From 97b8977e298ca7a5a5e2a38fe1832f3f1098006d Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Thu, 28 Nov 2024 05:15:40 +0000 Subject: [PATCH] Advisory Database Sync --- .../04/GHSA-4gr9-99j3-vqxv/GHSA-4gr9-99j3-vqxv.json | 4 +--- .../04/GHSA-58hj-575g-5j25/GHSA-58hj-575g-5j25.json | 4 +--- .../04/GHSA-7whr-j8vf-r4wj/GHSA-7whr-j8vf-r4wj.json | 4 +--- .../04/GHSA-92j7-34x9-f3jw/GHSA-92j7-34x9-f3jw.json | 4 +--- .../04/GHSA-9cmq-pj6p-hgwf/GHSA-9cmq-pj6p-hgwf.json | 4 +--- .../04/GHSA-h2xh-jvpf-xq42/GHSA-h2xh-jvpf-xq42.json | 4 +--- .../04/GHSA-hj4h-vqpq-95wg/GHSA-hj4h-vqpq-95wg.json | 4 +--- .../04/GHSA-p5rr-q5g6-gm42/GHSA-p5rr-q5g6-gm42.json | 4 +--- .../04/GHSA-qg4g-6jcq-rw93/GHSA-qg4g-6jcq-rw93.json | 4 +--- .../04/GHSA-rh6c-jh4c-9fg3/GHSA-rh6c-jh4c-9fg3.json | 4 +--- .../04/GHSA-wcwp-r3fj-mm3p/GHSA-wcwp-r3fj-mm3p.json | 4 +--- .../04/GHSA-x445-mmpw-7r4f/GHSA-x445-mmpw-7r4f.json | 4 +--- .../03/GHSA-69fc-v223-6rjw/GHSA-69fc-v223-6rjw.json | 8 ++------ .../08/GHSA-62pr-54gv-vg5g/GHSA-62pr-54gv-vg5g.json | 4 +--- .../08/GHSA-93wx-j2qv-49fg/GHSA-93wx-j2qv-49fg.json | 4 +--- .../02/GHSA-7c9g-vj9m-8pm6/GHSA-7c9g-vj9m-8pm6.json | 4 +--- .../07/GHSA-phg7-8mm9-gj88/GHSA-phg7-8mm9-gj88.json | 4 ++-- .../04/GHSA-269j-r79f-hqvp/GHSA-269j-r79f-hqvp.json | 12 +++--------- .../04/GHSA-27v5-q384-ff55/GHSA-27v5-q384-ff55.json | 12 +++--------- .../04/GHSA-28rw-jv54-hwff/GHSA-28rw-jv54-hwff.json | 12 +++--------- .../04/GHSA-34gv-g2q3-w3f7/GHSA-34gv-g2q3-w3f7.json | 12 +++--------- .../04/GHSA-3645-c3p7-mxq3/GHSA-3645-c3p7-mxq3.json | 12 +++--------- .../04/GHSA-36f6-v26f-xjrx/GHSA-36f6-v26f-xjrx.json | 12 +++--------- .../04/GHSA-4369-x39w-2545/GHSA-4369-x39w-2545.json | 12 +++--------- .../04/GHSA-46x9-grh5-9g2v/GHSA-46x9-grh5-9g2v.json | 12 +++--------- .../04/GHSA-4cp7-42rr-fw9x/GHSA-4cp7-42rr-fw9x.json | 12 +++--------- .../04/GHSA-4gm3-q79f-82pq/GHSA-4gm3-q79f-82pq.json | 12 +++--------- .../04/GHSA-4j96-pcv8-f59x/GHSA-4j96-pcv8-f59x.json | 12 +++--------- .../04/GHSA-5fmx-9hq9-vfjx/GHSA-5fmx-9hq9-vfjx.json | 12 +++--------- .../04/GHSA-68p6-7r44-42r5/GHSA-68p6-7r44-42r5.json | 12 +++--------- .../04/GHSA-74q5-9hvp-962c/GHSA-74q5-9hvp-962c.json | 8 ++------ .../04/GHSA-75rm-2rv5-8wmj/GHSA-75rm-2rv5-8wmj.json | 12 +++--------- .../04/GHSA-7hx6-74mh-98hg/GHSA-7hx6-74mh-98hg.json | 12 +++--------- .../04/GHSA-86pr-5x2p-wcch/GHSA-86pr-5x2p-wcch.json | 12 +++--------- .../04/GHSA-876f-7fgx-hc7m/GHSA-876f-7fgx-hc7m.json | 12 +++--------- .../04/GHSA-8v52-q9fv-gxr2/GHSA-8v52-q9fv-gxr2.json | 12 +++--------- .../04/GHSA-9f4j-32h6-cmvx/GHSA-9f4j-32h6-cmvx.json | 12 +++--------- .../04/GHSA-9mpp-rqm3-c9v4/GHSA-9mpp-rqm3-c9v4.json | 12 +++--------- .../04/GHSA-cf94-g7fg-mcxq/GHSA-cf94-g7fg-mcxq.json | 12 +++--------- .../04/GHSA-cmcm-62j3-r8fh/GHSA-cmcm-62j3-r8fh.json | 12 +++--------- .../04/GHSA-cmjj-h9fc-7jm4/GHSA-cmjj-h9fc-7jm4.json | 12 +++--------- .../04/GHSA-cq22-4cpp-pf7x/GHSA-cq22-4cpp-pf7x.json | 12 +++--------- .../04/GHSA-cwf5-g2q5-5f88/GHSA-cwf5-g2q5-5f88.json | 12 +++--------- .../04/GHSA-f9wq-gc43-847q/GHSA-f9wq-gc43-847q.json | 12 +++--------- .../04/GHSA-fqfj-7h7r-fmwr/GHSA-fqfj-7h7r-fmwr.json | 12 +++--------- .../04/GHSA-g36w-54v5-c3m5/GHSA-g36w-54v5-c3m5.json | 12 +++--------- .../04/GHSA-gpx9-hc6q-7w7f/GHSA-gpx9-hc6q-7w7f.json | 12 +++--------- .../04/GHSA-h56m-2v87-fv2w/GHSA-h56m-2v87-fv2w.json | 12 +++--------- .../04/GHSA-hcg7-8c46-x54c/GHSA-hcg7-8c46-x54c.json | 12 +++--------- .../04/GHSA-hwc7-g2qc-8fmv/GHSA-hwc7-g2qc-8fmv.json | 12 +++--------- .../04/GHSA-jfjg-c5hf-9wc8/GHSA-jfjg-c5hf-9wc8.json | 12 +++--------- .../04/GHSA-jmgg-cm9p-c8rw/GHSA-jmgg-cm9p-c8rw.json | 12 +++--------- .../04/GHSA-mcpj-pxg7-wjrq/GHSA-mcpj-pxg7-wjrq.json | 12 +++--------- .../04/GHSA-mj4h-27m9-3662/GHSA-mj4h-27m9-3662.json | 12 +++--------- .../04/GHSA-mpjm-f737-j9fp/GHSA-mpjm-f737-j9fp.json | 12 +++--------- .../04/GHSA-p2c7-wf9f-vf9p/GHSA-p2c7-wf9f-vf9p.json | 12 +++--------- .../04/GHSA-p887-wgc2-jm3q/GHSA-p887-wgc2-jm3q.json | 12 +++--------- .../04/GHSA-p899-xcmv-4c85/GHSA-p899-xcmv-4c85.json | 12 +++--------- .../04/GHSA-pgrc-mhqr-gxg2/GHSA-pgrc-mhqr-gxg2.json | 12 +++--------- .../04/GHSA-q63q-qrjw-wxq9/GHSA-q63q-qrjw-wxq9.json | 12 +++--------- .../04/GHSA-q894-gjx6-p8jv/GHSA-q894-gjx6-p8jv.json | 12 +++--------- .../04/GHSA-q9v9-jrmv-m92m/GHSA-q9v9-jrmv-m92m.json | 12 +++--------- .../04/GHSA-qp67-ccp4-w9jv/GHSA-qp67-ccp4-w9jv.json | 12 +++--------- .../04/GHSA-qpxc-fvhf-5gmq/GHSA-qpxc-fvhf-5gmq.json | 12 +++--------- .../04/GHSA-qq3w-r534-5844/GHSA-qq3w-r534-5844.json | 12 +++--------- .../04/GHSA-qxcw-cgr3-7wmw/GHSA-qxcw-cgr3-7wmw.json | 8 ++------ .../04/GHSA-r87m-8hr6-36pj/GHSA-r87m-8hr6-36pj.json | 12 +++--------- .../04/GHSA-vcq6-c6fh-vhfh/GHSA-vcq6-c6fh-vhfh.json | 12 +++--------- .../04/GHSA-vm95-53x8-2g6x/GHSA-vm95-53x8-2g6x.json | 12 +++--------- .../04/GHSA-vv7q-j29r-v3qw/GHSA-vv7q-j29r-v3qw.json | 12 +++--------- .../04/GHSA-vwmg-6jpg-p393/GHSA-vwmg-6jpg-p393.json | 12 +++--------- .../04/GHSA-w4wx-m7ch-9g96/GHSA-w4wx-m7ch-9g96.json | 12 +++--------- .../04/GHSA-xc23-22ch-xphm/GHSA-xc23-22ch-xphm.json | 12 +++--------- .../04/GHSA-xfmj-3h76-xr99/GHSA-xfmj-3h76-xr99.json | 12 +++--------- .../04/GHSA-xg8q-p5fh-c94f/GHSA-xg8q-p5fh-c94f.json | 12 +++--------- .../04/GHSA-xj39-j4c9-rmv6/GHSA-xj39-j4c9-rmv6.json | 12 +++--------- .../05/GHSA-22gj-rr23-9xgc/GHSA-22gj-rr23-9xgc.json | 12 +++--------- .../05/GHSA-2398-fmp4-7w9h/GHSA-2398-fmp4-7w9h.json | 8 ++------ .../05/GHSA-23m4-7vqv-gc3v/GHSA-23m4-7vqv-gc3v.json | 12 +++--------- .../05/GHSA-248h-xgcm-3q77/GHSA-248h-xgcm-3q77.json | 8 ++------ .../05/GHSA-26ff-3j7m-vqx6/GHSA-26ff-3j7m-vqx6.json | 12 +++--------- .../05/GHSA-27q2-f57c-rgmr/GHSA-27q2-f57c-rgmr.json | 12 +++--------- .../05/GHSA-293j-rh9p-w2r8/GHSA-293j-rh9p-w2r8.json | 12 +++--------- .../05/GHSA-29v5-v73g-x3cp/GHSA-29v5-v73g-x3cp.json | 12 +++--------- .../05/GHSA-2ccr-95gx-57p2/GHSA-2ccr-95gx-57p2.json | 12 +++--------- .../05/GHSA-2cf7-jh6c-gm8v/GHSA-2cf7-jh6c-gm8v.json | 12 +++--------- .../05/GHSA-2chv-vxpq-wr23/GHSA-2chv-vxpq-wr23.json | 12 +++--------- .../05/GHSA-2f28-fj6q-q44h/GHSA-2f28-fj6q-q44h.json | 12 +++--------- .../05/GHSA-2f64-gg3p-pvr3/GHSA-2f64-gg3p-pvr3.json | 8 ++------ .../05/GHSA-2fvj-qg75-5fhx/GHSA-2fvj-qg75-5fhx.json | 12 +++--------- .../05/GHSA-2hpj-p87v-vc3v/GHSA-2hpj-p87v-vc3v.json | 12 +++--------- .../05/GHSA-2j38-pmwm-2h3f/GHSA-2j38-pmwm-2h3f.json | 8 ++------ .../05/GHSA-2jrr-xw62-5ggf/GHSA-2jrr-xw62-5ggf.json | 12 +++--------- .../05/GHSA-2mx6-6v5m-wj8m/GHSA-2mx6-6v5m-wj8m.json | 12 +++--------- .../05/GHSA-2p37-pq7q-44mr/GHSA-2p37-pq7q-44mr.json | 12 +++--------- .../05/GHSA-2p63-m843-cvx8/GHSA-2p63-m843-cvx8.json | 12 +++--------- .../05/GHSA-2pg2-438w-c6wh/GHSA-2pg2-438w-c6wh.json | 12 +++--------- .../05/GHSA-2pp3-576m-vhmq/GHSA-2pp3-576m-vhmq.json | 8 ++------ .../05/GHSA-2qrm-vwv9-87jm/GHSA-2qrm-vwv9-87jm.json | 8 ++------ .../05/GHSA-2rxm-39cm-27mj/GHSA-2rxm-39cm-27mj.json | 12 +++--------- .../05/GHSA-2vgr-3xjr-x32c/GHSA-2vgr-3xjr-x32c.json | 12 +++--------- .../05/GHSA-2vxg-v3f5-p55m/GHSA-2vxg-v3f5-p55m.json | 12 +++--------- .../05/GHSA-2x2p-r3j5-7pgp/GHSA-2x2p-r3j5-7pgp.json | 12 +++--------- .../05/GHSA-2x4j-x774-w5j9/GHSA-2x4j-x774-w5j9.json | 8 ++------ .../05/GHSA-2xmj-7fxc-h97c/GHSA-2xmj-7fxc-h97c.json | 12 +++--------- .../05/GHSA-35xw-gh3h-mxj5/GHSA-35xw-gh3h-mxj5.json | 12 +++--------- .../05/GHSA-3678-jj2q-4554/GHSA-3678-jj2q-4554.json | 8 ++------ .../05/GHSA-3686-jjcf-4w27/GHSA-3686-jjcf-4w27.json | 8 ++------ .../05/GHSA-36rr-mv68-7vvr/GHSA-36rr-mv68-7vvr.json | 12 +++--------- .../05/GHSA-38cj-9mc9-ph6m/GHSA-38cj-9mc9-ph6m.json | 12 +++--------- .../05/GHSA-38g8-fx3r-j23m/GHSA-38g8-fx3r-j23m.json | 4 +--- .../05/GHSA-38p9-56pv-pmwc/GHSA-38p9-56pv-pmwc.json | 8 ++------ .../05/GHSA-38qc-qp68-2r5r/GHSA-38qc-qp68-2r5r.json | 8 ++------ .../05/GHSA-3gr3-g4vv-xf2r/GHSA-3gr3-g4vv-xf2r.json | 4 +--- .../05/GHSA-3j4r-w3gq-96pw/GHSA-3j4r-w3gq-96pw.json | 8 ++------ .../05/GHSA-3jx6-xj3f-cxpm/GHSA-3jx6-xj3f-cxpm.json | 12 +++--------- .../05/GHSA-3m25-4622-6q4x/GHSA-3m25-4622-6q4x.json | 12 +++--------- .../05/GHSA-3p28-c6q8-qwmh/GHSA-3p28-c6q8-qwmh.json | 8 ++------ .../05/GHSA-3p5c-rjfv-r2rv/GHSA-3p5c-rjfv-r2rv.json | 4 +--- .../05/GHSA-3pv7-43jr-xjjj/GHSA-3pv7-43jr-xjjj.json | 12 +++--------- .../05/GHSA-3px7-mx75-562c/GHSA-3px7-mx75-562c.json | 8 ++------ .../05/GHSA-3qgp-95cw-h2qr/GHSA-3qgp-95cw-h2qr.json | 12 +++--------- .../05/GHSA-3v2r-86vj-q55q/GHSA-3v2r-86vj-q55q.json | 8 ++------ .../05/GHSA-3x27-c9g4-52f5/GHSA-3x27-c9g4-52f5.json | 12 +++--------- .../05/GHSA-3xpp-76c3-mjqm/GHSA-3xpp-76c3-mjqm.json | 12 +++--------- .../05/GHSA-3xq6-3w4g-4j37/GHSA-3xq6-3w4g-4j37.json | 8 ++------ .../05/GHSA-42h8-r672-w9r8/GHSA-42h8-r672-w9r8.json | 12 +++--------- .../05/GHSA-433p-hr74-8hv2/GHSA-433p-hr74-8hv2.json | 12 +++--------- .../05/GHSA-435p-pf44-5x2x/GHSA-435p-pf44-5x2x.json | 12 +++--------- .../05/GHSA-4462-fg6w-364q/GHSA-4462-fg6w-364q.json | 12 +++--------- .../05/GHSA-4472-fqw9-56jh/GHSA-4472-fqw9-56jh.json | 12 +++--------- .../05/GHSA-44wx-pxp5-fjxm/GHSA-44wx-pxp5-fjxm.json | 12 +++--------- .../05/GHSA-45c5-53rx-cg43/GHSA-45c5-53rx-cg43.json | 12 +++--------- .../05/GHSA-46h8-9xpr-rf6w/GHSA-46h8-9xpr-rf6w.json | 4 +--- .../05/GHSA-46mh-w55g-p27c/GHSA-46mh-w55g-p27c.json | 8 ++------ .../05/GHSA-485m-r4rj-8fm4/GHSA-485m-r4rj-8fm4.json | 12 +++--------- .../05/GHSA-487c-g6v4-38j9/GHSA-487c-g6v4-38j9.json | 12 +++--------- .../05/GHSA-488g-vjq5-7wcq/GHSA-488g-vjq5-7wcq.json | 12 +++--------- .../05/GHSA-4c66-wfc9-5fpf/GHSA-4c66-wfc9-5fpf.json | 12 +++--------- .../05/GHSA-4cj9-m6pr-4w4x/GHSA-4cj9-m6pr-4w4x.json | 8 ++------ .../05/GHSA-4hf4-8q97-rmrh/GHSA-4hf4-8q97-rmrh.json | 12 +++--------- .../05/GHSA-4hj5-473r-jgc4/GHSA-4hj5-473r-jgc4.json | 8 ++------ .../05/GHSA-4p5h-fr4c-h6c6/GHSA-4p5h-fr4c-h6c6.json | 12 +++--------- .../05/GHSA-4p6j-x7fv-6w52/GHSA-4p6j-x7fv-6w52.json | 12 +++--------- .../05/GHSA-4qj8-98mv-2vmv/GHSA-4qj8-98mv-2vmv.json | 12 +++--------- .../05/GHSA-4qx3-mf5m-w595/GHSA-4qx3-mf5m-w595.json | 12 +++--------- .../05/GHSA-4rcx-c5vj-xwh2/GHSA-4rcx-c5vj-xwh2.json | 8 ++------ .../05/GHSA-4rhg-f685-m3px/GHSA-4rhg-f685-m3px.json | 4 +--- .../05/GHSA-4rvx-m2rf-f8jx/GHSA-4rvx-m2rf-f8jx.json | 12 +++--------- .../05/GHSA-4v7m-745p-mv2f/GHSA-4v7m-745p-mv2f.json | 12 +++--------- .../05/GHSA-4vqp-7964-fg2v/GHSA-4vqp-7964-fg2v.json | 12 +++--------- .../05/GHSA-4xqf-wpgp-683p/GHSA-4xqf-wpgp-683p.json | 8 ++------ .../05/GHSA-5242-q4vx-3j4h/GHSA-5242-q4vx-3j4h.json | 12 +++--------- .../05/GHSA-52gg-946h-62x9/GHSA-52gg-946h-62x9.json | 12 +++--------- .../05/GHSA-53g6-7cqf-hc3p/GHSA-53g6-7cqf-hc3p.json | 12 +++--------- .../05/GHSA-53jj-4vr2-hc67/GHSA-53jj-4vr2-hc67.json | 12 +++--------- .../05/GHSA-54q6-x68f-358m/GHSA-54q6-x68f-358m.json | 12 +++--------- .../05/GHSA-5549-w4f7-8jwg/GHSA-5549-w4f7-8jwg.json | 12 +++--------- .../05/GHSA-55c5-m8rj-gx6v/GHSA-55c5-m8rj-gx6v.json | 12 +++--------- .../05/GHSA-55r9-fmjm-g3pq/GHSA-55r9-fmjm-g3pq.json | 8 ++------ .../05/GHSA-56jq-fm7j-74gp/GHSA-56jq-fm7j-74gp.json | 8 ++------ .../05/GHSA-56qq-4q2h-c244/GHSA-56qq-4q2h-c244.json | 12 +++--------- .../05/GHSA-57x9-fxwr-cf8p/GHSA-57x9-fxwr-cf8p.json | 12 +++--------- .../05/GHSA-589m-6r98-q925/GHSA-589m-6r98-q925.json | 8 ++------ .../05/GHSA-58jq-q8jm-f39c/GHSA-58jq-q8jm-f39c.json | 8 ++------ .../05/GHSA-593j-g5r5-hfx3/GHSA-593j-g5r5-hfx3.json | 12 +++--------- .../05/GHSA-59w9-w874-mh7v/GHSA-59w9-w874-mh7v.json | 12 +++--------- .../05/GHSA-5cf2-r9x3-pm6p/GHSA-5cf2-r9x3-pm6p.json | 12 +++--------- .../05/GHSA-5cqh-cf3j-whp5/GHSA-5cqh-cf3j-whp5.json | 12 +++--------- .../05/GHSA-5f7j-c36c-7wmc/GHSA-5f7j-c36c-7wmc.json | 8 ++------ .../05/GHSA-5g5q-fp24-vv4f/GHSA-5g5q-fp24-vv4f.json | 8 ++------ .../05/GHSA-5g9w-mffc-46fh/GHSA-5g9w-mffc-46fh.json | 8 ++------ .../05/GHSA-5gpv-qvxg-fh9v/GHSA-5gpv-qvxg-fh9v.json | 4 +--- .../05/GHSA-5h23-684v-cj33/GHSA-5h23-684v-cj33.json | 12 +++--------- .../05/GHSA-5h5f-c5gc-7x43/GHSA-5h5f-c5gc-7x43.json | 12 +++--------- .../05/GHSA-5m3g-3f6j-532p/GHSA-5m3g-3f6j-532p.json | 12 +++--------- .../05/GHSA-5mp8-4qmg-75h8/GHSA-5mp8-4qmg-75h8.json | 8 ++------ .../05/GHSA-5mwx-jr2x-3wj7/GHSA-5mwx-jr2x-3wj7.json | 12 +++--------- .../05/GHSA-5p88-86c4-vg32/GHSA-5p88-86c4-vg32.json | 4 +--- .../05/GHSA-5pgv-3r2c-qm96/GHSA-5pgv-3r2c-qm96.json | 12 +++--------- .../05/GHSA-5pv5-vwqw-425f/GHSA-5pv5-vwqw-425f.json | 8 ++------ .../05/GHSA-5r94-732v-9hm6/GHSA-5r94-732v-9hm6.json | 12 +++--------- .../05/GHSA-5rc2-w7v5-6rgm/GHSA-5rc2-w7v5-6rgm.json | 8 ++------ .../05/GHSA-5rmh-f225-qfjh/GHSA-5rmh-f225-qfjh.json | 8 ++------ .../05/GHSA-5vgj-xm2m-mpf5/GHSA-5vgj-xm2m-mpf5.json | 12 +++--------- .../05/GHSA-5w5x-r596-74gr/GHSA-5w5x-r596-74gr.json | 8 ++------ .../05/GHSA-5wwp-3576-jfjc/GHSA-5wwp-3576-jfjc.json | 4 +--- .../05/GHSA-62vp-53x9-5535/GHSA-62vp-53x9-5535.json | 12 +++--------- .../05/GHSA-634r-888j-vmw8/GHSA-634r-888j-vmw8.json | 12 +++--------- .../05/GHSA-6353-474x-4fr8/GHSA-6353-474x-4fr8.json | 8 ++------ .../05/GHSA-63r7-h42c-9pf4/GHSA-63r7-h42c-9pf4.json | 12 +++--------- .../05/GHSA-63wf-3ch2-x4r5/GHSA-63wf-3ch2-x4r5.json | 12 +++--------- .../05/GHSA-6428-3gjw-r4ph/GHSA-6428-3gjw-r4ph.json | 8 ++------ .../05/GHSA-64p8-mq9h-xg88/GHSA-64p8-mq9h-xg88.json | 12 +++--------- .../05/GHSA-6558-6jwp-r9q4/GHSA-6558-6jwp-r9q4.json | 12 +++--------- .../05/GHSA-6568-fq9q-742r/GHSA-6568-fq9q-742r.json | 12 +++--------- .../05/GHSA-65jf-2vcm-9v6q/GHSA-65jf-2vcm-9v6q.json | 12 +++--------- .../05/GHSA-66f2-2g36-5v6c/GHSA-66f2-2g36-5v6c.json | 8 ++------ .../05/GHSA-672q-2qcf-wwfp/GHSA-672q-2qcf-wwfp.json | 12 +++--------- .../05/GHSA-6769-8f7x-qpm9/GHSA-6769-8f7x-qpm9.json | 12 +++--------- .../05/GHSA-682r-wx9c-52cr/GHSA-682r-wx9c-52cr.json | 12 +++--------- .../05/GHSA-68hw-jhqv-grv6/GHSA-68hw-jhqv-grv6.json | 12 +++--------- .../05/GHSA-69gh-c799-mv27/GHSA-69gh-c799-mv27.json | 12 +++--------- .../05/GHSA-6ff4-8qpp-q7q3/GHSA-6ff4-8qpp-q7q3.json | 8 ++------ .../05/GHSA-6fgx-gv8w-pgfv/GHSA-6fgx-gv8w-pgfv.json | 8 ++------ .../05/GHSA-6gq6-x7pv-3ggr/GHSA-6gq6-x7pv-3ggr.json | 12 +++--------- .../05/GHSA-6gqx-rvv7-594p/GHSA-6gqx-rvv7-594p.json | 12 +++--------- .../05/GHSA-6h4v-mxh6-hm7p/GHSA-6h4v-mxh6-hm7p.json | 12 +++--------- .../05/GHSA-6h67-xpj8-pjh2/GHSA-6h67-xpj8-pjh2.json | 8 ++------ .../05/GHSA-6j2j-7w7p-c568/GHSA-6j2j-7w7p-c568.json | 12 +++--------- .../05/GHSA-6jv4-pjpp-r9ww/GHSA-6jv4-pjpp-r9ww.json | 12 +++--------- .../05/GHSA-6p3v-7x9x-66jr/GHSA-6p3v-7x9x-66jr.json | 12 +++--------- .../05/GHSA-6p49-prvx-ch95/GHSA-6p49-prvx-ch95.json | 12 +++--------- .../05/GHSA-6q27-gq7c-j728/GHSA-6q27-gq7c-j728.json | 12 +++--------- .../05/GHSA-6qmf-rrfx-r996/GHSA-6qmf-rrfx-r996.json | 8 ++------ .../05/GHSA-6r48-278j-9xh4/GHSA-6r48-278j-9xh4.json | 8 ++------ .../05/GHSA-6r88-6c47-m32r/GHSA-6r88-6c47-m32r.json | 12 +++--------- .../05/GHSA-6rch-jwj8-2v8f/GHSA-6rch-jwj8-2v8f.json | 12 +++--------- .../05/GHSA-6rh3-m266-5m77/GHSA-6rh3-m266-5m77.json | 4 +--- .../05/GHSA-6rj9-p8fm-j3vm/GHSA-6rj9-p8fm-j3vm.json | 12 +++--------- .../05/GHSA-6v82-qq9q-vcc9/GHSA-6v82-qq9q-vcc9.json | 8 ++------ .../05/GHSA-6wrg-vxvm-8pr3/GHSA-6wrg-vxvm-8pr3.json | 8 ++------ .../05/GHSA-6x5p-8926-fhvm/GHSA-6x5p-8926-fhvm.json | 12 +++--------- .../05/GHSA-7225-46m6-6gr2/GHSA-7225-46m6-6gr2.json | 12 +++--------- .../05/GHSA-74vr-xxv2-w25v/GHSA-74vr-xxv2-w25v.json | 12 +++--------- .../05/GHSA-74x3-ccfh-cj7f/GHSA-74x3-ccfh-cj7f.json | 8 ++------ .../05/GHSA-75p3-2pw6-c8rw/GHSA-75p3-2pw6-c8rw.json | 12 +++--------- .../05/GHSA-76hp-q38p-jw8r/GHSA-76hp-q38p-jw8r.json | 12 +++--------- .../05/GHSA-76wh-gcwf-285w/GHSA-76wh-gcwf-285w.json | 12 +++--------- .../05/GHSA-7794-m8w6-jf63/GHSA-7794-m8w6-jf63.json | 8 ++------ .../05/GHSA-7952-m67q-5m97/GHSA-7952-m67q-5m97.json | 8 ++------ .../05/GHSA-79cj-pgw7-7783/GHSA-79cj-pgw7-7783.json | 12 +++--------- .../05/GHSA-7c3v-rc7q-5qqq/GHSA-7c3v-rc7q-5qqq.json | 12 +++--------- .../05/GHSA-7cjr-m6ff-qgvh/GHSA-7cjr-m6ff-qgvh.json | 12 +++--------- .../05/GHSA-7f37-5g94-gf9f/GHSA-7f37-5g94-gf9f.json | 12 +++--------- .../05/GHSA-7f4f-9f8v-45c8/GHSA-7f4f-9f8v-45c8.json | 12 +++--------- .../05/GHSA-7fg9-hrmc-xv32/GHSA-7fg9-hrmc-xv32.json | 12 +++--------- .../05/GHSA-7fx7-755p-qmjj/GHSA-7fx7-755p-qmjj.json | 4 +--- .../05/GHSA-7h5c-6gf4-8hcw/GHSA-7h5c-6gf4-8hcw.json | 12 +++--------- .../05/GHSA-7hj2-37f3-f976/GHSA-7hj2-37f3-f976.json | 8 ++------ .../05/GHSA-7hvj-fm99-26hr/GHSA-7hvj-fm99-26hr.json | 12 +++--------- .../05/GHSA-7m3r-227g-83xr/GHSA-7m3r-227g-83xr.json | 12 +++--------- .../05/GHSA-7mfq-gx26-8c7w/GHSA-7mfq-gx26-8c7w.json | 12 +++--------- .../05/GHSA-7mhg-248g-c7p6/GHSA-7mhg-248g-c7p6.json | 8 ++------ .../05/GHSA-7mjm-6675-w446/GHSA-7mjm-6675-w446.json | 8 ++------ .../05/GHSA-7mv4-9v7r-5gq3/GHSA-7mv4-9v7r-5gq3.json | 8 ++------ .../05/GHSA-7p36-m8r7-pqhg/GHSA-7p36-m8r7-pqhg.json | 8 ++------ .../05/GHSA-7qpm-4q6m-gh4x/GHSA-7qpm-4q6m-gh4x.json | 12 +++--------- .../05/GHSA-7r52-55rr-f92g/GHSA-7r52-55rr-f92g.json | 12 +++--------- .../05/GHSA-7rfx-v3c8-jg8x/GHSA-7rfx-v3c8-jg8x.json | 8 ++------ .../05/GHSA-7rh8-44p3-q7vr/GHSA-7rh8-44p3-q7vr.json | 12 +++--------- .../05/GHSA-7vpp-24rh-p2mv/GHSA-7vpp-24rh-p2mv.json | 12 +++--------- .../05/GHSA-7vr4-w8wh-ff7q/GHSA-7vr4-w8wh-ff7q.json | 12 +++--------- .../05/GHSA-7vvv-776g-xxjv/GHSA-7vvv-776g-xxjv.json | 8 ++------ .../05/GHSA-7w5f-39wq-4475/GHSA-7w5f-39wq-4475.json | 8 ++------ .../05/GHSA-7xc5-xh63-676w/GHSA-7xc5-xh63-676w.json | 8 ++------ .../05/GHSA-7xjp-88f4-r966/GHSA-7xjp-88f4-r966.json | 8 ++------ .../05/GHSA-824c-87gg-824v/GHSA-824c-87gg-824v.json | 8 ++------ .../05/GHSA-829q-x9xh-rfqm/GHSA-829q-x9xh-rfqm.json | 12 +++--------- .../05/GHSA-82qh-f392-6468/GHSA-82qh-f392-6468.json | 12 +++--------- .../05/GHSA-84p5-r33h-3p55/GHSA-84p5-r33h-3p55.json | 8 ++------ .../05/GHSA-84xc-jf62-8hpx/GHSA-84xc-jf62-8hpx.json | 12 +++--------- .../05/GHSA-85q4-g73v-3g52/GHSA-85q4-g73v-3g52.json | 12 +++--------- .../05/GHSA-877f-fpjf-g2cr/GHSA-877f-fpjf-g2cr.json | 12 +++--------- .../05/GHSA-88cf-g4c2-x69m/GHSA-88cf-g4c2-x69m.json | 8 ++------ .../05/GHSA-8934-73x5-7j23/GHSA-8934-73x5-7j23.json | 8 ++------ .../05/GHSA-8f2q-6mmp-hq58/GHSA-8f2q-6mmp-hq58.json | 8 ++------ .../05/GHSA-8h9g-g25c-xm92/GHSA-8h9g-g25c-xm92.json | 12 +++--------- .../05/GHSA-8hcc-5w75-vqhq/GHSA-8hcc-5w75-vqhq.json | 12 +++--------- .../05/GHSA-8j3r-p64j-mqh7/GHSA-8j3r-p64j-mqh7.json | 12 +++--------- .../05/GHSA-8jf9-xp6v-2hcx/GHSA-8jf9-xp6v-2hcx.json | 12 +++--------- .../05/GHSA-8jp8-cp78-2955/GHSA-8jp8-cp78-2955.json | 8 ++------ .../05/GHSA-8m6g-w26h-3x9w/GHSA-8m6g-w26h-3x9w.json | 8 ++------ .../05/GHSA-8mwq-82jg-rcwh/GHSA-8mwq-82jg-rcwh.json | 12 +++--------- .../05/GHSA-8p87-9j2m-h25h/GHSA-8p87-9j2m-h25h.json | 12 +++--------- .../05/GHSA-8pxm-2ghq-4gq5/GHSA-8pxm-2ghq-4gq5.json | 12 +++--------- .../05/GHSA-8qwq-wfr9-v7hf/GHSA-8qwq-wfr9-v7hf.json | 8 ++------ .../05/GHSA-8rgq-qjc8-jj5v/GHSA-8rgq-qjc8-jj5v.json | 12 +++--------- .../05/GHSA-8vj3-849x-jqx9/GHSA-8vj3-849x-jqx9.json | 8 ++------ .../05/GHSA-8w47-824w-pr9m/GHSA-8w47-824w-pr9m.json | 12 +++--------- .../05/GHSA-8xg7-9pfw-mcrg/GHSA-8xg7-9pfw-mcrg.json | 12 +++--------- .../05/GHSA-8xjw-q898-4mqq/GHSA-8xjw-q898-4mqq.json | 12 +++--------- .../05/GHSA-927j-5q7f-wv8x/GHSA-927j-5q7f-wv8x.json | 12 +++--------- .../05/GHSA-938r-jjfm-4vxv/GHSA-938r-jjfm-4vxv.json | 12 +++--------- .../05/GHSA-93vj-6w32-x9gc/GHSA-93vj-6w32-x9gc.json | 8 ++------ .../05/GHSA-94q8-c6g3-4249/GHSA-94q8-c6g3-4249.json | 8 ++------ .../05/GHSA-94r6-87q5-99jj/GHSA-94r6-87q5-99jj.json | 8 ++------ .../05/GHSA-9697-r6gv-4r4x/GHSA-9697-r6gv-4r4x.json | 8 ++------ .../05/GHSA-978w-jwq5-2hmx/GHSA-978w-jwq5-2hmx.json | 12 +++--------- .../05/GHSA-97j3-c56h-mwjc/GHSA-97j3-c56h-mwjc.json | 12 +++--------- .../05/GHSA-97x2-vjfg-fjhm/GHSA-97x2-vjfg-fjhm.json | 8 ++------ .../05/GHSA-98mh-786v-gf23/GHSA-98mh-786v-gf23.json | 8 ++------ .../05/GHSA-98rh-85p8-3h4g/GHSA-98rh-85p8-3h4g.json | 12 +++--------- .../05/GHSA-99gh-8v88-fprw/GHSA-99gh-8v88-fprw.json | 12 +++--------- .../05/GHSA-99mj-2r96-xhx2/GHSA-99mj-2r96-xhx2.json | 8 ++------ .../05/GHSA-99vh-qp5v-28g7/GHSA-99vh-qp5v-28g7.json | 12 +++--------- .../05/GHSA-9c43-hccm-57qv/GHSA-9c43-hccm-57qv.json | 12 +++--------- .../05/GHSA-9c9w-w44q-j64w/GHSA-9c9w-w44q-j64w.json | 12 +++--------- .../05/GHSA-9cpg-qfgf-gwq7/GHSA-9cpg-qfgf-gwq7.json | 12 +++--------- .../05/GHSA-9cr7-738f-xvm3/GHSA-9cr7-738f-xvm3.json | 12 +++--------- .../05/GHSA-9g39-jgf9-9mxx/GHSA-9g39-jgf9-9mxx.json | 4 +--- .../05/GHSA-9g7g-37p3-qm2q/GHSA-9g7g-37p3-qm2q.json | 12 +++--------- .../05/GHSA-9m42-6c63-mxrr/GHSA-9m42-6c63-mxrr.json | 12 +++--------- .../05/GHSA-9mp7-fhrg-q2xq/GHSA-9mp7-fhrg-q2xq.json | 8 ++------ .../05/GHSA-9mq5-gmx4-79cq/GHSA-9mq5-gmx4-79cq.json | 12 +++--------- .../05/GHSA-9mq9-7jr9-cw53/GHSA-9mq9-7jr9-cw53.json | 8 ++------ .../05/GHSA-9q8w-pg22-cv2p/GHSA-9q8w-pg22-cv2p.json | 12 +++--------- .../05/GHSA-9qjg-gpw5-cfpg/GHSA-9qjg-gpw5-cfpg.json | 12 +++--------- .../05/GHSA-9v48-gf8r-5q52/GHSA-9v48-gf8r-5q52.json | 12 +++--------- .../05/GHSA-9v72-4g4q-gqfc/GHSA-9v72-4g4q-gqfc.json | 8 ++------ .../05/GHSA-9v98-2cr3-2wq3/GHSA-9v98-2cr3-2wq3.json | 4 +--- .../05/GHSA-9vqw-64j6-rhmf/GHSA-9vqw-64j6-rhmf.json | 8 ++------ .../05/GHSA-9vxj-q9qf-h6p2/GHSA-9vxj-q9qf-h6p2.json | 8 ++------ .../05/GHSA-9w3w-gw8r-v3wj/GHSA-9w3w-gw8r-v3wj.json | 12 +++--------- .../05/GHSA-9w69-cmrr-7x8x/GHSA-9w69-cmrr-7x8x.json | 8 ++------ .../05/GHSA-9xcw-rj64-5w25/GHSA-9xcw-rj64-5w25.json | 8 ++------ .../05/GHSA-c2fg-jphc-cxg4/GHSA-c2fg-jphc-cxg4.json | 12 +++--------- .../05/GHSA-c2gh-58gm-m8hx/GHSA-c2gh-58gm-m8hx.json | 8 ++------ .../05/GHSA-c3jm-h8hw-pr53/GHSA-c3jm-h8hw-pr53.json | 12 +++--------- .../05/GHSA-c47h-mcrh-2p6p/GHSA-c47h-mcrh-2p6p.json | 4 +--- .../05/GHSA-c4c9-c8j5-4jjg/GHSA-c4c9-c8j5-4jjg.json | 4 +--- .../05/GHSA-c6jp-69x3-7jrr/GHSA-c6jp-69x3-7jrr.json | 8 ++------ .../05/GHSA-c6pp-96qc-5hc5/GHSA-c6pp-96qc-5hc5.json | 8 ++------ .../05/GHSA-c723-8f7g-x2fg/GHSA-c723-8f7g-x2fg.json | 12 +++--------- .../05/GHSA-c85r-x2fr-7mq6/GHSA-c85r-x2fr-7mq6.json | 12 +++--------- .../05/GHSA-c8w5-5w29-53wv/GHSA-c8w5-5w29-53wv.json | 12 +++--------- .../05/GHSA-c9ph-69mc-wqh4/GHSA-c9ph-69mc-wqh4.json | 12 +++--------- .../05/GHSA-cchg-585c-7mrm/GHSA-cchg-585c-7mrm.json | 8 ++------ .../05/GHSA-ccww-4p73-vvq6/GHSA-ccww-4p73-vvq6.json | 8 ++------ .../05/GHSA-cfw7-36f5-g7hv/GHSA-cfw7-36f5-g7hv.json | 8 ++------ .../05/GHSA-cg22-wvf3-j78q/GHSA-cg22-wvf3-j78q.json | 12 +++--------- .../05/GHSA-cj82-9mrm-6p3m/GHSA-cj82-9mrm-6p3m.json | 8 ++------ .../05/GHSA-cjgw-2hcv-hh3w/GHSA-cjgw-2hcv-hh3w.json | 4 +--- .../05/GHSA-cjpx-2x82-p6v9/GHSA-cjpx-2x82-p6v9.json | 4 +--- .../05/GHSA-cm7j-2j4j-9pf4/GHSA-cm7j-2j4j-9pf4.json | 12 +++--------- .../05/GHSA-cmwc-grpj-cw7x/GHSA-cmwc-grpj-cw7x.json | 12 +++--------- .../05/GHSA-cqv4-fxpf-mm68/GHSA-cqv4-fxpf-mm68.json | 12 +++--------- .../05/GHSA-crgj-8f5q-cr98/GHSA-crgj-8f5q-cr98.json | 12 +++--------- .../05/GHSA-cvh6-6h56-pmmg/GHSA-cvh6-6h56-pmmg.json | 12 +++--------- .../05/GHSA-cvp7-fvc9-hgj8/GHSA-cvp7-fvc9-hgj8.json | 12 +++--------- .../05/GHSA-cvpf-v6p3-8699/GHSA-cvpf-v6p3-8699.json | 12 +++--------- .../05/GHSA-cwf2-c942-3pqv/GHSA-cwf2-c942-3pqv.json | 12 +++--------- .../05/GHSA-cwjj-c2f3-hv5q/GHSA-cwjj-c2f3-hv5q.json | 12 +++--------- .../05/GHSA-cx39-4vq4-956m/GHSA-cx39-4vq4-956m.json | 12 +++--------- .../05/GHSA-f239-4p8p-j5cx/GHSA-f239-4p8p-j5cx.json | 12 +++--------- .../05/GHSA-f287-cx98-4ghq/GHSA-f287-cx98-4ghq.json | 8 ++------ .../05/GHSA-f3pr-7rjp-hqhv/GHSA-f3pr-7rjp-hqhv.json | 12 +++--------- .../05/GHSA-f3x5-ww2f-cc7g/GHSA-f3x5-ww2f-cc7g.json | 8 ++------ .../05/GHSA-f42w-g248-vggq/GHSA-f42w-g248-vggq.json | 12 +++--------- .../05/GHSA-f4q7-86mf-q9v2/GHSA-f4q7-86mf-q9v2.json | 12 +++--------- .../05/GHSA-f63m-wm25-w99w/GHSA-f63m-wm25-w99w.json | 12 +++--------- .../05/GHSA-f6gf-jq3w-2r4c/GHSA-f6gf-jq3w-2r4c.json | 4 +--- .../05/GHSA-f726-9xgv-wf6h/GHSA-f726-9xgv-wf6h.json | 8 ++------ .../05/GHSA-f75m-6h7p-4xx8/GHSA-f75m-6h7p-4xx8.json | 12 +++--------- .../05/GHSA-f7mf-8fxg-9ggp/GHSA-f7mf-8fxg-9ggp.json | 4 +--- .../05/GHSA-f82j-j8qp-7qr6/GHSA-f82j-j8qp-7qr6.json | 8 ++------ .../05/GHSA-f86q-8q37-c2x4/GHSA-f86q-8q37-c2x4.json | 4 +--- .../05/GHSA-f8jp-46hx-mw9r/GHSA-f8jp-46hx-mw9r.json | 12 +++--------- .../05/GHSA-f929-pjc3-gg99/GHSA-f929-pjc3-gg99.json | 8 ++------ .../05/GHSA-f945-c94g-fh62/GHSA-f945-c94g-fh62.json | 8 ++------ .../05/GHSA-f9j8-c9vv-wvpc/GHSA-f9j8-c9vv-wvpc.json | 8 ++------ .../05/GHSA-f9xm-gx32-3xcw/GHSA-f9xm-gx32-3xcw.json | 8 ++------ .../05/GHSA-fc92-44ch-wwhv/GHSA-fc92-44ch-wwhv.json | 8 ++------ .../05/GHSA-ff8p-26v5-2cw5/GHSA-ff8p-26v5-2cw5.json | 12 +++--------- .../05/GHSA-fg22-5jgq-2wm6/GHSA-fg22-5jgq-2wm6.json | 8 ++------ .../05/GHSA-fg35-c4c9-gp8p/GHSA-fg35-c4c9-gp8p.json | 8 ++------ .../05/GHSA-fhc8-8gj7-qf78/GHSA-fhc8-8gj7-qf78.json | 12 +++--------- .../05/GHSA-fj83-7fq4-4858/GHSA-fj83-7fq4-4858.json | 8 ++------ .../05/GHSA-fjmm-327h-h39p/GHSA-fjmm-327h-h39p.json | 12 +++--------- .../05/GHSA-fq9j-fxp5-g4x6/GHSA-fq9j-fxp5-g4x6.json | 12 +++--------- .../05/GHSA-fqq2-7hmc-7rjx/GHSA-fqq2-7hmc-7rjx.json | 8 ++------ .../05/GHSA-fqr7-4324-59j5/GHSA-fqr7-4324-59j5.json | 12 +++--------- .../05/GHSA-fr37-g4jr-p673/GHSA-fr37-g4jr-p673.json | 12 +++--------- .../05/GHSA-fr58-p6r5-3qh6/GHSA-fr58-p6r5-3qh6.json | 12 +++--------- .../05/GHSA-frjx-44vq-w3hv/GHSA-frjx-44vq-w3hv.json | 12 +++--------- .../05/GHSA-frm8-m8r5-fc6j/GHSA-frm8-m8r5-fc6j.json | 12 +++--------- .../05/GHSA-fv4j-jw35-jw4q/GHSA-fv4j-jw35-jw4q.json | 12 +++--------- .../05/GHSA-fw3q-6pp2-7ghv/GHSA-fw3q-6pp2-7ghv.json | 12 +++--------- .../05/GHSA-fwq7-6h2f-3jv9/GHSA-fwq7-6h2f-3jv9.json | 12 +++--------- .../05/GHSA-fx5r-2h3m-px7x/GHSA-fx5r-2h3m-px7x.json | 12 +++--------- .../05/GHSA-g32v-q2cq-rp9w/GHSA-g32v-q2cq-rp9w.json | 8 ++------ .../05/GHSA-g3fm-58rr-pjr5/GHSA-g3fm-58rr-pjr5.json | 8 ++------ .../05/GHSA-g48c-wq65-9whh/GHSA-g48c-wq65-9whh.json | 4 +--- .../05/GHSA-g4g6-2v6v-6j9q/GHSA-g4g6-2v6v-6j9q.json | 12 +++--------- .../05/GHSA-g4x2-424v-7x3q/GHSA-g4x2-424v-7x3q.json | 12 +++--------- .../05/GHSA-g644-679q-jjcf/GHSA-g644-679q-jjcf.json | 4 +--- .../05/GHSA-g69v-3cvh-v6hf/GHSA-g69v-3cvh-v6hf.json | 8 ++------ .../05/GHSA-g69x-r473-7f9h/GHSA-g69x-r473-7f9h.json | 8 ++------ .../05/GHSA-g7gj-3cvp-r2pf/GHSA-g7gj-3cvp-r2pf.json | 8 ++------ .../05/GHSA-g7qr-7xf7-f4ph/GHSA-g7qr-7xf7-f4ph.json | 12 +++--------- .../05/GHSA-g7xw-pf29-g7fm/GHSA-g7xw-pf29-g7fm.json | 12 +++--------- .../05/GHSA-g8vf-gqwq-vh5h/GHSA-g8vf-gqwq-vh5h.json | 12 +++--------- .../05/GHSA-g9g7-5v3p-474j/GHSA-g9g7-5v3p-474j.json | 12 +++--------- .../05/GHSA-gc24-7fjh-v287/GHSA-gc24-7fjh-v287.json | 12 +++--------- .../05/GHSA-gf4h-qh8q-m56f/GHSA-gf4h-qh8q-m56f.json | 12 +++--------- .../05/GHSA-gf9j-vw99-34gv/GHSA-gf9j-vw99-34gv.json | 4 +--- .../05/GHSA-gfqm-3p6c-j8mq/GHSA-gfqm-3p6c-j8mq.json | 12 +++--------- .../05/GHSA-ghpp-p7j7-78gh/GHSA-ghpp-p7j7-78gh.json | 8 ++------ .../05/GHSA-gm2j-53hw-w74v/GHSA-gm2j-53hw-w74v.json | 12 +++--------- .../05/GHSA-gmq7-vq8g-2qhv/GHSA-gmq7-vq8g-2qhv.json | 8 ++------ .../05/GHSA-gp7g-p4hq-9mjx/GHSA-gp7g-p4hq-9mjx.json | 12 +++--------- .../05/GHSA-gpp2-x583-x2j7/GHSA-gpp2-x583-x2j7.json | 12 +++--------- .../05/GHSA-gprx-39gr-mq3j/GHSA-gprx-39gr-mq3j.json | 8 ++------ .../05/GHSA-gr8m-26qh-f5gq/GHSA-gr8m-26qh-f5gq.json | 12 +++--------- .../05/GHSA-grj9-c593-w7c6/GHSA-grj9-c593-w7c6.json | 12 +++--------- .../05/GHSA-gv3h-f47p-8vpr/GHSA-gv3h-f47p-8vpr.json | 12 +++--------- .../05/GHSA-gvrc-hmg2-fp39/GHSA-gvrc-hmg2-fp39.json | 8 ++------ .../05/GHSA-gwjq-59ch-2j8v/GHSA-gwjq-59ch-2j8v.json | 8 ++------ .../05/GHSA-gx26-q49r-m7g8/GHSA-gx26-q49r-m7g8.json | 8 ++------ .../05/GHSA-gx64-x6jh-w2m5/GHSA-gx64-x6jh-w2m5.json | 12 +++--------- .../05/GHSA-gxxj-6wpw-9vgc/GHSA-gxxj-6wpw-9vgc.json | 12 +++--------- .../05/GHSA-h2h4-4f7m-c9r8/GHSA-h2h4-4f7m-c9r8.json | 8 ++------ .../05/GHSA-h2mv-v7vr-5g9j/GHSA-h2mv-v7vr-5g9j.json | 12 +++--------- .../05/GHSA-h2vv-cmjp-m2w5/GHSA-h2vv-cmjp-m2w5.json | 4 +--- .../05/GHSA-h368-4vc2-fv34/GHSA-h368-4vc2-fv34.json | 12 +++--------- .../05/GHSA-h4rr-53hr-jhhm/GHSA-h4rr-53hr-jhhm.json | 12 +++--------- .../05/GHSA-h592-26mx-g23f/GHSA-h592-26mx-g23f.json | 12 +++--------- .../05/GHSA-h6c2-xxv4-2462/GHSA-h6c2-xxv4-2462.json | 12 +++--------- .../05/GHSA-h6jp-r7q6-9qh5/GHSA-h6jp-r7q6-9qh5.json | 12 +++--------- .../05/GHSA-h7f7-r6mm-7w8h/GHSA-h7f7-r6mm-7w8h.json | 12 +++--------- .../05/GHSA-h7hm-pcj8-gj2r/GHSA-h7hm-pcj8-gj2r.json | 12 +++--------- .../05/GHSA-h83r-q55f-q6p9/GHSA-h83r-q55f-q6p9.json | 12 +++--------- .../05/GHSA-h88r-367q-q6v3/GHSA-h88r-367q-q6v3.json | 4 +--- .../05/GHSA-h98h-hrqm-r592/GHSA-h98h-hrqm-r592.json | 8 ++------ .../05/GHSA-hc7g-786w-w835/GHSA-hc7g-786w-w835.json | 8 ++------ .../05/GHSA-hccf-j2pf-x736/GHSA-hccf-j2pf-x736.json | 8 ++------ .../05/GHSA-hcpq-vw4g-3vmh/GHSA-hcpq-vw4g-3vmh.json | 8 ++------ .../05/GHSA-hf43-vx6m-vr9g/GHSA-hf43-vx6m-vr9g.json | 12 +++--------- .../05/GHSA-hfjr-fp7w-82g3/GHSA-hfjr-fp7w-82g3.json | 12 +++--------- .../05/GHSA-hhh9-2gcx-grhp/GHSA-hhh9-2gcx-grhp.json | 12 +++--------- .../05/GHSA-hjqq-v5qj-gf74/GHSA-hjqq-v5qj-gf74.json | 8 ++------ .../05/GHSA-hmcg-r74r-6qp2/GHSA-hmcg-r74r-6qp2.json | 8 ++------ .../05/GHSA-hp8c-vj2x-29pj/GHSA-hp8c-vj2x-29pj.json | 4 +--- .../05/GHSA-hp8g-87f8-285m/GHSA-hp8g-87f8-285m.json | 12 +++--------- .../05/GHSA-hpc6-jf76-gpqr/GHSA-hpc6-jf76-gpqr.json | 12 +++--------- .../05/GHSA-hq6m-pq75-r995/GHSA-hq6m-pq75-r995.json | 8 ++------ .../05/GHSA-hqv3-p7gh-g339/GHSA-hqv3-p7gh-g339.json | 8 ++------ .../05/GHSA-hrg4-r4x5-qp6w/GHSA-hrg4-r4x5-qp6w.json | 12 +++--------- .../05/GHSA-hrq5-cg78-8924/GHSA-hrq5-cg78-8924.json | 12 +++--------- .../05/GHSA-hrvm-cw84-qwm3/GHSA-hrvm-cw84-qwm3.json | 12 +++--------- .../05/GHSA-hrx7-p4cg-54x5/GHSA-hrx7-p4cg-54x5.json | 8 ++------ .../05/GHSA-hv8x-v629-q57h/GHSA-hv8x-v629-q57h.json | 12 +++--------- .../05/GHSA-hvcg-q97m-g247/GHSA-hvcg-q97m-g247.json | 12 +++--------- .../05/GHSA-hvwr-mw2m-chj3/GHSA-hvwr-mw2m-chj3.json | 8 ++------ .../05/GHSA-hw43-m36p-rf72/GHSA-hw43-m36p-rf72.json | 12 +++--------- .../05/GHSA-hwh8-6rw9-7v6w/GHSA-hwh8-6rw9-7v6w.json | 12 +++--------- .../05/GHSA-hx5g-796f-2xrq/GHSA-hx5g-796f-2xrq.json | 12 +++--------- .../05/GHSA-hxp2-q48f-xhqg/GHSA-hxp2-q48f-xhqg.json | 12 +++--------- .../05/GHSA-j2cf-m296-v865/GHSA-j2cf-m296-v865.json | 8 ++------ .../05/GHSA-j2rq-9729-p9fr/GHSA-j2rq-9729-p9fr.json | 12 +++--------- .../05/GHSA-j33f-cq4g-xppq/GHSA-j33f-cq4g-xppq.json | 4 +--- .../05/GHSA-j53q-vvgg-c52c/GHSA-j53q-vvgg-c52c.json | 8 ++------ .../05/GHSA-j5j7-62x7-7hmh/GHSA-j5j7-62x7-7hmh.json | 12 +++--------- .../05/GHSA-j5mx-vvx4-94pw/GHSA-j5mx-vvx4-94pw.json | 8 ++------ .../05/GHSA-j5q8-22j2-m58f/GHSA-j5q8-22j2-m58f.json | 12 +++--------- .../05/GHSA-j6h2-r8q5-43pr/GHSA-j6h2-r8q5-43pr.json | 12 +++--------- .../05/GHSA-j7p4-87f4-5vj8/GHSA-j7p4-87f4-5vj8.json | 12 +++--------- .../05/GHSA-j7ph-9246-53g3/GHSA-j7ph-9246-53g3.json | 8 ++------ .../05/GHSA-j84w-6r3r-7jvc/GHSA-j84w-6r3r-7jvc.json | 12 +++--------- .../05/GHSA-j8m9-w856-qfxj/GHSA-j8m9-w856-qfxj.json | 12 +++--------- .../05/GHSA-j99r-h42f-9xrm/GHSA-j99r-h42f-9xrm.json | 8 ++------ .../05/GHSA-jcv5-c92v-jxmh/GHSA-jcv5-c92v-jxmh.json | 8 ++------ .../05/GHSA-jf35-5pgv-6674/GHSA-jf35-5pgv-6674.json | 8 ++------ .../05/GHSA-jf4c-392q-69v3/GHSA-jf4c-392q-69v3.json | 12 +++--------- .../05/GHSA-jfg7-52r3-r7rq/GHSA-jfg7-52r3-r7rq.json | 8 ++------ .../05/GHSA-jfrh-cwq3-hcj6/GHSA-jfrh-cwq3-hcj6.json | 12 +++--------- .../05/GHSA-jhcw-q455-h5fx/GHSA-jhcw-q455-h5fx.json | 12 +++--------- .../05/GHSA-jj2q-v22w-qp64/GHSA-jj2q-v22w-qp64.json | 4 +--- .../05/GHSA-jjc4-3xwf-4wrw/GHSA-jjc4-3xwf-4wrw.json | 12 +++--------- .../05/GHSA-jjf4-23g8-gc3w/GHSA-jjf4-23g8-gc3w.json | 12 +++--------- .../05/GHSA-jm33-7hwp-f5h7/GHSA-jm33-7hwp-f5h7.json | 12 +++--------- .../05/GHSA-jmc3-547v-q3qv/GHSA-jmc3-547v-q3qv.json | 8 ++------ .../05/GHSA-jmc8-xh8j-r599/GHSA-jmc8-xh8j-r599.json | 8 ++------ .../05/GHSA-jmf7-w2r6-rp82/GHSA-jmf7-w2r6-rp82.json | 12 +++--------- .../05/GHSA-jmx9-mphw-fm82/GHSA-jmx9-mphw-fm82.json | 8 ++------ .../05/GHSA-jppr-v7v7-49m8/GHSA-jppr-v7v7-49m8.json | 8 ++------ .../05/GHSA-jqh3-p48c-4xxc/GHSA-jqh3-p48c-4xxc.json | 12 +++--------- .../05/GHSA-jr27-w24g-5rq6/GHSA-jr27-w24g-5rq6.json | 12 +++--------- .../05/GHSA-jr46-4q88-9hjx/GHSA-jr46-4q88-9hjx.json | 8 ++------ .../05/GHSA-jwxr-536r-j6vp/GHSA-jwxr-536r-j6vp.json | 12 +++--------- .../05/GHSA-jx37-4vpc-5jhm/GHSA-jx37-4vpc-5jhm.json | 8 ++------ .../05/GHSA-m25f-46xv-8r9w/GHSA-m25f-46xv-8r9w.json | 12 +++--------- .../05/GHSA-m284-wmx9-6cmm/GHSA-m284-wmx9-6cmm.json | 8 ++------ .../05/GHSA-m32m-39jg-3q76/GHSA-m32m-39jg-3q76.json | 8 ++------ .../05/GHSA-m429-rrpg-mfm3/GHSA-m429-rrpg-mfm3.json | 8 ++------ .../05/GHSA-m48v-jxmw-9w94/GHSA-m48v-jxmw-9w94.json | 8 ++------ .../05/GHSA-m4qv-8m69-cp4g/GHSA-m4qv-8m69-cp4g.json | 12 +++--------- .../05/GHSA-m4v9-rc68-3qrf/GHSA-m4v9-rc68-3qrf.json | 8 ++------ .../05/GHSA-m676-xv64-2prq/GHSA-m676-xv64-2prq.json | 12 +++--------- .../05/GHSA-m79w-3hmw-xxc7/GHSA-m79w-3hmw-xxc7.json | 12 +++--------- .../05/GHSA-m8rh-m6hr-qg6w/GHSA-m8rh-m6hr-qg6w.json | 12 +++--------- .../05/GHSA-m8rj-v5pg-g6vq/GHSA-m8rj-v5pg-g6vq.json | 8 ++------ .../05/GHSA-m8wv-5v63-5fqp/GHSA-m8wv-5v63-5fqp.json | 12 +++--------- .../05/GHSA-m96v-r8cw-rvf7/GHSA-m96v-r8cw-rvf7.json | 12 +++--------- .../05/GHSA-mcx2-g59c-pqpj/GHSA-mcx2-g59c-pqpj.json | 8 ++------ .../05/GHSA-mfv5-mqr7-9qvw/GHSA-mfv5-mqr7-9qvw.json | 8 ++------ .../05/GHSA-mgcm-2gv2-9fp6/GHSA-mgcm-2gv2-9fp6.json | 8 ++------ .../05/GHSA-mh48-9v8j-7v8g/GHSA-mh48-9v8j-7v8g.json | 12 +++--------- .../05/GHSA-mhpq-2ph4-jm64/GHSA-mhpq-2ph4-jm64.json | 8 ++------ .../05/GHSA-mjf2-78q5-7pq6/GHSA-mjf2-78q5-7pq6.json | 12 +++--------- .../05/GHSA-mjrc-m65p-93hj/GHSA-mjrc-m65p-93hj.json | 8 ++------ .../05/GHSA-mmfj-vg4h-326c/GHSA-mmfj-vg4h-326c.json | 12 +++--------- .../05/GHSA-mmhw-p74f-f3j3/GHSA-mmhw-p74f-f3j3.json | 12 +++--------- .../05/GHSA-mp64-w8p7-h66m/GHSA-mp64-w8p7-h66m.json | 4 +--- .../05/GHSA-mp6c-f77j-f7rm/GHSA-mp6c-f77j-f7rm.json | 12 +++--------- .../05/GHSA-mpgp-pjvr-xfcq/GHSA-mpgp-pjvr-xfcq.json | 8 ++------ .../05/GHSA-mqf4-7v67-32hm/GHSA-mqf4-7v67-32hm.json | 12 +++--------- .../05/GHSA-mr39-vf45-2r7q/GHSA-mr39-vf45-2r7q.json | 12 +++--------- .../05/GHSA-mr8p-qxmj-qph5/GHSA-mr8p-qxmj-qph5.json | 8 ++------ .../05/GHSA-mr9w-7prr-4j7v/GHSA-mr9w-7prr-4j7v.json | 12 +++--------- .../05/GHSA-mrf4-89gh-pm62/GHSA-mrf4-89gh-pm62.json | 4 +--- .../05/GHSA-mrrq-pc5g-fmm4/GHSA-mrrq-pc5g-fmm4.json | 12 +++--------- .../05/GHSA-mv98-m73h-jg72/GHSA-mv98-m73h-jg72.json | 8 ++------ .../05/GHSA-mwjc-w94h-gmqf/GHSA-mwjc-w94h-gmqf.json | 8 ++------ .../05/GHSA-mwx3-xqm6-8cwq/GHSA-mwx3-xqm6-8cwq.json | 12 +++--------- .../05/GHSA-mx56-jjm2-v9rc/GHSA-mx56-jjm2-v9rc.json | 8 ++------ .../05/GHSA-mxw9-f7fp-9ccr/GHSA-mxw9-f7fp-9ccr.json | 4 +--- .../05/GHSA-p2fc-cqh2-7jc2/GHSA-p2fc-cqh2-7jc2.json | 4 +--- .../05/GHSA-p36f-r5vj-9m69/GHSA-p36f-r5vj-9m69.json | 8 ++------ .../05/GHSA-p4vm-jv89-q82f/GHSA-p4vm-jv89-q82f.json | 12 +++--------- .../05/GHSA-p54j-3f84-hx6h/GHSA-p54j-3f84-hx6h.json | 8 ++------ .../05/GHSA-p554-6j9w-jcpj/GHSA-p554-6j9w-jcpj.json | 12 +++--------- .../05/GHSA-p65m-m7cr-v94m/GHSA-p65m-m7cr-v94m.json | 12 +++--------- .../05/GHSA-p65q-8886-xcm7/GHSA-p65q-8886-xcm7.json | 12 +++--------- .../05/GHSA-p79r-4qvf-gvc6/GHSA-p79r-4qvf-gvc6.json | 12 +++--------- .../05/GHSA-p7p9-8rxw-r4qr/GHSA-p7p9-8rxw-r4qr.json | 8 ++------ .../05/GHSA-p853-fprg-5r46/GHSA-p853-fprg-5r46.json | 12 +++--------- .../05/GHSA-p9g7-pmr8-cm48/GHSA-p9g7-pmr8-cm48.json | 8 ++------ .../05/GHSA-p9pq-9vfw-wcq6/GHSA-p9pq-9vfw-wcq6.json | 12 +++--------- .../05/GHSA-p9xv-p5jw-r5vf/GHSA-p9xv-p5jw-r5vf.json | 12 +++--------- .../05/GHSA-pf7c-3g7g-p2xg/GHSA-pf7c-3g7g-p2xg.json | 12 +++--------- .../05/GHSA-pf7h-5xvj-7p3m/GHSA-pf7h-5xvj-7p3m.json | 12 +++--------- .../05/GHSA-pg72-cm62-849q/GHSA-pg72-cm62-849q.json | 4 +--- .../05/GHSA-pgfq-x4jp-89qx/GHSA-pgfq-x4jp-89qx.json | 12 +++--------- .../05/GHSA-pjf7-628v-6r7r/GHSA-pjf7-628v-6r7r.json | 12 +++--------- .../05/GHSA-pp7c-m8cf-8vm2/GHSA-pp7c-m8cf-8vm2.json | 12 +++--------- .../05/GHSA-pq33-cxrq-7673/GHSA-pq33-cxrq-7673.json | 12 +++--------- .../05/GHSA-pq4g-5rw4-63px/GHSA-pq4g-5rw4-63px.json | 12 +++--------- .../05/GHSA-pq4w-86p2-463w/GHSA-pq4w-86p2-463w.json | 12 +++--------- .../05/GHSA-pqrp-hrrg-q69p/GHSA-pqrp-hrrg-q69p.json | 12 +++--------- .../05/GHSA-pv8q-cfhq-wwgx/GHSA-pv8q-cfhq-wwgx.json | 12 +++--------- .../05/GHSA-pvmm-475g-fx2h/GHSA-pvmm-475g-fx2h.json | 4 +--- .../05/GHSA-pwx3-f4rv-4v5r/GHSA-pwx3-f4rv-4v5r.json | 12 +++--------- .../05/GHSA-pwxr-5vrp-26jw/GHSA-pwxr-5vrp-26jw.json | 12 +++--------- .../05/GHSA-pxp8-9p69-gccc/GHSA-pxp8-9p69-gccc.json | 4 +--- .../05/GHSA-pxrf-6xc9-mc6j/GHSA-pxrf-6xc9-mc6j.json | 4 +--- .../05/GHSA-q23g-v29w-45vm/GHSA-q23g-v29w-45vm.json | 8 ++------ .../05/GHSA-q23v-6m98-94w9/GHSA-q23v-6m98-94w9.json | 12 +++--------- .../05/GHSA-q28x-xxhc-gjw3/GHSA-q28x-xxhc-gjw3.json | 12 +++--------- .../05/GHSA-q3m3-f44j-425x/GHSA-q3m3-f44j-425x.json | 12 +++--------- .../05/GHSA-q4qh-89wr-gqrv/GHSA-q4qh-89wr-gqrv.json | 12 +++--------- .../05/GHSA-q6hm-3q22-555x/GHSA-q6hm-3q22-555x.json | 12 +++--------- .../05/GHSA-q8jw-84xc-4hch/GHSA-q8jw-84xc-4hch.json | 12 +++--------- .../05/GHSA-q8w5-jq96-p28w/GHSA-q8w5-jq96-p28w.json | 12 +++--------- .../05/GHSA-q9mh-3fx2-4gj3/GHSA-q9mh-3fx2-4gj3.json | 12 +++--------- .../05/GHSA-qc33-vmxq-wh9q/GHSA-qc33-vmxq-wh9q.json | 12 +++--------- .../05/GHSA-qc58-fx6g-366w/GHSA-qc58-fx6g-366w.json | 8 ++------ .../05/GHSA-qcpv-3q5x-rxf2/GHSA-qcpv-3q5x-rxf2.json | 12 +++--------- .../05/GHSA-qf7j-qv5h-pxpf/GHSA-qf7j-qv5h-pxpf.json | 8 ++------ .../05/GHSA-qfhp-872f-r5cf/GHSA-qfhp-872f-r5cf.json | 8 ++------ .../05/GHSA-qgxw-xq35-5qcq/GHSA-qgxw-xq35-5qcq.json | 8 ++------ .../05/GHSA-qhcc-h2hf-rj7x/GHSA-qhcc-h2hf-rj7x.json | 8 ++------ .../05/GHSA-qhgw-36pc-xwc8/GHSA-qhgw-36pc-xwc8.json | 8 ++------ .../05/GHSA-qj7x-gxwx-cjwh/GHSA-qj7x-gxwx-cjwh.json | 12 +++--------- .../05/GHSA-qmgj-v6ph-pm4c/GHSA-qmgj-v6ph-pm4c.json | 12 +++--------- .../05/GHSA-qmqh-cxhx-r5v4/GHSA-qmqh-cxhx-r5v4.json | 12 +++--------- .../05/GHSA-qmvr-h9gj-g429/GHSA-qmvr-h9gj-g429.json | 12 +++--------- .../05/GHSA-qppq-w927-wgc9/GHSA-qppq-w927-wgc9.json | 8 ++------ .../05/GHSA-qpx2-q28h-ggcf/GHSA-qpx2-q28h-ggcf.json | 12 +++--------- .../05/GHSA-qqhh-pgvv-qcgg/GHSA-qqhh-pgvv-qcgg.json | 12 +++--------- .../05/GHSA-qqph-jfrw-v868/GHSA-qqph-jfrw-v868.json | 12 +++--------- .../05/GHSA-qqxx-w66x-c8rm/GHSA-qqxx-w66x-c8rm.json | 8 ++------ .../05/GHSA-qrvg-vrjq-42gc/GHSA-qrvg-vrjq-42gc.json | 12 +++--------- .../05/GHSA-qx42-7245-rc87/GHSA-qx42-7245-rc87.json | 12 +++--------- .../05/GHSA-qx5r-7wv3-j34g/GHSA-qx5r-7wv3-j34g.json | 12 +++--------- .../05/GHSA-r24q-9r2j-gppf/GHSA-r24q-9r2j-gppf.json | 12 +++--------- .../05/GHSA-r27v-956v-r6h4/GHSA-r27v-956v-r6h4.json | 8 ++------ .../05/GHSA-r42x-m65m-82x8/GHSA-r42x-m65m-82x8.json | 8 ++------ .../05/GHSA-r457-c6v2-fq2c/GHSA-r457-c6v2-fq2c.json | 4 +--- .../05/GHSA-r45r-rg9j-7g74/GHSA-r45r-rg9j-7g74.json | 8 ++------ .../05/GHSA-r597-3qwr-6fwx/GHSA-r597-3qwr-6fwx.json | 12 +++--------- .../05/GHSA-r6g5-hq5w-qpgp/GHSA-r6g5-hq5w-qpgp.json | 12 +++--------- .../05/GHSA-r6x8-c338-2jr5/GHSA-r6x8-c338-2jr5.json | 8 ++------ .../05/GHSA-r7qq-28ww-xhph/GHSA-r7qq-28ww-xhph.json | 12 +++--------- .../05/GHSA-r826-ph6f-65w5/GHSA-r826-ph6f-65w5.json | 4 +--- .../05/GHSA-r8fx-gp4c-84qw/GHSA-r8fx-gp4c-84qw.json | 12 +++--------- .../05/GHSA-r9c5-39xx-j863/GHSA-r9c5-39xx-j863.json | 12 +++--------- .../05/GHSA-r9p6-cffj-3xwp/GHSA-r9p6-cffj-3xwp.json | 12 +++--------- .../05/GHSA-rc47-m3cc-f723/GHSA-rc47-m3cc-f723.json | 12 +++--------- .../05/GHSA-rcrq-8jpw-9hr7/GHSA-rcrq-8jpw-9hr7.json | 12 +++--------- .../05/GHSA-rggv-c4w4-cvm6/GHSA-rggv-c4w4-cvm6.json | 12 +++--------- .../05/GHSA-rh72-qm58-6p3q/GHSA-rh72-qm58-6p3q.json | 8 ++------ .../05/GHSA-rhrf-xrq9-3h4h/GHSA-rhrf-xrq9-3h4h.json | 4 +--- .../05/GHSA-rhrx-9f9f-mfxr/GHSA-rhrx-9f9f-mfxr.json | 8 ++------ .../05/GHSA-rj3w-qm5r-xh5q/GHSA-rj3w-qm5r-xh5q.json | 8 ++------ .../05/GHSA-rpm3-9x65-q856/GHSA-rpm3-9x65-q856.json | 12 +++--------- .../05/GHSA-rq3c-gxfr-p3c8/GHSA-rq3c-gxfr-p3c8.json | 8 ++------ .../05/GHSA-rqqr-5h7h-vgp8/GHSA-rqqr-5h7h-vgp8.json | 8 ++------ .../05/GHSA-rqx4-5362-4v5v/GHSA-rqx4-5362-4v5v.json | 12 +++--------- .../05/GHSA-rr5c-xv63-xx9v/GHSA-rr5c-xv63-xx9v.json | 4 +--- .../05/GHSA-rvpv-fmg3-9xq5/GHSA-rvpv-fmg3-9xq5.json | 12 +++--------- .../05/GHSA-rvw6-9w8h-8mp7/GHSA-rvw6-9w8h-8mp7.json | 12 +++--------- .../05/GHSA-rwjf-j42w-jfr4/GHSA-rwjf-j42w-jfr4.json | 8 ++------ .../05/GHSA-v35x-379m-67v4/GHSA-v35x-379m-67v4.json | 8 ++------ .../05/GHSA-v44w-3xjh-r66r/GHSA-v44w-3xjh-r66r.json | 12 +++--------- .../05/GHSA-v4qq-v67p-w8j5/GHSA-v4qq-v67p-w8j5.json | 12 +++--------- .../05/GHSA-v5h6-rmj4-6h5m/GHSA-v5h6-rmj4-6h5m.json | 8 ++------ .../05/GHSA-v5rp-hjm7-f5h2/GHSA-v5rp-hjm7-f5h2.json | 12 +++--------- .../05/GHSA-v5w5-cq94-f8mg/GHSA-v5w5-cq94-f8mg.json | 12 +++--------- .../05/GHSA-v6c2-w4jr-p63r/GHSA-v6c2-w4jr-p63r.json | 8 ++------ .../05/GHSA-v74w-hq7x-f7g9/GHSA-v74w-hq7x-f7g9.json | 8 ++------ .../05/GHSA-v7r4-vxch-fv5j/GHSA-v7r4-vxch-fv5j.json | 12 +++--------- .../05/GHSA-v8g6-3554-2cjf/GHSA-v8g6-3554-2cjf.json | 12 +++--------- .../05/GHSA-v8m7-8jc9-52rg/GHSA-v8m7-8jc9-52rg.json | 12 +++--------- .../05/GHSA-v8pj-x8qh-4q2m/GHSA-v8pj-x8qh-4q2m.json | 4 +--- .../05/GHSA-v8x8-34pv-vf3j/GHSA-v8x8-34pv-vf3j.json | 8 ++------ .../05/GHSA-v9cw-p675-9qj4/GHSA-v9cw-p675-9qj4.json | 12 +++--------- .../05/GHSA-v9q6-943q-j6r8/GHSA-v9q6-943q-j6r8.json | 12 +++--------- .../05/GHSA-vf35-57rw-pc4w/GHSA-vf35-57rw-pc4w.json | 8 ++------ .../05/GHSA-vfx3-vc54-592p/GHSA-vfx3-vc54-592p.json | 12 +++--------- .../05/GHSA-vg4r-hprg-qh9f/GHSA-vg4r-hprg-qh9f.json | 12 +++--------- .../05/GHSA-vgfh-838x-q4cm/GHSA-vgfh-838x-q4cm.json | 8 ++------ .../05/GHSA-vh33-p89x-mr5w/GHSA-vh33-p89x-mr5w.json | 12 +++--------- .../05/GHSA-vh8j-vv7v-7h49/GHSA-vh8j-vv7v-7h49.json | 4 +--- .../05/GHSA-vhxm-8f77-76p2/GHSA-vhxm-8f77-76p2.json | 12 +++--------- .../05/GHSA-vj59-q97j-4hgq/GHSA-vj59-q97j-4hgq.json | 12 +++--------- .../05/GHSA-vppj-mhmw-vqvx/GHSA-vppj-mhmw-vqvx.json | 12 +++--------- .../05/GHSA-vppx-37x9-6f7c/GHSA-vppx-37x9-6f7c.json | 8 ++------ .../05/GHSA-vpq3-4hrc-jmrv/GHSA-vpq3-4hrc-jmrv.json | 12 +++--------- .../05/GHSA-vr33-39v9-jw2c/GHSA-vr33-39v9-jw2c.json | 12 +++--------- .../05/GHSA-vrw6-4r4f-25fj/GHSA-vrw6-4r4f-25fj.json | 8 ++------ .../05/GHSA-vv9m-mjhj-9cqc/GHSA-vv9m-mjhj-9cqc.json | 4 +--- .../05/GHSA-vvh8-qfxp-mvjg/GHSA-vvh8-qfxp-mvjg.json | 12 +++--------- .../05/GHSA-vvv8-gqxx-xfvm/GHSA-vvv8-gqxx-xfvm.json | 12 +++--------- .../05/GHSA-vw6f-gmr3-fq8h/GHSA-vw6f-gmr3-fq8h.json | 12 +++--------- .../05/GHSA-vwhj-fp4c-7wv3/GHSA-vwhj-fp4c-7wv3.json | 12 +++--------- .../05/GHSA-vx52-c9mf-f5q6/GHSA-vx52-c9mf-f5q6.json | 8 ++------ .../05/GHSA-vxpm-v6xh-8vfw/GHSA-vxpm-v6xh-8vfw.json | 12 +++--------- .../05/GHSA-vxrw-6xvf-3r85/GHSA-vxrw-6xvf-3r85.json | 12 +++--------- .../05/GHSA-w24p-8cwh-f96x/GHSA-w24p-8cwh-f96x.json | 8 ++------ .../05/GHSA-w3mq-frrf-22p4/GHSA-w3mq-frrf-22p4.json | 12 +++--------- .../05/GHSA-w4pc-r3c5-5jj9/GHSA-w4pc-r3c5-5jj9.json | 12 +++--------- .../05/GHSA-w4xx-xqf9-56fg/GHSA-w4xx-xqf9-56fg.json | 12 +++--------- .../05/GHSA-w525-rw9x-grpj/GHSA-w525-rw9x-grpj.json | 12 +++--------- .../05/GHSA-w7q8-qc34-m52m/GHSA-w7q8-qc34-m52m.json | 12 +++--------- .../05/GHSA-w8cc-vhgq-g8fg/GHSA-w8cc-vhgq-g8fg.json | 12 +++--------- .../05/GHSA-w8xx-jh7q-6xj6/GHSA-w8xx-jh7q-6xj6.json | 12 +++--------- .../05/GHSA-wc34-c3wp-3988/GHSA-wc34-c3wp-3988.json | 8 ++------ .../05/GHSA-wcrh-mmxh-q8wp/GHSA-wcrh-mmxh-q8wp.json | 8 ++------ .../05/GHSA-wg3c-qwfq-8wfv/GHSA-wg3c-qwfq-8wfv.json | 12 +++--------- .../05/GHSA-wg7f-ghjr-82ww/GHSA-wg7f-ghjr-82ww.json | 8 ++------ .../05/GHSA-wh87-hp9m-h694/GHSA-wh87-hp9m-h694.json | 12 +++--------- .../05/GHSA-whgf-v8g5-7cgx/GHSA-whgf-v8g5-7cgx.json | 4 +--- .../05/GHSA-whw2-mwc3-hmmg/GHSA-whw2-mwc3-hmmg.json | 12 +++--------- .../05/GHSA-whx2-789x-9855/GHSA-whx2-789x-9855.json | 12 +++--------- .../05/GHSA-whxf-qxrc-7wr6/GHSA-whxf-qxrc-7wr6.json | 12 +++--------- .../05/GHSA-wjv4-hrhp-xqqp/GHSA-wjv4-hrhp-xqqp.json | 12 +++--------- .../05/GHSA-wm93-rhmf-57v6/GHSA-wm93-rhmf-57v6.json | 4 +--- .../05/GHSA-wmrm-97c9-hf46/GHSA-wmrm-97c9-hf46.json | 12 +++--------- .../05/GHSA-wp4p-8jxr-w4gm/GHSA-wp4p-8jxr-w4gm.json | 12 +++--------- .../05/GHSA-wpmh-wc89-xwhj/GHSA-wpmh-wc89-xwhj.json | 12 +++--------- .../05/GHSA-wpp3-vg2f-qcmr/GHSA-wpp3-vg2f-qcmr.json | 12 +++--------- .../05/GHSA-wrp6-f6w5-8wjj/GHSA-wrp6-f6w5-8wjj.json | 12 +++--------- .../05/GHSA-wv24-prxc-9hvw/GHSA-wv24-prxc-9hvw.json | 8 ++------ .../05/GHSA-wv2g-4whx-qhw3/GHSA-wv2g-4whx-qhw3.json | 12 +++--------- .../05/GHSA-ww7q-836v-jvv4/GHSA-ww7q-836v-jvv4.json | 12 +++--------- .../05/GHSA-wwv6-9vqw-fwxx/GHSA-wwv6-9vqw-fwxx.json | 8 ++------ .../05/GHSA-x224-39vw-8rh7/GHSA-x224-39vw-8rh7.json | 8 ++------ .../05/GHSA-x2v5-p27f-53wp/GHSA-x2v5-p27f-53wp.json | 4 +--- .../05/GHSA-x3ph-r68g-gghq/GHSA-x3ph-r68g-gghq.json | 8 ++------ .../05/GHSA-x3q9-8683-qvcm/GHSA-x3q9-8683-qvcm.json | 8 ++------ .../05/GHSA-x4x2-c76r-w3xx/GHSA-x4x2-c76r-w3xx.json | 12 +++--------- .../05/GHSA-x5pm-xqw2-5256/GHSA-x5pm-xqw2-5256.json | 4 +--- .../05/GHSA-x7mm-6r2x-9w7p/GHSA-x7mm-6r2x-9w7p.json | 8 ++------ .../05/GHSA-x84c-7gqw-8475/GHSA-x84c-7gqw-8475.json | 8 ++------ .../05/GHSA-x88q-cqfj-5v26/GHSA-x88q-cqfj-5v26.json | 12 +++--------- .../05/GHSA-xf6p-w8xr-f966/GHSA-xf6p-w8xr-f966.json | 12 +++--------- .../05/GHSA-xg29-j3mm-wv9c/GHSA-xg29-j3mm-wv9c.json | 12 +++--------- .../05/GHSA-xh47-8887-mw3h/GHSA-xh47-8887-mw3h.json | 12 +++--------- .../05/GHSA-xhqj-38h6-899j/GHSA-xhqj-38h6-899j.json | 8 ++------ .../05/GHSA-xj4c-3fvq-w5pg/GHSA-xj4c-3fvq-w5pg.json | 12 +++--------- .../05/GHSA-xjj6-hgq2-689x/GHSA-xjj6-hgq2-689x.json | 12 +++--------- .../05/GHSA-xp5w-pqp4-4mxr/GHSA-xp5w-pqp4-4mxr.json | 8 ++------ .../05/GHSA-xqc2-qqq8-xfj5/GHSA-xqc2-qqq8-xfj5.json | 4 +--- .../05/GHSA-xqgg-8qqr-cmpg/GHSA-xqgg-8qqr-cmpg.json | 8 ++------ .../05/GHSA-xr59-cc47-hgh5/GHSA-xr59-cc47-hgh5.json | 12 +++--------- .../05/GHSA-xr6m-vwc7-4qxx/GHSA-xr6m-vwc7-4qxx.json | 12 +++--------- .../05/GHSA-xvh7-j354-hww5/GHSA-xvh7-j354-hww5.json | 8 ++------ .../03/GHSA-mfc5-4g3m-p5gr/GHSA-mfc5-4g3m-p5gr.json | 4 +--- .../07/GHSA-h8v2-pvw7-3jf5/GHSA-h8v2-pvw7-3jf5.json | 4 +--- .../07/GHSA-jprp-jh3h-3w7v/GHSA-jprp-jh3h-3w7v.json | 4 +--- .../08/GHSA-2f7h-crmc-cqw4/GHSA-2f7h-crmc-cqw4.json | 4 +--- .../08/GHSA-4hr6-49g3-g573/GHSA-4hr6-49g3-g573.json | 4 +--- .../08/GHSA-p2xf-44q3-fvrm/GHSA-p2xf-44q3-fvrm.json | 4 +--- .../08/GHSA-xgpj-c6vr-4w93/GHSA-xgpj-c6vr-4w93.json | 4 +--- .../10/GHSA-3q96-v6jw-84q4/GHSA-3q96-v6jw-84q4.json | 4 +--- .../10/GHSA-48r3-3j44-q774/GHSA-48r3-3j44-q774.json | 4 +--- .../10/GHSA-67f8-pjgc-f52m/GHSA-67f8-pjgc-f52m.json | 4 +--- .../10/GHSA-7hrj-c89x-75w7/GHSA-7hrj-c89x-75w7.json | 4 +--- .../10/GHSA-8mp5-hxq8-5mcj/GHSA-8mp5-hxq8-5mcj.json | 4 +--- .../10/GHSA-cxjg-wpgh-jhh5/GHSA-cxjg-wpgh-jhh5.json | 4 +--- .../10/GHSA-fg6q-x7qr-4pp3/GHSA-fg6q-x7qr-4pp3.json | 4 +--- .../10/GHSA-fm9f-7rqx-chvx/GHSA-fm9f-7rqx-chvx.json | 4 +--- .../10/GHSA-fp46-48v5-9hqr/GHSA-fp46-48v5-9hqr.json | 4 +--- .../10/GHSA-fp4h-xp3p-fwp7/GHSA-fp4h-xp3p-fwp7.json | 4 +--- .../10/GHSA-m4h3-mqpx-7mc5/GHSA-m4h3-mqpx-7mc5.json | 4 +--- .../10/GHSA-mg8r-5chf-q6gx/GHSA-mg8r-5chf-q6gx.json | 4 +--- .../10/GHSA-r3jr-h9hq-q78g/GHSA-r3jr-h9hq-q78g.json | 4 +--- .../10/GHSA-r82m-3xp2-r98r/GHSA-r82m-3xp2-r98r.json | 4 +--- .../10/GHSA-r9c2-5gf9-7h96/GHSA-r9c2-5gf9-7h96.json | 4 +--- .../10/GHSA-v3h7-5j3q-8cqp/GHSA-v3h7-5j3q-8cqp.json | 4 +--- .../10/GHSA-vg92-hh46-66vr/GHSA-vg92-hh46-66vr.json | 4 +--- .../10/GHSA-w59p-5rf2-g7gc/GHSA-w59p-5rf2-g7gc.json | 4 +--- .../10/GHSA-xfrq-44jr-w2f3/GHSA-xfrq-44jr-w2f3.json | 4 +--- .../11/GHSA-3jhg-jx8m-q62v/GHSA-3jhg-jx8m-q62v.json | 4 +--- .../11/GHSA-46r9-g8qr-f53g/GHSA-46r9-g8qr-f53g.json | 4 +--- .../11/GHSA-57fh-6v6h-p687/GHSA-57fh-6v6h-p687.json | 4 +--- .../11/GHSA-7592-7873-rfj4/GHSA-7592-7873-rfj4.json | 4 +--- .../11/GHSA-8gwf-qvhm-v6fr/GHSA-8gwf-qvhm-v6fr.json | 4 +--- .../11/GHSA-94h4-5c8j-gcwp/GHSA-94h4-5c8j-gcwp.json | 4 +--- .../11/GHSA-c55w-52h2-w882/GHSA-c55w-52h2-w882.json | 4 +--- .../11/GHSA-cwvm-vqfp-f4gp/GHSA-cwvm-vqfp-f4gp.json | 4 +--- .../11/GHSA-f3f8-w8rm-rvj3/GHSA-f3f8-w8rm-rvj3.json | 4 +--- .../11/GHSA-fc69-58g8-6278/GHSA-fc69-58g8-6278.json | 4 +--- .../11/GHSA-fgm4-2mm7-965c/GHSA-fgm4-2mm7-965c.json | 4 +--- .../11/GHSA-fxf6-p2pr-65pp/GHSA-fxf6-p2pr-65pp.json | 4 +--- .../11/GHSA-g33w-h437-892v/GHSA-g33w-h437-892v.json | 8 ++------ .../11/GHSA-gq5j-56pr-g2xx/GHSA-gq5j-56pr-g2xx.json | 4 +--- .../11/GHSA-hjmj-5vpm-4784/GHSA-hjmj-5vpm-4784.json | 4 +--- .../11/GHSA-m3j9-2h4c-3m98/GHSA-m3j9-2h4c-3m98.json | 4 +--- .../11/GHSA-m5qx-36v8-9pmp/GHSA-m5qx-36v8-9pmp.json | 4 +--- .../11/GHSA-m6qg-858p-9996/GHSA-m6qg-858p-9996.json | 4 +--- .../11/GHSA-mppp-f7rw-v5g4/GHSA-mppp-f7rw-v5g4.json | 4 +--- .../11/GHSA-p8j7-9vfh-gvg5/GHSA-p8j7-9vfh-gvg5.json | 4 +--- .../11/GHSA-pj9v-74gv-cqp6/GHSA-pj9v-74gv-cqp6.json | 4 +--- .../11/GHSA-pm6v-h84r-mx24/GHSA-pm6v-h84r-mx24.json | 4 +--- .../11/GHSA-q85c-8hf8-xfw7/GHSA-q85c-8hf8-xfw7.json | 8 ++------ .../11/GHSA-r38f-h6hw-72gq/GHSA-r38f-h6hw-72gq.json | 4 +--- .../11/GHSA-vvhm-3w34-7vgx/GHSA-vvhm-3w34-7vgx.json | 4 +--- .../11/GHSA-xh8f-45cf-2xqc/GHSA-xh8f-45cf-2xqc.json | 4 +--- .../12/GHSA-ghxm-9fh8-8p5g/GHSA-ghxm-9fh8-8p5g.json | 4 +--- .../01/GHSA-2m95-7f8j-m6vw/GHSA-2m95-7f8j-m6vw.json | 4 +--- .../01/GHSA-2vj7-37qg-hm7q/GHSA-2vj7-37qg-hm7q.json | 4 +--- .../01/GHSA-39hm-h746-p544/GHSA-39hm-h746-p544.json | 4 +--- .../01/GHSA-3fr9-8m46-r2mm/GHSA-3fr9-8m46-r2mm.json | 4 +--- .../01/GHSA-3g33-qjmm-8mwx/GHSA-3g33-qjmm-8mwx.json | 4 +--- .../01/GHSA-3v7c-v9wf-3c7v/GHSA-3v7c-v9wf-3c7v.json | 4 +--- .../01/GHSA-43xj-352m-99m9/GHSA-43xj-352m-99m9.json | 4 +--- .../01/GHSA-4f22-7h3g-c989/GHSA-4f22-7h3g-c989.json | 4 +--- .../01/GHSA-4j7q-5rcw-6f5j/GHSA-4j7q-5rcw-6f5j.json | 4 +--- .../01/GHSA-4xqh-wh68-g25r/GHSA-4xqh-wh68-g25r.json | 4 +--- .../01/GHSA-5257-h5wm-w97c/GHSA-5257-h5wm-w97c.json | 4 +--- .../01/GHSA-5727-96qh-72m5/GHSA-5727-96qh-72m5.json | 4 +--- .../01/GHSA-57qv-m7j8-6h9p/GHSA-57qv-m7j8-6h9p.json | 4 +--- .../01/GHSA-5pwx-2rrr-xcvm/GHSA-5pwx-2rrr-xcvm.json | 4 +--- .../01/GHSA-5q6v-3768-8xq7/GHSA-5q6v-3768-8xq7.json | 4 +--- .../01/GHSA-7mr2-5jpg-77cw/GHSA-7mr2-5jpg-77cw.json | 4 +--- .../01/GHSA-7rhv-83v9-4j9f/GHSA-7rhv-83v9-4j9f.json | 4 +--- .../01/GHSA-7v39-pqxg-4xwf/GHSA-7v39-pqxg-4xwf.json | 8 ++------ .../01/GHSA-8frc-4g87-v5h6/GHSA-8frc-4g87-v5h6.json | 4 +--- .../01/GHSA-8hxc-5cxp-9pm6/GHSA-8hxc-5cxp-9pm6.json | 4 +--- .../01/GHSA-8m3p-p7g3-92q6/GHSA-8m3p-p7g3-92q6.json | 4 +--- .../01/GHSA-8mwh-2jgw-x22m/GHSA-8mwh-2jgw-x22m.json | 4 +--- .../01/GHSA-94hh-wrg9-ghpm/GHSA-94hh-wrg9-ghpm.json | 4 +--- .../01/GHSA-95h7-88rj-5gc6/GHSA-95h7-88rj-5gc6.json | 8 ++------ .../01/GHSA-9hw3-gf6m-6pwv/GHSA-9hw3-gf6m-6pwv.json | 4 +--- .../01/GHSA-9r9p-4477-qf64/GHSA-9r9p-4477-qf64.json | 4 +--- .../01/GHSA-9vrw-5c88-5qw8/GHSA-9vrw-5c88-5qw8.json | 4 +--- .../01/GHSA-c2vp-9842-2xq2/GHSA-c2vp-9842-2xq2.json | 4 +--- .../01/GHSA-c5j5-hp3j-jpgp/GHSA-c5j5-hp3j-jpgp.json | 4 +--- .../01/GHSA-c9cg-r57m-xqj9/GHSA-c9cg-r57m-xqj9.json | 8 ++------ .../01/GHSA-cfr6-fjfx-m5r2/GHSA-cfr6-fjfx-m5r2.json | 4 +--- .../01/GHSA-cqph-9f64-7xmq/GHSA-cqph-9f64-7xmq.json | 4 +--- .../01/GHSA-f49q-5gxp-g34f/GHSA-f49q-5gxp-g34f.json | 4 +--- .../01/GHSA-f7rf-j82w-v928/GHSA-f7rf-j82w-v928.json | 4 +--- .../01/GHSA-fj4r-qrhf-ph96/GHSA-fj4r-qrhf-ph96.json | 4 +--- .../01/GHSA-g3m9-67hp-q26f/GHSA-g3m9-67hp-q26f.json | 4 +--- .../01/GHSA-g78w-g57r-7ch5/GHSA-g78w-g57r-7ch5.json | 4 +--- .../01/GHSA-gf8f-27qx-3phv/GHSA-gf8f-27qx-3phv.json | 4 +--- .../01/GHSA-ggc3-9qp8-x5m8/GHSA-ggc3-9qp8-x5m8.json | 4 +--- .../01/GHSA-ggmv-p5cx-xjj5/GHSA-ggmv-p5cx-xjj5.json | 4 +--- .../01/GHSA-h2q9-rjqh-c64g/GHSA-h2q9-rjqh-c64g.json | 4 +--- .../01/GHSA-h4w6-5xx3-2mvh/GHSA-h4w6-5xx3-2mvh.json | 4 +--- .../01/GHSA-h6m7-6h9c-8vm2/GHSA-h6m7-6h9c-8vm2.json | 8 ++------ .../01/GHSA-hfr8-9v95-p75f/GHSA-hfr8-9v95-p75f.json | 4 +--- .../01/GHSA-hj68-qmgw-mf32/GHSA-hj68-qmgw-mf32.json | 4 +--- .../01/GHSA-hq93-g2wv-xwjm/GHSA-hq93-g2wv-xwjm.json | 4 +--- .../01/GHSA-hrg2-9cxg-f9w6/GHSA-hrg2-9cxg-f9w6.json | 4 +--- .../01/GHSA-j38q-p48x-446f/GHSA-j38q-p48x-446f.json | 4 +--- .../01/GHSA-j45j-gj3g-pr93/GHSA-j45j-gj3g-pr93.json | 4 +--- .../01/GHSA-j695-jhjg-w8vx/GHSA-j695-jhjg-w8vx.json | 4 +--- .../01/GHSA-m25v-grp2-qq63/GHSA-m25v-grp2-qq63.json | 4 +--- .../01/GHSA-m434-mwrf-2867/GHSA-m434-mwrf-2867.json | 4 +--- .../01/GHSA-mmw3-7rf2-x9p3/GHSA-mmw3-7rf2-x9p3.json | 4 +--- .../01/GHSA-mxvg-x4fj-7g3v/GHSA-mxvg-x4fj-7g3v.json | 4 +--- .../01/GHSA-p2gq-hc84-24mm/GHSA-p2gq-hc84-24mm.json | 4 +--- .../01/GHSA-p3j9-952w-4qf7/GHSA-p3j9-952w-4qf7.json | 4 +--- .../01/GHSA-pvwf-4h2p-6v45/GHSA-pvwf-4h2p-6v45.json | 4 +--- .../01/GHSA-pxhr-7vfm-8h7v/GHSA-pxhr-7vfm-8h7v.json | 4 +--- .../01/GHSA-qh26-cpr6-mhm2/GHSA-qh26-cpr6-mhm2.json | 4 +--- .../01/GHSA-qhc2-vhh5-gq5h/GHSA-qhc2-vhh5-gq5h.json | 4 +--- .../01/GHSA-qw95-h6p3-w25w/GHSA-qw95-h6p3-w25w.json | 4 +--- .../01/GHSA-r573-6cpv-hcwq/GHSA-r573-6cpv-hcwq.json | 4 +--- .../01/GHSA-r5gh-c4hv-26j3/GHSA-r5gh-c4hv-26j3.json | 4 +--- .../01/GHSA-rgqw-78cv-wmcg/GHSA-rgqw-78cv-wmcg.json | 8 ++------ .../01/GHSA-vw9v-5h73-96pw/GHSA-vw9v-5h73-96pw.json | 4 +--- .../01/GHSA-wgfw-cpjm-64v6/GHSA-wgfw-cpjm-64v6.json | 4 +--- .../01/GHSA-wh97-9rvp-m9hj/GHSA-wh97-9rvp-m9hj.json | 4 +--- .../01/GHSA-wrjp-phgp-j8x3/GHSA-wrjp-phgp-j8x3.json | 4 +--- .../01/GHSA-x4h7-rf56-3v6w/GHSA-x4h7-rf56-3v6w.json | 4 +--- .../01/GHSA-xx2r-xrgj-fm3f/GHSA-xx2r-xrgj-fm3f.json | 4 +--- .../02/GHSA-qp5h-mm28-4jq3/GHSA-qp5h-mm28-4jq3.json | 12 +++--------- .../02/GHSA-rg89-92m2-5hj6/GHSA-rg89-92m2-5hj6.json | 4 +--- .../02/GHSA-rgrc-qmj6-x9mf/GHSA-rgrc-qmj6-x9mf.json | 12 +++--------- .../02/GHSA-v58f-qvrm-qqmh/GHSA-v58f-qvrm-qqmh.json | 4 +--- .../03/GHSA-2f92-gfhp-7pv8/GHSA-2f92-gfhp-7pv8.json | 4 +--- .../03/GHSA-4qp4-9mwx-276r/GHSA-4qp4-9mwx-276r.json | 4 +--- .../03/GHSA-p429-8j49-f6x5/GHSA-p429-8j49-f6x5.json | 4 +--- .../03/GHSA-q75q-wf9j-xqjf/GHSA-q75q-wf9j-xqjf.json | 4 +--- .../04/GHSA-2r49-j3rm-3fj2/GHSA-2r49-j3rm-3fj2.json | 8 ++------ .../04/GHSA-2r6j-h9fw-2v55/GHSA-2r6j-h9fw-2v55.json | 8 ++------ .../04/GHSA-2vjc-6f7c-9p77/GHSA-2vjc-6f7c-9p77.json | 8 ++------ .../04/GHSA-3f89-97wc-72r4/GHSA-3f89-97wc-72r4.json | 8 ++------ .../04/GHSA-3hx8-25m4-f73q/GHSA-3hx8-25m4-f73q.json | 4 +--- .../04/GHSA-3q44-44h8-2hgc/GHSA-3q44-44h8-2hgc.json | 8 ++------ .../04/GHSA-3xqv-2ccr-mmcc/GHSA-3xqv-2ccr-mmcc.json | 8 ++------ .../04/GHSA-462v-wj2r-jp9m/GHSA-462v-wj2r-jp9m.json | 8 ++------ .../04/GHSA-46w5-56fc-wcpj/GHSA-46w5-56fc-wcpj.json | 4 +--- .../04/GHSA-4c7g-99hq-whpv/GHSA-4c7g-99hq-whpv.json | 8 ++------ .../04/GHSA-4g48-c9r3-fjv8/GHSA-4g48-c9r3-fjv8.json | 12 +++--------- .../04/GHSA-4pr9-2v9c-fmpv/GHSA-4pr9-2v9c-fmpv.json | 8 ++------ .../04/GHSA-559r-7rhw-8272/GHSA-559r-7rhw-8272.json | 8 ++------ .../04/GHSA-5fw2-c8q5-m3fx/GHSA-5fw2-c8q5-m3fx.json | 8 ++------ .../04/GHSA-5g37-8p7x-w23g/GHSA-5g37-8p7x-w23g.json | 12 +++--------- .../04/GHSA-5mm9-q2jr-6gr8/GHSA-5mm9-q2jr-6gr8.json | 8 ++------ .../04/GHSA-5r3q-45rq-jqw2/GHSA-5r3q-45rq-jqw2.json | 8 ++------ .../04/GHSA-5v3j-rg7v-f7f2/GHSA-5v3j-rg7v-f7f2.json | 8 ++------ .../04/GHSA-62v2-fqcx-rj9f/GHSA-62v2-fqcx-rj9f.json | 4 +--- .../04/GHSA-63p3-gmh7-933m/GHSA-63p3-gmh7-933m.json | 8 ++------ .../04/GHSA-656c-x8x7-w3c6/GHSA-656c-x8x7-w3c6.json | 8 ++------ .../04/GHSA-6658-9vpg-8pq9/GHSA-6658-9vpg-8pq9.json | 8 ++------ .../04/GHSA-6p4c-r453-8743/GHSA-6p4c-r453-8743.json | 12 +++--------- .../04/GHSA-6wmc-pfvg-7c68/GHSA-6wmc-pfvg-7c68.json | 8 ++------ .../04/GHSA-734v-mgwp-5gmw/GHSA-734v-mgwp-5gmw.json | 8 ++------ .../04/GHSA-746x-qpfv-r44f/GHSA-746x-qpfv-r44f.json | 4 +--- .../04/GHSA-783r-wg7h-79gm/GHSA-783r-wg7h-79gm.json | 4 +--- .../04/GHSA-7fv8-55hq-39rx/GHSA-7fv8-55hq-39rx.json | 8 ++------ .../04/GHSA-7jpm-7cvw-x3ph/GHSA-7jpm-7cvw-x3ph.json | 8 ++------ .../04/GHSA-83jp-w434-jv4p/GHSA-83jp-w434-jv4p.json | 8 ++------ .../04/GHSA-8fp3-w5p8-ppf5/GHSA-8fp3-w5p8-ppf5.json | 8 ++------ .../04/GHSA-8g9c-f7h3-mxcj/GHSA-8g9c-f7h3-mxcj.json | 8 ++------ .../04/GHSA-8hmx-3p38-h5rw/GHSA-8hmx-3p38-h5rw.json | 4 +--- .../04/GHSA-8p8h-55m5-85pr/GHSA-8p8h-55m5-85pr.json | 8 ++------ .../04/GHSA-9hh8-jpxm-8j39/GHSA-9hh8-jpxm-8j39.json | 8 ++------ .../04/GHSA-9m2p-fj6h-mrv7/GHSA-9m2p-fj6h-mrv7.json | 4 +--- .../04/GHSA-9xmp-r23g-wmj9/GHSA-9xmp-r23g-wmj9.json | 8 ++------ .../04/GHSA-c8fq-23wj-f2cc/GHSA-c8fq-23wj-f2cc.json | 8 ++------ .../04/GHSA-c949-3ppw-h395/GHSA-c949-3ppw-h395.json | 8 ++------ .../04/GHSA-cf79-vgxj-c425/GHSA-cf79-vgxj-c425.json | 8 ++------ .../04/GHSA-f5pp-ccfh-pv5h/GHSA-f5pp-ccfh-pv5h.json | 8 ++------ .../04/GHSA-fg45-96mh-43jx/GHSA-fg45-96mh-43jx.json | 8 ++------ .../04/GHSA-fhxj-mqjh-cmr5/GHSA-fhxj-mqjh-cmr5.json | 8 ++------ .../04/GHSA-fqfp-8j7w-mhwh/GHSA-fqfp-8j7w-mhwh.json | 8 ++------ .../04/GHSA-fvp6-8p9w-vffq/GHSA-fvp6-8p9w-vffq.json | 4 +--- .../04/GHSA-fx89-732f-4cfg/GHSA-fx89-732f-4cfg.json | 8 ++------ .../04/GHSA-g2v3-62rj-h6p6/GHSA-g2v3-62rj-h6p6.json | 8 ++------ .../04/GHSA-g399-gv5f-cqhf/GHSA-g399-gv5f-cqhf.json | 8 ++------ .../04/GHSA-g47j-j35v-2954/GHSA-g47j-j35v-2954.json | 8 ++------ .../04/GHSA-g7m8-98h3-rj3p/GHSA-g7m8-98h3-rj3p.json | 8 ++------ .../04/GHSA-gvmr-9xc2-m89g/GHSA-gvmr-9xc2-m89g.json | 8 ++------ .../04/GHSA-gvqq-xg2j-r2p6/GHSA-gvqq-xg2j-r2p6.json | 8 ++------ .../04/GHSA-gvrj-cx9v-hg3m/GHSA-gvrj-cx9v-hg3m.json | 8 ++------ .../04/GHSA-h4r9-mgj3-f327/GHSA-h4r9-mgj3-f327.json | 8 ++------ .../04/GHSA-h75w-54m5-h4x7/GHSA-h75w-54m5-h4x7.json | 8 ++------ .../04/GHSA-h9f9-5v63-95r8/GHSA-h9f9-5v63-95r8.json | 8 ++------ .../04/GHSA-hfhm-8g9w-r3xf/GHSA-hfhm-8g9w-r3xf.json | 8 ++------ .../04/GHSA-hgxh-g8gm-w483/GHSA-hgxh-g8gm-w483.json | 4 +--- .../04/GHSA-hphg-c6x6-ff8h/GHSA-hphg-c6x6-ff8h.json | 8 ++------ .../04/GHSA-hq8c-9c7w-qmgh/GHSA-hq8c-9c7w-qmgh.json | 8 ++------ .../04/GHSA-hqjp-8rmv-6c38/GHSA-hqjp-8rmv-6c38.json | 8 ++------ .../04/GHSA-j273-w4fm-gq4h/GHSA-j273-w4fm-gq4h.json | 8 ++------ .../04/GHSA-j2rw-fqcc-853m/GHSA-j2rw-fqcc-853m.json | 8 ++------ .../04/GHSA-j5pj-g556-8w7q/GHSA-j5pj-g556-8w7q.json | 8 ++------ .../04/GHSA-jv75-4p2q-rw9j/GHSA-jv75-4p2q-rw9j.json | 8 ++------ .../04/GHSA-m46f-6r28-g554/GHSA-m46f-6r28-g554.json | 4 +--- .../04/GHSA-m9vm-h5cv-g8mc/GHSA-m9vm-h5cv-g8mc.json | 8 ++------ .../04/GHSA-mcj7-3h2r-x449/GHSA-mcj7-3h2r-x449.json | 8 ++------ .../04/GHSA-mmmh-j7wc-66pp/GHSA-mmmh-j7wc-66pp.json | 8 ++------ .../04/GHSA-mw72-pm78-7w47/GHSA-mw72-pm78-7w47.json | 8 ++------ .../04/GHSA-mxgq-9hhc-gf5w/GHSA-mxgq-9hhc-gf5w.json | 8 ++------ .../04/GHSA-p5cr-h893-2pjv/GHSA-p5cr-h893-2pjv.json | 8 ++------ .../04/GHSA-pj2j-w9fr-j7p8/GHSA-pj2j-w9fr-j7p8.json | 8 ++------ .../04/GHSA-pvpc-4cv3-893v/GHSA-pvpc-4cv3-893v.json | 8 ++------ .../04/GHSA-q74p-v389-xm2f/GHSA-q74p-v389-xm2f.json | 4 +--- .../04/GHSA-q7cc-2px9-cfh5/GHSA-q7cc-2px9-cfh5.json | 8 ++------ .../04/GHSA-qgc6-rq8f-7f43/GHSA-qgc6-rq8f-7f43.json | 8 ++------ .../04/GHSA-qp6g-f22x-mgxr/GHSA-qp6g-f22x-mgxr.json | 4 +--- .../04/GHSA-r7wq-fwwj-4969/GHSA-r7wq-fwwj-4969.json | 8 ++------ .../04/GHSA-rc85-79f2-729p/GHSA-rc85-79f2-729p.json | 4 +--- .../04/GHSA-v6p9-97jc-949f/GHSA-v6p9-97jc-949f.json | 8 ++------ .../04/GHSA-v7j3-v7h9-349h/GHSA-v7j3-v7h9-349h.json | 8 ++------ .../04/GHSA-vgx7-rc5c-7cxw/GHSA-vgx7-rc5c-7cxw.json | 4 +--- .../04/GHSA-vv26-p739-hhr7/GHSA-vv26-p739-hhr7.json | 4 +--- .../04/GHSA-w759-w5c4-753m/GHSA-w759-w5c4-753m.json | 4 +--- .../04/GHSA-wcgj-gfq5-2rvf/GHSA-wcgj-gfq5-2rvf.json | 8 ++------ .../04/GHSA-wq6j-gvvq-8w8r/GHSA-wq6j-gvvq-8w8r.json | 8 ++------ .../04/GHSA-wr2q-44mp-hgqr/GHSA-wr2q-44mp-hgqr.json | 8 ++------ .../04/GHSA-wxjw-jrvp-g3j8/GHSA-wxjw-jrvp-g3j8.json | 8 ++------ .../04/GHSA-wxwf-hc4j-fc3q/GHSA-wxwf-hc4j-fc3q.json | 8 ++------ .../04/GHSA-x49r-f7f3-ghcf/GHSA-x49r-f7f3-ghcf.json | 8 ++------ .../04/GHSA-xqh5-pm55-j7f5/GHSA-xqh5-pm55-j7f5.json | 4 +--- .../04/GHSA-xrwr-3m4h-cqcx/GHSA-xrwr-3m4h-cqcx.json | 8 ++------ .../05/GHSA-262h-qq26-j72g/GHSA-262h-qq26-j72g.json | 8 ++------ .../05/GHSA-2rw4-j3h5-72xp/GHSA-2rw4-j3h5-72xp.json | 8 ++------ .../05/GHSA-3r68-84rw-29ww/GHSA-3r68-84rw-29ww.json | 12 +++--------- .../05/GHSA-5g7f-9v94-gj5g/GHSA-5g7f-9v94-gj5g.json | 4 +--- .../05/GHSA-5hcj-87pw-f7w4/GHSA-5hcj-87pw-f7w4.json | 4 +--- .../05/GHSA-5jhx-vpph-fr8r/GHSA-5jhx-vpph-fr8r.json | 4 +--- .../05/GHSA-7g2q-cf23-xvj2/GHSA-7g2q-cf23-xvj2.json | 4 +--- .../05/GHSA-8ppj-8m99-39pw/GHSA-8ppj-8m99-39pw.json | 4 +--- .../05/GHSA-97cq-v4mw-v427/GHSA-97cq-v4mw-v427.json | 8 ++------ .../05/GHSA-cv4r-v8vp-fgjg/GHSA-cv4r-v8vp-fgjg.json | 4 +--- .../05/GHSA-fh9r-c9jr-h783/GHSA-fh9r-c9jr-h783.json | 8 ++------ .../05/GHSA-fp26-r9x4-5gw4/GHSA-fp26-r9x4-5gw4.json | 12 +++--------- .../05/GHSA-fvh8-9h4h-hc67/GHSA-fvh8-9h4h-hc67.json | 4 +--- .../05/GHSA-mrrj-mmg5-3hj3/GHSA-mrrj-mmg5-3hj3.json | 4 +--- .../05/GHSA-mxqp-c3qj-mg2r/GHSA-mxqp-c3qj-mg2r.json | 8 ++------ .../05/GHSA-p557-3fgh-xgcq/GHSA-p557-3fgh-xgcq.json | 8 ++------ .../05/GHSA-r566-fcmc-4j3v/GHSA-r566-fcmc-4j3v.json | 12 +++--------- .../05/GHSA-rrxx-mf3x-75gw/GHSA-rrxx-mf3x-75gw.json | 8 ++------ .../05/GHSA-vgjq-3m42-w385/GHSA-vgjq-3m42-w385.json | 4 +--- .../05/GHSA-wf67-xfgm-qgf4/GHSA-wf67-xfgm-qgf4.json | 4 +--- .../05/GHSA-x63g-263f-3p2w/GHSA-x63g-263f-3p2w.json | 4 +--- .../05/GHSA-xww2-fjcq-4hhv/GHSA-xww2-fjcq-4hhv.json | 8 ++------ .../06/GHSA-4f36-629m-27gx/GHSA-4f36-629m-27gx.json | 4 +--- .../06/GHSA-r49q-p832-vm3j/GHSA-r49q-p832-vm3j.json | 4 +--- .../07/GHSA-2xxp-777x-hr57/GHSA-2xxp-777x-hr57.json | 8 ++------ .../07/GHSA-4fvx-2mxh-x7v7/GHSA-4fvx-2mxh-x7v7.json | 4 +--- .../07/GHSA-83qh-pw42-g76w/GHSA-83qh-pw42-g76w.json | 8 ++------ .../07/GHSA-8j3v-w6gq-fj6q/GHSA-8j3v-w6gq-fj6q.json | 4 +--- .../07/GHSA-8qh8-5vx6-pv8r/GHSA-8qh8-5vx6-pv8r.json | 4 +--- .../07/GHSA-9mqr-f856-hh8f/GHSA-9mqr-f856-hh8f.json | 8 ++------ .../07/GHSA-9xg8-vx2w-7c89/GHSA-9xg8-vx2w-7c89.json | 4 +--- .../07/GHSA-fc2g-vx9q-c76v/GHSA-fc2g-vx9q-c76v.json | 4 +--- .../07/GHSA-fc3j-5g75-8c22/GHSA-fc3j-5g75-8c22.json | 4 +--- .../07/GHSA-g26w-g327-7xm5/GHSA-g26w-g327-7xm5.json | 4 +--- .../07/GHSA-gwpc-v2jm-gv2g/GHSA-gwpc-v2jm-gv2g.json | 4 +--- .../07/GHSA-h47x-xwj6-wrpv/GHSA-h47x-xwj6-wrpv.json | 4 +--- .../07/GHSA-hqc7-pg97-xcc3/GHSA-hqc7-pg97-xcc3.json | 12 +++--------- .../07/GHSA-hxwp-wpwp-65p6/GHSA-hxwp-wpwp-65p6.json | 4 +--- .../07/GHSA-jmwq-hmf3-87q7/GHSA-jmwq-hmf3-87q7.json | 4 +--- .../07/GHSA-jr37-pwgj-83px/GHSA-jr37-pwgj-83px.json | 4 +--- .../07/GHSA-m82g-qg9r-rgxp/GHSA-m82g-qg9r-rgxp.json | 4 +--- .../07/GHSA-mg8q-6jqj-3r4r/GHSA-mg8q-6jqj-3r4r.json | 8 ++------ .../07/GHSA-vjcf-4947-pvqf/GHSA-vjcf-4947-pvqf.json | 12 +++--------- .../07/GHSA-wgp4-g5wv-7wf9/GHSA-wgp4-g5wv-7wf9.json | 8 ++------ .../07/GHSA-wvx8-cjrx-23xg/GHSA-wvx8-cjrx-23xg.json | 12 +++--------- .../07/GHSA-x993-f873-7mgw/GHSA-x993-f873-7mgw.json | 4 +--- .../07/GHSA-xvm6-65jm-mc4g/GHSA-xvm6-65jm-mc4g.json | 4 +--- 959 files changed, 2123 insertions(+), 6365 deletions(-) diff --git a/advisories/github-reviewed/2022/04/GHSA-4gr9-99j3-vqxv/GHSA-4gr9-99j3-vqxv.json b/advisories/github-reviewed/2022/04/GHSA-4gr9-99j3-vqxv/GHSA-4gr9-99j3-vqxv.json index 8892dba308a..3cdd9118da3 100644 --- a/advisories/github-reviewed/2022/04/GHSA-4gr9-99j3-vqxv/GHSA-4gr9-99j3-vqxv.json +++ b/advisories/github-reviewed/2022/04/GHSA-4gr9-99j3-vqxv/GHSA-4gr9-99j3-vqxv.json @@ -8,9 +8,7 @@ ], "summary": "Apache Tomcat Directory Traversal", "details": "Directory traversal vulnerability in source.jsp of Apache Tomcat before 3.1 allows remote attackers to read arbitrary files via a `..` (dot dot) in the argument to source.jsp.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/04/GHSA-58hj-575g-5j25/GHSA-58hj-575g-5j25.json b/advisories/github-reviewed/2022/04/GHSA-58hj-575g-5j25/GHSA-58hj-575g-5j25.json index a38fbda430b..41f67b9fc09 100644 --- a/advisories/github-reviewed/2022/04/GHSA-58hj-575g-5j25/GHSA-58hj-575g-5j25.json +++ b/advisories/github-reviewed/2022/04/GHSA-58hj-575g-5j25/GHSA-58hj-575g-5j25.json @@ -8,9 +8,7 @@ ], "summary": "Apache Tomcat allows webmasters to insert xss into error messages", "details": "A cross-site scripting vulnerability in Apache Tomcat 3.2.1 allows a malicious webmaster to embed Javascript in a request for a .JSP file, which causes the Javascript to be inserted into an error message.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/04/GHSA-7whr-j8vf-r4wj/GHSA-7whr-j8vf-r4wj.json b/advisories/github-reviewed/2022/04/GHSA-7whr-j8vf-r4wj/GHSA-7whr-j8vf-r4wj.json index 5827887a1b3..7ea2147378a 100644 --- a/advisories/github-reviewed/2022/04/GHSA-7whr-j8vf-r4wj/GHSA-7whr-j8vf-r4wj.json +++ b/advisories/github-reviewed/2022/04/GHSA-7whr-j8vf-r4wj/GHSA-7whr-j8vf-r4wj.json @@ -8,9 +8,7 @@ ], "summary": "Zope allows attackers to modify raw image and file data", "details": "Zope 2.2.0 through 2.2.4 does not properly protect a data updating method on Image and File objects, which allows attackers with DTML editing privileges to modify the raw data of these objects.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/04/GHSA-92j7-34x9-f3jw/GHSA-92j7-34x9-f3jw.json b/advisories/github-reviewed/2022/04/GHSA-92j7-34x9-f3jw/GHSA-92j7-34x9-f3jw.json index b9a61d81fbc..c9ce7f4b6fa 100644 --- a/advisories/github-reviewed/2022/04/GHSA-92j7-34x9-f3jw/GHSA-92j7-34x9-f3jw.json +++ b/advisories/github-reviewed/2022/04/GHSA-92j7-34x9-f3jw/GHSA-92j7-34x9-f3jw.json @@ -8,9 +8,7 @@ ], "summary": "Apache James Denial of Service", "details": "Spooler in Apache Foundation James before 2.2.0 allows local users to cause a denial of service (memory consumption) by triggering various error conditions in the retrieve function, which prevents a lock from being released and causes a memory leak.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/04/GHSA-9cmq-pj6p-hgwf/GHSA-9cmq-pj6p-hgwf.json b/advisories/github-reviewed/2022/04/GHSA-9cmq-pj6p-hgwf/GHSA-9cmq-pj6p-hgwf.json index 322db2923ae..ecd4a0a53a0 100644 --- a/advisories/github-reviewed/2022/04/GHSA-9cmq-pj6p-hgwf/GHSA-9cmq-pj6p-hgwf.json +++ b/advisories/github-reviewed/2022/04/GHSA-9cmq-pj6p-hgwf/GHSA-9cmq-pj6p-hgwf.json @@ -8,9 +8,7 @@ ], "summary": "Zope does not properly restrict access to the getRoles method", "details": "Zope before 2.2.1 does not properly restrict access to the getRoles method, which allows users who can edit DTML to add or modify roles by modifying the roles list that is included in a request.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/04/GHSA-h2xh-jvpf-xq42/GHSA-h2xh-jvpf-xq42.json b/advisories/github-reviewed/2022/04/GHSA-h2xh-jvpf-xq42/GHSA-h2xh-jvpf-xq42.json index b15a48e7d4d..e5dfc41bd5f 100644 --- a/advisories/github-reviewed/2022/04/GHSA-h2xh-jvpf-xq42/GHSA-h2xh-jvpf-xq42.json +++ b/advisories/github-reviewed/2022/04/GHSA-h2xh-jvpf-xq42/GHSA-h2xh-jvpf-xq42.json @@ -8,9 +8,7 @@ ], "summary": "Zope does not properly perform security registration for legacy names", "details": "Zope 2.2.0 through 2.2.4 does not properly perform security registration for legacy names of object constructors such as DTML method objects, which could allow attackers to perform unauthorized activities.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/04/GHSA-hj4h-vqpq-95wg/GHSA-hj4h-vqpq-95wg.json b/advisories/github-reviewed/2022/04/GHSA-hj4h-vqpq-95wg/GHSA-hj4h-vqpq-95wg.json index 90915c1307a..19c2d719f40 100644 --- a/advisories/github-reviewed/2022/04/GHSA-hj4h-vqpq-95wg/GHSA-hj4h-vqpq-95wg.json +++ b/advisories/github-reviewed/2022/04/GHSA-hj4h-vqpq-95wg/GHSA-hj4h-vqpq-95wg.json @@ -8,9 +8,7 @@ ], "summary": "Mailman Sensitive Information Disclosure", "details": "Mailman before 2.1.5 allows remote attackers to obtain user passwords via a crafted email request to the Mailman server.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/04/GHSA-p5rr-q5g6-gm42/GHSA-p5rr-q5g6-gm42.json b/advisories/github-reviewed/2022/04/GHSA-p5rr-q5g6-gm42/GHSA-p5rr-q5g6-gm42.json index 105024c4b04..a83f1c4161a 100644 --- a/advisories/github-reviewed/2022/04/GHSA-p5rr-q5g6-gm42/GHSA-p5rr-q5g6-gm42.json +++ b/advisories/github-reviewed/2022/04/GHSA-p5rr-q5g6-gm42/GHSA-p5rr-q5g6-gm42.json @@ -8,9 +8,7 @@ ], "summary": "Jetty HTTP Server Denial of Service vulnerability", "details": "HttpRequest.java in Jetty HTTP Server before 4.2.19 allows remote attackers to cause denial of service (memory usage and application crash) via HTTP requests with a large Content-Length.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/04/GHSA-qg4g-6jcq-rw93/GHSA-qg4g-6jcq-rw93.json b/advisories/github-reviewed/2022/04/GHSA-qg4g-6jcq-rw93/GHSA-qg4g-6jcq-rw93.json index 90cd0926d23..b8e6e6f1d9e 100644 --- a/advisories/github-reviewed/2022/04/GHSA-qg4g-6jcq-rw93/GHSA-qg4g-6jcq-rw93.json +++ b/advisories/github-reviewed/2022/04/GHSA-qg4g-6jcq-rw93/GHSA-qg4g-6jcq-rw93.json @@ -8,9 +8,7 @@ ], "summary": "Jakarta Apache Tomcat Reveals Physical Paths", "details": "Jakarta Tomcat 3.1 under Apache reveals physical path information when a remote attacker requests a URL that does not exist, which generates an error message that includes the physical path.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/04/GHSA-rh6c-jh4c-9fg3/GHSA-rh6c-jh4c-9fg3.json b/advisories/github-reviewed/2022/04/GHSA-rh6c-jh4c-9fg3/GHSA-rh6c-jh4c-9fg3.json index acf74bada44..6dff94c3b3e 100644 --- a/advisories/github-reviewed/2022/04/GHSA-rh6c-jh4c-9fg3/GHSA-rh6c-jh4c-9fg3.json +++ b/advisories/github-reviewed/2022/04/GHSA-rh6c-jh4c-9fg3/GHSA-rh6c-jh4c-9fg3.json @@ -8,9 +8,7 @@ ], "summary": "mailman Cross-site scripting (XSS) vulnerability ", "details": "Cross-site scripting (XSS) vulnerability in the driver script in mailman before 2.1.5 allows remote attackers to inject arbitrary web script or HTML via a URL, which is not properly escaped in the resulting error page.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/04/GHSA-wcwp-r3fj-mm3p/GHSA-wcwp-r3fj-mm3p.json b/advisories/github-reviewed/2022/04/GHSA-wcwp-r3fj-mm3p/GHSA-wcwp-r3fj-mm3p.json index 3b6472d4fc3..debad575fb5 100644 --- a/advisories/github-reviewed/2022/04/GHSA-wcwp-r3fj-mm3p/GHSA-wcwp-r3fj-mm3p.json +++ b/advisories/github-reviewed/2022/04/GHSA-wcwp-r3fj-mm3p/GHSA-wcwp-r3fj-mm3p.json @@ -8,9 +8,7 @@ ], "summary": "Zope DTML implementation Improper Authentication", "details": "The DTML implementation in the Z Object Publishing Environment (Zope) allows remote attackers to conduct unauthorized activities.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/04/GHSA-x445-mmpw-7r4f/GHSA-x445-mmpw-7r4f.json b/advisories/github-reviewed/2022/04/GHSA-x445-mmpw-7r4f/GHSA-x445-mmpw-7r4f.json index 2b62f253fe1..5a0babff3cc 100644 --- a/advisories/github-reviewed/2022/04/GHSA-x445-mmpw-7r4f/GHSA-x445-mmpw-7r4f.json +++ b/advisories/github-reviewed/2022/04/GHSA-x445-mmpw-7r4f/GHSA-x445-mmpw-7r4f.json @@ -8,9 +8,7 @@ ], "summary": "Apache Tomcat Allows Source Disclosure", "details": "Apache Software Foundation Tomcat Servlet prior to 3.2.2 allows a remote attacker to read the source code to arbitrary 'jsp' files via a malformed URL request which does not end with an HTTP protocol specification (i.e. HTTP/1.0).", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2023/03/GHSA-69fc-v223-6rjw/GHSA-69fc-v223-6rjw.json b/advisories/github-reviewed/2023/03/GHSA-69fc-v223-6rjw/GHSA-69fc-v223-6rjw.json index 7b489721f1f..b50ecbf0bd1 100644 --- a/advisories/github-reviewed/2023/03/GHSA-69fc-v223-6rjw/GHSA-69fc-v223-6rjw.json +++ b/advisories/github-reviewed/2023/03/GHSA-69fc-v223-6rjw/GHSA-69fc-v223-6rjw.json @@ -4,14 +4,10 @@ "modified": "2023-03-31T17:11:30Z", "published": "2023-03-29T18:30:29Z", "withdrawn": "2023-03-31T17:11:30Z", - "aliases": [ - - ], + "aliases": [], "summary": "Duplicate Advisory: Pimcore Cross-site scripting in Predefined Asset Metadata module in Settings", "details": "## Duplicate Advisory\nThis advisory has been withdrawn because it is a duplicate of [GHSA-6qjm-39vh-729w](https://github.com/advisories/GHSA-6qjm-39vh-729w). This link is maintained ot preserve external references.\n\n## Original Description\nCross-site Scripting (XSS) - Generic in GitHub repository pimcore/pimcore prior to 10.5.20.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2023/08/GHSA-62pr-54gv-vg5g/GHSA-62pr-54gv-vg5g.json b/advisories/github-reviewed/2023/08/GHSA-62pr-54gv-vg5g/GHSA-62pr-54gv-vg5g.json index 76da532cc11..bfab2c13db5 100644 --- a/advisories/github-reviewed/2023/08/GHSA-62pr-54gv-vg5g/GHSA-62pr-54gv-vg5g.json +++ b/advisories/github-reviewed/2023/08/GHSA-62pr-54gv-vg5g/GHSA-62pr-54gv-vg5g.json @@ -8,9 +8,7 @@ ], "summary": "SpringBlade vulnerable to SQL injection", "details": "In SpringBlade V3.6.0 when executing SQL query, the parameters submitted by the user are not wrapped in quotation marks, which leads to SQL injection.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2023/08/GHSA-93wx-j2qv-49fg/GHSA-93wx-j2qv-49fg.json b/advisories/github-reviewed/2023/08/GHSA-93wx-j2qv-49fg/GHSA-93wx-j2qv-49fg.json index 51322b57121..24b9c9d59e0 100644 --- a/advisories/github-reviewed/2023/08/GHSA-93wx-j2qv-49fg/GHSA-93wx-j2qv-49fg.json +++ b/advisories/github-reviewed/2023/08/GHSA-93wx-j2qv-49fg/GHSA-93wx-j2qv-49fg.json @@ -54,9 +54,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2023-08-23T18:41:21Z", diff --git a/advisories/github-reviewed/2024/02/GHSA-7c9g-vj9m-8pm6/GHSA-7c9g-vj9m-8pm6.json b/advisories/github-reviewed/2024/02/GHSA-7c9g-vj9m-8pm6/GHSA-7c9g-vj9m-8pm6.json index c6e84a6bb29..b51dfb63dae 100644 --- a/advisories/github-reviewed/2024/02/GHSA-7c9g-vj9m-8pm6/GHSA-7c9g-vj9m-8pm6.json +++ b/advisories/github-reviewed/2024/02/GHSA-7c9g-vj9m-8pm6/GHSA-7c9g-vj9m-8pm6.json @@ -4,9 +4,7 @@ "modified": "2024-04-16T16:10:38Z", "published": "2024-02-28T00:31:55Z", "withdrawn": "2024-04-16T16:10:38Z", - "aliases": [ - - ], + "aliases": [], "summary": "Duplicate Advisory: ReDos vulnerability of XMLFeedSpider", "details": "## Duplicate Advisory\nThis advisory has been withdrawn because it is a duplicate of GHSA-cc65-xxvf-f7r9. This link is maintained to preserve external references.\n\n## Original Description\nParts of the Scrapy API were found to be vulnerable to a ReDoS attack. Handling a malicious response could cause extreme CPU and memory usage during the parsing of its content, due to the use of vulnerable regular expressions for that parsing.", "severity": [ diff --git a/advisories/github-reviewed/2024/07/GHSA-phg7-8mm9-gj88/GHSA-phg7-8mm9-gj88.json b/advisories/github-reviewed/2024/07/GHSA-phg7-8mm9-gj88/GHSA-phg7-8mm9-gj88.json index 9b8d5de1721..661daf2c7e9 100644 --- a/advisories/github-reviewed/2024/07/GHSA-phg7-8mm9-gj88/GHSA-phg7-8mm9-gj88.json +++ b/advisories/github-reviewed/2024/07/GHSA-phg7-8mm9-gj88/GHSA-phg7-8mm9-gj88.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-phg7-8mm9-gj88", - "modified": "2024-07-10T17:28:12Z", + "modified": "2024-11-18T16:26:49Z", "published": "2024-07-07T15:31:12Z", "aliases": [ "CVE-2024-40614" @@ -81,7 +81,7 @@ "cwe_ids": [ "CWE-89" ], - "severity": "MODERATE", + "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2024-07-08T15:00:36Z", "nvd_published_at": "2024-07-07T15:15:09Z" diff --git a/advisories/unreviewed/2022/04/GHSA-269j-r79f-hqvp/GHSA-269j-r79f-hqvp.json b/advisories/unreviewed/2022/04/GHSA-269j-r79f-hqvp/GHSA-269j-r79f-hqvp.json index 6524a0a40fe..23067656910 100644 --- a/advisories/unreviewed/2022/04/GHSA-269j-r79f-hqvp/GHSA-269j-r79f-hqvp.json +++ b/advisories/unreviewed/2022/04/GHSA-269j-r79f-hqvp/GHSA-269j-r79f-hqvp.json @@ -7,12 +7,8 @@ "CVE-2003-1254" ], "details": "Active PHP Bookmarks (APB) 1.1.01 allows remote attackers to execute arbitrary PHP code via (1) head.php, (2) apb_common.php, or (3) apb_view_class.php by modifying the APB_SETTINGS parameter to reference a URL on a remote web server that contains the code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-27v5-q384-ff55/GHSA-27v5-q384-ff55.json b/advisories/unreviewed/2022/04/GHSA-27v5-q384-ff55/GHSA-27v5-q384-ff55.json index 4d32974b453..9b9fdd7d384 100644 --- a/advisories/unreviewed/2022/04/GHSA-27v5-q384-ff55/GHSA-27v5-q384-ff55.json +++ b/advisories/unreviewed/2022/04/GHSA-27v5-q384-ff55/GHSA-27v5-q384-ff55.json @@ -7,12 +7,8 @@ "CVE-2003-1257" ], "details": "find_theni_home.php in E-theni allows remote attackers to obtain sensitive system information via a URL request which executes phpinfo.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-28rw-jv54-hwff/GHSA-28rw-jv54-hwff.json b/advisories/unreviewed/2022/04/GHSA-28rw-jv54-hwff/GHSA-28rw-jv54-hwff.json index d95214eeec4..cb9681cdfeb 100644 --- a/advisories/unreviewed/2022/04/GHSA-28rw-jv54-hwff/GHSA-28rw-jv54-hwff.json +++ b/advisories/unreviewed/2022/04/GHSA-28rw-jv54-hwff/GHSA-28rw-jv54-hwff.json @@ -7,12 +7,8 @@ "CVE-2003-1277" ], "details": "Cross-site scripting (XSS) vulnerabilities in Yet Another Bulletin Board (YaBB) 1.5.0 allow remote attackers to execute arbitrary script as other users and possibly steal authentication information via cookies by injecting arbitrary HTML or script into (1) news_icon of news_template.php, and (2) threadid and subject of index.html", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-34gv-g2q3-w3f7/GHSA-34gv-g2q3-w3f7.json b/advisories/unreviewed/2022/04/GHSA-34gv-g2q3-w3f7/GHSA-34gv-g2q3-w3f7.json index ee71242cd71..6241d183cd0 100644 --- a/advisories/unreviewed/2022/04/GHSA-34gv-g2q3-w3f7/GHSA-34gv-g2q3-w3f7.json +++ b/advisories/unreviewed/2022/04/GHSA-34gv-g2q3-w3f7/GHSA-34gv-g2q3-w3f7.json @@ -7,12 +7,8 @@ "CVE-2003-1268" ], "details": "Multiple SQL injection vulnerabilities in (1) addcustomer.asp, (2) addprod.asp, and (3) process.asp in a.shopKart 2.0.3 allow remote attackers to execute arbitrary SQL and obtain sensitive information via the zip, state, country, phone, and fax parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3645-c3p7-mxq3/GHSA-3645-c3p7-mxq3.json b/advisories/unreviewed/2022/04/GHSA-3645-c3p7-mxq3/GHSA-3645-c3p7-mxq3.json index 4c54805748c..8dd5b1a11d9 100644 --- a/advisories/unreviewed/2022/04/GHSA-3645-c3p7-mxq3/GHSA-3645-c3p7-mxq3.json +++ b/advisories/unreviewed/2022/04/GHSA-3645-c3p7-mxq3/GHSA-3645-c3p7-mxq3.json @@ -7,12 +7,8 @@ "CVE-2003-1264" ], "details": "TFTP server in Longshine Wireless Access Point (WAP) LCS-883R-AC-B, and in D-Link DI-614+ 2.0 which is based on it, allows remote attackers to obtain the WEP secret and gain administrator privileges by downloading the configuration file (config.img) and other files without authentication.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-36f6-v26f-xjrx/GHSA-36f6-v26f-xjrx.json b/advisories/unreviewed/2022/04/GHSA-36f6-v26f-xjrx/GHSA-36f6-v26f-xjrx.json index 847fece00fb..fcf0f48e05a 100644 --- a/advisories/unreviewed/2022/04/GHSA-36f6-v26f-xjrx/GHSA-36f6-v26f-xjrx.json +++ b/advisories/unreviewed/2022/04/GHSA-36f6-v26f-xjrx/GHSA-36f6-v26f-xjrx.json @@ -7,12 +7,8 @@ "CVE-2003-1273" ], "details": "Winamp 3.0 allows remote attackers to cause a denial of service (crash) via a .b4s file with a playlist name that contains some non-English characters, e.g. Cyrillic characters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4369-x39w-2545/GHSA-4369-x39w-2545.json b/advisories/unreviewed/2022/04/GHSA-4369-x39w-2545/GHSA-4369-x39w-2545.json index 793506868c3..47f0685b6d7 100644 --- a/advisories/unreviewed/2022/04/GHSA-4369-x39w-2545/GHSA-4369-x39w-2545.json +++ b/advisories/unreviewed/2022/04/GHSA-4369-x39w-2545/GHSA-4369-x39w-2545.json @@ -7,12 +7,8 @@ "CVE-2003-1291" ], "details": "VMware ESX Server 1.5.2 before Patch 4 allows local users to execute arbitrary programs as root via certain modified VMware ESX Server environment variables.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-46x9-grh5-9g2v/GHSA-46x9-grh5-9g2v.json b/advisories/unreviewed/2022/04/GHSA-46x9-grh5-9g2v/GHSA-46x9-grh5-9g2v.json index b5066220310..d6c206d5fd2 100644 --- a/advisories/unreviewed/2022/04/GHSA-46x9-grh5-9g2v/GHSA-46x9-grh5-9g2v.json +++ b/advisories/unreviewed/2022/04/GHSA-46x9-grh5-9g2v/GHSA-46x9-grh5-9g2v.json @@ -7,12 +7,8 @@ "CVE-2003-1293" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in NukedWeb GuestBookHost allow remote attackers to inject arbitrary web script or HTML via the (1) Name, (2) Email and (3) Message fields when signing the guestbook.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4cp7-42rr-fw9x/GHSA-4cp7-42rr-fw9x.json b/advisories/unreviewed/2022/04/GHSA-4cp7-42rr-fw9x/GHSA-4cp7-42rr-fw9x.json index 439d54f30d3..0a16a41ac08 100644 --- a/advisories/unreviewed/2022/04/GHSA-4cp7-42rr-fw9x/GHSA-4cp7-42rr-fw9x.json +++ b/advisories/unreviewed/2022/04/GHSA-4cp7-42rr-fw9x/GHSA-4cp7-42rr-fw9x.json @@ -7,12 +7,8 @@ "CVE-2003-1281" ], "details": "cgihtml 1.69 allows local users to overwrite arbitrary files via a symlink attack on certain temporary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4gm3-q79f-82pq/GHSA-4gm3-q79f-82pq.json b/advisories/unreviewed/2022/04/GHSA-4gm3-q79f-82pq/GHSA-4gm3-q79f-82pq.json index 34d9f1870c5..e276da062ec 100644 --- a/advisories/unreviewed/2022/04/GHSA-4gm3-q79f-82pq/GHSA-4gm3-q79f-82pq.json +++ b/advisories/unreviewed/2022/04/GHSA-4gm3-q79f-82pq/GHSA-4gm3-q79f-82pq.json @@ -7,12 +7,8 @@ "CVE-2003-1205" ], "details": "Crob FTP Server 2.60.1 allows remote authenticated users to cause a denial of service (crash) by renaming a file to the \"con\" MS-DOS device name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4j96-pcv8-f59x/GHSA-4j96-pcv8-f59x.json b/advisories/unreviewed/2022/04/GHSA-4j96-pcv8-f59x/GHSA-4j96-pcv8-f59x.json index d97ff47e64d..0f616cc97c4 100644 --- a/advisories/unreviewed/2022/04/GHSA-4j96-pcv8-f59x/GHSA-4j96-pcv8-f59x.json +++ b/advisories/unreviewed/2022/04/GHSA-4j96-pcv8-f59x/GHSA-4j96-pcv8-f59x.json @@ -7,12 +7,8 @@ "CVE-2003-1275" ], "details": "Pocket Internet Explorer (PIE) 3.0 allows remote attackers to cause a denial of service (crash) via a Javascript function that uses the object.innerHTML function to recursively call that function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5fmx-9hq9-vfjx/GHSA-5fmx-9hq9-vfjx.json b/advisories/unreviewed/2022/04/GHSA-5fmx-9hq9-vfjx/GHSA-5fmx-9hq9-vfjx.json index 20b01461fff..8f1c357d53e 100644 --- a/advisories/unreviewed/2022/04/GHSA-5fmx-9hq9-vfjx/GHSA-5fmx-9hq9-vfjx.json +++ b/advisories/unreviewed/2022/04/GHSA-5fmx-9hq9-vfjx/GHSA-5fmx-9hq9-vfjx.json @@ -7,12 +7,8 @@ "CVE-2003-1266" ], "details": "The (1) FTP, (2) POP3, (3) SMTP, and (4) NNTP servers in EServer 2.92 through 2.97, and possibly 2.98, allow remote attackers to cause a denial of service (crash) via a large amount of data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-68p6-7r44-42r5/GHSA-68p6-7r44-42r5.json b/advisories/unreviewed/2022/04/GHSA-68p6-7r44-42r5/GHSA-68p6-7r44-42r5.json index 87680184353..e01e9b5ccbe 100644 --- a/advisories/unreviewed/2022/04/GHSA-68p6-7r44-42r5/GHSA-68p6-7r44-42r5.json +++ b/advisories/unreviewed/2022/04/GHSA-68p6-7r44-42r5/GHSA-68p6-7r44-42r5.json @@ -7,12 +7,8 @@ "CVE-2003-1214" ], "details": "Unknown vulnerability in the server login for VisualShapers ezContents 2.02 and earlier allows remote attackers to bypass access restrictions and gain access to restricted functions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-74q5-9hvp-962c/GHSA-74q5-9hvp-962c.json b/advisories/unreviewed/2022/04/GHSA-74q5-9hvp-962c/GHSA-74q5-9hvp-962c.json index 70d2ac9788c..55efd09f38a 100644 --- a/advisories/unreviewed/2022/04/GHSA-74q5-9hvp-962c/GHSA-74q5-9hvp-962c.json +++ b/advisories/unreviewed/2022/04/GHSA-74q5-9hvp-962c/GHSA-74q5-9hvp-962c.json @@ -7,12 +7,8 @@ "CVE-2003-1227" ], "details": "PHP remote file include vulnerability in index.php for Gallery 1.4 and 1.4-pl1, when running on Windows or in Configuration mode on Unix, allows remote attackers to inject arbitrary PHP code via a URL in the GALLERY_BASEDIR parameter, a different vulnerability than CVE-2002-1412. NOTE: this issue might be exploitable only during installation, or if the administrator has not run a security script after installation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-75rm-2rv5-8wmj/GHSA-75rm-2rv5-8wmj.json b/advisories/unreviewed/2022/04/GHSA-75rm-2rv5-8wmj/GHSA-75rm-2rv5-8wmj.json index dfee32f038d..e6c003c1fc0 100644 --- a/advisories/unreviewed/2022/04/GHSA-75rm-2rv5-8wmj/GHSA-75rm-2rv5-8wmj.json +++ b/advisories/unreviewed/2022/04/GHSA-75rm-2rv5-8wmj/GHSA-75rm-2rv5-8wmj.json @@ -7,12 +7,8 @@ "CVE-2003-1284" ], "details": "Sambar Server before 6.0 beta 6 allows remote attackers to obtain sensitive information via direct requests to the default scripts (1) environ.pl and (2) testcgi.exe.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7hx6-74mh-98hg/GHSA-7hx6-74mh-98hg.json b/advisories/unreviewed/2022/04/GHSA-7hx6-74mh-98hg/GHSA-7hx6-74mh-98hg.json index 671319f4cc4..1992a60fda5 100644 --- a/advisories/unreviewed/2022/04/GHSA-7hx6-74mh-98hg/GHSA-7hx6-74mh-98hg.json +++ b/advisories/unreviewed/2022/04/GHSA-7hx6-74mh-98hg/GHSA-7hx6-74mh-98hg.json @@ -7,12 +7,8 @@ "CVE-2003-1262" ], "details": "Buffer overflow in the http_fetch function of HTTP Fetcher 1.0.0 and 1.0.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a URL request via a long (1) host, (2) referer, or (3) userAgent value.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-86pr-5x2p-wcch/GHSA-86pr-5x2p-wcch.json b/advisories/unreviewed/2022/04/GHSA-86pr-5x2p-wcch/GHSA-86pr-5x2p-wcch.json index 6a826bad72c..02b7102c14f 100644 --- a/advisories/unreviewed/2022/04/GHSA-86pr-5x2p-wcch/GHSA-86pr-5x2p-wcch.json +++ b/advisories/unreviewed/2022/04/GHSA-86pr-5x2p-wcch/GHSA-86pr-5x2p-wcch.json @@ -7,12 +7,8 @@ "CVE-2003-1259" ], "details": "Buffer overflow in CuteFTP 4.2 and 5.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long FTP server banner.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-876f-7fgx-hc7m/GHSA-876f-7fgx-hc7m.json b/advisories/unreviewed/2022/04/GHSA-876f-7fgx-hc7m/GHSA-876f-7fgx-hc7m.json index d71843f36c0..8d680c02524 100644 --- a/advisories/unreviewed/2022/04/GHSA-876f-7fgx-hc7m/GHSA-876f-7fgx-hc7m.json +++ b/advisories/unreviewed/2022/04/GHSA-876f-7fgx-hc7m/GHSA-876f-7fgx-hc7m.json @@ -7,12 +7,8 @@ "CVE-2003-1221" ], "details": "BEA WebLogic Express and Server 7.0 through 8.1 SP 1, under certain circumstances when a request to use T3 over SSL (t3s) is made to the insecure T3 port, may use a non-SSL connection for the communication, which could allow attackers to sniff sessions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8v52-q9fv-gxr2/GHSA-8v52-q9fv-gxr2.json b/advisories/unreviewed/2022/04/GHSA-8v52-q9fv-gxr2/GHSA-8v52-q9fv-gxr2.json index 1840e47ae9d..caf4a4579e4 100644 --- a/advisories/unreviewed/2022/04/GHSA-8v52-q9fv-gxr2/GHSA-8v52-q9fv-gxr2.json +++ b/advisories/unreviewed/2022/04/GHSA-8v52-q9fv-gxr2/GHSA-8v52-q9fv-gxr2.json @@ -7,12 +7,8 @@ "CVE-2003-1270" ], "details": "AN HTTP 1.41e allows remote attackers to cause a denial of service (borken pipe) via an HTTP request to aux.cgi with a long argument, possibly triggering a buffer overflow or MS-DOS device vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9f4j-32h6-cmvx/GHSA-9f4j-32h6-cmvx.json b/advisories/unreviewed/2022/04/GHSA-9f4j-32h6-cmvx/GHSA-9f4j-32h6-cmvx.json index 03010f097be..df6e80603d2 100644 --- a/advisories/unreviewed/2022/04/GHSA-9f4j-32h6-cmvx/GHSA-9f4j-32h6-cmvx.json +++ b/advisories/unreviewed/2022/04/GHSA-9f4j-32h6-cmvx/GHSA-9f4j-32h6-cmvx.json @@ -7,12 +7,8 @@ "CVE-2003-1288" ], "details": "Multiple race conditions in Linux-VServer 1.22 with Linux kernel 2.4.23 and SMP allow local users to cause a denial of service (kernel oops) via unknown attack vectors related to the (1) s_info and (2) ip_info data structures and the (a) forget_original_parent, (b) goodness, (c) schedule, (d) update_process_times, and (e) vc_new_s_context functions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9mpp-rqm3-c9v4/GHSA-9mpp-rqm3-c9v4.json b/advisories/unreviewed/2022/04/GHSA-9mpp-rqm3-c9v4/GHSA-9mpp-rqm3-c9v4.json index c2ab9de37e3..a519aeca603 100644 --- a/advisories/unreviewed/2022/04/GHSA-9mpp-rqm3-c9v4/GHSA-9mpp-rqm3-c9v4.json +++ b/advisories/unreviewed/2022/04/GHSA-9mpp-rqm3-c9v4/GHSA-9mpp-rqm3-c9v4.json @@ -7,12 +7,8 @@ "CVE-2003-1256" ], "details": "aff_liste_langue.php in E-theni allows remote attackers to execute arbitrary PHP code by modifying the rep_include parameter to reference a URL on a remote web server that contains para_langue.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cf94-g7fg-mcxq/GHSA-cf94-g7fg-mcxq.json b/advisories/unreviewed/2022/04/GHSA-cf94-g7fg-mcxq/GHSA-cf94-g7fg-mcxq.json index 01949a5914f..2d917deea47 100644 --- a/advisories/unreviewed/2022/04/GHSA-cf94-g7fg-mcxq/GHSA-cf94-g7fg-mcxq.json +++ b/advisories/unreviewed/2022/04/GHSA-cf94-g7fg-mcxq/GHSA-cf94-g7fg-mcxq.json @@ -7,12 +7,8 @@ "CVE-2003-1210" ], "details": "Multiple SQL injection vulnerabilities in the Downloads module for PHP-Nuke 5.x through 6.5 allow remote attackers to execute arbitrary SQL commands via the (1) lid parameter to the getit function or the (2) min parameter to the search function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cmcm-62j3-r8fh/GHSA-cmcm-62j3-r8fh.json b/advisories/unreviewed/2022/04/GHSA-cmcm-62j3-r8fh/GHSA-cmcm-62j3-r8fh.json index 39602eb71a6..d4cb0ed62ee 100644 --- a/advisories/unreviewed/2022/04/GHSA-cmcm-62j3-r8fh/GHSA-cmcm-62j3-r8fh.json +++ b/advisories/unreviewed/2022/04/GHSA-cmcm-62j3-r8fh/GHSA-cmcm-62j3-r8fh.json @@ -7,12 +7,8 @@ "CVE-2004-0667" ], "details": "Rule Set Based Access Control (RSBAC) 1.2.2 through 1.2.3 allows access to sys_creat, sys_open, and sys_mknod inside jails, which could allow local users to gain elevated privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cmjj-h9fc-7jm4/GHSA-cmjj-h9fc-7jm4.json b/advisories/unreviewed/2022/04/GHSA-cmjj-h9fc-7jm4/GHSA-cmjj-h9fc-7jm4.json index c4079127656..e2d6dd8cd34 100644 --- a/advisories/unreviewed/2022/04/GHSA-cmjj-h9fc-7jm4/GHSA-cmjj-h9fc-7jm4.json +++ b/advisories/unreviewed/2022/04/GHSA-cmjj-h9fc-7jm4/GHSA-cmjj-h9fc-7jm4.json @@ -7,12 +7,8 @@ "CVE-2003-1219" ], "details": "Cross-site scripting (XSS) vulnerability in the tep_href_link function in html_output.php for osCommerce before 2.2-MS3 allows remote attackers to inject arbitrary web script or HTML via the osCsid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cq22-4cpp-pf7x/GHSA-cq22-4cpp-pf7x.json b/advisories/unreviewed/2022/04/GHSA-cq22-4cpp-pf7x/GHSA-cq22-4cpp-pf7x.json index 2d1a35873d1..58f2a7b7535 100644 --- a/advisories/unreviewed/2022/04/GHSA-cq22-4cpp-pf7x/GHSA-cq22-4cpp-pf7x.json +++ b/advisories/unreviewed/2022/04/GHSA-cq22-4cpp-pf7x/GHSA-cq22-4cpp-pf7x.json @@ -7,12 +7,8 @@ "CVE-2003-1199" ], "details": "Cross-site scripting (XSS) vulnerability in MyProxy 20030629 allows remote attackers to inject arbitrary web script or HTML via the URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cwf5-g2q5-5f88/GHSA-cwf5-g2q5-5f88.json b/advisories/unreviewed/2022/04/GHSA-cwf5-g2q5-5f88/GHSA-cwf5-g2q5-5f88.json index 917dbd16e10..43e110deb89 100644 --- a/advisories/unreviewed/2022/04/GHSA-cwf5-g2q5-5f88/GHSA-cwf5-g2q5-5f88.json +++ b/advisories/unreviewed/2022/04/GHSA-cwf5-g2q5-5f88/GHSA-cwf5-g2q5-5f88.json @@ -7,12 +7,8 @@ "CVE-2003-1265" ], "details": "Netscape 7.0 and Mozilla 5.0 do not immediately delete messages in the trash folder when users select the 'Empty Trash' option, which could allow local users to access deleted messages.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f9wq-gc43-847q/GHSA-f9wq-gc43-847q.json b/advisories/unreviewed/2022/04/GHSA-f9wq-gc43-847q/GHSA-f9wq-gc43-847q.json index 5a34df3f898..df02a11f89b 100644 --- a/advisories/unreviewed/2022/04/GHSA-f9wq-gc43-847q/GHSA-f9wq-gc43-847q.json +++ b/advisories/unreviewed/2022/04/GHSA-f9wq-gc43-847q/GHSA-f9wq-gc43-847q.json @@ -7,12 +7,8 @@ "CVE-2003-1202" ], "details": "The checklogin function in omail.pl for omail webmail 0.98.4 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in a (1) password, (2) domainname, or (3) username.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fqfj-7h7r-fmwr/GHSA-fqfj-7h7r-fmwr.json b/advisories/unreviewed/2022/04/GHSA-fqfj-7h7r-fmwr/GHSA-fqfj-7h7r-fmwr.json index 478c8119b44..8bb156dbdc8 100644 --- a/advisories/unreviewed/2022/04/GHSA-fqfj-7h7r-fmwr/GHSA-fqfj-7h7r-fmwr.json +++ b/advisories/unreviewed/2022/04/GHSA-fqfj-7h7r-fmwr/GHSA-fqfj-7h7r-fmwr.json @@ -7,12 +7,8 @@ "CVE-2003-1206" ], "details": "Format string vulnerability in Crob FTP Server 2.60.1 allows remote attackers to cause a denial of service (crash) via \"%s\" or \"%n\" sequences in (1) the username during login, or other FTP commands such as (2) dir.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g36w-54v5-c3m5/GHSA-g36w-54v5-c3m5.json b/advisories/unreviewed/2022/04/GHSA-g36w-54v5-c3m5/GHSA-g36w-54v5-c3m5.json index f6d78b40b3f..9c172c5083f 100644 --- a/advisories/unreviewed/2022/04/GHSA-g36w-54v5-c3m5/GHSA-g36w-54v5-c3m5.json +++ b/advisories/unreviewed/2022/04/GHSA-g36w-54v5-c3m5/GHSA-g36w-54v5-c3m5.json @@ -7,12 +7,8 @@ "CVE-2003-1216" ], "details": "SQL injection vulnerability in search.php for phpBB 2.0.6 and earlier allows remote attackers to execute arbitrary SQL and gain privileges via the search_id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gpx9-hc6q-7w7f/GHSA-gpx9-hc6q-7w7f.json b/advisories/unreviewed/2022/04/GHSA-gpx9-hc6q-7w7f/GHSA-gpx9-hc6q-7w7f.json index 8ba2f826ab5..eac0abd8f4e 100644 --- a/advisories/unreviewed/2022/04/GHSA-gpx9-hc6q-7w7f/GHSA-gpx9-hc6q-7w7f.json +++ b/advisories/unreviewed/2022/04/GHSA-gpx9-hc6q-7w7f/GHSA-gpx9-hc6q-7w7f.json @@ -7,12 +7,8 @@ "CVE-2003-1267" ], "details": "GuildFTPd 0.999 allows remote attackers to cause a denial of service (crash) via a GET request for MS-DOS device names such as lpt1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h56m-2v87-fv2w/GHSA-h56m-2v87-fv2w.json b/advisories/unreviewed/2022/04/GHSA-h56m-2v87-fv2w/GHSA-h56m-2v87-fv2w.json index 2a44a4fe7db..ff25b30b359 100644 --- a/advisories/unreviewed/2022/04/GHSA-h56m-2v87-fv2w/GHSA-h56m-2v87-fv2w.json +++ b/advisories/unreviewed/2022/04/GHSA-h56m-2v87-fv2w/GHSA-h56m-2v87-fv2w.json @@ -7,12 +7,8 @@ "CVE-2003-1260" ], "details": "Buffer overflow in CuteFTP 5.0 allows remote attackers to execute arbitrary code via a long response to a LIST command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hcg7-8c46-x54c/GHSA-hcg7-8c46-x54c.json b/advisories/unreviewed/2022/04/GHSA-hcg7-8c46-x54c/GHSA-hcg7-8c46-x54c.json index 187d7dc46c7..64dceb8a2dd 100644 --- a/advisories/unreviewed/2022/04/GHSA-hcg7-8c46-x54c/GHSA-hcg7-8c46-x54c.json +++ b/advisories/unreviewed/2022/04/GHSA-hcg7-8c46-x54c/GHSA-hcg7-8c46-x54c.json @@ -7,12 +7,8 @@ "CVE-2003-1263" ], "details": "ICAL.EXE in iCal 3.7 allows remote attackers to cause a denial of service (crash) via a malformed HTTP request, possibly due to an invalid method name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hwc7-g2qc-8fmv/GHSA-hwc7-g2qc-8fmv.json b/advisories/unreviewed/2022/04/GHSA-hwc7-g2qc-8fmv/GHSA-hwc7-g2qc-8fmv.json index 7fcde606f86..4049fe823e3 100644 --- a/advisories/unreviewed/2022/04/GHSA-hwc7-g2qc-8fmv/GHSA-hwc7-g2qc-8fmv.json +++ b/advisories/unreviewed/2022/04/GHSA-hwc7-g2qc-8fmv/GHSA-hwc7-g2qc-8fmv.json @@ -7,12 +7,8 @@ "CVE-2003-1200" ], "details": "Stack-based buffer overflow in FORM2RAW.exe in Alt-N MDaemon 6.5.2 through 6.8.5 allows remote attackers to execute arbitrary code via a long From parameter to Form2Raw.cgi.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jfjg-c5hf-9wc8/GHSA-jfjg-c5hf-9wc8.json b/advisories/unreviewed/2022/04/GHSA-jfjg-c5hf-9wc8/GHSA-jfjg-c5hf-9wc8.json index 833408c1f9e..baecb234371 100644 --- a/advisories/unreviewed/2022/04/GHSA-jfjg-c5hf-9wc8/GHSA-jfjg-c5hf-9wc8.json +++ b/advisories/unreviewed/2022/04/GHSA-jfjg-c5hf-9wc8/GHSA-jfjg-c5hf-9wc8.json @@ -7,12 +7,8 @@ "CVE-2003-1215" ], "details": "SQL injection vulnerability in groupcp.php for phpBB 2.0.6 and earlier allows group moderators to perform unauthorized activities via the sql_in parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jmgg-cm9p-c8rw/GHSA-jmgg-cm9p-c8rw.json b/advisories/unreviewed/2022/04/GHSA-jmgg-cm9p-c8rw/GHSA-jmgg-cm9p-c8rw.json index bce4c7a8ddd..7435b5b2ccb 100644 --- a/advisories/unreviewed/2022/04/GHSA-jmgg-cm9p-c8rw/GHSA-jmgg-cm9p-c8rw.json +++ b/advisories/unreviewed/2022/04/GHSA-jmgg-cm9p-c8rw/GHSA-jmgg-cm9p-c8rw.json @@ -7,12 +7,8 @@ "CVE-2003-1207" ], "details": "Crob FTP Server 3.5.1 allows remote authenticated users to cause a denial of service (crash) via a dir command with a large number of \".\" characters followed by a \"/*\" string.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mcpj-pxg7-wjrq/GHSA-mcpj-pxg7-wjrq.json b/advisories/unreviewed/2022/04/GHSA-mcpj-pxg7-wjrq/GHSA-mcpj-pxg7-wjrq.json index 8843b62cf8e..1314ae88c21 100644 --- a/advisories/unreviewed/2022/04/GHSA-mcpj-pxg7-wjrq/GHSA-mcpj-pxg7-wjrq.json +++ b/advisories/unreviewed/2022/04/GHSA-mcpj-pxg7-wjrq/GHSA-mcpj-pxg7-wjrq.json @@ -7,12 +7,8 @@ "CVE-2003-1204" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Mambo Site Server 4.0.12 BETA and earlier allow remote attackers to execute script on other clients via (1) the link parameter in sectionswindow.php, the directory parameter in (2) gallery.php, (3) navigation.php, or (4) uploadimage.php, the path parameter in (5) view.php, (6) the choice parameter in upload.php, (7) the sitename parameter in mambosimple.php, (8) the type parameter in upload.php, or the id parameter in (9) emailarticle.php, (10) emailfaq.php, or (11) emailnews.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -76,9 +72,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mj4h-27m9-3662/GHSA-mj4h-27m9-3662.json b/advisories/unreviewed/2022/04/GHSA-mj4h-27m9-3662/GHSA-mj4h-27m9-3662.json index 9f77c8812b6..53db48c231a 100644 --- a/advisories/unreviewed/2022/04/GHSA-mj4h-27m9-3662/GHSA-mj4h-27m9-3662.json +++ b/advisories/unreviewed/2022/04/GHSA-mj4h-27m9-3662/GHSA-mj4h-27m9-3662.json @@ -7,12 +7,8 @@ "CVE-2003-1212" ], "details": "MaxWebPortal 1.30 allows remote attackers to perform unauthorized actions by modifying hidden form fields, such as the (1) news, (2) lock, or (3) allmem fields in the 'start new topic' HTML page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mpjm-f737-j9fp/GHSA-mpjm-f737-j9fp.json b/advisories/unreviewed/2022/04/GHSA-mpjm-f737-j9fp/GHSA-mpjm-f737-j9fp.json index 62e6dbdc6a0..cd4053c62af 100644 --- a/advisories/unreviewed/2022/04/GHSA-mpjm-f737-j9fp/GHSA-mpjm-f737-j9fp.json +++ b/advisories/unreviewed/2022/04/GHSA-mpjm-f737-j9fp/GHSA-mpjm-f737-j9fp.json @@ -7,12 +7,8 @@ "CVE-2003-1278" ], "details": "Cross-site scripting vulnerability (XSS) in OpenTopic 2.3.1 allows remote attackers to execute arbitrary script as other users and possibly steal authentication information via cookies by injecting arbitrary HTML or script into IMG tags.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p2c7-wf9f-vf9p/GHSA-p2c7-wf9f-vf9p.json b/advisories/unreviewed/2022/04/GHSA-p2c7-wf9f-vf9p/GHSA-p2c7-wf9f-vf9p.json index c934e5b2259..a44d4462b68 100644 --- a/advisories/unreviewed/2022/04/GHSA-p2c7-wf9f-vf9p/GHSA-p2c7-wf9f-vf9p.json +++ b/advisories/unreviewed/2022/04/GHSA-p2c7-wf9f-vf9p/GHSA-p2c7-wf9f-vf9p.json @@ -7,12 +7,8 @@ "CVE-2003-1223" ], "details": "The Node Manager for BEA WebLogic Express and Server 6.1 through 8.1 SP 1 allows remote attackers to cause a denial of service (Node Manager crash) via malformed data to the Node Manager's port, as demonstrated by nmap.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p887-wgc2-jm3q/GHSA-p887-wgc2-jm3q.json b/advisories/unreviewed/2022/04/GHSA-p887-wgc2-jm3q/GHSA-p887-wgc2-jm3q.json index 46bffafc823..1b524bd7d50 100644 --- a/advisories/unreviewed/2022/04/GHSA-p887-wgc2-jm3q/GHSA-p887-wgc2-jm3q.json +++ b/advisories/unreviewed/2022/04/GHSA-p887-wgc2-jm3q/GHSA-p887-wgc2-jm3q.json @@ -7,12 +7,8 @@ "CVE-2003-1287" ], "details": "Sambar Server before 6.0 beta 3 allows attackers with physical access to execute arbitrary code via a request with an MS-DOS device name such as com1.pl, con.pl, or aux.pl, which causes Perl to read the code from the associated device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p899-xcmv-4c85/GHSA-p899-xcmv-4c85.json b/advisories/unreviewed/2022/04/GHSA-p899-xcmv-4c85/GHSA-p899-xcmv-4c85.json index 7d52567b869..5dc397bf611 100644 --- a/advisories/unreviewed/2022/04/GHSA-p899-xcmv-4c85/GHSA-p899-xcmv-4c85.json +++ b/advisories/unreviewed/2022/04/GHSA-p899-xcmv-4c85/GHSA-p899-xcmv-4c85.json @@ -7,12 +7,8 @@ "CVE-2003-1222" ], "details": "BEA Weblogic Express and Server 8.0 through 8.1 SP 1, when using a foreign Java Message Service (JMS) provider, echoes the password for the foreign provider to the console and stores it in cleartext in config.xml, which could allow attackers to obtain the password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pgrc-mhqr-gxg2/GHSA-pgrc-mhqr-gxg2.json b/advisories/unreviewed/2022/04/GHSA-pgrc-mhqr-gxg2/GHSA-pgrc-mhqr-gxg2.json index 130c41fd6ec..2b3c5b64b26 100644 --- a/advisories/unreviewed/2022/04/GHSA-pgrc-mhqr-gxg2/GHSA-pgrc-mhqr-gxg2.json +++ b/advisories/unreviewed/2022/04/GHSA-pgrc-mhqr-gxg2/GHSA-pgrc-mhqr-gxg2.json @@ -7,12 +7,8 @@ "CVE-2003-1271" ], "details": "Cross-site scripting vulnerability (XSS) in AN HTTP 1.41e allows remote attackers to execute arbitrary web script or HTML as other users via a URL containing the script.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q63q-qrjw-wxq9/GHSA-q63q-qrjw-wxq9.json b/advisories/unreviewed/2022/04/GHSA-q63q-qrjw-wxq9/GHSA-q63q-qrjw-wxq9.json index 2c6e51affaa..cec7295f654 100644 --- a/advisories/unreviewed/2022/04/GHSA-q63q-qrjw-wxq9/GHSA-q63q-qrjw-wxq9.json +++ b/advisories/unreviewed/2022/04/GHSA-q63q-qrjw-wxq9/GHSA-q63q-qrjw-wxq9.json @@ -7,12 +7,8 @@ "CVE-2003-1286" ], "details": "HTTP Proxy in Sambar Server before 6.0 beta 6, when security.ini lacks a 127.0.0.1 proxydeny entry, allows remote attackers to send proxy HTTP requests to the Sambar Server's administrative interface and external web servers, by making a \"Connection: keep-alive\" request before the proxy requests.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q894-gjx6-p8jv/GHSA-q894-gjx6-p8jv.json b/advisories/unreviewed/2022/04/GHSA-q894-gjx6-p8jv/GHSA-q894-gjx6-p8jv.json index e2426367793..e1e9741d04a 100644 --- a/advisories/unreviewed/2022/04/GHSA-q894-gjx6-p8jv/GHSA-q894-gjx6-p8jv.json +++ b/advisories/unreviewed/2022/04/GHSA-q894-gjx6-p8jv/GHSA-q894-gjx6-p8jv.json @@ -7,12 +7,8 @@ "CVE-2003-1208" ], "details": "Multiple buffer overflows in Oracle 9i 9 before 9.2.0.3 allow local users to execute arbitrary code by (1) setting the TIME_ZONE session parameter to a long value, or providing long parameters to the (2) NUMTOYMINTERVAL, (3) NUMTODSINTERVAL or (4) FROM_TZ functions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -88,9 +84,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q9v9-jrmv-m92m/GHSA-q9v9-jrmv-m92m.json b/advisories/unreviewed/2022/04/GHSA-q9v9-jrmv-m92m/GHSA-q9v9-jrmv-m92m.json index f99db1c74b2..ef02897b6f2 100644 --- a/advisories/unreviewed/2022/04/GHSA-q9v9-jrmv-m92m/GHSA-q9v9-jrmv-m92m.json +++ b/advisories/unreviewed/2022/04/GHSA-q9v9-jrmv-m92m/GHSA-q9v9-jrmv-m92m.json @@ -7,12 +7,8 @@ "CVE-2003-1279" ], "details": "S-PLUS 6.0 allows local users to overwrite arbitrary files and possibly elevate privileges via a symlink attack on (1) /tmp/__F8499 by Sqpe, (2) /tmp/PRINT.$$.out by PRINT, (3) /tmp/SUBST$PID.TXT and /tmp/ed.cmds$PID by mustfix.hlinks, (4) /tmp/file.1 and /tmp/file.2 by sas_get, (5) /tmp/file.1 by sas_vars, and (6) /tmp/sgml2html$$tmp /tmp/sgml2html$$tmp1 /tmp/sgml2html$$tmp2 by sglm2html.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qp67-ccp4-w9jv/GHSA-qp67-ccp4-w9jv.json b/advisories/unreviewed/2022/04/GHSA-qp67-ccp4-w9jv/GHSA-qp67-ccp4-w9jv.json index c09be60c450..0dc86359112 100644 --- a/advisories/unreviewed/2022/04/GHSA-qp67-ccp4-w9jv/GHSA-qp67-ccp4-w9jv.json +++ b/advisories/unreviewed/2022/04/GHSA-qp67-ccp4-w9jv/GHSA-qp67-ccp4-w9jv.json @@ -7,12 +7,8 @@ "CVE-2003-1224" ], "details": "Weblogic.admin for BEA WebLogic Server and Express 7.0 and 7.0.0.1 displays the JDBCConnectionPoolRuntimeMBean password to the screen in cleartext, which allows attackers to read a user's password by physically observing (\"shoulder surfing\") the screen.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qpxc-fvhf-5gmq/GHSA-qpxc-fvhf-5gmq.json b/advisories/unreviewed/2022/04/GHSA-qpxc-fvhf-5gmq/GHSA-qpxc-fvhf-5gmq.json index 523fdd5ea71..5c7751dbb5b 100644 --- a/advisories/unreviewed/2022/04/GHSA-qpxc-fvhf-5gmq/GHSA-qpxc-fvhf-5gmq.json +++ b/advisories/unreviewed/2022/04/GHSA-qpxc-fvhf-5gmq/GHSA-qpxc-fvhf-5gmq.json @@ -7,12 +7,8 @@ "CVE-2003-1276" ], "details": "Netfone.exe of NetTelephone 3.5.6 uses weak encryption for user PIN's and stores user account numbers in plaintext in the HKEY_CURRENT_USER\\Software\\MediaRing.com\\SDK\\NetTelephone\\settings registry key, which could allow local users to gain unauthorized access to NetTelephone accounts.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qq3w-r534-5844/GHSA-qq3w-r534-5844.json b/advisories/unreviewed/2022/04/GHSA-qq3w-r534-5844/GHSA-qq3w-r534-5844.json index d378626443d..b4aeb84a7ef 100644 --- a/advisories/unreviewed/2022/04/GHSA-qq3w-r534-5844/GHSA-qq3w-r534-5844.json +++ b/advisories/unreviewed/2022/04/GHSA-qq3w-r534-5844/GHSA-qq3w-r534-5844.json @@ -7,12 +7,8 @@ "CVE-2003-1282" ], "details": "IBM Net.Data allows remote attackers to obtain sensitive information such as path names, server names and possibly user names and passwords by causing the (1) $(DTW_CURRENT_FILENAME), (2) $(DATABASE), (3) $(LOGIN), (4) $(PASSWORD), and possibly other predefined variables that can be echoed back to the user via a web form.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qxcw-cgr3-7wmw/GHSA-qxcw-cgr3-7wmw.json b/advisories/unreviewed/2022/04/GHSA-qxcw-cgr3-7wmw/GHSA-qxcw-cgr3-7wmw.json index 12cd9fc7a59..e584ecb37db 100644 --- a/advisories/unreviewed/2022/04/GHSA-qxcw-cgr3-7wmw/GHSA-qxcw-cgr3-7wmw.json +++ b/advisories/unreviewed/2022/04/GHSA-qxcw-cgr3-7wmw/GHSA-qxcw-cgr3-7wmw.json @@ -7,12 +7,8 @@ "CVE-2003-1209" ], "details": "The Post_Method function in Monkey HTTP Daemon before 0.6.2 allows remote attackers to cause a denial of service (crash) via a POST request without a Content-Type header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-r87m-8hr6-36pj/GHSA-r87m-8hr6-36pj.json b/advisories/unreviewed/2022/04/GHSA-r87m-8hr6-36pj/GHSA-r87m-8hr6-36pj.json index 55a5d3e2b69..08a5e90d9e8 100644 --- a/advisories/unreviewed/2022/04/GHSA-r87m-8hr6-36pj/GHSA-r87m-8hr6-36pj.json +++ b/advisories/unreviewed/2022/04/GHSA-r87m-8hr6-36pj/GHSA-r87m-8hr6-36pj.json @@ -7,12 +7,8 @@ "CVE-2003-1272" ], "details": "Multiple buffer overflows in Winamp 3.0 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a .b4s file containing (1) a long playlist name or (2) a long path in a file: argument to the Playstring parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vcq6-c6fh-vhfh/GHSA-vcq6-c6fh-vhfh.json b/advisories/unreviewed/2022/04/GHSA-vcq6-c6fh-vhfh/GHSA-vcq6-c6fh-vhfh.json index c3535034924..cef266f9b72 100644 --- a/advisories/unreviewed/2022/04/GHSA-vcq6-c6fh-vhfh/GHSA-vcq6-c6fh-vhfh.json +++ b/advisories/unreviewed/2022/04/GHSA-vcq6-c6fh-vhfh/GHSA-vcq6-c6fh-vhfh.json @@ -7,12 +7,8 @@ "CVE-2003-1226" ], "details": "BEA WebLogic Server and Express 7.0 and 7.0.0.1 stores certain secrets concerning password encryption insecurely in config.xml, filerealm.properties, and weblogic-rar.xml, which allows local users to learn those secrets and decrypt passwords.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vm95-53x8-2g6x/GHSA-vm95-53x8-2g6x.json b/advisories/unreviewed/2022/04/GHSA-vm95-53x8-2g6x/GHSA-vm95-53x8-2g6x.json index 6a0c093733b..62f6c2d22f8 100644 --- a/advisories/unreviewed/2022/04/GHSA-vm95-53x8-2g6x/GHSA-vm95-53x8-2g6x.json +++ b/advisories/unreviewed/2022/04/GHSA-vm95-53x8-2g6x/GHSA-vm95-53x8-2g6x.json @@ -7,12 +7,8 @@ "CVE-2003-1283" ], "details": "KaZaA Media Desktop (KMD) 2.0 launches advertisements in the Internet Explorer (IE) local security zone, which could allow remote attackers to view local files and possibly execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vv7q-j29r-v3qw/GHSA-vv7q-j29r-v3qw.json b/advisories/unreviewed/2022/04/GHSA-vv7q-j29r-v3qw/GHSA-vv7q-j29r-v3qw.json index 732f6175629..3ad27a8e943 100644 --- a/advisories/unreviewed/2022/04/GHSA-vv7q-j29r-v3qw/GHSA-vv7q-j29r-v3qw.json +++ b/advisories/unreviewed/2022/04/GHSA-vv7q-j29r-v3qw/GHSA-vv7q-j29r-v3qw.json @@ -7,12 +7,8 @@ "CVE-2003-1269" ], "details": "AN HTTP 1.41e allows remote attackers to obtain the root web server path via an HTTP request with a long argument to a script, which leaks the path in an error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vwmg-6jpg-p393/GHSA-vwmg-6jpg-p393.json b/advisories/unreviewed/2022/04/GHSA-vwmg-6jpg-p393/GHSA-vwmg-6jpg-p393.json index e269dc68316..5627235eaf2 100644 --- a/advisories/unreviewed/2022/04/GHSA-vwmg-6jpg-p393/GHSA-vwmg-6jpg-p393.json +++ b/advisories/unreviewed/2022/04/GHSA-vwmg-6jpg-p393/GHSA-vwmg-6jpg-p393.json @@ -7,12 +7,8 @@ "CVE-2003-1211" ], "details": "Cross-site scripting (XSS) vulnerability in search.asp for MaxWebPortal 1.30 and possibly earlier versions allows remote attackers to inject arbitrary web script or HTML via the Search parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w4wx-m7ch-9g96/GHSA-w4wx-m7ch-9g96.json b/advisories/unreviewed/2022/04/GHSA-w4wx-m7ch-9g96/GHSA-w4wx-m7ch-9g96.json index 22b9527134b..b3b2707dec9 100644 --- a/advisories/unreviewed/2022/04/GHSA-w4wx-m7ch-9g96/GHSA-w4wx-m7ch-9g96.json +++ b/advisories/unreviewed/2022/04/GHSA-w4wx-m7ch-9g96/GHSA-w4wx-m7ch-9g96.json @@ -7,12 +7,8 @@ "CVE-2003-1274" ], "details": "Winamp 3.0 allows remote attackers to cause a denial of service (crash) via .b4s file with a file: argument to the Playstring parameter that contains MS-DOS device names such as aux.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xc23-22ch-xphm/GHSA-xc23-22ch-xphm.json b/advisories/unreviewed/2022/04/GHSA-xc23-22ch-xphm/GHSA-xc23-22ch-xphm.json index 5bed4053c5b..5be367919dc 100644 --- a/advisories/unreviewed/2022/04/GHSA-xc23-22ch-xphm/GHSA-xc23-22ch-xphm.json +++ b/advisories/unreviewed/2022/04/GHSA-xc23-22ch-xphm/GHSA-xc23-22ch-xphm.json @@ -7,12 +7,8 @@ "CVE-2003-1280" ], "details": "Directory traversal vulnerability in cgihtml 1.69 allows remote attackers to overwrite and create arbitrary files via a .. (dot dot) in multipart/form-data uploads.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xfmj-3h76-xr99/GHSA-xfmj-3h76-xr99.json b/advisories/unreviewed/2022/04/GHSA-xfmj-3h76-xr99/GHSA-xfmj-3h76-xr99.json index 1ec13a65e1c..671c6c4444e 100644 --- a/advisories/unreviewed/2022/04/GHSA-xfmj-3h76-xr99/GHSA-xfmj-3h76-xr99.json +++ b/advisories/unreviewed/2022/04/GHSA-xfmj-3h76-xr99/GHSA-xfmj-3h76-xr99.json @@ -7,12 +7,8 @@ "CVE-2003-1261" ], "details": "Buffer overflow in CuteFTP 5.0 and 5.0.1 allows local users to cause a denial of service (crash) by copying a long URL into a clipboard.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xg8q-p5fh-c94f/GHSA-xg8q-p5fh-c94f.json b/advisories/unreviewed/2022/04/GHSA-xg8q-p5fh-c94f/GHSA-xg8q-p5fh-c94f.json index 89be40bcd2d..401399f18bc 100644 --- a/advisories/unreviewed/2022/04/GHSA-xg8q-p5fh-c94f/GHSA-xg8q-p5fh-c94f.json +++ b/advisories/unreviewed/2022/04/GHSA-xg8q-p5fh-c94f/GHSA-xg8q-p5fh-c94f.json @@ -7,12 +7,8 @@ "CVE-2003-1220" ], "details": "BEA WebLogic Server proxy plugin for BEA Weblogic Express and Server 6.1 through 8.1 SP 1 allows remote attackers to cause a denial of service (proxy plugin crash) via a malformed URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xj39-j4c9-rmv6/GHSA-xj39-j4c9-rmv6.json b/advisories/unreviewed/2022/04/GHSA-xj39-j4c9-rmv6/GHSA-xj39-j4c9-rmv6.json index bf708872ff9..8c328133a19 100644 --- a/advisories/unreviewed/2022/04/GHSA-xj39-j4c9-rmv6/GHSA-xj39-j4c9-rmv6.json +++ b/advisories/unreviewed/2022/04/GHSA-xj39-j4c9-rmv6/GHSA-xj39-j4c9-rmv6.json @@ -7,12 +7,8 @@ "CVE-2003-1213" ], "details": "The default installation of MaxWebPortal 1.30 stores the portal database under the web document root with insecure access control, which allows remote attackers to obtain sensitive information via a direct request to database/db2000.mdb.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-22gj-rr23-9xgc/GHSA-22gj-rr23-9xgc.json b/advisories/unreviewed/2022/05/GHSA-22gj-rr23-9xgc/GHSA-22gj-rr23-9xgc.json index 54f82d40e2e..eed8559c37c 100644 --- a/advisories/unreviewed/2022/05/GHSA-22gj-rr23-9xgc/GHSA-22gj-rr23-9xgc.json +++ b/advisories/unreviewed/2022/05/GHSA-22gj-rr23-9xgc/GHSA-22gj-rr23-9xgc.json @@ -7,12 +7,8 @@ "CVE-2020-10633" ], "details": "A non-persistent XSS (cross-site scripting) vulnerability exists in eWON Flexy and Cosy (all firmware versions prior to 14.1s0). An attacker could send a specially crafted URL to initiate a password change for the device. The target must introduce the credentials to the gateway before the attack can be successful.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2398-fmp4-7w9h/GHSA-2398-fmp4-7w9h.json b/advisories/unreviewed/2022/05/GHSA-2398-fmp4-7w9h/GHSA-2398-fmp4-7w9h.json index 4fbce05984d..0cb67a51e4d 100644 --- a/advisories/unreviewed/2022/05/GHSA-2398-fmp4-7w9h/GHSA-2398-fmp4-7w9h.json +++ b/advisories/unreviewed/2022/05/GHSA-2398-fmp4-7w9h/GHSA-2398-fmp4-7w9h.json @@ -7,12 +7,8 @@ "CVE-2019-12519" ], "details": "An issue was discovered in Squid through 4.7. When handling the tag esi:when when ESI is enabled, Squid calls ESIExpression::Evaluate. This function uses a fixed stack buffer to hold the expression while it's being evaluated. When processing the expression, it could either evaluate the top of the stack, or add a new member to the stack. When adding a new member, there is no check to ensure that the stack won't overflow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-23m4-7vqv-gc3v/GHSA-23m4-7vqv-gc3v.json b/advisories/unreviewed/2022/05/GHSA-23m4-7vqv-gc3v/GHSA-23m4-7vqv-gc3v.json index 6186d555f8a..803d5998a77 100644 --- a/advisories/unreviewed/2022/05/GHSA-23m4-7vqv-gc3v/GHSA-23m4-7vqv-gc3v.json +++ b/advisories/unreviewed/2022/05/GHSA-23m4-7vqv-gc3v/GHSA-23m4-7vqv-gc3v.json @@ -7,12 +7,8 @@ "CVE-2020-10512" ], "details": "HGiga C&Cmail contains a SQL Injection vulnerability which allows attackers to injecting SQL commands in the URL parameter to execute unauthorized commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-248h-xgcm-3q77/GHSA-248h-xgcm-3q77.json b/advisories/unreviewed/2022/05/GHSA-248h-xgcm-3q77/GHSA-248h-xgcm-3q77.json index 88c617f5e41..6ff16d9c837 100644 --- a/advisories/unreviewed/2022/05/GHSA-248h-xgcm-3q77/GHSA-248h-xgcm-3q77.json +++ b/advisories/unreviewed/2022/05/GHSA-248h-xgcm-3q77/GHSA-248h-xgcm-3q77.json @@ -7,12 +7,8 @@ "CVE-2020-11647" ], "details": "In Wireshark 3.2.0 to 3.2.2, 3.0.0 to 3.0.9, and 2.6.0 to 2.6.15, the BACapp dissector could crash. This was addressed in epan/dissectors/packet-bacapp.c by limiting the amount of recursion.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-26ff-3j7m-vqx6/GHSA-26ff-3j7m-vqx6.json b/advisories/unreviewed/2022/05/GHSA-26ff-3j7m-vqx6/GHSA-26ff-3j7m-vqx6.json index 86059262183..77eaa197d3c 100644 --- a/advisories/unreviewed/2022/05/GHSA-26ff-3j7m-vqx6/GHSA-26ff-3j7m-vqx6.json +++ b/advisories/unreviewed/2022/05/GHSA-26ff-3j7m-vqx6/GHSA-26ff-3j7m-vqx6.json @@ -7,12 +7,8 @@ "CVE-2017-18651" ], "details": "An issue was discovered on Samsung mobile devices with M(6.x) and N(7.x) software. There is an Integer Overflow in process_M_SetTokenTUIPasswd during handling of a trusted application, leading to memory corruption. The Samsung IDs are SVE-2017-9008 and SVE-2017-9009 (October 2017).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-27q2-f57c-rgmr/GHSA-27q2-f57c-rgmr.json b/advisories/unreviewed/2022/05/GHSA-27q2-f57c-rgmr/GHSA-27q2-f57c-rgmr.json index 8241cd16e93..0f788a0a457 100644 --- a/advisories/unreviewed/2022/05/GHSA-27q2-f57c-rgmr/GHSA-27q2-f57c-rgmr.json +++ b/advisories/unreviewed/2022/05/GHSA-27q2-f57c-rgmr/GHSA-27q2-f57c-rgmr.json @@ -7,12 +7,8 @@ "CVE-2019-20659" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects R6400v2 before 1.0.4.84, R6700 before 1.0.2.8, R6700v3 before 1.0.4.84, R6900 before 1.0.2.8, and R7900 before 1.0.3.10.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-293j-rh9p-w2r8/GHSA-293j-rh9p-w2r8.json b/advisories/unreviewed/2022/05/GHSA-293j-rh9p-w2r8/GHSA-293j-rh9p-w2r8.json index f5e80ce7174..bb97eee4901 100644 --- a/advisories/unreviewed/2022/05/GHSA-293j-rh9p-w2r8/GHSA-293j-rh9p-w2r8.json +++ b/advisories/unreviewed/2022/05/GHSA-293j-rh9p-w2r8/GHSA-293j-rh9p-w2r8.json @@ -7,12 +7,8 @@ "CVE-2020-11722" ], "details": "Dungeon Crawl Stone Soup (aka DCSS or crawl) before 0.25 allows remote attackers to execute arbitrary code via Lua bytecode embedded in an uploaded .crawlrc file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-29v5-v73g-x3cp/GHSA-29v5-v73g-x3cp.json b/advisories/unreviewed/2022/05/GHSA-29v5-v73g-x3cp/GHSA-29v5-v73g-x3cp.json index 0eebcfd1684..bdb5bef7972 100644 --- a/advisories/unreviewed/2022/05/GHSA-29v5-v73g-x3cp/GHSA-29v5-v73g-x3cp.json +++ b/advisories/unreviewed/2022/05/GHSA-29v5-v73g-x3cp/GHSA-29v5-v73g-x3cp.json @@ -7,12 +7,8 @@ "CVE-2020-10621" ], "details": "Multiple issues exist that allow files to be uploaded and executed on the WebAccess/NMS (versions prior to 3.0.2).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2ccr-95gx-57p2/GHSA-2ccr-95gx-57p2.json b/advisories/unreviewed/2022/05/GHSA-2ccr-95gx-57p2/GHSA-2ccr-95gx-57p2.json index 27c1108ae4e..37d2f9b80d3 100644 --- a/advisories/unreviewed/2022/05/GHSA-2ccr-95gx-57p2/GHSA-2ccr-95gx-57p2.json +++ b/advisories/unreviewed/2022/05/GHSA-2ccr-95gx-57p2/GHSA-2ccr-95gx-57p2.json @@ -7,12 +7,8 @@ "CVE-2020-6765" ], "details": "D-Link DSL-GS225 J1 AU_1.0.4 devices allow an admin to execute OS commands by placing shell metacharacters after a supported CLI command, as demonstrated by ping -c1 127.0.0.1; cat/etc/passwd. The CLI is reachable by TELNET.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2cf7-jh6c-gm8v/GHSA-2cf7-jh6c-gm8v.json b/advisories/unreviewed/2022/05/GHSA-2cf7-jh6c-gm8v/GHSA-2cf7-jh6c-gm8v.json index c601d8086c0..d1b8342ef82 100644 --- a/advisories/unreviewed/2022/05/GHSA-2cf7-jh6c-gm8v/GHSA-2cf7-jh6c-gm8v.json +++ b/advisories/unreviewed/2022/05/GHSA-2cf7-jh6c-gm8v/GHSA-2cf7-jh6c-gm8v.json @@ -7,12 +7,8 @@ "CVE-2019-19390" ], "details": "The Search parameter of the Software Catalogue section of Matrix42 Workspace Management 9.1.2.2765 and below accepts unfiltered parameters that lead to multiple reflected XSS issues.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2chv-vxpq-wr23/GHSA-2chv-vxpq-wr23.json b/advisories/unreviewed/2022/05/GHSA-2chv-vxpq-wr23/GHSA-2chv-vxpq-wr23.json index 048a897cd09..2b2e4489063 100644 --- a/advisories/unreviewed/2022/05/GHSA-2chv-vxpq-wr23/GHSA-2chv-vxpq-wr23.json +++ b/advisories/unreviewed/2022/05/GHSA-2chv-vxpq-wr23/GHSA-2chv-vxpq-wr23.json @@ -7,12 +7,8 @@ "CVE-2020-11508" ], "details": "An XSS vulnerability in the WP Lead Plus X plugin through 0.98 for WordPress allows logged-in users with minimal permissions to create or replace existing pages with a malicious page containing arbitrary JavaScript via the wp_ajax_core37_lp_save_page (aka core37_lp_save_page) AJAX action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2f28-fj6q-q44h/GHSA-2f28-fj6q-q44h.json b/advisories/unreviewed/2022/05/GHSA-2f28-fj6q-q44h/GHSA-2f28-fj6q-q44h.json index e9f1a19f65e..09138f5912f 100644 --- a/advisories/unreviewed/2022/05/GHSA-2f28-fj6q-q44h/GHSA-2f28-fj6q-q44h.json +++ b/advisories/unreviewed/2022/05/GHSA-2f28-fj6q-q44h/GHSA-2f28-fj6q-q44h.json @@ -7,12 +7,8 @@ "CVE-2020-9461" ], "details": "Octech Oempro 4.7 through 4.11 allow stored XSS by an authenticated user. The FolderName parameter of the Media.CreateFolder command is vulnerable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2f64-gg3p-pvr3/GHSA-2f64-gg3p-pvr3.json b/advisories/unreviewed/2022/05/GHSA-2f64-gg3p-pvr3/GHSA-2f64-gg3p-pvr3.json index e8a27f8ecc5..f5602d170b1 100644 --- a/advisories/unreviewed/2022/05/GHSA-2f64-gg3p-pvr3/GHSA-2f64-gg3p-pvr3.json +++ b/advisories/unreviewed/2022/05/GHSA-2f64-gg3p-pvr3/GHSA-2f64-gg3p-pvr3.json @@ -7,12 +7,8 @@ "CVE-2020-0600" ], "details": "Improper buffer restrictions in firmware for some Intel(R) NUC may allow an authenticated user to potentially enable escalation of privilege via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2fvj-qg75-5fhx/GHSA-2fvj-qg75-5fhx.json b/advisories/unreviewed/2022/05/GHSA-2fvj-qg75-5fhx/GHSA-2fvj-qg75-5fhx.json index d8de10e3bb6..d93430f9b6b 100644 --- a/advisories/unreviewed/2022/05/GHSA-2fvj-qg75-5fhx/GHSA-2fvj-qg75-5fhx.json +++ b/advisories/unreviewed/2022/05/GHSA-2fvj-qg75-5fhx/GHSA-2fvj-qg75-5fhx.json @@ -7,12 +7,8 @@ "CVE-2019-15789" ], "details": "Privilege escalation vulnerability in MicroK8s allows a low privilege user with local access to obtain root access to the host by provisioning a privileged container. Fixed in MicroK8s 1.15.3.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2hpj-p87v-vc3v/GHSA-2hpj-p87v-vc3v.json b/advisories/unreviewed/2022/05/GHSA-2hpj-p87v-vc3v/GHSA-2hpj-p87v-vc3v.json index 2bbe9fc1a11..7dfda88f872 100644 --- a/advisories/unreviewed/2022/05/GHSA-2hpj-p87v-vc3v/GHSA-2hpj-p87v-vc3v.json +++ b/advisories/unreviewed/2022/05/GHSA-2hpj-p87v-vc3v/GHSA-2hpj-p87v-vc3v.json @@ -7,12 +7,8 @@ "CVE-2019-20645" ], "details": "NETGEAR RAX40 devices before 1.0.3.62 are affected by stored XSS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2j38-pmwm-2h3f/GHSA-2j38-pmwm-2h3f.json b/advisories/unreviewed/2022/05/GHSA-2j38-pmwm-2h3f/GHSA-2j38-pmwm-2h3f.json index e8251ace452..1e3c791c7cd 100644 --- a/advisories/unreviewed/2022/05/GHSA-2j38-pmwm-2h3f/GHSA-2j38-pmwm-2h3f.json +++ b/advisories/unreviewed/2022/05/GHSA-2j38-pmwm-2h3f/GHSA-2j38-pmwm-2h3f.json @@ -7,12 +7,8 @@ "CVE-2020-11465" ], "details": "An issue was discovered in Deskpro before 2019.8.0. The /api/apps/* endpoints failed to properly validate a user's privilege, allowing an attacker to control/install helpdesk applications and leak current applications' configurations, including applications used as user sources (used for authentication). This enables an attacker to forge valid authentication models that resembles any user on the system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2jrr-xw62-5ggf/GHSA-2jrr-xw62-5ggf.json b/advisories/unreviewed/2022/05/GHSA-2jrr-xw62-5ggf/GHSA-2jrr-xw62-5ggf.json index 98b68695780..5ba241a62f4 100644 --- a/advisories/unreviewed/2022/05/GHSA-2jrr-xw62-5ggf/GHSA-2jrr-xw62-5ggf.json +++ b/advisories/unreviewed/2022/05/GHSA-2jrr-xw62-5ggf/GHSA-2jrr-xw62-5ggf.json @@ -7,12 +7,8 @@ "CVE-2017-18661" ], "details": "An issue was discovered on Samsung mobile devices with M(6.0) and N(7.x) software. There is a buffer overflow in process_cipher_tdea. The Samsung ID is SVE-2017-8973 (July 2017).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2mx6-6v5m-wj8m/GHSA-2mx6-6v5m-wj8m.json b/advisories/unreviewed/2022/05/GHSA-2mx6-6v5m-wj8m/GHSA-2mx6-6v5m-wj8m.json index 4f1a2ae307d..e8367813a79 100644 --- a/advisories/unreviewed/2022/05/GHSA-2mx6-6v5m-wj8m/GHSA-2mx6-6v5m-wj8m.json +++ b/advisories/unreviewed/2022/05/GHSA-2mx6-6v5m-wj8m/GHSA-2mx6-6v5m-wj8m.json @@ -7,12 +7,8 @@ "CVE-2019-20662" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, and RBK50 before 2.3.5.30.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2p37-pq7q-44mr/GHSA-2p37-pq7q-44mr.json b/advisories/unreviewed/2022/05/GHSA-2p37-pq7q-44mr/GHSA-2p37-pq7q-44mr.json index 773330019dc..a9a1a8145aa 100644 --- a/advisories/unreviewed/2022/05/GHSA-2p37-pq7q-44mr/GHSA-2p37-pq7q-44mr.json +++ b/advisories/unreviewed/2022/05/GHSA-2p37-pq7q-44mr/GHSA-2p37-pq7q-44mr.json @@ -7,12 +7,8 @@ "CVE-2020-11723" ], "details": "Cellebrite UFED 5.0 through 7.29 uses four hardcoded RSA private keys to authenticate to the ADB daemon on target devices. Extracted keys can be used to place evidence onto target devices when performing a forensic extraction.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2p63-m843-cvx8/GHSA-2p63-m843-cvx8.json b/advisories/unreviewed/2022/05/GHSA-2p63-m843-cvx8/GHSA-2p63-m843-cvx8.json index 6c4b9116391..940d44a8aae 100644 --- a/advisories/unreviewed/2022/05/GHSA-2p63-m843-cvx8/GHSA-2p63-m843-cvx8.json +++ b/advisories/unreviewed/2022/05/GHSA-2p63-m843-cvx8/GHSA-2p63-m843-cvx8.json @@ -7,12 +7,8 @@ "CVE-2019-4737" ], "details": "IBM DOORS Next Generation (DNG/RRC) 6.0.2. 6.0.6, and 6.0.61 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 172707.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2pg2-438w-c6wh/GHSA-2pg2-438w-c6wh.json b/advisories/unreviewed/2022/05/GHSA-2pg2-438w-c6wh/GHSA-2pg2-438w-c6wh.json index 6ae2fb2c958..6e865bc0ec5 100644 --- a/advisories/unreviewed/2022/05/GHSA-2pg2-438w-c6wh/GHSA-2pg2-438w-c6wh.json +++ b/advisories/unreviewed/2022/05/GHSA-2pg2-438w-c6wh/GHSA-2pg2-438w-c6wh.json @@ -7,12 +7,8 @@ "CVE-2020-11664" ], "details": "CA API Developer Portal 4.3.1 and earlier handles homeRedirect page redirects in an insecure manner, which allows attackers to perform open redirect attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2pp3-576m-vhmq/GHSA-2pp3-576m-vhmq.json b/advisories/unreviewed/2022/05/GHSA-2pp3-576m-vhmq/GHSA-2pp3-576m-vhmq.json index e3448118408..0c198198436 100644 --- a/advisories/unreviewed/2022/05/GHSA-2pp3-576m-vhmq/GHSA-2pp3-576m-vhmq.json +++ b/advisories/unreviewed/2022/05/GHSA-2pp3-576m-vhmq/GHSA-2pp3-576m-vhmq.json @@ -7,12 +7,8 @@ "CVE-2020-11463" ], "details": "An issue was discovered in Deskpro before 2019.8.0. The /api/email_accounts endpoint failed to properly validate a user's privilege, allowing an attacker to retrieve cleartext credentials of all helpdesk email accounts, including incoming and outgoing email credentials. This enables an attacker to get full access to all emails sent or received by the system including password reset emails, making it possible to reset any user's password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2qrm-vwv9-87jm/GHSA-2qrm-vwv9-87jm.json b/advisories/unreviewed/2022/05/GHSA-2qrm-vwv9-87jm/GHSA-2qrm-vwv9-87jm.json index dd27467db4b..b6db4113ce9 100644 --- a/advisories/unreviewed/2022/05/GHSA-2qrm-vwv9-87jm/GHSA-2qrm-vwv9-87jm.json +++ b/advisories/unreviewed/2022/05/GHSA-2qrm-vwv9-87jm/GHSA-2qrm-vwv9-87jm.json @@ -7,12 +7,8 @@ "CVE-2020-0917" ], "details": "An elevation of privilege vulnerability exists when Windows Hyper-V on a host server fails to properly handle objects in memory, aka 'Windows Hyper-V Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0918.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2rxm-39cm-27mj/GHSA-2rxm-39cm-27mj.json b/advisories/unreviewed/2022/05/GHSA-2rxm-39cm-27mj/GHSA-2rxm-39cm-27mj.json index 5db27f9ba0f..6cf41562324 100644 --- a/advisories/unreviewed/2022/05/GHSA-2rxm-39cm-27mj/GHSA-2rxm-39cm-27mj.json +++ b/advisories/unreviewed/2022/05/GHSA-2rxm-39cm-27mj/GHSA-2rxm-39cm-27mj.json @@ -7,12 +7,8 @@ "CVE-2020-1633" ], "details": "Due to a new NDP proxy feature for EVPN leaf nodes introduced in Junos OS 17.4, crafted NDPv6 packets could transit a Junos device configured as a Broadband Network Gateway (BNG) and reach the EVPN leaf node, causing a stale MAC address entry. This could cause legitimate traffic to be discarded, leading to a Denial of Service (DoS) condition. This issue only affects Junos OS 17.4 and later releases. Prior releases do not support this feature and are unaffected by this vulnerability. This issue only affects IPv6. IPv4 ARP proxy is unaffected by this vulnerability. This issue affects Juniper Networks Junos OS: 17.4 versions prior to 17.4R2-S9, 17.4R3 on MX Series; 18.1 versions prior to 18.1R3-S9 on MX Series; 18.2 versions prior to 18.2R2-S7, 18.2R3-S3 on MX Series; 18.2X75 versions prior to 18.2X75-D33, 18.2X75-D411, 18.2X75-D420, 18.2X75-D60 on MX Series; 18.3 versions prior to 18.3R1-S7, 18.3R2-S3, 18.3R3 on MX Series; 18.4 versions prior to 18.4R1-S5, 18.4R2-S2, 18.4R3 on MX Series; 19.1 versions prior to 19.1R1-S4, 19.1R2 on MX Series; 19.2 versions prior to 19.2R1-S3, 19.2R2 on MX Series.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2vgr-3xjr-x32c/GHSA-2vgr-3xjr-x32c.json b/advisories/unreviewed/2022/05/GHSA-2vgr-3xjr-x32c/GHSA-2vgr-3xjr-x32c.json index b119dd480e4..7e72454df45 100644 --- a/advisories/unreviewed/2022/05/GHSA-2vgr-3xjr-x32c/GHSA-2vgr-3xjr-x32c.json +++ b/advisories/unreviewed/2022/05/GHSA-2vgr-3xjr-x32c/GHSA-2vgr-3xjr-x32c.json @@ -7,12 +7,8 @@ "CVE-2020-11535" ], "details": "An issue was discovered in ONLYOFFICE Document Server 5.5.0. An attacker can craft a malicious .docx file, and exploit XML injection to enter an attacker-controlled parameter into the x2t binary, to rewrite this binary and/or libxcb.so.1, and execute code on a victim's server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2vxg-v3f5-p55m/GHSA-2vxg-v3f5-p55m.json b/advisories/unreviewed/2022/05/GHSA-2vxg-v3f5-p55m/GHSA-2vxg-v3f5-p55m.json index 57fa3042d89..b8e65df0e3e 100644 --- a/advisories/unreviewed/2022/05/GHSA-2vxg-v3f5-p55m/GHSA-2vxg-v3f5-p55m.json +++ b/advisories/unreviewed/2022/05/GHSA-2vxg-v3f5-p55m/GHSA-2vxg-v3f5-p55m.json @@ -7,12 +7,8 @@ "CVE-2019-20669" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects RBR20 before 2.3.5.26, RBS20 before 2.3.5.26, RBK20 before 2.3.5.26, RBR40 before 2.3.5.30, RBS40 before 2.3.5.30, RBK40 before 2.3.5.30, RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, and RBK50 before 2.3.5.30.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2x2p-r3j5-7pgp/GHSA-2x2p-r3j5-7pgp.json b/advisories/unreviewed/2022/05/GHSA-2x2p-r3j5-7pgp/GHSA-2x2p-r3j5-7pgp.json index 84d6bf4f25e..00321052d35 100644 --- a/advisories/unreviewed/2022/05/GHSA-2x2p-r3j5-7pgp/GHSA-2x2p-r3j5-7pgp.json +++ b/advisories/unreviewed/2022/05/GHSA-2x2p-r3j5-7pgp/GHSA-2x2p-r3j5-7pgp.json @@ -7,12 +7,8 @@ "CVE-2020-10639" ], "details": "Eaton HMiSoft VU3 (HMIVU3 runtime not impacted), Version 3.00.23 and prior, however, the HMIVU runtimes are not impacted by these issues. A specially crafted input file could cause a buffer overflow when loaded by the affected product.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2x4j-x774-w5j9/GHSA-2x4j-x774-w5j9.json b/advisories/unreviewed/2022/05/GHSA-2x4j-x774-w5j9/GHSA-2x4j-x774-w5j9.json index 3682063310e..8987b3a1854 100644 --- a/advisories/unreviewed/2022/05/GHSA-2x4j-x774-w5j9/GHSA-2x4j-x774-w5j9.json +++ b/advisories/unreviewed/2022/05/GHSA-2x4j-x774-w5j9/GHSA-2x4j-x774-w5j9.json @@ -7,12 +7,8 @@ "CVE-2008-3789" ], "details": "Samba 3.2.0 uses weak permissions (0666) for the (1) group_mapping.tdb and (2) group_mapping.ldb files, which allows local users to modify the membership of Unix groups.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2xmj-7fxc-h97c/GHSA-2xmj-7fxc-h97c.json b/advisories/unreviewed/2022/05/GHSA-2xmj-7fxc-h97c/GHSA-2xmj-7fxc-h97c.json index 20cc1989206..20587c8e5a2 100644 --- a/advisories/unreviewed/2022/05/GHSA-2xmj-7fxc-h97c/GHSA-2xmj-7fxc-h97c.json +++ b/advisories/unreviewed/2022/05/GHSA-2xmj-7fxc-h97c/GHSA-2xmj-7fxc-h97c.json @@ -7,12 +7,8 @@ "CVE-2020-1630" ], "details": "A privilege escalation vulnerability in Juniper Networks Junos OS devices configured with dual Routing Engines (RE), Virtual Chassis (VC) or high-availability cluster may allow a local authenticated low-privileged user with access to the shell to perform unauthorized configuration modification. This issue does not affect Junos OS device with single RE or stand-alone configuration. This issue affects Juniper Networks Junos OS 12.3 versions prior to 12.3R12-S14; 12.3X48 versions prior to 12.3X48-D86, 12.3X48-D90; 14.1X53 versions prior to 14.1X53-D51; 15.1 versions prior to 15.1R7-S6; 15.1X49 versions prior to 15.1X49-D181, 15.1X49-D190; 15.1X49 versions prior to 15.1X53-D592; 16.1 versions prior to 16.1R4-S13, 16.1R7-S6; 16.2 versions prior to 16.2R2-S10; 17.1 versions prior to 17.1R2-S11, 17.1R3-S1; 17.2 versions prior to 17.2R1-S9, 17.2R3-S3; 17.3 versions prior to 17.3R3-S6; 17.4 versions prior to 17.4R2-S6, 17.4R3; 18.1 versions prior to 18.1R3-S7; 18.2 versions prior to 18.2R2-S5, 18.2R3-S1; 18.2 versions prior to 18.2X75-D12, 18.2X75-D33, 18.2X75-D420, 18.2X75-D60, 18.2X75-D411; 18.3 versions prior to 18.3R1-S5, 18.3R2-S1, 18.3R3; 18.4 versions prior to 18.4R1-S4, 18.4R2-S1, 18.4R3; 19.1 versions prior to 19.1R1-S2, 19.1R2; 19.2 versions prior to 19.2R1-S1, 19.2R2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-35xw-gh3h-mxj5/GHSA-35xw-gh3h-mxj5.json b/advisories/unreviewed/2022/05/GHSA-35xw-gh3h-mxj5/GHSA-35xw-gh3h-mxj5.json index 7911cba614f..7604ec9d49e 100644 --- a/advisories/unreviewed/2022/05/GHSA-35xw-gh3h-mxj5/GHSA-35xw-gh3h-mxj5.json +++ b/advisories/unreviewed/2022/05/GHSA-35xw-gh3h-mxj5/GHSA-35xw-gh3h-mxj5.json @@ -7,12 +7,8 @@ "CVE-2020-1989" ], "details": "An incorrect privilege assignment vulnerability when writing application-specific files in the Palo Alto Networks Global Protect Agent for Linux on ARM platform allows a local authenticated user to gain root privileges on the system. This issue affects Palo Alto Networks Global Protect Agent for Linux 5.0 versions before 5.0.8; 5.1 versions before 5.1.1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3678-jj2q-4554/GHSA-3678-jj2q-4554.json b/advisories/unreviewed/2022/05/GHSA-3678-jj2q-4554/GHSA-3678-jj2q-4554.json index 80ed079410e..d3fc53e8829 100644 --- a/advisories/unreviewed/2022/05/GHSA-3678-jj2q-4554/GHSA-3678-jj2q-4554.json +++ b/advisories/unreviewed/2022/05/GHSA-3678-jj2q-4554/GHSA-3678-jj2q-4554.json @@ -7,12 +7,8 @@ "CVE-2020-9499" ], "details": "Some Dahua products have buffer overflow vulnerabilities. After the successful login of the legal account, the attacker sends a specific DDNS test command, which may cause the device to go down.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3686-jjcf-4w27/GHSA-3686-jjcf-4w27.json b/advisories/unreviewed/2022/05/GHSA-3686-jjcf-4w27/GHSA-3686-jjcf-4w27.json index 6e78ee8da40..9498b9f3a05 100644 --- a/advisories/unreviewed/2022/05/GHSA-3686-jjcf-4w27/GHSA-3686-jjcf-4w27.json +++ b/advisories/unreviewed/2022/05/GHSA-3686-jjcf-4w27/GHSA-3686-jjcf-4w27.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -143,9 +141,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-36rr-mv68-7vvr/GHSA-36rr-mv68-7vvr.json b/advisories/unreviewed/2022/05/GHSA-36rr-mv68-7vvr/GHSA-36rr-mv68-7vvr.json index 27947d805be..342946dd74c 100644 --- a/advisories/unreviewed/2022/05/GHSA-36rr-mv68-7vvr/GHSA-36rr-mv68-7vvr.json +++ b/advisories/unreviewed/2022/05/GHSA-36rr-mv68-7vvr/GHSA-36rr-mv68-7vvr.json @@ -7,12 +7,8 @@ "CVE-2020-1620" ], "details": "A local, authenticated user with shell can obtain the hashed values of login passwords via configd streamer log. This issue affects all versions of Junos OS Evolved prior to 19.3R1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-38cj-9mc9-ph6m/GHSA-38cj-9mc9-ph6m.json b/advisories/unreviewed/2022/05/GHSA-38cj-9mc9-ph6m/GHSA-38cj-9mc9-ph6m.json index 80f13fdef4b..65c2f2b2ba0 100644 --- a/advisories/unreviewed/2022/05/GHSA-38cj-9mc9-ph6m/GHSA-38cj-9mc9-ph6m.json +++ b/advisories/unreviewed/2022/05/GHSA-38cj-9mc9-ph6m/GHSA-38cj-9mc9-ph6m.json @@ -7,12 +7,8 @@ "CVE-2020-1984" ], "details": "Secdo tries to execute a script at a hardcoded path if present, which allows a local authenticated user with 'create folders or append data' access to the root of the OS disk (C:\\) to gain system privileges if the path does not already exist or is writable. This issue affects all versions of Secdo for Windows.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-38g8-fx3r-j23m/GHSA-38g8-fx3r-j23m.json b/advisories/unreviewed/2022/05/GHSA-38g8-fx3r-j23m/GHSA-38g8-fx3r-j23m.json index bcbb9af908a..488152ee48a 100644 --- a/advisories/unreviewed/2022/05/GHSA-38g8-fx3r-j23m/GHSA-38g8-fx3r-j23m.json +++ b/advisories/unreviewed/2022/05/GHSA-38g8-fx3r-j23m/GHSA-38g8-fx3r-j23m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-38p9-56pv-pmwc/GHSA-38p9-56pv-pmwc.json b/advisories/unreviewed/2022/05/GHSA-38p9-56pv-pmwc/GHSA-38p9-56pv-pmwc.json index e35cbc03f5f..b395fd14a54 100644 --- a/advisories/unreviewed/2022/05/GHSA-38p9-56pv-pmwc/GHSA-38p9-56pv-pmwc.json +++ b/advisories/unreviewed/2022/05/GHSA-38p9-56pv-pmwc/GHSA-38p9-56pv-pmwc.json @@ -7,12 +7,8 @@ "CVE-2020-0983" ], "details": "An elevation of privilege vulnerability exists when the Windows Delivery Optimization service improperly handles objects in memory, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0934, CVE-2020-1009, CVE-2020-1011, CVE-2020-1015.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-38qc-qp68-2r5r/GHSA-38qc-qp68-2r5r.json b/advisories/unreviewed/2022/05/GHSA-38qc-qp68-2r5r/GHSA-38qc-qp68-2r5r.json index 68f8b881ae0..d8b1a2c20d6 100644 --- a/advisories/unreviewed/2022/05/GHSA-38qc-qp68-2r5r/GHSA-38qc-qp68-2r5r.json +++ b/advisories/unreviewed/2022/05/GHSA-38qc-qp68-2r5r/GHSA-38qc-qp68-2r5r.json @@ -7,12 +7,8 @@ "CVE-2020-1029" ], "details": "An elevation of privilege vulnerability exists when Connected User Experiences and Telemetry Service improperly handles file operations, aka 'Connected User Experiences and Telemetry Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0942, CVE-2020-0944.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3gr3-g4vv-xf2r/GHSA-3gr3-g4vv-xf2r.json b/advisories/unreviewed/2022/05/GHSA-3gr3-g4vv-xf2r/GHSA-3gr3-g4vv-xf2r.json index 131e3b536bb..1e01bc4d6e2 100644 --- a/advisories/unreviewed/2022/05/GHSA-3gr3-g4vv-xf2r/GHSA-3gr3-g4vv-xf2r.json +++ b/advisories/unreviewed/2022/05/GHSA-3gr3-g4vv-xf2r/GHSA-3gr3-g4vv-xf2r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3j4r-w3gq-96pw/GHSA-3j4r-w3gq-96pw.json b/advisories/unreviewed/2022/05/GHSA-3j4r-w3gq-96pw/GHSA-3j4r-w3gq-96pw.json index f2bad301410..f90413c4495 100644 --- a/advisories/unreviewed/2022/05/GHSA-3j4r-w3gq-96pw/GHSA-3j4r-w3gq-96pw.json +++ b/advisories/unreviewed/2022/05/GHSA-3j4r-w3gq-96pw/GHSA-3j4r-w3gq-96pw.json @@ -7,12 +7,8 @@ "CVE-2020-0962" ], "details": "An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Win32k Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-0699.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3jx6-xj3f-cxpm/GHSA-3jx6-xj3f-cxpm.json b/advisories/unreviewed/2022/05/GHSA-3jx6-xj3f-cxpm/GHSA-3jx6-xj3f-cxpm.json index 24a00c3b000..e55eca4a751 100644 --- a/advisories/unreviewed/2022/05/GHSA-3jx6-xj3f-cxpm/GHSA-3jx6-xj3f-cxpm.json +++ b/advisories/unreviewed/2022/05/GHSA-3jx6-xj3f-cxpm/GHSA-3jx6-xj3f-cxpm.json @@ -7,12 +7,8 @@ "CVE-2016-11030" ], "details": "An issue was discovered on Samsung mobile devices with KK(4.4), L(5.0/5.1), and M(6.0) (with Hrm sensor support) software. The sysfs of the MAX86902 sensor driver does not prevent concurrent access, leading to a race condition and resultant heap-based buffer overflow. The Samsung ID is SVE-2016-7341 (December 2016).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3m25-4622-6q4x/GHSA-3m25-4622-6q4x.json b/advisories/unreviewed/2022/05/GHSA-3m25-4622-6q4x/GHSA-3m25-4622-6q4x.json index 83321c45bd0..e54ca19c3a8 100644 --- a/advisories/unreviewed/2022/05/GHSA-3m25-4622-6q4x/GHSA-3m25-4622-6q4x.json +++ b/advisories/unreviewed/2022/05/GHSA-3m25-4622-6q4x/GHSA-3m25-4622-6q4x.json @@ -7,12 +7,8 @@ "CVE-2017-18685" ], "details": "An issue was discovered on Samsung mobile devices with KK(4.4), L(5.0/5.1), and M(6.0) software. The InputMethod application can cause a system crash via a malformed serializable object in an Intent. The Samsung ID is SVE-2016-7123 (February 2017).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3p28-c6q8-qwmh/GHSA-3p28-c6q8-qwmh.json b/advisories/unreviewed/2022/05/GHSA-3p28-c6q8-qwmh/GHSA-3p28-c6q8-qwmh.json index 33ea81ee46c..050e88334a2 100644 --- a/advisories/unreviewed/2022/05/GHSA-3p28-c6q8-qwmh/GHSA-3p28-c6q8-qwmh.json +++ b/advisories/unreviewed/2022/05/GHSA-3p28-c6q8-qwmh/GHSA-3p28-c6q8-qwmh.json @@ -7,12 +7,8 @@ "CVE-2020-1015" ], "details": "An elevation of privilege vulnerability exists in the way that the User-Mode Power Service (UMPS) handles objects in memory, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0934, CVE-2020-0983, CVE-2020-1009, CVE-2020-1011.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3p5c-rjfv-r2rv/GHSA-3p5c-rjfv-r2rv.json b/advisories/unreviewed/2022/05/GHSA-3p5c-rjfv-r2rv/GHSA-3p5c-rjfv-r2rv.json index 4dcd8bc83cc..3de61678d9b 100644 --- a/advisories/unreviewed/2022/05/GHSA-3p5c-rjfv-r2rv/GHSA-3p5c-rjfv-r2rv.json +++ b/advisories/unreviewed/2022/05/GHSA-3p5c-rjfv-r2rv/GHSA-3p5c-rjfv-r2rv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3pv7-43jr-xjjj/GHSA-3pv7-43jr-xjjj.json b/advisories/unreviewed/2022/05/GHSA-3pv7-43jr-xjjj/GHSA-3pv7-43jr-xjjj.json index 6e5bef18924..2709ffa5ea3 100644 --- a/advisories/unreviewed/2022/05/GHSA-3pv7-43jr-xjjj/GHSA-3pv7-43jr-xjjj.json +++ b/advisories/unreviewed/2022/05/GHSA-3pv7-43jr-xjjj/GHSA-3pv7-43jr-xjjj.json @@ -7,12 +7,8 @@ "CVE-2019-20668" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects RBR20 before 2.3.5.26, RBS20 before 2.3.5.26, RBK20 before 2.3.5.26, RBR40 before 2.3.5.30, RBS40 before 2.3.5.30, RBK40 before 2.3.5.30, RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, and RBK50 before 2.3.5.30.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3px7-mx75-562c/GHSA-3px7-mx75-562c.json b/advisories/unreviewed/2022/05/GHSA-3px7-mx75-562c/GHSA-3px7-mx75-562c.json index 109d83789f6..9381c9ba5d5 100644 --- a/advisories/unreviewed/2022/05/GHSA-3px7-mx75-562c/GHSA-3px7-mx75-562c.json +++ b/advisories/unreviewed/2022/05/GHSA-3px7-mx75-562c/GHSA-3px7-mx75-562c.json @@ -7,12 +7,8 @@ "CVE-2020-0961" ], "details": "A remote code execution vulnerability exists when the Microsoft Office Access Connectivity Engine improperly handles objects in memory, aka 'Microsoft Office Access Connectivity Engine Remote Code Execution Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3qgp-95cw-h2qr/GHSA-3qgp-95cw-h2qr.json b/advisories/unreviewed/2022/05/GHSA-3qgp-95cw-h2qr/GHSA-3qgp-95cw-h2qr.json index 48f2788d5ce..90af988f614 100644 --- a/advisories/unreviewed/2022/05/GHSA-3qgp-95cw-h2qr/GHSA-3qgp-95cw-h2qr.json +++ b/advisories/unreviewed/2022/05/GHSA-3qgp-95cw-h2qr/GHSA-3qgp-95cw-h2qr.json @@ -7,12 +7,8 @@ "CVE-2018-21064" ], "details": "An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. There is an array overflow in a driver's input booster. The Samsung ID is SVE-2017-11816 (August 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3v2r-86vj-q55q/GHSA-3v2r-86vj-q55q.json b/advisories/unreviewed/2022/05/GHSA-3v2r-86vj-q55q/GHSA-3v2r-86vj-q55q.json index d266652f939..14e8657ffbf 100644 --- a/advisories/unreviewed/2022/05/GHSA-3v2r-86vj-q55q/GHSA-3v2r-86vj-q55q.json +++ b/advisories/unreviewed/2022/05/GHSA-3v2r-86vj-q55q/GHSA-3v2r-86vj-q55q.json @@ -7,12 +7,8 @@ "CVE-2020-0919" ], "details": "An elevation of privilege vulnerability exists in Remote Desktop App for Mac in the way it allows an attacker to load unsigned binaries, aka 'Microsoft Remote Desktop App for Mac Elevation of Privilege Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3x27-c9g4-52f5/GHSA-3x27-c9g4-52f5.json b/advisories/unreviewed/2022/05/GHSA-3x27-c9g4-52f5/GHSA-3x27-c9g4-52f5.json index 9db81aeefe2..fd268fdbef1 100644 --- a/advisories/unreviewed/2022/05/GHSA-3x27-c9g4-52f5/GHSA-3x27-c9g4-52f5.json +++ b/advisories/unreviewed/2022/05/GHSA-3x27-c9g4-52f5/GHSA-3x27-c9g4-52f5.json @@ -7,12 +7,8 @@ "CVE-2015-9546" ], "details": "An issue was discovered on Samsung mobile devices with KK(4.4) and later software through 2015-06-16. In some cases, HTTP is used for an Inputmethod, rather than HTTPS. A man-in-the-middle attacker can modify the client-server data stream to insert directory traversal sequences into an extracted file path. The Samsung ID is SVE-2015-4363 (November 2015).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3xpp-76c3-mjqm/GHSA-3xpp-76c3-mjqm.json b/advisories/unreviewed/2022/05/GHSA-3xpp-76c3-mjqm/GHSA-3xpp-76c3-mjqm.json index baced0d7a87..47bc55b3f48 100644 --- a/advisories/unreviewed/2022/05/GHSA-3xpp-76c3-mjqm/GHSA-3xpp-76c3-mjqm.json +++ b/advisories/unreviewed/2022/05/GHSA-3xpp-76c3-mjqm/GHSA-3xpp-76c3-mjqm.json @@ -7,12 +7,8 @@ "CVE-2019-20666" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, and RBK50 before 2.3.5.30.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3xq6-3w4g-4j37/GHSA-3xq6-3w4g-4j37.json b/advisories/unreviewed/2022/05/GHSA-3xq6-3w4g-4j37/GHSA-3xq6-3w4g-4j37.json index dd65b2335ff..85595a4d274 100644 --- a/advisories/unreviewed/2022/05/GHSA-3xq6-3w4g-4j37/GHSA-3xq6-3w4g-4j37.json +++ b/advisories/unreviewed/2022/05/GHSA-3xq6-3w4g-4j37/GHSA-3xq6-3w4g-4j37.json @@ -7,12 +7,8 @@ "CVE-2020-8319" ], "details": "A privilege escalation vulnerability was reported in Lenovo System Interface Foundation prior to version 1.1.19.3 that could allow an authenticated user to execute code with elevated privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-42h8-r672-w9r8/GHSA-42h8-r672-w9r8.json b/advisories/unreviewed/2022/05/GHSA-42h8-r672-w9r8/GHSA-42h8-r672-w9r8.json index 8e31fac6cc7..4860613782e 100644 --- a/advisories/unreviewed/2022/05/GHSA-42h8-r672-w9r8/GHSA-42h8-r672-w9r8.json +++ b/advisories/unreviewed/2022/05/GHSA-42h8-r672-w9r8/GHSA-42h8-r672-w9r8.json @@ -7,12 +7,8 @@ "CVE-2020-6228" ], "details": "SAP Business Client, versions 6.5, 7.0, does not perform necessary integrity checks which could be exploited by an attacker under certain conditions to modify the installer.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-433p-hr74-8hv2/GHSA-433p-hr74-8hv2.json b/advisories/unreviewed/2022/05/GHSA-433p-hr74-8hv2/GHSA-433p-hr74-8hv2.json index c51204159b1..a183409c354 100644 --- a/advisories/unreviewed/2022/05/GHSA-433p-hr74-8hv2/GHSA-433p-hr74-8hv2.json +++ b/advisories/unreviewed/2022/05/GHSA-433p-hr74-8hv2/GHSA-433p-hr74-8hv2.json @@ -7,12 +7,8 @@ "CVE-2020-2524" ], "details": "Vulnerability in the Oracle Knowledge product of Oracle Knowledge (component: InQuira Search). Supported versions that are affected are 8.6.0-8.6.3. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Knowledge. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle Knowledge. CVSS 3.0 Base Score 5.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-435p-pf44-5x2x/GHSA-435p-pf44-5x2x.json b/advisories/unreviewed/2022/05/GHSA-435p-pf44-5x2x/GHSA-435p-pf44-5x2x.json index f0bd3f924e2..1c063c87735 100644 --- a/advisories/unreviewed/2022/05/GHSA-435p-pf44-5x2x/GHSA-435p-pf44-5x2x.json +++ b/advisories/unreviewed/2022/05/GHSA-435p-pf44-5x2x/GHSA-435p-pf44-5x2x.json @@ -7,12 +7,8 @@ "CVE-2017-18646" ], "details": "An issue was discovered on Samsung mobile devices with M(6.x) and N(7.x) software. An attacker can bypass the password requirement for tablet user switching by folding the magnetic cover. The Samsung ID is SVE-2017-10602 (December 2017).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4462-fg6w-364q/GHSA-4462-fg6w-364q.json b/advisories/unreviewed/2022/05/GHSA-4462-fg6w-364q/GHSA-4462-fg6w-364q.json index e565107e5f1..1d6a51b113e 100644 --- a/advisories/unreviewed/2022/05/GHSA-4462-fg6w-364q/GHSA-4462-fg6w-364q.json +++ b/advisories/unreviewed/2022/05/GHSA-4462-fg6w-364q/GHSA-4462-fg6w-364q.json @@ -7,12 +7,8 @@ "CVE-2020-11586" ], "details": "An XXE issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an API request that contains malicious XML DTD data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4472-fqw9-56jh/GHSA-4472-fqw9-56jh.json b/advisories/unreviewed/2022/05/GHSA-4472-fqw9-56jh/GHSA-4472-fqw9-56jh.json index a8f88b85167..ee0bcd23205 100644 --- a/advisories/unreviewed/2022/05/GHSA-4472-fqw9-56jh/GHSA-4472-fqw9-56jh.json +++ b/advisories/unreviewed/2022/05/GHSA-4472-fqw9-56jh/GHSA-4472-fqw9-56jh.json @@ -7,12 +7,8 @@ "CVE-2020-11627" ], "details": "An issue was discovered in EJBCA before 6.15.2.6 and 7.x before 7.3.1.2. A Cross Site Request Forgery (CSRF) issue has been found in the CA UI.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-44wx-pxp5-fjxm/GHSA-44wx-pxp5-fjxm.json b/advisories/unreviewed/2022/05/GHSA-44wx-pxp5-fjxm/GHSA-44wx-pxp5-fjxm.json index 7347374927c..451c74cdb76 100644 --- a/advisories/unreviewed/2022/05/GHSA-44wx-pxp5-fjxm/GHSA-44wx-pxp5-fjxm.json +++ b/advisories/unreviewed/2022/05/GHSA-44wx-pxp5-fjxm/GHSA-44wx-pxp5-fjxm.json @@ -7,12 +7,8 @@ "CVE-2016-11025" ], "details": "An issue was discovered on Samsung mobile devices with software through 2016-09-13 (Exynos AP chipsets). There is a memcpy heap-based buffer overflow in the OTP service. The Samsung ID is SVE-2016-7114 (December 2016).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-45c5-53rx-cg43/GHSA-45c5-53rx-cg43.json b/advisories/unreviewed/2022/05/GHSA-45c5-53rx-cg43/GHSA-45c5-53rx-cg43.json index a6d1fb096f3..2e7b4ee7f8b 100644 --- a/advisories/unreviewed/2022/05/GHSA-45c5-53rx-cg43/GHSA-45c5-53rx-cg43.json +++ b/advisories/unreviewed/2022/05/GHSA-45c5-53rx-cg43/GHSA-45c5-53rx-cg43.json @@ -7,12 +7,8 @@ "CVE-2019-20657" ], "details": "Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects D6200 before 1.1.00.36, D7000 before 1.0.1.74, PR2000 before 1.0.0.28, R6020 before 1.0.0.42, R6080 before 1.0.0.42, R6050 before 1.0.1.24, JR6150 before 1.0.1.24, R6120 before 1.0.0.48, R6220 before 1.1.0.86, R6230 before 1.1.0.86, R6260 before 1.1.0.64, R6700v2 before 1.2.0.62, R6800 before 1.2.0.62, R6900v2 before 1.2.0.62, and WNR2020 before 1.1.0.62.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-46h8-9xpr-rf6w/GHSA-46h8-9xpr-rf6w.json b/advisories/unreviewed/2022/05/GHSA-46h8-9xpr-rf6w/GHSA-46h8-9xpr-rf6w.json index 1de8c65375a..37ae0f039e7 100644 --- a/advisories/unreviewed/2022/05/GHSA-46h8-9xpr-rf6w/GHSA-46h8-9xpr-rf6w.json +++ b/advisories/unreviewed/2022/05/GHSA-46h8-9xpr-rf6w/GHSA-46h8-9xpr-rf6w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-46mh-w55g-p27c/GHSA-46mh-w55g-p27c.json b/advisories/unreviewed/2022/05/GHSA-46mh-w55g-p27c/GHSA-46mh-w55g-p27c.json index d83ab2d9089..676517b6e96 100644 --- a/advisories/unreviewed/2022/05/GHSA-46mh-w55g-p27c/GHSA-46mh-w55g-p27c.json +++ b/advisories/unreviewed/2022/05/GHSA-46mh-w55g-p27c/GHSA-46mh-w55g-p27c.json @@ -7,12 +7,8 @@ "CVE-2019-20681" ], "details": "Certain NETGEAR devices are affected by authentication bypass. This affects D6200 before 1.1.00.34, D7000 before 1.0.1.68, JR6150 before 1.0.1.18, PR2000 before 1.0.0.28, R6050 before 1.0.1.18, R6120 before 1.0.0.46, R6220 before 1.1.0.80, R6260 before 1.1.0.64, R6700v2 before 1.2.0.36, R6800 before 1.2.0.36, and R6900v2 before 1.2.0.36.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-485m-r4rj-8fm4/GHSA-485m-r4rj-8fm4.json b/advisories/unreviewed/2022/05/GHSA-485m-r4rj-8fm4/GHSA-485m-r4rj-8fm4.json index a3f37dbdf66..fab0278696a 100644 --- a/advisories/unreviewed/2022/05/GHSA-485m-r4rj-8fm4/GHSA-485m-r4rj-8fm4.json +++ b/advisories/unreviewed/2022/05/GHSA-485m-r4rj-8fm4/GHSA-485m-r4rj-8fm4.json @@ -7,12 +7,8 @@ "CVE-2017-18658" ], "details": "An issue was discovered on Samsung mobile devices with M(6.0) software. The multiwindow_facade API allows attackers to cause a NullPointerException and system halt via an attempted screen touch of a non-existing display. The Samsung ID is SVE-2017-9383 (August 2017).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-487c-g6v4-38j9/GHSA-487c-g6v4-38j9.json b/advisories/unreviewed/2022/05/GHSA-487c-g6v4-38j9/GHSA-487c-g6v4-38j9.json index 45acbfb4c53..6d0fb4b273e 100644 --- a/advisories/unreviewed/2022/05/GHSA-487c-g6v4-38j9/GHSA-487c-g6v4-38j9.json +++ b/advisories/unreviewed/2022/05/GHSA-487c-g6v4-38j9/GHSA-487c-g6v4-38j9.json @@ -7,12 +7,8 @@ "CVE-2016-11053" ], "details": "An issue was discovered on Samsung mobile devices with software through 2015-11-11 (supporting FRP/RL). There is a Factory Reset Protection (FRP) bypass. The Samsung ID is SVE-2015-5131 (January 2016).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-488g-vjq5-7wcq/GHSA-488g-vjq5-7wcq.json b/advisories/unreviewed/2022/05/GHSA-488g-vjq5-7wcq/GHSA-488g-vjq5-7wcq.json index 94faadd988e..5cf51bbf530 100644 --- a/advisories/unreviewed/2022/05/GHSA-488g-vjq5-7wcq/GHSA-488g-vjq5-7wcq.json +++ b/advisories/unreviewed/2022/05/GHSA-488g-vjq5-7wcq/GHSA-488g-vjq5-7wcq.json @@ -7,12 +7,8 @@ "CVE-2020-2762" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.19 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4c66-wfc9-5fpf/GHSA-4c66-wfc9-5fpf.json b/advisories/unreviewed/2022/05/GHSA-4c66-wfc9-5fpf/GHSA-4c66-wfc9-5fpf.json index 76720dbcfbe..027fc870e05 100644 --- a/advisories/unreviewed/2022/05/GHSA-4c66-wfc9-5fpf/GHSA-4c66-wfc9-5fpf.json +++ b/advisories/unreviewed/2022/05/GHSA-4c66-wfc9-5fpf/GHSA-4c66-wfc9-5fpf.json @@ -7,12 +7,8 @@ "CVE-2020-0973" ], "details": "A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft Office SharePoint XSS Vulnerability'. This CVE ID is unique from CVE-2020-0923, CVE-2020-0924, CVE-2020-0925, CVE-2020-0926, CVE-2020-0927, CVE-2020-0930, CVE-2020-0933, CVE-2020-0954, CVE-2020-0978.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4cj9-m6pr-4w4x/GHSA-4cj9-m6pr-4w4x.json b/advisories/unreviewed/2022/05/GHSA-4cj9-m6pr-4w4x/GHSA-4cj9-m6pr-4w4x.json index 24c337462e7..3c95a175f4d 100644 --- a/advisories/unreviewed/2022/05/GHSA-4cj9-m6pr-4w4x/GHSA-4cj9-m6pr-4w4x.json +++ b/advisories/unreviewed/2022/05/GHSA-4cj9-m6pr-4w4x/GHSA-4cj9-m6pr-4w4x.json @@ -7,12 +7,8 @@ "CVE-2020-0557" ], "details": "Insecure inherited permissions in Intel(R) PROSet/Wireless WiFi products before version 21.70 on Windows 10 may allow an authenticated user to potentially enable escalation of privilege via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4hf4-8q97-rmrh/GHSA-4hf4-8q97-rmrh.json b/advisories/unreviewed/2022/05/GHSA-4hf4-8q97-rmrh/GHSA-4hf4-8q97-rmrh.json index d24792e288f..60c5e337f72 100644 --- a/advisories/unreviewed/2022/05/GHSA-4hf4-8q97-rmrh/GHSA-4hf4-8q97-rmrh.json +++ b/advisories/unreviewed/2022/05/GHSA-4hf4-8q97-rmrh/GHSA-4hf4-8q97-rmrh.json @@ -7,12 +7,8 @@ "CVE-2020-1018" ], "details": "An information disclosure vulnerability exists when Microsoft Dynamics Business Central/NAV on-premise does not properly hide the value of a masked field when showing the records as a chart page.The attacker who successfully exploited the vulnerability could see the information that are in a masked field.The security update addresses the vulnerability by updating the rendering engine the Windows client to properly detect masked fields and render the content as masked., aka 'Microsoft Dynamics Business Central/NAV Information Disclosure'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4hj5-473r-jgc4/GHSA-4hj5-473r-jgc4.json b/advisories/unreviewed/2022/05/GHSA-4hj5-473r-jgc4/GHSA-4hj5-473r-jgc4.json index daa5683f81f..9feb0ad1893 100644 --- a/advisories/unreviewed/2022/05/GHSA-4hj5-473r-jgc4/GHSA-4hj5-473r-jgc4.json +++ b/advisories/unreviewed/2022/05/GHSA-4hj5-473r-jgc4/GHSA-4hj5-473r-jgc4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4p5h-fr4c-h6c6/GHSA-4p5h-fr4c-h6c6.json b/advisories/unreviewed/2022/05/GHSA-4p5h-fr4c-h6c6/GHSA-4p5h-fr4c-h6c6.json index 5ad772448fa..9f6c79139c8 100644 --- a/advisories/unreviewed/2022/05/GHSA-4p5h-fr4c-h6c6/GHSA-4p5h-fr4c-h6c6.json +++ b/advisories/unreviewed/2022/05/GHSA-4p5h-fr4c-h6c6/GHSA-4p5h-fr4c-h6c6.json @@ -7,12 +7,8 @@ "CVE-2020-2744" ], "details": "Vulnerability in the Oracle Transportation Management product of Oracle Supply Chain (component: Security). Supported versions that are affected are 6.3.7, 6.4.2 and 6.4.3. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Transportation Management. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Transportation Management, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Transportation Management accessible data as well as unauthorized read access to a subset of Oracle Transportation Management accessible data. CVSS 3.0 Base Score 5.4 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4p6j-x7fv-6w52/GHSA-4p6j-x7fv-6w52.json b/advisories/unreviewed/2022/05/GHSA-4p6j-x7fv-6w52/GHSA-4p6j-x7fv-6w52.json index 04c4da96011..bba58ff3c04 100644 --- a/advisories/unreviewed/2022/05/GHSA-4p6j-x7fv-6w52/GHSA-4p6j-x7fv-6w52.json +++ b/advisories/unreviewed/2022/05/GHSA-4p6j-x7fv-6w52/GHSA-4p6j-x7fv-6w52.json @@ -7,12 +7,8 @@ "CVE-2017-18654" ], "details": "An issue was discovered on Samsung mobile devices with M(6.0) and N(7.0, 7.1) software. An unauthenticated attacker can register a new security certificate. The Samsung ID is SVE-2017-9659 (September 2017).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4qj8-98mv-2vmv/GHSA-4qj8-98mv-2vmv.json b/advisories/unreviewed/2022/05/GHSA-4qj8-98mv-2vmv/GHSA-4qj8-98mv-2vmv.json index 9982b9d5b67..1ed6a832796 100644 --- a/advisories/unreviewed/2022/05/GHSA-4qj8-98mv-2vmv/GHSA-4qj8-98mv-2vmv.json +++ b/advisories/unreviewed/2022/05/GHSA-4qj8-98mv-2vmv/GHSA-4qj8-98mv-2vmv.json @@ -7,12 +7,8 @@ "CVE-2020-1978" ], "details": "TechSupport files generated on Palo Alto Networks VM Series firewalls for Microsoft Azure platform configured with high availability (HA) inadvertently collect Azure dashboard service account credentials. These credentials are equivalent to the credentials associated with the Contributor role in Azure. A user with the credentials will be able to manage all the Azure resources in the subscription except for granting access to other resources. These credentials do not allow login access to the VMs themselves. This issue affects VM Series Plugin versions before 1.0.9 for PAN-OS 9.0. This issue does not affect VM Series in non-HA configurations or on other cloud platforms. It does not affect hardware firewall appliances. Since becoming aware of the issue, Palo Alto Networks has safely deleted all the tech support files with the credentials. We now filter and remove these credentials from all TechSupport files sent to us. The TechSupport files uploaded to Palo Alto Networks systems were only accessible by authorized personnel with valid Palo Alto Networks credentials. We do not have any evidence of malicious access or use of these credentials.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4qx3-mf5m-w595/GHSA-4qx3-mf5m-w595.json b/advisories/unreviewed/2022/05/GHSA-4qx3-mf5m-w595/GHSA-4qx3-mf5m-w595.json index 4433f6ab383..d2e115ec91d 100644 --- a/advisories/unreviewed/2022/05/GHSA-4qx3-mf5m-w595/GHSA-4qx3-mf5m-w595.json +++ b/advisories/unreviewed/2022/05/GHSA-4qx3-mf5m-w595/GHSA-4qx3-mf5m-w595.json @@ -7,12 +7,8 @@ "CVE-2020-2775" ], "details": "Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Portal). Supported versions that are affected are 8.56, 8.57 and 8.58. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools. Successful attacks of this vulnerability can result in unauthorized read access to a subset of PeopleSoft Enterprise PeopleTools accessible data. CVSS 3.0 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4rcx-c5vj-xwh2/GHSA-4rcx-c5vj-xwh2.json b/advisories/unreviewed/2022/05/GHSA-4rcx-c5vj-xwh2/GHSA-4rcx-c5vj-xwh2.json index 02277e81a52..c1ffe24905a 100644 --- a/advisories/unreviewed/2022/05/GHSA-4rcx-c5vj-xwh2/GHSA-4rcx-c5vj-xwh2.json +++ b/advisories/unreviewed/2022/05/GHSA-4rcx-c5vj-xwh2/GHSA-4rcx-c5vj-xwh2.json @@ -7,12 +7,8 @@ "CVE-2020-0948" ], "details": "A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in memory, aka 'Media Foundation Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2020-0949, CVE-2020-0950.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4rhg-f685-m3px/GHSA-4rhg-f685-m3px.json b/advisories/unreviewed/2022/05/GHSA-4rhg-f685-m3px/GHSA-4rhg-f685-m3px.json index 0bb22e4c1e5..9230a6028ee 100644 --- a/advisories/unreviewed/2022/05/GHSA-4rhg-f685-m3px/GHSA-4rhg-f685-m3px.json +++ b/advisories/unreviewed/2022/05/GHSA-4rhg-f685-m3px/GHSA-4rhg-f685-m3px.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4rvx-m2rf-f8jx/GHSA-4rvx-m2rf-f8jx.json b/advisories/unreviewed/2022/05/GHSA-4rvx-m2rf-f8jx/GHSA-4rvx-m2rf-f8jx.json index c85456d375a..8e66bf61175 100644 --- a/advisories/unreviewed/2022/05/GHSA-4rvx-m2rf-f8jx/GHSA-4rvx-m2rf-f8jx.json +++ b/advisories/unreviewed/2022/05/GHSA-4rvx-m2rf-f8jx/GHSA-4rvx-m2rf-f8jx.json @@ -7,12 +7,8 @@ "CVE-2020-11768" ], "details": "Certain NETGEAR devices are affected by Stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.68, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0.0.78, RBR20 before 2.3.5.26, RBS20 before 2.3.5.26, RBK20 before 2.3.5.26, RBR40 before 2.3.5.30, RBS40 before 2.3.5.30, RBK40 before 2.3.5.30, RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, RBK50 before 2.3.5.30, XR500 before 2.3.2.56, and XR700 before 1.0.1.10.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4v7m-745p-mv2f/GHSA-4v7m-745p-mv2f.json b/advisories/unreviewed/2022/05/GHSA-4v7m-745p-mv2f/GHSA-4v7m-745p-mv2f.json index b81f1103e6e..561617eb4ec 100644 --- a/advisories/unreviewed/2022/05/GHSA-4v7m-745p-mv2f/GHSA-4v7m-745p-mv2f.json +++ b/advisories/unreviewed/2022/05/GHSA-4v7m-745p-mv2f/GHSA-4v7m-745p-mv2f.json @@ -7,12 +7,8 @@ "CVE-2018-21079" ], "details": "An issue was discovered on Samsung mobile devices with L(5.x), M(6.0), N(7.x), and O(8.0) software. There is a kernel pointer leak in the USB gadget driver. The Samsung ID is SVE-2017-10993 (March 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4vqp-7964-fg2v/GHSA-4vqp-7964-fg2v.json b/advisories/unreviewed/2022/05/GHSA-4vqp-7964-fg2v/GHSA-4vqp-7964-fg2v.json index 5e147310832..45cedd4f1a6 100644 --- a/advisories/unreviewed/2022/05/GHSA-4vqp-7964-fg2v/GHSA-4vqp-7964-fg2v.json +++ b/advisories/unreviewed/2022/05/GHSA-4vqp-7964-fg2v/GHSA-4vqp-7964-fg2v.json @@ -7,12 +7,8 @@ "CVE-2020-1619" ], "details": "A privilege escalation vulnerability in Juniper Networks QFX10K Series, EX9200 Series, MX Series, and PTX Series with Next-Generation Routing Engine (NG-RE), allows a local authenticated high privileged user to access the underlying WRL host. This issue only affects QFX10K Series with NG-RE, EX9200 Series with NG-RE, MX Series with NG-RE and PTX Series with NG-RE; which uses vmhost. This issue affects Juniper Networks Junos OS: 16.1 versions prior to 16.1R7-S6; 16.2 versions prior to 16.2R2-S11; 17.1 versions prior to 17.1R2-S11, 17.1R3; 17.2 versions prior to 17.2R1-S9, 17.2R3-S3; 17.3 versions prior to 17.3R2-S5, 17.3R3-S7; 17.4 versions prior to 17.4R2-S7, 17.4R3; 18.1 versions prior to 18.1R3-S4; 18.2 versions prior to 18.2R3; 18.2X75 versions prior to 18.2X75-D50; 18.3 versions prior to 18.3R2; 18.4 versions prior to 18.4R2. To identify whether the device has NG-RE with vmhost, customer can run the following command: > show vmhost status Compute cluster: rainier-re-cc Compute Node: rainier-re-cn, Online If the \"show vmhost status\" is not supported, then the device does not have NG-RE with vmhost.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4xqf-wpgp-683p/GHSA-4xqf-wpgp-683p.json b/advisories/unreviewed/2022/05/GHSA-4xqf-wpgp-683p/GHSA-4xqf-wpgp-683p.json index 5a2cea0295d..56ba617cc7d 100644 --- a/advisories/unreviewed/2022/05/GHSA-4xqf-wpgp-683p/GHSA-4xqf-wpgp-683p.json +++ b/advisories/unreviewed/2022/05/GHSA-4xqf-wpgp-683p/GHSA-4xqf-wpgp-683p.json @@ -7,12 +7,8 @@ "CVE-2020-0985" ], "details": "An elevation of privilege vulnerability exists when the Windows Update Stack fails to properly handle objects in memory, aka 'Windows Update Stack Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0996.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5242-q4vx-3j4h/GHSA-5242-q4vx-3j4h.json b/advisories/unreviewed/2022/05/GHSA-5242-q4vx-3j4h/GHSA-5242-q4vx-3j4h.json index f74b687f0dd..de2149ded21 100644 --- a/advisories/unreviewed/2022/05/GHSA-5242-q4vx-3j4h/GHSA-5242-q4vx-3j4h.json +++ b/advisories/unreviewed/2022/05/GHSA-5242-q4vx-3j4h/GHSA-5242-q4vx-3j4h.json @@ -7,12 +7,8 @@ "CVE-2019-4601" ], "details": "IBM Quality Manager (RQM) 6.02, 6.06, and 6.0.6.1 could allow an authenticated user to obtain sensitive information from a stack trace that could aid in further attacks against the system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-52gg-946h-62x9/GHSA-52gg-946h-62x9.json b/advisories/unreviewed/2022/05/GHSA-52gg-946h-62x9/GHSA-52gg-946h-62x9.json index 9da92875c86..8174a78dcb4 100644 --- a/advisories/unreviewed/2022/05/GHSA-52gg-946h-62x9/GHSA-52gg-946h-62x9.json +++ b/advisories/unreviewed/2022/05/GHSA-52gg-946h-62x9/GHSA-52gg-946h-62x9.json @@ -7,12 +7,8 @@ "CVE-2019-4746" ], "details": "IBM DOORS Next Generation (DNG/RRC) 6.0.2. 6.0.6, and 6.0.61 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 172885.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-53g6-7cqf-hc3p/GHSA-53g6-7cqf-hc3p.json b/advisories/unreviewed/2022/05/GHSA-53g6-7cqf-hc3p/GHSA-53g6-7cqf-hc3p.json index 4ebc386af9d..cf2f33a9b49 100644 --- a/advisories/unreviewed/2022/05/GHSA-53g6-7cqf-hc3p/GHSA-53g6-7cqf-hc3p.json +++ b/advisories/unreviewed/2022/05/GHSA-53g6-7cqf-hc3p/GHSA-53g6-7cqf-hc3p.json @@ -7,12 +7,8 @@ "CVE-2016-11044" ], "details": "An issue was discovered on Samsung mobile devices with L(5.0/5.1) and M(6.0) (with Fingerprint support) software. The check of an application's signature can be bypassed during installation. The Samsung ID is SVE-2016-5923 (June 2016).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-53jj-4vr2-hc67/GHSA-53jj-4vr2-hc67.json b/advisories/unreviewed/2022/05/GHSA-53jj-4vr2-hc67/GHSA-53jj-4vr2-hc67.json index 9b157b3111b..941a73415ef 100644 --- a/advisories/unreviewed/2022/05/GHSA-53jj-4vr2-hc67/GHSA-53jj-4vr2-hc67.json +++ b/advisories/unreviewed/2022/05/GHSA-53jj-4vr2-hc67/GHSA-53jj-4vr2-hc67.json @@ -7,12 +7,8 @@ "CVE-2020-11593" ], "details": "An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an HTTP POST request with injected HTML data that is later leveraged to send emails from a customer trusted email address.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-54q6-x68f-358m/GHSA-54q6-x68f-358m.json b/advisories/unreviewed/2022/05/GHSA-54q6-x68f-358m/GHSA-54q6-x68f-358m.json index f35f14ceaab..d57f20c9665 100644 --- a/advisories/unreviewed/2022/05/GHSA-54q6-x68f-358m/GHSA-54q6-x68f-358m.json +++ b/advisories/unreviewed/2022/05/GHSA-54q6-x68f-358m/GHSA-54q6-x68f-358m.json @@ -7,12 +7,8 @@ "CVE-2020-6219" ], "details": "SAP Business Objects Business Intelligence Platform (CrystalReports WebForm Viewer), versions 4.1, 4.2, and Crystal Reports for VS version 2010, allows an attacker with basic authorization to perform deserialization attack in the application, leading to service interruptions and denial of service and unauthorized execution of arbitrary commands, leading to Deserialization of Untrusted Data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5549-w4f7-8jwg/GHSA-5549-w4f7-8jwg.json b/advisories/unreviewed/2022/05/GHSA-5549-w4f7-8jwg/GHSA-5549-w4f7-8jwg.json index dd69b295a02..8935a0e0a65 100644 --- a/advisories/unreviewed/2022/05/GHSA-5549-w4f7-8jwg/GHSA-5549-w4f7-8jwg.json +++ b/advisories/unreviewed/2022/05/GHSA-5549-w4f7-8jwg/GHSA-5549-w4f7-8jwg.json @@ -7,12 +7,8 @@ "CVE-2017-18691" ], "details": "An issue was discovered on Samsung mobile devices with M(6.0) and N(7.0) (Exynos8890 chipsets) software. There are multiple Buffer Overflows in TSP sysfs cmd_store. The Samsung ID is SVE-2016-7500 (January 2017).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-55c5-m8rj-gx6v/GHSA-55c5-m8rj-gx6v.json b/advisories/unreviewed/2022/05/GHSA-55c5-m8rj-gx6v/GHSA-55c5-m8rj-gx6v.json index 28b89f52128..930d28e92ad 100644 --- a/advisories/unreviewed/2022/05/GHSA-55c5-m8rj-gx6v/GHSA-55c5-m8rj-gx6v.json +++ b/advisories/unreviewed/2022/05/GHSA-55c5-m8rj-gx6v/GHSA-55c5-m8rj-gx6v.json @@ -7,12 +7,8 @@ "CVE-2020-11536" ], "details": "An issue was discovered in ONLYOFFICE Document Server 5.5.0. An attacker can craft a malicious .docx file, and exploit the unzip function to rewrite a binary and remotely execute code on a victim's server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-55r9-fmjm-g3pq/GHSA-55r9-fmjm-g3pq.json b/advisories/unreviewed/2022/05/GHSA-55r9-fmjm-g3pq/GHSA-55r9-fmjm-g3pq.json index 823935741b2..8a00aad4540 100644 --- a/advisories/unreviewed/2022/05/GHSA-55r9-fmjm-g3pq/GHSA-55r9-fmjm-g3pq.json +++ b/advisories/unreviewed/2022/05/GHSA-55r9-fmjm-g3pq/GHSA-55r9-fmjm-g3pq.json @@ -7,12 +7,8 @@ "CVE-2020-0976" ], "details": "A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft SharePoint Spoofing Vulnerability'. This CVE ID is unique from CVE-2020-0972, CVE-2020-0975, CVE-2020-0977.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-56jq-fm7j-74gp/GHSA-56jq-fm7j-74gp.json b/advisories/unreviewed/2022/05/GHSA-56jq-fm7j-74gp/GHSA-56jq-fm7j-74gp.json index 21d1ac1fa73..5ece9920e47 100644 --- a/advisories/unreviewed/2022/05/GHSA-56jq-fm7j-74gp/GHSA-56jq-fm7j-74gp.json +++ b/advisories/unreviewed/2022/05/GHSA-56jq-fm7j-74gp/GHSA-56jq-fm7j-74gp.json @@ -7,12 +7,8 @@ "CVE-2020-0994" ], "details": "A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0889, CVE-2020-0953, CVE-2020-0959, CVE-2020-0960, CVE-2020-0988, CVE-2020-0992, CVE-2020-0995, CVE-2020-0999, CVE-2020-1008.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-56qq-4q2h-c244/GHSA-56qq-4q2h-c244.json b/advisories/unreviewed/2022/05/GHSA-56qq-4q2h-c244/GHSA-56qq-4q2h-c244.json index 0b176b98aae..7e989368e24 100644 --- a/advisories/unreviewed/2022/05/GHSA-56qq-4q2h-c244/GHSA-56qq-4q2h-c244.json +++ b/advisories/unreviewed/2022/05/GHSA-56qq-4q2h-c244/GHSA-56qq-4q2h-c244.json @@ -7,12 +7,8 @@ "CVE-2019-18375" ], "details": "The ASG and ProxySG management consoles are susceptible to a session hijacking vulnerability. A remote attacker, with access to the appliance management interface, can hijack the session of a currently logged-in user and access the management console.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-57x9-fxwr-cf8p/GHSA-57x9-fxwr-cf8p.json b/advisories/unreviewed/2022/05/GHSA-57x9-fxwr-cf8p/GHSA-57x9-fxwr-cf8p.json index b4343501d35..855001e597c 100644 --- a/advisories/unreviewed/2022/05/GHSA-57x9-fxwr-cf8p/GHSA-57x9-fxwr-cf8p.json +++ b/advisories/unreviewed/2022/05/GHSA-57x9-fxwr-cf8p/GHSA-57x9-fxwr-cf8p.json @@ -7,12 +7,8 @@ "CVE-2020-10625" ], "details": "WebAccess/NMS (versions prior to 3.0.2) allows an unauthenticated remote user to create a new admin account.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-589m-6r98-q925/GHSA-589m-6r98-q925.json b/advisories/unreviewed/2022/05/GHSA-589m-6r98-q925/GHSA-589m-6r98-q925.json index d4ed07759bd..3ba869db7a6 100644 --- a/advisories/unreviewed/2022/05/GHSA-589m-6r98-q925/GHSA-589m-6r98-q925.json +++ b/advisories/unreviewed/2022/05/GHSA-589m-6r98-q925/GHSA-589m-6r98-q925.json @@ -7,12 +7,8 @@ "CVE-2020-10975" ], "details": "GitLab EE/CE 10.8 to 12.9 is leaking metadata and comments on vulnerabilities to unauthorized users on the vulnerability feedback page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-58jq-q8jm-f39c/GHSA-58jq-q8jm-f39c.json b/advisories/unreviewed/2022/05/GHSA-58jq-q8jm-f39c/GHSA-58jq-q8jm-f39c.json index b4f0e66e2ed..92e52b8ebd8 100644 --- a/advisories/unreviewed/2022/05/GHSA-58jq-q8jm-f39c/GHSA-58jq-q8jm-f39c.json +++ b/advisories/unreviewed/2022/05/GHSA-58jq-q8jm-f39c/GHSA-58jq-q8jm-f39c.json @@ -7,12 +7,8 @@ "CVE-2020-11790" ], "details": "NETGEAR R7800 devices before 1.0.2.68 are affected by remote code execution by unauthenticated attackers.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-593j-g5r5-hfx3/GHSA-593j-g5r5-hfx3.json b/advisories/unreviewed/2022/05/GHSA-593j-g5r5-hfx3/GHSA-593j-g5r5-hfx3.json index f4306802a75..462311789af 100644 --- a/advisories/unreviewed/2022/05/GHSA-593j-g5r5-hfx3/GHSA-593j-g5r5-hfx3.json +++ b/advisories/unreviewed/2022/05/GHSA-593j-g5r5-hfx3/GHSA-593j-g5r5-hfx3.json @@ -7,12 +7,8 @@ "CVE-2016-11042" ], "details": "An issue was discovered on Samsung mobile devices with L(5.0/5.1) and M(6.0) software. There is a SIM Lock bypass. The Samsung ID is SVE-2016-5381 (June 2016).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-59w9-w874-mh7v/GHSA-59w9-w874-mh7v.json b/advisories/unreviewed/2022/05/GHSA-59w9-w874-mh7v/GHSA-59w9-w874-mh7v.json index cf5ea74e2e4..6b607d43110 100644 --- a/advisories/unreviewed/2022/05/GHSA-59w9-w874-mh7v/GHSA-59w9-w874-mh7v.json +++ b/advisories/unreviewed/2022/05/GHSA-59w9-w874-mh7v/GHSA-59w9-w874-mh7v.json @@ -7,12 +7,8 @@ "CVE-2020-11630" ], "details": "An issue was discovered in EJBCA before 6.15.2.6 and 7.x before 7.3.1.2. In several sections of code, the verification of serialized objects sent between nodes (connected via the Peers protocol) allows insecure objects to be deserialized.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5cf2-r9x3-pm6p/GHSA-5cf2-r9x3-pm6p.json b/advisories/unreviewed/2022/05/GHSA-5cf2-r9x3-pm6p/GHSA-5cf2-r9x3-pm6p.json index fbcd95f3f61..a04654ac99f 100644 --- a/advisories/unreviewed/2022/05/GHSA-5cf2-r9x3-pm6p/GHSA-5cf2-r9x3-pm6p.json +++ b/advisories/unreviewed/2022/05/GHSA-5cf2-r9x3-pm6p/GHSA-5cf2-r9x3-pm6p.json @@ -7,12 +7,8 @@ "CVE-2017-18689" ], "details": "An issue was discovered on Samsung mobile devices with M(6.0) and N(7.0) (Exynos5433, Exynos7420, or Exynos7870 chipsets) software. An attacker can bypass a ko (aka Kernel Module) signature by modifying the count of kernel modules. The Samsung ID is SVE-2016-7466 (January 2017).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5cqh-cf3j-whp5/GHSA-5cqh-cf3j-whp5.json b/advisories/unreviewed/2022/05/GHSA-5cqh-cf3j-whp5/GHSA-5cqh-cf3j-whp5.json index 4e5087ddbe7..2276bb0c2cc 100644 --- a/advisories/unreviewed/2022/05/GHSA-5cqh-cf3j-whp5/GHSA-5cqh-cf3j-whp5.json +++ b/advisories/unreviewed/2022/05/GHSA-5cqh-cf3j-whp5/GHSA-5cqh-cf3j-whp5.json @@ -7,12 +7,8 @@ "CVE-2020-10623" ], "details": "Multiple vulnerabilities could allow an attacker with low privileges to perform SQL injection on WebAccess/NMS (versions prior to 3.0.2) to gain access to sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5f7j-c36c-7wmc/GHSA-5f7j-c36c-7wmc.json b/advisories/unreviewed/2022/05/GHSA-5f7j-c36c-7wmc/GHSA-5f7j-c36c-7wmc.json index 1f63911a0ab..b2787c83fa3 100644 --- a/advisories/unreviewed/2022/05/GHSA-5f7j-c36c-7wmc/GHSA-5f7j-c36c-7wmc.json +++ b/advisories/unreviewed/2022/05/GHSA-5f7j-c36c-7wmc/GHSA-5f7j-c36c-7wmc.json @@ -7,12 +7,8 @@ "CVE-2020-11602" ], "details": "An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) software. Google Assistant leaks clipboard contents on a locked device. The Samsung ID is SVE-2019-16558 (April 2020).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5g5q-fp24-vv4f/GHSA-5g5q-fp24-vv4f.json b/advisories/unreviewed/2022/05/GHSA-5g5q-fp24-vv4f/GHSA-5g5q-fp24-vv4f.json index 48f21089c23..f703a95f535 100644 --- a/advisories/unreviewed/2022/05/GHSA-5g5q-fp24-vv4f/GHSA-5g5q-fp24-vv4f.json +++ b/advisories/unreviewed/2022/05/GHSA-5g5q-fp24-vv4f/GHSA-5g5q-fp24-vv4f.json @@ -7,12 +7,8 @@ "CVE-2020-0938" ], "details": "A remote code execution vulnerability exists in Microsoft Windows when the Windows Adobe Type Manager Library improperly handles a specially-crafted multi-master font - Adobe Type 1 PostScript format.For all systems except Windows 10, an attacker who successfully exploited the vulnerability could execute code remotely, aka 'Adobe Font Manager Library Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1020.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5g9w-mffc-46fh/GHSA-5g9w-mffc-46fh.json b/advisories/unreviewed/2022/05/GHSA-5g9w-mffc-46fh/GHSA-5g9w-mffc-46fh.json index f58ae4615b3..250fcc34126 100644 --- a/advisories/unreviewed/2022/05/GHSA-5g9w-mffc-46fh/GHSA-5g9w-mffc-46fh.json +++ b/advisories/unreviewed/2022/05/GHSA-5g9w-mffc-46fh/GHSA-5g9w-mffc-46fh.json @@ -7,12 +7,8 @@ "CVE-2020-0943" ], "details": "An authentication bypass vulnerability exists in Microsoft YourPhoneCompanion application for Android, in the way the application processes notifications generated by work profiles.This could allow an unauthenticated attacker to view notifications, aka 'Microsoft YourPhone Application for Android Authentication Bypass Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5gpv-qvxg-fh9v/GHSA-5gpv-qvxg-fh9v.json b/advisories/unreviewed/2022/05/GHSA-5gpv-qvxg-fh9v/GHSA-5gpv-qvxg-fh9v.json index f4db1aba491..f9cfe6e26d5 100644 --- a/advisories/unreviewed/2022/05/GHSA-5gpv-qvxg-fh9v/GHSA-5gpv-qvxg-fh9v.json +++ b/advisories/unreviewed/2022/05/GHSA-5gpv-qvxg-fh9v/GHSA-5gpv-qvxg-fh9v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5h23-684v-cj33/GHSA-5h23-684v-cj33.json b/advisories/unreviewed/2022/05/GHSA-5h23-684v-cj33/GHSA-5h23-684v-cj33.json index d5086656c59..ca93416796b 100644 --- a/advisories/unreviewed/2022/05/GHSA-5h23-684v-cj33/GHSA-5h23-684v-cj33.json +++ b/advisories/unreviewed/2022/05/GHSA-5h23-684v-cj33/GHSA-5h23-684v-cj33.json @@ -7,12 +7,8 @@ "CVE-2020-11771" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.68, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0.0.78, XR500 before 2.3.2.56, and XR700 before 1.0.1.10.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5h5f-c5gc-7x43/GHSA-5h5f-c5gc-7x43.json b/advisories/unreviewed/2022/05/GHSA-5h5f-c5gc-7x43/GHSA-5h5f-c5gc-7x43.json index dd45b2f2bba..f2ff3e99ae8 100644 --- a/advisories/unreviewed/2022/05/GHSA-5h5f-c5gc-7x43/GHSA-5h5f-c5gc-7x43.json +++ b/advisories/unreviewed/2022/05/GHSA-5h5f-c5gc-7x43/GHSA-5h5f-c5gc-7x43.json @@ -7,12 +7,8 @@ "CVE-2020-1049" ], "details": "A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web request to an affected Dynamics server, aka 'Microsoft Dynamics 365 (On-Premise) Cross Site Scripting Vulnerability'. This CVE ID is unique from CVE-2020-1050.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5m3g-3f6j-532p/GHSA-5m3g-3f6j-532p.json b/advisories/unreviewed/2022/05/GHSA-5m3g-3f6j-532p/GHSA-5m3g-3f6j-532p.json index b7e9897249a..53b2f2cb592 100644 --- a/advisories/unreviewed/2022/05/GHSA-5m3g-3f6j-532p/GHSA-5m3g-3f6j-532p.json +++ b/advisories/unreviewed/2022/05/GHSA-5m3g-3f6j-532p/GHSA-5m3g-3f6j-532p.json @@ -7,12 +7,8 @@ "CVE-2018-21070" ], "details": "An issue was discovered on Samsung mobile devices with N(7.x), O(8.0) devices (MSM8998 or SDM845 chipsets) software. An attacker can bypass Secure Boot and obtain root access because of a missing Bootloader integrity check. The Samsung ID is SVE-2018-11552 (May 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5mp8-4qmg-75h8/GHSA-5mp8-4qmg-75h8.json b/advisories/unreviewed/2022/05/GHSA-5mp8-4qmg-75h8/GHSA-5mp8-4qmg-75h8.json index 9829c44d5ff..ff857ed9fd8 100644 --- a/advisories/unreviewed/2022/05/GHSA-5mp8-4qmg-75h8/GHSA-5mp8-4qmg-75h8.json +++ b/advisories/unreviewed/2022/05/GHSA-5mp8-4qmg-75h8/GHSA-5mp8-4qmg-75h8.json @@ -7,12 +7,8 @@ "CVE-2019-20679" ], "details": "NETGEAR MR1100 devices before 12.06.08.00 are affected by lack of access control at the function level.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5mwx-jr2x-3wj7/GHSA-5mwx-jr2x-3wj7.json b/advisories/unreviewed/2022/05/GHSA-5mwx-jr2x-3wj7/GHSA-5mwx-jr2x-3wj7.json index bea143cf387..207607a84a4 100644 --- a/advisories/unreviewed/2022/05/GHSA-5mwx-jr2x-3wj7/GHSA-5mwx-jr2x-3wj7.json +++ b/advisories/unreviewed/2022/05/GHSA-5mwx-jr2x-3wj7/GHSA-5mwx-jr2x-3wj7.json @@ -7,12 +7,8 @@ "CVE-2020-10603" ], "details": "WebAccess/NMS (versions prior to 3.0.2) does not properly sanitize user input and may allow an attacker to inject system commands remotely.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5p88-86c4-vg32/GHSA-5p88-86c4-vg32.json b/advisories/unreviewed/2022/05/GHSA-5p88-86c4-vg32/GHSA-5p88-86c4-vg32.json index b6e62b9311e..9748e268d5f 100644 --- a/advisories/unreviewed/2022/05/GHSA-5p88-86c4-vg32/GHSA-5p88-86c4-vg32.json +++ b/advisories/unreviewed/2022/05/GHSA-5p88-86c4-vg32/GHSA-5p88-86c4-vg32.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5pgv-3r2c-qm96/GHSA-5pgv-3r2c-qm96.json b/advisories/unreviewed/2022/05/GHSA-5pgv-3r2c-qm96/GHSA-5pgv-3r2c-qm96.json index cf3dd5c20c6..45a4681e354 100644 --- a/advisories/unreviewed/2022/05/GHSA-5pgv-3r2c-qm96/GHSA-5pgv-3r2c-qm96.json +++ b/advisories/unreviewed/2022/05/GHSA-5pgv-3r2c-qm96/GHSA-5pgv-3r2c-qm96.json @@ -7,12 +7,8 @@ "CVE-2020-11777" ], "details": "Certain NETGEAR devices are affected by Stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.68, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0.0.78, XR500 before 2.3.2.56, and XR700 before 1.0.1.10.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5pv5-vwqw-425f/GHSA-5pv5-vwqw-425f.json b/advisories/unreviewed/2022/05/GHSA-5pv5-vwqw-425f/GHSA-5pv5-vwqw-425f.json index 1cfc08dd482..c099985cbb7 100644 --- a/advisories/unreviewed/2022/05/GHSA-5pv5-vwqw-425f/GHSA-5pv5-vwqw-425f.json +++ b/advisories/unreviewed/2022/05/GHSA-5pv5-vwqw-425f/GHSA-5pv5-vwqw-425f.json @@ -7,12 +7,8 @@ "CVE-2020-1626" ], "details": "A vulnerability in Juniper Networks Junos OS Evolved may allow an attacker to cause a Denial of Service (DoS) by sending a high rate of specific packets to the device, resulting in a pfemand process crash. The pfemand process is responsible for packet forwarding on the device. By continuously sending the packet flood, an attacker can repeatedly crash the pfemand process causing a sustained Denial of Service. This issue can only be triggered by traffic sent to the device. Transit traffic does not cause this issue. This issue affects all version of Junos OS Evolved prior to 19.1R1-EVO.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5r94-732v-9hm6/GHSA-5r94-732v-9hm6.json b/advisories/unreviewed/2022/05/GHSA-5r94-732v-9hm6/GHSA-5r94-732v-9hm6.json index 225f46d8064..de04620dce7 100644 --- a/advisories/unreviewed/2022/05/GHSA-5r94-732v-9hm6/GHSA-5r94-732v-9hm6.json +++ b/advisories/unreviewed/2022/05/GHSA-5r94-732v-9hm6/GHSA-5r94-732v-9hm6.json @@ -7,12 +7,8 @@ "CVE-2020-2764" ], "details": "Vulnerability in the Java SE product of Oracle Java SE (component: Advanced Management Console). The supported version that is affected is Java Advanced Management Console: 2.16. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Java SE accessible data. Note: This vulnerability can only be exploited by supplying data to APIs in the specified Component without using Untrusted Java Web Start applications or Untrusted Java applets, such as through a web service. CVSS 3.0 Base Score 3.7 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5rc2-w7v5-6rgm/GHSA-5rc2-w7v5-6rgm.json b/advisories/unreviewed/2022/05/GHSA-5rc2-w7v5-6rgm/GHSA-5rc2-w7v5-6rgm.json index f2742634499..35885929402 100644 --- a/advisories/unreviewed/2022/05/GHSA-5rc2-w7v5-6rgm/GHSA-5rc2-w7v5-6rgm.json +++ b/advisories/unreviewed/2022/05/GHSA-5rc2-w7v5-6rgm/GHSA-5rc2-w7v5-6rgm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5rmh-f225-qfjh/GHSA-5rmh-f225-qfjh.json b/advisories/unreviewed/2022/05/GHSA-5rmh-f225-qfjh/GHSA-5rmh-f225-qfjh.json index 1508bb5c9d9..6723b63dfed 100644 --- a/advisories/unreviewed/2022/05/GHSA-5rmh-f225-qfjh/GHSA-5rmh-f225-qfjh.json +++ b/advisories/unreviewed/2022/05/GHSA-5rmh-f225-qfjh/GHSA-5rmh-f225-qfjh.json @@ -7,12 +7,8 @@ "CVE-2020-11561" ], "details": "In NCH Express Invoice 7.25, an authenticated low-privilege user can enter a crafted URL to access higher-privileged functionalities such as the \"Add New Item\" screen.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5vgj-xm2m-mpf5/GHSA-5vgj-xm2m-mpf5.json b/advisories/unreviewed/2022/05/GHSA-5vgj-xm2m-mpf5/GHSA-5vgj-xm2m-mpf5.json index bf09df74456..4450e39a067 100644 --- a/advisories/unreviewed/2022/05/GHSA-5vgj-xm2m-mpf5/GHSA-5vgj-xm2m-mpf5.json +++ b/advisories/unreviewed/2022/05/GHSA-5vgj-xm2m-mpf5/GHSA-5vgj-xm2m-mpf5.json @@ -7,12 +7,8 @@ "CVE-2020-11780" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.68, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0.0.78, XR500 before 2.3.2.56, and XR700 before 1.0.1.10.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5w5x-r596-74gr/GHSA-5w5x-r596-74gr.json b/advisories/unreviewed/2022/05/GHSA-5w5x-r596-74gr/GHSA-5w5x-r596-74gr.json index f607ce7d4ba..1d234537760 100644 --- a/advisories/unreviewed/2022/05/GHSA-5w5x-r596-74gr/GHSA-5w5x-r596-74gr.json +++ b/advisories/unreviewed/2022/05/GHSA-5w5x-r596-74gr/GHSA-5w5x-r596-74gr.json @@ -7,12 +7,8 @@ "CVE-2020-11595" ], "details": "An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an API request and obtain the upload folder path that includes the hostname in a UNC path.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5wwp-3576-jfjc/GHSA-5wwp-3576-jfjc.json b/advisories/unreviewed/2022/05/GHSA-5wwp-3576-jfjc/GHSA-5wwp-3576-jfjc.json index 27736f8a9e1..ccf4b87c211 100644 --- a/advisories/unreviewed/2022/05/GHSA-5wwp-3576-jfjc/GHSA-5wwp-3576-jfjc.json +++ b/advisories/unreviewed/2022/05/GHSA-5wwp-3576-jfjc/GHSA-5wwp-3576-jfjc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-62vp-53x9-5535/GHSA-62vp-53x9-5535.json b/advisories/unreviewed/2022/05/GHSA-62vp-53x9-5535/GHSA-62vp-53x9-5535.json index 4f9dfa75822..b997c8b359e 100644 --- a/advisories/unreviewed/2022/05/GHSA-62vp-53x9-5535/GHSA-62vp-53x9-5535.json +++ b/advisories/unreviewed/2022/05/GHSA-62vp-53x9-5535/GHSA-62vp-53x9-5535.json @@ -7,12 +7,8 @@ "CVE-2020-11714" ], "details": "eten PSG-6528VM 1.1 devices allow XSS via System Contact or System Location.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-634r-888j-vmw8/GHSA-634r-888j-vmw8.json b/advisories/unreviewed/2022/05/GHSA-634r-888j-vmw8/GHSA-634r-888j-vmw8.json index e03c62b2e1a..c1b67c87272 100644 --- a/advisories/unreviewed/2022/05/GHSA-634r-888j-vmw8/GHSA-634r-888j-vmw8.json +++ b/advisories/unreviewed/2022/05/GHSA-634r-888j-vmw8/GHSA-634r-888j-vmw8.json @@ -7,12 +7,8 @@ "CVE-2020-0978" ], "details": "A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft Office SharePoint XSS Vulnerability'. This CVE ID is unique from CVE-2020-0923, CVE-2020-0924, CVE-2020-0925, CVE-2020-0926, CVE-2020-0927, CVE-2020-0930, CVE-2020-0933, CVE-2020-0954, CVE-2020-0973.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6353-474x-4fr8/GHSA-6353-474x-4fr8.json b/advisories/unreviewed/2022/05/GHSA-6353-474x-4fr8/GHSA-6353-474x-4fr8.json index 0f4d3f81f76..369378e4c3e 100644 --- a/advisories/unreviewed/2022/05/GHSA-6353-474x-4fr8/GHSA-6353-474x-4fr8.json +++ b/advisories/unreviewed/2022/05/GHSA-6353-474x-4fr8/GHSA-6353-474x-4fr8.json @@ -7,12 +7,8 @@ "CVE-2019-20653" ], "details": "Certain NETGEAR devices are affected by denial of service. This affects WAC505 before 8.0.6.4 and WAC510 before 8.0.6.4.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-63r7-h42c-9pf4/GHSA-63r7-h42c-9pf4.json b/advisories/unreviewed/2022/05/GHSA-63r7-h42c-9pf4/GHSA-63r7-h42c-9pf4.json index 9d50a8567d5..cb023dfe700 100644 --- a/advisories/unreviewed/2022/05/GHSA-63r7-h42c-9pf4/GHSA-63r7-h42c-9pf4.json +++ b/advisories/unreviewed/2022/05/GHSA-63r7-h42c-9pf4/GHSA-63r7-h42c-9pf4.json @@ -7,12 +7,8 @@ "CVE-2020-6226" ], "details": "SAP Business Objects Business Intelligence Platform (Web Intelligence HTML interface), version 4.2, does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-63wf-3ch2-x4r5/GHSA-63wf-3ch2-x4r5.json b/advisories/unreviewed/2022/05/GHSA-63wf-3ch2-x4r5/GHSA-63wf-3ch2-x4r5.json index cfa1dfc32e7..38a0133761f 100644 --- a/advisories/unreviewed/2022/05/GHSA-63wf-3ch2-x4r5/GHSA-63wf-3ch2-x4r5.json +++ b/advisories/unreviewed/2022/05/GHSA-63wf-3ch2-x4r5/GHSA-63wf-3ch2-x4r5.json @@ -7,12 +7,8 @@ "CVE-2020-1628" ], "details": "Juniper Networks Junos OS uses the 128.0.0.0/2 subnet for internal communications between the RE and PFEs. It was discovered that packets utilizing these IP addresses may egress an EX4300 switch, leaking configuration information such as heartbeats, kernel versions, etc. out to the Internet, leading to an information exposure vulnerability. This issue affects Juniper Networks Junos OS: 14.1X53 versions prior to 14.1X53-D53 on EX4300; 15.1 versions prior to 15.1R7-S6 on EX4300; 15.1X49 versions prior to 15.1X49-D200, 15.1X49-D210 on EX4300; 16.1 versions prior to 16.1R7-S7 on EX4300; 17.1 versions prior to 17.1R2-S11, 17.1R3-S2 on EX4300; 17.2 versions prior to 17.2R3-S3 on EX4300; 17.3 versions prior to 17.3R2-S5, 17.3R3-S7 on EX4300; 17.4 versions prior to 17.4R2-S9, 17.4R3 on EX4300; 18.1 versions prior to 18.1R3-S8 on EX4300; 18.2 versions prior to 18.2R3-S2 on EX4300; 18.3 versions prior to 18.3R2-S3, 18.3R3, 18.3R3-S1 on EX4300; 18.4 versions prior to 18.4R1-S5, 18.4R2-S3, 18.4R3 on EX4300; 19.1 versions prior to 19.1R1-S4, 19.1R2 on EX4300; 19.2 versions prior to 19.2R1-S4, 19.2R2 on EX4300; 19.3 versions prior to 19.3R1-S1, 19.3R2 on EX4300.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6428-3gjw-r4ph/GHSA-6428-3gjw-r4ph.json b/advisories/unreviewed/2022/05/GHSA-6428-3gjw-r4ph/GHSA-6428-3gjw-r4ph.json index 70b58e468f1..9438130f288 100644 --- a/advisories/unreviewed/2022/05/GHSA-6428-3gjw-r4ph/GHSA-6428-3gjw-r4ph.json +++ b/advisories/unreviewed/2022/05/GHSA-6428-3gjw-r4ph/GHSA-6428-3gjw-r4ph.json @@ -7,12 +7,8 @@ "CVE-2020-6230" ], "details": "SAP OrientDB, version 3.0, allows an authenticated attacker with script execute/write permissions to inject code that can be executed by the application and lead to Code Injection. An attacker could thereby control the behavior of the application.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-64p8-mq9h-xg88/GHSA-64p8-mq9h-xg88.json b/advisories/unreviewed/2022/05/GHSA-64p8-mq9h-xg88/GHSA-64p8-mq9h-xg88.json index f5b53008a4c..c092da4a119 100644 --- a/advisories/unreviewed/2022/05/GHSA-64p8-mq9h-xg88/GHSA-64p8-mq9h-xg88.json +++ b/advisories/unreviewed/2022/05/GHSA-64p8-mq9h-xg88/GHSA-64p8-mq9h-xg88.json @@ -7,12 +7,8 @@ "CVE-2020-2766" ], "details": "Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Console). Supported versions that are affected are 10.3.6.0.0, 12.1.3.0.0, 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle WebLogic Server accessible data. CVSS 3.0 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6558-6jwp-r9q4/GHSA-6558-6jwp-r9q4.json b/advisories/unreviewed/2022/05/GHSA-6558-6jwp-r9q4/GHSA-6558-6jwp-r9q4.json index 4050da8a47f..8cf07e78e10 100644 --- a/advisories/unreviewed/2022/05/GHSA-6558-6jwp-r9q4/GHSA-6558-6jwp-r9q4.json +++ b/advisories/unreviewed/2022/05/GHSA-6558-6jwp-r9q4/GHSA-6558-6jwp-r9q4.json @@ -7,12 +7,8 @@ "CVE-2019-13916" ], "details": "An issue was discovered in Cypress (formerly Broadcom) WICED Studio 6.2 CYW20735B1 and CYW20819A1. As a Bluetooth Low Energy (BLE) packet is received, it is copied into a Heap (ThreadX Block) buffer. The buffer allocated in dhmulp_getRxBuffer is four bytes too small to hold the maximum of 255 bytes plus headers. It is possible to corrupt a pointer in the linked list holding the free buffers of the g_mm_BLEDeviceToHostPool Block pool. This pointer can be fully controlled by overflowing with 3 bytes of packet data and the first byte of the packet CRC checksum. The checksum can be freely chosen by adapting the packet data accordingly. An attacker might be able to allocate the overwritten address as a receive buffer resulting in a write-what-where condition. This is fixed in BT SDK2.4 and BT SDK2.45.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6568-fq9q-742r/GHSA-6568-fq9q-742r.json b/advisories/unreviewed/2022/05/GHSA-6568-fq9q-742r/GHSA-6568-fq9q-742r.json index 89539fa3c24..06ef35ef154 100644 --- a/advisories/unreviewed/2022/05/GHSA-6568-fq9q-742r/GHSA-6568-fq9q-742r.json +++ b/advisories/unreviewed/2022/05/GHSA-6568-fq9q-742r/GHSA-6568-fq9q-742r.json @@ -7,12 +7,8 @@ "CVE-2018-21060" ], "details": "An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. There is a Keyboard learned words leak in the locked state via the emergency contact picker. The Samsung IDs are SVE-2018-11989, SVE-2018-11990 (September 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-65jf-2vcm-9v6q/GHSA-65jf-2vcm-9v6q.json b/advisories/unreviewed/2022/05/GHSA-65jf-2vcm-9v6q/GHSA-65jf-2vcm-9v6q.json index e272b2b8629..a2303b1380d 100644 --- a/advisories/unreviewed/2022/05/GHSA-65jf-2vcm-9v6q/GHSA-65jf-2vcm-9v6q.json +++ b/advisories/unreviewed/2022/05/GHSA-65jf-2vcm-9v6q/GHSA-65jf-2vcm-9v6q.json @@ -7,12 +7,8 @@ "CVE-2020-5736" ], "details": "Amcrest cameras and NVR are vulnerable to a null pointer dereference over port 37777. An authenticated remote attacker can abuse this issue to crash the device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-66f2-2g36-5v6c/GHSA-66f2-2g36-5v6c.json b/advisories/unreviewed/2022/05/GHSA-66f2-2g36-5v6c/GHSA-66f2-2g36-5v6c.json index 0e727af6ac1..a83f03973bc 100644 --- a/advisories/unreviewed/2022/05/GHSA-66f2-2g36-5v6c/GHSA-66f2-2g36-5v6c.json +++ b/advisories/unreviewed/2022/05/GHSA-66f2-2g36-5v6c/GHSA-66f2-2g36-5v6c.json @@ -7,12 +7,8 @@ "CVE-2020-11594" ], "details": "An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an API request that causes a stack error to be shown providing the full file path.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-672q-2qcf-wwfp/GHSA-672q-2qcf-wwfp.json b/advisories/unreviewed/2022/05/GHSA-672q-2qcf-wwfp/GHSA-672q-2qcf-wwfp.json index add09115811..a96ceaa6626 100644 --- a/advisories/unreviewed/2022/05/GHSA-672q-2qcf-wwfp/GHSA-672q-2qcf-wwfp.json +++ b/advisories/unreviewed/2022/05/GHSA-672q-2qcf-wwfp/GHSA-672q-2qcf-wwfp.json @@ -7,12 +7,8 @@ "CVE-2020-10631" ], "details": "An attacker could use a specially crafted URL to delete or read files outside the WebAccess/NMS's (versions prior to 3.0.2) control.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6769-8f7x-qpm9/GHSA-6769-8f7x-qpm9.json b/advisories/unreviewed/2022/05/GHSA-6769-8f7x-qpm9/GHSA-6769-8f7x-qpm9.json index a603dbdb4ad..fc5825c1b41 100644 --- a/advisories/unreviewed/2022/05/GHSA-6769-8f7x-qpm9/GHSA-6769-8f7x-qpm9.json +++ b/advisories/unreviewed/2022/05/GHSA-6769-8f7x-qpm9/GHSA-6769-8f7x-qpm9.json @@ -7,12 +7,8 @@ "CVE-2018-21078" ], "details": "An issue was discovered on Samsung mobile devices with M(6.0), N(7.x), and O(8.0) software. The Contacts application allows attackers to originate video calls because SS (Supplementary Service) and USSD (Unstructured Supplementary Service Data) codes are improperly secured. The Samsung ID is SVE-2018-11469 (April 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-682r-wx9c-52cr/GHSA-682r-wx9c-52cr.json b/advisories/unreviewed/2022/05/GHSA-682r-wx9c-52cr/GHSA-682r-wx9c-52cr.json index 6f5e4d9defa..766efd554b0 100644 --- a/advisories/unreviewed/2022/05/GHSA-682r-wx9c-52cr/GHSA-682r-wx9c-52cr.json +++ b/advisories/unreviewed/2022/05/GHSA-682r-wx9c-52cr/GHSA-682r-wx9c-52cr.json @@ -7,12 +7,8 @@ "CVE-2019-20644" ], "details": "NETGEAR RAX40 devices before 1.0.3.62 are affected by stored XSS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-68hw-jhqv-grv6/GHSA-68hw-jhqv-grv6.json b/advisories/unreviewed/2022/05/GHSA-68hw-jhqv-grv6/GHSA-68hw-jhqv-grv6.json index f9fac9411e6..01fd85a5961 100644 --- a/advisories/unreviewed/2022/05/GHSA-68hw-jhqv-grv6/GHSA-68hw-jhqv-grv6.json +++ b/advisories/unreviewed/2022/05/GHSA-68hw-jhqv-grv6/GHSA-68hw-jhqv-grv6.json @@ -7,12 +7,8 @@ "CVE-2017-18684" ], "details": "An issue was discovered on Samsung mobile devices with L(5.0/5.1) and M(6.0) software. SVoice allows provider seizure via an application that uses a custom provider. The Samsung ID is SVE-2016-6942 (February 2017).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-69gh-c799-mv27/GHSA-69gh-c799-mv27.json b/advisories/unreviewed/2022/05/GHSA-69gh-c799-mv27/GHSA-69gh-c799-mv27.json index 658adcf5be0..a3bdd461594 100644 --- a/advisories/unreviewed/2022/05/GHSA-69gh-c799-mv27/GHSA-69gh-c799-mv27.json +++ b/advisories/unreviewed/2022/05/GHSA-69gh-c799-mv27/GHSA-69gh-c799-mv27.json @@ -7,12 +7,8 @@ "CVE-2017-18656" ], "details": "An issue was discovered on Samsung mobile devices with M(6.0) and N(7.x) software. There is a buffer over-read in a trustlet. The Samsung ID is SVE-2017-8890 (August 2017).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6ff4-8qpp-q7q3/GHSA-6ff4-8qpp-q7q3.json b/advisories/unreviewed/2022/05/GHSA-6ff4-8qpp-q7q3/GHSA-6ff4-8qpp-q7q3.json index e5fd77b9a2f..a1778d85a12 100644 --- a/advisories/unreviewed/2022/05/GHSA-6ff4-8qpp-q7q3/GHSA-6ff4-8qpp-q7q3.json +++ b/advisories/unreviewed/2022/05/GHSA-6ff4-8qpp-q7q3/GHSA-6ff4-8qpp-q7q3.json @@ -7,12 +7,8 @@ "CVE-2020-0944" ], "details": "An elevation of privilege vulnerability exists when Connected User Experiences and Telemetry Service improperly handles file operations, aka 'Connected User Experiences and Telemetry Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0942, CVE-2020-1029.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6fgx-gv8w-pgfv/GHSA-6fgx-gv8w-pgfv.json b/advisories/unreviewed/2022/05/GHSA-6fgx-gv8w-pgfv/GHSA-6fgx-gv8w-pgfv.json index f0dc7fe217c..0b9455a5d10 100644 --- a/advisories/unreviewed/2022/05/GHSA-6fgx-gv8w-pgfv/GHSA-6fgx-gv8w-pgfv.json +++ b/advisories/unreviewed/2022/05/GHSA-6fgx-gv8w-pgfv/GHSA-6fgx-gv8w-pgfv.json @@ -7,12 +7,8 @@ "CVE-2020-0996" ], "details": "An elevation of privilege vulnerability exists when the Windows Update Stack fails to properly handle objects in memory, aka 'Windows Update Stack Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0985.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6gq6-x7pv-3ggr/GHSA-6gq6-x7pv-3ggr.json b/advisories/unreviewed/2022/05/GHSA-6gq6-x7pv-3ggr/GHSA-6gq6-x7pv-3ggr.json index 467f0691d48..7b2cf757843 100644 --- a/advisories/unreviewed/2022/05/GHSA-6gq6-x7pv-3ggr/GHSA-6gq6-x7pv-3ggr.json +++ b/advisories/unreviewed/2022/05/GHSA-6gq6-x7pv-3ggr/GHSA-6gq6-x7pv-3ggr.json @@ -7,12 +7,8 @@ "CVE-2019-1866" ], "details": "Cisco Webex Business Suite before 39.1.0 contains a vulnerability that could allow an unauthenticated, remote attacker to affect the integrity of the application. The vulnerability is due to improper validation of host header values. An attacker with a privileged network position, either a man-in-the-middle or by intercepting wireless network traffic, could exploit this vulnerability to manipulate header values sent by a client to the affected application. The attacker could cause the application to use input from the header to redirect a user from the Cisco Webex Meetings Online site to an arbitrary site of the attacker's choosing.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6gqx-rvv7-594p/GHSA-6gqx-rvv7-594p.json b/advisories/unreviewed/2022/05/GHSA-6gqx-rvv7-594p/GHSA-6gqx-rvv7-594p.json index 4524cd9e5cf..5bcc81386bc 100644 --- a/advisories/unreviewed/2022/05/GHSA-6gqx-rvv7-594p/GHSA-6gqx-rvv7-594p.json +++ b/advisories/unreviewed/2022/05/GHSA-6gqx-rvv7-594p/GHSA-6gqx-rvv7-594p.json @@ -7,12 +7,8 @@ "CVE-2020-0930" ], "details": "A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft Office SharePoint XSS Vulnerability'. This CVE ID is unique from CVE-2020-0923, CVE-2020-0924, CVE-2020-0925, CVE-2020-0926, CVE-2020-0927, CVE-2020-0933, CVE-2020-0954, CVE-2020-0973, CVE-2020-0978.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6h4v-mxh6-hm7p/GHSA-6h4v-mxh6-hm7p.json b/advisories/unreviewed/2022/05/GHSA-6h4v-mxh6-hm7p/GHSA-6h4v-mxh6-hm7p.json index 191836e4cae..2ba77296ed8 100644 --- a/advisories/unreviewed/2022/05/GHSA-6h4v-mxh6-hm7p/GHSA-6h4v-mxh6-hm7p.json +++ b/advisories/unreviewed/2022/05/GHSA-6h4v-mxh6-hm7p/GHSA-6h4v-mxh6-hm7p.json @@ -7,12 +7,8 @@ "CVE-2020-2553" ], "details": "Vulnerability in the Oracle Knowledge product of Oracle Knowledge (component: Information Manager Console). Supported versions that are affected are 8.6.0-8.6.3. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Knowledge. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Knowledge accessible data as well as unauthorized read access to a subset of Oracle Knowledge accessible data. CVSS 3.0 Base Score 4.8 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6h67-xpj8-pjh2/GHSA-6h67-xpj8-pjh2.json b/advisories/unreviewed/2022/05/GHSA-6h67-xpj8-pjh2/GHSA-6h67-xpj8-pjh2.json index ddddfde6957..79360d57451 100644 --- a/advisories/unreviewed/2022/05/GHSA-6h67-xpj8-pjh2/GHSA-6h67-xpj8-pjh2.json +++ b/advisories/unreviewed/2022/05/GHSA-6h67-xpj8-pjh2/GHSA-6h67-xpj8-pjh2.json @@ -7,12 +7,8 @@ "CVE-2020-8961" ], "details": "An issue was discovered in Avira Free-Antivirus before 15.0.2004.1825. The Self-Protection feature does not prohibit a write operation from an external process. Thus, code injection can be used to turn off this feature. After that, one can construct an event that will modify a file at a specific location, and pass this event to the driver, thereby defeating the anti-virus functionality.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6j2j-7w7p-c568/GHSA-6j2j-7w7p-c568.json b/advisories/unreviewed/2022/05/GHSA-6j2j-7w7p-c568/GHSA-6j2j-7w7p-c568.json index 968736b3898..69c9ded176f 100644 --- a/advisories/unreviewed/2022/05/GHSA-6j2j-7w7p-c568/GHSA-6j2j-7w7p-c568.json +++ b/advisories/unreviewed/2022/05/GHSA-6j2j-7w7p-c568/GHSA-6j2j-7w7p-c568.json @@ -7,12 +7,8 @@ "CVE-2020-11779" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.68, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0.0.78, XR500 before 2.3.2.56, and XR700 before 1.0.1.10.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6jv4-pjpp-r9ww/GHSA-6jv4-pjpp-r9ww.json b/advisories/unreviewed/2022/05/GHSA-6jv4-pjpp-r9ww/GHSA-6jv4-pjpp-r9ww.json index b3901a11e87..cd9314f5936 100644 --- a/advisories/unreviewed/2022/05/GHSA-6jv4-pjpp-r9ww/GHSA-6jv4-pjpp-r9ww.json +++ b/advisories/unreviewed/2022/05/GHSA-6jv4-pjpp-r9ww/GHSA-6jv4-pjpp-r9ww.json @@ -7,12 +7,8 @@ "CVE-2018-21068" ], "details": "An issue was discovered on Samsung mobile devices with O(8.0) software. Execution of an application in a locked Secure Folder can occur without a password via a split screen. The Samsung ID is SVE-2018-11669 (July 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6p3v-7x9x-66jr/GHSA-6p3v-7x9x-66jr.json b/advisories/unreviewed/2022/05/GHSA-6p3v-7x9x-66jr/GHSA-6p3v-7x9x-66jr.json index 92ccce00415..cf2c49b2160 100644 --- a/advisories/unreviewed/2022/05/GHSA-6p3v-7x9x-66jr/GHSA-6p3v-7x9x-66jr.json +++ b/advisories/unreviewed/2022/05/GHSA-6p3v-7x9x-66jr/GHSA-6p3v-7x9x-66jr.json @@ -7,12 +7,8 @@ "CVE-2020-5739" ], "details": "Grandstream GXP1600 series firmware 1.0.4.152 and below is vulnerable to authenticated remote command execution when an attacker adds an OpenVPN up script to the phone's VPN settings via the \"Additional Settings\" field in the web interface. When the VPN's connection is established, the user defined script is executed with root privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6p49-prvx-ch95/GHSA-6p49-prvx-ch95.json b/advisories/unreviewed/2022/05/GHSA-6p49-prvx-ch95/GHSA-6p49-prvx-ch95.json index f19f5edaa21..115d2a1abd5 100644 --- a/advisories/unreviewed/2022/05/GHSA-6p49-prvx-ch95/GHSA-6p49-prvx-ch95.json +++ b/advisories/unreviewed/2022/05/GHSA-6p49-prvx-ch95/GHSA-6p49-prvx-ch95.json @@ -7,12 +7,8 @@ "CVE-2020-1895" ], "details": "A large heap overflow could occur in Instagram for Android when attempting to upload an image with specially crafted dimensions. This affects versions prior to 128.0.0.26.128.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6q27-gq7c-j728/GHSA-6q27-gq7c-j728.json b/advisories/unreviewed/2022/05/GHSA-6q27-gq7c-j728/GHSA-6q27-gq7c-j728.json index acdfde92ab5..b3d2aa5dbff 100644 --- a/advisories/unreviewed/2022/05/GHSA-6q27-gq7c-j728/GHSA-6q27-gq7c-j728.json +++ b/advisories/unreviewed/2022/05/GHSA-6q27-gq7c-j728/GHSA-6q27-gq7c-j728.json @@ -7,12 +7,8 @@ "CVE-2020-4252" ], "details": "IBM DOORS Next Generation (DNG/RRC) 6.0.2. 6.0.6, and 6.0.61 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 175490.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6qmf-rrfx-r996/GHSA-6qmf-rrfx-r996.json b/advisories/unreviewed/2022/05/GHSA-6qmf-rrfx-r996/GHSA-6qmf-rrfx-r996.json index 4ceafc85973..b678f819786 100644 --- a/advisories/unreviewed/2022/05/GHSA-6qmf-rrfx-r996/GHSA-6qmf-rrfx-r996.json +++ b/advisories/unreviewed/2022/05/GHSA-6qmf-rrfx-r996/GHSA-6qmf-rrfx-r996.json @@ -7,12 +7,8 @@ "CVE-2020-11789" ], "details": "Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects R6400v2 before 1.0.4.84, R6700 before 1.0.2.8, R6700v3 before 1.0.4.84, R6900 before 1.0.2.8, and R7900 before 1.0.3.10.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6r48-278j-9xh4/GHSA-6r48-278j-9xh4.json b/advisories/unreviewed/2022/05/GHSA-6r48-278j-9xh4/GHSA-6r48-278j-9xh4.json index f6955a02e73..5ebf4333c7c 100644 --- a/advisories/unreviewed/2022/05/GHSA-6r48-278j-9xh4/GHSA-6r48-278j-9xh4.json +++ b/advisories/unreviewed/2022/05/GHSA-6r48-278j-9xh4/GHSA-6r48-278j-9xh4.json @@ -7,12 +7,8 @@ "CVE-2020-1008" ], "details": "A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0889, CVE-2020-0953, CVE-2020-0959, CVE-2020-0960, CVE-2020-0988, CVE-2020-0992, CVE-2020-0994, CVE-2020-0995, CVE-2020-0999.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6r88-6c47-m32r/GHSA-6r88-6c47-m32r.json b/advisories/unreviewed/2022/05/GHSA-6r88-6c47-m32r/GHSA-6r88-6c47-m32r.json index e20662ca3b8..7ea283e1e46 100644 --- a/advisories/unreviewed/2022/05/GHSA-6r88-6c47-m32r/GHSA-6r88-6c47-m32r.json +++ b/advisories/unreviewed/2022/05/GHSA-6r88-6c47-m32r/GHSA-6r88-6c47-m32r.json @@ -7,12 +7,8 @@ "CVE-2020-1985" ], "details": "Incorrect Default Permissions on C:\\Programdata\\Secdo\\Logs folder in Secdo allows local authenticated users to overwrite system files and gain escalated privileges. This issue affects all versions Secdo for Windows.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6rch-jwj8-2v8f/GHSA-6rch-jwj8-2v8f.json b/advisories/unreviewed/2022/05/GHSA-6rch-jwj8-2v8f/GHSA-6rch-jwj8-2v8f.json index 8435e42bbeb..70d65094147 100644 --- a/advisories/unreviewed/2022/05/GHSA-6rch-jwj8-2v8f/GHSA-6rch-jwj8-2v8f.json +++ b/advisories/unreviewed/2022/05/GHSA-6rch-jwj8-2v8f/GHSA-6rch-jwj8-2v8f.json @@ -7,12 +7,8 @@ "CVE-2020-2733" ], "details": "Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Monitoring and Diagnostics). The supported version that is affected is 9.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise JD Edwards EnterpriseOne Tools. Successful attacks of this vulnerability can result in takeover of JD Edwards EnterpriseOne Tools. CVSS 3.0 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6rh3-m266-5m77/GHSA-6rh3-m266-5m77.json b/advisories/unreviewed/2022/05/GHSA-6rh3-m266-5m77/GHSA-6rh3-m266-5m77.json index 8b06885cac7..3a145285c40 100644 --- a/advisories/unreviewed/2022/05/GHSA-6rh3-m266-5m77/GHSA-6rh3-m266-5m77.json +++ b/advisories/unreviewed/2022/05/GHSA-6rh3-m266-5m77/GHSA-6rh3-m266-5m77.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6rj9-p8fm-j3vm/GHSA-6rj9-p8fm-j3vm.json b/advisories/unreviewed/2022/05/GHSA-6rj9-p8fm-j3vm/GHSA-6rj9-p8fm-j3vm.json index e3a8c4d748f..6a25de419a3 100644 --- a/advisories/unreviewed/2022/05/GHSA-6rj9-p8fm-j3vm/GHSA-6rj9-p8fm-j3vm.json +++ b/advisories/unreviewed/2022/05/GHSA-6rj9-p8fm-j3vm/GHSA-6rj9-p8fm-j3vm.json @@ -7,12 +7,8 @@ "CVE-2020-11781" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.68, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0.0.78, RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, RBK50 before 2.3.5.30, XR500 before 2.3.2.56, and XR700 before 1.0.1.10.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6v82-qq9q-vcc9/GHSA-6v82-qq9q-vcc9.json b/advisories/unreviewed/2022/05/GHSA-6v82-qq9q-vcc9/GHSA-6v82-qq9q-vcc9.json index be562489bb8..da094d836d1 100644 --- a/advisories/unreviewed/2022/05/GHSA-6v82-qq9q-vcc9/GHSA-6v82-qq9q-vcc9.json +++ b/advisories/unreviewed/2022/05/GHSA-6v82-qq9q-vcc9/GHSA-6v82-qq9q-vcc9.json @@ -7,12 +7,8 @@ "CVE-2020-4282" ], "details": "IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, 1.0.2, 1.0.3, 1.0.4, and 1.0.5 could allow an authenticated user to perform unauthorized actions by bypassing illegal character restrictions. X-Force ID: 176205.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6wrg-vxvm-8pr3/GHSA-6wrg-vxvm-8pr3.json b/advisories/unreviewed/2022/05/GHSA-6wrg-vxvm-8pr3/GHSA-6wrg-vxvm-8pr3.json index 769eab35f3e..0bfa4f659fb 100644 --- a/advisories/unreviewed/2022/05/GHSA-6wrg-vxvm-8pr3/GHSA-6wrg-vxvm-8pr3.json +++ b/advisories/unreviewed/2022/05/GHSA-6wrg-vxvm-8pr3/GHSA-6wrg-vxvm-8pr3.json @@ -7,12 +7,8 @@ "CVE-2020-10979" ], "details": "GitLab EE/CE 11.10 to 12.9 is leaking information on restricted CI pipelines metrics to unauthorized users.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6x5p-8926-fhvm/GHSA-6x5p-8926-fhvm.json b/advisories/unreviewed/2022/05/GHSA-6x5p-8926-fhvm/GHSA-6x5p-8926-fhvm.json index 8e7155447ce..053362e777f 100644 --- a/advisories/unreviewed/2022/05/GHSA-6x5p-8926-fhvm/GHSA-6x5p-8926-fhvm.json +++ b/advisories/unreviewed/2022/05/GHSA-6x5p-8926-fhvm/GHSA-6x5p-8926-fhvm.json @@ -7,12 +7,8 @@ "CVE-2017-18648" ], "details": "An issue was discovered on Samsung mobile devices with KK(4.4.x), L(5.x), M(6.x), and N(7.x) software. Arbitrary file read/write operations can occur in the locked state via a crafted MTP command. The Samsung ID is SVE-2017-10086 (November 2017).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7225-46m6-6gr2/GHSA-7225-46m6-6gr2.json b/advisories/unreviewed/2022/05/GHSA-7225-46m6-6gr2/GHSA-7225-46m6-6gr2.json index b81a0593cfc..bb0dda546c0 100644 --- a/advisories/unreviewed/2022/05/GHSA-7225-46m6-6gr2/GHSA-7225-46m6-6gr2.json +++ b/advisories/unreviewed/2022/05/GHSA-7225-46m6-6gr2/GHSA-7225-46m6-6gr2.json @@ -7,12 +7,8 @@ "CVE-2020-10507" ], "details": "The School Manage System, developed by ALLE INFORMATION CO., LTD., contains a vulnerability of misconfigured file upload filter. Attackers can upload any format of file to the system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-74vr-xxv2-w25v/GHSA-74vr-xxv2-w25v.json b/advisories/unreviewed/2022/05/GHSA-74vr-xxv2-w25v/GHSA-74vr-xxv2-w25v.json index 7e427edb7d9..0541f37b9ec 100644 --- a/advisories/unreviewed/2022/05/GHSA-74vr-xxv2-w25v/GHSA-74vr-xxv2-w25v.json +++ b/advisories/unreviewed/2022/05/GHSA-74vr-xxv2-w25v/GHSA-74vr-xxv2-w25v.json @@ -7,12 +7,8 @@ "CVE-2020-11516" ], "details": "Stored XSS in the Contact Form 7 Datepicker plugin through 2.6.0 for WordPress allows authenticated attackers with minimal permissions to save arbitrary JavaScript to the plugin's settings via the unprotected wp_ajax_cf7dp_save_settings AJAX action and the ui_theme parameter. If an administrator creates or modifies a contact form, the JavaScript will be executed in their browser, which can then be used to create new administrative users or perform other actions using the administrator's session.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-74x3-ccfh-cj7f/GHSA-74x3-ccfh-cj7f.json b/advisories/unreviewed/2022/05/GHSA-74x3-ccfh-cj7f/GHSA-74x3-ccfh-cj7f.json index 51f5b793a35..97d4e66121c 100644 --- a/advisories/unreviewed/2022/05/GHSA-74x3-ccfh-cj7f/GHSA-74x3-ccfh-cj7f.json +++ b/advisories/unreviewed/2022/05/GHSA-74x3-ccfh-cj7f/GHSA-74x3-ccfh-cj7f.json @@ -7,12 +7,8 @@ "CVE-2020-11591" ], "details": "An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an API request and obtain the full application path along with the customer name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-75p3-2pw6-c8rw/GHSA-75p3-2pw6-c8rw.json b/advisories/unreviewed/2022/05/GHSA-75p3-2pw6-c8rw/GHSA-75p3-2pw6-c8rw.json index 44a758dabb1..3f03fd8ce14 100644 --- a/advisories/unreviewed/2022/05/GHSA-75p3-2pw6-c8rw/GHSA-75p3-2pw6-c8rw.json +++ b/advisories/unreviewed/2022/05/GHSA-75p3-2pw6-c8rw/GHSA-75p3-2pw6-c8rw.json @@ -7,12 +7,8 @@ "CVE-2020-0547" ], "details": "Incorrect default permissions in the installer for Intel(R) Data Migration Software versions 3.3 and earlier may allow an authenticated user to potentially enable escalation of privilege via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-76hp-q38p-jw8r/GHSA-76hp-q38p-jw8r.json b/advisories/unreviewed/2022/05/GHSA-76hp-q38p-jw8r/GHSA-76hp-q38p-jw8r.json index d2ebc12d939..ff492cac2b6 100644 --- a/advisories/unreviewed/2022/05/GHSA-76hp-q38p-jw8r/GHSA-76hp-q38p-jw8r.json +++ b/advisories/unreviewed/2022/05/GHSA-76hp-q38p-jw8r/GHSA-76hp-q38p-jw8r.json @@ -7,12 +7,8 @@ "CVE-2020-7800" ], "details": "The Synergy Systems & Solutions (SSS) HUSKY RTU 6049-E70, with firmware Versions 5.0 and prior, has an Improper Check for Unusual or Exceptional Conditions (CWE-754) vulnerability. The affected product is vulnerable to specially crafted TCP packets, which can cause the device to shut down or reboot and lose configuration settings. This is a different issue than CVE-2019-16879, CVE-2019-20045, CVE-2019-20046, CVE-2020-7801, and CVE-2020-7802.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-76wh-gcwf-285w/GHSA-76wh-gcwf-285w.json b/advisories/unreviewed/2022/05/GHSA-76wh-gcwf-285w/GHSA-76wh-gcwf-285w.json index ce66c662cc1..7d252a69ca7 100644 --- a/advisories/unreviewed/2022/05/GHSA-76wh-gcwf-285w/GHSA-76wh-gcwf-285w.json +++ b/advisories/unreviewed/2022/05/GHSA-76wh-gcwf-285w/GHSA-76wh-gcwf-285w.json @@ -7,12 +7,8 @@ "CVE-2020-11600" ], "details": "An issue was discovered on Samsung mobile devices with Q(10.0) software. There is arbitrary code execution in the Fingerprint Trustlet via a memory overwrite. The Samsung IDs are SVE-2019-16587, SVE-2019-16588, SVE-2019-16589 (April 2020).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7794-m8w6-jf63/GHSA-7794-m8w6-jf63.json b/advisories/unreviewed/2022/05/GHSA-7794-m8w6-jf63/GHSA-7794-m8w6-jf63.json index ce838b4e902..6751e5dc2da 100644 --- a/advisories/unreviewed/2022/05/GHSA-7794-m8w6-jf63/GHSA-7794-m8w6-jf63.json +++ b/advisories/unreviewed/2022/05/GHSA-7794-m8w6-jf63/GHSA-7794-m8w6-jf63.json @@ -7,12 +7,8 @@ "CVE-2020-0984" ], "details": "An elevation of privilege vulnerability exists when the Microsoft AutoUpdate (MAU) application for Mac improperly validates updates before executing them, aka 'Microsoft (MAU) Office Elevation of Privilege Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7952-m67q-5m97/GHSA-7952-m67q-5m97.json b/advisories/unreviewed/2022/05/GHSA-7952-m67q-5m97/GHSA-7952-m67q-5m97.json index d587c038593..b56fe81b1cf 100644 --- a/advisories/unreviewed/2022/05/GHSA-7952-m67q-5m97/GHSA-7952-m67q-5m97.json +++ b/advisories/unreviewed/2022/05/GHSA-7952-m67q-5m97/GHSA-7952-m67q-5m97.json @@ -7,12 +7,8 @@ "CVE-2020-11464" ], "details": "An issue was discovered in Deskpro before 2019.8.0. The /api/people endpoint failed to properly validate a user's privilege, allowing an attacker to retrieve sensitive information about all users registered on the system. This includes their full name, privilege, email address, phone number, etc.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-79cj-pgw7-7783/GHSA-79cj-pgw7-7783.json b/advisories/unreviewed/2022/05/GHSA-79cj-pgw7-7783/GHSA-79cj-pgw7-7783.json index 1002bbd16f1..e91823e42c3 100644 --- a/advisories/unreviewed/2022/05/GHSA-79cj-pgw7-7783/GHSA-79cj-pgw7-7783.json +++ b/advisories/unreviewed/2022/05/GHSA-79cj-pgw7-7783/GHSA-79cj-pgw7-7783.json @@ -7,12 +7,8 @@ "CVE-2015-5524" ], "details": "An issue was discovered on Samsung mobile devices with KK(4.4) and later software through 2015-05-13. There is a buffer overflow in datablock_write because the amount of received data is not validated. The Samsung ID is SVE-2015-4018 (December 2015).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7c3v-rc7q-5qqq/GHSA-7c3v-rc7q-5qqq.json b/advisories/unreviewed/2022/05/GHSA-7c3v-rc7q-5qqq/GHSA-7c3v-rc7q-5qqq.json index 1ad659919da..59cbc76c7be 100644 --- a/advisories/unreviewed/2022/05/GHSA-7c3v-rc7q-5qqq/GHSA-7c3v-rc7q-5qqq.json +++ b/advisories/unreviewed/2022/05/GHSA-7c3v-rc7q-5qqq/GHSA-7c3v-rc7q-5qqq.json @@ -7,12 +7,8 @@ "CVE-2020-1802" ], "details": "There is an insufficient integrity validation vulnerability in several products. The device does not sufficiently validate the integrity of certain file in certain loading processes, successful exploit could allow the attacker to load a crafted file to the device through USB.Affected product versions include:OSCA-550 versions 1.0.1.23(SP2);OSCA-550A versions 1.0.1.23(SP2);OSCA-550AX versions 1.0.1.23(SP2);OSCA-550X versions 1.0.1.23(SP2).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7cjr-m6ff-qgvh/GHSA-7cjr-m6ff-qgvh.json b/advisories/unreviewed/2022/05/GHSA-7cjr-m6ff-qgvh/GHSA-7cjr-m6ff-qgvh.json index 63c2eb5c740..aca9b4b314d 100644 --- a/advisories/unreviewed/2022/05/GHSA-7cjr-m6ff-qgvh/GHSA-7cjr-m6ff-qgvh.json +++ b/advisories/unreviewed/2022/05/GHSA-7cjr-m6ff-qgvh/GHSA-7cjr-m6ff-qgvh.json @@ -7,12 +7,8 @@ "CVE-2020-11597" ], "details": "An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an HTTP POST request and inject SQL statements in the user context of the db owner.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7f37-5g94-gf9f/GHSA-7f37-5g94-gf9f.json b/advisories/unreviewed/2022/05/GHSA-7f37-5g94-gf9f/GHSA-7f37-5g94-gf9f.json index 872a030a8a6..7ca2dfa5b2a 100644 --- a/advisories/unreviewed/2022/05/GHSA-7f37-5g94-gf9f/GHSA-7f37-5g94-gf9f.json +++ b/advisories/unreviewed/2022/05/GHSA-7f37-5g94-gf9f/GHSA-7f37-5g94-gf9f.json @@ -7,12 +7,8 @@ "CVE-2017-18695" ], "details": "An issue was discovered on Samsung mobile devices with KK(4.4), L(5.0/5.1), M(6.0), and N(7.0) software. Attackers (who control a certain subdomain) can discover a user's credentials, during an email account login, via an EAS autodiscover packet. The Samsung ID is SVE-2016-7654 (January 2017).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7f4f-9f8v-45c8/GHSA-7f4f-9f8v-45c8.json b/advisories/unreviewed/2022/05/GHSA-7f4f-9f8v-45c8/GHSA-7f4f-9f8v-45c8.json index 75dc81fc4b5..ab23919cd19 100644 --- a/advisories/unreviewed/2022/05/GHSA-7f4f-9f8v-45c8/GHSA-7f4f-9f8v-45c8.json +++ b/advisories/unreviewed/2022/05/GHSA-7f4f-9f8v-45c8/GHSA-7f4f-9f8v-45c8.json @@ -7,12 +7,8 @@ "CVE-2019-20665" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects RBR20 before 2.3.5.26, RBS20 before 2.3.5.26, RBK20 before 2.3.5.26, RBR40 before 2.3.5.30, RBS40 before 2.3.5.30, RBK40 before 2.3.5.30, RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, and RBK50 before 2.3.5.30.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7fg9-hrmc-xv32/GHSA-7fg9-hrmc-xv32.json b/advisories/unreviewed/2022/05/GHSA-7fg9-hrmc-xv32/GHSA-7fg9-hrmc-xv32.json index 802167f2932..05dd5c6099c 100644 --- a/advisories/unreviewed/2022/05/GHSA-7fg9-hrmc-xv32/GHSA-7fg9-hrmc-xv32.json +++ b/advisories/unreviewed/2022/05/GHSA-7fg9-hrmc-xv32/GHSA-7fg9-hrmc-xv32.json @@ -7,12 +7,8 @@ "CVE-2018-21087" ], "details": "An issue was discovered on Samsung mobile devices with L(5.x), M(6.x), and N(7.x) software. There is a vnswap heap-based buffer overflow via the store function, with resultant privilege escalation. The Samsung ID is SVE-2017-10599 (January 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7fx7-755p-qmjj/GHSA-7fx7-755p-qmjj.json b/advisories/unreviewed/2022/05/GHSA-7fx7-755p-qmjj/GHSA-7fx7-755p-qmjj.json index bbbc0287fd3..6e342a844d5 100644 --- a/advisories/unreviewed/2022/05/GHSA-7fx7-755p-qmjj/GHSA-7fx7-755p-qmjj.json +++ b/advisories/unreviewed/2022/05/GHSA-7fx7-755p-qmjj/GHSA-7fx7-755p-qmjj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7h5c-6gf4-8hcw/GHSA-7h5c-6gf4-8hcw.json b/advisories/unreviewed/2022/05/GHSA-7h5c-6gf4-8hcw/GHSA-7h5c-6gf4-8hcw.json index 4f0139979f1..72c96593bb6 100644 --- a/advisories/unreviewed/2022/05/GHSA-7h5c-6gf4-8hcw/GHSA-7h5c-6gf4-8hcw.json +++ b/advisories/unreviewed/2022/05/GHSA-7h5c-6gf4-8hcw/GHSA-7h5c-6gf4-8hcw.json @@ -7,12 +7,8 @@ "CVE-2020-2768" ], "details": "Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are 7.3.28 and prior, 7.4.27 and prior, 7.5.17 and prior, 7.6.13 and prior and 8.0.19 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Cluster. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Cluster as well as unauthorized update, insert or delete access to some of MySQL Cluster accessible data. CVSS 3.0 Base Score 6.3 (Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7hj2-37f3-f976/GHSA-7hj2-37f3-f976.json b/advisories/unreviewed/2022/05/GHSA-7hj2-37f3-f976/GHSA-7hj2-37f3-f976.json index 0bd204f3048..515a099d18f 100644 --- a/advisories/unreviewed/2022/05/GHSA-7hj2-37f3-f976/GHSA-7hj2-37f3-f976.json +++ b/advisories/unreviewed/2022/05/GHSA-7hj2-37f3-f976/GHSA-7hj2-37f3-f976.json @@ -7,12 +7,8 @@ "CVE-2020-4164" ], "details": "IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, 1.0.2, 1.0.3, 1.0.4, and 1.0.5 could expose sensitive information from applicatino errors which could be used in further attacks against the system. IBM X-Force ID: 174400.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7hvj-fm99-26hr/GHSA-7hvj-fm99-26hr.json b/advisories/unreviewed/2022/05/GHSA-7hvj-fm99-26hr/GHSA-7hvj-fm99-26hr.json index 517a9fe261f..1b6418bb70c 100644 --- a/advisories/unreviewed/2022/05/GHSA-7hvj-fm99-26hr/GHSA-7hvj-fm99-26hr.json +++ b/advisories/unreviewed/2022/05/GHSA-7hvj-fm99-26hr/GHSA-7hvj-fm99-26hr.json @@ -7,12 +7,8 @@ "CVE-2019-20656" ], "details": "Certain NETGEAR devices are affected by a a hardcoded password. This affects D6200 before 1.1.00.36, D7000 before 1.0.1.74, PR2000 before 1.0.0.30, R6020 before 1.0.0.42, R6080 before 1.0.0.42, R6050 before 1.0.1.24, JR6150 before 1.0.1.24, R6120 before 1.0.0.48, R6220 before 1.1.0.86, R6230 before 1.1.0.86, R6260 before 1.1.0.64, R6700v2 before 1.2.0.62, R6800 before 1.2.0.62, R6900v2 before 1.2.0.62, and WNR2020 before 1.1.0.62.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7m3r-227g-83xr/GHSA-7m3r-227g-83xr.json b/advisories/unreviewed/2022/05/GHSA-7m3r-227g-83xr/GHSA-7m3r-227g-83xr.json index 23b3f4b6b2c..22e69ca532c 100644 --- a/advisories/unreviewed/2022/05/GHSA-7m3r-227g-83xr/GHSA-7m3r-227g-83xr.json +++ b/advisories/unreviewed/2022/05/GHSA-7m3r-227g-83xr/GHSA-7m3r-227g-83xr.json @@ -7,12 +7,8 @@ "CVE-2020-10814" ], "details": "A buffer overflow vulnerability in Code::Blocks 17.12 allows an attacker to execute arbitrary code via a crafted project file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7mfq-gx26-8c7w/GHSA-7mfq-gx26-8c7w.json b/advisories/unreviewed/2022/05/GHSA-7mfq-gx26-8c7w/GHSA-7mfq-gx26-8c7w.json index 84627cc5a28..d3d327105ff 100644 --- a/advisories/unreviewed/2022/05/GHSA-7mfq-gx26-8c7w/GHSA-7mfq-gx26-8c7w.json +++ b/advisories/unreviewed/2022/05/GHSA-7mfq-gx26-8c7w/GHSA-7mfq-gx26-8c7w.json @@ -7,12 +7,8 @@ "CVE-2020-0598" ], "details": "Uncontrolled search path in the installer for the Intel(R) Binary Configuration Tool for Windows, all versions, may allow an authenticated user to potentially enable escalation of privilege via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7mhg-248g-c7p6/GHSA-7mhg-248g-c7p6.json b/advisories/unreviewed/2022/05/GHSA-7mhg-248g-c7p6/GHSA-7mhg-248g-c7p6.json index aecca0e5a74..279b9ee22d8 100644 --- a/advisories/unreviewed/2022/05/GHSA-7mhg-248g-c7p6/GHSA-7mhg-248g-c7p6.json +++ b/advisories/unreviewed/2022/05/GHSA-7mhg-248g-c7p6/GHSA-7mhg-248g-c7p6.json @@ -7,12 +7,8 @@ "CVE-2020-11605" ], "details": "An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. There is sensitive information exposure from dumpstate in NFC logs. The Samsung ID is SVE-2019-16359 (April 2020).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7mjm-6675-w446/GHSA-7mjm-6675-w446.json b/advisories/unreviewed/2022/05/GHSA-7mjm-6675-w446/GHSA-7mjm-6675-w446.json index aa5036c06a8..84b7eb0605f 100644 --- a/advisories/unreviewed/2022/05/GHSA-7mjm-6675-w446/GHSA-7mjm-6675-w446.json +++ b/advisories/unreviewed/2022/05/GHSA-7mjm-6675-w446/GHSA-7mjm-6675-w446.json @@ -7,12 +7,8 @@ "CVE-2020-11582" ], "details": "An issue was discovered in Pulse Secure Pulse Connect Secure (PCS) through 2020-04-06. The applet in tncc.jar, executed on macOS, Linux, and Solaris clients when a Host Checker policy is enforced, launches a TCP server that accepts local connections on a random port. This can be reached by local HTTP clients, because up to 25 invalid lines are ignored, and because DNS rebinding can occur. (This server accepts, for example, a setcookie command that might be relevant to CVE-2020-11581 exploitation.)", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7mv4-9v7r-5gq3/GHSA-7mv4-9v7r-5gq3.json b/advisories/unreviewed/2022/05/GHSA-7mv4-9v7r-5gq3/GHSA-7mv4-9v7r-5gq3.json index 5f9339eaa94..6640b29099e 100644 --- a/advisories/unreviewed/2022/05/GHSA-7mv4-9v7r-5gq3/GHSA-7mv4-9v7r-5gq3.json +++ b/advisories/unreviewed/2022/05/GHSA-7mv4-9v7r-5gq3/GHSA-7mv4-9v7r-5gq3.json @@ -7,12 +7,8 @@ "CVE-2019-12521" ], "details": "An issue was discovered in Squid through 4.7. When Squid is parsing ESI, it keeps the ESI elements in ESIContext. ESIContext contains a buffer for holding a stack of ESIElements. When a new ESIElement is parsed, it is added via addStackElement. addStackElement has a check for the number of elements in this buffer, but it's off by 1, leading to a Heap Overflow of 1 element. The overflow is within the same structure so it can't affect adjacent memory blocks, and thus just leads to a crash while processing.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7p36-m8r7-pqhg/GHSA-7p36-m8r7-pqhg.json b/advisories/unreviewed/2022/05/GHSA-7p36-m8r7-pqhg/GHSA-7p36-m8r7-pqhg.json index 224b335ab1a..a10b03ede88 100644 --- a/advisories/unreviewed/2022/05/GHSA-7p36-m8r7-pqhg/GHSA-7p36-m8r7-pqhg.json +++ b/advisories/unreviewed/2022/05/GHSA-7p36-m8r7-pqhg/GHSA-7p36-m8r7-pqhg.json @@ -7,12 +7,8 @@ "CVE-2020-1017" ], "details": "An elevation of privilege vulnerability exists in the way the Windows Push Notification Service handles objects in memory, aka 'Windows Push Notification Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0940, CVE-2020-1001, CVE-2020-1006.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7qpm-4q6m-gh4x/GHSA-7qpm-4q6m-gh4x.json b/advisories/unreviewed/2022/05/GHSA-7qpm-4q6m-gh4x/GHSA-7qpm-4q6m-gh4x.json index 969067284bf..136367008ad 100644 --- a/advisories/unreviewed/2022/05/GHSA-7qpm-4q6m-gh4x/GHSA-7qpm-4q6m-gh4x.json +++ b/advisories/unreviewed/2022/05/GHSA-7qpm-4q6m-gh4x/GHSA-7qpm-4q6m-gh4x.json @@ -7,12 +7,8 @@ "CVE-2019-20671" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects RBR20 before 2.3.5.26, RBS20 before 2.3.5.26, RBK20 before 2.3.5.26, RBR40 before 2.3.5.30, RBS40 before 2.3.5.30, RBK40 before 2.3.5.30, RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, and RBK50 before 2.3.5.30.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7r52-55rr-f92g/GHSA-7r52-55rr-f92g.json b/advisories/unreviewed/2022/05/GHSA-7r52-55rr-f92g/GHSA-7r52-55rr-f92g.json index ea93e54ee91..19ee94ff68e 100644 --- a/advisories/unreviewed/2022/05/GHSA-7r52-55rr-f92g/GHSA-7r52-55rr-f92g.json +++ b/advisories/unreviewed/2022/05/GHSA-7r52-55rr-f92g/GHSA-7r52-55rr-f92g.json @@ -7,12 +7,8 @@ "CVE-2020-11702" ], "details": "An issue was discovered in ProVide (formerly zFTPServer) through 13.1. The User Web Interface has Multiple Stored and Reflected XSS issues. Collaborate is Reflected via the filename parameter. Collaborate is Stored via the displayname parameter. Deletemultiple is Reflected via the files parameter. Share is Reflected via the target parameter. Share is Stored via the displayname parameter. Waitedit is Reflected via the Host header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7rfx-v3c8-jg8x/GHSA-7rfx-v3c8-jg8x.json b/advisories/unreviewed/2022/05/GHSA-7rfx-v3c8-jg8x/GHSA-7rfx-v3c8-jg8x.json index 6e458c055d5..038af9251f8 100644 --- a/advisories/unreviewed/2022/05/GHSA-7rfx-v3c8-jg8x/GHSA-7rfx-v3c8-jg8x.json +++ b/advisories/unreviewed/2022/05/GHSA-7rfx-v3c8-jg8x/GHSA-7rfx-v3c8-jg8x.json @@ -7,12 +7,8 @@ "CVE-2020-2758" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.40, prior to 6.0.20 and prior to 6.1.6. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox. CVSS 3.0 Base Score 8.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7rh8-44p3-q7vr/GHSA-7rh8-44p3-q7vr.json b/advisories/unreviewed/2022/05/GHSA-7rh8-44p3-q7vr/GHSA-7rh8-44p3-q7vr.json index 0d36d2831d9..e92dfc3a385 100644 --- a/advisories/unreviewed/2022/05/GHSA-7rh8-44p3-q7vr/GHSA-7rh8-44p3-q7vr.json +++ b/advisories/unreviewed/2022/05/GHSA-7rh8-44p3-q7vr/GHSA-7rh8-44p3-q7vr.json @@ -7,12 +7,8 @@ "CVE-2019-20640" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.76, D6200 before 1.1.00.32, D7000 before 1.0.1.68, JR6150 before 1.0.1.18, PR2000 before 1.0.0.28, R6020 before 1.0.0.38, R6050 before 1.0.1.18, R6080 before 1.0.0.38, R6120 before 1.0.0.46, R6220 before 1.1.0.80, R6260 before 1.1.0.40, R6700v2 before 1.2.0.36, R6800 before 1.2.0.36, R6900v2 before 1.2.0.36, WNR2020 before 1.1.0.62, and XR500 before 2.3.2.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7vpp-24rh-p2mv/GHSA-7vpp-24rh-p2mv.json b/advisories/unreviewed/2022/05/GHSA-7vpp-24rh-p2mv/GHSA-7vpp-24rh-p2mv.json index 4b51145b548..a9a2933c401 100644 --- a/advisories/unreviewed/2022/05/GHSA-7vpp-24rh-p2mv/GHSA-7vpp-24rh-p2mv.json +++ b/advisories/unreviewed/2022/05/GHSA-7vpp-24rh-p2mv/GHSA-7vpp-24rh-p2mv.json @@ -7,12 +7,8 @@ "CVE-2020-1616" ], "details": "Due to insufficient server-side login attempt limit enforcement, a vulnerability in the SSH login service of Juniper Networks Juniper Advanced Threat Prevention (JATP) Series and Virtual JATP (vJATP) devices allows an unauthenticated, remote attacker to perform multiple login attempts in excess of the configured login attempt limit. Successful exploitation will allow the attacker to perform brute-force password attacks on the SSH service. This issue affects: Juniper Networks JATP and vJATP versions prior to 5.0.6.0.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7vr4-w8wh-ff7q/GHSA-7vr4-w8wh-ff7q.json b/advisories/unreviewed/2022/05/GHSA-7vr4-w8wh-ff7q/GHSA-7vr4-w8wh-ff7q.json index 45415d797ab..0515fe351f4 100644 --- a/advisories/unreviewed/2022/05/GHSA-7vr4-w8wh-ff7q/GHSA-7vr4-w8wh-ff7q.json +++ b/advisories/unreviewed/2022/05/GHSA-7vr4-w8wh-ff7q/GHSA-7vr4-w8wh-ff7q.json @@ -7,12 +7,8 @@ "CVE-2020-8327" ], "details": "A privilege escalation vulnerability was reported in LenovoBatteryGaugePackage for Lenovo System Interface Foundation bundled in Lenovo Vantage prior to version 10.2003.10.0 that could allow an authenticated user to execute code with elevated privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7vvv-776g-xxjv/GHSA-7vvv-776g-xxjv.json b/advisories/unreviewed/2022/05/GHSA-7vvv-776g-xxjv/GHSA-7vvv-776g-xxjv.json index a2beff25ffd..eb931516a94 100644 --- a/advisories/unreviewed/2022/05/GHSA-7vvv-776g-xxjv/GHSA-7vvv-776g-xxjv.json +++ b/advisories/unreviewed/2022/05/GHSA-7vvv-776g-xxjv/GHSA-7vvv-776g-xxjv.json @@ -7,12 +7,8 @@ "CVE-2020-4284" ], "details": "IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, 1.0.2, 1.0.3, 1.0.4, and 1.0.5 could disclose sensitive information to an unauthorized user due to insufficient timeout functionality in the Web UI. IBM X-Force ID: 176207.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7w5f-39wq-4475/GHSA-7w5f-39wq-4475.json b/advisories/unreviewed/2022/05/GHSA-7w5f-39wq-4475/GHSA-7w5f-39wq-4475.json index cfd17637648..e0e7896a985 100644 --- a/advisories/unreviewed/2022/05/GHSA-7w5f-39wq-4475/GHSA-7w5f-39wq-4475.json +++ b/advisories/unreviewed/2022/05/GHSA-7w5f-39wq-4475/GHSA-7w5f-39wq-4475.json @@ -7,12 +7,8 @@ "CVE-2020-1625" ], "details": "The kernel memory usage represented as \"temp\" via 'show system virtual-memory' may constantly increase when Integrated Routing and Bridging (IRB) is configured with multiple underlay physical interfaces, and one interface flaps. This memory leak can affect running daemons (processes), leading to an extended Denial of Service (DoS) condition. Usage of \"temp\" virtual memory, shown here by a constantly increasing value of outstanding Requests, can be monitored by executing the 'show system virtual-memory' command as shown below: user@junos> show system virtual-memory |match \"fpc|type|temp\" fpc0: -------------------------------------------------------------------------- Type InUse MemUse HighUse Requests Size(s) temp 2023 431K - 10551 16,32,64,128,256,512,1024,2048,4096,65536,262144,1048576,2097152,4194304,8388608 fpc1: -------------------------------------------------------------------------- Type InUse MemUse HighUse Requests Size(s) temp 2020 431K - 6460 16,32,64,128,256,512,1024,2048,4096,65536,262144,1048576,2097152,4194304,8388608 user@junos> show system virtual-memory |match \"fpc|type|temp\" fpc0: -------------------------------------------------------------------------- Type InUse MemUse HighUse Requests Size(s) temp 2023 431K - 16101 16,32,64,128,256,512,1024,2048,4096,65536,262144,1048576,2097152,4194304,8388608 fpc1: -------------------------------------------------------------------------- Type InUse MemUse HighUse Requests Size(s) temp 2020 431K - 6665 16,32,64,128,256,512,1024,2048,4096,65536,262144,1048576,2097152,4194304,8388608 user@junos> show system virtual-memory |match \"fpc|type|temp\" fpc0: -------------------------------------------------------------------------- Type InUse MemUse HighUse Requests Size(s) temp 2023 431K - 21867 16,32,64,128,256,512,1024,2048,4096,65536,262144,1048576,2097152,4194304,8388608 fpc1: -------------------------------------------------------------------------- Type InUse MemUse HighUse Requests Size(s) temp 2020 431K - 6858 16,32,64,128,256,512,1024,2048,4096,65536,262144,1048576,2097152,4194304,8388608 This issue affects Juniper Networks Junos OS: 16.1 versions prior to 16.1R7-S6; 17.1 versions prior to 17.1R2-S11, 17.1R3-S1; 17.2 versions prior to 17.2R2-S8, 17.2R3-S3; 17.2X75 versions prior to 17.2X75-D44; 17.3 versions prior to 17.3R2-S5, 17.3R3-S6; 17.4 versions prior to 17.4R2-S5, 17.4R3; 18.1 versions prior to 18.1R3-S7; 18.2 versions prior to 18.2R2-S5, 18.2R3; 18.2X75 versions prior to 18.2X75-D33, 18.2X75-D411, 18.2X75-D420, 18.2X75-D60; 18.3 versions prior to 18.3R1-S5, 18.3R2-S3, 18.3R3; 18.4 versions prior to 18.4R2-S2, 18.4R3; 19.1 versions prior to 19.1R1-S3, 19.1R2; 19.2 versions prior to 19.2R1-S3, 19.2R2. This issue does not affect Juniper Networks Junos OS 12.3 and 15.1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7xc5-xh63-676w/GHSA-7xc5-xh63-676w.json b/advisories/unreviewed/2022/05/GHSA-7xc5-xh63-676w/GHSA-7xc5-xh63-676w.json index 248f9e9d0ed..b32fd5a4a56 100644 --- a/advisories/unreviewed/2022/05/GHSA-7xc5-xh63-676w/GHSA-7xc5-xh63-676w.json +++ b/advisories/unreviewed/2022/05/GHSA-7xc5-xh63-676w/GHSA-7xc5-xh63-676w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -71,9 +69,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7xjp-88f4-r966/GHSA-7xjp-88f4-r966.json b/advisories/unreviewed/2022/05/GHSA-7xjp-88f4-r966/GHSA-7xjp-88f4-r966.json index ffa1f2c8205..5285e12ab3a 100644 --- a/advisories/unreviewed/2022/05/GHSA-7xjp-88f4-r966/GHSA-7xjp-88f4-r966.json +++ b/advisories/unreviewed/2022/05/GHSA-7xjp-88f4-r966/GHSA-7xjp-88f4-r966.json @@ -7,12 +7,8 @@ "CVE-2020-11581" ], "details": "An issue was discovered in Pulse Secure Pulse Connect Secure (PCS) through 2020-04-06. The applet in tncc.jar, executed on macOS, Linux, and Solaris clients when a Host Checker policy is enforced, allows a man-in-the-middle attacker to perform OS command injection attacks (against a client) via shell metacharacters to the doCustomRemediateInstructions method, because Runtime.getRuntime().exec() is used.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-824c-87gg-824v/GHSA-824c-87gg-824v.json b/advisories/unreviewed/2022/05/GHSA-824c-87gg-824v/GHSA-824c-87gg-824v.json index 55756110514..65c9e250a5f 100644 --- a/advisories/unreviewed/2022/05/GHSA-824c-87gg-824v/GHSA-824c-87gg-824v.json +++ b/advisories/unreviewed/2022/05/GHSA-824c-87gg-824v/GHSA-824c-87gg-824v.json @@ -7,12 +7,8 @@ "CVE-2020-0913" ], "details": "An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka 'Windows Kernel Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1000, CVE-2020-1003, CVE-2020-1027.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-829q-x9xh-rfqm/GHSA-829q-x9xh-rfqm.json b/advisories/unreviewed/2022/05/GHSA-829q-x9xh-rfqm/GHSA-829q-x9xh-rfqm.json index b1bd7621ed7..260264ef436 100644 --- a/advisories/unreviewed/2022/05/GHSA-829q-x9xh-rfqm/GHSA-829q-x9xh-rfqm.json +++ b/advisories/unreviewed/2022/05/GHSA-829q-x9xh-rfqm/GHSA-829q-x9xh-rfqm.json @@ -7,12 +7,8 @@ "CVE-2019-20664" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects RBR20 before 2.3.5.26, RBS20 before 2.3.5.26, RBK20 before 2.3.5.26, RBR40 before 2.3.5.30, RBS40 before 2.3.5.30, RBK40 before 2.3.5.30, RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, and RBK50 before 2.3.5.30.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-82qh-f392-6468/GHSA-82qh-f392-6468.json b/advisories/unreviewed/2022/05/GHSA-82qh-f392-6468/GHSA-82qh-f392-6468.json index b97f4ea65ba..a6e9252fc52 100644 --- a/advisories/unreviewed/2022/05/GHSA-82qh-f392-6468/GHSA-82qh-f392-6468.json +++ b/advisories/unreviewed/2022/05/GHSA-82qh-f392-6468/GHSA-82qh-f392-6468.json @@ -7,12 +7,8 @@ "CVE-2018-21091" ], "details": "An issue was discovered on Samsung mobile devices with M(6.x) and N(7.x) software. Telecom has a System Crash via abnormal exception handling. The Samsung ID is SVE-2017-10906 (January 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-84p5-r33h-3p55/GHSA-84p5-r33h-3p55.json b/advisories/unreviewed/2022/05/GHSA-84p5-r33h-3p55/GHSA-84p5-r33h-3p55.json index df3be5efd86..28de95aa4c2 100644 --- a/advisories/unreviewed/2022/05/GHSA-84p5-r33h-3p55/GHSA-84p5-r33h-3p55.json +++ b/advisories/unreviewed/2022/05/GHSA-84p5-r33h-3p55/GHSA-84p5-r33h-3p55.json @@ -7,12 +7,8 @@ "CVE-2020-0687" ], "details": "A remote code execution vulnerability exists when the Windows font library improperly handles specially crafted embedded fonts, aka 'Microsoft Graphics Remote Code Execution Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-84xc-jf62-8hpx/GHSA-84xc-jf62-8hpx.json b/advisories/unreviewed/2022/05/GHSA-84xc-jf62-8hpx/GHSA-84xc-jf62-8hpx.json index 07b556b0911..4af54df22c0 100644 --- a/advisories/unreviewed/2022/05/GHSA-84xc-jf62-8hpx/GHSA-84xc-jf62-8hpx.json +++ b/advisories/unreviewed/2022/05/GHSA-84xc-jf62-8hpx/GHSA-84xc-jf62-8hpx.json @@ -7,12 +7,8 @@ "CVE-2018-21084" ], "details": "An issue was discovered on Samsung mobile devices with L(5.1), M(6.0), and N(7.x) software. There is a race condition with a resultant read-after-free issue in get_kek. The Samsung ID is SVE-2017-11174 (February 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-85q4-g73v-3g52/GHSA-85q4-g73v-3g52.json b/advisories/unreviewed/2022/05/GHSA-85q4-g73v-3g52/GHSA-85q4-g73v-3g52.json index fffe1904fe1..904323f11d8 100644 --- a/advisories/unreviewed/2022/05/GHSA-85q4-g73v-3g52/GHSA-85q4-g73v-3g52.json +++ b/advisories/unreviewed/2022/05/GHSA-85q4-g73v-3g52/GHSA-85q4-g73v-3g52.json @@ -7,12 +7,8 @@ "CVE-2020-1622" ], "details": "A local, authenticated user with shell can obtain the hashed values of login passwords and shared secrets via the EvoSharedObjStore. This issue affects all versions of Junos OS Evolved prior to 19.1R1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-877f-fpjf-g2cr/GHSA-877f-fpjf-g2cr.json b/advisories/unreviewed/2022/05/GHSA-877f-fpjf-g2cr/GHSA-877f-fpjf-g2cr.json index c53c2a7e537..3a02a8ec7b2 100644 --- a/advisories/unreviewed/2022/05/GHSA-877f-fpjf-g2cr/GHSA-877f-fpjf-g2cr.json +++ b/advisories/unreviewed/2022/05/GHSA-877f-fpjf-g2cr/GHSA-877f-fpjf-g2cr.json @@ -7,12 +7,8 @@ "CVE-2019-20646" ], "details": "NETGEAR RAX40 devices before 1.0.3.64 are affected by disclosure of administrative credentials.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-88cf-g4c2-x69m/GHSA-88cf-g4c2-x69m.json b/advisories/unreviewed/2022/05/GHSA-88cf-g4c2-x69m/GHSA-88cf-g4c2-x69m.json index 9dff795fa47..55578698e64 100644 --- a/advisories/unreviewed/2022/05/GHSA-88cf-g4c2-x69m/GHSA-88cf-g4c2-x69m.json +++ b/advisories/unreviewed/2022/05/GHSA-88cf-g4c2-x69m/GHSA-88cf-g4c2-x69m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:C/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8934-73x5-7j23/GHSA-8934-73x5-7j23.json b/advisories/unreviewed/2022/05/GHSA-8934-73x5-7j23/GHSA-8934-73x5-7j23.json index bfcd0ef30c1..f03747f24c4 100644 --- a/advisories/unreviewed/2022/05/GHSA-8934-73x5-7j23/GHSA-8934-73x5-7j23.json +++ b/advisories/unreviewed/2022/05/GHSA-8934-73x5-7j23/GHSA-8934-73x5-7j23.json @@ -7,12 +7,8 @@ "CVE-2020-11713" ], "details": "wolfSSL 4.3.0 has mulmod code in wc_ecc_mulmod_ex in ecc.c that does not properly resist timing side-channel attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8f2q-6mmp-hq58/GHSA-8f2q-6mmp-hq58.json b/advisories/unreviewed/2022/05/GHSA-8f2q-6mmp-hq58/GHSA-8f2q-6mmp-hq58.json index fa181ea06dc..c1b605d6282 100644 --- a/advisories/unreviewed/2022/05/GHSA-8f2q-6mmp-hq58/GHSA-8f2q-6mmp-hq58.json +++ b/advisories/unreviewed/2022/05/GHSA-8f2q-6mmp-hq58/GHSA-8f2q-6mmp-hq58.json @@ -7,12 +7,8 @@ "CVE-2020-9478" ], "details": "An issue was discovered in Rubrik 5.0.3-2296. An OS command injection vulnerability allows an authenticated attacker to remotely execute arbitrary code on Rubrik-managed systems.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8h9g-g25c-xm92/GHSA-8h9g-g25c-xm92.json b/advisories/unreviewed/2022/05/GHSA-8h9g-g25c-xm92/GHSA-8h9g-g25c-xm92.json index fcbb68f700f..d4b94a8b3d9 100644 --- a/advisories/unreviewed/2022/05/GHSA-8h9g-g25c-xm92/GHSA-8h9g-g25c-xm92.json +++ b/advisories/unreviewed/2022/05/GHSA-8h9g-g25c-xm92/GHSA-8h9g-g25c-xm92.json @@ -7,12 +7,8 @@ "CVE-2020-10617" ], "details": "There are multiple ways an unauthenticated attacker could perform SQL injection on WebAccess/NMS (versions prior to 3.0.2) to gain access to sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8hcc-5w75-vqhq/GHSA-8hcc-5w75-vqhq.json b/advisories/unreviewed/2022/05/GHSA-8hcc-5w75-vqhq/GHSA-8hcc-5w75-vqhq.json index 160fc4e8b13..494b3c83137 100644 --- a/advisories/unreviewed/2022/05/GHSA-8hcc-5w75-vqhq/GHSA-8hcc-5w75-vqhq.json +++ b/advisories/unreviewed/2022/05/GHSA-8hcc-5w75-vqhq/GHSA-8hcc-5w75-vqhq.json @@ -7,12 +7,8 @@ "CVE-2020-10613" ], "details": "Triangle MicroWorks SCADA Data Gateway 3.02.0697 through 4.0.122, 2.41.0213 through 4.0.122 allows remote attackers to disclose sensitive information due to the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated structure. Authentication is not required to exploit this vulnerability. Only applicable to installations using DNP3 Data Sets.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8j3r-p64j-mqh7/GHSA-8j3r-p64j-mqh7.json b/advisories/unreviewed/2022/05/GHSA-8j3r-p64j-mqh7/GHSA-8j3r-p64j-mqh7.json index cd9973be964..89b76cae702 100644 --- a/advisories/unreviewed/2022/05/GHSA-8j3r-p64j-mqh7/GHSA-8j3r-p64j-mqh7.json +++ b/advisories/unreviewed/2022/05/GHSA-8j3r-p64j-mqh7/GHSA-8j3r-p64j-mqh7.json @@ -7,12 +7,8 @@ "CVE-2020-0929" ], "details": "A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package, aka 'Microsoft SharePoint Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0920, CVE-2020-0931, CVE-2020-0932, CVE-2020-0971, CVE-2020-0974.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8jf9-xp6v-2hcx/GHSA-8jf9-xp6v-2hcx.json b/advisories/unreviewed/2022/05/GHSA-8jf9-xp6v-2hcx/GHSA-8jf9-xp6v-2hcx.json index 43a4207901d..fc962f652c7 100644 --- a/advisories/unreviewed/2022/05/GHSA-8jf9-xp6v-2hcx/GHSA-8jf9-xp6v-2hcx.json +++ b/advisories/unreviewed/2022/05/GHSA-8jf9-xp6v-2hcx/GHSA-8jf9-xp6v-2hcx.json @@ -7,12 +7,8 @@ "CVE-2020-2738" ], "details": "Vulnerability in the Siebel UI Framework product of Oracle Siebel CRM (component: EAI, SWSE). Supported versions that are affected are 20.2 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Siebel UI Framework. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Siebel UI Framework accessible data. CVSS 3.0 Base Score 4.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8jp8-cp78-2955/GHSA-8jp8-cp78-2955.json b/advisories/unreviewed/2022/05/GHSA-8jp8-cp78-2955/GHSA-8jp8-cp78-2955.json index f350cccd1d6..7df6b6cbf38 100644 --- a/advisories/unreviewed/2022/05/GHSA-8jp8-cp78-2955/GHSA-8jp8-cp78-2955.json +++ b/advisories/unreviewed/2022/05/GHSA-8jp8-cp78-2955/GHSA-8jp8-cp78-2955.json @@ -7,12 +7,8 @@ "CVE-2020-1094" ], "details": "An elevation of privilege vulnerability exists when the Windows Work Folder Service improperly handles file operations, aka 'Windows Work Folder Service Elevation of Privilege Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8m6g-w26h-3x9w/GHSA-8m6g-w26h-3x9w.json b/advisories/unreviewed/2022/05/GHSA-8m6g-w26h-3x9w/GHSA-8m6g-w26h-3x9w.json index 14e8403fd84..5a730ff4deb 100644 --- a/advisories/unreviewed/2022/05/GHSA-8m6g-w26h-3x9w/GHSA-8m6g-w26h-3x9w.json +++ b/advisories/unreviewed/2022/05/GHSA-8m6g-w26h-3x9w/GHSA-8m6g-w26h-3x9w.json @@ -7,12 +7,8 @@ "CVE-2020-1006" ], "details": "An elevation of privilege vulnerability exists in the way the Windows Push Notification Service handles objects in memory, aka 'Windows Push Notification Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0940, CVE-2020-1001, CVE-2020-1017.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8mwq-82jg-rcwh/GHSA-8mwq-82jg-rcwh.json b/advisories/unreviewed/2022/05/GHSA-8mwq-82jg-rcwh/GHSA-8mwq-82jg-rcwh.json index f39e0c8273d..8134b964dde 100644 --- a/advisories/unreviewed/2022/05/GHSA-8mwq-82jg-rcwh/GHSA-8mwq-82jg-rcwh.json +++ b/advisories/unreviewed/2022/05/GHSA-8mwq-82jg-rcwh/GHSA-8mwq-82jg-rcwh.json @@ -7,12 +7,8 @@ "CVE-2020-11658" ], "details": "CA API Developer Portal 4.3.1 and earlier handles shared secret keys in an insecure manner, which allows attackers to bypass authorization.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8p87-9j2m-h25h/GHSA-8p87-9j2m-h25h.json b/advisories/unreviewed/2022/05/GHSA-8p87-9j2m-h25h/GHSA-8p87-9j2m-h25h.json index e45d1f82275..11ce331f84f 100644 --- a/advisories/unreviewed/2022/05/GHSA-8p87-9j2m-h25h/GHSA-8p87-9j2m-h25h.json +++ b/advisories/unreviewed/2022/05/GHSA-8p87-9j2m-h25h/GHSA-8p87-9j2m-h25h.json @@ -7,12 +7,8 @@ "CVE-2020-2594" ], "details": "Vulnerability in the Primavera P6 Enterprise Project Portfolio Management product of Oracle Construction and Engineering (component: Project Manager). Supported versions that are affected are 16.2.0.0 - 16.2.19.3, 17.12.0.0 - 17.12.17.0, 18.8.0.0 - 18.8.18.0, 19.12.1.0 - 19.12.3.0 and 20.1.0.0 - 20.2.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Primavera P6 Enterprise Project Portfolio Management. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Primavera P6 Enterprise Project Portfolio Management, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Primavera P6 Enterprise Project Portfolio Management accessible data as well as unauthorized read access to a subset of Primavera P6 Enterprise Project Portfolio Management accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Primavera P6 Enterprise Project Portfolio Management. CVSS 3.0 Base Score 6.5 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8pxm-2ghq-4gq5/GHSA-8pxm-2ghq-4gq5.json b/advisories/unreviewed/2022/05/GHSA-8pxm-2ghq-4gq5/GHSA-8pxm-2ghq-4gq5.json index 72710b92ff5..f3fb35a4a50 100644 --- a/advisories/unreviewed/2022/05/GHSA-8pxm-2ghq-4gq5/GHSA-8pxm-2ghq-4gq5.json +++ b/advisories/unreviewed/2022/05/GHSA-8pxm-2ghq-4gq5/GHSA-8pxm-2ghq-4gq5.json @@ -7,12 +7,8 @@ "CVE-2020-11512" ], "details": "Stored XSS in the IMPress for IDX Broker WordPress plugin before 2.6.2 allows authenticated attackers with minimal (subscriber-level) permissions to save arbitrary JavaScript in the plugin's settings panel via the idx_update_recaptcha_key AJAX action and a crafted idx_recaptcha_site_key parameter, which would then be executed in the browser of any administrator visiting the panel. This could be used to create new administrator-level accounts.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8qwq-wfr9-v7hf/GHSA-8qwq-wfr9-v7hf.json b/advisories/unreviewed/2022/05/GHSA-8qwq-wfr9-v7hf/GHSA-8qwq-wfr9-v7hf.json index a5f80aa00b9..e9a2e0d396e 100644 --- a/advisories/unreviewed/2022/05/GHSA-8qwq-wfr9-v7hf/GHSA-8qwq-wfr9-v7hf.json +++ b/advisories/unreviewed/2022/05/GHSA-8qwq-wfr9-v7hf/GHSA-8qwq-wfr9-v7hf.json @@ -7,12 +7,8 @@ "CVE-2020-0794" ], "details": "A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Service Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8rgq-qjc8-jj5v/GHSA-8rgq-qjc8-jj5v.json b/advisories/unreviewed/2022/05/GHSA-8rgq-qjc8-jj5v/GHSA-8rgq-qjc8-jj5v.json index 128f9f0324e..c7081ad67dc 100644 --- a/advisories/unreviewed/2022/05/GHSA-8rgq-qjc8-jj5v/GHSA-8rgq-qjc8-jj5v.json +++ b/advisories/unreviewed/2022/05/GHSA-8rgq-qjc8-jj5v/GHSA-8rgq-qjc8-jj5v.json @@ -7,12 +7,8 @@ "CVE-2020-11734" ], "details": "cgi-bin/go in CyberSolutions CyberMail 5 or later allows XSS via the ACTION parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8vj3-849x-jqx9/GHSA-8vj3-849x-jqx9.json b/advisories/unreviewed/2022/05/GHSA-8vj3-849x-jqx9/GHSA-8vj3-849x-jqx9.json index 30eb3830279..dda33606430 100644 --- a/advisories/unreviewed/2022/05/GHSA-8vj3-849x-jqx9/GHSA-8vj3-849x-jqx9.json +++ b/advisories/unreviewed/2022/05/GHSA-8vj3-849x-jqx9/GHSA-8vj3-849x-jqx9.json @@ -7,12 +7,8 @@ "CVE-2020-0977" ], "details": "A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft SharePoint Spoofing Vulnerability'. This CVE ID is unique from CVE-2020-0972, CVE-2020-0975, CVE-2020-0976.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8w47-824w-pr9m/GHSA-8w47-824w-pr9m.json b/advisories/unreviewed/2022/05/GHSA-8w47-824w-pr9m/GHSA-8w47-824w-pr9m.json index 75c827af44d..49a37f308cf 100644 --- a/advisories/unreviewed/2022/05/GHSA-8w47-824w-pr9m/GHSA-8w47-824w-pr9m.json +++ b/advisories/unreviewed/2022/05/GHSA-8w47-824w-pr9m/GHSA-8w47-824w-pr9m.json @@ -7,12 +7,8 @@ "CVE-2020-8148" ], "details": "UniFi Cloud Key firmware < 1.1.6 contains a vulnerability that enables an attacker being able to change a device hostname by sending a malicious API request. This affects Cloud Key gen2 and Cloud Key gen2 Plus.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8xg7-9pfw-mcrg/GHSA-8xg7-9pfw-mcrg.json b/advisories/unreviewed/2022/05/GHSA-8xg7-9pfw-mcrg/GHSA-8xg7-9pfw-mcrg.json index 010b99f919d..3f9c2dff799 100644 --- a/advisories/unreviewed/2022/05/GHSA-8xg7-9pfw-mcrg/GHSA-8xg7-9pfw-mcrg.json +++ b/advisories/unreviewed/2022/05/GHSA-8xg7-9pfw-mcrg/GHSA-8xg7-9pfw-mcrg.json @@ -7,12 +7,8 @@ "CVE-2020-11596" ], "details": "A Directory Traversal issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make HTTP GET requests to a certain URL and obtain information about what files and directories reside on the server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8xjw-q898-4mqq/GHSA-8xjw-q898-4mqq.json b/advisories/unreviewed/2022/05/GHSA-8xjw-q898-4mqq/GHSA-8xjw-q898-4mqq.json index 6bab42ad07b..8d2228a3e93 100644 --- a/advisories/unreviewed/2022/05/GHSA-8xjw-q898-4mqq/GHSA-8xjw-q898-4mqq.json +++ b/advisories/unreviewed/2022/05/GHSA-8xjw-q898-4mqq/GHSA-8xjw-q898-4mqq.json @@ -7,12 +7,8 @@ "CVE-2020-7802" ], "details": "The Synergy Systems & Solutions (SSS) HUSKY RTU 6049-E70, with firmware Versions 5.0 and prior, has an Incorrect Default Permissions (CWE-276) vulnerability. The affected product is vulnerable to insufficient default permissions, which could allow an attacker to view network configurations through SNMP communication. This is a different issue than CVE-2019-16879, CVE-2019-20045, CVE-2019-20046, CVE-2020-7800, and CVE-2020-7801.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-927j-5q7f-wv8x/GHSA-927j-5q7f-wv8x.json b/advisories/unreviewed/2022/05/GHSA-927j-5q7f-wv8x/GHSA-927j-5q7f-wv8x.json index 4cfaa2bb995..2cb169d0682 100644 --- a/advisories/unreviewed/2022/05/GHSA-927j-5q7f-wv8x/GHSA-927j-5q7f-wv8x.json +++ b/advisories/unreviewed/2022/05/GHSA-927j-5q7f-wv8x/GHSA-927j-5q7f-wv8x.json @@ -7,12 +7,8 @@ "CVE-2020-2750" ], "details": "Vulnerability in the Oracle General Ledger product of Oracle E-Business Suite (component: Account Hierarchy Manager). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle General Ledger. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle General Ledger accessible data. CVSS 3.0 Base Score 7.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-938r-jjfm-4vxv/GHSA-938r-jjfm-4vxv.json b/advisories/unreviewed/2022/05/GHSA-938r-jjfm-4vxv/GHSA-938r-jjfm-4vxv.json index 252c70dba6f..0959a244f54 100644 --- a/advisories/unreviewed/2022/05/GHSA-938r-jjfm-4vxv/GHSA-938r-jjfm-4vxv.json +++ b/advisories/unreviewed/2022/05/GHSA-938r-jjfm-4vxv/GHSA-938r-jjfm-4vxv.json @@ -7,12 +7,8 @@ "CVE-2019-19500" ], "details": "Matrix42 Workspace Management 9.1.2.2765 and below allows stored XSS via unfiltered description parameters, as demonstrated by the comment field of a special order for individual software.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-93vj-6w32-x9gc/GHSA-93vj-6w32-x9gc.json b/advisories/unreviewed/2022/05/GHSA-93vj-6w32-x9gc/GHSA-93vj-6w32-x9gc.json index d42629bdcb4..d82ab5a867f 100644 --- a/advisories/unreviewed/2022/05/GHSA-93vj-6w32-x9gc/GHSA-93vj-6w32-x9gc.json +++ b/advisories/unreviewed/2022/05/GHSA-93vj-6w32-x9gc/GHSA-93vj-6w32-x9gc.json @@ -7,12 +7,8 @@ "CVE-2020-0981" ], "details": "A security feature bypass vulnerability exists when Windows fails to properly handle token relationships.An attacker who successfully exploited the vulnerability could allow an application with a certain integrity level to execute code at a different integrity level, leading to a sandbox escape.The update addresses the vulnerability by correcting how Windows handles token relationships, aka 'Windows Token Security Feature Bypass Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-94q8-c6g3-4249/GHSA-94q8-c6g3-4249.json b/advisories/unreviewed/2022/05/GHSA-94q8-c6g3-4249/GHSA-94q8-c6g3-4249.json index 35fb04c0629..01882c4ffc9 100644 --- a/advisories/unreviewed/2022/05/GHSA-94q8-c6g3-4249/GHSA-94q8-c6g3-4249.json +++ b/advisories/unreviewed/2022/05/GHSA-94q8-c6g3-4249/GHSA-94q8-c6g3-4249.json @@ -7,12 +7,8 @@ "CVE-2020-0699" ], "details": "An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Win32k Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-0962.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-94r6-87q5-99jj/GHSA-94r6-87q5-99jj.json b/advisories/unreviewed/2022/05/GHSA-94r6-87q5-99jj/GHSA-94r6-87q5-99jj.json index 9ec6a7ecc64..7684175b58a 100644 --- a/advisories/unreviewed/2022/05/GHSA-94r6-87q5-99jj/GHSA-94r6-87q5-99jj.json +++ b/advisories/unreviewed/2022/05/GHSA-94r6-87q5-99jj/GHSA-94r6-87q5-99jj.json @@ -7,12 +7,8 @@ "CVE-2020-0988" ], "details": "A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0889, CVE-2020-0953, CVE-2020-0959, CVE-2020-0960, CVE-2020-0992, CVE-2020-0994, CVE-2020-0995, CVE-2020-0999, CVE-2020-1008.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9697-r6gv-4r4x/GHSA-9697-r6gv-4r4x.json b/advisories/unreviewed/2022/05/GHSA-9697-r6gv-4r4x/GHSA-9697-r6gv-4r4x.json index 27e08f93de8..aa2e0091ba9 100644 --- a/advisories/unreviewed/2022/05/GHSA-9697-r6gv-4r4x/GHSA-9697-r6gv-4r4x.json +++ b/advisories/unreviewed/2022/05/GHSA-9697-r6gv-4r4x/GHSA-9697-r6gv-4r4x.json @@ -7,12 +7,8 @@ "CVE-2020-6237" ], "details": "Under certain conditions, SAP Business Objects Business Intelligence Platform, version 4.1, 4.2, dswsbobje web application allows an attacker to access information which would otherwise be restricted, leading to Information Disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-978w-jwq5-2hmx/GHSA-978w-jwq5-2hmx.json b/advisories/unreviewed/2022/05/GHSA-978w-jwq5-2hmx/GHSA-978w-jwq5-2hmx.json index 6f35f2ac74d..7763c2ebc3e 100644 --- a/advisories/unreviewed/2022/05/GHSA-978w-jwq5-2hmx/GHSA-978w-jwq5-2hmx.json +++ b/advisories/unreviewed/2022/05/GHSA-978w-jwq5-2hmx/GHSA-978w-jwq5-2hmx.json @@ -7,12 +7,8 @@ "CVE-2020-11553" ], "details": "An issue was discovered in Castle Rock SNMPc Online 12.10.10 before 2020-01-28. There is pervasive CSRF.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-97j3-c56h-mwjc/GHSA-97j3-c56h-mwjc.json b/advisories/unreviewed/2022/05/GHSA-97j3-c56h-mwjc/GHSA-97j3-c56h-mwjc.json index 978096676cb..042797f4958 100644 --- a/advisories/unreviewed/2022/05/GHSA-97j3-c56h-mwjc/GHSA-97j3-c56h-mwjc.json +++ b/advisories/unreviewed/2022/05/GHSA-97j3-c56h-mwjc/GHSA-97j3-c56h-mwjc.json @@ -7,12 +7,8 @@ "CVE-2020-0925" ], "details": "A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft Office SharePoint XSS Vulnerability'. This CVE ID is unique from CVE-2020-0923, CVE-2020-0924, CVE-2020-0926, CVE-2020-0927, CVE-2020-0930, CVE-2020-0933, CVE-2020-0954, CVE-2020-0973, CVE-2020-0978.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-97x2-vjfg-fjhm/GHSA-97x2-vjfg-fjhm.json b/advisories/unreviewed/2022/05/GHSA-97x2-vjfg-fjhm/GHSA-97x2-vjfg-fjhm.json index bc58ff6cf6b..3359190906b 100644 --- a/advisories/unreviewed/2022/05/GHSA-97x2-vjfg-fjhm/GHSA-97x2-vjfg-fjhm.json +++ b/advisories/unreviewed/2022/05/GHSA-97x2-vjfg-fjhm/GHSA-97x2-vjfg-fjhm.json @@ -7,12 +7,8 @@ "CVE-2020-11673" ], "details": "An issue was discovered in the Responsive Poll through 1.3.4 for Wordpress. It allows an unauthenticated user to manipulate polls, e.g., delete, clone, or view a hidden poll. This is due to the usage of the callback wp_ajax_nopriv function in Includes/Total-Soft-Poll-Ajax.php for sensitive operations.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-98mh-786v-gf23/GHSA-98mh-786v-gf23.json b/advisories/unreviewed/2022/05/GHSA-98mh-786v-gf23/GHSA-98mh-786v-gf23.json index 9c41d4988a5..a3ff39d256c 100644 --- a/advisories/unreviewed/2022/05/GHSA-98mh-786v-gf23/GHSA-98mh-786v-gf23.json +++ b/advisories/unreviewed/2022/05/GHSA-98mh-786v-gf23/GHSA-98mh-786v-gf23.json @@ -7,12 +7,8 @@ "CVE-2020-0999" ], "details": "A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0889, CVE-2020-0953, CVE-2020-0959, CVE-2020-0960, CVE-2020-0988, CVE-2020-0992, CVE-2020-0994, CVE-2020-0995, CVE-2020-1008.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-98rh-85p8-3h4g/GHSA-98rh-85p8-3h4g.json b/advisories/unreviewed/2022/05/GHSA-98rh-85p8-3h4g/GHSA-98rh-85p8-3h4g.json index 480a4c6865d..38b7b5e0b3f 100644 --- a/advisories/unreviewed/2022/05/GHSA-98rh-85p8-3h4g/GHSA-98rh-85p8-3h4g.json +++ b/advisories/unreviewed/2022/05/GHSA-98rh-85p8-3h4g/GHSA-98rh-85p8-3h4g.json @@ -7,12 +7,8 @@ "CVE-2020-11783" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.68, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0.0.78, XR500 before 2.3.2.56, and XR700 before 1.0.1.10.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-99gh-8v88-fprw/GHSA-99gh-8v88-fprw.json b/advisories/unreviewed/2022/05/GHSA-99gh-8v88-fprw/GHSA-99gh-8v88-fprw.json index b0e839e7358..2bb701d3d30 100644 --- a/advisories/unreviewed/2022/05/GHSA-99gh-8v88-fprw/GHSA-99gh-8v88-fprw.json +++ b/advisories/unreviewed/2022/05/GHSA-99gh-8v88-fprw/GHSA-99gh-8v88-fprw.json @@ -7,12 +7,8 @@ "CVE-2020-11721" ], "details": "load_png in loader.c in libsixel.a in libsixel 1.8.6 has an uninitialized pointer leading to an invalid call to free, which can cause a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-99mj-2r96-xhx2/GHSA-99mj-2r96-xhx2.json b/advisories/unreviewed/2022/05/GHSA-99mj-2r96-xhx2/GHSA-99mj-2r96-xhx2.json index deba7e1d83a..a2ced0c798d 100644 --- a/advisories/unreviewed/2022/05/GHSA-99mj-2r96-xhx2/GHSA-99mj-2r96-xhx2.json +++ b/advisories/unreviewed/2022/05/GHSA-99mj-2r96-xhx2/GHSA-99mj-2r96-xhx2.json @@ -7,12 +7,8 @@ "CVE-2020-8318" ], "details": "A privilege escalation vulnerability was reported in the LenovoSystemUpdatePlugin for Lenovo System Interface Foundation prior to version that could allow an authenticated user to execute code with elevated privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-99vh-qp5v-28g7/GHSA-99vh-qp5v-28g7.json b/advisories/unreviewed/2022/05/GHSA-99vh-qp5v-28g7/GHSA-99vh-qp5v-28g7.json index b4629025bc3..bf5bed21ac6 100644 --- a/advisories/unreviewed/2022/05/GHSA-99vh-qp5v-28g7/GHSA-99vh-qp5v-28g7.json +++ b/advisories/unreviewed/2022/05/GHSA-99vh-qp5v-28g7/GHSA-99vh-qp5v-28g7.json @@ -7,12 +7,8 @@ "CVE-2020-11665" ], "details": "CA API Developer Portal 4.3.1 and earlier handles loginRedirect page redirects in an insecure manner, which allows attackers to perform open redirect attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9c43-hccm-57qv/GHSA-9c43-hccm-57qv.json b/advisories/unreviewed/2022/05/GHSA-9c43-hccm-57qv/GHSA-9c43-hccm-57qv.json index d9dc5139bee..f9ae9056dc6 100644 --- a/advisories/unreviewed/2022/05/GHSA-9c43-hccm-57qv/GHSA-9c43-hccm-57qv.json +++ b/advisories/unreviewed/2022/05/GHSA-9c43-hccm-57qv/GHSA-9c43-hccm-57qv.json @@ -7,12 +7,8 @@ "CVE-2020-11705" ], "details": "An issue was discovered in ProVide (formerly zFTPServer) through 13.1. /ajax/ImportCertificate allows an attacker to load an arbitrary certificate in .pfx format or overwrite arbitrary files via the fileName parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9c9w-w44q-j64w/GHSA-9c9w-w44q-j64w.json b/advisories/unreviewed/2022/05/GHSA-9c9w-w44q-j64w/GHSA-9c9w-w44q-j64w.json index ed73a9705a7..42a3a754bf8 100644 --- a/advisories/unreviewed/2022/05/GHSA-9c9w-w44q-j64w/GHSA-9c9w-w44q-j64w.json +++ b/advisories/unreviewed/2022/05/GHSA-9c9w-w44q-j64w/GHSA-9c9w-w44q-j64w.json @@ -7,12 +7,8 @@ "CVE-2018-21069" ], "details": "An issue was discovered on Samsung mobile devices with N(7.x) (MediaTek chipsets) software. There is information disclosure (of kernel stack memory) in a MediaTek driver. The Samsung ID is SVE-2018-11852 (July 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9cpg-qfgf-gwq7/GHSA-9cpg-qfgf-gwq7.json b/advisories/unreviewed/2022/05/GHSA-9cpg-qfgf-gwq7/GHSA-9cpg-qfgf-gwq7.json index 4977293e1c6..487928eb3b2 100644 --- a/advisories/unreviewed/2022/05/GHSA-9cpg-qfgf-gwq7/GHSA-9cpg-qfgf-gwq7.json +++ b/advisories/unreviewed/2022/05/GHSA-9cpg-qfgf-gwq7/GHSA-9cpg-qfgf-gwq7.json @@ -7,12 +7,8 @@ "CVE-2020-11729" ], "details": "An issue was discovered in DAViCal Andrew's Web Libraries (AWL) through 0.60. Long-term session cookies, uses to provide long-term session continuity, are not generated securely, enabling a brute-force attack that may be successful.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9cr7-738f-xvm3/GHSA-9cr7-738f-xvm3.json b/advisories/unreviewed/2022/05/GHSA-9cr7-738f-xvm3/GHSA-9cr7-738f-xvm3.json index 7118ef874c1..06dcecc070b 100644 --- a/advisories/unreviewed/2022/05/GHSA-9cr7-738f-xvm3/GHSA-9cr7-738f-xvm3.json +++ b/advisories/unreviewed/2022/05/GHSA-9cr7-738f-xvm3/GHSA-9cr7-738f-xvm3.json @@ -7,12 +7,8 @@ "CVE-2018-21072" ], "details": "An issue was discovered on Samsung mobile devices with M(6.0), N(7.x), and O(8.0) (Exynos chipsets) software. A kernel driver allows out-of-bounds Read/Write operations and possibly arbitrary code execution. The Samsung ID is SVE-2018-11358 (May 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9g39-jgf9-9mxx/GHSA-9g39-jgf9-9mxx.json b/advisories/unreviewed/2022/05/GHSA-9g39-jgf9-9mxx/GHSA-9g39-jgf9-9mxx.json index de21e97246f..c8ce95d763c 100644 --- a/advisories/unreviewed/2022/05/GHSA-9g39-jgf9-9mxx/GHSA-9g39-jgf9-9mxx.json +++ b/advisories/unreviewed/2022/05/GHSA-9g39-jgf9-9mxx/GHSA-9g39-jgf9-9mxx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9g7g-37p3-qm2q/GHSA-9g7g-37p3-qm2q.json b/advisories/unreviewed/2022/05/GHSA-9g7g-37p3-qm2q/GHSA-9g7g-37p3-qm2q.json index b9fc36a0a4c..3ce24a5bd93 100644 --- a/advisories/unreviewed/2022/05/GHSA-9g7g-37p3-qm2q/GHSA-9g7g-37p3-qm2q.json +++ b/advisories/unreviewed/2022/05/GHSA-9g7g-37p3-qm2q/GHSA-9g7g-37p3-qm2q.json @@ -7,12 +7,8 @@ "CVE-2020-1613" ], "details": "A vulnerability in the BGP FlowSpec implementation may cause a Juniper Networks Junos OS device to terminate an established BGP session upon receiving a specific BGP FlowSpec advertisement. The BGP NOTIFICATION message that terminates an established BGP session is sent toward the peer device that originally sent the specific BGP FlowSpec advertisement. This specific BGP FlowSpec advertisement received from a BGP peer might get propagated from a Junos OS device running the fixed release to another device that is vulnerable causing BGP session termination downstream. This issue affects IPv4 and IPv6 BGP FlowSpec deployment. This issue affects Juniper Networks Junos OS: 12.3; 12.3X48 on SRX Series; 14.1X53 on EX and QFX Series; 15.1 versions prior to 15.1R7-S5; 15.1F versions prior to 15.1F6-S13; 15.1X49 versions prior to 15.1X49-D180 on SRX Series; 15.1X53 versions prior to 15.1X53-D238 on QFX5200/QFX5110; 15.1X53 versions prior to 15.1X53-D497 on NFX Series; 15.1X53 versions prior to 15.1X53-D592 on EX2300/EX3400; 16.1 versions prior to 16.1R7-S7; 17.1 versions prior to 17.1R2-S12, 17.1R3; 17.2 versions prior to 17.2R2-S7, 17.2R3; 17.2X75 versions prior to 17.2X75-D102, 17.2X75-D110, 17.2X75-D44; 17.3 versions prior to 17.3R2-S5, 17.3R3-S5; 17.4 versions prior to 17.4R1-S8, 17.4R2; 18.1 versions prior to 18.1R2-S4, 18.1R3; 18.2X75 versions prior to 18.2X75-D20.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9m42-6c63-mxrr/GHSA-9m42-6c63-mxrr.json b/advisories/unreviewed/2022/05/GHSA-9m42-6c63-mxrr/GHSA-9m42-6c63-mxrr.json index b6886b13140..bc1c651d625 100644 --- a/advisories/unreviewed/2022/05/GHSA-9m42-6c63-mxrr/GHSA-9m42-6c63-mxrr.json +++ b/advisories/unreviewed/2022/05/GHSA-9m42-6c63-mxrr/GHSA-9m42-6c63-mxrr.json @@ -7,12 +7,8 @@ "CVE-2020-0924" ], "details": "A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft Office SharePoint XSS Vulnerability'. This CVE ID is unique from CVE-2020-0923, CVE-2020-0925, CVE-2020-0926, CVE-2020-0927, CVE-2020-0930, CVE-2020-0933, CVE-2020-0954, CVE-2020-0973, CVE-2020-0978.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9mp7-fhrg-q2xq/GHSA-9mp7-fhrg-q2xq.json b/advisories/unreviewed/2022/05/GHSA-9mp7-fhrg-q2xq/GHSA-9mp7-fhrg-q2xq.json index 1845fb39ef3..4c43b1056e7 100644 --- a/advisories/unreviewed/2022/05/GHSA-9mp7-fhrg-q2xq/GHSA-9mp7-fhrg-q2xq.json +++ b/advisories/unreviewed/2022/05/GHSA-9mp7-fhrg-q2xq/GHSA-9mp7-fhrg-q2xq.json @@ -7,12 +7,8 @@ "CVE-2020-0910" ], "details": "A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Windows Hyper-V Remote Code Execution Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9mq5-gmx4-79cq/GHSA-9mq5-gmx4-79cq.json b/advisories/unreviewed/2022/05/GHSA-9mq5-gmx4-79cq/GHSA-9mq5-gmx4-79cq.json index 18cb6e68be8..8468c4b3c50 100644 --- a/advisories/unreviewed/2022/05/GHSA-9mq5-gmx4-79cq/GHSA-9mq5-gmx4-79cq.json +++ b/advisories/unreviewed/2022/05/GHSA-9mq5-gmx4-79cq/GHSA-9mq5-gmx4-79cq.json @@ -7,12 +7,8 @@ "CVE-2020-2774" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.0.18 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9mq9-7jr9-cw53/GHSA-9mq9-7jr9-cw53.json b/advisories/unreviewed/2022/05/GHSA-9mq9-7jr9-cw53/GHSA-9mq9-7jr9-cw53.json index aff44062aba..d6ec6beb463 100644 --- a/advisories/unreviewed/2022/05/GHSA-9mq9-7jr9-cw53/GHSA-9mq9-7jr9-cw53.json +++ b/advisories/unreviewed/2022/05/GHSA-9mq9-7jr9-cw53/GHSA-9mq9-7jr9-cw53.json @@ -7,12 +7,8 @@ "CVE-2020-10384" ], "details": "An issue was discovered in the MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 software in all versions through 2.5.0. There is a local privilege escalation from the www-data account to the root account.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9q8w-pg22-cv2p/GHSA-9q8w-pg22-cv2p.json b/advisories/unreviewed/2022/05/GHSA-9q8w-pg22-cv2p/GHSA-9q8w-pg22-cv2p.json index b6cd7b67b7b..e95863ae39a 100644 --- a/advisories/unreviewed/2022/05/GHSA-9q8w-pg22-cv2p/GHSA-9q8w-pg22-cv2p.json +++ b/advisories/unreviewed/2022/05/GHSA-9q8w-pg22-cv2p/GHSA-9q8w-pg22-cv2p.json @@ -7,12 +7,8 @@ "CVE-2016-11032" ], "details": "An issue was discovered on Samsung mobile devices with M(6.0) software. An attacker can disable all Sound functionality by broadcasting an unprotected intent. The Samsung IDs are SVE-2016-7179 and SVE-2016-7182 (November 2016).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9qjg-gpw5-cfpg/GHSA-9qjg-gpw5-cfpg.json b/advisories/unreviewed/2022/05/GHSA-9qjg-gpw5-cfpg/GHSA-9qjg-gpw5-cfpg.json index 546af429960..f505246ce04 100644 --- a/advisories/unreviewed/2022/05/GHSA-9qjg-gpw5-cfpg/GHSA-9qjg-gpw5-cfpg.json +++ b/advisories/unreviewed/2022/05/GHSA-9qjg-gpw5-cfpg/GHSA-9qjg-gpw5-cfpg.json @@ -7,12 +7,8 @@ "CVE-2019-20667" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects RBR20 before 2.3.5.26, RBS20 before 2.3.5.26, RBK20 before 2.3.5.26, RBR40 before 2.3.5.30, RBS40 before 2.3.5.30, RBK40 before 2.3.5.30, RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, and RBK50 before 2.3.5.30.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9v48-gf8r-5q52/GHSA-9v48-gf8r-5q52.json b/advisories/unreviewed/2022/05/GHSA-9v48-gf8r-5q52/GHSA-9v48-gf8r-5q52.json index 497da845213..eaa39645251 100644 --- a/advisories/unreviewed/2022/05/GHSA-9v48-gf8r-5q52/GHSA-9v48-gf8r-5q52.json +++ b/advisories/unreviewed/2022/05/GHSA-9v48-gf8r-5q52/GHSA-9v48-gf8r-5q52.json @@ -7,12 +7,8 @@ "CVE-2018-21085" ], "details": "An issue was discovered on Samsung mobile devices with L(5.x), M(6.0), and N(7.x) software. There is a race condition with a resultant use-after-free in vnswap_deinit_backing_storage. The Samsung ID is SVE-2017-11176 (February 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9v72-4g4q-gqfc/GHSA-9v72-4g4q-gqfc.json b/advisories/unreviewed/2022/05/GHSA-9v72-4g4q-gqfc/GHSA-9v72-4g4q-gqfc.json index bbdb4e92bf7..5bbc97a78e0 100644 --- a/advisories/unreviewed/2022/05/GHSA-9v72-4g4q-gqfc/GHSA-9v72-4g4q-gqfc.json +++ b/advisories/unreviewed/2022/05/GHSA-9v72-4g4q-gqfc/GHSA-9v72-4g4q-gqfc.json @@ -7,12 +7,8 @@ "CVE-2020-0760" ], "details": "A remote code execution vulnerability exists when Microsoft Office improperly loads arbitrary type libraries, aka 'Microsoft Office Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0991.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9v98-2cr3-2wq3/GHSA-9v98-2cr3-2wq3.json b/advisories/unreviewed/2022/05/GHSA-9v98-2cr3-2wq3/GHSA-9v98-2cr3-2wq3.json index 82e7dc895c1..efff7179110 100644 --- a/advisories/unreviewed/2022/05/GHSA-9v98-2cr3-2wq3/GHSA-9v98-2cr3-2wq3.json +++ b/advisories/unreviewed/2022/05/GHSA-9v98-2cr3-2wq3/GHSA-9v98-2cr3-2wq3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9vqw-64j6-rhmf/GHSA-9vqw-64j6-rhmf.json b/advisories/unreviewed/2022/05/GHSA-9vqw-64j6-rhmf/GHSA-9vqw-64j6-rhmf.json index 6fe709ac6d5..e99a05c3d74 100644 --- a/advisories/unreviewed/2022/05/GHSA-9vqw-64j6-rhmf/GHSA-9vqw-64j6-rhmf.json +++ b/advisories/unreviewed/2022/05/GHSA-9vqw-64j6-rhmf/GHSA-9vqw-64j6-rhmf.json @@ -7,12 +7,8 @@ "CVE-2020-11589" ], "details": "An Insecure Direct Object Reference issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make a GET request to a certain URL and obtain information that should be provided to authenticated users only.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9vxj-q9qf-h6p2/GHSA-9vxj-q9qf-h6p2.json b/advisories/unreviewed/2022/05/GHSA-9vxj-q9qf-h6p2/GHSA-9vxj-q9qf-h6p2.json index 77f7cd745dd..cab7c7b1336 100644 --- a/advisories/unreviewed/2022/05/GHSA-9vxj-q9qf-h6p2/GHSA-9vxj-q9qf-h6p2.json +++ b/advisories/unreviewed/2022/05/GHSA-9vxj-q9qf-h6p2/GHSA-9vxj-q9qf-h6p2.json @@ -7,12 +7,8 @@ "CVE-2020-0888" ], "details": "An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka 'DirectX Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0784.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9w3w-gw8r-v3wj/GHSA-9w3w-gw8r-v3wj.json b/advisories/unreviewed/2022/05/GHSA-9w3w-gw8r-v3wj/GHSA-9w3w-gw8r-v3wj.json index bb6783b4c79..c6fb47d6ac3 100644 --- a/advisories/unreviewed/2022/05/GHSA-9w3w-gw8r-v3wj/GHSA-9w3w-gw8r-v3wj.json +++ b/advisories/unreviewed/2022/05/GHSA-9w3w-gw8r-v3wj/GHSA-9w3w-gw8r-v3wj.json @@ -7,12 +7,8 @@ "CVE-2020-10615" ], "details": "Triangle MicroWorks SCADA Data Gateway 3.02.0697 through 4.0.122, 2.41.0213 through 4.0.122 allows remote attackers cause a denial-of-service condition due to a lack of proper validation of the length of user-supplied data, prior to copying it to a fixed-length stack-based buffer. Authentication is not required to exploit this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9w69-cmrr-7x8x/GHSA-9w69-cmrr-7x8x.json b/advisories/unreviewed/2022/05/GHSA-9w69-cmrr-7x8x/GHSA-9w69-cmrr-7x8x.json index ebd22f7d62b..9b490822b01 100644 --- a/advisories/unreviewed/2022/05/GHSA-9w69-cmrr-7x8x/GHSA-9w69-cmrr-7x8x.json +++ b/advisories/unreviewed/2022/05/GHSA-9w69-cmrr-7x8x/GHSA-9w69-cmrr-7x8x.json @@ -7,12 +7,8 @@ "CVE-2020-6195" ], "details": "SAP Business Objects Business Intelligence Platform (CMC), version 4.1, 4.2, shows cleartext password in the response, leading to Information Disclosure. It involves social engineering in order to gain access to system and If password is known, it would give administrative rights to the attacker to read/modify delete the data and rights within the system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9xcw-rj64-5w25/GHSA-9xcw-rj64-5w25.json b/advisories/unreviewed/2022/05/GHSA-9xcw-rj64-5w25/GHSA-9xcw-rj64-5w25.json index 9faccb24aac..bd132b20852 100644 --- a/advisories/unreviewed/2022/05/GHSA-9xcw-rj64-5w25/GHSA-9xcw-rj64-5w25.json +++ b/advisories/unreviewed/2022/05/GHSA-9xcw-rj64-5w25/GHSA-9xcw-rj64-5w25.json @@ -7,12 +7,8 @@ "CVE-2020-1001" ], "details": "An elevation of privilege vulnerability exists in the way the Windows Push Notification Service handles objects in memory, aka 'Windows Push Notification Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0940, CVE-2020-1006, CVE-2020-1017.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c2fg-jphc-cxg4/GHSA-c2fg-jphc-cxg4.json b/advisories/unreviewed/2022/05/GHSA-c2fg-jphc-cxg4/GHSA-c2fg-jphc-cxg4.json index b0948d27f35..c25bc570e41 100644 --- a/advisories/unreviewed/2022/05/GHSA-c2fg-jphc-cxg4/GHSA-c2fg-jphc-cxg4.json +++ b/advisories/unreviewed/2022/05/GHSA-c2fg-jphc-cxg4/GHSA-c2fg-jphc-cxg4.json @@ -7,12 +7,8 @@ "CVE-2020-1623" ], "details": "A local, authenticated user with shell can view sensitive configuration information via the ev.ops configuration file. This issue affects all versions of Junos OS Evolved prior to 19.2R1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c2gh-58gm-m8hx/GHSA-c2gh-58gm-m8hx.json b/advisories/unreviewed/2022/05/GHSA-c2gh-58gm-m8hx/GHSA-c2gh-58gm-m8hx.json index 47299e8feda..d58ec79ffda 100644 --- a/advisories/unreviewed/2022/05/GHSA-c2gh-58gm-m8hx/GHSA-c2gh-58gm-m8hx.json +++ b/advisories/unreviewed/2022/05/GHSA-c2gh-58gm-m8hx/GHSA-c2gh-58gm-m8hx.json @@ -7,12 +7,8 @@ "CVE-2020-0784" ], "details": "An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka 'DirectX Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0888.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c3jm-h8hw-pr53/GHSA-c3jm-h8hw-pr53.json b/advisories/unreviewed/2022/05/GHSA-c3jm-h8hw-pr53/GHSA-c3jm-h8hw-pr53.json index ea0788a7d12..8881e2c8907 100644 --- a/advisories/unreviewed/2022/05/GHSA-c3jm-h8hw-pr53/GHSA-c3jm-h8hw-pr53.json +++ b/advisories/unreviewed/2022/05/GHSA-c3jm-h8hw-pr53/GHSA-c3jm-h8hw-pr53.json @@ -7,12 +7,8 @@ "CVE-2020-6223" ], "details": "The open document of SAP Business Objects Business Intelligence Platform, versions 4.1, 4.2, allows an attacker to modify certain error pages to include malicious content. This can misdirect a user who is tricked into accessing these error pages rendered by the application, leading to Content Spoofing.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c47h-mcrh-2p6p/GHSA-c47h-mcrh-2p6p.json b/advisories/unreviewed/2022/05/GHSA-c47h-mcrh-2p6p/GHSA-c47h-mcrh-2p6p.json index 5b238a5f4f7..c63a1d4ca3f 100644 --- a/advisories/unreviewed/2022/05/GHSA-c47h-mcrh-2p6p/GHSA-c47h-mcrh-2p6p.json +++ b/advisories/unreviewed/2022/05/GHSA-c47h-mcrh-2p6p/GHSA-c47h-mcrh-2p6p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c4c9-c8j5-4jjg/GHSA-c4c9-c8j5-4jjg.json b/advisories/unreviewed/2022/05/GHSA-c4c9-c8j5-4jjg/GHSA-c4c9-c8j5-4jjg.json index 471ed5c6425..2bd43e69248 100644 --- a/advisories/unreviewed/2022/05/GHSA-c4c9-c8j5-4jjg/GHSA-c4c9-c8j5-4jjg.json +++ b/advisories/unreviewed/2022/05/GHSA-c4c9-c8j5-4jjg/GHSA-c4c9-c8j5-4jjg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c6jp-69x3-7jrr/GHSA-c6jp-69x3-7jrr.json b/advisories/unreviewed/2022/05/GHSA-c6jp-69x3-7jrr/GHSA-c6jp-69x3-7jrr.json index 76c69f43f64..c74aba2f86e 100644 --- a/advisories/unreviewed/2022/05/GHSA-c6jp-69x3-7jrr/GHSA-c6jp-69x3-7jrr.json +++ b/advisories/unreviewed/2022/05/GHSA-c6jp-69x3-7jrr/GHSA-c6jp-69x3-7jrr.json @@ -7,12 +7,8 @@ "CVE-2020-0972" ], "details": "A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft SharePoint Spoofing Vulnerability'. This CVE ID is unique from CVE-2020-0975, CVE-2020-0976, CVE-2020-0977.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c6pp-96qc-5hc5/GHSA-c6pp-96qc-5hc5.json b/advisories/unreviewed/2022/05/GHSA-c6pp-96qc-5hc5/GHSA-c6pp-96qc-5hc5.json index f4d348e2050..116199ad9a4 100644 --- a/advisories/unreviewed/2022/05/GHSA-c6pp-96qc-5hc5/GHSA-c6pp-96qc-5hc5.json +++ b/advisories/unreviewed/2022/05/GHSA-c6pp-96qc-5hc5/GHSA-c6pp-96qc-5hc5.json @@ -7,12 +7,8 @@ "CVE-2020-0991" ], "details": "A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory, aka 'Microsoft Office Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0760.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c723-8f7g-x2fg/GHSA-c723-8f7g-x2fg.json b/advisories/unreviewed/2022/05/GHSA-c723-8f7g-x2fg/GHSA-c723-8f7g-x2fg.json index 94ffd4fc63c..853b8feada5 100644 --- a/advisories/unreviewed/2022/05/GHSA-c723-8f7g-x2fg/GHSA-c723-8f7g-x2fg.json +++ b/advisories/unreviewed/2022/05/GHSA-c723-8f7g-x2fg/GHSA-c723-8f7g-x2fg.json @@ -7,12 +7,8 @@ "CVE-2017-18660" ], "details": "An issue was discovered on Samsung mobile devices with M(6.0) and N(7.x) software. There is a buffer overflow in tlc_server. The Samsung ID is SVE-2017-8888 (July 2017).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c85r-x2fr-7mq6/GHSA-c85r-x2fr-7mq6.json b/advisories/unreviewed/2022/05/GHSA-c85r-x2fr-7mq6/GHSA-c85r-x2fr-7mq6.json index 010f4e1d4d6..0a5741e4e52 100644 --- a/advisories/unreviewed/2022/05/GHSA-c85r-x2fr-7mq6/GHSA-c85r-x2fr-7mq6.json +++ b/advisories/unreviewed/2022/05/GHSA-c85r-x2fr-7mq6/GHSA-c85r-x2fr-7mq6.json @@ -7,12 +7,8 @@ "CVE-2018-21083" ], "details": "An issue was discovered on Samsung mobile devices with M(6.0), N(7.x), and O(8.0) (Exynos or Qualcomm chipsets) software. There is information disclosure (of a kernel address) via trustonic_tee. The Samsung ID is SVE-2017-11175 (February 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c8w5-5w29-53wv/GHSA-c8w5-5w29-53wv.json b/advisories/unreviewed/2022/05/GHSA-c8w5-5w29-53wv/GHSA-c8w5-5w29-53wv.json index eeb54e8e3e1..eaa6013bf76 100644 --- a/advisories/unreviewed/2022/05/GHSA-c8w5-5w29-53wv/GHSA-c8w5-5w29-53wv.json +++ b/advisories/unreviewed/2022/05/GHSA-c8w5-5w29-53wv/GHSA-c8w5-5w29-53wv.json @@ -7,12 +7,8 @@ "CVE-2020-2772" ], "details": "Vulnerability in the Oracle Human Resources product of Oracle E-Business Suite (component: Absence Recording, Maintenance). Supported versions that are affected are 12.2.6-12.2.9. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Human Resources. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Human Resources, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Human Resources accessible data. CVSS 3.0 Base Score 4.1 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:N/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c9ph-69mc-wqh4/GHSA-c9ph-69mc-wqh4.json b/advisories/unreviewed/2022/05/GHSA-c9ph-69mc-wqh4/GHSA-c9ph-69mc-wqh4.json index 88070709fbd..4abd8ae1cae 100644 --- a/advisories/unreviewed/2022/05/GHSA-c9ph-69mc-wqh4/GHSA-c9ph-69mc-wqh4.json +++ b/advisories/unreviewed/2022/05/GHSA-c9ph-69mc-wqh4/GHSA-c9ph-69mc-wqh4.json @@ -7,12 +7,8 @@ "CVE-2017-18652" ], "details": "An issue was discovered on Samsung mobile devices with M(6.0) and N(7.x) software. SVoice allows arbitrary code execution by changing dynamic libraries. The Samsung ID is SVE-2017-9299 (September 2017).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cchg-585c-7mrm/GHSA-cchg-585c-7mrm.json b/advisories/unreviewed/2022/05/GHSA-cchg-585c-7mrm/GHSA-cchg-585c-7mrm.json index acac7199a03..ee8ec94c309 100644 --- a/advisories/unreviewed/2022/05/GHSA-cchg-585c-7mrm/GHSA-cchg-585c-7mrm.json +++ b/advisories/unreviewed/2022/05/GHSA-cchg-585c-7mrm/GHSA-cchg-585c-7mrm.json @@ -7,12 +7,8 @@ "CVE-2020-11557" ], "details": "An issue was discovered in Castle Rock SNMPc Online 12.10.10 before 2020-01-28. It includes the username and password values in cleartext within each request's cookie value.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ccww-4p73-vvq6/GHSA-ccww-4p73-vvq6.json b/advisories/unreviewed/2022/05/GHSA-ccww-4p73-vvq6/GHSA-ccww-4p73-vvq6.json index 422ee68f55d..1d9bcc559b5 100644 --- a/advisories/unreviewed/2022/05/GHSA-ccww-4p73-vvq6/GHSA-ccww-4p73-vvq6.json +++ b/advisories/unreviewed/2022/05/GHSA-ccww-4p73-vvq6/GHSA-ccww-4p73-vvq6.json @@ -7,12 +7,8 @@ "CVE-2020-1004" ], "details": "An elevation of privilege vulnerability exists when the Windows Graphics Component improperly handles objects in memory, aka 'Windows Graphics Component Elevation of Privilege Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cfw7-36f5-g7hv/GHSA-cfw7-36f5-g7hv.json b/advisories/unreviewed/2022/05/GHSA-cfw7-36f5-g7hv/GHSA-cfw7-36f5-g7hv.json index ee58e043425..602a30c434f 100644 --- a/advisories/unreviewed/2022/05/GHSA-cfw7-36f5-g7hv/GHSA-cfw7-36f5-g7hv.json +++ b/advisories/unreviewed/2022/05/GHSA-cfw7-36f5-g7hv/GHSA-cfw7-36f5-g7hv.json @@ -7,12 +7,8 @@ "CVE-2020-1016" ], "details": "An information disclosure vulnerability exists when the Windows Push Notification Service improperly handles objects in memory, aka 'Windows Push Notification Service Information Disclosure Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cg22-wvf3-j78q/GHSA-cg22-wvf3-j78q.json b/advisories/unreviewed/2022/05/GHSA-cg22-wvf3-j78q/GHSA-cg22-wvf3-j78q.json index c98b9adfdbc..cb4030836fa 100644 --- a/advisories/unreviewed/2022/05/GHSA-cg22-wvf3-j78q/GHSA-cg22-wvf3-j78q.json +++ b/advisories/unreviewed/2022/05/GHSA-cg22-wvf3-j78q/GHSA-cg22-wvf3-j78q.json @@ -7,12 +7,8 @@ "CVE-2020-5550" ], "details": "Session fixation vulnerability in EasyBlocks IPv6 Ver. 2.0.1 and earlier, and Enterprise Ver. 2.0.1 and earlier allows remote attackers to impersonate a registered user and log in the management console, that may result in information alteration/disclosure via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cj82-9mrm-6p3m/GHSA-cj82-9mrm-6p3m.json b/advisories/unreviewed/2022/05/GHSA-cj82-9mrm-6p3m/GHSA-cj82-9mrm-6p3m.json index f535f3c242c..772d8af08c9 100644 --- a/advisories/unreviewed/2022/05/GHSA-cj82-9mrm-6p3m/GHSA-cj82-9mrm-6p3m.json +++ b/advisories/unreviewed/2022/05/GHSA-cj82-9mrm-6p3m/GHSA-cj82-9mrm-6p3m.json @@ -7,12 +7,8 @@ "CVE-2020-8430" ], "details": "Stormshield Network Security 310 3.7.10 devices have an auth/lang.html?rurl= Open Redirect vulnerability on the captive portal. For example, the attacker can use rurl=//example.com instead of rurl=https://example.com in the query string.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cjgw-2hcv-hh3w/GHSA-cjgw-2hcv-hh3w.json b/advisories/unreviewed/2022/05/GHSA-cjgw-2hcv-hh3w/GHSA-cjgw-2hcv-hh3w.json index ae4c15a4663..f314fde7617 100644 --- a/advisories/unreviewed/2022/05/GHSA-cjgw-2hcv-hh3w/GHSA-cjgw-2hcv-hh3w.json +++ b/advisories/unreviewed/2022/05/GHSA-cjgw-2hcv-hh3w/GHSA-cjgw-2hcv-hh3w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cjpx-2x82-p6v9/GHSA-cjpx-2x82-p6v9.json b/advisories/unreviewed/2022/05/GHSA-cjpx-2x82-p6v9/GHSA-cjpx-2x82-p6v9.json index 41375746df9..42a7414e60e 100644 --- a/advisories/unreviewed/2022/05/GHSA-cjpx-2x82-p6v9/GHSA-cjpx-2x82-p6v9.json +++ b/advisories/unreviewed/2022/05/GHSA-cjpx-2x82-p6v9/GHSA-cjpx-2x82-p6v9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cm7j-2j4j-9pf4/GHSA-cm7j-2j4j-9pf4.json b/advisories/unreviewed/2022/05/GHSA-cm7j-2j4j-9pf4/GHSA-cm7j-2j4j-9pf4.json index 60808d9dc80..8eb323d56ee 100644 --- a/advisories/unreviewed/2022/05/GHSA-cm7j-2j4j-9pf4/GHSA-cm7j-2j4j-9pf4.json +++ b/advisories/unreviewed/2022/05/GHSA-cm7j-2j4j-9pf4/GHSA-cm7j-2j4j-9pf4.json @@ -7,12 +7,8 @@ "CVE-2020-1990" ], "details": "A stack-based buffer overflow vulnerability in the management server component of PAN-OS allows an authenticated user to upload a corrupted PAN-OS configuration and potentially execute code with root privileges. This issue affects Palo Alto Networks PAN-OS 8.1 versions before 8.1.13; 9.0 versions before 9.0.7. This issue does not affect PAN-OS 7.1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cmwc-grpj-cw7x/GHSA-cmwc-grpj-cw7x.json b/advisories/unreviewed/2022/05/GHSA-cmwc-grpj-cw7x/GHSA-cmwc-grpj-cw7x.json index 6008b6a319f..eba4cbaf8c3 100644 --- a/advisories/unreviewed/2022/05/GHSA-cmwc-grpj-cw7x/GHSA-cmwc-grpj-cw7x.json +++ b/advisories/unreviewed/2022/05/GHSA-cmwc-grpj-cw7x/GHSA-cmwc-grpj-cw7x.json @@ -7,12 +7,8 @@ "CVE-2020-2706" ], "details": "Vulnerability in the Primavera P6 Enterprise Project Portfolio Management product of Oracle Construction and Engineering (component: Project Manager). Supported versions that are affected are 16.2.0.0 - 16.2.19.3, 17.12.0.0 - 17.12.17.0, 18.8.0.0 - 18.8.18.0, 19.12.1.0 - 19.12.3.0 and 20.1.0.0 - 20.2.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Primavera P6 Enterprise Project Portfolio Management. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Primavera P6 Enterprise Project Portfolio Management, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Primavera P6 Enterprise Project Portfolio Management accessible data as well as unauthorized read access to a subset of Primavera P6 Enterprise Project Portfolio Management accessible data. CVSS 3.0 Base Score 5.4 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cqv4-fxpf-mm68/GHSA-cqv4-fxpf-mm68.json b/advisories/unreviewed/2022/05/GHSA-cqv4-fxpf-mm68/GHSA-cqv4-fxpf-mm68.json index f2071f5db19..05b53ee0db7 100644 --- a/advisories/unreviewed/2022/05/GHSA-cqv4-fxpf-mm68/GHSA-cqv4-fxpf-mm68.json +++ b/advisories/unreviewed/2022/05/GHSA-cqv4-fxpf-mm68/GHSA-cqv4-fxpf-mm68.json @@ -7,12 +7,8 @@ "CVE-2020-8316" ], "details": "A vulnerability was reported in Lenovo Vantage prior to version 10.2003.10.0 that could allow an authenticated user to read files on the system with elevated privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-crgj-8f5q-cr98/GHSA-crgj-8f5q-cr98.json b/advisories/unreviewed/2022/05/GHSA-crgj-8f5q-cr98/GHSA-crgj-8f5q-cr98.json index 15ce8113af1..64b91874da4 100644 --- a/advisories/unreviewed/2022/05/GHSA-crgj-8f5q-cr98/GHSA-crgj-8f5q-cr98.json +++ b/advisories/unreviewed/2022/05/GHSA-crgj-8f5q-cr98/GHSA-crgj-8f5q-cr98.json @@ -7,12 +7,8 @@ "CVE-2019-20767" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects D6100 before 1.0.0.60, D3600 before 1.0.0.75, D6000 before 1.0.0.75, R9000 before 1.0.4.26, R8900 before 1.0.4.26, R7800 before 1.0.2.52, WNDR4500v3 before 1.0.0.58, WNDR4300v2 before 1.0.0.58, WNDR4300 before 1.0.2.104, WNDR3700v4 before 1.0.2.102, and WNR2000v5 before 1.0.0.66.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cvh6-6h56-pmmg/GHSA-cvh6-6h56-pmmg.json b/advisories/unreviewed/2022/05/GHSA-cvh6-6h56-pmmg/GHSA-cvh6-6h56-pmmg.json index 76b21d2bea9..a0e9740f4af 100644 --- a/advisories/unreviewed/2022/05/GHSA-cvh6-6h56-pmmg/GHSA-cvh6-6h56-pmmg.json +++ b/advisories/unreviewed/2022/05/GHSA-cvh6-6h56-pmmg/GHSA-cvh6-6h56-pmmg.json @@ -7,12 +7,8 @@ "CVE-2016-11033" ], "details": "An issue was discovered on Samsung mobile devices with M(6.0) software. There is a heap-based buffer overflow in tlc_server. The Samsung IDs are SVE-2016-7220 and SVE-2016-7225 (November 2016).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cvp7-fvc9-hgj8/GHSA-cvp7-fvc9-hgj8.json b/advisories/unreviewed/2022/05/GHSA-cvp7-fvc9-hgj8/GHSA-cvp7-fvc9-hgj8.json index 7bea78090ea..93bb4b69602 100644 --- a/advisories/unreviewed/2022/05/GHSA-cvp7-fvc9-hgj8/GHSA-cvp7-fvc9-hgj8.json +++ b/advisories/unreviewed/2022/05/GHSA-cvp7-fvc9-hgj8/GHSA-cvp7-fvc9-hgj8.json @@ -7,12 +7,8 @@ "CVE-2017-18686" ], "details": "An issue was discovered on Samsung mobile devices with M(6.0) and N(7.0) software. Contact information can leak to a log file because of the broadcasting of an unprotected intent. The Samsung ID is SVE-2016-7180 (February 2017).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cvpf-v6p3-8699/GHSA-cvpf-v6p3-8699.json b/advisories/unreviewed/2022/05/GHSA-cvpf-v6p3-8699/GHSA-cvpf-v6p3-8699.json index 869a17fd2ca..63e891ac68f 100644 --- a/advisories/unreviewed/2022/05/GHSA-cvpf-v6p3-8699/GHSA-cvpf-v6p3-8699.json +++ b/advisories/unreviewed/2022/05/GHSA-cvpf-v6p3-8699/GHSA-cvpf-v6p3-8699.json @@ -7,12 +7,8 @@ "CVE-2016-11051" ], "details": "An issue was discovered on Samsung mobile devices with J(4.2) (Qualcomm Wi-Fi chipsets) software. There is a buffer overflow in the Qualcomm WLAN Driver. The Samsung ID is SVE-2016-5326 (February 2016).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cwf2-c942-3pqv/GHSA-cwf2-c942-3pqv.json b/advisories/unreviewed/2022/05/GHSA-cwf2-c942-3pqv/GHSA-cwf2-c942-3pqv.json index 11fe627f099..b52c7ccc3d7 100644 --- a/advisories/unreviewed/2022/05/GHSA-cwf2-c942-3pqv/GHSA-cwf2-c942-3pqv.json +++ b/advisories/unreviewed/2022/05/GHSA-cwf2-c942-3pqv/GHSA-cwf2-c942-3pqv.json @@ -7,12 +7,8 @@ "CVE-2020-1621" ], "details": "A local, authenticated user with shell can obtain the hashed values of login passwords via configd traces. This issue affects all versions of Junos OS Evolved prior to 19.3R1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cwjj-c2f3-hv5q/GHSA-cwjj-c2f3-hv5q.json b/advisories/unreviewed/2022/05/GHSA-cwjj-c2f3-hv5q/GHSA-cwjj-c2f3-hv5q.json index 157703dce9c..899b02b0b40 100644 --- a/advisories/unreviewed/2022/05/GHSA-cwjj-c2f3-hv5q/GHSA-cwjj-c2f3-hv5q.json +++ b/advisories/unreviewed/2022/05/GHSA-cwjj-c2f3-hv5q/GHSA-cwjj-c2f3-hv5q.json @@ -7,12 +7,8 @@ "CVE-2016-11039" ], "details": "An issue was discovered on Samsung mobile devices with KK(4.4), L(5.0/5.1), and M(6.0) (AP + CP MDM9x35, or Qualcomm Onechip) software. There is a NULL pointer dereference issue in the IPC socket code. The Samsung ID is SVE-2016-5980 (July 2016).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cx39-4vq4-956m/GHSA-cx39-4vq4-956m.json b/advisories/unreviewed/2022/05/GHSA-cx39-4vq4-956m/GHSA-cx39-4vq4-956m.json index 97af5b13129..fe7728db175 100644 --- a/advisories/unreviewed/2022/05/GHSA-cx39-4vq4-956m/GHSA-cx39-4vq4-956m.json +++ b/advisories/unreviewed/2022/05/GHSA-cx39-4vq4-956m/GHSA-cx39-4vq4-956m.json @@ -7,12 +7,8 @@ "CVE-2020-11799" ], "details": "Z-Cron 5.6 Build 04 allows an unprivileged attacker to elevate privileges by modifying a privileged user's task. This can also affect all users who are signed in on the system if a shell is placed in a location that other unprivileged users have access to.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f239-4p8p-j5cx/GHSA-f239-4p8p-j5cx.json b/advisories/unreviewed/2022/05/GHSA-f239-4p8p-j5cx/GHSA-f239-4p8p-j5cx.json index 69149274764..df5623b1ef7 100644 --- a/advisories/unreviewed/2022/05/GHSA-f239-4p8p-j5cx/GHSA-f239-4p8p-j5cx.json +++ b/advisories/unreviewed/2022/05/GHSA-f239-4p8p-j5cx/GHSA-f239-4p8p-j5cx.json @@ -7,12 +7,8 @@ "CVE-2020-0923" ], "details": "A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft Office SharePoint XSS Vulnerability'. This CVE ID is unique from CVE-2020-0924, CVE-2020-0925, CVE-2020-0926, CVE-2020-0927, CVE-2020-0930, CVE-2020-0933, CVE-2020-0954, CVE-2020-0973, CVE-2020-0978.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f287-cx98-4ghq/GHSA-f287-cx98-4ghq.json b/advisories/unreviewed/2022/05/GHSA-f287-cx98-4ghq/GHSA-f287-cx98-4ghq.json index b80a8e4ef7b..c3e72e1a8a1 100644 --- a/advisories/unreviewed/2022/05/GHSA-f287-cx98-4ghq/GHSA-f287-cx98-4ghq.json +++ b/advisories/unreviewed/2022/05/GHSA-f287-cx98-4ghq/GHSA-f287-cx98-4ghq.json @@ -7,12 +7,8 @@ "CVE-2020-9349" ], "details": "The CACAGOO Cloud Storage Intelligent Camera TV-288ZD-2MP with firmware 3.4.2.0919 allows access to the RTSP service without a password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f3pr-7rjp-hqhv/GHSA-f3pr-7rjp-hqhv.json b/advisories/unreviewed/2022/05/GHSA-f3pr-7rjp-hqhv/GHSA-f3pr-7rjp-hqhv.json index 684ef90420e..6db19428621 100644 --- a/advisories/unreviewed/2022/05/GHSA-f3pr-7rjp-hqhv/GHSA-f3pr-7rjp-hqhv.json +++ b/advisories/unreviewed/2022/05/GHSA-f3pr-7rjp-hqhv/GHSA-f3pr-7rjp-hqhv.json @@ -7,12 +7,8 @@ "CVE-2020-0932" ], "details": "A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package, aka 'Microsoft SharePoint Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0920, CVE-2020-0929, CVE-2020-0931, CVE-2020-0971, CVE-2020-0974.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f3x5-ww2f-cc7g/GHSA-f3x5-ww2f-cc7g.json b/advisories/unreviewed/2022/05/GHSA-f3x5-ww2f-cc7g/GHSA-f3x5-ww2f-cc7g.json index f74e2c903e8..8aa91e1c9cb 100644 --- a/advisories/unreviewed/2022/05/GHSA-f3x5-ww2f-cc7g/GHSA-f3x5-ww2f-cc7g.json +++ b/advisories/unreviewed/2022/05/GHSA-f3x5-ww2f-cc7g/GHSA-f3x5-ww2f-cc7g.json @@ -7,12 +7,8 @@ "CVE-2020-0967" ], "details": "A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'VBScript Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0966.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f42w-g248-vggq/GHSA-f42w-g248-vggq.json b/advisories/unreviewed/2022/05/GHSA-f42w-g248-vggq/GHSA-f42w-g248-vggq.json index cca9c9ac8b5..6a298c7a128 100644 --- a/advisories/unreviewed/2022/05/GHSA-f42w-g248-vggq/GHSA-f42w-g248-vggq.json +++ b/advisories/unreviewed/2022/05/GHSA-f42w-g248-vggq/GHSA-f42w-g248-vggq.json @@ -7,12 +7,8 @@ "CVE-2020-11712" ], "details": "Open Upload through 0.4.3 allows XSS via index.php?action=u and the filename field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f4q7-86mf-q9v2/GHSA-f4q7-86mf-q9v2.json b/advisories/unreviewed/2022/05/GHSA-f4q7-86mf-q9v2/GHSA-f4q7-86mf-q9v2.json index 2de059e0eb5..6ad3c98617a 100644 --- a/advisories/unreviewed/2022/05/GHSA-f4q7-86mf-q9v2/GHSA-f4q7-86mf-q9v2.json +++ b/advisories/unreviewed/2022/05/GHSA-f4q7-86mf-q9v2/GHSA-f4q7-86mf-q9v2.json @@ -7,12 +7,8 @@ "CVE-2020-10629" ], "details": "WebAccess/NMS (versions prior to 3.0.2) does not sanitize XML input. Specially crafted XML input could allow an attacker to read sensitive files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f63m-wm25-w99w/GHSA-f63m-wm25-w99w.json b/advisories/unreviewed/2022/05/GHSA-f63m-wm25-w99w/GHSA-f63m-wm25-w99w.json index de45489bcc3..76bf8f00a37 100644 --- a/advisories/unreviewed/2022/05/GHSA-f63m-wm25-w99w/GHSA-f63m-wm25-w99w.json +++ b/advisories/unreviewed/2022/05/GHSA-f63m-wm25-w99w/GHSA-f63m-wm25-w99w.json @@ -7,12 +7,8 @@ "CVE-2017-18687" ], "details": "An issue was discovered on Samsung mobile devices with KK(4.4), L(5.0/5.1), M(6.0), and N(7.0) software. An attacker can obtain the full pathnames of sdcard files by reading the system protected log upon reception of a certain intent. The Samsung ID is SVE-2016-7183 (January 2017).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f6gf-jq3w-2r4c/GHSA-f6gf-jq3w-2r4c.json b/advisories/unreviewed/2022/05/GHSA-f6gf-jq3w-2r4c/GHSA-f6gf-jq3w-2r4c.json index 251afda9a8d..cdcd789ec66 100644 --- a/advisories/unreviewed/2022/05/GHSA-f6gf-jq3w-2r4c/GHSA-f6gf-jq3w-2r4c.json +++ b/advisories/unreviewed/2022/05/GHSA-f6gf-jq3w-2r4c/GHSA-f6gf-jq3w-2r4c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f726-9xgv-wf6h/GHSA-f726-9xgv-wf6h.json b/advisories/unreviewed/2022/05/GHSA-f726-9xgv-wf6h/GHSA-f726-9xgv-wf6h.json index 48e31d75e7f..c13a86e8af8 100644 --- a/advisories/unreviewed/2022/05/GHSA-f726-9xgv-wf6h/GHSA-f726-9xgv-wf6h.json +++ b/advisories/unreviewed/2022/05/GHSA-f726-9xgv-wf6h/GHSA-f726-9xgv-wf6h.json @@ -7,12 +7,8 @@ "CVE-2020-4325" ], "details": "The IBM Process Federation Server 18.0.0.1, 18.0.0.2, 19.0.0.1, 19.0.0.2, and 19.0.0.3 Global Teams REST API does not properly shutdown the thread pools that it creates to retrieve Global Teams information from the federated systems. As a consequence, the Java Virtual Machine can't recover the memory used by those thread pools, which leads to an OutOfMemory exception when the Process Federation Server Global Teams REST API is used extensively. IBM X-Force ID: 177596.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f75m-6h7p-4xx8/GHSA-f75m-6h7p-4xx8.json b/advisories/unreviewed/2022/05/GHSA-f75m-6h7p-4xx8/GHSA-f75m-6h7p-4xx8.json index 9682cbc2081..e39f045a7a5 100644 --- a/advisories/unreviewed/2022/05/GHSA-f75m-6h7p-4xx8/GHSA-f75m-6h7p-4xx8.json +++ b/advisories/unreviewed/2022/05/GHSA-f75m-6h7p-4xx8/GHSA-f75m-6h7p-4xx8.json @@ -7,12 +7,8 @@ "CVE-2018-21076" ], "details": "An issue was discovered on Samsung mobile devices with N(7.x) (Exynos8890/8895 chipsets) software. There is information disclosure (a KASLR offset) in the Secure Driver via a modified trustlet. The Samsung ID is SVE-2017-10987 (April 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f7mf-8fxg-9ggp/GHSA-f7mf-8fxg-9ggp.json b/advisories/unreviewed/2022/05/GHSA-f7mf-8fxg-9ggp/GHSA-f7mf-8fxg-9ggp.json index 6c16246a9a5..50a673c4939 100644 --- a/advisories/unreviewed/2022/05/GHSA-f7mf-8fxg-9ggp/GHSA-f7mf-8fxg-9ggp.json +++ b/advisories/unreviewed/2022/05/GHSA-f7mf-8fxg-9ggp/GHSA-f7mf-8fxg-9ggp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f82j-j8qp-7qr6/GHSA-f82j-j8qp-7qr6.json b/advisories/unreviewed/2022/05/GHSA-f82j-j8qp-7qr6/GHSA-f82j-j8qp-7qr6.json index 54ac5edadde..eb1435f09cf 100644 --- a/advisories/unreviewed/2022/05/GHSA-f82j-j8qp-7qr6/GHSA-f82j-j8qp-7qr6.json +++ b/advisories/unreviewed/2022/05/GHSA-f82j-j8qp-7qr6/GHSA-f82j-j8qp-7qr6.json @@ -7,12 +7,8 @@ "CVE-2020-1007" ], "details": "An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-0821.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f86q-8q37-c2x4/GHSA-f86q-8q37-c2x4.json b/advisories/unreviewed/2022/05/GHSA-f86q-8q37-c2x4/GHSA-f86q-8q37-c2x4.json index e4c4c16a9e9..7455df8c81e 100644 --- a/advisories/unreviewed/2022/05/GHSA-f86q-8q37-c2x4/GHSA-f86q-8q37-c2x4.json +++ b/advisories/unreviewed/2022/05/GHSA-f86q-8q37-c2x4/GHSA-f86q-8q37-c2x4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f8jp-46hx-mw9r/GHSA-f8jp-46hx-mw9r.json b/advisories/unreviewed/2022/05/GHSA-f8jp-46hx-mw9r/GHSA-f8jp-46hx-mw9r.json index f119d5ad9dc..e64469349d0 100644 --- a/advisories/unreviewed/2022/05/GHSA-f8jp-46hx-mw9r/GHSA-f8jp-46hx-mw9r.json +++ b/advisories/unreviewed/2022/05/GHSA-f8jp-46hx-mw9r/GHSA-f8jp-46hx-mw9r.json @@ -7,12 +7,8 @@ "CVE-2020-1615" ], "details": "The factory configuration for vMX installations, as shipped, includes default credentials for the root account. Without proper modification of these default credentials by the administrator, an attacker could exploit these credentials and access the vMX instance without authorization. This issue affects Juniper Networks Junos OS: 17.1 versions prior to 17.1R2-S11, 17.1R3-S2 on vMX; 17.2 versions prior to 17.2R3-S3 on vMX; 17.3 versions prior to 17.3R2-S5, 17.3R3-S7 on vMX; 17.4 versions prior to 17.4R2-S9, 17.4R3 on vMX; 18.1 versions prior to 18.1R3-S9 on vMX; 18.2 versions prior to 18.2R2-S7, 18.2R3-S3 on vMX; 18.2X75 versions prior to 18.2X75-D420, 18.2X75-D60 on vMX; 18.3 versions prior to 18.3R1-S7, 18.3R2-S3, 18.3R3-S1 on vMX; 18.4 versions prior to 18.4R1-S5, 18.4R2-S3, 18.4R3 on vMX; 19.1 versions prior to 19.1R1-S4, 19.1R2, 19.1R3 on vMX; 19.2 versions prior to 19.2R1-S3, 19.2R2 on vMX; 19.3 versions prior to 19.3R1-S1, 19.3R2 on vMX.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f929-pjc3-gg99/GHSA-f929-pjc3-gg99.json b/advisories/unreviewed/2022/05/GHSA-f929-pjc3-gg99/GHSA-f929-pjc3-gg99.json index 318fa0ee648..a8bd20f89c1 100644 --- a/advisories/unreviewed/2022/05/GHSA-f929-pjc3-gg99/GHSA-f929-pjc3-gg99.json +++ b/advisories/unreviewed/2022/05/GHSA-f929-pjc3-gg99/GHSA-f929-pjc3-gg99.json @@ -7,12 +7,8 @@ "CVE-2020-0956" ], "details": "An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0957, CVE-2020-0958.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f945-c94g-fh62/GHSA-f945-c94g-fh62.json b/advisories/unreviewed/2022/05/GHSA-f945-c94g-fh62/GHSA-f945-c94g-fh62.json index bdbc791e1c3..757298b1f21 100644 --- a/advisories/unreviewed/2022/05/GHSA-f945-c94g-fh62/GHSA-f945-c94g-fh62.json +++ b/advisories/unreviewed/2022/05/GHSA-f945-c94g-fh62/GHSA-f945-c94g-fh62.json @@ -7,12 +7,8 @@ "CVE-2020-0952" ], "details": "An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Information Disclosure Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f9j8-c9vv-wvpc/GHSA-f9j8-c9vv-wvpc.json b/advisories/unreviewed/2022/05/GHSA-f9j8-c9vv-wvpc/GHSA-f9j8-c9vv-wvpc.json index 20b6e8f86d1..4f5c5d08b8f 100644 --- a/advisories/unreviewed/2022/05/GHSA-f9j8-c9vv-wvpc/GHSA-f9j8-c9vv-wvpc.json +++ b/advisories/unreviewed/2022/05/GHSA-f9j8-c9vv-wvpc/GHSA-f9j8-c9vv-wvpc.json @@ -7,12 +7,8 @@ "CVE-2020-2741" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.40, prior to 6.0.20 and prior to 6.1.6. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle VM VirtualBox accessible data. CVSS 3.0 Base Score 6.0 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f9xm-gx32-3xcw/GHSA-f9xm-gx32-3xcw.json b/advisories/unreviewed/2022/05/GHSA-f9xm-gx32-3xcw/GHSA-f9xm-gx32-3xcw.json index d0b3312807a..365546c03d4 100644 --- a/advisories/unreviewed/2022/05/GHSA-f9xm-gx32-3xcw/GHSA-f9xm-gx32-3xcw.json +++ b/advisories/unreviewed/2022/05/GHSA-f9xm-gx32-3xcw/GHSA-f9xm-gx32-3xcw.json @@ -7,12 +7,8 @@ "CVE-2020-6224" ], "details": "SAP NetWeaver AS Java (HTTP Service), versions 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, allows an attacker with administrator privileges to access user sensitive data such as passwords in trace files, when the user logs in and sends request with login credentials, leading to Information Disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fc92-44ch-wwhv/GHSA-fc92-44ch-wwhv.json b/advisories/unreviewed/2022/05/GHSA-fc92-44ch-wwhv/GHSA-fc92-44ch-wwhv.json index f7a4e7ac1e2..815f14ee61a 100644 --- a/advisories/unreviewed/2022/05/GHSA-fc92-44ch-wwhv/GHSA-fc92-44ch-wwhv.json +++ b/advisories/unreviewed/2022/05/GHSA-fc92-44ch-wwhv/GHSA-fc92-44ch-wwhv.json @@ -7,12 +7,8 @@ "CVE-2020-1632" ], "details": "In a certain condition, receipt of a specific BGP UPDATE message might cause Juniper Networks Junos OS and Junos OS Evolved devices to advertise an invalid BGP UPDATE message to other peers, causing the other peers to terminate the established BGP session, creating a Denial of Service (DoS) condition. For example, Router A sends a specific BGP UPDATE to Router B, causing Router B to send an invalid BGP UPDATE message to Router C, resulting in termination of the BGP session between Router B and Router C. This issue might occur when there is at least a single BGP session established on the device that does not support 4 Byte AS extension (RFC 4893). Repeated receipt of the same BGP UPDATE can result in an extended DoS condition. This issue affects Juniper Networks Junos OS: 16.1 versions prior to 16.1R7-S6; 16.2 versions prior to 16.2R2-S11; 17.1 versions prior to 17.1R2-S11, 17.1R3-S2; 17.2 versions prior to 17.2R1-S9, 17.2R2-S8, 17.2R3-S3; 17.2X75 versions prior to 17.2X75-D105, 17.2X75-D110, 17.2X75-D44; 17.3 versions prior to 17.3R2-S5, 17.3R3-S7; 17.4 versions prior to 17.4R2-S8, 17.4R3; 18.1 versions prior to 18.1R3-S8; 18.2 versions prior to 18.2R2-S6, 18.2R3-S2; 18.2X75 versions prior to 18.2X75-D12, 18.2X75-D33, 18.2X75-D411, 18.2X75-D420, 18.2X75-D51, 18.2X75-D60; 18.3 versions prior to 18.3R1-S6, 18.3R2-S3, 18.3R3; 18.4 versions prior to 18.4R1-S5, 18.4R3; 18.4 version 18.4R2 and later versions; 19.1 versions prior to 19.1R1-S3, 19.1R2; 19.2 versions prior to 19.2R1-S2, 19.2R2. This issue does not affect Juniper Networks Junos OS prior to 16.1R1. This issue affects Juniper Networks Junos OS Evolved prior to 19.2R2-EVO.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ff8p-26v5-2cw5/GHSA-ff8p-26v5-2cw5.json b/advisories/unreviewed/2022/05/GHSA-ff8p-26v5-2cw5/GHSA-ff8p-26v5-2cw5.json index 22651e3092d..c44a6c0bebd 100644 --- a/advisories/unreviewed/2022/05/GHSA-ff8p-26v5-2cw5/GHSA-ff8p-26v5-2cw5.json +++ b/advisories/unreviewed/2022/05/GHSA-ff8p-26v5-2cw5/GHSA-ff8p-26v5-2cw5.json @@ -7,12 +7,8 @@ "CVE-2020-11743" ], "details": "An issue was discovered in Xen through 4.13.x, allowing guest OS users to cause a denial of service because of a bad error path in GNTTABOP_map_grant. Grant table operations are expected to return 0 for success, and a negative number for errors. Some misplaced brackets cause one error path to return 1 instead of a negative value. The grant table code in Linux treats this condition as success, and proceeds with incorrectly initialised state. A buggy or malicious guest can construct its grant table in such a way that, when a backend domain tries to map a grant, it hits the incorrect error path. This will crash a Linux based dom0 or backend domain.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fg22-5jgq-2wm6/GHSA-fg22-5jgq-2wm6.json b/advisories/unreviewed/2022/05/GHSA-fg22-5jgq-2wm6/GHSA-fg22-5jgq-2wm6.json index d27ea600787..1c6ba983d2f 100644 --- a/advisories/unreviewed/2022/05/GHSA-fg22-5jgq-2wm6/GHSA-fg22-5jgq-2wm6.json +++ b/advisories/unreviewed/2022/05/GHSA-fg22-5jgq-2wm6/GHSA-fg22-5jgq-2wm6.json @@ -7,12 +7,8 @@ "CVE-2020-1627" ], "details": "A vulnerability in Juniper Networks Junos OS on vMX and MX150 devices may allow an attacker to cause a Denial of Service (DoS) by sending specific packets requiring special processing in microcode that the flow cache can't handle, causing the riot forwarding daemon to crash. By continuously sending the same specific packets, an attacker can repeatedly crash the riot process causing a sustained Denial of Service. Flow cache is specific to vMX based products and the MX150, and is enabled by default in performance mode. This issue can only be triggered by traffic destined to the device. Transit traffic will not cause the riot daemon to crash. When the issue occurs, a core dump and riot log file entry are generated. For example: /var/crash/core.J-UKERN.mpc0.1557255993.3864.gz /home/pfe/RIOT logs: fpc0 riot[1888]: PANIC in lu_reorder_send_packet_postproc(): fpc0 riot[6655]: PANIC in lu_reorder_send_packet_postproc(): This issue affects Juniper Networks Junos OS: 18.1 versions prior to 18.1R3 on vMX and MX150; 18.2 versions prior to 18.2R3 on vMX and MX150; 18.2X75 versions prior to 18.2X75-D60 on vMX and MX150; 18.3 versions prior to 18.3R3 on vMX and MX150; 18.4 versions prior to 18.4R2 on vMX and MX150; 19.1 versions prior to 19.1R2 on vMX and MX150. This issue does not affect Junos OS versions prior to 18.1R1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fg35-c4c9-gp8p/GHSA-fg35-c4c9-gp8p.json b/advisories/unreviewed/2022/05/GHSA-fg35-c4c9-gp8p/GHSA-fg35-c4c9-gp8p.json index 89f1a34e08d..28783632017 100644 --- a/advisories/unreviewed/2022/05/GHSA-fg35-c4c9-gp8p/GHSA-fg35-c4c9-gp8p.json +++ b/advisories/unreviewed/2022/05/GHSA-fg35-c4c9-gp8p/GHSA-fg35-c4c9-gp8p.json @@ -7,12 +7,8 @@ "CVE-2020-1801" ], "details": "There is an improper authentication vulnerability in several smartphones. Certain function interface in the system does not sufficiently validate the caller's identity in certain share scenario, successful exploit could cause information disclosure. Affected product versions include:Mate 30 Pro versions Versions earlier than 10.0.0.205(C00E202R7P2);Mate 30 versions Versions earlier than 10.0.0.205(C00E201R7P2).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fhc8-8gj7-qf78/GHSA-fhc8-8gj7-qf78.json b/advisories/unreviewed/2022/05/GHSA-fhc8-8gj7-qf78/GHSA-fhc8-8gj7-qf78.json index 68eec23164d..dcf4e97004a 100644 --- a/advisories/unreviewed/2022/05/GHSA-fhc8-8gj7-qf78/GHSA-fhc8-8gj7-qf78.json +++ b/advisories/unreviewed/2022/05/GHSA-fhc8-8gj7-qf78/GHSA-fhc8-8gj7-qf78.json @@ -7,12 +7,8 @@ "CVE-2017-18647" ], "details": "An issue was discovered on Samsung mobile devices with M(6,x) and N(7.0) software. The TA Scrypto v1.0 implementation in Secure Driver has a race condition with a resultant buffer overflow. The Samsung IDs are SVE-2017-8973, SVE-2017-8974, and SVE-2017-8975 (November 2017).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fj83-7fq4-4858/GHSA-fj83-7fq4-4858.json b/advisories/unreviewed/2022/05/GHSA-fj83-7fq4-4858/GHSA-fj83-7fq4-4858.json index 06a92dd289d..b4c2043b70b 100644 --- a/advisories/unreviewed/2022/05/GHSA-fj83-7fq4-4858/GHSA-fj83-7fq4-4858.json +++ b/advisories/unreviewed/2022/05/GHSA-fj83-7fq4-4858/GHSA-fj83-7fq4-4858.json @@ -7,12 +7,8 @@ "CVE-2020-0835" ], "details": "An elevation of privilege vulnerability exists when Windows Defender antimalware platform improperly handles hard links, aka 'Windows Defender Antimalware Platform Hard Link Elevation of Privilege Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fjmm-327h-h39p/GHSA-fjmm-327h-h39p.json b/advisories/unreviewed/2022/05/GHSA-fjmm-327h-h39p/GHSA-fjmm-327h-h39p.json index a8af24dd537..067f89f477a 100644 --- a/advisories/unreviewed/2022/05/GHSA-fjmm-327h-h39p/GHSA-fjmm-327h-h39p.json +++ b/advisories/unreviewed/2022/05/GHSA-fjmm-327h-h39p/GHSA-fjmm-327h-h39p.json @@ -7,12 +7,8 @@ "CVE-2019-20675" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, and RBK50 before 2.3.5.30.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fq9j-fxp5-g4x6/GHSA-fq9j-fxp5-g4x6.json b/advisories/unreviewed/2022/05/GHSA-fq9j-fxp5-g4x6/GHSA-fq9j-fxp5-g4x6.json index a5fce18da65..d4baa4bfcf6 100644 --- a/advisories/unreviewed/2022/05/GHSA-fq9j-fxp5-g4x6/GHSA-fq9j-fxp5-g4x6.json +++ b/advisories/unreviewed/2022/05/GHSA-fq9j-fxp5-g4x6/GHSA-fq9j-fxp5-g4x6.json @@ -7,12 +7,8 @@ "CVE-2020-11555" ], "details": "An issue was discovered in Castle Rock SNMPc Online 12.10.10 before 2020-01-28. It allows remote attackers to obtain sensitive credential information from backup files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fqq2-7hmc-7rjx/GHSA-fqq2-7hmc-7rjx.json b/advisories/unreviewed/2022/05/GHSA-fqq2-7hmc-7rjx/GHSA-fqq2-7hmc-7rjx.json index 25f0694db27..70ceb55c65d 100644 --- a/advisories/unreviewed/2022/05/GHSA-fqq2-7hmc-7rjx/GHSA-fqq2-7hmc-7rjx.json +++ b/advisories/unreviewed/2022/05/GHSA-fqq2-7hmc-7rjx/GHSA-fqq2-7hmc-7rjx.json @@ -7,12 +7,8 @@ "CVE-2020-4289" ], "details": "IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, 1.0.2, 1.0.3, 1.0.4, and 1.0.5 could allow a remote attacker to obtain sensitive information, caused by the failure to set the HTTPOnly flag. A remote attacker could exploit this vulnerability to obtain sensitive information from the cookie. IBM X-Force ID: 176332.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fqr7-4324-59j5/GHSA-fqr7-4324-59j5.json b/advisories/unreviewed/2022/05/GHSA-fqr7-4324-59j5/GHSA-fqr7-4324-59j5.json index 5c995f282e2..9a69492ed89 100644 --- a/advisories/unreviewed/2022/05/GHSA-fqr7-4324-59j5/GHSA-fqr7-4324-59j5.json +++ b/advisories/unreviewed/2022/05/GHSA-fqr7-4324-59j5/GHSA-fqr7-4324-59j5.json @@ -7,12 +7,8 @@ "CVE-2020-6214" ], "details": "SAP S/4HANA (Financial Products Subledger), version 100, uses an incorrect authorization object in some reports. Although the affected reports are protected with other authorization objects, exploitation of the vulnerability would allow an authenticated attacker to view, change, or delete data, thereby preventing the proper segregation of duties in the system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fr37-g4jr-p673/GHSA-fr37-g4jr-p673.json b/advisories/unreviewed/2022/05/GHSA-fr37-g4jr-p673/GHSA-fr37-g4jr-p673.json index cdcd64bbc26..389560bb2da 100644 --- a/advisories/unreviewed/2022/05/GHSA-fr37-g4jr-p673/GHSA-fr37-g4jr-p673.json +++ b/advisories/unreviewed/2022/05/GHSA-fr37-g4jr-p673/GHSA-fr37-g4jr-p673.json @@ -7,12 +7,8 @@ "CVE-2020-8423" ], "details": "A buffer overflow in the httpd daemon on TP-Link TL-WR841N V10 (firmware version 3.16.9) devices allows an authenticated remote attacker to execute arbitrary code via a GET request to the page for the configuration of the Wi-Fi network.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fr58-p6r5-3qh6/GHSA-fr58-p6r5-3qh6.json b/advisories/unreviewed/2022/05/GHSA-fr58-p6r5-3qh6/GHSA-fr58-p6r5-3qh6.json index eea059d0dbc..d444337f449 100644 --- a/advisories/unreviewed/2022/05/GHSA-fr58-p6r5-3qh6/GHSA-fr58-p6r5-3qh6.json +++ b/advisories/unreviewed/2022/05/GHSA-fr58-p6r5-3qh6/GHSA-fr58-p6r5-3qh6.json @@ -7,12 +7,8 @@ "CVE-2020-2761" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.0.18 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-frjx-44vq-w3hv/GHSA-frjx-44vq-w3hv.json b/advisories/unreviewed/2022/05/GHSA-frjx-44vq-w3hv/GHSA-frjx-44vq-w3hv.json index 6552ee7b6b9..ff39518a5a8 100644 --- a/advisories/unreviewed/2022/05/GHSA-frjx-44vq-w3hv/GHSA-frjx-44vq-w3hv.json +++ b/advisories/unreviewed/2022/05/GHSA-frjx-44vq-w3hv/GHSA-frjx-44vq-w3hv.json @@ -7,12 +7,8 @@ "CVE-2020-8096" ], "details": "Untrusted Search Path vulnerability in Bitdefender High-Level Antimalware SDK for Windows allows an attacker to load third party code from a DLL library in the search path. This issue affects: Bitdefender High-Level Antimalware SDK for Windows versions prior to 3.0.1.204 .", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-frm8-m8r5-fc6j/GHSA-frm8-m8r5-fc6j.json b/advisories/unreviewed/2022/05/GHSA-frm8-m8r5-fc6j/GHSA-frm8-m8r5-fc6j.json index fd79360f076..6ff1f770906 100644 --- a/advisories/unreviewed/2022/05/GHSA-frm8-m8r5-fc6j/GHSA-frm8-m8r5-fc6j.json +++ b/advisories/unreviewed/2022/05/GHSA-frm8-m8r5-fc6j/GHSA-frm8-m8r5-fc6j.json @@ -7,12 +7,8 @@ "CVE-2020-10976" ], "details": "GitLab EE/CE 8.17 to 12.9 is vulnerable to information leakage when querying a merge request widget.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fv4j-jw35-jw4q/GHSA-fv4j-jw35-jw4q.json b/advisories/unreviewed/2022/05/GHSA-fv4j-jw35-jw4q/GHSA-fv4j-jw35-jw4q.json index 5c161a2d40d..dfb38434873 100644 --- a/advisories/unreviewed/2022/05/GHSA-fv4j-jw35-jw4q/GHSA-fv4j-jw35-jw4q.json +++ b/advisories/unreviewed/2022/05/GHSA-fv4j-jw35-jw4q/GHSA-fv4j-jw35-jw4q.json @@ -7,12 +7,8 @@ "CVE-2020-6225" ], "details": "SAP NetWeaver (Knowledge Management), versions (KMC-CM - 7.00, 7.01, 7.02, 7.30, 7.31, 7.40, 7.50 and KMC-WPC 7.30, 7.31, 7.40, 7.50), does not sufficiently validate path information provided by users, thus characters representing traverse to parent directory are passed through to the file APIs, allowing the attacker to overwrite, delete, or corrupt arbitrary files on the remote server, leading to Path Traversal.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fw3q-6pp2-7ghv/GHSA-fw3q-6pp2-7ghv.json b/advisories/unreviewed/2022/05/GHSA-fw3q-6pp2-7ghv/GHSA-fw3q-6pp2-7ghv.json index 1235995e74a..f92444e1d41 100644 --- a/advisories/unreviewed/2022/05/GHSA-fw3q-6pp2-7ghv/GHSA-fw3q-6pp2-7ghv.json +++ b/advisories/unreviewed/2022/05/GHSA-fw3q-6pp2-7ghv/GHSA-fw3q-6pp2-7ghv.json @@ -7,12 +7,8 @@ "CVE-2020-1014" ], "details": "An elevation of privilege vulnerability exists in the Microsoft Windows Update Client when it does not properly handle privileges, aka 'Microsoft Windows Update Client Elevation of Privilege Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fwq7-6h2f-3jv9/GHSA-fwq7-6h2f-3jv9.json b/advisories/unreviewed/2022/05/GHSA-fwq7-6h2f-3jv9/GHSA-fwq7-6h2f-3jv9.json index a46a9312464..cac0cb2ffeb 100644 --- a/advisories/unreviewed/2022/05/GHSA-fwq7-6h2f-3jv9/GHSA-fwq7-6h2f-3jv9.json +++ b/advisories/unreviewed/2022/05/GHSA-fwq7-6h2f-3jv9/GHSA-fwq7-6h2f-3jv9.json @@ -7,12 +7,8 @@ "CVE-2020-2746" ], "details": "Vulnerability in the Oracle Hospitality Reporting and Analytics component of Oracle Food and Beverage Applications. The supported version that is affected is 9.1.0. Easily exploitable vulnerability allows low privileged attacker having Admin privilege with network access via HTTP to compromise Oracle Hospitality Reporting and Analytics. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Hospitality Reporting and Analytics accessible data as well as unauthorized access to critical data or complete access to all Oracle Hospitality Reporting and Analytics accessible data. CVSS 3.0 Base Score 8.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fx5r-2h3m-px7x/GHSA-fx5r-2h3m-px7x.json b/advisories/unreviewed/2022/05/GHSA-fx5r-2h3m-px7x/GHSA-fx5r-2h3m-px7x.json index 38d08dda85b..4c69b2c800b 100644 --- a/advisories/unreviewed/2022/05/GHSA-fx5r-2h3m-px7x/GHSA-fx5r-2h3m-px7x.json +++ b/advisories/unreviewed/2022/05/GHSA-fx5r-2h3m-px7x/GHSA-fx5r-2h3m-px7x.json @@ -7,12 +7,8 @@ "CVE-2020-11708" ], "details": "An issue was discovered in ProVide (formerly zFTPServer) through 13.1. Privilege escalation can occur via the /ajax/SetUserInfo messages parameter because of the EXECUTE() feature, which is for executing programs when certain events are triggered.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g32v-q2cq-rp9w/GHSA-g32v-q2cq-rp9w.json b/advisories/unreviewed/2022/05/GHSA-g32v-q2cq-rp9w/GHSA-g32v-q2cq-rp9w.json index 99fa9282219..4ed04be9102 100644 --- a/advisories/unreviewed/2022/05/GHSA-g32v-q2cq-rp9w/GHSA-g32v-q2cq-rp9w.json +++ b/advisories/unreviewed/2022/05/GHSA-g32v-q2cq-rp9w/GHSA-g32v-q2cq-rp9w.json @@ -7,12 +7,8 @@ "CVE-2020-0936" ], "details": "An elevation of privilege vulnerability exists when a Windows scheduled task improperly handles file redirections, aka 'Windows Scheduled Task Elevation of Privilege Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g3fm-58rr-pjr5/GHSA-g3fm-58rr-pjr5.json b/advisories/unreviewed/2022/05/GHSA-g3fm-58rr-pjr5/GHSA-g3fm-58rr-pjr5.json index 43461121684..2c0c04922e3 100644 --- a/advisories/unreviewed/2022/05/GHSA-g3fm-58rr-pjr5/GHSA-g3fm-58rr-pjr5.json +++ b/advisories/unreviewed/2022/05/GHSA-g3fm-58rr-pjr5/GHSA-g3fm-58rr-pjr5.json @@ -7,12 +7,8 @@ "CVE-2020-0947" ], "details": "An information disclosure vulnerability exists when Media Foundation improperly handles objects in memory, aka 'Media Foundation Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-0937, CVE-2020-0939, CVE-2020-0945, CVE-2020-0946.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g48c-wq65-9whh/GHSA-g48c-wq65-9whh.json b/advisories/unreviewed/2022/05/GHSA-g48c-wq65-9whh/GHSA-g48c-wq65-9whh.json index da6f949984c..e99073d8763 100644 --- a/advisories/unreviewed/2022/05/GHSA-g48c-wq65-9whh/GHSA-g48c-wq65-9whh.json +++ b/advisories/unreviewed/2022/05/GHSA-g48c-wq65-9whh/GHSA-g48c-wq65-9whh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g4g6-2v6v-6j9q/GHSA-g4g6-2v6v-6j9q.json b/advisories/unreviewed/2022/05/GHSA-g4g6-2v6v-6j9q/GHSA-g4g6-2v6v-6j9q.json index a62ea87df4c..e16c5b3355d 100644 --- a/advisories/unreviewed/2022/05/GHSA-g4g6-2v6v-6j9q/GHSA-g4g6-2v6v-6j9q.json +++ b/advisories/unreviewed/2022/05/GHSA-g4g6-2v6v-6j9q/GHSA-g4g6-2v6v-6j9q.json @@ -7,12 +7,8 @@ "CVE-2020-9067" ], "details": "There is a buffer overflow vulnerability in some Huawei products. The vulnerability can be exploited by an attacker to perform remote code execution on the affected products when the affected product functions as an optical line terminal (OLT). Affected product versions include:SmartAX MA5600T versions V800R013C10, V800R015C00, V800R015C10, V800R017C00, V800R017C10, V800R018C00, V800R018C10; SmartAX MA5800 versions V100R017C00, V100R017C10, V100R018C00, V100R018C10, V100R019C10; SmartAX EA5800 versions V100R018C00, V100R018C10, V100R019C10.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g4x2-424v-7x3q/GHSA-g4x2-424v-7x3q.json b/advisories/unreviewed/2022/05/GHSA-g4x2-424v-7x3q/GHSA-g4x2-424v-7x3q.json index 7e1e5df9a71..0f29570a205 100644 --- a/advisories/unreviewed/2022/05/GHSA-g4x2-424v-7x3q/GHSA-g4x2-424v-7x3q.json +++ b/advisories/unreviewed/2022/05/GHSA-g4x2-424v-7x3q/GHSA-g4x2-424v-7x3q.json @@ -7,12 +7,8 @@ "CVE-2020-11609" ], "details": "An issue was discovered in the stv06xx subsystem in the Linux kernel before 5.6.1. drivers/media/usb/gspca/stv06xx/stv06xx.c and drivers/media/usb/gspca/stv06xx/stv06xx_pb0100.c mishandle invalid descriptors, as demonstrated by a NULL pointer dereference, aka CID-485b06aadb93.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -72,9 +68,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g644-679q-jjcf/GHSA-g644-679q-jjcf.json b/advisories/unreviewed/2022/05/GHSA-g644-679q-jjcf/GHSA-g644-679q-jjcf.json index a45ebdad18d..508176c7c07 100644 --- a/advisories/unreviewed/2022/05/GHSA-g644-679q-jjcf/GHSA-g644-679q-jjcf.json +++ b/advisories/unreviewed/2022/05/GHSA-g644-679q-jjcf/GHSA-g644-679q-jjcf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g69v-3cvh-v6hf/GHSA-g69v-3cvh-v6hf.json b/advisories/unreviewed/2022/05/GHSA-g69v-3cvh-v6hf/GHSA-g69v-3cvh-v6hf.json index 923320fd335..4d172dab8c7 100644 --- a/advisories/unreviewed/2022/05/GHSA-g69v-3cvh-v6hf/GHSA-g69v-3cvh-v6hf.json +++ b/advisories/unreviewed/2022/05/GHSA-g69v-3cvh-v6hf/GHSA-g69v-3cvh-v6hf.json @@ -7,12 +7,8 @@ "CVE-2020-8146" ], "details": "In UniFi Video v3.10.1 (for Windows 7/8/10 x64) there is a Local Privileges Escalation to SYSTEM from arbitrary file deletion and DLL hijack vulnerabilities. The issue was fixed by adjusting the .tsExport folder when the controller is running on Windows and adjusting the SafeDllSearchMode in the windows registry when installing UniFi-Video controller. Affected Products: UniFi Video Controller v3.10.2 (for Windows 7/8/10 x64) and prior. Fixed in UniFi Video Controller v3.10.3 and newer.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g69x-r473-7f9h/GHSA-g69x-r473-7f9h.json b/advisories/unreviewed/2022/05/GHSA-g69x-r473-7f9h/GHSA-g69x-r473-7f9h.json index 0e913d399bf..78b4cef2a60 100644 --- a/advisories/unreviewed/2022/05/GHSA-g69x-r473-7f9h/GHSA-g69x-r473-7f9h.json +++ b/advisories/unreviewed/2022/05/GHSA-g69x-r473-7f9h/GHSA-g69x-r473-7f9h.json @@ -7,12 +7,8 @@ "CVE-2020-0980" ], "details": "A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'Microsoft Word Remote Code Execution Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g7gj-3cvp-r2pf/GHSA-g7gj-3cvp-r2pf.json b/advisories/unreviewed/2022/05/GHSA-g7gj-3cvp-r2pf/GHSA-g7gj-3cvp-r2pf.json index 28d90a89888..4a4445f0dbb 100644 --- a/advisories/unreviewed/2022/05/GHSA-g7gj-3cvp-r2pf/GHSA-g7gj-3cvp-r2pf.json +++ b/advisories/unreviewed/2022/05/GHSA-g7gj-3cvp-r2pf/GHSA-g7gj-3cvp-r2pf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -43,9 +41,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g7qr-7xf7-f4ph/GHSA-g7qr-7xf7-f4ph.json b/advisories/unreviewed/2022/05/GHSA-g7qr-7xf7-f4ph/GHSA-g7qr-7xf7-f4ph.json index ce464d0d4a2..20245cab2d8 100644 --- a/advisories/unreviewed/2022/05/GHSA-g7qr-7xf7-f4ph/GHSA-g7qr-7xf7-f4ph.json +++ b/advisories/unreviewed/2022/05/GHSA-g7qr-7xf7-f4ph/GHSA-g7qr-7xf7-f4ph.json @@ -7,12 +7,8 @@ "CVE-2019-20676" ], "details": "Certain NETGEAR devices are affected by lack of access control at the function level. This affects FS728TLP before 1.0.1.26, GS105Ev2 before 1.6.0.4, GS105PE before 1.6.0.4, GS108Ev3 before 2.06.08, GS108PEv3 before 2.06.08, GS110EMX before 1.0.1.4, GS116Ev2 before 2.6.0.35, GS408EPP before 1.0.0.15, GS724TPv2 before 1.1.1.29, GS808E before 1.7.0.7, GS810EMX before 1.7.1.1, GS908E before 1.7.0.3, GSS108E before 1.6.0.4, GSS108EPP before 1.0.0.15, GSS116E before 1.6.0.9, JGS516PE before 2.6.0.35, JGS524Ev2 before 2.6.0.35, JGS524PE before 2.6.0.35, XS512EM before 1.0.1.1, XS708Ev2 before 1.6.0.23, XS716E before 1.6.0.23, and XS724EM before 1.0.1.1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g7xw-pf29-g7fm/GHSA-g7xw-pf29-g7fm.json b/advisories/unreviewed/2022/05/GHSA-g7xw-pf29-g7fm/GHSA-g7xw-pf29-g7fm.json index 4db5e60d5e8..9857fd130bf 100644 --- a/advisories/unreviewed/2022/05/GHSA-g7xw-pf29-g7fm/GHSA-g7xw-pf29-g7fm.json +++ b/advisories/unreviewed/2022/05/GHSA-g7xw-pf29-g7fm/GHSA-g7xw-pf29-g7fm.json @@ -7,12 +7,8 @@ "CVE-2020-6232" ], "details": "SAP Commerce, versions 1811, 1905, does not perform necessary authorization checks for an anonymous user, due to Missing Authorization Check. This affects confidentiality of secure media.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g8vf-gqwq-vh5h/GHSA-g8vf-gqwq-vh5h.json b/advisories/unreviewed/2022/05/GHSA-g8vf-gqwq-vh5h/GHSA-g8vf-gqwq-vh5h.json index 65f7b4bcc01..6d200c9bc7f 100644 --- a/advisories/unreviewed/2022/05/GHSA-g8vf-gqwq-vh5h/GHSA-g8vf-gqwq-vh5h.json +++ b/advisories/unreviewed/2022/05/GHSA-g8vf-gqwq-vh5h/GHSA-g8vf-gqwq-vh5h.json @@ -7,12 +7,8 @@ "CVE-2020-6231" ], "details": "SAP Business Objects Business Intelligence Platform (Web Intelligence HTML interface), version 4.2, does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g9g7-5v3p-474j/GHSA-g9g7-5v3p-474j.json b/advisories/unreviewed/2022/05/GHSA-g9g7-5v3p-474j/GHSA-g9g7-5v3p-474j.json index a1536a9113e..2ba7605cce7 100644 --- a/advisories/unreviewed/2022/05/GHSA-g9g7-5v3p-474j/GHSA-g9g7-5v3p-474j.json +++ b/advisories/unreviewed/2022/05/GHSA-g9g7-5v3p-474j/GHSA-g9g7-5v3p-474j.json @@ -7,12 +7,8 @@ "CVE-2020-6647" ], "details": "An improper neutralization of input vulnerability in the dashboard of FortiADC may allow an authenticated attacker to perform a cross site scripting attack (XSS) via the name parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gc24-7fjh-v287/GHSA-gc24-7fjh-v287.json b/advisories/unreviewed/2022/05/GHSA-gc24-7fjh-v287/GHSA-gc24-7fjh-v287.json index b066d2c46e7..bf058fc73be 100644 --- a/advisories/unreviewed/2022/05/GHSA-gc24-7fjh-v287/GHSA-gc24-7fjh-v287.json +++ b/advisories/unreviewed/2022/05/GHSA-gc24-7fjh-v287/GHSA-gc24-7fjh-v287.json @@ -7,12 +7,8 @@ "CVE-2018-21065" ], "details": "An issue was discovered on Samsung mobile devices with M(6.0), N(7.x), and O(8.x) software. There is an integer underflow in eCryptFS because of a missing size check. The Samsung ID is SVE-2017-11855 (August 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gf4h-qh8q-m56f/GHSA-gf4h-qh8q-m56f.json b/advisories/unreviewed/2022/05/GHSA-gf4h-qh8q-m56f/GHSA-gf4h-qh8q-m56f.json index 0d46e5423da..b054798d6ea 100644 --- a/advisories/unreviewed/2022/05/GHSA-gf4h-qh8q-m56f/GHSA-gf4h-qh8q-m56f.json +++ b/advisories/unreviewed/2022/05/GHSA-gf4h-qh8q-m56f/GHSA-gf4h-qh8q-m56f.json @@ -7,12 +7,8 @@ "CVE-2020-2735" ], "details": "Vulnerability in the Java VM component of Oracle Database Server. Supported versions that are affected are 11.2.0.4, 12.1.0.2, 12.2.0.1, 18c and 19c. Difficult to exploit vulnerability allows low privileged attacker having Create Session privilege with network access via Oracle Net to compromise Java VM. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java VM, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java VM. CVSS 3.0 Base Score 8.0 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gf9j-vw99-34gv/GHSA-gf9j-vw99-34gv.json b/advisories/unreviewed/2022/05/GHSA-gf9j-vw99-34gv/GHSA-gf9j-vw99-34gv.json index 007b368a5db..1f83ad19daa 100644 --- a/advisories/unreviewed/2022/05/GHSA-gf9j-vw99-34gv/GHSA-gf9j-vw99-34gv.json +++ b/advisories/unreviewed/2022/05/GHSA-gf9j-vw99-34gv/GHSA-gf9j-vw99-34gv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gfqm-3p6c-j8mq/GHSA-gfqm-3p6c-j8mq.json b/advisories/unreviewed/2022/05/GHSA-gfqm-3p6c-j8mq/GHSA-gfqm-3p6c-j8mq.json index 5c32725e183..3f1280f9a17 100644 --- a/advisories/unreviewed/2022/05/GHSA-gfqm-3p6c-j8mq/GHSA-gfqm-3p6c-j8mq.json +++ b/advisories/unreviewed/2022/05/GHSA-gfqm-3p6c-j8mq/GHSA-gfqm-3p6c-j8mq.json @@ -7,12 +7,8 @@ "CVE-2020-10646" ], "details": "Fuji Electric V-Server Lite all versions prior to 4.0.9.0 contains a heap based buffer overflow. The buffer allocated to read data, when parsing VPR files, is too small.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ghpp-p7j7-78gh/GHSA-ghpp-p7j7-78gh.json b/advisories/unreviewed/2022/05/GHSA-ghpp-p7j7-78gh/GHSA-ghpp-p7j7-78gh.json index 4185bc47df6..e3182164070 100644 --- a/advisories/unreviewed/2022/05/GHSA-ghpp-p7j7-78gh/GHSA-ghpp-p7j7-78gh.json +++ b/advisories/unreviewed/2022/05/GHSA-ghpp-p7j7-78gh/GHSA-ghpp-p7j7-78gh.json @@ -7,12 +7,8 @@ "CVE-2019-20643" ], "details": "NETGEAR RAX40 devices before 1.0.3.64 are affected by disclosure of sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gm2j-53hw-w74v/GHSA-gm2j-53hw-w74v.json b/advisories/unreviewed/2022/05/GHSA-gm2j-53hw-w74v/GHSA-gm2j-53hw-w74v.json index 968746f86e9..48ebfe20c32 100644 --- a/advisories/unreviewed/2022/05/GHSA-gm2j-53hw-w74v/GHSA-gm2j-53hw-w74v.json +++ b/advisories/unreviewed/2022/05/GHSA-gm2j-53hw-w74v/GHSA-gm2j-53hw-w74v.json @@ -7,12 +7,8 @@ "CVE-2020-11787" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.68, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0.0.78, RBR20 before 2.3.5.26, RBS20 before 2.3.5.26, RBK20 before 2.3.5.26, RBR40 before 2.3.5.30, RBS40 before 2.3.5.30, RBK40 before 2.3.5.30, RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, RBK50 before 2.3.5.30, XR500 before 2.3.2.56, and XR700 before 1.0.1.10.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gmq7-vq8g-2qhv/GHSA-gmq7-vq8g-2qhv.json b/advisories/unreviewed/2022/05/GHSA-gmq7-vq8g-2qhv/GHSA-gmq7-vq8g-2qhv.json index d52cdf03c16..5284545e2dd 100644 --- a/advisories/unreviewed/2022/05/GHSA-gmq7-vq8g-2qhv/GHSA-gmq7-vq8g-2qhv.json +++ b/advisories/unreviewed/2022/05/GHSA-gmq7-vq8g-2qhv/GHSA-gmq7-vq8g-2qhv.json @@ -7,12 +7,8 @@ "CVE-2020-11587" ], "details": "An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an API request and get the content of ETL Processes running on the server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gp7g-p4hq-9mjx/GHSA-gp7g-p4hq-9mjx.json b/advisories/unreviewed/2022/05/GHSA-gp7g-p4hq-9mjx/GHSA-gp7g-p4hq-9mjx.json index 928e3b36e8f..b3bd2d6a19a 100644 --- a/advisories/unreviewed/2022/05/GHSA-gp7g-p4hq-9mjx/GHSA-gp7g-p4hq-9mjx.json +++ b/advisories/unreviewed/2022/05/GHSA-gp7g-p4hq-9mjx/GHSA-gp7g-p4hq-9mjx.json @@ -7,12 +7,8 @@ "CVE-2020-0568" ], "details": "Race condition in the Intel(R) Driver and Support Assistant before version 20.1.5 may allow an authenticated user to potentially enable denial of service via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gpp2-x583-x2j7/GHSA-gpp2-x583-x2j7.json b/advisories/unreviewed/2022/05/GHSA-gpp2-x583-x2j7/GHSA-gpp2-x583-x2j7.json index 7274f240d75..53f8efb1807 100644 --- a/advisories/unreviewed/2022/05/GHSA-gpp2-x583-x2j7/GHSA-gpp2-x583-x2j7.json +++ b/advisories/unreviewed/2022/05/GHSA-gpp2-x583-x2j7/GHSA-gpp2-x583-x2j7.json @@ -7,12 +7,8 @@ "CVE-2018-21092" ], "details": "An issue was discovered on Samsung mobile devices with M(6.x) and N(7.x) software. A crafted AT command may be sent by the DeviceTest application via an NFC tag. The Samsung ID is SVE-2017-10885 (January 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gprx-39gr-mq3j/GHSA-gprx-39gr-mq3j.json b/advisories/unreviewed/2022/05/GHSA-gprx-39gr-mq3j/GHSA-gprx-39gr-mq3j.json index c8fa2672252..b26edbbc27e 100644 --- a/advisories/unreviewed/2022/05/GHSA-gprx-39gr-mq3j/GHSA-gprx-39gr-mq3j.json +++ b/advisories/unreviewed/2022/05/GHSA-gprx-39gr-mq3j/GHSA-gprx-39gr-mq3j.json @@ -7,12 +7,8 @@ "CVE-2020-4362" ], "details": "IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 traditional is vulnerable to a privilege escalation vulnerability when using token-based authentication in an admin request over the SOAP connector. IBM X-Force ID: 178929.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gr8m-26qh-f5gq/GHSA-gr8m-26qh-f5gq.json b/advisories/unreviewed/2022/05/GHSA-gr8m-26qh-f5gq/GHSA-gr8m-26qh-f5gq.json index 9a30ada1084..d4e34adae47 100644 --- a/advisories/unreviewed/2022/05/GHSA-gr8m-26qh-f5gq/GHSA-gr8m-26qh-f5gq.json +++ b/advisories/unreviewed/2022/05/GHSA-gr8m-26qh-f5gq/GHSA-gr8m-26qh-f5gq.json @@ -7,12 +7,8 @@ "CVE-2016-11047" ], "details": "An issue was discovered on Samsung mobile devices with JBP(4.2) and KK(4.4) (Marvell chipsets) software. The ACIPC-MSOCKET driver allows local privilege escalation via a stack-based buffer overflow. The Samsung ID is SVE-2016-5393 (April 2016).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-grj9-c593-w7c6/GHSA-grj9-c593-w7c6.json b/advisories/unreviewed/2022/05/GHSA-grj9-c593-w7c6/GHSA-grj9-c593-w7c6.json index 87b3168a3e4..75a6943e824 100644 --- a/advisories/unreviewed/2022/05/GHSA-grj9-c593-w7c6/GHSA-grj9-c593-w7c6.json +++ b/advisories/unreviewed/2022/05/GHSA-grj9-c593-w7c6/GHSA-grj9-c593-w7c6.json @@ -7,12 +7,8 @@ "CVE-2020-10611" ], "details": "Triangle MicroWorks SCADA Data Gateway 3.02.0697 through 4.0.122, 2.41.0213 through 4.0.122 allows remote attackers to execute arbitrary code due to the lack of proper validation of user-supplied data, which can result in a type confusion condition. Authentication is not required to exploit this vulnerability. Only applicable to installations using DNP3 Data Sets.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gv3h-f47p-8vpr/GHSA-gv3h-f47p-8vpr.json b/advisories/unreviewed/2022/05/GHSA-gv3h-f47p-8vpr/GHSA-gv3h-f47p-8vpr.json index bcfaf2cb7ec..949de079919 100644 --- a/advisories/unreviewed/2022/05/GHSA-gv3h-f47p-8vpr/GHSA-gv3h-f47p-8vpr.json +++ b/advisories/unreviewed/2022/05/GHSA-gv3h-f47p-8vpr/GHSA-gv3h-f47p-8vpr.json @@ -7,12 +7,8 @@ "CVE-2018-21074" ], "details": "An issue was discovered on Samsung mobile devices with M(6.x) (Exynos or Qualcomm chipsets) software. There is information disclosure from a Trustlet via the debug log. The Samsung ID is SVE-2017-10638 (April 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gvrc-hmg2-fp39/GHSA-gvrc-hmg2-fp39.json b/advisories/unreviewed/2022/05/GHSA-gvrc-hmg2-fp39/GHSA-gvrc-hmg2-fp39.json index 0c21d03636c..c97315942b6 100644 --- a/advisories/unreviewed/2022/05/GHSA-gvrc-hmg2-fp39/GHSA-gvrc-hmg2-fp39.json +++ b/advisories/unreviewed/2022/05/GHSA-gvrc-hmg2-fp39/GHSA-gvrc-hmg2-fp39.json @@ -7,12 +7,8 @@ "CVE-2020-11629" ], "details": "An issue was discovered in EJBCA before 6.15.2.6 and 7.x before 7.3.1.2. The External Command Certificate Validator, which allows administrators to upload external linters to validate certificates, is supposed to save uploaded test certificates to the server. An attacker who has gained access to the CA UI could exploit this to upload malicious scripts to the server. (Risks associated with this issue alone are negligible unless a malicious user already has gained access to the CA UI through other means, as a trusted user is already trusted to upload scripts by virtue of having access to the validator.)", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gwjq-59ch-2j8v/GHSA-gwjq-59ch-2j8v.json b/advisories/unreviewed/2022/05/GHSA-gwjq-59ch-2j8v/GHSA-gwjq-59ch-2j8v.json index 8542f5e30bc..d73e3893fed 100644 --- a/advisories/unreviewed/2022/05/GHSA-gwjq-59ch-2j8v/GHSA-gwjq-59ch-2j8v.json +++ b/advisories/unreviewed/2022/05/GHSA-gwjq-59ch-2j8v/GHSA-gwjq-59ch-2j8v.json @@ -7,12 +7,8 @@ "CVE-2020-0946" ], "details": "An information disclosure vulnerability exists when Media Foundation improperly handles objects in memory, aka 'Media Foundation Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-0937, CVE-2020-0939, CVE-2020-0945, CVE-2020-0947.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gx26-q49r-m7g8/GHSA-gx26-q49r-m7g8.json b/advisories/unreviewed/2022/05/GHSA-gx26-q49r-m7g8/GHSA-gx26-q49r-m7g8.json index de95cd5b421..704d2ed7091 100644 --- a/advisories/unreviewed/2022/05/GHSA-gx26-q49r-m7g8/GHSA-gx26-q49r-m7g8.json +++ b/advisories/unreviewed/2022/05/GHSA-gx26-q49r-m7g8/GHSA-gx26-q49r-m7g8.json @@ -7,12 +7,8 @@ "CVE-2019-12520" ], "details": "An issue was discovered in Squid through 4.7 and 5. When receiving a request, Squid checks its cache to see if it can serve up a response. It does this by making a MD5 hash of the absolute URL of the request. If found, it servers the request. The absolute URL can include the decoded UserInfo (username and password) for certain protocols. This decoded info is prepended to the domain. This allows an attacker to provide a username that has special characters to delimit the domain, and treat the rest of the URL as a path or query string. An attacker could first make a request to their domain using an encoded username, then when a request for the target domain comes in that decodes to the exact URL, it will serve the attacker's HTML instead of the real HTML. On Squid servers that also act as reverse proxies, this allows an attacker to gain access to features that only reverse proxies can use, such as ESI.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gx64-x6jh-w2m5/GHSA-gx64-x6jh-w2m5.json b/advisories/unreviewed/2022/05/GHSA-gx64-x6jh-w2m5/GHSA-gx64-x6jh-w2m5.json index 6bd42605910..e6107978cb1 100644 --- a/advisories/unreviewed/2022/05/GHSA-gx64-x6jh-w2m5/GHSA-gx64-x6jh-w2m5.json +++ b/advisories/unreviewed/2022/05/GHSA-gx64-x6jh-w2m5/GHSA-gx64-x6jh-w2m5.json @@ -7,12 +7,8 @@ "CVE-2017-18690" ], "details": "An issue was discovered on Samsung mobile devices with KK(4.4), L(5.0/5.1), M(6.0), and N(7.0) (Exynos54xx, Exynos7420, Exynos8890, or Exynos8895 chipsets) software. There is a buffer overflow in the sensor hub. The Samsung ID is SVE-2016-7484 (January 2017).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gxxj-6wpw-9vgc/GHSA-gxxj-6wpw-9vgc.json b/advisories/unreviewed/2022/05/GHSA-gxxj-6wpw-9vgc/GHSA-gxxj-6wpw-9vgc.json index 6c3a08b6617..1c54a7e31bc 100644 --- a/advisories/unreviewed/2022/05/GHSA-gxxj-6wpw-9vgc/GHSA-gxxj-6wpw-9vgc.json +++ b/advisories/unreviewed/2022/05/GHSA-gxxj-6wpw-9vgc/GHSA-gxxj-6wpw-9vgc.json @@ -7,12 +7,8 @@ "CVE-2019-20641" ], "details": "NETGEAR RAX40 devices before 1.0.3.64 are affected by lack of access control at the function level.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h2h4-4f7m-c9r8/GHSA-h2h4-4f7m-c9r8.json b/advisories/unreviewed/2022/05/GHSA-h2h4-4f7m-c9r8/GHSA-h2h4-4f7m-c9r8.json index ef407ba34cb..dda05c3e050 100644 --- a/advisories/unreviewed/2022/05/GHSA-h2h4-4f7m-c9r8/GHSA-h2h4-4f7m-c9r8.json +++ b/advisories/unreviewed/2022/05/GHSA-h2h4-4f7m-c9r8/GHSA-h2h4-4f7m-c9r8.json @@ -7,12 +7,8 @@ "CVE-2020-6227" ], "details": "SAP Business Objects Business Intelligence Platform (CMS / Auditing issues), version 4.2, allows attacker to send specially crafted GIOP packets to several services due to Improper Input Validation, allowing to forge additional entries in GLF log files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h2mv-v7vr-5g9j/GHSA-h2mv-v7vr-5g9j.json b/advisories/unreviewed/2022/05/GHSA-h2mv-v7vr-5g9j/GHSA-h2mv-v7vr-5g9j.json index 185ab750a2d..0418edf7865 100644 --- a/advisories/unreviewed/2022/05/GHSA-h2mv-v7vr-5g9j/GHSA-h2mv-v7vr-5g9j.json +++ b/advisories/unreviewed/2022/05/GHSA-h2mv-v7vr-5g9j/GHSA-h2mv-v7vr-5g9j.json @@ -7,12 +7,8 @@ "CVE-2017-18655" ], "details": "An issue was discovered on Samsung mobile devices with M(6.0) and N(7.x) software. There is a stack-based buffer overflow with resultant memory corruption in a trustlet. The Samsung IDs are SVE-2017-8889, SVE-2017-8891, and SVE-2017-8892 (August 2017).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h2vv-cmjp-m2w5/GHSA-h2vv-cmjp-m2w5.json b/advisories/unreviewed/2022/05/GHSA-h2vv-cmjp-m2w5/GHSA-h2vv-cmjp-m2w5.json index ce693b41cf8..911d10e6ea0 100644 --- a/advisories/unreviewed/2022/05/GHSA-h2vv-cmjp-m2w5/GHSA-h2vv-cmjp-m2w5.json +++ b/advisories/unreviewed/2022/05/GHSA-h2vv-cmjp-m2w5/GHSA-h2vv-cmjp-m2w5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h368-4vc2-fv34/GHSA-h368-4vc2-fv34.json b/advisories/unreviewed/2022/05/GHSA-h368-4vc2-fv34/GHSA-h368-4vc2-fv34.json index c5cc39f9201..53bb186dd05 100644 --- a/advisories/unreviewed/2022/05/GHSA-h368-4vc2-fv34/GHSA-h368-4vc2-fv34.json +++ b/advisories/unreviewed/2022/05/GHSA-h368-4vc2-fv34/GHSA-h368-4vc2-fv34.json @@ -7,12 +7,8 @@ "CVE-2020-5738" ], "details": "Grandstream GXP1600 series firmware 1.0.4.152 and below is vulnerable to authenticated remote command execution when an attacker uploads a specially crafted tar file to the HTTP /cgi-bin/upload_vpntar interface.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h4rr-53hr-jhhm/GHSA-h4rr-53hr-jhhm.json b/advisories/unreviewed/2022/05/GHSA-h4rr-53hr-jhhm/GHSA-h4rr-53hr-jhhm.json index f6fe4dfae3a..8d8d69f77c2 100644 --- a/advisories/unreviewed/2022/05/GHSA-h4rr-53hr-jhhm/GHSA-h4rr-53hr-jhhm.json +++ b/advisories/unreviewed/2022/05/GHSA-h4rr-53hr-jhhm/GHSA-h4rr-53hr-jhhm.json @@ -7,12 +7,8 @@ "CVE-2018-21077" ], "details": "An issue was discovered on Samsung mobile devices with M(6.0), N(7.x), and O(8.x) software. There is a Clipboard content disclosure in the locked state because the keyboard may be used during an emergency call. The Samsung ID is SVE-2017-11107 (April 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h592-26mx-g23f/GHSA-h592-26mx-g23f.json b/advisories/unreviewed/2022/05/GHSA-h592-26mx-g23f/GHSA-h592-26mx-g23f.json index d202b9174aa..ac160b5bbf0 100644 --- a/advisories/unreviewed/2022/05/GHSA-h592-26mx-g23f/GHSA-h592-26mx-g23f.json +++ b/advisories/unreviewed/2022/05/GHSA-h592-26mx-g23f/GHSA-h592-26mx-g23f.json @@ -7,12 +7,8 @@ "CVE-2019-20663" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, and RBK50 before 2.3.5.30.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h6c2-xxv4-2462/GHSA-h6c2-xxv4-2462.json b/advisories/unreviewed/2022/05/GHSA-h6c2-xxv4-2462/GHSA-h6c2-xxv4-2462.json index e753092c6d3..f3a02c80f3f 100644 --- a/advisories/unreviewed/2022/05/GHSA-h6c2-xxv4-2462/GHSA-h6c2-xxv4-2462.json +++ b/advisories/unreviewed/2022/05/GHSA-h6c2-xxv4-2462/GHSA-h6c2-xxv4-2462.json @@ -7,12 +7,8 @@ "CVE-2020-11668" ], "details": "In the Linux kernel before 5.6.1, drivers/media/usb/gspca/xirlink_cit.c (aka the Xirlink camera USB driver) mishandles invalid descriptors, aka CID-a246b4d54770.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h6jp-r7q6-9qh5/GHSA-h6jp-r7q6-9qh5.json b/advisories/unreviewed/2022/05/GHSA-h6jp-r7q6-9qh5/GHSA-h6jp-r7q6-9qh5.json index 1e98ea3bfc8..eaac78090b0 100644 --- a/advisories/unreviewed/2022/05/GHSA-h6jp-r7q6-9qh5/GHSA-h6jp-r7q6-9qh5.json +++ b/advisories/unreviewed/2022/05/GHSA-h6jp-r7q6-9qh5/GHSA-h6jp-r7q6-9qh5.json @@ -7,12 +7,8 @@ "CVE-2016-11045" ], "details": "An issue was discovered on Samsung mobile devices with L(5.0/5.1) software. The Gallery library allow memory corruption via a malformed image. The Samsung ID is SVE-2016-5317 (May 2016).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h7f7-r6mm-7w8h/GHSA-h7f7-r6mm-7w8h.json b/advisories/unreviewed/2022/05/GHSA-h7f7-r6mm-7w8h/GHSA-h7f7-r6mm-7w8h.json index d5d04698352..9c9cd7ae6cc 100644 --- a/advisories/unreviewed/2022/05/GHSA-h7f7-r6mm-7w8h/GHSA-h7f7-r6mm-7w8h.json +++ b/advisories/unreviewed/2022/05/GHSA-h7f7-r6mm-7w8h/GHSA-h7f7-r6mm-7w8h.json @@ -7,12 +7,8 @@ "CVE-2020-1634" ], "details": "On High-End SRX Series devices, in specific configurations and when specific networking events or operator actions occur, an SPC receiving genuine multicast traffic may core. Subsequently, all FPCs in a chassis may reset causing a Denial of Service. This issue affects both IPv4 and IPv6. This issue affects: Juniper Networks Junos OS 12.3X48 version 12.3X48-D80 and later versions prior to 12.3X48-D95 on High-End SRX Series. This issue does not affect Branch SRX Series devices.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h7hm-pcj8-gj2r/GHSA-h7hm-pcj8-gj2r.json b/advisories/unreviewed/2022/05/GHSA-h7hm-pcj8-gj2r/GHSA-h7hm-pcj8-gj2r.json index c14054fa79a..1b64906068c 100644 --- a/advisories/unreviewed/2022/05/GHSA-h7hm-pcj8-gj2r/GHSA-h7hm-pcj8-gj2r.json +++ b/advisories/unreviewed/2022/05/GHSA-h7hm-pcj8-gj2r/GHSA-h7hm-pcj8-gj2r.json @@ -7,12 +7,8 @@ "CVE-2019-2880" ], "details": "Vulnerability in the Oracle Retail Store Inventory Management product of Oracle Retail Applications (component: Security). The supported version that is affected is 16.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Retail Store Inventory Management. Successful attacks of this vulnerability can result in takeover of Oracle Retail Store Inventory Management. CVSS 3.0 Base Score 8.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h83r-q55f-q6p9/GHSA-h83r-q55f-q6p9.json b/advisories/unreviewed/2022/05/GHSA-h83r-q55f-q6p9/GHSA-h83r-q55f-q6p9.json index e07ea8f3ceb..590507dbb74 100644 --- a/advisories/unreviewed/2022/05/GHSA-h83r-q55f-q6p9/GHSA-h83r-q55f-q6p9.json +++ b/advisories/unreviewed/2022/05/GHSA-h83r-q55f-q6p9/GHSA-h83r-q55f-q6p9.json @@ -7,12 +7,8 @@ "CVE-2017-18653" ], "details": "An issue was discovered on Samsung mobile devices with KK(4.4), L(5.0/5.1), M(6.0), and N(7.x) software. The Email application allows attackers to send emails on behalf of any user via a broadcasted intent. The Samsung ID is SVE-2017-9357 (September 2017).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h88r-367q-q6v3/GHSA-h88r-367q-q6v3.json b/advisories/unreviewed/2022/05/GHSA-h88r-367q-q6v3/GHSA-h88r-367q-q6v3.json index 2b4c0f10d80..e1d9d3f21f8 100644 --- a/advisories/unreviewed/2022/05/GHSA-h88r-367q-q6v3/GHSA-h88r-367q-q6v3.json +++ b/advisories/unreviewed/2022/05/GHSA-h88r-367q-q6v3/GHSA-h88r-367q-q6v3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h98h-hrqm-r592/GHSA-h98h-hrqm-r592.json b/advisories/unreviewed/2022/05/GHSA-h98h-hrqm-r592/GHSA-h98h-hrqm-r592.json index 5f42d835712..7c85d5eaa72 100644 --- a/advisories/unreviewed/2022/05/GHSA-h98h-hrqm-r592/GHSA-h98h-hrqm-r592.json +++ b/advisories/unreviewed/2022/05/GHSA-h98h-hrqm-r592/GHSA-h98h-hrqm-r592.json @@ -7,12 +7,8 @@ "CVE-2020-11590" ], "details": "An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an HTTP GET request to HealthPage.aspx and obtain the internal server name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hc7g-786w-w835/GHSA-hc7g-786w-w835.json b/advisories/unreviewed/2022/05/GHSA-hc7g-786w-w835/GHSA-hc7g-786w-w835.json index ff5b841bf49..dfcc56f0b02 100644 --- a/advisories/unreviewed/2022/05/GHSA-hc7g-786w-w835/GHSA-hc7g-786w-w835.json +++ b/advisories/unreviewed/2022/05/GHSA-hc7g-786w-w835/GHSA-hc7g-786w-w835.json @@ -7,12 +7,8 @@ "CVE-2020-9514" ], "details": "An issue was discovered in the IMPress for IDX Broker plugin before 2.6.2 for WordPress. wrappers.php allows a logged-in user (with the Subscriber role) to permanently delete arbitrary posts and pages, create new posts with arbitrary subjects, and modify the subjects of existing posts and pages (via create_dynamic_page and delete_dynamic_page).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hccf-j2pf-x736/GHSA-hccf-j2pf-x736.json b/advisories/unreviewed/2022/05/GHSA-hccf-j2pf-x736/GHSA-hccf-j2pf-x736.json index 1a88571db52..77c389259ab 100644 --- a/advisories/unreviewed/2022/05/GHSA-hccf-j2pf-x736/GHSA-hccf-j2pf-x736.json +++ b/advisories/unreviewed/2022/05/GHSA-hccf-j2pf-x736/GHSA-hccf-j2pf-x736.json @@ -7,12 +7,8 @@ "CVE-2020-0993" ], "details": "A denial of service vulnerability exists in Windows DNS when it fails to properly handle queries, aka 'Windows DNS Denial of Service Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hcpq-vw4g-3vmh/GHSA-hcpq-vw4g-3vmh.json b/advisories/unreviewed/2022/05/GHSA-hcpq-vw4g-3vmh/GHSA-hcpq-vw4g-3vmh.json index c13f797f955..13dc14426cb 100644 --- a/advisories/unreviewed/2022/05/GHSA-hcpq-vw4g-3vmh/GHSA-hcpq-vw4g-3vmh.json +++ b/advisories/unreviewed/2022/05/GHSA-hcpq-vw4g-3vmh/GHSA-hcpq-vw4g-3vmh.json @@ -7,12 +7,8 @@ "CVE-2020-1759" ], "details": "A vulnerability was found in Red Hat Ceph Storage 4 and Red Hat Openshift Container Storage 4.2 where, A nonce reuse vulnerability was discovered in the secure mode of the messenger v2 protocol, which can allow an attacker to forge auth tags and potentially manipulate the data by leveraging the reuse of a nonce in a session. Messages encrypted using a reused nonce value are susceptible to serious confidentiality and integrity attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hf43-vx6m-vr9g/GHSA-hf43-vx6m-vr9g.json b/advisories/unreviewed/2022/05/GHSA-hf43-vx6m-vr9g/GHSA-hf43-vx6m-vr9g.json index df365058225..4ab8f932410 100644 --- a/advisories/unreviewed/2022/05/GHSA-hf43-vx6m-vr9g/GHSA-hf43-vx6m-vr9g.json +++ b/advisories/unreviewed/2022/05/GHSA-hf43-vx6m-vr9g/GHSA-hf43-vx6m-vr9g.json @@ -7,12 +7,8 @@ "CVE-2020-1624" ], "details": "A local, authenticated user with shell can obtain the hashed values of login passwords and shared secrets via raw objmon configuration files. This issue affects all versions of Junos OS Evolved prior to 19.1R1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hfjr-fp7w-82g3/GHSA-hfjr-fp7w-82g3.json b/advisories/unreviewed/2022/05/GHSA-hfjr-fp7w-82g3/GHSA-hfjr-fp7w-82g3.json index 7d3f0f738cc..4f2bd35a88a 100644 --- a/advisories/unreviewed/2022/05/GHSA-hfjr-fp7w-82g3/GHSA-hfjr-fp7w-82g3.json +++ b/advisories/unreviewed/2022/05/GHSA-hfjr-fp7w-82g3/GHSA-hfjr-fp7w-82g3.json @@ -7,12 +7,8 @@ "CVE-2019-20672" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, and RBK50 before 2.3.5.30.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hhh9-2gcx-grhp/GHSA-hhh9-2gcx-grhp.json b/advisories/unreviewed/2022/05/GHSA-hhh9-2gcx-grhp/GHSA-hhh9-2gcx-grhp.json index 3730ba96d05..c00b86277ee 100644 --- a/advisories/unreviewed/2022/05/GHSA-hhh9-2gcx-grhp/GHSA-hhh9-2gcx-grhp.json +++ b/advisories/unreviewed/2022/05/GHSA-hhh9-2gcx-grhp/GHSA-hhh9-2gcx-grhp.json @@ -7,12 +7,8 @@ "CVE-2020-2751" ], "details": "Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Portal). Supported versions that are affected are 8.56 and 8.57. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in PeopleSoft Enterprise PeopleTools, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of PeopleSoft Enterprise PeopleTools accessible data as well as unauthorized read access to a subset of PeopleSoft Enterprise PeopleTools accessible data. CVSS 3.0 Base Score 6.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hjqq-v5qj-gf74/GHSA-hjqq-v5qj-gf74.json b/advisories/unreviewed/2022/05/GHSA-hjqq-v5qj-gf74/GHSA-hjqq-v5qj-gf74.json index b324d188ea2..67bb8e756f1 100644 --- a/advisories/unreviewed/2022/05/GHSA-hjqq-v5qj-gf74/GHSA-hjqq-v5qj-gf74.json +++ b/advisories/unreviewed/2022/05/GHSA-hjqq-v5qj-gf74/GHSA-hjqq-v5qj-gf74.json @@ -7,12 +7,8 @@ "CVE-2020-1000" ], "details": "An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka 'Windows Kernel Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0913, CVE-2020-1003, CVE-2020-1027.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hmcg-r74r-6qp2/GHSA-hmcg-r74r-6qp2.json b/advisories/unreviewed/2022/05/GHSA-hmcg-r74r-6qp2/GHSA-hmcg-r74r-6qp2.json index cc81be6ee84..92b8e02fa95 100644 --- a/advisories/unreviewed/2022/05/GHSA-hmcg-r74r-6qp2/GHSA-hmcg-r74r-6qp2.json +++ b/advisories/unreviewed/2022/05/GHSA-hmcg-r74r-6qp2/GHSA-hmcg-r74r-6qp2.json @@ -7,12 +7,8 @@ "CVE-2020-0907" ], "details": "A remote code execution vulnerability exists in the way that Microsoft Graphics Components handle objects in memory, aka 'Microsoft Graphics Components Remote Code Execution Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hp8c-vj2x-29pj/GHSA-hp8c-vj2x-29pj.json b/advisories/unreviewed/2022/05/GHSA-hp8c-vj2x-29pj/GHSA-hp8c-vj2x-29pj.json index 8b242987de8..9b421f1f632 100644 --- a/advisories/unreviewed/2022/05/GHSA-hp8c-vj2x-29pj/GHSA-hp8c-vj2x-29pj.json +++ b/advisories/unreviewed/2022/05/GHSA-hp8c-vj2x-29pj/GHSA-hp8c-vj2x-29pj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hp8g-87f8-285m/GHSA-hp8g-87f8-285m.json b/advisories/unreviewed/2022/05/GHSA-hp8g-87f8-285m/GHSA-hp8g-87f8-285m.json index 400183b581b..8ed9016735a 100644 --- a/advisories/unreviewed/2022/05/GHSA-hp8g-87f8-285m/GHSA-hp8g-87f8-285m.json +++ b/advisories/unreviewed/2022/05/GHSA-hp8g-87f8-285m/GHSA-hp8g-87f8-285m.json @@ -7,12 +7,8 @@ "CVE-2020-1988" ], "details": "An unquoted search path vulnerability in the Windows release of Global Protect Agent allows an authenticated local user with file creation privileges on the root of the OS disk (C:\\) or to Program Files directory to gain system privileges. This issue affects Palo Alto Networks GlobalProtect Agent 5.0 versions before 5.0.5; 4.1 versions before 4.1.13 on Windows;", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hpc6-jf76-gpqr/GHSA-hpc6-jf76-gpqr.json b/advisories/unreviewed/2022/05/GHSA-hpc6-jf76-gpqr/GHSA-hpc6-jf76-gpqr.json index 749902525c9..f18b8a948c0 100644 --- a/advisories/unreviewed/2022/05/GHSA-hpc6-jf76-gpqr/GHSA-hpc6-jf76-gpqr.json +++ b/advisories/unreviewed/2022/05/GHSA-hpc6-jf76-gpqr/GHSA-hpc6-jf76-gpqr.json @@ -7,12 +7,8 @@ "CVE-2020-11792" ], "details": "NETGEAR R8900, R9000, RAX120, and XR700 devices before 2020-01-20 are affected by Transport Layer Security (TLS) certificate private key disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hq6m-pq75-r995/GHSA-hq6m-pq75-r995.json b/advisories/unreviewed/2022/05/GHSA-hq6m-pq75-r995/GHSA-hq6m-pq75-r995.json index 0f0f599556e..770665b9bfd 100644 --- a/advisories/unreviewed/2022/05/GHSA-hq6m-pq75-r995/GHSA-hq6m-pq75-r995.json +++ b/advisories/unreviewed/2022/05/GHSA-hq6m-pq75-r995/GHSA-hq6m-pq75-r995.json @@ -7,12 +7,8 @@ "CVE-2020-11588" ], "details": "An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an HTTP GET request to two files that contain customer data and application paths.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hqv3-p7gh-g339/GHSA-hqv3-p7gh-g339.json b/advisories/unreviewed/2022/05/GHSA-hqv3-p7gh-g339/GHSA-hqv3-p7gh-g339.json index 697350694fc..6472654a4d0 100644 --- a/advisories/unreviewed/2022/05/GHSA-hqv3-p7gh-g339/GHSA-hqv3-p7gh-g339.json +++ b/advisories/unreviewed/2022/05/GHSA-hqv3-p7gh-g339/GHSA-hqv3-p7gh-g339.json @@ -7,12 +7,8 @@ "CVE-2020-10551" ], "details": "QQBrowser before 10.5.3870.400 installs a Windows service TsService.exe. This file is writable by anyone belonging to the NT AUTHORITY\\Authenticated Users group, which includes all local and remote users. This can be abused by local attackers to escalate privileges to NT AUTHORITY\\SYSTEM by writing a malicious executable to the location of TsService.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hrg4-r4x5-qp6w/GHSA-hrg4-r4x5-qp6w.json b/advisories/unreviewed/2022/05/GHSA-hrg4-r4x5-qp6w/GHSA-hrg4-r4x5-qp6w.json index d963a6179a2..5bfff90aea2 100644 --- a/advisories/unreviewed/2022/05/GHSA-hrg4-r4x5-qp6w/GHSA-hrg4-r4x5-qp6w.json +++ b/advisories/unreviewed/2022/05/GHSA-hrg4-r4x5-qp6w/GHSA-hrg4-r4x5-qp6w.json @@ -7,12 +7,8 @@ "CVE-2020-2776" ], "details": "Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Security). Supported versions that are affected are 8.56 and 8.57. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools. While the vulnerability is in PeopleSoft Enterprise PeopleTools, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of PeopleSoft Enterprise PeopleTools. CVSS 3.0 Base Score 8.6 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hrq5-cg78-8924/GHSA-hrq5-cg78-8924.json b/advisories/unreviewed/2022/05/GHSA-hrq5-cg78-8924/GHSA-hrq5-cg78-8924.json index d64ec0052b0..203c09d8356 100644 --- a/advisories/unreviewed/2022/05/GHSA-hrq5-cg78-8924/GHSA-hrq5-cg78-8924.json +++ b/advisories/unreviewed/2022/05/GHSA-hrq5-cg78-8924/GHSA-hrq5-cg78-8924.json @@ -7,12 +7,8 @@ "CVE-2017-18659" ], "details": "An issue was discovered on Samsung mobile devices with KK(4.4), L(5.0/5.1), M(6.0), and N(7.x) software. Attackers can crash system processes via a broadcast to AdaptiveDisplayColorService. The Samsung ID is SVE-2017-8290 (July 2017).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hrvm-cw84-qwm3/GHSA-hrvm-cw84-qwm3.json b/advisories/unreviewed/2022/05/GHSA-hrvm-cw84-qwm3/GHSA-hrvm-cw84-qwm3.json index 01d2a6a3913..58aeec32021 100644 --- a/advisories/unreviewed/2022/05/GHSA-hrvm-cw84-qwm3/GHSA-hrvm-cw84-qwm3.json +++ b/advisories/unreviewed/2022/05/GHSA-hrvm-cw84-qwm3/GHSA-hrvm-cw84-qwm3.json @@ -7,12 +7,8 @@ "CVE-2020-11773" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.68, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0.0.78, XR500 before 2.3.2.56, and XR700 before 1.0.1.10.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hrx7-p4cg-54x5/GHSA-hrx7-p4cg-54x5.json b/advisories/unreviewed/2022/05/GHSA-hrx7-p4cg-54x5/GHSA-hrx7-p4cg-54x5.json index 81a2353e009..c7208b7437d 100644 --- a/advisories/unreviewed/2022/05/GHSA-hrx7-p4cg-54x5/GHSA-hrx7-p4cg-54x5.json +++ b/advisories/unreviewed/2022/05/GHSA-hrx7-p4cg-54x5/GHSA-hrx7-p4cg-54x5.json @@ -7,12 +7,8 @@ "CVE-2019-20658" ], "details": "Certain NETGEAR devices are affected by disclosure of sensitive information. This affects FS728TLP before 1.0.1.26, GS105Ev2 before 1.6.0.4, GS105PE before 1.6.0.4, GS108Ev3 before 2.06.08, GS108PEv3 before 2.06.08, GS110EMX before 1.0.1.4, GS116Ev2 before 2.6.0.35, GS408EPP before 1.0.0.15, GS808E before 1.7.0.7, GS810EMX before 1.7.1.1, GS908E before 1.7.0.3, GSS108E before 1.6.0.4, GSS108EPP before 1.0.0.15, GSS116E before 1.6.0.9, JGS516PE before 2.6.0.35, JGS524Ev2 before 2.6.0.35, JGS524PE before 2.6.0.35, XS512EM before 1.0.1.1, XS708Ev2 before 1.6.0.23, XS716E before 1.6.0.23, and XS724EM before 1.0.1.1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hv8x-v629-q57h/GHSA-hv8x-v629-q57h.json b/advisories/unreviewed/2022/05/GHSA-hv8x-v629-q57h/GHSA-hv8x-v629-q57h.json index 87554fa386e..9f186b9f29b 100644 --- a/advisories/unreviewed/2022/05/GHSA-hv8x-v629-q57h/GHSA-hv8x-v629-q57h.json +++ b/advisories/unreviewed/2022/05/GHSA-hv8x-v629-q57h/GHSA-hv8x-v629-q57h.json @@ -7,12 +7,8 @@ "CVE-2020-2784" ], "details": "Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Outside In Filters). The supported version that is affected is 8.5.4. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Outside In Technology. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Outside In Technology accessible data as well as unauthorized read access to a subset of Oracle Outside In Technology accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Outside In Technology. Note: Outside In Technology is a suite of software development kits (SDKs). The protocol and CVSS score depend on the software that uses the Outside In Technology code. The CVSS score assumes that the software passes data received over a network directly to Outside In Technology code, but if data is not received over a network the CVSS score may be lower. CVSS 3.0 Base Score 7.3 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hvcg-q97m-g247/GHSA-hvcg-q97m-g247.json b/advisories/unreviewed/2022/05/GHSA-hvcg-q97m-g247/GHSA-hvcg-q97m-g247.json index 498d9d2794d..34a5b0bb133 100644 --- a/advisories/unreviewed/2022/05/GHSA-hvcg-q97m-g247/GHSA-hvcg-q97m-g247.json +++ b/advisories/unreviewed/2022/05/GHSA-hvcg-q97m-g247/GHSA-hvcg-q97m-g247.json @@ -7,12 +7,8 @@ "CVE-2015-9547" ], "details": "An issue was discovered on Samsung mobile devices with JBP(4.3) and KK(4.4.2) software. Because the READ_LOGS permission is mishandled, sensitive information is disclosed in a world-readable copy of the log file if the error message is \"Unhandled exception in Dalvik VM,\" \"Application not responding ANR event,\" or \"Crash on an application's native code.\" The Samsung ID is SVE-2015-2885 (October 2015).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hvwr-mw2m-chj3/GHSA-hvwr-mw2m-chj3.json b/advisories/unreviewed/2022/05/GHSA-hvwr-mw2m-chj3/GHSA-hvwr-mw2m-chj3.json index 28ea26fff99..06c72c2bf84 100644 --- a/advisories/unreviewed/2022/05/GHSA-hvwr-mw2m-chj3/GHSA-hvwr-mw2m-chj3.json +++ b/advisories/unreviewed/2022/05/GHSA-hvwr-mw2m-chj3/GHSA-hvwr-mw2m-chj3.json @@ -7,12 +7,8 @@ "CVE-2020-11767" ], "details": "Istio through 1.5.1 and Envoy through 1.14.1 have a data-leak issue. If there is a TCP connection (negotiated with SNI over HTTPS) to *.example.com, a request for a domain concurrently configured explicitly (e.g., abc.example.com) is sent to the server(s) listening behind *.example.com. The outcome should instead be 421 Misdirected Request. Imagine a shared caching forward proxy re-using an HTTP/2 connection for a large subnet with many users. If a victim is interacting with abc.example.com, and a server (for abc.example.com) recycles the TCP connection to the forward proxy, the victim's browser may suddenly start sending sensitive data to a *.example.com server. This occurs because the forward proxy between the victim and the origin server reuses connections (which obeys the specification), but neither Istio nor Envoy corrects this by sending a 421 error. Similarly, this behavior voids the security model browsers have put in place between domains.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hw43-m36p-rf72/GHSA-hw43-m36p-rf72.json b/advisories/unreviewed/2022/05/GHSA-hw43-m36p-rf72/GHSA-hw43-m36p-rf72.json index 24a7f0cd318..27bc4d01529 100644 --- a/advisories/unreviewed/2022/05/GHSA-hw43-m36p-rf72/GHSA-hw43-m36p-rf72.json +++ b/advisories/unreviewed/2022/05/GHSA-hw43-m36p-rf72/GHSA-hw43-m36p-rf72.json @@ -7,12 +7,8 @@ "CVE-2020-11776" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.68, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0.0.78, XR500 before 2.3.2.56, and XR700 before 1.0.1.10.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hwh8-6rw9-7v6w/GHSA-hwh8-6rw9-7v6w.json b/advisories/unreviewed/2022/05/GHSA-hwh8-6rw9-7v6w/GHSA-hwh8-6rw9-7v6w.json index 37d1daa839e..2c07c96fe9b 100644 --- a/advisories/unreviewed/2022/05/GHSA-hwh8-6rw9-7v6w/GHSA-hwh8-6rw9-7v6w.json +++ b/advisories/unreviewed/2022/05/GHSA-hwh8-6rw9-7v6w/GHSA-hwh8-6rw9-7v6w.json @@ -7,12 +7,8 @@ "CVE-2020-7801" ], "details": "The Synergy Systems & Solutions (SSS) HUSKY RTU 6049-E70, with firmware Versions 5.0 and prior, has an Exposure of Sensitive Information to an Unauthorized Actor (CWE-200) vulnerability. The affected product is vulnerable to information exposure over the SNMP protocol. This is a different issue than CVE-2019-16879, CVE-2019-20045, CVE-2019-20046, CVE-2020-7800, and CVE-2020-7802.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hx5g-796f-2xrq/GHSA-hx5g-796f-2xrq.json b/advisories/unreviewed/2022/05/GHSA-hx5g-796f-2xrq/GHSA-hx5g-796f-2xrq.json index 7b5fa2f4928..01d6390412c 100644 --- a/advisories/unreviewed/2022/05/GHSA-hx5g-796f-2xrq/GHSA-hx5g-796f-2xrq.json +++ b/advisories/unreviewed/2022/05/GHSA-hx5g-796f-2xrq/GHSA-hx5g-796f-2xrq.json @@ -7,12 +7,8 @@ "CVE-2019-20647" ], "details": "NETGEAR RAX40 devices before 1.0.3.64 are affected by denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hxp2-q48f-xhqg/GHSA-hxp2-q48f-xhqg.json b/advisories/unreviewed/2022/05/GHSA-hxp2-q48f-xhqg/GHSA-hxp2-q48f-xhqg.json index aa9078ad43d..f6ea914166d 100644 --- a/advisories/unreviewed/2022/05/GHSA-hxp2-q48f-xhqg/GHSA-hxp2-q48f-xhqg.json +++ b/advisories/unreviewed/2022/05/GHSA-hxp2-q48f-xhqg/GHSA-hxp2-q48f-xhqg.json @@ -7,12 +7,8 @@ "CVE-2020-6233" ], "details": "SAP S/4 HANA (Financial Products Subledger and Banking Services), versions - FSAPPL 400, 450, 500 and S4FPSL 100, allows an authenticated user to run an analysis report due to Missing Authorization Check, resulting in slowing the system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j2cf-m296-v865/GHSA-j2cf-m296-v865.json b/advisories/unreviewed/2022/05/GHSA-j2cf-m296-v865/GHSA-j2cf-m296-v865.json index bf7effea01d..c4764944e8b 100644 --- a/advisories/unreviewed/2022/05/GHSA-j2cf-m296-v865/GHSA-j2cf-m296-v865.json +++ b/advisories/unreviewed/2022/05/GHSA-j2cf-m296-v865/GHSA-j2cf-m296-v865.json @@ -7,12 +7,8 @@ "CVE-2020-11599" ], "details": "An issue was discovered in CIPPlanner CIPAce 6.80 Build 2016031401. GetDistributedPOP3 allows attackers to obtain the username and password of the SMTP user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j2rq-9729-p9fr/GHSA-j2rq-9729-p9fr.json b/advisories/unreviewed/2022/05/GHSA-j2rq-9729-p9fr/GHSA-j2rq-9729-p9fr.json index 0cc8c7c8d4f..e9751021695 100644 --- a/advisories/unreviewed/2022/05/GHSA-j2rq-9729-p9fr/GHSA-j2rq-9729-p9fr.json +++ b/advisories/unreviewed/2022/05/GHSA-j2rq-9729-p9fr/GHSA-j2rq-9729-p9fr.json @@ -7,12 +7,8 @@ "CVE-2020-4290" ], "details": "IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, 1.0.2, 1.0.3, 1.0.4, and 1.0.5 could allow any authenticated user to spoof the configuration owner of any other user which disclose sensitive information or allow for unauthorized access. IBM X-Force ID: 176333.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j33f-cq4g-xppq/GHSA-j33f-cq4g-xppq.json b/advisories/unreviewed/2022/05/GHSA-j33f-cq4g-xppq/GHSA-j33f-cq4g-xppq.json index 078e2f4c0b7..eca942f5e7a 100644 --- a/advisories/unreviewed/2022/05/GHSA-j33f-cq4g-xppq/GHSA-j33f-cq4g-xppq.json +++ b/advisories/unreviewed/2022/05/GHSA-j33f-cq4g-xppq/GHSA-j33f-cq4g-xppq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j53q-vvgg-c52c/GHSA-j53q-vvgg-c52c.json b/advisories/unreviewed/2022/05/GHSA-j53q-vvgg-c52c/GHSA-j53q-vvgg-c52c.json index a6dd14912d1..f44b0c25905 100644 --- a/advisories/unreviewed/2022/05/GHSA-j53q-vvgg-c52c/GHSA-j53q-vvgg-c52c.json +++ b/advisories/unreviewed/2022/05/GHSA-j53q-vvgg-c52c/GHSA-j53q-vvgg-c52c.json @@ -7,12 +7,8 @@ "CVE-2020-0899" ], "details": "An elevation of privilege vulnerability exists when Microsoft Visual Studio updater service improperly handles file permissions, aka 'Microsoft Visual Studio Elevation of Privilege Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j5j7-62x7-7hmh/GHSA-j5j7-62x7-7hmh.json b/advisories/unreviewed/2022/05/GHSA-j5j7-62x7-7hmh/GHSA-j5j7-62x7-7hmh.json index c4222f75d1b..fc2a8ed2352 100644 --- a/advisories/unreviewed/2022/05/GHSA-j5j7-62x7-7hmh/GHSA-j5j7-62x7-7hmh.json +++ b/advisories/unreviewed/2022/05/GHSA-j5j7-62x7-7hmh/GHSA-j5j7-62x7-7hmh.json @@ -7,12 +7,8 @@ "CVE-2019-20638" ], "details": "NETGEAR MR1100 devices before 12.06.08.00 are affected by disclosure of administrative credentials.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j5mx-vvx4-94pw/GHSA-j5mx-vvx4-94pw.json b/advisories/unreviewed/2022/05/GHSA-j5mx-vvx4-94pw/GHSA-j5mx-vvx4-94pw.json index 7c5b93fb404..fe8cab915b7 100644 --- a/advisories/unreviewed/2022/05/GHSA-j5mx-vvx4-94pw/GHSA-j5mx-vvx4-94pw.json +++ b/advisories/unreviewed/2022/05/GHSA-j5mx-vvx4-94pw/GHSA-j5mx-vvx4-94pw.json @@ -7,12 +7,8 @@ "CVE-2019-7305" ], "details": "Information Exposure vulnerability in eXtplorer makes the /usr/ and /etc/extplorer/ system directories world-accessible over HTTP. Introduced in the Makefile patch file debian/patches/debian-changes-2.1.0b6+dfsg-1 or debian/patches/adds-a-makefile.patch, this can lead to data leakage, information disclosure and potentially remote code execution on the web server. This issue affects all versions of eXtplorer in Ubuntu and Debian", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j5q8-22j2-m58f/GHSA-j5q8-22j2-m58f.json b/advisories/unreviewed/2022/05/GHSA-j5q8-22j2-m58f/GHSA-j5q8-22j2-m58f.json index 7fabcbd4d57..bffddaf6255 100644 --- a/advisories/unreviewed/2022/05/GHSA-j5q8-22j2-m58f/GHSA-j5q8-22j2-m58f.json +++ b/advisories/unreviewed/2022/05/GHSA-j5q8-22j2-m58f/GHSA-j5q8-22j2-m58f.json @@ -7,12 +7,8 @@ "CVE-2018-6402" ], "details": "Ecobee Ecobee4 4.2.0.171 devices can be forced to deauthenticate and connect to an unencrypted Wi-Fi network with the same SSID, even if the device settings specify use of encryption such as WPA2, as long as the competing network has a stronger signal. An attacker must be able to set up a nearby SSID, similar to an \"Evil Twin\" attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j6h2-r8q5-43pr/GHSA-j6h2-r8q5-43pr.json b/advisories/unreviewed/2022/05/GHSA-j6h2-r8q5-43pr/GHSA-j6h2-r8q5-43pr.json index 68b6d2f445c..fbb69352ce7 100644 --- a/advisories/unreviewed/2022/05/GHSA-j6h2-r8q5-43pr/GHSA-j6h2-r8q5-43pr.json +++ b/advisories/unreviewed/2022/05/GHSA-j6h2-r8q5-43pr/GHSA-j6h2-r8q5-43pr.json @@ -7,12 +7,8 @@ "CVE-2020-2790" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Pluggable Auth). Supported versions that are affected are 5.7.28 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j7p4-87f4-5vj8/GHSA-j7p4-87f4-5vj8.json b/advisories/unreviewed/2022/05/GHSA-j7p4-87f4-5vj8/GHSA-j7p4-87f4-5vj8.json index 8a6e41439ff..561b720dfa0 100644 --- a/advisories/unreviewed/2022/05/GHSA-j7p4-87f4-5vj8/GHSA-j7p4-87f4-5vj8.json +++ b/advisories/unreviewed/2022/05/GHSA-j7p4-87f4-5vj8/GHSA-j7p4-87f4-5vj8.json @@ -7,12 +7,8 @@ "CVE-2017-18696" ], "details": "An issue was discovered on Samsung mobile devices with M(6.0) and N(7.0) (Exynos7420, Exynos8890, or MSM8996 chipsets) software. RKP allows memory corruption. The Samsung ID is SVE-2016-7897 (January 2017).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j7ph-9246-53g3/GHSA-j7ph-9246-53g3.json b/advisories/unreviewed/2022/05/GHSA-j7ph-9246-53g3/GHSA-j7ph-9246-53g3.json index bd626771b69..2c82bdd3bf9 100644 --- a/advisories/unreviewed/2022/05/GHSA-j7ph-9246-53g3/GHSA-j7ph-9246-53g3.json +++ b/advisories/unreviewed/2022/05/GHSA-j7ph-9246-53g3/GHSA-j7ph-9246-53g3.json @@ -7,12 +7,8 @@ "CVE-2020-0979" ], "details": "A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0906.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j84w-6r3r-7jvc/GHSA-j84w-6r3r-7jvc.json b/advisories/unreviewed/2022/05/GHSA-j84w-6r3r-7jvc/GHSA-j84w-6r3r-7jvc.json index 43de6d2ab3c..0fe5cec523b 100644 --- a/advisories/unreviewed/2022/05/GHSA-j84w-6r3r-7jvc/GHSA-j84w-6r3r-7jvc.json +++ b/advisories/unreviewed/2022/05/GHSA-j84w-6r3r-7jvc/GHSA-j84w-6r3r-7jvc.json @@ -7,12 +7,8 @@ "CVE-2020-11669" ], "details": "An issue was discovered in the Linux kernel before 5.2 on the powerpc platform. arch/powerpc/kernel/idle_book3s.S does not have save/restore functionality for PNV_POWERSAVE_AMR, PNV_POWERSAVE_UAMOR, and PNV_POWERSAVE_AMOR, aka CID-53a712bae5dd.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -76,9 +72,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j8m9-w856-qfxj/GHSA-j8m9-w856-qfxj.json b/advisories/unreviewed/2022/05/GHSA-j8m9-w856-qfxj/GHSA-j8m9-w856-qfxj.json index bdcc3e1cb14..6565a8ab956 100644 --- a/advisories/unreviewed/2022/05/GHSA-j8m9-w856-qfxj/GHSA-j8m9-w856-qfxj.json +++ b/advisories/unreviewed/2022/05/GHSA-j8m9-w856-qfxj/GHSA-j8m9-w856-qfxj.json @@ -7,12 +7,8 @@ "CVE-2019-20673" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects RBR20 before 2.3.5.26, RBS20 before 2.3.5.26, RBK20 before 2.3.5.26, RBR40 before 2.3.5.30, RBS40 before 2.3.5.30, RBK40 before 2.3.5.30, RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, and RBK50 before 2.3.5.30.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j99r-h42f-9xrm/GHSA-j99r-h42f-9xrm.json b/advisories/unreviewed/2022/05/GHSA-j99r-h42f-9xrm/GHSA-j99r-h42f-9xrm.json index f3c737c9e81..0595727a5ff 100644 --- a/advisories/unreviewed/2022/05/GHSA-j99r-h42f-9xrm/GHSA-j99r-h42f-9xrm.json +++ b/advisories/unreviewed/2022/05/GHSA-j99r-h42f-9xrm/GHSA-j99r-h42f-9xrm.json @@ -7,12 +7,8 @@ "CVE-2020-0966" ], "details": "A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'VBScript Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0967.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jcv5-c92v-jxmh/GHSA-jcv5-c92v-jxmh.json b/advisories/unreviewed/2022/05/GHSA-jcv5-c92v-jxmh/GHSA-jcv5-c92v-jxmh.json index 272624a3584..94f9ebd4c76 100644 --- a/advisories/unreviewed/2022/05/GHSA-jcv5-c92v-jxmh/GHSA-jcv5-c92v-jxmh.json +++ b/advisories/unreviewed/2022/05/GHSA-jcv5-c92v-jxmh/GHSA-jcv5-c92v-jxmh.json @@ -7,12 +7,8 @@ "CVE-2020-7958" ], "details": "An issue was discovered on OnePlus 7 Pro devices before 10.0.3.GM21BA. The firmware was found to contain functionality that allows a privileged user (root) in the Rich Execution Environment (REE) to obtain bitmap images from the fingerprint sensor because of Leftover Debug Code. The issue is that the Trusted Application (TA) supports an extended number of commands beyond what is needed to implement a fingerprint authentication system compatible with Android. An attacker who is in the position to send commands to the TA (for example, the root user) is able to send a sequence of these commands that will result in the TA sending a raw fingerprint image to the REE. This means that the Trusted Execution Environment (TEE) no longer protects identifiable fingerprint data from the REE.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jf35-5pgv-6674/GHSA-jf35-5pgv-6674.json b/advisories/unreviewed/2022/05/GHSA-jf35-5pgv-6674/GHSA-jf35-5pgv-6674.json index 7f4ae489092..a7ba6967241 100644 --- a/advisories/unreviewed/2022/05/GHSA-jf35-5pgv-6674/GHSA-jf35-5pgv-6674.json +++ b/advisories/unreviewed/2022/05/GHSA-jf35-5pgv-6674/GHSA-jf35-5pgv-6674.json @@ -7,12 +7,8 @@ "CVE-2020-0937" ], "details": "An information disclosure vulnerability exists when Media Foundation improperly handles objects in memory, aka 'Media Foundation Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-0939, CVE-2020-0945, CVE-2020-0946, CVE-2020-0947.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jf4c-392q-69v3/GHSA-jf4c-392q-69v3.json b/advisories/unreviewed/2022/05/GHSA-jf4c-392q-69v3/GHSA-jf4c-392q-69v3.json index 8cc159a69c1..d5e9e45c547 100644 --- a/advisories/unreviewed/2022/05/GHSA-jf4c-392q-69v3/GHSA-jf4c-392q-69v3.json +++ b/advisories/unreviewed/2022/05/GHSA-jf4c-392q-69v3/GHSA-jf4c-392q-69v3.json @@ -7,12 +7,8 @@ "CVE-2018-21082" ], "details": "An issue was discovered on Samsung mobile devices with N(7.x) software. Dex Station allows App Pinning bypass and lock-screen bypass via the \"Use screen lock type to unpin\" option. The Samsung ID is SVE-2017-11106 (February 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jfg7-52r3-r7rq/GHSA-jfg7-52r3-r7rq.json b/advisories/unreviewed/2022/05/GHSA-jfg7-52r3-r7rq/GHSA-jfg7-52r3-r7rq.json index b6a78db8938..db12332f496 100644 --- a/advisories/unreviewed/2022/05/GHSA-jfg7-52r3-r7rq/GHSA-jfg7-52r3-r7rq.json +++ b/advisories/unreviewed/2022/05/GHSA-jfg7-52r3-r7rq/GHSA-jfg7-52r3-r7rq.json @@ -7,12 +7,8 @@ "CVE-2020-0895" ], "details": "A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'Windows VBScript Engine Remote Code Execution Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jfrh-cwq3-hcj6/GHSA-jfrh-cwq3-hcj6.json b/advisories/unreviewed/2022/05/GHSA-jfrh-cwq3-hcj6/GHSA-jfrh-cwq3-hcj6.json index 3b305899130..2b3c2157ad6 100644 --- a/advisories/unreviewed/2022/05/GHSA-jfrh-cwq3-hcj6/GHSA-jfrh-cwq3-hcj6.json +++ b/advisories/unreviewed/2022/05/GHSA-jfrh-cwq3-hcj6/GHSA-jfrh-cwq3-hcj6.json @@ -7,12 +7,8 @@ "CVE-2020-11628" ], "details": "An issue was discovered in EJBCA before 6.15.2.6 and 7.x before 7.3.1.2. It is intended to support restriction of available remote protocols (CMP, ACME, REST, etc.) through the system configuration. These restrictions can be bypassed by modifying the URI string from a client. (EJBCA's internal access control restrictions are still in place, and each respective protocol must be configured to allow for enrollment.)", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jhcw-q455-h5fx/GHSA-jhcw-q455-h5fx.json b/advisories/unreviewed/2022/05/GHSA-jhcw-q455-h5fx/GHSA-jhcw-q455-h5fx.json index 523461c0274..89601e3b2db 100644 --- a/advisories/unreviewed/2022/05/GHSA-jhcw-q455-h5fx/GHSA-jhcw-q455-h5fx.json +++ b/advisories/unreviewed/2022/05/GHSA-jhcw-q455-h5fx/GHSA-jhcw-q455-h5fx.json @@ -7,12 +7,8 @@ "CVE-2020-6221" ], "details": "Web Intelligence HTML interface in SAP Business Objects Business Intelligence Platform, versions 4.1, 4.2, does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jj2q-v22w-qp64/GHSA-jj2q-v22w-qp64.json b/advisories/unreviewed/2022/05/GHSA-jj2q-v22w-qp64/GHSA-jj2q-v22w-qp64.json index db80a6f7e45..20bf8e0eeeb 100644 --- a/advisories/unreviewed/2022/05/GHSA-jj2q-v22w-qp64/GHSA-jj2q-v22w-qp64.json +++ b/advisories/unreviewed/2022/05/GHSA-jj2q-v22w-qp64/GHSA-jj2q-v22w-qp64.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jjc4-3xwf-4wrw/GHSA-jjc4-3xwf-4wrw.json b/advisories/unreviewed/2022/05/GHSA-jjc4-3xwf-4wrw/GHSA-jjc4-3xwf-4wrw.json index d2f2ec45177..0d3ce4f2ad9 100644 --- a/advisories/unreviewed/2022/05/GHSA-jjc4-3xwf-4wrw/GHSA-jjc4-3xwf-4wrw.json +++ b/advisories/unreviewed/2022/05/GHSA-jjc4-3xwf-4wrw/GHSA-jjc4-3xwf-4wrw.json @@ -7,12 +7,8 @@ "CVE-2018-21043" ], "details": "An issue was discovered on Samsung mobile devices with O(8.x) and P(9.0) (Exynos 9810 chipsets) software. There is information disclosure about a kernel pointer in the g2d_drv driver because of logging. The Samsung ID is SVE-2018-13035 (December 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jjf4-23g8-gc3w/GHSA-jjf4-23g8-gc3w.json b/advisories/unreviewed/2022/05/GHSA-jjf4-23g8-gc3w/GHSA-jjf4-23g8-gc3w.json index 54b691cf386..da2f6be9dcd 100644 --- a/advisories/unreviewed/2022/05/GHSA-jjf4-23g8-gc3w/GHSA-jjf4-23g8-gc3w.json +++ b/advisories/unreviewed/2022/05/GHSA-jjf4-23g8-gc3w/GHSA-jjf4-23g8-gc3w.json @@ -7,12 +7,8 @@ "CVE-2020-2734" ], "details": "Vulnerability in the RDBMS/Optimizer component of Oracle Database Server. Supported versions that are affected are 12.1.0.2, 12.2.0.1, 18c and 19c. Easily exploitable vulnerability allows high privileged attacker having Execute on DBMS_SQLTUNE privilege with network access via Oracle Net to compromise RDBMS/Optimizer. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized read access to a subset of RDBMS/Optimizer accessible data. CVSS 3.0 Base Score 2.4 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:R/S:U/C:L/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jm33-7hwp-f5h7/GHSA-jm33-7hwp-f5h7.json b/advisories/unreviewed/2022/05/GHSA-jm33-7hwp-f5h7/GHSA-jm33-7hwp-f5h7.json index 68d1287b10c..c0e8c49e8e7 100644 --- a/advisories/unreviewed/2022/05/GHSA-jm33-7hwp-f5h7/GHSA-jm33-7hwp-f5h7.json +++ b/advisories/unreviewed/2022/05/GHSA-jm33-7hwp-f5h7/GHSA-jm33-7hwp-f5h7.json @@ -7,12 +7,8 @@ "CVE-2020-0933" ], "details": "A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft Office SharePoint XSS Vulnerability'. This CVE ID is unique from CVE-2020-0923, CVE-2020-0924, CVE-2020-0925, CVE-2020-0926, CVE-2020-0927, CVE-2020-0930, CVE-2020-0954, CVE-2020-0973, CVE-2020-0978.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jmc3-547v-q3qv/GHSA-jmc3-547v-q3qv.json b/advisories/unreviewed/2022/05/GHSA-jmc3-547v-q3qv/GHSA-jmc3-547v-q3qv.json index cf5244803fd..eadaaf1e0ab 100644 --- a/advisories/unreviewed/2022/05/GHSA-jmc3-547v-q3qv/GHSA-jmc3-547v-q3qv.json +++ b/advisories/unreviewed/2022/05/GHSA-jmc3-547v-q3qv/GHSA-jmc3-547v-q3qv.json @@ -7,12 +7,8 @@ "CVE-2020-1885" ], "details": "Writing to an unprivileged file from a privileged OVRRedir.exe process in Oculus Desktop before 1.44.0.32849 on Windows allows local users to write to arbitrary files and consequently gain privileges via vectors involving a hard link to a log file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jmc8-xh8j-r599/GHSA-jmc8-xh8j-r599.json b/advisories/unreviewed/2022/05/GHSA-jmc8-xh8j-r599/GHSA-jmc8-xh8j-r599.json index fff298ab518..4b5f62984cd 100644 --- a/advisories/unreviewed/2022/05/GHSA-jmc8-xh8j-r599/GHSA-jmc8-xh8j-r599.json +++ b/advisories/unreviewed/2022/05/GHSA-jmc8-xh8j-r599/GHSA-jmc8-xh8j-r599.json @@ -7,12 +7,8 @@ "CVE-2020-1005" ], "details": "An information disclosure vulnerability exists when the Microsoft Windows Graphics Component improperly handles objects in memory, aka 'Microsoft Graphics Component Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-0982, CVE-2020-0987.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jmf7-w2r6-rp82/GHSA-jmf7-w2r6-rp82.json b/advisories/unreviewed/2022/05/GHSA-jmf7-w2r6-rp82/GHSA-jmf7-w2r6-rp82.json index 9c8ba3ca2be..1cd1d401480 100644 --- a/advisories/unreviewed/2022/05/GHSA-jmf7-w2r6-rp82/GHSA-jmf7-w2r6-rp82.json +++ b/advisories/unreviewed/2022/05/GHSA-jmf7-w2r6-rp82/GHSA-jmf7-w2r6-rp82.json @@ -7,12 +7,8 @@ "CVE-2020-2740" ], "details": "Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentication Engine). Supported versions that are affected are 11.1.2.3.0 and 12.2.1.3.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Access Manager. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Access Manager accessible data as well as unauthorized read access to a subset of Oracle Access Manager accessible data. CVSS 3.0 Base Score 4.6 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jmx9-mphw-fm82/GHSA-jmx9-mphw-fm82.json b/advisories/unreviewed/2022/05/GHSA-jmx9-mphw-fm82/GHSA-jmx9-mphw-fm82.json index b902dd9035d..ea665147cda 100644 --- a/advisories/unreviewed/2022/05/GHSA-jmx9-mphw-fm82/GHSA-jmx9-mphw-fm82.json +++ b/advisories/unreviewed/2022/05/GHSA-jmx9-mphw-fm82/GHSA-jmx9-mphw-fm82.json @@ -7,12 +7,8 @@ "CVE-2020-1003" ], "details": "An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka 'Windows Kernel Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0913, CVE-2020-1000, CVE-2020-1027.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jppr-v7v7-49m8/GHSA-jppr-v7v7-49m8.json b/advisories/unreviewed/2022/05/GHSA-jppr-v7v7-49m8/GHSA-jppr-v7v7-49m8.json index e3c1021df13..5fcfe738cb7 100644 --- a/advisories/unreviewed/2022/05/GHSA-jppr-v7v7-49m8/GHSA-jppr-v7v7-49m8.json +++ b/advisories/unreviewed/2022/05/GHSA-jppr-v7v7-49m8/GHSA-jppr-v7v7-49m8.json @@ -7,12 +7,8 @@ "CVE-2020-11661" ], "details": "CA API Developer Portal 4.3.1 and earlier contains an access control flaw that allows privileged users to view and edit user data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jqh3-p48c-4xxc/GHSA-jqh3-p48c-4xxc.json b/advisories/unreviewed/2022/05/GHSA-jqh3-p48c-4xxc/GHSA-jqh3-p48c-4xxc.json index 5d04b4b60ad..8daaf416c20 100644 --- a/advisories/unreviewed/2022/05/GHSA-jqh3-p48c-4xxc/GHSA-jqh3-p48c-4xxc.json +++ b/advisories/unreviewed/2022/05/GHSA-jqh3-p48c-4xxc/GHSA-jqh3-p48c-4xxc.json @@ -7,12 +7,8 @@ "CVE-2020-6211" ], "details": "SAP Business Objects Business Intelligence Platform (AdminTools), versions 4.1, 4.2, allows an attacker to redirect users to a malicious site due to insufficient URL validation and steal credentials of the victim, leading to URL Redirection vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jr27-w24g-5rq6/GHSA-jr27-w24g-5rq6.json b/advisories/unreviewed/2022/05/GHSA-jr27-w24g-5rq6/GHSA-jr27-w24g-5rq6.json index ef1a370cacf..185797eaa80 100644 --- a/advisories/unreviewed/2022/05/GHSA-jr27-w24g-5rq6/GHSA-jr27-w24g-5rq6.json +++ b/advisories/unreviewed/2022/05/GHSA-jr27-w24g-5rq6/GHSA-jr27-w24g-5rq6.json @@ -7,12 +7,8 @@ "CVE-2020-8324" ], "details": "A vulnerability was reported in LenovoAppScenarioPluginSystem for Lenovo System Interface Foundation prior to version 1.2.184.31 that could allow unsigned DLL files to be executed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jr46-4q88-9hjx/GHSA-jr46-4q88-9hjx.json b/advisories/unreviewed/2022/05/GHSA-jr46-4q88-9hjx/GHSA-jr46-4q88-9hjx.json index 6c50fd74f25..582b3240764 100644 --- a/advisories/unreviewed/2022/05/GHSA-jr46-4q88-9hjx/GHSA-jr46-4q88-9hjx.json +++ b/advisories/unreviewed/2022/05/GHSA-jr46-4q88-9hjx/GHSA-jr46-4q88-9hjx.json @@ -7,12 +7,8 @@ "CVE-2020-11650" ], "details": "An issue was discovered in iXsystems FreeNAS 11.2 and 11.3 before 11.3-U1. It allows a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jwxr-536r-j6vp/GHSA-jwxr-536r-j6vp.json b/advisories/unreviewed/2022/05/GHSA-jwxr-536r-j6vp/GHSA-jwxr-536r-j6vp.json index b3792564ae1..e73291a1d64 100644 --- a/advisories/unreviewed/2022/05/GHSA-jwxr-536r-j6vp/GHSA-jwxr-536r-j6vp.json +++ b/advisories/unreviewed/2022/05/GHSA-jwxr-536r-j6vp/GHSA-jwxr-536r-j6vp.json @@ -7,12 +7,8 @@ "CVE-2017-18692" ], "details": "An issue was discovered on Samsung mobile devices with M(6.0) and N(7.0) (MSM8939, MSM8996, MSM8998, Exynos7580, Exynos8890, or Exynos8895 chipsets) software. There is a race condition, with a resultant buffer overflow, in the sec_ts touchscreen sysfs interface. The Samsung ID is SVE-2016-7501 (January 2017).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jx37-4vpc-5jhm/GHSA-jx37-4vpc-5jhm.json b/advisories/unreviewed/2022/05/GHSA-jx37-4vpc-5jhm/GHSA-jx37-4vpc-5jhm.json index 73c48069fcc..866f03762d5 100644 --- a/advisories/unreviewed/2022/05/GHSA-jx37-4vpc-5jhm/GHSA-jx37-4vpc-5jhm.json +++ b/advisories/unreviewed/2022/05/GHSA-jx37-4vpc-5jhm/GHSA-jx37-4vpc-5jhm.json @@ -7,12 +7,8 @@ "CVE-2020-0939" ], "details": "An information disclosure vulnerability exists when Media Foundation improperly handles objects in memory, aka 'Media Foundation Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-0937, CVE-2020-0945, CVE-2020-0946, CVE-2020-0947.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m25f-46xv-8r9w/GHSA-m25f-46xv-8r9w.json b/advisories/unreviewed/2022/05/GHSA-m25f-46xv-8r9w/GHSA-m25f-46xv-8r9w.json index b375bef9e62..f7745c5f982 100644 --- a/advisories/unreviewed/2022/05/GHSA-m25f-46xv-8r9w/GHSA-m25f-46xv-8r9w.json +++ b/advisories/unreviewed/2022/05/GHSA-m25f-46xv-8r9w/GHSA-m25f-46xv-8r9w.json @@ -7,12 +7,8 @@ "CVE-2020-11782" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.68, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0.0.78, XR500 before 2.3.2.56, and XR700 before 1.0.1.10.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m284-wmx9-6cmm/GHSA-m284-wmx9-6cmm.json b/advisories/unreviewed/2022/05/GHSA-m284-wmx9-6cmm/GHSA-m284-wmx9-6cmm.json index 7c853ab7559..1c6e83ed3e0 100644 --- a/advisories/unreviewed/2022/05/GHSA-m284-wmx9-6cmm/GHSA-m284-wmx9-6cmm.json +++ b/advisories/unreviewed/2022/05/GHSA-m284-wmx9-6cmm/GHSA-m284-wmx9-6cmm.json @@ -7,12 +7,8 @@ "CVE-2020-0950" ], "details": "A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in memory, aka 'Media Foundation Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2020-0948, CVE-2020-0949.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m32m-39jg-3q76/GHSA-m32m-39jg-3q76.json b/advisories/unreviewed/2022/05/GHSA-m32m-39jg-3q76/GHSA-m32m-39jg-3q76.json index e36035c258b..3074ccbcadb 100644 --- a/advisories/unreviewed/2022/05/GHSA-m32m-39jg-3q76/GHSA-m32m-39jg-3q76.json +++ b/advisories/unreviewed/2022/05/GHSA-m32m-39jg-3q76/GHSA-m32m-39jg-3q76.json @@ -7,12 +7,8 @@ "CVE-2020-0942" ], "details": "An elevation of privilege vulnerability exists when Connected User Experiences and Telemetry Service improperly handles file operations, aka 'Connected User Experiences and Telemetry Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0944, CVE-2020-1029.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m429-rrpg-mfm3/GHSA-m429-rrpg-mfm3.json b/advisories/unreviewed/2022/05/GHSA-m429-rrpg-mfm3/GHSA-m429-rrpg-mfm3.json index 8efa7285485..0a03e112854 100644 --- a/advisories/unreviewed/2022/05/GHSA-m429-rrpg-mfm3/GHSA-m429-rrpg-mfm3.json +++ b/advisories/unreviewed/2022/05/GHSA-m429-rrpg-mfm3/GHSA-m429-rrpg-mfm3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m48v-jxmw-9w94/GHSA-m48v-jxmw-9w94.json b/advisories/unreviewed/2022/05/GHSA-m48v-jxmw-9w94/GHSA-m48v-jxmw-9w94.json index e5d5740e7d8..691e1b0e52e 100644 --- a/advisories/unreviewed/2022/05/GHSA-m48v-jxmw-9w94/GHSA-m48v-jxmw-9w94.json +++ b/advisories/unreviewed/2022/05/GHSA-m48v-jxmw-9w94/GHSA-m48v-jxmw-9w94.json @@ -7,12 +7,8 @@ "CVE-2020-0940" ], "details": "An elevation of privilege vulnerability exists in the way the Windows Push Notification Service handles objects in memory, aka 'Windows Push Notification Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1001, CVE-2020-1006, CVE-2020-1017.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m4qv-8m69-cp4g/GHSA-m4qv-8m69-cp4g.json b/advisories/unreviewed/2022/05/GHSA-m4qv-8m69-cp4g/GHSA-m4qv-8m69-cp4g.json index cfe489e4b08..3c4d88fab66 100644 --- a/advisories/unreviewed/2022/05/GHSA-m4qv-8m69-cp4g/GHSA-m4qv-8m69-cp4g.json +++ b/advisories/unreviewed/2022/05/GHSA-m4qv-8m69-cp4g/GHSA-m4qv-8m69-cp4g.json @@ -7,12 +7,8 @@ "CVE-2017-18649" ], "details": "An issue was discovered on Samsung mobile devices with N(7.x) software. An attacker can boot a device with root privileges because the bootloader for the Qualcomm MSM8998 chipset lacks an integrity check of the system image, aka the \"SamFAIL\" issue. The Samsung ID is SVE-2017-10465 (November 2017).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m4v9-rc68-3qrf/GHSA-m4v9-rc68-3qrf.json b/advisories/unreviewed/2022/05/GHSA-m4v9-rc68-3qrf/GHSA-m4v9-rc68-3qrf.json index a9f1f58c9ee..285fc5d9dc9 100644 --- a/advisories/unreviewed/2022/05/GHSA-m4v9-rc68-3qrf/GHSA-m4v9-rc68-3qrf.json +++ b/advisories/unreviewed/2022/05/GHSA-m4v9-rc68-3qrf/GHSA-m4v9-rc68-3qrf.json @@ -7,12 +7,8 @@ "CVE-2020-0968" ], "details": "A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2020-0970.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m676-xv64-2prq/GHSA-m676-xv64-2prq.json b/advisories/unreviewed/2022/05/GHSA-m676-xv64-2prq/GHSA-m676-xv64-2prq.json index 0f45840ab06..01c41488b0b 100644 --- a/advisories/unreviewed/2022/05/GHSA-m676-xv64-2prq/GHSA-m676-xv64-2prq.json +++ b/advisories/unreviewed/2022/05/GHSA-m676-xv64-2prq/GHSA-m676-xv64-2prq.json @@ -7,12 +7,8 @@ "CVE-2019-20642" ], "details": "NETGEAR RAX40 devices before 1.0.3.64 are affected by authentication bypass.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m79w-3hmw-xxc7/GHSA-m79w-3hmw-xxc7.json b/advisories/unreviewed/2022/05/GHSA-m79w-3hmw-xxc7/GHSA-m79w-3hmw-xxc7.json index ded5d6c48a8..ed8156fac61 100644 --- a/advisories/unreviewed/2022/05/GHSA-m79w-3hmw-xxc7/GHSA-m79w-3hmw-xxc7.json +++ b/advisories/unreviewed/2022/05/GHSA-m79w-3hmw-xxc7/GHSA-m79w-3hmw-xxc7.json @@ -7,12 +7,8 @@ "CVE-2020-0927" ], "details": "A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft Office SharePoint XSS Vulnerability'. This CVE ID is unique from CVE-2020-0923, CVE-2020-0924, CVE-2020-0925, CVE-2020-0926, CVE-2020-0930, CVE-2020-0933, CVE-2020-0954, CVE-2020-0973, CVE-2020-0978.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m8rh-m6hr-qg6w/GHSA-m8rh-m6hr-qg6w.json b/advisories/unreviewed/2022/05/GHSA-m8rh-m6hr-qg6w/GHSA-m8rh-m6hr-qg6w.json index 6f66ca97f3d..cee376d43fe 100644 --- a/advisories/unreviewed/2022/05/GHSA-m8rh-m6hr-qg6w/GHSA-m8rh-m6hr-qg6w.json +++ b/advisories/unreviewed/2022/05/GHSA-m8rh-m6hr-qg6w/GHSA-m8rh-m6hr-qg6w.json @@ -7,12 +7,8 @@ "CVE-2020-11604" ], "details": "An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (incorporating TEEGRIS) software. There is an Out-of-bounds read in the MLDAP Trustlet. The Samsung ID is SVE-2019-16565 (April 2020).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m8rj-v5pg-g6vq/GHSA-m8rj-v5pg-g6vq.json b/advisories/unreviewed/2022/05/GHSA-m8rj-v5pg-g6vq/GHSA-m8rj-v5pg-g6vq.json index 795a8554ba9..b39afee078d 100644 --- a/advisories/unreviewed/2022/05/GHSA-m8rj-v5pg-g6vq/GHSA-m8rj-v5pg-g6vq.json +++ b/advisories/unreviewed/2022/05/GHSA-m8rj-v5pg-g6vq/GHSA-m8rj-v5pg-g6vq.json @@ -7,12 +7,8 @@ "CVE-2020-0900" ], "details": "An elevation of privilege vulnerability exists when the Visual Studio Extension Installer Service improperly handles file operations, aka 'Visual Studio Extension Installer Service Elevation of Privilege Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m8wv-5v63-5fqp/GHSA-m8wv-5v63-5fqp.json b/advisories/unreviewed/2022/05/GHSA-m8wv-5v63-5fqp/GHSA-m8wv-5v63-5fqp.json index 1358db67930..c4a30778d66 100644 --- a/advisories/unreviewed/2022/05/GHSA-m8wv-5v63-5fqp/GHSA-m8wv-5v63-5fqp.json +++ b/advisories/unreviewed/2022/05/GHSA-m8wv-5v63-5fqp/GHSA-m8wv-5v63-5fqp.json @@ -7,12 +7,8 @@ "CVE-2020-1617" ], "details": "This issue occurs on Juniper Networks Junos OS devices which do not support Advanced Forwarding Interface (AFI) / Advanced Forwarding Toolkit (AFT). Devices using AFI and AFT are not exploitable to this issue. An improper initialization of memory in the packet forwarding architecture in Juniper Networks Junos OS non-AFI/AFT platforms which may lead to a Denial of Service (DoS) vulnerability being exploited when a genuine packet is received and inspected by non-AFT/AFI sFlow and when the device is also configured with firewall policers. This first genuine packet received and inspected by sampled flow (sFlow) through a specific firewall policer will cause the device to reboot. After the reboot has completed, if the device receives and sFlow inspects another genuine packet seen through a specific firewall policer, the device will generate a core file and reboot. Continued inspection of these genuine packets will create an extended Denial of Service (DoS) condition. Depending on the method for service restoration, e.g. hard boot or soft reboot, a core file may or may not be generated the next time the packet is received and inspected by sFlow. This issue affects: Juniper Networks Junos OS 17.4 versions prior to 17.4R2-S9, 17.4R3 on PTX1000 and PTX10000 Series, QFX10000 Series; 18.1 versions prior to 18.1R3-S9 on PTX1000 and PTX10000 Series, QFX10000 Series; 18.2X75 versions prior to 18.2X75-D12, 18.2X75-D30 on PTX1000 and PTX10000 Series, QFX10000 Series; 18.2 versions prior to 18.2R3 on PTX1000 and PTX10000 Series, QFX10000 Series; 18.3 versions prior to 18.3R3 on PTX1000 and PTX10000 Series, QFX10000 Series. This issue is not applicable to Junos OS versions before 17.4R1. This issue is not applicable to Junos OS Evolved or Junos OS with Advanced Forwarding Toolkit (AFT) forwarding implementations which use a different implementation of sFlow. The following example information is unrelated to this issue and is provided solely to assist you with determining if you have AFT or not. Example: A Junos OS device which supports the use of EVPN signaled VPWS with Flexible Cross Connect uses the AFT implementation. Since this configuration requires support and use of the AFT implementation to support this configuration, the device is not vulnerable to this issue as the sFlow implementation is different using the AFT architecture. For further details about AFT visit the AFI / AFT are in the links below. If you are uncertain if you use the AFI/AFT implementation or not, there are configuration examples in the links below which you may use to determine if you are vulnerable to this issue or not. If the commands work, you are. If not, you are not. You may also use the Feature Explorer to determine if AFI/AFT is supported or not. If you are still uncertain, please contact your support resources.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m96v-r8cw-rvf7/GHSA-m96v-r8cw-rvf7.json b/advisories/unreviewed/2022/05/GHSA-m96v-r8cw-rvf7/GHSA-m96v-r8cw-rvf7.json index 35838079931..c33cfd2ce1f 100644 --- a/advisories/unreviewed/2022/05/GHSA-m96v-r8cw-rvf7/GHSA-m96v-r8cw-rvf7.json +++ b/advisories/unreviewed/2022/05/GHSA-m96v-r8cw-rvf7/GHSA-m96v-r8cw-rvf7.json @@ -7,12 +7,8 @@ "CVE-2016-11041" ], "details": "An issue was discovered on Samsung mobile devices with KK(4.4) software. Attackers can bypass the lockscreen by sending an AT command over USB. The Samsung ID is SVE-2015-5301 (June 2016).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mcx2-g59c-pqpj/GHSA-mcx2-g59c-pqpj.json b/advisories/unreviewed/2022/05/GHSA-mcx2-g59c-pqpj/GHSA-mcx2-g59c-pqpj.json index e19b18e4940..d72113e2dce 100644 --- a/advisories/unreviewed/2022/05/GHSA-mcx2-g59c-pqpj/GHSA-mcx2-g59c-pqpj.json +++ b/advisories/unreviewed/2022/05/GHSA-mcx2-g59c-pqpj/GHSA-mcx2-g59c-pqpj.json @@ -7,12 +7,8 @@ "CVE-2020-1011" ], "details": "An elevation of privilege vulnerability exists when the Windows System Assessment Tool improperly handles file operations, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0934, CVE-2020-0983, CVE-2020-1009, CVE-2020-1015.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mfv5-mqr7-9qvw/GHSA-mfv5-mqr7-9qvw.json b/advisories/unreviewed/2022/05/GHSA-mfv5-mqr7-9qvw/GHSA-mfv5-mqr7-9qvw.json index c883a5ac7a4..9ecaa77874c 100644 --- a/advisories/unreviewed/2022/05/GHSA-mfv5-mqr7-9qvw/GHSA-mfv5-mqr7-9qvw.json +++ b/advisories/unreviewed/2022/05/GHSA-mfv5-mqr7-9qvw/GHSA-mfv5-mqr7-9qvw.json @@ -7,12 +7,8 @@ "CVE-2020-11770" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D6220 before 1.0.0.52, D6400 before 1.0.0.86, D7000v2 before 1.0.0.53, D8500 before 1.0.3.44, R6220 before 1.1.0.80, R6250 before 1.0.4.34, R6260 before 1.1.0.64, R6400 before 1.0.1.46, R6400v2 before 1.0.2.66, R6700 before 1.0.2.6, R6700v2 before 1.2.0.36, R6700v3 before 1.0.2.66, R6800 before 1.2.0.36, R6900 before 1.0.2.4, R6900P before 1.3.1.64, R6900v2 before 1.2.0.36, R7000 before 1.0.9.42, R7000P before 1.3.1.64, R7100LG before 1.0.0.50, R7300DST before 1.0.0.70, R7800 before 1.0.2.60, R7900 before 1.0.3.8, R7900P before 1.4.1.30, R8000 before 1.0.4.28, R8000P before 1.4.1.30, R8300 before 1.0.2.128, R8500 before 1.0.2.128, R8900 before 1.0.4.12, R9000 before 1.0.4.12, and XR500 before 2.3.2.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mgcm-2gv2-9fp6/GHSA-mgcm-2gv2-9fp6.json b/advisories/unreviewed/2022/05/GHSA-mgcm-2gv2-9fp6/GHSA-mgcm-2gv2-9fp6.json index 163512bf360..567c2db12d5 100644 --- a/advisories/unreviewed/2022/05/GHSA-mgcm-2gv2-9fp6/GHSA-mgcm-2gv2-9fp6.json +++ b/advisories/unreviewed/2022/05/GHSA-mgcm-2gv2-9fp6/GHSA-mgcm-2gv2-9fp6.json @@ -7,12 +7,8 @@ "CVE-2020-0975" ], "details": "A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft SharePoint Spoofing Vulnerability'. This CVE ID is unique from CVE-2020-0972, CVE-2020-0976, CVE-2020-0977.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mh48-9v8j-7v8g/GHSA-mh48-9v8j-7v8g.json b/advisories/unreviewed/2022/05/GHSA-mh48-9v8j-7v8g/GHSA-mh48-9v8j-7v8g.json index d04b672dcf9..53c6c4512ef 100644 --- a/advisories/unreviewed/2022/05/GHSA-mh48-9v8j-7v8g/GHSA-mh48-9v8j-7v8g.json +++ b/advisories/unreviewed/2022/05/GHSA-mh48-9v8j-7v8g/GHSA-mh48-9v8j-7v8g.json @@ -7,12 +7,8 @@ "CVE-2020-11626" ], "details": "An issue was discovered in EJBCA before 6.15.2.6 and 7.x before 7.3.1.2. Two Cross Side Scripting (XSS) vulnerabilities have been found in the Public Web and the Certificate/CRL download servlets.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mhpq-2ph4-jm64/GHSA-mhpq-2ph4-jm64.json b/advisories/unreviewed/2022/05/GHSA-mhpq-2ph4-jm64/GHSA-mhpq-2ph4-jm64.json index 696121fc399..2f277f044f6 100644 --- a/advisories/unreviewed/2022/05/GHSA-mhpq-2ph4-jm64/GHSA-mhpq-2ph4-jm64.json +++ b/advisories/unreviewed/2022/05/GHSA-mhpq-2ph4-jm64/GHSA-mhpq-2ph4-jm64.json @@ -7,12 +7,8 @@ "CVE-2020-11467" ], "details": "An issue was discovered in Deskpro before 2019.8.0. This product enables administrators to modify the helpdesk interface by editing /portal/api/style/edit-theme-set/template-sources theme templates, and uses TWIG as its template engine. While direct access to self and _self variables was not permitted, one could abuse the accessible variables in one's context to reach a native unserialize function via the code parameter. There, on could pass a crafted payload to trigger a set of POP gadgets in order to achieve remote code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mjf2-78q5-7pq6/GHSA-mjf2-78q5-7pq6.json b/advisories/unreviewed/2022/05/GHSA-mjf2-78q5-7pq6/GHSA-mjf2-78q5-7pq6.json index b48f075166b..f6d1e716caa 100644 --- a/advisories/unreviewed/2022/05/GHSA-mjf2-78q5-7pq6/GHSA-mjf2-78q5-7pq6.json +++ b/advisories/unreviewed/2022/05/GHSA-mjf2-78q5-7pq6/GHSA-mjf2-78q5-7pq6.json @@ -7,12 +7,8 @@ "CVE-2020-11778" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.68, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0.0.78, XR500 before 2.3.2.56, and XR700 before 1.0.1.10.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mjrc-m65p-93hj/GHSA-mjrc-m65p-93hj.json b/advisories/unreviewed/2022/05/GHSA-mjrc-m65p-93hj/GHSA-mjrc-m65p-93hj.json index c80bb567eab..b0aa5d7a420 100644 --- a/advisories/unreviewed/2022/05/GHSA-mjrc-m65p-93hj/GHSA-mjrc-m65p-93hj.json +++ b/advisories/unreviewed/2022/05/GHSA-mjrc-m65p-93hj/GHSA-mjrc-m65p-93hj.json @@ -7,12 +7,8 @@ "CVE-2020-0995" ], "details": "A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0889, CVE-2020-0953, CVE-2020-0959, CVE-2020-0960, CVE-2020-0988, CVE-2020-0992, CVE-2020-0994, CVE-2020-0999, CVE-2020-1008.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mmfj-vg4h-326c/GHSA-mmfj-vg4h-326c.json b/advisories/unreviewed/2022/05/GHSA-mmfj-vg4h-326c/GHSA-mmfj-vg4h-326c.json index 267f783cafa..0b80236b593 100644 --- a/advisories/unreviewed/2022/05/GHSA-mmfj-vg4h-326c/GHSA-mmfj-vg4h-326c.json +++ b/advisories/unreviewed/2022/05/GHSA-mmfj-vg4h-326c/GHSA-mmfj-vg4h-326c.json @@ -7,12 +7,8 @@ "CVE-2018-21063" ], "details": "An issue was discovered on Samsung mobile devices with M(6.0), N(7.x), and O(8.x) (Exynos chipsets) software. Keymaster has an architectural problem because tlApi in TEE is not properly protected. The Samsung ID is SVE-2018-11792 (August 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mmhw-p74f-f3j3/GHSA-mmhw-p74f-f3j3.json b/advisories/unreviewed/2022/05/GHSA-mmhw-p74f-f3j3/GHSA-mmhw-p74f-f3j3.json index c0c91c5b57d..ab205d39818 100644 --- a/advisories/unreviewed/2022/05/GHSA-mmhw-p74f-f3j3/GHSA-mmhw-p74f-f3j3.json +++ b/advisories/unreviewed/2022/05/GHSA-mmhw-p74f-f3j3/GHSA-mmhw-p74f-f3j3.json @@ -7,12 +7,8 @@ "CVE-2019-4603" ], "details": "IBM Quality Manager (RQM) 6.02, 6.06, and 6.0.6.1 could allow an authenticated user to create keywords through the REST API and have them appear as if they were created by another user. IBM X-Force ID: 168295.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mp64-w8p7-h66m/GHSA-mp64-w8p7-h66m.json b/advisories/unreviewed/2022/05/GHSA-mp64-w8p7-h66m/GHSA-mp64-w8p7-h66m.json index 942bfd0b5ee..4b909e122df 100644 --- a/advisories/unreviewed/2022/05/GHSA-mp64-w8p7-h66m/GHSA-mp64-w8p7-h66m.json +++ b/advisories/unreviewed/2022/05/GHSA-mp64-w8p7-h66m/GHSA-mp64-w8p7-h66m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mp6c-f77j-f7rm/GHSA-mp6c-f77j-f7rm.json b/advisories/unreviewed/2022/05/GHSA-mp6c-f77j-f7rm/GHSA-mp6c-f77j-f7rm.json index 3f37216b48a..53b8b8a38b1 100644 --- a/advisories/unreviewed/2022/05/GHSA-mp6c-f77j-f7rm/GHSA-mp6c-f77j-f7rm.json +++ b/advisories/unreviewed/2022/05/GHSA-mp6c-f77j-f7rm/GHSA-mp6c-f77j-f7rm.json @@ -7,12 +7,8 @@ "CVE-2019-4654" ], "details": "IBM QRadar 7.3.0 to 7.3.3 Patch 2 does not validate, or incorrectly validates, a certificate which could allow an attacker to spoof a trusted entity by using a man-in-the-middle (MITM) attack. IBM X-ForceID: 170965.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mpgp-pjvr-xfcq/GHSA-mpgp-pjvr-xfcq.json b/advisories/unreviewed/2022/05/GHSA-mpgp-pjvr-xfcq/GHSA-mpgp-pjvr-xfcq.json index 678875deb6b..8a86a9da4a0 100644 --- a/advisories/unreviewed/2022/05/GHSA-mpgp-pjvr-xfcq/GHSA-mpgp-pjvr-xfcq.json +++ b/advisories/unreviewed/2022/05/GHSA-mpgp-pjvr-xfcq/GHSA-mpgp-pjvr-xfcq.json @@ -7,12 +7,8 @@ "CVE-2020-0960" ], "details": "A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0889, CVE-2020-0953, CVE-2020-0959, CVE-2020-0988, CVE-2020-0992, CVE-2020-0994, CVE-2020-0995, CVE-2020-0999, CVE-2020-1008.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mqf4-7v67-32hm/GHSA-mqf4-7v67-32hm.json b/advisories/unreviewed/2022/05/GHSA-mqf4-7v67-32hm/GHSA-mqf4-7v67-32hm.json index 2286b583973..70f910236cc 100644 --- a/advisories/unreviewed/2022/05/GHSA-mqf4-7v67-32hm/GHSA-mqf4-7v67-32hm.json +++ b/advisories/unreviewed/2022/05/GHSA-mqf4-7v67-32hm/GHSA-mqf4-7v67-32hm.json @@ -7,12 +7,8 @@ "CVE-2020-2791" ], "details": "Vulnerability in the Oracle Knowledge product of Oracle Knowledge (component: Information Manager Console). Supported versions that are affected are 8.6.0-8.6.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Knowledge. Successful attacks of this vulnerability can result in takeover of Oracle Knowledge. CVSS 3.0 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mr39-vf45-2r7q/GHSA-mr39-vf45-2r7q.json b/advisories/unreviewed/2022/05/GHSA-mr39-vf45-2r7q/GHSA-mr39-vf45-2r7q.json index 43bb7e65324..2ce3ff88cd1 100644 --- a/advisories/unreviewed/2022/05/GHSA-mr39-vf45-2r7q/GHSA-mr39-vf45-2r7q.json +++ b/advisories/unreviewed/2022/05/GHSA-mr39-vf45-2r7q/GHSA-mr39-vf45-2r7q.json @@ -7,12 +7,8 @@ "CVE-2020-11509" ], "details": "An XSS vulnerability in the WP Lead Plus X plugin through 0.98 for WordPress allows remote attackers to upload page templates containing arbitrary JavaScript via the c37_wpl_import_template admin-post action (which will execute in an administrator's browser if the template is used to create a page).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mr8p-qxmj-qph5/GHSA-mr8p-qxmj-qph5.json b/advisories/unreviewed/2022/05/GHSA-mr8p-qxmj-qph5/GHSA-mr8p-qxmj-qph5.json index 2ba9d3e6748..a59706411c3 100644 --- a/advisories/unreviewed/2022/05/GHSA-mr8p-qxmj-qph5/GHSA-mr8p-qxmj-qph5.json +++ b/advisories/unreviewed/2022/05/GHSA-mr8p-qxmj-qph5/GHSA-mr8p-qxmj-qph5.json @@ -7,12 +7,8 @@ "CVE-2019-20654" ], "details": "Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects WAC505 before 8.0.6.4 and WAC510 before 8.0.6.4.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mr9w-7prr-4j7v/GHSA-mr9w-7prr-4j7v.json b/advisories/unreviewed/2022/05/GHSA-mr9w-7prr-4j7v/GHSA-mr9w-7prr-4j7v.json index 24d049de707..b26419892c5 100644 --- a/advisories/unreviewed/2022/05/GHSA-mr9w-7prr-4j7v/GHSA-mr9w-7prr-4j7v.json +++ b/advisories/unreviewed/2022/05/GHSA-mr9w-7prr-4j7v/GHSA-mr9w-7prr-4j7v.json @@ -7,12 +7,8 @@ "CVE-2020-11785" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.68, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0.0.78, RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, RBK50 before 2.3.5.30, XR500 before 2.3.2.56, and XR700 before 1.0.1.10.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mrf4-89gh-pm62/GHSA-mrf4-89gh-pm62.json b/advisories/unreviewed/2022/05/GHSA-mrf4-89gh-pm62/GHSA-mrf4-89gh-pm62.json index 42dfe03fd63..ff11aa499e5 100644 --- a/advisories/unreviewed/2022/05/GHSA-mrf4-89gh-pm62/GHSA-mrf4-89gh-pm62.json +++ b/advisories/unreviewed/2022/05/GHSA-mrf4-89gh-pm62/GHSA-mrf4-89gh-pm62.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mrrq-pc5g-fmm4/GHSA-mrrq-pc5g-fmm4.json b/advisories/unreviewed/2022/05/GHSA-mrrq-pc5g-fmm4/GHSA-mrrq-pc5g-fmm4.json index 6f88c5f8080..81259c62683 100644 --- a/advisories/unreviewed/2022/05/GHSA-mrrq-pc5g-fmm4/GHSA-mrrq-pc5g-fmm4.json +++ b/advisories/unreviewed/2022/05/GHSA-mrrq-pc5g-fmm4/GHSA-mrrq-pc5g-fmm4.json @@ -7,12 +7,8 @@ "CVE-2020-1614" ], "details": "A Use of Hard-coded Credentials vulnerability exists in the NFX250 Series for the vSRX Virtual Network Function (VNF) instance, which allows an attacker to take control of the vSRX VNF instance if they have the ability to access an administrative service (e.g. SSH) on the VNF, either locally, or through the network. This issue only affects the NFX250 Series vSRX VNF. No other products or platforms are affected. This issue is only applicable to environments where the vSRX VNF root password has not been configured. This issue affects the Juniper Networks NFX250 Network Services Platform vSRX VNF instance on versions prior to 19.2R1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mv98-m73h-jg72/GHSA-mv98-m73h-jg72.json b/advisories/unreviewed/2022/05/GHSA-mv98-m73h-jg72/GHSA-mv98-m73h-jg72.json index 1a05f2e07d5..7a197682a89 100644 --- a/advisories/unreviewed/2022/05/GHSA-mv98-m73h-jg72/GHSA-mv98-m73h-jg72.json +++ b/advisories/unreviewed/2022/05/GHSA-mv98-m73h-jg72/GHSA-mv98-m73h-jg72.json @@ -7,12 +7,8 @@ "CVE-2020-0558" ], "details": "Improper buffer restrictions in kernel mode driver for Intel(R) PROSet/Wireless WiFi products before version 21.70 on Windows 10 may allow an unprivileged user to potentially enable denial of service via adjacent access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mwjc-w94h-gmqf/GHSA-mwjc-w94h-gmqf.json b/advisories/unreviewed/2022/05/GHSA-mwjc-w94h-gmqf/GHSA-mwjc-w94h-gmqf.json index c34ced2286c..408f33abe42 100644 --- a/advisories/unreviewed/2022/05/GHSA-mwjc-w94h-gmqf/GHSA-mwjc-w94h-gmqf.json +++ b/advisories/unreviewed/2022/05/GHSA-mwjc-w94h-gmqf/GHSA-mwjc-w94h-gmqf.json @@ -7,12 +7,8 @@ "CVE-2020-11606" ], "details": "An issue was discovered on Samsung mobile devices with Q(10.0) software. Information about application preview (in the Secure Folder) leaks on a locked device. The Samsung ID is SVE-2019-16463 (April 2020).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mwx3-xqm6-8cwq/GHSA-mwx3-xqm6-8cwq.json b/advisories/unreviewed/2022/05/GHSA-mwx3-xqm6-8cwq/GHSA-mwx3-xqm6-8cwq.json index 6a263815966..03f2ad7ea50 100644 --- a/advisories/unreviewed/2022/05/GHSA-mwx3-xqm6-8cwq/GHSA-mwx3-xqm6-8cwq.json +++ b/advisories/unreviewed/2022/05/GHSA-mwx3-xqm6-8cwq/GHSA-mwx3-xqm6-8cwq.json @@ -7,12 +7,8 @@ "CVE-2017-18688" ], "details": "An issue was discovered on Samsung mobile devices with L(5.1), M(6.0), and N(7.0) software. There is an information disclosure (of memory locations outside a buffer) via /dev/dsm_ctrl_dev. The Samsung ID is SVE-2016-7340 (January 2017).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mx56-jjm2-v9rc/GHSA-mx56-jjm2-v9rc.json b/advisories/unreviewed/2022/05/GHSA-mx56-jjm2-v9rc/GHSA-mx56-jjm2-v9rc.json index 835a962c8fc..781b2666ea5 100644 --- a/advisories/unreviewed/2022/05/GHSA-mx56-jjm2-v9rc/GHSA-mx56-jjm2-v9rc.json +++ b/advisories/unreviewed/2022/05/GHSA-mx56-jjm2-v9rc/GHSA-mx56-jjm2-v9rc.json @@ -7,12 +7,8 @@ "CVE-2019-20652" ], "details": "NETGEAR WAC505 devices before 8.2.1.16 are affected by disclosure of sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mxw9-f7fp-9ccr/GHSA-mxw9-f7fp-9ccr.json b/advisories/unreviewed/2022/05/GHSA-mxw9-f7fp-9ccr/GHSA-mxw9-f7fp-9ccr.json index 3256c21c4af..524f75429c3 100644 --- a/advisories/unreviewed/2022/05/GHSA-mxw9-f7fp-9ccr/GHSA-mxw9-f7fp-9ccr.json +++ b/advisories/unreviewed/2022/05/GHSA-mxw9-f7fp-9ccr/GHSA-mxw9-f7fp-9ccr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p2fc-cqh2-7jc2/GHSA-p2fc-cqh2-7jc2.json b/advisories/unreviewed/2022/05/GHSA-p2fc-cqh2-7jc2/GHSA-p2fc-cqh2-7jc2.json index b6124a1f2ed..829ddb4717a 100644 --- a/advisories/unreviewed/2022/05/GHSA-p2fc-cqh2-7jc2/GHSA-p2fc-cqh2-7jc2.json +++ b/advisories/unreviewed/2022/05/GHSA-p2fc-cqh2-7jc2/GHSA-p2fc-cqh2-7jc2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p36f-r5vj-9m69/GHSA-p36f-r5vj-9m69.json b/advisories/unreviewed/2022/05/GHSA-p36f-r5vj-9m69/GHSA-p36f-r5vj-9m69.json index 98711d40275..2e98024e4ed 100644 --- a/advisories/unreviewed/2022/05/GHSA-p36f-r5vj-9m69/GHSA-p36f-r5vj-9m69.json +++ b/advisories/unreviewed/2022/05/GHSA-p36f-r5vj-9m69/GHSA-p36f-r5vj-9m69.json @@ -7,12 +7,8 @@ "CVE-2020-11554" ], "details": "An issue was discovered in Castle Rock SNMPc Online 12.10.10 before 2020-01-28. It allows remote attackers to obtain sensitive information via info.php4.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p4vm-jv89-q82f/GHSA-p4vm-jv89-q82f.json b/advisories/unreviewed/2022/05/GHSA-p4vm-jv89-q82f/GHSA-p4vm-jv89-q82f.json index 4ebc29e4521..2952dd5e0ae 100644 --- a/advisories/unreviewed/2022/05/GHSA-p4vm-jv89-q82f/GHSA-p4vm-jv89-q82f.json +++ b/advisories/unreviewed/2022/05/GHSA-p4vm-jv89-q82f/GHSA-p4vm-jv89-q82f.json @@ -7,12 +7,8 @@ "CVE-2020-0931" ], "details": "A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package, aka 'Microsoft SharePoint Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0920, CVE-2020-0929, CVE-2020-0932, CVE-2020-0971, CVE-2020-0974.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p54j-3f84-hx6h/GHSA-p54j-3f84-hx6h.json b/advisories/unreviewed/2022/05/GHSA-p54j-3f84-hx6h/GHSA-p54j-3f84-hx6h.json index e11fa09d2a8..a1b1f950dad 100644 --- a/advisories/unreviewed/2022/05/GHSA-p54j-3f84-hx6h/GHSA-p54j-3f84-hx6h.json +++ b/advisories/unreviewed/2022/05/GHSA-p54j-3f84-hx6h/GHSA-p54j-3f84-hx6h.json @@ -7,12 +7,8 @@ "CVE-2020-0955" ], "details": "An information disclosure vulnerability exists when certain central processing units (CPU) speculatively access memory, aka 'Windows Kernel Information Disclosure in CPU Memory Access'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p554-6j9w-jcpj/GHSA-p554-6j9w-jcpj.json b/advisories/unreviewed/2022/05/GHSA-p554-6j9w-jcpj/GHSA-p554-6j9w-jcpj.json index 4e51a0b1368..cf7ef945c9e 100644 --- a/advisories/unreviewed/2022/05/GHSA-p554-6j9w-jcpj/GHSA-p554-6j9w-jcpj.json +++ b/advisories/unreviewed/2022/05/GHSA-p554-6j9w-jcpj/GHSA-p554-6j9w-jcpj.json @@ -7,12 +7,8 @@ "CVE-2016-11027" ], "details": "An issue was discovered on Samsung mobile devices with M(6.0) software. In the Shade Locked state, a physically proximate attacker can read notifications on the lock screen. The Samsung ID is SVE-2016-7132 (December 2016).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p65m-m7cr-v94m/GHSA-p65m-m7cr-v94m.json b/advisories/unreviewed/2022/05/GHSA-p65m-m7cr-v94m/GHSA-p65m-m7cr-v94m.json index af5207221a8..8d93147b05e 100644 --- a/advisories/unreviewed/2022/05/GHSA-p65m-m7cr-v94m/GHSA-p65m-m7cr-v94m.json +++ b/advisories/unreviewed/2022/05/GHSA-p65m-m7cr-v94m/GHSA-p65m-m7cr-v94m.json @@ -7,12 +7,8 @@ "CVE-2019-20655" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects XR500 before 2.3.2.56 and XR700 before 1.0.1.20.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p65q-8886-xcm7/GHSA-p65q-8886-xcm7.json b/advisories/unreviewed/2022/05/GHSA-p65q-8886-xcm7/GHSA-p65q-8886-xcm7.json index 88255cfe705..4679211dd10 100644 --- a/advisories/unreviewed/2022/05/GHSA-p65q-8886-xcm7/GHSA-p65q-8886-xcm7.json +++ b/advisories/unreviewed/2022/05/GHSA-p65q-8886-xcm7/GHSA-p65q-8886-xcm7.json @@ -7,12 +7,8 @@ "CVE-2017-18693" ], "details": "An issue was discovered on Samsung mobile devices with KK(4.4), L(5.0/5.1), M(6.0), and N(7.0) software. There is a buffer overflow in the fps sysfs entry. The Samsung ID is SVE-2016-7510 (January 2017).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p79r-4qvf-gvc6/GHSA-p79r-4qvf-gvc6.json b/advisories/unreviewed/2022/05/GHSA-p79r-4qvf-gvc6/GHSA-p79r-4qvf-gvc6.json index 696c400a47e..e2687b957ec 100644 --- a/advisories/unreviewed/2022/05/GHSA-p79r-4qvf-gvc6/GHSA-p79r-4qvf-gvc6.json +++ b/advisories/unreviewed/2022/05/GHSA-p79r-4qvf-gvc6/GHSA-p79r-4qvf-gvc6.json @@ -7,12 +7,8 @@ "CVE-2018-21045" ], "details": "An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. There is Clipboard access in the lockscreen state via a copy-and-paste action. The Samsung ID is SVE-2018-13381 (December 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p7p9-8rxw-r4qr/GHSA-p7p9-8rxw-r4qr.json b/advisories/unreviewed/2022/05/GHSA-p7p9-8rxw-r4qr/GHSA-p7p9-8rxw-r4qr.json index fd51c6b93b4..474c084be91 100644 --- a/advisories/unreviewed/2022/05/GHSA-p7p9-8rxw-r4qr/GHSA-p7p9-8rxw-r4qr.json +++ b/advisories/unreviewed/2022/05/GHSA-p7p9-8rxw-r4qr/GHSA-p7p9-8rxw-r4qr.json @@ -7,12 +7,8 @@ "CVE-2020-0965" ], "details": "A remoted code execution vulnerability exists in the way that Microsoft Windows Codecs Library handles objects in memory, aka 'Microsoft Windows Codecs Library Remote Code Execution Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p853-fprg-5r46/GHSA-p853-fprg-5r46.json b/advisories/unreviewed/2022/05/GHSA-p853-fprg-5r46/GHSA-p853-fprg-5r46.json index bc299da0d79..b446fafdf88 100644 --- a/advisories/unreviewed/2022/05/GHSA-p853-fprg-5r46/GHSA-p853-fprg-5r46.json +++ b/advisories/unreviewed/2022/05/GHSA-p853-fprg-5r46/GHSA-p853-fprg-5r46.json @@ -7,12 +7,8 @@ "CVE-2018-21086" ], "details": "An issue was discovered on Samsung mobile devices with L(5.x), M(6.0), and N(7.x) software. There is a race condition with a resultant double free in vnswap_init_backing_storage. The Samsung ID is SVE-2017-11177 (February 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p9g7-pmr8-cm48/GHSA-p9g7-pmr8-cm48.json b/advisories/unreviewed/2022/05/GHSA-p9g7-pmr8-cm48/GHSA-p9g7-pmr8-cm48.json index 70684f86386..933b32d5ce5 100644 --- a/advisories/unreviewed/2022/05/GHSA-p9g7-pmr8-cm48/GHSA-p9g7-pmr8-cm48.json +++ b/advisories/unreviewed/2022/05/GHSA-p9g7-pmr8-cm48/GHSA-p9g7-pmr8-cm48.json @@ -7,12 +7,8 @@ "CVE-2020-1009" ], "details": "An elevation of privilege vulnerability exists in the way that the Microsoft Store Install Service handles file operations in protected locations, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0934, CVE-2020-0983, CVE-2020-1011, CVE-2020-1015.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p9pq-9vfw-wcq6/GHSA-p9pq-9vfw-wcq6.json b/advisories/unreviewed/2022/05/GHSA-p9pq-9vfw-wcq6/GHSA-p9pq-9vfw-wcq6.json index 10eb87d3ecf..e1a8d5c3ba8 100644 --- a/advisories/unreviewed/2022/05/GHSA-p9pq-9vfw-wcq6/GHSA-p9pq-9vfw-wcq6.json +++ b/advisories/unreviewed/2022/05/GHSA-p9pq-9vfw-wcq6/GHSA-p9pq-9vfw-wcq6.json @@ -7,12 +7,8 @@ "CVE-2020-6229" ], "details": "SAP NetWeaver AS ABAP (Business Server Pages application CRM_BSP_FRAME), versions 700, 701, 702, 710, 711, 730, 731, 740, 750, 751, 752, 75A, 75B, 75C, 75D, 75E, does not sufficiently encode user controlled inputs, resulting in reflected Cross-Site Scripting (XSS) vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p9xv-p5jw-r5vf/GHSA-p9xv-p5jw-r5vf.json b/advisories/unreviewed/2022/05/GHSA-p9xv-p5jw-r5vf/GHSA-p9xv-p5jw-r5vf.json index f44bce9c338..1bbe18fab38 100644 --- a/advisories/unreviewed/2022/05/GHSA-p9xv-p5jw-r5vf/GHSA-p9xv-p5jw-r5vf.json +++ b/advisories/unreviewed/2022/05/GHSA-p9xv-p5jw-r5vf/GHSA-p9xv-p5jw-r5vf.json @@ -7,12 +7,8 @@ "CVE-2020-2753" ], "details": "Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Workflow Notification Mailer). Supported versions that are affected are 12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Workflow. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Workflow accessible data. CVSS 3.0 Base Score 5.3 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pf7c-3g7g-p2xg/GHSA-pf7c-3g7g-p2xg.json b/advisories/unreviewed/2022/05/GHSA-pf7c-3g7g-p2xg/GHSA-pf7c-3g7g-p2xg.json index 02253e45fe3..ab715f08e4f 100644 --- a/advisories/unreviewed/2022/05/GHSA-pf7c-3g7g-p2xg/GHSA-pf7c-3g7g-p2xg.json +++ b/advisories/unreviewed/2022/05/GHSA-pf7c-3g7g-p2xg/GHSA-pf7c-3g7g-p2xg.json @@ -7,12 +7,8 @@ "CVE-2018-21073" ], "details": "An issue was discovered on Samsung mobile devices with N(7.x) and O(8.0) (Galaxy S9+, Galaxy S9, Galaxy S8+, Galaxy S8, Note 8). There is access to Clipboard content in the locked state via the Edge panel. The Samsung ID is SVE-2017-10748 (May 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pf7h-5xvj-7p3m/GHSA-pf7h-5xvj-7p3m.json b/advisories/unreviewed/2022/05/GHSA-pf7h-5xvj-7p3m/GHSA-pf7h-5xvj-7p3m.json index 865f26c787f..7c2ad259176 100644 --- a/advisories/unreviewed/2022/05/GHSA-pf7h-5xvj-7p3m/GHSA-pf7h-5xvj-7p3m.json +++ b/advisories/unreviewed/2022/05/GHSA-pf7h-5xvj-7p3m/GHSA-pf7h-5xvj-7p3m.json @@ -7,12 +7,8 @@ "CVE-2020-2737" ], "details": "Vulnerability in the Core RDBMS component of Oracle Database Server. Supported versions that are affected are 11.2.0.4, 12.1.0.2, 12.2.0.1, 18c and 19c. Difficult to exploit vulnerability allows high privileged attacker having Create Session, Execute Catalog Role privilege with network access via Oracle Net to compromise Core RDBMS. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in takeover of Core RDBMS. CVSS 3.0 Base Score 6.4 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:H/UI:R/S:U/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pg72-cm62-849q/GHSA-pg72-cm62-849q.json b/advisories/unreviewed/2022/05/GHSA-pg72-cm62-849q/GHSA-pg72-cm62-849q.json index 81f91eb25f0..d69294fd874 100644 --- a/advisories/unreviewed/2022/05/GHSA-pg72-cm62-849q/GHSA-pg72-cm62-849q.json +++ b/advisories/unreviewed/2022/05/GHSA-pg72-cm62-849q/GHSA-pg72-cm62-849q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pgfq-x4jp-89qx/GHSA-pgfq-x4jp-89qx.json b/advisories/unreviewed/2022/05/GHSA-pgfq-x4jp-89qx/GHSA-pgfq-x4jp-89qx.json index 97b870648c0..d3533550446 100644 --- a/advisories/unreviewed/2022/05/GHSA-pgfq-x4jp-89qx/GHSA-pgfq-x4jp-89qx.json +++ b/advisories/unreviewed/2022/05/GHSA-pgfq-x4jp-89qx/GHSA-pgfq-x4jp-89qx.json @@ -7,12 +7,8 @@ "CVE-2018-21066" ], "details": "An issue was discovered on Samsung mobile devices with M(6.0) (Exynos or MediaTek chipsets) software. There is a buffer overflow in a Trustlet that can cause memory corruption. The Samsung ID is SVE-2018-11599 (July 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pjf7-628v-6r7r/GHSA-pjf7-628v-6r7r.json b/advisories/unreviewed/2022/05/GHSA-pjf7-628v-6r7r/GHSA-pjf7-628v-6r7r.json index 9c1308ec99e..dd1bb383c3c 100644 --- a/advisories/unreviewed/2022/05/GHSA-pjf7-628v-6r7r/GHSA-pjf7-628v-6r7r.json +++ b/advisories/unreviewed/2022/05/GHSA-pjf7-628v-6r7r/GHSA-pjf7-628v-6r7r.json @@ -7,12 +7,8 @@ "CVE-2018-21081" ], "details": "An issue was discovered on Samsung mobile devices with N(7.x) software. In Dual Messenger, the second app can use the runtime permissions of the first app without a user's consent. The Samsung ID is SVE-2017-11018 (March 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pp7c-m8cf-8vm2/GHSA-pp7c-m8cf-8vm2.json b/advisories/unreviewed/2022/05/GHSA-pp7c-m8cf-8vm2/GHSA-pp7c-m8cf-8vm2.json index 1c4e0992b50..4ce42ee868a 100644 --- a/advisories/unreviewed/2022/05/GHSA-pp7c-m8cf-8vm2/GHSA-pp7c-m8cf-8vm2.json +++ b/advisories/unreviewed/2022/05/GHSA-pp7c-m8cf-8vm2/GHSA-pp7c-m8cf-8vm2.json @@ -7,12 +7,8 @@ "CVE-2020-0974" ], "details": "A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package, aka 'Microsoft SharePoint Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0920, CVE-2020-0929, CVE-2020-0931, CVE-2020-0932, CVE-2020-0971.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pq33-cxrq-7673/GHSA-pq33-cxrq-7673.json b/advisories/unreviewed/2022/05/GHSA-pq33-cxrq-7673/GHSA-pq33-cxrq-7673.json index a29a0738eab..dca66ccc808 100644 --- a/advisories/unreviewed/2022/05/GHSA-pq33-cxrq-7673/GHSA-pq33-cxrq-7673.json +++ b/advisories/unreviewed/2022/05/GHSA-pq33-cxrq-7673/GHSA-pq33-cxrq-7673.json @@ -7,12 +7,8 @@ "CVE-2020-10637" ], "details": "Eaton HMiSoft VU3 (HMIVU3 runtime not impacted), Version 3.00.23 and prior, however, the HMIVU runtimes are not impacted by these issues. A specially crafted input file could trigger an out-of-bounds read when loaded by the affected product.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pq4g-5rw4-63px/GHSA-pq4g-5rw4-63px.json b/advisories/unreviewed/2022/05/GHSA-pq4g-5rw4-63px/GHSA-pq4g-5rw4-63px.json index d66737e55f1..616b094105c 100644 --- a/advisories/unreviewed/2022/05/GHSA-pq4g-5rw4-63px/GHSA-pq4g-5rw4-63px.json +++ b/advisories/unreviewed/2022/05/GHSA-pq4g-5rw4-63px/GHSA-pq4g-5rw4-63px.json @@ -7,12 +7,8 @@ "CVE-2020-11784" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.68, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0.0.78, RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, RBK50 before 2.3.5.30, XR500 before 2.3.2.56, and XR700 before 1.0.1.10.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pq4w-86p2-463w/GHSA-pq4w-86p2-463w.json b/advisories/unreviewed/2022/05/GHSA-pq4w-86p2-463w/GHSA-pq4w-86p2-463w.json index a8b4b250bac..61357c193bd 100644 --- a/advisories/unreviewed/2022/05/GHSA-pq4w-86p2-463w/GHSA-pq4w-86p2-463w.json +++ b/advisories/unreviewed/2022/05/GHSA-pq4w-86p2-463w/GHSA-pq4w-86p2-463w.json @@ -7,12 +7,8 @@ "CVE-2016-11031" ], "details": "An issue was discovered on Samsung mobile devices with KK(4.4), L(5.0/5.1), and M(6.0) software. AntService allows a system_server crash and reboot. The Samsung ID is SVE-2016-7044 (November 2016).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pqrp-hrrg-q69p/GHSA-pqrp-hrrg-q69p.json b/advisories/unreviewed/2022/05/GHSA-pqrp-hrrg-q69p/GHSA-pqrp-hrrg-q69p.json index 381a0f00697..6175287af6e 100644 --- a/advisories/unreviewed/2022/05/GHSA-pqrp-hrrg-q69p/GHSA-pqrp-hrrg-q69p.json +++ b/advisories/unreviewed/2022/05/GHSA-pqrp-hrrg-q69p/GHSA-pqrp-hrrg-q69p.json @@ -7,12 +7,8 @@ "CVE-2020-2732" ], "details": "A flaw was discovered in the way that the KVM hypervisor handled instruction emulation for an L2 guest when nested virtualisation is enabled. Under some circumstances, an L2 guest may trick the L0 guest into accessing sensitive L1 resources that should be inaccessible to the L2 guest.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -76,9 +72,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pv8q-cfhq-wwgx/GHSA-pv8q-cfhq-wwgx.json b/advisories/unreviewed/2022/05/GHSA-pv8q-cfhq-wwgx/GHSA-pv8q-cfhq-wwgx.json index e1e163eee0f..456624a9252 100644 --- a/advisories/unreviewed/2022/05/GHSA-pv8q-cfhq-wwgx/GHSA-pv8q-cfhq-wwgx.json +++ b/advisories/unreviewed/2022/05/GHSA-pv8q-cfhq-wwgx/GHSA-pv8q-cfhq-wwgx.json @@ -7,12 +7,8 @@ "CVE-2019-20651" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects WAC505 before 8.2.1.16 and WAC510 before 8.2.1.16.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pvmm-475g-fx2h/GHSA-pvmm-475g-fx2h.json b/advisories/unreviewed/2022/05/GHSA-pvmm-475g-fx2h/GHSA-pvmm-475g-fx2h.json index 3c8b8410b4c..edcb2079cb0 100644 --- a/advisories/unreviewed/2022/05/GHSA-pvmm-475g-fx2h/GHSA-pvmm-475g-fx2h.json +++ b/advisories/unreviewed/2022/05/GHSA-pvmm-475g-fx2h/GHSA-pvmm-475g-fx2h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pwx3-f4rv-4v5r/GHSA-pwx3-f4rv-4v5r.json b/advisories/unreviewed/2022/05/GHSA-pwx3-f4rv-4v5r/GHSA-pwx3-f4rv-4v5r.json index 363cdd63418..ff17954b5f1 100644 --- a/advisories/unreviewed/2022/05/GHSA-pwx3-f4rv-4v5r/GHSA-pwx3-f4rv-4v5r.json +++ b/advisories/unreviewed/2022/05/GHSA-pwx3-f4rv-4v5r/GHSA-pwx3-f4rv-4v5r.json @@ -7,12 +7,8 @@ "CVE-2020-11537" ], "details": "A SQL Injection issue was discovered in ONLYOFFICE Document Server 5.5.0. An attacker can execute arbitrary SQL queries via injection to DocID parameter of Websocket API.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pwxr-5vrp-26jw/GHSA-pwxr-5vrp-26jw.json b/advisories/unreviewed/2022/05/GHSA-pwxr-5vrp-26jw/GHSA-pwxr-5vrp-26jw.json index fd5f0c71344..6fc9494949f 100644 --- a/advisories/unreviewed/2022/05/GHSA-pwxr-5vrp-26jw/GHSA-pwxr-5vrp-26jw.json +++ b/advisories/unreviewed/2022/05/GHSA-pwxr-5vrp-26jw/GHSA-pwxr-5vrp-26jw.json @@ -7,12 +7,8 @@ "CVE-2019-4602" ], "details": "IBM Quality Manager (RQM) 6.02, 6.06, and 6.0.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 168293.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pxp8-9p69-gccc/GHSA-pxp8-9p69-gccc.json b/advisories/unreviewed/2022/05/GHSA-pxp8-9p69-gccc/GHSA-pxp8-9p69-gccc.json index 1d66733cc08..740ee6c22d0 100644 --- a/advisories/unreviewed/2022/05/GHSA-pxp8-9p69-gccc/GHSA-pxp8-9p69-gccc.json +++ b/advisories/unreviewed/2022/05/GHSA-pxp8-9p69-gccc/GHSA-pxp8-9p69-gccc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pxrf-6xc9-mc6j/GHSA-pxrf-6xc9-mc6j.json b/advisories/unreviewed/2022/05/GHSA-pxrf-6xc9-mc6j/GHSA-pxrf-6xc9-mc6j.json index 1f66cd90ea1..6f49b048396 100644 --- a/advisories/unreviewed/2022/05/GHSA-pxrf-6xc9-mc6j/GHSA-pxrf-6xc9-mc6j.json +++ b/advisories/unreviewed/2022/05/GHSA-pxrf-6xc9-mc6j/GHSA-pxrf-6xc9-mc6j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q23g-v29w-45vm/GHSA-q23g-v29w-45vm.json b/advisories/unreviewed/2022/05/GHSA-q23g-v29w-45vm/GHSA-q23g-v29w-45vm.json index 15097e10043..9830b95eddd 100644 --- a/advisories/unreviewed/2022/05/GHSA-q23g-v29w-45vm/GHSA-q23g-v29w-45vm.json +++ b/advisories/unreviewed/2022/05/GHSA-q23g-v29w-45vm/GHSA-q23g-v29w-45vm.json @@ -7,12 +7,8 @@ "CVE-2020-4151" ], "details": "IBM QRadar SIEM 7.3.0 through 7.3.3 could allow an authenticated attacker to perform unauthorized actions due to improper input validation. IBM X-Force ID: 174201.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q23v-6m98-94w9/GHSA-q23v-6m98-94w9.json b/advisories/unreviewed/2022/05/GHSA-q23v-6m98-94w9/GHSA-q23v-6m98-94w9.json index 5df59a924c6..b0a488d628e 100644 --- a/advisories/unreviewed/2022/05/GHSA-q23v-6m98-94w9/GHSA-q23v-6m98-94w9.json +++ b/advisories/unreviewed/2022/05/GHSA-q23v-6m98-94w9/GHSA-q23v-6m98-94w9.json @@ -7,12 +7,8 @@ "CVE-2020-11742" ], "details": "An issue was discovered in Xen through 4.13.x, allowing guest OS users to cause a denial of service because of bad continuation handling in GNTTABOP_copy. Grant table operations are expected to return 0 for success, and a negative number for errors. The fix for CVE-2017-12135 introduced a path through grant copy handling where success may be returned to the caller without any action taken. In particular, the status fields of individual operations are left uninitialised, and may result in errant behaviour in the caller of GNTTABOP_copy. A buggy or malicious guest can construct its grant table in such a way that, when a backend domain tries to copy a grant, it hits the incorrect exit path. This returns success to the caller without doing anything, which may cause crashes or other incorrect behaviour.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q28x-xxhc-gjw3/GHSA-q28x-xxhc-gjw3.json b/advisories/unreviewed/2022/05/GHSA-q28x-xxhc-gjw3/GHSA-q28x-xxhc-gjw3.json index ad71ef25278..cb5819d5b56 100644 --- a/advisories/unreviewed/2022/05/GHSA-q28x-xxhc-gjw3/GHSA-q28x-xxhc-gjw3.json +++ b/advisories/unreviewed/2022/05/GHSA-q28x-xxhc-gjw3/GHSA-q28x-xxhc-gjw3.json @@ -7,12 +7,8 @@ "CVE-2019-4593" ], "details": "IBM QRadar 7.3.0 to 7.3.3 Patch 2 generates an error message that includes sensitive information that could be used in further attacks against the system. IBM X-ForceID: 167743.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q3m3-f44j-425x/GHSA-q3m3-f44j-425x.json b/advisories/unreviewed/2022/05/GHSA-q3m3-f44j-425x/GHSA-q3m3-f44j-425x.json index c67480f4f36..2e24feb9bb2 100644 --- a/advisories/unreviewed/2022/05/GHSA-q3m3-f44j-425x/GHSA-q3m3-f44j-425x.json +++ b/advisories/unreviewed/2022/05/GHSA-q3m3-f44j-425x/GHSA-q3m3-f44j-425x.json @@ -7,12 +7,8 @@ "CVE-2020-6216" ], "details": "SAP Business Objects Business Intelligence Platform (BI Launchpad), version 4.2, does not sufficiently encode user-controlled inputs, resulting in reflected Cross-Site Scripting (XSS) vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q4qh-89wr-gqrv/GHSA-q4qh-89wr-gqrv.json b/advisories/unreviewed/2022/05/GHSA-q4qh-89wr-gqrv/GHSA-q4qh-89wr-gqrv.json index cae9568db67..4c0c6e2ecd1 100644 --- a/advisories/unreviewed/2022/05/GHSA-q4qh-89wr-gqrv/GHSA-q4qh-89wr-gqrv.json +++ b/advisories/unreviewed/2022/05/GHSA-q4qh-89wr-gqrv/GHSA-q4qh-89wr-gqrv.json @@ -7,12 +7,8 @@ "CVE-2020-2763" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are 5.6.47 and prior, 5.7.29 and prior and 8.0.19 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q6hm-3q22-555x/GHSA-q6hm-3q22-555x.json b/advisories/unreviewed/2022/05/GHSA-q6hm-3q22-555x/GHSA-q6hm-3q22-555x.json index f8acef0ff80..ac760082e43 100644 --- a/advisories/unreviewed/2022/05/GHSA-q6hm-3q22-555x/GHSA-q6hm-3q22-555x.json +++ b/advisories/unreviewed/2022/05/GHSA-q6hm-3q22-555x/GHSA-q6hm-3q22-555x.json @@ -7,12 +7,8 @@ "CVE-2020-5549" ], "details": "Cross-site request forgery (CSRF) vulnerability in EasyBlocks IPv6 Ver. 2.0.1 and earlier and Enterprise Ver. 2.0.1 and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q8jw-84xc-4hch/GHSA-q8jw-84xc-4hch.json b/advisories/unreviewed/2022/05/GHSA-q8jw-84xc-4hch/GHSA-q8jw-84xc-4hch.json index 27e16e97d9b..aefa2c5ecb5 100644 --- a/advisories/unreviewed/2022/05/GHSA-q8jw-84xc-4hch/GHSA-q8jw-84xc-4hch.json +++ b/advisories/unreviewed/2022/05/GHSA-q8jw-84xc-4hch/GHSA-q8jw-84xc-4hch.json @@ -7,12 +7,8 @@ "CVE-2020-2522" ], "details": "Vulnerability in the Oracle Knowledge product of Oracle Knowledge (component: Information Manager Console). Supported versions that are affected are 8.6.0-8.6.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Knowledge. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Knowledge accessible data. CVSS 3.0 Base Score 4.3 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q8w5-jq96-p28w/GHSA-q8w5-jq96-p28w.json b/advisories/unreviewed/2022/05/GHSA-q8w5-jq96-p28w/GHSA-q8w5-jq96-p28w.json index c231a6cd1d4..a2ac5d1ad16 100644 --- a/advisories/unreviewed/2022/05/GHSA-q8w5-jq96-p28w/GHSA-q8w5-jq96-p28w.json +++ b/advisories/unreviewed/2022/05/GHSA-q8w5-jq96-p28w/GHSA-q8w5-jq96-p28w.json @@ -7,12 +7,8 @@ "CVE-2018-21080" ], "details": "An issue was discovered on Samsung mobile devices with N(7.x) software. A physically proximate attacker wielding a magnet can activate NFC to bypass the lockscreen. The Samsung ID is SVE-2017-10897 (March 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q9mh-3fx2-4gj3/GHSA-q9mh-3fx2-4gj3.json b/advisories/unreviewed/2022/05/GHSA-q9mh-3fx2-4gj3/GHSA-q9mh-3fx2-4gj3.json index df421c6c8d1..210993fc5fe 100644 --- a/advisories/unreviewed/2022/05/GHSA-q9mh-3fx2-4gj3/GHSA-q9mh-3fx2-4gj3.json +++ b/advisories/unreviewed/2022/05/GHSA-q9mh-3fx2-4gj3/GHSA-q9mh-3fx2-4gj3.json @@ -7,12 +7,8 @@ "CVE-2020-5735" ], "details": "Amcrest cameras and NVR are vulnerable to a stack-based buffer overflow over port 37777. An authenticated remote attacker can abuse this issue to crash the device and possibly execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qc33-vmxq-wh9q/GHSA-qc33-vmxq-wh9q.json b/advisories/unreviewed/2022/05/GHSA-qc33-vmxq-wh9q/GHSA-qc33-vmxq-wh9q.json index 08e4b05a084..850499752ff 100644 --- a/advisories/unreviewed/2022/05/GHSA-qc33-vmxq-wh9q/GHSA-qc33-vmxq-wh9q.json +++ b/advisories/unreviewed/2022/05/GHSA-qc33-vmxq-wh9q/GHSA-qc33-vmxq-wh9q.json @@ -7,12 +7,8 @@ "CVE-2016-11052" ], "details": "An issue was discovered on Samsung mobile devices with L(5.0/5.1) software. je_free in libQjpeg.so in Qjpeg in Qt 5.5 allows memory corruption via a malformed JPEG file. The Samsung ID is SVE-2015-5110 (January 2016).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qc58-fx6g-366w/GHSA-qc58-fx6g-366w.json b/advisories/unreviewed/2022/05/GHSA-qc58-fx6g-366w/GHSA-qc58-fx6g-366w.json index 7571ce418ba..565e9ecec63 100644 --- a/advisories/unreviewed/2022/05/GHSA-qc58-fx6g-366w/GHSA-qc58-fx6g-366w.json +++ b/advisories/unreviewed/2022/05/GHSA-qc58-fx6g-366w/GHSA-qc58-fx6g-366w.json @@ -7,12 +7,8 @@ "CVE-2020-11631" ], "details": "An issue was discovered in EJBCA before 6.15.2.6 and 7.x before 7.3.1.2. An error state can be generated in the CA UI by a malicious user. This, in turn, allows exploitation of other bugs. This follow-on exploitation can lead to privilege escalation and remote code execution. (This is exploitable only when at least one accessible port lacks a requirement for client certificate authentication. These ports are 8442 or 8080 in a standard installation.)", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qcpv-3q5x-rxf2/GHSA-qcpv-3q5x-rxf2.json b/advisories/unreviewed/2022/05/GHSA-qcpv-3q5x-rxf2/GHSA-qcpv-3q5x-rxf2.json index da3502f00f3..d0d9f9764f8 100644 --- a/advisories/unreviewed/2022/05/GHSA-qcpv-3q5x-rxf2/GHSA-qcpv-3q5x-rxf2.json +++ b/advisories/unreviewed/2022/05/GHSA-qcpv-3q5x-rxf2/GHSA-qcpv-3q5x-rxf2.json @@ -7,12 +7,8 @@ "CVE-2018-21090" ], "details": "An issue was discovered on Samsung mobile devices with software through 2017-11-03 (S.LSI modem chipsets). The Exynos modem chipset has a baseband buffer overflow. The Samsung ID is SVE-2017-10745 (January 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qf7j-qv5h-pxpf/GHSA-qf7j-qv5h-pxpf.json b/advisories/unreviewed/2022/05/GHSA-qf7j-qv5h-pxpf/GHSA-qf7j-qv5h-pxpf.json index dd28f615c59..2bbf236d26d 100644 --- a/advisories/unreviewed/2022/05/GHSA-qf7j-qv5h-pxpf/GHSA-qf7j-qv5h-pxpf.json +++ b/advisories/unreviewed/2022/05/GHSA-qf7j-qv5h-pxpf/GHSA-qf7j-qv5h-pxpf.json @@ -7,12 +7,8 @@ "CVE-2020-0821" ], "details": "An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-1007.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qfhp-872f-r5cf/GHSA-qfhp-872f-r5cf.json b/advisories/unreviewed/2022/05/GHSA-qfhp-872f-r5cf/GHSA-qfhp-872f-r5cf.json index 3b2cd557aa5..e2b87a7ac42 100644 --- a/advisories/unreviewed/2022/05/GHSA-qfhp-872f-r5cf/GHSA-qfhp-872f-r5cf.json +++ b/advisories/unreviewed/2022/05/GHSA-qfhp-872f-r5cf/GHSA-qfhp-872f-r5cf.json @@ -7,12 +7,8 @@ "CVE-2020-2748" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.40, prior to 6.0.20 and prior to 6.1.6. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle VM VirtualBox accessible data. CVSS 3.0 Base Score 3.2 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:C/C:L/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qgxw-xq35-5qcq/GHSA-qgxw-xq35-5qcq.json b/advisories/unreviewed/2022/05/GHSA-qgxw-xq35-5qcq/GHSA-qgxw-xq35-5qcq.json index a3e5343e478..71deed6629e 100644 --- a/advisories/unreviewed/2022/05/GHSA-qgxw-xq35-5qcq/GHSA-qgxw-xq35-5qcq.json +++ b/advisories/unreviewed/2022/05/GHSA-qgxw-xq35-5qcq/GHSA-qgxw-xq35-5qcq.json @@ -7,12 +7,8 @@ "CVE-2020-10642" ], "details": "In Rockwell Automation RSLinx Classic versions 4.1.00 and prior, an authenticated local attacker could modify a registry key, which could lead to the execution of malicious code using system privileges when opening RSLinx Classic.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qhcc-h2hf-rj7x/GHSA-qhcc-h2hf-rj7x.json b/advisories/unreviewed/2022/05/GHSA-qhcc-h2hf-rj7x/GHSA-qhcc-h2hf-rj7x.json index 37efad27eea..c40bf53fe24 100644 --- a/advisories/unreviewed/2022/05/GHSA-qhcc-h2hf-rj7x/GHSA-qhcc-h2hf-rj7x.json +++ b/advisories/unreviewed/2022/05/GHSA-qhcc-h2hf-rj7x/GHSA-qhcc-h2hf-rj7x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qhgw-36pc-xwc8/GHSA-qhgw-36pc-xwc8.json b/advisories/unreviewed/2022/05/GHSA-qhgw-36pc-xwc8/GHSA-qhgw-36pc-xwc8.json index f923e4b2f72..49736de1a1c 100644 --- a/advisories/unreviewed/2022/05/GHSA-qhgw-36pc-xwc8/GHSA-qhgw-36pc-xwc8.json +++ b/advisories/unreviewed/2022/05/GHSA-qhgw-36pc-xwc8/GHSA-qhgw-36pc-xwc8.json @@ -7,12 +7,8 @@ "CVE-2020-11592" ], "details": "An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an API request and get the columns of a specific table within the CIP database.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qj7x-gxwx-cjwh/GHSA-qj7x-gxwx-cjwh.json b/advisories/unreviewed/2022/05/GHSA-qj7x-gxwx-cjwh/GHSA-qj7x-gxwx-cjwh.json index 6ace52f9e1f..9c001be2cae 100644 --- a/advisories/unreviewed/2022/05/GHSA-qj7x-gxwx-cjwh/GHSA-qj7x-gxwx-cjwh.json +++ b/advisories/unreviewed/2022/05/GHSA-qj7x-gxwx-cjwh/GHSA-qj7x-gxwx-cjwh.json @@ -7,12 +7,8 @@ "CVE-2020-11663" ], "details": "CA API Developer Portal 4.3.1 and earlier handles 404 requests in an insecure manner, which allows attackers to perform open redirect attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qmgj-v6ph-pm4c/GHSA-qmgj-v6ph-pm4c.json b/advisories/unreviewed/2022/05/GHSA-qmgj-v6ph-pm4c/GHSA-qmgj-v6ph-pm4c.json index 55c018683e7..7ddceafaef5 100644 --- a/advisories/unreviewed/2022/05/GHSA-qmgj-v6ph-pm4c/GHSA-qmgj-v6ph-pm4c.json +++ b/advisories/unreviewed/2022/05/GHSA-qmgj-v6ph-pm4c/GHSA-qmgj-v6ph-pm4c.json @@ -7,12 +7,8 @@ "CVE-2020-11701" ], "details": "An issue was discovered in ProVide (formerly zFTPServer) through 13.1. CSRF exists in the User Web Interface, as demonstrated by granting filesystem access to the public for uploading and deleting files and directories.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qmqh-cxhx-r5v4/GHSA-qmqh-cxhx-r5v4.json b/advisories/unreviewed/2022/05/GHSA-qmqh-cxhx-r5v4/GHSA-qmqh-cxhx-r5v4.json index 6847f7268c5..97dd0ea6c29 100644 --- a/advisories/unreviewed/2022/05/GHSA-qmqh-cxhx-r5v4/GHSA-qmqh-cxhx-r5v4.json +++ b/advisories/unreviewed/2022/05/GHSA-qmqh-cxhx-r5v4/GHSA-qmqh-cxhx-r5v4.json @@ -7,12 +7,8 @@ "CVE-2020-10980" ], "details": "GitLab EE/CE 8.0.rc1 to 12.9 is vulnerable to a blind SSRF in the FogBugz integration.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qmvr-h9gj-g429/GHSA-qmvr-h9gj-g429.json b/advisories/unreviewed/2022/05/GHSA-qmvr-h9gj-g429/GHSA-qmvr-h9gj-g429.json index c6f0b68a530..8e246eb0304 100644 --- a/advisories/unreviewed/2022/05/GHSA-qmvr-h9gj-g429/GHSA-qmvr-h9gj-g429.json +++ b/advisories/unreviewed/2022/05/GHSA-qmvr-h9gj-g429/GHSA-qmvr-h9gj-g429.json @@ -7,12 +7,8 @@ "CVE-2019-4740" ], "details": "IBM DOORS Next Generation (DNG/RRC) 6.0.2. 6.0.6, and 6.0.61 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 172808.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qppq-w927-wgc9/GHSA-qppq-w927-wgc9.json b/advisories/unreviewed/2022/05/GHSA-qppq-w927-wgc9/GHSA-qppq-w927-wgc9.json index 6f1450fd100..d6f6ab19cca 100644 --- a/advisories/unreviewed/2022/05/GHSA-qppq-w927-wgc9/GHSA-qppq-w927-wgc9.json +++ b/advisories/unreviewed/2022/05/GHSA-qppq-w927-wgc9/GHSA-qppq-w927-wgc9.json @@ -7,12 +7,8 @@ "CVE-2020-0953" ], "details": "A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0889, CVE-2020-0959, CVE-2020-0960, CVE-2020-0988, CVE-2020-0992, CVE-2020-0994, CVE-2020-0995, CVE-2020-0999, CVE-2020-1008.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qpx2-q28h-ggcf/GHSA-qpx2-q28h-ggcf.json b/advisories/unreviewed/2022/05/GHSA-qpx2-q28h-ggcf/GHSA-qpx2-q28h-ggcf.json index bb5f303a207..01a02d196f1 100644 --- a/advisories/unreviewed/2022/05/GHSA-qpx2-q28h-ggcf/GHSA-qpx2-q28h-ggcf.json +++ b/advisories/unreviewed/2022/05/GHSA-qpx2-q28h-ggcf/GHSA-qpx2-q28h-ggcf.json @@ -7,12 +7,8 @@ "CVE-2020-2759" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are 8.0.19 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qqhh-pgvv-qcgg/GHSA-qqhh-pgvv-qcgg.json b/advisories/unreviewed/2022/05/GHSA-qqhh-pgvv-qcgg/GHSA-qqhh-pgvv-qcgg.json index 233538ef902..3df1fba1ab1 100644 --- a/advisories/unreviewed/2022/05/GHSA-qqhh-pgvv-qcgg/GHSA-qqhh-pgvv-qcgg.json +++ b/advisories/unreviewed/2022/05/GHSA-qqhh-pgvv-qcgg/GHSA-qqhh-pgvv-qcgg.json @@ -7,12 +7,8 @@ "CVE-2017-18694" ], "details": "An issue was discovered on Samsung mobile devices with software through 2016-10-25 (Exynos5 chipsets). Attackers can read kernel addresses in the log because an incorrect format specifier is used. The Samsung ID is SVE-2016-7551 (January 2017).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qqph-jfrw-v868/GHSA-qqph-jfrw-v868.json b/advisories/unreviewed/2022/05/GHSA-qqph-jfrw-v868/GHSA-qqph-jfrw-v868.json index 27c8a0ea0e6..401de2b2ecf 100644 --- a/advisories/unreviewed/2022/05/GHSA-qqph-jfrw-v868/GHSA-qqph-jfrw-v868.json +++ b/advisories/unreviewed/2022/05/GHSA-qqph-jfrw-v868/GHSA-qqph-jfrw-v868.json @@ -7,12 +7,8 @@ "CVE-2020-0935" ], "details": "An elevation of privilege vulnerability exists when the OneDrive for Windows Desktop application improperly handles symbolic links, aka 'OneDrive for Windows Elevation of Privilege Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qqxx-w66x-c8rm/GHSA-qqxx-w66x-c8rm.json b/advisories/unreviewed/2022/05/GHSA-qqxx-w66x-c8rm/GHSA-qqxx-w66x-c8rm.json index ee987bf04cc..887e36eca5b 100644 --- a/advisories/unreviewed/2022/05/GHSA-qqxx-w66x-c8rm/GHSA-qqxx-w66x-c8rm.json +++ b/advisories/unreviewed/2022/05/GHSA-qqxx-w66x-c8rm/GHSA-qqxx-w66x-c8rm.json @@ -7,12 +7,8 @@ "CVE-2020-0889" ], "details": "A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0953, CVE-2020-0959, CVE-2020-0960, CVE-2020-0988, CVE-2020-0992, CVE-2020-0994, CVE-2020-0995, CVE-2020-0999, CVE-2020-1008.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qrvg-vrjq-42gc/GHSA-qrvg-vrjq-42gc.json b/advisories/unreviewed/2022/05/GHSA-qrvg-vrjq-42gc/GHSA-qrvg-vrjq-42gc.json index b743abb18a0..73f71e6c4c4 100644 --- a/advisories/unreviewed/2022/05/GHSA-qrvg-vrjq-42gc/GHSA-qrvg-vrjq-42gc.json +++ b/advisories/unreviewed/2022/05/GHSA-qrvg-vrjq-42gc/GHSA-qrvg-vrjq-42gc.json @@ -7,12 +7,8 @@ "CVE-2020-6236" ], "details": "SAP Landscape Management, version 3.0, and SAP Adaptive Extensions, version 1.0, allows an attacker with admin_group privileges to change ownership and permissions (including S-user ID bit s-bit) of arbitrary files remotely. This results in the possibility to execute these files as root user from a non-root context, leading to Privilege Escalation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qx42-7245-rc87/GHSA-qx42-7245-rc87.json b/advisories/unreviewed/2022/05/GHSA-qx42-7245-rc87/GHSA-qx42-7245-rc87.json index 1f046e6cf3b..58485a02dbc 100644 --- a/advisories/unreviewed/2022/05/GHSA-qx42-7245-rc87/GHSA-qx42-7245-rc87.json +++ b/advisories/unreviewed/2022/05/GHSA-qx42-7245-rc87/GHSA-qx42-7245-rc87.json @@ -7,12 +7,8 @@ "CVE-2019-4594" ], "details": "IBM QRadar 7.3.0 to 7.3.3 Patch 2 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. An attacker could exploit this vulnerability to obtain sensitive information using man in the middle techniques. IBM X-ForceID: 167810.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qx5r-7wv3-j34g/GHSA-qx5r-7wv3-j34g.json b/advisories/unreviewed/2022/05/GHSA-qx5r-7wv3-j34g/GHSA-qx5r-7wv3-j34g.json index 3f82828bb55..64312ff124e 100644 --- a/advisories/unreviewed/2022/05/GHSA-qx5r-7wv3-j34g/GHSA-qx5r-7wv3-j34g.json +++ b/advisories/unreviewed/2022/05/GHSA-qx5r-7wv3-j34g/GHSA-qx5r-7wv3-j34g.json @@ -7,12 +7,8 @@ "CVE-2020-2782" ], "details": "Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Query). Supported versions that are affected are 8.56, 8.57 and 8.58. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in PeopleSoft Enterprise PeopleTools, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of PeopleSoft Enterprise PeopleTools accessible data as well as unauthorized read access to a subset of PeopleSoft Enterprise PeopleTools accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of PeopleSoft Enterprise PeopleTools. CVSS 3.0 Base Score 7.1 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r24q-9r2j-gppf/GHSA-r24q-9r2j-gppf.json b/advisories/unreviewed/2022/05/GHSA-r24q-9r2j-gppf/GHSA-r24q-9r2j-gppf.json index bf5061a30c9..f1f66be5250 100644 --- a/advisories/unreviewed/2022/05/GHSA-r24q-9r2j-gppf/GHSA-r24q-9r2j-gppf.json +++ b/advisories/unreviewed/2022/05/GHSA-r24q-9r2j-gppf/GHSA-r24q-9r2j-gppf.json @@ -7,12 +7,8 @@ "CVE-2020-2749" ], "details": "Vulnerability in the Oracle Solaris product of Oracle Systems (component: SMF command svcbundle). The supported version that is affected is 11. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Solaris executes to compromise Oracle Solaris. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Solaris, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Solaris accessible data. CVSS 3.0 Base Score 2.5 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:H/PR:L/UI:R/S:C/C:N/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r27v-956v-r6h4/GHSA-r27v-956v-r6h4.json b/advisories/unreviewed/2022/05/GHSA-r27v-956v-r6h4/GHSA-r27v-956v-r6h4.json index b8445896866..73aabb57f9e 100644 --- a/advisories/unreviewed/2022/05/GHSA-r27v-956v-r6h4/GHSA-r27v-956v-r6h4.json +++ b/advisories/unreviewed/2022/05/GHSA-r27v-956v-r6h4/GHSA-r27v-956v-r6h4.json @@ -7,12 +7,8 @@ "CVE-2020-11788" ], "details": "Certain NETGEAR devices are affected by authentication bypass. This affects D6200 before 1.1.00.34, D7000 before 1.0.1.68, PR2000 before 1.0.0.28, R6050 before 1.0.1.18, JR6150 before 1.0.1.18, R6120 before 1.0.0.46, R6220 before 1.1.0.80, R6230 before 1.1.0.80, R6260 before 1.1.0.64, R6700v2 before 1.2.0.36, R6800 before 1.2.0.36, and R6900v2 before 1.2.0.36.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r42x-m65m-82x8/GHSA-r42x-m65m-82x8.json b/advisories/unreviewed/2022/05/GHSA-r42x-m65m-82x8/GHSA-r42x-m65m-82x8.json index ebb9e3f02fd..63e5819e09c 100644 --- a/advisories/unreviewed/2022/05/GHSA-r42x-m65m-82x8/GHSA-r42x-m65m-82x8.json +++ b/advisories/unreviewed/2022/05/GHSA-r42x-m65m-82x8/GHSA-r42x-m65m-82x8.json @@ -7,12 +7,8 @@ "CVE-2020-10981" ], "details": "GitLab EE/CE 9.0 to 12.9 allows a maintainer to modify other maintainers' pipeline trigger descriptions within the same project.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r457-c6v2-fq2c/GHSA-r457-c6v2-fq2c.json b/advisories/unreviewed/2022/05/GHSA-r457-c6v2-fq2c/GHSA-r457-c6v2-fq2c.json index 4e068340152..10c85ac1f3e 100644 --- a/advisories/unreviewed/2022/05/GHSA-r457-c6v2-fq2c/GHSA-r457-c6v2-fq2c.json +++ b/advisories/unreviewed/2022/05/GHSA-r457-c6v2-fq2c/GHSA-r457-c6v2-fq2c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r45r-rg9j-7g74/GHSA-r45r-rg9j-7g74.json b/advisories/unreviewed/2022/05/GHSA-r45r-rg9j-7g74/GHSA-r45r-rg9j-7g74.json index 58b2f773ef2..897f574b6db 100644 --- a/advisories/unreviewed/2022/05/GHSA-r45r-rg9j-7g74/GHSA-r45r-rg9j-7g74.json +++ b/advisories/unreviewed/2022/05/GHSA-r45r-rg9j-7g74/GHSA-r45r-rg9j-7g74.json @@ -7,12 +7,8 @@ "CVE-2020-2742" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.36, prior to 6.0.16 and prior to 6.1.2. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox. CVSS 3.0 Base Score 8.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r597-3qwr-6fwx/GHSA-r597-3qwr-6fwx.json b/advisories/unreviewed/2022/05/GHSA-r597-3qwr-6fwx/GHSA-r597-3qwr-6fwx.json index af82178f302..8efeb881c75 100644 --- a/advisories/unreviewed/2022/05/GHSA-r597-3qwr-6fwx/GHSA-r597-3qwr-6fwx.json +++ b/advisories/unreviewed/2022/05/GHSA-r597-3qwr-6fwx/GHSA-r597-3qwr-6fwx.json @@ -7,12 +7,8 @@ "CVE-2020-11775" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.68, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0.0.78, RBR20 before 2.3.5.26, RBS20 before 2.3.5.26, RBK20 before 2.3.5.26, RBR40 before 2.3.5.30, RBS40 before 2.3.5.30, RBK40 before 2.3.5.30, RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, RBK50 before 2.3.5.30, XR500 before 2.3.2.56, and XR700 before 1.0.1.10.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r6g5-hq5w-qpgp/GHSA-r6g5-hq5w-qpgp.json b/advisories/unreviewed/2022/05/GHSA-r6g5-hq5w-qpgp/GHSA-r6g5-hq5w-qpgp.json index 0180473e125..7a9a7429642 100644 --- a/advisories/unreviewed/2022/05/GHSA-r6g5-hq5w-qpgp/GHSA-r6g5-hq5w-qpgp.json +++ b/advisories/unreviewed/2022/05/GHSA-r6g5-hq5w-qpgp/GHSA-r6g5-hq5w-qpgp.json @@ -7,12 +7,8 @@ "CVE-2020-2789" ], "details": "Vulnerability in the Oracle iSupport product of Oracle E-Business Suite (component: User Interface). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.8. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iSupport. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle iSupport, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle iSupport accessible data. CVSS 3.0 Base Score 4.7 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r6x8-c338-2jr5/GHSA-r6x8-c338-2jr5.json b/advisories/unreviewed/2022/05/GHSA-r6x8-c338-2jr5/GHSA-r6x8-c338-2jr5.json index d7f7c5468cc..e98fe45bbcc 100644 --- a/advisories/unreviewed/2022/05/GHSA-r6x8-c338-2jr5/GHSA-r6x8-c338-2jr5.json +++ b/advisories/unreviewed/2022/05/GHSA-r6x8-c338-2jr5/GHSA-r6x8-c338-2jr5.json @@ -7,12 +7,8 @@ "CVE-2020-11466" ], "details": "An issue was discovered in Deskpro before 2019.8.0. The /api/tickets endpoint failed to properly validate a user's privilege, allowing an attacker to retrieve arbitrary information about all helpdesk tickets stored in database with numerous filters. This leaked sensitive information to unauthorized parties. Additionally, it leaked ticket authentication code, making it possible to make changes to a ticket.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r7qq-28ww-xhph/GHSA-r7qq-28ww-xhph.json b/advisories/unreviewed/2022/05/GHSA-r7qq-28ww-xhph/GHSA-r7qq-28ww-xhph.json index 9b94c4738c5..8199d390fc5 100644 --- a/advisories/unreviewed/2022/05/GHSA-r7qq-28ww-xhph/GHSA-r7qq-28ww-xhph.json +++ b/advisories/unreviewed/2022/05/GHSA-r7qq-28ww-xhph/GHSA-r7qq-28ww-xhph.json @@ -7,12 +7,8 @@ "CVE-2016-11050" ], "details": "An issue was discovered on Samsung mobile devices with S3(KK), Note2(KK), S4(L), Note3(L), and S5(L) software. An attacker can rewrite the IMEI by flashing crafted firmware. The Samsung ID is SVE-2016-5562 (March 2016).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r826-ph6f-65w5/GHSA-r826-ph6f-65w5.json b/advisories/unreviewed/2022/05/GHSA-r826-ph6f-65w5/GHSA-r826-ph6f-65w5.json index b5b53ddb306..04b8422b49a 100644 --- a/advisories/unreviewed/2022/05/GHSA-r826-ph6f-65w5/GHSA-r826-ph6f-65w5.json +++ b/advisories/unreviewed/2022/05/GHSA-r826-ph6f-65w5/GHSA-r826-ph6f-65w5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r8fx-gp4c-84qw/GHSA-r8fx-gp4c-84qw.json b/advisories/unreviewed/2022/05/GHSA-r8fx-gp4c-84qw/GHSA-r8fx-gp4c-84qw.json index 1c3df2f03a3..9f11440c760 100644 --- a/advisories/unreviewed/2022/05/GHSA-r8fx-gp4c-84qw/GHSA-r8fx-gp4c-84qw.json +++ b/advisories/unreviewed/2022/05/GHSA-r8fx-gp4c-84qw/GHSA-r8fx-gp4c-84qw.json @@ -7,12 +7,8 @@ "CVE-2016-11035" ], "details": "An issue was discovered on Samsung mobile devices with software through 2016-05-27 (Exynos AP chipsets). A local graphics user can cause a Kernel Crash via the fb0(DECON) frame buffer interface. The Samsung ID is SVE-2016-7011 (October 2016).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r9c5-39xx-j863/GHSA-r9c5-39xx-j863.json b/advisories/unreviewed/2022/05/GHSA-r9c5-39xx-j863/GHSA-r9c5-39xx-j863.json index 3b83f712c81..4648c4ef96b 100644 --- a/advisories/unreviewed/2022/05/GHSA-r9c5-39xx-j863/GHSA-r9c5-39xx-j863.json +++ b/advisories/unreviewed/2022/05/GHSA-r9c5-39xx-j863/GHSA-r9c5-39xx-j863.json @@ -7,12 +7,8 @@ "CVE-2020-11786" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.68, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0.0.78, RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, RBK50 before 2.3.5.30, XR500 before 2.3.2.56, and XR700 before 1.0.1.10.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r9p6-cffj-3xwp/GHSA-r9p6-cffj-3xwp.json b/advisories/unreviewed/2022/05/GHSA-r9p6-cffj-3xwp/GHSA-r9p6-cffj-3xwp.json index f6c68214b27..8eda110bede 100644 --- a/advisories/unreviewed/2022/05/GHSA-r9p6-cffj-3xwp/GHSA-r9p6-cffj-3xwp.json +++ b/advisories/unreviewed/2022/05/GHSA-r9p6-cffj-3xwp/GHSA-r9p6-cffj-3xwp.json @@ -7,12 +7,8 @@ "CVE-2020-2745" ], "details": "Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Federation). Supported versions that are affected are 11.1.2.3.0 and 12.2.1.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Access Manager. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Access Manager. CVSS 3.0 Base Score 4.3 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rc47-m3cc-f723/GHSA-rc47-m3cc-f723.json b/advisories/unreviewed/2022/05/GHSA-rc47-m3cc-f723/GHSA-rc47-m3cc-f723.json index b2afd4c7c69..5de9d18791f 100644 --- a/advisories/unreviewed/2022/05/GHSA-rc47-m3cc-f723/GHSA-rc47-m3cc-f723.json +++ b/advisories/unreviewed/2022/05/GHSA-rc47-m3cc-f723/GHSA-rc47-m3cc-f723.json @@ -7,12 +7,8 @@ "CVE-2020-0576" ], "details": "Buffer overflow in Intel(R) Modular Server MFS2600KISPP Compute Module may allow an unauthenticated user to potentially enable denial of service via adjacent access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rcrq-8jpw-9hr7/GHSA-rcrq-8jpw-9hr7.json b/advisories/unreviewed/2022/05/GHSA-rcrq-8jpw-9hr7/GHSA-rcrq-8jpw-9hr7.json index addd30e6ba9..ff7272f678d 100644 --- a/advisories/unreviewed/2022/05/GHSA-rcrq-8jpw-9hr7/GHSA-rcrq-8jpw-9hr7.json +++ b/advisories/unreviewed/2022/05/GHSA-rcrq-8jpw-9hr7/GHSA-rcrq-8jpw-9hr7.json @@ -7,12 +7,8 @@ "CVE-2017-18650" ], "details": "An issue was discovered on Samsung mobile devices with N(7.x) software. There is a WifiStateMachine IllegalArgumentException and reboot if a malformed wpa_supplicant.conf is read. The Samsung ID is SVE-2017-9828 (October 2017).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rggv-c4w4-cvm6/GHSA-rggv-c4w4-cvm6.json b/advisories/unreviewed/2022/05/GHSA-rggv-c4w4-cvm6/GHSA-rggv-c4w4-cvm6.json index a1939550924..15a1799ac01 100644 --- a/advisories/unreviewed/2022/05/GHSA-rggv-c4w4-cvm6/GHSA-rggv-c4w4-cvm6.json +++ b/advisories/unreviewed/2022/05/GHSA-rggv-c4w4-cvm6/GHSA-rggv-c4w4-cvm6.json @@ -7,12 +7,8 @@ "CVE-2020-11556" ], "details": "An issue was discovered in Castle Rock SNMPc Online 12.10.10 before 2020-01-28. There are multiple persistent (stored) and reflected XSS vulnerabilities.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rh72-qm58-6p3q/GHSA-rh72-qm58-6p3q.json b/advisories/unreviewed/2022/05/GHSA-rh72-qm58-6p3q/GHSA-rh72-qm58-6p3q.json index e3f1c8403db..da3b1682dc7 100644 --- a/advisories/unreviewed/2022/05/GHSA-rh72-qm58-6p3q/GHSA-rh72-qm58-6p3q.json +++ b/advisories/unreviewed/2022/05/GHSA-rh72-qm58-6p3q/GHSA-rh72-qm58-6p3q.json @@ -7,12 +7,8 @@ "CVE-2020-3889" ], "details": "A logic issue was addressed with improved state management. This issue is fixed in macOS Catalina 10.15.4. A local user may be able to read arbitrary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rhrf-xrq9-3h4h/GHSA-rhrf-xrq9-3h4h.json b/advisories/unreviewed/2022/05/GHSA-rhrf-xrq9-3h4h/GHSA-rhrf-xrq9-3h4h.json index dcf0a584c2d..3cde96c891c 100644 --- a/advisories/unreviewed/2022/05/GHSA-rhrf-xrq9-3h4h/GHSA-rhrf-xrq9-3h4h.json +++ b/advisories/unreviewed/2022/05/GHSA-rhrf-xrq9-3h4h/GHSA-rhrf-xrq9-3h4h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rhrx-9f9f-mfxr/GHSA-rhrx-9f9f-mfxr.json b/advisories/unreviewed/2022/05/GHSA-rhrx-9f9f-mfxr/GHSA-rhrx-9f9f-mfxr.json index 421dc15dff7..c40fd4e1f96 100644 --- a/advisories/unreviewed/2022/05/GHSA-rhrx-9f9f-mfxr/GHSA-rhrx-9f9f-mfxr.json +++ b/advisories/unreviewed/2022/05/GHSA-rhrx-9f9f-mfxr/GHSA-rhrx-9f9f-mfxr.json @@ -7,12 +7,8 @@ "CVE-2020-1638" ], "details": "The FPC (Flexible PIC Concentrator) of Juniper Networks Junos OS and Junos OS Evolved may restart after processing a specific IPv4 packet. Only packets destined to the device itself, successfully reaching the RE through existing edge and control plane filtering, will be able to cause the FPC restart. When this issue occurs, all traffic via the FPC will be dropped. By continuously sending this specific IPv4 packet, an attacker can repeatedly crash the FPC, causing an extended Denial of Service (DoS) condition. This issue can only occur when processing a specific IPv4 packet. IPv6 packets cannot trigger this issue. This issue affects: Juniper Networks Junos OS on MX Series with MPC10E or MPC11E and PTX10001: 19.2 versions prior to 19.2R1-S4, 19.2R2; 19.3 versions prior to 19.3R2-S2, 19.3R3; 19.4 versions prior to 19.4R1-S1, 19.4R2. Juniper Networks Junos OS Evolved on on QFX5220, and PTX10003 series: 19.2-EVO versions; 19.3-EVO versions; 19.4-EVO versions prior to 19.4R2-EVO. This issue does not affect Junos OS versions prior to 19.2R1. This issue does not affect Junos OS Evolved versions prior to 19.2R1-EVO.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rj3w-qm5r-xh5q/GHSA-rj3w-qm5r-xh5q.json b/advisories/unreviewed/2022/05/GHSA-rj3w-qm5r-xh5q/GHSA-rj3w-qm5r-xh5q.json index d5c56220ae8..a5aa35e4cb3 100644 --- a/advisories/unreviewed/2022/05/GHSA-rj3w-qm5r-xh5q/GHSA-rj3w-qm5r-xh5q.json +++ b/advisories/unreviewed/2022/05/GHSA-rj3w-qm5r-xh5q/GHSA-rj3w-qm5r-xh5q.json @@ -7,12 +7,8 @@ "CVE-2020-0992" ], "details": "A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0889, CVE-2020-0953, CVE-2020-0959, CVE-2020-0960, CVE-2020-0988, CVE-2020-0994, CVE-2020-0995, CVE-2020-0999, CVE-2020-1008.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rpm3-9x65-q856/GHSA-rpm3-9x65-q856.json b/advisories/unreviewed/2022/05/GHSA-rpm3-9x65-q856/GHSA-rpm3-9x65-q856.json index 7f20fc7ea4a..22ef8547758 100644 --- a/advisories/unreviewed/2022/05/GHSA-rpm3-9x65-q856/GHSA-rpm3-9x65-q856.json +++ b/advisories/unreviewed/2022/05/GHSA-rpm3-9x65-q856/GHSA-rpm3-9x65-q856.json @@ -7,12 +7,8 @@ "CVE-2020-1992" ], "details": "A format string vulnerability in the Varrcvr daemon of PAN-OS on PA-7000 Series devices with a Log Forwarding Card (LFC) allows remote attackers to crash the daemon creating a denial of service condition or potentially execute code with root privileges. This issue affects Palo Alto Networks PAN-OS 9.0 versions before 9.0.7; PAN-OS 9.1 versions before 9.1.2 on PA-7000 Series devices with an LFC installed and configured. This issue requires WildFire services to be configured and enabled. This issue does not affect PAN-OS 8.1 and earlier releases. This issue does not affect any other PA Series firewalls.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rq3c-gxfr-p3c8/GHSA-rq3c-gxfr-p3c8.json b/advisories/unreviewed/2022/05/GHSA-rq3c-gxfr-p3c8/GHSA-rq3c-gxfr-p3c8.json index 82b25657b47..fcdb7c9cf1a 100644 --- a/advisories/unreviewed/2022/05/GHSA-rq3c-gxfr-p3c8/GHSA-rq3c-gxfr-p3c8.json +++ b/advisories/unreviewed/2022/05/GHSA-rq3c-gxfr-p3c8/GHSA-rq3c-gxfr-p3c8.json @@ -7,12 +7,8 @@ "CVE-2020-1022" ], "details": "A remote code execution vulnerability exists in Microsoft Dynamics Business Central, aka 'Dynamics Business Central Remote Code Execution Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rqqr-5h7h-vgp8/GHSA-rqqr-5h7h-vgp8.json b/advisories/unreviewed/2022/05/GHSA-rqqr-5h7h-vgp8/GHSA-rqqr-5h7h-vgp8.json index 30adadb246d..046338cec80 100644 --- a/advisories/unreviewed/2022/05/GHSA-rqqr-5h7h-vgp8/GHSA-rqqr-5h7h-vgp8.json +++ b/advisories/unreviewed/2022/05/GHSA-rqqr-5h7h-vgp8/GHSA-rqqr-5h7h-vgp8.json @@ -7,12 +7,8 @@ "CVE-2020-1019" ], "details": "An elevation of privilege vulnerability exists in RMS Sharing App for Mac in the way it allows an attacker to load unsigned binaries, aka 'Microsoft RMS Sharing App for Mac Elevation of Privilege Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rqx4-5362-4v5v/GHSA-rqx4-5362-4v5v.json b/advisories/unreviewed/2022/05/GHSA-rqx4-5362-4v5v/GHSA-rqx4-5362-4v5v.json index 8121e32e1d3..89cb6c00614 100644 --- a/advisories/unreviewed/2022/05/GHSA-rqx4-5362-4v5v/GHSA-rqx4-5362-4v5v.json +++ b/advisories/unreviewed/2022/05/GHSA-rqx4-5362-4v5v/GHSA-rqx4-5362-4v5v.json @@ -7,12 +7,8 @@ "CVE-2020-10366" ], "details": "LogicalDoc before 8.3.3 allows /servlet.gupld Directory Traversal, a different vulnerability than CVE-2020-9423 and CVE-2020-10365.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rr5c-xv63-xx9v/GHSA-rr5c-xv63-xx9v.json b/advisories/unreviewed/2022/05/GHSA-rr5c-xv63-xx9v/GHSA-rr5c-xv63-xx9v.json index c16f3c1b686..bf00ce92412 100644 --- a/advisories/unreviewed/2022/05/GHSA-rr5c-xv63-xx9v/GHSA-rr5c-xv63-xx9v.json +++ b/advisories/unreviewed/2022/05/GHSA-rr5c-xv63-xx9v/GHSA-rr5c-xv63-xx9v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rvpv-fmg3-9xq5/GHSA-rvpv-fmg3-9xq5.json b/advisories/unreviewed/2022/05/GHSA-rvpv-fmg3-9xq5/GHSA-rvpv-fmg3-9xq5.json index dd7d0f7dd33..2adc4b755a1 100644 --- a/advisories/unreviewed/2022/05/GHSA-rvpv-fmg3-9xq5/GHSA-rvpv-fmg3-9xq5.json +++ b/advisories/unreviewed/2022/05/GHSA-rvpv-fmg3-9xq5/GHSA-rvpv-fmg3-9xq5.json @@ -7,12 +7,8 @@ "CVE-2020-11772" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.68, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0.0.78, XR500 before 2.3.2.56, and XR700 before 1.0.1.10.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rvw6-9w8h-8mp7/GHSA-rvw6-9w8h-8mp7.json b/advisories/unreviewed/2022/05/GHSA-rvw6-9w8h-8mp7/GHSA-rvw6-9w8h-8mp7.json index c8f353ddf2f..bb6c1822a74 100644 --- a/advisories/unreviewed/2022/05/GHSA-rvw6-9w8h-8mp7/GHSA-rvw6-9w8h-8mp7.json +++ b/advisories/unreviewed/2022/05/GHSA-rvw6-9w8h-8mp7/GHSA-rvw6-9w8h-8mp7.json @@ -7,12 +7,8 @@ "CVE-2020-1986" ], "details": "Improper input validation vulnerability in Secdo allows an authenticated local user with 'create folders or append data' access to the root of the OS disk (C:\\) to cause a system crash on every login. This issue affects all versions Secdo for Windows.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rwjf-j42w-jfr4/GHSA-rwjf-j42w-jfr4.json b/advisories/unreviewed/2022/05/GHSA-rwjf-j42w-jfr4/GHSA-rwjf-j42w-jfr4.json index 8efa63a910c..941c40512b2 100644 --- a/advisories/unreviewed/2022/05/GHSA-rwjf-j42w-jfr4/GHSA-rwjf-j42w-jfr4.json +++ b/advisories/unreviewed/2022/05/GHSA-rwjf-j42w-jfr4/GHSA-rwjf-j42w-jfr4.json @@ -7,12 +7,8 @@ "CVE-2019-12522" ], "details": "An issue was discovered in Squid through 4.7. When Squid is run as root, it spawns its child processes as a lesser user, by default the user nobody. This is done via the leave_suid call. leave_suid leaves the Saved UID as 0. This makes it trivial for an attacker who has compromised the child process to escalate their privileges back to root.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v35x-379m-67v4/GHSA-v35x-379m-67v4.json b/advisories/unreviewed/2022/05/GHSA-v35x-379m-67v4/GHSA-v35x-379m-67v4.json index e4f2450d59e..b2632bd5528 100644 --- a/advisories/unreviewed/2022/05/GHSA-v35x-379m-67v4/GHSA-v35x-379m-67v4.json +++ b/advisories/unreviewed/2022/05/GHSA-v35x-379m-67v4/GHSA-v35x-379m-67v4.json @@ -7,12 +7,8 @@ "CVE-2020-0934" ], "details": "An elevation of privilege vulnerability exists when the Windows WpcDesktopMonSvc improperly manages memory.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0983, CVE-2020-1009, CVE-2020-1011, CVE-2020-1015.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v44w-3xjh-r66r/GHSA-v44w-3xjh-r66r.json b/advisories/unreviewed/2022/05/GHSA-v44w-3xjh-r66r/GHSA-v44w-3xjh-r66r.json index 5eeb798ae25..bf7df7bce02 100644 --- a/advisories/unreviewed/2022/05/GHSA-v44w-3xjh-r66r/GHSA-v44w-3xjh-r66r.json +++ b/advisories/unreviewed/2022/05/GHSA-v44w-3xjh-r66r/GHSA-v44w-3xjh-r66r.json @@ -7,12 +7,8 @@ "CVE-2019-14326" ], "details": "An issue was discovered in AndyOS Andy versions up to 46.11.113. By default, it starts telnet and ssh (ports 22 and 23) with root privileges in the emulated Android system. This can be exploited by remote attackers to gain full access to the device, or by malicious apps installed inside the emulator to perform privilege escalation from a normal user to root (unlike with standard methods of getting root privileges on Android - e.g., the SuperSu program - the user is not asked for consent). There is no authentication performed - access to a root shell is given upon a successful connection. NOTE: although this was originally published with a slightly different CVE ID number, the correct ID for this Andy vulnerability has always been CVE-2019-14326.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v4qq-v67p-w8j5/GHSA-v4qq-v67p-w8j5.json b/advisories/unreviewed/2022/05/GHSA-v4qq-v67p-w8j5/GHSA-v4qq-v67p-w8j5.json index 414741fc2e5..e175b6e4215 100644 --- a/advisories/unreviewed/2022/05/GHSA-v4qq-v67p-w8j5/GHSA-v4qq-v67p-w8j5.json +++ b/advisories/unreviewed/2022/05/GHSA-v4qq-v67p-w8j5/GHSA-v4qq-v67p-w8j5.json @@ -7,12 +7,8 @@ "CVE-2020-9460" ], "details": "Octech Oempro 4.7 through 4.11 allow XSS by an authenticated user. The parameter CampaignName in Campaign.Create is vulnerable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v5h6-rmj4-6h5m/GHSA-v5h6-rmj4-6h5m.json b/advisories/unreviewed/2022/05/GHSA-v5h6-rmj4-6h5m/GHSA-v5h6-rmj4-6h5m.json index bc6124cc9fc..8381b61b3a4 100644 --- a/advisories/unreviewed/2022/05/GHSA-v5h6-rmj4-6h5m/GHSA-v5h6-rmj4-6h5m.json +++ b/advisories/unreviewed/2022/05/GHSA-v5h6-rmj4-6h5m/GHSA-v5h6-rmj4-6h5m.json @@ -7,12 +7,8 @@ "CVE-2020-1637" ], "details": "A vulnerability in Juniper Networks SRX Series device configured as a Junos OS Enforcer device may allow a user to access network resources that are not permitted by a UAC policy. This issue might occur when the IP address range configured in the Infranet Controller (IC) is configured as an IP address range instead of an IP address/netmask. See the Workaround section for more detail. The Junos OS Enforcer CLI settings are disabled by default. This issue affects Juniper Networks Junos OS on SRX Series: 12.3X48 versions prior to 12.3X48-D100; 15.1X49 versions prior to 15.1X49-D210; 17.3 versions prior to 17.3R2-S5, 17.3R3-S8; 17.4 versions prior to 17.4R2-S9, 17.4R3-S1; 18.1 versions prior to 18.1R3-S10; 18.2 versions prior to 18.2R2-S7, 18.2R3-S3; 18.3 versions prior to 18.3R1-S7, 18.3R3-S2; 18.4 versions prior to 18.4R1-S6, 18.4R2-S4, 18.4R3-S1; 19.1 versions prior to 19.1R1-S4, 19.1R2-S1, 19.1R3; 19.2 versions prior to 19.2R1-S3, 19.2R2; 19.3 versions prior to 19.3R2-S1, 19.3R3; 19.4 versions prior to 19.4R1-S1, 19.4R2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v5rp-hjm7-f5h2/GHSA-v5rp-hjm7-f5h2.json b/advisories/unreviewed/2022/05/GHSA-v5rp-hjm7-f5h2/GHSA-v5rp-hjm7-f5h2.json index 5ae7d24feec..f0fe94d083a 100644 --- a/advisories/unreviewed/2022/05/GHSA-v5rp-hjm7-f5h2/GHSA-v5rp-hjm7-f5h2.json +++ b/advisories/unreviewed/2022/05/GHSA-v5rp-hjm7-f5h2/GHSA-v5rp-hjm7-f5h2.json @@ -7,12 +7,8 @@ "CVE-2020-11603" ], "details": "An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (incorporating TEEGRIS) software. Type confusion in the MLDAP Trustlet allows arbitrary code execution. The Samsung ID is SVE-2020-16599 (April 2020).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v5w5-cq94-f8mg/GHSA-v5w5-cq94-f8mg.json b/advisories/unreviewed/2022/05/GHSA-v5w5-cq94-f8mg/GHSA-v5w5-cq94-f8mg.json index 89ee6cbd30f..fc4738f17fb 100644 --- a/advisories/unreviewed/2022/05/GHSA-v5w5-cq94-f8mg/GHSA-v5w5-cq94-f8mg.json +++ b/advisories/unreviewed/2022/05/GHSA-v5w5-cq94-f8mg/GHSA-v5w5-cq94-f8mg.json @@ -7,12 +7,8 @@ "CVE-2016-11048" ], "details": "An issue was discovered on Samsung mobile devices with L(5.0/5.1) (Spreadtrum or Marvell chipsets) software. There is a Factory Reset Protection (FRP) bypass. The Samsung ID is SVE-2016-5421 (March 2016).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v6c2-w4jr-p63r/GHSA-v6c2-w4jr-p63r.json b/advisories/unreviewed/2022/05/GHSA-v6c2-w4jr-p63r/GHSA-v6c2-w4jr-p63r.json index 9c64e0c569a..c406a643bbb 100644 --- a/advisories/unreviewed/2022/05/GHSA-v6c2-w4jr-p63r/GHSA-v6c2-w4jr-p63r.json +++ b/advisories/unreviewed/2022/05/GHSA-v6c2-w4jr-p63r/GHSA-v6c2-w4jr-p63r.json @@ -7,12 +7,8 @@ "CVE-2020-0577" ], "details": "Insufficient control flow for Intel(R) Modular Server MFS2600KISPP Compute Module may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v74w-hq7x-f7g9/GHSA-v74w-hq7x-f7g9.json b/advisories/unreviewed/2022/05/GHSA-v74w-hq7x-f7g9/GHSA-v74w-hq7x-f7g9.json index d5f405aca47..7a5125fcdbf 100644 --- a/advisories/unreviewed/2022/05/GHSA-v74w-hq7x-f7g9/GHSA-v74w-hq7x-f7g9.json +++ b/advisories/unreviewed/2022/05/GHSA-v74w-hq7x-f7g9/GHSA-v74w-hq7x-f7g9.json @@ -7,12 +7,8 @@ "CVE-2020-7574" ], "details": "A vulnerability has been identified in Climatix POL908 (BACnet/IP module) (All versions), Climatix POL909 (AWM module) (All versions). A persistent cross-site scripting (XSS) vulnerability exists in the \"Server Config\" web interface of the affected devices that could allow an attacker to inject arbitrary JavaScript code. The code could be potentially executed later by another (possibly privileged) user. The security vulnerability could be exploited by an attacker with network access to the affected system. Successful exploitation requires no system privileges. An attacker could use the vulnerability to compromise the confidentiality and integrity of other users' web session.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v7r4-vxch-fv5j/GHSA-v7r4-vxch-fv5j.json b/advisories/unreviewed/2022/05/GHSA-v7r4-vxch-fv5j/GHSA-v7r4-vxch-fv5j.json index 38f4b61fd07..4c6227dd149 100644 --- a/advisories/unreviewed/2022/05/GHSA-v7r4-vxch-fv5j/GHSA-v7r4-vxch-fv5j.json +++ b/advisories/unreviewed/2022/05/GHSA-v7r4-vxch-fv5j/GHSA-v7r4-vxch-fv5j.json @@ -7,12 +7,8 @@ "CVE-2015-8546" ], "details": "An issue was discovered on Samsung mobile devices with software through 2015-11-12, affecting the Galaxy S6/S6 Edge, Galaxy S6 Edge+, and Galaxy Note5 with the Shannon333 chipset. There is a stack-based buffer overflow in the baseband process that is exploitable for remote code execution via a fake base station. The Samsung ID is SVE-2015-5123 (December 2015).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v8g6-3554-2cjf/GHSA-v8g6-3554-2cjf.json b/advisories/unreviewed/2022/05/GHSA-v8g6-3554-2cjf/GHSA-v8g6-3554-2cjf.json index b8da00ae686..c42406f35cf 100644 --- a/advisories/unreviewed/2022/05/GHSA-v8g6-3554-2cjf/GHSA-v8g6-3554-2cjf.json +++ b/advisories/unreviewed/2022/05/GHSA-v8g6-3554-2cjf/GHSA-v8g6-3554-2cjf.json @@ -7,12 +7,8 @@ "CVE-2018-21071" ], "details": "An issue was discovered on Samsung mobile devices with M(6.0) software. Because of an unprotected intent, an attacker can read arbitrary files and emails, and take over an email account. The Samsung ID is SVE-2018-11633 (May 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v8m7-8jc9-52rg/GHSA-v8m7-8jc9-52rg.json b/advisories/unreviewed/2022/05/GHSA-v8m7-8jc9-52rg/GHSA-v8m7-8jc9-52rg.json index 7dc96c3aa05..48615b329f0 100644 --- a/advisories/unreviewed/2022/05/GHSA-v8m7-8jc9-52rg/GHSA-v8m7-8jc9-52rg.json +++ b/advisories/unreviewed/2022/05/GHSA-v8m7-8jc9-52rg/GHSA-v8m7-8jc9-52rg.json @@ -7,12 +7,8 @@ "CVE-2020-2770" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Logging). Supported versions that are affected are 8.0.18 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v8pj-x8qh-4q2m/GHSA-v8pj-x8qh-4q2m.json b/advisories/unreviewed/2022/05/GHSA-v8pj-x8qh-4q2m/GHSA-v8pj-x8qh-4q2m.json index e84f6872981..27ca554fd8a 100644 --- a/advisories/unreviewed/2022/05/GHSA-v8pj-x8qh-4q2m/GHSA-v8pj-x8qh-4q2m.json +++ b/advisories/unreviewed/2022/05/GHSA-v8pj-x8qh-4q2m/GHSA-v8pj-x8qh-4q2m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v8x8-34pv-vf3j/GHSA-v8x8-34pv-vf3j.json b/advisories/unreviewed/2022/05/GHSA-v8x8-34pv-vf3j/GHSA-v8x8-34pv-vf3j.json index 9f8da8819e4..ff5c8c10cb2 100644 --- a/advisories/unreviewed/2022/05/GHSA-v8x8-34pv-vf3j/GHSA-v8x8-34pv-vf3j.json +++ b/advisories/unreviewed/2022/05/GHSA-v8x8-34pv-vf3j/GHSA-v8x8-34pv-vf3j.json @@ -7,12 +7,8 @@ "CVE-2019-20648" ], "details": "NETGEAR RN42400 devices before 6.10.2 are affected by incorrect configuration of security settings.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v9cw-p675-9qj4/GHSA-v9cw-p675-9qj4.json b/advisories/unreviewed/2022/05/GHSA-v9cw-p675-9qj4/GHSA-v9cw-p675-9qj4.json index f8e94ece565..5d639c9de8c 100644 --- a/advisories/unreviewed/2022/05/GHSA-v9cw-p675-9qj4/GHSA-v9cw-p675-9qj4.json +++ b/advisories/unreviewed/2022/05/GHSA-v9cw-p675-9qj4/GHSA-v9cw-p675-9qj4.json @@ -7,12 +7,8 @@ "CVE-2019-20670" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, and RBK50 before 2.3.5.30.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v9q6-943q-j6r8/GHSA-v9q6-943q-j6r8.json b/advisories/unreviewed/2022/05/GHSA-v9q6-943q-j6r8/GHSA-v9q6-943q-j6r8.json index acdef826d08..df12e957f87 100644 --- a/advisories/unreviewed/2022/05/GHSA-v9q6-943q-j6r8/GHSA-v9q6-943q-j6r8.json +++ b/advisories/unreviewed/2022/05/GHSA-v9q6-943q-j6r8/GHSA-v9q6-943q-j6r8.json @@ -7,12 +7,8 @@ "CVE-2020-6171" ], "details": "A cross-site scripting (XSS) vulnerability in the index page of the CLink Office 2.0 management console allows remote attackers to inject arbitrary web script or HTML via the lang parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vf35-57rw-pc4w/GHSA-vf35-57rw-pc4w.json b/advisories/unreviewed/2022/05/GHSA-vf35-57rw-pc4w/GHSA-vf35-57rw-pc4w.json index 58335051f89..13872e849e0 100644 --- a/advisories/unreviewed/2022/05/GHSA-vf35-57rw-pc4w/GHSA-vf35-57rw-pc4w.json +++ b/advisories/unreviewed/2022/05/GHSA-vf35-57rw-pc4w/GHSA-vf35-57rw-pc4w.json @@ -7,12 +7,8 @@ "CVE-2019-18376" ], "details": "A CSRF token disclosure vulnerability allows a remote attacker, with access to an authenticated Management Center (MC) user's web browser history or a network device that intercepts/logs traffic to MC, to obtain CSRF tokens and use them to perform CSRF attacks against MC.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vfx3-vc54-592p/GHSA-vfx3-vc54-592p.json b/advisories/unreviewed/2022/05/GHSA-vfx3-vc54-592p/GHSA-vfx3-vc54-592p.json index 76dde0aa0e4..469933aff08 100644 --- a/advisories/unreviewed/2022/05/GHSA-vfx3-vc54-592p/GHSA-vfx3-vc54-592p.json +++ b/advisories/unreviewed/2022/05/GHSA-vfx3-vc54-592p/GHSA-vfx3-vc54-592p.json @@ -7,12 +7,8 @@ "CVE-2020-1991" ], "details": "An insecure temporary file vulnerability in Palo Alto Networks Traps allows a local authenticated Windows user to escalate privileges or overwrite system files. This issue affects Palo Alto Networks Traps 5.0 versions before 5.0.8; 6.1 versions before 6.1.4 on Windows. This issue does not affect Cortex XDR 7.0. This issue does not affect Traps for Linux or MacOS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vg4r-hprg-qh9f/GHSA-vg4r-hprg-qh9f.json b/advisories/unreviewed/2022/05/GHSA-vg4r-hprg-qh9f/GHSA-vg4r-hprg-qh9f.json index 270e0642588..bc52479db27 100644 --- a/advisories/unreviewed/2022/05/GHSA-vg4r-hprg-qh9f/GHSA-vg4r-hprg-qh9f.json +++ b/advisories/unreviewed/2022/05/GHSA-vg4r-hprg-qh9f/GHSA-vg4r-hprg-qh9f.json @@ -7,12 +7,8 @@ "CVE-2020-2777" ], "details": "Vulnerability in the Hyperion Financial Management product of Oracle Hyperion (component: Security). The supported version that is affected is 11.1.2.4. Difficult to exploit vulnerability allows high privileged attacker with network access via HTTP to compromise Hyperion Financial Management. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Hyperion Financial Management accessible data. CVSS 3.0 Base Score 4.2 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:H/UI:R/S:U/C:N/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vgfh-838x-q4cm/GHSA-vgfh-838x-q4cm.json b/advisories/unreviewed/2022/05/GHSA-vgfh-838x-q4cm/GHSA-vgfh-838x-q4cm.json index 0b565cadad5..a910a17c027 100644 --- a/advisories/unreviewed/2022/05/GHSA-vgfh-838x-q4cm/GHSA-vgfh-838x-q4cm.json +++ b/advisories/unreviewed/2022/05/GHSA-vgfh-838x-q4cm/GHSA-vgfh-838x-q4cm.json @@ -7,12 +7,8 @@ "CVE-2020-11666" ], "details": "CA API Developer Portal 4.3.1 and earlier contains an access control flaw that allows malicious users to elevate privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vh33-p89x-mr5w/GHSA-vh33-p89x-mr5w.json b/advisories/unreviewed/2022/05/GHSA-vh33-p89x-mr5w/GHSA-vh33-p89x-mr5w.json index ff245dc3868..f4eb4d07047 100644 --- a/advisories/unreviewed/2022/05/GHSA-vh33-p89x-mr5w/GHSA-vh33-p89x-mr5w.json +++ b/advisories/unreviewed/2022/05/GHSA-vh33-p89x-mr5w/GHSA-vh33-p89x-mr5w.json @@ -7,12 +7,8 @@ "CVE-2020-11769" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.68, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0.0.78, RBR20 before 2.3.5.26, RBS20 before 2.3.5.26, RBK20 before 2.3.5.26, RBR40 before 2.3.5.30, RBS40 before 2.3.5.30, RBK40 before 2.3.5.30, RBK50 before 2.3.5.30, RBS50 before 2.3.5.30, RBK50 before 2.3.5.30, XR500 before 2.3.2.56, and XR700 before 1.0.1.10.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vh8j-vv7v-7h49/GHSA-vh8j-vv7v-7h49.json b/advisories/unreviewed/2022/05/GHSA-vh8j-vv7v-7h49/GHSA-vh8j-vv7v-7h49.json index 227bf1ae331..d8177f7745c 100644 --- a/advisories/unreviewed/2022/05/GHSA-vh8j-vv7v-7h49/GHSA-vh8j-vv7v-7h49.json +++ b/advisories/unreviewed/2022/05/GHSA-vh8j-vv7v-7h49/GHSA-vh8j-vv7v-7h49.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vhxm-8f77-76p2/GHSA-vhxm-8f77-76p2.json b/advisories/unreviewed/2022/05/GHSA-vhxm-8f77-76p2/GHSA-vhxm-8f77-76p2.json index 1e1a5285ffa..9d2a65b4c99 100644 --- a/advisories/unreviewed/2022/05/GHSA-vhxm-8f77-76p2/GHSA-vhxm-8f77-76p2.json +++ b/advisories/unreviewed/2022/05/GHSA-vhxm-8f77-76p2/GHSA-vhxm-8f77-76p2.json @@ -7,12 +7,8 @@ "CVE-2020-2765" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 5.7.29 and prior and 8.0.19 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vj59-q97j-4hgq/GHSA-vj59-q97j-4hgq.json b/advisories/unreviewed/2022/05/GHSA-vj59-q97j-4hgq/GHSA-vj59-q97j-4hgq.json index 17b49411bae..11735f689de 100644 --- a/advisories/unreviewed/2022/05/GHSA-vj59-q97j-4hgq/GHSA-vj59-q97j-4hgq.json +++ b/advisories/unreviewed/2022/05/GHSA-vj59-q97j-4hgq/GHSA-vj59-q97j-4hgq.json @@ -7,12 +7,8 @@ "CVE-2019-11480" ], "details": "The pc-kernel snap build process hardcoded the --allow-insecure-repositories and --allow-unauthenticated apt options when creating the build chroot environment. This could allow an attacker who is able to perform a MITM attack between the build environment and the Ubuntu archive to install a malicious package within the build chroot. This issue affects pc-kernel versions prior to and including 2019-07-16", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vppj-mhmw-vqvx/GHSA-vppj-mhmw-vqvx.json b/advisories/unreviewed/2022/05/GHSA-vppj-mhmw-vqvx/GHSA-vppj-mhmw-vqvx.json index 1e1c3549901..98b0589ddff 100644 --- a/advisories/unreviewed/2022/05/GHSA-vppj-mhmw-vqvx/GHSA-vppj-mhmw-vqvx.json +++ b/advisories/unreviewed/2022/05/GHSA-vppj-mhmw-vqvx/GHSA-vppj-mhmw-vqvx.json @@ -7,12 +7,8 @@ "CVE-2018-21089" ], "details": "An issue was discovered on Samsung mobile devices with N(7.x) (MT6755/MT6757 Mediatek models) software. Bootloader has an integer overflow that leads to arbitrary code execution via the download offset control. The Samsung ID is SVE-2017-10732 (January 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vppx-37x9-6f7c/GHSA-vppx-37x9-6f7c.json b/advisories/unreviewed/2022/05/GHSA-vppx-37x9-6f7c/GHSA-vppx-37x9-6f7c.json index 73879e2b915..12cd3683518 100644 --- a/advisories/unreviewed/2022/05/GHSA-vppx-37x9-6f7c/GHSA-vppx-37x9-6f7c.json +++ b/advisories/unreviewed/2022/05/GHSA-vppx-37x9-6f7c/GHSA-vppx-37x9-6f7c.json @@ -7,12 +7,8 @@ "CVE-2020-0982" ], "details": "An information disclosure vulnerability exists when the Microsoft Windows Graphics Component improperly handles objects in memory, aka 'Microsoft Graphics Component Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-0987, CVE-2020-1005.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vpq3-4hrc-jmrv/GHSA-vpq3-4hrc-jmrv.json b/advisories/unreviewed/2022/05/GHSA-vpq3-4hrc-jmrv/GHSA-vpq3-4hrc-jmrv.json index 0ebbde6808c..04ee6b7e4a6 100644 --- a/advisories/unreviewed/2022/05/GHSA-vpq3-4hrc-jmrv/GHSA-vpq3-4hrc-jmrv.json +++ b/advisories/unreviewed/2022/05/GHSA-vpq3-4hrc-jmrv/GHSA-vpq3-4hrc-jmrv.json @@ -7,12 +7,8 @@ "CVE-2018-21067" ], "details": "An issue was discovered on Samsung mobile devices with M(6.0) software. There is an information disclosure in a Trustlet because an address is logged. The Samsung ID is SVE-2018-11600 (July 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vr33-39v9-jw2c/GHSA-vr33-39v9-jw2c.json b/advisories/unreviewed/2022/05/GHSA-vr33-39v9-jw2c/GHSA-vr33-39v9-jw2c.json index 9f848ae207e..97fb007bfbf 100644 --- a/advisories/unreviewed/2022/05/GHSA-vr33-39v9-jw2c/GHSA-vr33-39v9-jw2c.json +++ b/advisories/unreviewed/2022/05/GHSA-vr33-39v9-jw2c/GHSA-vr33-39v9-jw2c.json @@ -7,12 +7,8 @@ "CVE-2020-5406" ], "details": "VMware Tanzu Application Service for VMs, 2.6.x versions prior to 2.6.18, 2.7.x versions prior to 2.7.11, and 2.8.x versions prior to 2.8.5, includes a version of PCF Autoscaling that writes database connection properties to its log, including database username and password. A malicious user with access to those logs may gain unauthorized access to the database being used by Autoscaling.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vrw6-4r4f-25fj/GHSA-vrw6-4r4f-25fj.json b/advisories/unreviewed/2022/05/GHSA-vrw6-4r4f-25fj/GHSA-vrw6-4r4f-25fj.json index 2ea1275f429..df286ae7bb0 100644 --- a/advisories/unreviewed/2022/05/GHSA-vrw6-4r4f-25fj/GHSA-vrw6-4r4f-25fj.json +++ b/advisories/unreviewed/2022/05/GHSA-vrw6-4r4f-25fj/GHSA-vrw6-4r4f-25fj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vv9m-mjhj-9cqc/GHSA-vv9m-mjhj-9cqc.json b/advisories/unreviewed/2022/05/GHSA-vv9m-mjhj-9cqc/GHSA-vv9m-mjhj-9cqc.json index e480b3cd65c..64cf97d4c0d 100644 --- a/advisories/unreviewed/2022/05/GHSA-vv9m-mjhj-9cqc/GHSA-vv9m-mjhj-9cqc.json +++ b/advisories/unreviewed/2022/05/GHSA-vv9m-mjhj-9cqc/GHSA-vv9m-mjhj-9cqc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vvh8-qfxp-mvjg/GHSA-vvh8-qfxp-mvjg.json b/advisories/unreviewed/2022/05/GHSA-vvh8-qfxp-mvjg/GHSA-vvh8-qfxp-mvjg.json index d4665517f17..225bcb48baa 100644 --- a/advisories/unreviewed/2022/05/GHSA-vvh8-qfxp-mvjg/GHSA-vvh8-qfxp-mvjg.json +++ b/advisories/unreviewed/2022/05/GHSA-vvh8-qfxp-mvjg/GHSA-vvh8-qfxp-mvjg.json @@ -7,12 +7,8 @@ "CVE-2020-2779" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.0.18 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vvv8-gqxx-xfvm/GHSA-vvv8-gqxx-xfvm.json b/advisories/unreviewed/2022/05/GHSA-vvv8-gqxx-xfvm/GHSA-vvv8-gqxx-xfvm.json index 198689c5677..427a62ef5c6 100644 --- a/advisories/unreviewed/2022/05/GHSA-vvv8-gqxx-xfvm/GHSA-vvv8-gqxx-xfvm.json +++ b/advisories/unreviewed/2022/05/GHSA-vvv8-gqxx-xfvm/GHSA-vvv8-gqxx-xfvm.json @@ -7,12 +7,8 @@ "CVE-2016-11049" ], "details": "An issue was discovered on Samsung mobile devices with software through 2016-01-16 (Shannon333/308/310 chipsets). The IMEI may be retrieved and modified because of an error in managing key information. The Samsung ID is SVE-2016-5435 (March 2016).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vw6f-gmr3-fq8h/GHSA-vw6f-gmr3-fq8h.json b/advisories/unreviewed/2022/05/GHSA-vw6f-gmr3-fq8h/GHSA-vw6f-gmr3-fq8h.json index 68e61f23ac5..efeb8ccb0a7 100644 --- a/advisories/unreviewed/2022/05/GHSA-vw6f-gmr3-fq8h/GHSA-vw6f-gmr3-fq8h.json +++ b/advisories/unreviewed/2022/05/GHSA-vw6f-gmr3-fq8h/GHSA-vw6f-gmr3-fq8h.json @@ -7,12 +7,8 @@ "CVE-2020-6974" ], "details": "Honeywell Notifier Web Server (NWS) Version 3.50 is vulnerable to a path traversal attack, which allows an attacker to bypass access to restricted directories. Honeywell has released a firmware update to address the problem.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vwhj-fp4c-7wv3/GHSA-vwhj-fp4c-7wv3.json b/advisories/unreviewed/2022/05/GHSA-vwhj-fp4c-7wv3/GHSA-vwhj-fp4c-7wv3.json index 8093dc1dad9..eca76db9b94 100644 --- a/advisories/unreviewed/2022/05/GHSA-vwhj-fp4c-7wv3/GHSA-vwhj-fp4c-7wv3.json +++ b/advisories/unreviewed/2022/05/GHSA-vwhj-fp4c-7wv3/GHSA-vwhj-fp4c-7wv3.json @@ -7,12 +7,8 @@ "CVE-2019-20674" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects RBR20 before 2.3.5.26, RBS20 before 2.3.5.26, RBK20 before 2.3.5.26, RBR40 before 2.3.5.30, RBS40 before 2.3.5.30, RBK40 before 2.3.5.30, RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, and RBK50 before 2.3.5.30.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vx52-c9mf-f5q6/GHSA-vx52-c9mf-f5q6.json b/advisories/unreviewed/2022/05/GHSA-vx52-c9mf-f5q6/GHSA-vx52-c9mf-f5q6.json index 13d6c073516..f2f2260b31e 100644 --- a/advisories/unreviewed/2022/05/GHSA-vx52-c9mf-f5q6/GHSA-vx52-c9mf-f5q6.json +++ b/advisories/unreviewed/2022/05/GHSA-vx52-c9mf-f5q6/GHSA-vx52-c9mf-f5q6.json @@ -7,12 +7,8 @@ "CVE-2020-0906" ], "details": "A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0979.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vxpm-v6xh-8vfw/GHSA-vxpm-v6xh-8vfw.json b/advisories/unreviewed/2022/05/GHSA-vxpm-v6xh-8vfw/GHSA-vxpm-v6xh-8vfw.json index 458a7951566..15cb6101df0 100644 --- a/advisories/unreviewed/2022/05/GHSA-vxpm-v6xh-8vfw/GHSA-vxpm-v6xh-8vfw.json +++ b/advisories/unreviewed/2022/05/GHSA-vxpm-v6xh-8vfw/GHSA-vxpm-v6xh-8vfw.json @@ -7,12 +7,8 @@ "CVE-2020-11774" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.68, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0.0.78, XR500 before 2.3.2.56, and XR700 before 1.0.1.10.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vxrw-6xvf-3r85/GHSA-vxrw-6xvf-3r85.json b/advisories/unreviewed/2022/05/GHSA-vxrw-6xvf-3r85/GHSA-vxrw-6xvf-3r85.json index 579867cba27..0320d5484c6 100644 --- a/advisories/unreviewed/2022/05/GHSA-vxrw-6xvf-3r85/GHSA-vxrw-6xvf-3r85.json +++ b/advisories/unreviewed/2022/05/GHSA-vxrw-6xvf-3r85/GHSA-vxrw-6xvf-3r85.json @@ -7,12 +7,8 @@ "CVE-2019-20639" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, and RBK50 before 2.3.5.30.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w24p-8cwh-f96x/GHSA-w24p-8cwh-f96x.json b/advisories/unreviewed/2022/05/GHSA-w24p-8cwh-f96x/GHSA-w24p-8cwh-f96x.json index 527cc09c8b1..5c20a6392bc 100644 --- a/advisories/unreviewed/2022/05/GHSA-w24p-8cwh-f96x/GHSA-w24p-8cwh-f96x.json +++ b/advisories/unreviewed/2022/05/GHSA-w24p-8cwh-f96x/GHSA-w24p-8cwh-f96x.json @@ -7,12 +7,8 @@ "CVE-2020-0959" ], "details": "A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0889, CVE-2020-0953, CVE-2020-0960, CVE-2020-0988, CVE-2020-0992, CVE-2020-0994, CVE-2020-0995, CVE-2020-0999, CVE-2020-1008.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w3mq-frrf-22p4/GHSA-w3mq-frrf-22p4.json b/advisories/unreviewed/2022/05/GHSA-w3mq-frrf-22p4/GHSA-w3mq-frrf-22p4.json index 88c90161def..5e2913e2f04 100644 --- a/advisories/unreviewed/2022/05/GHSA-w3mq-frrf-22p4/GHSA-w3mq-frrf-22p4.json +++ b/advisories/unreviewed/2022/05/GHSA-w3mq-frrf-22p4/GHSA-w3mq-frrf-22p4.json @@ -7,12 +7,8 @@ "CVE-2018-21088" ], "details": "An issue was discovered on Samsung mobile devices with N(7.x) software. An attacker can cause a reboot because InputMethodManagerService has an unprotected system service. The Samsung ID is SVE-2017-9995 (January 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w4pc-r3c5-5jj9/GHSA-w4pc-r3c5-5jj9.json b/advisories/unreviewed/2022/05/GHSA-w4pc-r3c5-5jj9/GHSA-w4pc-r3c5-5jj9.json index 2c9d59f9c2c..52232e15744 100644 --- a/advisories/unreviewed/2022/05/GHSA-w4pc-r3c5-5jj9/GHSA-w4pc-r3c5-5jj9.json +++ b/advisories/unreviewed/2022/05/GHSA-w4pc-r3c5-5jj9/GHSA-w4pc-r3c5-5jj9.json @@ -7,12 +7,8 @@ "CVE-2018-21062" ], "details": "An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. When biometric authentication is disabled, an attacker can view Streams content (e.g., a Gallery slideshow) of a locked Secure Folder via a connection to an external device. The Samsung ID is SVE-2018-11766 (August 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w4xx-xqf9-56fg/GHSA-w4xx-xqf9-56fg.json b/advisories/unreviewed/2022/05/GHSA-w4xx-xqf9-56fg/GHSA-w4xx-xqf9-56fg.json index 5579b31bc5d..cbdb319d18d 100644 --- a/advisories/unreviewed/2022/05/GHSA-w4xx-xqf9-56fg/GHSA-w4xx-xqf9-56fg.json +++ b/advisories/unreviewed/2022/05/GHSA-w4xx-xqf9-56fg/GHSA-w4xx-xqf9-56fg.json @@ -7,12 +7,8 @@ "CVE-2016-11036" ], "details": "An issue was discovered on Samsung mobile devices with M(6.0) software. There is a Factory Reset Protection (FRP) bypass. The Samsung ID is SVE-2016-6008 (August 2016).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w525-rw9x-grpj/GHSA-w525-rw9x-grpj.json b/advisories/unreviewed/2022/05/GHSA-w525-rw9x-grpj/GHSA-w525-rw9x-grpj.json index c5874b4e421..955704afdf0 100644 --- a/advisories/unreviewed/2022/05/GHSA-w525-rw9x-grpj/GHSA-w525-rw9x-grpj.json +++ b/advisories/unreviewed/2022/05/GHSA-w525-rw9x-grpj/GHSA-w525-rw9x-grpj.json @@ -7,12 +7,8 @@ "CVE-2016-11043" ], "details": "An issue was discovered on Samsung mobile devices with M(6.0) software. The S/MIME implementation in EAS uses DES (where 3DES is intended). The Samsung ID is SVE-2016-5871 (June 2016).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w7q8-qc34-m52m/GHSA-w7q8-qc34-m52m.json b/advisories/unreviewed/2022/05/GHSA-w7q8-qc34-m52m/GHSA-w7q8-qc34-m52m.json index 7f488075a78..3f1e031e133 100644 --- a/advisories/unreviewed/2022/05/GHSA-w7q8-qc34-m52m/GHSA-w7q8-qc34-m52m.json +++ b/advisories/unreviewed/2022/05/GHSA-w7q8-qc34-m52m/GHSA-w7q8-qc34-m52m.json @@ -7,12 +7,8 @@ "CVE-2018-21075" ], "details": "An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. The Call+ application can load classes from an unintended path, leading to Code Execution. The Samsung ID is SVE-2017-10886 (April 2018).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w8cc-vhgq-g8fg/GHSA-w8cc-vhgq-g8fg.json b/advisories/unreviewed/2022/05/GHSA-w8cc-vhgq-g8fg/GHSA-w8cc-vhgq-g8fg.json index 0aa24a8099a..888c28f00b5 100644 --- a/advisories/unreviewed/2022/05/GHSA-w8cc-vhgq-g8fg/GHSA-w8cc-vhgq-g8fg.json +++ b/advisories/unreviewed/2022/05/GHSA-w8cc-vhgq-g8fg/GHSA-w8cc-vhgq-g8fg.json @@ -7,12 +7,8 @@ "CVE-2020-2769" ], "details": "Vulnerability in the Hyperion Financial Reporting product of Oracle Hyperion (component: Web Based Report Designer). The supported version that is affected is 11.1.2.4. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Hyperion Financial Reporting. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Hyperion Financial Reporting accessible data. CVSS 3.0 Base Score 2.4 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:R/S:U/C:L/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w8xx-jh7q-6xj6/GHSA-w8xx-jh7q-6xj6.json b/advisories/unreviewed/2022/05/GHSA-w8xx-jh7q-6xj6/GHSA-w8xx-jh7q-6xj6.json index edf6e979811..683b115ca34 100644 --- a/advisories/unreviewed/2022/05/GHSA-w8xx-jh7q-6xj6/GHSA-w8xx-jh7q-6xj6.json +++ b/advisories/unreviewed/2022/05/GHSA-w8xx-jh7q-6xj6/GHSA-w8xx-jh7q-6xj6.json @@ -7,12 +7,8 @@ "CVE-2020-11659" ], "details": "CA API Developer Portal 4.3.1 and earlier contains an access control flaw that allows privileged users to perform a restricted user administration action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wc34-c3wp-3988/GHSA-wc34-c3wp-3988.json b/advisories/unreviewed/2022/05/GHSA-wc34-c3wp-3988/GHSA-wc34-c3wp-3988.json index 8b0310ad06a..741f37ff3c7 100644 --- a/advisories/unreviewed/2022/05/GHSA-wc34-c3wp-3988/GHSA-wc34-c3wp-3988.json +++ b/advisories/unreviewed/2022/05/GHSA-wc34-c3wp-3988/GHSA-wc34-c3wp-3988.json @@ -7,12 +7,8 @@ "CVE-2020-9500" ], "details": "Some products of Dahua have Denial of Service vulnerabilities. After the successful login of the legal account, the attacker sends a specific log query command, which may cause the device to go down.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wcrh-mmxh-q8wp/GHSA-wcrh-mmxh-q8wp.json b/advisories/unreviewed/2022/05/GHSA-wcrh-mmxh-q8wp/GHSA-wcrh-mmxh-q8wp.json index 3ceb3adf46b..95db740581e 100644 --- a/advisories/unreviewed/2022/05/GHSA-wcrh-mmxh-q8wp/GHSA-wcrh-mmxh-q8wp.json +++ b/advisories/unreviewed/2022/05/GHSA-wcrh-mmxh-q8wp/GHSA-wcrh-mmxh-q8wp.json @@ -7,12 +7,8 @@ "CVE-2020-11601" ], "details": "An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) software. There is unauthorized access to applications in the Secure Folder via floating icons. The Samsung ID is SVE-2019-16195 (April 2020).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wg3c-qwfq-8wfv/GHSA-wg3c-qwfq-8wfv.json b/advisories/unreviewed/2022/05/GHSA-wg3c-qwfq-8wfv/GHSA-wg3c-qwfq-8wfv.json index 0dbb1e51cfb..86df62779f6 100644 --- a/advisories/unreviewed/2022/05/GHSA-wg3c-qwfq-8wfv/GHSA-wg3c-qwfq-8wfv.json +++ b/advisories/unreviewed/2022/05/GHSA-wg3c-qwfq-8wfv/GHSA-wg3c-qwfq-8wfv.json @@ -7,12 +7,8 @@ "CVE-2020-0920" ], "details": "A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package, aka 'Microsoft SharePoint Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0929, CVE-2020-0931, CVE-2020-0932, CVE-2020-0971, CVE-2020-0974.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wg7f-ghjr-82ww/GHSA-wg7f-ghjr-82ww.json b/advisories/unreviewed/2022/05/GHSA-wg7f-ghjr-82ww/GHSA-wg7f-ghjr-82ww.json index cb3168edfb6..e32c9e845bc 100644 --- a/advisories/unreviewed/2022/05/GHSA-wg7f-ghjr-82ww/GHSA-wg7f-ghjr-82ww.json +++ b/advisories/unreviewed/2022/05/GHSA-wg7f-ghjr-82ww/GHSA-wg7f-ghjr-82ww.json @@ -7,12 +7,8 @@ "CVE-2020-0578" ], "details": "Improper conditions check for Intel(R) Modular Server MFS2600KISPP Compute Module may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wh87-hp9m-h694/GHSA-wh87-hp9m-h694.json b/advisories/unreviewed/2022/05/GHSA-wh87-hp9m-h694/GHSA-wh87-hp9m-h694.json index dfe9b130ce2..444bd9fc4a1 100644 --- a/advisories/unreviewed/2022/05/GHSA-wh87-hp9m-h694/GHSA-wh87-hp9m-h694.json +++ b/advisories/unreviewed/2022/05/GHSA-wh87-hp9m-h694/GHSA-wh87-hp9m-h694.json @@ -7,12 +7,8 @@ "CVE-2020-2739" ], "details": "Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion Middleware (component: Advanced UI). The supported version that is affected is 12.2.1.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebCenter Sites. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle WebCenter Sites, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle WebCenter Sites accessible data. CVSS 3.0 Base Score 7.4 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-whgf-v8g5-7cgx/GHSA-whgf-v8g5-7cgx.json b/advisories/unreviewed/2022/05/GHSA-whgf-v8g5-7cgx/GHSA-whgf-v8g5-7cgx.json index 717a912cbbe..596fd4f9190 100644 --- a/advisories/unreviewed/2022/05/GHSA-whgf-v8g5-7cgx/GHSA-whgf-v8g5-7cgx.json +++ b/advisories/unreviewed/2022/05/GHSA-whgf-v8g5-7cgx/GHSA-whgf-v8g5-7cgx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-whw2-mwc3-hmmg/GHSA-whw2-mwc3-hmmg.json b/advisories/unreviewed/2022/05/GHSA-whw2-mwc3-hmmg/GHSA-whw2-mwc3-hmmg.json index 522e32f3d1a..6a19ead69bd 100644 --- a/advisories/unreviewed/2022/05/GHSA-whw2-mwc3-hmmg/GHSA-whw2-mwc3-hmmg.json +++ b/advisories/unreviewed/2022/05/GHSA-whw2-mwc3-hmmg/GHSA-whw2-mwc3-hmmg.json @@ -7,12 +7,8 @@ "CVE-2020-3126" ], "details": "vulnerability within the Multimedia Viewer feature of Cisco Webex Meetings could allow an authenticated, remote attacker to bypass security protections. The vulnerability is due to missing security warning dialog boxes when a room host views shared multimedia files. An authenticated, remote attacker could exploit this vulnerability by using the host role to share files within the Multimedia sharing feature and convincing a former room host to view that file. A warning dialog normally appears cautioning users before the file is displayed; however, the former host would not see that warning dialog, and any shared multimedia would be rendered within the user's browser. The attacker could leverage this behavior to conduct additional attacks by including malicious files within a targeted room host's browser window.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-whx2-789x-9855/GHSA-whx2-789x-9855.json b/advisories/unreviewed/2022/05/GHSA-whx2-789x-9855/GHSA-whx2-789x-9855.json index 506399c4d94..ad95f93f64d 100644 --- a/advisories/unreviewed/2022/05/GHSA-whx2-789x-9855/GHSA-whx2-789x-9855.json +++ b/advisories/unreviewed/2022/05/GHSA-whx2-789x-9855/GHSA-whx2-789x-9855.json @@ -7,12 +7,8 @@ "CVE-2019-20678" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects RBR20 before 2.3.5.26, RBS20 before 2.3.5.26, RBK20 before 2.3.5.26, RBR40 before 2.3.5.30, RBS40 before 2.3.5.30, RBK40 before 2.3.5.30, RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, and RBK50 before 2.3.5.30.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-whxf-qxrc-7wr6/GHSA-whxf-qxrc-7wr6.json b/advisories/unreviewed/2022/05/GHSA-whxf-qxrc-7wr6/GHSA-whxf-qxrc-7wr6.json index dbcb26b3c7f..724908f6832 100644 --- a/advisories/unreviewed/2022/05/GHSA-whxf-qxrc-7wr6/GHSA-whxf-qxrc-7wr6.json +++ b/advisories/unreviewed/2022/05/GHSA-whxf-qxrc-7wr6/GHSA-whxf-qxrc-7wr6.json @@ -7,12 +7,8 @@ "CVE-2020-0926" ], "details": "A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft Office SharePoint XSS Vulnerability'. This CVE ID is unique from CVE-2020-0923, CVE-2020-0924, CVE-2020-0925, CVE-2020-0927, CVE-2020-0930, CVE-2020-0933, CVE-2020-0954, CVE-2020-0973, CVE-2020-0978.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wjv4-hrhp-xqqp/GHSA-wjv4-hrhp-xqqp.json b/advisories/unreviewed/2022/05/GHSA-wjv4-hrhp-xqqp/GHSA-wjv4-hrhp-xqqp.json index a2b954d72dc..59b56f63b14 100644 --- a/advisories/unreviewed/2022/05/GHSA-wjv4-hrhp-xqqp/GHSA-wjv4-hrhp-xqqp.json +++ b/advisories/unreviewed/2022/05/GHSA-wjv4-hrhp-xqqp/GHSA-wjv4-hrhp-xqqp.json @@ -7,12 +7,8 @@ "CVE-2020-9056" ], "details": "Periscope BuySpeed version 14.5 is vulnerable to stored cross-site scripting, which could allow a local, authenticated attacker to store arbitrary JavaScript within the application. This JavaScript is subsequently displayed by the application without sanitization and is executed in the browser of the user, which could possibly cause website redirection, session hijacking, or information disclosure. This vulnerability has been patched in BuySpeed version 15.3.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wm93-rhmf-57v6/GHSA-wm93-rhmf-57v6.json b/advisories/unreviewed/2022/05/GHSA-wm93-rhmf-57v6/GHSA-wm93-rhmf-57v6.json index 7674ff60dd7..09d1ff94cab 100644 --- a/advisories/unreviewed/2022/05/GHSA-wm93-rhmf-57v6/GHSA-wm93-rhmf-57v6.json +++ b/advisories/unreviewed/2022/05/GHSA-wm93-rhmf-57v6/GHSA-wm93-rhmf-57v6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wmrm-97c9-hf46/GHSA-wmrm-97c9-hf46.json b/advisories/unreviewed/2022/05/GHSA-wmrm-97c9-hf46/GHSA-wmrm-97c9-hf46.json index ca1829d359b..70438571440 100644 --- a/advisories/unreviewed/2022/05/GHSA-wmrm-97c9-hf46/GHSA-wmrm-97c9-hf46.json +++ b/advisories/unreviewed/2022/05/GHSA-wmrm-97c9-hf46/GHSA-wmrm-97c9-hf46.json @@ -7,12 +7,8 @@ "CVE-2020-5734" ], "details": "Classic buffer overflow in SolarWinds Dameware allows a remote, unauthenticated attacker to cause a denial of service by sending a large 'SigPubkeyLen' during ECDH key exchange.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wp4p-8jxr-w4gm/GHSA-wp4p-8jxr-w4gm.json b/advisories/unreviewed/2022/05/GHSA-wp4p-8jxr-w4gm/GHSA-wp4p-8jxr-w4gm.json index 19b99642b02..dc729b17b61 100644 --- a/advisories/unreviewed/2022/05/GHSA-wp4p-8jxr-w4gm/GHSA-wp4p-8jxr-w4gm.json +++ b/advisories/unreviewed/2022/05/GHSA-wp4p-8jxr-w4gm/GHSA-wp4p-8jxr-w4gm.json @@ -7,12 +7,8 @@ "CVE-2019-20661" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, and RBK50 before 2.3.5.30.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wpmh-wc89-xwhj/GHSA-wpmh-wc89-xwhj.json b/advisories/unreviewed/2022/05/GHSA-wpmh-wc89-xwhj/GHSA-wpmh-wc89-xwhj.json index afcc9ea9df8..23423907dec 100644 --- a/advisories/unreviewed/2022/05/GHSA-wpmh-wc89-xwhj/GHSA-wpmh-wc89-xwhj.json +++ b/advisories/unreviewed/2022/05/GHSA-wpmh-wc89-xwhj/GHSA-wpmh-wc89-xwhj.json @@ -7,12 +7,8 @@ "CVE-2020-10619" ], "details": "An attacker could use a specially crafted URL to delete files outside the WebAccess/NMS's (versions prior to 3.0.2) control.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wpp3-vg2f-qcmr/GHSA-wpp3-vg2f-qcmr.json b/advisories/unreviewed/2022/05/GHSA-wpp3-vg2f-qcmr/GHSA-wpp3-vg2f-qcmr.json index 49f86a70793..c3f26ed0d04 100644 --- a/advisories/unreviewed/2022/05/GHSA-wpp3-vg2f-qcmr/GHSA-wpp3-vg2f-qcmr.json +++ b/advisories/unreviewed/2022/05/GHSA-wpp3-vg2f-qcmr/GHSA-wpp3-vg2f-qcmr.json @@ -7,12 +7,8 @@ "CVE-2016-11046" ], "details": "An issue was discovered on Samsung mobile devices with JBP(4.3), KK(4.4), and L(5.0/5.1) software. Because of a misused whitelist, attackers can reach the radio layer (aka RIL or RILD) to place calls or send SMS messages. The Samsung ID is SVE-2016-5733 (May 2016).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wrp6-f6w5-8wjj/GHSA-wrp6-f6w5-8wjj.json b/advisories/unreviewed/2022/05/GHSA-wrp6-f6w5-8wjj/GHSA-wrp6-f6w5-8wjj.json index dd82a5646ba..f57a6691d0e 100644 --- a/advisories/unreviewed/2022/05/GHSA-wrp6-f6w5-8wjj/GHSA-wrp6-f6w5-8wjj.json +++ b/advisories/unreviewed/2022/05/GHSA-wrp6-f6w5-8wjj/GHSA-wrp6-f6w5-8wjj.json @@ -7,12 +7,8 @@ "CVE-2020-2514" ], "details": "Vulnerability in the Oracle Application Express component of Oracle Database Server. The supported version that is affected is Prior to 19.2. Easily exploitable vulnerability allows low privileged attacker having End User Role privilege with network access via HTTPS to compromise Oracle Application Express. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Application Express accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Application Express. CVSS 3.0 Base Score 4.6 (Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:L).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wv24-prxc-9hvw/GHSA-wv24-prxc-9hvw.json b/advisories/unreviewed/2022/05/GHSA-wv24-prxc-9hvw/GHSA-wv24-prxc-9hvw.json index fe12bbea117..188c6f740d9 100644 --- a/advisories/unreviewed/2022/05/GHSA-wv24-prxc-9hvw/GHSA-wv24-prxc-9hvw.json +++ b/advisories/unreviewed/2022/05/GHSA-wv24-prxc-9hvw/GHSA-wv24-prxc-9hvw.json @@ -7,12 +7,8 @@ "CVE-2020-0964" ], "details": "A remote code execution vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in the memory, aka 'GDI+ Remote Code Execution Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wv2g-4whx-qhw3/GHSA-wv2g-4whx-qhw3.json b/advisories/unreviewed/2022/05/GHSA-wv2g-4whx-qhw3/GHSA-wv2g-4whx-qhw3.json index cae0fd068d9..e85bf4426a3 100644 --- a/advisories/unreviewed/2022/05/GHSA-wv2g-4whx-qhw3/GHSA-wv2g-4whx-qhw3.json +++ b/advisories/unreviewed/2022/05/GHSA-wv2g-4whx-qhw3/GHSA-wv2g-4whx-qhw3.json @@ -7,12 +7,8 @@ "CVE-2019-20677" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, and RBK50 before 2.3.5.30.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ww7q-836v-jvv4/GHSA-ww7q-836v-jvv4.json b/advisories/unreviewed/2022/05/GHSA-ww7q-836v-jvv4/GHSA-ww7q-836v-jvv4.json index 59be32eaf93..ee5f9481564 100644 --- a/advisories/unreviewed/2022/05/GHSA-ww7q-836v-jvv4/GHSA-ww7q-836v-jvv4.json +++ b/advisories/unreviewed/2022/05/GHSA-ww7q-836v-jvv4/GHSA-ww7q-836v-jvv4.json @@ -7,12 +7,8 @@ "CVE-2020-6222" ], "details": "SAP Business Objects Business Intelligence Platform (Web Intelligence HTML interface), versions 4.1, 4.2, does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wwv6-9vqw-fwxx/GHSA-wwv6-9vqw-fwxx.json b/advisories/unreviewed/2022/05/GHSA-wwv6-9vqw-fwxx/GHSA-wwv6-9vqw-fwxx.json index 106af4a6dc3..a8cb5cee0b5 100644 --- a/advisories/unreviewed/2022/05/GHSA-wwv6-9vqw-fwxx/GHSA-wwv6-9vqw-fwxx.json +++ b/advisories/unreviewed/2022/05/GHSA-wwv6-9vqw-fwxx/GHSA-wwv6-9vqw-fwxx.json @@ -7,12 +7,8 @@ "CVE-2019-12524" ], "details": "An issue was discovered in Squid through 4.7. When handling requests from users, Squid checks its rules to see if the request should be denied. Squid by default comes with rules to block access to the Cache Manager, which serves detailed server information meant for the maintainer. This rule is implemented via url_regex. The handler for url_regex rules URL decodes an incoming request. This allows an attacker to encode their URL to bypass the url_regex check, and gain access to the blocked resource.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x224-39vw-8rh7/GHSA-x224-39vw-8rh7.json b/advisories/unreviewed/2022/05/GHSA-x224-39vw-8rh7/GHSA-x224-39vw-8rh7.json index 9bad47f7ae2..41ca980348b 100644 --- a/advisories/unreviewed/2022/05/GHSA-x224-39vw-8rh7/GHSA-x224-39vw-8rh7.json +++ b/advisories/unreviewed/2022/05/GHSA-x224-39vw-8rh7/GHSA-x224-39vw-8rh7.json @@ -7,12 +7,8 @@ "CVE-2020-7575" ], "details": "A vulnerability has been identified in Climatix POL908 (BACnet/IP module) (All versions), Climatix POL909 (AWM module) (All versions). A persistent cross-site scripting (XSS) vulnerability exists in the web server access log page of the affected devices that could allow an attacker to inject arbitrary JavaScript code via specially crafted GET requests. The code could be potentially executed later by another (privileged) user. The security vulnerability could be exploited by an attacker with network access to the affected system. Successful exploitation requires no system privileges. An attacker could use the vulnerability to compromise the confidentiality and integrity of other users' web sessions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x2v5-p27f-53wp/GHSA-x2v5-p27f-53wp.json b/advisories/unreviewed/2022/05/GHSA-x2v5-p27f-53wp/GHSA-x2v5-p27f-53wp.json index 68df7254dc1..69f3fa9ebd5 100644 --- a/advisories/unreviewed/2022/05/GHSA-x2v5-p27f-53wp/GHSA-x2v5-p27f-53wp.json +++ b/advisories/unreviewed/2022/05/GHSA-x2v5-p27f-53wp/GHSA-x2v5-p27f-53wp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x3ph-r68g-gghq/GHSA-x3ph-r68g-gghq.json b/advisories/unreviewed/2022/05/GHSA-x3ph-r68g-gghq/GHSA-x3ph-r68g-gghq.json index 150b4dbc570..fc1b2e6f088 100644 --- a/advisories/unreviewed/2022/05/GHSA-x3ph-r68g-gghq/GHSA-x3ph-r68g-gghq.json +++ b/advisories/unreviewed/2022/05/GHSA-x3ph-r68g-gghq/GHSA-x3ph-r68g-gghq.json @@ -7,12 +7,8 @@ "CVE-2020-1987" ], "details": "An information exposure vulnerability in the logging component of Palo Alto Networks Global Protect Agent allows a local authenticated user to read VPN cookie information when the troubleshooting logging level is set to \"Dump\". This issue affects Palo Alto Networks Global Protect Agent 5.0 versions prior to 5.0.9; 5.1 versions prior to 5.1.1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x3q9-8683-qvcm/GHSA-x3q9-8683-qvcm.json b/advisories/unreviewed/2022/05/GHSA-x3q9-8683-qvcm/GHSA-x3q9-8683-qvcm.json index 33b9f808f6d..282e4b51ece 100644 --- a/advisories/unreviewed/2022/05/GHSA-x3q9-8683-qvcm/GHSA-x3q9-8683-qvcm.json +++ b/advisories/unreviewed/2022/05/GHSA-x3q9-8683-qvcm/GHSA-x3q9-8683-qvcm.json @@ -7,12 +7,8 @@ "CVE-2019-20650" ], "details": "Certain NETGEAR devices are affected by denial of service. This affects R8900 before 1.0.5.2, R9000 before 1.0.5.2, XR500 before 2.3.2.56, and XR700 before 1.0.1.20.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x4x2-c76r-w3xx/GHSA-x4x2-c76r-w3xx.json b/advisories/unreviewed/2022/05/GHSA-x4x2-c76r-w3xx/GHSA-x4x2-c76r-w3xx.json index d6536c3dba6..ee6bbbb1e3e 100644 --- a/advisories/unreviewed/2022/05/GHSA-x4x2-c76r-w3xx/GHSA-x4x2-c76r-w3xx.json +++ b/advisories/unreviewed/2022/05/GHSA-x4x2-c76r-w3xx/GHSA-x4x2-c76r-w3xx.json @@ -7,12 +7,8 @@ "CVE-2019-20660" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects RBR20 before 2.3.5.26, RBS20 before 2.3.5.26, RBK20 before 2.3.5.26, RBR40 before 2.3.5.30, RBS40 before 2.3.5.30, RBK40 before 2.3.5.30, RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, and RBK50 before 2.3.5.30.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x5pm-xqw2-5256/GHSA-x5pm-xqw2-5256.json b/advisories/unreviewed/2022/05/GHSA-x5pm-xqw2-5256/GHSA-x5pm-xqw2-5256.json index 0cf28d895d4..f5ffbd703cd 100644 --- a/advisories/unreviewed/2022/05/GHSA-x5pm-xqw2-5256/GHSA-x5pm-xqw2-5256.json +++ b/advisories/unreviewed/2022/05/GHSA-x5pm-xqw2-5256/GHSA-x5pm-xqw2-5256.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x7mm-6r2x-9w7p/GHSA-x7mm-6r2x-9w7p.json b/advisories/unreviewed/2022/05/GHSA-x7mm-6r2x-9w7p/GHSA-x7mm-6r2x-9w7p.json index 2d3f9486ba2..00986cc3b62 100644 --- a/advisories/unreviewed/2022/05/GHSA-x7mm-6r2x-9w7p/GHSA-x7mm-6r2x-9w7p.json +++ b/advisories/unreviewed/2022/05/GHSA-x7mm-6r2x-9w7p/GHSA-x7mm-6r2x-9w7p.json @@ -7,12 +7,8 @@ "CVE-2019-20680" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D7000v2 before 1.0.0.53, R6220 before 1.1.0.80, R6260 before 1.1.0.64, R6700 before 1.0.2.6, R6700v2 before 1.2.0.36, R6800 before 1.2.0.36, R6900 before 1.0.2.4, R6900P before 1.3.1.64, R6900v2 before 1.2.0.36, R7000 before 1.0.9.60, R7000P before 1.3.1.64, R7800 before 1.0.2.60, R7900 before 1.0.3.8, R7900P before 1.4.1.30, R8000 before 1.0.4.46, R8000P before 1.4.1.30, R8300 before 1.0.2.128, R8500 before 1.0.2.128, R8900 before 1.0.4.12, R9000 before 1.0.4.12, and XR500 before 2.3.2.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x84c-7gqw-8475/GHSA-x84c-7gqw-8475.json b/advisories/unreviewed/2022/05/GHSA-x84c-7gqw-8475/GHSA-x84c-7gqw-8475.json index 68de58561d2..0917a00caa8 100644 --- a/advisories/unreviewed/2022/05/GHSA-x84c-7gqw-8475/GHSA-x84c-7gqw-8475.json +++ b/advisories/unreviewed/2022/05/GHSA-x84c-7gqw-8475/GHSA-x84c-7gqw-8475.json @@ -7,12 +7,8 @@ "CVE-2020-10978" ], "details": "GitLab EE/CE 8.11 to 12.9 is leaking information on Issues opened in a public project and then moved to a private project through Web-UI and GraphQL API.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x88q-cqfj-5v26/GHSA-x88q-cqfj-5v26.json b/advisories/unreviewed/2022/05/GHSA-x88q-cqfj-5v26/GHSA-x88q-cqfj-5v26.json index a101dde997f..9af233201bf 100644 --- a/advisories/unreviewed/2022/05/GHSA-x88q-cqfj-5v26/GHSA-x88q-cqfj-5v26.json +++ b/advisories/unreviewed/2022/05/GHSA-x88q-cqfj-5v26/GHSA-x88q-cqfj-5v26.json @@ -7,12 +7,8 @@ "CVE-2020-4291" ], "details": "IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, 1.0.2, 1.0.3, 1.0.4, and 1.0.5 could disclose sensitive information to an unauthorized user due to insufficient timeout functionality in the Web UI. IBM X-Force ID: 176334.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xf6p-w8xr-f966/GHSA-xf6p-w8xr-f966.json b/advisories/unreviewed/2022/05/GHSA-xf6p-w8xr-f966/GHSA-xf6p-w8xr-f966.json index 310b7bdf459..382cb03d05c 100644 --- a/advisories/unreviewed/2022/05/GHSA-xf6p-w8xr-f966/GHSA-xf6p-w8xr-f966.json +++ b/advisories/unreviewed/2022/05/GHSA-xf6p-w8xr-f966/GHSA-xf6p-w8xr-f966.json @@ -7,12 +7,8 @@ "CVE-2020-11534" ], "details": "An issue was discovered in ONLYOFFICE Document Server 5.5.0. An attacker can craft a malicious .docx file, and exploit the NSFileDownloader function to pass parameters to a binary (such as curl or wget) and remotely execute code on a victim's server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xg29-j3mm-wv9c/GHSA-xg29-j3mm-wv9c.json b/advisories/unreviewed/2022/05/GHSA-xg29-j3mm-wv9c/GHSA-xg29-j3mm-wv9c.json index 587d9859d07..372687d8027 100644 --- a/advisories/unreviewed/2022/05/GHSA-xg29-j3mm-wv9c/GHSA-xg29-j3mm-wv9c.json +++ b/advisories/unreviewed/2022/05/GHSA-xg29-j3mm-wv9c/GHSA-xg29-j3mm-wv9c.json @@ -7,12 +7,8 @@ "CVE-2020-11791" ], "details": "NETGEAR JGS516PE devices before 2.6.0.43 are affected by reflected XSS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xh47-8887-mw3h/GHSA-xh47-8887-mw3h.json b/advisories/unreviewed/2022/05/GHSA-xh47-8887-mw3h/GHSA-xh47-8887-mw3h.json index 8fb5ac37bee..1d81d93fc26 100644 --- a/advisories/unreviewed/2022/05/GHSA-xh47-8887-mw3h/GHSA-xh47-8887-mw3h.json +++ b/advisories/unreviewed/2022/05/GHSA-xh47-8887-mw3h/GHSA-xh47-8887-mw3h.json @@ -7,12 +7,8 @@ "CVE-2019-16879" ], "details": "The Synergy Systems & Solutions (SSS) HUSKY RTU 6049-E70, with firmware Versions 5.0 and prior, has a Missing Authentication for Critical Function (CWE-306) vulnerability. The affected product does not require authentication for TELNET access, which may allow an attacker to change configuration or perform other malicious activities.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xhqj-38h6-899j/GHSA-xhqj-38h6-899j.json b/advisories/unreviewed/2022/05/GHSA-xhqj-38h6-899j/GHSA-xhqj-38h6-899j.json index 098c0e50a3b..7b96a271cc4 100644 --- a/advisories/unreviewed/2022/05/GHSA-xhqj-38h6-899j/GHSA-xhqj-38h6-899j.json +++ b/advisories/unreviewed/2022/05/GHSA-xhqj-38h6-899j/GHSA-xhqj-38h6-899j.json @@ -7,12 +7,8 @@ "CVE-2020-0949" ], "details": "A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in memory, aka 'Media Foundation Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2020-0948, CVE-2020-0950.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xj4c-3fvq-w5pg/GHSA-xj4c-3fvq-w5pg.json b/advisories/unreviewed/2022/05/GHSA-xj4c-3fvq-w5pg/GHSA-xj4c-3fvq-w5pg.json index 51c6b0ab805..6656f06ae89 100644 --- a/advisories/unreviewed/2022/05/GHSA-xj4c-3fvq-w5pg/GHSA-xj4c-3fvq-w5pg.json +++ b/advisories/unreviewed/2022/05/GHSA-xj4c-3fvq-w5pg/GHSA-xj4c-3fvq-w5pg.json @@ -7,12 +7,8 @@ "CVE-2016-11028" ], "details": "An issue was discovered on Samsung mobile devices with software through 2016-09-13 (Exynos AP chipsets). There is a stack-based buffer overflow in the OTP TrustZone trustlet. The Samsung IDs are SVE-2016-7173 and SVE-2016-7174 (December 2016).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xjj6-hgq2-689x/GHSA-xjj6-hgq2-689x.json b/advisories/unreviewed/2022/05/GHSA-xjj6-hgq2-689x/GHSA-xjj6-hgq2-689x.json index c91b65f8dc9..a8e9c2a17c1 100644 --- a/advisories/unreviewed/2022/05/GHSA-xjj6-hgq2-689x/GHSA-xjj6-hgq2-689x.json +++ b/advisories/unreviewed/2022/05/GHSA-xjj6-hgq2-689x/GHSA-xjj6-hgq2-689x.json @@ -7,12 +7,8 @@ "CVE-2020-11543" ], "details": "OpsRamp Gateway 3.0.0 has a backdoor account vadmin with the password 9vt@f3Vt that allows root SSH access to the server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xp5w-pqp4-4mxr/GHSA-xp5w-pqp4-4mxr.json b/advisories/unreviewed/2022/05/GHSA-xp5w-pqp4-4mxr/GHSA-xp5w-pqp4-4mxr.json index a9d2526fb89..1da7a196922 100644 --- a/advisories/unreviewed/2022/05/GHSA-xp5w-pqp4-4mxr/GHSA-xp5w-pqp4-4mxr.json +++ b/advisories/unreviewed/2022/05/GHSA-xp5w-pqp4-4mxr/GHSA-xp5w-pqp4-4mxr.json @@ -7,12 +7,8 @@ "CVE-2019-20649" ], "details": "NETGEAR MR1100 devices before 12.06.08.00 are affected by disclosure of sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xqc2-qqq8-xfj5/GHSA-xqc2-qqq8-xfj5.json b/advisories/unreviewed/2022/05/GHSA-xqc2-qqq8-xfj5/GHSA-xqc2-qqq8-xfj5.json index 48dac629d3d..b83431c3eb4 100644 --- a/advisories/unreviewed/2022/05/GHSA-xqc2-qqq8-xfj5/GHSA-xqc2-qqq8-xfj5.json +++ b/advisories/unreviewed/2022/05/GHSA-xqc2-qqq8-xfj5/GHSA-xqc2-qqq8-xfj5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xqgg-8qqr-cmpg/GHSA-xqgg-8qqr-cmpg.json b/advisories/unreviewed/2022/05/GHSA-xqgg-8qqr-cmpg/GHSA-xqgg-8qqr-cmpg.json index 3d1cdeac8b3..fad4fdb2184 100644 --- a/advisories/unreviewed/2022/05/GHSA-xqgg-8qqr-cmpg/GHSA-xqgg-8qqr-cmpg.json +++ b/advisories/unreviewed/2022/05/GHSA-xqgg-8qqr-cmpg/GHSA-xqgg-8qqr-cmpg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xr59-cc47-hgh5/GHSA-xr59-cc47-hgh5.json b/advisories/unreviewed/2022/05/GHSA-xr59-cc47-hgh5/GHSA-xr59-cc47-hgh5.json index 6df5d677b2e..5edd027e83d 100644 --- a/advisories/unreviewed/2022/05/GHSA-xr59-cc47-hgh5/GHSA-xr59-cc47-hgh5.json +++ b/advisories/unreviewed/2022/05/GHSA-xr59-cc47-hgh5/GHSA-xr59-cc47-hgh5.json @@ -7,12 +7,8 @@ "CVE-2019-10939" ], "details": "A vulnerability has been identified in TIM 3V-IE (incl. SIPLUS NET variants) (All versions < V2.8), TIM 3V-IE Advanced (incl. SIPLUS NET variants) (All versions < V2.8), TIM 3V-IE DNP3 (incl. SIPLUS NET variants) (All versions < V3.3), TIM 4R-IE (incl. SIPLUS NET variants) (All versions < V2.8), TIM 4R-IE DNP3 (incl. SIPLUS NET variants) (All versions < V3.3). The affected versions contain an open debug port that is available under certain specific conditions. The vulnerability is only available if the IP address is configured to 192.168.1.2. If available, the debug port could be exploited by an attacker with network access to the device. No user interaction is required to exploit this vulnerability. The vulnerability impacts confidentiality, integrity, and availability of the affected device. At the stage of publishing this security advisory no public exploitation is known.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xr6m-vwc7-4qxx/GHSA-xr6m-vwc7-4qxx.json b/advisories/unreviewed/2022/05/GHSA-xr6m-vwc7-4qxx/GHSA-xr6m-vwc7-4qxx.json index 4b66de34a9b..45720422478 100644 --- a/advisories/unreviewed/2022/05/GHSA-xr6m-vwc7-4qxx/GHSA-xr6m-vwc7-4qxx.json +++ b/advisories/unreviewed/2022/05/GHSA-xr6m-vwc7-4qxx/GHSA-xr6m-vwc7-4qxx.json @@ -7,12 +7,8 @@ "CVE-2020-2747" ], "details": "Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: SSO Engine). Supported versions that are affected are 11.1.2.3.0 and 12.2.1.3.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Access Manager. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Access Manager, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Access Manager accessible data as well as unauthorized read access to a subset of Oracle Access Manager accessible data. CVSS 3.0 Base Score 5.4 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xvh7-j354-hww5/GHSA-xvh7-j354-hww5.json b/advisories/unreviewed/2022/05/GHSA-xvh7-j354-hww5/GHSA-xvh7-j354-hww5.json index 0651ced5689..0964f32f1ea 100644 --- a/advisories/unreviewed/2022/05/GHSA-xvh7-j354-hww5/GHSA-xvh7-j354-hww5.json +++ b/advisories/unreviewed/2022/05/GHSA-xvh7-j354-hww5/GHSA-xvh7-j354-hww5.json @@ -7,12 +7,8 @@ "CVE-2020-1002" ], "details": "An elevation of privilege vulnerability exists when the MpSigStub.exe for Defender allows file deletion in arbitrary locations.To exploit the vulnerability, an attacker would first have to log on to the system, aka 'Microsoft Defender Elevation of Privilege Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-mfc5-4g3m-p5gr/GHSA-mfc5-4g3m-p5gr.json b/advisories/unreviewed/2023/03/GHSA-mfc5-4g3m-p5gr/GHSA-mfc5-4g3m-p5gr.json index 19f364a8be0..188fd9794cd 100644 --- a/advisories/unreviewed/2023/03/GHSA-mfc5-4g3m-p5gr/GHSA-mfc5-4g3m-p5gr.json +++ b/advisories/unreviewed/2023/03/GHSA-mfc5-4g3m-p5gr/GHSA-mfc5-4g3m-p5gr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/07/GHSA-h8v2-pvw7-3jf5/GHSA-h8v2-pvw7-3jf5.json b/advisories/unreviewed/2023/07/GHSA-h8v2-pvw7-3jf5/GHSA-h8v2-pvw7-3jf5.json index cda195259e0..bcb12b28abe 100644 --- a/advisories/unreviewed/2023/07/GHSA-h8v2-pvw7-3jf5/GHSA-h8v2-pvw7-3jf5.json +++ b/advisories/unreviewed/2023/07/GHSA-h8v2-pvw7-3jf5/GHSA-h8v2-pvw7-3jf5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/07/GHSA-jprp-jh3h-3w7v/GHSA-jprp-jh3h-3w7v.json b/advisories/unreviewed/2023/07/GHSA-jprp-jh3h-3w7v/GHSA-jprp-jh3h-3w7v.json index 1c3bdb4e28e..ceb465f408b 100644 --- a/advisories/unreviewed/2023/07/GHSA-jprp-jh3h-3w7v/GHSA-jprp-jh3h-3w7v.json +++ b/advisories/unreviewed/2023/07/GHSA-jprp-jh3h-3w7v/GHSA-jprp-jh3h-3w7v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/08/GHSA-2f7h-crmc-cqw4/GHSA-2f7h-crmc-cqw4.json b/advisories/unreviewed/2023/08/GHSA-2f7h-crmc-cqw4/GHSA-2f7h-crmc-cqw4.json index 994ebde3b67..48bb20dbace 100644 --- a/advisories/unreviewed/2023/08/GHSA-2f7h-crmc-cqw4/GHSA-2f7h-crmc-cqw4.json +++ b/advisories/unreviewed/2023/08/GHSA-2f7h-crmc-cqw4/GHSA-2f7h-crmc-cqw4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/08/GHSA-4hr6-49g3-g573/GHSA-4hr6-49g3-g573.json b/advisories/unreviewed/2023/08/GHSA-4hr6-49g3-g573/GHSA-4hr6-49g3-g573.json index 459a83f86ea..6235001f42f 100644 --- a/advisories/unreviewed/2023/08/GHSA-4hr6-49g3-g573/GHSA-4hr6-49g3-g573.json +++ b/advisories/unreviewed/2023/08/GHSA-4hr6-49g3-g573/GHSA-4hr6-49g3-g573.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/08/GHSA-p2xf-44q3-fvrm/GHSA-p2xf-44q3-fvrm.json b/advisories/unreviewed/2023/08/GHSA-p2xf-44q3-fvrm/GHSA-p2xf-44q3-fvrm.json index c26302b35d5..cfc9ca23a47 100644 --- a/advisories/unreviewed/2023/08/GHSA-p2xf-44q3-fvrm/GHSA-p2xf-44q3-fvrm.json +++ b/advisories/unreviewed/2023/08/GHSA-p2xf-44q3-fvrm/GHSA-p2xf-44q3-fvrm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/08/GHSA-xgpj-c6vr-4w93/GHSA-xgpj-c6vr-4w93.json b/advisories/unreviewed/2023/08/GHSA-xgpj-c6vr-4w93/GHSA-xgpj-c6vr-4w93.json index 565a847d61c..cd3965cae71 100644 --- a/advisories/unreviewed/2023/08/GHSA-xgpj-c6vr-4w93/GHSA-xgpj-c6vr-4w93.json +++ b/advisories/unreviewed/2023/08/GHSA-xgpj-c6vr-4w93/GHSA-xgpj-c6vr-4w93.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-3q96-v6jw-84q4/GHSA-3q96-v6jw-84q4.json b/advisories/unreviewed/2023/10/GHSA-3q96-v6jw-84q4/GHSA-3q96-v6jw-84q4.json index 360708b165b..e02d0bd8381 100644 --- a/advisories/unreviewed/2023/10/GHSA-3q96-v6jw-84q4/GHSA-3q96-v6jw-84q4.json +++ b/advisories/unreviewed/2023/10/GHSA-3q96-v6jw-84q4/GHSA-3q96-v6jw-84q4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:L/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-48r3-3j44-q774/GHSA-48r3-3j44-q774.json b/advisories/unreviewed/2023/10/GHSA-48r3-3j44-q774/GHSA-48r3-3j44-q774.json index 871b3c4e6df..66cf5107b11 100644 --- a/advisories/unreviewed/2023/10/GHSA-48r3-3j44-q774/GHSA-48r3-3j44-q774.json +++ b/advisories/unreviewed/2023/10/GHSA-48r3-3j44-q774/GHSA-48r3-3j44-q774.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-67f8-pjgc-f52m/GHSA-67f8-pjgc-f52m.json b/advisories/unreviewed/2023/10/GHSA-67f8-pjgc-f52m/GHSA-67f8-pjgc-f52m.json index 7cdfe5853c6..2da979d16d1 100644 --- a/advisories/unreviewed/2023/10/GHSA-67f8-pjgc-f52m/GHSA-67f8-pjgc-f52m.json +++ b/advisories/unreviewed/2023/10/GHSA-67f8-pjgc-f52m/GHSA-67f8-pjgc-f52m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-7hrj-c89x-75w7/GHSA-7hrj-c89x-75w7.json b/advisories/unreviewed/2023/10/GHSA-7hrj-c89x-75w7/GHSA-7hrj-c89x-75w7.json index 1a3f01a44a4..6d7f480ea83 100644 --- a/advisories/unreviewed/2023/10/GHSA-7hrj-c89x-75w7/GHSA-7hrj-c89x-75w7.json +++ b/advisories/unreviewed/2023/10/GHSA-7hrj-c89x-75w7/GHSA-7hrj-c89x-75w7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-8mp5-hxq8-5mcj/GHSA-8mp5-hxq8-5mcj.json b/advisories/unreviewed/2023/10/GHSA-8mp5-hxq8-5mcj/GHSA-8mp5-hxq8-5mcj.json index 256f3e84a03..d0eb5f5e74e 100644 --- a/advisories/unreviewed/2023/10/GHSA-8mp5-hxq8-5mcj/GHSA-8mp5-hxq8-5mcj.json +++ b/advisories/unreviewed/2023/10/GHSA-8mp5-hxq8-5mcj/GHSA-8mp5-hxq8-5mcj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-cxjg-wpgh-jhh5/GHSA-cxjg-wpgh-jhh5.json b/advisories/unreviewed/2023/10/GHSA-cxjg-wpgh-jhh5/GHSA-cxjg-wpgh-jhh5.json index c7e5d5b0623..53ca621bb6d 100644 --- a/advisories/unreviewed/2023/10/GHSA-cxjg-wpgh-jhh5/GHSA-cxjg-wpgh-jhh5.json +++ b/advisories/unreviewed/2023/10/GHSA-cxjg-wpgh-jhh5/GHSA-cxjg-wpgh-jhh5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-fg6q-x7qr-4pp3/GHSA-fg6q-x7qr-4pp3.json b/advisories/unreviewed/2023/10/GHSA-fg6q-x7qr-4pp3/GHSA-fg6q-x7qr-4pp3.json index b048ff0245b..3c601b9ffc8 100644 --- a/advisories/unreviewed/2023/10/GHSA-fg6q-x7qr-4pp3/GHSA-fg6q-x7qr-4pp3.json +++ b/advisories/unreviewed/2023/10/GHSA-fg6q-x7qr-4pp3/GHSA-fg6q-x7qr-4pp3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-fm9f-7rqx-chvx/GHSA-fm9f-7rqx-chvx.json b/advisories/unreviewed/2023/10/GHSA-fm9f-7rqx-chvx/GHSA-fm9f-7rqx-chvx.json index dddce033b74..9d8a809c5b1 100644 --- a/advisories/unreviewed/2023/10/GHSA-fm9f-7rqx-chvx/GHSA-fm9f-7rqx-chvx.json +++ b/advisories/unreviewed/2023/10/GHSA-fm9f-7rqx-chvx/GHSA-fm9f-7rqx-chvx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-fp46-48v5-9hqr/GHSA-fp46-48v5-9hqr.json b/advisories/unreviewed/2023/10/GHSA-fp46-48v5-9hqr/GHSA-fp46-48v5-9hqr.json index 1dceec55637..a8ade6995ad 100644 --- a/advisories/unreviewed/2023/10/GHSA-fp46-48v5-9hqr/GHSA-fp46-48v5-9hqr.json +++ b/advisories/unreviewed/2023/10/GHSA-fp46-48v5-9hqr/GHSA-fp46-48v5-9hqr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-fp4h-xp3p-fwp7/GHSA-fp4h-xp3p-fwp7.json b/advisories/unreviewed/2023/10/GHSA-fp4h-xp3p-fwp7/GHSA-fp4h-xp3p-fwp7.json index 18ef39323c6..0b0b3b5ba29 100644 --- a/advisories/unreviewed/2023/10/GHSA-fp4h-xp3p-fwp7/GHSA-fp4h-xp3p-fwp7.json +++ b/advisories/unreviewed/2023/10/GHSA-fp4h-xp3p-fwp7/GHSA-fp4h-xp3p-fwp7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-m4h3-mqpx-7mc5/GHSA-m4h3-mqpx-7mc5.json b/advisories/unreviewed/2023/10/GHSA-m4h3-mqpx-7mc5/GHSA-m4h3-mqpx-7mc5.json index 977fdedc231..12eab254e3e 100644 --- a/advisories/unreviewed/2023/10/GHSA-m4h3-mqpx-7mc5/GHSA-m4h3-mqpx-7mc5.json +++ b/advisories/unreviewed/2023/10/GHSA-m4h3-mqpx-7mc5/GHSA-m4h3-mqpx-7mc5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-mg8r-5chf-q6gx/GHSA-mg8r-5chf-q6gx.json b/advisories/unreviewed/2023/10/GHSA-mg8r-5chf-q6gx/GHSA-mg8r-5chf-q6gx.json index 58544ac66e6..24240d29b13 100644 --- a/advisories/unreviewed/2023/10/GHSA-mg8r-5chf-q6gx/GHSA-mg8r-5chf-q6gx.json +++ b/advisories/unreviewed/2023/10/GHSA-mg8r-5chf-q6gx/GHSA-mg8r-5chf-q6gx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-r3jr-h9hq-q78g/GHSA-r3jr-h9hq-q78g.json b/advisories/unreviewed/2023/10/GHSA-r3jr-h9hq-q78g/GHSA-r3jr-h9hq-q78g.json index 611d87be405..15573eda5cb 100644 --- a/advisories/unreviewed/2023/10/GHSA-r3jr-h9hq-q78g/GHSA-r3jr-h9hq-q78g.json +++ b/advisories/unreviewed/2023/10/GHSA-r3jr-h9hq-q78g/GHSA-r3jr-h9hq-q78g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-r82m-3xp2-r98r/GHSA-r82m-3xp2-r98r.json b/advisories/unreviewed/2023/10/GHSA-r82m-3xp2-r98r/GHSA-r82m-3xp2-r98r.json index 91e66c5e4ee..76192b28395 100644 --- a/advisories/unreviewed/2023/10/GHSA-r82m-3xp2-r98r/GHSA-r82m-3xp2-r98r.json +++ b/advisories/unreviewed/2023/10/GHSA-r82m-3xp2-r98r/GHSA-r82m-3xp2-r98r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-r9c2-5gf9-7h96/GHSA-r9c2-5gf9-7h96.json b/advisories/unreviewed/2023/10/GHSA-r9c2-5gf9-7h96/GHSA-r9c2-5gf9-7h96.json index 133c4fa2c73..887ea882448 100644 --- a/advisories/unreviewed/2023/10/GHSA-r9c2-5gf9-7h96/GHSA-r9c2-5gf9-7h96.json +++ b/advisories/unreviewed/2023/10/GHSA-r9c2-5gf9-7h96/GHSA-r9c2-5gf9-7h96.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-v3h7-5j3q-8cqp/GHSA-v3h7-5j3q-8cqp.json b/advisories/unreviewed/2023/10/GHSA-v3h7-5j3q-8cqp/GHSA-v3h7-5j3q-8cqp.json index e643cc52c7c..ea1720c0235 100644 --- a/advisories/unreviewed/2023/10/GHSA-v3h7-5j3q-8cqp/GHSA-v3h7-5j3q-8cqp.json +++ b/advisories/unreviewed/2023/10/GHSA-v3h7-5j3q-8cqp/GHSA-v3h7-5j3q-8cqp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-vg92-hh46-66vr/GHSA-vg92-hh46-66vr.json b/advisories/unreviewed/2023/10/GHSA-vg92-hh46-66vr/GHSA-vg92-hh46-66vr.json index 6c33fc1488d..f5907c6fbd9 100644 --- a/advisories/unreviewed/2023/10/GHSA-vg92-hh46-66vr/GHSA-vg92-hh46-66vr.json +++ b/advisories/unreviewed/2023/10/GHSA-vg92-hh46-66vr/GHSA-vg92-hh46-66vr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-w59p-5rf2-g7gc/GHSA-w59p-5rf2-g7gc.json b/advisories/unreviewed/2023/10/GHSA-w59p-5rf2-g7gc/GHSA-w59p-5rf2-g7gc.json index a5addfc74c3..c016dccb40a 100644 --- a/advisories/unreviewed/2023/10/GHSA-w59p-5rf2-g7gc/GHSA-w59p-5rf2-g7gc.json +++ b/advisories/unreviewed/2023/10/GHSA-w59p-5rf2-g7gc/GHSA-w59p-5rf2-g7gc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-xfrq-44jr-w2f3/GHSA-xfrq-44jr-w2f3.json b/advisories/unreviewed/2023/10/GHSA-xfrq-44jr-w2f3/GHSA-xfrq-44jr-w2f3.json index be4f21db987..a6d143f44ec 100644 --- a/advisories/unreviewed/2023/10/GHSA-xfrq-44jr-w2f3/GHSA-xfrq-44jr-w2f3.json +++ b/advisories/unreviewed/2023/10/GHSA-xfrq-44jr-w2f3/GHSA-xfrq-44jr-w2f3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-3jhg-jx8m-q62v/GHSA-3jhg-jx8m-q62v.json b/advisories/unreviewed/2023/11/GHSA-3jhg-jx8m-q62v/GHSA-3jhg-jx8m-q62v.json index dba379514d5..bb0f88b3a54 100644 --- a/advisories/unreviewed/2023/11/GHSA-3jhg-jx8m-q62v/GHSA-3jhg-jx8m-q62v.json +++ b/advisories/unreviewed/2023/11/GHSA-3jhg-jx8m-q62v/GHSA-3jhg-jx8m-q62v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-46r9-g8qr-f53g/GHSA-46r9-g8qr-f53g.json b/advisories/unreviewed/2023/11/GHSA-46r9-g8qr-f53g/GHSA-46r9-g8qr-f53g.json index 46747bbff4f..66dd253e3bb 100644 --- a/advisories/unreviewed/2023/11/GHSA-46r9-g8qr-f53g/GHSA-46r9-g8qr-f53g.json +++ b/advisories/unreviewed/2023/11/GHSA-46r9-g8qr-f53g/GHSA-46r9-g8qr-f53g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-57fh-6v6h-p687/GHSA-57fh-6v6h-p687.json b/advisories/unreviewed/2023/11/GHSA-57fh-6v6h-p687/GHSA-57fh-6v6h-p687.json index b0144614732..98118a8d1ab 100644 --- a/advisories/unreviewed/2023/11/GHSA-57fh-6v6h-p687/GHSA-57fh-6v6h-p687.json +++ b/advisories/unreviewed/2023/11/GHSA-57fh-6v6h-p687/GHSA-57fh-6v6h-p687.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-7592-7873-rfj4/GHSA-7592-7873-rfj4.json b/advisories/unreviewed/2023/11/GHSA-7592-7873-rfj4/GHSA-7592-7873-rfj4.json index 28a91867904..2d6f2d6df8d 100644 --- a/advisories/unreviewed/2023/11/GHSA-7592-7873-rfj4/GHSA-7592-7873-rfj4.json +++ b/advisories/unreviewed/2023/11/GHSA-7592-7873-rfj4/GHSA-7592-7873-rfj4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-8gwf-qvhm-v6fr/GHSA-8gwf-qvhm-v6fr.json b/advisories/unreviewed/2023/11/GHSA-8gwf-qvhm-v6fr/GHSA-8gwf-qvhm-v6fr.json index 1b1c809062c..494063597c2 100644 --- a/advisories/unreviewed/2023/11/GHSA-8gwf-qvhm-v6fr/GHSA-8gwf-qvhm-v6fr.json +++ b/advisories/unreviewed/2023/11/GHSA-8gwf-qvhm-v6fr/GHSA-8gwf-qvhm-v6fr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-94h4-5c8j-gcwp/GHSA-94h4-5c8j-gcwp.json b/advisories/unreviewed/2023/11/GHSA-94h4-5c8j-gcwp/GHSA-94h4-5c8j-gcwp.json index 8a830c45c2b..998524d98e8 100644 --- a/advisories/unreviewed/2023/11/GHSA-94h4-5c8j-gcwp/GHSA-94h4-5c8j-gcwp.json +++ b/advisories/unreviewed/2023/11/GHSA-94h4-5c8j-gcwp/GHSA-94h4-5c8j-gcwp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-c55w-52h2-w882/GHSA-c55w-52h2-w882.json b/advisories/unreviewed/2023/11/GHSA-c55w-52h2-w882/GHSA-c55w-52h2-w882.json index 3b5abe05423..5768596dd65 100644 --- a/advisories/unreviewed/2023/11/GHSA-c55w-52h2-w882/GHSA-c55w-52h2-w882.json +++ b/advisories/unreviewed/2023/11/GHSA-c55w-52h2-w882/GHSA-c55w-52h2-w882.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-cwvm-vqfp-f4gp/GHSA-cwvm-vqfp-f4gp.json b/advisories/unreviewed/2023/11/GHSA-cwvm-vqfp-f4gp/GHSA-cwvm-vqfp-f4gp.json index 5bed79823cf..47e56917e25 100644 --- a/advisories/unreviewed/2023/11/GHSA-cwvm-vqfp-f4gp/GHSA-cwvm-vqfp-f4gp.json +++ b/advisories/unreviewed/2023/11/GHSA-cwvm-vqfp-f4gp/GHSA-cwvm-vqfp-f4gp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-f3f8-w8rm-rvj3/GHSA-f3f8-w8rm-rvj3.json b/advisories/unreviewed/2023/11/GHSA-f3f8-w8rm-rvj3/GHSA-f3f8-w8rm-rvj3.json index 884d28dab22..d58a2b173ab 100644 --- a/advisories/unreviewed/2023/11/GHSA-f3f8-w8rm-rvj3/GHSA-f3f8-w8rm-rvj3.json +++ b/advisories/unreviewed/2023/11/GHSA-f3f8-w8rm-rvj3/GHSA-f3f8-w8rm-rvj3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-fc69-58g8-6278/GHSA-fc69-58g8-6278.json b/advisories/unreviewed/2023/11/GHSA-fc69-58g8-6278/GHSA-fc69-58g8-6278.json index d46c454a84f..34b4ac2a0a9 100644 --- a/advisories/unreviewed/2023/11/GHSA-fc69-58g8-6278/GHSA-fc69-58g8-6278.json +++ b/advisories/unreviewed/2023/11/GHSA-fc69-58g8-6278/GHSA-fc69-58g8-6278.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-fgm4-2mm7-965c/GHSA-fgm4-2mm7-965c.json b/advisories/unreviewed/2023/11/GHSA-fgm4-2mm7-965c/GHSA-fgm4-2mm7-965c.json index 1f8b30b5c7e..a6b8afb27e3 100644 --- a/advisories/unreviewed/2023/11/GHSA-fgm4-2mm7-965c/GHSA-fgm4-2mm7-965c.json +++ b/advisories/unreviewed/2023/11/GHSA-fgm4-2mm7-965c/GHSA-fgm4-2mm7-965c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-fxf6-p2pr-65pp/GHSA-fxf6-p2pr-65pp.json b/advisories/unreviewed/2023/11/GHSA-fxf6-p2pr-65pp/GHSA-fxf6-p2pr-65pp.json index 6d2ec599d5f..0290605ce1b 100644 --- a/advisories/unreviewed/2023/11/GHSA-fxf6-p2pr-65pp/GHSA-fxf6-p2pr-65pp.json +++ b/advisories/unreviewed/2023/11/GHSA-fxf6-p2pr-65pp/GHSA-fxf6-p2pr-65pp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-g33w-h437-892v/GHSA-g33w-h437-892v.json b/advisories/unreviewed/2023/11/GHSA-g33w-h437-892v/GHSA-g33w-h437-892v.json index 4494d61d44c..766428130e1 100644 --- a/advisories/unreviewed/2023/11/GHSA-g33w-h437-892v/GHSA-g33w-h437-892v.json +++ b/advisories/unreviewed/2023/11/GHSA-g33w-h437-892v/GHSA-g33w-h437-892v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-gq5j-56pr-g2xx/GHSA-gq5j-56pr-g2xx.json b/advisories/unreviewed/2023/11/GHSA-gq5j-56pr-g2xx/GHSA-gq5j-56pr-g2xx.json index 8c24c076c36..2d40b29de25 100644 --- a/advisories/unreviewed/2023/11/GHSA-gq5j-56pr-g2xx/GHSA-gq5j-56pr-g2xx.json +++ b/advisories/unreviewed/2023/11/GHSA-gq5j-56pr-g2xx/GHSA-gq5j-56pr-g2xx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-hjmj-5vpm-4784/GHSA-hjmj-5vpm-4784.json b/advisories/unreviewed/2023/11/GHSA-hjmj-5vpm-4784/GHSA-hjmj-5vpm-4784.json index 4ab27aec84e..a1bc155ba59 100644 --- a/advisories/unreviewed/2023/11/GHSA-hjmj-5vpm-4784/GHSA-hjmj-5vpm-4784.json +++ b/advisories/unreviewed/2023/11/GHSA-hjmj-5vpm-4784/GHSA-hjmj-5vpm-4784.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-m3j9-2h4c-3m98/GHSA-m3j9-2h4c-3m98.json b/advisories/unreviewed/2023/11/GHSA-m3j9-2h4c-3m98/GHSA-m3j9-2h4c-3m98.json index 55d6388f100..0f151460577 100644 --- a/advisories/unreviewed/2023/11/GHSA-m3j9-2h4c-3m98/GHSA-m3j9-2h4c-3m98.json +++ b/advisories/unreviewed/2023/11/GHSA-m3j9-2h4c-3m98/GHSA-m3j9-2h4c-3m98.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-m5qx-36v8-9pmp/GHSA-m5qx-36v8-9pmp.json b/advisories/unreviewed/2023/11/GHSA-m5qx-36v8-9pmp/GHSA-m5qx-36v8-9pmp.json index 8aa07dfd54f..5eeec15513c 100644 --- a/advisories/unreviewed/2023/11/GHSA-m5qx-36v8-9pmp/GHSA-m5qx-36v8-9pmp.json +++ b/advisories/unreviewed/2023/11/GHSA-m5qx-36v8-9pmp/GHSA-m5qx-36v8-9pmp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-m6qg-858p-9996/GHSA-m6qg-858p-9996.json b/advisories/unreviewed/2023/11/GHSA-m6qg-858p-9996/GHSA-m6qg-858p-9996.json index 65314c38e3c..9460439fa21 100644 --- a/advisories/unreviewed/2023/11/GHSA-m6qg-858p-9996/GHSA-m6qg-858p-9996.json +++ b/advisories/unreviewed/2023/11/GHSA-m6qg-858p-9996/GHSA-m6qg-858p-9996.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-mppp-f7rw-v5g4/GHSA-mppp-f7rw-v5g4.json b/advisories/unreviewed/2023/11/GHSA-mppp-f7rw-v5g4/GHSA-mppp-f7rw-v5g4.json index 94235fe9b6f..beb0da6f47b 100644 --- a/advisories/unreviewed/2023/11/GHSA-mppp-f7rw-v5g4/GHSA-mppp-f7rw-v5g4.json +++ b/advisories/unreviewed/2023/11/GHSA-mppp-f7rw-v5g4/GHSA-mppp-f7rw-v5g4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-p8j7-9vfh-gvg5/GHSA-p8j7-9vfh-gvg5.json b/advisories/unreviewed/2023/11/GHSA-p8j7-9vfh-gvg5/GHSA-p8j7-9vfh-gvg5.json index 5e9f7f18fa4..f421fae12d1 100644 --- a/advisories/unreviewed/2023/11/GHSA-p8j7-9vfh-gvg5/GHSA-p8j7-9vfh-gvg5.json +++ b/advisories/unreviewed/2023/11/GHSA-p8j7-9vfh-gvg5/GHSA-p8j7-9vfh-gvg5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-pj9v-74gv-cqp6/GHSA-pj9v-74gv-cqp6.json b/advisories/unreviewed/2023/11/GHSA-pj9v-74gv-cqp6/GHSA-pj9v-74gv-cqp6.json index bacbd178399..eae2295ccba 100644 --- a/advisories/unreviewed/2023/11/GHSA-pj9v-74gv-cqp6/GHSA-pj9v-74gv-cqp6.json +++ b/advisories/unreviewed/2023/11/GHSA-pj9v-74gv-cqp6/GHSA-pj9v-74gv-cqp6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-pm6v-h84r-mx24/GHSA-pm6v-h84r-mx24.json b/advisories/unreviewed/2023/11/GHSA-pm6v-h84r-mx24/GHSA-pm6v-h84r-mx24.json index fc65e73d532..04a717fa516 100644 --- a/advisories/unreviewed/2023/11/GHSA-pm6v-h84r-mx24/GHSA-pm6v-h84r-mx24.json +++ b/advisories/unreviewed/2023/11/GHSA-pm6v-h84r-mx24/GHSA-pm6v-h84r-mx24.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-q85c-8hf8-xfw7/GHSA-q85c-8hf8-xfw7.json b/advisories/unreviewed/2023/11/GHSA-q85c-8hf8-xfw7/GHSA-q85c-8hf8-xfw7.json index 3b0711aef2f..789a6c23ab7 100644 --- a/advisories/unreviewed/2023/11/GHSA-q85c-8hf8-xfw7/GHSA-q85c-8hf8-xfw7.json +++ b/advisories/unreviewed/2023/11/GHSA-q85c-8hf8-xfw7/GHSA-q85c-8hf8-xfw7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-r38f-h6hw-72gq/GHSA-r38f-h6hw-72gq.json b/advisories/unreviewed/2023/11/GHSA-r38f-h6hw-72gq/GHSA-r38f-h6hw-72gq.json index ec94723a510..d92ce5d9454 100644 --- a/advisories/unreviewed/2023/11/GHSA-r38f-h6hw-72gq/GHSA-r38f-h6hw-72gq.json +++ b/advisories/unreviewed/2023/11/GHSA-r38f-h6hw-72gq/GHSA-r38f-h6hw-72gq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-vvhm-3w34-7vgx/GHSA-vvhm-3w34-7vgx.json b/advisories/unreviewed/2023/11/GHSA-vvhm-3w34-7vgx/GHSA-vvhm-3w34-7vgx.json index 2eb2f6cd07c..11ac36b5403 100644 --- a/advisories/unreviewed/2023/11/GHSA-vvhm-3w34-7vgx/GHSA-vvhm-3w34-7vgx.json +++ b/advisories/unreviewed/2023/11/GHSA-vvhm-3w34-7vgx/GHSA-vvhm-3w34-7vgx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-xh8f-45cf-2xqc/GHSA-xh8f-45cf-2xqc.json b/advisories/unreviewed/2023/11/GHSA-xh8f-45cf-2xqc/GHSA-xh8f-45cf-2xqc.json index be9e2c81f32..5f4728814fc 100644 --- a/advisories/unreviewed/2023/11/GHSA-xh8f-45cf-2xqc/GHSA-xh8f-45cf-2xqc.json +++ b/advisories/unreviewed/2023/11/GHSA-xh8f-45cf-2xqc/GHSA-xh8f-45cf-2xqc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-ghxm-9fh8-8p5g/GHSA-ghxm-9fh8-8p5g.json b/advisories/unreviewed/2023/12/GHSA-ghxm-9fh8-8p5g/GHSA-ghxm-9fh8-8p5g.json index beedea3e13f..911bbe25cbd 100644 --- a/advisories/unreviewed/2023/12/GHSA-ghxm-9fh8-8p5g/GHSA-ghxm-9fh8-8p5g.json +++ b/advisories/unreviewed/2023/12/GHSA-ghxm-9fh8-8p5g/GHSA-ghxm-9fh8-8p5g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-2m95-7f8j-m6vw/GHSA-2m95-7f8j-m6vw.json b/advisories/unreviewed/2024/01/GHSA-2m95-7f8j-m6vw/GHSA-2m95-7f8j-m6vw.json index ddec6aab720..d764d9ee08e 100644 --- a/advisories/unreviewed/2024/01/GHSA-2m95-7f8j-m6vw/GHSA-2m95-7f8j-m6vw.json +++ b/advisories/unreviewed/2024/01/GHSA-2m95-7f8j-m6vw/GHSA-2m95-7f8j-m6vw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-2vj7-37qg-hm7q/GHSA-2vj7-37qg-hm7q.json b/advisories/unreviewed/2024/01/GHSA-2vj7-37qg-hm7q/GHSA-2vj7-37qg-hm7q.json index 6d7985774df..f9d6e858a97 100644 --- a/advisories/unreviewed/2024/01/GHSA-2vj7-37qg-hm7q/GHSA-2vj7-37qg-hm7q.json +++ b/advisories/unreviewed/2024/01/GHSA-2vj7-37qg-hm7q/GHSA-2vj7-37qg-hm7q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-39hm-h746-p544/GHSA-39hm-h746-p544.json b/advisories/unreviewed/2024/01/GHSA-39hm-h746-p544/GHSA-39hm-h746-p544.json index ac73069b20c..27d404ee950 100644 --- a/advisories/unreviewed/2024/01/GHSA-39hm-h746-p544/GHSA-39hm-h746-p544.json +++ b/advisories/unreviewed/2024/01/GHSA-39hm-h746-p544/GHSA-39hm-h746-p544.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-3fr9-8m46-r2mm/GHSA-3fr9-8m46-r2mm.json b/advisories/unreviewed/2024/01/GHSA-3fr9-8m46-r2mm/GHSA-3fr9-8m46-r2mm.json index e71a303ce2e..c7868e87333 100644 --- a/advisories/unreviewed/2024/01/GHSA-3fr9-8m46-r2mm/GHSA-3fr9-8m46-r2mm.json +++ b/advisories/unreviewed/2024/01/GHSA-3fr9-8m46-r2mm/GHSA-3fr9-8m46-r2mm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-3g33-qjmm-8mwx/GHSA-3g33-qjmm-8mwx.json b/advisories/unreviewed/2024/01/GHSA-3g33-qjmm-8mwx/GHSA-3g33-qjmm-8mwx.json index eb8fa41e9e8..3178ef19a7d 100644 --- a/advisories/unreviewed/2024/01/GHSA-3g33-qjmm-8mwx/GHSA-3g33-qjmm-8mwx.json +++ b/advisories/unreviewed/2024/01/GHSA-3g33-qjmm-8mwx/GHSA-3g33-qjmm-8mwx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-3v7c-v9wf-3c7v/GHSA-3v7c-v9wf-3c7v.json b/advisories/unreviewed/2024/01/GHSA-3v7c-v9wf-3c7v/GHSA-3v7c-v9wf-3c7v.json index f31445525ac..81db1d69d75 100644 --- a/advisories/unreviewed/2024/01/GHSA-3v7c-v9wf-3c7v/GHSA-3v7c-v9wf-3c7v.json +++ b/advisories/unreviewed/2024/01/GHSA-3v7c-v9wf-3c7v/GHSA-3v7c-v9wf-3c7v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:U/C:H/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-43xj-352m-99m9/GHSA-43xj-352m-99m9.json b/advisories/unreviewed/2024/01/GHSA-43xj-352m-99m9/GHSA-43xj-352m-99m9.json index 6db13a92da5..86c7c685d44 100644 --- a/advisories/unreviewed/2024/01/GHSA-43xj-352m-99m9/GHSA-43xj-352m-99m9.json +++ b/advisories/unreviewed/2024/01/GHSA-43xj-352m-99m9/GHSA-43xj-352m-99m9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-4f22-7h3g-c989/GHSA-4f22-7h3g-c989.json b/advisories/unreviewed/2024/01/GHSA-4f22-7h3g-c989/GHSA-4f22-7h3g-c989.json index e35f5d90c59..39fc805021f 100644 --- a/advisories/unreviewed/2024/01/GHSA-4f22-7h3g-c989/GHSA-4f22-7h3g-c989.json +++ b/advisories/unreviewed/2024/01/GHSA-4f22-7h3g-c989/GHSA-4f22-7h3g-c989.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-4j7q-5rcw-6f5j/GHSA-4j7q-5rcw-6f5j.json b/advisories/unreviewed/2024/01/GHSA-4j7q-5rcw-6f5j/GHSA-4j7q-5rcw-6f5j.json index bd1043912d8..76547cc67b7 100644 --- a/advisories/unreviewed/2024/01/GHSA-4j7q-5rcw-6f5j/GHSA-4j7q-5rcw-6f5j.json +++ b/advisories/unreviewed/2024/01/GHSA-4j7q-5rcw-6f5j/GHSA-4j7q-5rcw-6f5j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-4xqh-wh68-g25r/GHSA-4xqh-wh68-g25r.json b/advisories/unreviewed/2024/01/GHSA-4xqh-wh68-g25r/GHSA-4xqh-wh68-g25r.json index 40a992eea62..0e60271e0b0 100644 --- a/advisories/unreviewed/2024/01/GHSA-4xqh-wh68-g25r/GHSA-4xqh-wh68-g25r.json +++ b/advisories/unreviewed/2024/01/GHSA-4xqh-wh68-g25r/GHSA-4xqh-wh68-g25r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-5257-h5wm-w97c/GHSA-5257-h5wm-w97c.json b/advisories/unreviewed/2024/01/GHSA-5257-h5wm-w97c/GHSA-5257-h5wm-w97c.json index 9d0eb75d2f9..a11175d1e6c 100644 --- a/advisories/unreviewed/2024/01/GHSA-5257-h5wm-w97c/GHSA-5257-h5wm-w97c.json +++ b/advisories/unreviewed/2024/01/GHSA-5257-h5wm-w97c/GHSA-5257-h5wm-w97c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-5727-96qh-72m5/GHSA-5727-96qh-72m5.json b/advisories/unreviewed/2024/01/GHSA-5727-96qh-72m5/GHSA-5727-96qh-72m5.json index 23778992f9a..09644e19a38 100644 --- a/advisories/unreviewed/2024/01/GHSA-5727-96qh-72m5/GHSA-5727-96qh-72m5.json +++ b/advisories/unreviewed/2024/01/GHSA-5727-96qh-72m5/GHSA-5727-96qh-72m5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-57qv-m7j8-6h9p/GHSA-57qv-m7j8-6h9p.json b/advisories/unreviewed/2024/01/GHSA-57qv-m7j8-6h9p/GHSA-57qv-m7j8-6h9p.json index cdafd687310..3a055f50bee 100644 --- a/advisories/unreviewed/2024/01/GHSA-57qv-m7j8-6h9p/GHSA-57qv-m7j8-6h9p.json +++ b/advisories/unreviewed/2024/01/GHSA-57qv-m7j8-6h9p/GHSA-57qv-m7j8-6h9p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-5pwx-2rrr-xcvm/GHSA-5pwx-2rrr-xcvm.json b/advisories/unreviewed/2024/01/GHSA-5pwx-2rrr-xcvm/GHSA-5pwx-2rrr-xcvm.json index 37bad315838..ab9f29d8c55 100644 --- a/advisories/unreviewed/2024/01/GHSA-5pwx-2rrr-xcvm/GHSA-5pwx-2rrr-xcvm.json +++ b/advisories/unreviewed/2024/01/GHSA-5pwx-2rrr-xcvm/GHSA-5pwx-2rrr-xcvm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-5q6v-3768-8xq7/GHSA-5q6v-3768-8xq7.json b/advisories/unreviewed/2024/01/GHSA-5q6v-3768-8xq7/GHSA-5q6v-3768-8xq7.json index b2096242cad..ad601f4b4ac 100644 --- a/advisories/unreviewed/2024/01/GHSA-5q6v-3768-8xq7/GHSA-5q6v-3768-8xq7.json +++ b/advisories/unreviewed/2024/01/GHSA-5q6v-3768-8xq7/GHSA-5q6v-3768-8xq7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-7mr2-5jpg-77cw/GHSA-7mr2-5jpg-77cw.json b/advisories/unreviewed/2024/01/GHSA-7mr2-5jpg-77cw/GHSA-7mr2-5jpg-77cw.json index ceaa91b7ace..8fe8e47c43a 100644 --- a/advisories/unreviewed/2024/01/GHSA-7mr2-5jpg-77cw/GHSA-7mr2-5jpg-77cw.json +++ b/advisories/unreviewed/2024/01/GHSA-7mr2-5jpg-77cw/GHSA-7mr2-5jpg-77cw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-7rhv-83v9-4j9f/GHSA-7rhv-83v9-4j9f.json b/advisories/unreviewed/2024/01/GHSA-7rhv-83v9-4j9f/GHSA-7rhv-83v9-4j9f.json index 5d8db9c412e..820977a223e 100644 --- a/advisories/unreviewed/2024/01/GHSA-7rhv-83v9-4j9f/GHSA-7rhv-83v9-4j9f.json +++ b/advisories/unreviewed/2024/01/GHSA-7rhv-83v9-4j9f/GHSA-7rhv-83v9-4j9f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-7v39-pqxg-4xwf/GHSA-7v39-pqxg-4xwf.json b/advisories/unreviewed/2024/01/GHSA-7v39-pqxg-4xwf/GHSA-7v39-pqxg-4xwf.json index dfc52b488b5..bed10f698a0 100644 --- a/advisories/unreviewed/2024/01/GHSA-7v39-pqxg-4xwf/GHSA-7v39-pqxg-4xwf.json +++ b/advisories/unreviewed/2024/01/GHSA-7v39-pqxg-4xwf/GHSA-7v39-pqxg-4xwf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/01/GHSA-8frc-4g87-v5h6/GHSA-8frc-4g87-v5h6.json b/advisories/unreviewed/2024/01/GHSA-8frc-4g87-v5h6/GHSA-8frc-4g87-v5h6.json index 45f0456dfa5..e32d01985d3 100644 --- a/advisories/unreviewed/2024/01/GHSA-8frc-4g87-v5h6/GHSA-8frc-4g87-v5h6.json +++ b/advisories/unreviewed/2024/01/GHSA-8frc-4g87-v5h6/GHSA-8frc-4g87-v5h6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-8hxc-5cxp-9pm6/GHSA-8hxc-5cxp-9pm6.json b/advisories/unreviewed/2024/01/GHSA-8hxc-5cxp-9pm6/GHSA-8hxc-5cxp-9pm6.json index 42f0d5a4c0c..739718e77b4 100644 --- a/advisories/unreviewed/2024/01/GHSA-8hxc-5cxp-9pm6/GHSA-8hxc-5cxp-9pm6.json +++ b/advisories/unreviewed/2024/01/GHSA-8hxc-5cxp-9pm6/GHSA-8hxc-5cxp-9pm6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-8m3p-p7g3-92q6/GHSA-8m3p-p7g3-92q6.json b/advisories/unreviewed/2024/01/GHSA-8m3p-p7g3-92q6/GHSA-8m3p-p7g3-92q6.json index fd1ce346ab6..a2c078af899 100644 --- a/advisories/unreviewed/2024/01/GHSA-8m3p-p7g3-92q6/GHSA-8m3p-p7g3-92q6.json +++ b/advisories/unreviewed/2024/01/GHSA-8m3p-p7g3-92q6/GHSA-8m3p-p7g3-92q6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-8mwh-2jgw-x22m/GHSA-8mwh-2jgw-x22m.json b/advisories/unreviewed/2024/01/GHSA-8mwh-2jgw-x22m/GHSA-8mwh-2jgw-x22m.json index 987151080aa..e23afe51481 100644 --- a/advisories/unreviewed/2024/01/GHSA-8mwh-2jgw-x22m/GHSA-8mwh-2jgw-x22m.json +++ b/advisories/unreviewed/2024/01/GHSA-8mwh-2jgw-x22m/GHSA-8mwh-2jgw-x22m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-94hh-wrg9-ghpm/GHSA-94hh-wrg9-ghpm.json b/advisories/unreviewed/2024/01/GHSA-94hh-wrg9-ghpm/GHSA-94hh-wrg9-ghpm.json index 75db878bc27..21b335d3799 100644 --- a/advisories/unreviewed/2024/01/GHSA-94hh-wrg9-ghpm/GHSA-94hh-wrg9-ghpm.json +++ b/advisories/unreviewed/2024/01/GHSA-94hh-wrg9-ghpm/GHSA-94hh-wrg9-ghpm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-95h7-88rj-5gc6/GHSA-95h7-88rj-5gc6.json b/advisories/unreviewed/2024/01/GHSA-95h7-88rj-5gc6/GHSA-95h7-88rj-5gc6.json index 8b7fed3bb55..4b25625f62d 100644 --- a/advisories/unreviewed/2024/01/GHSA-95h7-88rj-5gc6/GHSA-95h7-88rj-5gc6.json +++ b/advisories/unreviewed/2024/01/GHSA-95h7-88rj-5gc6/GHSA-95h7-88rj-5gc6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/01/GHSA-9hw3-gf6m-6pwv/GHSA-9hw3-gf6m-6pwv.json b/advisories/unreviewed/2024/01/GHSA-9hw3-gf6m-6pwv/GHSA-9hw3-gf6m-6pwv.json index 41d522e6e24..a7d9104d761 100644 --- a/advisories/unreviewed/2024/01/GHSA-9hw3-gf6m-6pwv/GHSA-9hw3-gf6m-6pwv.json +++ b/advisories/unreviewed/2024/01/GHSA-9hw3-gf6m-6pwv/GHSA-9hw3-gf6m-6pwv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-9r9p-4477-qf64/GHSA-9r9p-4477-qf64.json b/advisories/unreviewed/2024/01/GHSA-9r9p-4477-qf64/GHSA-9r9p-4477-qf64.json index 0f8f4e78660..672027acd22 100644 --- a/advisories/unreviewed/2024/01/GHSA-9r9p-4477-qf64/GHSA-9r9p-4477-qf64.json +++ b/advisories/unreviewed/2024/01/GHSA-9r9p-4477-qf64/GHSA-9r9p-4477-qf64.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-9vrw-5c88-5qw8/GHSA-9vrw-5c88-5qw8.json b/advisories/unreviewed/2024/01/GHSA-9vrw-5c88-5qw8/GHSA-9vrw-5c88-5qw8.json index 05f56402dd3..ed2fec9ee91 100644 --- a/advisories/unreviewed/2024/01/GHSA-9vrw-5c88-5qw8/GHSA-9vrw-5c88-5qw8.json +++ b/advisories/unreviewed/2024/01/GHSA-9vrw-5c88-5qw8/GHSA-9vrw-5c88-5qw8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-c2vp-9842-2xq2/GHSA-c2vp-9842-2xq2.json b/advisories/unreviewed/2024/01/GHSA-c2vp-9842-2xq2/GHSA-c2vp-9842-2xq2.json index 3b736a1e1b1..83ada516248 100644 --- a/advisories/unreviewed/2024/01/GHSA-c2vp-9842-2xq2/GHSA-c2vp-9842-2xq2.json +++ b/advisories/unreviewed/2024/01/GHSA-c2vp-9842-2xq2/GHSA-c2vp-9842-2xq2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-c5j5-hp3j-jpgp/GHSA-c5j5-hp3j-jpgp.json b/advisories/unreviewed/2024/01/GHSA-c5j5-hp3j-jpgp/GHSA-c5j5-hp3j-jpgp.json index 4732f6d8071..2d9c5e7ece5 100644 --- a/advisories/unreviewed/2024/01/GHSA-c5j5-hp3j-jpgp/GHSA-c5j5-hp3j-jpgp.json +++ b/advisories/unreviewed/2024/01/GHSA-c5j5-hp3j-jpgp/GHSA-c5j5-hp3j-jpgp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-c9cg-r57m-xqj9/GHSA-c9cg-r57m-xqj9.json b/advisories/unreviewed/2024/01/GHSA-c9cg-r57m-xqj9/GHSA-c9cg-r57m-xqj9.json index e75101eb2f7..33aee979b1b 100644 --- a/advisories/unreviewed/2024/01/GHSA-c9cg-r57m-xqj9/GHSA-c9cg-r57m-xqj9.json +++ b/advisories/unreviewed/2024/01/GHSA-c9cg-r57m-xqj9/GHSA-c9cg-r57m-xqj9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/01/GHSA-cfr6-fjfx-m5r2/GHSA-cfr6-fjfx-m5r2.json b/advisories/unreviewed/2024/01/GHSA-cfr6-fjfx-m5r2/GHSA-cfr6-fjfx-m5r2.json index 15649840748..e7d8be61f7f 100644 --- a/advisories/unreviewed/2024/01/GHSA-cfr6-fjfx-m5r2/GHSA-cfr6-fjfx-m5r2.json +++ b/advisories/unreviewed/2024/01/GHSA-cfr6-fjfx-m5r2/GHSA-cfr6-fjfx-m5r2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-cqph-9f64-7xmq/GHSA-cqph-9f64-7xmq.json b/advisories/unreviewed/2024/01/GHSA-cqph-9f64-7xmq/GHSA-cqph-9f64-7xmq.json index 4b5f972f434..664be002837 100644 --- a/advisories/unreviewed/2024/01/GHSA-cqph-9f64-7xmq/GHSA-cqph-9f64-7xmq.json +++ b/advisories/unreviewed/2024/01/GHSA-cqph-9f64-7xmq/GHSA-cqph-9f64-7xmq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-f49q-5gxp-g34f/GHSA-f49q-5gxp-g34f.json b/advisories/unreviewed/2024/01/GHSA-f49q-5gxp-g34f/GHSA-f49q-5gxp-g34f.json index 9b3ddf46dc6..6e460bc3114 100644 --- a/advisories/unreviewed/2024/01/GHSA-f49q-5gxp-g34f/GHSA-f49q-5gxp-g34f.json +++ b/advisories/unreviewed/2024/01/GHSA-f49q-5gxp-g34f/GHSA-f49q-5gxp-g34f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-f7rf-j82w-v928/GHSA-f7rf-j82w-v928.json b/advisories/unreviewed/2024/01/GHSA-f7rf-j82w-v928/GHSA-f7rf-j82w-v928.json index d3a8185f63b..a39c35dba95 100644 --- a/advisories/unreviewed/2024/01/GHSA-f7rf-j82w-v928/GHSA-f7rf-j82w-v928.json +++ b/advisories/unreviewed/2024/01/GHSA-f7rf-j82w-v928/GHSA-f7rf-j82w-v928.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-fj4r-qrhf-ph96/GHSA-fj4r-qrhf-ph96.json b/advisories/unreviewed/2024/01/GHSA-fj4r-qrhf-ph96/GHSA-fj4r-qrhf-ph96.json index 77ce50f7d29..a7b56d6e747 100644 --- a/advisories/unreviewed/2024/01/GHSA-fj4r-qrhf-ph96/GHSA-fj4r-qrhf-ph96.json +++ b/advisories/unreviewed/2024/01/GHSA-fj4r-qrhf-ph96/GHSA-fj4r-qrhf-ph96.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-g3m9-67hp-q26f/GHSA-g3m9-67hp-q26f.json b/advisories/unreviewed/2024/01/GHSA-g3m9-67hp-q26f/GHSA-g3m9-67hp-q26f.json index 4dff7d2518b..f624d4ca7f9 100644 --- a/advisories/unreviewed/2024/01/GHSA-g3m9-67hp-q26f/GHSA-g3m9-67hp-q26f.json +++ b/advisories/unreviewed/2024/01/GHSA-g3m9-67hp-q26f/GHSA-g3m9-67hp-q26f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-g78w-g57r-7ch5/GHSA-g78w-g57r-7ch5.json b/advisories/unreviewed/2024/01/GHSA-g78w-g57r-7ch5/GHSA-g78w-g57r-7ch5.json index 1e9e997a759..59832c8df81 100644 --- a/advisories/unreviewed/2024/01/GHSA-g78w-g57r-7ch5/GHSA-g78w-g57r-7ch5.json +++ b/advisories/unreviewed/2024/01/GHSA-g78w-g57r-7ch5/GHSA-g78w-g57r-7ch5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-gf8f-27qx-3phv/GHSA-gf8f-27qx-3phv.json b/advisories/unreviewed/2024/01/GHSA-gf8f-27qx-3phv/GHSA-gf8f-27qx-3phv.json index 9ba886ef21e..8885e7d8bf4 100644 --- a/advisories/unreviewed/2024/01/GHSA-gf8f-27qx-3phv/GHSA-gf8f-27qx-3phv.json +++ b/advisories/unreviewed/2024/01/GHSA-gf8f-27qx-3phv/GHSA-gf8f-27qx-3phv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-ggc3-9qp8-x5m8/GHSA-ggc3-9qp8-x5m8.json b/advisories/unreviewed/2024/01/GHSA-ggc3-9qp8-x5m8/GHSA-ggc3-9qp8-x5m8.json index ba45d778e93..dbac7aaba81 100644 --- a/advisories/unreviewed/2024/01/GHSA-ggc3-9qp8-x5m8/GHSA-ggc3-9qp8-x5m8.json +++ b/advisories/unreviewed/2024/01/GHSA-ggc3-9qp8-x5m8/GHSA-ggc3-9qp8-x5m8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-ggmv-p5cx-xjj5/GHSA-ggmv-p5cx-xjj5.json b/advisories/unreviewed/2024/01/GHSA-ggmv-p5cx-xjj5/GHSA-ggmv-p5cx-xjj5.json index 4d3b8d21c37..c603efc9487 100644 --- a/advisories/unreviewed/2024/01/GHSA-ggmv-p5cx-xjj5/GHSA-ggmv-p5cx-xjj5.json +++ b/advisories/unreviewed/2024/01/GHSA-ggmv-p5cx-xjj5/GHSA-ggmv-p5cx-xjj5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-h2q9-rjqh-c64g/GHSA-h2q9-rjqh-c64g.json b/advisories/unreviewed/2024/01/GHSA-h2q9-rjqh-c64g/GHSA-h2q9-rjqh-c64g.json index 5de489efb9b..d9265546b2f 100644 --- a/advisories/unreviewed/2024/01/GHSA-h2q9-rjqh-c64g/GHSA-h2q9-rjqh-c64g.json +++ b/advisories/unreviewed/2024/01/GHSA-h2q9-rjqh-c64g/GHSA-h2q9-rjqh-c64g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-h4w6-5xx3-2mvh/GHSA-h4w6-5xx3-2mvh.json b/advisories/unreviewed/2024/01/GHSA-h4w6-5xx3-2mvh/GHSA-h4w6-5xx3-2mvh.json index 2bf4f3d2f57..eeb4b519e8b 100644 --- a/advisories/unreviewed/2024/01/GHSA-h4w6-5xx3-2mvh/GHSA-h4w6-5xx3-2mvh.json +++ b/advisories/unreviewed/2024/01/GHSA-h4w6-5xx3-2mvh/GHSA-h4w6-5xx3-2mvh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-h6m7-6h9c-8vm2/GHSA-h6m7-6h9c-8vm2.json b/advisories/unreviewed/2024/01/GHSA-h6m7-6h9c-8vm2/GHSA-h6m7-6h9c-8vm2.json index 9d6cdc693a8..e6ed2013a98 100644 --- a/advisories/unreviewed/2024/01/GHSA-h6m7-6h9c-8vm2/GHSA-h6m7-6h9c-8vm2.json +++ b/advisories/unreviewed/2024/01/GHSA-h6m7-6h9c-8vm2/GHSA-h6m7-6h9c-8vm2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/01/GHSA-hfr8-9v95-p75f/GHSA-hfr8-9v95-p75f.json b/advisories/unreviewed/2024/01/GHSA-hfr8-9v95-p75f/GHSA-hfr8-9v95-p75f.json index c4277a659b3..59b301a562b 100644 --- a/advisories/unreviewed/2024/01/GHSA-hfr8-9v95-p75f/GHSA-hfr8-9v95-p75f.json +++ b/advisories/unreviewed/2024/01/GHSA-hfr8-9v95-p75f/GHSA-hfr8-9v95-p75f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-hj68-qmgw-mf32/GHSA-hj68-qmgw-mf32.json b/advisories/unreviewed/2024/01/GHSA-hj68-qmgw-mf32/GHSA-hj68-qmgw-mf32.json index 25b20dc61cb..9847adc2431 100644 --- a/advisories/unreviewed/2024/01/GHSA-hj68-qmgw-mf32/GHSA-hj68-qmgw-mf32.json +++ b/advisories/unreviewed/2024/01/GHSA-hj68-qmgw-mf32/GHSA-hj68-qmgw-mf32.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-hq93-g2wv-xwjm/GHSA-hq93-g2wv-xwjm.json b/advisories/unreviewed/2024/01/GHSA-hq93-g2wv-xwjm/GHSA-hq93-g2wv-xwjm.json index 8ee5d4d7e49..c1b682757f1 100644 --- a/advisories/unreviewed/2024/01/GHSA-hq93-g2wv-xwjm/GHSA-hq93-g2wv-xwjm.json +++ b/advisories/unreviewed/2024/01/GHSA-hq93-g2wv-xwjm/GHSA-hq93-g2wv-xwjm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-hrg2-9cxg-f9w6/GHSA-hrg2-9cxg-f9w6.json b/advisories/unreviewed/2024/01/GHSA-hrg2-9cxg-f9w6/GHSA-hrg2-9cxg-f9w6.json index 62470f77427..5536fa6025b 100644 --- a/advisories/unreviewed/2024/01/GHSA-hrg2-9cxg-f9w6/GHSA-hrg2-9cxg-f9w6.json +++ b/advisories/unreviewed/2024/01/GHSA-hrg2-9cxg-f9w6/GHSA-hrg2-9cxg-f9w6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-j38q-p48x-446f/GHSA-j38q-p48x-446f.json b/advisories/unreviewed/2024/01/GHSA-j38q-p48x-446f/GHSA-j38q-p48x-446f.json index b12af17bb0b..589b341137f 100644 --- a/advisories/unreviewed/2024/01/GHSA-j38q-p48x-446f/GHSA-j38q-p48x-446f.json +++ b/advisories/unreviewed/2024/01/GHSA-j38q-p48x-446f/GHSA-j38q-p48x-446f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-j45j-gj3g-pr93/GHSA-j45j-gj3g-pr93.json b/advisories/unreviewed/2024/01/GHSA-j45j-gj3g-pr93/GHSA-j45j-gj3g-pr93.json index 4c6872e3172..0dcecd21ec8 100644 --- a/advisories/unreviewed/2024/01/GHSA-j45j-gj3g-pr93/GHSA-j45j-gj3g-pr93.json +++ b/advisories/unreviewed/2024/01/GHSA-j45j-gj3g-pr93/GHSA-j45j-gj3g-pr93.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-j695-jhjg-w8vx/GHSA-j695-jhjg-w8vx.json b/advisories/unreviewed/2024/01/GHSA-j695-jhjg-w8vx/GHSA-j695-jhjg-w8vx.json index 0beeb5f2c10..85521c9ffc6 100644 --- a/advisories/unreviewed/2024/01/GHSA-j695-jhjg-w8vx/GHSA-j695-jhjg-w8vx.json +++ b/advisories/unreviewed/2024/01/GHSA-j695-jhjg-w8vx/GHSA-j695-jhjg-w8vx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-m25v-grp2-qq63/GHSA-m25v-grp2-qq63.json b/advisories/unreviewed/2024/01/GHSA-m25v-grp2-qq63/GHSA-m25v-grp2-qq63.json index c19711437ff..cfcc0aedfdb 100644 --- a/advisories/unreviewed/2024/01/GHSA-m25v-grp2-qq63/GHSA-m25v-grp2-qq63.json +++ b/advisories/unreviewed/2024/01/GHSA-m25v-grp2-qq63/GHSA-m25v-grp2-qq63.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-m434-mwrf-2867/GHSA-m434-mwrf-2867.json b/advisories/unreviewed/2024/01/GHSA-m434-mwrf-2867/GHSA-m434-mwrf-2867.json index cc9126360cc..aa276f53e00 100644 --- a/advisories/unreviewed/2024/01/GHSA-m434-mwrf-2867/GHSA-m434-mwrf-2867.json +++ b/advisories/unreviewed/2024/01/GHSA-m434-mwrf-2867/GHSA-m434-mwrf-2867.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-mmw3-7rf2-x9p3/GHSA-mmw3-7rf2-x9p3.json b/advisories/unreviewed/2024/01/GHSA-mmw3-7rf2-x9p3/GHSA-mmw3-7rf2-x9p3.json index ff94f0d2132..19f289c7003 100644 --- a/advisories/unreviewed/2024/01/GHSA-mmw3-7rf2-x9p3/GHSA-mmw3-7rf2-x9p3.json +++ b/advisories/unreviewed/2024/01/GHSA-mmw3-7rf2-x9p3/GHSA-mmw3-7rf2-x9p3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-mxvg-x4fj-7g3v/GHSA-mxvg-x4fj-7g3v.json b/advisories/unreviewed/2024/01/GHSA-mxvg-x4fj-7g3v/GHSA-mxvg-x4fj-7g3v.json index 262935f54ef..5fab6649bd9 100644 --- a/advisories/unreviewed/2024/01/GHSA-mxvg-x4fj-7g3v/GHSA-mxvg-x4fj-7g3v.json +++ b/advisories/unreviewed/2024/01/GHSA-mxvg-x4fj-7g3v/GHSA-mxvg-x4fj-7g3v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-p2gq-hc84-24mm/GHSA-p2gq-hc84-24mm.json b/advisories/unreviewed/2024/01/GHSA-p2gq-hc84-24mm/GHSA-p2gq-hc84-24mm.json index c4973c8300a..d65ab6fd73a 100644 --- a/advisories/unreviewed/2024/01/GHSA-p2gq-hc84-24mm/GHSA-p2gq-hc84-24mm.json +++ b/advisories/unreviewed/2024/01/GHSA-p2gq-hc84-24mm/GHSA-p2gq-hc84-24mm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-p3j9-952w-4qf7/GHSA-p3j9-952w-4qf7.json b/advisories/unreviewed/2024/01/GHSA-p3j9-952w-4qf7/GHSA-p3j9-952w-4qf7.json index c252dc4efef..da652d6e741 100644 --- a/advisories/unreviewed/2024/01/GHSA-p3j9-952w-4qf7/GHSA-p3j9-952w-4qf7.json +++ b/advisories/unreviewed/2024/01/GHSA-p3j9-952w-4qf7/GHSA-p3j9-952w-4qf7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-pvwf-4h2p-6v45/GHSA-pvwf-4h2p-6v45.json b/advisories/unreviewed/2024/01/GHSA-pvwf-4h2p-6v45/GHSA-pvwf-4h2p-6v45.json index ee2b35ba59e..aa02f3f7be8 100644 --- a/advisories/unreviewed/2024/01/GHSA-pvwf-4h2p-6v45/GHSA-pvwf-4h2p-6v45.json +++ b/advisories/unreviewed/2024/01/GHSA-pvwf-4h2p-6v45/GHSA-pvwf-4h2p-6v45.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-pxhr-7vfm-8h7v/GHSA-pxhr-7vfm-8h7v.json b/advisories/unreviewed/2024/01/GHSA-pxhr-7vfm-8h7v/GHSA-pxhr-7vfm-8h7v.json index cf97daac562..b06f518785c 100644 --- a/advisories/unreviewed/2024/01/GHSA-pxhr-7vfm-8h7v/GHSA-pxhr-7vfm-8h7v.json +++ b/advisories/unreviewed/2024/01/GHSA-pxhr-7vfm-8h7v/GHSA-pxhr-7vfm-8h7v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-qh26-cpr6-mhm2/GHSA-qh26-cpr6-mhm2.json b/advisories/unreviewed/2024/01/GHSA-qh26-cpr6-mhm2/GHSA-qh26-cpr6-mhm2.json index be60c7dce74..abee611c1c6 100644 --- a/advisories/unreviewed/2024/01/GHSA-qh26-cpr6-mhm2/GHSA-qh26-cpr6-mhm2.json +++ b/advisories/unreviewed/2024/01/GHSA-qh26-cpr6-mhm2/GHSA-qh26-cpr6-mhm2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-qhc2-vhh5-gq5h/GHSA-qhc2-vhh5-gq5h.json b/advisories/unreviewed/2024/01/GHSA-qhc2-vhh5-gq5h/GHSA-qhc2-vhh5-gq5h.json index 85c5b480ca4..048e7a6d161 100644 --- a/advisories/unreviewed/2024/01/GHSA-qhc2-vhh5-gq5h/GHSA-qhc2-vhh5-gq5h.json +++ b/advisories/unreviewed/2024/01/GHSA-qhc2-vhh5-gq5h/GHSA-qhc2-vhh5-gq5h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-qw95-h6p3-w25w/GHSA-qw95-h6p3-w25w.json b/advisories/unreviewed/2024/01/GHSA-qw95-h6p3-w25w/GHSA-qw95-h6p3-w25w.json index b780132b498..21a40bf0ede 100644 --- a/advisories/unreviewed/2024/01/GHSA-qw95-h6p3-w25w/GHSA-qw95-h6p3-w25w.json +++ b/advisories/unreviewed/2024/01/GHSA-qw95-h6p3-w25w/GHSA-qw95-h6p3-w25w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-r573-6cpv-hcwq/GHSA-r573-6cpv-hcwq.json b/advisories/unreviewed/2024/01/GHSA-r573-6cpv-hcwq/GHSA-r573-6cpv-hcwq.json index dc2bc3bdca4..23cb88cf791 100644 --- a/advisories/unreviewed/2024/01/GHSA-r573-6cpv-hcwq/GHSA-r573-6cpv-hcwq.json +++ b/advisories/unreviewed/2024/01/GHSA-r573-6cpv-hcwq/GHSA-r573-6cpv-hcwq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-r5gh-c4hv-26j3/GHSA-r5gh-c4hv-26j3.json b/advisories/unreviewed/2024/01/GHSA-r5gh-c4hv-26j3/GHSA-r5gh-c4hv-26j3.json index 81533699dbf..cdac2755c65 100644 --- a/advisories/unreviewed/2024/01/GHSA-r5gh-c4hv-26j3/GHSA-r5gh-c4hv-26j3.json +++ b/advisories/unreviewed/2024/01/GHSA-r5gh-c4hv-26j3/GHSA-r5gh-c4hv-26j3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-rgqw-78cv-wmcg/GHSA-rgqw-78cv-wmcg.json b/advisories/unreviewed/2024/01/GHSA-rgqw-78cv-wmcg/GHSA-rgqw-78cv-wmcg.json index 562dfada960..19125249750 100644 --- a/advisories/unreviewed/2024/01/GHSA-rgqw-78cv-wmcg/GHSA-rgqw-78cv-wmcg.json +++ b/advisories/unreviewed/2024/01/GHSA-rgqw-78cv-wmcg/GHSA-rgqw-78cv-wmcg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/01/GHSA-vw9v-5h73-96pw/GHSA-vw9v-5h73-96pw.json b/advisories/unreviewed/2024/01/GHSA-vw9v-5h73-96pw/GHSA-vw9v-5h73-96pw.json index 65dfe92c9b2..ae4620a2d59 100644 --- a/advisories/unreviewed/2024/01/GHSA-vw9v-5h73-96pw/GHSA-vw9v-5h73-96pw.json +++ b/advisories/unreviewed/2024/01/GHSA-vw9v-5h73-96pw/GHSA-vw9v-5h73-96pw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-wgfw-cpjm-64v6/GHSA-wgfw-cpjm-64v6.json b/advisories/unreviewed/2024/01/GHSA-wgfw-cpjm-64v6/GHSA-wgfw-cpjm-64v6.json index 1ca289eea95..8f507ca9029 100644 --- a/advisories/unreviewed/2024/01/GHSA-wgfw-cpjm-64v6/GHSA-wgfw-cpjm-64v6.json +++ b/advisories/unreviewed/2024/01/GHSA-wgfw-cpjm-64v6/GHSA-wgfw-cpjm-64v6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-wh97-9rvp-m9hj/GHSA-wh97-9rvp-m9hj.json b/advisories/unreviewed/2024/01/GHSA-wh97-9rvp-m9hj/GHSA-wh97-9rvp-m9hj.json index 3282f00ed38..7f657ec9078 100644 --- a/advisories/unreviewed/2024/01/GHSA-wh97-9rvp-m9hj/GHSA-wh97-9rvp-m9hj.json +++ b/advisories/unreviewed/2024/01/GHSA-wh97-9rvp-m9hj/GHSA-wh97-9rvp-m9hj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-wrjp-phgp-j8x3/GHSA-wrjp-phgp-j8x3.json b/advisories/unreviewed/2024/01/GHSA-wrjp-phgp-j8x3/GHSA-wrjp-phgp-j8x3.json index a3b915c8749..625e4a50f4b 100644 --- a/advisories/unreviewed/2024/01/GHSA-wrjp-phgp-j8x3/GHSA-wrjp-phgp-j8x3.json +++ b/advisories/unreviewed/2024/01/GHSA-wrjp-phgp-j8x3/GHSA-wrjp-phgp-j8x3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-x4h7-rf56-3v6w/GHSA-x4h7-rf56-3v6w.json b/advisories/unreviewed/2024/01/GHSA-x4h7-rf56-3v6w/GHSA-x4h7-rf56-3v6w.json index 0fc14a8cac0..5ea32b31632 100644 --- a/advisories/unreviewed/2024/01/GHSA-x4h7-rf56-3v6w/GHSA-x4h7-rf56-3v6w.json +++ b/advisories/unreviewed/2024/01/GHSA-x4h7-rf56-3v6w/GHSA-x4h7-rf56-3v6w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-xx2r-xrgj-fm3f/GHSA-xx2r-xrgj-fm3f.json b/advisories/unreviewed/2024/01/GHSA-xx2r-xrgj-fm3f/GHSA-xx2r-xrgj-fm3f.json index d3fbd04161c..fd0ee094f76 100644 --- a/advisories/unreviewed/2024/01/GHSA-xx2r-xrgj-fm3f/GHSA-xx2r-xrgj-fm3f.json +++ b/advisories/unreviewed/2024/01/GHSA-xx2r-xrgj-fm3f/GHSA-xx2r-xrgj-fm3f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/02/GHSA-qp5h-mm28-4jq3/GHSA-qp5h-mm28-4jq3.json b/advisories/unreviewed/2024/02/GHSA-qp5h-mm28-4jq3/GHSA-qp5h-mm28-4jq3.json index 545a14a79e3..fbb841fc26c 100644 --- a/advisories/unreviewed/2024/02/GHSA-qp5h-mm28-4jq3/GHSA-qp5h-mm28-4jq3.json +++ b/advisories/unreviewed/2024/02/GHSA-qp5h-mm28-4jq3/GHSA-qp5h-mm28-4jq3.json @@ -7,12 +7,8 @@ "CVE-2024-26458" ], "details": "Kerberos 5 (aka krb5) 1.21.2 contains a memory leak in /krb5/src/lib/rpc/pmap_rmt.c.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/02/GHSA-rg89-92m2-5hj6/GHSA-rg89-92m2-5hj6.json b/advisories/unreviewed/2024/02/GHSA-rg89-92m2-5hj6/GHSA-rg89-92m2-5hj6.json index 2b1e1e1ae9e..1facee3c2a9 100644 --- a/advisories/unreviewed/2024/02/GHSA-rg89-92m2-5hj6/GHSA-rg89-92m2-5hj6.json +++ b/advisories/unreviewed/2024/02/GHSA-rg89-92m2-5hj6/GHSA-rg89-92m2-5hj6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/02/GHSA-rgrc-qmj6-x9mf/GHSA-rgrc-qmj6-x9mf.json b/advisories/unreviewed/2024/02/GHSA-rgrc-qmj6-x9mf/GHSA-rgrc-qmj6-x9mf.json index 7ab06913126..89decc9c6cb 100644 --- a/advisories/unreviewed/2024/02/GHSA-rgrc-qmj6-x9mf/GHSA-rgrc-qmj6-x9mf.json +++ b/advisories/unreviewed/2024/02/GHSA-rgrc-qmj6-x9mf/GHSA-rgrc-qmj6-x9mf.json @@ -7,12 +7,8 @@ "CVE-2024-26462" ], "details": "Kerberos 5 (aka krb5) 1.21.2 contains a memory leak vulnerability in /krb5/src/kdc/ndr.c.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/02/GHSA-v58f-qvrm-qqmh/GHSA-v58f-qvrm-qqmh.json b/advisories/unreviewed/2024/02/GHSA-v58f-qvrm-qqmh/GHSA-v58f-qvrm-qqmh.json index bc00092cd59..e37a3261069 100644 --- a/advisories/unreviewed/2024/02/GHSA-v58f-qvrm-qqmh/GHSA-v58f-qvrm-qqmh.json +++ b/advisories/unreviewed/2024/02/GHSA-v58f-qvrm-qqmh/GHSA-v58f-qvrm-qqmh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-2f92-gfhp-7pv8/GHSA-2f92-gfhp-7pv8.json b/advisories/unreviewed/2024/03/GHSA-2f92-gfhp-7pv8/GHSA-2f92-gfhp-7pv8.json index 12ca76cda3a..de33cc1d690 100644 --- a/advisories/unreviewed/2024/03/GHSA-2f92-gfhp-7pv8/GHSA-2f92-gfhp-7pv8.json +++ b/advisories/unreviewed/2024/03/GHSA-2f92-gfhp-7pv8/GHSA-2f92-gfhp-7pv8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-4qp4-9mwx-276r/GHSA-4qp4-9mwx-276r.json b/advisories/unreviewed/2024/03/GHSA-4qp4-9mwx-276r/GHSA-4qp4-9mwx-276r.json index 76a064ae8f7..3403bd00eb7 100644 --- a/advisories/unreviewed/2024/03/GHSA-4qp4-9mwx-276r/GHSA-4qp4-9mwx-276r.json +++ b/advisories/unreviewed/2024/03/GHSA-4qp4-9mwx-276r/GHSA-4qp4-9mwx-276r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-p429-8j49-f6x5/GHSA-p429-8j49-f6x5.json b/advisories/unreviewed/2024/03/GHSA-p429-8j49-f6x5/GHSA-p429-8j49-f6x5.json index 44a4fbbf8df..a6f4b1421e0 100644 --- a/advisories/unreviewed/2024/03/GHSA-p429-8j49-f6x5/GHSA-p429-8j49-f6x5.json +++ b/advisories/unreviewed/2024/03/GHSA-p429-8j49-f6x5/GHSA-p429-8j49-f6x5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-q75q-wf9j-xqjf/GHSA-q75q-wf9j-xqjf.json b/advisories/unreviewed/2024/03/GHSA-q75q-wf9j-xqjf/GHSA-q75q-wf9j-xqjf.json index 2bb8c4a5cb3..655017b29c2 100644 --- a/advisories/unreviewed/2024/03/GHSA-q75q-wf9j-xqjf/GHSA-q75q-wf9j-xqjf.json +++ b/advisories/unreviewed/2024/03/GHSA-q75q-wf9j-xqjf/GHSA-q75q-wf9j-xqjf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-2r49-j3rm-3fj2/GHSA-2r49-j3rm-3fj2.json b/advisories/unreviewed/2024/04/GHSA-2r49-j3rm-3fj2/GHSA-2r49-j3rm-3fj2.json index 9d272b89642..424c4ef56b0 100644 --- a/advisories/unreviewed/2024/04/GHSA-2r49-j3rm-3fj2/GHSA-2r49-j3rm-3fj2.json +++ b/advisories/unreviewed/2024/04/GHSA-2r49-j3rm-3fj2/GHSA-2r49-j3rm-3fj2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-2r6j-h9fw-2v55/GHSA-2r6j-h9fw-2v55.json b/advisories/unreviewed/2024/04/GHSA-2r6j-h9fw-2v55/GHSA-2r6j-h9fw-2v55.json index dbc22a7ada1..e3971a59f91 100644 --- a/advisories/unreviewed/2024/04/GHSA-2r6j-h9fw-2v55/GHSA-2r6j-h9fw-2v55.json +++ b/advisories/unreviewed/2024/04/GHSA-2r6j-h9fw-2v55/GHSA-2r6j-h9fw-2v55.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-2vjc-6f7c-9p77/GHSA-2vjc-6f7c-9p77.json b/advisories/unreviewed/2024/04/GHSA-2vjc-6f7c-9p77/GHSA-2vjc-6f7c-9p77.json index 2f7eb95b573..b3be4706733 100644 --- a/advisories/unreviewed/2024/04/GHSA-2vjc-6f7c-9p77/GHSA-2vjc-6f7c-9p77.json +++ b/advisories/unreviewed/2024/04/GHSA-2vjc-6f7c-9p77/GHSA-2vjc-6f7c-9p77.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-3f89-97wc-72r4/GHSA-3f89-97wc-72r4.json b/advisories/unreviewed/2024/04/GHSA-3f89-97wc-72r4/GHSA-3f89-97wc-72r4.json index 6b9d48d80e8..f90184de548 100644 --- a/advisories/unreviewed/2024/04/GHSA-3f89-97wc-72r4/GHSA-3f89-97wc-72r4.json +++ b/advisories/unreviewed/2024/04/GHSA-3f89-97wc-72r4/GHSA-3f89-97wc-72r4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-3hx8-25m4-f73q/GHSA-3hx8-25m4-f73q.json b/advisories/unreviewed/2024/04/GHSA-3hx8-25m4-f73q/GHSA-3hx8-25m4-f73q.json index 2a9dc49313d..c767b3af801 100644 --- a/advisories/unreviewed/2024/04/GHSA-3hx8-25m4-f73q/GHSA-3hx8-25m4-f73q.json +++ b/advisories/unreviewed/2024/04/GHSA-3hx8-25m4-f73q/GHSA-3hx8-25m4-f73q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-3q44-44h8-2hgc/GHSA-3q44-44h8-2hgc.json b/advisories/unreviewed/2024/04/GHSA-3q44-44h8-2hgc/GHSA-3q44-44h8-2hgc.json index 3b84ea47ee3..1cd4172b9cb 100644 --- a/advisories/unreviewed/2024/04/GHSA-3q44-44h8-2hgc/GHSA-3q44-44h8-2hgc.json +++ b/advisories/unreviewed/2024/04/GHSA-3q44-44h8-2hgc/GHSA-3q44-44h8-2hgc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-3xqv-2ccr-mmcc/GHSA-3xqv-2ccr-mmcc.json b/advisories/unreviewed/2024/04/GHSA-3xqv-2ccr-mmcc/GHSA-3xqv-2ccr-mmcc.json index 338ac42d5df..d95d1e18a98 100644 --- a/advisories/unreviewed/2024/04/GHSA-3xqv-2ccr-mmcc/GHSA-3xqv-2ccr-mmcc.json +++ b/advisories/unreviewed/2024/04/GHSA-3xqv-2ccr-mmcc/GHSA-3xqv-2ccr-mmcc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-462v-wj2r-jp9m/GHSA-462v-wj2r-jp9m.json b/advisories/unreviewed/2024/04/GHSA-462v-wj2r-jp9m/GHSA-462v-wj2r-jp9m.json index 1d02636967b..6b94aaf6b2f 100644 --- a/advisories/unreviewed/2024/04/GHSA-462v-wj2r-jp9m/GHSA-462v-wj2r-jp9m.json +++ b/advisories/unreviewed/2024/04/GHSA-462v-wj2r-jp9m/GHSA-462v-wj2r-jp9m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-46w5-56fc-wcpj/GHSA-46w5-56fc-wcpj.json b/advisories/unreviewed/2024/04/GHSA-46w5-56fc-wcpj/GHSA-46w5-56fc-wcpj.json index 5e9411afa78..38d0ff86788 100644 --- a/advisories/unreviewed/2024/04/GHSA-46w5-56fc-wcpj/GHSA-46w5-56fc-wcpj.json +++ b/advisories/unreviewed/2024/04/GHSA-46w5-56fc-wcpj/GHSA-46w5-56fc-wcpj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-4c7g-99hq-whpv/GHSA-4c7g-99hq-whpv.json b/advisories/unreviewed/2024/04/GHSA-4c7g-99hq-whpv/GHSA-4c7g-99hq-whpv.json index cadb9b3a257..fe21515cfc6 100644 --- a/advisories/unreviewed/2024/04/GHSA-4c7g-99hq-whpv/GHSA-4c7g-99hq-whpv.json +++ b/advisories/unreviewed/2024/04/GHSA-4c7g-99hq-whpv/GHSA-4c7g-99hq-whpv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-4g48-c9r3-fjv8/GHSA-4g48-c9r3-fjv8.json b/advisories/unreviewed/2024/04/GHSA-4g48-c9r3-fjv8/GHSA-4g48-c9r3-fjv8.json index c5799e87c92..1a854ed55bb 100644 --- a/advisories/unreviewed/2024/04/GHSA-4g48-c9r3-fjv8/GHSA-4g48-c9r3-fjv8.json +++ b/advisories/unreviewed/2024/04/GHSA-4g48-c9r3-fjv8/GHSA-4g48-c9r3-fjv8.json @@ -7,12 +7,8 @@ "CVE-2024-31783" ], "details": "Cross Site Scripting (XSS) vulnerability in Typora v.1.6.7 and before, allows a local attacker to obtain sensitive information via a crafted script during markdown file creation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-4pr9-2v9c-fmpv/GHSA-4pr9-2v9c-fmpv.json b/advisories/unreviewed/2024/04/GHSA-4pr9-2v9c-fmpv/GHSA-4pr9-2v9c-fmpv.json index 1195733ef89..df59babf81c 100644 --- a/advisories/unreviewed/2024/04/GHSA-4pr9-2v9c-fmpv/GHSA-4pr9-2v9c-fmpv.json +++ b/advisories/unreviewed/2024/04/GHSA-4pr9-2v9c-fmpv/GHSA-4pr9-2v9c-fmpv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-559r-7rhw-8272/GHSA-559r-7rhw-8272.json b/advisories/unreviewed/2024/04/GHSA-559r-7rhw-8272/GHSA-559r-7rhw-8272.json index fb524b250ac..077a945dc9c 100644 --- a/advisories/unreviewed/2024/04/GHSA-559r-7rhw-8272/GHSA-559r-7rhw-8272.json +++ b/advisories/unreviewed/2024/04/GHSA-559r-7rhw-8272/GHSA-559r-7rhw-8272.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-5fw2-c8q5-m3fx/GHSA-5fw2-c8q5-m3fx.json b/advisories/unreviewed/2024/04/GHSA-5fw2-c8q5-m3fx/GHSA-5fw2-c8q5-m3fx.json index cb745930cdf..d0f3a4fec90 100644 --- a/advisories/unreviewed/2024/04/GHSA-5fw2-c8q5-m3fx/GHSA-5fw2-c8q5-m3fx.json +++ b/advisories/unreviewed/2024/04/GHSA-5fw2-c8q5-m3fx/GHSA-5fw2-c8q5-m3fx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-5g37-8p7x-w23g/GHSA-5g37-8p7x-w23g.json b/advisories/unreviewed/2024/04/GHSA-5g37-8p7x-w23g/GHSA-5g37-8p7x-w23g.json index c6d230bd3a4..bd97ea6e814 100644 --- a/advisories/unreviewed/2024/04/GHSA-5g37-8p7x-w23g/GHSA-5g37-8p7x-w23g.json +++ b/advisories/unreviewed/2024/04/GHSA-5g37-8p7x-w23g/GHSA-5g37-8p7x-w23g.json @@ -7,12 +7,8 @@ "CVE-2024-32256" ], "details": "Phpgurukul Tourism Management System v2.0 is vulnerable to Unrestricted Upload of File with Dangerous Type via /tms/admin/change-image.php. When updating a current package, there are no checks for what types of files are uploaded from the image.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-5mm9-q2jr-6gr8/GHSA-5mm9-q2jr-6gr8.json b/advisories/unreviewed/2024/04/GHSA-5mm9-q2jr-6gr8/GHSA-5mm9-q2jr-6gr8.json index d5c38badf56..c3bced56203 100644 --- a/advisories/unreviewed/2024/04/GHSA-5mm9-q2jr-6gr8/GHSA-5mm9-q2jr-6gr8.json +++ b/advisories/unreviewed/2024/04/GHSA-5mm9-q2jr-6gr8/GHSA-5mm9-q2jr-6gr8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-5r3q-45rq-jqw2/GHSA-5r3q-45rq-jqw2.json b/advisories/unreviewed/2024/04/GHSA-5r3q-45rq-jqw2/GHSA-5r3q-45rq-jqw2.json index 45a2fb766a8..7cfd1af144d 100644 --- a/advisories/unreviewed/2024/04/GHSA-5r3q-45rq-jqw2/GHSA-5r3q-45rq-jqw2.json +++ b/advisories/unreviewed/2024/04/GHSA-5r3q-45rq-jqw2/GHSA-5r3q-45rq-jqw2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-5v3j-rg7v-f7f2/GHSA-5v3j-rg7v-f7f2.json b/advisories/unreviewed/2024/04/GHSA-5v3j-rg7v-f7f2/GHSA-5v3j-rg7v-f7f2.json index 9c9b1b7daf5..9f09e498409 100644 --- a/advisories/unreviewed/2024/04/GHSA-5v3j-rg7v-f7f2/GHSA-5v3j-rg7v-f7f2.json +++ b/advisories/unreviewed/2024/04/GHSA-5v3j-rg7v-f7f2/GHSA-5v3j-rg7v-f7f2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-62v2-fqcx-rj9f/GHSA-62v2-fqcx-rj9f.json b/advisories/unreviewed/2024/04/GHSA-62v2-fqcx-rj9f/GHSA-62v2-fqcx-rj9f.json index 970a4321753..94e6cca8fc8 100644 --- a/advisories/unreviewed/2024/04/GHSA-62v2-fqcx-rj9f/GHSA-62v2-fqcx-rj9f.json +++ b/advisories/unreviewed/2024/04/GHSA-62v2-fqcx-rj9f/GHSA-62v2-fqcx-rj9f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-63p3-gmh7-933m/GHSA-63p3-gmh7-933m.json b/advisories/unreviewed/2024/04/GHSA-63p3-gmh7-933m/GHSA-63p3-gmh7-933m.json index 96ada0eb007..49c1eb0ea26 100644 --- a/advisories/unreviewed/2024/04/GHSA-63p3-gmh7-933m/GHSA-63p3-gmh7-933m.json +++ b/advisories/unreviewed/2024/04/GHSA-63p3-gmh7-933m/GHSA-63p3-gmh7-933m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-656c-x8x7-w3c6/GHSA-656c-x8x7-w3c6.json b/advisories/unreviewed/2024/04/GHSA-656c-x8x7-w3c6/GHSA-656c-x8x7-w3c6.json index b1e85237a24..f912b1a5f86 100644 --- a/advisories/unreviewed/2024/04/GHSA-656c-x8x7-w3c6/GHSA-656c-x8x7-w3c6.json +++ b/advisories/unreviewed/2024/04/GHSA-656c-x8x7-w3c6/GHSA-656c-x8x7-w3c6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-6658-9vpg-8pq9/GHSA-6658-9vpg-8pq9.json b/advisories/unreviewed/2024/04/GHSA-6658-9vpg-8pq9/GHSA-6658-9vpg-8pq9.json index b35dd5ae195..08848a311c4 100644 --- a/advisories/unreviewed/2024/04/GHSA-6658-9vpg-8pq9/GHSA-6658-9vpg-8pq9.json +++ b/advisories/unreviewed/2024/04/GHSA-6658-9vpg-8pq9/GHSA-6658-9vpg-8pq9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-6p4c-r453-8743/GHSA-6p4c-r453-8743.json b/advisories/unreviewed/2024/04/GHSA-6p4c-r453-8743/GHSA-6p4c-r453-8743.json index 2d751e75b05..5c06aeba39c 100644 --- a/advisories/unreviewed/2024/04/GHSA-6p4c-r453-8743/GHSA-6p4c-r453-8743.json +++ b/advisories/unreviewed/2024/04/GHSA-6p4c-r453-8743/GHSA-6p4c-r453-8743.json @@ -7,12 +7,8 @@ "CVE-2024-31497" ], "details": "In PuTTY 0.68 through 0.80 before 0.81, biased ECDSA nonce generation allows an attacker to recover a user's NIST P-521 secret key via a quick attack in approximately 60 signatures. This is especially important in a scenario where an adversary is able to read messages signed by PuTTY or Pageant. One scenario is that the adversary is an operator of an SSH server to which the victim authenticates (for remote login or file copy), even though this server is not fully trusted by the victim, and the victim uses the same private key for SSH connections to other services operated by other entities. Here, the rogue server operator (who would otherwise have no way to determine the victim's private key) can derive the victim's private key, and then use it for unauthorized access to those other services. Because SSH is sometimes used to authenticate to Git services, it is possible that this vulnerability could be leveraged for supply-chain attacks on software maintained in Git. It is also conceivable that signed messages from PuTTY or Pageant are readable by adversaries more easily in other scenarios, but none have yet been disclosed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -100,9 +96,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-6wmc-pfvg-7c68/GHSA-6wmc-pfvg-7c68.json b/advisories/unreviewed/2024/04/GHSA-6wmc-pfvg-7c68/GHSA-6wmc-pfvg-7c68.json index 1428544e478..286144e2305 100644 --- a/advisories/unreviewed/2024/04/GHSA-6wmc-pfvg-7c68/GHSA-6wmc-pfvg-7c68.json +++ b/advisories/unreviewed/2024/04/GHSA-6wmc-pfvg-7c68/GHSA-6wmc-pfvg-7c68.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-734v-mgwp-5gmw/GHSA-734v-mgwp-5gmw.json b/advisories/unreviewed/2024/04/GHSA-734v-mgwp-5gmw/GHSA-734v-mgwp-5gmw.json index aa8ec8dcdb8..1c6f9c4ce37 100644 --- a/advisories/unreviewed/2024/04/GHSA-734v-mgwp-5gmw/GHSA-734v-mgwp-5gmw.json +++ b/advisories/unreviewed/2024/04/GHSA-734v-mgwp-5gmw/GHSA-734v-mgwp-5gmw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-746x-qpfv-r44f/GHSA-746x-qpfv-r44f.json b/advisories/unreviewed/2024/04/GHSA-746x-qpfv-r44f/GHSA-746x-qpfv-r44f.json index b847bc9f1a1..50d25738a97 100644 --- a/advisories/unreviewed/2024/04/GHSA-746x-qpfv-r44f/GHSA-746x-qpfv-r44f.json +++ b/advisories/unreviewed/2024/04/GHSA-746x-qpfv-r44f/GHSA-746x-qpfv-r44f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-783r-wg7h-79gm/GHSA-783r-wg7h-79gm.json b/advisories/unreviewed/2024/04/GHSA-783r-wg7h-79gm/GHSA-783r-wg7h-79gm.json index 593f1c3d766..55b305c75d9 100644 --- a/advisories/unreviewed/2024/04/GHSA-783r-wg7h-79gm/GHSA-783r-wg7h-79gm.json +++ b/advisories/unreviewed/2024/04/GHSA-783r-wg7h-79gm/GHSA-783r-wg7h-79gm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-7fv8-55hq-39rx/GHSA-7fv8-55hq-39rx.json b/advisories/unreviewed/2024/04/GHSA-7fv8-55hq-39rx/GHSA-7fv8-55hq-39rx.json index 96ef707c3ee..956727bd448 100644 --- a/advisories/unreviewed/2024/04/GHSA-7fv8-55hq-39rx/GHSA-7fv8-55hq-39rx.json +++ b/advisories/unreviewed/2024/04/GHSA-7fv8-55hq-39rx/GHSA-7fv8-55hq-39rx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-7jpm-7cvw-x3ph/GHSA-7jpm-7cvw-x3ph.json b/advisories/unreviewed/2024/04/GHSA-7jpm-7cvw-x3ph/GHSA-7jpm-7cvw-x3ph.json index 431d7ac3156..118ff29270a 100644 --- a/advisories/unreviewed/2024/04/GHSA-7jpm-7cvw-x3ph/GHSA-7jpm-7cvw-x3ph.json +++ b/advisories/unreviewed/2024/04/GHSA-7jpm-7cvw-x3ph/GHSA-7jpm-7cvw-x3ph.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-83jp-w434-jv4p/GHSA-83jp-w434-jv4p.json b/advisories/unreviewed/2024/04/GHSA-83jp-w434-jv4p/GHSA-83jp-w434-jv4p.json index 78ab4683ccf..b391420bd8f 100644 --- a/advisories/unreviewed/2024/04/GHSA-83jp-w434-jv4p/GHSA-83jp-w434-jv4p.json +++ b/advisories/unreviewed/2024/04/GHSA-83jp-w434-jv4p/GHSA-83jp-w434-jv4p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-8fp3-w5p8-ppf5/GHSA-8fp3-w5p8-ppf5.json b/advisories/unreviewed/2024/04/GHSA-8fp3-w5p8-ppf5/GHSA-8fp3-w5p8-ppf5.json index 79b4fe6ff88..d3fb2db2fb4 100644 --- a/advisories/unreviewed/2024/04/GHSA-8fp3-w5p8-ppf5/GHSA-8fp3-w5p8-ppf5.json +++ b/advisories/unreviewed/2024/04/GHSA-8fp3-w5p8-ppf5/GHSA-8fp3-w5p8-ppf5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-8g9c-f7h3-mxcj/GHSA-8g9c-f7h3-mxcj.json b/advisories/unreviewed/2024/04/GHSA-8g9c-f7h3-mxcj/GHSA-8g9c-f7h3-mxcj.json index cf772f0e1bc..2a2d4715638 100644 --- a/advisories/unreviewed/2024/04/GHSA-8g9c-f7h3-mxcj/GHSA-8g9c-f7h3-mxcj.json +++ b/advisories/unreviewed/2024/04/GHSA-8g9c-f7h3-mxcj/GHSA-8g9c-f7h3-mxcj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-8hmx-3p38-h5rw/GHSA-8hmx-3p38-h5rw.json b/advisories/unreviewed/2024/04/GHSA-8hmx-3p38-h5rw/GHSA-8hmx-3p38-h5rw.json index e384690ed09..1c7ea6e9262 100644 --- a/advisories/unreviewed/2024/04/GHSA-8hmx-3p38-h5rw/GHSA-8hmx-3p38-h5rw.json +++ b/advisories/unreviewed/2024/04/GHSA-8hmx-3p38-h5rw/GHSA-8hmx-3p38-h5rw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-8p8h-55m5-85pr/GHSA-8p8h-55m5-85pr.json b/advisories/unreviewed/2024/04/GHSA-8p8h-55m5-85pr/GHSA-8p8h-55m5-85pr.json index e3974a2937d..f8b94152558 100644 --- a/advisories/unreviewed/2024/04/GHSA-8p8h-55m5-85pr/GHSA-8p8h-55m5-85pr.json +++ b/advisories/unreviewed/2024/04/GHSA-8p8h-55m5-85pr/GHSA-8p8h-55m5-85pr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-9hh8-jpxm-8j39/GHSA-9hh8-jpxm-8j39.json b/advisories/unreviewed/2024/04/GHSA-9hh8-jpxm-8j39/GHSA-9hh8-jpxm-8j39.json index 9f6ae0f67f2..25eb96ef0eb 100644 --- a/advisories/unreviewed/2024/04/GHSA-9hh8-jpxm-8j39/GHSA-9hh8-jpxm-8j39.json +++ b/advisories/unreviewed/2024/04/GHSA-9hh8-jpxm-8j39/GHSA-9hh8-jpxm-8j39.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-9m2p-fj6h-mrv7/GHSA-9m2p-fj6h-mrv7.json b/advisories/unreviewed/2024/04/GHSA-9m2p-fj6h-mrv7/GHSA-9m2p-fj6h-mrv7.json index e76d3998a38..1c58a9158f5 100644 --- a/advisories/unreviewed/2024/04/GHSA-9m2p-fj6h-mrv7/GHSA-9m2p-fj6h-mrv7.json +++ b/advisories/unreviewed/2024/04/GHSA-9m2p-fj6h-mrv7/GHSA-9m2p-fj6h-mrv7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-9xmp-r23g-wmj9/GHSA-9xmp-r23g-wmj9.json b/advisories/unreviewed/2024/04/GHSA-9xmp-r23g-wmj9/GHSA-9xmp-r23g-wmj9.json index b7b20114177..1e17d942ec6 100644 --- a/advisories/unreviewed/2024/04/GHSA-9xmp-r23g-wmj9/GHSA-9xmp-r23g-wmj9.json +++ b/advisories/unreviewed/2024/04/GHSA-9xmp-r23g-wmj9/GHSA-9xmp-r23g-wmj9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-c8fq-23wj-f2cc/GHSA-c8fq-23wj-f2cc.json b/advisories/unreviewed/2024/04/GHSA-c8fq-23wj-f2cc/GHSA-c8fq-23wj-f2cc.json index c5371da3db9..e24c375a8d3 100644 --- a/advisories/unreviewed/2024/04/GHSA-c8fq-23wj-f2cc/GHSA-c8fq-23wj-f2cc.json +++ b/advisories/unreviewed/2024/04/GHSA-c8fq-23wj-f2cc/GHSA-c8fq-23wj-f2cc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-c949-3ppw-h395/GHSA-c949-3ppw-h395.json b/advisories/unreviewed/2024/04/GHSA-c949-3ppw-h395/GHSA-c949-3ppw-h395.json index b77a038416d..9ed1a938cc8 100644 --- a/advisories/unreviewed/2024/04/GHSA-c949-3ppw-h395/GHSA-c949-3ppw-h395.json +++ b/advisories/unreviewed/2024/04/GHSA-c949-3ppw-h395/GHSA-c949-3ppw-h395.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-cf79-vgxj-c425/GHSA-cf79-vgxj-c425.json b/advisories/unreviewed/2024/04/GHSA-cf79-vgxj-c425/GHSA-cf79-vgxj-c425.json index 71623538176..7a9fa5d1628 100644 --- a/advisories/unreviewed/2024/04/GHSA-cf79-vgxj-c425/GHSA-cf79-vgxj-c425.json +++ b/advisories/unreviewed/2024/04/GHSA-cf79-vgxj-c425/GHSA-cf79-vgxj-c425.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-f5pp-ccfh-pv5h/GHSA-f5pp-ccfh-pv5h.json b/advisories/unreviewed/2024/04/GHSA-f5pp-ccfh-pv5h/GHSA-f5pp-ccfh-pv5h.json index e65cd7e0b39..24cdebb072d 100644 --- a/advisories/unreviewed/2024/04/GHSA-f5pp-ccfh-pv5h/GHSA-f5pp-ccfh-pv5h.json +++ b/advisories/unreviewed/2024/04/GHSA-f5pp-ccfh-pv5h/GHSA-f5pp-ccfh-pv5h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-fg45-96mh-43jx/GHSA-fg45-96mh-43jx.json b/advisories/unreviewed/2024/04/GHSA-fg45-96mh-43jx/GHSA-fg45-96mh-43jx.json index b09623b985d..f7be01b4f1f 100644 --- a/advisories/unreviewed/2024/04/GHSA-fg45-96mh-43jx/GHSA-fg45-96mh-43jx.json +++ b/advisories/unreviewed/2024/04/GHSA-fg45-96mh-43jx/GHSA-fg45-96mh-43jx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-fhxj-mqjh-cmr5/GHSA-fhxj-mqjh-cmr5.json b/advisories/unreviewed/2024/04/GHSA-fhxj-mqjh-cmr5/GHSA-fhxj-mqjh-cmr5.json index 66eff35e794..4407c09e70b 100644 --- a/advisories/unreviewed/2024/04/GHSA-fhxj-mqjh-cmr5/GHSA-fhxj-mqjh-cmr5.json +++ b/advisories/unreviewed/2024/04/GHSA-fhxj-mqjh-cmr5/GHSA-fhxj-mqjh-cmr5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-fqfp-8j7w-mhwh/GHSA-fqfp-8j7w-mhwh.json b/advisories/unreviewed/2024/04/GHSA-fqfp-8j7w-mhwh/GHSA-fqfp-8j7w-mhwh.json index 5f299cd28d9..f1297ce27a2 100644 --- a/advisories/unreviewed/2024/04/GHSA-fqfp-8j7w-mhwh/GHSA-fqfp-8j7w-mhwh.json +++ b/advisories/unreviewed/2024/04/GHSA-fqfp-8j7w-mhwh/GHSA-fqfp-8j7w-mhwh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-fvp6-8p9w-vffq/GHSA-fvp6-8p9w-vffq.json b/advisories/unreviewed/2024/04/GHSA-fvp6-8p9w-vffq/GHSA-fvp6-8p9w-vffq.json index 781b540f17d..1c2be7c19a1 100644 --- a/advisories/unreviewed/2024/04/GHSA-fvp6-8p9w-vffq/GHSA-fvp6-8p9w-vffq.json +++ b/advisories/unreviewed/2024/04/GHSA-fvp6-8p9w-vffq/GHSA-fvp6-8p9w-vffq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-fx89-732f-4cfg/GHSA-fx89-732f-4cfg.json b/advisories/unreviewed/2024/04/GHSA-fx89-732f-4cfg/GHSA-fx89-732f-4cfg.json index d12034892e0..34193532056 100644 --- a/advisories/unreviewed/2024/04/GHSA-fx89-732f-4cfg/GHSA-fx89-732f-4cfg.json +++ b/advisories/unreviewed/2024/04/GHSA-fx89-732f-4cfg/GHSA-fx89-732f-4cfg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-g2v3-62rj-h6p6/GHSA-g2v3-62rj-h6p6.json b/advisories/unreviewed/2024/04/GHSA-g2v3-62rj-h6p6/GHSA-g2v3-62rj-h6p6.json index 89f67dd95c4..d7f6f2bdad9 100644 --- a/advisories/unreviewed/2024/04/GHSA-g2v3-62rj-h6p6/GHSA-g2v3-62rj-h6p6.json +++ b/advisories/unreviewed/2024/04/GHSA-g2v3-62rj-h6p6/GHSA-g2v3-62rj-h6p6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-g399-gv5f-cqhf/GHSA-g399-gv5f-cqhf.json b/advisories/unreviewed/2024/04/GHSA-g399-gv5f-cqhf/GHSA-g399-gv5f-cqhf.json index aa934156517..60bb3f46df4 100644 --- a/advisories/unreviewed/2024/04/GHSA-g399-gv5f-cqhf/GHSA-g399-gv5f-cqhf.json +++ b/advisories/unreviewed/2024/04/GHSA-g399-gv5f-cqhf/GHSA-g399-gv5f-cqhf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-g47j-j35v-2954/GHSA-g47j-j35v-2954.json b/advisories/unreviewed/2024/04/GHSA-g47j-j35v-2954/GHSA-g47j-j35v-2954.json index 8f37f077df8..de1301529bf 100644 --- a/advisories/unreviewed/2024/04/GHSA-g47j-j35v-2954/GHSA-g47j-j35v-2954.json +++ b/advisories/unreviewed/2024/04/GHSA-g47j-j35v-2954/GHSA-g47j-j35v-2954.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-g7m8-98h3-rj3p/GHSA-g7m8-98h3-rj3p.json b/advisories/unreviewed/2024/04/GHSA-g7m8-98h3-rj3p/GHSA-g7m8-98h3-rj3p.json index 27f2ebc66c8..00c8e9382ce 100644 --- a/advisories/unreviewed/2024/04/GHSA-g7m8-98h3-rj3p/GHSA-g7m8-98h3-rj3p.json +++ b/advisories/unreviewed/2024/04/GHSA-g7m8-98h3-rj3p/GHSA-g7m8-98h3-rj3p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-gvmr-9xc2-m89g/GHSA-gvmr-9xc2-m89g.json b/advisories/unreviewed/2024/04/GHSA-gvmr-9xc2-m89g/GHSA-gvmr-9xc2-m89g.json index baa67257b1c..20973b88ab7 100644 --- a/advisories/unreviewed/2024/04/GHSA-gvmr-9xc2-m89g/GHSA-gvmr-9xc2-m89g.json +++ b/advisories/unreviewed/2024/04/GHSA-gvmr-9xc2-m89g/GHSA-gvmr-9xc2-m89g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-gvqq-xg2j-r2p6/GHSA-gvqq-xg2j-r2p6.json b/advisories/unreviewed/2024/04/GHSA-gvqq-xg2j-r2p6/GHSA-gvqq-xg2j-r2p6.json index 4b14ef223d4..11499df9841 100644 --- a/advisories/unreviewed/2024/04/GHSA-gvqq-xg2j-r2p6/GHSA-gvqq-xg2j-r2p6.json +++ b/advisories/unreviewed/2024/04/GHSA-gvqq-xg2j-r2p6/GHSA-gvqq-xg2j-r2p6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-gvrj-cx9v-hg3m/GHSA-gvrj-cx9v-hg3m.json b/advisories/unreviewed/2024/04/GHSA-gvrj-cx9v-hg3m/GHSA-gvrj-cx9v-hg3m.json index e245f1efae8..3ccf69de7fc 100644 --- a/advisories/unreviewed/2024/04/GHSA-gvrj-cx9v-hg3m/GHSA-gvrj-cx9v-hg3m.json +++ b/advisories/unreviewed/2024/04/GHSA-gvrj-cx9v-hg3m/GHSA-gvrj-cx9v-hg3m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-h4r9-mgj3-f327/GHSA-h4r9-mgj3-f327.json b/advisories/unreviewed/2024/04/GHSA-h4r9-mgj3-f327/GHSA-h4r9-mgj3-f327.json index e8ef9ca1e66..0ee65fcd370 100644 --- a/advisories/unreviewed/2024/04/GHSA-h4r9-mgj3-f327/GHSA-h4r9-mgj3-f327.json +++ b/advisories/unreviewed/2024/04/GHSA-h4r9-mgj3-f327/GHSA-h4r9-mgj3-f327.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-h75w-54m5-h4x7/GHSA-h75w-54m5-h4x7.json b/advisories/unreviewed/2024/04/GHSA-h75w-54m5-h4x7/GHSA-h75w-54m5-h4x7.json index 6dc9e7dea19..1aea0aba613 100644 --- a/advisories/unreviewed/2024/04/GHSA-h75w-54m5-h4x7/GHSA-h75w-54m5-h4x7.json +++ b/advisories/unreviewed/2024/04/GHSA-h75w-54m5-h4x7/GHSA-h75w-54m5-h4x7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-h9f9-5v63-95r8/GHSA-h9f9-5v63-95r8.json b/advisories/unreviewed/2024/04/GHSA-h9f9-5v63-95r8/GHSA-h9f9-5v63-95r8.json index 95846fb1985..f7e50c43a62 100644 --- a/advisories/unreviewed/2024/04/GHSA-h9f9-5v63-95r8/GHSA-h9f9-5v63-95r8.json +++ b/advisories/unreviewed/2024/04/GHSA-h9f9-5v63-95r8/GHSA-h9f9-5v63-95r8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-hfhm-8g9w-r3xf/GHSA-hfhm-8g9w-r3xf.json b/advisories/unreviewed/2024/04/GHSA-hfhm-8g9w-r3xf/GHSA-hfhm-8g9w-r3xf.json index f6c254d8f97..c4916b12c68 100644 --- a/advisories/unreviewed/2024/04/GHSA-hfhm-8g9w-r3xf/GHSA-hfhm-8g9w-r3xf.json +++ b/advisories/unreviewed/2024/04/GHSA-hfhm-8g9w-r3xf/GHSA-hfhm-8g9w-r3xf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-hgxh-g8gm-w483/GHSA-hgxh-g8gm-w483.json b/advisories/unreviewed/2024/04/GHSA-hgxh-g8gm-w483/GHSA-hgxh-g8gm-w483.json index c62ced66ee5..e80ad931b10 100644 --- a/advisories/unreviewed/2024/04/GHSA-hgxh-g8gm-w483/GHSA-hgxh-g8gm-w483.json +++ b/advisories/unreviewed/2024/04/GHSA-hgxh-g8gm-w483/GHSA-hgxh-g8gm-w483.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-hphg-c6x6-ff8h/GHSA-hphg-c6x6-ff8h.json b/advisories/unreviewed/2024/04/GHSA-hphg-c6x6-ff8h/GHSA-hphg-c6x6-ff8h.json index 6faad509b20..611e2be899d 100644 --- a/advisories/unreviewed/2024/04/GHSA-hphg-c6x6-ff8h/GHSA-hphg-c6x6-ff8h.json +++ b/advisories/unreviewed/2024/04/GHSA-hphg-c6x6-ff8h/GHSA-hphg-c6x6-ff8h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-hq8c-9c7w-qmgh/GHSA-hq8c-9c7w-qmgh.json b/advisories/unreviewed/2024/04/GHSA-hq8c-9c7w-qmgh/GHSA-hq8c-9c7w-qmgh.json index b8bc1f5f19b..5f9104b988b 100644 --- a/advisories/unreviewed/2024/04/GHSA-hq8c-9c7w-qmgh/GHSA-hq8c-9c7w-qmgh.json +++ b/advisories/unreviewed/2024/04/GHSA-hq8c-9c7w-qmgh/GHSA-hq8c-9c7w-qmgh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-hqjp-8rmv-6c38/GHSA-hqjp-8rmv-6c38.json b/advisories/unreviewed/2024/04/GHSA-hqjp-8rmv-6c38/GHSA-hqjp-8rmv-6c38.json index 8695dc5d734..5fc36131076 100644 --- a/advisories/unreviewed/2024/04/GHSA-hqjp-8rmv-6c38/GHSA-hqjp-8rmv-6c38.json +++ b/advisories/unreviewed/2024/04/GHSA-hqjp-8rmv-6c38/GHSA-hqjp-8rmv-6c38.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-j273-w4fm-gq4h/GHSA-j273-w4fm-gq4h.json b/advisories/unreviewed/2024/04/GHSA-j273-w4fm-gq4h/GHSA-j273-w4fm-gq4h.json index b70155dfe4f..d94f3a10ab1 100644 --- a/advisories/unreviewed/2024/04/GHSA-j273-w4fm-gq4h/GHSA-j273-w4fm-gq4h.json +++ b/advisories/unreviewed/2024/04/GHSA-j273-w4fm-gq4h/GHSA-j273-w4fm-gq4h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-j2rw-fqcc-853m/GHSA-j2rw-fqcc-853m.json b/advisories/unreviewed/2024/04/GHSA-j2rw-fqcc-853m/GHSA-j2rw-fqcc-853m.json index 9c59d7ab50d..1f88ed563e9 100644 --- a/advisories/unreviewed/2024/04/GHSA-j2rw-fqcc-853m/GHSA-j2rw-fqcc-853m.json +++ b/advisories/unreviewed/2024/04/GHSA-j2rw-fqcc-853m/GHSA-j2rw-fqcc-853m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-j5pj-g556-8w7q/GHSA-j5pj-g556-8w7q.json b/advisories/unreviewed/2024/04/GHSA-j5pj-g556-8w7q/GHSA-j5pj-g556-8w7q.json index dd6a2d4c4be..ade3d129e7f 100644 --- a/advisories/unreviewed/2024/04/GHSA-j5pj-g556-8w7q/GHSA-j5pj-g556-8w7q.json +++ b/advisories/unreviewed/2024/04/GHSA-j5pj-g556-8w7q/GHSA-j5pj-g556-8w7q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-jv75-4p2q-rw9j/GHSA-jv75-4p2q-rw9j.json b/advisories/unreviewed/2024/04/GHSA-jv75-4p2q-rw9j/GHSA-jv75-4p2q-rw9j.json index dcc75b9e330..2adb7d4d829 100644 --- a/advisories/unreviewed/2024/04/GHSA-jv75-4p2q-rw9j/GHSA-jv75-4p2q-rw9j.json +++ b/advisories/unreviewed/2024/04/GHSA-jv75-4p2q-rw9j/GHSA-jv75-4p2q-rw9j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-m46f-6r28-g554/GHSA-m46f-6r28-g554.json b/advisories/unreviewed/2024/04/GHSA-m46f-6r28-g554/GHSA-m46f-6r28-g554.json index 2e18bf3f71c..021ef437891 100644 --- a/advisories/unreviewed/2024/04/GHSA-m46f-6r28-g554/GHSA-m46f-6r28-g554.json +++ b/advisories/unreviewed/2024/04/GHSA-m46f-6r28-g554/GHSA-m46f-6r28-g554.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-m9vm-h5cv-g8mc/GHSA-m9vm-h5cv-g8mc.json b/advisories/unreviewed/2024/04/GHSA-m9vm-h5cv-g8mc/GHSA-m9vm-h5cv-g8mc.json index 8c5cb937501..26fcc359f79 100644 --- a/advisories/unreviewed/2024/04/GHSA-m9vm-h5cv-g8mc/GHSA-m9vm-h5cv-g8mc.json +++ b/advisories/unreviewed/2024/04/GHSA-m9vm-h5cv-g8mc/GHSA-m9vm-h5cv-g8mc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-mcj7-3h2r-x449/GHSA-mcj7-3h2r-x449.json b/advisories/unreviewed/2024/04/GHSA-mcj7-3h2r-x449/GHSA-mcj7-3h2r-x449.json index ce6f8a7941d..6488db70858 100644 --- a/advisories/unreviewed/2024/04/GHSA-mcj7-3h2r-x449/GHSA-mcj7-3h2r-x449.json +++ b/advisories/unreviewed/2024/04/GHSA-mcj7-3h2r-x449/GHSA-mcj7-3h2r-x449.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-mmmh-j7wc-66pp/GHSA-mmmh-j7wc-66pp.json b/advisories/unreviewed/2024/04/GHSA-mmmh-j7wc-66pp/GHSA-mmmh-j7wc-66pp.json index 7f4142303d4..88cd320ad43 100644 --- a/advisories/unreviewed/2024/04/GHSA-mmmh-j7wc-66pp/GHSA-mmmh-j7wc-66pp.json +++ b/advisories/unreviewed/2024/04/GHSA-mmmh-j7wc-66pp/GHSA-mmmh-j7wc-66pp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-mw72-pm78-7w47/GHSA-mw72-pm78-7w47.json b/advisories/unreviewed/2024/04/GHSA-mw72-pm78-7w47/GHSA-mw72-pm78-7w47.json index 065d7e9dceb..b2859facc57 100644 --- a/advisories/unreviewed/2024/04/GHSA-mw72-pm78-7w47/GHSA-mw72-pm78-7w47.json +++ b/advisories/unreviewed/2024/04/GHSA-mw72-pm78-7w47/GHSA-mw72-pm78-7w47.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-mxgq-9hhc-gf5w/GHSA-mxgq-9hhc-gf5w.json b/advisories/unreviewed/2024/04/GHSA-mxgq-9hhc-gf5w/GHSA-mxgq-9hhc-gf5w.json index 064f78ba22b..7730d4e9aaa 100644 --- a/advisories/unreviewed/2024/04/GHSA-mxgq-9hhc-gf5w/GHSA-mxgq-9hhc-gf5w.json +++ b/advisories/unreviewed/2024/04/GHSA-mxgq-9hhc-gf5w/GHSA-mxgq-9hhc-gf5w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-p5cr-h893-2pjv/GHSA-p5cr-h893-2pjv.json b/advisories/unreviewed/2024/04/GHSA-p5cr-h893-2pjv/GHSA-p5cr-h893-2pjv.json index 1a24918d71c..ac8d05308bb 100644 --- a/advisories/unreviewed/2024/04/GHSA-p5cr-h893-2pjv/GHSA-p5cr-h893-2pjv.json +++ b/advisories/unreviewed/2024/04/GHSA-p5cr-h893-2pjv/GHSA-p5cr-h893-2pjv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-pj2j-w9fr-j7p8/GHSA-pj2j-w9fr-j7p8.json b/advisories/unreviewed/2024/04/GHSA-pj2j-w9fr-j7p8/GHSA-pj2j-w9fr-j7p8.json index 40e4c779213..935dcf2f4a5 100644 --- a/advisories/unreviewed/2024/04/GHSA-pj2j-w9fr-j7p8/GHSA-pj2j-w9fr-j7p8.json +++ b/advisories/unreviewed/2024/04/GHSA-pj2j-w9fr-j7p8/GHSA-pj2j-w9fr-j7p8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-pvpc-4cv3-893v/GHSA-pvpc-4cv3-893v.json b/advisories/unreviewed/2024/04/GHSA-pvpc-4cv3-893v/GHSA-pvpc-4cv3-893v.json index 12188edf05a..061bffe65f5 100644 --- a/advisories/unreviewed/2024/04/GHSA-pvpc-4cv3-893v/GHSA-pvpc-4cv3-893v.json +++ b/advisories/unreviewed/2024/04/GHSA-pvpc-4cv3-893v/GHSA-pvpc-4cv3-893v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-q74p-v389-xm2f/GHSA-q74p-v389-xm2f.json b/advisories/unreviewed/2024/04/GHSA-q74p-v389-xm2f/GHSA-q74p-v389-xm2f.json index de0ea86c979..0b5b7403f9a 100644 --- a/advisories/unreviewed/2024/04/GHSA-q74p-v389-xm2f/GHSA-q74p-v389-xm2f.json +++ b/advisories/unreviewed/2024/04/GHSA-q74p-v389-xm2f/GHSA-q74p-v389-xm2f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-q7cc-2px9-cfh5/GHSA-q7cc-2px9-cfh5.json b/advisories/unreviewed/2024/04/GHSA-q7cc-2px9-cfh5/GHSA-q7cc-2px9-cfh5.json index 0575b41443a..8804e976c79 100644 --- a/advisories/unreviewed/2024/04/GHSA-q7cc-2px9-cfh5/GHSA-q7cc-2px9-cfh5.json +++ b/advisories/unreviewed/2024/04/GHSA-q7cc-2px9-cfh5/GHSA-q7cc-2px9-cfh5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-qgc6-rq8f-7f43/GHSA-qgc6-rq8f-7f43.json b/advisories/unreviewed/2024/04/GHSA-qgc6-rq8f-7f43/GHSA-qgc6-rq8f-7f43.json index 43aba7d6f3e..2e4cdd2387e 100644 --- a/advisories/unreviewed/2024/04/GHSA-qgc6-rq8f-7f43/GHSA-qgc6-rq8f-7f43.json +++ b/advisories/unreviewed/2024/04/GHSA-qgc6-rq8f-7f43/GHSA-qgc6-rq8f-7f43.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-qp6g-f22x-mgxr/GHSA-qp6g-f22x-mgxr.json b/advisories/unreviewed/2024/04/GHSA-qp6g-f22x-mgxr/GHSA-qp6g-f22x-mgxr.json index cd28001f391..8a6e1efa5ca 100644 --- a/advisories/unreviewed/2024/04/GHSA-qp6g-f22x-mgxr/GHSA-qp6g-f22x-mgxr.json +++ b/advisories/unreviewed/2024/04/GHSA-qp6g-f22x-mgxr/GHSA-qp6g-f22x-mgxr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-r7wq-fwwj-4969/GHSA-r7wq-fwwj-4969.json b/advisories/unreviewed/2024/04/GHSA-r7wq-fwwj-4969/GHSA-r7wq-fwwj-4969.json index abf8858792f..5bbe6268324 100644 --- a/advisories/unreviewed/2024/04/GHSA-r7wq-fwwj-4969/GHSA-r7wq-fwwj-4969.json +++ b/advisories/unreviewed/2024/04/GHSA-r7wq-fwwj-4969/GHSA-r7wq-fwwj-4969.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-rc85-79f2-729p/GHSA-rc85-79f2-729p.json b/advisories/unreviewed/2024/04/GHSA-rc85-79f2-729p/GHSA-rc85-79f2-729p.json index 4333fb87538..965aeca3a1b 100644 --- a/advisories/unreviewed/2024/04/GHSA-rc85-79f2-729p/GHSA-rc85-79f2-729p.json +++ b/advisories/unreviewed/2024/04/GHSA-rc85-79f2-729p/GHSA-rc85-79f2-729p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-v6p9-97jc-949f/GHSA-v6p9-97jc-949f.json b/advisories/unreviewed/2024/04/GHSA-v6p9-97jc-949f/GHSA-v6p9-97jc-949f.json index 02ee464fc57..6dd685757c2 100644 --- a/advisories/unreviewed/2024/04/GHSA-v6p9-97jc-949f/GHSA-v6p9-97jc-949f.json +++ b/advisories/unreviewed/2024/04/GHSA-v6p9-97jc-949f/GHSA-v6p9-97jc-949f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-v7j3-v7h9-349h/GHSA-v7j3-v7h9-349h.json b/advisories/unreviewed/2024/04/GHSA-v7j3-v7h9-349h/GHSA-v7j3-v7h9-349h.json index 97c0a2a5459..dd949a8161b 100644 --- a/advisories/unreviewed/2024/04/GHSA-v7j3-v7h9-349h/GHSA-v7j3-v7h9-349h.json +++ b/advisories/unreviewed/2024/04/GHSA-v7j3-v7h9-349h/GHSA-v7j3-v7h9-349h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-vgx7-rc5c-7cxw/GHSA-vgx7-rc5c-7cxw.json b/advisories/unreviewed/2024/04/GHSA-vgx7-rc5c-7cxw/GHSA-vgx7-rc5c-7cxw.json index 0f8a6093e99..bb5d01c868a 100644 --- a/advisories/unreviewed/2024/04/GHSA-vgx7-rc5c-7cxw/GHSA-vgx7-rc5c-7cxw.json +++ b/advisories/unreviewed/2024/04/GHSA-vgx7-rc5c-7cxw/GHSA-vgx7-rc5c-7cxw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-vv26-p739-hhr7/GHSA-vv26-p739-hhr7.json b/advisories/unreviewed/2024/04/GHSA-vv26-p739-hhr7/GHSA-vv26-p739-hhr7.json index a8e62f2525d..0e379084a6a 100644 --- a/advisories/unreviewed/2024/04/GHSA-vv26-p739-hhr7/GHSA-vv26-p739-hhr7.json +++ b/advisories/unreviewed/2024/04/GHSA-vv26-p739-hhr7/GHSA-vv26-p739-hhr7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-w759-w5c4-753m/GHSA-w759-w5c4-753m.json b/advisories/unreviewed/2024/04/GHSA-w759-w5c4-753m/GHSA-w759-w5c4-753m.json index 2c71d0412d9..0325c7a81dd 100644 --- a/advisories/unreviewed/2024/04/GHSA-w759-w5c4-753m/GHSA-w759-w5c4-753m.json +++ b/advisories/unreviewed/2024/04/GHSA-w759-w5c4-753m/GHSA-w759-w5c4-753m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-wcgj-gfq5-2rvf/GHSA-wcgj-gfq5-2rvf.json b/advisories/unreviewed/2024/04/GHSA-wcgj-gfq5-2rvf/GHSA-wcgj-gfq5-2rvf.json index b250ecd4d75..2fdfcc2a41d 100644 --- a/advisories/unreviewed/2024/04/GHSA-wcgj-gfq5-2rvf/GHSA-wcgj-gfq5-2rvf.json +++ b/advisories/unreviewed/2024/04/GHSA-wcgj-gfq5-2rvf/GHSA-wcgj-gfq5-2rvf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-wq6j-gvvq-8w8r/GHSA-wq6j-gvvq-8w8r.json b/advisories/unreviewed/2024/04/GHSA-wq6j-gvvq-8w8r/GHSA-wq6j-gvvq-8w8r.json index 9528640a0a2..9d0999bb5d6 100644 --- a/advisories/unreviewed/2024/04/GHSA-wq6j-gvvq-8w8r/GHSA-wq6j-gvvq-8w8r.json +++ b/advisories/unreviewed/2024/04/GHSA-wq6j-gvvq-8w8r/GHSA-wq6j-gvvq-8w8r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-wr2q-44mp-hgqr/GHSA-wr2q-44mp-hgqr.json b/advisories/unreviewed/2024/04/GHSA-wr2q-44mp-hgqr/GHSA-wr2q-44mp-hgqr.json index 0875fdf880d..5aaac5d8fd5 100644 --- a/advisories/unreviewed/2024/04/GHSA-wr2q-44mp-hgqr/GHSA-wr2q-44mp-hgqr.json +++ b/advisories/unreviewed/2024/04/GHSA-wr2q-44mp-hgqr/GHSA-wr2q-44mp-hgqr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-wxjw-jrvp-g3j8/GHSA-wxjw-jrvp-g3j8.json b/advisories/unreviewed/2024/04/GHSA-wxjw-jrvp-g3j8/GHSA-wxjw-jrvp-g3j8.json index b5919e56885..3c2f5ca4b92 100644 --- a/advisories/unreviewed/2024/04/GHSA-wxjw-jrvp-g3j8/GHSA-wxjw-jrvp-g3j8.json +++ b/advisories/unreviewed/2024/04/GHSA-wxjw-jrvp-g3j8/GHSA-wxjw-jrvp-g3j8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-wxwf-hc4j-fc3q/GHSA-wxwf-hc4j-fc3q.json b/advisories/unreviewed/2024/04/GHSA-wxwf-hc4j-fc3q/GHSA-wxwf-hc4j-fc3q.json index 99883218c51..2dcf2c85d22 100644 --- a/advisories/unreviewed/2024/04/GHSA-wxwf-hc4j-fc3q/GHSA-wxwf-hc4j-fc3q.json +++ b/advisories/unreviewed/2024/04/GHSA-wxwf-hc4j-fc3q/GHSA-wxwf-hc4j-fc3q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-x49r-f7f3-ghcf/GHSA-x49r-f7f3-ghcf.json b/advisories/unreviewed/2024/04/GHSA-x49r-f7f3-ghcf/GHSA-x49r-f7f3-ghcf.json index cff33512d16..0adbeedf23f 100644 --- a/advisories/unreviewed/2024/04/GHSA-x49r-f7f3-ghcf/GHSA-x49r-f7f3-ghcf.json +++ b/advisories/unreviewed/2024/04/GHSA-x49r-f7f3-ghcf/GHSA-x49r-f7f3-ghcf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-xqh5-pm55-j7f5/GHSA-xqh5-pm55-j7f5.json b/advisories/unreviewed/2024/04/GHSA-xqh5-pm55-j7f5/GHSA-xqh5-pm55-j7f5.json index 635992c3f2b..6594f8446ab 100644 --- a/advisories/unreviewed/2024/04/GHSA-xqh5-pm55-j7f5/GHSA-xqh5-pm55-j7f5.json +++ b/advisories/unreviewed/2024/04/GHSA-xqh5-pm55-j7f5/GHSA-xqh5-pm55-j7f5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-xrwr-3m4h-cqcx/GHSA-xrwr-3m4h-cqcx.json b/advisories/unreviewed/2024/04/GHSA-xrwr-3m4h-cqcx/GHSA-xrwr-3m4h-cqcx.json index c2843d25f51..bd39173e067 100644 --- a/advisories/unreviewed/2024/04/GHSA-xrwr-3m4h-cqcx/GHSA-xrwr-3m4h-cqcx.json +++ b/advisories/unreviewed/2024/04/GHSA-xrwr-3m4h-cqcx/GHSA-xrwr-3m4h-cqcx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-262h-qq26-j72g/GHSA-262h-qq26-j72g.json b/advisories/unreviewed/2024/05/GHSA-262h-qq26-j72g/GHSA-262h-qq26-j72g.json index 3e7569f9087..b8cb84c05d5 100644 --- a/advisories/unreviewed/2024/05/GHSA-262h-qq26-j72g/GHSA-262h-qq26-j72g.json +++ b/advisories/unreviewed/2024/05/GHSA-262h-qq26-j72g/GHSA-262h-qq26-j72g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-2rw4-j3h5-72xp/GHSA-2rw4-j3h5-72xp.json b/advisories/unreviewed/2024/05/GHSA-2rw4-j3h5-72xp/GHSA-2rw4-j3h5-72xp.json index 257cef2ad6d..6d4ab88464e 100644 --- a/advisories/unreviewed/2024/05/GHSA-2rw4-j3h5-72xp/GHSA-2rw4-j3h5-72xp.json +++ b/advisories/unreviewed/2024/05/GHSA-2rw4-j3h5-72xp/GHSA-2rw4-j3h5-72xp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-3r68-84rw-29ww/GHSA-3r68-84rw-29ww.json b/advisories/unreviewed/2024/05/GHSA-3r68-84rw-29ww/GHSA-3r68-84rw-29ww.json index fec339a20f5..172e6a2cc21 100644 --- a/advisories/unreviewed/2024/05/GHSA-3r68-84rw-29ww/GHSA-3r68-84rw-29ww.json +++ b/advisories/unreviewed/2024/05/GHSA-3r68-84rw-29ww/GHSA-3r68-84rw-29ww.json @@ -7,12 +7,8 @@ "CVE-2024-32610" ], "details": "HDF5 Library through 1.14.3 has a SEGV in H5T_close_real in H5T.c, resulting in a corrupted instruction pointer.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-5g7f-9v94-gj5g/GHSA-5g7f-9v94-gj5g.json b/advisories/unreviewed/2024/05/GHSA-5g7f-9v94-gj5g/GHSA-5g7f-9v94-gj5g.json index fd969cd4d8e..2998da53830 100644 --- a/advisories/unreviewed/2024/05/GHSA-5g7f-9v94-gj5g/GHSA-5g7f-9v94-gj5g.json +++ b/advisories/unreviewed/2024/05/GHSA-5g7f-9v94-gj5g/GHSA-5g7f-9v94-gj5g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-5hcj-87pw-f7w4/GHSA-5hcj-87pw-f7w4.json b/advisories/unreviewed/2024/05/GHSA-5hcj-87pw-f7w4/GHSA-5hcj-87pw-f7w4.json index 4e93b481336..c1c7f8528a6 100644 --- a/advisories/unreviewed/2024/05/GHSA-5hcj-87pw-f7w4/GHSA-5hcj-87pw-f7w4.json +++ b/advisories/unreviewed/2024/05/GHSA-5hcj-87pw-f7w4/GHSA-5hcj-87pw-f7w4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-5jhx-vpph-fr8r/GHSA-5jhx-vpph-fr8r.json b/advisories/unreviewed/2024/05/GHSA-5jhx-vpph-fr8r/GHSA-5jhx-vpph-fr8r.json index cf4031989b2..4af84d2f599 100644 --- a/advisories/unreviewed/2024/05/GHSA-5jhx-vpph-fr8r/GHSA-5jhx-vpph-fr8r.json +++ b/advisories/unreviewed/2024/05/GHSA-5jhx-vpph-fr8r/GHSA-5jhx-vpph-fr8r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-7g2q-cf23-xvj2/GHSA-7g2q-cf23-xvj2.json b/advisories/unreviewed/2024/05/GHSA-7g2q-cf23-xvj2/GHSA-7g2q-cf23-xvj2.json index 46127a8c644..a89a95032b4 100644 --- a/advisories/unreviewed/2024/05/GHSA-7g2q-cf23-xvj2/GHSA-7g2q-cf23-xvj2.json +++ b/advisories/unreviewed/2024/05/GHSA-7g2q-cf23-xvj2/GHSA-7g2q-cf23-xvj2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-8ppj-8m99-39pw/GHSA-8ppj-8m99-39pw.json b/advisories/unreviewed/2024/05/GHSA-8ppj-8m99-39pw/GHSA-8ppj-8m99-39pw.json index bb72f4882c8..6df9fa0080e 100644 --- a/advisories/unreviewed/2024/05/GHSA-8ppj-8m99-39pw/GHSA-8ppj-8m99-39pw.json +++ b/advisories/unreviewed/2024/05/GHSA-8ppj-8m99-39pw/GHSA-8ppj-8m99-39pw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-97cq-v4mw-v427/GHSA-97cq-v4mw-v427.json b/advisories/unreviewed/2024/05/GHSA-97cq-v4mw-v427/GHSA-97cq-v4mw-v427.json index 4ec75ba9394..562a1807d90 100644 --- a/advisories/unreviewed/2024/05/GHSA-97cq-v4mw-v427/GHSA-97cq-v4mw-v427.json +++ b/advisories/unreviewed/2024/05/GHSA-97cq-v4mw-v427/GHSA-97cq-v4mw-v427.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-cv4r-v8vp-fgjg/GHSA-cv4r-v8vp-fgjg.json b/advisories/unreviewed/2024/05/GHSA-cv4r-v8vp-fgjg/GHSA-cv4r-v8vp-fgjg.json index c986843c82d..4dc7bbd7268 100644 --- a/advisories/unreviewed/2024/05/GHSA-cv4r-v8vp-fgjg/GHSA-cv4r-v8vp-fgjg.json +++ b/advisories/unreviewed/2024/05/GHSA-cv4r-v8vp-fgjg/GHSA-cv4r-v8vp-fgjg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-fh9r-c9jr-h783/GHSA-fh9r-c9jr-h783.json b/advisories/unreviewed/2024/05/GHSA-fh9r-c9jr-h783/GHSA-fh9r-c9jr-h783.json index 870c3c2b7ce..79249e26084 100644 --- a/advisories/unreviewed/2024/05/GHSA-fh9r-c9jr-h783/GHSA-fh9r-c9jr-h783.json +++ b/advisories/unreviewed/2024/05/GHSA-fh9r-c9jr-h783/GHSA-fh9r-c9jr-h783.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-fp26-r9x4-5gw4/GHSA-fp26-r9x4-5gw4.json b/advisories/unreviewed/2024/05/GHSA-fp26-r9x4-5gw4/GHSA-fp26-r9x4-5gw4.json index fa573cb86cb..430998d5356 100644 --- a/advisories/unreviewed/2024/05/GHSA-fp26-r9x4-5gw4/GHSA-fp26-r9x4-5gw4.json +++ b/advisories/unreviewed/2024/05/GHSA-fp26-r9x4-5gw4/GHSA-fp26-r9x4-5gw4.json @@ -7,12 +7,8 @@ "CVE-2024-28277" ], "details": "In Sourcecodester School Task Manager v1.0, a vulnerability was identified within the subject_name= parameter, enabling Stored Cross-Site Scripting (XSS) attacks. This vulnerability allows attackers to manipulate the subject's name, potentially leading to the execution of malicious JavaScript payloads.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-fvh8-9h4h-hc67/GHSA-fvh8-9h4h-hc67.json b/advisories/unreviewed/2024/05/GHSA-fvh8-9h4h-hc67/GHSA-fvh8-9h4h-hc67.json index 31af470e399..45600bb02fe 100644 --- a/advisories/unreviewed/2024/05/GHSA-fvh8-9h4h-hc67/GHSA-fvh8-9h4h-hc67.json +++ b/advisories/unreviewed/2024/05/GHSA-fvh8-9h4h-hc67/GHSA-fvh8-9h4h-hc67.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-mrrj-mmg5-3hj3/GHSA-mrrj-mmg5-3hj3.json b/advisories/unreviewed/2024/05/GHSA-mrrj-mmg5-3hj3/GHSA-mrrj-mmg5-3hj3.json index 1e57c34ed9f..2830acff538 100644 --- a/advisories/unreviewed/2024/05/GHSA-mrrj-mmg5-3hj3/GHSA-mrrj-mmg5-3hj3.json +++ b/advisories/unreviewed/2024/05/GHSA-mrrj-mmg5-3hj3/GHSA-mrrj-mmg5-3hj3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-mxqp-c3qj-mg2r/GHSA-mxqp-c3qj-mg2r.json b/advisories/unreviewed/2024/05/GHSA-mxqp-c3qj-mg2r/GHSA-mxqp-c3qj-mg2r.json index b06bef75c16..06bdeebc91a 100644 --- a/advisories/unreviewed/2024/05/GHSA-mxqp-c3qj-mg2r/GHSA-mxqp-c3qj-mg2r.json +++ b/advisories/unreviewed/2024/05/GHSA-mxqp-c3qj-mg2r/GHSA-mxqp-c3qj-mg2r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-p557-3fgh-xgcq/GHSA-p557-3fgh-xgcq.json b/advisories/unreviewed/2024/05/GHSA-p557-3fgh-xgcq/GHSA-p557-3fgh-xgcq.json index 582772fed3d..9833c18f593 100644 --- a/advisories/unreviewed/2024/05/GHSA-p557-3fgh-xgcq/GHSA-p557-3fgh-xgcq.json +++ b/advisories/unreviewed/2024/05/GHSA-p557-3fgh-xgcq/GHSA-p557-3fgh-xgcq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-r566-fcmc-4j3v/GHSA-r566-fcmc-4j3v.json b/advisories/unreviewed/2024/05/GHSA-r566-fcmc-4j3v/GHSA-r566-fcmc-4j3v.json index fffc17661b8..ea79f764f5a 100644 --- a/advisories/unreviewed/2024/05/GHSA-r566-fcmc-4j3v/GHSA-r566-fcmc-4j3v.json +++ b/advisories/unreviewed/2024/05/GHSA-r566-fcmc-4j3v/GHSA-r566-fcmc-4j3v.json @@ -7,12 +7,8 @@ "CVE-2024-2441" ], "details": "The VikBooking Hotel Booking Engine & PMS WordPress plugin before 1.6.8 allows direct access to menus, allowing an authenticated user with subscriber privileges or above, to bypass authorization and access settings of the VikBooking Hotel Booking Engine & PMS WordPress plugin before 1.6.8's they shouldn't be allowed to.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-rrxx-mf3x-75gw/GHSA-rrxx-mf3x-75gw.json b/advisories/unreviewed/2024/05/GHSA-rrxx-mf3x-75gw/GHSA-rrxx-mf3x-75gw.json index 4e2906047b0..4a8997ca988 100644 --- a/advisories/unreviewed/2024/05/GHSA-rrxx-mf3x-75gw/GHSA-rrxx-mf3x-75gw.json +++ b/advisories/unreviewed/2024/05/GHSA-rrxx-mf3x-75gw/GHSA-rrxx-mf3x-75gw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-vgjq-3m42-w385/GHSA-vgjq-3m42-w385.json b/advisories/unreviewed/2024/05/GHSA-vgjq-3m42-w385/GHSA-vgjq-3m42-w385.json index f3b42975b63..bc304c7e19d 100644 --- a/advisories/unreviewed/2024/05/GHSA-vgjq-3m42-w385/GHSA-vgjq-3m42-w385.json +++ b/advisories/unreviewed/2024/05/GHSA-vgjq-3m42-w385/GHSA-vgjq-3m42-w385.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-wf67-xfgm-qgf4/GHSA-wf67-xfgm-qgf4.json b/advisories/unreviewed/2024/05/GHSA-wf67-xfgm-qgf4/GHSA-wf67-xfgm-qgf4.json index 15c752a899a..5e659ea4730 100644 --- a/advisories/unreviewed/2024/05/GHSA-wf67-xfgm-qgf4/GHSA-wf67-xfgm-qgf4.json +++ b/advisories/unreviewed/2024/05/GHSA-wf67-xfgm-qgf4/GHSA-wf67-xfgm-qgf4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-x63g-263f-3p2w/GHSA-x63g-263f-3p2w.json b/advisories/unreviewed/2024/05/GHSA-x63g-263f-3p2w/GHSA-x63g-263f-3p2w.json index 9100f9209a4..43c10ad489c 100644 --- a/advisories/unreviewed/2024/05/GHSA-x63g-263f-3p2w/GHSA-x63g-263f-3p2w.json +++ b/advisories/unreviewed/2024/05/GHSA-x63g-263f-3p2w/GHSA-x63g-263f-3p2w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-xww2-fjcq-4hhv/GHSA-xww2-fjcq-4hhv.json b/advisories/unreviewed/2024/05/GHSA-xww2-fjcq-4hhv/GHSA-xww2-fjcq-4hhv.json index 93815001ccb..03ec9faaf2a 100644 --- a/advisories/unreviewed/2024/05/GHSA-xww2-fjcq-4hhv/GHSA-xww2-fjcq-4hhv.json +++ b/advisories/unreviewed/2024/05/GHSA-xww2-fjcq-4hhv/GHSA-xww2-fjcq-4hhv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/06/GHSA-4f36-629m-27gx/GHSA-4f36-629m-27gx.json b/advisories/unreviewed/2024/06/GHSA-4f36-629m-27gx/GHSA-4f36-629m-27gx.json index 4020a0e9599..cb829accd0f 100644 --- a/advisories/unreviewed/2024/06/GHSA-4f36-629m-27gx/GHSA-4f36-629m-27gx.json +++ b/advisories/unreviewed/2024/06/GHSA-4f36-629m-27gx/GHSA-4f36-629m-27gx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-r49q-p832-vm3j/GHSA-r49q-p832-vm3j.json b/advisories/unreviewed/2024/06/GHSA-r49q-p832-vm3j/GHSA-r49q-p832-vm3j.json index 5f0520df192..b415aceda07 100644 --- a/advisories/unreviewed/2024/06/GHSA-r49q-p832-vm3j/GHSA-r49q-p832-vm3j.json +++ b/advisories/unreviewed/2024/06/GHSA-r49q-p832-vm3j/GHSA-r49q-p832-vm3j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-2xxp-777x-hr57/GHSA-2xxp-777x-hr57.json b/advisories/unreviewed/2024/07/GHSA-2xxp-777x-hr57/GHSA-2xxp-777x-hr57.json index 272b024c83e..7c324e55015 100644 --- a/advisories/unreviewed/2024/07/GHSA-2xxp-777x-hr57/GHSA-2xxp-777x-hr57.json +++ b/advisories/unreviewed/2024/07/GHSA-2xxp-777x-hr57/GHSA-2xxp-777x-hr57.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-4fvx-2mxh-x7v7/GHSA-4fvx-2mxh-x7v7.json b/advisories/unreviewed/2024/07/GHSA-4fvx-2mxh-x7v7/GHSA-4fvx-2mxh-x7v7.json index ccdaa39a911..cd47cf6e3af 100644 --- a/advisories/unreviewed/2024/07/GHSA-4fvx-2mxh-x7v7/GHSA-4fvx-2mxh-x7v7.json +++ b/advisories/unreviewed/2024/07/GHSA-4fvx-2mxh-x7v7/GHSA-4fvx-2mxh-x7v7.json @@ -17,9 +17,7 @@ "score": "CVSS:4.0/AV:L/AC:H/AT:P/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-83qh-pw42-g76w/GHSA-83qh-pw42-g76w.json b/advisories/unreviewed/2024/07/GHSA-83qh-pw42-g76w/GHSA-83qh-pw42-g76w.json index 773b39da782..f9f37298f28 100644 --- a/advisories/unreviewed/2024/07/GHSA-83qh-pw42-g76w/GHSA-83qh-pw42-g76w.json +++ b/advisories/unreviewed/2024/07/GHSA-83qh-pw42-g76w/GHSA-83qh-pw42-g76w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-8j3v-w6gq-fj6q/GHSA-8j3v-w6gq-fj6q.json b/advisories/unreviewed/2024/07/GHSA-8j3v-w6gq-fj6q/GHSA-8j3v-w6gq-fj6q.json index b4d7e9f3d2a..be48d1266fb 100644 --- a/advisories/unreviewed/2024/07/GHSA-8j3v-w6gq-fj6q/GHSA-8j3v-w6gq-fj6q.json +++ b/advisories/unreviewed/2024/07/GHSA-8j3v-w6gq-fj6q/GHSA-8j3v-w6gq-fj6q.json @@ -17,9 +17,7 @@ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-8qh8-5vx6-pv8r/GHSA-8qh8-5vx6-pv8r.json b/advisories/unreviewed/2024/07/GHSA-8qh8-5vx6-pv8r/GHSA-8qh8-5vx6-pv8r.json index 29e5c9bedef..fcd1acf0996 100644 --- a/advisories/unreviewed/2024/07/GHSA-8qh8-5vx6-pv8r/GHSA-8qh8-5vx6-pv8r.json +++ b/advisories/unreviewed/2024/07/GHSA-8qh8-5vx6-pv8r/GHSA-8qh8-5vx6-pv8r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-9mqr-f856-hh8f/GHSA-9mqr-f856-hh8f.json b/advisories/unreviewed/2024/07/GHSA-9mqr-f856-hh8f/GHSA-9mqr-f856-hh8f.json index 78231ca0d86..bcdbdf0d029 100644 --- a/advisories/unreviewed/2024/07/GHSA-9mqr-f856-hh8f/GHSA-9mqr-f856-hh8f.json +++ b/advisories/unreviewed/2024/07/GHSA-9mqr-f856-hh8f/GHSA-9mqr-f856-hh8f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-9xg8-vx2w-7c89/GHSA-9xg8-vx2w-7c89.json b/advisories/unreviewed/2024/07/GHSA-9xg8-vx2w-7c89/GHSA-9xg8-vx2w-7c89.json index 2a69151672e..1e3737b2a0a 100644 --- a/advisories/unreviewed/2024/07/GHSA-9xg8-vx2w-7c89/GHSA-9xg8-vx2w-7c89.json +++ b/advisories/unreviewed/2024/07/GHSA-9xg8-vx2w-7c89/GHSA-9xg8-vx2w-7c89.json @@ -17,9 +17,7 @@ "score": "CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:Y/R:X/V:C/RE:M/U:Amber" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-fc2g-vx9q-c76v/GHSA-fc2g-vx9q-c76v.json b/advisories/unreviewed/2024/07/GHSA-fc2g-vx9q-c76v/GHSA-fc2g-vx9q-c76v.json index 9705112cf70..796a9d0fa80 100644 --- a/advisories/unreviewed/2024/07/GHSA-fc2g-vx9q-c76v/GHSA-fc2g-vx9q-c76v.json +++ b/advisories/unreviewed/2024/07/GHSA-fc2g-vx9q-c76v/GHSA-fc2g-vx9q-c76v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-fc3j-5g75-8c22/GHSA-fc3j-5g75-8c22.json b/advisories/unreviewed/2024/07/GHSA-fc3j-5g75-8c22/GHSA-fc3j-5g75-8c22.json index 90a5b2bb469..8db3330d17f 100644 --- a/advisories/unreviewed/2024/07/GHSA-fc3j-5g75-8c22/GHSA-fc3j-5g75-8c22.json +++ b/advisories/unreviewed/2024/07/GHSA-fc3j-5g75-8c22/GHSA-fc3j-5g75-8c22.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-g26w-g327-7xm5/GHSA-g26w-g327-7xm5.json b/advisories/unreviewed/2024/07/GHSA-g26w-g327-7xm5/GHSA-g26w-g327-7xm5.json index 35b38f53588..7fb38180914 100644 --- a/advisories/unreviewed/2024/07/GHSA-g26w-g327-7xm5/GHSA-g26w-g327-7xm5.json +++ b/advisories/unreviewed/2024/07/GHSA-g26w-g327-7xm5/GHSA-g26w-g327-7xm5.json @@ -17,9 +17,7 @@ "score": "CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:A/V:X/RE:X/U:X" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-gwpc-v2jm-gv2g/GHSA-gwpc-v2jm-gv2g.json b/advisories/unreviewed/2024/07/GHSA-gwpc-v2jm-gv2g/GHSA-gwpc-v2jm-gv2g.json index 21f67bc88a2..d00db34590b 100644 --- a/advisories/unreviewed/2024/07/GHSA-gwpc-v2jm-gv2g/GHSA-gwpc-v2jm-gv2g.json +++ b/advisories/unreviewed/2024/07/GHSA-gwpc-v2jm-gv2g/GHSA-gwpc-v2jm-gv2g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-h47x-xwj6-wrpv/GHSA-h47x-xwj6-wrpv.json b/advisories/unreviewed/2024/07/GHSA-h47x-xwj6-wrpv/GHSA-h47x-xwj6-wrpv.json index b5e62235607..2104aace980 100644 --- a/advisories/unreviewed/2024/07/GHSA-h47x-xwj6-wrpv/GHSA-h47x-xwj6-wrpv.json +++ b/advisories/unreviewed/2024/07/GHSA-h47x-xwj6-wrpv/GHSA-h47x-xwj6-wrpv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-hqc7-pg97-xcc3/GHSA-hqc7-pg97-xcc3.json b/advisories/unreviewed/2024/07/GHSA-hqc7-pg97-xcc3/GHSA-hqc7-pg97-xcc3.json index ce904e518ba..d394ae60ef0 100644 --- a/advisories/unreviewed/2024/07/GHSA-hqc7-pg97-xcc3/GHSA-hqc7-pg97-xcc3.json +++ b/advisories/unreviewed/2024/07/GHSA-hqc7-pg97-xcc3/GHSA-hqc7-pg97-xcc3.json @@ -7,12 +7,8 @@ "CVE-2024-39488" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\narm64: asm-bug: Add .align 2 to the end of __BUG_ENTRY\n\nWhen CONFIG_DEBUG_BUGVERBOSE=n, we fail to add necessary padding bytes\nto bug_table entries, and as a result the last entry in a bug table will\nbe ignored, potentially leading to an unexpected panic(). All prior\nentries in the table will be handled correctly.\n\nThe arm64 ABI requires that struct fields of up to 8 bytes are\nnaturally-aligned, with padding added within a struct such that struct\nare suitably aligned within arrays.\n\nWhen CONFIG_DEBUG_BUGVERPOSE=y, the layout of a bug_entry is:\n\n\tstruct bug_entry {\n\t\tsigned int bug_addr_disp;\t// 4 bytes\n\t\tsigned int file_disp;\t// 4 bytes\n\t\tunsigned short line;\t\t// 2 bytes\n\t\tunsigned short flags;\t\t// 2 bytes\n\t}\n\n... with 12 bytes total, requiring 4-byte alignment.\n\nWhen CONFIG_DEBUG_BUGVERBOSE=n, the layout of a bug_entry is:\n\n\tstruct bug_entry {\n\t\tsigned int bug_addr_disp;\t// 4 bytes\n\t\tunsigned short flags;\t\t// 2 bytes\n\t\t< implicit padding >\t\t// 2 bytes\n\t}\n\n... with 8 bytes total, with 6 bytes of data and 2 bytes of trailing\npadding, requiring 4-byte alginment.\n\nWhen we create a bug_entry in assembly, we align the start of the entry\nto 4 bytes, which implicitly handles padding for any prior entries.\nHowever, we do not align the end of the entry, and so when\nCONFIG_DEBUG_BUGVERBOSE=n, the final entry lacks the trailing padding\nbytes.\n\nFor the main kernel image this is not a problem as find_bug() doesn't\ndepend on the trailing padding bytes when searching for entries:\n\n\tfor (bug = __start___bug_table; bug < __stop___bug_table; ++bug)\n\t\tif (bugaddr == bug_addr(bug))\n\t\t\treturn bug;\n\nHowever for modules, module_bug_finalize() depends on the trailing\nbytes when calculating the number of entries:\n\n\tmod->num_bugs = sechdrs[i].sh_size / sizeof(struct bug_entry);\n\n... and as the last bug_entry lacks the necessary padding bytes, this entry\nwill not be counted, e.g. in the case of a single entry:\n\n\tsechdrs[i].sh_size == 6\n\tsizeof(struct bug_entry) == 8;\n\n\tsechdrs[i].sh_size / sizeof(struct bug_entry) == 0;\n\nConsequently module_find_bug() will miss the last bug_entry when it does:\n\n\tfor (i = 0; i < mod->num_bugs; ++i, ++bug)\n\t\tif (bugaddr == bug_addr(bug))\n\t\t\tgoto out;\n\n... which can lead to a kenrel panic due to an unhandled bug.\n\nThis can be demonstrated with the following module:\n\n\tstatic int __init buginit(void)\n\t{\n\t\tWARN(1, \"hello\\n\");\n\t\treturn 0;\n\t}\n\n\tstatic void __exit bugexit(void)\n\t{\n\t}\n\n\tmodule_init(buginit);\n\tmodule_exit(bugexit);\n\tMODULE_LICENSE(\"GPL\");\n\n... which will trigger a kernel panic when loaded:\n\n\t------------[ cut here ]------------\n\thello\n\tUnexpected kernel BRK exception at EL1\n\tInternal error: BRK handler: 00000000f2000800 [#1] PREEMPT SMP\n\tModules linked in: hello(O+)\n\tCPU: 0 PID: 50 Comm: insmod Tainted: G O 6.9.1 #8\n\tHardware name: linux,dummy-virt (DT)\n\tpstate: 60400005 (nZCv daif +PAN -UAO -TCO -DIT -SSBS BTYPE=--)\n\tpc : buginit+0x18/0x1000 [hello]\n\tlr : buginit+0x18/0x1000 [hello]\n\tsp : ffff800080533ae0\n\tx29: ffff800080533ae0 x28: 0000000000000000 x27: 0000000000000000\n\tx26: ffffaba8c4e70510 x25: ffff800080533c30 x24: ffffaba8c4a28a58\n\tx23: 0000000000000000 x22: 0000000000000000 x21: ffff3947c0eab3c0\n\tx20: ffffaba8c4e3f000 x19: ffffaba846464000 x18: 0000000000000006\n\tx17: 0000000000000000 x16: ffffaba8c2492834 x15: 0720072007200720\n\tx14: 0720072007200720 x13: ffffaba8c49b27c8 x12: 0000000000000312\n\tx11: 0000000000000106 x10: ffffaba8c4a0a7c8 x9 : ffffaba8c49b27c8\n\tx8 : 00000000ffffefff x7 : ffffaba8c4a0a7c8 x6 : 80000000fffff000\n\tx5 : 0000000000000107 x4 : 0000000000000000 x3 : 0000000000000000\n\tx2 : 0000000000000000 x1 : 0000000000000000 x0 : ffff3947c0eab3c0\n\tCall trace:\n\t buginit+0x18/0x1000 [hello]\n\t do_one_initcall+0x80/0x1c8\n\t do_init_module+0x60/0x218\n\t load_module+0x1ba4/0x1d70\n\t __do_sys_init_module+0x198/0x1d0\n\t __arm64_sys_init_module+0x1c/0x28\n\t invoke_syscall+0x48/0x114\n\t el0_svc\n---truncated---", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-hxwp-wpwp-65p6/GHSA-hxwp-wpwp-65p6.json b/advisories/unreviewed/2024/07/GHSA-hxwp-wpwp-65p6/GHSA-hxwp-wpwp-65p6.json index e47964b1836..545966a2276 100644 --- a/advisories/unreviewed/2024/07/GHSA-hxwp-wpwp-65p6/GHSA-hxwp-wpwp-65p6.json +++ b/advisories/unreviewed/2024/07/GHSA-hxwp-wpwp-65p6/GHSA-hxwp-wpwp-65p6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-jmwq-hmf3-87q7/GHSA-jmwq-hmf3-87q7.json b/advisories/unreviewed/2024/07/GHSA-jmwq-hmf3-87q7/GHSA-jmwq-hmf3-87q7.json index 2b9e85fbdcb..af8f828879e 100644 --- a/advisories/unreviewed/2024/07/GHSA-jmwq-hmf3-87q7/GHSA-jmwq-hmf3-87q7.json +++ b/advisories/unreviewed/2024/07/GHSA-jmwq-hmf3-87q7/GHSA-jmwq-hmf3-87q7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-jr37-pwgj-83px/GHSA-jr37-pwgj-83px.json b/advisories/unreviewed/2024/07/GHSA-jr37-pwgj-83px/GHSA-jr37-pwgj-83px.json index eb0ad02fe40..7e4bc2d02fc 100644 --- a/advisories/unreviewed/2024/07/GHSA-jr37-pwgj-83px/GHSA-jr37-pwgj-83px.json +++ b/advisories/unreviewed/2024/07/GHSA-jr37-pwgj-83px/GHSA-jr37-pwgj-83px.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-m82g-qg9r-rgxp/GHSA-m82g-qg9r-rgxp.json b/advisories/unreviewed/2024/07/GHSA-m82g-qg9r-rgxp/GHSA-m82g-qg9r-rgxp.json index 84155884200..6ddfc89adbc 100644 --- a/advisories/unreviewed/2024/07/GHSA-m82g-qg9r-rgxp/GHSA-m82g-qg9r-rgxp.json +++ b/advisories/unreviewed/2024/07/GHSA-m82g-qg9r-rgxp/GHSA-m82g-qg9r-rgxp.json @@ -17,9 +17,7 @@ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-mg8q-6jqj-3r4r/GHSA-mg8q-6jqj-3r4r.json b/advisories/unreviewed/2024/07/GHSA-mg8q-6jqj-3r4r/GHSA-mg8q-6jqj-3r4r.json index dde8d7f1f8b..365c21f860a 100644 --- a/advisories/unreviewed/2024/07/GHSA-mg8q-6jqj-3r4r/GHSA-mg8q-6jqj-3r4r.json +++ b/advisories/unreviewed/2024/07/GHSA-mg8q-6jqj-3r4r/GHSA-mg8q-6jqj-3r4r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-vjcf-4947-pvqf/GHSA-vjcf-4947-pvqf.json b/advisories/unreviewed/2024/07/GHSA-vjcf-4947-pvqf/GHSA-vjcf-4947-pvqf.json index d9563cd19a6..58ced3c9884 100644 --- a/advisories/unreviewed/2024/07/GHSA-vjcf-4947-pvqf/GHSA-vjcf-4947-pvqf.json +++ b/advisories/unreviewed/2024/07/GHSA-vjcf-4947-pvqf/GHSA-vjcf-4947-pvqf.json @@ -7,12 +7,8 @@ "CVE-2024-6642" ], "details": "Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes: none.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-wgp4-g5wv-7wf9/GHSA-wgp4-g5wv-7wf9.json b/advisories/unreviewed/2024/07/GHSA-wgp4-g5wv-7wf9/GHSA-wgp4-g5wv-7wf9.json index 8a08eedbe0f..5fbc59739ce 100644 --- a/advisories/unreviewed/2024/07/GHSA-wgp4-g5wv-7wf9/GHSA-wgp4-g5wv-7wf9.json +++ b/advisories/unreviewed/2024/07/GHSA-wgp4-g5wv-7wf9/GHSA-wgp4-g5wv-7wf9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -47,9 +45,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-wvx8-cjrx-23xg/GHSA-wvx8-cjrx-23xg.json b/advisories/unreviewed/2024/07/GHSA-wvx8-cjrx-23xg/GHSA-wvx8-cjrx-23xg.json index 9c9edbdf395..3b02ff3e3f5 100644 --- a/advisories/unreviewed/2024/07/GHSA-wvx8-cjrx-23xg/GHSA-wvx8-cjrx-23xg.json +++ b/advisories/unreviewed/2024/07/GHSA-wvx8-cjrx-23xg/GHSA-wvx8-cjrx-23xg.json @@ -7,12 +7,8 @@ "CVE-2024-39491" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nALSA: hda: cs35l56: Fix lifetime of cs_dsp instance\n\nThe cs_dsp instance is initialized in the driver probe() so it\nshould be freed in the driver remove(). Also fix a missing call\nto cs_dsp_remove() in the error path of cs35l56_hda_common_probe().\n\nThe call to cs_dsp_remove() was being done in the component unbind\ncallback cs35l56_hda_unbind(). This meant that if the driver was\nunbound and then re-bound it would be using an uninitialized cs_dsp\ninstance.\n\nIt is best to initialize the cs_dsp instance in probe() so that it\ncan return an error if it fails. The component binding API doesn't\nhave any error handling so there's no way to handle a failure if\ncs_dsp was initialized in the bind.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-x993-f873-7mgw/GHSA-x993-f873-7mgw.json b/advisories/unreviewed/2024/07/GHSA-x993-f873-7mgw/GHSA-x993-f873-7mgw.json index 93d19c44079..fa7842ad494 100644 --- a/advisories/unreviewed/2024/07/GHSA-x993-f873-7mgw/GHSA-x993-f873-7mgw.json +++ b/advisories/unreviewed/2024/07/GHSA-x993-f873-7mgw/GHSA-x993-f873-7mgw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-xvm6-65jm-mc4g/GHSA-xvm6-65jm-mc4g.json b/advisories/unreviewed/2024/07/GHSA-xvm6-65jm-mc4g/GHSA-xvm6-65jm-mc4g.json index 6da1f24455a..e4251c98074 100644 --- a/advisories/unreviewed/2024/07/GHSA-xvm6-65jm-mc4g/GHSA-xvm6-65jm-mc4g.json +++ b/advisories/unreviewed/2024/07/GHSA-xvm6-65jm-mc4g/GHSA-xvm6-65jm-mc4g.json @@ -17,9 +17,7 @@ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:N/SC:N/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY",