-8qpp-q25c/GHSA-xf33-8qpp-q25c.json index 6cc87db1a21..caf08acf198 100644 --- a/advisories/unreviewed/2022/05/GHSA-xf33-8qpp-q25c/GHSA-xf33-8qpp-q25c.json +++ b/advisories/unreviewed/2022/05/GHSA-xf33-8qpp-q25c/GHSA-xf33-8qpp-q25c.json @@ -7,12 +7,8 @@ "CVE-2020-3179" ], "details": "A vulnerability in the generic routing encapsulation (GRE) tunnel decapsulation feature of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to a memory handling error when GRE over IPv6 traffic is processed. An attacker could exploit this vulnerability by sending crafted GRE over IPv6 packets with either IPv4 or IPv6 payload through an affected device. A successful exploit could allow the attacker to cause the device to crash, resulting in a DoS condition.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xfhc-xhx2-ffp9/GHSA-xfhc-xhx2-ffp9.json b/advisories/unreviewed/2022/05/GHSA-xfhc-xhx2-ffp9/GHSA-xfhc-xhx2-ffp9.json index cc79f68a846..75158e94053 100644 --- a/advisories/unreviewed/2022/05/GHSA-xfhc-xhx2-ffp9/GHSA-xfhc-xhx2-ffp9.json +++ b/advisories/unreviewed/2022/05/GHSA-xfhc-xhx2-ffp9/GHSA-xfhc-xhx2-ffp9.json @@ -7,12 +7,8 @@ "CVE-2020-3184" ], "details": "A vulnerability in the web-based management interface of Cisco Prime Collaboration Provisioning Software could allow an authenticated, remote attacker to conduct SQL injection attacks on an affected system. The vulnerability exists because the web-based management interface improperly validates user input for specific SQL queries. An attacker could exploit this vulnerability by authenticating to the application with valid administrative credentials and sending malicious requests to an affected system. A successful exploit could allow the attacker to view information that they are not authorized to view, make changes to the system that they are not authorized to make, or delete information from the database that they are not authorized to delete.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xg5f-prh7-r529/GHSA-xg5f-prh7-r529.json b/advisories/unreviewed/2022/05/GHSA-xg5f-prh7-r529/GHSA-xg5f-prh7-r529.json index c2a08e46834..a6906519f2c 100644 --- a/advisories/unreviewed/2022/05/GHSA-xg5f-prh7-r529/GHSA-xg5f-prh7-r529.json +++ b/advisories/unreviewed/2022/05/GHSA-xg5f-prh7-r529/GHSA-xg5f-prh7-r529.json @@ -7,12 +7,8 @@ "CVE-2019-20801" ], "details": "An issue was discovered in the Readdle Documents app before 6.9.7 for iOS. The application's file-transfer web server allows for cross-origin requests from any domain, and the WebSocket server lacks authorization control. Any web site can execute JavaScript code (that accesses a user's data) via cross-origin requests.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xm4h-5598-382p/GHSA-xm4h-5598-382p.json b/advisories/unreviewed/2022/05/GHSA-xm4h-5598-382p/GHSA-xm4h-5598-382p.json index 46d794cfb20..200c54e2d75 100644 --- a/advisories/unreviewed/2022/05/GHSA-xm4h-5598-382p/GHSA-xm4h-5598-382p.json +++ b/advisories/unreviewed/2022/05/GHSA-xm4h-5598-382p/GHSA-xm4h-5598-382p.json @@ -7,12 +7,8 @@ "CVE-2020-11108" ], "details": "The Gravity updater in Pi-hole through 4.4 allows an authenticated adversary to upload arbitrary files. This can be abused for Remote Code Execution by writing to a PHP file in the web directory. (Also, it can be used in conjunction with the sudo rule for the www-data user to escalate privileges to root.) The code error is in gravity_DownloadBlocklistFromUrl in gravity.sh.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xmgp-m2m3-m8g4/GHSA-xmgp-m2m3-m8g4.json b/advisories/unreviewed/2022/05/GHSA-xmgp-m2m3-m8g4/GHSA-xmgp-m2m3-m8g4.json index eb183c037e8..c42a418ad96 100644 --- a/advisories/unreviewed/2022/05/GHSA-xmgp-m2m3-m8g4/GHSA-xmgp-m2m3-m8g4.json +++ b/advisories/unreviewed/2022/05/GHSA-xmgp-m2m3-m8g4/GHSA-xmgp-m2m3-m8g4.json @@ -7,12 +7,8 @@ "CVE-2020-1188" ], "details": "An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in memory, aka 'Windows State Repository Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1124, CVE-2020-1131, CVE-2020-1134, CVE-2020-1144, CVE-2020-1184, CVE-2020-1185, CVE-2020-1186, CVE-2020-1187, CVE-2020-1189, CVE-2020-1190, CVE-2020-1191.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xq2c-xc9f-44f4/GHSA-xq2c-xc9f-44f4.json b/advisories/unreviewed/2022/05/GHSA-xq2c-xc9f-44f4/GHSA-xq2c-xc9f-44f4.json index 06cab28013a..6498320533f 100644 --- a/advisories/unreviewed/2022/05/GHSA-xq2c-xc9f-44f4/GHSA-xq2c-xc9f-44f4.json +++ b/advisories/unreviewed/2022/05/GHSA-xq2c-xc9f-44f4/GHSA-xq2c-xc9f-44f4.json @@ -7,12 +7,8 @@ "CVE-2020-6254" ], "details": "SAP Enterprise Threat Detection, versions 1.0, 2.0, does not sufficiently encode error response pages in case of errors, allowing XSS payload reflecting in the response, leading to reflected Cross Site Scripting.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xqh7-34g2-j95q/GHSA-xqh7-34g2-j95q.json b/advisories/unreviewed/2022/05/GHSA-xqh7-34g2-j95q/GHSA-xqh7-34g2-j95q.json index aed2fe8f85f..d344b0f7be3 100644 --- a/advisories/unreviewed/2022/05/GHSA-xqh7-34g2-j95q/GHSA-xqh7-34g2-j95q.json +++ b/advisories/unreviewed/2022/05/GHSA-xqh7-34g2-j95q/GHSA-xqh7-34g2-j95q.json @@ -7,12 +7,8 @@ "CVE-2020-8982" ], "details": "In certain situations, all versions of Citrix ShareFile StorageZones (aka storage zones) Controller, including the most recent 5.10.x releases as of May 2020, allow unauthenticated attackers to access the documents and folders of ShareFile users. NOTE: unlike most CVEs, exploitability depends on the product version that was in use when a particular setup step was performed, NOT the product version that is in use during a current assessment of a CVE consumer's product inventory. Specifically, the vulnerability can be exploited if a storage zone was created by one of these product versions: 5.9.0, 5.8.0, 5.7.0, 5.6.0, 5.5.0, or earlier. This CVE differs from CVE-2020-7473 and CVE-2020-8983 but has essentially the same risk.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xqhm-wxf5-mjg6/GHSA-xqhm-wxf5-mjg6.json b/advisories/unreviewed/2022/05/GHSA-xqhm-wxf5-mjg6/GHSA-xqhm-wxf5-mjg6.json index 4feff94bce5..2d5df7efca1 100644 --- a/advisories/unreviewed/2022/05/GHSA-xqhm-wxf5-mjg6/GHSA-xqhm-wxf5-mjg6.json +++ b/advisories/unreviewed/2022/05/GHSA-xqhm-wxf5-mjg6/GHSA-xqhm-wxf5-mjg6.json @@ -7,12 +7,8 @@ "CVE-2020-0096" ], "details": "In startActivities of ActivityStartController.java, there is a possible escalation of privilege due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9Android ID: A-145669109", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xqxr-66xr-xfq3/GHSA-xqxr-66xr-xfq3.json b/advisories/unreviewed/2022/05/GHSA-xqxr-66xr-xfq3/GHSA-xqxr-66xr-xfq3.json index cc41a432a7e..ea4257e8dc9 100644 --- a/advisories/unreviewed/2022/05/GHSA-xqxr-66xr-xfq3/GHSA-xqxr-66xr-xfq3.json +++ b/advisories/unreviewed/2022/05/GHSA-xqxr-66xr-xfq3/GHSA-xqxr-66xr-xfq3.json @@ -7,12 +7,8 @@ "CVE-2020-8155" ], "details": "An outdated 3rd party library in the Files PDF viewer for Nextcloud Server 18.0.2 caused a Cross-site scripting vulnerability when opening a malicious PDF.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xrvh-jj58-rj6p/GHSA-xrvh-jj58-rj6p.json b/advisories/unreviewed/2022/05/GHSA-xrvh-jj58-rj6p/GHSA-xrvh-jj58-rj6p.json index fe83426226d..4c0cf5ac096 100644 --- a/advisories/unreviewed/2022/05/GHSA-xrvh-jj58-rj6p/GHSA-xrvh-jj58-rj6p.json +++ b/advisories/unreviewed/2022/05/GHSA-xrvh-jj58-rj6p/GHSA-xrvh-jj58-rj6p.json @@ -7,12 +7,8 @@ "CVE-2020-1157" ], "details": "An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory, aka 'Windows Runtime Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1077, CVE-2020-1086, CVE-2020-1090, CVE-2020-1125, CVE-2020-1139, CVE-2020-1149, CVE-2020-1151, CVE-2020-1155, CVE-2020-1156, CVE-2020-1158, CVE-2020-1164.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xrvj-pv83-89qp/GHSA-xrvj-pv83-89qp.json b/advisories/unreviewed/2022/05/GHSA-xrvj-pv83-89qp/GHSA-xrvj-pv83-89qp.json index 9c7fc6972d0..eb72fa9ef11 100644 --- a/advisories/unreviewed/2022/05/GHSA-xrvj-pv83-89qp/GHSA-xrvj-pv83-89qp.json +++ b/advisories/unreviewed/2022/05/GHSA-xrvj-pv83-89qp/GHSA-xrvj-pv83-89qp.json @@ -7,12 +7,8 @@ "CVE-2020-0101" ], "details": "In BnCrypto::onTransact of ICrypto.cpp, there is a possible information disclosure due to uninitialized data. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-144767096", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xw6q-jj4q-5cjw/GHSA-xw6q-jj4q-5cjw.json b/advisories/unreviewed/2022/05/GHSA-xw6q-jj4q-5cjw/GHSA-xw6q-jj4q-5cjw.json index c3567aeabcf..6b12ed199d5 100644 --- a/advisories/unreviewed/2022/05/GHSA-xw6q-jj4q-5cjw/GHSA-xw6q-jj4q-5cjw.json +++ b/advisories/unreviewed/2022/05/GHSA-xw6q-jj4q-5cjw/GHSA-xw6q-jj4q-5cjw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xwv4-ppgv-h9j7/GHSA-xwv4-ppgv-h9j7.json b/advisories/unreviewed/2022/05/GHSA-xwv4-ppgv-h9j7/GHSA-xwv4-ppgv-h9j7.json index 005fa89912f..dd53459f22b 100644 --- a/advisories/unreviewed/2022/05/GHSA-xwv4-ppgv-h9j7/GHSA-xwv4-ppgv-h9j7.json +++ b/advisories/unreviewed/2022/05/GHSA-xwv4-ppgv-h9j7/GHSA-xwv4-ppgv-h9j7.json @@ -7,12 +7,8 @@ "CVE-2020-5838" ], "details": "Symantec IT Analytics, prior to 2.9.1, may be susceptible to a cross-site scripting (XSS) exploit, which is a type of issue that can potentially enable attackers to inject client-side scripts into web pages viewed by other users.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xxqg-cq6p-jpqq/GHSA-xxqg-cq6p-jpqq.json b/advisories/unreviewed/2022/05/GHSA-xxqg-cq6p-jpqq/GHSA-xxqg-cq6p-jpqq.json index edd60682ee8..0d2427b2ad5 100644 --- a/advisories/unreviewed/2022/05/GHSA-xxqg-cq6p-jpqq/GHSA-xxqg-cq6p-jpqq.json +++ b/advisories/unreviewed/2022/05/GHSA-xxqg-cq6p-jpqq/GHSA-xxqg-cq6p-jpqq.json @@ -7,12 +7,8 @@ "CVE-2020-8434" ], "details": "Jenzabar JICS (aka Internet Campus Solution) before 9.0.1 Patch 3, 9.1 before 9.1.2 Patch 2, and 9.2 before 9.2.2 Patch 8 has session cookies that are a deterministic function of the username. There is a hard-coded password to supply a PBKDF feeding into AES to encrypt a username and base64 encode it to a client-side cookie for persistent session authentication. By knowing the key and algorithm, an attacker can select any username, encrypt it, base64 encode it, and save it in their browser with the correct JICSLoginCookie cookie format to impersonate any real user in the JICS database without the need for authenticating (or verifying with MFA if implemented).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/11/GHSA-2gp5-q39j-fmr2/GHSA-2gp5-q39j-fmr2.json b/advisories/unreviewed/2022/11/GHSA-2gp5-q39j-fmr2/GHSA-2gp5-q39j-fmr2.json index 617f56d7e8f..2fba7c07a14 100644 --- a/advisories/unreviewed/2022/11/GHSA-2gp5-q39j-fmr2/GHSA-2gp5-q39j-fmr2.json +++ b/advisories/unreviewed/2022/11/GHSA-2gp5-q39j-fmr2/GHSA-2gp5-q39j-fmr2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-3f9m-5fq4-x2wr/GHSA-3f9m-5fq4-x2wr.json b/advisories/unreviewed/2022/11/GHSA-3f9m-5fq4-x2wr/GHSA-3f9m-5fq4-x2wr.json index a0d74a66858..402e6e16919 100644 --- a/advisories/unreviewed/2022/11/GHSA-3f9m-5fq4-x2wr/GHSA-3f9m-5fq4-x2wr.json +++ b/advisories/unreviewed/2022/11/GHSA-3f9m-5fq4-x2wr/GHSA-3f9m-5fq4-x2wr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-3g68-h29c-7326/GHSA-3g68-h29c-7326.json b/advisories/unreviewed/2022/11/GHSA-3g68-h29c-7326/GHSA-3g68-h29c-7326.json index febb12c045a..4df8f8196c3 100644 --- a/advisories/unreviewed/2022/11/GHSA-3g68-h29c-7326/GHSA-3g68-h29c-7326.json +++ b/advisories/unreviewed/2022/11/GHSA-3g68-h29c-7326/GHSA-3g68-h29c-7326.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-476m-cqhq-mc6w/GHSA-476m-cqhq-mc6w.json b/advisories/unreviewed/2022/11/GHSA-476m-cqhq-mc6w/GHSA-476m-cqhq-mc6w.json index 8149d0160c4..1a72c093d78 100644 --- a/advisories/unreviewed/2022/11/GHSA-476m-cqhq-mc6w/GHSA-476m-cqhq-mc6w.json +++ b/advisories/unreviewed/2022/11/GHSA-476m-cqhq-mc6w/GHSA-476m-cqhq-mc6w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-589q-4ff5-q295/GHSA-589q-4ff5-q295.json b/advisories/unreviewed/2022/11/GHSA-589q-4ff5-q295/GHSA-589q-4ff5-q295.json index 9cf918b2852..026077bb8f6 100644 --- a/advisories/unreviewed/2022/11/GHSA-589q-4ff5-q295/GHSA-589q-4ff5-q295.json +++ b/advisories/unreviewed/2022/11/GHSA-589q-4ff5-q295/GHSA-589q-4ff5-q295.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-59w9-v72g-j4rg/GHSA-59w9-v72g-j4rg.json b/advisories/unreviewed/2022/11/GHSA-59w9-v72g-j4rg/GHSA-59w9-v72g-j4rg.json index a6ed5ec15b7..9ed3834ec7e 100644 --- a/advisories/unreviewed/2022/11/GHSA-59w9-v72g-j4rg/GHSA-59w9-v72g-j4rg.json +++ b/advisories/unreviewed/2022/11/GHSA-59w9-v72g-j4rg/GHSA-59w9-v72g-j4rg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-5r42-pgpf-xr9w/GHSA-5r42-pgpf-xr9w.json b/advisories/unreviewed/2022/11/GHSA-5r42-pgpf-xr9w/GHSA-5r42-pgpf-xr9w.json index 43027c681b1..5a54436ac4f 100644 --- a/advisories/unreviewed/2022/11/GHSA-5r42-pgpf-xr9w/GHSA-5r42-pgpf-xr9w.json +++ b/advisories/unreviewed/2022/11/GHSA-5r42-pgpf-xr9w/GHSA-5r42-pgpf-xr9w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-6q84-mpc4-83g2/GHSA-6q84-mpc4-83g2.json b/advisories/unreviewed/2022/11/GHSA-6q84-mpc4-83g2/GHSA-6q84-mpc4-83g2.json index 31921ff1ae6..4f510b5e0da 100644 --- a/advisories/unreviewed/2022/11/GHSA-6q84-mpc4-83g2/GHSA-6q84-mpc4-83g2.json +++ b/advisories/unreviewed/2022/11/GHSA-6q84-mpc4-83g2/GHSA-6q84-mpc4-83g2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-75q5-4hc3-3q65/GHSA-75q5-4hc3-3q65.json b/advisories/unreviewed/2022/11/GHSA-75q5-4hc3-3q65/GHSA-75q5-4hc3-3q65.json index 470f4e38734..e7c2468632a 100644 --- a/advisories/unreviewed/2022/11/GHSA-75q5-4hc3-3q65/GHSA-75q5-4hc3-3q65.json +++ b/advisories/unreviewed/2022/11/GHSA-75q5-4hc3-3q65/GHSA-75q5-4hc3-3q65.