diff --git a/advisories/github-reviewed/2020/08/GHSA-f9vc-q3hh-qhfv/GHSA-f9vc-q3hh-qhfv.json b/advisories/github-reviewed/2020/08/GHSA-f9vc-q3hh-qhfv/GHSA-f9vc-q3hh-qhfv.json index 118e32d388e..dd157be3fb4 100644 --- a/advisories/github-reviewed/2020/08/GHSA-f9vc-q3hh-qhfv/GHSA-f9vc-q3hh-qhfv.json +++ b/advisories/github-reviewed/2020/08/GHSA-f9vc-q3hh-qhfv/GHSA-f9vc-q3hh-qhfv.json @@ -8,9 +8,7 @@ ], "summary": "Content Injection in remarkable", "details": "Versions 1.4.0 and earlier of `remarkable` are affected by a cross-site scripting vulnerability. This occurs because vulnerable versions of `remarkable` did not properly whitelist link protocols, and consequently allowed `javascript:` to be used. \n\n\n### Proof of Concept\n\nMarkdown Source:\n```\n[link]()\n```\n\nRendered HTML:\n```\nlink\n```\n\n\n## Recommendation\n\nUpdate to version 1.4.1 or later", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2020/09/GHSA-c7pp-x73h-4m2v/GHSA-c7pp-x73h-4m2v.json b/advisories/github-reviewed/2020/09/GHSA-c7pp-x73h-4m2v/GHSA-c7pp-x73h-4m2v.json index 687ef64e61f..c283928412a 100644 --- a/advisories/github-reviewed/2020/09/GHSA-c7pp-x73h-4m2v/GHSA-c7pp-x73h-4m2v.json +++ b/advisories/github-reviewed/2020/09/GHSA-c7pp-x73h-4m2v/GHSA-c7pp-x73h-4m2v.json @@ -3,14 +3,10 @@ "id": "GHSA-c7pp-x73h-4m2v", "modified": "2021-09-27T15:43:19Z", "published": "2020-09-02T15:53:46Z", - "aliases": [ - - ], + "aliases": [], "summary": "Cross-Site Scripting in bootstrap-vue", "details": "Versions of `bootstrap-vue` prior to 2.0.0-rc.12 are vulnerable to Cross-Site Scripting. Due to insufficient input sanitization, components may be vulnerable to Cross-Site Scripting through the `options` variable. This may lead to the execution of malicious JavaScript on the user's browser.\n\n\n## Recommendation\n\nUpgrade to version 2.0.0-rc.12 or later.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2020/09/GHSA-cr56-66mx-293v/GHSA-cr56-66mx-293v.json b/advisories/github-reviewed/2020/09/GHSA-cr56-66mx-293v/GHSA-cr56-66mx-293v.json index 115b1bd3900..fb5700f1257 100644 --- a/advisories/github-reviewed/2020/09/GHSA-cr56-66mx-293v/GHSA-cr56-66mx-293v.json +++ b/advisories/github-reviewed/2020/09/GHSA-cr56-66mx-293v/GHSA-cr56-66mx-293v.json @@ -3,14 +3,10 @@ "id": "GHSA-cr56-66mx-293v", "modified": "2021-10-04T21:12:14Z", "published": "2020-09-03T15:53:50Z", - "aliases": [ - - ], + "aliases": [], "summary": "Cross-Site Scripting in @toast-ui/editor", "details": "Versions of `@toast-ui/editor` prior to 2.2.0 are vulnerable to Cross-Site Scripting (XSS). There are multiple bypasses to the package's built-in XSS sanitization. This may allow attackers to execute arbitrary JavaScript on a victim's browser.\n\n## Recommendation\n\nUpgrade to version 2.2.0 or later.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2020/09/GHSA-g336-c7wv-8hp3/GHSA-g336-c7wv-8hp3.json b/advisories/github-reviewed/2020/09/GHSA-g336-c7wv-8hp3/GHSA-g336-c7wv-8hp3.json index d69fd4bf2a3..2007dd7d039 100644 --- a/advisories/github-reviewed/2020/09/GHSA-g336-c7wv-8hp3/GHSA-g336-c7wv-8hp3.json +++ b/advisories/github-reviewed/2020/09/GHSA-g336-c7wv-8hp3/GHSA-g336-c7wv-8hp3.json @@ -3,14 +3,10 @@ "id": "GHSA-g336-c7wv-8hp3", "modified": "2021-09-23T21:35:43Z", "published": "2020-09-01T15:58:06Z", - "aliases": [ - - ], + "aliases": [], "summary": "Cross-Site Scripting in swagger-ui", "details": "Affected versions of `swagger-ui` are vulnerable to cross-site scripting via the `url` query string parameter.\n\n\n## Recommendation\n\nUpdate to 2.2.1 or later.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2024/05/GHSA-26hp-cgjj-m2j3/GHSA-26hp-cgjj-m2j3.json b/advisories/github-reviewed/2024/05/GHSA-26hp-cgjj-m2j3/GHSA-26hp-cgjj-m2j3.json index 0965a95c516..8f0596604e6 100644 --- a/advisories/github-reviewed/2024/05/GHSA-26hp-cgjj-m2j3/GHSA-26hp-cgjj-m2j3.json +++ b/advisories/github-reviewed/2024/05/GHSA-26hp-cgjj-m2j3/GHSA-26hp-cgjj-m2j3.json @@ -3,14 +3,10 @@ "id": "GHSA-26hp-cgjj-m2j3", "modified": "2024-05-15T21:44:46Z", "published": "2024-05-15T21:44:46Z", - "aliases": [ - - ], + "aliases": [], "summary": "fuel/core ImageMagick driver does not escape all shell arguments.", "details": "This vulnerability may cause OS commands to be executed when you pass unvalidated image filenames containing specially crafted strings to the ImageMagick driver.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2024/05/GHSA-26hq-7286-mg8f/GHSA-26hq-7286-mg8f.json b/advisories/github-reviewed/2024/05/GHSA-26hq-7286-mg8f/GHSA-26hq-7286-mg8f.json index 5451ae95f93..58cc41a3d8d 100644 --- a/advisories/github-reviewed/2024/05/GHSA-26hq-7286-mg8f/GHSA-26hq-7286-mg8f.json +++ b/advisories/github-reviewed/2024/05/GHSA-26hq-7286-mg8f/GHSA-26hq-7286-mg8f.json @@ -3,14 +3,10 @@ "id": "GHSA-26hq-7286-mg8f", "modified": "2024-05-15T22:33:44Z", "published": "2024-05-15T22:33:44Z", - "aliases": [ - - ], + "aliases": [], "summary": "Magento Patch SUPEE-9652 - Remote Code Execution using mail vulnerability", "details": "Zend Framework 1 vulnerability can be remotely exploited to execute code in Magento 1. While the issue is not reproducible in Magento 2, the library code is the same so it was fixed as well.\n\nNote: while the vulnerability is scored as critical, few systems are affected. To be affected by the vulnerability the installation has to:\n\n- use sendmail as the mail transport agent\n\n- have specific, non-default configuration settings as described [here](https://magento.com/security/patches/supee-9652#:~:text=settings%20as%20described-,here,-.).", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -47,9 +43,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": true, "github_reviewed_at": "2024-05-15T22:33:44Z", diff --git a/advisories/github-reviewed/2024/05/GHSA-2867-6rrm-38gr/GHSA-2867-6rrm-38gr.json b/advisories/github-reviewed/2024/05/GHSA-2867-6rrm-38gr/GHSA-2867-6rrm-38gr.json index 6a3e5f3c341..ad299f95dad 100644 --- a/advisories/github-reviewed/2024/05/GHSA-2867-6rrm-38gr/GHSA-2867-6rrm-38gr.json +++ b/advisories/github-reviewed/2024/05/GHSA-2867-6rrm-38gr/GHSA-2867-6rrm-38gr.json @@ -3,14 +3,10 @@ "id": "GHSA-2867-6rrm-38gr", "modified": "2024-05-15T21:56:10Z", "published": "2024-05-15T21:56:10Z", - "aliases": [ - - ], + "aliases": [], "summary": "Laravel Cookie serialization vulnerability", "details": "Laravel 5.6.30 is a security release of Laravel and is recommended as an immediate upgrade for all users. Laravel 5.6.30 also contains a breaking change to cookie encryption and serialization logic. Refer to [laravel advisory](https://laravel.com/docs/5.6/upgrade#upgrade-5.6.30) for more details and read the notes carefully when upgrading your application.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2024/05/GHSA-297g-xg4h-7w4c/GHSA-297g-xg4h-7w4c.json b/advisories/github-reviewed/2024/05/GHSA-297g-xg4h-7w4c/GHSA-297g-xg4h-7w4c.json index 4f338a12037..fead37498f0 100644 --- a/advisories/github-reviewed/2024/05/GHSA-297g-xg4h-7w4c/GHSA-297g-xg4h-7w4c.json +++ b/advisories/github-reviewed/2024/05/GHSA-297g-xg4h-7w4c/GHSA-297g-xg4h-7w4c.json @@ -3,9 +3,7 @@ "id": "GHSA-297g-xg4h-7w4c", "modified": "2024-05-15T21:54:05Z", "published": "2024-05-15T21:54:05Z", - "aliases": [ - - ], + "aliases": [], "summary": "Laravel Cross-site Scripting vulnerability in blade templating", "details": "Laravel is prone to a Cross-site Scripting vulnerability in blade templating.", "severity": [ diff --git a/advisories/github-reviewed/2024/05/GHSA-2ffv-r4r9-r8xr/GHSA-2ffv-r4r9-r8xr.json b/advisories/github-reviewed/2024/05/GHSA-2ffv-r4r9-r8xr/GHSA-2ffv-r4r9-r8xr.json index 4a23a821e96..3314b4c0646 100644 --- a/advisories/github-reviewed/2024/05/GHSA-2ffv-r4r9-r8xr/GHSA-2ffv-r4r9-r8xr.json +++ b/advisories/github-reviewed/2024/05/GHSA-2ffv-r4r9-r8xr/GHSA-2ffv-r4r9-r8xr.json @@ -3,14 +3,10 @@ "id": "GHSA-2ffv-r4r9-r8xr", "modified": "2024-05-15T21:52:29Z", "published": "2024-05-15T21:52:29Z", - "aliases": [ - - ], + "aliases": [], "summary": "Laravel RCE vulnerability in \"cookie\" session driver", "details": "Application's using the \"cookie\" session driver were the primary applications affected by this vulnerability. Since we have not yet released a security release for the Laravel 5.5 version of the framework, we recommend that all applications running Laravel 5.5 and earlier do not use the \"cookie\" session driver in their production deployments.\n\nRegarding the vulnerability, applications using the \"cookie\" session driver that were also exposing an encryption oracle via their application were vulnerable to remote code execution. An encryption oracle is a mechanism where arbitrary user input is encrypted and the encrypted string is later displayed or exposed to the user. This combination of scenarios lets the user generate valid Laravel signed encryption strings for any plain-text string, thus allowing them to craft Laravel session payloads when an application is using the \"cookie\" driver.\n\nThis fix prefixes cookie values with an HMAC hash of the cookie's name before encryption and then verifies a matching hash on decryption, making it impossible to craft a valid cookie payload even if an encryption oracle is exposed via the application.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2024/05/GHSA-2gq2-m628-33xp/GHSA-2gq2-m628-33xp.json b/advisories/github-reviewed/2024/05/GHSA-2gq2-m628-33xp/GHSA-2gq2-m628-33xp.json index 34a2450de3d..d0a8da86ad9 100644 --- a/advisories/github-reviewed/2024/05/GHSA-2gq2-m628-33xp/GHSA-2gq2-m628-33xp.json +++ b/advisories/github-reviewed/2024/05/GHSA-2gq2-m628-33xp/GHSA-2gq2-m628-33xp.json @@ -3,14 +3,10 @@ "id": "GHSA-2gq2-m628-33xp", "modified": "2024-05-15T21:49:20Z", "published": "2024-05-15T21:49:20Z", - "aliases": [ - - ], + "aliases": [], "summary": "gregwar/rst Local File Inclusion Vulnerability", "details": "A Local File Inclusion (LFI) vulnerability has been discovered in the gregwar/rst library, potentially exposing sensitive files on the server to unauthorized users. The issue arises from inadequate input validation, allowing an attacker to manipulate file paths and include arbitrary files.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -55,9 +51,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2024-05-15T21:49:20Z", diff --git a/advisories/github-reviewed/2024/05/GHSA-2vh3-cj9j-mcj5/GHSA-2vh3-cj9j-mcj5.json b/advisories/github-reviewed/2024/05/GHSA-2vh3-cj9j-mcj5/GHSA-2vh3-cj9j-mcj5.json index 73417ed22e8..171ce4ea2aa 100644 --- a/advisories/github-reviewed/2024/05/GHSA-2vh3-cj9j-mcj5/GHSA-2vh3-cj9j-mcj5.json +++ b/advisories/github-reviewed/2024/05/GHSA-2vh3-cj9j-mcj5/GHSA-2vh3-cj9j-mcj5.json @@ -3,14 +3,10 @@ "id": "GHSA-2vh3-cj9j-mcj5", "modified": "2024-05-15T21:29:15Z", "published": "2024-05-15T21:29:15Z", - "aliases": [ - - ], + "aliases": [], "summary": "eZ Publish Legacy Cross-site Scripting (XSS) in 'disabled module' error template", "details": "This security advisory fixes a vulnerability in eZ Publish Legacy, and we recommend that you install it as soon as possible if you are using Legacy via the LegacyBridge.\n\nInstallations where all modules are disabled may be vulnerable to XSS injection in the module name. This is a rare configuration, but we still recommend installing the update, which adds the necessary input washing.\n\nTo install, use Composer to update to one of the \"Resolving versions\" mentioned above, or apply this patch manually:\nhttps://github.com/ezsystems/ezpublish-legacy/commit/4697bff700e8cf95d5847ea19dad3479a77b02d9", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2024/05/GHSA-337w-fxpq-5m34/GHSA-337w-fxpq-5m34.json b/advisories/github-reviewed/2024/05/GHSA-337w-fxpq-5m34/GHSA-337w-fxpq-5m34.json index c4d7c6fdba1..1f81ebe0476 100644 --- a/advisories/github-reviewed/2024/05/GHSA-337w-fxpq-5m34/GHSA-337w-fxpq-5m34.json +++ b/advisories/github-reviewed/2024/05/GHSA-337w-fxpq-5m34/GHSA-337w-fxpq-5m34.json @@ -3,9 +3,7 @@ "id": "GHSA-337w-fxpq-5m34", "modified": "2024-05-15T21:02:01Z", "published": "2024-05-15T21:02:01Z", - "aliases": [ - - ], + "aliases": [], "summary": "Drupal core uses a vulnerable Third-party library CKEditor", "details": "The Drupal project uses the third-party library [CKEditor](https://github.com/ckeditor/ckeditor4), which has released a [security improvement](https://ckeditor.com/blog/CKEditor-4.14-with-Paste-from-LibreOffice-released/#security-issues-fixed) that is needed to protect some Drupal configurations.\n\nVulnerabilities are possible if Drupal is configured to use the WYSIWYG CKEditor for your site's users. An attacker that can create or edit content may be able to exploit this Cross Site Scripting (XSS) vulnerability to target users with access to the WYSIWYG CKEditor, and this may include site admins with privileged access.\n\nThe latest versions of Drupal update CKEditor to 4.14 to mitigate the vulnerabilities.", "severity": [ @@ -69,9 +67,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2024-05-15T21:02:01Z", diff --git a/advisories/github-reviewed/2024/05/GHSA-39j2-4p9j-5w4j/GHSA-39j2-4p9j-5w4j.json b/advisories/github-reviewed/2024/05/GHSA-39j2-4p9j-5w4j/GHSA-39j2-4p9j-5w4j.json index c31c874db72..eb3b0f1ee84 100644 --- a/advisories/github-reviewed/2024/05/GHSA-39j2-4p9j-5w4j/GHSA-39j2-4p9j-5w4j.json +++ b/advisories/github-reviewed/2024/05/GHSA-39j2-4p9j-5w4j/GHSA-39j2-4p9j-5w4j.json @@ -3,14 +3,10 @@ "id": "GHSA-39j2-4p9j-5w4j", "modified": "2024-05-15T21:32:29Z", "published": "2024-05-15T21:32:29Z", - "aliases": [ - - ], + "aliases": [], "summary": "Ez Platform Object Injection in legacy shop module", "details": "This Security Advisory is about a vulnerability in the Legacy shop module. A backend editor could perform object injection in discount rules. This would require backend access and permission to edit discount rules. While object injection in itself is a serious vulnerability, the permission requirement means that normally only administrators would be able to exploit it, that's why it was classified as Medium severity.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2024/05/GHSA-3g43-xfrw-pv5m/GHSA-3g43-xfrw-pv5m.json b/advisories/github-reviewed/2024/05/GHSA-3g43-xfrw-pv5m/GHSA-3g43-xfrw-pv5m.json index 26dc9e8ea9f..0c820908618 100644 --- a/advisories/github-reviewed/2024/05/GHSA-3g43-xfrw-pv5m/GHSA-3g43-xfrw-pv5m.json +++ b/advisories/github-reviewed/2024/05/GHSA-3g43-xfrw-pv5m/GHSA-3g43-xfrw-pv5m.json @@ -3,14 +3,10 @@ "id": "GHSA-3g43-xfrw-pv5m", "modified": "2024-05-15T21:34:59Z", "published": "2024-05-15T21:34:59Z", - "aliases": [ - - ], + "aliases": [], "summary": "eZ Platform User data disclosure", "details": "In eZ Platform v2.3.x it is possible to bypass permission checks in a particular case. This means user data such as name and email (but not passwords or password hashes) can be read by unauthenticated users. This affects only v2.3.x. If you use v2.2.x or older you are not affected.\n\nTo install, use Composer to update \"ezsystems/repository-forms\" to the \"Resolving versions\" mentioned above, or apply this patch manually:\nhttps://github.com/ezsystems/repository-forms/commit/ea82e136ec1ea40aca714abb79cc8e5bfece01e8\n\nHave you found a security bug in eZ Publish or eZ Platform? See how to report it responsibly here: https://doc.ez.no/Security", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2024/05/GHSA-3vwr-jj4f-h98x/GHSA-3vwr-jj4f-h98x.json b/advisories/github-reviewed/2024/05/GHSA-3vwr-jj4f-h98x/GHSA-3vwr-jj4f-h98x.json index b06d9d67ae1..e1dea74d648 100644 --- a/advisories/github-reviewed/2024/05/GHSA-3vwr-jj4f-h98x/GHSA-3vwr-jj4f-h98x.json +++ b/advisories/github-reviewed/2024/05/GHSA-3vwr-jj4f-h98x/GHSA-3vwr-jj4f-h98x.json @@ -3,14 +3,10 @@ "id": "GHSA-3vwr-jj4f-h98x", "modified": "2024-05-15T21:19:07Z", "published": "2024-05-15T21:19:07Z", - "aliases": [ - - ], + "aliases": [], "summary": "eZ Publish Remote code execution in file uploads", "details": "This Security Advisory is about a vulnerability in the way eZ Platform and eZ Publish Legacy handles file uploads, which can in the worst case lead to remote code execution (RCE), a very serious threat. An attacker would need access to uploading files to be able to exploit the vulnerability, so if you have strict controls on this and trust all who have this permission, you're not affected. On the basis of the tests we have made, we also believe the vulnerability cannot be exploited as long as our recommended vhost configuration is used. Here is the v2.5 recommendation for Nginx, as an example:\n\nhttps://github.com/ezsystems/ezplatform/blob/2.5/doc/nginx/vhost.template#L31\n\nThis vhost template specifies that only the file app.php in the web root is executed, while vulnerable configurations allow execution of any php file. Apache is affected in the same way as Nginx, and is also protected by using the recommended configuration. The build-in webserver in PHP stays vulnerable, as it doesn't use this type of configuration (this webserver should only be used for development, never for production). We cannot be 100% certain our configuration is not vulnerable. We also do not know if all our users use the recommended configuration, so we send out this fix to be on the safe side.\n\nThe fix includes a blacklist feature for uploaded filenames, such as \".php\". The file types on the blacklist cannot be uploaded. The blacklist is configurable. In eZ Platform you will find it as ezsettings.default.io.file_storage.file_type_blacklist in eZ/Bundle/EzPublishCoreBundle/Resources/config/default_settings.yml in vendors/ezsystems/ezpublish-kernel. In eZ Publish Legacy you will find it as FileExtensionBlackList in settings/file.ini. By default it blocks these file types: php, php3, phar, phpt, pht, phtml, pgif. The fix also inclues a new block against path traversal attacks, though this kind of attack was not reproducible in our tests.\n", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2024/05/GHSA-44pg-c29v-hp6r/GHSA-44pg-c29v-hp6r.json b/advisories/github-reviewed/2024/05/GHSA-44pg-c29v-hp6r/GHSA-44pg-c29v-hp6r.json index 80f2ed61245..26efd395607 100644 --- a/advisories/github-reviewed/2024/05/GHSA-44pg-c29v-hp6r/GHSA-44pg-c29v-hp6r.json +++ b/advisories/github-reviewed/2024/05/GHSA-44pg-c29v-hp6r/GHSA-44pg-c29v-hp6r.json @@ -3,14 +3,10 @@ "id": "GHSA-44pg-c29v-hp6r", "modified": "2024-05-15T22:18:33Z", "published": "2024-05-15T22:18:33Z", - "aliases": [ - - ], + "aliases": [], "summary": "Laravel Guard bypass in Eloquent models", "details": "In laravel releases before 6.18.34 and 7.23.2. It was possible to mass assign Eloquent attributes that included the model's table name:\n```\n$model->fill(['users.name' => 'Taylor']);\n```\nWhen doing so, Eloquent would remove the table name from the attribute for you. This was a \"convenience\" feature of Eloquent and was not documented.\n\nHowever, when paired with validation, this can lead to unexpected and unvalidated values being saved to the database. For this reason, we have removed the automatic stripping of table names from mass-asignment operations so that the attributes go through the typical \"fillable\" / \"guarded\" logic. Any attributes containing table names that are not explicitly declared as fillable will be discarded.\n\nThis security release will be a breaking change for applications that were relying on the undocumented table name stripping during mass assignment. Since this feature was relatively unknown and undocumented, we expect the vast majority of Laravel applications to be able to upgrade without issues.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2024/05/GHSA-58xv-7h9r-mx3c/GHSA-58xv-7h9r-mx3c.json b/advisories/github-reviewed/2024/05/GHSA-58xv-7h9r-mx3c/GHSA-58xv-7h9r-mx3c.json index d6f0f294171..71d0fc6befd 100644 --- a/advisories/github-reviewed/2024/05/GHSA-58xv-7h9r-mx3c/GHSA-58xv-7h9r-mx3c.json +++ b/advisories/github-reviewed/2024/05/GHSA-58xv-7h9r-mx3c/GHSA-58xv-7h9r-mx3c.json @@ -3,14 +3,10 @@ "id": "GHSA-58xv-7h9r-mx3c", "modified": "2024-05-15T20:55:22Z", "published": "2024-05-15T20:55:22Z", - "aliases": [ - - ], + "aliases": [], "summary": "Drupal Malicious file upload with filenames stating with dot", "details": "Drupal 8 core's file_save_upload() function does not strip the leading and trailing dot ('.') from filenames, like Drupal 7 did.\n\nUsers with the ability to upload files with any extension in conjunction with contributed modules may be able to use this to upload system files such as .htaccess in order to bypass protections afforded by Drupal's default .htaccess file.\n\nAfter this fix, file_save_upload() now trims leading and trailing dots from filenames.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2024/05/GHSA-5gmh-85x8-5cx7/GHSA-5gmh-85x8-5cx7.json b/advisories/github-reviewed/2024/05/GHSA-5gmh-85x8-5cx7/GHSA-5gmh-85x8-5cx7.json index adbd64a8e68..a7de9161d4d 100644 --- a/advisories/github-reviewed/2024/05/GHSA-5gmh-85x8-5cx7/GHSA-5gmh-85x8-5cx7.json +++ b/advisories/github-reviewed/2024/05/GHSA-5gmh-85x8-5cx7/GHSA-5gmh-85x8-5cx7.json @@ -3,14 +3,10 @@ "id": "GHSA-5gmh-85x8-5cx7", "modified": "2024-05-15T22:34:08Z", "published": "2024-05-15T22:34:08Z", - "aliases": [ - - ], + "aliases": [], "summary": "Magento remote code execution (RCE), Cross-Site Scripting (XSS) and other vulnerabilities", "details": "Magento Commerce and Open Source 2.2.5 and 2.1.14 contain multiple security enhancements that help close authenticated Admin user remote code execution (RCE), Cross-Site Scripting (XSS) and other vulnerabilities.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -66,9 +62,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": true, "github_reviewed_at": "2024-05-15T22:34:08Z", diff --git a/advisories/github-reviewed/2024/05/GHSA-5x28-3f32-x523/GHSA-5x28-3f32-x523.json b/advisories/github-reviewed/2024/05/GHSA-5x28-3f32-x523/GHSA-5x28-3f32-x523.json index c509af0a259..beb3e1151f8 100644 --- a/advisories/github-reviewed/2024/05/GHSA-5x28-3f32-x523/GHSA-5x28-3f32-x523.json +++ b/advisories/github-reviewed/2024/05/GHSA-5x28-3f32-x523/GHSA-5x28-3f32-x523.json @@ -3,9 +3,7 @@ "id": "GHSA-5x28-3f32-x523", "modified": "2024-05-15T21:00:34Z", "published": "2024-05-15T21:00:34Z", - "aliases": [ - - ], + "aliases": [], "summary": "Drupal core Access control bypass ", "details": "The Media Library module has a security vulnerability whereby it doesn't sufficiently restrict access to media items in certain configurations.\n\n### Solution: \nIf you are using Drupal 8.7.x, you should upgrade to Drupal 8.7.11.\nIf you are using Drupal 8.8.x, you should upgrade to Drupal 8.8.1.\nVersions of Drupal 8 prior to 8.7.x are end-of-life and do not receive security coverage.\n\nAlternatively, you may mitigate this vulnerability by unchecking the \"Enable advanced UI\" checkbox on `/admin/config/media/media-library`. (This mitigation is not available in 8.7.x.)", "severity": [ @@ -69,9 +67,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2024-05-15T21:00:34Z", diff --git a/advisories/github-reviewed/2024/05/GHSA-64vj-933f-6pm3/GHSA-64vj-933f-6pm3.json b/advisories/github-reviewed/2024/05/GHSA-64vj-933f-6pm3/GHSA-64vj-933f-6pm3.json index 2e1ca9d8771..1086f7a6105 100644 --- a/advisories/github-reviewed/2024/05/GHSA-64vj-933f-6pm3/GHSA-64vj-933f-6pm3.json +++ b/advisories/github-reviewed/2024/05/GHSA-64vj-933f-6pm3/GHSA-64vj-933f-6pm3.json @@ -3,14 +3,10 @@ "id": "GHSA-64vj-933f-6pm3", "modified": "2024-05-15T21:28:27Z", "published": "2024-05-15T21:28:27Z", - "aliases": [ - - ], + "aliases": [], "summary": "eZ Platform Object Injection in SiteAccessMatchListener", "details": "This Security Advisory is about an object injection vulnerability in the SiteAccessMatchListener of eZ Platform, which could lead to remote code execution (RCE), a very serious threat. All sites may be affected.\n\nUpdate: There are bugs introduced by this fix, particularly but not limited to compound siteaccess matchers. These have been fixed in ezsystems/ezplatform-kernel v1.0.3, and in ezsystems/ezpublish-kernel v7.5.8, v6.13.6.4, and v5.4.15.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2024/05/GHSA-6jvx-8ch9-j2jr/GHSA-6jvx-8ch9-j2jr.json b/advisories/github-reviewed/2024/05/GHSA-6jvx-8ch9-j2jr/GHSA-6jvx-8ch9-j2jr.json index fdfe9629f0a..96346df1cac 100644 --- a/advisories/github-reviewed/2024/05/GHSA-6jvx-8ch9-j2jr/GHSA-6jvx-8ch9-j2jr.json +++ b/advisories/github-reviewed/2024/05/GHSA-6jvx-8ch9-j2jr/GHSA-6jvx-8ch9-j2jr.json @@ -3,14 +3,10 @@ "id": "GHSA-6jvx-8ch9-j2jr", "modified": "2024-05-15T22:15:07Z", "published": "2024-05-15T22:15:07Z", - "aliases": [ - - ], + "aliases": [], "summary": "Laravel Cookie serialization vulnerability", "details": "Laravel 5.6.30 is a security release of Laravel and is recommended as an immediate upgrade for all users. Laravel 5.6.30 also contains a breaking change to cookie encryption and serialization logic. Refer to [laravel advisory](https://laravel.com/docs/5.6/upgrade#upgrade-5.6.30) for more details and read the notes carefully when upgrading your application.\n\n", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2024/05/GHSA-6mjq-9x4w-m3w9/GHSA-6mjq-9x4w-m3w9.json b/advisories/github-reviewed/2024/05/GHSA-6mjq-9x4w-m3w9/GHSA-6mjq-9x4w-m3w9.json index 6d81e3e1dc7..4de2ad38330 100644 --- a/advisories/github-reviewed/2024/05/GHSA-6mjq-9x4w-m3w9/GHSA-6mjq-9x4w-m3w9.json +++ b/advisories/github-reviewed/2024/05/GHSA-6mjq-9x4w-m3w9/GHSA-6mjq-9x4w-m3w9.json @@ -3,14 +3,10 @@ "id": "GHSA-6mjq-9x4w-m3w9", "modified": "2024-05-15T21:42:56Z", "published": "2024-05-15T21:42:56Z", - "aliases": [ - - ], + "aliases": [], "summary": "FOSUserBundle Session Hijacking Vulnerability", "details": "Versions of FOSUserBundle from 1.2.x to 1.2.4 have been found to contain a security vulnerability related to session hijacking. This issue has been addressed in version 1.2.4, and users are strongly advised to upgrade to the latest version to prevent potential session-related security risks.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -51,9 +47,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2024-05-15T21:42:56Z", diff --git a/advisories/github-reviewed/2024/05/GHSA-6q9v-4hq6-5m67/GHSA-6q9v-4hq6-5m67.json b/advisories/github-reviewed/2024/05/GHSA-6q9v-4hq6-5m67/GHSA-6q9v-4hq6-5m67.json index 1b11d192cbc..ac136e2eb99 100644 --- a/advisories/github-reviewed/2024/05/GHSA-6q9v-4hq6-5m67/GHSA-6q9v-4hq6-5m67.json +++ b/advisories/github-reviewed/2024/05/GHSA-6q9v-4hq6-5m67/GHSA-6q9v-4hq6-5m67.json @@ -3,14 +3,10 @@ "id": "GHSA-6q9v-4hq6-5m67", "modified": "2024-05-15T20:14:15Z", "published": "2024-05-15T20:14:15Z", - "aliases": [ - - ], + "aliases": [], "summary": "Doctrine SQL injection vulnerability", "details": "Doctrine is prone to SQL injection vulnerability. Users of Doctrine 1.2 and 2 should update to the newly released versions of both libraries immediately. Both versions only include the security fix and no other changes to their previous versions 1.2.3 and 2.0.2.\n\nAffected versions are:\n- 1.2.3 and earlier for PostgreSQL and DB2 Dialects\n- 2.0.2 and earlier\n\nThe security issue was found to affect the `Doctrine\\DBAL\\Platforms\\AbstractPlatform::modifyLimitQuery()` function which does not cast input values for limit and offset to integer and allows malicious SQL to be executed if these parameters are passed into Doctrine 2 directly from request variables without previous cast to integer. Functionality building on top using limit queries in the ORM such as `Doctrine\\ORM\\Query::setFirstResult()` and `Doctrine\\ORM\\Query::setMaxResults()` are also affected by this security issue.\n\nThe fix for this security issue breaks backwards compatibility for developers that extend the `Doctrine\\DBAL\\Platforms\\AbstractPlatform::modifyLimitQuery()` method, because it is now marked as final. Please overwrite the `Doctrine\\DBAL\\Platforms\\AbstractPlatform::doModifyLimitQuery()` method instead.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -66,9 +62,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": true, "github_reviewed_at": "2024-05-15T20:14:15Z", diff --git a/advisories/github-reviewed/2024/05/GHSA-6wjw-qf87-fv5v/GHSA-6wjw-qf87-fv5v.json b/advisories/github-reviewed/2024/05/GHSA-6wjw-qf87-fv5v/GHSA-6wjw-qf87-fv5v.json index cc656e9865c..2ccfbd8cd3e 100644 --- a/advisories/github-reviewed/2024/05/GHSA-6wjw-qf87-fv5v/GHSA-6wjw-qf87-fv5v.json +++ b/advisories/github-reviewed/2024/05/GHSA-6wjw-qf87-fv5v/GHSA-6wjw-qf87-fv5v.json @@ -3,14 +3,10 @@ "id": "GHSA-6wjw-qf87-fv5v", "modified": "2024-05-15T22:01:01Z", "published": "2024-05-15T22:01:01Z", - "aliases": [ - - ], + "aliases": [], "summary": "Laravel Encrypter Failure to decryption vulnerability", "details": "A potential exploit of the Laravel Encrypter component that may cause the Encrypter to fail on decryption and unexpectedly return false.\n\nTo exploit this, the attacker must be able to modify the encrypted payload before it is decrypted. Depending on the code within your application, this could lead to unexpected behavior when combined with weak type comparisons, for example:\n\n```php\nvalidate()` method, which is expected to return only the validated dataset, was returning all properties of the Livewire component. This regression introduced a security risk, allowing unvalidated data to be exposed, which could lead to unexpected behavior and potential security issues.\n\n", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2024/05/GHSA-rj3w-99gc-8j58/GHSA-rj3w-99gc-8j58.json b/advisories/github-reviewed/2024/05/GHSA-rj3w-99gc-8j58/GHSA-rj3w-99gc-8j58.json index 70cf5dfb189..61daab2ba86 100644 --- a/advisories/github-reviewed/2024/05/GHSA-rj3w-99gc-8j58/GHSA-rj3w-99gc-8j58.json +++ b/advisories/github-reviewed/2024/05/GHSA-rj3w-99gc-8j58/GHSA-rj3w-99gc-8j58.json @@ -3,14 +3,10 @@ "id": "GHSA-rj3w-99gc-8j58", "modified": "2024-05-15T22:05:00Z", "published": "2024-05-15T22:05:00Z", - "aliases": [ - - ], + "aliases": [], "summary": "Laravel Risk of mass-assignment vulnerabilities", "details": "Laravel 4.1.29 improves the column quoting for all database drivers. This protects your application from some mass assignment vulnerabilities when not using the fillable property on models. If you are using the fillable property on your models to protect against mass assignment, your application is not vulnerable. However, if you are using guarded and are passing a user controlled array into an \"update\" or \"save\" type function, you should upgrade to 4.1.29 immediately as your application may be at risk of mass assignment.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2024/05/GHSA-vjrg-wpm8-rhrw/GHSA-vjrg-wpm8-rhrw.json b/advisories/github-reviewed/2024/05/GHSA-vjrg-wpm8-rhrw/GHSA-vjrg-wpm8-rhrw.json index 9524ebe9a79..b2ef342e6ff 100644 --- a/advisories/github-reviewed/2024/05/GHSA-vjrg-wpm8-rhrw/GHSA-vjrg-wpm8-rhrw.json +++ b/advisories/github-reviewed/2024/05/GHSA-vjrg-wpm8-rhrw/GHSA-vjrg-wpm8-rhrw.json @@ -3,14 +3,10 @@ "id": "GHSA-vjrg-wpm8-rhrw", "modified": "2024-05-15T20:19:47Z", "published": "2024-05-15T20:19:47Z", - "aliases": [ - - ], + "aliases": [], "summary": "doctrine/orm Regression in Query Parenthesis can have Security Implications", "details": "An issue identified in doctrine/orm project related to statement in Where-Clause were not wrapped in brackets due to improper hadandling of case insensitive check.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -47,9 +43,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2024-05-15T20:19:47Z", diff --git a/advisories/github-reviewed/2024/05/GHSA-vr95-p7q6-8m9q/GHSA-vr95-p7q6-8m9q.json b/advisories/github-reviewed/2024/05/GHSA-vr95-p7q6-8m9q/GHSA-vr95-p7q6-8m9q.json index cd84d24a339..d1fcaeef8eb 100644 --- a/advisories/github-reviewed/2024/05/GHSA-vr95-p7q6-8m9q/GHSA-vr95-p7q6-8m9q.json +++ b/advisories/github-reviewed/2024/05/GHSA-vr95-p7q6-8m9q/GHSA-vr95-p7q6-8m9q.json @@ -3,9 +3,7 @@ "id": "GHSA-vr95-p7q6-8m9q", "modified": "2024-05-15T22:16:06Z", "published": "2024-05-15T22:16:06Z", - "aliases": [ - - ], + "aliases": [], "summary": "Laravel Cross-site Scripting (XSS) vulnerability in blade templating", "details": "Laravel 7.1.2 addresses a possible XSS related attack vector in the Laravel 7.x Blade Component tag attributes when users are allowed to dictate the value of attributes. All Laravel 7.x users are encouraged to upgrade as soon as possible.", "severity": [ diff --git a/advisories/github-reviewed/2024/05/GHSA-w333-5f96-mjrr/GHSA-w333-5f96-mjrr.json b/advisories/github-reviewed/2024/05/GHSA-w333-5f96-mjrr/GHSA-w333-5f96-mjrr.json index cc7c17fd22d..8658ce879bd 100644 --- a/advisories/github-reviewed/2024/05/GHSA-w333-5f96-mjrr/GHSA-w333-5f96-mjrr.json +++ b/advisories/github-reviewed/2024/05/GHSA-w333-5f96-mjrr/GHSA-w333-5f96-mjrr.json @@ -3,9 +3,7 @@ "id": "GHSA-w333-5f96-mjrr", "modified": "2024-05-15T20:59:57Z", "published": "2024-05-15T20:59:57Z", - "aliases": [ - - ], + "aliases": [], "summary": "Drupal core Denial of Service", "details": "A visit to install.php can cause cached data to become corrupted. This could cause a site to be impaired until caches are rebuilt.", "severity": [ @@ -69,9 +67,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2024-05-15T20:59:57Z", diff --git a/advisories/github-reviewed/2024/05/GHSA-w9p3-26fx-5mp3/GHSA-w9p3-26fx-5mp3.json b/advisories/github-reviewed/2024/05/GHSA-w9p3-26fx-5mp3/GHSA-w9p3-26fx-5mp3.json index cf2115cf075..6d7bfd6c5c6 100644 --- a/advisories/github-reviewed/2024/05/GHSA-w9p3-26fx-5mp3/GHSA-w9p3-26fx-5mp3.json +++ b/advisories/github-reviewed/2024/05/GHSA-w9p3-26fx-5mp3/GHSA-w9p3-26fx-5mp3.json @@ -3,14 +3,10 @@ "id": "GHSA-w9p3-26fx-5mp3", "modified": "2024-05-15T21:34:20Z", "published": "2024-05-15T21:34:20Z", - "aliases": [ - - ], + "aliases": [], "summary": "eZ Platform Admin UI is vulnerable to Cross-site Scripting (XSS)", "details": "There is an XSS vulnerability in CKEditor, which is used by AlloyEditor, which is used in eZ Platform Admin UI. Scripts can be injected through specially crafted \"protected\" comments. We are not sure it is exploitable in eZ Platform, but recommend installing it to be on the safe side. It is fixed in CKEditor v4.14, AlloyEditor v2.11.9. It is distributed via Composer, for:\n```\neZ Platform v1.13.x: ezsystems/PlatformUIAssetsBundle v4.2.3 (included from ezsystems/PlatformUIBundle v1.13.x)\n\neZ Platform v2.5.13: ezsystems/ezplatform-admin-ui-assets v4.2.1\n\neZ Platform v3.0.*: ezsystems/ezplatform-admin-ui-assets v5.0.1\n\neZ Platform v3.1.2: ezsystems/ezplatform-admin-ui-assets v5.1.1\n```\n\nDrafts that are sent to trash become visible in the Review Queue, even for users that were not able to see them before this action. It's not possible to preview them, but their title and review history is displayed. This affects Enterprise Edition only, of which ezplatform-workflow is a part. This security update is distributed via Composer, for\n```\neZ Platform EE v2.5.13: ezsystems/ezplatform-workflow v1.1.9\n\neZ Platform EE v3.1.2: ezsystems/ezplatform-workflow v2.1.1\n```", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2024/05/GHSA-wq8p-mqvg-2p5h/GHSA-wq8p-mqvg-2p5h.json b/advisories/github-reviewed/2024/05/GHSA-wq8p-mqvg-2p5h/GHSA-wq8p-mqvg-2p5h.json index 1cf6452f6b9..e0fed3bed8d 100644 --- a/advisories/github-reviewed/2024/05/GHSA-wq8p-mqvg-2p5h/GHSA-wq8p-mqvg-2p5h.json +++ b/advisories/github-reviewed/2024/05/GHSA-wq8p-mqvg-2p5h/GHSA-wq8p-mqvg-2p5h.json @@ -3,14 +3,10 @@ "id": "GHSA-wq8p-mqvg-2p5h", "modified": "2024-05-15T22:20:42Z", "published": "2024-05-15T22:20:42Z", - "aliases": [ - - ], + "aliases": [], "summary": "laravel framework SQL Injection via limit and offset functions", "details": "### Impact\nThose using SQL Server with Laravel and allowing user input to be passed directly to the limit and offset functions are vulnerable to SQL injection. Other database drivers such as MySQL and Postgres are not affected by this vulnerability.\n\n### Patches\nThis problem has been patched on Laravel versions 6.20.26, 7.30.5, and 8.40.0.\n\n### Workarounds\nYou may workaround this vulnerability by ensuring that only integers are passed to the limit and offset functions, as well as the skip and take functions.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2024/05/GHSA-wxfg-253g-m7r4/GHSA-wxfg-253g-m7r4.json b/advisories/github-reviewed/2024/05/GHSA-wxfg-253g-m7r4/GHSA-wxfg-253g-m7r4.json index 67ad2f9b63b..6f7b2859d18 100644 --- a/advisories/github-reviewed/2024/05/GHSA-wxfg-253g-m7r4/GHSA-wxfg-253g-m7r4.json +++ b/advisories/github-reviewed/2024/05/GHSA-wxfg-253g-m7r4/GHSA-wxfg-253g-m7r4.json @@ -3,9 +3,7 @@ "id": "GHSA-wxfg-253g-m7r4", "modified": "2024-05-15T21:01:39Z", "published": "2024-05-15T21:01:39Z", - "aliases": [ - - ], + "aliases": [], "summary": " Drupal core Open Redirect vulnerability", "details": "Drupal 7 has an Open Redirect vulnerability. For example, a user could be tricked into visiting a specially crafted link which would redirect them to an arbitrary external URL.\n\nThe vulnerability is caused by insufficient validation of the destination query parameter in the drupal_goto() function.\n\nOther versions of Drupal core are not vulnerable.", "severity": [ diff --git a/advisories/github-reviewed/2024/05/GHSA-xm3x-4ph3-3x9c/GHSA-xm3x-4ph3-3x9c.json b/advisories/github-reviewed/2024/05/GHSA-xm3x-4ph3-3x9c/GHSA-xm3x-4ph3-3x9c.json index 39ae373d143..79c30f3b01f 100644 --- a/advisories/github-reviewed/2024/05/GHSA-xm3x-4ph3-3x9c/GHSA-xm3x-4ph3-3x9c.json +++ b/advisories/github-reviewed/2024/05/GHSA-xm3x-4ph3-3x9c/GHSA-xm3x-4ph3-3x9c.json @@ -3,14 +3,10 @@ "id": "GHSA-xm3x-4ph3-3x9c", "modified": "2024-05-15T21:39:29Z", "published": "2024-05-15T21:39:29Z", - "aliases": [ - - ], + "aliases": [], "summary": "friendsofsymfony/oauth2-php open redirection in oauth", "details": "An open redirection vulnerability has been identified in the friendsofsymfony/oauth2-php library, which could potentially expose users to unauthorized redirects during the OAuth authentication process. This vulnerability has been addressed by implementing an exact check for the domain and port, ensuring more secure redirection.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -51,9 +47,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2024-05-15T21:39:29Z", diff --git a/advisories/github-reviewed/2024/06/GHSA-5cxf-xx9j-54jc/GHSA-5cxf-xx9j-54jc.json b/advisories/github-reviewed/2024/06/GHSA-5cxf-xx9j-54jc/GHSA-5cxf-xx9j-54jc.json index d927b5bd448..d3bb306d216 100644 --- a/advisories/github-reviewed/2024/06/GHSA-5cxf-xx9j-54jc/GHSA-5cxf-xx9j-54jc.json +++ b/advisories/github-reviewed/2024/06/GHSA-5cxf-xx9j-54jc/GHSA-5cxf-xx9j-54jc.json @@ -3,14 +3,10 @@ "id": "GHSA-5cxf-xx9j-54jc", "modified": "2024-06-03T14:29:56Z", "published": "2024-06-03T14:29:56Z", - "aliases": [ - - ], + "aliases": [], "summary": "Multiple Cross-Site Scripting vulnerabilities in TYPO3 backend", "details": "Failing to properly encode user input, several backend components are susceptible to Cross-Site Scripting, allowing authenticated editors to inject arbitrary HTML or JavaScript.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -66,9 +62,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2024-06-03T14:29:56Z", diff --git a/advisories/github-reviewed/2024/06/GHSA-qrxh-46mr-pr7q/GHSA-qrxh-46mr-pr7q.json b/advisories/github-reviewed/2024/06/GHSA-qrxh-46mr-pr7q/GHSA-qrxh-46mr-pr7q.json index b00cc3dc225..6ca3fef1fd7 100644 --- a/advisories/github-reviewed/2024/06/GHSA-qrxh-46mr-pr7q/GHSA-qrxh-46mr-pr7q.json +++ b/advisories/github-reviewed/2024/06/GHSA-qrxh-46mr-pr7q/GHSA-qrxh-46mr-pr7q.json @@ -3,14 +3,10 @@ "id": "GHSA-qrxh-46mr-pr7q", "modified": "2024-06-03T14:39:16Z", "published": "2024-06-03T14:39:16Z", - "aliases": [ - - ], + "aliases": [], "summary": "TYPO3 is susceptible to Cross-Site Flashing", "details": "The flashplayer misses to validate flash and image files. Therefore it is possible to embed flash videos from external domains.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -51,9 +47,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2024-06-03T14:39:16Z", diff --git a/advisories/unreviewed/2022/01/GHSA-hgpj-mg5q-324q/GHSA-hgpj-mg5q-324q.json b/advisories/unreviewed/2022/01/GHSA-hgpj-mg5q-324q/GHSA-hgpj-mg5q-324q.json index a080253ff5d..036580bd0a9 100644 --- a/advisories/unreviewed/2022/01/GHSA-hgpj-mg5q-324q/GHSA-hgpj-mg5q-324q.json +++ b/advisories/unreviewed/2022/01/GHSA-hgpj-mg5q-324q/GHSA-hgpj-mg5q-324q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-238g-h6pm-rw9x/GHSA-238g-h6pm-rw9x.json b/advisories/unreviewed/2022/04/GHSA-238g-h6pm-rw9x/GHSA-238g-h6pm-rw9x.json index 187339e0d3d..f5925a7b014 100644 --- a/advisories/unreviewed/2022/04/GHSA-238g-h6pm-rw9x/GHSA-238g-h6pm-rw9x.json +++ b/advisories/unreviewed/2022/04/GHSA-238g-h6pm-rw9x/GHSA-238g-h6pm-rw9x.json @@ -7,12 +7,8 @@ "CVE-2002-0354" ], "details": "The XMLHttpRequest object (XMLHTTP) in Netscape 6.1 and Mozilla 0.9.7 allows remote attackers to read arbitrary files and list directories on a client system by opening a URL that redirects the browser to the file on the client, then reading the result using the responseText property.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2494-q7mq-75f7/GHSA-2494-q7mq-75f7.json b/advisories/unreviewed/2022/04/GHSA-2494-q7mq-75f7/GHSA-2494-q7mq-75f7.json index 4b08dc8cd19..8b4acbde8d5 100644 --- a/advisories/unreviewed/2022/04/GHSA-2494-q7mq-75f7/GHSA-2494-q7mq-75f7.json +++ b/advisories/unreviewed/2022/04/GHSA-2494-q7mq-75f7/GHSA-2494-q7mq-75f7.json @@ -7,12 +7,8 @@ "CVE-2002-0264" ], "details": "PowerFTP Personal FTP Server 2.03 through 2.10 stores sensitive account information in plaintext in the ftpserver.ini file, which allows attackers with access to the file to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-24q4-rxhj-p299/GHSA-24q4-rxhj-p299.json b/advisories/unreviewed/2022/04/GHSA-24q4-rxhj-p299/GHSA-24q4-rxhj-p299.json index 65883620176..29915303f4d 100644 --- a/advisories/unreviewed/2022/04/GHSA-24q4-rxhj-p299/GHSA-24q4-rxhj-p299.json +++ b/advisories/unreviewed/2022/04/GHSA-24q4-rxhj-p299/GHSA-24q4-rxhj-p299.json @@ -7,12 +7,8 @@ "CVE-2002-0244" ], "details": "Directory traversal vulnerability in chroot function in AtheOS 0.3.7 allows attackers to escape the jail via a .. (dot dot) in the pathname argument to chdir.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-25vh-8m4m-9m4f/GHSA-25vh-8m4m-9m4f.json b/advisories/unreviewed/2022/04/GHSA-25vh-8m4m-9m4f/GHSA-25vh-8m4m-9m4f.json index 873bd8b391c..e06a7c38aed 100644 --- a/advisories/unreviewed/2022/04/GHSA-25vh-8m4m-9m4f/GHSA-25vh-8m4m-9m4f.json +++ b/advisories/unreviewed/2022/04/GHSA-25vh-8m4m-9m4f/GHSA-25vh-8m4m-9m4f.json @@ -7,12 +7,8 @@ "CVE-2002-0588" ], "details": "PVote before 1.9 does not authenticate users for restricted operations, which allows remote attackers to add or delete polls by modifying parameters to (1) add.php or (2) del.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-29mc-g84r-w9hv/GHSA-29mc-g84r-w9hv.json b/advisories/unreviewed/2022/04/GHSA-29mc-g84r-w9hv/GHSA-29mc-g84r-w9hv.json index c691575dbe9..de6a8c896ec 100644 --- a/advisories/unreviewed/2022/04/GHSA-29mc-g84r-w9hv/GHSA-29mc-g84r-w9hv.json +++ b/advisories/unreviewed/2022/04/GHSA-29mc-g84r-w9hv/GHSA-29mc-g84r-w9hv.json @@ -7,12 +7,8 @@ "CVE-2002-0238" ], "details": "Cross-site scripting vulnerability in web administration interface for NetGear RT314 and RT311 Gateway Routers allows remote attackers to execute arbitrary script on another client via a URL that contains the script.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2f5f-872q-h83q/GHSA-2f5f-872q-h83q.json b/advisories/unreviewed/2022/04/GHSA-2f5f-872q-h83q/GHSA-2f5f-872q-h83q.json index 8ed848afd39..2079f91d8ba 100644 --- a/advisories/unreviewed/2022/04/GHSA-2f5f-872q-h83q/GHSA-2f5f-872q-h83q.json +++ b/advisories/unreviewed/2022/04/GHSA-2f5f-872q-h83q/GHSA-2f5f-872q-h83q.json @@ -7,12 +7,8 @@ "CVE-2002-0434" ], "details": "Marcus S. Xenakis directory.php script allows remote attackers to execute arbitrary commands via shell metacharacters in the dir parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2gq4-2pw4-rw4q/GHSA-2gq4-2pw4-rw4q.json b/advisories/unreviewed/2022/04/GHSA-2gq4-2pw4-rw4q/GHSA-2gq4-2pw4-rw4q.json index fcaaa21c353..0fe6fd3240e 100644 --- a/advisories/unreviewed/2022/04/GHSA-2gq4-2pw4-rw4q/GHSA-2gq4-2pw4-rw4q.json +++ b/advisories/unreviewed/2022/04/GHSA-2gq4-2pw4-rw4q/GHSA-2gq4-2pw4-rw4q.json @@ -7,12 +7,8 @@ "CVE-2002-0256" ], "details": "The telnet port in Arescom NetDSL 1000 router allows remote attackers to cause a denial of service via a series of connections with long strings, which causes a large number of login failures and causes the telnet service to stop.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2gqg-8593-7cc7/GHSA-2gqg-8593-7cc7.json b/advisories/unreviewed/2022/04/GHSA-2gqg-8593-7cc7/GHSA-2gqg-8593-7cc7.json index e298b0cacf2..65ef927a9a9 100644 --- a/advisories/unreviewed/2022/04/GHSA-2gqg-8593-7cc7/GHSA-2gqg-8593-7cc7.json +++ b/advisories/unreviewed/2022/04/GHSA-2gqg-8593-7cc7/GHSA-2gqg-8593-7cc7.json @@ -7,12 +7,8 @@ "CVE-2002-0306" ], "details": "ans.pl in Avenger's News System (ANS) 2.11 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the p (plugin) parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2j3f-gh3p-94vc/GHSA-2j3f-gh3p-94vc.json b/advisories/unreviewed/2022/04/GHSA-2j3f-gh3p-94vc/GHSA-2j3f-gh3p-94vc.json index 8decb2ed93b..cf45bf9f6be 100644 --- a/advisories/unreviewed/2022/04/GHSA-2j3f-gh3p-94vc/GHSA-2j3f-gh3p-94vc.json +++ b/advisories/unreviewed/2022/04/GHSA-2j3f-gh3p-94vc/GHSA-2j3f-gh3p-94vc.json @@ -7,12 +7,8 @@ "CVE-2002-0679" ], "details": "Buffer overflow in Common Desktop Environment (CDE) ToolTalk RPC database server (rpc.ttdbserverd) allows remote attackers to execute arbitrary code via an argument to the _TT_CREATE_FILE procedure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2jp3-r2v3-cr4c/GHSA-2jp3-r2v3-cr4c.json b/advisories/unreviewed/2022/04/GHSA-2jp3-r2v3-cr4c/GHSA-2jp3-r2v3-cr4c.json index fa4f32370a0..0f2629806e8 100644 --- a/advisories/unreviewed/2022/04/GHSA-2jp3-r2v3-cr4c/GHSA-2jp3-r2v3-cr4c.json +++ b/advisories/unreviewed/2022/04/GHSA-2jp3-r2v3-cr4c/GHSA-2jp3-r2v3-cr4c.json @@ -7,12 +7,8 @@ "CVE-2002-0366" ], "details": "Buffer overflow in Remote Access Service (RAS) phonebook for Windows NT 4.0, 2000, XP, and Routing and Remote Access Server (RRAS) allows local users to execute arbitrary code by modifying the rasphone.pbk file to use a long dial-up entry.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2r4p-jx45-wqw6/GHSA-2r4p-jx45-wqw6.json b/advisories/unreviewed/2022/04/GHSA-2r4p-jx45-wqw6/GHSA-2r4p-jx45-wqw6.json index 5e4528aba60..bab1c3a823c 100644 --- a/advisories/unreviewed/2022/04/GHSA-2r4p-jx45-wqw6/GHSA-2r4p-jx45-wqw6.json +++ b/advisories/unreviewed/2022/04/GHSA-2r4p-jx45-wqw6/GHSA-2r4p-jx45-wqw6.json @@ -7,12 +7,8 @@ "CVE-2002-0542" ], "details": "mail in OpenBSD 2.9 and 3.0 processes a tilde (~) escape character in a message even when it is not in interactive mode, which could allow local users to gain root privileges via calls to mail in cron.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2v78-p655-v2m3/GHSA-2v78-p655-v2m3.json b/advisories/unreviewed/2022/04/GHSA-2v78-p655-v2m3/GHSA-2v78-p655-v2m3.json index b7025623574..8810abee22e 100644 --- a/advisories/unreviewed/2022/04/GHSA-2v78-p655-v2m3/GHSA-2v78-p655-v2m3.json +++ b/advisories/unreviewed/2022/04/GHSA-2v78-p655-v2m3/GHSA-2v78-p655-v2m3.json @@ -7,12 +7,8 @@ "CVE-2002-0557" ], "details": "Vulnerability in OpenBSD 3.0, when using YP with netgroups in the password database, causes (1) rexec or (2) rsh to run another user's shell, or (3) atrun to change to a different user's directory, possibly due to memory allocation failures or an incorrect call to auth_approval().", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2vgc-gm64-jwcg/GHSA-2vgc-gm64-jwcg.json b/advisories/unreviewed/2022/04/GHSA-2vgc-gm64-jwcg/GHSA-2vgc-gm64-jwcg.json index fce7acfbb9b..9e7104b7a73 100644 --- a/advisories/unreviewed/2022/04/GHSA-2vgc-gm64-jwcg/GHSA-2vgc-gm64-jwcg.json +++ b/advisories/unreviewed/2022/04/GHSA-2vgc-gm64-jwcg/GHSA-2vgc-gm64-jwcg.json @@ -7,12 +7,8 @@ "CVE-2002-0692" ], "details": "Buffer overflow in SmartHTML Interpreter (shtml.dll) in Microsoft FrontPage Server Extensions (FPSE) 2000 and 2002 allows remote attackers to cause a denial of service (CPU consumption) or run arbitrary code, respectively, via a certain type of web file request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2vqw-29j2-c787/GHSA-2vqw-29j2-c787.json b/advisories/unreviewed/2022/04/GHSA-2vqw-29j2-c787/GHSA-2vqw-29j2-c787.json index d4c11f12e26..a4ba7438526 100644 --- a/advisories/unreviewed/2022/04/GHSA-2vqw-29j2-c787/GHSA-2vqw-29j2-c787.json +++ b/advisories/unreviewed/2022/04/GHSA-2vqw-29j2-c787/GHSA-2vqw-29j2-c787.json @@ -7,12 +7,8 @@ "CVE-2002-0255" ], "details": "The default configuration of Arescom NetDSL 800 does not require authentication, which allows remote attackers to cause a denial of service or reconfigure the router.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2vrr-2g3v-v4gc/GHSA-2vrr-2g3v-v4gc.json b/advisories/unreviewed/2022/04/GHSA-2vrr-2g3v-v4gc/GHSA-2vrr-2g3v-v4gc.json index 22fb89ff2b1..45869c2da37 100644 --- a/advisories/unreviewed/2022/04/GHSA-2vrr-2g3v-v4gc/GHSA-2vrr-2g3v-v4gc.json +++ b/advisories/unreviewed/2022/04/GHSA-2vrr-2g3v-v4gc/GHSA-2vrr-2g3v-v4gc.json @@ -7,12 +7,8 @@ "CVE-2002-0439" ], "details": "Cross-site scripting vulnerability in CaupoShop 1.30a and earlier, and possibly CaupoShopPro, allows remote attackers to execute arbitrary Javascript and steal credit card numbers or delete items by injecting the script into new customer information fields such as the message field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2wj7-rh7r-r9rv/GHSA-2wj7-rh7r-r9rv.json b/advisories/unreviewed/2022/04/GHSA-2wj7-rh7r-r9rv/GHSA-2wj7-rh7r-r9rv.json index 31763c5f6f0..7192bd95baf 100644 --- a/advisories/unreviewed/2022/04/GHSA-2wj7-rh7r-r9rv/GHSA-2wj7-rh7r-r9rv.json +++ b/advisories/unreviewed/2022/04/GHSA-2wj7-rh7r-r9rv/GHSA-2wj7-rh7r-r9rv.json @@ -7,12 +7,8 @@ "CVE-2002-0340" ], "details": "Windows Media Player (WMP) 8.00.00.4477, and possibly other versions, automatically detects and executes .wmf and other content, even when the file's extension or content type does not specify .wmf, which could make it easier for attackers to conduct unauthorized activities via Trojan horse files containing .wmf content.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2wv6-fcqw-5h48/GHSA-2wv6-fcqw-5h48.json b/advisories/unreviewed/2022/04/GHSA-2wv6-fcqw-5h48/GHSA-2wv6-fcqw-5h48.json index cbef3ab3a45..3d1dd2597df 100644 --- a/advisories/unreviewed/2022/04/GHSA-2wv6-fcqw-5h48/GHSA-2wv6-fcqw-5h48.json +++ b/advisories/unreviewed/2022/04/GHSA-2wv6-fcqw-5h48/GHSA-2wv6-fcqw-5h48.json @@ -7,12 +7,8 @@ "CVE-2002-0331" ], "details": "Directory traversal vulnerability in the HTTP server for BPM Studio Pro 4.2 allows remote attackers to read arbitrary files via a .. (dot dot) in the HTTP request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2x42-r98f-w3cp/GHSA-2x42-r98f-w3cp.json b/advisories/unreviewed/2022/04/GHSA-2x42-r98f-w3cp/GHSA-2x42-r98f-w3cp.json index 323acb6a180..4e476300598 100644 --- a/advisories/unreviewed/2022/04/GHSA-2x42-r98f-w3cp/GHSA-2x42-r98f-w3cp.json +++ b/advisories/unreviewed/2022/04/GHSA-2x42-r98f-w3cp/GHSA-2x42-r98f-w3cp.json @@ -7,12 +7,8 @@ "CVE-2002-0395" ], "details": "The TFTP server for Red-M 1050 (Bluetooth Access Point) can not be disabled and makes it easier for remote attackers to crack the administration password via brute force methods.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-32v3-pxcv-g5fm/GHSA-32v3-pxcv-g5fm.json b/advisories/unreviewed/2022/04/GHSA-32v3-pxcv-g5fm/GHSA-32v3-pxcv-g5fm.json index e7f12101a5b..619a9916a16 100644 --- a/advisories/unreviewed/2022/04/GHSA-32v3-pxcv-g5fm/GHSA-32v3-pxcv-g5fm.json +++ b/advisories/unreviewed/2022/04/GHSA-32v3-pxcv-g5fm/GHSA-32v3-pxcv-g5fm.json @@ -7,12 +7,8 @@ "CVE-2002-0561" ], "details": "The default configuration of the PL/SQL Gateway web administration interface in Oracle 9i Application Server 1.0.2.x uses null authentication, which allows remote attackers to gain privileges and modify DAD settings.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-359v-f6wj-vq97/GHSA-359v-f6wj-vq97.json b/advisories/unreviewed/2022/04/GHSA-359v-f6wj-vq97/GHSA-359v-f6wj-vq97.json index 7be2c4c0c07..e51732d0a0f 100644 --- a/advisories/unreviewed/2022/04/GHSA-359v-f6wj-vq97/GHSA-359v-f6wj-vq97.json +++ b/advisories/unreviewed/2022/04/GHSA-359v-f6wj-vq97/GHSA-359v-f6wj-vq97.json @@ -7,12 +7,8 @@ "CVE-2002-0529" ], "details": "HP Photosmart printer driver for Mac OS X installs the hp_imaging_connectivity program and the hp_imaging_connectivity.app directory with world-writable permissions, which allows local users to gain privileges of other Photosmart users by replacing hp_imaging_connectivity with a Trojan horse.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-35qq-wvhr-hv5f/GHSA-35qq-wvhr-hv5f.json b/advisories/unreviewed/2022/04/GHSA-35qq-wvhr-hv5f/GHSA-35qq-wvhr-hv5f.json index e67a85c3b65..43309e88a9b 100644 --- a/advisories/unreviewed/2022/04/GHSA-35qq-wvhr-hv5f/GHSA-35qq-wvhr-hv5f.json +++ b/advisories/unreviewed/2022/04/GHSA-35qq-wvhr-hv5f/GHSA-35qq-wvhr-hv5f.json @@ -7,12 +7,8 @@ "CVE-2002-0550" ], "details": "Dynamic Guestbook 3.0 allows remote attackers to execute arbitrary code via shell metacharacters in the gbdaten parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-36wh-r9j6-6x72/GHSA-36wh-r9j6-6x72.json b/advisories/unreviewed/2022/04/GHSA-36wh-r9j6-6x72/GHSA-36wh-r9j6-6x72.json index 0e47d4decb2..35cd6b99e6b 100644 --- a/advisories/unreviewed/2022/04/GHSA-36wh-r9j6-6x72/GHSA-36wh-r9j6-6x72.json +++ b/advisories/unreviewed/2022/04/GHSA-36wh-r9j6-6x72/GHSA-36wh-r9j6-6x72.json @@ -7,12 +7,8 @@ "CVE-2002-0510" ], "details": "The UDP implementation in Linux 2.4.x kernels keeps the IP Identification field at 0 for all non-fragmented packets, which could allow remote attackers to determine that a target system is running Linux.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-389w-w95c-w2gj/GHSA-389w-w95c-w2gj.json b/advisories/unreviewed/2022/04/GHSA-389w-w95c-w2gj/GHSA-389w-w95c-w2gj.json index 454b43a8f17..67cd61ebe14 100644 --- a/advisories/unreviewed/2022/04/GHSA-389w-w95c-w2gj/GHSA-389w-w95c-w2gj.json +++ b/advisories/unreviewed/2022/04/GHSA-389w-w95c-w2gj/GHSA-389w-w95c-w2gj.json @@ -7,12 +7,8 @@ "CVE-2002-0309" ], "details": "SMTP proxy in Symantec Enterprise Firewall (SEF) 6.5.x includes the firewall's physical interface name and address in an SMTP protocol exchange when NAT translation is made to an address other than the firewall, which could allow remote attackers to determine certain firewall configuration information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3c8w-q8xv-2g52/GHSA-3c8w-q8xv-2g52.json b/advisories/unreviewed/2022/04/GHSA-3c8w-q8xv-2g52/GHSA-3c8w-q8xv-2g52.json index 283b2a4c7fa..5e55713a9ad 100644 --- a/advisories/unreviewed/2022/04/GHSA-3c8w-q8xv-2g52/GHSA-3c8w-q8xv-2g52.json +++ b/advisories/unreviewed/2022/04/GHSA-3c8w-q8xv-2g52/GHSA-3c8w-q8xv-2g52.json @@ -7,12 +7,8 @@ "CVE-2002-0592" ], "details": "AOL Instant Messenger (AIM) allows remote attackers to steal files that are being transferred to other clients by connecting to port 4443 (Direct Connection) or port 5190 (file transfer) before the intended user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3f2r-2r5j-wqrm/GHSA-3f2r-2r5j-wqrm.json b/advisories/unreviewed/2022/04/GHSA-3f2r-2r5j-wqrm/GHSA-3f2r-2r5j-wqrm.json index e00d6573a7f..ca92905a19f 100644 --- a/advisories/unreviewed/2022/04/GHSA-3f2r-2r5j-wqrm/GHSA-3f2r-2r5j-wqrm.json +++ b/advisories/unreviewed/2022/04/GHSA-3f2r-2r5j-wqrm/GHSA-3f2r-2r5j-wqrm.json @@ -7,12 +7,8 @@ "CVE-2002-0273" ], "details": "Buffer overflow in CWMail.exe in NetWin before 2.8a allows remote authenticated users to execute arbitrary code via a long item parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3fhh-fr6w-p45p/GHSA-3fhh-fr6w-p45p.json b/advisories/unreviewed/2022/04/GHSA-3fhh-fr6w-p45p/GHSA-3fhh-fr6w-p45p.json index 01d648c579b..197b3502eb9 100644 --- a/advisories/unreviewed/2022/04/GHSA-3fhh-fr6w-p45p/GHSA-3fhh-fr6w-p45p.json +++ b/advisories/unreviewed/2022/04/GHSA-3fhh-fr6w-p45p/GHSA-3fhh-fr6w-p45p.json @@ -7,12 +7,8 @@ "CVE-2002-0398" ], "details": "Red-M 1050 (Bluetooth Access Point) PPP server allows bonded users to cause a denial of service and possibly execute arbitrary code via a long user name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3fmr-rjpp-p943/GHSA-3fmr-rjpp-p943.json b/advisories/unreviewed/2022/04/GHSA-3fmr-rjpp-p943/GHSA-3fmr-rjpp-p943.json index 8bd9b57bd1d..621b391eea4 100644 --- a/advisories/unreviewed/2022/04/GHSA-3fmr-rjpp-p943/GHSA-3fmr-rjpp-p943.json +++ b/advisories/unreviewed/2022/04/GHSA-3fmr-rjpp-p943/GHSA-3fmr-rjpp-p943.json @@ -7,12 +7,8 @@ "CVE-2002-0509" ], "details": "Transparent Network Substrate (TNS) Listener in Oracle 9i 9.0.1.1 allows remote attackers to cause a denial of service (CPU consumption) via a single malformed TCP packet to port 1521.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3hpc-q4rc-654w/GHSA-3hpc-q4rc-654w.json b/advisories/unreviewed/2022/04/GHSA-3hpc-q4rc-654w/GHSA-3hpc-q4rc-654w.json index 2b99bec8366..e926b7dbb51 100644 --- a/advisories/unreviewed/2022/04/GHSA-3hpc-q4rc-654w/GHSA-3hpc-q4rc-654w.json +++ b/advisories/unreviewed/2022/04/GHSA-3hpc-q4rc-654w/GHSA-3hpc-q4rc-654w.json @@ -7,12 +7,8 @@ "CVE-2002-0232" ], "details": "Directory traversal vulnerability in Multi Router Traffic Grapher (MRTG) allows remote attackers to read portions of arbitrary files via a .. (dot dot) in the cfg parameter for (1) 14all.cgi, (2) 14all-1.1.cgi, (3) traffic.cgi, or (4) mrtg.cgi.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3hrc-69x2-hp5x/GHSA-3hrc-69x2-hp5x.json b/advisories/unreviewed/2022/04/GHSA-3hrc-69x2-hp5x/GHSA-3hrc-69x2-hp5x.json index e260d4caf21..01f63bdd5ad 100644 --- a/advisories/unreviewed/2022/04/GHSA-3hrc-69x2-hp5x/GHSA-3hrc-69x2-hp5x.json +++ b/advisories/unreviewed/2022/04/GHSA-3hrc-69x2-hp5x/GHSA-3hrc-69x2-hp5x.json @@ -7,12 +7,8 @@ "CVE-2002-0229" ], "details": "Safe Mode feature (safe_mode) in PHP 3.0 through 4.1.0 allows attackers with access to the MySQL database to bypass Safe Mode access restrictions and read arbitrary files using \"LOAD DATA INFILE LOCAL\" SQL statements.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3p22-6rfg-m95x/GHSA-3p22-6rfg-m95x.json b/advisories/unreviewed/2022/04/GHSA-3p22-6rfg-m95x/GHSA-3p22-6rfg-m95x.json index f40543a963b..0f4c48ff6f5 100644 --- a/advisories/unreviewed/2022/04/GHSA-3p22-6rfg-m95x/GHSA-3p22-6rfg-m95x.json +++ b/advisories/unreviewed/2022/04/GHSA-3p22-6rfg-m95x/GHSA-3p22-6rfg-m95x.json @@ -7,12 +7,8 @@ "CVE-2002-0332" ], "details": "Buffer overflows in xtell (xtelld) 1.91.1 and earlier, and 2.x before 2.7, allows remote attackers to execute arbitrary code via (1) a long DNS hostname that is determined using reverse DNS lookups, (2) a long AUTH string, or (3) certain data in the xtell request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3v4v-w999-cvf5/GHSA-3v4v-w999-cvf5.json b/advisories/unreviewed/2022/04/GHSA-3v4v-w999-cvf5/GHSA-3v4v-w999-cvf5.json index d51597ca44b..b96895b9b69 100644 --- a/advisories/unreviewed/2022/04/GHSA-3v4v-w999-cvf5/GHSA-3v4v-w999-cvf5.json +++ b/advisories/unreviewed/2022/04/GHSA-3v4v-w999-cvf5/GHSA-3v4v-w999-cvf5.json @@ -7,12 +7,8 @@ "CVE-2002-0516" ], "details": "SquirrelMail 1.2.5 and earlier allows authenticated SquirrelMail users to execute arbitrary commands by modifying the THEME variable in a cookie.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3x72-wc87-c63c/GHSA-3x72-wc87-c63c.json b/advisories/unreviewed/2022/04/GHSA-3x72-wc87-c63c/GHSA-3x72-wc87-c63c.json index 9175aa1f4b9..1a3232bbf62 100644 --- a/advisories/unreviewed/2022/04/GHSA-3x72-wc87-c63c/GHSA-3x72-wc87-c63c.json +++ b/advisories/unreviewed/2022/04/GHSA-3x72-wc87-c63c/GHSA-3x72-wc87-c63c.json @@ -7,12 +7,8 @@ "CVE-2002-0591" ], "details": "Directory traversal vulnerability in AOL Instant Messenger (AIM) 4.8 beta and earlier allows remote attackers to create arbitrary files and execute commands via a Direct Connection with an IMG tag with a SRC attribute that specifies the target filename.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3xw9-3h5v-3873/GHSA-3xw9-3h5v-3873.json b/advisories/unreviewed/2022/04/GHSA-3xw9-3h5v-3873/GHSA-3xw9-3h5v-3873.json index fdfde301800..6e911ff4ab4 100644 --- a/advisories/unreviewed/2022/04/GHSA-3xw9-3h5v-3873/GHSA-3xw9-3h5v-3873.json +++ b/advisories/unreviewed/2022/04/GHSA-3xw9-3h5v-3873/GHSA-3xw9-3h5v-3873.json @@ -7,12 +7,8 @@ "CVE-2002-0419" ], "details": "Information leaks in IIS 4 through 5.1 allow remote attackers to obtain potentially sensitive information or more easily conduct brute force attacks via responses from the server in which (2) in certain configurations, the server IP address is provided as the realm for Basic authentication, which could reveal real IP addresses that were obscured by NAT, or (3) when NTLM authentication is used, the NetBIOS name of the server and its Windows NT domain are revealed in response to an Authorization request. NOTE: this entry originally contained a vector (1) in which the server reveals whether it supports Basic or NTLM authentication through 401 Access Denied error messages. CVE has REJECTED this vector; it is not a vulnerability because the information is already available through legitimate use, since authentication cannot proceed without specifying a scheme that is supported by both the client and the server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-426m-724x-9cm6/GHSA-426m-724x-9cm6.json b/advisories/unreviewed/2022/04/GHSA-426m-724x-9cm6/GHSA-426m-724x-9cm6.json index 44dabc7c78c..81a0cb98544 100644 --- a/advisories/unreviewed/2022/04/GHSA-426m-724x-9cm6/GHSA-426m-724x-9cm6.json +++ b/advisories/unreviewed/2022/04/GHSA-426m-724x-9cm6/GHSA-426m-724x-9cm6.json @@ -7,12 +7,8 @@ "CVE-2002-0587" ], "details": "Buffer overflow in Ns_PdLog function for the external database driver proxy daemon library (libnspd.a) of AOLServer 3.0 through 3.4.2 allows remote attackers to cause a denial of service or execute arbitrary code via the Error or Notice parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-42fx-hhpm-53j2/GHSA-42fx-hhpm-53j2.json b/advisories/unreviewed/2022/04/GHSA-42fx-hhpm-53j2/GHSA-42fx-hhpm-53j2.json index 074cccb5aa0..e28b34fc2fa 100644 --- a/advisories/unreviewed/2022/04/GHSA-42fx-hhpm-53j2/GHSA-42fx-hhpm-53j2.json +++ b/advisories/unreviewed/2022/04/GHSA-42fx-hhpm-53j2/GHSA-42fx-hhpm-53j2.json @@ -7,12 +7,8 @@ "CVE-2002-0360" ], "details": "Buffer overflow in Sun AnswerBook2 1.4 through 1.4.3 allows remote attackers to execute arbitrary code via a long filename argument to the gettransbitmap CGI program.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-46cq-pr73-97mg/GHSA-46cq-pr73-97mg.json b/advisories/unreviewed/2022/04/GHSA-46cq-pr73-97mg/GHSA-46cq-pr73-97mg.json index 0be34698380..9946136dfbf 100644 --- a/advisories/unreviewed/2022/04/GHSA-46cq-pr73-97mg/GHSA-46cq-pr73-97mg.json +++ b/advisories/unreviewed/2022/04/GHSA-46cq-pr73-97mg/GHSA-46cq-pr73-97mg.json @@ -7,12 +7,8 @@ "CVE-2002-0294" ], "details": "Alcatel 4400 installs the /chetc/shutdown command with setgid privileges, which allows many different local users to shut down the system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-47f6-f753-phf9/GHSA-47f6-f753-phf9.json b/advisories/unreviewed/2022/04/GHSA-47f6-f753-phf9/GHSA-47f6-f753-phf9.json index 15f20f583d3..bb7b5370f77 100644 --- a/advisories/unreviewed/2022/04/GHSA-47f6-f753-phf9/GHSA-47f6-f753-phf9.json +++ b/advisories/unreviewed/2022/04/GHSA-47f6-f753-phf9/GHSA-47f6-f753-phf9.json @@ -7,12 +7,8 @@ "CVE-2002-0396" ], "details": "The web management server for Red-M 1050 (Bluetooth Access Point) does not use session-based credentials to authenticate users, which allows attackers to connect to the server from the same IP address as a user who has already established a session.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-47xw-xh86-4m2j/GHSA-47xw-xh86-4m2j.json b/advisories/unreviewed/2022/04/GHSA-47xw-xh86-4m2j/GHSA-47xw-xh86-4m2j.json index bea1ca47814..50247b1572b 100644 --- a/advisories/unreviewed/2022/04/GHSA-47xw-xh86-4m2j/GHSA-47xw-xh86-4m2j.json +++ b/advisories/unreviewed/2022/04/GHSA-47xw-xh86-4m2j/GHSA-47xw-xh86-4m2j.json @@ -7,12 +7,8 @@ "CVE-2002-0277" ], "details": "Add2it Mailman Free 1.73 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the list parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-49fm-cm32-q45w/GHSA-49fm-cm32-q45w.json b/advisories/unreviewed/2022/04/GHSA-49fm-cm32-q45w/GHSA-49fm-cm32-q45w.json index 0b05528e62d..3154fa41ef8 100644 --- a/advisories/unreviewed/2022/04/GHSA-49fm-cm32-q45w/GHSA-49fm-cm32-q45w.json +++ b/advisories/unreviewed/2022/04/GHSA-49fm-cm32-q45w/GHSA-49fm-cm32-q45w.json @@ -7,12 +7,8 @@ "CVE-2002-0512" ], "details": "startkde in KDE for Caldera OpenLinux 2.3 through 3.1.1 sets the LD_LIBRARY_PATH environment variable to include the current working directory, which could allow local users to gain privileges of other users running startkde via Trojan horse libraries.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4cff-h659-vp9w/GHSA-4cff-h659-vp9w.json b/advisories/unreviewed/2022/04/GHSA-4cff-h659-vp9w/GHSA-4cff-h659-vp9w.json index 02d8cda5792..38a477c975d 100644 --- a/advisories/unreviewed/2022/04/GHSA-4cff-h659-vp9w/GHSA-4cff-h659-vp9w.json +++ b/advisories/unreviewed/2022/04/GHSA-4cff-h659-vp9w/GHSA-4cff-h659-vp9w.json @@ -7,12 +7,8 @@ "CVE-2002-0480" ], "details": "ISS RealSecure for Nokia devices before IPSO build 6.0.2001.141d is configured to allow a user \"skank\" on a machine \"starscream\" to become a key manager when the \"first time connection\" feature is enabled and before any legitimate administrators have connected, which could allow remote attackers to gain access to the device during installation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4gc3-2mvv-h54m/GHSA-4gc3-2mvv-h54m.json b/advisories/unreviewed/2022/04/GHSA-4gc3-2mvv-h54m/GHSA-4gc3-2mvv-h54m.json index 597473436ed..d394efebb2a 100644 --- a/advisories/unreviewed/2022/04/GHSA-4gc3-2mvv-h54m/GHSA-4gc3-2mvv-h54m.json +++ b/advisories/unreviewed/2022/04/GHSA-4gc3-2mvv-h54m/GHSA-4gc3-2mvv-h54m.json @@ -7,12 +7,8 @@ "CVE-2002-0584" ], "details": "WorkforceROI Xpede 4.1 allows remote attackers to read user timesheets by modifying the TSN ID parameter to the ts_app_process.asp script, which is easily guessable because it is incremented by 1 for each new timesheet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4jm6-vv65-r63r/GHSA-4jm6-vv65-r63r.json b/advisories/unreviewed/2022/04/GHSA-4jm6-vv65-r63r/GHSA-4jm6-vv65-r63r.json index 0c77c8df36b..f68a53f3f78 100644 --- a/advisories/unreviewed/2022/04/GHSA-4jm6-vv65-r63r/GHSA-4jm6-vv65-r63r.json +++ b/advisories/unreviewed/2022/04/GHSA-4jm6-vv65-r63r/GHSA-4jm6-vv65-r63r.json @@ -7,12 +7,8 @@ "CVE-2002-0672" ], "details": "Pingtel xpressa SIP-based voice-over-IP phone 1.2.5 through 1.2.7.4 allows attackers with physical access to restore the phone to factory defaults without authentication via a menu option, which sets the administrator password to null.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4rr3-964q-6xjc/GHSA-4rr3-964q-6xjc.json b/advisories/unreviewed/2022/04/GHSA-4rr3-964q-6xjc/GHSA-4rr3-964q-6xjc.json index b8d5f805300..edb4dc4a133 100644 --- a/advisories/unreviewed/2022/04/GHSA-4rr3-964q-6xjc/GHSA-4rr3-964q-6xjc.json +++ b/advisories/unreviewed/2022/04/GHSA-4rr3-964q-6xjc/GHSA-4rr3-964q-6xjc.json @@ -7,12 +7,8 @@ "CVE-2002-0300" ], "details": "gnujsp 1.0.0 and 1.0.1 allows remote attackers to list directories, read source code of certain scripts, and bypass access restrictions by directly requesting the target file from the gnujsp servlet, which does not work around a limitation of JServ and does not process the requested file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4vf4-9x77-q598/GHSA-4vf4-9x77-q598.json b/advisories/unreviewed/2022/04/GHSA-4vf4-9x77-q598/GHSA-4vf4-9x77-q598.json index 87f63316f84..6e59f909d06 100644 --- a/advisories/unreviewed/2022/04/GHSA-4vf4-9x77-q598/GHSA-4vf4-9x77-q598.json +++ b/advisories/unreviewed/2022/04/GHSA-4vf4-9x77-q598/GHSA-4vf4-9x77-q598.json @@ -7,12 +7,8 @@ "CVE-2002-0377" ], "details": "Gaim 0.57 stores sensitive information in world-readable and group-writable files in the /tmp directory, which allows local users to access MSN web email accounts of other users who run Gaim by reading authentication information from the files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4whv-v2mh-gv8p/GHSA-4whv-v2mh-gv8p.json b/advisories/unreviewed/2022/04/GHSA-4whv-v2mh-gv8p/GHSA-4whv-v2mh-gv8p.json index 0e7a7a937cc..d8ef36c02c9 100644 --- a/advisories/unreviewed/2022/04/GHSA-4whv-v2mh-gv8p/GHSA-4whv-v2mh-gv8p.json +++ b/advisories/unreviewed/2022/04/GHSA-4whv-v2mh-gv8p/GHSA-4whv-v2mh-gv8p.json @@ -7,12 +7,8 @@ "CVE-2002-0421" ], "details": "IIS 4.0 allows local users to bypass the \"User cannot change password\" policy for Windows NT by directly calling .htr password changing programs in the /iisadmpwd directory, including (1) aexp2.htr, (2) aexp2b.htr, (3) aexp3.htr , or (4) aexp4.htr.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-529q-rv2g-9c8j/GHSA-529q-rv2g-9c8j.json b/advisories/unreviewed/2022/04/GHSA-529q-rv2g-9c8j/GHSA-529q-rv2g-9c8j.json index 242a006abe7..9cb1e14cefe 100644 --- a/advisories/unreviewed/2022/04/GHSA-529q-rv2g-9c8j/GHSA-529q-rv2g-9c8j.json +++ b/advisories/unreviewed/2022/04/GHSA-529q-rv2g-9c8j/GHSA-529q-rv2g-9c8j.json @@ -7,12 +7,8 @@ "CVE-2002-0245" ], "details": "Lotus Domino server 5.0.8 with NoBanner enabled allows remote attackers to (1) determine the physical path of the server via a request for a nonexistent file with a .pl (Perl) extension, which leaks the pathname in the error message, or (2) make any request that causes an HTTP 500 error, which leaks the server's version name in the HTTP error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-52mw-m5j6-qc9v/GHSA-52mw-m5j6-qc9v.json b/advisories/unreviewed/2022/04/GHSA-52mw-m5j6-qc9v/GHSA-52mw-m5j6-qc9v.json index b0955f9d1c4..e7b2241b474 100644 --- a/advisories/unreviewed/2022/04/GHSA-52mw-m5j6-qc9v/GHSA-52mw-m5j6-qc9v.json +++ b/advisories/unreviewed/2022/04/GHSA-52mw-m5j6-qc9v/GHSA-52mw-m5j6-qc9v.json @@ -7,12 +7,8 @@ "CVE-2002-0327" ], "details": "Buffer overflow in Century Software TERM allows local users to gain root privileges via a long tty argument to the callin program.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-534r-qr63-67jp/GHSA-534r-qr63-67jp.json b/advisories/unreviewed/2022/04/GHSA-534r-qr63-67jp/GHSA-534r-qr63-67jp.json index abb7c0b1342..4918066ee77 100644 --- a/advisories/unreviewed/2022/04/GHSA-534r-qr63-67jp/GHSA-534r-qr63-67jp.json +++ b/advisories/unreviewed/2022/04/GHSA-534r-qr63-67jp/GHSA-534r-qr63-67jp.json @@ -7,12 +7,8 @@ "CVE-2002-0271" ], "details": "Runtime library in GNU Ada compiler (GNAT) 3.12p through 3.14p allows local users to modify files of other users via a symlink attack on temporary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-53g4-p73c-hmm3/GHSA-53g4-p73c-hmm3.json b/advisories/unreviewed/2022/04/GHSA-53g4-p73c-hmm3/GHSA-53g4-p73c-hmm3.json index f9960069d3e..7c80e02c041 100644 --- a/advisories/unreviewed/2022/04/GHSA-53g4-p73c-hmm3/GHSA-53g4-p73c-hmm3.json +++ b/advisories/unreviewed/2022/04/GHSA-53g4-p73c-hmm3/GHSA-53g4-p73c-hmm3.json @@ -7,12 +7,8 @@ "CVE-2002-0527" ], "details": "Watchguard SOHO firewall before 5.0.35 allows remote attackers to cause a denial of service (crash and reboot) when SOHO forwards a packet with bad IP options.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-53pv-fqqg-33x5/GHSA-53pv-fqqg-33x5.json b/advisories/unreviewed/2022/04/GHSA-53pv-fqqg-33x5/GHSA-53pv-fqqg-33x5.json index 74ddfc3b599..cac787cd061 100644 --- a/advisories/unreviewed/2022/04/GHSA-53pv-fqqg-33x5/GHSA-53pv-fqqg-33x5.json +++ b/advisories/unreviewed/2022/04/GHSA-53pv-fqqg-33x5/GHSA-53pv-fqqg-33x5.json @@ -7,12 +7,8 @@ "CVE-2002-0536" ], "details": "PHPGroupware 0.9.12 and earlier, when running with the magic_quotes_gpc feature disabled, allows remote attackers to compromise the database via a SQL injection attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-56mp-3v3v-cq2j/GHSA-56mp-3v3v-cq2j.json b/advisories/unreviewed/2022/04/GHSA-56mp-3v3v-cq2j/GHSA-56mp-3v3v-cq2j.json index 5401048f5d8..fa915b7b0b9 100644 --- a/advisories/unreviewed/2022/04/GHSA-56mp-3v3v-cq2j/GHSA-56mp-3v3v-cq2j.json +++ b/advisories/unreviewed/2022/04/GHSA-56mp-3v3v-cq2j/GHSA-56mp-3v3v-cq2j.json @@ -7,12 +7,8 @@ "CVE-2002-0318" ], "details": "FreeRADIUS RADIUS server allows remote attackers to cause a denial of service (CPU consumption) via a flood of Access-Request packets.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5c3w-52hp-vj96/GHSA-5c3w-52hp-vj96.json b/advisories/unreviewed/2022/04/GHSA-5c3w-52hp-vj96/GHSA-5c3w-52hp-vj96.json index 735a289db22..0bd07b7d6b1 100644 --- a/advisories/unreviewed/2022/04/GHSA-5c3w-52hp-vj96/GHSA-5c3w-52hp-vj96.json +++ b/advisories/unreviewed/2022/04/GHSA-5c3w-52hp-vj96/GHSA-5c3w-52hp-vj96.json @@ -7,12 +7,8 @@ "CVE-2002-0296" ], "details": "The installation of Tarantella Enterprise 3 allows local users to overwrite arbitrary files via a symlink attack on the \"spinning\" temporary file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5g32-2jx3-gxc8/GHSA-5g32-2jx3-gxc8.json b/advisories/unreviewed/2022/04/GHSA-5g32-2jx3-gxc8/GHSA-5g32-2jx3-gxc8.json index bc81336a75e..a3c78f90291 100644 --- a/advisories/unreviewed/2022/04/GHSA-5g32-2jx3-gxc8/GHSA-5g32-2jx3-gxc8.json +++ b/advisories/unreviewed/2022/04/GHSA-5g32-2jx3-gxc8/GHSA-5g32-2jx3-gxc8.json @@ -7,12 +7,8 @@ "CVE-2002-0350" ], "details": "HP Procurve Switch 4000M running firmware C.08.22 and C.09.09 allows remote attackers to cause a denial of service via a port scan of the management IP address, which disables the telnet service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5gmp-68hx-vw8w/GHSA-5gmp-68hx-vw8w.json b/advisories/unreviewed/2022/04/GHSA-5gmp-68hx-vw8w/GHSA-5gmp-68hx-vw8w.json index 0744d0f8d20..51bd887fab2 100644 --- a/advisories/unreviewed/2022/04/GHSA-5gmp-68hx-vw8w/GHSA-5gmp-68hx-vw8w.json +++ b/advisories/unreviewed/2022/04/GHSA-5gmp-68hx-vw8w/GHSA-5gmp-68hx-vw8w.json @@ -7,12 +7,8 @@ "CVE-2002-0508" ], "details": "wwwisis 3.45 and earlier allows remote attackers to execute arbitrary commands and read files via the parameters (1) prolog or (2) epilog.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5jgh-8rfm-7jj2/GHSA-5jgh-8rfm-7jj2.json b/advisories/unreviewed/2022/04/GHSA-5jgh-8rfm-7jj2/GHSA-5jgh-8rfm-7jj2.json index 195ef607c0b..256404ff4c6 100644 --- a/advisories/unreviewed/2022/04/GHSA-5jgh-8rfm-7jj2/GHSA-5jgh-8rfm-7jj2.json +++ b/advisories/unreviewed/2022/04/GHSA-5jgh-8rfm-7jj2/GHSA-5jgh-8rfm-7jj2.json @@ -7,12 +7,8 @@ "CVE-2002-0432" ], "details": "Buffer overflow in (1) lprintf and (2) cprintf in sysdep.c of Citadel/UX 5.90 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via attacks such as a long HELO command to the SMTP server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5mhj-jx7f-cwjm/GHSA-5mhj-jx7f-cwjm.json b/advisories/unreviewed/2022/04/GHSA-5mhj-jx7f-cwjm/GHSA-5mhj-jx7f-cwjm.json index 9a195643120..0500337450e 100644 --- a/advisories/unreviewed/2022/04/GHSA-5mhj-jx7f-cwjm/GHSA-5mhj-jx7f-cwjm.json +++ b/advisories/unreviewed/2022/04/GHSA-5mhj-jx7f-cwjm/GHSA-5mhj-jx7f-cwjm.json @@ -7,12 +7,8 @@ "CVE-2002-0280" ], "details": "Buffer overflow in CodeBlue 4 and earlier, and possibly other versions, allows remote attackers to execute arbitrary code via a long string in an SMTP reply.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5phg-5f5h-jcrm/GHSA-5phg-5f5h-jcrm.json b/advisories/unreviewed/2022/04/GHSA-5phg-5f5h-jcrm/GHSA-5phg-5f5h-jcrm.json index 9be7590ff51..655555be40e 100644 --- a/advisories/unreviewed/2022/04/GHSA-5phg-5f5h-jcrm/GHSA-5phg-5f5h-jcrm.json +++ b/advisories/unreviewed/2022/04/GHSA-5phg-5f5h-jcrm/GHSA-5phg-5f5h-jcrm.json @@ -7,12 +7,8 @@ "CVE-2002-0496" ], "details": "The HTTP server for SouthWest Talker server 1.0.0 allows remote attackers to cause a denial of service (server crash) via a malformed URL to port 5002.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5pwc-76rr-qpjq/GHSA-5pwc-76rr-qpjq.json b/advisories/unreviewed/2022/04/GHSA-5pwc-76rr-qpjq/GHSA-5pwc-76rr-qpjq.json index 1b30f4d87e5..bf8e254fbab 100644 --- a/advisories/unreviewed/2022/04/GHSA-5pwc-76rr-qpjq/GHSA-5pwc-76rr-qpjq.json +++ b/advisories/unreviewed/2022/04/GHSA-5pwc-76rr-qpjq/GHSA-5pwc-76rr-qpjq.json @@ -7,12 +7,8 @@ "CVE-2002-0326" ], "details": "Cross-site scripting vulnerability in BadBlue before 1.6.1 beta allows remote attackers to execute arbitrary script and possibly additional commands via a URL that contains Javascript.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5q32-m2cg-3vh8/GHSA-5q32-m2cg-3vh8.json b/advisories/unreviewed/2022/04/GHSA-5q32-m2cg-3vh8/GHSA-5q32-m2cg-3vh8.json index 14f35ced01f..c4841068323 100644 --- a/advisories/unreviewed/2022/04/GHSA-5q32-m2cg-3vh8/GHSA-5q32-m2cg-3vh8.json +++ b/advisories/unreviewed/2022/04/GHSA-5q32-m2cg-3vh8/GHSA-5q32-m2cg-3vh8.json @@ -7,12 +7,8 @@ "CVE-2002-0253" ], "details": "PHP, when not configured with the \"display_errors = Off\" setting in php.ini, allows remote attackers to obtain the physical path for an include file via a trailing slash in a request to a directly accessible PHP program, which modifies the base path, causes the include directive to fail, and produces an error message that contains the path.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5r7f-6p5r-6jrq/GHSA-5r7f-6p5r-6jrq.json b/advisories/unreviewed/2022/04/GHSA-5r7f-6p5r-6jrq/GHSA-5r7f-6p5r-6jrq.json index 09f43561c8f..60e242f58f9 100644 --- a/advisories/unreviewed/2022/04/GHSA-5r7f-6p5r-6jrq/GHSA-5r7f-6p5r-6jrq.json +++ b/advisories/unreviewed/2022/04/GHSA-5r7f-6p5r-6jrq/GHSA-5r7f-6p5r-6jrq.json @@ -7,12 +7,8 @@ "CVE-2002-0323" ], "details": "comment2.jse in ScriptEase:WebServer allows remote attackers to read arbitrary files by specifying the target file as an argument in the URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5rgm-h782-vfcv/GHSA-5rgm-h782-vfcv.json b/advisories/unreviewed/2022/04/GHSA-5rgm-h782-vfcv/GHSA-5rgm-h782-vfcv.json index bcb5e0bfe80..d4f7b13c2f8 100644 --- a/advisories/unreviewed/2022/04/GHSA-5rgm-h782-vfcv/GHSA-5rgm-h782-vfcv.json +++ b/advisories/unreviewed/2022/04/GHSA-5rgm-h782-vfcv/GHSA-5rgm-h782-vfcv.json @@ -7,12 +7,8 @@ "CVE-2002-0308" ], "details": "admin.asp in AdMentor 2.11 allows remote attackers to bypass authentication and gain privileges via a SQL injection attack on the Login and Password arguments.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5v65-cw5f-3jfp/GHSA-5v65-cw5f-3jfp.json b/advisories/unreviewed/2022/04/GHSA-5v65-cw5f-3jfp/GHSA-5v65-cw5f-3jfp.json index f63ff5e5761..9a4a5a74057 100644 --- a/advisories/unreviewed/2022/04/GHSA-5v65-cw5f-3jfp/GHSA-5v65-cw5f-3jfp.json +++ b/advisories/unreviewed/2022/04/GHSA-5v65-cw5f-3jfp/GHSA-5v65-cw5f-3jfp.json @@ -7,12 +7,8 @@ "CVE-2002-0500" ], "details": "Internet Explorer 5.0 through 6.0 allows remote attackers to determine the existence of files on the client via an IMG tag with a dynsrc property that references the target file, which sets certain elements of the image object such as file size.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5wv9-2mch-5285/GHSA-5wv9-2mch-5285.json b/advisories/unreviewed/2022/04/GHSA-5wv9-2mch-5285/GHSA-5wv9-2mch-5285.json index 6bdc9161dd9..20c8863fcc9 100644 --- a/advisories/unreviewed/2022/04/GHSA-5wv9-2mch-5285/GHSA-5wv9-2mch-5285.json +++ b/advisories/unreviewed/2022/04/GHSA-5wv9-2mch-5285/GHSA-5wv9-2mch-5285.json @@ -7,12 +7,8 @@ "CVE-2002-0431" ], "details": "XTux allows remote attackers to cause a denial of service (CPU consumption) via random inputs in the initial connection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5x4p-p3w3-jxvm/GHSA-5x4p-p3w3-jxvm.json b/advisories/unreviewed/2022/04/GHSA-5x4p-p3w3-jxvm/GHSA-5x4p-p3w3-jxvm.json index 7a23abfa3bf..d00c4ed2bd8 100644 --- a/advisories/unreviewed/2022/04/GHSA-5x4p-p3w3-jxvm/GHSA-5x4p-p3w3-jxvm.json +++ b/advisories/unreviewed/2022/04/GHSA-5x4p-p3w3-jxvm/GHSA-5x4p-p3w3-jxvm.json @@ -7,12 +7,8 @@ "CVE-2002-0416" ], "details": "Buffer overflow in SH39 MailServer 1.21 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via a long command to the SMTP port.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-62mf-2875-2hw3/GHSA-62mf-2875-2hw3.json b/advisories/unreviewed/2022/04/GHSA-62mf-2875-2hw3/GHSA-62mf-2875-2hw3.json index 940cd1aa5be..a60bb01e30d 100644 --- a/advisories/unreviewed/2022/04/GHSA-62mf-2875-2hw3/GHSA-62mf-2875-2hw3.json +++ b/advisories/unreviewed/2022/04/GHSA-62mf-2875-2hw3/GHSA-62mf-2875-2hw3.json @@ -7,12 +7,8 @@ "CVE-2002-0267" ], "details": "preferences.php in Simple Internet Publishing System (SIPS) before 0.3.1 allows remote attackers to gain administrative privileges via a linebreak in the \"theme\" field followed by the Status::admin command, which causes the Status line to be entered into the password file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-65gj-g89w-f7v5/GHSA-65gj-g89w-f7v5.json b/advisories/unreviewed/2022/04/GHSA-65gj-g89w-f7v5/GHSA-65gj-g89w-f7v5.json index ce15b415dd7..35529e02b60 100644 --- a/advisories/unreviewed/2022/04/GHSA-65gj-g89w-f7v5/GHSA-65gj-g89w-f7v5.json +++ b/advisories/unreviewed/2022/04/GHSA-65gj-g89w-f7v5/GHSA-65gj-g89w-f7v5.json @@ -7,12 +7,8 @@ "CVE-2002-0272" ], "details": "Buffer overflows in mpg321 before 0.2.9 allows local and possibly remote attackers to execute arbitrary code via a long URL to (1) a command line option, (2) an HTTP request, or (3) an FTP request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-65wf-8jvq-4pf5/GHSA-65wf-8jvq-4pf5.json b/advisories/unreviewed/2022/04/GHSA-65wf-8jvq-4pf5/GHSA-65wf-8jvq-4pf5.json index 77907e8e8e4..ff7cdbb8e5a 100644 --- a/advisories/unreviewed/2022/04/GHSA-65wf-8jvq-4pf5/GHSA-65wf-8jvq-4pf5.json +++ b/advisories/unreviewed/2022/04/GHSA-65wf-8jvq-4pf5/GHSA-65wf-8jvq-4pf5.json @@ -7,12 +7,8 @@ "CVE-2002-0586" ], "details": "Format string vulnerability in Ns_PdLog function for the external database driver proxy daemon library (libnspd.a) of AOLServer 3.0 through 3.4.2 allows remote attackers to execute arbitrary code via the Error or Notice parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-672q-qj2g-5w3r/GHSA-672q-qj2g-5w3r.json b/advisories/unreviewed/2022/04/GHSA-672q-qj2g-5w3r/GHSA-672q-qj2g-5w3r.json index 1c8092891a0..a2abeba7bbe 100644 --- a/advisories/unreviewed/2022/04/GHSA-672q-qj2g-5w3r/GHSA-672q-qj2g-5w3r.json +++ b/advisories/unreviewed/2022/04/GHSA-672q-qj2g-5w3r/GHSA-672q-qj2g-5w3r.json @@ -7,12 +7,8 @@ "CVE-2002-0295" ], "details": "Alcatel OmniPCX 4400 installs files with world-writable permissions, which allows local users to reconfigure the system and possibly gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-67mg-qfr6-3jmx/GHSA-67mg-qfr6-3jmx.json b/advisories/unreviewed/2022/04/GHSA-67mg-qfr6-3jmx/GHSA-67mg-qfr6-3jmx.json index d5548ff5237..308e0538f36 100644 --- a/advisories/unreviewed/2022/04/GHSA-67mg-qfr6-3jmx/GHSA-67mg-qfr6-3jmx.json +++ b/advisories/unreviewed/2022/04/GHSA-67mg-qfr6-3jmx/GHSA-67mg-qfr6-3jmx.json @@ -7,12 +7,8 @@ "CVE-2002-0564" ], "details": "PL/SQL module 3.0.9.8.2 in Oracle 9i Application Server 1.0.2.x allows remote attackers to bypass authentication for a Database Access Descriptor (DAD) by modifying the URL to reference an alternate DAD that already has valid credentials.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6882-r4ww-m87g/GHSA-6882-r4ww-m87g.json b/advisories/unreviewed/2022/04/GHSA-6882-r4ww-m87g/GHSA-6882-r4ww-m87g.json index b6ce68d4bdd..d51a5a3c49d 100644 --- a/advisories/unreviewed/2022/04/GHSA-6882-r4ww-m87g/GHSA-6882-r4ww-m87g.json +++ b/advisories/unreviewed/2022/04/GHSA-6882-r4ww-m87g/GHSA-6882-r4ww-m87g.json @@ -7,12 +7,8 @@ "CVE-2002-0293" ], "details": "FTP service in Alcatel OmniPCX 4400 allows the \"halt\" user to gain root privileges by modifying root's .profile file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-68r8-pmqw-v234/GHSA-68r8-pmqw-v234.json b/advisories/unreviewed/2022/04/GHSA-68r8-pmqw-v234/GHSA-68r8-pmqw-v234.json index 4310dd449da..20d6986ae0e 100644 --- a/advisories/unreviewed/2022/04/GHSA-68r8-pmqw-v234/GHSA-68r8-pmqw-v234.json +++ b/advisories/unreviewed/2022/04/GHSA-68r8-pmqw-v234/GHSA-68r8-pmqw-v234.json @@ -7,12 +7,8 @@ "CVE-2002-0250" ], "details": "Web configuration utility in HP AdvanceStack hubs J3200A through J3210A with firmware version A.03.07 and earlier, allows unauthorized users to bypass authentication via a direct HTTP request to the web_access.html file, which allows the user to change the switch's configuration and modify the administrator password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6953-qvpj-v7v8/GHSA-6953-qvpj-v7v8.json b/advisories/unreviewed/2022/04/GHSA-6953-qvpj-v7v8/GHSA-6953-qvpj-v7v8.json index 172ae0573ab..fb4daaeaa22 100644 --- a/advisories/unreviewed/2022/04/GHSA-6953-qvpj-v7v8/GHSA-6953-qvpj-v7v8.json +++ b/advisories/unreviewed/2022/04/GHSA-6953-qvpj-v7v8/GHSA-6953-qvpj-v7v8.json @@ -7,12 +7,8 @@ "CVE-2002-0556" ], "details": "Directory traversal vulnerability in Quik-Serv HTTP server 1.1B allows remote attackers to read arbitrary files via a .. (dot dot) in a URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6chq-r3m4-693f/GHSA-6chq-r3m4-693f.json b/advisories/unreviewed/2022/04/GHSA-6chq-r3m4-693f/GHSA-6chq-r3m4-693f.json index dc2f4dbbfcd..cdf1e943f24 100644 --- a/advisories/unreviewed/2022/04/GHSA-6chq-r3m4-693f/GHSA-6chq-r3m4-693f.json +++ b/advisories/unreviewed/2022/04/GHSA-6chq-r3m4-693f/GHSA-6chq-r3m4-693f.json @@ -7,12 +7,8 @@ "CVE-2002-0248" ], "details": "wmtv 0.6.5 and earlier allows local users to modify arbitrary files via a symlink attack on a configuration file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6fc8-j72r-52mx/GHSA-6fc8-j72r-52mx.json b/advisories/unreviewed/2022/04/GHSA-6fc8-j72r-52mx/GHSA-6fc8-j72r-52mx.json index 18566cced98..cf1814d24f8 100644 --- a/advisories/unreviewed/2022/04/GHSA-6fc8-j72r-52mx/GHSA-6fc8-j72r-52mx.json +++ b/advisories/unreviewed/2022/04/GHSA-6fc8-j72r-52mx/GHSA-6fc8-j72r-52mx.json @@ -7,12 +7,8 @@ "CVE-2002-0466" ], "details": "Hosting Controller 1.4.1 and earlier allows remote attackers to browse arbitrary directories via a full C: style pathname in the filepath arguments to (1) Statsbrowse.asp, (2) servubrowse.asp, (3) browsedisk.asp, (4) browsewebalizerexe.asp, or (5) sqlbrowse.asp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6jg6-9vx2-hv9x/GHSA-6jg6-9vx2-hv9x.json b/advisories/unreviewed/2022/04/GHSA-6jg6-9vx2-hv9x/GHSA-6jg6-9vx2-hv9x.json index a345c76c351..e2cc48605c7 100644 --- a/advisories/unreviewed/2022/04/GHSA-6jg6-9vx2-hv9x/GHSA-6jg6-9vx2-hv9x.json +++ b/advisories/unreviewed/2022/04/GHSA-6jg6-9vx2-hv9x/GHSA-6jg6-9vx2-hv9x.json @@ -7,12 +7,8 @@ "CVE-2002-0299" ], "details": "CNet CatchUp before 1.3.1 allows attackers to execute arbitrary code via a .RVP file that creates a file with an arbitrary extension (such as .BAT), which is executed during a scan.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6jwm-f45w-3fjj/GHSA-6jwm-f45w-3fjj.json b/advisories/unreviewed/2022/04/GHSA-6jwm-f45w-3fjj/GHSA-6jwm-f45w-3fjj.json index 12d946b6f70..c1e40602272 100644 --- a/advisories/unreviewed/2022/04/GHSA-6jwm-f45w-3fjj/GHSA-6jwm-f45w-3fjj.json +++ b/advisories/unreviewed/2022/04/GHSA-6jwm-f45w-3fjj/GHSA-6jwm-f45w-3fjj.json @@ -7,12 +7,8 @@ "CVE-2002-0503" ], "details": "Directory traversal vulnerability in boilerplate.asp for Citrix NFuse 1.5 allows remote authenticated users to read arbitrary files via a .. (dot dot) in the NFuse_Template parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6pmq-fxh5-vhg5/GHSA-6pmq-fxh5-vhg5.json b/advisories/unreviewed/2022/04/GHSA-6pmq-fxh5-vhg5/GHSA-6pmq-fxh5-vhg5.json index 23625432e9c..18b72faa2ef 100644 --- a/advisories/unreviewed/2022/04/GHSA-6pmq-fxh5-vhg5/GHSA-6pmq-fxh5-vhg5.json +++ b/advisories/unreviewed/2022/04/GHSA-6pmq-fxh5-vhg5/GHSA-6pmq-fxh5-vhg5.json @@ -7,12 +7,8 @@ "CVE-2002-0436" ], "details": "sscd_suncourier.pl CGI script in the Sun Sunsolve CD pack allows remote attackers to execute arbitrary commands via shell metacharacters in the email address parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6rf3-jjwc-2qhm/GHSA-6rf3-jjwc-2qhm.json b/advisories/unreviewed/2022/04/GHSA-6rf3-jjwc-2qhm/GHSA-6rf3-jjwc-2qhm.json index 27326d4bccb..6ba85104f5c 100644 --- a/advisories/unreviewed/2022/04/GHSA-6rf3-jjwc-2qhm/GHSA-6rf3-jjwc-2qhm.json +++ b/advisories/unreviewed/2022/04/GHSA-6rf3-jjwc-2qhm/GHSA-6rf3-jjwc-2qhm.json @@ -7,12 +7,8 @@ "CVE-2002-0547" ], "details": "Buffer overflow in the mini-browser for Winamp 2.79 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string in the title field of an ID3v2 tag.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6rpp-8ww6-jv9v/GHSA-6rpp-8ww6-jv9v.json b/advisories/unreviewed/2022/04/GHSA-6rpp-8ww6-jv9v/GHSA-6rpp-8ww6-jv9v.json index c845ea07c2a..3c618757b48 100644 --- a/advisories/unreviewed/2022/04/GHSA-6rpp-8ww6-jv9v/GHSA-6rpp-8ww6-jv9v.json +++ b/advisories/unreviewed/2022/04/GHSA-6rpp-8ww6-jv9v/GHSA-6rpp-8ww6-jv9v.json @@ -7,12 +7,8 @@ "CVE-2002-0453" ], "details": "The account lockout capability in Oblix NetPoint 5.2 and earlier only locks out users once for the specified lockout period, which makes it easier for remote attackers to conduct brute force password guessing by waiting until the lockout period ends, then guessing passwords without being locked out again.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6v53-jmrj-p2m3/GHSA-6v53-jmrj-p2m3.json b/advisories/unreviewed/2022/04/GHSA-6v53-jmrj-p2m3/GHSA-6v53-jmrj-p2m3.json index a3b92a95a19..a39829a7009 100644 --- a/advisories/unreviewed/2022/04/GHSA-6v53-jmrj-p2m3/GHSA-6v53-jmrj-p2m3.json +++ b/advisories/unreviewed/2022/04/GHSA-6v53-jmrj-p2m3/GHSA-6v53-jmrj-p2m3.json @@ -7,12 +7,8 @@ "CVE-2002-0349" ], "details": "Tiny Personal Firewall (TPF) 2.0.15, under certain configurations, will pop up an alert to the system even when the screen is locked, which could allow an attacker with physical access to the machine to hide activities or bypass access restrictions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-72r4-pqjh-3mc3/GHSA-72r4-pqjh-3mc3.json b/advisories/unreviewed/2022/04/GHSA-72r4-pqjh-3mc3/GHSA-72r4-pqjh-3mc3.json index d5e997e398c..a371750210a 100644 --- a/advisories/unreviewed/2022/04/GHSA-72r4-pqjh-3mc3/GHSA-72r4-pqjh-3mc3.json +++ b/advisories/unreviewed/2022/04/GHSA-72r4-pqjh-3mc3/GHSA-72r4-pqjh-3mc3.json @@ -7,12 +7,8 @@ "CVE-2002-0571" ], "details": "Oracle Oracle9i database server 9.0.1.x allows local users to access restricted data via a SQL query using ANSI outer join syntax.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-749h-j9gq-g5p6/GHSA-749h-j9gq-g5p6.json b/advisories/unreviewed/2022/04/GHSA-749h-j9gq-g5p6/GHSA-749h-j9gq-g5p6.json index 36f6fd1c0e6..a599ff6025a 100644 --- a/advisories/unreviewed/2022/04/GHSA-749h-j9gq-g5p6/GHSA-749h-j9gq-g5p6.json +++ b/advisories/unreviewed/2022/04/GHSA-749h-j9gq-g5p6/GHSA-749h-j9gq-g5p6.json @@ -7,12 +7,8 @@ "CVE-2002-0307" ], "details": "Directory traversal vulnerability in ans.pl in Avenger's News System (ANS) 2.11 and earlier allows remote attackers to determine the existence of arbitrary files or execute any Perl program on the system via a .. (dot dot) in the p parameter, which reads the target file and attempts to execute the line using Perl's eval function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-74g6-v8qc-cm8w/GHSA-74g6-v8qc-cm8w.json b/advisories/unreviewed/2022/04/GHSA-74g6-v8qc-cm8w/GHSA-74g6-v8qc-cm8w.json index 59f62017bed..64c5924742b 100644 --- a/advisories/unreviewed/2022/04/GHSA-74g6-v8qc-cm8w/GHSA-74g6-v8qc-cm8w.json +++ b/advisories/unreviewed/2022/04/GHSA-74g6-v8qc-cm8w/GHSA-74g6-v8qc-cm8w.json @@ -7,12 +7,8 @@ "CVE-2002-0448" ], "details": "Xerver Free Web Server 2.10 and earlier allows remote attackers to cause a denial of service (crash) via an HTTP request that contains many \"C:/\" sequences.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-773h-c955-633m/GHSA-773h-c955-633m.json b/advisories/unreviewed/2022/04/GHSA-773h-c955-633m/GHSA-773h-c955-633m.json index 7fabac4a44f..881bc070749 100644 --- a/advisories/unreviewed/2022/04/GHSA-773h-c955-633m/GHSA-773h-c955-633m.json +++ b/advisories/unreviewed/2022/04/GHSA-773h-c955-633m/GHSA-773h-c955-633m.json @@ -7,12 +7,8 @@ "CVE-2002-0269" ], "details": "Internet Explorer 5.x and 6 interprets an object as an HTML document even when its MIME Content-Type is text/plain, which could allow remote attackers to execute arbitrary script in documents that the user does not expect, possibly through web applications that use a text/plain type to prevent cross-site scripting attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-78vm-jx2w-99gw/GHSA-78vm-jx2w-99gw.json b/advisories/unreviewed/2022/04/GHSA-78vm-jx2w-99gw/GHSA-78vm-jx2w-99gw.json index e0ac9c09cca..726a3e93d5d 100644 --- a/advisories/unreviewed/2022/04/GHSA-78vm-jx2w-99gw/GHSA-78vm-jx2w-99gw.json +++ b/advisories/unreviewed/2022/04/GHSA-78vm-jx2w-99gw/GHSA-78vm-jx2w-99gw.json @@ -7,12 +7,8 @@ "CVE-2002-0337" ], "details": "RealPlayer 8 allows remote attackers to cause a denial of service (CPU utilization) via malformed .mp3 files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-79fx-7vv8-9hcw/GHSA-79fx-7vv8-9hcw.json b/advisories/unreviewed/2022/04/GHSA-79fx-7vv8-9hcw/GHSA-79fx-7vv8-9hcw.json index dbc9ac79fa0..3ae89e876cb 100644 --- a/advisories/unreviewed/2022/04/GHSA-79fx-7vv8-9hcw/GHSA-79fx-7vv8-9hcw.json +++ b/advisories/unreviewed/2022/04/GHSA-79fx-7vv8-9hcw/GHSA-79fx-7vv8-9hcw.json @@ -7,12 +7,8 @@ "CVE-2002-0312" ], "details": "Directory traversal vulnerability in Essentia Web Server 2.1 allows remote attackers to read arbitrary files via a .. (dot dot) in a URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7cwr-wh5p-wr26/GHSA-7cwr-wh5p-wr26.json b/advisories/unreviewed/2022/04/GHSA-7cwr-wh5p-wr26/GHSA-7cwr-wh5p-wr26.json index 36f288e2268..9d2d37d11a3 100644 --- a/advisories/unreviewed/2022/04/GHSA-7cwr-wh5p-wr26/GHSA-7cwr-wh5p-wr26.json +++ b/advisories/unreviewed/2022/04/GHSA-7cwr-wh5p-wr26/GHSA-7cwr-wh5p-wr26.json @@ -7,12 +7,8 @@ "CVE-2002-0451" ], "details": "filemanager_forms.php in PHProjekt 3.1 and 3.1a allows remote attackers to execute arbitrary PHP code by specifying the URL to the code in the lib_path parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7fw3-g442-p9w4/GHSA-7fw3-g442-p9w4.json b/advisories/unreviewed/2022/04/GHSA-7fw3-g442-p9w4/GHSA-7fw3-g442-p9w4.json index b539aa3ba8e..190ce9fc6a2 100644 --- a/advisories/unreviewed/2022/04/GHSA-7fw3-g442-p9w4/GHSA-7fw3-g442-p9w4.json +++ b/advisories/unreviewed/2022/04/GHSA-7fw3-g442-p9w4/GHSA-7fw3-g442-p9w4.json @@ -7,12 +7,8 @@ "CVE-2002-0420" ], "details": "Vulnerability in PureTLS before 0.9b2 related to injection attacks, which could possibly allow remote attackers to corrupt or hijack user sessions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7hpq-229x-2796/GHSA-7hpq-229x-2796.json b/advisories/unreviewed/2022/04/GHSA-7hpq-229x-2796/GHSA-7hpq-229x-2796.json index 652f84511fe..69b73d28f89 100644 --- a/advisories/unreviewed/2022/04/GHSA-7hpq-229x-2796/GHSA-7hpq-229x-2796.json +++ b/advisories/unreviewed/2022/04/GHSA-7hpq-229x-2796/GHSA-7hpq-229x-2796.json @@ -7,12 +7,8 @@ "CVE-2002-0576" ], "details": "ColdFusion 5.0 and earlier on Windows systems allows remote attackers to determine the absolute pathname of .cfm or .dbm files via an HTTP request that contains an MS-DOS device name such as NUL, which leaks the pathname in an error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7j57-vrgm-pf2m/GHSA-7j57-vrgm-pf2m.json b/advisories/unreviewed/2022/04/GHSA-7j57-vrgm-pf2m/GHSA-7j57-vrgm-pf2m.json index 7cd14f5284e..1648cc6f1e4 100644 --- a/advisories/unreviewed/2022/04/GHSA-7j57-vrgm-pf2m/GHSA-7j57-vrgm-pf2m.json +++ b/advisories/unreviewed/2022/04/GHSA-7j57-vrgm-pf2m/GHSA-7j57-vrgm-pf2m.json @@ -7,12 +7,8 @@ "CVE-2002-0284" ], "details": "Winamp 2.78 and 2.77, when opening a wma file that requires a license, sends the full path of the Temporary Internet Files directory to the web page that is processing the license, which could allow malicious web servers to obtain the pathname.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7jfp-7w7f-mfcm/GHSA-7jfp-7w7f-mfcm.json b/advisories/unreviewed/2022/04/GHSA-7jfp-7w7f-mfcm/GHSA-7jfp-7w7f-mfcm.json index 5e7a334425c..9dabdb84064 100644 --- a/advisories/unreviewed/2022/04/GHSA-7jfp-7w7f-mfcm/GHSA-7jfp-7w7f-mfcm.json +++ b/advisories/unreviewed/2022/04/GHSA-7jfp-7w7f-mfcm/GHSA-7jfp-7w7f-mfcm.json @@ -7,12 +7,8 @@ "CVE-2002-0242" ], "details": "Cross-site scripting vulnerability in Internet Explorer 6 earlier allows remote attackers to execute arbitrary script via an Extended HTML Form, whose output from the remote server is not properly cleansed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7mc3-7vfg-q23p/GHSA-7mc3-7vfg-q23p.json b/advisories/unreviewed/2022/04/GHSA-7mc3-7vfg-q23p/GHSA-7mc3-7vfg-q23p.json index 3dc169e32dc..fdd4c9f3f9a 100644 --- a/advisories/unreviewed/2022/04/GHSA-7mc3-7vfg-q23p/GHSA-7mc3-7vfg-q23p.json +++ b/advisories/unreviewed/2022/04/GHSA-7mc3-7vfg-q23p/GHSA-7mc3-7vfg-q23p.json @@ -7,12 +7,8 @@ "CVE-2002-0346" ], "details": "Cross-site scripting vulnerability in Cobalt RAQ 4 allows remote attackers to execute arbitrary script as other Cobalt users via Javascript in a URL to (1) service.cgi or (2) alert.cgi.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7mrw-2pjj-rfq6/GHSA-7mrw-2pjj-rfq6.json b/advisories/unreviewed/2022/04/GHSA-7mrw-2pjj-rfq6/GHSA-7mrw-2pjj-rfq6.json index 1d0dbb0f28d..a6ae43a9fbf 100644 --- a/advisories/unreviewed/2022/04/GHSA-7mrw-2pjj-rfq6/GHSA-7mrw-2pjj-rfq6.json +++ b/advisories/unreviewed/2022/04/GHSA-7mrw-2pjj-rfq6/GHSA-7mrw-2pjj-rfq6.json @@ -7,12 +7,8 @@ "CVE-2002-0533" ], "details": "phpBB 1.4.4 and earlier with BBcode allows remote attackers to cause a denial of service (CPU consumption) and corrupt the database via null \\0 characters within [code] tags.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7qgm-xx5m-g23r/GHSA-7qgm-xx5m-g23r.json b/advisories/unreviewed/2022/04/GHSA-7qgm-xx5m-g23r/GHSA-7qgm-xx5m-g23r.json index 6cb6a2a77d6..cd6de4a667e 100644 --- a/advisories/unreviewed/2022/04/GHSA-7qgm-xx5m-g23r/GHSA-7qgm-xx5m-g23r.json +++ b/advisories/unreviewed/2022/04/GHSA-7qgm-xx5m-g23r/GHSA-7qgm-xx5m-g23r.json @@ -7,12 +7,8 @@ "CVE-2002-0552" ], "details": "Multiple buffer overflows in Melange Chat server 2.02 allow remote or local attackers to cause a denial of service (crash) and possibly execute arbitrary code via (1) a long argument in the /yell command, (2) long lines in the /etc/melange.conf configuration file, (3) long file names, or possibly other attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7rf7-f36g-27fc/GHSA-7rf7-f36g-27fc.json b/advisories/unreviewed/2022/04/GHSA-7rf7-f36g-27fc/GHSA-7rf7-f36g-27fc.json index 57a9de6612a..4826941e191 100644 --- a/advisories/unreviewed/2022/04/GHSA-7rf7-f36g-27fc/GHSA-7rf7-f36g-27fc.json +++ b/advisories/unreviewed/2022/04/GHSA-7rf7-f36g-27fc/GHSA-7rf7-f36g-27fc.json @@ -7,12 +7,8 @@ "CVE-2002-0526" ], "details": "Vulnerability in (1) inews or (2) rnews for INN 2.2.3 and earlier, related to insecure open() calls.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7xmx-m2j6-mfq9/GHSA-7xmx-m2j6-mfq9.json b/advisories/unreviewed/2022/04/GHSA-7xmx-m2j6-mfq9/GHSA-7xmx-m2j6-mfq9.json index 6497f7e2560..d1a983a7cca 100644 --- a/advisories/unreviewed/2022/04/GHSA-7xmx-m2j6-mfq9/GHSA-7xmx-m2j6-mfq9.json +++ b/advisories/unreviewed/2022/04/GHSA-7xmx-m2j6-mfq9/GHSA-7xmx-m2j6-mfq9.json @@ -7,12 +7,8 @@ "CVE-2002-0247" ], "details": "Buffer overflows in wmtv 0.6.5 and earlier may allow local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8422-qvqx-f423/GHSA-8422-qvqx-f423.json b/advisories/unreviewed/2022/04/GHSA-8422-qvqx-f423/GHSA-8422-qvqx-f423.json index ec59025f9d4..e0bfcf5386a 100644 --- a/advisories/unreviewed/2022/04/GHSA-8422-qvqx-f423/GHSA-8422-qvqx-f423.json +++ b/advisories/unreviewed/2022/04/GHSA-8422-qvqx-f423/GHSA-8422-qvqx-f423.json @@ -7,12 +7,8 @@ "CVE-2002-0251" ], "details": "Buffer overflow in licq 1.0.4 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string of format string characters such as \"%d\".", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8428-qf2m-r92m/GHSA-8428-qf2m-r92m.json b/advisories/unreviewed/2022/04/GHSA-8428-qf2m-r92m/GHSA-8428-qf2m-r92m.json index 1548dff448e..d3f913cbcb8 100644 --- a/advisories/unreviewed/2022/04/GHSA-8428-qf2m-r92m/GHSA-8428-qf2m-r92m.json +++ b/advisories/unreviewed/2022/04/GHSA-8428-qf2m-r92m/GHSA-8428-qf2m-r92m.json @@ -7,12 +7,8 @@ "CVE-2002-0450" ], "details": "Buffer overflow in Talentsoft Web+ 5.0 and earlier allows remote attackers to execute arbitrary code via a long Web Markup Language (wml) file name to (1) webplus.dll or (2) webplus.exe.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8488-996w-f5hf/GHSA-8488-996w-f5hf.json b/advisories/unreviewed/2022/04/GHSA-8488-996w-f5hf/GHSA-8488-996w-f5hf.json index 6e5204ee247..6de3339d8d3 100644 --- a/advisories/unreviewed/2022/04/GHSA-8488-996w-f5hf/GHSA-8488-996w-f5hf.json +++ b/advisories/unreviewed/2022/04/GHSA-8488-996w-f5hf/GHSA-8488-996w-f5hf.json @@ -7,12 +7,8 @@ "CVE-2002-0345" ], "details": "Symantec Ghost 7.0 stores usernames and passwords in plaintext in the NGServer\\params registry key, which could allow an attacker to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-84ww-vchp-c2fv/GHSA-84ww-vchp-c2fv.json b/advisories/unreviewed/2022/04/GHSA-84ww-vchp-c2fv/GHSA-84ww-vchp-c2fv.json index 093300e9e65..b08353d6f7b 100644 --- a/advisories/unreviewed/2022/04/GHSA-84ww-vchp-c2fv/GHSA-84ww-vchp-c2fv.json +++ b/advisories/unreviewed/2022/04/GHSA-84ww-vchp-c2fv/GHSA-84ww-vchp-c2fv.json @@ -7,12 +7,8 @@ "CVE-2002-0459" ], "details": "Cross-site scripting vulnerability in Board-TNK 1.3.1 and earlier allows remote attackers to execute arbitrary Javascript via the WEB parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-86jf-64jm-h97c/GHSA-86jf-64jm-h97c.json b/advisories/unreviewed/2022/04/GHSA-86jf-64jm-h97c/GHSA-86jf-64jm-h97c.json index d8133a9b5c6..1c6498cc236 100644 --- a/advisories/unreviewed/2022/04/GHSA-86jf-64jm-h97c/GHSA-86jf-64jm-h97c.json +++ b/advisories/unreviewed/2022/04/GHSA-86jf-64jm-h97c/GHSA-86jf-64jm-h97c.json @@ -7,12 +7,8 @@ "CVE-2002-0234" ], "details": "NetScreen ScreenOS before 2.6.1 does not support a maximum number of concurrent sessions for a system, which allows an attacker on the trusted network to cause a denial of service (resource exhaustion) via a port scan to an external network, which consumes all available connections.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-87c4-g3xj-g65r/GHSA-87c4-g3xj-g65r.json b/advisories/unreviewed/2022/04/GHSA-87c4-g3xj-g65r/GHSA-87c4-g3xj-g65r.json index 2f5f482cdb6..cf1b093cf49 100644 --- a/advisories/unreviewed/2022/04/GHSA-87c4-g3xj-g65r/GHSA-87c4-g3xj-g65r.json +++ b/advisories/unreviewed/2022/04/GHSA-87c4-g3xj-g65r/GHSA-87c4-g3xj-g65r.json @@ -7,12 +7,8 @@ "CVE-2002-0440" ], "details": "Trend Micro InterScan VirusWall HTTP proxy 3.6 with the \"Skip scanning if Content-length equals 0\" option enabled allows malicious web servers to bypass content scanning via a Content-length header set to 0, which is often ignored by HTTP clients.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8836-w6g9-x9gg/GHSA-8836-w6g9-x9gg.json b/advisories/unreviewed/2022/04/GHSA-8836-w6g9-x9gg/GHSA-8836-w6g9-x9gg.json index cd9d7a7e4b3..460f129d469 100644 --- a/advisories/unreviewed/2022/04/GHSA-8836-w6g9-x9gg/GHSA-8836-w6g9-x9gg.json +++ b/advisories/unreviewed/2022/04/GHSA-8836-w6g9-x9gg/GHSA-8836-w6g9-x9gg.json @@ -7,12 +7,8 @@ "CVE-2002-0298" ], "details": "ScriptEase MiniWeb Server 0.95 allows remote attackers to cause a denial of service (crash) via certain HTTP GET requests containing (1) a %2e%2e (encoded dot-dot), (2) several /../ (dot dot) sequences, (3) a missing URI, or (4) several ../ in a URI that does not begin with a / (slash) character.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-88c8-p9h9-4277/GHSA-88c8-p9h9-4277.json b/advisories/unreviewed/2022/04/GHSA-88c8-p9h9-4277/GHSA-88c8-p9h9-4277.json index f95449ac1c2..0176c9300b6 100644 --- a/advisories/unreviewed/2022/04/GHSA-88c8-p9h9-4277/GHSA-88c8-p9h9-4277.json +++ b/advisories/unreviewed/2022/04/GHSA-88c8-p9h9-4277/GHSA-88c8-p9h9-4277.json @@ -7,12 +7,8 @@ "CVE-2002-0281" ], "details": "Cross-site scripting vulnerability in DCP-Portal 4.2 and earlier allows remote attackers to gain privileges of other portal users by providing Javascript in the job information field to user_update.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8cmx-xcp4-7gh7/GHSA-8cmx-xcp4-7gh7.json b/advisories/unreviewed/2022/04/GHSA-8cmx-xcp4-7gh7/GHSA-8cmx-xcp4-7gh7.json index 21539283b1a..5c28ae830f9 100644 --- a/advisories/unreviewed/2022/04/GHSA-8cmx-xcp4-7gh7/GHSA-8cmx-xcp4-7gh7.json +++ b/advisories/unreviewed/2022/04/GHSA-8cmx-xcp4-7gh7/GHSA-8cmx-xcp4-7gh7.json @@ -7,12 +7,8 @@ "CVE-2002-0386" ], "details": "The administration module for Oracle Web Cache in Oracle9iAS (9i Application Suite) 9.0.2 allows remote attackers to cause a denial of service (crash) via (1) an HTTP GET request containing a \"..\" (dot dot) sequence, or (2) a malformed HTTP GET request with a chunked Transfer-Encoding with missing data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8cqr-m64g-jggj/GHSA-8cqr-m64g-jggj.json b/advisories/unreviewed/2022/04/GHSA-8cqr-m64g-jggj/GHSA-8cqr-m64g-jggj.json index 3341a275b19..51888621098 100644 --- a/advisories/unreviewed/2022/04/GHSA-8cqr-m64g-jggj/GHSA-8cqr-m64g-jggj.json +++ b/advisories/unreviewed/2022/04/GHSA-8cqr-m64g-jggj/GHSA-8cqr-m64g-jggj.json @@ -7,12 +7,8 @@ "CVE-2002-0540" ], "details": "Nortel CVX 1800 is installed with a default \"public\" community string, which allows remote attackers to read usernames and passwords and modify the CVX configuration.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8f2r-xhjm-7w7f/GHSA-8f2r-xhjm-7w7f.json b/advisories/unreviewed/2022/04/GHSA-8f2r-xhjm-7w7f/GHSA-8f2r-xhjm-7w7f.json index b7ac53e1a75..1c79928b72d 100644 --- a/advisories/unreviewed/2022/04/GHSA-8f2r-xhjm-7w7f/GHSA-8f2r-xhjm-7w7f.json +++ b/advisories/unreviewed/2022/04/GHSA-8f2r-xhjm-7w7f/GHSA-8f2r-xhjm-7w7f.json @@ -7,12 +7,8 @@ "CVE-2002-0589" ], "details": "PVote before 1.9 allows remote attackers to change the administrative password and gain privileges by directly calling ch_info.php with the newpass and confirm parameters both set to the new password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8g58-7495-3vh3/GHSA-8g58-7495-3vh3.json b/advisories/unreviewed/2022/04/GHSA-8g58-7495-3vh3/GHSA-8g58-7495-3vh3.json index 7d4f8c9a454..4b67e6e0270 100644 --- a/advisories/unreviewed/2022/04/GHSA-8g58-7495-3vh3/GHSA-8g58-7495-3vh3.json +++ b/advisories/unreviewed/2022/04/GHSA-8g58-7495-3vh3/GHSA-8g58-7495-3vh3.json @@ -7,12 +7,8 @@ "CVE-2002-0430" ], "details": "MultiFileUploadHandler.php in the Sun Cobalt RaQ XTR administration interface allows local users to bypass authentication and overwrite arbitrary files via a symlink attack on a temporary file, followed by a request to MultiFileUpload.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8hv2-rcw2-88rc/GHSA-8hv2-rcw2-88rc.json b/advisories/unreviewed/2022/04/GHSA-8hv2-rcw2-88rc/GHSA-8hv2-rcw2-88rc.json index cb702cf9a10..39552364fe2 100644 --- a/advisories/unreviewed/2022/04/GHSA-8hv2-rcw2-88rc/GHSA-8hv2-rcw2-88rc.json +++ b/advisories/unreviewed/2022/04/GHSA-8hv2-rcw2-88rc/GHSA-8hv2-rcw2-88rc.json @@ -7,12 +7,8 @@ "CVE-2002-0548" ], "details": "Anthill allows remote attackers to bypass authentication and file bug reports by directly accessing the postbug.php program instead of enterbug.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8j2q-vv7q-mp98/GHSA-8j2q-vv7q-mp98.json b/advisories/unreviewed/2022/04/GHSA-8j2q-vv7q-mp98/GHSA-8j2q-vv7q-mp98.json index 19e38c44246..d5786ab4d03 100644 --- a/advisories/unreviewed/2022/04/GHSA-8j2q-vv7q-mp98/GHSA-8j2q-vv7q-mp98.json +++ b/advisories/unreviewed/2022/04/GHSA-8j2q-vv7q-mp98/GHSA-8j2q-vv7q-mp98.json @@ -7,12 +7,8 @@ "CVE-2002-0371" ], "details": "Buffer overflow in gopher client for Microsoft Internet Explorer 5.1 through 6.0, Proxy Server 2.0, or ISA Server 2000 allows remote attackers to execute arbitrary code via a gopher:// URL that redirects the user to a real or simulated gopher server that sends a long response.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8jxj-w5fr-rjvp/GHSA-8jxj-w5fr-rjvp.json b/advisories/unreviewed/2022/04/GHSA-8jxj-w5fr-rjvp/GHSA-8jxj-w5fr-rjvp.json index d1966adf46c..39543eb5ecb 100644 --- a/advisories/unreviewed/2022/04/GHSA-8jxj-w5fr-rjvp/GHSA-8jxj-w5fr-rjvp.json +++ b/advisories/unreviewed/2022/04/GHSA-8jxj-w5fr-rjvp/GHSA-8jxj-w5fr-rjvp.json @@ -7,12 +7,8 @@ "CVE-2002-0275" ], "details": "Falcon web server 2.0.0.1020 and earlier allows remote attackers to bypass authentication and read restricted files via an extra / (slash) in the requested URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8qhj-5gx7-c833/GHSA-8qhj-5gx7-c833.json b/advisories/unreviewed/2022/04/GHSA-8qhj-5gx7-c833/GHSA-8qhj-5gx7-c833.json index bbba736788e..92fbb018338 100644 --- a/advisories/unreviewed/2022/04/GHSA-8qhj-5gx7-c833/GHSA-8qhj-5gx7-c833.json +++ b/advisories/unreviewed/2022/04/GHSA-8qhj-5gx7-c833/GHSA-8qhj-5gx7-c833.json @@ -7,12 +7,8 @@ "CVE-2002-0316" ], "details": "Cross-site scripting vulnerability in eXtreme message board (XMB) 1.6x and earlier allows remote attackers to execute script as other XMB users by inserting the script into an IMG tag.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8rgx-j2wf-299r/GHSA-8rgx-j2wf-299r.json b/advisories/unreviewed/2022/04/GHSA-8rgx-j2wf-299r/GHSA-8rgx-j2wf-299r.json index 619fcead4dc..bd7f05dd6b6 100644 --- a/advisories/unreviewed/2022/04/GHSA-8rgx-j2wf-299r/GHSA-8rgx-j2wf-299r.json +++ b/advisories/unreviewed/2022/04/GHSA-8rgx-j2wf-299r/GHSA-8rgx-j2wf-299r.json @@ -7,12 +7,8 @@ "CVE-2002-0375" ], "details": "Cross-site scripting vulnerability in sgdynamo.exe for Sgdynamo allows remote attackers to execute arbitrary Javascript via a URL with the script in the HTNAME parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8x8g-c84q-5xj8/GHSA-8x8g-c84q-5xj8.json b/advisories/unreviewed/2022/04/GHSA-8x8g-c84q-5xj8/GHSA-8x8g-c84q-5xj8.json index db5c1a309fa..3838185a4d5 100644 --- a/advisories/unreviewed/2022/04/GHSA-8x8g-c84q-5xj8/GHSA-8x8g-c84q-5xj8.json +++ b/advisories/unreviewed/2022/04/GHSA-8x8g-c84q-5xj8/GHSA-8x8g-c84q-5xj8.json @@ -7,12 +7,8 @@ "CVE-2002-0314" ], "details": "fasttrack p2p, as used in (1) KaZaA before 1.5, (2) grokster, and (3) morpheus allows remote attackers to cause a denial of service (memory exhaustion) via a series of client-to-client messages, which pops up new windows per message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8xxh-294r-qp2g/GHSA-8xxh-294r-qp2g.json b/advisories/unreviewed/2022/04/GHSA-8xxh-294r-qp2g/GHSA-8xxh-294r-qp2g.json index 90421ddd0ad..604927768f1 100644 --- a/advisories/unreviewed/2022/04/GHSA-8xxh-294r-qp2g/GHSA-8xxh-294r-qp2g.json +++ b/advisories/unreviewed/2022/04/GHSA-8xxh-294r-qp2g/GHSA-8xxh-294r-qp2g.json @@ -7,12 +7,8 @@ "CVE-2002-0473" ], "details": "db.php in phpBB 2.0 (aka phpBB2) RC-3 and earlier allows remote attackers to execute arbitrary code from remote servers via the phpbb_root_path parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9422-v7w3-rvrq/GHSA-9422-v7w3-rvrq.json b/advisories/unreviewed/2022/04/GHSA-9422-v7w3-rvrq/GHSA-9422-v7w3-rvrq.json index 5597c2e6286..61f6e24f0ee 100644 --- a/advisories/unreviewed/2022/04/GHSA-9422-v7w3-rvrq/GHSA-9422-v7w3-rvrq.json +++ b/advisories/unreviewed/2022/04/GHSA-9422-v7w3-rvrq/GHSA-9422-v7w3-rvrq.json @@ -7,12 +7,8 @@ "CVE-2002-0423" ], "details": "Buffer overflow in efingerd 1.5 and earlier, and possibly up to 1.61, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a finger request from an IP address with a long hostname that is obtained via a reverse DNS lookup.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-95hg-rr5j-v2vq/GHSA-95hg-rr5j-v2vq.json b/advisories/unreviewed/2022/04/GHSA-95hg-rr5j-v2vq/GHSA-95hg-rr5j-v2vq.json index fcca1355dda..d8848f48c9f 100644 --- a/advisories/unreviewed/2022/04/GHSA-95hg-rr5j-v2vq/GHSA-95hg-rr5j-v2vq.json +++ b/advisories/unreviewed/2022/04/GHSA-95hg-rr5j-v2vq/GHSA-95hg-rr5j-v2vq.json @@ -7,12 +7,8 @@ "CVE-2002-0481" ], "details": "An interaction between Windows Media Player (WMP) and Outlook 2002 allows remote attackers to bypass Outlook security settings and execute Javascript via an IFRAME in an HTML email message that references .WMS (Windows Media Skin) or other WMP media files, whose onload handlers execute the player.LaunchURL() Javascript function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-972q-rg59-8qx4/GHSA-972q-rg59-8qx4.json b/advisories/unreviewed/2022/04/GHSA-972q-rg59-8qx4/GHSA-972q-rg59-8qx4.json index b9fa021703b..910ee63de17 100644 --- a/advisories/unreviewed/2022/04/GHSA-972q-rg59-8qx4/GHSA-972q-rg59-8qx4.json +++ b/advisories/unreviewed/2022/04/GHSA-972q-rg59-8qx4/GHSA-972q-rg59-8qx4.json @@ -7,12 +7,8 @@ "CVE-2002-0544" ], "details": "Aprelium Abyss Web Server (abyssws) before 1.0.3 stores the administrative console password in plaintext in the abyss.conf file, which allows local users with access to the file to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9837-m8h3-j3ch/GHSA-9837-m8h3-j3ch.json b/advisories/unreviewed/2022/04/GHSA-9837-m8h3-j3ch/GHSA-9837-m8h3-j3ch.json index 71d1f0827db..582ea0e55e3 100644 --- a/advisories/unreviewed/2022/04/GHSA-9837-m8h3-j3ch/GHSA-9837-m8h3-j3ch.json +++ b/advisories/unreviewed/2022/04/GHSA-9837-m8h3-j3ch/GHSA-9837-m8h3-j3ch.json @@ -7,12 +7,8 @@ "CVE-2002-0339" ], "details": "Cisco IOS 11.1CC through 12.2 with Cisco Express Forwarding (CEF) enabled includes portions of previous packets in the padding of a MAC level packet when the MAC packet's length is less than the IP level packet length.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9852-m4g7-7hj7/GHSA-9852-m4g7-7hj7.json b/advisories/unreviewed/2022/04/GHSA-9852-m4g7-7hj7/GHSA-9852-m4g7-7hj7.json index 478c7c63a4a..98f798d2377 100644 --- a/advisories/unreviewed/2022/04/GHSA-9852-m4g7-7hj7/GHSA-9852-m4g7-7hj7.json +++ b/advisories/unreviewed/2022/04/GHSA-9852-m4g7-7hj7/GHSA-9852-m4g7-7hj7.json @@ -7,12 +7,8 @@ "CVE-2002-0341" ], "details": "GWWEB.EXE in GroupWise Web Access 5.5, and possibly other versions, allows remote attackers to determine the full pathname of the web server via an HTTP request with an invalid HTMLVER parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9c97-v4px-3qq5/GHSA-9c97-v4px-3qq5.json b/advisories/unreviewed/2022/04/GHSA-9c97-v4px-3qq5/GHSA-9c97-v4px-3qq5.json index a091e64ccea..a0fca8c33bd 100644 --- a/advisories/unreviewed/2022/04/GHSA-9c97-v4px-3qq5/GHSA-9c97-v4px-3qq5.json +++ b/advisories/unreviewed/2022/04/GHSA-9c97-v4px-3qq5/GHSA-9c97-v4px-3qq5.json @@ -7,12 +7,8 @@ "CVE-2002-0233" ], "details": "Directory traversal vulnerability in eshare Expressions 4 Web server allows remote attackers to read arbitrary files via a .. (dot dot) in an HTTP request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9ggh-w7j2-862v/GHSA-9ggh-w7j2-862v.json b/advisories/unreviewed/2022/04/GHSA-9ggh-w7j2-862v/GHSA-9ggh-w7j2-862v.json index 98590a39720..08fd013ff53 100644 --- a/advisories/unreviewed/2022/04/GHSA-9ggh-w7j2-862v/GHSA-9ggh-w7j2-862v.json +++ b/advisories/unreviewed/2022/04/GHSA-9ggh-w7j2-862v/GHSA-9ggh-w7j2-862v.json @@ -7,12 +7,8 @@ "CVE-2002-0334" ], "details": "xtell (xtelld) 1.91.1 and earlier, and 2.x before 2.7, allows local users to modify files via a symlink attack on the .xtell-log file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9gh7-fmr6-5f54/GHSA-9gh7-fmr6-5f54.json b/advisories/unreviewed/2022/04/GHSA-9gh7-fmr6-5f54/GHSA-9gh7-fmr6-5f54.json index 0f02bf1bfce..414fbd203e3 100644 --- a/advisories/unreviewed/2022/04/GHSA-9gh7-fmr6-5f54/GHSA-9gh7-fmr6-5f54.json +++ b/advisories/unreviewed/2022/04/GHSA-9gh7-fmr6-5f54/GHSA-9gh7-fmr6-5f54.json @@ -7,12 +7,8 @@ "CVE-2002-0497" ], "details": "Buffer overflow in mtr 0.46 and earlier, when installed setuid root, allows local users to access a raw socket via a long MTR_OPTIONS environment variable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9pfh-48x6-ffh3/GHSA-9pfh-48x6-ffh3.json b/advisories/unreviewed/2022/04/GHSA-9pfh-48x6-ffh3/GHSA-9pfh-48x6-ffh3.json index e47f05dfd42..3372c0abd89 100644 --- a/advisories/unreviewed/2022/04/GHSA-9pfh-48x6-ffh3/GHSA-9pfh-48x6-ffh3.json +++ b/advisories/unreviewed/2022/04/GHSA-9pfh-48x6-ffh3/GHSA-9pfh-48x6-ffh3.json @@ -7,12 +7,8 @@ "CVE-2002-0362" ], "details": "Buffer overflow in AOL Instant Messenger (AIM) 4.2 and later allows remote attackers to execute arbitrary code via a long AddExternalApp request and a TLV type greater than 0x2711.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c3q7-q63g-7jw7/GHSA-c3q7-q63g-7jw7.json b/advisories/unreviewed/2022/04/GHSA-c3q7-q63g-7jw7/GHSA-c3q7-q63g-7jw7.json index 22a2e44d223..e40117d6952 100644 --- a/advisories/unreviewed/2022/04/GHSA-c3q7-q63g-7jw7/GHSA-c3q7-q63g-7jw7.json +++ b/advisories/unreviewed/2022/04/GHSA-c3q7-q63g-7jw7/GHSA-c3q7-q63g-7jw7.json @@ -7,12 +7,8 @@ "CVE-2002-0523" ], "details": "ASP-Nuke RC2 and earlier allows remote attackers to list all logged-in users by submitting an invalid \"pseudo\" cookie.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c447-cw8v-5jv4/GHSA-c447-cw8v-5jv4.json b/advisories/unreviewed/2022/04/GHSA-c447-cw8v-5jv4/GHSA-c447-cw8v-5jv4.json index 4975c4b212e..9eabc31e11e 100644 --- a/advisories/unreviewed/2022/04/GHSA-c447-cw8v-5jv4/GHSA-c447-cw8v-5jv4.json +++ b/advisories/unreviewed/2022/04/GHSA-c447-cw8v-5jv4/GHSA-c447-cw8v-5jv4.json @@ -7,12 +7,8 @@ "CVE-2002-0325" ], "details": "Directory traversal vulnerability in BadBlue before 1.6.1 allows remote attackers to read arbitrary files via a ... (modified dot dot) in the URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c5h7-mjwp-4pvr/GHSA-c5h7-mjwp-4pvr.json b/advisories/unreviewed/2022/04/GHSA-c5h7-mjwp-4pvr/GHSA-c5h7-mjwp-4pvr.json index d45c14bb7ed..54aa8b78171 100644 --- a/advisories/unreviewed/2022/04/GHSA-c5h7-mjwp-4pvr/GHSA-c5h7-mjwp-4pvr.json +++ b/advisories/unreviewed/2022/04/GHSA-c5h7-mjwp-4pvr/GHSA-c5h7-mjwp-4pvr.json @@ -7,12 +7,8 @@ "CVE-2002-0563" ], "details": "The default configuration of Oracle 9i Application Server 1.0.2.x allows remote anonymous users to access sensitive services without authentication, including Dynamic Monitoring Services (1) dms0, (2) dms/DMSDump, (3) servlet/DMSDump, (4) servlet/Spy, (5) soap/servlet/Spy, and (6) dms/AggreSpy; and Oracle Java Process Manager (7) oprocmgr-status and (8) oprocmgr-service, which can be used to control Java processes.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-c6fq-h555-8326/GHSA-c6fq-h555-8326.json b/advisories/unreviewed/2022/04/GHSA-c6fq-h555-8326/GHSA-c6fq-h555-8326.json index d3321265801..678107a5570 100644 --- a/advisories/unreviewed/2022/04/GHSA-c6fq-h555-8326/GHSA-c6fq-h555-8326.json +++ b/advisories/unreviewed/2022/04/GHSA-c6fq-h555-8326/GHSA-c6fq-h555-8326.json @@ -7,12 +7,8 @@ "CVE-2002-0399" ], "details": "Directory traversal vulnerability in GNU tar 1.13.19 through 1.13.25, and possibly later versions, allows attackers to overwrite arbitrary files during archive extraction via a (1) \"/..\" or (2) \"./..\" string, which removes the leading slash but leaves the \"..\", a variant of CVE-2001-1267.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -92,9 +88,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c7g7-h685-q6j7/GHSA-c7g7-h685-q6j7.json b/advisories/unreviewed/2022/04/GHSA-c7g7-h685-q6j7/GHSA-c7g7-h685-q6j7.json index 5cc6d2fc571..e335a5ccef9 100644 --- a/advisories/unreviewed/2022/04/GHSA-c7g7-h685-q6j7/GHSA-c7g7-h685-q6j7.json +++ b/advisories/unreviewed/2022/04/GHSA-c7g7-h685-q6j7/GHSA-c7g7-h685-q6j7.json @@ -7,12 +7,8 @@ "CVE-2002-0378" ], "details": "The default configuration of LPRng print spooler in Red Hat Linux 7.0 through 7.3, Mandrake 8.1 and 8.2, and other operating systems, accepts print jobs from arbitrary remote hosts.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c8q3-93qw-33xf/GHSA-c8q3-93qw-33xf.json b/advisories/unreviewed/2022/04/GHSA-c8q3-93qw-33xf/GHSA-c8q3-93qw-33xf.json index 5766d52810f..ef465bfdbd0 100644 --- a/advisories/unreviewed/2022/04/GHSA-c8q3-93qw-33xf/GHSA-c8q3-93qw-33xf.json +++ b/advisories/unreviewed/2022/04/GHSA-c8q3-93qw-33xf/GHSA-c8q3-93qw-33xf.json @@ -7,12 +7,8 @@ "CVE-2002-0328" ], "details": "Cross-site scripting vulnerability in Ikonboard 3.0.1 allows remote attackers to execute arbitrary script as other Ikonboard users and steal cookies via Javascript in an IMG tag.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c95h-8x8w-895x/GHSA-c95h-8x8w-895x.json b/advisories/unreviewed/2022/04/GHSA-c95h-8x8w-895x/GHSA-c95h-8x8w-895x.json index 9439e0ef986..31ab0f7ada6 100644 --- a/advisories/unreviewed/2022/04/GHSA-c95h-8x8w-895x/GHSA-c95h-8x8w-895x.json +++ b/advisories/unreviewed/2022/04/GHSA-c95h-8x8w-895x/GHSA-c95h-8x8w-895x.json @@ -7,12 +7,8 @@ "CVE-2002-0249" ], "details": "PHP for Windows, when installed on Apache 2.0.28 beta as a standalone CGI module, allows remote attackers to obtain the physical path of the php.exe via a request with malformed arguments such as /123, which leaks the pathname in the error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c9f5-c75g-cxp5/GHSA-c9f5-c75g-cxp5.json b/advisories/unreviewed/2022/04/GHSA-c9f5-c75g-cxp5/GHSA-c9f5-c75g-cxp5.json index 5981a47d4a8..c625e1e6544 100644 --- a/advisories/unreviewed/2022/04/GHSA-c9f5-c75g-cxp5/GHSA-c9f5-c75g-cxp5.json +++ b/advisories/unreviewed/2022/04/GHSA-c9f5-c75g-cxp5/GHSA-c9f5-c75g-cxp5.json @@ -7,12 +7,8 @@ "CVE-2002-0274" ], "details": "Exim 3.34 and earlier may allow local users to gain privileges via a buffer overflow in long -C (configuration file) and other command line arguments.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c9g6-x6mq-6jw2/GHSA-c9g6-x6mq-6jw2.json b/advisories/unreviewed/2022/04/GHSA-c9g6-x6mq-6jw2/GHSA-c9g6-x6mq-6jw2.json index 47ace179557..e89bccaf650 100644 --- a/advisories/unreviewed/2022/04/GHSA-c9g6-x6mq-6jw2/GHSA-c9g6-x6mq-6jw2.json +++ b/advisories/unreviewed/2022/04/GHSA-c9g6-x6mq-6jw2/GHSA-c9g6-x6mq-6jw2.json @@ -7,12 +7,8 @@ "CVE-2002-0408" ], "details": "htcgibin.exe in Lotus Domino server 5.0.9a and earlier, when configured with the NoBanner setting, allows remote attackers to determine the version number of the server via a request that generates an HTTP 500 error code, which leaks the version in a hard-coded error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-ccc2-5fr4-8phv/GHSA-ccc2-5fr4-8phv.json b/advisories/unreviewed/2022/04/GHSA-ccc2-5fr4-8phv/GHSA-ccc2-5fr4-8phv.json index 80dcc5178dd..d98ba76defb 100644 --- a/advisories/unreviewed/2022/04/GHSA-ccc2-5fr4-8phv/GHSA-ccc2-5fr4-8phv.json +++ b/advisories/unreviewed/2022/04/GHSA-ccc2-5fr4-8phv/GHSA-ccc2-5fr4-8phv.json @@ -7,12 +7,8 @@ "CVE-2002-0551" ], "details": "Cross-site scripting vulnerability in Dynamic Guestbook 3.0 allows remote attackers to execute code in clients who access guestbook pages via the parameters (1) name, (2) mail, or (3) kommentar.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cfh5-99ph-cp7h/GHSA-cfh5-99ph-cp7h.json b/advisories/unreviewed/2022/04/GHSA-cfh5-99ph-cp7h/GHSA-cfh5-99ph-cp7h.json index aeb0e9c4047..6cc1dd4d621 100644 --- a/advisories/unreviewed/2022/04/GHSA-cfh5-99ph-cp7h/GHSA-cfh5-99ph-cp7h.json +++ b/advisories/unreviewed/2022/04/GHSA-cfh5-99ph-cp7h/GHSA-cfh5-99ph-cp7h.json @@ -7,12 +7,8 @@ "CVE-2002-0445" ], "details": "article.php in PHP FirstPost 0.1 allows allows remote attackers to obtain the full pathname of the server via an invalid post number in the post parameter, which leaks the pathname in an error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cjcj-mxqx-222g/GHSA-cjcj-mxqx-222g.json b/advisories/unreviewed/2022/04/GHSA-cjcj-mxqx-222g/GHSA-cjcj-mxqx-222g.json index 891bd3c216c..d0bd1fb376f 100644 --- a/advisories/unreviewed/2022/04/GHSA-cjcj-mxqx-222g/GHSA-cjcj-mxqx-222g.json +++ b/advisories/unreviewed/2022/04/GHSA-cjcj-mxqx-222g/GHSA-cjcj-mxqx-222g.json @@ -7,12 +7,8 @@ "CVE-2002-0661" ], "details": "Directory traversal vulnerability in Apache 2.0 through 2.0.39 on Windows, OS2, and Netware allows remote attackers to read arbitrary files and execute commands via .. (dot dot) sequences containing \\ (backslash) characters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -88,9 +84,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cp75-277r-65xg/GHSA-cp75-277r-65xg.json b/advisories/unreviewed/2022/04/GHSA-cp75-277r-65xg/GHSA-cp75-277r-65xg.json index beddd06901a..c4620643dbb 100644 --- a/advisories/unreviewed/2022/04/GHSA-cp75-277r-65xg/GHSA-cp75-277r-65xg.json +++ b/advisories/unreviewed/2022/04/GHSA-cp75-277r-65xg/GHSA-cp75-277r-65xg.json @@ -7,12 +7,8 @@ "CVE-2002-0257" ], "details": "Cross-site scripting vulnerability in auction.pl of MakeBid Auction Deluxe 3.30 allows remote attackers to obtain information from other users via the form fields (1) TITLE, (2) DESCTIT, (3) DESC, (4) searchstring, (5) ALIAS, (6) EMAIL, (7) ADDRESS1, (8) ADDRESS2, (9) ADDRESS3, (10) PHONE1, (11) PHONE2, (12) PHONE3, or (13) PHONE4.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f296-r3cf-3mq8/GHSA-f296-r3cf-3mq8.json b/advisories/unreviewed/2022/04/GHSA-f296-r3cf-3mq8/GHSA-f296-r3cf-3mq8.json index 1d89b111109..ad7529f40d7 100644 --- a/advisories/unreviewed/2022/04/GHSA-f296-r3cf-3mq8/GHSA-f296-r3cf-3mq8.json +++ b/advisories/unreviewed/2022/04/GHSA-f296-r3cf-3mq8/GHSA-f296-r3cf-3mq8.json @@ -7,12 +7,8 @@ "CVE-2002-0301" ], "details": "Citrix NFuse 1.6 allows remote attackers to bypass authentication and obtain sensitive information by directly calling launch.asp with invalid NFUSE_USER and NFUSE_PASSWORD parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f2c8-j2m9-4qrx/GHSA-f2c8-j2m9-4qrx.json b/advisories/unreviewed/2022/04/GHSA-f2c8-j2m9-4qrx/GHSA-f2c8-j2m9-4qrx.json index b8f1649544b..39c81be6f52 100644 --- a/advisories/unreviewed/2022/04/GHSA-f2c8-j2m9-4qrx/GHSA-f2c8-j2m9-4qrx.json +++ b/advisories/unreviewed/2022/04/GHSA-f2c8-j2m9-4qrx/GHSA-f2c8-j2m9-4qrx.json @@ -7,12 +7,8 @@ "CVE-2002-0590" ], "details": "Cross-site scripting (CSS) vulnerability in IcrediBB 1.1 Beta allows remote attackers to execute arbitrary script and steal cookies as other IcrediBB users via the (1) title or (2) body of posts.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f64x-qrh2-x3q5/GHSA-f64x-qrh2-x3q5.json b/advisories/unreviewed/2022/04/GHSA-f64x-qrh2-x3q5/GHSA-f64x-qrh2-x3q5.json index 27f0cab8ba9..7c3544b4547 100644 --- a/advisories/unreviewed/2022/04/GHSA-f64x-qrh2-x3q5/GHSA-f64x-qrh2-x3q5.json +++ b/advisories/unreviewed/2022/04/GHSA-f64x-qrh2-x3q5/GHSA-f64x-qrh2-x3q5.json @@ -7,12 +7,8 @@ "CVE-2002-0479" ], "details": "Gravity Storm Service Pack Manager 2000 creates a hidden share (SPM2000c$) mapped to the C drive, which may allow local users to bypass access restrictions on certain directories in the C drive, such as system32, by accessing them through the hidden share.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f72g-9wmh-q5r7/GHSA-f72g-9wmh-q5r7.json b/advisories/unreviewed/2022/04/GHSA-f72g-9wmh-q5r7/GHSA-f72g-9wmh-q5r7.json index 6f04424f8c3..4694c5609e0 100644 --- a/advisories/unreviewed/2022/04/GHSA-f72g-9wmh-q5r7/GHSA-f72g-9wmh-q5r7.json +++ b/advisories/unreviewed/2022/04/GHSA-f72g-9wmh-q5r7/GHSA-f72g-9wmh-q5r7.json @@ -7,12 +7,8 @@ "CVE-2002-0348" ], "details": "service.cgi in Cobalt RAQ 4 allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via a long service argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f788-g3hq-w67p/GHSA-f788-g3hq-w67p.json b/advisories/unreviewed/2022/04/GHSA-f788-g3hq-w67p/GHSA-f788-g3hq-w67p.json index 9e2249dc0f6..b01ea05a9b3 100644 --- a/advisories/unreviewed/2022/04/GHSA-f788-g3hq-w67p/GHSA-f788-g3hq-w67p.json +++ b/advisories/unreviewed/2022/04/GHSA-f788-g3hq-w67p/GHSA-f788-g3hq-w67p.json @@ -7,12 +7,8 @@ "CVE-2002-0511" ], "details": "The default configuration of Name Service Cache Daemon (nscd) in Caldera OpenLinux 3.1 and 3.1.1 uses cached PTR records instead of consulting the authoritative DNS server for the A record, which could make it easier for remote attackers to bypass applications that restrict access based on host names.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f85c-rcc7-2hpc/GHSA-f85c-rcc7-2hpc.json b/advisories/unreviewed/2022/04/GHSA-f85c-rcc7-2hpc/GHSA-f85c-rcc7-2hpc.json index d74097fa880..e96ffe29481 100644 --- a/advisories/unreviewed/2022/04/GHSA-f85c-rcc7-2hpc/GHSA-f85c-rcc7-2hpc.json +++ b/advisories/unreviewed/2022/04/GHSA-f85c-rcc7-2hpc/GHSA-f85c-rcc7-2hpc.json @@ -7,12 +7,8 @@ "CVE-2002-0433" ], "details": "Pi3Web 2.0.0 allows remote attackers to view restricted files via an HTTP request containing a \"*\" (wildcard or asterisk) character.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f85g-fmg3-x33m/GHSA-f85g-fmg3-x33m.json b/advisories/unreviewed/2022/04/GHSA-f85g-fmg3-x33m/GHSA-f85g-fmg3-x33m.json index e7cb392ac1b..790463a54ef 100644 --- a/advisories/unreviewed/2022/04/GHSA-f85g-fmg3-x33m/GHSA-f85g-fmg3-x33m.json +++ b/advisories/unreviewed/2022/04/GHSA-f85g-fmg3-x33m/GHSA-f85g-fmg3-x33m.json @@ -7,12 +7,8 @@ "CVE-2002-0276" ], "details": "Buffer overflow in various decoders in Ettercap 0.6.3.1 and earlier, when running on networks with an MTU greater than 2000, allows remote attackers to execute arbitrary code via large packets.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fc43-x5v3-9w6m/GHSA-fc43-x5v3-9w6m.json b/advisories/unreviewed/2022/04/GHSA-fc43-x5v3-9w6m/GHSA-fc43-x5v3-9w6m.json index 2aa1c3ee6ba..fdb56909e55 100644 --- a/advisories/unreviewed/2022/04/GHSA-fc43-x5v3-9w6m/GHSA-fc43-x5v3-9w6m.json +++ b/advisories/unreviewed/2022/04/GHSA-fc43-x5v3-9w6m/GHSA-fc43-x5v3-9w6m.json @@ -7,12 +7,8 @@ "CVE-2002-0502" ], "details": "Citrix NFuse 1.6 may allow remote attackers to list applications without authentication by accessing the applist.asp page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fc5v-r7j2-4w95/GHSA-fc5v-r7j2-4w95.json b/advisories/unreviewed/2022/04/GHSA-fc5v-r7j2-4w95/GHSA-fc5v-r7j2-4w95.json index aa7374cb1de..fd9e8ae2ed1 100644 --- a/advisories/unreviewed/2022/04/GHSA-fc5v-r7j2-4w95/GHSA-fc5v-r7j2-4w95.json +++ b/advisories/unreviewed/2022/04/GHSA-fc5v-r7j2-4w95/GHSA-fc5v-r7j2-4w95.json @@ -7,12 +7,8 @@ "CVE-2002-0241" ], "details": "NDSAuth.DLL in Cisco Secure Authentication Control Server (ACS) 3.0.1 does not check the Expired or Disabled state of users in the Novell Directory Services (NDS), which could allow those users to authenticate to the server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-ffh6-g9vx-5qv8/GHSA-ffh6-g9vx-5qv8.json b/advisories/unreviewed/2022/04/GHSA-ffh6-g9vx-5qv8/GHSA-ffh6-g9vx-5qv8.json index 6487ccccb12..0943de091f9 100644 --- a/advisories/unreviewed/2022/04/GHSA-ffh6-g9vx-5qv8/GHSA-ffh6-g9vx-5qv8.json +++ b/advisories/unreviewed/2022/04/GHSA-ffh6-g9vx-5qv8/GHSA-ffh6-g9vx-5qv8.json @@ -7,12 +7,8 @@ "CVE-2002-0441" ], "details": "Directory traversal vulnerability in imlist.php for Php Imglist allows remote attackers to read arbitrary code via a .. (dot dot) in the cwd parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fh28-5rx8-8227/GHSA-fh28-5rx8-8227.json b/advisories/unreviewed/2022/04/GHSA-fh28-5rx8-8227/GHSA-fh28-5rx8-8227.json index c1701f66729..e1d1ea075fd 100644 --- a/advisories/unreviewed/2022/04/GHSA-fh28-5rx8-8227/GHSA-fh28-5rx8-8227.json +++ b/advisories/unreviewed/2022/04/GHSA-fh28-5rx8-8227/GHSA-fh28-5rx8-8227.json @@ -7,12 +7,8 @@ "CVE-2002-0285" ], "details": "Outlook Express 5.5 and 6.0 on Windows treats a carriage return (\"CR\") in a message header as if it were a valid carriage return/line feed combination (CR/LF), which could allow remote attackers to bypass virus protection and or other filtering mechanisms via a mail message with headers that only contain the CR, which causes Outlook to create separate headers.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fjx2-jv58-49j9/GHSA-fjx2-jv58-49j9.json b/advisories/unreviewed/2022/04/GHSA-fjx2-jv58-49j9/GHSA-fjx2-jv58-49j9.json index de23eef88dc..684c7da7960 100644 --- a/advisories/unreviewed/2022/04/GHSA-fjx2-jv58-49j9/GHSA-fjx2-jv58-49j9.json +++ b/advisories/unreviewed/2022/04/GHSA-fjx2-jv58-49j9/GHSA-fjx2-jv58-49j9.json @@ -7,12 +7,8 @@ "CVE-2002-0676" ], "details": "SoftwareUpdate for MacOS 10.1.x does not use authentication when downloading a software update, which could allow remote attackers to execute arbitrary code by posing as the Apple update server via techniques such as DNS spoofing or cache poisoning, and supplying Trojan Horse updates.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fqrq-528h-rhwq/GHSA-fqrq-528h-rhwq.json b/advisories/unreviewed/2022/04/GHSA-fqrq-528h-rhwq/GHSA-fqrq-528h-rhwq.json index ff1d0ee8966..e1911ffbde3 100644 --- a/advisories/unreviewed/2022/04/GHSA-fqrq-528h-rhwq/GHSA-fqrq-528h-rhwq.json +++ b/advisories/unreviewed/2022/04/GHSA-fqrq-528h-rhwq/GHSA-fqrq-528h-rhwq.json @@ -7,12 +7,8 @@ "CVE-2002-0425" ], "details": "mIRC DCC server protocol allows remote attackers to gain sensitive information such as alternate IRC nicknames via a \"100 testing\" message in a DCC connection request that cannot be ignored or canceled by the user, which may leak the alternate nickname in a response message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fvxw-xrh7-76cj/GHSA-fvxw-xrh7-76cj.json b/advisories/unreviewed/2022/04/GHSA-fvxw-xrh7-76cj/GHSA-fvxw-xrh7-76cj.json index ded51f9fa17..4ceffd10d46 100644 --- a/advisories/unreviewed/2022/04/GHSA-fvxw-xrh7-76cj/GHSA-fvxw-xrh7-76cj.json +++ b/advisories/unreviewed/2022/04/GHSA-fvxw-xrh7-76cj/GHSA-fvxw-xrh7-76cj.json @@ -7,12 +7,8 @@ "CVE-2002-0460" ], "details": "Bitvise WinSSHD before 2002-03-16 allows remote attackers to cause a denial of service (resource exhaustion) via a large number of incomplete connections that are not properly terminated, which are not properly freed by SSHd.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fw77-wwq7-q5qf/GHSA-fw77-wwq7-q5qf.json b/advisories/unreviewed/2022/04/GHSA-fw77-wwq7-q5qf/GHSA-fw77-wwq7-q5qf.json index 3597734da75..16d480821ec 100644 --- a/advisories/unreviewed/2022/04/GHSA-fw77-wwq7-q5qf/GHSA-fw77-wwq7-q5qf.json +++ b/advisories/unreviewed/2022/04/GHSA-fw77-wwq7-q5qf/GHSA-fw77-wwq7-q5qf.json @@ -7,12 +7,8 @@ "CVE-2002-0265" ], "details": "Sawmill for Solaris 6.2.14 and earlier creates the AdminPassword file with world-writable permissions, which allows local users to gain privileges by modifying the file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g3jg-r6gx-37h4/GHSA-g3jg-r6gx-37h4.json b/advisories/unreviewed/2022/04/GHSA-g3jg-r6gx-37h4/GHSA-g3jg-r6gx-37h4.json index 2ed0aa293fd..d2cee33b15d 100644 --- a/advisories/unreviewed/2022/04/GHSA-g3jg-r6gx-37h4/GHSA-g3jg-r6gx-37h4.json +++ b/advisories/unreviewed/2022/04/GHSA-g3jg-r6gx-37h4/GHSA-g3jg-r6gx-37h4.json @@ -7,12 +7,8 @@ "CVE-2002-0668" ], "details": "The web interface for Pingtel xpressa SIP-based voice-over-IP phone 1.2.5 through 1.2.7.4 allows authenticated users to modify the Call Forwarding settings and hijack calls.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g3xm-75qj-2vf8/GHSA-g3xm-75qj-2vf8.json b/advisories/unreviewed/2022/04/GHSA-g3xm-75qj-2vf8/GHSA-g3xm-75qj-2vf8.json index a0da0c2df81..98b928ce3ce 100644 --- a/advisories/unreviewed/2022/04/GHSA-g3xm-75qj-2vf8/GHSA-g3xm-75qj-2vf8.json +++ b/advisories/unreviewed/2022/04/GHSA-g3xm-75qj-2vf8/GHSA-g3xm-75qj-2vf8.json @@ -7,12 +7,8 @@ "CVE-2002-0569" ], "details": "Oracle 9i Application Server allows remote attackers to bypass access restrictions for configuration files via a direct request to the XSQL Servlet (XSQLServlet).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g6rv-jcq2-9j99/GHSA-g6rv-jcq2-9j99.json b/advisories/unreviewed/2022/04/GHSA-g6rv-jcq2-9j99/GHSA-g6rv-jcq2-9j99.json index dbb58448e8a..aef8701854b 100644 --- a/advisories/unreviewed/2022/04/GHSA-g6rv-jcq2-9j99/GHSA-g6rv-jcq2-9j99.json +++ b/advisories/unreviewed/2022/04/GHSA-g6rv-jcq2-9j99/GHSA-g6rv-jcq2-9j99.json @@ -7,12 +7,8 @@ "CVE-2002-0286" ], "details": "The GetPassword function in function.php of SiteNews 0.10 and 0.11 allows remote attackers to gain privileges and add users by providing a non-existent user name and the MD5 checksum for an empty password to add_user.php, which causes GetPassword to produce and compare a blank password for the non-existent user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g6xr-c3q5-2cw3/GHSA-g6xr-c3q5-2cw3.json b/advisories/unreviewed/2022/04/GHSA-g6xr-c3q5-2cw3/GHSA-g6xr-c3q5-2cw3.json index ab3f64a245f..89b08b79422 100644 --- a/advisories/unreviewed/2022/04/GHSA-g6xr-c3q5-2cw3/GHSA-g6xr-c3q5-2cw3.json +++ b/advisories/unreviewed/2022/04/GHSA-g6xr-c3q5-2cw3/GHSA-g6xr-c3q5-2cw3.json @@ -7,12 +7,8 @@ "CVE-2002-0579" ], "details": "WorkforceROI Xpede 4.1 allows remote attackers to gain privileges as an Xpede administrator via a direct HTTP request to the /admin/adminproc.asp script, which does not prompt for a password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g862-pr4p-cf4r/GHSA-g862-pr4p-cf4r.json b/advisories/unreviewed/2022/04/GHSA-g862-pr4p-cf4r/GHSA-g862-pr4p-cf4r.json index df89bf6d6c7..fff75d16995 100644 --- a/advisories/unreviewed/2022/04/GHSA-g862-pr4p-cf4r/GHSA-g862-pr4p-cf4r.json +++ b/advisories/unreviewed/2022/04/GHSA-g862-pr4p-cf4r/GHSA-g862-pr4p-cf4r.json @@ -7,12 +7,8 @@ "CVE-2002-0539" ], "details": "Demarc PureSecure 1.05 allows remote attackers to gain administrative privileges via a SQL injection attack in a session ID that is stored in the s_key cookie.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gf32-wqg4-cx7w/GHSA-gf32-wqg4-cx7w.json b/advisories/unreviewed/2022/04/GHSA-gf32-wqg4-cx7w/GHSA-gf32-wqg4-cx7w.json index 6beaf1be03e..f48d0173628 100644 --- a/advisories/unreviewed/2022/04/GHSA-gf32-wqg4-cx7w/GHSA-gf32-wqg4-cx7w.json +++ b/advisories/unreviewed/2022/04/GHSA-gf32-wqg4-cx7w/GHSA-gf32-wqg4-cx7w.json @@ -7,12 +7,8 @@ "CVE-2002-0409" ], "details": "orderdetails.aspx, as made available to Microsoft .NET developers as example code and demonstrated on www.ibuyspystore.com, allows remote attackers to view the orders of other users by modifying the OrderID parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gf65-8rx5-cg87/GHSA-gf65-8rx5-cg87.json b/advisories/unreviewed/2022/04/GHSA-gf65-8rx5-cg87/GHSA-gf65-8rx5-cg87.json index ad887505666..f37d8ebe3f1 100644 --- a/advisories/unreviewed/2022/04/GHSA-gf65-8rx5-cg87/GHSA-gf65-8rx5-cg87.json +++ b/advisories/unreviewed/2022/04/GHSA-gf65-8rx5-cg87/GHSA-gf65-8rx5-cg87.json @@ -7,12 +7,8 @@ "CVE-2002-0338" ], "details": "The Bat! 1.53d and 1.54beta, and possibly other versions, allows remote attackers to cause a denial of service (crash) via an attachment whose name includes an MS-DOS device name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gj7j-hjpg-r9vh/GHSA-gj7j-hjpg-r9vh.json b/advisories/unreviewed/2022/04/GHSA-gj7j-hjpg-r9vh/GHSA-gj7j-hjpg-r9vh.json index 90c2782cc23..a6ca1b9e955 100644 --- a/advisories/unreviewed/2022/04/GHSA-gj7j-hjpg-r9vh/GHSA-gj7j-hjpg-r9vh.json +++ b/advisories/unreviewed/2022/04/GHSA-gj7j-hjpg-r9vh/GHSA-gj7j-hjpg-r9vh.json @@ -7,12 +7,8 @@ "CVE-2002-0302" ], "details": "The Notify daemon for Symantec Enterprise Firewall (SEF) 6.5.x drops large alerts when SNMP is used as the transport, which could prevent some alerts from being sent in the event of an attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gjj5-7q9j-r452/GHSA-gjj5-7q9j-r452.json b/advisories/unreviewed/2022/04/GHSA-gjj5-7q9j-r452/GHSA-gjj5-7q9j-r452.json index 0183a929cda..59e3ca3070b 100644 --- a/advisories/unreviewed/2022/04/GHSA-gjj5-7q9j-r452/GHSA-gjj5-7q9j-r452.json +++ b/advisories/unreviewed/2022/04/GHSA-gjj5-7q9j-r452/GHSA-gjj5-7q9j-r452.json @@ -7,12 +7,8 @@ "CVE-2002-0567" ], "details": "Oracle 8i and 9i with PL/SQL package for External Procedures (EXTPROC) allows remote attackers to bypass authentication and execute arbitrary functions by using the TNS Listener to directly connect to the EXTPROC process.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gq4w-3h72-frgx/GHSA-gq4w-3h72-frgx.json b/advisories/unreviewed/2022/04/GHSA-gq4w-3h72-frgx/GHSA-gq4w-3h72-frgx.json index 359db6f9673..b3e67005f26 100644 --- a/advisories/unreviewed/2022/04/GHSA-gq4w-3h72-frgx/GHSA-gq4w-3h72-frgx.json +++ b/advisories/unreviewed/2022/04/GHSA-gq4w-3h72-frgx/GHSA-gq4w-3h72-frgx.json @@ -7,12 +7,8 @@ "CVE-2002-0565" ], "details": "Oracle 9iAS 1.0.2.x compiles JSP files in the _pages directory with world-readable permissions under the web root, which allows remote attackers to obtain sensitive information derived from the JSP code, including usernames and passwords, via a direct HTTP request to _pages.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gqhj-52pw-2hjh/GHSA-gqhj-52pw-2hjh.json b/advisories/unreviewed/2022/04/GHSA-gqhj-52pw-2hjh/GHSA-gqhj-52pw-2hjh.json index c173cce64e1..447371a4b20 100644 --- a/advisories/unreviewed/2022/04/GHSA-gqhj-52pw-2hjh/GHSA-gqhj-52pw-2hjh.json +++ b/advisories/unreviewed/2022/04/GHSA-gqhj-52pw-2hjh/GHSA-gqhj-52pw-2hjh.json @@ -7,12 +7,8 @@ "CVE-2002-0353" ], "details": "The ASN.1 parser in Ethereal 0.9.2 and earlier allows remote attackers to cause a denial of service (crash) via a certain malformed packet, which causes Ethereal to allocate memory incorrectly, possibly due to zero-length fields.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gqvh-9hmr-92p2/GHSA-gqvh-9hmr-92p2.json b/advisories/unreviewed/2022/04/GHSA-gqvh-9hmr-92p2/GHSA-gqvh-9hmr-92p2.json index a103ffd07e9..7044cfce6b4 100644 --- a/advisories/unreviewed/2022/04/GHSA-gqvh-9hmr-92p2/GHSA-gqvh-9hmr-92p2.json +++ b/advisories/unreviewed/2022/04/GHSA-gqvh-9hmr-92p2/GHSA-gqvh-9hmr-92p2.json @@ -7,12 +7,8 @@ "CVE-2002-0501" ], "details": "Format string vulnerability in log_print() function of Posadis DNS server before version m5pre2 allows local users and possibly remote attackers to execute arbitrary code via format strings that are inserted into logging messages.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gwf6-2pvg-gfw8/GHSA-gwf6-2pvg-gfw8.json b/advisories/unreviewed/2022/04/GHSA-gwf6-2pvg-gfw8/GHSA-gwf6-2pvg-gfw8.json index bd8617ef9ca..9eddc7fe856 100644 --- a/advisories/unreviewed/2022/04/GHSA-gwf6-2pvg-gfw8/GHSA-gwf6-2pvg-gfw8.json +++ b/advisories/unreviewed/2022/04/GHSA-gwf6-2pvg-gfw8/GHSA-gwf6-2pvg-gfw8.json @@ -7,12 +7,8 @@ "CVE-2002-0413" ], "details": "Cross-site scripting vulnerability in ReBB allows remote attackers to execute arbitrary Javascript and steal cookies via an IMG tag whose URL includes the malicious script.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gwgg-xf2c-hh99/GHSA-gwgg-xf2c-hh99.json b/advisories/unreviewed/2022/04/GHSA-gwgg-xf2c-hh99/GHSA-gwgg-xf2c-hh99.json index 225c782066e..0441d43a8f1 100644 --- a/advisories/unreviewed/2022/04/GHSA-gwgg-xf2c-hh99/GHSA-gwgg-xf2c-hh99.json +++ b/advisories/unreviewed/2022/04/GHSA-gwgg-xf2c-hh99/GHSA-gwgg-xf2c-hh99.json @@ -7,12 +7,8 @@ "CVE-2002-0483" ], "details": "index.php for PHP-Nuke 5.4 and earlier allows remote attackers to determine the physical pathname of the web server when the file parameter is set to index.php, which triggers an error message that leaks the pathname.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gx5w-37c6-p498/GHSA-gx5w-37c6-p498.json b/advisories/unreviewed/2022/04/GHSA-gx5w-37c6-p498/GHSA-gx5w-37c6-p498.json index 824aeb717e5..af4d3424d58 100644 --- a/advisories/unreviewed/2022/04/GHSA-gx5w-37c6-p498/GHSA-gx5w-37c6-p498.json +++ b/advisories/unreviewed/2022/04/GHSA-gx5w-37c6-p498/GHSA-gx5w-37c6-p498.json @@ -7,12 +7,8 @@ "CVE-2002-0405" ], "details": "Buffer overflow in Transsoft Broker FTP Server 5.0 evaluation allows remote attackers to cause a denial of service and possibly execute arbitrary code via a CWD command with a large number of . (dot) characters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h2gg-v468-vwpx/GHSA-h2gg-v468-vwpx.json b/advisories/unreviewed/2022/04/GHSA-h2gg-v468-vwpx/GHSA-h2gg-v468-vwpx.json index 0a71544c2b0..a333d209f41 100644 --- a/advisories/unreviewed/2022/04/GHSA-h2gg-v468-vwpx/GHSA-h2gg-v468-vwpx.json +++ b/advisories/unreviewed/2022/04/GHSA-h2gg-v468-vwpx/GHSA-h2gg-v468-vwpx.json @@ -7,12 +7,8 @@ "CVE-2002-0382" ], "details": "XChat IRC client allows remote attackers to execute arbitrary commands via a /dns command on a host whose DNS reverse lookup contains shell metacharacters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h32h-w8cj-pmf9/GHSA-h32h-w8cj-pmf9.json b/advisories/unreviewed/2022/04/GHSA-h32h-w8cj-pmf9/GHSA-h32h-w8cj-pmf9.json index 79fc0e52f36..8afdb21fb4a 100644 --- a/advisories/unreviewed/2022/04/GHSA-h32h-w8cj-pmf9/GHSA-h32h-w8cj-pmf9.json +++ b/advisories/unreviewed/2022/04/GHSA-h32h-w8cj-pmf9/GHSA-h32h-w8cj-pmf9.json @@ -7,12 +7,8 @@ "CVE-2002-0546" ], "details": "Cross-site scripting vulnerability in the mini-browser for Winamp 2.78 and 2.79 allows remote attackers to execute script via an ID3v1 or ID3v2 tag in an MP3 file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h4v7-866p-245x/GHSA-h4v7-866p-245x.json b/advisories/unreviewed/2022/04/GHSA-h4v7-866p-245x/GHSA-h4v7-866p-245x.json index 8fc8739dc60..5d400d4698e 100644 --- a/advisories/unreviewed/2022/04/GHSA-h4v7-866p-245x/GHSA-h4v7-866p-245x.json +++ b/advisories/unreviewed/2022/04/GHSA-h4v7-866p-245x/GHSA-h4v7-866p-245x.json @@ -7,12 +7,8 @@ "CVE-2002-0599" ], "details": "Blahz-DNS 0.2 and earlier allows remote attackers to bypass authentication and modify configuration by directly requesting CGI programs such as dostuff.php instead of going through the login screen.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h635-p65q-pghw/GHSA-h635-p65q-pghw.json b/advisories/unreviewed/2022/04/GHSA-h635-p65q-pghw/GHSA-h635-p65q-pghw.json index 141a1c51eaa..17787abf694 100644 --- a/advisories/unreviewed/2022/04/GHSA-h635-p65q-pghw/GHSA-h635-p65q-pghw.json +++ b/advisories/unreviewed/2022/04/GHSA-h635-p65q-pghw/GHSA-h635-p65q-pghw.json @@ -7,12 +7,8 @@ "CVE-2002-0333" ], "details": "Directory traversal vulnerability in xtell (xtelld) 1.91.1 and earlier, and 2.x before 2.7, allows remote attackers to read files with short names, and local users to read more files using a symlink with a short name, via a .. in the TTY argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h6fv-822m-499v/GHSA-h6fv-822m-499v.json b/advisories/unreviewed/2022/04/GHSA-h6fv-822m-499v/GHSA-h6fv-822m-499v.json index d45f47d3f2f..49e69fb1bc6 100644 --- a/advisories/unreviewed/2022/04/GHSA-h6fv-822m-499v/GHSA-h6fv-822m-499v.json +++ b/advisories/unreviewed/2022/04/GHSA-h6fv-822m-499v/GHSA-h6fv-822m-499v.json @@ -7,12 +7,8 @@ "CVE-2002-0691" ], "details": "Microsoft Internet Explorer 5.01 and 5.5 allows remote attackers to execute scripts in the Local Computer zone via a URL that references a local HTML resource file, a variant of \"Cross-Site Scripting in Local HTML Resource\" as identified by CAN-2002-0189.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h6v3-wp3g-7224/GHSA-h6v3-wp3g-7224.json b/advisories/unreviewed/2022/04/GHSA-h6v3-wp3g-7224/GHSA-h6v3-wp3g-7224.json index a209208e406..0158df3ef69 100644 --- a/advisories/unreviewed/2022/04/GHSA-h6v3-wp3g-7224/GHSA-h6v3-wp3g-7224.json +++ b/advisories/unreviewed/2022/04/GHSA-h6v3-wp3g-7224/GHSA-h6v3-wp3g-7224.json @@ -7,12 +7,8 @@ "CVE-2002-0555" ], "details": "IBM Informix Web DataBlade 4.12 unescapes user input even if an application has escaped it, which could allow remote attackers to execute SQL code in a web form even when the developer has attempted to escape it.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h8rh-5fr3-29cc/GHSA-h8rh-5fr3-29cc.json b/advisories/unreviewed/2022/04/GHSA-h8rh-5fr3-29cc/GHSA-h8rh-5fr3-29cc.json index 0fd7300b639..56d1bd2dab2 100644 --- a/advisories/unreviewed/2022/04/GHSA-h8rh-5fr3-29cc/GHSA-h8rh-5fr3-29cc.json +++ b/advisories/unreviewed/2022/04/GHSA-h8rh-5fr3-29cc/GHSA-h8rh-5fr3-29cc.json @@ -7,12 +7,8 @@ "CVE-2002-0593" ], "details": "Buffer overflow in Netscape 6 and Mozilla 1.0 RC1 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long channel name in an IRC URI.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h974-9qm8-mc9p/GHSA-h974-9qm8-mc9p.json b/advisories/unreviewed/2022/04/GHSA-h974-9qm8-mc9p/GHSA-h974-9qm8-mc9p.json index b708dac5b1a..47264940b72 100644 --- a/advisories/unreviewed/2022/04/GHSA-h974-9qm8-mc9p/GHSA-h974-9qm8-mc9p.json +++ b/advisories/unreviewed/2022/04/GHSA-h974-9qm8-mc9p/GHSA-h974-9qm8-mc9p.json @@ -7,12 +7,8 @@ "CVE-2002-0260" ], "details": "Buffer overflow in InstantServers MiniPortal 1.1.5 and earlier allows remote attackers to execute arbitrary code via a long login name, which is not properly handled by the logging utility.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h975-2j4c-3mgg/GHSA-h975-2j4c-3mgg.json b/advisories/unreviewed/2022/04/GHSA-h975-2j4c-3mgg/GHSA-h975-2j4c-3mgg.json index e207cc3b56c..5bef55da9ed 100644 --- a/advisories/unreviewed/2022/04/GHSA-h975-2j4c-3mgg/GHSA-h975-2j4c-3mgg.json +++ b/advisories/unreviewed/2022/04/GHSA-h975-2j4c-3mgg/GHSA-h975-2j4c-3mgg.json @@ -7,12 +7,8 @@ "CVE-2002-0372" ], "details": "Microsoft Windows Media Player versions 6.4 and 7.1 and Media Player for Windows XP allow remote attackers to bypass Internet Explorer's (IE) security mechanisms and run code via an executable .wma media file with a license installation requirement stored in the IE cache, aka the \"Cache Path Disclosure via Windows Media Player\".", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hhx3-jx8c-hf8v/GHSA-hhx3-jx8c-hf8v.json b/advisories/unreviewed/2022/04/GHSA-hhx3-jx8c-hf8v/GHSA-hhx3-jx8c-hf8v.json index 2be6f0e8e63..303f3cf8624 100644 --- a/advisories/unreviewed/2022/04/GHSA-hhx3-jx8c-hf8v/GHSA-hhx3-jx8c-hf8v.json +++ b/advisories/unreviewed/2022/04/GHSA-hhx3-jx8c-hf8v/GHSA-hhx3-jx8c-hf8v.json @@ -7,12 +7,8 @@ "CVE-2002-0270" ], "details": "Opera, when configured with the \"Determine action by MIME type\" option disabled, interprets an object as an HTML document even when its MIME Content-Type is text/plain, which could allow remote attackers to execute arbitrary script in documents that the user does not expect, possibly through web applications that use a text/plain type to prevent cross-site scripting attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-hjm7-9w6q-4qcm/GHSA-hjm7-9w6q-4qcm.json b/advisories/unreviewed/2022/04/GHSA-hjm7-9w6q-4qcm/GHSA-hjm7-9w6q-4qcm.json index 66750f98fd8..f90d9162676 100644 --- a/advisories/unreviewed/2022/04/GHSA-hjm7-9w6q-4qcm/GHSA-hjm7-9w6q-4qcm.json +++ b/advisories/unreviewed/2022/04/GHSA-hjm7-9w6q-4qcm/GHSA-hjm7-9w6q-4qcm.json @@ -7,12 +7,8 @@ "CVE-2002-0521" ], "details": "Cross-site scripting vulnerabilities in ASP-Nuke RC2 and earlier allow remote attackers to execute script or gain privileges as other ASP-Nuke users via script in (1) the name parameter in downloads.asp, (2) the message parameter in Post.asp, or (3) a web site URL in profile.asp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hm9v-m7w5-9hhj/GHSA-hm9v-m7w5-9hhj.json b/advisories/unreviewed/2022/04/GHSA-hm9v-m7w5-9hhj/GHSA-hm9v-m7w5-9hhj.json index 456d50406fd..b8d5a44813b 100644 --- a/advisories/unreviewed/2022/04/GHSA-hm9v-m7w5-9hhj/GHSA-hm9v-m7w5-9hhj.json +++ b/advisories/unreviewed/2022/04/GHSA-hm9v-m7w5-9hhj/GHSA-hm9v-m7w5-9hhj.json @@ -7,12 +7,8 @@ "CVE-2002-0376" ], "details": "Buffer overflow in Apple QuickTime 5.0 ActiveX component allows remote attackers to execute arbitrary code via a long pluginspage field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hqgc-cq8p-69cp/GHSA-hqgc-cq8p-69cp.json b/advisories/unreviewed/2022/04/GHSA-hqgc-cq8p-69cp/GHSA-hqgc-cq8p-69cp.json index 1739f94472c..5b5f2c54f3a 100644 --- a/advisories/unreviewed/2022/04/GHSA-hqgc-cq8p-69cp/GHSA-hqgc-cq8p-69cp.json +++ b/advisories/unreviewed/2022/04/GHSA-hqgc-cq8p-69cp/GHSA-hqgc-cq8p-69cp.json @@ -7,12 +7,8 @@ "CVE-2002-0437" ], "details": "Smsd in SMS Server Tools (SMStools) before 1.4.8 allows remote attackers to execute arbitrary commands via shell metacharacters (backquotes) in message text, as described with the term \"string format vulnerability\" by some sources.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hrx7-hjrh-ww2p/GHSA-hrx7-hjrh-ww2p.json b/advisories/unreviewed/2022/04/GHSA-hrx7-hjrh-ww2p/GHSA-hrx7-hjrh-ww2p.json index 0c205c55ec0..ca2d43e39e7 100644 --- a/advisories/unreviewed/2022/04/GHSA-hrx7-hjrh-ww2p/GHSA-hrx7-hjrh-ww2p.json +++ b/advisories/unreviewed/2022/04/GHSA-hrx7-hjrh-ww2p/GHSA-hrx7-hjrh-ww2p.json @@ -7,12 +7,8 @@ "CVE-2002-0498" ], "details": "Etnus TotalView 5.0.0-4 installs certain files with UID 5039 and GID 59, which could allow local users with that UID or GID to modify the files and gain privileges as other TotalView users.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hw7p-mm7c-47w8/GHSA-hw7p-mm7c-47w8.json b/advisories/unreviewed/2022/04/GHSA-hw7p-mm7c-47w8/GHSA-hw7p-mm7c-47w8.json index 4bb0dbc33e9..6df2a3bf4c1 100644 --- a/advisories/unreviewed/2022/04/GHSA-hw7p-mm7c-47w8/GHSA-hw7p-mm7c-47w8.json +++ b/advisories/unreviewed/2022/04/GHSA-hw7p-mm7c-47w8/GHSA-hw7p-mm7c-47w8.json @@ -7,12 +7,8 @@ "CVE-2002-0452" ], "details": "Foundry Networks ServerIron switches do not decode URIs when applying \"url-map\" rules, which could make it easier for attackers to cause the switch to forward traffic to a different server than intended and exploit vulnerabilities that would otherwise be inaccessible.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j27p-39pg-jfmj/GHSA-j27p-39pg-jfmj.json b/advisories/unreviewed/2022/04/GHSA-j27p-39pg-jfmj/GHSA-j27p-39pg-jfmj.json index a406de7f363..aa822fb1572 100644 --- a/advisories/unreviewed/2022/04/GHSA-j27p-39pg-jfmj/GHSA-j27p-39pg-jfmj.json +++ b/advisories/unreviewed/2022/04/GHSA-j27p-39pg-jfmj/GHSA-j27p-39pg-jfmj.json @@ -7,12 +7,8 @@ "CVE-2002-0568" ], "details": "Oracle 9i Application Server stores XSQL and SOAP configuration files insecurely, which allows local users to obtain sensitive information including usernames and passwords by requesting (1) XSQLConfig.xml or (2) soapConfig.xml through a virtual directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j38h-g479-cx9j/GHSA-j38h-g479-cx9j.json b/advisories/unreviewed/2022/04/GHSA-j38h-g479-cx9j/GHSA-j38h-g479-cx9j.json index e0dde34954f..ac7265fb9e9 100644 --- a/advisories/unreviewed/2022/04/GHSA-j38h-g479-cx9j/GHSA-j38h-g479-cx9j.json +++ b/advisories/unreviewed/2022/04/GHSA-j38h-g479-cx9j/GHSA-j38h-g479-cx9j.json @@ -7,12 +7,8 @@ "CVE-2002-0414" ], "details": "KAME-derived implementations of IPsec on NetBSD 1.5.2, FreeBSD 4.5, and other operating systems, does not properly consult the Security Policy Database (SPD), which could cause a Security Gateway (SG) that does not use Encapsulating Security Payload (ESP) to forward forged IPv4 packets.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j3w3-46cx-x8r5/GHSA-j3w3-46cx-x8r5.json b/advisories/unreviewed/2022/04/GHSA-j3w3-46cx-x8r5/GHSA-j3w3-46cx-x8r5.json index 495b13115da..b09398eda61 100644 --- a/advisories/unreviewed/2022/04/GHSA-j3w3-46cx-x8r5/GHSA-j3w3-46cx-x8r5.json +++ b/advisories/unreviewed/2022/04/GHSA-j3w3-46cx-x8r5/GHSA-j3w3-46cx-x8r5.json @@ -7,12 +7,8 @@ "CVE-2002-0477" ], "details": "Standalone Macromedia Flash Player 5.0 before 5,0,30,2 allows remote attackers to execute arbitrary programs via a .SWF file containing the \"exec\" FSCommand.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j5q5-72f6-9f78/GHSA-j5q5-72f6-9f78.json b/advisories/unreviewed/2022/04/GHSA-j5q5-72f6-9f78/GHSA-j5q5-72f6-9f78.json index 5728e474f2f..d55404b86fa 100644 --- a/advisories/unreviewed/2022/04/GHSA-j5q5-72f6-9f78/GHSA-j5q5-72f6-9f78.json +++ b/advisories/unreviewed/2022/04/GHSA-j5q5-72f6-9f78/GHSA-j5q5-72f6-9f78.json @@ -7,12 +7,8 @@ "CVE-2002-0582" ], "details": "WorkforceROI Xpede 4.1 stores temporary expense claim reports in a world-readable and indexable /reports/temp directory, which allows remote attackers to read the reports by accessing the directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j65c-3cph-8qfj/GHSA-j65c-3cph-8qfj.json b/advisories/unreviewed/2022/04/GHSA-j65c-3cph-8qfj/GHSA-j65c-3cph-8qfj.json index 13d2e3344e6..ae65ae414cf 100644 --- a/advisories/unreviewed/2022/04/GHSA-j65c-3cph-8qfj/GHSA-j65c-3cph-8qfj.json +++ b/advisories/unreviewed/2022/04/GHSA-j65c-3cph-8qfj/GHSA-j65c-3cph-8qfj.json @@ -7,12 +7,8 @@ "CVE-2002-0474" ], "details": "Cross-site scripting vulnerability in ZeroForum allows remote attackers to execute arbitrary Javascript on web clients by embedding the script within IMG image tag.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j6v5-4v5g-7vq5/GHSA-j6v5-4v5g-7vq5.json b/advisories/unreviewed/2022/04/GHSA-j6v5-4v5g-7vq5/GHSA-j6v5-4v5g-7vq5.json index 3434fbcfa1d..e42ba9c45e2 100644 --- a/advisories/unreviewed/2022/04/GHSA-j6v5-4v5g-7vq5/GHSA-j6v5-4v5g-7vq5.json +++ b/advisories/unreviewed/2022/04/GHSA-j6v5-4v5g-7vq5/GHSA-j6v5-4v5g-7vq5.json @@ -7,12 +7,8 @@ "CVE-2002-0494" ], "details": "Cross-site scripting vulnerability in WebSight Directory System 0.1 allows remote attackers to execute arbitrary Javascript and gain access to the WebSight administrator via a new link submission containing the script in a website name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j6w2-phrc-2f3m/GHSA-j6w2-phrc-2f3m.json b/advisories/unreviewed/2022/04/GHSA-j6w2-phrc-2f3m/GHSA-j6w2-phrc-2f3m.json index e40e73c5154..7bfdf5378b2 100644 --- a/advisories/unreviewed/2022/04/GHSA-j6w2-phrc-2f3m/GHSA-j6w2-phrc-2f3m.json +++ b/advisories/unreviewed/2022/04/GHSA-j6w2-phrc-2f3m/GHSA-j6w2-phrc-2f3m.json @@ -7,12 +7,8 @@ "CVE-2002-0447" ], "details": "Directory traversal vulnerability in Xerver Free Web Server 2.10 and earlier allows remote attackers to list arbitrary directories via a .. (dot dot) in an HTTP GET request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j74m-2v5q-p9r4/GHSA-j74m-2v5q-p9r4.json b/advisories/unreviewed/2022/04/GHSA-j74m-2v5q-p9r4/GHSA-j74m-2v5q-p9r4.json index d07e1775912..751bf867aa1 100644 --- a/advisories/unreviewed/2022/04/GHSA-j74m-2v5q-p9r4/GHSA-j74m-2v5q-p9r4.json +++ b/advisories/unreviewed/2022/04/GHSA-j74m-2v5q-p9r4/GHSA-j74m-2v5q-p9r4.json @@ -7,12 +7,8 @@ "CVE-2002-0558" ], "details": "Directory traversal vulnerability in TYPSoft FTP server 0.97.1 and earlier allows a remote authenticated user (possibly anonymous) to list arbitrary directories via a .. in a LIST (ls) command ending in wildcard *.* characters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j7pv-hcg7-83ch/GHSA-j7pv-hcg7-83ch.json b/advisories/unreviewed/2022/04/GHSA-j7pv-hcg7-83ch/GHSA-j7pv-hcg7-83ch.json index 5f90bea2179..9e782fda6d4 100644 --- a/advisories/unreviewed/2022/04/GHSA-j7pv-hcg7-83ch/GHSA-j7pv-hcg7-83ch.json +++ b/advisories/unreviewed/2022/04/GHSA-j7pv-hcg7-83ch/GHSA-j7pv-hcg7-83ch.json @@ -7,12 +7,8 @@ "CVE-2002-0406" ], "details": "Menasoft SPHERE server 0.99x and 0.5x allows remote attackers to cause a denial of service by establishing a large number of connections to the server without providing login credentials, which prevents other users from being able to log in.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j7rx-r49h-mc24/GHSA-j7rx-r49h-mc24.json b/advisories/unreviewed/2022/04/GHSA-j7rx-r49h-mc24/GHSA-j7rx-r49h-mc24.json index a2c5c5caa2d..ed6f7a06a05 100644 --- a/advisories/unreviewed/2022/04/GHSA-j7rx-r49h-mc24/GHSA-j7rx-r49h-mc24.json +++ b/advisories/unreviewed/2022/04/GHSA-j7rx-r49h-mc24/GHSA-j7rx-r49h-mc24.json @@ -7,12 +7,8 @@ "CVE-2002-0321" ], "details": "Yahoo! Messenger 5.0 allows remote attackers to spoof other users by modifying the username and using the spoofed username for social engineering or denial of service (flooding) attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j83h-383p-595c/GHSA-j83h-383p-595c.json b/advisories/unreviewed/2022/04/GHSA-j83h-383p-595c/GHSA-j83h-383p-595c.json index fbaff13ef36..c1c5ab6e8fd 100644 --- a/advisories/unreviewed/2022/04/GHSA-j83h-383p-595c/GHSA-j83h-383p-595c.json +++ b/advisories/unreviewed/2022/04/GHSA-j83h-383p-595c/GHSA-j83h-383p-595c.json @@ -7,12 +7,8 @@ "CVE-2002-0258" ], "details": "Merak Mail IceWarp Web Mail uses a static identifier as a user session ID that does not change across sessions, which could allow remote attackers with access to the ID to gain privileges as that user, e.g. by extracting the ID from the user's answer or forward URLs.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j8jw-r54c-vg4w/GHSA-j8jw-r54c-vg4w.json b/advisories/unreviewed/2022/04/GHSA-j8jw-r54c-vg4w/GHSA-j8jw-r54c-vg4w.json index 66b05394325..b2867a4e2ed 100644 --- a/advisories/unreviewed/2022/04/GHSA-j8jw-r54c-vg4w/GHSA-j8jw-r54c-vg4w.json +++ b/advisories/unreviewed/2022/04/GHSA-j8jw-r54c-vg4w/GHSA-j8jw-r54c-vg4w.json @@ -7,12 +7,8 @@ "CVE-2002-0482" ], "details": "Directory traversal vulnerability in PCI Netsupport Manager before version 7, when running web extensions, allows remote attackers to read arbitrary files via a .. (dot dot) in the HTTP GET request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j8p8-27w4-mj7h/GHSA-j8p8-27w4-mj7h.json b/advisories/unreviewed/2022/04/GHSA-j8p8-27w4-mj7h/GHSA-j8p8-27w4-mj7h.json index a4cce66342e..45eb0a1a453 100644 --- a/advisories/unreviewed/2022/04/GHSA-j8p8-27w4-mj7h/GHSA-j8p8-27w4-mj7h.json +++ b/advisories/unreviewed/2022/04/GHSA-j8p8-27w4-mj7h/GHSA-j8p8-27w4-mj7h.json @@ -7,12 +7,8 @@ "CVE-2002-0675" ], "details": "Pingtel xpressa SIP-based voice-over-IP phone 1.2.5 through 1.2.7.4 does not require administrative privileges to perform a firmware upgrade, which allows unauthorized users to upgrade the phone.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j98c-38q6-r4r2/GHSA-j98c-38q6-r4r2.json b/advisories/unreviewed/2022/04/GHSA-j98c-38q6-r4r2/GHSA-j98c-38q6-r4r2.json index 85b1678bc88..be8dfb67d35 100644 --- a/advisories/unreviewed/2022/04/GHSA-j98c-38q6-r4r2/GHSA-j98c-38q6-r4r2.json +++ b/advisories/unreviewed/2022/04/GHSA-j98c-38q6-r4r2/GHSA-j98c-38q6-r4r2.json @@ -7,12 +7,8 @@ "CVE-2002-0320" ], "details": "Buffer overflow in Yahoo! Messenger 5.0 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long (1) message or (2) IMvironment field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jgcj-5rhp-3r22/GHSA-jgcj-5rhp-3r22.json b/advisories/unreviewed/2022/04/GHSA-jgcj-5rhp-3r22/GHSA-jgcj-5rhp-3r22.json index ddd6c63b9e3..03db0721900 100644 --- a/advisories/unreviewed/2022/04/GHSA-jgcj-5rhp-3r22/GHSA-jgcj-5rhp-3r22.json +++ b/advisories/unreviewed/2022/04/GHSA-jgcj-5rhp-3r22/GHSA-jgcj-5rhp-3r22.json @@ -7,12 +7,8 @@ "CVE-2002-0282" ], "details": "DCP-Portal 3.7 through 4.5 allows remote attackers to obtain the physical path of the server via (1) a direct request to add_user.php, or via an invalid new_language parameter in (2) contents.php, (3) categories.php, or (4) files.php, which leaks the path in an error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jh33-jw75-hhpc/GHSA-jh33-jw75-hhpc.json b/advisories/unreviewed/2022/04/GHSA-jh33-jw75-hhpc/GHSA-jh33-jw75-hhpc.json index 38e52317a05..3c00106a01b 100644 --- a/advisories/unreviewed/2022/04/GHSA-jh33-jw75-hhpc/GHSA-jh33-jw75-hhpc.json +++ b/advisories/unreviewed/2022/04/GHSA-jh33-jw75-hhpc/GHSA-jh33-jw75-hhpc.json @@ -7,12 +7,8 @@ "CVE-2002-0259" ], "details": "InstantServers MiniPortal 1.1.5 and earlier stores sensitive login and account data in plaintext in (1) .pwd files in the miniportal/apache directory, or (2) mplog.txt, which could allow local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jh89-4fc9-pc78/GHSA-jh89-4fc9-pc78.json b/advisories/unreviewed/2022/04/GHSA-jh89-4fc9-pc78/GHSA-jh89-4fc9-pc78.json index d36a9d3c1a9..bbc3ec88417 100644 --- a/advisories/unreviewed/2022/04/GHSA-jh89-4fc9-pc78/GHSA-jh89-4fc9-pc78.json +++ b/advisories/unreviewed/2022/04/GHSA-jh89-4fc9-pc78/GHSA-jh89-4fc9-pc78.json @@ -7,12 +7,8 @@ "CVE-2002-0415" ], "details": "Directory traversal vulnerability in the web server used in RealPlayer 6.0.7, and possibly other versions, may allow local users to read files that are accessible to RealPlayer via a .. (dot dot) in an HTTP GET request to port 1275.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jhq4-p9g6-9x3f/GHSA-jhq4-p9g6-9x3f.json b/advisories/unreviewed/2022/04/GHSA-jhq4-p9g6-9x3f/GHSA-jhq4-p9g6-9x3f.json index 9dd1efe4116..96503f53a89 100644 --- a/advisories/unreviewed/2022/04/GHSA-jhq4-p9g6-9x3f/GHSA-jhq4-p9g6-9x3f.json +++ b/advisories/unreviewed/2022/04/GHSA-jhq4-p9g6-9x3f/GHSA-jhq4-p9g6-9x3f.json @@ -7,12 +7,8 @@ "CVE-2002-0463" ], "details": "home.php in ARSC (Really Simple Chat) 1.0.1 and earlier allows remote attackers to determine the full pathname of the web server via an invalid language in the arsc_language parameter, which leaks the pathname in an error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jjxj-xvcp-cxv8/GHSA-jjxj-xvcp-cxv8.json b/advisories/unreviewed/2022/04/GHSA-jjxj-xvcp-cxv8/GHSA-jjxj-xvcp-cxv8.json index 5ffc4e9b385..73e9059b602 100644 --- a/advisories/unreviewed/2022/04/GHSA-jjxj-xvcp-cxv8/GHSA-jjxj-xvcp-cxv8.json +++ b/advisories/unreviewed/2022/04/GHSA-jjxj-xvcp-cxv8/GHSA-jjxj-xvcp-cxv8.json @@ -7,12 +7,8 @@ "CVE-2002-0682" ], "details": "Cross-site scripting vulnerability in Apache Tomcat 4.0.3 allows remote attackers to execute script as other web users via script in a URL with the /servlet/ mapping, which does not filter the script when an exception is thrown by the servlet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jmhj-f3wf-272c/GHSA-jmhj-f3wf-272c.json b/advisories/unreviewed/2022/04/GHSA-jmhj-f3wf-272c/GHSA-jmhj-f3wf-272c.json index ccfcdba6a35..dfc70801b62 100644 --- a/advisories/unreviewed/2022/04/GHSA-jmhj-f3wf-272c/GHSA-jmhj-f3wf-272c.json +++ b/advisories/unreviewed/2022/04/GHSA-jmhj-f3wf-272c/GHSA-jmhj-f3wf-272c.json @@ -7,12 +7,8 @@ "CVE-2002-0596" ], "details": "WebTrends Reporting Center 4.0d allows remote attackers to determine the real path of the web server via a GET request to get_od_toc.pl with an empty Profile parameter, which leaks the pathname in an error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-jp54-9cgc-4p57/GHSA-jp54-9cgc-4p57.json b/advisories/unreviewed/2022/04/GHSA-jp54-9cgc-4p57/GHSA-jp54-9cgc-4p57.json index 7b5ed9972d2..ebc0e0fc151 100644 --- a/advisories/unreviewed/2022/04/GHSA-jp54-9cgc-4p57/GHSA-jp54-9cgc-4p57.json +++ b/advisories/unreviewed/2022/04/GHSA-jp54-9cgc-4p57/GHSA-jp54-9cgc-4p57.json @@ -7,12 +7,8 @@ "CVE-2002-0252" ], "details": "Buffer overflow in Apple QuickTime Player 5.01 and 5.02 allows remote web servers to execute arbitrary code via a response containing a long Content-Type MIME header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jp6f-4vg5-hmj9/GHSA-jp6f-4vg5-hmj9.json b/advisories/unreviewed/2022/04/GHSA-jp6f-4vg5-hmj9/GHSA-jp6f-4vg5-hmj9.json index 431fa975e09..940006aad8c 100644 --- a/advisories/unreviewed/2022/04/GHSA-jp6f-4vg5-hmj9/GHSA-jp6f-4vg5-hmj9.json +++ b/advisories/unreviewed/2022/04/GHSA-jp6f-4vg5-hmj9/GHSA-jp6f-4vg5-hmj9.json @@ -7,12 +7,8 @@ "CVE-2002-0594" ], "details": "Netscape 6 and Mozilla 1.0 RC1 and earlier allows remote attackers to determine the existence of files on the client system via a LINK element in a Cascading Style Sheet (CSS) page that causes an HTTP redirect.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jq2c-fvjr-j826/GHSA-jq2c-fvjr-j826.json b/advisories/unreviewed/2022/04/GHSA-jq2c-fvjr-j826/GHSA-jq2c-fvjr-j826.json index 235811ea120..f4bcdd24daa 100644 --- a/advisories/unreviewed/2022/04/GHSA-jq2c-fvjr-j826/GHSA-jq2c-fvjr-j826.json +++ b/advisories/unreviewed/2022/04/GHSA-jq2c-fvjr-j826/GHSA-jq2c-fvjr-j826.json @@ -7,12 +7,8 @@ "CVE-2002-0278" ], "details": "Directory traversal vulnerability in Add2it Mailman Free 1.73 and earlier allows remote attackers to modify arbitrary files via a .. (dot dot) in the list parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jqf7-2vx9-v35c/GHSA-jqf7-2vx9-v35c.json b/advisories/unreviewed/2022/04/GHSA-jqf7-2vx9-v35c/GHSA-jqf7-2vx9-v35c.json index c8b2fca44b9..1b48d868ac8 100644 --- a/advisories/unreviewed/2022/04/GHSA-jqf7-2vx9-v35c/GHSA-jqf7-2vx9-v35c.json +++ b/advisories/unreviewed/2022/04/GHSA-jqf7-2vx9-v35c/GHSA-jqf7-2vx9-v35c.json @@ -7,12 +7,8 @@ "CVE-2002-0428" ], "details": "Check Point FireWall-1 SecuRemote/SecuClient 4.0 and 4.1 allows clients to bypass the \"authentication timeout\" by modifying the to_expire or expire values in the client's users.C configuration file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jrwf-344w-jh9p/GHSA-jrwf-344w-jh9p.json b/advisories/unreviewed/2022/04/GHSA-jrwf-344w-jh9p/GHSA-jrwf-344w-jh9p.json index 46d4cf05381..b9db9c5aef1 100644 --- a/advisories/unreviewed/2022/04/GHSA-jrwf-344w-jh9p/GHSA-jrwf-344w-jh9p.json +++ b/advisories/unreviewed/2022/04/GHSA-jrwf-344w-jh9p/GHSA-jrwf-344w-jh9p.json @@ -7,12 +7,8 @@ "CVE-2002-0580" ], "details": "WorkforceROI Xpede 4.1 allows remote attackers to obtain the database username via a request to datasource.asp, which leaks the username in a form and allows the attacker to more easily conduct brute force password guessing attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jvcw-7829-ggcr/GHSA-jvcw-7829-ggcr.json b/advisories/unreviewed/2022/04/GHSA-jvcw-7829-ggcr/GHSA-jvcw-7829-ggcr.json index 39ef3c076a4..604b15813f5 100644 --- a/advisories/unreviewed/2022/04/GHSA-jvcw-7829-ggcr/GHSA-jvcw-7829-ggcr.json +++ b/advisories/unreviewed/2022/04/GHSA-jvcw-7829-ggcr/GHSA-jvcw-7829-ggcr.json @@ -7,12 +7,8 @@ "CVE-2002-0228" ], "details": "Microsoft MSN Messenger allows remote attackers to use Javascript that references an ActiveX object to obtain sensitive information such as display names and web site navigation, and possibly more when the user is connected to certain Microsoft sites (or DNS-spoofed sites).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jx86-2jh9-8w95/GHSA-jx86-2jh9-8w95.json b/advisories/unreviewed/2022/04/GHSA-jx86-2jh9-8w95/GHSA-jx86-2jh9-8w95.json index 543944858e8..bb21144778a 100644 --- a/advisories/unreviewed/2022/04/GHSA-jx86-2jh9-8w95/GHSA-jx86-2jh9-8w95.json +++ b/advisories/unreviewed/2022/04/GHSA-jx86-2jh9-8w95/GHSA-jx86-2jh9-8w95.json @@ -7,12 +7,8 @@ "CVE-2002-0393" ], "details": "Buffer overflow in Red-M 1050 (Bluetooth Access Point) management web interface allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long administration password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-m33j-g8mr-vpr5/GHSA-m33j-g8mr-vpr5.json b/advisories/unreviewed/2022/04/GHSA-m33j-g8mr-vpr5/GHSA-m33j-g8mr-vpr5.json index 372b387189d..a5dda8423d5 100644 --- a/advisories/unreviewed/2022/04/GHSA-m33j-g8mr-vpr5/GHSA-m33j-g8mr-vpr5.json +++ b/advisories/unreviewed/2022/04/GHSA-m33j-g8mr-vpr5/GHSA-m33j-g8mr-vpr5.json @@ -7,12 +7,8 @@ "CVE-2002-0397" ], "details": "Red-M 1050 (Bluetooth Access Point) publicizes its name, IP address, and other information in UDP packets to a broadcast address, which allows any system on the network to obtain potentially sensitive information about the Access Point device by monitoring UDP port 8887.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-m48r-j6v8-pc26/GHSA-m48r-j6v8-pc26.json b/advisories/unreviewed/2022/04/GHSA-m48r-j6v8-pc26/GHSA-m48r-j6v8-pc26.json index 8bc9af5f970..75e9afb23fc 100644 --- a/advisories/unreviewed/2022/04/GHSA-m48r-j6v8-pc26/GHSA-m48r-j6v8-pc26.json +++ b/advisories/unreviewed/2022/04/GHSA-m48r-j6v8-pc26/GHSA-m48r-j6v8-pc26.json @@ -7,12 +7,8 @@ "CVE-2002-0368" ], "details": "The Store Service in Microsoft Exchange 2000 allows remote attackers to cause a denial of service (CPU consumption) via a mail message with a malformed RFC message attribute, aka \"Malformed Mail Attribute can Cause Exchange 2000 to Exhaust CPU Resources.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-m534-vg8m-p6gv/GHSA-m534-vg8m-p6gv.json b/advisories/unreviewed/2022/04/GHSA-m534-vg8m-p6gv/GHSA-m534-vg8m-p6gv.json index 277590339aa..deb760b1b76 100644 --- a/advisories/unreviewed/2022/04/GHSA-m534-vg8m-p6gv/GHSA-m534-vg8m-p6gv.json +++ b/advisories/unreviewed/2022/04/GHSA-m534-vg8m-p6gv/GHSA-m534-vg8m-p6gv.json @@ -7,12 +7,8 @@ "CVE-2002-0254" ], "details": "ICQ 2001b Build 3659 allows remote attackers to cause a denial of service (crash) via a malformed picture that contains large height and width values, which causes the crash when viewed in Userdetails.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-m8wm-g2fv-r2mc/GHSA-m8wm-g2fv-r2mc.json b/advisories/unreviewed/2022/04/GHSA-m8wm-g2fv-r2mc/GHSA-m8wm-g2fv-r2mc.json index 7c422c571ff..8b2cd289861 100644 --- a/advisories/unreviewed/2022/04/GHSA-m8wm-g2fv-r2mc/GHSA-m8wm-g2fv-r2mc.json +++ b/advisories/unreviewed/2022/04/GHSA-m8wm-g2fv-r2mc/GHSA-m8wm-g2fv-r2mc.json @@ -7,12 +7,8 @@ "CVE-2002-0538" ], "details": "FTP proxy in Symantec Raptor Firewall 6.5.3 and Enterprise 7.0 rewrites an FTP server's \"FTP PORT\" responses in a way that allows remote attackers to redirect FTP data connections to arbitrary ports, a variant of the \"FTP bounce\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-m8ww-vg8v-xh9q/GHSA-m8ww-vg8v-xh9q.json b/advisories/unreviewed/2022/04/GHSA-m8ww-vg8v-xh9q/GHSA-m8ww-vg8v-xh9q.json index 17c7e75e3ea..00b265ae7a4 100644 --- a/advisories/unreviewed/2022/04/GHSA-m8ww-vg8v-xh9q/GHSA-m8ww-vg8v-xh9q.json +++ b/advisories/unreviewed/2022/04/GHSA-m8ww-vg8v-xh9q/GHSA-m8ww-vg8v-xh9q.json @@ -7,12 +7,8 @@ "CVE-2002-0344" ], "details": "Symantec LiveUpdate 1.5 and earlier in Norton Antivirus stores usernames and passwords for a local LiveUpdate server in cleartext in the registry, which may allow remote attackers to impersonate the LiveUpdate server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mc3r-fx6r-7vrr/GHSA-mc3r-fx6r-7vrr.json b/advisories/unreviewed/2022/04/GHSA-mc3r-fx6r-7vrr/GHSA-mc3r-fx6r-7vrr.json index 43defec7a87..2db72f772a4 100644 --- a/advisories/unreviewed/2022/04/GHSA-mc3r-fx6r-7vrr/GHSA-mc3r-fx6r-7vrr.json +++ b/advisories/unreviewed/2022/04/GHSA-mc3r-fx6r-7vrr/GHSA-mc3r-fx6r-7vrr.json @@ -7,12 +7,8 @@ "CVE-2002-0292" ], "details": "Cross-site scripting vulnerability in Slash before 2.2.5, as used in Slashcode and elsewhere, allows remote attackers to steal cookies and authentication information from other users via Javascript in a URL, possibly in the formkey field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mfq4-34w4-hgqx/GHSA-mfq4-34w4-hgqx.json b/advisories/unreviewed/2022/04/GHSA-mfq4-34w4-hgqx/GHSA-mfq4-34w4-hgqx.json index 2d946f6eb10..9be44355c9f 100644 --- a/advisories/unreviewed/2022/04/GHSA-mfq4-34w4-hgqx/GHSA-mfq4-34w4-hgqx.json +++ b/advisories/unreviewed/2022/04/GHSA-mfq4-34w4-hgqx/GHSA-mfq4-34w4-hgqx.json @@ -7,12 +7,8 @@ "CVE-2002-0262" ], "details": "Directory traversal vulnerability in netget for Sybex E-Trainer web server allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mg5x-wrv2-gfwx/GHSA-mg5x-wrv2-gfwx.json b/advisories/unreviewed/2022/04/GHSA-mg5x-wrv2-gfwx/GHSA-mg5x-wrv2-gfwx.json index c4a7e337eb3..a281e180d2f 100644 --- a/advisories/unreviewed/2022/04/GHSA-mg5x-wrv2-gfwx/GHSA-mg5x-wrv2-gfwx.json +++ b/advisories/unreviewed/2022/04/GHSA-mg5x-wrv2-gfwx/GHSA-mg5x-wrv2-gfwx.json @@ -7,12 +7,8 @@ "CVE-2002-0513" ], "details": "The PHP administration script in popper_mod 1.2.1 and earlier relies on Apache .htaccess authentication, which allows remote attackers to gain privileges if the script is not appropriately configured by the administrator.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mghc-f8ph-6j96/GHSA-mghc-f8ph-6j96.json b/advisories/unreviewed/2022/04/GHSA-mghc-f8ph-6j96/GHSA-mghc-f8ph-6j96.json index 8df53815cd7..f6bf4d8517e 100644 --- a/advisories/unreviewed/2022/04/GHSA-mghc-f8ph-6j96/GHSA-mghc-f8ph-6j96.json +++ b/advisories/unreviewed/2022/04/GHSA-mghc-f8ph-6j96/GHSA-mghc-f8ph-6j96.json @@ -7,12 +7,8 @@ "CVE-2002-0283" ], "details": "Windows XP with port 445 open allows remote attackers to cause a denial of service (CPU consumption) via a flood of TCP SYN packets containing possibly malformed data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mh9v-7ffp-36mc/GHSA-mh9v-7ffp-36mc.json b/advisories/unreviewed/2022/04/GHSA-mh9v-7ffp-36mc/GHSA-mh9v-7ffp-36mc.json index 191bf38a2d1..a75908d6c52 100644 --- a/advisories/unreviewed/2022/04/GHSA-mh9v-7ffp-36mc/GHSA-mh9v-7ffp-36mc.json +++ b/advisories/unreviewed/2022/04/GHSA-mh9v-7ffp-36mc/GHSA-mh9v-7ffp-36mc.json @@ -7,12 +7,8 @@ "CVE-2002-0530" ], "details": "Cross-site scripting vulnerability in Novell Web Search 2.0.1 allows remote attackers to execute arbitrary script as other Web Search users via the search parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mhc5-fg7c-fv68/GHSA-mhc5-fg7c-fv68.json b/advisories/unreviewed/2022/04/GHSA-mhc5-fg7c-fv68/GHSA-mhc5-fg7c-fv68.json index 5821f1e43c7..449f9526a25 100644 --- a/advisories/unreviewed/2022/04/GHSA-mhc5-fg7c-fv68/GHSA-mhc5-fg7c-fv68.json +++ b/advisories/unreviewed/2022/04/GHSA-mhc5-fg7c-fv68/GHSA-mhc5-fg7c-fv68.json @@ -7,12 +7,8 @@ "CVE-2002-0394" ], "details": "Red-M 1050 (Bluetooth Access Point) uses case insensitive passwords, which makes it easier for attackers to conduct a brute force guessing attack due to the smaller space of possible passwords.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mj37-xm24-6549/GHSA-mj37-xm24-6549.json b/advisories/unreviewed/2022/04/GHSA-mj37-xm24-6549/GHSA-mj37-xm24-6549.json index 4d0ab890a6f..082e2d7a31e 100644 --- a/advisories/unreviewed/2022/04/GHSA-mj37-xm24-6549/GHSA-mj37-xm24-6549.json +++ b/advisories/unreviewed/2022/04/GHSA-mj37-xm24-6549/GHSA-mj37-xm24-6549.json @@ -7,12 +7,8 @@ "CVE-2002-0562" ], "details": "The default configuration of Oracle 9i Application Server 1.0.2.x running Oracle JSP or SQLJSP stores globals.jsa under the web root, which allows remote attackers to gain sensitive information including usernames and passwords via a direct HTTP request to globals.jsa.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mjx9-jg4x-jvv2/GHSA-mjx9-jg4x-jvv2.json b/advisories/unreviewed/2022/04/GHSA-mjx9-jg4x-jvv2/GHSA-mjx9-jg4x-jvv2.json index fc9221ff648..0d6526badb9 100644 --- a/advisories/unreviewed/2022/04/GHSA-mjx9-jg4x-jvv2/GHSA-mjx9-jg4x-jvv2.json +++ b/advisories/unreviewed/2022/04/GHSA-mjx9-jg4x-jvv2/GHSA-mjx9-jg4x-jvv2.json @@ -7,12 +7,8 @@ "CVE-2002-0461" ], "details": "Internet Explorer 5.01 through 6 allows remote attackers to cause a denial of service (application crash) via Javascript in a web page that calls location.replace on itself, causing a loop.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mq45-cj46-gpg8/GHSA-mq45-cj46-gpg8.json b/advisories/unreviewed/2022/04/GHSA-mq45-cj46-gpg8/GHSA-mq45-cj46-gpg8.json index 3df569e9c87..f521d27eed6 100644 --- a/advisories/unreviewed/2022/04/GHSA-mq45-cj46-gpg8/GHSA-mq45-cj46-gpg8.json +++ b/advisories/unreviewed/2022/04/GHSA-mq45-cj46-gpg8/GHSA-mq45-cj46-gpg8.json @@ -7,12 +7,8 @@ "CVE-2002-0303" ], "details": "GroupWise 6, when using LDAP authentication and when Post Office has a blank username and password, allows attackers to gain privileges of other users by logging in without a password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mr24-j69p-xmpp/GHSA-mr24-j69p-xmpp.json b/advisories/unreviewed/2022/04/GHSA-mr24-j69p-xmpp/GHSA-mr24-j69p-xmpp.json index 2389583d7ed..732a2ce19d6 100644 --- a/advisories/unreviewed/2022/04/GHSA-mr24-j69p-xmpp/GHSA-mr24-j69p-xmpp.json +++ b/advisories/unreviewed/2022/04/GHSA-mr24-j69p-xmpp/GHSA-mr24-j69p-xmpp.json @@ -7,12 +7,8 @@ "CVE-2002-0268" ], "details": "Identix BioLogon 3 allows users with physical access to the system to gain administrative privileges by using CTRL-ALT-DEL and running a \"Browse\" function, which runs Explorer with SYSTEM privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mr7q-538h-8w64/GHSA-mr7q-538h-8w64.json b/advisories/unreviewed/2022/04/GHSA-mr7q-538h-8w64/GHSA-mr7q-538h-8w64.json index 1ae6af08496..5f5bb3d9983 100644 --- a/advisories/unreviewed/2022/04/GHSA-mr7q-538h-8w64/GHSA-mr7q-538h-8w64.json +++ b/advisories/unreviewed/2022/04/GHSA-mr7q-538h-8w64/GHSA-mr7q-538h-8w64.json @@ -7,12 +7,8 @@ "CVE-2002-0288" ], "details": "Directory traversal vulnerability in Phusion web server 1.0 allows remote attackers to read arbitrary files via a ... (triple dot dot) in the HTTP request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mvr5-gff2-74q6/GHSA-mvr5-gff2-74q6.json b/advisories/unreviewed/2022/04/GHSA-mvr5-gff2-74q6/GHSA-mvr5-gff2-74q6.json index 49accd61a5d..a9488d97974 100644 --- a/advisories/unreviewed/2022/04/GHSA-mvr5-gff2-74q6/GHSA-mvr5-gff2-74q6.json +++ b/advisories/unreviewed/2022/04/GHSA-mvr5-gff2-74q6/GHSA-mvr5-gff2-74q6.json @@ -7,12 +7,8 @@ "CVE-2002-0369" ], "details": "Buffer overflow in ASP.NET Worker Process allows remote attackers to cause a denial of service (restart) and possibly execute arbitrary code via a routine that processes cookies while in StateServer mode.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mw2r-jm5q-xp3p/GHSA-mw2r-jm5q-xp3p.json b/advisories/unreviewed/2022/04/GHSA-mw2r-jm5q-xp3p/GHSA-mw2r-jm5q-xp3p.json index d34ea6ad1e7..a31a774fdcb 100644 --- a/advisories/unreviewed/2022/04/GHSA-mw2r-jm5q-xp3p/GHSA-mw2r-jm5q-xp3p.json +++ b/advisories/unreviewed/2022/04/GHSA-mw2r-jm5q-xp3p/GHSA-mw2r-jm5q-xp3p.json @@ -7,12 +7,8 @@ "CVE-2002-0698" ], "details": "Buffer overflow in Internet Mail Connector (IMC) for Microsoft Exchange Server 5.5 allows remote attackers to execute arbitrary code via an EHLO request from a system with a long name as obtained through a reverse DNS lookup, which triggers the overflow in IMC's hello response.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-mwhh-mh99-7qg5/GHSA-mwhh-mh99-7qg5.json b/advisories/unreviewed/2022/04/GHSA-mwhh-mh99-7qg5/GHSA-mwhh-mh99-7qg5.json index e140af3bfe2..6749e727c2f 100644 --- a/advisories/unreviewed/2022/04/GHSA-mwhh-mh99-7qg5/GHSA-mwhh-mh99-7qg5.json +++ b/advisories/unreviewed/2022/04/GHSA-mwhh-mh99-7qg5/GHSA-mwhh-mh99-7qg5.json @@ -7,12 +7,8 @@ "CVE-2002-0537" ], "details": "The admin.html file in StepWeb Search Engine (SWS) 2.5 stores passwords in links to manager.pl, which allows remote attackers who can access the admin.html file to gain administrative privileges to SWS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mwhp-59r7-5mwj/GHSA-mwhp-59r7-5mwj.json b/advisories/unreviewed/2022/04/GHSA-mwhp-59r7-5mwj/GHSA-mwhp-59r7-5mwj.json index 62f2156e5c1..24f9aab8bb3 100644 --- a/advisories/unreviewed/2022/04/GHSA-mwhp-59r7-5mwj/GHSA-mwhp-59r7-5mwj.json +++ b/advisories/unreviewed/2022/04/GHSA-mwhp-59r7-5mwj/GHSA-mwhp-59r7-5mwj.json @@ -7,12 +7,8 @@ "CVE-2002-0476" ], "details": "Standalone Macromedia Flash Player 5.0 allows remote attackers to save arbitrary files and programs via a .SWF file containing the undocumented \"save\" FSCommand.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mxvx-2vp3-49f8/GHSA-mxvx-2vp3-49f8.json b/advisories/unreviewed/2022/04/GHSA-mxvx-2vp3-49f8/GHSA-mxvx-2vp3-49f8.json index cd585f6b4c7..04d83f8e2ce 100644 --- a/advisories/unreviewed/2022/04/GHSA-mxvx-2vp3-49f8/GHSA-mxvx-2vp3-49f8.json +++ b/advisories/unreviewed/2022/04/GHSA-mxvx-2vp3-49f8/GHSA-mxvx-2vp3-49f8.json @@ -7,12 +7,8 @@ "CVE-2002-0597" ], "details": "LANMAN service on Microsoft Windows 2000 allows remote attackers to cause a denial of service (CPU/memory exhaustion) via a stream of malformed data to microsoft-ds port 445.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p336-gq98-q7gr/GHSA-p336-gq98-q7gr.json b/advisories/unreviewed/2022/04/GHSA-p336-gq98-q7gr/GHSA-p336-gq98-q7gr.json index 54d169af120..10aa68ad9f5 100644 --- a/advisories/unreviewed/2022/04/GHSA-p336-gq98-q7gr/GHSA-p336-gq98-q7gr.json +++ b/advisories/unreviewed/2022/04/GHSA-p336-gq98-q7gr/GHSA-p336-gq98-q7gr.json @@ -7,12 +7,8 @@ "CVE-2002-0524" ], "details": "ASP-Nuke RC2 and earlier allows remote attackers to determine the absolute path of the server by (1) calling database-inc.asp with incorrect cookies, or (2) calling Post.asp with certain arguments, which leak the pathname in an error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p6f9-rfgm-p6mf/GHSA-p6f9-rfgm-p6mf.json b/advisories/unreviewed/2022/04/GHSA-p6f9-rfgm-p6mf/GHSA-p6f9-rfgm-p6mf.json index 94ce093883e..9acde6488c9 100644 --- a/advisories/unreviewed/2022/04/GHSA-p6f9-rfgm-p6mf/GHSA-p6f9-rfgm-p6mf.json +++ b/advisories/unreviewed/2022/04/GHSA-p6f9-rfgm-p6mf/GHSA-p6f9-rfgm-p6mf.json @@ -7,12 +7,8 @@ "CVE-2002-0412" ], "details": "Format string vulnerability in TraceEvent function for ntop before 2.1 allows remote attackers to execute arbitrary code by causing format strings to be injected into calls to the syslog function, via (1) an HTTP GET request, (2) a user name in HTTP authentication, or (3) a password in HTTP authentication.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p6h7-49cc-wmww/GHSA-p6h7-49cc-wmww.json b/advisories/unreviewed/2022/04/GHSA-p6h7-49cc-wmww/GHSA-p6h7-49cc-wmww.json index 8e6eeb49b52..7245a6f9f00 100644 --- a/advisories/unreviewed/2022/04/GHSA-p6h7-49cc-wmww/GHSA-p6h7-49cc-wmww.json +++ b/advisories/unreviewed/2022/04/GHSA-p6h7-49cc-wmww/GHSA-p6h7-49cc-wmww.json @@ -7,12 +7,8 @@ "CVE-2002-0310" ], "details": "Netwin WebNews 1.1k CGI program includes several default usernames and cleartext passwords that cannot be deleted by the administrator, which allows remote attackers to gain privileges via the username/password combinations (1) testweb/newstest, (2) alwn3845/imaptest, (3) alwi3845/wtest3452, or (4) testweb2/wtest4879.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p8v5-fvvw-942p/GHSA-p8v5-fvvw-942p.json b/advisories/unreviewed/2022/04/GHSA-p8v5-fvvw-942p/GHSA-p8v5-fvvw-942p.json index d03262c15eb..ce21f207223 100644 --- a/advisories/unreviewed/2022/04/GHSA-p8v5-fvvw-942p/GHSA-p8v5-fvvw-942p.json +++ b/advisories/unreviewed/2022/04/GHSA-p8v5-fvvw-942p/GHSA-p8v5-fvvw-942p.json @@ -7,12 +7,8 @@ "CVE-2002-0467" ], "details": "Buffer overflows in Ecartis (formerly Listar) 1.0.0 before snapshot 20020125 allows remote attackers to execute arbitrary code via (1) address_match() of mystring.c or (2) other functions in tolist.c.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p92p-pv4x-f653/GHSA-p92p-pv4x-f653.json b/advisories/unreviewed/2022/04/GHSA-p92p-pv4x-f653/GHSA-p92p-pv4x-f653.json index 63f8569f253..0e881e9167c 100644 --- a/advisories/unreviewed/2022/04/GHSA-p92p-pv4x-f653/GHSA-p92p-pv4x-f653.json +++ b/advisories/unreviewed/2022/04/GHSA-p92p-pv4x-f653/GHSA-p92p-pv4x-f653.json @@ -7,12 +7,8 @@ "CVE-2002-0528" ], "details": "Watchguard SOHO firewall 5.0.35 unpredictably disables certain IP restrictions for customized services that were set before the administrator upgrades to 5.0.35, which could allow remote attackers to bypass the intended access control rules.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pfvj-w62r-h35r/GHSA-pfvj-w62r-h35r.json b/advisories/unreviewed/2022/04/GHSA-pfvj-w62r-h35r/GHSA-pfvj-w62r-h35r.json index 113c6d1ac34..d9fe8d17cfc 100644 --- a/advisories/unreviewed/2022/04/GHSA-pfvj-w62r-h35r/GHSA-pfvj-w62r-h35r.json +++ b/advisories/unreviewed/2022/04/GHSA-pfvj-w62r-h35r/GHSA-pfvj-w62r-h35r.json @@ -7,12 +7,8 @@ "CVE-2002-0322" ], "details": "Yahoo! Messenger 4.0 sends user passwords in cleartext, which could allow remote attackers to gain privileges of other users via sniffing.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-phm3-6pw9-8v3j/GHSA-phm3-6pw9-8v3j.json b/advisories/unreviewed/2022/04/GHSA-phm3-6pw9-8v3j/GHSA-phm3-6pw9-8v3j.json index bd0f4968ca5..5a0cf11c6f7 100644 --- a/advisories/unreviewed/2022/04/GHSA-phm3-6pw9-8v3j/GHSA-phm3-6pw9-8v3j.json +++ b/advisories/unreviewed/2022/04/GHSA-phm3-6pw9-8v3j/GHSA-phm3-6pw9-8v3j.json @@ -7,12 +7,8 @@ "CVE-2002-0443" ], "details": "Microsoft Windows 2000 allows local users to bypass the policy that prohibits reusing old passwords by changing the current password before it expires, which does not enable the check for previous passwords.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-phxq-h84m-jv48/GHSA-phxq-h84m-jv48.json b/advisories/unreviewed/2022/04/GHSA-phxq-h84m-jv48/GHSA-phxq-h84m-jv48.json index 4c2ea6615d7..fcef7989008 100644 --- a/advisories/unreviewed/2022/04/GHSA-phxq-h84m-jv48/GHSA-phxq-h84m-jv48.json +++ b/advisories/unreviewed/2022/04/GHSA-phxq-h84m-jv48/GHSA-phxq-h84m-jv48.json @@ -7,12 +7,8 @@ "CVE-2002-0387" ], "details": "Buffer overflow in gxnsapi6.dll NSAPI plugin of the Connector Module for Sun ONE Application Server before 6.5 allows remote attackers to execute arbitrary code via a long HTTP request URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pjc3-7wx7-94c4/GHSA-pjc3-7wx7-94c4.json b/advisories/unreviewed/2022/04/GHSA-pjc3-7wx7-94c4/GHSA-pjc3-7wx7-94c4.json index 12f056b8115..6aaad50e1dd 100644 --- a/advisories/unreviewed/2022/04/GHSA-pjc3-7wx7-94c4/GHSA-pjc3-7wx7-94c4.json +++ b/advisories/unreviewed/2022/04/GHSA-pjc3-7wx7-94c4/GHSA-pjc3-7wx7-94c4.json @@ -7,12 +7,8 @@ "CVE-2002-0444" ], "details": "Microsoft Windows 2000 running the Terminal Server 90-day trial version, and possibly other versions, does not apply group policies to incoming users when the number of connections to the SYSVOL share exceeds the maximum, e.g. with a maximum number of licenses, which can allow remote authenticated users to bypass group policies.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pm4q-h2qf-m4j8/GHSA-pm4q-h2qf-m4j8.json b/advisories/unreviewed/2022/04/GHSA-pm4q-h2qf-m4j8/GHSA-pm4q-h2qf-m4j8.json index a2ec02ef4e5..6003619c7c2 100644 --- a/advisories/unreviewed/2022/04/GHSA-pm4q-h2qf-m4j8/GHSA-pm4q-h2qf-m4j8.json +++ b/advisories/unreviewed/2022/04/GHSA-pm4q-h2qf-m4j8/GHSA-pm4q-h2qf-m4j8.json @@ -7,12 +7,8 @@ "CVE-2002-0261" ], "details": "Directory traversal vulnerability in InstantServers MiniPortal 1.1.5 and earlier allows remote authenticated users to read arbitrary files via a ... (modified dot dot) in the GET command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pppg-3ghp-8w7g/GHSA-pppg-3ghp-8w7g.json b/advisories/unreviewed/2022/04/GHSA-pppg-3ghp-8w7g/GHSA-pppg-3ghp-8w7g.json index ec3e01ccbbd..64056b5c9ca 100644 --- a/advisories/unreviewed/2022/04/GHSA-pppg-3ghp-8w7g/GHSA-pppg-3ghp-8w7g.json +++ b/advisories/unreviewed/2022/04/GHSA-pppg-3ghp-8w7g/GHSA-pppg-3ghp-8w7g.json @@ -7,12 +7,8 @@ "CVE-2002-0351" ], "details": "Buffer overflows in CFS daemon (cfsd) before 1.3.3-8.1, and 1.4x before 1.4.1-5, allow remote attackers to cause a denial of service and possibly execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pqgv-593f-2rfr/GHSA-pqgv-593f-2rfr.json b/advisories/unreviewed/2022/04/GHSA-pqgv-593f-2rfr/GHSA-pqgv-593f-2rfr.json index 754889a6452..14a95c9b382 100644 --- a/advisories/unreviewed/2022/04/GHSA-pqgv-593f-2rfr/GHSA-pqgv-593f-2rfr.json +++ b/advisories/unreviewed/2022/04/GHSA-pqgv-593f-2rfr/GHSA-pqgv-593f-2rfr.json @@ -7,12 +7,8 @@ "CVE-2002-0522" ], "details": "ASP-Nuke RC2 and earlier allows remote attackers to bypass authentication and gain privileges by modifying the \"pseudo\" cookie.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pqqm-62p2-55xf/GHSA-pqqm-62p2-55xf.json b/advisories/unreviewed/2022/04/GHSA-pqqm-62p2-55xf/GHSA-pqqm-62p2-55xf.json index 4ef7e6743dd..f3ef7123d3f 100644 --- a/advisories/unreviewed/2022/04/GHSA-pqqm-62p2-55xf/GHSA-pqqm-62p2-55xf.json +++ b/advisories/unreviewed/2022/04/GHSA-pqqm-62p2-55xf/GHSA-pqqm-62p2-55xf.json @@ -7,12 +7,8 @@ "CVE-2002-0289" ], "details": "Buffer overflow in Phusion web server 1.0 allows remote attackers to cause a denial of service and execute arbitrary code via a long HTTP request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pv84-p89f-6ph5/GHSA-pv84-p89f-6ph5.json b/advisories/unreviewed/2022/04/GHSA-pv84-p89f-6ph5/GHSA-pv84-p89f-6ph5.json index 91fd3423537..3debbe968db 100644 --- a/advisories/unreviewed/2022/04/GHSA-pv84-p89f-6ph5/GHSA-pv84-p89f-6ph5.json +++ b/advisories/unreviewed/2022/04/GHSA-pv84-p89f-6ph5/GHSA-pv84-p89f-6ph5.json @@ -7,12 +7,8 @@ "CVE-2002-0364" ], "details": "Buffer overflow in the chunked encoding transfer mechanism in IIS 4.0 and 5.0 allows attackers to execute arbitrary code via the processing of HTR request sessions, aka \"Heap Overrun in HTR Chunked Encoding Could Enable Web Server Compromise.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pvph-338p-cpgw/GHSA-pvph-338p-cpgw.json b/advisories/unreviewed/2022/04/GHSA-pvph-338p-cpgw/GHSA-pvph-338p-cpgw.json index 972b1baa6c2..4044ce097a6 100644 --- a/advisories/unreviewed/2022/04/GHSA-pvph-338p-cpgw/GHSA-pvph-338p-cpgw.json +++ b/advisories/unreviewed/2022/04/GHSA-pvph-338p-cpgw/GHSA-pvph-338p-cpgw.json @@ -7,12 +7,8 @@ "CVE-2002-0545" ], "details": "Cisco Aironet before 11.21 with Telnet enabled allows remote attackers to cause a denial of service (reboot) via a series of login attempts with invalid usernames and passwords.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pvv2-68cw-w39c/GHSA-pvv2-68cw-w39c.json b/advisories/unreviewed/2022/04/GHSA-pvv2-68cw-w39c/GHSA-pvv2-68cw-w39c.json index 45fcfd4afae..451580c58a7 100644 --- a/advisories/unreviewed/2022/04/GHSA-pvv2-68cw-w39c/GHSA-pvv2-68cw-w39c.json +++ b/advisories/unreviewed/2022/04/GHSA-pvv2-68cw-w39c/GHSA-pvv2-68cw-w39c.json @@ -7,12 +7,8 @@ "CVE-2002-0389" ], "details": "Pipermail in Mailman stores private mail messages with predictable filenames in a world-executable directory, which allows local users to read private mailing list archives.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q23j-gg2w-hr8w/GHSA-q23j-gg2w-hr8w.json b/advisories/unreviewed/2022/04/GHSA-q23j-gg2w-hr8w/GHSA-q23j-gg2w-hr8w.json index 9b4115501de..a1c76465445 100644 --- a/advisories/unreviewed/2022/04/GHSA-q23j-gg2w-hr8w/GHSA-q23j-gg2w-hr8w.json +++ b/advisories/unreviewed/2022/04/GHSA-q23j-gg2w-hr8w/GHSA-q23j-gg2w-hr8w.json @@ -7,12 +7,8 @@ "CVE-2002-0384" ], "details": "Buffer overflow in Jabber plug-in for Gaim client before 0.58 allows remote attackers to execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q435-2gxx-2w88/GHSA-q435-2gxx-2w88.json b/advisories/unreviewed/2022/04/GHSA-q435-2gxx-2w88/GHSA-q435-2gxx-2w88.json index 54d1b634289..ee9b31db00d 100644 --- a/advisories/unreviewed/2022/04/GHSA-q435-2gxx-2w88/GHSA-q435-2gxx-2w88.json +++ b/advisories/unreviewed/2022/04/GHSA-q435-2gxx-2w88/GHSA-q435-2gxx-2w88.json @@ -7,12 +7,8 @@ "CVE-2002-0534" ], "details": "PostBoard 2.0.1 and earlier with BBcode allows remote attackers to cause a denial of service (CPU consumption) and corrupt the database via null \\0 characters within [code] tags.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q46f-4p2g-xgc3/GHSA-q46f-4p2g-xgc3.json b/advisories/unreviewed/2022/04/GHSA-q46f-4p2g-xgc3/GHSA-q46f-4p2g-xgc3.json index dafe154cc83..c8db6a56e98 100644 --- a/advisories/unreviewed/2022/04/GHSA-q46f-4p2g-xgc3/GHSA-q46f-4p2g-xgc3.json +++ b/advisories/unreviewed/2022/04/GHSA-q46f-4p2g-xgc3/GHSA-q46f-4p2g-xgc3.json @@ -7,12 +7,8 @@ "CVE-2002-0279" ], "details": "The kernel in HP-UX 11.11 does not properly provide arguments for setrlimit, which could allow local attackers to cause a denial of service (kernel panic) and possibly gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q639-x27g-8567/GHSA-q639-x27g-8567.json b/advisories/unreviewed/2022/04/GHSA-q639-x27g-8567/GHSA-q639-x27g-8567.json index b6ec0c979e5..909f89a2e71 100644 --- a/advisories/unreviewed/2022/04/GHSA-q639-x27g-8567/GHSA-q639-x27g-8567.json +++ b/advisories/unreviewed/2022/04/GHSA-q639-x27g-8567/GHSA-q639-x27g-8567.json @@ -7,12 +7,8 @@ "CVE-2002-0319" ], "details": "Cross-site scripting vulnerability in edituser.php for pforum 1.14 and earlier allows remote attackers to execute script and steal cookies from other users via Javascript in a username.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q73r-ph36-j626/GHSA-q73r-ph36-j626.json b/advisories/unreviewed/2022/04/GHSA-q73r-ph36-j626/GHSA-q73r-ph36-j626.json index 9afbbfe960c..afa85787bef 100644 --- a/advisories/unreviewed/2022/04/GHSA-q73r-ph36-j626/GHSA-q73r-ph36-j626.json +++ b/advisories/unreviewed/2022/04/GHSA-q73r-ph36-j626/GHSA-q73r-ph36-j626.json @@ -7,12 +7,8 @@ "CVE-2002-0491" ], "details": "admin.php in AlGuest 1.0 guestbook checks for the existence of the admin cookie to authenticate the AlGuest administrator, which allows remote attackers to bypass the authentication and gain privileges by setting the admin cookie to an arbitrary value.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qhf4-f2h6-vmrc/GHSA-qhf4-f2h6-vmrc.json b/advisories/unreviewed/2022/04/GHSA-qhf4-f2h6-vmrc/GHSA-qhf4-f2h6-vmrc.json index bd933c285e8..c28333623fb 100644 --- a/advisories/unreviewed/2022/04/GHSA-qhf4-f2h6-vmrc/GHSA-qhf4-f2h6-vmrc.json +++ b/advisories/unreviewed/2022/04/GHSA-qhf4-f2h6-vmrc/GHSA-qhf4-f2h6-vmrc.json @@ -7,12 +7,8 @@ "CVE-2002-0577" ], "details": "Vulnerability in passwd for HP-UX 11.00 and 11.11 allows local users to corrupt the password file and cause a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qjvc-3w5m-f5pj/GHSA-qjvc-3w5m-f5pj.json b/advisories/unreviewed/2022/04/GHSA-qjvc-3w5m-f5pj/GHSA-qjvc-3w5m-f5pj.json index 83bb7c990df..5f6509e661b 100644 --- a/advisories/unreviewed/2022/04/GHSA-qjvc-3w5m-f5pj/GHSA-qjvc-3w5m-f5pj.json +++ b/advisories/unreviewed/2022/04/GHSA-qjvc-3w5m-f5pj/GHSA-qjvc-3w5m-f5pj.json @@ -7,12 +7,8 @@ "CVE-2002-0417" ], "details": "Directory traversal vulnerability in Endymion MailMan before 3.1 allows remote attackers to read arbitrary files via a .. (dot dot) and a null character in the ALTERNATE_TEMPLATES parameter for various mmstdo*.cgi programs.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qjx4-9m3r-q6f4/GHSA-qjx4-9m3r-q6f4.json b/advisories/unreviewed/2022/04/GHSA-qjx4-9m3r-q6f4/GHSA-qjx4-9m3r-q6f4.json index 3f71ec9f8d0..96acc49f603 100644 --- a/advisories/unreviewed/2022/04/GHSA-qjx4-9m3r-q6f4/GHSA-qjx4-9m3r-q6f4.json +++ b/advisories/unreviewed/2022/04/GHSA-qjx4-9m3r-q6f4/GHSA-qjx4-9m3r-q6f4.json @@ -7,12 +7,8 @@ "CVE-2002-0304" ], "details": "Lil HTTP Server 2.1 allows remote attackers to read password-protected files via a /./ in the HTTP request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qp87-xr37-3cmm/GHSA-qp87-xr37-3cmm.json b/advisories/unreviewed/2022/04/GHSA-qp87-xr37-3cmm/GHSA-qp87-xr37-3cmm.json index b0f4f92abe2..040535e7b12 100644 --- a/advisories/unreviewed/2022/04/GHSA-qp87-xr37-3cmm/GHSA-qp87-xr37-3cmm.json +++ b/advisories/unreviewed/2022/04/GHSA-qp87-xr37-3cmm/GHSA-qp87-xr37-3cmm.json @@ -7,12 +7,8 @@ "CVE-2002-0329" ], "details": "Cross-site scripting vulnerability in Snitz Forums 2000 3.3.03 and earlier allows remote attackers to execute arbitrary script as other Forums 2000 users via Javascript in an IMG tag.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qq7x-mvx6-chg7/GHSA-qq7x-mvx6-chg7.json b/advisories/unreviewed/2022/04/GHSA-qq7x-mvx6-chg7/GHSA-qq7x-mvx6-chg7.json index e606a72c8dc..4e92f29088d 100644 --- a/advisories/unreviewed/2022/04/GHSA-qq7x-mvx6-chg7/GHSA-qq7x-mvx6-chg7.json +++ b/advisories/unreviewed/2022/04/GHSA-qq7x-mvx6-chg7/GHSA-qq7x-mvx6-chg7.json @@ -7,12 +7,8 @@ "CVE-2002-0490" ], "details": "Instant Web Mail before 0.60 does not properly filter CR/LF sequences, which allows remote attackers to (1) execute arbitrary POP commands via the id parameter in message.php, or (2) modify certain mail message headers via numerous parameters in write.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qqpg-7m4h-639p/GHSA-qqpg-7m4h-639p.json b/advisories/unreviewed/2022/04/GHSA-qqpg-7m4h-639p/GHSA-qqpg-7m4h-639p.json index 2a472d9f8dd..7f03c13c7fd 100644 --- a/advisories/unreviewed/2022/04/GHSA-qqpg-7m4h-639p/GHSA-qqpg-7m4h-639p.json +++ b/advisories/unreviewed/2022/04/GHSA-qqpg-7m4h-639p/GHSA-qqpg-7m4h-639p.json @@ -7,12 +7,8 @@ "CVE-2002-0347" ], "details": "Directory traversal vulnerability in Cobalt RAQ 4 allows remote attackers to read password-protected files, and possibly files outside the web root, via a .. (dot dot) in an HTTP request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qvm7-5vp6-x4m7/GHSA-qvm7-5vp6-x4m7.json b/advisories/unreviewed/2022/04/GHSA-qvm7-5vp6-x4m7/GHSA-qvm7-5vp6-x4m7.json index 3cec374fdd8..b448ad4819b 100644 --- a/advisories/unreviewed/2022/04/GHSA-qvm7-5vp6-x4m7/GHSA-qvm7-5vp6-x4m7.json +++ b/advisories/unreviewed/2022/04/GHSA-qvm7-5vp6-x4m7/GHSA-qvm7-5vp6-x4m7.json @@ -7,12 +7,8 @@ "CVE-2002-0554" ], "details": "webdriver in IBM Informix Web DataBlade 4.12 allows remote attackers to bypass user access levels or read arbitrary files via a SQL injection attack in an HTTP request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qx2x-78qf-mfrj/GHSA-qx2x-78qf-mfrj.json b/advisories/unreviewed/2022/04/GHSA-qx2x-78qf-mfrj/GHSA-qx2x-78qf-mfrj.json index 7eb6d2b1e60..580f39d9d82 100644 --- a/advisories/unreviewed/2022/04/GHSA-qx2x-78qf-mfrj/GHSA-qx2x-78qf-mfrj.json +++ b/advisories/unreviewed/2022/04/GHSA-qx2x-78qf-mfrj/GHSA-qx2x-78qf-mfrj.json @@ -7,12 +7,8 @@ "CVE-2002-0324" ], "details": "Greymatter 1.21c and earlier with the Bookmarklet feature enabled allows remote attackers to read a cleartext password and gain administrative privileges by guessing the name of a gmrightclick-*.reg file which contains the administrator name and password in cleartext, then retrieving the file from the web server before the Greymatter administrator performs a \"Clear And Exit\" action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-r2fx-x5jq-98vc/GHSA-r2fx-x5jq-98vc.json b/advisories/unreviewed/2022/04/GHSA-r2fx-x5jq-98vc/GHSA-r2fx-x5jq-98vc.json index 7c3485579cd..cbc55ab35a5 100644 --- a/advisories/unreviewed/2022/04/GHSA-r2fx-x5jq-98vc/GHSA-r2fx-x5jq-98vc.json +++ b/advisories/unreviewed/2022/04/GHSA-r2fx-x5jq-98vc/GHSA-r2fx-x5jq-98vc.json @@ -7,12 +7,8 @@ "CVE-2002-0243" ], "details": "Cross-site scripting vulnerability in Opera 6.0 and earlier allows remote attackers to execute arbitrary script via an Extended HTML Form, whose output from the remote server is not properly cleansed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-r4rm-fp8q-jq3x/GHSA-r4rm-fp8q-jq3x.json b/advisories/unreviewed/2022/04/GHSA-r4rm-fp8q-jq3x/GHSA-r4rm-fp8q-jq3x.json index df846c1d561..1a56faa1124 100644 --- a/advisories/unreviewed/2022/04/GHSA-r4rm-fp8q-jq3x/GHSA-r4rm-fp8q-jq3x.json +++ b/advisories/unreviewed/2022/04/GHSA-r4rm-fp8q-jq3x/GHSA-r4rm-fp8q-jq3x.json @@ -7,12 +7,8 @@ "CVE-2002-0343" ], "details": "Hotline Client 1.8.5 stores sensitive user information, including passwords, in plaintext in the bookmarks file, which could allow local users with access to the bookmarks file to gain privileges by extracting the passwords.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-r78p-5gvj-px53/GHSA-r78p-5gvj-px53.json b/advisories/unreviewed/2022/04/GHSA-r78p-5gvj-px53/GHSA-r78p-5gvj-px53.json index 81cc7229f69..ea4fa301731 100644 --- a/advisories/unreviewed/2022/04/GHSA-r78p-5gvj-px53/GHSA-r78p-5gvj-px53.json +++ b/advisories/unreviewed/2022/04/GHSA-r78p-5gvj-px53/GHSA-r78p-5gvj-px53.json @@ -7,12 +7,8 @@ "CVE-2002-0235" ], "details": "Castelle FaxPress, possibly 6.3 and other versions, when configured to use the Network print queue, allows attackers to obtain the username and password by submitting an incorrect login, which causes Faxpress to leak the correct username and password in plaintext in an error event.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-r7cv-xjm9-8wfj/GHSA-r7cv-xjm9-8wfj.json b/advisories/unreviewed/2022/04/GHSA-r7cv-xjm9-8wfj/GHSA-r7cv-xjm9-8wfj.json index df385f44d99..bd9fc5cca5f 100644 --- a/advisories/unreviewed/2022/04/GHSA-r7cv-xjm9-8wfj/GHSA-r7cv-xjm9-8wfj.json +++ b/advisories/unreviewed/2022/04/GHSA-r7cv-xjm9-8wfj/GHSA-r7cv-xjm9-8wfj.json @@ -7,12 +7,8 @@ "CVE-2002-0583" ], "details": "WorkforceROI Xpede 4.1 uses a small random namespace (5 alphanumeric characters) for temporary expense claim reports in the /reports/temp directory, which allows remote attackers to read the reports via a brute force attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-r959-q5rq-6m45/GHSA-r959-q5rq-6m45.json b/advisories/unreviewed/2022/04/GHSA-r959-q5rq-6m45/GHSA-r959-q5rq-6m45.json index 7a81d285053..fe1129e1bb5 100644 --- a/advisories/unreviewed/2022/04/GHSA-r959-q5rq-6m45/GHSA-r959-q5rq-6m45.json +++ b/advisories/unreviewed/2022/04/GHSA-r959-q5rq-6m45/GHSA-r959-q5rq-6m45.json @@ -7,12 +7,8 @@ "CVE-2002-0570" ], "details": "The encrypted loop device in Linux kernel 2.4.10 and earlier does not authenticate the entity that is encrypting data, which allows local users to modify encrypted data without knowing the key.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rfjr-36px-grq5/GHSA-rfjr-36px-grq5.json b/advisories/unreviewed/2022/04/GHSA-rfjr-36px-grq5/GHSA-rfjr-36px-grq5.json index db2d780e6da..90415be796f 100644 --- a/advisories/unreviewed/2022/04/GHSA-rfjr-36px-grq5/GHSA-rfjr-36px-grq5.json +++ b/advisories/unreviewed/2022/04/GHSA-rfjr-36px-grq5/GHSA-rfjr-36px-grq5.json @@ -7,12 +7,8 @@ "CVE-2002-0336" ], "details": "Buffer overflow in Galacticomm Worldgroup FTP server 3.20 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via a LIST command containing a large number of / (slash), * (wildcard), and .. characters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rg69-mc23-3q8q/GHSA-rg69-mc23-3q8q.json b/advisories/unreviewed/2022/04/GHSA-rg69-mc23-3q8q/GHSA-rg69-mc23-3q8q.json index edec1ef26a4..286bce1fd0f 100644 --- a/advisories/unreviewed/2022/04/GHSA-rg69-mc23-3q8q/GHSA-rg69-mc23-3q8q.json +++ b/advisories/unreviewed/2022/04/GHSA-rg69-mc23-3q8q/GHSA-rg69-mc23-3q8q.json @@ -7,12 +7,8 @@ "CVE-2002-0535" ], "details": "Cross-site scripting vulnerabilities in PostBoard 2.0.1 and earlier allows remote attackers to execute script as other users via (1) an [IMG] tag when BBCode is enabled, or (2) in a topic title.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rh22-xxw4-62vm/GHSA-rh22-xxw4-62vm.json b/advisories/unreviewed/2022/04/GHSA-rh22-xxw4-62vm/GHSA-rh22-xxw4-62vm.json index d117dceac8f..415d605a6ab 100644 --- a/advisories/unreviewed/2022/04/GHSA-rh22-xxw4-62vm/GHSA-rh22-xxw4-62vm.json +++ b/advisories/unreviewed/2022/04/GHSA-rh22-xxw4-62vm/GHSA-rh22-xxw4-62vm.json @@ -7,12 +7,8 @@ "CVE-2002-0424" ], "details": "efingerd 1.61 and earlier, when configured without the -u option, executes .efingerd files as the efingerd user (typically \"nobody\"), which allows local users to gain privileges as the efingerd user by modifying their own .efingerd file and running finger.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rj23-x59f-545q/GHSA-rj23-x59f-545q.json b/advisories/unreviewed/2022/04/GHSA-rj23-x59f-545q/GHSA-rj23-x59f-545q.json index e7fbfba2dd9..464c224a9d8 100644 --- a/advisories/unreviewed/2022/04/GHSA-rj23-x59f-545q/GHSA-rj23-x59f-545q.json +++ b/advisories/unreviewed/2022/04/GHSA-rj23-x59f-545q/GHSA-rj23-x59f-545q.json @@ -7,12 +7,8 @@ "CVE-2002-0422" ], "details": "IIS 5 and 5.1 supporting WebDAV methods allows remote attackers to determine the internal IP address of the system (which may be obscured by NAT) via (1) a PROPFIND HTTP request with a blank Host header, which leaks the address in an HREF property in a 207 Multi-Status response, or (2) via the WRITE or MKCOL method, which leaks the IP in the Location server header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-rqj8-mrx8-w87x/GHSA-rqj8-mrx8-w87x.json b/advisories/unreviewed/2022/04/GHSA-rqj8-mrx8-w87x/GHSA-rqj8-mrx8-w87x.json index d11290e4015..a911418148a 100644 --- a/advisories/unreviewed/2022/04/GHSA-rqj8-mrx8-w87x/GHSA-rqj8-mrx8-w87x.json +++ b/advisories/unreviewed/2022/04/GHSA-rqj8-mrx8-w87x/GHSA-rqj8-mrx8-w87x.json @@ -7,12 +7,8 @@ "CVE-2002-0566" ], "details": "PL/SQL module 3.0.9.8.2 in Oracle 9i Application Server 1.0.2.x allows remote attackers to cause a denial of service (crash) via an HTTP Authorization header without an authentication type.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rvg3-96rj-365f/GHSA-rvg3-96rj-365f.json b/advisories/unreviewed/2022/04/GHSA-rvg3-96rj-365f/GHSA-rvg3-96rj-365f.json index 79af122b802..532da910799 100644 --- a/advisories/unreviewed/2022/04/GHSA-rvg3-96rj-365f/GHSA-rvg3-96rj-365f.json +++ b/advisories/unreviewed/2022/04/GHSA-rvg3-96rj-365f/GHSA-rvg3-96rj-365f.json @@ -7,12 +7,8 @@ "CVE-2002-0504" ], "details": "Cross-site scripting vulnerability in Citrix NFuse 1.6 and earlier does not quote results from the getLastError method, which allows remote attackers to execute script in other clients via the NFuse_Application parameter to (1) launch.jsp or (2) launch.asp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-v35r-5q84-p893/GHSA-v35r-5q84-p893.json b/advisories/unreviewed/2022/04/GHSA-v35r-5q84-p893/GHSA-v35r-5q84-p893.json index 8e6a2545c98..b38f1417a4b 100644 --- a/advisories/unreviewed/2022/04/GHSA-v35r-5q84-p893/GHSA-v35r-5q84-p893.json +++ b/advisories/unreviewed/2022/04/GHSA-v35r-5q84-p893/GHSA-v35r-5q84-p893.json @@ -7,12 +7,8 @@ "CVE-2002-0297" ], "details": "Buffer overflow in ScriptEase MiniWeb Server 0.95 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long URL in an HTTP request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-v3cv-7ww7-7g63/GHSA-v3cv-7ww7-7g63.json b/advisories/unreviewed/2022/04/GHSA-v3cv-7ww7-7g63/GHSA-v3cv-7ww7-7g63.json index 23bc223830c..8a6cf16e352 100644 --- a/advisories/unreviewed/2022/04/GHSA-v3cv-7ww7-7g63/GHSA-v3cv-7ww7-7g63.json +++ b/advisories/unreviewed/2022/04/GHSA-v3cv-7ww7-7g63/GHSA-v3cv-7ww7-7g63.json @@ -7,12 +7,8 @@ "CVE-2002-0388" ], "details": "Cross-site scripting vulnerabilities in Mailman before 2.0.11 allow remote attackers to execute script via (1) the admin login page, or (2) the Pipermail index summaries.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-v5gw-6wv6-2mj2/GHSA-v5gw-6wv6-2mj2.json b/advisories/unreviewed/2022/04/GHSA-v5gw-6wv6-2mj2/GHSA-v5gw-6wv6-2mj2.json index 9807989e31a..f41d28fa2c4 100644 --- a/advisories/unreviewed/2022/04/GHSA-v5gw-6wv6-2mj2/GHSA-v5gw-6wv6-2mj2.json +++ b/advisories/unreviewed/2022/04/GHSA-v5gw-6wv6-2mj2/GHSA-v5gw-6wv6-2mj2.json @@ -7,12 +7,8 @@ "CVE-2002-0418" ], "details": "Directory traversal vulnerability in the com.endymion.sake.servlet.mail.MailServlet servlet for Endymion SakeMail 1.0.36 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) and a null character in the param_name parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-v6wc-vvjf-v89h/GHSA-v6wc-vvjf-v89h.json b/advisories/unreviewed/2022/04/GHSA-v6wc-vvjf-v89h/GHSA-v6wc-vvjf-v89h.json index 91e9b60df62..096f9df281d 100644 --- a/advisories/unreviewed/2022/04/GHSA-v6wc-vvjf-v89h/GHSA-v6wc-vvjf-v89h.json +++ b/advisories/unreviewed/2022/04/GHSA-v6wc-vvjf-v89h/GHSA-v6wc-vvjf-v89h.json @@ -7,12 +7,8 @@ "CVE-2002-0549" ], "details": "Cross-site scripting vulnerabilities in Anthill allow remote attackers to execute script as other Anthill users.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-v7h4-hhwc-qr2c/GHSA-v7h4-hhwc-qr2c.json b/advisories/unreviewed/2022/04/GHSA-v7h4-hhwc-qr2c/GHSA-v7h4-hhwc-qr2c.json index e68b08ced0e..2d6508aa868 100644 --- a/advisories/unreviewed/2022/04/GHSA-v7h4-hhwc-qr2c/GHSA-v7h4-hhwc-qr2c.json +++ b/advisories/unreviewed/2022/04/GHSA-v7h4-hhwc-qr2c/GHSA-v7h4-hhwc-qr2c.json @@ -7,12 +7,8 @@ "CVE-2002-0411" ], "details": "Cross-site scripting vulnerability in message.php for AeroMail before 1.45 allows remote attackers to execute Javascript as an AeroMail user via an email message with the script in the Subject line.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-v8cg-m7jf-cq54/GHSA-v8cg-m7jf-cq54.json b/advisories/unreviewed/2022/04/GHSA-v8cg-m7jf-cq54/GHSA-v8cg-m7jf-cq54.json index 6096aa9d8ad..2b9aff7b2b6 100644 --- a/advisories/unreviewed/2022/04/GHSA-v8cg-m7jf-cq54/GHSA-v8cg-m7jf-cq54.json +++ b/advisories/unreviewed/2022/04/GHSA-v8cg-m7jf-cq54/GHSA-v8cg-m7jf-cq54.json @@ -7,12 +7,8 @@ "CVE-2002-0520" ], "details": "Cross-site scripting vulnerability in functions-inc.asp for ASP-Nuke RC1 allows remote attackers to execute script as other ASP-Nuke users by embedding it within an IMG tag.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-v9f9-qwj8-vjff/GHSA-v9f9-qwj8-vjff.json b/advisories/unreviewed/2022/04/GHSA-v9f9-qwj8-vjff/GHSA-v9f9-qwj8-vjff.json index 7b1c7d64129..017fa729930 100644 --- a/advisories/unreviewed/2022/04/GHSA-v9f9-qwj8-vjff/GHSA-v9f9-qwj8-vjff.json +++ b/advisories/unreviewed/2022/04/GHSA-v9f9-qwj8-vjff/GHSA-v9f9-qwj8-vjff.json @@ -7,12 +7,8 @@ "CVE-2002-0507" ], "details": "An interaction between Microsoft Outlook Web Access (OWA) with RSA SecurID allows local users to bypass the SecurID authentication for a previous user via several submissions of an OWA Authentication request with the proper OWA password for the previous user, which is eventually accepted by OWA.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-vc5x-9m2r-pv7f/GHSA-vc5x-9m2r-pv7f.json b/advisories/unreviewed/2022/04/GHSA-vc5x-9m2r-pv7f/GHSA-vc5x-9m2r-pv7f.json index b1a001eb2fc..224ad5ea375 100644 --- a/advisories/unreviewed/2022/04/GHSA-vc5x-9m2r-pv7f/GHSA-vc5x-9m2r-pv7f.json +++ b/advisories/unreviewed/2022/04/GHSA-vc5x-9m2r-pv7f/GHSA-vc5x-9m2r-pv7f.json @@ -7,12 +7,8 @@ "CVE-2002-0680" ], "details": "Directory traversal vulnerability in GoAhead Web Server 2.1 allows remote attackers to read arbitrary files via a URL with an encoded / (%5C) in a .. (dot dot) sequence. NOTE: it is highly likely that this candidate will be REJECTED because it has been reported to be a duplicate of CVE-2001-0228.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vcrg-5h29-5gv2/GHSA-vcrg-5h29-5gv2.json b/advisories/unreviewed/2022/04/GHSA-vcrg-5h29-5gv2/GHSA-vcrg-5h29-5gv2.json index b08da072e25..8fd1c661018 100644 --- a/advisories/unreviewed/2022/04/GHSA-vcrg-5h29-5gv2/GHSA-vcrg-5h29-5gv2.json +++ b/advisories/unreviewed/2022/04/GHSA-vcrg-5h29-5gv2/GHSA-vcrg-5h29-5gv2.json @@ -7,12 +7,8 @@ "CVE-2002-0287" ], "details": "pforum 1.14 and earlier does not explicitly enable PHP magic quotes, which allows remote attackers to bypass authentication and gain administrator privileges via an SQL injection attack when the PHP server is not configured to use magic quotes by default.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vgpg-jv9c-rhh6/GHSA-vgpg-jv9c-rhh6.json b/advisories/unreviewed/2022/04/GHSA-vgpg-jv9c-rhh6/GHSA-vgpg-jv9c-rhh6.json index ec1c34a72b8..5c922136a07 100644 --- a/advisories/unreviewed/2022/04/GHSA-vgpg-jv9c-rhh6/GHSA-vgpg-jv9c-rhh6.json +++ b/advisories/unreviewed/2022/04/GHSA-vgpg-jv9c-rhh6/GHSA-vgpg-jv9c-rhh6.json @@ -7,12 +7,8 @@ "CVE-2002-0560" ], "details": "PL/SQL module 3.0.9.8.2 in Oracle 9i Application Server 1.0.2.x allows remote attackers to obtain sensitive information via the OWA_UTIL stored procedures (1) OWA_UTIL.signature, (2) OWA_UTIL.listprint, or (3) OWA_UTIL.show_query_columns.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vjjx-f47g-v526/GHSA-vjjx-f47g-v526.json b/advisories/unreviewed/2022/04/GHSA-vjjx-f47g-v526/GHSA-vjjx-f47g-v526.json index 98968e49390..725245d2fd1 100644 --- a/advisories/unreviewed/2022/04/GHSA-vjjx-f47g-v526/GHSA-vjjx-f47g-v526.json +++ b/advisories/unreviewed/2022/04/GHSA-vjjx-f47g-v526/GHSA-vjjx-f47g-v526.json @@ -7,12 +7,8 @@ "CVE-2002-0506" ], "details": "Buffer overflow in newt.c of newt windowing library (libnewt) 0.50.33 and earlier may allow attackers to cause a denial of service or execute arbitrary code in setuid programs that use libnewt.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vq5r-2r4r-2q59/GHSA-vq5r-2r4r-2q59.json b/advisories/unreviewed/2022/04/GHSA-vq5r-2r4r-2q59/GHSA-vq5r-2r4r-2q59.json index 2295ae1f62c..ccd8f3b543c 100644 --- a/advisories/unreviewed/2022/04/GHSA-vq5r-2r4r-2q59/GHSA-vq5r-2r4r-2q59.json +++ b/advisories/unreviewed/2022/04/GHSA-vq5r-2r4r-2q59/GHSA-vq5r-2r4r-2q59.json @@ -7,12 +7,8 @@ "CVE-2002-0489" ], "details": "Linux Directory Penguin NsLookup CGI script (nslookup.pl) 1.0 allows remote attackers to execute arbitrary code via shell metacharacters in the (1) query or (2) type parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vqq4-v6w9-fvx4/GHSA-vqq4-v6w9-fvx4.json b/advisories/unreviewed/2022/04/GHSA-vqq4-v6w9-fvx4/GHSA-vqq4-v6w9-fvx4.json index 3ad980dc309..99b0a4c537d 100644 --- a/advisories/unreviewed/2022/04/GHSA-vqq4-v6w9-fvx4/GHSA-vqq4-v6w9-fvx4.json +++ b/advisories/unreviewed/2022/04/GHSA-vqq4-v6w9-fvx4/GHSA-vqq4-v6w9-fvx4.json @@ -7,12 +7,8 @@ "CVE-2002-0514" ], "details": "PF in OpenBSD 3.0 with the return-rst rule sets the TTL to 128 in the RST packet, which allows remote attackers to determine if a port is being filtered because the TTL is different than the default TTL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vw78-rrpr-gfr6/GHSA-vw78-rrpr-gfr6.json b/advisories/unreviewed/2022/04/GHSA-vw78-rrpr-gfr6/GHSA-vw78-rrpr-gfr6.json index 4385c2e71d4..3b19fe7b8b4 100644 --- a/advisories/unreviewed/2022/04/GHSA-vw78-rrpr-gfr6/GHSA-vw78-rrpr-gfr6.json +++ b/advisories/unreviewed/2022/04/GHSA-vw78-rrpr-gfr6/GHSA-vw78-rrpr-gfr6.json @@ -7,12 +7,8 @@ "CVE-2002-0342" ], "details": "Kmail 1.2 on KDE 2.1.1 allows remote attackers to cause a denial of service (crash) via an email message whose body is approximately 55 K long.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vwq6-34g6-9p39/GHSA-vwq6-34g6-9p39.json b/advisories/unreviewed/2022/04/GHSA-vwq6-34g6-9p39/GHSA-vwq6-34g6-9p39.json index 94a9d2519e5..6a7aa9113d8 100644 --- a/advisories/unreviewed/2022/04/GHSA-vwq6-34g6-9p39/GHSA-vwq6-34g6-9p39.json +++ b/advisories/unreviewed/2022/04/GHSA-vwq6-34g6-9p39/GHSA-vwq6-34g6-9p39.json @@ -7,12 +7,8 @@ "CVE-2002-0505" ], "details": "Memory leak in the Call Telephony Integration (CTI) Framework authentication for Cisco CallManager 3.0 and 3.1 before 3.1(3) allows remote attackers to cause a denial of service (crash and reload) via a series of authentication failures, e.g. via incorrect passwords.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w298-98jv-f358/GHSA-w298-98jv-f358.json b/advisories/unreviewed/2022/04/GHSA-w298-98jv-f358/GHSA-w298-98jv-f358.json index e01e146e85d..64bc9c35ea6 100644 --- a/advisories/unreviewed/2022/04/GHSA-w298-98jv-f358/GHSA-w298-98jv-f358.json +++ b/advisories/unreviewed/2022/04/GHSA-w298-98jv-f358/GHSA-w298-98jv-f358.json @@ -7,12 +7,8 @@ "CVE-2002-0373" ], "details": "The Windows Media Device Manager (WMDM) Service in Microsoft Windows Media Player 7.1 on Windows 2000 systems allows local users to obtain LocalSystem rights via a program that calls the WMDM service to connect to an invalid local storage device, aka \"Privilege Elevation through Windows Media Device Manager Service\".", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w2j3-p2xq-7cmx/GHSA-w2j3-p2xq-7cmx.json b/advisories/unreviewed/2022/04/GHSA-w2j3-p2xq-7cmx/GHSA-w2j3-p2xq-7cmx.json index 8968462a63f..5866e63a5f3 100644 --- a/advisories/unreviewed/2022/04/GHSA-w2j3-p2xq-7cmx/GHSA-w2j3-p2xq-7cmx.json +++ b/advisories/unreviewed/2022/04/GHSA-w2j3-p2xq-7cmx/GHSA-w2j3-p2xq-7cmx.json @@ -7,12 +7,8 @@ "CVE-2002-0553" ], "details": "Cross-site scripting vulnerability in SunShop 2.5 and earlier allows remote attackers to gain administrative privileges to SunShop by injecting the script into fields during new customer registration.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w2pc-9pgf-c47r/GHSA-w2pc-9pgf-c47r.json b/advisories/unreviewed/2022/04/GHSA-w2pc-9pgf-c47r/GHSA-w2pc-9pgf-c47r.json index 80ae8cda2a2..cbba2ec8102 100644 --- a/advisories/unreviewed/2022/04/GHSA-w2pc-9pgf-c47r/GHSA-w2pc-9pgf-c47r.json +++ b/advisories/unreviewed/2022/04/GHSA-w2pc-9pgf-c47r/GHSA-w2pc-9pgf-c47r.json @@ -7,12 +7,8 @@ "CVE-2002-0573" ], "details": "Format string vulnerability in RPC wall daemon (rpc.rwalld) for Solaris 2.5.1 through 8 allows remote attackers to execute arbitrary code via format strings in a message that is not properly provided to the syslog function when the wall command cannot be executed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w4m4-c6cq-fg4x/GHSA-w4m4-c6cq-fg4x.json b/advisories/unreviewed/2022/04/GHSA-w4m4-c6cq-fg4x/GHSA-w4m4-c6cq-fg4x.json index 04089a85d28..1356cc72518 100644 --- a/advisories/unreviewed/2022/04/GHSA-w4m4-c6cq-fg4x/GHSA-w4m4-c6cq-fg4x.json +++ b/advisories/unreviewed/2022/04/GHSA-w4m4-c6cq-fg4x/GHSA-w4m4-c6cq-fg4x.json @@ -7,12 +7,8 @@ "CVE-2002-0578" ], "details": "Buffer overflow in 4D WebServer 6.7.3 allows remote attackers to cause a denial of service and possibly execute arbitrary code via an HTTP request with Basic Authentication containing a long (1) user name or (2) password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w4ww-gfvw-wghf/GHSA-w4ww-gfvw-wghf.json b/advisories/unreviewed/2022/04/GHSA-w4ww-gfvw-wghf/GHSA-w4ww-gfvw-wghf.json index 44223dc7263..8e930c5fd64 100644 --- a/advisories/unreviewed/2022/04/GHSA-w4ww-gfvw-wghf/GHSA-w4ww-gfvw-wghf.json +++ b/advisories/unreviewed/2022/04/GHSA-w4ww-gfvw-wghf/GHSA-w4ww-gfvw-wghf.json @@ -7,12 +7,8 @@ "CVE-2002-0407" ], "details": "htcgibin.exe in Lotus Domino server 5.0.9a and earlier allows remote attackers to determine the physical pathname for the server via requests that contain certain MS-DOS device names such as com5, such as (1) a request with a .pl or .java extension, or (2) a request containing a large number of periods, which causes htcgibin.exe to leak the pathname in an error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w57f-7gx6-9mxp/GHSA-w57f-7gx6-9mxp.json b/advisories/unreviewed/2022/04/GHSA-w57f-7gx6-9mxp/GHSA-w57f-7gx6-9mxp.json index 66cc5ec100d..ae52f5727ac 100644 --- a/advisories/unreviewed/2022/04/GHSA-w57f-7gx6-9mxp/GHSA-w57f-7gx6-9mxp.json +++ b/advisories/unreviewed/2022/04/GHSA-w57f-7gx6-9mxp/GHSA-w57f-7gx6-9mxp.json @@ -7,12 +7,8 @@ "CVE-2002-0335" ], "details": "Buffer overflow in Galacticomm Worldgroup web server 3.20 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via a long HTTP GET request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w7cx-7ff7-8gxj/GHSA-w7cx-7ff7-8gxj.json b/advisories/unreviewed/2022/04/GHSA-w7cx-7ff7-8gxj/GHSA-w7cx-7ff7-8gxj.json index cd3a3b2c2fc..20260b01e5d 100644 --- a/advisories/unreviewed/2022/04/GHSA-w7cx-7ff7-8gxj/GHSA-w7cx-7ff7-8gxj.json +++ b/advisories/unreviewed/2022/04/GHSA-w7cx-7ff7-8gxj/GHSA-w7cx-7ff7-8gxj.json @@ -7,12 +7,8 @@ "CVE-2002-0330" ], "details": "Cross-site scripting vulnerability in codeparse.php of Open Bulletin Board (OpenBB) 1.0.0 allows remote attackers to execute arbitrary script and steal cookies via Javascript in the IMG tag.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w823-pqhh-vffv/GHSA-w823-pqhh-vffv.json b/advisories/unreviewed/2022/04/GHSA-w823-pqhh-vffv/GHSA-w823-pqhh-vffv.json index 6b078daffd1..bc9d2ff4aeb 100644 --- a/advisories/unreviewed/2022/04/GHSA-w823-pqhh-vffv/GHSA-w823-pqhh-vffv.json +++ b/advisories/unreviewed/2022/04/GHSA-w823-pqhh-vffv/GHSA-w823-pqhh-vffv.json @@ -7,12 +7,8 @@ "CVE-2002-0492" ], "details": "dcshop.cgi in DCShop 1.002 Beta allows remote attackers to delete arbitrary setup files via a null character in the database parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wf5r-rhwg-2249/GHSA-wf5r-rhwg-2249.json b/advisories/unreviewed/2022/04/GHSA-wf5r-rhwg-2249/GHSA-wf5r-rhwg-2249.json index 263c41493ef..31e3d09cf12 100644 --- a/advisories/unreviewed/2022/04/GHSA-wf5r-rhwg-2249/GHSA-wf5r-rhwg-2249.json +++ b/advisories/unreviewed/2022/04/GHSA-wf5r-rhwg-2249/GHSA-wf5r-rhwg-2249.json @@ -7,12 +7,8 @@ "CVE-2002-0317" ], "details": "Gator ActiveX component (IEGator.dll) 3.0.6.1 allows remote web sites to install arbitrary software by specifying a Trojan Gator installation file (setup.ex_) in the src parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wjc3-p3cv-jcgp/GHSA-wjc3-p3cv-jcgp.json b/advisories/unreviewed/2022/04/GHSA-wjc3-p3cv-jcgp/GHSA-wjc3-p3cv-jcgp.json index 107f5313a99..89afaf82a5f 100644 --- a/advisories/unreviewed/2022/04/GHSA-wjc3-p3cv-jcgp/GHSA-wjc3-p3cv-jcgp.json +++ b/advisories/unreviewed/2022/04/GHSA-wjc3-p3cv-jcgp/GHSA-wjc3-p3cv-jcgp.json @@ -7,12 +7,8 @@ "CVE-2002-0263" ], "details": "Buffer overflow in EasyBoard 2000 1.27 (aka EZboard) allows remote attackers to execute arbitrary code via a long boundary value in a multipart Content-Type header to (1) ezboard.cgi, (2) ezman.cgi, or (3) ezadmin.cgi.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wp9x-8c54-v666/GHSA-wp9x-8c54-v666.json b/advisories/unreviewed/2022/04/GHSA-wp9x-8c54-v666/GHSA-wp9x-8c54-v666.json index b6f10121ac3..0ede9ffb2da 100644 --- a/advisories/unreviewed/2022/04/GHSA-wp9x-8c54-v666/GHSA-wp9x-8c54-v666.json +++ b/advisories/unreviewed/2022/04/GHSA-wp9x-8c54-v666/GHSA-wp9x-8c54-v666.json @@ -7,12 +7,8 @@ "CVE-2002-0581" ], "details": "WorkforceROI Xpede 4.1 allows remote attackers to execute arbitrary SQL commands and read, modify, or steal credentials from the database via the Qry parameter in the sprc.asp script.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wpqm-xrhc-3qcc/GHSA-wpqm-xrhc-3qcc.json b/advisories/unreviewed/2022/04/GHSA-wpqm-xrhc-3qcc/GHSA-wpqm-xrhc-3qcc.json index 16e652df4a2..61cc4ad5b29 100644 --- a/advisories/unreviewed/2022/04/GHSA-wpqm-xrhc-3qcc/GHSA-wpqm-xrhc-3qcc.json +++ b/advisories/unreviewed/2022/04/GHSA-wpqm-xrhc-3qcc/GHSA-wpqm-xrhc-3qcc.json @@ -7,12 +7,8 @@ "CVE-2002-0305" ], "details": "Zero One Tech (ZOT) P100s print server does not properly disable the SNMP service or change the default password, which could leave the server open to attack without the administrator's knowledge.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wrh6-2vcx-6fcm/GHSA-wrh6-2vcx-6fcm.json b/advisories/unreviewed/2022/04/GHSA-wrh6-2vcx-6fcm/GHSA-wrh6-2vcx-6fcm.json index c51d4ed652f..9c326f96a22 100644 --- a/advisories/unreviewed/2022/04/GHSA-wrh6-2vcx-6fcm/GHSA-wrh6-2vcx-6fcm.json +++ b/advisories/unreviewed/2022/04/GHSA-wrh6-2vcx-6fcm/GHSA-wrh6-2vcx-6fcm.json @@ -7,12 +7,8 @@ "CVE-2002-0266" ], "details": "Thunderstone Texis CGI script allows remote attackers to obtain the full path of the web root via a request for a nonexistent file, which generates an error message that includes the full pathname.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wrx2-hpw5-983c/GHSA-wrx2-hpw5-983c.json b/advisories/unreviewed/2022/04/GHSA-wrx2-hpw5-983c/GHSA-wrx2-hpw5-983c.json index 9ad971bcc4e..f4906f02eff 100644 --- a/advisories/unreviewed/2022/04/GHSA-wrx2-hpw5-983c/GHSA-wrx2-hpw5-983c.json +++ b/advisories/unreviewed/2022/04/GHSA-wrx2-hpw5-983c/GHSA-wrx2-hpw5-983c.json @@ -7,12 +7,8 @@ "CVE-2002-0541" ], "details": "Buffer overflow in Tivoli Storage Manager TSM (1) Server or Storage Agents 3.1 through 5.1, and (2) the TSM Client Acceptor Service 4.2 and 5.1, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long HTTP GET request to port 1580 or port 1581.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wvgq-x497-8h7f/GHSA-wvgq-x497-8h7f.json b/advisories/unreviewed/2022/04/GHSA-wvgq-x497-8h7f/GHSA-wvgq-x497-8h7f.json index 60c267c2cf7..981c93269bd 100644 --- a/advisories/unreviewed/2022/04/GHSA-wvgq-x497-8h7f/GHSA-wvgq-x497-8h7f.json +++ b/advisories/unreviewed/2022/04/GHSA-wvgq-x497-8h7f/GHSA-wvgq-x497-8h7f.json @@ -7,12 +7,8 @@ "CVE-2002-0429" ], "details": "The iBCS routines in arch/i386/kernel/traps.c for Linux kernels 2.4.18 and earlier on x86 systems allow local users to kill arbitrary processes via a a binary compatibility interface (lcall).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-x4q2-8332-hmc4/GHSA-x4q2-8332-hmc4.json b/advisories/unreviewed/2022/04/GHSA-x4q2-8332-hmc4/GHSA-x4q2-8332-hmc4.json index 88b52a2d8f9..ca055301efd 100644 --- a/advisories/unreviewed/2022/04/GHSA-x4q2-8332-hmc4/GHSA-x4q2-8332-hmc4.json +++ b/advisories/unreviewed/2022/04/GHSA-x4q2-8332-hmc4/GHSA-x4q2-8332-hmc4.json @@ -7,12 +7,8 @@ "CVE-2002-0531" ], "details": "Directory traversal vulnerability in emumail.cgi in EMU Webmail 4.5.x and 5.1.0 allows remote attackers to read arbitrary files or list arbitrary directories via a .. (dot dot) in the type parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-x584-8853-j9mg/GHSA-x584-8853-j9mg.json b/advisories/unreviewed/2022/04/GHSA-x584-8853-j9mg/GHSA-x584-8853-j9mg.json index cf559d0dc34..b3c408f2a40 100644 --- a/advisories/unreviewed/2022/04/GHSA-x584-8853-j9mg/GHSA-x584-8853-j9mg.json +++ b/advisories/unreviewed/2022/04/GHSA-x584-8853-j9mg/GHSA-x584-8853-j9mg.json @@ -7,12 +7,8 @@ "CVE-2002-0446" ], "details": "categorie.php3 in Black Tie Project (BTP) 0.4b through 0.5b allows remote attackers to determine the absolute path of the web server via an invalid category ID (cid) parameter, which leaks the pathname in an error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-x6xj-x78x-vrvw/GHSA-x6xj-x78x-vrvw.json b/advisories/unreviewed/2022/04/GHSA-x6xj-x78x-vrvw/GHSA-x6xj-x78x-vrvw.json index 53ab1089146..5adc1d5df0f 100644 --- a/advisories/unreviewed/2022/04/GHSA-x6xj-x78x-vrvw/GHSA-x6xj-x78x-vrvw.json +++ b/advisories/unreviewed/2022/04/GHSA-x6xj-x78x-vrvw/GHSA-x6xj-x78x-vrvw.json @@ -7,12 +7,8 @@ "CVE-2002-0315" ], "details": "fasttrack p2p, as used in (1) KaZaA, (2) grokster, and (3) morpheus allows remote attackers to spoof other users by modifying the username and network information in the message header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-x735-64rw-4f55/GHSA-x735-64rw-4f55.json b/advisories/unreviewed/2022/04/GHSA-x735-64rw-4f55/GHSA-x735-64rw-4f55.json index fdfac0a6907..318bcd2c606 100644 --- a/advisories/unreviewed/2022/04/GHSA-x735-64rw-4f55/GHSA-x735-64rw-4f55.json +++ b/advisories/unreviewed/2022/04/GHSA-x735-64rw-4f55/GHSA-x735-64rw-4f55.json @@ -7,12 +7,8 @@ "CVE-2002-0449" ], "details": "Buffer overflow in webpsvc.exe for Talentsoft Web+ 5.0 and earlier allows remote attackers to execute arbitrary code via a long argument to webplus.exe program, which triggers the overflow in webpsvc.exe.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-x74c-jx25-vjp6/GHSA-x74c-jx25-vjp6.json b/advisories/unreviewed/2022/04/GHSA-x74c-jx25-vjp6/GHSA-x74c-jx25-vjp6.json index b6888216b73..5978194c230 100644 --- a/advisories/unreviewed/2022/04/GHSA-x74c-jx25-vjp6/GHSA-x74c-jx25-vjp6.json +++ b/advisories/unreviewed/2022/04/GHSA-x74c-jx25-vjp6/GHSA-x74c-jx25-vjp6.json @@ -7,12 +7,8 @@ "CVE-2002-0515" ], "details": "IPFilter 3.4.25 and earlier sets a different TTL when a port is being filtered than when it is not being filtered, which allows remote attackers to identify filtered ports by comparing TTLs.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xgg8-hrcc-vh8f/GHSA-xgg8-hrcc-vh8f.json b/advisories/unreviewed/2022/04/GHSA-xgg8-hrcc-vh8f/GHSA-xgg8-hrcc-vh8f.json index 3e2d6e5f01d..fb02d456f11 100644 --- a/advisories/unreviewed/2022/04/GHSA-xgg8-hrcc-vh8f/GHSA-xgg8-hrcc-vh8f.json +++ b/advisories/unreviewed/2022/04/GHSA-xgg8-hrcc-vh8f/GHSA-xgg8-hrcc-vh8f.json @@ -7,12 +7,8 @@ "CVE-2002-0385" ], "details": "Vignette Story Server 4.1 and 6.0 allows remote attackers to obtain sensitive information via a request that contains a large number of '\"' (double quote) and and '>' characters, which causes the TCL interpreter to crash and include stack data in the output.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xh92-g23r-644g/GHSA-xh92-g23r-644g.json b/advisories/unreviewed/2022/04/GHSA-xh92-g23r-644g/GHSA-xh92-g23r-644g.json index 40a6b9df14b..46678e90168 100644 --- a/advisories/unreviewed/2022/04/GHSA-xh92-g23r-644g/GHSA-xh92-g23r-644g.json +++ b/advisories/unreviewed/2022/04/GHSA-xh92-g23r-644g/GHSA-xh92-g23r-644g.json @@ -7,12 +7,8 @@ "CVE-2002-0499" ], "details": "The d_path function in Linux kernel 2.2.20 and earlier, and 2.4.18 and earlier, truncates long pathnames without generating an error, which could allow local users to force programs to perform inappropriate operations on the wrong directories.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xj67-986p-6xph/GHSA-xj67-986p-6xph.json b/advisories/unreviewed/2022/04/GHSA-xj67-986p-6xph/GHSA-xj67-986p-6xph.json index f9065b14ec8..fed1289acc7 100644 --- a/advisories/unreviewed/2022/04/GHSA-xj67-986p-6xph/GHSA-xj67-986p-6xph.json +++ b/advisories/unreviewed/2022/04/GHSA-xj67-986p-6xph/GHSA-xj67-986p-6xph.json @@ -7,12 +7,8 @@ "CVE-2002-0532" ], "details": "EMU Webmail allows local users to execute arbitrary programs via a .. (dot dot) in the HTTP Host header that points to a Trojan horse configuration file that contains a pageroot specifier that contains shell metacharacters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xp42-g4qq-8cg3/GHSA-xp42-g4qq-8cg3.json b/advisories/unreviewed/2022/04/GHSA-xp42-g4qq-8cg3/GHSA-xp42-g4qq-8cg3.json index 6760e8cc7ec..1fb2b02ea4e 100644 --- a/advisories/unreviewed/2022/04/GHSA-xp42-g4qq-8cg3/GHSA-xp42-g4qq-8cg3.json +++ b/advisories/unreviewed/2022/04/GHSA-xp42-g4qq-8cg3/GHSA-xp42-g4qq-8cg3.json @@ -7,12 +7,8 @@ "CVE-2002-0237" ], "details": "Buffer overflow in ISS BlackICE Defender 2.9 and earlier, BlackICE Agent 3.0 and 3.1, and RealSecure Server Sensor 6.0.1 and 6.5 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a flood of large ICMP ping packets.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xq75-p73c-3q2p/GHSA-xq75-p73c-3q2p.json b/advisories/unreviewed/2022/04/GHSA-xq75-p73c-3q2p/GHSA-xq75-p73c-3q2p.json index 6880a1015e4..6179239a42f 100644 --- a/advisories/unreviewed/2022/04/GHSA-xq75-p73c-3q2p/GHSA-xq75-p73c-3q2p.json +++ b/advisories/unreviewed/2022/04/GHSA-xq75-p73c-3q2p/GHSA-xq75-p73c-3q2p.json @@ -7,12 +7,8 @@ "CVE-2002-0370" ], "details": "Buffer overflow in the ZIP capability for multiple products allows remote attackers to cause a denial of service or execute arbitrary code via ZIP files containing entries with long filenames, including (1) Microsoft Windows 98 with Plus! Pack, (2) Windows XP, (3) Windows ME, (4) Lotus Notes R4 through R6 (pre-gold), (5) Verity KeyView, and (6) Stuffit Expander before 7.0.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xr3f-rxj7-wrwj/GHSA-xr3f-rxj7-wrwj.json b/advisories/unreviewed/2022/04/GHSA-xr3f-rxj7-wrwj/GHSA-xr3f-rxj7-wrwj.json index 5dc5f4afafc..73b5233df45 100644 --- a/advisories/unreviewed/2022/04/GHSA-xr3f-rxj7-wrwj/GHSA-xr3f-rxj7-wrwj.json +++ b/advisories/unreviewed/2022/04/GHSA-xr3f-rxj7-wrwj/GHSA-xr3f-rxj7-wrwj.json @@ -7,12 +7,8 @@ "CVE-2002-0543" ], "details": "Directory traversal vulnerability in Aprelium Abyss Web Server (abyssws) before 1.0.0.2 allows remote attackers to read files outside the web root, including the abyss.conf file, via URL-encoded .. (dot dot) sequences in the HTTP request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xrg7-wh2g-5jmq/GHSA-xrg7-wh2g-5jmq.json b/advisories/unreviewed/2022/04/GHSA-xrg7-wh2g-5jmq/GHSA-xrg7-wh2g-5jmq.json index e9a9e3902e9..3ac9753c175 100644 --- a/advisories/unreviewed/2022/04/GHSA-xrg7-wh2g-5jmq/GHSA-xrg7-wh2g-5jmq.json +++ b/advisories/unreviewed/2022/04/GHSA-xrg7-wh2g-5jmq/GHSA-xrg7-wh2g-5jmq.json @@ -7,12 +7,8 @@ "CVE-2002-0525" ], "details": "Format string vulnerabilities in (1) inews or (2) rnews for INN 2.2.3 and earlier allow local users and remote malicious NNTP servers to gain privileges via format string specifiers in NTTP responses.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xv2v-3fj4-g6xm/GHSA-xv2v-3fj4-g6xm.json b/advisories/unreviewed/2022/04/GHSA-xv2v-3fj4-g6xm/GHSA-xv2v-3fj4-g6xm.json index d806e5a1944..eed8c4d7b75 100644 --- a/advisories/unreviewed/2022/04/GHSA-xv2v-3fj4-g6xm/GHSA-xv2v-3fj4-g6xm.json +++ b/advisories/unreviewed/2022/04/GHSA-xv2v-3fj4-g6xm/GHSA-xv2v-3fj4-g6xm.json @@ -7,12 +7,8 @@ "CVE-2002-0410" ], "details": "send_message.php in AeroMail before 1.45 allows remote attackers to read arbitrary files on the server, instead of just uploaded files, via an attachment that modifies the filename to be uploaded.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xwhc-m79g-6vgf/GHSA-xwhc-m79g-6vgf.json b/advisories/unreviewed/2022/04/GHSA-xwhc-m79g-6vgf/GHSA-xwhc-m79g-6vgf.json index 59825b784f1..4ab3433ebbc 100644 --- a/advisories/unreviewed/2022/04/GHSA-xwhc-m79g-6vgf/GHSA-xwhc-m79g-6vgf.json +++ b/advisories/unreviewed/2022/04/GHSA-xwhc-m79g-6vgf/GHSA-xwhc-m79g-6vgf.json @@ -7,12 +7,8 @@ "CVE-2002-0559" ], "details": "Buffer overflows in PL/SQL module 3.0.9.8.2 in Oracle 9i Application Server 1.0.2.x allow remote attackers to cause a denial of service or execute arbitrary code via (1) a long help page request without a dadname, which overflows the resulting HTTP Location header, (2) a long HTTP request to the plsql module, (3) a long password in the HTTP Authorization, (4) a long Access Descriptor (DAD) password in the addadd form, or (5) a long cache directory name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -76,9 +72,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xwhf-fvfw-wp47/GHSA-xwhf-fvfw-wp47.json b/advisories/unreviewed/2022/04/GHSA-xwhf-fvfw-wp47/GHSA-xwhf-fvfw-wp47.json index 1fcf21ce7f6..96b4055701d 100644 --- a/advisories/unreviewed/2022/04/GHSA-xwhf-fvfw-wp47/GHSA-xwhf-fvfw-wp47.json +++ b/advisories/unreviewed/2022/04/GHSA-xwhf-fvfw-wp47/GHSA-xwhf-fvfw-wp47.json @@ -7,12 +7,8 @@ "CVE-2002-0313" ], "details": "Buffer overflow in Essentia Web Server 2.1 allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via a long URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xx6x-gw8p-x62c/GHSA-xx6x-gw8p-x62c.json b/advisories/unreviewed/2022/04/GHSA-xx6x-gw8p-x62c/GHSA-xx6x-gw8p-x62c.json index 9e4c909d4c9..77e3a887403 100644 --- a/advisories/unreviewed/2022/04/GHSA-xx6x-gw8p-x62c/GHSA-xx6x-gw8p-x62c.json +++ b/advisories/unreviewed/2022/04/GHSA-xx6x-gw8p-x62c/GHSA-xx6x-gw8p-x62c.json @@ -7,12 +7,8 @@ "CVE-2002-0352" ], "details": "Phorum 3.3.2 allows remote attackers to determine the email addresses of the 10 most active users via a direct HTTP request to the stats.php program, which does not require authentication.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-249w-fpwp-f94r/GHSA-249w-fpwp-f94r.json b/advisories/unreviewed/2022/05/GHSA-249w-fpwp-f94r/GHSA-249w-fpwp-f94r.json index af2ed2f1ff3..5b77a946b89 100644 --- a/advisories/unreviewed/2022/05/GHSA-249w-fpwp-f94r/GHSA-249w-fpwp-f94r.json +++ b/advisories/unreviewed/2022/05/GHSA-249w-fpwp-f94r/GHSA-249w-fpwp-f94r.json @@ -7,12 +7,8 @@ "CVE-2021-30126" ], "details": "Lightmeter ControlCenter 1.1.0 through 1.5.x before 1.5.1 allows anyone who knows the URL of a publicly available Lightmeter instance to access application settings, possibly including an SMTP password and a Slack access token, via a settings HTTP query.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-24pg-mpvf-gg4c/GHSA-24pg-mpvf-gg4c.json b/advisories/unreviewed/2022/05/GHSA-24pg-mpvf-gg4c/GHSA-24pg-mpvf-gg4c.json index 365c0ee2b8b..31bc38cf3d0 100644 --- a/advisories/unreviewed/2022/05/GHSA-24pg-mpvf-gg4c/GHSA-24pg-mpvf-gg4c.json +++ b/advisories/unreviewed/2022/05/GHSA-24pg-mpvf-gg4c/GHSA-24pg-mpvf-gg4c.json @@ -7,12 +7,8 @@ "CVE-2020-35418" ], "details": "Cross Site Scripting (XSS) in the contact page of Group Office CRM 6.4.196 by uploading a crafted svg file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2548-2rfq-335j/GHSA-2548-2rfq-335j.json b/advisories/unreviewed/2022/05/GHSA-2548-2rfq-335j/GHSA-2548-2rfq-335j.json index 842e2736c8d..76e4ba7a6af 100644 --- a/advisories/unreviewed/2022/05/GHSA-2548-2rfq-335j/GHSA-2548-2rfq-335j.json +++ b/advisories/unreviewed/2022/05/GHSA-2548-2rfq-335j/GHSA-2548-2rfq-335j.json @@ -7,12 +7,8 @@ "CVE-2021-30072" ], "details": "An issue was discovered in prog.cgi on D-Link DIR-878 1.30B08 devices. Because strcat is misused, there is a stack-based buffer overflow that does not require authentication.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-25v9-5xh2-9q3m/GHSA-25v9-5xh2-9q3m.json b/advisories/unreviewed/2022/05/GHSA-25v9-5xh2-9q3m/GHSA-25v9-5xh2-9q3m.json index 7f40f4dec48..8e6c2f17c5a 100644 --- a/advisories/unreviewed/2022/05/GHSA-25v9-5xh2-9q3m/GHSA-25v9-5xh2-9q3m.json +++ b/advisories/unreviewed/2022/05/GHSA-25v9-5xh2-9q3m/GHSA-25v9-5xh2-9q3m.json @@ -7,12 +7,8 @@ "CVE-2021-25375" ], "details": "Using predictable index for attachments in Samsung Email prior to version 6.1.41.0 allows remote attackers to get attachments of another emails when users open the malicious attachment.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2623-9jvf-x9v2/GHSA-2623-9jvf-x9v2.json b/advisories/unreviewed/2022/05/GHSA-2623-9jvf-x9v2/GHSA-2623-9jvf-x9v2.json index 748a590cbae..3e50027b7fb 100644 --- a/advisories/unreviewed/2022/05/GHSA-2623-9jvf-x9v2/GHSA-2623-9jvf-x9v2.json +++ b/advisories/unreviewed/2022/05/GHSA-2623-9jvf-x9v2/GHSA-2623-9jvf-x9v2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-289v-jmv7-6xmx/GHSA-289v-jmv7-6xmx.json b/advisories/unreviewed/2022/05/GHSA-289v-jmv7-6xmx/GHSA-289v-jmv7-6xmx.json index 6b947343011..3dd526c8ab3 100644 --- a/advisories/unreviewed/2022/05/GHSA-289v-jmv7-6xmx/GHSA-289v-jmv7-6xmx.json +++ b/advisories/unreviewed/2022/05/GHSA-289v-jmv7-6xmx/GHSA-289v-jmv7-6xmx.json @@ -7,12 +7,8 @@ "CVE-2021-3128" ], "details": "In ASUS RT-AX3000, ZenWiFi AX (XT8), RT-AX88U, and other ASUS routers with firmware < 3.0.0.4.386.42095 or < 9.0.0.4.386.41994, when IPv6 is used, a routing loop can occur that generates excessive network traffic between an affected device and its upstream ISP's router. This occurs when a link prefix route points to a point-to-point link, a destination IPv6 address belongs to the prefix and is not a local IPv6 address, and a router advertisement is received with at least one global unique IPv6 prefix for which the on-link flag is set.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-28p8-w9v3-x57w/GHSA-28p8-w9v3-x57w.json b/advisories/unreviewed/2022/05/GHSA-28p8-w9v3-x57w/GHSA-28p8-w9v3-x57w.json index 367ce8f61ff..311351be42f 100644 --- a/advisories/unreviewed/2022/05/GHSA-28p8-w9v3-x57w/GHSA-28p8-w9v3-x57w.json +++ b/advisories/unreviewed/2022/05/GHSA-28p8-w9v3-x57w/GHSA-28p8-w9v3-x57w.json @@ -7,12 +7,8 @@ "CVE-2021-24218" ], "details": "The wp_ajax_save_fbe_settings and wp_ajax_delete_fbe_settings AJAX actions of the Facebook for WordPress plugin before 3.0.4 were vulnerable to CSRF due to a lack of nonce protection. The settings in the saveFbeSettings function had no sanitization allowing for script tags to be saved.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2f9h-mhxv-wrr8/GHSA-2f9h-mhxv-wrr8.json b/advisories/unreviewed/2022/05/GHSA-2f9h-mhxv-wrr8/GHSA-2f9h-mhxv-wrr8.json index d4a799b7714..e5d6dedb2bf 100644 --- a/advisories/unreviewed/2022/05/GHSA-2f9h-mhxv-wrr8/GHSA-2f9h-mhxv-wrr8.json +++ b/advisories/unreviewed/2022/05/GHSA-2f9h-mhxv-wrr8/GHSA-2f9h-mhxv-wrr8.json @@ -7,12 +7,8 @@ "CVE-2021-0427" ], "details": "In parseExclusiveStateAnnotation of LogEvent.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-174488848", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2fg2-9f54-8632/GHSA-2fg2-9f54-8632.json b/advisories/unreviewed/2022/05/GHSA-2fg2-9f54-8632/GHSA-2fg2-9f54-8632.json index e5e3ff9b337..c50e3823caf 100644 --- a/advisories/unreviewed/2022/05/GHSA-2fg2-9f54-8632/GHSA-2fg2-9f54-8632.json +++ b/advisories/unreviewed/2022/05/GHSA-2fg2-9f54-8632/GHSA-2fg2-9f54-8632.json @@ -7,12 +7,8 @@ "CVE-2021-20689" ], "details": "Cross-site scripting vulnerability in Yomi-Search Ver4.22 allows remote attackers to inject an arbitrary script via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2h68-4vmh-prhj/GHSA-2h68-4vmh-prhj.json b/advisories/unreviewed/2022/05/GHSA-2h68-4vmh-prhj/GHSA-2h68-4vmh-prhj.json index 4475b4ea817..43a60c212a1 100644 --- a/advisories/unreviewed/2022/05/GHSA-2h68-4vmh-prhj/GHSA-2h68-4vmh-prhj.json +++ b/advisories/unreviewed/2022/05/GHSA-2h68-4vmh-prhj/GHSA-2h68-4vmh-prhj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2hmj-h5rh-f294/GHSA-2hmj-h5rh-f294.json b/advisories/unreviewed/2022/05/GHSA-2hmj-h5rh-f294/GHSA-2hmj-h5rh-f294.json index a7a796b77db..869003394a1 100644 --- a/advisories/unreviewed/2022/05/GHSA-2hmj-h5rh-f294/GHSA-2hmj-h5rh-f294.json +++ b/advisories/unreviewed/2022/05/GHSA-2hmj-h5rh-f294/GHSA-2hmj-h5rh-f294.json @@ -7,12 +7,8 @@ "CVE-2021-24225" ], "details": "The Advanced Booking Calendar WordPress plugin before 1.6.7 did not sanitise the calId GET parameter in the \"Seasons & Calendars\" page before outputing it in an A tag, leading to a reflected XSS issue", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2j49-4qxc-q53v/GHSA-2j49-4qxc-q53v.json b/advisories/unreviewed/2022/05/GHSA-2j49-4qxc-q53v/GHSA-2j49-4qxc-q53v.json index 4c455e30db1..552058215c7 100644 --- a/advisories/unreviewed/2022/05/GHSA-2j49-4qxc-q53v/GHSA-2j49-4qxc-q53v.json +++ b/advisories/unreviewed/2022/05/GHSA-2j49-4qxc-q53v/GHSA-2j49-4qxc-q53v.json @@ -7,12 +7,8 @@ "CVE-2021-20688" ], "details": "Cross-site scripting vulnerability in Click Ranker Ver.3.5 allows remote attackers to inject an arbitrary script via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2mq3-gxhp-m36q/GHSA-2mq3-gxhp-m36q.json b/advisories/unreviewed/2022/05/GHSA-2mq3-gxhp-m36q/GHSA-2mq3-gxhp-m36q.json index db54305617f..ed975c4a976 100644 --- a/advisories/unreviewed/2022/05/GHSA-2mq3-gxhp-m36q/GHSA-2mq3-gxhp-m36q.json +++ b/advisories/unreviewed/2022/05/GHSA-2mq3-gxhp-m36q/GHSA-2mq3-gxhp-m36q.json @@ -7,12 +7,8 @@ "CVE-2020-24136" ], "details": "Directory traversal in Wcms 0.3.2 allows an attacker to read arbitrary files on the server that is running an application via the pagename parameter to wex/html.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2p22-jp73-7gf2/GHSA-2p22-jp73-7gf2.json b/advisories/unreviewed/2022/05/GHSA-2p22-jp73-7gf2/GHSA-2p22-jp73-7gf2.json index f618021aa1c..fd3dbc734f0 100644 --- a/advisories/unreviewed/2022/05/GHSA-2p22-jp73-7gf2/GHSA-2p22-jp73-7gf2.json +++ b/advisories/unreviewed/2022/05/GHSA-2p22-jp73-7gf2/GHSA-2p22-jp73-7gf2.json @@ -7,12 +7,8 @@ "CVE-2021-27706" ], "details": "Buffer Overflow in Tenda G1 and G3 routers with firmware version V15.11.0.17(9502)_CN allows remote attackers to execute arbitrary code via a crafted action/\"IPMacBindIndex \"request. This occurs because the \"formIPMacBindDel\" function directly passes the parameter \"IPMacBindIndex\" to strcpy without limit.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2pqf-pg56-pwcv/GHSA-2pqf-pg56-pwcv.json b/advisories/unreviewed/2022/05/GHSA-2pqf-pg56-pwcv/GHSA-2pqf-pg56-pwcv.json index 4a3bd4f38b4..8794db70558 100644 --- a/advisories/unreviewed/2022/05/GHSA-2pqf-pg56-pwcv/GHSA-2pqf-pg56-pwcv.json +++ b/advisories/unreviewed/2022/05/GHSA-2pqf-pg56-pwcv/GHSA-2pqf-pg56-pwcv.json @@ -7,12 +7,8 @@ "CVE-2021-30176" ], "details": "The ZEROF Expert pro/2.0 application for mobile devices allows SQL Injection via the Authorization header to the /v2/devices/add endpoint.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2qv4-c5gv-5f74/GHSA-2qv4-c5gv-5f74.json b/advisories/unreviewed/2022/05/GHSA-2qv4-c5gv-5f74/GHSA-2qv4-c5gv-5f74.json index e3e5c4e9f04..1e51f4161df 100644 --- a/advisories/unreviewed/2022/05/GHSA-2qv4-c5gv-5f74/GHSA-2qv4-c5gv-5f74.json +++ b/advisories/unreviewed/2022/05/GHSA-2qv4-c5gv-5f74/GHSA-2qv4-c5gv-5f74.json @@ -7,12 +7,8 @@ "CVE-2021-21194" ], "details": "Use after free in screen sharing in Google Chrome prior to 89.0.4389.114 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2r3q-hh42-h52v/GHSA-2r3q-hh42-h52v.json b/advisories/unreviewed/2022/05/GHSA-2r3q-hh42-h52v/GHSA-2r3q-hh42-h52v.json index f1ebc34c73e..26f0b48dc45 100644 --- a/advisories/unreviewed/2022/05/GHSA-2r3q-hh42-h52v/GHSA-2r3q-hh42-h52v.json +++ b/advisories/unreviewed/2022/05/GHSA-2r3q-hh42-h52v/GHSA-2r3q-hh42-h52v.json @@ -7,12 +7,8 @@ "CVE-2021-28826" ], "details": "The Windows Installation component of TIBCO Software Inc.'s TIBCO Messaging - Eclipse Mosquitto Distribution - Bridge - Community Edition and TIBCO Messaging - Eclipse Mosquitto Distribution - Bridge - Enterprise Edition contains a vulnerability that theoretically allows a low privileged attacker with local access on some versions of the Windows operating system to insert malicious software. The affected component can be abused to execute the malicious software inserted by the attacker with the elevated privileges of the component. This vulnerability results from a lack of access restrictions on certain files and/or folders in the installation. Affected releases are TIBCO Software Inc.'s TIBCO Messaging - Eclipse Mosquitto Distribution - Bridge - Community Edition: versions 1.3.0 and below and TIBCO Messaging - Eclipse Mosquitto Distribution - Bridge - Enterprise Edition: versions 1.3.0 and below.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2wc2-8hhf-wr42/GHSA-2wc2-8hhf-wr42.json b/advisories/unreviewed/2022/05/GHSA-2wc2-8hhf-wr42/GHSA-2wc2-8hhf-wr42.json index ad9648c7236..e108ca7405f 100644 --- a/advisories/unreviewed/2022/05/GHSA-2wc2-8hhf-wr42/GHSA-2wc2-8hhf-wr42.json +++ b/advisories/unreviewed/2022/05/GHSA-2wc2-8hhf-wr42/GHSA-2wc2-8hhf-wr42.json @@ -7,12 +7,8 @@ "CVE-2021-27251" ], "details": "This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR Nighthawk R7800. Authentication is not required to exploit this vulnerability The specific flaw exists within handling of firmware updates. The issue results from a fallback to a insecure protocol to deliver updates. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-12308.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-324r-mgqm-8gjq/GHSA-324r-mgqm-8gjq.json b/advisories/unreviewed/2022/05/GHSA-324r-mgqm-8gjq/GHSA-324r-mgqm-8gjq.json index c2e5235679c..64ae8f8a8ee 100644 --- a/advisories/unreviewed/2022/05/GHSA-324r-mgqm-8gjq/GHSA-324r-mgqm-8gjq.json +++ b/advisories/unreviewed/2022/05/GHSA-324r-mgqm-8gjq/GHSA-324r-mgqm-8gjq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-32ww-65cv-cvf4/GHSA-32ww-65cv-cvf4.json b/advisories/unreviewed/2022/05/GHSA-32ww-65cv-cvf4/GHSA-32ww-65cv-cvf4.json index b70e03c50c2..03c686c3de1 100644 --- a/advisories/unreviewed/2022/05/GHSA-32ww-65cv-cvf4/GHSA-32ww-65cv-cvf4.json +++ b/advisories/unreviewed/2022/05/GHSA-32ww-65cv-cvf4/GHSA-32ww-65cv-cvf4.json @@ -7,12 +7,8 @@ "CVE-2021-27247" ], "details": "This vulnerability allows remote attackers to disclose sensitive information on affected installations of Tencent WeChat 2.9.5 desktop version. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the WXAM decoder. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-11907.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-342r-v98v-xjfv/GHSA-342r-v98v-xjfv.json b/advisories/unreviewed/2022/05/GHSA-342r-v98v-xjfv/GHSA-342r-v98v-xjfv.json index e065d666dc7..6c4b1d9272d 100644 --- a/advisories/unreviewed/2022/05/GHSA-342r-v98v-xjfv/GHSA-342r-v98v-xjfv.json +++ b/advisories/unreviewed/2022/05/GHSA-342r-v98v-xjfv/GHSA-342r-v98v-xjfv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-382q-3qj5-29mx/GHSA-382q-3qj5-29mx.json b/advisories/unreviewed/2022/05/GHSA-382q-3qj5-29mx/GHSA-382q-3qj5-29mx.json index e4a32b707a4..6d6ff4d25a2 100644 --- a/advisories/unreviewed/2022/05/GHSA-382q-3qj5-29mx/GHSA-382q-3qj5-29mx.json +++ b/advisories/unreviewed/2022/05/GHSA-382q-3qj5-29mx/GHSA-382q-3qj5-29mx.json @@ -7,12 +7,8 @@ "CVE-2021-1474" ], "details": "Multiple vulnerabilities in the Admin audit log export feature and Scheduled Reports feature of Cisco Umbrella could allow an authenticated, remote attacker to perform formula and link injection attacks on an affected device. For more information about these vulnerabilities, see the Details section of this advisory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-38f2-9m48-4vff/GHSA-38f2-9m48-4vff.json b/advisories/unreviewed/2022/05/GHSA-38f2-9m48-4vff/GHSA-38f2-9m48-4vff.json index 534111d5f16..5504fea4faf 100644 --- a/advisories/unreviewed/2022/05/GHSA-38f2-9m48-4vff/GHSA-38f2-9m48-4vff.json +++ b/advisories/unreviewed/2022/05/GHSA-38f2-9m48-4vff/GHSA-38f2-9m48-4vff.json @@ -7,12 +7,8 @@ "CVE-2021-27130" ], "details": "Online Reviewer System 1.0 contains a SQL injection vulnerability through authentication bypass, which may lead to a reverse shell upload.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3cr5-frrf-7285/GHSA-3cr5-frrf-7285.json b/advisories/unreviewed/2022/05/GHSA-3cr5-frrf-7285/GHSA-3cr5-frrf-7285.json index 0392b19d366..5a9bd64c0af 100644 --- a/advisories/unreviewed/2022/05/GHSA-3cr5-frrf-7285/GHSA-3cr5-frrf-7285.json +++ b/advisories/unreviewed/2022/05/GHSA-3cr5-frrf-7285/GHSA-3cr5-frrf-7285.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3f4f-fx9x-p95r/GHSA-3f4f-fx9x-p95r.json b/advisories/unreviewed/2022/05/GHSA-3f4f-fx9x-p95r/GHSA-3f4f-fx9x-p95r.json index 1f7ee920e3d..82af7b0d56a 100644 --- a/advisories/unreviewed/2022/05/GHSA-3f4f-fx9x-p95r/GHSA-3f4f-fx9x-p95r.json +++ b/advisories/unreviewed/2022/05/GHSA-3f4f-fx9x-p95r/GHSA-3f4f-fx9x-p95r.json @@ -7,12 +7,8 @@ "CVE-2021-25359" ], "details": "An improper SELinux policy prior to SMR APR-2021 Release 1 allows local attackers to access AP information without proper permissions via untrusted applications.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3gj4-c93j-g529/GHSA-3gj4-c93j-g529.json b/advisories/unreviewed/2022/05/GHSA-3gj4-c93j-g529/GHSA-3gj4-c93j-g529.json index 7fa60dc174c..b2a0528e45d 100644 --- a/advisories/unreviewed/2022/05/GHSA-3gj4-c93j-g529/GHSA-3gj4-c93j-g529.json +++ b/advisories/unreviewed/2022/05/GHSA-3gj4-c93j-g529/GHSA-3gj4-c93j-g529.json @@ -7,12 +7,8 @@ "CVE-2021-1409" ], "details": "Multiple vulnerabilities in the web-based management interface of Cisco Unified Communications Manager (Unified CM), Cisco Unified Communications Manager IM & Presence Service (Unified CM IM&P), Cisco Unified Communications Manager Session Management Edition (Unified CM SME), and Cisco Unity Connection could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against an interface user. These vulnerabilities exist because the web-based management interface does not properly validate user-supplied input. An attacker could exploit these vulnerabilities by persuading an interface user to click a crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the affected interface or access sensitive browser-based information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3gp6-mhp9-qvmh/GHSA-3gp6-mhp9-qvmh.json b/advisories/unreviewed/2022/05/GHSA-3gp6-mhp9-qvmh/GHSA-3gp6-mhp9-qvmh.json index 9e8b58f559f..f7aa0d143aa 100644 --- a/advisories/unreviewed/2022/05/GHSA-3gp6-mhp9-qvmh/GHSA-3gp6-mhp9-qvmh.json +++ b/advisories/unreviewed/2022/05/GHSA-3gp6-mhp9-qvmh/GHSA-3gp6-mhp9-qvmh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3hqr-g258-rfxm/GHSA-3hqr-g258-rfxm.json b/advisories/unreviewed/2022/05/GHSA-3hqr-g258-rfxm/GHSA-3hqr-g258-rfxm.json index fff0a75962d..e0212b48578 100644 --- a/advisories/unreviewed/2022/05/GHSA-3hqr-g258-rfxm/GHSA-3hqr-g258-rfxm.json +++ b/advisories/unreviewed/2022/05/GHSA-3hqr-g258-rfxm/GHSA-3hqr-g258-rfxm.json @@ -7,12 +7,8 @@ "CVE-2021-24226" ], "details": "In the AccessAlly WordPress plugin before 3.5.7, the file \"resource/frontend/product/product-shortcode.php\" responsible for the [accessally_order_form] shortcode is dumping serialize($_SERVER), which contains all environment variables. The leakage occurs on all public facing pages containing the [accessally_order_form] shortcode, no login or administrator role is required.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3mwj-prww-7q68/GHSA-3mwj-prww-7q68.json b/advisories/unreviewed/2022/05/GHSA-3mwj-prww-7q68/GHSA-3mwj-prww-7q68.json index 98e73a68d41..b5a993606f3 100644 --- a/advisories/unreviewed/2022/05/GHSA-3mwj-prww-7q68/GHSA-3mwj-prww-7q68.json +++ b/advisories/unreviewed/2022/05/GHSA-3mwj-prww-7q68/GHSA-3mwj-prww-7q68.json @@ -7,12 +7,8 @@ "CVE-2021-25893" ], "details": "Magnolia CMS From 6.1.3 to 6.2.3 contains a stored cross-site scripting (XSS) vulnerability in the setText parameter of /magnoliaAuthor/.magnolia/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3r94-2jfp-h3m7/GHSA-3r94-2jfp-h3m7.json b/advisories/unreviewed/2022/05/GHSA-3r94-2jfp-h3m7/GHSA-3r94-2jfp-h3m7.json index 05bdff83505..1bc92b6c7de 100644 --- a/advisories/unreviewed/2022/05/GHSA-3r94-2jfp-h3m7/GHSA-3r94-2jfp-h3m7.json +++ b/advisories/unreviewed/2022/05/GHSA-3r94-2jfp-h3m7/GHSA-3r94-2jfp-h3m7.json @@ -7,12 +7,8 @@ "CVE-2021-27710" ], "details": "Command Injection in TOTOLINK X5000R router with firmware v9.1.0u.6118_B20201102, and TOTOLINK A720R router with firmware v4.1.5cu.470_B20200911 allows remote attackers to execute arbitrary OS commands by sending a modified HTTP request. This occurs because the function executes glibc's system function with untrusted input. In the function, \"ip\" parameter is directly passed to the attacker, allowing them to control the \"ip\" field to attack the OS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3wf5-983h-ccwq/GHSA-3wf5-983h-ccwq.json b/advisories/unreviewed/2022/05/GHSA-3wf5-983h-ccwq/GHSA-3wf5-983h-ccwq.json index beda8168fc3..93cc22faa87 100644 --- a/advisories/unreviewed/2022/05/GHSA-3wf5-983h-ccwq/GHSA-3wf5-983h-ccwq.json +++ b/advisories/unreviewed/2022/05/GHSA-3wf5-983h-ccwq/GHSA-3wf5-983h-ccwq.json @@ -7,12 +7,8 @@ "CVE-2020-15734" ], "details": "An Origin Validation Error vulnerability in Bitdefender Safepay allows an attacker to manipulate the browser's file upload capability into accessing other files in the same directory or sub-directories. This issue affects: Bitdefender Safepay versions prior to 25.0.7.29.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3xm3-cpjj-69p6/GHSA-3xm3-cpjj-69p6.json b/advisories/unreviewed/2022/05/GHSA-3xm3-cpjj-69p6/GHSA-3xm3-cpjj-69p6.json index 706f507f084..1109ffc659d 100644 --- a/advisories/unreviewed/2022/05/GHSA-3xm3-cpjj-69p6/GHSA-3xm3-cpjj-69p6.json +++ b/advisories/unreviewed/2022/05/GHSA-3xm3-cpjj-69p6/GHSA-3xm3-cpjj-69p6.json @@ -7,12 +7,8 @@ "CVE-2021-30000" ], "details": "An issue was discovered in LATRIX 0.6.0. SQL injection in the txtaccesscode parameter of inandout.php leads to information disclosure and code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-423x-7gwr-q727/GHSA-423x-7gwr-q727.json b/advisories/unreviewed/2022/05/GHSA-423x-7gwr-q727/GHSA-423x-7gwr-q727.json index 98f4fd90f11..6b4cab50d6d 100644 --- a/advisories/unreviewed/2022/05/GHSA-423x-7gwr-q727/GHSA-423x-7gwr-q727.json +++ b/advisories/unreviewed/2022/05/GHSA-423x-7gwr-q727/GHSA-423x-7gwr-q727.json @@ -7,12 +7,8 @@ "CVE-2021-22497" ], "details": "Advanced Authentication versions prior to 6.3 SP4 have a potential broken authentication due to improper session management issue.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-435h-mm7m-4r6w/GHSA-435h-mm7m-4r6w.json b/advisories/unreviewed/2022/05/GHSA-435h-mm7m-4r6w/GHSA-435h-mm7m-4r6w.json index a11b21458b3..5e510cc56aa 100644 --- a/advisories/unreviewed/2022/05/GHSA-435h-mm7m-4r6w/GHSA-435h-mm7m-4r6w.json +++ b/advisories/unreviewed/2022/05/GHSA-435h-mm7m-4r6w/GHSA-435h-mm7m-4r6w.json @@ -7,12 +7,8 @@ "CVE-2021-0431" ], "details": "In avrc_msg_cback of avrc_api.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure to a paired device with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-8.1 Android-9 Android-10Android ID: A-174149901", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4426-wxwq-q9rv/GHSA-4426-wxwq-q9rv.json b/advisories/unreviewed/2022/05/GHSA-4426-wxwq-q9rv/GHSA-4426-wxwq-q9rv.json index 3a98cd8fd5c..6e16fdd7524 100644 --- a/advisories/unreviewed/2022/05/GHSA-4426-wxwq-q9rv/GHSA-4426-wxwq-q9rv.json +++ b/advisories/unreviewed/2022/05/GHSA-4426-wxwq-q9rv/GHSA-4426-wxwq-q9rv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4487-5mj9-g5r6/GHSA-4487-5mj9-g5r6.json b/advisories/unreviewed/2022/05/GHSA-4487-5mj9-g5r6/GHSA-4487-5mj9-g5r6.json index b74bd361e05..ffb553e807a 100644 --- a/advisories/unreviewed/2022/05/GHSA-4487-5mj9-g5r6/GHSA-4487-5mj9-g5r6.json +++ b/advisories/unreviewed/2022/05/GHSA-4487-5mj9-g5r6/GHSA-4487-5mj9-g5r6.json @@ -7,12 +7,8 @@ "CVE-2021-3460" ], "details": "The Motorola MH702x devices, prior to version 2.0.0.301, do not properly verify the server certificate during communication with the support server which could lead to the communication channel being accessible by an attacker.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-46hw-m6xr-8fpw/GHSA-46hw-m6xr-8fpw.json b/advisories/unreviewed/2022/05/GHSA-46hw-m6xr-8fpw/GHSA-46hw-m6xr-8fpw.json index d2f65e2dd02..7fed29ae8b2 100644 --- a/advisories/unreviewed/2022/05/GHSA-46hw-m6xr-8fpw/GHSA-46hw-m6xr-8fpw.json +++ b/advisories/unreviewed/2022/05/GHSA-46hw-m6xr-8fpw/GHSA-46hw-m6xr-8fpw.json @@ -7,12 +7,8 @@ "CVE-2021-27259" ], "details": "This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.0.1-48919. An attacker must first obtain the ability to execute low-privileged code on the target guest system in order to exploit this vulnerability. The specific flaw exists within the Toolgate component. The issue results from the lack of proper validation of user-supplied data, which can result in an integer overflow before allocating a buffer. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of the hypervisor. Was ZDI-CAN-12021.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-46jj-588g-jh7g/GHSA-46jj-588g-jh7g.json b/advisories/unreviewed/2022/05/GHSA-46jj-588g-jh7g/GHSA-46jj-588g-jh7g.json index 32bd08fbc93..a438e819e4a 100644 --- a/advisories/unreviewed/2022/05/GHSA-46jj-588g-jh7g/GHSA-46jj-588g-jh7g.json +++ b/advisories/unreviewed/2022/05/GHSA-46jj-588g-jh7g/GHSA-46jj-588g-jh7g.json @@ -7,12 +7,8 @@ "CVE-2021-28060" ], "details": "A Server-Side Request Forgery (SSRF) vulnerability in Group Office 6.4.196 allows a remote attacker to forge GET requests to arbitrary URLs via the url parameter to group/api/upload.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-48m9-cmgj-94xc/GHSA-48m9-cmgj-94xc.json b/advisories/unreviewed/2022/05/GHSA-48m9-cmgj-94xc/GHSA-48m9-cmgj-94xc.json index be3533f9501..b991bffc331 100644 --- a/advisories/unreviewed/2022/05/GHSA-48m9-cmgj-94xc/GHSA-48m9-cmgj-94xc.json +++ b/advisories/unreviewed/2022/05/GHSA-48m9-cmgj-94xc/GHSA-48m9-cmgj-94xc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4c73-jxqq-mjrg/GHSA-4c73-jxqq-mjrg.json b/advisories/unreviewed/2022/05/GHSA-4c73-jxqq-mjrg/GHSA-4c73-jxqq-mjrg.json index 6a2a272f886..ac4aef7fdda 100644 --- a/advisories/unreviewed/2022/05/GHSA-4c73-jxqq-mjrg/GHSA-4c73-jxqq-mjrg.json +++ b/advisories/unreviewed/2022/05/GHSA-4c73-jxqq-mjrg/GHSA-4c73-jxqq-mjrg.json @@ -7,12 +7,8 @@ "CVE-2021-1362" ], "details": "A vulnerability in the SOAP API endpoint of Cisco Unified Communications Manager, Cisco Unified Communications Manager Session Management Edition, Cisco Unified Communications Manager IM & Presence Service, Cisco Unity Connection, and Cisco Prime License Manager could allow an authenticated, remote attacker to execute arbitrary code on an affected device. This vulnerability is due to improper sanitization of user-supplied input. An attacker could exploit this vulnerability by sending a SOAP API request with crafted parameters to an affected device. A successful exploit could allow the attacker to execute arbitrary code with root privileges on the underlying Linux operating system of the affected device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4cx5-qwr2-v2cg/GHSA-4cx5-qwr2-v2cg.json b/advisories/unreviewed/2022/05/GHSA-4cx5-qwr2-v2cg/GHSA-4cx5-qwr2-v2cg.json index 7c71367a220..905a233e593 100644 --- a/advisories/unreviewed/2022/05/GHSA-4cx5-qwr2-v2cg/GHSA-4cx5-qwr2-v2cg.json +++ b/advisories/unreviewed/2022/05/GHSA-4cx5-qwr2-v2cg/GHSA-4cx5-qwr2-v2cg.json @@ -7,12 +7,8 @@ "CVE-2020-11247" ], "details": "Out of bound memory read while unpacking data due to lack of offset length check in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4f76-8jp4-59r6/GHSA-4f76-8jp4-59r6.json b/advisories/unreviewed/2022/05/GHSA-4f76-8jp4-59r6/GHSA-4f76-8jp4-59r6.json index 80e08d8a1bf..f836adf79df 100644 --- a/advisories/unreviewed/2022/05/GHSA-4f76-8jp4-59r6/GHSA-4f76-8jp4-59r6.json +++ b/advisories/unreviewed/2022/05/GHSA-4f76-8jp4-59r6/GHSA-4f76-8jp4-59r6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4g8c-643v-799x/GHSA-4g8c-643v-799x.json b/advisories/unreviewed/2022/05/GHSA-4g8c-643v-799x/GHSA-4g8c-643v-799x.json index 759bc543685..386ee3ba061 100644 --- a/advisories/unreviewed/2022/05/GHSA-4g8c-643v-799x/GHSA-4g8c-643v-799x.json +++ b/advisories/unreviewed/2022/05/GHSA-4g8c-643v-799x/GHSA-4g8c-643v-799x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4h65-85ww-qq7p/GHSA-4h65-85ww-qq7p.json b/advisories/unreviewed/2022/05/GHSA-4h65-85ww-qq7p/GHSA-4h65-85ww-qq7p.json index 5850c825e75..23ca6afd76e 100644 --- a/advisories/unreviewed/2022/05/GHSA-4h65-85ww-qq7p/GHSA-4h65-85ww-qq7p.json +++ b/advisories/unreviewed/2022/05/GHSA-4h65-85ww-qq7p/GHSA-4h65-85ww-qq7p.json @@ -7,12 +7,8 @@ "CVE-2021-30637" ], "details": "htmly 2.8.0 allows stored XSS via the blog title, Tagline, or Description to config.html.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4jx4-gmpg-qw4c/GHSA-4jx4-gmpg-qw4c.json b/advisories/unreviewed/2022/05/GHSA-4jx4-gmpg-qw4c/GHSA-4jx4-gmpg-qw4c.json index 6299980ea83..64b7e634d62 100644 --- a/advisories/unreviewed/2022/05/GHSA-4jx4-gmpg-qw4c/GHSA-4jx4-gmpg-qw4c.json +++ b/advisories/unreviewed/2022/05/GHSA-4jx4-gmpg-qw4c/GHSA-4jx4-gmpg-qw4c.json @@ -7,12 +7,8 @@ "CVE-2021-30175" ], "details": "ZEROF Web Server 1.0 (April 2021) allows SQL Injection via the /HandleEvent endpoint for the login page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4m39-qr49-pfjv/GHSA-4m39-qr49-pfjv.json b/advisories/unreviewed/2022/05/GHSA-4m39-qr49-pfjv/GHSA-4m39-qr49-pfjv.json index 14c6f3e4e3e..f2e9996261f 100644 --- a/advisories/unreviewed/2022/05/GHSA-4m39-qr49-pfjv/GHSA-4m39-qr49-pfjv.json +++ b/advisories/unreviewed/2022/05/GHSA-4m39-qr49-pfjv/GHSA-4m39-qr49-pfjv.json @@ -7,12 +7,8 @@ "CVE-2021-28925" ], "details": "SQL injection vulnerability in Nagios Network Analyzer before 2.4.3 via the o[col] parameter to api/checks/read/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4pr6-x3xw-vrm6/GHSA-4pr6-x3xw-vrm6.json b/advisories/unreviewed/2022/05/GHSA-4pr6-x3xw-vrm6/GHSA-4pr6-x3xw-vrm6.json index 0ed128a7d17..f96a5d27dd9 100644 --- a/advisories/unreviewed/2022/05/GHSA-4pr6-x3xw-vrm6/GHSA-4pr6-x3xw-vrm6.json +++ b/advisories/unreviewed/2022/05/GHSA-4pr6-x3xw-vrm6/GHSA-4pr6-x3xw-vrm6.json @@ -7,12 +7,8 @@ "CVE-2021-27600" ], "details": "SAP Manufacturing Execution (System Rules), versions - 15.1, 15.2, 15.3, 15.4, allows an authorized attacker to embed malicious code into HTTP parameter and send it to the server because SAP Manufacturing Execution (System Rules) tab does not sufficiently encode some parameters, resulting in Stored Cross-Site Scripting (XSS) vulnerability. The malicious code can be used for different purposes. e.g., information can be read, modified, and sent to the attacker. However, availability of the server cannot be impacted.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4q2p-8m3f-h868/GHSA-4q2p-8m3f-h868.json b/advisories/unreviewed/2022/05/GHSA-4q2p-8m3f-h868/GHSA-4q2p-8m3f-h868.json index a0a2eaf4097..c23ae36ec40 100644 --- a/advisories/unreviewed/2022/05/GHSA-4q2p-8m3f-h868/GHSA-4q2p-8m3f-h868.json +++ b/advisories/unreviewed/2022/05/GHSA-4q2p-8m3f-h868/GHSA-4q2p-8m3f-h868.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4rrc-qjf7-pc45/GHSA-4rrc-qjf7-pc45.json b/advisories/unreviewed/2022/05/GHSA-4rrc-qjf7-pc45/GHSA-4rrc-qjf7-pc45.json index cb61fc9d508..f9eba0da0c1 100644 --- a/advisories/unreviewed/2022/05/GHSA-4rrc-qjf7-pc45/GHSA-4rrc-qjf7-pc45.json +++ b/advisories/unreviewed/2022/05/GHSA-4rrc-qjf7-pc45/GHSA-4rrc-qjf7-pc45.json @@ -7,12 +7,8 @@ "CVE-2021-29054" ], "details": "Certain Papoo products are affected by: Cross Site Request Forgery (CSRF) in the admin interface. This affects Papoo CMS Light through 21.02 and Papoo CMS Pro through 6.0.1. The impact is: gain privileges (remote).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4vhv-5f35-6x4h/GHSA-4vhv-5f35-6x4h.json b/advisories/unreviewed/2022/05/GHSA-4vhv-5f35-6x4h/GHSA-4vhv-5f35-6x4h.json index bf86427dfc1..1acfe9aab56 100644 --- a/advisories/unreviewed/2022/05/GHSA-4vhv-5f35-6x4h/GHSA-4vhv-5f35-6x4h.json +++ b/advisories/unreviewed/2022/05/GHSA-4vhv-5f35-6x4h/GHSA-4vhv-5f35-6x4h.json @@ -7,12 +7,8 @@ "CVE-2021-3146" ], "details": "The Dolby Audio X2 (DAX2) API service before 0.8.8.90 on Windows allows local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4x66-p4cq-54jr/GHSA-4x66-p4cq-54jr.json b/advisories/unreviewed/2022/05/GHSA-4x66-p4cq-54jr/GHSA-4x66-p4cq-54jr.json index fa8ac0acc24..cc6cecd6964 100644 --- a/advisories/unreviewed/2022/05/GHSA-4x66-p4cq-54jr/GHSA-4x66-p4cq-54jr.json +++ b/advisories/unreviewed/2022/05/GHSA-4x66-p4cq-54jr/GHSA-4x66-p4cq-54jr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4xvq-9wvg-wghg/GHSA-4xvq-9wvg-wghg.json b/advisories/unreviewed/2022/05/GHSA-4xvq-9wvg-wghg/GHSA-4xvq-9wvg-wghg.json index 7d003f40d81..4b423e58b34 100644 --- a/advisories/unreviewed/2022/05/GHSA-4xvq-9wvg-wghg/GHSA-4xvq-9wvg-wghg.json +++ b/advisories/unreviewed/2022/05/GHSA-4xvq-9wvg-wghg/GHSA-4xvq-9wvg-wghg.json @@ -7,12 +7,8 @@ "CVE-2021-21524" ], "details": "Dell SRM versions prior to 4.5.0.1 and Dell SMR versions prior to 4.5.0.1 contain an Untrusted Deserialization Vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability, leading to arbitrary privileged code execution on the vulnerable application. The severity is Critical as this may lead to system compromise by unauthenticated attackers.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-54rh-2mjp-cvmq/GHSA-54rh-2mjp-cvmq.json b/advisories/unreviewed/2022/05/GHSA-54rh-2mjp-cvmq/GHSA-54rh-2mjp-cvmq.json index 7546738ebf5..148ce8031f2 100644 --- a/advisories/unreviewed/2022/05/GHSA-54rh-2mjp-cvmq/GHSA-54rh-2mjp-cvmq.json +++ b/advisories/unreviewed/2022/05/GHSA-54rh-2mjp-cvmq/GHSA-54rh-2mjp-cvmq.json @@ -7,12 +7,8 @@ "CVE-2020-25584" ], "details": "In FreeBSD 13.0-STABLE before n245118, 12.2-STABLE before r369552, 11.4-STABLE before r369560, 13.0-RC5 before p1, 12.2-RELEASE before p6, and 11.4-RELEASE before p9, a superuser inside a FreeBSD jail configured with the non-default allow.mount permission could cause a race condition between the lookup of \"..\" and remounting a filesystem, allowing access to filesystem hierarchy outside of the jail.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5662-2q2g-p5f9/GHSA-5662-2q2g-p5f9.json b/advisories/unreviewed/2022/05/GHSA-5662-2q2g-p5f9/GHSA-5662-2q2g-p5f9.json index d8cd88b37cd..d7794b1aa64 100644 --- a/advisories/unreviewed/2022/05/GHSA-5662-2q2g-p5f9/GHSA-5662-2q2g-p5f9.json +++ b/advisories/unreviewed/2022/05/GHSA-5662-2q2g-p5f9/GHSA-5662-2q2g-p5f9.json @@ -7,12 +7,8 @@ "CVE-2021-21533" ], "details": "Wyse Management Suite versions up to 3.2 contains a vulnerability wherein a malicious authenticated user can cause a denial of service in the job status retrieval page, also affecting other users that would have normally access to the same subset of job details", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5662-qmw4-2mcv/GHSA-5662-qmw4-2mcv.json b/advisories/unreviewed/2022/05/GHSA-5662-qmw4-2mcv/GHSA-5662-qmw4-2mcv.json index 08be90d88a2..838aff9f14c 100644 --- a/advisories/unreviewed/2022/05/GHSA-5662-qmw4-2mcv/GHSA-5662-qmw4-2mcv.json +++ b/advisories/unreviewed/2022/05/GHSA-5662-qmw4-2mcv/GHSA-5662-qmw4-2mcv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5747-xw9x-x9w6/GHSA-5747-xw9x-x9w6.json b/advisories/unreviewed/2022/05/GHSA-5747-xw9x-x9w6/GHSA-5747-xw9x-x9w6.json index 4f78732cf53..9dc226d3544 100644 --- a/advisories/unreviewed/2022/05/GHSA-5747-xw9x-x9w6/GHSA-5747-xw9x-x9w6.json +++ b/advisories/unreviewed/2022/05/GHSA-5747-xw9x-x9w6/GHSA-5747-xw9x-x9w6.json @@ -7,12 +7,8 @@ "CVE-2021-22719" ], "details": "A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists in C-Bus Toolkit (V1.15.7 and prior) that could allow a remote code execution when a file is uploaded.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5759-6r33-c72p/GHSA-5759-6r33-c72p.json b/advisories/unreviewed/2022/05/GHSA-5759-6r33-c72p/GHSA-5759-6r33-c72p.json index c3472e49c53..2234c7edfe4 100644 --- a/advisories/unreviewed/2022/05/GHSA-5759-6r33-c72p/GHSA-5759-6r33-c72p.json +++ b/advisories/unreviewed/2022/05/GHSA-5759-6r33-c72p/GHSA-5759-6r33-c72p.json @@ -7,12 +7,8 @@ "CVE-2021-0436" ], "details": "In CryptoPlugin::decrypt of CryptoPlugin.cpp, there is a possible out of bounds read due to integer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.1 Android-9 Android-10 Android-11Android ID: A-176496160", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-57q9-5gfr-j2r4/GHSA-57q9-5gfr-j2r4.json b/advisories/unreviewed/2022/05/GHSA-57q9-5gfr-j2r4/GHSA-57q9-5gfr-j2r4.json index 513053c0065..d4b3d1404c2 100644 --- a/advisories/unreviewed/2022/05/GHSA-57q9-5gfr-j2r4/GHSA-57q9-5gfr-j2r4.json +++ b/advisories/unreviewed/2022/05/GHSA-57q9-5gfr-j2r4/GHSA-57q9-5gfr-j2r4.json @@ -7,12 +7,8 @@ "CVE-2021-23925" ], "details": "An issue was discovered in Devolutions Server before 2020.3. There is a cross-site scripting (XSS) vulnerability in entries of type Document.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-58p9-fwrr-259c/GHSA-58p9-fwrr-259c.json b/advisories/unreviewed/2022/05/GHSA-58p9-fwrr-259c/GHSA-58p9-fwrr-259c.json index 7498af5c5e8..8257f4ba19b 100644 --- a/advisories/unreviewed/2022/05/GHSA-58p9-fwrr-259c/GHSA-58p9-fwrr-259c.json +++ b/advisories/unreviewed/2022/05/GHSA-58p9-fwrr-259c/GHSA-58p9-fwrr-259c.json @@ -7,12 +7,8 @@ "CVE-2021-30463" ], "details": "VestaCP through 0.9.8-24 allows attackers to gain privileges by creating symlinks to files for which they lack permissions. After reading the RKEY value from user.conf under the /usr/local/vesta/data/users/admin directory, the admin password can be changed via a /reset/?action=confirm&user=admin&code= URI. This occurs because chmod is used unsafely.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5c5g-24q7-3qc2/GHSA-5c5g-24q7-3qc2.json b/advisories/unreviewed/2022/05/GHSA-5c5g-24q7-3qc2/GHSA-5c5g-24q7-3qc2.json index dbeb2bc35bf..7c9adba05b0 100644 --- a/advisories/unreviewed/2022/05/GHSA-5c5g-24q7-3qc2/GHSA-5c5g-24q7-3qc2.json +++ b/advisories/unreviewed/2022/05/GHSA-5c5g-24q7-3qc2/GHSA-5c5g-24q7-3qc2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5cqf-749j-9hmh/GHSA-5cqf-749j-9hmh.json b/advisories/unreviewed/2022/05/GHSA-5cqf-749j-9hmh/GHSA-5cqf-749j-9hmh.json index 9bf73fed26b..955eafb727f 100644 --- a/advisories/unreviewed/2022/05/GHSA-5cqf-749j-9hmh/GHSA-5cqf-749j-9hmh.json +++ b/advisories/unreviewed/2022/05/GHSA-5cqf-749j-9hmh/GHSA-5cqf-749j-9hmh.json @@ -7,12 +7,8 @@ "CVE-2021-1415" ], "details": "Multiple vulnerabilities in the web-based management interface of Cisco RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an authenticated, remote attacker to execute arbitrary code with elevated privileges equivalent to the web service process on an affected device. These vulnerabilities exist because HTTP requests are not properly validated. An attacker could exploit these vulnerabilities by sending a crafted HTTP request to the web-based management interface of an affected device. A successful exploit could allow the attacker to remotely execute arbitrary code on the device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5gw3-rvrj-3mrx/GHSA-5gw3-rvrj-3mrx.json b/advisories/unreviewed/2022/05/GHSA-5gw3-rvrj-3mrx/GHSA-5gw3-rvrj-3mrx.json index 1108731a5ac..07ce189c370 100644 --- a/advisories/unreviewed/2022/05/GHSA-5gw3-rvrj-3mrx/GHSA-5gw3-rvrj-3mrx.json +++ b/advisories/unreviewed/2022/05/GHSA-5gw3-rvrj-3mrx/GHSA-5gw3-rvrj-3mrx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5jch-vrvm-3vr5/GHSA-5jch-vrvm-3vr5.json b/advisories/unreviewed/2022/05/GHSA-5jch-vrvm-3vr5/GHSA-5jch-vrvm-3vr5.json index a624542f09f..2ea21c80325 100644 --- a/advisories/unreviewed/2022/05/GHSA-5jch-vrvm-3vr5/GHSA-5jch-vrvm-3vr5.json +++ b/advisories/unreviewed/2022/05/GHSA-5jch-vrvm-3vr5/GHSA-5jch-vrvm-3vr5.json @@ -7,12 +7,8 @@ "CVE-2020-35660" ], "details": "Cross Site Scripting (XSS) in Monica before 2.19.1 via the journal page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5q6x-hwjj-x4pq/GHSA-5q6x-hwjj-x4pq.json b/advisories/unreviewed/2022/05/GHSA-5q6x-hwjj-x4pq/GHSA-5q6x-hwjj-x4pq.json index 50640ca7cce..ba843cde2eb 100644 --- a/advisories/unreviewed/2022/05/GHSA-5q6x-hwjj-x4pq/GHSA-5q6x-hwjj-x4pq.json +++ b/advisories/unreviewed/2022/05/GHSA-5q6x-hwjj-x4pq/GHSA-5q6x-hwjj-x4pq.json @@ -7,12 +7,8 @@ "CVE-2021-27246" ], "details": "This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link Archer A7 AC1750 1.0.15 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of MAC addresses by the tdpServer endpoint. A crafted TCP message can write stack pointers to the stack. An attacker can leverage this vulnerability to execute code in the context of the root user. Was ZDI-CAN-12306.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5qgc-r8j3-8vhc/GHSA-5qgc-r8j3-8vhc.json b/advisories/unreviewed/2022/05/GHSA-5qgc-r8j3-8vhc/GHSA-5qgc-r8j3-8vhc.json index 2254d491b9f..ea56be521fa 100644 --- a/advisories/unreviewed/2022/05/GHSA-5qgc-r8j3-8vhc/GHSA-5qgc-r8j3-8vhc.json +++ b/advisories/unreviewed/2022/05/GHSA-5qgc-r8j3-8vhc/GHSA-5qgc-r8j3-8vhc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5r37-p649-7g3g/GHSA-5r37-p649-7g3g.json b/advisories/unreviewed/2022/05/GHSA-5r37-p649-7g3g/GHSA-5r37-p649-7g3g.json index add17745538..ff53289ce4a 100644 --- a/advisories/unreviewed/2022/05/GHSA-5r37-p649-7g3g/GHSA-5r37-p649-7g3g.json +++ b/advisories/unreviewed/2022/05/GHSA-5r37-p649-7g3g/GHSA-5r37-p649-7g3g.json @@ -7,12 +7,8 @@ "CVE-2020-24138" ], "details": "Cross Site Scripting (XSS) vulnerability in wcms 0.3.2 allows remote attackers to inject arbitrary web script and HTML via the pagename parameter to wex/html.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5r7x-c359-rj25/GHSA-5r7x-c359-rj25.json b/advisories/unreviewed/2022/05/GHSA-5r7x-c359-rj25/GHSA-5r7x-c359-rj25.json index ffcf7aaf33d..799c5ca2725 100644 --- a/advisories/unreviewed/2022/05/GHSA-5r7x-c359-rj25/GHSA-5r7x-c359-rj25.json +++ b/advisories/unreviewed/2022/05/GHSA-5r7x-c359-rj25/GHSA-5r7x-c359-rj25.json @@ -7,12 +7,8 @@ "CVE-2021-22312" ], "details": "There is a memory leak vulnerability in some Huawei products. An authenticated remote attacker may exploit this vulnerability by sending specific message to the affected product. Due to not release the allocated memory properly, successful exploit may cause some service abnormal. Affected product include some versions of IPS Module, NGFW Module, Secospace USG6300, Secospace USG6500, Secospace USG6600 and USG9500.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5r87-vv22-xx2p/GHSA-5r87-vv22-xx2p.json b/advisories/unreviewed/2022/05/GHSA-5r87-vv22-xx2p/GHSA-5r87-vv22-xx2p.json index 87f9d500782..d3e9ad9998f 100644 --- a/advisories/unreviewed/2022/05/GHSA-5r87-vv22-xx2p/GHSA-5r87-vv22-xx2p.json +++ b/advisories/unreviewed/2022/05/GHSA-5r87-vv22-xx2p/GHSA-5r87-vv22-xx2p.json @@ -7,12 +7,8 @@ "CVE-2019-17656" ], "details": "A Stack-based Buffer Overflow vulnerability in the HTTPD daemon of FortiOS 6.0.10 and below, 6.2.2 and below and FortiProxy 1.0.x, 1.1.x, 1.2.9 and below, 2.0.0 and below may allow an authenticated remote attacker to crash the service by sending a malformed PUT request to the server. Fortinet is not aware of any successful exploitation of this vulnerability that would lead to code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5w43-rcxm-fppq/GHSA-5w43-rcxm-fppq.json b/advisories/unreviewed/2022/05/GHSA-5w43-rcxm-fppq/GHSA-5w43-rcxm-fppq.json index 12e3c5f71e0..4d0e6738503 100644 --- a/advisories/unreviewed/2022/05/GHSA-5w43-rcxm-fppq/GHSA-5w43-rcxm-fppq.json +++ b/advisories/unreviewed/2022/05/GHSA-5w43-rcxm-fppq/GHSA-5w43-rcxm-fppq.json @@ -7,12 +7,8 @@ "CVE-2021-30113" ], "details": "A blind XSS vulnerability exists in Web-School ERP V 5.0 via (Add Events) in event name and description fields. An attacker can inject a JavaScript code that will be stored in the page. If any visitor sees the event, then the payload will be executed and sends the victim's information to the attacker website.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5wqc-3hgv-x49w/GHSA-5wqc-3hgv-x49w.json b/advisories/unreviewed/2022/05/GHSA-5wqc-3hgv-x49w/GHSA-5wqc-3hgv-x49w.json index bcfe39bd9c5..2e34787523a 100644 --- a/advisories/unreviewed/2022/05/GHSA-5wqc-3hgv-x49w/GHSA-5wqc-3hgv-x49w.json +++ b/advisories/unreviewed/2022/05/GHSA-5wqc-3hgv-x49w/GHSA-5wqc-3hgv-x49w.json @@ -7,12 +7,8 @@ "CVE-2021-28300" ], "details": "NULL Pointer Dereference in the \"isomedia/track.c\" module's \"MergeTrack()\" function of GPAC v0.5.2 allows attackers to execute arbitrary code or cause a Denial-of-Service (DoS) by uploading a malicious MP4 file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6275-8j43-765j/GHSA-6275-8j43-765j.json b/advisories/unreviewed/2022/05/GHSA-6275-8j43-765j/GHSA-6275-8j43-765j.json index a845e98d223..d6558dfc6ac 100644 --- a/advisories/unreviewed/2022/05/GHSA-6275-8j43-765j/GHSA-6275-8j43-765j.json +++ b/advisories/unreviewed/2022/05/GHSA-6275-8j43-765j/GHSA-6275-8j43-765j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-639r-6p24-c5mm/GHSA-639r-6p24-c5mm.json b/advisories/unreviewed/2022/05/GHSA-639r-6p24-c5mm/GHSA-639r-6p24-c5mm.json index 52b59a339e8..02291880185 100644 --- a/advisories/unreviewed/2022/05/GHSA-639r-6p24-c5mm/GHSA-639r-6p24-c5mm.json +++ b/advisories/unreviewed/2022/05/GHSA-639r-6p24-c5mm/GHSA-639r-6p24-c5mm.json @@ -7,12 +7,8 @@ "CVE-2021-1475" ], "details": "Multiple vulnerabilities in the Admin audit log export feature and Scheduled Reports feature of Cisco Umbrella could allow an authenticated, remote attacker to perform formula and link injection attacks on an affected device. For more information about these vulnerabilities, see the Details section of this advisory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-648v-392v-p884/GHSA-648v-392v-p884.json b/advisories/unreviewed/2022/05/GHSA-648v-392v-p884/GHSA-648v-392v-p884.json index a76088020aa..5d2793e0d77 100644 --- a/advisories/unreviewed/2022/05/GHSA-648v-392v-p884/GHSA-648v-392v-p884.json +++ b/advisories/unreviewed/2022/05/GHSA-648v-392v-p884/GHSA-648v-392v-p884.json @@ -7,12 +7,8 @@ "CVE-2021-28855" ], "details": "In Deark before 1.5.8, a specially crafted input file can cause a NULL pointer dereference in the dbuf_write function (src/deark-dbuf.c).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-67j2-jh4p-rj4j/GHSA-67j2-jh4p-rj4j.json b/advisories/unreviewed/2022/05/GHSA-67j2-jh4p-rj4j/GHSA-67j2-jh4p-rj4j.json index 987fddcb5f3..bce03d70d61 100644 --- a/advisories/unreviewed/2022/05/GHSA-67j2-jh4p-rj4j/GHSA-67j2-jh4p-rj4j.json +++ b/advisories/unreviewed/2022/05/GHSA-67j2-jh4p-rj4j/GHSA-67j2-jh4p-rj4j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -51,9 +49,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-694m-q83p-4954/GHSA-694m-q83p-4954.json b/advisories/unreviewed/2022/05/GHSA-694m-q83p-4954/GHSA-694m-q83p-4954.json index 985ec477d87..d6fb1867e98 100644 --- a/advisories/unreviewed/2022/05/GHSA-694m-q83p-4954/GHSA-694m-q83p-4954.json +++ b/advisories/unreviewed/2022/05/GHSA-694m-q83p-4954/GHSA-694m-q83p-4954.json @@ -7,12 +7,8 @@ "CVE-2021-30044" ], "details": "Cross Site Scripting (XSS) in Remote Clinic v2.0 via the First Name or Last Name field on staff/register.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6fj6-vxrv-q2xm/GHSA-6fj6-vxrv-q2xm.json b/advisories/unreviewed/2022/05/GHSA-6fj6-vxrv-q2xm/GHSA-6fj6-vxrv-q2xm.json index d3ce0c85611..8ae53578001 100644 --- a/advisories/unreviewed/2022/05/GHSA-6fj6-vxrv-q2xm/GHSA-6fj6-vxrv-q2xm.json +++ b/advisories/unreviewed/2022/05/GHSA-6fj6-vxrv-q2xm/GHSA-6fj6-vxrv-q2xm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6pf4-jxpg-v93p/GHSA-6pf4-jxpg-v93p.json b/advisories/unreviewed/2022/05/GHSA-6pf4-jxpg-v93p/GHSA-6pf4-jxpg-v93p.json index 14d731cb760..05cadcca6d0 100644 --- a/advisories/unreviewed/2022/05/GHSA-6pf4-jxpg-v93p/GHSA-6pf4-jxpg-v93p.json +++ b/advisories/unreviewed/2022/05/GHSA-6pf4-jxpg-v93p/GHSA-6pf4-jxpg-v93p.json @@ -7,12 +7,8 @@ "CVE-2021-30039" ], "details": "Cross Site Scripting (XSS) in Remote Clinic v2.0 via the \"Fever\" or \"Blood Pressure\" field on the patients/register-report.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6q3j-grpp-68qp/GHSA-6q3j-grpp-68qp.json b/advisories/unreviewed/2022/05/GHSA-6q3j-grpp-68qp/GHSA-6q3j-grpp-68qp.json index 5b8612c2088..bf2f501574f 100644 --- a/advisories/unreviewed/2022/05/GHSA-6q3j-grpp-68qp/GHSA-6q3j-grpp-68qp.json +++ b/advisories/unreviewed/2022/05/GHSA-6q3j-grpp-68qp/GHSA-6q3j-grpp-68qp.json @@ -7,12 +7,8 @@ "CVE-2020-36307" ], "details": "Redmine before 4.0.7 and 4.1.x before 4.1.1 has stored XSS via textile inline links.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6r3v-p45h-xcpf/GHSA-6r3v-p45h-xcpf.json b/advisories/unreviewed/2022/05/GHSA-6r3v-p45h-xcpf/GHSA-6r3v-p45h-xcpf.json index cb0c9569dfb..916a8e0e064 100644 --- a/advisories/unreviewed/2022/05/GHSA-6r3v-p45h-xcpf/GHSA-6r3v-p45h-xcpf.json +++ b/advisories/unreviewed/2022/05/GHSA-6r3v-p45h-xcpf/GHSA-6r3v-p45h-xcpf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6rjh-6mf7-636r/GHSA-6rjh-6mf7-636r.json b/advisories/unreviewed/2022/05/GHSA-6rjh-6mf7-636r/GHSA-6rjh-6mf7-636r.json index b2816cecc55..6a0ffebd486 100644 --- a/advisories/unreviewed/2022/05/GHSA-6rjh-6mf7-636r/GHSA-6rjh-6mf7-636r.json +++ b/advisories/unreviewed/2022/05/GHSA-6rjh-6mf7-636r/GHSA-6rjh-6mf7-636r.json @@ -7,12 +7,8 @@ "CVE-2020-23762" ], "details": "Cross Site Scripting (XSS) vulnerability in the Larsens Calender plugin Version <= 1.2 for WordPress allows remote attackers to execute arbitrary web script via the \"titel\" column on the \"Eintrage hinzufugen\" tab.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6x3g-9r6x-fx66/GHSA-6x3g-9r6x-fx66.json b/advisories/unreviewed/2022/05/GHSA-6x3g-9r6x-fx66/GHSA-6x3g-9r6x-fx66.json index eb8cd4cdecd..c999dd2e792 100644 --- a/advisories/unreviewed/2022/05/GHSA-6x3g-9r6x-fx66/GHSA-6x3g-9r6x-fx66.json +++ b/advisories/unreviewed/2022/05/GHSA-6x3g-9r6x-fx66/GHSA-6x3g-9r6x-fx66.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6x46-wx5j-c7j7/GHSA-6x46-wx5j-c7j7.json b/advisories/unreviewed/2022/05/GHSA-6x46-wx5j-c7j7/GHSA-6x46-wx5j-c7j7.json index 49a23950ae1..8813f792ba8 100644 --- a/advisories/unreviewed/2022/05/GHSA-6x46-wx5j-c7j7/GHSA-6x46-wx5j-c7j7.json +++ b/advisories/unreviewed/2022/05/GHSA-6x46-wx5j-c7j7/GHSA-6x46-wx5j-c7j7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6x8f-gh65-g5mj/GHSA-6x8f-gh65-g5mj.json b/advisories/unreviewed/2022/05/GHSA-6x8f-gh65-g5mj/GHSA-6x8f-gh65-g5mj.json index 2db32c23564..6e17b3c3041 100644 --- a/advisories/unreviewed/2022/05/GHSA-6x8f-gh65-g5mj/GHSA-6x8f-gh65-g5mj.json +++ b/advisories/unreviewed/2022/05/GHSA-6x8f-gh65-g5mj/GHSA-6x8f-gh65-g5mj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6xrq-2ww3-f6h5/GHSA-6xrq-2ww3-f6h5.json b/advisories/unreviewed/2022/05/GHSA-6xrq-2ww3-f6h5/GHSA-6xrq-2ww3-f6h5.json index b88c2e1e593..75eea6b6eab 100644 --- a/advisories/unreviewed/2022/05/GHSA-6xrq-2ww3-f6h5/GHSA-6xrq-2ww3-f6h5.json +++ b/advisories/unreviewed/2022/05/GHSA-6xrq-2ww3-f6h5/GHSA-6xrq-2ww3-f6h5.json @@ -7,12 +7,8 @@ "CVE-2021-20305" ], "details": "A flaw was found in Nettle in versions before 3.7.2, where several Nettle signature verification functions (GOST DSA, EDDSA & ECDSA) result in the Elliptic Curve Cryptography point (ECC) multiply function being called with out-of-range scalers, possibly resulting in incorrect results. This flaw allows an attacker to force an invalid signature, causing an assertion failure or possible validation. The highest threat to this vulnerability is to confidentiality, integrity, as well as system availability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-725w-h9qp-pfq2/GHSA-725w-h9qp-pfq2.json b/advisories/unreviewed/2022/05/GHSA-725w-h9qp-pfq2/GHSA-725w-h9qp-pfq2.json index b5cd8ea8ebf..d8c21d31fe5 100644 --- a/advisories/unreviewed/2022/05/GHSA-725w-h9qp-pfq2/GHSA-725w-h9qp-pfq2.json +++ b/advisories/unreviewed/2022/05/GHSA-725w-h9qp-pfq2/GHSA-725w-h9qp-pfq2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-739v-qwr2-8hhg/GHSA-739v-qwr2-8hhg.json b/advisories/unreviewed/2022/05/GHSA-739v-qwr2-8hhg/GHSA-739v-qwr2-8hhg.json index c1955699c61..0bb8c5948e7 100644 --- a/advisories/unreviewed/2022/05/GHSA-739v-qwr2-8hhg/GHSA-739v-qwr2-8hhg.json +++ b/advisories/unreviewed/2022/05/GHSA-739v-qwr2-8hhg/GHSA-739v-qwr2-8hhg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-73rc-8qcm-v2wx/GHSA-73rc-8qcm-v2wx.json b/advisories/unreviewed/2022/05/GHSA-73rc-8qcm-v2wx/GHSA-73rc-8qcm-v2wx.json index 423459e1ba9..4d75cd11a4a 100644 --- a/advisories/unreviewed/2022/05/GHSA-73rc-8qcm-v2wx/GHSA-73rc-8qcm-v2wx.json +++ b/advisories/unreviewed/2022/05/GHSA-73rc-8qcm-v2wx/GHSA-73rc-8qcm-v2wx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7637-c4cm-gwmg/GHSA-7637-c4cm-gwmg.json b/advisories/unreviewed/2022/05/GHSA-7637-c4cm-gwmg/GHSA-7637-c4cm-gwmg.json index 2e4ff8ee401..cd54ca41a2c 100644 --- a/advisories/unreviewed/2022/05/GHSA-7637-c4cm-gwmg/GHSA-7637-c4cm-gwmg.json +++ b/advisories/unreviewed/2022/05/GHSA-7637-c4cm-gwmg/GHSA-7637-c4cm-gwmg.json @@ -7,12 +7,8 @@ "CVE-2021-28646" ], "details": "An insecure file permissions vulnerability in Trend Micro Apex One, Apex One as a Service and OfficeScan XG SP1 could allow a local attacker to take control of a specific log file on affected installations.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-772c-rxr6-7vm7/GHSA-772c-rxr6-7vm7.json b/advisories/unreviewed/2022/05/GHSA-772c-rxr6-7vm7/GHSA-772c-rxr6-7vm7.json index 3e5146bb5ee..4a8edc70fd9 100644 --- a/advisories/unreviewed/2022/05/GHSA-772c-rxr6-7vm7/GHSA-772c-rxr6-7vm7.json +++ b/advisories/unreviewed/2022/05/GHSA-772c-rxr6-7vm7/GHSA-772c-rxr6-7vm7.json @@ -7,12 +7,8 @@ "CVE-2021-26827" ], "details": "Buffer Overflow in TP-Link WR2041 v1 firmware for the TL-WR2041+ router allows remote attackers to cause a Denial-of-Service (DoS) by sending an HTTP request with a very long \"ssid\" parameter to the \"/userRpm/popupSiteSurveyRpm.html\" webpage, which crashes the router.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-77gh-mcmc-pvr3/GHSA-77gh-mcmc-pvr3.json b/advisories/unreviewed/2022/05/GHSA-77gh-mcmc-pvr3/GHSA-77gh-mcmc-pvr3.json index 042354ff958..391dd16bd71 100644 --- a/advisories/unreviewed/2022/05/GHSA-77gh-mcmc-pvr3/GHSA-77gh-mcmc-pvr3.json +++ b/advisories/unreviewed/2022/05/GHSA-77gh-mcmc-pvr3/GHSA-77gh-mcmc-pvr3.json @@ -7,12 +7,8 @@ "CVE-2021-29302" ], "details": "TP-Link TL-WR802N(US), Archer_C50v5_US v4_200 <= 2020.06 contains a buffer overflow vulnerability in the httpd process in the body message. The attack vector is: The attacker can get shell of the router by sending a message through the network, which may lead to remote code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-77xj-xc45-jf7m/GHSA-77xj-xc45-jf7m.json b/advisories/unreviewed/2022/05/GHSA-77xj-xc45-jf7m/GHSA-77xj-xc45-jf7m.json index e3d307e545e..997d39f6fe8 100644 --- a/advisories/unreviewed/2022/05/GHSA-77xj-xc45-jf7m/GHSA-77xj-xc45-jf7m.json +++ b/advisories/unreviewed/2022/05/GHSA-77xj-xc45-jf7m/GHSA-77xj-xc45-jf7m.json @@ -7,12 +7,8 @@ "CVE-2021-28941" ], "details": "Because of no validation on a curl command in MagpieRSS 0.72 in the /extlib/Snoopy.class.inc file, when you send a request to the /scripts/magpie_debug.php or /scripts/magpie_simple.php page, it's possible to request any internal page if you use a https request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7f3w-h53p-5qwq/GHSA-7f3w-h53p-5qwq.json b/advisories/unreviewed/2022/05/GHSA-7f3w-h53p-5qwq/GHSA-7f3w-h53p-5qwq.json index d01d10e023d..8edb4dba197 100644 --- a/advisories/unreviewed/2022/05/GHSA-7f3w-h53p-5qwq/GHSA-7f3w-h53p-5qwq.json +++ b/advisories/unreviewed/2022/05/GHSA-7f3w-h53p-5qwq/GHSA-7f3w-h53p-5qwq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7ghg-hpv2-5chp/GHSA-7ghg-hpv2-5chp.json b/advisories/unreviewed/2022/05/GHSA-7ghg-hpv2-5chp/GHSA-7ghg-hpv2-5chp.json index b2b46e0f0b6..80571d78ec2 100644 --- a/advisories/unreviewed/2022/05/GHSA-7ghg-hpv2-5chp/GHSA-7ghg-hpv2-5chp.json +++ b/advisories/unreviewed/2022/05/GHSA-7ghg-hpv2-5chp/GHSA-7ghg-hpv2-5chp.json @@ -7,12 +7,8 @@ "CVE-2021-21199" ], "details": "Use after free in Aura in Google Chrome on Linux prior to 89.0.4389.114 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7gvq-27cc-h479/GHSA-7gvq-27cc-h479.json b/advisories/unreviewed/2022/05/GHSA-7gvq-27cc-h479/GHSA-7gvq-27cc-h479.json index 510d8eed71f..d407643b90f 100644 --- a/advisories/unreviewed/2022/05/GHSA-7gvq-27cc-h479/GHSA-7gvq-27cc-h479.json +++ b/advisories/unreviewed/2022/05/GHSA-7gvq-27cc-h479/GHSA-7gvq-27cc-h479.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7hhg-cf2m-8xw7/GHSA-7hhg-cf2m-8xw7.json b/advisories/unreviewed/2022/05/GHSA-7hhg-cf2m-8xw7/GHSA-7hhg-cf2m-8xw7.json index 0516115a6c2..7ea6fcb60ea 100644 --- a/advisories/unreviewed/2022/05/GHSA-7hhg-cf2m-8xw7/GHSA-7hhg-cf2m-8xw7.json +++ b/advisories/unreviewed/2022/05/GHSA-7hhg-cf2m-8xw7/GHSA-7hhg-cf2m-8xw7.json @@ -7,12 +7,8 @@ "CVE-2021-29261" ], "details": "The unofficial Svelte extension before 104.8.0 for Visual Studio Code allows attackers to execute arbitrary code via a crafted workspace configuration.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7hrm-vjjg-h867/GHSA-7hrm-vjjg-h867.json b/advisories/unreviewed/2022/05/GHSA-7hrm-vjjg-h867/GHSA-7hrm-vjjg-h867.json index 07cea4bff42..1ccae400b4e 100644 --- a/advisories/unreviewed/2022/05/GHSA-7hrm-vjjg-h867/GHSA-7hrm-vjjg-h867.json +++ b/advisories/unreviewed/2022/05/GHSA-7hrm-vjjg-h867/GHSA-7hrm-vjjg-h867.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7jw3-9qpg-fmp6/GHSA-7jw3-9qpg-fmp6.json b/advisories/unreviewed/2022/05/GHSA-7jw3-9qpg-fmp6/GHSA-7jw3-9qpg-fmp6.json index 75c31fb6602..51ff603af91 100644 --- a/advisories/unreviewed/2022/05/GHSA-7jw3-9qpg-fmp6/GHSA-7jw3-9qpg-fmp6.json +++ b/advisories/unreviewed/2022/05/GHSA-7jw3-9qpg-fmp6/GHSA-7jw3-9qpg-fmp6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7mrf-624r-32hg/GHSA-7mrf-624r-32hg.json b/advisories/unreviewed/2022/05/GHSA-7mrf-624r-32hg/GHSA-7mrf-624r-32hg.json index d64ca5eb861..bc95125bb8f 100644 --- a/advisories/unreviewed/2022/05/GHSA-7mrf-624r-32hg/GHSA-7mrf-624r-32hg.json +++ b/advisories/unreviewed/2022/05/GHSA-7mrf-624r-32hg/GHSA-7mrf-624r-32hg.json @@ -7,12 +7,8 @@ "CVE-2020-24137" ], "details": "Directory traversal vulnerability in Wcms 0.3.2 allows an attacker to read arbitrary files on the server that is running an application via the path parameter to wex/cssjs.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7q99-223h-87f2/GHSA-7q99-223h-87f2.json b/advisories/unreviewed/2022/05/GHSA-7q99-223h-87f2/GHSA-7q99-223h-87f2.json index 855d1f1b290..0dfef193f2d 100644 --- a/advisories/unreviewed/2022/05/GHSA-7q99-223h-87f2/GHSA-7q99-223h-87f2.json +++ b/advisories/unreviewed/2022/05/GHSA-7q99-223h-87f2/GHSA-7q99-223h-87f2.json @@ -7,12 +7,8 @@ "CVE-2021-25379" ], "details": "Intent redirection vulnerability in Gallery prior to version 5.4.16.1 allows attacker to execute privileged action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7r6v-76r3-fwjp/GHSA-7r6v-76r3-fwjp.json b/advisories/unreviewed/2022/05/GHSA-7r6v-76r3-fwjp/GHSA-7r6v-76r3-fwjp.json index e87db0f2c91..4310c326968 100644 --- a/advisories/unreviewed/2022/05/GHSA-7r6v-76r3-fwjp/GHSA-7r6v-76r3-fwjp.json +++ b/advisories/unreviewed/2022/05/GHSA-7r6v-76r3-fwjp/GHSA-7r6v-76r3-fwjp.json @@ -7,12 +7,8 @@ "CVE-2021-21529" ], "details": "Dell System Update (DSU) 1.9 and earlier versions contain a denial of service vulnerability. A local authenticated malicious user with low privileges may potentially exploit this vulnerability to cause the system to run out of memory by running multiple instances of the vulnerable application.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7vc5-w68f-5fg9/GHSA-7vc5-w68f-5fg9.json b/advisories/unreviewed/2022/05/GHSA-7vc5-w68f-5fg9/GHSA-7vc5-w68f-5fg9.json index a3b19f80827..301ef4d5cf1 100644 --- a/advisories/unreviewed/2022/05/GHSA-7vc5-w68f-5fg9/GHSA-7vc5-w68f-5fg9.json +++ b/advisories/unreviewed/2022/05/GHSA-7vc5-w68f-5fg9/GHSA-7vc5-w68f-5fg9.json @@ -7,12 +7,8 @@ "CVE-2021-25376" ], "details": "An improper synchronization logic in Samsung Email prior to version 6.1.41.0 can leak messages in certain mailbox in plain text when STARTTLS negotiation is failed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7wqr-7hpc-ghmh/GHSA-7wqr-7hpc-ghmh.json b/advisories/unreviewed/2022/05/GHSA-7wqr-7hpc-ghmh/GHSA-7wqr-7hpc-ghmh.json index 448f57f6ce2..06164de9112 100644 --- a/advisories/unreviewed/2022/05/GHSA-7wqr-7hpc-ghmh/GHSA-7wqr-7hpc-ghmh.json +++ b/advisories/unreviewed/2022/05/GHSA-7wqr-7hpc-ghmh/GHSA-7wqr-7hpc-ghmh.json @@ -7,12 +7,8 @@ "CVE-2021-30111" ], "details": "A stored XSS vulnerability exists in Web-School ERP V 5.0 via (Add Events) in the event name and description fields. An attack can inject a JavaScript code that will be stored in the page. If any visitor sees the events, then the payload will be executed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-83xh-8xv9-8g62/GHSA-83xh-8xv9-8g62.json b/advisories/unreviewed/2022/05/GHSA-83xh-8xv9-8g62/GHSA-83xh-8xv9-8g62.json index a37f27870d4..85eb99906a8 100644 --- a/advisories/unreviewed/2022/05/GHSA-83xh-8xv9-8g62/GHSA-83xh-8xv9-8g62.json +++ b/advisories/unreviewed/2022/05/GHSA-83xh-8xv9-8g62/GHSA-83xh-8xv9-8g62.json @@ -7,12 +7,8 @@ "CVE-2021-27973" ], "details": "SQL injection exists in Piwigo before 11.4.0 via the language parameter to admin.php?page=languages.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-843g-cv7g-r9xh/GHSA-843g-cv7g-r9xh.json b/advisories/unreviewed/2022/05/GHSA-843g-cv7g-r9xh/GHSA-843g-cv7g-r9xh.json index df0ca03b121..d3306786dcb 100644 --- a/advisories/unreviewed/2022/05/GHSA-843g-cv7g-r9xh/GHSA-843g-cv7g-r9xh.json +++ b/advisories/unreviewed/2022/05/GHSA-843g-cv7g-r9xh/GHSA-843g-cv7g-r9xh.json @@ -7,12 +7,8 @@ "CVE-2020-29593" ], "details": "An issue was discovered in Orchard before 1.10. The Media Settings Allowed File Types list field allows an attacker to add a XSS payload that will execute when users attempt to upload a disallowed file type, causing the error to display.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-84r9-68r3-67g5/GHSA-84r9-68r3-67g5.json b/advisories/unreviewed/2022/05/GHSA-84r9-68r3-67g5/GHSA-84r9-68r3-67g5.json index 37f00774897..bb1977da50e 100644 --- a/advisories/unreviewed/2022/05/GHSA-84r9-68r3-67g5/GHSA-84r9-68r3-67g5.json +++ b/advisories/unreviewed/2022/05/GHSA-84r9-68r3-67g5/GHSA-84r9-68r3-67g5.json @@ -7,12 +7,8 @@ "CVE-2021-26805" ], "details": "Buffer Overflow in tsMuxer 2.6.16 allows attackers to cause a Denial of Service (DoS) by running the application with a malicious WAV file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-892m-3vvx-r8qr/GHSA-892m-3vvx-r8qr.json b/advisories/unreviewed/2022/05/GHSA-892m-3vvx-r8qr/GHSA-892m-3vvx-r8qr.json index e0924f3f5ee..44c3591656f 100644 --- a/advisories/unreviewed/2022/05/GHSA-892m-3vvx-r8qr/GHSA-892m-3vvx-r8qr.json +++ b/advisories/unreviewed/2022/05/GHSA-892m-3vvx-r8qr/GHSA-892m-3vvx-r8qr.json @@ -7,12 +7,8 @@ "CVE-2021-29370" ], "details": "A UXSS was discovered in the Thanos-Soft Cheetah Browser in Android 1.2.0 due to the inadequate filter of the intent scheme. This resulted in Cross-site scripting on the cheetah browser in any website.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-89c5-cmj9-mcpm/GHSA-89c5-cmj9-mcpm.json b/advisories/unreviewed/2022/05/GHSA-89c5-cmj9-mcpm/GHSA-89c5-cmj9-mcpm.json index cbdf1614e0e..01c7f5db1a3 100644 --- a/advisories/unreviewed/2022/05/GHSA-89c5-cmj9-mcpm/GHSA-89c5-cmj9-mcpm.json +++ b/advisories/unreviewed/2022/05/GHSA-89c5-cmj9-mcpm/GHSA-89c5-cmj9-mcpm.json @@ -7,12 +7,8 @@ "CVE-2021-27609" ], "details": "SAP Focused RUN versions 200, 300, does not perform necessary authorization checks for an authenticated user, which allows a user to call the oData service and manipulate the activation for the SAP EarlyWatch Alert service data collection and sending to SAP without the intended authorization.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8c7v-26g9-8vwr/GHSA-8c7v-26g9-8vwr.json b/advisories/unreviewed/2022/05/GHSA-8c7v-26g9-8vwr/GHSA-8c7v-26g9-8vwr.json index 120d1da7c22..2cd663ccc82 100644 --- a/advisories/unreviewed/2022/05/GHSA-8c7v-26g9-8vwr/GHSA-8c7v-26g9-8vwr.json +++ b/advisories/unreviewed/2022/05/GHSA-8c7v-26g9-8vwr/GHSA-8c7v-26g9-8vwr.json @@ -7,12 +7,8 @@ "CVE-2021-30164" ], "details": "Redmine before 4.0.8 and 4.1.x before 4.1.2 allows attackers to bypass the add_issue_notes permission requirement by leveraging the Issues API.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8frx-3j37-5wj8/GHSA-8frx-3j37-5wj8.json b/advisories/unreviewed/2022/05/GHSA-8frx-3j37-5wj8/GHSA-8frx-3j37-5wj8.json index 4938691fd56..d85b66a8a47 100644 --- a/advisories/unreviewed/2022/05/GHSA-8frx-3j37-5wj8/GHSA-8frx-3j37-5wj8.json +++ b/advisories/unreviewed/2022/05/GHSA-8frx-3j37-5wj8/GHSA-8frx-3j37-5wj8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8hgh-7cf7-366x/GHSA-8hgh-7cf7-366x.json b/advisories/unreviewed/2022/05/GHSA-8hgh-7cf7-366x/GHSA-8hgh-7cf7-366x.json index d4f163033fa..d22d24b2ec3 100644 --- a/advisories/unreviewed/2022/05/GHSA-8hgh-7cf7-366x/GHSA-8hgh-7cf7-366x.json +++ b/advisories/unreviewed/2022/05/GHSA-8hgh-7cf7-366x/GHSA-8hgh-7cf7-366x.json @@ -7,12 +7,8 @@ "CVE-2021-1414" ], "details": "Multiple vulnerabilities in the web-based management interface of Cisco RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an authenticated, remote attacker to execute arbitrary code with elevated privileges equivalent to the web service process on an affected device. These vulnerabilities exist because HTTP requests are not properly validated. An attacker could exploit these vulnerabilities by sending a crafted HTTP request to the web-based management interface of an affected device. A successful exploit could allow the attacker to remotely execute arbitrary code on the device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8hpv-ffwj-685g/GHSA-8hpv-ffwj-685g.json b/advisories/unreviewed/2022/05/GHSA-8hpv-ffwj-685g/GHSA-8hpv-ffwj-685g.json index 1e8008bedff..7f2a1fee2d1 100644 --- a/advisories/unreviewed/2022/05/GHSA-8hpv-ffwj-685g/GHSA-8hpv-ffwj-685g.json +++ b/advisories/unreviewed/2022/05/GHSA-8hpv-ffwj-685g/GHSA-8hpv-ffwj-685g.json @@ -7,12 +7,8 @@ "CVE-2021-21198" ], "details": "Out of bounds read in IPC in Google Chrome prior to 89.0.4389.114 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8hvv-57v8-7qff/GHSA-8hvv-57v8-7qff.json b/advisories/unreviewed/2022/05/GHSA-8hvv-57v8-7qff/GHSA-8hvv-57v8-7qff.json index d2738a8b707..dee8af8eed8 100644 --- a/advisories/unreviewed/2022/05/GHSA-8hvv-57v8-7qff/GHSA-8hvv-57v8-7qff.json +++ b/advisories/unreviewed/2022/05/GHSA-8hvv-57v8-7qff/GHSA-8hvv-57v8-7qff.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8m4p-vchj-q4xp/GHSA-8m4p-vchj-q4xp.json b/advisories/unreviewed/2022/05/GHSA-8m4p-vchj-q4xp/GHSA-8m4p-vchj-q4xp.json index 691cc27ec1e..05c39c2c1c8 100644 --- a/advisories/unreviewed/2022/05/GHSA-8m4p-vchj-q4xp/GHSA-8m4p-vchj-q4xp.json +++ b/advisories/unreviewed/2022/05/GHSA-8m4p-vchj-q4xp/GHSA-8m4p-vchj-q4xp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8m83-fq97-5qgm/GHSA-8m83-fq97-5qgm.json b/advisories/unreviewed/2022/05/GHSA-8m83-fq97-5qgm/GHSA-8m83-fq97-5qgm.json index 73fcf02f63c..1b1ec32ccac 100644 --- a/advisories/unreviewed/2022/05/GHSA-8m83-fq97-5qgm/GHSA-8m83-fq97-5qgm.json +++ b/advisories/unreviewed/2022/05/GHSA-8m83-fq97-5qgm/GHSA-8m83-fq97-5qgm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8vj7-cc5x-grpv/GHSA-8vj7-cc5x-grpv.json b/advisories/unreviewed/2022/05/GHSA-8vj7-cc5x-grpv/GHSA-8vj7-cc5x-grpv.json index 2b4c07393ae..6cbf1468756 100644 --- a/advisories/unreviewed/2022/05/GHSA-8vj7-cc5x-grpv/GHSA-8vj7-cc5x-grpv.json +++ b/advisories/unreviewed/2022/05/GHSA-8vj7-cc5x-grpv/GHSA-8vj7-cc5x-grpv.json @@ -7,12 +7,8 @@ "CVE-2021-29660" ], "details": "A Cross-Site Request Forgery (CSRF) vulnerability in en/cfg_setpwd.html in Softing AG OPC Toolbox through 4.10.1.13035 allows attackers to reset the administrative password by inducing the Administrator user to browse a URL controlled by an attacker.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8vqr-9583-87j7/GHSA-8vqr-9583-87j7.json b/advisories/unreviewed/2022/05/GHSA-8vqr-9583-87j7/GHSA-8vqr-9583-87j7.json index 4bab770ac90..cbbc73aa4c6 100644 --- a/advisories/unreviewed/2022/05/GHSA-8vqr-9583-87j7/GHSA-8vqr-9583-87j7.json +++ b/advisories/unreviewed/2022/05/GHSA-8vqr-9583-87j7/GHSA-8vqr-9583-87j7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8wgv-7v96-3px7/GHSA-8wgv-7v96-3px7.json b/advisories/unreviewed/2022/05/GHSA-8wgv-7v96-3px7/GHSA-8wgv-7v96-3px7.json index e08b12a61d0..64c20981766 100644 --- a/advisories/unreviewed/2022/05/GHSA-8wgv-7v96-3px7/GHSA-8wgv-7v96-3px7.json +++ b/advisories/unreviewed/2022/05/GHSA-8wgv-7v96-3px7/GHSA-8wgv-7v96-3px7.json @@ -7,12 +7,8 @@ "CVE-2020-15390" ], "details": "pyActivity in Pega Platform 8.4.0.237 has a security misconfiguration that leads to an improper access control vulnerability via =GetWebInfo.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8x38-v676-xr9j/GHSA-8x38-v676-xr9j.json b/advisories/unreviewed/2022/05/GHSA-8x38-v676-xr9j/GHSA-8x38-v676-xr9j.json index cd00afc5720..7bce741947f 100644 --- a/advisories/unreviewed/2022/05/GHSA-8x38-v676-xr9j/GHSA-8x38-v676-xr9j.json +++ b/advisories/unreviewed/2022/05/GHSA-8x38-v676-xr9j/GHSA-8x38-v676-xr9j.json @@ -7,12 +7,8 @@ "CVE-2020-24135" ], "details": "A Reflected Cross Site Scripting (XSS) Vulnerability was discovered in Wcms 0.3.2, which allows remote attackers to inject arbitrary web script and HTML via the type parameter to wex/cssjs.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-942x-27qv-p3w5/GHSA-942x-27qv-p3w5.json b/advisories/unreviewed/2022/05/GHSA-942x-27qv-p3w5/GHSA-942x-27qv-p3w5.json index 46b1cbb47aa..8c5e07390b2 100644 --- a/advisories/unreviewed/2022/05/GHSA-942x-27qv-p3w5/GHSA-942x-27qv-p3w5.json +++ b/advisories/unreviewed/2022/05/GHSA-942x-27qv-p3w5/GHSA-942x-27qv-p3w5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-94fc-f2xw-hf3v/GHSA-94fc-f2xw-hf3v.json b/advisories/unreviewed/2022/05/GHSA-94fc-f2xw-hf3v/GHSA-94fc-f2xw-hf3v.json index 140bc578a75..77ad948a771 100644 --- a/advisories/unreviewed/2022/05/GHSA-94fc-f2xw-hf3v/GHSA-94fc-f2xw-hf3v.json +++ b/advisories/unreviewed/2022/05/GHSA-94fc-f2xw-hf3v/GHSA-94fc-f2xw-hf3v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-95c7-h4cv-7gx4/GHSA-95c7-h4cv-7gx4.json b/advisories/unreviewed/2022/05/GHSA-95c7-h4cv-7gx4/GHSA-95c7-h4cv-7gx4.json index d8cc22fcb59..93c552eb0b7 100644 --- a/advisories/unreviewed/2022/05/GHSA-95c7-h4cv-7gx4/GHSA-95c7-h4cv-7gx4.json +++ b/advisories/unreviewed/2022/05/GHSA-95c7-h4cv-7gx4/GHSA-95c7-h4cv-7gx4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-95j5-5wc5-5hvq/GHSA-95j5-5wc5-5hvq.json b/advisories/unreviewed/2022/05/GHSA-95j5-5wc5-5hvq/GHSA-95j5-5wc5-5hvq.json index ee4d3b42692..80a3859a23d 100644 --- a/advisories/unreviewed/2022/05/GHSA-95j5-5wc5-5hvq/GHSA-95j5-5wc5-5hvq.json +++ b/advisories/unreviewed/2022/05/GHSA-95j5-5wc5-5hvq/GHSA-95j5-5wc5-5hvq.json @@ -7,12 +7,8 @@ "CVE-2021-21545" ], "details": "Dell Peripheral Manager 1.3.1 or greater contains remediation for a local privilege escalation vulnerability that could be potentially exploited to gain arbitrary code execution on the system with privileges of the system user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-964h-jjmp-xf6h/GHSA-964h-jjmp-xf6h.json b/advisories/unreviewed/2022/05/GHSA-964h-jjmp-xf6h/GHSA-964h-jjmp-xf6h.json index 85b48396018..5b414130d5a 100644 --- a/advisories/unreviewed/2022/05/GHSA-964h-jjmp-xf6h/GHSA-964h-jjmp-xf6h.json +++ b/advisories/unreviewed/2022/05/GHSA-964h-jjmp-xf6h/GHSA-964h-jjmp-xf6h.json @@ -7,12 +7,8 @@ "CVE-2021-21731" ], "details": "A CSRF vulnerability exists in the management page of a ZTE product.The vulnerability is caused because the management page does not fully verify whether the request comes from a trusted user. The attacker could submit a malicious request to the affected device to delete the data. This affects: ZXCLOUD iRAI All versions up to KVM-ProductV6.03.04", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9682-9hwh-f3cc/GHSA-9682-9hwh-f3cc.json b/advisories/unreviewed/2022/05/GHSA-9682-9hwh-f3cc/GHSA-9682-9hwh-f3cc.json index c8ac7993908..f8c77d5206c 100644 --- a/advisories/unreviewed/2022/05/GHSA-9682-9hwh-f3cc/GHSA-9682-9hwh-f3cc.json +++ b/advisories/unreviewed/2022/05/GHSA-9682-9hwh-f3cc/GHSA-9682-9hwh-f3cc.json @@ -7,12 +7,8 @@ "CVE-2020-35419" ], "details": "Cross Site Scripting (XSS) in Group Office CRM 6.4.196 via the SET_LANGUAGE parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-96j4-9h2v-xcrq/GHSA-96j4-9h2v-xcrq.json b/advisories/unreviewed/2022/05/GHSA-96j4-9h2v-xcrq/GHSA-96j4-9h2v-xcrq.json index 6a903567b57..7aad928f82f 100644 --- a/advisories/unreviewed/2022/05/GHSA-96j4-9h2v-xcrq/GHSA-96j4-9h2v-xcrq.json +++ b/advisories/unreviewed/2022/05/GHSA-96j4-9h2v-xcrq/GHSA-96j4-9h2v-xcrq.json @@ -7,12 +7,8 @@ "CVE-2021-28825" ], "details": "The Windows Installation component of TIBCO Software Inc.'s TIBCO Messaging - Eclipse Mosquitto Distribution - Core - Community Edition and TIBCO Messaging - Eclipse Mosquitto Distribution - Core - Enterprise Edition contains a vulnerability that theoretically allows a low privileged attacker with local access on some versions of the Windows operating system to insert malicious software. The affected component can be abused to execute the malicious software inserted by the attacker with the elevated privileges of the component. This vulnerability results from a lack of access restrictions on certain files and/or folders in the installation. Affected releases are TIBCO Software Inc.'s TIBCO Messaging - Eclipse Mosquitto Distribution - Core - Community Edition: versions 1.3.0 and below and TIBCO Messaging - Eclipse Mosquitto Distribution - Core - Enterprise Edition: versions 1.3.0 and below.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-977h-cgq2-v5cp/GHSA-977h-cgq2-v5cp.json b/advisories/unreviewed/2022/05/GHSA-977h-cgq2-v5cp/GHSA-977h-cgq2-v5cp.json index 752d6df14c6..2c76f584394 100644 --- a/advisories/unreviewed/2022/05/GHSA-977h-cgq2-v5cp/GHSA-977h-cgq2-v5cp.json +++ b/advisories/unreviewed/2022/05/GHSA-977h-cgq2-v5cp/GHSA-977h-cgq2-v5cp.json @@ -7,12 +7,8 @@ "CVE-2021-20519" ], "details": "IBM Jazz Team Server products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 198441.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-97xx-6pvj-86r8/GHSA-97xx-6pvj-86r8.json b/advisories/unreviewed/2022/05/GHSA-97xx-6pvj-86r8/GHSA-97xx-6pvj-86r8.json index 09acdbd1411..d71fdf2414f 100644 --- a/advisories/unreviewed/2022/05/GHSA-97xx-6pvj-86r8/GHSA-97xx-6pvj-86r8.json +++ b/advisories/unreviewed/2022/05/GHSA-97xx-6pvj-86r8/GHSA-97xx-6pvj-86r8.json @@ -7,12 +7,8 @@ "CVE-2021-26031" ], "details": "An issue was discovered in Joomla! 3.0.0 through 3.9.25. Inadequate filters on module layout settings could lead to an LFI.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-984v-wwcj-4259/GHSA-984v-wwcj-4259.json b/advisories/unreviewed/2022/05/GHSA-984v-wwcj-4259/GHSA-984v-wwcj-4259.json index a6f8024361d..c93e461d2e4 100644 --- a/advisories/unreviewed/2022/05/GHSA-984v-wwcj-4259/GHSA-984v-wwcj-4259.json +++ b/advisories/unreviewed/2022/05/GHSA-984v-wwcj-4259/GHSA-984v-wwcj-4259.json @@ -7,12 +7,8 @@ "CVE-2021-25381" ], "details": "Using unsafe PendingIntent in Samsung Account in versions 10.8.0.4 in Android P(9.0) and below, and 12.1.1.3 in Android Q(10.0) and above allows local attackers to perform unauthorized action without permission via hijacking the PendingIntent.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-98g3-884p-c9q5/GHSA-98g3-884p-c9q5.json b/advisories/unreviewed/2022/05/GHSA-98g3-884p-c9q5/GHSA-98g3-884p-c9q5.json index d6df6eb4c12..b57670d289c 100644 --- a/advisories/unreviewed/2022/05/GHSA-98g3-884p-c9q5/GHSA-98g3-884p-c9q5.json +++ b/advisories/unreviewed/2022/05/GHSA-98g3-884p-c9q5/GHSA-98g3-884p-c9q5.json @@ -7,12 +7,8 @@ "CVE-2021-27604" ], "details": "In order to prevent XML External Entity vulnerability in SAP NetWeaver ABAP Server and ABAP Platform (Process Integration - Enterprise Service Repository JAVA Mappings), versions - 7.10, 7.20, 7.30, 7.31, 7.40, 7.50, SAP recommends to refer this note.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9ch6-prj4-mf5v/GHSA-9ch6-prj4-mf5v.json b/advisories/unreviewed/2022/05/GHSA-9ch6-prj4-mf5v/GHSA-9ch6-prj4-mf5v.json index a4ce946724b..1130b8473c1 100644 --- a/advisories/unreviewed/2022/05/GHSA-9ch6-prj4-mf5v/GHSA-9ch6-prj4-mf5v.json +++ b/advisories/unreviewed/2022/05/GHSA-9ch6-prj4-mf5v/GHSA-9ch6-prj4-mf5v.json @@ -7,12 +7,8 @@ "CVE-2020-4792" ], "details": "IBM Edge 4.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 189441.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9g2w-hcrf-pr2r/GHSA-9g2w-hcrf-pr2r.json b/advisories/unreviewed/2022/05/GHSA-9g2w-hcrf-pr2r/GHSA-9g2w-hcrf-pr2r.json index f7856dc400f..4d807fcd5a7 100644 --- a/advisories/unreviewed/2022/05/GHSA-9g2w-hcrf-pr2r/GHSA-9g2w-hcrf-pr2r.json +++ b/advisories/unreviewed/2022/05/GHSA-9g2w-hcrf-pr2r/GHSA-9g2w-hcrf-pr2r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9gc3-4hgr-p2p9/GHSA-9gc3-4hgr-p2p9.json b/advisories/unreviewed/2022/05/GHSA-9gc3-4hgr-p2p9/GHSA-9gc3-4hgr-p2p9.json index 70342a8aee7..52eb96449b9 100644 --- a/advisories/unreviewed/2022/05/GHSA-9gc3-4hgr-p2p9/GHSA-9gc3-4hgr-p2p9.json +++ b/advisories/unreviewed/2022/05/GHSA-9gc3-4hgr-p2p9/GHSA-9gc3-4hgr-p2p9.json @@ -7,12 +7,8 @@ "CVE-2021-25363" ], "details": "An improper access control in ActivityManagerService prior to SMR APR-2021 Release 1 allows untrusted applications to access running processesdelete some local files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9gw5-hvjg-q9wx/GHSA-9gw5-hvjg-q9wx.json b/advisories/unreviewed/2022/05/GHSA-9gw5-hvjg-q9wx/GHSA-9gw5-hvjg-q9wx.json index 565effd0108..4c3cd64dfe4 100644 --- a/advisories/unreviewed/2022/05/GHSA-9gw5-hvjg-q9wx/GHSA-9gw5-hvjg-q9wx.json +++ b/advisories/unreviewed/2022/05/GHSA-9gw5-hvjg-q9wx/GHSA-9gw5-hvjg-q9wx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9jmq-x3jf-3qj9/GHSA-9jmq-x3jf-3qj9.json b/advisories/unreviewed/2022/05/GHSA-9jmq-x3jf-3qj9/GHSA-9jmq-x3jf-3qj9.json index a2f1efbf6ba..197b84fab7f 100644 --- a/advisories/unreviewed/2022/05/GHSA-9jmq-x3jf-3qj9/GHSA-9jmq-x3jf-3qj9.json +++ b/advisories/unreviewed/2022/05/GHSA-9jmq-x3jf-3qj9/GHSA-9jmq-x3jf-3qj9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9m42-cp75-hf8r/GHSA-9m42-cp75-hf8r.json b/advisories/unreviewed/2022/05/GHSA-9m42-cp75-hf8r/GHSA-9m42-cp75-hf8r.json index 8d1de658dbe..a940d744abd 100644 --- a/advisories/unreviewed/2022/05/GHSA-9m42-cp75-hf8r/GHSA-9m42-cp75-hf8r.json +++ b/advisories/unreviewed/2022/05/GHSA-9m42-cp75-hf8r/GHSA-9m42-cp75-hf8r.json @@ -7,12 +7,8 @@ "CVE-2021-30042" ], "details": "Cross Site Scripting (XSS) in Remote Clinic v2.0 via the \"Clinic Name\", \"Clinic Address\", \"Clinic City\", or \"Clinic Contact\" field on clinics/register.php", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9prg-97hx-vjc4/GHSA-9prg-97hx-vjc4.json b/advisories/unreviewed/2022/05/GHSA-9prg-97hx-vjc4/GHSA-9prg-97hx-vjc4.json index 4a4426e6641..5456ae426f8 100644 --- a/advisories/unreviewed/2022/05/GHSA-9prg-97hx-vjc4/GHSA-9prg-97hx-vjc4.json +++ b/advisories/unreviewed/2022/05/GHSA-9prg-97hx-vjc4/GHSA-9prg-97hx-vjc4.json @@ -7,12 +7,8 @@ "CVE-2021-1463" ], "details": "A vulnerability in the web-based management interface of Cisco Unified Intelligence Center Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface. This vulnerability exists because the web-based management interface does not properly validate user-supplied input. An attacker could exploit this vulnerability by persuading a user of an affected interface to click a crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the affected interface or access sensitive, browser-based information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9r9h-rjvp-wrff/GHSA-9r9h-rjvp-wrff.json b/advisories/unreviewed/2022/05/GHSA-9r9h-rjvp-wrff/GHSA-9r9h-rjvp-wrff.json index 1d88c1b8cec..78025af965e 100644 --- a/advisories/unreviewed/2022/05/GHSA-9r9h-rjvp-wrff/GHSA-9r9h-rjvp-wrff.json +++ b/advisories/unreviewed/2022/05/GHSA-9r9h-rjvp-wrff/GHSA-9r9h-rjvp-wrff.json @@ -7,12 +7,8 @@ "CVE-2020-36285" ], "details": "Union Pay up to 3.3.12, for iOS mobile apps, contains a CWE-347: Improper Verification of Cryptographic Signature vulnerability, allows attackers to shop for free in merchants' websites and mobile apps, via a crafted authentication code (MAC) which is generated based on a secret key which is NULL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9rc2-r776-g6fx/GHSA-9rc2-r776-g6fx.json b/advisories/unreviewed/2022/05/GHSA-9rc2-r776-g6fx/GHSA-9rc2-r776-g6fx.json index 20a89409107..2026bdb03d9 100644 --- a/advisories/unreviewed/2022/05/GHSA-9rc2-r776-g6fx/GHSA-9rc2-r776-g6fx.json +++ b/advisories/unreviewed/2022/05/GHSA-9rc2-r776-g6fx/GHSA-9rc2-r776-g6fx.json @@ -7,12 +7,8 @@ "CVE-2021-23921" ], "details": "An issue was discovered in Devolutions Server before 2020.3. There is broken access control on Password List entry elements.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9wgr-5887-h4gv/GHSA-9wgr-5887-h4gv.json b/advisories/unreviewed/2022/05/GHSA-9wgr-5887-h4gv/GHSA-9wgr-5887-h4gv.json index 45132bc2367..4bd968b4917 100644 --- a/advisories/unreviewed/2022/05/GHSA-9wgr-5887-h4gv/GHSA-9wgr-5887-h4gv.json +++ b/advisories/unreviewed/2022/05/GHSA-9wgr-5887-h4gv/GHSA-9wgr-5887-h4gv.json @@ -7,12 +7,8 @@ "CVE-2021-23278" ], "details": "Eaton Intelligent Power Manager (IPM) prior to 1.69 is vulnerable to authenticated arbitrary file delete vulnerability induced due to improper input validation at server/maps_srv.js with action removeBackground and server/node_upgrade_srv.js with action removeFirmware. An attacker can send specially crafted packets to delete the files on the system where IPM software is installed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c257-95qj-mq44/GHSA-c257-95qj-mq44.json b/advisories/unreviewed/2022/05/GHSA-c257-95qj-mq44/GHSA-c257-95qj-mq44.json index 0550cd6b075..200169f30b5 100644 --- a/advisories/unreviewed/2022/05/GHSA-c257-95qj-mq44/GHSA-c257-95qj-mq44.json +++ b/advisories/unreviewed/2022/05/GHSA-c257-95qj-mq44/GHSA-c257-95qj-mq44.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c264-8jxw-5rm8/GHSA-c264-8jxw-5rm8.json b/advisories/unreviewed/2022/05/GHSA-c264-8jxw-5rm8/GHSA-c264-8jxw-5rm8.json index 4016584beea..056bdef730d 100644 --- a/advisories/unreviewed/2022/05/GHSA-c264-8jxw-5rm8/GHSA-c264-8jxw-5rm8.json +++ b/advisories/unreviewed/2022/05/GHSA-c264-8jxw-5rm8/GHSA-c264-8jxw-5rm8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c2vv-8742-cw24/GHSA-c2vv-8742-cw24.json b/advisories/unreviewed/2022/05/GHSA-c2vv-8742-cw24/GHSA-c2vv-8742-cw24.json index 4c589801155..7089ffc7cee 100644 --- a/advisories/unreviewed/2022/05/GHSA-c2vv-8742-cw24/GHSA-c2vv-8742-cw24.json +++ b/advisories/unreviewed/2022/05/GHSA-c2vv-8742-cw24/GHSA-c2vv-8742-cw24.json @@ -7,12 +7,8 @@ "CVE-2021-23276" ], "details": "Eaton Intelligent Power Manager (IPM) prior to 1.69 is vulnerable to authenticated SQL injection. A malicious user can send a specially crafted packet to exploit the vulnerability. Successful exploitation of this vulnerability can allow attackers to add users in the data base.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c8p6-443q-9mqj/GHSA-c8p6-443q-9mqj.json b/advisories/unreviewed/2022/05/GHSA-c8p6-443q-9mqj/GHSA-c8p6-443q-9mqj.json index 8c9cc22e371..857116d0d5a 100644 --- a/advisories/unreviewed/2022/05/GHSA-c8p6-443q-9mqj/GHSA-c8p6-443q-9mqj.json +++ b/advisories/unreviewed/2022/05/GHSA-c8p6-443q-9mqj/GHSA-c8p6-443q-9mqj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cc25-6prm-723p/GHSA-cc25-6prm-723p.json b/advisories/unreviewed/2022/05/GHSA-cc25-6prm-723p/GHSA-cc25-6prm-723p.json index 5d928f25d48..eb9f5e511cf 100644 --- a/advisories/unreviewed/2022/05/GHSA-cc25-6prm-723p/GHSA-cc25-6prm-723p.json +++ b/advisories/unreviewed/2022/05/GHSA-cc25-6prm-723p/GHSA-cc25-6prm-723p.json @@ -7,12 +7,8 @@ "CVE-2021-21197" ], "details": "Heap buffer overflow in TabStrip in Google Chrome prior to 89.0.4389.114 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cc3j-r9g7-4r8c/GHSA-cc3j-r9g7-4r8c.json b/advisories/unreviewed/2022/05/GHSA-cc3j-r9g7-4r8c/GHSA-cc3j-r9g7-4r8c.json index b7c0ba5e4cd..5577a7e12ac 100644 --- a/advisories/unreviewed/2022/05/GHSA-cc3j-r9g7-4r8c/GHSA-cc3j-r9g7-4r8c.json +++ b/advisories/unreviewed/2022/05/GHSA-cc3j-r9g7-4r8c/GHSA-cc3j-r9g7-4r8c.json @@ -7,12 +7,8 @@ "CVE-2021-24227" ], "details": "The Jetpack Scan team identified a Local File Disclosure vulnerability in the Patreon WordPress plugin before 1.7.0 that could be abused by anyone visiting the site. Using this attack vector, an attacker could leak important internal files like wp-config.php, which contains database credentials and cryptographic keys used in the generation of nonces and cookies.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ccm8-j9m5-h2cw/GHSA-ccm8-j9m5-h2cw.json b/advisories/unreviewed/2022/05/GHSA-ccm8-j9m5-h2cw/GHSA-ccm8-j9m5-h2cw.json index 21ad84f0972..4f362a4ce70 100644 --- a/advisories/unreviewed/2022/05/GHSA-ccm8-j9m5-h2cw/GHSA-ccm8-j9m5-h2cw.json +++ b/advisories/unreviewed/2022/05/GHSA-ccm8-j9m5-h2cw/GHSA-ccm8-j9m5-h2cw.json @@ -7,12 +7,8 @@ "CVE-2020-11231" ], "details": "Two threads call one or both functions concurrently leading to corruption of pointers and reference counters which in turn can lead to heap corruption in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cfr5-vjc2-p7gj/GHSA-cfr5-vjc2-p7gj.json b/advisories/unreviewed/2022/05/GHSA-cfr5-vjc2-p7gj/GHSA-cfr5-vjc2-p7gj.json index f63e9470b6e..6cd01abb08d 100644 --- a/advisories/unreviewed/2022/05/GHSA-cfr5-vjc2-p7gj/GHSA-cfr5-vjc2-p7gj.json +++ b/advisories/unreviewed/2022/05/GHSA-cfr5-vjc2-p7gj/GHSA-cfr5-vjc2-p7gj.json @@ -7,12 +7,8 @@ "CVE-2021-29641" ], "details": "Directus 8 before 8.8.2 allows remote authenticated users to execute arbitrary code because file-upload permissions include the ability to upload a .php file to the main upload directory and/or upload a .php file and a .htaccess file to a subdirectory. Exploitation succeeds only for certain installations with the Apache HTTP Server and the local-storage driver (e.g., when the product was obtained from hub.docker.com).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cmfg-x8c8-g6xw/GHSA-cmfg-x8c8-g6xw.json b/advisories/unreviewed/2022/05/GHSA-cmfg-x8c8-g6xw/GHSA-cmfg-x8c8-g6xw.json index 2b52a2f6f51..d088db70a63 100644 --- a/advisories/unreviewed/2022/05/GHSA-cmfg-x8c8-g6xw/GHSA-cmfg-x8c8-g6xw.json +++ b/advisories/unreviewed/2022/05/GHSA-cmfg-x8c8-g6xw/GHSA-cmfg-x8c8-g6xw.json @@ -7,12 +7,8 @@ "CVE-2021-28924" ], "details": "Self Authenticated XSS in Nagios Network Analyzer before 2.4.2 via the nagiosna/groups/queries page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cpjq-97hc-mc3c/GHSA-cpjq-97hc-mc3c.json b/advisories/unreviewed/2022/05/GHSA-cpjq-97hc-mc3c/GHSA-cpjq-97hc-mc3c.json index cfe8fefc74a..f2b6801c018 100644 --- a/advisories/unreviewed/2022/05/GHSA-cpjq-97hc-mc3c/GHSA-cpjq-97hc-mc3c.json +++ b/advisories/unreviewed/2022/05/GHSA-cpjq-97hc-mc3c/GHSA-cpjq-97hc-mc3c.json @@ -7,12 +7,8 @@ "CVE-2021-27602" ], "details": "SAP Commerce, versions - 1808, 1811, 1905, 2005, 2011, Backoffice application allows certain authorized users to create source rules which are translated to drools rule when published to certain modules within the application. An attacker with this authorization can inject malicious code in the source rules and perform remote code execution enabling them to compromise the confidentiality, integrity and availability of the application.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-crfx-f3qh-pfj6/GHSA-crfx-f3qh-pfj6.json b/advisories/unreviewed/2022/05/GHSA-crfx-f3qh-pfj6/GHSA-crfx-f3qh-pfj6.json index 67f8c967a39..b8e4e1d9267 100644 --- a/advisories/unreviewed/2022/05/GHSA-crfx-f3qh-pfj6/GHSA-crfx-f3qh-pfj6.json +++ b/advisories/unreviewed/2022/05/GHSA-crfx-f3qh-pfj6/GHSA-crfx-f3qh-pfj6.json @@ -7,12 +7,8 @@ "CVE-2021-0437" ], "details": "In setPlayPolicy of DrmPlugin.cpp, there is a possible double free. This could lead to local escalation of privilege in a privileged process with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-8.1 Android-9 Android-10Android ID: A-176168330", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f293-4f7m-q7rj/GHSA-f293-4f7m-q7rj.json b/advisories/unreviewed/2022/05/GHSA-f293-4f7m-q7rj/GHSA-f293-4f7m-q7rj.json index c0d9b7c05cc..395e76c9ae8 100644 --- a/advisories/unreviewed/2022/05/GHSA-f293-4f7m-q7rj/GHSA-f293-4f7m-q7rj.json +++ b/advisories/unreviewed/2022/05/GHSA-f293-4f7m-q7rj/GHSA-f293-4f7m-q7rj.json @@ -7,12 +7,8 @@ "CVE-2020-29592" ], "details": "An issue was discovered in Orchard before 1.10. A broken access control issue in Orchard components that use the TinyMCE HTML editor's file upload allows an attacker to upload dangerous executables that bypass the file types allowed (regardless of the file types allowed list in Media settings).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f35c-rqpm-6c5v/GHSA-f35c-rqpm-6c5v.json b/advisories/unreviewed/2022/05/GHSA-f35c-rqpm-6c5v/GHSA-f35c-rqpm-6c5v.json index a851a6efb67..e445a2860ad 100644 --- a/advisories/unreviewed/2022/05/GHSA-f35c-rqpm-6c5v/GHSA-f35c-rqpm-6c5v.json +++ b/advisories/unreviewed/2022/05/GHSA-f35c-rqpm-6c5v/GHSA-f35c-rqpm-6c5v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f3h9-c3qf-pc2f/GHSA-f3h9-c3qf-pc2f.json b/advisories/unreviewed/2022/05/GHSA-f3h9-c3qf-pc2f/GHSA-f3h9-c3qf-pc2f.json index d7204bafaf2..84bea4cc2de 100644 --- a/advisories/unreviewed/2022/05/GHSA-f3h9-c3qf-pc2f/GHSA-f3h9-c3qf-pc2f.json +++ b/advisories/unreviewed/2022/05/GHSA-f3h9-c3qf-pc2f/GHSA-f3h9-c3qf-pc2f.json @@ -7,12 +7,8 @@ "CVE-2021-30125" ], "details": "Jamf Pro before 10.28.0 allows XSS related to inventory history, aka PI-009376.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f52j-h64c-9w7x/GHSA-f52j-h64c-9w7x.json b/advisories/unreviewed/2022/05/GHSA-f52j-h64c-9w7x/GHSA-f52j-h64c-9w7x.json index 2cdc7e0e430..6c2c65bde0c 100644 --- a/advisories/unreviewed/2022/05/GHSA-f52j-h64c-9w7x/GHSA-f52j-h64c-9w7x.json +++ b/advisories/unreviewed/2022/05/GHSA-f52j-h64c-9w7x/GHSA-f52j-h64c-9w7x.json @@ -7,12 +7,8 @@ "CVE-2021-30003" ], "details": "An issue was discovered on Nokia G-120W-F 3FE46606AGAB91 devices. There is Stored XSS in the administrative interface via urlfilter.cgi?add url_address.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f675-6gv9-54vc/GHSA-f675-6gv9-54vc.json b/advisories/unreviewed/2022/05/GHSA-f675-6gv9-54vc/GHSA-f675-6gv9-54vc.json index f2a417cfc89..ecc3f1e43bd 100644 --- a/advisories/unreviewed/2022/05/GHSA-f675-6gv9-54vc/GHSA-f675-6gv9-54vc.json +++ b/advisories/unreviewed/2022/05/GHSA-f675-6gv9-54vc/GHSA-f675-6gv9-54vc.json @@ -7,12 +7,8 @@ "CVE-2021-28686" ], "details": "AsIO2_64.sys and AsIO2_32.sys in ASUS GPUTweak II before 2.3.0.3 allow low-privileged users to trigger a stack-based buffer overflow. This could enable low-privileged users to achieve Denial of Service via a DeviceIoControl.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f68w-mw2g-j2g2/GHSA-f68w-mw2g-j2g2.json b/advisories/unreviewed/2022/05/GHSA-f68w-mw2g-j2g2/GHSA-f68w-mw2g-j2g2.json index bf9d5c1f640..a4c6f8938b2 100644 --- a/advisories/unreviewed/2022/05/GHSA-f68w-mw2g-j2g2/GHSA-f68w-mw2g-j2g2.json +++ b/advisories/unreviewed/2022/05/GHSA-f68w-mw2g-j2g2/GHSA-f68w-mw2g-j2g2.json @@ -7,12 +7,8 @@ "CVE-2021-28856" ], "details": "In Deark before v1.5.8, a specially crafted input file can cause a division by zero in (src/fmtutil.c) because of the value of pixelsize.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f77x-8qmc-hwcv/GHSA-f77x-8qmc-hwcv.json b/advisories/unreviewed/2022/05/GHSA-f77x-8qmc-hwcv/GHSA-f77x-8qmc-hwcv.json index 0f6607b92eb..82b28521891 100644 --- a/advisories/unreviewed/2022/05/GHSA-f77x-8qmc-hwcv/GHSA-f77x-8qmc-hwcv.json +++ b/advisories/unreviewed/2022/05/GHSA-f77x-8qmc-hwcv/GHSA-f77x-8qmc-hwcv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f833-28c2-4pqr/GHSA-f833-28c2-4pqr.json b/advisories/unreviewed/2022/05/GHSA-f833-28c2-4pqr/GHSA-f833-28c2-4pqr.json index e651edcc93e..1d0ce6d1764 100644 --- a/advisories/unreviewed/2022/05/GHSA-f833-28c2-4pqr/GHSA-f833-28c2-4pqr.json +++ b/advisories/unreviewed/2022/05/GHSA-f833-28c2-4pqr/GHSA-f833-28c2-4pqr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f8r2-5wfg-hq3j/GHSA-f8r2-5wfg-hq3j.json b/advisories/unreviewed/2022/05/GHSA-f8r2-5wfg-hq3j/GHSA-f8r2-5wfg-hq3j.json index 4c81745fc35..ebaf000ccc9 100644 --- a/advisories/unreviewed/2022/05/GHSA-f8r2-5wfg-hq3j/GHSA-f8r2-5wfg-hq3j.json +++ b/advisories/unreviewed/2022/05/GHSA-f8r2-5wfg-hq3j/GHSA-f8r2-5wfg-hq3j.json @@ -7,12 +7,8 @@ "CVE-2021-26030" ], "details": "An issue was discovered in Joomla! 3.0.0 through 3.9.25. Inadequate escaping allowed XSS attacks using the logo parameter of the default templates on error page", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ff96-vc76-rx72/GHSA-ff96-vc76-rx72.json b/advisories/unreviewed/2022/05/GHSA-ff96-vc76-rx72/GHSA-ff96-vc76-rx72.json index fce49a538e7..1466c399567 100644 --- a/advisories/unreviewed/2022/05/GHSA-ff96-vc76-rx72/GHSA-ff96-vc76-rx72.json +++ b/advisories/unreviewed/2022/05/GHSA-ff96-vc76-rx72/GHSA-ff96-vc76-rx72.json @@ -7,12 +7,8 @@ "CVE-2021-27945" ], "details": "The Squirro Insights Engine was affected by a Reflected Cross-Site Scripting (XSS) vulnerability affecting versions 2.0.0 up to and including 3.2.4. An attacker can use the vulnerability to inject malicious JavaScript code into the application, which will execute within the browser of any user who views the relevant application content. The attacker-supplied code can perform a wide variety of actions, such as stealing victims' session tokens or login credentials, performing arbitrary actions on their behalf, and logging their keystrokes.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ffgg-83p3-wqxr/GHSA-ffgg-83p3-wqxr.json b/advisories/unreviewed/2022/05/GHSA-ffgg-83p3-wqxr/GHSA-ffgg-83p3-wqxr.json index f362a1a6102..10ad6a84e6f 100644 --- a/advisories/unreviewed/2022/05/GHSA-ffgg-83p3-wqxr/GHSA-ffgg-83p3-wqxr.json +++ b/advisories/unreviewed/2022/05/GHSA-ffgg-83p3-wqxr/GHSA-ffgg-83p3-wqxr.json @@ -7,12 +7,8 @@ "CVE-2021-27705" ], "details": "Buffer Overflow in Tenda G1 and G3 routers with firmware v15.11.0.17(9502)_CN allows remote attackers to execute arbitrary code via a crafted action/\"qosIndex \"request. This occurs because the \"formQOSRuleDel\" function directly passes the parameter \"qosIndex\" to strcpy without limit.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fg79-5jv4-6fj3/GHSA-fg79-5jv4-6fj3.json b/advisories/unreviewed/2022/05/GHSA-fg79-5jv4-6fj3/GHSA-fg79-5jv4-6fj3.json index c075036407f..42167dec0d8 100644 --- a/advisories/unreviewed/2022/05/GHSA-fg79-5jv4-6fj3/GHSA-fg79-5jv4-6fj3.json +++ b/advisories/unreviewed/2022/05/GHSA-fg79-5jv4-6fj3/GHSA-fg79-5jv4-6fj3.json @@ -7,12 +7,8 @@ "CVE-2021-0432" ], "details": "In ClearPullerCacheIfNecessary and ForceClearPullerCache of StatsPullerManager.cpp, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-173552790", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fjx9-pgcv-j62c/GHSA-fjx9-pgcv-j62c.json b/advisories/unreviewed/2022/05/GHSA-fjx9-pgcv-j62c/GHSA-fjx9-pgcv-j62c.json index c8c7f1b70ae..3c25f22a0b2 100644 --- a/advisories/unreviewed/2022/05/GHSA-fjx9-pgcv-j62c/GHSA-fjx9-pgcv-j62c.json +++ b/advisories/unreviewed/2022/05/GHSA-fjx9-pgcv-j62c/GHSA-fjx9-pgcv-j62c.json @@ -7,12 +7,8 @@ "CVE-2020-11251" ], "details": "Out-of-bounds read vulnerability while accessing DTMF payload due to lack of check of buffer length before copying in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fpr5-99x5-v6hh/GHSA-fpr5-99x5-v6hh.json b/advisories/unreviewed/2022/05/GHSA-fpr5-99x5-v6hh/GHSA-fpr5-99x5-v6hh.json index 8654fbdaa7e..0e1d4839dd2 100644 --- a/advisories/unreviewed/2022/05/GHSA-fpr5-99x5-v6hh/GHSA-fpr5-99x5-v6hh.json +++ b/advisories/unreviewed/2022/05/GHSA-fpr5-99x5-v6hh/GHSA-fpr5-99x5-v6hh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fxgh-g9p7-fqg9/GHSA-fxgh-g9p7-fqg9.json b/advisories/unreviewed/2022/05/GHSA-fxgh-g9p7-fqg9/GHSA-fxgh-g9p7-fqg9.json index 518ef42a02c..ce04a407fca 100644 --- a/advisories/unreviewed/2022/05/GHSA-fxgh-g9p7-fqg9/GHSA-fxgh-g9p7-fqg9.json +++ b/advisories/unreviewed/2022/05/GHSA-fxgh-g9p7-fqg9/GHSA-fxgh-g9p7-fqg9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g2c2-jfjx-j48j/GHSA-g2c2-jfjx-j48j.json b/advisories/unreviewed/2022/05/GHSA-g2c2-jfjx-j48j/GHSA-g2c2-jfjx-j48j.json index 357574c59dd..9399d73b389 100644 --- a/advisories/unreviewed/2022/05/GHSA-g2c2-jfjx-j48j/GHSA-g2c2-jfjx-j48j.json +++ b/advisories/unreviewed/2022/05/GHSA-g2c2-jfjx-j48j/GHSA-g2c2-jfjx-j48j.json @@ -7,12 +7,8 @@ "CVE-2021-29011" ], "details": "DMA Softlab Radius Manager 4.4.0 is affected by Cross Site Scripting (XSS) via the description, name, or address field (under admin.php).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g2h3-68xr-m8j6/GHSA-g2h3-68xr-m8j6.json b/advisories/unreviewed/2022/05/GHSA-g2h3-68xr-m8j6/GHSA-g2h3-68xr-m8j6.json index f100c944e14..a09c796f15b 100644 --- a/advisories/unreviewed/2022/05/GHSA-g2h3-68xr-m8j6/GHSA-g2h3-68xr-m8j6.json +++ b/advisories/unreviewed/2022/05/GHSA-g2h3-68xr-m8j6/GHSA-g2h3-68xr-m8j6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g4cc-fq9f-8mg9/GHSA-g4cc-fq9f-8mg9.json b/advisories/unreviewed/2022/05/GHSA-g4cc-fq9f-8mg9/GHSA-g4cc-fq9f-8mg9.json index c3581a59af9..c6a496be8d8 100644 --- a/advisories/unreviewed/2022/05/GHSA-g4cc-fq9f-8mg9/GHSA-g4cc-fq9f-8mg9.json +++ b/advisories/unreviewed/2022/05/GHSA-g4cc-fq9f-8mg9/GHSA-g4cc-fq9f-8mg9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g5mj-v3p4-56gg/GHSA-g5mj-v3p4-56gg.json b/advisories/unreviewed/2022/05/GHSA-g5mj-v3p4-56gg/GHSA-g5mj-v3p4-56gg.json index 64fba558ea5..7f3c1421d5a 100644 --- a/advisories/unreviewed/2022/05/GHSA-g5mj-v3p4-56gg/GHSA-g5mj-v3p4-56gg.json +++ b/advisories/unreviewed/2022/05/GHSA-g5mj-v3p4-56gg/GHSA-g5mj-v3p4-56gg.json @@ -7,12 +7,8 @@ "CVE-2021-30034" ], "details": "Cross Site Scripting (XSS) in Remote Clinic v2.0 via the Symptons field on patients/register-report.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g763-mxvp-v63f/GHSA-g763-mxvp-v63f.json b/advisories/unreviewed/2022/05/GHSA-g763-mxvp-v63f/GHSA-g763-mxvp-v63f.json index 16c292368b6..80b68933279 100644 --- a/advisories/unreviewed/2022/05/GHSA-g763-mxvp-v63f/GHSA-g763-mxvp-v63f.json +++ b/advisories/unreviewed/2022/05/GHSA-g763-mxvp-v63f/GHSA-g763-mxvp-v63f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gf7g-j42c-9rjr/GHSA-gf7g-j42c-9rjr.json b/advisories/unreviewed/2022/05/GHSA-gf7g-j42c-9rjr/GHSA-gf7g-j42c-9rjr.json index e97071dc86e..321f09eac93 100644 --- a/advisories/unreviewed/2022/05/GHSA-gf7g-j42c-9rjr/GHSA-gf7g-j42c-9rjr.json +++ b/advisories/unreviewed/2022/05/GHSA-gf7g-j42c-9rjr/GHSA-gf7g-j42c-9rjr.json @@ -7,12 +7,8 @@ "CVE-2015-20001" ], "details": "In the standard library in Rust before 1.2.0, BinaryHeap is not panic-safe. The binary heap is left in an inconsistent state when the comparison of generic elements inside sift_up or sift_down_range panics. This bug leads to a drop of zeroed memory as an arbitrary type, which can result in a memory safety violation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gphm-f2cq-m9pv/GHSA-gphm-f2cq-m9pv.json b/advisories/unreviewed/2022/05/GHSA-gphm-f2cq-m9pv/GHSA-gphm-f2cq-m9pv.json index 9b8d5476e66..329f16fb05d 100644 --- a/advisories/unreviewed/2022/05/GHSA-gphm-f2cq-m9pv/GHSA-gphm-f2cq-m9pv.json +++ b/advisories/unreviewed/2022/05/GHSA-gphm-f2cq-m9pv/GHSA-gphm-f2cq-m9pv.json @@ -7,12 +7,8 @@ "CVE-2021-3413" ], "details": "A flaw was found in Red Hat Satellite in tfm-rubygem-foreman_azure_rm in versions before 2.2.0. A credential leak was identified which will expose Azure Resource Manager's secret key through JSON of the API output. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gpjj-hrg6-gr63/GHSA-gpjj-hrg6-gr63.json b/advisories/unreviewed/2022/05/GHSA-gpjj-hrg6-gr63/GHSA-gpjj-hrg6-gr63.json index 0375ed7a5b3..b54b14997ec 100644 --- a/advisories/unreviewed/2022/05/GHSA-gpjj-hrg6-gr63/GHSA-gpjj-hrg6-gr63.json +++ b/advisories/unreviewed/2022/05/GHSA-gpjj-hrg6-gr63/GHSA-gpjj-hrg6-gr63.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gq7g-854q-935r/GHSA-gq7g-854q-935r.json b/advisories/unreviewed/2022/05/GHSA-gq7g-854q-935r/GHSA-gq7g-854q-935r.json index ee152aa501a..716a0f8c676 100644 --- a/advisories/unreviewed/2022/05/GHSA-gq7g-854q-935r/GHSA-gq7g-854q-935r.json +++ b/advisories/unreviewed/2022/05/GHSA-gq7g-854q-935r/GHSA-gq7g-854q-935r.json @@ -7,12 +7,8 @@ "CVE-2021-29221" ], "details": "A local privilege escalation vulnerability was discovered in Erlang/OTP prior to version 23.2.3. By adding files to an existing installation's directory, a local attacker could hijack accounts of other users running Erlang programs or possibly coerce a service running with \"erlsrv.exe\" to execute arbitrary code as Local System. This can occur only under specific conditions on Windows with unsafe filesystem permissions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gqcm-w2xr-9g8j/GHSA-gqcm-w2xr-9g8j.json b/advisories/unreviewed/2022/05/GHSA-gqcm-w2xr-9g8j/GHSA-gqcm-w2xr-9g8j.json index 8b0e78ad417..019f002a49a 100644 --- a/advisories/unreviewed/2022/05/GHSA-gqcm-w2xr-9g8j/GHSA-gqcm-w2xr-9g8j.json +++ b/advisories/unreviewed/2022/05/GHSA-gqcm-w2xr-9g8j/GHSA-gqcm-w2xr-9g8j.json @@ -7,12 +7,8 @@ "CVE-2021-27252" ], "details": "This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R7800 firmware version 1.0.2.76. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of the vendor_specific DHCP opcode. The issue results from the lack of proper validation of a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-12216.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gwj3-pfr7-5cw3/GHSA-gwj3-pfr7-5cw3.json b/advisories/unreviewed/2022/05/GHSA-gwj3-pfr7-5cw3/GHSA-gwj3-pfr7-5cw3.json index 79d7ae9f010..25512d4fe56 100644 --- a/advisories/unreviewed/2022/05/GHSA-gwj3-pfr7-5cw3/GHSA-gwj3-pfr7-5cw3.json +++ b/advisories/unreviewed/2022/05/GHSA-gwj3-pfr7-5cw3/GHSA-gwj3-pfr7-5cw3.json @@ -7,12 +7,8 @@ "CVE-2021-28832" ], "details": "VSCodeVim before 1.19.0 allows attackers to execute arbitrary code via a crafted workspace configuration.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gx8x-9h9h-w9hx/GHSA-gx8x-9h9h-w9hx.json b/advisories/unreviewed/2022/05/GHSA-gx8x-9h9h-w9hx/GHSA-gx8x-9h9h-w9hx.json index 5c1d50379b8..92026491db1 100644 --- a/advisories/unreviewed/2022/05/GHSA-gx8x-9h9h-w9hx/GHSA-gx8x-9h9h-w9hx.json +++ b/advisories/unreviewed/2022/05/GHSA-gx8x-9h9h-w9hx/GHSA-gx8x-9h9h-w9hx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h33c-xq5m-hhmj/GHSA-h33c-xq5m-hhmj.json b/advisories/unreviewed/2022/05/GHSA-h33c-xq5m-hhmj/GHSA-h33c-xq5m-hhmj.json index 42373ff87e8..2d9d3e81241 100644 --- a/advisories/unreviewed/2022/05/GHSA-h33c-xq5m-hhmj/GHSA-h33c-xq5m-hhmj.json +++ b/advisories/unreviewed/2022/05/GHSA-h33c-xq5m-hhmj/GHSA-h33c-xq5m-hhmj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h497-xcf4-fjvf/GHSA-h497-xcf4-fjvf.json b/advisories/unreviewed/2022/05/GHSA-h497-xcf4-fjvf/GHSA-h497-xcf4-fjvf.json index c4d2a025486..916f40254a0 100644 --- a/advisories/unreviewed/2022/05/GHSA-h497-xcf4-fjvf/GHSA-h497-xcf4-fjvf.json +++ b/advisories/unreviewed/2022/05/GHSA-h497-xcf4-fjvf/GHSA-h497-xcf4-fjvf.json @@ -7,12 +7,8 @@ "CVE-2021-22507" ], "details": "Authentication bypass vulnerability in Micro Focus Operations Bridge Manager affects versions 2019.05, 2019.11, 2020.05 and 2020.10. The vulnerability could allow remote attackers to bypass user authentication and get unauthorized access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h4vg-m295-8h47/GHSA-h4vg-m295-8h47.json b/advisories/unreviewed/2022/05/GHSA-h4vg-m295-8h47/GHSA-h4vg-m295-8h47.json index 36f0880bb24..28bbc6e7e99 100644 --- a/advisories/unreviewed/2022/05/GHSA-h4vg-m295-8h47/GHSA-h4vg-m295-8h47.json +++ b/advisories/unreviewed/2022/05/GHSA-h4vg-m295-8h47/GHSA-h4vg-m295-8h47.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h7cg-8375-67fx/GHSA-h7cg-8375-67fx.json b/advisories/unreviewed/2022/05/GHSA-h7cg-8375-67fx/GHSA-h7cg-8375-67fx.json index de5518f944d..feb2397b7a7 100644 --- a/advisories/unreviewed/2022/05/GHSA-h7cg-8375-67fx/GHSA-h7cg-8375-67fx.json +++ b/advisories/unreviewed/2022/05/GHSA-h7cg-8375-67fx/GHSA-h7cg-8375-67fx.json @@ -7,12 +7,8 @@ "CVE-2021-23279" ], "details": "Eaton Intelligent Power Manager (IPM) prior to 1.69 is vulnerable to unauthenticated arbitrary file delete vulnerability induced due to improper input validation in meta_driver_srv.js class with saveDriverData action using invalidated driverID. An attacker can send specially crafted packets to delete the files on the system where IPM software is installed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h8c7-76x8-mr96/GHSA-h8c7-76x8-mr96.json b/advisories/unreviewed/2022/05/GHSA-h8c7-76x8-mr96/GHSA-h8c7-76x8-mr96.json index e2638e704e9..4348194a7e0 100644 --- a/advisories/unreviewed/2022/05/GHSA-h8c7-76x8-mr96/GHSA-h8c7-76x8-mr96.json +++ b/advisories/unreviewed/2022/05/GHSA-h8c7-76x8-mr96/GHSA-h8c7-76x8-mr96.json @@ -7,12 +7,8 @@ "CVE-2021-27114" ], "details": "An issue was discovered in D-Link DIR-816 A2 1.10 B05 devices. Within the handler function of the /goform/addassignment route, a very long text entry for the\"'s_ip\" and \"s_mac\" fields could lead to a Stack-Based Buffer Overflow and overwrite the return address.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hcjf-gxg6-hwvr/GHSA-hcjf-gxg6-hwvr.json b/advisories/unreviewed/2022/05/GHSA-hcjf-gxg6-hwvr/GHSA-hcjf-gxg6-hwvr.json index f4628ade83d..2419d9b167b 100644 --- a/advisories/unreviewed/2022/05/GHSA-hcjf-gxg6-hwvr/GHSA-hcjf-gxg6-hwvr.json +++ b/advisories/unreviewed/2022/05/GHSA-hcjf-gxg6-hwvr/GHSA-hcjf-gxg6-hwvr.json @@ -7,12 +7,8 @@ "CVE-2021-28048" ], "details": "An overly permissive CORS policy in Devolutions Server before 2021.1 and Devolutions Server LTS before 2020.3.18 allows a remote attacker to leak cross-origin data via a crafted HTML page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hf5v-r8xg-7r35/GHSA-hf5v-r8xg-7r35.json b/advisories/unreviewed/2022/05/GHSA-hf5v-r8xg-7r35/GHSA-hf5v-r8xg-7r35.json index 2608a12f921..9ef20b9b648 100644 --- a/advisories/unreviewed/2022/05/GHSA-hf5v-r8xg-7r35/GHSA-hf5v-r8xg-7r35.json +++ b/advisories/unreviewed/2022/05/GHSA-hf5v-r8xg-7r35/GHSA-hf5v-r8xg-7r35.json @@ -7,12 +7,8 @@ "CVE-2021-24024" ], "details": "A clear text storage of sensitive information into log file vulnerability in FortiADCManager 5.3.0 and below, 5.2.1 and below and FortiADC 5.3.7 and below may allow a remote authenticated attacker to read other local users' password in log files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hfcm-37qj-j7cf/GHSA-hfcm-37qj-j7cf.json b/advisories/unreviewed/2022/05/GHSA-hfcm-37qj-j7cf/GHSA-hfcm-37qj-j7cf.json index 884df4f89d9..ff614ac01a9 100644 --- a/advisories/unreviewed/2022/05/GHSA-hfcm-37qj-j7cf/GHSA-hfcm-37qj-j7cf.json +++ b/advisories/unreviewed/2022/05/GHSA-hfcm-37qj-j7cf/GHSA-hfcm-37qj-j7cf.json @@ -7,12 +7,8 @@ "CVE-2021-27601" ], "details": "SAP NetWeaver AS Java (Applications based on HTMLB for Java) allows a basic-level authorized attacker to store a malicious file on the server. When a victim tries to open this file, it results in a Cross-Site Scripting (XSS) vulnerability and the attacker can read and modify data. However, the attacker does not have control over kind or degree.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hfm2-m84q-6rc9/GHSA-hfm2-m84q-6rc9.json b/advisories/unreviewed/2022/05/GHSA-hfm2-m84q-6rc9/GHSA-hfm2-m84q-6rc9.json index 14e175cd977..2ef1cb1b265 100644 --- a/advisories/unreviewed/2022/05/GHSA-hfm2-m84q-6rc9/GHSA-hfm2-m84q-6rc9.json +++ b/advisories/unreviewed/2022/05/GHSA-hfm2-m84q-6rc9/GHSA-hfm2-m84q-6rc9.json @@ -7,12 +7,8 @@ "CVE-2021-1485" ], "details": "A vulnerability in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to inject arbitrary commands that are executed with root privileges on the underlying Linux operating system (OS) of an affected device. This vulnerability is due to insufficient input validation of commands that are supplied by the user. An attacker could exploit this vulnerability by authenticating to a device and submitting crafted input to an affected command. A successful exploit could allow the attacker to execute commands on the underlying Linux OS with root privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hfqh-vh36-5395/GHSA-hfqh-vh36-5395.json b/advisories/unreviewed/2022/05/GHSA-hfqh-vh36-5395/GHSA-hfqh-vh36-5395.json index 93823f0e8f4..cc334b62f1a 100644 --- a/advisories/unreviewed/2022/05/GHSA-hfqh-vh36-5395/GHSA-hfqh-vh36-5395.json +++ b/advisories/unreviewed/2022/05/GHSA-hfqh-vh36-5395/GHSA-hfqh-vh36-5395.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hhg9-2j57-c5cj/GHSA-hhg9-2j57-c5cj.json b/advisories/unreviewed/2022/05/GHSA-hhg9-2j57-c5cj/GHSA-hhg9-2j57-c5cj.json index a519feef651..ae6da548c11 100644 --- a/advisories/unreviewed/2022/05/GHSA-hhg9-2j57-c5cj/GHSA-hhg9-2j57-c5cj.json +++ b/advisories/unreviewed/2022/05/GHSA-hhg9-2j57-c5cj/GHSA-hhg9-2j57-c5cj.json @@ -7,12 +7,8 @@ "CVE-2021-24231" ], "details": "The Jetpack Scan team identified a Cross-Site Request Forgery vulnerability in the Patreon WordPress plugin before 1.7.0, allowing attackers to make a logged administrator disconnect the site from Patreon by visiting a specially crafted link.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hhxw-8c9w-q5q9/GHSA-hhxw-8c9w-q5q9.json b/advisories/unreviewed/2022/05/GHSA-hhxw-8c9w-q5q9/GHSA-hhxw-8c9w-q5q9.json index a084a7f6176..8edbd1a1979 100644 --- a/advisories/unreviewed/2022/05/GHSA-hhxw-8c9w-q5q9/GHSA-hhxw-8c9w-q5q9.json +++ b/advisories/unreviewed/2022/05/GHSA-hhxw-8c9w-q5q9/GHSA-hhxw-8c9w-q5q9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hjwp-9p4p-7cgx/GHSA-hjwp-9p4p-7cgx.json b/advisories/unreviewed/2022/05/GHSA-hjwp-9p4p-7cgx/GHSA-hjwp-9p4p-7cgx.json index 01a99993abb..6b7431fe04a 100644 --- a/advisories/unreviewed/2022/05/GHSA-hjwp-9p4p-7cgx/GHSA-hjwp-9p4p-7cgx.json +++ b/advisories/unreviewed/2022/05/GHSA-hjwp-9p4p-7cgx/GHSA-hjwp-9p4p-7cgx.json @@ -7,12 +7,8 @@ "CVE-2021-3463" ], "details": "A null pointer dereference vulnerability in Lenovo Power Management Driver for Windows 10, prior to version 1.67.17.54, that could cause systems to experience a blue screen error.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hmw8-9pw4-rwmr/GHSA-hmw8-9pw4-rwmr.json b/advisories/unreviewed/2022/05/GHSA-hmw8-9pw4-rwmr/GHSA-hmw8-9pw4-rwmr.json index bf81aca7bca..dc5bdf8e412 100644 --- a/advisories/unreviewed/2022/05/GHSA-hmw8-9pw4-rwmr/GHSA-hmw8-9pw4-rwmr.json +++ b/advisories/unreviewed/2022/05/GHSA-hmw8-9pw4-rwmr/GHSA-hmw8-9pw4-rwmr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hqhv-rx9w-cr56/GHSA-hqhv-rx9w-cr56.json b/advisories/unreviewed/2022/05/GHSA-hqhv-rx9w-cr56/GHSA-hqhv-rx9w-cr56.json index c383dae384d..a0a61abdf25 100644 --- a/advisories/unreviewed/2022/05/GHSA-hqhv-rx9w-cr56/GHSA-hqhv-rx9w-cr56.json +++ b/advisories/unreviewed/2022/05/GHSA-hqhv-rx9w-cr56/GHSA-hqhv-rx9w-cr56.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hrcm-8p8v-3f27/GHSA-hrcm-8p8v-3f27.json b/advisories/unreviewed/2022/05/GHSA-hrcm-8p8v-3f27/GHSA-hrcm-8p8v-3f27.json index 6177eefb31a..727b336411a 100644 --- a/advisories/unreviewed/2022/05/GHSA-hrcm-8p8v-3f27/GHSA-hrcm-8p8v-3f27.json +++ b/advisories/unreviewed/2022/05/GHSA-hrcm-8p8v-3f27/GHSA-hrcm-8p8v-3f27.json @@ -7,12 +7,8 @@ "CVE-2021-25362" ], "details": "An improper permission management in CertInstaller prior to SMR APR-2021 Release 1 allows untrusted applications to delete certain local files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hv6f-36rr-r48j/GHSA-hv6f-36rr-r48j.json b/advisories/unreviewed/2022/05/GHSA-hv6f-36rr-r48j/GHSA-hv6f-36rr-r48j.json index f5464cf9b82..ce31c7c56e7 100644 --- a/advisories/unreviewed/2022/05/GHSA-hv6f-36rr-r48j/GHSA-hv6f-36rr-r48j.json +++ b/advisories/unreviewed/2022/05/GHSA-hv6f-36rr-r48j/GHSA-hv6f-36rr-r48j.json @@ -7,12 +7,8 @@ "CVE-2021-24224" ], "details": "The EFBP_verify_upload_file AJAX action of the Easy Form Builder WordPress plugin through 1.0, available to authenticated users, does not have any security in place to verify uploaded files, allowing low privilege users to upload arbitrary files, leading to RCE.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hwpr-mph3-gpv2/GHSA-hwpr-mph3-gpv2.json b/advisories/unreviewed/2022/05/GHSA-hwpr-mph3-gpv2/GHSA-hwpr-mph3-gpv2.json index dc36572173f..21cbc7cafb3 100644 --- a/advisories/unreviewed/2022/05/GHSA-hwpr-mph3-gpv2/GHSA-hwpr-mph3-gpv2.json +++ b/advisories/unreviewed/2022/05/GHSA-hwpr-mph3-gpv2/GHSA-hwpr-mph3-gpv2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j3c8-7g58-h47h/GHSA-j3c8-7g58-h47h.json b/advisories/unreviewed/2022/05/GHSA-j3c8-7g58-h47h/GHSA-j3c8-7g58-h47h.json index 7a0e56731ab..16cf2eeaa97 100644 --- a/advisories/unreviewed/2022/05/GHSA-j3c8-7g58-h47h/GHSA-j3c8-7g58-h47h.json +++ b/advisories/unreviewed/2022/05/GHSA-j3c8-7g58-h47h/GHSA-j3c8-7g58-h47h.json @@ -7,12 +7,8 @@ "CVE-2021-27707" ], "details": "Buffer Overflow in Tenda G1 and G3 routers with firmware v15.11.0.17(9502)_CN allows remote attackers to execute arbitrary code via a crafted action/\"portMappingIndex \"request. This occurs because the \"formDelPortMapping\" function directly passes the parameter \"portMappingIndex\" to strcpy without limit.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j452-pfw6-3976/GHSA-j452-pfw6-3976.json b/advisories/unreviewed/2022/05/GHSA-j452-pfw6-3976/GHSA-j452-pfw6-3976.json index dc8242e1ffb..3e108e82c03 100644 --- a/advisories/unreviewed/2022/05/GHSA-j452-pfw6-3976/GHSA-j452-pfw6-3976.json +++ b/advisories/unreviewed/2022/05/GHSA-j452-pfw6-3976/GHSA-j452-pfw6-3976.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j6w2-8ww3-qh9q/GHSA-j6w2-8ww3-qh9q.json b/advisories/unreviewed/2022/05/GHSA-j6w2-8ww3-qh9q/GHSA-j6w2-8ww3-qh9q.json index 522adac1117..9aec1e69545 100644 --- a/advisories/unreviewed/2022/05/GHSA-j6w2-8ww3-qh9q/GHSA-j6w2-8ww3-qh9q.json +++ b/advisories/unreviewed/2022/05/GHSA-j6w2-8ww3-qh9q/GHSA-j6w2-8ww3-qh9q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j775-cmx3-8348/GHSA-j775-cmx3-8348.json b/advisories/unreviewed/2022/05/GHSA-j775-cmx3-8348/GHSA-j775-cmx3-8348.json index 98f347c4172..e43a7e19f9c 100644 --- a/advisories/unreviewed/2022/05/GHSA-j775-cmx3-8348/GHSA-j775-cmx3-8348.json +++ b/advisories/unreviewed/2022/05/GHSA-j775-cmx3-8348/GHSA-j775-cmx3-8348.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j7jw-wv9q-c58g/GHSA-j7jw-wv9q-c58g.json b/advisories/unreviewed/2022/05/GHSA-j7jw-wv9q-c58g/GHSA-j7jw-wv9q-c58g.json index 7b1f253c689..5ea18994a08 100644 --- a/advisories/unreviewed/2022/05/GHSA-j7jw-wv9q-c58g/GHSA-j7jw-wv9q-c58g.json +++ b/advisories/unreviewed/2022/05/GHSA-j7jw-wv9q-c58g/GHSA-j7jw-wv9q-c58g.json @@ -7,12 +7,8 @@ "CVE-2021-21195" ], "details": "Use after free in V8 in Google Chrome prior to 89.0.4389.114 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j8qg-8843-j7cm/GHSA-j8qg-8843-j7cm.json b/advisories/unreviewed/2022/05/GHSA-j8qg-8843-j7cm/GHSA-j8qg-8843-j7cm.json index a06bac6d5f0..a3a26b5ee5f 100644 --- a/advisories/unreviewed/2022/05/GHSA-j8qg-8843-j7cm/GHSA-j8qg-8843-j7cm.json +++ b/advisories/unreviewed/2022/05/GHSA-j8qg-8843-j7cm/GHSA-j8qg-8843-j7cm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jcrf-qjqf-vj89/GHSA-jcrf-qjqf-vj89.json b/advisories/unreviewed/2022/05/GHSA-jcrf-qjqf-vj89/GHSA-jcrf-qjqf-vj89.json index 49bd2f5cd82..eec189707a1 100644 --- a/advisories/unreviewed/2022/05/GHSA-jcrf-qjqf-vj89/GHSA-jcrf-qjqf-vj89.json +++ b/advisories/unreviewed/2022/05/GHSA-jcrf-qjqf-vj89/GHSA-jcrf-qjqf-vj89.json @@ -7,12 +7,8 @@ "CVE-2021-3473" ], "details": "An internal product security audit of Lenovo XClarity Controller (XCC) discovered that the XCC configuration backup/restore password may be written to an internal XCC log buffer if Lenovo XClarity Administrator (LXCA) is used to perform the backup/restore. The backup/restore password typically exists in this internal log buffer for less than 10 minutes before being overwritten. Generating an FFDC service log will include the log buffer contents, including the backup/restore password if present. The FFDC service log is only generated when requested by a privileged XCC user and it is only accessible to the privileged XCC user that requested the file. The backup/restore password is not captured if the backup/restore is initiated directly from XCC.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jhhp-vmj5-g65v/GHSA-jhhp-vmj5-g65v.json b/advisories/unreviewed/2022/05/GHSA-jhhp-vmj5-g65v/GHSA-jhhp-vmj5-g65v.json index 013b86b5e0a..5ef3b0f8865 100644 --- a/advisories/unreviewed/2022/05/GHSA-jhhp-vmj5-g65v/GHSA-jhhp-vmj5-g65v.json +++ b/advisories/unreviewed/2022/05/GHSA-jhhp-vmj5-g65v/GHSA-jhhp-vmj5-g65v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jw27-pvq7-h9jv/GHSA-jw27-pvq7-h9jv.json b/advisories/unreviewed/2022/05/GHSA-jw27-pvq7-h9jv/GHSA-jw27-pvq7-h9jv.json index d215a37c70c..f07c6bdffe5 100644 --- a/advisories/unreviewed/2022/05/GHSA-jw27-pvq7-h9jv/GHSA-jw27-pvq7-h9jv.json +++ b/advisories/unreviewed/2022/05/GHSA-jw27-pvq7-h9jv/GHSA-jw27-pvq7-h9jv.json @@ -7,12 +7,8 @@ "CVE-2021-28647" ], "details": "Trend Micro Password Manager version 5 (Consumer) is vulnerable to a DLL Hijacking vulnerability which could allow an attacker to inject a malicious DLL file during the installation progress and could execute a malicious program each time a user installs a program.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jx8x-8jh4-g9x3/GHSA-jx8x-8jh4-g9x3.json b/advisories/unreviewed/2022/05/GHSA-jx8x-8jh4-g9x3/GHSA-jx8x-8jh4-g9x3.json index 87817c439e5..20ed853c76c 100644 --- a/advisories/unreviewed/2022/05/GHSA-jx8x-8jh4-g9x3/GHSA-jx8x-8jh4-g9x3.json +++ b/advisories/unreviewed/2022/05/GHSA-jx8x-8jh4-g9x3/GHSA-jx8x-8jh4-g9x3.json @@ -7,12 +7,8 @@ "CVE-2021-25377" ], "details": "Intent redirection in Samsung Experience Service versions 10.8.0.4 in Android P(9.0) below, and 12.2.0.5 in Android Q(10.0) above allows attacker to execute privileged action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m22m-jf25-pgfw/GHSA-m22m-jf25-pgfw.json b/advisories/unreviewed/2022/05/GHSA-m22m-jf25-pgfw/GHSA-m22m-jf25-pgfw.json index f80dbb7f3e0..88855e7af2d 100644 --- a/advisories/unreviewed/2022/05/GHSA-m22m-jf25-pgfw/GHSA-m22m-jf25-pgfw.json +++ b/advisories/unreviewed/2022/05/GHSA-m22m-jf25-pgfw/GHSA-m22m-jf25-pgfw.json @@ -7,12 +7,8 @@ "CVE-2020-11237" ], "details": "Memory crash when accessing histogram type KPI input received due to lack of check of histogram definition before accessing it in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Mobile", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m374-xxjc-qg9p/GHSA-m374-xxjc-qg9p.json b/advisories/unreviewed/2022/05/GHSA-m374-xxjc-qg9p/GHSA-m374-xxjc-qg9p.json index ed73b7e1fdc..866ab661dd9 100644 --- a/advisories/unreviewed/2022/05/GHSA-m374-xxjc-qg9p/GHSA-m374-xxjc-qg9p.json +++ b/advisories/unreviewed/2022/05/GHSA-m374-xxjc-qg9p/GHSA-m374-xxjc-qg9p.json @@ -7,12 +7,8 @@ "CVE-2021-30114" ], "details": "Web-School ERP V 5.0 contains a cross-site request forgery (CSRF) vulnerability that allows a remote attacker to create a voucher payment request through module/accounting/voucher/create. The application fails to validate the CSRF token for a POST request using admin privilege.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m378-j6r3-ppxw/GHSA-m378-j6r3-ppxw.json b/advisories/unreviewed/2022/05/GHSA-m378-j6r3-ppxw/GHSA-m378-j6r3-ppxw.json index 5c4b686c6ea..5fa2a8e48e9 100644 --- a/advisories/unreviewed/2022/05/GHSA-m378-j6r3-ppxw/GHSA-m378-j6r3-ppxw.json +++ b/advisories/unreviewed/2022/05/GHSA-m378-j6r3-ppxw/GHSA-m378-j6r3-ppxw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m43v-j8fp-7vjj/GHSA-m43v-j8fp-7vjj.json b/advisories/unreviewed/2022/05/GHSA-m43v-j8fp-7vjj/GHSA-m43v-j8fp-7vjj.json index b673969e858..989cb483a13 100644 --- a/advisories/unreviewed/2022/05/GHSA-m43v-j8fp-7vjj/GHSA-m43v-j8fp-7vjj.json +++ b/advisories/unreviewed/2022/05/GHSA-m43v-j8fp-7vjj/GHSA-m43v-j8fp-7vjj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m4vc-7qww-wjv6/GHSA-m4vc-7qww-wjv6.json b/advisories/unreviewed/2022/05/GHSA-m4vc-7qww-wjv6/GHSA-m4vc-7qww-wjv6.json index 3cb3e75069a..ae57e2d6a3b 100644 --- a/advisories/unreviewed/2022/05/GHSA-m4vc-7qww-wjv6/GHSA-m4vc-7qww-wjv6.json +++ b/advisories/unreviewed/2022/05/GHSA-m4vc-7qww-wjv6/GHSA-m4vc-7qww-wjv6.json @@ -7,12 +7,8 @@ "CVE-2021-27260" ], "details": "This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Desktop 16.0.1-48919. An attacker must first obtain the ability to execute high-privileged code on the target guest system in order to exploit this vulnerability. The specific flaw exists within the Toolgate component. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges and execute arbitrary code in the context of the hypervisor. Was ZDI-CAN-12068.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m6pr-qpr2-vp84/GHSA-m6pr-qpr2-vp84.json b/advisories/unreviewed/2022/05/GHSA-m6pr-qpr2-vp84/GHSA-m6pr-qpr2-vp84.json index 2b57eb2d8c5..b0a7c2590ce 100644 --- a/advisories/unreviewed/2022/05/GHSA-m6pr-qpr2-vp84/GHSA-m6pr-qpr2-vp84.json +++ b/advisories/unreviewed/2022/05/GHSA-m6pr-qpr2-vp84/GHSA-m6pr-qpr2-vp84.json @@ -7,12 +7,8 @@ "CVE-2021-3012" ], "details": "A cross-site scripting (XSS) vulnerability in the Document Link of documents in ESRI ArcGIS Online before 10.9 and Enterprise before 10.9 allows remote authenticated users to inject arbitrary JavaScript code via a malicious HTML attribute such as onerror (in the URL field of the Parameters tab).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m732-3v88-hww3/GHSA-m732-3v88-hww3.json b/advisories/unreviewed/2022/05/GHSA-m732-3v88-hww3/GHSA-m732-3v88-hww3.json index c723d119adf..87b73ec99b0 100644 --- a/advisories/unreviewed/2022/05/GHSA-m732-3v88-hww3/GHSA-m732-3v88-hww3.json +++ b/advisories/unreviewed/2022/05/GHSA-m732-3v88-hww3/GHSA-m732-3v88-hww3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m7p8-f9pq-2762/GHSA-m7p8-f9pq-2762.json b/advisories/unreviewed/2022/05/GHSA-m7p8-f9pq-2762/GHSA-m7p8-f9pq-2762.json index 475307f0f99..e98c9f1f334 100644 --- a/advisories/unreviewed/2022/05/GHSA-m7p8-f9pq-2762/GHSA-m7p8-f9pq-2762.json +++ b/advisories/unreviewed/2022/05/GHSA-m7p8-f9pq-2762/GHSA-m7p8-f9pq-2762.json @@ -7,12 +7,8 @@ "CVE-2020-13418" ], "details": "OpenIAM before 4.2.0.3 allows XSS in the Add New User feature.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mc2f-4vmr-c74r/GHSA-mc2f-4vmr-c74r.json b/advisories/unreviewed/2022/05/GHSA-mc2f-4vmr-c74r/GHSA-mc2f-4vmr-c74r.json index b3068cb8fdf..86f0b60853f 100644 --- a/advisories/unreviewed/2022/05/GHSA-mc2f-4vmr-c74r/GHSA-mc2f-4vmr-c74r.json +++ b/advisories/unreviewed/2022/05/GHSA-mc2f-4vmr-c74r/GHSA-mc2f-4vmr-c74r.json @@ -7,12 +7,8 @@ "CVE-2020-21088" ], "details": "Cross Site Scripting (XSS) in X2engine X2CRM v7.1 and older allows remote attackers to obtain sensitive information by injecting arbitrary web script or HTML via the \"First Name\" and \"Last Name\" fields in \"/index.php/contacts/create page\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mf4m-5fh3-4wjp/GHSA-mf4m-5fh3-4wjp.json b/advisories/unreviewed/2022/05/GHSA-mf4m-5fh3-4wjp/GHSA-mf4m-5fh3-4wjp.json index 6e0a63a70ca..6997e0dc24f 100644 --- a/advisories/unreviewed/2022/05/GHSA-mf4m-5fh3-4wjp/GHSA-mf4m-5fh3-4wjp.json +++ b/advisories/unreviewed/2022/05/GHSA-mf4m-5fh3-4wjp/GHSA-mf4m-5fh3-4wjp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mj56-6jxg-8vw7/GHSA-mj56-6jxg-8vw7.json b/advisories/unreviewed/2022/05/GHSA-mj56-6jxg-8vw7/GHSA-mj56-6jxg-8vw7.json index 644aa56097a..964e9487564 100644 --- a/advisories/unreviewed/2022/05/GHSA-mj56-6jxg-8vw7/GHSA-mj56-6jxg-8vw7.json +++ b/advisories/unreviewed/2022/05/GHSA-mj56-6jxg-8vw7/GHSA-mj56-6jxg-8vw7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mq2j-j89w-pvx3/GHSA-mq2j-j89w-pvx3.json b/advisories/unreviewed/2022/05/GHSA-mq2j-j89w-pvx3/GHSA-mq2j-j89w-pvx3.json index 83ea0d09beb..b579fe718ea 100644 --- a/advisories/unreviewed/2022/05/GHSA-mq2j-j89w-pvx3/GHSA-mq2j-j89w-pvx3.json +++ b/advisories/unreviewed/2022/05/GHSA-mq2j-j89w-pvx3/GHSA-mq2j-j89w-pvx3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mrjp-wxf4-27w7/GHSA-mrjp-wxf4-27w7.json b/advisories/unreviewed/2022/05/GHSA-mrjp-wxf4-27w7/GHSA-mrjp-wxf4-27w7.json index 1b5c91132cf..0d24c6c8222 100644 --- a/advisories/unreviewed/2022/05/GHSA-mrjp-wxf4-27w7/GHSA-mrjp-wxf4-27w7.json +++ b/advisories/unreviewed/2022/05/GHSA-mrjp-wxf4-27w7/GHSA-mrjp-wxf4-27w7.json @@ -7,12 +7,8 @@ "CVE-2021-22720" ], "details": "A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists in C-Bus Toolkit (V1.15.7 and prior) that could allow a remote code execution when restoring a project.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mv4x-232j-667r/GHSA-mv4x-232j-667r.json b/advisories/unreviewed/2022/05/GHSA-mv4x-232j-667r/GHSA-mv4x-232j-667r.json index 9a138cd4b81..743a552b2c2 100644 --- a/advisories/unreviewed/2022/05/GHSA-mv4x-232j-667r/GHSA-mv4x-232j-667r.json +++ b/advisories/unreviewed/2022/05/GHSA-mv4x-232j-667r/GHSA-mv4x-232j-667r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mvx3-h3xq-hvwm/GHSA-mvx3-h3xq-hvwm.json b/advisories/unreviewed/2022/05/GHSA-mvx3-h3xq-hvwm/GHSA-mvx3-h3xq-hvwm.json index 7527089f256..4b542db75d3 100644 --- a/advisories/unreviewed/2022/05/GHSA-mvx3-h3xq-hvwm/GHSA-mvx3-h3xq-hvwm.json +++ b/advisories/unreviewed/2022/05/GHSA-mvx3-h3xq-hvwm/GHSA-mvx3-h3xq-hvwm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mxxx-932c-fw96/GHSA-mxxx-932c-fw96.json b/advisories/unreviewed/2022/05/GHSA-mxxx-932c-fw96/GHSA-mxxx-932c-fw96.json index e7664c68202..a373b045f53 100644 --- a/advisories/unreviewed/2022/05/GHSA-mxxx-932c-fw96/GHSA-mxxx-932c-fw96.json +++ b/advisories/unreviewed/2022/05/GHSA-mxxx-932c-fw96/GHSA-mxxx-932c-fw96.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p2f2-h6x2-wxp3/GHSA-p2f2-h6x2-wxp3.json b/advisories/unreviewed/2022/05/GHSA-p2f2-h6x2-wxp3/GHSA-p2f2-h6x2-wxp3.json index 37440d77fe6..51140f724dc 100644 --- a/advisories/unreviewed/2022/05/GHSA-p2f2-h6x2-wxp3/GHSA-p2f2-h6x2-wxp3.json +++ b/advisories/unreviewed/2022/05/GHSA-p2f2-h6x2-wxp3/GHSA-p2f2-h6x2-wxp3.json @@ -7,12 +7,8 @@ "CVE-2020-24285" ], "details": "INTELBRAS TELEFONE IP TIP200 version 60.61.75.22 allows an attacker to obtain sensitive information through /cgi-bin/cgiServer.exx.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p334-qxhx-h43x/GHSA-p334-qxhx-h43x.json b/advisories/unreviewed/2022/05/GHSA-p334-qxhx-h43x/GHSA-p334-qxhx-h43x.json index 01f6db5806f..c3a49c507c5 100644 --- a/advisories/unreviewed/2022/05/GHSA-p334-qxhx-h43x/GHSA-p334-qxhx-h43x.json +++ b/advisories/unreviewed/2022/05/GHSA-p334-qxhx-h43x/GHSA-p334-qxhx-h43x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p6w4-xgmf-8r7g/GHSA-p6w4-xgmf-8r7g.json b/advisories/unreviewed/2022/05/GHSA-p6w4-xgmf-8r7g/GHSA-p6w4-xgmf-8r7g.json index 4288a4ae27c..2580831700c 100644 --- a/advisories/unreviewed/2022/05/GHSA-p6w4-xgmf-8r7g/GHSA-p6w4-xgmf-8r7g.json +++ b/advisories/unreviewed/2022/05/GHSA-p6w4-xgmf-8r7g/GHSA-p6w4-xgmf-8r7g.json @@ -7,12 +7,8 @@ "CVE-2021-23281" ], "details": "Eaton Intelligent Power Manager (IPM) prior to 1.69 is vulnerable to unauthenticated remote code execution vulnerability. IPM software does not sanitize the date provided via coverterCheckList action in meta_driver_srv.js class. Attackers can send a specially crafted packet to make IPM connect to rouge SNMP server and execute attacker-controlled code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p758-wxmr-xh9f/GHSA-p758-wxmr-xh9f.json b/advisories/unreviewed/2022/05/GHSA-p758-wxmr-xh9f/GHSA-p758-wxmr-xh9f.json index 21f5e2be043..17a63fd9ec2 100644 --- a/advisories/unreviewed/2022/05/GHSA-p758-wxmr-xh9f/GHSA-p758-wxmr-xh9f.json +++ b/advisories/unreviewed/2022/05/GHSA-p758-wxmr-xh9f/GHSA-p758-wxmr-xh9f.json @@ -7,12 +7,8 @@ "CVE-2020-4964" ], "details": "IBM Jazz Team Server products contain an undisclosed vulnerability that could allow an authenticated user to present a customized message on the application which could be used to phish other users. IBM X-Force ID: 192419.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p75p-x3j9-7vj3/GHSA-p75p-x3j9-7vj3.json b/advisories/unreviewed/2022/05/GHSA-p75p-x3j9-7vj3/GHSA-p75p-x3j9-7vj3.json index f420a2969b1..dd27aaa65a3 100644 --- a/advisories/unreviewed/2022/05/GHSA-p75p-x3j9-7vj3/GHSA-p75p-x3j9-7vj3.json +++ b/advisories/unreviewed/2022/05/GHSA-p75p-x3j9-7vj3/GHSA-p75p-x3j9-7vj3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p7xj-cwwg-rg5h/GHSA-p7xj-cwwg-rg5h.json b/advisories/unreviewed/2022/05/GHSA-p7xj-cwwg-rg5h/GHSA-p7xj-cwwg-rg5h.json index aa7ab5d90aa..54d83ea3666 100644 --- a/advisories/unreviewed/2022/05/GHSA-p7xj-cwwg-rg5h/GHSA-p7xj-cwwg-rg5h.json +++ b/advisories/unreviewed/2022/05/GHSA-p7xj-cwwg-rg5h/GHSA-p7xj-cwwg-rg5h.json @@ -7,12 +7,8 @@ "CVE-2020-24140" ], "details": "Server-side request forgery in Wcms 0.3.2 let an attacker send crafted requests from the back-end server of a vulnerable web application via the pagename parameter to wex/html.php. It can help identify open ports, local network hosts and execute command on local services.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p8qf-chx8-32g2/GHSA-p8qf-chx8-32g2.json b/advisories/unreviewed/2022/05/GHSA-p8qf-chx8-32g2/GHSA-p8qf-chx8-32g2.json index 9422e4ef286..30f35620c43 100644 --- a/advisories/unreviewed/2022/05/GHSA-p8qf-chx8-32g2/GHSA-p8qf-chx8-32g2.json +++ b/advisories/unreviewed/2022/05/GHSA-p8qf-chx8-32g2/GHSA-p8qf-chx8-32g2.json @@ -7,12 +7,8 @@ "CVE-2021-30055" ], "details": "A SQL injection vulnerability in Knowage Suite version 7.1 exists in the documentexecution/url analytics driver component via the 'par_year' parameter when running a report.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p9r5-2m4c-75p3/GHSA-p9r5-2m4c-75p3.json b/advisories/unreviewed/2022/05/GHSA-p9r5-2m4c-75p3/GHSA-p9r5-2m4c-75p3.json index 3d066b8daf6..c0da1c6f736 100644 --- a/advisories/unreviewed/2022/05/GHSA-p9r5-2m4c-75p3/GHSA-p9r5-2m4c-75p3.json +++ b/advisories/unreviewed/2022/05/GHSA-p9r5-2m4c-75p3/GHSA-p9r5-2m4c-75p3.json @@ -7,12 +7,8 @@ "CVE-2021-0430" ], "details": "In rw_mfc_handle_read_op of rw_mfc.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution via a malicious NFC packet with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11Android ID: A-178725766", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ppq5-24cj-frm2/GHSA-ppq5-24cj-frm2.json b/advisories/unreviewed/2022/05/GHSA-ppq5-24cj-frm2/GHSA-ppq5-24cj-frm2.json index 291ec951c5a..fe22f873739 100644 --- a/advisories/unreviewed/2022/05/GHSA-ppq5-24cj-frm2/GHSA-ppq5-24cj-frm2.json +++ b/advisories/unreviewed/2022/05/GHSA-ppq5-24cj-frm2/GHSA-ppq5-24cj-frm2.json @@ -7,12 +7,8 @@ "CVE-2021-0429" ], "details": "In pollOnce of ALooper.cpp, there is possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-9 Android-10 Android-11 Android-8.1Android ID: A-175074139", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pw2w-wqv8-ffjr/GHSA-pw2w-wqv8-ffjr.json b/advisories/unreviewed/2022/05/GHSA-pw2w-wqv8-ffjr/GHSA-pw2w-wqv8-ffjr.json index 1bfb63b4a1f..7a1767347a9 100644 --- a/advisories/unreviewed/2022/05/GHSA-pw2w-wqv8-ffjr/GHSA-pw2w-wqv8-ffjr.json +++ b/advisories/unreviewed/2022/05/GHSA-pw2w-wqv8-ffjr/GHSA-pw2w-wqv8-ffjr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-px78-549m-fc45/GHSA-px78-549m-fc45.json b/advisories/unreviewed/2022/05/GHSA-px78-549m-fc45/GHSA-px78-549m-fc45.json index 912c8d73943..878870ac1ff 100644 --- a/advisories/unreviewed/2022/05/GHSA-px78-549m-fc45/GHSA-px78-549m-fc45.json +++ b/advisories/unreviewed/2022/05/GHSA-px78-549m-fc45/GHSA-px78-549m-fc45.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-px8m-vh6v-xc52/GHSA-px8m-vh6v-xc52.json b/advisories/unreviewed/2022/05/GHSA-px8m-vh6v-xc52/GHSA-px8m-vh6v-xc52.json index b7c9d6015db..c27f39209ca 100644 --- a/advisories/unreviewed/2022/05/GHSA-px8m-vh6v-xc52/GHSA-px8m-vh6v-xc52.json +++ b/advisories/unreviewed/2022/05/GHSA-px8m-vh6v-xc52/GHSA-px8m-vh6v-xc52.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pxx5-j3x6-qqvx/GHSA-pxx5-j3x6-qqvx.json b/advisories/unreviewed/2022/05/GHSA-pxx5-j3x6-qqvx/GHSA-pxx5-j3x6-qqvx.json index 1b7ffec9db4..cf8760c2878 100644 --- a/advisories/unreviewed/2022/05/GHSA-pxx5-j3x6-qqvx/GHSA-pxx5-j3x6-qqvx.json +++ b/advisories/unreviewed/2022/05/GHSA-pxx5-j3x6-qqvx/GHSA-pxx5-j3x6-qqvx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q2rf-95xc-9px3/GHSA-q2rf-95xc-9px3.json b/advisories/unreviewed/2022/05/GHSA-q2rf-95xc-9px3/GHSA-q2rf-95xc-9px3.json index f77539a738d..5ab2bd5aa37 100644 --- a/advisories/unreviewed/2022/05/GHSA-q2rf-95xc-9px3/GHSA-q2rf-95xc-9px3.json +++ b/advisories/unreviewed/2022/05/GHSA-q2rf-95xc-9px3/GHSA-q2rf-95xc-9px3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q43q-8w58-rcfm/GHSA-q43q-8w58-rcfm.json b/advisories/unreviewed/2022/05/GHSA-q43q-8w58-rcfm/GHSA-q43q-8w58-rcfm.json index f832ad93eca..ae883150340 100644 --- a/advisories/unreviewed/2022/05/GHSA-q43q-8w58-rcfm/GHSA-q43q-8w58-rcfm.json +++ b/advisories/unreviewed/2022/05/GHSA-q43q-8w58-rcfm/GHSA-q43q-8w58-rcfm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q4cp-ggx3-v3j7/GHSA-q4cp-ggx3-v3j7.json b/advisories/unreviewed/2022/05/GHSA-q4cp-ggx3-v3j7/GHSA-q4cp-ggx3-v3j7.json index 066ad6130b9..0031e287b45 100644 --- a/advisories/unreviewed/2022/05/GHSA-q4cp-ggx3-v3j7/GHSA-q4cp-ggx3-v3j7.json +++ b/advisories/unreviewed/2022/05/GHSA-q4cp-ggx3-v3j7/GHSA-q4cp-ggx3-v3j7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q99p-4xcr-jc8r/GHSA-q99p-4xcr-jc8r.json b/advisories/unreviewed/2022/05/GHSA-q99p-4xcr-jc8r/GHSA-q99p-4xcr-jc8r.json index 57333be9f72..9acb9159b4e 100644 --- a/advisories/unreviewed/2022/05/GHSA-q99p-4xcr-jc8r/GHSA-q99p-4xcr-jc8r.json +++ b/advisories/unreviewed/2022/05/GHSA-q99p-4xcr-jc8r/GHSA-q99p-4xcr-jc8r.json @@ -7,12 +7,8 @@ "CVE-2021-27608" ], "details": "An unquoted service path in SAPSetup, version - 9.0, could lead to privilege escalation during the installation process that is performed when an executable file is registered. This could further lead to complete compromise of confidentiality, Integrity and Availability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qfm4-fr7v-vggm/GHSA-qfm4-fr7v-vggm.json b/advisories/unreviewed/2022/05/GHSA-qfm4-fr7v-vggm/GHSA-qfm4-fr7v-vggm.json index 71265a6d6fe..01aa23534d4 100644 --- a/advisories/unreviewed/2022/05/GHSA-qfm4-fr7v-vggm/GHSA-qfm4-fr7v-vggm.json +++ b/advisories/unreviewed/2022/05/GHSA-qfm4-fr7v-vggm/GHSA-qfm4-fr7v-vggm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qg32-x6j3-33vx/GHSA-qg32-x6j3-33vx.json b/advisories/unreviewed/2022/05/GHSA-qg32-x6j3-33vx/GHSA-qg32-x6j3-33vx.json index 98a81681b68..a936197eb72 100644 --- a/advisories/unreviewed/2022/05/GHSA-qg32-x6j3-33vx/GHSA-qg32-x6j3-33vx.json +++ b/advisories/unreviewed/2022/05/GHSA-qg32-x6j3-33vx/GHSA-qg32-x6j3-33vx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qhq8-vg87-fpm2/GHSA-qhq8-vg87-fpm2.json b/advisories/unreviewed/2022/05/GHSA-qhq8-vg87-fpm2/GHSA-qhq8-vg87-fpm2.json index f2ce03f6211..4350003f6c4 100644 --- a/advisories/unreviewed/2022/05/GHSA-qhq8-vg87-fpm2/GHSA-qhq8-vg87-fpm2.json +++ b/advisories/unreviewed/2022/05/GHSA-qhq8-vg87-fpm2/GHSA-qhq8-vg87-fpm2.json @@ -7,12 +7,8 @@ "CVE-2021-23924" ], "details": "An issue was discovered in Devolutions Server before 2020.3. There is an exposure of sensitive information in diagnostic files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qjqc-88q2-gp64/GHSA-qjqc-88q2-gp64.json b/advisories/unreviewed/2022/05/GHSA-qjqc-88q2-gp64/GHSA-qjqc-88q2-gp64.json index 546ece9be5a..59090c7e738 100644 --- a/advisories/unreviewed/2022/05/GHSA-qjqc-88q2-gp64/GHSA-qjqc-88q2-gp64.json +++ b/advisories/unreviewed/2022/05/GHSA-qjqc-88q2-gp64/GHSA-qjqc-88q2-gp64.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qjrv-m4q7-cq35/GHSA-qjrv-m4q7-cq35.json b/advisories/unreviewed/2022/05/GHSA-qjrv-m4q7-cq35/GHSA-qjrv-m4q7-cq35.json index d42a95d5714..632d4cfc92a 100644 --- a/advisories/unreviewed/2022/05/GHSA-qjrv-m4q7-cq35/GHSA-qjrv-m4q7-cq35.json +++ b/advisories/unreviewed/2022/05/GHSA-qjrv-m4q7-cq35/GHSA-qjrv-m4q7-cq35.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qmhq-prcq-pvp4/GHSA-qmhq-prcq-pvp4.json b/advisories/unreviewed/2022/05/GHSA-qmhq-prcq-pvp4/GHSA-qmhq-prcq-pvp4.json index 375c5002bec..6eaa796d58c 100644 --- a/advisories/unreviewed/2022/05/GHSA-qmhq-prcq-pvp4/GHSA-qmhq-prcq-pvp4.json +++ b/advisories/unreviewed/2022/05/GHSA-qmhq-prcq-pvp4/GHSA-qmhq-prcq-pvp4.json @@ -7,12 +7,8 @@ "CVE-2021-30112" ], "details": "Web-School ERP V 5.0 contains a cross-site request forgery (CSRF) vulnerability that allows a remote attacker to create a student_leave_application request through module/core/studentleaveapplication/create. The application fails to validate the CSRF token for a POST request using Guardian privilege.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qrr3-c36x-2pcc/GHSA-qrr3-c36x-2pcc.json b/advisories/unreviewed/2022/05/GHSA-qrr3-c36x-2pcc/GHSA-qrr3-c36x-2pcc.json index 21c3974d81c..2a80cadbd45 100644 --- a/advisories/unreviewed/2022/05/GHSA-qrr3-c36x-2pcc/GHSA-qrr3-c36x-2pcc.json +++ b/advisories/unreviewed/2022/05/GHSA-qrr3-c36x-2pcc/GHSA-qrr3-c36x-2pcc.json @@ -7,12 +7,8 @@ "CVE-2021-24028" ], "details": "An invalid free in Thrift's table-based serialization can cause the application to crash or potentially result in code execution or other undesirable effects. This issue affects Facebook Thrift prior to v2021.02.22.00.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qw63-pc73-846c/GHSA-qw63-pc73-846c.json b/advisories/unreviewed/2022/05/GHSA-qw63-pc73-846c/GHSA-qw63-pc73-846c.json index 4f48b07f3e0..83e4f20d4d0 100644 --- a/advisories/unreviewed/2022/05/GHSA-qw63-pc73-846c/GHSA-qw63-pc73-846c.json +++ b/advisories/unreviewed/2022/05/GHSA-qw63-pc73-846c/GHSA-qw63-pc73-846c.json @@ -7,12 +7,8 @@ "CVE-2020-24139" ], "details": "Server-side request forgery in Wcms 0.3.2 lets an attacker send crafted requests from the back-end server of a vulnerable web application via the path parameter to wex/cssjs.php. It can help identify open ports, local network hosts and execute command on local services.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r2cr-p8cx-757w/GHSA-r2cr-p8cx-757w.json b/advisories/unreviewed/2022/05/GHSA-r2cr-p8cx-757w/GHSA-r2cr-p8cx-757w.json index 0925ad8c26e..7877ade5aa9 100644 --- a/advisories/unreviewed/2022/05/GHSA-r2cr-p8cx-757w/GHSA-r2cr-p8cx-757w.json +++ b/advisories/unreviewed/2022/05/GHSA-r2cr-p8cx-757w/GHSA-r2cr-p8cx-757w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r5rf-xw5q-xf24/GHSA-r5rf-xw5q-xf24.json b/advisories/unreviewed/2022/05/GHSA-r5rf-xw5q-xf24/GHSA-r5rf-xw5q-xf24.json index 5ccbb7b88e5..abdd35a3cac 100644 --- a/advisories/unreviewed/2022/05/GHSA-r5rf-xw5q-xf24/GHSA-r5rf-xw5q-xf24.json +++ b/advisories/unreviewed/2022/05/GHSA-r5rf-xw5q-xf24/GHSA-r5rf-xw5q-xf24.json @@ -7,12 +7,8 @@ "CVE-2021-20020" ], "details": "A command execution vulnerability in SonicWall GMS 9.3 allows a remote unauthenticated attacker to locally escalate privilege to root.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r6gp-469r-cpj7/GHSA-r6gp-469r-cpj7.json b/advisories/unreviewed/2022/05/GHSA-r6gp-469r-cpj7/GHSA-r6gp-469r-cpj7.json index 0870e40cb2d..b458c8a740a 100644 --- a/advisories/unreviewed/2022/05/GHSA-r6gp-469r-cpj7/GHSA-r6gp-469r-cpj7.json +++ b/advisories/unreviewed/2022/05/GHSA-r6gp-469r-cpj7/GHSA-r6gp-469r-cpj7.json @@ -7,12 +7,8 @@ "CVE-2020-11252" ], "details": "Trustzone initialization code will disable xPU`s when memory dumps are enabled and lead to information disclosure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r8wp-fj58-xqx3/GHSA-r8wp-fj58-xqx3.json b/advisories/unreviewed/2022/05/GHSA-r8wp-fj58-xqx3/GHSA-r8wp-fj58-xqx3.json index 956ac7c84aa..926775f2e2a 100644 --- a/advisories/unreviewed/2022/05/GHSA-r8wp-fj58-xqx3/GHSA-r8wp-fj58-xqx3.json +++ b/advisories/unreviewed/2022/05/GHSA-r8wp-fj58-xqx3/GHSA-r8wp-fj58-xqx3.json @@ -7,12 +7,8 @@ "CVE-2021-20480" ], "details": "IBM WebSphere Application Server 7.0, 8.0, and 8.5 is vulnerable to server-side request forgery (SSRF). By sending a specially crafted request, a remote authenticated attacker could exploit this vulnerability to obtain sensitive data. IBM X-Force ID: 197502.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rj8p-8v83-qrr3/GHSA-rj8p-8v83-qrr3.json b/advisories/unreviewed/2022/05/GHSA-rj8p-8v83-qrr3/GHSA-rj8p-8v83-qrr3.json index 57fd32b9771..9f18c934245 100644 --- a/advisories/unreviewed/2022/05/GHSA-rj8p-8v83-qrr3/GHSA-rj8p-8v83-qrr3.json +++ b/advisories/unreviewed/2022/05/GHSA-rj8p-8v83-qrr3/GHSA-rj8p-8v83-qrr3.json @@ -7,12 +7,8 @@ "CVE-2021-23923" ], "details": "An issue was discovered in Devolutions Server before 2020.3. There is Broken Authentication with Windows domain users.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rjh4-5hvf-f2f8/GHSA-rjh4-5hvf-f2f8.json b/advisories/unreviewed/2022/05/GHSA-rjh4-5hvf-f2f8/GHSA-rjh4-5hvf-f2f8.json index 39973e61cd4..dd2a0cb6084 100644 --- a/advisories/unreviewed/2022/05/GHSA-rjh4-5hvf-f2f8/GHSA-rjh4-5hvf-f2f8.json +++ b/advisories/unreviewed/2022/05/GHSA-rjh4-5hvf-f2f8/GHSA-rjh4-5hvf-f2f8.json @@ -7,12 +7,8 @@ "CVE-2021-30155" ], "details": "An issue was discovered in MediaWiki before 1.31.12 and 1.32.x through 1.35.x before 1.35.2. ContentModelChange does not check if a user has correct permissions to create and set the content model of a nonexistent page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rm26-r3rv-hxpp/GHSA-rm26-r3rv-hxpp.json b/advisories/unreviewed/2022/05/GHSA-rm26-r3rv-hxpp/GHSA-rm26-r3rv-hxpp.json index 8d52adffdeb..c7022b19f93 100644 --- a/advisories/unreviewed/2022/05/GHSA-rm26-r3rv-hxpp/GHSA-rm26-r3rv-hxpp.json +++ b/advisories/unreviewed/2022/05/GHSA-rm26-r3rv-hxpp/GHSA-rm26-r3rv-hxpp.json @@ -7,12 +7,8 @@ "CVE-2021-24222" ], "details": "The WP-Curriculo Vitae Free WordPress plugin through 6.3 suffers from an arbitrary file upload issue in page where the [formCadastro] is embed. The form allows unauthenticated user to register and submit files for their profile picture as well as resume, without any file extension restriction, leading to RCE.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rm46-xc8p-9869/GHSA-rm46-xc8p-9869.json b/advisories/unreviewed/2022/05/GHSA-rm46-xc8p-9869/GHSA-rm46-xc8p-9869.json index 36a3f60dae0..5f1e5558e1f 100644 --- a/advisories/unreviewed/2022/05/GHSA-rm46-xc8p-9869/GHSA-rm46-xc8p-9869.json +++ b/advisories/unreviewed/2022/05/GHSA-rm46-xc8p-9869/GHSA-rm46-xc8p-9869.json @@ -7,12 +7,8 @@ "CVE-2021-21196" ], "details": "Heap buffer overflow in TabStrip in Google Chrome on Windows prior to 89.0.4389.114 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rq83-h985-5f5r/GHSA-rq83-h985-5f5r.json b/advisories/unreviewed/2022/05/GHSA-rq83-h985-5f5r/GHSA-rq83-h985-5f5r.json index e47c87fc450..32aa91efeb5 100644 --- a/advisories/unreviewed/2022/05/GHSA-rq83-h985-5f5r/GHSA-rq83-h985-5f5r.json +++ b/advisories/unreviewed/2022/05/GHSA-rq83-h985-5f5r/GHSA-rq83-h985-5f5r.json @@ -7,12 +7,8 @@ "CVE-2020-23763" ], "details": "SQL injection in admin.php in Online Book Store 1.0 allows remote attackers to execute arbitrary SQL commands and bypass authentication.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rvh6-pwf7-7xm5/GHSA-rvh6-pwf7-7xm5.json b/advisories/unreviewed/2022/05/GHSA-rvh6-pwf7-7xm5/GHSA-rvh6-pwf7-7xm5.json index 89c771581b4..7453877ed38 100644 --- a/advisories/unreviewed/2022/05/GHSA-rvh6-pwf7-7xm5/GHSA-rvh6-pwf7-7xm5.json +++ b/advisories/unreviewed/2022/05/GHSA-rvh6-pwf7-7xm5/GHSA-rvh6-pwf7-7xm5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v22m-mfm8-q276/GHSA-v22m-mfm8-q276.json b/advisories/unreviewed/2022/05/GHSA-v22m-mfm8-q276/GHSA-v22m-mfm8-q276.json index 6f381252f3c..c2a37e484cc 100644 --- a/advisories/unreviewed/2022/05/GHSA-v22m-mfm8-q276/GHSA-v22m-mfm8-q276.json +++ b/advisories/unreviewed/2022/05/GHSA-v22m-mfm8-q276/GHSA-v22m-mfm8-q276.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v8wh-43jc-pfwj/GHSA-v8wh-43jc-pfwj.json b/advisories/unreviewed/2022/05/GHSA-v8wh-43jc-pfwj/GHSA-v8wh-43jc-pfwj.json index e4e0189624e..8bb2bf01d20 100644 --- a/advisories/unreviewed/2022/05/GHSA-v8wh-43jc-pfwj/GHSA-v8wh-43jc-pfwj.json +++ b/advisories/unreviewed/2022/05/GHSA-v8wh-43jc-pfwj/GHSA-v8wh-43jc-pfwj.json @@ -7,12 +7,8 @@ "CVE-2021-29661" ], "details": "Softing AG OPC Toolbox through 4.10.1.13035 allows /en/diag_values.html Stored XSS via the ITEMLISTVALUES##ITEMID parameter, resulting in JavaScript payload injection into the trace file. This payload will then be triggered every time an authenticated user browses the page containing it.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vcm3-phm4-6c23/GHSA-vcm3-phm4-6c23.json b/advisories/unreviewed/2022/05/GHSA-vcm3-phm4-6c23/GHSA-vcm3-phm4-6c23.json index 2bd4a4c4616..6e2e2b80bab 100644 --- a/advisories/unreviewed/2022/05/GHSA-vcm3-phm4-6c23/GHSA-vcm3-phm4-6c23.json +++ b/advisories/unreviewed/2022/05/GHSA-vcm3-phm4-6c23/GHSA-vcm3-phm4-6c23.json @@ -7,12 +7,8 @@ "CVE-2019-10881" ], "details": "Xerox AltaLink B8045/B8055/B8065/B8075/B8090, AltaLink C8030/C8035/C8045/C8055/C8070 with software releases before 103.xxx.030.32000 includes two accounts with weak hard-coded passwords which can be exploited and allow unauthorized access which cannot be disabled.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vcr7-q7v7-v84f/GHSA-vcr7-q7v7-v84f.json b/advisories/unreviewed/2022/05/GHSA-vcr7-q7v7-v84f/GHSA-vcr7-q7v7-v84f.json index 9c40eed501d..255b7ca13ff 100644 --- a/advisories/unreviewed/2022/05/GHSA-vcr7-q7v7-v84f/GHSA-vcr7-q7v7-v84f.json +++ b/advisories/unreviewed/2022/05/GHSA-vcr7-q7v7-v84f/GHSA-vcr7-q7v7-v84f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vf2g-hrph-mrjc/GHSA-vf2g-hrph-mrjc.json b/advisories/unreviewed/2022/05/GHSA-vf2g-hrph-mrjc/GHSA-vf2g-hrph-mrjc.json index f0a4b124290..efa2b7d1890 100644 --- a/advisories/unreviewed/2022/05/GHSA-vf2g-hrph-mrjc/GHSA-vf2g-hrph-mrjc.json +++ b/advisories/unreviewed/2022/05/GHSA-vf2g-hrph-mrjc/GHSA-vf2g-hrph-mrjc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vhwm-f423-2fx6/GHSA-vhwm-f423-2fx6.json b/advisories/unreviewed/2022/05/GHSA-vhwm-f423-2fx6/GHSA-vhwm-f423-2fx6.json index ef5cde28f10..c721f408a3a 100644 --- a/advisories/unreviewed/2022/05/GHSA-vhwm-f423-2fx6/GHSA-vhwm-f423-2fx6.json +++ b/advisories/unreviewed/2022/05/GHSA-vhwm-f423-2fx6/GHSA-vhwm-f423-2fx6.json @@ -7,12 +7,8 @@ "CVE-2021-22115" ], "details": "Cloud Controller API versions prior to 1.106.0 logs service broker credentials if the default value of db logging config field is changed. CAPI database logs service broker password in plain text whenever a job to clean up orphaned items is run by Cloud Controller.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vjh2-vp2w-jhxr/GHSA-vjh2-vp2w-jhxr.json b/advisories/unreviewed/2022/05/GHSA-vjh2-vp2w-jhxr/GHSA-vjh2-vp2w-jhxr.json index 42e156b92eb..05011258270 100644 --- a/advisories/unreviewed/2022/05/GHSA-vjh2-vp2w-jhxr/GHSA-vjh2-vp2w-jhxr.json +++ b/advisories/unreviewed/2022/05/GHSA-vjh2-vp2w-jhxr/GHSA-vjh2-vp2w-jhxr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vmhf-4r7j-fr3j/GHSA-vmhf-4r7j-fr3j.json b/advisories/unreviewed/2022/05/GHSA-vmhf-4r7j-fr3j/GHSA-vmhf-4r7j-fr3j.json index f77afbe3a4c..505293754f1 100644 --- a/advisories/unreviewed/2022/05/GHSA-vmhf-4r7j-fr3j/GHSA-vmhf-4r7j-fr3j.json +++ b/advisories/unreviewed/2022/05/GHSA-vmhf-4r7j-fr3j/GHSA-vmhf-4r7j-fr3j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vp48-vfcc-j7mg/GHSA-vp48-vfcc-j7mg.json b/advisories/unreviewed/2022/05/GHSA-vp48-vfcc-j7mg/GHSA-vp48-vfcc-j7mg.json index ecb54487f47..b2e4b5b2889 100644 --- a/advisories/unreviewed/2022/05/GHSA-vp48-vfcc-j7mg/GHSA-vp48-vfcc-j7mg.json +++ b/advisories/unreviewed/2022/05/GHSA-vp48-vfcc-j7mg/GHSA-vp48-vfcc-j7mg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vrvw-x9cv-3j76/GHSA-vrvw-x9cv-3j76.json b/advisories/unreviewed/2022/05/GHSA-vrvw-x9cv-3j76/GHSA-vrvw-x9cv-3j76.json index 5ff4cefcec4..7168c0c1719 100644 --- a/advisories/unreviewed/2022/05/GHSA-vrvw-x9cv-3j76/GHSA-vrvw-x9cv-3j76.json +++ b/advisories/unreviewed/2022/05/GHSA-vrvw-x9cv-3j76/GHSA-vrvw-x9cv-3j76.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vvf4-c8p4-89v5/GHSA-vvf4-c8p4-89v5.json b/advisories/unreviewed/2022/05/GHSA-vvf4-c8p4-89v5/GHSA-vvf4-c8p4-89v5.json index e4ad07b695d..9beabd07478 100644 --- a/advisories/unreviewed/2022/05/GHSA-vvf4-c8p4-89v5/GHSA-vvf4-c8p4-89v5.json +++ b/advisories/unreviewed/2022/05/GHSA-vvf4-c8p4-89v5/GHSA-vvf4-c8p4-89v5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vvf7-v2jp-v5fv/GHSA-vvf7-v2jp-v5fv.json b/advisories/unreviewed/2022/05/GHSA-vvf7-v2jp-v5fv/GHSA-vvf7-v2jp-v5fv.json index 106f3bd1455..3a692daea07 100644 --- a/advisories/unreviewed/2022/05/GHSA-vvf7-v2jp-v5fv/GHSA-vvf7-v2jp-v5fv.json +++ b/advisories/unreviewed/2022/05/GHSA-vvf7-v2jp-v5fv/GHSA-vvf7-v2jp-v5fv.json @@ -7,12 +7,8 @@ "CVE-2021-3017" ], "details": "The web interface on Intelbras WIN 300 and WRN 342 devices through 2021-01-04 allows remote attackers to discover credentials by reading the def_wirelesspassword line in the HTML source code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vx7r-7h24-rm89/GHSA-vx7r-7h24-rm89.json b/advisories/unreviewed/2022/05/GHSA-vx7r-7h24-rm89/GHSA-vx7r-7h24-rm89.json index e063dfc78cd..1650ddbde43 100644 --- a/advisories/unreviewed/2022/05/GHSA-vx7r-7h24-rm89/GHSA-vx7r-7h24-rm89.json +++ b/advisories/unreviewed/2022/05/GHSA-vx7r-7h24-rm89/GHSA-vx7r-7h24-rm89.json @@ -7,12 +7,8 @@ "CVE-2020-36284" ], "details": "Union Pay up to 3.4.93.4.9, for android, contains a CWE-347: Improper Verification of Cryptographic Signature vulnerability, allows attackers to shop for free in merchants' websites and mobile apps, via a crafted authentication code (MAC) which is generated based on a secret key which is NULL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vxfx-6g82-8qp9/GHSA-vxfx-6g82-8qp9.json b/advisories/unreviewed/2022/05/GHSA-vxfx-6g82-8qp9/GHSA-vxfx-6g82-8qp9.json index 6f982992591..324062c2cb8 100644 --- a/advisories/unreviewed/2022/05/GHSA-vxfx-6g82-8qp9/GHSA-vxfx-6g82-8qp9.json +++ b/advisories/unreviewed/2022/05/GHSA-vxfx-6g82-8qp9/GHSA-vxfx-6g82-8qp9.json @@ -7,12 +7,8 @@ "CVE-2021-27288" ], "details": "Cross Site Scripting (XSS) in X2Engine X2CRM v7.1 allows remote attackers to obtain sensitive information by injecting arbitrary web script or HTML via the \"Comment\" field in \"/profile/activity\" page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w422-w3vf-f63f/GHSA-w422-w3vf-f63f.json b/advisories/unreviewed/2022/05/GHSA-w422-w3vf-f63f/GHSA-w422-w3vf-f63f.json index c0fa61022f5..f2e476e7de3 100644 --- a/advisories/unreviewed/2022/05/GHSA-w422-w3vf-f63f/GHSA-w422-w3vf-f63f.json +++ b/advisories/unreviewed/2022/05/GHSA-w422-w3vf-f63f/GHSA-w422-w3vf-f63f.json @@ -7,12 +7,8 @@ "CVE-2021-3125" ], "details": "In TP-Link TL-XDR3230 < 1.0.12, TL-XDR1850 < 1.0.9, TL-XDR1860 < 1.0.14, TL-XDR3250 < 1.0.2, TL-XDR6060 Turbo < 1.1.8, TL-XDR5430 < 1.0.11, and possibly others, when IPv6 is used, a routing loop can occur that generates excessive network traffic between an affected device and its upstream ISP's router. This occurs when a link prefix route points to a point-to-point link, a destination IPv6 address belongs to the prefix and is not a local IPv6 address, and a router advertisement is received with at least one global unique IPv6 prefix for which the on-link flag is set.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w6px-4fhm-xxgc/GHSA-w6px-4fhm-xxgc.json b/advisories/unreviewed/2022/05/GHSA-w6px-4fhm-xxgc/GHSA-w6px-4fhm-xxgc.json index 81ef8a1efad..2853ea5c9c8 100644 --- a/advisories/unreviewed/2022/05/GHSA-w6px-4fhm-xxgc/GHSA-w6px-4fhm-xxgc.json +++ b/advisories/unreviewed/2022/05/GHSA-w6px-4fhm-xxgc/GHSA-w6px-4fhm-xxgc.json @@ -7,12 +7,8 @@ "CVE-2021-24217" ], "details": "The run_action function of the Facebook for WordPress plugin before 3.0.0 deserializes user supplied data making it possible for PHP objects to be supplied creating an Object Injection vulnerability. There was also a useable magic method in the plugin that could be used to achieve remote code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w7c8-v5h2-32ff/GHSA-w7c8-v5h2-32ff.json b/advisories/unreviewed/2022/05/GHSA-w7c8-v5h2-32ff/GHSA-w7c8-v5h2-32ff.json index a61fc1a1bab..b0eee637d1e 100644 --- a/advisories/unreviewed/2022/05/GHSA-w7c8-v5h2-32ff/GHSA-w7c8-v5h2-32ff.json +++ b/advisories/unreviewed/2022/05/GHSA-w7c8-v5h2-32ff/GHSA-w7c8-v5h2-32ff.json @@ -7,12 +7,8 @@ "CVE-2020-36318" ], "details": "In the standard library in Rust before 1.49.0, VecDeque::make_contiguous has a bug that pops the same element more than once under certain condition. This bug could result in a use-after-free or double free.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w7x9-c9q2-r2r6/GHSA-w7x9-c9q2-r2r6.json b/advisories/unreviewed/2022/05/GHSA-w7x9-c9q2-r2r6/GHSA-w7x9-c9q2-r2r6.json index cdf8524fa13..7bfd06bd96a 100644 --- a/advisories/unreviewed/2022/05/GHSA-w7x9-c9q2-r2r6/GHSA-w7x9-c9q2-r2r6.json +++ b/advisories/unreviewed/2022/05/GHSA-w7x9-c9q2-r2r6/GHSA-w7x9-c9q2-r2r6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w8rx-73fm-r2mv/GHSA-w8rx-73fm-r2mv.json b/advisories/unreviewed/2022/05/GHSA-w8rx-73fm-r2mv/GHSA-w8rx-73fm-r2mv.json index 3fb594158f8..fb5e0e0a7a4 100644 --- a/advisories/unreviewed/2022/05/GHSA-w8rx-73fm-r2mv/GHSA-w8rx-73fm-r2mv.json +++ b/advisories/unreviewed/2022/05/GHSA-w8rx-73fm-r2mv/GHSA-w8rx-73fm-r2mv.json @@ -7,12 +7,8 @@ "CVE-2021-27486" ], "details": "The Fatek Automation WinProladder Versions 3.3 and prior are vulnerable to an integer underflow, which may cause an out-of-bounds write and allow an attacker to execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w8vr-fx3m-jhr5/GHSA-w8vr-fx3m-jhr5.json b/advisories/unreviewed/2022/05/GHSA-w8vr-fx3m-jhr5/GHSA-w8vr-fx3m-jhr5.json index fc7e5d8400a..b1977ba5004 100644 --- a/advisories/unreviewed/2022/05/GHSA-w8vr-fx3m-jhr5/GHSA-w8vr-fx3m-jhr5.json +++ b/advisories/unreviewed/2022/05/GHSA-w8vr-fx3m-jhr5/GHSA-w8vr-fx3m-jhr5.json @@ -7,12 +7,8 @@ "CVE-2021-28797" ], "details": "A stack-based buffer overflow vulnerability has been reported to affect QNAP NAS devices running Surveillance Station. If exploited, this vulnerability allows attackers to execute arbitrary code. QNAP have already fixed this vulnerability in the following versions: Surveillance Station 5.1.5.4.3 (and later) for ARM CPU NAS (64bit OS) and x86 CPU NAS (64bit OS) Surveillance Station 5.1.5.3.3 (and later) for ARM CPU NAS (32bit OS) and x86 CPU NAS (32bit OS)", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wmvh-2v76-mw2c/GHSA-wmvh-2v76-mw2c.json b/advisories/unreviewed/2022/05/GHSA-wmvh-2v76-mw2c/GHSA-wmvh-2v76-mw2c.json index 1902e5df8f8..877da55f6ee 100644 --- a/advisories/unreviewed/2022/05/GHSA-wmvh-2v76-mw2c/GHSA-wmvh-2v76-mw2c.json +++ b/advisories/unreviewed/2022/05/GHSA-wmvh-2v76-mw2c/GHSA-wmvh-2v76-mw2c.json @@ -7,12 +7,8 @@ "CVE-2021-3328" ], "details": "An issue was discovered in Aprelium Abyss Web Server X1 2.12.1 and 2.14. A crafted HTTP request can lead to an out-of-bounds read that crashes the application.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wp3m-vvf5-j4v8/GHSA-wp3m-vvf5-j4v8.json b/advisories/unreviewed/2022/05/GHSA-wp3m-vvf5-j4v8/GHSA-wp3m-vvf5-j4v8.json index bf9e225dc8f..9c23ccce169 100644 --- a/advisories/unreviewed/2022/05/GHSA-wp3m-vvf5-j4v8/GHSA-wp3m-vvf5-j4v8.json +++ b/advisories/unreviewed/2022/05/GHSA-wp3m-vvf5-j4v8/GHSA-wp3m-vvf5-j4v8.json @@ -7,12 +7,8 @@ "CVE-2021-30057" ], "details": "A stored HTML injection vulnerability exists in Knowage Suite version 7.1. An attacker can inject arbitrary HTML in \"/restful-services/2.0/analyticalDrivers\" via the 'LABEL' and 'NAME' parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wqw9-vmhv-jg2w/GHSA-wqw9-vmhv-jg2w.json b/advisories/unreviewed/2022/05/GHSA-wqw9-vmhv-jg2w/GHSA-wqw9-vmhv-jg2w.json index 8c5166a8ed1..9b41037d824 100644 --- a/advisories/unreviewed/2022/05/GHSA-wqw9-vmhv-jg2w/GHSA-wqw9-vmhv-jg2w.json +++ b/advisories/unreviewed/2022/05/GHSA-wqw9-vmhv-jg2w/GHSA-wqw9-vmhv-jg2w.json @@ -7,12 +7,8 @@ "CVE-2021-23270" ], "details": "In Gargoyle OS 1.12.0, when IPv6 is used, a routing loop can occur that generates excessive network traffic between an affected device and its upstream ISP's router. This occurs when a link prefix route points to a point-to-point link, a destination IPv6 address belongs to the prefix and is not a local IPv6 address, and a router advertisement is received with at least one global unique IPv6 prefix for which the on-link flag is set.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wv9c-4h87-c42r/GHSA-wv9c-4h87-c42r.json b/advisories/unreviewed/2022/05/GHSA-wv9c-4h87-c42r/GHSA-wv9c-4h87-c42r.json index e22b0b440bb..339aefd9eda 100644 --- a/advisories/unreviewed/2022/05/GHSA-wv9c-4h87-c42r/GHSA-wv9c-4h87-c42r.json +++ b/advisories/unreviewed/2022/05/GHSA-wv9c-4h87-c42r/GHSA-wv9c-4h87-c42r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wwmp-583h-v424/GHSA-wwmp-583h-v424.json b/advisories/unreviewed/2022/05/GHSA-wwmp-583h-v424/GHSA-wwmp-583h-v424.json index 2c79664b49b..b3462bf3134 100644 --- a/advisories/unreviewed/2022/05/GHSA-wwmp-583h-v424/GHSA-wwmp-583h-v424.json +++ b/advisories/unreviewed/2022/05/GHSA-wwmp-583h-v424/GHSA-wwmp-583h-v424.json @@ -7,12 +7,8 @@ "CVE-2021-28174" ], "details": "Mitake smart stock selection system contains a broken authentication vulnerability. By manipulating the parameters in the URL, remote attackers can gain the privileged permissions to access transaction record, and fraudulent trading without login.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wxp8-7785-mr7x/GHSA-wxp8-7785-mr7x.json b/advisories/unreviewed/2022/05/GHSA-wxp8-7785-mr7x/GHSA-wxp8-7785-mr7x.json index b4c459d714c..64fc25b4561 100644 --- a/advisories/unreviewed/2022/05/GHSA-wxp8-7785-mr7x/GHSA-wxp8-7785-mr7x.json +++ b/advisories/unreviewed/2022/05/GHSA-wxp8-7785-mr7x/GHSA-wxp8-7785-mr7x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x3xh-fjmw-xggv/GHSA-x3xh-fjmw-xggv.json b/advisories/unreviewed/2022/05/GHSA-x3xh-fjmw-xggv/GHSA-x3xh-fjmw-xggv.json index 86e3cf51bc3..3e9d9d9f5e3 100644 --- a/advisories/unreviewed/2022/05/GHSA-x3xh-fjmw-xggv/GHSA-x3xh-fjmw-xggv.json +++ b/advisories/unreviewed/2022/05/GHSA-x3xh-fjmw-xggv/GHSA-x3xh-fjmw-xggv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x4fh-cj9q-q3x6/GHSA-x4fh-cj9q-q3x6.json b/advisories/unreviewed/2022/05/GHSA-x4fh-cj9q-q3x6/GHSA-x4fh-cj9q-q3x6.json index 188fc36b3ee..15543c9b0b9 100644 --- a/advisories/unreviewed/2022/05/GHSA-x4fh-cj9q-q3x6/GHSA-x4fh-cj9q-q3x6.json +++ b/advisories/unreviewed/2022/05/GHSA-x4fh-cj9q-q3x6/GHSA-x4fh-cj9q-q3x6.json @@ -7,12 +7,8 @@ "CVE-2021-27708" ], "details": "Command Injection in TOTOLINK X5000R router with firmware v9.1.0u.6118_B20201102, and TOTOLINK A720R router with firmware v4.1.5cu.470_B20200911 allows remote attackers to execute arbitrary OS commands by sending a modified HTTP request. This occurs because the function executes glibc's system function with untrusted input. In the function, \"command\" parameter is directly passed to the attacker, allowing them to control the \"command\" field to attack the OS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x4mr-7jcx-v2x6/GHSA-x4mr-7jcx-v2x6.json b/advisories/unreviewed/2022/05/GHSA-x4mr-7jcx-v2x6/GHSA-x4mr-7jcx-v2x6.json index c38896d7c84..480315eb9df 100644 --- a/advisories/unreviewed/2022/05/GHSA-x4mr-7jcx-v2x6/GHSA-x4mr-7jcx-v2x6.json +++ b/advisories/unreviewed/2022/05/GHSA-x4mr-7jcx-v2x6/GHSA-x4mr-7jcx-v2x6.json @@ -7,12 +7,8 @@ "CVE-2021-29357" ], "details": "The ECT Provider component in OutSystems Platform Server 10 before 10.0.1104.0 and 11 before 11.9.0 (and LifeTime management console before 11.7.0) allows SSRF for arbitrary outbound HTTP requests.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x544-2j43-9gqx/GHSA-x544-2j43-9gqx.json b/advisories/unreviewed/2022/05/GHSA-x544-2j43-9gqx/GHSA-x544-2j43-9gqx.json index 8a09a05d92c..26599fe7d2c 100644 --- a/advisories/unreviewed/2022/05/GHSA-x544-2j43-9gqx/GHSA-x544-2j43-9gqx.json +++ b/advisories/unreviewed/2022/05/GHSA-x544-2j43-9gqx/GHSA-x544-2j43-9gqx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x559-xx5v-vc9g/GHSA-x559-xx5v-vc9g.json b/advisories/unreviewed/2022/05/GHSA-x559-xx5v-vc9g/GHSA-x559-xx5v-vc9g.json index 408f0465b33..b97c06dbb8a 100644 --- a/advisories/unreviewed/2022/05/GHSA-x559-xx5v-vc9g/GHSA-x559-xx5v-vc9g.json +++ b/advisories/unreviewed/2022/05/GHSA-x559-xx5v-vc9g/GHSA-x559-xx5v-vc9g.json @@ -7,12 +7,8 @@ "CVE-2019-15059" ], "details": "In Liberty lisPBX 2.0-4, configuration backup files can be retrieved remotely from /backup/lispbx-CONF-YYYY-MM-DD.tar or /backup/lispbx-CDR-YYYY-MM-DD.tar without authentication or authorization. These configuration files have all PBX information including extension numbers, contacts, and passwords.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x5r4-m9fv-fwr2/GHSA-x5r4-m9fv-fwr2.json b/advisories/unreviewed/2022/05/GHSA-x5r4-m9fv-fwr2/GHSA-x5r4-m9fv-fwr2.json index 51433b95e87..f4c5fdfd114 100644 --- a/advisories/unreviewed/2022/05/GHSA-x5r4-m9fv-fwr2/GHSA-x5r4-m9fv-fwr2.json +++ b/advisories/unreviewed/2022/05/GHSA-x5r4-m9fv-fwr2/GHSA-x5r4-m9fv-fwr2.json @@ -7,12 +7,8 @@ "CVE-2020-4997" ], "details": "IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 192914", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x79c-2qj9-pgc6/GHSA-x79c-2qj9-pgc6.json b/advisories/unreviewed/2022/05/GHSA-x79c-2qj9-pgc6/GHSA-x79c-2qj9-pgc6.json index c7080be0e27..2aff7c705fe 100644 --- a/advisories/unreviewed/2022/05/GHSA-x79c-2qj9-pgc6/GHSA-x79c-2qj9-pgc6.json +++ b/advisories/unreviewed/2022/05/GHSA-x79c-2qj9-pgc6/GHSA-x79c-2qj9-pgc6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x84w-jv96-fm2h/GHSA-x84w-jv96-fm2h.json b/advisories/unreviewed/2022/05/GHSA-x84w-jv96-fm2h/GHSA-x84w-jv96-fm2h.json index daa388c90ce..69b4117e72a 100644 --- a/advisories/unreviewed/2022/05/GHSA-x84w-jv96-fm2h/GHSA-x84w-jv96-fm2h.json +++ b/advisories/unreviewed/2022/05/GHSA-x84w-jv96-fm2h/GHSA-x84w-jv96-fm2h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x8cc-x8qf-2x5r/GHSA-x8cc-x8qf-2x5r.json b/advisories/unreviewed/2022/05/GHSA-x8cc-x8qf-2x5r/GHSA-x8cc-x8qf-2x5r.json index e291fc77970..982869bed35 100644 --- a/advisories/unreviewed/2022/05/GHSA-x8cc-x8qf-2x5r/GHSA-x8cc-x8qf-2x5r.json +++ b/advisories/unreviewed/2022/05/GHSA-x8cc-x8qf-2x5r/GHSA-x8cc-x8qf-2x5r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x8xf-8r2j-rgxj/GHSA-x8xf-8r2j-rgxj.json b/advisories/unreviewed/2022/05/GHSA-x8xf-8r2j-rgxj/GHSA-x8xf-8r2j-rgxj.json index 602f8e59ea3..9febddf1a30 100644 --- a/advisories/unreviewed/2022/05/GHSA-x8xf-8r2j-rgxj/GHSA-x8xf-8r2j-rgxj.json +++ b/advisories/unreviewed/2022/05/GHSA-x8xf-8r2j-rgxj/GHSA-x8xf-8r2j-rgxj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xc28-qh5q-f492/GHSA-xc28-qh5q-f492.json b/advisories/unreviewed/2022/05/GHSA-xc28-qh5q-f492/GHSA-xc28-qh5q-f492.json index 12669d6427b..cf5d83bc734 100644 --- a/advisories/unreviewed/2022/05/GHSA-xc28-qh5q-f492/GHSA-xc28-qh5q-f492.json +++ b/advisories/unreviewed/2022/05/GHSA-xc28-qh5q-f492/GHSA-xc28-qh5q-f492.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xj23-fxfm-58rq/GHSA-xj23-fxfm-58rq.json b/advisories/unreviewed/2022/05/GHSA-xj23-fxfm-58rq/GHSA-xj23-fxfm-58rq.json index f9748904a3b..5a1e0b209db 100644 --- a/advisories/unreviewed/2022/05/GHSA-xj23-fxfm-58rq/GHSA-xj23-fxfm-58rq.json +++ b/advisories/unreviewed/2022/05/GHSA-xj23-fxfm-58rq/GHSA-xj23-fxfm-58rq.json @@ -7,12 +7,8 @@ "CVE-2021-27253" ], "details": "This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR Nighthawk R7800. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The specific flaw exists within the handling of the rc_service parameter provided to apply_bind.cgi. The issue results from the lack of proper validation of a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-12303.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xj89-3jjf-34h5/GHSA-xj89-3jjf-34h5.json b/advisories/unreviewed/2022/05/GHSA-xj89-3jjf-34h5/GHSA-xj89-3jjf-34h5.json index 5edc87143a0..d581d86d13d 100644 --- a/advisories/unreviewed/2022/05/GHSA-xj89-3jjf-34h5/GHSA-xj89-3jjf-34h5.json +++ b/advisories/unreviewed/2022/05/GHSA-xj89-3jjf-34h5/GHSA-xj89-3jjf-34h5.json @@ -7,12 +7,8 @@ "CVE-2021-25328" ], "details": "Skyworth Digital Technology RN510 V.3.1.0.4 RN510 V.3.1.0.4 contains a buffer overflow vulnerability in /cgi-bin/app-staticIP.asp. An authenticated attacker can send a specially crafted request to endpoint which can lead to a denial of service (DoS) or possible code execution on the device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xq7x-mvh7-x544/GHSA-xq7x-mvh7-x544.json b/advisories/unreviewed/2022/05/GHSA-xq7x-mvh7-x544/GHSA-xq7x-mvh7-x544.json index 48a37056e0f..535c58517f1 100644 --- a/advisories/unreviewed/2022/05/GHSA-xq7x-mvh7-x544/GHSA-xq7x-mvh7-x544.json +++ b/advisories/unreviewed/2022/05/GHSA-xq7x-mvh7-x544/GHSA-xq7x-mvh7-x544.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xrxh-9m4x-58jr/GHSA-xrxh-9m4x-58jr.json b/advisories/unreviewed/2022/05/GHSA-xrxh-9m4x-58jr/GHSA-xrxh-9m4x-58jr.json index e9fe0acb06f..e97e14b4e3d 100644 --- a/advisories/unreviewed/2022/05/GHSA-xrxh-9m4x-58jr/GHSA-xrxh-9m4x-58jr.json +++ b/advisories/unreviewed/2022/05/GHSA-xrxh-9m4x-58jr/GHSA-xrxh-9m4x-58jr.json @@ -7,12 +7,8 @@ "CVE-2021-0426" ], "details": "In parsePrimaryFieldFirstUidAnnotation of LogEvent.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-174485572", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xw26-rv7f-j6w8/GHSA-xw26-rv7f-j6w8.json b/advisories/unreviewed/2022/05/GHSA-xw26-rv7f-j6w8/GHSA-xw26-rv7f-j6w8.json index 4e1f36c85f8..4718947f2b2 100644 --- a/advisories/unreviewed/2022/05/GHSA-xw26-rv7f-j6w8/GHSA-xw26-rv7f-j6w8.json +++ b/advisories/unreviewed/2022/05/GHSA-xw26-rv7f-j6w8/GHSA-xw26-rv7f-j6w8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xxcx-3jxf-738h/GHSA-xxcx-3jxf-738h.json b/advisories/unreviewed/2022/05/GHSA-xxcx-3jxf-738h/GHSA-xxcx-3jxf-738h.json index 7a603405bbb..f763272a56f 100644 --- a/advisories/unreviewed/2022/05/GHSA-xxcx-3jxf-738h/GHSA-xxcx-3jxf-738h.json +++ b/advisories/unreviewed/2022/05/GHSA-xxcx-3jxf-738h/GHSA-xxcx-3jxf-738h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/08/GHSA-9jrj-9rp7-5gh2/GHSA-9jrj-9rp7-5gh2.json b/advisories/unreviewed/2023/08/GHSA-9jrj-9rp7-5gh2/GHSA-9jrj-9rp7-5gh2.json index 1e867abfb90..9cc2c3b5d0e 100644 --- a/advisories/unreviewed/2023/08/GHSA-9jrj-9rp7-5gh2/GHSA-9jrj-9rp7-5gh2.json +++ b/advisories/unreviewed/2023/08/GHSA-9jrj-9rp7-5gh2/GHSA-9jrj-9rp7-5gh2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/08/GHSA-c774-q93c-r26f/GHSA-c774-q93c-r26f.json b/advisories/unreviewed/2023/08/GHSA-c774-q93c-r26f/GHSA-c774-q93c-r26f.json index 55cf26eecc8..1cca37c34b7 100644 --- a/advisories/unreviewed/2023/08/GHSA-c774-q93c-r26f/GHSA-c774-q93c-r26f.json +++ b/advisories/unreviewed/2023/08/GHSA-c774-q93c-r26f/GHSA-c774-q93c-r26f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/08/GHSA-gx47-2cwv-p7wc/GHSA-gx47-2cwv-p7wc.json b/advisories/unreviewed/2023/08/GHSA-gx47-2cwv-p7wc/GHSA-gx47-2cwv-p7wc.json index ebfadbf2e99..962a549d01c 100644 --- a/advisories/unreviewed/2023/08/GHSA-gx47-2cwv-p7wc/GHSA-gx47-2cwv-p7wc.json +++ b/advisories/unreviewed/2023/08/GHSA-gx47-2cwv-p7wc/GHSA-gx47-2cwv-p7wc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-25g2-j4cw-5mpg/GHSA-25g2-j4cw-5mpg.json b/advisories/unreviewed/2023/09/GHSA-25g2-j4cw-5mpg/GHSA-25g2-j4cw-5mpg.json index 2042d1af37d..060638c170c 100644 --- a/advisories/unreviewed/2023/09/GHSA-25g2-j4cw-5mpg/GHSA-25g2-j4cw-5mpg.json +++ b/advisories/unreviewed/2023/09/GHSA-25g2-j4cw-5mpg/GHSA-25g2-j4cw-5mpg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-2m76-hphm-wxpc/GHSA-2m76-hphm-wxpc.json b/advisories/unreviewed/2023/09/GHSA-2m76-hphm-wxpc/GHSA-2m76-hphm-wxpc.json index 9b85a54f2a6..a48b77040b0 100644 --- a/advisories/unreviewed/2023/09/GHSA-2m76-hphm-wxpc/GHSA-2m76-hphm-wxpc.json +++ b/advisories/unreviewed/2023/09/GHSA-2m76-hphm-wxpc/GHSA-2m76-hphm-wxpc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-2x89-ff84-h28p/GHSA-2x89-ff84-h28p.json b/advisories/unreviewed/2023/09/GHSA-2x89-ff84-h28p/GHSA-2x89-ff84-h28p.json index 3e6d1fbfd72..4b944a0abb1 100644 --- a/advisories/unreviewed/2023/09/GHSA-2x89-ff84-h28p/GHSA-2x89-ff84-h28p.json +++ b/advisories/unreviewed/2023/09/GHSA-2x89-ff84-h28p/GHSA-2x89-ff84-h28p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-3xh9-7994-gpvw/GHSA-3xh9-7994-gpvw.json b/advisories/unreviewed/2023/09/GHSA-3xh9-7994-gpvw/GHSA-3xh9-7994-gpvw.json index fe8c266d32d..321f6c938b6 100644 --- a/advisories/unreviewed/2023/09/GHSA-3xh9-7994-gpvw/GHSA-3xh9-7994-gpvw.json +++ b/advisories/unreviewed/2023/09/GHSA-3xh9-7994-gpvw/GHSA-3xh9-7994-gpvw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-4x8q-42cx-xvqv/GHSA-4x8q-42cx-xvqv.json b/advisories/unreviewed/2023/09/GHSA-4x8q-42cx-xvqv/GHSA-4x8q-42cx-xvqv.json index cb33ad3b482..aadd14062db 100644 --- a/advisories/unreviewed/2023/09/GHSA-4x8q-42cx-xvqv/GHSA-4x8q-42cx-xvqv.json +++ b/advisories/unreviewed/2023/09/GHSA-4x8q-42cx-xvqv/GHSA-4x8q-42cx-xvqv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-53r8-j48r-2w33/GHSA-53r8-j48r-2w33.json b/advisories/unreviewed/2023/09/GHSA-53r8-j48r-2w33/GHSA-53r8-j48r-2w33.json index 30299c47251..d2915a72f97 100644 --- a/advisories/unreviewed/2023/09/GHSA-53r8-j48r-2w33/GHSA-53r8-j48r-2w33.json +++ b/advisories/unreviewed/2023/09/GHSA-53r8-j48r-2w33/GHSA-53r8-j48r-2w33.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-69c2-jhx4-3ffr/GHSA-69c2-jhx4-3ffr.json b/advisories/unreviewed/2023/09/GHSA-69c2-jhx4-3ffr/GHSA-69c2-jhx4-3ffr.json index d4bdfd23615..f2e907ba59a 100644 --- a/advisories/unreviewed/2023/09/GHSA-69c2-jhx4-3ffr/GHSA-69c2-jhx4-3ffr.json +++ b/advisories/unreviewed/2023/09/GHSA-69c2-jhx4-3ffr/GHSA-69c2-jhx4-3ffr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-6jq3-hf5v-wr8q/GHSA-6jq3-hf5v-wr8q.json b/advisories/unreviewed/2023/09/GHSA-6jq3-hf5v-wr8q/GHSA-6jq3-hf5v-wr8q.json index 00c8a2a1055..9a88bde8bad 100644 --- a/advisories/unreviewed/2023/09/GHSA-6jq3-hf5v-wr8q/GHSA-6jq3-hf5v-wr8q.json +++ b/advisories/unreviewed/2023/09/GHSA-6jq3-hf5v-wr8q/GHSA-6jq3-hf5v-wr8q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-724g-5w99-h7cw/GHSA-724g-5w99-h7cw.json b/advisories/unreviewed/2023/09/GHSA-724g-5w99-h7cw/GHSA-724g-5w99-h7cw.json index 9019e06fa50..93d464f9253 100644 --- a/advisories/unreviewed/2023/09/GHSA-724g-5w99-h7cw/GHSA-724g-5w99-h7cw.json +++ b/advisories/unreviewed/2023/09/GHSA-724g-5w99-h7cw/GHSA-724g-5w99-h7cw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-74hh-q3mw-x758/GHSA-74hh-q3mw-x758.json b/advisories/unreviewed/2023/09/GHSA-74hh-q3mw-x758/GHSA-74hh-q3mw-x758.json index 3cb8966a881..42de4e8a17c 100644 --- a/advisories/unreviewed/2023/09/GHSA-74hh-q3mw-x758/GHSA-74hh-q3mw-x758.json +++ b/advisories/unreviewed/2023/09/GHSA-74hh-q3mw-x758/GHSA-74hh-q3mw-x758.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-7f59-f34w-2933/GHSA-7f59-f34w-2933.json b/advisories/unreviewed/2023/09/GHSA-7f59-f34w-2933/GHSA-7f59-f34w-2933.json index 4e6f817f10c..4f456587cd4 100644 --- a/advisories/unreviewed/2023/09/GHSA-7f59-f34w-2933/GHSA-7f59-f34w-2933.json +++ b/advisories/unreviewed/2023/09/GHSA-7f59-f34w-2933/GHSA-7f59-f34w-2933.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-7vqf-qxp2-qfv6/GHSA-7vqf-qxp2-qfv6.json b/advisories/unreviewed/2023/09/GHSA-7vqf-qxp2-qfv6/GHSA-7vqf-qxp2-qfv6.json index 4cbfeca93df..3da23e7a2be 100644 --- a/advisories/unreviewed/2023/09/GHSA-7vqf-qxp2-qfv6/GHSA-7vqf-qxp2-qfv6.json +++ b/advisories/unreviewed/2023/09/GHSA-7vqf-qxp2-qfv6/GHSA-7vqf-qxp2-qfv6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-cgqr-5qv8-49gr/GHSA-cgqr-5qv8-49gr.json b/advisories/unreviewed/2023/09/GHSA-cgqr-5qv8-49gr/GHSA-cgqr-5qv8-49gr.json index 717b7de99b0..d7391298fee 100644 --- a/advisories/unreviewed/2023/09/GHSA-cgqr-5qv8-49gr/GHSA-cgqr-5qv8-49gr.json +++ b/advisories/unreviewed/2023/09/GHSA-cgqr-5qv8-49gr/GHSA-cgqr-5qv8-49gr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-cpmq-c39j-pm97/GHSA-cpmq-c39j-pm97.json b/advisories/unreviewed/2023/09/GHSA-cpmq-c39j-pm97/GHSA-cpmq-c39j-pm97.json index 53ca9ecd298..98733fdd4cc 100644 --- a/advisories/unreviewed/2023/09/GHSA-cpmq-c39j-pm97/GHSA-cpmq-c39j-pm97.json +++ b/advisories/unreviewed/2023/09/GHSA-cpmq-c39j-pm97/GHSA-cpmq-c39j-pm97.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/09/GHSA-cqhg-vp8q-p8vh/GHSA-cqhg-vp8q-p8vh.json b/advisories/unreviewed/2023/09/GHSA-cqhg-vp8q-p8vh/GHSA-cqhg-vp8q-p8vh.json index df6588b1d4c..f9d5205f9aa 100644 --- a/advisories/unreviewed/2023/09/GHSA-cqhg-vp8q-p8vh/GHSA-cqhg-vp8q-p8vh.json +++ b/advisories/unreviewed/2023/09/GHSA-cqhg-vp8q-p8vh/GHSA-cqhg-vp8q-p8vh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-gm52-w723-gph8/GHSA-gm52-w723-gph8.json b/advisories/unreviewed/2023/09/GHSA-gm52-w723-gph8/GHSA-gm52-w723-gph8.json index 8ee7f292099..b3ad1dd6a57 100644 --- a/advisories/unreviewed/2023/09/GHSA-gm52-w723-gph8/GHSA-gm52-w723-gph8.json +++ b/advisories/unreviewed/2023/09/GHSA-gm52-w723-gph8/GHSA-gm52-w723-gph8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-hg4h-2m22-83j4/GHSA-hg4h-2m22-83j4.json b/advisories/unreviewed/2023/09/GHSA-hg4h-2m22-83j4/GHSA-hg4h-2m22-83j4.json index 959b32b1b72..35638b1d665 100644 --- a/advisories/unreviewed/2023/09/GHSA-hg4h-2m22-83j4/GHSA-hg4h-2m22-83j4.json +++ b/advisories/unreviewed/2023/09/GHSA-hg4h-2m22-83j4/GHSA-hg4h-2m22-83j4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-hv68-pmff-63fx/GHSA-hv68-pmff-63fx.json b/advisories/unreviewed/2023/09/GHSA-hv68-pmff-63fx/GHSA-hv68-pmff-63fx.json index d61f380280a..97b8ee0bec7 100644 --- a/advisories/unreviewed/2023/09/GHSA-hv68-pmff-63fx/GHSA-hv68-pmff-63fx.json +++ b/advisories/unreviewed/2023/09/GHSA-hv68-pmff-63fx/GHSA-hv68-pmff-63fx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/09/GHSA-j347-mq9x-whxh/GHSA-j347-mq9x-whxh.json b/advisories/unreviewed/2023/09/GHSA-j347-mq9x-whxh/GHSA-j347-mq9x-whxh.json index aec61afdbb5..24b700dde23 100644 --- a/advisories/unreviewed/2023/09/GHSA-j347-mq9x-whxh/GHSA-j347-mq9x-whxh.json +++ b/advisories/unreviewed/2023/09/GHSA-j347-mq9x-whxh/GHSA-j347-mq9x-whxh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-j5cr-rp69-4r8x/GHSA-j5cr-rp69-4r8x.json b/advisories/unreviewed/2023/09/GHSA-j5cr-rp69-4r8x/GHSA-j5cr-rp69-4r8x.json index 9fd18752a34..4326313de12 100644 --- a/advisories/unreviewed/2023/09/GHSA-j5cr-rp69-4r8x/GHSA-j5cr-rp69-4r8x.json +++ b/advisories/unreviewed/2023/09/GHSA-j5cr-rp69-4r8x/GHSA-j5cr-rp69-4r8x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-j6rc-chh6-q5hw/GHSA-j6rc-chh6-q5hw.json b/advisories/unreviewed/2023/09/GHSA-j6rc-chh6-q5hw/GHSA-j6rc-chh6-q5hw.json index 0f8b507e3f9..76c5c0cf101 100644 --- a/advisories/unreviewed/2023/09/GHSA-j6rc-chh6-q5hw/GHSA-j6rc-chh6-q5hw.json +++ b/advisories/unreviewed/2023/09/GHSA-j6rc-chh6-q5hw/GHSA-j6rc-chh6-q5hw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-j796-27g2-334f/GHSA-j796-27g2-334f.json b/advisories/unreviewed/2023/09/GHSA-j796-27g2-334f/GHSA-j796-27g2-334f.json index 282e6368e92..52f52229b66 100644 --- a/advisories/unreviewed/2023/09/GHSA-j796-27g2-334f/GHSA-j796-27g2-334f.json +++ b/advisories/unreviewed/2023/09/GHSA-j796-27g2-334f/GHSA-j796-27g2-334f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-j9pr-jq8h-jrmm/GHSA-j9pr-jq8h-jrmm.json b/advisories/unreviewed/2023/09/GHSA-j9pr-jq8h-jrmm/GHSA-j9pr-jq8h-jrmm.json index 5a1d3ae0e46..86ef1da2b4f 100644 --- a/advisories/unreviewed/2023/09/GHSA-j9pr-jq8h-jrmm/GHSA-j9pr-jq8h-jrmm.json +++ b/advisories/unreviewed/2023/09/GHSA-j9pr-jq8h-jrmm/GHSA-j9pr-jq8h-jrmm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/09/GHSA-jw6j-8p3q-xrff/GHSA-jw6j-8p3q-xrff.json b/advisories/unreviewed/2023/09/GHSA-jw6j-8p3q-xrff/GHSA-jw6j-8p3q-xrff.json index e6f2b7611e3..fa1f847b03d 100644 --- a/advisories/unreviewed/2023/09/GHSA-jw6j-8p3q-xrff/GHSA-jw6j-8p3q-xrff.json +++ b/advisories/unreviewed/2023/09/GHSA-jw6j-8p3q-xrff/GHSA-jw6j-8p3q-xrff.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-m2j3-fr23-v3jf/GHSA-m2j3-fr23-v3jf.json b/advisories/unreviewed/2023/09/GHSA-m2j3-fr23-v3jf/GHSA-m2j3-fr23-v3jf.json index 16fe511b4e8..d3d1c62a66a 100644 --- a/advisories/unreviewed/2023/09/GHSA-m2j3-fr23-v3jf/GHSA-m2j3-fr23-v3jf.json +++ b/advisories/unreviewed/2023/09/GHSA-m2j3-fr23-v3jf/GHSA-m2j3-fr23-v3jf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-mpx3-9hc8-9x6p/GHSA-mpx3-9hc8-9x6p.json b/advisories/unreviewed/2023/09/GHSA-mpx3-9hc8-9x6p/GHSA-mpx3-9hc8-9x6p.json index 8e0d66c4c6e..308f77539ef 100644 --- a/advisories/unreviewed/2023/09/GHSA-mpx3-9hc8-9x6p/GHSA-mpx3-9hc8-9x6p.json +++ b/advisories/unreviewed/2023/09/GHSA-mpx3-9hc8-9x6p/GHSA-mpx3-9hc8-9x6p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/09/GHSA-p37f-42mr-m82m/GHSA-p37f-42mr-m82m.json b/advisories/unreviewed/2023/09/GHSA-p37f-42mr-m82m/GHSA-p37f-42mr-m82m.json index cebeef2e4e9..7ac23ed1341 100644 --- a/advisories/unreviewed/2023/09/GHSA-p37f-42mr-m82m/GHSA-p37f-42mr-m82m.json +++ b/advisories/unreviewed/2023/09/GHSA-p37f-42mr-m82m/GHSA-p37f-42mr-m82m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/09/GHSA-q589-9gvc-g88r/GHSA-q589-9gvc-g88r.json b/advisories/unreviewed/2023/09/GHSA-q589-9gvc-g88r/GHSA-q589-9gvc-g88r.json index 3de2233c004..4662754090b 100644 --- a/advisories/unreviewed/2023/09/GHSA-q589-9gvc-g88r/GHSA-q589-9gvc-g88r.json +++ b/advisories/unreviewed/2023/09/GHSA-q589-9gvc-g88r/GHSA-q589-9gvc-g88r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-qj36-vvq7-xvm4/GHSA-qj36-vvq7-xvm4.json b/advisories/unreviewed/2023/09/GHSA-qj36-vvq7-xvm4/GHSA-qj36-vvq7-xvm4.json index 02096378daa..d37e6acea87 100644 --- a/advisories/unreviewed/2023/09/GHSA-qj36-vvq7-xvm4/GHSA-qj36-vvq7-xvm4.json +++ b/advisories/unreviewed/2023/09/GHSA-qj36-vvq7-xvm4/GHSA-qj36-vvq7-xvm4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-qmqc-m76c-pmrm/GHSA-qmqc-m76c-pmrm.json b/advisories/unreviewed/2023/09/GHSA-qmqc-m76c-pmrm/GHSA-qmqc-m76c-pmrm.json index f9fa4cb9a41..5beee191f93 100644 --- a/advisories/unreviewed/2023/09/GHSA-qmqc-m76c-pmrm/GHSA-qmqc-m76c-pmrm.json +++ b/advisories/unreviewed/2023/09/GHSA-qmqc-m76c-pmrm/GHSA-qmqc-m76c-pmrm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-qv7f-m5j8-v3c8/GHSA-qv7f-m5j8-v3c8.json b/advisories/unreviewed/2023/09/GHSA-qv7f-m5j8-v3c8/GHSA-qv7f-m5j8-v3c8.json index 49834a6d16c..200d79494d5 100644 --- a/advisories/unreviewed/2023/09/GHSA-qv7f-m5j8-v3c8/GHSA-qv7f-m5j8-v3c8.json +++ b/advisories/unreviewed/2023/09/GHSA-qv7f-m5j8-v3c8/GHSA-qv7f-m5j8-v3c8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-rfmm-9cg4-c4cw/GHSA-rfmm-9cg4-c4cw.json b/advisories/unreviewed/2023/09/GHSA-rfmm-9cg4-c4cw/GHSA-rfmm-9cg4-c4cw.json index 571ea14ddf7..067c195a5fb 100644 --- a/advisories/unreviewed/2023/09/GHSA-rfmm-9cg4-c4cw/GHSA-rfmm-9cg4-c4cw.json +++ b/advisories/unreviewed/2023/09/GHSA-rfmm-9cg4-c4cw/GHSA-rfmm-9cg4-c4cw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-rw46-pqg7-qwfj/GHSA-rw46-pqg7-qwfj.json b/advisories/unreviewed/2023/09/GHSA-rw46-pqg7-qwfj/GHSA-rw46-pqg7-qwfj.json index a05fac05794..26a5bd74186 100644 --- a/advisories/unreviewed/2023/09/GHSA-rw46-pqg7-qwfj/GHSA-rw46-pqg7-qwfj.json +++ b/advisories/unreviewed/2023/09/GHSA-rw46-pqg7-qwfj/GHSA-rw46-pqg7-qwfj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-v22h-mmjm-2mxc/GHSA-v22h-mmjm-2mxc.json b/advisories/unreviewed/2023/09/GHSA-v22h-mmjm-2mxc/GHSA-v22h-mmjm-2mxc.json index e1ef42f3487..fa9d636aae2 100644 --- a/advisories/unreviewed/2023/09/GHSA-v22h-mmjm-2mxc/GHSA-v22h-mmjm-2mxc.json +++ b/advisories/unreviewed/2023/09/GHSA-v22h-mmjm-2mxc/GHSA-v22h-mmjm-2mxc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-v5q8-jgc9-6m53/GHSA-v5q8-jgc9-6m53.json b/advisories/unreviewed/2023/09/GHSA-v5q8-jgc9-6m53/GHSA-v5q8-jgc9-6m53.json index fade25c403e..ae949e82093 100644 --- a/advisories/unreviewed/2023/09/GHSA-v5q8-jgc9-6m53/GHSA-v5q8-jgc9-6m53.json +++ b/advisories/unreviewed/2023/09/GHSA-v5q8-jgc9-6m53/GHSA-v5q8-jgc9-6m53.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/09/GHSA-vv5p-vgxx-4xv6/GHSA-vv5p-vgxx-4xv6.json b/advisories/unreviewed/2023/09/GHSA-vv5p-vgxx-4xv6/GHSA-vv5p-vgxx-4xv6.json index d30fd022a1d..24a08da927c 100644 --- a/advisories/unreviewed/2023/09/GHSA-vv5p-vgxx-4xv6/GHSA-vv5p-vgxx-4xv6.json +++ b/advisories/unreviewed/2023/09/GHSA-vv5p-vgxx-4xv6/GHSA-vv5p-vgxx-4xv6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-wp99-xcpc-rj24/GHSA-wp99-xcpc-rj24.json b/advisories/unreviewed/2023/09/GHSA-wp99-xcpc-rj24/GHSA-wp99-xcpc-rj24.json index 86978cfd65b..80a4a90fccc 100644 --- a/advisories/unreviewed/2023/09/GHSA-wp99-xcpc-rj24/GHSA-wp99-xcpc-rj24.json +++ b/advisories/unreviewed/2023/09/GHSA-wp99-xcpc-rj24/GHSA-wp99-xcpc-rj24.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-x883-2jfm-r5rm/GHSA-x883-2jfm-r5rm.json b/advisories/unreviewed/2023/09/GHSA-x883-2jfm-r5rm/GHSA-x883-2jfm-r5rm.json index 8be58c0a81a..7ea7e60725b 100644 --- a/advisories/unreviewed/2023/09/GHSA-x883-2jfm-r5rm/GHSA-x883-2jfm-r5rm.json +++ b/advisories/unreviewed/2023/09/GHSA-x883-2jfm-r5rm/GHSA-x883-2jfm-r5rm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/09/GHSA-xcjm-fw7q-2734/GHSA-xcjm-fw7q-2734.json b/advisories/unreviewed/2023/09/GHSA-xcjm-fw7q-2734/GHSA-xcjm-fw7q-2734.json index d7fda4a44e4..d0bf8426488 100644 --- a/advisories/unreviewed/2023/09/GHSA-xcjm-fw7q-2734/GHSA-xcjm-fw7q-2734.json +++ b/advisories/unreviewed/2023/09/GHSA-xcjm-fw7q-2734/GHSA-xcjm-fw7q-2734.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-xf85-x6pf-x9q6/GHSA-xf85-x6pf-x9q6.json b/advisories/unreviewed/2023/09/GHSA-xf85-x6pf-x9q6/GHSA-xf85-x6pf-x9q6.json index 09a43065654..9e9e2bffbd2 100644 --- a/advisories/unreviewed/2023/09/GHSA-xf85-x6pf-x9q6/GHSA-xf85-x6pf-x9q6.json +++ b/advisories/unreviewed/2023/09/GHSA-xf85-x6pf-x9q6/GHSA-xf85-x6pf-x9q6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-xp54-3r74-8f3f/GHSA-xp54-3r74-8f3f.json b/advisories/unreviewed/2023/09/GHSA-xp54-3r74-8f3f/GHSA-xp54-3r74-8f3f.json index 5cd29dbb43a..c551a4829d9 100644 --- a/advisories/unreviewed/2023/09/GHSA-xp54-3r74-8f3f/GHSA-xp54-3r74-8f3f.json +++ b/advisories/unreviewed/2023/09/GHSA-xp54-3r74-8f3f/GHSA-xp54-3r74-8f3f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-xrxr-87wr-8j4m/GHSA-xrxr-87wr-8j4m.json b/advisories/unreviewed/2023/09/GHSA-xrxr-87wr-8j4m/GHSA-xrxr-87wr-8j4m.json index 25e5120c77b..3b008314105 100644 --- a/advisories/unreviewed/2023/09/GHSA-xrxr-87wr-8j4m/GHSA-xrxr-87wr-8j4m.json +++ b/advisories/unreviewed/2023/09/GHSA-xrxr-87wr-8j4m/GHSA-xrxr-87wr-8j4m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-xvj9-4p6c-c3xm/GHSA-xvj9-4p6c-c3xm.json b/advisories/unreviewed/2023/09/GHSA-xvj9-4p6c-c3xm/GHSA-xvj9-4p6c-c3xm.json index 0db6eb8059e..2fb69177351 100644 --- a/advisories/unreviewed/2023/09/GHSA-xvj9-4p6c-c3xm/GHSA-xvj9-4p6c-c3xm.json +++ b/advisories/unreviewed/2023/09/GHSA-xvj9-4p6c-c3xm/GHSA-xvj9-4p6c-c3xm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-244w-39h6-2f5r/GHSA-244w-39h6-2f5r.json b/advisories/unreviewed/2023/10/GHSA-244w-39h6-2f5r/GHSA-244w-39h6-2f5r.json index 02bf4e92633..199095cce76 100644 --- a/advisories/unreviewed/2023/10/GHSA-244w-39h6-2f5r/GHSA-244w-39h6-2f5r.json +++ b/advisories/unreviewed/2023/10/GHSA-244w-39h6-2f5r/GHSA-244w-39h6-2f5r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-2793-qrcg-qwq3/GHSA-2793-qrcg-qwq3.json b/advisories/unreviewed/2023/10/GHSA-2793-qrcg-qwq3/GHSA-2793-qrcg-qwq3.json index 72e0a5f7ea0..0c63e93e652 100644 --- a/advisories/unreviewed/2023/10/GHSA-2793-qrcg-qwq3/GHSA-2793-qrcg-qwq3.json +++ b/advisories/unreviewed/2023/10/GHSA-2793-qrcg-qwq3/GHSA-2793-qrcg-qwq3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-2wmp-7qf6-49px/GHSA-2wmp-7qf6-49px.json b/advisories/unreviewed/2023/10/GHSA-2wmp-7qf6-49px/GHSA-2wmp-7qf6-49px.json index 8b888e811db..9b3ff62d242 100644 --- a/advisories/unreviewed/2023/10/GHSA-2wmp-7qf6-49px/GHSA-2wmp-7qf6-49px.json +++ b/advisories/unreviewed/2023/10/GHSA-2wmp-7qf6-49px/GHSA-2wmp-7qf6-49px.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-393w-2929-cxcg/GHSA-393w-2929-cxcg.json b/advisories/unreviewed/2023/10/GHSA-393w-2929-cxcg/GHSA-393w-2929-cxcg.json index ce7996d984a..1cb70b141ac 100644 --- a/advisories/unreviewed/2023/10/GHSA-393w-2929-cxcg/GHSA-393w-2929-cxcg.json +++ b/advisories/unreviewed/2023/10/GHSA-393w-2929-cxcg/GHSA-393w-2929-cxcg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-3g9v-h3h6-7qf4/GHSA-3g9v-h3h6-7qf4.json b/advisories/unreviewed/2023/10/GHSA-3g9v-h3h6-7qf4/GHSA-3g9v-h3h6-7qf4.json index 43c29cd3559..48c1327542c 100644 --- a/advisories/unreviewed/2023/10/GHSA-3g9v-h3h6-7qf4/GHSA-3g9v-h3h6-7qf4.json +++ b/advisories/unreviewed/2023/10/GHSA-3g9v-h3h6-7qf4/GHSA-3g9v-h3h6-7qf4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-3mc9-3c2c-xqg4/GHSA-3mc9-3c2c-xqg4.json b/advisories/unreviewed/2023/10/GHSA-3mc9-3c2c-xqg4/GHSA-3mc9-3c2c-xqg4.json index 4601bead339..bd50bb2cfa7 100644 --- a/advisories/unreviewed/2023/10/GHSA-3mc9-3c2c-xqg4/GHSA-3mc9-3c2c-xqg4.json +++ b/advisories/unreviewed/2023/10/GHSA-3mc9-3c2c-xqg4/GHSA-3mc9-3c2c-xqg4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-4gqw-x6ww-pxrr/GHSA-4gqw-x6ww-pxrr.json b/advisories/unreviewed/2023/10/GHSA-4gqw-x6ww-pxrr/GHSA-4gqw-x6ww-pxrr.json index f22ea0863f0..a21ca4eed98 100644 --- a/advisories/unreviewed/2023/10/GHSA-4gqw-x6ww-pxrr/GHSA-4gqw-x6ww-pxrr.json +++ b/advisories/unreviewed/2023/10/GHSA-4gqw-x6ww-pxrr/GHSA-4gqw-x6ww-pxrr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-4j2g-cpw5-pjvq/GHSA-4j2g-cpw5-pjvq.json b/advisories/unreviewed/2023/10/GHSA-4j2g-cpw5-pjvq/GHSA-4j2g-cpw5-pjvq.json index ed4509a5865..ae28712b13a 100644 --- a/advisories/unreviewed/2023/10/GHSA-4j2g-cpw5-pjvq/GHSA-4j2g-cpw5-pjvq.json +++ b/advisories/unreviewed/2023/10/GHSA-4j2g-cpw5-pjvq/GHSA-4j2g-cpw5-pjvq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-4m7g-cm2c-xffg/GHSA-4m7g-cm2c-xffg.json b/advisories/unreviewed/2023/10/GHSA-4m7g-cm2c-xffg/GHSA-4m7g-cm2c-xffg.json index 79d453fa3ad..44e40bbe309 100644 --- a/advisories/unreviewed/2023/10/GHSA-4m7g-cm2c-xffg/GHSA-4m7g-cm2c-xffg.json +++ b/advisories/unreviewed/2023/10/GHSA-4m7g-cm2c-xffg/GHSA-4m7g-cm2c-xffg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-4vrv-8x2h-44vh/GHSA-4vrv-8x2h-44vh.json b/advisories/unreviewed/2023/10/GHSA-4vrv-8x2h-44vh/GHSA-4vrv-8x2h-44vh.json index 069b4ee278f..7a28e0baae4 100644 --- a/advisories/unreviewed/2023/10/GHSA-4vrv-8x2h-44vh/GHSA-4vrv-8x2h-44vh.json +++ b/advisories/unreviewed/2023/10/GHSA-4vrv-8x2h-44vh/GHSA-4vrv-8x2h-44vh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-4wm5-qf3g-46h5/GHSA-4wm5-qf3g-46h5.json b/advisories/unreviewed/2023/10/GHSA-4wm5-qf3g-46h5/GHSA-4wm5-qf3g-46h5.json index b59f3fb14ab..361d5ced6cf 100644 --- a/advisories/unreviewed/2023/10/GHSA-4wm5-qf3g-46h5/GHSA-4wm5-qf3g-46h5.json +++ b/advisories/unreviewed/2023/10/GHSA-4wm5-qf3g-46h5/GHSA-4wm5-qf3g-46h5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-5356-67pr-8ffv/GHSA-5356-67pr-8ffv.json b/advisories/unreviewed/2023/10/GHSA-5356-67pr-8ffv/GHSA-5356-67pr-8ffv.json index 209e45c32ad..e0b58817449 100644 --- a/advisories/unreviewed/2023/10/GHSA-5356-67pr-8ffv/GHSA-5356-67pr-8ffv.json +++ b/advisories/unreviewed/2023/10/GHSA-5356-67pr-8ffv/GHSA-5356-67pr-8ffv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-54fp-2g66-5c89/GHSA-54fp-2g66-5c89.json b/advisories/unreviewed/2023/10/GHSA-54fp-2g66-5c89/GHSA-54fp-2g66-5c89.json index c9e3a0e233f..16d8761adab 100644 --- a/advisories/unreviewed/2023/10/GHSA-54fp-2g66-5c89/GHSA-54fp-2g66-5c89.json +++ b/advisories/unreviewed/2023/10/GHSA-54fp-2g66-5c89/GHSA-54fp-2g66-5c89.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-5688-p8vm-h8r5/GHSA-5688-p8vm-h8r5.json b/advisories/unreviewed/2023/10/GHSA-5688-p8vm-h8r5/GHSA-5688-p8vm-h8r5.json index 6a97c3628ba..5af175e1455 100644 --- a/advisories/unreviewed/2023/10/GHSA-5688-p8vm-h8r5/GHSA-5688-p8vm-h8r5.json +++ b/advisories/unreviewed/2023/10/GHSA-5688-p8vm-h8r5/GHSA-5688-p8vm-h8r5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-5845-35rx-r9pr/GHSA-5845-35rx-r9pr.json b/advisories/unreviewed/2023/10/GHSA-5845-35rx-r9pr/GHSA-5845-35rx-r9pr.json index 0475bd656cd..b5cc78d32c4 100644 --- a/advisories/unreviewed/2023/10/GHSA-5845-35rx-r9pr/GHSA-5845-35rx-r9pr.json +++ b/advisories/unreviewed/2023/10/GHSA-5845-35rx-r9pr/GHSA-5845-35rx-r9pr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-59c6-46qg-fj99/GHSA-59c6-46qg-fj99.json b/advisories/unreviewed/2023/10/GHSA-59c6-46qg-fj99/GHSA-59c6-46qg-fj99.json index 556b1c58ee1..38626e885b7 100644 --- a/advisories/unreviewed/2023/10/GHSA-59c6-46qg-fj99/GHSA-59c6-46qg-fj99.json +++ b/advisories/unreviewed/2023/10/GHSA-59c6-46qg-fj99/GHSA-59c6-46qg-fj99.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-5j29-6cpw-mcc3/GHSA-5j29-6cpw-mcc3.json b/advisories/unreviewed/2023/10/GHSA-5j29-6cpw-mcc3/GHSA-5j29-6cpw-mcc3.json index 3982a6cf59a..93686c9d2e0 100644 --- a/advisories/unreviewed/2023/10/GHSA-5j29-6cpw-mcc3/GHSA-5j29-6cpw-mcc3.json +++ b/advisories/unreviewed/2023/10/GHSA-5j29-6cpw-mcc3/GHSA-5j29-6cpw-mcc3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-5j99-chp6-p2gh/GHSA-5j99-chp6-p2gh.json b/advisories/unreviewed/2023/10/GHSA-5j99-chp6-p2gh/GHSA-5j99-chp6-p2gh.json index bd864f94582..60ce2af015e 100644 --- a/advisories/unreviewed/2023/10/GHSA-5j99-chp6-p2gh/GHSA-5j99-chp6-p2gh.json +++ b/advisories/unreviewed/2023/10/GHSA-5j99-chp6-p2gh/GHSA-5j99-chp6-p2gh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-5px7-6vf2-rrfm/GHSA-5px7-6vf2-rrfm.json b/advisories/unreviewed/2023/10/GHSA-5px7-6vf2-rrfm/GHSA-5px7-6vf2-rrfm.json index 0e17c5b1139..4217d000d3b 100644 --- a/advisories/unreviewed/2023/10/GHSA-5px7-6vf2-rrfm/GHSA-5px7-6vf2-rrfm.json +++ b/advisories/unreviewed/2023/10/GHSA-5px7-6vf2-rrfm/GHSA-5px7-6vf2-rrfm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-5q66-9mc9-28r5/GHSA-5q66-9mc9-28r5.json b/advisories/unreviewed/2023/10/GHSA-5q66-9mc9-28r5/GHSA-5q66-9mc9-28r5.json index c7a70a5bf6a..4b19626bfdf 100644 --- a/advisories/unreviewed/2023/10/GHSA-5q66-9mc9-28r5/GHSA-5q66-9mc9-28r5.json +++ b/advisories/unreviewed/2023/10/GHSA-5q66-9mc9-28r5/GHSA-5q66-9mc9-28r5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-6jcp-96px-ch37/GHSA-6jcp-96px-ch37.json b/advisories/unreviewed/2023/10/GHSA-6jcp-96px-ch37/GHSA-6jcp-96px-ch37.json index 23078921869..c46d812f1ac 100644 --- a/advisories/unreviewed/2023/10/GHSA-6jcp-96px-ch37/GHSA-6jcp-96px-ch37.json +++ b/advisories/unreviewed/2023/10/GHSA-6jcp-96px-ch37/GHSA-6jcp-96px-ch37.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-6p3p-8mc6-973v/GHSA-6p3p-8mc6-973v.json b/advisories/unreviewed/2023/10/GHSA-6p3p-8mc6-973v/GHSA-6p3p-8mc6-973v.json index 2aec5efad62..a7f86dc58c1 100644 --- a/advisories/unreviewed/2023/10/GHSA-6p3p-8mc6-973v/GHSA-6p3p-8mc6-973v.json +++ b/advisories/unreviewed/2023/10/GHSA-6p3p-8mc6-973v/GHSA-6p3p-8mc6-973v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-6r24-858h-vm25/GHSA-6r24-858h-vm25.json b/advisories/unreviewed/2023/10/GHSA-6r24-858h-vm25/GHSA-6r24-858h-vm25.json index 85af1401c42..ef1e25fcc71 100644 --- a/advisories/unreviewed/2023/10/GHSA-6r24-858h-vm25/GHSA-6r24-858h-vm25.json +++ b/advisories/unreviewed/2023/10/GHSA-6r24-858h-vm25/GHSA-6r24-858h-vm25.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-6rvq-8whp-rp5p/GHSA-6rvq-8whp-rp5p.json b/advisories/unreviewed/2023/10/GHSA-6rvq-8whp-rp5p/GHSA-6rvq-8whp-rp5p.json index 660a1779cc7..40b896d0cfb 100644 --- a/advisories/unreviewed/2023/10/GHSA-6rvq-8whp-rp5p/GHSA-6rvq-8whp-rp5p.json +++ b/advisories/unreviewed/2023/10/GHSA-6rvq-8whp-rp5p/GHSA-6rvq-8whp-rp5p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-6xrp-q4vc-3m65/GHSA-6xrp-q4vc-3m65.json b/advisories/unreviewed/2023/10/GHSA-6xrp-q4vc-3m65/GHSA-6xrp-q4vc-3m65.json index 5687a5d7a84..a0772f6dbcc 100644 --- a/advisories/unreviewed/2023/10/GHSA-6xrp-q4vc-3m65/GHSA-6xrp-q4vc-3m65.json +++ b/advisories/unreviewed/2023/10/GHSA-6xrp-q4vc-3m65/GHSA-6xrp-q4vc-3m65.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-79p6-hc5c-r998/GHSA-79p6-hc5c-r998.json b/advisories/unreviewed/2023/10/GHSA-79p6-hc5c-r998/GHSA-79p6-hc5c-r998.json index 3b777e37cdd..da56309fdac 100644 --- a/advisories/unreviewed/2023/10/GHSA-79p6-hc5c-r998/GHSA-79p6-hc5c-r998.json +++ b/advisories/unreviewed/2023/10/GHSA-79p6-hc5c-r998/GHSA-79p6-hc5c-r998.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-7f38-v98x-v25m/GHSA-7f38-v98x-v25m.json b/advisories/unreviewed/2023/10/GHSA-7f38-v98x-v25m/GHSA-7f38-v98x-v25m.json index 689583aea40..aef6672ed4d 100644 --- a/advisories/unreviewed/2023/10/GHSA-7f38-v98x-v25m/GHSA-7f38-v98x-v25m.json +++ b/advisories/unreviewed/2023/10/GHSA-7f38-v98x-v25m/GHSA-7f38-v98x-v25m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-7w34-g63q-q826/GHSA-7w34-g63q-q826.json b/advisories/unreviewed/2023/10/GHSA-7w34-g63q-q826/GHSA-7w34-g63q-q826.json index 109ca3b8276..20ea2eb2beb 100644 --- a/advisories/unreviewed/2023/10/GHSA-7w34-g63q-q826/GHSA-7w34-g63q-q826.json +++ b/advisories/unreviewed/2023/10/GHSA-7w34-g63q-q826/GHSA-7w34-g63q-q826.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-8v3h-cxg7-7jhv/GHSA-8v3h-cxg7-7jhv.json b/advisories/unreviewed/2023/10/GHSA-8v3h-cxg7-7jhv/GHSA-8v3h-cxg7-7jhv.json index 4b75c382117..ed52a0ceef9 100644 --- a/advisories/unreviewed/2023/10/GHSA-8v3h-cxg7-7jhv/GHSA-8v3h-cxg7-7jhv.json +++ b/advisories/unreviewed/2023/10/GHSA-8v3h-cxg7-7jhv/GHSA-8v3h-cxg7-7jhv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-8xp7-rf4h-mfmg/GHSA-8xp7-rf4h-mfmg.json b/advisories/unreviewed/2023/10/GHSA-8xp7-rf4h-mfmg/GHSA-8xp7-rf4h-mfmg.json index 494029aa524..f3d4227a72d 100644 --- a/advisories/unreviewed/2023/10/GHSA-8xp7-rf4h-mfmg/GHSA-8xp7-rf4h-mfmg.json +++ b/advisories/unreviewed/2023/10/GHSA-8xp7-rf4h-mfmg/GHSA-8xp7-rf4h-mfmg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-9579-5vrc-wr3m/GHSA-9579-5vrc-wr3m.json b/advisories/unreviewed/2023/10/GHSA-9579-5vrc-wr3m/GHSA-9579-5vrc-wr3m.json index d435f074f45..dd91b1b6cea 100644 --- a/advisories/unreviewed/2023/10/GHSA-9579-5vrc-wr3m/GHSA-9579-5vrc-wr3m.json +++ b/advisories/unreviewed/2023/10/GHSA-9579-5vrc-wr3m/GHSA-9579-5vrc-wr3m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-95w3-gxxh-3g77/GHSA-95w3-gxxh-3g77.json b/advisories/unreviewed/2023/10/GHSA-95w3-gxxh-3g77/GHSA-95w3-gxxh-3g77.json index 475fe56c847..21623c4dd2e 100644 --- a/advisories/unreviewed/2023/10/GHSA-95w3-gxxh-3g77/GHSA-95w3-gxxh-3g77.json +++ b/advisories/unreviewed/2023/10/GHSA-95w3-gxxh-3g77/GHSA-95w3-gxxh-3g77.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-9853-qwxj-5wrp/GHSA-9853-qwxj-5wrp.json b/advisories/unreviewed/2023/10/GHSA-9853-qwxj-5wrp/GHSA-9853-qwxj-5wrp.json index 312ac7d9e74..ac9c3905ce1 100644 --- a/advisories/unreviewed/2023/10/GHSA-9853-qwxj-5wrp/GHSA-9853-qwxj-5wrp.json +++ b/advisories/unreviewed/2023/10/GHSA-9853-qwxj-5wrp/GHSA-9853-qwxj-5wrp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-9hq3-7chc-xff2/GHSA-9hq3-7chc-xff2.json b/advisories/unreviewed/2023/10/GHSA-9hq3-7chc-xff2/GHSA-9hq3-7chc-xff2.json index b69e5fec449..64cb92756da 100644 --- a/advisories/unreviewed/2023/10/GHSA-9hq3-7chc-xff2/GHSA-9hq3-7chc-xff2.json +++ b/advisories/unreviewed/2023/10/GHSA-9hq3-7chc-xff2/GHSA-9hq3-7chc-xff2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-9r67-wf83-q2q5/GHSA-9r67-wf83-q2q5.json b/advisories/unreviewed/2023/10/GHSA-9r67-wf83-q2q5/GHSA-9r67-wf83-q2q5.json index 95f5b226cf2..bf4b6f05cf4 100644 --- a/advisories/unreviewed/2023/10/GHSA-9r67-wf83-q2q5/GHSA-9r67-wf83-q2q5.json +++ b/advisories/unreviewed/2023/10/GHSA-9r67-wf83-q2q5/GHSA-9r67-wf83-q2q5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-c3vq-mmhq-xqf4/GHSA-c3vq-mmhq-xqf4.json b/advisories/unreviewed/2023/10/GHSA-c3vq-mmhq-xqf4/GHSA-c3vq-mmhq-xqf4.json index f6d964f1a74..b77bb71869c 100644 --- a/advisories/unreviewed/2023/10/GHSA-c3vq-mmhq-xqf4/GHSA-c3vq-mmhq-xqf4.json +++ b/advisories/unreviewed/2023/10/GHSA-c3vq-mmhq-xqf4/GHSA-c3vq-mmhq-xqf4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-c787-qqv5-cm85/GHSA-c787-qqv5-cm85.json b/advisories/unreviewed/2023/10/GHSA-c787-qqv5-cm85/GHSA-c787-qqv5-cm85.json index 0ca1469e0d0..462279eca49 100644 --- a/advisories/unreviewed/2023/10/GHSA-c787-qqv5-cm85/GHSA-c787-qqv5-cm85.json +++ b/advisories/unreviewed/2023/10/GHSA-c787-qqv5-cm85/GHSA-c787-qqv5-cm85.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-cch3-mcjx-jmcr/GHSA-cch3-mcjx-jmcr.json b/advisories/unreviewed/2023/10/GHSA-cch3-mcjx-jmcr/GHSA-cch3-mcjx-jmcr.json index 8d151828f31..2f6c7be7485 100644 --- a/advisories/unreviewed/2023/10/GHSA-cch3-mcjx-jmcr/GHSA-cch3-mcjx-jmcr.json +++ b/advisories/unreviewed/2023/10/GHSA-cch3-mcjx-jmcr/GHSA-cch3-mcjx-jmcr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-cpxx-4qwp-7xpq/GHSA-cpxx-4qwp-7xpq.json b/advisories/unreviewed/2023/10/GHSA-cpxx-4qwp-7xpq/GHSA-cpxx-4qwp-7xpq.json index dc933be9fc6..3ef1c079b7e 100644 --- a/advisories/unreviewed/2023/10/GHSA-cpxx-4qwp-7xpq/GHSA-cpxx-4qwp-7xpq.json +++ b/advisories/unreviewed/2023/10/GHSA-cpxx-4qwp-7xpq/GHSA-cpxx-4qwp-7xpq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-cq5q-99pr-fc9j/GHSA-cq5q-99pr-fc9j.json b/advisories/unreviewed/2023/10/GHSA-cq5q-99pr-fc9j/GHSA-cq5q-99pr-fc9j.json index 3172713bbcb..b5c112bfa8b 100644 --- a/advisories/unreviewed/2023/10/GHSA-cq5q-99pr-fc9j/GHSA-cq5q-99pr-fc9j.json +++ b/advisories/unreviewed/2023/10/GHSA-cq5q-99pr-fc9j/GHSA-cq5q-99pr-fc9j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-fcr8-rj58-cvpj/GHSA-fcr8-rj58-cvpj.json b/advisories/unreviewed/2023/10/GHSA-fcr8-rj58-cvpj/GHSA-fcr8-rj58-cvpj.json index f602f87b589..4fc9cfe23a8 100644 --- a/advisories/unreviewed/2023/10/GHSA-fcr8-rj58-cvpj/GHSA-fcr8-rj58-cvpj.json +++ b/advisories/unreviewed/2023/10/GHSA-fcr8-rj58-cvpj/GHSA-fcr8-rj58-cvpj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-fcwr-mx87-mcf2/GHSA-fcwr-mx87-mcf2.json b/advisories/unreviewed/2023/10/GHSA-fcwr-mx87-mcf2/GHSA-fcwr-mx87-mcf2.json index 6f73cba37e6..c88e5715013 100644 --- a/advisories/unreviewed/2023/10/GHSA-fcwr-mx87-mcf2/GHSA-fcwr-mx87-mcf2.json +++ b/advisories/unreviewed/2023/10/GHSA-fcwr-mx87-mcf2/GHSA-fcwr-mx87-mcf2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-fr45-3pq8-cqp4/GHSA-fr45-3pq8-cqp4.json b/advisories/unreviewed/2023/10/GHSA-fr45-3pq8-cqp4/GHSA-fr45-3pq8-cqp4.json index f95774bdff5..386f3e14dfc 100644 --- a/advisories/unreviewed/2023/10/GHSA-fr45-3pq8-cqp4/GHSA-fr45-3pq8-cqp4.json +++ b/advisories/unreviewed/2023/10/GHSA-fr45-3pq8-cqp4/GHSA-fr45-3pq8-cqp4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-fvv9-2jpm-h3rr/GHSA-fvv9-2jpm-h3rr.json b/advisories/unreviewed/2023/10/GHSA-fvv9-2jpm-h3rr/GHSA-fvv9-2jpm-h3rr.json index 947f821349f..ce2330f9cd1 100644 --- a/advisories/unreviewed/2023/10/GHSA-fvv9-2jpm-h3rr/GHSA-fvv9-2jpm-h3rr.json +++ b/advisories/unreviewed/2023/10/GHSA-fvv9-2jpm-h3rr/GHSA-fvv9-2jpm-h3rr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-g6rq-2jq4-98mr/GHSA-g6rq-2jq4-98mr.json b/advisories/unreviewed/2023/10/GHSA-g6rq-2jq4-98mr/GHSA-g6rq-2jq4-98mr.json index 83c47181637..7e4e288152c 100644 --- a/advisories/unreviewed/2023/10/GHSA-g6rq-2jq4-98mr/GHSA-g6rq-2jq4-98mr.json +++ b/advisories/unreviewed/2023/10/GHSA-g6rq-2jq4-98mr/GHSA-g6rq-2jq4-98mr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-gr28-6h8g-ggvq/GHSA-gr28-6h8g-ggvq.json b/advisories/unreviewed/2023/10/GHSA-gr28-6h8g-ggvq/GHSA-gr28-6h8g-ggvq.json index cf3a8247f5b..ae0edf99ebb 100644 --- a/advisories/unreviewed/2023/10/GHSA-gr28-6h8g-ggvq/GHSA-gr28-6h8g-ggvq.json +++ b/advisories/unreviewed/2023/10/GHSA-gr28-6h8g-ggvq/GHSA-gr28-6h8g-ggvq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-grc3-9hxr-2h57/GHSA-grc3-9hxr-2h57.json b/advisories/unreviewed/2023/10/GHSA-grc3-9hxr-2h57/GHSA-grc3-9hxr-2h57.json index bdaa257e560..b92373f35fc 100644 --- a/advisories/unreviewed/2023/10/GHSA-grc3-9hxr-2h57/GHSA-grc3-9hxr-2h57.json +++ b/advisories/unreviewed/2023/10/GHSA-grc3-9hxr-2h57/GHSA-grc3-9hxr-2h57.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-h4pg-m697-86cr/GHSA-h4pg-m697-86cr.json b/advisories/unreviewed/2023/10/GHSA-h4pg-m697-86cr/GHSA-h4pg-m697-86cr.json index f5f92bb2e99..346d0196ff5 100644 --- a/advisories/unreviewed/2023/10/GHSA-h4pg-m697-86cr/GHSA-h4pg-m697-86cr.json +++ b/advisories/unreviewed/2023/10/GHSA-h4pg-m697-86cr/GHSA-h4pg-m697-86cr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-hjhh-2xr7-hmvp/GHSA-hjhh-2xr7-hmvp.json b/advisories/unreviewed/2023/10/GHSA-hjhh-2xr7-hmvp/GHSA-hjhh-2xr7-hmvp.json index 7aa33383e57..7142bcdaf4d 100644 --- a/advisories/unreviewed/2023/10/GHSA-hjhh-2xr7-hmvp/GHSA-hjhh-2xr7-hmvp.json +++ b/advisories/unreviewed/2023/10/GHSA-hjhh-2xr7-hmvp/GHSA-hjhh-2xr7-hmvp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-j4cf-7mc7-2299/GHSA-j4cf-7mc7-2299.json b/advisories/unreviewed/2023/10/GHSA-j4cf-7mc7-2299/GHSA-j4cf-7mc7-2299.json index 713b14f3cc4..dcf3f9499e7 100644 --- a/advisories/unreviewed/2023/10/GHSA-j4cf-7mc7-2299/GHSA-j4cf-7mc7-2299.json +++ b/advisories/unreviewed/2023/10/GHSA-j4cf-7mc7-2299/GHSA-j4cf-7mc7-2299.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-j4jr-x49m-p2hp/GHSA-j4jr-x49m-p2hp.json b/advisories/unreviewed/2023/10/GHSA-j4jr-x49m-p2hp/GHSA-j4jr-x49m-p2hp.json index 0d284be466d..2b008239aec 100644 --- a/advisories/unreviewed/2023/10/GHSA-j4jr-x49m-p2hp/GHSA-j4jr-x49m-p2hp.json +++ b/advisories/unreviewed/2023/10/GHSA-j4jr-x49m-p2hp/GHSA-j4jr-x49m-p2hp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-j6fm-28rm-xqwj/GHSA-j6fm-28rm-xqwj.json b/advisories/unreviewed/2023/10/GHSA-j6fm-28rm-xqwj/GHSA-j6fm-28rm-xqwj.json index 596d8a65406..84c7d32cf35 100644 --- a/advisories/unreviewed/2023/10/GHSA-j6fm-28rm-xqwj/GHSA-j6fm-28rm-xqwj.json +++ b/advisories/unreviewed/2023/10/GHSA-j6fm-28rm-xqwj/GHSA-j6fm-28rm-xqwj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-jgcx-mx3w-x54f/GHSA-jgcx-mx3w-x54f.json b/advisories/unreviewed/2023/10/GHSA-jgcx-mx3w-x54f/GHSA-jgcx-mx3w-x54f.json index 2927d1e5a3b..9e06e19f33c 100644 --- a/advisories/unreviewed/2023/10/GHSA-jgcx-mx3w-x54f/GHSA-jgcx-mx3w-x54f.json +++ b/advisories/unreviewed/2023/10/GHSA-jgcx-mx3w-x54f/GHSA-jgcx-mx3w-x54f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-jq3c-jwqq-c2qg/GHSA-jq3c-jwqq-c2qg.json b/advisories/unreviewed/2023/10/GHSA-jq3c-jwqq-c2qg/GHSA-jq3c-jwqq-c2qg.json index ff110bf7346..31267ae3c87 100644 --- a/advisories/unreviewed/2023/10/GHSA-jq3c-jwqq-c2qg/GHSA-jq3c-jwqq-c2qg.json +++ b/advisories/unreviewed/2023/10/GHSA-jq3c-jwqq-c2qg/GHSA-jq3c-jwqq-c2qg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-jqvh-93qp-x9fh/GHSA-jqvh-93qp-x9fh.json b/advisories/unreviewed/2023/10/GHSA-jqvh-93qp-x9fh/GHSA-jqvh-93qp-x9fh.json index 7ac680c74ce..42938bbca53 100644 --- a/advisories/unreviewed/2023/10/GHSA-jqvh-93qp-x9fh/GHSA-jqvh-93qp-x9fh.json +++ b/advisories/unreviewed/2023/10/GHSA-jqvh-93qp-x9fh/GHSA-jqvh-93qp-x9fh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-m3wv-72v2-v6f6/GHSA-m3wv-72v2-v6f6.json b/advisories/unreviewed/2023/10/GHSA-m3wv-72v2-v6f6/GHSA-m3wv-72v2-v6f6.json index e70fb8a5926..b9fc3ea1a85 100644 --- a/advisories/unreviewed/2023/10/GHSA-m3wv-72v2-v6f6/GHSA-m3wv-72v2-v6f6.json +++ b/advisories/unreviewed/2023/10/GHSA-m3wv-72v2-v6f6/GHSA-m3wv-72v2-v6f6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-mmjf-wxcw-v9fp/GHSA-mmjf-wxcw-v9fp.json b/advisories/unreviewed/2023/10/GHSA-mmjf-wxcw-v9fp/GHSA-mmjf-wxcw-v9fp.json index 2296b99bc6c..da80b85d288 100644 --- a/advisories/unreviewed/2023/10/GHSA-mmjf-wxcw-v9fp/GHSA-mmjf-wxcw-v9fp.json +++ b/advisories/unreviewed/2023/10/GHSA-mmjf-wxcw-v9fp/GHSA-mmjf-wxcw-v9fp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-mrhc-jwc8-xfc6/GHSA-mrhc-jwc8-xfc6.json b/advisories/unreviewed/2023/10/GHSA-mrhc-jwc8-xfc6/GHSA-mrhc-jwc8-xfc6.json index 8455fa2bd76..f7e7f2d4e9e 100644 --- a/advisories/unreviewed/2023/10/GHSA-mrhc-jwc8-xfc6/GHSA-mrhc-jwc8-xfc6.json +++ b/advisories/unreviewed/2023/10/GHSA-mrhc-jwc8-xfc6/GHSA-mrhc-jwc8-xfc6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-p45v-gv4f-hrhp/GHSA-p45v-gv4f-hrhp.json b/advisories/unreviewed/2023/10/GHSA-p45v-gv4f-hrhp/GHSA-p45v-gv4f-hrhp.json index 35e60f9aaac..0efe19968fc 100644 --- a/advisories/unreviewed/2023/10/GHSA-p45v-gv4f-hrhp/GHSA-p45v-gv4f-hrhp.json +++ b/advisories/unreviewed/2023/10/GHSA-p45v-gv4f-hrhp/GHSA-p45v-gv4f-hrhp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-p95c-gfqf-9gph/GHSA-p95c-gfqf-9gph.json b/advisories/unreviewed/2023/10/GHSA-p95c-gfqf-9gph/GHSA-p95c-gfqf-9gph.json index 4647932c242..523eedc2383 100644 --- a/advisories/unreviewed/2023/10/GHSA-p95c-gfqf-9gph/GHSA-p95c-gfqf-9gph.json +++ b/advisories/unreviewed/2023/10/GHSA-p95c-gfqf-9gph/GHSA-p95c-gfqf-9gph.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-pj3v-wfg6-gcpq/GHSA-pj3v-wfg6-gcpq.json b/advisories/unreviewed/2023/10/GHSA-pj3v-wfg6-gcpq/GHSA-pj3v-wfg6-gcpq.json index 4b201f6aa07..a29ccfb9d10 100644 --- a/advisories/unreviewed/2023/10/GHSA-pj3v-wfg6-gcpq/GHSA-pj3v-wfg6-gcpq.json +++ b/advisories/unreviewed/2023/10/GHSA-pj3v-wfg6-gcpq/GHSA-pj3v-wfg6-gcpq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-q586-vvpv-cj23/GHSA-q586-vvpv-cj23.json b/advisories/unreviewed/2023/10/GHSA-q586-vvpv-cj23/GHSA-q586-vvpv-cj23.json index 96fb45698ba..85a62c7cdd1 100644 --- a/advisories/unreviewed/2023/10/GHSA-q586-vvpv-cj23/GHSA-q586-vvpv-cj23.json +++ b/advisories/unreviewed/2023/10/GHSA-q586-vvpv-cj23/GHSA-q586-vvpv-cj23.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-qr2g-34w7-h29g/GHSA-qr2g-34w7-h29g.json b/advisories/unreviewed/2023/10/GHSA-qr2g-34w7-h29g/GHSA-qr2g-34w7-h29g.json index 94f18ee7fc1..971dee4d153 100644 --- a/advisories/unreviewed/2023/10/GHSA-qr2g-34w7-h29g/GHSA-qr2g-34w7-h29g.json +++ b/advisories/unreviewed/2023/10/GHSA-qr2g-34w7-h29g/GHSA-qr2g-34w7-h29g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-r5j7-pwg5-35p9/GHSA-r5j7-pwg5-35p9.json b/advisories/unreviewed/2023/10/GHSA-r5j7-pwg5-35p9/GHSA-r5j7-pwg5-35p9.json index 74823895be5..ca2556a10ec 100644 --- a/advisories/unreviewed/2023/10/GHSA-r5j7-pwg5-35p9/GHSA-r5j7-pwg5-35p9.json +++ b/advisories/unreviewed/2023/10/GHSA-r5j7-pwg5-35p9/GHSA-r5j7-pwg5-35p9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-r928-44jm-2rqp/GHSA-r928-44jm-2rqp.json b/advisories/unreviewed/2023/10/GHSA-r928-44jm-2rqp/GHSA-r928-44jm-2rqp.json index 4bfbce78e5d..8e642a2976d 100644 --- a/advisories/unreviewed/2023/10/GHSA-r928-44jm-2rqp/GHSA-r928-44jm-2rqp.json +++ b/advisories/unreviewed/2023/10/GHSA-r928-44jm-2rqp/GHSA-r928-44jm-2rqp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-rh56-v4f2-38m7/GHSA-rh56-v4f2-38m7.json b/advisories/unreviewed/2023/10/GHSA-rh56-v4f2-38m7/GHSA-rh56-v4f2-38m7.json index c21e6c561f6..c619b478aae 100644 --- a/advisories/unreviewed/2023/10/GHSA-rh56-v4f2-38m7/GHSA-rh56-v4f2-38m7.json +++ b/advisories/unreviewed/2023/10/GHSA-rh56-v4f2-38m7/GHSA-rh56-v4f2-38m7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-v4f6-358x-v44f/GHSA-v4f6-358x-v44f.json b/advisories/unreviewed/2023/10/GHSA-v4f6-358x-v44f/GHSA-v4f6-358x-v44f.json index 244abc20cbe..ee7b28d53fd 100644 --- a/advisories/unreviewed/2023/10/GHSA-v4f6-358x-v44f/GHSA-v4f6-358x-v44f.json +++ b/advisories/unreviewed/2023/10/GHSA-v4f6-358x-v44f/GHSA-v4f6-358x-v44f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-v8r4-r5f4-jp7j/GHSA-v8r4-r5f4-jp7j.json b/advisories/unreviewed/2023/10/GHSA-v8r4-r5f4-jp7j/GHSA-v8r4-r5f4-jp7j.json index 634ac2c0a7a..b158ada1df5 100644 --- a/advisories/unreviewed/2023/10/GHSA-v8r4-r5f4-jp7j/GHSA-v8r4-r5f4-jp7j.json +++ b/advisories/unreviewed/2023/10/GHSA-v8r4-r5f4-jp7j/GHSA-v8r4-r5f4-jp7j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-vf8m-p3wg-hqwv/GHSA-vf8m-p3wg-hqwv.json b/advisories/unreviewed/2023/10/GHSA-vf8m-p3wg-hqwv/GHSA-vf8m-p3wg-hqwv.json index 1107fa3f65a..7250d7631c4 100644 --- a/advisories/unreviewed/2023/10/GHSA-vf8m-p3wg-hqwv/GHSA-vf8m-p3wg-hqwv.json +++ b/advisories/unreviewed/2023/10/GHSA-vf8m-p3wg-hqwv/GHSA-vf8m-p3wg-hqwv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-vrfh-cg8j-whm2/GHSA-vrfh-cg8j-whm2.json b/advisories/unreviewed/2023/10/GHSA-vrfh-cg8j-whm2/GHSA-vrfh-cg8j-whm2.json index d5180eef351..7b4fa6d36c4 100644 --- a/advisories/unreviewed/2023/10/GHSA-vrfh-cg8j-whm2/GHSA-vrfh-cg8j-whm2.json +++ b/advisories/unreviewed/2023/10/GHSA-vrfh-cg8j-whm2/GHSA-vrfh-cg8j-whm2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-w77j-c5x9-mgf9/GHSA-w77j-c5x9-mgf9.json b/advisories/unreviewed/2023/10/GHSA-w77j-c5x9-mgf9/GHSA-w77j-c5x9-mgf9.json index ecb7cb20c6d..04bdf04fba1 100644 --- a/advisories/unreviewed/2023/10/GHSA-w77j-c5x9-mgf9/GHSA-w77j-c5x9-mgf9.json +++ b/advisories/unreviewed/2023/10/GHSA-w77j-c5x9-mgf9/GHSA-w77j-c5x9-mgf9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-wg3r-r65c-g2p5/GHSA-wg3r-r65c-g2p5.json b/advisories/unreviewed/2023/10/GHSA-wg3r-r65c-g2p5/GHSA-wg3r-r65c-g2p5.json index d2a243deed2..1e74675a390 100644 --- a/advisories/unreviewed/2023/10/GHSA-wg3r-r65c-g2p5/GHSA-wg3r-r65c-g2p5.json +++ b/advisories/unreviewed/2023/10/GHSA-wg3r-r65c-g2p5/GHSA-wg3r-r65c-g2p5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-wh38-jq3r-39hr/GHSA-wh38-jq3r-39hr.json b/advisories/unreviewed/2023/10/GHSA-wh38-jq3r-39hr/GHSA-wh38-jq3r-39hr.json index f7d0a5d6d24..6eed5c323e6 100644 --- a/advisories/unreviewed/2023/10/GHSA-wh38-jq3r-39hr/GHSA-wh38-jq3r-39hr.json +++ b/advisories/unreviewed/2023/10/GHSA-wh38-jq3r-39hr/GHSA-wh38-jq3r-39hr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-wh6f-p9hp-fpwj/GHSA-wh6f-p9hp-fpwj.json b/advisories/unreviewed/2023/10/GHSA-wh6f-p9hp-fpwj/GHSA-wh6f-p9hp-fpwj.json index ba33144bbb9..533bc90c75a 100644 --- a/advisories/unreviewed/2023/10/GHSA-wh6f-p9hp-fpwj/GHSA-wh6f-p9hp-fpwj.json +++ b/advisories/unreviewed/2023/10/GHSA-wh6f-p9hp-fpwj/GHSA-wh6f-p9hp-fpwj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-x5g4-5r6g-2v75/GHSA-x5g4-5r6g-2v75.json b/advisories/unreviewed/2023/10/GHSA-x5g4-5r6g-2v75/GHSA-x5g4-5r6g-2v75.json index f662f5c5723..08811691cfa 100644 --- a/advisories/unreviewed/2023/10/GHSA-x5g4-5r6g-2v75/GHSA-x5g4-5r6g-2v75.json +++ b/advisories/unreviewed/2023/10/GHSA-x5g4-5r6g-2v75/GHSA-x5g4-5r6g-2v75.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-2mj4-5v84-3p3j/GHSA-2mj4-5v84-3p3j.json b/advisories/unreviewed/2023/11/GHSA-2mj4-5v84-3p3j/GHSA-2mj4-5v84-3p3j.json index 90a1a8f9547..52cec5d35d8 100644 --- a/advisories/unreviewed/2023/11/GHSA-2mj4-5v84-3p3j/GHSA-2mj4-5v84-3p3j.json +++ b/advisories/unreviewed/2023/11/GHSA-2mj4-5v84-3p3j/GHSA-2mj4-5v84-3p3j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-2mmf-rqvr-m9qr/GHSA-2mmf-rqvr-m9qr.json b/advisories/unreviewed/2023/11/GHSA-2mmf-rqvr-m9qr/GHSA-2mmf-rqvr-m9qr.json index e46e90ab9e7..8bad1050c4d 100644 --- a/advisories/unreviewed/2023/11/GHSA-2mmf-rqvr-m9qr/GHSA-2mmf-rqvr-m9qr.json +++ b/advisories/unreviewed/2023/11/GHSA-2mmf-rqvr-m9qr/GHSA-2mmf-rqvr-m9qr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-335g-966f-cg64/GHSA-335g-966f-cg64.json b/advisories/unreviewed/2023/11/GHSA-335g-966f-cg64/GHSA-335g-966f-cg64.json index 24f43be5b2b..3ebdabe84dc 100644 --- a/advisories/unreviewed/2023/11/GHSA-335g-966f-cg64/GHSA-335g-966f-cg64.json +++ b/advisories/unreviewed/2023/11/GHSA-335g-966f-cg64/GHSA-335g-966f-cg64.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-38fm-2h4v-3qf4/GHSA-38fm-2h4v-3qf4.json b/advisories/unreviewed/2023/11/GHSA-38fm-2h4v-3qf4/GHSA-38fm-2h4v-3qf4.json index 7e8c85be982..cb74be21518 100644 --- a/advisories/unreviewed/2023/11/GHSA-38fm-2h4v-3qf4/GHSA-38fm-2h4v-3qf4.json +++ b/advisories/unreviewed/2023/11/GHSA-38fm-2h4v-3qf4/GHSA-38fm-2h4v-3qf4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-398m-55cm-6j6x/GHSA-398m-55cm-6j6x.json b/advisories/unreviewed/2023/11/GHSA-398m-55cm-6j6x/GHSA-398m-55cm-6j6x.json index 453c0a72945..59ba98bcba5 100644 --- a/advisories/unreviewed/2023/11/GHSA-398m-55cm-6j6x/GHSA-398m-55cm-6j6x.json +++ b/advisories/unreviewed/2023/11/GHSA-398m-55cm-6j6x/GHSA-398m-55cm-6j6x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-3pxf-gwjv-f45v/GHSA-3pxf-gwjv-f45v.json b/advisories/unreviewed/2023/11/GHSA-3pxf-gwjv-f45v/GHSA-3pxf-gwjv-f45v.json index ebf35f86834..faed3f145a1 100644 --- a/advisories/unreviewed/2023/11/GHSA-3pxf-gwjv-f45v/GHSA-3pxf-gwjv-f45v.json +++ b/advisories/unreviewed/2023/11/GHSA-3pxf-gwjv-f45v/GHSA-3pxf-gwjv-f45v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-3vg4-xh27-p2mx/GHSA-3vg4-xh27-p2mx.json b/advisories/unreviewed/2023/11/GHSA-3vg4-xh27-p2mx/GHSA-3vg4-xh27-p2mx.json index 227fc18c85d..99977a0b287 100644 --- a/advisories/unreviewed/2023/11/GHSA-3vg4-xh27-p2mx/GHSA-3vg4-xh27-p2mx.json +++ b/advisories/unreviewed/2023/11/GHSA-3vg4-xh27-p2mx/GHSA-3vg4-xh27-p2mx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-4284-q573-745v/GHSA-4284-q573-745v.json b/advisories/unreviewed/2023/11/GHSA-4284-q573-745v/GHSA-4284-q573-745v.json index 743b8f28c13..abac0471a18 100644 --- a/advisories/unreviewed/2023/11/GHSA-4284-q573-745v/GHSA-4284-q573-745v.json +++ b/advisories/unreviewed/2023/11/GHSA-4284-q573-745v/GHSA-4284-q573-745v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-4c68-prv2-7cp2/GHSA-4c68-prv2-7cp2.json b/advisories/unreviewed/2023/11/GHSA-4c68-prv2-7cp2/GHSA-4c68-prv2-7cp2.json index 310d21182b9..e5f333fef4b 100644 --- a/advisories/unreviewed/2023/11/GHSA-4c68-prv2-7cp2/GHSA-4c68-prv2-7cp2.json +++ b/advisories/unreviewed/2023/11/GHSA-4c68-prv2-7cp2/GHSA-4c68-prv2-7cp2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-4h8h-f935-r975/GHSA-4h8h-f935-r975.json b/advisories/unreviewed/2023/11/GHSA-4h8h-f935-r975/GHSA-4h8h-f935-r975.json index 7051173f458..d8210869d6f 100644 --- a/advisories/unreviewed/2023/11/GHSA-4h8h-f935-r975/GHSA-4h8h-f935-r975.json +++ b/advisories/unreviewed/2023/11/GHSA-4h8h-f935-r975/GHSA-4h8h-f935-r975.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-4q8c-66pm-rmjp/GHSA-4q8c-66pm-rmjp.json b/advisories/unreviewed/2023/11/GHSA-4q8c-66pm-rmjp/GHSA-4q8c-66pm-rmjp.json index 69393915efa..fdd94ef31a1 100644 --- a/advisories/unreviewed/2023/11/GHSA-4q8c-66pm-rmjp/GHSA-4q8c-66pm-rmjp.json +++ b/advisories/unreviewed/2023/11/GHSA-4q8c-66pm-rmjp/GHSA-4q8c-66pm-rmjp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-4rg7-8mp3-c7wh/GHSA-4rg7-8mp3-c7wh.json b/advisories/unreviewed/2023/11/GHSA-4rg7-8mp3-c7wh/GHSA-4rg7-8mp3-c7wh.json index 4d8e660f2e6..e2ffec19f29 100644 --- a/advisories/unreviewed/2023/11/GHSA-4rg7-8mp3-c7wh/GHSA-4rg7-8mp3-c7wh.json +++ b/advisories/unreviewed/2023/11/GHSA-4rg7-8mp3-c7wh/GHSA-4rg7-8mp3-c7wh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-5gxq-f8fx-9847/GHSA-5gxq-f8fx-9847.json b/advisories/unreviewed/2023/11/GHSA-5gxq-f8fx-9847/GHSA-5gxq-f8fx-9847.json index 53c424eb2c6..104402653b0 100644 --- a/advisories/unreviewed/2023/11/GHSA-5gxq-f8fx-9847/GHSA-5gxq-f8fx-9847.json +++ b/advisories/unreviewed/2023/11/GHSA-5gxq-f8fx-9847/GHSA-5gxq-f8fx-9847.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-5mf2-6q82-4wf6/GHSA-5mf2-6q82-4wf6.json b/advisories/unreviewed/2023/11/GHSA-5mf2-6q82-4wf6/GHSA-5mf2-6q82-4wf6.json index fea8ea73514..0f5400f58be 100644 --- a/advisories/unreviewed/2023/11/GHSA-5mf2-6q82-4wf6/GHSA-5mf2-6q82-4wf6.json +++ b/advisories/unreviewed/2023/11/GHSA-5mf2-6q82-4wf6/GHSA-5mf2-6q82-4wf6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-5qfq-28xq-59vr/GHSA-5qfq-28xq-59vr.json b/advisories/unreviewed/2023/11/GHSA-5qfq-28xq-59vr/GHSA-5qfq-28xq-59vr.json index 39447de889b..217d5fd982c 100644 --- a/advisories/unreviewed/2023/11/GHSA-5qfq-28xq-59vr/GHSA-5qfq-28xq-59vr.json +++ b/advisories/unreviewed/2023/11/GHSA-5qfq-28xq-59vr/GHSA-5qfq-28xq-59vr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-5wf7-vwpm-xxwx/GHSA-5wf7-vwpm-xxwx.json b/advisories/unreviewed/2023/11/GHSA-5wf7-vwpm-xxwx/GHSA-5wf7-vwpm-xxwx.json index 333e084cbfe..ab01ff21cee 100644 --- a/advisories/unreviewed/2023/11/GHSA-5wf7-vwpm-xxwx/GHSA-5wf7-vwpm-xxwx.json +++ b/advisories/unreviewed/2023/11/GHSA-5wf7-vwpm-xxwx/GHSA-5wf7-vwpm-xxwx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-5wr2-pxjw-4gw9/GHSA-5wr2-pxjw-4gw9.json b/advisories/unreviewed/2023/11/GHSA-5wr2-pxjw-4gw9/GHSA-5wr2-pxjw-4gw9.json index 327de664963..19057cff356 100644 --- a/advisories/unreviewed/2023/11/GHSA-5wr2-pxjw-4gw9/GHSA-5wr2-pxjw-4gw9.json +++ b/advisories/unreviewed/2023/11/GHSA-5wr2-pxjw-4gw9/GHSA-5wr2-pxjw-4gw9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-7523-xcc2-m3rm/GHSA-7523-xcc2-m3rm.json b/advisories/unreviewed/2023/11/GHSA-7523-xcc2-m3rm/GHSA-7523-xcc2-m3rm.json index 36873710849..5321fb2cec1 100644 --- a/advisories/unreviewed/2023/11/GHSA-7523-xcc2-m3rm/GHSA-7523-xcc2-m3rm.json +++ b/advisories/unreviewed/2023/11/GHSA-7523-xcc2-m3rm/GHSA-7523-xcc2-m3rm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-79qx-mc76-5r2m/GHSA-79qx-mc76-5r2m.json b/advisories/unreviewed/2023/11/GHSA-79qx-mc76-5r2m/GHSA-79qx-mc76-5r2m.json index 2ea09a337dc..b653345cf68 100644 --- a/advisories/unreviewed/2023/11/GHSA-79qx-mc76-5r2m/GHSA-79qx-mc76-5r2m.json +++ b/advisories/unreviewed/2023/11/GHSA-79qx-mc76-5r2m/GHSA-79qx-mc76-5r2m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-7wxp-fqwj-pfgq/GHSA-7wxp-fqwj-pfgq.json b/advisories/unreviewed/2023/11/GHSA-7wxp-fqwj-pfgq/GHSA-7wxp-fqwj-pfgq.json index bc8d4330704..1fe0b562344 100644 --- a/advisories/unreviewed/2023/11/GHSA-7wxp-fqwj-pfgq/GHSA-7wxp-fqwj-pfgq.json +++ b/advisories/unreviewed/2023/11/GHSA-7wxp-fqwj-pfgq/GHSA-7wxp-fqwj-pfgq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-7x7g-p6hc-7cp3/GHSA-7x7g-p6hc-7cp3.json b/advisories/unreviewed/2023/11/GHSA-7x7g-p6hc-7cp3/GHSA-7x7g-p6hc-7cp3.json index e7c04b28c7a..e4e45a4fb26 100644 --- a/advisories/unreviewed/2023/11/GHSA-7x7g-p6hc-7cp3/GHSA-7x7g-p6hc-7cp3.json +++ b/advisories/unreviewed/2023/11/GHSA-7x7g-p6hc-7cp3/GHSA-7x7g-p6hc-7cp3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-853g-q2x9-h9rr/GHSA-853g-q2x9-h9rr.json b/advisories/unreviewed/2023/11/GHSA-853g-q2x9-h9rr/GHSA-853g-q2x9-h9rr.json index d71218536c7..cf45dcdd17a 100644 --- a/advisories/unreviewed/2023/11/GHSA-853g-q2x9-h9rr/GHSA-853g-q2x9-h9rr.json +++ b/advisories/unreviewed/2023/11/GHSA-853g-q2x9-h9rr/GHSA-853g-q2x9-h9rr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-8rrh-9958-v272/GHSA-8rrh-9958-v272.json b/advisories/unreviewed/2023/11/GHSA-8rrh-9958-v272/GHSA-8rrh-9958-v272.json index 427b1781f8d..33727394c77 100644 --- a/advisories/unreviewed/2023/11/GHSA-8rrh-9958-v272/GHSA-8rrh-9958-v272.json +++ b/advisories/unreviewed/2023/11/GHSA-8rrh-9958-v272/GHSA-8rrh-9958-v272.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-93g9-r9cm-chf3/GHSA-93g9-r9cm-chf3.json b/advisories/unreviewed/2023/11/GHSA-93g9-r9cm-chf3/GHSA-93g9-r9cm-chf3.json index 967a25ca212..7ae0dfe3dad 100644 --- a/advisories/unreviewed/2023/11/GHSA-93g9-r9cm-chf3/GHSA-93g9-r9cm-chf3.json +++ b/advisories/unreviewed/2023/11/GHSA-93g9-r9cm-chf3/GHSA-93g9-r9cm-chf3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-93q2-9p4x-289c/GHSA-93q2-9p4x-289c.json b/advisories/unreviewed/2023/11/GHSA-93q2-9p4x-289c/GHSA-93q2-9p4x-289c.json index 5072f0b4e20..64559b89727 100644 --- a/advisories/unreviewed/2023/11/GHSA-93q2-9p4x-289c/GHSA-93q2-9p4x-289c.json +++ b/advisories/unreviewed/2023/11/GHSA-93q2-9p4x-289c/GHSA-93q2-9p4x-289c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-97qp-7h55-jxgr/GHSA-97qp-7h55-jxgr.json b/advisories/unreviewed/2023/11/GHSA-97qp-7h55-jxgr/GHSA-97qp-7h55-jxgr.json index fdb48be8f63..c8e8b5645ab 100644 --- a/advisories/unreviewed/2023/11/GHSA-97qp-7h55-jxgr/GHSA-97qp-7h55-jxgr.json +++ b/advisories/unreviewed/2023/11/GHSA-97qp-7h55-jxgr/GHSA-97qp-7h55-jxgr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-9vrm-5j5h-x98j/GHSA-9vrm-5j5h-x98j.json b/advisories/unreviewed/2023/11/GHSA-9vrm-5j5h-x98j/GHSA-9vrm-5j5h-x98j.json index 0eb4f3dd31a..755ad14c1fc 100644 --- a/advisories/unreviewed/2023/11/GHSA-9vrm-5j5h-x98j/GHSA-9vrm-5j5h-x98j.json +++ b/advisories/unreviewed/2023/11/GHSA-9vrm-5j5h-x98j/GHSA-9vrm-5j5h-x98j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-c2q9-6g49-ppcf/GHSA-c2q9-6g49-ppcf.json b/advisories/unreviewed/2023/11/GHSA-c2q9-6g49-ppcf/GHSA-c2q9-6g49-ppcf.json index 889bfec06be..33ccaa6190e 100644 --- a/advisories/unreviewed/2023/11/GHSA-c2q9-6g49-ppcf/GHSA-c2q9-6g49-ppcf.json +++ b/advisories/unreviewed/2023/11/GHSA-c2q9-6g49-ppcf/GHSA-c2q9-6g49-ppcf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-c368-3rx3-26ww/GHSA-c368-3rx3-26ww.json b/advisories/unreviewed/2023/11/GHSA-c368-3rx3-26ww/GHSA-c368-3rx3-26ww.json index 91b557343d2..92138b811e2 100644 --- a/advisories/unreviewed/2023/11/GHSA-c368-3rx3-26ww/GHSA-c368-3rx3-26ww.json +++ b/advisories/unreviewed/2023/11/GHSA-c368-3rx3-26ww/GHSA-c368-3rx3-26ww.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-c4hh-p8jf-m389/GHSA-c4hh-p8jf-m389.json b/advisories/unreviewed/2023/11/GHSA-c4hh-p8jf-m389/GHSA-c4hh-p8jf-m389.json index 17095a693f9..c7797ca11d5 100644 --- a/advisories/unreviewed/2023/11/GHSA-c4hh-p8jf-m389/GHSA-c4hh-p8jf-m389.json +++ b/advisories/unreviewed/2023/11/GHSA-c4hh-p8jf-m389/GHSA-c4hh-p8jf-m389.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-ch98-xc2f-x3rf/GHSA-ch98-xc2f-x3rf.json b/advisories/unreviewed/2023/11/GHSA-ch98-xc2f-x3rf/GHSA-ch98-xc2f-x3rf.json index b79b9b718f3..686d33fa84d 100644 --- a/advisories/unreviewed/2023/11/GHSA-ch98-xc2f-x3rf/GHSA-ch98-xc2f-x3rf.json +++ b/advisories/unreviewed/2023/11/GHSA-ch98-xc2f-x3rf/GHSA-ch98-xc2f-x3rf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-cjrw-wqcm-hrgm/GHSA-cjrw-wqcm-hrgm.json b/advisories/unreviewed/2023/11/GHSA-cjrw-wqcm-hrgm/GHSA-cjrw-wqcm-hrgm.json index 58bc3532c1a..52d88228364 100644 --- a/advisories/unreviewed/2023/11/GHSA-cjrw-wqcm-hrgm/GHSA-cjrw-wqcm-hrgm.json +++ b/advisories/unreviewed/2023/11/GHSA-cjrw-wqcm-hrgm/GHSA-cjrw-wqcm-hrgm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-fh5c-3jxg-8hgw/GHSA-fh5c-3jxg-8hgw.json b/advisories/unreviewed/2023/11/GHSA-fh5c-3jxg-8hgw/GHSA-fh5c-3jxg-8hgw.json index c2368e913bf..10ca41b950a 100644 --- a/advisories/unreviewed/2023/11/GHSA-fh5c-3jxg-8hgw/GHSA-fh5c-3jxg-8hgw.json +++ b/advisories/unreviewed/2023/11/GHSA-fh5c-3jxg-8hgw/GHSA-fh5c-3jxg-8hgw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-fq85-f77r-7g65/GHSA-fq85-f77r-7g65.json b/advisories/unreviewed/2023/11/GHSA-fq85-f77r-7g65/GHSA-fq85-f77r-7g65.json index fe32f567892..29ede863eb3 100644 --- a/advisories/unreviewed/2023/11/GHSA-fq85-f77r-7g65/GHSA-fq85-f77r-7g65.json +++ b/advisories/unreviewed/2023/11/GHSA-fq85-f77r-7g65/GHSA-fq85-f77r-7g65.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-fvxr-6v23-vmqv/GHSA-fvxr-6v23-vmqv.json b/advisories/unreviewed/2023/11/GHSA-fvxr-6v23-vmqv/GHSA-fvxr-6v23-vmqv.json index f8a3fde0dda..272b56c3c8c 100644 --- a/advisories/unreviewed/2023/11/GHSA-fvxr-6v23-vmqv/GHSA-fvxr-6v23-vmqv.json +++ b/advisories/unreviewed/2023/11/GHSA-fvxr-6v23-vmqv/GHSA-fvxr-6v23-vmqv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-g7x3-4v2w-9vxw/GHSA-g7x3-4v2w-9vxw.json b/advisories/unreviewed/2023/11/GHSA-g7x3-4v2w-9vxw/GHSA-g7x3-4v2w-9vxw.json index 532e2b26629..ddec57a11af 100644 --- a/advisories/unreviewed/2023/11/GHSA-g7x3-4v2w-9vxw/GHSA-g7x3-4v2w-9vxw.json +++ b/advisories/unreviewed/2023/11/GHSA-g7x3-4v2w-9vxw/GHSA-g7x3-4v2w-9vxw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-hg2h-ghj3-h2p4/GHSA-hg2h-ghj3-h2p4.json b/advisories/unreviewed/2023/11/GHSA-hg2h-ghj3-h2p4/GHSA-hg2h-ghj3-h2p4.json index 1961276d449..3fc82a1eee8 100644 --- a/advisories/unreviewed/2023/11/GHSA-hg2h-ghj3-h2p4/GHSA-hg2h-ghj3-h2p4.json +++ b/advisories/unreviewed/2023/11/GHSA-hg2h-ghj3-h2p4/GHSA-hg2h-ghj3-h2p4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-hph9-wr3c-x97w/GHSA-hph9-wr3c-x97w.json b/advisories/unreviewed/2023/11/GHSA-hph9-wr3c-x97w/GHSA-hph9-wr3c-x97w.json index 647ea40c530..45313861886 100644 --- a/advisories/unreviewed/2023/11/GHSA-hph9-wr3c-x97w/GHSA-hph9-wr3c-x97w.json +++ b/advisories/unreviewed/2023/11/GHSA-hph9-wr3c-x97w/GHSA-hph9-wr3c-x97w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-hw5x-3h55-qr8x/GHSA-hw5x-3h55-qr8x.json b/advisories/unreviewed/2023/11/GHSA-hw5x-3h55-qr8x/GHSA-hw5x-3h55-qr8x.json index d96403d35f5..c88769299b2 100644 --- a/advisories/unreviewed/2023/11/GHSA-hw5x-3h55-qr8x/GHSA-hw5x-3h55-qr8x.json +++ b/advisories/unreviewed/2023/11/GHSA-hw5x-3h55-qr8x/GHSA-hw5x-3h55-qr8x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-hw7v-x4gj-9m6p/GHSA-hw7v-x4gj-9m6p.json b/advisories/unreviewed/2023/11/GHSA-hw7v-x4gj-9m6p/GHSA-hw7v-x4gj-9m6p.json index f665e9269a0..259e873d930 100644 --- a/advisories/unreviewed/2023/11/GHSA-hw7v-x4gj-9m6p/GHSA-hw7v-x4gj-9m6p.json +++ b/advisories/unreviewed/2023/11/GHSA-hw7v-x4gj-9m6p/GHSA-hw7v-x4gj-9m6p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-j233-pm3q-vxq5/GHSA-j233-pm3q-vxq5.json b/advisories/unreviewed/2023/11/GHSA-j233-pm3q-vxq5/GHSA-j233-pm3q-vxq5.json index 6576f10adde..e42691dec8c 100644 --- a/advisories/unreviewed/2023/11/GHSA-j233-pm3q-vxq5/GHSA-j233-pm3q-vxq5.json +++ b/advisories/unreviewed/2023/11/GHSA-j233-pm3q-vxq5/GHSA-j233-pm3q-vxq5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-j6p3-4997-wc62/GHSA-j6p3-4997-wc62.json b/advisories/unreviewed/2023/11/GHSA-j6p3-4997-wc62/GHSA-j6p3-4997-wc62.json index 63121ae9353..c9731a08fa4 100644 --- a/advisories/unreviewed/2023/11/GHSA-j6p3-4997-wc62/GHSA-j6p3-4997-wc62.json +++ b/advisories/unreviewed/2023/11/GHSA-j6p3-4997-wc62/GHSA-j6p3-4997-wc62.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-j9pw-9wpv-54j6/GHSA-j9pw-9wpv-54j6.json b/advisories/unreviewed/2023/11/GHSA-j9pw-9wpv-54j6/GHSA-j9pw-9wpv-54j6.json index 8309b6e186d..6c30d678436 100644 --- a/advisories/unreviewed/2023/11/GHSA-j9pw-9wpv-54j6/GHSA-j9pw-9wpv-54j6.json +++ b/advisories/unreviewed/2023/11/GHSA-j9pw-9wpv-54j6/GHSA-j9pw-9wpv-54j6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-jq2p-9w9x-5vq6/GHSA-jq2p-9w9x-5vq6.json b/advisories/unreviewed/2023/11/GHSA-jq2p-9w9x-5vq6/GHSA-jq2p-9w9x-5vq6.json index 99a46c62f7a..fd3d83439f6 100644 --- a/advisories/unreviewed/2023/11/GHSA-jq2p-9w9x-5vq6/GHSA-jq2p-9w9x-5vq6.json +++ b/advisories/unreviewed/2023/11/GHSA-jq2p-9w9x-5vq6/GHSA-jq2p-9w9x-5vq6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-jxhw-ffg4-7r69/GHSA-jxhw-ffg4-7r69.json b/advisories/unreviewed/2023/11/GHSA-jxhw-ffg4-7r69/GHSA-jxhw-ffg4-7r69.json index edc2a83c363..f83392c04be 100644 --- a/advisories/unreviewed/2023/11/GHSA-jxhw-ffg4-7r69/GHSA-jxhw-ffg4-7r69.json +++ b/advisories/unreviewed/2023/11/GHSA-jxhw-ffg4-7r69/GHSA-jxhw-ffg4-7r69.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-m23j-24cg-vhc8/GHSA-m23j-24cg-vhc8.json b/advisories/unreviewed/2023/11/GHSA-m23j-24cg-vhc8/GHSA-m23j-24cg-vhc8.json index 2619bee7ccc..f9f3cc2b53d 100644 --- a/advisories/unreviewed/2023/11/GHSA-m23j-24cg-vhc8/GHSA-m23j-24cg-vhc8.json +++ b/advisories/unreviewed/2023/11/GHSA-m23j-24cg-vhc8/GHSA-m23j-24cg-vhc8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-m2vm-jcgv-q6x4/GHSA-m2vm-jcgv-q6x4.json b/advisories/unreviewed/2023/11/GHSA-m2vm-jcgv-q6x4/GHSA-m2vm-jcgv-q6x4.json index 89a599d815f..61c1970f09c 100644 --- a/advisories/unreviewed/2023/11/GHSA-m2vm-jcgv-q6x4/GHSA-m2vm-jcgv-q6x4.json +++ b/advisories/unreviewed/2023/11/GHSA-m2vm-jcgv-q6x4/GHSA-m2vm-jcgv-q6x4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-m32x-6xp4-26j2/GHSA-m32x-6xp4-26j2.json b/advisories/unreviewed/2023/11/GHSA-m32x-6xp4-26j2/GHSA-m32x-6xp4-26j2.json index 88503ca03d8..a682e11b99b 100644 --- a/advisories/unreviewed/2023/11/GHSA-m32x-6xp4-26j2/GHSA-m32x-6xp4-26j2.json +++ b/advisories/unreviewed/2023/11/GHSA-m32x-6xp4-26j2/GHSA-m32x-6xp4-26j2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-m458-6c75-7v89/GHSA-m458-6c75-7v89.json b/advisories/unreviewed/2023/11/GHSA-m458-6c75-7v89/GHSA-m458-6c75-7v89.json index 0db39391cf2..bf7c5ad7223 100644 --- a/advisories/unreviewed/2023/11/GHSA-m458-6c75-7v89/GHSA-m458-6c75-7v89.json +++ b/advisories/unreviewed/2023/11/GHSA-m458-6c75-7v89/GHSA-m458-6c75-7v89.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-mcqq-mjfq-3x9p/GHSA-mcqq-mjfq-3x9p.json b/advisories/unreviewed/2023/11/GHSA-mcqq-mjfq-3x9p/GHSA-mcqq-mjfq-3x9p.json index 362fe015bfb..132fbf50a43 100644 --- a/advisories/unreviewed/2023/11/GHSA-mcqq-mjfq-3x9p/GHSA-mcqq-mjfq-3x9p.json +++ b/advisories/unreviewed/2023/11/GHSA-mcqq-mjfq-3x9p/GHSA-mcqq-mjfq-3x9p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-mv5m-hv8v-8wh5/GHSA-mv5m-hv8v-8wh5.json b/advisories/unreviewed/2023/11/GHSA-mv5m-hv8v-8wh5/GHSA-mv5m-hv8v-8wh5.json index ad3d90776cf..9f1b241a360 100644 --- a/advisories/unreviewed/2023/11/GHSA-mv5m-hv8v-8wh5/GHSA-mv5m-hv8v-8wh5.json +++ b/advisories/unreviewed/2023/11/GHSA-mv5m-hv8v-8wh5/GHSA-mv5m-hv8v-8wh5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-mx9c-3r4g-6f8m/GHSA-mx9c-3r4g-6f8m.json b/advisories/unreviewed/2023/11/GHSA-mx9c-3r4g-6f8m/GHSA-mx9c-3r4g-6f8m.json index 024c5648ecc..04bb9617847 100644 --- a/advisories/unreviewed/2023/11/GHSA-mx9c-3r4g-6f8m/GHSA-mx9c-3r4g-6f8m.json +++ b/advisories/unreviewed/2023/11/GHSA-mx9c-3r4g-6f8m/GHSA-mx9c-3r4g-6f8m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-pcwr-76q4-m2q2/GHSA-pcwr-76q4-m2q2.json b/advisories/unreviewed/2023/11/GHSA-pcwr-76q4-m2q2/GHSA-pcwr-76q4-m2q2.json index 007e80a2cbc..d2bd6e5c6c3 100644 --- a/advisories/unreviewed/2023/11/GHSA-pcwr-76q4-m2q2/GHSA-pcwr-76q4-m2q2.json +++ b/advisories/unreviewed/2023/11/GHSA-pcwr-76q4-m2q2/GHSA-pcwr-76q4-m2q2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-px3r-p5ph-hg48/GHSA-px3r-p5ph-hg48.json b/advisories/unreviewed/2023/11/GHSA-px3r-p5ph-hg48/GHSA-px3r-p5ph-hg48.json index 66c543d9898..5b06c477bf8 100644 --- a/advisories/unreviewed/2023/11/GHSA-px3r-p5ph-hg48/GHSA-px3r-p5ph-hg48.json +++ b/advisories/unreviewed/2023/11/GHSA-px3r-p5ph-hg48/GHSA-px3r-p5ph-hg48.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-q55w-97pg-m725/GHSA-q55w-97pg-m725.json b/advisories/unreviewed/2023/11/GHSA-q55w-97pg-m725/GHSA-q55w-97pg-m725.json index c737ab2403b..76646f92558 100644 --- a/advisories/unreviewed/2023/11/GHSA-q55w-97pg-m725/GHSA-q55w-97pg-m725.json +++ b/advisories/unreviewed/2023/11/GHSA-q55w-97pg-m725/GHSA-q55w-97pg-m725.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-q6v3-24wc-vg36/GHSA-q6v3-24wc-vg36.json b/advisories/unreviewed/2023/11/GHSA-q6v3-24wc-vg36/GHSA-q6v3-24wc-vg36.json index e1890993da9..610609e0c65 100644 --- a/advisories/unreviewed/2023/11/GHSA-q6v3-24wc-vg36/GHSA-q6v3-24wc-vg36.json +++ b/advisories/unreviewed/2023/11/GHSA-q6v3-24wc-vg36/GHSA-q6v3-24wc-vg36.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-qvgw-89m2-hwcj/GHSA-qvgw-89m2-hwcj.json b/advisories/unreviewed/2023/11/GHSA-qvgw-89m2-hwcj/GHSA-qvgw-89m2-hwcj.json index c483b09a744..a8bb1a82f96 100644 --- a/advisories/unreviewed/2023/11/GHSA-qvgw-89m2-hwcj/GHSA-qvgw-89m2-hwcj.json +++ b/advisories/unreviewed/2023/11/GHSA-qvgw-89m2-hwcj/GHSA-qvgw-89m2-hwcj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-qxv7-837m-ggxx/GHSA-qxv7-837m-ggxx.json b/advisories/unreviewed/2023/11/GHSA-qxv7-837m-ggxx/GHSA-qxv7-837m-ggxx.json index 411c7b7c78b..c5b59129add 100644 --- a/advisories/unreviewed/2023/11/GHSA-qxv7-837m-ggxx/GHSA-qxv7-837m-ggxx.json +++ b/advisories/unreviewed/2023/11/GHSA-qxv7-837m-ggxx/GHSA-qxv7-837m-ggxx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-rcvq-7v23-7hh8/GHSA-rcvq-7v23-7hh8.json b/advisories/unreviewed/2023/11/GHSA-rcvq-7v23-7hh8/GHSA-rcvq-7v23-7hh8.json index 0c6ef7a09c5..604cb2073dc 100644 --- a/advisories/unreviewed/2023/11/GHSA-rcvq-7v23-7hh8/GHSA-rcvq-7v23-7hh8.json +++ b/advisories/unreviewed/2023/11/GHSA-rcvq-7v23-7hh8/GHSA-rcvq-7v23-7hh8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-rq23-3cx8-wmqf/GHSA-rq23-3cx8-wmqf.json b/advisories/unreviewed/2023/11/GHSA-rq23-3cx8-wmqf/GHSA-rq23-3cx8-wmqf.json index 5fc2d9e46da..49a3fa216dc 100644 --- a/advisories/unreviewed/2023/11/GHSA-rq23-3cx8-wmqf/GHSA-rq23-3cx8-wmqf.json +++ b/advisories/unreviewed/2023/11/GHSA-rq23-3cx8-wmqf/GHSA-rq23-3cx8-wmqf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-v4cw-g9r2-xrx2/GHSA-v4cw-g9r2-xrx2.json b/advisories/unreviewed/2023/11/GHSA-v4cw-g9r2-xrx2/GHSA-v4cw-g9r2-xrx2.json index 53bd7a79ae8..b12d9cbb307 100644 --- a/advisories/unreviewed/2023/11/GHSA-v4cw-g9r2-xrx2/GHSA-v4cw-g9r2-xrx2.json +++ b/advisories/unreviewed/2023/11/GHSA-v4cw-g9r2-xrx2/GHSA-v4cw-g9r2-xrx2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-vv89-229f-wqm4/GHSA-vv89-229f-wqm4.json b/advisories/unreviewed/2023/11/GHSA-vv89-229f-wqm4/GHSA-vv89-229f-wqm4.json index 94f4bb921b8..c2a7091449c 100644 --- a/advisories/unreviewed/2023/11/GHSA-vv89-229f-wqm4/GHSA-vv89-229f-wqm4.json +++ b/advisories/unreviewed/2023/11/GHSA-vv89-229f-wqm4/GHSA-vv89-229f-wqm4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-w27x-pgpr-94mx/GHSA-w27x-pgpr-94mx.json b/advisories/unreviewed/2023/11/GHSA-w27x-pgpr-94mx/GHSA-w27x-pgpr-94mx.json index 86e286feddc..e7bf9f4c9a8 100644 --- a/advisories/unreviewed/2023/11/GHSA-w27x-pgpr-94mx/GHSA-w27x-pgpr-94mx.json +++ b/advisories/unreviewed/2023/11/GHSA-w27x-pgpr-94mx/GHSA-w27x-pgpr-94mx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-w5f9-f469-qpc7/GHSA-w5f9-f469-qpc7.json b/advisories/unreviewed/2023/11/GHSA-w5f9-f469-qpc7/GHSA-w5f9-f469-qpc7.json index 8d4d1d3805e..b2abacb857d 100644 --- a/advisories/unreviewed/2023/11/GHSA-w5f9-f469-qpc7/GHSA-w5f9-f469-qpc7.json +++ b/advisories/unreviewed/2023/11/GHSA-w5f9-f469-qpc7/GHSA-w5f9-f469-qpc7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-wffc-2qfw-2qfw/GHSA-wffc-2qfw-2qfw.json b/advisories/unreviewed/2023/11/GHSA-wffc-2qfw-2qfw/GHSA-wffc-2qfw-2qfw.json index ea7c8c50966..392500962cd 100644 --- a/advisories/unreviewed/2023/11/GHSA-wffc-2qfw-2qfw/GHSA-wffc-2qfw-2qfw.json +++ b/advisories/unreviewed/2023/11/GHSA-wffc-2qfw-2qfw/GHSA-wffc-2qfw-2qfw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-wr75-gf28-44m9/GHSA-wr75-gf28-44m9.json b/advisories/unreviewed/2023/11/GHSA-wr75-gf28-44m9/GHSA-wr75-gf28-44m9.json index 9b916540af2..ac2339a959c 100644 --- a/advisories/unreviewed/2023/11/GHSA-wr75-gf28-44m9/GHSA-wr75-gf28-44m9.json +++ b/advisories/unreviewed/2023/11/GHSA-wr75-gf28-44m9/GHSA-wr75-gf28-44m9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-wx7j-q638-34vf/GHSA-wx7j-q638-34vf.json b/advisories/unreviewed/2023/11/GHSA-wx7j-q638-34vf/GHSA-wx7j-q638-34vf.json index 3c08077dd78..4557dfe248a 100644 --- a/advisories/unreviewed/2023/11/GHSA-wx7j-q638-34vf/GHSA-wx7j-q638-34vf.json +++ b/advisories/unreviewed/2023/11/GHSA-wx7j-q638-34vf/GHSA-wx7j-q638-34vf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-x65g-79jp-p76h/GHSA-x65g-79jp-p76h.json b/advisories/unreviewed/2023/11/GHSA-x65g-79jp-p76h/GHSA-x65g-79jp-p76h.json index 9ee061a7a3d..7e1a73f7204 100644 --- a/advisories/unreviewed/2023/11/GHSA-x65g-79jp-p76h/GHSA-x65g-79jp-p76h.json +++ b/advisories/unreviewed/2023/11/GHSA-x65g-79jp-p76h/GHSA-x65g-79jp-p76h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-xgj8-66rv-68vp/GHSA-xgj8-66rv-68vp.json b/advisories/unreviewed/2023/11/GHSA-xgj8-66rv-68vp/GHSA-xgj8-66rv-68vp.json index 8bb5889d43a..b43d935075d 100644 --- a/advisories/unreviewed/2023/11/GHSA-xgj8-66rv-68vp/GHSA-xgj8-66rv-68vp.json +++ b/advisories/unreviewed/2023/11/GHSA-xgj8-66rv-68vp/GHSA-xgj8-66rv-68vp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-2ppf-7c48-6cc8/GHSA-2ppf-7c48-6cc8.json b/advisories/unreviewed/2023/12/GHSA-2ppf-7c48-6cc8/GHSA-2ppf-7c48-6cc8.json index 558c654d295..9382fa45dbd 100644 --- a/advisories/unreviewed/2023/12/GHSA-2ppf-7c48-6cc8/GHSA-2ppf-7c48-6cc8.json +++ b/advisories/unreviewed/2023/12/GHSA-2ppf-7c48-6cc8/GHSA-2ppf-7c48-6cc8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-2xc6-pfrf-w5p4/GHSA-2xc6-pfrf-w5p4.json b/advisories/unreviewed/2023/12/GHSA-2xc6-pfrf-w5p4/GHSA-2xc6-pfrf-w5p4.json index 7da0c5e5e6e..6b59787ecd0 100644 --- a/advisories/unreviewed/2023/12/GHSA-2xc6-pfrf-w5p4/GHSA-2xc6-pfrf-w5p4.json +++ b/advisories/unreviewed/2023/12/GHSA-2xc6-pfrf-w5p4/GHSA-2xc6-pfrf-w5p4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-332f-h579-gp2q/GHSA-332f-h579-gp2q.json b/advisories/unreviewed/2023/12/GHSA-332f-h579-gp2q/GHSA-332f-h579-gp2q.json index 5f851b6829d..4856e77883d 100644 --- a/advisories/unreviewed/2023/12/GHSA-332f-h579-gp2q/GHSA-332f-h579-gp2q.json +++ b/advisories/unreviewed/2023/12/GHSA-332f-h579-gp2q/GHSA-332f-h579-gp2q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-33hq-6mqq-8gjp/GHSA-33hq-6mqq-8gjp.json b/advisories/unreviewed/2023/12/GHSA-33hq-6mqq-8gjp/GHSA-33hq-6mqq-8gjp.json index 0e93c8fab99..23f4e3e6029 100644 --- a/advisories/unreviewed/2023/12/GHSA-33hq-6mqq-8gjp/GHSA-33hq-6mqq-8gjp.json +++ b/advisories/unreviewed/2023/12/GHSA-33hq-6mqq-8gjp/GHSA-33hq-6mqq-8gjp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-3fj4-jwj4-55c8/GHSA-3fj4-jwj4-55c8.json b/advisories/unreviewed/2023/12/GHSA-3fj4-jwj4-55c8/GHSA-3fj4-jwj4-55c8.json index 875c3d27f05..685d490f88e 100644 --- a/advisories/unreviewed/2023/12/GHSA-3fj4-jwj4-55c8/GHSA-3fj4-jwj4-55c8.json +++ b/advisories/unreviewed/2023/12/GHSA-3fj4-jwj4-55c8/GHSA-3fj4-jwj4-55c8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-4x9j-67cf-fqh5/GHSA-4x9j-67cf-fqh5.json b/advisories/unreviewed/2023/12/GHSA-4x9j-67cf-fqh5/GHSA-4x9j-67cf-fqh5.json index 4791b69410f..7819ff55eff 100644 --- a/advisories/unreviewed/2023/12/GHSA-4x9j-67cf-fqh5/GHSA-4x9j-67cf-fqh5.json +++ b/advisories/unreviewed/2023/12/GHSA-4x9j-67cf-fqh5/GHSA-4x9j-67cf-fqh5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-76pp-5phh-864m/GHSA-76pp-5phh-864m.json b/advisories/unreviewed/2023/12/GHSA-76pp-5phh-864m/GHSA-76pp-5phh-864m.json index 9c70db81272..cf6f85a7119 100644 --- a/advisories/unreviewed/2023/12/GHSA-76pp-5phh-864m/GHSA-76pp-5phh-864m.json +++ b/advisories/unreviewed/2023/12/GHSA-76pp-5phh-864m/GHSA-76pp-5phh-864m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-79rg-fmv7-2cjf/GHSA-79rg-fmv7-2cjf.json b/advisories/unreviewed/2023/12/GHSA-79rg-fmv7-2cjf/GHSA-79rg-fmv7-2cjf.json index baeb968de53..f7c5414c3aa 100644 --- a/advisories/unreviewed/2023/12/GHSA-79rg-fmv7-2cjf/GHSA-79rg-fmv7-2cjf.json +++ b/advisories/unreviewed/2023/12/GHSA-79rg-fmv7-2cjf/GHSA-79rg-fmv7-2cjf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-7gx6-g552-8q57/GHSA-7gx6-g552-8q57.json b/advisories/unreviewed/2023/12/GHSA-7gx6-g552-8q57/GHSA-7gx6-g552-8q57.json index 9221c5c3259..1dcfe5dc9be 100644 --- a/advisories/unreviewed/2023/12/GHSA-7gx6-g552-8q57/GHSA-7gx6-g552-8q57.json +++ b/advisories/unreviewed/2023/12/GHSA-7gx6-g552-8q57/GHSA-7gx6-g552-8q57.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-7hxh-jwwx-fv35/GHSA-7hxh-jwwx-fv35.json b/advisories/unreviewed/2023/12/GHSA-7hxh-jwwx-fv35/GHSA-7hxh-jwwx-fv35.json index 6189de33bbc..d2e93d2100d 100644 --- a/advisories/unreviewed/2023/12/GHSA-7hxh-jwwx-fv35/GHSA-7hxh-jwwx-fv35.json +++ b/advisories/unreviewed/2023/12/GHSA-7hxh-jwwx-fv35/GHSA-7hxh-jwwx-fv35.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-7m3r-9jw9-j2rw/GHSA-7m3r-9jw9-j2rw.json b/advisories/unreviewed/2023/12/GHSA-7m3r-9jw9-j2rw/GHSA-7m3r-9jw9-j2rw.json index 10fcdf9845f..38118c8ba15 100644 --- a/advisories/unreviewed/2023/12/GHSA-7m3r-9jw9-j2rw/GHSA-7m3r-9jw9-j2rw.json +++ b/advisories/unreviewed/2023/12/GHSA-7m3r-9jw9-j2rw/GHSA-7m3r-9jw9-j2rw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-8qjv-8x85-xvqv/GHSA-8qjv-8x85-xvqv.json b/advisories/unreviewed/2023/12/GHSA-8qjv-8x85-xvqv/GHSA-8qjv-8x85-xvqv.json index 9930e9bde14..e749ea6d958 100644 --- a/advisories/unreviewed/2023/12/GHSA-8qjv-8x85-xvqv/GHSA-8qjv-8x85-xvqv.json +++ b/advisories/unreviewed/2023/12/GHSA-8qjv-8x85-xvqv/GHSA-8qjv-8x85-xvqv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-8vrm-g5r7-f2c7/GHSA-8vrm-g5r7-f2c7.json b/advisories/unreviewed/2023/12/GHSA-8vrm-g5r7-f2c7/GHSA-8vrm-g5r7-f2c7.json index c9e93a734ff..af29450a736 100644 --- a/advisories/unreviewed/2023/12/GHSA-8vrm-g5r7-f2c7/GHSA-8vrm-g5r7-f2c7.json +++ b/advisories/unreviewed/2023/12/GHSA-8vrm-g5r7-f2c7/GHSA-8vrm-g5r7-f2c7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-97rh-rq6v-7pc4/GHSA-97rh-rq6v-7pc4.json b/advisories/unreviewed/2023/12/GHSA-97rh-rq6v-7pc4/GHSA-97rh-rq6v-7pc4.json index e28b14b0302..62b5a8a71e0 100644 --- a/advisories/unreviewed/2023/12/GHSA-97rh-rq6v-7pc4/GHSA-97rh-rq6v-7pc4.json +++ b/advisories/unreviewed/2023/12/GHSA-97rh-rq6v-7pc4/GHSA-97rh-rq6v-7pc4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-f3h6-jfcw-v9xq/GHSA-f3h6-jfcw-v9xq.json b/advisories/unreviewed/2023/12/GHSA-f3h6-jfcw-v9xq/GHSA-f3h6-jfcw-v9xq.json index b3336bef0e0..a6402a464fc 100644 --- a/advisories/unreviewed/2023/12/GHSA-f3h6-jfcw-v9xq/GHSA-f3h6-jfcw-v9xq.json +++ b/advisories/unreviewed/2023/12/GHSA-f3h6-jfcw-v9xq/GHSA-f3h6-jfcw-v9xq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-h9fx-g2cp-w46c/GHSA-h9fx-g2cp-w46c.json b/advisories/unreviewed/2023/12/GHSA-h9fx-g2cp-w46c/GHSA-h9fx-g2cp-w46c.json index cf0c3575d2d..64d04fffd5f 100644 --- a/advisories/unreviewed/2023/12/GHSA-h9fx-g2cp-w46c/GHSA-h9fx-g2cp-w46c.json +++ b/advisories/unreviewed/2023/12/GHSA-h9fx-g2cp-w46c/GHSA-h9fx-g2cp-w46c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-pmg7-23ph-4pf9/GHSA-pmg7-23ph-4pf9.json b/advisories/unreviewed/2023/12/GHSA-pmg7-23ph-4pf9/GHSA-pmg7-23ph-4pf9.json index 94aa77b10dd..c5e53c16257 100644 --- a/advisories/unreviewed/2023/12/GHSA-pmg7-23ph-4pf9/GHSA-pmg7-23ph-4pf9.json +++ b/advisories/unreviewed/2023/12/GHSA-pmg7-23ph-4pf9/GHSA-pmg7-23ph-4pf9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-q4pm-gf4h-gpx9/GHSA-q4pm-gf4h-gpx9.json b/advisories/unreviewed/2023/12/GHSA-q4pm-gf4h-gpx9/GHSA-q4pm-gf4h-gpx9.json index 15c925ded61..56ee145af30 100644 --- a/advisories/unreviewed/2023/12/GHSA-q4pm-gf4h-gpx9/GHSA-q4pm-gf4h-gpx9.json +++ b/advisories/unreviewed/2023/12/GHSA-q4pm-gf4h-gpx9/GHSA-q4pm-gf4h-gpx9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-rx7r-r3h4-3r66/GHSA-rx7r-r3h4-3r66.json b/advisories/unreviewed/2023/12/GHSA-rx7r-r3h4-3r66/GHSA-rx7r-r3h4-3r66.json index 51c814c27e8..27e04729a02 100644 --- a/advisories/unreviewed/2023/12/GHSA-rx7r-r3h4-3r66/GHSA-rx7r-r3h4-3r66.json +++ b/advisories/unreviewed/2023/12/GHSA-rx7r-r3h4-3r66/GHSA-rx7r-r3h4-3r66.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-w23x-3qjg-4q5c/GHSA-w23x-3qjg-4q5c.json b/advisories/unreviewed/2023/12/GHSA-w23x-3qjg-4q5c/GHSA-w23x-3qjg-4q5c.json index 03163123657..8aa671d0078 100644 --- a/advisories/unreviewed/2023/12/GHSA-w23x-3qjg-4q5c/GHSA-w23x-3qjg-4q5c.json +++ b/advisories/unreviewed/2023/12/GHSA-w23x-3qjg-4q5c/GHSA-w23x-3qjg-4q5c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-w3r4-qpvv-3gqw/GHSA-w3r4-qpvv-3gqw.json b/advisories/unreviewed/2023/12/GHSA-w3r4-qpvv-3gqw/GHSA-w3r4-qpvv-3gqw.json index 3a6f48df79b..7b6ec0ce589 100644 --- a/advisories/unreviewed/2023/12/GHSA-w3r4-qpvv-3gqw/GHSA-w3r4-qpvv-3gqw.json +++ b/advisories/unreviewed/2023/12/GHSA-w3r4-qpvv-3gqw/GHSA-w3r4-qpvv-3gqw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-wrjx-7qm9-3xx6/GHSA-wrjx-7qm9-3xx6.json b/advisories/unreviewed/2023/12/GHSA-wrjx-7qm9-3xx6/GHSA-wrjx-7qm9-3xx6.json index 91ec2f1e51a..ab6d78e55ac 100644 --- a/advisories/unreviewed/2023/12/GHSA-wrjx-7qm9-3xx6/GHSA-wrjx-7qm9-3xx6.json +++ b/advisories/unreviewed/2023/12/GHSA-wrjx-7qm9-3xx6/GHSA-wrjx-7qm9-3xx6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-xxq5-c27j-953j/GHSA-xxq5-c27j-953j.json b/advisories/unreviewed/2023/12/GHSA-xxq5-c27j-953j/GHSA-xxq5-c27j-953j.json index 487d2e4c7c1..dc16ddb4f4d 100644 --- a/advisories/unreviewed/2023/12/GHSA-xxq5-c27j-953j/GHSA-xxq5-c27j-953j.json +++ b/advisories/unreviewed/2023/12/GHSA-xxq5-c27j-953j/GHSA-xxq5-c27j-953j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/01/GHSA-6j79-xv7w-8g6f/GHSA-6j79-xv7w-8g6f.json b/advisories/unreviewed/2024/01/GHSA-6j79-xv7w-8g6f/GHSA-6j79-xv7w-8g6f.json index 5d99564d1d0..7fa71496dd2 100644 --- a/advisories/unreviewed/2024/01/GHSA-6j79-xv7w-8g6f/GHSA-6j79-xv7w-8g6f.json +++ b/advisories/unreviewed/2024/01/GHSA-6j79-xv7w-8g6f/GHSA-6j79-xv7w-8g6f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-fpg3-7wj3-x58x/GHSA-fpg3-7wj3-x58x.json b/advisories/unreviewed/2024/01/GHSA-fpg3-7wj3-x58x/GHSA-fpg3-7wj3-x58x.json index 7bad868d4ef..fbd85045a69 100644 --- a/advisories/unreviewed/2024/01/GHSA-fpg3-7wj3-x58x/GHSA-fpg3-7wj3-x58x.json +++ b/advisories/unreviewed/2024/01/GHSA-fpg3-7wj3-x58x/GHSA-fpg3-7wj3-x58x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-mh4j-2c4w-jxfr/GHSA-mh4j-2c4w-jxfr.json b/advisories/unreviewed/2024/01/GHSA-mh4j-2c4w-jxfr/GHSA-mh4j-2c4w-jxfr.json index 63ad1ba9364..b9c62fa53a3 100644 --- a/advisories/unreviewed/2024/01/GHSA-mh4j-2c4w-jxfr/GHSA-mh4j-2c4w-jxfr.json +++ b/advisories/unreviewed/2024/01/GHSA-mh4j-2c4w-jxfr/GHSA-mh4j-2c4w-jxfr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:N/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-2h39-83vm-vq42/GHSA-2h39-83vm-vq42.json b/advisories/unreviewed/2024/05/GHSA-2h39-83vm-vq42/GHSA-2h39-83vm-vq42.json index 15203f0c2f1..93eb4cfa7ff 100644 --- a/advisories/unreviewed/2024/05/GHSA-2h39-83vm-vq42/GHSA-2h39-83vm-vq42.json +++ b/advisories/unreviewed/2024/05/GHSA-2h39-83vm-vq42/GHSA-2h39-83vm-vq42.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-2ph9-8x3x-w6jx/GHSA-2ph9-8x3x-w6jx.json b/advisories/unreviewed/2024/05/GHSA-2ph9-8x3x-w6jx/GHSA-2ph9-8x3x-w6jx.json index 2d142f6c88d..ba67137fd00 100644 --- a/advisories/unreviewed/2024/05/GHSA-2ph9-8x3x-w6jx/GHSA-2ph9-8x3x-w6jx.json +++ b/advisories/unreviewed/2024/05/GHSA-2ph9-8x3x-w6jx/GHSA-2ph9-8x3x-w6jx.json @@ -7,12 +7,8 @@ "CVE-2024-35102" ], "details": "Insecure Permissions vulnerability in VITEC AvediaServer (Model avsrv-m8105) 8.6.2-1 allows a remote attacker to escalate privileges via a crafted script.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-3733-6v6m-39mh/GHSA-3733-6v6m-39mh.json b/advisories/unreviewed/2024/05/GHSA-3733-6v6m-39mh/GHSA-3733-6v6m-39mh.json index 3e5e4312029..d004553ef29 100644 --- a/advisories/unreviewed/2024/05/GHSA-3733-6v6m-39mh/GHSA-3733-6v6m-39mh.json +++ b/advisories/unreviewed/2024/05/GHSA-3733-6v6m-39mh/GHSA-3733-6v6m-39mh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-3m49-xc8r-9rm5/GHSA-3m49-xc8r-9rm5.json b/advisories/unreviewed/2024/05/GHSA-3m49-xc8r-9rm5/GHSA-3m49-xc8r-9rm5.json index 27bb8394850..91c7b7f1a51 100644 --- a/advisories/unreviewed/2024/05/GHSA-3m49-xc8r-9rm5/GHSA-3m49-xc8r-9rm5.json +++ b/advisories/unreviewed/2024/05/GHSA-3m49-xc8r-9rm5/GHSA-3m49-xc8r-9rm5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-4fcm-4jr3-58fg/GHSA-4fcm-4jr3-58fg.json b/advisories/unreviewed/2024/05/GHSA-4fcm-4jr3-58fg/GHSA-4fcm-4jr3-58fg.json index 0ec4c316204..dcedf4c2c4f 100644 --- a/advisories/unreviewed/2024/05/GHSA-4fcm-4jr3-58fg/GHSA-4fcm-4jr3-58fg.json +++ b/advisories/unreviewed/2024/05/GHSA-4fcm-4jr3-58fg/GHSA-4fcm-4jr3-58fg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-4wx2-mhc4-vv9j/GHSA-4wx2-mhc4-vv9j.json b/advisories/unreviewed/2024/05/GHSA-4wx2-mhc4-vv9j/GHSA-4wx2-mhc4-vv9j.json index d9e85543aca..1ac985c88de 100644 --- a/advisories/unreviewed/2024/05/GHSA-4wx2-mhc4-vv9j/GHSA-4wx2-mhc4-vv9j.json +++ b/advisories/unreviewed/2024/05/GHSA-4wx2-mhc4-vv9j/GHSA-4wx2-mhc4-vv9j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-5799-qmwm-p3w7/GHSA-5799-qmwm-p3w7.json b/advisories/unreviewed/2024/05/GHSA-5799-qmwm-p3w7/GHSA-5799-qmwm-p3w7.json index 71d8b1389bc..08ee9a83582 100644 --- a/advisories/unreviewed/2024/05/GHSA-5799-qmwm-p3w7/GHSA-5799-qmwm-p3w7.json +++ b/advisories/unreviewed/2024/05/GHSA-5799-qmwm-p3w7/GHSA-5799-qmwm-p3w7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-59jh-6p6q-f5jr/GHSA-59jh-6p6q-f5jr.json b/advisories/unreviewed/2024/05/GHSA-59jh-6p6q-f5jr/GHSA-59jh-6p6q-f5jr.json index 0e0d86cee64..4fe6e8c4878 100644 --- a/advisories/unreviewed/2024/05/GHSA-59jh-6p6q-f5jr/GHSA-59jh-6p6q-f5jr.json +++ b/advisories/unreviewed/2024/05/GHSA-59jh-6p6q-f5jr/GHSA-59jh-6p6q-f5jr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-6g8r-23r5-62g2/GHSA-6g8r-23r5-62g2.json b/advisories/unreviewed/2024/05/GHSA-6g8r-23r5-62g2/GHSA-6g8r-23r5-62g2.json index d2e491079c9..dec1a437fa6 100644 --- a/advisories/unreviewed/2024/05/GHSA-6g8r-23r5-62g2/GHSA-6g8r-23r5-62g2.json +++ b/advisories/unreviewed/2024/05/GHSA-6g8r-23r5-62g2/GHSA-6g8r-23r5-62g2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-6mwv-3cpw-pj8r/GHSA-6mwv-3cpw-pj8r.json b/advisories/unreviewed/2024/05/GHSA-6mwv-3cpw-pj8r/GHSA-6mwv-3cpw-pj8r.json index ec20e37b14a..00385966f7d 100644 --- a/advisories/unreviewed/2024/05/GHSA-6mwv-3cpw-pj8r/GHSA-6mwv-3cpw-pj8r.json +++ b/advisories/unreviewed/2024/05/GHSA-6mwv-3cpw-pj8r/GHSA-6mwv-3cpw-pj8r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-6xw9-wghr-5p6r/GHSA-6xw9-wghr-5p6r.json b/advisories/unreviewed/2024/05/GHSA-6xw9-wghr-5p6r/GHSA-6xw9-wghr-5p6r.json index 88c3cf705c6..23c76e9e185 100644 --- a/advisories/unreviewed/2024/05/GHSA-6xw9-wghr-5p6r/GHSA-6xw9-wghr-5p6r.json +++ b/advisories/unreviewed/2024/05/GHSA-6xw9-wghr-5p6r/GHSA-6xw9-wghr-5p6r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-8jrr-vwjm-wj7q/GHSA-8jrr-vwjm-wj7q.json b/advisories/unreviewed/2024/05/GHSA-8jrr-vwjm-wj7q/GHSA-8jrr-vwjm-wj7q.json index 017ba5c2316..6baa8e54e3d 100644 --- a/advisories/unreviewed/2024/05/GHSA-8jrr-vwjm-wj7q/GHSA-8jrr-vwjm-wj7q.json +++ b/advisories/unreviewed/2024/05/GHSA-8jrr-vwjm-wj7q/GHSA-8jrr-vwjm-wj7q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-8q65-g945-2xc2/GHSA-8q65-g945-2xc2.json b/advisories/unreviewed/2024/05/GHSA-8q65-g945-2xc2/GHSA-8q65-g945-2xc2.json index e899fcc28eb..850385f07fb 100644 --- a/advisories/unreviewed/2024/05/GHSA-8q65-g945-2xc2/GHSA-8q65-g945-2xc2.json +++ b/advisories/unreviewed/2024/05/GHSA-8q65-g945-2xc2/GHSA-8q65-g945-2xc2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-926q-c6xf-358g/GHSA-926q-c6xf-358g.json b/advisories/unreviewed/2024/05/GHSA-926q-c6xf-358g/GHSA-926q-c6xf-358g.json index c9aa8197b18..30d70510c52 100644 --- a/advisories/unreviewed/2024/05/GHSA-926q-c6xf-358g/GHSA-926q-c6xf-358g.json +++ b/advisories/unreviewed/2024/05/GHSA-926q-c6xf-358g/GHSA-926q-c6xf-358g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-9jfj-4qc6-wf64/GHSA-9jfj-4qc6-wf64.json b/advisories/unreviewed/2024/05/GHSA-9jfj-4qc6-wf64/GHSA-9jfj-4qc6-wf64.json index c486da1ffce..dcbd7c58c06 100644 --- a/advisories/unreviewed/2024/05/GHSA-9jfj-4qc6-wf64/GHSA-9jfj-4qc6-wf64.json +++ b/advisories/unreviewed/2024/05/GHSA-9jfj-4qc6-wf64/GHSA-9jfj-4qc6-wf64.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-c24r-pxmj-hx9h/GHSA-c24r-pxmj-hx9h.json b/advisories/unreviewed/2024/05/GHSA-c24r-pxmj-hx9h/GHSA-c24r-pxmj-hx9h.json index 3d92e26b601..ac57fb25a39 100644 --- a/advisories/unreviewed/2024/05/GHSA-c24r-pxmj-hx9h/GHSA-c24r-pxmj-hx9h.json +++ b/advisories/unreviewed/2024/05/GHSA-c24r-pxmj-hx9h/GHSA-c24r-pxmj-hx9h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-cjwm-89qw-9q6v/GHSA-cjwm-89qw-9q6v.json b/advisories/unreviewed/2024/05/GHSA-cjwm-89qw-9q6v/GHSA-cjwm-89qw-9q6v.json index 0d6fabf8421..d16a0ad7ead 100644 --- a/advisories/unreviewed/2024/05/GHSA-cjwm-89qw-9q6v/GHSA-cjwm-89qw-9q6v.json +++ b/advisories/unreviewed/2024/05/GHSA-cjwm-89qw-9q6v/GHSA-cjwm-89qw-9q6v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-cmcg-f6r6-g4hh/GHSA-cmcg-f6r6-g4hh.json b/advisories/unreviewed/2024/05/GHSA-cmcg-f6r6-g4hh/GHSA-cmcg-f6r6-g4hh.json index c9032fee131..020e2f3e6ef 100644 --- a/advisories/unreviewed/2024/05/GHSA-cmcg-f6r6-g4hh/GHSA-cmcg-f6r6-g4hh.json +++ b/advisories/unreviewed/2024/05/GHSA-cmcg-f6r6-g4hh/GHSA-cmcg-f6r6-g4hh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-h6hw-6pc7-77rf/GHSA-h6hw-6pc7-77rf.json b/advisories/unreviewed/2024/05/GHSA-h6hw-6pc7-77rf/GHSA-h6hw-6pc7-77rf.json index 7b0df4cd6a4..30142f5d159 100644 --- a/advisories/unreviewed/2024/05/GHSA-h6hw-6pc7-77rf/GHSA-h6hw-6pc7-77rf.json +++ b/advisories/unreviewed/2024/05/GHSA-h6hw-6pc7-77rf/GHSA-h6hw-6pc7-77rf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-hcw5-6455-h9xm/GHSA-hcw5-6455-h9xm.json b/advisories/unreviewed/2024/05/GHSA-hcw5-6455-h9xm/GHSA-hcw5-6455-h9xm.json index 8b0e32824a5..367b21d0908 100644 --- a/advisories/unreviewed/2024/05/GHSA-hcw5-6455-h9xm/GHSA-hcw5-6455-h9xm.json +++ b/advisories/unreviewed/2024/05/GHSA-hcw5-6455-h9xm/GHSA-hcw5-6455-h9xm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-j5rg-hrw2-2gf7/GHSA-j5rg-hrw2-2gf7.json b/advisories/unreviewed/2024/05/GHSA-j5rg-hrw2-2gf7/GHSA-j5rg-hrw2-2gf7.json index b218ef2ae4d..aa5752bc88c 100644 --- a/advisories/unreviewed/2024/05/GHSA-j5rg-hrw2-2gf7/GHSA-j5rg-hrw2-2gf7.json +++ b/advisories/unreviewed/2024/05/GHSA-j5rg-hrw2-2gf7/GHSA-j5rg-hrw2-2gf7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-m2gh-p757-6rf2/GHSA-m2gh-p757-6rf2.json b/advisories/unreviewed/2024/05/GHSA-m2gh-p757-6rf2/GHSA-m2gh-p757-6rf2.json index c6a49f8e5c2..d68f792954c 100644 --- a/advisories/unreviewed/2024/05/GHSA-m2gh-p757-6rf2/GHSA-m2gh-p757-6rf2.json +++ b/advisories/unreviewed/2024/05/GHSA-m2gh-p757-6rf2/GHSA-m2gh-p757-6rf2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-m78g-6w88-h522/GHSA-m78g-6w88-h522.json b/advisories/unreviewed/2024/05/GHSA-m78g-6w88-h522/GHSA-m78g-6w88-h522.json index 4b576d6daea..6dab75f39a9 100644 --- a/advisories/unreviewed/2024/05/GHSA-m78g-6w88-h522/GHSA-m78g-6w88-h522.json +++ b/advisories/unreviewed/2024/05/GHSA-m78g-6w88-h522/GHSA-m78g-6w88-h522.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-px9h-g363-q9hw/GHSA-px9h-g363-q9hw.json b/advisories/unreviewed/2024/05/GHSA-px9h-g363-q9hw/GHSA-px9h-g363-q9hw.json index e8cab7d89fd..6b3336cee2b 100644 --- a/advisories/unreviewed/2024/05/GHSA-px9h-g363-q9hw/GHSA-px9h-g363-q9hw.json +++ b/advisories/unreviewed/2024/05/GHSA-px9h-g363-q9hw/GHSA-px9h-g363-q9hw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-q7q5-hvh8-gjh4/GHSA-q7q5-hvh8-gjh4.json b/advisories/unreviewed/2024/05/GHSA-q7q5-hvh8-gjh4/GHSA-q7q5-hvh8-gjh4.json index b0679799542..c594f142c3a 100644 --- a/advisories/unreviewed/2024/05/GHSA-q7q5-hvh8-gjh4/GHSA-q7q5-hvh8-gjh4.json +++ b/advisories/unreviewed/2024/05/GHSA-q7q5-hvh8-gjh4/GHSA-q7q5-hvh8-gjh4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-qvmh-c8p3-rp3h/GHSA-qvmh-c8p3-rp3h.json b/advisories/unreviewed/2024/05/GHSA-qvmh-c8p3-rp3h/GHSA-qvmh-c8p3-rp3h.json index e5d3276f770..d8c0f3569b1 100644 --- a/advisories/unreviewed/2024/05/GHSA-qvmh-c8p3-rp3h/GHSA-qvmh-c8p3-rp3h.json +++ b/advisories/unreviewed/2024/05/GHSA-qvmh-c8p3-rp3h/GHSA-qvmh-c8p3-rp3h.json @@ -7,12 +7,8 @@ "CVE-2024-4976" ], "details": "Out-of-bounds array write in Xpdf 4.05 and earlier, due to missing object type check in AcroForm field reference.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-rmq9-5xx5-hhgg/GHSA-rmq9-5xx5-hhgg.json b/advisories/unreviewed/2024/05/GHSA-rmq9-5xx5-hhgg/GHSA-rmq9-5xx5-hhgg.json index 9e729635403..d8e04d4c5bf 100644 --- a/advisories/unreviewed/2024/05/GHSA-rmq9-5xx5-hhgg/GHSA-rmq9-5xx5-hhgg.json +++ b/advisories/unreviewed/2024/05/GHSA-rmq9-5xx5-hhgg/GHSA-rmq9-5xx5-hhgg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-v5pq-9c2g-hvrv/GHSA-v5pq-9c2g-hvrv.json b/advisories/unreviewed/2024/05/GHSA-v5pq-9c2g-hvrv/GHSA-v5pq-9c2g-hvrv.json index f02020bbb01..9fedf3fd25f 100644 --- a/advisories/unreviewed/2024/05/GHSA-v5pq-9c2g-hvrv/GHSA-v5pq-9c2g-hvrv.json +++ b/advisories/unreviewed/2024/05/GHSA-v5pq-9c2g-hvrv/GHSA-v5pq-9c2g-hvrv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-v8f5-c8jx-hv8g/GHSA-v8f5-c8jx-hv8g.json b/advisories/unreviewed/2024/05/GHSA-v8f5-c8jx-hv8g/GHSA-v8f5-c8jx-hv8g.json index 8d48f08dc96..2c3255048d9 100644 --- a/advisories/unreviewed/2024/05/GHSA-v8f5-c8jx-hv8g/GHSA-v8f5-c8jx-hv8g.json +++ b/advisories/unreviewed/2024/05/GHSA-v8f5-c8jx-hv8g/GHSA-v8f5-c8jx-hv8g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-v8p6-8rpp-vjx9/GHSA-v8p6-8rpp-vjx9.json b/advisories/unreviewed/2024/05/GHSA-v8p6-8rpp-vjx9/GHSA-v8p6-8rpp-vjx9.json index 170d45cd77a..90457e272d6 100644 --- a/advisories/unreviewed/2024/05/GHSA-v8p6-8rpp-vjx9/GHSA-v8p6-8rpp-vjx9.json +++ b/advisories/unreviewed/2024/05/GHSA-v8p6-8rpp-vjx9/GHSA-v8p6-8rpp-vjx9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-vw9f-rq55-739q/GHSA-vw9f-rq55-739q.json b/advisories/unreviewed/2024/05/GHSA-vw9f-rq55-739q/GHSA-vw9f-rq55-739q.json index 54259d94020..f63960b8c21 100644 --- a/advisories/unreviewed/2024/05/GHSA-vw9f-rq55-739q/GHSA-vw9f-rq55-739q.json +++ b/advisories/unreviewed/2024/05/GHSA-vw9f-rq55-739q/GHSA-vw9f-rq55-739q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-w664-f83j-wrqm/GHSA-w664-f83j-wrqm.json b/advisories/unreviewed/2024/05/GHSA-w664-f83j-wrqm/GHSA-w664-f83j-wrqm.json index bc130240a99..aa5f1464a66 100644 --- a/advisories/unreviewed/2024/05/GHSA-w664-f83j-wrqm/GHSA-w664-f83j-wrqm.json +++ b/advisories/unreviewed/2024/05/GHSA-w664-f83j-wrqm/GHSA-w664-f83j-wrqm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-wfg8-26x9-33j6/GHSA-wfg8-26x9-33j6.json b/advisories/unreviewed/2024/05/GHSA-wfg8-26x9-33j6/GHSA-wfg8-26x9-33j6.json index f611830bf6f..3a6329b0ab4 100644 --- a/advisories/unreviewed/2024/05/GHSA-wfg8-26x9-33j6/GHSA-wfg8-26x9-33j6.json +++ b/advisories/unreviewed/2024/05/GHSA-wfg8-26x9-33j6/GHSA-wfg8-26x9-33j6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-xp32-h6c2-42q9/GHSA-xp32-h6c2-42q9.json b/advisories/unreviewed/2024/05/GHSA-xp32-h6c2-42q9/GHSA-xp32-h6c2-42q9.json index ca28dbc6e28..89c9db0d924 100644 --- a/advisories/unreviewed/2024/05/GHSA-xp32-h6c2-42q9/GHSA-xp32-h6c2-42q9.json +++ b/advisories/unreviewed/2024/05/GHSA-xp32-h6c2-42q9/GHSA-xp32-h6c2-42q9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-xr8x-f92g-w7rv/GHSA-xr8x-f92g-w7rv.json b/advisories/unreviewed/2024/05/GHSA-xr8x-f92g-w7rv/GHSA-xr8x-f92g-w7rv.json index 88523e19736..9b740698684 100644 --- a/advisories/unreviewed/2024/05/GHSA-xr8x-f92g-w7rv/GHSA-xr8x-f92g-w7rv.json +++ b/advisories/unreviewed/2024/05/GHSA-xr8x-f92g-w7rv/GHSA-xr8x-f92g-w7rv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-2642-rp37-gfgx/GHSA-2642-rp37-gfgx.json b/advisories/unreviewed/2024/06/GHSA-2642-rp37-gfgx/GHSA-2642-rp37-gfgx.json index 48d738e52bb..d987ac466f8 100644 --- a/advisories/unreviewed/2024/06/GHSA-2642-rp37-gfgx/GHSA-2642-rp37-gfgx.json +++ b/advisories/unreviewed/2024/06/GHSA-2642-rp37-gfgx/GHSA-2642-rp37-gfgx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-28cp-p2q7-pg8x/GHSA-28cp-p2q7-pg8x.json b/advisories/unreviewed/2024/06/GHSA-28cp-p2q7-pg8x/GHSA-28cp-p2q7-pg8x.json index 4d3932d44a2..72b46f8010e 100644 --- a/advisories/unreviewed/2024/06/GHSA-28cp-p2q7-pg8x/GHSA-28cp-p2q7-pg8x.json +++ b/advisories/unreviewed/2024/06/GHSA-28cp-p2q7-pg8x/GHSA-28cp-p2q7-pg8x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-2pvv-q344-xvjh/GHSA-2pvv-q344-xvjh.json b/advisories/unreviewed/2024/06/GHSA-2pvv-q344-xvjh/GHSA-2pvv-q344-xvjh.json index 27f178d3359..bdac4576a24 100644 --- a/advisories/unreviewed/2024/06/GHSA-2pvv-q344-xvjh/GHSA-2pvv-q344-xvjh.json +++ b/advisories/unreviewed/2024/06/GHSA-2pvv-q344-xvjh/GHSA-2pvv-q344-xvjh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-3qv3-f275-rcp7/GHSA-3qv3-f275-rcp7.json b/advisories/unreviewed/2024/06/GHSA-3qv3-f275-rcp7/GHSA-3qv3-f275-rcp7.json index ecfe8dbc6ba..b5b91a29a1c 100644 --- a/advisories/unreviewed/2024/06/GHSA-3qv3-f275-rcp7/GHSA-3qv3-f275-rcp7.json +++ b/advisories/unreviewed/2024/06/GHSA-3qv3-f275-rcp7/GHSA-3qv3-f275-rcp7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-3w6g-f9jc-r7cv/GHSA-3w6g-f9jc-r7cv.json b/advisories/unreviewed/2024/06/GHSA-3w6g-f9jc-r7cv/GHSA-3w6g-f9jc-r7cv.json index 8b0463a39f0..9b4fe56fe42 100644 --- a/advisories/unreviewed/2024/06/GHSA-3w6g-f9jc-r7cv/GHSA-3w6g-f9jc-r7cv.json +++ b/advisories/unreviewed/2024/06/GHSA-3w6g-f9jc-r7cv/GHSA-3w6g-f9jc-r7cv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-5682-crpr-8jqc/GHSA-5682-crpr-8jqc.json b/advisories/unreviewed/2024/06/GHSA-5682-crpr-8jqc/GHSA-5682-crpr-8jqc.json index cfe4982a312..a5235e3f8e7 100644 --- a/advisories/unreviewed/2024/06/GHSA-5682-crpr-8jqc/GHSA-5682-crpr-8jqc.json +++ b/advisories/unreviewed/2024/06/GHSA-5682-crpr-8jqc/GHSA-5682-crpr-8jqc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-6r6p-vqvg-rv66/GHSA-6r6p-vqvg-rv66.json b/advisories/unreviewed/2024/06/GHSA-6r6p-vqvg-rv66/GHSA-6r6p-vqvg-rv66.json index 1e7fb289467..64f1635e75e 100644 --- a/advisories/unreviewed/2024/06/GHSA-6r6p-vqvg-rv66/GHSA-6r6p-vqvg-rv66.json +++ b/advisories/unreviewed/2024/06/GHSA-6r6p-vqvg-rv66/GHSA-6r6p-vqvg-rv66.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-7pvw-9rhg-2g4f/GHSA-7pvw-9rhg-2g4f.json b/advisories/unreviewed/2024/06/GHSA-7pvw-9rhg-2g4f/GHSA-7pvw-9rhg-2g4f.json index 0ecfe4e0378..57309a4e586 100644 --- a/advisories/unreviewed/2024/06/GHSA-7pvw-9rhg-2g4f/GHSA-7pvw-9rhg-2g4f.json +++ b/advisories/unreviewed/2024/06/GHSA-7pvw-9rhg-2g4f/GHSA-7pvw-9rhg-2g4f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-9x48-wxw2-589j/GHSA-9x48-wxw2-589j.json b/advisories/unreviewed/2024/06/GHSA-9x48-wxw2-589j/GHSA-9x48-wxw2-589j.json index 40dc003ef6a..a8b58dbcee9 100644 --- a/advisories/unreviewed/2024/06/GHSA-9x48-wxw2-589j/GHSA-9x48-wxw2-589j.json +++ b/advisories/unreviewed/2024/06/GHSA-9x48-wxw2-589j/GHSA-9x48-wxw2-589j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-cgc3-wxqq-7x44/GHSA-cgc3-wxqq-7x44.json b/advisories/unreviewed/2024/06/GHSA-cgc3-wxqq-7x44/GHSA-cgc3-wxqq-7x44.json index d2de923a5d4..40c2b7a525c 100644 --- a/advisories/unreviewed/2024/06/GHSA-cgc3-wxqq-7x44/GHSA-cgc3-wxqq-7x44.json +++ b/advisories/unreviewed/2024/06/GHSA-cgc3-wxqq-7x44/GHSA-cgc3-wxqq-7x44.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-fgm5-jgr7-5rfv/GHSA-fgm5-jgr7-5rfv.json b/advisories/unreviewed/2024/06/GHSA-fgm5-jgr7-5rfv/GHSA-fgm5-jgr7-5rfv.json index 02a6a44ef89..96abedf0172 100644 --- a/advisories/unreviewed/2024/06/GHSA-fgm5-jgr7-5rfv/GHSA-fgm5-jgr7-5rfv.json +++ b/advisories/unreviewed/2024/06/GHSA-fgm5-jgr7-5rfv/GHSA-fgm5-jgr7-5rfv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-frhp-5pq4-j68v/GHSA-frhp-5pq4-j68v.json b/advisories/unreviewed/2024/06/GHSA-frhp-5pq4-j68v/GHSA-frhp-5pq4-j68v.json index 61280bf9eb5..59b35373fbd 100644 --- a/advisories/unreviewed/2024/06/GHSA-frhp-5pq4-j68v/GHSA-frhp-5pq4-j68v.json +++ b/advisories/unreviewed/2024/06/GHSA-frhp-5pq4-j68v/GHSA-frhp-5pq4-j68v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-fvmr-3pjr-w785/GHSA-fvmr-3pjr-w785.json b/advisories/unreviewed/2024/06/GHSA-fvmr-3pjr-w785/GHSA-fvmr-3pjr-w785.json index 503f5575246..973692b0e3f 100644 --- a/advisories/unreviewed/2024/06/GHSA-fvmr-3pjr-w785/GHSA-fvmr-3pjr-w785.json +++ b/advisories/unreviewed/2024/06/GHSA-fvmr-3pjr-w785/GHSA-fvmr-3pjr-w785.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-g3xp-qcvf-x6c5/GHSA-g3xp-qcvf-x6c5.json b/advisories/unreviewed/2024/06/GHSA-g3xp-qcvf-x6c5/GHSA-g3xp-qcvf-x6c5.json index 92b5c0b573b..329e0b6cf22 100644 --- a/advisories/unreviewed/2024/06/GHSA-g3xp-qcvf-x6c5/GHSA-g3xp-qcvf-x6c5.json +++ b/advisories/unreviewed/2024/06/GHSA-g3xp-qcvf-x6c5/GHSA-g3xp-qcvf-x6c5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-gxrf-wgpm-vj98/GHSA-gxrf-wgpm-vj98.json b/advisories/unreviewed/2024/06/GHSA-gxrf-wgpm-vj98/GHSA-gxrf-wgpm-vj98.json index c8e61bc54f5..c18840d40fc 100644 --- a/advisories/unreviewed/2024/06/GHSA-gxrf-wgpm-vj98/GHSA-gxrf-wgpm-vj98.json +++ b/advisories/unreviewed/2024/06/GHSA-gxrf-wgpm-vj98/GHSA-gxrf-wgpm-vj98.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-h3jj-r682-2v47/GHSA-h3jj-r682-2v47.json b/advisories/unreviewed/2024/06/GHSA-h3jj-r682-2v47/GHSA-h3jj-r682-2v47.json index 51b2e13d222..bb8f9b88177 100644 --- a/advisories/unreviewed/2024/06/GHSA-h3jj-r682-2v47/GHSA-h3jj-r682-2v47.json +++ b/advisories/unreviewed/2024/06/GHSA-h3jj-r682-2v47/GHSA-h3jj-r682-2v47.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-h8x2-gpfm-mf5w/GHSA-h8x2-gpfm-mf5w.json b/advisories/unreviewed/2024/06/GHSA-h8x2-gpfm-mf5w/GHSA-h8x2-gpfm-mf5w.json index 29399bf97f8..c486bbcad22 100644 --- a/advisories/unreviewed/2024/06/GHSA-h8x2-gpfm-mf5w/GHSA-h8x2-gpfm-mf5w.json +++ b/advisories/unreviewed/2024/06/GHSA-h8x2-gpfm-mf5w/GHSA-h8x2-gpfm-mf5w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-jg87-vjfx-24vv/GHSA-jg87-vjfx-24vv.json b/advisories/unreviewed/2024/06/GHSA-jg87-vjfx-24vv/GHSA-jg87-vjfx-24vv.json index 9d4f14dc43f..5f9e340d18e 100644 --- a/advisories/unreviewed/2024/06/GHSA-jg87-vjfx-24vv/GHSA-jg87-vjfx-24vv.json +++ b/advisories/unreviewed/2024/06/GHSA-jg87-vjfx-24vv/GHSA-jg87-vjfx-24vv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-m6c3-2jgq-7ffq/GHSA-m6c3-2jgq-7ffq.json b/advisories/unreviewed/2024/06/GHSA-m6c3-2jgq-7ffq/GHSA-m6c3-2jgq-7ffq.json index c6e11ef23ad..6202e87b1a7 100644 --- a/advisories/unreviewed/2024/06/GHSA-m6c3-2jgq-7ffq/GHSA-m6c3-2jgq-7ffq.json +++ b/advisories/unreviewed/2024/06/GHSA-m6c3-2jgq-7ffq/GHSA-m6c3-2jgq-7ffq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-mh9w-chrg-w8jh/GHSA-mh9w-chrg-w8jh.json b/advisories/unreviewed/2024/06/GHSA-mh9w-chrg-w8jh/GHSA-mh9w-chrg-w8jh.json index df14de06f83..4f43dd8bfab 100644 --- a/advisories/unreviewed/2024/06/GHSA-mh9w-chrg-w8jh/GHSA-mh9w-chrg-w8jh.json +++ b/advisories/unreviewed/2024/06/GHSA-mh9w-chrg-w8jh/GHSA-mh9w-chrg-w8jh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-mwvw-g9vm-2544/GHSA-mwvw-g9vm-2544.json b/advisories/unreviewed/2024/06/GHSA-mwvw-g9vm-2544/GHSA-mwvw-g9vm-2544.json index bcaa51dc2f2..a0b389ad1a0 100644 --- a/advisories/unreviewed/2024/06/GHSA-mwvw-g9vm-2544/GHSA-mwvw-g9vm-2544.json +++ b/advisories/unreviewed/2024/06/GHSA-mwvw-g9vm-2544/GHSA-mwvw-g9vm-2544.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-pjpj-9v4j-w3f2/GHSA-pjpj-9v4j-w3f2.json b/advisories/unreviewed/2024/06/GHSA-pjpj-9v4j-w3f2/GHSA-pjpj-9v4j-w3f2.json index db26b90ec26..f687544dba7 100644 --- a/advisories/unreviewed/2024/06/GHSA-pjpj-9v4j-w3f2/GHSA-pjpj-9v4j-w3f2.json +++ b/advisories/unreviewed/2024/06/GHSA-pjpj-9v4j-w3f2/GHSA-pjpj-9v4j-w3f2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-q9qq-x7ff-m4g5/GHSA-q9qq-x7ff-m4g5.json b/advisories/unreviewed/2024/06/GHSA-q9qq-x7ff-m4g5/GHSA-q9qq-x7ff-m4g5.json index 1b867744301..e0bfcb34a65 100644 --- a/advisories/unreviewed/2024/06/GHSA-q9qq-x7ff-m4g5/GHSA-q9qq-x7ff-m4g5.json +++ b/advisories/unreviewed/2024/06/GHSA-q9qq-x7ff-m4g5/GHSA-q9qq-x7ff-m4g5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-r6jx-8gj3-p962/GHSA-r6jx-8gj3-p962.json b/advisories/unreviewed/2024/06/GHSA-r6jx-8gj3-p962/GHSA-r6jx-8gj3-p962.json index 8c5983d1745..5b7d33dbd53 100644 --- a/advisories/unreviewed/2024/06/GHSA-r6jx-8gj3-p962/GHSA-r6jx-8gj3-p962.json +++ b/advisories/unreviewed/2024/06/GHSA-r6jx-8gj3-p962/GHSA-r6jx-8gj3-p962.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-rx3p-3v8j-hgw8/GHSA-rx3p-3v8j-hgw8.json b/advisories/unreviewed/2024/06/GHSA-rx3p-3v8j-hgw8/GHSA-rx3p-3v8j-hgw8.json index 117f44d3b10..2ae08492da1 100644 --- a/advisories/unreviewed/2024/06/GHSA-rx3p-3v8j-hgw8/GHSA-rx3p-3v8j-hgw8.json +++ b/advisories/unreviewed/2024/06/GHSA-rx3p-3v8j-hgw8/GHSA-rx3p-3v8j-hgw8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-x84c-6pxg-f355/GHSA-x84c-6pxg-f355.json b/advisories/unreviewed/2024/06/GHSA-x84c-6pxg-f355/GHSA-x84c-6pxg-f355.json index ff92683ba5f..2bb210010e7 100644 --- a/advisories/unreviewed/2024/06/GHSA-x84c-6pxg-f355/GHSA-x84c-6pxg-f355.json +++ b/advisories/unreviewed/2024/06/GHSA-x84c-6pxg-f355/GHSA-x84c-6pxg-f355.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-xr47-8jmm-28wq/GHSA-xr47-8jmm-28wq.json b/advisories/unreviewed/2024/06/GHSA-xr47-8jmm-28wq/GHSA-xr47-8jmm-28wq.json index 6223de035a8..1f6a9b83605 100644 --- a/advisories/unreviewed/2024/06/GHSA-xr47-8jmm-28wq/GHSA-xr47-8jmm-28wq.json +++ b/advisories/unreviewed/2024/06/GHSA-xr47-8jmm-28wq/GHSA-xr47-8jmm-28wq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY",