From 6ea52e3e7c71ad6e95d7798fb1fac6cf6856bb16 Mon Sep 17 00:00:00 2001
From: "advisory-database[bot]"
<45398580+advisory-database[bot]@users.noreply.github.com>
Date: Mon, 2 Dec 2024 05:09:49 +0000
Subject: [PATCH] Advisory Database Sync
---
.../09/GHSA-2563-83p7-f34p/GHSA-2563-83p7-f34p.json | 4 +---
.../09/GHSA-277p-xwpp-3jf7/GHSA-277p-xwpp-3jf7.json | 4 +---
.../09/GHSA-2h3x-95c6-885r/GHSA-2h3x-95c6-885r.json | 4 +---
.../09/GHSA-2hqf-qqmq-pgpp/GHSA-2hqf-qqmq-pgpp.json | 4 +---
.../09/GHSA-2p99-6f47-8x9j/GHSA-2p99-6f47-8x9j.json | 4 +---
.../09/GHSA-2r8f-2665-3gxq/GHSA-2r8f-2665-3gxq.json | 4 +---
.../09/GHSA-2vqq-jgxx-fxjc/GHSA-2vqq-jgxx-fxjc.json | 4 +---
.../09/GHSA-2xw5-3767-qxvm/GHSA-2xw5-3767-qxvm.json | 4 +---
.../09/GHSA-3qh4-r86r-grvm/GHSA-3qh4-r86r-grvm.json | 4 +---
.../09/GHSA-43vf-2x6g-p2m5/GHSA-43vf-2x6g-p2m5.json | 4 +---
.../09/GHSA-44vf-8ffm-v2qh/GHSA-44vf-8ffm-v2qh.json | 12 +++---------
.../09/GHSA-4627-w373-375v/GHSA-4627-w373-375v.json | 12 +++---------
.../09/GHSA-4964-cjrr-jg97/GHSA-4964-cjrr-jg97.json | 4 +---
.../09/GHSA-4hjg-w3ww-38c6/GHSA-4hjg-w3ww-38c6.json | 4 +---
.../09/GHSA-4jfq-q299-g4cr/GHSA-4jfq-q299-g4cr.json | 4 +---
.../09/GHSA-4pmg-jgm5-3jg6/GHSA-4pmg-jgm5-3jg6.json | 4 +---
.../09/GHSA-4q8f-5xxj-946r/GHSA-4q8f-5xxj-946r.json | 8 ++------
.../09/GHSA-4wcx-c9c4-89p2/GHSA-4wcx-c9c4-89p2.json | 4 +---
.../09/GHSA-4x6x-782q-jfc4/GHSA-4x6x-782q-jfc4.json | 8 ++------
.../09/GHSA-4xgp-xrg3-c73w/GHSA-4xgp-xrg3-c73w.json | 4 +---
.../09/GHSA-559q-92vx-xvjp/GHSA-559q-92vx-xvjp.json | 4 +---
.../09/GHSA-5635-9mvj-r6hp/GHSA-5635-9mvj-r6hp.json | 4 +---
.../09/GHSA-59x8-7wx6-4hj9/GHSA-59x8-7wx6-4hj9.json | 4 +---
.../09/GHSA-5fm9-jmv7-fcx5/GHSA-5fm9-jmv7-fcx5.json | 4 +---
.../09/GHSA-5x8q-gj67-rhf2/GHSA-5x8q-gj67-rhf2.json | 4 +---
.../09/GHSA-65j7-66p7-9xgf/GHSA-65j7-66p7-9xgf.json | 4 +---
.../09/GHSA-6c37-2rw5-9j7x/GHSA-6c37-2rw5-9j7x.json | 4 +---
.../09/GHSA-6qc7-jgq7-34rf/GHSA-6qc7-jgq7-34rf.json | 4 +---
.../09/GHSA-724c-6vrf-99rq/GHSA-724c-6vrf-99rq.json | 8 ++------
.../09/GHSA-73hr-6785-f5p8/GHSA-73hr-6785-f5p8.json | 4 +---
.../09/GHSA-73v8-v6g4-vrpm/GHSA-73v8-v6g4-vrpm.json | 12 +++---------
.../09/GHSA-7543-mr7h-6v86/GHSA-7543-mr7h-6v86.json | 8 ++------
.../09/GHSA-76xq-58hj-vwm2/GHSA-76xq-58hj-vwm2.json | 4 +---
.../09/GHSA-788m-pj96-7w2c/GHSA-788m-pj96-7w2c.json | 8 ++------
.../09/GHSA-7p6w-x2gr-rrf8/GHSA-7p6w-x2gr-rrf8.json | 8 ++------
.../09/GHSA-855m-jchh-9qjc/GHSA-855m-jchh-9qjc.json | 4 +---
.../09/GHSA-86gv-xpwv-jprc/GHSA-86gv-xpwv-jprc.json | 4 +---
.../09/GHSA-87qw-7v97-w34r/GHSA-87qw-7v97-w34r.json | 4 +---
.../09/GHSA-8hq2-fcqm-39hq/GHSA-8hq2-fcqm-39hq.json | 4 +---
.../09/GHSA-8j7x-pr59-m5h8/GHSA-8j7x-pr59-m5h8.json | 4 +---
.../09/GHSA-8mgg-5x65-m4m4/GHSA-8mgg-5x65-m4m4.json | 8 ++------
.../09/GHSA-8mm3-2mcj-cx6r/GHSA-8mm3-2mcj-cx6r.json | 4 +---
.../09/GHSA-8mmf-qp7j-2w24/GHSA-8mmf-qp7j-2w24.json | 4 +---
.../09/GHSA-8qx4-r7fx-xc4v/GHSA-8qx4-r7fx-xc4v.json | 4 +---
.../09/GHSA-8vj3-jgcf-77jv/GHSA-8vj3-jgcf-77jv.json | 4 +---
.../09/GHSA-8wgc-jjvv-cv6v/GHSA-8wgc-jjvv-cv6v.json | 8 ++------
.../09/GHSA-9mjp-gv34-3jcf/GHSA-9mjp-gv34-3jcf.json | 4 +---
.../09/GHSA-9mmw-3fmh-96g3/GHSA-9mmw-3fmh-96g3.json | 4 +---
.../09/GHSA-9p64-h5q4-phpm/GHSA-9p64-h5q4-phpm.json | 8 ++------
.../09/GHSA-9pr3-7449-977r/GHSA-9pr3-7449-977r.json | 8 ++------
.../09/GHSA-9q9m-m2f6-jr5q/GHSA-9q9m-m2f6-jr5q.json | 4 +---
.../09/GHSA-9rwj-8mh9-4876/GHSA-9rwj-8mh9-4876.json | 4 +---
.../09/GHSA-9w87-4j72-gcv7/GHSA-9w87-4j72-gcv7.json | 12 +++---------
.../09/GHSA-9wjh-jr2j-6r4x/GHSA-9wjh-jr2j-6r4x.json | 8 ++------
.../09/GHSA-9xww-fwh9-95c5/GHSA-9xww-fwh9-95c5.json | 4 +---
.../09/GHSA-c6f3-3c98-2j2f/GHSA-c6f3-3c98-2j2f.json | 4 +---
.../09/GHSA-cg48-9hh2-x6mx/GHSA-cg48-9hh2-x6mx.json | 8 ++------
.../09/GHSA-cr5w-6rv4-r2qg/GHSA-cr5w-6rv4-r2qg.json | 4 +---
.../09/GHSA-cx7r-634m-2q2h/GHSA-cx7r-634m-2q2h.json | 12 +++---------
.../09/GHSA-f3pc-c2gf-hvgw/GHSA-f3pc-c2gf-hvgw.json | 4 +---
.../09/GHSA-f8h3-rqrm-47v9/GHSA-f8h3-rqrm-47v9.json | 8 ++------
.../09/GHSA-fj93-7wm4-8x2g/GHSA-fj93-7wm4-8x2g.json | 8 ++------
.../09/GHSA-fm4j-4xhm-xpwx/GHSA-fm4j-4xhm-xpwx.json | 12 +++---------
.../09/GHSA-fm7r-2pr7-rw2p/GHSA-fm7r-2pr7-rw2p.json | 4 +---
.../09/GHSA-fpw3-x4xq-6vxq/GHSA-fpw3-x4xq-6vxq.json | 4 +---
.../09/GHSA-fqw7-8v6m-2f86/GHSA-fqw7-8v6m-2f86.json | 4 +---
.../09/GHSA-frxq-v7fm-m4pv/GHSA-frxq-v7fm-m4pv.json | 4 +---
.../09/GHSA-g5q2-fcg9-j526/GHSA-g5q2-fcg9-j526.json | 4 +---
.../09/GHSA-g7mw-5cq6-fv82/GHSA-g7mw-5cq6-fv82.json | 8 ++------
.../09/GHSA-g8jc-mm3c-cwhj/GHSA-g8jc-mm3c-cwhj.json | 4 +---
.../09/GHSA-gfjr-xqhm-qvv3/GHSA-gfjr-xqhm-qvv3.json | 4 +---
.../09/GHSA-h26f-j4mv-84g7/GHSA-h26f-j4mv-84g7.json | 4 +---
.../09/GHSA-h44f-769q-j6px/GHSA-h44f-769q-j6px.json | 4 +---
.../09/GHSA-h5vm-jhq7-w647/GHSA-h5vm-jhq7-w647.json | 4 +---
.../09/GHSA-h726-x36v-rx45/GHSA-h726-x36v-rx45.json | 8 ++------
.../09/GHSA-hg5q-rj62-c43g/GHSA-hg5q-rj62-c43g.json | 4 +---
.../09/GHSA-hx5x-49mm-vmhw/GHSA-hx5x-49mm-vmhw.json | 4 +---
.../09/GHSA-hxwc-5vw9-2w4w/GHSA-hxwc-5vw9-2w4w.json | 8 ++------
.../09/GHSA-j8hw-49gg-vq3w/GHSA-j8hw-49gg-vq3w.json | 4 +---
.../09/GHSA-j8qr-rvcv-crhv/GHSA-j8qr-rvcv-crhv.json | 12 +++---------
.../09/GHSA-jp9g-5x75-ccp8/GHSA-jp9g-5x75-ccp8.json | 4 +---
.../09/GHSA-m2fp-c79h-rr79/GHSA-m2fp-c79h-rr79.json | 4 +---
.../09/GHSA-m5ch-gx8g-rg73/GHSA-m5ch-gx8g-rg73.json | 8 ++------
.../09/GHSA-mmph-wp49-r48h/GHSA-mmph-wp49-r48h.json | 4 +---
.../09/GHSA-mq9h-cwc2-6j5r/GHSA-mq9h-cwc2-6j5r.json | 4 +---
.../09/GHSA-mvch-rh6h-2m47/GHSA-mvch-rh6h-2m47.json | 4 +---
.../09/GHSA-mxmj-84q8-34r7/GHSA-mxmj-84q8-34r7.json | 8 ++------
.../09/GHSA-p33q-w45h-2hcj/GHSA-p33q-w45h-2hcj.json | 4 +---
.../09/GHSA-p8fm-w787-x6x3/GHSA-p8fm-w787-x6x3.json | 4 +---
.../09/GHSA-p9vv-3945-x93h/GHSA-p9vv-3945-x93h.json | 8 ++------
.../09/GHSA-pj97-j597-ppm7/GHSA-pj97-j597-ppm7.json | 4 +---
.../09/GHSA-pm9v-325f-5g74/GHSA-pm9v-325f-5g74.json | 4 +---
.../09/GHSA-pmgv-94f5-6w7w/GHSA-pmgv-94f5-6w7w.json | 4 +---
.../09/GHSA-pqpp-2363-649v/GHSA-pqpp-2363-649v.json | 8 ++------
.../09/GHSA-q42c-rrp3-r3xm/GHSA-q42c-rrp3-r3xm.json | 4 +---
.../09/GHSA-qj2g-642f-4jrv/GHSA-qj2g-642f-4jrv.json | 4 +---
.../09/GHSA-qj3g-wfr7-3cv7/GHSA-qj3g-wfr7-3cv7.json | 4 +---
.../09/GHSA-qm4q-f956-fg64/GHSA-qm4q-f956-fg64.json | 4 +---
.../09/GHSA-qv78-398w-cxp7/GHSA-qv78-398w-cxp7.json | 4 +---
.../09/GHSA-r863-p739-275c/GHSA-r863-p739-275c.json | 4 +---
.../09/GHSA-r9q4-w3fm-wrm2/GHSA-r9q4-w3fm-wrm2.json | 8 ++------
.../09/GHSA-rffp-mc78-wjf7/GHSA-rffp-mc78-wjf7.json | 8 ++------
.../09/GHSA-rggq-f2wf-m6cp/GHSA-rggq-f2wf-m6cp.json | 4 +---
.../09/GHSA-rm7c-x424-g2mw/GHSA-rm7c-x424-g2mw.json | 4 +---
.../09/GHSA-rvww-x6m4-4vc2/GHSA-rvww-x6m4-4vc2.json | 4 +---
.../09/GHSA-rw4r-h883-8pf9/GHSA-rw4r-h883-8pf9.json | 4 +---
.../09/GHSA-v99v-xgjx-7m7g/GHSA-v99v-xgjx-7m7g.json | 4 +---
.../09/GHSA-vcg5-9xw6-r56c/GHSA-vcg5-9xw6-r56c.json | 4 +---
.../09/GHSA-vf8q-pw7h-r2x2/GHSA-vf8q-pw7h-r2x2.json | 4 +---
.../09/GHSA-vw7g-jq9m-3q9v/GHSA-vw7g-jq9m-3q9v.json | 12 +++---------
.../09/GHSA-w32g-5hqp-gg6q/GHSA-w32g-5hqp-gg6q.json | 8 ++------
.../09/GHSA-w3f3-4j22-2v3p/GHSA-w3f3-4j22-2v3p.json | 4 +---
.../09/GHSA-w5q7-3pr9-x44w/GHSA-w5q7-3pr9-x44w.json | 12 +++---------
.../09/GHSA-w65v-hx54-xrqx/GHSA-w65v-hx54-xrqx.json | 4 +---
.../09/GHSA-w7wg-24g3-2c78/GHSA-w7wg-24g3-2c78.json | 4 +---
.../09/GHSA-wc7q-qpm4-8pqv/GHSA-wc7q-qpm4-8pqv.json | 4 +---
.../09/GHSA-wgvj-6v57-wjh3/GHSA-wgvj-6v57-wjh3.json | 4 +---
.../09/GHSA-wqhw-frpx-5mmp/GHSA-wqhw-frpx-5mmp.json | 8 ++------
.../09/GHSA-x3m6-rprw-862w/GHSA-x3m6-rprw-862w.json | 4 +---
.../09/GHSA-x6ch-c6rv-f7wh/GHSA-x6ch-c6rv-f7wh.json | 4 +---
.../09/GHSA-x9hc-rw35-f44h/GHSA-x9hc-rw35-f44h.json | 4 +---
.../09/GHSA-xmmp-hrmx-x5g7/GHSA-xmmp-hrmx-x5g7.json | 4 +---
.../09/GHSA-xrr6-6ww3-f3qm/GHSA-xrr6-6ww3-f3qm.json | 12 +++---------
.../05/GHSA-97gm-mcv6-cphm/GHSA-97gm-mcv6-cphm.json | 4 +---
.../05/GHSA-frg3-gpcx-968f/GHSA-frg3-gpcx-968f.json | 4 +---
.../03/GHSA-6w5f-5wgr-qjg5/GHSA-6w5f-5wgr-qjg5.json | 12 +++---------
.../01/GHSA-fh88-rxj8-f46q/GHSA-fh88-rxj8-f46q.json | 8 ++------
.../02/GHSA-g325-5mrh-jpx2/GHSA-g325-5mrh-jpx2.json | 8 ++------
.../02/GHSA-vmgc-j3j3-w739/GHSA-vmgc-j3j3-w739.json | 8 ++------
.../04/GHSA-c4g9-53v4-f2qg/GHSA-c4g9-53v4-f2qg.json | 4 +---
.../04/GHSA-mxvh-95qr-ww4v/GHSA-mxvh-95qr-ww4v.json | 4 +---
.../04/GHSA-qf6r-hr4r-92vr/GHSA-qf6r-hr4r-92vr.json | 4 +---
.../04/GHSA-r798-gf85-6mc8/GHSA-r798-gf85-6mc8.json | 4 +---
.../04/GHSA-w52g-gmgw-x986/GHSA-w52g-gmgw-x986.json | 4 +---
.../04/GHSA-xmrm-f5h6-fxm7/GHSA-xmrm-f5h6-fxm7.json | 4 +---
.../05/GHSA-22j2-46v6-f42v/GHSA-22j2-46v6-f42v.json | 8 ++------
.../05/GHSA-233f-69cg-rpgm/GHSA-233f-69cg-rpgm.json | 8 ++------
.../05/GHSA-23mh-p5gr-48gh/GHSA-23mh-p5gr-48gh.json | 8 ++------
.../05/GHSA-23rg-hpwq-h786/GHSA-23rg-hpwq-h786.json | 8 ++------
.../05/GHSA-249h-cc9x-grm3/GHSA-249h-cc9x-grm3.json | 4 +---
.../05/GHSA-25mr-3m57-5v4r/GHSA-25mr-3m57-5v4r.json | 8 ++------
.../05/GHSA-26hm-cr9c-2627/GHSA-26hm-cr9c-2627.json | 4 +---
.../05/GHSA-27g4-qh23-f942/GHSA-27g4-qh23-f942.json | 12 +++---------
.../05/GHSA-283m-g47h-4xp3/GHSA-283m-g47h-4xp3.json | 8 ++------
.../05/GHSA-28xw-m7jp-89ch/GHSA-28xw-m7jp-89ch.json | 4 +---
.../05/GHSA-295v-qw27-g2wh/GHSA-295v-qw27-g2wh.json | 8 ++------
.../05/GHSA-29j8-8jmp-r7x6/GHSA-29j8-8jmp-r7x6.json | 12 +++---------
.../05/GHSA-2cph-6c7j-7mmc/GHSA-2cph-6c7j-7mmc.json | 8 ++------
.../05/GHSA-2gmr-48xr-j34m/GHSA-2gmr-48xr-j34m.json | 8 ++------
.../05/GHSA-2gq4-vmv2-wch5/GHSA-2gq4-vmv2-wch5.json | 12 +++---------
.../05/GHSA-2hw9-c84h-m727/GHSA-2hw9-c84h-m727.json | 12 +++---------
.../05/GHSA-2m5v-p53f-hgfp/GHSA-2m5v-p53f-hgfp.json | 12 +++---------
.../05/GHSA-2p92-ff6g-jxxw/GHSA-2p92-ff6g-jxxw.json | 8 ++------
.../05/GHSA-2pp4-x986-8w45/GHSA-2pp4-x986-8w45.json | 12 +++---------
.../05/GHSA-2q8c-vq6v-7pf3/GHSA-2q8c-vq6v-7pf3.json | 4 +---
.../05/GHSA-2q9j-vprm-gcw6/GHSA-2q9j-vprm-gcw6.json | 4 +---
.../05/GHSA-2r22-4xgm-wjg8/GHSA-2r22-4xgm-wjg8.json | 8 ++------
.../05/GHSA-2rqw-x4fp-36cv/GHSA-2rqw-x4fp-36cv.json | 8 ++------
.../05/GHSA-2rvc-4fj7-2p7v/GHSA-2rvc-4fj7-2p7v.json | 8 ++------
.../05/GHSA-2v62-48mq-rgvp/GHSA-2v62-48mq-rgvp.json | 8 ++------
.../05/GHSA-2vwj-hgqw-6q5c/GHSA-2vwj-hgqw-6q5c.json | 4 +---
.../05/GHSA-2w9v-97wx-v5mj/GHSA-2w9v-97wx-v5mj.json | 12 +++---------
.../05/GHSA-2xj8-wrjm-mfv6/GHSA-2xj8-wrjm-mfv6.json | 8 ++------
.../05/GHSA-32x5-wqvr-v5j9/GHSA-32x5-wqvr-v5j9.json | 4 +---
.../05/GHSA-336w-w337-qw2v/GHSA-336w-w337-qw2v.json | 8 ++------
.../05/GHSA-33gq-cgfx-f6m6/GHSA-33gq-cgfx-f6m6.json | 8 ++------
.../05/GHSA-34f4-qcwh-g2jj/GHSA-34f4-qcwh-g2jj.json | 12 +++---------
.../05/GHSA-34g8-99rj-74rm/GHSA-34g8-99rj-74rm.json | 12 +++---------
.../05/GHSA-34x6-gmv7-8394/GHSA-34x6-gmv7-8394.json | 8 ++------
.../05/GHSA-3584-jjj6-qjv4/GHSA-3584-jjj6-qjv4.json | 8 ++------
.../05/GHSA-35qr-m9p5-57hv/GHSA-35qr-m9p5-57hv.json | 12 +++---------
.../05/GHSA-363v-vmrh-fj2f/GHSA-363v-vmrh-fj2f.json | 12 +++---------
.../05/GHSA-36hm-353j-v57w/GHSA-36hm-353j-v57w.json | 4 +---
.../05/GHSA-37p3-g669-cvjp/GHSA-37p3-g669-cvjp.json | 12 +++---------
.../05/GHSA-37rm-jxqj-2hjc/GHSA-37rm-jxqj-2hjc.json | 12 +++---------
.../05/GHSA-39jx-m5ww-v5fq/GHSA-39jx-m5ww-v5fq.json | 12 +++---------
.../05/GHSA-39x3-rj4g-g64f/GHSA-39x3-rj4g-g64f.json | 12 +++---------
.../05/GHSA-39x5-vv4x-qc5w/GHSA-39x5-vv4x-qc5w.json | 12 +++---------
.../05/GHSA-3cr8-8gxj-qjhf/GHSA-3cr8-8gxj-qjhf.json | 8 ++------
.../05/GHSA-3g9v-j5q9-fhvc/GHSA-3g9v-j5q9-fhvc.json | 8 ++------
.../05/GHSA-3gj3-p68v-v295/GHSA-3gj3-p68v-v295.json | 12 +++---------
.../05/GHSA-3gwf-whf9-4x6h/GHSA-3gwf-whf9-4x6h.json | 8 ++------
.../05/GHSA-3hrp-jghr-jv6p/GHSA-3hrp-jghr-jv6p.json | 4 +---
.../05/GHSA-3j6r-rxq5-32pr/GHSA-3j6r-rxq5-32pr.json | 8 ++------
.../05/GHSA-3j7m-cfhc-782p/GHSA-3j7m-cfhc-782p.json | 12 +++---------
.../05/GHSA-3jmv-pqcg-4h64/GHSA-3jmv-pqcg-4h64.json | 8 ++------
.../05/GHSA-3mwv-hq37-h7fr/GHSA-3mwv-hq37-h7fr.json | 8 ++------
.../05/GHSA-3pw6-qjj9-fvw4/GHSA-3pw6-qjj9-fvw4.json | 8 ++------
.../05/GHSA-3px6-x742-ffjj/GHSA-3px6-x742-ffjj.json | 12 +++---------
.../05/GHSA-3pxp-pwrp-2w6f/GHSA-3pxp-pwrp-2w6f.json | 8 ++------
.../05/GHSA-3qxr-h63q-m7x3/GHSA-3qxr-h63q-m7x3.json | 4 +---
.../05/GHSA-3r99-gh2f-23fp/GHSA-3r99-gh2f-23fp.json | 4 +---
.../05/GHSA-3v5h-fmqv-x9mj/GHSA-3v5h-fmqv-x9mj.json | 8 ++------
.../05/GHSA-3vh2-7wc2-pg3v/GHSA-3vh2-7wc2-pg3v.json | 12 +++---------
.../05/GHSA-3vpg-38h3-gc36/GHSA-3vpg-38h3-gc36.json | 8 ++------
.../05/GHSA-3vw8-44x3-wrr9/GHSA-3vw8-44x3-wrr9.json | 4 +---
.../05/GHSA-3wfq-4hqg-3c4g/GHSA-3wfq-4hqg-3c4g.json | 12 +++---------
.../05/GHSA-3wm4-c4h2-6mcg/GHSA-3wm4-c4h2-6mcg.json | 12 +++---------
.../05/GHSA-3wpx-9425-3jrg/GHSA-3wpx-9425-3jrg.json | 12 +++---------
.../05/GHSA-449v-3cf9-7rq9/GHSA-449v-3cf9-7rq9.json | 12 +++---------
.../05/GHSA-44jx-gjf4-pwrq/GHSA-44jx-gjf4-pwrq.json | 12 +++---------
.../05/GHSA-44q4-7h77-fj8h/GHSA-44q4-7h77-fj8h.json | 12 +++---------
.../05/GHSA-45g2-wqp2-rh43/GHSA-45g2-wqp2-rh43.json | 8 ++------
.../05/GHSA-4687-jrh4-429g/GHSA-4687-jrh4-429g.json | 4 +---
.../05/GHSA-478v-f3x6-36qh/GHSA-478v-f3x6-36qh.json | 8 ++------
.../05/GHSA-47qg-45wp-9cgc/GHSA-47qg-45wp-9cgc.json | 8 ++------
.../05/GHSA-47qp-2jq2-r96r/GHSA-47qp-2jq2-r96r.json | 8 ++------
.../05/GHSA-47qw-2jwp-57vp/GHSA-47qw-2jwp-57vp.json | 8 ++------
.../05/GHSA-482j-vvpx-r8pp/GHSA-482j-vvpx-r8pp.json | 8 ++------
.../05/GHSA-4842-39rx-hq8h/GHSA-4842-39rx-hq8h.json | 8 ++------
.../05/GHSA-4fff-7qmx-5h73/GHSA-4fff-7qmx-5h73.json | 8 ++------
.../05/GHSA-4fw6-r8x4-6gcx/GHSA-4fw6-r8x4-6gcx.json | 8 ++------
.../05/GHSA-4gr6-f9qj-jjxh/GHSA-4gr6-f9qj-jjxh.json | 12 +++---------
.../05/GHSA-4j2g-7wxj-73hg/GHSA-4j2g-7wxj-73hg.json | 4 +---
.../05/GHSA-4jc8-xpvv-r48p/GHSA-4jc8-xpvv-r48p.json | 8 ++------
.../05/GHSA-4m58-8hvf-gqv5/GHSA-4m58-8hvf-gqv5.json | 4 +---
.../05/GHSA-4mfp-5fwm-2mc7/GHSA-4mfp-5fwm-2mc7.json | 12 +++---------
.../05/GHSA-4p83-89wv-45cc/GHSA-4p83-89wv-45cc.json | 8 ++------
.../05/GHSA-4pj4-372m-4fxh/GHSA-4pj4-372m-4fxh.json | 12 +++---------
.../05/GHSA-4pw7-3p8h-fr77/GHSA-4pw7-3p8h-fr77.json | 12 +++---------
.../05/GHSA-4pwh-v68p-659c/GHSA-4pwh-v68p-659c.json | 8 ++------
.../05/GHSA-4q98-f277-w2f4/GHSA-4q98-f277-w2f4.json | 8 ++------
.../05/GHSA-4qpw-2xph-v56p/GHSA-4qpw-2xph-v56p.json | 12 +++---------
.../05/GHSA-4r5j-9p9r-6v2h/GHSA-4r5j-9p9r-6v2h.json | 12 +++---------
.../05/GHSA-4vv9-x75r-hv57/GHSA-4vv9-x75r-hv57.json | 12 +++---------
.../05/GHSA-4x44-x6qm-66xm/GHSA-4x44-x6qm-66xm.json | 8 ++------
.../05/GHSA-547q-2g45-qm3q/GHSA-547q-2g45-qm3q.json | 8 ++------
.../05/GHSA-54f2-vwh2-6c3h/GHSA-54f2-vwh2-6c3h.json | 4 +---
.../05/GHSA-54p2-qq73-f565/GHSA-54p2-qq73-f565.json | 4 +---
.../05/GHSA-55m9-3c26-9vrp/GHSA-55m9-3c26-9vrp.json | 12 +++---------
.../05/GHSA-56cw-v7m3-5qr9/GHSA-56cw-v7m3-5qr9.json | 8 ++------
.../05/GHSA-57j9-gjq8-q2vw/GHSA-57j9-gjq8-q2vw.json | 8 ++------
.../05/GHSA-57vj-jmr7-9qm6/GHSA-57vj-jmr7-9qm6.json | 12 +++---------
.../05/GHSA-58jg-gjx4-m22c/GHSA-58jg-gjx4-m22c.json | 8 ++------
.../05/GHSA-5c8x-98rm-gm38/GHSA-5c8x-98rm-gm38.json | 8 ++------
.../05/GHSA-5f46-4729-jprm/GHSA-5f46-4729-jprm.json | 4 +---
.../05/GHSA-5f6v-m426-9687/GHSA-5f6v-m426-9687.json | 12 +++---------
.../05/GHSA-5fmg-h5hp-6vj5/GHSA-5fmg-h5hp-6vj5.json | 4 +---
.../05/GHSA-5fmj-85rq-cqwc/GHSA-5fmj-85rq-cqwc.json | 8 ++------
.../05/GHSA-5fmq-4g5c-vr23/GHSA-5fmq-4g5c-vr23.json | 8 ++------
.../05/GHSA-5g4m-52c9-q9f8/GHSA-5g4m-52c9-q9f8.json | 8 ++------
.../05/GHSA-5gw9-4f37-rxx8/GHSA-5gw9-4f37-rxx8.json | 12 +++---------
.../05/GHSA-5h5p-q43p-7g65/GHSA-5h5p-q43p-7g65.json | 12 +++---------
.../05/GHSA-5hw9-7c3p-xqf9/GHSA-5hw9-7c3p-xqf9.json | 8 ++------
.../05/GHSA-5jgc-m9p6-5f9w/GHSA-5jgc-m9p6-5f9w.json | 8 ++------
.../05/GHSA-5m3m-cp9q-wr3m/GHSA-5m3m-cp9q-wr3m.json | 8 ++------
.../05/GHSA-5mqq-53xm-xjrq/GHSA-5mqq-53xm-xjrq.json | 8 ++------
.../05/GHSA-5pj2-vm8h-3hhm/GHSA-5pj2-vm8h-3hhm.json | 8 ++------
.../05/GHSA-5pp3-hq84-c694/GHSA-5pp3-hq84-c694.json | 8 ++------
.../05/GHSA-5q7x-pp9h-jq3v/GHSA-5q7x-pp9h-jq3v.json | 8 ++------
.../05/GHSA-5qqm-ghmq-h9vw/GHSA-5qqm-ghmq-h9vw.json | 12 +++---------
.../05/GHSA-5rpc-mjg7-fjwg/GHSA-5rpc-mjg7-fjwg.json | 8 ++------
.../05/GHSA-5vp6-q3wx-853p/GHSA-5vp6-q3wx-853p.json | 12 +++---------
.../05/GHSA-5w67-96wr-rq68/GHSA-5w67-96wr-rq68.json | 12 +++---------
.../05/GHSA-5wxf-j3j5-7qg8/GHSA-5wxf-j3j5-7qg8.json | 8 ++------
.../05/GHSA-62g2-5r5g-gcxp/GHSA-62g2-5r5g-gcxp.json | 4 +---
.../05/GHSA-62m2-jrj9-gqh5/GHSA-62m2-jrj9-gqh5.json | 4 +---
.../05/GHSA-63hp-2j26-qmh4/GHSA-63hp-2j26-qmh4.json | 12 +++---------
.../05/GHSA-6438-vw7j-m486/GHSA-6438-vw7j-m486.json | 8 ++------
.../05/GHSA-662f-c392-7g79/GHSA-662f-c392-7g79.json | 12 +++---------
.../05/GHSA-66cm-jpvw-c835/GHSA-66cm-jpvw-c835.json | 4 +---
.../05/GHSA-679r-286m-46jm/GHSA-679r-286m-46jm.json | 8 ++------
.../05/GHSA-67r7-53fx-p88c/GHSA-67r7-53fx-p88c.json | 8 ++------
.../05/GHSA-6882-w5r7-3gf2/GHSA-6882-w5r7-3gf2.json | 8 ++------
.../05/GHSA-69jh-cprq-7xf7/GHSA-69jh-cprq-7xf7.json | 8 ++------
.../05/GHSA-69jq-wmhm-pw4j/GHSA-69jq-wmhm-pw4j.json | 12 +++---------
.../05/GHSA-6cgf-ccqv-hqc5/GHSA-6cgf-ccqv-hqc5.json | 4 +---
.../05/GHSA-6fhp-xfmp-3mr6/GHSA-6fhp-xfmp-3mr6.json | 12 +++---------
.../05/GHSA-6fpr-4c6x-qp4g/GHSA-6fpr-4c6x-qp4g.json | 12 +++---------
.../05/GHSA-6fvr-6mxw-xfrw/GHSA-6fvr-6mxw-xfrw.json | 8 ++------
.../05/GHSA-6ghh-hvv9-x353/GHSA-6ghh-hvv9-x353.json | 8 ++------
.../05/GHSA-6gp5-g2h4-r5fv/GHSA-6gp5-g2h4-r5fv.json | 12 +++---------
.../05/GHSA-6hcp-v9xq-2g4x/GHSA-6hcp-v9xq-2g4x.json | 4 +---
.../05/GHSA-6m4x-p77x-h89r/GHSA-6m4x-p77x-h89r.json | 8 ++------
.../05/GHSA-6mrv-7rf8-prq8/GHSA-6mrv-7rf8-prq8.json | 12 +++---------
.../05/GHSA-6p3m-xxpg-qhgw/GHSA-6p3m-xxpg-qhgw.json | 8 ++------
.../05/GHSA-6pg8-45c4-4v4c/GHSA-6pg8-45c4-4v4c.json | 8 ++------
.../05/GHSA-6pxw-6x4h-x9vq/GHSA-6pxw-6x4h-x9vq.json | 12 +++---------
.../05/GHSA-6r3m-84jw-pc9g/GHSA-6r3m-84jw-pc9g.json | 12 +++---------
.../05/GHSA-6rqj-653c-2r5w/GHSA-6rqj-653c-2r5w.json | 12 +++---------
.../05/GHSA-6v9c-m59m-3qfw/GHSA-6v9c-m59m-3qfw.json | 4 +---
.../05/GHSA-6w84-jx28-8m33/GHSA-6w84-jx28-8m33.json | 12 +++---------
.../05/GHSA-6wcf-qf37-vhf2/GHSA-6wcf-qf37-vhf2.json | 12 +++---------
.../05/GHSA-6whp-q5hh-g76g/GHSA-6whp-q5hh-g76g.json | 8 ++------
.../05/GHSA-6x94-2xr2-xgw3/GHSA-6x94-2xr2-xgw3.json | 12 +++---------
.../05/GHSA-6xmv-8hqx-cc6p/GHSA-6xmv-8hqx-cc6p.json | 12 +++---------
.../05/GHSA-6xv2-7658-fhwv/GHSA-6xv2-7658-fhwv.json | 12 +++---------
.../05/GHSA-72wq-mg6x-3jhg/GHSA-72wq-mg6x-3jhg.json | 4 +---
.../05/GHSA-735r-9w5c-9j82/GHSA-735r-9w5c-9j82.json | 12 +++---------
.../05/GHSA-74hc-hc94-55q5/GHSA-74hc-hc94-55q5.json | 8 ++------
.../05/GHSA-74jm-vvxv-q52j/GHSA-74jm-vvxv-q52j.json | 12 +++---------
.../05/GHSA-76pw-7xqx-4qqh/GHSA-76pw-7xqx-4qqh.json | 12 +++---------
.../05/GHSA-76wf-x7rx-q968/GHSA-76wf-x7rx-q968.json | 12 +++---------
.../05/GHSA-76wh-p6c9-jj69/GHSA-76wh-p6c9-jj69.json | 12 +++---------
.../05/GHSA-78jq-7m93-2fvg/GHSA-78jq-7m93-2fvg.json | 8 ++------
.../05/GHSA-7cpw-g28r-26j6/GHSA-7cpw-g28r-26j6.json | 8 ++------
.../05/GHSA-7cvr-982q-p89c/GHSA-7cvr-982q-p89c.json | 12 +++---------
.../05/GHSA-7cwp-w3cq-m996/GHSA-7cwp-w3cq-m996.json | 8 ++------
.../05/GHSA-7frh-23gc-cx4h/GHSA-7frh-23gc-cx4h.json | 12 +++---------
.../05/GHSA-7fv3-c8f2-2c73/GHSA-7fv3-c8f2-2c73.json | 8 ++------
.../05/GHSA-7gfq-w4pg-4r34/GHSA-7gfq-w4pg-4r34.json | 8 ++------
.../05/GHSA-7j2c-3cxv-9jqw/GHSA-7j2c-3cxv-9jqw.json | 12 +++---------
.../05/GHSA-7m25-w5rv-q6w6/GHSA-7m25-w5rv-q6w6.json | 8 ++------
.../05/GHSA-7m8c-j4rm-p9xf/GHSA-7m8c-j4rm-p9xf.json | 4 +---
.../05/GHSA-7pf5-64wg-qq2g/GHSA-7pf5-64wg-qq2g.json | 12 +++---------
.../05/GHSA-7pj8-26fx-r97j/GHSA-7pj8-26fx-r97j.json | 12 +++---------
.../05/GHSA-7px9-8jq2-c4vv/GHSA-7px9-8jq2-c4vv.json | 12 +++---------
.../05/GHSA-7q7p-qq7q-xx77/GHSA-7q7p-qq7q-xx77.json | 4 +---
.../05/GHSA-7qx6-9mjj-x6hf/GHSA-7qx6-9mjj-x6hf.json | 8 ++------
.../05/GHSA-7rr7-fgm8-69p5/GHSA-7rr7-fgm8-69p5.json | 8 ++------
.../05/GHSA-7v6x-p93c-4q36/GHSA-7v6x-p93c-4q36.json | 12 +++---------
.../05/GHSA-7v7w-3hh3-rxmv/GHSA-7v7w-3hh3-rxmv.json | 12 +++---------
.../05/GHSA-7wh2-f5fv-2c6f/GHSA-7wh2-f5fv-2c6f.json | 8 ++------
.../05/GHSA-7wx4-pm9p-2c7w/GHSA-7wx4-pm9p-2c7w.json | 8 ++------
.../05/GHSA-7xpv-27qx-7p6q/GHSA-7xpv-27qx-7p6q.json | 12 +++---------
.../05/GHSA-82x7-v42m-q6mv/GHSA-82x7-v42m-q6mv.json | 12 +++---------
.../05/GHSA-83fp-xg66-j927/GHSA-83fp-xg66-j927.json | 8 ++------
.../05/GHSA-8442-3jhx-m6j3/GHSA-8442-3jhx-m6j3.json | 4 +---
.../05/GHSA-85jr-569m-vgvh/GHSA-85jr-569m-vgvh.json | 12 +++---------
.../05/GHSA-868q-vwvg-39f6/GHSA-868q-vwvg-39f6.json | 8 ++------
.../05/GHSA-88rv-7jw7-2cm8/GHSA-88rv-7jw7-2cm8.json | 8 ++------
.../05/GHSA-89wq-qcf5-vx73/GHSA-89wq-qcf5-vx73.json | 8 ++------
.../05/GHSA-8c2x-3ww9-w4wr/GHSA-8c2x-3ww9-w4wr.json | 4 +---
.../05/GHSA-8c59-347w-2hff/GHSA-8c59-347w-2hff.json | 8 ++------
.../05/GHSA-8c74-3vw3-rf5p/GHSA-8c74-3vw3-rf5p.json | 12 +++---------
.../05/GHSA-8cvf-9rjv-7x86/GHSA-8cvf-9rjv-7x86.json | 12 +++---------
.../05/GHSA-8g3h-4jcf-7hc9/GHSA-8g3h-4jcf-7hc9.json | 8 ++------
.../05/GHSA-8g7j-vg77-h9vr/GHSA-8g7j-vg77-h9vr.json | 4 +---
.../05/GHSA-8gjv-h238-5fmp/GHSA-8gjv-h238-5fmp.json | 4 +---
.../05/GHSA-8h6c-3pf2-fqm5/GHSA-8h6c-3pf2-fqm5.json | 12 +++---------
.../05/GHSA-8h72-qf2q-h5jc/GHSA-8h72-qf2q-h5jc.json | 12 +++---------
.../05/GHSA-8hvw-j4x7-fhgf/GHSA-8hvw-j4x7-fhgf.json | 12 +++---------
.../05/GHSA-8jqr-r7rc-4h55/GHSA-8jqr-r7rc-4h55.json | 4 +---
.../05/GHSA-8p7h-vjm2-xpww/GHSA-8p7h-vjm2-xpww.json | 4 +---
.../05/GHSA-8px8-v9xj-qwfw/GHSA-8px8-v9xj-qwfw.json | 12 +++---------
.../05/GHSA-8q59-5657-5q7g/GHSA-8q59-5657-5q7g.json | 4 +---
.../05/GHSA-8v5f-39c3-2567/GHSA-8v5f-39c3-2567.json | 12 +++---------
.../05/GHSA-8v7x-qxjj-g923/GHSA-8v7x-qxjj-g923.json | 12 +++---------
.../05/GHSA-8vg3-7pxv-7pq6/GHSA-8vg3-7pxv-7pq6.json | 4 +---
.../05/GHSA-8vpv-x7vv-g726/GHSA-8vpv-x7vv-g726.json | 4 +---
.../05/GHSA-8w62-3h89-722w/GHSA-8w62-3h89-722w.json | 8 ++------
.../05/GHSA-8w6x-8vm5-vh5q/GHSA-8w6x-8vm5-vh5q.json | 12 +++---------
.../05/GHSA-8wr9-r69x-g268/GHSA-8wr9-r69x-g268.json | 8 ++------
.../05/GHSA-8wv3-4xc3-cq3g/GHSA-8wv3-4xc3-cq3g.json | 4 +---
.../05/GHSA-92fc-2v24-8558/GHSA-92fc-2v24-8558.json | 12 +++---------
.../05/GHSA-93f4-345x-96mm/GHSA-93f4-345x-96mm.json | 4 +---
.../05/GHSA-93r8-2fm2-39jj/GHSA-93r8-2fm2-39jj.json | 8 ++------
.../05/GHSA-96g2-x6h6-v7h9/GHSA-96g2-x6h6-v7h9.json | 4 +---
.../05/GHSA-96pq-2p2q-gx9m/GHSA-96pq-2p2q-gx9m.json | 4 +---
.../05/GHSA-979p-m9gj-6h5g/GHSA-979p-m9gj-6h5g.json | 4 +---
.../05/GHSA-9966-jcrj-hwhw/GHSA-9966-jcrj-hwhw.json | 12 +++---------
.../05/GHSA-99j3-p989-hw7j/GHSA-99j3-p989-hw7j.json | 4 +---
.../05/GHSA-9c53-jf8m-pjf3/GHSA-9c53-jf8m-pjf3.json | 8 ++------
.../05/GHSA-9cvc-g6x4-jqfm/GHSA-9cvc-g6x4-jqfm.json | 8 ++------
.../05/GHSA-9cxx-2gq5-4v8r/GHSA-9cxx-2gq5-4v8r.json | 12 +++---------
.../05/GHSA-9f2j-cfjr-2gcp/GHSA-9f2j-cfjr-2gcp.json | 8 ++------
.../05/GHSA-9g63-8qxx-3j95/GHSA-9g63-8qxx-3j95.json | 8 ++------
.../05/GHSA-9g7g-pmg2-qx9r/GHSA-9g7g-pmg2-qx9r.json | 12 +++---------
.../05/GHSA-9gj3-47wr-2qvr/GHSA-9gj3-47wr-2qvr.json | 8 ++------
.../05/GHSA-9gpv-rx7q-48r2/GHSA-9gpv-rx7q-48r2.json | 8 ++------
.../05/GHSA-9gxh-58f6-h4hh/GHSA-9gxh-58f6-h4hh.json | 12 +++---------
.../05/GHSA-9j4c-m4rp-53j6/GHSA-9j4c-m4rp-53j6.json | 4 +---
.../05/GHSA-9j95-v437-9v7h/GHSA-9j95-v437-9v7h.json | 4 +---
.../05/GHSA-9m82-2363-wc54/GHSA-9m82-2363-wc54.json | 4 +---
.../05/GHSA-9mm7-7f84-98c9/GHSA-9mm7-7f84-98c9.json | 4 +---
.../05/GHSA-9pgv-j45f-353j/GHSA-9pgv-j45f-353j.json | 12 +++---------
.../05/GHSA-9rmf-q528-p6rv/GHSA-9rmf-q528-p6rv.json | 8 ++------
.../05/GHSA-9rxj-9w27-4hc3/GHSA-9rxj-9w27-4hc3.json | 8 ++------
.../05/GHSA-9vhf-xgg9-m6cf/GHSA-9vhf-xgg9-m6cf.json | 4 +---
.../05/GHSA-9vrg-75vp-xj72/GHSA-9vrg-75vp-xj72.json | 12 +++---------
.../05/GHSA-9xfg-9jrh-8c3v/GHSA-9xfg-9jrh-8c3v.json | 8 ++------
.../05/GHSA-c2p5-jcp9-qh7r/GHSA-c2p5-jcp9-qh7r.json | 8 ++------
.../05/GHSA-c2pr-42g7-vmj7/GHSA-c2pr-42g7-vmj7.json | 12 +++---------
.../05/GHSA-c3j6-m7f6-92cp/GHSA-c3j6-m7f6-92cp.json | 8 ++------
.../05/GHSA-c42f-578r-22gx/GHSA-c42f-578r-22gx.json | 8 ++------
.../05/GHSA-c4w7-ghh7-wp3j/GHSA-c4w7-ghh7-wp3j.json | 8 ++------
.../05/GHSA-c5m8-gpqx-2pc5/GHSA-c5m8-gpqx-2pc5.json | 4 +---
.../05/GHSA-c5w7-x82j-g943/GHSA-c5w7-x82j-g943.json | 8 ++------
.../05/GHSA-c6h6-4q33-5jv5/GHSA-c6h6-4q33-5jv5.json | 8 ++------
.../05/GHSA-c78m-6jpv-42p4/GHSA-c78m-6jpv-42p4.json | 8 ++------
.../05/GHSA-c78v-wq62-w3c5/GHSA-c78v-wq62-w3c5.json | 12 +++---------
.../05/GHSA-c897-jqgr-qf8x/GHSA-c897-jqgr-qf8x.json | 12 +++---------
.../05/GHSA-c8cf-pj9v-fcr9/GHSA-c8cf-pj9v-fcr9.json | 8 ++------
.../05/GHSA-c976-3hhm-7m57/GHSA-c976-3hhm-7m57.json | 12 +++---------
.../05/GHSA-c9f9-p5f3-29f5/GHSA-c9f9-p5f3-29f5.json | 4 +---
.../05/GHSA-cf38-5cmw-7r2h/GHSA-cf38-5cmw-7r2h.json | 8 ++------
.../05/GHSA-cfg6-7293-cwrh/GHSA-cfg6-7293-cwrh.json | 12 +++---------
.../05/GHSA-cfhr-prfj-mx65/GHSA-cfhr-prfj-mx65.json | 12 +++---------
.../05/GHSA-cfj4-7v4x-xmrv/GHSA-cfj4-7v4x-xmrv.json | 8 ++------
.../05/GHSA-cg63-j5p8-vpwf/GHSA-cg63-j5p8-vpwf.json | 12 +++---------
.../05/GHSA-ch9c-6f95-hm27/GHSA-ch9c-6f95-hm27.json | 8 ++------
.../05/GHSA-cjcg-p99f-62w9/GHSA-cjcg-p99f-62w9.json | 8 ++------
.../05/GHSA-cpgg-76rc-452r/GHSA-cpgg-76rc-452r.json | 12 +++---------
.../05/GHSA-cpvg-gx3j-rfm4/GHSA-cpvg-gx3j-rfm4.json | 8 ++------
.../05/GHSA-cqr2-f5xh-xf23/GHSA-cqr2-f5xh-xf23.json | 4 +---
.../05/GHSA-cr9x-qjfp-hqhg/GHSA-cr9x-qjfp-hqhg.json | 12 +++---------
.../05/GHSA-crfx-cm6v-fhv9/GHSA-crfx-cm6v-fhv9.json | 12 +++---------
.../05/GHSA-crjc-3gv4-3gfr/GHSA-crjc-3gv4-3gfr.json | 12 +++---------
.../05/GHSA-cw4m-jmr6-3m9f/GHSA-cw4m-jmr6-3m9f.json | 12 +++---------
.../05/GHSA-cwg9-gxcg-x6v2/GHSA-cwg9-gxcg-x6v2.json | 8 ++------
.../05/GHSA-cww9-mj85-mj6v/GHSA-cww9-mj85-mj6v.json | 12 +++---------
.../05/GHSA-cx9r-5fwm-h35j/GHSA-cx9r-5fwm-h35j.json | 12 +++---------
.../05/GHSA-f24j-8jjg-7c6m/GHSA-f24j-8jjg-7c6m.json | 12 +++---------
.../05/GHSA-f3mm-v27g-fw8w/GHSA-f3mm-v27g-fw8w.json | 8 ++------
.../05/GHSA-f4jj-mwv6-9hw7/GHSA-f4jj-mwv6-9hw7.json | 8 ++------
.../05/GHSA-f4vj-gp62-vjxm/GHSA-f4vj-gp62-vjxm.json | 8 ++------
.../05/GHSA-f59f-86pc-5j7q/GHSA-f59f-86pc-5j7q.json | 12 +++---------
.../05/GHSA-f5rx-rq8h-4w7v/GHSA-f5rx-rq8h-4w7v.json | 12 +++---------
.../05/GHSA-f6m2-5v5j-rhf2/GHSA-f6m2-5v5j-rhf2.json | 4 +---
.../05/GHSA-f6pq-6jhq-jx7f/GHSA-f6pq-6jhq-jx7f.json | 12 +++---------
.../05/GHSA-f6px-rq7f-xv6v/GHSA-f6px-rq7f-xv6v.json | 12 +++---------
.../05/GHSA-f9pg-xj46-9mvr/GHSA-f9pg-xj46-9mvr.json | 8 ++------
.../05/GHSA-fcm3-whc3-3xr7/GHSA-fcm3-whc3-3xr7.json | 8 ++------
.../05/GHSA-ffw6-9g4j-22q9/GHSA-ffw6-9g4j-22q9.json | 12 +++---------
.../05/GHSA-fg85-243x-99cp/GHSA-fg85-243x-99cp.json | 12 +++---------
.../05/GHSA-fg8v-97qx-694j/GHSA-fg8v-97qx-694j.json | 8 ++------
.../05/GHSA-fh66-2vx8-m2gj/GHSA-fh66-2vx8-m2gj.json | 8 ++------
.../05/GHSA-fhcx-8grm-6fhc/GHSA-fhcx-8grm-6fhc.json | 8 ++------
.../05/GHSA-fj22-9wc7-hq3h/GHSA-fj22-9wc7-hq3h.json | 8 ++------
.../05/GHSA-fjpm-pqjx-wj5g/GHSA-fjpm-pqjx-wj5g.json | 12 +++---------
.../05/GHSA-fm3r-6fgh-c3xh/GHSA-fm3r-6fgh-c3xh.json | 8 ++------
.../05/GHSA-fp3q-9278-8ppc/GHSA-fp3q-9278-8ppc.json | 4 +---
.../05/GHSA-fq75-6gpr-m5fm/GHSA-fq75-6gpr-m5fm.json | 12 +++---------
.../05/GHSA-fq7v-jhqr-v3g7/GHSA-fq7v-jhqr-v3g7.json | 4 +---
.../05/GHSA-fq9q-4qp8-fpvg/GHSA-fq9q-4qp8-fpvg.json | 8 ++------
.../05/GHSA-fqj2-3q62-4vw3/GHSA-fqj2-3q62-4vw3.json | 12 +++---------
.../05/GHSA-fvcp-55jq-j2qq/GHSA-fvcp-55jq-j2qq.json | 8 ++------
.../05/GHSA-fvp5-w7h8-5v6c/GHSA-fvp5-w7h8-5v6c.json | 4 +---
.../05/GHSA-fvq8-m245-r4cr/GHSA-fvq8-m245-r4cr.json | 12 +++---------
.../05/GHSA-fvwr-ccvc-23cc/GHSA-fvwr-ccvc-23cc.json | 8 ++------
.../05/GHSA-fw96-99q5-pmjp/GHSA-fw96-99q5-pmjp.json | 8 ++------
.../05/GHSA-fwch-m6p8-gf7x/GHSA-fwch-m6p8-gf7x.json | 12 +++---------
.../05/GHSA-fx5p-4v4c-vq9q/GHSA-fx5p-4v4c-vq9q.json | 12 +++---------
.../05/GHSA-fx9r-q6w5-g4wc/GHSA-fx9r-q6w5-g4wc.json | 8 ++------
.../05/GHSA-fxcp-62pm-pp58/GHSA-fxcp-62pm-pp58.json | 12 +++---------
.../05/GHSA-g29r-hmvv-w2p4/GHSA-g29r-hmvv-w2p4.json | 8 ++------
.../05/GHSA-g2pm-mq73-5px2/GHSA-g2pm-mq73-5px2.json | 8 ++------
.../05/GHSA-g3j2-4cw4-gv3r/GHSA-g3j2-4cw4-gv3r.json | 12 +++---------
.../05/GHSA-g3mf-xpqx-5mqg/GHSA-g3mf-xpqx-5mqg.json | 8 ++------
.../05/GHSA-g47q-9m4h-vgjq/GHSA-g47q-9m4h-vgjq.json | 4 +---
.../05/GHSA-g485-x4m8-3jwm/GHSA-g485-x4m8-3jwm.json | 12 +++---------
.../05/GHSA-g4gr-mxqj-pf9m/GHSA-g4gr-mxqj-pf9m.json | 12 +++---------
.../05/GHSA-g4r2-rhr4-hq79/GHSA-g4r2-rhr4-hq79.json | 12 +++---------
.../05/GHSA-g5j6-w97m-f848/GHSA-g5j6-w97m-f848.json | 4 +---
.../05/GHSA-g5pr-cr72-p67g/GHSA-g5pr-cr72-p67g.json | 12 +++---------
.../05/GHSA-g5r5-mcgg-8jvc/GHSA-g5r5-mcgg-8jvc.json | 8 ++------
.../05/GHSA-g6gc-jg43-45m9/GHSA-g6gc-jg43-45m9.json | 12 +++---------
.../05/GHSA-g6mg-p4c2-82c9/GHSA-g6mg-p4c2-82c9.json | 12 +++---------
.../05/GHSA-g7gp-j3cf-8xcg/GHSA-g7gp-j3cf-8xcg.json | 8 ++------
.../05/GHSA-g7xr-j224-9v5w/GHSA-g7xr-j224-9v5w.json | 8 ++------
.../05/GHSA-g84g-mfq4-3j25/GHSA-g84g-mfq4-3j25.json | 12 +++---------
.../05/GHSA-g865-qffp-7p34/GHSA-g865-qffp-7p34.json | 12 +++---------
.../05/GHSA-g8gx-qw66-2h8p/GHSA-g8gx-qw66-2h8p.json | 12 +++---------
.../05/GHSA-g8vh-p2qj-p47f/GHSA-g8vh-p2qj-p47f.json | 12 +++---------
.../05/GHSA-g98w-7j97-6fwr/GHSA-g98w-7j97-6fwr.json | 8 ++------
.../05/GHSA-gc9r-m22v-q2fm/GHSA-gc9r-m22v-q2fm.json | 12 +++---------
.../05/GHSA-gcf7-rjxq-p38r/GHSA-gcf7-rjxq-p38r.json | 4 +---
.../05/GHSA-gfmc-9mq3-93wp/GHSA-gfmc-9mq3-93wp.json | 12 +++---------
.../05/GHSA-gfmf-359c-h8m7/GHSA-gfmf-359c-h8m7.json | 12 +++---------
.../05/GHSA-gg3j-j3hx-hjx5/GHSA-gg3j-j3hx-hjx5.json | 4 +---
.../05/GHSA-ggg2-5wvj-2mxq/GHSA-ggg2-5wvj-2mxq.json | 12 +++---------
.../05/GHSA-ghc3-98rw-xq4v/GHSA-ghc3-98rw-xq4v.json | 4 +---
.../05/GHSA-ghqc-2jjw-x2g3/GHSA-ghqc-2jjw-x2g3.json | 4 +---
.../05/GHSA-ghww-7m6r-mpp8/GHSA-ghww-7m6r-mpp8.json | 8 ++------
.../05/GHSA-gm2g-pw66-2fvw/GHSA-gm2g-pw66-2fvw.json | 12 +++---------
.../05/GHSA-gm9h-7h2x-8v7p/GHSA-gm9h-7h2x-8v7p.json | 4 +---
.../05/GHSA-gmf4-h5jx-m84h/GHSA-gmf4-h5jx-m84h.json | 12 +++---------
.../05/GHSA-gprr-5hc4-pp2m/GHSA-gprr-5hc4-pp2m.json | 4 +---
.../05/GHSA-gqp2-v2c6-5q8j/GHSA-gqp2-v2c6-5q8j.json | 12 +++---------
.../05/GHSA-gqv9-7grx-4w32/GHSA-gqv9-7grx-4w32.json | 4 +---
.../05/GHSA-gr24-m2h5-6j5g/GHSA-gr24-m2h5-6j5g.json | 8 ++------
.../05/GHSA-grf2-742h-45gp/GHSA-grf2-742h-45gp.json | 4 +---
.../05/GHSA-gwh5-9c63-xh38/GHSA-gwh5-9c63-xh38.json | 12 +++---------
.../05/GHSA-gwjm-w339-m6p5/GHSA-gwjm-w339-m6p5.json | 12 +++---------
.../05/GHSA-gwvg-fqv9-jc46/GHSA-gwvg-fqv9-jc46.json | 12 +++---------
.../05/GHSA-gww5-4w7g-8gw6/GHSA-gww5-4w7g-8gw6.json | 12 +++---------
.../05/GHSA-gww6-fq7j-fjmw/GHSA-gww6-fq7j-fjmw.json | 4 +---
.../05/GHSA-gxxw-7rf9-h6ch/GHSA-gxxw-7rf9-h6ch.json | 12 +++---------
.../05/GHSA-h2hv-gpr9-gq4m/GHSA-h2hv-gpr9-gq4m.json | 8 ++------
.../05/GHSA-h32x-cwv5-64xp/GHSA-h32x-cwv5-64xp.json | 12 +++---------
.../05/GHSA-h3j9-g643-p927/GHSA-h3j9-g643-p927.json | 12 +++---------
.../05/GHSA-h5px-vw3j-qpg6/GHSA-h5px-vw3j-qpg6.json | 8 ++------
.../05/GHSA-h5x8-g98g-j9vp/GHSA-h5x8-g98g-j9vp.json | 12 +++---------
.../05/GHSA-h89x-p6mf-35px/GHSA-h89x-p6mf-35px.json | 8 ++------
.../05/GHSA-h8fv-hhpf-m296/GHSA-h8fv-hhpf-m296.json | 8 ++------
.../05/GHSA-h8g9-jwcj-22mf/GHSA-h8g9-jwcj-22mf.json | 12 +++---------
.../05/GHSA-h8q5-7rfq-93xx/GHSA-h8q5-7rfq-93xx.json | 12 +++---------
.../05/GHSA-h983-ghm9-c6xh/GHSA-h983-ghm9-c6xh.json | 12 +++---------
.../05/GHSA-h9hm-7fpp-hmf3/GHSA-h9hm-7fpp-hmf3.json | 8 ++------
.../05/GHSA-hc29-7pc8-xhxq/GHSA-hc29-7pc8-xhxq.json | 8 ++------
.../05/GHSA-hcq5-84v9-8hvq/GHSA-hcq5-84v9-8hvq.json | 12 +++---------
.../05/GHSA-hcqx-rg27-pcqw/GHSA-hcqx-rg27-pcqw.json | 12 +++---------
.../05/GHSA-hf7x-2m78-pj84/GHSA-hf7x-2m78-pj84.json | 12 +++---------
.../05/GHSA-hg68-w53w-phj5/GHSA-hg68-w53w-phj5.json | 8 ++------
.../05/GHSA-hgpx-p633-f45j/GHSA-hgpx-p633-f45j.json | 12 +++---------
.../05/GHSA-hgvc-337r-f6w5/GHSA-hgvc-337r-f6w5.json | 8 ++------
.../05/GHSA-hhpq-j479-x68h/GHSA-hhpq-j479-x68h.json | 8 ++------
.../05/GHSA-hhrv-j6cc-jr4p/GHSA-hhrv-j6cc-jr4p.json | 8 ++------
.../05/GHSA-hj5h-m694-6v6q/GHSA-hj5h-m694-6v6q.json | 4 +---
.../05/GHSA-hjvf-7vx2-frwx/GHSA-hjvf-7vx2-frwx.json | 8 ++------
.../05/GHSA-hm64-99f5-q8f6/GHSA-hm64-99f5-q8f6.json | 8 ++------
.../05/GHSA-hmr5-2cr2-m4hv/GHSA-hmr5-2cr2-m4hv.json | 12 +++---------
.../05/GHSA-hmxx-vvw4-43vc/GHSA-hmxx-vvw4-43vc.json | 4 +---
.../05/GHSA-hpfx-wv7q-52qw/GHSA-hpfx-wv7q-52qw.json | 4 +---
.../05/GHSA-hpp8-r26f-qr9w/GHSA-hpp8-r26f-qr9w.json | 8 ++------
.../05/GHSA-hq77-gw5q-x5p4/GHSA-hq77-gw5q-x5p4.json | 8 ++------
.../05/GHSA-hvf8-gjqf-gh84/GHSA-hvf8-gjqf-gh84.json | 12 +++---------
.../05/GHSA-hvm5-44j4-v5j4/GHSA-hvm5-44j4-v5j4.json | 12 +++---------
.../05/GHSA-hvq9-frhw-562q/GHSA-hvq9-frhw-562q.json | 8 ++------
.../05/GHSA-hvvf-8784-846m/GHSA-hvvf-8784-846m.json | 4 +---
.../05/GHSA-hx3v-wmpr-r7fv/GHSA-hx3v-wmpr-r7fv.json | 4 +---
.../05/GHSA-j2p4-5vr6-m8qq/GHSA-j2p4-5vr6-m8qq.json | 12 +++---------
.../05/GHSA-j2r8-2vxg-pxvh/GHSA-j2r8-2vxg-pxvh.json | 12 +++---------
.../05/GHSA-j5f4-f637-3cpx/GHSA-j5f4-f637-3cpx.json | 12 +++---------
.../05/GHSA-j6q8-cg8v-gwjc/GHSA-j6q8-cg8v-gwjc.json | 12 +++---------
.../05/GHSA-j6xj-3fcj-qfv2/GHSA-j6xj-3fcj-qfv2.json | 8 ++------
.../05/GHSA-j8hp-f3xj-cw3f/GHSA-j8hp-f3xj-cw3f.json | 8 ++------
.../05/GHSA-j979-qq9c-28r6/GHSA-j979-qq9c-28r6.json | 8 ++------
.../05/GHSA-j9c6-4m8h-r73j/GHSA-j9c6-4m8h-r73j.json | 12 +++---------
.../05/GHSA-jcf4-gv32-hf7c/GHSA-jcf4-gv32-hf7c.json | 8 ++------
.../05/GHSA-jcph-f36w-q69j/GHSA-jcph-f36w-q69j.json | 12 +++---------
.../05/GHSA-jcrw-j44c-w7hp/GHSA-jcrw-j44c-w7hp.json | 8 ++------
.../05/GHSA-jgjc-v4px-jhvp/GHSA-jgjc-v4px-jhvp.json | 8 ++------
.../05/GHSA-jh8q-56fp-xqg3/GHSA-jh8q-56fp-xqg3.json | 12 +++---------
.../05/GHSA-jhjm-hxhv-h29w/GHSA-jhjm-hxhv-h29w.json | 8 ++------
.../05/GHSA-jj68-3m94-5qj6/GHSA-jj68-3m94-5qj6.json | 8 ++------
.../05/GHSA-jjch-96hp-496c/GHSA-jjch-96hp-496c.json | 8 ++------
.../05/GHSA-jjr7-489f-2ccr/GHSA-jjr7-489f-2ccr.json | 8 ++------
.../05/GHSA-jmjc-rh8r-gw8j/GHSA-jmjc-rh8r-gw8j.json | 12 +++---------
.../05/GHSA-jpvw-hmxx-xwr3/GHSA-jpvw-hmxx-xwr3.json | 8 ++------
.../05/GHSA-jqvv-p84x-4w7w/GHSA-jqvv-p84x-4w7w.json | 12 +++---------
.../05/GHSA-jv68-xw7p-xh9p/GHSA-jv68-xw7p-xh9p.json | 8 ++------
.../05/GHSA-jvmr-3jh4-3fqq/GHSA-jvmr-3jh4-3fqq.json | 12 +++---------
.../05/GHSA-jvpc-f4hv-p966/GHSA-jvpc-f4hv-p966.json | 8 ++------
.../05/GHSA-jvq3-qvh3-fg4x/GHSA-jvq3-qvh3-fg4x.json | 12 +++---------
.../05/GHSA-jx2v-j353-9rr5/GHSA-jx2v-j353-9rr5.json | 8 ++------
.../05/GHSA-m2p3-h7m7-xg45/GHSA-m2p3-h7m7-xg45.json | 4 +---
.../05/GHSA-m2r4-595q-cv76/GHSA-m2r4-595q-cv76.json | 12 +++---------
.../05/GHSA-m35q-rjh7-mvv9/GHSA-m35q-rjh7-mvv9.json | 12 +++---------
.../05/GHSA-m3fg-79jj-j423/GHSA-m3fg-79jj-j423.json | 12 +++---------
.../05/GHSA-m6p5-m5xh-8xgm/GHSA-m6p5-m5xh-8xgm.json | 4 +---
.../05/GHSA-m75m-4638-76jj/GHSA-m75m-4638-76jj.json | 8 ++------
.../05/GHSA-m7c5-9grq-3jqp/GHSA-m7c5-9grq-3jqp.json | 8 ++------
.../05/GHSA-m7fp-prqm-7g83/GHSA-m7fp-prqm-7g83.json | 8 ++------
.../05/GHSA-m869-gqp5-gp25/GHSA-m869-gqp5-gp25.json | 4 +---
.../05/GHSA-m8c4-xqv6-7xvq/GHSA-m8c4-xqv6-7xvq.json | 4 +---
.../05/GHSA-m8w7-p4mm-8fvq/GHSA-m8w7-p4mm-8fvq.json | 12 +++---------
.../05/GHSA-m94w-7wg8-j43q/GHSA-m94w-7wg8-j43q.json | 4 +---
.../05/GHSA-mcqx-w3j9-p34h/GHSA-mcqx-w3j9-p34h.json | 8 ++------
.../05/GHSA-mf6p-mrq3-gvpc/GHSA-mf6p-mrq3-gvpc.json | 8 ++------
.../05/GHSA-mfjg-5h64-2j5w/GHSA-mfjg-5h64-2j5w.json | 8 ++------
.../05/GHSA-mfmg-j678-28xm/GHSA-mfmg-j678-28xm.json | 12 +++---------
.../05/GHSA-mfw2-9hw6-j862/GHSA-mfw2-9hw6-j862.json | 12 +++---------
.../05/GHSA-mfxx-2mgm-m56x/GHSA-mfxx-2mgm-m56x.json | 8 ++------
.../05/GHSA-mg5q-vf65-gq3m/GHSA-mg5q-vf65-gq3m.json | 4 +---
.../05/GHSA-mg98-h89p-whc8/GHSA-mg98-h89p-whc8.json | 8 ++------
.../05/GHSA-mgf9-3fp9-mhfh/GHSA-mgf9-3fp9-mhfh.json | 12 +++---------
.../05/GHSA-mgm8-hx5r-428f/GHSA-mgm8-hx5r-428f.json | 8 ++------
.../05/GHSA-mgxf-vcjq-jp2v/GHSA-mgxf-vcjq-jp2v.json | 4 +---
.../05/GHSA-mj48-h3vq-rr5x/GHSA-mj48-h3vq-rr5x.json | 12 +++---------
.../05/GHSA-mjp9-97x3-23vj/GHSA-mjp9-97x3-23vj.json | 4 +---
.../05/GHSA-mm5c-4jm5-55w5/GHSA-mm5c-4jm5-55w5.json | 8 ++------
.../05/GHSA-mm6m-mjq9-r299/GHSA-mm6m-mjq9-r299.json | 8 ++------
.../05/GHSA-mmcf-56h8-qj8f/GHSA-mmcf-56h8-qj8f.json | 8 ++------
.../05/GHSA-mmmq-7mrq-vp86/GHSA-mmmq-7mrq-vp86.json | 12 +++---------
.../05/GHSA-mp3h-grqr-5cpp/GHSA-mp3h-grqr-5cpp.json | 12 +++---------
.../05/GHSA-mqfx-478h-43p4/GHSA-mqfx-478h-43p4.json | 8 ++------
.../05/GHSA-mqhv-333r-6q9x/GHSA-mqhv-333r-6q9x.json | 12 +++---------
.../05/GHSA-mrhq-47wm-2m8c/GHSA-mrhq-47wm-2m8c.json | 8 ++------
.../05/GHSA-mrqv-c428-3hfp/GHSA-mrqv-c428-3hfp.json | 8 ++------
.../05/GHSA-mv4w-xjh5-2h8g/GHSA-mv4w-xjh5-2h8g.json | 8 ++------
.../05/GHSA-mvg2-8fw5-5jq6/GHSA-mvg2-8fw5-5jq6.json | 8 ++------
.../05/GHSA-mvwv-xww2-xj42/GHSA-mvwv-xww2-xj42.json | 8 ++------
.../05/GHSA-mwmg-h4j2-456g/GHSA-mwmg-h4j2-456g.json | 12 +++---------
.../05/GHSA-mwvf-gp9c-72fv/GHSA-mwvf-gp9c-72fv.json | 8 ++------
.../05/GHSA-mxcj-7pjj-p9r6/GHSA-mxcj-7pjj-p9r6.json | 12 +++---------
.../05/GHSA-p398-w3qj-5ffv/GHSA-p398-w3qj-5ffv.json | 4 +---
.../05/GHSA-p3wm-5jfq-m55m/GHSA-p3wm-5jfq-m55m.json | 8 ++------
.../05/GHSA-p43r-5w94-6hh4/GHSA-p43r-5w94-6hh4.json | 12 +++---------
.../05/GHSA-p4xr-jqqm-52ww/GHSA-p4xr-jqqm-52ww.json | 12 +++---------
.../05/GHSA-p542-8xvj-878h/GHSA-p542-8xvj-878h.json | 8 ++------
.../05/GHSA-p6gq-8rmc-rp54/GHSA-p6gq-8rmc-rp54.json | 12 +++---------
.../05/GHSA-p6m7-52v7-q7mq/GHSA-p6m7-52v7-q7mq.json | 12 +++---------
.../05/GHSA-p7gv-qvfm-xf29/GHSA-p7gv-qvfm-xf29.json | 12 +++---------
.../05/GHSA-p7jp-v69p-p9c2/GHSA-p7jp-v69p-p9c2.json | 8 ++------
.../05/GHSA-p7p7-87c7-96jp/GHSA-p7p7-87c7-96jp.json | 12 +++---------
.../05/GHSA-p92j-cfjv-cprv/GHSA-p92j-cfjv-cprv.json | 8 ++------
.../05/GHSA-p94p-g8gv-rwqr/GHSA-p94p-g8gv-rwqr.json | 12 +++---------
.../05/GHSA-p956-w6xf-6v9r/GHSA-p956-w6xf-6v9r.json | 4 +---
.../05/GHSA-p9p9-hfpr-fx4f/GHSA-p9p9-hfpr-fx4f.json | 8 ++------
.../05/GHSA-p9vq-4x36-h8pq/GHSA-p9vq-4x36-h8pq.json | 8 ++------
.../05/GHSA-pc3g-mmhq-h9c9/GHSA-pc3g-mmhq-h9c9.json | 8 ++------
.../05/GHSA-pcp6-78c3-f6x9/GHSA-pcp6-78c3-f6x9.json | 12 +++---------
.../05/GHSA-pf48-fgcx-8ph4/GHSA-pf48-fgcx-8ph4.json | 4 +---
.../05/GHSA-pgjj-gq5v-p74w/GHSA-pgjj-gq5v-p74w.json | 4 +---
.../05/GHSA-pgr9-9qhh-mp2r/GHSA-pgr9-9qhh-mp2r.json | 12 +++---------
.../05/GHSA-pjf2-m942-xfgr/GHSA-pjf2-m942-xfgr.json | 12 +++---------
.../05/GHSA-pm3w-372v-84mv/GHSA-pm3w-372v-84mv.json | 12 +++---------
.../05/GHSA-pmgg-r9mr-52mp/GHSA-pmgg-r9mr-52mp.json | 12 +++---------
.../05/GHSA-ppfq-mv49-7cm9/GHSA-ppfq-mv49-7cm9.json | 8 ++------
.../05/GHSA-ppm6-8p65-j9xg/GHSA-ppm6-8p65-j9xg.json | 8 ++------
.../05/GHSA-pqhh-3p5w-253m/GHSA-pqhh-3p5w-253m.json | 12 +++---------
.../05/GHSA-pqvr-m7xp-v679/GHSA-pqvr-m7xp-v679.json | 4 +---
.../05/GHSA-pv85-r7p2-8r62/GHSA-pv85-r7p2-8r62.json | 4 +---
.../05/GHSA-pvg4-29vg-mvc4/GHSA-pvg4-29vg-mvc4.json | 8 ++------
.../05/GHSA-pvm2-jp69-rx5f/GHSA-pvm2-jp69-rx5f.json | 12 +++---------
.../05/GHSA-pwmv-666f-8qgp/GHSA-pwmv-666f-8qgp.json | 12 +++---------
.../05/GHSA-px96-3hch-vchj/GHSA-px96-3hch-vchj.json | 4 +---
.../05/GHSA-px9v-f56w-8qv4/GHSA-px9v-f56w-8qv4.json | 12 +++---------
.../05/GHSA-pxhx-2v5w-x5mg/GHSA-pxhx-2v5w-x5mg.json | 8 ++------
.../05/GHSA-pxw3-82pf-w6pr/GHSA-pxw3-82pf-w6pr.json | 4 +---
.../05/GHSA-q27h-gwfg-f2vw/GHSA-q27h-gwfg-f2vw.json | 8 ++------
.../05/GHSA-q29x-mfh5-79cf/GHSA-q29x-mfh5-79cf.json | 12 +++---------
.../05/GHSA-q3fc-6x2v-6ph8/GHSA-q3fc-6x2v-6ph8.json | 4 +---
.../05/GHSA-q3qm-mv93-frg5/GHSA-q3qm-mv93-frg5.json | 12 +++---------
.../05/GHSA-q427-f7q7-7hmc/GHSA-q427-f7q7-7hmc.json | 8 ++------
.../05/GHSA-q4jm-639h-26p9/GHSA-q4jm-639h-26p9.json | 4 +---
.../05/GHSA-q63m-9mjm-wp97/GHSA-q63m-9mjm-wp97.json | 12 +++---------
.../05/GHSA-q66x-hpg8-2g43/GHSA-q66x-hpg8-2g43.json | 4 +---
.../05/GHSA-q69w-42hm-p3qq/GHSA-q69w-42hm-p3qq.json | 8 ++------
.../05/GHSA-q7vp-g99f-gpfx/GHSA-q7vp-g99f-gpfx.json | 12 +++---------
.../05/GHSA-q867-77vc-2rp5/GHSA-q867-77vc-2rp5.json | 12 +++---------
.../05/GHSA-q964-x2rc-v787/GHSA-q964-x2rc-v787.json | 8 ++------
.../05/GHSA-q988-fh5q-8pqq/GHSA-q988-fh5q-8pqq.json | 4 +---
.../05/GHSA-q9hw-w9f9-xp3r/GHSA-q9hw-w9f9-xp3r.json | 8 ++------
.../05/GHSA-qf53-7c4q-f3hr/GHSA-qf53-7c4q-f3hr.json | 8 ++------
.../05/GHSA-qfp8-p689-pjw7/GHSA-qfp8-p689-pjw7.json | 12 +++---------
.../05/GHSA-qgm4-8wgg-r6hf/GHSA-qgm4-8wgg-r6hf.json | 4 +---
.../05/GHSA-qgxw-cvg4-3v23/GHSA-qgxw-cvg4-3v23.json | 12 +++---------
.../05/GHSA-qh8r-p5cp-mcqw/GHSA-qh8r-p5cp-mcqw.json | 8 ++------
.../05/GHSA-qhg7-26q2-q32q/GHSA-qhg7-26q2-q32q.json | 12 +++---------
.../05/GHSA-qhrg-96c8-3v5f/GHSA-qhrg-96c8-3v5f.json | 8 ++------
.../05/GHSA-qjcm-4w5p-gw32/GHSA-qjcm-4w5p-gw32.json | 4 +---
.../05/GHSA-qm58-3qrx-527w/GHSA-qm58-3qrx-527w.json | 12 +++---------
.../05/GHSA-qmg5-rx6w-h4h5/GHSA-qmg5-rx6w-h4h5.json | 8 ++------
.../05/GHSA-qmgh-7m25-rf68/GHSA-qmgh-7m25-rf68.json | 12 +++---------
.../05/GHSA-qp27-6p7x-jg7p/GHSA-qp27-6p7x-jg7p.json | 12 +++---------
.../05/GHSA-qp49-3rw5-9grv/GHSA-qp49-3rw5-9grv.json | 8 ++------
.../05/GHSA-qqqq-ffxc-7jj8/GHSA-qqqq-ffxc-7jj8.json | 12 +++---------
.../05/GHSA-qr6q-3xcr-gfvw/GHSA-qr6q-3xcr-gfvw.json | 4 +---
.../05/GHSA-qr75-p6pj-98jh/GHSA-qr75-p6pj-98jh.json | 12 +++---------
.../05/GHSA-qrw3-hgw6-7wf4/GHSA-qrw3-hgw6-7wf4.json | 8 ++------
.../05/GHSA-qv24-5wr9-m3mp/GHSA-qv24-5wr9-m3mp.json | 12 +++---------
.../05/GHSA-qv7p-rw6j-rmc4/GHSA-qv7p-rw6j-rmc4.json | 8 ++------
.../05/GHSA-qvf6-3rc2-4x45/GHSA-qvf6-3rc2-4x45.json | 8 ++------
.../05/GHSA-qvxr-p75h-g8h9/GHSA-qvxr-p75h-g8h9.json | 12 +++---------
.../05/GHSA-qw4x-8f78-c38x/GHSA-qw4x-8f78-c38x.json | 12 +++---------
.../05/GHSA-qw99-59fj-mwq3/GHSA-qw99-59fj-mwq3.json | 8 ++------
.../05/GHSA-qwjc-5gc9-97xh/GHSA-qwjc-5gc9-97xh.json | 8 ++------
.../05/GHSA-qxc5-6f67-jc5c/GHSA-qxc5-6f67-jc5c.json | 8 ++------
.../05/GHSA-qxg2-qjfr-5899/GHSA-qxg2-qjfr-5899.json | 4 +---
.../05/GHSA-qxgv-94gq-m36h/GHSA-qxgv-94gq-m36h.json | 8 ++------
.../05/GHSA-qxh5-j4mp-pchg/GHSA-qxh5-j4mp-pchg.json | 12 +++---------
.../05/GHSA-r386-j6gx-vhwr/GHSA-r386-j6gx-vhwr.json | 12 +++---------
.../05/GHSA-r438-g78v-652j/GHSA-r438-g78v-652j.json | 12 +++---------
.../05/GHSA-r45j-hxvq-fmm8/GHSA-r45j-hxvq-fmm8.json | 12 +++---------
.../05/GHSA-r46j-8frc-xvvq/GHSA-r46j-8frc-xvvq.json | 8 ++------
.../05/GHSA-r52x-4q2c-93mg/GHSA-r52x-4q2c-93mg.json | 8 ++------
.../05/GHSA-r5c5-5849-8rr9/GHSA-r5c5-5849-8rr9.json | 12 +++---------
.../05/GHSA-r5fq-f973-98jc/GHSA-r5fq-f973-98jc.json | 4 +---
.../05/GHSA-r5wg-v848-8x3g/GHSA-r5wg-v848-8x3g.json | 8 ++------
.../05/GHSA-r822-pwxw-5qc9/GHSA-r822-pwxw-5qc9.json | 12 +++---------
.../05/GHSA-r9p2-4jr9-w24j/GHSA-r9p2-4jr9-w24j.json | 8 ++------
.../05/GHSA-r9pq-w63p-7296/GHSA-r9pq-w63p-7296.json | 12 +++---------
.../05/GHSA-rf44-cp45-ppcv/GHSA-rf44-cp45-ppcv.json | 4 +---
.../05/GHSA-rfx6-wj86-768g/GHSA-rfx6-wj86-768g.json | 4 +---
.../05/GHSA-rghg-gw3p-2f8w/GHSA-rghg-gw3p-2f8w.json | 8 ++------
.../05/GHSA-rh9m-8vch-h2gr/GHSA-rh9m-8vch-h2gr.json | 12 +++---------
.../05/GHSA-rhh4-95cw-qqvp/GHSA-rhh4-95cw-qqvp.json | 12 +++---------
.../05/GHSA-rhwg-2g63-9m63/GHSA-rhwg-2g63-9m63.json | 8 ++------
.../05/GHSA-rm2w-v49j-gx7w/GHSA-rm2w-v49j-gx7w.json | 8 ++------
.../05/GHSA-rmcg-hfrp-gr58/GHSA-rmcg-hfrp-gr58.json | 12 +++---------
.../05/GHSA-rmj6-8688-qrrc/GHSA-rmj6-8688-qrrc.json | 12 +++---------
.../05/GHSA-rpr9-8jrq-2f24/GHSA-rpr9-8jrq-2f24.json | 8 ++------
.../05/GHSA-rq77-jwg8-cmgx/GHSA-rq77-jwg8-cmgx.json | 8 ++------
.../05/GHSA-rrph-hg92-78p7/GHSA-rrph-hg92-78p7.json | 8 ++------
.../05/GHSA-rv62-hr8r-jr2p/GHSA-rv62-hr8r-jr2p.json | 8 ++------
.../05/GHSA-rvxj-mfpp-v4wm/GHSA-rvxj-mfpp-v4wm.json | 4 +---
.../05/GHSA-rw3m-rqw9-p6rw/GHSA-rw3m-rqw9-p6rw.json | 12 +++---------
.../05/GHSA-rx5m-j84j-22pg/GHSA-rx5m-j84j-22pg.json | 4 +---
.../05/GHSA-v2mw-w6vx-hf28/GHSA-v2mw-w6vx-hf28.json | 8 ++------
.../05/GHSA-v4cp-452c-q84g/GHSA-v4cp-452c-q84g.json | 8 ++------
.../05/GHSA-v4p4-65gh-94f7/GHSA-v4p4-65gh-94f7.json | 4 +---
.../05/GHSA-v586-4xh5-67mm/GHSA-v586-4xh5-67mm.json | 4 +---
.../05/GHSA-v5c3-w6m2-m2qv/GHSA-v5c3-w6m2-m2qv.json | 12 +++---------
.../05/GHSA-v5xm-v4c7-6hcj/GHSA-v5xm-v4c7-6hcj.json | 8 ++------
.../05/GHSA-v68v-m7xj-6wc2/GHSA-v68v-m7xj-6wc2.json | 8 ++------
.../05/GHSA-v6jj-68q8-6xhq/GHSA-v6jj-68q8-6xhq.json | 8 ++------
.../05/GHSA-v89x-7433-3jxh/GHSA-v89x-7433-3jxh.json | 12 +++---------
.../05/GHSA-v8j4-378q-qp8v/GHSA-v8j4-378q-qp8v.json | 4 +---
.../05/GHSA-v9rw-w6gg-x642/GHSA-v9rw-w6gg-x642.json | 12 +++---------
.../05/GHSA-vc23-9q3p-jq7c/GHSA-vc23-9q3p-jq7c.json | 8 ++------
.../05/GHSA-vc77-rwwc-jf2g/GHSA-vc77-rwwc-jf2g.json | 12 +++---------
.../05/GHSA-vc88-f7p6-j84m/GHSA-vc88-f7p6-j84m.json | 4 +---
.../05/GHSA-vfqm-2wv5-9h3w/GHSA-vfqm-2wv5-9h3w.json | 12 +++---------
.../05/GHSA-vgjg-q2cg-9f2h/GHSA-vgjg-q2cg-9f2h.json | 8 ++------
.../05/GHSA-vh23-x25h-2wfm/GHSA-vh23-x25h-2wfm.json | 4 +---
.../05/GHSA-vh8c-94c5-w6j8/GHSA-vh8c-94c5-w6j8.json | 4 +---
.../05/GHSA-vmc8-ggh9-8p8j/GHSA-vmc8-ggh9-8p8j.json | 4 +---
.../05/GHSA-vp7g-8h84-vpvf/GHSA-vp7g-8h84-vpvf.json | 8 ++------
.../05/GHSA-vp7h-9vpx-8f6p/GHSA-vp7h-9vpx-8f6p.json | 12 +++---------
.../05/GHSA-vqj2-9hq2-7c6g/GHSA-vqj2-9hq2-7c6g.json | 8 ++------
.../05/GHSA-vrcq-g4r8-v287/GHSA-vrcq-g4r8-v287.json | 4 +---
.../05/GHSA-vvhw-4qgc-4wp7/GHSA-vvhw-4qgc-4wp7.json | 12 +++---------
.../05/GHSA-vw38-5mf5-hqv3/GHSA-vw38-5mf5-hqv3.json | 12 +++---------
.../05/GHSA-vwwp-xxc4-56gp/GHSA-vwwp-xxc4-56gp.json | 8 ++------
.../05/GHSA-vxmg-7pg5-vhxm/GHSA-vxmg-7pg5-vhxm.json | 12 +++---------
.../05/GHSA-w24q-f35x-3g4m/GHSA-w24q-f35x-3g4m.json | 4 +---
.../05/GHSA-w2h8-f75c-6252/GHSA-w2h8-f75c-6252.json | 12 +++---------
.../05/GHSA-w3cg-4xg3-cxm4/GHSA-w3cg-4xg3-cxm4.json | 8 ++------
.../05/GHSA-w3hq-3rvc-jpmf/GHSA-w3hq-3rvc-jpmf.json | 12 +++---------
.../05/GHSA-w3jg-chmx-cm3v/GHSA-w3jg-chmx-cm3v.json | 12 +++---------
.../05/GHSA-w4jj-vx53-2479/GHSA-w4jj-vx53-2479.json | 12 +++---------
.../05/GHSA-w5fp-vcxc-h7jg/GHSA-w5fp-vcxc-h7jg.json | 8 ++------
.../05/GHSA-w5gm-7fc6-33wj/GHSA-w5gm-7fc6-33wj.json | 4 +---
.../05/GHSA-w5h2-5mxp-pf9h/GHSA-w5h2-5mxp-pf9h.json | 8 ++------
.../05/GHSA-w5jh-cf2h-28xw/GHSA-w5jh-cf2h-28xw.json | 12 +++---------
.../05/GHSA-w5vm-6v5c-j433/GHSA-w5vm-6v5c-j433.json | 12 +++---------
.../05/GHSA-w5w4-523j-qm3v/GHSA-w5w4-523j-qm3v.json | 4 +---
.../05/GHSA-w652-7xxf-6qpf/GHSA-w652-7xxf-6qpf.json | 12 +++---------
.../05/GHSA-w765-p6jv-84pr/GHSA-w765-p6jv-84pr.json | 8 ++------
.../05/GHSA-w83r-49rg-9jfv/GHSA-w83r-49rg-9jfv.json | 4 +---
.../05/GHSA-w84w-j6c8-4wrq/GHSA-w84w-j6c8-4wrq.json | 12 +++---------
.../05/GHSA-w859-pxm6-vjr6/GHSA-w859-pxm6-vjr6.json | 8 ++------
.../05/GHSA-w8m9-h9m6-p528/GHSA-w8m9-h9m6-p528.json | 8 ++------
.../05/GHSA-w97c-w37x-wrj9/GHSA-w97c-w37x-wrj9.json | 12 +++---------
.../05/GHSA-wf63-pf87-93v4/GHSA-wf63-pf87-93v4.json | 12 +++---------
.../05/GHSA-wf73-pxpq-869j/GHSA-wf73-pxpq-869j.json | 8 ++------
.../05/GHSA-wf74-jqp7-237w/GHSA-wf74-jqp7-237w.json | 8 ++------
.../05/GHSA-wgx3-89qx-v29j/GHSA-wgx3-89qx-v29j.json | 4 +---
.../05/GHSA-whv2-gp66-q464/GHSA-whv2-gp66-q464.json | 4 +---
.../05/GHSA-wj6q-x875-fqx7/GHSA-wj6q-x875-fqx7.json | 4 +---
.../05/GHSA-wmfq-gprv-vw9c/GHSA-wmfq-gprv-vw9c.json | 8 ++------
.../05/GHSA-wpf8-fhx2-jrw4/GHSA-wpf8-fhx2-jrw4.json | 12 +++---------
.../05/GHSA-wq7h-x8rp-qhq7/GHSA-wq7h-x8rp-qhq7.json | 4 +---
.../05/GHSA-wqgg-wcjm-mhc9/GHSA-wqgg-wcjm-mhc9.json | 4 +---
.../05/GHSA-wqr3-vhcr-cmvv/GHSA-wqr3-vhcr-cmvv.json | 12 +++---------
.../05/GHSA-wqv3-pjv9-g8pv/GHSA-wqv3-pjv9-g8pv.json | 12 +++---------
.../05/GHSA-wrj6-2482-855x/GHSA-wrj6-2482-855x.json | 8 ++------
.../05/GHSA-wvgj-8crv-qh5h/GHSA-wvgj-8crv-qh5h.json | 12 +++---------
.../05/GHSA-wvjj-6mc9-hcpm/GHSA-wvjj-6mc9-hcpm.json | 12 +++---------
.../05/GHSA-ww7w-rxj3-c9r3/GHSA-ww7w-rxj3-c9r3.json | 12 +++---------
.../05/GHSA-wwj2-hpx3-j824/GHSA-wwj2-hpx3-j824.json | 12 +++---------
.../05/GHSA-wx9x-3hjm-589w/GHSA-wx9x-3hjm-589w.json | 8 ++------
.../05/GHSA-x2h6-2q5c-v7px/GHSA-x2h6-2q5c-v7px.json | 12 +++---------
.../05/GHSA-x3v7-9xjv-vmwp/GHSA-x3v7-9xjv-vmwp.json | 8 ++------
.../05/GHSA-x43f-4fv4-5h9f/GHSA-x43f-4fv4-5h9f.json | 8 ++------
.../05/GHSA-x445-9gh4-vqh7/GHSA-x445-9gh4-vqh7.json | 12 +++---------
.../05/GHSA-x4w6-xc3h-38vf/GHSA-x4w6-xc3h-38vf.json | 12 +++---------
.../05/GHSA-x57w-969p-qrv9/GHSA-x57w-969p-qrv9.json | 8 ++------
.../05/GHSA-x78j-jjmg-frp2/GHSA-x78j-jjmg-frp2.json | 4 +---
.../05/GHSA-xc2j-r478-f27m/GHSA-xc2j-r478-f27m.json | 8 ++------
.../05/GHSA-xfwf-x9cr-g95x/GHSA-xfwf-x9cr-g95x.json | 8 ++------
.../05/GHSA-xgxr-7w9r-3m55/GHSA-xgxr-7w9r-3m55.json | 12 +++---------
.../05/GHSA-xhjw-w3xm-2hg5/GHSA-xhjw-w3xm-2hg5.json | 4 +---
.../05/GHSA-xj39-fv8g-v8mp/GHSA-xj39-fv8g-v8mp.json | 4 +---
.../05/GHSA-xj8f-hvrj-449w/GHSA-xj8f-hvrj-449w.json | 8 ++------
.../05/GHSA-xjg9-7m45-xm66/GHSA-xjg9-7m45-xm66.json | 4 +---
.../05/GHSA-xjjc-g3r4-r6xr/GHSA-xjjc-g3r4-r6xr.json | 12 +++---------
.../05/GHSA-xmmh-p8c3-hp79/GHSA-xmmh-p8c3-hp79.json | 12 +++---------
.../05/GHSA-xvp9-m6j4-rx4j/GHSA-xvp9-m6j4-rx4j.json | 4 +---
.../05/GHSA-xwx8-cmpp-vxmh/GHSA-xwx8-cmpp-vxmh.json | 8 ++------
.../05/GHSA-xwxc-4fjj-x6vq/GHSA-xwxc-4fjj-x6vq.json | 12 +++---------
.../05/GHSA-xxf9-g9h4-3pmj/GHSA-xxf9-g9h4-3pmj.json | 8 ++------
.../09/GHSA-3fp9-5j6q-rjrv/GHSA-3fp9-5j6q-rjrv.json | 4 +---
.../09/GHSA-5qmx-368f-v84x/GHSA-5qmx-368f-v84x.json | 8 ++------
.../09/GHSA-7r2q-xgr4-fqh3/GHSA-7r2q-xgr4-fqh3.json | 4 +---
.../09/GHSA-8cpj-v5f7-g2fm/GHSA-8cpj-v5f7-g2fm.json | 4 +---
.../09/GHSA-99pg-5rf4-r9x9/GHSA-99pg-5rf4-r9x9.json | 4 +---
.../09/GHSA-frxw-cc6c-jg2m/GHSA-frxw-cc6c-jg2m.json | 8 ++------
.../09/GHSA-gc28-55g9-f45f/GHSA-gc28-55g9-f45f.json | 4 +---
.../09/GHSA-ggm8-hg26-3666/GHSA-ggm8-hg26-3666.json | 4 +---
.../09/GHSA-h22c-cgp5-g8fw/GHSA-h22c-cgp5-g8fw.json | 8 ++------
.../09/GHSA-p5jc-cxx9-p4rp/GHSA-p5jc-cxx9-p4rp.json | 4 +---
.../09/GHSA-pr99-75h9-2c37/GHSA-pr99-75h9-2c37.json | 4 +---
.../09/GHSA-q925-4hvg-j5pg/GHSA-q925-4hvg-j5pg.json | 8 ++------
.../09/GHSA-rp88-5vg5-8wx2/GHSA-rp88-5vg5-8wx2.json | 4 +---
.../09/GHSA-vfxc-vmpj-497v/GHSA-vfxc-vmpj-497v.json | 4 +---
.../09/GHSA-vm5p-493c-qpxg/GHSA-vm5p-493c-qpxg.json | 8 ++------
.../09/GHSA-wrp8-cmmv-vq5c/GHSA-wrp8-cmmv-vq5c.json | 8 ++------
.../10/GHSA-25h2-xj4x-29h3/GHSA-25h2-xj4x-29h3.json | 4 +---
.../10/GHSA-2c3m-gh26-vh52/GHSA-2c3m-gh26-vh52.json | 4 +---
.../10/GHSA-2g9p-2pv5-997p/GHSA-2g9p-2pv5-997p.json | 4 +---
.../10/GHSA-2hwj-v42x-jfwh/GHSA-2hwj-v42x-jfwh.json | 4 +---
.../10/GHSA-2q3q-5qjv-rrf3/GHSA-2q3q-5qjv-rrf3.json | 4 +---
.../10/GHSA-3cc5-pgvq-wh26/GHSA-3cc5-pgvq-wh26.json | 4 +---
.../10/GHSA-3mp9-x5q5-63w3/GHSA-3mp9-x5q5-63w3.json | 4 +---
.../10/GHSA-3qhw-3jqv-hq24/GHSA-3qhw-3jqv-hq24.json | 4 +---
.../10/GHSA-3rxj-99fp-83j6/GHSA-3rxj-99fp-83j6.json | 4 +---
.../10/GHSA-42qg-gfqm-p7q6/GHSA-42qg-gfqm-p7q6.json | 4 +---
.../10/GHSA-49cg-8r82-w824/GHSA-49cg-8r82-w824.json | 4 +---
.../10/GHSA-4mrm-8fhj-6fh8/GHSA-4mrm-8fhj-6fh8.json | 4 +---
.../10/GHSA-4pfj-29xq-qrx4/GHSA-4pfj-29xq-qrx4.json | 4 +---
.../10/GHSA-4v9h-r88h-8rcv/GHSA-4v9h-r88h-8rcv.json | 4 +---
.../10/GHSA-536p-5vmg-wqmx/GHSA-536p-5vmg-wqmx.json | 4 +---
.../10/GHSA-538m-8fp5-6x55/GHSA-538m-8fp5-6x55.json | 4 +---
.../10/GHSA-59hp-pm4h-6xr4/GHSA-59hp-pm4h-6xr4.json | 4 +---
.../10/GHSA-5qgj-73pm-mvf2/GHSA-5qgj-73pm-mvf2.json | 4 +---
.../10/GHSA-5wwh-hcgf-hr8q/GHSA-5wwh-hcgf-hr8q.json | 4 +---
.../10/GHSA-65jr-q7fr-5gcv/GHSA-65jr-q7fr-5gcv.json | 4 +---
.../10/GHSA-66vp-w6x5-r54g/GHSA-66vp-w6x5-r54g.json | 4 +---
.../10/GHSA-6gf8-3gqj-43hq/GHSA-6gf8-3gqj-43hq.json | 4 +---
.../10/GHSA-6prj-5r8w-3x38/GHSA-6prj-5r8w-3x38.json | 4 +---
.../10/GHSA-735p-82qp-4wm2/GHSA-735p-82qp-4wm2.json | 4 +---
.../10/GHSA-787w-9xwh-m393/GHSA-787w-9xwh-m393.json | 4 +---
.../10/GHSA-7fxv-pr9h-f54r/GHSA-7fxv-pr9h-f54r.json | 4 +---
.../10/GHSA-7hpj-mxfh-5j9j/GHSA-7hpj-mxfh-5j9j.json | 4 +---
.../10/GHSA-7jr9-w2r4-mr83/GHSA-7jr9-w2r4-mr83.json | 4 +---
.../10/GHSA-7mxx-778x-3hwg/GHSA-7mxx-778x-3hwg.json | 4 +---
.../10/GHSA-7r5g-2f64-p9hg/GHSA-7r5g-2f64-p9hg.json | 4 +---
.../10/GHSA-84x9-g98v-6qpc/GHSA-84x9-g98v-6qpc.json | 4 +---
.../10/GHSA-8g74-45pc-67v3/GHSA-8g74-45pc-67v3.json | 4 +---
.../10/GHSA-8gfp-vrw4-c7q9/GHSA-8gfp-vrw4-c7q9.json | 4 +---
.../10/GHSA-8qpc-p8g3-5v5f/GHSA-8qpc-p8g3-5v5f.json | 4 +---
.../10/GHSA-98m8-p59c-6hx7/GHSA-98m8-p59c-6hx7.json | 4 +---
.../10/GHSA-9c4c-j76h-qwm7/GHSA-9c4c-j76h-qwm7.json | 4 +---
.../10/GHSA-9m4h-cwgq-6cq2/GHSA-9m4h-cwgq-6cq2.json | 4 +---
.../10/GHSA-9vrx-xfr3-hfjj/GHSA-9vrx-xfr3-hfjj.json | 8 ++------
.../10/GHSA-cmx3-qvjw-r7jp/GHSA-cmx3-qvjw-r7jp.json | 4 +---
.../10/GHSA-cp4m-ghgj-x9w7/GHSA-cp4m-ghgj-x9w7.json | 4 +---
.../10/GHSA-f2r8-jjg8-4h22/GHSA-f2r8-jjg8-4h22.json | 4 +---
.../10/GHSA-f4hw-g4gh-mmch/GHSA-f4hw-g4gh-mmch.json | 8 ++------
.../10/GHSA-f56c-m4fp-2fhv/GHSA-f56c-m4fp-2fhv.json | 4 +---
.../10/GHSA-fjmp-762c-258c/GHSA-fjmp-762c-258c.json | 4 +---
.../10/GHSA-fpp7-4jrj-q54q/GHSA-fpp7-4jrj-q54q.json | 4 +---
.../10/GHSA-fq3r-v7q7-f72f/GHSA-fq3r-v7q7-f72f.json | 4 +---
.../10/GHSA-g3gp-3rff-x6qf/GHSA-g3gp-3rff-x6qf.json | 4 +---
.../10/GHSA-g6pv-x43g-wx66/GHSA-g6pv-x43g-wx66.json | 4 +---
.../10/GHSA-gjm6-3c4q-m6rg/GHSA-gjm6-3c4q-m6rg.json | 4 +---
.../10/GHSA-gp5m-364j-vjhq/GHSA-gp5m-364j-vjhq.json | 4 +---
.../10/GHSA-gpfm-qqg7-xjcg/GHSA-gpfm-qqg7-xjcg.json | 4 +---
.../10/GHSA-gqvp-5g3v-2h3j/GHSA-gqvp-5g3v-2h3j.json | 4 +---
.../10/GHSA-h4vx-4v48-w8jh/GHSA-h4vx-4v48-w8jh.json | 4 +---
.../10/GHSA-h5qh-46xc-5w5h/GHSA-h5qh-46xc-5w5h.json | 4 +---
.../10/GHSA-h944-hpq6-6jpv/GHSA-h944-hpq6-6jpv.json | 8 ++------
.../10/GHSA-hvm3-wmf4-5r36/GHSA-hvm3-wmf4-5r36.json | 4 +---
.../10/GHSA-j32x-23xm-jj7g/GHSA-j32x-23xm-jj7g.json | 4 +---
.../10/GHSA-j4j6-6hfx-pfq5/GHSA-j4j6-6hfx-pfq5.json | 4 +---
.../10/GHSA-m634-qv6v-fgvh/GHSA-m634-qv6v-fgvh.json | 4 +---
.../10/GHSA-m9gm-hrp4-5r57/GHSA-m9gm-hrp4-5r57.json | 4 +---
.../10/GHSA-m9q7-h3j2-7cq3/GHSA-m9q7-h3j2-7cq3.json | 4 +---
.../10/GHSA-mgmj-2jxj-v92v/GHSA-mgmj-2jxj-v92v.json | 4 +---
.../10/GHSA-mm7p-j8qh-fwqg/GHSA-mm7p-j8qh-fwqg.json | 4 +---
.../10/GHSA-mpmg-7xg8-32q9/GHSA-mpmg-7xg8-32q9.json | 4 +---
.../10/GHSA-p589-wfww-6cff/GHSA-p589-wfww-6cff.json | 4 +---
.../10/GHSA-ph5x-2c83-pc9x/GHSA-ph5x-2c83-pc9x.json | 4 +---
.../10/GHSA-phvc-rjr5-r475/GHSA-phvc-rjr5-r475.json | 4 +---
.../10/GHSA-pvxg-rpp4-g743/GHSA-pvxg-rpp4-g743.json | 4 +---
.../10/GHSA-q4w7-f882-h6hc/GHSA-q4w7-f882-h6hc.json | 4 +---
.../10/GHSA-q7p6-wrxr-jgv7/GHSA-q7p6-wrxr-jgv7.json | 4 +---
.../10/GHSA-qjm8-ccv3-g62v/GHSA-qjm8-ccv3-g62v.json | 4 +---
.../10/GHSA-qqw8-fx85-65hc/GHSA-qqw8-fx85-65hc.json | 4 +---
.../10/GHSA-qvcw-p624-5mqm/GHSA-qvcw-p624-5mqm.json | 4 +---
.../10/GHSA-qwwj-2xhc-x8v6/GHSA-qwwj-2xhc-x8v6.json | 4 +---
.../10/GHSA-r5wj-2hf2-f2hg/GHSA-r5wj-2hf2-f2hg.json | 4 +---
.../10/GHSA-rh3c-6gpv-2c72/GHSA-rh3c-6gpv-2c72.json | 4 +---
.../10/GHSA-rx5r-m3j5-w4mc/GHSA-rx5r-m3j5-w4mc.json | 8 ++------
.../10/GHSA-v736-h5g7-qvj3/GHSA-v736-h5g7-qvj3.json | 4 +---
.../10/GHSA-v7qv-2wqg-22q9/GHSA-v7qv-2wqg-22q9.json | 4 +---
.../10/GHSA-vmxf-xq75-pgxr/GHSA-vmxf-xq75-pgxr.json | 4 +---
.../10/GHSA-vqx5-7wv4-cx38/GHSA-vqx5-7wv4-cx38.json | 4 +---
.../10/GHSA-vx3j-473c-2w6c/GHSA-vx3j-473c-2w6c.json | 4 +---
.../10/GHSA-w235-7jcc-8vf7/GHSA-w235-7jcc-8vf7.json | 4 +---
.../10/GHSA-w897-xc8j-4g89/GHSA-w897-xc8j-4g89.json | 4 +---
.../10/GHSA-wvhm-r52c-qwwh/GHSA-wvhm-r52c-qwwh.json | 4 +---
.../10/GHSA-x5g9-53m7-6g25/GHSA-x5g9-53m7-6g25.json | 4 +---
.../10/GHSA-x6w6-px77-g4xh/GHSA-x6w6-px77-g4xh.json | 4 +---
.../10/GHSA-x7cr-m698-6v6p/GHSA-x7cr-m698-6v6p.json | 4 +---
.../10/GHSA-xg7j-mpg2-2hvw/GHSA-xg7j-mpg2-2hvw.json | 4 +---
.../10/GHSA-xj24-hv97-964g/GHSA-xj24-hv97-964g.json | 4 +---
.../10/GHSA-xmqf-f454-4vvm/GHSA-xmqf-f454-4vvm.json | 4 +---
.../10/GHSA-xp38-vhvm-v2x7/GHSA-xp38-vhvm-v2x7.json | 4 +---
.../10/GHSA-xp6m-95m6-gvf5/GHSA-xp6m-95m6-gvf5.json | 4 +---
.../10/GHSA-xr49-7fhc-h2jh/GHSA-xr49-7fhc-h2jh.json | 4 +---
.../11/GHSA-84jc-66v3-f6w5/GHSA-84jc-66v3-f6w5.json | 4 +---
.../01/GHSA-37jc-5g37-mvjg/GHSA-37jc-5g37-mvjg.json | 4 +---
.../01/GHSA-3mw8-jr69-x96w/GHSA-3mw8-jr69-x96w.json | 4 +---
.../01/GHSA-42hc-v8w6-f575/GHSA-42hc-v8w6-f575.json | 4 +---
.../01/GHSA-45gq-c98p-x3m6/GHSA-45gq-c98p-x3m6.json | 4 +---
.../01/GHSA-4wqr-g68x-cv52/GHSA-4wqr-g68x-cv52.json | 4 +---
.../01/GHSA-5rvr-q6ff-gr2c/GHSA-5rvr-q6ff-gr2c.json | 4 +---
.../01/GHSA-66vg-fp7f-57vg/GHSA-66vg-fp7f-57vg.json | 4 +---
.../01/GHSA-6q37-hw9r-5p8c/GHSA-6q37-hw9r-5p8c.json | 8 ++------
.../01/GHSA-87v5-hm46-mgp6/GHSA-87v5-hm46-mgp6.json | 8 ++------
.../01/GHSA-fvjw-c4jh-fp27/GHSA-fvjw-c4jh-fp27.json | 4 +---
.../01/GHSA-g8v2-9qc2-2v9q/GHSA-g8v2-9qc2-2v9q.json | 4 +---
.../01/GHSA-p896-8j6m-mwc6/GHSA-p896-8j6m-mwc6.json | 8 ++------
.../01/GHSA-vv3x-748q-qw26/GHSA-vv3x-748q-qw26.json | 4 +---
.../01/GHSA-x63f-7pqq-c59r/GHSA-x63f-7pqq-c59r.json | 8 ++------
.../03/GHSA-8gf6-h6wm-2vf6/GHSA-8gf6-h6wm-2vf6.json | 4 +---
.../03/GHSA-g846-84w5-3m6g/GHSA-g846-84w5-3m6g.json | 4 +---
.../03/GHSA-qwf4-cj69-xwjh/GHSA-qwf4-cj69-xwjh.json | 4 +---
.../03/GHSA-wx96-h8xj-9x6g/GHSA-wx96-h8xj-9x6g.json | 4 +---
.../07/GHSA-4fmm-h427-wp43/GHSA-4fmm-h427-wp43.json | 4 +---
.../07/GHSA-f74p-rx9m-w4p5/GHSA-f74p-rx9m-w4p5.json | 4 +---
.../07/GHSA-gqrc-7g2r-3f7c/GHSA-gqrc-7g2r-3f7c.json | 4 +---
.../07/GHSA-hj7w-w9qg-3g7x/GHSA-hj7w-w9qg-3g7x.json | 4 +---
.../07/GHSA-p77r-crfj-p4f9/GHSA-p77r-crfj-p4f9.json | 4 +---
.../07/GHSA-pw6w-78w4-4phq/GHSA-pw6w-78w4-4phq.json | 4 +---
.../07/GHSA-q6pf-4873-rr8g/GHSA-q6pf-4873-rr8g.json | 4 +---
.../07/GHSA-qhmg-j24f-83q6/GHSA-qhmg-j24f-83q6.json | 4 +---
.../10/GHSA-4wjh-xmxc-5vrf/GHSA-4wjh-xmxc-5vrf.json | 4 +---
.../10/GHSA-56j6-xhw7-g4m5/GHSA-56j6-xhw7-g4m5.json | 4 +---
.../10/GHSA-6c33-h44r-qmjm/GHSA-6c33-h44r-qmjm.json | 4 +---
.../10/GHSA-7gw9-pq5q-m8hr/GHSA-7gw9-pq5q-m8hr.json | 4 +---
.../10/GHSA-jr3x-9mc3-xx67/GHSA-jr3x-9mc3-xx67.json | 4 +---
.../10/GHSA-mm2j-j435-wg8g/GHSA-mm2j-j435-wg8g.json | 4 +---
.../10/GHSA-qfgh-5h7f-2r9r/GHSA-qfgh-5h7f-2r9r.json | 4 +---
.../04/GHSA-24m8-r3wq-c97x/GHSA-24m8-r3wq-c97x.json | 4 +---
.../04/GHSA-28cr-jmcx-rqcp/GHSA-28cr-jmcx-rqcp.json | 12 +++---------
.../04/GHSA-2q8v-283f-c73j/GHSA-2q8v-283f-c73j.json | 12 +++---------
.../04/GHSA-4jv7-xrm9-5fjr/GHSA-4jv7-xrm9-5fjr.json | 12 +++---------
.../04/GHSA-5j77-g9r7-hpx3/GHSA-5j77-g9r7-hpx3.json | 4 +---
.../04/GHSA-66fh-rmm8-p9q4/GHSA-66fh-rmm8-p9q4.json | 12 +++---------
.../04/GHSA-7vqx-fpjm-pj2j/GHSA-7vqx-fpjm-pj2j.json | 12 +++---------
.../04/GHSA-84g6-j698-p58m/GHSA-84g6-j698-p58m.json | 12 +++---------
.../04/GHSA-882m-54cg-63q7/GHSA-882m-54cg-63q7.json | 4 +---
.../04/GHSA-8963-6x33-4w7x/GHSA-8963-6x33-4w7x.json | 12 +++---------
.../04/GHSA-8c7c-3pvq-q9v3/GHSA-8c7c-3pvq-q9v3.json | 12 +++---------
.../04/GHSA-9jpw-f586-mqqf/GHSA-9jpw-f586-mqqf.json | 12 +++---------
.../04/GHSA-9rc8-c76x-36m2/GHSA-9rc8-c76x-36m2.json | 12 +++---------
.../04/GHSA-9w6w-gqmh-gxp9/GHSA-9w6w-gqmh-gxp9.json | 12 +++---------
.../04/GHSA-c87m-qf5q-jcgf/GHSA-c87m-qf5q-jcgf.json | 12 +++---------
.../04/GHSA-cjgc-85v4-mwgc/GHSA-cjgc-85v4-mwgc.json | 4 +---
.../04/GHSA-cq3g-rm8m-r7p8/GHSA-cq3g-rm8m-r7p8.json | 4 +---
.../04/GHSA-f79p-pc32-pmjw/GHSA-f79p-pc32-pmjw.json | 12 +++---------
.../04/GHSA-g77r-g63q-vjf8/GHSA-g77r-g63q-vjf8.json | 12 +++---------
.../04/GHSA-gf6p-hmwh-gpc7/GHSA-gf6p-hmwh-gpc7.json | 12 +++---------
.../04/GHSA-gqmf-gxrq-3j6q/GHSA-gqmf-gxrq-3j6q.json | 4 +---
.../04/GHSA-h6wr-63v9-2m6h/GHSA-h6wr-63v9-2m6h.json | 12 +++---------
.../04/GHSA-hjx9-vcv6-76j4/GHSA-hjx9-vcv6-76j4.json | 12 +++---------
.../04/GHSA-hm95-xqg2-4w57/GHSA-hm95-xqg2-4w57.json | 4 +---
.../04/GHSA-j2j3-mjcj-v75r/GHSA-j2j3-mjcj-v75r.json | 12 +++---------
.../04/GHSA-m59q-rgx4-6vq4/GHSA-m59q-rgx4-6vq4.json | 12 +++---------
.../04/GHSA-m7v2-w8fj-6f24/GHSA-m7v2-w8fj-6f24.json | 12 +++---------
.../04/GHSA-m7wr-q7cm-56rh/GHSA-m7wr-q7cm-56rh.json | 12 +++---------
.../04/GHSA-m9h7-m3c9-xxfm/GHSA-m9h7-m3c9-xxfm.json | 4 +---
.../04/GHSA-pq28-hj26-jp72/GHSA-pq28-hj26-jp72.json | 12 +++---------
.../04/GHSA-q4cm-jgpj-qg42/GHSA-q4cm-jgpj-qg42.json | 12 +++---------
.../04/GHSA-q54v-653w-2v9v/GHSA-q54v-653w-2v9v.json | 12 +++---------
.../04/GHSA-qq35-93pf-cxxv/GHSA-qq35-93pf-cxxv.json | 12 +++---------
.../04/GHSA-qrq5-v2rp-9c3f/GHSA-qrq5-v2rp-9c3f.json | 12 +++---------
.../04/GHSA-rh38-52q8-4ffc/GHSA-rh38-52q8-4ffc.json | 12 +++---------
.../04/GHSA-rr47-vpr9-84rm/GHSA-rr47-vpr9-84rm.json | 12 +++---------
.../04/GHSA-rv79-7m3p-hx2p/GHSA-rv79-7m3p-hx2p.json | 12 +++---------
.../04/GHSA-v293-3p6g-j7w7/GHSA-v293-3p6g-j7w7.json | 4 +---
.../04/GHSA-vvx7-xv93-4vqx/GHSA-vvx7-xv93-4vqx.json | 4 +---
.../04/GHSA-w6pp-7vhg-w878/GHSA-w6pp-7vhg-w878.json | 12 +++---------
.../04/GHSA-xw8r-2c2x-7j88/GHSA-xw8r-2c2x-7j88.json | 4 +---
.../09/GHSA-352f-rwjm-p38m/GHSA-352f-rwjm-p38m.json | 4 +---
.../09/GHSA-7w2x-xg3m-6rhw/GHSA-7w2x-xg3m-6rhw.json | 4 +---
.../09/GHSA-8w95-2vq2-pmf9/GHSA-8w95-2vq2-pmf9.json | 4 +---
.../09/GHSA-974p-hhmc-6h46/GHSA-974p-hhmc-6h46.json | 4 +---
.../09/GHSA-hm9q-792g-5c86/GHSA-hm9q-792g-5c86.json | 4 +---
.../09/GHSA-r89w-9fr4-c7c9/GHSA-r89w-9fr4-c7c9.json | 4 +---
.../09/GHSA-vfwm-h968-g65h/GHSA-vfwm-h968-g65h.json | 4 +---
.../09/GHSA-wf3h-626c-mmqc/GHSA-wf3h-626c-mmqc.json | 4 +---
.../10/GHSA-x2wv-q3cc-vc36/GHSA-x2wv-q3cc-vc36.json | 4 +---
958 files changed, 1842 insertions(+), 5526 deletions(-)
diff --git a/advisories/github-reviewed/2020/09/GHSA-2563-83p7-f34p/GHSA-2563-83p7-f34p.json b/advisories/github-reviewed/2020/09/GHSA-2563-83p7-f34p/GHSA-2563-83p7-f34p.json
index 1d514450421..9e1ea043113 100644
--- a/advisories/github-reviewed/2020/09/GHSA-2563-83p7-f34p/GHSA-2563-83p7-f34p.json
+++ b/advisories/github-reviewed/2020/09/GHSA-2563-83p7-f34p/GHSA-2563-83p7-f34p.json
@@ -3,9 +3,7 @@
"id": "GHSA-2563-83p7-f34p",
"modified": "2021-10-01T14:04:11Z",
"published": "2020-09-02T20:24:41Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in requestt",
"details": "All versions of `requestt` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-277p-xwpp-3jf7/GHSA-277p-xwpp-3jf7.json b/advisories/github-reviewed/2020/09/GHSA-277p-xwpp-3jf7/GHSA-277p-xwpp-3jf7.json
index 9c49c3ed3a9..2444d0b5223 100644
--- a/advisories/github-reviewed/2020/09/GHSA-277p-xwpp-3jf7/GHSA-277p-xwpp-3jf7.json
+++ b/advisories/github-reviewed/2020/09/GHSA-277p-xwpp-3jf7/GHSA-277p-xwpp-3jf7.json
@@ -3,9 +3,7 @@
"id": "GHSA-277p-xwpp-3jf7",
"modified": "2021-10-01T13:42:09Z",
"published": "2020-09-02T15:49:22Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in rrgod",
"details": "All versions of `rrgod` are considered malicious. The package is malware designed to run arbitrary scripts. When installed, the package downloads an arbitrary file and executes its contents as a pre, post and install scripts.\n\n\n## Recommendation\n\nThis package is not available on the npm Registry anymore. If you happen to find this package in your environment you should consider the system it was installed on compromised and assess if further response (such as rotating all credentials found on the compromised machine) is necessary.\n",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-2h3x-95c6-885r/GHSA-2h3x-95c6-885r.json b/advisories/github-reviewed/2020/09/GHSA-2h3x-95c6-885r/GHSA-2h3x-95c6-885r.json
index 6acda4eae17..416c5e19f55 100644
--- a/advisories/github-reviewed/2020/09/GHSA-2h3x-95c6-885r/GHSA-2h3x-95c6-885r.json
+++ b/advisories/github-reviewed/2020/09/GHSA-2h3x-95c6-885r/GHSA-2h3x-95c6-885r.json
@@ -3,9 +3,7 @@
"id": "GHSA-2h3x-95c6-885r",
"modified": "2021-09-30T20:01:18Z",
"published": "2020-09-03T17:46:46Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in river-mock",
"details": "All versions of `river-mock` contain malicious code. The package uploads system information to a remote server, downloads a file and executes it.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-2hqf-qqmq-pgpp/GHSA-2hqf-qqmq-pgpp.json b/advisories/github-reviewed/2020/09/GHSA-2hqf-qqmq-pgpp/GHSA-2hqf-qqmq-pgpp.json
index f305c0d620d..55cebb81615 100644
--- a/advisories/github-reviewed/2020/09/GHSA-2hqf-qqmq-pgpp/GHSA-2hqf-qqmq-pgpp.json
+++ b/advisories/github-reviewed/2020/09/GHSA-2hqf-qqmq-pgpp/GHSA-2hqf-qqmq-pgpp.json
@@ -3,9 +3,7 @@
"id": "GHSA-2hqf-qqmq-pgpp",
"modified": "2021-10-01T13:30:38Z",
"published": "2020-09-02T15:48:16Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in commander-js",
"details": "All versions of `commander-js` are considered malicious. The package is malware designed to take advantage of users making a mistake when typing the name of a module to install. When installed, the package downloads an arbitrary file and executes its contents as a post-install script.\n\n\n## Recommendation\n\nThis package is not available on the npm Registry anymore. If you happen to find this package in your environment you should consider the system it was installed on compromised and assess if further response (such as rotating all credentials found on the compromised machine) is necessary.\n",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-2p99-6f47-8x9j/GHSA-2p99-6f47-8x9j.json b/advisories/github-reviewed/2020/09/GHSA-2p99-6f47-8x9j/GHSA-2p99-6f47-8x9j.json
index bc19ee80d49..8758e45c093 100644
--- a/advisories/github-reviewed/2020/09/GHSA-2p99-6f47-8x9j/GHSA-2p99-6f47-8x9j.json
+++ b/advisories/github-reviewed/2020/09/GHSA-2p99-6f47-8x9j/GHSA-2p99-6f47-8x9j.json
@@ -3,9 +3,7 @@
"id": "GHSA-2p99-6f47-8x9j",
"modified": "2021-10-01T13:55:37Z",
"published": "2020-09-02T18:38:39Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in asnc",
"details": "All versions of `asnc` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-2r8f-2665-3gxq/GHSA-2r8f-2665-3gxq.json b/advisories/github-reviewed/2020/09/GHSA-2r8f-2665-3gxq/GHSA-2r8f-2665-3gxq.json
index 59dd8d048f8..45a2502ef7a 100644
--- a/advisories/github-reviewed/2020/09/GHSA-2r8f-2665-3gxq/GHSA-2r8f-2665-3gxq.json
+++ b/advisories/github-reviewed/2020/09/GHSA-2r8f-2665-3gxq/GHSA-2r8f-2665-3gxq.json
@@ -3,9 +3,7 @@
"id": "GHSA-2r8f-2665-3gxq",
"modified": "2021-09-30T21:54:32Z",
"published": "2020-09-02T21:36:36Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in froever",
"details": "All versions of `froever` contain malicious code as a preinstall script. The package is malware designed to take advantage of users making a mistake when typing the name of a module to install. When installed, the package downloads a file from a remote server, executes it and opened a backdoor.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-2vqq-jgxx-fxjc/GHSA-2vqq-jgxx-fxjc.json b/advisories/github-reviewed/2020/09/GHSA-2vqq-jgxx-fxjc/GHSA-2vqq-jgxx-fxjc.json
index 98ef7b9df4f..5835f7e67b1 100644
--- a/advisories/github-reviewed/2020/09/GHSA-2vqq-jgxx-fxjc/GHSA-2vqq-jgxx-fxjc.json
+++ b/advisories/github-reviewed/2020/09/GHSA-2vqq-jgxx-fxjc/GHSA-2vqq-jgxx-fxjc.json
@@ -3,9 +3,7 @@
"id": "GHSA-2vqq-jgxx-fxjc",
"modified": "2021-09-30T22:07:26Z",
"published": "2020-09-11T21:24:33Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in motiv.scss",
"details": "Version 0.4.20 of `motiv.scss` contained malicious code. The code when executed in the browser would enumerate password, cvc and cardnumber fields from forms and send the extracted values to `https://js-metrics.com/minjs.php?pl=`\n\n\n\n## Recommendation\n\nRemove the package from your environment and evaluate your application to determine whether or not user data was compromised.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-2xw5-3767-qxvm/GHSA-2xw5-3767-qxvm.json b/advisories/github-reviewed/2020/09/GHSA-2xw5-3767-qxvm/GHSA-2xw5-3767-qxvm.json
index 4c20d54dba2..cf5a37b6998 100644
--- a/advisories/github-reviewed/2020/09/GHSA-2xw5-3767-qxvm/GHSA-2xw5-3767-qxvm.json
+++ b/advisories/github-reviewed/2020/09/GHSA-2xw5-3767-qxvm/GHSA-2xw5-3767-qxvm.json
@@ -3,9 +3,7 @@
"id": "GHSA-2xw5-3767-qxvm",
"modified": "2021-09-30T22:07:45Z",
"published": "2020-09-11T21:21:20Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in ng-ui-library",
"details": "Version 1.0.987 of `ng-ui-library` contained malicious code. The code when executed in the browser would enumerate password, cvc and cardnumber fields from forms and send the extracted values to `https://js-metrics.com/minjs.php?pl=`\n\n\n\n## Recommendation\n\nRemove the package from your environment and evaluate your application to determine whether or not user data was compromised.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-3qh4-r86r-grvm/GHSA-3qh4-r86r-grvm.json b/advisories/github-reviewed/2020/09/GHSA-3qh4-r86r-grvm/GHSA-3qh4-r86r-grvm.json
index 7a868c9cb8c..396c2389eff 100644
--- a/advisories/github-reviewed/2020/09/GHSA-3qh4-r86r-grvm/GHSA-3qh4-r86r-grvm.json
+++ b/advisories/github-reviewed/2020/09/GHSA-3qh4-r86r-grvm/GHSA-3qh4-r86r-grvm.json
@@ -8,9 +8,7 @@
],
"summary": "Arbitrary JavaScript Execution in typed-function",
"details": "Versions of `typed-function` prior to 0.10.6 are vulnerable to Arbitrary JavaScript Execution. Function names are not properly sanitized and may allow an attacker to execute arbitrary code.\n\n\n## Recommendation\n\nUpgrade to version 0.10.6 or later.",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
diff --git a/advisories/github-reviewed/2020/09/GHSA-43vf-2x6g-p2m5/GHSA-43vf-2x6g-p2m5.json b/advisories/github-reviewed/2020/09/GHSA-43vf-2x6g-p2m5/GHSA-43vf-2x6g-p2m5.json
index bb6f06ccb73..e210120cfa5 100644
--- a/advisories/github-reviewed/2020/09/GHSA-43vf-2x6g-p2m5/GHSA-43vf-2x6g-p2m5.json
+++ b/advisories/github-reviewed/2020/09/GHSA-43vf-2x6g-p2m5/GHSA-43vf-2x6g-p2m5.json
@@ -3,9 +3,7 @@
"id": "GHSA-43vf-2x6g-p2m5",
"modified": "2021-09-30T21:37:54Z",
"published": "2020-09-02T21:33:26Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in browserift",
"details": "Version 16.3.3 of `browserift` contained malicious code as a preinstall script. The package was a backdoor that opened a connection to a remote server and executed incoming commands on both Unix and Windows machines\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-44vf-8ffm-v2qh/GHSA-44vf-8ffm-v2qh.json b/advisories/github-reviewed/2020/09/GHSA-44vf-8ffm-v2qh/GHSA-44vf-8ffm-v2qh.json
index f526ec07094..0093a4cdae6 100644
--- a/advisories/github-reviewed/2020/09/GHSA-44vf-8ffm-v2qh/GHSA-44vf-8ffm-v2qh.json
+++ b/advisories/github-reviewed/2020/09/GHSA-44vf-8ffm-v2qh/GHSA-44vf-8ffm-v2qh.json
@@ -3,14 +3,10 @@
"id": "GHSA-44vf-8ffm-v2qh",
"modified": "2020-08-31T18:34:35Z",
"published": "2020-09-02T15:42:47Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Sensitive Data Exposure in rails-session-decoder",
"details": "All versions of `rails-session-decoder` are missing verification of the Message Authentication Code appended to the cookies. This may lead to decryption of cipher text thus exposing encrypted information.\n\n\n## Recommendation\n\nNo fix is currently available. Consider using an alternative module until a fix is made available.",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
@@ -36,9 +32,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": true,
"github_reviewed_at": "2020-08-31T18:34:35Z",
diff --git a/advisories/github-reviewed/2020/09/GHSA-4627-w373-375v/GHSA-4627-w373-375v.json b/advisories/github-reviewed/2020/09/GHSA-4627-w373-375v/GHSA-4627-w373-375v.json
index d6037930476..46b504401a6 100644
--- a/advisories/github-reviewed/2020/09/GHSA-4627-w373-375v/GHSA-4627-w373-375v.json
+++ b/advisories/github-reviewed/2020/09/GHSA-4627-w373-375v/GHSA-4627-w373-375v.json
@@ -3,14 +3,10 @@
"id": "GHSA-4627-w373-375v",
"modified": "2020-08-31T18:41:06Z",
"published": "2020-09-11T21:22:24Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in grunt-radical",
"details": "Version 0.0.14 of `grunt-radical` contained malicious code. The code when executed in the browser would enumerate password, cvc and cardnumber fields from forms and send the extracted values to `https://js-metrics.com/minjs.php?pl=`\n\n\n\n## Recommendation\n\nRemove the package from your environment and evaluate your application to determine whether or not user data was compromised.",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
@@ -42,9 +38,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "CRITICAL",
"github_reviewed": true,
"github_reviewed_at": "2020-08-31T18:41:06Z",
diff --git a/advisories/github-reviewed/2020/09/GHSA-4964-cjrr-jg97/GHSA-4964-cjrr-jg97.json b/advisories/github-reviewed/2020/09/GHSA-4964-cjrr-jg97/GHSA-4964-cjrr-jg97.json
index e3d9c5cbb52..148f727f8a5 100644
--- a/advisories/github-reviewed/2020/09/GHSA-4964-cjrr-jg97/GHSA-4964-cjrr-jg97.json
+++ b/advisories/github-reviewed/2020/09/GHSA-4964-cjrr-jg97/GHSA-4964-cjrr-jg97.json
@@ -3,9 +3,7 @@
"id": "GHSA-4964-cjrr-jg97",
"modified": "2021-09-30T21:55:10Z",
"published": "2020-09-02T21:38:43Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in jqeury",
"details": "Version 3.3.1 of `jqeury` contains malicious code as a preinstall script. The package is malware designed to take advantage of users making a mistake when typing the name of a module to install. When installed, the package downloads a file from a remote server, executes it and opened a backdoor.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-4hjg-w3ww-38c6/GHSA-4hjg-w3ww-38c6.json b/advisories/github-reviewed/2020/09/GHSA-4hjg-w3ww-38c6/GHSA-4hjg-w3ww-38c6.json
index 7889cbd325b..482a12e834f 100644
--- a/advisories/github-reviewed/2020/09/GHSA-4hjg-w3ww-38c6/GHSA-4hjg-w3ww-38c6.json
+++ b/advisories/github-reviewed/2020/09/GHSA-4hjg-w3ww-38c6/GHSA-4hjg-w3ww-38c6.json
@@ -3,9 +3,7 @@
"id": "GHSA-4hjg-w3ww-38c6",
"modified": "2021-09-30T20:01:59Z",
"published": "2020-09-03T18:03:49Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in tiar",
"details": "All versions of `tiar` contain malicious code. The package uploads system information to a remote server, downloads a file and executes it.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-4jfq-q299-g4cr/GHSA-4jfq-q299-g4cr.json b/advisories/github-reviewed/2020/09/GHSA-4jfq-q299-g4cr/GHSA-4jfq-q299-g4cr.json
index 43e706e45d8..3f7cae6426b 100644
--- a/advisories/github-reviewed/2020/09/GHSA-4jfq-q299-g4cr/GHSA-4jfq-q299-g4cr.json
+++ b/advisories/github-reviewed/2020/09/GHSA-4jfq-q299-g4cr/GHSA-4jfq-q299-g4cr.json
@@ -3,9 +3,7 @@
"id": "GHSA-4jfq-q299-g4cr",
"modified": "2021-10-01T14:06:36Z",
"published": "2020-09-02T20:28:57Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in reqquest",
"details": "All versions of `reqquest` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-4pmg-jgm5-3jg6/GHSA-4pmg-jgm5-3jg6.json b/advisories/github-reviewed/2020/09/GHSA-4pmg-jgm5-3jg6/GHSA-4pmg-jgm5-3jg6.json
index 90498f6fd40..e2bbd6cea87 100644
--- a/advisories/github-reviewed/2020/09/GHSA-4pmg-jgm5-3jg6/GHSA-4pmg-jgm5-3jg6.json
+++ b/advisories/github-reviewed/2020/09/GHSA-4pmg-jgm5-3jg6/GHSA-4pmg-jgm5-3jg6.json
@@ -3,9 +3,7 @@
"id": "GHSA-4pmg-jgm5-3jg6",
"modified": "2021-09-30T21:14:54Z",
"published": "2020-09-02T21:16:26Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in erquest",
"details": "All versions of `erquest` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-4q8f-5xxj-946r/GHSA-4q8f-5xxj-946r.json b/advisories/github-reviewed/2020/09/GHSA-4q8f-5xxj-946r/GHSA-4q8f-5xxj-946r.json
index 10b77113d0e..f03c204ca28 100644
--- a/advisories/github-reviewed/2020/09/GHSA-4q8f-5xxj-946r/GHSA-4q8f-5xxj-946r.json
+++ b/advisories/github-reviewed/2020/09/GHSA-4q8f-5xxj-946r/GHSA-4q8f-5xxj-946r.json
@@ -3,14 +3,10 @@
"id": "GHSA-4q8f-5xxj-946r",
"modified": "2020-08-31T18:41:49Z",
"published": "2020-09-03T02:40:51Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Command Injection in addax",
"details": "Versions of `addax` prior to 1.1.0 are vulnerable to Command Injection. The package does not validate user input on the `presignPath` function which receives input directly from the API endpoint. Exploiting the vulnerability requires authentication. This may allow attackers to run arbitrary commands in the system.\n\n\n## Recommendation\n\nUpgrade to version 1.1.0 or later.",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
diff --git a/advisories/github-reviewed/2020/09/GHSA-4wcx-c9c4-89p2/GHSA-4wcx-c9c4-89p2.json b/advisories/github-reviewed/2020/09/GHSA-4wcx-c9c4-89p2/GHSA-4wcx-c9c4-89p2.json
index 4ca32335ef3..dc1f59a0978 100644
--- a/advisories/github-reviewed/2020/09/GHSA-4wcx-c9c4-89p2/GHSA-4wcx-c9c4-89p2.json
+++ b/advisories/github-reviewed/2020/09/GHSA-4wcx-c9c4-89p2/GHSA-4wcx-c9c4-89p2.json
@@ -3,9 +3,7 @@
"id": "GHSA-4wcx-c9c4-89p2",
"modified": "2021-09-30T22:08:42Z",
"published": "2020-09-11T21:23:30Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in react-datepicker-plus",
"details": "Versions 2.4.3 and 2.4.2 of `react-datepicker-plus` contained malicious code. The code when executed in the browser would enumerate password, cvc and cardnumber fields from forms and send the extracted values to `https://js-metrics.com/minjs.php?pl=`\n\n\n\n## Recommendation\n\nRemove the package from your environment and evaluate your application to determine whether or not user data was compromised.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-4x6x-782q-jfc4/GHSA-4x6x-782q-jfc4.json b/advisories/github-reviewed/2020/09/GHSA-4x6x-782q-jfc4/GHSA-4x6x-782q-jfc4.json
index e8e9fc53682..67d87b96c7b 100644
--- a/advisories/github-reviewed/2020/09/GHSA-4x6x-782q-jfc4/GHSA-4x6x-782q-jfc4.json
+++ b/advisories/github-reviewed/2020/09/GHSA-4x6x-782q-jfc4/GHSA-4x6x-782q-jfc4.json
@@ -3,14 +3,10 @@
"id": "GHSA-4x6x-782q-jfc4",
"modified": "2020-08-31T18:41:45Z",
"published": "2020-09-03T02:38:47Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Command Injection in node-wifi",
"details": "Versions of `node-wifi` prior to 2.0.12 are vulnerable to Command Injection. The package fails to sanitize user input, allowing attackers to inject commands through the `ssid` variable and possibly achieving Remote Code Execution on the system.\n\n\n## Recommendation\n\nNo fix is currently available. Consider using an alternative package until a fix is made available.",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
diff --git a/advisories/github-reviewed/2020/09/GHSA-4xgp-xrg3-c73w/GHSA-4xgp-xrg3-c73w.json b/advisories/github-reviewed/2020/09/GHSA-4xgp-xrg3-c73w/GHSA-4xgp-xrg3-c73w.json
index 6de1bd231a2..4f6828c6fd2 100644
--- a/advisories/github-reviewed/2020/09/GHSA-4xgp-xrg3-c73w/GHSA-4xgp-xrg3-c73w.json
+++ b/advisories/github-reviewed/2020/09/GHSA-4xgp-xrg3-c73w/GHSA-4xgp-xrg3-c73w.json
@@ -3,9 +3,7 @@
"id": "GHSA-4xgp-xrg3-c73w",
"modified": "2021-09-30T22:02:56Z",
"published": "2020-09-11T21:10:29Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in commqnder",
"details": "All versions of `commqnder` contain malicious code . The package is malware designed to take advantage of users making a mistake when typing the name of a module to install. Upon require the package attempts to start a cryptocurrency miner using coin-hive.\n\n\n## Recommendation\n\nRemove the package from your environment and verify whether your system is running the cryptocurrency miner.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-559q-92vx-xvjp/GHSA-559q-92vx-xvjp.json b/advisories/github-reviewed/2020/09/GHSA-559q-92vx-xvjp/GHSA-559q-92vx-xvjp.json
index e9b8c0e91af..a6c21294ff6 100644
--- a/advisories/github-reviewed/2020/09/GHSA-559q-92vx-xvjp/GHSA-559q-92vx-xvjp.json
+++ b/advisories/github-reviewed/2020/09/GHSA-559q-92vx-xvjp/GHSA-559q-92vx-xvjp.json
@@ -3,9 +3,7 @@
"id": "GHSA-559q-92vx-xvjp",
"modified": "2021-09-30T20:00:23Z",
"published": "2020-09-03T17:44:36Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in qingting",
"details": "All versions of `qingting` contain malicious code. The package uploads system information to a remote server, downloads a file and executes it.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-5635-9mvj-r6hp/GHSA-5635-9mvj-r6hp.json b/advisories/github-reviewed/2020/09/GHSA-5635-9mvj-r6hp/GHSA-5635-9mvj-r6hp.json
index eb8d247679e..1d3a46d51ce 100644
--- a/advisories/github-reviewed/2020/09/GHSA-5635-9mvj-r6hp/GHSA-5635-9mvj-r6hp.json
+++ b/advisories/github-reviewed/2020/09/GHSA-5635-9mvj-r6hp/GHSA-5635-9mvj-r6hp.json
@@ -3,9 +3,7 @@
"id": "GHSA-5635-9mvj-r6hp",
"modified": "2021-09-30T22:08:21Z",
"published": "2020-09-03T02:34:39Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in vue-backbone",
"details": "Version 0.1.2 of `vue-backbone` contained malicious code. The code when executed in the browser would enumerate password, cvc and cardnumber fields from forms and send the extracted values to `https://js-metrics.com/minjs.php?pl=`\n\n\n\n## Recommendation\n\nRemove the package from your environment and evaluate your application to determine whether or not user data was compromised.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-59x8-7wx6-4hj9/GHSA-59x8-7wx6-4hj9.json b/advisories/github-reviewed/2020/09/GHSA-59x8-7wx6-4hj9/GHSA-59x8-7wx6-4hj9.json
index 37a4913a833..a879e526ff6 100644
--- a/advisories/github-reviewed/2020/09/GHSA-59x8-7wx6-4hj9/GHSA-59x8-7wx6-4hj9.json
+++ b/advisories/github-reviewed/2020/09/GHSA-59x8-7wx6-4hj9/GHSA-59x8-7wx6-4hj9.json
@@ -3,9 +3,7 @@
"id": "GHSA-59x8-7wx6-4hj9",
"modified": "2021-09-30T20:01:35Z",
"published": "2020-09-03T17:47:52Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in secure_identity_login_module",
"details": "All versions of `secure_identity_login_module` contain malicious code. The package uploads system information to a remote server, downloads a file and executes it.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-5fm9-jmv7-fcx5/GHSA-5fm9-jmv7-fcx5.json b/advisories/github-reviewed/2020/09/GHSA-5fm9-jmv7-fcx5/GHSA-5fm9-jmv7-fcx5.json
index d20ecd1dea6..34257a2483d 100644
--- a/advisories/github-reviewed/2020/09/GHSA-5fm9-jmv7-fcx5/GHSA-5fm9-jmv7-fcx5.json
+++ b/advisories/github-reviewed/2020/09/GHSA-5fm9-jmv7-fcx5/GHSA-5fm9-jmv7-fcx5.json
@@ -3,9 +3,7 @@
"id": "GHSA-5fm9-jmv7-fcx5",
"modified": "2021-10-01T13:47:05Z",
"published": "2020-09-02T18:35:26Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in asynnc",
"details": "All versions of `asynnc` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-5x8q-gj67-rhf2/GHSA-5x8q-gj67-rhf2.json b/advisories/github-reviewed/2020/09/GHSA-5x8q-gj67-rhf2/GHSA-5x8q-gj67-rhf2.json
index 37bf11d64a1..7ca06666256 100644
--- a/advisories/github-reviewed/2020/09/GHSA-5x8q-gj67-rhf2/GHSA-5x8q-gj67-rhf2.json
+++ b/advisories/github-reviewed/2020/09/GHSA-5x8q-gj67-rhf2/GHSA-5x8q-gj67-rhf2.json
@@ -3,9 +3,7 @@
"id": "GHSA-5x8q-gj67-rhf2",
"modified": "2021-09-30T21:23:24Z",
"published": "2020-09-02T21:18:33Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in discord_debug_log",
"details": "All versions of `discord_debug_log` contain obfuscated malware that uploads Discord user tokens to a remote server. This allows attackers to make purchases on behalf of users if they have credit cards linked to their Discord accounts.\n\n\n## Recommendation\n\nRemove the package from your environment. Review your Discord account access and rotate tokens if possible. If a credit card was linked to a compromised account contact your credit card company.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-65j7-66p7-9xgf/GHSA-65j7-66p7-9xgf.json b/advisories/github-reviewed/2020/09/GHSA-65j7-66p7-9xgf/GHSA-65j7-66p7-9xgf.json
index 3ecd69d66ac..50b1b27db9c 100644
--- a/advisories/github-reviewed/2020/09/GHSA-65j7-66p7-9xgf/GHSA-65j7-66p7-9xgf.json
+++ b/advisories/github-reviewed/2020/09/GHSA-65j7-66p7-9xgf/GHSA-65j7-66p7-9xgf.json
@@ -3,9 +3,7 @@
"id": "GHSA-65j7-66p7-9xgf",
"modified": "2021-09-30T21:59:50Z",
"published": "2020-09-02T21:51:55Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in font-scrubber",
"details": "Version 1.2.2 of `font-scrubber` contains malicious code as a postinstall script. The package attempts to upload sensitive files from the system to a remote server. The files include configuration files, command history logs, SSH keys and /etc/passwd.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-6c37-2rw5-9j7x/GHSA-6c37-2rw5-9j7x.json b/advisories/github-reviewed/2020/09/GHSA-6c37-2rw5-9j7x/GHSA-6c37-2rw5-9j7x.json
index 5246c8a9be4..662653c8183 100644
--- a/advisories/github-reviewed/2020/09/GHSA-6c37-2rw5-9j7x/GHSA-6c37-2rw5-9j7x.json
+++ b/advisories/github-reviewed/2020/09/GHSA-6c37-2rw5-9j7x/GHSA-6c37-2rw5-9j7x.json
@@ -3,9 +3,7 @@
"id": "GHSA-6c37-2rw5-9j7x",
"modified": "2021-10-01T14:04:27Z",
"published": "2020-09-02T20:25:46Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in requesst",
"details": "All versions of `requesst` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-6qc7-jgq7-34rf/GHSA-6qc7-jgq7-34rf.json b/advisories/github-reviewed/2020/09/GHSA-6qc7-jgq7-34rf/GHSA-6qc7-jgq7-34rf.json
index ce5fba4704f..1354cb188d9 100644
--- a/advisories/github-reviewed/2020/09/GHSA-6qc7-jgq7-34rf/GHSA-6qc7-jgq7-34rf.json
+++ b/advisories/github-reviewed/2020/09/GHSA-6qc7-jgq7-34rf/GHSA-6qc7-jgq7-34rf.json
@@ -3,9 +3,7 @@
"id": "GHSA-6qc7-jgq7-34rf",
"modified": "2021-10-01T14:02:31Z",
"published": "2020-09-02T20:18:18Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in exprss",
"details": "All versions of `exprss` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-724c-6vrf-99rq/GHSA-724c-6vrf-99rq.json b/advisories/github-reviewed/2020/09/GHSA-724c-6vrf-99rq/GHSA-724c-6vrf-99rq.json
index 2880f581b26..b04e835840b 100644
--- a/advisories/github-reviewed/2020/09/GHSA-724c-6vrf-99rq/GHSA-724c-6vrf-99rq.json
+++ b/advisories/github-reviewed/2020/09/GHSA-724c-6vrf-99rq/GHSA-724c-6vrf-99rq.json
@@ -3,14 +3,10 @@
"id": "GHSA-724c-6vrf-99rq",
"modified": "2021-09-27T22:31:27Z",
"published": "2020-09-02T21:49:48Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Sensitive Data Exposure in loopback",
"details": "Versions of `loopback` prior to 3.26.0 (3.x) and 2.42.0 (2.x) are vulnerable to Sensitive Data Exposure. Invalid API requests to the login endpoint may return information about the first user in the database. This can be used alongside other attacks for credential theft.\n\n\n## Recommendation\n\nIf you're using `loopback` 3.x upgrade to version 3.26.0 or later.\nIf you're using `loopback` 2.x upgrade to version 2.42.0 or later.",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
diff --git a/advisories/github-reviewed/2020/09/GHSA-73hr-6785-f5p8/GHSA-73hr-6785-f5p8.json b/advisories/github-reviewed/2020/09/GHSA-73hr-6785-f5p8/GHSA-73hr-6785-f5p8.json
index 64dfa0460a7..8369f520e51 100644
--- a/advisories/github-reviewed/2020/09/GHSA-73hr-6785-f5p8/GHSA-73hr-6785-f5p8.json
+++ b/advisories/github-reviewed/2020/09/GHSA-73hr-6785-f5p8/GHSA-73hr-6785-f5p8.json
@@ -3,9 +3,7 @@
"id": "GHSA-73hr-6785-f5p8",
"modified": "2021-09-30T21:24:59Z",
"published": "2020-09-02T21:24:55Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in donotinstallthis",
"details": "The package `donotinstallthis` contained malicious code. The package contained a script that was run as part of the install script. The script contacted a remote service tracking how many installations were done. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your environment.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-73v8-v6g4-vrpm/GHSA-73v8-v6g4-vrpm.json b/advisories/github-reviewed/2020/09/GHSA-73v8-v6g4-vrpm/GHSA-73v8-v6g4-vrpm.json
index d5eb3fab162..b6f7386873d 100644
--- a/advisories/github-reviewed/2020/09/GHSA-73v8-v6g4-vrpm/GHSA-73v8-v6g4-vrpm.json
+++ b/advisories/github-reviewed/2020/09/GHSA-73v8-v6g4-vrpm/GHSA-73v8-v6g4-vrpm.json
@@ -3,14 +3,10 @@
"id": "GHSA-73v8-v6g4-vrpm",
"modified": "2020-08-31T18:35:21Z",
"published": "2020-09-02T15:58:13Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Arbitrary File Overwrite in decompress-zip",
"details": "Vulnerable versions of `decompress-zip` are affected by the Zip-Slip vulnerability, an arbitrary file write vulnerability. The vulnerability occurs because `decompress-zip` does not verify that extracted files do not resolve to targets outside of the extraction root directory.\n\n\n\n## Recommendation\n\nFor `decompress-zip` 0.2.x upgrade to 0.2.2 or later.\nFor `decompress-zip` 0.3.x upgrade to 0.3.2 or later.",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
@@ -66,9 +62,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": true,
"github_reviewed_at": "2020-08-31T18:35:21Z",
diff --git a/advisories/github-reviewed/2020/09/GHSA-7543-mr7h-6v86/GHSA-7543-mr7h-6v86.json b/advisories/github-reviewed/2020/09/GHSA-7543-mr7h-6v86/GHSA-7543-mr7h-6v86.json
index 726d35f0d4c..ff626f9f089 100644
--- a/advisories/github-reviewed/2020/09/GHSA-7543-mr7h-6v86/GHSA-7543-mr7h-6v86.json
+++ b/advisories/github-reviewed/2020/09/GHSA-7543-mr7h-6v86/GHSA-7543-mr7h-6v86.json
@@ -3,14 +3,10 @@
"id": "GHSA-7543-mr7h-6v86",
"modified": "2021-09-27T16:15:52Z",
"published": "2020-09-02T16:00:26Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Improper Authorization in googleapis",
"details": "Versions of `googleapis` prior to 39.1.0 are vulnerable to Improper Authorization. Setting credentials to one client may apply to all clients which may cause requests to be sent with the incorrect credentials.\n\n\n## Recommendation\n\nUpgrade to version 39.1.0.",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
diff --git a/advisories/github-reviewed/2020/09/GHSA-76xq-58hj-vwm2/GHSA-76xq-58hj-vwm2.json b/advisories/github-reviewed/2020/09/GHSA-76xq-58hj-vwm2/GHSA-76xq-58hj-vwm2.json
index 7ac3208c91d..b9c4bf86298 100644
--- a/advisories/github-reviewed/2020/09/GHSA-76xq-58hj-vwm2/GHSA-76xq-58hj-vwm2.json
+++ b/advisories/github-reviewed/2020/09/GHSA-76xq-58hj-vwm2/GHSA-76xq-58hj-vwm2.json
@@ -3,9 +3,7 @@
"id": "GHSA-76xq-58hj-vwm2",
"modified": "2021-09-30T22:06:07Z",
"published": "2020-09-11T21:16:59Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in test-module-a",
"details": "All versions of `test-module-a` contain malicious code as a preinstall script. The package fetches all names of npm packages owned by the user and attempts to add another maintainer to every package as a means of package hijacking,\n\n\n## Recommendation\n\nRemove the package from your system. If you own any packages that were compromised please contact npm security immediately at security@npmjs.com. Also enable 2FA for publishing to further secure packages you maintain.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-788m-pj96-7w2c/GHSA-788m-pj96-7w2c.json b/advisories/github-reviewed/2020/09/GHSA-788m-pj96-7w2c/GHSA-788m-pj96-7w2c.json
index 71645ec8c3a..c8da9817c61 100644
--- a/advisories/github-reviewed/2020/09/GHSA-788m-pj96-7w2c/GHSA-788m-pj96-7w2c.json
+++ b/advisories/github-reviewed/2020/09/GHSA-788m-pj96-7w2c/GHSA-788m-pj96-7w2c.json
@@ -3,14 +3,10 @@
"id": "GHSA-788m-pj96-7w2c",
"modified": "2021-09-27T21:41:40Z",
"published": "2020-09-02T21:23:51Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Cross-Site Scripting in fomantic-ui",
"details": "Versions of `fomantic-ui` are vulnerable to Cross-Site Scripting. Lack of output encoding on the selection dropdowns can lead to user input being executed instead of printed as text.\n\n\n## Recommendation\n\nUpgrade to version 2.7.0 or later.",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
diff --git a/advisories/github-reviewed/2020/09/GHSA-7p6w-x2gr-rrf8/GHSA-7p6w-x2gr-rrf8.json b/advisories/github-reviewed/2020/09/GHSA-7p6w-x2gr-rrf8/GHSA-7p6w-x2gr-rrf8.json
index f135e3ad868..5660c782b05 100644
--- a/advisories/github-reviewed/2020/09/GHSA-7p6w-x2gr-rrf8/GHSA-7p6w-x2gr-rrf8.json
+++ b/advisories/github-reviewed/2020/09/GHSA-7p6w-x2gr-rrf8/GHSA-7p6w-x2gr-rrf8.json
@@ -3,14 +3,10 @@
"id": "GHSA-7p6w-x2gr-rrf8",
"modified": "2021-09-27T21:42:28Z",
"published": "2020-09-02T21:28:05Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Cross-Site Scripting in ag-grid-community",
"details": "Versions of `ag-grid-community` prior to 14.0.0 are vulnerable to Cross-Site Scripting (XSS). Grid contents are not properly sanitized and may allow attackers to execute arbitrary JavaScript if user input is rendered in the grid. \n\n\n## Recommendation\n\nUpgrade to version 14.0.0 or later",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
diff --git a/advisories/github-reviewed/2020/09/GHSA-855m-jchh-9qjc/GHSA-855m-jchh-9qjc.json b/advisories/github-reviewed/2020/09/GHSA-855m-jchh-9qjc/GHSA-855m-jchh-9qjc.json
index 5bfdcd35a98..e7075bb130d 100644
--- a/advisories/github-reviewed/2020/09/GHSA-855m-jchh-9qjc/GHSA-855m-jchh-9qjc.json
+++ b/advisories/github-reviewed/2020/09/GHSA-855m-jchh-9qjc/GHSA-855m-jchh-9qjc.json
@@ -3,9 +3,7 @@
"id": "GHSA-855m-jchh-9qjc",
"modified": "2021-10-01T14:01:42Z",
"published": "2020-09-02T20:19:22Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in commnader",
"details": "All versions of `commnader` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-86gv-xpwv-jprc/GHSA-86gv-xpwv-jprc.json b/advisories/github-reviewed/2020/09/GHSA-86gv-xpwv-jprc/GHSA-86gv-xpwv-jprc.json
index 2fefc4efa5f..c9a8eefc808 100644
--- a/advisories/github-reviewed/2020/09/GHSA-86gv-xpwv-jprc/GHSA-86gv-xpwv-jprc.json
+++ b/advisories/github-reviewed/2020/09/GHSA-86gv-xpwv-jprc/GHSA-86gv-xpwv-jprc.json
@@ -3,9 +3,7 @@
"id": "GHSA-86gv-xpwv-jprc",
"modified": "2021-09-30T19:33:54Z",
"published": "2020-09-03T17:36:00Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in diamond-clien",
"details": "All versions of `diamond-clien` contain malicious code. The package uploads system information to a remote server, downloads a file and executes it.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-87qw-7v97-w34r/GHSA-87qw-7v97-w34r.json b/advisories/github-reviewed/2020/09/GHSA-87qw-7v97-w34r/GHSA-87qw-7v97-w34r.json
index e3ba0e6b04d..adf28857f58 100644
--- a/advisories/github-reviewed/2020/09/GHSA-87qw-7v97-w34r/GHSA-87qw-7v97-w34r.json
+++ b/advisories/github-reviewed/2020/09/GHSA-87qw-7v97-w34r/GHSA-87qw-7v97-w34r.json
@@ -3,9 +3,7 @@
"id": "GHSA-87qw-7v97-w34r",
"modified": "2021-10-01T13:46:36Z",
"published": "2020-09-02T18:33:18Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in asinc",
"details": "All versions of `asinc` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-8hq2-fcqm-39hq/GHSA-8hq2-fcqm-39hq.json b/advisories/github-reviewed/2020/09/GHSA-8hq2-fcqm-39hq/GHSA-8hq2-fcqm-39hq.json
index ae831e9a2c8..a0729d8bbcd 100644
--- a/advisories/github-reviewed/2020/09/GHSA-8hq2-fcqm-39hq/GHSA-8hq2-fcqm-39hq.json
+++ b/advisories/github-reviewed/2020/09/GHSA-8hq2-fcqm-39hq/GHSA-8hq2-fcqm-39hq.json
@@ -3,9 +3,7 @@
"id": "GHSA-8hq2-fcqm-39hq",
"modified": "2021-09-30T21:57:22Z",
"published": "2020-09-02T21:46:05Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in rimrafall",
"details": "Version 1.0.0 of `rimrafall` contains malicious code as a preinstall script. The package attempts to remove all files in the system's root folder.\n\n\n## Recommendation\n\nIf you installed this package it is likely your machine was erased. If not, remove the package from your system and verify if any files were deleted.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-8j7x-pr59-m5h8/GHSA-8j7x-pr59-m5h8.json b/advisories/github-reviewed/2020/09/GHSA-8j7x-pr59-m5h8/GHSA-8j7x-pr59-m5h8.json
index 87519166f54..12f963df826 100644
--- a/advisories/github-reviewed/2020/09/GHSA-8j7x-pr59-m5h8/GHSA-8j7x-pr59-m5h8.json
+++ b/advisories/github-reviewed/2020/09/GHSA-8j7x-pr59-m5h8/GHSA-8j7x-pr59-m5h8.json
@@ -3,9 +3,7 @@
"id": "GHSA-8j7x-pr59-m5h8",
"modified": "2021-09-30T21:37:21Z",
"published": "2020-09-02T21:31:18Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in whiteproject",
"details": "All versions of `whiteproject` contain obfuscated malware that uploads Discord user tokens to a remote server. This allows attackers to make purchases on behalf of users if they have credit cards linked to their Discord accounts.\n\n\n## Recommendation\n\nRemove the package from your environment. Review your Discord account access and rotate tokens if possible. If a credit card was linked to a compromised account contact your credit card company.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-8mgg-5x65-m4m4/GHSA-8mgg-5x65-m4m4.json b/advisories/github-reviewed/2020/09/GHSA-8mgg-5x65-m4m4/GHSA-8mgg-5x65-m4m4.json
index 599167fe3b0..6aad5d10880 100644
--- a/advisories/github-reviewed/2020/09/GHSA-8mgg-5x65-m4m4/GHSA-8mgg-5x65-m4m4.json
+++ b/advisories/github-reviewed/2020/09/GHSA-8mgg-5x65-m4m4/GHSA-8mgg-5x65-m4m4.json
@@ -3,14 +3,10 @@
"id": "GHSA-8mgg-5x65-m4m4",
"modified": "2020-08-31T18:41:59Z",
"published": "2020-09-11T21:08:19Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Command Injection in soletta-dev-app",
"details": "All versions of `soletta-dev-app` are vulnerable to Command Injection. The package does not validate user input on the `/api/service/status` API endpoint, passing contents of the `service` query parameter to an exec call. This may allow attackers to run arbitrary commands in the system.\n\n\n## Recommendation\n\nNo fix is currently available. Consider using an alternative module until a fix is made available.",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
diff --git a/advisories/github-reviewed/2020/09/GHSA-8mm3-2mcj-cx6r/GHSA-8mm3-2mcj-cx6r.json b/advisories/github-reviewed/2020/09/GHSA-8mm3-2mcj-cx6r/GHSA-8mm3-2mcj-cx6r.json
index 3f1b55d3d98..bfedf59f4d9 100644
--- a/advisories/github-reviewed/2020/09/GHSA-8mm3-2mcj-cx6r/GHSA-8mm3-2mcj-cx6r.json
+++ b/advisories/github-reviewed/2020/09/GHSA-8mm3-2mcj-cx6r/GHSA-8mm3-2mcj-cx6r.json
@@ -3,9 +3,7 @@
"id": "GHSA-8mm3-2mcj-cx6r",
"modified": "2021-09-30T21:57:57Z",
"published": "2020-09-11T21:09:24Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in angluar-cli",
"details": "Version 0.0.3 of `angluar-cli` contains malicious code as a postinstall script. The package is malware designed to take advantage of users making a mistake when typing the name of a module to install. When installed the package attempts to remove files and stop processes related to McAfee antivirus on macOS.\n\n\n## Recommendation\n\nRemove the package from your environment and verify whether files were deleted and if processes were stopped.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-8mmf-qp7j-2w24/GHSA-8mmf-qp7j-2w24.json b/advisories/github-reviewed/2020/09/GHSA-8mmf-qp7j-2w24/GHSA-8mmf-qp7j-2w24.json
index 8923aa039a4..29b1bd71336 100644
--- a/advisories/github-reviewed/2020/09/GHSA-8mmf-qp7j-2w24/GHSA-8mmf-qp7j-2w24.json
+++ b/advisories/github-reviewed/2020/09/GHSA-8mmf-qp7j-2w24/GHSA-8mmf-qp7j-2w24.json
@@ -3,9 +3,7 @@
"id": "GHSA-8mmf-qp7j-2w24",
"modified": "2021-09-30T21:53:41Z",
"published": "2020-09-02T21:35:33Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in colour-string",
"details": "Version 1.5.3 of `colour-string` contained malicious code as a preinstall script. The package downloaded a file from a remote server, executed it and opened a backdoor.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-8qx4-r7fx-xc4v/GHSA-8qx4-r7fx-xc4v.json b/advisories/github-reviewed/2020/09/GHSA-8qx4-r7fx-xc4v/GHSA-8qx4-r7fx-xc4v.json
index cc93fc1c0fa..0671387e88e 100644
--- a/advisories/github-reviewed/2020/09/GHSA-8qx4-r7fx-xc4v/GHSA-8qx4-r7fx-xc4v.json
+++ b/advisories/github-reviewed/2020/09/GHSA-8qx4-r7fx-xc4v/GHSA-8qx4-r7fx-xc4v.json
@@ -3,9 +3,7 @@
"id": "GHSA-8qx4-r7fx-xc4v",
"modified": "2021-10-01T14:08:31Z",
"published": "2020-09-11T21:08:19Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in requst",
"details": "All versions of `requst` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-8vj3-jgcf-77jv/GHSA-8vj3-jgcf-77jv.json b/advisories/github-reviewed/2020/09/GHSA-8vj3-jgcf-77jv/GHSA-8vj3-jgcf-77jv.json
index fdc5b4deb99..1fbcc29a931 100644
--- a/advisories/github-reviewed/2020/09/GHSA-8vj3-jgcf-77jv/GHSA-8vj3-jgcf-77jv.json
+++ b/advisories/github-reviewed/2020/09/GHSA-8vj3-jgcf-77jv/GHSA-8vj3-jgcf-77jv.json
@@ -3,9 +3,7 @@
"id": "GHSA-8vj3-jgcf-77jv",
"modified": "2021-10-01T14:04:42Z",
"published": "2020-09-02T20:26:49Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in requeest",
"details": "All versions of `requeest` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-8wgc-jjvv-cv6v/GHSA-8wgc-jjvv-cv6v.json b/advisories/github-reviewed/2020/09/GHSA-8wgc-jjvv-cv6v/GHSA-8wgc-jjvv-cv6v.json
index f8ab890dc0f..4f9e97dd291 100644
--- a/advisories/github-reviewed/2020/09/GHSA-8wgc-jjvv-cv6v/GHSA-8wgc-jjvv-cv6v.json
+++ b/advisories/github-reviewed/2020/09/GHSA-8wgc-jjvv-cv6v/GHSA-8wgc-jjvv-cv6v.json
@@ -3,14 +3,10 @@
"id": "GHSA-8wgc-jjvv-cv6v",
"modified": "2021-09-27T15:44:08Z",
"published": "2020-09-02T15:54:52Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Improper Authorization in loopback",
"details": "Vulnerable versions of `loopback` may allow attackers to create Authentication Tokens on behalf of other users due to Improper Authorization. If the AccessToken model is publicly exposed, an attacker can create Authorization Tokens for any user as long as they know the target's `userId`. This will allow the attacker to access the user's data and their privileges.\n\n\n## Recommendation\n\nFor loopback 2.x, upgrade to version 2.40.0 or later\nFor loopback 3.x, upgrade to version 3.22.0 or later",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
diff --git a/advisories/github-reviewed/2020/09/GHSA-9mjp-gv34-3jcf/GHSA-9mjp-gv34-3jcf.json b/advisories/github-reviewed/2020/09/GHSA-9mjp-gv34-3jcf/GHSA-9mjp-gv34-3jcf.json
index 7bd0f727308..0338c552b56 100644
--- a/advisories/github-reviewed/2020/09/GHSA-9mjp-gv34-3jcf/GHSA-9mjp-gv34-3jcf.json
+++ b/advisories/github-reviewed/2020/09/GHSA-9mjp-gv34-3jcf/GHSA-9mjp-gv34-3jcf.json
@@ -3,9 +3,7 @@
"id": "GHSA-9mjp-gv34-3jcf",
"modified": "2021-10-01T13:55:21Z",
"published": "2020-09-02T18:37:35Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in aasync",
"details": "All versions of `aasync` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-9mmw-3fmh-96g3/GHSA-9mmw-3fmh-96g3.json b/advisories/github-reviewed/2020/09/GHSA-9mmw-3fmh-96g3/GHSA-9mmw-3fmh-96g3.json
index ac53aa80413..a38e3a946ea 100644
--- a/advisories/github-reviewed/2020/09/GHSA-9mmw-3fmh-96g3/GHSA-9mmw-3fmh-96g3.json
+++ b/advisories/github-reviewed/2020/09/GHSA-9mmw-3fmh-96g3/GHSA-9mmw-3fmh-96g3.json
@@ -3,9 +3,7 @@
"id": "GHSA-9mmw-3fmh-96g3",
"modified": "2021-10-01T14:03:32Z",
"published": "2020-09-02T20:23:38Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in calk",
"details": "All versions of `calk` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-9p64-h5q4-phpm/GHSA-9p64-h5q4-phpm.json b/advisories/github-reviewed/2020/09/GHSA-9p64-h5q4-phpm/GHSA-9p64-h5q4-phpm.json
index 62716d9d3c2..6187fd7fc4f 100644
--- a/advisories/github-reviewed/2020/09/GHSA-9p64-h5q4-phpm/GHSA-9p64-h5q4-phpm.json
+++ b/advisories/github-reviewed/2020/09/GHSA-9p64-h5q4-phpm/GHSA-9p64-h5q4-phpm.json
@@ -3,14 +3,10 @@
"id": "GHSA-9p64-h5q4-phpm",
"modified": "2020-08-31T18:34:44Z",
"published": "2020-09-02T15:44:58Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Remote Code Execution in office-converter",
"details": "All versions of `office-converter` are vulnerable to Remote Code Execution. Due to insufficient input validation an attacker could run arbitrary commands on the server thus rendering the package vulnerable to Remote Code Execution.\n\n\n## Recommendation\n\nNo fix is currently available. Consider using an alternative module until a fix is made available.",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
diff --git a/advisories/github-reviewed/2020/09/GHSA-9pr3-7449-977r/GHSA-9pr3-7449-977r.json b/advisories/github-reviewed/2020/09/GHSA-9pr3-7449-977r/GHSA-9pr3-7449-977r.json
index 58bb2eb587e..fc47d48746b 100644
--- a/advisories/github-reviewed/2020/09/GHSA-9pr3-7449-977r/GHSA-9pr3-7449-977r.json
+++ b/advisories/github-reviewed/2020/09/GHSA-9pr3-7449-977r/GHSA-9pr3-7449-977r.json
@@ -3,14 +3,10 @@
"id": "GHSA-9pr3-7449-977r",
"modified": "2020-08-31T18:36:31Z",
"published": "2020-09-02T18:21:26Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Cross-Site Scripting in express-cart",
"details": "All versions of `harp` are vulnerable to Cross-Site Scripting. In the admin page it is possible to inject arbitrary JavaScript as a new product option, allowing attackers to execute arbitrary code. This is limited to the admin page and does not affect other pages.\n\n\n## Recommendation\n\nNo fix is currently available. Consider using an alternative module until a fix is made available.\n",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
diff --git a/advisories/github-reviewed/2020/09/GHSA-9q9m-m2f6-jr5q/GHSA-9q9m-m2f6-jr5q.json b/advisories/github-reviewed/2020/09/GHSA-9q9m-m2f6-jr5q/GHSA-9q9m-m2f6-jr5q.json
index e60fcb7d336..5a2999324cc 100644
--- a/advisories/github-reviewed/2020/09/GHSA-9q9m-m2f6-jr5q/GHSA-9q9m-m2f6-jr5q.json
+++ b/advisories/github-reviewed/2020/09/GHSA-9q9m-m2f6-jr5q/GHSA-9q9m-m2f6-jr5q.json
@@ -3,9 +3,7 @@
"id": "GHSA-9q9m-m2f6-jr5q",
"modified": "2021-10-01T14:03:17Z",
"published": "2020-09-02T20:22:34Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in chak",
"details": "All versions of `chak` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-9rwj-8mh9-4876/GHSA-9rwj-8mh9-4876.json b/advisories/github-reviewed/2020/09/GHSA-9rwj-8mh9-4876/GHSA-9rwj-8mh9-4876.json
index ecdbc41601d..3e7667db5ee 100644
--- a/advisories/github-reviewed/2020/09/GHSA-9rwj-8mh9-4876/GHSA-9rwj-8mh9-4876.json
+++ b/advisories/github-reviewed/2020/09/GHSA-9rwj-8mh9-4876/GHSA-9rwj-8mh9-4876.json
@@ -3,9 +3,7 @@
"id": "GHSA-9rwj-8mh9-4876",
"modified": "2021-09-30T21:23:53Z",
"published": "2020-09-02T21:19:37Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in carloprojectdiscord",
"details": "All versions of `carloprojectdiscord` contain obfuscated malware that uploads Discord user tokens to a remote server. This allows attackers to make purchases on behalf of users if they have credit cards linked to their Discord accounts.\n\n\n## Recommendation\n\nRemove the package from your environment. Review your Discord account access and rotate tokens if possible. If a credit card was linked to a compromised account contact your credit card company.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-9w87-4j72-gcv7/GHSA-9w87-4j72-gcv7.json b/advisories/github-reviewed/2020/09/GHSA-9w87-4j72-gcv7/GHSA-9w87-4j72-gcv7.json
index e32c2514b0f..abdeea5fc07 100644
--- a/advisories/github-reviewed/2020/09/GHSA-9w87-4j72-gcv7/GHSA-9w87-4j72-gcv7.json
+++ b/advisories/github-reviewed/2020/09/GHSA-9w87-4j72-gcv7/GHSA-9w87-4j72-gcv7.json
@@ -3,14 +3,10 @@
"id": "GHSA-9w87-4j72-gcv7",
"modified": "2020-08-31T18:37:32Z",
"published": "2020-09-02T18:27:54Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Insecure Default Configuration in graphql-code-generator",
"details": "Versions of `graphql-code-generator` prior to 0.18.2 have an Insecure Default Configuration. The packages sets `NODE_TLS_REJECT_UNAUTHORIZED` to 0, disabling certificate verification for the entire project. This results in Insecure Communication for the process.\n\n\n## Recommendation\n\nUpgrade to version 0.18.2 or later.",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
@@ -43,9 +39,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": true,
"github_reviewed_at": "2020-08-31T18:37:32Z",
diff --git a/advisories/github-reviewed/2020/09/GHSA-9wjh-jr2j-6r4x/GHSA-9wjh-jr2j-6r4x.json b/advisories/github-reviewed/2020/09/GHSA-9wjh-jr2j-6r4x/GHSA-9wjh-jr2j-6r4x.json
index ab6f30412f6..6532f5479bf 100644
--- a/advisories/github-reviewed/2020/09/GHSA-9wjh-jr2j-6r4x/GHSA-9wjh-jr2j-6r4x.json
+++ b/advisories/github-reviewed/2020/09/GHSA-9wjh-jr2j-6r4x/GHSA-9wjh-jr2j-6r4x.json
@@ -3,14 +3,10 @@
"id": "GHSA-9wjh-jr2j-6r4x",
"modified": "2020-08-31T18:35:14Z",
"published": "2020-09-02T15:55:58Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Remote Code Execution in pi_video_recording",
"details": "All versions of `pi_video_recording` are vulnerable to Remote Code Execution. Due to insufficient input validation the server executes arbitrary code through the /api/record/start endpoint. After running the server, `curl -POST -H \"Content-Type: application/json\" -d '{\"filename\": \" || touch /tmp/worked;\"}' http://localhost:5000/api/record/start`creates a file in the /tmp/ directory\n\n\n## Recommendation\n\nNo fix is currently available. Consider using an alternative module until a fix is made available.",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
diff --git a/advisories/github-reviewed/2020/09/GHSA-9xww-fwh9-95c5/GHSA-9xww-fwh9-95c5.json b/advisories/github-reviewed/2020/09/GHSA-9xww-fwh9-95c5/GHSA-9xww-fwh9-95c5.json
index d8cb9028c4a..3176f014d20 100644
--- a/advisories/github-reviewed/2020/09/GHSA-9xww-fwh9-95c5/GHSA-9xww-fwh9-95c5.json
+++ b/advisories/github-reviewed/2020/09/GHSA-9xww-fwh9-95c5/GHSA-9xww-fwh9-95c5.json
@@ -3,9 +3,7 @@
"id": "GHSA-9xww-fwh9-95c5",
"modified": "2021-09-30T21:56:44Z",
"published": "2020-09-02T21:43:59Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in uglyfi-js",
"details": "Version 3.4.6 of `uglyfi-js` contains malicious code as a preinstall script. The package is malware designed to take advantage of users making a mistake when typing the name of a module to install. When installed, the package downloads a file from a remote server, executes it and opens a backdoor.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-c6f3-3c98-2j2f/GHSA-c6f3-3c98-2j2f.json b/advisories/github-reviewed/2020/09/GHSA-c6f3-3c98-2j2f/GHSA-c6f3-3c98-2j2f.json
index bdff97a485c..cc23df75a16 100644
--- a/advisories/github-reviewed/2020/09/GHSA-c6f3-3c98-2j2f/GHSA-c6f3-3c98-2j2f.json
+++ b/advisories/github-reviewed/2020/09/GHSA-c6f3-3c98-2j2f/GHSA-c6f3-3c98-2j2f.json
@@ -3,9 +3,7 @@
"id": "GHSA-c6f3-3c98-2j2f",
"modified": "2021-09-30T21:55:38Z",
"published": "2020-09-02T21:39:46Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in jquerz",
"details": "Version 1.0.1 of `jquerz` contains malicious code as a preinstall script. The package is malware designed to take advantage of users making a mistake when typing the name of a module to install. When installed, the package downloads a file from a remote server, executes it and opens a backdoor.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-cg48-9hh2-x6mx/GHSA-cg48-9hh2-x6mx.json b/advisories/github-reviewed/2020/09/GHSA-cg48-9hh2-x6mx/GHSA-cg48-9hh2-x6mx.json
index 96f4a8240cc..1738ed0276a 100644
--- a/advisories/github-reviewed/2020/09/GHSA-cg48-9hh2-x6mx/GHSA-cg48-9hh2-x6mx.json
+++ b/advisories/github-reviewed/2020/09/GHSA-cg48-9hh2-x6mx/GHSA-cg48-9hh2-x6mx.json
@@ -3,14 +3,10 @@
"id": "GHSA-cg48-9hh2-x6mx",
"modified": "2021-09-27T20:53:56Z",
"published": "2020-09-02T18:28:58Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "HTML Injection in preact",
"details": "Versions of `preact` 10.x on prerelease tags alpha and beta prior to 10.0.0-beta.1 are vulnerable to HTML Injection. Due to insufficient input validation the package allows attackers to inject JavaScript objects as virtual-dom nodes, which may lead to Cross-Site Scripting. This requires user input parsed with `JSON.parse()` to be passed directly into JSX without sanitization.\n\n\n## Recommendation\n\nUpgrade to version 10.0.0-beta.1.",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
diff --git a/advisories/github-reviewed/2020/09/GHSA-cr5w-6rv4-r2qg/GHSA-cr5w-6rv4-r2qg.json b/advisories/github-reviewed/2020/09/GHSA-cr5w-6rv4-r2qg/GHSA-cr5w-6rv4-r2qg.json
index a2a27955b86..52274046a71 100644
--- a/advisories/github-reviewed/2020/09/GHSA-cr5w-6rv4-r2qg/GHSA-cr5w-6rv4-r2qg.json
+++ b/advisories/github-reviewed/2020/09/GHSA-cr5w-6rv4-r2qg/GHSA-cr5w-6rv4-r2qg.json
@@ -3,9 +3,7 @@
"id": "GHSA-cr5w-6rv4-r2qg",
"modified": "2021-09-30T21:58:48Z",
"published": "2020-09-03T02:37:45Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in maleficent",
"details": "All versions of `maleficent` contain malicious code. The package is a demonstration of possible risks when installing npm packages. It gathers system information such as: environment variables, OS information, network interface, AWS credentials, npm credentials and ssh keys. The package prints the information to a local file but does not upload it to a remote server.\n\n\n\n## Recommendation\n\nRemove the package from your environment. There is no further compromise.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-cx7r-634m-2q2h/GHSA-cx7r-634m-2q2h.json b/advisories/github-reviewed/2020/09/GHSA-cx7r-634m-2q2h/GHSA-cx7r-634m-2q2h.json
index e630651f374..aeb79c3c59b 100644
--- a/advisories/github-reviewed/2020/09/GHSA-cx7r-634m-2q2h/GHSA-cx7r-634m-2q2h.json
+++ b/advisories/github-reviewed/2020/09/GHSA-cx7r-634m-2q2h/GHSA-cx7r-634m-2q2h.json
@@ -4,14 +4,10 @@
"modified": "2021-06-01T22:21:08Z",
"published": "2020-09-02T18:20:21Z",
"withdrawn": "2021-06-01T22:21:08Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Cross-Site Scripting in harp",
"details": "# Withdrawn\n\nThis advisory has been withdrawn per request from the maintainer. Given harp is a static webserver, a XSS type of vulnerability is not appropriate.\n\n### Original advisory description\n\nAll versions of `harp` are vulnerable to Cross-Site Scripting. Due to misconfiguration of its rendering engine, `harp` does not sanitize the HTML output allowing attackers to run arbitrary JavaScript when processing malicious files.\n\n\n## Recommendation\n\nNo fix is currently available. Consider using an alternative module until a fix is made available.",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
@@ -41,9 +37,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": true,
"github_reviewed_at": "2020-08-31T18:36:27Z",
diff --git a/advisories/github-reviewed/2020/09/GHSA-f3pc-c2gf-hvgw/GHSA-f3pc-c2gf-hvgw.json b/advisories/github-reviewed/2020/09/GHSA-f3pc-c2gf-hvgw/GHSA-f3pc-c2gf-hvgw.json
index 26d14ffec90..ff0fcefad62 100644
--- a/advisories/github-reviewed/2020/09/GHSA-f3pc-c2gf-hvgw/GHSA-f3pc-c2gf-hvgw.json
+++ b/advisories/github-reviewed/2020/09/GHSA-f3pc-c2gf-hvgw/GHSA-f3pc-c2gf-hvgw.json
@@ -3,9 +3,7 @@
"id": "GHSA-f3pc-c2gf-hvgw",
"modified": "2021-10-01T14:10:10Z",
"published": "2020-09-02T21:13:14Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in requets",
"details": "All versions of `requets` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-f8h3-rqrm-47v9/GHSA-f8h3-rqrm-47v9.json b/advisories/github-reviewed/2020/09/GHSA-f8h3-rqrm-47v9/GHSA-f8h3-rqrm-47v9.json
index a32007306f7..a5a57c6de6e 100644
--- a/advisories/github-reviewed/2020/09/GHSA-f8h3-rqrm-47v9/GHSA-f8h3-rqrm-47v9.json
+++ b/advisories/github-reviewed/2020/09/GHSA-f8h3-rqrm-47v9/GHSA-f8h3-rqrm-47v9.json
@@ -3,14 +3,10 @@
"id": "GHSA-f8h3-rqrm-47v9",
"modified": "2020-08-31T18:36:15Z",
"published": "2020-09-02T16:02:40Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Prototype Pollution in smart-extend",
"details": "All versions of `smart-extend` are vulnerable to Prototype Pollution. The `deep()` function allows attackers to modify the prototype of Object causing the addition or modification of an existing property that will exist on all objects.\n\n\n\n\n## Recommendation\n\nNo fix is currently available. Consider using an alternative module until a fix is made available.",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
diff --git a/advisories/github-reviewed/2020/09/GHSA-fj93-7wm4-8x2g/GHSA-fj93-7wm4-8x2g.json b/advisories/github-reviewed/2020/09/GHSA-fj93-7wm4-8x2g/GHSA-fj93-7wm4-8x2g.json
index 09ad81426ae..7627da549ad 100644
--- a/advisories/github-reviewed/2020/09/GHSA-fj93-7wm4-8x2g/GHSA-fj93-7wm4-8x2g.json
+++ b/advisories/github-reviewed/2020/09/GHSA-fj93-7wm4-8x2g/GHSA-fj93-7wm4-8x2g.json
@@ -3,14 +3,10 @@
"id": "GHSA-fj93-7wm4-8x2g",
"modified": "2021-09-27T21:03:58Z",
"published": "2020-09-02T21:22:47Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Cross-Site Scripting in jquery-mobile",
"details": "All version of `jquery-mobile` are vulnerable to Cross-Site Scripting. The package checks for content in `location.hash` and if a URL is found it does an XmlHttpRequest (XHR) to the URL and renders the response with `innerHTML`. It fails to validate the `Content-Type` of the response, allowing attackers to include malicious payloads as part of query parameters that are reflected back to the user. A response such as `{\"q\":\"\",\"results\":[]}` would be parsed as HTML and the JavaScript payload executed.\n\n\n## Recommendation\n\nNo fix is currently available. Consider using an alternative package until a fix is made available.",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
diff --git a/advisories/github-reviewed/2020/09/GHSA-fm4j-4xhm-xpwx/GHSA-fm4j-4xhm-xpwx.json b/advisories/github-reviewed/2020/09/GHSA-fm4j-4xhm-xpwx/GHSA-fm4j-4xhm-xpwx.json
index b43bbb5d74d..efc6b32679f 100644
--- a/advisories/github-reviewed/2020/09/GHSA-fm4j-4xhm-xpwx/GHSA-fm4j-4xhm-xpwx.json
+++ b/advisories/github-reviewed/2020/09/GHSA-fm4j-4xhm-xpwx/GHSA-fm4j-4xhm-xpwx.json
@@ -3,14 +3,10 @@
"id": "GHSA-fm4j-4xhm-xpwx",
"modified": "2020-08-31T18:34:58Z",
"published": "2020-09-02T15:51:34Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Sandbox Breakout / Arbitrary Code Execution in sandbox",
"details": "All versions of `sandbox` are vulnerable to Sandbox Escape leading to Remote Code Execution. Due to insufficient input sanitization it is possible to escape the sandbox using constructors.\n\n## Proof of concept\n```\nvar Sandbox = require(\"sandbox\")\ns = new Sandbox()\ncode = `new Function(\"return (this.constructor.constructor('return (this.process.mainModule.constructor._load)')())\")()(\"util\").inspect(\"hi\")`\ns.run(code)\n```\n\n\n## Recommendation\n\nNo fix is currently available. Consider using an alternative module until a fix is made available.",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
@@ -40,9 +36,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": true,
"github_reviewed_at": "2020-08-31T18:34:58Z",
diff --git a/advisories/github-reviewed/2020/09/GHSA-fm7r-2pr7-rw2p/GHSA-fm7r-2pr7-rw2p.json b/advisories/github-reviewed/2020/09/GHSA-fm7r-2pr7-rw2p/GHSA-fm7r-2pr7-rw2p.json
index 21b5eb503b0..1535a871e7e 100644
--- a/advisories/github-reviewed/2020/09/GHSA-fm7r-2pr7-rw2p/GHSA-fm7r-2pr7-rw2p.json
+++ b/advisories/github-reviewed/2020/09/GHSA-fm7r-2pr7-rw2p/GHSA-fm7r-2pr7-rw2p.json
@@ -3,9 +3,7 @@
"id": "GHSA-fm7r-2pr7-rw2p",
"modified": "2021-09-30T21:57:05Z",
"published": "2020-09-02T21:45:02Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in yeoman-genrator",
"details": "Version 3.1.1 of `yeoman-genrator` contains malicious code as a preinstall script. The package is malware designed to take advantage of users making a mistake when typing the name of a module to install. When installed, the package downloads a file from a remote server, executes it and opens a backdoor.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-fpw3-x4xq-6vxq/GHSA-fpw3-x4xq-6vxq.json b/advisories/github-reviewed/2020/09/GHSA-fpw3-x4xq-6vxq/GHSA-fpw3-x4xq-6vxq.json
index 6307cedd5fd..2a86b980c89 100644
--- a/advisories/github-reviewed/2020/09/GHSA-fpw3-x4xq-6vxq/GHSA-fpw3-x4xq-6vxq.json
+++ b/advisories/github-reviewed/2020/09/GHSA-fpw3-x4xq-6vxq/GHSA-fpw3-x4xq-6vxq.json
@@ -3,9 +3,7 @@
"id": "GHSA-fpw3-x4xq-6vxq",
"modified": "2021-10-01T13:46:23Z",
"published": "2020-09-02T18:32:13Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in wepack-cli",
"details": "All versions of `wepack-cli` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-fqw7-8v6m-2f86/GHSA-fqw7-8v6m-2f86.json b/advisories/github-reviewed/2020/09/GHSA-fqw7-8v6m-2f86/GHSA-fqw7-8v6m-2f86.json
index ff615f9db58..4a79d1c329f 100644
--- a/advisories/github-reviewed/2020/09/GHSA-fqw7-8v6m-2f86/GHSA-fqw7-8v6m-2f86.json
+++ b/advisories/github-reviewed/2020/09/GHSA-fqw7-8v6m-2f86/GHSA-fqw7-8v6m-2f86.json
@@ -3,9 +3,7 @@
"id": "GHSA-fqw7-8v6m-2f86",
"modified": "2021-09-30T21:54:46Z",
"published": "2020-09-02T21:37:39Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in hulp",
"details": "All versions of `hulp` contain malicious code as a preinstall script. When installed, the package calls home to a Command and Control server to execute arbitrary commands.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-frxq-v7fm-m4pv/GHSA-frxq-v7fm-m4pv.json b/advisories/github-reviewed/2020/09/GHSA-frxq-v7fm-m4pv/GHSA-frxq-v7fm-m4pv.json
index f31fd0c9828..52006fd2b4c 100644
--- a/advisories/github-reviewed/2020/09/GHSA-frxq-v7fm-m4pv/GHSA-frxq-v7fm-m4pv.json
+++ b/advisories/github-reviewed/2020/09/GHSA-frxq-v7fm-m4pv/GHSA-frxq-v7fm-m4pv.json
@@ -3,9 +3,7 @@
"id": "GHSA-frxq-v7fm-m4pv",
"modified": "2021-10-01T14:04:59Z",
"published": "2020-09-02T20:27:53Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in requuest",
"details": "All versions of `requuest` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-g5q2-fcg9-j526/GHSA-g5q2-fcg9-j526.json b/advisories/github-reviewed/2020/09/GHSA-g5q2-fcg9-j526/GHSA-g5q2-fcg9-j526.json
index 825bf30d43b..7e9d42df3dd 100644
--- a/advisories/github-reviewed/2020/09/GHSA-g5q2-fcg9-j526/GHSA-g5q2-fcg9-j526.json
+++ b/advisories/github-reviewed/2020/09/GHSA-g5q2-fcg9-j526/GHSA-g5q2-fcg9-j526.json
@@ -3,9 +3,7 @@
"id": "GHSA-g5q2-fcg9-j526",
"modified": "2021-09-30T19:46:50Z",
"published": "2020-09-03T17:40:18Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in hsf-clients",
"details": "All versions of `hsf-clients` contain malicious code. The package uploads system information to a remote server, downloads a file and executes it.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-g7mw-5cq6-fv82/GHSA-g7mw-5cq6-fv82.json b/advisories/github-reviewed/2020/09/GHSA-g7mw-5cq6-fv82/GHSA-g7mw-5cq6-fv82.json
index 558ef9c935a..c153de3ab8c 100644
--- a/advisories/github-reviewed/2020/09/GHSA-g7mw-5cq6-fv82/GHSA-g7mw-5cq6-fv82.json
+++ b/advisories/github-reviewed/2020/09/GHSA-g7mw-5cq6-fv82/GHSA-g7mw-5cq6-fv82.json
@@ -3,14 +3,10 @@
"id": "GHSA-g7mw-5cq6-fv82",
"modified": "2021-09-27T21:00:38Z",
"published": "2020-09-02T21:20:40Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Cross-Site Scripting in wangeditor",
"details": "All versions of `wangeditor` are vulnerable to Cross-Site Scripting. The package fails to properly encode output, allowing arbitrary JavaScript to be inserted in links and executed by browsers.\n\n\n## Recommendation\n\nNo fix is currently available. Consider using an alternative module until a fix is made available.",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
diff --git a/advisories/github-reviewed/2020/09/GHSA-g8jc-mm3c-cwhj/GHSA-g8jc-mm3c-cwhj.json b/advisories/github-reviewed/2020/09/GHSA-g8jc-mm3c-cwhj/GHSA-g8jc-mm3c-cwhj.json
index af4edcb23ab..9a9a1dc10b6 100644
--- a/advisories/github-reviewed/2020/09/GHSA-g8jc-mm3c-cwhj/GHSA-g8jc-mm3c-cwhj.json
+++ b/advisories/github-reviewed/2020/09/GHSA-g8jc-mm3c-cwhj/GHSA-g8jc-mm3c-cwhj.json
@@ -3,9 +3,7 @@
"id": "GHSA-g8jc-mm3c-cwhj",
"modified": "2021-10-01T14:08:00Z",
"published": "2020-09-02T20:31:06Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in reques",
"details": "All versions of `reques` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-gfjr-xqhm-qvv3/GHSA-gfjr-xqhm-qvv3.json b/advisories/github-reviewed/2020/09/GHSA-gfjr-xqhm-qvv3/GHSA-gfjr-xqhm-qvv3.json
index 251160b5feb..bd2380c9077 100644
--- a/advisories/github-reviewed/2020/09/GHSA-gfjr-xqhm-qvv3/GHSA-gfjr-xqhm-qvv3.json
+++ b/advisories/github-reviewed/2020/09/GHSA-gfjr-xqhm-qvv3/GHSA-gfjr-xqhm-qvv3.json
@@ -3,9 +3,7 @@
"id": "GHSA-gfjr-xqhm-qvv3",
"modified": "2021-10-01T14:01:11Z",
"published": "2020-09-02T20:16:09Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in aysnc",
"details": "All versions of `aysnc` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-h26f-j4mv-84g7/GHSA-h26f-j4mv-84g7.json b/advisories/github-reviewed/2020/09/GHSA-h26f-j4mv-84g7/GHSA-h26f-j4mv-84g7.json
index 9cd07c703ef..c4f869dd601 100644
--- a/advisories/github-reviewed/2020/09/GHSA-h26f-j4mv-84g7/GHSA-h26f-j4mv-84g7.json
+++ b/advisories/github-reviewed/2020/09/GHSA-h26f-j4mv-84g7/GHSA-h26f-j4mv-84g7.json
@@ -3,9 +3,7 @@
"id": "GHSA-h26f-j4mv-84g7",
"modified": "2021-10-01T14:00:36Z",
"published": "2020-09-02T18:39:43Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in asycn",
"details": "All versions of `asycn` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-h44f-769q-j6px/GHSA-h44f-769q-j6px.json b/advisories/github-reviewed/2020/09/GHSA-h44f-769q-j6px/GHSA-h44f-769q-j6px.json
index 7f36cd8e817..f80c4c3e965 100644
--- a/advisories/github-reviewed/2020/09/GHSA-h44f-769q-j6px/GHSA-h44f-769q-j6px.json
+++ b/advisories/github-reviewed/2020/09/GHSA-h44f-769q-j6px/GHSA-h44f-769q-j6px.json
@@ -3,9 +3,7 @@
"id": "GHSA-h44f-769q-j6px",
"modified": "2021-10-01T14:08:15Z",
"published": "2020-09-02T20:33:14Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in requet",
"details": "All versions of `requet` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-h5vm-jhq7-w647/GHSA-h5vm-jhq7-w647.json b/advisories/github-reviewed/2020/09/GHSA-h5vm-jhq7-w647/GHSA-h5vm-jhq7-w647.json
index 14344afde0a..f17b737abdc 100644
--- a/advisories/github-reviewed/2020/09/GHSA-h5vm-jhq7-w647/GHSA-h5vm-jhq7-w647.json
+++ b/advisories/github-reviewed/2020/09/GHSA-h5vm-jhq7-w647/GHSA-h5vm-jhq7-w647.json
@@ -3,9 +3,7 @@
"id": "GHSA-h5vm-jhq7-w647",
"modified": "2021-10-01T14:01:26Z",
"published": "2020-09-02T20:17:13Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in momen",
"details": "All versions of `momen` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-h726-x36v-rx45/GHSA-h726-x36v-rx45.json b/advisories/github-reviewed/2020/09/GHSA-h726-x36v-rx45/GHSA-h726-x36v-rx45.json
index 6d171c01a4e..c871343dc02 100644
--- a/advisories/github-reviewed/2020/09/GHSA-h726-x36v-rx45/GHSA-h726-x36v-rx45.json
+++ b/advisories/github-reviewed/2020/09/GHSA-h726-x36v-rx45/GHSA-h726-x36v-rx45.json
@@ -3,14 +3,10 @@
"id": "GHSA-h726-x36v-rx45",
"modified": "2020-08-31T18:46:04Z",
"published": "2020-09-03T18:04:54Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Prototype Pollution in lodash.merge",
"details": "Versions of `lodash.merge` before 4.6.2 are vulnerable to prototype pollution. The function `merge` may allow a malicious user to modify the prototype of `Object` via `{constructor: {prototype: {...}}}` causing the addition or modification of an existing property that will exist on all objects.\n\n\n\n\n## Recommendation\n\nUpdate to version 4.6.2 or later.",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
diff --git a/advisories/github-reviewed/2020/09/GHSA-hg5q-rj62-c43g/GHSA-hg5q-rj62-c43g.json b/advisories/github-reviewed/2020/09/GHSA-hg5q-rj62-c43g/GHSA-hg5q-rj62-c43g.json
index dc6bf50a376..404c627c0ec 100644
--- a/advisories/github-reviewed/2020/09/GHSA-hg5q-rj62-c43g/GHSA-hg5q-rj62-c43g.json
+++ b/advisories/github-reviewed/2020/09/GHSA-hg5q-rj62-c43g/GHSA-hg5q-rj62-c43g.json
@@ -3,9 +3,7 @@
"id": "GHSA-hg5q-rj62-c43g",
"modified": "2021-09-30T21:26:33Z",
"published": "2020-09-02T21:29:08Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in reqest",
"details": "All versions of `reqest` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-hx5x-49mm-vmhw/GHSA-hx5x-49mm-vmhw.json b/advisories/github-reviewed/2020/09/GHSA-hx5x-49mm-vmhw/GHSA-hx5x-49mm-vmhw.json
index 1673c9fc1fd..272ca198f8e 100644
--- a/advisories/github-reviewed/2020/09/GHSA-hx5x-49mm-vmhw/GHSA-hx5x-49mm-vmhw.json
+++ b/advisories/github-reviewed/2020/09/GHSA-hx5x-49mm-vmhw/GHSA-hx5x-49mm-vmhw.json
@@ -3,9 +3,7 @@
"id": "GHSA-hx5x-49mm-vmhw",
"modified": "2021-09-27T22:39:39Z",
"published": "2020-09-03T02:36:43Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "SQL Injection in sails-mysql",
"details": "Versions of `sails-mysql` prior to 0.10.8 are vulnerable to SQL Injection. The `sort` keyword is not properly sanitized and may allow attackers to inject SQL statements and execute arbitrary SQL queries\n\n\n## Recommendation\n\nUpgrade to version 0.10.8 or later.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-hxwc-5vw9-2w4w/GHSA-hxwc-5vw9-2w4w.json b/advisories/github-reviewed/2020/09/GHSA-hxwc-5vw9-2w4w/GHSA-hxwc-5vw9-2w4w.json
index 7b136037c89..fa4a9faff1f 100644
--- a/advisories/github-reviewed/2020/09/GHSA-hxwc-5vw9-2w4w/GHSA-hxwc-5vw9-2w4w.json
+++ b/advisories/github-reviewed/2020/09/GHSA-hxwc-5vw9-2w4w/GHSA-hxwc-5vw9-2w4w.json
@@ -3,14 +3,10 @@
"id": "GHSA-hxwc-5vw9-2w4w",
"modified": "2021-09-27T15:13:26Z",
"published": "2020-09-02T15:52:39Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "NoSQL Injection in loopback-connector-mongodb",
"details": "Versions of `loopback-connector-mongodb` prior to 3.6.0 are vulnerable to NoSQL Injection. Filters passed to the database query are not properly sanitized which leads to execution of code on the database driver and data leak.\n\n\n## Recommendation\n\nUpgrade to version 3.6.0 or later.",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
diff --git a/advisories/github-reviewed/2020/09/GHSA-j8hw-49gg-vq3w/GHSA-j8hw-49gg-vq3w.json b/advisories/github-reviewed/2020/09/GHSA-j8hw-49gg-vq3w/GHSA-j8hw-49gg-vq3w.json
index 7a6faf3273b..d2f98f2a2c6 100644
--- a/advisories/github-reviewed/2020/09/GHSA-j8hw-49gg-vq3w/GHSA-j8hw-49gg-vq3w.json
+++ b/advisories/github-reviewed/2020/09/GHSA-j8hw-49gg-vq3w/GHSA-j8hw-49gg-vq3w.json
@@ -3,9 +3,7 @@
"id": "GHSA-j8hw-49gg-vq3w",
"modified": "2021-09-30T20:00:58Z",
"published": "2020-09-03T17:45:41Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in retcodelog",
"details": "All versions of `retcodelog` contain malicious code. The package uploads system information to a remote server, downloads a file and executes it.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-j8qr-rvcv-crhv/GHSA-j8qr-rvcv-crhv.json b/advisories/github-reviewed/2020/09/GHSA-j8qr-rvcv-crhv/GHSA-j8qr-rvcv-crhv.json
index ef1bc980250..03bfb8b1c71 100644
--- a/advisories/github-reviewed/2020/09/GHSA-j8qr-rvcv-crhv/GHSA-j8qr-rvcv-crhv.json
+++ b/advisories/github-reviewed/2020/09/GHSA-j8qr-rvcv-crhv/GHSA-j8qr-rvcv-crhv.json
@@ -3,14 +3,10 @@
"id": "GHSA-j8qr-rvcv-crhv",
"modified": "2020-08-31T18:40:50Z",
"published": "2020-09-11T21:18:05Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in electron-native-notify",
"details": "All versions of `electron-native-notify` contain malicious code. The package was part of a targeted attack to steal cryptocurrency wallet seeds and upload them to a remote server, effectively giving attackers access to users wallets.\n\n\n## Recommendation\n\nRemove the package from your environment and [follow the recommendations by Komodo](https://komodoplatform.com/vulnerability-discovered-in-komodos-agama-wallet-this-is-what-you-need-to-do/)",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
@@ -44,9 +40,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "CRITICAL",
"github_reviewed": true,
"github_reviewed_at": "2020-08-31T18:40:50Z",
diff --git a/advisories/github-reviewed/2020/09/GHSA-jp9g-5x75-ccp8/GHSA-jp9g-5x75-ccp8.json b/advisories/github-reviewed/2020/09/GHSA-jp9g-5x75-ccp8/GHSA-jp9g-5x75-ccp8.json
index ea966a5b40f..fd9d7990281 100644
--- a/advisories/github-reviewed/2020/09/GHSA-jp9g-5x75-ccp8/GHSA-jp9g-5x75-ccp8.json
+++ b/advisories/github-reviewed/2020/09/GHSA-jp9g-5x75-ccp8/GHSA-jp9g-5x75-ccp8.json
@@ -3,9 +3,7 @@
"id": "GHSA-jp9g-5x75-ccp8",
"modified": "2021-09-30T21:48:24Z",
"published": "2020-09-02T21:34:30Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in colro-name",
"details": "Version 9.0.0 of `colro-name` contained malicious code as a preinstall script. The package downloaded a file from a remote server, executed it and opened a backdoor.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-m2fp-c79h-rr79/GHSA-m2fp-c79h-rr79.json b/advisories/github-reviewed/2020/09/GHSA-m2fp-c79h-rr79/GHSA-m2fp-c79h-rr79.json
index 043be750dfa..34dd598a5a1 100644
--- a/advisories/github-reviewed/2020/09/GHSA-m2fp-c79h-rr79/GHSA-m2fp-c79h-rr79.json
+++ b/advisories/github-reviewed/2020/09/GHSA-m2fp-c79h-rr79/GHSA-m2fp-c79h-rr79.json
@@ -3,9 +3,7 @@
"id": "GHSA-m2fp-c79h-rr79",
"modified": "2021-09-30T21:56:28Z",
"published": "2020-09-02T21:42:56Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in tensorplow",
"details": "All versions of `tensorplow` contain malicious code as a preinstall script. When installed, the package calls home to a Command and Control server to execute arbitrary commands.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-m5ch-gx8g-rg73/GHSA-m5ch-gx8g-rg73.json b/advisories/github-reviewed/2020/09/GHSA-m5ch-gx8g-rg73/GHSA-m5ch-gx8g-rg73.json
index 752b6943994..963c58332d5 100644
--- a/advisories/github-reviewed/2020/09/GHSA-m5ch-gx8g-rg73/GHSA-m5ch-gx8g-rg73.json
+++ b/advisories/github-reviewed/2020/09/GHSA-m5ch-gx8g-rg73/GHSA-m5ch-gx8g-rg73.json
@@ -3,14 +3,10 @@
"id": "GHSA-m5ch-gx8g-rg73",
"modified": "2020-08-31T18:34:39Z",
"published": "2020-09-02T15:43:53Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Remote Code Execution in pomelo-monitor",
"details": "All versions of `pomelo-monitor` are vulnerable to Remote Code Execution. Due to insufficient input validation an attacker could run arbitrary commands on the server thus rendering the package vulnerable to Remote Code Execution.\n\n\n## Recommendation\n\nNo fix is currently available. Consider using an alternative module until a fix is made available.",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
diff --git a/advisories/github-reviewed/2020/09/GHSA-mmph-wp49-r48h/GHSA-mmph-wp49-r48h.json b/advisories/github-reviewed/2020/09/GHSA-mmph-wp49-r48h/GHSA-mmph-wp49-r48h.json
index a57ad42b626..c0567d7fc34 100644
--- a/advisories/github-reviewed/2020/09/GHSA-mmph-wp49-r48h/GHSA-mmph-wp49-r48h.json
+++ b/advisories/github-reviewed/2020/09/GHSA-mmph-wp49-r48h/GHSA-mmph-wp49-r48h.json
@@ -3,9 +3,7 @@
"id": "GHSA-mmph-wp49-r48h",
"modified": "2021-10-01T14:02:46Z",
"published": "2020-09-02T20:20:26Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in experss",
"details": "All versions of `experss` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-mq9h-cwc2-6j5r/GHSA-mq9h-cwc2-6j5r.json b/advisories/github-reviewed/2020/09/GHSA-mq9h-cwc2-6j5r/GHSA-mq9h-cwc2-6j5r.json
index a7dd0ba8476..a7d9c3d7120 100644
--- a/advisories/github-reviewed/2020/09/GHSA-mq9h-cwc2-6j5r/GHSA-mq9h-cwc2-6j5r.json
+++ b/advisories/github-reviewed/2020/09/GHSA-mq9h-cwc2-6j5r/GHSA-mq9h-cwc2-6j5r.json
@@ -3,9 +3,7 @@
"id": "GHSA-mq9h-cwc2-6j5r",
"modified": "2021-09-30T19:50:21Z",
"published": "2020-09-03T17:42:27Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in midway-dataproxy",
"details": "All versions of `midway-dataproxy` contain malicious code. The package uploads system information to a remote server, downloads a file and executes it.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-mvch-rh6h-2m47/GHSA-mvch-rh6h-2m47.json b/advisories/github-reviewed/2020/09/GHSA-mvch-rh6h-2m47/GHSA-mvch-rh6h-2m47.json
index a4faf662399..703a8da0f4c 100644
--- a/advisories/github-reviewed/2020/09/GHSA-mvch-rh6h-2m47/GHSA-mvch-rh6h-2m47.json
+++ b/advisories/github-reviewed/2020/09/GHSA-mvch-rh6h-2m47/GHSA-mvch-rh6h-2m47.json
@@ -3,9 +3,7 @@
"id": "GHSA-mvch-rh6h-2m47",
"modified": "2021-10-01T14:09:54Z",
"published": "2020-09-11T21:10:29Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in equest",
"details": "All versions of `equest` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-mxmj-84q8-34r7/GHSA-mxmj-84q8-34r7.json b/advisories/github-reviewed/2020/09/GHSA-mxmj-84q8-34r7/GHSA-mxmj-84q8-34r7.json
index 123a29c24c3..c23bbe00025 100644
--- a/advisories/github-reviewed/2020/09/GHSA-mxmj-84q8-34r7/GHSA-mxmj-84q8-34r7.json
+++ b/advisories/github-reviewed/2020/09/GHSA-mxmj-84q8-34r7/GHSA-mxmj-84q8-34r7.json
@@ -3,14 +3,10 @@
"id": "GHSA-mxmj-84q8-34r7",
"modified": "2020-08-31T18:41:47Z",
"published": "2020-09-03T02:39:49Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Command Injection in expressfs",
"details": "All versions of `expressfs` are vulnerable to Command Injection. The package does not validate user input on several API endpoints, allowing attackers to run arbitrary commands in the system. The affected endpoints are: `expressfs.appendFile`, `expressfs.cp`, `expressfs.create` and `expressfs.rmdir`.\n\n\n## Recommendation\n\nNo fix is currently available. Consider using an alternative module until a fix is made available.",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
diff --git a/advisories/github-reviewed/2020/09/GHSA-p33q-w45h-2hcj/GHSA-p33q-w45h-2hcj.json b/advisories/github-reviewed/2020/09/GHSA-p33q-w45h-2hcj/GHSA-p33q-w45h-2hcj.json
index d881ba0b57e..0703ec58437 100644
--- a/advisories/github-reviewed/2020/09/GHSA-p33q-w45h-2hcj/GHSA-p33q-w45h-2hcj.json
+++ b/advisories/github-reviewed/2020/09/GHSA-p33q-w45h-2hcj/GHSA-p33q-w45h-2hcj.json
@@ -3,9 +3,7 @@
"id": "GHSA-p33q-w45h-2hcj",
"modified": "2021-10-01T13:44:09Z",
"published": "2020-09-02T18:30:03Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in 4equest",
"details": "All versions of `4equest` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-p8fm-w787-x6x3/GHSA-p8fm-w787-x6x3.json b/advisories/github-reviewed/2020/09/GHSA-p8fm-w787-x6x3/GHSA-p8fm-w787-x6x3.json
index b6f3848a146..87fee8e5c17 100644
--- a/advisories/github-reviewed/2020/09/GHSA-p8fm-w787-x6x3/GHSA-p8fm-w787-x6x3.json
+++ b/advisories/github-reviewed/2020/09/GHSA-p8fm-w787-x6x3/GHSA-p8fm-w787-x6x3.json
@@ -3,9 +3,7 @@
"id": "GHSA-p8fm-w787-x6x3",
"modified": "2021-10-01T13:42:27Z",
"published": "2020-09-02T15:50:28Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in portionfatty12",
"details": "All versions of `portionfatty12` are considered malicious. The package is malware designed to steal user's data. When installed it uploads the user's public SSH keys to a remote server.\n\n\n## Recommendation\n\nThis package is not available on the npm Registry anymore. If you happen to find this package in your environment you should consider the system it was installed on compromised and assess if further response (such as rotating all credentials found on the compromised machine) is necessary.\n",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-p9vv-3945-x93h/GHSA-p9vv-3945-x93h.json b/advisories/github-reviewed/2020/09/GHSA-p9vv-3945-x93h/GHSA-p9vv-3945-x93h.json
index 22e42158f05..1baeb8eee60 100644
--- a/advisories/github-reviewed/2020/09/GHSA-p9vv-3945-x93h/GHSA-p9vv-3945-x93h.json
+++ b/advisories/github-reviewed/2020/09/GHSA-p9vv-3945-x93h/GHSA-p9vv-3945-x93h.json
@@ -3,14 +3,10 @@
"id": "GHSA-p9vv-3945-x93h",
"modified": "2021-09-27T13:59:52Z",
"published": "2020-09-02T15:47:10Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Cross-Site Scripting in semantic-ui-search",
"details": "All versions of `semantic-ui-search` are vulnerable to Cross-Site Scripting. Lack of output encoding on the selection dropdowns can lead to user input being executed instead of printed as text.\n\n\n## Recommendation\n\nNo fix is currently available. Consider using an alternative module until a fix is made available.",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
diff --git a/advisories/github-reviewed/2020/09/GHSA-pj97-j597-ppm7/GHSA-pj97-j597-ppm7.json b/advisories/github-reviewed/2020/09/GHSA-pj97-j597-ppm7/GHSA-pj97-j597-ppm7.json
index 194b004e118..e362332b750 100644
--- a/advisories/github-reviewed/2020/09/GHSA-pj97-j597-ppm7/GHSA-pj97-j597-ppm7.json
+++ b/advisories/github-reviewed/2020/09/GHSA-pj97-j597-ppm7/GHSA-pj97-j597-ppm7.json
@@ -3,9 +3,7 @@
"id": "GHSA-pj97-j597-ppm7",
"modified": "2021-09-30T20:30:01Z",
"published": "2020-09-02T21:15:22Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in rqeuest",
"details": "All versions of `rqeuest` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-pm9v-325f-5g74/GHSA-pm9v-325f-5g74.json b/advisories/github-reviewed/2020/09/GHSA-pm9v-325f-5g74/GHSA-pm9v-325f-5g74.json
index 1c7a8885700..09416cc734b 100644
--- a/advisories/github-reviewed/2020/09/GHSA-pm9v-325f-5g74/GHSA-pm9v-325f-5g74.json
+++ b/advisories/github-reviewed/2020/09/GHSA-pm9v-325f-5g74/GHSA-pm9v-325f-5g74.json
@@ -3,9 +3,7 @@
"id": "GHSA-pm9v-325f-5g74",
"modified": "2021-09-30T21:26:49Z",
"published": "2020-09-02T21:30:11Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in saync",
"details": "All versions of `saync ` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-pmgv-94f5-6w7w/GHSA-pmgv-94f5-6w7w.json b/advisories/github-reviewed/2020/09/GHSA-pmgv-94f5-6w7w/GHSA-pmgv-94f5-6w7w.json
index 515d6cb2ce1..6959c73adf7 100644
--- a/advisories/github-reviewed/2020/09/GHSA-pmgv-94f5-6w7w/GHSA-pmgv-94f5-6w7w.json
+++ b/advisories/github-reviewed/2020/09/GHSA-pmgv-94f5-6w7w/GHSA-pmgv-94f5-6w7w.json
@@ -3,9 +3,7 @@
"id": "GHSA-pmgv-94f5-6w7w",
"modified": "2021-10-01T14:03:02Z",
"published": "2020-09-02T20:21:30Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in eact",
"details": "All versions of `eact` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-pqpp-2363-649v/GHSA-pqpp-2363-649v.json b/advisories/github-reviewed/2020/09/GHSA-pqpp-2363-649v/GHSA-pqpp-2363-649v.json
index a122c81a5bb..81d94148c68 100644
--- a/advisories/github-reviewed/2020/09/GHSA-pqpp-2363-649v/GHSA-pqpp-2363-649v.json
+++ b/advisories/github-reviewed/2020/09/GHSA-pqpp-2363-649v/GHSA-pqpp-2363-649v.json
@@ -3,14 +3,10 @@
"id": "GHSA-pqpp-2363-649v",
"modified": "2020-08-31T18:36:36Z",
"published": "2020-09-02T18:22:30Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Cross-Site Scripting in buttle",
"details": "All versions of `buttle` are vulnerable to Cross-Site Scripting. Due to misconfiguration of its rendering engine, `buttle` does not sanitize the HTML output allowing attackers to run arbitrary JavaScript when processing malicious markdown files.\n\n\n## Recommendation\n\nNo fix is currently available. Consider using an alternative module until a fix is made available.\n",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
diff --git a/advisories/github-reviewed/2020/09/GHSA-q42c-rrp3-r3xm/GHSA-q42c-rrp3-r3xm.json b/advisories/github-reviewed/2020/09/GHSA-q42c-rrp3-r3xm/GHSA-q42c-rrp3-r3xm.json
index bbfc6fc0266..e11f89ee165 100644
--- a/advisories/github-reviewed/2020/09/GHSA-q42c-rrp3-r3xm/GHSA-q42c-rrp3-r3xm.json
+++ b/advisories/github-reviewed/2020/09/GHSA-q42c-rrp3-r3xm/GHSA-q42c-rrp3-r3xm.json
@@ -3,9 +3,7 @@
"id": "GHSA-q42c-rrp3-r3xm",
"modified": "2021-09-30T22:02:15Z",
"published": "2020-09-11T21:13:44Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in commmander",
"details": "All versions of `commmander` contain malicious code . The package is malware designed to take advantage of users making a mistake when typing the name of a module to install. Upon require the package attempts to start a cryptocurrency miner using coin-hive.\n\n\n## Recommendation\n\nRemove the package from your environment and verify whether your system is running the cryptocurrency miner.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-qj2g-642f-4jrv/GHSA-qj2g-642f-4jrv.json b/advisories/github-reviewed/2020/09/GHSA-qj2g-642f-4jrv/GHSA-qj2g-642f-4jrv.json
index 4e7e3007fe1..c723f03b792 100644
--- a/advisories/github-reviewed/2020/09/GHSA-qj2g-642f-4jrv/GHSA-qj2g-642f-4jrv.json
+++ b/advisories/github-reviewed/2020/09/GHSA-qj2g-642f-4jrv/GHSA-qj2g-642f-4jrv.json
@@ -3,9 +3,7 @@
"id": "GHSA-qj2g-642f-4jrv",
"modified": "2021-09-30T21:15:22Z",
"published": "2020-09-02T21:17:30Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in carloprojectlesang",
"details": "All versions of `carloprojectlesang` contain obfuscated malware that uploads Discord user tokens to a remote server. This allows attackers to make purchases on behalf of users if they have credit cards linked to their Discord accounts.\n\n\n## Recommendation\n\nRemove the package from your environment. Review your Discord account access and rotate tokens if possible. If a credit card was linked to a compromised account contact your credit card company.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-qj3g-wfr7-3cv7/GHSA-qj3g-wfr7-3cv7.json b/advisories/github-reviewed/2020/09/GHSA-qj3g-wfr7-3cv7/GHSA-qj3g-wfr7-3cv7.json
index 6b070523a7b..9d86a2de49d 100644
--- a/advisories/github-reviewed/2020/09/GHSA-qj3g-wfr7-3cv7/GHSA-qj3g-wfr7-3cv7.json
+++ b/advisories/github-reviewed/2020/09/GHSA-qj3g-wfr7-3cv7/GHSA-qj3g-wfr7-3cv7.json
@@ -3,9 +3,7 @@
"id": "GHSA-qj3g-wfr7-3cv7",
"modified": "2021-09-30T21:56:11Z",
"published": "2020-09-02T21:41:53Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in require-ports",
"details": "Version 10.4.0 of `require-ports` contains malicious code as a preinstall script. The package is malware designed to take advantage of users making a mistake when typing the name of a module to install. When installed, the package downloads a file from a remote server, executes it and opens a backdoor.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-qm4q-f956-fg64/GHSA-qm4q-f956-fg64.json b/advisories/github-reviewed/2020/09/GHSA-qm4q-f956-fg64/GHSA-qm4q-f956-fg64.json
index 25102d0c9e9..8f131cfe444 100644
--- a/advisories/github-reviewed/2020/09/GHSA-qm4q-f956-fg64/GHSA-qm4q-f956-fg64.json
+++ b/advisories/github-reviewed/2020/09/GHSA-qm4q-f956-fg64/GHSA-qm4q-f956-fg64.json
@@ -3,9 +3,7 @@
"id": "GHSA-qm4q-f956-fg64",
"modified": "2021-09-30T19:50:00Z",
"published": "2020-09-03T17:39:13Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in luna-mock",
"details": "All versions of `luna-mock` contain malicious code. The package uploads system information to a remote server, downloads a file and executes it.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-qv78-398w-cxp7/GHSA-qv78-398w-cxp7.json b/advisories/github-reviewed/2020/09/GHSA-qv78-398w-cxp7/GHSA-qv78-398w-cxp7.json
index 160bcc7e6b7..9d9ed574873 100644
--- a/advisories/github-reviewed/2020/09/GHSA-qv78-398w-cxp7/GHSA-qv78-398w-cxp7.json
+++ b/advisories/github-reviewed/2020/09/GHSA-qv78-398w-cxp7/GHSA-qv78-398w-cxp7.json
@@ -3,9 +3,7 @@
"id": "GHSA-qv78-398w-cxp7",
"modified": "2021-09-30T22:00:05Z",
"published": "2020-09-11T21:08:19Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in shrugging-logging",
"details": "All versions of `shrugging-logging` contain malicious code as a postinstall script. The package fetches all names of npm packages owned by the user and attempts to add another maintainer to every package as a means of package hijacking,\n\n\n## Recommendation\n\nRemove the package from your system. If you own any packages that were compromised please contact npm security immediately at security@npmjs.com. Also enable 2FA for publishing to further secure packages you maintain.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-r863-p739-275c/GHSA-r863-p739-275c.json b/advisories/github-reviewed/2020/09/GHSA-r863-p739-275c/GHSA-r863-p739-275c.json
index c9758e9e67a..389b4bb4ebf 100644
--- a/advisories/github-reviewed/2020/09/GHSA-r863-p739-275c/GHSA-r863-p739-275c.json
+++ b/advisories/github-reviewed/2020/09/GHSA-r863-p739-275c/GHSA-r863-p739-275c.json
@@ -3,9 +3,7 @@
"id": "GHSA-r863-p739-275c",
"modified": "2021-10-01T14:09:36Z",
"published": "2020-09-11T21:09:24Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in reuest",
"details": "All versions of `reuest` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-r9q4-w3fm-wrm2/GHSA-r9q4-w3fm-wrm2.json b/advisories/github-reviewed/2020/09/GHSA-r9q4-w3fm-wrm2/GHSA-r9q4-w3fm-wrm2.json
index cdbc408fa0b..3712e1aaef6 100644
--- a/advisories/github-reviewed/2020/09/GHSA-r9q4-w3fm-wrm2/GHSA-r9q4-w3fm-wrm2.json
+++ b/advisories/github-reviewed/2020/09/GHSA-r9q4-w3fm-wrm2/GHSA-r9q4-w3fm-wrm2.json
@@ -3,14 +3,10 @@
"id": "GHSA-r9q4-w3fm-wrm2",
"modified": "2021-09-27T21:01:47Z",
"published": "2020-09-02T21:21:43Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Cross-Site Scripting in google-closure-library",
"details": "Versions of `google-closure-library` prior to 20190301.0.0 are vulnerable to Cross-Site Scripting. The `safedomtreeprocessor.processToString()` function improperly processed empty elements, which could allow attackers to execute arbitrary JavaScript through Mutation Cross-Site Scripting.\n\n\n## Recommendation\n\nUpgrade to version 20190301.0.0 or later.",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
diff --git a/advisories/github-reviewed/2020/09/GHSA-rffp-mc78-wjf7/GHSA-rffp-mc78-wjf7.json b/advisories/github-reviewed/2020/09/GHSA-rffp-mc78-wjf7/GHSA-rffp-mc78-wjf7.json
index 03e07ea4a53..dbee5e34190 100644
--- a/advisories/github-reviewed/2020/09/GHSA-rffp-mc78-wjf7/GHSA-rffp-mc78-wjf7.json
+++ b/advisories/github-reviewed/2020/09/GHSA-rffp-mc78-wjf7/GHSA-rffp-mc78-wjf7.json
@@ -3,14 +3,10 @@
"id": "GHSA-rffp-mc78-wjf7",
"modified": "2020-08-31T18:37:21Z",
"published": "2020-09-02T18:26:48Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Command Injection in cocos-utils",
"details": "All versions of `cocos-utils` are vulnerable to Remote Code Execution. The `unzip()` function concatenates user input to `exec()` which may allow attackers to execute arbitrary commands on the server.\n\n\n## Recommendation\n\nNo fix is currently available. Consider using an alternative module until a fix is made available.",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
diff --git a/advisories/github-reviewed/2020/09/GHSA-rggq-f2wf-m6cp/GHSA-rggq-f2wf-m6cp.json b/advisories/github-reviewed/2020/09/GHSA-rggq-f2wf-m6cp/GHSA-rggq-f2wf-m6cp.json
index ddac93e3d19..bc6751b6f74 100644
--- a/advisories/github-reviewed/2020/09/GHSA-rggq-f2wf-m6cp/GHSA-rggq-f2wf-m6cp.json
+++ b/advisories/github-reviewed/2020/09/GHSA-rggq-f2wf-m6cp/GHSA-rggq-f2wf-m6cp.json
@@ -3,9 +3,7 @@
"id": "GHSA-rggq-f2wf-m6cp",
"modified": "2021-10-01T13:44:23Z",
"published": "2020-09-02T18:31:08Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in jajajejejiji",
"details": "All versions of `jajajejejiji` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-rm7c-x424-g2mw/GHSA-rm7c-x424-g2mw.json b/advisories/github-reviewed/2020/09/GHSA-rm7c-x424-g2mw/GHSA-rm7c-x424-g2mw.json
index ba28819b3d6..359833bca36 100644
--- a/advisories/github-reviewed/2020/09/GHSA-rm7c-x424-g2mw/GHSA-rm7c-x424-g2mw.json
+++ b/advisories/github-reviewed/2020/09/GHSA-rm7c-x424-g2mw/GHSA-rm7c-x424-g2mw.json
@@ -3,9 +3,7 @@
"id": "GHSA-rm7c-x424-g2mw",
"modified": "2021-10-01T13:47:19Z",
"published": "2020-09-02T18:36:31Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in asyync",
"details": "All versions of `asyync` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-rvww-x6m4-4vc2/GHSA-rvww-x6m4-4vc2.json b/advisories/github-reviewed/2020/09/GHSA-rvww-x6m4-4vc2/GHSA-rvww-x6m4-4vc2.json
index a6ba8e367e8..7a192504cc4 100644
--- a/advisories/github-reviewed/2020/09/GHSA-rvww-x6m4-4vc2/GHSA-rvww-x6m4-4vc2.json
+++ b/advisories/github-reviewed/2020/09/GHSA-rvww-x6m4-4vc2/GHSA-rvww-x6m4-4vc2.json
@@ -3,9 +3,7 @@
"id": "GHSA-rvww-x6m4-4vc2",
"modified": "2021-09-30T22:00:23Z",
"published": "2020-09-11T21:12:39Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in blubird",
"details": "Version 3.5.0 of `blubird` contains malicious code . The package is malware designed to take advantage of users making a mistake when typing the name of a module to install. Upon require the package attempts to start a cryptocurrency miner using coin-hive.\n\n\n## Recommendation\n\nRemove the package from your environment and verify whether your system is running the cryptocurrency miner.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-rw4r-h883-8pf9/GHSA-rw4r-h883-8pf9.json b/advisories/github-reviewed/2020/09/GHSA-rw4r-h883-8pf9/GHSA-rw4r-h883-8pf9.json
index 9cf9f2e480f..051160b0e4b 100644
--- a/advisories/github-reviewed/2020/09/GHSA-rw4r-h883-8pf9/GHSA-rw4r-h883-8pf9.json
+++ b/advisories/github-reviewed/2020/09/GHSA-rw4r-h883-8pf9/GHSA-rw4r-h883-8pf9.json
@@ -3,9 +3,7 @@
"id": "GHSA-rw4r-h883-8pf9",
"modified": "2021-10-01T14:06:53Z",
"published": "2020-09-02T20:30:02Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in reequest",
"details": "All versions of `reequest` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-v99v-xgjx-7m7g/GHSA-v99v-xgjx-7m7g.json b/advisories/github-reviewed/2020/09/GHSA-v99v-xgjx-7m7g/GHSA-v99v-xgjx-7m7g.json
index 11bc71a2625..942bf651051 100644
--- a/advisories/github-reviewed/2020/09/GHSA-v99v-xgjx-7m7g/GHSA-v99v-xgjx-7m7g.json
+++ b/advisories/github-reviewed/2020/09/GHSA-v99v-xgjx-7m7g/GHSA-v99v-xgjx-7m7g.json
@@ -3,9 +3,7 @@
"id": "GHSA-v99v-xgjx-7m7g",
"modified": "2021-10-01T14:00:55Z",
"published": "2020-09-02T18:40:47Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in asnyc",
"details": "All versions of `asnyc` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-vcg5-9xw6-r56c/GHSA-vcg5-9xw6-r56c.json b/advisories/github-reviewed/2020/09/GHSA-vcg5-9xw6-r56c/GHSA-vcg5-9xw6-r56c.json
index 96ce5cd4822..196dd31b02e 100644
--- a/advisories/github-reviewed/2020/09/GHSA-vcg5-9xw6-r56c/GHSA-vcg5-9xw6-r56c.json
+++ b/advisories/github-reviewed/2020/09/GHSA-vcg5-9xw6-r56c/GHSA-vcg5-9xw6-r56c.json
@@ -3,9 +3,7 @@
"id": "GHSA-vcg5-9xw6-r56c",
"modified": "2021-09-30T21:55:54Z",
"published": "2020-09-02T21:40:49Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in logsymbles",
"details": "Version 2.2.0 of `logsymbles` contains malicious code as a preinstall script. The package is malware designed to take advantage of users making a mistake when typing the name of a module to install. When installed, the package downloads a file from a remote server, executes it and opens a backdoor.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-vf8q-pw7h-r2x2/GHSA-vf8q-pw7h-r2x2.json b/advisories/github-reviewed/2020/09/GHSA-vf8q-pw7h-r2x2/GHSA-vf8q-pw7h-r2x2.json
index 6e9da6beb4b..d201261a0f0 100644
--- a/advisories/github-reviewed/2020/09/GHSA-vf8q-pw7h-r2x2/GHSA-vf8q-pw7h-r2x2.json
+++ b/advisories/github-reviewed/2020/09/GHSA-vf8q-pw7h-r2x2/GHSA-vf8q-pw7h-r2x2.json
@@ -3,9 +3,7 @@
"id": "GHSA-vf8q-pw7h-r2x2",
"modified": "2021-09-30T22:03:15Z",
"published": "2020-09-11T21:15:54Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in epress",
"details": "Version 4.13.2 of `epress` contains malicious code . The package is malware designed to take advantage of users making a mistake when typing the name of a module to install. Upon require the package attempts to start a cryptocurrency miner using coin-hive.\n\n\n## Recommendation\n\nRemove the package from your environment and verify whether your system is running the cryptocurrency miner.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-vw7g-jq9m-3q9v/GHSA-vw7g-jq9m-3q9v.json b/advisories/github-reviewed/2020/09/GHSA-vw7g-jq9m-3q9v/GHSA-vw7g-jq9m-3q9v.json
index 0a7d053b3c7..850d1183d6b 100644
--- a/advisories/github-reviewed/2020/09/GHSA-vw7g-jq9m-3q9v/GHSA-vw7g-jq9m-3q9v.json
+++ b/advisories/github-reviewed/2020/09/GHSA-vw7g-jq9m-3q9v/GHSA-vw7g-jq9m-3q9v.json
@@ -3,14 +3,10 @@
"id": "GHSA-vw7g-jq9m-3q9v",
"modified": "2020-08-31T18:36:38Z",
"published": "2020-09-02T18:23:35Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Unauthorized File Access in glance",
"details": "Versions of `glance` prior to 3.0.7 are vulnerable to Unauthorized File Access. The package provides a `--nodot` option meant to hide files and directories with names that begin with a `.`, such as `.git` but fails to hide files inside a folder that begins with `.`. \n\n\n## Recommendation\n\nUpgrade to version 3.0.7 or later.",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
@@ -43,9 +39,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": true,
"github_reviewed_at": "2020-08-31T18:36:38Z",
diff --git a/advisories/github-reviewed/2020/09/GHSA-w32g-5hqp-gg6q/GHSA-w32g-5hqp-gg6q.json b/advisories/github-reviewed/2020/09/GHSA-w32g-5hqp-gg6q/GHSA-w32g-5hqp-gg6q.json
index fe1ffcb8b25..70246ac89f5 100644
--- a/advisories/github-reviewed/2020/09/GHSA-w32g-5hqp-gg6q/GHSA-w32g-5hqp-gg6q.json
+++ b/advisories/github-reviewed/2020/09/GHSA-w32g-5hqp-gg6q/GHSA-w32g-5hqp-gg6q.json
@@ -3,14 +3,10 @@
"id": "GHSA-w32g-5hqp-gg6q",
"modified": "2021-09-27T13:34:07Z",
"published": "2020-09-02T15:41:41Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Cross-Site Scripting in mermaid",
"details": "Versions of `mermaid` prior to 8.2.3 are vulnerable to Cross-Site Scripting. If malicious input such as `A[\"
\"] ` is provided to the application, it will execute the code instead of rendering it as text due to improper output encoding.\n\n\n## Recommendation\n\nUpgrade to version 8.2.3 or later",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
diff --git a/advisories/github-reviewed/2020/09/GHSA-w3f3-4j22-2v3p/GHSA-w3f3-4j22-2v3p.json b/advisories/github-reviewed/2020/09/GHSA-w3f3-4j22-2v3p/GHSA-w3f3-4j22-2v3p.json
index 9e00b84504b..cb260f6c717 100644
--- a/advisories/github-reviewed/2020/09/GHSA-w3f3-4j22-2v3p/GHSA-w3f3-4j22-2v3p.json
+++ b/advisories/github-reviewed/2020/09/GHSA-w3f3-4j22-2v3p/GHSA-w3f3-4j22-2v3p.json
@@ -3,9 +3,7 @@
"id": "GHSA-w3f3-4j22-2v3p",
"modified": "2021-09-30T21:25:19Z",
"published": "2020-09-02T21:27:02Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in destroyer-of-worlds",
"details": "The package `destroyer-of-worlds` contained malicious code. The package contained a bash script that was run as a postinstall script. The script deleted system files and attempted to exhaust resources by creating a large file, a fork bomb and an endless loop. The script targeted UNIX systems.\n\n\n## Recommendation\n\nRemove the package from your environment and perform additional incident response on your system's files and processes.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-w5q7-3pr9-x44w/GHSA-w5q7-3pr9-x44w.json b/advisories/github-reviewed/2020/09/GHSA-w5q7-3pr9-x44w/GHSA-w5q7-3pr9-x44w.json
index bcc34abe950..b0e73f35afc 100644
--- a/advisories/github-reviewed/2020/09/GHSA-w5q7-3pr9-x44w/GHSA-w5q7-3pr9-x44w.json
+++ b/advisories/github-reviewed/2020/09/GHSA-w5q7-3pr9-x44w/GHSA-w5q7-3pr9-x44w.json
@@ -3,14 +3,10 @@
"id": "GHSA-w5q7-3pr9-x44w",
"modified": "2020-08-31T18:35:52Z",
"published": "2020-09-02T15:59:19Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Denial of Service in serialize-to-js",
"details": "Versions of `serialize-to-js` prior to 2.0.0 are vulnerable to Denial of Service. User input is not properly validated, allowing attackers to provide inputs that lead the execution to loop indefinitely.\n\n\n## Recommendation\n\nUpgrade to version 2.0.0 or later.",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
@@ -39,9 +35,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": true,
"github_reviewed_at": "2020-08-31T18:35:52Z",
diff --git a/advisories/github-reviewed/2020/09/GHSA-w65v-hx54-xrqx/GHSA-w65v-hx54-xrqx.json b/advisories/github-reviewed/2020/09/GHSA-w65v-hx54-xrqx/GHSA-w65v-hx54-xrqx.json
index 92eba4d9a3e..a73e634a142 100644
--- a/advisories/github-reviewed/2020/09/GHSA-w65v-hx54-xrqx/GHSA-w65v-hx54-xrqx.json
+++ b/advisories/github-reviewed/2020/09/GHSA-w65v-hx54-xrqx/GHSA-w65v-hx54-xrqx.json
@@ -3,9 +3,7 @@
"id": "GHSA-w65v-hx54-xrqx",
"modified": "2021-09-30T19:50:35Z",
"published": "2020-09-03T17:41:23Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in midway-xtpl",
"details": "All versions of `midway-xtpl` contain malicious code. The package uploads system information to a remote server, downloads a file and executes it.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-w7wg-24g3-2c78/GHSA-w7wg-24g3-2c78.json b/advisories/github-reviewed/2020/09/GHSA-w7wg-24g3-2c78/GHSA-w7wg-24g3-2c78.json
index 523c07a4a77..5e057eaa88d 100644
--- a/advisories/github-reviewed/2020/09/GHSA-w7wg-24g3-2c78/GHSA-w7wg-24g3-2c78.json
+++ b/advisories/github-reviewed/2020/09/GHSA-w7wg-24g3-2c78/GHSA-w7wg-24g3-2c78.json
@@ -3,9 +3,7 @@
"id": "GHSA-w7wg-24g3-2c78",
"modified": "2021-09-30T20:29:47Z",
"published": "2020-09-02T21:14:17Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in requset",
"details": "All versions of `requset` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-wc7q-qpm4-8pqv/GHSA-wc7q-qpm4-8pqv.json b/advisories/github-reviewed/2020/09/GHSA-wc7q-qpm4-8pqv/GHSA-wc7q-qpm4-8pqv.json
index c4009ef4f88..f28f8867297 100644
--- a/advisories/github-reviewed/2020/09/GHSA-wc7q-qpm4-8pqv/GHSA-wc7q-qpm4-8pqv.json
+++ b/advisories/github-reviewed/2020/09/GHSA-wc7q-qpm4-8pqv/GHSA-wc7q-qpm4-8pqv.json
@@ -3,9 +3,7 @@
"id": "GHSA-wc7q-qpm4-8pqv",
"modified": "2021-10-01T14:07:12Z",
"published": "2020-09-02T20:32:10Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in rrequest",
"details": "All versions of `rrequest` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-wgvj-6v57-wjh3/GHSA-wgvj-6v57-wjh3.json b/advisories/github-reviewed/2020/09/GHSA-wgvj-6v57-wjh3/GHSA-wgvj-6v57-wjh3.json
index 45390f9c8b8..3af30a345cf 100644
--- a/advisories/github-reviewed/2020/09/GHSA-wgvj-6v57-wjh3/GHSA-wgvj-6v57-wjh3.json
+++ b/advisories/github-reviewed/2020/09/GHSA-wgvj-6v57-wjh3/GHSA-wgvj-6v57-wjh3.json
@@ -3,9 +3,7 @@
"id": "GHSA-wgvj-6v57-wjh3",
"modified": "2021-09-30T21:37:06Z",
"published": "2020-09-02T21:30:14Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in bowee",
"details": "Version 1.8.4 of `bowee` contained malicious code as a preinstall script. The package downloaded a file from a remote server, executed it and opened a backdoor.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-wqhw-frpx-5mmp/GHSA-wqhw-frpx-5mmp.json b/advisories/github-reviewed/2020/09/GHSA-wqhw-frpx-5mmp/GHSA-wqhw-frpx-5mmp.json
index 52fcc48fa47..6f35fd271d4 100644
--- a/advisories/github-reviewed/2020/09/GHSA-wqhw-frpx-5mmp/GHSA-wqhw-frpx-5mmp.json
+++ b/advisories/github-reviewed/2020/09/GHSA-wqhw-frpx-5mmp/GHSA-wqhw-frpx-5mmp.json
@@ -3,14 +3,10 @@
"id": "GHSA-wqhw-frpx-5mmp",
"modified": "2020-08-31T18:36:09Z",
"published": "2020-09-02T16:01:33Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Command Injection in tomato",
"details": "All versions of `tomato` are vulnerable to Command Injection. The /api/exec endpoint does not validate user input allowing attackers to run arbitrary commands in the system.\n\n\n## Recommendation\n\nNo fix is currently available. Consider using an alternative module until a fix is made available.",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
diff --git a/advisories/github-reviewed/2020/09/GHSA-x3m6-rprw-862w/GHSA-x3m6-rprw-862w.json b/advisories/github-reviewed/2020/09/GHSA-x3m6-rprw-862w/GHSA-x3m6-rprw-862w.json
index 763ddb51396..a6452f8225b 100644
--- a/advisories/github-reviewed/2020/09/GHSA-x3m6-rprw-862w/GHSA-x3m6-rprw-862w.json
+++ b/advisories/github-reviewed/2020/09/GHSA-x3m6-rprw-862w/GHSA-x3m6-rprw-862w.json
@@ -3,9 +3,7 @@
"id": "GHSA-x3m6-rprw-862w",
"modified": "2021-09-30T19:50:50Z",
"published": "2020-09-03T17:43:31Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in node-buc",
"details": "All versions of `node-buc` contain malicious code. The package uploads system information to a remote server, downloads a file and executes it.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-x6ch-c6rv-f7wh/GHSA-x6ch-c6rv-f7wh.json b/advisories/github-reviewed/2020/09/GHSA-x6ch-c6rv-f7wh/GHSA-x6ch-c6rv-f7wh.json
index d26fa4cb5d9..e4a7ff98fa3 100644
--- a/advisories/github-reviewed/2020/09/GHSA-x6ch-c6rv-f7wh/GHSA-x6ch-c6rv-f7wh.json
+++ b/advisories/github-reviewed/2020/09/GHSA-x6ch-c6rv-f7wh/GHSA-x6ch-c6rv-f7wh.json
@@ -3,9 +3,7 @@
"id": "GHSA-x6ch-c6rv-f7wh",
"modified": "2021-10-01T13:46:49Z",
"published": "2020-09-02T18:34:22Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in asymc",
"details": "All versions of `asymc` typosquatted a popular package of similar name and tracked users who had installed the incorrect package. The package uploaded information to a remote server including: name of the downloaded package, name of the intended package, the Node version and whether the process was running as sudo. There is no further compromise.\n\n\n## Recommendation\n\nRemove the package from your dependencies and always ensure package names are typed correctly upon installation.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-x9hc-rw35-f44h/GHSA-x9hc-rw35-f44h.json b/advisories/github-reviewed/2020/09/GHSA-x9hc-rw35-f44h/GHSA-x9hc-rw35-f44h.json
index a1c39d9c5ff..9f3dee0937f 100644
--- a/advisories/github-reviewed/2020/09/GHSA-x9hc-rw35-f44h/GHSA-x9hc-rw35-f44h.json
+++ b/advisories/github-reviewed/2020/09/GHSA-x9hc-rw35-f44h/GHSA-x9hc-rw35-f44h.json
@@ -3,9 +3,7 @@
"id": "GHSA-x9hc-rw35-f44h",
"modified": "2021-09-27T13:40:52Z",
"published": "2020-09-02T15:46:03Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Sandbox Breakout / Arbitrary Code Execution in static-eval",
"details": "Versions of `static-eval`prior to 2.0.2 pass untrusted user input directly to the global function constructor, resulting in an arbitrary code execution vulnerability when user input is parsed via the package.\n\n## Proof of concept\n```\nvar evaluate = require('static-eval');\nvar parse = require('esprima').parse;\n\nvar src = process.argv[2];\nvar payload = '(function({x}){return x.constructor})({x:\"\".sub})(\"console.log(process.env)\")()'\nvar ast = parse(payload).body[0].expression;\nconsole.log(evaluate(ast, {x:1}));\n```\n\n\n## Recommendation\n\nUpgrade to version 2.0.2 or later.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-xmmp-hrmx-x5g7/GHSA-xmmp-hrmx-x5g7.json b/advisories/github-reviewed/2020/09/GHSA-xmmp-hrmx-x5g7/GHSA-xmmp-hrmx-x5g7.json
index 28484c28438..436adc2be4c 100644
--- a/advisories/github-reviewed/2020/09/GHSA-xmmp-hrmx-x5g7/GHSA-xmmp-hrmx-x5g7.json
+++ b/advisories/github-reviewed/2020/09/GHSA-xmmp-hrmx-x5g7/GHSA-xmmp-hrmx-x5g7.json
@@ -3,9 +3,7 @@
"id": "GHSA-xmmp-hrmx-x5g7",
"modified": "2021-09-30T21:37:37Z",
"published": "2020-09-02T21:32:22Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Malicious Package in bowe",
"details": "Version 1.8.4 of `bowee` contained malicious code as a preinstall script. The package downloaded a file from a remote server, executed it and opened a backdoor.\n\n\n## Recommendation\n\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer.\n\nThe package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"severity": [
diff --git a/advisories/github-reviewed/2020/09/GHSA-xrr6-6ww3-f3qm/GHSA-xrr6-6ww3-f3qm.json b/advisories/github-reviewed/2020/09/GHSA-xrr6-6ww3-f3qm/GHSA-xrr6-6ww3-f3qm.json
index 114693df2dc..ed903e47aa8 100644
--- a/advisories/github-reviewed/2020/09/GHSA-xrr6-6ww3-f3qm/GHSA-xrr6-6ww3-f3qm.json
+++ b/advisories/github-reviewed/2020/09/GHSA-xrr6-6ww3-f3qm/GHSA-xrr6-6ww3-f3qm.json
@@ -3,14 +3,10 @@
"id": "GHSA-xrr6-6ww3-f3qm",
"modified": "2020-08-31T18:39:27Z",
"published": "2020-09-02T21:25:58Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Sandbox Breakout / Arbitrary Code Execution in value-censorship",
"details": "All versions of `value-censorship` are vulnerable to Sandbox Escape leading to Remote Code Execution. The package fails to validate async function constructors allowing attackers to execute arbitrary code.\n\n\n## Recommendation\n\nNo fix is currently available. Consider using an alternative package until a fix is made available.",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
@@ -36,9 +32,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": true,
"github_reviewed_at": "2020-08-31T18:39:27Z",
diff --git a/advisories/github-reviewed/2022/05/GHSA-97gm-mcv6-cphm/GHSA-97gm-mcv6-cphm.json b/advisories/github-reviewed/2022/05/GHSA-97gm-mcv6-cphm/GHSA-97gm-mcv6-cphm.json
index c09bd5de031..8ce71bd8976 100644
--- a/advisories/github-reviewed/2022/05/GHSA-97gm-mcv6-cphm/GHSA-97gm-mcv6-cphm.json
+++ b/advisories/github-reviewed/2022/05/GHSA-97gm-mcv6-cphm/GHSA-97gm-mcv6-cphm.json
@@ -85,9 +85,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": true,
"github_reviewed_at": "2024-01-10T22:39:30Z",
diff --git a/advisories/github-reviewed/2022/05/GHSA-frg3-gpcx-968f/GHSA-frg3-gpcx-968f.json b/advisories/github-reviewed/2022/05/GHSA-frg3-gpcx-968f/GHSA-frg3-gpcx-968f.json
index 51648cb03fc..00c6e478202 100644
--- a/advisories/github-reviewed/2022/05/GHSA-frg3-gpcx-968f/GHSA-frg3-gpcx-968f.json
+++ b/advisories/github-reviewed/2022/05/GHSA-frg3-gpcx-968f/GHSA-frg3-gpcx-968f.json
@@ -50,9 +50,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "CRITICAL",
"github_reviewed": true,
"github_reviewed_at": "2023-06-06T01:55:25Z",
diff --git a/advisories/github-reviewed/2023/03/GHSA-6w5f-5wgr-qjg5/GHSA-6w5f-5wgr-qjg5.json b/advisories/github-reviewed/2023/03/GHSA-6w5f-5wgr-qjg5/GHSA-6w5f-5wgr-qjg5.json
index a304eb75479..3eb2ae7cfc6 100644
--- a/advisories/github-reviewed/2023/03/GHSA-6w5f-5wgr-qjg5/GHSA-6w5f-5wgr-qjg5.json
+++ b/advisories/github-reviewed/2023/03/GHSA-6w5f-5wgr-qjg5/GHSA-6w5f-5wgr-qjg5.json
@@ -3,14 +3,10 @@
"id": "GHSA-6w5f-5wgr-qjg5",
"modified": "2023-03-09T20:21:36Z",
"published": "2023-03-09T20:21:36Z",
- "aliases": [
-
- ],
+ "aliases": [],
"summary": "Constellation allows Emergency shell access during initramfs boot phase",
"details": "### Impact\n\nAn active attacker could let the boot fail on purpose in the initramfs, dropping the serial console into an emergency shell. This gives attackers with access to the serial console full control over the VM.\n\n### Patches\n\nThe issue has been patched in [v2.6.0](https://github.com/edgelesssys/constellation/releases/tag/v2.6.0).\n\n### Workarounds\n\nnone\n\n",
- "severity": [
-
- ],
+ "severity": [],
"affected": [
{
"package": {
@@ -47,9 +43,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": true,
"github_reviewed_at": "2023-03-09T20:21:36Z",
diff --git a/advisories/unreviewed/2022/01/GHSA-fh88-rxj8-f46q/GHSA-fh88-rxj8-f46q.json b/advisories/unreviewed/2022/01/GHSA-fh88-rxj8-f46q/GHSA-fh88-rxj8-f46q.json
index f9899c86bb1..0cc8680318c 100644
--- a/advisories/unreviewed/2022/01/GHSA-fh88-rxj8-f46q/GHSA-fh88-rxj8-f46q.json
+++ b/advisories/unreviewed/2022/01/GHSA-fh88-rxj8-f46q/GHSA-fh88-rxj8-f46q.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -43,9 +41,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/02/GHSA-g325-5mrh-jpx2/GHSA-g325-5mrh-jpx2.json b/advisories/unreviewed/2022/02/GHSA-g325-5mrh-jpx2/GHSA-g325-5mrh-jpx2.json
index 910391c225a..0d5b5288722 100644
--- a/advisories/unreviewed/2022/02/GHSA-g325-5mrh-jpx2/GHSA-g325-5mrh-jpx2.json
+++ b/advisories/unreviewed/2022/02/GHSA-g325-5mrh-jpx2/GHSA-g325-5mrh-jpx2.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -55,9 +53,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/02/GHSA-vmgc-j3j3-w739/GHSA-vmgc-j3j3-w739.json b/advisories/unreviewed/2022/02/GHSA-vmgc-j3j3-w739/GHSA-vmgc-j3j3-w739.json
index 994c3a8ad33..4da73f09aee 100644
--- a/advisories/unreviewed/2022/02/GHSA-vmgc-j3j3-w739/GHSA-vmgc-j3j3-w739.json
+++ b/advisories/unreviewed/2022/02/GHSA-vmgc-j3j3-w739/GHSA-vmgc-j3j3-w739.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -47,9 +45,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/04/GHSA-c4g9-53v4-f2qg/GHSA-c4g9-53v4-f2qg.json b/advisories/unreviewed/2022/04/GHSA-c4g9-53v4-f2qg/GHSA-c4g9-53v4-f2qg.json
index 8128dc2a235..51f409bbdb8 100644
--- a/advisories/unreviewed/2022/04/GHSA-c4g9-53v4-f2qg/GHSA-c4g9-53v4-f2qg.json
+++ b/advisories/unreviewed/2022/04/GHSA-c4g9-53v4-f2qg/GHSA-c4g9-53v4-f2qg.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/04/GHSA-mxvh-95qr-ww4v/GHSA-mxvh-95qr-ww4v.json b/advisories/unreviewed/2022/04/GHSA-mxvh-95qr-ww4v/GHSA-mxvh-95qr-ww4v.json
index fc98f08f2e3..34269e7c0d5 100644
--- a/advisories/unreviewed/2022/04/GHSA-mxvh-95qr-ww4v/GHSA-mxvh-95qr-ww4v.json
+++ b/advisories/unreviewed/2022/04/GHSA-mxvh-95qr-ww4v/GHSA-mxvh-95qr-ww4v.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/04/GHSA-qf6r-hr4r-92vr/GHSA-qf6r-hr4r-92vr.json b/advisories/unreviewed/2022/04/GHSA-qf6r-hr4r-92vr/GHSA-qf6r-hr4r-92vr.json
index 36924952eb9..673980ec64e 100644
--- a/advisories/unreviewed/2022/04/GHSA-qf6r-hr4r-92vr/GHSA-qf6r-hr4r-92vr.json
+++ b/advisories/unreviewed/2022/04/GHSA-qf6r-hr4r-92vr/GHSA-qf6r-hr4r-92vr.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/04/GHSA-r798-gf85-6mc8/GHSA-r798-gf85-6mc8.json b/advisories/unreviewed/2022/04/GHSA-r798-gf85-6mc8/GHSA-r798-gf85-6mc8.json
index 5292d0f2316..2836d51e08f 100644
--- a/advisories/unreviewed/2022/04/GHSA-r798-gf85-6mc8/GHSA-r798-gf85-6mc8.json
+++ b/advisories/unreviewed/2022/04/GHSA-r798-gf85-6mc8/GHSA-r798-gf85-6mc8.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/04/GHSA-w52g-gmgw-x986/GHSA-w52g-gmgw-x986.json b/advisories/unreviewed/2022/04/GHSA-w52g-gmgw-x986/GHSA-w52g-gmgw-x986.json
index 89c7e3e1b98..41ba6e53351 100644
--- a/advisories/unreviewed/2022/04/GHSA-w52g-gmgw-x986/GHSA-w52g-gmgw-x986.json
+++ b/advisories/unreviewed/2022/04/GHSA-w52g-gmgw-x986/GHSA-w52g-gmgw-x986.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/04/GHSA-xmrm-f5h6-fxm7/GHSA-xmrm-f5h6-fxm7.json b/advisories/unreviewed/2022/04/GHSA-xmrm-f5h6-fxm7/GHSA-xmrm-f5h6-fxm7.json
index 735b49fdaff..88d2ba559f4 100644
--- a/advisories/unreviewed/2022/04/GHSA-xmrm-f5h6-fxm7/GHSA-xmrm-f5h6-fxm7.json
+++ b/advisories/unreviewed/2022/04/GHSA-xmrm-f5h6-fxm7/GHSA-xmrm-f5h6-fxm7.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-22j2-46v6-f42v/GHSA-22j2-46v6-f42v.json b/advisories/unreviewed/2022/05/GHSA-22j2-46v6-f42v/GHSA-22j2-46v6-f42v.json
index 2049293d433..41a45e7137d 100644
--- a/advisories/unreviewed/2022/05/GHSA-22j2-46v6-f42v/GHSA-22j2-46v6-f42v.json
+++ b/advisories/unreviewed/2022/05/GHSA-22j2-46v6-f42v/GHSA-22j2-46v6-f42v.json
@@ -7,12 +7,8 @@
"CVE-2007-6089"
],
"details": "PHP remote file inclusion vulnerability in index.php in meBiblio 0.4.5 allows remote attackers to execute arbitrary PHP code via a URL in the action parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-233f-69cg-rpgm/GHSA-233f-69cg-rpgm.json b/advisories/unreviewed/2022/05/GHSA-233f-69cg-rpgm/GHSA-233f-69cg-rpgm.json
index a1c9fdf445b..99437eaa056 100644
--- a/advisories/unreviewed/2022/05/GHSA-233f-69cg-rpgm/GHSA-233f-69cg-rpgm.json
+++ b/advisories/unreviewed/2022/05/GHSA-233f-69cg-rpgm/GHSA-233f-69cg-rpgm.json
@@ -7,12 +7,8 @@
"CVE-2007-5992"
],
"details": "SQL injection vulnerability in index.php in datecomm Social Networking Script (aka Myspace Clone Script) allows remote attackers to execute arbitrary SQL commands via the seid parameter in a viewcat s action on the forums page.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-23mh-p5gr-48gh/GHSA-23mh-p5gr-48gh.json b/advisories/unreviewed/2022/05/GHSA-23mh-p5gr-48gh/GHSA-23mh-p5gr-48gh.json
index 6e24c23dad3..a8c715198ff 100644
--- a/advisories/unreviewed/2022/05/GHSA-23mh-p5gr-48gh/GHSA-23mh-p5gr-48gh.json
+++ b/advisories/unreviewed/2022/05/GHSA-23mh-p5gr-48gh/GHSA-23mh-p5gr-48gh.json
@@ -7,12 +7,8 @@
"CVE-2007-6171"
],
"details": "SQL injection vulnerability in the Postgres Realtime Engine (res_config_pgsql) in Asterisk 1.4.x before 1.4.15 and C.x before C.1.0-beta6 allows remote attackers to execute arbitrary SQL commands via unknown vectors.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-23rg-hpwq-h786/GHSA-23rg-hpwq-h786.json b/advisories/unreviewed/2022/05/GHSA-23rg-hpwq-h786/GHSA-23rg-hpwq-h786.json
index f752110a1ca..1094affe30e 100644
--- a/advisories/unreviewed/2022/05/GHSA-23rg-hpwq-h786/GHSA-23rg-hpwq-h786.json
+++ b/advisories/unreviewed/2022/05/GHSA-23rg-hpwq-h786/GHSA-23rg-hpwq-h786.json
@@ -7,12 +7,8 @@
"CVE-2007-6204"
],
"details": "Multiple stack-based buffer overflows in HP OpenView Network Node Manager (OV NNM) 6.41, 7.01, and 7.51 allow remote attackers to execute arbitrary code via unspecified long arguments to (1) ovlogin.exe, (2) OpenView5.exe, (3) snmpviewer.exe, and (4) webappmon.exe, as demonstrated via a long Action parameter to OpenView5.exe.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-249h-cc9x-grm3/GHSA-249h-cc9x-grm3.json b/advisories/unreviewed/2022/05/GHSA-249h-cc9x-grm3/GHSA-249h-cc9x-grm3.json
index af07f29db27..895d656ff86 100644
--- a/advisories/unreviewed/2022/05/GHSA-249h-cc9x-grm3/GHSA-249h-cc9x-grm3.json
+++ b/advisories/unreviewed/2022/05/GHSA-249h-cc9x-grm3/GHSA-249h-cc9x-grm3.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-25mr-3m57-5v4r/GHSA-25mr-3m57-5v4r.json b/advisories/unreviewed/2022/05/GHSA-25mr-3m57-5v4r/GHSA-25mr-3m57-5v4r.json
index dd9608f7e2a..91535c8e4f5 100644
--- a/advisories/unreviewed/2022/05/GHSA-25mr-3m57-5v4r/GHSA-25mr-3m57-5v4r.json
+++ b/advisories/unreviewed/2022/05/GHSA-25mr-3m57-5v4r/GHSA-25mr-3m57-5v4r.json
@@ -7,12 +7,8 @@
"CVE-2007-6156"
],
"details": "Multiple cross-site scripting (XSS) vulnerabilities in base_qry_main.php in Base Analysis and Security Engine (BASE) before 1.3.9 allow remote attackers to inject arbitrary web script or HTML via the (1) sig[0] and (2) sig[1] parameters.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-26hm-cr9c-2627/GHSA-26hm-cr9c-2627.json b/advisories/unreviewed/2022/05/GHSA-26hm-cr9c-2627/GHSA-26hm-cr9c-2627.json
index 53ea62d8606..8d39d743de5 100644
--- a/advisories/unreviewed/2022/05/GHSA-26hm-cr9c-2627/GHSA-26hm-cr9c-2627.json
+++ b/advisories/unreviewed/2022/05/GHSA-26hm-cr9c-2627/GHSA-26hm-cr9c-2627.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-27g4-qh23-f942/GHSA-27g4-qh23-f942.json b/advisories/unreviewed/2022/05/GHSA-27g4-qh23-f942/GHSA-27g4-qh23-f942.json
index 8db77cffd17..9d216d4c520 100644
--- a/advisories/unreviewed/2022/05/GHSA-27g4-qh23-f942/GHSA-27g4-qh23-f942.json
+++ b/advisories/unreviewed/2022/05/GHSA-27g4-qh23-f942/GHSA-27g4-qh23-f942.json
@@ -7,12 +7,8 @@
"CVE-2019-2151"
],
"details": "In libxaac, there is a possible out of bounds read due to a missing bounds check. This could lead to information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-117495174",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-283m-g47h-4xp3/GHSA-283m-g47h-4xp3.json b/advisories/unreviewed/2022/05/GHSA-283m-g47h-4xp3/GHSA-283m-g47h-4xp3.json
index 8f13c5f8cb4..3f80f45acaa 100644
--- a/advisories/unreviewed/2022/05/GHSA-283m-g47h-4xp3/GHSA-283m-g47h-4xp3.json
+++ b/advisories/unreviewed/2022/05/GHSA-283m-g47h-4xp3/GHSA-283m-g47h-4xp3.json
@@ -7,12 +7,8 @@
"CVE-2019-8371"
],
"details": "OpenEMR v5.0.1-6 allows code execution.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-28xw-m7jp-89ch/GHSA-28xw-m7jp-89ch.json b/advisories/unreviewed/2022/05/GHSA-28xw-m7jp-89ch/GHSA-28xw-m7jp-89ch.json
index ebba4c9933d..597b65f5f61 100644
--- a/advisories/unreviewed/2022/05/GHSA-28xw-m7jp-89ch/GHSA-28xw-m7jp-89ch.json
+++ b/advisories/unreviewed/2022/05/GHSA-28xw-m7jp-89ch/GHSA-28xw-m7jp-89ch.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-295v-qw27-g2wh/GHSA-295v-qw27-g2wh.json b/advisories/unreviewed/2022/05/GHSA-295v-qw27-g2wh/GHSA-295v-qw27-g2wh.json
index cc56bf100ac..a7488b5e45c 100644
--- a/advisories/unreviewed/2022/05/GHSA-295v-qw27-g2wh/GHSA-295v-qw27-g2wh.json
+++ b/advisories/unreviewed/2022/05/GHSA-295v-qw27-g2wh/GHSA-295v-qw27-g2wh.json
@@ -7,12 +7,8 @@
"CVE-2007-6121"
],
"details": "Wireshark (formerly Ethereal) 0.8.16 to 0.99.6 allows remote attackers to cause a denial of service (crash) via a malformed RPC Portmap packet.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-29j8-8jmp-r7x6/GHSA-29j8-8jmp-r7x6.json b/advisories/unreviewed/2022/05/GHSA-29j8-8jmp-r7x6/GHSA-29j8-8jmp-r7x6.json
index a02108dae9c..d34d0734d08 100644
--- a/advisories/unreviewed/2022/05/GHSA-29j8-8jmp-r7x6/GHSA-29j8-8jmp-r7x6.json
+++ b/advisories/unreviewed/2022/05/GHSA-29j8-8jmp-r7x6/GHSA-29j8-8jmp-r7x6.json
@@ -7,12 +7,8 @@
"CVE-2007-5957"
],
"details": "Unspecified vulnerability in IBM Informix Dynamic Server (IDS) 10.00.TC3TL and 11.10.TB4TL on Windows allows attackers to cause a denial of service (application crash) via unspecified SQ_ONASSIST requests.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -48,9 +44,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-2cph-6c7j-7mmc/GHSA-2cph-6c7j-7mmc.json b/advisories/unreviewed/2022/05/GHSA-2cph-6c7j-7mmc/GHSA-2cph-6c7j-7mmc.json
index f8181cdc52c..f67517fbd6f 100644
--- a/advisories/unreviewed/2022/05/GHSA-2cph-6c7j-7mmc/GHSA-2cph-6c7j-7mmc.json
+++ b/advisories/unreviewed/2022/05/GHSA-2cph-6c7j-7mmc/GHSA-2cph-6c7j-7mmc.json
@@ -7,12 +7,8 @@
"CVE-2007-5947"
],
"details": "The jar protocol handler in Mozilla Firefox before 2.0.0.10 and SeaMonkey before 1.1.7 retrieves the inner URL regardless of its MIME type, and considers HTML documents within a jar archive to have the same origin as the inner URL, which allows remote attackers to conduct cross-site scripting (XSS) attacks via a jar: URI.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-2gmr-48xr-j34m/GHSA-2gmr-48xr-j34m.json b/advisories/unreviewed/2022/05/GHSA-2gmr-48xr-j34m/GHSA-2gmr-48xr-j34m.json
index edede5f3348..2e82120266f 100644
--- a/advisories/unreviewed/2022/05/GHSA-2gmr-48xr-j34m/GHSA-2gmr-48xr-j34m.json
+++ b/advisories/unreviewed/2022/05/GHSA-2gmr-48xr-j34m/GHSA-2gmr-48xr-j34m.json
@@ -7,12 +7,8 @@
"CVE-2007-6109"
],
"details": "Stack-based buffer overflow in emacs allows user-assisted attackers to cause a denial of service (application crash) and possibly have unspecified other impact via a large precision value in an integer format string specifier to the format function, as demonstrated via a certain \"emacs -batch -eval\" command line.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-2gq4-vmv2-wch5/GHSA-2gq4-vmv2-wch5.json b/advisories/unreviewed/2022/05/GHSA-2gq4-vmv2-wch5/GHSA-2gq4-vmv2-wch5.json
index ff6ef957220..f7c493e155f 100644
--- a/advisories/unreviewed/2022/05/GHSA-2gq4-vmv2-wch5/GHSA-2gq4-vmv2-wch5.json
+++ b/advisories/unreviewed/2022/05/GHSA-2gq4-vmv2-wch5/GHSA-2gq4-vmv2-wch5.json
@@ -7,12 +7,8 @@
"CVE-2019-2108"
],
"details": "In ihevcd_ref_list of ihevcd_ref_list.c in Android 10, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-2hw9-c84h-m727/GHSA-2hw9-c84h-m727.json b/advisories/unreviewed/2022/05/GHSA-2hw9-c84h-m727/GHSA-2hw9-c84h-m727.json
index 09d6ee8c2f5..c44097f107d 100644
--- a/advisories/unreviewed/2022/05/GHSA-2hw9-c84h-m727/GHSA-2hw9-c84h-m727.json
+++ b/advisories/unreviewed/2022/05/GHSA-2hw9-c84h-m727/GHSA-2hw9-c84h-m727.json
@@ -7,12 +7,8 @@
"CVE-2019-2144"
],
"details": "In libxaac, there is a possible out of bounds read due to a missing bounds check. This could lead to information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112856493",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-2m5v-p53f-hgfp/GHSA-2m5v-p53f-hgfp.json b/advisories/unreviewed/2022/05/GHSA-2m5v-p53f-hgfp/GHSA-2m5v-p53f-hgfp.json
index b2d5e36a335..9a773f33946 100644
--- a/advisories/unreviewed/2022/05/GHSA-2m5v-p53f-hgfp/GHSA-2m5v-p53f-hgfp.json
+++ b/advisories/unreviewed/2022/05/GHSA-2m5v-p53f-hgfp/GHSA-2m5v-p53f-hgfp.json
@@ -7,12 +7,8 @@
"CVE-2019-9343"
],
"details": "In Bluetooth, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112050983",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-2p92-ff6g-jxxw/GHSA-2p92-ff6g-jxxw.json b/advisories/unreviewed/2022/05/GHSA-2p92-ff6g-jxxw/GHSA-2p92-ff6g-jxxw.json
index 3e629f977ce..52558da8be9 100644
--- a/advisories/unreviewed/2022/05/GHSA-2p92-ff6g-jxxw/GHSA-2p92-ff6g-jxxw.json
+++ b/advisories/unreviewed/2022/05/GHSA-2p92-ff6g-jxxw/GHSA-2p92-ff6g-jxxw.json
@@ -7,12 +7,8 @@
"CVE-2007-6035"
],
"details": "SQL injection vulnerability in graph.php in Cacti before 0.8.7a allows remote attackers to execute arbitrary SQL commands via the local_graph_id parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-2pp4-x986-8w45/GHSA-2pp4-x986-8w45.json b/advisories/unreviewed/2022/05/GHSA-2pp4-x986-8w45/GHSA-2pp4-x986-8w45.json
index 574d5ba2162..2bcbe9411c3 100644
--- a/advisories/unreviewed/2022/05/GHSA-2pp4-x986-8w45/GHSA-2pp4-x986-8w45.json
+++ b/advisories/unreviewed/2022/05/GHSA-2pp4-x986-8w45/GHSA-2pp4-x986-8w45.json
@@ -7,12 +7,8 @@
"CVE-2017-18600"
],
"details": "The formcraft3 plugin before 3.4 for WordPress has stored XSS via the \"New Form > Heading > Heading Text\" field.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "LOW",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-2q8c-vq6v-7pf3/GHSA-2q8c-vq6v-7pf3.json b/advisories/unreviewed/2022/05/GHSA-2q8c-vq6v-7pf3/GHSA-2q8c-vq6v-7pf3.json
index b67fb9314e7..32963b943f5 100644
--- a/advisories/unreviewed/2022/05/GHSA-2q8c-vq6v-7pf3/GHSA-2q8c-vq6v-7pf3.json
+++ b/advisories/unreviewed/2022/05/GHSA-2q8c-vq6v-7pf3/GHSA-2q8c-vq6v-7pf3.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-2q9j-vprm-gcw6/GHSA-2q9j-vprm-gcw6.json b/advisories/unreviewed/2022/05/GHSA-2q9j-vprm-gcw6/GHSA-2q9j-vprm-gcw6.json
index 4fd158cd34a..86a2d99e472 100644
--- a/advisories/unreviewed/2022/05/GHSA-2q9j-vprm-gcw6/GHSA-2q9j-vprm-gcw6.json
+++ b/advisories/unreviewed/2022/05/GHSA-2q9j-vprm-gcw6/GHSA-2q9j-vprm-gcw6.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-2r22-4xgm-wjg8/GHSA-2r22-4xgm-wjg8.json b/advisories/unreviewed/2022/05/GHSA-2r22-4xgm-wjg8/GHSA-2r22-4xgm-wjg8.json
index b8be850b49d..31e056a4b96 100644
--- a/advisories/unreviewed/2022/05/GHSA-2r22-4xgm-wjg8/GHSA-2r22-4xgm-wjg8.json
+++ b/advisories/unreviewed/2022/05/GHSA-2r22-4xgm-wjg8/GHSA-2r22-4xgm-wjg8.json
@@ -7,12 +7,8 @@
"CVE-2007-6026"
],
"details": "Stack-based buffer overflow in Microsoft msjet40.dll 4.0.8618.0 (aka Microsoft Jet Engine), as used by Access 2003 in Microsoft Office 2003 SP3, allows user-assisted attackers to execute arbitrary code via a crafted MDB file database file containing a column structure with a modified column count. NOTE: this might be the same issue as CVE-2005-0944.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-2rqw-x4fp-36cv/GHSA-2rqw-x4fp-36cv.json b/advisories/unreviewed/2022/05/GHSA-2rqw-x4fp-36cv/GHSA-2rqw-x4fp-36cv.json
index 997c8e93364..2fbfbacee51 100644
--- a/advisories/unreviewed/2022/05/GHSA-2rqw-x4fp-36cv/GHSA-2rqw-x4fp-36cv.json
+++ b/advisories/unreviewed/2022/05/GHSA-2rqw-x4fp-36cv/GHSA-2rqw-x4fp-36cv.json
@@ -7,12 +7,8 @@
"CVE-2007-5899"
],
"details": "The output_add_rewrite_var function in PHP before 5.2.5 rewrites local forms in which the ACTION attribute references a non-local URL, which allows remote attackers to obtain potentially sensitive information by reading the requests for this URL, as demonstrated by a rewritten form containing a local session ID.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-2rvc-4fj7-2p7v/GHSA-2rvc-4fj7-2p7v.json b/advisories/unreviewed/2022/05/GHSA-2rvc-4fj7-2p7v/GHSA-2rvc-4fj7-2p7v.json
index 4d55e343c84..bb0a241f318 100644
--- a/advisories/unreviewed/2022/05/GHSA-2rvc-4fj7-2p7v/GHSA-2rvc-4fj7-2p7v.json
+++ b/advisories/unreviewed/2022/05/GHSA-2rvc-4fj7-2p7v/GHSA-2rvc-4fj7-2p7v.json
@@ -7,12 +7,8 @@
"CVE-2007-6055"
],
"details": "Cross-site scripting (XSS) vulnerability in c/portal/login in Liferay Portal 4.1.0 and 4.1.1 allows remote attackers to inject arbitrary web script or HTML via the login parameter. NOTE: this issue reportedly exists because of a regression that followed a fix at an unspecified earlier date.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-2v62-48mq-rgvp/GHSA-2v62-48mq-rgvp.json b/advisories/unreviewed/2022/05/GHSA-2v62-48mq-rgvp/GHSA-2v62-48mq-rgvp.json
index 8af6fbe8746..1225484d408 100644
--- a/advisories/unreviewed/2022/05/GHSA-2v62-48mq-rgvp/GHSA-2v62-48mq-rgvp.json
+++ b/advisories/unreviewed/2022/05/GHSA-2v62-48mq-rgvp/GHSA-2v62-48mq-rgvp.json
@@ -7,12 +7,8 @@
"CVE-2019-11663"
],
"details": "Clear text credentials are used to access managers app in Tomcat in Micro Focus Service Manager product versions 9.30, 9.31, 9.32, 9.33, 9.34, 9.35, 9.40, 9.41, 9.50, 9.51, 9.52, 9.60, 9.61, 9.62. The vulnerability could be exploited to allow sensitive data exposure.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-2vwj-hgqw-6q5c/GHSA-2vwj-hgqw-6q5c.json b/advisories/unreviewed/2022/05/GHSA-2vwj-hgqw-6q5c/GHSA-2vwj-hgqw-6q5c.json
index 29b76b53b9f..30b9053fc68 100644
--- a/advisories/unreviewed/2022/05/GHSA-2vwj-hgqw-6q5c/GHSA-2vwj-hgqw-6q5c.json
+++ b/advisories/unreviewed/2022/05/GHSA-2vwj-hgqw-6q5c/GHSA-2vwj-hgqw-6q5c.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-2w9v-97wx-v5mj/GHSA-2w9v-97wx-v5mj.json b/advisories/unreviewed/2022/05/GHSA-2w9v-97wx-v5mj/GHSA-2w9v-97wx-v5mj.json
index 61e336cdc1f..4e0acd9c7b6 100644
--- a/advisories/unreviewed/2022/05/GHSA-2w9v-97wx-v5mj/GHSA-2w9v-97wx-v5mj.json
+++ b/advisories/unreviewed/2022/05/GHSA-2w9v-97wx-v5mj/GHSA-2w9v-97wx-v5mj.json
@@ -7,12 +7,8 @@
"CVE-2007-6200"
],
"details": "Unspecified vulnerability in rsync before 3.0.0pre6, when running a writable rsync daemon, allows remote attackers to bypass exclude, exclude_from, and filter and read or write hidden files via (1) symlink, (2) partial-dir, (3) backup-dir, and unspecified (4) dest options.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -84,9 +80,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-2xj8-wrjm-mfv6/GHSA-2xj8-wrjm-mfv6.json b/advisories/unreviewed/2022/05/GHSA-2xj8-wrjm-mfv6/GHSA-2xj8-wrjm-mfv6.json
index 46248f598b3..81a77a760d2 100644
--- a/advisories/unreviewed/2022/05/GHSA-2xj8-wrjm-mfv6/GHSA-2xj8-wrjm-mfv6.json
+++ b/advisories/unreviewed/2022/05/GHSA-2xj8-wrjm-mfv6/GHSA-2xj8-wrjm-mfv6.json
@@ -7,12 +7,8 @@
"CVE-2007-6036"
],
"details": "The parseRTSPRequestString function in LIVE555 Media Server 2007.11.01 and earlier allows remote attackers to cause a denial of service (daemon crash) via a short RTSP query, which causes a negative number to be used during memory allocation.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-32x5-wqvr-v5j9/GHSA-32x5-wqvr-v5j9.json b/advisories/unreviewed/2022/05/GHSA-32x5-wqvr-v5j9/GHSA-32x5-wqvr-v5j9.json
index 1fbae9e328e..40e36761f13 100644
--- a/advisories/unreviewed/2022/05/GHSA-32x5-wqvr-v5j9/GHSA-32x5-wqvr-v5j9.json
+++ b/advisories/unreviewed/2022/05/GHSA-32x5-wqvr-v5j9/GHSA-32x5-wqvr-v5j9.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-336w-w337-qw2v/GHSA-336w-w337-qw2v.json b/advisories/unreviewed/2022/05/GHSA-336w-w337-qw2v/GHSA-336w-w337-qw2v.json
index d236653dbe9..11d931cc079 100644
--- a/advisories/unreviewed/2022/05/GHSA-336w-w337-qw2v/GHSA-336w-w337-qw2v.json
+++ b/advisories/unreviewed/2022/05/GHSA-336w-w337-qw2v/GHSA-336w-w337-qw2v.json
@@ -7,12 +7,8 @@
"CVE-2007-6158"
],
"details": "Multiple SQL injection vulnerabilities in caladmin.inc.php in Proverbs Web Calendar 1.1 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) loginname (aka Username) and (2) loginpass (aka Password) parameters to caladmin.php.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-33gq-cgfx-f6m6/GHSA-33gq-cgfx-f6m6.json b/advisories/unreviewed/2022/05/GHSA-33gq-cgfx-f6m6/GHSA-33gq-cgfx-f6m6.json
index 4e72e10540a..2248b02139e 100644
--- a/advisories/unreviewed/2022/05/GHSA-33gq-cgfx-f6m6/GHSA-33gq-cgfx-f6m6.json
+++ b/advisories/unreviewed/2022/05/GHSA-33gq-cgfx-f6m6/GHSA-33gq-cgfx-f6m6.json
@@ -7,12 +7,8 @@
"CVE-2007-6082"
],
"details": "Direct static code injection vulnerability in acp/savenews.php in Sciurus Hosting Panel, possibly 2.0.3, allows remote attackers to inject arbitrary PHP code via the filecontents parameter, which can be executed by accessing includes/news.php.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-34f4-qcwh-g2jj/GHSA-34f4-qcwh-g2jj.json b/advisories/unreviewed/2022/05/GHSA-34f4-qcwh-g2jj/GHSA-34f4-qcwh-g2jj.json
index 87ef940bb99..28a68a63371 100644
--- a/advisories/unreviewed/2022/05/GHSA-34f4-qcwh-g2jj/GHSA-34f4-qcwh-g2jj.json
+++ b/advisories/unreviewed/2022/05/GHSA-34f4-qcwh-g2jj/GHSA-34f4-qcwh-g2jj.json
@@ -7,12 +7,8 @@
"CVE-2007-5969"
],
"details": "MySQL Community Server 5.0.x before 5.0.51, Enterprise Server 5.0.x before 5.0.52, Server 5.1.x before 5.1.23, and Server 6.0.x before 6.0.4, when a table relies on symlinks created through explicit DATA DIRECTORY and INDEX DIRECTORY options, allows remote authenticated users to overwrite system table information and gain privileges via a RENAME TABLE statement that changes the symlink to point to an existing file.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -184,9 +180,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-34g8-99rj-74rm/GHSA-34g8-99rj-74rm.json b/advisories/unreviewed/2022/05/GHSA-34g8-99rj-74rm/GHSA-34g8-99rj-74rm.json
index bf82e32a5d2..df7a9af18ff 100644
--- a/advisories/unreviewed/2022/05/GHSA-34g8-99rj-74rm/GHSA-34g8-99rj-74rm.json
+++ b/advisories/unreviewed/2022/05/GHSA-34g8-99rj-74rm/GHSA-34g8-99rj-74rm.json
@@ -7,12 +7,8 @@
"CVE-2019-9341"
],
"details": "In Bluetooth, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-111214770",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-34x6-gmv7-8394/GHSA-34x6-gmv7-8394.json b/advisories/unreviewed/2022/05/GHSA-34x6-gmv7-8394/GHSA-34x6-gmv7-8394.json
index 48badaf51d7..19d64271960 100644
--- a/advisories/unreviewed/2022/05/GHSA-34x6-gmv7-8394/GHSA-34x6-gmv7-8394.json
+++ b/advisories/unreviewed/2022/05/GHSA-34x6-gmv7-8394/GHSA-34x6-gmv7-8394.json
@@ -7,12 +7,8 @@
"CVE-2007-6202"
],
"details": "SQL injection vulnerability in plugins/search/search.php in Neocrome Seditio CMS 121 and earlier allows remote attackers to execute arbitrary SQL commands via the pag_sub[] parameter to plug.php.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-3584-jjj6-qjv4/GHSA-3584-jjj6-qjv4.json b/advisories/unreviewed/2022/05/GHSA-3584-jjj6-qjv4/GHSA-3584-jjj6-qjv4.json
index ba657c4cf82..727b3c3d43e 100644
--- a/advisories/unreviewed/2022/05/GHSA-3584-jjj6-qjv4/GHSA-3584-jjj6-qjv4.json
+++ b/advisories/unreviewed/2022/05/GHSA-3584-jjj6-qjv4/GHSA-3584-jjj6-qjv4.json
@@ -7,12 +7,8 @@
"CVE-2007-5948"
],
"details": "Multiple cross-site scripting (XSS) vulnerabilities in main.php in SF-Shoutbox 1.2.1 through 1.4 allow remote attackers to inject arbitrary web script or HTML via the (1) nick (aka Name) and (2) shout (aka Shout) parameters.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-35qr-m9p5-57hv/GHSA-35qr-m9p5-57hv.json b/advisories/unreviewed/2022/05/GHSA-35qr-m9p5-57hv/GHSA-35qr-m9p5-57hv.json
index 59b8b89eab4..9efb1ff4b86 100644
--- a/advisories/unreviewed/2022/05/GHSA-35qr-m9p5-57hv/GHSA-35qr-m9p5-57hv.json
+++ b/advisories/unreviewed/2022/05/GHSA-35qr-m9p5-57hv/GHSA-35qr-m9p5-57hv.json
@@ -7,12 +7,8 @@
"CVE-2007-6044"
],
"details": "Multiple unspecified vulnerabilities in IBM WebSphere MQ 6.0 have unknown impact and remote attack vectors involving \"memory corruption.\" NOTE: as of 20071116, the only disclosure is a vague pre-advisory with no actionable information. However, since it is from a well-known researcher, it is being assigned a CVE identifier for tracking purposes.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -40,9 +36,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-363v-vmrh-fj2f/GHSA-363v-vmrh-fj2f.json b/advisories/unreviewed/2022/05/GHSA-363v-vmrh-fj2f/GHSA-363v-vmrh-fj2f.json
index dbfc49fd5c5..b799c1416ac 100644
--- a/advisories/unreviewed/2022/05/GHSA-363v-vmrh-fj2f/GHSA-363v-vmrh-fj2f.json
+++ b/advisories/unreviewed/2022/05/GHSA-363v-vmrh-fj2f/GHSA-363v-vmrh-fj2f.json
@@ -7,12 +7,8 @@
"CVE-2019-9368"
],
"details": "In Bluetooth, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-79883568",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "LOW",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-36hm-353j-v57w/GHSA-36hm-353j-v57w.json b/advisories/unreviewed/2022/05/GHSA-36hm-353j-v57w/GHSA-36hm-353j-v57w.json
index 7944de27e05..39bcc615932 100644
--- a/advisories/unreviewed/2022/05/GHSA-36hm-353j-v57w/GHSA-36hm-353j-v57w.json
+++ b/advisories/unreviewed/2022/05/GHSA-36hm-353j-v57w/GHSA-36hm-353j-v57w.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-37p3-g669-cvjp/GHSA-37p3-g669-cvjp.json b/advisories/unreviewed/2022/05/GHSA-37p3-g669-cvjp/GHSA-37p3-g669-cvjp.json
index bffc019b8be..9aae94d0546 100644
--- a/advisories/unreviewed/2022/05/GHSA-37p3-g669-cvjp/GHSA-37p3-g669-cvjp.json
+++ b/advisories/unreviewed/2022/05/GHSA-37p3-g669-cvjp/GHSA-37p3-g669-cvjp.json
@@ -7,12 +7,8 @@
"CVE-2016-10979"
],
"details": "The fossura-tag-miner plugin before 1.1.5 for WordPress has XSS.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-37rm-jxqj-2hjc/GHSA-37rm-jxqj-2hjc.json b/advisories/unreviewed/2022/05/GHSA-37rm-jxqj-2hjc/GHSA-37rm-jxqj-2hjc.json
index 9cfa68aa381..7de125d89f0 100644
--- a/advisories/unreviewed/2022/05/GHSA-37rm-jxqj-2hjc/GHSA-37rm-jxqj-2hjc.json
+++ b/advisories/unreviewed/2022/05/GHSA-37rm-jxqj-2hjc/GHSA-37rm-jxqj-2hjc.json
@@ -7,12 +7,8 @@
"CVE-2007-5905"
],
"details": "Adobe ColdFusion 8 and MX 7 allows remote attackers to hijack sessions via unspecified vectors that trigger establishment of a session to a ColdFusion application in which the (1) CFID or (2) CFTOKEN cookies have empty values, possibly due to a session fixation vulnerability.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -52,9 +48,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-39jx-m5ww-v5fq/GHSA-39jx-m5ww-v5fq.json b/advisories/unreviewed/2022/05/GHSA-39jx-m5ww-v5fq/GHSA-39jx-m5ww-v5fq.json
index 8c8bcc19b36..f70efd8d859 100644
--- a/advisories/unreviewed/2022/05/GHSA-39jx-m5ww-v5fq/GHSA-39jx-m5ww-v5fq.json
+++ b/advisories/unreviewed/2022/05/GHSA-39jx-m5ww-v5fq/GHSA-39jx-m5ww-v5fq.json
@@ -7,12 +7,8 @@
"CVE-2007-5921"
],
"details": "Unspecified vulnerability in the ioctl interface in the Solaris Volume Manager (SVM) in Sun Solaris 9 and 10 allows local users to cause a denial of service (panic) via unspecified vectors, a different vulnerability than CVE-2004-1346.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -56,9 +52,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-39x3-rj4g-g64f/GHSA-39x3-rj4g-g64f.json b/advisories/unreviewed/2022/05/GHSA-39x3-rj4g-g64f/GHSA-39x3-rj4g-g64f.json
index 00f457c6b94..eeb2f6556b8 100644
--- a/advisories/unreviewed/2022/05/GHSA-39x3-rj4g-g64f/GHSA-39x3-rj4g-g64f.json
+++ b/advisories/unreviewed/2022/05/GHSA-39x3-rj4g-g64f/GHSA-39x3-rj4g-g64f.json
@@ -7,12 +7,8 @@
"CVE-2007-5835"
],
"details": "Install.php in BosDev BosNews 4 and 5 does not require authentication for replacing an existing product installation or creating a new admin account, which allows remote attackers to cause a denial of service (overwritten files) and possibly obtain administrative access.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-39x5-vv4x-qc5w/GHSA-39x5-vv4x-qc5w.json b/advisories/unreviewed/2022/05/GHSA-39x5-vv4x-qc5w/GHSA-39x5-vv4x-qc5w.json
index 5899b828934..f2b3f8f5f2a 100644
--- a/advisories/unreviewed/2022/05/GHSA-39x5-vv4x-qc5w/GHSA-39x5-vv4x-qc5w.json
+++ b/advisories/unreviewed/2022/05/GHSA-39x5-vv4x-qc5w/GHSA-39x5-vv4x-qc5w.json
@@ -7,12 +7,8 @@
"CVE-2019-9327"
],
"details": "In Bluetooth, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112050583",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-3cr8-8gxj-qjhf/GHSA-3cr8-8gxj-qjhf.json b/advisories/unreviewed/2022/05/GHSA-3cr8-8gxj-qjhf/GHSA-3cr8-8gxj-qjhf.json
index 1898d375598..f88fedf2c45 100644
--- a/advisories/unreviewed/2022/05/GHSA-3cr8-8gxj-qjhf/GHSA-3cr8-8gxj-qjhf.json
+++ b/advisories/unreviewed/2022/05/GHSA-3cr8-8gxj-qjhf/GHSA-3cr8-8gxj-qjhf.json
@@ -7,12 +7,8 @@
"CVE-2007-6094"
],
"details": "The IPsec module in the VPN component in Ingate Firewall before 4.6.0 and SIParator before 4.6.0 allows remote attackers to cause a denial of service (module crash) via an IPsec Phase 2 proposal that lacks Perfect Forward Secrecy (PFS).",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-3g9v-j5q9-fhvc/GHSA-3g9v-j5q9-fhvc.json b/advisories/unreviewed/2022/05/GHSA-3g9v-j5q9-fhvc/GHSA-3g9v-j5q9-fhvc.json
index 2a8e3c09f07..9af1deaebac 100644
--- a/advisories/unreviewed/2022/05/GHSA-3g9v-j5q9-fhvc/GHSA-3g9v-j5q9-fhvc.json
+++ b/advisories/unreviewed/2022/05/GHSA-3g9v-j5q9-fhvc/GHSA-3g9v-j5q9-fhvc.json
@@ -7,12 +7,8 @@
"CVE-2007-5923"
],
"details": "Cross-site scripting (XSS) vulnerability in forms/smpwservices.fcc in CA (formerly Computer Associates) eTrust SiteMinder Agent allows remote attackers to inject arbitrary web script or HTML via the SMAUTHREASON parameter, a different vector than CVE-2005-2204.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-3gj3-p68v-v295/GHSA-3gj3-p68v-v295.json b/advisories/unreviewed/2022/05/GHSA-3gj3-p68v-v295/GHSA-3gj3-p68v-v295.json
index 68031d1e494..b8066e0a93a 100644
--- a/advisories/unreviewed/2022/05/GHSA-3gj3-p68v-v295/GHSA-3gj3-p68v-v295.json
+++ b/advisories/unreviewed/2022/05/GHSA-3gj3-p68v-v295/GHSA-3gj3-p68v-v295.json
@@ -7,12 +7,8 @@
"CVE-2016-11005"
],
"details": "The instalinker plugin before 1.1.2 for WordPress has includes/instalinker-admin-preview.php?client_id= XSS.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-3gwf-whf9-4x6h/GHSA-3gwf-whf9-4x6h.json b/advisories/unreviewed/2022/05/GHSA-3gwf-whf9-4x6h/GHSA-3gwf-whf9-4x6h.json
index 443d2c9c0d4..995ea0def81 100644
--- a/advisories/unreviewed/2022/05/GHSA-3gwf-whf9-4x6h/GHSA-3gwf-whf9-4x6h.json
+++ b/advisories/unreviewed/2022/05/GHSA-3gwf-whf9-4x6h/GHSA-3gwf-whf9-4x6h.json
@@ -7,12 +7,8 @@
"CVE-2007-6150"
],
"details": "The \"internal state tracking\" code for the random and urandom devices in FreeBSD 5.5, 6.1 through 6.3, and 7.0 beta 4 allows local users to obtain portions of previously-accessed random values, which could be leveraged to bypass protection mechanisms that rely on secrecy of those values.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-3hrp-jghr-jv6p/GHSA-3hrp-jghr-jv6p.json b/advisories/unreviewed/2022/05/GHSA-3hrp-jghr-jv6p/GHSA-3hrp-jghr-jv6p.json
index 6b087efec2c..acb45311aa1 100644
--- a/advisories/unreviewed/2022/05/GHSA-3hrp-jghr-jv6p/GHSA-3hrp-jghr-jv6p.json
+++ b/advisories/unreviewed/2022/05/GHSA-3hrp-jghr-jv6p/GHSA-3hrp-jghr-jv6p.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-3j6r-rxq5-32pr/GHSA-3j6r-rxq5-32pr.json b/advisories/unreviewed/2022/05/GHSA-3j6r-rxq5-32pr/GHSA-3j6r-rxq5-32pr.json
index 2e6c255fd59..903af33e151 100644
--- a/advisories/unreviewed/2022/05/GHSA-3j6r-rxq5-32pr/GHSA-3j6r-rxq5-32pr.json
+++ b/advisories/unreviewed/2022/05/GHSA-3j6r-rxq5-32pr/GHSA-3j6r-rxq5-32pr.json
@@ -7,12 +7,8 @@
"CVE-2007-6021"
],
"details": "Heap-based buffer overflow in Adobe PageMaker 7.0.1 and 7.0.2 allows user-assisted remote attackers to execute arbitrary code via a .PMD file with a crafted font structure.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-3j7m-cfhc-782p/GHSA-3j7m-cfhc-782p.json b/advisories/unreviewed/2022/05/GHSA-3j7m-cfhc-782p/GHSA-3j7m-cfhc-782p.json
index ec962e32fc9..8478364cc37 100644
--- a/advisories/unreviewed/2022/05/GHSA-3j7m-cfhc-782p/GHSA-3j7m-cfhc-782p.json
+++ b/advisories/unreviewed/2022/05/GHSA-3j7m-cfhc-782p/GHSA-3j7m-cfhc-782p.json
@@ -7,12 +7,8 @@
"CVE-2019-1240"
],
"details": "A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1241, CVE-2019-1242, CVE-2019-1243, CVE-2019-1246, CVE-2019-1247, CVE-2019-1248, CVE-2019-1249, CVE-2019-1250.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-3jmv-pqcg-4h64/GHSA-3jmv-pqcg-4h64.json b/advisories/unreviewed/2022/05/GHSA-3jmv-pqcg-4h64/GHSA-3jmv-pqcg-4h64.json
index f535860e539..f4d0fc25964 100644
--- a/advisories/unreviewed/2022/05/GHSA-3jmv-pqcg-4h64/GHSA-3jmv-pqcg-4h64.json
+++ b/advisories/unreviewed/2022/05/GHSA-3jmv-pqcg-4h64/GHSA-3jmv-pqcg-4h64.json
@@ -7,12 +7,8 @@
"CVE-2007-5976"
],
"details": "SQL injection vulnerability in db_create.php in phpMyAdmin before 2.11.2.1 allows remote authenticated users with CREATE DATABASE privileges to execute arbitrary SQL commands via the db parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-3mwv-hq37-h7fr/GHSA-3mwv-hq37-h7fr.json b/advisories/unreviewed/2022/05/GHSA-3mwv-hq37-h7fr/GHSA-3mwv-hq37-h7fr.json
index ed607b9cc85..fe0df0a16b0 100644
--- a/advisories/unreviewed/2022/05/GHSA-3mwv-hq37-h7fr/GHSA-3mwv-hq37-h7fr.json
+++ b/advisories/unreviewed/2022/05/GHSA-3mwv-hq37-h7fr/GHSA-3mwv-hq37-h7fr.json
@@ -7,12 +7,8 @@
"CVE-2007-6159"
],
"details": "SQL injection vulnerability in index.php in Tilde CMS 4.x and earlier allows remote attackers to execute arbitrary SQL commands via the aarstal parameter in a yeardetail action, a different vector than CVE-2006-1500.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-3pw6-qjj9-fvw4/GHSA-3pw6-qjj9-fvw4.json b/advisories/unreviewed/2022/05/GHSA-3pw6-qjj9-fvw4/GHSA-3pw6-qjj9-fvw4.json
index 189b845200b..b717521291e 100644
--- a/advisories/unreviewed/2022/05/GHSA-3pw6-qjj9-fvw4/GHSA-3pw6-qjj9-fvw4.json
+++ b/advisories/unreviewed/2022/05/GHSA-3pw6-qjj9-fvw4/GHSA-3pw6-qjj9-fvw4.json
@@ -7,12 +7,8 @@
"CVE-2007-6168"
],
"details": "SQL injection vulnerability in default.asp in VU Case Manager allows remote attackers to execute arbitrary SQL commands via the username parameter, a different vector than CVE-2007-6143. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-3px6-x742-ffjj/GHSA-3px6-x742-ffjj.json b/advisories/unreviewed/2022/05/GHSA-3px6-x742-ffjj/GHSA-3px6-x742-ffjj.json
index d71ad3bcfed..13bc2efaa55 100644
--- a/advisories/unreviewed/2022/05/GHSA-3px6-x742-ffjj/GHSA-3px6-x742-ffjj.json
+++ b/advisories/unreviewed/2022/05/GHSA-3px6-x742-ffjj/GHSA-3px6-x742-ffjj.json
@@ -7,12 +7,8 @@
"CVE-2019-14994"
],
"details": "The Customer Context Filter in Atlassian Jira Service Desk Server and Jira Service Desk Data Center before version 3.9.16, from version 3.10.0 before version 3.16.8, from version 4.0.0 before version 4.1.3, from version 4.2.0 before version 4.2.5, from version 4.3.0 before version 4.3.4, and version 4.4.0 allows remote attackers with portal access to view arbitrary issues in Jira Service Desk projects via a path traversal vulnerability. Note that when the 'Anyone can email the service desk or raise a request in the portal' setting is enabled, an attacker can grant themselves portal access, allowing them to exploit the vulnerability.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -36,9 +32,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-3pxp-pwrp-2w6f/GHSA-3pxp-pwrp-2w6f.json b/advisories/unreviewed/2022/05/GHSA-3pxp-pwrp-2w6f/GHSA-3pxp-pwrp-2w6f.json
index b833744099b..bf3faefafd4 100644
--- a/advisories/unreviewed/2022/05/GHSA-3pxp-pwrp-2w6f/GHSA-3pxp-pwrp-2w6f.json
+++ b/advisories/unreviewed/2022/05/GHSA-3pxp-pwrp-2w6f/GHSA-3pxp-pwrp-2w6f.json
@@ -7,12 +7,8 @@
"CVE-2007-6061"
],
"details": "Audacity 1.3.2 creates a temporary directory with a predictable name without checking for previous existence of that directory, which allows local users to cause a denial of service (recording deadlock) by creating the directory before Audacity is run. NOTE: this issue can be leveraged to delete arbitrary files or directories via a symlink attack.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-3qxr-h63q-m7x3/GHSA-3qxr-h63q-m7x3.json b/advisories/unreviewed/2022/05/GHSA-3qxr-h63q-m7x3/GHSA-3qxr-h63q-m7x3.json
index 05e8010e648..db3dd807c16 100644
--- a/advisories/unreviewed/2022/05/GHSA-3qxr-h63q-m7x3/GHSA-3qxr-h63q-m7x3.json
+++ b/advisories/unreviewed/2022/05/GHSA-3qxr-h63q-m7x3/GHSA-3qxr-h63q-m7x3.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-3r99-gh2f-23fp/GHSA-3r99-gh2f-23fp.json b/advisories/unreviewed/2022/05/GHSA-3r99-gh2f-23fp/GHSA-3r99-gh2f-23fp.json
index 11bea46cd6a..ef6c3c98258 100644
--- a/advisories/unreviewed/2022/05/GHSA-3r99-gh2f-23fp/GHSA-3r99-gh2f-23fp.json
+++ b/advisories/unreviewed/2022/05/GHSA-3r99-gh2f-23fp/GHSA-3r99-gh2f-23fp.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-3v5h-fmqv-x9mj/GHSA-3v5h-fmqv-x9mj.json b/advisories/unreviewed/2022/05/GHSA-3v5h-fmqv-x9mj/GHSA-3v5h-fmqv-x9mj.json
index f52478a7d50..7919183b386 100644
--- a/advisories/unreviewed/2022/05/GHSA-3v5h-fmqv-x9mj/GHSA-3v5h-fmqv-x9mj.json
+++ b/advisories/unreviewed/2022/05/GHSA-3v5h-fmqv-x9mj/GHSA-3v5h-fmqv-x9mj.json
@@ -7,12 +7,8 @@
"CVE-2007-5937"
],
"details": "Multiple buffer overflows in dvi2xx.c in dviljk in teTeX and TeXlive 2007 and earlier might allow user-assisted attackers to execute arbitrary code via a crafted DVI input file.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-3vh2-7wc2-pg3v/GHSA-3vh2-7wc2-pg3v.json b/advisories/unreviewed/2022/05/GHSA-3vh2-7wc2-pg3v/GHSA-3vh2-7wc2-pg3v.json
index 7c79f60c34b..71442ff7dbc 100644
--- a/advisories/unreviewed/2022/05/GHSA-3vh2-7wc2-pg3v/GHSA-3vh2-7wc2-pg3v.json
+++ b/advisories/unreviewed/2022/05/GHSA-3vh2-7wc2-pg3v/GHSA-3vh2-7wc2-pg3v.json
@@ -7,12 +7,8 @@
"CVE-2019-1285"
],
"details": "An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1256.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-3vpg-38h3-gc36/GHSA-3vpg-38h3-gc36.json b/advisories/unreviewed/2022/05/GHSA-3vpg-38h3-gc36/GHSA-3vpg-38h3-gc36.json
index d9a6f3bc7e7..408cf589a78 100644
--- a/advisories/unreviewed/2022/05/GHSA-3vpg-38h3-gc36/GHSA-3vpg-38h3-gc36.json
+++ b/advisories/unreviewed/2022/05/GHSA-3vpg-38h3-gc36/GHSA-3vpg-38h3-gc36.json
@@ -7,12 +7,8 @@
"CVE-2007-6080"
],
"details": "SQL injection vulnerability in modules/banners/click.php in the banners module for bcoos 1.0.10 allows remote attackers to execute arbitrary SQL commands via the bid parameter. NOTE: it was later reported that 1.0.13 is also affected.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-3vw8-44x3-wrr9/GHSA-3vw8-44x3-wrr9.json b/advisories/unreviewed/2022/05/GHSA-3vw8-44x3-wrr9/GHSA-3vw8-44x3-wrr9.json
index c4bb48dc2fa..12d9bdbfe6f 100644
--- a/advisories/unreviewed/2022/05/GHSA-3vw8-44x3-wrr9/GHSA-3vw8-44x3-wrr9.json
+++ b/advisories/unreviewed/2022/05/GHSA-3vw8-44x3-wrr9/GHSA-3vw8-44x3-wrr9.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-3wfq-4hqg-3c4g/GHSA-3wfq-4hqg-3c4g.json b/advisories/unreviewed/2022/05/GHSA-3wfq-4hqg-3c4g/GHSA-3wfq-4hqg-3c4g.json
index e4808d4025d..7cf8e2b5d06 100644
--- a/advisories/unreviewed/2022/05/GHSA-3wfq-4hqg-3c4g/GHSA-3wfq-4hqg-3c4g.json
+++ b/advisories/unreviewed/2022/05/GHSA-3wfq-4hqg-3c4g/GHSA-3wfq-4hqg-3c4g.json
@@ -7,12 +7,8 @@
"CVE-2019-9297"
],
"details": "In libAACdec, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112890242",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-3wm4-c4h2-6mcg/GHSA-3wm4-c4h2-6mcg.json b/advisories/unreviewed/2022/05/GHSA-3wm4-c4h2-6mcg/GHSA-3wm4-c4h2-6mcg.json
index 7529fadb1b9..e3c5867d036 100644
--- a/advisories/unreviewed/2022/05/GHSA-3wm4-c4h2-6mcg/GHSA-3wm4-c4h2-6mcg.json
+++ b/advisories/unreviewed/2022/05/GHSA-3wm4-c4h2-6mcg/GHSA-3wm4-c4h2-6mcg.json
@@ -7,12 +7,8 @@
"CVE-2007-5953"
],
"details": "Unspecified vulnerability in Really Simple CalDAV Store (RSCDS) before 0.9.0 allows attackers to obtain sensitive information via unspecified vectors.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -36,9 +32,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-3wpx-9425-3jrg/GHSA-3wpx-9425-3jrg.json b/advisories/unreviewed/2022/05/GHSA-3wpx-9425-3jrg/GHSA-3wpx-9425-3jrg.json
index f306525ce9c..3a8eebdff2f 100644
--- a/advisories/unreviewed/2022/05/GHSA-3wpx-9425-3jrg/GHSA-3wpx-9425-3jrg.json
+++ b/advisories/unreviewed/2022/05/GHSA-3wpx-9425-3jrg/GHSA-3wpx-9425-3jrg.json
@@ -7,12 +7,8 @@
"CVE-2016-10940"
],
"details": "The zm-gallery plugin 1.0 for WordPress has SQL injection via the order parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-449v-3cf9-7rq9/GHSA-449v-3cf9-7rq9.json b/advisories/unreviewed/2022/05/GHSA-449v-3cf9-7rq9/GHSA-449v-3cf9-7rq9.json
index e7d3011fead..4ecac01f073 100644
--- a/advisories/unreviewed/2022/05/GHSA-449v-3cf9-7rq9/GHSA-449v-3cf9-7rq9.json
+++ b/advisories/unreviewed/2022/05/GHSA-449v-3cf9-7rq9/GHSA-449v-3cf9-7rq9.json
@@ -7,12 +7,8 @@
"CVE-2019-9334"
],
"details": "In libhevc there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112859934",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-44jx-gjf4-pwrq/GHSA-44jx-gjf4-pwrq.json b/advisories/unreviewed/2022/05/GHSA-44jx-gjf4-pwrq/GHSA-44jx-gjf4-pwrq.json
index 6cd4c20dd23..4e3c3534bf4 100644
--- a/advisories/unreviewed/2022/05/GHSA-44jx-gjf4-pwrq/GHSA-44jx-gjf4-pwrq.json
+++ b/advisories/unreviewed/2022/05/GHSA-44jx-gjf4-pwrq/GHSA-44jx-gjf4-pwrq.json
@@ -7,12 +7,8 @@
"CVE-2016-10939"
],
"details": "The xtremelocator plugin 1.5 for WordPress has SQL injection via the id parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-44q4-7h77-fj8h/GHSA-44q4-7h77-fj8h.json b/advisories/unreviewed/2022/05/GHSA-44q4-7h77-fj8h/GHSA-44q4-7h77-fj8h.json
index 1f3dc205912..4810746a252 100644
--- a/advisories/unreviewed/2022/05/GHSA-44q4-7h77-fj8h/GHSA-44q4-7h77-fj8h.json
+++ b/advisories/unreviewed/2022/05/GHSA-44q4-7h77-fj8h/GHSA-44q4-7h77-fj8h.json
@@ -7,12 +7,8 @@
"CVE-2019-16748"
],
"details": "In wolfSSL through 4.1.0, there is a missing sanity check of memory accesses in parsing ASN.1 certificate data while handshaking. Specifically, there is a one-byte heap-based buffer over-read in CheckCertSignature_ex in wolfcrypt/src/asn.c.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-45g2-wqp2-rh43/GHSA-45g2-wqp2-rh43.json b/advisories/unreviewed/2022/05/GHSA-45g2-wqp2-rh43/GHSA-45g2-wqp2-rh43.json
index 649a2fee20a..472eb709587 100644
--- a/advisories/unreviewed/2022/05/GHSA-45g2-wqp2-rh43/GHSA-45g2-wqp2-rh43.json
+++ b/advisories/unreviewed/2022/05/GHSA-45g2-wqp2-rh43/GHSA-45g2-wqp2-rh43.json
@@ -7,12 +7,8 @@
"CVE-2007-5998"
],
"details": "SQL injection vulnerability in ads.php in Softbiz Ad Management plus Script 1 allows remote authenticated users to execute arbitrary SQL commands via the package parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-4687-jrh4-429g/GHSA-4687-jrh4-429g.json b/advisories/unreviewed/2022/05/GHSA-4687-jrh4-429g/GHSA-4687-jrh4-429g.json
index 78e2757cc1e..8489188babb 100644
--- a/advisories/unreviewed/2022/05/GHSA-4687-jrh4-429g/GHSA-4687-jrh4-429g.json
+++ b/advisories/unreviewed/2022/05/GHSA-4687-jrh4-429g/GHSA-4687-jrh4-429g.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-478v-f3x6-36qh/GHSA-478v-f3x6-36qh.json b/advisories/unreviewed/2022/05/GHSA-478v-f3x6-36qh/GHSA-478v-f3x6-36qh.json
index 8e8d53d9a6e..47ad9bfdd6e 100644
--- a/advisories/unreviewed/2022/05/GHSA-478v-f3x6-36qh/GHSA-478v-f3x6-36qh.json
+++ b/advisories/unreviewed/2022/05/GHSA-478v-f3x6-36qh/GHSA-478v-f3x6-36qh.json
@@ -7,12 +7,8 @@
"CVE-2007-6032"
],
"details": "SQL injection vulnerability in calendar/page.asp in Aleris Web Publishing Server 3.0 allows remote attackers to execute arbitrary SQL commands via the mode parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-47qg-45wp-9cgc/GHSA-47qg-45wp-9cgc.json b/advisories/unreviewed/2022/05/GHSA-47qg-45wp-9cgc/GHSA-47qg-45wp-9cgc.json
index 9399275d799..a77e25ae2d0 100644
--- a/advisories/unreviewed/2022/05/GHSA-47qg-45wp-9cgc/GHSA-47qg-45wp-9cgc.json
+++ b/advisories/unreviewed/2022/05/GHSA-47qg-45wp-9cgc/GHSA-47qg-45wp-9cgc.json
@@ -7,12 +7,8 @@
"CVE-2007-5840"
],
"details": "PHP remote file inclusion vulnerability in starnet/themes/c-sky/main.inc.php in Fred Stuurman SyndeoCMS 2.5.01 allows remote attackers to execute arbitrary PHP code via a URL in the cmsdir parameter, a different vector than CVE-2006-4920.2.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-47qp-2jq2-r96r/GHSA-47qp-2jq2-r96r.json b/advisories/unreviewed/2022/05/GHSA-47qp-2jq2-r96r/GHSA-47qp-2jq2-r96r.json
index 472e3434eee..57a50222bf6 100644
--- a/advisories/unreviewed/2022/05/GHSA-47qp-2jq2-r96r/GHSA-47qp-2jq2-r96r.json
+++ b/advisories/unreviewed/2022/05/GHSA-47qp-2jq2-r96r/GHSA-47qp-2jq2-r96r.json
@@ -7,12 +7,8 @@
"CVE-2007-6161"
],
"details": "index.php in Tilde CMS 4.x and earlier allows remote attackers to obtain sensitive information via a certain search parameter value in a search action, which reveals the path.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-47qw-2jwp-57vp/GHSA-47qw-2jwp-57vp.json b/advisories/unreviewed/2022/05/GHSA-47qw-2jwp-57vp/GHSA-47qw-2jwp-57vp.json
index 70cdf52961b..2e01f790689 100644
--- a/advisories/unreviewed/2022/05/GHSA-47qw-2jwp-57vp/GHSA-47qw-2jwp-57vp.json
+++ b/advisories/unreviewed/2022/05/GHSA-47qw-2jwp-57vp/GHSA-47qw-2jwp-57vp.json
@@ -7,12 +7,8 @@
"CVE-2007-6102"
],
"details": "Cross-site scripting (XSS) vulnerability in Feed to JavaScript (Feed2JS) 1.91 allows remote attackers to inject arbitrary web script or HTML via a URL in a feed.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-482j-vvpx-r8pp/GHSA-482j-vvpx-r8pp.json b/advisories/unreviewed/2022/05/GHSA-482j-vvpx-r8pp/GHSA-482j-vvpx-r8pp.json
index 863ebc9a5ff..df5ebe1a760 100644
--- a/advisories/unreviewed/2022/05/GHSA-482j-vvpx-r8pp/GHSA-482j-vvpx-r8pp.json
+++ b/advisories/unreviewed/2022/05/GHSA-482j-vvpx-r8pp/GHSA-482j-vvpx-r8pp.json
@@ -7,12 +7,8 @@
"CVE-2007-5842"
],
"details": "Multiple PHP remote file inclusion vulnerabilities in Vortex Portal 1.0.42 allow remote attackers to execute arbitrary PHP code via a URL in the cfgProgDir parameter to (1) admincp/auth/secure.php or (2) admincp/auth/checklogin.php.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-4842-39rx-hq8h/GHSA-4842-39rx-hq8h.json b/advisories/unreviewed/2022/05/GHSA-4842-39rx-hq8h/GHSA-4842-39rx-hq8h.json
index ea4bb6364bb..03babc21ae7 100644
--- a/advisories/unreviewed/2022/05/GHSA-4842-39rx-hq8h/GHSA-4842-39rx-hq8h.json
+++ b/advisories/unreviewed/2022/05/GHSA-4842-39rx-hq8h/GHSA-4842-39rx-hq8h.json
@@ -7,12 +7,8 @@
"CVE-2007-6157"
],
"details": "Cross-site scripting (XSS) vulnerability in index.php in SimpleGallery 0.1.3 allows remote attackers to inject arbitrary web script or HTML via the album parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-4fff-7qmx-5h73/GHSA-4fff-7qmx-5h73.json b/advisories/unreviewed/2022/05/GHSA-4fff-7qmx-5h73/GHSA-4fff-7qmx-5h73.json
index a0aacd5e39d..ba2181410a0 100644
--- a/advisories/unreviewed/2022/05/GHSA-4fff-7qmx-5h73/GHSA-4fff-7qmx-5h73.json
+++ b/advisories/unreviewed/2022/05/GHSA-4fff-7qmx-5h73/GHSA-4fff-7qmx-5h73.json
@@ -7,12 +7,8 @@
"CVE-2007-6215"
],
"details": "Multiple directory traversal vulnerabilities in play.php in Web-MeetMe 3.0.3 allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) roomNo and possibly the (2) bookid parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-4fw6-r8x4-6gcx/GHSA-4fw6-r8x4-6gcx.json b/advisories/unreviewed/2022/05/GHSA-4fw6-r8x4-6gcx/GHSA-4fw6-r8x4-6gcx.json
index eb9d10875a7..91cbf24b276 100644
--- a/advisories/unreviewed/2022/05/GHSA-4fw6-r8x4-6gcx/GHSA-4fw6-r8x4-6gcx.json
+++ b/advisories/unreviewed/2022/05/GHSA-4fw6-r8x4-6gcx/GHSA-4fw6-r8x4-6gcx.json
@@ -7,12 +7,8 @@
"CVE-2007-6009"
],
"details": "Multiple buffer overflows in ACD products allow user-assisted remote attackers to execute arbitrary code via a long section string in a (1) XBM or (2) XPM file to (a) ID_X.apl or (b) IDE_ACDStd.apl. NOTE: the PSP and LHA vectors are already covered by CVE-2007-4344 and CVE-2007-6007. NOTE: these might be integer overflows rather than buffer overflows.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-4gr6-f9qj-jjxh/GHSA-4gr6-f9qj-jjxh.json b/advisories/unreviewed/2022/05/GHSA-4gr6-f9qj-jjxh/GHSA-4gr6-f9qj-jjxh.json
index 7b98e400ccd..4407bdd6f6b 100644
--- a/advisories/unreviewed/2022/05/GHSA-4gr6-f9qj-jjxh/GHSA-4gr6-f9qj-jjxh.json
+++ b/advisories/unreviewed/2022/05/GHSA-4gr6-f9qj-jjxh/GHSA-4gr6-f9qj-jjxh.json
@@ -7,12 +7,8 @@
"CVE-2019-9342"
],
"details": "In Bluetooth, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-111214470",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-4j2g-7wxj-73hg/GHSA-4j2g-7wxj-73hg.json b/advisories/unreviewed/2022/05/GHSA-4j2g-7wxj-73hg/GHSA-4j2g-7wxj-73hg.json
index 92e1b6ea8e1..0184525404d 100644
--- a/advisories/unreviewed/2022/05/GHSA-4j2g-7wxj-73hg/GHSA-4j2g-7wxj-73hg.json
+++ b/advisories/unreviewed/2022/05/GHSA-4j2g-7wxj-73hg/GHSA-4j2g-7wxj-73hg.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-4jc8-xpvv-r48p/GHSA-4jc8-xpvv-r48p.json b/advisories/unreviewed/2022/05/GHSA-4jc8-xpvv-r48p/GHSA-4jc8-xpvv-r48p.json
index 16e3f72047b..ddffa9aa0ac 100644
--- a/advisories/unreviewed/2022/05/GHSA-4jc8-xpvv-r48p/GHSA-4jc8-xpvv-r48p.json
+++ b/advisories/unreviewed/2022/05/GHSA-4jc8-xpvv-r48p/GHSA-4jc8-xpvv-r48p.json
@@ -7,12 +7,8 @@
"CVE-2007-6079"
],
"details": "Directory traversal vulnerability in include/common.php in bcoos 1.0.10 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the xoopsOption[pagetype] parameter to the default URI for modules/news/. NOTE: this can be leveraged by using legitimate product functionality to upload a file that contains the code, then including that file.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-4m58-8hvf-gqv5/GHSA-4m58-8hvf-gqv5.json b/advisories/unreviewed/2022/05/GHSA-4m58-8hvf-gqv5/GHSA-4m58-8hvf-gqv5.json
index 50a37006507..98de28104c6 100644
--- a/advisories/unreviewed/2022/05/GHSA-4m58-8hvf-gqv5/GHSA-4m58-8hvf-gqv5.json
+++ b/advisories/unreviewed/2022/05/GHSA-4m58-8hvf-gqv5/GHSA-4m58-8hvf-gqv5.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-4mfp-5fwm-2mc7/GHSA-4mfp-5fwm-2mc7.json b/advisories/unreviewed/2022/05/GHSA-4mfp-5fwm-2mc7/GHSA-4mfp-5fwm-2mc7.json
index 1d3347d9426..3154216d314 100644
--- a/advisories/unreviewed/2022/05/GHSA-4mfp-5fwm-2mc7/GHSA-4mfp-5fwm-2mc7.json
+++ b/advisories/unreviewed/2022/05/GHSA-4mfp-5fwm-2mc7/GHSA-4mfp-5fwm-2mc7.json
@@ -7,12 +7,8 @@
"CVE-2007-6123"
],
"details": "Unspecified vulnerability in IRC Services 5.1.8 has unknown impact and attack vectors.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -40,9 +36,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-4p83-89wv-45cc/GHSA-4p83-89wv-45cc.json b/advisories/unreviewed/2022/05/GHSA-4p83-89wv-45cc/GHSA-4p83-89wv-45cc.json
index b8ac66e360a..193fce9fa2d 100644
--- a/advisories/unreviewed/2022/05/GHSA-4p83-89wv-45cc/GHSA-4p83-89wv-45cc.json
+++ b/advisories/unreviewed/2022/05/GHSA-4p83-89wv-45cc/GHSA-4p83-89wv-45cc.json
@@ -7,12 +7,8 @@
"CVE-2007-5941"
],
"details": "Stack-based buffer overflow in the SWCtl.SWCtl ActiveX control in Adobe Shockwave allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long argument to the ShockwaveVersion method.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-4pj4-372m-4fxh/GHSA-4pj4-372m-4fxh.json b/advisories/unreviewed/2022/05/GHSA-4pj4-372m-4fxh/GHSA-4pj4-372m-4fxh.json
index 91c151c5a48..74dabdbcab2 100644
--- a/advisories/unreviewed/2022/05/GHSA-4pj4-372m-4fxh/GHSA-4pj4-372m-4fxh.json
+++ b/advisories/unreviewed/2022/05/GHSA-4pj4-372m-4fxh/GHSA-4pj4-372m-4fxh.json
@@ -7,12 +7,8 @@
"CVE-2019-2149"
],
"details": "In libxaac, there is a possible out of bounds read due to a missing bounds check. This could lead to information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-113262406",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-4pw7-3p8h-fr77/GHSA-4pw7-3p8h-fr77.json b/advisories/unreviewed/2022/05/GHSA-4pw7-3p8h-fr77/GHSA-4pw7-3p8h-fr77.json
index e19d35c3af0..53dbe60b738 100644
--- a/advisories/unreviewed/2022/05/GHSA-4pw7-3p8h-fr77/GHSA-4pw7-3p8h-fr77.json
+++ b/advisories/unreviewed/2022/05/GHSA-4pw7-3p8h-fr77/GHSA-4pw7-3p8h-fr77.json
@@ -7,12 +7,8 @@
"CVE-2007-5970"
],
"details": "MySQL 5.1.x before 5.1.23 and 6.0.x before 6.0.4 allows remote authenticated users to gain privileges on arbitrary tables via unspecified vectors involving use of table-level DATA DIRECTORY and INDEX DIRECTORY options when creating a partitioned table with the same name as a table on which the user lacks privileges.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -48,9 +44,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-4pwh-v68p-659c/GHSA-4pwh-v68p-659c.json b/advisories/unreviewed/2022/05/GHSA-4pwh-v68p-659c/GHSA-4pwh-v68p-659c.json
index 5d981d9146d..b9cd0b292b2 100644
--- a/advisories/unreviewed/2022/05/GHSA-4pwh-v68p-659c/GHSA-4pwh-v68p-659c.json
+++ b/advisories/unreviewed/2022/05/GHSA-4pwh-v68p-659c/GHSA-4pwh-v68p-659c.json
@@ -7,12 +7,8 @@
"CVE-2007-6093"
],
"details": "The SRTP implementation in Ingate Firewall before 4.6.0 and SIParator before 4.6.0 allows remote attackers to cause a denial of service (kernel crash) via an RTCP index that is \"much more than expected.\"",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-4q98-f277-w2f4/GHSA-4q98-f277-w2f4.json b/advisories/unreviewed/2022/05/GHSA-4q98-f277-w2f4/GHSA-4q98-f277-w2f4.json
index 2b20d570074..bd833b587cd 100644
--- a/advisories/unreviewed/2022/05/GHSA-4q98-f277-w2f4/GHSA-4q98-f277-w2f4.json
+++ b/advisories/unreviewed/2022/05/GHSA-4q98-f277-w2f4/GHSA-4q98-f277-w2f4.json
@@ -7,12 +7,8 @@
"CVE-2007-6122"
],
"details": "The default_encrypt function in encrypt.c in IRC Services before 5.0.63, and 5.1.x before 5.1.7, allows remote attackers to cause a denial of service (daemon crash) via a long password. NOTE: some of these details are obtained from third party information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-4qpw-2xph-v56p/GHSA-4qpw-2xph-v56p.json b/advisories/unreviewed/2022/05/GHSA-4qpw-2xph-v56p/GHSA-4qpw-2xph-v56p.json
index 4444ebbc90f..cf0d37cf2e5 100644
--- a/advisories/unreviewed/2022/05/GHSA-4qpw-2xph-v56p/GHSA-4qpw-2xph-v56p.json
+++ b/advisories/unreviewed/2022/05/GHSA-4qpw-2xph-v56p/GHSA-4qpw-2xph-v56p.json
@@ -7,12 +7,8 @@
"CVE-2019-9317"
],
"details": "In libstagefright, there is a missing variable initialization. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112052258",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-4r5j-9p9r-6v2h/GHSA-4r5j-9p9r-6v2h.json b/advisories/unreviewed/2022/05/GHSA-4r5j-9p9r-6v2h/GHSA-4r5j-9p9r-6v2h.json
index 7772a0a8fe8..63481587659 100644
--- a/advisories/unreviewed/2022/05/GHSA-4r5j-9p9r-6v2h/GHSA-4r5j-9p9r-6v2h.json
+++ b/advisories/unreviewed/2022/05/GHSA-4r5j-9p9r-6v2h/GHSA-4r5j-9p9r-6v2h.json
@@ -7,12 +7,8 @@
"CVE-2019-2060"
],
"details": "In libxaac, there is a possible out of bounds read due to a missing bounds check. This could lead to information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112709994",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-4vv9-x75r-hv57/GHSA-4vv9-x75r-hv57.json b/advisories/unreviewed/2022/05/GHSA-4vv9-x75r-hv57/GHSA-4vv9-x75r-hv57.json
index 39b16372da0..d7ab612d51d 100644
--- a/advisories/unreviewed/2022/05/GHSA-4vv9-x75r-hv57/GHSA-4vv9-x75r-hv57.json
+++ b/advisories/unreviewed/2022/05/GHSA-4vv9-x75r-hv57/GHSA-4vv9-x75r-hv57.json
@@ -7,12 +7,8 @@
"CVE-2019-2167"
],
"details": "In libxaac there is a possible information disclosure due to uninitialized data. This could lead to information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-118615501",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-4x44-x6qm-66xm/GHSA-4x44-x6qm-66xm.json b/advisories/unreviewed/2022/05/GHSA-4x44-x6qm-66xm/GHSA-4x44-x6qm-66xm.json
index ef0371d670e..9a001916c62 100644
--- a/advisories/unreviewed/2022/05/GHSA-4x44-x6qm-66xm/GHSA-4x44-x6qm-66xm.json
+++ b/advisories/unreviewed/2022/05/GHSA-4x44-x6qm-66xm/GHSA-4x44-x6qm-66xm.json
@@ -7,12 +7,8 @@
"CVE-2007-5858"
],
"details": "WebKit in Safari in Apple Mac OS X 10.4.11 and 10.5.1, iPhone 1.0 through 1.1.2, and iPod touch 1.1 through 1.1.2 allows remote attackers to \"navigate the subframes of any other page,\" which can be leveraged to conduct cross-site scripting (XSS) attacks and obtain sensitive information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-547q-2g45-qm3q/GHSA-547q-2g45-qm3q.json b/advisories/unreviewed/2022/05/GHSA-547q-2g45-qm3q/GHSA-547q-2g45-qm3q.json
index dc37e400247..7a1ae1778ce 100644
--- a/advisories/unreviewed/2022/05/GHSA-547q-2g45-qm3q/GHSA-547q-2g45-qm3q.json
+++ b/advisories/unreviewed/2022/05/GHSA-547q-2g45-qm3q/GHSA-547q-2g45-qm3q.json
@@ -7,12 +7,8 @@
"CVE-2007-5951"
],
"details": "SQL injection vulnerability in articles.php in E-Vendejo 0.2 allows remote attackers to execute arbitrary SQL commands via the id parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-54f2-vwh2-6c3h/GHSA-54f2-vwh2-6c3h.json b/advisories/unreviewed/2022/05/GHSA-54f2-vwh2-6c3h/GHSA-54f2-vwh2-6c3h.json
index 9340af2a2d7..a04e418260f 100644
--- a/advisories/unreviewed/2022/05/GHSA-54f2-vwh2-6c3h/GHSA-54f2-vwh2-6c3h.json
+++ b/advisories/unreviewed/2022/05/GHSA-54f2-vwh2-6c3h/GHSA-54f2-vwh2-6c3h.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-54p2-qq73-f565/GHSA-54p2-qq73-f565.json b/advisories/unreviewed/2022/05/GHSA-54p2-qq73-f565/GHSA-54p2-qq73-f565.json
index 5890998d822..b8fe8c0468a 100644
--- a/advisories/unreviewed/2022/05/GHSA-54p2-qq73-f565/GHSA-54p2-qq73-f565.json
+++ b/advisories/unreviewed/2022/05/GHSA-54p2-qq73-f565/GHSA-54p2-qq73-f565.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-55m9-3c26-9vrp/GHSA-55m9-3c26-9vrp.json b/advisories/unreviewed/2022/05/GHSA-55m9-3c26-9vrp/GHSA-55m9-3c26-9vrp.json
index 55c30a6567a..04c97275c1e 100644
--- a/advisories/unreviewed/2022/05/GHSA-55m9-3c26-9vrp/GHSA-55m9-3c26-9vrp.json
+++ b/advisories/unreviewed/2022/05/GHSA-55m9-3c26-9vrp/GHSA-55m9-3c26-9vrp.json
@@ -7,12 +7,8 @@
"CVE-2019-2166"
],
"details": "In libxaac there is a possible information disclosure due to uninitialized data. This could lead to information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-117661478",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-56cw-v7m3-5qr9/GHSA-56cw-v7m3-5qr9.json b/advisories/unreviewed/2022/05/GHSA-56cw-v7m3-5qr9/GHSA-56cw-v7m3-5qr9.json
index 0b769b087cc..466e77e02bc 100644
--- a/advisories/unreviewed/2022/05/GHSA-56cw-v7m3-5qr9/GHSA-56cw-v7m3-5qr9.json
+++ b/advisories/unreviewed/2022/05/GHSA-56cw-v7m3-5qr9/GHSA-56cw-v7m3-5qr9.json
@@ -7,12 +7,8 @@
"CVE-2007-6126"
],
"details": "Multiple cross-site scripting (XSS) vulnerabilities in project alumni 1.0.9 and earlier allow remote attackers to inject arbitrary web script or HTML via the year parameter to (1) xml/index.php; or (2) the year parameter to view.page.inc.php, which is reachable through a view action to the top-level index.php.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-57j9-gjq8-q2vw/GHSA-57j9-gjq8-q2vw.json b/advisories/unreviewed/2022/05/GHSA-57j9-gjq8-q2vw/GHSA-57j9-gjq8-q2vw.json
index ad98503d022..3eb3a1f9e35 100644
--- a/advisories/unreviewed/2022/05/GHSA-57j9-gjq8-q2vw/GHSA-57j9-gjq8-q2vw.json
+++ b/advisories/unreviewed/2022/05/GHSA-57j9-gjq8-q2vw/GHSA-57j9-gjq8-q2vw.json
@@ -7,12 +7,8 @@
"CVE-2007-6139"
],
"details": "PHP remote file inclusion vulnerability in index.php in Mp3 ToolBox 1.0 beta 5 allows remote attackers to execute arbitrary PHP code via a URL in the skin_file parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-57vj-jmr7-9qm6/GHSA-57vj-jmr7-9qm6.json b/advisories/unreviewed/2022/05/GHSA-57vj-jmr7-9qm6/GHSA-57vj-jmr7-9qm6.json
index 819f8e238de..2d677601868 100644
--- a/advisories/unreviewed/2022/05/GHSA-57vj-jmr7-9qm6/GHSA-57vj-jmr7-9qm6.json
+++ b/advisories/unreviewed/2022/05/GHSA-57vj-jmr7-9qm6/GHSA-57vj-jmr7-9qm6.json
@@ -7,12 +7,8 @@
"CVE-2019-9366"
],
"details": "In libSBRdec there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112052062",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-58jg-gjx4-m22c/GHSA-58jg-gjx4-m22c.json b/advisories/unreviewed/2022/05/GHSA-58jg-gjx4-m22c/GHSA-58jg-gjx4-m22c.json
index b6f3ffffd61..71cde958414 100644
--- a/advisories/unreviewed/2022/05/GHSA-58jg-gjx4-m22c/GHSA-58jg-gjx4-m22c.json
+++ b/advisories/unreviewed/2022/05/GHSA-58jg-gjx4-m22c/GHSA-58jg-gjx4-m22c.json
@@ -7,12 +7,8 @@
"CVE-2007-6060"
],
"details": "AhnLab Antivirus 3 Internet Security 2008 Platinum appends data to a filename string at a location indicated by the \"Filename length\" field in a ZIP header, which allows remote attackers to cause a denial of service (machine crash) and possibly execute arbitrary code via a ZIP file in which this field's value is larger than the actual number of bytes in the filename.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-5c8x-98rm-gm38/GHSA-5c8x-98rm-gm38.json b/advisories/unreviewed/2022/05/GHSA-5c8x-98rm-gm38/GHSA-5c8x-98rm-gm38.json
index 295a6a188ea..f1f87892a90 100644
--- a/advisories/unreviewed/2022/05/GHSA-5c8x-98rm-gm38/GHSA-5c8x-98rm-gm38.json
+++ b/advisories/unreviewed/2022/05/GHSA-5c8x-98rm-gm38/GHSA-5c8x-98rm-gm38.json
@@ -7,12 +7,8 @@
"CVE-2007-5954"
],
"details": "Cross-site scripting (XSS) vulnerability in buscador.php in JLMForo System allows remote attackers to inject arbitrary web script or HTML via the clave parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-5f46-4729-jprm/GHSA-5f46-4729-jprm.json b/advisories/unreviewed/2022/05/GHSA-5f46-4729-jprm/GHSA-5f46-4729-jprm.json
index a5301e1b4f0..bdddc633f82 100644
--- a/advisories/unreviewed/2022/05/GHSA-5f46-4729-jprm/GHSA-5f46-4729-jprm.json
+++ b/advisories/unreviewed/2022/05/GHSA-5f46-4729-jprm/GHSA-5f46-4729-jprm.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-5f6v-m426-9687/GHSA-5f6v-m426-9687.json b/advisories/unreviewed/2022/05/GHSA-5f6v-m426-9687/GHSA-5f6v-m426-9687.json
index 11f79966e62..938dc1e2d46 100644
--- a/advisories/unreviewed/2022/05/GHSA-5f6v-m426-9687/GHSA-5f6v-m426-9687.json
+++ b/advisories/unreviewed/2022/05/GHSA-5f6v-m426-9687/GHSA-5f6v-m426-9687.json
@@ -7,12 +7,8 @@
"CVE-2007-5863"
],
"details": "Software Update in Apple Mac OS X 10.5.1 allows remote attackers to execute arbitrary commands via a man-in-the-middle (MITM) attack between the client and the server, using a modified distribution definition file with the \"allow-external-scripts\" option.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -56,9 +52,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-5fmg-h5hp-6vj5/GHSA-5fmg-h5hp-6vj5.json b/advisories/unreviewed/2022/05/GHSA-5fmg-h5hp-6vj5/GHSA-5fmg-h5hp-6vj5.json
index e63534bbf4b..db9131762d4 100644
--- a/advisories/unreviewed/2022/05/GHSA-5fmg-h5hp-6vj5/GHSA-5fmg-h5hp-6vj5.json
+++ b/advisories/unreviewed/2022/05/GHSA-5fmg-h5hp-6vj5/GHSA-5fmg-h5hp-6vj5.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-5fmj-85rq-cqwc/GHSA-5fmj-85rq-cqwc.json b/advisories/unreviewed/2022/05/GHSA-5fmj-85rq-cqwc/GHSA-5fmj-85rq-cqwc.json
index ee2467cafd5..b1c8a51be1a 100644
--- a/advisories/unreviewed/2022/05/GHSA-5fmj-85rq-cqwc/GHSA-5fmj-85rq-cqwc.json
+++ b/advisories/unreviewed/2022/05/GHSA-5fmj-85rq-cqwc/GHSA-5fmj-85rq-cqwc.json
@@ -7,12 +7,8 @@
"CVE-2007-6172"
],
"details": "Multiple SQL injection vulnerabilities in wpQuiz 2.7 allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) viewimage.php and (2) comments.php.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-5fmq-4g5c-vr23/GHSA-5fmq-4g5c-vr23.json b/advisories/unreviewed/2022/05/GHSA-5fmq-4g5c-vr23/GHSA-5fmq-4g5c-vr23.json
index abdcccc2132..c1e27bd3a1d 100644
--- a/advisories/unreviewed/2022/05/GHSA-5fmq-4g5c-vr23/GHSA-5fmq-4g5c-vr23.json
+++ b/advisories/unreviewed/2022/05/GHSA-5fmq-4g5c-vr23/GHSA-5fmq-4g5c-vr23.json
@@ -7,12 +7,8 @@
"CVE-2007-5930"
],
"details": "Cross-site scripting (XSS) vulnerability in the web interface in Cerberus FTP Server before 2.46 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-5g4m-52c9-q9f8/GHSA-5g4m-52c9-q9f8.json b/advisories/unreviewed/2022/05/GHSA-5g4m-52c9-q9f8/GHSA-5g4m-52c9-q9f8.json
index f0c6089f524..2c042980248 100644
--- a/advisories/unreviewed/2022/05/GHSA-5g4m-52c9-q9f8/GHSA-5g4m-52c9-q9f8.json
+++ b/advisories/unreviewed/2022/05/GHSA-5g4m-52c9-q9f8/GHSA-5g4m-52c9-q9f8.json
@@ -7,12 +7,8 @@
"CVE-2007-5862"
],
"details": "Java in Mac OS X 10.4 through 10.4.11 allows remote attackers to bypass Keychain access controls and add or delete arbitrary Keychain items via a crafted Java applet.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-5gw9-4f37-rxx8/GHSA-5gw9-4f37-rxx8.json b/advisories/unreviewed/2022/05/GHSA-5gw9-4f37-rxx8/GHSA-5gw9-4f37-rxx8.json
index 380292c2278..ea98c831ff6 100644
--- a/advisories/unreviewed/2022/05/GHSA-5gw9-4f37-rxx8/GHSA-5gw9-4f37-rxx8.json
+++ b/advisories/unreviewed/2022/05/GHSA-5gw9-4f37-rxx8/GHSA-5gw9-4f37-rxx8.json
@@ -7,12 +7,8 @@
"CVE-2007-6000"
],
"details": "KDE Konqueror 3.5.6 and earlier allows remote attackers to cause a denial of service (crash) via large HTTP cookie parameters.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -36,9 +32,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-5h5p-q43p-7g65/GHSA-5h5p-q43p-7g65.json b/advisories/unreviewed/2022/05/GHSA-5h5p-q43p-7g65/GHSA-5h5p-q43p-7g65.json
index 6cbcddbc9b2..c5956a7fe81 100644
--- a/advisories/unreviewed/2022/05/GHSA-5h5p-q43p-7g65/GHSA-5h5p-q43p-7g65.json
+++ b/advisories/unreviewed/2022/05/GHSA-5h5p-q43p-7g65/GHSA-5h5p-q43p-7g65.json
@@ -7,12 +7,8 @@
"CVE-2019-16719"
],
"details": "WTCMS 1.0 allows index.php?g=admin&m=index&a=index CSRF with resultant XSS.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-5hw9-7c3p-xqf9/GHSA-5hw9-7c3p-xqf9.json b/advisories/unreviewed/2022/05/GHSA-5hw9-7c3p-xqf9/GHSA-5hw9-7c3p-xqf9.json
index 3eb234fbd05..307e321f909 100644
--- a/advisories/unreviewed/2022/05/GHSA-5hw9-7c3p-xqf9/GHSA-5hw9-7c3p-xqf9.json
+++ b/advisories/unreviewed/2022/05/GHSA-5hw9-7c3p-xqf9/GHSA-5hw9-7c3p-xqf9.json
@@ -7,12 +7,8 @@
"CVE-2007-6135"
],
"details": "Cross-site scripting (XSS) vulnerability in phpslideshow.php in PHPSlideShow 0.9.9.2, and possibly earlier, allows remote attackers to inject arbitrary web script or HTML via the directory parameter. NOTE: this issue was originally reported for toonchapter8.php, but this is probably a site-specific name, since the PHPSlideShow distribution does not contain that file.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-5jgc-m9p6-5f9w/GHSA-5jgc-m9p6-5f9w.json b/advisories/unreviewed/2022/05/GHSA-5jgc-m9p6-5f9w/GHSA-5jgc-m9p6-5f9w.json
index 1084657a3bf..685a529a679 100644
--- a/advisories/unreviewed/2022/05/GHSA-5jgc-m9p6-5f9w/GHSA-5jgc-m9p6-5f9w.json
+++ b/advisories/unreviewed/2022/05/GHSA-5jgc-m9p6-5f9w/GHSA-5jgc-m9p6-5f9w.json
@@ -7,12 +7,8 @@
"CVE-2007-5958"
],
"details": "X.Org Xserver before 1.4.1 allows local users to determine the existence of arbitrary files via a filename argument in the -sp option to the X program, which produces different error messages depending on whether the filename exists.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-5m3m-cp9q-wr3m/GHSA-5m3m-cp9q-wr3m.json b/advisories/unreviewed/2022/05/GHSA-5m3m-cp9q-wr3m/GHSA-5m3m-cp9q-wr3m.json
index 1d20b40fed4..c72ca65f792 100644
--- a/advisories/unreviewed/2022/05/GHSA-5m3m-cp9q-wr3m/GHSA-5m3m-cp9q-wr3m.json
+++ b/advisories/unreviewed/2022/05/GHSA-5m3m-cp9q-wr3m/GHSA-5m3m-cp9q-wr3m.json
@@ -7,12 +7,8 @@
"CVE-2007-5909"
],
"details": "Multiple stack-based buffer overflows in Autonomy (formerly Verity) KeyView Viewer, Filter, and Export SDK before 9.2.0.12, as used by ActivePDF DocConverter, IBM Lotus Notes before 7.0.3, Symantec Mail Security, and other products, allow remote attackers to execute arbitrary code via a crafted (1) AG file to kpagrdr.dll, (2) AW file to awsr.dll, (3) DLL or (4) EXE file to exesr.dll, (5) DOC file to mwsr.dll, (6) MIF file to mifsr.dll, (7) SAM file to lasr.dll, or (8) RTF file to rtfsr.dll. NOTE: the WPD (wp6sr.dll) vector is covered by CVE-2007-5910.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-5mqq-53xm-xjrq/GHSA-5mqq-53xm-xjrq.json b/advisories/unreviewed/2022/05/GHSA-5mqq-53xm-xjrq/GHSA-5mqq-53xm-xjrq.json
index 905e8db3dd9..e5eb8c0301b 100644
--- a/advisories/unreviewed/2022/05/GHSA-5mqq-53xm-xjrq/GHSA-5mqq-53xm-xjrq.json
+++ b/advisories/unreviewed/2022/05/GHSA-5mqq-53xm-xjrq/GHSA-5mqq-53xm-xjrq.json
@@ -7,12 +7,8 @@
"CVE-2007-5850"
],
"details": "Heap-based buffer overflow in Desktop Services in Apple Mac OS X 10.4.11 allows user-assisted attackers to execute arbitrary code via a directory with a crafted .DS_Store file.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-5pj2-vm8h-3hhm/GHSA-5pj2-vm8h-3hhm.json b/advisories/unreviewed/2022/05/GHSA-5pj2-vm8h-3hhm/GHSA-5pj2-vm8h-3hhm.json
index 063fec17acc..503eada0ecf 100644
--- a/advisories/unreviewed/2022/05/GHSA-5pj2-vm8h-3hhm/GHSA-5pj2-vm8h-3hhm.json
+++ b/advisories/unreviewed/2022/05/GHSA-5pj2-vm8h-3hhm/GHSA-5pj2-vm8h-3hhm.json
@@ -7,12 +7,8 @@
"CVE-2007-6179"
],
"details": "Multiple PHP remote file inclusion vulnerabilities in Charray's CMS 0.9.3 allow remote attackers to execute arbitrary PHP code via a URL in the ccms_library_path parameter to (1) markdown.php and (2) gallery.php in decoder/.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-5pp3-hq84-c694/GHSA-5pp3-hq84-c694.json b/advisories/unreviewed/2022/05/GHSA-5pp3-hq84-c694/GHSA-5pp3-hq84-c694.json
index 8b29acfd360..dcdfb3c85be 100644
--- a/advisories/unreviewed/2022/05/GHSA-5pp3-hq84-c694/GHSA-5pp3-hq84-c694.json
+++ b/advisories/unreviewed/2022/05/GHSA-5pp3-hq84-c694/GHSA-5pp3-hq84-c694.json
@@ -7,12 +7,8 @@
"CVE-2007-6184"
],
"details": "Directory traversal vulnerability in index.php in Project Alumni 1.0.9 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the act parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-5q7x-pp9h-jq3v/GHSA-5q7x-pp9h-jq3v.json b/advisories/unreviewed/2022/05/GHSA-5q7x-pp9h-jq3v/GHSA-5q7x-pp9h-jq3v.json
index 82ca9db450b..69b03cc1207 100644
--- a/advisories/unreviewed/2022/05/GHSA-5q7x-pp9h-jq3v/GHSA-5q7x-pp9h-jq3v.json
+++ b/advisories/unreviewed/2022/05/GHSA-5q7x-pp9h-jq3v/GHSA-5q7x-pp9h-jq3v.json
@@ -7,12 +7,8 @@
"CVE-2007-5844"
],
"details": "Directory traversal vulnerability in inc/includes.inc in GuppY 4.6.3 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the selskin parameter to index.php. NOTE: this can be leveraged for remote file inclusion by including inc/boxleft.inc and specifying a URL in the xposbox[L][] array parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-5qqm-ghmq-h9vw/GHSA-5qqm-ghmq-h9vw.json b/advisories/unreviewed/2022/05/GHSA-5qqm-ghmq-h9vw/GHSA-5qqm-ghmq-h9vw.json
index 85c9987c713..8df48b47d4a 100644
--- a/advisories/unreviewed/2022/05/GHSA-5qqm-ghmq-h9vw/GHSA-5qqm-ghmq-h9vw.json
+++ b/advisories/unreviewed/2022/05/GHSA-5qqm-ghmq-h9vw/GHSA-5qqm-ghmq-h9vw.json
@@ -7,12 +7,8 @@
"CVE-2019-1246"
],
"details": "A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1240, CVE-2019-1241, CVE-2019-1242, CVE-2019-1243, CVE-2019-1247, CVE-2019-1248, CVE-2019-1249, CVE-2019-1250.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-5rpc-mjg7-fjwg/GHSA-5rpc-mjg7-fjwg.json b/advisories/unreviewed/2022/05/GHSA-5rpc-mjg7-fjwg/GHSA-5rpc-mjg7-fjwg.json
index 528f83d5d1c..847f51082a5 100644
--- a/advisories/unreviewed/2022/05/GHSA-5rpc-mjg7-fjwg/GHSA-5rpc-mjg7-fjwg.json
+++ b/advisories/unreviewed/2022/05/GHSA-5rpc-mjg7-fjwg/GHSA-5rpc-mjg7-fjwg.json
@@ -7,12 +7,8 @@
"CVE-2007-6088"
],
"details": "PHP remote file inclusion vulnerability in includes/functions_mod_user.php in phpBBViet 02.03.07 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-5vp6-q3wx-853p/GHSA-5vp6-q3wx-853p.json b/advisories/unreviewed/2022/05/GHSA-5vp6-q3wx-853p/GHSA-5vp6-q3wx-853p.json
index eb66d762227..268136b1d26 100644
--- a/advisories/unreviewed/2022/05/GHSA-5vp6-q3wx-853p/GHSA-5vp6-q3wx-853p.json
+++ b/advisories/unreviewed/2022/05/GHSA-5vp6-q3wx-853p/GHSA-5vp6-q3wx-853p.json
@@ -7,12 +7,8 @@
"CVE-2007-5859"
],
"details": "Unspecified vulnerability in Safari RSS in Apple Mac OS X 10.4.11 allows remote attackers to cause a denial of service (application termination) or execute arbitrary code via a crafted feed: URL that triggers memory corruption.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -56,9 +52,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-5w67-96wr-rq68/GHSA-5w67-96wr-rq68.json b/advisories/unreviewed/2022/05/GHSA-5w67-96wr-rq68/GHSA-5w67-96wr-rq68.json
index 7580bfa6e7a..6f53b8ee01a 100644
--- a/advisories/unreviewed/2022/05/GHSA-5w67-96wr-rq68/GHSA-5w67-96wr-rq68.json
+++ b/advisories/unreviewed/2022/05/GHSA-5w67-96wr-rq68/GHSA-5w67-96wr-rq68.json
@@ -7,12 +7,8 @@
"CVE-2007-6192"
],
"details": "The web management interface in Citrix NetScaler 8.0 build 47.8 uses weak encryption (XOR of unpadded data) to store credentials within a cookie, which makes it easier for remote attackers to obtain cleartext credentials when a cookie is captured via a known-plaintext attack.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -36,9 +32,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-5wxf-j3j5-7qg8/GHSA-5wxf-j3j5-7qg8.json b/advisories/unreviewed/2022/05/GHSA-5wxf-j3j5-7qg8/GHSA-5wxf-j3j5-7qg8.json
index 469bba4f534..cc6a861f95a 100644
--- a/advisories/unreviewed/2022/05/GHSA-5wxf-j3j5-7qg8/GHSA-5wxf-j3j5-7qg8.json
+++ b/advisories/unreviewed/2022/05/GHSA-5wxf-j3j5-7qg8/GHSA-5wxf-j3j5-7qg8.json
@@ -7,12 +7,8 @@
"CVE-2007-5916"
],
"details": "SQL injection vulnerability in the login page in phphelpdesk 0.6.16 allows remote attackers to execute arbitrary SQL commands via unspecified parameters related to the \"login procedures.\"",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-62g2-5r5g-gcxp/GHSA-62g2-5r5g-gcxp.json b/advisories/unreviewed/2022/05/GHSA-62g2-5r5g-gcxp/GHSA-62g2-5r5g-gcxp.json
index 297d08f558c..cda09840d1b 100644
--- a/advisories/unreviewed/2022/05/GHSA-62g2-5r5g-gcxp/GHSA-62g2-5r5g-gcxp.json
+++ b/advisories/unreviewed/2022/05/GHSA-62g2-5r5g-gcxp/GHSA-62g2-5r5g-gcxp.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-62m2-jrj9-gqh5/GHSA-62m2-jrj9-gqh5.json b/advisories/unreviewed/2022/05/GHSA-62m2-jrj9-gqh5/GHSA-62m2-jrj9-gqh5.json
index 79bbe2c484f..de0c87c0f5d 100644
--- a/advisories/unreviewed/2022/05/GHSA-62m2-jrj9-gqh5/GHSA-62m2-jrj9-gqh5.json
+++ b/advisories/unreviewed/2022/05/GHSA-62m2-jrj9-gqh5/GHSA-62m2-jrj9-gqh5.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-63hp-2j26-qmh4/GHSA-63hp-2j26-qmh4.json b/advisories/unreviewed/2022/05/GHSA-63hp-2j26-qmh4/GHSA-63hp-2j26-qmh4.json
index c8bec3b79dc..bfbd6b08033 100644
--- a/advisories/unreviewed/2022/05/GHSA-63hp-2j26-qmh4/GHSA-63hp-2j26-qmh4.json
+++ b/advisories/unreviewed/2022/05/GHSA-63hp-2j26-qmh4/GHSA-63hp-2j26-qmh4.json
@@ -7,12 +7,8 @@
"CVE-2007-6131"
],
"details": "buttonpressed.sh in scanbuttond 0.2.3 allows local users to overwrite arbitrary files via a symlink attack on the (1) scan.pnm and (2) scan.jpg temporary files.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -44,9 +40,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "LOW",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-6438-vw7j-m486/GHSA-6438-vw7j-m486.json b/advisories/unreviewed/2022/05/GHSA-6438-vw7j-m486/GHSA-6438-vw7j-m486.json
index cd6694551f8..68af2dd4baa 100644
--- a/advisories/unreviewed/2022/05/GHSA-6438-vw7j-m486/GHSA-6438-vw7j-m486.json
+++ b/advisories/unreviewed/2022/05/GHSA-6438-vw7j-m486/GHSA-6438-vw7j-m486.json
@@ -7,12 +7,8 @@
"CVE-2007-6143"
],
"details": "SQL injection vulnerability in default.asp (aka the Login Page) in VU Case Manager allows remote attackers to execute arbitrary SQL commands via the password parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-662f-c392-7g79/GHSA-662f-c392-7g79.json b/advisories/unreviewed/2022/05/GHSA-662f-c392-7g79/GHSA-662f-c392-7g79.json
index a9c5bc1a451..f82c1ad92d2 100644
--- a/advisories/unreviewed/2022/05/GHSA-662f-c392-7g79/GHSA-662f-c392-7g79.json
+++ b/advisories/unreviewed/2022/05/GHSA-662f-c392-7g79/GHSA-662f-c392-7g79.json
@@ -7,12 +7,8 @@
"CVE-2019-1256"
],
"details": "An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1285.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-66cm-jpvw-c835/GHSA-66cm-jpvw-c835.json b/advisories/unreviewed/2022/05/GHSA-66cm-jpvw-c835/GHSA-66cm-jpvw-c835.json
index 79312ec37bc..68f66912fbd 100644
--- a/advisories/unreviewed/2022/05/GHSA-66cm-jpvw-c835/GHSA-66cm-jpvw-c835.json
+++ b/advisories/unreviewed/2022/05/GHSA-66cm-jpvw-c835/GHSA-66cm-jpvw-c835.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-679r-286m-46jm/GHSA-679r-286m-46jm.json b/advisories/unreviewed/2022/05/GHSA-679r-286m-46jm/GHSA-679r-286m-46jm.json
index 3ed49ce7d6c..c084a6c8a37 100644
--- a/advisories/unreviewed/2022/05/GHSA-679r-286m-46jm/GHSA-679r-286m-46jm.json
+++ b/advisories/unreviewed/2022/05/GHSA-679r-286m-46jm/GHSA-679r-286m-46jm.json
@@ -7,12 +7,8 @@
"CVE-2007-5929"
],
"details": "Buffer overflow in OpenBase 10.0.5 and earlier might allow remote authenticated users to execute arbitrary code or cause a denial of service (daemon crash) by creating a stored procedure with a long name and invoking this procedure, which triggers heap corruption.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-67r7-53fx-p88c/GHSA-67r7-53fx-p88c.json b/advisories/unreviewed/2022/05/GHSA-67r7-53fx-p88c/GHSA-67r7-53fx-p88c.json
index 1a088d6efd3..1ba79e1b9fd 100644
--- a/advisories/unreviewed/2022/05/GHSA-67r7-53fx-p88c/GHSA-67r7-53fx-p88c.json
+++ b/advisories/unreviewed/2022/05/GHSA-67r7-53fx-p88c/GHSA-67r7-53fx-p88c.json
@@ -7,12 +7,8 @@
"CVE-2007-6011"
],
"details": "Unspecified vulnerability in main.php of BugHotel Reservation System before 4.9.9 P3 allows remote attackers to bypass authentication and gain administrative access via unspecified vectors. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-6882-w5r7-3gf2/GHSA-6882-w5r7-3gf2.json b/advisories/unreviewed/2022/05/GHSA-6882-w5r7-3gf2/GHSA-6882-w5r7-3gf2.json
index 64ea61f10a0..4a7e655be56 100644
--- a/advisories/unreviewed/2022/05/GHSA-6882-w5r7-3gf2/GHSA-6882-w5r7-3gf2.json
+++ b/advisories/unreviewed/2022/05/GHSA-6882-w5r7-3gf2/GHSA-6882-w5r7-3gf2.json
@@ -7,12 +7,8 @@
"CVE-2007-5927"
],
"details": "Directory traversal vulnerability in OpenBase 10.0.5 and earlier allows remote authenticated users to create files with arbitrary contents via a .. (dot dot) in the first argument to the GlobalLog stored procedure. NOTE: this can be leveraged to execute arbitrary code using CVE-2007-5926.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-69jh-cprq-7xf7/GHSA-69jh-cprq-7xf7.json b/advisories/unreviewed/2022/05/GHSA-69jh-cprq-7xf7/GHSA-69jh-cprq-7xf7.json
index b0743156f56..8e5e99aa354 100644
--- a/advisories/unreviewed/2022/05/GHSA-69jh-cprq-7xf7/GHSA-69jh-cprq-7xf7.json
+++ b/advisories/unreviewed/2022/05/GHSA-69jh-cprq-7xf7/GHSA-69jh-cprq-7xf7.json
@@ -7,12 +7,8 @@
"CVE-2007-6084"
],
"details": "SQL injection vulnerability in software-description.php in HotScripts Clone Script allows remote attackers to execute arbitrary SQL commands via the id parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-69jq-wmhm-pw4j/GHSA-69jq-wmhm-pw4j.json b/advisories/unreviewed/2022/05/GHSA-69jq-wmhm-pw4j/GHSA-69jq-wmhm-pw4j.json
index 2ffa591070f..52790830201 100644
--- a/advisories/unreviewed/2022/05/GHSA-69jq-wmhm-pw4j/GHSA-69jq-wmhm-pw4j.json
+++ b/advisories/unreviewed/2022/05/GHSA-69jq-wmhm-pw4j/GHSA-69jq-wmhm-pw4j.json
@@ -7,12 +7,8 @@
"CVE-2019-16293"
],
"details": "The Create Discoveries feature of Open-AudIT before 3.2.0 allows an authenticated attacker to execute arbitrary OS commands via a crafted value for a URL field.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-6cgf-ccqv-hqc5/GHSA-6cgf-ccqv-hqc5.json b/advisories/unreviewed/2022/05/GHSA-6cgf-ccqv-hqc5/GHSA-6cgf-ccqv-hqc5.json
index 66a992df562..f9f09a83fb4 100644
--- a/advisories/unreviewed/2022/05/GHSA-6cgf-ccqv-hqc5/GHSA-6cgf-ccqv-hqc5.json
+++ b/advisories/unreviewed/2022/05/GHSA-6cgf-ccqv-hqc5/GHSA-6cgf-ccqv-hqc5.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-6fhp-xfmp-3mr6/GHSA-6fhp-xfmp-3mr6.json b/advisories/unreviewed/2022/05/GHSA-6fhp-xfmp-3mr6/GHSA-6fhp-xfmp-3mr6.json
index bacb0e22838..f805f1898f9 100644
--- a/advisories/unreviewed/2022/05/GHSA-6fhp-xfmp-3mr6/GHSA-6fhp-xfmp-3mr6.json
+++ b/advisories/unreviewed/2022/05/GHSA-6fhp-xfmp-3mr6/GHSA-6fhp-xfmp-3mr6.json
@@ -7,12 +7,8 @@
"CVE-2019-2156"
],
"details": "In libxaac, there is a possible out of bounds read due to a missing bounds check. This could lead to information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112552816",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-6fpr-4c6x-qp4g/GHSA-6fpr-4c6x-qp4g.json b/advisories/unreviewed/2022/05/GHSA-6fpr-4c6x-qp4g/GHSA-6fpr-4c6x-qp4g.json
index 5ff76f49fc3..151c657a093 100644
--- a/advisories/unreviewed/2022/05/GHSA-6fpr-4c6x-qp4g/GHSA-6fpr-4c6x-qp4g.json
+++ b/advisories/unreviewed/2022/05/GHSA-6fpr-4c6x-qp4g/GHSA-6fpr-4c6x-qp4g.json
@@ -7,12 +7,8 @@
"CVE-2015-9397"
],
"details": "The gocodes plugin through 1.3.5 for WordPress has wp-admin/tools.php deletegc XSS.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -32,9 +28,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "LOW",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-6fvr-6mxw-xfrw/GHSA-6fvr-6mxw-xfrw.json b/advisories/unreviewed/2022/05/GHSA-6fvr-6mxw-xfrw/GHSA-6fvr-6mxw-xfrw.json
index de27a474dce..070844b0506 100644
--- a/advisories/unreviewed/2022/05/GHSA-6fvr-6mxw-xfrw/GHSA-6fvr-6mxw-xfrw.json
+++ b/advisories/unreviewed/2022/05/GHSA-6fvr-6mxw-xfrw/GHSA-6fvr-6mxw-xfrw.json
@@ -7,12 +7,8 @@
"CVE-2007-5975"
],
"details": "SQL injection vulnerability in index.php in TBSource, as used in (1) TBDev and (2) TorrentStrike 0.4, allows remote authenticated users to execute arbitrary SQL commands via the choice parameter. NOTE: some of these details are obtained from third party information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-6ghh-hvv9-x353/GHSA-6ghh-hvv9-x353.json b/advisories/unreviewed/2022/05/GHSA-6ghh-hvv9-x353/GHSA-6ghh-hvv9-x353.json
index 4bd3f0c682d..15008d50416 100644
--- a/advisories/unreviewed/2022/05/GHSA-6ghh-hvv9-x353/GHSA-6ghh-hvv9-x353.json
+++ b/advisories/unreviewed/2022/05/GHSA-6ghh-hvv9-x353/GHSA-6ghh-hvv9-x353.json
@@ -7,12 +7,8 @@
"CVE-2007-6007"
],
"details": "Integer overflow in the ID_PSP.apl plug-in for ACD ACDSee Photo Manager 9.0 build 108, Pro Photo Manager 8.1 build 99, and Photo Editor 4.0 build 195 allows user-assisted remote attackers to execute arbitrary code via a crafted PSP image that triggers a heap-based buffer overflow.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-6gp5-g2h4-r5fv/GHSA-6gp5-g2h4-r5fv.json b/advisories/unreviewed/2022/05/GHSA-6gp5-g2h4-r5fv/GHSA-6gp5-g2h4-r5fv.json
index e4ad2a5294c..036570eb77f 100644
--- a/advisories/unreviewed/2022/05/GHSA-6gp5-g2h4-r5fv/GHSA-6gp5-g2h4-r5fv.json
+++ b/advisories/unreviewed/2022/05/GHSA-6gp5-g2h4-r5fv/GHSA-6gp5-g2h4-r5fv.json
@@ -7,12 +7,8 @@
"CVE-2007-5898"
],
"details": "The (1) htmlentities and (2) htmlspecialchars functions in PHP before 5.2.5 accept partial multibyte sequences, which has unknown impact and attack vectors, a different issue than CVE-2006-5465.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -148,9 +144,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-6hcp-v9xq-2g4x/GHSA-6hcp-v9xq-2g4x.json b/advisories/unreviewed/2022/05/GHSA-6hcp-v9xq-2g4x/GHSA-6hcp-v9xq-2g4x.json
index e4eb57ae246..1ee11fdfc7e 100644
--- a/advisories/unreviewed/2022/05/GHSA-6hcp-v9xq-2g4x/GHSA-6hcp-v9xq-2g4x.json
+++ b/advisories/unreviewed/2022/05/GHSA-6hcp-v9xq-2g4x/GHSA-6hcp-v9xq-2g4x.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-6m4x-p77x-h89r/GHSA-6m4x-p77x-h89r.json b/advisories/unreviewed/2022/05/GHSA-6m4x-p77x-h89r/GHSA-6m4x-p77x-h89r.json
index 5bbaf263c30..416039fb1b9 100644
--- a/advisories/unreviewed/2022/05/GHSA-6m4x-p77x-h89r/GHSA-6m4x-p77x-h89r.json
+++ b/advisories/unreviewed/2022/05/GHSA-6m4x-p77x-h89r/GHSA-6m4x-p77x-h89r.json
@@ -7,12 +7,8 @@
"CVE-2007-5993"
],
"details": "Cross-site scripting (XSS) vulnerability in Visionary Technology in Library Solutions (VTLS) vtls.web.gateway before 48.1.1 allows remote attackers to inject arbitrary web script or HTML via the searchtype parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-6mrv-7rf8-prq8/GHSA-6mrv-7rf8-prq8.json b/advisories/unreviewed/2022/05/GHSA-6mrv-7rf8-prq8/GHSA-6mrv-7rf8-prq8.json
index 89e98f0ec05..eda525e14c1 100644
--- a/advisories/unreviewed/2022/05/GHSA-6mrv-7rf8-prq8/GHSA-6mrv-7rf8-prq8.json
+++ b/advisories/unreviewed/2022/05/GHSA-6mrv-7rf8-prq8/GHSA-6mrv-7rf8-prq8.json
@@ -7,12 +7,8 @@
"CVE-2007-6047"
],
"details": "Unspecified vulnerability in the DB2DART tool in IBM DB2 UDB 9.1 before Fixpak 4 allows attackers to execute arbitrary commands as the DB2 instance owner, related to invocation of TPUT by DB2DART.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -40,9 +36,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-6p3m-xxpg-qhgw/GHSA-6p3m-xxpg-qhgw.json b/advisories/unreviewed/2022/05/GHSA-6p3m-xxpg-qhgw/GHSA-6p3m-xxpg-qhgw.json
index 56a9337f984..6824b5021c1 100644
--- a/advisories/unreviewed/2022/05/GHSA-6p3m-xxpg-qhgw/GHSA-6p3m-xxpg-qhgw.json
+++ b/advisories/unreviewed/2022/05/GHSA-6p3m-xxpg-qhgw/GHSA-6p3m-xxpg-qhgw.json
@@ -7,12 +7,8 @@
"CVE-2007-5892"
],
"details": "Stack-based buffer overflow in the pdg2.dll ActiveX control in SSReader 4.0 and earlier allow remote attackers to execute arbitrary code via a long argument to the Register method. NOTE: some details were obtained from third party sources.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-6pg8-45c4-4v4c/GHSA-6pg8-45c4-4v4c.json b/advisories/unreviewed/2022/05/GHSA-6pg8-45c4-4v4c/GHSA-6pg8-45c4-4v4c.json
index c29c3576bd8..e9ac969b4fb 100644
--- a/advisories/unreviewed/2022/05/GHSA-6pg8-45c4-4v4c/GHSA-6pg8-45c4-4v4c.json
+++ b/advisories/unreviewed/2022/05/GHSA-6pg8-45c4-4v4c/GHSA-6pg8-45c4-4v4c.json
@@ -7,12 +7,8 @@
"CVE-2007-6164"
],
"details": "Multiple SQL injection vulnerabilities in Eurologon CMS allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) reviews.php, (2) links.php and (3) articles.php.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-6pxw-6x4h-x9vq/GHSA-6pxw-6x4h-x9vq.json b/advisories/unreviewed/2022/05/GHSA-6pxw-6x4h-x9vq/GHSA-6pxw-6x4h-x9vq.json
index 8f23a5f5487..3a784dbf2e0 100644
--- a/advisories/unreviewed/2022/05/GHSA-6pxw-6x4h-x9vq/GHSA-6pxw-6x4h-x9vq.json
+++ b/advisories/unreviewed/2022/05/GHSA-6pxw-6x4h-x9vq/GHSA-6pxw-6x4h-x9vq.json
@@ -7,12 +7,8 @@
"CVE-2019-9363"
],
"details": "In Bluetooth, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-123584306",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-6r3m-84jw-pc9g/GHSA-6r3m-84jw-pc9g.json b/advisories/unreviewed/2022/05/GHSA-6r3m-84jw-pc9g/GHSA-6r3m-84jw-pc9g.json
index 9b960b22f79..160369cfc20 100644
--- a/advisories/unreviewed/2022/05/GHSA-6r3m-84jw-pc9g/GHSA-6r3m-84jw-pc9g.json
+++ b/advisories/unreviewed/2022/05/GHSA-6r3m-84jw-pc9g/GHSA-6r3m-84jw-pc9g.json
@@ -7,12 +7,8 @@
"CVE-2019-9361"
],
"details": "In libavc there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-111762807",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-6rqj-653c-2r5w/GHSA-6rqj-653c-2r5w.json b/advisories/unreviewed/2022/05/GHSA-6rqj-653c-2r5w/GHSA-6rqj-653c-2r5w.json
index 8816fe23363..1ff91412f36 100644
--- a/advisories/unreviewed/2022/05/GHSA-6rqj-653c-2r5w/GHSA-6rqj-653c-2r5w.json
+++ b/advisories/unreviewed/2022/05/GHSA-6rqj-653c-2r5w/GHSA-6rqj-653c-2r5w.json
@@ -7,12 +7,8 @@
"CVE-2019-16413"
],
"details": "An issue was discovered in the Linux kernel before 5.0.4. The 9p filesystem did not protect i_size_write() properly, which causes an i_size_read() infinite loop and denial of service on SMP systems.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -32,9 +28,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-6v9c-m59m-3qfw/GHSA-6v9c-m59m-3qfw.json b/advisories/unreviewed/2022/05/GHSA-6v9c-m59m-3qfw/GHSA-6v9c-m59m-3qfw.json
index d9e917760dd..4684bd9b491 100644
--- a/advisories/unreviewed/2022/05/GHSA-6v9c-m59m-3qfw/GHSA-6v9c-m59m-3qfw.json
+++ b/advisories/unreviewed/2022/05/GHSA-6v9c-m59m-3qfw/GHSA-6v9c-m59m-3qfw.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-6w84-jx28-8m33/GHSA-6w84-jx28-8m33.json b/advisories/unreviewed/2022/05/GHSA-6w84-jx28-8m33/GHSA-6w84-jx28-8m33.json
index 43caf3dd684..bbaf989ff5b 100644
--- a/advisories/unreviewed/2022/05/GHSA-6w84-jx28-8m33/GHSA-6w84-jx28-8m33.json
+++ b/advisories/unreviewed/2022/05/GHSA-6w84-jx28-8m33/GHSA-6w84-jx28-8m33.json
@@ -7,12 +7,8 @@
"CVE-2019-0928"
],
"details": "A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate input from a privileged user on a guest operating system, aka 'Windows Hyper-V Denial of Service Vulnerability'.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-6wcf-qf37-vhf2/GHSA-6wcf-qf37-vhf2.json b/advisories/unreviewed/2022/05/GHSA-6wcf-qf37-vhf2/GHSA-6wcf-qf37-vhf2.json
index df384dd3a5a..0f2c46f490a 100644
--- a/advisories/unreviewed/2022/05/GHSA-6wcf-qf37-vhf2/GHSA-6wcf-qf37-vhf2.json
+++ b/advisories/unreviewed/2022/05/GHSA-6wcf-qf37-vhf2/GHSA-6wcf-qf37-vhf2.json
@@ -7,12 +7,8 @@
"CVE-2019-9302"
],
"details": "In libAACdec, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112661356",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-6whp-q5hh-g76g/GHSA-6whp-q5hh-g76g.json b/advisories/unreviewed/2022/05/GHSA-6whp-q5hh-g76g/GHSA-6whp-q5hh-g76g.json
index d3ef61f62d7..dbfb7529584 100644
--- a/advisories/unreviewed/2022/05/GHSA-6whp-q5hh-g76g/GHSA-6whp-q5hh-g76g.json
+++ b/advisories/unreviewed/2022/05/GHSA-6whp-q5hh-g76g/GHSA-6whp-q5hh-g76g.json
@@ -7,12 +7,8 @@
"CVE-2007-5834"
],
"details": "Cross-site scripting (XSS) vulnerability in BosDev BosNews 4 allows remote attackers to inject arbitrary web script or HTML via a SCRIPT element in a news post.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-6x94-2xr2-xgw3/GHSA-6x94-2xr2-xgw3.json b/advisories/unreviewed/2022/05/GHSA-6x94-2xr2-xgw3/GHSA-6x94-2xr2-xgw3.json
index 38a15eec45f..17182da6147 100644
--- a/advisories/unreviewed/2022/05/GHSA-6x94-2xr2-xgw3/GHSA-6x94-2xr2-xgw3.json
+++ b/advisories/unreviewed/2022/05/GHSA-6x94-2xr2-xgw3/GHSA-6x94-2xr2-xgw3.json
@@ -7,12 +7,8 @@
"CVE-2019-12105"
],
"details": "In supervisord in Supervisor through 4.0.2, an unauthenticated user can read log files or restart a service. WARNING: This issue will not be fixed by the maintainer. The ability to run an open server will not be removed because users often use it for local development, therefore no action will be taken.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -32,9 +28,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-6xmv-8hqx-cc6p/GHSA-6xmv-8hqx-cc6p.json b/advisories/unreviewed/2022/05/GHSA-6xmv-8hqx-cc6p/GHSA-6xmv-8hqx-cc6p.json
index 2fcff4e42ad..6cd6408bfbd 100644
--- a/advisories/unreviewed/2022/05/GHSA-6xmv-8hqx-cc6p/GHSA-6xmv-8hqx-cc6p.json
+++ b/advisories/unreviewed/2022/05/GHSA-6xmv-8hqx-cc6p/GHSA-6xmv-8hqx-cc6p.json
@@ -7,12 +7,8 @@
"CVE-2019-9322"
],
"details": "In libavc there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-111128067",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-6xv2-7658-fhwv/GHSA-6xv2-7658-fhwv.json b/advisories/unreviewed/2022/05/GHSA-6xv2-7658-fhwv/GHSA-6xv2-7658-fhwv.json
index 9f6d9f35fcd..39d1374523e 100644
--- a/advisories/unreviewed/2022/05/GHSA-6xv2-7658-fhwv/GHSA-6xv2-7658-fhwv.json
+++ b/advisories/unreviewed/2022/05/GHSA-6xv2-7658-fhwv/GHSA-6xv2-7658-fhwv.json
@@ -7,12 +7,8 @@
"CVE-2016-10989"
],
"details": "The leenkme plugin before 2.6.0 for WordPress has wp-admin/admin.php?page=leenkme_facebook CSRF.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -32,9 +28,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-72wq-mg6x-3jhg/GHSA-72wq-mg6x-3jhg.json b/advisories/unreviewed/2022/05/GHSA-72wq-mg6x-3jhg/GHSA-72wq-mg6x-3jhg.json
index f76c7508649..8f3f81462ed 100644
--- a/advisories/unreviewed/2022/05/GHSA-72wq-mg6x-3jhg/GHSA-72wq-mg6x-3jhg.json
+++ b/advisories/unreviewed/2022/05/GHSA-72wq-mg6x-3jhg/GHSA-72wq-mg6x-3jhg.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-735r-9w5c-9j82/GHSA-735r-9w5c-9j82.json b/advisories/unreviewed/2022/05/GHSA-735r-9w5c-9j82/GHSA-735r-9w5c-9j82.json
index 3aef2405f32..83e42112eb7 100644
--- a/advisories/unreviewed/2022/05/GHSA-735r-9w5c-9j82/GHSA-735r-9w5c-9j82.json
+++ b/advisories/unreviewed/2022/05/GHSA-735r-9w5c-9j82/GHSA-735r-9w5c-9j82.json
@@ -7,12 +7,8 @@
"CVE-2019-5693"
],
"details": "NVIDIA Windows GPU Display Driver, all versions, contains a vulnerability in the kernel mode layer (nvlddmkm.sys) in which the program accesses or uses a pointer that has not been initialized, which may lead to denial of service.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-74hc-hc94-55q5/GHSA-74hc-hc94-55q5.json b/advisories/unreviewed/2022/05/GHSA-74hc-hc94-55q5/GHSA-74hc-hc94-55q5.json
index c5e55cf9898..8f9dd010027 100644
--- a/advisories/unreviewed/2022/05/GHSA-74hc-hc94-55q5/GHSA-74hc-hc94-55q5.json
+++ b/advisories/unreviewed/2022/05/GHSA-74hc-hc94-55q5/GHSA-74hc-hc94-55q5.json
@@ -7,12 +7,8 @@
"CVE-2007-5893"
],
"details": "HTTPSocket.cpp in the C++ Sockets Library before 2.2.5 allows remote attackers to cause a denial of service (crash) via an HTTP request with a missing protocol version number, which triggers an exception. NOTE: some of these details were obtained from third party information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-74jm-vvxv-q52j/GHSA-74jm-vvxv-q52j.json b/advisories/unreviewed/2022/05/GHSA-74jm-vvxv-q52j/GHSA-74jm-vvxv-q52j.json
index 8d2dc5bb794..45a23da78d8 100644
--- a/advisories/unreviewed/2022/05/GHSA-74jm-vvxv-q52j/GHSA-74jm-vvxv-q52j.json
+++ b/advisories/unreviewed/2022/05/GHSA-74jm-vvxv-q52j/GHSA-74jm-vvxv-q52j.json
@@ -7,12 +7,8 @@
"CVE-2019-1248"
],
"details": "A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1240, CVE-2019-1241, CVE-2019-1242, CVE-2019-1243, CVE-2019-1246, CVE-2019-1247, CVE-2019-1249, CVE-2019-1250.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-76pw-7xqx-4qqh/GHSA-76pw-7xqx-4qqh.json b/advisories/unreviewed/2022/05/GHSA-76pw-7xqx-4qqh/GHSA-76pw-7xqx-4qqh.json
index 61fb6f90ccf..8f99d53a324 100644
--- a/advisories/unreviewed/2022/05/GHSA-76pw-7xqx-4qqh/GHSA-76pw-7xqx-4qqh.json
+++ b/advisories/unreviewed/2022/05/GHSA-76pw-7xqx-4qqh/GHSA-76pw-7xqx-4qqh.json
@@ -7,12 +7,8 @@
"CVE-2019-1264"
],
"details": "A security feature bypass vulnerability exists when Microsoft Office improperly handles input, aka 'Microsoft Office Security Feature Bypass Vulnerability'.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-76wf-x7rx-q968/GHSA-76wf-x7rx-q968.json b/advisories/unreviewed/2022/05/GHSA-76wf-x7rx-q968/GHSA-76wf-x7rx-q968.json
index b7b52045ec6..bce6cb66afa 100644
--- a/advisories/unreviewed/2022/05/GHSA-76wf-x7rx-q968/GHSA-76wf-x7rx-q968.json
+++ b/advisories/unreviewed/2022/05/GHSA-76wf-x7rx-q968/GHSA-76wf-x7rx-q968.json
@@ -7,12 +7,8 @@
"CVE-2019-2158"
],
"details": "In libxaac, there is a possible out of bounds read due to a missing bounds check. This could lead to information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-118766492",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-76wh-p6c9-jj69/GHSA-76wh-p6c9-jj69.json b/advisories/unreviewed/2022/05/GHSA-76wh-p6c9-jj69/GHSA-76wh-p6c9-jj69.json
index c9d53ba30c0..f91fd687196 100644
--- a/advisories/unreviewed/2022/05/GHSA-76wh-p6c9-jj69/GHSA-76wh-p6c9-jj69.json
+++ b/advisories/unreviewed/2022/05/GHSA-76wh-p6c9-jj69/GHSA-76wh-p6c9-jj69.json
@@ -7,12 +7,8 @@
"CVE-2007-6182"
],
"details": "The responder program in ISPsystem ISPmanager (aka ISPmgr) 4.2.15.1 allows local users to gain privileges via shell metacharacters in command line arguments.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -44,9 +40,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-78jq-7m93-2fvg/GHSA-78jq-7m93-2fvg.json b/advisories/unreviewed/2022/05/GHSA-78jq-7m93-2fvg/GHSA-78jq-7m93-2fvg.json
index 1930cf84d10..e41b1429ba5 100644
--- a/advisories/unreviewed/2022/05/GHSA-78jq-7m93-2fvg/GHSA-78jq-7m93-2fvg.json
+++ b/advisories/unreviewed/2022/05/GHSA-78jq-7m93-2fvg/GHSA-78jq-7m93-2fvg.json
@@ -7,12 +7,8 @@
"CVE-2014-1730"
],
"details": "Google V8, as used in Google Chrome before 34.0.1847.131 on Windows and OS X and before 34.0.1847.132 on Linux, does not properly store internationalization metadata, which allows remote attackers to bypass intended access restrictions by leveraging \"type confusion\" and reading property values, related to i18n.js and runtime.cc.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-7cpw-g28r-26j6/GHSA-7cpw-g28r-26j6.json b/advisories/unreviewed/2022/05/GHSA-7cpw-g28r-26j6/GHSA-7cpw-g28r-26j6.json
index 35eb26963df..c92f2aff10f 100644
--- a/advisories/unreviewed/2022/05/GHSA-7cpw-g28r-26j6/GHSA-7cpw-g28r-26j6.json
+++ b/advisories/unreviewed/2022/05/GHSA-7cpw-g28r-26j6/GHSA-7cpw-g28r-26j6.json
@@ -7,12 +7,8 @@
"CVE-2007-6092"
],
"details": "Buffer overflow in libsrtp in Ingate Firewall before 4.6.0 and SIParator before 4.6.0 has unknown impact and attack vectors. NOTE: it is not clear whether this issue crosses privilege boundaries.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-7cvr-982q-p89c/GHSA-7cvr-982q-p89c.json b/advisories/unreviewed/2022/05/GHSA-7cvr-982q-p89c/GHSA-7cvr-982q-p89c.json
index 4f6889f2087..a171a941785 100644
--- a/advisories/unreviewed/2022/05/GHSA-7cvr-982q-p89c/GHSA-7cvr-982q-p89c.json
+++ b/advisories/unreviewed/2022/05/GHSA-7cvr-982q-p89c/GHSA-7cvr-982q-p89c.json
@@ -7,12 +7,8 @@
"CVE-2007-6050"
],
"details": "Unspecified vulnerability in DB2LICD in IBM DB2 UDB 9.1 before Fixpak 4 has unknown impact and attack vectors, related to creation of an \"insecure directory.\"",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -36,9 +32,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-7cwp-w3cq-m996/GHSA-7cwp-w3cq-m996.json b/advisories/unreviewed/2022/05/GHSA-7cwp-w3cq-m996/GHSA-7cwp-w3cq-m996.json
index 98cbe639f65..f6cd3353933 100644
--- a/advisories/unreviewed/2022/05/GHSA-7cwp-w3cq-m996/GHSA-7cwp-w3cq-m996.json
+++ b/advisories/unreviewed/2022/05/GHSA-7cwp-w3cq-m996/GHSA-7cwp-w3cq-m996.json
@@ -7,12 +7,8 @@
"CVE-2007-6039"
],
"details": "PHP 5.2.5 and earlier allows context-dependent attackers to cause a denial of service (application crash) via a long string in (1) the domain parameter to the dgettext function, the message parameter to the (2) dcgettext or (3) gettext function, the msgid1 parameter to the (4) dngettext or (5) ngettext function, or (6) the classname parameter to the stream_wrapper_register function. NOTE: this might not be a vulnerability in most web server environments that support multiple threads, unless this issue can be demonstrated for code execution.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-7frh-23gc-cx4h/GHSA-7frh-23gc-cx4h.json b/advisories/unreviewed/2022/05/GHSA-7frh-23gc-cx4h/GHSA-7frh-23gc-cx4h.json
index a17fe23e131..f74e8912fc4 100644
--- a/advisories/unreviewed/2022/05/GHSA-7frh-23gc-cx4h/GHSA-7frh-23gc-cx4h.json
+++ b/advisories/unreviewed/2022/05/GHSA-7frh-23gc-cx4h/GHSA-7frh-23gc-cx4h.json
@@ -7,12 +7,8 @@
"CVE-2016-10981"
],
"details": "The kento-post-view-counter plugin through 2.8 for WordPress has stored XSS via kento_pvc_numbers_lang, kento_pvc_today_text, or kento_pvc_total_text.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-7fv3-c8f2-2c73/GHSA-7fv3-c8f2-2c73.json b/advisories/unreviewed/2022/05/GHSA-7fv3-c8f2-2c73/GHSA-7fv3-c8f2-2c73.json
index c946477fe03..48bdbeb2de1 100644
--- a/advisories/unreviewed/2022/05/GHSA-7fv3-c8f2-2c73/GHSA-7fv3-c8f2-2c73.json
+++ b/advisories/unreviewed/2022/05/GHSA-7fv3-c8f2-2c73/GHSA-7fv3-c8f2-2c73.json
@@ -7,12 +7,8 @@
"CVE-2007-6103"
],
"details": "I Hear U (IHU) 0.5.6 and earlier allows remote attackers to cause (1) a denial of service (infinite loop) via a packet that contains zero in the size field in its header, which is improperly handled by the Receiver::processPacket function; and (2) a denial of service (daemon crash) via an (a) IHU_INFO_INIT or a (b) IHU_INFO_RING packet that does not specify the mode, which is improperly handled by the Player::ring function in Player.cpp.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-7gfq-w4pg-4r34/GHSA-7gfq-w4pg-4r34.json b/advisories/unreviewed/2022/05/GHSA-7gfq-w4pg-4r34/GHSA-7gfq-w4pg-4r34.json
index 78dc5221751..0ebb11a0c9d 100644
--- a/advisories/unreviewed/2022/05/GHSA-7gfq-w4pg-4r34/GHSA-7gfq-w4pg-4r34.json
+++ b/advisories/unreviewed/2022/05/GHSA-7gfq-w4pg-4r34/GHSA-7gfq-w4pg-4r34.json
@@ -7,12 +7,8 @@
"CVE-2007-6137"
],
"details": "SQL injection vulnerability in news.php in Content Injector 1.52 allows remote attackers to execute arbitrary SQL commands via the cat parameter to index.php. NOTE: some of these details are obtained from third party information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-7j2c-3cxv-9jqw/GHSA-7j2c-3cxv-9jqw.json b/advisories/unreviewed/2022/05/GHSA-7j2c-3cxv-9jqw/GHSA-7j2c-3cxv-9jqw.json
index 4be2f1defc3..16de6a72b8a 100644
--- a/advisories/unreviewed/2022/05/GHSA-7j2c-3cxv-9jqw/GHSA-7j2c-3cxv-9jqw.json
+++ b/advisories/unreviewed/2022/05/GHSA-7j2c-3cxv-9jqw/GHSA-7j2c-3cxv-9jqw.json
@@ -7,12 +7,8 @@
"CVE-2019-2146"
],
"details": "In libxaac, there is a possible out of bounds read due to a missing bounds check. This could lead to information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112859714",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-7m25-w5rv-q6w6/GHSA-7m25-w5rv-q6w6.json b/advisories/unreviewed/2022/05/GHSA-7m25-w5rv-q6w6/GHSA-7m25-w5rv-q6w6.json
index d9dd9d95db7..748288cb688 100644
--- a/advisories/unreviewed/2022/05/GHSA-7m25-w5rv-q6w6/GHSA-7m25-w5rv-q6w6.json
+++ b/advisories/unreviewed/2022/05/GHSA-7m25-w5rv-q6w6/GHSA-7m25-w5rv-q6w6.json
@@ -7,12 +7,8 @@
"CVE-2007-5891"
],
"details": "Multiple cross-site scripting (XSS) vulnerabilities in jsp/Login.do in ManageEngine OpManager MSP Edition and OpManager 7.0 allow remote attackers to inject arbitrary web script or HTML via the (1) requestid, (2) fileid, (3) woMode, and (2) woID parameters. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-7m8c-j4rm-p9xf/GHSA-7m8c-j4rm-p9xf.json b/advisories/unreviewed/2022/05/GHSA-7m8c-j4rm-p9xf/GHSA-7m8c-j4rm-p9xf.json
index 30da343f344..4543aee1861 100644
--- a/advisories/unreviewed/2022/05/GHSA-7m8c-j4rm-p9xf/GHSA-7m8c-j4rm-p9xf.json
+++ b/advisories/unreviewed/2022/05/GHSA-7m8c-j4rm-p9xf/GHSA-7m8c-j4rm-p9xf.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-7pf5-64wg-qq2g/GHSA-7pf5-64wg-qq2g.json b/advisories/unreviewed/2022/05/GHSA-7pf5-64wg-qq2g/GHSA-7pf5-64wg-qq2g.json
index b2ff101acc0..78fdf889aae 100644
--- a/advisories/unreviewed/2022/05/GHSA-7pf5-64wg-qq2g/GHSA-7pf5-64wg-qq2g.json
+++ b/advisories/unreviewed/2022/05/GHSA-7pf5-64wg-qq2g/GHSA-7pf5-64wg-qq2g.json
@@ -7,12 +7,8 @@
"CVE-2007-6113"
],
"details": "Integer signedness error in the DNP3 dissector in Wireshark (formerly Ethereal) 0.10.12 to 0.99.6 allows remote attackers to cause a denial of service (long loop) via a malformed DNP3 packet.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -148,9 +144,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-7pj8-26fx-r97j/GHSA-7pj8-26fx-r97j.json b/advisories/unreviewed/2022/05/GHSA-7pj8-26fx-r97j/GHSA-7pj8-26fx-r97j.json
index a0d344ceaa3..b82968b2daf 100644
--- a/advisories/unreviewed/2022/05/GHSA-7pj8-26fx-r97j/GHSA-7pj8-26fx-r97j.json
+++ b/advisories/unreviewed/2022/05/GHSA-7pj8-26fx-r97j/GHSA-7pj8-26fx-r97j.json
@@ -7,12 +7,8 @@
"CVE-2016-10993"
],
"details": "The ScoreMe theme through 2016-04-01 for WordPress has XSS via the s parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "LOW",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-7px9-8jq2-c4vv/GHSA-7px9-8jq2-c4vv.json b/advisories/unreviewed/2022/05/GHSA-7px9-8jq2-c4vv/GHSA-7px9-8jq2-c4vv.json
index b2d912aa832..f81721cf534 100644
--- a/advisories/unreviewed/2022/05/GHSA-7px9-8jq2-c4vv/GHSA-7px9-8jq2-c4vv.json
+++ b/advisories/unreviewed/2022/05/GHSA-7px9-8jq2-c4vv/GHSA-7px9-8jq2-c4vv.json
@@ -7,12 +7,8 @@
"CVE-2016-10980"
],
"details": "The kento-post-view-counter plugin through 2.8 for WordPress has XSS via kento_pvc_geo.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-7q7p-qq7q-xx77/GHSA-7q7p-qq7q-xx77.json b/advisories/unreviewed/2022/05/GHSA-7q7p-qq7q-xx77/GHSA-7q7p-qq7q-xx77.json
index cad68f330ff..dc3899d2de6 100644
--- a/advisories/unreviewed/2022/05/GHSA-7q7p-qq7q-xx77/GHSA-7q7p-qq7q-xx77.json
+++ b/advisories/unreviewed/2022/05/GHSA-7q7p-qq7q-xx77/GHSA-7q7p-qq7q-xx77.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-7qx6-9mjj-x6hf/GHSA-7qx6-9mjj-x6hf.json b/advisories/unreviewed/2022/05/GHSA-7qx6-9mjj-x6hf/GHSA-7qx6-9mjj-x6hf.json
index 03025a3880c..f312a99e723 100644
--- a/advisories/unreviewed/2022/05/GHSA-7qx6-9mjj-x6hf/GHSA-7qx6-9mjj-x6hf.json
+++ b/advisories/unreviewed/2022/05/GHSA-7qx6-9mjj-x6hf/GHSA-7qx6-9mjj-x6hf.json
@@ -7,12 +7,8 @@
"CVE-2007-5925"
],
"details": "The convert_search_mode_to_innobase function in ha_innodb.cc in the InnoDB engine in MySQL 5.1.23-BK and earlier allows remote authenticated users to cause a denial of service (database crash) via a certain CONTAINS operation on an indexed column, which triggers an assertion error.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-7rr7-fgm8-69p5/GHSA-7rr7-fgm8-69p5.json b/advisories/unreviewed/2022/05/GHSA-7rr7-fgm8-69p5/GHSA-7rr7-fgm8-69p5.json
index 1202b964f09..8b95c985b62 100644
--- a/advisories/unreviewed/2022/05/GHSA-7rr7-fgm8-69p5/GHSA-7rr7-fgm8-69p5.json
+++ b/advisories/unreviewed/2022/05/GHSA-7rr7-fgm8-69p5/GHSA-7rr7-fgm8-69p5.json
@@ -7,12 +7,8 @@
"CVE-2007-6147"
],
"details": "Multiple PHP remote file inclusion vulnerabilities in IAPR COMMENCE 1.3 allow remote attackers to execute arbitrary PHP code via a URL in the (a) php_root_path and sometimes the (b) privilege_root_path parameter to various PHP scripts under (1) admin/includes/, (2) admin/phase/, (3) includes/, (4) includes/page_includes/, (5) reviewer/includes/, (6) reviewer/phase/, and (7) user/phase/.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-7v6x-p93c-4q36/GHSA-7v6x-p93c-4q36.json b/advisories/unreviewed/2022/05/GHSA-7v6x-p93c-4q36/GHSA-7v6x-p93c-4q36.json
index 4d03d8a4608..e93002553e1 100644
--- a/advisories/unreviewed/2022/05/GHSA-7v6x-p93c-4q36/GHSA-7v6x-p93c-4q36.json
+++ b/advisories/unreviewed/2022/05/GHSA-7v6x-p93c-4q36/GHSA-7v6x-p93c-4q36.json
@@ -7,12 +7,8 @@
"CVE-2019-15089"
],
"details": "An issue was discovered in PRiSE adAS 1.7.0. Forms have no CSRF protection, letting an attacker execute actions as the administrator.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-7v7w-3hh3-rxmv/GHSA-7v7w-3hh3-rxmv.json b/advisories/unreviewed/2022/05/GHSA-7v7w-3hh3-rxmv/GHSA-7v7w-3hh3-rxmv.json
index f2526f0a7a6..7aaea2fccc1 100644
--- a/advisories/unreviewed/2022/05/GHSA-7v7w-3hh3-rxmv/GHSA-7v7w-3hh3-rxmv.json
+++ b/advisories/unreviewed/2022/05/GHSA-7v7w-3hh3-rxmv/GHSA-7v7w-3hh3-rxmv.json
@@ -7,12 +7,8 @@
"CVE-2007-6148"
],
"details": "Use-after-free vulnerability in the Edge server in Adobe Flash Media Server 2 before 2.0.5, and Connect Enterprise Server 6 before SP3, allows remote attackers to execute arbitrary code via an unspecified sequence of Real Time Message Protocol (RTMP) requests.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -56,9 +52,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-7wh2-f5fv-2c6f/GHSA-7wh2-f5fv-2c6f.json b/advisories/unreviewed/2022/05/GHSA-7wh2-f5fv-2c6f/GHSA-7wh2-f5fv-2c6f.json
index 1ee8137edde..753ae82b9c6 100644
--- a/advisories/unreviewed/2022/05/GHSA-7wh2-f5fv-2c6f/GHSA-7wh2-f5fv-2c6f.json
+++ b/advisories/unreviewed/2022/05/GHSA-7wh2-f5fv-2c6f/GHSA-7wh2-f5fv-2c6f.json
@@ -7,12 +7,8 @@
"CVE-2007-6173"
],
"details": "Cross-site scripting (XSS) vulnerability in c/portal/login in Liferay Enterprise Portal 4.3.1 allows remote attackers to inject arbitrary web script or HTML via the emailAddress parameter in a Send New Password action, a different vector than CVE-2007-6055. NOTE: some of these details are obtained from third party information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-7wx4-pm9p-2c7w/GHSA-7wx4-pm9p-2c7w.json b/advisories/unreviewed/2022/05/GHSA-7wx4-pm9p-2c7w/GHSA-7wx4-pm9p-2c7w.json
index 1af4e4cc6c1..a62078a05b3 100644
--- a/advisories/unreviewed/2022/05/GHSA-7wx4-pm9p-2c7w/GHSA-7wx4-pm9p-2c7w.json
+++ b/advisories/unreviewed/2022/05/GHSA-7wx4-pm9p-2c7w/GHSA-7wx4-pm9p-2c7w.json
@@ -7,12 +7,8 @@
"CVE-2007-5977"
],
"details": "Cross-site scripting (XSS) vulnerability in db_create.php in phpMyAdmin before 2.11.2.1 allows remote authenticated users with CREATE DATABASE privileges to inject arbitrary web script or HTML via a hex-encoded IMG element in the db parameter in a POST request, a different vulnerability than CVE-2006-6942.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-7xpv-27qx-7p6q/GHSA-7xpv-27qx-7p6q.json b/advisories/unreviewed/2022/05/GHSA-7xpv-27qx-7p6q/GHSA-7xpv-27qx-7p6q.json
index 6a09c656ee1..0c3d6f258c3 100644
--- a/advisories/unreviewed/2022/05/GHSA-7xpv-27qx-7p6q/GHSA-7xpv-27qx-7p6q.json
+++ b/advisories/unreviewed/2022/05/GHSA-7xpv-27qx-7p6q/GHSA-7xpv-27qx-7p6q.json
@@ -7,12 +7,8 @@
"CVE-2019-14753"
],
"details": "SICK FX0-GPNT00000 and FX0-GENT00000 devices through 3.4.0 have a Buffer Overflow",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-82x7-v42m-q6mv/GHSA-82x7-v42m-q6mv.json b/advisories/unreviewed/2022/05/GHSA-82x7-v42m-q6mv/GHSA-82x7-v42m-q6mv.json
index 08f6534d08b..f4eaad65a22 100644
--- a/advisories/unreviewed/2022/05/GHSA-82x7-v42m-q6mv/GHSA-82x7-v42m-q6mv.json
+++ b/advisories/unreviewed/2022/05/GHSA-82x7-v42m-q6mv/GHSA-82x7-v42m-q6mv.json
@@ -7,12 +7,8 @@
"CVE-2019-1250"
],
"details": "A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1240, CVE-2019-1241, CVE-2019-1242, CVE-2019-1243, CVE-2019-1246, CVE-2019-1247, CVE-2019-1248, CVE-2019-1249.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-83fp-xg66-j927/GHSA-83fp-xg66-j927.json b/advisories/unreviewed/2022/05/GHSA-83fp-xg66-j927/GHSA-83fp-xg66-j927.json
index 8882d2283f1..12890e231a8 100644
--- a/advisories/unreviewed/2022/05/GHSA-83fp-xg66-j927/GHSA-83fp-xg66-j927.json
+++ b/advisories/unreviewed/2022/05/GHSA-83fp-xg66-j927/GHSA-83fp-xg66-j927.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:L"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -27,9 +25,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "LOW",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-8442-3jhx-m6j3/GHSA-8442-3jhx-m6j3.json b/advisories/unreviewed/2022/05/GHSA-8442-3jhx-m6j3/GHSA-8442-3jhx-m6j3.json
index e4a6fc416e6..808ede9a698 100644
--- a/advisories/unreviewed/2022/05/GHSA-8442-3jhx-m6j3/GHSA-8442-3jhx-m6j3.json
+++ b/advisories/unreviewed/2022/05/GHSA-8442-3jhx-m6j3/GHSA-8442-3jhx-m6j3.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-85jr-569m-vgvh/GHSA-85jr-569m-vgvh.json b/advisories/unreviewed/2022/05/GHSA-85jr-569m-vgvh/GHSA-85jr-569m-vgvh.json
index f7c9af8d565..1a5b3609281 100644
--- a/advisories/unreviewed/2022/05/GHSA-85jr-569m-vgvh/GHSA-85jr-569m-vgvh.json
+++ b/advisories/unreviewed/2022/05/GHSA-85jr-569m-vgvh/GHSA-85jr-569m-vgvh.json
@@ -7,12 +7,8 @@
"CVE-2019-9305"
],
"details": "In libAACdec, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112661835",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-868q-vwvg-39f6/GHSA-868q-vwvg-39f6.json b/advisories/unreviewed/2022/05/GHSA-868q-vwvg-39f6/GHSA-868q-vwvg-39f6.json
index c4a6e5626b5..5e6711a0955 100644
--- a/advisories/unreviewed/2022/05/GHSA-868q-vwvg-39f6/GHSA-868q-vwvg-39f6.json
+++ b/advisories/unreviewed/2022/05/GHSA-868q-vwvg-39f6/GHSA-868q-vwvg-39f6.json
@@ -7,12 +7,8 @@
"CVE-2007-6095"
],
"details": "The SIP component in Ingate Firewall before 4.6.0 and SIParator before 4.6.0, when Remote NAT Traversal is employed, does not properly perform user registration and message distribution, which might allow remote authenticated users to receive messages intended for other users.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-88rv-7jw7-2cm8/GHSA-88rv-7jw7-2cm8.json b/advisories/unreviewed/2022/05/GHSA-88rv-7jw7-2cm8/GHSA-88rv-7jw7-2cm8.json
index fc61b5598c8..b30fb07da3e 100644
--- a/advisories/unreviewed/2022/05/GHSA-88rv-7jw7-2cm8/GHSA-88rv-7jw7-2cm8.json
+++ b/advisories/unreviewed/2022/05/GHSA-88rv-7jw7-2cm8/GHSA-88rv-7jw7-2cm8.json
@@ -7,12 +7,8 @@
"CVE-2007-6020"
],
"details": "Multiple stack-based buffer overflows in foliosr.dll in the Folio Flat File speed reader in Autonomy (formerly Verity) KeyView 10.3.0.0, as used by IBM Lotus Notes, Symantec Mail Security, and activePDF DocConverter, allow remote attackers to execute arbitrary code via a long attribute value in a (1) DI, (2) FD, (3) FT, (4) JD, (5) JL, (6) LE, (7) OB, (8) OD, (9) OL, (10) PN, (11) PS, (12) PW, (13) RD, (14) QL, or (15) TS tag in a .fff file.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-89wq-qcf5-vx73/GHSA-89wq-qcf5-vx73.json b/advisories/unreviewed/2022/05/GHSA-89wq-qcf5-vx73/GHSA-89wq-qcf5-vx73.json
index c831af776e0..8810973ceb7 100644
--- a/advisories/unreviewed/2022/05/GHSA-89wq-qcf5-vx73/GHSA-89wq-qcf5-vx73.json
+++ b/advisories/unreviewed/2022/05/GHSA-89wq-qcf5-vx73/GHSA-89wq-qcf5-vx73.json
@@ -7,12 +7,8 @@
"CVE-2007-6169"
],
"details": "SQL injection vulnerability in admin/index2.asp in GOUAE DWD Realty allows remote attackers to execute arbitrary SQL commands via the uname parameter, a different vector than CVE-2007-6163. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-8c2x-3ww9-w4wr/GHSA-8c2x-3ww9-w4wr.json b/advisories/unreviewed/2022/05/GHSA-8c2x-3ww9-w4wr/GHSA-8c2x-3ww9-w4wr.json
index 6de04153ab0..f9928a2dcd1 100644
--- a/advisories/unreviewed/2022/05/GHSA-8c2x-3ww9-w4wr/GHSA-8c2x-3ww9-w4wr.json
+++ b/advisories/unreviewed/2022/05/GHSA-8c2x-3ww9-w4wr/GHSA-8c2x-3ww9-w4wr.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-8c59-347w-2hff/GHSA-8c59-347w-2hff.json b/advisories/unreviewed/2022/05/GHSA-8c59-347w-2hff/GHSA-8c59-347w-2hff.json
index 57d04f2c033..e9b26996bb7 100644
--- a/advisories/unreviewed/2022/05/GHSA-8c59-347w-2hff/GHSA-8c59-347w-2hff.json
+++ b/advisories/unreviewed/2022/05/GHSA-8c59-347w-2hff/GHSA-8c59-347w-2hff.json
@@ -7,12 +7,8 @@
"CVE-2007-5830"
],
"details": "Unspecified vulnerability in the administrative interface in Avaya Messaging Storage Server (MSS) 3.1 before SP1, and Message Networking (MN) 3.1, allows remote attackers to cause a denial of service via unspecified vectors related to \"input validation.\"",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-8c74-3vw3-rf5p/GHSA-8c74-3vw3-rf5p.json b/advisories/unreviewed/2022/05/GHSA-8c74-3vw3-rf5p/GHSA-8c74-3vw3-rf5p.json
index c4416341189..d4a277affa6 100644
--- a/advisories/unreviewed/2022/05/GHSA-8c74-3vw3-rf5p/GHSA-8c74-3vw3-rf5p.json
+++ b/advisories/unreviewed/2022/05/GHSA-8c74-3vw3-rf5p/GHSA-8c74-3vw3-rf5p.json
@@ -7,12 +7,8 @@
"CVE-2019-1252"
],
"details": "An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1286.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-8cvf-9rjv-7x86/GHSA-8cvf-9rjv-7x86.json b/advisories/unreviewed/2022/05/GHSA-8cvf-9rjv-7x86/GHSA-8cvf-9rjv-7x86.json
index 07e663cb07d..359b61d92e9 100644
--- a/advisories/unreviewed/2022/05/GHSA-8cvf-9rjv-7x86/GHSA-8cvf-9rjv-7x86.json
+++ b/advisories/unreviewed/2022/05/GHSA-8cvf-9rjv-7x86/GHSA-8cvf-9rjv-7x86.json
@@ -7,12 +7,8 @@
"CVE-2007-5931"
],
"details": "The reDirect function in lib/controllers/RepViewController.php in OrangeHRM before 2.2.2 does not verify the privileges of a user, which allows remote attackers to obtain access to data via unspecified vectors. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -40,9 +36,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-8g3h-4jcf-7hc9/GHSA-8g3h-4jcf-7hc9.json b/advisories/unreviewed/2022/05/GHSA-8g3h-4jcf-7hc9/GHSA-8g3h-4jcf-7hc9.json
index 299b046cfbb..bee343bc54b 100644
--- a/advisories/unreviewed/2022/05/GHSA-8g3h-4jcf-7hc9/GHSA-8g3h-4jcf-7hc9.json
+++ b/advisories/unreviewed/2022/05/GHSA-8g3h-4jcf-7hc9/GHSA-8g3h-4jcf-7hc9.json
@@ -7,12 +7,8 @@
"CVE-2007-6178"
],
"details": "Multiple PHP remote file inclusion vulnerabilities in Easy Hosting Control Panel for Ubuntu (EHCP) 0.22.8 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the confdir parameter to (1) dbutil.bck.php and (2) dbutil.php in config/.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-8g7j-vg77-h9vr/GHSA-8g7j-vg77-h9vr.json b/advisories/unreviewed/2022/05/GHSA-8g7j-vg77-h9vr/GHSA-8g7j-vg77-h9vr.json
index 90ef7051c55..e5cf0abc9fa 100644
--- a/advisories/unreviewed/2022/05/GHSA-8g7j-vg77-h9vr/GHSA-8g7j-vg77-h9vr.json
+++ b/advisories/unreviewed/2022/05/GHSA-8g7j-vg77-h9vr/GHSA-8g7j-vg77-h9vr.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-8gjv-h238-5fmp/GHSA-8gjv-h238-5fmp.json b/advisories/unreviewed/2022/05/GHSA-8gjv-h238-5fmp/GHSA-8gjv-h238-5fmp.json
index 642d2c18d63..2456f793183 100644
--- a/advisories/unreviewed/2022/05/GHSA-8gjv-h238-5fmp/GHSA-8gjv-h238-5fmp.json
+++ b/advisories/unreviewed/2022/05/GHSA-8gjv-h238-5fmp/GHSA-8gjv-h238-5fmp.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-8h6c-3pf2-fqm5/GHSA-8h6c-3pf2-fqm5.json b/advisories/unreviewed/2022/05/GHSA-8h6c-3pf2-fqm5/GHSA-8h6c-3pf2-fqm5.json
index c059fc6a5e4..f6eff3cba67 100644
--- a/advisories/unreviewed/2022/05/GHSA-8h6c-3pf2-fqm5/GHSA-8h6c-3pf2-fqm5.json
+++ b/advisories/unreviewed/2022/05/GHSA-8h6c-3pf2-fqm5/GHSA-8h6c-3pf2-fqm5.json
@@ -7,12 +7,8 @@
"CVE-2019-12516"
],
"details": "The slickquiz plugin through 1.3.7.1 for WordPress allows SQL Injection by Subscriber users, as demonstrated by a /wp-admin/admin.php?page=slickquiz-scores&id= or /wp-admin/admin.php?page=slickquiz-edit&id= or /wp-admin/admin.php?page=slickquiz-preview&id= URI.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-8h72-qf2q-h5jc/GHSA-8h72-qf2q-h5jc.json b/advisories/unreviewed/2022/05/GHSA-8h72-qf2q-h5jc/GHSA-8h72-qf2q-h5jc.json
index 970beebd90c..da73de983b7 100644
--- a/advisories/unreviewed/2022/05/GHSA-8h72-qf2q-h5jc/GHSA-8h72-qf2q-h5jc.json
+++ b/advisories/unreviewed/2022/05/GHSA-8h72-qf2q-h5jc/GHSA-8h72-qf2q-h5jc.json
@@ -7,12 +7,8 @@
"CVE-2007-6118"
],
"details": "The MEGACO dissector in Wireshark (formerly Ethereal) 0.9.14 to 0.99.6 allows remote attackers to cause a denial of service (long loop and resource consumption) via unknown vectors.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -132,9 +128,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-8hvw-j4x7-fhgf/GHSA-8hvw-j4x7-fhgf.json b/advisories/unreviewed/2022/05/GHSA-8hvw-j4x7-fhgf/GHSA-8hvw-j4x7-fhgf.json
index 9d91493506d..1aa27330f2c 100644
--- a/advisories/unreviewed/2022/05/GHSA-8hvw-j4x7-fhgf/GHSA-8hvw-j4x7-fhgf.json
+++ b/advisories/unreviewed/2022/05/GHSA-8hvw-j4x7-fhgf/GHSA-8hvw-j4x7-fhgf.json
@@ -7,12 +7,8 @@
"CVE-2015-9396"
],
"details": "The auto-thickbox-plus plugin through 1.9 for WordPress has wp-content/plugins/auto-thickbox-plus/download.min.php?file= XSS.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-8jqr-r7rc-4h55/GHSA-8jqr-r7rc-4h55.json b/advisories/unreviewed/2022/05/GHSA-8jqr-r7rc-4h55/GHSA-8jqr-r7rc-4h55.json
index 09772c6ad96..edff58ca445 100644
--- a/advisories/unreviewed/2022/05/GHSA-8jqr-r7rc-4h55/GHSA-8jqr-r7rc-4h55.json
+++ b/advisories/unreviewed/2022/05/GHSA-8jqr-r7rc-4h55/GHSA-8jqr-r7rc-4h55.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-8p7h-vjm2-xpww/GHSA-8p7h-vjm2-xpww.json b/advisories/unreviewed/2022/05/GHSA-8p7h-vjm2-xpww/GHSA-8p7h-vjm2-xpww.json
index ed842e0deab..6ae504473bd 100644
--- a/advisories/unreviewed/2022/05/GHSA-8p7h-vjm2-xpww/GHSA-8p7h-vjm2-xpww.json
+++ b/advisories/unreviewed/2022/05/GHSA-8p7h-vjm2-xpww/GHSA-8p7h-vjm2-xpww.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-8px8-v9xj-qwfw/GHSA-8px8-v9xj-qwfw.json b/advisories/unreviewed/2022/05/GHSA-8px8-v9xj-qwfw/GHSA-8px8-v9xj-qwfw.json
index 4c0e0db3117..c65dbe92688 100644
--- a/advisories/unreviewed/2022/05/GHSA-8px8-v9xj-qwfw/GHSA-8px8-v9xj-qwfw.json
+++ b/advisories/unreviewed/2022/05/GHSA-8px8-v9xj-qwfw/GHSA-8px8-v9xj-qwfw.json
@@ -7,12 +7,8 @@
"CVE-2019-2152"
],
"details": "In libxaac, there is a possible out of bounds read due to a missing bounds check. This could lead to information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-118145923",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-8q59-5657-5q7g/GHSA-8q59-5657-5q7g.json b/advisories/unreviewed/2022/05/GHSA-8q59-5657-5q7g/GHSA-8q59-5657-5q7g.json
index cee410da8cc..6db8c3777b4 100644
--- a/advisories/unreviewed/2022/05/GHSA-8q59-5657-5q7g/GHSA-8q59-5657-5q7g.json
+++ b/advisories/unreviewed/2022/05/GHSA-8q59-5657-5q7g/GHSA-8q59-5657-5q7g.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-8v5f-39c3-2567/GHSA-8v5f-39c3-2567.json b/advisories/unreviewed/2022/05/GHSA-8v5f-39c3-2567/GHSA-8v5f-39c3-2567.json
index 4cc881450c5..3489c1f2a4c 100644
--- a/advisories/unreviewed/2022/05/GHSA-8v5f-39c3-2567/GHSA-8v5f-39c3-2567.json
+++ b/advisories/unreviewed/2022/05/GHSA-8v5f-39c3-2567/GHSA-8v5f-39c3-2567.json
@@ -7,12 +7,8 @@
"CVE-2019-1296"
],
"details": "A remote code execution vulnerability exists in Microsoft SharePoint where APIs aren't properly protected from unsafe data input, aka 'Microsoft SharePoint Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1257, CVE-2019-1295.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-8v7x-qxjj-g923/GHSA-8v7x-qxjj-g923.json b/advisories/unreviewed/2022/05/GHSA-8v7x-qxjj-g923/GHSA-8v7x-qxjj-g923.json
index 54107210882..40caafc0693 100644
--- a/advisories/unreviewed/2022/05/GHSA-8v7x-qxjj-g923/GHSA-8v7x-qxjj-g923.json
+++ b/advisories/unreviewed/2022/05/GHSA-8v7x-qxjj-g923/GHSA-8v7x-qxjj-g923.json
@@ -7,12 +7,8 @@
"CVE-2015-9439"
],
"details": "The addthis plugin before 5.0.13 for WordPress has CSRF with resultant XSS via the wp-admin/options-general.php?page=addthis_social_widget pubid parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -32,9 +28,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "LOW",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-8vg3-7pxv-7pq6/GHSA-8vg3-7pxv-7pq6.json b/advisories/unreviewed/2022/05/GHSA-8vg3-7pxv-7pq6/GHSA-8vg3-7pxv-7pq6.json
index f2539b87fe4..3ffffa3237f 100644
--- a/advisories/unreviewed/2022/05/GHSA-8vg3-7pxv-7pq6/GHSA-8vg3-7pxv-7pq6.json
+++ b/advisories/unreviewed/2022/05/GHSA-8vg3-7pxv-7pq6/GHSA-8vg3-7pxv-7pq6.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-8vpv-x7vv-g726/GHSA-8vpv-x7vv-g726.json b/advisories/unreviewed/2022/05/GHSA-8vpv-x7vv-g726/GHSA-8vpv-x7vv-g726.json
index e9b0142c9ea..eb74402f2ba 100644
--- a/advisories/unreviewed/2022/05/GHSA-8vpv-x7vv-g726/GHSA-8vpv-x7vv-g726.json
+++ b/advisories/unreviewed/2022/05/GHSA-8vpv-x7vv-g726/GHSA-8vpv-x7vv-g726.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-8w62-3h89-722w/GHSA-8w62-3h89-722w.json b/advisories/unreviewed/2022/05/GHSA-8w62-3h89-722w/GHSA-8w62-3h89-722w.json
index ad1dc28e5c7..4b38b6cef22 100644
--- a/advisories/unreviewed/2022/05/GHSA-8w62-3h89-722w/GHSA-8w62-3h89-722w.json
+++ b/advisories/unreviewed/2022/05/GHSA-8w62-3h89-722w/GHSA-8w62-3h89-722w.json
@@ -7,12 +7,8 @@
"CVE-2007-6189"
],
"details": "A certain ActiveX control in (1) OScan8.ocx and (2) Oscan81.ocx in BitDefender Online Anti-Virus Scanner 8.0 allows remote attackers to execute arbitrary code via a long argument to the InitX method that begins with a \"%%\" sequence, which is misinterpreted as a Unicode string and decoded twice, leading to improper memory allocation and a heap-based buffer overflow.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-8w6x-8vm5-vh5q/GHSA-8w6x-8vm5-vh5q.json b/advisories/unreviewed/2022/05/GHSA-8w6x-8vm5-vh5q/GHSA-8w6x-8vm5-vh5q.json
index b02a58ce3f5..4a552a068b1 100644
--- a/advisories/unreviewed/2022/05/GHSA-8w6x-8vm5-vh5q/GHSA-8w6x-8vm5-vh5q.json
+++ b/advisories/unreviewed/2022/05/GHSA-8w6x-8vm5-vh5q/GHSA-8w6x-8vm5-vh5q.json
@@ -7,12 +7,8 @@
"CVE-2015-9404"
],
"details": "The neuvoo-jobroll plugin 2.0 for WordPress has neuvoo_keywords XSS.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-8wr9-r69x-g268/GHSA-8wr9-r69x-g268.json b/advisories/unreviewed/2022/05/GHSA-8wr9-r69x-g268/GHSA-8wr9-r69x-g268.json
index ab897651df5..457f7c6968d 100644
--- a/advisories/unreviewed/2022/05/GHSA-8wr9-r69x-g268/GHSA-8wr9-r69x-g268.json
+++ b/advisories/unreviewed/2022/05/GHSA-8wr9-r69x-g268/GHSA-8wr9-r69x-g268.json
@@ -7,12 +7,8 @@
"CVE-2019-8449"
],
"details": "The /rest/api/latest/groupuserpicker resource in Jira before version 8.4.0 allows remote attackers to enumerate usernames via an information disclosure vulnerability.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-8wv3-4xc3-cq3g/GHSA-8wv3-4xc3-cq3g.json b/advisories/unreviewed/2022/05/GHSA-8wv3-4xc3-cq3g/GHSA-8wv3-4xc3-cq3g.json
index 6ddbedcc8a9..a95a6305c00 100644
--- a/advisories/unreviewed/2022/05/GHSA-8wv3-4xc3-cq3g/GHSA-8wv3-4xc3-cq3g.json
+++ b/advisories/unreviewed/2022/05/GHSA-8wv3-4xc3-cq3g/GHSA-8wv3-4xc3-cq3g.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-92fc-2v24-8558/GHSA-92fc-2v24-8558.json b/advisories/unreviewed/2022/05/GHSA-92fc-2v24-8558/GHSA-92fc-2v24-8558.json
index 93d607cd63f..a2205921c43 100644
--- a/advisories/unreviewed/2022/05/GHSA-92fc-2v24-8558/GHSA-92fc-2v24-8558.json
+++ b/advisories/unreviewed/2022/05/GHSA-92fc-2v24-8558/GHSA-92fc-2v24-8558.json
@@ -7,12 +7,8 @@
"CVE-2017-18606"
],
"details": "The avada theme before 5.1.5 for WordPress has stored XSS.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-93f4-345x-96mm/GHSA-93f4-345x-96mm.json b/advisories/unreviewed/2022/05/GHSA-93f4-345x-96mm/GHSA-93f4-345x-96mm.json
index f4027fce877..6ac1428ee05 100644
--- a/advisories/unreviewed/2022/05/GHSA-93f4-345x-96mm/GHSA-93f4-345x-96mm.json
+++ b/advisories/unreviewed/2022/05/GHSA-93f4-345x-96mm/GHSA-93f4-345x-96mm.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-93r8-2fm2-39jj/GHSA-93r8-2fm2-39jj.json b/advisories/unreviewed/2022/05/GHSA-93r8-2fm2-39jj/GHSA-93r8-2fm2-39jj.json
index 1ac7f5cb4c0..c9e4919c0e2 100644
--- a/advisories/unreviewed/2022/05/GHSA-93r8-2fm2-39jj/GHSA-93r8-2fm2-39jj.json
+++ b/advisories/unreviewed/2022/05/GHSA-93r8-2fm2-39jj/GHSA-93r8-2fm2-39jj.json
@@ -7,12 +7,8 @@
"CVE-2007-5922"
],
"details": "The modules/mdop.m in the Cypress 1.0k script for BitchX, as downloaded from a distribution site in November 2007, contains an externally introduced backdoor that e-mails sensitive information (hostnames, usernames, and shell history) to a fixed address.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-96g2-x6h6-v7h9/GHSA-96g2-x6h6-v7h9.json b/advisories/unreviewed/2022/05/GHSA-96g2-x6h6-v7h9/GHSA-96g2-x6h6-v7h9.json
index c16cf78e4e1..23b70951167 100644
--- a/advisories/unreviewed/2022/05/GHSA-96g2-x6h6-v7h9/GHSA-96g2-x6h6-v7h9.json
+++ b/advisories/unreviewed/2022/05/GHSA-96g2-x6h6-v7h9/GHSA-96g2-x6h6-v7h9.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-96pq-2p2q-gx9m/GHSA-96pq-2p2q-gx9m.json b/advisories/unreviewed/2022/05/GHSA-96pq-2p2q-gx9m/GHSA-96pq-2p2q-gx9m.json
index 96300818e28..56f17882801 100644
--- a/advisories/unreviewed/2022/05/GHSA-96pq-2p2q-gx9m/GHSA-96pq-2p2q-gx9m.json
+++ b/advisories/unreviewed/2022/05/GHSA-96pq-2p2q-gx9m/GHSA-96pq-2p2q-gx9m.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-979p-m9gj-6h5g/GHSA-979p-m9gj-6h5g.json b/advisories/unreviewed/2022/05/GHSA-979p-m9gj-6h5g/GHSA-979p-m9gj-6h5g.json
index 418aa52232f..c27f2c16739 100644
--- a/advisories/unreviewed/2022/05/GHSA-979p-m9gj-6h5g/GHSA-979p-m9gj-6h5g.json
+++ b/advisories/unreviewed/2022/05/GHSA-979p-m9gj-6h5g/GHSA-979p-m9gj-6h5g.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-9966-jcrj-hwhw/GHSA-9966-jcrj-hwhw.json b/advisories/unreviewed/2022/05/GHSA-9966-jcrj-hwhw/GHSA-9966-jcrj-hwhw.json
index f6f89a6d3a3..b2769f2a4c1 100644
--- a/advisories/unreviewed/2022/05/GHSA-9966-jcrj-hwhw/GHSA-9966-jcrj-hwhw.json
+++ b/advisories/unreviewed/2022/05/GHSA-9966-jcrj-hwhw/GHSA-9966-jcrj-hwhw.json
@@ -7,12 +7,8 @@
"CVE-2019-1263"
],
"details": "An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka 'Microsoft Excel Information Disclosure Vulnerability'.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-99j3-p989-hw7j/GHSA-99j3-p989-hw7j.json b/advisories/unreviewed/2022/05/GHSA-99j3-p989-hw7j/GHSA-99j3-p989-hw7j.json
index 3409cd1a743..71bd0768a6d 100644
--- a/advisories/unreviewed/2022/05/GHSA-99j3-p989-hw7j/GHSA-99j3-p989-hw7j.json
+++ b/advisories/unreviewed/2022/05/GHSA-99j3-p989-hw7j/GHSA-99j3-p989-hw7j.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-9c53-jf8m-pjf3/GHSA-9c53-jf8m-pjf3.json b/advisories/unreviewed/2022/05/GHSA-9c53-jf8m-pjf3/GHSA-9c53-jf8m-pjf3.json
index b86596c0acd..06ccc6e4c23 100644
--- a/advisories/unreviewed/2022/05/GHSA-9c53-jf8m-pjf3/GHSA-9c53-jf8m-pjf3.json
+++ b/advisories/unreviewed/2022/05/GHSA-9c53-jf8m-pjf3/GHSA-9c53-jf8m-pjf3.json
@@ -7,12 +7,8 @@
"CVE-2007-6207"
],
"details": "Xen 3.x, possibly before 3.1.2, when running on IA64 systems, does not check the RID value for mov_to_rr, which allows a VTi domain to read memory of other domains.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-9cvc-g6x4-jqfm/GHSA-9cvc-g6x4-jqfm.json b/advisories/unreviewed/2022/05/GHSA-9cvc-g6x4-jqfm/GHSA-9cvc-g6x4-jqfm.json
index 11f68818b07..794b16dc8be 100644
--- a/advisories/unreviewed/2022/05/GHSA-9cvc-g6x4-jqfm/GHSA-9cvc-g6x4-jqfm.json
+++ b/advisories/unreviewed/2022/05/GHSA-9cvc-g6x4-jqfm/GHSA-9cvc-g6x4-jqfm.json
@@ -7,12 +7,8 @@
"CVE-2007-5974"
],
"details": "SQL injection vulnerability in mailer.php in JPortal 2 allows remote attackers to execute arbitrary SQL commands via the to parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-9cxx-2gq5-4v8r/GHSA-9cxx-2gq5-4v8r.json b/advisories/unreviewed/2022/05/GHSA-9cxx-2gq5-4v8r/GHSA-9cxx-2gq5-4v8r.json
index 3952add8a9c..400e6b7ee78 100644
--- a/advisories/unreviewed/2022/05/GHSA-9cxx-2gq5-4v8r/GHSA-9cxx-2gq5-4v8r.json
+++ b/advisories/unreviewed/2022/05/GHSA-9cxx-2gq5-4v8r/GHSA-9cxx-2gq5-4v8r.json
@@ -7,12 +7,8 @@
"CVE-2019-1245"
],
"details": "An information disclosure vulnerability exists when DirectWrite improperly discloses the contents of its memory, aka 'DirectWrite Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1244, CVE-2019-1251.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-9f2j-cfjr-2gcp/GHSA-9f2j-cfjr-2gcp.json b/advisories/unreviewed/2022/05/GHSA-9f2j-cfjr-2gcp/GHSA-9f2j-cfjr-2gcp.json
index b04f4aca9f7..df0628a2cd3 100644
--- a/advisories/unreviewed/2022/05/GHSA-9f2j-cfjr-2gcp/GHSA-9f2j-cfjr-2gcp.json
+++ b/advisories/unreviewed/2022/05/GHSA-9f2j-cfjr-2gcp/GHSA-9f2j-cfjr-2gcp.json
@@ -7,12 +7,8 @@
"CVE-2007-5928"
],
"details": "OpenBase 10.0.5 and earlier allows remote authenticated users to trigger a free of an arbitrary memory location via long strings in a SELECT statement. NOTE: this might be a buffer overflow, but it is not clear.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-9g63-8qxx-3j95/GHSA-9g63-8qxx-3j95.json b/advisories/unreviewed/2022/05/GHSA-9g63-8qxx-3j95/GHSA-9g63-8qxx-3j95.json
index 5aa5c4e3c1e..8ecba85ce5e 100644
--- a/advisories/unreviewed/2022/05/GHSA-9g63-8qxx-3j95/GHSA-9g63-8qxx-3j95.json
+++ b/advisories/unreviewed/2022/05/GHSA-9g63-8qxx-3j95/GHSA-9g63-8qxx-3j95.json
@@ -7,12 +7,8 @@
"CVE-2007-6125"
],
"details": "SQL injection vulnerability in search_form.php in Softbiz Freelancers Script 1 allows remote attackers to execute arbitrary SQL commands via the sb_protype parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-9g7g-pmg2-qx9r/GHSA-9g7g-pmg2-qx9r.json b/advisories/unreviewed/2022/05/GHSA-9g7g-pmg2-qx9r/GHSA-9g7g-pmg2-qx9r.json
index 73542ebaa6a..b9ce7487380 100644
--- a/advisories/unreviewed/2022/05/GHSA-9g7g-pmg2-qx9r/GHSA-9g7g-pmg2-qx9r.json
+++ b/advisories/unreviewed/2022/05/GHSA-9g7g-pmg2-qx9r/GHSA-9g7g-pmg2-qx9r.json
@@ -7,12 +7,8 @@
"CVE-2007-6019"
],
"details": "Adobe Flash Player 9.0.115.0 and earlier, and 8.0.39.0 and earlier, allows remote attackers to execute arbitrary code via an SWF file with a modified DeclareFunction2 Actionscript tag, which prevents an object from being instantiated properly.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -108,9 +104,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-9gj3-47wr-2qvr/GHSA-9gj3-47wr-2qvr.json b/advisories/unreviewed/2022/05/GHSA-9gj3-47wr-2qvr/GHSA-9gj3-47wr-2qvr.json
index f064b59c9b8..30fc93aa1be 100644
--- a/advisories/unreviewed/2022/05/GHSA-9gj3-47wr-2qvr/GHSA-9gj3-47wr-2qvr.json
+++ b/advisories/unreviewed/2022/05/GHSA-9gj3-47wr-2qvr/GHSA-9gj3-47wr-2qvr.json
@@ -7,12 +7,8 @@
"CVE-2007-6054"
],
"details": "Cross-site scripting (XSS) vulnerability in the login page in the management interface in the Aruba 800 Mobility Controller 2.5.4.18 and earlier, and 2.4.8.6-FIPS and earlier, allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to the /screens URI, related to the url variable.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-9gpv-rx7q-48r2/GHSA-9gpv-rx7q-48r2.json b/advisories/unreviewed/2022/05/GHSA-9gpv-rx7q-48r2/GHSA-9gpv-rx7q-48r2.json
index 920b94bcbca..72d03f34e59 100644
--- a/advisories/unreviewed/2022/05/GHSA-9gpv-rx7q-48r2/GHSA-9gpv-rx7q-48r2.json
+++ b/advisories/unreviewed/2022/05/GHSA-9gpv-rx7q-48r2/GHSA-9gpv-rx7q-48r2.json
@@ -7,12 +7,8 @@
"CVE-2019-1270"
],
"details": "An elevation of privilege vulnerability exists in Windows store installer where WindowsApps directory is vulnerable to symbolic link attack, aka 'Microsoft Windows Store Installer Elevation of Privilege Vulnerability'.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-9gxh-58f6-h4hh/GHSA-9gxh-58f6-h4hh.json b/advisories/unreviewed/2022/05/GHSA-9gxh-58f6-h4hh/GHSA-9gxh-58f6-h4hh.json
index d481023a61b..00b6afb03c8 100644
--- a/advisories/unreviewed/2022/05/GHSA-9gxh-58f6-h4hh/GHSA-9gxh-58f6-h4hh.json
+++ b/advisories/unreviewed/2022/05/GHSA-9gxh-58f6-h4hh/GHSA-9gxh-58f6-h4hh.json
@@ -7,12 +7,8 @@
"CVE-2007-6165"
],
"details": "Mail in Apple Mac OS X Leopard (10.5.1) allows user-assisted remote attackers to execute arbitrary code via an AppleDouble attachment containing an apparently-safe file type and script in a resource fork, which does not warn the user that a separate program is going to be executed. NOTE: this is a regression error related to CVE-2006-0395.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -64,9 +60,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-9j4c-m4rp-53j6/GHSA-9j4c-m4rp-53j6.json b/advisories/unreviewed/2022/05/GHSA-9j4c-m4rp-53j6/GHSA-9j4c-m4rp-53j6.json
index 4fd73962975..d06d121568e 100644
--- a/advisories/unreviewed/2022/05/GHSA-9j4c-m4rp-53j6/GHSA-9j4c-m4rp-53j6.json
+++ b/advisories/unreviewed/2022/05/GHSA-9j4c-m4rp-53j6/GHSA-9j4c-m4rp-53j6.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-9j95-v437-9v7h/GHSA-9j95-v437-9v7h.json b/advisories/unreviewed/2022/05/GHSA-9j95-v437-9v7h/GHSA-9j95-v437-9v7h.json
index 0f31a00371e..6664da4dfc7 100644
--- a/advisories/unreviewed/2022/05/GHSA-9j95-v437-9v7h/GHSA-9j95-v437-9v7h.json
+++ b/advisories/unreviewed/2022/05/GHSA-9j95-v437-9v7h/GHSA-9j95-v437-9v7h.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-9m82-2363-wc54/GHSA-9m82-2363-wc54.json b/advisories/unreviewed/2022/05/GHSA-9m82-2363-wc54/GHSA-9m82-2363-wc54.json
index 3b78930ea42..814d1d00670 100644
--- a/advisories/unreviewed/2022/05/GHSA-9m82-2363-wc54/GHSA-9m82-2363-wc54.json
+++ b/advisories/unreviewed/2022/05/GHSA-9m82-2363-wc54/GHSA-9m82-2363-wc54.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-9mm7-7f84-98c9/GHSA-9mm7-7f84-98c9.json b/advisories/unreviewed/2022/05/GHSA-9mm7-7f84-98c9/GHSA-9mm7-7f84-98c9.json
index 67818daae65..85b94bad29f 100644
--- a/advisories/unreviewed/2022/05/GHSA-9mm7-7f84-98c9/GHSA-9mm7-7f84-98c9.json
+++ b/advisories/unreviewed/2022/05/GHSA-9mm7-7f84-98c9/GHSA-9mm7-7f84-98c9.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-9pgv-j45f-353j/GHSA-9pgv-j45f-353j.json b/advisories/unreviewed/2022/05/GHSA-9pgv-j45f-353j/GHSA-9pgv-j45f-353j.json
index 4a2b23c9d48..3e73010d620 100644
--- a/advisories/unreviewed/2022/05/GHSA-9pgv-j45f-353j/GHSA-9pgv-j45f-353j.json
+++ b/advisories/unreviewed/2022/05/GHSA-9pgv-j45f-353j/GHSA-9pgv-j45f-353j.json
@@ -7,12 +7,8 @@
"CVE-2007-5900"
],
"details": "PHP before 5.2.5 allows local users to bypass protection mechanisms configured through php_admin_value or php_admin_flag in httpd.conf by using ini_set to modify arbitrary configuration variables, a different issue than CVE-2006-4625.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -60,9 +56,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-9rmf-q528-p6rv/GHSA-9rmf-q528-p6rv.json b/advisories/unreviewed/2022/05/GHSA-9rmf-q528-p6rv/GHSA-9rmf-q528-p6rv.json
index 77295c8f62b..dc83f762646 100644
--- a/advisories/unreviewed/2022/05/GHSA-9rmf-q528-p6rv/GHSA-9rmf-q528-p6rv.json
+++ b/advisories/unreviewed/2022/05/GHSA-9rmf-q528-p6rv/GHSA-9rmf-q528-p6rv.json
@@ -7,12 +7,8 @@
"CVE-2007-5944"
],
"details": "Cross-site scripting (XSS) vulnerability in Servlet Engine / Web Container in IBM WebSphere Application Server (WAS) 5.1.1.4 through 5.1.1.16 allows remote attackers to inject arbitrary web script or HTML via the Expect HTTP header. NOTE: this might be the same issue as CVE-2006-3918, but there are insufficient details to be sure.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-9rxj-9w27-4hc3/GHSA-9rxj-9w27-4hc3.json b/advisories/unreviewed/2022/05/GHSA-9rxj-9w27-4hc3/GHSA-9rxj-9w27-4hc3.json
index e2005921142..478b185462c 100644
--- a/advisories/unreviewed/2022/05/GHSA-9rxj-9w27-4hc3/GHSA-9rxj-9w27-4hc3.json
+++ b/advisories/unreviewed/2022/05/GHSA-9rxj-9w27-4hc3/GHSA-9rxj-9w27-4hc3.json
@@ -7,12 +7,8 @@
"CVE-2007-5841"
],
"details": "PHP remote file inclusion vulnerability in admin/index.php in nuBoard 0.5 allows remote attackers to execute arbitrary PHP code via a URL in the site parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-9vhf-xgg9-m6cf/GHSA-9vhf-xgg9-m6cf.json b/advisories/unreviewed/2022/05/GHSA-9vhf-xgg9-m6cf/GHSA-9vhf-xgg9-m6cf.json
index 294a644848b..b8bfa3bf951 100644
--- a/advisories/unreviewed/2022/05/GHSA-9vhf-xgg9-m6cf/GHSA-9vhf-xgg9-m6cf.json
+++ b/advisories/unreviewed/2022/05/GHSA-9vhf-xgg9-m6cf/GHSA-9vhf-xgg9-m6cf.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-9vrg-75vp-xj72/GHSA-9vrg-75vp-xj72.json b/advisories/unreviewed/2022/05/GHSA-9vrg-75vp-xj72/GHSA-9vrg-75vp-xj72.json
index 2eb483fcb10..db2227f1002 100644
--- a/advisories/unreviewed/2022/05/GHSA-9vrg-75vp-xj72/GHSA-9vrg-75vp-xj72.json
+++ b/advisories/unreviewed/2022/05/GHSA-9vrg-75vp-xj72/GHSA-9vrg-75vp-xj72.json
@@ -7,12 +7,8 @@
"CVE-2019-1297"
],
"details": "A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-9xfg-9jrh-8c3v/GHSA-9xfg-9jrh-8c3v.json b/advisories/unreviewed/2022/05/GHSA-9xfg-9jrh-8c3v/GHSA-9xfg-9jrh-8c3v.json
index b65e5682e23..be74a147ce9 100644
--- a/advisories/unreviewed/2022/05/GHSA-9xfg-9jrh-8c3v/GHSA-9xfg-9jrh-8c3v.json
+++ b/advisories/unreviewed/2022/05/GHSA-9xfg-9jrh-8c3v/GHSA-9xfg-9jrh-8c3v.json
@@ -7,12 +7,8 @@
"CVE-2007-6181"
],
"details": "Heap-based buffer overflow in cygwin1.dll in Cygwin 1.5.7 and earlier allows context-dependent attackers to execute arbitrary code via a filename with a certain length, as demonstrated by a remote authenticated user who uses the SCP protocol to send a file to the Cygwin machine, and thereby causes scp.exe on this machine to execute, and then overwrite heap memory with characters from the filename. NOTE: it is also reported that a related issue might exist in 1.5.7 through 1.5.19.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-c2p5-jcp9-qh7r/GHSA-c2p5-jcp9-qh7r.json b/advisories/unreviewed/2022/05/GHSA-c2p5-jcp9-qh7r/GHSA-c2p5-jcp9-qh7r.json
index 6003b5f909d..637bc0112b9 100644
--- a/advisories/unreviewed/2022/05/GHSA-c2p5-jcp9-qh7r/GHSA-c2p5-jcp9-qh7r.json
+++ b/advisories/unreviewed/2022/05/GHSA-c2p5-jcp9-qh7r/GHSA-c2p5-jcp9-qh7r.json
@@ -7,12 +7,8 @@
"CVE-2007-5887"
],
"details": "SQL injection vulnerability in boards/printer.asp in ASP Message Board 2.2.1c allows remote attackers to execute arbitrary SQL commands via the id parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-c2pr-42g7-vmj7/GHSA-c2pr-42g7-vmj7.json b/advisories/unreviewed/2022/05/GHSA-c2pr-42g7-vmj7/GHSA-c2pr-42g7-vmj7.json
index e9a4dec6f66..1c0d3f6e6e2 100644
--- a/advisories/unreviewed/2022/05/GHSA-c2pr-42g7-vmj7/GHSA-c2pr-42g7-vmj7.json
+++ b/advisories/unreviewed/2022/05/GHSA-c2pr-42g7-vmj7/GHSA-c2pr-42g7-vmj7.json
@@ -7,12 +7,8 @@
"CVE-2019-13355"
],
"details": "In Total Defense Anti-virus 9.0.0.773, insecure access control for the directory %PROGRAMDATA%\\TotalDefense\\Consumer\\ISS\\9\\ used by ccschedulersvc.exe allows local attackers to hijack dotnetproxy.exe, which leads to privilege escalation when the ccSchedulerSVC service runs the executable.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-c3j6-m7f6-92cp/GHSA-c3j6-m7f6-92cp.json b/advisories/unreviewed/2022/05/GHSA-c3j6-m7f6-92cp/GHSA-c3j6-m7f6-92cp.json
index 28194144983..347cde4933f 100644
--- a/advisories/unreviewed/2022/05/GHSA-c3j6-m7f6-92cp/GHSA-c3j6-m7f6-92cp.json
+++ b/advisories/unreviewed/2022/05/GHSA-c3j6-m7f6-92cp/GHSA-c3j6-m7f6-92cp.json
@@ -7,12 +7,8 @@
"CVE-2007-6058"
],
"details": "Multiple SQL injection vulnerabilities in index.php in ProfileCMS 1.0 and earlier allow remote attackers to execute arbitrary SQL commands via the id parameter in a (1) codes action in the profile-codes module, (2) videos action in the video-codes module, or (3) games action in the arcade-games module.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-c42f-578r-22gx/GHSA-c42f-578r-22gx.json b/advisories/unreviewed/2022/05/GHSA-c42f-578r-22gx/GHSA-c42f-578r-22gx.json
index 0deb9ed5b16..2f619e7678e 100644
--- a/advisories/unreviewed/2022/05/GHSA-c42f-578r-22gx/GHSA-c42f-578r-22gx.json
+++ b/advisories/unreviewed/2022/05/GHSA-c42f-578r-22gx/GHSA-c42f-578r-22gx.json
@@ -7,12 +7,8 @@
"CVE-2007-6206"
],
"details": "The do_coredump function in fs/exec.c in Linux kernel 2.4.x and 2.6.x up to 2.6.24-rc3, and possibly other versions, does not change the UID of a core dump file if it exists before a root process creates a core dump in the same location, which might allow local users to obtain sensitive information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-c4w7-ghh7-wp3j/GHSA-c4w7-ghh7-wp3j.json b/advisories/unreviewed/2022/05/GHSA-c4w7-ghh7-wp3j/GHSA-c4w7-ghh7-wp3j.json
index cc38152b82b..1712195a98e 100644
--- a/advisories/unreviewed/2022/05/GHSA-c4w7-ghh7-wp3j/GHSA-c4w7-ghh7-wp3j.json
+++ b/advisories/unreviewed/2022/05/GHSA-c4w7-ghh7-wp3j/GHSA-c4w7-ghh7-wp3j.json
@@ -7,12 +7,8 @@
"CVE-2007-6057"
],
"details": "PHP remote file inclusion vulnerability in index.php in datecomm Social Networking Script (aka Myspace Clone Script) allows remote attackers to execute arbitrary PHP code via a URL in the pg parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-c5m8-gpqx-2pc5/GHSA-c5m8-gpqx-2pc5.json b/advisories/unreviewed/2022/05/GHSA-c5m8-gpqx-2pc5/GHSA-c5m8-gpqx-2pc5.json
index a6d1a56faad..69ddf3da314 100644
--- a/advisories/unreviewed/2022/05/GHSA-c5m8-gpqx-2pc5/GHSA-c5m8-gpqx-2pc5.json
+++ b/advisories/unreviewed/2022/05/GHSA-c5m8-gpqx-2pc5/GHSA-c5m8-gpqx-2pc5.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-c5w7-x82j-g943/GHSA-c5w7-x82j-g943.json b/advisories/unreviewed/2022/05/GHSA-c5w7-x82j-g943/GHSA-c5w7-x82j-g943.json
index 95d1cc72ff5..0003b5f53a7 100644
--- a/advisories/unreviewed/2022/05/GHSA-c5w7-x82j-g943/GHSA-c5w7-x82j-g943.json
+++ b/advisories/unreviewed/2022/05/GHSA-c5w7-x82j-g943/GHSA-c5w7-x82j-g943.json
@@ -7,12 +7,8 @@
"CVE-2007-5888"
],
"details": "Cross-site scripting (XSS) vulnerability in displayecard.php in Coppermine Photo Gallery (CPG) before 1.4.14 allows remote attackers to inject arbitrary web script or HTML via the data parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-c6h6-4q33-5jv5/GHSA-c6h6-4q33-5jv5.json b/advisories/unreviewed/2022/05/GHSA-c6h6-4q33-5jv5/GHSA-c6h6-4q33-5jv5.json
index 346f57fa4c3..bfaaffe4183 100644
--- a/advisories/unreviewed/2022/05/GHSA-c6h6-4q33-5jv5/GHSA-c6h6-4q33-5jv5.json
+++ b/advisories/unreviewed/2022/05/GHSA-c6h6-4q33-5jv5/GHSA-c6h6-4q33-5jv5.json
@@ -7,12 +7,8 @@
"CVE-2007-5983"
],
"details": "Cross-site scripting (XSS) vulnerability in index.php in Justin Hagstrom AutoIndex PHP Script before 2.2.3 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO (PHP_SELF).",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-c78m-6jpv-42p4/GHSA-c78m-6jpv-42p4.json b/advisories/unreviewed/2022/05/GHSA-c78m-6jpv-42p4/GHSA-c78m-6jpv-42p4.json
index 7431a1643d3..db5c78dd83b 100644
--- a/advisories/unreviewed/2022/05/GHSA-c78m-6jpv-42p4/GHSA-c78m-6jpv-42p4.json
+++ b/advisories/unreviewed/2022/05/GHSA-c78m-6jpv-42p4/GHSA-c78m-6jpv-42p4.json
@@ -7,12 +7,8 @@
"CVE-2007-5854"
],
"details": "Launch Services in Apple Mac OS X 10.4.11 and 10.5.1 does not treat HTML files as unsafe content, which allows attackers to conduct cross-site scripting (XSS) attacks or obtain sensitive information via a crafted HTML file.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-c78v-wq62-w3c5/GHSA-c78v-wq62-w3c5.json b/advisories/unreviewed/2022/05/GHSA-c78v-wq62-w3c5/GHSA-c78v-wq62-w3c5.json
index 2598ee44527..79a6efa4eca 100644
--- a/advisories/unreviewed/2022/05/GHSA-c78v-wq62-w3c5/GHSA-c78v-wq62-w3c5.json
+++ b/advisories/unreviewed/2022/05/GHSA-c78v-wq62-w3c5/GHSA-c78v-wq62-w3c5.json
@@ -7,12 +7,8 @@
"CVE-2019-1241"
],
"details": "A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1240, CVE-2019-1242, CVE-2019-1243, CVE-2019-1246, CVE-2019-1247, CVE-2019-1248, CVE-2019-1249, CVE-2019-1250.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-c897-jqgr-qf8x/GHSA-c897-jqgr-qf8x.json b/advisories/unreviewed/2022/05/GHSA-c897-jqgr-qf8x/GHSA-c897-jqgr-qf8x.json
index 897c871d2ab..a120a94eb51 100644
--- a/advisories/unreviewed/2022/05/GHSA-c897-jqgr-qf8x/GHSA-c897-jqgr-qf8x.json
+++ b/advisories/unreviewed/2022/05/GHSA-c897-jqgr-qf8x/GHSA-c897-jqgr-qf8x.json
@@ -7,12 +7,8 @@
"CVE-2015-9389"
],
"details": "The mtouch-quiz plugin before 3.1.3 for WordPress has XSS via a quiz name.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "LOW",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-c8cf-pj9v-fcr9/GHSA-c8cf-pj9v-fcr9.json b/advisories/unreviewed/2022/05/GHSA-c8cf-pj9v-fcr9/GHSA-c8cf-pj9v-fcr9.json
index 60d55c7658e..9a64315b282 100644
--- a/advisories/unreviewed/2022/05/GHSA-c8cf-pj9v-fcr9/GHSA-c8cf-pj9v-fcr9.json
+++ b/advisories/unreviewed/2022/05/GHSA-c8cf-pj9v-fcr9/GHSA-c8cf-pj9v-fcr9.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -43,9 +41,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-c976-3hhm-7m57/GHSA-c976-3hhm-7m57.json b/advisories/unreviewed/2022/05/GHSA-c976-3hhm-7m57/GHSA-c976-3hhm-7m57.json
index 1ca97266642..1434b3aa27f 100644
--- a/advisories/unreviewed/2022/05/GHSA-c976-3hhm-7m57/GHSA-c976-3hhm-7m57.json
+++ b/advisories/unreviewed/2022/05/GHSA-c976-3hhm-7m57/GHSA-c976-3hhm-7m57.json
@@ -7,12 +7,8 @@
"CVE-2007-6116"
],
"details": "The Firebird/Interbase dissector in Wireshark (formerly Ethereal) 0.99.6 allows remote attackers to cause a denial of service (infinite loop or crash) via unknown vectors.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -120,9 +116,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-c9f9-p5f3-29f5/GHSA-c9f9-p5f3-29f5.json b/advisories/unreviewed/2022/05/GHSA-c9f9-p5f3-29f5/GHSA-c9f9-p5f3-29f5.json
index 753f865c98a..430341b312f 100644
--- a/advisories/unreviewed/2022/05/GHSA-c9f9-p5f3-29f5/GHSA-c9f9-p5f3-29f5.json
+++ b/advisories/unreviewed/2022/05/GHSA-c9f9-p5f3-29f5/GHSA-c9f9-p5f3-29f5.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-cf38-5cmw-7r2h/GHSA-cf38-5cmw-7r2h.json b/advisories/unreviewed/2022/05/GHSA-cf38-5cmw-7r2h/GHSA-cf38-5cmw-7r2h.json
index 15bde2fe168..caf917400f6 100644
--- a/advisories/unreviewed/2022/05/GHSA-cf38-5cmw-7r2h/GHSA-cf38-5cmw-7r2h.json
+++ b/advisories/unreviewed/2022/05/GHSA-cf38-5cmw-7r2h/GHSA-cf38-5cmw-7r2h.json
@@ -7,12 +7,8 @@
"CVE-2007-5897"
],
"details": "Buffer overflow in MDSYS.SDO_CS in Oracle Database Server 8iR3, 9iR1, 9iR2 up to 9.2.0.6, and 10gR1 up to 10.1.0.4 allows remote authenticated users to cause a denial of service (crash) and execute arbitrary code via the TRANSFORM function. NOTE: this issue might already be covered by CVE-2007-5515, CVE-2007-5509, or CVE-2007-5505, but there are insufficient details to be sure.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-cfg6-7293-cwrh/GHSA-cfg6-7293-cwrh.json b/advisories/unreviewed/2022/05/GHSA-cfg6-7293-cwrh/GHSA-cfg6-7293-cwrh.json
index c2da829c1e3..e87735ecd77 100644
--- a/advisories/unreviewed/2022/05/GHSA-cfg6-7293-cwrh/GHSA-cfg6-7293-cwrh.json
+++ b/advisories/unreviewed/2022/05/GHSA-cfg6-7293-cwrh/GHSA-cfg6-7293-cwrh.json
@@ -7,12 +7,8 @@
"CVE-2019-16903"
],
"details": "Platinum UPnP SDK 1.2.0 allows Directory Traversal in Core/PltHttpServer.cpp because it checks for /.. where it should be checking for ../ instead.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-cfhr-prfj-mx65/GHSA-cfhr-prfj-mx65.json b/advisories/unreviewed/2022/05/GHSA-cfhr-prfj-mx65/GHSA-cfhr-prfj-mx65.json
index 12d37777286..e2838caceb5 100644
--- a/advisories/unreviewed/2022/05/GHSA-cfhr-prfj-mx65/GHSA-cfhr-prfj-mx65.json
+++ b/advisories/unreviewed/2022/05/GHSA-cfhr-prfj-mx65/GHSA-cfhr-prfj-mx65.json
@@ -7,12 +7,8 @@
"CVE-2019-16412"
],
"details": "In goform/setSysTools on Tenda N301 wireless routers, attackers can trigger a device crash via a zero wanMTU value. (Prohibition of this zero value is only enforced within the GUI.)",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-cfj4-7v4x-xmrv/GHSA-cfj4-7v4x-xmrv.json b/advisories/unreviewed/2022/05/GHSA-cfj4-7v4x-xmrv/GHSA-cfj4-7v4x-xmrv.json
index 5b7a39dffca..2a7d1943b91 100644
--- a/advisories/unreviewed/2022/05/GHSA-cfj4-7v4x-xmrv/GHSA-cfj4-7v4x-xmrv.json
+++ b/advisories/unreviewed/2022/05/GHSA-cfj4-7v4x-xmrv/GHSA-cfj4-7v4x-xmrv.json
@@ -7,12 +7,8 @@
"CVE-2007-5939"
],
"details": "The gss_userok function in appl/ftp/ftpd/gss_userok.c in Heimdal 0.7.2 does not allocate memory for the ticketfile pointer before calling free, which allows remote attackers to have an unknown impact via an invalid username. NOTE: the vulnerability was originally reported for ftpd.c, but this is incorrect.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-cg63-j5p8-vpwf/GHSA-cg63-j5p8-vpwf.json b/advisories/unreviewed/2022/05/GHSA-cg63-j5p8-vpwf/GHSA-cg63-j5p8-vpwf.json
index 241b32b9f2b..83d783ad2ba 100644
--- a/advisories/unreviewed/2022/05/GHSA-cg63-j5p8-vpwf/GHSA-cg63-j5p8-vpwf.json
+++ b/advisories/unreviewed/2022/05/GHSA-cg63-j5p8-vpwf/GHSA-cg63-j5p8-vpwf.json
@@ -7,12 +7,8 @@
"CVE-2007-6018"
],
"details": "IMP Webmail Client 4.1.5, Horde Application Framework 3.1.5, and Horde Groupware Webmail Edition 1.0.3 does not validate unspecified HTTP requests, which allows remote attackers to (1) delete arbitrary e-mail messages via a modified numeric ID or (2) \"purge\" deleted emails via a crafted email message.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -96,9 +92,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-ch9c-6f95-hm27/GHSA-ch9c-6f95-hm27.json b/advisories/unreviewed/2022/05/GHSA-ch9c-6f95-hm27/GHSA-ch9c-6f95-hm27.json
index 6512ed94b45..706d2edbb35 100644
--- a/advisories/unreviewed/2022/05/GHSA-ch9c-6f95-hm27/GHSA-ch9c-6f95-hm27.json
+++ b/advisories/unreviewed/2022/05/GHSA-ch9c-6f95-hm27/GHSA-ch9c-6f95-hm27.json
@@ -7,12 +7,8 @@
"CVE-2007-6193"
],
"details": "The web management interface in Citrix NetScaler 8.0 build 47.8 stores the device's primary IP address in a cookie, which might allow remote attackers to obtain sensitive network configuration information if this address is not the same as the address being used by the web interface.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-cjcg-p99f-62w9/GHSA-cjcg-p99f-62w9.json b/advisories/unreviewed/2022/05/GHSA-cjcg-p99f-62w9/GHSA-cjcg-p99f-62w9.json
index 464bce38363..c00ae460aca 100644
--- a/advisories/unreviewed/2022/05/GHSA-cjcg-p99f-62w9/GHSA-cjcg-p99f-62w9.json
+++ b/advisories/unreviewed/2022/05/GHSA-cjcg-p99f-62w9/GHSA-cjcg-p99f-62w9.json
@@ -7,12 +7,8 @@
"CVE-2007-5837"
],
"details": "GUI.pm in yarssr 0.2.2, when Gnome default URL handling is disabled, allows remote attackers to execute arbitrary commands via shell metacharacters in a link element in a feed.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-cpgg-76rc-452r/GHSA-cpgg-76rc-452r.json b/advisories/unreviewed/2022/05/GHSA-cpgg-76rc-452r/GHSA-cpgg-76rc-452r.json
index ae86b8ec3d3..e8d08d8ed65 100644
--- a/advisories/unreviewed/2022/05/GHSA-cpgg-76rc-452r/GHSA-cpgg-76rc-452r.json
+++ b/advisories/unreviewed/2022/05/GHSA-cpgg-76rc-452r/GHSA-cpgg-76rc-452r.json
@@ -7,12 +7,8 @@
"CVE-2019-1261"
],
"details": "A spoofing vulnerability exists in Microsoft SharePoint when it improperly handles requests to authorize applications, resulting in cross-site request forgery (CSRF).To exploit this vulnerability, an attacker would need to create a page specifically designed to cause a cross-site request, aka 'Microsoft SharePoint Spoofing Vulnerability'. This CVE ID is unique from CVE-2019-1259.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-cpvg-gx3j-rfm4/GHSA-cpvg-gx3j-rfm4.json b/advisories/unreviewed/2022/05/GHSA-cpvg-gx3j-rfm4/GHSA-cpvg-gx3j-rfm4.json
index a9a6bad41d9..d2c48d46e30 100644
--- a/advisories/unreviewed/2022/05/GHSA-cpvg-gx3j-rfm4/GHSA-cpvg-gx3j-rfm4.json
+++ b/advisories/unreviewed/2022/05/GHSA-cpvg-gx3j-rfm4/GHSA-cpvg-gx3j-rfm4.json
@@ -7,12 +7,8 @@
"CVE-2007-5972"
],
"details": "Double free vulnerability in the krb5_def_store_mkey function in lib/kdb/kdb_default.c in MIT Kerberos 5 (krb5) 1.5 has unknown impact and remote authenticated attack vectors. NOTE: the free operations occur in code that stores the krb5kdc master key, and so the attacker must have privileges to store this key.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-cqr2-f5xh-xf23/GHSA-cqr2-f5xh-xf23.json b/advisories/unreviewed/2022/05/GHSA-cqr2-f5xh-xf23/GHSA-cqr2-f5xh-xf23.json
index f687ab0a367..2d26c2e5afa 100644
--- a/advisories/unreviewed/2022/05/GHSA-cqr2-f5xh-xf23/GHSA-cqr2-f5xh-xf23.json
+++ b/advisories/unreviewed/2022/05/GHSA-cqr2-f5xh-xf23/GHSA-cqr2-f5xh-xf23.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-cr9x-qjfp-hqhg/GHSA-cr9x-qjfp-hqhg.json b/advisories/unreviewed/2022/05/GHSA-cr9x-qjfp-hqhg/GHSA-cr9x-qjfp-hqhg.json
index 6eadfd3587a..d198718573c 100644
--- a/advisories/unreviewed/2022/05/GHSA-cr9x-qjfp-hqhg/GHSA-cr9x-qjfp-hqhg.json
+++ b/advisories/unreviewed/2022/05/GHSA-cr9x-qjfp-hqhg/GHSA-cr9x-qjfp-hqhg.json
@@ -7,12 +7,8 @@
"CVE-2007-6186"
],
"details": "Unspecified vulnerability in PHPDevShell before 0.7.0 has unknown impact and attack vectors, involving a \"minor security bug in repair & optimize database.\"",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-crfx-cm6v-fhv9/GHSA-crfx-cm6v-fhv9.json b/advisories/unreviewed/2022/05/GHSA-crfx-cm6v-fhv9/GHSA-crfx-cm6v-fhv9.json
index d5dd81d9402..5198b374179 100644
--- a/advisories/unreviewed/2022/05/GHSA-crfx-cm6v-fhv9/GHSA-crfx-cm6v-fhv9.json
+++ b/advisories/unreviewed/2022/05/GHSA-crfx-cm6v-fhv9/GHSA-crfx-cm6v-fhv9.json
@@ -7,12 +7,8 @@
"CVE-2007-5853"
],
"details": "Unspecified vulnerability in IO Storage Family in Apple Mac OS X 10.4.11 allows user-assisted attackers to cause a denial of service (system shutdown) or execute arbitrary code via a disk image with crafted GUID partition maps, which triggers memory corruption.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -52,9 +48,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-crjc-3gv4-3gfr/GHSA-crjc-3gv4-3gfr.json b/advisories/unreviewed/2022/05/GHSA-crjc-3gv4-3gfr/GHSA-crjc-3gv4-3gfr.json
index 256b89b8780..d1132a44959 100644
--- a/advisories/unreviewed/2022/05/GHSA-crjc-3gv4-3gfr/GHSA-crjc-3gv4-3gfr.json
+++ b/advisories/unreviewed/2022/05/GHSA-crjc-3gv4-3gfr/GHSA-crjc-3gv4-3gfr.json
@@ -7,12 +7,8 @@
"CVE-2007-5959"
],
"details": "Multiple unspecified vulnerabilities in Mozilla Firefox before 2.0.0.10 and SeaMonkey before 1.1.7 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors that trigger memory corruption.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -248,9 +244,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-cw4m-jmr6-3m9f/GHSA-cw4m-jmr6-3m9f.json b/advisories/unreviewed/2022/05/GHSA-cw4m-jmr6-3m9f/GHSA-cw4m-jmr6-3m9f.json
index 2f4dd746d7a..370073572e3 100644
--- a/advisories/unreviewed/2022/05/GHSA-cw4m-jmr6-3m9f/GHSA-cw4m-jmr6-3m9f.json
+++ b/advisories/unreviewed/2022/05/GHSA-cw4m-jmr6-3m9f/GHSA-cw4m-jmr6-3m9f.json
@@ -7,12 +7,8 @@
"CVE-2019-9379"
],
"details": "In libstagefright, there is a possible resource exhaustion due to a missing bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-124329638",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-cwg9-gxcg-x6v2/GHSA-cwg9-gxcg-x6v2.json b/advisories/unreviewed/2022/05/GHSA-cwg9-gxcg-x6v2/GHSA-cwg9-gxcg-x6v2.json
index 61897f7160b..5612a63b118 100644
--- a/advisories/unreviewed/2022/05/GHSA-cwg9-gxcg-x6v2/GHSA-cwg9-gxcg-x6v2.json
+++ b/advisories/unreviewed/2022/05/GHSA-cwg9-gxcg-x6v2/GHSA-cwg9-gxcg-x6v2.json
@@ -7,12 +7,8 @@
"CVE-2007-6176"
],
"details": "kb_whois.cgi in K+B-Bestellsystem (aka KB-Bestellsystem) allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) domain or (2) tld parameter in a check_owner action.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-cww9-mj85-mj6v/GHSA-cww9-mj85-mj6v.json b/advisories/unreviewed/2022/05/GHSA-cww9-mj85-mj6v/GHSA-cww9-mj85-mj6v.json
index 16578b4f22e..fa64a4defff 100644
--- a/advisories/unreviewed/2022/05/GHSA-cww9-mj85-mj6v/GHSA-cww9-mj85-mj6v.json
+++ b/advisories/unreviewed/2022/05/GHSA-cww9-mj85-mj6v/GHSA-cww9-mj85-mj6v.json
@@ -7,12 +7,8 @@
"CVE-2007-5838"
],
"details": "Aclient in Symantec Altiris Deployment Solution 6.x before 6.8.380.0 allows local users to gain local System privileges via the \"Enable key-based authentication to Deployment server\" browser option, a different issue than CVE-2007-4380.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -52,9 +48,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-cx9r-5fwm-h35j/GHSA-cx9r-5fwm-h35j.json b/advisories/unreviewed/2022/05/GHSA-cx9r-5fwm-h35j/GHSA-cx9r-5fwm-h35j.json
index efd66245ce8..e9255093e3b 100644
--- a/advisories/unreviewed/2022/05/GHSA-cx9r-5fwm-h35j/GHSA-cx9r-5fwm-h35j.json
+++ b/advisories/unreviewed/2022/05/GHSA-cx9r-5fwm-h35j/GHSA-cx9r-5fwm-h35j.json
@@ -7,12 +7,8 @@
"CVE-2019-1277"
],
"details": "An elevation of privilege vulnerability exists in Windows Audio Service when a malformed parameter is processed, aka 'Windows Audio Service Elevation of Privilege Vulnerability'.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-f24j-8jjg-7c6m/GHSA-f24j-8jjg-7c6m.json b/advisories/unreviewed/2022/05/GHSA-f24j-8jjg-7c6m/GHSA-f24j-8jjg-7c6m.json
index 2f084837424..28e220ed598 100644
--- a/advisories/unreviewed/2022/05/GHSA-f24j-8jjg-7c6m/GHSA-f24j-8jjg-7c6m.json
+++ b/advisories/unreviewed/2022/05/GHSA-f24j-8jjg-7c6m/GHSA-f24j-8jjg-7c6m.json
@@ -7,12 +7,8 @@
"CVE-2017-18602"
],
"details": "The examapp plugin 1.0 for WordPress has SQL injection via the wp-admin/admin.php?page=examapp_UserResult id parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-f3mm-v27g-fw8w/GHSA-f3mm-v27g-fw8w.json b/advisories/unreviewed/2022/05/GHSA-f3mm-v27g-fw8w/GHSA-f3mm-v27g-fw8w.json
index 2d453ee5c8b..7419e06000d 100644
--- a/advisories/unreviewed/2022/05/GHSA-f3mm-v27g-fw8w/GHSA-f3mm-v27g-fw8w.json
+++ b/advisories/unreviewed/2022/05/GHSA-f3mm-v27g-fw8w/GHSA-f3mm-v27g-fw8w.json
@@ -7,12 +7,8 @@
"CVE-2007-5987"
],
"details": "details.php in BtiTracker before 1.4.5, when torrent viewing is disabled for guests, allows remote attackers to bypass protection mechanisms via a direct request, as demonstrated by (1) reading the details of an arbitrary torrent and (2) modifying a torrent owned by a guest.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-f4jj-mwv6-9hw7/GHSA-f4jj-mwv6-9hw7.json b/advisories/unreviewed/2022/05/GHSA-f4jj-mwv6-9hw7/GHSA-f4jj-mwv6-9hw7.json
index 48342f743b3..f1c236e73e6 100644
--- a/advisories/unreviewed/2022/05/GHSA-f4jj-mwv6-9hw7/GHSA-f4jj-mwv6-9hw7.json
+++ b/advisories/unreviewed/2022/05/GHSA-f4jj-mwv6-9hw7/GHSA-f4jj-mwv6-9hw7.json
@@ -7,12 +7,8 @@
"CVE-2007-6140"
],
"details": "Multiple SQL injection vulnerabilities in Dora Emlak 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to (a) emlak_detay.asp and (b) haber_detay.asp, the (2) kategori parameter to (c) kategorisirala.asp, and the (3) tip parameter to (d) tipsirala.asp.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-f4vj-gp62-vjxm/GHSA-f4vj-gp62-vjxm.json b/advisories/unreviewed/2022/05/GHSA-f4vj-gp62-vjxm/GHSA-f4vj-gp62-vjxm.json
index 8cd35dbf72b..ddb2ebf17ba 100644
--- a/advisories/unreviewed/2022/05/GHSA-f4vj-gp62-vjxm/GHSA-f4vj-gp62-vjxm.json
+++ b/advisories/unreviewed/2022/05/GHSA-f4vj-gp62-vjxm/GHSA-f4vj-gp62-vjxm.json
@@ -7,12 +7,8 @@
"CVE-2007-5980"
],
"details": "Cross-site scripting (XSS) vulnerability in home/rss.php in eggblog before 3.1.1 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO (PHP_SELF).",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-f59f-86pc-5j7q/GHSA-f59f-86pc-5j7q.json b/advisories/unreviewed/2022/05/GHSA-f59f-86pc-5j7q/GHSA-f59f-86pc-5j7q.json
index 38dc43eed26..58078b5cf91 100644
--- a/advisories/unreviewed/2022/05/GHSA-f59f-86pc-5j7q/GHSA-f59f-86pc-5j7q.json
+++ b/advisories/unreviewed/2022/05/GHSA-f59f-86pc-5j7q/GHSA-f59f-86pc-5j7q.json
@@ -7,12 +7,8 @@
"CVE-2007-5906"
],
"details": "Xen 3.1.1 allows virtual guest system users to cause a denial of service (hypervisor crash) by using a debug register (DR7) to set certain breakpoints.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -48,9 +44,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-f5rx-rq8h-4w7v/GHSA-f5rx-rq8h-4w7v.json b/advisories/unreviewed/2022/05/GHSA-f5rx-rq8h-4w7v/GHSA-f5rx-rq8h-4w7v.json
index 9362ffed9d0..09b4d91184e 100644
--- a/advisories/unreviewed/2022/05/GHSA-f5rx-rq8h-4w7v/GHSA-f5rx-rq8h-4w7v.json
+++ b/advisories/unreviewed/2022/05/GHSA-f5rx-rq8h-4w7v/GHSA-f5rx-rq8h-4w7v.json
@@ -7,12 +7,8 @@
"CVE-2019-2148"
],
"details": "In libxaac, there is a possible out of bounds read due to a missing bounds check. This could lead to information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-113508105",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-f6m2-5v5j-rhf2/GHSA-f6m2-5v5j-rhf2.json b/advisories/unreviewed/2022/05/GHSA-f6m2-5v5j-rhf2/GHSA-f6m2-5v5j-rhf2.json
index c3a39a94cca..4627f2f539a 100644
--- a/advisories/unreviewed/2022/05/GHSA-f6m2-5v5j-rhf2/GHSA-f6m2-5v5j-rhf2.json
+++ b/advisories/unreviewed/2022/05/GHSA-f6m2-5v5j-rhf2/GHSA-f6m2-5v5j-rhf2.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-f6pq-6jhq-jx7f/GHSA-f6pq-6jhq-jx7f.json b/advisories/unreviewed/2022/05/GHSA-f6pq-6jhq-jx7f/GHSA-f6pq-6jhq-jx7f.json
index 1b93b5d508d..5b04c32fed4 100644
--- a/advisories/unreviewed/2022/05/GHSA-f6pq-6jhq-jx7f/GHSA-f6pq-6jhq-jx7f.json
+++ b/advisories/unreviewed/2022/05/GHSA-f6pq-6jhq-jx7f/GHSA-f6pq-6jhq-jx7f.json
@@ -7,12 +7,8 @@
"CVE-2019-1249"
],
"details": "A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1240, CVE-2019-1241, CVE-2019-1242, CVE-2019-1243, CVE-2019-1246, CVE-2019-1247, CVE-2019-1248, CVE-2019-1250.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-f6px-rq7f-xv6v/GHSA-f6px-rq7f-xv6v.json b/advisories/unreviewed/2022/05/GHSA-f6px-rq7f-xv6v/GHSA-f6px-rq7f-xv6v.json
index 472d9019c6a..5ca86428aab 100644
--- a/advisories/unreviewed/2022/05/GHSA-f6px-rq7f-xv6v/GHSA-f6px-rq7f-xv6v.json
+++ b/advisories/unreviewed/2022/05/GHSA-f6px-rq7f-xv6v/GHSA-f6px-rq7f-xv6v.json
@@ -7,12 +7,8 @@
"CVE-2007-5963"
],
"details": "Unspecified vulnerability in kdebase allows local users to cause a denial of service (KDM login inaccessible, or resource consumption) via unknown vectors.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -76,9 +72,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-f9pg-xj46-9mvr/GHSA-f9pg-xj46-9mvr.json b/advisories/unreviewed/2022/05/GHSA-f9pg-xj46-9mvr/GHSA-f9pg-xj46-9mvr.json
index 7a220958f73..b99dae7f910 100644
--- a/advisories/unreviewed/2022/05/GHSA-f9pg-xj46-9mvr/GHSA-f9pg-xj46-9mvr.json
+++ b/advisories/unreviewed/2022/05/GHSA-f9pg-xj46-9mvr/GHSA-f9pg-xj46-9mvr.json
@@ -7,12 +7,8 @@
"CVE-2014-1731"
],
"details": "core/html/HTMLSelectElement.cpp in the DOM implementation in Blink, as used in Google Chrome before 34.0.1847.131 on Windows and OS X and before 34.0.1847.132 on Linux, does not properly check renderer state upon a focus event, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that leverage \"type confusion\" for SELECT elements.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-fcm3-whc3-3xr7/GHSA-fcm3-whc3-3xr7.json b/advisories/unreviewed/2022/05/GHSA-fcm3-whc3-3xr7/GHSA-fcm3-whc3-3xr7.json
index 8ca2fa25448..e4b187fb1fe 100644
--- a/advisories/unreviewed/2022/05/GHSA-fcm3-whc3-3xr7/GHSA-fcm3-whc3-3xr7.json
+++ b/advisories/unreviewed/2022/05/GHSA-fcm3-whc3-3xr7/GHSA-fcm3-whc3-3xr7.json
@@ -7,12 +7,8 @@
"CVE-2007-5915"
],
"details": "Directory traversal vulnerability in index.php in phphelpdesk 0.6.16 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the whattodo parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-ffw6-9g4j-22q9/GHSA-ffw6-9g4j-22q9.json b/advisories/unreviewed/2022/05/GHSA-ffw6-9g4j-22q9/GHSA-ffw6-9g4j-22q9.json
index 1755c4ecf55..7812a5f53a9 100644
--- a/advisories/unreviewed/2022/05/GHSA-ffw6-9g4j-22q9/GHSA-ffw6-9g4j-22q9.json
+++ b/advisories/unreviewed/2022/05/GHSA-ffw6-9g4j-22q9/GHSA-ffw6-9g4j-22q9.json
@@ -7,12 +7,8 @@
"CVE-2007-5857"
],
"details": "Quick Look in Apple Mac OS X 10.5.1 does not prevent a movie from accessing URLs when the movie file is previewed or if an icon is created, which might allow remote attackers to obtain sensitive information via HREFTrack.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -52,9 +48,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-fg85-243x-99cp/GHSA-fg85-243x-99cp.json b/advisories/unreviewed/2022/05/GHSA-fg85-243x-99cp/GHSA-fg85-243x-99cp.json
index 3093dbed450..4a14c813452 100644
--- a/advisories/unreviewed/2022/05/GHSA-fg85-243x-99cp/GHSA-fg85-243x-99cp.json
+++ b/advisories/unreviewed/2022/05/GHSA-fg85-243x-99cp/GHSA-fg85-243x-99cp.json
@@ -7,12 +7,8 @@
"CVE-2007-6167"
],
"details": "Untrusted search path vulnerability in yast2-core in SUSE Linux might allow local users to execute arbitrary code by creating a malicious yast2 module in the current working directory.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -36,9 +32,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-fg8v-97qx-694j/GHSA-fg8v-97qx-694j.json b/advisories/unreviewed/2022/05/GHSA-fg8v-97qx-694j/GHSA-fg8v-97qx-694j.json
index 0671825c289..3ac0c25f3b9 100644
--- a/advisories/unreviewed/2022/05/GHSA-fg8v-97qx-694j/GHSA-fg8v-97qx-694j.json
+++ b/advisories/unreviewed/2022/05/GHSA-fg8v-97qx-694j/GHSA-fg8v-97qx-694j.json
@@ -7,12 +7,8 @@
"CVE-2007-6101"
],
"details": "Ability Mail Server before 2.61 allows remote authenticated users to cause a denial of service (daemon crash) via (1) malformed number list ranges in unspecified IMAP commands, and possibly (2) a blank string in unspecified messages.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-fh66-2vx8-m2gj/GHSA-fh66-2vx8-m2gj.json b/advisories/unreviewed/2022/05/GHSA-fh66-2vx8-m2gj/GHSA-fh66-2vx8-m2gj.json
index 17f07e4be6e..8e1899d1e00 100644
--- a/advisories/unreviewed/2022/05/GHSA-fh66-2vx8-m2gj/GHSA-fh66-2vx8-m2gj.json
+++ b/advisories/unreviewed/2022/05/GHSA-fh66-2vx8-m2gj/GHSA-fh66-2vx8-m2gj.json
@@ -7,12 +7,8 @@
"CVE-2007-6191"
],
"details": "Multiple PHP remote file inclusion vulnerabilities in Armin Burger p.mapper 3.2.0 beta3 allow remote attackers to execute arbitrary PHP code via a URL in the _SESSION[PM_INCPHP] parameter to (1) incphp/globals.php or (2) plugins/export/mc_table.php. NOTE: it could be argued that this vulnerability is caused by a problem in PHP and the proper fix should be in PHP; if so, then this should not be treated as a vulnerability in p.mapper.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-fhcx-8grm-6fhc/GHSA-fhcx-8grm-6fhc.json b/advisories/unreviewed/2022/05/GHSA-fhcx-8grm-6fhc/GHSA-fhcx-8grm-6fhc.json
index b6733f06012..cb3a0748eda 100644
--- a/advisories/unreviewed/2022/05/GHSA-fhcx-8grm-6fhc/GHSA-fhcx-8grm-6fhc.json
+++ b/advisories/unreviewed/2022/05/GHSA-fhcx-8grm-6fhc/GHSA-fhcx-8grm-6fhc.json
@@ -7,12 +7,8 @@
"CVE-2007-6162"
],
"details": "Cross-site scripting (XSS) vulnerability in index.php in FMDeluxe 2.1.0 allows remote attackers to inject arbitrary web script or HTML via the id parameter in a category action.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-fj22-9wc7-hq3h/GHSA-fj22-9wc7-hq3h.json b/advisories/unreviewed/2022/05/GHSA-fj22-9wc7-hq3h/GHSA-fj22-9wc7-hq3h.json
index fd002dac296..4aafb4fb8ea 100644
--- a/advisories/unreviewed/2022/05/GHSA-fj22-9wc7-hq3h/GHSA-fj22-9wc7-hq3h.json
+++ b/advisories/unreviewed/2022/05/GHSA-fj22-9wc7-hq3h/GHSA-fj22-9wc7-hq3h.json
@@ -7,12 +7,8 @@
"CVE-2007-6110"
],
"details": "Cross-site scripting (XSS) vulnerability in htsearch in htdig 3.2.0b6 allows remote attackers to inject arbitrary web script or HTML via the sort parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-fjpm-pqjx-wj5g/GHSA-fjpm-pqjx-wj5g.json b/advisories/unreviewed/2022/05/GHSA-fjpm-pqjx-wj5g/GHSA-fjpm-pqjx-wj5g.json
index 7ca3f365908..a64a6638225 100644
--- a/advisories/unreviewed/2022/05/GHSA-fjpm-pqjx-wj5g/GHSA-fjpm-pqjx-wj5g.json
+++ b/advisories/unreviewed/2022/05/GHSA-fjpm-pqjx-wj5g/GHSA-fjpm-pqjx-wj5g.json
@@ -7,12 +7,8 @@
"CVE-2019-1254"
],
"details": "An information disclosure vulnerability exists when Windows Hyper-V writes uninitialized memory to disk, aka 'Windows Hyper-V Information Disclosure Vulnerability'.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "LOW",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-fm3r-6fgh-c3xh/GHSA-fm3r-6fgh-c3xh.json b/advisories/unreviewed/2022/05/GHSA-fm3r-6fgh-c3xh/GHSA-fm3r-6fgh-c3xh.json
index 23322b0b4bb..0b7470bac9b 100644
--- a/advisories/unreviewed/2022/05/GHSA-fm3r-6fgh-c3xh/GHSA-fm3r-6fgh-c3xh.json
+++ b/advisories/unreviewed/2022/05/GHSA-fm3r-6fgh-c3xh/GHSA-fm3r-6fgh-c3xh.json
@@ -7,12 +7,8 @@
"CVE-2007-6187"
],
"details": "Multiple directory traversal vulnerabilities in PHP Content Architect (aka NoAh) 0.9 pre 1.2 and earlier allow remote attackers to read arbitrary files via a .. (dot dot) in the filepath parameter to (1) css_file.php, (2) js_file.php, or (3) xml_file.php in noah/modules/nosystem/templates/.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-fp3q-9278-8ppc/GHSA-fp3q-9278-8ppc.json b/advisories/unreviewed/2022/05/GHSA-fp3q-9278-8ppc/GHSA-fp3q-9278-8ppc.json
index 1895bc8f77c..70e88a0a8fd 100644
--- a/advisories/unreviewed/2022/05/GHSA-fp3q-9278-8ppc/GHSA-fp3q-9278-8ppc.json
+++ b/advisories/unreviewed/2022/05/GHSA-fp3q-9278-8ppc/GHSA-fp3q-9278-8ppc.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-fq75-6gpr-m5fm/GHSA-fq75-6gpr-m5fm.json b/advisories/unreviewed/2022/05/GHSA-fq75-6gpr-m5fm/GHSA-fq75-6gpr-m5fm.json
index 35cca43039d..6b5d7070448 100644
--- a/advisories/unreviewed/2022/05/GHSA-fq75-6gpr-m5fm/GHSA-fq75-6gpr-m5fm.json
+++ b/advisories/unreviewed/2022/05/GHSA-fq75-6gpr-m5fm/GHSA-fq75-6gpr-m5fm.json
@@ -7,12 +7,8 @@
"CVE-2019-2168"
],
"details": "In libxaac there is a possible information disclosure due to uninitialized data. This could lead to information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-118492594",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-fq7v-jhqr-v3g7/GHSA-fq7v-jhqr-v3g7.json b/advisories/unreviewed/2022/05/GHSA-fq7v-jhqr-v3g7/GHSA-fq7v-jhqr-v3g7.json
index aea54836971..541ebd2d5db 100644
--- a/advisories/unreviewed/2022/05/GHSA-fq7v-jhqr-v3g7/GHSA-fq7v-jhqr-v3g7.json
+++ b/advisories/unreviewed/2022/05/GHSA-fq7v-jhqr-v3g7/GHSA-fq7v-jhqr-v3g7.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-fq9q-4qp8-fpvg/GHSA-fq9q-4qp8-fpvg.json b/advisories/unreviewed/2022/05/GHSA-fq9q-4qp8-fpvg/GHSA-fq9q-4qp8-fpvg.json
index 4d0f9574655..3596e57f3c1 100644
--- a/advisories/unreviewed/2022/05/GHSA-fq9q-4qp8-fpvg/GHSA-fq9q-4qp8-fpvg.json
+++ b/advisories/unreviewed/2022/05/GHSA-fq9q-4qp8-fpvg/GHSA-fq9q-4qp8-fpvg.json
@@ -7,12 +7,8 @@
"CVE-2007-5978"
],
"details": "SQL injection vulnerability in brokenlink.php in the mylinks module for XOOPS allows remote attackers to execute arbitrary SQL commands via the lid parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-fqj2-3q62-4vw3/GHSA-fqj2-3q62-4vw3.json b/advisories/unreviewed/2022/05/GHSA-fqj2-3q62-4vw3/GHSA-fqj2-3q62-4vw3.json
index 1ee6ae19845..93e7a70f433 100644
--- a/advisories/unreviewed/2022/05/GHSA-fqj2-3q62-4vw3/GHSA-fqj2-3q62-4vw3.json
+++ b/advisories/unreviewed/2022/05/GHSA-fqj2-3q62-4vw3/GHSA-fqj2-3q62-4vw3.json
@@ -7,12 +7,8 @@
"CVE-2019-1292"
],
"details": "A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Service Vulnerability'.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-fvcp-55jq-j2qq/GHSA-fvcp-55jq-j2qq.json b/advisories/unreviewed/2022/05/GHSA-fvcp-55jq-j2qq/GHSA-fvcp-55jq-j2qq.json
index ded8c5f80a7..43e5cb4321d 100644
--- a/advisories/unreviewed/2022/05/GHSA-fvcp-55jq-j2qq/GHSA-fvcp-55jq-j2qq.json
+++ b/advisories/unreviewed/2022/05/GHSA-fvcp-55jq-j2qq/GHSA-fvcp-55jq-j2qq.json
@@ -7,12 +7,8 @@
"CVE-2007-6138"
],
"details": "SQL injection vulnerability in redir.asp in VU Mass Mailer allows remote attackers to execute arbitrary SQL commands via the password parameter to Default.asp (aka the Login Page). NOTE: some of these details are obtained from third party information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-fvp5-w7h8-5v6c/GHSA-fvp5-w7h8-5v6c.json b/advisories/unreviewed/2022/05/GHSA-fvp5-w7h8-5v6c/GHSA-fvp5-w7h8-5v6c.json
index 193f18356bd..d15e314a858 100644
--- a/advisories/unreviewed/2022/05/GHSA-fvp5-w7h8-5v6c/GHSA-fvp5-w7h8-5v6c.json
+++ b/advisories/unreviewed/2022/05/GHSA-fvp5-w7h8-5v6c/GHSA-fvp5-w7h8-5v6c.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-fvq8-m245-r4cr/GHSA-fvq8-m245-r4cr.json b/advisories/unreviewed/2022/05/GHSA-fvq8-m245-r4cr/GHSA-fvq8-m245-r4cr.json
index 82fa2c57f6f..9dbee3a63b0 100644
--- a/advisories/unreviewed/2022/05/GHSA-fvq8-m245-r4cr/GHSA-fvq8-m245-r4cr.json
+++ b/advisories/unreviewed/2022/05/GHSA-fvq8-m245-r4cr/GHSA-fvq8-m245-r4cr.json
@@ -7,12 +7,8 @@
"CVE-2007-5964"
],
"details": "The default configuration of autofs 5 in some Linux distributions, such as Red Hat Enterprise Linux (RHEL) 5, omits the nosuid option for the hosts (/net filesystem) map, which allows local users to gain privileges via a setuid program on a remote NFS server.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -76,9 +72,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-fvwr-ccvc-23cc/GHSA-fvwr-ccvc-23cc.json b/advisories/unreviewed/2022/05/GHSA-fvwr-ccvc-23cc/GHSA-fvwr-ccvc-23cc.json
index 6333cfeb494..bc09d365df7 100644
--- a/advisories/unreviewed/2022/05/GHSA-fvwr-ccvc-23cc/GHSA-fvwr-ccvc-23cc.json
+++ b/advisories/unreviewed/2022/05/GHSA-fvwr-ccvc-23cc/GHSA-fvwr-ccvc-23cc.json
@@ -7,12 +7,8 @@
"CVE-2007-5949"
],
"details": "Cross-site scripting (XSS) vulnerability in IBM Tivoli Service Desk 6.2 allows remote authenticated users to inject arbitrary web script or HTML via the Description parameter in a Maximo change action.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-fw96-99q5-pmjp/GHSA-fw96-99q5-pmjp.json b/advisories/unreviewed/2022/05/GHSA-fw96-99q5-pmjp/GHSA-fw96-99q5-pmjp.json
index 1165249f653..c77fbd03b74 100644
--- a/advisories/unreviewed/2022/05/GHSA-fw96-99q5-pmjp/GHSA-fw96-99q5-pmjp.json
+++ b/advisories/unreviewed/2022/05/GHSA-fw96-99q5-pmjp/GHSA-fw96-99q5-pmjp.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -39,9 +37,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-fwch-m6p8-gf7x/GHSA-fwch-m6p8-gf7x.json b/advisories/unreviewed/2022/05/GHSA-fwch-m6p8-gf7x/GHSA-fwch-m6p8-gf7x.json
index ce213692cf8..2e0bcb583c1 100644
--- a/advisories/unreviewed/2022/05/GHSA-fwch-m6p8-gf7x/GHSA-fwch-m6p8-gf7x.json
+++ b/advisories/unreviewed/2022/05/GHSA-fwch-m6p8-gf7x/GHSA-fwch-m6p8-gf7x.json
@@ -7,12 +7,8 @@
"CVE-2019-9300"
],
"details": "In libAACdec, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112661610",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-fx5p-4v4c-vq9q/GHSA-fx5p-4v4c-vq9q.json b/advisories/unreviewed/2022/05/GHSA-fx5p-4v4c-vq9q/GHSA-fx5p-4v4c-vq9q.json
index 75a7c4634c1..8d53ef03e53 100644
--- a/advisories/unreviewed/2022/05/GHSA-fx5p-4v4c-vq9q/GHSA-fx5p-4v4c-vq9q.json
+++ b/advisories/unreviewed/2022/05/GHSA-fx5p-4v4c-vq9q/GHSA-fx5p-4v4c-vq9q.json
@@ -7,12 +7,8 @@
"CVE-2019-2162"
],
"details": "In libxaac there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112713720",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-fx9r-q6w5-g4wc/GHSA-fx9r-q6w5-g4wc.json b/advisories/unreviewed/2022/05/GHSA-fx9r-q6w5-g4wc/GHSA-fx9r-q6w5-g4wc.json
index fa112e977bb..9f3b03c8585 100644
--- a/advisories/unreviewed/2022/05/GHSA-fx9r-q6w5-g4wc/GHSA-fx9r-q6w5-g4wc.json
+++ b/advisories/unreviewed/2022/05/GHSA-fx9r-q6w5-g4wc/GHSA-fx9r-q6w5-g4wc.json
@@ -7,12 +7,8 @@
"CVE-2007-5988"
],
"details": "blocks/shoutbox_block.php in BtiTracker 1.4.4 does not verify user accounts, which allows remote attackers to post shoutbox entries as arbitrary users via a modified nick field.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-fxcp-62pm-pp58/GHSA-fxcp-62pm-pp58.json b/advisories/unreviewed/2022/05/GHSA-fxcp-62pm-pp58/GHSA-fxcp-62pm-pp58.json
index ec42e444663..7c420e0efbd 100644
--- a/advisories/unreviewed/2022/05/GHSA-fxcp-62pm-pp58/GHSA-fxcp-62pm-pp58.json
+++ b/advisories/unreviewed/2022/05/GHSA-fxcp-62pm-pp58/GHSA-fxcp-62pm-pp58.json
@@ -7,12 +7,8 @@
"CVE-2019-1221"
],
"details": "A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scripting Engine Memory Corruption Vulnerability'.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-g29r-hmvv-w2p4/GHSA-g29r-hmvv-w2p4.json b/advisories/unreviewed/2022/05/GHSA-g29r-hmvv-w2p4/GHSA-g29r-hmvv-w2p4.json
index fc6ba4c377d..fbfb60de732 100644
--- a/advisories/unreviewed/2022/05/GHSA-g29r-hmvv-w2p4/GHSA-g29r-hmvv-w2p4.json
+++ b/advisories/unreviewed/2022/05/GHSA-g29r-hmvv-w2p4/GHSA-g29r-hmvv-w2p4.json
@@ -7,12 +7,8 @@
"CVE-2007-5913"
],
"details": "dirsys/modules/auth.php in JBC Explorer 7.20 RC1 and earlier does not require authentication, which allows remote attackers to (1) delete auth.inc.php via the suppr parameter, and (2) re-create the auth.inc.php file with contents that specify a new account name and password for JBC Explorer via the login and password parameters.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-g2pm-mq73-5px2/GHSA-g2pm-mq73-5px2.json b/advisories/unreviewed/2022/05/GHSA-g2pm-mq73-5px2/GHSA-g2pm-mq73-5px2.json
index c2343a9c6b6..69bb3e40574 100644
--- a/advisories/unreviewed/2022/05/GHSA-g2pm-mq73-5px2/GHSA-g2pm-mq73-5px2.json
+++ b/advisories/unreviewed/2022/05/GHSA-g2pm-mq73-5px2/GHSA-g2pm-mq73-5px2.json
@@ -7,12 +7,8 @@
"CVE-2007-6014"
],
"details": "SQL injection vulnerability in post.php in Beehive Forum 0.7.1 and earlier allows remote attackers to execute arbitrary SQL commands via the t_dedupe parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-g3j2-4cw4-gv3r/GHSA-g3j2-4cw4-gv3r.json b/advisories/unreviewed/2022/05/GHSA-g3j2-4cw4-gv3r/GHSA-g3j2-4cw4-gv3r.json
index 9e16379ba61..7664e0d7ed6 100644
--- a/advisories/unreviewed/2022/05/GHSA-g3j2-4cw4-gv3r/GHSA-g3j2-4cw4-gv3r.json
+++ b/advisories/unreviewed/2022/05/GHSA-g3j2-4cw4-gv3r/GHSA-g3j2-4cw4-gv3r.json
@@ -7,12 +7,8 @@
"CVE-2019-1260"
],
"details": "An elevation of privilege vulnerability exists in Microsoft SharePoint, aka 'Microsoft SharePoint Elevation of Privilege Vulnerability'.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-g3mf-xpqx-5mqg/GHSA-g3mf-xpqx-5mqg.json b/advisories/unreviewed/2022/05/GHSA-g3mf-xpqx-5mqg/GHSA-g3mf-xpqx-5mqg.json
index 5a16077589c..9c03b38ff46 100644
--- a/advisories/unreviewed/2022/05/GHSA-g3mf-xpqx-5mqg/GHSA-g3mf-xpqx-5mqg.json
+++ b/advisories/unreviewed/2022/05/GHSA-g3mf-xpqx-5mqg/GHSA-g3mf-xpqx-5mqg.json
@@ -7,12 +7,8 @@
"CVE-2007-5956"
],
"details": "Directory traversal vulnerability in IBM Informix Dynamic Server (IDS) before 10.00.xC7W1 allows local users to gain privileges by referencing modified NLS message files through directory traversal sequences in the DBLANG environment variable.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-g47q-9m4h-vgjq/GHSA-g47q-9m4h-vgjq.json b/advisories/unreviewed/2022/05/GHSA-g47q-9m4h-vgjq/GHSA-g47q-9m4h-vgjq.json
index 429eb9ada09..5f396202b65 100644
--- a/advisories/unreviewed/2022/05/GHSA-g47q-9m4h-vgjq/GHSA-g47q-9m4h-vgjq.json
+++ b/advisories/unreviewed/2022/05/GHSA-g47q-9m4h-vgjq/GHSA-g47q-9m4h-vgjq.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-g485-x4m8-3jwm/GHSA-g485-x4m8-3jwm.json b/advisories/unreviewed/2022/05/GHSA-g485-x4m8-3jwm/GHSA-g485-x4m8-3jwm.json
index 8fa48cf2a22..8edcb149d1b 100644
--- a/advisories/unreviewed/2022/05/GHSA-g485-x4m8-3jwm/GHSA-g485-x4m8-3jwm.json
+++ b/advisories/unreviewed/2022/05/GHSA-g485-x4m8-3jwm/GHSA-g485-x4m8-3jwm.json
@@ -7,12 +7,8 @@
"CVE-2019-9307"
],
"details": "In libAACdec, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112661893",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-g4gr-mxqj-pf9m/GHSA-g4gr-mxqj-pf9m.json b/advisories/unreviewed/2022/05/GHSA-g4gr-mxqj-pf9m/GHSA-g4gr-mxqj-pf9m.json
index e0cb9a0c063..9d2a091cd06 100644
--- a/advisories/unreviewed/2022/05/GHSA-g4gr-mxqj-pf9m/GHSA-g4gr-mxqj-pf9m.json
+++ b/advisories/unreviewed/2022/05/GHSA-g4gr-mxqj-pf9m/GHSA-g4gr-mxqj-pf9m.json
@@ -7,12 +7,8 @@
"CVE-2019-2145"
],
"details": "In libxaac, there is a possible out of bounds read due to a missing bounds check. This could lead to information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112858430",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-g4r2-rhr4-hq79/GHSA-g4r2-rhr4-hq79.json b/advisories/unreviewed/2022/05/GHSA-g4r2-rhr4-hq79/GHSA-g4r2-rhr4-hq79.json
index 08648bc130f..acfe95372e4 100644
--- a/advisories/unreviewed/2022/05/GHSA-g4r2-rhr4-hq79/GHSA-g4r2-rhr4-hq79.json
+++ b/advisories/unreviewed/2022/05/GHSA-g4r2-rhr4-hq79/GHSA-g4r2-rhr4-hq79.json
@@ -7,12 +7,8 @@
"CVE-2007-5860"
],
"details": "Unspecified vulnerability in Spin Tracer in Apple Mac OS X 10.5.1 allows local users to execute arbitrary code via unspecified output files, involving an \"insecure file operation.\"",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -52,9 +48,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-g5j6-w97m-f848/GHSA-g5j6-w97m-f848.json b/advisories/unreviewed/2022/05/GHSA-g5j6-w97m-f848/GHSA-g5j6-w97m-f848.json
index 1513bf76dab..0c5013cf9b7 100644
--- a/advisories/unreviewed/2022/05/GHSA-g5j6-w97m-f848/GHSA-g5j6-w97m-f848.json
+++ b/advisories/unreviewed/2022/05/GHSA-g5j6-w97m-f848/GHSA-g5j6-w97m-f848.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-g5pr-cr72-p67g/GHSA-g5pr-cr72-p67g.json b/advisories/unreviewed/2022/05/GHSA-g5pr-cr72-p67g/GHSA-g5pr-cr72-p67g.json
index 6cdc1a410ed..2159c63d52e 100644
--- a/advisories/unreviewed/2022/05/GHSA-g5pr-cr72-p67g/GHSA-g5pr-cr72-p67g.json
+++ b/advisories/unreviewed/2022/05/GHSA-g5pr-cr72-p67g/GHSA-g5pr-cr72-p67g.json
@@ -7,12 +7,8 @@
"CVE-2007-6056"
],
"details": "frame.html in Aida-Web (Aida Web) allows remote attackers to bypass a protection mechanism and obtain comment and task details via modified values to the (1) Mehr and (2) SUPER parameters.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -40,9 +36,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-g5r5-mcgg-8jvc/GHSA-g5r5-mcgg-8jvc.json b/advisories/unreviewed/2022/05/GHSA-g5r5-mcgg-8jvc/GHSA-g5r5-mcgg-8jvc.json
index 7a273878b90..7f11ea366e7 100644
--- a/advisories/unreviewed/2022/05/GHSA-g5r5-mcgg-8jvc/GHSA-g5r5-mcgg-8jvc.json
+++ b/advisories/unreviewed/2022/05/GHSA-g5r5-mcgg-8jvc/GHSA-g5r5-mcgg-8jvc.json
@@ -7,12 +7,8 @@
"CVE-2007-5934"
],
"details": "The LOB functionality in PEAR MDB2 before 2.5.0a1 interprets a request to store a URL string as a request to retrieve and store the contents of the URL, which might allow remote attackers to use MDB2 as an indirect proxy or obtain sensitive information via a URL into a form field in an MDB2 application, as demonstrated by a file:// URL or a URL for an intranet web site.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-g6gc-jg43-45m9/GHSA-g6gc-jg43-45m9.json b/advisories/unreviewed/2022/05/GHSA-g6gc-jg43-45m9/GHSA-g6gc-jg43-45m9.json
index a21aede80da..0b08ee56d14 100644
--- a/advisories/unreviewed/2022/05/GHSA-g6gc-jg43-45m9/GHSA-g6gc-jg43-45m9.json
+++ b/advisories/unreviewed/2022/05/GHSA-g6gc-jg43-45m9/GHSA-g6gc-jg43-45m9.json
@@ -7,12 +7,8 @@
"CVE-2015-9434"
],
"details": "The kiwi-logo-carousel plugin before 1.7.2 for WordPress has CSRF with resultant XSS via the wp-admin/edit.php?post_type=kwlogos&page=kwlogos_settings tab or tab_flags_order parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -32,9 +28,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-g6mg-p4c2-82c9/GHSA-g6mg-p4c2-82c9.json b/advisories/unreviewed/2022/05/GHSA-g6mg-p4c2-82c9/GHSA-g6mg-p4c2-82c9.json
index c5dc04d47b9..a6f7c4809f3 100644
--- a/advisories/unreviewed/2022/05/GHSA-g6mg-p4c2-82c9/GHSA-g6mg-p4c2-82c9.json
+++ b/advisories/unreviewed/2022/05/GHSA-g6mg-p4c2-82c9/GHSA-g6mg-p4c2-82c9.json
@@ -7,12 +7,8 @@
"CVE-2016-10986"
],
"details": "The tweet-wheel plugin before 1.0.3.3 for WordPress has XSS via consumer_key, consumer_secret, access_token, and access_token_secret.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -32,9 +28,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-g7gp-j3cf-8xcg/GHSA-g7gp-j3cf-8xcg.json b/advisories/unreviewed/2022/05/GHSA-g7gp-j3cf-8xcg/GHSA-g7gp-j3cf-8xcg.json
index abc965bcc69..53026b48174 100644
--- a/advisories/unreviewed/2022/05/GHSA-g7gp-j3cf-8xcg/GHSA-g7gp-j3cf-8xcg.json
+++ b/advisories/unreviewed/2022/05/GHSA-g7gp-j3cf-8xcg/GHSA-g7gp-j3cf-8xcg.json
@@ -7,12 +7,8 @@
"CVE-2007-6141"
],
"details": "Cross-site scripting (XSS) vulnerability in vBTube.php in vBTube 1.1 Beta allows remote attackers to inject arbitrary web script or HTML via the search parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-g7xr-j224-9v5w/GHSA-g7xr-j224-9v5w.json b/advisories/unreviewed/2022/05/GHSA-g7xr-j224-9v5w/GHSA-g7xr-j224-9v5w.json
index 15958fa8030..5e41f8426c8 100644
--- a/advisories/unreviewed/2022/05/GHSA-g7xr-j224-9v5w/GHSA-g7xr-j224-9v5w.json
+++ b/advisories/unreviewed/2022/05/GHSA-g7xr-j224-9v5w/GHSA-g7xr-j224-9v5w.json
@@ -7,12 +7,8 @@
"CVE-2007-6203"
],
"details": "Apache HTTP Server 2.0.x and 2.2.x does not sanitize the HTTP Method specifier header from an HTTP request when it is reflected back in a \"413 Request Entity Too Large\" error message, which might allow cross-site scripting (XSS) style attacks using web client components that can send arbitrary headers in requests, as demonstrated via an HTTP request containing an invalid Content-length value, a similar issue to CVE-2006-3918.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-g84g-mfq4-3j25/GHSA-g84g-mfq4-3j25.json b/advisories/unreviewed/2022/05/GHSA-g84g-mfq4-3j25/GHSA-g84g-mfq4-3j25.json
index 11f9fe3a80b..e75a6fbaf7c 100644
--- a/advisories/unreviewed/2022/05/GHSA-g84g-mfq4-3j25/GHSA-g84g-mfq4-3j25.json
+++ b/advisories/unreviewed/2022/05/GHSA-g84g-mfq4-3j25/GHSA-g84g-mfq4-3j25.json
@@ -7,12 +7,8 @@
"CVE-2007-6111"
],
"details": "Multiple unspecified vulnerabilities in Wireshark (formerly Ethereal) allow remote attackers to cause a denial of service (crash) via (1) a crafted MP3 file or (2) unspecified vectors to the NCP dissector.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -116,9 +112,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-g865-qffp-7p34/GHSA-g865-qffp-7p34.json b/advisories/unreviewed/2022/05/GHSA-g865-qffp-7p34/GHSA-g865-qffp-7p34.json
index 136f569232c..ca38e55f44a 100644
--- a/advisories/unreviewed/2022/05/GHSA-g865-qffp-7p34/GHSA-g865-qffp-7p34.json
+++ b/advisories/unreviewed/2022/05/GHSA-g865-qffp-7p34/GHSA-g865-qffp-7p34.json
@@ -7,12 +7,8 @@
"CVE-2015-9438"
],
"details": "The display-widgets plugin before 2.04 for WordPress has XSS via the wp-admin/admin-ajax.php?action=dw_show_widget id_base, widget_number, or instance parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -32,9 +28,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "LOW",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-g8gx-qw66-2h8p/GHSA-g8gx-qw66-2h8p.json b/advisories/unreviewed/2022/05/GHSA-g8gx-qw66-2h8p/GHSA-g8gx-qw66-2h8p.json
index 877c25a17b4..b30db208822 100644
--- a/advisories/unreviewed/2022/05/GHSA-g8gx-qw66-2h8p/GHSA-g8gx-qw66-2h8p.json
+++ b/advisories/unreviewed/2022/05/GHSA-g8gx-qw66-2h8p/GHSA-g8gx-qw66-2h8p.json
@@ -7,12 +7,8 @@
"CVE-2016-10988"
],
"details": "The leenkme plugin before 2.6.0 for WordPress has stored XSS via facebook_message, facebook_linkname, facebook_caption, facebook_description, default_image, or _wp_http_referer.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -32,9 +28,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-g8vh-p2qj-p47f/GHSA-g8vh-p2qj-p47f.json b/advisories/unreviewed/2022/05/GHSA-g8vh-p2qj-p47f/GHSA-g8vh-p2qj-p47f.json
index 69c30ff5fd1..712d3167c45 100644
--- a/advisories/unreviewed/2022/05/GHSA-g8vh-p2qj-p47f/GHSA-g8vh-p2qj-p47f.json
+++ b/advisories/unreviewed/2022/05/GHSA-g8vh-p2qj-p47f/GHSA-g8vh-p2qj-p47f.json
@@ -7,12 +7,8 @@
"CVE-2007-5945"
],
"details": "USVN before 0.6.5 allows remote attackers to obtain a list of repository contents via unspecified vectors.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -44,9 +40,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-g98w-7j97-6fwr/GHSA-g98w-7j97-6fwr.json b/advisories/unreviewed/2022/05/GHSA-g98w-7j97-6fwr/GHSA-g98w-7j97-6fwr.json
index 81cae74b6c8..8b33821ad99 100644
--- a/advisories/unreviewed/2022/05/GHSA-g98w-7j97-6fwr/GHSA-g98w-7j97-6fwr.json
+++ b/advisories/unreviewed/2022/05/GHSA-g98w-7j97-6fwr/GHSA-g98w-7j97-6fwr.json
@@ -7,12 +7,8 @@
"CVE-2019-16709"
],
"details": "ImageMagick 7.0.8-35 has a memory leak in coders/dps.c, as demonstrated by XCreateImage.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-gc9r-m22v-q2fm/GHSA-gc9r-m22v-q2fm.json b/advisories/unreviewed/2022/05/GHSA-gc9r-m22v-q2fm/GHSA-gc9r-m22v-q2fm.json
index 00736a7ca32..62932a8e4cd 100644
--- a/advisories/unreviewed/2022/05/GHSA-gc9r-m22v-q2fm/GHSA-gc9r-m22v-q2fm.json
+++ b/advisories/unreviewed/2022/05/GHSA-gc9r-m22v-q2fm/GHSA-gc9r-m22v-q2fm.json
@@ -7,12 +7,8 @@
"CVE-2019-1243"
],
"details": "A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1240, CVE-2019-1241, CVE-2019-1242, CVE-2019-1246, CVE-2019-1247, CVE-2019-1248, CVE-2019-1249, CVE-2019-1250.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-gcf7-rjxq-p38r/GHSA-gcf7-rjxq-p38r.json b/advisories/unreviewed/2022/05/GHSA-gcf7-rjxq-p38r/GHSA-gcf7-rjxq-p38r.json
index 0d919c1c58e..922812352d3 100644
--- a/advisories/unreviewed/2022/05/GHSA-gcf7-rjxq-p38r/GHSA-gcf7-rjxq-p38r.json
+++ b/advisories/unreviewed/2022/05/GHSA-gcf7-rjxq-p38r/GHSA-gcf7-rjxq-p38r.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-gfmc-9mq3-93wp/GHSA-gfmc-9mq3-93wp.json b/advisories/unreviewed/2022/05/GHSA-gfmc-9mq3-93wp/GHSA-gfmc-9mq3-93wp.json
index 209f5385853..abaa79b4a0f 100644
--- a/advisories/unreviewed/2022/05/GHSA-gfmc-9mq3-93wp/GHSA-gfmc-9mq3-93wp.json
+++ b/advisories/unreviewed/2022/05/GHSA-gfmc-9mq3-93wp/GHSA-gfmc-9mq3-93wp.json
@@ -7,12 +7,8 @@
"CVE-2007-6201"
],
"details": "Unspecified vulnerability in Wesnoth 1.2.x before 1.2.8, and 1.3.x before 1.3.12, allows attackers to cause a denial of service (hang) via a \"faulty add-on\" and possibly execute other commands via unknown vectors related to the turn_cmd option.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -48,9 +44,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-gfmf-359c-h8m7/GHSA-gfmf-359c-h8m7.json b/advisories/unreviewed/2022/05/GHSA-gfmf-359c-h8m7/GHSA-gfmf-359c-h8m7.json
index 48dedc70bca..dc591c82d4b 100644
--- a/advisories/unreviewed/2022/05/GHSA-gfmf-359c-h8m7/GHSA-gfmf-359c-h8m7.json
+++ b/advisories/unreviewed/2022/05/GHSA-gfmf-359c-h8m7/GHSA-gfmf-359c-h8m7.json
@@ -7,12 +7,8 @@
"CVE-2007-6097"
],
"details": "Unspecified vulnerability in the ICMP implementation in Ingate Firewall before 4.6.0 and SIParator before 4.6.0 has unknown impact and remote attack vectors, related to ICMP packets that are \"incorrectly accepted.\"",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-gg3j-j3hx-hjx5/GHSA-gg3j-j3hx-hjx5.json b/advisories/unreviewed/2022/05/GHSA-gg3j-j3hx-hjx5/GHSA-gg3j-j3hx-hjx5.json
index 8c97f435d10..f28ea32783d 100644
--- a/advisories/unreviewed/2022/05/GHSA-gg3j-j3hx-hjx5/GHSA-gg3j-j3hx-hjx5.json
+++ b/advisories/unreviewed/2022/05/GHSA-gg3j-j3hx-hjx5/GHSA-gg3j-j3hx-hjx5.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-ggg2-5wvj-2mxq/GHSA-ggg2-5wvj-2mxq.json b/advisories/unreviewed/2022/05/GHSA-ggg2-5wvj-2mxq/GHSA-ggg2-5wvj-2mxq.json
index 16b58d06f44..f3ff4dffe7f 100644
--- a/advisories/unreviewed/2022/05/GHSA-ggg2-5wvj-2mxq/GHSA-ggg2-5wvj-2mxq.json
+++ b/advisories/unreviewed/2022/05/GHSA-ggg2-5wvj-2mxq/GHSA-ggg2-5wvj-2mxq.json
@@ -7,12 +7,8 @@
"CVE-2019-1257"
],
"details": "A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package, aka 'Microsoft SharePoint Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1295, CVE-2019-1296.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-ghc3-98rw-xq4v/GHSA-ghc3-98rw-xq4v.json b/advisories/unreviewed/2022/05/GHSA-ghc3-98rw-xq4v/GHSA-ghc3-98rw-xq4v.json
index 258c135cdc3..b810aca7065 100644
--- a/advisories/unreviewed/2022/05/GHSA-ghc3-98rw-xq4v/GHSA-ghc3-98rw-xq4v.json
+++ b/advisories/unreviewed/2022/05/GHSA-ghc3-98rw-xq4v/GHSA-ghc3-98rw-xq4v.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-ghqc-2jjw-x2g3/GHSA-ghqc-2jjw-x2g3.json b/advisories/unreviewed/2022/05/GHSA-ghqc-2jjw-x2g3/GHSA-ghqc-2jjw-x2g3.json
index 027e4eeac8e..4245c634a5f 100644
--- a/advisories/unreviewed/2022/05/GHSA-ghqc-2jjw-x2g3/GHSA-ghqc-2jjw-x2g3.json
+++ b/advisories/unreviewed/2022/05/GHSA-ghqc-2jjw-x2g3/GHSA-ghqc-2jjw-x2g3.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-ghww-7m6r-mpp8/GHSA-ghww-7m6r-mpp8.json b/advisories/unreviewed/2022/05/GHSA-ghww-7m6r-mpp8/GHSA-ghww-7m6r-mpp8.json
index 98252d2fee0..658fa5ad892 100644
--- a/advisories/unreviewed/2022/05/GHSA-ghww-7m6r-mpp8/GHSA-ghww-7m6r-mpp8.json
+++ b/advisories/unreviewed/2022/05/GHSA-ghww-7m6r-mpp8/GHSA-ghww-7m6r-mpp8.json
@@ -7,12 +7,8 @@
"CVE-2007-5991"
],
"details": "SQL injection vulnerability in index.php in ExoPHPdesk allows remote attackers to execute arbitrary SQL commands via the user parameter in a profile fn action.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-gm2g-pw66-2fvw/GHSA-gm2g-pw66-2fvw.json b/advisories/unreviewed/2022/05/GHSA-gm2g-pw66-2fvw/GHSA-gm2g-pw66-2fvw.json
index 85116d4fd95..9ad2b14b81f 100644
--- a/advisories/unreviewed/2022/05/GHSA-gm2g-pw66-2fvw/GHSA-gm2g-pw66-2fvw.json
+++ b/advisories/unreviewed/2022/05/GHSA-gm2g-pw66-2fvw/GHSA-gm2g-pw66-2fvw.json
@@ -7,12 +7,8 @@
"CVE-2019-11661"
],
"details": "Allow changes to some table by non-SysAdmin in Micro Focus Service Manager product versions 9.30, 9.31, 9.32, 9.33, 9.34, 9.35, 9.40, 9.41, 9.50, 9.51, 9.52, 9.60, 9.61, 9.62. This vulnerability could be exploited to allow unauthorized access and modification of data.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-gm9h-7h2x-8v7p/GHSA-gm9h-7h2x-8v7p.json b/advisories/unreviewed/2022/05/GHSA-gm9h-7h2x-8v7p/GHSA-gm9h-7h2x-8v7p.json
index 15f5eced771..c494b8f953b 100644
--- a/advisories/unreviewed/2022/05/GHSA-gm9h-7h2x-8v7p/GHSA-gm9h-7h2x-8v7p.json
+++ b/advisories/unreviewed/2022/05/GHSA-gm9h-7h2x-8v7p/GHSA-gm9h-7h2x-8v7p.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-gmf4-h5jx-m84h/GHSA-gmf4-h5jx-m84h.json b/advisories/unreviewed/2022/05/GHSA-gmf4-h5jx-m84h/GHSA-gmf4-h5jx-m84h.json
index 9b49590b387..305c3ddca23 100644
--- a/advisories/unreviewed/2022/05/GHSA-gmf4-h5jx-m84h/GHSA-gmf4-h5jx-m84h.json
+++ b/advisories/unreviewed/2022/05/GHSA-gmf4-h5jx-m84h/GHSA-gmf4-h5jx-m84h.json
@@ -7,12 +7,8 @@
"CVE-2019-1280"
],
"details": "A remote code execution vulnerability exists in Microsoft Windows that could allow remote code execution if a .LNK file is processed.An attacker who successfully exploited this vulnerability could gain the same user rights as the local user, aka 'LNK Remote Code Execution Vulnerability'.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-gprr-5hc4-pp2m/GHSA-gprr-5hc4-pp2m.json b/advisories/unreviewed/2022/05/GHSA-gprr-5hc4-pp2m/GHSA-gprr-5hc4-pp2m.json
index 83da3f1bddb..2a0b4b856c5 100644
--- a/advisories/unreviewed/2022/05/GHSA-gprr-5hc4-pp2m/GHSA-gprr-5hc4-pp2m.json
+++ b/advisories/unreviewed/2022/05/GHSA-gprr-5hc4-pp2m/GHSA-gprr-5hc4-pp2m.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-gqp2-v2c6-5q8j/GHSA-gqp2-v2c6-5q8j.json b/advisories/unreviewed/2022/05/GHSA-gqp2-v2c6-5q8j/GHSA-gqp2-v2c6-5q8j.json
index 1995dd252bb..b4b1cd7d38c 100644
--- a/advisories/unreviewed/2022/05/GHSA-gqp2-v2c6-5q8j/GHSA-gqp2-v2c6-5q8j.json
+++ b/advisories/unreviewed/2022/05/GHSA-gqp2-v2c6-5q8j/GHSA-gqp2-v2c6-5q8j.json
@@ -7,12 +7,8 @@
"CVE-2007-6048"
],
"details": "IBM DB2 UDB 9.1 before Fixpak 4 uses incorrect permissions on ACLs for DB2NODES.CFG, which has unknown impact and attack vectors. NOTE: the vendor description of this issue is too vague to be certain that it is security-related.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -44,9 +40,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-gqv9-7grx-4w32/GHSA-gqv9-7grx-4w32.json b/advisories/unreviewed/2022/05/GHSA-gqv9-7grx-4w32/GHSA-gqv9-7grx-4w32.json
index 90962ed6319..f8577c8e02c 100644
--- a/advisories/unreviewed/2022/05/GHSA-gqv9-7grx-4w32/GHSA-gqv9-7grx-4w32.json
+++ b/advisories/unreviewed/2022/05/GHSA-gqv9-7grx-4w32/GHSA-gqv9-7grx-4w32.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-gr24-m2h5-6j5g/GHSA-gr24-m2h5-6j5g.json b/advisories/unreviewed/2022/05/GHSA-gr24-m2h5-6j5g/GHSA-gr24-m2h5-6j5g.json
index 0d23d918631..d67cc82c529 100644
--- a/advisories/unreviewed/2022/05/GHSA-gr24-m2h5-6j5g/GHSA-gr24-m2h5-6j5g.json
+++ b/advisories/unreviewed/2022/05/GHSA-gr24-m2h5-6j5g/GHSA-gr24-m2h5-6j5g.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -35,9 +33,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-grf2-742h-45gp/GHSA-grf2-742h-45gp.json b/advisories/unreviewed/2022/05/GHSA-grf2-742h-45gp/GHSA-grf2-742h-45gp.json
index 9f9fc406df1..e3bda3c1648 100644
--- a/advisories/unreviewed/2022/05/GHSA-grf2-742h-45gp/GHSA-grf2-742h-45gp.json
+++ b/advisories/unreviewed/2022/05/GHSA-grf2-742h-45gp/GHSA-grf2-742h-45gp.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-gwh5-9c63-xh38/GHSA-gwh5-9c63-xh38.json b/advisories/unreviewed/2022/05/GHSA-gwh5-9c63-xh38/GHSA-gwh5-9c63-xh38.json
index 6349fa04e66..255b4eeeb60 100644
--- a/advisories/unreviewed/2022/05/GHSA-gwh5-9c63-xh38/GHSA-gwh5-9c63-xh38.json
+++ b/advisories/unreviewed/2022/05/GHSA-gwh5-9c63-xh38/GHSA-gwh5-9c63-xh38.json
@@ -7,12 +7,8 @@
"CVE-2007-6099"
],
"details": "Unspecified vulnerability in Ingate Firewall before 4.6.0 and SIParator before 4.6.0 might leave \"media pinholes\" open upon a restart of the SIP module, which might make it easier for remote attackers to conduct unauthorized activities.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-gwjm-w339-m6p5/GHSA-gwjm-w339-m6p5.json b/advisories/unreviewed/2022/05/GHSA-gwjm-w339-m6p5/GHSA-gwjm-w339-m6p5.json
index 973a164ffd9..31bd314bb26 100644
--- a/advisories/unreviewed/2022/05/GHSA-gwjm-w339-m6p5/GHSA-gwjm-w339-m6p5.json
+++ b/advisories/unreviewed/2022/05/GHSA-gwjm-w339-m6p5/GHSA-gwjm-w339-m6p5.json
@@ -7,12 +7,8 @@
"CVE-2019-15302"
],
"details": "The pad management logic in XWiki labs CryptPad before 3.0.0 allows a remote attacker (who has access to a Rich Text pad with editing rights for the URL) to corrupt it (i.e., cause data loss) via a trivial URL modification.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-gwvg-fqv9-jc46/GHSA-gwvg-fqv9-jc46.json b/advisories/unreviewed/2022/05/GHSA-gwvg-fqv9-jc46/GHSA-gwvg-fqv9-jc46.json
index 37241ebf227..57bdddb164f 100644
--- a/advisories/unreviewed/2022/05/GHSA-gwvg-fqv9-jc46/GHSA-gwvg-fqv9-jc46.json
+++ b/advisories/unreviewed/2022/05/GHSA-gwvg-fqv9-jc46/GHSA-gwvg-fqv9-jc46.json
@@ -7,12 +7,8 @@
"CVE-2007-6098"
],
"details": "Ingate Firewall before 4.6.0 and SIParator before 4.6.0 do not log truncated (1) ICMP, (2) UDP, and (3) TCP packets, which has unknown impact and remote attack vectors; and do not log (4) serial-console login attempts with nonexistent usernames, which might make it easier for attackers with physical access to guess valid login credentials while avoiding detection.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-gww5-4w7g-8gw6/GHSA-gww5-4w7g-8gw6.json b/advisories/unreviewed/2022/05/GHSA-gww5-4w7g-8gw6/GHSA-gww5-4w7g-8gw6.json
index 0e3d0d16964..d5c0c83179e 100644
--- a/advisories/unreviewed/2022/05/GHSA-gww5-4w7g-8gw6/GHSA-gww5-4w7g-8gw6.json
+++ b/advisories/unreviewed/2022/05/GHSA-gww5-4w7g-8gw6/GHSA-gww5-4w7g-8gw6.json
@@ -7,12 +7,8 @@
"CVE-2019-16396"
],
"details": "GnuCOBOL 2.2 has a use-after-free in the end_scope_of_program_name() function in cobc/parser.y via crafted COBOL source code.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-gww6-fq7j-fjmw/GHSA-gww6-fq7j-fjmw.json b/advisories/unreviewed/2022/05/GHSA-gww6-fq7j-fjmw/GHSA-gww6-fq7j-fjmw.json
index 71c8ad25a8a..33fe657b179 100644
--- a/advisories/unreviewed/2022/05/GHSA-gww6-fq7j-fjmw/GHSA-gww6-fq7j-fjmw.json
+++ b/advisories/unreviewed/2022/05/GHSA-gww6-fq7j-fjmw/GHSA-gww6-fq7j-fjmw.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-gxxw-7rf9-h6ch/GHSA-gxxw-7rf9-h6ch.json b/advisories/unreviewed/2022/05/GHSA-gxxw-7rf9-h6ch/GHSA-gxxw-7rf9-h6ch.json
index 975dbb50857..5cc22277023 100644
--- a/advisories/unreviewed/2022/05/GHSA-gxxw-7rf9-h6ch/GHSA-gxxw-7rf9-h6ch.json
+++ b/advisories/unreviewed/2022/05/GHSA-gxxw-7rf9-h6ch/GHSA-gxxw-7rf9-h6ch.json
@@ -7,12 +7,8 @@
"CVE-2007-5890"
],
"details": "Directory traversal vulnerability in index.php in easyGB 2.1.1 allows remote attackers to include arbitrary files via the DatabaseType parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-h2hv-gpr9-gq4m/GHSA-h2hv-gpr9-gq4m.json b/advisories/unreviewed/2022/05/GHSA-h2hv-gpr9-gq4m/GHSA-h2hv-gpr9-gq4m.json
index 4d4ce232f44..b8d8a79068d 100644
--- a/advisories/unreviewed/2022/05/GHSA-h2hv-gpr9-gq4m/GHSA-h2hv-gpr9-gq4m.json
+++ b/advisories/unreviewed/2022/05/GHSA-h2hv-gpr9-gq4m/GHSA-h2hv-gpr9-gq4m.json
@@ -7,12 +7,8 @@
"CVE-2007-5984"
],
"details": "classes/Url.php in Justin Hagstrom AutoIndex PHP Script before 2.2.4 allows remote attackers to cause a denial of service (CPU and memory consumption) via a %00 sequence in the dir parameter to index.php, which triggers an erroneous \"recursive calculation.\"",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-h32x-cwv5-64xp/GHSA-h32x-cwv5-64xp.json b/advisories/unreviewed/2022/05/GHSA-h32x-cwv5-64xp/GHSA-h32x-cwv5-64xp.json
index 1ace3d512c6..5a1a4c2659c 100644
--- a/advisories/unreviewed/2022/05/GHSA-h32x-cwv5-64xp/GHSA-h32x-cwv5-64xp.json
+++ b/advisories/unreviewed/2022/05/GHSA-h32x-cwv5-64xp/GHSA-h32x-cwv5-64xp.json
@@ -7,12 +7,8 @@
"CVE-2007-5829"
],
"details": "The Disk Mount scanner in Symantec AntiVirus for Macintosh 9.x and 10.x, Norton AntiVirus for Macintosh 10.0 and 10.1, and Norton Internet Security for Macintosh 3.x, uses a directory with weak permissions (group writable), which allows local admin users to gain root privileges by replacing unspecified files, which are executed when a user with physical access inserts a disk and the \"Show Progress During Mount Scans\" option is enabled.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -52,9 +48,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-h3j9-g643-p927/GHSA-h3j9-g643-p927.json b/advisories/unreviewed/2022/05/GHSA-h3j9-g643-p927/GHSA-h3j9-g643-p927.json
index 85214b32473..01186901b84 100644
--- a/advisories/unreviewed/2022/05/GHSA-h3j9-g643-p927/GHSA-h3j9-g643-p927.json
+++ b/advisories/unreviewed/2022/05/GHSA-h3j9-g643-p927/GHSA-h3j9-g643-p927.json
@@ -7,12 +7,8 @@
"CVE-2007-6051"
],
"details": "IBM DB2 UDB 9.1 before Fixpak 4 assigns incorrect privileges to the (1) DB2ADMNS and (2) DB2USERS alternative groups, which has unknown impact. NOTE: the vendor description of this issue is too vague to be certain that it is security-related.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -40,9 +36,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-h5px-vw3j-qpg6/GHSA-h5px-vw3j-qpg6.json b/advisories/unreviewed/2022/05/GHSA-h5px-vw3j-qpg6/GHSA-h5px-vw3j-qpg6.json
index 234a8cca2ed..09293436975 100644
--- a/advisories/unreviewed/2022/05/GHSA-h5px-vw3j-qpg6/GHSA-h5px-vw3j-qpg6.json
+++ b/advisories/unreviewed/2022/05/GHSA-h5px-vw3j-qpg6/GHSA-h5px-vw3j-qpg6.json
@@ -7,12 +7,8 @@
"CVE-2007-5986"
],
"details": "SQL injection vulnerability in include/functions.php in BtiTracker before 1.4.5 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-h5x8-g98g-j9vp/GHSA-h5x8-g98g-j9vp.json b/advisories/unreviewed/2022/05/GHSA-h5x8-g98g-j9vp/GHSA-h5x8-g98g-j9vp.json
index e8a98cb3fa3..ebb18d2fa98 100644
--- a/advisories/unreviewed/2022/05/GHSA-h5x8-g98g-j9vp/GHSA-h5x8-g98g-j9vp.json
+++ b/advisories/unreviewed/2022/05/GHSA-h5x8-g98g-j9vp/GHSA-h5x8-g98g-j9vp.json
@@ -7,12 +7,8 @@
"CVE-2007-6031"
],
"details": "Unspecified vulnerability in VanDyke VShell 3.0.1 allows remote attackers to cause a denial of service via unspecified vectors. NOTE: this information is based upon a vague advisory by a vulnerability information sales organization that does not coordinate with vendors or release actionable advisories. A CVE has been assigned for tracking purposes, but duplicates with other CVEs are difficult to determine.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -32,9 +28,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-h89x-p6mf-35px/GHSA-h89x-p6mf-35px.json b/advisories/unreviewed/2022/05/GHSA-h89x-p6mf-35px/GHSA-h89x-p6mf-35px.json
index 4cb86863767..26166a44e38 100644
--- a/advisories/unreviewed/2022/05/GHSA-h89x-p6mf-35px/GHSA-h89x-p6mf-35px.json
+++ b/advisories/unreviewed/2022/05/GHSA-h89x-p6mf-35px/GHSA-h89x-p6mf-35px.json
@@ -7,12 +7,8 @@
"CVE-2007-6180"
],
"details": "Race condition in the Remote Procedure Call kernel module (rpcmod) in Sun Solaris 8 through 10 allows local users to cause a denial of service (NULL dereference and panic) via unspecified vectors.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-h8fv-hhpf-m296/GHSA-h8fv-hhpf-m296.json b/advisories/unreviewed/2022/05/GHSA-h8fv-hhpf-m296/GHSA-h8fv-hhpf-m296.json
index 5ccb1e1706c..696b500359e 100644
--- a/advisories/unreviewed/2022/05/GHSA-h8fv-hhpf-m296/GHSA-h8fv-hhpf-m296.json
+++ b/advisories/unreviewed/2022/05/GHSA-h8fv-hhpf-m296/GHSA-h8fv-hhpf-m296.json
@@ -7,12 +7,8 @@
"CVE-2007-6144"
],
"details": "Heap-based buffer overflow in the PPlayer.XPPlayer.1 ActiveX control in pplayer.dll_1_work in Xunlei Thunder 5.7.4.401 allows remote attackers to execute arbitrary code via a long string in a FlvPlayerUrl property value. NOTE: some of these details are obtained from third party information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-h8g9-jwcj-22mf/GHSA-h8g9-jwcj-22mf.json b/advisories/unreviewed/2022/05/GHSA-h8g9-jwcj-22mf/GHSA-h8g9-jwcj-22mf.json
index ee2ab1c67e6..22044750ef0 100644
--- a/advisories/unreviewed/2022/05/GHSA-h8g9-jwcj-22mf/GHSA-h8g9-jwcj-22mf.json
+++ b/advisories/unreviewed/2022/05/GHSA-h8g9-jwcj-22mf/GHSA-h8g9-jwcj-22mf.json
@@ -7,12 +7,8 @@
"CVE-2007-5936"
],
"details": "dvips in teTeX and TeXlive 2007 and earlier allows local users to obtain sensitive information and modify certain data by creating certain temporary files before they are processed by dviljk, which can then be read or modified in place.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -124,9 +120,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "LOW",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-h8q5-7rfq-93xx/GHSA-h8q5-7rfq-93xx.json b/advisories/unreviewed/2022/05/GHSA-h8q5-7rfq-93xx/GHSA-h8q5-7rfq-93xx.json
index 1c76d7750de..a35e873536e 100644
--- a/advisories/unreviewed/2022/05/GHSA-h8q5-7rfq-93xx/GHSA-h8q5-7rfq-93xx.json
+++ b/advisories/unreviewed/2022/05/GHSA-h8q5-7rfq-93xx/GHSA-h8q5-7rfq-93xx.json
@@ -7,12 +7,8 @@
"CVE-2019-9338"
],
"details": "In libavc there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-111762686",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-h983-ghm9-c6xh/GHSA-h983-ghm9-c6xh.json b/advisories/unreviewed/2022/05/GHSA-h983-ghm9-c6xh/GHSA-h983-ghm9-c6xh.json
index 75620094adb..aacd1386184 100644
--- a/advisories/unreviewed/2022/05/GHSA-h983-ghm9-c6xh/GHSA-h983-ghm9-c6xh.json
+++ b/advisories/unreviewed/2022/05/GHSA-h983-ghm9-c6xh/GHSA-h983-ghm9-c6xh.json
@@ -7,12 +7,8 @@
"CVE-2019-1262"
],
"details": "A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft Office SharePoint XSS Vulnerability'.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "LOW",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-h9hm-7fpp-hmf3/GHSA-h9hm-7fpp-hmf3.json b/advisories/unreviewed/2022/05/GHSA-h9hm-7fpp-hmf3/GHSA-h9hm-7fpp-hmf3.json
index 0585b0c4694..5e40af726b3 100644
--- a/advisories/unreviewed/2022/05/GHSA-h9hm-7fpp-hmf3/GHSA-h9hm-7fpp-hmf3.json
+++ b/advisories/unreviewed/2022/05/GHSA-h9hm-7fpp-hmf3/GHSA-h9hm-7fpp-hmf3.json
@@ -7,12 +7,8 @@
"CVE-2007-5831"
],
"details": "Directory traversal vulnerability in fileSystem.do in SSL-Explorer before 0.2.14 allows remote attackers to access arbitrary files via directory traversal sequences in the path parameter. NOTE: some of these details are obtained from third party information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-hc29-7pc8-xhxq/GHSA-hc29-7pc8-xhxq.json b/advisories/unreviewed/2022/05/GHSA-hc29-7pc8-xhxq/GHSA-hc29-7pc8-xhxq.json
index 8cca853e555..1c334897a43 100644
--- a/advisories/unreviewed/2022/05/GHSA-hc29-7pc8-xhxq/GHSA-hc29-7pc8-xhxq.json
+++ b/advisories/unreviewed/2022/05/GHSA-hc29-7pc8-xhxq/GHSA-hc29-7pc8-xhxq.json
@@ -7,12 +7,8 @@
"CVE-2014-1713"
],
"details": "Use-after-free vulnerability in the AttributeSetter function in bindings/templates/attributes.cpp in the bindings in Blink, as used in Google Chrome before 33.0.1750.152 on OS X and Linux and before 33.0.1750.154 on Windows, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving the document.location value.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-hcq5-84v9-8hvq/GHSA-hcq5-84v9-8hvq.json b/advisories/unreviewed/2022/05/GHSA-hcq5-84v9-8hvq/GHSA-hcq5-84v9-8hvq.json
index c0aa6a6c207..1639b0af7a8 100644
--- a/advisories/unreviewed/2022/05/GHSA-hcq5-84v9-8hvq/GHSA-hcq5-84v9-8hvq.json
+++ b/advisories/unreviewed/2022/05/GHSA-hcq5-84v9-8hvq/GHSA-hcq5-84v9-8hvq.json
@@ -7,12 +7,8 @@
"CVE-2016-10977"
],
"details": "The nelio-ab-testing plugin before 4.5.0 for WordPress has filename=..%2f directory traversal.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -32,9 +28,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-hcqx-rg27-pcqw/GHSA-hcqx-rg27-pcqw.json b/advisories/unreviewed/2022/05/GHSA-hcqx-rg27-pcqw/GHSA-hcqx-rg27-pcqw.json
index cb6f468df54..739c661e5f7 100644
--- a/advisories/unreviewed/2022/05/GHSA-hcqx-rg27-pcqw/GHSA-hcqx-rg27-pcqw.json
+++ b/advisories/unreviewed/2022/05/GHSA-hcqx-rg27-pcqw/GHSA-hcqx-rg27-pcqw.json
@@ -7,12 +7,8 @@
"CVE-2019-1259"
],
"details": "A spoofing vulnerability exists in Microsoft SharePoint when it improperly handles requests to authorize applications, resulting in cross-site request forgery (CSRF).To exploit this vulnerability, an attacker would need to create a page specifically designed to cause a cross-site request, aka 'Microsoft SharePoint Spoofing Vulnerability'. This CVE ID is unique from CVE-2019-1261.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-hf7x-2m78-pj84/GHSA-hf7x-2m78-pj84.json b/advisories/unreviewed/2022/05/GHSA-hf7x-2m78-pj84/GHSA-hf7x-2m78-pj84.json
index 5b8da3d1f1e..90ff20b46ff 100644
--- a/advisories/unreviewed/2022/05/GHSA-hf7x-2m78-pj84/GHSA-hf7x-2m78-pj84.json
+++ b/advisories/unreviewed/2022/05/GHSA-hf7x-2m78-pj84/GHSA-hf7x-2m78-pj84.json
@@ -7,12 +7,8 @@
"CVE-2007-6005"
],
"details": "Unspecified vulnerability in the GpcContainer.GpcContainer.1 ActiveX control in WebEx allows remote attackers to cause a denial of service (memory access violation and crash) via (1) an invalid argument to the InitParam method or (2) an unspecified vector involving the SetParam method.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -36,9 +32,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-hg68-w53w-phj5/GHSA-hg68-w53w-phj5.json b/advisories/unreviewed/2022/05/GHSA-hg68-w53w-phj5/GHSA-hg68-w53w-phj5.json
index 32737b4362b..bdedffbafeb 100644
--- a/advisories/unreviewed/2022/05/GHSA-hg68-w53w-phj5/GHSA-hg68-w53w-phj5.json
+++ b/advisories/unreviewed/2022/05/GHSA-hg68-w53w-phj5/GHSA-hg68-w53w-phj5.json
@@ -7,12 +7,8 @@
"CVE-2007-6090"
],
"details": "Cross-site scripting (XSS) vulnerability in index.php in Nuked-Klan 1.7.5 allows remote attackers to inject arbitrary web script or HTML via the file parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-hgpx-p633-f45j/GHSA-hgpx-p633-f45j.json b/advisories/unreviewed/2022/05/GHSA-hgpx-p633-f45j/GHSA-hgpx-p633-f45j.json
index 11138dc197e..4ff54fe60fe 100644
--- a/advisories/unreviewed/2022/05/GHSA-hgpx-p633-f45j/GHSA-hgpx-p633-f45j.json
+++ b/advisories/unreviewed/2022/05/GHSA-hgpx-p633-f45j/GHSA-hgpx-p633-f45j.json
@@ -7,12 +7,8 @@
"CVE-2016-10997"
],
"details": "The beauty-premium theme 1.0.8 for WordPress has CSRF with resultant arbitrary file upload in includes/sendmail.php.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-hgvc-337r-f6w5/GHSA-hgvc-337r-f6w5.json b/advisories/unreviewed/2022/05/GHSA-hgvc-337r-f6w5/GHSA-hgvc-337r-f6w5.json
index 46106186b8d..0f60a018607 100644
--- a/advisories/unreviewed/2022/05/GHSA-hgvc-337r-f6w5/GHSA-hgvc-337r-f6w5.json
+++ b/advisories/unreviewed/2022/05/GHSA-hgvc-337r-f6w5/GHSA-hgvc-337r-f6w5.json
@@ -7,12 +7,8 @@
"CVE-2007-6160"
],
"details": "Cross-site scripting (XSS) vulnerability in index.php in Tilde CMS 4.x and earlier allows remote attackers to inject arbitrary web script or HTML via the aarstal parameter in a yeardetail action.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-hhpq-j479-x68h/GHSA-hhpq-j479-x68h.json b/advisories/unreviewed/2022/05/GHSA-hhpq-j479-x68h/GHSA-hhpq-j479-x68h.json
index 88931254f87..98a66b097fc 100644
--- a/advisories/unreviewed/2022/05/GHSA-hhpq-j479-x68h/GHSA-hhpq-j479-x68h.json
+++ b/advisories/unreviewed/2022/05/GHSA-hhpq-j479-x68h/GHSA-hhpq-j479-x68h.json
@@ -7,12 +7,8 @@
"CVE-2007-6012"
],
"details": "SQL injection vulnerability in SearchR.asp in DocuSafe 4.1.0 and 4.1.2 allows remote attackers to execute arbitrary SQL commands via the artnr parameter (aka the search section). NOTE: some of these details are obtained from third party information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-hhrv-j6cc-jr4p/GHSA-hhrv-j6cc-jr4p.json b/advisories/unreviewed/2022/05/GHSA-hhrv-j6cc-jr4p/GHSA-hhrv-j6cc-jr4p.json
index 77e5b0305eb..a797253f2e7 100644
--- a/advisories/unreviewed/2022/05/GHSA-hhrv-j6cc-jr4p/GHSA-hhrv-j6cc-jr4p.json
+++ b/advisories/unreviewed/2022/05/GHSA-hhrv-j6cc-jr4p/GHSA-hhrv-j6cc-jr4p.json
@@ -7,12 +7,8 @@
"CVE-2007-6015"
],
"details": "Stack-based buffer overflow in the send_mailslot function in nmbd in Samba 3.0.0 through 3.0.27a, when the \"domain logons\" option is enabled, allows remote attackers to execute arbitrary code via a GETDC mailslot request composed of a long GETDC string following an offset username in a SAMLOGON logon request.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-hj5h-m694-6v6q/GHSA-hj5h-m694-6v6q.json b/advisories/unreviewed/2022/05/GHSA-hj5h-m694-6v6q/GHSA-hj5h-m694-6v6q.json
index 5ae967ff6f6..30262b8ad2b 100644
--- a/advisories/unreviewed/2022/05/GHSA-hj5h-m694-6v6q/GHSA-hj5h-m694-6v6q.json
+++ b/advisories/unreviewed/2022/05/GHSA-hj5h-m694-6v6q/GHSA-hj5h-m694-6v6q.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-hjvf-7vx2-frwx/GHSA-hjvf-7vx2-frwx.json b/advisories/unreviewed/2022/05/GHSA-hjvf-7vx2-frwx/GHSA-hjvf-7vx2-frwx.json
index d2ef7ea9f8c..10e6ce89028 100644
--- a/advisories/unreviewed/2022/05/GHSA-hjvf-7vx2-frwx/GHSA-hjvf-7vx2-frwx.json
+++ b/advisories/unreviewed/2022/05/GHSA-hjvf-7vx2-frwx/GHSA-hjvf-7vx2-frwx.json
@@ -7,12 +7,8 @@
"CVE-2007-6120"
],
"details": "The Bluetooth SDP dissector Wireshark (formerly Ethereal) 0.99.2 to 0.99.6 allows remote attackers to cause a denial of service (infinite loop) via unknown vectors.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-hm64-99f5-q8f6/GHSA-hm64-99f5-q8f6.json b/advisories/unreviewed/2022/05/GHSA-hm64-99f5-q8f6/GHSA-hm64-99f5-q8f6.json
index 915440e7a17..573b2476aaa 100644
--- a/advisories/unreviewed/2022/05/GHSA-hm64-99f5-q8f6/GHSA-hm64-99f5-q8f6.json
+++ b/advisories/unreviewed/2022/05/GHSA-hm64-99f5-q8f6/GHSA-hm64-99f5-q8f6.json
@@ -7,12 +7,8 @@
"CVE-2007-5918"
],
"details": "Cross-site request forgery (CSRF) vulnerability in edit.php in the MS TopSites add-on for PHP-Nuke does not verify that the uname parameter matches the current account, which allows remote authenticated users to change arbitrary accounts or change the SiteTitleName field as an arbitrary user via a modified uname value in an edit action to modules.php.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-hmr5-2cr2-m4hv/GHSA-hmr5-2cr2-m4hv.json b/advisories/unreviewed/2022/05/GHSA-hmr5-2cr2-m4hv/GHSA-hmr5-2cr2-m4hv.json
index 17a560f0291..a7439eaade4 100644
--- a/advisories/unreviewed/2022/05/GHSA-hmr5-2cr2-m4hv/GHSA-hmr5-2cr2-m4hv.json
+++ b/advisories/unreviewed/2022/05/GHSA-hmr5-2cr2-m4hv/GHSA-hmr5-2cr2-m4hv.json
@@ -7,12 +7,8 @@
"CVE-2007-5981"
],
"details": "Lantronix SCS3200 does not properly handle public-key requests, which allows remote attackers to cause a denial of service (unresponsive device) via unspecified keyscan requests. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -32,9 +28,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "LOW",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-hmxx-vvw4-43vc/GHSA-hmxx-vvw4-43vc.json b/advisories/unreviewed/2022/05/GHSA-hmxx-vvw4-43vc/GHSA-hmxx-vvw4-43vc.json
index c78f9bd29eb..b19ea75f433 100644
--- a/advisories/unreviewed/2022/05/GHSA-hmxx-vvw4-43vc/GHSA-hmxx-vvw4-43vc.json
+++ b/advisories/unreviewed/2022/05/GHSA-hmxx-vvw4-43vc/GHSA-hmxx-vvw4-43vc.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-hpfx-wv7q-52qw/GHSA-hpfx-wv7q-52qw.json b/advisories/unreviewed/2022/05/GHSA-hpfx-wv7q-52qw/GHSA-hpfx-wv7q-52qw.json
index d042a350b8a..f076848bfdb 100644
--- a/advisories/unreviewed/2022/05/GHSA-hpfx-wv7q-52qw/GHSA-hpfx-wv7q-52qw.json
+++ b/advisories/unreviewed/2022/05/GHSA-hpfx-wv7q-52qw/GHSA-hpfx-wv7q-52qw.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-hpp8-r26f-qr9w/GHSA-hpp8-r26f-qr9w.json b/advisories/unreviewed/2022/05/GHSA-hpp8-r26f-qr9w/GHSA-hpp8-r26f-qr9w.json
index c3e90171ea3..f8677f8b597 100644
--- a/advisories/unreviewed/2022/05/GHSA-hpp8-r26f-qr9w/GHSA-hpp8-r26f-qr9w.json
+++ b/advisories/unreviewed/2022/05/GHSA-hpp8-r26f-qr9w/GHSA-hpp8-r26f-qr9w.json
@@ -7,12 +7,8 @@
"CVE-2007-6146"
],
"details": "Hitachi JP1/File Transmission Server/FTP 01-00 through 08-10-02 on Windows might allow remote attackers to cause a denial of service (service stop) via a \"specific file\" argument to an FTP command.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-hq77-gw5q-x5p4/GHSA-hq77-gw5q-x5p4.json b/advisories/unreviewed/2022/05/GHSA-hq77-gw5q-x5p4/GHSA-hq77-gw5q-x5p4.json
index eec85bd046a..bd8e76c5497 100644
--- a/advisories/unreviewed/2022/05/GHSA-hq77-gw5q-x5p4/GHSA-hq77-gw5q-x5p4.json
+++ b/advisories/unreviewed/2022/05/GHSA-hq77-gw5q-x5p4/GHSA-hq77-gw5q-x5p4.json
@@ -7,12 +7,8 @@
"CVE-2007-6100"
],
"details": "Cross-site scripting (XSS) vulnerability in libraries/auth/cookie.auth.lib.php in phpMyAdmin before 2.11.2.2, when logins are authenticated with the cookie auth_type, allows remote attackers to inject arbitrary web script or HTML via the convcharset parameter to index.php, a different vulnerability than CVE-2005-0992.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-hvf8-gjqf-gh84/GHSA-hvf8-gjqf-gh84.json b/advisories/unreviewed/2022/05/GHSA-hvf8-gjqf-gh84/GHSA-hvf8-gjqf-gh84.json
index 537690d02f5..b9e431bfeb9 100644
--- a/advisories/unreviewed/2022/05/GHSA-hvf8-gjqf-gh84/GHSA-hvf8-gjqf-gh84.json
+++ b/advisories/unreviewed/2022/05/GHSA-hvf8-gjqf-gh84/GHSA-hvf8-gjqf-gh84.json
@@ -7,12 +7,8 @@
"CVE-2007-6194"
],
"details": "Unspecified vulnerability in HP Select Identity 4.01 before 4.01.012 and 4.1x before 4.13.003 allows remote attackers to obtain unspecified access via unknown vectors.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -48,9 +44,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-hvm5-44j4-v5j4/GHSA-hvm5-44j4-v5j4.json b/advisories/unreviewed/2022/05/GHSA-hvm5-44j4-v5j4/GHSA-hvm5-44j4-v5j4.json
index 5593e3cfba3..bf6a7da2c40 100644
--- a/advisories/unreviewed/2022/05/GHSA-hvm5-44j4-v5j4/GHSA-hvm5-44j4-v5j4.json
+++ b/advisories/unreviewed/2022/05/GHSA-hvm5-44j4-v5j4/GHSA-hvm5-44j4-v5j4.json
@@ -7,12 +7,8 @@
"CVE-2019-1251"
],
"details": "An information disclosure vulnerability exists when DirectWrite improperly discloses the contents of its memory, aka 'DirectWrite Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1244, CVE-2019-1245.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "LOW",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-hvq9-frhw-562q/GHSA-hvq9-frhw-562q.json b/advisories/unreviewed/2022/05/GHSA-hvq9-frhw-562q/GHSA-hvq9-frhw-562q.json
index 06681ccde93..94121f31feb 100644
--- a/advisories/unreviewed/2022/05/GHSA-hvq9-frhw-562q/GHSA-hvq9-frhw-562q.json
+++ b/advisories/unreviewed/2022/05/GHSA-hvq9-frhw-562q/GHSA-hvq9-frhw-562q.json
@@ -7,12 +7,8 @@
"CVE-2007-6128"
],
"details": "SQL injection vulnerability in events.php in WorkingOnWeb 2.0.1400 allows remote attackers to execute arbitrary SQL commands via the idevent parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-hvvf-8784-846m/GHSA-hvvf-8784-846m.json b/advisories/unreviewed/2022/05/GHSA-hvvf-8784-846m/GHSA-hvvf-8784-846m.json
index 13fc5bf2f7a..eb274827c6e 100644
--- a/advisories/unreviewed/2022/05/GHSA-hvvf-8784-846m/GHSA-hvvf-8784-846m.json
+++ b/advisories/unreviewed/2022/05/GHSA-hvvf-8784-846m/GHSA-hvvf-8784-846m.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-hx3v-wmpr-r7fv/GHSA-hx3v-wmpr-r7fv.json b/advisories/unreviewed/2022/05/GHSA-hx3v-wmpr-r7fv/GHSA-hx3v-wmpr-r7fv.json
index ce852911e5c..e6c64224cb5 100644
--- a/advisories/unreviewed/2022/05/GHSA-hx3v-wmpr-r7fv/GHSA-hx3v-wmpr-r7fv.json
+++ b/advisories/unreviewed/2022/05/GHSA-hx3v-wmpr-r7fv/GHSA-hx3v-wmpr-r7fv.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-j2p4-5vr6-m8qq/GHSA-j2p4-5vr6-m8qq.json b/advisories/unreviewed/2022/05/GHSA-j2p4-5vr6-m8qq/GHSA-j2p4-5vr6-m8qq.json
index fb3949288d1..be09933b795 100644
--- a/advisories/unreviewed/2022/05/GHSA-j2p4-5vr6-m8qq/GHSA-j2p4-5vr6-m8qq.json
+++ b/advisories/unreviewed/2022/05/GHSA-j2p4-5vr6-m8qq/GHSA-j2p4-5vr6-m8qq.json
@@ -7,12 +7,8 @@
"CVE-2007-6119"
],
"details": "The DCP ETSI dissector in Wireshark (formerly Ethereal) 0.99.6 allows remote attackers to cause a denial of service (long loop and resource consumption) via unknown vectors.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -120,9 +116,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-j2r8-2vxg-pxvh/GHSA-j2r8-2vxg-pxvh.json b/advisories/unreviewed/2022/05/GHSA-j2r8-2vxg-pxvh/GHSA-j2r8-2vxg-pxvh.json
index 42c6e0eb799..87b84fca681 100644
--- a/advisories/unreviewed/2022/05/GHSA-j2r8-2vxg-pxvh/GHSA-j2r8-2vxg-pxvh.json
+++ b/advisories/unreviewed/2022/05/GHSA-j2r8-2vxg-pxvh/GHSA-j2r8-2vxg-pxvh.json
@@ -7,12 +7,8 @@
"CVE-2019-16216"
],
"details": "Zulip server before 2.0.5 incompletely validated the MIME types of uploaded files. A user who is logged into the server could upload files of certain types to mount a stored cross-site scripting attack on other logged-in users. On a Zulip server using the default local uploads backend, the attack is only effective against browsers lacking support for Content-Security-Policy such as Internet Explorer 11. On a Zulip server using the S3 uploads backend, the attack is confined to the origin of the configured S3 uploads hostname and cannot reach the Zulip server itself.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "LOW",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-j5f4-f637-3cpx/GHSA-j5f4-f637-3cpx.json b/advisories/unreviewed/2022/05/GHSA-j5f4-f637-3cpx/GHSA-j5f4-f637-3cpx.json
index 0ddc00943a9..5da61868a92 100644
--- a/advisories/unreviewed/2022/05/GHSA-j5f4-f637-3cpx/GHSA-j5f4-f637-3cpx.json
+++ b/advisories/unreviewed/2022/05/GHSA-j5f4-f637-3cpx/GHSA-j5f4-f637-3cpx.json
@@ -7,12 +7,8 @@
"CVE-2019-1216"
],
"details": "An information disclosure vulnerability exists when DirectX improperly handles objects in memory, aka 'DirectX Information Disclosure Vulnerability'.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "LOW",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-j6q8-cg8v-gwjc/GHSA-j6q8-cg8v-gwjc.json b/advisories/unreviewed/2022/05/GHSA-j6q8-cg8v-gwjc/GHSA-j6q8-cg8v-gwjc.json
index 0e772973b47..04e1208ece9 100644
--- a/advisories/unreviewed/2022/05/GHSA-j6q8-cg8v-gwjc/GHSA-j6q8-cg8v-gwjc.json
+++ b/advisories/unreviewed/2022/05/GHSA-j6q8-cg8v-gwjc/GHSA-j6q8-cg8v-gwjc.json
@@ -7,12 +7,8 @@
"CVE-2019-9395"
],
"details": "In Bluetooth, there is possible controlled termination due to a missing bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-116267405",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-j6xj-3fcj-qfv2/GHSA-j6xj-3fcj-qfv2.json b/advisories/unreviewed/2022/05/GHSA-j6xj-3fcj-qfv2/GHSA-j6xj-3fcj-qfv2.json
index 60503701706..cf61ae626ce 100644
--- a/advisories/unreviewed/2022/05/GHSA-j6xj-3fcj-qfv2/GHSA-j6xj-3fcj-qfv2.json
+++ b/advisories/unreviewed/2022/05/GHSA-j6xj-3fcj-qfv2/GHSA-j6xj-3fcj-qfv2.json
@@ -7,12 +7,8 @@
"CVE-2007-5979"
],
"details": "Cross-site scripting (XSS) vulnerability in download_plugin.php3 in F5 Firepass 4100 SSL VPN 5.4 through 5.5.2 and 6.0 through 6.0.1 allows remote attackers to inject arbitrary web script or HTML via the backurl parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-j8hp-f3xj-cw3f/GHSA-j8hp-f3xj-cw3f.json b/advisories/unreviewed/2022/05/GHSA-j8hp-f3xj-cw3f/GHSA-j8hp-f3xj-cw3f.json
index 7023c1559e5..cf75a0ef8ee 100644
--- a/advisories/unreviewed/2022/05/GHSA-j8hp-f3xj-cw3f/GHSA-j8hp-f3xj-cw3f.json
+++ b/advisories/unreviewed/2022/05/GHSA-j8hp-f3xj-cw3f/GHSA-j8hp-f3xj-cw3f.json
@@ -7,12 +7,8 @@
"CVE-2007-6004"
],
"details": "Multiple SQL injection vulnerabilities in index.php in Toko Instan 7.6 allow remote attackers to execute arbitrary SQL commands via (1) the id parameter in an artikel action or (2) the katid parameter in a produk action.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-j979-qq9c-28r6/GHSA-j979-qq9c-28r6.json b/advisories/unreviewed/2022/05/GHSA-j979-qq9c-28r6/GHSA-j979-qq9c-28r6.json
index f66bdf5d0f5..227634f8e76 100644
--- a/advisories/unreviewed/2022/05/GHSA-j979-qq9c-28r6/GHSA-j979-qq9c-28r6.json
+++ b/advisories/unreviewed/2022/05/GHSA-j979-qq9c-28r6/GHSA-j979-qq9c-28r6.json
@@ -7,12 +7,8 @@
"CVE-2007-6063"
],
"details": "Buffer overflow in the isdn_net_setcfg function in isdn_net.c in Linux kernel 2.6.23 allows local users to have an unknown impact via a crafted argument to the isdn_ioctl function.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-j9c6-4m8h-r73j/GHSA-j9c6-4m8h-r73j.json b/advisories/unreviewed/2022/05/GHSA-j9c6-4m8h-r73j/GHSA-j9c6-4m8h-r73j.json
index 9130acfbdb4..bc180848271 100644
--- a/advisories/unreviewed/2022/05/GHSA-j9c6-4m8h-r73j/GHSA-j9c6-4m8h-r73j.json
+++ b/advisories/unreviewed/2022/05/GHSA-j9c6-4m8h-r73j/GHSA-j9c6-4m8h-r73j.json
@@ -7,12 +7,8 @@
"CVE-2019-16901"
],
"details": "Advantech WebAccess/HMI Designer 2.1.9.31 has Exception Handler Chain corruption starting at Unknown Symbol @ 0x0000000000000000 called from ntdll!RtlRaiseStatus+0x00000000000000b4.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-jcf4-gv32-hf7c/GHSA-jcf4-gv32-hf7c.json b/advisories/unreviewed/2022/05/GHSA-jcf4-gv32-hf7c/GHSA-jcf4-gv32-hf7c.json
index 4995157911d..0a926bc608f 100644
--- a/advisories/unreviewed/2022/05/GHSA-jcf4-gv32-hf7c/GHSA-jcf4-gv32-hf7c.json
+++ b/advisories/unreviewed/2022/05/GHSA-jcf4-gv32-hf7c/GHSA-jcf4-gv32-hf7c.json
@@ -7,12 +7,8 @@
"CVE-2007-6188"
],
"details": "Multiple directory traversal vulnerabilities in TuMusika Evolution 1.7R5 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the language parameter to (1) languages_n.php, (2) languages_f.php, or (3) languages.php in inc/; and (4) allow remote attackers to read arbitrary local files via a .. (dot dot) in the uri parameter to frames/nogui/sc_download.php.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-jcph-f36w-q69j/GHSA-jcph-f36w-q69j.json b/advisories/unreviewed/2022/05/GHSA-jcph-f36w-q69j/GHSA-jcph-f36w-q69j.json
index 8635ccdac97..2a288a47513 100644
--- a/advisories/unreviewed/2022/05/GHSA-jcph-f36w-q69j/GHSA-jcph-f36w-q69j.json
+++ b/advisories/unreviewed/2022/05/GHSA-jcph-f36w-q69j/GHSA-jcph-f36w-q69j.json
@@ -7,12 +7,8 @@
"CVE-2007-6149"
],
"details": "Multiple integer overflows in the Edge server in Adobe Flash Media Server 2 before 2.0.5, and Connect Enterprise Server 6 before SP3, allow remote attackers to execute arbitrary code via a Real Time Message Protocol (RTMP) message with a crafted integer field that is used for allocation.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -60,9 +56,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-jcrw-j44c-w7hp/GHSA-jcrw-j44c-w7hp.json b/advisories/unreviewed/2022/05/GHSA-jcrw-j44c-w7hp/GHSA-jcrw-j44c-w7hp.json
index 4c91672ad7b..a0963eecd3c 100644
--- a/advisories/unreviewed/2022/05/GHSA-jcrw-j44c-w7hp/GHSA-jcrw-j44c-w7hp.json
+++ b/advisories/unreviewed/2022/05/GHSA-jcrw-j44c-w7hp/GHSA-jcrw-j44c-w7hp.json
@@ -7,12 +7,8 @@
"CVE-2007-6001"
],
"details": "Multiple cross-site scripting (XSS) vulnerabilities in index.php in Bandersnatch 0.4 allow remote attackers to inject arbitrary web script or HTML via the (1) func or (2) date parameter, or the jid parameter in a (3) log or (4) user action, a different vulnerability than CVE-2007-3910.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-jgjc-v4px-jhvp/GHSA-jgjc-v4px-jhvp.json b/advisories/unreviewed/2022/05/GHSA-jgjc-v4px-jhvp/GHSA-jgjc-v4px-jhvp.json
index 2efd60a7919..ab49f627faf 100644
--- a/advisories/unreviewed/2022/05/GHSA-jgjc-v4px-jhvp/GHSA-jgjc-v4px-jhvp.json
+++ b/advisories/unreviewed/2022/05/GHSA-jgjc-v4px-jhvp/GHSA-jgjc-v4px-jhvp.json
@@ -7,12 +7,8 @@
"CVE-2007-6115"
],
"details": "Buffer overflow in the ANSI MAP dissector for Wireshark (formerly Ethereal) 0.99.5 to 0.99.6, when running on unspecified platforms, allows remote attackers to cause a denial of service and possibly execute arbitrary code via unknown vectors.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-jh8q-56fp-xqg3/GHSA-jh8q-56fp-xqg3.json b/advisories/unreviewed/2022/05/GHSA-jh8q-56fp-xqg3/GHSA-jh8q-56fp-xqg3.json
index 42ca06ac688..d4dfb03f428 100644
--- a/advisories/unreviewed/2022/05/GHSA-jh8q-56fp-xqg3/GHSA-jh8q-56fp-xqg3.json
+++ b/advisories/unreviewed/2022/05/GHSA-jh8q-56fp-xqg3/GHSA-jh8q-56fp-xqg3.json
@@ -7,12 +7,8 @@
"CVE-2019-16900"
],
"details": "Advantech WebAccess/HMI Designer 2.1.9.31 has a User Mode Write AV starting at MSVCR90!memcpy+0x000000000000015c.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-jhjm-hxhv-h29w/GHSA-jhjm-hxhv-h29w.json b/advisories/unreviewed/2022/05/GHSA-jhjm-hxhv-h29w/GHSA-jhjm-hxhv-h29w.json
index 50def2265f6..b973f5f67b3 100644
--- a/advisories/unreviewed/2022/05/GHSA-jhjm-hxhv-h29w/GHSA-jhjm-hxhv-h29w.json
+++ b/advisories/unreviewed/2022/05/GHSA-jhjm-hxhv-h29w/GHSA-jhjm-hxhv-h29w.json
@@ -7,12 +7,8 @@
"CVE-2007-6190"
],
"details": "The HTTP daemon in the Cisco Unified IP Phone, when the Extension Mobility feature is enabled, allows remote authenticated users of other phones associated with the same CUCM server to eavesdrop on the physical environment via a CiscoIPPhoneExecute message containing a URL attribute of an ExecuteItem element that specifies a Real-Time Transport Protocol (RTP) audio stream.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-jj68-3m94-5qj6/GHSA-jj68-3m94-5qj6.json b/advisories/unreviewed/2022/05/GHSA-jj68-3m94-5qj6/GHSA-jj68-3m94-5qj6.json
index 7f9673d8713..f25f5d11c86 100644
--- a/advisories/unreviewed/2022/05/GHSA-jj68-3m94-5qj6/GHSA-jj68-3m94-5qj6.json
+++ b/advisories/unreviewed/2022/05/GHSA-jj68-3m94-5qj6/GHSA-jj68-3m94-5qj6.json
@@ -7,12 +7,8 @@
"CVE-2007-6216"
],
"details": "Race condition in the Fibre Channel protocol (fcp) driver and Devices filesystem (devfs) in Sun Solaris 10 allows local users to cause a denial of service (system hang) via some programs that access hardware resources, as demonstrated by the (1) cfgadm and (2) format programs.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-jjch-96hp-496c/GHSA-jjch-96hp-496c.json b/advisories/unreviewed/2022/05/GHSA-jjch-96hp-496c/GHSA-jjch-96hp-496c.json
index d880e357beb..32c46393315 100644
--- a/advisories/unreviewed/2022/05/GHSA-jjch-96hp-496c/GHSA-jjch-96hp-496c.json
+++ b/advisories/unreviewed/2022/05/GHSA-jjch-96hp-496c/GHSA-jjch-96hp-496c.json
@@ -7,12 +7,8 @@
"CVE-2007-6145"
],
"details": "Unspecified vulnerability in Hitachi JP1/File Transmission Server/FTP 01-00 through 08-10-01 allows remote attackers to bypass authentication and \"view files\" via unspecified vectors.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-jjr7-489f-2ccr/GHSA-jjr7-489f-2ccr.json b/advisories/unreviewed/2022/05/GHSA-jjr7-489f-2ccr/GHSA-jjr7-489f-2ccr.json
index 97347736646..f2d34c9d438 100644
--- a/advisories/unreviewed/2022/05/GHSA-jjr7-489f-2ccr/GHSA-jjr7-489f-2ccr.json
+++ b/advisories/unreviewed/2022/05/GHSA-jjr7-489f-2ccr/GHSA-jjr7-489f-2ccr.json
@@ -7,12 +7,8 @@
"CVE-2007-6038"
],
"details": "PHP remote file inclusion vulnerability in xajax_functions.php in the JUser (com_juser) 1.0.14 component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-jmjc-rh8r-gw8j/GHSA-jmjc-rh8r-gw8j.json b/advisories/unreviewed/2022/05/GHSA-jmjc-rh8r-gw8j/GHSA-jmjc-rh8r-gw8j.json
index f68b7e6f58c..7e8000373f3 100644
--- a/advisories/unreviewed/2022/05/GHSA-jmjc-rh8r-gw8j/GHSA-jmjc-rh8r-gw8j.json
+++ b/advisories/unreviewed/2022/05/GHSA-jmjc-rh8r-gw8j/GHSA-jmjc-rh8r-gw8j.json
@@ -7,12 +7,8 @@
"CVE-2019-1284"
],
"details": "An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka 'DirectX Elevation of Privilege Vulnerability'.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-jpvw-hmxx-xwr3/GHSA-jpvw-hmxx-xwr3.json b/advisories/unreviewed/2022/05/GHSA-jpvw-hmxx-xwr3/GHSA-jpvw-hmxx-xwr3.json
index d1e28664aa5..a0edb526302 100644
--- a/advisories/unreviewed/2022/05/GHSA-jpvw-hmxx-xwr3/GHSA-jpvw-hmxx-xwr3.json
+++ b/advisories/unreviewed/2022/05/GHSA-jpvw-hmxx-xwr3/GHSA-jpvw-hmxx-xwr3.json
@@ -7,12 +7,8 @@
"CVE-2007-6062"
],
"details": "irc-channel.c in ngIRCd before 0.10.3 allows remote attackers to cause a denial of service (crash) via a JOIN command without a channel argument.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-jqvv-p84x-4w7w/GHSA-jqvv-p84x-4w7w.json b/advisories/unreviewed/2022/05/GHSA-jqvv-p84x-4w7w/GHSA-jqvv-p84x-4w7w.json
index 13786f265c9..db1dbfe54f0 100644
--- a/advisories/unreviewed/2022/05/GHSA-jqvv-p84x-4w7w/GHSA-jqvv-p84x-4w7w.json
+++ b/advisories/unreviewed/2022/05/GHSA-jqvv-p84x-4w7w/GHSA-jqvv-p84x-4w7w.json
@@ -7,12 +7,8 @@
"CVE-2019-1295"
],
"details": "A remote code execution vulnerability exists in Microsoft SharePoint where APIs aren't properly protected from unsafe data input, aka 'Microsoft SharePoint Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1257, CVE-2019-1296.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-jv68-xw7p-xh9p/GHSA-jv68-xw7p-xh9p.json b/advisories/unreviewed/2022/05/GHSA-jv68-xw7p-xh9p/GHSA-jv68-xw7p-xh9p.json
index 46afc202e17..4401235f9a9 100644
--- a/advisories/unreviewed/2022/05/GHSA-jv68-xw7p-xh9p/GHSA-jv68-xw7p-xh9p.json
+++ b/advisories/unreviewed/2022/05/GHSA-jv68-xw7p-xh9p/GHSA-jv68-xw7p-xh9p.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -27,9 +25,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-jvmr-3jh4-3fqq/GHSA-jvmr-3jh4-3fqq.json b/advisories/unreviewed/2022/05/GHSA-jvmr-3jh4-3fqq/GHSA-jvmr-3jh4-3fqq.json
index 75e433fb39d..387d0145026 100644
--- a/advisories/unreviewed/2022/05/GHSA-jvmr-3jh4-3fqq/GHSA-jvmr-3jh4-3fqq.json
+++ b/advisories/unreviewed/2022/05/GHSA-jvmr-3jh4-3fqq/GHSA-jvmr-3jh4-3fqq.json
@@ -7,12 +7,8 @@
"CVE-2017-18608"
],
"details": "The spotim-comments plugin before 4.0.4 for WordPress has multiple XSS issues.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-jvpc-f4hv-p966/GHSA-jvpc-f4hv-p966.json b/advisories/unreviewed/2022/05/GHSA-jvpc-f4hv-p966/GHSA-jvpc-f4hv-p966.json
index 1cc179eae37..cc94ace456d 100644
--- a/advisories/unreviewed/2022/05/GHSA-jvpc-f4hv-p966/GHSA-jvpc-f4hv-p966.json
+++ b/advisories/unreviewed/2022/05/GHSA-jvpc-f4hv-p966/GHSA-jvpc-f4hv-p966.json
@@ -7,12 +7,8 @@
"CVE-2007-6104"
],
"details": "Cross-site scripting (XSS) vulnerability in the Instant Web Publishing feature in FileMaker Pro 7 and 8, Server 7 and 8, and Developer 7 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-jvq3-qvh3-fg4x/GHSA-jvq3-qvh3-fg4x.json b/advisories/unreviewed/2022/05/GHSA-jvq3-qvh3-fg4x/GHSA-jvq3-qvh3-fg4x.json
index c4eea7845ea..03ff85be47d 100644
--- a/advisories/unreviewed/2022/05/GHSA-jvq3-qvh3-fg4x/GHSA-jvq3-qvh3-fg4x.json
+++ b/advisories/unreviewed/2022/05/GHSA-jvq3-qvh3-fg4x/GHSA-jvq3-qvh3-fg4x.json
@@ -7,12 +7,8 @@
"CVE-2007-6209"
],
"details": "Util/difflog.pl in zsh 4.3.4 allows local users to overwrite arbitrary files via a symlink attack on temporary files.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -52,9 +48,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-jx2v-j353-9rr5/GHSA-jx2v-j353-9rr5.json b/advisories/unreviewed/2022/05/GHSA-jx2v-j353-9rr5/GHSA-jx2v-j353-9rr5.json
index 4352f4fb1d0..853e9d3df9b 100644
--- a/advisories/unreviewed/2022/05/GHSA-jx2v-j353-9rr5/GHSA-jx2v-j353-9rr5.json
+++ b/advisories/unreviewed/2022/05/GHSA-jx2v-j353-9rr5/GHSA-jx2v-j353-9rr5.json
@@ -7,12 +7,8 @@
"CVE-2007-6017"
],
"details": "The PVATLCalendar.PVCalendar.1 ActiveX control in pvcalendar.ocx in the scheduler component in the Media Server in Symantec Backup Exec for Windows Server (BEWS) 11d 11.0.6235 and 11.0.7170, and 12.0 12.0.1364, exposes the unsafe Save method, which allows remote attackers to cause a denial of service (browser crash), or create or overwrite arbitrary files, via string values of the (1) _DOWText0, (2) _DOWText1, (3) _DOWText2, (4) _DOWText3, (5) _DOWText4, (6) _DOWText5, (7) _DOWText6, (8) _MonthText0, (9) _MonthText1, (10) _MonthText2, (11) _MonthText3, (12) _MonthText4, (13) _MonthText5, (14) _MonthText6, (15) _MonthText7, (16) _MonthText8, (17) _MonthText9, (18) _MonthText10, and (19) _MonthText11 properties. NOTE: the vendor states \"Authenticated user involvement required,\" but authentication is not needed to attack a client machine that loads this control.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-m2p3-h7m7-xg45/GHSA-m2p3-h7m7-xg45.json b/advisories/unreviewed/2022/05/GHSA-m2p3-h7m7-xg45/GHSA-m2p3-h7m7-xg45.json
index f3cac70d9f5..a4e5a70456f 100644
--- a/advisories/unreviewed/2022/05/GHSA-m2p3-h7m7-xg45/GHSA-m2p3-h7m7-xg45.json
+++ b/advisories/unreviewed/2022/05/GHSA-m2p3-h7m7-xg45/GHSA-m2p3-h7m7-xg45.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-m2r4-595q-cv76/GHSA-m2r4-595q-cv76.json b/advisories/unreviewed/2022/05/GHSA-m2r4-595q-cv76/GHSA-m2r4-595q-cv76.json
index e8c12f33de9..c49b826e3f1 100644
--- a/advisories/unreviewed/2022/05/GHSA-m2r4-595q-cv76/GHSA-m2r4-595q-cv76.json
+++ b/advisories/unreviewed/2022/05/GHSA-m2r4-595q-cv76/GHSA-m2r4-595q-cv76.json
@@ -7,12 +7,8 @@
"CVE-2007-6049"
],
"details": "Unspecified vulnerability in the SSL LOAD GSKIT action in IBM DB2 UDB 9.1 before Fixpak 4 has unknown impact and attack vectors, involving a call to dlopen when the effective uid is root.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -44,9 +40,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-m35q-rjh7-mvv9/GHSA-m35q-rjh7-mvv9.json b/advisories/unreviewed/2022/05/GHSA-m35q-rjh7-mvv9/GHSA-m35q-rjh7-mvv9.json
index c3256bd0dad..1ca0ae1559f 100644
--- a/advisories/unreviewed/2022/05/GHSA-m35q-rjh7-mvv9/GHSA-m35q-rjh7-mvv9.json
+++ b/advisories/unreviewed/2022/05/GHSA-m35q-rjh7-mvv9/GHSA-m35q-rjh7-mvv9.json
@@ -7,12 +7,8 @@
"CVE-2019-2139"
],
"details": "In libxaac, there is a possible out of bounds read due to a missing bounds check. This could lead to information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-117610049",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-m3fg-79jj-j423/GHSA-m3fg-79jj-j423.json b/advisories/unreviewed/2022/05/GHSA-m3fg-79jj-j423/GHSA-m3fg-79jj-j423.json
index 4db1d28e93e..b942733554b 100644
--- a/advisories/unreviewed/2022/05/GHSA-m3fg-79jj-j423/GHSA-m3fg-79jj-j423.json
+++ b/advisories/unreviewed/2022/05/GHSA-m3fg-79jj-j423/GHSA-m3fg-79jj-j423.json
@@ -7,12 +7,8 @@
"CVE-2015-9384"
],
"details": "The relevant plugin before 1.0.8 for WordPress has XSS.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-m6p5-m5xh-8xgm/GHSA-m6p5-m5xh-8xgm.json b/advisories/unreviewed/2022/05/GHSA-m6p5-m5xh-8xgm/GHSA-m6p5-m5xh-8xgm.json
index 87a414539e3..17f46cb6762 100644
--- a/advisories/unreviewed/2022/05/GHSA-m6p5-m5xh-8xgm/GHSA-m6p5-m5xh-8xgm.json
+++ b/advisories/unreviewed/2022/05/GHSA-m6p5-m5xh-8xgm/GHSA-m6p5-m5xh-8xgm.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-m75m-4638-76jj/GHSA-m75m-4638-76jj.json b/advisories/unreviewed/2022/05/GHSA-m75m-4638-76jj/GHSA-m75m-4638-76jj.json
index c7d8e66c66a..48460ab83ce 100644
--- a/advisories/unreviewed/2022/05/GHSA-m75m-4638-76jj/GHSA-m75m-4638-76jj.json
+++ b/advisories/unreviewed/2022/05/GHSA-m75m-4638-76jj/GHSA-m75m-4638-76jj.json
@@ -7,12 +7,8 @@
"CVE-2007-6136"
],
"details": "Multiple cross-site scripting (XSS) vulnerabilities in index.php in M2Scripts MySpace Scripts Poll Creator allow remote attackers to inject arbitrary web script or HTML via the (1) title, (2) intro, and (3) question parameters, and (4) unspecified answer parameters, in a create_new action. NOTE: some of these details are obtained from third party information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-m7c5-9grq-3jqp/GHSA-m7c5-9grq-3jqp.json b/advisories/unreviewed/2022/05/GHSA-m7c5-9grq-3jqp/GHSA-m7c5-9grq-3jqp.json
index d2bc914155a..f6e6edb8cea 100644
--- a/advisories/unreviewed/2022/05/GHSA-m7c5-9grq-3jqp/GHSA-m7c5-9grq-3jqp.json
+++ b/advisories/unreviewed/2022/05/GHSA-m7c5-9grq-3jqp/GHSA-m7c5-9grq-3jqp.json
@@ -7,12 +7,8 @@
"CVE-2007-5935"
],
"details": "Stack-based buffer overflow in hpc.c in dvips in teTeX and TeXlive 2007 and earlier allows user-assisted attackers to execute arbitrary code via a DVI file with a long href tag.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-m7fp-prqm-7g83/GHSA-m7fp-prqm-7g83.json b/advisories/unreviewed/2022/05/GHSA-m7fp-prqm-7g83/GHSA-m7fp-prqm-7g83.json
index 8fc9d0df6a7..277b9ad8c41 100644
--- a/advisories/unreviewed/2022/05/GHSA-m7fp-prqm-7g83/GHSA-m7fp-prqm-7g83.json
+++ b/advisories/unreviewed/2022/05/GHSA-m7fp-prqm-7g83/GHSA-m7fp-prqm-7g83.json
@@ -7,12 +7,8 @@
"CVE-2007-6133"
],
"details": "PHP remote file inclusion vulnerability in admin/kfm/initialise.php in DevMass Shopping Cart 1.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the kfm_base_path parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-m869-gqp5-gp25/GHSA-m869-gqp5-gp25.json b/advisories/unreviewed/2022/05/GHSA-m869-gqp5-gp25/GHSA-m869-gqp5-gp25.json
index 030c5f6fea5..45e77165e31 100644
--- a/advisories/unreviewed/2022/05/GHSA-m869-gqp5-gp25/GHSA-m869-gqp5-gp25.json
+++ b/advisories/unreviewed/2022/05/GHSA-m869-gqp5-gp25/GHSA-m869-gqp5-gp25.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-m8c4-xqv6-7xvq/GHSA-m8c4-xqv6-7xvq.json b/advisories/unreviewed/2022/05/GHSA-m8c4-xqv6-7xvq/GHSA-m8c4-xqv6-7xvq.json
index 3792e33c952..712795f710c 100644
--- a/advisories/unreviewed/2022/05/GHSA-m8c4-xqv6-7xvq/GHSA-m8c4-xqv6-7xvq.json
+++ b/advisories/unreviewed/2022/05/GHSA-m8c4-xqv6-7xvq/GHSA-m8c4-xqv6-7xvq.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-m8w7-p4mm-8fvq/GHSA-m8w7-p4mm-8fvq.json b/advisories/unreviewed/2022/05/GHSA-m8w7-p4mm-8fvq/GHSA-m8w7-p4mm-8fvq.json
index ab944d6a39a..a4d0a736ce7 100644
--- a/advisories/unreviewed/2022/05/GHSA-m8w7-p4mm-8fvq/GHSA-m8w7-p4mm-8fvq.json
+++ b/advisories/unreviewed/2022/05/GHSA-m8w7-p4mm-8fvq/GHSA-m8w7-p4mm-8fvq.json
@@ -7,12 +7,8 @@
"CVE-2019-8368"
],
"details": "OpenEMR v5.0.1-6 allows XSS.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-m94w-7wg8-j43q/GHSA-m94w-7wg8-j43q.json b/advisories/unreviewed/2022/05/GHSA-m94w-7wg8-j43q/GHSA-m94w-7wg8-j43q.json
index 61adcb2dc93..8a6779f2379 100644
--- a/advisories/unreviewed/2022/05/GHSA-m94w-7wg8-j43q/GHSA-m94w-7wg8-j43q.json
+++ b/advisories/unreviewed/2022/05/GHSA-m94w-7wg8-j43q/GHSA-m94w-7wg8-j43q.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-mcqx-w3j9-p34h/GHSA-mcqx-w3j9-p34h.json b/advisories/unreviewed/2022/05/GHSA-mcqx-w3j9-p34h/GHSA-mcqx-w3j9-p34h.json
index c77d40028f8..884afae3e2c 100644
--- a/advisories/unreviewed/2022/05/GHSA-mcqx-w3j9-p34h/GHSA-mcqx-w3j9-p34h.json
+++ b/advisories/unreviewed/2022/05/GHSA-mcqx-w3j9-p34h/GHSA-mcqx-w3j9-p34h.json
@@ -7,12 +7,8 @@
"CVE-2007-6170"
],
"details": "SQL injection vulnerability in the Call Detail Record Postgres logging engine (cdr_pgsql) in Asterisk 1.4.x before 1.4.15, 1.2.x before 1.2.25, B.x before B.2.3.4, and C.x before C.1.0-beta6 allows remote authenticated users to execute arbitrary SQL commands via (1) ANI and (2) DNIS arguments.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-mf6p-mrq3-gvpc/GHSA-mf6p-mrq3-gvpc.json b/advisories/unreviewed/2022/05/GHSA-mf6p-mrq3-gvpc/GHSA-mf6p-mrq3-gvpc.json
index 1a3eeb2575e..52dc5f1356d 100644
--- a/advisories/unreviewed/2022/05/GHSA-mf6p-mrq3-gvpc/GHSA-mf6p-mrq3-gvpc.json
+++ b/advisories/unreviewed/2022/05/GHSA-mf6p-mrq3-gvpc/GHSA-mf6p-mrq3-gvpc.json
@@ -7,12 +7,8 @@
"CVE-2007-6185"
],
"details": "Directory traversal vulnerability in users/files.php in Eurologon CMS allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter in a download action, as demonstrated by a certain PHP file containing database credentials.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-mfjg-5h64-2j5w/GHSA-mfjg-5h64-2j5w.json b/advisories/unreviewed/2022/05/GHSA-mfjg-5h64-2j5w/GHSA-mfjg-5h64-2j5w.json
index 8c7025f531b..4c2dbf89435 100644
--- a/advisories/unreviewed/2022/05/GHSA-mfjg-5h64-2j5w/GHSA-mfjg-5h64-2j5w.json
+++ b/advisories/unreviewed/2022/05/GHSA-mfjg-5h64-2j5w/GHSA-mfjg-5h64-2j5w.json
@@ -7,12 +7,8 @@
"CVE-2007-6163"
],
"details": "SQL injection vulnerability in admin/index2.asp in GOUAE DWD Realty allows remote attackers to execute arbitrary SQL commands via the pword (aka Password) parameter. NOTE: some of these details are obtained from third party information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-mfmg-j678-28xm/GHSA-mfmg-j678-28xm.json b/advisories/unreviewed/2022/05/GHSA-mfmg-j678-28xm/GHSA-mfmg-j678-28xm.json
index 71898307efa..28a9e97e155 100644
--- a/advisories/unreviewed/2022/05/GHSA-mfmg-j678-28xm/GHSA-mfmg-j678-28xm.json
+++ b/advisories/unreviewed/2022/05/GHSA-mfmg-j678-28xm/GHSA-mfmg-j678-28xm.json
@@ -7,12 +7,8 @@
"CVE-2007-5846"
],
"details": "The SNMP agent (snmp_agent.c) in net-snmp before 5.4.1 allows remote attackers to cause a denial of service (CPU and memory consumption) via a GETBULK request with a large max-repeaters value.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -136,9 +132,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-mfw2-9hw6-j862/GHSA-mfw2-9hw6-j862.json b/advisories/unreviewed/2022/05/GHSA-mfw2-9hw6-j862/GHSA-mfw2-9hw6-j862.json
index dc138f02df5..8c19dac20a4 100644
--- a/advisories/unreviewed/2022/05/GHSA-mfw2-9hw6-j862/GHSA-mfw2-9hw6-j862.json
+++ b/advisories/unreviewed/2022/05/GHSA-mfw2-9hw6-j862/GHSA-mfw2-9hw6-j862.json
@@ -7,12 +7,8 @@
"CVE-2015-9393"
],
"details": "The users-ultra plugin before 1.5.63 for WordPress has XSS via the p_desc parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "LOW",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-mfxx-2mgm-m56x/GHSA-mfxx-2mgm-m56x.json b/advisories/unreviewed/2022/05/GHSA-mfxx-2mgm-m56x/GHSA-mfxx-2mgm-m56x.json
index 433a506ebb6..17b213afeb9 100644
--- a/advisories/unreviewed/2022/05/GHSA-mfxx-2mgm-m56x/GHSA-mfxx-2mgm-m56x.json
+++ b/advisories/unreviewed/2022/05/GHSA-mfxx-2mgm-m56x/GHSA-mfxx-2mgm-m56x.json
@@ -7,12 +7,8 @@
"CVE-2007-5952"
],
"details": "Cross-site scripting (XSS) vulnerability in admin/index.php in Helios Calendar 1.2.1 Beta allows remote attackers to inject arbitrary web script or HTML via the username parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-mg5q-vf65-gq3m/GHSA-mg5q-vf65-gq3m.json b/advisories/unreviewed/2022/05/GHSA-mg5q-vf65-gq3m/GHSA-mg5q-vf65-gq3m.json
index e3c07c04fb7..ab8c1cb8ecd 100644
--- a/advisories/unreviewed/2022/05/GHSA-mg5q-vf65-gq3m/GHSA-mg5q-vf65-gq3m.json
+++ b/advisories/unreviewed/2022/05/GHSA-mg5q-vf65-gq3m/GHSA-mg5q-vf65-gq3m.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-mg98-h89p-whc8/GHSA-mg98-h89p-whc8.json b/advisories/unreviewed/2022/05/GHSA-mg98-h89p-whc8/GHSA-mg98-h89p-whc8.json
index 7dd3136cb8c..f790a5aa263 100644
--- a/advisories/unreviewed/2022/05/GHSA-mg98-h89p-whc8/GHSA-mg98-h89p-whc8.json
+++ b/advisories/unreviewed/2022/05/GHSA-mg98-h89p-whc8/GHSA-mg98-h89p-whc8.json
@@ -7,12 +7,8 @@
"CVE-2007-5843"
],
"details": "PHP remote file inclusion vulnerability in includes/common.php in scWiki 1.0 Beta 2 allows remote attackers to execute arbitrary PHP code via a URL in the pathdot parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-mgf9-3fp9-mhfh/GHSA-mgf9-3fp9-mhfh.json b/advisories/unreviewed/2022/05/GHSA-mgf9-3fp9-mhfh/GHSA-mgf9-3fp9-mhfh.json
index 6c72d2385e0..4b613a26cb9 100644
--- a/advisories/unreviewed/2022/05/GHSA-mgf9-3fp9-mhfh/GHSA-mgf9-3fp9-mhfh.json
+++ b/advisories/unreviewed/2022/05/GHSA-mgf9-3fp9-mhfh/GHSA-mgf9-3fp9-mhfh.json
@@ -7,12 +7,8 @@
"CVE-2019-1278"
],
"details": "An elevation of privilege vulnerability exists in the way that the unistore.dll handles objects in memory, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1215, CVE-2019-1253, CVE-2019-1303.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-mgm8-hx5r-428f/GHSA-mgm8-hx5r-428f.json b/advisories/unreviewed/2022/05/GHSA-mgm8-hx5r-428f/GHSA-mgm8-hx5r-428f.json
index 7222e5d5344..91729d6996e 100644
--- a/advisories/unreviewed/2022/05/GHSA-mgm8-hx5r-428f/GHSA-mgm8-hx5r-428f.json
+++ b/advisories/unreviewed/2022/05/GHSA-mgm8-hx5r-428f/GHSA-mgm8-hx5r-428f.json
@@ -7,12 +7,8 @@
"CVE-2007-5912"
],
"details": "SQL injection vulnerability in mailer.php in jPORTAL 2 allows remote attackers to execute arbitrary SQL commands via the to parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-mgxf-vcjq-jp2v/GHSA-mgxf-vcjq-jp2v.json b/advisories/unreviewed/2022/05/GHSA-mgxf-vcjq-jp2v/GHSA-mgxf-vcjq-jp2v.json
index 8027d4a649a..15e829c0d2b 100644
--- a/advisories/unreviewed/2022/05/GHSA-mgxf-vcjq-jp2v/GHSA-mgxf-vcjq-jp2v.json
+++ b/advisories/unreviewed/2022/05/GHSA-mgxf-vcjq-jp2v/GHSA-mgxf-vcjq-jp2v.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-mj48-h3vq-rr5x/GHSA-mj48-h3vq-rr5x.json b/advisories/unreviewed/2022/05/GHSA-mj48-h3vq-rr5x/GHSA-mj48-h3vq-rr5x.json
index 187191bfbb0..628de3793a8 100644
--- a/advisories/unreviewed/2022/05/GHSA-mj48-h3vq-rr5x/GHSA-mj48-h3vq-rr5x.json
+++ b/advisories/unreviewed/2022/05/GHSA-mj48-h3vq-rr5x/GHSA-mj48-h3vq-rr5x.json
@@ -7,12 +7,8 @@
"CVE-2015-9445"
],
"details": "The unite-gallery-lite plugin before 1.5 for WordPress has CSRF and SQL injection via wp-admin/admin-ajax.php in a unitegallery_ajax_action operation.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -32,9 +28,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-mjp9-97x3-23vj/GHSA-mjp9-97x3-23vj.json b/advisories/unreviewed/2022/05/GHSA-mjp9-97x3-23vj/GHSA-mjp9-97x3-23vj.json
index 4423290fe84..cd2a25ecf51 100644
--- a/advisories/unreviewed/2022/05/GHSA-mjp9-97x3-23vj/GHSA-mjp9-97x3-23vj.json
+++ b/advisories/unreviewed/2022/05/GHSA-mjp9-97x3-23vj/GHSA-mjp9-97x3-23vj.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-mm5c-4jm5-55w5/GHSA-mm5c-4jm5-55w5.json b/advisories/unreviewed/2022/05/GHSA-mm5c-4jm5-55w5/GHSA-mm5c-4jm5-55w5.json
index 96a30929f74..240fd1deb2c 100644
--- a/advisories/unreviewed/2022/05/GHSA-mm5c-4jm5-55w5/GHSA-mm5c-4jm5-55w5.json
+++ b/advisories/unreviewed/2022/05/GHSA-mm5c-4jm5-55w5/GHSA-mm5c-4jm5-55w5.json
@@ -7,12 +7,8 @@
"CVE-2007-6002"
],
"details": "Cross-site scripting (XSS) vulnerability in Fenriru (1) Sleipnir 2.5.17 R2 and earlier and (2) Grani 3.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the Search field in a search for additions to the Favorites section.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-mm6m-mjq9-r299/GHSA-mm6m-mjq9-r299.json b/advisories/unreviewed/2022/05/GHSA-mm6m-mjq9-r299/GHSA-mm6m-mjq9-r299.json
index ec6f156adfd..8971ee368c1 100644
--- a/advisories/unreviewed/2022/05/GHSA-mm6m-mjq9-r299/GHSA-mm6m-mjq9-r299.json
+++ b/advisories/unreviewed/2022/05/GHSA-mm6m-mjq9-r299/GHSA-mm6m-mjq9-r299.json
@@ -7,12 +7,8 @@
"CVE-2007-6042"
],
"details": "PHP remote file inclusion vulnerability in fehler.inc.php in SWSoft Confixx Professional 3.2.1 allows remote attackers to execute arbitrary PHP code via a URL in an unspecified parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-mmcf-56h8-qj8f/GHSA-mmcf-56h8-qj8f.json b/advisories/unreviewed/2022/05/GHSA-mmcf-56h8-qj8f/GHSA-mmcf-56h8-qj8f.json
index 7446fadc223..250634c738f 100644
--- a/advisories/unreviewed/2022/05/GHSA-mmcf-56h8-qj8f/GHSA-mmcf-56h8-qj8f.json
+++ b/advisories/unreviewed/2022/05/GHSA-mmcf-56h8-qj8f/GHSA-mmcf-56h8-qj8f.json
@@ -7,12 +7,8 @@
"CVE-2007-6105"
],
"details": "Multiple PHP remote file inclusion vulnerabilities in TalkBack 2.2.7 allow remote attackers to execute arbitrary PHP code via a URL in the (1) language_file parameter to (a) comments-display-tpl.php and (b) addons/separate-comments-mod/my-comments-display-tpl.php and the (2) config[comments_form_tpl] parameter to comments-display-tpl.php.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-mmmq-7mrq-vp86/GHSA-mmmq-7mrq-vp86.json b/advisories/unreviewed/2022/05/GHSA-mmmq-7mrq-vp86/GHSA-mmmq-7mrq-vp86.json
index b60c05936ec..419df957ac1 100644
--- a/advisories/unreviewed/2022/05/GHSA-mmmq-7mrq-vp86/GHSA-mmmq-7mrq-vp86.json
+++ b/advisories/unreviewed/2022/05/GHSA-mmmq-7mrq-vp86/GHSA-mmmq-7mrq-vp86.json
@@ -7,12 +7,8 @@
"CVE-2007-5971"
],
"details": "Double free vulnerability in the gss_krb5int_make_seal_token_v3 function in lib/gssapi/krb5/k5sealv3.c in MIT Kerberos 5 (krb5) has unknown impact and attack vectors.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -156,9 +152,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-mp3h-grqr-5cpp/GHSA-mp3h-grqr-5cpp.json b/advisories/unreviewed/2022/05/GHSA-mp3h-grqr-5cpp/GHSA-mp3h-grqr-5cpp.json
index ef22ca116bc..0b857055717 100644
--- a/advisories/unreviewed/2022/05/GHSA-mp3h-grqr-5cpp/GHSA-mp3h-grqr-5cpp.json
+++ b/advisories/unreviewed/2022/05/GHSA-mp3h-grqr-5cpp/GHSA-mp3h-grqr-5cpp.json
@@ -7,12 +7,8 @@
"CVE-2007-5965"
],
"details": "QSslSocket in Trolltech Qt 4.3.0 through 4.3.2 does not properly verify SSL certificates, which might make it easier for remote attackers to trick a user into accepting an invalid server certificate for a spoofed service, or trick a service into accepting an invalid client certificate for a user.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -72,9 +68,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-mqfx-478h-43p4/GHSA-mqfx-478h-43p4.json b/advisories/unreviewed/2022/05/GHSA-mqfx-478h-43p4/GHSA-mqfx-478h-43p4.json
index ad115801e68..9ba9a1d923a 100644
--- a/advisories/unreviewed/2022/05/GHSA-mqfx-478h-43p4/GHSA-mqfx-478h-43p4.json
+++ b/advisories/unreviewed/2022/05/GHSA-mqfx-478h-43p4/GHSA-mqfx-478h-43p4.json
@@ -7,12 +7,8 @@
"CVE-2007-5833"
],
"details": "Multiple cross-site scripting (XSS) vulnerabilities in BosDev BosMarket Business Directory System allow remote authenticated users to inject arbitrary web script or HTML via (1) user info (account details) or (2) a post.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-mqhv-333r-6q9x/GHSA-mqhv-333r-6q9x.json b/advisories/unreviewed/2022/05/GHSA-mqhv-333r-6q9x/GHSA-mqhv-333r-6q9x.json
index bf72c471864..1edd084bdeb 100644
--- a/advisories/unreviewed/2022/05/GHSA-mqhv-333r-6q9x/GHSA-mqhv-333r-6q9x.json
+++ b/advisories/unreviewed/2022/05/GHSA-mqhv-333r-6q9x/GHSA-mqhv-333r-6q9x.json
@@ -7,12 +7,8 @@
"CVE-2007-6096"
],
"details": "Ingate Firewall before 4.6.0 and SIParator before 4.6.0 use cleartext storage for passwords of \"administrators with less privileges,\" which might allow attackers to read these passwords via unknown vectors.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -36,9 +32,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-mrhq-47wm-2m8c/GHSA-mrhq-47wm-2m8c.json b/advisories/unreviewed/2022/05/GHSA-mrhq-47wm-2m8c/GHSA-mrhq-47wm-2m8c.json
index 8d41d4ebbf4..d13a95ad13d 100644
--- a/advisories/unreviewed/2022/05/GHSA-mrhq-47wm-2m8c/GHSA-mrhq-47wm-2m8c.json
+++ b/advisories/unreviewed/2022/05/GHSA-mrhq-47wm-2m8c/GHSA-mrhq-47wm-2m8c.json
@@ -7,12 +7,8 @@
"CVE-2007-6010"
],
"details": "Unspecified vulnerability in pioneers (formerly gnocatan) 0.11.3 allows remote attackers to cause a denial of service (daemon crash) via unspecified vectors that trigger an assert error. NOTE: this issue reportedly exists because of an incomplete fix for CVE-2007-5933.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-mrqv-c428-3hfp/GHSA-mrqv-c428-3hfp.json b/advisories/unreviewed/2022/05/GHSA-mrqv-c428-3hfp/GHSA-mrqv-c428-3hfp.json
index 86480141337..992a4a42407 100644
--- a/advisories/unreviewed/2022/05/GHSA-mrqv-c428-3hfp/GHSA-mrqv-c428-3hfp.json
+++ b/advisories/unreviewed/2022/05/GHSA-mrqv-c428-3hfp/GHSA-mrqv-c428-3hfp.json
@@ -7,12 +7,8 @@
"CVE-2007-6166"
],
"details": "Stack-based buffer overflow in Apple QuickTime before 7.3.1, as used in QuickTime Player on Windows XP and Safari on Mac OS X, allows remote Real Time Streaming Protocol (RTSP) servers to execute arbitrary code via an RTSP response with a long Content-Type header.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-mv4w-xjh5-2h8g/GHSA-mv4w-xjh5-2h8g.json b/advisories/unreviewed/2022/05/GHSA-mv4w-xjh5-2h8g/GHSA-mv4w-xjh5-2h8g.json
index 1242315d25b..38c3783056e 100644
--- a/advisories/unreviewed/2022/05/GHSA-mv4w-xjh5-2h8g/GHSA-mv4w-xjh5-2h8g.json
+++ b/advisories/unreviewed/2022/05/GHSA-mv4w-xjh5-2h8g/GHSA-mv4w-xjh5-2h8g.json
@@ -7,12 +7,8 @@
"CVE-2007-5911"
],
"details": "Multiple stack-based buffer overflows in the AxMetaStream ActiveX control in AxMetaStream.dll 3.3.2.26 in Viewpoint Media Player 3.2 allow remote attackers to execute arbitrary code via a long string argument to the (1) BroadcastKey, (2) BroadcastKeyFileURL, (3) Component, (4) ComponentClassID, (5) ComponentFileName, (6) ExtraProperty, (7) Properties, (8) RequiredVersions, (9) Source, or (10) XMLText method.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-mvg2-8fw5-5jq6/GHSA-mvg2-8fw5-5jq6.json b/advisories/unreviewed/2022/05/GHSA-mvg2-8fw5-5jq6/GHSA-mvg2-8fw5-5jq6.json
index d16791319f2..1afc8035399 100644
--- a/advisories/unreviewed/2022/05/GHSA-mvg2-8fw5-5jq6/GHSA-mvg2-8fw5-5jq6.json
+++ b/advisories/unreviewed/2022/05/GHSA-mvg2-8fw5-5jq6/GHSA-mvg2-8fw5-5jq6.json
@@ -7,12 +7,8 @@
"CVE-2007-6134"
],
"details": "SQL injection vulnerability in pkinc/public/article.php in PHPKIT 1.6.4pl1 allows remote attackers to execute arbitrary SQL commands via the contentid parameter in an article action to include.php, a different vector than CVE-2006-1773.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-mvwv-xww2-xj42/GHSA-mvwv-xww2-xj42.json b/advisories/unreviewed/2022/05/GHSA-mvwv-xww2-xj42/GHSA-mvwv-xww2-xj42.json
index 5696a2301d9..1e99096f505 100644
--- a/advisories/unreviewed/2022/05/GHSA-mvwv-xww2-xj42/GHSA-mvwv-xww2-xj42.json
+++ b/advisories/unreviewed/2022/05/GHSA-mvwv-xww2-xj42/GHSA-mvwv-xww2-xj42.json
@@ -7,12 +7,8 @@
"CVE-2019-4378"
],
"details": "IBM MQ 7.5.0.0 - 7.5.0.9, 7.1.0.0 - 7.1.0.9, 8.0.0.0 - 8.0.0.12, 9.0.0.0 - 9.0.0.6, 9.1.0.0 - 9.1.0.2, and 9.1.0 - 9.1.2 command server is vulnerable to a denial of service attack caused by an authenticated and authorized user using specially crafted PCF messages. IBM X-Force ID: 162084.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-mwmg-h4j2-456g/GHSA-mwmg-h4j2-456g.json b/advisories/unreviewed/2022/05/GHSA-mwmg-h4j2-456g/GHSA-mwmg-h4j2-456g.json
index 634b0b149d3..350a8897ea0 100644
--- a/advisories/unreviewed/2022/05/GHSA-mwmg-h4j2-456g/GHSA-mwmg-h4j2-456g.json
+++ b/advisories/unreviewed/2022/05/GHSA-mwmg-h4j2-456g/GHSA-mwmg-h4j2-456g.json
@@ -7,12 +7,8 @@
"CVE-2007-5889"
],
"details": "Multiple PHP remote file inclusion vulnerabilities in IDMOS 1.0 Alpha (aka Phoenix) allow remote attackers to execute arbitrary PHP code via a URL in the site_absolute_path parameter to (1) admin.php, (2) menu_add.php, and (3) menu_operation.php in administrator/, different vectors than CVE-2007-5294.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -44,9 +40,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-mwvf-gp9c-72fv/GHSA-mwvf-gp9c-72fv.json b/advisories/unreviewed/2022/05/GHSA-mwvf-gp9c-72fv/GHSA-mwvf-gp9c-72fv.json
index 1d7b81a6890..c5609422b5c 100644
--- a/advisories/unreviewed/2022/05/GHSA-mwvf-gp9c-72fv/GHSA-mwvf-gp9c-72fv.json
+++ b/advisories/unreviewed/2022/05/GHSA-mwvf-gp9c-72fv/GHSA-mwvf-gp9c-72fv.json
@@ -7,12 +7,8 @@
"CVE-2007-6091"
],
"details": "Multiple SQL injection vulnerabilities in files/login.asp in JiRo's Banner System (JBS) 2.0, and possibly JiRo's Upload Manager (aka JiRo's Upload System or JUS), allow remote attackers to execute arbitrary SQL commands via the (1) Username (aka Login or Email) or (2) Password field.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-mxcj-7pjj-p9r6/GHSA-mxcj-7pjj-p9r6.json b/advisories/unreviewed/2022/05/GHSA-mxcj-7pjj-p9r6/GHSA-mxcj-7pjj-p9r6.json
index 81d498ebf80..9d739acdd7c 100644
--- a/advisories/unreviewed/2022/05/GHSA-mxcj-7pjj-p9r6/GHSA-mxcj-7pjj-p9r6.json
+++ b/advisories/unreviewed/2022/05/GHSA-mxcj-7pjj-p9r6/GHSA-mxcj-7pjj-p9r6.json
@@ -7,12 +7,8 @@
"CVE-2015-9386"
],
"details": "The mtouch-quiz plugin before 3.1.3 for WordPress has XSS via the quiz parameter during a Quiz Manage operation.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-p398-w3qj-5ffv/GHSA-p398-w3qj-5ffv.json b/advisories/unreviewed/2022/05/GHSA-p398-w3qj-5ffv/GHSA-p398-w3qj-5ffv.json
index d4b8aad25ab..86fd297ac20 100644
--- a/advisories/unreviewed/2022/05/GHSA-p398-w3qj-5ffv/GHSA-p398-w3qj-5ffv.json
+++ b/advisories/unreviewed/2022/05/GHSA-p398-w3qj-5ffv/GHSA-p398-w3qj-5ffv.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-p3wm-5jfq-m55m/GHSA-p3wm-5jfq-m55m.json b/advisories/unreviewed/2022/05/GHSA-p3wm-5jfq-m55m/GHSA-p3wm-5jfq-m55m.json
index c9075be9ad0..49d2baec1df 100644
--- a/advisories/unreviewed/2022/05/GHSA-p3wm-5jfq-m55m/GHSA-p3wm-5jfq-m55m.json
+++ b/advisories/unreviewed/2022/05/GHSA-p3wm-5jfq-m55m/GHSA-p3wm-5jfq-m55m.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -31,9 +29,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-p43r-5w94-6hh4/GHSA-p43r-5w94-6hh4.json b/advisories/unreviewed/2022/05/GHSA-p43r-5w94-6hh4/GHSA-p43r-5w94-6hh4.json
index c7c4bca2d6d..8f2ee9c65cb 100644
--- a/advisories/unreviewed/2022/05/GHSA-p43r-5w94-6hh4/GHSA-p43r-5w94-6hh4.json
+++ b/advisories/unreviewed/2022/05/GHSA-p43r-5w94-6hh4/GHSA-p43r-5w94-6hh4.json
@@ -7,12 +7,8 @@
"CVE-2019-1242"
],
"details": "A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1240, CVE-2019-1241, CVE-2019-1243, CVE-2019-1246, CVE-2019-1247, CVE-2019-1248, CVE-2019-1249, CVE-2019-1250.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-p4xr-jqqm-52ww/GHSA-p4xr-jqqm-52ww.json b/advisories/unreviewed/2022/05/GHSA-p4xr-jqqm-52ww/GHSA-p4xr-jqqm-52ww.json
index 3909f05820b..b301c1d9c68 100644
--- a/advisories/unreviewed/2022/05/GHSA-p4xr-jqqm-52ww/GHSA-p4xr-jqqm-52ww.json
+++ b/advisories/unreviewed/2022/05/GHSA-p4xr-jqqm-52ww/GHSA-p4xr-jqqm-52ww.json
@@ -7,12 +7,8 @@
"CVE-2007-5861"
],
"details": "Unspecified vulnerability in Spotlight in Apple Mac OS X 10.4.11 allows user-assisted attackers to cause a denial of service (application termination) or execute arbitrary code via a crafted .XLS file that triggers memory corruption in the Microsoft Office Spotlight Importer.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -52,9 +48,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-p542-8xvj-878h/GHSA-p542-8xvj-878h.json b/advisories/unreviewed/2022/05/GHSA-p542-8xvj-878h/GHSA-p542-8xvj-878h.json
index b674ba4b7b7..b1497873c4c 100644
--- a/advisories/unreviewed/2022/05/GHSA-p542-8xvj-878h/GHSA-p542-8xvj-878h.json
+++ b/advisories/unreviewed/2022/05/GHSA-p542-8xvj-878h/GHSA-p542-8xvj-878h.json
@@ -7,12 +7,8 @@
"CVE-2007-5910"
],
"details": "Stack-based buffer overflow in Autonomy (formerly Verity) KeyView Viewer, Filter, and Export SDK before 9.2.0.12, as used by ActivePDF DocConverter, wp6sr.dll in IBM Lotus Notes 8.0 and before 7.0.3, Symantec Mail Security, and other products, allows remote attackers to execute arbitrary code via a crafted WordPerfect (WPD) file.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-p6gq-8rmc-rp54/GHSA-p6gq-8rmc-rp54.json b/advisories/unreviewed/2022/05/GHSA-p6gq-8rmc-rp54/GHSA-p6gq-8rmc-rp54.json
index e92c99267db..ff33df60934 100644
--- a/advisories/unreviewed/2022/05/GHSA-p6gq-8rmc-rp54/GHSA-p6gq-8rmc-rp54.json
+++ b/advisories/unreviewed/2022/05/GHSA-p6gq-8rmc-rp54/GHSA-p6gq-8rmc-rp54.json
@@ -7,12 +7,8 @@
"CVE-2015-9444"
],
"details": "The altos-connect plugin 1.3.0 for WordPress has XSS via the wp-content/plugins/altos-connect/jquery-validate/demo/demo/captcha/index.php/ PATH_SELF.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-p6m7-52v7-q7mq/GHSA-p6m7-52v7-q7mq.json b/advisories/unreviewed/2022/05/GHSA-p6m7-52v7-q7mq/GHSA-p6m7-52v7-q7mq.json
index e28a643c203..c2aae6948aa 100644
--- a/advisories/unreviewed/2022/05/GHSA-p6m7-52v7-q7mq/GHSA-p6m7-52v7-q7mq.json
+++ b/advisories/unreviewed/2022/05/GHSA-p6m7-52v7-q7mq/GHSA-p6m7-52v7-q7mq.json
@@ -7,12 +7,8 @@
"CVE-2007-5902"
],
"details": "Integer overflow in the svcauth_gss_get_principal function in lib/rpc/svc_auth_gss.c in MIT Kerberos 5 (krb5) allows remote attackers to have an unknown impact via a large length value for a GSS client name in an RPC request.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -88,9 +84,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-p7gv-qvfm-xf29/GHSA-p7gv-qvfm-xf29.json b/advisories/unreviewed/2022/05/GHSA-p7gv-qvfm-xf29/GHSA-p7gv-qvfm-xf29.json
index 01abc4f8918..da48fec87f0 100644
--- a/advisories/unreviewed/2022/05/GHSA-p7gv-qvfm-xf29/GHSA-p7gv-qvfm-xf29.json
+++ b/advisories/unreviewed/2022/05/GHSA-p7gv-qvfm-xf29/GHSA-p7gv-qvfm-xf29.json
@@ -7,12 +7,8 @@
"CVE-2007-5896"
],
"details": "Mozilla Firefox 2.0.0.9 allows remote attackers to cause a denial of service (CPU consumption and crash) via an iframe with Javascript that sets the document.location to contain a leading NULL byte (\\x00) and a (1) res://, (2) about:config, or (3) file:/// URI.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -36,9 +32,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-p7jp-v69p-p9c2/GHSA-p7jp-v69p-p9c2.json b/advisories/unreviewed/2022/05/GHSA-p7jp-v69p-p9c2/GHSA-p7jp-v69p-p9c2.json
index f849c2ab80a..5e30b5b70b8 100644
--- a/advisories/unreviewed/2022/05/GHSA-p7jp-v69p-p9c2/GHSA-p7jp-v69p-p9c2.json
+++ b/advisories/unreviewed/2022/05/GHSA-p7jp-v69p-p9c2/GHSA-p7jp-v69p-p9c2.json
@@ -7,12 +7,8 @@
"CVE-2007-5950"
],
"details": "Cross-site scripting (XSS) vulnerability in NetCommons before 1.0.11, and 1.1.x before 1.1.2, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2006-4165.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-p7p7-87c7-96jp/GHSA-p7p7-87c7-96jp.json b/advisories/unreviewed/2022/05/GHSA-p7p7-87c7-96jp/GHSA-p7p7-87c7-96jp.json
index fa5fa3b411c..53a1052b145 100644
--- a/advisories/unreviewed/2022/05/GHSA-p7p7-87c7-96jp/GHSA-p7p7-87c7-96jp.json
+++ b/advisories/unreviewed/2022/05/GHSA-p7p7-87c7-96jp/GHSA-p7p7-87c7-96jp.json
@@ -7,12 +7,8 @@
"CVE-2016-10956"
],
"details": "The mail-masta plugin 1.0 for WordPress has local file inclusion in count_of_send.php and csvexport.php.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -32,9 +28,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-p92j-cfjv-cprv/GHSA-p92j-cfjv-cprv.json b/advisories/unreviewed/2022/05/GHSA-p92j-cfjv-cprv/GHSA-p92j-cfjv-cprv.json
index 941d0fc3644..b7b699753c4 100644
--- a/advisories/unreviewed/2022/05/GHSA-p92j-cfjv-cprv/GHSA-p92j-cfjv-cprv.json
+++ b/advisories/unreviewed/2022/05/GHSA-p92j-cfjv-cprv/GHSA-p92j-cfjv-cprv.json
@@ -7,12 +7,8 @@
"CVE-2007-6078"
],
"details": "Multiple SQL injection vulnerabilities in SkyPortal RC6 allow remote attackers to execute arbitrary SQL commands via unspecified parameters to (1) nc_top.asp; (2) inc_bookmarks.asp, possibly involving a parameter passed from cp_main.asp; (3) inc_profile_functions.asp; or (4) inc_SUBSCRIPTIONS.asp; or the (5) Avatar_URL, (6) LINK1, or (7) LINK2 parameter to cp_main.asp in an EditIt action.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-p94p-g8gv-rwqr/GHSA-p94p-g8gv-rwqr.json b/advisories/unreviewed/2022/05/GHSA-p94p-g8gv-rwqr/GHSA-p94p-g8gv-rwqr.json
index 73ebf21da8b..4cb1b764152 100644
--- a/advisories/unreviewed/2022/05/GHSA-p94p-g8gv-rwqr/GHSA-p94p-g8gv-rwqr.json
+++ b/advisories/unreviewed/2022/05/GHSA-p94p-g8gv-rwqr/GHSA-p94p-g8gv-rwqr.json
@@ -7,12 +7,8 @@
"CVE-2007-6052"
],
"details": "IBM DB2 UDB 9.1 before Fixpak 4 does not properly perform vector aggregation, which might allow attackers to cause a denial of service (divide-by-zero error and DBMS crash), related to an \"overflow.\" NOTE: the vendor description of this issue is too vague to be certain that it is security-related.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -36,9 +32,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-p956-w6xf-6v9r/GHSA-p956-w6xf-6v9r.json b/advisories/unreviewed/2022/05/GHSA-p956-w6xf-6v9r/GHSA-p956-w6xf-6v9r.json
index cff1dc24939..3191588b6c8 100644
--- a/advisories/unreviewed/2022/05/GHSA-p956-w6xf-6v9r/GHSA-p956-w6xf-6v9r.json
+++ b/advisories/unreviewed/2022/05/GHSA-p956-w6xf-6v9r/GHSA-p956-w6xf-6v9r.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-p9p9-hfpr-fx4f/GHSA-p9p9-hfpr-fx4f.json b/advisories/unreviewed/2022/05/GHSA-p9p9-hfpr-fx4f/GHSA-p9p9-hfpr-fx4f.json
index f5c73e2ce92..f4fe4d0f77a 100644
--- a/advisories/unreviewed/2022/05/GHSA-p9p9-hfpr-fx4f/GHSA-p9p9-hfpr-fx4f.json
+++ b/advisories/unreviewed/2022/05/GHSA-p9p9-hfpr-fx4f/GHSA-p9p9-hfpr-fx4f.json
@@ -7,12 +7,8 @@
"CVE-2007-5816"
],
"details": "dialog.php in CONTENTCustomizer 3.1mp and earlier allows remote attackers to obtain sensitive author credentials by making a request with an editauthor action, then reading the value of the newlocalpassword password input field in the HTML source of the resulting page.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-p9vq-4x36-h8pq/GHSA-p9vq-4x36-h8pq.json b/advisories/unreviewed/2022/05/GHSA-p9vq-4x36-h8pq/GHSA-p9vq-4x36-h8pq.json
index e8a106341f3..d23ca34d6ac 100644
--- a/advisories/unreviewed/2022/05/GHSA-p9vq-4x36-h8pq/GHSA-p9vq-4x36-h8pq.json
+++ b/advisories/unreviewed/2022/05/GHSA-p9vq-4x36-h8pq/GHSA-p9vq-4x36-h8pq.json
@@ -7,12 +7,8 @@
"CVE-2007-6124"
],
"details": "Cross-site scripting (XSS) vulnerability in signin.php in Softbiz Freelancers Script 1 allows remote attackers to inject arbitrary web script or HTML via the errmsg parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-pc3g-mmhq-h9c9/GHSA-pc3g-mmhq-h9c9.json b/advisories/unreviewed/2022/05/GHSA-pc3g-mmhq-h9c9/GHSA-pc3g-mmhq-h9c9.json
index 730fdb84ced..870a115fd24 100644
--- a/advisories/unreviewed/2022/05/GHSA-pc3g-mmhq-h9c9/GHSA-pc3g-mmhq-h9c9.json
+++ b/advisories/unreviewed/2022/05/GHSA-pc3g-mmhq-h9c9/GHSA-pc3g-mmhq-h9c9.json
@@ -7,12 +7,8 @@
"CVE-2007-6086"
],
"details": "Directory traversal vulnerability in index.php in VigileCMS 1.4 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the module parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-pcp6-78c3-f6x9/GHSA-pcp6-78c3-f6x9.json b/advisories/unreviewed/2022/05/GHSA-pcp6-78c3-f6x9/GHSA-pcp6-78c3-f6x9.json
index 6da11f84115..9c8eea1f8eb 100644
--- a/advisories/unreviewed/2022/05/GHSA-pcp6-78c3-f6x9/GHSA-pcp6-78c3-f6x9.json
+++ b/advisories/unreviewed/2022/05/GHSA-pcp6-78c3-f6x9/GHSA-pcp6-78c3-f6x9.json
@@ -7,12 +7,8 @@
"CVE-2019-9370"
],
"details": "In sonivox, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-133880046",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-pf48-fgcx-8ph4/GHSA-pf48-fgcx-8ph4.json b/advisories/unreviewed/2022/05/GHSA-pf48-fgcx-8ph4/GHSA-pf48-fgcx-8ph4.json
index c666599c11b..4e097405201 100644
--- a/advisories/unreviewed/2022/05/GHSA-pf48-fgcx-8ph4/GHSA-pf48-fgcx-8ph4.json
+++ b/advisories/unreviewed/2022/05/GHSA-pf48-fgcx-8ph4/GHSA-pf48-fgcx-8ph4.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-pgjj-gq5v-p74w/GHSA-pgjj-gq5v-p74w.json b/advisories/unreviewed/2022/05/GHSA-pgjj-gq5v-p74w/GHSA-pgjj-gq5v-p74w.json
index ea506b81c35..aee4c048370 100644
--- a/advisories/unreviewed/2022/05/GHSA-pgjj-gq5v-p74w/GHSA-pgjj-gq5v-p74w.json
+++ b/advisories/unreviewed/2022/05/GHSA-pgjj-gq5v-p74w/GHSA-pgjj-gq5v-p74w.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-pgr9-9qhh-mp2r/GHSA-pgr9-9qhh-mp2r.json b/advisories/unreviewed/2022/05/GHSA-pgr9-9qhh-mp2r/GHSA-pgr9-9qhh-mp2r.json
index 740a6fd707c..4452648ed4b 100644
--- a/advisories/unreviewed/2022/05/GHSA-pgr9-9qhh-mp2r/GHSA-pgr9-9qhh-mp2r.json
+++ b/advisories/unreviewed/2022/05/GHSA-pgr9-9qhh-mp2r/GHSA-pgr9-9qhh-mp2r.json
@@ -7,12 +7,8 @@
"CVE-2019-1299"
],
"details": "An information disclosure vulnerability exists when Microsoft Edge based on Edge HTML improperly handles objects in memory, aka 'Microsoft Edge based on Edge HTML Information Disclosure Vulnerability'.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-pjf2-m942-xfgr/GHSA-pjf2-m942-xfgr.json b/advisories/unreviewed/2022/05/GHSA-pjf2-m942-xfgr/GHSA-pjf2-m942-xfgr.json
index 4207a5e99ed..790a84acff8 100644
--- a/advisories/unreviewed/2022/05/GHSA-pjf2-m942-xfgr/GHSA-pjf2-m942-xfgr.json
+++ b/advisories/unreviewed/2022/05/GHSA-pjf2-m942-xfgr/GHSA-pjf2-m942-xfgr.json
@@ -7,12 +7,8 @@
"CVE-2016-10994"
],
"details": "The Truemag theme 2016 Q2 for WordPress has XSS via the s parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-pm3w-372v-84mv/GHSA-pm3w-372v-84mv.json b/advisories/unreviewed/2022/05/GHSA-pm3w-372v-84mv/GHSA-pm3w-372v-84mv.json
index fb8ecda0281..89f6e2c478f 100644
--- a/advisories/unreviewed/2022/05/GHSA-pm3w-372v-84mv/GHSA-pm3w-372v-84mv.json
+++ b/advisories/unreviewed/2022/05/GHSA-pm3w-372v-84mv/GHSA-pm3w-372v-84mv.json
@@ -7,12 +7,8 @@
"CVE-2007-5942"
],
"details": "Bandersnatch 0.4 allows remote attackers to obtain sensitive information via a malformed request for index.php with (1) a certain func parameter value; or (2) certain func, jid, page, and limit parameter values; which reveals the path in various error messages.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-pmgg-r9mr-52mp/GHSA-pmgg-r9mr-52mp.json b/advisories/unreviewed/2022/05/GHSA-pmgg-r9mr-52mp/GHSA-pmgg-r9mr-52mp.json
index a1730ebdbae..8c2461a6662 100644
--- a/advisories/unreviewed/2022/05/GHSA-pmgg-r9mr-52mp/GHSA-pmgg-r9mr-52mp.json
+++ b/advisories/unreviewed/2022/05/GHSA-pmgg-r9mr-52mp/GHSA-pmgg-r9mr-52mp.json
@@ -7,12 +7,8 @@
"CVE-2019-1272"
],
"details": "An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (ALPC).An attacker who successfully exploited this vulnerability could run arbitrary code in the security context of the local system, aka 'Windows ALPC Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1269.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-ppfq-mv49-7cm9/GHSA-ppfq-mv49-7cm9.json b/advisories/unreviewed/2022/05/GHSA-ppfq-mv49-7cm9/GHSA-ppfq-mv49-7cm9.json
index f95c3d4e7df..18ad0fc2bdc 100644
--- a/advisories/unreviewed/2022/05/GHSA-ppfq-mv49-7cm9/GHSA-ppfq-mv49-7cm9.json
+++ b/advisories/unreviewed/2022/05/GHSA-ppfq-mv49-7cm9/GHSA-ppfq-mv49-7cm9.json
@@ -7,12 +7,8 @@
"CVE-2007-5832"
],
"details": "Unspecified vulnerability in selectLanguage.do in SSL-Explorer before 0.2.15 allows remote attackers to inject (1) headers or (2) body data in an HTTP transaction, a different vulnerability than CVE-2007-2907. NOTE: some of these details are obtained from third party information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-ppm6-8p65-j9xg/GHSA-ppm6-8p65-j9xg.json b/advisories/unreviewed/2022/05/GHSA-ppm6-8p65-j9xg/GHSA-ppm6-8p65-j9xg.json
index f7e33748faa..748420f72db 100644
--- a/advisories/unreviewed/2022/05/GHSA-ppm6-8p65-j9xg/GHSA-ppm6-8p65-j9xg.json
+++ b/advisories/unreviewed/2022/05/GHSA-ppm6-8p65-j9xg/GHSA-ppm6-8p65-j9xg.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -31,9 +29,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "CRITICAL",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-pqhh-3p5w-253m/GHSA-pqhh-3p5w-253m.json b/advisories/unreviewed/2022/05/GHSA-pqhh-3p5w-253m/GHSA-pqhh-3p5w-253m.json
index 33e7ca819cc..e3dba38e0d6 100644
--- a/advisories/unreviewed/2022/05/GHSA-pqhh-3p5w-253m/GHSA-pqhh-3p5w-253m.json
+++ b/advisories/unreviewed/2022/05/GHSA-pqhh-3p5w-253m/GHSA-pqhh-3p5w-253m.json
@@ -7,12 +7,8 @@
"CVE-2007-5827"
],
"details": "iSCSI Enterprise Target (iscsitarget) 0.4.15 uses weak permissions for /etc/ietd.conf, which allows local users to obtain passwords.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -40,9 +36,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "LOW",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-pqvr-m7xp-v679/GHSA-pqvr-m7xp-v679.json b/advisories/unreviewed/2022/05/GHSA-pqvr-m7xp-v679/GHSA-pqvr-m7xp-v679.json
index bebb2c39411..5a2513e9245 100644
--- a/advisories/unreviewed/2022/05/GHSA-pqvr-m7xp-v679/GHSA-pqvr-m7xp-v679.json
+++ b/advisories/unreviewed/2022/05/GHSA-pqvr-m7xp-v679/GHSA-pqvr-m7xp-v679.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-pv85-r7p2-8r62/GHSA-pv85-r7p2-8r62.json b/advisories/unreviewed/2022/05/GHSA-pv85-r7p2-8r62/GHSA-pv85-r7p2-8r62.json
index d24a2dc8c7a..5c99122c831 100644
--- a/advisories/unreviewed/2022/05/GHSA-pv85-r7p2-8r62/GHSA-pv85-r7p2-8r62.json
+++ b/advisories/unreviewed/2022/05/GHSA-pv85-r7p2-8r62/GHSA-pv85-r7p2-8r62.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-pvg4-29vg-mvc4/GHSA-pvg4-29vg-mvc4.json b/advisories/unreviewed/2022/05/GHSA-pvg4-29vg-mvc4/GHSA-pvg4-29vg-mvc4.json
index ef00c593aad..d1f24e475a5 100644
--- a/advisories/unreviewed/2022/05/GHSA-pvg4-29vg-mvc4/GHSA-pvg4-29vg-mvc4.json
+++ b/advisories/unreviewed/2022/05/GHSA-pvg4-29vg-mvc4/GHSA-pvg4-29vg-mvc4.json
@@ -7,12 +7,8 @@
"CVE-2007-5933"
],
"details": "Pioneers (formerly gnocatan) before 0.11.3 allows remote attackers to cause a denial of service (crash) by triggering a delete operation while the Session object is still being used, as demonstrated by causing a \"Broken pipe\" error.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-pvm2-jp69-rx5f/GHSA-pvm2-jp69-rx5f.json b/advisories/unreviewed/2022/05/GHSA-pvm2-jp69-rx5f/GHSA-pvm2-jp69-rx5f.json
index 35a3e177c2e..9dbfd30c9d3 100644
--- a/advisories/unreviewed/2022/05/GHSA-pvm2-jp69-rx5f/GHSA-pvm2-jp69-rx5f.json
+++ b/advisories/unreviewed/2022/05/GHSA-pvm2-jp69-rx5f/GHSA-pvm2-jp69-rx5f.json
@@ -7,12 +7,8 @@
"CVE-2019-1286"
],
"details": "An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1252.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-pwmv-666f-8qgp/GHSA-pwmv-666f-8qgp.json b/advisories/unreviewed/2022/05/GHSA-pwmv-666f-8qgp/GHSA-pwmv-666f-8qgp.json
index acd89b0e96d..64370fb99f6 100644
--- a/advisories/unreviewed/2022/05/GHSA-pwmv-666f-8qgp/GHSA-pwmv-666f-8qgp.json
+++ b/advisories/unreviewed/2022/05/GHSA-pwmv-666f-8qgp/GHSA-pwmv-666f-8qgp.json
@@ -7,12 +7,8 @@
"CVE-2015-2906"
],
"details": "** DISPUTED ** Mobile Devices (aka MDI) C4 OBD-II dongles with firmware 2.x and 3.4.x, as used in Metromile Pulse and other products, store SSH private keys that are the same across different customers' installations, which makes it easier for remote attackers to obtain access by leveraging knowledge of a private key from another installation. NOTE: the vendor states \"This was a flaw for the developer/debugging devices (again not possible in production versions).\"",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -32,9 +28,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-px96-3hch-vchj/GHSA-px96-3hch-vchj.json b/advisories/unreviewed/2022/05/GHSA-px96-3hch-vchj/GHSA-px96-3hch-vchj.json
index 53c0fa3e2b6..081bc47ca42 100644
--- a/advisories/unreviewed/2022/05/GHSA-px96-3hch-vchj/GHSA-px96-3hch-vchj.json
+++ b/advisories/unreviewed/2022/05/GHSA-px96-3hch-vchj/GHSA-px96-3hch-vchj.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-px9v-f56w-8qv4/GHSA-px9v-f56w-8qv4.json b/advisories/unreviewed/2022/05/GHSA-px9v-f56w-8qv4/GHSA-px9v-f56w-8qv4.json
index 5d55da3c977..d167a92ff2e 100644
--- a/advisories/unreviewed/2022/05/GHSA-px9v-f56w-8qv4/GHSA-px9v-f56w-8qv4.json
+++ b/advisories/unreviewed/2022/05/GHSA-px9v-f56w-8qv4/GHSA-px9v-f56w-8qv4.json
@@ -7,12 +7,8 @@
"CVE-2015-9401"
],
"details": "The websimon-tables plugin through 1.3.4 for WordPress has wp-admin/tools.php edit_style id XSS.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -32,9 +28,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "LOW",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-pxhx-2v5w-x5mg/GHSA-pxhx-2v5w-x5mg.json b/advisories/unreviewed/2022/05/GHSA-pxhx-2v5w-x5mg/GHSA-pxhx-2v5w-x5mg.json
index e014bf0564a..0be3cc9521b 100644
--- a/advisories/unreviewed/2022/05/GHSA-pxhx-2v5w-x5mg/GHSA-pxhx-2v5w-x5mg.json
+++ b/advisories/unreviewed/2022/05/GHSA-pxhx-2v5w-x5mg/GHSA-pxhx-2v5w-x5mg.json
@@ -7,12 +7,8 @@
"CVE-2007-6127"
],
"details": "Multiple SQL injection vulnerabilities in project alumni 1.0.9 and earlier allow remote attackers to execute arbitrary SQL commands via the year parameter to (1) view.page.inc.php, which is reachable through a view action to index.php; or (2) the year parameter to news.page.inc.php, which is reachable through a news action to index.php.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-pxw3-82pf-w6pr/GHSA-pxw3-82pf-w6pr.json b/advisories/unreviewed/2022/05/GHSA-pxw3-82pf-w6pr/GHSA-pxw3-82pf-w6pr.json
index 6044f9b682c..719ee99ba61 100644
--- a/advisories/unreviewed/2022/05/GHSA-pxw3-82pf-w6pr/GHSA-pxw3-82pf-w6pr.json
+++ b/advisories/unreviewed/2022/05/GHSA-pxw3-82pf-w6pr/GHSA-pxw3-82pf-w6pr.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-q27h-gwfg-f2vw/GHSA-q27h-gwfg-f2vw.json b/advisories/unreviewed/2022/05/GHSA-q27h-gwfg-f2vw/GHSA-q27h-gwfg-f2vw.json
index e49e9c778b5..95a6a26f0c1 100644
--- a/advisories/unreviewed/2022/05/GHSA-q27h-gwfg-f2vw/GHSA-q27h-gwfg-f2vw.json
+++ b/advisories/unreviewed/2022/05/GHSA-q27h-gwfg-f2vw/GHSA-q27h-gwfg-f2vw.json
@@ -7,12 +7,8 @@
"CVE-2007-5847"
],
"details": "Race condition in the CFURLWriteDataAndPropertiesToResource API in Core Foundation in Apple Mac OS X 10.4.11 creates files with insecure permissions, which might allow local users to obtain sensitive information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-q29x-mfh5-79cf/GHSA-q29x-mfh5-79cf.json b/advisories/unreviewed/2022/05/GHSA-q29x-mfh5-79cf/GHSA-q29x-mfh5-79cf.json
index cf4aec3f939..3eb3e88b130 100644
--- a/advisories/unreviewed/2022/05/GHSA-q29x-mfh5-79cf/GHSA-q29x-mfh5-79cf.json
+++ b/advisories/unreviewed/2022/05/GHSA-q29x-mfh5-79cf/GHSA-q29x-mfh5-79cf.json
@@ -7,12 +7,8 @@
"CVE-2019-2171"
],
"details": "In libxaac there is a possible information disclosure due to uninitialized data. This could lead to information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-113035086",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-q3fc-6x2v-6ph8/GHSA-q3fc-6x2v-6ph8.json b/advisories/unreviewed/2022/05/GHSA-q3fc-6x2v-6ph8/GHSA-q3fc-6x2v-6ph8.json
index 5179727ea64..10452aa52cc 100644
--- a/advisories/unreviewed/2022/05/GHSA-q3fc-6x2v-6ph8/GHSA-q3fc-6x2v-6ph8.json
+++ b/advisories/unreviewed/2022/05/GHSA-q3fc-6x2v-6ph8/GHSA-q3fc-6x2v-6ph8.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-q3qm-mv93-frg5/GHSA-q3qm-mv93-frg5.json b/advisories/unreviewed/2022/05/GHSA-q3qm-mv93-frg5/GHSA-q3qm-mv93-frg5.json
index 728ece5f615..357edb081fe 100644
--- a/advisories/unreviewed/2022/05/GHSA-q3qm-mv93-frg5/GHSA-q3qm-mv93-frg5.json
+++ b/advisories/unreviewed/2022/05/GHSA-q3qm-mv93-frg5/GHSA-q3qm-mv93-frg5.json
@@ -7,12 +7,8 @@
"CVE-2015-9400"
],
"details": "The wordpress-meta-robots plugin through 2.1 for WordPress has wp-admin/post-new.php text SQL injection.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -32,9 +28,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-q427-f7q7-7hmc/GHSA-q427-f7q7-7hmc.json b/advisories/unreviewed/2022/05/GHSA-q427-f7q7-7hmc/GHSA-q427-f7q7-7hmc.json
index deadabc5cb2..984eade1161 100644
--- a/advisories/unreviewed/2022/05/GHSA-q427-f7q7-7hmc/GHSA-q427-f7q7-7hmc.json
+++ b/advisories/unreviewed/2022/05/GHSA-q427-f7q7-7hmc/GHSA-q427-f7q7-7hmc.json
@@ -7,12 +7,8 @@
"CVE-2007-6142"
],
"details": "Multiple cross-site scripting (XSS) vulnerabilities in ph03y3nk just another flat file (JAF) CMS 4.0 RC2 allow remote attackers to inject arbitrary web script or HTML via the (1) show parameter to index.php and the (2) print parameter to print.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-q4jm-639h-26p9/GHSA-q4jm-639h-26p9.json b/advisories/unreviewed/2022/05/GHSA-q4jm-639h-26p9/GHSA-q4jm-639h-26p9.json
index d18eb4e2a7e..45b59eec343 100644
--- a/advisories/unreviewed/2022/05/GHSA-q4jm-639h-26p9/GHSA-q4jm-639h-26p9.json
+++ b/advisories/unreviewed/2022/05/GHSA-q4jm-639h-26p9/GHSA-q4jm-639h-26p9.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-q63m-9mjm-wp97/GHSA-q63m-9mjm-wp97.json b/advisories/unreviewed/2022/05/GHSA-q63m-9mjm-wp97/GHSA-q63m-9mjm-wp97.json
index 804c3782a93..b9e637d47c9 100644
--- a/advisories/unreviewed/2022/05/GHSA-q63m-9mjm-wp97/GHSA-q63m-9mjm-wp97.json
+++ b/advisories/unreviewed/2022/05/GHSA-q63m-9mjm-wp97/GHSA-q63m-9mjm-wp97.json
@@ -7,12 +7,8 @@
"CVE-2019-2159"
],
"details": "In libxaac there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112707186",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-q66x-hpg8-2g43/GHSA-q66x-hpg8-2g43.json b/advisories/unreviewed/2022/05/GHSA-q66x-hpg8-2g43/GHSA-q66x-hpg8-2g43.json
index ade04e28e7b..ef91dffb36b 100644
--- a/advisories/unreviewed/2022/05/GHSA-q66x-hpg8-2g43/GHSA-q66x-hpg8-2g43.json
+++ b/advisories/unreviewed/2022/05/GHSA-q66x-hpg8-2g43/GHSA-q66x-hpg8-2g43.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-q69w-42hm-p3qq/GHSA-q69w-42hm-p3qq.json b/advisories/unreviewed/2022/05/GHSA-q69w-42hm-p3qq/GHSA-q69w-42hm-p3qq.json
index 0bb678f067d..456f514c9a6 100644
--- a/advisories/unreviewed/2022/05/GHSA-q69w-42hm-p3qq/GHSA-q69w-42hm-p3qq.json
+++ b/advisories/unreviewed/2022/05/GHSA-q69w-42hm-p3qq/GHSA-q69w-42hm-p3qq.json
@@ -7,12 +7,8 @@
"CVE-2007-6112"
],
"details": "Buffer overflow in the PPP dissector Wireshark (formerly Ethereal) 0.99.6 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-q7vp-g99f-gpfx/GHSA-q7vp-g99f-gpfx.json b/advisories/unreviewed/2022/05/GHSA-q7vp-g99f-gpfx/GHSA-q7vp-g99f-gpfx.json
index 38174b86f9c..134bc9b754b 100644
--- a/advisories/unreviewed/2022/05/GHSA-q7vp-g99f-gpfx/GHSA-q7vp-g99f-gpfx.json
+++ b/advisories/unreviewed/2022/05/GHSA-q7vp-g99f-gpfx/GHSA-q7vp-g99f-gpfx.json
@@ -7,12 +7,8 @@
"CVE-2019-9359"
],
"details": "In libavc there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-111407302",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-q867-77vc-2rp5/GHSA-q867-77vc-2rp5.json b/advisories/unreviewed/2022/05/GHSA-q867-77vc-2rp5/GHSA-q867-77vc-2rp5.json
index 120050ac439..75ddd52224f 100644
--- a/advisories/unreviewed/2022/05/GHSA-q867-77vc-2rp5/GHSA-q867-77vc-2rp5.json
+++ b/advisories/unreviewed/2022/05/GHSA-q867-77vc-2rp5/GHSA-q867-77vc-2rp5.json
@@ -7,12 +7,8 @@
"CVE-2019-16057"
],
"details": "The login_mgr.cgi script in D-Link DNS-320 through 2.05.B10 is vulnerable to remote command injection.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-q964-x2rc-v787/GHSA-q964-x2rc-v787.json b/advisories/unreviewed/2022/05/GHSA-q964-x2rc-v787/GHSA-q964-x2rc-v787.json
index 6fe3256255d..c51e4bd3ecc 100644
--- a/advisories/unreviewed/2022/05/GHSA-q964-x2rc-v787/GHSA-q964-x2rc-v787.json
+++ b/advisories/unreviewed/2022/05/GHSA-q964-x2rc-v787/GHSA-q964-x2rc-v787.json
@@ -7,12 +7,8 @@
"CVE-2007-6016"
],
"details": "Multiple stack-based buffer overflows in the PVATLCalendar.PVCalendar.1 ActiveX control in pvcalendar.ocx in the scheduler component in the Media Server in Symantec Backup Exec for Windows Server (BEWS) 11d 11.0.6235 and 11.0.7170, and 12.0 12.0.1364, allow remote attackers to execute arbitrary code via a long (1) _DOWText0, (2) _DOWText1, (3) _DOWText2, (4) _DOWText3, (5) _DOWText4, (6) _DOWText5, (7) _DOWText6, (8) _MonthText0, (9) _MonthText1, (10) _MonthText2, (11) _MonthText3, (12) _MonthText4, (13) _MonthText5, (14) _MonthText6, (15) _MonthText7, (16) _MonthText8, (17) _MonthText9, (18) _MonthText10, or (19) _MonthText11 property value when executing the Save method. NOTE: the vendor states \"Authenticated user involvement required,\" but authentication is not needed to attack a client machine that loads this control.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-q988-fh5q-8pqq/GHSA-q988-fh5q-8pqq.json b/advisories/unreviewed/2022/05/GHSA-q988-fh5q-8pqq/GHSA-q988-fh5q-8pqq.json
index 6b81c96679d..8a9739df4a9 100644
--- a/advisories/unreviewed/2022/05/GHSA-q988-fh5q-8pqq/GHSA-q988-fh5q-8pqq.json
+++ b/advisories/unreviewed/2022/05/GHSA-q988-fh5q-8pqq/GHSA-q988-fh5q-8pqq.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-q9hw-w9f9-xp3r/GHSA-q9hw-w9f9-xp3r.json b/advisories/unreviewed/2022/05/GHSA-q9hw-w9f9-xp3r/GHSA-q9hw-w9f9-xp3r.json
index becfd0784dc..96caf51e20e 100644
--- a/advisories/unreviewed/2022/05/GHSA-q9hw-w9f9-xp3r/GHSA-q9hw-w9f9-xp3r.json
+++ b/advisories/unreviewed/2022/05/GHSA-q9hw-w9f9-xp3r/GHSA-q9hw-w9f9-xp3r.json
@@ -7,12 +7,8 @@
"CVE-2007-6003"
],
"details": "Cross-site scripting (XSS) vulnerability in cgi/b/ic/connect in the Thomson SpeedTouch 716 with firmware 5.4.0.14 allows remote attackers to inject arbitrary web script or HTML via the url parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-qf53-7c4q-f3hr/GHSA-qf53-7c4q-f3hr.json b/advisories/unreviewed/2022/05/GHSA-qf53-7c4q-f3hr/GHSA-qf53-7c4q-f3hr.json
index c7f7240c52a..ff62ba3daeb 100644
--- a/advisories/unreviewed/2022/05/GHSA-qf53-7c4q-f3hr/GHSA-qf53-7c4q-f3hr.json
+++ b/advisories/unreviewed/2022/05/GHSA-qf53-7c4q-f3hr/GHSA-qf53-7c4q-f3hr.json
@@ -7,12 +7,8 @@
"CVE-2014-1736"
],
"details": "Integer overflow in api.cc in Google V8, as used in Google Chrome before 34.0.1847.131 on Windows and OS X and before 34.0.1847.132 on Linux, allows remote attackers to cause a denial of service or possibly have unspecified other impact via a large length value.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-qfp8-p689-pjw7/GHSA-qfp8-p689-pjw7.json b/advisories/unreviewed/2022/05/GHSA-qfp8-p689-pjw7/GHSA-qfp8-p689-pjw7.json
index aa248e9973d..714b1634824 100644
--- a/advisories/unreviewed/2022/05/GHSA-qfp8-p689-pjw7/GHSA-qfp8-p689-pjw7.json
+++ b/advisories/unreviewed/2022/05/GHSA-qfp8-p689-pjw7/GHSA-qfp8-p689-pjw7.json
@@ -7,12 +7,8 @@
"CVE-2007-6040"
],
"details": "The Belkin F5D7230-4 Wireless G Router allows remote attackers to cause a denial of service (degraded networking and logging) via a flood of TCP SYN packets, a related issue to CVE-1999-0116.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -36,9 +32,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-qgm4-8wgg-r6hf/GHSA-qgm4-8wgg-r6hf.json b/advisories/unreviewed/2022/05/GHSA-qgm4-8wgg-r6hf/GHSA-qgm4-8wgg-r6hf.json
index 0dd7382fc19..e19f449af79 100644
--- a/advisories/unreviewed/2022/05/GHSA-qgm4-8wgg-r6hf/GHSA-qgm4-8wgg-r6hf.json
+++ b/advisories/unreviewed/2022/05/GHSA-qgm4-8wgg-r6hf/GHSA-qgm4-8wgg-r6hf.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-qgxw-cvg4-3v23/GHSA-qgxw-cvg4-3v23.json b/advisories/unreviewed/2022/05/GHSA-qgxw-cvg4-3v23/GHSA-qgxw-cvg4-3v23.json
index 2213c397122..f38373d3889 100644
--- a/advisories/unreviewed/2022/05/GHSA-qgxw-cvg4-3v23/GHSA-qgxw-cvg4-3v23.json
+++ b/advisories/unreviewed/2022/05/GHSA-qgxw-cvg4-3v23/GHSA-qgxw-cvg4-3v23.json
@@ -7,12 +7,8 @@
"CVE-2007-5907"
],
"details": "Xen 3.1.1 does not prevent modification of the CR4 TSC from applications, which allows pv guests to cause a denial of service (crash).",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -60,9 +56,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-qh8r-p5cp-mcqw/GHSA-qh8r-p5cp-mcqw.json b/advisories/unreviewed/2022/05/GHSA-qh8r-p5cp-mcqw/GHSA-qh8r-p5cp-mcqw.json
index 2c49a8d7250..3d89fc5f982 100644
--- a/advisories/unreviewed/2022/05/GHSA-qh8r-p5cp-mcqw/GHSA-qh8r-p5cp-mcqw.json
+++ b/advisories/unreviewed/2022/05/GHSA-qh8r-p5cp-mcqw/GHSA-qh8r-p5cp-mcqw.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -27,9 +25,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-qhg7-26q2-q32q/GHSA-qhg7-26q2-q32q.json b/advisories/unreviewed/2022/05/GHSA-qhg7-26q2-q32q/GHSA-qhg7-26q2-q32q.json
index 6cd7a01129f..4be873c18d7 100644
--- a/advisories/unreviewed/2022/05/GHSA-qhg7-26q2-q32q/GHSA-qhg7-26q2-q32q.json
+++ b/advisories/unreviewed/2022/05/GHSA-qhg7-26q2-q32q/GHSA-qhg7-26q2-q32q.json
@@ -7,12 +7,8 @@
"CVE-2016-10938"
],
"details": "The copy-me plugin 1.0.0 for WordPress has CSRF for copying non-public posts to a public location.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -32,9 +28,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-qhrg-96c8-3v5f/GHSA-qhrg-96c8-3v5f.json b/advisories/unreviewed/2022/05/GHSA-qhrg-96c8-3v5f/GHSA-qhrg-96c8-3v5f.json
index 5346acb04f4..3e69d31887a 100644
--- a/advisories/unreviewed/2022/05/GHSA-qhrg-96c8-3v5f/GHSA-qhrg-96c8-3v5f.json
+++ b/advisories/unreviewed/2022/05/GHSA-qhrg-96c8-3v5f/GHSA-qhrg-96c8-3v5f.json
@@ -7,12 +7,8 @@
"CVE-2007-6029"
],
"details": "Unspecified vulnerability in ClamAV 0.91.1 and 0.91.2 allows remote attackers to execute arbitrary code via a crafted e-mail message. NOTE: this information is based upon a vague advisory by a vulnerability information sales organization that does not coordinate with vendors or release actionable advisories. A CVE has been assigned for tracking purposes, but duplicates with other CVEs are difficult to determine.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-qjcm-4w5p-gw32/GHSA-qjcm-4w5p-gw32.json b/advisories/unreviewed/2022/05/GHSA-qjcm-4w5p-gw32/GHSA-qjcm-4w5p-gw32.json
index 4631b8d0ee1..e88c73baa59 100644
--- a/advisories/unreviewed/2022/05/GHSA-qjcm-4w5p-gw32/GHSA-qjcm-4w5p-gw32.json
+++ b/advisories/unreviewed/2022/05/GHSA-qjcm-4w5p-gw32/GHSA-qjcm-4w5p-gw32.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-qm58-3qrx-527w/GHSA-qm58-3qrx-527w.json b/advisories/unreviewed/2022/05/GHSA-qm58-3qrx-527w/GHSA-qm58-3qrx-527w.json
index 02e7854c65a..274785ebd9a 100644
--- a/advisories/unreviewed/2022/05/GHSA-qm58-3qrx-527w/GHSA-qm58-3qrx-527w.json
+++ b/advisories/unreviewed/2022/05/GHSA-qm58-3qrx-527w/GHSA-qm58-3qrx-527w.json
@@ -7,12 +7,8 @@
"CVE-2007-6046"
],
"details": "Unspecified vulnerability in unspecified setuid programs in IBM DB2 UDB 9.1 before Fixpak 4 allows local users to have an unknown impact.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -40,9 +36,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-qmg5-rx6w-h4h5/GHSA-qmg5-rx6w-h4h5.json b/advisories/unreviewed/2022/05/GHSA-qmg5-rx6w-h4h5/GHSA-qmg5-rx6w-h4h5.json
index c9a82d5fce2..31c646bb3d2 100644
--- a/advisories/unreviewed/2022/05/GHSA-qmg5-rx6w-h4h5/GHSA-qmg5-rx6w-h4h5.json
+++ b/advisories/unreviewed/2022/05/GHSA-qmg5-rx6w-h4h5/GHSA-qmg5-rx6w-h4h5.json
@@ -7,12 +7,8 @@
"CVE-2007-5845"
],
"details": "Directory traversal vulnerability in error.php in GuppY 4.6.3, 4.5.16, and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the id parameter. NOTE: this can be leveraged to bypass authentication and upload arbitrary files by including admin/inc/upload.inc and specifying certain multipart/form-data input for admin/inc/upload.inc.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-qmgh-7m25-rf68/GHSA-qmgh-7m25-rf68.json b/advisories/unreviewed/2022/05/GHSA-qmgh-7m25-rf68/GHSA-qmgh-7m25-rf68.json
index 7fc0e9e1522..852ec1c4ef8 100644
--- a/advisories/unreviewed/2022/05/GHSA-qmgh-7m25-rf68/GHSA-qmgh-7m25-rf68.json
+++ b/advisories/unreviewed/2022/05/GHSA-qmgh-7m25-rf68/GHSA-qmgh-7m25-rf68.json
@@ -7,12 +7,8 @@
"CVE-2019-15088"
],
"details": "An issue was discovered in PRiSE adAS 1.7.0. Password hashes are compared using the equality operator. Thus, under specific circumstances, it is possible to bypass login authentication.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-qp27-6p7x-jg7p/GHSA-qp27-6p7x-jg7p.json b/advisories/unreviewed/2022/05/GHSA-qp27-6p7x-jg7p/GHSA-qp27-6p7x-jg7p.json
index 302a5e8447c..c312b36161f 100644
--- a/advisories/unreviewed/2022/05/GHSA-qp27-6p7x-jg7p/GHSA-qp27-6p7x-jg7p.json
+++ b/advisories/unreviewed/2022/05/GHSA-qp27-6p7x-jg7p/GHSA-qp27-6p7x-jg7p.json
@@ -7,12 +7,8 @@
"CVE-2019-2157"
],
"details": "In libxaac, there is a possible out of bounds read due to a missing bounds check. This could lead to information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112611363",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-qp49-3rw5-9grv/GHSA-qp49-3rw5-9grv.json b/advisories/unreviewed/2022/05/GHSA-qp49-3rw5-9grv/GHSA-qp49-3rw5-9grv.json
index 7a5e9503592..708c050780d 100644
--- a/advisories/unreviewed/2022/05/GHSA-qp49-3rw5-9grv/GHSA-qp49-3rw5-9grv.json
+++ b/advisories/unreviewed/2022/05/GHSA-qp49-3rw5-9grv/GHSA-qp49-3rw5-9grv.json
@@ -7,12 +7,8 @@
"CVE-2007-5932"
],
"details": "Multiple cross-site scripting (XSS) vulnerabilities in Fatwire Content Server (CS) CMS 6.3.0 allow remote attackers to inject arbitrary web script or HTML via unspecified form fields related to the (1) search function, (2) advanced search function, and possibly other components.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-qqqq-ffxc-7jj8/GHSA-qqqq-ffxc-7jj8.json b/advisories/unreviewed/2022/05/GHSA-qqqq-ffxc-7jj8/GHSA-qqqq-ffxc-7jj8.json
index fee805427fa..4dce327212a 100644
--- a/advisories/unreviewed/2022/05/GHSA-qqqq-ffxc-7jj8/GHSA-qqqq-ffxc-7jj8.json
+++ b/advisories/unreviewed/2022/05/GHSA-qqqq-ffxc-7jj8/GHSA-qqqq-ffxc-7jj8.json
@@ -7,12 +7,8 @@
"CVE-2007-6045"
],
"details": "Unspecified vulnerability in (1) DB2WATCH and (2) DB2FREEZE in IBM DB2 UDB 9.1 before Fixpak 4 has unknown impact and attack vectors.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -48,9 +44,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-qr6q-3xcr-gfvw/GHSA-qr6q-3xcr-gfvw.json b/advisories/unreviewed/2022/05/GHSA-qr6q-3xcr-gfvw/GHSA-qr6q-3xcr-gfvw.json
index 78071ee50c6..52b0595566f 100644
--- a/advisories/unreviewed/2022/05/GHSA-qr6q-3xcr-gfvw/GHSA-qr6q-3xcr-gfvw.json
+++ b/advisories/unreviewed/2022/05/GHSA-qr6q-3xcr-gfvw/GHSA-qr6q-3xcr-gfvw.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-qr75-p6pj-98jh/GHSA-qr75-p6pj-98jh.json b/advisories/unreviewed/2022/05/GHSA-qr75-p6pj-98jh/GHSA-qr75-p6pj-98jh.json
index 5a4cf27f1d8..fce535d35d0 100644
--- a/advisories/unreviewed/2022/05/GHSA-qr75-p6pj-98jh/GHSA-qr75-p6pj-98jh.json
+++ b/advisories/unreviewed/2022/05/GHSA-qr75-p6pj-98jh/GHSA-qr75-p6pj-98jh.json
@@ -7,12 +7,8 @@
"CVE-2015-9419"
],
"details": "The captain-slider plugin 1.0.6 for WordPress has XSS via a Title or Caption section.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-qrw3-hgw6-7wf4/GHSA-qrw3-hgw6-7wf4.json b/advisories/unreviewed/2022/05/GHSA-qrw3-hgw6-7wf4/GHSA-qrw3-hgw6-7wf4.json
index 6dfe17bbaca..2eace65f6d5 100644
--- a/advisories/unreviewed/2022/05/GHSA-qrw3-hgw6-7wf4/GHSA-qrw3-hgw6-7wf4.json
+++ b/advisories/unreviewed/2022/05/GHSA-qrw3-hgw6-7wf4/GHSA-qrw3-hgw6-7wf4.json
@@ -7,12 +7,8 @@
"CVE-2007-6129"
],
"details": "Directory traversal vulnerability in scripts/include/show_content.php in Amber Script 1.0 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the id parameter. NOTE: in some environments, this can be leveraged for remote file inclusion by using a UNC share pathname or an ftp, ftps, or ssh2.sftp URL.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-qv24-5wr9-m3mp/GHSA-qv24-5wr9-m3mp.json b/advisories/unreviewed/2022/05/GHSA-qv24-5wr9-m3mp/GHSA-qv24-5wr9-m3mp.json
index 4bc13dc5026..9edcc0b2cad 100644
--- a/advisories/unreviewed/2022/05/GHSA-qv24-5wr9-m3mp/GHSA-qv24-5wr9-m3mp.json
+++ b/advisories/unreviewed/2022/05/GHSA-qv24-5wr9-m3mp/GHSA-qv24-5wr9-m3mp.json
@@ -7,12 +7,8 @@
"CVE-2019-1244"
],
"details": "An information disclosure vulnerability exists when DirectWrite improperly discloses the contents of its memory, aka 'DirectWrite Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1245, CVE-2019-1251.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-qv7p-rw6j-rmc4/GHSA-qv7p-rw6j-rmc4.json b/advisories/unreviewed/2022/05/GHSA-qv7p-rw6j-rmc4/GHSA-qv7p-rw6j-rmc4.json
index 6a5656af02f..04234613727 100644
--- a/advisories/unreviewed/2022/05/GHSA-qv7p-rw6j-rmc4/GHSA-qv7p-rw6j-rmc4.json
+++ b/advisories/unreviewed/2022/05/GHSA-qv7p-rw6j-rmc4/GHSA-qv7p-rw6j-rmc4.json
@@ -7,12 +7,8 @@
"CVE-2007-5926"
],
"details": "OpenBase 10.0.5 and earlier allows remote authenticated users to execute arbitrary commands via shell metacharacters in arguments to the (1) AsciiBackup, (2) OEMLicenseInstall, and possibly other stored procedures.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-qvf6-3rc2-4x45/GHSA-qvf6-3rc2-4x45.json b/advisories/unreviewed/2022/05/GHSA-qvf6-3rc2-4x45/GHSA-qvf6-3rc2-4x45.json
index 74128dde454..e5cd5bac7b2 100644
--- a/advisories/unreviewed/2022/05/GHSA-qvf6-3rc2-4x45/GHSA-qvf6-3rc2-4x45.json
+++ b/advisories/unreviewed/2022/05/GHSA-qvf6-3rc2-4x45/GHSA-qvf6-3rc2-4x45.json
@@ -7,12 +7,8 @@
"CVE-2007-5823"
],
"details": "Directory traversal vulnerability in forum.php in Ben Ng Scribe 0.2 and earlier allows remote attackers to create or overwrite arbitrary files via a .. (dot dot) in the username parameter in a Register action.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-qvxr-p75h-g8h9/GHSA-qvxr-p75h-g8h9.json b/advisories/unreviewed/2022/05/GHSA-qvxr-p75h-g8h9/GHSA-qvxr-p75h-g8h9.json
index 65dc1d35db6..6e1477bf2e0 100644
--- a/advisories/unreviewed/2022/05/GHSA-qvxr-p75h-g8h9/GHSA-qvxr-p75h-g8h9.json
+++ b/advisories/unreviewed/2022/05/GHSA-qvxr-p75h-g8h9/GHSA-qvxr-p75h-g8h9.json
@@ -7,12 +7,8 @@
"CVE-2016-10999"
],
"details": "The Goodnews theme through 2016-02-28 for WordPress has XSS via the s parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-qw4x-8f78-c38x/GHSA-qw4x-8f78-c38x.json b/advisories/unreviewed/2022/05/GHSA-qw4x-8f78-c38x/GHSA-qw4x-8f78-c38x.json
index 6e7bedee1bd..35769951339 100644
--- a/advisories/unreviewed/2022/05/GHSA-qw4x-8f78-c38x/GHSA-qw4x-8f78-c38x.json
+++ b/advisories/unreviewed/2022/05/GHSA-qw4x-8f78-c38x/GHSA-qw4x-8f78-c38x.json
@@ -7,12 +7,8 @@
"CVE-2007-6053"
],
"details": "IBM DB2 UDB 9.1 before Fixpak 4 does not properly handle use of large numbers of file descriptors, which might allow attackers to have an unknown impact involving \"memory corruption.\" NOTE: the vendor description of this issue is too vague to be certain that it is security-related.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -36,9 +32,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-qw99-59fj-mwq3/GHSA-qw99-59fj-mwq3.json b/advisories/unreviewed/2022/05/GHSA-qw99-59fj-mwq3/GHSA-qw99-59fj-mwq3.json
index 97c905c70b2..65a7dbc6ae5 100644
--- a/advisories/unreviewed/2022/05/GHSA-qw99-59fj-mwq3/GHSA-qw99-59fj-mwq3.json
+++ b/advisories/unreviewed/2022/05/GHSA-qw99-59fj-mwq3/GHSA-qw99-59fj-mwq3.json
@@ -7,12 +7,8 @@
"CVE-2007-5985"
],
"details": "Multiple cross-site scripting (XSS) vulnerabilities in BtiTracker before 1.4.5 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors to (1) account.php, (2) moresmiles.php, or (3) recover.php; or (4) the \"to\" parameter to usercp.php.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-qwjc-5gc9-97xh/GHSA-qwjc-5gc9-97xh.json b/advisories/unreviewed/2022/05/GHSA-qwjc-5gc9-97xh/GHSA-qwjc-5gc9-97xh.json
index ae289d7690c..4067703c7f1 100644
--- a/advisories/unreviewed/2022/05/GHSA-qwjc-5gc9-97xh/GHSA-qwjc-5gc9-97xh.json
+++ b/advisories/unreviewed/2022/05/GHSA-qwjc-5gc9-97xh/GHSA-qwjc-5gc9-97xh.json
@@ -7,12 +7,8 @@
"CVE-2007-6043"
],
"details": "The CryptGenRandom function in Microsoft Windows 2000 generates predictable values, which makes it easier for context-dependent attackers to reduce the effectiveness of cryptographic mechanisms, as demonstrated by attacks on (1) forward security and (2) backward security, related to use of eight instances of the RC4 cipher, and possibly a related issue to CVE-2007-3898.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-qxc5-6f67-jc5c/GHSA-qxc5-6f67-jc5c.json b/advisories/unreviewed/2022/05/GHSA-qxc5-6f67-jc5c/GHSA-qxc5-6f67-jc5c.json
index 674bf64b0ab..d9a1d80e78a 100644
--- a/advisories/unreviewed/2022/05/GHSA-qxc5-6f67-jc5c/GHSA-qxc5-6f67-jc5c.json
+++ b/advisories/unreviewed/2022/05/GHSA-qxc5-6f67-jc5c/GHSA-qxc5-6f67-jc5c.json
@@ -7,12 +7,8 @@
"CVE-2007-6083"
],
"details": "SQL injection vulnerability in admin/index.php in IceBB 1.0-rc6 allows remote attackers to execute arbitrary SQL commands via the X-Forwarded-For HTTP header.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-qxg2-qjfr-5899/GHSA-qxg2-qjfr-5899.json b/advisories/unreviewed/2022/05/GHSA-qxg2-qjfr-5899/GHSA-qxg2-qjfr-5899.json
index b18fef61e3b..a5d665f7361 100644
--- a/advisories/unreviewed/2022/05/GHSA-qxg2-qjfr-5899/GHSA-qxg2-qjfr-5899.json
+++ b/advisories/unreviewed/2022/05/GHSA-qxg2-qjfr-5899/GHSA-qxg2-qjfr-5899.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-qxgv-94gq-m36h/GHSA-qxgv-94gq-m36h.json b/advisories/unreviewed/2022/05/GHSA-qxgv-94gq-m36h/GHSA-qxgv-94gq-m36h.json
index 17e0e468d35..fc47d25ccf1 100644
--- a/advisories/unreviewed/2022/05/GHSA-qxgv-94gq-m36h/GHSA-qxgv-94gq-m36h.json
+++ b/advisories/unreviewed/2022/05/GHSA-qxgv-94gq-m36h/GHSA-qxgv-94gq-m36h.json
@@ -7,12 +7,8 @@
"CVE-2007-6175"
],
"details": "Buffer overflow in Lhaplus 1.55 and earlier allows remote attackers to execute arbitrary code via a crafted LZH archive, a different vector than CVE-2007-5048.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-qxh5-j4mp-pchg/GHSA-qxh5-j4mp-pchg.json b/advisories/unreviewed/2022/05/GHSA-qxh5-j4mp-pchg/GHSA-qxh5-j4mp-pchg.json
index 3fe03a45d4d..39af4ab7cba 100644
--- a/advisories/unreviewed/2022/05/GHSA-qxh5-j4mp-pchg/GHSA-qxh5-j4mp-pchg.json
+++ b/advisories/unreviewed/2022/05/GHSA-qxh5-j4mp-pchg/GHSA-qxh5-j4mp-pchg.json
@@ -7,12 +7,8 @@
"CVE-2007-5901"
],
"details": "Use-after-free vulnerability in the gss_indicate_mechs function in lib/gssapi/mechglue/g_initialize.c in MIT Kerberos 5 (krb5) has unknown impact and attack vectors. NOTE: this might be the result of a typo in the source code.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -100,9 +96,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-r386-j6gx-vhwr/GHSA-r386-j6gx-vhwr.json b/advisories/unreviewed/2022/05/GHSA-r386-j6gx-vhwr/GHSA-r386-j6gx-vhwr.json
index 9426e102b84..4451161dac0 100644
--- a/advisories/unreviewed/2022/05/GHSA-r386-j6gx-vhwr/GHSA-r386-j6gx-vhwr.json
+++ b/advisories/unreviewed/2022/05/GHSA-r386-j6gx-vhwr/GHSA-r386-j6gx-vhwr.json
@@ -7,12 +7,8 @@
"CVE-2019-15085"
],
"details": "An issue was discovered in PRiSE adAS 1.7.0. The current database password is embedded in the change password form.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-r438-g78v-652j/GHSA-r438-g78v-652j.json b/advisories/unreviewed/2022/05/GHSA-r438-g78v-652j/GHSA-r438-g78v-652j.json
index d1dd91c1c72..84e23344a6c 100644
--- a/advisories/unreviewed/2022/05/GHSA-r438-g78v-652j/GHSA-r438-g78v-652j.json
+++ b/advisories/unreviewed/2022/05/GHSA-r438-g78v-652j/GHSA-r438-g78v-652j.json
@@ -7,12 +7,8 @@
"CVE-2016-10985"
],
"details": "The echosign plugin before 1.2 for WordPress has XSS via the templates/add_templates.php id parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -32,9 +28,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-r45j-hxvq-fmm8/GHSA-r45j-hxvq-fmm8.json b/advisories/unreviewed/2022/05/GHSA-r45j-hxvq-fmm8/GHSA-r45j-hxvq-fmm8.json
index 74467e3b07f..5c563df7732 100644
--- a/advisories/unreviewed/2022/05/GHSA-r45j-hxvq-fmm8/GHSA-r45j-hxvq-fmm8.json
+++ b/advisories/unreviewed/2022/05/GHSA-r45j-hxvq-fmm8/GHSA-r45j-hxvq-fmm8.json
@@ -7,12 +7,8 @@
"CVE-2015-9417"
],
"details": "The testimonial-slider plugin through 1.2.1 for WordPress has CSRF with resultant XSS.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-r46j-8frc-xvvq/GHSA-r46j-8frc-xvvq.json b/advisories/unreviewed/2022/05/GHSA-r46j-8frc-xvvq/GHSA-r46j-8frc-xvvq.json
index 5608c4da3f9..ced250ecad3 100644
--- a/advisories/unreviewed/2022/05/GHSA-r46j-8frc-xvvq/GHSA-r46j-8frc-xvvq.json
+++ b/advisories/unreviewed/2022/05/GHSA-r46j-8frc-xvvq/GHSA-r46j-8frc-xvvq.json
@@ -7,12 +7,8 @@
"CVE-2007-5904"
],
"details": "Multiple buffer overflows in CIFS VFS in Linux kernel 2.6.23 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via long SMB responses that trigger the overflows in the SendReceive function.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-r52x-4q2c-93mg/GHSA-r52x-4q2c-93mg.json b/advisories/unreviewed/2022/05/GHSA-r52x-4q2c-93mg/GHSA-r52x-4q2c-93mg.json
index aca74eb6e24..f692202bc7b 100644
--- a/advisories/unreviewed/2022/05/GHSA-r52x-4q2c-93mg/GHSA-r52x-4q2c-93mg.json
+++ b/advisories/unreviewed/2022/05/GHSA-r52x-4q2c-93mg/GHSA-r52x-4q2c-93mg.json
@@ -7,12 +7,8 @@
"CVE-2007-5990"
],
"details": "Cross-site scripting (XSS) vulnerability in ExoPHPdesk allows remote attackers to inject arbitrary web script or HTML via unspecified vectors in a user profile, possibly the (1) name and (2) website parameters to register.php.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-r5c5-5849-8rr9/GHSA-r5c5-5849-8rr9.json b/advisories/unreviewed/2022/05/GHSA-r5c5-5849-8rr9/GHSA-r5c5-5849-8rr9.json
index 4ffeefbed63..cac2a023c36 100644
--- a/advisories/unreviewed/2022/05/GHSA-r5c5-5849-8rr9/GHSA-r5c5-5849-8rr9.json
+++ b/advisories/unreviewed/2022/05/GHSA-r5c5-5849-8rr9/GHSA-r5c5-5849-8rr9.json
@@ -7,12 +7,8 @@
"CVE-2007-6199"
],
"details": "rsync before 3.0.0pre6, when running a writable rsync daemon that is not using chroot, allows remote attackers to access restricted files via unknown vectors that cause rsync to create a symlink that points outside of the module's hierarchy.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -88,9 +84,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-r5fq-f973-98jc/GHSA-r5fq-f973-98jc.json b/advisories/unreviewed/2022/05/GHSA-r5fq-f973-98jc/GHSA-r5fq-f973-98jc.json
index 7e20b854cd8..9e9c2d2277d 100644
--- a/advisories/unreviewed/2022/05/GHSA-r5fq-f973-98jc/GHSA-r5fq-f973-98jc.json
+++ b/advisories/unreviewed/2022/05/GHSA-r5fq-f973-98jc/GHSA-r5fq-f973-98jc.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-r5wg-v848-8x3g/GHSA-r5wg-v848-8x3g.json b/advisories/unreviewed/2022/05/GHSA-r5wg-v848-8x3g/GHSA-r5wg-v848-8x3g.json
index c05e28cf15b..95d7c2dcbe1 100644
--- a/advisories/unreviewed/2022/05/GHSA-r5wg-v848-8x3g/GHSA-r5wg-v848-8x3g.json
+++ b/advisories/unreviewed/2022/05/GHSA-r5wg-v848-8x3g/GHSA-r5wg-v848-8x3g.json
@@ -7,12 +7,8 @@
"CVE-2007-5924"
],
"details": "Cross-site scripting (XSS) vulnerability in the Web Server (HTTP) task in IBM Lotus Domino before 6.5.6 FP2, and 7.x before 7.0.2 FP2, allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-r822-pwxw-5qc9/GHSA-r822-pwxw-5qc9.json b/advisories/unreviewed/2022/05/GHSA-r822-pwxw-5qc9/GHSA-r822-pwxw-5qc9.json
index 7585ed54344..c8c04d9071f 100644
--- a/advisories/unreviewed/2022/05/GHSA-r822-pwxw-5qc9/GHSA-r822-pwxw-5qc9.json
+++ b/advisories/unreviewed/2022/05/GHSA-r822-pwxw-5qc9/GHSA-r822-pwxw-5qc9.json
@@ -7,12 +7,8 @@
"CVE-2007-6067"
],
"details": "Algorithmic complexity vulnerability in the regular expression parser in TCL before 8.4.17, as used in PostgreSQL 8.2 before 8.2.6, 8.1 before 8.1.11, 8.0 before 8.0.15, and 7.4 before 7.4.19, allows remote authenticated users to cause a denial of service (memory consumption) via a crafted \"complex\" regular expression with doubly-nested states.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -180,9 +176,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-r9p2-4jr9-w24j/GHSA-r9p2-4jr9-w24j.json b/advisories/unreviewed/2022/05/GHSA-r9p2-4jr9-w24j/GHSA-r9p2-4jr9-w24j.json
index 8e73bfac39a..5a39a3743dc 100644
--- a/advisories/unreviewed/2022/05/GHSA-r9p2-4jr9-w24j/GHSA-r9p2-4jr9-w24j.json
+++ b/advisories/unreviewed/2022/05/GHSA-r9p2-4jr9-w24j/GHSA-r9p2-4jr9-w24j.json
@@ -7,12 +7,8 @@
"CVE-2007-5920"
],
"details": "index.php in Domenico Mancini PicoFlat CMS before 0.4.18 allows remote attackers to include certain files via unspecified vectors, possibly due to a directory traversal vulnerability. NOTE: this can be leveraged to bypass authentication and upload files by including pico_insert.php or unspecified other administrative scripts. NOTE: some of these details are obtained from third party information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-r9pq-w63p-7296/GHSA-r9pq-w63p-7296.json b/advisories/unreviewed/2022/05/GHSA-r9pq-w63p-7296/GHSA-r9pq-w63p-7296.json
index 0fb07feaa5c..858900ed3c7 100644
--- a/advisories/unreviewed/2022/05/GHSA-r9pq-w63p-7296/GHSA-r9pq-w63p-7296.json
+++ b/advisories/unreviewed/2022/05/GHSA-r9pq-w63p-7296/GHSA-r9pq-w63p-7296.json
@@ -7,12 +7,8 @@
"CVE-2007-5851"
],
"details": "iChat in Apple Mac OS X 10.4.11 allows network-adjacent remote attackers to automatically initiate a video connection to another user via unknown vectors.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -52,9 +48,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "LOW",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-rf44-cp45-ppcv/GHSA-rf44-cp45-ppcv.json b/advisories/unreviewed/2022/05/GHSA-rf44-cp45-ppcv/GHSA-rf44-cp45-ppcv.json
index d4dc1571830..a9ec6df192c 100644
--- a/advisories/unreviewed/2022/05/GHSA-rf44-cp45-ppcv/GHSA-rf44-cp45-ppcv.json
+++ b/advisories/unreviewed/2022/05/GHSA-rf44-cp45-ppcv/GHSA-rf44-cp45-ppcv.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-rfx6-wj86-768g/GHSA-rfx6-wj86-768g.json b/advisories/unreviewed/2022/05/GHSA-rfx6-wj86-768g/GHSA-rfx6-wj86-768g.json
index bc6a70a477a..2e0b10ee694 100644
--- a/advisories/unreviewed/2022/05/GHSA-rfx6-wj86-768g/GHSA-rfx6-wj86-768g.json
+++ b/advisories/unreviewed/2022/05/GHSA-rfx6-wj86-768g/GHSA-rfx6-wj86-768g.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-rghg-gw3p-2f8w/GHSA-rghg-gw3p-2f8w.json b/advisories/unreviewed/2022/05/GHSA-rghg-gw3p-2f8w/GHSA-rghg-gw3p-2f8w.json
index 06b89035638..8c6e8e6817b 100644
--- a/advisories/unreviewed/2022/05/GHSA-rghg-gw3p-2f8w/GHSA-rghg-gw3p-2f8w.json
+++ b/advisories/unreviewed/2022/05/GHSA-rghg-gw3p-2f8w/GHSA-rghg-gw3p-2f8w.json
@@ -7,12 +7,8 @@
"CVE-2007-5940"
],
"details": "feynmf.pl in feynmf 1.08, as used in TeXLive 2007, allows local users to overwrite arbitrary files and execute arbitrary code via a symlink attack on the feynmf$$.pl temporary file.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-rh9m-8vch-h2gr/GHSA-rh9m-8vch-h2gr.json b/advisories/unreviewed/2022/05/GHSA-rh9m-8vch-h2gr/GHSA-rh9m-8vch-h2gr.json
index ab85009f83f..7cfd70831ce 100644
--- a/advisories/unreviewed/2022/05/GHSA-rh9m-8vch-h2gr/GHSA-rh9m-8vch-h2gr.json
+++ b/advisories/unreviewed/2022/05/GHSA-rh9m-8vch-h2gr/GHSA-rh9m-8vch-h2gr.json
@@ -7,12 +7,8 @@
"CVE-2019-1236"
],
"details": "A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'VBScript Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1208.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-rhh4-95cw-qqvp/GHSA-rhh4-95cw-qqvp.json b/advisories/unreviewed/2022/05/GHSA-rhh4-95cw-qqvp/GHSA-rhh4-95cw-qqvp.json
index 8322d8192d8..f46f589d0a3 100644
--- a/advisories/unreviewed/2022/05/GHSA-rhh4-95cw-qqvp/GHSA-rhh4-95cw-qqvp.json
+++ b/advisories/unreviewed/2022/05/GHSA-rhh4-95cw-qqvp/GHSA-rhh4-95cw-qqvp.json
@@ -7,12 +7,8 @@
"CVE-2007-6198"
],
"details": "portal/server.pt in the Plumtree portal in BEA AquaLogic Interaction 5.0.2 through 5.0.4 and 6.0.1.218452 allows wildcards in advanced searches for usernames, which allows remote attackers to enumerate valid usernames via the in_tx_fulltext parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -44,9 +40,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-rhwg-2g63-9m63/GHSA-rhwg-2g63-9m63.json b/advisories/unreviewed/2022/05/GHSA-rhwg-2g63-9m63/GHSA-rhwg-2g63-9m63.json
index 49813e2e8e4..d5f7fa1ae9b 100644
--- a/advisories/unreviewed/2022/05/GHSA-rhwg-2g63-9m63/GHSA-rhwg-2g63-9m63.json
+++ b/advisories/unreviewed/2022/05/GHSA-rhwg-2g63-9m63/GHSA-rhwg-2g63-9m63.json
@@ -7,12 +7,8 @@
"CVE-2007-5996"
],
"details": "SQL injection vulnerability in searchresult.php in Softbiz Link Directory Script allows remote attackers to execute arbitrary SQL commands via the sbcat_id parameter, a related issue to CVE-2007-5449.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-rm2w-v49j-gx7w/GHSA-rm2w-v49j-gx7w.json b/advisories/unreviewed/2022/05/GHSA-rm2w-v49j-gx7w/GHSA-rm2w-v49j-gx7w.json
index 9c6fc630913..f2783cf5014 100644
--- a/advisories/unreviewed/2022/05/GHSA-rm2w-v49j-gx7w/GHSA-rm2w-v49j-gx7w.json
+++ b/advisories/unreviewed/2022/05/GHSA-rm2w-v49j-gx7w/GHSA-rm2w-v49j-gx7w.json
@@ -7,12 +7,8 @@
"CVE-2007-6025"
],
"details": "Stack-based buffer overflow in driver_wext.c in wpa_supplicant 0.6.0 and earlier allows remote attackers to cause a denial of service (crash) via crafted TSF data.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-rmcg-hfrp-gr58/GHSA-rmcg-hfrp-gr58.json b/advisories/unreviewed/2022/05/GHSA-rmcg-hfrp-gr58/GHSA-rmcg-hfrp-gr58.json
index be826ed2fe8..df40888dd51 100644
--- a/advisories/unreviewed/2022/05/GHSA-rmcg-hfrp-gr58/GHSA-rmcg-hfrp-gr58.json
+++ b/advisories/unreviewed/2022/05/GHSA-rmcg-hfrp-gr58/GHSA-rmcg-hfrp-gr58.json
@@ -7,12 +7,8 @@
"CVE-2007-5938"
],
"details": "The iwl_set_rate function in compatible/iwl3945-base.c in iwlwifi 1.1.21 and earlier dereferences an iwl_get_hw_mode return value without checking for NULL, which might allow remote attackers to cause a denial of service (kernel panic) via unspecified vectors during module initialization.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -56,9 +52,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-rmj6-8688-qrrc/GHSA-rmj6-8688-qrrc.json b/advisories/unreviewed/2022/05/GHSA-rmj6-8688-qrrc/GHSA-rmj6-8688-qrrc.json
index 8530023fa99..806a02490f1 100644
--- a/advisories/unreviewed/2022/05/GHSA-rmj6-8688-qrrc/GHSA-rmj6-8688-qrrc.json
+++ b/advisories/unreviewed/2022/05/GHSA-rmj6-8688-qrrc/GHSA-rmj6-8688-qrrc.json
@@ -7,12 +7,8 @@
"CVE-2019-9396"
],
"details": "In Bluetooth, there is possible controlled termination due to a missing bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-115747155",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-rpr9-8jrq-2f24/GHSA-rpr9-8jrq-2f24.json b/advisories/unreviewed/2022/05/GHSA-rpr9-8jrq-2f24/GHSA-rpr9-8jrq-2f24.json
index bb032ba99de..f8645e83b08 100644
--- a/advisories/unreviewed/2022/05/GHSA-rpr9-8jrq-2f24/GHSA-rpr9-8jrq-2f24.json
+++ b/advisories/unreviewed/2022/05/GHSA-rpr9-8jrq-2f24/GHSA-rpr9-8jrq-2f24.json
@@ -7,12 +7,8 @@
"CVE-2007-5999"
],
"details": "SQL injection vulnerability in product_desc.php in Softbiz Auctions Script allows remote attackers to execute arbitrary SQL commands via the id parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-rq77-jwg8-cmgx/GHSA-rq77-jwg8-cmgx.json b/advisories/unreviewed/2022/05/GHSA-rq77-jwg8-cmgx/GHSA-rq77-jwg8-cmgx.json
index ae71288aa73..78826dfd015 100644
--- a/advisories/unreviewed/2022/05/GHSA-rq77-jwg8-cmgx/GHSA-rq77-jwg8-cmgx.json
+++ b/advisories/unreviewed/2022/05/GHSA-rq77-jwg8-cmgx/GHSA-rq77-jwg8-cmgx.json
@@ -7,12 +7,8 @@
"CVE-2007-5997"
],
"details": "SQL injection vulnerability in campaign_stats.php in Softbiz Banner Exchange Network Script 1.0 allows remote authenticated users to execute arbitrary SQL commands via the id parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-rrph-hg92-78p7/GHSA-rrph-hg92-78p7.json b/advisories/unreviewed/2022/05/GHSA-rrph-hg92-78p7/GHSA-rrph-hg92-78p7.json
index faf544ac15e..7481dd77c62 100644
--- a/advisories/unreviewed/2022/05/GHSA-rrph-hg92-78p7/GHSA-rrph-hg92-78p7.json
+++ b/advisories/unreviewed/2022/05/GHSA-rrph-hg92-78p7/GHSA-rrph-hg92-78p7.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -35,9 +33,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-rv62-hr8r-jr2p/GHSA-rv62-hr8r-jr2p.json b/advisories/unreviewed/2022/05/GHSA-rv62-hr8r-jr2p/GHSA-rv62-hr8r-jr2p.json
index 310320aab0a..b6f24b919d3 100644
--- a/advisories/unreviewed/2022/05/GHSA-rv62-hr8r-jr2p/GHSA-rv62-hr8r-jr2p.json
+++ b/advisories/unreviewed/2022/05/GHSA-rv62-hr8r-jr2p/GHSA-rv62-hr8r-jr2p.json
@@ -7,12 +7,8 @@
"CVE-2007-6197"
],
"details": "The Plumtree portal in BEA AquaLogic Interaction 5.0.2 through 5.0.4 and 6.0.1.218452 allows remote attackers to obtain version numbers and internal hostnames by reading comments in the HTML source of any page.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-rvxj-mfpp-v4wm/GHSA-rvxj-mfpp-v4wm.json b/advisories/unreviewed/2022/05/GHSA-rvxj-mfpp-v4wm/GHSA-rvxj-mfpp-v4wm.json
index d3dd3298195..caa8e900c08 100644
--- a/advisories/unreviewed/2022/05/GHSA-rvxj-mfpp-v4wm/GHSA-rvxj-mfpp-v4wm.json
+++ b/advisories/unreviewed/2022/05/GHSA-rvxj-mfpp-v4wm/GHSA-rvxj-mfpp-v4wm.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-rw3m-rqw9-p6rw/GHSA-rw3m-rqw9-p6rw.json b/advisories/unreviewed/2022/05/GHSA-rw3m-rqw9-p6rw/GHSA-rw3m-rqw9-p6rw.json
index 3436a99e1e5..4fb359d0ad4 100644
--- a/advisories/unreviewed/2022/05/GHSA-rw3m-rqw9-p6rw/GHSA-rw3m-rqw9-p6rw.json
+++ b/advisories/unreviewed/2022/05/GHSA-rw3m-rqw9-p6rw/GHSA-rw3m-rqw9-p6rw.json
@@ -7,12 +7,8 @@
"CVE-2007-6210"
],
"details": "zabbix_agentd 1.1.4 in ZABBIX before 1.4.3 runs \"UserParameter\" scripts with gid 0, which might allow local users to gain privileges.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -56,9 +52,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "LOW",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-rx5m-j84j-22pg/GHSA-rx5m-j84j-22pg.json b/advisories/unreviewed/2022/05/GHSA-rx5m-j84j-22pg/GHSA-rx5m-j84j-22pg.json
index 5b9f321fa3f..7e6465563a5 100644
--- a/advisories/unreviewed/2022/05/GHSA-rx5m-j84j-22pg/GHSA-rx5m-j84j-22pg.json
+++ b/advisories/unreviewed/2022/05/GHSA-rx5m-j84j-22pg/GHSA-rx5m-j84j-22pg.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-v2mw-w6vx-hf28/GHSA-v2mw-w6vx-hf28.json b/advisories/unreviewed/2022/05/GHSA-v2mw-w6vx-hf28/GHSA-v2mw-w6vx-hf28.json
index e8a8b51b014..8effb467bfc 100644
--- a/advisories/unreviewed/2022/05/GHSA-v2mw-w6vx-hf28/GHSA-v2mw-w6vx-hf28.json
+++ b/advisories/unreviewed/2022/05/GHSA-v2mw-w6vx-hf28/GHSA-v2mw-w6vx-hf28.json
@@ -7,12 +7,8 @@
"CVE-2007-5995"
],
"details": "PHP remote file inclusion vulnerability in examples/patExampleGen/bbcodeSource.php in patBBcode 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the example parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-v4cp-452c-q84g/GHSA-v4cp-452c-q84g.json b/advisories/unreviewed/2022/05/GHSA-v4cp-452c-q84g/GHSA-v4cp-452c-q84g.json
index 7ff912a8402..fb6eff7927f 100644
--- a/advisories/unreviewed/2022/05/GHSA-v4cp-452c-q84g/GHSA-v4cp-452c-q84g.json
+++ b/advisories/unreviewed/2022/05/GHSA-v4cp-452c-q84g/GHSA-v4cp-452c-q84g.json
@@ -7,12 +7,8 @@
"CVE-2007-5955"
],
"details": "Cross-site scripting (XSS) vulnerability in updir.php in UPDIR.NET before 2.04 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-v4p4-65gh-94f7/GHSA-v4p4-65gh-94f7.json b/advisories/unreviewed/2022/05/GHSA-v4p4-65gh-94f7/GHSA-v4p4-65gh-94f7.json
index 2dc272f0870..9487de764f6 100644
--- a/advisories/unreviewed/2022/05/GHSA-v4p4-65gh-94f7/GHSA-v4p4-65gh-94f7.json
+++ b/advisories/unreviewed/2022/05/GHSA-v4p4-65gh-94f7/GHSA-v4p4-65gh-94f7.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-v586-4xh5-67mm/GHSA-v586-4xh5-67mm.json b/advisories/unreviewed/2022/05/GHSA-v586-4xh5-67mm/GHSA-v586-4xh5-67mm.json
index 5c98778c124..bd77901be61 100644
--- a/advisories/unreviewed/2022/05/GHSA-v586-4xh5-67mm/GHSA-v586-4xh5-67mm.json
+++ b/advisories/unreviewed/2022/05/GHSA-v586-4xh5-67mm/GHSA-v586-4xh5-67mm.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-v5c3-w6m2-m2qv/GHSA-v5c3-w6m2-m2qv.json b/advisories/unreviewed/2022/05/GHSA-v5c3-w6m2-m2qv/GHSA-v5c3-w6m2-m2qv.json
index 3e1873927cd..36f7d104d42 100644
--- a/advisories/unreviewed/2022/05/GHSA-v5c3-w6m2-m2qv/GHSA-v5c3-w6m2-m2qv.json
+++ b/advisories/unreviewed/2022/05/GHSA-v5c3-w6m2-m2qv/GHSA-v5c3-w6m2-m2qv.json
@@ -7,12 +7,8 @@
"CVE-2019-2150"
],
"details": "In libxaac, there is a possible out of bounds read due to a missing bounds check. This could lead to information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-117935831",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-v5xm-v4c7-6hcj/GHSA-v5xm-v4c7-6hcj.json b/advisories/unreviewed/2022/05/GHSA-v5xm-v4c7-6hcj/GHSA-v5xm-v4c7-6hcj.json
index 1a0bb3bde72..26c87476ca6 100644
--- a/advisories/unreviewed/2022/05/GHSA-v5xm-v4c7-6hcj/GHSA-v5xm-v4c7-6hcj.json
+++ b/advisories/unreviewed/2022/05/GHSA-v5xm-v4c7-6hcj/GHSA-v5xm-v4c7-6hcj.json
@@ -7,12 +7,8 @@
"CVE-2007-5839"
],
"details": "The e_hostname function in commands.c in BitchX 1.1a allows local users to overwrite arbitrary files via a symlink attack on temporary files when using the (1) HOSTNAME or (2) IRCHOST command.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-v68v-m7xj-6wc2/GHSA-v68v-m7xj-6wc2.json b/advisories/unreviewed/2022/05/GHSA-v68v-m7xj-6wc2/GHSA-v68v-m7xj-6wc2.json
index 2957d43a482..46677ecfc2f 100644
--- a/advisories/unreviewed/2022/05/GHSA-v68v-m7xj-6wc2/GHSA-v68v-m7xj-6wc2.json
+++ b/advisories/unreviewed/2022/05/GHSA-v68v-m7xj-6wc2/GHSA-v68v-m7xj-6wc2.json
@@ -7,12 +7,8 @@
"CVE-2007-6041"
],
"details": "Buffer overflow in the Sequencer::queueMessage function in sequencer.cpp in the server in Rigs of Rods (RoR) before 0.33d SP1 allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code by sending a nickname, then a vehicle name in a MSG2_USE_VEHICLE message, in which the combined length triggers the overflow.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-v6jj-68q8-6xhq/GHSA-v6jj-68q8-6xhq.json b/advisories/unreviewed/2022/05/GHSA-v6jj-68q8-6xhq/GHSA-v6jj-68q8-6xhq.json
index 6a9569755b8..fbf5c074da1 100644
--- a/advisories/unreviewed/2022/05/GHSA-v6jj-68q8-6xhq/GHSA-v6jj-68q8-6xhq.json
+++ b/advisories/unreviewed/2022/05/GHSA-v6jj-68q8-6xhq/GHSA-v6jj-68q8-6xhq.json
@@ -7,12 +7,8 @@
"CVE-2007-6087"
],
"details": "Cross-site request forgery (CSRF) vulnerability in index.php in VigileCMS 1.4 allows remote attackers to change the admin password via certain parameters to the changepass module.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-v89x-7433-3jxh/GHSA-v89x-7433-3jxh.json b/advisories/unreviewed/2022/05/GHSA-v89x-7433-3jxh/GHSA-v89x-7433-3jxh.json
index 60b1bf3a00e..525d6818e62 100644
--- a/advisories/unreviewed/2022/05/GHSA-v89x-7433-3jxh/GHSA-v89x-7433-3jxh.json
+++ b/advisories/unreviewed/2022/05/GHSA-v89x-7433-3jxh/GHSA-v89x-7433-3jxh.json
@@ -7,12 +7,8 @@
"CVE-2007-6081"
],
"details": "AdventNet EventLog Analyzer build 4030 for Windows, and possibly other versions and platforms, installs a mysql instance with a default \"root\" account without a password, which allows remote attackers to gain privileges and modify logs. Fixed in EventLog Analyzer Build 6000.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -36,9 +32,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-v8j4-378q-qp8v/GHSA-v8j4-378q-qp8v.json b/advisories/unreviewed/2022/05/GHSA-v8j4-378q-qp8v/GHSA-v8j4-378q-qp8v.json
index a79399f6e3a..f18a64e5142 100644
--- a/advisories/unreviewed/2022/05/GHSA-v8j4-378q-qp8v/GHSA-v8j4-378q-qp8v.json
+++ b/advisories/unreviewed/2022/05/GHSA-v8j4-378q-qp8v/GHSA-v8j4-378q-qp8v.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-v9rw-w6gg-x642/GHSA-v9rw-w6gg-x642.json b/advisories/unreviewed/2022/05/GHSA-v9rw-w6gg-x642/GHSA-v9rw-w6gg-x642.json
index 37f465c7c12..a4ffadbc95c 100644
--- a/advisories/unreviewed/2022/05/GHSA-v9rw-w6gg-x642/GHSA-v9rw-w6gg-x642.json
+++ b/advisories/unreviewed/2022/05/GHSA-v9rw-w6gg-x642/GHSA-v9rw-w6gg-x642.json
@@ -7,12 +7,8 @@
"CVE-2019-1208"
],
"details": "A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'VBScript Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1236.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-vc23-9q3p-jq7c/GHSA-vc23-9q3p-jq7c.json b/advisories/unreviewed/2022/05/GHSA-vc23-9q3p-jq7c/GHSA-vc23-9q3p-jq7c.json
index 92676a2f2b4..902d5a31d8a 100644
--- a/advisories/unreviewed/2022/05/GHSA-vc23-9q3p-jq7c/GHSA-vc23-9q3p-jq7c.json
+++ b/advisories/unreviewed/2022/05/GHSA-vc23-9q3p-jq7c/GHSA-vc23-9q3p-jq7c.json
@@ -7,12 +7,8 @@
"CVE-2007-6195"
],
"details": "Buffer overflow in the sw_rpc_agent_init function in swagentd in Software Distributor (SD), and possibly other DCE applications, in HP HP-UX B.11.11 and B.11.23 allows remote attackers to execute arbitrary code or cause a denial of service via malformed arguments in an opcode 0x04 DCE RPC request.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-vc77-rwwc-jf2g/GHSA-vc77-rwwc-jf2g.json b/advisories/unreviewed/2022/05/GHSA-vc77-rwwc-jf2g/GHSA-vc77-rwwc-jf2g.json
index 1b11db43370..4eb3534c9ef 100644
--- a/advisories/unreviewed/2022/05/GHSA-vc77-rwwc-jf2g/GHSA-vc77-rwwc-jf2g.json
+++ b/advisories/unreviewed/2022/05/GHSA-vc77-rwwc-jf2g/GHSA-vc77-rwwc-jf2g.json
@@ -7,12 +7,8 @@
"CVE-2015-9392"
],
"details": "The users-ultra plugin before 1.5.63 for WordPress has XSS via the p_name parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -32,9 +28,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "LOW",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-vc88-f7p6-j84m/GHSA-vc88-f7p6-j84m.json b/advisories/unreviewed/2022/05/GHSA-vc88-f7p6-j84m/GHSA-vc88-f7p6-j84m.json
index f254d58de5c..fbad7d1c1d6 100644
--- a/advisories/unreviewed/2022/05/GHSA-vc88-f7p6-j84m/GHSA-vc88-f7p6-j84m.json
+++ b/advisories/unreviewed/2022/05/GHSA-vc88-f7p6-j84m/GHSA-vc88-f7p6-j84m.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-vfqm-2wv5-9h3w/GHSA-vfqm-2wv5-9h3w.json b/advisories/unreviewed/2022/05/GHSA-vfqm-2wv5-9h3w/GHSA-vfqm-2wv5-9h3w.json
index c35f976bf90..b24f061bb64 100644
--- a/advisories/unreviewed/2022/05/GHSA-vfqm-2wv5-9h3w/GHSA-vfqm-2wv5-9h3w.json
+++ b/advisories/unreviewed/2022/05/GHSA-vfqm-2wv5-9h3w/GHSA-vfqm-2wv5-9h3w.json
@@ -7,12 +7,8 @@
"CVE-2016-10998"
],
"details": "The ocim-mp3 plugin through 2016-03-07 for WordPress has wp-content/plugins/ocim-mp3/source/pages.php?id= XSS.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-vgjg-q2cg-9f2h/GHSA-vgjg-q2cg-9f2h.json b/advisories/unreviewed/2022/05/GHSA-vgjg-q2cg-9f2h/GHSA-vgjg-q2cg-9f2h.json
index 757577cabf0..391eaf50758 100644
--- a/advisories/unreviewed/2022/05/GHSA-vgjg-q2cg-9f2h/GHSA-vgjg-q2cg-9f2h.json
+++ b/advisories/unreviewed/2022/05/GHSA-vgjg-q2cg-9f2h/GHSA-vgjg-q2cg-9f2h.json
@@ -7,12 +7,8 @@
"CVE-2007-6151"
],
"details": "The isdn_ioctl function in isdn_common.c in Linux kernel 2.6.23 allows local users to cause a denial of service via a crafted ioctl struct in which iocts is not null terminated, which triggers a buffer overflow.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-vh23-x25h-2wfm/GHSA-vh23-x25h-2wfm.json b/advisories/unreviewed/2022/05/GHSA-vh23-x25h-2wfm/GHSA-vh23-x25h-2wfm.json
index 28ca1eff842..a5e5fac9194 100644
--- a/advisories/unreviewed/2022/05/GHSA-vh23-x25h-2wfm/GHSA-vh23-x25h-2wfm.json
+++ b/advisories/unreviewed/2022/05/GHSA-vh23-x25h-2wfm/GHSA-vh23-x25h-2wfm.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-vh8c-94c5-w6j8/GHSA-vh8c-94c5-w6j8.json b/advisories/unreviewed/2022/05/GHSA-vh8c-94c5-w6j8/GHSA-vh8c-94c5-w6j8.json
index 942415c7368..be4d51bfb74 100644
--- a/advisories/unreviewed/2022/05/GHSA-vh8c-94c5-w6j8/GHSA-vh8c-94c5-w6j8.json
+++ b/advisories/unreviewed/2022/05/GHSA-vh8c-94c5-w6j8/GHSA-vh8c-94c5-w6j8.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-vmc8-ggh9-8p8j/GHSA-vmc8-ggh9-8p8j.json b/advisories/unreviewed/2022/05/GHSA-vmc8-ggh9-8p8j/GHSA-vmc8-ggh9-8p8j.json
index 399cc67880e..eb32b579a9c 100644
--- a/advisories/unreviewed/2022/05/GHSA-vmc8-ggh9-8p8j/GHSA-vmc8-ggh9-8p8j.json
+++ b/advisories/unreviewed/2022/05/GHSA-vmc8-ggh9-8p8j/GHSA-vmc8-ggh9-8p8j.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-vp7g-8h84-vpvf/GHSA-vp7g-8h84-vpvf.json b/advisories/unreviewed/2022/05/GHSA-vp7g-8h84-vpvf/GHSA-vp7g-8h84-vpvf.json
index 1ca5ed9ee21..c09e88cdd39 100644
--- a/advisories/unreviewed/2022/05/GHSA-vp7g-8h84-vpvf/GHSA-vp7g-8h84-vpvf.json
+++ b/advisories/unreviewed/2022/05/GHSA-vp7g-8h84-vpvf/GHSA-vp7g-8h84-vpvf.json
@@ -7,12 +7,8 @@
"CVE-2007-6028"
],
"details": "Multiple stack-based buffer overflows in the VSFlexGrid.VSFlexGridL ActiveX control in ComponentOne FlexGrid 7.1 Light allow remote attackers to cause a denial of service and possibly execute arbitrary code via a long string in the (1) Text, (2) EditSelText, (3) EditText, and (4) CellFontName property values.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-vp7h-9vpx-8f6p/GHSA-vp7h-9vpx-8f6p.json b/advisories/unreviewed/2022/05/GHSA-vp7h-9vpx-8f6p/GHSA-vp7h-9vpx-8f6p.json
index 666681c9f88..301696cc595 100644
--- a/advisories/unreviewed/2022/05/GHSA-vp7h-9vpx-8f6p/GHSA-vp7h-9vpx-8f6p.json
+++ b/advisories/unreviewed/2022/05/GHSA-vp7h-9vpx-8f6p/GHSA-vp7h-9vpx-8f6p.json
@@ -7,12 +7,8 @@
"CVE-2019-11662"
],
"details": "Class and method names in error message in Micro Focus Service Manager product versions 9.30, 9.31, 9.32, 9.33, 9.34, 9.35, 9.40, 9.41, 9.50, 9.51, 9.52, 9.60, 9.61, 9.62. This vulnerability could be exploited in some special cases to allow information exposure through an error message.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-vqj2-9hq2-7c6g/GHSA-vqj2-9hq2-7c6g.json b/advisories/unreviewed/2022/05/GHSA-vqj2-9hq2-7c6g/GHSA-vqj2-9hq2-7c6g.json
index 3f73a4f2ebf..71cc0dc192a 100644
--- a/advisories/unreviewed/2022/05/GHSA-vqj2-9hq2-7c6g/GHSA-vqj2-9hq2-7c6g.json
+++ b/advisories/unreviewed/2022/05/GHSA-vqj2-9hq2-7c6g/GHSA-vqj2-9hq2-7c6g.json
@@ -7,12 +7,8 @@
"CVE-2007-5994"
],
"details": "PHP remote file inclusion vulnerability in check_noimage.php in Fritz Berger yet another php photo album - next generation (yappa-ng) 2.3.2 allows remote attackers to execute arbitrary PHP code via a URL in the config[path_src_include] parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-vrcq-g4r8-v287/GHSA-vrcq-g4r8-v287.json b/advisories/unreviewed/2022/05/GHSA-vrcq-g4r8-v287/GHSA-vrcq-g4r8-v287.json
index 2551a7a12dd..37e07c983e9 100644
--- a/advisories/unreviewed/2022/05/GHSA-vrcq-g4r8-v287/GHSA-vrcq-g4r8-v287.json
+++ b/advisories/unreviewed/2022/05/GHSA-vrcq-g4r8-v287/GHSA-vrcq-g4r8-v287.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-vvhw-4qgc-4wp7/GHSA-vvhw-4qgc-4wp7.json b/advisories/unreviewed/2022/05/GHSA-vvhw-4qgc-4wp7/GHSA-vvhw-4qgc-4wp7.json
index 084d152cd99..640da36add2 100644
--- a/advisories/unreviewed/2022/05/GHSA-vvhw-4qgc-4wp7/GHSA-vvhw-4qgc-4wp7.json
+++ b/advisories/unreviewed/2022/05/GHSA-vvhw-4qgc-4wp7/GHSA-vvhw-4qgc-4wp7.json
@@ -7,12 +7,8 @@
"CVE-2019-2165"
],
"details": "In libxaac there is a possible out of bounds read due to a missing bounds check. This could lead to information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112712154",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-vw38-5mf5-hqv3/GHSA-vw38-5mf5-hqv3.json b/advisories/unreviewed/2022/05/GHSA-vw38-5mf5-hqv3/GHSA-vw38-5mf5-hqv3.json
index a58ec56b43d..9ce222e952b 100644
--- a/advisories/unreviewed/2022/05/GHSA-vw38-5mf5-hqv3/GHSA-vw38-5mf5-hqv3.json
+++ b/advisories/unreviewed/2022/05/GHSA-vw38-5mf5-hqv3/GHSA-vw38-5mf5-hqv3.json
@@ -7,12 +7,8 @@
"CVE-2017-18605"
],
"details": "The gravitate-qa-tracker plugin through 1.2.1 for WordPress has PHP Object Injection.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-vwwp-xxc4-56gp/GHSA-vwwp-xxc4-56gp.json b/advisories/unreviewed/2022/05/GHSA-vwwp-xxc4-56gp/GHSA-vwwp-xxc4-56gp.json
index 3f1bcd8ad3d..f64ab7ce44a 100644
--- a/advisories/unreviewed/2022/05/GHSA-vwwp-xxc4-56gp/GHSA-vwwp-xxc4-56gp.json
+++ b/advisories/unreviewed/2022/05/GHSA-vwwp-xxc4-56gp/GHSA-vwwp-xxc4-56gp.json
@@ -7,12 +7,8 @@
"CVE-2007-6205"
],
"details": "Cross-site scripting (XSS) vulnerability in the remote RSS sidebar plugin (serendipity_plugin_remoterss) in S9Y Serendipity before 1.2.1 allows remote attackers to inject arbitrary web script or HTML via a link in an RSS feed.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-vxmg-7pg5-vhxm/GHSA-vxmg-7pg5-vhxm.json b/advisories/unreviewed/2022/05/GHSA-vxmg-7pg5-vhxm/GHSA-vxmg-7pg5-vhxm.json
index 74e39208e44..4b9701a4760 100644
--- a/advisories/unreviewed/2022/05/GHSA-vxmg-7pg5-vhxm/GHSA-vxmg-7pg5-vhxm.json
+++ b/advisories/unreviewed/2022/05/GHSA-vxmg-7pg5-vhxm/GHSA-vxmg-7pg5-vhxm.json
@@ -7,12 +7,8 @@
"CVE-2016-10987"
],
"details": "The persian-woocommerce-sms plugin before 3.3.4 for WordPress has ps_sms_numbers XSS.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -32,9 +28,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-w24q-f35x-3g4m/GHSA-w24q-f35x-3g4m.json b/advisories/unreviewed/2022/05/GHSA-w24q-f35x-3g4m/GHSA-w24q-f35x-3g4m.json
index 7c42c7f3d13..5d5e70d255e 100644
--- a/advisories/unreviewed/2022/05/GHSA-w24q-f35x-3g4m/GHSA-w24q-f35x-3g4m.json
+++ b/advisories/unreviewed/2022/05/GHSA-w24q-f35x-3g4m/GHSA-w24q-f35x-3g4m.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-w2h8-f75c-6252/GHSA-w2h8-f75c-6252.json b/advisories/unreviewed/2022/05/GHSA-w2h8-f75c-6252/GHSA-w2h8-f75c-6252.json
index 4d69a534b86..d64c792a8ad 100644
--- a/advisories/unreviewed/2022/05/GHSA-w2h8-f75c-6252/GHSA-w2h8-f75c-6252.json
+++ b/advisories/unreviewed/2022/05/GHSA-w2h8-f75c-6252/GHSA-w2h8-f75c-6252.json
@@ -7,12 +7,8 @@
"CVE-2007-5919"
],
"details": "MyWebFTP, possibly 5.3.2, stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain an MD5 password hash via a direct request for pass/pass.txt.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -36,9 +32,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-w3cg-4xg3-cxm4/GHSA-w3cg-4xg3-cxm4.json b/advisories/unreviewed/2022/05/GHSA-w3cg-4xg3-cxm4/GHSA-w3cg-4xg3-cxm4.json
index 2964c034dfb..0441b518b7c 100644
--- a/advisories/unreviewed/2022/05/GHSA-w3cg-4xg3-cxm4/GHSA-w3cg-4xg3-cxm4.json
+++ b/advisories/unreviewed/2022/05/GHSA-w3cg-4xg3-cxm4/GHSA-w3cg-4xg3-cxm4.json
@@ -7,12 +7,8 @@
"CVE-2007-6027"
],
"details": "PHP remote file inclusion vulnerability in admin.jjgallery.php in the Carousel Flash Image Gallery (com_jjgallery) component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-w3hq-3rvc-jpmf/GHSA-w3hq-3rvc-jpmf.json b/advisories/unreviewed/2022/05/GHSA-w3hq-3rvc-jpmf/GHSA-w3hq-3rvc-jpmf.json
index 5e0a0fbb85e..908cdf54d97 100644
--- a/advisories/unreviewed/2022/05/GHSA-w3hq-3rvc-jpmf/GHSA-w3hq-3rvc-jpmf.json
+++ b/advisories/unreviewed/2022/05/GHSA-w3hq-3rvc-jpmf/GHSA-w3hq-3rvc-jpmf.json
@@ -7,12 +7,8 @@
"CVE-2015-9394"
],
"details": "The users-ultra plugin before 1.5.63 for WordPress has CSRF via action=package_add_new to wp-admin/admin-ajax.php.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-w3jg-chmx-cm3v/GHSA-w3jg-chmx-cm3v.json b/advisories/unreviewed/2022/05/GHSA-w3jg-chmx-cm3v/GHSA-w3jg-chmx-cm3v.json
index 9511eaa859e..7336f968d33 100644
--- a/advisories/unreviewed/2022/05/GHSA-w3jg-chmx-cm3v/GHSA-w3jg-chmx-cm3v.json
+++ b/advisories/unreviewed/2022/05/GHSA-w3jg-chmx-cm3v/GHSA-w3jg-chmx-cm3v.json
@@ -7,12 +7,8 @@
"CVE-2015-9408"
],
"details": "The xpinner-lite plugin through 2.2 for WordPress has wp-admin/options-general.php CSRF with resultant XSS.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -32,9 +28,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-w4jj-vx53-2479/GHSA-w4jj-vx53-2479.json b/advisories/unreviewed/2022/05/GHSA-w4jj-vx53-2479/GHSA-w4jj-vx53-2479.json
index 7b2997d3901..2e646ab4a26 100644
--- a/advisories/unreviewed/2022/05/GHSA-w4jj-vx53-2479/GHSA-w4jj-vx53-2479.json
+++ b/advisories/unreviewed/2022/05/GHSA-w4jj-vx53-2479/GHSA-w4jj-vx53-2479.json
@@ -7,12 +7,8 @@
"CVE-2007-5943"
],
"details": "Simple Machines Forum (SMF) 1.1.4 allows remote attackers to read a message in private forums by using the advanced search module with the \"show results as messages\" option, then searching for possible keywords contained in that message.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-w5fp-vcxc-h7jg/GHSA-w5fp-vcxc-h7jg.json b/advisories/unreviewed/2022/05/GHSA-w5fp-vcxc-h7jg/GHSA-w5fp-vcxc-h7jg.json
index d37ad135815..613875354f4 100644
--- a/advisories/unreviewed/2022/05/GHSA-w5fp-vcxc-h7jg/GHSA-w5fp-vcxc-h7jg.json
+++ b/advisories/unreviewed/2022/05/GHSA-w5fp-vcxc-h7jg/GHSA-w5fp-vcxc-h7jg.json
@@ -7,12 +7,8 @@
"CVE-2007-6106"
],
"details": "SQL injection vulnerability in index.php in AlstraSoft E-Friends 4.98 and earlier allows remote attackers to execute arbitrary SQL commands via the seid parameter in a viewevent action.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-w5gm-7fc6-33wj/GHSA-w5gm-7fc6-33wj.json b/advisories/unreviewed/2022/05/GHSA-w5gm-7fc6-33wj/GHSA-w5gm-7fc6-33wj.json
index ae421827726..8c055f761b8 100644
--- a/advisories/unreviewed/2022/05/GHSA-w5gm-7fc6-33wj/GHSA-w5gm-7fc6-33wj.json
+++ b/advisories/unreviewed/2022/05/GHSA-w5gm-7fc6-33wj/GHSA-w5gm-7fc6-33wj.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-w5h2-5mxp-pf9h/GHSA-w5h2-5mxp-pf9h.json b/advisories/unreviewed/2022/05/GHSA-w5h2-5mxp-pf9h/GHSA-w5h2-5mxp-pf9h.json
index 8bfa8ebeb27..1e67fd622ac 100644
--- a/advisories/unreviewed/2022/05/GHSA-w5h2-5mxp-pf9h/GHSA-w5h2-5mxp-pf9h.json
+++ b/advisories/unreviewed/2022/05/GHSA-w5h2-5mxp-pf9h/GHSA-w5h2-5mxp-pf9h.json
@@ -7,12 +7,8 @@
"CVE-2007-5917"
],
"details": "Cross-site request forgery (CSRF) vulnerability in admin/admin_account.php in Skalinks 1.5 and earlier allows remote attackers to add arbitrary privileged accounts as administrators via the admin_name, admin_password, admin_type, and Add_admin parameters.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-w5jh-cf2h-28xw/GHSA-w5jh-cf2h-28xw.json b/advisories/unreviewed/2022/05/GHSA-w5jh-cf2h-28xw/GHSA-w5jh-cf2h-28xw.json
index c807bf0ad3c..b761c8cde4a 100644
--- a/advisories/unreviewed/2022/05/GHSA-w5jh-cf2h-28xw/GHSA-w5jh-cf2h-28xw.json
+++ b/advisories/unreviewed/2022/05/GHSA-w5jh-cf2h-28xw/GHSA-w5jh-cf2h-28xw.json
@@ -7,12 +7,8 @@
"CVE-2016-10995"
],
"details": "The Tevolution plugin before 2.3.0 for WordPress has arbitrary file upload via single_upload.php or single-upload.php.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-w5vm-6v5c-j433/GHSA-w5vm-6v5c-j433.json b/advisories/unreviewed/2022/05/GHSA-w5vm-6v5c-j433/GHSA-w5vm-6v5c-j433.json
index 735b235297b..faee74ab0c3 100644
--- a/advisories/unreviewed/2022/05/GHSA-w5vm-6v5c-j433/GHSA-w5vm-6v5c-j433.json
+++ b/advisories/unreviewed/2022/05/GHSA-w5vm-6v5c-j433/GHSA-w5vm-6v5c-j433.json
@@ -7,12 +7,8 @@
"CVE-2007-5856"
],
"details": "Quick Look Apple Mac OS X 10.5.1, when previewing an HTML file, does not prevent plug-ins from making network requests, which might allow remote attackers to obtain sensitive information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -52,9 +48,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-w5w4-523j-qm3v/GHSA-w5w4-523j-qm3v.json b/advisories/unreviewed/2022/05/GHSA-w5w4-523j-qm3v/GHSA-w5w4-523j-qm3v.json
index 35bd4f3ba50..3777692b9c2 100644
--- a/advisories/unreviewed/2022/05/GHSA-w5w4-523j-qm3v/GHSA-w5w4-523j-qm3v.json
+++ b/advisories/unreviewed/2022/05/GHSA-w5w4-523j-qm3v/GHSA-w5w4-523j-qm3v.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-w652-7xxf-6qpf/GHSA-w652-7xxf-6qpf.json b/advisories/unreviewed/2022/05/GHSA-w652-7xxf-6qpf/GHSA-w652-7xxf-6qpf.json
index 4dfadc397f3..9a582c0b498 100644
--- a/advisories/unreviewed/2022/05/GHSA-w652-7xxf-6qpf/GHSA-w652-7xxf-6qpf.json
+++ b/advisories/unreviewed/2022/05/GHSA-w652-7xxf-6qpf/GHSA-w652-7xxf-6qpf.json
@@ -7,12 +7,8 @@
"CVE-2016-10984"
],
"details": "The echosign plugin before 1.2 for WordPress has XSS via the inc.php page parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -32,9 +28,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-w765-p6jv-84pr/GHSA-w765-p6jv-84pr.json b/advisories/unreviewed/2022/05/GHSA-w765-p6jv-84pr/GHSA-w765-p6jv-84pr.json
index 7c17d9e0d62..0c13302bbe5 100644
--- a/advisories/unreviewed/2022/05/GHSA-w765-p6jv-84pr/GHSA-w765-p6jv-84pr.json
+++ b/advisories/unreviewed/2022/05/GHSA-w765-p6jv-84pr/GHSA-w765-p6jv-84pr.json
@@ -7,12 +7,8 @@
"CVE-2007-6085"
],
"details": "Multiple cross-site scripting (XSS) vulnerabilities in index.php in VigileCMS 1.4 allow remote attackers to inject arbitrary web script or HTML via the message field in the (1) vedipm or (2) live_chat module.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-w83r-49rg-9jfv/GHSA-w83r-49rg-9jfv.json b/advisories/unreviewed/2022/05/GHSA-w83r-49rg-9jfv/GHSA-w83r-49rg-9jfv.json
index 938cdf278b3..95047251be9 100644
--- a/advisories/unreviewed/2022/05/GHSA-w83r-49rg-9jfv/GHSA-w83r-49rg-9jfv.json
+++ b/advisories/unreviewed/2022/05/GHSA-w83r-49rg-9jfv/GHSA-w83r-49rg-9jfv.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-w84w-j6c8-4wrq/GHSA-w84w-j6c8-4wrq.json b/advisories/unreviewed/2022/05/GHSA-w84w-j6c8-4wrq/GHSA-w84w-j6c8-4wrq.json
index 27e53f23de6..9ad622ff200 100644
--- a/advisories/unreviewed/2022/05/GHSA-w84w-j6c8-4wrq/GHSA-w84w-j6c8-4wrq.json
+++ b/advisories/unreviewed/2022/05/GHSA-w84w-j6c8-4wrq/GHSA-w84w-j6c8-4wrq.json
@@ -7,12 +7,8 @@
"CVE-2019-9331"
],
"details": "In Bluetooth, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112272279",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-w859-pxm6-vjr6/GHSA-w859-pxm6-vjr6.json b/advisories/unreviewed/2022/05/GHSA-w859-pxm6-vjr6/GHSA-w859-pxm6-vjr6.json
index 8f1a6c2b137..ea04d0a91e5 100644
--- a/advisories/unreviewed/2022/05/GHSA-w859-pxm6-vjr6/GHSA-w859-pxm6-vjr6.json
+++ b/advisories/unreviewed/2022/05/GHSA-w859-pxm6-vjr6/GHSA-w859-pxm6-vjr6.json
@@ -7,12 +7,8 @@
"CVE-2007-5973"
],
"details": "SQL injection vulnerability in articles.php in JPortal 2.3.1 and earlier allows remote attackers to execute arbitrary SQL commands via the topic parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-w8m9-h9m6-p528/GHSA-w8m9-h9m6-p528.json b/advisories/unreviewed/2022/05/GHSA-w8m9-h9m6-p528/GHSA-w8m9-h9m6-p528.json
index 1887d85d7c7..82134bc16a9 100644
--- a/advisories/unreviewed/2022/05/GHSA-w8m9-h9m6-p528/GHSA-w8m9-h9m6-p528.json
+++ b/advisories/unreviewed/2022/05/GHSA-w8m9-h9m6-p528/GHSA-w8m9-h9m6-p528.json
@@ -7,12 +7,8 @@
"CVE-2007-6130"
],
"details": "gnump3d 2.9final does not apply password protection to its plugins, which might allow remote attackers to bypass intended access restrictions.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-w97c-w37x-wrj9/GHSA-w97c-w37x-wrj9.json b/advisories/unreviewed/2022/05/GHSA-w97c-w37x-wrj9/GHSA-w97c-w37x-wrj9.json
index 9eeba25b31c..9a9a42d7865 100644
--- a/advisories/unreviewed/2022/05/GHSA-w97c-w37x-wrj9/GHSA-w97c-w37x-wrj9.json
+++ b/advisories/unreviewed/2022/05/GHSA-w97c-w37x-wrj9/GHSA-w97c-w37x-wrj9.json
@@ -7,12 +7,8 @@
"CVE-2016-10978"
],
"details": "The fossura-tag-miner plugin before 1.1.5 for WordPress has CSRF.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-wf63-pf87-93v4/GHSA-wf63-pf87-93v4.json b/advisories/unreviewed/2022/05/GHSA-wf63-pf87-93v4/GHSA-wf63-pf87-93v4.json
index 4bec010b8f3..599db4cbb61 100644
--- a/advisories/unreviewed/2022/05/GHSA-wf63-pf87-93v4/GHSA-wf63-pf87-93v4.json
+++ b/advisories/unreviewed/2022/05/GHSA-wf63-pf87-93v4/GHSA-wf63-pf87-93v4.json
@@ -7,12 +7,8 @@
"CVE-2019-16510"
],
"details": "libIEC61850 through 1.3.3 has a use-after-free in MmsServer_waitReady in mms/iso_mms/server/mms_server.c, as demonstrated by server_example_goose.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-wf73-pxpq-869j/GHSA-wf73-pxpq-869j.json b/advisories/unreviewed/2022/05/GHSA-wf73-pxpq-869j/GHSA-wf73-pxpq-869j.json
index 0752b2a7f27..0ceb3df956d 100644
--- a/advisories/unreviewed/2022/05/GHSA-wf73-pxpq-869j/GHSA-wf73-pxpq-869j.json
+++ b/advisories/unreviewed/2022/05/GHSA-wf73-pxpq-869j/GHSA-wf73-pxpq-869j.json
@@ -7,12 +7,8 @@
"CVE-2007-6208"
],
"details": "sylprint.pl in claws mail tools (claws-mail-tools) allows local users to overwrite arbitrary files via a symlink attack on the sylprint.[USER].[PID] temporary file.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-wf74-jqp7-237w/GHSA-wf74-jqp7-237w.json b/advisories/unreviewed/2022/05/GHSA-wf74-jqp7-237w/GHSA-wf74-jqp7-237w.json
index 8005711318e..9c0c072271e 100644
--- a/advisories/unreviewed/2022/05/GHSA-wf74-jqp7-237w/GHSA-wf74-jqp7-237w.json
+++ b/advisories/unreviewed/2022/05/GHSA-wf74-jqp7-237w/GHSA-wf74-jqp7-237w.json
@@ -7,12 +7,8 @@
"CVE-2007-5989"
],
"details": "Unspecified vulnerability in the skype4com URI handler in Skype before 3.6 GOLD allows remote attackers to execute arbitrary code via \"short string values\" that result in heap corruption.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-wgx3-89qx-v29j/GHSA-wgx3-89qx-v29j.json b/advisories/unreviewed/2022/05/GHSA-wgx3-89qx-v29j/GHSA-wgx3-89qx-v29j.json
index d252674db7d..d38452d4d25 100644
--- a/advisories/unreviewed/2022/05/GHSA-wgx3-89qx-v29j/GHSA-wgx3-89qx-v29j.json
+++ b/advisories/unreviewed/2022/05/GHSA-wgx3-89qx-v29j/GHSA-wgx3-89qx-v29j.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-whv2-gp66-q464/GHSA-whv2-gp66-q464.json b/advisories/unreviewed/2022/05/GHSA-whv2-gp66-q464/GHSA-whv2-gp66-q464.json
index 6a22f545304..8e101f773c3 100644
--- a/advisories/unreviewed/2022/05/GHSA-whv2-gp66-q464/GHSA-whv2-gp66-q464.json
+++ b/advisories/unreviewed/2022/05/GHSA-whv2-gp66-q464/GHSA-whv2-gp66-q464.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-wj6q-x875-fqx7/GHSA-wj6q-x875-fqx7.json b/advisories/unreviewed/2022/05/GHSA-wj6q-x875-fqx7/GHSA-wj6q-x875-fqx7.json
index 59717ee395e..4c0bed6c320 100644
--- a/advisories/unreviewed/2022/05/GHSA-wj6q-x875-fqx7/GHSA-wj6q-x875-fqx7.json
+++ b/advisories/unreviewed/2022/05/GHSA-wj6q-x875-fqx7/GHSA-wj6q-x875-fqx7.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-wmfq-gprv-vw9c/GHSA-wmfq-gprv-vw9c.json b/advisories/unreviewed/2022/05/GHSA-wmfq-gprv-vw9c/GHSA-wmfq-gprv-vw9c.json
index 9f334dee1ee..daa6dc6f861 100644
--- a/advisories/unreviewed/2022/05/GHSA-wmfq-gprv-vw9c/GHSA-wmfq-gprv-vw9c.json
+++ b/advisories/unreviewed/2022/05/GHSA-wmfq-gprv-vw9c/GHSA-wmfq-gprv-vw9c.json
@@ -7,12 +7,8 @@
"CVE-2007-5836"
],
"details": "SQL injection vulnerability in Amazing Flash AFCommerce allows remote attackers to execute arbitrary SQL commands via the firstname parameter to an unspecified component, a different issue than CVE-2006-3794. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-wpf8-fhx2-jrw4/GHSA-wpf8-fhx2-jrw4.json b/advisories/unreviewed/2022/05/GHSA-wpf8-fhx2-jrw4/GHSA-wpf8-fhx2-jrw4.json
index b5a6cdd6236..0fb453bee33 100644
--- a/advisories/unreviewed/2022/05/GHSA-wpf8-fhx2-jrw4/GHSA-wpf8-fhx2-jrw4.json
+++ b/advisories/unreviewed/2022/05/GHSA-wpf8-fhx2-jrw4/GHSA-wpf8-fhx2-jrw4.json
@@ -7,12 +7,8 @@
"CVE-2007-5946"
],
"details": "Unspecified vulnerability in the Aries PA-RISC emulator on HP-UX B.11.23 and B.11.31 on the IA-64 platform allows local users to obtain unspecified access.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -48,9 +44,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-wq7h-x8rp-qhq7/GHSA-wq7h-x8rp-qhq7.json b/advisories/unreviewed/2022/05/GHSA-wq7h-x8rp-qhq7/GHSA-wq7h-x8rp-qhq7.json
index 7e68d8a92d0..3c59f8e0298 100644
--- a/advisories/unreviewed/2022/05/GHSA-wq7h-x8rp-qhq7/GHSA-wq7h-x8rp-qhq7.json
+++ b/advisories/unreviewed/2022/05/GHSA-wq7h-x8rp-qhq7/GHSA-wq7h-x8rp-qhq7.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-wqgg-wcjm-mhc9/GHSA-wqgg-wcjm-mhc9.json b/advisories/unreviewed/2022/05/GHSA-wqgg-wcjm-mhc9/GHSA-wqgg-wcjm-mhc9.json
index a398921c010..2d91d56b511 100644
--- a/advisories/unreviewed/2022/05/GHSA-wqgg-wcjm-mhc9/GHSA-wqgg-wcjm-mhc9.json
+++ b/advisories/unreviewed/2022/05/GHSA-wqgg-wcjm-mhc9/GHSA-wqgg-wcjm-mhc9.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-wqr3-vhcr-cmvv/GHSA-wqr3-vhcr-cmvv.json b/advisories/unreviewed/2022/05/GHSA-wqr3-vhcr-cmvv/GHSA-wqr3-vhcr-cmvv.json
index 1639cd84158..d036e289623 100644
--- a/advisories/unreviewed/2022/05/GHSA-wqr3-vhcr-cmvv/GHSA-wqr3-vhcr-cmvv.json
+++ b/advisories/unreviewed/2022/05/GHSA-wqr3-vhcr-cmvv/GHSA-wqr3-vhcr-cmvv.json
@@ -7,12 +7,8 @@
"CVE-2019-2147"
],
"details": "In libxaac, there is a possible out of bounds read due to a missing bounds check. This could lead to information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-116474108",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-wqv3-pjv9-g8pv/GHSA-wqv3-pjv9-g8pv.json b/advisories/unreviewed/2022/05/GHSA-wqv3-pjv9-g8pv/GHSA-wqv3-pjv9-g8pv.json
index 6d452d02b07..0e785530b47 100644
--- a/advisories/unreviewed/2022/05/GHSA-wqv3-pjv9-g8pv/GHSA-wqv3-pjv9-g8pv.json
+++ b/advisories/unreviewed/2022/05/GHSA-wqv3-pjv9-g8pv/GHSA-wqv3-pjv9-g8pv.json
@@ -7,12 +7,8 @@
"CVE-2019-1274"
],
"details": "An information disclosure vulnerability exists when the Windows kernel fails to properly initialize a memory address, aka 'Windows Kernel Information Disclosure Vulnerability'.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "LOW",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-wrj6-2482-855x/GHSA-wrj6-2482-855x.json b/advisories/unreviewed/2022/05/GHSA-wrj6-2482-855x/GHSA-wrj6-2482-855x.json
index b0e45228e1c..137ef6d28dd 100644
--- a/advisories/unreviewed/2022/05/GHSA-wrj6-2482-855x/GHSA-wrj6-2482-855x.json
+++ b/advisories/unreviewed/2022/05/GHSA-wrj6-2482-855x/GHSA-wrj6-2482-855x.json
@@ -7,12 +7,8 @@
"CVE-2007-6177"
],
"details": "PHP remote file inclusion vulnerability in Exchange/include.php in PHP_CON 1.3 allows remote attackers to execute arbitrary PHP code via a URL in the webappcfg[APPPATH] parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-wvgj-8crv-qh5h/GHSA-wvgj-8crv-qh5h.json b/advisories/unreviewed/2022/05/GHSA-wvgj-8crv-qh5h/GHSA-wvgj-8crv-qh5h.json
index 6dc40a8e721..0545f626707 100644
--- a/advisories/unreviewed/2022/05/GHSA-wvgj-8crv-qh5h/GHSA-wvgj-8crv-qh5h.json
+++ b/advisories/unreviewed/2022/05/GHSA-wvgj-8crv-qh5h/GHSA-wvgj-8crv-qh5h.json
@@ -7,12 +7,8 @@
"CVE-2019-2153"
],
"details": "In libxaac, there is a possible out of bounds read due to a missing bounds check. This could lead to information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112611181",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-wvjj-6mc9-hcpm/GHSA-wvjj-6mc9-hcpm.json b/advisories/unreviewed/2022/05/GHSA-wvjj-6mc9-hcpm/GHSA-wvjj-6mc9-hcpm.json
index a20baef93bf..608d3812f3d 100644
--- a/advisories/unreviewed/2022/05/GHSA-wvjj-6mc9-hcpm/GHSA-wvjj-6mc9-hcpm.json
+++ b/advisories/unreviewed/2022/05/GHSA-wvjj-6mc9-hcpm/GHSA-wvjj-6mc9-hcpm.json
@@ -7,12 +7,8 @@
"CVE-2016-10958"
],
"details": "The estatik plugin before 2.3.0 for WordPress has unauthenticated arbitrary file upload via es_media_images[] to wp-admin/admin-ajax.php.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -32,9 +28,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-ww7w-rxj3-c9r3/GHSA-ww7w-rxj3-c9r3.json b/advisories/unreviewed/2022/05/GHSA-ww7w-rxj3-c9r3/GHSA-ww7w-rxj3-c9r3.json
index 60a66117d41..3824675b932 100644
--- a/advisories/unreviewed/2022/05/GHSA-ww7w-rxj3-c9r3/GHSA-ww7w-rxj3-c9r3.json
+++ b/advisories/unreviewed/2022/05/GHSA-ww7w-rxj3-c9r3/GHSA-ww7w-rxj3-c9r3.json
@@ -7,12 +7,8 @@
"CVE-2017-18607"
],
"details": "The avada theme before 5.1.5 for WordPress has CSRF.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-wwj2-hpx3-j824/GHSA-wwj2-hpx3-j824.json b/advisories/unreviewed/2022/05/GHSA-wwj2-hpx3-j824/GHSA-wwj2-hpx3-j824.json
index 9f2d3dfa6c8..ea2faa28d0b 100644
--- a/advisories/unreviewed/2022/05/GHSA-wwj2-hpx3-j824/GHSA-wwj2-hpx3-j824.json
+++ b/advisories/unreviewed/2022/05/GHSA-wwj2-hpx3-j824/GHSA-wwj2-hpx3-j824.json
@@ -7,12 +7,8 @@
"CVE-2007-6174"
],
"details": "PHPDevShell before 0.7.0 allows remote authenticated users to gain privileges via a crafted request to update a user profile. NOTE: some of these details are obtained from third party information.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -36,9 +32,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-wx9x-3hjm-589w/GHSA-wx9x-3hjm-589w.json b/advisories/unreviewed/2022/05/GHSA-wx9x-3hjm-589w/GHSA-wx9x-3hjm-589w.json
index 64f3bbb428d..241dfd50049 100644
--- a/advisories/unreviewed/2022/05/GHSA-wx9x-3hjm-589w/GHSA-wx9x-3hjm-589w.json
+++ b/advisories/unreviewed/2022/05/GHSA-wx9x-3hjm-589w/GHSA-wx9x-3hjm-589w.json
@@ -7,12 +7,8 @@
"CVE-2007-6037"
],
"details": "Cross-site scripting (XSS) vulnerability in ws/generic_api_call.pl in Citrix NetScaler 8.0 build 47.8 allows remote attackers to inject arbitrary web script or HTML via the standalone parameter and other unspecified parameters.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-x2h6-2q5c-v7px/GHSA-x2h6-2q5c-v7px.json b/advisories/unreviewed/2022/05/GHSA-x2h6-2q5c-v7px/GHSA-x2h6-2q5c-v7px.json
index 79bc9e638ff..478d957ba62 100644
--- a/advisories/unreviewed/2022/05/GHSA-x2h6-2q5c-v7px/GHSA-x2h6-2q5c-v7px.json
+++ b/advisories/unreviewed/2022/05/GHSA-x2h6-2q5c-v7px/GHSA-x2h6-2q5c-v7px.json
@@ -7,12 +7,8 @@
"CVE-2007-5849"
],
"details": "Integer underflow in the asn1_get_string function in the SNMP back end (backend/snmp.c) for CUPS 1.2 through 1.3.4 allows remote attackers to execute arbitrary code via a crafted SNMP response that triggers a stack-based buffer overflow.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -124,9 +120,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-x3v7-9xjv-vmwp/GHSA-x3v7-9xjv-vmwp.json b/advisories/unreviewed/2022/05/GHSA-x3v7-9xjv-vmwp/GHSA-x3v7-9xjv-vmwp.json
index 66015792539..18455ae6560 100644
--- a/advisories/unreviewed/2022/05/GHSA-x3v7-9xjv-vmwp/GHSA-x3v7-9xjv-vmwp.json
+++ b/advisories/unreviewed/2022/05/GHSA-x3v7-9xjv-vmwp/GHSA-x3v7-9xjv-vmwp.json
@@ -7,12 +7,8 @@
"CVE-2007-5855"
],
"details": "Mail in Apple Mac OS X 10.4.11 and 10.5.1, when an SMTP account has been set up using Account Assistant, can use plaintext authentication even when MD5 Challenge-Response authentication is available, which makes it easier for remote attackers to sniff account activity.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-x43f-4fv4-5h9f/GHSA-x43f-4fv4-5h9f.json b/advisories/unreviewed/2022/05/GHSA-x43f-4fv4-5h9f/GHSA-x43f-4fv4-5h9f.json
index 476f63a6b72..a54215fd493 100644
--- a/advisories/unreviewed/2022/05/GHSA-x43f-4fv4-5h9f/GHSA-x43f-4fv4-5h9f.json
+++ b/advisories/unreviewed/2022/05/GHSA-x43f-4fv4-5h9f/GHSA-x43f-4fv4-5h9f.json
@@ -7,12 +7,8 @@
"CVE-2007-5848"
],
"details": "Buffer overflow in CUPS in Apple Mac OS X 10.4.11 allows local admin users to execute arbitrary code via a crafted URI to the CUPS service.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-x445-9gh4-vqh7/GHSA-x445-9gh4-vqh7.json b/advisories/unreviewed/2022/05/GHSA-x445-9gh4-vqh7/GHSA-x445-9gh4-vqh7.json
index 06a495709c1..5b080c391a0 100644
--- a/advisories/unreviewed/2022/05/GHSA-x445-9gh4-vqh7/GHSA-x445-9gh4-vqh7.json
+++ b/advisories/unreviewed/2022/05/GHSA-x445-9gh4-vqh7/GHSA-x445-9gh4-vqh7.json
@@ -7,12 +7,8 @@
"CVE-2019-1269"
],
"details": "An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (ALPC).An attacker who successfully exploited this vulnerability could run arbitrary code in the security context of the local system, aka 'Windows ALPC Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1272.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-x4w6-xc3h-38vf/GHSA-x4w6-xc3h-38vf.json b/advisories/unreviewed/2022/05/GHSA-x4w6-xc3h-38vf/GHSA-x4w6-xc3h-38vf.json
index 2153efd55d1..34ad7347706 100644
--- a/advisories/unreviewed/2022/05/GHSA-x4w6-xc3h-38vf/GHSA-x4w6-xc3h-38vf.json
+++ b/advisories/unreviewed/2022/05/GHSA-x4w6-xc3h-38vf/GHSA-x4w6-xc3h-38vf.json
@@ -7,12 +7,8 @@
"CVE-2016-10959"
],
"details": "The estatik plugin before 2.3.1 for WordPress has authenticated arbitrary file upload (exploitable with CSRF) via es_media_images[] to wp-admin/admin-ajax.php.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-x57w-969p-qrv9/GHSA-x57w-969p-qrv9.json b/advisories/unreviewed/2022/05/GHSA-x57w-969p-qrv9/GHSA-x57w-969p-qrv9.json
index 1dc79c56295..e084d8606b4 100644
--- a/advisories/unreviewed/2022/05/GHSA-x57w-969p-qrv9/GHSA-x57w-969p-qrv9.json
+++ b/advisories/unreviewed/2022/05/GHSA-x57w-969p-qrv9/GHSA-x57w-969p-qrv9.json
@@ -7,12 +7,8 @@
"CVE-2007-5825"
],
"details": "Format string vulnerability in the ws_addarg function in webserver.c in mt-dappd in Firefly Media Server 0.2.4 and earlier allows remote attackers to execute arbitrary code via a stats method action to /xml-rpc with format string specifiers in the (1) username or (2) password portion of base64-encoded data on the \"Authorization: Basic\" HTTP header line.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-x78j-jjmg-frp2/GHSA-x78j-jjmg-frp2.json b/advisories/unreviewed/2022/05/GHSA-x78j-jjmg-frp2/GHSA-x78j-jjmg-frp2.json
index ed0a5b21074..53b2c79c61f 100644
--- a/advisories/unreviewed/2022/05/GHSA-x78j-jjmg-frp2/GHSA-x78j-jjmg-frp2.json
+++ b/advisories/unreviewed/2022/05/GHSA-x78j-jjmg-frp2/GHSA-x78j-jjmg-frp2.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-xc2j-r478-f27m/GHSA-xc2j-r478-f27m.json b/advisories/unreviewed/2022/05/GHSA-xc2j-r478-f27m/GHSA-xc2j-r478-f27m.json
index ddd0dc08719..8eb8eca4aea 100644
--- a/advisories/unreviewed/2022/05/GHSA-xc2j-r478-f27m/GHSA-xc2j-r478-f27m.json
+++ b/advisories/unreviewed/2022/05/GHSA-xc2j-r478-f27m/GHSA-xc2j-r478-f27m.json
@@ -7,12 +7,8 @@
"CVE-2007-5914"
],
"details": "Direct static code injection vulnerability in dirsys/modules/config/post.php in JBC Explorer 7.20 RC1 and earlier allows remote authenticated administrators to inject arbitrary PHP code via the DEBUG parameter, which can be executed by accessing config.inc.php. NOTE: this can be exploited by unauthenticated remote attackers by leveraging CVE-2007-5913.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-xfwf-x9cr-g95x/GHSA-xfwf-x9cr-g95x.json b/advisories/unreviewed/2022/05/GHSA-xfwf-x9cr-g95x/GHSA-xfwf-x9cr-g95x.json
index e0f1a2ddf76..e9b1295a841 100644
--- a/advisories/unreviewed/2022/05/GHSA-xfwf-x9cr-g95x/GHSA-xfwf-x9cr-g95x.json
+++ b/advisories/unreviewed/2022/05/GHSA-xfwf-x9cr-g95x/GHSA-xfwf-x9cr-g95x.json
@@ -7,12 +7,8 @@
"CVE-2019-16395"
],
"details": "GnuCOBOL 2.2 has a stack-based buffer overflow in the cb_name() function in cobc/tree.c via crafted COBOL source code.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-xgxr-7w9r-3m55/GHSA-xgxr-7w9r-3m55.json b/advisories/unreviewed/2022/05/GHSA-xgxr-7w9r-3m55/GHSA-xgxr-7w9r-3m55.json
index 8d790c4dc87..59452db6fbb 100644
--- a/advisories/unreviewed/2022/05/GHSA-xgxr-7w9r-3m55/GHSA-xgxr-7w9r-3m55.json
+++ b/advisories/unreviewed/2022/05/GHSA-xgxr-7w9r-3m55/GHSA-xgxr-7w9r-3m55.json
@@ -7,12 +7,8 @@
"CVE-2016-10943"
],
"details": "The zx-csv-upload plugin 1 for WordPress has SQL injection via the id parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -32,9 +28,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-xhjw-w3xm-2hg5/GHSA-xhjw-w3xm-2hg5.json b/advisories/unreviewed/2022/05/GHSA-xhjw-w3xm-2hg5/GHSA-xhjw-w3xm-2hg5.json
index c2bf96033d0..9ee9f6f220b 100644
--- a/advisories/unreviewed/2022/05/GHSA-xhjw-w3xm-2hg5/GHSA-xhjw-w3xm-2hg5.json
+++ b/advisories/unreviewed/2022/05/GHSA-xhjw-w3xm-2hg5/GHSA-xhjw-w3xm-2hg5.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-xj39-fv8g-v8mp/GHSA-xj39-fv8g-v8mp.json b/advisories/unreviewed/2022/05/GHSA-xj39-fv8g-v8mp/GHSA-xj39-fv8g-v8mp.json
index 40b9745cb34..1a0e6bea218 100644
--- a/advisories/unreviewed/2022/05/GHSA-xj39-fv8g-v8mp/GHSA-xj39-fv8g-v8mp.json
+++ b/advisories/unreviewed/2022/05/GHSA-xj39-fv8g-v8mp/GHSA-xj39-fv8g-v8mp.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-xj8f-hvrj-449w/GHSA-xj8f-hvrj-449w.json b/advisories/unreviewed/2022/05/GHSA-xj8f-hvrj-449w/GHSA-xj8f-hvrj-449w.json
index 4010b61d5e2..2eee8f83c35 100644
--- a/advisories/unreviewed/2022/05/GHSA-xj8f-hvrj-449w/GHSA-xj8f-hvrj-449w.json
+++ b/advisories/unreviewed/2022/05/GHSA-xj8f-hvrj-449w/GHSA-xj8f-hvrj-449w.json
@@ -7,12 +7,8 @@
"CVE-2007-5982"
],
"details": "Multiple cross-site scripting (XSS) vulnerabilities in X7 Chat 2.0.4, 2.0.5, and possibly other versions allow remote attackers to inject arbitrary web script or HTML via the (1) room parameter to sources/frame.php, the (2) theme_c parameter to help/index.php, or the (3) INSTALL_X7CHATVERSION parameter to upgradev1.php.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-xjg9-7m45-xm66/GHSA-xjg9-7m45-xm66.json b/advisories/unreviewed/2022/05/GHSA-xjg9-7m45-xm66/GHSA-xjg9-7m45-xm66.json
index 4c5642b6505..b76d8212736 100644
--- a/advisories/unreviewed/2022/05/GHSA-xjg9-7m45-xm66/GHSA-xjg9-7m45-xm66.json
+++ b/advisories/unreviewed/2022/05/GHSA-xjg9-7m45-xm66/GHSA-xjg9-7m45-xm66.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-xjjc-g3r4-r6xr/GHSA-xjjc-g3r4-r6xr.json b/advisories/unreviewed/2022/05/GHSA-xjjc-g3r4-r6xr/GHSA-xjjc-g3r4-r6xr.json
index ab2a95b1de6..6e4773702ee 100644
--- a/advisories/unreviewed/2022/05/GHSA-xjjc-g3r4-r6xr/GHSA-xjjc-g3r4-r6xr.json
+++ b/advisories/unreviewed/2022/05/GHSA-xjjc-g3r4-r6xr/GHSA-xjjc-g3r4-r6xr.json
@@ -7,12 +7,8 @@
"CVE-2016-10982"
],
"details": "The kento-post-view-counter plugin through 2.8 for WordPress has wp-admin/admin.php?page=kentopvc_settings CSRF.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-xmmh-p8c3-hp79/GHSA-xmmh-p8c3-hp79.json b/advisories/unreviewed/2022/05/GHSA-xmmh-p8c3-hp79/GHSA-xmmh-p8c3-hp79.json
index 38daace985c..8f6bea49963 100644
--- a/advisories/unreviewed/2022/05/GHSA-xmmh-p8c3-hp79/GHSA-xmmh-p8c3-hp79.json
+++ b/advisories/unreviewed/2022/05/GHSA-xmmh-p8c3-hp79/GHSA-xmmh-p8c3-hp79.json
@@ -7,12 +7,8 @@
"CVE-2007-6030"
],
"details": "Unspecified vulnerability in Weird Solutions BOOTPTurbo 1.2 has unknown impact and remote attack vectors. NOTE: this information is based upon a vague advisory by a vulnerability information sales organization that does not coordinate with vendors or release actionable advisories. A CVE has been assigned for tracking purposes, but duplicates with other CVEs are difficult to determine.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-xvp9-m6j4-rx4j/GHSA-xvp9-m6j4-rx4j.json b/advisories/unreviewed/2022/05/GHSA-xvp9-m6j4-rx4j/GHSA-xvp9-m6j4-rx4j.json
index 3b693bcad01..415df3bbac9 100644
--- a/advisories/unreviewed/2022/05/GHSA-xvp9-m6j4-rx4j/GHSA-xvp9-m6j4-rx4j.json
+++ b/advisories/unreviewed/2022/05/GHSA-xvp9-m6j4-rx4j/GHSA-xvp9-m6j4-rx4j.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-xwx8-cmpp-vxmh/GHSA-xwx8-cmpp-vxmh.json b/advisories/unreviewed/2022/05/GHSA-xwx8-cmpp-vxmh/GHSA-xwx8-cmpp-vxmh.json
index 79099bb4938..8e0c4e4046a 100644
--- a/advisories/unreviewed/2022/05/GHSA-xwx8-cmpp-vxmh/GHSA-xwx8-cmpp-vxmh.json
+++ b/advisories/unreviewed/2022/05/GHSA-xwx8-cmpp-vxmh/GHSA-xwx8-cmpp-vxmh.json
@@ -7,12 +7,8 @@
"CVE-2007-6196"
],
"details": "Cross-site scripting (XSS) vulnerability in util.php in Calacode @Mail before 5.2 allows remote attackers to inject arbitrary web script or HTML via the func parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/05/GHSA-xwxc-4fjj-x6vq/GHSA-xwxc-4fjj-x6vq.json b/advisories/unreviewed/2022/05/GHSA-xwxc-4fjj-x6vq/GHSA-xwxc-4fjj-x6vq.json
index 3880e8abc9a..ba1e1af0138 100644
--- a/advisories/unreviewed/2022/05/GHSA-xwxc-4fjj-x6vq/GHSA-xwxc-4fjj-x6vq.json
+++ b/advisories/unreviewed/2022/05/GHSA-xwxc-4fjj-x6vq/GHSA-xwxc-4fjj-x6vq.json
@@ -7,12 +7,8 @@
"CVE-2019-1247"
],
"details": "A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1240, CVE-2019-1241, CVE-2019-1242, CVE-2019-1243, CVE-2019-1246, CVE-2019-1248, CVE-2019-1249, CVE-2019-1250.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/05/GHSA-xxf9-g9h4-3pmj/GHSA-xxf9-g9h4-3pmj.json b/advisories/unreviewed/2022/05/GHSA-xxf9-g9h4-3pmj/GHSA-xxf9-g9h4-3pmj.json
index 1aead3258c1..95a9ea25052 100644
--- a/advisories/unreviewed/2022/05/GHSA-xxf9-g9h4-3pmj/GHSA-xxf9-g9h4-3pmj.json
+++ b/advisories/unreviewed/2022/05/GHSA-xxf9-g9h4-3pmj/GHSA-xxf9-g9h4-3pmj.json
@@ -7,12 +7,8 @@
"CVE-2007-6212"
],
"details": "Directory traversal vulnerability in region.php in KML share 1.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the layer parameter.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/09/GHSA-3fp9-5j6q-rjrv/GHSA-3fp9-5j6q-rjrv.json b/advisories/unreviewed/2022/09/GHSA-3fp9-5j6q-rjrv/GHSA-3fp9-5j6q-rjrv.json
index 1149c5b20f9..1cd1dff5b93 100644
--- a/advisories/unreviewed/2022/09/GHSA-3fp9-5j6q-rjrv/GHSA-3fp9-5j6q-rjrv.json
+++ b/advisories/unreviewed/2022/09/GHSA-3fp9-5j6q-rjrv/GHSA-3fp9-5j6q-rjrv.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/09/GHSA-5qmx-368f-v84x/GHSA-5qmx-368f-v84x.json b/advisories/unreviewed/2022/09/GHSA-5qmx-368f-v84x/GHSA-5qmx-368f-v84x.json
index b6cc9f2f0d8..27f2098e4e7 100644
--- a/advisories/unreviewed/2022/09/GHSA-5qmx-368f-v84x/GHSA-5qmx-368f-v84x.json
+++ b/advisories/unreviewed/2022/09/GHSA-5qmx-368f-v84x/GHSA-5qmx-368f-v84x.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -27,9 +25,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/09/GHSA-7r2q-xgr4-fqh3/GHSA-7r2q-xgr4-fqh3.json b/advisories/unreviewed/2022/09/GHSA-7r2q-xgr4-fqh3/GHSA-7r2q-xgr4-fqh3.json
index 5433108212c..12e076bc93f 100644
--- a/advisories/unreviewed/2022/09/GHSA-7r2q-xgr4-fqh3/GHSA-7r2q-xgr4-fqh3.json
+++ b/advisories/unreviewed/2022/09/GHSA-7r2q-xgr4-fqh3/GHSA-7r2q-xgr4-fqh3.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/09/GHSA-8cpj-v5f7-g2fm/GHSA-8cpj-v5f7-g2fm.json b/advisories/unreviewed/2022/09/GHSA-8cpj-v5f7-g2fm/GHSA-8cpj-v5f7-g2fm.json
index 23b1d211d55..40162300da2 100644
--- a/advisories/unreviewed/2022/09/GHSA-8cpj-v5f7-g2fm/GHSA-8cpj-v5f7-g2fm.json
+++ b/advisories/unreviewed/2022/09/GHSA-8cpj-v5f7-g2fm/GHSA-8cpj-v5f7-g2fm.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/09/GHSA-99pg-5rf4-r9x9/GHSA-99pg-5rf4-r9x9.json b/advisories/unreviewed/2022/09/GHSA-99pg-5rf4-r9x9/GHSA-99pg-5rf4-r9x9.json
index 9ac9bf58384..8c4007c9cfd 100644
--- a/advisories/unreviewed/2022/09/GHSA-99pg-5rf4-r9x9/GHSA-99pg-5rf4-r9x9.json
+++ b/advisories/unreviewed/2022/09/GHSA-99pg-5rf4-r9x9/GHSA-99pg-5rf4-r9x9.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/09/GHSA-frxw-cc6c-jg2m/GHSA-frxw-cc6c-jg2m.json b/advisories/unreviewed/2022/09/GHSA-frxw-cc6c-jg2m/GHSA-frxw-cc6c-jg2m.json
index 7b980bee3a0..e93359e5322 100644
--- a/advisories/unreviewed/2022/09/GHSA-frxw-cc6c-jg2m/GHSA-frxw-cc6c-jg2m.json
+++ b/advisories/unreviewed/2022/09/GHSA-frxw-cc6c-jg2m/GHSA-frxw-cc6c-jg2m.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -27,9 +25,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/09/GHSA-gc28-55g9-f45f/GHSA-gc28-55g9-f45f.json b/advisories/unreviewed/2022/09/GHSA-gc28-55g9-f45f/GHSA-gc28-55g9-f45f.json
index a551d46c414..db94fa5c3e7 100644
--- a/advisories/unreviewed/2022/09/GHSA-gc28-55g9-f45f/GHSA-gc28-55g9-f45f.json
+++ b/advisories/unreviewed/2022/09/GHSA-gc28-55g9-f45f/GHSA-gc28-55g9-f45f.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/09/GHSA-ggm8-hg26-3666/GHSA-ggm8-hg26-3666.json b/advisories/unreviewed/2022/09/GHSA-ggm8-hg26-3666/GHSA-ggm8-hg26-3666.json
index 603dd231462..fd882c5aebc 100644
--- a/advisories/unreviewed/2022/09/GHSA-ggm8-hg26-3666/GHSA-ggm8-hg26-3666.json
+++ b/advisories/unreviewed/2022/09/GHSA-ggm8-hg26-3666/GHSA-ggm8-hg26-3666.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/09/GHSA-h22c-cgp5-g8fw/GHSA-h22c-cgp5-g8fw.json b/advisories/unreviewed/2022/09/GHSA-h22c-cgp5-g8fw/GHSA-h22c-cgp5-g8fw.json
index b01deab90bb..1968f7fe960 100644
--- a/advisories/unreviewed/2022/09/GHSA-h22c-cgp5-g8fw/GHSA-h22c-cgp5-g8fw.json
+++ b/advisories/unreviewed/2022/09/GHSA-h22c-cgp5-g8fw/GHSA-h22c-cgp5-g8fw.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -31,9 +29,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "CRITICAL",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/09/GHSA-p5jc-cxx9-p4rp/GHSA-p5jc-cxx9-p4rp.json b/advisories/unreviewed/2022/09/GHSA-p5jc-cxx9-p4rp/GHSA-p5jc-cxx9-p4rp.json
index 7dde91188a7..811e0579501 100644
--- a/advisories/unreviewed/2022/09/GHSA-p5jc-cxx9-p4rp/GHSA-p5jc-cxx9-p4rp.json
+++ b/advisories/unreviewed/2022/09/GHSA-p5jc-cxx9-p4rp/GHSA-p5jc-cxx9-p4rp.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/09/GHSA-pr99-75h9-2c37/GHSA-pr99-75h9-2c37.json b/advisories/unreviewed/2022/09/GHSA-pr99-75h9-2c37/GHSA-pr99-75h9-2c37.json
index f439b4d6572..66780533839 100644
--- a/advisories/unreviewed/2022/09/GHSA-pr99-75h9-2c37/GHSA-pr99-75h9-2c37.json
+++ b/advisories/unreviewed/2022/09/GHSA-pr99-75h9-2c37/GHSA-pr99-75h9-2c37.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/09/GHSA-q925-4hvg-j5pg/GHSA-q925-4hvg-j5pg.json b/advisories/unreviewed/2022/09/GHSA-q925-4hvg-j5pg/GHSA-q925-4hvg-j5pg.json
index 33a6deee51d..92900077d72 100644
--- a/advisories/unreviewed/2022/09/GHSA-q925-4hvg-j5pg/GHSA-q925-4hvg-j5pg.json
+++ b/advisories/unreviewed/2022/09/GHSA-q925-4hvg-j5pg/GHSA-q925-4hvg-j5pg.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -27,9 +25,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/09/GHSA-rp88-5vg5-8wx2/GHSA-rp88-5vg5-8wx2.json b/advisories/unreviewed/2022/09/GHSA-rp88-5vg5-8wx2/GHSA-rp88-5vg5-8wx2.json
index 571605680ce..84c8a3887ab 100644
--- a/advisories/unreviewed/2022/09/GHSA-rp88-5vg5-8wx2/GHSA-rp88-5vg5-8wx2.json
+++ b/advisories/unreviewed/2022/09/GHSA-rp88-5vg5-8wx2/GHSA-rp88-5vg5-8wx2.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/09/GHSA-vfxc-vmpj-497v/GHSA-vfxc-vmpj-497v.json b/advisories/unreviewed/2022/09/GHSA-vfxc-vmpj-497v/GHSA-vfxc-vmpj-497v.json
index 43334efc793..2b52b29d480 100644
--- a/advisories/unreviewed/2022/09/GHSA-vfxc-vmpj-497v/GHSA-vfxc-vmpj-497v.json
+++ b/advisories/unreviewed/2022/09/GHSA-vfxc-vmpj-497v/GHSA-vfxc-vmpj-497v.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/09/GHSA-vm5p-493c-qpxg/GHSA-vm5p-493c-qpxg.json b/advisories/unreviewed/2022/09/GHSA-vm5p-493c-qpxg/GHSA-vm5p-493c-qpxg.json
index 6f9f7a9398c..b0b10410c85 100644
--- a/advisories/unreviewed/2022/09/GHSA-vm5p-493c-qpxg/GHSA-vm5p-493c-qpxg.json
+++ b/advisories/unreviewed/2022/09/GHSA-vm5p-493c-qpxg/GHSA-vm5p-493c-qpxg.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -31,9 +29,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "CRITICAL",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/09/GHSA-wrp8-cmmv-vq5c/GHSA-wrp8-cmmv-vq5c.json b/advisories/unreviewed/2022/09/GHSA-wrp8-cmmv-vq5c/GHSA-wrp8-cmmv-vq5c.json
index fc8fd65231a..5bc6413e5f9 100644
--- a/advisories/unreviewed/2022/09/GHSA-wrp8-cmmv-vq5c/GHSA-wrp8-cmmv-vq5c.json
+++ b/advisories/unreviewed/2022/09/GHSA-wrp8-cmmv-vq5c/GHSA-wrp8-cmmv-vq5c.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -27,9 +25,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/10/GHSA-25h2-xj4x-29h3/GHSA-25h2-xj4x-29h3.json b/advisories/unreviewed/2022/10/GHSA-25h2-xj4x-29h3/GHSA-25h2-xj4x-29h3.json
index 5b2d2a5a02d..ff3cbf0aa8f 100644
--- a/advisories/unreviewed/2022/10/GHSA-25h2-xj4x-29h3/GHSA-25h2-xj4x-29h3.json
+++ b/advisories/unreviewed/2022/10/GHSA-25h2-xj4x-29h3/GHSA-25h2-xj4x-29h3.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-2c3m-gh26-vh52/GHSA-2c3m-gh26-vh52.json b/advisories/unreviewed/2022/10/GHSA-2c3m-gh26-vh52/GHSA-2c3m-gh26-vh52.json
index 3f03f3b7eb0..ca11f834b0d 100644
--- a/advisories/unreviewed/2022/10/GHSA-2c3m-gh26-vh52/GHSA-2c3m-gh26-vh52.json
+++ b/advisories/unreviewed/2022/10/GHSA-2c3m-gh26-vh52/GHSA-2c3m-gh26-vh52.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-2g9p-2pv5-997p/GHSA-2g9p-2pv5-997p.json b/advisories/unreviewed/2022/10/GHSA-2g9p-2pv5-997p/GHSA-2g9p-2pv5-997p.json
index 107ce426e95..e0fb9669d96 100644
--- a/advisories/unreviewed/2022/10/GHSA-2g9p-2pv5-997p/GHSA-2g9p-2pv5-997p.json
+++ b/advisories/unreviewed/2022/10/GHSA-2g9p-2pv5-997p/GHSA-2g9p-2pv5-997p.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-2hwj-v42x-jfwh/GHSA-2hwj-v42x-jfwh.json b/advisories/unreviewed/2022/10/GHSA-2hwj-v42x-jfwh/GHSA-2hwj-v42x-jfwh.json
index 9427a9de2c1..5be7e46856b 100644
--- a/advisories/unreviewed/2022/10/GHSA-2hwj-v42x-jfwh/GHSA-2hwj-v42x-jfwh.json
+++ b/advisories/unreviewed/2022/10/GHSA-2hwj-v42x-jfwh/GHSA-2hwj-v42x-jfwh.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-2q3q-5qjv-rrf3/GHSA-2q3q-5qjv-rrf3.json b/advisories/unreviewed/2022/10/GHSA-2q3q-5qjv-rrf3/GHSA-2q3q-5qjv-rrf3.json
index ffa898dc703..f3f2ae303c5 100644
--- a/advisories/unreviewed/2022/10/GHSA-2q3q-5qjv-rrf3/GHSA-2q3q-5qjv-rrf3.json
+++ b/advisories/unreviewed/2022/10/GHSA-2q3q-5qjv-rrf3/GHSA-2q3q-5qjv-rrf3.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-3cc5-pgvq-wh26/GHSA-3cc5-pgvq-wh26.json b/advisories/unreviewed/2022/10/GHSA-3cc5-pgvq-wh26/GHSA-3cc5-pgvq-wh26.json
index 313cd81432f..8e97ed338ff 100644
--- a/advisories/unreviewed/2022/10/GHSA-3cc5-pgvq-wh26/GHSA-3cc5-pgvq-wh26.json
+++ b/advisories/unreviewed/2022/10/GHSA-3cc5-pgvq-wh26/GHSA-3cc5-pgvq-wh26.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-3mp9-x5q5-63w3/GHSA-3mp9-x5q5-63w3.json b/advisories/unreviewed/2022/10/GHSA-3mp9-x5q5-63w3/GHSA-3mp9-x5q5-63w3.json
index c42b3d26db9..34f11a6bdaf 100644
--- a/advisories/unreviewed/2022/10/GHSA-3mp9-x5q5-63w3/GHSA-3mp9-x5q5-63w3.json
+++ b/advisories/unreviewed/2022/10/GHSA-3mp9-x5q5-63w3/GHSA-3mp9-x5q5-63w3.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-3qhw-3jqv-hq24/GHSA-3qhw-3jqv-hq24.json b/advisories/unreviewed/2022/10/GHSA-3qhw-3jqv-hq24/GHSA-3qhw-3jqv-hq24.json
index c3111ab5dde..f61f93abf09 100644
--- a/advisories/unreviewed/2022/10/GHSA-3qhw-3jqv-hq24/GHSA-3qhw-3jqv-hq24.json
+++ b/advisories/unreviewed/2022/10/GHSA-3qhw-3jqv-hq24/GHSA-3qhw-3jqv-hq24.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-3rxj-99fp-83j6/GHSA-3rxj-99fp-83j6.json b/advisories/unreviewed/2022/10/GHSA-3rxj-99fp-83j6/GHSA-3rxj-99fp-83j6.json
index 9779f204ab3..44f11babd52 100644
--- a/advisories/unreviewed/2022/10/GHSA-3rxj-99fp-83j6/GHSA-3rxj-99fp-83j6.json
+++ b/advisories/unreviewed/2022/10/GHSA-3rxj-99fp-83j6/GHSA-3rxj-99fp-83j6.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-42qg-gfqm-p7q6/GHSA-42qg-gfqm-p7q6.json b/advisories/unreviewed/2022/10/GHSA-42qg-gfqm-p7q6/GHSA-42qg-gfqm-p7q6.json
index e5ea8286d83..9004abf05f7 100644
--- a/advisories/unreviewed/2022/10/GHSA-42qg-gfqm-p7q6/GHSA-42qg-gfqm-p7q6.json
+++ b/advisories/unreviewed/2022/10/GHSA-42qg-gfqm-p7q6/GHSA-42qg-gfqm-p7q6.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-49cg-8r82-w824/GHSA-49cg-8r82-w824.json b/advisories/unreviewed/2022/10/GHSA-49cg-8r82-w824/GHSA-49cg-8r82-w824.json
index ab27c6ae7b6..fbbd54e72f3 100644
--- a/advisories/unreviewed/2022/10/GHSA-49cg-8r82-w824/GHSA-49cg-8r82-w824.json
+++ b/advisories/unreviewed/2022/10/GHSA-49cg-8r82-w824/GHSA-49cg-8r82-w824.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-4mrm-8fhj-6fh8/GHSA-4mrm-8fhj-6fh8.json b/advisories/unreviewed/2022/10/GHSA-4mrm-8fhj-6fh8/GHSA-4mrm-8fhj-6fh8.json
index 627d5612d90..66ee541d6c5 100644
--- a/advisories/unreviewed/2022/10/GHSA-4mrm-8fhj-6fh8/GHSA-4mrm-8fhj-6fh8.json
+++ b/advisories/unreviewed/2022/10/GHSA-4mrm-8fhj-6fh8/GHSA-4mrm-8fhj-6fh8.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-4pfj-29xq-qrx4/GHSA-4pfj-29xq-qrx4.json b/advisories/unreviewed/2022/10/GHSA-4pfj-29xq-qrx4/GHSA-4pfj-29xq-qrx4.json
index a97d8aa8972..3b648c8e995 100644
--- a/advisories/unreviewed/2022/10/GHSA-4pfj-29xq-qrx4/GHSA-4pfj-29xq-qrx4.json
+++ b/advisories/unreviewed/2022/10/GHSA-4pfj-29xq-qrx4/GHSA-4pfj-29xq-qrx4.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-4v9h-r88h-8rcv/GHSA-4v9h-r88h-8rcv.json b/advisories/unreviewed/2022/10/GHSA-4v9h-r88h-8rcv/GHSA-4v9h-r88h-8rcv.json
index c26dcc92203..190beb4857c 100644
--- a/advisories/unreviewed/2022/10/GHSA-4v9h-r88h-8rcv/GHSA-4v9h-r88h-8rcv.json
+++ b/advisories/unreviewed/2022/10/GHSA-4v9h-r88h-8rcv/GHSA-4v9h-r88h-8rcv.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-536p-5vmg-wqmx/GHSA-536p-5vmg-wqmx.json b/advisories/unreviewed/2022/10/GHSA-536p-5vmg-wqmx/GHSA-536p-5vmg-wqmx.json
index eb3e0c24466..c22fbc705f6 100644
--- a/advisories/unreviewed/2022/10/GHSA-536p-5vmg-wqmx/GHSA-536p-5vmg-wqmx.json
+++ b/advisories/unreviewed/2022/10/GHSA-536p-5vmg-wqmx/GHSA-536p-5vmg-wqmx.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-538m-8fp5-6x55/GHSA-538m-8fp5-6x55.json b/advisories/unreviewed/2022/10/GHSA-538m-8fp5-6x55/GHSA-538m-8fp5-6x55.json
index ddafbbbfcee..9a4c9bfab1b 100644
--- a/advisories/unreviewed/2022/10/GHSA-538m-8fp5-6x55/GHSA-538m-8fp5-6x55.json
+++ b/advisories/unreviewed/2022/10/GHSA-538m-8fp5-6x55/GHSA-538m-8fp5-6x55.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-59hp-pm4h-6xr4/GHSA-59hp-pm4h-6xr4.json b/advisories/unreviewed/2022/10/GHSA-59hp-pm4h-6xr4/GHSA-59hp-pm4h-6xr4.json
index 403bbe4f237..aec6ef208ce 100644
--- a/advisories/unreviewed/2022/10/GHSA-59hp-pm4h-6xr4/GHSA-59hp-pm4h-6xr4.json
+++ b/advisories/unreviewed/2022/10/GHSA-59hp-pm4h-6xr4/GHSA-59hp-pm4h-6xr4.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-5qgj-73pm-mvf2/GHSA-5qgj-73pm-mvf2.json b/advisories/unreviewed/2022/10/GHSA-5qgj-73pm-mvf2/GHSA-5qgj-73pm-mvf2.json
index 19c2cef0c5b..d0f2ce1f307 100644
--- a/advisories/unreviewed/2022/10/GHSA-5qgj-73pm-mvf2/GHSA-5qgj-73pm-mvf2.json
+++ b/advisories/unreviewed/2022/10/GHSA-5qgj-73pm-mvf2/GHSA-5qgj-73pm-mvf2.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-5wwh-hcgf-hr8q/GHSA-5wwh-hcgf-hr8q.json b/advisories/unreviewed/2022/10/GHSA-5wwh-hcgf-hr8q/GHSA-5wwh-hcgf-hr8q.json
index 1a061a536fc..38b93fbf33d 100644
--- a/advisories/unreviewed/2022/10/GHSA-5wwh-hcgf-hr8q/GHSA-5wwh-hcgf-hr8q.json
+++ b/advisories/unreviewed/2022/10/GHSA-5wwh-hcgf-hr8q/GHSA-5wwh-hcgf-hr8q.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-65jr-q7fr-5gcv/GHSA-65jr-q7fr-5gcv.json b/advisories/unreviewed/2022/10/GHSA-65jr-q7fr-5gcv/GHSA-65jr-q7fr-5gcv.json
index ef5b9fe28ec..3a01303c9c9 100644
--- a/advisories/unreviewed/2022/10/GHSA-65jr-q7fr-5gcv/GHSA-65jr-q7fr-5gcv.json
+++ b/advisories/unreviewed/2022/10/GHSA-65jr-q7fr-5gcv/GHSA-65jr-q7fr-5gcv.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-66vp-w6x5-r54g/GHSA-66vp-w6x5-r54g.json b/advisories/unreviewed/2022/10/GHSA-66vp-w6x5-r54g/GHSA-66vp-w6x5-r54g.json
index adf025854b0..85bb6bd3a37 100644
--- a/advisories/unreviewed/2022/10/GHSA-66vp-w6x5-r54g/GHSA-66vp-w6x5-r54g.json
+++ b/advisories/unreviewed/2022/10/GHSA-66vp-w6x5-r54g/GHSA-66vp-w6x5-r54g.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-6gf8-3gqj-43hq/GHSA-6gf8-3gqj-43hq.json b/advisories/unreviewed/2022/10/GHSA-6gf8-3gqj-43hq/GHSA-6gf8-3gqj-43hq.json
index 7e4a5c32b5f..5b216bf3f53 100644
--- a/advisories/unreviewed/2022/10/GHSA-6gf8-3gqj-43hq/GHSA-6gf8-3gqj-43hq.json
+++ b/advisories/unreviewed/2022/10/GHSA-6gf8-3gqj-43hq/GHSA-6gf8-3gqj-43hq.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-6prj-5r8w-3x38/GHSA-6prj-5r8w-3x38.json b/advisories/unreviewed/2022/10/GHSA-6prj-5r8w-3x38/GHSA-6prj-5r8w-3x38.json
index 6f6e51e4ccf..59e5d14ddbf 100644
--- a/advisories/unreviewed/2022/10/GHSA-6prj-5r8w-3x38/GHSA-6prj-5r8w-3x38.json
+++ b/advisories/unreviewed/2022/10/GHSA-6prj-5r8w-3x38/GHSA-6prj-5r8w-3x38.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-735p-82qp-4wm2/GHSA-735p-82qp-4wm2.json b/advisories/unreviewed/2022/10/GHSA-735p-82qp-4wm2/GHSA-735p-82qp-4wm2.json
index 42c95f7e8f6..02c9d5ef59c 100644
--- a/advisories/unreviewed/2022/10/GHSA-735p-82qp-4wm2/GHSA-735p-82qp-4wm2.json
+++ b/advisories/unreviewed/2022/10/GHSA-735p-82qp-4wm2/GHSA-735p-82qp-4wm2.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-787w-9xwh-m393/GHSA-787w-9xwh-m393.json b/advisories/unreviewed/2022/10/GHSA-787w-9xwh-m393/GHSA-787w-9xwh-m393.json
index d958d0e24db..3cbcbea4419 100644
--- a/advisories/unreviewed/2022/10/GHSA-787w-9xwh-m393/GHSA-787w-9xwh-m393.json
+++ b/advisories/unreviewed/2022/10/GHSA-787w-9xwh-m393/GHSA-787w-9xwh-m393.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-7fxv-pr9h-f54r/GHSA-7fxv-pr9h-f54r.json b/advisories/unreviewed/2022/10/GHSA-7fxv-pr9h-f54r/GHSA-7fxv-pr9h-f54r.json
index b0a08ffd4c1..652eda69414 100644
--- a/advisories/unreviewed/2022/10/GHSA-7fxv-pr9h-f54r/GHSA-7fxv-pr9h-f54r.json
+++ b/advisories/unreviewed/2022/10/GHSA-7fxv-pr9h-f54r/GHSA-7fxv-pr9h-f54r.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-7hpj-mxfh-5j9j/GHSA-7hpj-mxfh-5j9j.json b/advisories/unreviewed/2022/10/GHSA-7hpj-mxfh-5j9j/GHSA-7hpj-mxfh-5j9j.json
index af306db1b74..89e65885663 100644
--- a/advisories/unreviewed/2022/10/GHSA-7hpj-mxfh-5j9j/GHSA-7hpj-mxfh-5j9j.json
+++ b/advisories/unreviewed/2022/10/GHSA-7hpj-mxfh-5j9j/GHSA-7hpj-mxfh-5j9j.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-7jr9-w2r4-mr83/GHSA-7jr9-w2r4-mr83.json b/advisories/unreviewed/2022/10/GHSA-7jr9-w2r4-mr83/GHSA-7jr9-w2r4-mr83.json
index b92bfc4f9a7..a66491f07a1 100644
--- a/advisories/unreviewed/2022/10/GHSA-7jr9-w2r4-mr83/GHSA-7jr9-w2r4-mr83.json
+++ b/advisories/unreviewed/2022/10/GHSA-7jr9-w2r4-mr83/GHSA-7jr9-w2r4-mr83.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-7mxx-778x-3hwg/GHSA-7mxx-778x-3hwg.json b/advisories/unreviewed/2022/10/GHSA-7mxx-778x-3hwg/GHSA-7mxx-778x-3hwg.json
index dea6652c135..6cd7eb11870 100644
--- a/advisories/unreviewed/2022/10/GHSA-7mxx-778x-3hwg/GHSA-7mxx-778x-3hwg.json
+++ b/advisories/unreviewed/2022/10/GHSA-7mxx-778x-3hwg/GHSA-7mxx-778x-3hwg.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-7r5g-2f64-p9hg/GHSA-7r5g-2f64-p9hg.json b/advisories/unreviewed/2022/10/GHSA-7r5g-2f64-p9hg/GHSA-7r5g-2f64-p9hg.json
index e50782a53f7..a68d261e265 100644
--- a/advisories/unreviewed/2022/10/GHSA-7r5g-2f64-p9hg/GHSA-7r5g-2f64-p9hg.json
+++ b/advisories/unreviewed/2022/10/GHSA-7r5g-2f64-p9hg/GHSA-7r5g-2f64-p9hg.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-84x9-g98v-6qpc/GHSA-84x9-g98v-6qpc.json b/advisories/unreviewed/2022/10/GHSA-84x9-g98v-6qpc/GHSA-84x9-g98v-6qpc.json
index 972034004d6..0bf081711ab 100644
--- a/advisories/unreviewed/2022/10/GHSA-84x9-g98v-6qpc/GHSA-84x9-g98v-6qpc.json
+++ b/advisories/unreviewed/2022/10/GHSA-84x9-g98v-6qpc/GHSA-84x9-g98v-6qpc.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-8g74-45pc-67v3/GHSA-8g74-45pc-67v3.json b/advisories/unreviewed/2022/10/GHSA-8g74-45pc-67v3/GHSA-8g74-45pc-67v3.json
index ff1d0ba6dff..adebe69a920 100644
--- a/advisories/unreviewed/2022/10/GHSA-8g74-45pc-67v3/GHSA-8g74-45pc-67v3.json
+++ b/advisories/unreviewed/2022/10/GHSA-8g74-45pc-67v3/GHSA-8g74-45pc-67v3.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-8gfp-vrw4-c7q9/GHSA-8gfp-vrw4-c7q9.json b/advisories/unreviewed/2022/10/GHSA-8gfp-vrw4-c7q9/GHSA-8gfp-vrw4-c7q9.json
index 89077b0d1b3..b50a91c5347 100644
--- a/advisories/unreviewed/2022/10/GHSA-8gfp-vrw4-c7q9/GHSA-8gfp-vrw4-c7q9.json
+++ b/advisories/unreviewed/2022/10/GHSA-8gfp-vrw4-c7q9/GHSA-8gfp-vrw4-c7q9.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-8qpc-p8g3-5v5f/GHSA-8qpc-p8g3-5v5f.json b/advisories/unreviewed/2022/10/GHSA-8qpc-p8g3-5v5f/GHSA-8qpc-p8g3-5v5f.json
index 988eca06aa3..23d1178b3f9 100644
--- a/advisories/unreviewed/2022/10/GHSA-8qpc-p8g3-5v5f/GHSA-8qpc-p8g3-5v5f.json
+++ b/advisories/unreviewed/2022/10/GHSA-8qpc-p8g3-5v5f/GHSA-8qpc-p8g3-5v5f.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-98m8-p59c-6hx7/GHSA-98m8-p59c-6hx7.json b/advisories/unreviewed/2022/10/GHSA-98m8-p59c-6hx7/GHSA-98m8-p59c-6hx7.json
index df9e5882e69..4cbc95c25ac 100644
--- a/advisories/unreviewed/2022/10/GHSA-98m8-p59c-6hx7/GHSA-98m8-p59c-6hx7.json
+++ b/advisories/unreviewed/2022/10/GHSA-98m8-p59c-6hx7/GHSA-98m8-p59c-6hx7.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-9c4c-j76h-qwm7/GHSA-9c4c-j76h-qwm7.json b/advisories/unreviewed/2022/10/GHSA-9c4c-j76h-qwm7/GHSA-9c4c-j76h-qwm7.json
index f8d7076f9bd..6d0cdffebe3 100644
--- a/advisories/unreviewed/2022/10/GHSA-9c4c-j76h-qwm7/GHSA-9c4c-j76h-qwm7.json
+++ b/advisories/unreviewed/2022/10/GHSA-9c4c-j76h-qwm7/GHSA-9c4c-j76h-qwm7.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-9m4h-cwgq-6cq2/GHSA-9m4h-cwgq-6cq2.json b/advisories/unreviewed/2022/10/GHSA-9m4h-cwgq-6cq2/GHSA-9m4h-cwgq-6cq2.json
index 965e9d1a829..ca010e6639e 100644
--- a/advisories/unreviewed/2022/10/GHSA-9m4h-cwgq-6cq2/GHSA-9m4h-cwgq-6cq2.json
+++ b/advisories/unreviewed/2022/10/GHSA-9m4h-cwgq-6cq2/GHSA-9m4h-cwgq-6cq2.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-9vrx-xfr3-hfjj/GHSA-9vrx-xfr3-hfjj.json b/advisories/unreviewed/2022/10/GHSA-9vrx-xfr3-hfjj/GHSA-9vrx-xfr3-hfjj.json
index f2fdf1018dc..9b56dab3df3 100644
--- a/advisories/unreviewed/2022/10/GHSA-9vrx-xfr3-hfjj/GHSA-9vrx-xfr3-hfjj.json
+++ b/advisories/unreviewed/2022/10/GHSA-9vrx-xfr3-hfjj/GHSA-9vrx-xfr3-hfjj.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -27,9 +25,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/10/GHSA-cmx3-qvjw-r7jp/GHSA-cmx3-qvjw-r7jp.json b/advisories/unreviewed/2022/10/GHSA-cmx3-qvjw-r7jp/GHSA-cmx3-qvjw-r7jp.json
index acf36b5395c..ff5389aebd6 100644
--- a/advisories/unreviewed/2022/10/GHSA-cmx3-qvjw-r7jp/GHSA-cmx3-qvjw-r7jp.json
+++ b/advisories/unreviewed/2022/10/GHSA-cmx3-qvjw-r7jp/GHSA-cmx3-qvjw-r7jp.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-cp4m-ghgj-x9w7/GHSA-cp4m-ghgj-x9w7.json b/advisories/unreviewed/2022/10/GHSA-cp4m-ghgj-x9w7/GHSA-cp4m-ghgj-x9w7.json
index bfdb57614f3..bc2c878a2bc 100644
--- a/advisories/unreviewed/2022/10/GHSA-cp4m-ghgj-x9w7/GHSA-cp4m-ghgj-x9w7.json
+++ b/advisories/unreviewed/2022/10/GHSA-cp4m-ghgj-x9w7/GHSA-cp4m-ghgj-x9w7.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-f2r8-jjg8-4h22/GHSA-f2r8-jjg8-4h22.json b/advisories/unreviewed/2022/10/GHSA-f2r8-jjg8-4h22/GHSA-f2r8-jjg8-4h22.json
index 8659e6dfb56..fcb87dc50df 100644
--- a/advisories/unreviewed/2022/10/GHSA-f2r8-jjg8-4h22/GHSA-f2r8-jjg8-4h22.json
+++ b/advisories/unreviewed/2022/10/GHSA-f2r8-jjg8-4h22/GHSA-f2r8-jjg8-4h22.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-f4hw-g4gh-mmch/GHSA-f4hw-g4gh-mmch.json b/advisories/unreviewed/2022/10/GHSA-f4hw-g4gh-mmch/GHSA-f4hw-g4gh-mmch.json
index 418694be5c5..dde76c81e10 100644
--- a/advisories/unreviewed/2022/10/GHSA-f4hw-g4gh-mmch/GHSA-f4hw-g4gh-mmch.json
+++ b/advisories/unreviewed/2022/10/GHSA-f4hw-g4gh-mmch/GHSA-f4hw-g4gh-mmch.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -27,9 +25,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "CRITICAL",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/10/GHSA-f56c-m4fp-2fhv/GHSA-f56c-m4fp-2fhv.json b/advisories/unreviewed/2022/10/GHSA-f56c-m4fp-2fhv/GHSA-f56c-m4fp-2fhv.json
index ef50f0a9649..2bfece54693 100644
--- a/advisories/unreviewed/2022/10/GHSA-f56c-m4fp-2fhv/GHSA-f56c-m4fp-2fhv.json
+++ b/advisories/unreviewed/2022/10/GHSA-f56c-m4fp-2fhv/GHSA-f56c-m4fp-2fhv.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-fjmp-762c-258c/GHSA-fjmp-762c-258c.json b/advisories/unreviewed/2022/10/GHSA-fjmp-762c-258c/GHSA-fjmp-762c-258c.json
index 1696bd37a11..44abc70cb1f 100644
--- a/advisories/unreviewed/2022/10/GHSA-fjmp-762c-258c/GHSA-fjmp-762c-258c.json
+++ b/advisories/unreviewed/2022/10/GHSA-fjmp-762c-258c/GHSA-fjmp-762c-258c.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-fpp7-4jrj-q54q/GHSA-fpp7-4jrj-q54q.json b/advisories/unreviewed/2022/10/GHSA-fpp7-4jrj-q54q/GHSA-fpp7-4jrj-q54q.json
index 71c975ecfdd..70f555b0527 100644
--- a/advisories/unreviewed/2022/10/GHSA-fpp7-4jrj-q54q/GHSA-fpp7-4jrj-q54q.json
+++ b/advisories/unreviewed/2022/10/GHSA-fpp7-4jrj-q54q/GHSA-fpp7-4jrj-q54q.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-fq3r-v7q7-f72f/GHSA-fq3r-v7q7-f72f.json b/advisories/unreviewed/2022/10/GHSA-fq3r-v7q7-f72f/GHSA-fq3r-v7q7-f72f.json
index a81f19d51be..31974b07980 100644
--- a/advisories/unreviewed/2022/10/GHSA-fq3r-v7q7-f72f/GHSA-fq3r-v7q7-f72f.json
+++ b/advisories/unreviewed/2022/10/GHSA-fq3r-v7q7-f72f/GHSA-fq3r-v7q7-f72f.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-g3gp-3rff-x6qf/GHSA-g3gp-3rff-x6qf.json b/advisories/unreviewed/2022/10/GHSA-g3gp-3rff-x6qf/GHSA-g3gp-3rff-x6qf.json
index 194184e88c3..e99581af761 100644
--- a/advisories/unreviewed/2022/10/GHSA-g3gp-3rff-x6qf/GHSA-g3gp-3rff-x6qf.json
+++ b/advisories/unreviewed/2022/10/GHSA-g3gp-3rff-x6qf/GHSA-g3gp-3rff-x6qf.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-g6pv-x43g-wx66/GHSA-g6pv-x43g-wx66.json b/advisories/unreviewed/2022/10/GHSA-g6pv-x43g-wx66/GHSA-g6pv-x43g-wx66.json
index aaed9124cb5..91b1087e9f1 100644
--- a/advisories/unreviewed/2022/10/GHSA-g6pv-x43g-wx66/GHSA-g6pv-x43g-wx66.json
+++ b/advisories/unreviewed/2022/10/GHSA-g6pv-x43g-wx66/GHSA-g6pv-x43g-wx66.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-gjm6-3c4q-m6rg/GHSA-gjm6-3c4q-m6rg.json b/advisories/unreviewed/2022/10/GHSA-gjm6-3c4q-m6rg/GHSA-gjm6-3c4q-m6rg.json
index bcf59a28930..21b29e023af 100644
--- a/advisories/unreviewed/2022/10/GHSA-gjm6-3c4q-m6rg/GHSA-gjm6-3c4q-m6rg.json
+++ b/advisories/unreviewed/2022/10/GHSA-gjm6-3c4q-m6rg/GHSA-gjm6-3c4q-m6rg.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-gp5m-364j-vjhq/GHSA-gp5m-364j-vjhq.json b/advisories/unreviewed/2022/10/GHSA-gp5m-364j-vjhq/GHSA-gp5m-364j-vjhq.json
index d57fcdbc7e9..ae2ca54cca6 100644
--- a/advisories/unreviewed/2022/10/GHSA-gp5m-364j-vjhq/GHSA-gp5m-364j-vjhq.json
+++ b/advisories/unreviewed/2022/10/GHSA-gp5m-364j-vjhq/GHSA-gp5m-364j-vjhq.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-gpfm-qqg7-xjcg/GHSA-gpfm-qqg7-xjcg.json b/advisories/unreviewed/2022/10/GHSA-gpfm-qqg7-xjcg/GHSA-gpfm-qqg7-xjcg.json
index 306dd79c739..8f3c3b9037c 100644
--- a/advisories/unreviewed/2022/10/GHSA-gpfm-qqg7-xjcg/GHSA-gpfm-qqg7-xjcg.json
+++ b/advisories/unreviewed/2022/10/GHSA-gpfm-qqg7-xjcg/GHSA-gpfm-qqg7-xjcg.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-gqvp-5g3v-2h3j/GHSA-gqvp-5g3v-2h3j.json b/advisories/unreviewed/2022/10/GHSA-gqvp-5g3v-2h3j/GHSA-gqvp-5g3v-2h3j.json
index f41a09c03c1..4003f5e23b9 100644
--- a/advisories/unreviewed/2022/10/GHSA-gqvp-5g3v-2h3j/GHSA-gqvp-5g3v-2h3j.json
+++ b/advisories/unreviewed/2022/10/GHSA-gqvp-5g3v-2h3j/GHSA-gqvp-5g3v-2h3j.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-h4vx-4v48-w8jh/GHSA-h4vx-4v48-w8jh.json b/advisories/unreviewed/2022/10/GHSA-h4vx-4v48-w8jh/GHSA-h4vx-4v48-w8jh.json
index 76e0768e2ca..500bef4ea61 100644
--- a/advisories/unreviewed/2022/10/GHSA-h4vx-4v48-w8jh/GHSA-h4vx-4v48-w8jh.json
+++ b/advisories/unreviewed/2022/10/GHSA-h4vx-4v48-w8jh/GHSA-h4vx-4v48-w8jh.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-h5qh-46xc-5w5h/GHSA-h5qh-46xc-5w5h.json b/advisories/unreviewed/2022/10/GHSA-h5qh-46xc-5w5h/GHSA-h5qh-46xc-5w5h.json
index a709cd4ce7b..2b1c9bcc34f 100644
--- a/advisories/unreviewed/2022/10/GHSA-h5qh-46xc-5w5h/GHSA-h5qh-46xc-5w5h.json
+++ b/advisories/unreviewed/2022/10/GHSA-h5qh-46xc-5w5h/GHSA-h5qh-46xc-5w5h.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-h944-hpq6-6jpv/GHSA-h944-hpq6-6jpv.json b/advisories/unreviewed/2022/10/GHSA-h944-hpq6-6jpv/GHSA-h944-hpq6-6jpv.json
index 62082d0c8fc..9e250cd3784 100644
--- a/advisories/unreviewed/2022/10/GHSA-h944-hpq6-6jpv/GHSA-h944-hpq6-6jpv.json
+++ b/advisories/unreviewed/2022/10/GHSA-h944-hpq6-6jpv/GHSA-h944-hpq6-6jpv.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -27,9 +25,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/10/GHSA-hvm3-wmf4-5r36/GHSA-hvm3-wmf4-5r36.json b/advisories/unreviewed/2022/10/GHSA-hvm3-wmf4-5r36/GHSA-hvm3-wmf4-5r36.json
index cdf1bf0d467..21a2af0e628 100644
--- a/advisories/unreviewed/2022/10/GHSA-hvm3-wmf4-5r36/GHSA-hvm3-wmf4-5r36.json
+++ b/advisories/unreviewed/2022/10/GHSA-hvm3-wmf4-5r36/GHSA-hvm3-wmf4-5r36.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-j32x-23xm-jj7g/GHSA-j32x-23xm-jj7g.json b/advisories/unreviewed/2022/10/GHSA-j32x-23xm-jj7g/GHSA-j32x-23xm-jj7g.json
index b6fe211090d..8e78bbd5884 100644
--- a/advisories/unreviewed/2022/10/GHSA-j32x-23xm-jj7g/GHSA-j32x-23xm-jj7g.json
+++ b/advisories/unreviewed/2022/10/GHSA-j32x-23xm-jj7g/GHSA-j32x-23xm-jj7g.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-j4j6-6hfx-pfq5/GHSA-j4j6-6hfx-pfq5.json b/advisories/unreviewed/2022/10/GHSA-j4j6-6hfx-pfq5/GHSA-j4j6-6hfx-pfq5.json
index cdb1c069752..41dfa8fcf23 100644
--- a/advisories/unreviewed/2022/10/GHSA-j4j6-6hfx-pfq5/GHSA-j4j6-6hfx-pfq5.json
+++ b/advisories/unreviewed/2022/10/GHSA-j4j6-6hfx-pfq5/GHSA-j4j6-6hfx-pfq5.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-m634-qv6v-fgvh/GHSA-m634-qv6v-fgvh.json b/advisories/unreviewed/2022/10/GHSA-m634-qv6v-fgvh/GHSA-m634-qv6v-fgvh.json
index 72a7fef1d0d..628b5914c94 100644
--- a/advisories/unreviewed/2022/10/GHSA-m634-qv6v-fgvh/GHSA-m634-qv6v-fgvh.json
+++ b/advisories/unreviewed/2022/10/GHSA-m634-qv6v-fgvh/GHSA-m634-qv6v-fgvh.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-m9gm-hrp4-5r57/GHSA-m9gm-hrp4-5r57.json b/advisories/unreviewed/2022/10/GHSA-m9gm-hrp4-5r57/GHSA-m9gm-hrp4-5r57.json
index 331f24b4ad5..a9b38535070 100644
--- a/advisories/unreviewed/2022/10/GHSA-m9gm-hrp4-5r57/GHSA-m9gm-hrp4-5r57.json
+++ b/advisories/unreviewed/2022/10/GHSA-m9gm-hrp4-5r57/GHSA-m9gm-hrp4-5r57.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-m9q7-h3j2-7cq3/GHSA-m9q7-h3j2-7cq3.json b/advisories/unreviewed/2022/10/GHSA-m9q7-h3j2-7cq3/GHSA-m9q7-h3j2-7cq3.json
index b5480c7126c..f665aebab8b 100644
--- a/advisories/unreviewed/2022/10/GHSA-m9q7-h3j2-7cq3/GHSA-m9q7-h3j2-7cq3.json
+++ b/advisories/unreviewed/2022/10/GHSA-m9q7-h3j2-7cq3/GHSA-m9q7-h3j2-7cq3.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-mgmj-2jxj-v92v/GHSA-mgmj-2jxj-v92v.json b/advisories/unreviewed/2022/10/GHSA-mgmj-2jxj-v92v/GHSA-mgmj-2jxj-v92v.json
index 3015c43b6d3..87360db5e3c 100644
--- a/advisories/unreviewed/2022/10/GHSA-mgmj-2jxj-v92v/GHSA-mgmj-2jxj-v92v.json
+++ b/advisories/unreviewed/2022/10/GHSA-mgmj-2jxj-v92v/GHSA-mgmj-2jxj-v92v.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-mm7p-j8qh-fwqg/GHSA-mm7p-j8qh-fwqg.json b/advisories/unreviewed/2022/10/GHSA-mm7p-j8qh-fwqg/GHSA-mm7p-j8qh-fwqg.json
index 609d354cb8d..40ac1808a6b 100644
--- a/advisories/unreviewed/2022/10/GHSA-mm7p-j8qh-fwqg/GHSA-mm7p-j8qh-fwqg.json
+++ b/advisories/unreviewed/2022/10/GHSA-mm7p-j8qh-fwqg/GHSA-mm7p-j8qh-fwqg.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-mpmg-7xg8-32q9/GHSA-mpmg-7xg8-32q9.json b/advisories/unreviewed/2022/10/GHSA-mpmg-7xg8-32q9/GHSA-mpmg-7xg8-32q9.json
index 75566138c51..ca6b4b83724 100644
--- a/advisories/unreviewed/2022/10/GHSA-mpmg-7xg8-32q9/GHSA-mpmg-7xg8-32q9.json
+++ b/advisories/unreviewed/2022/10/GHSA-mpmg-7xg8-32q9/GHSA-mpmg-7xg8-32q9.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-p589-wfww-6cff/GHSA-p589-wfww-6cff.json b/advisories/unreviewed/2022/10/GHSA-p589-wfww-6cff/GHSA-p589-wfww-6cff.json
index e0eadcf2411..069aa758267 100644
--- a/advisories/unreviewed/2022/10/GHSA-p589-wfww-6cff/GHSA-p589-wfww-6cff.json
+++ b/advisories/unreviewed/2022/10/GHSA-p589-wfww-6cff/GHSA-p589-wfww-6cff.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-ph5x-2c83-pc9x/GHSA-ph5x-2c83-pc9x.json b/advisories/unreviewed/2022/10/GHSA-ph5x-2c83-pc9x/GHSA-ph5x-2c83-pc9x.json
index aed5ade82ae..b44dd4c7352 100644
--- a/advisories/unreviewed/2022/10/GHSA-ph5x-2c83-pc9x/GHSA-ph5x-2c83-pc9x.json
+++ b/advisories/unreviewed/2022/10/GHSA-ph5x-2c83-pc9x/GHSA-ph5x-2c83-pc9x.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-phvc-rjr5-r475/GHSA-phvc-rjr5-r475.json b/advisories/unreviewed/2022/10/GHSA-phvc-rjr5-r475/GHSA-phvc-rjr5-r475.json
index 0195d232a5c..d54aa5b4576 100644
--- a/advisories/unreviewed/2022/10/GHSA-phvc-rjr5-r475/GHSA-phvc-rjr5-r475.json
+++ b/advisories/unreviewed/2022/10/GHSA-phvc-rjr5-r475/GHSA-phvc-rjr5-r475.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-pvxg-rpp4-g743/GHSA-pvxg-rpp4-g743.json b/advisories/unreviewed/2022/10/GHSA-pvxg-rpp4-g743/GHSA-pvxg-rpp4-g743.json
index 0d4911be736..41b72a34f70 100644
--- a/advisories/unreviewed/2022/10/GHSA-pvxg-rpp4-g743/GHSA-pvxg-rpp4-g743.json
+++ b/advisories/unreviewed/2022/10/GHSA-pvxg-rpp4-g743/GHSA-pvxg-rpp4-g743.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-q4w7-f882-h6hc/GHSA-q4w7-f882-h6hc.json b/advisories/unreviewed/2022/10/GHSA-q4w7-f882-h6hc/GHSA-q4w7-f882-h6hc.json
index df47f9ee79f..a709b9dd992 100644
--- a/advisories/unreviewed/2022/10/GHSA-q4w7-f882-h6hc/GHSA-q4w7-f882-h6hc.json
+++ b/advisories/unreviewed/2022/10/GHSA-q4w7-f882-h6hc/GHSA-q4w7-f882-h6hc.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-q7p6-wrxr-jgv7/GHSA-q7p6-wrxr-jgv7.json b/advisories/unreviewed/2022/10/GHSA-q7p6-wrxr-jgv7/GHSA-q7p6-wrxr-jgv7.json
index cffa1cbf071..092882167ea 100644
--- a/advisories/unreviewed/2022/10/GHSA-q7p6-wrxr-jgv7/GHSA-q7p6-wrxr-jgv7.json
+++ b/advisories/unreviewed/2022/10/GHSA-q7p6-wrxr-jgv7/GHSA-q7p6-wrxr-jgv7.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-qjm8-ccv3-g62v/GHSA-qjm8-ccv3-g62v.json b/advisories/unreviewed/2022/10/GHSA-qjm8-ccv3-g62v/GHSA-qjm8-ccv3-g62v.json
index 6e8aa3949fc..69a3d72216c 100644
--- a/advisories/unreviewed/2022/10/GHSA-qjm8-ccv3-g62v/GHSA-qjm8-ccv3-g62v.json
+++ b/advisories/unreviewed/2022/10/GHSA-qjm8-ccv3-g62v/GHSA-qjm8-ccv3-g62v.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-qqw8-fx85-65hc/GHSA-qqw8-fx85-65hc.json b/advisories/unreviewed/2022/10/GHSA-qqw8-fx85-65hc/GHSA-qqw8-fx85-65hc.json
index 987538e27d4..7ecc68062cf 100644
--- a/advisories/unreviewed/2022/10/GHSA-qqw8-fx85-65hc/GHSA-qqw8-fx85-65hc.json
+++ b/advisories/unreviewed/2022/10/GHSA-qqw8-fx85-65hc/GHSA-qqw8-fx85-65hc.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-qvcw-p624-5mqm/GHSA-qvcw-p624-5mqm.json b/advisories/unreviewed/2022/10/GHSA-qvcw-p624-5mqm/GHSA-qvcw-p624-5mqm.json
index 78643016899..32477b7e67d 100644
--- a/advisories/unreviewed/2022/10/GHSA-qvcw-p624-5mqm/GHSA-qvcw-p624-5mqm.json
+++ b/advisories/unreviewed/2022/10/GHSA-qvcw-p624-5mqm/GHSA-qvcw-p624-5mqm.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-qwwj-2xhc-x8v6/GHSA-qwwj-2xhc-x8v6.json b/advisories/unreviewed/2022/10/GHSA-qwwj-2xhc-x8v6/GHSA-qwwj-2xhc-x8v6.json
index bfc91ac8a4d..a674241139b 100644
--- a/advisories/unreviewed/2022/10/GHSA-qwwj-2xhc-x8v6/GHSA-qwwj-2xhc-x8v6.json
+++ b/advisories/unreviewed/2022/10/GHSA-qwwj-2xhc-x8v6/GHSA-qwwj-2xhc-x8v6.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-r5wj-2hf2-f2hg/GHSA-r5wj-2hf2-f2hg.json b/advisories/unreviewed/2022/10/GHSA-r5wj-2hf2-f2hg/GHSA-r5wj-2hf2-f2hg.json
index a50328af296..04d79a759c7 100644
--- a/advisories/unreviewed/2022/10/GHSA-r5wj-2hf2-f2hg/GHSA-r5wj-2hf2-f2hg.json
+++ b/advisories/unreviewed/2022/10/GHSA-r5wj-2hf2-f2hg/GHSA-r5wj-2hf2-f2hg.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-rh3c-6gpv-2c72/GHSA-rh3c-6gpv-2c72.json b/advisories/unreviewed/2022/10/GHSA-rh3c-6gpv-2c72/GHSA-rh3c-6gpv-2c72.json
index b7e27ef40d5..6b59f74f5f8 100644
--- a/advisories/unreviewed/2022/10/GHSA-rh3c-6gpv-2c72/GHSA-rh3c-6gpv-2c72.json
+++ b/advisories/unreviewed/2022/10/GHSA-rh3c-6gpv-2c72/GHSA-rh3c-6gpv-2c72.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-rx5r-m3j5-w4mc/GHSA-rx5r-m3j5-w4mc.json b/advisories/unreviewed/2022/10/GHSA-rx5r-m3j5-w4mc/GHSA-rx5r-m3j5-w4mc.json
index 00c5114171c..cc6370ac467 100644
--- a/advisories/unreviewed/2022/10/GHSA-rx5r-m3j5-w4mc/GHSA-rx5r-m3j5-w4mc.json
+++ b/advisories/unreviewed/2022/10/GHSA-rx5r-m3j5-w4mc/GHSA-rx5r-m3j5-w4mc.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -31,9 +29,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2022/10/GHSA-v736-h5g7-qvj3/GHSA-v736-h5g7-qvj3.json b/advisories/unreviewed/2022/10/GHSA-v736-h5g7-qvj3/GHSA-v736-h5g7-qvj3.json
index 4ff0a659eae..587af25e1e3 100644
--- a/advisories/unreviewed/2022/10/GHSA-v736-h5g7-qvj3/GHSA-v736-h5g7-qvj3.json
+++ b/advisories/unreviewed/2022/10/GHSA-v736-h5g7-qvj3/GHSA-v736-h5g7-qvj3.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-v7qv-2wqg-22q9/GHSA-v7qv-2wqg-22q9.json b/advisories/unreviewed/2022/10/GHSA-v7qv-2wqg-22q9/GHSA-v7qv-2wqg-22q9.json
index feada87db7f..ffd834dc2c7 100644
--- a/advisories/unreviewed/2022/10/GHSA-v7qv-2wqg-22q9/GHSA-v7qv-2wqg-22q9.json
+++ b/advisories/unreviewed/2022/10/GHSA-v7qv-2wqg-22q9/GHSA-v7qv-2wqg-22q9.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-vmxf-xq75-pgxr/GHSA-vmxf-xq75-pgxr.json b/advisories/unreviewed/2022/10/GHSA-vmxf-xq75-pgxr/GHSA-vmxf-xq75-pgxr.json
index a6bf468f2a7..8e93de5f64b 100644
--- a/advisories/unreviewed/2022/10/GHSA-vmxf-xq75-pgxr/GHSA-vmxf-xq75-pgxr.json
+++ b/advisories/unreviewed/2022/10/GHSA-vmxf-xq75-pgxr/GHSA-vmxf-xq75-pgxr.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-vqx5-7wv4-cx38/GHSA-vqx5-7wv4-cx38.json b/advisories/unreviewed/2022/10/GHSA-vqx5-7wv4-cx38/GHSA-vqx5-7wv4-cx38.json
index a106f650791..9fbf04205ba 100644
--- a/advisories/unreviewed/2022/10/GHSA-vqx5-7wv4-cx38/GHSA-vqx5-7wv4-cx38.json
+++ b/advisories/unreviewed/2022/10/GHSA-vqx5-7wv4-cx38/GHSA-vqx5-7wv4-cx38.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-vx3j-473c-2w6c/GHSA-vx3j-473c-2w6c.json b/advisories/unreviewed/2022/10/GHSA-vx3j-473c-2w6c/GHSA-vx3j-473c-2w6c.json
index d9929150b21..ad68f4e469a 100644
--- a/advisories/unreviewed/2022/10/GHSA-vx3j-473c-2w6c/GHSA-vx3j-473c-2w6c.json
+++ b/advisories/unreviewed/2022/10/GHSA-vx3j-473c-2w6c/GHSA-vx3j-473c-2w6c.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-w235-7jcc-8vf7/GHSA-w235-7jcc-8vf7.json b/advisories/unreviewed/2022/10/GHSA-w235-7jcc-8vf7/GHSA-w235-7jcc-8vf7.json
index fa456ae2f94..606c1cff2b2 100644
--- a/advisories/unreviewed/2022/10/GHSA-w235-7jcc-8vf7/GHSA-w235-7jcc-8vf7.json
+++ b/advisories/unreviewed/2022/10/GHSA-w235-7jcc-8vf7/GHSA-w235-7jcc-8vf7.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-w897-xc8j-4g89/GHSA-w897-xc8j-4g89.json b/advisories/unreviewed/2022/10/GHSA-w897-xc8j-4g89/GHSA-w897-xc8j-4g89.json
index 23826298397..e6b740f1138 100644
--- a/advisories/unreviewed/2022/10/GHSA-w897-xc8j-4g89/GHSA-w897-xc8j-4g89.json
+++ b/advisories/unreviewed/2022/10/GHSA-w897-xc8j-4g89/GHSA-w897-xc8j-4g89.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-wvhm-r52c-qwwh/GHSA-wvhm-r52c-qwwh.json b/advisories/unreviewed/2022/10/GHSA-wvhm-r52c-qwwh/GHSA-wvhm-r52c-qwwh.json
index e3171db810c..2bd784b2971 100644
--- a/advisories/unreviewed/2022/10/GHSA-wvhm-r52c-qwwh/GHSA-wvhm-r52c-qwwh.json
+++ b/advisories/unreviewed/2022/10/GHSA-wvhm-r52c-qwwh/GHSA-wvhm-r52c-qwwh.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-x5g9-53m7-6g25/GHSA-x5g9-53m7-6g25.json b/advisories/unreviewed/2022/10/GHSA-x5g9-53m7-6g25/GHSA-x5g9-53m7-6g25.json
index 7eb7acbca89..3d94ed9b1da 100644
--- a/advisories/unreviewed/2022/10/GHSA-x5g9-53m7-6g25/GHSA-x5g9-53m7-6g25.json
+++ b/advisories/unreviewed/2022/10/GHSA-x5g9-53m7-6g25/GHSA-x5g9-53m7-6g25.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-x6w6-px77-g4xh/GHSA-x6w6-px77-g4xh.json b/advisories/unreviewed/2022/10/GHSA-x6w6-px77-g4xh/GHSA-x6w6-px77-g4xh.json
index 0589a92402a..81d07e25ea6 100644
--- a/advisories/unreviewed/2022/10/GHSA-x6w6-px77-g4xh/GHSA-x6w6-px77-g4xh.json
+++ b/advisories/unreviewed/2022/10/GHSA-x6w6-px77-g4xh/GHSA-x6w6-px77-g4xh.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-x7cr-m698-6v6p/GHSA-x7cr-m698-6v6p.json b/advisories/unreviewed/2022/10/GHSA-x7cr-m698-6v6p/GHSA-x7cr-m698-6v6p.json
index 845619895d7..ad4b62a7e6c 100644
--- a/advisories/unreviewed/2022/10/GHSA-x7cr-m698-6v6p/GHSA-x7cr-m698-6v6p.json
+++ b/advisories/unreviewed/2022/10/GHSA-x7cr-m698-6v6p/GHSA-x7cr-m698-6v6p.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-xg7j-mpg2-2hvw/GHSA-xg7j-mpg2-2hvw.json b/advisories/unreviewed/2022/10/GHSA-xg7j-mpg2-2hvw/GHSA-xg7j-mpg2-2hvw.json
index 99d8b775c79..f703bd4adc2 100644
--- a/advisories/unreviewed/2022/10/GHSA-xg7j-mpg2-2hvw/GHSA-xg7j-mpg2-2hvw.json
+++ b/advisories/unreviewed/2022/10/GHSA-xg7j-mpg2-2hvw/GHSA-xg7j-mpg2-2hvw.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-xj24-hv97-964g/GHSA-xj24-hv97-964g.json b/advisories/unreviewed/2022/10/GHSA-xj24-hv97-964g/GHSA-xj24-hv97-964g.json
index 12979345e65..a9aea9ddec6 100644
--- a/advisories/unreviewed/2022/10/GHSA-xj24-hv97-964g/GHSA-xj24-hv97-964g.json
+++ b/advisories/unreviewed/2022/10/GHSA-xj24-hv97-964g/GHSA-xj24-hv97-964g.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-xmqf-f454-4vvm/GHSA-xmqf-f454-4vvm.json b/advisories/unreviewed/2022/10/GHSA-xmqf-f454-4vvm/GHSA-xmqf-f454-4vvm.json
index 2ec881d51a7..c5708549843 100644
--- a/advisories/unreviewed/2022/10/GHSA-xmqf-f454-4vvm/GHSA-xmqf-f454-4vvm.json
+++ b/advisories/unreviewed/2022/10/GHSA-xmqf-f454-4vvm/GHSA-xmqf-f454-4vvm.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-xp38-vhvm-v2x7/GHSA-xp38-vhvm-v2x7.json b/advisories/unreviewed/2022/10/GHSA-xp38-vhvm-v2x7/GHSA-xp38-vhvm-v2x7.json
index da1a322e0cc..d544f29aea5 100644
--- a/advisories/unreviewed/2022/10/GHSA-xp38-vhvm-v2x7/GHSA-xp38-vhvm-v2x7.json
+++ b/advisories/unreviewed/2022/10/GHSA-xp38-vhvm-v2x7/GHSA-xp38-vhvm-v2x7.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-xp6m-95m6-gvf5/GHSA-xp6m-95m6-gvf5.json b/advisories/unreviewed/2022/10/GHSA-xp6m-95m6-gvf5/GHSA-xp6m-95m6-gvf5.json
index b5686be7ea2..f7e0ced0c2c 100644
--- a/advisories/unreviewed/2022/10/GHSA-xp6m-95m6-gvf5/GHSA-xp6m-95m6-gvf5.json
+++ b/advisories/unreviewed/2022/10/GHSA-xp6m-95m6-gvf5/GHSA-xp6m-95m6-gvf5.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/10/GHSA-xr49-7fhc-h2jh/GHSA-xr49-7fhc-h2jh.json b/advisories/unreviewed/2022/10/GHSA-xr49-7fhc-h2jh/GHSA-xr49-7fhc-h2jh.json
index d2257d65ab5..44c5f71206a 100644
--- a/advisories/unreviewed/2022/10/GHSA-xr49-7fhc-h2jh/GHSA-xr49-7fhc-h2jh.json
+++ b/advisories/unreviewed/2022/10/GHSA-xr49-7fhc-h2jh/GHSA-xr49-7fhc-h2jh.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2022/11/GHSA-84jc-66v3-f6w5/GHSA-84jc-66v3-f6w5.json b/advisories/unreviewed/2022/11/GHSA-84jc-66v3-f6w5/GHSA-84jc-66v3-f6w5.json
index f83ddefaac2..e0a1668fd47 100644
--- a/advisories/unreviewed/2022/11/GHSA-84jc-66v3-f6w5/GHSA-84jc-66v3-f6w5.json
+++ b/advisories/unreviewed/2022/11/GHSA-84jc-66v3-f6w5/GHSA-84jc-66v3-f6w5.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2023/01/GHSA-37jc-5g37-mvjg/GHSA-37jc-5g37-mvjg.json b/advisories/unreviewed/2023/01/GHSA-37jc-5g37-mvjg/GHSA-37jc-5g37-mvjg.json
index 59aa2a913e8..5c2fdca36a1 100644
--- a/advisories/unreviewed/2023/01/GHSA-37jc-5g37-mvjg/GHSA-37jc-5g37-mvjg.json
+++ b/advisories/unreviewed/2023/01/GHSA-37jc-5g37-mvjg/GHSA-37jc-5g37-mvjg.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2023/01/GHSA-3mw8-jr69-x96w/GHSA-3mw8-jr69-x96w.json b/advisories/unreviewed/2023/01/GHSA-3mw8-jr69-x96w/GHSA-3mw8-jr69-x96w.json
index 1b1aa507f04..f0b4b40e248 100644
--- a/advisories/unreviewed/2023/01/GHSA-3mw8-jr69-x96w/GHSA-3mw8-jr69-x96w.json
+++ b/advisories/unreviewed/2023/01/GHSA-3mw8-jr69-x96w/GHSA-3mw8-jr69-x96w.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2023/01/GHSA-42hc-v8w6-f575/GHSA-42hc-v8w6-f575.json b/advisories/unreviewed/2023/01/GHSA-42hc-v8w6-f575/GHSA-42hc-v8w6-f575.json
index e47c4a63f67..225ebd09dc4 100644
--- a/advisories/unreviewed/2023/01/GHSA-42hc-v8w6-f575/GHSA-42hc-v8w6-f575.json
+++ b/advisories/unreviewed/2023/01/GHSA-42hc-v8w6-f575/GHSA-42hc-v8w6-f575.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2023/01/GHSA-45gq-c98p-x3m6/GHSA-45gq-c98p-x3m6.json b/advisories/unreviewed/2023/01/GHSA-45gq-c98p-x3m6/GHSA-45gq-c98p-x3m6.json
index 4d270ee003b..f7c9458e4af 100644
--- a/advisories/unreviewed/2023/01/GHSA-45gq-c98p-x3m6/GHSA-45gq-c98p-x3m6.json
+++ b/advisories/unreviewed/2023/01/GHSA-45gq-c98p-x3m6/GHSA-45gq-c98p-x3m6.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2023/01/GHSA-4wqr-g68x-cv52/GHSA-4wqr-g68x-cv52.json b/advisories/unreviewed/2023/01/GHSA-4wqr-g68x-cv52/GHSA-4wqr-g68x-cv52.json
index 0d698c48eb6..0b09677cea6 100644
--- a/advisories/unreviewed/2023/01/GHSA-4wqr-g68x-cv52/GHSA-4wqr-g68x-cv52.json
+++ b/advisories/unreviewed/2023/01/GHSA-4wqr-g68x-cv52/GHSA-4wqr-g68x-cv52.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2023/01/GHSA-5rvr-q6ff-gr2c/GHSA-5rvr-q6ff-gr2c.json b/advisories/unreviewed/2023/01/GHSA-5rvr-q6ff-gr2c/GHSA-5rvr-q6ff-gr2c.json
index 7598978cde1..77196631fbd 100644
--- a/advisories/unreviewed/2023/01/GHSA-5rvr-q6ff-gr2c/GHSA-5rvr-q6ff-gr2c.json
+++ b/advisories/unreviewed/2023/01/GHSA-5rvr-q6ff-gr2c/GHSA-5rvr-q6ff-gr2c.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2023/01/GHSA-66vg-fp7f-57vg/GHSA-66vg-fp7f-57vg.json b/advisories/unreviewed/2023/01/GHSA-66vg-fp7f-57vg/GHSA-66vg-fp7f-57vg.json
index b358061e801..5308d58a5e5 100644
--- a/advisories/unreviewed/2023/01/GHSA-66vg-fp7f-57vg/GHSA-66vg-fp7f-57vg.json
+++ b/advisories/unreviewed/2023/01/GHSA-66vg-fp7f-57vg/GHSA-66vg-fp7f-57vg.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2023/01/GHSA-6q37-hw9r-5p8c/GHSA-6q37-hw9r-5p8c.json b/advisories/unreviewed/2023/01/GHSA-6q37-hw9r-5p8c/GHSA-6q37-hw9r-5p8c.json
index 884a9e9793b..f328ca1ae83 100644
--- a/advisories/unreviewed/2023/01/GHSA-6q37-hw9r-5p8c/GHSA-6q37-hw9r-5p8c.json
+++ b/advisories/unreviewed/2023/01/GHSA-6q37-hw9r-5p8c/GHSA-6q37-hw9r-5p8c.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -27,9 +25,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2023/01/GHSA-87v5-hm46-mgp6/GHSA-87v5-hm46-mgp6.json b/advisories/unreviewed/2023/01/GHSA-87v5-hm46-mgp6/GHSA-87v5-hm46-mgp6.json
index f33a0c32400..e2dc1092a81 100644
--- a/advisories/unreviewed/2023/01/GHSA-87v5-hm46-mgp6/GHSA-87v5-hm46-mgp6.json
+++ b/advisories/unreviewed/2023/01/GHSA-87v5-hm46-mgp6/GHSA-87v5-hm46-mgp6.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -31,9 +29,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2023/01/GHSA-fvjw-c4jh-fp27/GHSA-fvjw-c4jh-fp27.json b/advisories/unreviewed/2023/01/GHSA-fvjw-c4jh-fp27/GHSA-fvjw-c4jh-fp27.json
index 87fdc0774be..60cd58bea25 100644
--- a/advisories/unreviewed/2023/01/GHSA-fvjw-c4jh-fp27/GHSA-fvjw-c4jh-fp27.json
+++ b/advisories/unreviewed/2023/01/GHSA-fvjw-c4jh-fp27/GHSA-fvjw-c4jh-fp27.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2023/01/GHSA-g8v2-9qc2-2v9q/GHSA-g8v2-9qc2-2v9q.json b/advisories/unreviewed/2023/01/GHSA-g8v2-9qc2-2v9q/GHSA-g8v2-9qc2-2v9q.json
index 6b8c05d634d..19d5dfb2e4c 100644
--- a/advisories/unreviewed/2023/01/GHSA-g8v2-9qc2-2v9q/GHSA-g8v2-9qc2-2v9q.json
+++ b/advisories/unreviewed/2023/01/GHSA-g8v2-9qc2-2v9q/GHSA-g8v2-9qc2-2v9q.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2023/01/GHSA-p896-8j6m-mwc6/GHSA-p896-8j6m-mwc6.json b/advisories/unreviewed/2023/01/GHSA-p896-8j6m-mwc6/GHSA-p896-8j6m-mwc6.json
index bfa70c29b09..c3970da6d89 100644
--- a/advisories/unreviewed/2023/01/GHSA-p896-8j6m-mwc6/GHSA-p896-8j6m-mwc6.json
+++ b/advisories/unreviewed/2023/01/GHSA-p896-8j6m-mwc6/GHSA-p896-8j6m-mwc6.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -27,9 +25,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2023/01/GHSA-vv3x-748q-qw26/GHSA-vv3x-748q-qw26.json b/advisories/unreviewed/2023/01/GHSA-vv3x-748q-qw26/GHSA-vv3x-748q-qw26.json
index a831d18f2b6..6c590fb428d 100644
--- a/advisories/unreviewed/2023/01/GHSA-vv3x-748q-qw26/GHSA-vv3x-748q-qw26.json
+++ b/advisories/unreviewed/2023/01/GHSA-vv3x-748q-qw26/GHSA-vv3x-748q-qw26.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2023/01/GHSA-x63f-7pqq-c59r/GHSA-x63f-7pqq-c59r.json b/advisories/unreviewed/2023/01/GHSA-x63f-7pqq-c59r/GHSA-x63f-7pqq-c59r.json
index b1ebd0da4c4..23834f39785 100644
--- a/advisories/unreviewed/2023/01/GHSA-x63f-7pqq-c59r/GHSA-x63f-7pqq-c59r.json
+++ b/advisories/unreviewed/2023/01/GHSA-x63f-7pqq-c59r/GHSA-x63f-7pqq-c59r.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -31,9 +29,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": "CRITICAL",
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2023/03/GHSA-8gf6-h6wm-2vf6/GHSA-8gf6-h6wm-2vf6.json b/advisories/unreviewed/2023/03/GHSA-8gf6-h6wm-2vf6/GHSA-8gf6-h6wm-2vf6.json
index bc5ebcb7e4a..7d3edea3c07 100644
--- a/advisories/unreviewed/2023/03/GHSA-8gf6-h6wm-2vf6/GHSA-8gf6-h6wm-2vf6.json
+++ b/advisories/unreviewed/2023/03/GHSA-8gf6-h6wm-2vf6/GHSA-8gf6-h6wm-2vf6.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2023/03/GHSA-g846-84w5-3m6g/GHSA-g846-84w5-3m6g.json b/advisories/unreviewed/2023/03/GHSA-g846-84w5-3m6g/GHSA-g846-84w5-3m6g.json
index e7e05068431..452594736c4 100644
--- a/advisories/unreviewed/2023/03/GHSA-g846-84w5-3m6g/GHSA-g846-84w5-3m6g.json
+++ b/advisories/unreviewed/2023/03/GHSA-g846-84w5-3m6g/GHSA-g846-84w5-3m6g.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2023/03/GHSA-qwf4-cj69-xwjh/GHSA-qwf4-cj69-xwjh.json b/advisories/unreviewed/2023/03/GHSA-qwf4-cj69-xwjh/GHSA-qwf4-cj69-xwjh.json
index dd85a0f9ce1..edc8753b318 100644
--- a/advisories/unreviewed/2023/03/GHSA-qwf4-cj69-xwjh/GHSA-qwf4-cj69-xwjh.json
+++ b/advisories/unreviewed/2023/03/GHSA-qwf4-cj69-xwjh/GHSA-qwf4-cj69-xwjh.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2023/03/GHSA-wx96-h8xj-9x6g/GHSA-wx96-h8xj-9x6g.json b/advisories/unreviewed/2023/03/GHSA-wx96-h8xj-9x6g/GHSA-wx96-h8xj-9x6g.json
index ee17c2fc3a6..e7b74d7fe84 100644
--- a/advisories/unreviewed/2023/03/GHSA-wx96-h8xj-9x6g/GHSA-wx96-h8xj-9x6g.json
+++ b/advisories/unreviewed/2023/03/GHSA-wx96-h8xj-9x6g/GHSA-wx96-h8xj-9x6g.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2023/07/GHSA-4fmm-h427-wp43/GHSA-4fmm-h427-wp43.json b/advisories/unreviewed/2023/07/GHSA-4fmm-h427-wp43/GHSA-4fmm-h427-wp43.json
index 3882c7cfc7f..291ee1e0a48 100644
--- a/advisories/unreviewed/2023/07/GHSA-4fmm-h427-wp43/GHSA-4fmm-h427-wp43.json
+++ b/advisories/unreviewed/2023/07/GHSA-4fmm-h427-wp43/GHSA-4fmm-h427-wp43.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2023/07/GHSA-f74p-rx9m-w4p5/GHSA-f74p-rx9m-w4p5.json b/advisories/unreviewed/2023/07/GHSA-f74p-rx9m-w4p5/GHSA-f74p-rx9m-w4p5.json
index ac6827eecee..2067ea6bd96 100644
--- a/advisories/unreviewed/2023/07/GHSA-f74p-rx9m-w4p5/GHSA-f74p-rx9m-w4p5.json
+++ b/advisories/unreviewed/2023/07/GHSA-f74p-rx9m-w4p5/GHSA-f74p-rx9m-w4p5.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2023/07/GHSA-gqrc-7g2r-3f7c/GHSA-gqrc-7g2r-3f7c.json b/advisories/unreviewed/2023/07/GHSA-gqrc-7g2r-3f7c/GHSA-gqrc-7g2r-3f7c.json
index 092be165056..6389f71ea6f 100644
--- a/advisories/unreviewed/2023/07/GHSA-gqrc-7g2r-3f7c/GHSA-gqrc-7g2r-3f7c.json
+++ b/advisories/unreviewed/2023/07/GHSA-gqrc-7g2r-3f7c/GHSA-gqrc-7g2r-3f7c.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2023/07/GHSA-hj7w-w9qg-3g7x/GHSA-hj7w-w9qg-3g7x.json b/advisories/unreviewed/2023/07/GHSA-hj7w-w9qg-3g7x/GHSA-hj7w-w9qg-3g7x.json
index fa8fd742b77..2d9ed4a9b51 100644
--- a/advisories/unreviewed/2023/07/GHSA-hj7w-w9qg-3g7x/GHSA-hj7w-w9qg-3g7x.json
+++ b/advisories/unreviewed/2023/07/GHSA-hj7w-w9qg-3g7x/GHSA-hj7w-w9qg-3g7x.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2023/07/GHSA-p77r-crfj-p4f9/GHSA-p77r-crfj-p4f9.json b/advisories/unreviewed/2023/07/GHSA-p77r-crfj-p4f9/GHSA-p77r-crfj-p4f9.json
index fc2d32532a1..6cb0691255a 100644
--- a/advisories/unreviewed/2023/07/GHSA-p77r-crfj-p4f9/GHSA-p77r-crfj-p4f9.json
+++ b/advisories/unreviewed/2023/07/GHSA-p77r-crfj-p4f9/GHSA-p77r-crfj-p4f9.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2023/07/GHSA-pw6w-78w4-4phq/GHSA-pw6w-78w4-4phq.json b/advisories/unreviewed/2023/07/GHSA-pw6w-78w4-4phq/GHSA-pw6w-78w4-4phq.json
index 71d57db7dcd..108134a094b 100644
--- a/advisories/unreviewed/2023/07/GHSA-pw6w-78w4-4phq/GHSA-pw6w-78w4-4phq.json
+++ b/advisories/unreviewed/2023/07/GHSA-pw6w-78w4-4phq/GHSA-pw6w-78w4-4phq.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2023/07/GHSA-q6pf-4873-rr8g/GHSA-q6pf-4873-rr8g.json b/advisories/unreviewed/2023/07/GHSA-q6pf-4873-rr8g/GHSA-q6pf-4873-rr8g.json
index cb0a5deaca9..b5a623b5da7 100644
--- a/advisories/unreviewed/2023/07/GHSA-q6pf-4873-rr8g/GHSA-q6pf-4873-rr8g.json
+++ b/advisories/unreviewed/2023/07/GHSA-q6pf-4873-rr8g/GHSA-q6pf-4873-rr8g.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2023/07/GHSA-qhmg-j24f-83q6/GHSA-qhmg-j24f-83q6.json b/advisories/unreviewed/2023/07/GHSA-qhmg-j24f-83q6/GHSA-qhmg-j24f-83q6.json
index 828eebf332f..a1fdcb56c6f 100644
--- a/advisories/unreviewed/2023/07/GHSA-qhmg-j24f-83q6/GHSA-qhmg-j24f-83q6.json
+++ b/advisories/unreviewed/2023/07/GHSA-qhmg-j24f-83q6/GHSA-qhmg-j24f-83q6.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2023/10/GHSA-4wjh-xmxc-5vrf/GHSA-4wjh-xmxc-5vrf.json b/advisories/unreviewed/2023/10/GHSA-4wjh-xmxc-5vrf/GHSA-4wjh-xmxc-5vrf.json
index 733b31f2cce..1ed0f693f65 100644
--- a/advisories/unreviewed/2023/10/GHSA-4wjh-xmxc-5vrf/GHSA-4wjh-xmxc-5vrf.json
+++ b/advisories/unreviewed/2023/10/GHSA-4wjh-xmxc-5vrf/GHSA-4wjh-xmxc-5vrf.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2023/10/GHSA-56j6-xhw7-g4m5/GHSA-56j6-xhw7-g4m5.json b/advisories/unreviewed/2023/10/GHSA-56j6-xhw7-g4m5/GHSA-56j6-xhw7-g4m5.json
index 38a9b102a9f..bbd1d405cd9 100644
--- a/advisories/unreviewed/2023/10/GHSA-56j6-xhw7-g4m5/GHSA-56j6-xhw7-g4m5.json
+++ b/advisories/unreviewed/2023/10/GHSA-56j6-xhw7-g4m5/GHSA-56j6-xhw7-g4m5.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2023/10/GHSA-6c33-h44r-qmjm/GHSA-6c33-h44r-qmjm.json b/advisories/unreviewed/2023/10/GHSA-6c33-h44r-qmjm/GHSA-6c33-h44r-qmjm.json
index 42104e08f19..01fee4093d2 100644
--- a/advisories/unreviewed/2023/10/GHSA-6c33-h44r-qmjm/GHSA-6c33-h44r-qmjm.json
+++ b/advisories/unreviewed/2023/10/GHSA-6c33-h44r-qmjm/GHSA-6c33-h44r-qmjm.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2023/10/GHSA-7gw9-pq5q-m8hr/GHSA-7gw9-pq5q-m8hr.json b/advisories/unreviewed/2023/10/GHSA-7gw9-pq5q-m8hr/GHSA-7gw9-pq5q-m8hr.json
index a61b8355fe5..fadd2c76d43 100644
--- a/advisories/unreviewed/2023/10/GHSA-7gw9-pq5q-m8hr/GHSA-7gw9-pq5q-m8hr.json
+++ b/advisories/unreviewed/2023/10/GHSA-7gw9-pq5q-m8hr/GHSA-7gw9-pq5q-m8hr.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2023/10/GHSA-jr3x-9mc3-xx67/GHSA-jr3x-9mc3-xx67.json b/advisories/unreviewed/2023/10/GHSA-jr3x-9mc3-xx67/GHSA-jr3x-9mc3-xx67.json
index cf053665218..6a1fd610c13 100644
--- a/advisories/unreviewed/2023/10/GHSA-jr3x-9mc3-xx67/GHSA-jr3x-9mc3-xx67.json
+++ b/advisories/unreviewed/2023/10/GHSA-jr3x-9mc3-xx67/GHSA-jr3x-9mc3-xx67.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2023/10/GHSA-mm2j-j435-wg8g/GHSA-mm2j-j435-wg8g.json b/advisories/unreviewed/2023/10/GHSA-mm2j-j435-wg8g/GHSA-mm2j-j435-wg8g.json
index 5292f8d9d85..c9f1f7a1a58 100644
--- a/advisories/unreviewed/2023/10/GHSA-mm2j-j435-wg8g/GHSA-mm2j-j435-wg8g.json
+++ b/advisories/unreviewed/2023/10/GHSA-mm2j-j435-wg8g/GHSA-mm2j-j435-wg8g.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2023/10/GHSA-qfgh-5h7f-2r9r/GHSA-qfgh-5h7f-2r9r.json b/advisories/unreviewed/2023/10/GHSA-qfgh-5h7f-2r9r/GHSA-qfgh-5h7f-2r9r.json
index 8cbcfaf6137..b52a77a3366 100644
--- a/advisories/unreviewed/2023/10/GHSA-qfgh-5h7f-2r9r/GHSA-qfgh-5h7f-2r9r.json
+++ b/advisories/unreviewed/2023/10/GHSA-qfgh-5h7f-2r9r/GHSA-qfgh-5h7f-2r9r.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2024/04/GHSA-24m8-r3wq-c97x/GHSA-24m8-r3wq-c97x.json b/advisories/unreviewed/2024/04/GHSA-24m8-r3wq-c97x/GHSA-24m8-r3wq-c97x.json
index e0787fbfaa7..b3b3c51ab00 100644
--- a/advisories/unreviewed/2024/04/GHSA-24m8-r3wq-c97x/GHSA-24m8-r3wq-c97x.json
+++ b/advisories/unreviewed/2024/04/GHSA-24m8-r3wq-c97x/GHSA-24m8-r3wq-c97x.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:L"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2024/04/GHSA-28cr-jmcx-rqcp/GHSA-28cr-jmcx-rqcp.json b/advisories/unreviewed/2024/04/GHSA-28cr-jmcx-rqcp/GHSA-28cr-jmcx-rqcp.json
index 4dcd8a9d0fe..db061792893 100644
--- a/advisories/unreviewed/2024/04/GHSA-28cr-jmcx-rqcp/GHSA-28cr-jmcx-rqcp.json
+++ b/advisories/unreviewed/2024/04/GHSA-28cr-jmcx-rqcp/GHSA-28cr-jmcx-rqcp.json
@@ -7,12 +7,8 @@
"CVE-2021-47187"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\narm64: dts: qcom: msm8998: Fix CPU/L2 idle state latency and residency\n\nThe entry/exit latency and minimum residency in state for the idle\nstates of MSM8998 were ..bad: first of all, for all of them the\ntimings were written for CPU sleep but the min-residency-us param\nwas miscalculated (supposedly, while porting this from downstream);\nThen, the power collapse states are setting PC on both the CPU\ncluster *and* the L2 cache, which have different timings: in the\nspecific case of L2 the times are higher so these ones should be\ntaken into account instead of the CPU ones.\n\nThis parameter misconfiguration was not giving particular issues\nbecause on MSM8998 there was no CPU scaling at all, so cluster/L2\npower collapse was rarely (if ever) hit.\nWhen CPU scaling is enabled, though, the wrong timings will produce\nSoC unstability shown to the user as random, apparently error-less,\nsudden reboots and/or lockups.\n\nThis set of parameters are stabilizing the SoC when CPU scaling is\nON and when power collapse is frequently hit.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -36,9 +32,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2024/04/GHSA-2q8v-283f-c73j/GHSA-2q8v-283f-c73j.json b/advisories/unreviewed/2024/04/GHSA-2q8v-283f-c73j/GHSA-2q8v-283f-c73j.json
index 40faf0fbb75..36b3b6c7033 100644
--- a/advisories/unreviewed/2024/04/GHSA-2q8v-283f-c73j/GHSA-2q8v-283f-c73j.json
+++ b/advisories/unreviewed/2024/04/GHSA-2q8v-283f-c73j/GHSA-2q8v-283f-c73j.json
@@ -7,12 +7,8 @@
"CVE-2021-47205"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nclk: sunxi-ng: Unregister clocks/resets when unbinding\n\nCurrently, unbinding a CCU driver unmaps the device's MMIO region, while\nleaving its clocks/resets and their providers registered. This can cause\na page fault later when some clock operation tries to perform MMIO. Fix\nthis by separating the CCU initialization from the memory allocation,\nand then using a devres callback to unregister the clocks and resets.\n\nThis also fixes a memory leak of the `struct ccu_reset`, and uses the\ncorrect owner (the specific platform driver) for the clocks and resets.\n\nEarly OF clock providers are never unregistered, and limited error\nhandling is possible, so they are mostly unchanged. The error reporting\nis made more consistent by moving the message inside of_sunxi_ccu_probe.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2024/04/GHSA-4jv7-xrm9-5fjr/GHSA-4jv7-xrm9-5fjr.json b/advisories/unreviewed/2024/04/GHSA-4jv7-xrm9-5fjr/GHSA-4jv7-xrm9-5fjr.json
index 24d774d7ebd..75866cb935f 100644
--- a/advisories/unreviewed/2024/04/GHSA-4jv7-xrm9-5fjr/GHSA-4jv7-xrm9-5fjr.json
+++ b/advisories/unreviewed/2024/04/GHSA-4jv7-xrm9-5fjr/GHSA-4jv7-xrm9-5fjr.json
@@ -7,12 +7,8 @@
"CVE-2021-47190"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nperf bpf: Avoid memory leak from perf_env__insert_btf()\n\nperf_env__insert_btf() doesn't insert if a duplicate BTF id is\nencountered and this causes a memory leak. Modify the function to return\na success/error value and then free the memory if insertion didn't\nhappen.\n\nv2. Adds a return -1 when the insertion error occurs in\n perf_env__fetch_btf. This doesn't affect anything as the result is\n never checked.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -36,9 +32,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2024/04/GHSA-5j77-g9r7-hpx3/GHSA-5j77-g9r7-hpx3.json b/advisories/unreviewed/2024/04/GHSA-5j77-g9r7-hpx3/GHSA-5j77-g9r7-hpx3.json
index 98ae28e6880..206e1af45d0 100644
--- a/advisories/unreviewed/2024/04/GHSA-5j77-g9r7-hpx3/GHSA-5j77-g9r7-hpx3.json
+++ b/advisories/unreviewed/2024/04/GHSA-5j77-g9r7-hpx3/GHSA-5j77-g9r7-hpx3.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2024/04/GHSA-66fh-rmm8-p9q4/GHSA-66fh-rmm8-p9q4.json b/advisories/unreviewed/2024/04/GHSA-66fh-rmm8-p9q4/GHSA-66fh-rmm8-p9q4.json
index 6677eeccb06..d37da7ec13a 100644
--- a/advisories/unreviewed/2024/04/GHSA-66fh-rmm8-p9q4/GHSA-66fh-rmm8-p9q4.json
+++ b/advisories/unreviewed/2024/04/GHSA-66fh-rmm8-p9q4/GHSA-66fh-rmm8-p9q4.json
@@ -7,12 +7,8 @@
"CVE-2021-47215"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet/mlx5e: kTLS, Fix crash in RX resync flow\n\nFor the TLS RX resync flow, we maintain a list of TLS contexts\nthat require some attention, to communicate their resync information\nto the HW.\nHere we fix list corruptions, by protecting the entries against\nmovements coming from resync_handle_seq_match(), until their resync\nhandling in napi is fully completed.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2024/04/GHSA-7vqx-fpjm-pj2j/GHSA-7vqx-fpjm-pj2j.json b/advisories/unreviewed/2024/04/GHSA-7vqx-fpjm-pj2j/GHSA-7vqx-fpjm-pj2j.json
index c2d98784514..fdd23696811 100644
--- a/advisories/unreviewed/2024/04/GHSA-7vqx-fpjm-pj2j/GHSA-7vqx-fpjm-pj2j.json
+++ b/advisories/unreviewed/2024/04/GHSA-7vqx-fpjm-pj2j/GHSA-7vqx-fpjm-pj2j.json
@@ -7,12 +7,8 @@
"CVE-2021-47216"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: advansys: Fix kernel pointer leak\n\nPointers should be printed with %p or %px rather than cast to 'unsigned\nlong' and printed with %lx.\n\nChange %lx to %p to print the hashed pointer.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -52,9 +48,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2024/04/GHSA-84g6-j698-p58m/GHSA-84g6-j698-p58m.json b/advisories/unreviewed/2024/04/GHSA-84g6-j698-p58m/GHSA-84g6-j698-p58m.json
index 3ce2f8ef46e..8f8c998442e 100644
--- a/advisories/unreviewed/2024/04/GHSA-84g6-j698-p58m/GHSA-84g6-j698-p58m.json
+++ b/advisories/unreviewed/2024/04/GHSA-84g6-j698-p58m/GHSA-84g6-j698-p58m.json
@@ -7,12 +7,8 @@
"CVE-2021-47203"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: lpfc: Fix list_add() corruption in lpfc_drain_txq()\n\nWhen parsing the txq list in lpfc_drain_txq(), the driver attempts to pass\nthe requests to the adapter. If such an attempt fails, a local \"fail_msg\"\nstring is set and a log message output. The job is then added to a\ncompletions list for cancellation.\n\nProcessing of any further jobs from the txq list continues, but since\n\"fail_msg\" remains set, jobs are added to the completions list regardless\nof whether a wqe was passed to the adapter. If successfully added to\ntxcmplq, jobs are added to both lists resulting in list corruption.\n\nFix by clearing the fail_msg string after adding a job to the completions\nlist. This stops the subsequent jobs from being added to the completions\nlist unless they had an appropriate failure.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -52,9 +48,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2024/04/GHSA-882m-54cg-63q7/GHSA-882m-54cg-63q7.json b/advisories/unreviewed/2024/04/GHSA-882m-54cg-63q7/GHSA-882m-54cg-63q7.json
index f90627a1b0a..0b6e35190f9 100644
--- a/advisories/unreviewed/2024/04/GHSA-882m-54cg-63q7/GHSA-882m-54cg-63q7.json
+++ b/advisories/unreviewed/2024/04/GHSA-882m-54cg-63q7/GHSA-882m-54cg-63q7.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2024/04/GHSA-8963-6x33-4w7x/GHSA-8963-6x33-4w7x.json b/advisories/unreviewed/2024/04/GHSA-8963-6x33-4w7x/GHSA-8963-6x33-4w7x.json
index 6fff2437141..a72ed1b8f5c 100644
--- a/advisories/unreviewed/2024/04/GHSA-8963-6x33-4w7x/GHSA-8963-6x33-4w7x.json
+++ b/advisories/unreviewed/2024/04/GHSA-8963-6x33-4w7x/GHSA-8963-6x33-4w7x.json
@@ -7,12 +7,8 @@
"CVE-2021-47207"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nALSA: gus: fix null pointer dereference on pointer block\n\nThe pointer block return from snd_gf1_dma_next_block could be\nnull, so there is a potential null pointer dereference issue.\nFix this by adding a null check before dereference.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -52,9 +48,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2024/04/GHSA-8c7c-3pvq-q9v3/GHSA-8c7c-3pvq-q9v3.json b/advisories/unreviewed/2024/04/GHSA-8c7c-3pvq-q9v3/GHSA-8c7c-3pvq-q9v3.json
index f115ebf39ed..5d1aa7127ba 100644
--- a/advisories/unreviewed/2024/04/GHSA-8c7c-3pvq-q9v3/GHSA-8c7c-3pvq-q9v3.json
+++ b/advisories/unreviewed/2024/04/GHSA-8c7c-3pvq-q9v3/GHSA-8c7c-3pvq-q9v3.json
@@ -7,12 +7,8 @@
"CVE-2021-47210"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nusb: typec: tipd: Remove WARN_ON in tps6598x_block_read\n\nCalling tps6598x_block_read with a higher than allowed len can be\nhandled by just returning an error. There's no need to crash systems\nwith panic-on-warn enabled.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -40,9 +36,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2024/04/GHSA-9jpw-f586-mqqf/GHSA-9jpw-f586-mqqf.json b/advisories/unreviewed/2024/04/GHSA-9jpw-f586-mqqf/GHSA-9jpw-f586-mqqf.json
index 881268a4733..a731bac53ca 100644
--- a/advisories/unreviewed/2024/04/GHSA-9jpw-f586-mqqf/GHSA-9jpw-f586-mqqf.json
+++ b/advisories/unreviewed/2024/04/GHSA-9jpw-f586-mqqf/GHSA-9jpw-f586-mqqf.json
@@ -7,12 +7,8 @@
"CVE-2021-47217"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nx86/hyperv: Fix NULL deref in set_hv_tscchange_cb() if Hyper-V setup fails\n\nCheck for a valid hv_vp_index array prior to derefencing hv_vp_index when\nsetting Hyper-V's TSC change callback. If Hyper-V setup failed in\nhyperv_init(), the kernel will still report that it's running under\nHyper-V, but will have silently disabled nearly all functionality.\n\n BUG: kernel NULL pointer dereference, address: 0000000000000010\n #PF: supervisor read access in kernel mode\n #PF: error_code(0x0000) - not-present page\n PGD 0 P4D 0\n Oops: 0000 [#1] SMP\n CPU: 4 PID: 1 Comm: swapper/0 Not tainted 5.15.0-rc2+ #75\n Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 0.0.0 02/06/2015\n RIP: 0010:set_hv_tscchange_cb+0x15/0xa0\n Code: <8b> 04 82 8b 15 12 17 85 01 48 c1 e0 20 48 0d ee 00 01 00 f6 c6 08\n ...\n Call Trace:\n kvm_arch_init+0x17c/0x280\n kvm_init+0x31/0x330\n vmx_init+0xba/0x13a\n do_one_initcall+0x41/0x1c0\n kernel_init_freeable+0x1f2/0x23b\n kernel_init+0x16/0x120\n ret_from_fork+0x22/0x30",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -40,9 +36,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2024/04/GHSA-9rc8-c76x-36m2/GHSA-9rc8-c76x-36m2.json b/advisories/unreviewed/2024/04/GHSA-9rc8-c76x-36m2/GHSA-9rc8-c76x-36m2.json
index 643293bf3e4..bcea88e10c3 100644
--- a/advisories/unreviewed/2024/04/GHSA-9rc8-c76x-36m2/GHSA-9rc8-c76x-36m2.json
+++ b/advisories/unreviewed/2024/04/GHSA-9rc8-c76x-36m2/GHSA-9rc8-c76x-36m2.json
@@ -7,12 +7,8 @@
"CVE-2021-47204"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: dpaa2-eth: fix use-after-free in dpaa2_eth_remove\n\nAccess to netdev after free_netdev() will cause use-after-free bug.\nMove debug log before free_netdev() call to avoid it.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -36,9 +32,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2024/04/GHSA-9w6w-gqmh-gxp9/GHSA-9w6w-gqmh-gxp9.json b/advisories/unreviewed/2024/04/GHSA-9w6w-gqmh-gxp9/GHSA-9w6w-gqmh-gxp9.json
index 0bf3addd5b3..9d61759defb 100644
--- a/advisories/unreviewed/2024/04/GHSA-9w6w-gqmh-gxp9/GHSA-9w6w-gqmh-gxp9.json
+++ b/advisories/unreviewed/2024/04/GHSA-9w6w-gqmh-gxp9/GHSA-9w6w-gqmh-gxp9.json
@@ -7,12 +7,8 @@
"CVE-2021-47212"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet/mlx5: Update error handler for UCTX and UMEM\n\nIn the fast unload flow, the device state is set to internal error,\nwhich indicates that the driver started the destroy process.\nIn this case, when a destroy command is being executed, it should return\nMLX5_CMD_STAT_OK.\nFix MLX5_CMD_OP_DESTROY_UCTX and MLX5_CMD_OP_DESTROY_UMEM to return OK\ninstead of EIO.\n\nThis fixes a call trace in the umem release process -\n[ 2633.536695] Call Trace:\n[ 2633.537518] ib_uverbs_remove_one+0xc3/0x140 [ib_uverbs]\n[ 2633.538596] remove_client_context+0x8b/0xd0 [ib_core]\n[ 2633.539641] disable_device+0x8c/0x130 [ib_core]\n[ 2633.540615] __ib_unregister_device+0x35/0xa0 [ib_core]\n[ 2633.541640] ib_unregister_device+0x21/0x30 [ib_core]\n[ 2633.542663] __mlx5_ib_remove+0x38/0x90 [mlx5_ib]\n[ 2633.543640] auxiliary_bus_remove+0x1e/0x30 [auxiliary]\n[ 2633.544661] device_release_driver_internal+0x103/0x1f0\n[ 2633.545679] bus_remove_device+0xf7/0x170\n[ 2633.546640] device_del+0x181/0x410\n[ 2633.547606] mlx5_rescan_drivers_locked.part.10+0x63/0x160 [mlx5_core]\n[ 2633.548777] mlx5_unregister_device+0x27/0x40 [mlx5_core]\n[ 2633.549841] mlx5_uninit_one+0x21/0xc0 [mlx5_core]\n[ 2633.550864] remove_one+0x69/0xe0 [mlx5_core]\n[ 2633.551819] pci_device_remove+0x3b/0xc0\n[ 2633.552731] device_release_driver_internal+0x103/0x1f0\n[ 2633.553746] unbind_store+0xf6/0x130\n[ 2633.554657] kernfs_fop_write+0x116/0x190\n[ 2633.555567] vfs_write+0xa5/0x1a0\n[ 2633.556407] ksys_write+0x4f/0xb0\n[ 2633.557233] do_syscall_64+0x5b/0x1a0\n[ 2633.558071] entry_SYSCALL_64_after_hwframe+0x65/0xca\n[ 2633.559018] RIP: 0033:0x7f9977132648\n[ 2633.559821] Code: 89 02 48 c7 c0 ff ff ff ff eb b3 0f 1f 80 00 00 00 00 f3 0f 1e fa 48 8d 05 55 6f 2d 00 8b 00 85 c0 75 17 b8 01 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 58 c3 0f 1f 80 00 00 00 00 41 54 49 89 d4 55\n[ 2633.562332] RSP: 002b:00007fffb1a83888 EFLAGS: 00000246 ORIG_RAX: 0000000000000001\n[ 2633.563472] RAX: ffffffffffffffda RBX: 000000000000000c RCX: 00007f9977132648\n[ 2633.564541] RDX: 000000000000000c RSI: 000055b90546e230 RDI: 0000000000000001\n[ 2633.565596] RBP: 000055b90546e230 R08: 00007f9977406860 R09: 00007f9977a54740\n[ 2633.566653] R10: 0000000000000000 R11: 0000000000000246 R12: 00007f99774056e0\n[ 2633.567692] R13: 000000000000000c R14: 00007f9977400880 R15: 000000000000000c\n[ 2633.568725] ---[ end trace 10b4fe52945e544d ]---",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2024/04/GHSA-c87m-qf5q-jcgf/GHSA-c87m-qf5q-jcgf.json b/advisories/unreviewed/2024/04/GHSA-c87m-qf5q-jcgf/GHSA-c87m-qf5q-jcgf.json
index 917d8c24c51..3c076e516e8 100644
--- a/advisories/unreviewed/2024/04/GHSA-c87m-qf5q-jcgf/GHSA-c87m-qf5q-jcgf.json
+++ b/advisories/unreviewed/2024/04/GHSA-c87m-qf5q-jcgf/GHSA-c87m-qf5q-jcgf.json
@@ -7,12 +7,8 @@
"CVE-2021-47188"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: ufs: core: Improve SCSI abort handling\n\nThe following has been observed on a test setup:\n\nWARNING: CPU: 4 PID: 250 at drivers/scsi/ufs/ufshcd.c:2737 ufshcd_queuecommand+0x468/0x65c\nCall trace:\n ufshcd_queuecommand+0x468/0x65c\n scsi_send_eh_cmnd+0x224/0x6a0\n scsi_eh_test_devices+0x248/0x418\n scsi_eh_ready_devs+0xc34/0xe58\n scsi_error_handler+0x204/0x80c\n kthread+0x150/0x1b4\n ret_from_fork+0x10/0x30\n\nThat warning is triggered by the following statement:\n\n\tWARN_ON(lrbp->cmd);\n\nFix this warning by clearing lrbp->cmd from the abort handler.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2024/04/GHSA-cjgc-85v4-mwgc/GHSA-cjgc-85v4-mwgc.json b/advisories/unreviewed/2024/04/GHSA-cjgc-85v4-mwgc/GHSA-cjgc-85v4-mwgc.json
index 6ba810f5fbe..162404c9d12 100644
--- a/advisories/unreviewed/2024/04/GHSA-cjgc-85v4-mwgc/GHSA-cjgc-85v4-mwgc.json
+++ b/advisories/unreviewed/2024/04/GHSA-cjgc-85v4-mwgc/GHSA-cjgc-85v4-mwgc.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2024/04/GHSA-cq3g-rm8m-r7p8/GHSA-cq3g-rm8m-r7p8.json b/advisories/unreviewed/2024/04/GHSA-cq3g-rm8m-r7p8/GHSA-cq3g-rm8m-r7p8.json
index 728189ba12e..d4a1d0a8e18 100644
--- a/advisories/unreviewed/2024/04/GHSA-cq3g-rm8m-r7p8/GHSA-cq3g-rm8m-r7p8.json
+++ b/advisories/unreviewed/2024/04/GHSA-cq3g-rm8m-r7p8/GHSA-cq3g-rm8m-r7p8.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2024/04/GHSA-f79p-pc32-pmjw/GHSA-f79p-pc32-pmjw.json b/advisories/unreviewed/2024/04/GHSA-f79p-pc32-pmjw/GHSA-f79p-pc32-pmjw.json
index 5df0aad9ad6..5e7d07e365b 100644
--- a/advisories/unreviewed/2024/04/GHSA-f79p-pc32-pmjw/GHSA-f79p-pc32-pmjw.json
+++ b/advisories/unreviewed/2024/04/GHSA-f79p-pc32-pmjw/GHSA-f79p-pc32-pmjw.json
@@ -7,12 +7,8 @@
"CVE-2021-47184"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\ni40e: Fix NULL ptr dereference on VSI filter sync\n\nRemove the reason of null pointer dereference in sync VSI filters.\nAdded new I40E_VSI_RELEASING flag to signalize deleting and releasing\nof VSI resources to sync this thread with sync filters subtask.\nWithout this patch it is possible to start update the VSI filter list\nafter VSI is removed, that's causing a kernel oops.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -44,9 +40,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2024/04/GHSA-g77r-g63q-vjf8/GHSA-g77r-g63q-vjf8.json b/advisories/unreviewed/2024/04/GHSA-g77r-g63q-vjf8/GHSA-g77r-g63q-vjf8.json
index b79f1807ffe..9bb5bd4cf2c 100644
--- a/advisories/unreviewed/2024/04/GHSA-g77r-g63q-vjf8/GHSA-g77r-g63q-vjf8.json
+++ b/advisories/unreviewed/2024/04/GHSA-g77r-g63q-vjf8/GHSA-g77r-g63q-vjf8.json
@@ -7,12 +7,8 @@
"CVE-2021-47201"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\niavf: free q_vectors before queues in iavf_disable_vf\n\niavf_free_queues() clears adapter->num_active_queues, which\niavf_free_q_vectors() relies on, so swap the order of these two function\ncalls in iavf_disable_vf(). This resolves a panic encountered when the\ninterface is disabled and then later brought up again after PF\ncommunication is restored.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -36,9 +32,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2024/04/GHSA-gf6p-hmwh-gpc7/GHSA-gf6p-hmwh-gpc7.json b/advisories/unreviewed/2024/04/GHSA-gf6p-hmwh-gpc7/GHSA-gf6p-hmwh-gpc7.json
index 0027c9dde31..c60ac5361db 100644
--- a/advisories/unreviewed/2024/04/GHSA-gf6p-hmwh-gpc7/GHSA-gf6p-hmwh-gpc7.json
+++ b/advisories/unreviewed/2024/04/GHSA-gf6p-hmwh-gpc7/GHSA-gf6p-hmwh-gpc7.json
@@ -7,12 +7,8 @@
"CVE-2021-47200"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/prime: Fix use after free in mmap with drm_gem_ttm_mmap\n\ndrm_gem_ttm_mmap() drops a reference to the gem object on success. If\nthe gem object's refcount == 1 on entry to drm_gem_prime_mmap(), that\ndrop will free the gem object, and the subsequent drm_gem_object_get()\nwill be a UAF. Fix by grabbing a reference before calling the mmap\nhelper.\n\nThis issue was forseen when the reference dropping was adding in\ncommit 9786b65bc61ac (\"drm/ttm: fix mmap refcounting\"):\n \"For that to work properly the drm_gem_object_get() call in\n drm_gem_ttm_mmap() must be moved so it happens before calling\n obj->funcs->mmap(), otherwise the gem refcount would go down\n to zero.\"",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2024/04/GHSA-gqmf-gxrq-3j6q/GHSA-gqmf-gxrq-3j6q.json b/advisories/unreviewed/2024/04/GHSA-gqmf-gxrq-3j6q/GHSA-gqmf-gxrq-3j6q.json
index aff3c72b15a..008c699b8ee 100644
--- a/advisories/unreviewed/2024/04/GHSA-gqmf-gxrq-3j6q/GHSA-gqmf-gxrq-3j6q.json
+++ b/advisories/unreviewed/2024/04/GHSA-gqmf-gxrq-3j6q/GHSA-gqmf-gxrq-3j6q.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2024/04/GHSA-h6wr-63v9-2m6h/GHSA-h6wr-63v9-2m6h.json b/advisories/unreviewed/2024/04/GHSA-h6wr-63v9-2m6h/GHSA-h6wr-63v9-2m6h.json
index fafc027ee42..673342eb719 100644
--- a/advisories/unreviewed/2024/04/GHSA-h6wr-63v9-2m6h/GHSA-h6wr-63v9-2m6h.json
+++ b/advisories/unreviewed/2024/04/GHSA-h6wr-63v9-2m6h/GHSA-h6wr-63v9-2m6h.json
@@ -7,12 +7,8 @@
"CVE-2021-47218"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nselinux: fix NULL-pointer dereference when hashtab allocation fails\n\nWhen the hash table slot array allocation fails in hashtab_init(),\nh->size is left initialized with a non-zero value, but the h->htable\npointer is NULL. This may then cause a NULL pointer dereference, since\nthe policydb code relies on the assumption that even after a failed\nhashtab_init(), hashtab_map() and hashtab_destroy() can be safely called\non it. Yet, these detect an empty hashtab only by looking at the size.\n\nFix this by making sure that hashtab_init() always leaves behind a valid\nempty hashtab when the allocation fails.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -32,9 +28,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2024/04/GHSA-hjx9-vcv6-76j4/GHSA-hjx9-vcv6-76j4.json b/advisories/unreviewed/2024/04/GHSA-hjx9-vcv6-76j4/GHSA-hjx9-vcv6-76j4.json
index 7ceb6590d10..7d2f73d2c83 100644
--- a/advisories/unreviewed/2024/04/GHSA-hjx9-vcv6-76j4/GHSA-hjx9-vcv6-76j4.json
+++ b/advisories/unreviewed/2024/04/GHSA-hjx9-vcv6-76j4/GHSA-hjx9-vcv6-76j4.json
@@ -7,12 +7,8 @@
"CVE-2024-28345"
],
"details": "An issue discovered in Sipwise C5 NGCP Dashboard below mr11.5.1 allows a low privileged user to access the Journal endpoint by directly visit the URL.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -24,9 +20,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2024/04/GHSA-hm95-xqg2-4w57/GHSA-hm95-xqg2-4w57.json b/advisories/unreviewed/2024/04/GHSA-hm95-xqg2-4w57/GHSA-hm95-xqg2-4w57.json
index 0002cd4a438..5c87d8b607d 100644
--- a/advisories/unreviewed/2024/04/GHSA-hm95-xqg2-4w57/GHSA-hm95-xqg2-4w57.json
+++ b/advisories/unreviewed/2024/04/GHSA-hm95-xqg2-4w57/GHSA-hm95-xqg2-4w57.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2024/04/GHSA-j2j3-mjcj-v75r/GHSA-j2j3-mjcj-v75r.json b/advisories/unreviewed/2024/04/GHSA-j2j3-mjcj-v75r/GHSA-j2j3-mjcj-v75r.json
index c0e5970c6aa..9e679bdea84 100644
--- a/advisories/unreviewed/2024/04/GHSA-j2j3-mjcj-v75r/GHSA-j2j3-mjcj-v75r.json
+++ b/advisories/unreviewed/2024/04/GHSA-j2j3-mjcj-v75r/GHSA-j2j3-mjcj-v75r.json
@@ -7,12 +7,8 @@
"CVE-2021-47196"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/core: Set send and receive CQ before forwarding to the driver\n\nPreset both receive and send CQ pointers prior to call to the drivers and\noverwrite it later again till the mlx4 is going to be changed do not\noverwrite ibqp properties.\n\nThis change is needed for mlx5, because in case of QP creation failure, it\nwill go to the path of QP destroy which relies on proper CQ pointers.\n\n BUG: KASAN: use-after-free in create_qp.cold+0x164/0x16e [mlx5_ib]\n Write of size 8 at addr ffff8880064c55c0 by task a.out/246\n\n CPU: 0 PID: 246 Comm: a.out Not tainted 5.15.0+ #291\n Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS rel-1.13.0-0-gf21b5a4aeb02-prebuilt.qemu.org 04/01/2014\n Call Trace:\n dump_stack_lvl+0x45/0x59\n print_address_description.constprop.0+0x1f/0x140\n kasan_report.cold+0x83/0xdf\n create_qp.cold+0x164/0x16e [mlx5_ib]\n mlx5_ib_create_qp+0x358/0x28a0 [mlx5_ib]\n create_qp.part.0+0x45b/0x6a0 [ib_core]\n ib_create_qp_user+0x97/0x150 [ib_core]\n ib_uverbs_handler_UVERBS_METHOD_QP_CREATE+0x92c/0x1250 [ib_uverbs]\n ib_uverbs_cmd_verbs+0x1c38/0x3150 [ib_uverbs]\n ib_uverbs_ioctl+0x169/0x260 [ib_uverbs]\n __x64_sys_ioctl+0x866/0x14d0\n do_syscall_64+0x3d/0x90\n entry_SYSCALL_64_after_hwframe+0x44/0xae\n\n Allocated by task 246:\n kasan_save_stack+0x1b/0x40\n __kasan_kmalloc+0xa4/0xd0\n create_qp.part.0+0x92/0x6a0 [ib_core]\n ib_create_qp_user+0x97/0x150 [ib_core]\n ib_uverbs_handler_UVERBS_METHOD_QP_CREATE+0x92c/0x1250 [ib_uverbs]\n ib_uverbs_cmd_verbs+0x1c38/0x3150 [ib_uverbs]\n ib_uverbs_ioctl+0x169/0x260 [ib_uverbs]\n __x64_sys_ioctl+0x866/0x14d0\n do_syscall_64+0x3d/0x90\n entry_SYSCALL_64_after_hwframe+0x44/0xae\n\n Freed by task 246:\n kasan_save_stack+0x1b/0x40\n kasan_set_track+0x1c/0x30\n kasan_set_free_info+0x20/0x30\n __kasan_slab_free+0x10c/0x150\n slab_free_freelist_hook+0xb4/0x1b0\n kfree+0xe7/0x2a0\n create_qp.part.0+0x52b/0x6a0 [ib_core]\n ib_create_qp_user+0x97/0x150 [ib_core]\n ib_uverbs_handler_UVERBS_METHOD_QP_CREATE+0x92c/0x1250 [ib_uverbs]\n ib_uverbs_cmd_verbs+0x1c38/0x3150 [ib_uverbs]\n ib_uverbs_ioctl+0x169/0x260 [ib_uverbs]\n __x64_sys_ioctl+0x866/0x14d0\n do_syscall_64+0x3d/0x90\n entry_SYSCALL_64_after_hwframe+0x44/0xae",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2024/04/GHSA-m59q-rgx4-6vq4/GHSA-m59q-rgx4-6vq4.json b/advisories/unreviewed/2024/04/GHSA-m59q-rgx4-6vq4/GHSA-m59q-rgx4-6vq4.json
index ceec8cca2a5..614ce840534 100644
--- a/advisories/unreviewed/2024/04/GHSA-m59q-rgx4-6vq4/GHSA-m59q-rgx4-6vq4.json
+++ b/advisories/unreviewed/2024/04/GHSA-m59q-rgx4-6vq4/GHSA-m59q-rgx4-6vq4.json
@@ -7,12 +7,8 @@
"CVE-2021-47209"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nsched/fair: Prevent dead task groups from regaining cfs_rq's\n\nKevin is reporting crashes which point to a use-after-free of a cfs_rq\nin update_blocked_averages(). Initial debugging revealed that we've\nlive cfs_rq's (on_list=1) in an about to be kfree()'d task group in\nfree_fair_sched_group(). However, it was unclear how that can happen.\n\nHis kernel config happened to lead to a layout of struct sched_entity\nthat put the 'my_q' member directly into the middle of the object\nwhich makes it incidentally overlap with SLUB's freelist pointer.\nThat, in combination with SLAB_FREELIST_HARDENED's freelist pointer\nmangling, leads to a reliable access violation in form of a #GP which\nmade the UAF fail fast.\n\nMichal seems to have run into the same issue[1]. He already correctly\ndiagnosed that commit a7b359fc6a37 (\"sched/fair: Correctly insert\ncfs_rq's to list on unthrottle\") is causing the preconditions for the\nUAF to happen by re-adding cfs_rq's also to task groups that have no\nmore running tasks, i.e. also to dead ones. His analysis, however,\nmisses the real root cause and it cannot be seen from the crash\nbacktrace only, as the real offender is tg_unthrottle_up() getting\ncalled via sched_cfs_period_timer() via the timer interrupt at an\ninconvenient time.\n\nWhen unregister_fair_sched_group() unlinks all cfs_rq's from the dying\ntask group, it doesn't protect itself from getting interrupted. If the\ntimer interrupt triggers while we iterate over all CPUs or after\nunregister_fair_sched_group() has finished but prior to unlinking the\ntask group, sched_cfs_period_timer() will execute and walk the list of\ntask groups, trying to unthrottle cfs_rq's, i.e. re-add them to the\ndying task group. These will later -- in free_fair_sched_group() -- be\nkfree()'ed while still being linked, leading to the fireworks Kevin\nand Michal are seeing.\n\nTo fix this race, ensure the dying task group gets unlinked first.\nHowever, simply switching the order of unregistering and unlinking the\ntask group isn't sufficient, as concurrent RCU walkers might still see\nit, as can be seen below:\n\n CPU1: CPU2:\n : timer IRQ:\n : do_sched_cfs_period_timer():\n : :\n : distribute_cfs_runtime():\n : rcu_read_lock();\n : :\n : unthrottle_cfs_rq():\n sched_offline_group(): :\n : walk_tg_tree_from(…,tg_unthrottle_up,…):\n list_del_rcu(&tg->list); :\n (1) : list_for_each_entry_rcu(child, &parent->children, siblings)\n : :\n (2) list_del_rcu(&tg->siblings); :\n : tg_unthrottle_up():\n unregister_fair_sched_group(): struct cfs_rq *cfs_rq = tg->cfs_rq[cpu_of(rq)];\n : :\n list_del_leaf_cfs_rq(tg->cfs_rq[cpu]); :\n : :\n : if (!cfs_rq_is_decayed(cfs_rq) || cfs_rq->nr_running)\n (3) : list_add_leaf_cfs_rq(cfs_rq);\n : :\n : :\n : :\n : :\n : \n---truncated---",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2024/04/GHSA-m7v2-w8fj-6f24/GHSA-m7v2-w8fj-6f24.json b/advisories/unreviewed/2024/04/GHSA-m7v2-w8fj-6f24/GHSA-m7v2-w8fj-6f24.json
index 23ed18383d6..2836ddf5727 100644
--- a/advisories/unreviewed/2024/04/GHSA-m7v2-w8fj-6f24/GHSA-m7v2-w8fj-6f24.json
+++ b/advisories/unreviewed/2024/04/GHSA-m7v2-w8fj-6f24/GHSA-m7v2-w8fj-6f24.json
@@ -7,12 +7,8 @@
"CVE-2021-47181"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nusb: musb: tusb6010: check return value after calling platform_get_resource()\n\nIt will cause null-ptr-deref if platform_get_resource() returns NULL,\nwe need check the return value.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -52,9 +48,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2024/04/GHSA-m7wr-q7cm-56rh/GHSA-m7wr-q7cm-56rh.json b/advisories/unreviewed/2024/04/GHSA-m7wr-q7cm-56rh/GHSA-m7wr-q7cm-56rh.json
index 384387bb9f7..48abe6b70a0 100644
--- a/advisories/unreviewed/2024/04/GHSA-m7wr-q7cm-56rh/GHSA-m7wr-q7cm-56rh.json
+++ b/advisories/unreviewed/2024/04/GHSA-m7wr-q7cm-56rh/GHSA-m7wr-q7cm-56rh.json
@@ -7,12 +7,8 @@
"CVE-2021-47183"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: lpfc: Fix link down processing to address NULL pointer dereference\n\nIf an FC link down transition while PLOGIs are outstanding to fabric well\nknown addresses, outstanding ABTS requests may result in a NULL pointer\ndereference. Driver unload requests may hang with repeated \"2878\" log\nmessages.\n\nThe Link down processing results in ABTS requests for outstanding ELS\nrequests. The Abort WQEs are sent for the ELSs before the driver had set\nthe link state to down. Thus the driver is sending the Abort with the\nexpectation that an ABTS will be sent on the wire. The Abort request is\nstalled waiting for the link to come up. In some conditions the driver may\nauto-complete the ELSs thus if the link does come up, the Abort completions\nmay reference an invalid structure.\n\nFix by ensuring that Abort set the flag to avoid link traffic if issued due\nto conditions where the link failed.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2024/04/GHSA-m9h7-m3c9-xxfm/GHSA-m9h7-m3c9-xxfm.json b/advisories/unreviewed/2024/04/GHSA-m9h7-m3c9-xxfm/GHSA-m9h7-m3c9-xxfm.json
index 353e83e18ca..be576cfcb51 100644
--- a/advisories/unreviewed/2024/04/GHSA-m9h7-m3c9-xxfm/GHSA-m9h7-m3c9-xxfm.json
+++ b/advisories/unreviewed/2024/04/GHSA-m9h7-m3c9-xxfm/GHSA-m9h7-m3c9-xxfm.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2024/04/GHSA-pq28-hj26-jp72/GHSA-pq28-hj26-jp72.json b/advisories/unreviewed/2024/04/GHSA-pq28-hj26-jp72/GHSA-pq28-hj26-jp72.json
index 1b73f83ca5a..36759a3196d 100644
--- a/advisories/unreviewed/2024/04/GHSA-pq28-hj26-jp72/GHSA-pq28-hj26-jp72.json
+++ b/advisories/unreviewed/2024/04/GHSA-pq28-hj26-jp72/GHSA-pq28-hj26-jp72.json
@@ -7,12 +7,8 @@
"CVE-2021-47219"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: scsi_debug: Fix out-of-bound read in resp_report_tgtpgs()\n\nThe following issue was observed running syzkaller:\n\nBUG: KASAN: slab-out-of-bounds in memcpy include/linux/string.h:377 [inline]\nBUG: KASAN: slab-out-of-bounds in sg_copy_buffer+0x150/0x1c0 lib/scatterlist.c:831\nRead of size 2132 at addr ffff8880aea95dc8 by task syz-executor.0/9815\n\nCPU: 0 PID: 9815 Comm: syz-executor.0 Not tainted 4.19.202-00874-gfc0fe04215a9 #2\nHardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS 1.10.2-1ubuntu1 04/01/2014\nCall Trace:\n __dump_stack lib/dump_stack.c:77 [inline]\n dump_stack+0xe4/0x14a lib/dump_stack.c:118\n print_address_description+0x73/0x280 mm/kasan/report.c:253\n kasan_report_error mm/kasan/report.c:352 [inline]\n kasan_report+0x272/0x370 mm/kasan/report.c:410\n memcpy+0x1f/0x50 mm/kasan/kasan.c:302\n memcpy include/linux/string.h:377 [inline]\n sg_copy_buffer+0x150/0x1c0 lib/scatterlist.c:831\n fill_from_dev_buffer+0x14f/0x340 drivers/scsi/scsi_debug.c:1021\n resp_report_tgtpgs+0x5aa/0x770 drivers/scsi/scsi_debug.c:1772\n schedule_resp+0x464/0x12f0 drivers/scsi/scsi_debug.c:4429\n scsi_debug_queuecommand+0x467/0x1390 drivers/scsi/scsi_debug.c:5835\n scsi_dispatch_cmd+0x3fc/0x9b0 drivers/scsi/scsi_lib.c:1896\n scsi_request_fn+0x1042/0x1810 drivers/scsi/scsi_lib.c:2034\n __blk_run_queue_uncond block/blk-core.c:464 [inline]\n __blk_run_queue+0x1a4/0x380 block/blk-core.c:484\n blk_execute_rq_nowait+0x1c2/0x2d0 block/blk-exec.c:78\n sg_common_write.isra.19+0xd74/0x1dc0 drivers/scsi/sg.c:847\n sg_write.part.23+0x6e0/0xd00 drivers/scsi/sg.c:716\n sg_write+0x64/0xa0 drivers/scsi/sg.c:622\n __vfs_write+0xed/0x690 fs/read_write.c:485\nkill_bdev:block_device:00000000e138492c\n vfs_write+0x184/0x4c0 fs/read_write.c:549\n ksys_write+0x107/0x240 fs/read_write.c:599\n do_syscall_64+0xc2/0x560 arch/x86/entry/common.c:293\n entry_SYSCALL_64_after_hwframe+0x49/0xbe\n\nWe get 'alen' from command its type is int. If userspace passes a large\nlength we will get a negative 'alen'.\n\nSwitch n, alen, and rlen to u32.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -32,9 +28,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2024/04/GHSA-q4cm-jgpj-qg42/GHSA-q4cm-jgpj-qg42.json b/advisories/unreviewed/2024/04/GHSA-q4cm-jgpj-qg42/GHSA-q4cm-jgpj-qg42.json
index ea07b1e30da..a9dbc6cb7c6 100644
--- a/advisories/unreviewed/2024/04/GHSA-q4cm-jgpj-qg42/GHSA-q4cm-jgpj-qg42.json
+++ b/advisories/unreviewed/2024/04/GHSA-q4cm-jgpj-qg42/GHSA-q4cm-jgpj-qg42.json
@@ -7,12 +7,8 @@
"CVE-2021-47191"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: scsi_debug: Fix out-of-bound read in resp_readcap16()\n\nThe following warning was observed running syzkaller:\n\n[ 3813.830724] sg_write: data in/out 65466/242 bytes for SCSI command 0x9e-- guessing data in;\n[ 3813.830724] program syz-executor not setting count and/or reply_len properly\n[ 3813.836956] ==================================================================\n[ 3813.839465] BUG: KASAN: stack-out-of-bounds in sg_copy_buffer+0x157/0x1e0\n[ 3813.841773] Read of size 4096 at addr ffff8883cf80f540 by task syz-executor/1549\n[ 3813.846612] Call Trace:\n[ 3813.846995] dump_stack+0x108/0x15f\n[ 3813.847524] print_address_description+0xa5/0x372\n[ 3813.848243] kasan_report.cold+0x236/0x2a8\n[ 3813.849439] check_memory_region+0x240/0x270\n[ 3813.850094] memcpy+0x30/0x80\n[ 3813.850553] sg_copy_buffer+0x157/0x1e0\n[ 3813.853032] sg_copy_from_buffer+0x13/0x20\n[ 3813.853660] fill_from_dev_buffer+0x135/0x370\n[ 3813.854329] resp_readcap16+0x1ac/0x280\n[ 3813.856917] schedule_resp+0x41f/0x1630\n[ 3813.858203] scsi_debug_queuecommand+0xb32/0x17e0\n[ 3813.862699] scsi_dispatch_cmd+0x330/0x950\n[ 3813.863329] scsi_request_fn+0xd8e/0x1710\n[ 3813.863946] __blk_run_queue+0x10b/0x230\n[ 3813.864544] blk_execute_rq_nowait+0x1d8/0x400\n[ 3813.865220] sg_common_write.isra.0+0xe61/0x2420\n[ 3813.871637] sg_write+0x6c8/0xef0\n[ 3813.878853] __vfs_write+0xe4/0x800\n[ 3813.883487] vfs_write+0x17b/0x530\n[ 3813.884008] ksys_write+0x103/0x270\n[ 3813.886268] __x64_sys_write+0x77/0xc0\n[ 3813.886841] do_syscall_64+0x106/0x360\n[ 3813.887415] entry_SYSCALL_64_after_hwframe+0x44/0xa9\n\nThis issue can be reproduced with the following syzkaller log:\n\nr0 = openat(0xffffffffffffff9c, &(0x7f0000000040)='./file0\\x00', 0x26e1, 0x0)\nr1 = syz_open_procfs(0xffffffffffffffff, &(0x7f0000000000)='fd/3\\x00')\nopen_by_handle_at(r1, &(0x7f00000003c0)=ANY=[@ANYRESHEX], 0x602000)\nr2 = syz_open_dev$sg(&(0x7f0000000000), 0x0, 0x40782)\nwrite$binfmt_aout(r2, &(0x7f0000000340)=ANY=[@ANYBLOB=\"00000000deff000000000000000000000000000000000000000000000000000047f007af9e107a41ec395f1bded7be24277a1501ff6196a83366f4e6362bc0ff2b247f68a972989b094b2da4fb3607fcf611a22dd04310d28c75039d\"], 0x126)\n\nIn resp_readcap16() we get \"int alloc_len\" value -1104926854, and then pass\nthe huge arr_len to fill_from_dev_buffer(), but arr is only 32 bytes. This\nleads to OOB in sg_copy_buffer().\n\nTo solve this issue, define alloc_len as u32.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -32,9 +28,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2024/04/GHSA-q54v-653w-2v9v/GHSA-q54v-653w-2v9v.json b/advisories/unreviewed/2024/04/GHSA-q54v-653w-2v9v/GHSA-q54v-653w-2v9v.json
index 072f0f9776a..888d781a12d 100644
--- a/advisories/unreviewed/2024/04/GHSA-q54v-653w-2v9v/GHSA-q54v-653w-2v9v.json
+++ b/advisories/unreviewed/2024/04/GHSA-q54v-653w-2v9v/GHSA-q54v-653w-2v9v.json
@@ -7,12 +7,8 @@
"CVE-2021-47199"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet/mlx5e: CT, Fix multiple allocations and memleak of mod acts\n\nCT clear action offload adds additional mod hdr actions to the\nflow's original mod actions in order to clear the registers which\nhold ct_state.\nWhen such flow also includes encap action, a neigh update event\ncan cause the driver to unoffload the flow and then reoffload it.\n\nEach time this happens, the ct clear handling adds that same set\nof mod hdr actions to reset ct_state until the max of mod hdr\nactions is reached.\n\nAlso the driver never releases the allocated mod hdr actions and\ncausing a memleak.\n\nFix above two issues by moving CT clear mod acts allocation\ninto the parsing actions phase and only use it when offloading the rule.\nThe release of mod acts will be done in the normal flow_put().\n\n backtrace:\n [<000000007316e2f3>] krealloc+0x83/0xd0\n [<00000000ef157de1>] mlx5e_mod_hdr_alloc+0x147/0x300 [mlx5_core]\n [<00000000970ce4ae>] mlx5e_tc_match_to_reg_set_and_get_id+0xd7/0x240 [mlx5_core]\n [<0000000067c5fa17>] mlx5e_tc_match_to_reg_set+0xa/0x20 [mlx5_core]\n [<00000000d032eb98>] mlx5_tc_ct_entry_set_registers.isra.0+0x36/0xc0 [mlx5_core]\n [<00000000fd23b869>] mlx5_tc_ct_flow_offload+0x272/0x1f10 [mlx5_core]\n [<000000004fc24acc>] mlx5e_tc_offload_fdb_rules.part.0+0x150/0x620 [mlx5_core]\n [<00000000dc741c17>] mlx5e_tc_encap_flows_add+0x489/0x690 [mlx5_core]\n [<00000000e92e49d7>] mlx5e_rep_update_flows+0x6e4/0x9b0 [mlx5_core]\n [<00000000f60f5602>] mlx5e_rep_neigh_update+0x39a/0x5d0 [mlx5_core]",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2024/04/GHSA-qq35-93pf-cxxv/GHSA-qq35-93pf-cxxv.json b/advisories/unreviewed/2024/04/GHSA-qq35-93pf-cxxv/GHSA-qq35-93pf-cxxv.json
index a880b3f1d3f..85084861f93 100644
--- a/advisories/unreviewed/2024/04/GHSA-qq35-93pf-cxxv/GHSA-qq35-93pf-cxxv.json
+++ b/advisories/unreviewed/2024/04/GHSA-qq35-93pf-cxxv/GHSA-qq35-93pf-cxxv.json
@@ -7,12 +7,8 @@
"CVE-2021-47182"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: core: Fix scsi_mode_sense() buffer length handling\n\nSeveral problems exist with scsi_mode_sense() buffer length handling:\n\n 1) The allocation length field of the MODE SENSE(10) command is 16-bits,\n occupying bytes 7 and 8 of the CDB. With this command, access to mode\n pages larger than 255 bytes is thus possible. However, the CDB\n allocation length field is set by assigning len to byte 8 only, thus\n truncating buffer length larger than 255.\n\n 2) If scsi_mode_sense() is called with len smaller than 8 with\n sdev->use_10_for_ms set, or smaller than 4 otherwise, the buffer length\n is increased to 8 and 4 respectively, and the buffer is zero filled\n with these increased values, thus corrupting the memory following the\n buffer.\n\nFix these 2 problems by using put_unaligned_be16() to set the allocation\nlength field of MODE SENSE(10) CDB and by returning an error when len is\ntoo small.\n\nFurthermore, if len is larger than 255B, always try MODE SENSE(10) first,\neven if the device driver did not set sdev->use_10_for_ms. In case of\ninvalid opcode error for MODE SENSE(10), access to mode pages larger than\n255 bytes are not retried using MODE SENSE(6). To avoid buffer length\noverflows for the MODE_SENSE(10) case, check that len is smaller than 65535\nbytes.\n\nWhile at it, also fix the folowing:\n\n * Use get_unaligned_be16() to retrieve the mode data length and block\n descriptor length fields of the mode sense reply header instead of using\n an open coded calculation.\n\n * Fix the kdoc dbd argument explanation: the DBD bit stands for Disable\n Block Descriptor, which is the opposite of what the dbd argument\n description was.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2024/04/GHSA-qrq5-v2rp-9c3f/GHSA-qrq5-v2rp-9c3f.json b/advisories/unreviewed/2024/04/GHSA-qrq5-v2rp-9c3f/GHSA-qrq5-v2rp-9c3f.json
index 24992d5c438..58635b6a30b 100644
--- a/advisories/unreviewed/2024/04/GHSA-qrq5-v2rp-9c3f/GHSA-qrq5-v2rp-9c3f.json
+++ b/advisories/unreviewed/2024/04/GHSA-qrq5-v2rp-9c3f/GHSA-qrq5-v2rp-9c3f.json
@@ -7,12 +7,8 @@
"CVE-2021-47197"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet/mlx5e: nullify cq->dbg pointer in mlx5_debug_cq_remove()\n\nPrior to this patch in case mlx5_core_destroy_cq() failed it proceeds\nto rest of destroy operations. mlx5_core_destroy_cq() could be called again\nby user and cause additional call of mlx5_debug_cq_remove().\ncq->dbg was not nullify in previous call and cause the crash.\n\nFix it by nullify cq->dbg pointer after removal.\n\nAlso proceed to destroy operations only if FW return 0\nfor MLX5_CMD_OP_DESTROY_CQ command.\n\ngeneral protection fault, probably for non-canonical address 0x2000300004058: 0000 [#1] SMP PTI\nCPU: 5 PID: 1228 Comm: python Not tainted 5.15.0-rc5_for_upstream_min_debug_2021_10_14_11_06 #1\nHardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS rel-1.13.0-0-gf21b5a4aeb02-prebuilt.qemu.org 04/01/2014\nRIP: 0010:lockref_get+0x1/0x60\nCode: 5d e9 53 ff ff ff 48 8d 7f 70 e8 0a 2e 48 00 c7 85 d0 00 00 00 02\n00 00 00 c6 45 70 00 fb 5d c3 c3 cc cc cc cc cc cc cc cc 53 <48> 8b 17\n48 89 fb 85 d2 75 3d 48 89 d0 bf 64 00 00 00 48 89 c1 48\nRSP: 0018:ffff888137dd7a38 EFLAGS: 00010206\nRAX: 0000000000000000 RBX: ffff888107d5f458 RCX: 00000000fffffffe\nRDX: 000000000002c2b0 RSI: ffffffff8155e2e0 RDI: 0002000300004058\nRBP: ffff888137dd7a88 R08: 0002000300004058 R09: ffff8881144a9f88\nR10: 0000000000000000 R11: 0000000000000000 R12: ffff8881141d4000\nR13: ffff888137dd7c68 R14: ffff888137dd7d58 R15: ffff888137dd7cc0\nFS: 00007f4644f2a4c0(0000) GS:ffff8887a2d40000(0000)\nknlGS:0000000000000000\nCS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\nCR2: 000055b4500f4380 CR3: 0000000114f7a003 CR4: 0000000000170ea0\nCall Trace:\n simple_recursive_removal+0x33/0x2e0\n ? debugfs_remove+0x60/0x60\n debugfs_remove+0x40/0x60\n mlx5_debug_cq_remove+0x32/0x70 [mlx5_core]\n mlx5_core_destroy_cq+0x41/0x1d0 [mlx5_core]\n devx_obj_cleanup+0x151/0x330 [mlx5_ib]\n ? __pollwait+0xd0/0xd0\n ? xas_load+0x5/0x70\n ? xa_load+0x62/0xa0\n destroy_hw_idr_uobject+0x20/0x80 [ib_uverbs]\n uverbs_destroy_uobject+0x3b/0x360 [ib_uverbs]\n uobj_destroy+0x54/0xa0 [ib_uverbs]\n ib_uverbs_cmd_verbs+0xaf2/0x1160 [ib_uverbs]\n ? uverbs_finalize_object+0xd0/0xd0 [ib_uverbs]\n ib_uverbs_ioctl+0xc4/0x1b0 [ib_uverbs]\n __x64_sys_ioctl+0x3e4/0x8e0",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -32,9 +28,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2024/04/GHSA-rh38-52q8-4ffc/GHSA-rh38-52q8-4ffc.json b/advisories/unreviewed/2024/04/GHSA-rh38-52q8-4ffc/GHSA-rh38-52q8-4ffc.json
index 77d7bff6e87..b7255483064 100644
--- a/advisories/unreviewed/2024/04/GHSA-rh38-52q8-4ffc/GHSA-rh38-52q8-4ffc.json
+++ b/advisories/unreviewed/2024/04/GHSA-rh38-52q8-4ffc/GHSA-rh38-52q8-4ffc.json
@@ -7,12 +7,8 @@
"CVE-2021-47206"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nusb: host: ohci-tmio: check return value after calling platform_get_resource()\n\nIt will cause null-ptr-deref if platform_get_resource() returns NULL,\nwe need check the return value.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -52,9 +48,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2024/04/GHSA-rr47-vpr9-84rm/GHSA-rr47-vpr9-84rm.json b/advisories/unreviewed/2024/04/GHSA-rr47-vpr9-84rm/GHSA-rr47-vpr9-84rm.json
index 007341b4860..0afed9a331b 100644
--- a/advisories/unreviewed/2024/04/GHSA-rr47-vpr9-84rm/GHSA-rr47-vpr9-84rm.json
+++ b/advisories/unreviewed/2024/04/GHSA-rr47-vpr9-84rm/GHSA-rr47-vpr9-84rm.json
@@ -7,12 +7,8 @@
"CVE-2021-47214"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nhugetlb, userfaultfd: fix reservation restore on userfaultfd error\n\nCurrently in the is_continue case in hugetlb_mcopy_atomic_pte(), if we\nbail out using \"goto out_release_unlock;\" in the cases where idx >=\nsize, or !huge_pte_none(), the code will detect that new_pagecache_page\n== false, and so call restore_reserve_on_error(). In this case I see\nrestore_reserve_on_error() delete the reservation, and the following\ncall to remove_inode_hugepages() will increment h->resv_hugepages\ncausing a 100% reproducible leak.\n\nWe should treat the is_continue case similar to adding a page into the\npagecache and set new_pagecache_page to true, to indicate that there is\nno reservation to restore on the error path, and we need not call\nrestore_reserve_on_error(). Rename new_pagecache_page to\npage_in_pagecache to make that clear.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2024/04/GHSA-rv79-7m3p-hx2p/GHSA-rv79-7m3p-hx2p.json b/advisories/unreviewed/2024/04/GHSA-rv79-7m3p-hx2p/GHSA-rv79-7m3p-hx2p.json
index 3af333102b9..7ae64e2aefb 100644
--- a/advisories/unreviewed/2024/04/GHSA-rv79-7m3p-hx2p/GHSA-rv79-7m3p-hx2p.json
+++ b/advisories/unreviewed/2024/04/GHSA-rv79-7m3p-hx2p/GHSA-rv79-7m3p-hx2p.json
@@ -7,12 +7,8 @@
"CVE-2021-47211"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nALSA: usb-audio: fix null pointer dereference on pointer cs_desc\n\nThe pointer cs_desc return from snd_usb_find_clock_source could\nbe null, so there is a potential null pointer dereference issue.\nFix this by adding a null check before dereference.",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -28,9 +24,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2024/04/GHSA-v293-3p6g-j7w7/GHSA-v293-3p6g-j7w7.json b/advisories/unreviewed/2024/04/GHSA-v293-3p6g-j7w7/GHSA-v293-3p6g-j7w7.json
index c6b1bd0b8d6..38071673372 100644
--- a/advisories/unreviewed/2024/04/GHSA-v293-3p6g-j7w7/GHSA-v293-3p6g-j7w7.json
+++ b/advisories/unreviewed/2024/04/GHSA-v293-3p6g-j7w7/GHSA-v293-3p6g-j7w7.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2024/04/GHSA-vvx7-xv93-4vqx/GHSA-vvx7-xv93-4vqx.json b/advisories/unreviewed/2024/04/GHSA-vvx7-xv93-4vqx/GHSA-vvx7-xv93-4vqx.json
index 65dd95367b6..13c2f25e7f5 100644
--- a/advisories/unreviewed/2024/04/GHSA-vvx7-xv93-4vqx/GHSA-vvx7-xv93-4vqx.json
+++ b/advisories/unreviewed/2024/04/GHSA-vvx7-xv93-4vqx/GHSA-vvx7-xv93-4vqx.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:L"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2024/04/GHSA-w6pp-7vhg-w878/GHSA-w6pp-7vhg-w878.json b/advisories/unreviewed/2024/04/GHSA-w6pp-7vhg-w878/GHSA-w6pp-7vhg-w878.json
index 31c3696b164..08109711558 100644
--- a/advisories/unreviewed/2024/04/GHSA-w6pp-7vhg-w878/GHSA-w6pp-7vhg-w878.json
+++ b/advisories/unreviewed/2024/04/GHSA-w6pp-7vhg-w878/GHSA-w6pp-7vhg-w878.json
@@ -7,12 +7,8 @@
"CVE-2021-47202"
],
"details": "In the Linux kernel, the following vulnerability has been resolved:\n\nthermal: Fix NULL pointer dereferences in of_thermal_ functions\n\nof_parse_thermal_zones() parses the thermal-zones node and registers a\nthermal_zone device for each subnode. However, if a thermal zone is\nconsuming a thermal sensor and that thermal sensor device hasn't probed\nyet, an attempt to set trip_point_*_temp for that thermal zone device\ncan cause a NULL pointer dereference. Fix it.\n\n console:/sys/class/thermal/thermal_zone87 # echo 120000 > trip_point_0_temp\n ...\n Unable to handle kernel NULL pointer dereference at virtual address 0000000000000020\n ...\n Call trace:\n of_thermal_set_trip_temp+0x40/0xc4\n trip_point_temp_store+0xc0/0x1dc\n dev_attr_store+0x38/0x88\n sysfs_kf_write+0x64/0xc0\n kernfs_fop_write_iter+0x108/0x1d0\n vfs_write+0x2f4/0x368\n ksys_write+0x7c/0xec\n __arm64_sys_write+0x20/0x30\n el0_svc_common.llvm.7279915941325364641+0xbc/0x1bc\n do_el0_svc+0x28/0xa0\n el0_svc+0x14/0x24\n el0_sync_handler+0x88/0xec\n el0_sync+0x1c0/0x200\n\nWhile at it, fix the possible NULL pointer dereference in other\nfunctions as well: of_thermal_get_temp(), of_thermal_set_emul_temp(),\nof_thermal_get_trend().",
- "severity": [
-
- ],
- "affected": [
-
- ],
+ "severity": [],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
@@ -40,9 +36,7 @@
}
],
"database_specific": {
- "cwe_ids": [
-
- ],
+ "cwe_ids": [],
"severity": null,
"github_reviewed": false,
"github_reviewed_at": null,
diff --git a/advisories/unreviewed/2024/04/GHSA-xw8r-2c2x-7j88/GHSA-xw8r-2c2x-7j88.json b/advisories/unreviewed/2024/04/GHSA-xw8r-2c2x-7j88/GHSA-xw8r-2c2x-7j88.json
index 833a3ccb1c5..48689172d15 100644
--- a/advisories/unreviewed/2024/04/GHSA-xw8r-2c2x-7j88/GHSA-xw8r-2c2x-7j88.json
+++ b/advisories/unreviewed/2024/04/GHSA-xw8r-2c2x-7j88/GHSA-xw8r-2c2x-7j88.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2024/09/GHSA-352f-rwjm-p38m/GHSA-352f-rwjm-p38m.json b/advisories/unreviewed/2024/09/GHSA-352f-rwjm-p38m/GHSA-352f-rwjm-p38m.json
index 73520ac1d0b..c0a869a9e4f 100644
--- a/advisories/unreviewed/2024/09/GHSA-352f-rwjm-p38m/GHSA-352f-rwjm-p38m.json
+++ b/advisories/unreviewed/2024/09/GHSA-352f-rwjm-p38m/GHSA-352f-rwjm-p38m.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2024/09/GHSA-7w2x-xg3m-6rhw/GHSA-7w2x-xg3m-6rhw.json b/advisories/unreviewed/2024/09/GHSA-7w2x-xg3m-6rhw/GHSA-7w2x-xg3m-6rhw.json
index 26185383138..a1df926ed01 100644
--- a/advisories/unreviewed/2024/09/GHSA-7w2x-xg3m-6rhw/GHSA-7w2x-xg3m-6rhw.json
+++ b/advisories/unreviewed/2024/09/GHSA-7w2x-xg3m-6rhw/GHSA-7w2x-xg3m-6rhw.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:L/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2024/09/GHSA-8w95-2vq2-pmf9/GHSA-8w95-2vq2-pmf9.json b/advisories/unreviewed/2024/09/GHSA-8w95-2vq2-pmf9/GHSA-8w95-2vq2-pmf9.json
index cdd7463908e..8a082f0ef27 100644
--- a/advisories/unreviewed/2024/09/GHSA-8w95-2vq2-pmf9/GHSA-8w95-2vq2-pmf9.json
+++ b/advisories/unreviewed/2024/09/GHSA-8w95-2vq2-pmf9/GHSA-8w95-2vq2-pmf9.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2024/09/GHSA-974p-hhmc-6h46/GHSA-974p-hhmc-6h46.json b/advisories/unreviewed/2024/09/GHSA-974p-hhmc-6h46/GHSA-974p-hhmc-6h46.json
index 78ba636f5f5..cc421723f1b 100644
--- a/advisories/unreviewed/2024/09/GHSA-974p-hhmc-6h46/GHSA-974p-hhmc-6h46.json
+++ b/advisories/unreviewed/2024/09/GHSA-974p-hhmc-6h46/GHSA-974p-hhmc-6h46.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2024/09/GHSA-hm9q-792g-5c86/GHSA-hm9q-792g-5c86.json b/advisories/unreviewed/2024/09/GHSA-hm9q-792g-5c86/GHSA-hm9q-792g-5c86.json
index 87d074b4eaf..37a1c4c4a36 100644
--- a/advisories/unreviewed/2024/09/GHSA-hm9q-792g-5c86/GHSA-hm9q-792g-5c86.json
+++ b/advisories/unreviewed/2024/09/GHSA-hm9q-792g-5c86/GHSA-hm9q-792g-5c86.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2024/09/GHSA-r89w-9fr4-c7c9/GHSA-r89w-9fr4-c7c9.json b/advisories/unreviewed/2024/09/GHSA-r89w-9fr4-c7c9/GHSA-r89w-9fr4-c7c9.json
index b9047aee57b..09c968ebd1f 100644
--- a/advisories/unreviewed/2024/09/GHSA-r89w-9fr4-c7c9/GHSA-r89w-9fr4-c7c9.json
+++ b/advisories/unreviewed/2024/09/GHSA-r89w-9fr4-c7c9/GHSA-r89w-9fr4-c7c9.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2024/09/GHSA-vfwm-h968-g65h/GHSA-vfwm-h968-g65h.json b/advisories/unreviewed/2024/09/GHSA-vfwm-h968-g65h/GHSA-vfwm-h968-g65h.json
index d3b79a9ff4e..5f6e924cd2e 100644
--- a/advisories/unreviewed/2024/09/GHSA-vfwm-h968-g65h/GHSA-vfwm-h968-g65h.json
+++ b/advisories/unreviewed/2024/09/GHSA-vfwm-h968-g65h/GHSA-vfwm-h968-g65h.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2024/09/GHSA-wf3h-626c-mmqc/GHSA-wf3h-626c-mmqc.json b/advisories/unreviewed/2024/09/GHSA-wf3h-626c-mmqc/GHSA-wf3h-626c-mmqc.json
index 5d1e2388490..a5c26ddc642 100644
--- a/advisories/unreviewed/2024/09/GHSA-wf3h-626c-mmqc/GHSA-wf3h-626c-mmqc.json
+++ b/advisories/unreviewed/2024/09/GHSA-wf3h-626c-mmqc/GHSA-wf3h-626c-mmqc.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",
diff --git a/advisories/unreviewed/2024/10/GHSA-x2wv-q3cc-vc36/GHSA-x2wv-q3cc-vc36.json b/advisories/unreviewed/2024/10/GHSA-x2wv-q3cc-vc36/GHSA-x2wv-q3cc-vc36.json
index 3a867ae207f..5f2a5d41c2e 100644
--- a/advisories/unreviewed/2024/10/GHSA-x2wv-q3cc-vc36/GHSA-x2wv-q3cc-vc36.json
+++ b/advisories/unreviewed/2024/10/GHSA-x2wv-q3cc-vc36/GHSA-x2wv-q3cc-vc36.json
@@ -13,9 +13,7 @@
"score": "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H"
}
],
- "affected": [
-
- ],
+ "affected": [],
"references": [
{
"type": "ADVISORY",