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-7hfw-w75q-mqr2/GHSA-7hfw-w75q-mqr2.json b/advisories/unreviewed/2022/11/GHSA-7hfw-w75q-mqr2/GHSA-7hfw-w75q-mqr2.json index dd127cc8e39..4867675401c 100644 --- a/advisories/unreviewed/2022/11/GHSA-7hfw-w75q-mqr2/GHSA-7hfw-w75q-mqr2.json +++ b/advisories/unreviewed/2022/11/GHSA-7hfw-w75q-mqr2/GHSA-7hfw-w75q-mqr2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-7hmx-q6g5-9hwx/GHSA-7hmx-q6g5-9hwx.json b/advisories/unreviewed/2022/11/GHSA-7hmx-q6g5-9hwx/GHSA-7hmx-q6g5-9hwx.json index dbd629631a2..294a9a9f144 100644 --- a/advisories/unreviewed/2022/11/GHSA-7hmx-q6g5-9hwx/GHSA-7hmx-q6g5-9hwx.json +++ b/advisories/unreviewed/2022/11/GHSA-7hmx-q6g5-9hwx/GHSA-7hmx-q6g5-9hwx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-8736-x895-x6jp/GHSA-8736-x895-x6jp.json b/advisories/unreviewed/2022/11/GHSA-8736-x895-x6jp/GHSA-8736-x895-x6jp.json index d20670f0dbe..1214b7425a1 100644 --- a/advisories/unreviewed/2022/11/GHSA-8736-x895-x6jp/GHSA-8736-x895-x6jp.json +++ b/advisories/unreviewed/2022/11/GHSA-8736-x895-x6jp/GHSA-8736-x895-x6jp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-9ff9-jpcp-gg2m/GHSA-9ff9-jpcp-gg2m.json b/advisories/unreviewed/2022/11/GHSA-9ff9-jpcp-gg2m/GHSA-9ff9-jpcp-gg2m.json index 613be1edc51..6d5039bbfae 100644 --- a/advisories/unreviewed/2022/11/GHSA-9ff9-jpcp-gg2m/GHSA-9ff9-jpcp-gg2m.json +++ b/advisories/unreviewed/2022/11/GHSA-9ff9-jpcp-gg2m/GHSA-9ff9-jpcp-gg2m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-cvh5-fmm6-wx9v/GHSA-cvh5-fmm6-wx9v.json b/advisories/unreviewed/2022/11/GHSA-cvh5-fmm6-wx9v/GHSA-cvh5-fmm6-wx9v.json index a2a02d137d0..10252dede32 100644 --- a/advisories/unreviewed/2022/11/GHSA-cvh5-fmm6-wx9v/GHSA-cvh5-fmm6-wx9v.json +++ b/advisories/unreviewed/2022/11/GHSA-cvh5-fmm6-wx9v/GHSA-cvh5-fmm6-wx9v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-f353-2q7w-48fm/GHSA-f353-2q7w-48fm.json b/advisories/unreviewed/2022/11/GHSA-f353-2q7w-48fm/GHSA-f353-2q7w-48fm.json index 386d76b8f67..e9697e2714c 100644 --- a/advisories/unreviewed/2022/11/GHSA-f353-2q7w-48fm/GHSA-f353-2q7w-48fm.json +++ b/advisories/unreviewed/2022/11/GHSA-f353-2q7w-48fm/GHSA-f353-2q7w-48fm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-fp36-pmr8-vj9p/GHSA-fp36-pmr8-vj9p.json b/advisories/unreviewed/2022/11/GHSA-fp36-pmr8-vj9p/GHSA-fp36-pmr8-vj9p.json index fa825c60fa9..85897a2a4ca 100644 --- a/advisories/unreviewed/2022/11/GHSA-fp36-pmr8-vj9p/GHSA-fp36-pmr8-vj9p.json +++ b/advisories/unreviewed/2022/11/GHSA-fp36-pmr8-vj9p/GHSA-fp36-pmr8-vj9p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-hgwc-78jr-63c3/GHSA-hgwc-78jr-63c3.json b/advisories/unreviewed/2022/11/GHSA-hgwc-78jr-63c3/GHSA-hgwc-78jr-63c3.json index 971a144be56..66951fdc1ab 100644 --- a/advisories/unreviewed/2022/11/GHSA-hgwc-78jr-63c3/GHSA-hgwc-78jr-63c3.json +++ b/advisories/unreviewed/2022/11/GHSA-hgwc-78jr-63c3/GHSA-hgwc-78jr-63c3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-j2jg-m77h-283j/GHSA-j2jg-m77h-283j.json b/advisories/unreviewed/2022/11/GHSA-j2jg-m77h-283j/GHSA-j2jg-m77h-283j.json index b5854eb5b81..9346d92eec9 100644 --- a/advisories/unreviewed/2022/11/GHSA-j2jg-m77h-283j/GHSA-j2jg-m77h-283j.json +++ b/advisories/unreviewed/2022/11/GHSA-j2jg-m77h-283j/GHSA-j2jg-m77h-283j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-m7q8-qfg8-w5hc/GHSA-m7q8-qfg8-w5hc.json b/advisories/unreviewed/2022/11/GHSA-m7q8-qfg8-w5hc/GHSA-m7q8-qfg8-w5hc.json index e098a3d5fd4..7b292071341 100644 --- a/advisories/unreviewed/2022/11/GHSA-m7q8-qfg8-w5hc/GHSA-m7q8-qfg8-w5hc.json +++ b/advisories/unreviewed/2022/11/GHSA-m7q8-qfg8-w5hc/GHSA-m7q8-qfg8-w5hc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-p9v5-43w4-jhw3/GHSA-p9v5-43w4-jhw3.json b/advisories/unreviewed/2022/11/GHSA-p9v5-43w4-jhw3/GHSA-p9v5-43w4-jhw3.json index cdced6e5015..69c1c722bd5 100644 --- a/advisories/unreviewed/2022/11/GHSA-p9v5-43w4-jhw3/GHSA-p9v5-43w4-jhw3.json +++ b/advisories/unreviewed/2022/11/GHSA-p9v5-43w4-jhw3/GHSA-p9v5-43w4-jhw3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-qq7j-4r39-whmx/GHSA-qq7j-4r39-whmx.json b/advisories/unreviewed/2022/11/GHSA-qq7j-4r39-whmx/GHSA-qq7j-4r39-whmx.json index 413937f4dc2..bf6cb55ec68 100644 --- a/advisories/unreviewed/2022/11/GHSA-qq7j-4r39-whmx/GHSA-qq7j-4r39-whmx.json +++ b/advisories/unreviewed/2022/11/GHSA-qq7j-4r39-whmx/GHSA-qq7j-4r39-whmx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-qvfg-q6v8-7jx8/GHSA-qvfg-q6v8-7jx8.json b/advisories/unreviewed/2022/11/GHSA-qvfg-q6v8-7jx8/GHSA-qvfg-q6v8-7jx8.json index cad867af7d6..8cfbb109b4b 100644 --- a/advisories/unreviewed/2022/11/GHSA-qvfg-q6v8-7jx8/GHSA-qvfg-q6v8-7jx8.json +++ b/advisories/unreviewed/2022/11/GHSA-qvfg-q6v8-7jx8/GHSA-qvfg-q6v8-7jx8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-rm3p-6j6m-68q8/GHSA-rm3p-6j6m-68q8.json b/advisories/unreviewed/2022/11/GHSA-rm3p-6j6m-68q8/GHSA-rm3p-6j6m-68q8.json index 218829daf30..fa9b21c096e 100644 --- a/advisories/unreviewed/2022/11/GHSA-rm3p-6j6m-68q8/GHSA-rm3p-6j6m-68q8.json +++ b/advisories/unreviewed/2022/11/GHSA-rm3p-6j6m-68q8/GHSA-rm3p-6j6m-68q8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-v7pm-56h6-94x6/GHSA-v7pm-56h6-94x6.json b/advisories/unreviewed/2022/11/GHSA-v7pm-56h6-94x6/GHSA-v7pm-56h6-94x6.json index 7cea9331d98..cd9f4ff98ff 100644 --- a/advisories/unreviewed/2022/11/GHSA-v7pm-56h6-94x6/GHSA-v7pm-56h6-94x6.json +++ b/advisories/unreviewed/2022/11/GHSA-v7pm-56h6-94x6/GHSA-v7pm-56h6-94x6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-wpp2-f4wp-vr8h/GHSA-wpp2-f4wp-vr8h.json b/advisories/unreviewed/2022/11/GHSA-wpp2-f4wp-vr8h/GHSA-wpp2-f4wp-vr8h.json index 2b8eebfd165..94c81456e3a 100644 --- a/advisories/unreviewed/2022/11/GHSA-wpp2-f4wp-vr8h/GHSA-wpp2-f4wp-vr8h.json +++ b/advisories/unreviewed/2022/11/GHSA-wpp2-f4wp-vr8h/GHSA-wpp2-f4wp-vr8h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-xhx8-9r5h-vm7p/GHSA-xhx8-9r5h-vm7p.json b/advisories/unreviewed/2022/11/GHSA-xhx8-9r5h-vm7p/GHSA-xhx8-9r5h-vm7p.json index 16048094c37..38e4e5d2101 100644 --- a/advisories/unreviewed/2022/11/GHSA-xhx8-9r5h-vm7p/GHSA-xhx8-9r5h-vm7p.json +++ b/advisories/unreviewed/2022/11/GHSA-xhx8-9r5h-vm7p/GHSA-xhx8-9r5h-vm7p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-234p-hx4f-3rv4/GHSA-234p-hx4f-3rv4.json b/advisories/unreviewed/2022/12/GHSA-234p-hx4f-3rv4/GHSA-234p-hx4f-3rv4.json index 8af4867fd00..765871edf19 100644 --- a/advisories/unreviewed/2022/12/GHSA-234p-hx4f-3rv4/GHSA-234p-hx4f-3rv4.json +++ b/advisories/unreviewed/2022/12/GHSA-234p-hx4f-3rv4/GHSA-234p-hx4f-3rv4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-29f7-g67q-jv68/GHSA-29f7-g67q-jv68.json b/advisories/unreviewed/2022/12/GHSA-29f7-g67q-jv68/GHSA-29f7-g67q-jv68.json index 1849ef3e0b1..280096b211a 100644 --- a/advisories/unreviewed/2022/12/GHSA-29f7-g67q-jv68/GHSA-29f7-g67q-jv68.json +++ b/advisories/unreviewed/2022/12/GHSA-29f7-g67q-jv68/GHSA-29f7-g67q-jv68.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-2m5x-xrc7-mrxp/GHSA-2m5x-xrc7-mrxp.json b/advisories/unreviewed/2022/12/GHSA-2m5x-xrc7-mrxp/GHSA-2m5x-xrc7-mrxp.json index fe773f0a8e0..3043723a3da 100644 --- a/advisories/unreviewed/2022/12/GHSA-2m5x-xrc7-mrxp/GHSA-2m5x-xrc7-mrxp.json +++ b/advisories/unreviewed/2022/12/GHSA-2m5x-xrc7-mrxp/GHSA-2m5x-xrc7-mrxp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-32pv-q2cq-cp4v/GHSA-32pv-q2cq-cp4v.json b/advisories/unreviewed/2022/12/GHSA-32pv-q2cq-cp4v/GHSA-32pv-q2cq-cp4v.json index d14db790eb1..5dc5421ff58 100644 --- a/advisories/unreviewed/2022/12/GHSA-32pv-q2cq-cp4v/GHSA-32pv-q2cq-cp4v.json +++ b/advisories/unreviewed/2022/12/GHSA-32pv-q2cq-cp4v/GHSA-32pv-q2cq-cp4v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-362p-jc7p-cx87/GHSA-362p-jc7p-cx87.json b/advisories/unreviewed/2022/12/GHSA-362p-jc7p-cx87/GHSA-362p-jc7p-cx87.json index d1223f5c160..e81d1834ff7 100644 --- a/advisories/unreviewed/2022/12/GHSA-362p-jc7p-cx87/GHSA-362p-jc7p-cx87.json +++ b/advisories/unreviewed/2022/12/GHSA-362p-jc7p-cx87/GHSA-362p-jc7p-cx87.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-366w-rp6m-qm5x/GHSA-366w-rp6m-qm5x.json b/advisories/unreviewed/2022/12/GHSA-366w-rp6m-qm5x/GHSA-366w-rp6m-qm5x.json index dfa5c81c1af..36105425a34 100644 --- a/advisories/unreviewed/2022/12/GHSA-366w-rp6m-qm5x/GHSA-366w-rp6m-qm5x.json +++ b/advisories/unreviewed/2022/12/GHSA-366w-rp6m-qm5x/GHSA-366w-rp6m-qm5x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-38gm-wvj3-rc26/GHSA-38gm-wvj3-rc26.json b/advisories/unreviewed/2022/12/GHSA-38gm-wvj3-rc26/GHSA-38gm-wvj3-rc26.json index f5b443e417f..438fc03bfda 100644 --- a/advisories/unreviewed/2022/12/GHSA-38gm-wvj3-rc26/GHSA-38gm-wvj3-rc26.json +++ b/advisories/unreviewed/2022/12/GHSA-38gm-wvj3-rc26/GHSA-38gm-wvj3-rc26.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-3cqm-26w8-85g8/GHSA-3cqm-26w8-85g8.json b/advisories/unreviewed/2022/12/GHSA-3cqm-26w8-85g8/GHSA-3cqm-26w8-85g8.json index c77351f0b16..d3f302cf3e5 100644 --- a/advisories/unreviewed/2022/12/GHSA-3cqm-26w8-85g8/GHSA-3cqm-26w8-85g8.json +++ b/advisories/unreviewed/2022/12/GHSA-3cqm-26w8-85g8/GHSA-3cqm-26w8-85g8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-3f75-4wmv-vpf2/GHSA-3f75-4wmv-vpf2.json b/advisories/unreviewed/2022/12/GHSA-3f75-4wmv-vpf2/GHSA-3f75-4wmv-vpf2.json index be087183c6d..969e03ec158 100644 --- a/advisories/unreviewed/2022/12/GHSA-3f75-4wmv-vpf2/GHSA-3f75-4wmv-vpf2.json +++ b/advisories/unreviewed/2022/12/GHSA-3f75-4wmv-vpf2/GHSA-3f75-4wmv-vpf2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-3j85-6864-55p3/GHSA-3j85-6864-55p3.json b/advisories/unreviewed/2022/12/GHSA-3j85-6864-55p3/GHSA-3j85-6864-55p3.json index e7bdd51100f..769cd6c246b 100644 --- a/advisories/unreviewed/2022/12/GHSA-3j85-6864-55p3/GHSA-3j85-6864-55p3.json +++ b/advisories/unreviewed/2022/12/GHSA-3j85-6864-55p3/GHSA-3j85-6864-55p3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-3m72-27jq-pc52/GHSA-3m72-27jq-pc52.json b/advisories/unreviewed/2022/12/GHSA-3m72-27jq-pc52/GHSA-3m72-27jq-pc52.json index ea19e9e9c84..affb83e884e 100644 --- a/advisories/unreviewed/2022/12/GHSA-3m72-27jq-pc52/GHSA-3m72-27jq-pc52.json +++ b/advisories/unreviewed/2022/12/GHSA-3m72-27jq-pc52/GHSA-3m72-27jq-pc52.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/12/GHSA-3v68-hp3q-c376/GHSA-3v68-hp3q-c376.json b/advisories/unreviewed/2022/12/GHSA-3v68-hp3q-c376/GHSA-3v68-hp3q-c376.json index b316b9e5b00..444dc50d2f1 100644 --- a/advisories/unreviewed/2022/12/GHSA-3v68-hp3q-c376/GHSA-3v68-hp3q-c376.json +++ b/advisories/unreviewed/2022/12/GHSA-3v68-hp3q-c376/GHSA-3v68-hp3q-c376.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-436h-cr23-m9m7/GHSA-436h-cr23-m9m7.json b/advisories/unreviewed/2022/12/GHSA-436h-cr23-m9m7/GHSA-436h-cr23-m9m7.json index 87bd5f08c29..f45aad3a8cf 100644 --- a/advisories/unreviewed/2022/12/GHSA-436h-cr23-m9m7/GHSA-436h-cr23-m9m7.json +++ b/advisories/unreviewed/2022/12/GHSA-436h-cr23-m9m7/GHSA-436h-cr23-m9m7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-43gx-fr8q-99g5/GHSA-43gx-fr8q-99g5.json b/advisories/unreviewed/2022/12/GHSA-43gx-fr8q-99g5/GHSA-43gx-fr8q-99g5.json index 60a472f6081..c9ab5a31f2b 100644 --- a/advisories/unreviewed/2022/12/GHSA-43gx-fr8q-99g5/GHSA-43gx-fr8q-99g5.json +++ b/advisories/unreviewed/2022/12/GHSA-43gx-fr8q-99g5/GHSA-43gx-fr8q-99g5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-4h8f-5jwq-q4wm/GHSA-4h8f-5jwq-q4wm.json b/advisories/unreviewed/2022/12/GHSA-4h8f-5jwq-q4wm/GHSA-4h8f-5jwq-q4wm.json index 15e47d75d80..6c964e9225c 100644 --- a/advisories/unreviewed/2022/12/GHSA-4h8f-5jwq-q4wm/GHSA-4h8f-5jwq-q4wm.json +++ b/advisories/unreviewed/2022/12/GHSA-4h8f-5jwq-q4wm/GHSA-4h8f-5jwq-q4wm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/12/GHSA-532m-cp5f-9hgq/GHSA-532m-cp5f-9hgq.json b/advisories/unreviewed/2022/12/GHSA-532m-cp5f-9hgq/GHSA-532m-cp5f-9hgq.json index 86eaa6040ca..f71632eb657 100644 --- a/advisories/unreviewed/2022/12/GHSA-532m-cp5f-9hgq/GHSA-532m-cp5f-9hgq.json +++ b/advisories/unreviewed/2022/12/GHSA-532m-cp5f-9hgq/GHSA-532m-cp5f-9hgq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-5459-wr9w-wpcp/GHSA-5459-wr9w-wpcp.json b/advisories/unreviewed/2022/12/GHSA-5459-wr9w-wpcp/GHSA-5459-wr9w-wpcp.json index 7ac9d7fd90d..c61f2a43711 100644 --- a/advisories/unreviewed/2022/12/GHSA-5459-wr9w-wpcp/GHSA-5459-wr9w-wpcp.json +++ b/advisories/unreviewed/2022/12/GHSA-5459-wr9w-wpcp/GHSA-5459-wr9w-wpcp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-5949-jwff-8f6q/GHSA-5949-jwff-8f6q.json b/advisories/unreviewed/2022/12/GHSA-5949-jwff-8f6q/GHSA-5949-jwff-8f6q.json index 53f5152c320..a8dad112cd6 100644 --- a/advisories/unreviewed/2022/12/GHSA-5949-jwff-8f6q/GHSA-5949-jwff-8f6q.json +++ b/advisories/unreviewed/2022/12/GHSA-5949-jwff-8f6q/GHSA-5949-jwff-8f6q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-5ffr-q63g-qhpp/GHSA-5ffr-q63g-qhpp.json b/advisories/unreviewed/2022/12/GHSA-5ffr-q63g-qhpp/GHSA-5ffr-q63g-qhpp.json index 9706b28f030..6a5347beb41 100644 --- a/advisories/unreviewed/2022/12/GHSA-5ffr-q63g-qhpp/GHSA-5ffr-q63g-qhpp.json +++ b/advisories/unreviewed/2022/12/GHSA-5ffr-q63g-qhpp/GHSA-5ffr-q63g-qhpp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-5frx-2qvr-6r92/GHSA-5frx-2qvr-6r92.json b/advisories/unreviewed/2022/12/GHSA-5frx-2qvr-6r92/GHSA-5frx-2qvr-6r92.json index 232e3b02dae..a65ddfdf486 100644 --- a/advisories/unreviewed/2022/12/GHSA-5frx-2qvr-6r92/GHSA-5frx-2qvr-6r92.json +++ b/advisories/unreviewed/2022/12/GHSA-5frx-2qvr-6r92/GHSA-5frx-2qvr-6r92.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/12/GHSA-5h2w-44mr-8x27/GHSA-5h2w-44mr-8x27.json b/advisories/unreviewed/2022/12/GHSA-5h2w-44mr-8x27/GHSA-5h2w-44mr-8x27.json index b7e8738647f..08aa7608688 100644 --- a/advisories/unreviewed/2022/12/GHSA-5h2w-44mr-8x27/GHSA-5h2w-44mr-8x27.json +++ b/advisories/unreviewed/2022/12/GHSA-5h2w-44mr-8x27/GHSA-5h2w-44mr-8x27.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-5m26-rxgp-4rm5/GHSA-5m26-rxgp-4rm5.json b/advisories/unreviewed/2022/12/GHSA-5m26-rxgp-4rm5/GHSA-5m26-rxgp-4rm5.json index 4974d6ae1f7..0c4b0b32e05 100644 --- a/advisories/unreviewed/2022/12/GHSA-5m26-rxgp-4rm5/GHSA-5m26-rxgp-4rm5.json +++ b/advisories/unreviewed/2022/12/GHSA-5m26-rxgp-4rm5/GHSA-5m26-rxgp-4rm5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-65mj-gx4w-87vh/GHSA-65mj-gx4w-87vh.json b/advisories/unreviewed/2022/12/GHSA-65mj-gx4w-87vh/GHSA-65mj-gx4w-87vh.json index 8265b0f5573..a5bc06e34d7 100644 --- a/advisories/unreviewed/2022/12/GHSA-65mj-gx4w-87vh/GHSA-65mj-gx4w-87vh.json +++ b/advisories/unreviewed/2022/12/GHSA-65mj-gx4w-87vh/GHSA-65mj-gx4w-87vh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-6p88-w6c7-7m2h/GHSA-6p88-w6c7-7m2h.json b/advisories/unreviewed/2022/12/GHSA-6p88-w6c7-7m2h/GHSA-6p88-w6c7-7m2h.json index b74b46f50da..18d6768bd86 100644 --- a/advisories/unreviewed/2022/12/GHSA-6p88-w6c7-7m2h/GHSA-6p88-w6c7-7m2h.json +++ b/advisories/unreviewed/2022/12/GHSA-6p88-w6c7-7m2h/GHSA-6p88-w6c7-7m2h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-6pf3-q3cx-w87c/GHSA-6pf3-q3cx-w87c.json b/advisories/unreviewed/2022/12/GHSA-6pf3-q3cx-w87c/GHSA-6pf3-q3cx-w87c.json index c7d00ff05d0..0ad5ffd5d80 100644 --- a/advisories/unreviewed/2022/12/GHSA-6pf3-q3cx-w87c/GHSA-6pf3-q3cx-w87c.json +++ b/advisories/unreviewed/2022/12/GHSA-6pf3-q3cx-w87c/GHSA-6pf3-q3cx-w87c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-6r4q-gfjj-jhwr/GHSA-6r4q-gfjj-jhwr.json b/advisories/unreviewed/2022/12/GHSA-6r4q-gfjj-jhwr/GHSA-6r4q-gfjj-jhwr.json index e311cc392eb..a1d62241e2a 100644 --- a/advisories/unreviewed/2022/12/GHSA-6r4q-gfjj-jhwr/GHSA-6r4q-gfjj-jhwr.json +++ b/advisories/unreviewed/2022/12/GHSA-6r4q-gfjj-jhwr/GHSA-6r4q-gfjj-jhwr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-6vhw-xj9w-j95w/GHSA-6vhw-xj9w-j95w.json b/advisories/unreviewed/2022/12/GHSA-6vhw-xj9w-j95w/GHSA-6vhw-xj9w-j95w.json index 8d749155900..27d57e74715 100644 --- a/advisories/unreviewed/2022/12/GHSA-6vhw-xj9w-j95w/GHSA-6vhw-xj9w-j95w.json +++ b/advisories/unreviewed/2022/12/GHSA-6vhw-xj9w-j95w/GHSA-6vhw-xj9w-j95w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-7gq3-x8v2-qv98/GHSA-7gq3-x8v2-qv98.json b/advisories/unreviewed/2022/12/GHSA-7gq3-x8v2-qv98/GHSA-7gq3-x8v2-qv98.json index e86369160e7..9283a27bdc0 100644 --- a/advisories/unreviewed/2022/12/GHSA-7gq3-x8v2-qv98/GHSA-7gq3-x8v2-qv98.json +++ b/advisories/unreviewed/2022/12/GHSA-7gq3-x8v2-qv98/GHSA-7gq3-x8v2-qv98.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-7hx6-3mh5-45rj/GHSA-7hx6-3mh5-45rj.json b/advisories/unreviewed/2022/12/GHSA-7hx6-3mh5-45rj/GHSA-7hx6-3mh5-45rj.json index dc2b6c96302..5d3fe39a552 100644 --- a/advisories/unreviewed/2022/12/GHSA-7hx6-3mh5-45rj/GHSA-7hx6-3mh5-45rj.json +++ b/advisories/unreviewed/2022/12/GHSA-7hx6-3mh5-45rj/GHSA-7hx6-3mh5-45rj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-7m75-8m3p-hxvm/GHSA-7m75-8m3p-hxvm.json b/advisories/unreviewed/2022/12/GHSA-7m75-8m3p-hxvm/GHSA-7m75-8m3p-hxvm.json index 8743fb71c63..100f60f1214 100644 --- a/advisories/unreviewed/2022/12/GHSA-7m75-8m3p-hxvm/GHSA-7m75-8m3p-hxvm.json +++ b/advisories/unreviewed/2022/12/GHSA-7m75-8m3p-hxvm/GHSA-7m75-8m3p-hxvm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-7w3r-g8xj-vrvx/GHSA-7w3r-g8xj-vrvx.json b/advisories/unreviewed/2022/12/GHSA-7w3r-g8xj-vrvx/GHSA-7w3r-g8xj-vrvx.json index edb9b402f44..3a851560418 100644 --- a/advisories/unreviewed/2022/12/GHSA-7w3r-g8xj-vrvx/GHSA-7w3r-g8xj-vrvx.json +++ b/advisories/unreviewed/2022/12/GHSA-7w3r-g8xj-vrvx/GHSA-7w3r-g8xj-vrvx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-7x93-m29h-6j9q/GHSA-7x93-m29h-6j9q.json b/advisories/unreviewed/2022/12/GHSA-7x93-m29h-6j9q/GHSA-7x93-m29h-6j9q.json index 93f61f4aec4..85dae7e7822 100644 --- a/advisories/unreviewed/2022/12/GHSA-7x93-m29h-6j9q/GHSA-7x93-m29h-6j9q.json +++ b/advisories/unreviewed/2022/12/GHSA-7x93-m29h-6j9q/GHSA-7x93-m29h-6j9q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-8474-5px4-qjvg/GHSA-8474-5px4-qjvg.json b/advisories/unreviewed/2022/12/GHSA-8474-5px4-qjvg/GHSA-8474-5px4-qjvg.json index 56a0ab33f09..8278f9d2817 100644 --- a/advisories/unreviewed/2022/12/GHSA-8474-5px4-qjvg/GHSA-8474-5px4-qjvg.json +++ b/advisories/unreviewed/2022/12/GHSA-8474-5px4-qjvg/GHSA-8474-5px4-qjvg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-8f2g-2pcw-qj92/GHSA-8f2g-2pcw-qj92.json b/advisories/unreviewed/2022/12/GHSA-8f2g-2pcw-qj92/GHSA-8f2g-2pcw-qj92.json index 568e9fba7b6..1e783816489 100644 --- a/advisories/unreviewed/2022/12/GHSA-8f2g-2pcw-qj92/GHSA-8f2g-2pcw-qj92.json +++ b/advisories/unreviewed/2022/12/GHSA-8f2g-2pcw-qj92/GHSA-8f2g-2pcw-qj92.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-8mr2-8r3v-fj69/GHSA-8mr2-8r3v-fj69.json b/advisories/unreviewed/2022/12/GHSA-8mr2-8r3v-fj69/GHSA-8mr2-8r3v-fj69.json index efd899aaddc..dc482d67756 100644 --- a/advisories/unreviewed/2022/12/GHSA-8mr2-8r3v-fj69/GHSA-8mr2-8r3v-fj69.json +++ b/advisories/unreviewed/2022/12/GHSA-8mr2-8r3v-fj69/GHSA-8mr2-8r3v-fj69.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/12/GHSA-92hg-r7h2-589f/GHSA-92hg-r7h2-589f.json b/advisories/unreviewed/2022/12/GHSA-92hg-r7h2-589f/GHSA-92hg-r7h2-589f.json index ff5b54eb46f..cd34e66ae74 100644 --- a/advisories/unreviewed/2022/12/GHSA-92hg-r7h2-589f/GHSA-92hg-r7h2-589f.json +++ b/advisories/unreviewed/2022/12/GHSA-92hg-r7h2-589f/GHSA-92hg-r7h2-589f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-9879-5jr5-xwq3/GHSA-9879-5jr5-xwq3.json b/advisories/unreviewed/2022/12/GHSA-9879-5jr5-xwq3/GHSA-9879-5jr5-xwq3.json index 5509eda1a1c..772f1625466 100644 --- a/advisories/unreviewed/2022/12/GHSA-9879-5jr5-xwq3/GHSA-9879-5jr5-xwq3.json +++ b/advisories/unreviewed/2022/12/GHSA-9879-5jr5-xwq3/GHSA-9879-5jr5-xwq3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-9h74-mx6m-3v5r/GHSA-9h74-mx6m-3v5r.json b/advisories/unreviewed/2022/12/GHSA-9h74-mx6m-3v5r/GHSA-9h74-mx6m-3v5r.json index 31207267f31..de4d0a5f520 100644 --- a/advisories/unreviewed/2022/12/GHSA-9h74-mx6m-3v5r/GHSA-9h74-mx6m-3v5r.json +++ b/advisories/unreviewed/2022/12/GHSA-9h74-mx6m-3v5r/GHSA-9h74-mx6m-3v5r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-9p2g-49fh-fv3m/GHSA-9p2g-49fh-fv3m.json b/advisories/unreviewed/2022/12/GHSA-9p2g-49fh-fv3m/GHSA-9p2g-49fh-fv3m.json index ffae881194d..3c9f1bf7ff9 100644 --- a/advisories/unreviewed/2022/12/GHSA-9p2g-49fh-fv3m/GHSA-9p2g-49fh-fv3m.json +++ b/advisories/unreviewed/2022/12/GHSA-9p2g-49fh-fv3m/GHSA-9p2g-49fh-fv3m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-9w3p-jqjp-v5ww/GHSA-9w3p-jqjp-v5ww.json b/advisories/unreviewed/2022/12/GHSA-9w3p-jqjp-v5ww/GHSA-9w3p-jqjp-v5ww.json index 5e3171f3825..3cb07147a26 100644 --- a/advisories/unreviewed/2022/12/GHSA-9w3p-jqjp-v5ww/GHSA-9w3p-jqjp-v5ww.json +++ b/advisories/unreviewed/2022/12/GHSA-9w3p-jqjp-v5ww/GHSA-9w3p-jqjp-v5ww.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-9wxc-wwm3-4wvf/GHSA-9wxc-wwm3-4wvf.json b/advisories/unreviewed/2022/12/GHSA-9wxc-wwm3-4wvf/GHSA-9wxc-wwm3-4wvf.json index 0dc99b1ac35..7f8078ff86d 100644 --- a/advisories/unreviewed/2022/12/GHSA-9wxc-wwm3-4wvf/GHSA-9wxc-wwm3-4wvf.json +++ b/advisories/unreviewed/2022/12/GHSA-9wxc-wwm3-4wvf/GHSA-9wxc-wwm3-4wvf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-c9cm-rvww-38hx/GHSA-c9cm-rvww-38hx.json b/advisories/unreviewed/2022/12/GHSA-c9cm-rvww-38hx/GHSA-c9cm-rvww-38hx.json index fd770311fc5..b51e1f145da 100644 --- a/advisories/unreviewed/2022/12/GHSA-c9cm-rvww-38hx/GHSA-c9cm-rvww-38hx.json +++ b/advisories/unreviewed/2022/12/GHSA-c9cm-rvww-38hx/GHSA-c9cm-rvww-38hx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-cc5j-v6q7-cx9f/GHSA-cc5j-v6q7-cx9f.json b/advisories/unreviewed/2022/12/GHSA-cc5j-v6q7-cx9f/GHSA-cc5j-v6q7-cx9f.json index 7127b60200c..fc7f805bce2 100644 --- a/advisories/unreviewed/2022/12/GHSA-cc5j-v6q7-cx9f/GHSA-cc5j-v6q7-cx9f.json +++ b/advisories/unreviewed/2022/12/GHSA-cc5j-v6q7-cx9f/GHSA-cc5j-v6q7-cx9f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-cgmg-fw4f-9qc5/GHSA-cgmg-fw4f-9qc5.json b/advisories/unreviewed/2022/12/GHSA-cgmg-fw4f-9qc5/GHSA-cgmg-fw4f-9qc5.json index 22d4a3fcc36..71f47a56619 100644 --- a/advisories/unreviewed/2022/12/GHSA-cgmg-fw4f-9qc5/GHSA-cgmg-fw4f-9qc5.json +++ b/advisories/unreviewed/2022/12/GHSA-cgmg-fw4f-9qc5/GHSA-cgmg-fw4f-9qc5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-cpj8-ppjf-3vrf/GHSA-cpj8-ppjf-3vrf.json b/advisories/unreviewed/2022/12/GHSA-cpj8-ppjf-3vrf/GHSA-cpj8-ppjf-3vrf.json index 45ade832859..f11340a0b37 100644 --- a/advisories/unreviewed/2022/12/GHSA-cpj8-ppjf-3vrf/GHSA-cpj8-ppjf-3vrf.json +++ b/advisories/unreviewed/2022/12/GHSA-cpj8-ppjf-3vrf/GHSA-cpj8-ppjf-3vrf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-cvcg-29j6-c4g8/GHSA-cvcg-29j6-c4g8.json b/advisories/unreviewed/2022/12/GHSA-cvcg-29j6-c4g8/GHSA-cvcg-29j6-c4g8.json index 7e35b7d394e..17685f5a16f 100644 --- a/advisories/unreviewed/2022/12/GHSA-cvcg-29j6-c4g8/GHSA-cvcg-29j6-c4g8.json +++ b/advisories/unreviewed/2022/12/GHSA-cvcg-29j6-c4g8/GHSA-cvcg-29j6-c4g8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-cvqq-hjjc-jrc6/GHSA-cvqq-hjjc-jrc6.json b/advisories/unreviewed/2022/12/GHSA-cvqq-hjjc-jrc6/GHSA-cvqq-hjjc-jrc6.json index d939b4e036c..0691bf481ad 100644 --- a/advisories/unreviewed/2022/12/GHSA-cvqq-hjjc-jrc6/GHSA-cvqq-hjjc-jrc6.json +++ b/advisories/unreviewed/2022/12/GHSA-cvqq-hjjc-jrc6/GHSA-cvqq-hjjc-jrc6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/12/GHSA-ffcj-jj5c-qxj6/GHSA-ffcj-jj5c-qxj6.json b/advisories/unreviewed/2022/12/GHSA-ffcj-jj5c-qxj6/GHSA-ffcj-jj5c-qxj6.json index 0ab99437cd4..2aada54a900 100644 --- a/advisories/unreviewed/2022/12/GHSA-ffcj-jj5c-qxj6/GHSA-ffcj-jj5c-qxj6.json +++ b/advisories/unreviewed/2022/12/GHSA-ffcj-jj5c-qxj6/GHSA-ffcj-jj5c-qxj6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-fxqp-h355-f3r4/GHSA-fxqp-h355-f3r4.json b/advisories/unreviewed/2022/12/GHSA-fxqp-h355-f3r4/GHSA-fxqp-h355-f3r4.json index a3b6cd92a18..faec19a13f0 100644 --- a/advisories/unreviewed/2022/12/GHSA-fxqp-h355-f3r4/GHSA-fxqp-h355-f3r4.json +++ b/advisories/unreviewed/2022/12/GHSA-fxqp-h355-f3r4/GHSA-fxqp-h355-f3r4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-g2g2-6grg-2jm4/GHSA-g2g2-6grg-2jm4.json b/advisories/unreviewed/2022/12/GHSA-g2g2-6grg-2jm4/GHSA-g2g2-6grg-2jm4.json index 8fb7229b27c..279ca91a763 100644 --- a/advisories/unreviewed/2022/12/GHSA-g2g2-6grg-2jm4/GHSA-g2g2-6grg-2jm4.json +++ b/advisories/unreviewed/2022/12/GHSA-g2g2-6grg-2jm4/GHSA-g2g2-6grg-2jm4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-g83w-9px8-cmhv/GHSA-g83w-9px8-cmhv.json b/advisories/unreviewed/2022/12/GHSA-g83w-9px8-cmhv/GHSA-g83w-9px8-cmhv.json index ba18b7722fc..5325c7dc6f7 100644 --- a/advisories/unreviewed/2022/12/GHSA-g83w-9px8-cmhv/GHSA-g83w-9px8-cmhv.json +++ b/advisories/unreviewed/2022/12/GHSA-g83w-9px8-cmhv/GHSA-g83w-9px8-cmhv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-ggr5-58mq-975v/GHSA-ggr5-58mq-975v.json b/advisories/unreviewed/2022/12/GHSA-ggr5-58mq-975v/GHSA-ggr5-58mq-975v.json index e29081e00ee..1ec714d11db 100644 --- a/advisories/unreviewed/2022/12/GHSA-ggr5-58mq-975v/GHSA-ggr5-58mq-975v.json +++ b/advisories/unreviewed/2022/12/GHSA-ggr5-58mq-975v/GHSA-ggr5-58mq-975v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-ggw6-9p9v-2x3p/GHSA-ggw6-9p9v-2x3p.json b/advisories/unreviewed/2022/12/GHSA-ggw6-9p9v-2x3p/GHSA-ggw6-9p9v-2x3p.json index dbb38c9988b..d8b7156163e 100644 --- a/advisories/unreviewed/2022/12/GHSA-ggw6-9p9v-2x3p/GHSA-ggw6-9p9v-2x3p.json +++ b/advisories/unreviewed/2022/12/GHSA-ggw6-9p9v-2x3p/GHSA-ggw6-9p9v-2x3p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-gjgw-rx73-rvp5/GHSA-gjgw-rx73-rvp5.json b/advisories/unreviewed/2022/12/GHSA-gjgw-rx73-rvp5/GHSA-gjgw-rx73-rvp5.json index 00383e23bba..27becc58ad1 100644 --- a/advisories/unreviewed/2022/12/GHSA-gjgw-rx73-rvp5/GHSA-gjgw-rx73-rvp5.json +++ b/advisories/unreviewed/2022/12/GHSA-gjgw-rx73-rvp5/GHSA-gjgw-rx73-rvp5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-gwm8-pp4m-5w63/GHSA-gwm8-pp4m-5w63.json b/advisories/unreviewed/2022/12/GHSA-gwm8-pp4m-5w63/GHSA-gwm8-pp4m-5w63.json index e984b6c3327..099497969a0 100644 --- a/advisories/unreviewed/2022/12/GHSA-gwm8-pp4m-5w63/GHSA-gwm8-pp4m-5w63.json +++ b/advisories/unreviewed/2022/12/GHSA-gwm8-pp4m-5w63/GHSA-gwm8-pp4m-5w63.