From a0a3a80dcc313a2e7fbf47c770eb91a101040744 Mon Sep 17 00:00:00 2001
From: "advisory-database[bot]"
<45398580+advisory-database[bot]@users.noreply.github.com>
Date: Thu, 28 Dec 2023 21:31:41 +0000
Subject: [PATCH] Advisory Database Sync
---
.../GHSA-8f4m-hccc-8qph.json | 4 ++
.../GHSA-2pfh-q76x-gwvm.json | 4 ++
.../GHSA-4r65-35qq-ch8j.json | 4 ++
.../GHSA-cpx3-93w7-457x.json | 4 ++
.../GHSA-22mc-4x52-cw6q.json | 7 ++-
.../GHSA-2fq7-f2fp-mgxx.json | 7 ++-
.../GHSA-2h32-fhf6-xhh5.json | 2 +-
.../GHSA-2jvq-3rhr-97x9.json | 7 ++-
.../GHSA-2vj9-882j-v7fm.json | 7 ++-
.../GHSA-335g-5x6x-7qgj.json | 7 ++-
.../GHSA-33p4-33f5-c62r.json | 7 ++-
.../GHSA-37q4-472r-ppmr.json | 7 ++-
.../GHSA-3cwp-6q5r-qrvc.json | 7 ++-
.../GHSA-47qf-6fqv-2m82.json | 7 ++-
.../GHSA-5422-3fvq-jx63.json | 7 ++-
.../GHSA-54mf-5wqx-xqph.json | 7 ++-
.../GHSA-5553-x48j-7mwr.json | 7 ++-
.../GHSA-55wf-38cw-5f72.json | 7 ++-
.../GHSA-55x8-6f5x-9xx6.json | 7 ++-
.../GHSA-5973-jvgx-r7xh.json | 7 ++-
.../GHSA-5fmc-j34m-xvqh.json | 7 ++-
.../GHSA-5hfp-hw26-8838.json | 7 ++-
.../GHSA-5qp8-2ph4-rx2p.json | 7 ++-
.../GHSA-62cr-vhq6-723g.json | 7 ++-
.../GHSA-62pw-5259-vhh9.json | 7 ++-
.../GHSA-6377-6q3h-9ghh.json | 7 ++-
.../GHSA-68pf-74vw-wqhm.json | 7 ++-
.../GHSA-6h4f-mm25-xxf7.json | 7 ++-
.../GHSA-6j5r-87mw-77mg.json | 7 ++-
.../GHSA-7367-6rvj-7jxm.json | 7 ++-
.../GHSA-786h-5jgr-vx5p.json | 7 ++-
.../GHSA-793m-wq3j-whvr.json | 3 +-
.../GHSA-7954-w5x3-x4x7.json | 7 ++-
.../GHSA-7f2q-7qg5-m23p.json | 1 +
.../GHSA-7g65-rwp5-vwpp.json | 7 ++-
.../GHSA-7hv9-m3f4-mcw5.json | 7 ++-
.../GHSA-83g7-qjm4-75m6.json | 7 ++-
.../GHSA-85cp-839g-xmmq.json | 7 ++-
.../GHSA-8j5f-68q6-wpx2.json | 7 ++-
.../GHSA-8rvx-7ff2-2h9c.json | 7 ++-
.../GHSA-8xmh-9r43-r5g8.json | 7 ++-
.../GHSA-935j-gr9x-5v25.json | 7 ++-
.../GHSA-943g-4p6r-j7gq.json | 7 ++-
.../GHSA-95xg-v9pq-wxv6.json | 7 ++-
.../GHSA-99mx-g8r8-4fjh.json | 7 ++-
.../GHSA-9f85-ww57-g5rr.json | 7 ++-
.../GHSA-9wjc-rw9h-3fxm.json | 2 +-
.../GHSA-c556-742c-cv9q.json | 7 ++-
.../GHSA-c6w9-2fwg-5q4v.json | 7 ++-
.../GHSA-ccq2-rr22-wp3j.json | 7 ++-
.../GHSA-ch36-6p5f-9jg4.json | 7 ++-
.../GHSA-cw58-pgvq-hw38.json | 7 ++-
.../GHSA-cwg6-433x-8j82.json | 7 ++-
.../GHSA-f425-rchp-ffpg.json | 7 ++-
.../GHSA-f5vf-pw7c-hmwf.json | 7 ++-
.../GHSA-f76r-r2wm-fmpj.json | 7 ++-
.../GHSA-fppm-8cxc-gx7c.json | 7 ++-
.../GHSA-frcm-5w4g-pjxj.json | 7 ++-
.../GHSA-g7cc-p3mh-884q.json | 7 ++-
.../GHSA-gf2g-7pj6-65xr.json | 7 ++-
.../GHSA-gf96-mx62-w378.json | 7 ++-
.../GHSA-gmr6-p4w6-pwr5.json | 7 ++-
.../GHSA-gxpw-5p3g-8v93.json | 7 ++-
.../GHSA-hc54-3v33-p939.json | 7 ++-
.../GHSA-hjqw-qpp5-qxjg.json | 7 ++-
.../GHSA-hv3j-v3wg-ggvp.json | 7 ++-
.../GHSA-hwfw-3rf5-m49w.json | 7 ++-
.../GHSA-j59g-pjr7-6mxg.json | 7 ++-
.../GHSA-jrg3-jj4f-m298.json | 7 ++-
.../GHSA-jwrp-9w74-vqmj.json | 7 ++-
.../GHSA-m743-3wjh-838g.json | 7 ++-
.../GHSA-m784-4mwr-q2x2.json | 7 ++-
.../GHSA-mcj5-4xrx-fgf3.json | 7 ++-
.../GHSA-mjj2-qhjw-qmhv.json | 7 ++-
.../GHSA-mp6h-cxp8-82j6.json | 7 ++-
.../GHSA-mr75-cw8v-jgmf.json | 7 ++-
.../GHSA-mv9g-h8vc-563m.json | 7 ++-
.../GHSA-p3jw-cchq-r2fw.json | 7 ++-
.../GHSA-p8gr-7qcg-86p9.json | 3 +-
.../GHSA-pc4p-h32f-7x7f.json | 7 ++-
.../GHSA-pchq-9x38-f924.json | 7 ++-
.../GHSA-prg7-wpm2-hh5x.json | 7 ++-
.../GHSA-pxcq-8fv4-jxf6.json | 7 ++-
.../GHSA-q37m-22jj-3f7x.json | 7 ++-
.../GHSA-q5j2-v8q9-65c8.json | 7 ++-
.../GHSA-q67p-8wm5-grq8.json | 7 ++-
.../GHSA-qf8j-85x5-c3ww.json | 7 ++-
.../GHSA-r8fw-c3wm-75m3.json | 7 ++-
.../GHSA-rcq5-fr3f-fphm.json | 7 ++-
.../GHSA-rp2g-5hw2-q565.json | 1 +
.../GHSA-rxxh-4rjm-62rq.json | 7 ++-
.../GHSA-v5q4-4mmg-j37c.json | 7 ++-
.../GHSA-vc3p-78qc-h4m8.json | 2 +-
.../GHSA-vmpm-p2pv-6c9j.json | 7 ++-
.../GHSA-w6m7-956j-5f84.json | 7 ++-
.../GHSA-wg77-43f4-m52v.json | 7 ++-
.../GHSA-wqq6-qcgq-j7r2.json | 7 ++-
.../GHSA-wqxh-crwr-q67x.json | 7 ++-
.../GHSA-wwhr-5q8q-3gmc.json | 7 ++-
.../GHSA-xf53-8jx3-gvcg.json | 7 ++-
.../GHSA-xq2h-74x7-89f4.json | 7 ++-
.../GHSA-xq9r-6v4r-3g8m.json | 7 ++-
.../GHSA-4qpc-3c4f-jp9w.json | 1 +
.../GHSA-9g3h-8w94-vg8v.json | 1 +
.../GHSA-jw99-6632-r82h.json | 1 +
.../GHSA-r246-v4c7-q6jc.json | 1 +
.../GHSA-v97f-cj9c-34c4.json | 1 +
.../GHSA-5cwr-jjvf-gf39.json | 1 +
.../GHSA-6c7q-3hq7-hf68.json | 1 +
.../GHSA-h996-p85p-3xxx.json | 1 +
.../GHSA-vh2c-hfhf-4v64.json | 1 +
.../GHSA-w4fw-r8m4-v5qv.json | 1 +
.../GHSA-3mv3-2f4g-87xm.json | 4 ++
.../GHSA-9xjj-cx8r-x5m9.json | 4 +-
.../GHSA-w3f5-3hvg-x2vg.json | 4 +-
.../GHSA-2rwf-gw57-98vq.json | 38 +++++++++++++
.../GHSA-3f5j-mfg2-hxvj.json | 38 +++++++++++++
.../GHSA-3x3h-vg3c-vcrx.json | 38 +++++++++++++
.../GHSA-488m-w9fp-5mm2.json | 46 ++++++++++++++++
.../GHSA-4jpc-fv5p-mh98.json | 2 +-
.../GHSA-4qcv-5m27-xvj9.json | 38 +++++++++++++
.../GHSA-5j49-8vfq-6j67.json | 38 +++++++++++++
.../GHSA-5x2j-8rm7-fm3j.json | 11 ++--
.../GHSA-6cxr-f776-wfqv.json | 2 +-
.../GHSA-769x-q5v4-m549.json | 2 +-
.../GHSA-87fg-9x5w-j3rm.json | 2 +-
.../GHSA-93vw-2xp9-jc53.json | 38 +++++++++++++
.../GHSA-ccvr-j87g-x67g.json | 38 +++++++++++++
.../GHSA-f9c3-v8hj-gm62.json | 38 +++++++++++++
.../GHSA-g8m5-ccpx-mh32.json | 46 ++++++++++++++++
.../GHSA-hgv5-3gmv-gwhq.json | 46 ++++++++++++++++
.../GHSA-hj3r-2hqm-4f6w.json | 2 +-
.../GHSA-jj5v-fhp7-pww8.json | 38 +++++++++++++
.../GHSA-jpvw-p8pr-9g2x.json | 54 +++++++++++++++++++
.../GHSA-mfr7-563g-jff3.json | 11 ++--
.../GHSA-mh5h-4v4h-vcvq.json | 2 +-
.../GHSA-pcm9-gv4v-rfw2.json | 2 +-
.../GHSA-pj88-jgpj-pmr9.json | 11 ++--
.../GHSA-pp4m-v63p-xvqj.json | 38 +++++++++++++
.../GHSA-pxgf-7mqc-v7vx.json | 2 +-
.../GHSA-q3v4-6rrg-2883.json | 1 +
.../GHSA-q9cq-mv8c-985j.json | 2 +-
.../GHSA-qp7j-9526-r655.json | 2 +-
.../GHSA-v876-f29w-v6cf.json | 46 ++++++++++++++++
.../GHSA-v9h7-v369-359m.json | 2 +-
.../GHSA-w7rx-824v-rgx5.json | 2 +-
.../GHSA-x25m-g22v-6hgf.json | 1 +
.../GHSA-xxmw-m6v2-9h47.json | 2 +-
148 files changed, 1152 insertions(+), 216 deletions(-)
create mode 100644 advisories/unreviewed/2023/12/GHSA-2rwf-gw57-98vq/GHSA-2rwf-gw57-98vq.json
create mode 100644 advisories/unreviewed/2023/12/GHSA-3f5j-mfg2-hxvj/GHSA-3f5j-mfg2-hxvj.json
create mode 100644 advisories/unreviewed/2023/12/GHSA-3x3h-vg3c-vcrx/GHSA-3x3h-vg3c-vcrx.json
create mode 100644 advisories/unreviewed/2023/12/GHSA-488m-w9fp-5mm2/GHSA-488m-w9fp-5mm2.json
create mode 100644 advisories/unreviewed/2023/12/GHSA-4qcv-5m27-xvj9/GHSA-4qcv-5m27-xvj9.json
create mode 100644 advisories/unreviewed/2023/12/GHSA-5j49-8vfq-6j67/GHSA-5j49-8vfq-6j67.json
create mode 100644 advisories/unreviewed/2023/12/GHSA-93vw-2xp9-jc53/GHSA-93vw-2xp9-jc53.json
create mode 100644 advisories/unreviewed/2023/12/GHSA-ccvr-j87g-x67g/GHSA-ccvr-j87g-x67g.json
create mode 100644 advisories/unreviewed/2023/12/GHSA-f9c3-v8hj-gm62/GHSA-f9c3-v8hj-gm62.json
create mode 100644 advisories/unreviewed/2023/12/GHSA-g8m5-ccpx-mh32/GHSA-g8m5-ccpx-mh32.json
create mode 100644 advisories/unreviewed/2023/12/GHSA-hgv5-3gmv-gwhq/GHSA-hgv5-3gmv-gwhq.json
create mode 100644 advisories/unreviewed/2023/12/GHSA-jj5v-fhp7-pww8/GHSA-jj5v-fhp7-pww8.json
create mode 100644 advisories/unreviewed/2023/12/GHSA-jpvw-p8pr-9g2x/GHSA-jpvw-p8pr-9g2x.json
create mode 100644 advisories/unreviewed/2023/12/GHSA-pp4m-v63p-xvqj/GHSA-pp4m-v63p-xvqj.json
create mode 100644 advisories/unreviewed/2023/12/GHSA-v876-f29w-v6cf/GHSA-v876-f29w-v6cf.json
diff --git a/advisories/github-reviewed/2021/06/GHSA-8f4m-hccc-8qph/GHSA-8f4m-hccc-8qph.json b/advisories/github-reviewed/2021/06/GHSA-8f4m-hccc-8qph/GHSA-8f4m-hccc-8qph.json
index d90f4ce94e8..673170b72d2 100644
--- a/advisories/github-reviewed/2021/06/GHSA-8f4m-hccc-8qph/GHSA-8f4m-hccc-8qph.json
+++ b/advisories/github-reviewed/2021/06/GHSA-8f4m-hccc-8qph/GHSA-8f4m-hccc-8qph.json
@@ -93,6 +93,10 @@
{
"type": "WEB",
"url": "https://bugzilla.redhat.com/show_bug.cgi?id=1916813"
+ },
+ {
+ "type": "WEB",
+ "url": "https://lists.debian.org/debian-lts-announce/2023/12/msg00018.html"
}
],
"database_specific": {
diff --git a/advisories/github-reviewed/2021/09/GHSA-2pfh-q76x-gwvm/GHSA-2pfh-q76x-gwvm.json b/advisories/github-reviewed/2021/09/GHSA-2pfh-q76x-gwvm/GHSA-2pfh-q76x-gwvm.json
index 3b7cf36432d..b9696922ee4 100644
--- a/advisories/github-reviewed/2021/09/GHSA-2pfh-q76x-gwvm/GHSA-2pfh-q76x-gwvm.json
+++ b/advisories/github-reviewed/2021/09/GHSA-2pfh-q76x-gwvm/GHSA-2pfh-q76x-gwvm.json
@@ -52,6 +52,10 @@
"type": "PACKAGE",
"url": "https://github.com/ansible/ansible"
},
+ {
+ "type": "WEB",
+ "url": "https://lists.debian.org/debian-lts-announce/2023/12/msg00018.html"
+ },
{
"type": "WEB",
"url": "https://pypi.org/project/ansible/4.2.0/"
diff --git a/advisories/github-reviewed/2022/03/GHSA-4r65-35qq-ch8j/GHSA-4r65-35qq-ch8j.json b/advisories/github-reviewed/2022/03/GHSA-4r65-35qq-ch8j/GHSA-4r65-35qq-ch8j.json
index fc95641ead8..c27ec87b5c1 100644
--- a/advisories/github-reviewed/2022/03/GHSA-4r65-35qq-ch8j/GHSA-4r65-35qq-ch8j.json
+++ b/advisories/github-reviewed/2022/03/GHSA-4r65-35qq-ch8j/GHSA-4r65-35qq-ch8j.json
@@ -83,6 +83,10 @@
{
"type": "WEB",
"url": "https://github.com/pypa/advisory-database/tree/main/vulns/ansible/PYSEC-2022-164.yaml"
+ },
+ {
+ "type": "WEB",
+ "url": "https://lists.debian.org/debian-lts-announce/2023/12/msg00018.html"
}
],
"database_specific": {
diff --git a/advisories/github-reviewed/2022/10/GHSA-cpx3-93w7-457x/GHSA-cpx3-93w7-457x.json b/advisories/github-reviewed/2022/10/GHSA-cpx3-93w7-457x/GHSA-cpx3-93w7-457x.json
index 6309770b7a7..22b90c0c453 100644
--- a/advisories/github-reviewed/2022/10/GHSA-cpx3-93w7-457x/GHSA-cpx3-93w7-457x.json
+++ b/advisories/github-reviewed/2022/10/GHSA-cpx3-93w7-457x/GHSA-cpx3-93w7-457x.json
@@ -55,6 +55,10 @@
{
"type": "PACKAGE",
"url": "https://github.com/ansible/ansible"
+ },
+ {
+ "type": "WEB",
+ "url": "https://lists.debian.org/debian-lts-announce/2023/12/msg00018.html"
}
],
"database_specific": {
diff --git a/advisories/unreviewed/2022/05/GHSA-22mc-4x52-cw6q/GHSA-22mc-4x52-cw6q.json b/advisories/unreviewed/2022/05/GHSA-22mc-4x52-cw6q/GHSA-22mc-4x52-cw6q.json
index 27b4c3f4e7f..63ea5b3b2ab 100644
--- a/advisories/unreviewed/2022/05/GHSA-22mc-4x52-cw6q/GHSA-22mc-4x52-cw6q.json
+++ b/advisories/unreviewed/2022/05/GHSA-22mc-4x52-cw6q/GHSA-22mc-4x52-cw6q.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-22mc-4x52-cw6q",
- "modified": "2022-05-24T19:10:51Z",
+ "modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:10:51Z",
"aliases": [
"CVE-2021-36927"
],
"details": "Windows Digital TV Tuner device registration application Elevation of Privilege Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-2fq7-f2fp-mgxx/GHSA-2fq7-f2fp-mgxx.json b/advisories/unreviewed/2022/05/GHSA-2fq7-f2fp-mgxx/GHSA-2fq7-f2fp-mgxx.json
index fa0fdef6ae1..ece8257ad76 100644
--- a/advisories/unreviewed/2022/05/GHSA-2fq7-f2fp-mgxx/GHSA-2fq7-f2fp-mgxx.json
+++ b/advisories/unreviewed/2022/05/GHSA-2fq7-f2fp-mgxx/GHSA-2fq7-f2fp-mgxx.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-2fq7-f2fp-mgxx",
- "modified": "2022-05-24T19:10:51Z",
+ "modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:10:51Z",
"aliases": [
"CVE-2021-36946"
],
"details": "Microsoft Dynamics Business Central Cross-site Scripting Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-2h32-fhf6-xhh5/GHSA-2h32-fhf6-xhh5.json b/advisories/unreviewed/2022/05/GHSA-2h32-fhf6-xhh5/GHSA-2h32-fhf6-xhh5.json
index 9e976ee3e28..0118c608b0a 100644
--- a/advisories/unreviewed/2022/05/GHSA-2h32-fhf6-xhh5/GHSA-2h32-fhf6-xhh5.json
+++ b/advisories/unreviewed/2022/05/GHSA-2h32-fhf6-xhh5/GHSA-2h32-fhf6-xhh5.json
@@ -40,7 +40,7 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-22"
],
"severity": "HIGH",
"github_reviewed": false,
diff --git a/advisories/unreviewed/2022/05/GHSA-2jvq-3rhr-97x9/GHSA-2jvq-3rhr-97x9.json b/advisories/unreviewed/2022/05/GHSA-2jvq-3rhr-97x9/GHSA-2jvq-3rhr-97x9.json
index a1c1e878dbb..de1dc5f109d 100644
--- a/advisories/unreviewed/2022/05/GHSA-2jvq-3rhr-97x9/GHSA-2jvq-3rhr-97x9.json
+++ b/advisories/unreviewed/2022/05/GHSA-2jvq-3rhr-97x9/GHSA-2jvq-3rhr-97x9.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-2jvq-3rhr-97x9",
- "modified": "2022-05-24T19:14:42Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:42Z",
"aliases": [
"CVE-2021-38658"
],
"details": "Microsoft Office Graphics Remote Code Execution Vulnerability This CVE ID is unique from CVE-2021-38660.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-2vj9-882j-v7fm/GHSA-2vj9-882j-v7fm.json b/advisories/unreviewed/2022/05/GHSA-2vj9-882j-v7fm/GHSA-2vj9-882j-v7fm.json
index 960fa6c110c..a727c0130d3 100644
--- a/advisories/unreviewed/2022/05/GHSA-2vj9-882j-v7fm/GHSA-2vj9-882j-v7fm.json
+++ b/advisories/unreviewed/2022/05/GHSA-2vj9-882j-v7fm/GHSA-2vj9-882j-v7fm.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-2vj9-882j-v7fm",
- "modified": "2022-05-24T19:10:51Z",
+ "modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:10:51Z",
"aliases": [
"CVE-2021-36938"
],
"details": "Windows Cryptographic Primitives Library Information Disclosure Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-335g-5x6x-7qgj/GHSA-335g-5x6x-7qgj.json b/advisories/unreviewed/2022/05/GHSA-335g-5x6x-7qgj/GHSA-335g-5x6x-7qgj.json
index 3f57960bc49..03dc481b9a6 100644
--- a/advisories/unreviewed/2022/05/GHSA-335g-5x6x-7qgj/GHSA-335g-5x6x-7qgj.json
+++ b/advisories/unreviewed/2022/05/GHSA-335g-5x6x-7qgj/GHSA-335g-5x6x-7qgj.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-335g-5x6x-7qgj",
- "modified": "2022-05-24T19:14:45Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:45Z",
"aliases": [
"CVE-2021-36964"
],
"details": "Windows Event Tracing Elevation of Privilege Vulnerability This CVE ID is unique from CVE-2021-38630.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-33p4-33f5-c62r/GHSA-33p4-33f5-c62r.json b/advisories/unreviewed/2022/05/GHSA-33p4-33f5-c62r/GHSA-33p4-33f5-c62r.json
index 8d6abefdfde..3b24c96ca99 100644
--- a/advisories/unreviewed/2022/05/GHSA-33p4-33f5-c62r/GHSA-33p4-33f5-c62r.json
+++ b/advisories/unreviewed/2022/05/GHSA-33p4-33f5-c62r/GHSA-33p4-33f5-c62r.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-33p4-33f5-c62r",
- "modified": "2022-05-24T19:14:42Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:42Z",
"aliases": [
"CVE-2021-38654"
],
"details": "Microsoft Office Visio Remote Code Execution Vulnerability This CVE ID is unique from CVE-2021-38653.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-37q4-472r-ppmr/GHSA-37q4-472r-ppmr.json b/advisories/unreviewed/2022/05/GHSA-37q4-472r-ppmr/GHSA-37q4-472r-ppmr.json
index 9799e1b4a7a..79daf85e5d3 100644
--- a/advisories/unreviewed/2022/05/GHSA-37q4-472r-ppmr/GHSA-37q4-472r-ppmr.json
+++ b/advisories/unreviewed/2022/05/GHSA-37q4-472r-ppmr/GHSA-37q4-472r-ppmr.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-37q4-472r-ppmr",
- "modified": "2022-05-24T19:10:50Z",
+ "modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:10:50Z",
"aliases": [
"CVE-2021-36958"
],
"details": "Windows Print Spooler Remote Code Execution Vulnerability This CVE ID is unique from CVE-2021-36936, CVE-2021-36947.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-3cwp-6q5r-qrvc/GHSA-3cwp-6q5r-qrvc.json b/advisories/unreviewed/2022/05/GHSA-3cwp-6q5r-qrvc/GHSA-3cwp-6q5r-qrvc.json
index e1745850adc..937c0b71f07 100644
--- a/advisories/unreviewed/2022/05/GHSA-3cwp-6q5r-qrvc/GHSA-3cwp-6q5r-qrvc.json
+++ b/advisories/unreviewed/2022/05/GHSA-3cwp-6q5r-qrvc/GHSA-3cwp-6q5r-qrvc.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-3cwp-6q5r-qrvc",
- "modified": "2022-05-24T19:10:50Z",
+ "modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:10:50Z",
"aliases": [
"CVE-2021-36941"
],
"details": "Microsoft Word Remote Code Execution Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-47qf-6fqv-2m82/GHSA-47qf-6fqv-2m82.json b/advisories/unreviewed/2022/05/GHSA-47qf-6fqv-2m82/GHSA-47qf-6fqv-2m82.json
index 42bc2556bb6..6459abe3512 100644
--- a/advisories/unreviewed/2022/05/GHSA-47qf-6fqv-2m82/GHSA-47qf-6fqv-2m82.json
+++ b/advisories/unreviewed/2022/05/GHSA-47qf-6fqv-2m82/GHSA-47qf-6fqv-2m82.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-47qf-6fqv-2m82",
- "modified": "2022-05-24T19:14:45Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:45Z",
"aliases": [
"CVE-2021-38624"
],
"details": "Windows Key Storage Provider Security Feature Bypass Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-5422-3fvq-jx63/GHSA-5422-3fvq-jx63.json b/advisories/unreviewed/2022/05/GHSA-5422-3fvq-jx63/GHSA-5422-3fvq-jx63.json
index 7f82bd33255..f273e1d10bc 100644
--- a/advisories/unreviewed/2022/05/GHSA-5422-3fvq-jx63/GHSA-5422-3fvq-jx63.json
+++ b/advisories/unreviewed/2022/05/GHSA-5422-3fvq-jx63/GHSA-5422-3fvq-jx63.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-5422-3fvq-jx63",
- "modified": "2022-05-24T19:10:52Z",
+ "modified": "2023-12-28T21:30:28Z",
"published": "2022-05-24T19:10:52Z",
"aliases": [
"CVE-2021-34537"
],
"details": "Windows Bluetooth Driver Elevation of Privilege Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-54mf-5wqx-xqph/GHSA-54mf-5wqx-xqph.json b/advisories/unreviewed/2022/05/GHSA-54mf-5wqx-xqph/GHSA-54mf-5wqx-xqph.json
index 005e9ee4537..33be7fc0d74 100644
--- a/advisories/unreviewed/2022/05/GHSA-54mf-5wqx-xqph/GHSA-54mf-5wqx-xqph.json
+++ b/advisories/unreviewed/2022/05/GHSA-54mf-5wqx-xqph/GHSA-54mf-5wqx-xqph.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-54mf-5wqx-xqph",
- "modified": "2022-05-24T19:14:47Z",
+ "modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:14:47Z",
"aliases": [
"CVE-2021-36956"
],
"details": "Azure Sphere Information Disclosure Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-5553-x48j-7mwr/GHSA-5553-x48j-7mwr.json b/advisories/unreviewed/2022/05/GHSA-5553-x48j-7mwr/GHSA-5553-x48j-7mwr.json
index 4668127fcb5..f69fe821595 100644
--- a/advisories/unreviewed/2022/05/GHSA-5553-x48j-7mwr/GHSA-5553-x48j-7mwr.json
+++ b/advisories/unreviewed/2022/05/GHSA-5553-x48j-7mwr/GHSA-5553-x48j-7mwr.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-5553-x48j-7mwr",
- "modified": "2022-05-24T19:10:50Z",
+ "modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:10:50Z",
"aliases": [
"CVE-2021-36945"
],
"details": "Windows 10 Update Assistant Elevation of Privilege Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-55wf-38cw-5f72/GHSA-55wf-38cw-5f72.json b/advisories/unreviewed/2022/05/GHSA-55wf-38cw-5f72/GHSA-55wf-38cw-5f72.json
index f8943167af3..8b0b7c1aa7f 100644
--- a/advisories/unreviewed/2022/05/GHSA-55wf-38cw-5f72/GHSA-55wf-38cw-5f72.json
+++ b/advisories/unreviewed/2022/05/GHSA-55wf-38cw-5f72/GHSA-55wf-38cw-5f72.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-55wf-38cw-5f72",
- "modified": "2022-05-24T19:10:50Z",
+ "modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:10:50Z",
"aliases": [
"CVE-2021-36949"
],
"details": "Microsoft Azure Active Directory Connect Authentication Bypass Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-55x8-6f5x-9xx6/GHSA-55x8-6f5x-9xx6.json b/advisories/unreviewed/2022/05/GHSA-55x8-6f5x-9xx6/GHSA-55x8-6f5x-9xx6.json
index 4fb98b481ba..762d50fbd52 100644
--- a/advisories/unreviewed/2022/05/GHSA-55x8-6f5x-9xx6/GHSA-55x8-6f5x-9xx6.json
+++ b/advisories/unreviewed/2022/05/GHSA-55x8-6f5x-9xx6/GHSA-55x8-6f5x-9xx6.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-55x8-6f5x-9xx6",
- "modified": "2022-05-24T19:14:43Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:43Z",
"aliases": [
"CVE-2021-38644"
],
"details": "Microsoft MPEG-2 Video Extension Remote Code Execution Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-5973-jvgx-r7xh/GHSA-5973-jvgx-r7xh.json b/advisories/unreviewed/2022/05/GHSA-5973-jvgx-r7xh/GHSA-5973-jvgx-r7xh.json
index 8b56e31bf6a..ce4abb803f2 100644
--- a/advisories/unreviewed/2022/05/GHSA-5973-jvgx-r7xh/GHSA-5973-jvgx-r7xh.json
+++ b/advisories/unreviewed/2022/05/GHSA-5973-jvgx-r7xh/GHSA-5973-jvgx-r7xh.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-5973-jvgx-r7xh",
- "modified": "2022-05-24T19:10:53Z",
+ "modified": "2023-12-28T21:30:28Z",
"published": "2022-05-24T19:10:53Z",
"aliases": [
"CVE-2021-34480"
],
"details": "Scripting Engine Memory Corruption Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-5fmc-j34m-xvqh/GHSA-5fmc-j34m-xvqh.json b/advisories/unreviewed/2022/05/GHSA-5fmc-j34m-xvqh/GHSA-5fmc-j34m-xvqh.json
index be54ea0154b..2f36d7ab343 100644
--- a/advisories/unreviewed/2022/05/GHSA-5fmc-j34m-xvqh/GHSA-5fmc-j34m-xvqh.json
+++ b/advisories/unreviewed/2022/05/GHSA-5fmc-j34m-xvqh/GHSA-5fmc-j34m-xvqh.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-5fmc-j34m-xvqh",
- "modified": "2022-05-24T19:14:41Z",
+ "modified": "2023-12-28T21:30:31Z",
"published": "2022-05-24T19:14:41Z",
"aliases": [
"CVE-2021-38669"
],
"details": "Microsoft Edge (Chromium-based) Tampering Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-5hfp-hw26-8838/GHSA-5hfp-hw26-8838.json b/advisories/unreviewed/2022/05/GHSA-5hfp-hw26-8838/GHSA-5hfp-hw26-8838.json
index b251c737e52..76ff78d940b 100644
--- a/advisories/unreviewed/2022/05/GHSA-5hfp-hw26-8838/GHSA-5hfp-hw26-8838.json
+++ b/advisories/unreviewed/2022/05/GHSA-5hfp-hw26-8838/GHSA-5hfp-hw26-8838.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-5hfp-hw26-8838",
- "modified": "2022-05-24T17:44:45Z",
+ "modified": "2023-12-28T21:30:25Z",
"published": "2022-05-24T17:44:45Z",
"aliases": [
"CVE-2021-20678"
],
"details": "SQL injection vulnerability in the Paid Memberships Pro versions prior to 2.5.6 allows remote authenticated attackers to execute arbitrary SQL commands via unspecified vectors.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-5qp8-2ph4-rx2p/GHSA-5qp8-2ph4-rx2p.json b/advisories/unreviewed/2022/05/GHSA-5qp8-2ph4-rx2p/GHSA-5qp8-2ph4-rx2p.json
index 8e691f8fa68..17d97ee078b 100644
--- a/advisories/unreviewed/2022/05/GHSA-5qp8-2ph4-rx2p/GHSA-5qp8-2ph4-rx2p.json
+++ b/advisories/unreviewed/2022/05/GHSA-5qp8-2ph4-rx2p/GHSA-5qp8-2ph4-rx2p.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-5qp8-2ph4-rx2p",
- "modified": "2022-05-24T19:10:51Z",
+ "modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:10:51Z",
"aliases": [
"CVE-2021-36932"
],
"details": "Windows Services for NFS ONCRPC XDR Driver Information Disclosure Vulnerability This CVE ID is unique from CVE-2021-26433, CVE-2021-36926, CVE-2021-36933.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-62cr-vhq6-723g/GHSA-62cr-vhq6-723g.json b/advisories/unreviewed/2022/05/GHSA-62cr-vhq6-723g/GHSA-62cr-vhq6-723g.json
index d4dd15679af..5998ecd688e 100644
--- a/advisories/unreviewed/2022/05/GHSA-62cr-vhq6-723g/GHSA-62cr-vhq6-723g.json
+++ b/advisories/unreviewed/2022/05/GHSA-62cr-vhq6-723g/GHSA-62cr-vhq6-723g.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-62cr-vhq6-723g",
- "modified": "2022-05-24T19:14:41Z",
+ "modified": "2023-12-28T21:30:31Z",
"published": "2022-05-24T19:14:41Z",
"aliases": [
"CVE-2021-38671"
],
"details": "Windows Print Spooler Elevation of Privilege Vulnerability This CVE ID is unique from CVE-2021-38667, CVE-2021-40447.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-62pw-5259-vhh9/GHSA-62pw-5259-vhh9.json b/advisories/unreviewed/2022/05/GHSA-62pw-5259-vhh9/GHSA-62pw-5259-vhh9.json
index b13c86dd807..ed9d2b8cb03 100644
--- a/advisories/unreviewed/2022/05/GHSA-62pw-5259-vhh9/GHSA-62pw-5259-vhh9.json
+++ b/advisories/unreviewed/2022/05/GHSA-62pw-5259-vhh9/GHSA-62pw-5259-vhh9.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-62pw-5259-vhh9",
- "modified": "2022-05-24T19:10:52Z",
+ "modified": "2023-12-28T21:30:28Z",
"published": "2022-05-24T19:10:52Z",
"aliases": [
"CVE-2021-34487"
],
"details": "Windows Event Tracing Elevation of Privilege Vulnerability This CVE ID is unique from CVE-2021-26425, CVE-2021-34486.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-6377-6q3h-9ghh/GHSA-6377-6q3h-9ghh.json b/advisories/unreviewed/2022/05/GHSA-6377-6q3h-9ghh/GHSA-6377-6q3h-9ghh.json
index bb6566c6fc7..2fc83d85f93 100644
--- a/advisories/unreviewed/2022/05/GHSA-6377-6q3h-9ghh/GHSA-6377-6q3h-9ghh.json
+++ b/advisories/unreviewed/2022/05/GHSA-6377-6q3h-9ghh/GHSA-6377-6q3h-9ghh.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-6377-6q3h-9ghh",
- "modified": "2022-05-24T19:10:52Z",
+ "modified": "2023-12-28T21:30:28Z",
"published": "2022-05-24T19:10:52Z",
"aliases": [
"CVE-2021-34483"
],
"details": "Windows Print Spooler Elevation of Privilege Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-68pf-74vw-wqhm/GHSA-68pf-74vw-wqhm.json b/advisories/unreviewed/2022/05/GHSA-68pf-74vw-wqhm/GHSA-68pf-74vw-wqhm.json
index 82d0fa2876c..5148072c025 100644
--- a/advisories/unreviewed/2022/05/GHSA-68pf-74vw-wqhm/GHSA-68pf-74vw-wqhm.json
+++ b/advisories/unreviewed/2022/05/GHSA-68pf-74vw-wqhm/GHSA-68pf-74vw-wqhm.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-68pf-74vw-wqhm",
- "modified": "2022-05-24T19:14:44Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:44Z",
"aliases": [
"CVE-2021-38630"
],
"details": "Windows Event Tracing Elevation of Privilege Vulnerability This CVE ID is unique from CVE-2021-36964.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-6h4f-mm25-xxf7/GHSA-6h4f-mm25-xxf7.json b/advisories/unreviewed/2022/05/GHSA-6h4f-mm25-xxf7/GHSA-6h4f-mm25-xxf7.json
index d3b1af138aa..f51d3ba5151 100644
--- a/advisories/unreviewed/2022/05/GHSA-6h4f-mm25-xxf7/GHSA-6h4f-mm25-xxf7.json
+++ b/advisories/unreviewed/2022/05/GHSA-6h4f-mm25-xxf7/GHSA-6h4f-mm25-xxf7.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-6h4f-mm25-xxf7",
- "modified": "2022-05-24T19:14:46Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:46Z",
"aliases": [
"CVE-2021-36961"
],
"details": "Windows Installer Denial of Service Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-6j5r-87mw-77mg/GHSA-6j5r-87mw-77mg.json b/advisories/unreviewed/2022/05/GHSA-6j5r-87mw-77mg/GHSA-6j5r-87mw-77mg.json
index 9e4ed953f82..c25083f526b 100644
--- a/advisories/unreviewed/2022/05/GHSA-6j5r-87mw-77mg/GHSA-6j5r-87mw-77mg.json
+++ b/advisories/unreviewed/2022/05/GHSA-6j5r-87mw-77mg/GHSA-6j5r-87mw-77mg.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-6j5r-87mw-77mg",
- "modified": "2022-05-24T19:10:52Z",
+ "modified": "2023-12-28T21:30:28Z",
"published": "2022-05-24T19:10:52Z",
"aliases": [
"CVE-2021-34535"
],
"details": "Remote Desktop Client Remote Code Execution Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-7367-6rvj-7jxm/GHSA-7367-6rvj-7jxm.json b/advisories/unreviewed/2022/05/GHSA-7367-6rvj-7jxm/GHSA-7367-6rvj-7jxm.json
index 5152cf113df..deac2e9f9b5 100644
--- a/advisories/unreviewed/2022/05/GHSA-7367-6rvj-7jxm/GHSA-7367-6rvj-7jxm.json
+++ b/advisories/unreviewed/2022/05/GHSA-7367-6rvj-7jxm/GHSA-7367-6rvj-7jxm.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-7367-6rvj-7jxm",
- "modified": "2022-05-24T19:10:53Z",
+ "modified": "2023-12-28T21:30:27Z",
"published": "2022-05-24T19:10:53Z",
"aliases": [
"CVE-2021-26432"
],
"details": "Windows Services for NFS ONCRPC XDR Driver Remote Code Execution Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-786h-5jgr-vx5p/GHSA-786h-5jgr-vx5p.json b/advisories/unreviewed/2022/05/GHSA-786h-5jgr-vx5p/GHSA-786h-5jgr-vx5p.json
index 82986ae2051..09f2fffeaae 100644
--- a/advisories/unreviewed/2022/05/GHSA-786h-5jgr-vx5p/GHSA-786h-5jgr-vx5p.json
+++ b/advisories/unreviewed/2022/05/GHSA-786h-5jgr-vx5p/GHSA-786h-5jgr-vx5p.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-786h-5jgr-vx5p",
- "modified": "2022-05-24T19:10:51Z",
+ "modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:10:51Z",
"aliases": [
"CVE-2021-36926"
],
"details": "Windows Services for NFS ONCRPC XDR Driver Information Disclosure Vulnerability This CVE ID is unique from CVE-2021-26433, CVE-2021-36932, CVE-2021-36933.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-793m-wq3j-whvr/GHSA-793m-wq3j-whvr.json b/advisories/unreviewed/2022/05/GHSA-793m-wq3j-whvr/GHSA-793m-wq3j-whvr.json
index 493a18f968d..6b4da858a2b 100644
--- a/advisories/unreviewed/2022/05/GHSA-793m-wq3j-whvr/GHSA-793m-wq3j-whvr.json
+++ b/advisories/unreviewed/2022/05/GHSA-793m-wq3j-whvr/GHSA-793m-wq3j-whvr.json
@@ -28,7 +28,8 @@
],
"database_specific": {
"cwe_ids": [
- "CWE-269"
+ "CWE-269",
+ "CWE-416"
],
"severity": "HIGH",
"github_reviewed": false,
diff --git a/advisories/unreviewed/2022/05/GHSA-7954-w5x3-x4x7/GHSA-7954-w5x3-x4x7.json b/advisories/unreviewed/2022/05/GHSA-7954-w5x3-x4x7/GHSA-7954-w5x3-x4x7.json
index bf14b184878..51720d38872 100644
--- a/advisories/unreviewed/2022/05/GHSA-7954-w5x3-x4x7/GHSA-7954-w5x3-x4x7.json
+++ b/advisories/unreviewed/2022/05/GHSA-7954-w5x3-x4x7/GHSA-7954-w5x3-x4x7.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-7954-w5x3-x4x7",
- "modified": "2022-05-24T19:10:50Z",
+ "modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:10:50Z",
"aliases": [
"CVE-2021-36947"
],
"details": "Windows Print Spooler Remote Code Execution Vulnerability This CVE ID is unique from CVE-2021-36936, CVE-2021-36958.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-7f2q-7qg5-m23p/GHSA-7f2q-7qg5-m23p.json b/advisories/unreviewed/2022/05/GHSA-7f2q-7qg5-m23p/GHSA-7f2q-7qg5-m23p.json
index d8e1ba9aadb..c4d3dd919a6 100644
--- a/advisories/unreviewed/2022/05/GHSA-7f2q-7qg5-m23p/GHSA-7f2q-7qg5-m23p.json
+++ b/advisories/unreviewed/2022/05/GHSA-7f2q-7qg5-m23p/GHSA-7f2q-7qg5-m23p.json
@@ -28,6 +28,7 @@
],
"database_specific": {
"cwe_ids": [
+ "CWE-190",
"CWE-269"
],
"severity": "HIGH",
diff --git a/advisories/unreviewed/2022/05/GHSA-7g65-rwp5-vwpp/GHSA-7g65-rwp5-vwpp.json b/advisories/unreviewed/2022/05/GHSA-7g65-rwp5-vwpp/GHSA-7g65-rwp5-vwpp.json
index ca35d7a0b7f..b9f18d8f9b4 100644
--- a/advisories/unreviewed/2022/05/GHSA-7g65-rwp5-vwpp/GHSA-7g65-rwp5-vwpp.json
+++ b/advisories/unreviewed/2022/05/GHSA-7g65-rwp5-vwpp/GHSA-7g65-rwp5-vwpp.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-7g65-rwp5-vwpp",
- "modified": "2022-05-24T19:14:42Z",
+ "modified": "2023-12-28T21:30:31Z",
"published": "2022-05-24T19:14:42Z",
"aliases": [
"CVE-2021-38660"
],
"details": "Microsoft Office Graphics Remote Code Execution Vulnerability This CVE ID is unique from CVE-2021-38658.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-7hv9-m3f4-mcw5/GHSA-7hv9-m3f4-mcw5.json b/advisories/unreviewed/2022/05/GHSA-7hv9-m3f4-mcw5/GHSA-7hv9-m3f4-mcw5.json
index 2abdeec9cad..aa96b89387c 100644
--- a/advisories/unreviewed/2022/05/GHSA-7hv9-m3f4-mcw5/GHSA-7hv9-m3f4-mcw5.json
+++ b/advisories/unreviewed/2022/05/GHSA-7hv9-m3f4-mcw5/GHSA-7hv9-m3f4-mcw5.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-7hv9-m3f4-mcw5",
- "modified": "2022-05-24T19:14:40Z",
+ "modified": "2023-12-28T21:30:31Z",
"published": "2022-05-24T19:14:40Z",
"aliases": [
"CVE-2021-40440"
],
"details": "Microsoft Dynamics Business Central Cross-site Scripting Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-83g7-qjm4-75m6/GHSA-83g7-qjm4-75m6.json b/advisories/unreviewed/2022/05/GHSA-83g7-qjm4-75m6/GHSA-83g7-qjm4-75m6.json
index 2d9ffba23a1..1ced4929d3b 100644
--- a/advisories/unreviewed/2022/05/GHSA-83g7-qjm4-75m6/GHSA-83g7-qjm4-75m6.json
+++ b/advisories/unreviewed/2022/05/GHSA-83g7-qjm4-75m6/GHSA-83g7-qjm4-75m6.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-83g7-qjm4-75m6",
- "modified": "2022-05-24T19:14:45Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:45Z",
"aliases": [
"CVE-2021-36973"
],
"details": "Windows Redirected Drive Buffering System Elevation of Privilege Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-85cp-839g-xmmq/GHSA-85cp-839g-xmmq.json b/advisories/unreviewed/2022/05/GHSA-85cp-839g-xmmq/GHSA-85cp-839g-xmmq.json
index 489a672932a..60c200a8ed5 100644
--- a/advisories/unreviewed/2022/05/GHSA-85cp-839g-xmmq/GHSA-85cp-839g-xmmq.json
+++ b/advisories/unreviewed/2022/05/GHSA-85cp-839g-xmmq/GHSA-85cp-839g-xmmq.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-85cp-839g-xmmq",
- "modified": "2022-05-24T19:10:51Z",
+ "modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:10:51Z",
"aliases": [
"CVE-2021-36943"
],
"details": "Azure CycleCloud Elevation of Privilege Vulnerability This CVE ID is unique from CVE-2021-33762.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-8j5f-68q6-wpx2/GHSA-8j5f-68q6-wpx2.json b/advisories/unreviewed/2022/05/GHSA-8j5f-68q6-wpx2/GHSA-8j5f-68q6-wpx2.json
index e124f85ae89..a91569b6002 100644
--- a/advisories/unreviewed/2022/05/GHSA-8j5f-68q6-wpx2/GHSA-8j5f-68q6-wpx2.json
+++ b/advisories/unreviewed/2022/05/GHSA-8j5f-68q6-wpx2/GHSA-8j5f-68q6-wpx2.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-8j5f-68q6-wpx2",
- "modified": "2022-05-24T19:13:00Z",
+ "modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:13:00Z",
"aliases": [
"CVE-2021-38642"
],
"details": "Microsoft Edge for iOS Spoofing Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-8rvx-7ff2-2h9c/GHSA-8rvx-7ff2-2h9c.json b/advisories/unreviewed/2022/05/GHSA-8rvx-7ff2-2h9c/GHSA-8rvx-7ff2-2h9c.json
index 40ea7cb4f34..7825e9f2feb 100644
--- a/advisories/unreviewed/2022/05/GHSA-8rvx-7ff2-2h9c/GHSA-8rvx-7ff2-2h9c.json
+++ b/advisories/unreviewed/2022/05/GHSA-8rvx-7ff2-2h9c/GHSA-8rvx-7ff2-2h9c.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-8rvx-7ff2-2h9c",
- "modified": "2022-05-24T19:14:44Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:44Z",
"aliases": [
"CVE-2021-38635"
],
"details": "Windows Redirected Drive Buffering SubSystem Driver Information Disclosure Vulnerability This CVE ID is unique from CVE-2021-36969, CVE-2021-38636.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-8xmh-9r43-r5g8/GHSA-8xmh-9r43-r5g8.json b/advisories/unreviewed/2022/05/GHSA-8xmh-9r43-r5g8/GHSA-8xmh-9r43-r5g8.json
index 155a50052bc..87aaad24c5d 100644
--- a/advisories/unreviewed/2022/05/GHSA-8xmh-9r43-r5g8/GHSA-8xmh-9r43-r5g8.json
+++ b/advisories/unreviewed/2022/05/GHSA-8xmh-9r43-r5g8/GHSA-8xmh-9r43-r5g8.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-8xmh-9r43-r5g8",
- "modified": "2022-05-24T19:10:51Z",
+ "modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:10:51Z",
"aliases": [
"CVE-2021-36936"
],
"details": "Windows Print Spooler Remote Code Execution Vulnerability This CVE ID is unique from CVE-2021-36947, CVE-2021-36958.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-935j-gr9x-5v25/GHSA-935j-gr9x-5v25.json b/advisories/unreviewed/2022/05/GHSA-935j-gr9x-5v25/GHSA-935j-gr9x-5v25.json
index d15fb38dcb6..afaefc9110c 100644
--- a/advisories/unreviewed/2022/05/GHSA-935j-gr9x-5v25/GHSA-935j-gr9x-5v25.json
+++ b/advisories/unreviewed/2022/05/GHSA-935j-gr9x-5v25/GHSA-935j-gr9x-5v25.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-935j-gr9x-5v25",
- "modified": "2022-05-24T19:10:53Z",
+ "modified": "2023-12-28T21:30:28Z",
"published": "2022-05-24T19:10:53Z",
"aliases": [
"CVE-2021-34471"
],
"details": "Microsoft Windows Defender Elevation of Privilege Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-943g-4p6r-j7gq/GHSA-943g-4p6r-j7gq.json b/advisories/unreviewed/2022/05/GHSA-943g-4p6r-j7gq/GHSA-943g-4p6r-j7gq.json
index ece604a2af2..c94f7b54c7f 100644
--- a/advisories/unreviewed/2022/05/GHSA-943g-4p6r-j7gq/GHSA-943g-4p6r-j7gq.json
+++ b/advisories/unreviewed/2022/05/GHSA-943g-4p6r-j7gq/GHSA-943g-4p6r-j7gq.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-943g-4p6r-j7gq",
- "modified": "2022-05-24T19:10:52Z",
+ "modified": "2023-12-28T21:30:28Z",
"published": "2022-05-24T19:10:52Z",
"aliases": [
"CVE-2021-34530"
],
"details": "Windows Graphics Component Remote Code Execution Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-95xg-v9pq-wxv6/GHSA-95xg-v9pq-wxv6.json b/advisories/unreviewed/2022/05/GHSA-95xg-v9pq-wxv6/GHSA-95xg-v9pq-wxv6.json
index 4231ffc3d20..0c923555323 100644
--- a/advisories/unreviewed/2022/05/GHSA-95xg-v9pq-wxv6/GHSA-95xg-v9pq-wxv6.json
+++ b/advisories/unreviewed/2022/05/GHSA-95xg-v9pq-wxv6/GHSA-95xg-v9pq-wxv6.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-95xg-v9pq-wxv6",
- "modified": "2022-05-24T19:10:51Z",
+ "modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:10:51Z",
"aliases": [
"CVE-2021-36933"
],
"details": "Windows Services for NFS ONCRPC XDR Driver Information Disclosure Vulnerability This CVE ID is unique from CVE-2021-26433, CVE-2021-36926, CVE-2021-36932.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-99mx-g8r8-4fjh/GHSA-99mx-g8r8-4fjh.json b/advisories/unreviewed/2022/05/GHSA-99mx-g8r8-4fjh/GHSA-99mx-g8r8-4fjh.json
index 9d62ddd532c..97d68938394 100644
--- a/advisories/unreviewed/2022/05/GHSA-99mx-g8r8-4fjh/GHSA-99mx-g8r8-4fjh.json
+++ b/advisories/unreviewed/2022/05/GHSA-99mx-g8r8-4fjh/GHSA-99mx-g8r8-4fjh.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-99mx-g8r8-4fjh",
- "modified": "2022-05-24T19:14:41Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:41Z",
"aliases": [
"CVE-2021-38659"
],
"details": "Microsoft Office Remote Code Execution Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-9f85-ww57-g5rr/GHSA-9f85-ww57-g5rr.json b/advisories/unreviewed/2022/05/GHSA-9f85-ww57-g5rr/GHSA-9f85-ww57-g5rr.json
index 2a26533a268..ee96c8e33f3 100644
--- a/advisories/unreviewed/2022/05/GHSA-9f85-ww57-g5rr/GHSA-9f85-ww57-g5rr.json
+++ b/advisories/unreviewed/2022/05/GHSA-9f85-ww57-g5rr/GHSA-9f85-ww57-g5rr.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-9f85-ww57-g5rr",
- "modified": "2022-05-24T19:14:43Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:43Z",
"aliases": [
"CVE-2021-38637"
],
"details": "Windows Storage Information Disclosure Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-9wjc-rw9h-3fxm/GHSA-9wjc-rw9h-3fxm.json b/advisories/unreviewed/2022/05/GHSA-9wjc-rw9h-3fxm/GHSA-9wjc-rw9h-3fxm.json
index c3700892f1d..9b7c8c0ed61 100644
--- a/advisories/unreviewed/2022/05/GHSA-9wjc-rw9h-3fxm/GHSA-9wjc-rw9h-3fxm.json
+++ b/advisories/unreviewed/2022/05/GHSA-9wjc-rw9h-3fxm/GHSA-9wjc-rw9h-3fxm.json
@@ -25,7 +25,7 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-425"
],
"severity": "MODERATE",
"github_reviewed": false,
diff --git a/advisories/unreviewed/2022/05/GHSA-c556-742c-cv9q/GHSA-c556-742c-cv9q.json b/advisories/unreviewed/2022/05/GHSA-c556-742c-cv9q/GHSA-c556-742c-cv9q.json
index b78809c10b8..0eb258f5964 100644
--- a/advisories/unreviewed/2022/05/GHSA-c556-742c-cv9q/GHSA-c556-742c-cv9q.json
+++ b/advisories/unreviewed/2022/05/GHSA-c556-742c-cv9q/GHSA-c556-742c-cv9q.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-c556-742c-cv9q",
- "modified": "2022-05-24T19:10:53Z",
+ "modified": "2023-12-28T21:30:27Z",
"published": "2022-05-24T19:10:53Z",
"aliases": [
"CVE-2021-26430"
],
"details": "Azure Sphere Denial of Service Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-c6w9-2fwg-5q4v/GHSA-c6w9-2fwg-5q4v.json b/advisories/unreviewed/2022/05/GHSA-c6w9-2fwg-5q4v/GHSA-c6w9-2fwg-5q4v.json
index 79bf49c46b3..850c4303af2 100644
--- a/advisories/unreviewed/2022/05/GHSA-c6w9-2fwg-5q4v/GHSA-c6w9-2fwg-5q4v.json
+++ b/advisories/unreviewed/2022/05/GHSA-c6w9-2fwg-5q4v/GHSA-c6w9-2fwg-5q4v.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-c6w9-2fwg-5q4v",
- "modified": "2022-05-24T19:17:28Z",
+ "modified": "2023-12-28T21:30:31Z",
"published": "2022-05-24T19:17:28Z",
"aliases": [
"CVE-2021-41342"
],
"details": "Windows MSHTML Platform Remote Code Execution Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-ccq2-rr22-wp3j/GHSA-ccq2-rr22-wp3j.json b/advisories/unreviewed/2022/05/GHSA-ccq2-rr22-wp3j/GHSA-ccq2-rr22-wp3j.json
index 0c45b769363..ac7f8ff4478 100644
--- a/advisories/unreviewed/2022/05/GHSA-ccq2-rr22-wp3j/GHSA-ccq2-rr22-wp3j.json
+++ b/advisories/unreviewed/2022/05/GHSA-ccq2-rr22-wp3j/GHSA-ccq2-rr22-wp3j.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-ccq2-rr22-wp3j",
- "modified": "2022-05-24T19:14:43Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:43Z",
"aliases": [
"CVE-2021-38639"
],
"details": "Win32k Elevation of Privilege Vulnerability This CVE ID is unique from CVE-2021-36975.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-ch36-6p5f-9jg4/GHSA-ch36-6p5f-9jg4.json b/advisories/unreviewed/2022/05/GHSA-ch36-6p5f-9jg4/GHSA-ch36-6p5f-9jg4.json
index ee135c44bc0..a0e22a63b7f 100644
--- a/advisories/unreviewed/2022/05/GHSA-ch36-6p5f-9jg4/GHSA-ch36-6p5f-9jg4.json
+++ b/advisories/unreviewed/2022/05/GHSA-ch36-6p5f-9jg4/GHSA-ch36-6p5f-9jg4.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-ch36-6p5f-9jg4",
- "modified": "2022-05-24T19:10:52Z",
+ "modified": "2023-12-28T21:30:28Z",
"published": "2022-05-24T19:10:52Z",
"aliases": [
"CVE-2021-34533"
],
"details": "Windows Graphics Component Font Parsing Remote Code Execution Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-cw58-pgvq-hw38/GHSA-cw58-pgvq-hw38.json b/advisories/unreviewed/2022/05/GHSA-cw58-pgvq-hw38/GHSA-cw58-pgvq-hw38.json
index 6da9cac38ab..9949135b3b6 100644
--- a/advisories/unreviewed/2022/05/GHSA-cw58-pgvq-hw38/GHSA-cw58-pgvq-hw38.json
+++ b/advisories/unreviewed/2022/05/GHSA-cw58-pgvq-hw38/GHSA-cw58-pgvq-hw38.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-cw58-pgvq-hw38",
- "modified": "2022-05-24T19:10:50Z",
+ "modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:10:50Z",
"aliases": [
"CVE-2021-36950"
],
"details": "Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-cwg6-433x-8j82/GHSA-cwg6-433x-8j82.json b/advisories/unreviewed/2022/05/GHSA-cwg6-433x-8j82/GHSA-cwg6-433x-8j82.json
index a0a4aca7965..5480cbb02f3 100644
--- a/advisories/unreviewed/2022/05/GHSA-cwg6-433x-8j82/GHSA-cwg6-433x-8j82.json
+++ b/advisories/unreviewed/2022/05/GHSA-cwg6-433x-8j82/GHSA-cwg6-433x-8j82.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-cwg6-433x-8j82",
- "modified": "2022-05-24T19:14:47Z",
+ "modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:14:47Z",
"aliases": [
"CVE-2021-26435"
],
"details": "Windows Scripting Engine Memory Corruption Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-f425-rchp-ffpg/GHSA-f425-rchp-ffpg.json b/advisories/unreviewed/2022/05/GHSA-f425-rchp-ffpg/GHSA-f425-rchp-ffpg.json
index 8f9fadb443d..f6b36483857 100644
--- a/advisories/unreviewed/2022/05/GHSA-f425-rchp-ffpg/GHSA-f425-rchp-ffpg.json
+++ b/advisories/unreviewed/2022/05/GHSA-f425-rchp-ffpg/GHSA-f425-rchp-ffpg.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-f425-rchp-ffpg",
- "modified": "2022-05-24T19:10:55Z",
+ "modified": "2023-12-28T21:30:25Z",
"published": "2022-05-24T19:10:55Z",
"aliases": [
"CVE-2021-26424"
],
"details": "Windows TCP/IP Remote Code Execution Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-f5vf-pw7c-hmwf/GHSA-f5vf-pw7c-hmwf.json b/advisories/unreviewed/2022/05/GHSA-f5vf-pw7c-hmwf/GHSA-f5vf-pw7c-hmwf.json
index 28f6a3295f0..64d30bebd5a 100644
--- a/advisories/unreviewed/2022/05/GHSA-f5vf-pw7c-hmwf/GHSA-f5vf-pw7c-hmwf.json
+++ b/advisories/unreviewed/2022/05/GHSA-f5vf-pw7c-hmwf/GHSA-f5vf-pw7c-hmwf.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-f5vf-pw7c-hmwf",
- "modified": "2022-05-24T19:14:43Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:43Z",
"aliases": [
"CVE-2021-38636"
],
"details": "Windows Redirected Drive Buffering SubSystem Driver Information Disclosure Vulnerability This CVE ID is unique from CVE-2021-36969, CVE-2021-38635.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-f76r-r2wm-fmpj/GHSA-f76r-r2wm-fmpj.json b/advisories/unreviewed/2022/05/GHSA-f76r-r2wm-fmpj/GHSA-f76r-r2wm-fmpj.json
index 9bc32e29b6b..20047b9de1c 100644
--- a/advisories/unreviewed/2022/05/GHSA-f76r-r2wm-fmpj/GHSA-f76r-r2wm-fmpj.json
+++ b/advisories/unreviewed/2022/05/GHSA-f76r-r2wm-fmpj/GHSA-f76r-r2wm-fmpj.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-f76r-r2wm-fmpj",
- "modified": "2022-05-24T19:14:44Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:44Z",
"aliases": [
"CVE-2021-38633"
],
"details": "Windows Common Log File System Driver Elevation of Privilege Vulnerability This CVE ID is unique from CVE-2021-36955, CVE-2021-36963.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-fppm-8cxc-gx7c/GHSA-fppm-8cxc-gx7c.json b/advisories/unreviewed/2022/05/GHSA-fppm-8cxc-gx7c/GHSA-fppm-8cxc-gx7c.json
index 41d236136b7..0c11ef26546 100644
--- a/advisories/unreviewed/2022/05/GHSA-fppm-8cxc-gx7c/GHSA-fppm-8cxc-gx7c.json
+++ b/advisories/unreviewed/2022/05/GHSA-fppm-8cxc-gx7c/GHSA-fppm-8cxc-gx7c.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-fppm-8cxc-gx7c",
- "modified": "2022-05-24T19:14:45Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:45Z",
"aliases": [
"CVE-2021-36975"
],
"details": "Win32k Elevation of Privilege Vulnerability This CVE ID is unique from CVE-2021-38639.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-frcm-5w4g-pjxj/GHSA-frcm-5w4g-pjxj.json b/advisories/unreviewed/2022/05/GHSA-frcm-5w4g-pjxj/GHSA-frcm-5w4g-pjxj.json
index 97f0c385bc1..ab16010611b 100644
--- a/advisories/unreviewed/2022/05/GHSA-frcm-5w4g-pjxj/GHSA-frcm-5w4g-pjxj.json
+++ b/advisories/unreviewed/2022/05/GHSA-frcm-5w4g-pjxj/GHSA-frcm-5w4g-pjxj.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-frcm-5w4g-pjxj",
- "modified": "2022-05-24T19:14:45Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:45Z",
"aliases": [
"CVE-2021-36965"
],
"details": "Windows WLAN AutoConfig Service Remote Code Execution Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-g7cc-p3mh-884q/GHSA-g7cc-p3mh-884q.json b/advisories/unreviewed/2022/05/GHSA-g7cc-p3mh-884q/GHSA-g7cc-p3mh-884q.json
index d8418e21fcf..9db330c7a7e 100644
--- a/advisories/unreviewed/2022/05/GHSA-g7cc-p3mh-884q/GHSA-g7cc-p3mh-884q.json
+++ b/advisories/unreviewed/2022/05/GHSA-g7cc-p3mh-884q/GHSA-g7cc-p3mh-884q.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-g7cc-p3mh-884q",
- "modified": "2022-05-24T19:14:45Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:45Z",
"aliases": [
"CVE-2021-36969"
],
"details": "Windows Redirected Drive Buffering SubSystem Driver Information Disclosure Vulnerability This CVE ID is unique from CVE-2021-38635, CVE-2021-38636.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-gf2g-7pj6-65xr/GHSA-gf2g-7pj6-65xr.json b/advisories/unreviewed/2022/05/GHSA-gf2g-7pj6-65xr/GHSA-gf2g-7pj6-65xr.json
index b846683d95a..f97b3acbd81 100644
--- a/advisories/unreviewed/2022/05/GHSA-gf2g-7pj6-65xr/GHSA-gf2g-7pj6-65xr.json
+++ b/advisories/unreviewed/2022/05/GHSA-gf2g-7pj6-65xr/GHSA-gf2g-7pj6-65xr.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-gf2g-7pj6-65xr",
- "modified": "2022-05-24T19:14:44Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:44Z",
"aliases": [
"CVE-2021-38632"
],
"details": "BitLocker Security Feature Bypass Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-gf96-mx62-w378/GHSA-gf96-mx62-w378.json b/advisories/unreviewed/2022/05/GHSA-gf96-mx62-w378/GHSA-gf96-mx62-w378.json
index 6acf41394b5..076f140c59b 100644
--- a/advisories/unreviewed/2022/05/GHSA-gf96-mx62-w378/GHSA-gf96-mx62-w378.json
+++ b/advisories/unreviewed/2022/05/GHSA-gf96-mx62-w378/GHSA-gf96-mx62-w378.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-gf96-mx62-w378",
- "modified": "2022-05-24T19:14:47Z",
+ "modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:14:47Z",
"aliases": [
"CVE-2021-26437"
],
"details": "Visual Studio Code Spoofing Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-gmr6-p4w6-pwr5/GHSA-gmr6-p4w6-pwr5.json b/advisories/unreviewed/2022/05/GHSA-gmr6-p4w6-pwr5/GHSA-gmr6-p4w6-pwr5.json
index 69212f13a6f..66fb500fdd8 100644
--- a/advisories/unreviewed/2022/05/GHSA-gmr6-p4w6-pwr5/GHSA-gmr6-p4w6-pwr5.json
+++ b/advisories/unreviewed/2022/05/GHSA-gmr6-p4w6-pwr5/GHSA-gmr6-p4w6-pwr5.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-gmr6-p4w6-pwr5",
- "modified": "2022-05-24T19:10:52Z",
+ "modified": "2023-12-28T21:30:28Z",
"published": "2022-05-24T19:10:52Z",
"aliases": [
"CVE-2021-34524"
],
"details": "Microsoft Dynamics 365 (on-premises) Remote Code Execution Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-gxpw-5p3g-8v93/GHSA-gxpw-5p3g-8v93.json b/advisories/unreviewed/2022/05/GHSA-gxpw-5p3g-8v93/GHSA-gxpw-5p3g-8v93.json
index 7fe2ec50f88..86755f3f67a 100644
--- a/advisories/unreviewed/2022/05/GHSA-gxpw-5p3g-8v93/GHSA-gxpw-5p3g-8v93.json
+++ b/advisories/unreviewed/2022/05/GHSA-gxpw-5p3g-8v93/GHSA-gxpw-5p3g-8v93.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-gxpw-5p3g-8v93",
- "modified": "2022-05-24T19:14:41Z",
+ "modified": "2023-12-28T21:30:31Z",
"published": "2022-05-24T19:14:41Z",
"aliases": [
"CVE-2021-40448"
],
"details": "Microsoft Accessibility Insights for Android Information Disclosure Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:N/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-hc54-3v33-p939/GHSA-hc54-3v33-p939.json b/advisories/unreviewed/2022/05/GHSA-hc54-3v33-p939/GHSA-hc54-3v33-p939.json
index f841d3a0e73..ad8c8b929a4 100644
--- a/advisories/unreviewed/2022/05/GHSA-hc54-3v33-p939/GHSA-hc54-3v33-p939.json
+++ b/advisories/unreviewed/2022/05/GHSA-hc54-3v33-p939/GHSA-hc54-3v33-p939.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-hc54-3v33-p939",
- "modified": "2022-05-24T19:13:01Z",
+ "modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:13:01Z",
"aliases": [
"CVE-2021-38641"
],
"details": "Microsoft Edge for Android Spoofing Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-hjqw-qpp5-qxjg/GHSA-hjqw-qpp5-qxjg.json b/advisories/unreviewed/2022/05/GHSA-hjqw-qpp5-qxjg/GHSA-hjqw-qpp5-qxjg.json
index 887f85c6413..975efb01023 100644
--- a/advisories/unreviewed/2022/05/GHSA-hjqw-qpp5-qxjg/GHSA-hjqw-qpp5-qxjg.json
+++ b/advisories/unreviewed/2022/05/GHSA-hjqw-qpp5-qxjg/GHSA-hjqw-qpp5-qxjg.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-hjqw-qpp5-qxjg",
- "modified": "2022-05-24T19:14:44Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:44Z",
"aliases": [
"CVE-2021-36974"
],
"details": "Windows SMB Elevation of Privilege Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-hv3j-v3wg-ggvp/GHSA-hv3j-v3wg-ggvp.json b/advisories/unreviewed/2022/05/GHSA-hv3j-v3wg-ggvp/GHSA-hv3j-v3wg-ggvp.json
index 33286c59f3d..c4fb657c8e3 100644
--- a/advisories/unreviewed/2022/05/GHSA-hv3j-v3wg-ggvp/GHSA-hv3j-v3wg-ggvp.json
+++ b/advisories/unreviewed/2022/05/GHSA-hv3j-v3wg-ggvp/GHSA-hv3j-v3wg-ggvp.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-hv3j-v3wg-ggvp",
- "modified": "2022-05-24T19:14:47Z",
+ "modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:14:47Z",
"aliases": [
"CVE-2021-36954"
],
"details": "Windows Bind Filter Driver Elevation of Privilege Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-hwfw-3rf5-m49w/GHSA-hwfw-3rf5-m49w.json b/advisories/unreviewed/2022/05/GHSA-hwfw-3rf5-m49w/GHSA-hwfw-3rf5-m49w.json
index ef3e6273646..df206153551 100644
--- a/advisories/unreviewed/2022/05/GHSA-hwfw-3rf5-m49w/GHSA-hwfw-3rf5-m49w.json
+++ b/advisories/unreviewed/2022/05/GHSA-hwfw-3rf5-m49w/GHSA-hwfw-3rf5-m49w.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-hwfw-3rf5-m49w",
- "modified": "2022-05-24T19:14:45Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:45Z",
"aliases": [
"CVE-2021-36967"
],
"details": "Windows WLAN AutoConfig Service Elevation of Privilege Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-j59g-pjr7-6mxg/GHSA-j59g-pjr7-6mxg.json b/advisories/unreviewed/2022/05/GHSA-j59g-pjr7-6mxg/GHSA-j59g-pjr7-6mxg.json
index e6418e2c82d..89fd1a54132 100644
--- a/advisories/unreviewed/2022/05/GHSA-j59g-pjr7-6mxg/GHSA-j59g-pjr7-6mxg.json
+++ b/advisories/unreviewed/2022/05/GHSA-j59g-pjr7-6mxg/GHSA-j59g-pjr7-6mxg.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-j59g-pjr7-6mxg",
- "modified": "2022-05-24T19:10:53Z",
+ "modified": "2023-12-28T21:30:28Z",
"published": "2022-05-24T19:10:53Z",
"aliases": [
"CVE-2021-34478"
],
"details": "Microsoft Office Remote Code Execution Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-jrg3-jj4f-m298/GHSA-jrg3-jj4f-m298.json b/advisories/unreviewed/2022/05/GHSA-jrg3-jj4f-m298/GHSA-jrg3-jj4f-m298.json
index e11980c93e6..566be7346dd 100644
--- a/advisories/unreviewed/2022/05/GHSA-jrg3-jj4f-m298/GHSA-jrg3-jj4f-m298.json
+++ b/advisories/unreviewed/2022/05/GHSA-jrg3-jj4f-m298/GHSA-jrg3-jj4f-m298.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-jrg3-jj4f-m298",
- "modified": "2022-05-24T19:13:01Z",
+ "modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:13:01Z",
"aliases": [
"CVE-2021-36930"
],
"details": "Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability This CVE ID is unique from CVE-2021-26436.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-jwrp-9w74-vqmj/GHSA-jwrp-9w74-vqmj.json b/advisories/unreviewed/2022/05/GHSA-jwrp-9w74-vqmj/GHSA-jwrp-9w74-vqmj.json
index 6bd9ad19a19..8be5b1afaa7 100644
--- a/advisories/unreviewed/2022/05/GHSA-jwrp-9w74-vqmj/GHSA-jwrp-9w74-vqmj.json
+++ b/advisories/unreviewed/2022/05/GHSA-jwrp-9w74-vqmj/GHSA-jwrp-9w74-vqmj.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-jwrp-9w74-vqmj",
- "modified": "2022-05-24T19:14:46Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:46Z",
"aliases": [
"CVE-2021-36963"
],
"details": "Windows Common Log File System Driver Elevation of Privilege Vulnerability This CVE ID is unique from CVE-2021-36955, CVE-2021-38633.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-m743-3wjh-838g/GHSA-m743-3wjh-838g.json b/advisories/unreviewed/2022/05/GHSA-m743-3wjh-838g/GHSA-m743-3wjh-838g.json
index dcbd5a8d397..f42f972b859 100644
--- a/advisories/unreviewed/2022/05/GHSA-m743-3wjh-838g/GHSA-m743-3wjh-838g.json
+++ b/advisories/unreviewed/2022/05/GHSA-m743-3wjh-838g/GHSA-m743-3wjh-838g.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-m743-3wjh-838g",
- "modified": "2022-05-24T19:10:51Z",
+ "modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:10:51Z",
"aliases": [
"CVE-2021-36937"
],
"details": "Windows Media MPEG-4 Video Decoder Remote Code Execution Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-m784-4mwr-q2x2/GHSA-m784-4mwr-q2x2.json b/advisories/unreviewed/2022/05/GHSA-m784-4mwr-q2x2/GHSA-m784-4mwr-q2x2.json
index 578b93cbbac..4bf867e8b96 100644
--- a/advisories/unreviewed/2022/05/GHSA-m784-4mwr-q2x2/GHSA-m784-4mwr-q2x2.json
+++ b/advisories/unreviewed/2022/05/GHSA-m784-4mwr-q2x2/GHSA-m784-4mwr-q2x2.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-m784-4mwr-q2x2",
- "modified": "2022-05-24T19:14:45Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:45Z",
"aliases": [
"CVE-2021-36972"
],
"details": "Windows SMB Information Disclosure Vulnerability This CVE ID is unique from CVE-2021-36960.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-mcj5-4xrx-fgf3/GHSA-mcj5-4xrx-fgf3.json b/advisories/unreviewed/2022/05/GHSA-mcj5-4xrx-fgf3/GHSA-mcj5-4xrx-fgf3.json
index d6bd3c0da7e..5fa21922470 100644
--- a/advisories/unreviewed/2022/05/GHSA-mcj5-4xrx-fgf3/GHSA-mcj5-4xrx-fgf3.json
+++ b/advisories/unreviewed/2022/05/GHSA-mcj5-4xrx-fgf3/GHSA-mcj5-4xrx-fgf3.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-mcj5-4xrx-fgf3",
- "modified": "2022-05-24T19:14:41Z",
+ "modified": "2023-12-28T21:30:31Z",
"published": "2022-05-24T19:14:41Z",
"aliases": [
"CVE-2021-38661"
],
"details": "HEVC Video Extensions Remote Code Execution Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-mjj2-qhjw-qmhv/GHSA-mjj2-qhjw-qmhv.json b/advisories/unreviewed/2022/05/GHSA-mjj2-qhjw-qmhv/GHSA-mjj2-qhjw-qmhv.json
index ffdb99d9e68..19cc482cff2 100644
--- a/advisories/unreviewed/2022/05/GHSA-mjj2-qhjw-qmhv/GHSA-mjj2-qhjw-qmhv.json
+++ b/advisories/unreviewed/2022/05/GHSA-mjj2-qhjw-qmhv/GHSA-mjj2-qhjw-qmhv.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-mjj2-qhjw-qmhv",
- "modified": "2022-05-24T19:13:01Z",
+ "modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:13:01Z",
"aliases": [
"CVE-2021-26439"
],
"details": "Microsoft Edge for Android Information Disclosure Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-mp6h-cxp8-82j6/GHSA-mp6h-cxp8-82j6.json b/advisories/unreviewed/2022/05/GHSA-mp6h-cxp8-82j6/GHSA-mp6h-cxp8-82j6.json
index 291263957cf..340c6e57f71 100644
--- a/advisories/unreviewed/2022/05/GHSA-mp6h-cxp8-82j6/GHSA-mp6h-cxp8-82j6.json
+++ b/advisories/unreviewed/2022/05/GHSA-mp6h-cxp8-82j6/GHSA-mp6h-cxp8-82j6.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-mp6h-cxp8-82j6",
- "modified": "2022-05-24T19:10:52Z",
+ "modified": "2023-12-28T21:30:28Z",
"published": "2022-05-24T19:10:52Z",
"aliases": [
"CVE-2021-34484"
],
"details": "Windows User Profile Service Elevation of Privilege Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-mr75-cw8v-jgmf/GHSA-mr75-cw8v-jgmf.json b/advisories/unreviewed/2022/05/GHSA-mr75-cw8v-jgmf/GHSA-mr75-cw8v-jgmf.json
index ec8aab03ba4..bd00748c1d7 100644
--- a/advisories/unreviewed/2022/05/GHSA-mr75-cw8v-jgmf/GHSA-mr75-cw8v-jgmf.json
+++ b/advisories/unreviewed/2022/05/GHSA-mr75-cw8v-jgmf/GHSA-mr75-cw8v-jgmf.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-mr75-cw8v-jgmf",
- "modified": "2022-05-24T19:14:42Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:42Z",
"aliases": [
"CVE-2021-38653"
],
"details": "Microsoft Office Visio Remote Code Execution Vulnerability This CVE ID is unique from CVE-2021-38654.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-mv9g-h8vc-563m/GHSA-mv9g-h8vc-563m.json b/advisories/unreviewed/2022/05/GHSA-mv9g-h8vc-563m/GHSA-mv9g-h8vc-563m.json
index ed7010ec4b2..9b57027d56e 100644
--- a/advisories/unreviewed/2022/05/GHSA-mv9g-h8vc-563m/GHSA-mv9g-h8vc-563m.json
+++ b/advisories/unreviewed/2022/05/GHSA-mv9g-h8vc-563m/GHSA-mv9g-h8vc-563m.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-mv9g-h8vc-563m",
- "modified": "2022-05-24T19:14:46Z",
+ "modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:14:46Z",
"aliases": [
"CVE-2021-36959"
],
"details": "Windows Authenticode Spoofing Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-p3jw-cchq-r2fw/GHSA-p3jw-cchq-r2fw.json b/advisories/unreviewed/2022/05/GHSA-p3jw-cchq-r2fw/GHSA-p3jw-cchq-r2fw.json
index 33228cd9e18..e7e7353523e 100644
--- a/advisories/unreviewed/2022/05/GHSA-p3jw-cchq-r2fw/GHSA-p3jw-cchq-r2fw.json
+++ b/advisories/unreviewed/2022/05/GHSA-p3jw-cchq-r2fw/GHSA-p3jw-cchq-r2fw.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-p3jw-cchq-r2fw",
- "modified": "2022-05-24T19:14:44Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:44Z",
"aliases": [
"CVE-2021-38634"
],
"details": "Microsoft Windows Update Client Elevation of Privilege Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-p8gr-7qcg-86p9/GHSA-p8gr-7qcg-86p9.json b/advisories/unreviewed/2022/05/GHSA-p8gr-7qcg-86p9/GHSA-p8gr-7qcg-86p9.json
index 5b089eb633f..81e4d63f296 100644
--- a/advisories/unreviewed/2022/05/GHSA-p8gr-7qcg-86p9/GHSA-p8gr-7qcg-86p9.json
+++ b/advisories/unreviewed/2022/05/GHSA-p8gr-7qcg-86p9/GHSA-p8gr-7qcg-86p9.json
@@ -32,7 +32,8 @@
],
"database_specific": {
"cwe_ids": [
- "CWE-269"
+ "CWE-269",
+ "CWE-287"
],
"severity": "HIGH",
"github_reviewed": false,
diff --git a/advisories/unreviewed/2022/05/GHSA-pc4p-h32f-7x7f/GHSA-pc4p-h32f-7x7f.json b/advisories/unreviewed/2022/05/GHSA-pc4p-h32f-7x7f/GHSA-pc4p-h32f-7x7f.json
index 4bbca794ba3..fab72f7e92f 100644
--- a/advisories/unreviewed/2022/05/GHSA-pc4p-h32f-7x7f/GHSA-pc4p-h32f-7x7f.json
+++ b/advisories/unreviewed/2022/05/GHSA-pc4p-h32f-7x7f/GHSA-pc4p-h32f-7x7f.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-pc4p-h32f-7x7f",
- "modified": "2022-05-24T19:14:46Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:46Z",
"aliases": [
"CVE-2021-36962"
],
"details": "Windows Installer Information Disclosure Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-pchq-9x38-f924/GHSA-pchq-9x38-f924.json b/advisories/unreviewed/2022/05/GHSA-pchq-9x38-f924/GHSA-pchq-9x38-f924.json
index f121823120b..392b4ff6b9a 100644
--- a/advisories/unreviewed/2022/05/GHSA-pchq-9x38-f924/GHSA-pchq-9x38-f924.json
+++ b/advisories/unreviewed/2022/05/GHSA-pchq-9x38-f924/GHSA-pchq-9x38-f924.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-pchq-9x38-f924",
- "modified": "2022-05-24T19:14:44Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:44Z",
"aliases": [
"CVE-2021-38626"
],
"details": "Windows Kernel Elevation of Privilege Vulnerability This CVE ID is unique from CVE-2021-38625.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-prg7-wpm2-hh5x/GHSA-prg7-wpm2-hh5x.json b/advisories/unreviewed/2022/05/GHSA-prg7-wpm2-hh5x/GHSA-prg7-wpm2-hh5x.json
index 5ea6f071506..edd88834287 100644
--- a/advisories/unreviewed/2022/05/GHSA-prg7-wpm2-hh5x/GHSA-prg7-wpm2-hh5x.json
+++ b/advisories/unreviewed/2022/05/GHSA-prg7-wpm2-hh5x/GHSA-prg7-wpm2-hh5x.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-prg7-wpm2-hh5x",
- "modified": "2022-05-24T19:10:51Z",
+ "modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:10:51Z",
"aliases": [
"CVE-2021-36940"
],
"details": "Microsoft SharePoint Server Spoofing Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:L/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-pxcq-8fv4-jxf6/GHSA-pxcq-8fv4-jxf6.json b/advisories/unreviewed/2022/05/GHSA-pxcq-8fv4-jxf6/GHSA-pxcq-8fv4-jxf6.json
index a640cce5206..e8e66c57a07 100644
--- a/advisories/unreviewed/2022/05/GHSA-pxcq-8fv4-jxf6/GHSA-pxcq-8fv4-jxf6.json
+++ b/advisories/unreviewed/2022/05/GHSA-pxcq-8fv4-jxf6/GHSA-pxcq-8fv4-jxf6.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-pxcq-8fv4-jxf6",
- "modified": "2022-05-24T19:14:42Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:42Z",
"aliases": [
"CVE-2021-38652"
],
"details": "Microsoft SharePoint Server Spoofing Vulnerability This CVE ID is unique from CVE-2021-38651.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:L/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-q37m-22jj-3f7x/GHSA-q37m-22jj-3f7x.json b/advisories/unreviewed/2022/05/GHSA-q37m-22jj-3f7x/GHSA-q37m-22jj-3f7x.json
index 674e482ffbd..9018d523618 100644
--- a/advisories/unreviewed/2022/05/GHSA-q37m-22jj-3f7x/GHSA-q37m-22jj-3f7x.json
+++ b/advisories/unreviewed/2022/05/GHSA-q37m-22jj-3f7x/GHSA-q37m-22jj-3f7x.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-q37m-22jj-3f7x",
- "modified": "2022-05-24T19:10:52Z",
+ "modified": "2023-12-28T21:30:28Z",
"published": "2022-05-24T19:10:52Z",
"aliases": [
"CVE-2021-34534"
],
"details": "Windows MSHTML Platform Remote Code Execution Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-q5j2-v8q9-65c8/GHSA-q5j2-v8q9-65c8.json b/advisories/unreviewed/2022/05/GHSA-q5j2-v8q9-65c8/GHSA-q5j2-v8q9-65c8.json
index 75edef99966..7ca7bca53cb 100644
--- a/advisories/unreviewed/2022/05/GHSA-q5j2-v8q9-65c8/GHSA-q5j2-v8q9-65c8.json
+++ b/advisories/unreviewed/2022/05/GHSA-q5j2-v8q9-65c8/GHSA-q5j2-v8q9-65c8.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-q5j2-v8q9-65c8",
- "modified": "2022-05-24T19:14:41Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:41Z",
"aliases": [
"CVE-2021-38656"
],
"details": "Microsoft Word Remote Code Execution Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-q67p-8wm5-grq8/GHSA-q67p-8wm5-grq8.json b/advisories/unreviewed/2022/05/GHSA-q67p-8wm5-grq8/GHSA-q67p-8wm5-grq8.json
index 479f0f59fa3..dd6ab3f11c0 100644
--- a/advisories/unreviewed/2022/05/GHSA-q67p-8wm5-grq8/GHSA-q67p-8wm5-grq8.json
+++ b/advisories/unreviewed/2022/05/GHSA-q67p-8wm5-grq8/GHSA-q67p-8wm5-grq8.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-q67p-8wm5-grq8",
- "modified": "2022-05-24T19:14:41Z",
+ "modified": "2023-12-28T21:30:31Z",
"published": "2022-05-24T19:14:41Z",
"aliases": [
"CVE-2021-40447"
],
"details": "Windows Print Spooler Elevation of Privilege Vulnerability This CVE ID is unique from CVE-2021-38667, CVE-2021-38671.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-qf8j-85x5-c3ww/GHSA-qf8j-85x5-c3ww.json b/advisories/unreviewed/2022/05/GHSA-qf8j-85x5-c3ww/GHSA-qf8j-85x5-c3ww.json
index 0eb5decfb70..55b0509082d 100644
--- a/advisories/unreviewed/2022/05/GHSA-qf8j-85x5-c3ww/GHSA-qf8j-85x5-c3ww.json
+++ b/advisories/unreviewed/2022/05/GHSA-qf8j-85x5-c3ww/GHSA-qf8j-85x5-c3ww.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-qf8j-85x5-c3ww",
- "modified": "2022-05-24T19:14:44Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:44Z",
"aliases": [
"CVE-2021-38625"
],
"details": "Windows Kernel Elevation of Privilege Vulnerability This CVE ID is unique from CVE-2021-38626.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-r8fw-c3wm-75m3/GHSA-r8fw-c3wm-75m3.json b/advisories/unreviewed/2022/05/GHSA-r8fw-c3wm-75m3/GHSA-r8fw-c3wm-75m3.json
index c145ec69d54..9a3853f1035 100644
--- a/advisories/unreviewed/2022/05/GHSA-r8fw-c3wm-75m3/GHSA-r8fw-c3wm-75m3.json
+++ b/advisories/unreviewed/2022/05/GHSA-r8fw-c3wm-75m3/GHSA-r8fw-c3wm-75m3.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-r8fw-c3wm-75m3",
- "modified": "2022-05-24T19:14:45Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:45Z",
"aliases": [
"CVE-2021-36966"
],
"details": "Windows Subsystem for Linux Elevation of Privilege Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-rcq5-fr3f-fphm/GHSA-rcq5-fr3f-fphm.json b/advisories/unreviewed/2022/05/GHSA-rcq5-fr3f-fphm/GHSA-rcq5-fr3f-fphm.json
index 1d712c9abd2..75fd37b1a1f 100644
--- a/advisories/unreviewed/2022/05/GHSA-rcq5-fr3f-fphm/GHSA-rcq5-fr3f-fphm.json
+++ b/advisories/unreviewed/2022/05/GHSA-rcq5-fr3f-fphm/GHSA-rcq5-fr3f-fphm.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-rcq5-fr3f-fphm",
- "modified": "2022-05-24T19:14:44Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:44Z",
"aliases": [
"CVE-2021-38629"
],
"details": "Windows Ancillary Function Driver for WinSock Information Disclosure Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-rp2g-5hw2-q565/GHSA-rp2g-5hw2-q565.json b/advisories/unreviewed/2022/05/GHSA-rp2g-5hw2-q565/GHSA-rp2g-5hw2-q565.json
index 52dfea8a868..73c57c7ac7d 100644
--- a/advisories/unreviewed/2022/05/GHSA-rp2g-5hw2-q565/GHSA-rp2g-5hw2-q565.json
+++ b/advisories/unreviewed/2022/05/GHSA-rp2g-5hw2-q565/GHSA-rp2g-5hw2-q565.json
@@ -32,6 +32,7 @@
],
"database_specific": {
"cwe_ids": [
+ "CWE-287",
"CWE-665"
],
"severity": "CRITICAL",
diff --git a/advisories/unreviewed/2022/05/GHSA-rxxh-4rjm-62rq/GHSA-rxxh-4rjm-62rq.json b/advisories/unreviewed/2022/05/GHSA-rxxh-4rjm-62rq/GHSA-rxxh-4rjm-62rq.json
index 37555d7d705..2a09bdc91f0 100644
--- a/advisories/unreviewed/2022/05/GHSA-rxxh-4rjm-62rq/GHSA-rxxh-4rjm-62rq.json
+++ b/advisories/unreviewed/2022/05/GHSA-rxxh-4rjm-62rq/GHSA-rxxh-4rjm-62rq.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-rxxh-4rjm-62rq",
- "modified": "2022-05-24T19:14:42Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:42Z",
"aliases": [
"CVE-2021-38657"
],
"details": "Microsoft Office Graphics Component Information Disclosure Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:L"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-v5q4-4mmg-j37c/GHSA-v5q4-4mmg-j37c.json b/advisories/unreviewed/2022/05/GHSA-v5q4-4mmg-j37c/GHSA-v5q4-4mmg-j37c.json
index fa1f3de4b98..13309632dc6 100644
--- a/advisories/unreviewed/2022/05/GHSA-v5q4-4mmg-j37c/GHSA-v5q4-4mmg-j37c.json
+++ b/advisories/unreviewed/2022/05/GHSA-v5q4-4mmg-j37c/GHSA-v5q4-4mmg-j37c.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-v5q4-4mmg-j37c",
- "modified": "2022-05-24T19:14:46Z",
+ "modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:14:46Z",
"aliases": [
"CVE-2021-36960"
],
"details": "Windows SMB Information Disclosure Vulnerability This CVE ID is unique from CVE-2021-36972.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-vc3p-78qc-h4m8/GHSA-vc3p-78qc-h4m8.json b/advisories/unreviewed/2022/05/GHSA-vc3p-78qc-h4m8/GHSA-vc3p-78qc-h4m8.json
index 2f390f25ba5..905c13dd171 100644
--- a/advisories/unreviewed/2022/05/GHSA-vc3p-78qc-h4m8/GHSA-vc3p-78qc-h4m8.json
+++ b/advisories/unreviewed/2022/05/GHSA-vc3p-78qc-h4m8/GHSA-vc3p-78qc-h4m8.json
@@ -25,7 +25,7 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-425"
],
"severity": "MODERATE",
"github_reviewed": false,
diff --git a/advisories/unreviewed/2022/05/GHSA-vmpm-p2pv-6c9j/GHSA-vmpm-p2pv-6c9j.json b/advisories/unreviewed/2022/05/GHSA-vmpm-p2pv-6c9j/GHSA-vmpm-p2pv-6c9j.json
index e4baf2fc50c..fa857d7d675 100644
--- a/advisories/unreviewed/2022/05/GHSA-vmpm-p2pv-6c9j/GHSA-vmpm-p2pv-6c9j.json
+++ b/advisories/unreviewed/2022/05/GHSA-vmpm-p2pv-6c9j/GHSA-vmpm-p2pv-6c9j.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-vmpm-p2pv-6c9j",
- "modified": "2022-05-24T19:14:47Z",
+ "modified": "2023-12-28T21:30:29Z",
"published": "2022-05-24T19:14:47Z",
"aliases": [
"CVE-2021-36952"
],
"details": "Visual Studio Remote Code Execution Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-w6m7-956j-5f84/GHSA-w6m7-956j-5f84.json b/advisories/unreviewed/2022/05/GHSA-w6m7-956j-5f84/GHSA-w6m7-956j-5f84.json
index 6f435d5722b..6dae3450ddc 100644
--- a/advisories/unreviewed/2022/05/GHSA-w6m7-956j-5f84/GHSA-w6m7-956j-5f84.json
+++ b/advisories/unreviewed/2022/05/GHSA-w6m7-956j-5f84/GHSA-w6m7-956j-5f84.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-w6m7-956j-5f84",
- "modified": "2022-05-24T19:14:44Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:44Z",
"aliases": [
"CVE-2021-38628"
],
"details": "Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability This CVE ID is unique from CVE-2021-38638.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-wg77-43f4-m52v/GHSA-wg77-43f4-m52v.json b/advisories/unreviewed/2022/05/GHSA-wg77-43f4-m52v/GHSA-wg77-43f4-m52v.json
index d94608f45aa..050630b6800 100644
--- a/advisories/unreviewed/2022/05/GHSA-wg77-43f4-m52v/GHSA-wg77-43f4-m52v.json
+++ b/advisories/unreviewed/2022/05/GHSA-wg77-43f4-m52v/GHSA-wg77-43f4-m52v.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-wg77-43f4-m52v",
- "modified": "2022-05-24T19:10:53Z",
+ "modified": "2023-12-28T21:30:27Z",
"published": "2022-05-24T19:10:53Z",
"aliases": [
"CVE-2021-26433"
],
"details": "Windows Services for NFS ONCRPC XDR Driver Information Disclosure Vulnerability This CVE ID is unique from CVE-2021-36926, CVE-2021-36932, CVE-2021-36933.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-wqq6-qcgq-j7r2/GHSA-wqq6-qcgq-j7r2.json b/advisories/unreviewed/2022/05/GHSA-wqq6-qcgq-j7r2/GHSA-wqq6-qcgq-j7r2.json
index b34ff92cb2f..2f98a30e90e 100644
--- a/advisories/unreviewed/2022/05/GHSA-wqq6-qcgq-j7r2/GHSA-wqq6-qcgq-j7r2.json
+++ b/advisories/unreviewed/2022/05/GHSA-wqq6-qcgq-j7r2/GHSA-wqq6-qcgq-j7r2.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-wqq6-qcgq-j7r2",
- "modified": "2022-05-24T19:10:54Z",
+ "modified": "2023-12-28T21:30:26Z",
"published": "2022-05-24T19:10:53Z",
"aliases": [
"CVE-2021-26428"
],
"details": "Azure Sphere Information Disclosure Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-wqxh-crwr-q67x/GHSA-wqxh-crwr-q67x.json b/advisories/unreviewed/2022/05/GHSA-wqxh-crwr-q67x/GHSA-wqxh-crwr-q67x.json
index 4ace08e4319..dfc397db5ae 100644
--- a/advisories/unreviewed/2022/05/GHSA-wqxh-crwr-q67x/GHSA-wqxh-crwr-q67x.json
+++ b/advisories/unreviewed/2022/05/GHSA-wqxh-crwr-q67x/GHSA-wqxh-crwr-q67x.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-wqxh-crwr-q67x",
- "modified": "2022-05-24T19:14:41Z",
+ "modified": "2023-12-28T21:30:31Z",
"published": "2022-05-24T19:14:41Z",
"aliases": [
"CVE-2021-38667"
],
"details": "Windows Print Spooler Elevation of Privilege Vulnerability This CVE ID is unique from CVE-2021-38671, CVE-2021-40447.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-wwhr-5q8q-3gmc/GHSA-wwhr-5q8q-3gmc.json b/advisories/unreviewed/2022/05/GHSA-wwhr-5q8q-3gmc/GHSA-wwhr-5q8q-3gmc.json
index 3d0d4441532..c45ffee9478 100644
--- a/advisories/unreviewed/2022/05/GHSA-wwhr-5q8q-3gmc/GHSA-wwhr-5q8q-3gmc.json
+++ b/advisories/unreviewed/2022/05/GHSA-wwhr-5q8q-3gmc/GHSA-wwhr-5q8q-3gmc.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-wwhr-5q8q-3gmc",
- "modified": "2022-05-24T19:14:43Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:43Z",
"aliases": [
"CVE-2021-38638"
],
"details": "Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability This CVE ID is unique from CVE-2021-38628.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-xf53-8jx3-gvcg/GHSA-xf53-8jx3-gvcg.json b/advisories/unreviewed/2022/05/GHSA-xf53-8jx3-gvcg/GHSA-xf53-8jx3-gvcg.json
index ffaa480ef47..5b69bb2867d 100644
--- a/advisories/unreviewed/2022/05/GHSA-xf53-8jx3-gvcg/GHSA-xf53-8jx3-gvcg.json
+++ b/advisories/unreviewed/2022/05/GHSA-xf53-8jx3-gvcg/GHSA-xf53-8jx3-gvcg.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-xf53-8jx3-gvcg",
- "modified": "2022-05-24T19:14:42Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:42Z",
"aliases": [
"CVE-2021-38650"
],
"details": "Microsoft Office Spoofing Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:L/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-xq2h-74x7-89f4/GHSA-xq2h-74x7-89f4.json b/advisories/unreviewed/2022/05/GHSA-xq2h-74x7-89f4/GHSA-xq2h-74x7-89f4.json
index ea5324d55fd..c084cbe6cb0 100644
--- a/advisories/unreviewed/2022/05/GHSA-xq2h-74x7-89f4/GHSA-xq2h-74x7-89f4.json
+++ b/advisories/unreviewed/2022/05/GHSA-xq2h-74x7-89f4/GHSA-xq2h-74x7-89f4.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-xq2h-74x7-89f4",
- "modified": "2022-05-24T19:14:45Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:45Z",
"aliases": [
"CVE-2021-36968"
],
"details": "Windows DNS Elevation of Privilege Vulnerability",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/05/GHSA-xq9r-6v4r-3g8m/GHSA-xq9r-6v4r-3g8m.json b/advisories/unreviewed/2022/05/GHSA-xq9r-6v4r-3g8m/GHSA-xq9r-6v4r-3g8m.json
index 40aadb12dd9..5e5c3cb9b4b 100644
--- a/advisories/unreviewed/2022/05/GHSA-xq9r-6v4r-3g8m/GHSA-xq9r-6v4r-3g8m.json
+++ b/advisories/unreviewed/2022/05/GHSA-xq9r-6v4r-3g8m/GHSA-xq9r-6v4r-3g8m.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-xq9r-6v4r-3g8m",
- "modified": "2022-05-24T19:14:42Z",
+ "modified": "2023-12-28T21:30:30Z",
"published": "2022-05-24T19:14:42Z",
"aliases": [
"CVE-2021-38651"
],
"details": "Microsoft SharePoint Server Spoofing Vulnerability This CVE ID is unique from CVE-2021-38652.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:L/A:N"
+ }
],
"affected": [
diff --git a/advisories/unreviewed/2022/10/GHSA-4qpc-3c4f-jp9w/GHSA-4qpc-3c4f-jp9w.json b/advisories/unreviewed/2022/10/GHSA-4qpc-3c4f-jp9w/GHSA-4qpc-3c4f-jp9w.json
index c95306b558a..dd8f41defc8 100644
--- a/advisories/unreviewed/2022/10/GHSA-4qpc-3c4f-jp9w/GHSA-4qpc-3c4f-jp9w.json
+++ b/advisories/unreviewed/2022/10/GHSA-4qpc-3c4f-jp9w/GHSA-4qpc-3c4f-jp9w.json
@@ -28,6 +28,7 @@
],
"database_specific": {
"cwe_ids": [
+ "CWE-707",
"CWE-89"
],
"severity": "CRITICAL",
diff --git a/advisories/unreviewed/2022/10/GHSA-9g3h-8w94-vg8v/GHSA-9g3h-8w94-vg8v.json b/advisories/unreviewed/2022/10/GHSA-9g3h-8w94-vg8v/GHSA-9g3h-8w94-vg8v.json
index 8ae29aa4a68..0fbd642280e 100644
--- a/advisories/unreviewed/2022/10/GHSA-9g3h-8w94-vg8v/GHSA-9g3h-8w94-vg8v.json
+++ b/advisories/unreviewed/2022/10/GHSA-9g3h-8w94-vg8v/GHSA-9g3h-8w94-vg8v.json
@@ -32,6 +32,7 @@
],
"database_specific": {
"cwe_ids": [
+ "CWE-707",
"CWE-89"
],
"severity": "MODERATE",
diff --git a/advisories/unreviewed/2022/10/GHSA-jw99-6632-r82h/GHSA-jw99-6632-r82h.json b/advisories/unreviewed/2022/10/GHSA-jw99-6632-r82h/GHSA-jw99-6632-r82h.json
index 2e5b00350a1..2f3fb50d6ca 100644
--- a/advisories/unreviewed/2022/10/GHSA-jw99-6632-r82h/GHSA-jw99-6632-r82h.json
+++ b/advisories/unreviewed/2022/10/GHSA-jw99-6632-r82h/GHSA-jw99-6632-r82h.json
@@ -28,6 +28,7 @@
],
"database_specific": {
"cwe_ids": [
+ "CWE-707",
"CWE-79"
],
"severity": "MODERATE",
diff --git a/advisories/unreviewed/2022/10/GHSA-r246-v4c7-q6jc/GHSA-r246-v4c7-q6jc.json b/advisories/unreviewed/2022/10/GHSA-r246-v4c7-q6jc/GHSA-r246-v4c7-q6jc.json
index 81dfca2f7a5..ad09550f1f9 100644
--- a/advisories/unreviewed/2022/10/GHSA-r246-v4c7-q6jc/GHSA-r246-v4c7-q6jc.json
+++ b/advisories/unreviewed/2022/10/GHSA-r246-v4c7-q6jc/GHSA-r246-v4c7-q6jc.json
@@ -28,6 +28,7 @@
],
"database_specific": {
"cwe_ids": [
+ "CWE-707",
"CWE-89"
],
"severity": "CRITICAL",
diff --git a/advisories/unreviewed/2022/10/GHSA-v97f-cj9c-34c4/GHSA-v97f-cj9c-34c4.json b/advisories/unreviewed/2022/10/GHSA-v97f-cj9c-34c4/GHSA-v97f-cj9c-34c4.json
index 6d1aedcdd2d..ab9ee6b68f0 100644
--- a/advisories/unreviewed/2022/10/GHSA-v97f-cj9c-34c4/GHSA-v97f-cj9c-34c4.json
+++ b/advisories/unreviewed/2022/10/GHSA-v97f-cj9c-34c4/GHSA-v97f-cj9c-34c4.json
@@ -28,6 +28,7 @@
],
"database_specific": {
"cwe_ids": [
+ "CWE-707",
"CWE-79"
],
"severity": "MODERATE",
diff --git a/advisories/unreviewed/2022/11/GHSA-5cwr-jjvf-gf39/GHSA-5cwr-jjvf-gf39.json b/advisories/unreviewed/2022/11/GHSA-5cwr-jjvf-gf39/GHSA-5cwr-jjvf-gf39.json
index b1889c48430..e3b892faecf 100644
--- a/advisories/unreviewed/2022/11/GHSA-5cwr-jjvf-gf39/GHSA-5cwr-jjvf-gf39.json
+++ b/advisories/unreviewed/2022/11/GHSA-5cwr-jjvf-gf39/GHSA-5cwr-jjvf-gf39.json
@@ -32,6 +32,7 @@
],
"database_specific": {
"cwe_ids": [
+ "CWE-707",
"CWE-89"
],
"severity": "CRITICAL",
diff --git a/advisories/unreviewed/2022/11/GHSA-6c7q-3hq7-hf68/GHSA-6c7q-3hq7-hf68.json b/advisories/unreviewed/2022/11/GHSA-6c7q-3hq7-hf68/GHSA-6c7q-3hq7-hf68.json
index a3d86271b58..811d77b400c 100644
--- a/advisories/unreviewed/2022/11/GHSA-6c7q-3hq7-hf68/GHSA-6c7q-3hq7-hf68.json
+++ b/advisories/unreviewed/2022/11/GHSA-6c7q-3hq7-hf68/GHSA-6c7q-3hq7-hf68.json
@@ -36,6 +36,7 @@
],
"database_specific": {
"cwe_ids": [
+ "CWE-401",
"CWE-404"
],
"severity": "MODERATE",
diff --git a/advisories/unreviewed/2022/11/GHSA-h996-p85p-3xxx/GHSA-h996-p85p-3xxx.json b/advisories/unreviewed/2022/11/GHSA-h996-p85p-3xxx/GHSA-h996-p85p-3xxx.json
index 5372d5fd379..ba303afa0ad 100644
--- a/advisories/unreviewed/2022/11/GHSA-h996-p85p-3xxx/GHSA-h996-p85p-3xxx.json
+++ b/advisories/unreviewed/2022/11/GHSA-h996-p85p-3xxx/GHSA-h996-p85p-3xxx.json
@@ -32,6 +32,7 @@
],
"database_specific": {
"cwe_ids": [
+ "CWE-707",
"CWE-79"
],
"severity": "MODERATE",
diff --git a/advisories/unreviewed/2022/11/GHSA-vh2c-hfhf-4v64/GHSA-vh2c-hfhf-4v64.json b/advisories/unreviewed/2022/11/GHSA-vh2c-hfhf-4v64/GHSA-vh2c-hfhf-4v64.json
index f1e8f3007b1..b987bed90e7 100644
--- a/advisories/unreviewed/2022/11/GHSA-vh2c-hfhf-4v64/GHSA-vh2c-hfhf-4v64.json
+++ b/advisories/unreviewed/2022/11/GHSA-vh2c-hfhf-4v64/GHSA-vh2c-hfhf-4v64.json
@@ -32,6 +32,7 @@
],
"database_specific": {
"cwe_ids": [
+ "CWE-707",
"CWE-79"
],
"severity": "MODERATE",
diff --git a/advisories/unreviewed/2022/11/GHSA-w4fw-r8m4-v5qv/GHSA-w4fw-r8m4-v5qv.json b/advisories/unreviewed/2022/11/GHSA-w4fw-r8m4-v5qv/GHSA-w4fw-r8m4-v5qv.json
index 56497bf3162..8d644a9fad0 100644
--- a/advisories/unreviewed/2022/11/GHSA-w4fw-r8m4-v5qv/GHSA-w4fw-r8m4-v5qv.json
+++ b/advisories/unreviewed/2022/11/GHSA-w4fw-r8m4-v5qv/GHSA-w4fw-r8m4-v5qv.json
@@ -37,6 +37,7 @@
"database_specific": {
"cwe_ids": [
"CWE-116",
+ "CWE-707",
"CWE-74"
],
"severity": "CRITICAL",
diff --git a/advisories/unreviewed/2023/03/GHSA-3mv3-2f4g-87xm/GHSA-3mv3-2f4g-87xm.json b/advisories/unreviewed/2023/03/GHSA-3mv3-2f4g-87xm/GHSA-3mv3-2f4g-87xm.json
index 8912c783a52..b523262bd6d 100644
--- a/advisories/unreviewed/2023/03/GHSA-3mv3-2f4g-87xm/GHSA-3mv3-2f4g-87xm.json
+++ b/advisories/unreviewed/2023/03/GHSA-3mv3-2f4g-87xm/GHSA-3mv3-2f4g-87xm.json
@@ -28,6 +28,10 @@
{
"type": "WEB",
"url": "https://www.openoffice.org/security/cves/CVE-2022-47502.html"
+ },
+ {
+ "type": "WEB",
+ "url": "http://www.openwall.com/lists/oss-security/2023/12/28/3"
}
],
"database_specific": {
diff --git a/advisories/unreviewed/2023/07/GHSA-9xjj-cx8r-x5m9/GHSA-9xjj-cx8r-x5m9.json b/advisories/unreviewed/2023/07/GHSA-9xjj-cx8r-x5m9/GHSA-9xjj-cx8r-x5m9.json
index 4098d29a59e..1148489fc23 100644
--- a/advisories/unreviewed/2023/07/GHSA-9xjj-cx8r-x5m9/GHSA-9xjj-cx8r-x5m9.json
+++ b/advisories/unreviewed/2023/07/GHSA-9xjj-cx8r-x5m9/GHSA-9xjj-cx8r-x5m9.json
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-9xjj-cx8r-x5m9",
- "modified": "2023-08-23T18:30:29Z",
+ "modified": "2023-12-28T21:30:31Z",
"published": "2023-07-06T19:24:04Z",
"aliases": [
"CVE-2022-41607"
@@ -30,7 +30,7 @@
"cwe_ids": [
"CWE-22"
],
- "severity": null,
+ "severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2022-11-10T22:15:00Z"
diff --git a/advisories/unreviewed/2023/08/GHSA-w3f5-3hvg-x2vg/GHSA-w3f5-3hvg-x2vg.json b/advisories/unreviewed/2023/08/GHSA-w3f5-3hvg-x2vg/GHSA-w3f5-3hvg-x2vg.json
index 9d17f92ca20..b529a253f89 100644
--- a/advisories/unreviewed/2023/08/GHSA-w3f5-3hvg-x2vg/GHSA-w3f5-3hvg-x2vg.json
+++ b/advisories/unreviewed/2023/08/GHSA-w3f5-3hvg-x2vg/GHSA-w3f5-3hvg-x2vg.json
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-w3f5-3hvg-x2vg",
- "modified": "2023-08-24T00:30:22Z",
+ "modified": "2023-12-28T21:30:31Z",
"published": "2023-08-24T00:30:22Z",
"aliases": [
"CVE-2023-3453"
@@ -30,7 +30,7 @@
"cwe_ids": [
"CWE-1188"
],
- "severity": null,
+ "severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2023-08-23T22:15:08Z"
diff --git a/advisories/unreviewed/2023/12/GHSA-2rwf-gw57-98vq/GHSA-2rwf-gw57-98vq.json b/advisories/unreviewed/2023/12/GHSA-2rwf-gw57-98vq/GHSA-2rwf-gw57-98vq.json
new file mode 100644
index 00000000000..560b71fe7e6
--- /dev/null
+++ b/advisories/unreviewed/2023/12/GHSA-2rwf-gw57-98vq/GHSA-2rwf-gw57-98vq.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-2rwf-gw57-98vq",
+ "modified": "2023-12-28T21:30:38Z",
+ "published": "2023-12-28T21:30:38Z",
+ "aliases": [
+ "CVE-2023-50842"
+ ],
+ "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Matthew Fries MF Gig Calendar.This issue affects MF Gig Calendar: from n/a through 1.2.1.\n\n",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:L"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-50842"
+ },
+ {
+ "type": "WEB",
+ "url": "https://patchstack.com/database/vulnerability/mf-gig-calendar/wordpress-mf-gig-calendar-plugin-1-2-1-sql-injection-vulnerability?_s_id=cve"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-89"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2023-12-28T19:15:14Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2023/12/GHSA-3f5j-mfg2-hxvj/GHSA-3f5j-mfg2-hxvj.json b/advisories/unreviewed/2023/12/GHSA-3f5j-mfg2-hxvj/GHSA-3f5j-mfg2-hxvj.json
new file mode 100644
index 00000000000..b83a608cc3f
--- /dev/null
+++ b/advisories/unreviewed/2023/12/GHSA-3f5j-mfg2-hxvj/GHSA-3f5j-mfg2-hxvj.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-3f5j-mfg2-hxvj",
+ "modified": "2023-12-28T21:30:39Z",
+ "published": "2023-12-28T21:30:39Z",
+ "aliases": [
+ "CVE-2023-50839"
+ ],
+ "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in JS Help Desk JS Help Desk – Best Help Desk & Support Plugin.This issue affects JS Help Desk – Best Help Desk & Support Plugin: from n/a through 2.8.1.\n\n",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:L"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-50839"
+ },
+ {
+ "type": "WEB",
+ "url": "https://patchstack.com/database/vulnerability/js-support-ticket/wordpress-js-help-desk-plugin-2-8-1-unauthenticated-sql-injection-vulnerability?_s_id=cve"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-89"
+ ],
+ "severity": "CRITICAL",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2023-12-28T20:16:07Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2023/12/GHSA-3x3h-vg3c-vcrx/GHSA-3x3h-vg3c-vcrx.json b/advisories/unreviewed/2023/12/GHSA-3x3h-vg3c-vcrx/GHSA-3x3h-vg3c-vcrx.json
new file mode 100644
index 00000000000..52e174b4852
--- /dev/null
+++ b/advisories/unreviewed/2023/12/GHSA-3x3h-vg3c-vcrx/GHSA-3x3h-vg3c-vcrx.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-3x3h-vg3c-vcrx",
+ "modified": "2023-12-28T21:30:38Z",
+ "published": "2023-12-28T21:30:38Z",
+ "aliases": [
+ "CVE-2023-50841"
+ ],
+ "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Repute Infosystems BookingPress – Appointment Booking Calendar Plugin and Online Scheduling Plugin.This issue affects BookingPress – Appointment Booking Calendar Plugin and Online Scheduling Plugin: from n/a through 1.0.72.\n\n",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:L"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-50841"
+ },
+ {
+ "type": "WEB",
+ "url": "https://patchstack.com/database/vulnerability/bookingpress-appointment-booking/wordpress-bookingpress-plugin-1-0-72-sql-injection-vulnerability?_s_id=cve"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-89"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2023-12-28T19:15:14Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2023/12/GHSA-488m-w9fp-5mm2/GHSA-488m-w9fp-5mm2.json b/advisories/unreviewed/2023/12/GHSA-488m-w9fp-5mm2/GHSA-488m-w9fp-5mm2.json
new file mode 100644
index 00000000000..e53679f2b02
--- /dev/null
+++ b/advisories/unreviewed/2023/12/GHSA-488m-w9fp-5mm2/GHSA-488m-w9fp-5mm2.json
@@ -0,0 +1,46 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-488m-w9fp-5mm2",
+ "modified": "2023-12-28T21:30:37Z",
+ "published": "2023-12-28T21:30:37Z",
+ "aliases": [
+ "CVE-2023-5236"
+ ],
+ "details": "A flaw was found in Infinispan, which does not detect circular object references when unmarshalling. An authenticated attacker with sufficient permissions could insert a maliciously constructed object into the cache and use it to cause out of memory errors and achieve a denial of service.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-5236"
+ },
+ {
+ "type": "WEB",
+ "url": "https://access.redhat.com/errata/RHSA-2023:5396"
+ },
+ {
+ "type": "WEB",
+ "url": "https://access.redhat.com/security/cve/CVE-2023-5236"
+ },
+ {
+ "type": "WEB",
+ "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2240999"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-1047"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2023-12-18T14:15:10Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2023/12/GHSA-4jpc-fv5p-mh98/GHSA-4jpc-fv5p-mh98.json b/advisories/unreviewed/2023/12/GHSA-4jpc-fv5p-mh98/GHSA-4jpc-fv5p-mh98.json
index 551a5efef52..51388787a9f 100644
--- a/advisories/unreviewed/2023/12/GHSA-4jpc-fv5p-mh98/GHSA-4jpc-fv5p-mh98.json
+++ b/advisories/unreviewed/2023/12/GHSA-4jpc-fv5p-mh98/GHSA-4jpc-fv5p-mh98.json
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-4jpc-fv5p-mh98",
- "modified": "2023-12-19T00:30:17Z",
+ "modified": "2023-12-28T21:30:37Z",
"published": "2023-12-19T00:30:17Z",
"aliases": [
"CVE-2023-22439"
diff --git a/advisories/unreviewed/2023/12/GHSA-4qcv-5m27-xvj9/GHSA-4qcv-5m27-xvj9.json b/advisories/unreviewed/2023/12/GHSA-4qcv-5m27-xvj9/GHSA-4qcv-5m27-xvj9.json
new file mode 100644
index 00000000000..17238f5bea2
--- /dev/null
+++ b/advisories/unreviewed/2023/12/GHSA-4qcv-5m27-xvj9/GHSA-4qcv-5m27-xvj9.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-4qcv-5m27-xvj9",
+ "modified": "2023-12-28T21:30:38Z",
+ "published": "2023-12-28T21:30:38Z",
+ "aliases": [
+ "CVE-2023-50840"
+ ],
+ "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in wpdevelop, oplugins Booking Manager.This issue affects Booking Manager: from n/a through 2.1.5.\n\n",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:L"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-50840"
+ },
+ {
+ "type": "WEB",
+ "url": "https://patchstack.com/database/vulnerability/booking-manager/wordpress-booking-manager-plugin-2-1-5-sql-injection-vulnerability?_s_id=cve"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-89"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2023-12-28T19:15:14Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2023/12/GHSA-5j49-8vfq-6j67/GHSA-5j49-8vfq-6j67.json b/advisories/unreviewed/2023/12/GHSA-5j49-8vfq-6j67/GHSA-5j49-8vfq-6j67.json
new file mode 100644
index 00000000000..86ffdbb6214
--- /dev/null
+++ b/advisories/unreviewed/2023/12/GHSA-5j49-8vfq-6j67/GHSA-5j49-8vfq-6j67.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-5j49-8vfq-6j67",
+ "modified": "2023-12-28T21:30:38Z",
+ "published": "2023-12-28T21:30:38Z",
+ "aliases": [
+ "CVE-2023-50843"
+ ],
+ "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Clockwork Clockwork SMS Notfications.This issue affects Clockwork SMS Notfications: from n/a through 3.0.4.\n\n",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:L"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-50843"
+ },
+ {
+ "type": "WEB",
+ "url": "https://patchstack.com/database/vulnerability/mediaburst-email-to-sms/wordpress-clockwork-sms-notfications-plugin-3-0-4-sql-injection-vulnerability?_s_id=cve"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-89"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2023-12-28T19:15:15Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2023/12/GHSA-5x2j-8rm7-fm3j/GHSA-5x2j-8rm7-fm3j.json b/advisories/unreviewed/2023/12/GHSA-5x2j-8rm7-fm3j/GHSA-5x2j-8rm7-fm3j.json
index f03a75dac6a..e21d3ee991c 100644
--- a/advisories/unreviewed/2023/12/GHSA-5x2j-8rm7-fm3j/GHSA-5x2j-8rm7-fm3j.json
+++ b/advisories/unreviewed/2023/12/GHSA-5x2j-8rm7-fm3j/GHSA-5x2j-8rm7-fm3j.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-5x2j-8rm7-fm3j",
- "modified": "2023-12-20T09:30:26Z",
+ "modified": "2023-12-28T21:30:37Z",
"published": "2023-12-20T09:30:26Z",
"aliases": [
"CVE-2023-50044"
],
"details": "Buffer Overflow vulnerability in Cesanta MJS version 2.22.0, allows attackers to execute arbitrary code, cause a denial of service (Dos), and obtain sensitive information via segmentation fault can occur in getprop_builtin_foreign when input string includes a name of Built-in APIs.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
@@ -29,9 +32,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-120"
],
- "severity": null,
+ "severity": "CRITICAL",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2023-12-20T09:15:07Z"
diff --git a/advisories/unreviewed/2023/12/GHSA-6cxr-f776-wfqv/GHSA-6cxr-f776-wfqv.json b/advisories/unreviewed/2023/12/GHSA-6cxr-f776-wfqv/GHSA-6cxr-f776-wfqv.json
index 372e517b4ef..84129dcaf98 100644
--- a/advisories/unreviewed/2023/12/GHSA-6cxr-f776-wfqv/GHSA-6cxr-f776-wfqv.json
+++ b/advisories/unreviewed/2023/12/GHSA-6cxr-f776-wfqv/GHSA-6cxr-f776-wfqv.json
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-6cxr-f776-wfqv",
- "modified": "2023-12-20T15:30:20Z",
+ "modified": "2023-12-28T21:30:38Z",
"published": "2023-12-20T15:30:20Z",
"aliases": [
"CVE-2023-32590"
diff --git a/advisories/unreviewed/2023/12/GHSA-769x-q5v4-m549/GHSA-769x-q5v4-m549.json b/advisories/unreviewed/2023/12/GHSA-769x-q5v4-m549/GHSA-769x-q5v4-m549.json
index de3ad9245ac..fbe1c5e2e17 100644
--- a/advisories/unreviewed/2023/12/GHSA-769x-q5v4-m549/GHSA-769x-q5v4-m549.json
+++ b/advisories/unreviewed/2023/12/GHSA-769x-q5v4-m549/GHSA-769x-q5v4-m549.json
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-769x-q5v4-m549",
- "modified": "2023-12-19T18:30:30Z",
+ "modified": "2023-12-28T21:30:37Z",
"published": "2023-12-19T18:30:30Z",
"aliases": [
"CVE-2023-25715"
diff --git a/advisories/unreviewed/2023/12/GHSA-87fg-9x5w-j3rm/GHSA-87fg-9x5w-j3rm.json b/advisories/unreviewed/2023/12/GHSA-87fg-9x5w-j3rm/GHSA-87fg-9x5w-j3rm.json
index bb9a803c08e..ce76defafbf 100644
--- a/advisories/unreviewed/2023/12/GHSA-87fg-9x5w-j3rm/GHSA-87fg-9x5w-j3rm.json
+++ b/advisories/unreviewed/2023/12/GHSA-87fg-9x5w-j3rm/GHSA-87fg-9x5w-j3rm.json
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-87fg-9x5w-j3rm",
- "modified": "2023-12-20T15:30:19Z",
+ "modified": "2023-12-28T21:30:38Z",
"published": "2023-12-20T15:30:19Z",
"aliases": [
"CVE-2023-38519"
diff --git a/advisories/unreviewed/2023/12/GHSA-93vw-2xp9-jc53/GHSA-93vw-2xp9-jc53.json b/advisories/unreviewed/2023/12/GHSA-93vw-2xp9-jc53/GHSA-93vw-2xp9-jc53.json
new file mode 100644
index 00000000000..e143626a64d
--- /dev/null
+++ b/advisories/unreviewed/2023/12/GHSA-93vw-2xp9-jc53/GHSA-93vw-2xp9-jc53.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-93vw-2xp9-jc53",
+ "modified": "2023-12-28T21:30:38Z",
+ "published": "2023-12-28T21:30:38Z",
+ "aliases": [
+ "CVE-2023-50838"
+ ],
+ "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Basix NEX-Forms – Ultimate Form Builder – Contact forms and much more.This issue affects NEX-Forms – Ultimate Form Builder – Contact forms and much more: from n/a through 8.5.5.\n\n",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:L"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-50838"
+ },
+ {
+ "type": "WEB",
+ "url": "https://patchstack.com/database/vulnerability/nex-forms-express-wp-form-builder/wordpress-nex-forms-ultimate-form-builder-8-5-5-sql-injection-vulnerability?_s_id=cve"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-89"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2023-12-28T20:16:07Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2023/12/GHSA-ccvr-j87g-x67g/GHSA-ccvr-j87g-x67g.json b/advisories/unreviewed/2023/12/GHSA-ccvr-j87g-x67g/GHSA-ccvr-j87g-x67g.json
new file mode 100644
index 00000000000..b3c3a0d0ba8
--- /dev/null
+++ b/advisories/unreviewed/2023/12/GHSA-ccvr-j87g-x67g/GHSA-ccvr-j87g-x67g.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-ccvr-j87g-x67g",
+ "modified": "2023-12-28T21:30:38Z",
+ "published": "2023-12-28T21:30:38Z",
+ "aliases": [
+ "CVE-2023-50846"
+ ],
+ "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in RegistrationMagic RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login.This issue affects RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login: from n/a through 5.2.4.5.\n\n",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:L"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-50846"
+ },
+ {
+ "type": "WEB",
+ "url": "https://patchstack.com/database/vulnerability/custom-registration-form-builder-with-submission-manager/wordpress-registrationmagic-plugin-5-2-4-5-sql-injection-vulnerability?_s_id=cve"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-89"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2023-12-28T19:15:15Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2023/12/GHSA-f9c3-v8hj-gm62/GHSA-f9c3-v8hj-gm62.json b/advisories/unreviewed/2023/12/GHSA-f9c3-v8hj-gm62/GHSA-f9c3-v8hj-gm62.json
new file mode 100644
index 00000000000..5fbf54d0d93
--- /dev/null
+++ b/advisories/unreviewed/2023/12/GHSA-f9c3-v8hj-gm62/GHSA-f9c3-v8hj-gm62.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-f9c3-v8hj-gm62",
+ "modified": "2023-12-28T21:30:38Z",
+ "published": "2023-12-28T21:30:38Z",
+ "aliases": [
+ "CVE-2023-50845"
+ ],
+ "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in AyeCode - WordPress Business Directory Plugins GeoDirectory – WordPress Business Directory Plugin, or Classified Directory.This issue affects GeoDirectory – WordPress Business Directory Plugin, or Classified Directory: from n/a through 2.3.28.\n\n",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:L"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-50845"
+ },
+ {
+ "type": "WEB",
+ "url": "https://patchstack.com/database/vulnerability/geodirectory/wordpress-geodirectory-plugin-2-3-28-sql-injection-vulnerability?_s_id=cve"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-89"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2023-12-28T19:15:15Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2023/12/GHSA-g8m5-ccpx-mh32/GHSA-g8m5-ccpx-mh32.json b/advisories/unreviewed/2023/12/GHSA-g8m5-ccpx-mh32/GHSA-g8m5-ccpx-mh32.json
new file mode 100644
index 00000000000..d872cad2473
--- /dev/null
+++ b/advisories/unreviewed/2023/12/GHSA-g8m5-ccpx-mh32/GHSA-g8m5-ccpx-mh32.json
@@ -0,0 +1,46 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-g8m5-ccpx-mh32",
+ "modified": "2023-12-28T21:30:38Z",
+ "published": "2023-12-28T21:30:38Z",
+ "aliases": [
+ "CVE-2023-7134"
+ ],
+ "details": "A vulnerability was found in SourceCodester Medicine Tracking System 1.0. It has been rated as critical. This issue affects some unknown processing. The manipulation of the argument page leads to path traversal: '../filedir'. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-249137 was assigned to this vulnerability.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-7134"
+ },
+ {
+ "type": "WEB",
+ "url": "https://medium.com/@2839549219ljk/medicine-tracking-system-rce-vulnerability-1f009165b915"
+ },
+ {
+ "type": "WEB",
+ "url": "https://vuldb.com/?ctiid.249137"
+ },
+ {
+ "type": "WEB",
+ "url": "https://vuldb.com/?id.249137"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-24"
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2023-12-28T20:16:07Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2023/12/GHSA-hgv5-3gmv-gwhq/GHSA-hgv5-3gmv-gwhq.json b/advisories/unreviewed/2023/12/GHSA-hgv5-3gmv-gwhq/GHSA-hgv5-3gmv-gwhq.json
new file mode 100644
index 00000000000..cba6721dcfd
--- /dev/null
+++ b/advisories/unreviewed/2023/12/GHSA-hgv5-3gmv-gwhq/GHSA-hgv5-3gmv-gwhq.json
@@ -0,0 +1,46 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-hgv5-3gmv-gwhq",
+ "modified": "2023-12-28T21:30:38Z",
+ "published": "2023-12-28T21:30:38Z",
+ "aliases": [
+ "CVE-2023-7135"
+ ],
+ "details": "A vulnerability classified as problematic has been found in code-projects Record Management System 1.0. Affected is an unknown function of the file /main/offices.php of the component Offices Handler. The manipulation of the argument officename with the input \"> leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-249138 is the identifier assigned to this vulnerability.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-7135"
+ },
+ {
+ "type": "WEB",
+ "url": "https://github.com/h4md153v63n/CVEs/blob/main/Record_Management_System/Record_Management_System-Blind_Cross_Site_Scripting-1.md"
+ },
+ {
+ "type": "WEB",
+ "url": "https://vuldb.com/?ctiid.249138"
+ },
+ {
+ "type": "WEB",
+ "url": "https://vuldb.com/?id.249138"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-79"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2023-12-28T21:15:07Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2023/12/GHSA-hj3r-2hqm-4f6w/GHSA-hj3r-2hqm-4f6w.json b/advisories/unreviewed/2023/12/GHSA-hj3r-2hqm-4f6w/GHSA-hj3r-2hqm-4f6w.json
index d8282fc3da3..bd2c0dc75f9 100644
--- a/advisories/unreviewed/2023/12/GHSA-hj3r-2hqm-4f6w/GHSA-hj3r-2hqm-4f6w.json
+++ b/advisories/unreviewed/2023/12/GHSA-hj3r-2hqm-4f6w/GHSA-hj3r-2hqm-4f6w.json
@@ -28,7 +28,7 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-918"
],
"severity": "HIGH",
"github_reviewed": false,
diff --git a/advisories/unreviewed/2023/12/GHSA-jj5v-fhp7-pww8/GHSA-jj5v-fhp7-pww8.json b/advisories/unreviewed/2023/12/GHSA-jj5v-fhp7-pww8/GHSA-jj5v-fhp7-pww8.json
new file mode 100644
index 00000000000..bd7477939d1
--- /dev/null
+++ b/advisories/unreviewed/2023/12/GHSA-jj5v-fhp7-pww8/GHSA-jj5v-fhp7-pww8.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-jj5v-fhp7-pww8",
+ "modified": "2023-12-28T21:30:38Z",
+ "published": "2023-12-28T21:30:38Z",
+ "aliases": [
+ "CVE-2023-50844"
+ ],
+ "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in James Ward Mail logging – WP Mail Catcher.This issue affects Mail logging – WP Mail Catcher: from n/a through 2.1.3.\n\n",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:L"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-50844"
+ },
+ {
+ "type": "WEB",
+ "url": "https://patchstack.com/database/vulnerability/wp-mail-catcher/wordpress-wp-mail-catcher-plugin-2-1-3-sql-injection-vulnerability?_s_id=cve"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-89"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2023-12-28T19:15:15Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2023/12/GHSA-jpvw-p8pr-9g2x/GHSA-jpvw-p8pr-9g2x.json b/advisories/unreviewed/2023/12/GHSA-jpvw-p8pr-9g2x/GHSA-jpvw-p8pr-9g2x.json
new file mode 100644
index 00000000000..6557421fdbb
--- /dev/null
+++ b/advisories/unreviewed/2023/12/GHSA-jpvw-p8pr-9g2x/GHSA-jpvw-p8pr-9g2x.json
@@ -0,0 +1,54 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-jpvw-p8pr-9g2x",
+ "modified": "2023-12-28T21:30:37Z",
+ "published": "2023-12-28T21:30:37Z",
+ "aliases": [
+ "CVE-2023-5115"
+ ],
+ "details": "An absolute path traversal attack exists in the Ansible automation platform. This flaw allows an attacker to craft a malicious Ansible role and make the victim execute the role. A symlink can be used to overwrite a file outside of the extraction path.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:H/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-5115"
+ },
+ {
+ "type": "WEB",
+ "url": "https://access.redhat.com/errata/RHSA-2023:5701"
+ },
+ {
+ "type": "WEB",
+ "url": "https://access.redhat.com/errata/RHSA-2023:5758"
+ },
+ {
+ "type": "WEB",
+ "url": "https://access.redhat.com/security/cve/CVE-2023-5115"
+ },
+ {
+ "type": "WEB",
+ "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2233810"
+ },
+ {
+ "type": "WEB",
+ "url": "https://lists.debian.org/debian-lts-announce/2023/12/msg00018.html"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+
+ ],
+ "severity": "MODERATE",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2023-12-18T14:15:10Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2023/12/GHSA-mfr7-563g-jff3/GHSA-mfr7-563g-jff3.json b/advisories/unreviewed/2023/12/GHSA-mfr7-563g-jff3/GHSA-mfr7-563g-jff3.json
index 31a52a84560..dddd6591a06 100644
--- a/advisories/unreviewed/2023/12/GHSA-mfr7-563g-jff3/GHSA-mfr7-563g-jff3.json
+++ b/advisories/unreviewed/2023/12/GHSA-mfr7-563g-jff3/GHSA-mfr7-563g-jff3.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-mfr7-563g-jff3",
- "modified": "2023-12-20T09:30:26Z",
+ "modified": "2023-12-28T21:30:37Z",
"published": "2023-12-20T09:30:26Z",
"aliases": [
"CVE-2023-50628"
],
"details": "Buffer Overflow vulnerability in libming version 0.4.8, allows attackers to execute arbitrary code and obtain sensitive information via parser.c component.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
+ }
],
"affected": [
@@ -29,9 +32,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-120"
],
- "severity": null,
+ "severity": "CRITICAL",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2023-12-20T09:15:07Z"
diff --git a/advisories/unreviewed/2023/12/GHSA-mh5h-4v4h-vcvq/GHSA-mh5h-4v4h-vcvq.json b/advisories/unreviewed/2023/12/GHSA-mh5h-4v4h-vcvq/GHSA-mh5h-4v4h-vcvq.json
index d9529fcb052..9af353c84fb 100644
--- a/advisories/unreviewed/2023/12/GHSA-mh5h-4v4h-vcvq/GHSA-mh5h-4v4h-vcvq.json
+++ b/advisories/unreviewed/2023/12/GHSA-mh5h-4v4h-vcvq/GHSA-mh5h-4v4h-vcvq.json
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-mh5h-4v4h-vcvq",
- "modified": "2023-12-21T21:30:30Z",
+ "modified": "2023-12-28T21:30:38Z",
"published": "2023-12-21T21:30:30Z",
"aliases": [
"CVE-2023-45124"
diff --git a/advisories/unreviewed/2023/12/GHSA-pcm9-gv4v-rfw2/GHSA-pcm9-gv4v-rfw2.json b/advisories/unreviewed/2023/12/GHSA-pcm9-gv4v-rfw2/GHSA-pcm9-gv4v-rfw2.json
index 5a943bf465f..3fa34b582a5 100644
--- a/advisories/unreviewed/2023/12/GHSA-pcm9-gv4v-rfw2/GHSA-pcm9-gv4v-rfw2.json
+++ b/advisories/unreviewed/2023/12/GHSA-pcm9-gv4v-rfw2/GHSA-pcm9-gv4v-rfw2.json
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-pcm9-gv4v-rfw2",
- "modified": "2023-12-21T21:30:30Z",
+ "modified": "2023-12-28T21:30:38Z",
"published": "2023-12-21T21:30:30Z",
"aliases": [
"CVE-2023-45125"
diff --git a/advisories/unreviewed/2023/12/GHSA-pj88-jgpj-pmr9/GHSA-pj88-jgpj-pmr9.json b/advisories/unreviewed/2023/12/GHSA-pj88-jgpj-pmr9/GHSA-pj88-jgpj-pmr9.json
index a8c560cc833..f202d17922b 100644
--- a/advisories/unreviewed/2023/12/GHSA-pj88-jgpj-pmr9/GHSA-pj88-jgpj-pmr9.json
+++ b/advisories/unreviewed/2023/12/GHSA-pj88-jgpj-pmr9/GHSA-pj88-jgpj-pmr9.json
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-pj88-jgpj-pmr9",
- "modified": "2023-12-19T21:32:20Z",
+ "modified": "2023-12-28T21:30:37Z",
"published": "2023-12-19T21:32:20Z",
"aliases": [
"CVE-2023-49706"
],
"details": "Defective request context handling in Self Service in LinOTP 3.x before 3.2.5 allows remote unauthenticated attackers to escalate privileges, thereby allowing them to act as and with the permissions of another user. Attackers must generate repeated API requests to trigger a race condition with concurrent user activity in the self-service portal.",
"severity": [
-
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:N"
+ }
],
"affected": [
@@ -33,9 +36,9 @@
],
"database_specific": {
"cwe_ids": [
-
+ "CWE-362"
],
- "severity": null,
+ "severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2023-12-19T19:15:07Z"
diff --git a/advisories/unreviewed/2023/12/GHSA-pp4m-v63p-xvqj/GHSA-pp4m-v63p-xvqj.json b/advisories/unreviewed/2023/12/GHSA-pp4m-v63p-xvqj/GHSA-pp4m-v63p-xvqj.json
new file mode 100644
index 00000000000..d07d7dc07e1
--- /dev/null
+++ b/advisories/unreviewed/2023/12/GHSA-pp4m-v63p-xvqj/GHSA-pp4m-v63p-xvqj.json
@@ -0,0 +1,38 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-pp4m-v63p-xvqj",
+ "modified": "2023-12-28T21:30:38Z",
+ "published": "2023-12-28T21:30:38Z",
+ "aliases": [
+ "CVE-2023-50847"
+ ],
+ "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Collne Inc. Welcart e-Commerce.This issue affects Welcart e-Commerce: from n/a through 2.9.3.\n\n",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:L"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-50847"
+ },
+ {
+ "type": "WEB",
+ "url": "https://patchstack.com/database/vulnerability/usc-e-shop/wordpress-welcart-e-commerce-plugin-2-9-3-sql-injection-vulnerability?_s_id=cve"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-89"
+ ],
+ "severity": "HIGH",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2023-12-28T19:15:15Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2023/12/GHSA-pxgf-7mqc-v7vx/GHSA-pxgf-7mqc-v7vx.json b/advisories/unreviewed/2023/12/GHSA-pxgf-7mqc-v7vx/GHSA-pxgf-7mqc-v7vx.json
index bf7afb68769..f7ac2ac7f76 100644
--- a/advisories/unreviewed/2023/12/GHSA-pxgf-7mqc-v7vx/GHSA-pxgf-7mqc-v7vx.json
+++ b/advisories/unreviewed/2023/12/GHSA-pxgf-7mqc-v7vx/GHSA-pxgf-7mqc-v7vx.json
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-pxgf-7mqc-v7vx",
- "modified": "2023-12-21T21:30:30Z",
+ "modified": "2023-12-28T21:30:38Z",
"published": "2023-12-21T21:30:30Z",
"aliases": [
"CVE-2023-45127"
diff --git a/advisories/unreviewed/2023/12/GHSA-q3v4-6rrg-2883/GHSA-q3v4-6rrg-2883.json b/advisories/unreviewed/2023/12/GHSA-q3v4-6rrg-2883/GHSA-q3v4-6rrg-2883.json
index 6d3fedf8a6f..e21a3e88876 100644
--- a/advisories/unreviewed/2023/12/GHSA-q3v4-6rrg-2883/GHSA-q3v4-6rrg-2883.json
+++ b/advisories/unreviewed/2023/12/GHSA-q3v4-6rrg-2883/GHSA-q3v4-6rrg-2883.json
@@ -32,6 +32,7 @@
],
"database_specific": {
"cwe_ids": [
+ "CWE-74",
"CWE-78"
],
"severity": "MODERATE",
diff --git a/advisories/unreviewed/2023/12/GHSA-q9cq-mv8c-985j/GHSA-q9cq-mv8c-985j.json b/advisories/unreviewed/2023/12/GHSA-q9cq-mv8c-985j/GHSA-q9cq-mv8c-985j.json
index f0db9432f7f..0d8227f271b 100644
--- a/advisories/unreviewed/2023/12/GHSA-q9cq-mv8c-985j/GHSA-q9cq-mv8c-985j.json
+++ b/advisories/unreviewed/2023/12/GHSA-q9cq-mv8c-985j/GHSA-q9cq-mv8c-985j.json
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-q9cq-mv8c-985j",
- "modified": "2023-12-19T21:32:20Z",
+ "modified": "2023-12-28T21:30:37Z",
"published": "2023-12-19T21:32:20Z",
"aliases": [
"CVE-2023-34382"
diff --git a/advisories/unreviewed/2023/12/GHSA-qp7j-9526-r655/GHSA-qp7j-9526-r655.json b/advisories/unreviewed/2023/12/GHSA-qp7j-9526-r655/GHSA-qp7j-9526-r655.json
index 11abcb8b3cc..1bfb23c38d6 100644
--- a/advisories/unreviewed/2023/12/GHSA-qp7j-9526-r655/GHSA-qp7j-9526-r655.json
+++ b/advisories/unreviewed/2023/12/GHSA-qp7j-9526-r655/GHSA-qp7j-9526-r655.json
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-qp7j-9526-r655",
- "modified": "2023-12-21T21:30:30Z",
+ "modified": "2023-12-28T21:30:38Z",
"published": "2023-12-21T21:30:30Z",
"aliases": [
"CVE-2023-45126"
diff --git a/advisories/unreviewed/2023/12/GHSA-v876-f29w-v6cf/GHSA-v876-f29w-v6cf.json b/advisories/unreviewed/2023/12/GHSA-v876-f29w-v6cf/GHSA-v876-f29w-v6cf.json
new file mode 100644
index 00000000000..64b67c94ec4
--- /dev/null
+++ b/advisories/unreviewed/2023/12/GHSA-v876-f29w-v6cf/GHSA-v876-f29w-v6cf.json
@@ -0,0 +1,46 @@
+{
+ "schema_version": "1.4.0",
+ "id": "GHSA-v876-f29w-v6cf",
+ "modified": "2023-12-28T21:30:38Z",
+ "published": "2023-12-28T21:30:38Z",
+ "aliases": [
+ "CVE-2023-7136"
+ ],
+ "details": "A vulnerability classified as problematic was found in code-projects Record Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /main/doctype.php of the component Document Type Handler. The manipulation of the argument docname with the input \"> leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-249139.",
+ "severity": [
+ {
+ "type": "CVSS_V3",
+ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:N"
+ }
+ ],
+ "affected": [
+
+ ],
+ "references": [
+ {
+ "type": "ADVISORY",
+ "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-7136"
+ },
+ {
+ "type": "WEB",
+ "url": "https://github.com/h4md153v63n/CVEs/blob/main/Record_Management_System/Record_Management_System-Blind_Cross_Site_Scripting-2.md"
+ },
+ {
+ "type": "WEB",
+ "url": "https://vuldb.com/?ctiid.249139"
+ },
+ {
+ "type": "WEB",
+ "url": "https://vuldb.com/?id.249139"
+ }
+ ],
+ "database_specific": {
+ "cwe_ids": [
+ "CWE-79"
+ ],
+ "severity": "LOW",
+ "github_reviewed": false,
+ "github_reviewed_at": null,
+ "nvd_published_at": "2023-12-28T21:15:08Z"
+ }
+}
\ No newline at end of file
diff --git a/advisories/unreviewed/2023/12/GHSA-v9h7-v369-359m/GHSA-v9h7-v369-359m.json b/advisories/unreviewed/2023/12/GHSA-v9h7-v369-359m/GHSA-v9h7-v369-359m.json
index 9f431fe1ee9..97dae2cc209 100644
--- a/advisories/unreviewed/2023/12/GHSA-v9h7-v369-359m/GHSA-v9h7-v369-359m.json
+++ b/advisories/unreviewed/2023/12/GHSA-v9h7-v369-359m/GHSA-v9h7-v369-359m.json
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-v9h7-v369-359m",
- "modified": "2023-12-20T15:30:19Z",
+ "modified": "2023-12-28T21:30:38Z",
"published": "2023-12-20T15:30:19Z",
"aliases": [
"CVE-2023-46311"
diff --git a/advisories/unreviewed/2023/12/GHSA-w7rx-824v-rgx5/GHSA-w7rx-824v-rgx5.json b/advisories/unreviewed/2023/12/GHSA-w7rx-824v-rgx5/GHSA-w7rx-824v-rgx5.json
index b8c230eed67..4521e6a2762 100644
--- a/advisories/unreviewed/2023/12/GHSA-w7rx-824v-rgx5/GHSA-w7rx-824v-rgx5.json
+++ b/advisories/unreviewed/2023/12/GHSA-w7rx-824v-rgx5/GHSA-w7rx-824v-rgx5.json
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-w7rx-824v-rgx5",
- "modified": "2023-12-15T12:30:25Z",
+ "modified": "2023-12-28T21:30:37Z",
"published": "2023-12-15T12:30:25Z",
"aliases": [
"CVE-2023-6835"
diff --git a/advisories/unreviewed/2023/12/GHSA-x25m-g22v-6hgf/GHSA-x25m-g22v-6hgf.json b/advisories/unreviewed/2023/12/GHSA-x25m-g22v-6hgf/GHSA-x25m-g22v-6hgf.json
index 19416a66851..5d692b33aba 100644
--- a/advisories/unreviewed/2023/12/GHSA-x25m-g22v-6hgf/GHSA-x25m-g22v-6hgf.json
+++ b/advisories/unreviewed/2023/12/GHSA-x25m-g22v-6hgf/GHSA-x25m-g22v-6hgf.json
@@ -28,6 +28,7 @@
],
"database_specific": {
"cwe_ids": [
+ "CWE-120",
"CWE-20"
],
"severity": "MODERATE",
diff --git a/advisories/unreviewed/2023/12/GHSA-xxmw-m6v2-9h47/GHSA-xxmw-m6v2-9h47.json b/advisories/unreviewed/2023/12/GHSA-xxmw-m6v2-9h47/GHSA-xxmw-m6v2-9h47.json
index baecdaf0f40..19e1dc38cf4 100644
--- a/advisories/unreviewed/2023/12/GHSA-xxmw-m6v2-9h47/GHSA-xxmw-m6v2-9h47.json
+++ b/advisories/unreviewed/2023/12/GHSA-xxmw-m6v2-9h47/GHSA-xxmw-m6v2-9h47.json
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-xxmw-m6v2-9h47",
- "modified": "2023-12-19T00:30:18Z",
+ "modified": "2023-12-28T21:30:37Z",
"published": "2023-12-19T00:30:18Z",
"aliases": [
"CVE-2023-46686"