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-h5xc-q687-w54m/GHSA-h5xc-q687-w54m.json b/advisories/unreviewed/2022/12/GHSA-h5xc-q687-w54m/GHSA-h5xc-q687-w54m.json index 96982725468..c0375d9faf9 100644 --- a/advisories/unreviewed/2022/12/GHSA-h5xc-q687-w54m/GHSA-h5xc-q687-w54m.json +++ b/advisories/unreviewed/2022/12/GHSA-h5xc-q687-w54m/GHSA-h5xc-q687-w54m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-h7fc-j8f4-xjj8/GHSA-h7fc-j8f4-xjj8.json b/advisories/unreviewed/2022/12/GHSA-h7fc-j8f4-xjj8/GHSA-h7fc-j8f4-xjj8.json index feb396e8eca..19e8d233306 100644 --- a/advisories/unreviewed/2022/12/GHSA-h7fc-j8f4-xjj8/GHSA-h7fc-j8f4-xjj8.json +++ b/advisories/unreviewed/2022/12/GHSA-h7fc-j8f4-xjj8/GHSA-h7fc-j8f4-xjj8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-h8wm-ccrj-94x5/GHSA-h8wm-ccrj-94x5.json b/advisories/unreviewed/2022/12/GHSA-h8wm-ccrj-94x5/GHSA-h8wm-ccrj-94x5.json index 57eb17a88f7..b0eb7f20b89 100644 --- a/advisories/unreviewed/2022/12/GHSA-h8wm-ccrj-94x5/GHSA-h8wm-ccrj-94x5.json +++ b/advisories/unreviewed/2022/12/GHSA-h8wm-ccrj-94x5/GHSA-h8wm-ccrj-94x5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-h98c-hq83-wq3c/GHSA-h98c-hq83-wq3c.json b/advisories/unreviewed/2022/12/GHSA-h98c-hq83-wq3c/GHSA-h98c-hq83-wq3c.json index 62e50dc009b..a7997fe5b7f 100644 --- a/advisories/unreviewed/2022/12/GHSA-h98c-hq83-wq3c/GHSA-h98c-hq83-wq3c.json +++ b/advisories/unreviewed/2022/12/GHSA-h98c-hq83-wq3c/GHSA-h98c-hq83-wq3c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-hhvv-m62h-5c8j/GHSA-hhvv-m62h-5c8j.json b/advisories/unreviewed/2022/12/GHSA-hhvv-m62h-5c8j/GHSA-hhvv-m62h-5c8j.json index 86a7c443cc8..76a4e1491e3 100644 --- a/advisories/unreviewed/2022/12/GHSA-hhvv-m62h-5c8j/GHSA-hhvv-m62h-5c8j.json +++ b/advisories/unreviewed/2022/12/GHSA-hhvv-m62h-5c8j/GHSA-hhvv-m62h-5c8j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-hjvh-7p9j-42v8/GHSA-hjvh-7p9j-42v8.json b/advisories/unreviewed/2022/12/GHSA-hjvh-7p9j-42v8/GHSA-hjvh-7p9j-42v8.json index d5e37e81b7e..ca74bd73a4a 100644 --- a/advisories/unreviewed/2022/12/GHSA-hjvh-7p9j-42v8/GHSA-hjvh-7p9j-42v8.json +++ b/advisories/unreviewed/2022/12/GHSA-hjvh-7p9j-42v8/GHSA-hjvh-7p9j-42v8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-j268-37pf-rvx9/GHSA-j268-37pf-rvx9.json b/advisories/unreviewed/2022/12/GHSA-j268-37pf-rvx9/GHSA-j268-37pf-rvx9.json index 5c11a535024..02f52aa7ef7 100644 --- a/advisories/unreviewed/2022/12/GHSA-j268-37pf-rvx9/GHSA-j268-37pf-rvx9.json +++ b/advisories/unreviewed/2022/12/GHSA-j268-37pf-rvx9/GHSA-j268-37pf-rvx9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-j9j4-mv7g-fq63/GHSA-j9j4-mv7g-fq63.json b/advisories/unreviewed/2022/12/GHSA-j9j4-mv7g-fq63/GHSA-j9j4-mv7g-fq63.json index 2ee04e4fc6e..766b7c065c1 100644 --- a/advisories/unreviewed/2022/12/GHSA-j9j4-mv7g-fq63/GHSA-j9j4-mv7g-fq63.json +++ b/advisories/unreviewed/2022/12/GHSA-j9j4-mv7g-fq63/GHSA-j9j4-mv7g-fq63.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-jv9j-c3pv-5hqf/GHSA-jv9j-c3pv-5hqf.json b/advisories/unreviewed/2022/12/GHSA-jv9j-c3pv-5hqf/GHSA-jv9j-c3pv-5hqf.json index 4bd529dd1de..097bce53abf 100644 --- a/advisories/unreviewed/2022/12/GHSA-jv9j-c3pv-5hqf/GHSA-jv9j-c3pv-5hqf.json +++ b/advisories/unreviewed/2022/12/GHSA-jv9j-c3pv-5hqf/GHSA-jv9j-c3pv-5hqf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-jx63-7q59-f3fj/GHSA-jx63-7q59-f3fj.json b/advisories/unreviewed/2022/12/GHSA-jx63-7q59-f3fj/GHSA-jx63-7q59-f3fj.json index b04a28a5953..16c39bff76b 100644 --- a/advisories/unreviewed/2022/12/GHSA-jx63-7q59-f3fj/GHSA-jx63-7q59-f3fj.json +++ b/advisories/unreviewed/2022/12/GHSA-jx63-7q59-f3fj/GHSA-jx63-7q59-f3fj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-pgv2-pwvq-76wq/GHSA-pgv2-pwvq-76wq.json b/advisories/unreviewed/2022/12/GHSA-pgv2-pwvq-76wq/GHSA-pgv2-pwvq-76wq.json index 8ed073994b6..e23169e285a 100644 --- a/advisories/unreviewed/2022/12/GHSA-pgv2-pwvq-76wq/GHSA-pgv2-pwvq-76wq.json +++ b/advisories/unreviewed/2022/12/GHSA-pgv2-pwvq-76wq/GHSA-pgv2-pwvq-76wq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-pvr2-2hwp-5vqc/GHSA-pvr2-2hwp-5vqc.json b/advisories/unreviewed/2022/12/GHSA-pvr2-2hwp-5vqc/GHSA-pvr2-2hwp-5vqc.json index b7ed8cd7f98..e805b611568 100644 --- a/advisories/unreviewed/2022/12/GHSA-pvr2-2hwp-5vqc/GHSA-pvr2-2hwp-5vqc.json +++ b/advisories/unreviewed/2022/12/GHSA-pvr2-2hwp-5vqc/GHSA-pvr2-2hwp-5vqc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-r8rq-8q99-cp9f/GHSA-r8rq-8q99-cp9f.json b/advisories/unreviewed/2022/12/GHSA-r8rq-8q99-cp9f/GHSA-r8rq-8q99-cp9f.json index 789842bae5e..858d2865c7e 100644 --- a/advisories/unreviewed/2022/12/GHSA-r8rq-8q99-cp9f/GHSA-r8rq-8q99-cp9f.json +++ b/advisories/unreviewed/2022/12/GHSA-r8rq-8q99-cp9f/GHSA-r8rq-8q99-cp9f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-r9p3-w49v-jhxq/GHSA-r9p3-w49v-jhxq.json b/advisories/unreviewed/2022/12/GHSA-r9p3-w49v-jhxq/GHSA-r9p3-w49v-jhxq.json index 47ce4496ce4..2d68cb07259 100644 --- a/advisories/unreviewed/2022/12/GHSA-r9p3-w49v-jhxq/GHSA-r9p3-w49v-jhxq.json +++ b/advisories/unreviewed/2022/12/GHSA-r9p3-w49v-jhxq/GHSA-r9p3-w49v-jhxq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-v9f2-7gjf-86f5/GHSA-v9f2-7gjf-86f5.json b/advisories/unreviewed/2022/12/GHSA-v9f2-7gjf-86f5/GHSA-v9f2-7gjf-86f5.json index ef1a67b18b9..178aedf3c66 100644 --- a/advisories/unreviewed/2022/12/GHSA-v9f2-7gjf-86f5/GHSA-v9f2-7gjf-86f5.json +++ b/advisories/unreviewed/2022/12/GHSA-v9f2-7gjf-86f5/GHSA-v9f2-7gjf-86f5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-v9p8-rxvf-6pf4/GHSA-v9p8-rxvf-6pf4.json b/advisories/unreviewed/2022/12/GHSA-v9p8-rxvf-6pf4/GHSA-v9p8-rxvf-6pf4.json index 90d282f754c..3fc1ffa4e89 100644 --- a/advisories/unreviewed/2022/12/GHSA-v9p8-rxvf-6pf4/GHSA-v9p8-rxvf-6pf4.json +++ b/advisories/unreviewed/2022/12/GHSA-v9p8-rxvf-6pf4/GHSA-v9p8-rxvf-6pf4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-w657-6g6r-c5p3/GHSA-w657-6g6r-c5p3.json b/advisories/unreviewed/2022/12/GHSA-w657-6g6r-c5p3/GHSA-w657-6g6r-c5p3.json index 86dc7d06ca5..a57d4f61198 100644 --- a/advisories/unreviewed/2022/12/GHSA-w657-6g6r-c5p3/GHSA-w657-6g6r-c5p3.json +++ b/advisories/unreviewed/2022/12/GHSA-w657-6g6r-c5p3/GHSA-w657-6g6r-c5p3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-w774-x8gc-78vf/GHSA-w774-x8gc-78vf.json b/advisories/unreviewed/2022/12/GHSA-w774-x8gc-78vf/GHSA-w774-x8gc-78vf.json index 124e24672d8..31966cd9772 100644 --- a/advisories/unreviewed/2022/12/GHSA-w774-x8gc-78vf/GHSA-w774-x8gc-78vf.json +++ b/advisories/unreviewed/2022/12/GHSA-w774-x8gc-78vf/GHSA-w774-x8gc-78vf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-w9rw-7qmg-8ggc/GHSA-w9rw-7qmg-8ggc.json b/advisories/unreviewed/2022/12/GHSA-w9rw-7qmg-8ggc/GHSA-w9rw-7qmg-8ggc.json index ac2163f77af..b63960406e5 100644 --- a/advisories/unreviewed/2022/12/GHSA-w9rw-7qmg-8ggc/GHSA-w9rw-7qmg-8ggc.json +++ b/advisories/unreviewed/2022/12/GHSA-w9rw-7qmg-8ggc/GHSA-w9rw-7qmg-8ggc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-wcr3-8jhg-v89r/GHSA-wcr3-8jhg-v89r.json b/advisories/unreviewed/2022/12/GHSA-wcr3-8jhg-v89r/GHSA-wcr3-8jhg-v89r.json index cfdd5991435..f2458e17136 100644 --- a/advisories/unreviewed/2022/12/GHSA-wcr3-8jhg-v89r/GHSA-wcr3-8jhg-v89r.json +++ b/advisories/unreviewed/2022/12/GHSA-wcr3-8jhg-v89r/GHSA-wcr3-8jhg-v89r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-wh4p-p8wc-5h67/GHSA-wh4p-p8wc-5h67.json b/advisories/unreviewed/2022/12/GHSA-wh4p-p8wc-5h67/GHSA-wh4p-p8wc-5h67.json index 0105013d282..c52e767e6ae 100644 --- a/advisories/unreviewed/2022/12/GHSA-wh4p-p8wc-5h67/GHSA-wh4p-p8wc-5h67.json +++ b/advisories/unreviewed/2022/12/GHSA-wh4p-p8wc-5h67/GHSA-wh4p-p8wc-5h67.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-wmrj-q5cv-w5wg/GHSA-wmrj-q5cv-w5wg.json b/advisories/unreviewed/2022/12/GHSA-wmrj-q5cv-w5wg/GHSA-wmrj-q5cv-w5wg.json index 96da59a4f5f..1f60b613dfe 100644 --- a/advisories/unreviewed/2022/12/GHSA-wmrj-q5cv-w5wg/GHSA-wmrj-q5cv-w5wg.json +++ b/advisories/unreviewed/2022/12/GHSA-wmrj-q5cv-w5wg/GHSA-wmrj-q5cv-w5wg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-wpwv-wrpr-fm7f/GHSA-wpwv-wrpr-fm7f.json b/advisories/unreviewed/2022/12/GHSA-wpwv-wrpr-fm7f/GHSA-wpwv-wrpr-fm7f.json index aca74f5d834..a7d3d710043 100644 --- a/advisories/unreviewed/2022/12/GHSA-wpwv-wrpr-fm7f/GHSA-wpwv-wrpr-fm7f.json +++ b/advisories/unreviewed/2022/12/GHSA-wpwv-wrpr-fm7f/GHSA-wpwv-wrpr-fm7f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-x2v8-685r-x7hf/GHSA-x2v8-685r-x7hf.json b/advisories/unreviewed/2022/12/GHSA-x2v8-685r-x7hf/GHSA-x2v8-685r-x7hf.json index 40469b49715..4841c04771e 100644 --- a/advisories/unreviewed/2022/12/GHSA-x2v8-685r-x7hf/GHSA-x2v8-685r-x7hf.json +++ b/advisories/unreviewed/2022/12/GHSA-x2v8-685r-x7hf/GHSA-x2v8-685r-x7hf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-x86f-5wf6-vh2v/GHSA-x86f-5wf6-vh2v.json b/advisories/unreviewed/2022/12/GHSA-x86f-5wf6-vh2v/GHSA-x86f-5wf6-vh2v.json index b94cbf2a920..982d0778a5d 100644 --- a/advisories/unreviewed/2022/12/GHSA-x86f-5wf6-vh2v/GHSA-x86f-5wf6-vh2v.json +++ b/advisories/unreviewed/2022/12/GHSA-x86f-5wf6-vh2v/GHSA-x86f-5wf6-vh2v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-2m96-fxj3-h8fg/GHSA-2m96-fxj3-h8fg.json b/advisories/unreviewed/2023/01/GHSA-2m96-fxj3-h8fg/GHSA-2m96-fxj3-h8fg.json index fece2a5c841..16164b95cca 100644 --- a/advisories/unreviewed/2023/01/GHSA-2m96-fxj3-h8fg/GHSA-2m96-fxj3-h8fg.json +++ b/advisories/unreviewed/2023/01/GHSA-2m96-fxj3-h8fg/GHSA-2m96-fxj3-h8fg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-4xm9-j87c-v95w/GHSA-4xm9-j87c-v95w.json b/advisories/unreviewed/2023/01/GHSA-4xm9-j87c-v95w/GHSA-4xm9-j87c-v95w.json index 88218d9d504..786752de467 100644 --- a/advisories/unreviewed/2023/01/GHSA-4xm9-j87c-v95w/GHSA-4xm9-j87c-v95w.json +++ b/advisories/unreviewed/2023/01/GHSA-4xm9-j87c-v95w/GHSA-4xm9-j87c-v95w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-5f68-jm8v-355j/GHSA-5f68-jm8v-355j.json b/advisories/unreviewed/2023/01/GHSA-5f68-jm8v-355j/GHSA-5f68-jm8v-355j.json index 513192db2ab..63fb8e4afdf 100644 --- a/advisories/unreviewed/2023/01/GHSA-5f68-jm8v-355j/GHSA-5f68-jm8v-355j.json +++ b/advisories/unreviewed/2023/01/GHSA-5f68-jm8v-355j/GHSA-5f68-jm8v-355j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-5mpw-67fp-pg56/GHSA-5mpw-67fp-pg56.json b/advisories/unreviewed/2023/01/GHSA-5mpw-67fp-pg56/GHSA-5mpw-67fp-pg56.json index 7d4a4e4a3e2..81c1d92c688 100644 --- a/advisories/unreviewed/2023/01/GHSA-5mpw-67fp-pg56/GHSA-5mpw-67fp-pg56.json +++ b/advisories/unreviewed/2023/01/GHSA-5mpw-67fp-pg56/GHSA-5mpw-67fp-pg56.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-5qj3-2mwp-vp67/GHSA-5qj3-2mwp-vp67.json b/advisories/unreviewed/2023/01/GHSA-5qj3-2mwp-vp67/GHSA-5qj3-2mwp-vp67.json index fd0ba4c1782..041dc5157c9 100644 --- a/advisories/unreviewed/2023/01/GHSA-5qj3-2mwp-vp67/GHSA-5qj3-2mwp-vp67.json +++ b/advisories/unreviewed/2023/01/GHSA-5qj3-2mwp-vp67/GHSA-5qj3-2mwp-vp67.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-5rfm-q8cg-pq99/GHSA-5rfm-q8cg-pq99.json b/advisories/unreviewed/2023/01/GHSA-5rfm-q8cg-pq99/GHSA-5rfm-q8cg-pq99.json index f5bace32021..e7b6113a8d2 100644 --- a/advisories/unreviewed/2023/01/GHSA-5rfm-q8cg-pq99/GHSA-5rfm-q8cg-pq99.json +++ b/advisories/unreviewed/2023/01/GHSA-5rfm-q8cg-pq99/GHSA-5rfm-q8cg-pq99.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-72vc-2hjp-vr3j/GHSA-72vc-2hjp-vr3j.json b/advisories/unreviewed/2023/01/GHSA-72vc-2hjp-vr3j/GHSA-72vc-2hjp-vr3j.json index 9311b71a6cf..17e3a14a585 100644 --- a/advisories/unreviewed/2023/01/GHSA-72vc-2hjp-vr3j/GHSA-72vc-2hjp-vr3j.json +++ b/advisories/unreviewed/2023/01/GHSA-72vc-2hjp-vr3j/GHSA-72vc-2hjp-vr3j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-8mrr-p2f9-9f86/GHSA-8mrr-p2f9-9f86.json b/advisories/unreviewed/2023/01/GHSA-8mrr-p2f9-9f86/GHSA-8mrr-p2f9-9f86.json index 03ebfb607fc..23ca59e4999 100644 --- a/advisories/unreviewed/2023/01/GHSA-8mrr-p2f9-9f86/GHSA-8mrr-p2f9-9f86.json +++ b/advisories/unreviewed/2023/01/GHSA-8mrr-p2f9-9f86/GHSA-8mrr-p2f9-9f86.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-cghw-hvr5-w2m2/GHSA-cghw-hvr5-w2m2.json b/advisories/unreviewed/2023/01/GHSA-cghw-hvr5-w2m2/GHSA-cghw-hvr5-w2m2.json index 22253590683..48047dc07fc 100644 --- a/advisories/unreviewed/2023/01/GHSA-cghw-hvr5-w2m2/GHSA-cghw-hvr5-w2m2.json +++ b/advisories/unreviewed/2023/01/GHSA-cghw-hvr5-w2m2/GHSA-cghw-hvr5-w2m2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-f3r5-v4wr-72qr/GHSA-f3r5-v4wr-72qr.json b/advisories/unreviewed/2023/01/GHSA-f3r5-v4wr-72qr/GHSA-f3r5-v4wr-72qr.json index 4f1c8331a27..f983208f319 100644 --- a/advisories/unreviewed/2023/01/GHSA-f3r5-v4wr-72qr/GHSA-f3r5-v4wr-72qr.json +++ b/advisories/unreviewed/2023/01/GHSA-f3r5-v4wr-72qr/GHSA-f3r5-v4wr-72qr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-fvm6-h6r9-qcr2/GHSA-fvm6-h6r9-qcr2.json b/advisories/unreviewed/2023/01/GHSA-fvm6-h6r9-qcr2/GHSA-fvm6-h6r9-qcr2.json index 5830e848e81..e67df4626ca 100644 --- a/advisories/unreviewed/2023/01/GHSA-fvm6-h6r9-qcr2/GHSA-fvm6-h6r9-qcr2.json +++ b/advisories/unreviewed/2023/01/GHSA-fvm6-h6r9-qcr2/GHSA-fvm6-h6r9-qcr2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-fxmm-jp7q-8qvp/GHSA-fxmm-jp7q-8qvp.json b/advisories/unreviewed/2023/01/GHSA-fxmm-jp7q-8qvp/GHSA-fxmm-jp7q-8qvp.json index 581f275bd22..b0feea7cc51 100644 --- a/advisories/unreviewed/2023/01/GHSA-fxmm-jp7q-8qvp/GHSA-fxmm-jp7q-8qvp.json +++ b/advisories/unreviewed/2023/01/GHSA-fxmm-jp7q-8qvp/GHSA-fxmm-jp7q-8qvp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-h3gc-m3gf-r5pr/GHSA-h3gc-m3gf-r5pr.json b/advisories/unreviewed/2023/01/GHSA-h3gc-m3gf-r5pr/GHSA-h3gc-m3gf-r5pr.json index 17341770ca3..9407112cf66 100644 --- a/advisories/unreviewed/2023/01/GHSA-h3gc-m3gf-r5pr/GHSA-h3gc-m3gf-r5pr.json +++ b/advisories/unreviewed/2023/01/GHSA-h3gc-m3gf-r5pr/GHSA-h3gc-m3gf-r5pr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-j34c-3gp7-29jp/GHSA-j34c-3gp7-29jp.json b/advisories/unreviewed/2023/01/GHSA-j34c-3gp7-29jp/GHSA-j34c-3gp7-29jp.json index f6f63cbf488..6cc678f0088 100644 --- a/advisories/unreviewed/2023/01/GHSA-j34c-3gp7-29jp/GHSA-j34c-3gp7-29jp.json +++ b/advisories/unreviewed/2023/01/GHSA-j34c-3gp7-29jp/GHSA-j34c-3gp7-29jp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-j77g-rccp-fpvv/GHSA-j77g-rccp-fpvv.json b/advisories/unreviewed/2023/01/GHSA-j77g-rccp-fpvv/GHSA-j77g-rccp-fpvv.json index 1362092ee51..8af2457d18a 100644 --- a/advisories/unreviewed/2023/01/GHSA-j77g-rccp-fpvv/GHSA-j77g-rccp-fpvv.json +++ b/advisories/unreviewed/2023/01/GHSA-j77g-rccp-fpvv/GHSA-j77g-rccp-fpvv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-j9p6-6m27-5xwj/GHSA-j9p6-6m27-5xwj.json b/advisories/unreviewed/2023/01/GHSA-j9p6-6m27-5xwj/GHSA-j9p6-6m27-5xwj.json index 3d9ab925847..cbe4ccda324 100644 --- a/advisories/unreviewed/2023/01/GHSA-j9p6-6m27-5xwj/GHSA-j9p6-6m27-5xwj.json +++ b/advisories/unreviewed/2023/01/GHSA-j9p6-6m27-5xwj/GHSA-j9p6-6m27-5xwj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-jc6w-v2gh-gqx3/GHSA-jc6w-v2gh-gqx3.json b/advisories/unreviewed/2023/01/GHSA-jc6w-v2gh-gqx3/GHSA-jc6w-v2gh-gqx3.json index 0dd8d165ec0..2325ed994dc 100644 --- a/advisories/unreviewed/2023/01/GHSA-jc6w-v2gh-gqx3/GHSA-jc6w-v2gh-gqx3.json +++ b/advisories/unreviewed/2023/01/GHSA-jc6w-v2gh-gqx3/GHSA-jc6w-v2gh-gqx3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-m6pp-3qrg-p5x2/GHSA-m6pp-3qrg-p5x2.json b/advisories/unreviewed/2023/01/GHSA-m6pp-3qrg-p5x2/GHSA-m6pp-3qrg-p5x2.json index 089bc2cde83..c65c120e80b 100644 --- a/advisories/unreviewed/2023/01/GHSA-m6pp-3qrg-p5x2/GHSA-m6pp-3qrg-p5x2.json +++ b/advisories/unreviewed/2023/01/GHSA-m6pp-3qrg-p5x2/GHSA-m6pp-3qrg-p5x2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-mxhq-87fx-96v9/GHSA-mxhq-87fx-96v9.json b/advisories/unreviewed/2023/01/GHSA-mxhq-87fx-96v9/GHSA-mxhq-87fx-96v9.json index 9270eb31d7c..62cc19466a6 100644 --- a/advisories/unreviewed/2023/01/GHSA-mxhq-87fx-96v9/GHSA-mxhq-87fx-96v9.json +++ b/advisories/unreviewed/2023/01/GHSA-mxhq-87fx-96v9/GHSA-mxhq-87fx-96v9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-p2w9-mv5p-65w6/GHSA-p2w9-mv5p-65w6.json b/advisories/unreviewed/2023/01/GHSA-p2w9-mv5p-65w6/GHSA-p2w9-mv5p-65w6.json index 7787e3b1eed..984362a4f76 100644 --- a/advisories/unreviewed/2023/01/GHSA-p2w9-mv5p-65w6/GHSA-p2w9-mv5p-65w6.json +++ b/advisories/unreviewed/2023/01/GHSA-p2w9-mv5p-65w6/GHSA-p2w9-mv5p-65w6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-phx8-4x5v-wgc8/GHSA-phx8-4x5v-wgc8.json b/advisories/unreviewed/2023/01/GHSA-phx8-4x5v-wgc8/GHSA-phx8-4x5v-wgc8.json index 61faa6eb8e8..88b3c8fc2b4 100644 --- a/advisories/unreviewed/2023/01/GHSA-phx8-4x5v-wgc8/GHSA-phx8-4x5v-wgc8.json +++ b/advisories/unreviewed/2023/01/GHSA-phx8-4x5v-wgc8/GHSA-phx8-4x5v-wgc8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-q4cw-h889-p6jj/GHSA-q4cw-h889-p6jj.json b/advisories/unreviewed/2023/01/GHSA-q4cw-h889-p6jj/GHSA-q4cw-h889-p6jj.json index 2c19042fb9b..b575eed55de 100644 --- a/advisories/unreviewed/2023/01/GHSA-q4cw-h889-p6jj/GHSA-q4cw-h889-p6jj.json +++ b/advisories/unreviewed/2023/01/GHSA-q4cw-h889-p6jj/GHSA-q4cw-h889-p6jj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-r293-6wjm-x8g7/GHSA-r293-6wjm-x8g7.json b/advisories/unreviewed/2023/01/GHSA-r293-6wjm-x8g7/GHSA-r293-6wjm-x8g7.json index 6247a69dcff..7140e9a6d32 100644 --- a/advisories/unreviewed/2023/01/GHSA-r293-6wjm-x8g7/GHSA-r293-6wjm-x8g7.json +++ b/advisories/unreviewed/2023/01/GHSA-r293-6wjm-x8g7/GHSA-r293-6wjm-x8g7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-v96g-9h62-76pj/GHSA-v96g-9h62-76pj.json b/advisories/unreviewed/2023/01/GHSA-v96g-9h62-76pj/GHSA-v96g-9h62-76pj.json index f1dfb8d7121..2262fc85f8e 100644 --- a/advisories/unreviewed/2023/01/GHSA-v96g-9h62-76pj/GHSA-v96g-9h62-76pj.json +++ b/advisories/unreviewed/2023/01/GHSA-v96g-9h62-76pj/GHSA-v96g-9h62-76pj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-xcgc-gw57-wr9f/GHSA-xcgc-gw57-wr9f.json b/advisories/unreviewed/2023/01/GHSA-xcgc-gw57-wr9f/GHSA-xcgc-gw57-wr9f.json index 4e3040a8e11..b580d2c2c45 100644 --- a/advisories/unreviewed/2023/01/GHSA-xcgc-gw57-wr9f/GHSA-xcgc-gw57-wr9f.json +++ b/advisories/unreviewed/2023/01/GHSA-xcgc-gw57-wr9f/GHSA-xcgc-gw57-wr9f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-27wm-p6hh-jm27/GHSA-27wm-p6hh-jm27.json b/advisories/unreviewed/2023/02/GHSA-27wm-p6hh-jm27/GHSA-27wm-p6hh-jm27.json index 06a660dba51..1c735339112 100644 --- a/advisories/unreviewed/2023/02/GHSA-27wm-p6hh-jm27/GHSA-27wm-p6hh-jm27.json +++ b/advisories/unreviewed/2023/02/GHSA-27wm-p6hh-jm27/GHSA-27wm-p6hh-jm27.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-36v3-rxv6-r759/GHSA-36v3-rxv6-r759.json b/advisories/unreviewed/2023/02/GHSA-36v3-rxv6-r759/GHSA-36v3-rxv6-r759.json index 3c58b3d1195..af6dbfb6d5e 100644 --- a/advisories/unreviewed/2023/02/GHSA-36v3-rxv6-r759/GHSA-36v3-rxv6-r759.json +++ b/advisories/unreviewed/2023/02/GHSA-36v3-rxv6-r759/GHSA-36v3-rxv6-r759.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-3c52-h4x3-2jhm/GHSA-3c52-h4x3-2jhm.json b/advisories/unreviewed/2023/02/GHSA-3c52-h4x3-2jhm/GHSA-3c52-h4x3-2jhm.json index 8d8b07af9fe..ec3c5258e1d 100644 --- a/advisories/unreviewed/2023/02/GHSA-3c52-h4x3-2jhm/GHSA-3c52-h4x3-2jhm.json +++ b/advisories/unreviewed/2023/02/GHSA-3c52-h4x3-2jhm/GHSA-3c52-h4x3-2jhm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-3f3j-x9h2-qcf8/GHSA-3f3j-x9h2-qcf8.json b/advisories/unreviewed/2023/02/GHSA-3f3j-x9h2-qcf8/GHSA-3f3j-x9h2-qcf8.json index 174772de79e..6dda63226e3 100644 --- a/advisories/unreviewed/2023/02/GHSA-3f3j-x9h2-qcf8/GHSA-3f3j-x9h2-qcf8.json +++ b/advisories/unreviewed/2023/02/GHSA-3f3j-x9h2-qcf8/GHSA-3f3j-x9h2-qcf8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-3hqh-h748-xjx8/GHSA-3hqh-h748-xjx8.json b/advisories/unreviewed/2023/02/GHSA-3hqh-h748-xjx8/GHSA-3hqh-h748-xjx8.json index fcf5c30e271..4f02731d9f1 100644 --- a/advisories/unreviewed/2023/02/GHSA-3hqh-h748-xjx8/GHSA-3hqh-h748-xjx8.json +++ b/advisories/unreviewed/2023/02/GHSA-3hqh-h748-xjx8/GHSA-3hqh-h748-xjx8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-4r4v-x4wj-59wx/GHSA-4r4v-x4wj-59wx.json b/advisories/unreviewed/2023/02/GHSA-4r4v-x4wj-59wx/GHSA-4r4v-x4wj-59wx.json index 8563be79e5a..aefe96a1f6b 100644 --- a/advisories/unreviewed/2023/02/GHSA-4r4v-x4wj-59wx/GHSA-4r4v-x4wj-59wx.json +++ b/advisories/unreviewed/2023/02/GHSA-4r4v-x4wj-59wx/GHSA-4r4v-x4wj-59wx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-5gh3-4wwv-vgpw/GHSA-5gh3-4wwv-vgpw.json b/advisories/unreviewed/2023/02/GHSA-5gh3-4wwv-vgpw/GHSA-5gh3-4wwv-vgpw.json index 9ea404a1eba..9b6d7aba5c7 100644 --- a/advisories/unreviewed/2023/02/GHSA-5gh3-4wwv-vgpw/GHSA-5gh3-4wwv-vgpw.json +++ b/advisories/unreviewed/2023/02/GHSA-5gh3-4wwv-vgpw/GHSA-5gh3-4wwv-vgpw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-6xwm-gvm9-8cff/GHSA-6xwm-gvm9-8cff.json b/advisories/unreviewed/2023/02/GHSA-6xwm-gvm9-8cff/GHSA-6xwm-gvm9-8cff.json index 4d044742281..c9aa24dcd41 100644 --- a/advisories/unreviewed/2023/02/GHSA-6xwm-gvm9-8cff/GHSA-6xwm-gvm9-8cff.json +++ b/advisories/unreviewed/2023/02/GHSA-6xwm-gvm9-8cff/GHSA-6xwm-gvm9-8cff.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-7mjw-898c-2hq9/GHSA-7mjw-898c-2hq9.json b/advisories/unreviewed/2023/02/GHSA-7mjw-898c-2hq9/GHSA-7mjw-898c-2hq9.json index 35d6838fe75..e5328697eb5 100644 --- a/advisories/unreviewed/2023/02/GHSA-7mjw-898c-2hq9/GHSA-7mjw-898c-2hq9.json +++ b/advisories/unreviewed/2023/02/GHSA-7mjw-898c-2hq9/GHSA-7mjw-898c-2hq9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/02/GHSA-7mph-v368-wmv3/GHSA-7mph-v368-wmv3.json b/advisories/unreviewed/2023/02/GHSA-7mph-v368-wmv3/GHSA-7mph-v368-wmv3.json index adca62ac8c0..9e18337d238 100644 --- a/advisories/unreviewed/2023/02/GHSA-7mph-v368-wmv3/GHSA-7mph-v368-wmv3.json +++ b/advisories/unreviewed/2023/02/GHSA-7mph-v368-wmv3/GHSA-7mph-v368-wmv3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-7rfw-qh9g-vg98/GHSA-7rfw-qh9g-vg98.json b/advisories/unreviewed/2023/02/GHSA-7rfw-qh9g-vg98/GHSA-7rfw-qh9g-vg98.json index 245b57d1b9d..1f8249bae67 100644 --- a/advisories/unreviewed/2023/02/GHSA-7rfw-qh9g-vg98/GHSA-7rfw-qh9g-vg98.json +++ b/advisories/unreviewed/2023/02/GHSA-7rfw-qh9g-vg98/GHSA-7rfw-qh9g-vg98.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-8mvx-pm2m-j8f7/GHSA-8mvx-pm2m-j8f7.json b/advisories/unreviewed/2023/02/GHSA-8mvx-pm2m-j8f7/GHSA-8mvx-pm2m-j8f7.json index 74af77f5236..0d29b7e4c4a 100644 --- a/advisories/unreviewed/2023/02/GHSA-8mvx-pm2m-j8f7/GHSA-8mvx-pm2m-j8f7.json +++ b/advisories/unreviewed/2023/02/GHSA-8mvx-pm2m-j8f7/GHSA-8mvx-pm2m-j8f7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/02/GHSA-92r6-gw4h-q44j/GHSA-92r6-gw4h-q44j.json b/advisories/unreviewed/2023/02/GHSA-92r6-gw4h-q44j/GHSA-92r6-gw4h-q44j.json index e7e9144cf76..bb8c7eec711 100644 --- a/advisories/unreviewed/2023/02/GHSA-92r6-gw4h-q44j/GHSA-92r6-gw4h-q44j.json +++ b/advisories/unreviewed/2023/02/GHSA-92r6-gw4h-q44j/GHSA-92r6-gw4h-q44j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-cjpc-pmr4-774q/GHSA-cjpc-pmr4-774q.json b/advisories/unreviewed/2023/02/GHSA-cjpc-pmr4-774q/GHSA-cjpc-pmr4-774q.json index dad5f578d49..69953180924 100644 --- a/advisories/unreviewed/2023/02/GHSA-cjpc-pmr4-774q/GHSA-cjpc-pmr4-774q.json +++ b/advisories/unreviewed/2023/02/GHSA-cjpc-pmr4-774q/GHSA-cjpc-pmr4-774q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-cjq2-j283-vj49/GHSA-cjq2-j283-vj49.json b/advisories/unreviewed/2023/02/GHSA-cjq2-j283-vj49/GHSA-cjq2-j283-vj49.json index a837f18ef79..a724d1d2e15 100644 --- a/advisories/unreviewed/2023/02/GHSA-cjq2-j283-vj49/GHSA-cjq2-j283-vj49.json +++ b/advisories/unreviewed/2023/02/GHSA-cjq2-j283-vj49/GHSA-cjq2-j283-vj49.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/02/GHSA-cph3-m93x-vw8v/GHSA-cph3-m93x-vw8v.json b/advisories/unreviewed/2023/02/GHSA-cph3-m93x-vw8v/GHSA-cph3-m93x-vw8v.json index e02446ebff4..996f0862b2b 100644 --- a/advisories/unreviewed/2023/02/GHSA-cph3-m93x-vw8v/GHSA-cph3-m93x-vw8v.json +++ b/advisories/unreviewed/2023/02/GHSA-cph3-m93x-vw8v/GHSA-cph3-m93x-vw8v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-cxwh-9cmm-77cp/GHSA-cxwh-9cmm-77cp.json b/advisories/unreviewed/2023/02/GHSA-cxwh-9cmm-77cp/GHSA-cxwh-9cmm-77cp.json index 5dca4beb1ad..84a79caf015 100644 --- a/advisories/unreviewed/2023/02/GHSA-cxwh-9cmm-77cp/GHSA-cxwh-9cmm-77cp.json +++ b/advisories/unreviewed/2023/02/GHSA-cxwh-9cmm-77cp/GHSA-cxwh-9cmm-77cp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-f6xw-jpr8-c7ph/GHSA-f6xw-jpr8-c7ph.json b/advisories/unreviewed/2023/02/GHSA-f6xw-jpr8-c7ph/GHSA-f6xw-jpr8-c7ph.json index c5869b7e250..7e79ff43643 100644 --- a/advisories/unreviewed/2023/02/GHSA-f6xw-jpr8-c7ph/GHSA-f6xw-jpr8-c7ph.json +++ b/advisories/unreviewed/2023/02/GHSA-f6xw-jpr8-c7ph/GHSA-f6xw-jpr8-c7ph.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-gmxc-973j-62f2/GHSA-gmxc-973j-62f2.json b/advisories/unreviewed/2023/02/GHSA-gmxc-973j-62f2/GHSA-gmxc-973j-62f2.json index 15154c2ca94..a0667c5bdcb 100644 --- a/advisories/unreviewed/2023/02/GHSA-gmxc-973j-62f2/GHSA-gmxc-973j-62f2.json +++ b/advisories/unreviewed/2023/02/GHSA-gmxc-973j-62f2/GHSA-gmxc-973j-62f2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-hjqf-pmj4-5mh7/GHSA-hjqf-pmj4-5mh7.json b/advisories/unreviewed/2023/02/GHSA-hjqf-pmj4-5mh7/GHSA-hjqf-pmj4-5mh7.json index a7849a24768..401f8954981 100644 --- a/advisories/unreviewed/2023/02/GHSA-hjqf-pmj4-5mh7/GHSA-hjqf-pmj4-5mh7.json +++ b/advisories/unreviewed/2023/02/GHSA-hjqf-pmj4-5mh7/GHSA-hjqf-pmj4-5mh7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-j82c-6hc3-3qc4/GHSA-j82c-6hc3-3qc4.json b/advisories/unreviewed/2023/02/GHSA-j82c-6hc3-3qc4/GHSA-j82c-6hc3-3qc4.json index 606d36e36ef..dc59f92e2b9 100644 --- a/advisories/unreviewed/2023/02/GHSA-j82c-6hc3-3qc4/GHSA-j82c-6hc3-3qc4.json +++ b/advisories/unreviewed/2023/02/GHSA-j82c-6hc3-3qc4/GHSA-j82c-6hc3-3qc4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/02/GHSA-jv4h-v7cw-4f5c/GHSA-jv4h-v7cw-4f5c.json b/advisories/unreviewed/2023/02/GHSA-jv4h-v7cw-4f5c/GHSA-jv4h-v7cw-4f5c.json index 58e9ff3a71a..f1c9962c997 100644 --- a/advisories/unreviewed/2023/02/GHSA-jv4h-v7cw-4f5c/GHSA-jv4h-v7cw-4f5c.json +++ b/advisories/unreviewed/2023/02/GHSA-jv4h-v7cw-4f5c/GHSA-jv4h-v7cw-4f5c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/02/GHSA-p3rj-h8c5-jhpv/GHSA-p3rj-h8c5-jhpv.json b/advisories/unreviewed/2023/02/GHSA-p3rj-h8c5-jhpv/GHSA-p3rj-h8c5-jhpv.json index f4ef27c2f16..e59d1f81f04 100644 --- a/advisories/unreviewed/2023/02/GHSA-p3rj-h8c5-jhpv/GHSA-p3rj-h8c5-jhpv.json +++ b/advisories/unreviewed/2023/02/GHSA-p3rj-h8c5-jhpv/GHSA-p3rj-h8c5-jhpv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/02/GHSA-p67h-hgq7-6v2w/GHSA-p67h-hgq7-6v2w.json b/advisories/unreviewed/2023/02/GHSA-p67h-hgq7-6v2w/GHSA-p67h-hgq7-6v2w.json index ea8617c191b..cdf4aa806ae 100644 --- a/advisories/unreviewed/2023/02/GHSA-p67h-hgq7-6v2w/GHSA-p67h-hgq7-6v2w.json +++ b/advisories/unreviewed/2023/02/GHSA-p67h-hgq7-6v2w/GHSA-p67h-hgq7-6v2w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-qg8x-2gcc-v7rf/GHSA-qg8x-2gcc-v7rf.json b/advisories/unreviewed/2023/02/GHSA-qg8x-2gcc-v7rf/GHSA-qg8x-2gcc-v7rf.json index b463b23a3fe..ba473aa1261 100644 --- a/advisories/unreviewed/2023/02/GHSA-qg8x-2gcc-v7rf/GHSA-qg8x-2gcc-v7rf.json +++ b/advisories/unreviewed/2023/02/GHSA-qg8x-2gcc-v7rf/GHSA-qg8x-2gcc-v7rf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-qgw4-v4wc-4ghq/GHSA-qgw4-v4wc-4ghq.json b/advisories/unreviewed/2023/02/GHSA-qgw4-v4wc-4ghq/GHSA-qgw4-v4wc-4ghq.json index 40f48e93dea..df6b5f87b5f 100644 --- a/advisories/unreviewed/2023/02/GHSA-qgw4-v4wc-4ghq/GHSA-qgw4-v4wc-4ghq.json +++ b/advisories/unreviewed/2023/02/GHSA-qgw4-v4wc-4ghq/GHSA-qgw4-v4wc-4ghq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-rgh5-cmxw-p8hg/GHSA-rgh5-cmxw-p8hg.json b/advisories/unreviewed/2023/02/GHSA-rgh5-cmxw-p8hg/GHSA-rgh5-cmxw-p8hg.json index 4108e142526..cfe9ca0ea8f 100644 --- a/advisories/unreviewed/2023/02/GHSA-rgh5-cmxw-p8hg/GHSA-rgh5-cmxw-p8hg.json +++ b/advisories/unreviewed/2023/02/GHSA-rgh5-cmxw-p8hg/GHSA-rgh5-cmxw-p8hg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-v8p7-4m38-955w/GHSA-v8p7-4m38-955w.json b/advisories/unreviewed/2023/02/GHSA-v8p7-4m38-955w/GHSA-v8p7-4m38-955w.json index f4b29436c04..f02dd53b985 100644 --- a/advisories/unreviewed/2023/02/GHSA-v8p7-4m38-955w/GHSA-v8p7-4m38-955w.json +++ b/advisories/unreviewed/2023/02/GHSA-v8p7-4m38-955w/GHSA-v8p7-4m38-955w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-vgvf-4jhr-3w37/GHSA-vgvf-4jhr-3w37.json b/advisories/unreviewed/2023/02/GHSA-vgvf-4jhr-3w37/GHSA-vgvf-4jhr-3w37.json index 1339f9d6d58..8cb9ebee9bf 100644 --- a/advisories/unreviewed/2023/02/GHSA-vgvf-4jhr-3w37/GHSA-vgvf-4jhr-3w37.json +++ b/advisories/unreviewed/2023/02/GHSA-vgvf-4jhr-3w37/GHSA-vgvf-4jhr-3w37.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-vm26-wxgq-mf6w/GHSA-vm26-wxgq-mf6w.json b/advisories/unreviewed/2023/02/GHSA-vm26-wxgq-mf6w/GHSA-vm26-wxgq-mf6w.json index b912f17bb72..cb4d50239c6 100644 --- a/advisories/unreviewed/2023/02/GHSA-vm26-wxgq-mf6w/GHSA-vm26-wxgq-mf6w.json +++ b/advisories/unreviewed/2023/02/GHSA-vm26-wxgq-mf6w/GHSA-vm26-wxgq-mf6w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/02/GHSA-w5rv-9f58-c4f3/GHSA-w5rv-9f58-c4f3.json b/advisories/unreviewed/2023/02/GHSA-w5rv-9f58-c4f3/GHSA-w5rv-9f58-c4f3.json index 70c254ea1c6..4bc85db1b1f 100644 --- a/advisories/unreviewed/2023/02/GHSA-w5rv-9f58-c4f3/GHSA-w5rv-9f58-c4f3.json +++ b/advisories/unreviewed/2023/02/GHSA-w5rv-9f58-c4f3/GHSA-w5rv-9f58-c4f3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-wc59-h2vv-mqjr/GHSA-wc59-h2vv-mqjr.json b/advisories/unreviewed/2023/02/GHSA-wc59-h2vv-mqjr/GHSA-wc59-h2vv-mqjr.json index 0af897fd5c8..9756270ca2f 100644 --- a/advisories/unreviewed/2023/02/GHSA-wc59-h2vv-mqjr/GHSA-wc59-h2vv-mqjr.json +++ b/advisories/unreviewed/2023/02/GHSA-wc59-h2vv-mqjr/GHSA-wc59-h2vv-mqjr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/02/GHSA-wf4c-f488-7hm7/GHSA-wf4c-f488-7hm7.json b/advisories/unreviewed/2023/02/GHSA-wf4c-f488-7hm7/GHSA-wf4c-f488-7hm7.json index 68688551202..b373501432c 100644 --- a/advisories/unreviewed/2023/02/GHSA-wf4c-f488-7hm7/GHSA-wf4c-f488-7hm7.json +++ b/advisories/unreviewed/2023/02/GHSA-wf4c-f488-7hm7/GHSA-wf4c-f488-7hm7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-wrpm-rwcg-5qv2/GHSA-wrpm-rwcg-5qv2.json b/advisories/unreviewed/2023/02/GHSA-wrpm-rwcg-5qv2/GHSA-wrpm-rwcg-5qv2.json index 5b512dbf045..ef42a7e6089 100644 --- a/advisories/unreviewed/2023/02/GHSA-wrpm-rwcg-5qv2/GHSA-wrpm-rwcg-5qv2.json +++ b/advisories/unreviewed/2023/02/GHSA-wrpm-rwcg-5qv2/GHSA-wrpm-rwcg-5qv2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-xh63-f847-m5r7/GHSA-xh63-f847-m5r7.json b/advisories/unreviewed/2023/02/GHSA-xh63-f847-m5r7/GHSA-xh63-f847-m5r7.json index 578b1a12107..ed672fbd3fd 100644 --- a/advisories/unreviewed/2023/02/GHSA-xh63-f847-m5r7/GHSA-xh63-f847-m5r7.json +++ b/advisories/unreviewed/2023/02/GHSA-xh63-f847-m5r7/GHSA-xh63-f847-m5r7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-5xv2-wxv2-g8gj/GHSA-5xv2-wxv2-g8gj.json b/advisories/unreviewed/2023/03/GHSA-5xv2-wxv2-g8gj/GHSA-5xv2-wxv2-g8gj.json index ab4262e76d6..2f5234cb2b5 100644 --- a/advisories/unreviewed/2023/03/GHSA-5xv2-wxv2-g8gj/GHSA-5xv2-wxv2-g8gj.json +++ b/advisories/unreviewed/2023/03/GHSA-5xv2-wxv2-g8gj/GHSA-5xv2-wxv2-g8gj.json @@ -7,12 +7,8 @@ "CVE-2022-26339" ], "details": "This candidate was in a CNA pool that was not assigned to any issues during 2022.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/03/GHSA-66jx-q2p3-498c/GHSA-66jx-q2p3-498c.json b/advisories/unreviewed/2023/03/GHSA-66jx-q2p3-498c/GHSA-66jx-q2p3-498c.json index 94da538ab73..675e1c62eee 100644 --- a/advisories/unreviewed/2023/03/GHSA-66jx-q2p3-498c/GHSA-66jx-q2p3-498c.json +++ b/advisories/unreviewed/2023/03/GHSA-66jx-q2p3-498c/GHSA-66jx-q2p3-498c.json @@ -7,12 +7,8 @@ "CVE-2022-25968" ], "details": "This candidate was in a CNA pool that was not assigned to any issues during 2022.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/03/GHSA-6ff3-hp98-m9fj/GHSA-6ff3-hp98-m9fj.json b/advisories/unreviewed/2023/03/GHSA-6ff3-hp98-m9fj/GHSA-6ff3-hp98-m9fj.json index cd60818de2f..c6951703f99 100644 --- a/advisories/unreviewed/2023/03/GHSA-6ff3-hp98-m9fj/GHSA-6ff3-hp98-m9fj.json +++ b/advisories/unreviewed/2023/03/GHSA-6ff3-hp98-m9fj/GHSA-6ff3-hp98-m9fj.json @@ -7,12 +7,8 @@ "CVE-2022-26123" ], "details": "This candidate was in a CNA pool that was not assigned to any issues during 2022.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/03/GHSA-9cc4-v85v-gfqw/GHSA-9cc4-v85v-gfqw.json b/advisories/unreviewed/2023/03/GHSA-9cc4-v85v-gfqw/GHSA-9cc4-v85v-gfqw.json index 938220fde7f..53a0fcee6b8 100644 --- a/advisories/unreviewed/2023/03/GHSA-9cc4-v85v-gfqw/GHSA-9cc4-v85v-gfqw.json +++ b/advisories/unreviewed/2023/03/GHSA-9cc4-v85v-gfqw/GHSA-9cc4-v85v-gfqw.json @@ -7,12 +7,8 @@ "CVE-2022-26058" ], "details": "This candidate was in a CNA pool that was not assigned to any issues during 2022.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/03/GHSA-9ppx-3j9g-766w/GHSA-9ppx-3j9g-766w.json b/advisories/unreviewed/2023/03/GHSA-9ppx-3j9g-766w/GHSA-9ppx-3j9g-766w.json index bf600c2bb01..4315b22bc81 100644 --- a/advisories/unreviewed/2023/03/GHSA-9ppx-3j9g-766w/GHSA-9ppx-3j9g-766w.json +++ b/advisories/unreviewed/2023/03/GHSA-9ppx-3j9g-766w/GHSA-9ppx-3j9g-766w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-fqhm-5chv-426x/GHSA-fqhm-5chv-426x.json b/advisories/unreviewed/2023/03/GHSA-fqhm-5chv-426x/GHSA-fqhm-5chv-426x.json index fbcfa2911a7..e60c52992bc 100644 --- a/advisories/unreviewed/2023/03/GHSA-fqhm-5chv-426x/GHSA-fqhm-5chv-426x.json +++ b/advisories/unreviewed/2023/03/GHSA-fqhm-5chv-426x/GHSA-fqhm-5chv-426x.json @@ -7,12 +7,8 @@ "CVE-2022-26418" ], "details": "This candidate was in a CNA pool that was not assigned to any issues during 2022.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/03/GHSA-g5hg-3x62-v52f/GHSA-g5hg-3x62-v52f.json b/advisories/unreviewed/2023/03/GHSA-g5hg-3x62-v52f/GHSA-g5hg-3x62-v52f.json index 5e15460957e..57e5d939099 100644 --- a/advisories/unreviewed/2023/03/GHSA-g5hg-3x62-v52f/GHSA-g5hg-3x62-v52f.json +++ b/advisories/unreviewed/2023/03/GHSA-g5hg-3x62-v52f/GHSA-g5hg-3x62-v52f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-g9qh-rq49-9mf3/GHSA-g9qh-rq49-9mf3.json b/advisories/unreviewed/2023/03/GHSA-g9qh-rq49-9mf3/GHSA-g9qh-rq49-9mf3.json index f4cb1259a34..b777b30f3db 100644 --- a/advisories/unreviewed/2023/03/GHSA-g9qh-rq49-9mf3/GHSA-g9qh-rq49-9mf3.json +++ b/advisories/unreviewed/2023/03/GHSA-g9qh-rq49-9mf3/GHSA-g9qh-rq49-9mf3.json @@ -7,12 +7,8 @@ "CVE-2022-26055" ], "details": "This candidate was in a CNA pool that was not assigned to any issues during 2022.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/03/GHSA-hm3v-4f8w-942g/GHSA-hm3v-4f8w-942g.json b/advisories/unreviewed/2023/03/GHSA-hm3v-4f8w-942g/GHSA-hm3v-4f8w-942g.json index 58c6101f6a5..dd87d812e66 100644 --- a/advisories/unreviewed/2023/03/GHSA-hm3v-4f8w-942g/GHSA-hm3v-4f8w-942g.json +++ b/advisories/unreviewed/2023/03/GHSA-hm3v-4f8w-942g/GHSA-hm3v-4f8w-942g.json @@ -7,12 +7,8 @@ "CVE-2022-26053" ], "details": "This candidate was in a CNA pool that was not assigned to any issues during 2022.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/03/GHSA-rhgg-cx4q-jj36/GHSA-rhgg-cx4q-jj36.json b/advisories/unreviewed/2023/03/GHSA-rhgg-cx4q-jj36/GHSA-rhgg-cx4q-jj36.json index f533022eada..404bf39506f 100644 --- a/advisories/unreviewed/2023/03/GHSA-rhgg-cx4q-jj36/GHSA-rhgg-cx4q-jj36.json +++ b/advisories/unreviewed/2023/03/GHSA-rhgg-cx4q-jj36/GHSA-rhgg-cx4q-jj36.json @@ -7,12 +7,8 @@ "CVE-2022-26039" ], "details": "This candidate was in a CNA pool that was not assigned to any issues during 2022.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/03/GHSA-vvj2-hwcp-w2c5/GHSA-vvj2-hwcp-w2c5.json b/advisories/unreviewed/2023/03/GHSA-vvj2-hwcp-w2c5/GHSA-vvj2-hwcp-w2c5.json index 88232ae2ab3..c58ae45ff1b 100644 --- a/advisories/unreviewed/2023/03/GHSA-vvj2-hwcp-w2c5/GHSA-vvj2-hwcp-w2c5.json +++ b/advisories/unreviewed/2023/03/GHSA-vvj2-hwcp-w2c5/GHSA-vvj2-hwcp-w2c5.json @@ -7,12 +7,8 @@ "CVE-2022-26087" ], "details": "This candidate was in a CNA pool that was not assigned to any issues during 2022.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/03/GHSA-w253-3fr6-2346/GHSA-w253-3fr6-2346.json b/advisories/unreviewed/2023/03/GHSA-w253-3fr6-2346/GHSA-w253-3fr6-2346.json index 44199187a44..d74e350e8e7 100644 --- a/advisories/unreviewed/2023/03/GHSA-w253-3fr6-2346/GHSA-w253-3fr6-2346.json +++ b/advisories/unreviewed/2023/03/GHSA-w253-3fr6-2346/GHSA-w253-3fr6-2346.json @@ -7,12 +7,8 @@ "CVE-2022-26347" ], "details": "This candidate was in a CNA pool that was not assigned to any issues during 2022.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/03/GHSA-xxch-2c9x-xp27/GHSA-xxch-2c9x-xp27.json b/advisories/unreviewed/2023/03/GHSA-xxch-2c9x-xp27/GHSA-xxch-2c9x-xp27.json index 6c31e52bdb3..bb86ebe5d1b 100644 --- a/advisories/unreviewed/2023/03/GHSA-xxch-2c9x-xp27/GHSA-xxch-2c9x-xp27.json +++ b/advisories/unreviewed/2023/03/GHSA-xxch-2c9x-xp27/GHSA-xxch-2c9x-xp27.json @@ -7,12 +7,8 @@ "CVE-2022-26416" ], "details": "This candidate was in a CNA pool that was not assigned to any issues during 2022.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/08/GHSA-fchh-435h-cf8h/GHSA-fchh-435h-cf8h.json b/advisories/unreviewed/2023/08/GHSA-fchh-435h-cf8h/GHSA-fchh-435h-cf8h.json index 5d06d9efbbe..4bcc0ef0627 100644 --- a/advisories/unreviewed/2023/08/GHSA-fchh-435h-cf8h/GHSA-fchh-435h-cf8h.json +++ b/advisories/unreviewed/2023/08/GHSA-fchh-435h-cf8h/GHSA-fchh-435h-cf8h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/09/GHSA-4w9h-xcp4-6v33/GHSA-4w9h-xcp4-6v33.json b/advisories/unreviewed/2023/09/GHSA-4w9h-xcp4-6v33/GHSA-4w9h-xcp4-6v33.json index 900c57a5466..dd9f2ee3fa2 100644 --- a/advisories/unreviewed/2023/09/GHSA-4w9h-xcp4-6v33/GHSA-4w9h-xcp4-6v33.json +++ b/advisories/unreviewed/2023/09/GHSA-4w9h-xcp4-6v33/GHSA-4w9h-xcp4-6v33.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-vv27-3h8m-wwqq/GHSA-vv27-3h8m-wwqq.json b/advisories/unreviewed/2024/01/GHSA-vv27-3h8m-wwqq/GHSA-vv27-3h8m-wwqq.json index 958de871b7a..0b578480e15 100644 --- a/advisories/unreviewed/2024/01/GHSA-vv27-3h8m-wwqq/GHSA-vv27-3h8m-wwqq.json +++ b/advisories/unreviewed/2024/01/GHSA-vv27-3h8m-wwqq/GHSA-vv27-3h8m-wwqq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-2pcw-j73g-x4xv/GHSA-2pcw-j73g-x4xv.json b/advisories/unreviewed/2024/05/GHSA-2pcw-j73g-x4xv/GHSA-2pcw-j73g-x4xv.json index 8c102f203d8..723664a4829 100644 --- a/advisories/unreviewed/2024/05/GHSA-2pcw-j73g-x4xv/GHSA-2pcw-j73g-x4xv.json +++ b/advisories/unreviewed/2024/05/GHSA-2pcw-j73g-x4xv/GHSA-2pcw-j73g-x4xv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-3cmg-6cwf-442f/GHSA-3cmg-6cwf-442f.json b/advisories/unreviewed/2024/05/GHSA-3cmg-6cwf-442f/GHSA-3cmg-6cwf-442f.json index 8def2cea841..aa5ffa478d5 100644 --- a/advisories/unreviewed/2024/05/GHSA-3cmg-6cwf-442f/GHSA-3cmg-6cwf-442f.json +++ b/advisories/unreviewed/2024/05/GHSA-3cmg-6cwf-442f/GHSA-3cmg-6cwf-442f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-3jvh-pgp8-6866/GHSA-3jvh-pgp8-6866.json b/advisories/unreviewed/2024/05/GHSA-3jvh-pgp8-6866/GHSA-3jvh-pgp8-6866.json index 91c2ca5cd4f..82cf493d947 100644 --- a/advisories/unreviewed/2024/05/GHSA-3jvh-pgp8-6866/GHSA-3jvh-pgp8-6866.json +++ b/advisories/unreviewed/2024/05/GHSA-3jvh-pgp8-6866/GHSA-3jvh-pgp8-6866.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-3wf3-9vwr-cm6w/GHSA-3wf3-9vwr-cm6w.json b/advisories/unreviewed/2024/05/GHSA-3wf3-9vwr-cm6w/GHSA-3wf3-9vwr-cm6w.json index 7b0bdc3d715..a0a7beadeae 100644 --- a/advisories/unreviewed/2024/05/GHSA-3wf3-9vwr-cm6w/GHSA-3wf3-9vwr-cm6w.json +++ b/advisories/unreviewed/2024/05/GHSA-3wf3-9vwr-cm6w/GHSA-3wf3-9vwr-cm6w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-3wpq-gjx8-r7c8/GHSA-3wpq-gjx8-r7c8.json b/advisories/unreviewed/2024/05/GHSA-3wpq-gjx8-r7c8/GHSA-3wpq-gjx8-r7c8.json index 25a0a166ffa..56653c25b81 100644 --- a/advisories/unreviewed/2024/05/GHSA-3wpq-gjx8-r7c8/GHSA-3wpq-gjx8-r7c8.json +++ b/advisories/unreviewed/2024/05/GHSA-3wpq-gjx8-r7c8/GHSA-3wpq-gjx8-r7c8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-3xj2-xvqh-gvp5/GHSA-3xj2-xvqh-gvp5.json b/advisories/unreviewed/2024/05/GHSA-3xj2-xvqh-gvp5/GHSA-3xj2-xvqh-gvp5.json index 9b4b79025eb..e85d24b8a5d 100644 --- a/advisories/unreviewed/2024/05/GHSA-3xj2-xvqh-gvp5/GHSA-3xj2-xvqh-gvp5.json +++ b/advisories/unreviewed/2024/05/GHSA-3xj2-xvqh-gvp5/GHSA-3xj2-xvqh-gvp5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-425c-w8px-7q9c/GHSA-425c-w8px-7q9c.json b/advisories/unreviewed/2024/05/GHSA-425c-w8px-7q9c/GHSA-425c-w8px-7q9c.json index dc13248cd9a..c68cadcb5c4 100644 --- a/advisories/unreviewed/2024/05/GHSA-425c-w8px-7q9c/GHSA-425c-w8px-7q9c.json +++ b/advisories/unreviewed/2024/05/GHSA-425c-w8px-7q9c/GHSA-425c-w8px-7q9c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-44m2-445p-2rrj/GHSA-44m2-445p-2rrj.json b/advisories/unreviewed/2024/05/GHSA-44m2-445p-2rrj/GHSA-44m2-445p-2rrj.json index daa8bc9b776..9c17a297ce7 100644 --- a/advisories/unreviewed/2024/05/GHSA-44m2-445p-2rrj/GHSA-44m2-445p-2rrj.json +++ b/advisories/unreviewed/2024/05/GHSA-44m2-445p-2rrj/GHSA-44m2-445p-2rrj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-478c-g9v8-v6r2/GHSA-478c-g9v8-v6r2.json b/advisories/unreviewed/2024/05/GHSA-478c-g9v8-v6r2/GHSA-478c-g9v8-v6r2.json index 518d1407e2b..c2e356185bf 100644 --- a/advisories/unreviewed/2024/05/GHSA-478c-g9v8-v6r2/GHSA-478c-g9v8-v6r2.json +++ b/advisories/unreviewed/2024/05/GHSA-478c-g9v8-v6r2/GHSA-478c-g9v8-v6r2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-48cf-pw67-hg9m/GHSA-48cf-pw67-hg9m.json b/advisories/unreviewed/2024/05/GHSA-48cf-pw67-hg9m/GHSA-48cf-pw67-hg9m.json index 0a198390d72..ab6820b61c3 100644 --- a/advisories/unreviewed/2024/05/GHSA-48cf-pw67-hg9m/GHSA-48cf-pw67-hg9m.json +++ b/advisories/unreviewed/2024/05/GHSA-48cf-pw67-hg9m/GHSA-48cf-pw67-hg9m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-48g2-452q-4xqc/GHSA-48g2-452q-4xqc.json b/advisories/unreviewed/2024/05/GHSA-48g2-452q-4xqc/GHSA-48g2-452q-4xqc.json index 6837ecff58e..e19951694ca 100644 --- a/advisories/unreviewed/2024/05/GHSA-48g2-452q-4xqc/GHSA-48g2-452q-4xqc.json +++ b/advisories/unreviewed/2024/05/GHSA-48g2-452q-4xqc/GHSA-48g2-452q-4xqc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-4hg9-hxx4-2h2w/GHSA-4hg9-hxx4-2h2w.json b/advisories/unreviewed/2024/05/GHSA-4hg9-hxx4-2h2w/GHSA-4hg9-hxx4-2h2w.json index 1198676fe93..03f9927590d 100644 --- a/advisories/unreviewed/2024/05/GHSA-4hg9-hxx4-2h2w/GHSA-4hg9-hxx4-2h2w.json +++ b/advisories/unreviewed/2024/05/GHSA-4hg9-hxx4-2h2w/GHSA-4hg9-hxx4-2h2w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-4mwh-2xx5-5vp9/GHSA-4mwh-2xx5-5vp9.json b/advisories/unreviewed/2024/05/GHSA-4mwh-2xx5-5vp9/GHSA-4mwh-2xx5-5vp9.json index b8b71e5a087..5d2258e3866 100644 --- a/advisories/unreviewed/2024/05/GHSA-4mwh-2xx5-5vp9/GHSA-4mwh-2xx5-5vp9.json +++ b/advisories/unreviewed/2024/05/GHSA-4mwh-2xx5-5vp9/GHSA-4mwh-2xx5-5vp9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-54q9-gw6j-4h5c/GHSA-54q9-gw6j-4h5c.json b/advisories/unreviewed/2024/05/GHSA-54q9-gw6j-4h5c/GHSA-54q9-gw6j-4h5c.json index e75e742fd68..6bf6e9ba9a5 100644 --- a/advisories/unreviewed/2024/05/GHSA-54q9-gw6j-4h5c/GHSA-54q9-gw6j-4h5c.json +++ b/advisories/unreviewed/2024/05/GHSA-54q9-gw6j-4h5c/GHSA-54q9-gw6j-4h5c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-5977-vhpg-p3hq/GHSA-5977-vhpg-p3hq.json b/advisories/unreviewed/2024/05/GHSA-5977-vhpg-p3hq/GHSA-5977-vhpg-p3hq.json index 538ee68360b..29e0c21cd02 100644 --- a/advisories/unreviewed/2024/05/GHSA-5977-vhpg-p3hq/GHSA-5977-vhpg-p3hq.json +++ b/advisories/unreviewed/2024/05/GHSA-5977-vhpg-p3hq/GHSA-5977-vhpg-p3hq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-5x5p-62r5-2xx8/GHSA-5x5p-62r5-2xx8.json b/advisories/unreviewed/2024/05/GHSA-5x5p-62r5-2xx8/GHSA-5x5p-62r5-2xx8.json index 3c42a136c96..d3d71ce5af5 100644 --- a/advisories/unreviewed/2024/05/GHSA-5x5p-62r5-2xx8/GHSA-5x5p-62r5-2xx8.json +++ b/advisories/unreviewed/2024/05/GHSA-5x5p-62r5-2xx8/GHSA-5x5p-62r5-2xx8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-6ff3-gqc7-rp56/GHSA-6ff3-gqc7-rp56.json b/advisories/unreviewed/2024/05/GHSA-6ff3-gqc7-rp56/GHSA-6ff3-gqc7-rp56.json index f4e6c82cf61..7cfac199c94 100644 --- a/advisories/unreviewed/2024/05/GHSA-6ff3-gqc7-rp56/GHSA-6ff3-gqc7-rp56.json +++ b/advisories/unreviewed/2024/05/GHSA-6ff3-gqc7-rp56/GHSA-6ff3-gqc7-rp56.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-6r9h-2p8r-jf6r/GHSA-6r9h-2p8r-jf6r.json b/advisories/unreviewed/2024/05/GHSA-6r9h-2p8r-jf6r/GHSA-6r9h-2p8r-jf6r.json index 04c18f0d72e..d59ab66a6b6 100644 --- a/advisories/unreviewed/2024/05/GHSA-6r9h-2p8r-jf6r/GHSA-6r9h-2p8r-jf6r.json +++ b/advisories/unreviewed/2024/05/GHSA-6r9h-2p8r-jf6r/GHSA-6r9h-2p8r-jf6r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-7858-7mgv-mwpj/GHSA-7858-7mgv-mwpj.json b/advisories/unreviewed/2024/05/GHSA-7858-7mgv-mwpj/GHSA-7858-7mgv-mwpj.json index fa5bcad5579..32aa6c1c195 100644 --- a/advisories/unreviewed/2024/05/GHSA-7858-7mgv-mwpj/GHSA-7858-7mgv-mwpj.json +++ b/advisories/unreviewed/2024/05/GHSA-7858-7mgv-mwpj/GHSA-7858-7mgv-mwpj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-7cf9-vp5v-3mxg/GHSA-7cf9-vp5v-3mxg.json b/advisories/unreviewed/2024/05/GHSA-7cf9-vp5v-3mxg/GHSA-7cf9-vp5v-3mxg.json index d20c6d75e41..ea79b38b24e 100644 --- a/advisories/unreviewed/2024/05/GHSA-7cf9-vp5v-3mxg/GHSA-7cf9-vp5v-3mxg.json +++ b/advisories/unreviewed/2024/05/GHSA-7cf9-vp5v-3mxg/GHSA-7cf9-vp5v-3mxg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-7pwx-w32q-3p7r/GHSA-7pwx-w32q-3p7r.json b/advisories/unreviewed/2024/05/GHSA-7pwx-w32q-3p7r/GHSA-7pwx-w32q-3p7r.json index fa251199db1..2808d770ff1 100644 --- a/advisories/unreviewed/2024/05/GHSA-7pwx-w32q-3p7r/GHSA-7pwx-w32q-3p7r.json +++ b/advisories/unreviewed/2024/05/GHSA-7pwx-w32q-3p7r/GHSA-7pwx-w32q-3p7r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-7q49-g67j-hfp2/GHSA-7q49-g67j-hfp2.json b/advisories/unreviewed/2024/05/GHSA-7q49-g67j-hfp2/GHSA-7q49-g67j-hfp2.json index d72985845bb..cd45cf1473b 100644 --- a/advisories/unreviewed/2024/05/GHSA-7q49-g67j-hfp2/GHSA-7q49-g67j-hfp2.json +++ b/advisories/unreviewed/2024/05/GHSA-7q49-g67j-hfp2/GHSA-7q49-g67j-hfp2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-7rmp-9hrq-f45x/GHSA-7rmp-9hrq-f45x.json b/advisories/unreviewed/2024/05/GHSA-7rmp-9hrq-f45x/GHSA-7rmp-9hrq-f45x.json index 97b138215f0..b2c2a58f2a7 100644 --- a/advisories/unreviewed/2024/05/GHSA-7rmp-9hrq-f45x/GHSA-7rmp-9hrq-f45x.json +++ b/advisories/unreviewed/2024/05/GHSA-7rmp-9hrq-f45x/GHSA-7rmp-9hrq-f45x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-7vww-mjq5-vh3j/GHSA-7vww-mjq5-vh3j.json b/advisories/unreviewed/2024/05/GHSA-7vww-mjq5-vh3j/GHSA-7vww-mjq5-vh3j.json index 4803d7e3ff7..e3067673335 100644 --- a/advisories/unreviewed/2024/05/GHSA-7vww-mjq5-vh3j/GHSA-7vww-mjq5-vh3j.json +++ b/advisories/unreviewed/2024/05/GHSA-7vww-mjq5-vh3j/GHSA-7vww-mjq5-vh3j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-8j48-r5wc-gvr3/GHSA-8j48-r5wc-gvr3.json b/advisories/unreviewed/2024/05/GHSA-8j48-r5wc-gvr3/GHSA-8j48-r5wc-gvr3.json index a6adcd0a490..e35f417bc03 100644 --- a/advisories/unreviewed/2024/05/GHSA-8j48-r5wc-gvr3/GHSA-8j48-r5wc-gvr3.json +++ b/advisories/unreviewed/2024/05/GHSA-8j48-r5wc-gvr3/GHSA-8j48-r5wc-gvr3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-928h-v43x-jjq6/GHSA-928h-v43x-jjq6.json b/advisories/unreviewed/2024/05/GHSA-928h-v43x-jjq6/GHSA-928h-v43x-jjq6.json index 5a8679e54ce..a31ecea84b5 100644 --- a/advisories/unreviewed/2024/05/GHSA-928h-v43x-jjq6/GHSA-928h-v43x-jjq6.json +++ b/advisories/unreviewed/2024/05/GHSA-928h-v43x-jjq6/GHSA-928h-v43x-jjq6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-972q-cq35-55qp/GHSA-972q-cq35-55qp.json b/advisories/unreviewed/2024/05/GHSA-972q-cq35-55qp/GHSA-972q-cq35-55qp.json index c700782029e..ea4a181deee 100644 --- a/advisories/unreviewed/2024/05/GHSA-972q-cq35-55qp/GHSA-972q-cq35-55qp.json +++ b/advisories/unreviewed/2024/05/GHSA-972q-cq35-55qp/GHSA-972q-cq35-55qp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-97qf-22x7-5h5h/GHSA-97qf-22x7-5h5h.json b/advisories/unreviewed/2024/05/GHSA-97qf-22x7-5h5h/GHSA-97qf-22x7-5h5h.json index 2c36740f1f9..c6244f16020 100644 --- a/advisories/unreviewed/2024/05/GHSA-97qf-22x7-5h5h/GHSA-97qf-22x7-5h5h.json +++ b/advisories/unreviewed/2024/05/GHSA-97qf-22x7-5h5h/GHSA-97qf-22x7-5h5h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-995f-rv3r-c9mx/GHSA-995f-rv3r-c9mx.json b/advisories/unreviewed/2024/05/GHSA-995f-rv3r-c9mx/GHSA-995f-rv3r-c9mx.json index a8b36d47e81..6b7b18feca6 100644 --- a/advisories/unreviewed/2024/05/GHSA-995f-rv3r-c9mx/GHSA-995f-rv3r-c9mx.json +++ b/advisories/unreviewed/2024/05/GHSA-995f-rv3r-c9mx/GHSA-995f-rv3r-c9mx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-9g97-rgrc-9vhg/GHSA-9g97-rgrc-9vhg.json b/advisories/unreviewed/2024/05/GHSA-9g97-rgrc-9vhg/GHSA-9g97-rgrc-9vhg.json index 72d3c64a448..7b522f2acae 100644 --- a/advisories/unreviewed/2024/05/GHSA-9g97-rgrc-9vhg/GHSA-9g97-rgrc-9vhg.json +++ b/advisories/unreviewed/2024/05/GHSA-9g97-rgrc-9vhg/GHSA-9g97-rgrc-9vhg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-c2m9-m7gx-6446/GHSA-c2m9-m7gx-6446.json b/advisories/unreviewed/2024/05/GHSA-c2m9-m7gx-6446/GHSA-c2m9-m7gx-6446.json index ceb59024ee1..716ae93bfff 100644 --- a/advisories/unreviewed/2024/05/GHSA-c2m9-m7gx-6446/GHSA-c2m9-m7gx-6446.json +++ b/advisories/unreviewed/2024/05/GHSA-c2m9-m7gx-6446/GHSA-c2m9-m7gx-6446.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-c43w-gr2q-7prv/GHSA-c43w-gr2q-7prv.json b/advisories/unreviewed/2024/05/GHSA-c43w-gr2q-7prv/GHSA-c43w-gr2q-7prv.json index b70036c059d..5be5935359a 100644 --- a/advisories/unreviewed/2024/05/GHSA-c43w-gr2q-7prv/GHSA-c43w-gr2q-7prv.json +++ b/advisories/unreviewed/2024/05/GHSA-c43w-gr2q-7prv/GHSA-c43w-gr2q-7prv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-cgvp-vvrf-hjp4/GHSA-cgvp-vvrf-hjp4.json b/advisories/unreviewed/2024/05/GHSA-cgvp-vvrf-hjp4/GHSA-cgvp-vvrf-hjp4.json index 81e055d2e8b..80fc65eba6f 100644 --- a/advisories/unreviewed/2024/05/GHSA-cgvp-vvrf-hjp4/GHSA-cgvp-vvrf-hjp4.json +++ b/advisories/unreviewed/2024/05/GHSA-cgvp-vvrf-hjp4/GHSA-cgvp-vvrf-hjp4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-cjf8-hcqf-6652/GHSA-cjf8-hcqf-6652.json b/advisories/unreviewed/2024/05/GHSA-cjf8-hcqf-6652/GHSA-cjf8-hcqf-6652.json index fdaaf3142c9..4a007f6b205 100644 --- a/advisories/unreviewed/2024/05/GHSA-cjf8-hcqf-6652/GHSA-cjf8-hcqf-6652.json +++ b/advisories/unreviewed/2024/05/GHSA-cjf8-hcqf-6652/GHSA-cjf8-hcqf-6652.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-f3wf-gw24-9r2q/GHSA-f3wf-gw24-9r2q.json b/advisories/unreviewed/2024/05/GHSA-f3wf-gw24-9r2q/GHSA-f3wf-gw24-9r2q.json index 569bfd1d86b..334a5e20261 100644 --- a/advisories/unreviewed/2024/05/GHSA-f3wf-gw24-9r2q/GHSA-f3wf-gw24-9r2q.json +++ b/advisories/unreviewed/2024/05/GHSA-f3wf-gw24-9r2q/GHSA-f3wf-gw24-9r2q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-f9qv-x24h-c8g8/GHSA-f9qv-x24h-c8g8.json b/advisories/unreviewed/2024/05/GHSA-f9qv-x24h-c8g8/GHSA-f9qv-x24h-c8g8.json index 6894d68f37f..3551abdaaf7 100644 --- a/advisories/unreviewed/2024/05/GHSA-f9qv-x24h-c8g8/GHSA-f9qv-x24h-c8g8.json +++ b/advisories/unreviewed/2024/05/GHSA-f9qv-x24h-c8g8/GHSA-f9qv-x24h-c8g8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-fq6v-fprc-9m9q/GHSA-fq6v-fprc-9m9q.json b/advisories/unreviewed/2024/05/GHSA-fq6v-fprc-9m9q/GHSA-fq6v-fprc-9m9q.json index e2adacd4cbe..a765850a414 100644 --- a/advisories/unreviewed/2024/05/GHSA-fq6v-fprc-9m9q/GHSA-fq6v-fprc-9m9q.json +++ b/advisories/unreviewed/2024/05/GHSA-fq6v-fprc-9m9q/GHSA-fq6v-fprc-9m9q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-g8jf-2c26-3mph/GHSA-g8jf-2c26-3mph.json b/advisories/unreviewed/2024/05/GHSA-g8jf-2c26-3mph/GHSA-g8jf-2c26-3mph.json index a4d220131b2..a5283ce84c4 100644 --- a/advisories/unreviewed/2024/05/GHSA-g8jf-2c26-3mph/GHSA-g8jf-2c26-3mph.json +++ b/advisories/unreviewed/2024/05/GHSA-g8jf-2c26-3mph/GHSA-g8jf-2c26-3mph.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-gwj2-vqgr-4qxf/GHSA-gwj2-vqgr-4qxf.json b/advisories/unreviewed/2024/05/GHSA-gwj2-vqgr-4qxf/GHSA-gwj2-vqgr-4qxf.json index d0c2f5e4a7b..1d7734a6f3f 100644 --- a/advisories/unreviewed/2024/05/GHSA-gwj2-vqgr-4qxf/GHSA-gwj2-vqgr-4qxf.json +++ b/advisories/unreviewed/2024/05/GHSA-gwj2-vqgr-4qxf/GHSA-gwj2-vqgr-4qxf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-h7mw-v93q-r9c3/GHSA-h7mw-v93q-r9c3.json b/advisories/unreviewed/2024/05/GHSA-h7mw-v93q-r9c3/GHSA-h7mw-v93q-r9c3.json index 10016e02188..2c43ce50684 100644 --- a/advisories/unreviewed/2024/05/GHSA-h7mw-v93q-r9c3/GHSA-h7mw-v93q-r9c3.json +++ b/advisories/unreviewed/2024/05/GHSA-h7mw-v93q-r9c3/GHSA-h7mw-v93q-r9c3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-hc9q-4g3h-9577/GHSA-hc9q-4g3h-9577.json b/advisories/unreviewed/2024/05/GHSA-hc9q-4g3h-9577/GHSA-hc9q-4g3h-9577.json index bb25396beb4..ab9fbce2d21 100644 --- a/advisories/unreviewed/2024/05/GHSA-hc9q-4g3h-9577/GHSA-hc9q-4g3h-9577.json +++ b/advisories/unreviewed/2024/05/GHSA-hc9q-4g3h-9577/GHSA-hc9q-4g3h-9577.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-hj6w-5v7m-rj3p/GHSA-hj6w-5v7m-rj3p.json b/advisories/unreviewed/2024/05/GHSA-hj6w-5v7m-rj3p/GHSA-hj6w-5v7m-rj3p.json index 5633c8a7caf..5e596c8c847 100644 --- a/advisories/unreviewed/2024/05/GHSA-hj6w-5v7m-rj3p/GHSA-hj6w-5v7m-rj3p.json +++ b/advisories/unreviewed/2024/05/GHSA-hj6w-5v7m-rj3p/GHSA-hj6w-5v7m-rj3p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-hmcp-9hcm-m3q7/GHSA-hmcp-9hcm-m3q7.json b/advisories/unreviewed/2024/05/GHSA-hmcp-9hcm-m3q7/GHSA-hmcp-9hcm-m3q7.json index 840b0928c12..be12b023c9a 100644 --- a/advisories/unreviewed/2024/05/GHSA-hmcp-9hcm-m3q7/GHSA-hmcp-9hcm-m3q7.json +++ b/advisories/unreviewed/2024/05/GHSA-hmcp-9hcm-m3q7/GHSA-hmcp-9hcm-m3q7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-hvrj-9f39-j96h/GHSA-hvrj-9f39-j96h.json b/advisories/unreviewed/2024/05/GHSA-hvrj-9f39-j96h/GHSA-hvrj-9f39-j96h.json index 0cd673b4fb6..23af145372d 100644 --- a/advisories/unreviewed/2024/05/GHSA-hvrj-9f39-j96h/GHSA-hvrj-9f39-j96h.json +++ b/advisories/unreviewed/2024/05/GHSA-hvrj-9f39-j96h/GHSA-hvrj-9f39-j96h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-hw37-xg77-53hx/GHSA-hw37-xg77-53hx.json b/advisories/unreviewed/2024/05/GHSA-hw37-xg77-53hx/GHSA-hw37-xg77-53hx.json index c96ed0754d5..2cfdee396e4 100644 --- a/advisories/unreviewed/2024/05/GHSA-hw37-xg77-53hx/GHSA-hw37-xg77-53hx.json +++ b/advisories/unreviewed/2024/05/GHSA-hw37-xg77-53hx/GHSA-hw37-xg77-53hx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-hw84-c76j-h87p/GHSA-hw84-c76j-h87p.json b/advisories/unreviewed/2024/05/GHSA-hw84-c76j-h87p/GHSA-hw84-c76j-h87p.json index 2b395ed9fa0..681791b7965 100644 --- a/advisories/unreviewed/2024/05/GHSA-hw84-c76j-h87p/GHSA-hw84-c76j-h87p.json +++ b/advisories/unreviewed/2024/05/GHSA-hw84-c76j-h87p/GHSA-hw84-c76j-h87p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-j226-hwhh-899j/GHSA-j226-hwhh-899j.json b/advisories/unreviewed/2024/05/GHSA-j226-hwhh-899j/GHSA-j226-hwhh-899j.json index bde0d17d6af..b6881cf0066 100644 --- a/advisories/unreviewed/2024/05/GHSA-j226-hwhh-899j/GHSA-j226-hwhh-899j.json +++ b/advisories/unreviewed/2024/05/GHSA-j226-hwhh-899j/GHSA-j226-hwhh-899j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-j495-9vj6-gx3w/GHSA-j495-9vj6-gx3w.json b/advisories/unreviewed/2024/05/GHSA-j495-9vj6-gx3w/GHSA-j495-9vj6-gx3w.json index 78627b02d1c..6d3e690d282 100644 --- a/advisories/unreviewed/2024/05/GHSA-j495-9vj6-gx3w/GHSA-j495-9vj6-gx3w.json +++ b/advisories/unreviewed/2024/05/GHSA-j495-9vj6-gx3w/GHSA-j495-9vj6-gx3w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -47,9 +45,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-jph2-jcqw-q5qf/GHSA-jph2-jcqw-q5qf.json b/advisories/unreviewed/2024/05/GHSA-jph2-jcqw-q5qf/GHSA-jph2-jcqw-q5qf.json index e001122cfbd..db5955ce933 100644 --- a/advisories/unreviewed/2024/05/GHSA-jph2-jcqw-q5qf/GHSA-jph2-jcqw-q5qf.json +++ b/advisories/unreviewed/2024/05/GHSA-jph2-jcqw-q5qf/GHSA-jph2-jcqw-q5qf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-jvcm-pc6m-g646/GHSA-jvcm-pc6m-g646.json b/advisories/unreviewed/2024/05/GHSA-jvcm-pc6m-g646/GHSA-jvcm-pc6m-g646.json index 686833dd7b7..6134c102ef2 100644 --- a/advisories/unreviewed/2024/05/GHSA-jvcm-pc6m-g646/GHSA-jvcm-pc6m-g646.json +++ b/advisories/unreviewed/2024/05/GHSA-jvcm-pc6m-g646/GHSA-jvcm-pc6m-g646.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-mc92-hrx8-xcrm/GHSA-mc92-hrx8-xcrm.json b/advisories/unreviewed/2024/05/GHSA-mc92-hrx8-xcrm/GHSA-mc92-hrx8-xcrm.json index 9a8757f135f..2412c3c8a2c 100644 --- a/advisories/unreviewed/2024/05/GHSA-mc92-hrx8-xcrm/GHSA-mc92-hrx8-xcrm.json +++ b/advisories/unreviewed/2024/05/GHSA-mc92-hrx8-xcrm/GHSA-mc92-hrx8-xcrm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:L/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-mhcv-2f7w-4c7r/GHSA-mhcv-2f7w-4c7r.json b/advisories/unreviewed/2024/05/GHSA-mhcv-2f7w-4c7r/GHSA-mhcv-2f7w-4c7r.json index d5d46b7bdb7..bf06fd185fd 100644 --- a/advisories/unreviewed/2024/05/GHSA-mhcv-2f7w-4c7r/GHSA-mhcv-2f7w-4c7r.json +++ b/advisories/unreviewed/2024/05/GHSA-mhcv-2f7w-4c7r/GHSA-mhcv-2f7w-4c7r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-p7q5-4hfm-m8fh/GHSA-p7q5-4hfm-m8fh.json b/advisories/unreviewed/2024/05/GHSA-p7q5-4hfm-m8fh/GHSA-p7q5-4hfm-m8fh.json index 3be5b6e26f0..81697de6351 100644 --- a/advisories/unreviewed/2024/05/GHSA-p7q5-4hfm-m8fh/GHSA-p7q5-4hfm-m8fh.json +++ b/advisories/unreviewed/2024/05/GHSA-p7q5-4hfm-m8fh/GHSA-p7q5-4hfm-m8fh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-p7wr-w92h-qvhj/GHSA-p7wr-w92h-qvhj.json b/advisories/unreviewed/2024/05/GHSA-p7wr-w92h-qvhj/GHSA-p7wr-w92h-qvhj.json index 0e5dd2e6b60..2b8b0994bc7 100644 --- a/advisories/unreviewed/2024/05/GHSA-p7wr-w92h-qvhj/GHSA-p7wr-w92h-qvhj.json +++ b/advisories/unreviewed/2024/05/GHSA-p7wr-w92h-qvhj/GHSA-p7wr-w92h-qvhj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-q2r8-99fj-x7qv/GHSA-q2r8-99fj-x7qv.json b/advisories/unreviewed/2024/05/GHSA-q2r8-99fj-x7qv/GHSA-q2r8-99fj-x7qv.json index 828f45ee0e9..cdc15de2305 100644 --- a/advisories/unreviewed/2024/05/GHSA-q2r8-99fj-x7qv/GHSA-q2r8-99fj-x7qv.json +++ b/advisories/unreviewed/2024/05/GHSA-q2r8-99fj-x7qv/GHSA-q2r8-99fj-x7qv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-qc29-c5fh-cmcf/GHSA-qc29-c5fh-cmcf.json b/advisories/unreviewed/2024/05/GHSA-qc29-c5fh-cmcf/GHSA-qc29-c5fh-cmcf.json index b070cbb4928..c320250c834 100644 --- a/advisories/unreviewed/2024/05/GHSA-qc29-c5fh-cmcf/GHSA-qc29-c5fh-cmcf.json +++ b/advisories/unreviewed/2024/05/GHSA-qc29-c5fh-cmcf/GHSA-qc29-c5fh-cmcf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-qf48-wmxr-h59x/GHSA-qf48-wmxr-h59x.json b/advisories/unreviewed/2024/05/GHSA-qf48-wmxr-h59x/GHSA-qf48-wmxr-h59x.json index 84e2c810f43..e62fbf72618 100644 --- a/advisories/unreviewed/2024/05/GHSA-qf48-wmxr-h59x/GHSA-qf48-wmxr-h59x.json +++ b/advisories/unreviewed/2024/05/GHSA-qf48-wmxr-h59x/GHSA-qf48-wmxr-h59x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-qp39-c68g-7r9p/GHSA-qp39-c68g-7r9p.json b/advisories/unreviewed/2024/05/GHSA-qp39-c68g-7r9p/GHSA-qp39-c68g-7r9p.json index bdea4756025..af1bebcd331 100644 --- a/advisories/unreviewed/2024/05/GHSA-qp39-c68g-7r9p/GHSA-qp39-c68g-7r9p.json +++ b/advisories/unreviewed/2024/05/GHSA-qp39-c68g-7r9p/GHSA-qp39-c68g-7r9p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-qxgc-qp86-4mg6/GHSA-qxgc-qp86-4mg6.json b/advisories/unreviewed/2024/05/GHSA-qxgc-qp86-4mg6/GHSA-qxgc-qp86-4mg6.json index 768514cc58d..961b8a17ab3 100644 --- a/advisories/unreviewed/2024/05/GHSA-qxgc-qp86-4mg6/GHSA-qxgc-qp86-4mg6.json +++ b/advisories/unreviewed/2024/05/GHSA-qxgc-qp86-4mg6/GHSA-qxgc-qp86-4mg6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-qxwm-c26v-rvwg/GHSA-qxwm-c26v-rvwg.json b/advisories/unreviewed/2024/05/GHSA-qxwm-c26v-rvwg/GHSA-qxwm-c26v-rvwg.json index 04796d03570..c90dfe20695 100644 --- a/advisories/unreviewed/2024/05/GHSA-qxwm-c26v-rvwg/GHSA-qxwm-c26v-rvwg.json +++ b/advisories/unreviewed/2024/05/GHSA-qxwm-c26v-rvwg/GHSA-qxwm-c26v-rvwg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-r67f-7g4f-5cfq/GHSA-r67f-7g4f-5cfq.json b/advisories/unreviewed/2024/05/GHSA-r67f-7g4f-5cfq/GHSA-r67f-7g4f-5cfq.json index a58c1d5b54b..9ecc33fa8c3 100644 --- a/advisories/unreviewed/2024/05/GHSA-r67f-7g4f-5cfq/GHSA-r67f-7g4f-5cfq.json +++ b/advisories/unreviewed/2024/05/GHSA-r67f-7g4f-5cfq/GHSA-r67f-7g4f-5cfq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-rg8v-554v-gv5q/GHSA-rg8v-554v-gv5q.json b/advisories/unreviewed/2024/05/GHSA-rg8v-554v-gv5q/GHSA-rg8v-554v-gv5q.json index 88b393ae70f..13625b6bd8e 100644 --- a/advisories/unreviewed/2024/05/GHSA-rg8v-554v-gv5q/GHSA-rg8v-554v-gv5q.json +++ b/advisories/unreviewed/2024/05/GHSA-rg8v-554v-gv5q/GHSA-rg8v-554v-gv5q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-rj65-h7q6-63qc/GHSA-rj65-h7q6-63qc.json b/advisories/unreviewed/2024/05/GHSA-rj65-h7q6-63qc/GHSA-rj65-h7q6-63qc.json index 21561367f33..092c30ed4ea 100644 --- a/advisories/unreviewed/2024/05/GHSA-rj65-h7q6-63qc/GHSA-rj65-h7q6-63qc.json +++ b/advisories/unreviewed/2024/05/GHSA-rj65-h7q6-63qc/GHSA-rj65-h7q6-63qc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-rx2j-whx7-3jv5/GHSA-rx2j-whx7-3jv5.json b/advisories/unreviewed/2024/05/GHSA-rx2j-whx7-3jv5/GHSA-rx2j-whx7-3jv5.json index 70b5173d9fd..6d78e2ef2bc 100644 --- a/advisories/unreviewed/2024/05/GHSA-rx2j-whx7-3jv5/GHSA-rx2j-whx7-3jv5.json +++ b/advisories/unreviewed/2024/05/GHSA-rx2j-whx7-3jv5/GHSA-rx2j-whx7-3jv5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-v435-c8wm-qmjm/GHSA-v435-c8wm-qmjm.json b/advisories/unreviewed/2024/05/GHSA-v435-c8wm-qmjm/GHSA-v435-c8wm-qmjm.json index ef956250d3c..b2276e88c63 100644 --- a/advisories/unreviewed/2024/05/GHSA-v435-c8wm-qmjm/GHSA-v435-c8wm-qmjm.json +++ b/advisories/unreviewed/2024/05/GHSA-v435-c8wm-qmjm/GHSA-v435-c8wm-qmjm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-vpj2-mh86-xpmv/GHSA-vpj2-mh86-xpmv.json b/advisories/unreviewed/2024/05/GHSA-vpj2-mh86-xpmv/GHSA-vpj2-mh86-xpmv.json index 2f95b4e6d12..7073e353854 100644 --- a/advisories/unreviewed/2024/05/GHSA-vpj2-mh86-xpmv/GHSA-vpj2-mh86-xpmv.json +++ b/advisories/unreviewed/2024/05/GHSA-vpj2-mh86-xpmv/GHSA-vpj2-mh86-xpmv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-vx8m-7cr4-h238/GHSA-vx8m-7cr4-h238.json b/advisories/unreviewed/2024/05/GHSA-vx8m-7cr4-h238/GHSA-vx8m-7cr4-h238.json index eb9f5fddcf6..d9decd40aea 100644 --- a/advisories/unreviewed/2024/05/GHSA-vx8m-7cr4-h238/GHSA-vx8m-7cr4-h238.json +++ b/advisories/unreviewed/2024/05/GHSA-vx8m-7cr4-h238/GHSA-vx8m-7cr4-h238.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-w6fg-m995-mg4j/GHSA-w6fg-m995-mg4j.json b/advisories/unreviewed/2024/05/GHSA-w6fg-m995-mg4j/GHSA-w6fg-m995-mg4j.json index 83afefc9a3c..4f278ba8014 100644 --- a/advisories/unreviewed/2024/05/GHSA-w6fg-m995-mg4j/GHSA-w6fg-m995-mg4j.json +++ b/advisories/unreviewed/2024/05/GHSA-w6fg-m995-mg4j/GHSA-w6fg-m995-mg4j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-wjww-p2cv-rw2v/GHSA-wjww-p2cv-rw2v.json b/advisories/unreviewed/2024/05/GHSA-wjww-p2cv-rw2v/GHSA-wjww-p2cv-rw2v.json index 3e20eb7845a..cc7b834b1b3 100644 --- a/advisories/unreviewed/2024/05/GHSA-wjww-p2cv-rw2v/GHSA-wjww-p2cv-rw2v.json +++ b/advisories/unreviewed/2024/05/GHSA-wjww-p2cv-rw2v/GHSA-wjww-p2cv-rw2v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-wpvh-7c2r-23rh/GHSA-wpvh-7c2r-23rh.json b/advisories/unreviewed/2024/05/GHSA-wpvh-7c2r-23rh/GHSA-wpvh-7c2r-23rh.json index fac3840e10c..8cf5dc47bb3 100644 --- a/advisories/unreviewed/2024/05/GHSA-wpvh-7c2r-23rh/GHSA-wpvh-7c2r-23rh.json +++ b/advisories/unreviewed/2024/05/GHSA-wpvh-7c2r-23rh/GHSA-wpvh-7c2r-23rh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-x348-5vv2-6fqv/GHSA-x348-5vv2-6fqv.json b/advisories/unreviewed/2024/05/GHSA-x348-5vv2-6fqv/GHSA-x348-5vv2-6fqv.json index 4a3e571017f..5cd8b5918e9 100644 --- a/advisories/unreviewed/2024/05/GHSA-x348-5vv2-6fqv/GHSA-x348-5vv2-6fqv.json +++ b/advisories/unreviewed/2024/05/GHSA-x348-5vv2-6fqv/GHSA-x348-5vv2-6fqv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-x4jq-jv8m-hfq5/GHSA-x4jq-jv8m-hfq5.json b/advisories/unreviewed/2024/05/GHSA-x4jq-jv8m-hfq5/GHSA-x4jq-jv8m-hfq5.json index c290b163d21..a27fa068c1c 100644 --- a/advisories/unreviewed/2024/05/GHSA-x4jq-jv8m-hfq5/GHSA-x4jq-jv8m-hfq5.json +++ b/advisories/unreviewed/2024/05/GHSA-x4jq-jv8m-hfq5/GHSA-x4jq-jv8m-hfq5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-x7f5-8755-9m9j/GHSA-x7f5-8755-9m9j.json b/advisories/unreviewed/2024/05/GHSA-x7f5-8755-9m9j/GHSA-x7f5-8755-9m9j.json index 5cfcf68bab7..fe0a63f746d 100644 --- a/advisories/unreviewed/2024/05/GHSA-x7f5-8755-9m9j/GHSA-x7f5-8755-9m9j.json +++ b/advisories/unreviewed/2024/05/GHSA-x7f5-8755-9m9j/GHSA-x7f5-8755-9m9j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-xgph-64jm-fq69/GHSA-xgph-64jm-fq69.json b/advisories/unreviewed/2024/05/GHSA-xgph-64jm-fq69/GHSA-xgph-64jm-fq69.json index e94e8c347aa..37ae897c46b 100644 --- a/advisories/unreviewed/2024/05/GHSA-xgph-64jm-fq69/GHSA-xgph-64jm-fq69.json +++ b/advisories/unreviewed/2024/05/GHSA-xgph-64jm-fq69/GHSA-xgph-64jm-fq69.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY",