From be185b50b147a97f0c36f79139ee54ee363b249b Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Fri, 29 Nov 2024 05:15:02 +0000 Subject: [PATCH] Advisory Database Sync --- .../10/GHSA-29gr-w57f-rpfw/GHSA-29gr-w57f-rpfw.json | 4 +--- .../10/GHSA-2xjj-5x6h-8vmf/GHSA-2xjj-5x6h-8vmf.json | 4 +--- .../10/GHSA-3crr-9vmg-864v/GHSA-3crr-9vmg-864v.json | 4 +--- .../10/GHSA-4936-rj25-6wm6/GHSA-4936-rj25-6wm6.json | 4 +--- .../10/GHSA-4whc-pp4x-9pf3/GHSA-4whc-pp4x-9pf3.json | 4 +--- .../10/GHSA-699m-mcjm-9cw8/GHSA-699m-mcjm-9cw8.json | 4 +--- .../10/GHSA-6h5q-96hp-9jgm/GHSA-6h5q-96hp-9jgm.json | 4 +--- .../10/GHSA-85r7-w5mv-c849/GHSA-85r7-w5mv-c849.json | 4 +--- .../10/GHSA-959j-5g9v-3fpq/GHSA-959j-5g9v-3fpq.json | 4 +--- .../10/GHSA-99ch-8mvp-g7m5/GHSA-99ch-8mvp-g7m5.json | 8 ++------ .../10/GHSA-9rf5-jm6f-2fmm/GHSA-9rf5-jm6f-2fmm.json | 4 +--- .../10/GHSA-gppp-5xc5-wfpx/GHSA-gppp-5xc5-wfpx.json | 4 +--- .../07/GHSA-2xvj-j3qh-x8c3/GHSA-2xvj-j3qh-x8c3.json | 4 +--- .../05/GHSA-9hhc-cc6c-99hh/GHSA-9hhc-cc6c-99hh.json | 4 +--- .../05/GHSA-w5v7-q2j4-fvpf/GHSA-w5v7-q2j4-fvpf.json | 4 +--- .../09/GHSA-36jr-mh4h-2g58/GHSA-36jr-mh4h-2g58.json | 8 ++------ .../09/GHSA-qj9p-jvmw-82rh/GHSA-qj9p-jvmw-82rh.json | 4 +--- .../04/GHSA-229g-v59m-656v/GHSA-229g-v59m-656v.json | 12 +++--------- .../04/GHSA-23ww-2jh7-98f9/GHSA-23ww-2jh7-98f9.json | 12 +++--------- .../04/GHSA-24q9-49c8-294h/GHSA-24q9-49c8-294h.json | 12 +++--------- .../04/GHSA-265j-44f5-74rh/GHSA-265j-44f5-74rh.json | 12 +++--------- .../04/GHSA-26wj-g9q6-7j24/GHSA-26wj-g9q6-7j24.json | 12 +++--------- .../04/GHSA-272q-6m92-rrfr/GHSA-272q-6m92-rrfr.json | 12 +++--------- .../04/GHSA-2cp4-259f-w2g6/GHSA-2cp4-259f-w2g6.json | 12 +++--------- .../04/GHSA-2f2v-rgmc-w6fp/GHSA-2f2v-rgmc-w6fp.json | 12 +++--------- .../04/GHSA-2f3p-79j4-gp2g/GHSA-2f3p-79j4-gp2g.json | 12 +++--------- .../04/GHSA-2fj9-2rp2-mmg4/GHSA-2fj9-2rp2-mmg4.json | 8 ++------ .../04/GHSA-2hrr-6728-qg8v/GHSA-2hrr-6728-qg8v.json | 12 +++--------- .../04/GHSA-2hxf-gmcq-wh7p/GHSA-2hxf-gmcq-wh7p.json | 12 +++--------- .../04/GHSA-2j9j-c9fr-pwc8/GHSA-2j9j-c9fr-pwc8.json | 12 +++--------- .../04/GHSA-2jjf-m6gp-mr6f/GHSA-2jjf-m6gp-mr6f.json | 12 +++--------- .../04/GHSA-2pf5-35fc-x4fg/GHSA-2pf5-35fc-x4fg.json | 12 +++--------- .../04/GHSA-2pvg-4x8f-qx36/GHSA-2pvg-4x8f-qx36.json | 12 +++--------- .../04/GHSA-2qm3-6pw4-478j/GHSA-2qm3-6pw4-478j.json | 12 +++--------- .../04/GHSA-2rxj-58vc-g6vw/GHSA-2rxj-58vc-g6vw.json | 12 +++--------- .../04/GHSA-2vq2-p76v-j88p/GHSA-2vq2-p76v-j88p.json | 12 +++--------- .../04/GHSA-2wh5-5jf4-829c/GHSA-2wh5-5jf4-829c.json | 12 +++--------- .../04/GHSA-32j7-w96w-jq92/GHSA-32j7-w96w-jq92.json | 12 +++--------- .../04/GHSA-34hw-5cr2-j645/GHSA-34hw-5cr2-j645.json | 12 +++--------- .../04/GHSA-36cf-5wv3-q7jj/GHSA-36cf-5wv3-q7jj.json | 12 +++--------- .../04/GHSA-37mp-pj43-3c3x/GHSA-37mp-pj43-3c3x.json | 12 +++--------- .../04/GHSA-37v3-5w3g-89m6/GHSA-37v3-5w3g-89m6.json | 12 +++--------- .../04/GHSA-3932-xh88-q34x/GHSA-3932-xh88-q34x.json | 12 +++--------- .../04/GHSA-3993-w4q6-qwmf/GHSA-3993-w4q6-qwmf.json | 12 +++--------- .../04/GHSA-3fmr-qqcp-fr3c/GHSA-3fmr-qqcp-fr3c.json | 12 +++--------- .../04/GHSA-3gpv-hgg9-gfg5/GHSA-3gpv-hgg9-gfg5.json | 12 +++--------- .../04/GHSA-3gvj-xgpf-vh28/GHSA-3gvj-xgpf-vh28.json | 12 +++--------- .../04/GHSA-3ph2-3pv3-wjv3/GHSA-3ph2-3pv3-wjv3.json | 12 +++--------- .../04/GHSA-3pw7-m4qj-fpv2/GHSA-3pw7-m4qj-fpv2.json | 8 ++------ .../04/GHSA-3qqr-rjhh-6ph5/GHSA-3qqr-rjhh-6ph5.json | 12 +++--------- .../04/GHSA-3qr6-8fp7-xj4j/GHSA-3qr6-8fp7-xj4j.json | 12 +++--------- .../04/GHSA-3wxj-j5hp-5gfc/GHSA-3wxj-j5hp-5gfc.json | 12 +++--------- .../04/GHSA-436h-wrjr-5hj3/GHSA-436h-wrjr-5hj3.json | 12 +++--------- .../04/GHSA-43g6-p2gr-59p7/GHSA-43g6-p2gr-59p7.json | 12 +++--------- .../04/GHSA-44qf-4fcj-9qhq/GHSA-44qf-4fcj-9qhq.json | 12 +++--------- .../04/GHSA-46w5-pg92-gjg9/GHSA-46w5-pg92-gjg9.json | 12 +++--------- .../04/GHSA-47qc-7v5j-7pg6/GHSA-47qc-7v5j-7pg6.json | 12 +++--------- .../04/GHSA-4c57-rm7h-p47f/GHSA-4c57-rm7h-p47f.json | 12 +++--------- .../04/GHSA-4c95-3x3c-f7fm/GHSA-4c95-3x3c-f7fm.json | 12 +++--------- .../04/GHSA-4fj3-9m57-2fx2/GHSA-4fj3-9m57-2fx2.json | 12 +++--------- .../04/GHSA-4grc-97wg-m67h/GHSA-4grc-97wg-m67h.json | 12 +++--------- .../04/GHSA-4jwj-9x7x-p48c/GHSA-4jwj-9x7x-p48c.json | 12 +++--------- .../04/GHSA-4m4v-vqhc-mhjp/GHSA-4m4v-vqhc-mhjp.json | 12 +++--------- .../04/GHSA-4qvg-86rr-5qx2/GHSA-4qvg-86rr-5qx2.json | 12 +++--------- .../04/GHSA-4r2x-95jf-w8hr/GHSA-4r2x-95jf-w8hr.json | 12 +++--------- .../04/GHSA-4rx4-j98g-fp32/GHSA-4rx4-j98g-fp32.json | 12 +++--------- .../04/GHSA-4v52-cjf4-53w4/GHSA-4v52-cjf4-53w4.json | 8 ++------ .../04/GHSA-4wcr-6rhv-9fh4/GHSA-4wcr-6rhv-9fh4.json | 12 +++--------- .../04/GHSA-4xx6-xq76-3343/GHSA-4xx6-xq76-3343.json | 12 +++--------- .../04/GHSA-5338-9mq8-qrwc/GHSA-5338-9mq8-qrwc.json | 8 ++------ .../04/GHSA-53jm-6fjm-h945/GHSA-53jm-6fjm-h945.json | 12 +++--------- .../04/GHSA-57hj-9c9v-7vhc/GHSA-57hj-9c9v-7vhc.json | 12 +++--------- .../04/GHSA-5h9h-c98x-gm88/GHSA-5h9h-c98x-gm88.json | 12 +++--------- .../04/GHSA-5hv6-v6fc-54f2/GHSA-5hv6-v6fc-54f2.json | 12 +++--------- .../04/GHSA-5jwv-6qp2-mgfr/GHSA-5jwv-6qp2-mgfr.json | 12 +++--------- .../04/GHSA-5r9w-3f6v-8849/GHSA-5r9w-3f6v-8849.json | 12 +++--------- .../04/GHSA-5rg3-r5cf-mhqx/GHSA-5rg3-r5cf-mhqx.json | 12 +++--------- .../04/GHSA-5rvg-rpvg-3vmc/GHSA-5rvg-rpvg-3vmc.json | 12 +++--------- .../04/GHSA-5vj6-cjv9-5x62/GHSA-5vj6-cjv9-5x62.json | 12 +++--------- .../04/GHSA-5wvh-g7mv-5v5f/GHSA-5wvh-g7mv-5v5f.json | 12 +++--------- .../04/GHSA-62f9-2rc4-4vfq/GHSA-62f9-2rc4-4vfq.json | 12 +++--------- .../04/GHSA-64gg-5mwm-x99x/GHSA-64gg-5mwm-x99x.json | 4 +--- .../04/GHSA-65c7-ppqp-3qvf/GHSA-65c7-ppqp-3qvf.json | 12 +++--------- .../04/GHSA-6743-8vvq-693c/GHSA-6743-8vvq-693c.json | 8 ++------ .../04/GHSA-677r-hgg4-vmp8/GHSA-677r-hgg4-vmp8.json | 12 +++--------- .../04/GHSA-68gh-xx2q-59p5/GHSA-68gh-xx2q-59p5.json | 12 +++--------- .../04/GHSA-6f6v-7779-324h/GHSA-6f6v-7779-324h.json | 12 +++--------- .../04/GHSA-6hc7-ff75-6g3r/GHSA-6hc7-ff75-6g3r.json | 12 +++--------- .../04/GHSA-6mw4-x44p-qq9x/GHSA-6mw4-x44p-qq9x.json | 12 +++--------- .../04/GHSA-6w76-wp8w-rq73/GHSA-6w76-wp8w-rq73.json | 12 +++--------- .../04/GHSA-6wg3-727j-rhxv/GHSA-6wg3-727j-rhxv.json | 12 +++--------- .../04/GHSA-729m-x3v8-488j/GHSA-729m-x3v8-488j.json | 12 +++--------- .../04/GHSA-72fc-rcvx-32wg/GHSA-72fc-rcvx-32wg.json | 12 +++--------- .../04/GHSA-7363-mjq8-494j/GHSA-7363-mjq8-494j.json | 12 +++--------- .../04/GHSA-7573-6fcp-5wh3/GHSA-7573-6fcp-5wh3.json | 12 +++--------- .../04/GHSA-7592-5mm7-m9qv/GHSA-7592-5mm7-m9qv.json | 12 +++--------- .../04/GHSA-7c4p-gjx7-mf7v/GHSA-7c4p-gjx7-mf7v.json | 12 +++--------- .../04/GHSA-7g2r-9q3g-84p3/GHSA-7g2r-9q3g-84p3.json | 12 +++--------- .../04/GHSA-7gg9-xwx6-p2q2/GHSA-7gg9-xwx6-p2q2.json | 12 +++--------- .../04/GHSA-7h4p-w928-hf53/GHSA-7h4p-w928-hf53.json | 4 +--- .../04/GHSA-7hp5-rh59-f624/GHSA-7hp5-rh59-f624.json | 12 +++--------- .../04/GHSA-7jhr-h4rw-jq26/GHSA-7jhr-h4rw-jq26.json | 12 +++--------- .../04/GHSA-7rfm-vh2c-48gx/GHSA-7rfm-vh2c-48gx.json | 4 +--- .../04/GHSA-7v65-28xp-w7r5/GHSA-7v65-28xp-w7r5.json | 12 +++--------- .../04/GHSA-7v87-4jgh-cmq4/GHSA-7v87-4jgh-cmq4.json | 12 +++--------- .../04/GHSA-7x8m-frjm-r4m8/GHSA-7x8m-frjm-r4m8.json | 12 +++--------- .../04/GHSA-82rc-4qc5-3p7r/GHSA-82rc-4qc5-3p7r.json | 12 +++--------- .../04/GHSA-84v4-jv9m-4vfj/GHSA-84v4-jv9m-4vfj.json | 12 +++--------- .../04/GHSA-84x3-vv89-429g/GHSA-84x3-vv89-429g.json | 12 +++--------- .../04/GHSA-87wr-9qwg-43mr/GHSA-87wr-9qwg-43mr.json | 12 +++--------- .../04/GHSA-88r5-qmf9-93h9/GHSA-88r5-qmf9-93h9.json | 8 ++------ .../04/GHSA-8c87-7q9f-g37m/GHSA-8c87-7q9f-g37m.json | 12 +++--------- .../04/GHSA-8chm-8g8j-qf44/GHSA-8chm-8g8j-qf44.json | 12 +++--------- .../04/GHSA-8cwh-9jp8-cq99/GHSA-8cwh-9jp8-cq99.json | 12 +++--------- .../04/GHSA-8hw5-ppqj-684g/GHSA-8hw5-ppqj-684g.json | 12 +++--------- .../04/GHSA-8j53-mpr3-63rc/GHSA-8j53-mpr3-63rc.json | 12 +++--------- .../04/GHSA-8p7m-qf44-v926/GHSA-8p7m-qf44-v926.json | 12 +++--------- .../04/GHSA-8pr8-33qh-2h66/GHSA-8pr8-33qh-2h66.json | 12 +++--------- .../04/GHSA-8qqw-f9rj-2mrm/GHSA-8qqw-f9rj-2mrm.json | 12 +++--------- .../04/GHSA-8r4q-4hr3-rm7h/GHSA-8r4q-4hr3-rm7h.json | 12 +++--------- .../04/GHSA-8x76-gx9r-885w/GHSA-8x76-gx9r-885w.json | 12 +++--------- .../04/GHSA-92c3-5449-gf35/GHSA-92c3-5449-gf35.json | 12 +++--------- .../04/GHSA-92vv-7xv5-843x/GHSA-92vv-7xv5-843x.json | 12 +++--------- .../04/GHSA-956j-qpwc-85cf/GHSA-956j-qpwc-85cf.json | 12 +++--------- .../04/GHSA-9573-p6hp-f8x3/GHSA-9573-p6hp-f8x3.json | 12 +++--------- .../04/GHSA-95jw-8pwr-6x64/GHSA-95jw-8pwr-6x64.json | 12 +++--------- .../04/GHSA-95v2-65jv-mh6r/GHSA-95v2-65jv-mh6r.json | 12 +++--------- .../04/GHSA-963q-946c-mq2q/GHSA-963q-946c-mq2q.json | 12 +++--------- .../04/GHSA-96j2-q497-7v4c/GHSA-96j2-q497-7v4c.json | 12 +++--------- .../04/GHSA-97jj-3vjw-4wp9/GHSA-97jj-3vjw-4wp9.json | 12 +++--------- .../04/GHSA-98mf-vh98-gm88/GHSA-98mf-vh98-gm88.json | 12 +++--------- .../04/GHSA-99j3-f38h-jpgx/GHSA-99j3-f38h-jpgx.json | 12 +++--------- .../04/GHSA-99vj-34x3-hjwq/GHSA-99vj-34x3-hjwq.json | 12 +++--------- .../04/GHSA-9h2c-xp2f-cccj/GHSA-9h2c-xp2f-cccj.json | 12 +++--------- .../04/GHSA-9h5w-jpxj-5jvf/GHSA-9h5w-jpxj-5jvf.json | 12 +++--------- .../04/GHSA-9m5v-hm6x-m9g5/GHSA-9m5v-hm6x-m9g5.json | 12 +++--------- .../04/GHSA-9q53-p5v9-p52m/GHSA-9q53-p5v9-p52m.json | 12 +++--------- .../04/GHSA-9v29-9c24-g7f5/GHSA-9v29-9c24-g7f5.json | 4 +--- .../04/GHSA-9vc2-9r44-hc96/GHSA-9vc2-9r44-hc96.json | 12 +++--------- .../04/GHSA-9vr9-vjm6-4vpp/GHSA-9vr9-vjm6-4vpp.json | 12 +++--------- .../04/GHSA-9x63-cg6m-c448/GHSA-9x63-cg6m-c448.json | 12 +++--------- .../04/GHSA-9xqx-33g6-cjm5/GHSA-9xqx-33g6-cjm5.json | 12 +++--------- .../04/GHSA-c42p-f9xh-v7mw/GHSA-c42p-f9xh-v7mw.json | 12 +++--------- .../04/GHSA-c7fq-6vmf-wx33/GHSA-c7fq-6vmf-wx33.json | 12 +++--------- .../04/GHSA-cjx3-6mg3-8jgm/GHSA-cjx3-6mg3-8jgm.json | 12 +++--------- .../04/GHSA-cwvq-94g9-4qc4/GHSA-cwvq-94g9-4qc4.json | 12 +++--------- .../04/GHSA-cxgx-xwjv-23mh/GHSA-cxgx-xwjv-23mh.json | 12 +++--------- .../04/GHSA-f26q-x9wv-632w/GHSA-f26q-x9wv-632w.json | 4 +--- .../04/GHSA-f5m7-2587-87mp/GHSA-f5m7-2587-87mp.json | 12 +++--------- .../04/GHSA-f6c2-x4hc-vxv2/GHSA-f6c2-x4hc-vxv2.json | 8 ++------ .../04/GHSA-f8g7-fg99-vggp/GHSA-f8g7-fg99-vggp.json | 12 +++--------- .../04/GHSA-fccg-7wjg-c6px/GHSA-fccg-7wjg-c6px.json | 12 +++--------- .../04/GHSA-fcmw-94mj-87r8/GHSA-fcmw-94mj-87r8.json | 4 +--- .../04/GHSA-fgvg-x8xj-8xq8/GHSA-fgvg-x8xj-8xq8.json | 12 +++--------- .../04/GHSA-fh6v-2hrq-2w9g/GHSA-fh6v-2hrq-2w9g.json | 12 +++--------- .../04/GHSA-fjf9-x8mw-r853/GHSA-fjf9-x8mw-r853.json | 12 +++--------- .../04/GHSA-fjq5-vvr8-jg5f/GHSA-fjq5-vvr8-jg5f.json | 12 +++--------- .../04/GHSA-fx38-6jp6-wf65/GHSA-fx38-6jp6-wf65.json | 12 +++--------- .../04/GHSA-fxp6-5w7j-wg3x/GHSA-fxp6-5w7j-wg3x.json | 12 +++--------- .../04/GHSA-g3hr-phff-7hcx/GHSA-g3hr-phff-7hcx.json | 12 +++--------- .../04/GHSA-g743-m34x-3m6h/GHSA-g743-m34x-3m6h.json | 12 +++--------- .../04/GHSA-g9jh-g4m5-mh59/GHSA-g9jh-g4m5-mh59.json | 12 +++--------- .../04/GHSA-gf7m-qm5r-6g63/GHSA-gf7m-qm5r-6g63.json | 12 +++--------- .../04/GHSA-gg4h-2f4h-wg43/GHSA-gg4h-2f4h-wg43.json | 12 +++--------- .../04/GHSA-gj5q-rq38-2gcg/GHSA-gj5q-rq38-2gcg.json | 12 +++--------- .../04/GHSA-gpmr-mm5q-r6f4/GHSA-gpmr-mm5q-r6f4.json | 12 +++--------- .../04/GHSA-gqx6-h737-v69g/GHSA-gqx6-h737-v69g.json | 12 +++--------- .../04/GHSA-gr5x-qv58-9jgc/GHSA-gr5x-qv58-9jgc.json | 12 +++--------- .../04/GHSA-gr9w-h9wq-7qx8/GHSA-gr9w-h9wq-7qx8.json | 4 +--- .../04/GHSA-gv87-wvw4-8qwm/GHSA-gv87-wvw4-8qwm.json | 12 +++--------- .../04/GHSA-gx3h-q48q-vhqq/GHSA-gx3h-q48q-vhqq.json | 12 +++--------- .../04/GHSA-gxg6-6xgq-qcr9/GHSA-gxg6-6xgq-qcr9.json | 12 +++--------- .../04/GHSA-h2qf-prm2-vch5/GHSA-h2qf-prm2-vch5.json | 12 +++--------- .../04/GHSA-h5rj-28xj-8wwg/GHSA-h5rj-28xj-8wwg.json | 12 +++--------- .../04/GHSA-h8j5-33x3-h6g9/GHSA-h8j5-33x3-h6g9.json | 12 +++--------- .../04/GHSA-h974-5hr9-px48/GHSA-h974-5hr9-px48.json | 12 +++--------- .../04/GHSA-hfxr-w796-65j3/GHSA-hfxr-w796-65j3.json | 12 +++--------- .../04/GHSA-hr7f-gcqx-fq4v/GHSA-hr7f-gcqx-fq4v.json | 8 ++------ .../04/GHSA-j2pw-q2v3-qqxv/GHSA-j2pw-q2v3-qqxv.json | 12 +++--------- .../04/GHSA-j5qf-xr3x-cvpq/GHSA-j5qf-xr3x-cvpq.json | 12 +++--------- .../04/GHSA-j67p-p4jf-hwvp/GHSA-j67p-p4jf-hwvp.json | 12 +++--------- .../04/GHSA-j9h3-pqvv-7ff5/GHSA-j9h3-pqvv-7ff5.json | 12 +++--------- .../04/GHSA-jcv9-c2pf-8g3p/GHSA-jcv9-c2pf-8g3p.json | 12 +++--------- .../04/GHSA-jgvj-mgv6-79x3/GHSA-jgvj-mgv6-79x3.json | 12 +++--------- .../04/GHSA-jj3g-hjh4-j2xj/GHSA-jj3g-hjh4-j2xj.json | 4 +--- .../04/GHSA-jph8-qvmw-2p95/GHSA-jph8-qvmw-2p95.json | 12 +++--------- .../04/GHSA-jr84-3q6c-4x89/GHSA-jr84-3q6c-4x89.json | 8 ++------ .../04/GHSA-jrm7-fxfw-383p/GHSA-jrm7-fxfw-383p.json | 12 +++--------- .../04/GHSA-m2fc-p56h-223h/GHSA-m2fc-p56h-223h.json | 12 +++--------- .../04/GHSA-m45p-gjgq-5g92/GHSA-m45p-gjgq-5g92.json | 12 +++--------- .../04/GHSA-m5qj-69g5-cc43/GHSA-m5qj-69g5-cc43.json | 12 +++--------- .../04/GHSA-m8vq-438v-vm6p/GHSA-m8vq-438v-vm6p.json | 8 ++------ .../04/GHSA-mcv5-j53r-62hw/GHSA-mcv5-j53r-62hw.json | 12 +++--------- .../04/GHSA-mfc8-35qf-6x9f/GHSA-mfc8-35qf-6x9f.json | 12 +++--------- .../04/GHSA-mg75-48jj-gjpc/GHSA-mg75-48jj-gjpc.json | 12 +++--------- .../04/GHSA-mhr6-m9pw-wprq/GHSA-mhr6-m9pw-wprq.json | 12 +++--------- .../04/GHSA-mj35-xjx6-4738/GHSA-mj35-xjx6-4738.json | 12 +++--------- .../04/GHSA-mp2m-x539-q3q6/GHSA-mp2m-x539-q3q6.json | 12 +++--------- .../04/GHSA-mp84-4rj8-p3fh/GHSA-mp84-4rj8-p3fh.json | 12 +++--------- .../04/GHSA-mq96-8pc5-pc47/GHSA-mq96-8pc5-pc47.json | 12 +++--------- .../04/GHSA-mr8j-g9gr-mgwq/GHSA-mr8j-g9gr-mgwq.json | 12 +++--------- .../04/GHSA-mwxq-5whq-6gjx/GHSA-mwxq-5whq-6gjx.json | 12 +++--------- .../04/GHSA-p2v4-hxgw-m9v7/GHSA-p2v4-hxgw-m9v7.json | 12 +++--------- .../04/GHSA-p3r3-w3mg-3rp5/GHSA-p3r3-w3mg-3rp5.json | 12 +++--------- .../04/GHSA-p43f-q89p-7fm6/GHSA-p43f-q89p-7fm6.json | 12 +++--------- .../04/GHSA-p58c-67jv-wg8j/GHSA-p58c-67jv-wg8j.json | 12 +++--------- .../04/GHSA-p6w9-q84c-999v/GHSA-p6w9-q84c-999v.json | 12 +++--------- .../04/GHSA-pcx3-q885-423g/GHSA-pcx3-q885-423g.json | 12 +++--------- .../04/GHSA-pf6w-7rf6-f8g5/GHSA-pf6w-7rf6-f8g5.json | 12 +++--------- .../04/GHSA-phf2-3r4c-ww53/GHSA-phf2-3r4c-ww53.json | 12 +++--------- .../04/GHSA-pjfm-8j94-x5vc/GHSA-pjfm-8j94-x5vc.json | 12 +++--------- .../04/GHSA-pp6c-mf5j-mr6w/GHSA-pp6c-mf5j-mr6w.json | 12 +++--------- .../04/GHSA-pphx-q2h9-wq89/GHSA-pphx-q2h9-wq89.json | 12 +++--------- .../04/GHSA-pv6p-xwqp-cf4x/GHSA-pv6p-xwqp-cf4x.json | 12 +++--------- .../04/GHSA-q27v-9rwf-3cwc/GHSA-q27v-9rwf-3cwc.json | 8 ++------ .../04/GHSA-q4wg-3c94-73xq/GHSA-q4wg-3c94-73xq.json | 12 +++--------- .../04/GHSA-q529-mj92-4xfq/GHSA-q529-mj92-4xfq.json | 12 +++--------- .../04/GHSA-q545-h8q2-xgh2/GHSA-q545-h8q2-xgh2.json | 12 +++--------- .../04/GHSA-q57h-4j7q-jmcr/GHSA-q57h-4j7q-jmcr.json | 12 +++--------- .../04/GHSA-q584-qw8x-gq9g/GHSA-q584-qw8x-gq9g.json | 12 +++--------- .../04/GHSA-q8hw-c43w-jmxr/GHSA-q8hw-c43w-jmxr.json | 8 ++------ .../04/GHSA-qvj5-mwx2-6v6v/GHSA-qvj5-mwx2-6v6v.json | 12 +++--------- .../04/GHSA-qw49-8j6q-jw63/GHSA-qw49-8j6q-jw63.json | 12 +++--------- .../04/GHSA-qw66-x6vv-xrg3/GHSA-qw66-x6vv-xrg3.json | 12 +++--------- .../04/GHSA-r3j3-pmcj-gfjw/GHSA-r3j3-pmcj-gfjw.json | 12 +++--------- .../04/GHSA-r3qv-2j8h-wj2v/GHSA-r3qv-2j8h-wj2v.json | 12 +++--------- .../04/GHSA-r6h8-3hr3-v266/GHSA-r6h8-3hr3-v266.json | 12 +++--------- .../04/GHSA-r7r9-rf39-874f/GHSA-r7r9-rf39-874f.json | 12 +++--------- .../04/GHSA-r8m5-3xgx-3jm2/GHSA-r8m5-3xgx-3jm2.json | 12 +++--------- .../04/GHSA-rgrf-mwcx-w9r5/GHSA-rgrf-mwcx-w9r5.json | 8 ++------ .../04/GHSA-rhhg-gcgg-238f/GHSA-rhhg-gcgg-238f.json | 12 +++--------- .../04/GHSA-rhm7-5gpj-qgx2/GHSA-rhm7-5gpj-qgx2.json | 12 +++--------- .../04/GHSA-rj9r-c2qp-rvpc/GHSA-rj9r-c2qp-rvpc.json | 12 +++--------- .../04/GHSA-rmm5-5rjh-786h/GHSA-rmm5-5rjh-786h.json | 12 +++--------- .../04/GHSA-rp27-2r6m-x965/GHSA-rp27-2r6m-x965.json | 12 +++--------- .../04/GHSA-v3w6-x84c-6p75/GHSA-v3w6-x84c-6p75.json | 12 +++--------- .../04/GHSA-v4w5-7q96-xfmx/GHSA-v4w5-7q96-xfmx.json | 12 +++--------- .../04/GHSA-v744-vp6m-fvh3/GHSA-v744-vp6m-fvh3.json | 12 +++--------- .../04/GHSA-v82r-qjrq-95w9/GHSA-v82r-qjrq-95w9.json | 12 +++--------- .../04/GHSA-v8jq-8h8f-hw5p/GHSA-v8jq-8h8f-hw5p.json | 12 +++--------- .../04/GHSA-v8rj-cvjr-w5pf/GHSA-v8rj-cvjr-w5pf.json | 12 +++--------- .../04/GHSA-v92w-c43c-7fmw/GHSA-v92w-c43c-7fmw.json | 8 ++------ .../04/GHSA-vc22-9p26-2j2g/GHSA-vc22-9p26-2j2g.json | 12 +++--------- .../04/GHSA-vc88-4fgw-chr5/GHSA-vc88-4fgw-chr5.json | 4 +--- .../04/GHSA-vcvr-wwhg-c72q/GHSA-vcvr-wwhg-c72q.json | 12 +++--------- .../04/GHSA-vf7r-8697-6v84/GHSA-vf7r-8697-6v84.json | 8 ++------ .../04/GHSA-vg6v-439r-vr4v/GHSA-vg6v-439r-vr4v.json | 12 +++--------- .../04/GHSA-vhg7-5jgw-r69v/GHSA-vhg7-5jgw-r69v.json | 12 +++--------- .../04/GHSA-vhhj-4rwq-4chw/GHSA-vhhj-4rwq-4chw.json | 12 +++--------- .../04/GHSA-vjmf-fjqm-657f/GHSA-vjmf-fjqm-657f.json | 12 +++--------- .../04/GHSA-vm7j-fcrc-5wgr/GHSA-vm7j-fcrc-5wgr.json | 12 +++--------- .../04/GHSA-vmw8-4qxc-x5wf/GHSA-vmw8-4qxc-x5wf.json | 12 +++--------- .../04/GHSA-vp2g-92rf-r6r2/GHSA-vp2g-92rf-r6r2.json | 12 +++--------- .../04/GHSA-vp46-rrwg-r2fv/GHSA-vp46-rrwg-r2fv.json | 12 +++--------- .../04/GHSA-vqg7-xxpq-vpw2/GHSA-vqg7-xxpq-vpw2.json | 12 +++--------- .../04/GHSA-vqh3-267m-v4c9/GHSA-vqh3-267m-v4c9.json | 8 ++------ .../04/GHSA-vvw3-w5g2-3864/GHSA-vvw3-w5g2-3864.json | 12 +++--------- .../04/GHSA-vx4v-hfcq-7vw7/GHSA-vx4v-hfcq-7vw7.json | 12 +++--------- .../04/GHSA-w24q-78r2-qqx9/GHSA-w24q-78r2-qqx9.json | 12 +++--------- .../04/GHSA-w5ff-3m7r-fmgf/GHSA-w5ff-3m7r-fmgf.json | 12 +++--------- .../04/GHSA-wgrm-7mq3-m654/GHSA-wgrm-7mq3-m654.json | 12 +++--------- .../04/GHSA-wh39-vxfq-rrwr/GHSA-wh39-vxfq-rrwr.json | 12 +++--------- .../04/GHSA-wmj9-6vp5-25g7/GHSA-wmj9-6vp5-25g7.json | 12 +++--------- .../04/GHSA-wpg9-vg72-4v62/GHSA-wpg9-vg72-4v62.json | 4 +--- .../04/GHSA-wpw8-h2rv-fv25/GHSA-wpw8-h2rv-fv25.json | 12 +++--------- .../04/GHSA-wq75-jf22-cjgp/GHSA-wq75-jf22-cjgp.json | 12 +++--------- .../04/GHSA-wqqg-h4wv-cw99/GHSA-wqqg-h4wv-cw99.json | 4 +--- .../04/GHSA-wr6p-f6xw-325w/GHSA-wr6p-f6xw-325w.json | 12 +++--------- .../04/GHSA-wwrg-62f8-mmw8/GHSA-wwrg-62f8-mmw8.json | 12 +++--------- .../04/GHSA-wxmg-r7qv-7qf9/GHSA-wxmg-r7qv-7qf9.json | 12 +++--------- .../04/GHSA-x2jf-2fvx-62g9/GHSA-x2jf-2fvx-62g9.json | 12 +++--------- .../04/GHSA-x6wg-8922-rm3c/GHSA-x6wg-8922-rm3c.json | 12 +++--------- .../04/GHSA-x726-32vx-56pp/GHSA-x726-32vx-56pp.json | 12 +++--------- .../04/GHSA-x8mq-wjxq-q628/GHSA-x8mq-wjxq-q628.json | 12 +++--------- .../04/GHSA-x8pf-r3xx-5739/GHSA-x8pf-r3xx-5739.json | 12 +++--------- .../04/GHSA-xgm2-6pvq-chh4/GHSA-xgm2-6pvq-chh4.json | 12 +++--------- .../04/GHSA-xj8x-p3pf-j589/GHSA-xj8x-p3pf-j589.json | 12 +++--------- .../05/GHSA-23c4-87c4-jw89/GHSA-23c4-87c4-jw89.json | 8 ++------ .../05/GHSA-23g2-95w8-rx32/GHSA-23g2-95w8-rx32.json | 12 +++--------- .../05/GHSA-2486-f4hq-9m5c/GHSA-2486-f4hq-9m5c.json | 8 ++------ .../05/GHSA-24v4-jx8c-3v7g/GHSA-24v4-jx8c-3v7g.json | 12 +++--------- .../05/GHSA-25xj-934p-cf7v/GHSA-25xj-934p-cf7v.json | 8 ++------ .../05/GHSA-282h-4pvx-ffwg/GHSA-282h-4pvx-ffwg.json | 8 ++------ .../05/GHSA-2843-wghw-w3qp/GHSA-2843-wghw-w3qp.json | 8 ++------ .../05/GHSA-28x8-fw6r-v46w/GHSA-28x8-fw6r-v46w.json | 8 ++------ .../05/GHSA-292x-9cr3-pgc3/GHSA-292x-9cr3-pgc3.json | 12 +++--------- .../05/GHSA-29p9-8g79-v8jp/GHSA-29p9-8g79-v8jp.json | 8 ++------ .../05/GHSA-29q4-jv6w-vrg6/GHSA-29q4-jv6w-vrg6.json | 8 ++------ .../05/GHSA-2f84-q26f-jchx/GHSA-2f84-q26f-jchx.json | 4 +--- .../05/GHSA-2ff2-j84c-3hw4/GHSA-2ff2-j84c-3hw4.json | 8 ++------ .../05/GHSA-2fr7-wcm8-348v/GHSA-2fr7-wcm8-348v.json | 8 ++------ .../05/GHSA-2g83-v4w9-j66c/GHSA-2g83-v4w9-j66c.json | 8 ++------ .../05/GHSA-2hjx-vpw3-qh3w/GHSA-2hjx-vpw3-qh3w.json | 8 ++------ .../05/GHSA-2j76-jpwv-99mp/GHSA-2j76-jpwv-99mp.json | 8 ++------ .../05/GHSA-2m7m-3qp3-4h9x/GHSA-2m7m-3qp3-4h9x.json | 8 ++------ .../05/GHSA-2mj9-chm4-g5pj/GHSA-2mj9-chm4-g5pj.json | 12 +++--------- .../05/GHSA-2mx9-p3v6-mw46/GHSA-2mx9-p3v6-mw46.json | 8 ++------ .../05/GHSA-2mxg-rvhc-jqf9/GHSA-2mxg-rvhc-jqf9.json | 8 ++------ .../05/GHSA-2pqf-865h-wqmh/GHSA-2pqf-865h-wqmh.json | 12 +++--------- .../05/GHSA-2r9w-7426-5qwr/GHSA-2r9w-7426-5qwr.json | 12 +++--------- .../05/GHSA-2vm8-9q6f-6vxg/GHSA-2vm8-9q6f-6vxg.json | 4 +--- .../05/GHSA-2w4h-pg4c-ww4f/GHSA-2w4h-pg4c-ww4f.json | 12 +++--------- .../05/GHSA-2wp4-vwq7-x2x6/GHSA-2wp4-vwq7-x2x6.json | 8 ++------ .../05/GHSA-2wrx-8pf9-36p7/GHSA-2wrx-8pf9-36p7.json | 8 ++------ .../05/GHSA-2wvw-246g-ffw7/GHSA-2wvw-246g-ffw7.json | 8 ++------ .../05/GHSA-2xh8-rvm9-h559/GHSA-2xh8-rvm9-h559.json | 12 +++--------- .../05/GHSA-2xxm-h632-fmch/GHSA-2xxm-h632-fmch.json | 8 ++------ .../05/GHSA-32vm-xm2q-p4f7/GHSA-32vm-xm2q-p4f7.json | 12 +++--------- .../05/GHSA-32wp-rjr7-9fg7/GHSA-32wp-rjr7-9fg7.json | 8 ++------ .../05/GHSA-3322-2vjv-wf87/GHSA-3322-2vjv-wf87.json | 12 +++--------- .../05/GHSA-34fq-7fhg-4q58/GHSA-34fq-7fhg-4q58.json | 12 +++--------- .../05/GHSA-34qp-hv3m-hpmm/GHSA-34qp-hv3m-hpmm.json | 8 ++------ .../05/GHSA-34v3-rp23-947c/GHSA-34v3-rp23-947c.json | 8 ++------ .../05/GHSA-34xh-3qm2-46mg/GHSA-34xh-3qm2-46mg.json | 8 ++------ .../05/GHSA-35p6-jj8w-qmx6/GHSA-35p6-jj8w-qmx6.json | 8 ++------ .../05/GHSA-3665-mhfj-379q/GHSA-3665-mhfj-379q.json | 8 ++------ .../05/GHSA-36g6-qxc2-h92h/GHSA-36g6-qxc2-h92h.json | 8 ++------ .../05/GHSA-36mf-q7m2-w6vp/GHSA-36mf-q7m2-w6vp.json | 8 ++------ .../05/GHSA-36x4-w43w-g9mm/GHSA-36x4-w43w-g9mm.json | 8 ++------ .../05/GHSA-373c-56rw-r5q5/GHSA-373c-56rw-r5q5.json | 8 ++------ .../05/GHSA-3855-w94p-4hp9/GHSA-3855-w94p-4hp9.json | 8 ++------ .../05/GHSA-388j-hgw2-75wf/GHSA-388j-hgw2-75wf.json | 8 ++------ .../05/GHSA-38cv-vxxh-c9ff/GHSA-38cv-vxxh-c9ff.json | 12 +++--------- .../05/GHSA-38f9-86mj-c2gg/GHSA-38f9-86mj-c2gg.json | 4 +--- .../05/GHSA-3988-7v79-mrm7/GHSA-3988-7v79-mrm7.json | 8 ++------ .../05/GHSA-3cm5-26fm-mwrv/GHSA-3cm5-26fm-mwrv.json | 4 +--- .../05/GHSA-3fh9-v9h9-8r63/GHSA-3fh9-v9h9-8r63.json | 8 ++------ .../05/GHSA-3gw2-fmhq-wwwr/GHSA-3gw2-fmhq-wwwr.json | 12 +++--------- .../05/GHSA-3h8m-q4x3-3fhw/GHSA-3h8m-q4x3-3fhw.json | 4 +--- .../05/GHSA-3hq7-c495-mmp2/GHSA-3hq7-c495-mmp2.json | 12 +++--------- .../05/GHSA-3m7w-4v4f-f33g/GHSA-3m7w-4v4f-f33g.json | 12 +++--------- .../05/GHSA-3mmx-qqmq-rm69/GHSA-3mmx-qqmq-rm69.json | 8 ++------ .../05/GHSA-3mq7-67j8-qhqj/GHSA-3mq7-67j8-qhqj.json | 12 +++--------- .../05/GHSA-3pxr-vgjw-q3f8/GHSA-3pxr-vgjw-q3f8.json | 8 ++------ .../05/GHSA-3qgj-r7gq-79qf/GHSA-3qgj-r7gq-79qf.json | 8 ++------ .../05/GHSA-3qqq-357h-32gj/GHSA-3qqq-357h-32gj.json | 8 ++------ .../05/GHSA-3v9q-m45q-4cr7/GHSA-3v9q-m45q-4cr7.json | 4 +--- .../05/GHSA-3vvf-wxxv-ffqp/GHSA-3vvf-wxxv-ffqp.json | 12 +++--------- .../05/GHSA-3wqp-fp8q-5rmq/GHSA-3wqp-fp8q-5rmq.json | 8 ++------ .../05/GHSA-3x7j-rf7h-c58q/GHSA-3x7j-rf7h-c58q.json | 12 +++--------- .../05/GHSA-3xj2-j3xq-873q/GHSA-3xj2-j3xq-873q.json | 12 +++--------- .../05/GHSA-3xjg-p34v-7jgf/GHSA-3xjg-p34v-7jgf.json | 8 ++------ .../05/GHSA-4285-5prc-5mj9/GHSA-4285-5prc-5mj9.json | 12 +++--------- .../05/GHSA-42h7-239h-7mpw/GHSA-42h7-239h-7mpw.json | 8 ++------ .../05/GHSA-44r7-3vwf-q932/GHSA-44r7-3vwf-q932.json | 12 +++--------- .../05/GHSA-44wm-jgm7-qv4v/GHSA-44wm-jgm7-qv4v.json | 8 ++------ .../05/GHSA-452p-5pj4-w36g/GHSA-452p-5pj4-w36g.json | 12 +++--------- .../05/GHSA-467f-c8h9-ghr7/GHSA-467f-c8h9-ghr7.json | 12 +++--------- .../05/GHSA-46gp-cxcx-7c88/GHSA-46gp-cxcx-7c88.json | 4 +--- .../05/GHSA-4792-5mj8-fwvm/GHSA-4792-5mj8-fwvm.json | 12 +++--------- .../05/GHSA-47p7-wrjh-v2c5/GHSA-47p7-wrjh-v2c5.json | 8 ++------ .../05/GHSA-47qx-ggr3-rpg4/GHSA-47qx-ggr3-rpg4.json | 12 +++--------- .../05/GHSA-4925-2x2f-56rm/GHSA-4925-2x2f-56rm.json | 8 ++------ .../05/GHSA-4c63-2h4j-qwpx/GHSA-4c63-2h4j-qwpx.json | 12 +++--------- .../05/GHSA-4f4h-6cgm-pgpx/GHSA-4f4h-6cgm-pgpx.json | 8 ++------ .../05/GHSA-4f4x-g56g-xrm8/GHSA-4f4x-g56g-xrm8.json | 8 ++------ .../05/GHSA-4fm4-277p-mcg2/GHSA-4fm4-277p-mcg2.json | 12 +++--------- .../05/GHSA-4fv7-37f3-c5j6/GHSA-4fv7-37f3-c5j6.json | 8 ++------ .../05/GHSA-4g83-8xc3-pp6v/GHSA-4g83-8xc3-pp6v.json | 8 ++------ .../05/GHSA-4gc9-p44x-vcgg/GHSA-4gc9-p44x-vcgg.json | 8 ++------ .../05/GHSA-4ghg-x23p-wp4h/GHSA-4ghg-x23p-wp4h.json | 8 ++------ .../05/GHSA-4gx5-7c23-79mh/GHSA-4gx5-7c23-79mh.json | 8 ++------ .../05/GHSA-4h55-m33h-988r/GHSA-4h55-m33h-988r.json | 8 ++------ .../05/GHSA-4h93-46mq-wpq9/GHSA-4h93-46mq-wpq9.json | 8 ++------ .../05/GHSA-4mjm-c95j-8748/GHSA-4mjm-c95j-8748.json | 4 +--- .../05/GHSA-4mmf-jfc6-j4wj/GHSA-4mmf-jfc6-j4wj.json | 8 ++------ .../05/GHSA-4mx5-h7cq-whf6/GHSA-4mx5-h7cq-whf6.json | 8 ++------ .../05/GHSA-4pj9-6h83-q463/GHSA-4pj9-6h83-q463.json | 4 +--- .../05/GHSA-4pv7-j5g9-67c2/GHSA-4pv7-j5g9-67c2.json | 8 ++------ .../05/GHSA-4q38-pc3j-9fmc/GHSA-4q38-pc3j-9fmc.json | 12 +++--------- .../05/GHSA-4r8h-m8q8-74wm/GHSA-4r8h-m8q8-74wm.json | 8 ++------ .../05/GHSA-4v4q-53h2-r6mj/GHSA-4v4q-53h2-r6mj.json | 8 ++------ .../05/GHSA-4vg2-cvhv-c66x/GHSA-4vg2-cvhv-c66x.json | 12 +++--------- .../05/GHSA-4wj8-83xp-85h6/GHSA-4wj8-83xp-85h6.json | 8 ++------ .../05/GHSA-53rm-5h2m-g3vh/GHSA-53rm-5h2m-g3vh.json | 8 ++------ .../05/GHSA-55qw-34gf-q5qj/GHSA-55qw-34gf-q5qj.json | 8 ++------ .../05/GHSA-573f-fgjg-8qcq/GHSA-573f-fgjg-8qcq.json | 8 ++------ .../05/GHSA-579m-27vv-2w3h/GHSA-579m-27vv-2w3h.json | 8 ++------ .../05/GHSA-579q-v34r-wj88/GHSA-579q-v34r-wj88.json | 8 ++------ .../05/GHSA-583x-7w2c-85c4/GHSA-583x-7w2c-85c4.json | 12 +++--------- .../05/GHSA-588h-hp99-grgw/GHSA-588h-hp99-grgw.json | 12 +++--------- .../05/GHSA-58vv-fhph-5w6g/GHSA-58vv-fhph-5w6g.json | 8 ++------ .../05/GHSA-59xc-99wg-3hgf/GHSA-59xc-99wg-3hgf.json | 4 +--- .../05/GHSA-5crv-9pfw-2jvp/GHSA-5crv-9pfw-2jvp.json | 4 +--- .../05/GHSA-5g5w-44wh-969g/GHSA-5g5w-44wh-969g.json | 4 +--- .../05/GHSA-5gm8-7pfq-h7gr/GHSA-5gm8-7pfq-h7gr.json | 8 ++------ .../05/GHSA-5gqq-53xx-954h/GHSA-5gqq-53xx-954h.json | 8 ++------ .../05/GHSA-5pr6-w68j-vgj8/GHSA-5pr6-w68j-vgj8.json | 8 ++------ .../05/GHSA-5rjg-v5wr-9xwx/GHSA-5rjg-v5wr-9xwx.json | 8 ++------ .../05/GHSA-5wp7-5x9c-363f/GHSA-5wp7-5x9c-363f.json | 8 ++------ .../05/GHSA-62m3-j4w3-p5mw/GHSA-62m3-j4w3-p5mw.json | 8 ++------ .../05/GHSA-62q3-rvgv-rchp/GHSA-62q3-rvgv-rchp.json | 8 ++------ .../05/GHSA-63w7-2rqx-q97m/GHSA-63w7-2rqx-q97m.json | 8 ++------ .../05/GHSA-64c9-jc9m-9hh5/GHSA-64c9-jc9m-9hh5.json | 8 ++------ .../05/GHSA-64w9-4fpr-w9xw/GHSA-64w9-4fpr-w9xw.json | 8 ++------ .../05/GHSA-6538-7jcg-ghf9/GHSA-6538-7jcg-ghf9.json | 12 +++--------- .../05/GHSA-6544-wc6f-vvph/GHSA-6544-wc6f-vvph.json | 12 +++--------- .../05/GHSA-675c-f5vv-4cpr/GHSA-675c-f5vv-4cpr.json | 12 +++--------- .../05/GHSA-67mj-v4p8-w9gj/GHSA-67mj-v4p8-w9gj.json | 4 +--- .../05/GHSA-68gx-xchj-mc4r/GHSA-68gx-xchj-mc4r.json | 12 +++--------- .../05/GHSA-68m8-x635-9fjc/GHSA-68m8-x635-9fjc.json | 8 ++------ .../05/GHSA-6955-fjf8-4h7w/GHSA-6955-fjf8-4h7w.json | 12 +++--------- .../05/GHSA-6963-865c-fqm9/GHSA-6963-865c-fqm9.json | 8 ++------ .../05/GHSA-69qh-6j8v-ppx3/GHSA-69qh-6j8v-ppx3.json | 8 ++------ .../05/GHSA-69r7-j2w2-g279/GHSA-69r7-j2w2-g279.json | 8 ++------ .../05/GHSA-6gr4-mx2p-46wq/GHSA-6gr4-mx2p-46wq.json | 8 ++------ .../05/GHSA-6hcc-jw2q-4hjj/GHSA-6hcc-jw2q-4hjj.json | 8 ++------ .../05/GHSA-6jjv-2pg7-g28g/GHSA-6jjv-2pg7-g28g.json | 8 ++------ .../05/GHSA-6mm5-r7wc-h7pm/GHSA-6mm5-r7wc-h7pm.json | 8 ++------ .../05/GHSA-6ph6-qh93-53hh/GHSA-6ph6-qh93-53hh.json | 12 +++--------- .../05/GHSA-6r2v-76j8-x9vv/GHSA-6r2v-76j8-x9vv.json | 8 ++------ .../05/GHSA-6r97-fp62-rh53/GHSA-6r97-fp62-rh53.json | 8 ++------ .../05/GHSA-6vf8-8p4x-pxm5/GHSA-6vf8-8p4x-pxm5.json | 8 ++------ .../05/GHSA-6w5v-vmwv-xcwj/GHSA-6w5v-vmwv-xcwj.json | 4 +--- .../05/GHSA-6wc5-gr23-xwvq/GHSA-6wc5-gr23-xwvq.json | 8 ++------ .../05/GHSA-6xxv-m43c-4w3x/GHSA-6xxv-m43c-4w3x.json | 8 ++------ .../05/GHSA-7229-j6j7-28xp/GHSA-7229-j6j7-28xp.json | 12 +++--------- .../05/GHSA-72wr-xhp6-g67f/GHSA-72wr-xhp6-g67f.json | 8 ++------ .../05/GHSA-73qx-v778-p382/GHSA-73qx-v778-p382.json | 8 ++------ .../05/GHSA-74c3-jxfp-3xjc/GHSA-74c3-jxfp-3xjc.json | 8 ++------ .../05/GHSA-74vh-rqgr-pmmw/GHSA-74vh-rqgr-pmmw.json | 8 ++------ .../05/GHSA-7525-vx5m-3x7x/GHSA-7525-vx5m-3x7x.json | 12 +++--------- .../05/GHSA-75m6-wc48-gvw9/GHSA-75m6-wc48-gvw9.json | 8 ++------ .../05/GHSA-75mx-c32q-gr7g/GHSA-75mx-c32q-gr7g.json | 8 ++------ .../05/GHSA-7643-946g-hpgv/GHSA-7643-946g-hpgv.json | 12 +++--------- .../05/GHSA-78hq-56xq-qvm7/GHSA-78hq-56xq-qvm7.json | 8 ++------ .../05/GHSA-792j-8wv9-hgmh/GHSA-792j-8wv9-hgmh.json | 8 ++------ .../05/GHSA-7949-q2p4-p63q/GHSA-7949-q2p4-p63q.json | 4 +--- .../05/GHSA-79r4-9j2m-5f8q/GHSA-79r4-9j2m-5f8q.json | 8 ++------ .../05/GHSA-7cq7-whwr-8m7w/GHSA-7cq7-whwr-8m7w.json | 8 ++------ .../05/GHSA-7fmq-fjf7-57gj/GHSA-7fmq-fjf7-57gj.json | 8 ++------ .../05/GHSA-7g33-jchx-2fjc/GHSA-7g33-jchx-2fjc.json | 4 +--- .../05/GHSA-7gf3-pjh4-q42g/GHSA-7gf3-pjh4-q42g.json | 8 ++------ .../05/GHSA-7gh7-x8j4-2p74/GHSA-7gh7-x8j4-2p74.json | 4 +--- .../05/GHSA-7h22-x3wx-hv9p/GHSA-7h22-x3wx-hv9p.json | 8 ++------ .../05/GHSA-7h27-qgm8-3m3v/GHSA-7h27-qgm8-3m3v.json | 12 +++--------- .../05/GHSA-7hpx-98fw-5mq9/GHSA-7hpx-98fw-5mq9.json | 12 +++--------- .../05/GHSA-7hrw-67rx-qfvf/GHSA-7hrw-67rx-qfvf.json | 12 +++--------- .../05/GHSA-7jv9-v556-278x/GHSA-7jv9-v556-278x.json | 8 ++------ .../05/GHSA-7m4m-xwpv-qmvh/GHSA-7m4m-xwpv-qmvh.json | 8 ++------ .../05/GHSA-7p98-xcgc-gwhj/GHSA-7p98-xcgc-gwhj.json | 8 ++------ .../05/GHSA-7qpq-c35p-wc3c/GHSA-7qpq-c35p-wc3c.json | 8 ++------ .../05/GHSA-7qrc-8ggr-g3p9/GHSA-7qrc-8ggr-g3p9.json | 8 ++------ .../05/GHSA-7w6h-978p-xvrg/GHSA-7w6h-978p-xvrg.json | 8 ++------ .../05/GHSA-82qh-pr8g-6wjv/GHSA-82qh-pr8g-6wjv.json | 8 ++------ .../05/GHSA-83f7-78g7-gqxp/GHSA-83f7-78g7-gqxp.json | 8 ++------ .../05/GHSA-8474-8f3q-2jhh/GHSA-8474-8f3q-2jhh.json | 8 ++------ .../05/GHSA-858g-9g73-qcmg/GHSA-858g-9g73-qcmg.json | 12 +++--------- .../05/GHSA-86fx-vw86-g82j/GHSA-86fx-vw86-g82j.json | 8 ++------ .../05/GHSA-86q4-677r-wjxv/GHSA-86q4-677r-wjxv.json | 12 +++--------- .../05/GHSA-87j7-hjrv-h93w/GHSA-87j7-hjrv-h93w.json | 12 +++--------- .../05/GHSA-89c6-8x2j-h6xj/GHSA-89c6-8x2j-h6xj.json | 4 +--- .../05/GHSA-89wm-w7vg-fqcp/GHSA-89wm-w7vg-fqcp.json | 12 +++--------- .../05/GHSA-8c9c-hrw4-x8cg/GHSA-8c9c-hrw4-x8cg.json | 8 ++------ .../05/GHSA-8cpp-59mv-gfqj/GHSA-8cpp-59mv-gfqj.json | 8 ++------ .../05/GHSA-8cvh-hm2x-mc93/GHSA-8cvh-hm2x-mc93.json | 8 ++------ .../05/GHSA-8f6m-8258-hw32/GHSA-8f6m-8258-hw32.json | 8 ++------ .../05/GHSA-8g3p-9292-vwfx/GHSA-8g3p-9292-vwfx.json | 12 +++--------- .../05/GHSA-8ghq-9hwr-jxh8/GHSA-8ghq-9hwr-jxh8.json | 8 ++------ .../05/GHSA-8h8c-92jm-7x7x/GHSA-8h8c-92jm-7x7x.json | 8 ++------ .../05/GHSA-8jc2-pm4h-g9r2/GHSA-8jc2-pm4h-g9r2.json | 12 +++--------- .../05/GHSA-8jc2-pvhh-pcg8/GHSA-8jc2-pvhh-pcg8.json | 8 ++------ .../05/GHSA-8jp5-4765-vmv8/GHSA-8jp5-4765-vmv8.json | 12 +++--------- .../05/GHSA-8jv4-3cwp-xgq4/GHSA-8jv4-3cwp-xgq4.json | 12 +++--------- .../05/GHSA-8m5w-24jx-6j4c/GHSA-8m5w-24jx-6j4c.json | 12 +++--------- .../05/GHSA-8q82-2c4p-w6hp/GHSA-8q82-2c4p-w6hp.json | 8 ++------ .../05/GHSA-8q87-6j7g-5qcf/GHSA-8q87-6j7g-5qcf.json | 8 ++------ .../05/GHSA-8qxp-976h-rx2p/GHSA-8qxp-976h-rx2p.json | 12 +++--------- .../05/GHSA-8rwp-72pf-cq9g/GHSA-8rwp-72pf-cq9g.json | 8 ++------ .../05/GHSA-8v6m-v7w5-7r88/GHSA-8v6m-v7w5-7r88.json | 4 +--- .../05/GHSA-8v8f-rjrw-vg47/GHSA-8v8f-rjrw-vg47.json | 8 ++------ .../05/GHSA-8v9w-x533-rq4q/GHSA-8v9w-x533-rq4q.json | 12 +++--------- .../05/GHSA-8w3p-34v2-ghhr/GHSA-8w3p-34v2-ghhr.json | 4 +--- .../05/GHSA-8wg7-c4m9-6mmg/GHSA-8wg7-c4m9-6mmg.json | 8 ++------ .../05/GHSA-8ww5-7wc7-5j2j/GHSA-8ww5-7wc7-5j2j.json | 12 +++--------- .../05/GHSA-8xff-w72m-pxvj/GHSA-8xff-w72m-pxvj.json | 8 ++------ .../05/GHSA-92xw-vwgc-8994/GHSA-92xw-vwgc-8994.json | 8 ++------ .../05/GHSA-94x4-q73x-wr8m/GHSA-94x4-q73x-wr8m.json | 12 +++--------- .../05/GHSA-9678-97g2-v2v3/GHSA-9678-97g2-v2v3.json | 8 ++------ .../05/GHSA-98mf-qrx3-4856/GHSA-98mf-qrx3-4856.json | 4 +--- .../05/GHSA-9c69-hwcc-2mrx/GHSA-9c69-hwcc-2mrx.json | 12 +++--------- .../05/GHSA-9c7c-w7q8-pf7c/GHSA-9c7c-w7q8-pf7c.json | 8 ++------ .../05/GHSA-9f3q-pwxj-87pv/GHSA-9f3q-pwxj-87pv.json | 12 +++--------- .../05/GHSA-9fg6-4jc3-m2x8/GHSA-9fg6-4jc3-m2x8.json | 8 ++------ .../05/GHSA-9fh3-r25p-cgrm/GHSA-9fh3-r25p-cgrm.json | 4 +--- .../05/GHSA-9fhr-9xv4-8gjv/GHSA-9fhr-9xv4-8gjv.json | 8 ++------ .../05/GHSA-9gjx-m56f-j2fc/GHSA-9gjx-m56f-j2fc.json | 8 ++------ .../05/GHSA-9h25-47mw-52hh/GHSA-9h25-47mw-52hh.json | 4 +--- .../05/GHSA-9p74-pqx9-3mrw/GHSA-9p74-pqx9-3mrw.json | 12 +++--------- .../05/GHSA-9pvv-mpwh-r55x/GHSA-9pvv-mpwh-r55x.json | 8 ++------ .../05/GHSA-9pw4-685c-rqj9/GHSA-9pw4-685c-rqj9.json | 8 ++------ .../05/GHSA-9rc6-x736-5w53/GHSA-9rc6-x736-5w53.json | 8 ++------ .../05/GHSA-9rwv-85r3-53mj/GHSA-9rwv-85r3-53mj.json | 8 ++------ .../05/GHSA-9v5h-24hm-5jw8/GHSA-9v5h-24hm-5jw8.json | 12 +++--------- .../05/GHSA-9xp3-mp9c-47rf/GHSA-9xp3-mp9c-47rf.json | 8 ++------ .../05/GHSA-c22v-89qp-9xx2/GHSA-c22v-89qp-9xx2.json | 12 +++--------- .../05/GHSA-c2jh-j6fc-98gj/GHSA-c2jh-j6fc-98gj.json | 8 ++------ .../05/GHSA-c34q-4vv7-8478/GHSA-c34q-4vv7-8478.json | 12 +++--------- .../05/GHSA-c47j-fm69-hwfr/GHSA-c47j-fm69-hwfr.json | 8 ++------ .../05/GHSA-c49q-5f86-4hxc/GHSA-c49q-5f86-4hxc.json | 8 ++------ .../05/GHSA-c59p-8p3r-xcm3/GHSA-c59p-8p3r-xcm3.json | 12 +++--------- .../05/GHSA-c7h9-w7hr-wpgq/GHSA-c7h9-w7hr-wpgq.json | 12 +++--------- .../05/GHSA-c7pv-p336-6hqg/GHSA-c7pv-p336-6hqg.json | 8 ++------ .../05/GHSA-c945-7xj4-pc63/GHSA-c945-7xj4-pc63.json | 12 +++--------- .../05/GHSA-c9vm-6m38-wr3x/GHSA-c9vm-6m38-wr3x.json | 12 +++--------- .../05/GHSA-cf25-vhff-8gf4/GHSA-cf25-vhff-8gf4.json | 8 ++------ .../05/GHSA-cfx3-m5fr-8c98/GHSA-cfx3-m5fr-8c98.json | 8 ++------ .../05/GHSA-cg67-rx3c-vx3q/GHSA-cg67-rx3c-vx3q.json | 8 ++------ .../05/GHSA-cj34-qf96-c4gj/GHSA-cj34-qf96-c4gj.json | 12 +++--------- .../05/GHSA-cm7h-m9vp-m9xr/GHSA-cm7h-m9vp-m9xr.json | 12 +++--------- .../05/GHSA-crp8-jqxf-32xm/GHSA-crp8-jqxf-32xm.json | 12 +++--------- .../05/GHSA-cv67-mvhx-g3hq/GHSA-cv67-mvhx-g3hq.json | 8 ++------ .../05/GHSA-cv7g-x7qp-j3gc/GHSA-cv7g-x7qp-j3gc.json | 12 +++--------- .../05/GHSA-cw22-q549-fq8f/GHSA-cw22-q549-fq8f.json | 12 +++--------- .../05/GHSA-cx47-rr8x-3gw5/GHSA-cx47-rr8x-3gw5.json | 8 ++------ .../05/GHSA-f2pw-r5rx-m6w6/GHSA-f2pw-r5rx-m6w6.json | 4 +--- .../05/GHSA-f2x4-qj2f-qr8x/GHSA-f2x4-qj2f-qr8x.json | 8 ++------ .../05/GHSA-f378-wp68-fvm9/GHSA-f378-wp68-fvm9.json | 8 ++------ .../05/GHSA-f38c-wxp6-8xjv/GHSA-f38c-wxp6-8xjv.json | 8 ++------ .../05/GHSA-f3p9-mw6f-g5p7/GHSA-f3p9-mw6f-g5p7.json | 12 +++--------- .../05/GHSA-f458-cxqh-jgv3/GHSA-f458-cxqh-jgv3.json | 8 ++------ .../05/GHSA-f45q-fwg3-mgm5/GHSA-f45q-fwg3-mgm5.json | 8 ++------ .../05/GHSA-f4ph-wxvj-8j8g/GHSA-f4ph-wxvj-8j8g.json | 4 +--- .../05/GHSA-f5hw-7588-79hg/GHSA-f5hw-7588-79hg.json | 8 ++------ .../05/GHSA-f7rq-mfh3-r5mv/GHSA-f7rq-mfh3-r5mv.json | 8 ++------ .../05/GHSA-f8w7-hh6g-979x/GHSA-f8w7-hh6g-979x.json | 8 ++------ .../05/GHSA-f95j-fq6w-7pm5/GHSA-f95j-fq6w-7pm5.json | 12 +++--------- .../05/GHSA-f9cq-378f-9cj4/GHSA-f9cq-378f-9cj4.json | 8 ++------ .../05/GHSA-ffxh-c3w3-m6jp/GHSA-ffxh-c3w3-m6jp.json | 12 +++--------- .../05/GHSA-fgp5-m9hj-59x7/GHSA-fgp5-m9hj-59x7.json | 8 ++------ .../05/GHSA-fj94-q44p-pf8f/GHSA-fj94-q44p-pf8f.json | 8 ++------ .../05/GHSA-fjjg-33wx-7m7w/GHSA-fjjg-33wx-7m7w.json | 8 ++------ .../05/GHSA-fm24-2jhw-cp33/GHSA-fm24-2jhw-cp33.json | 4 +--- .../05/GHSA-fm2x-8p52-vp9v/GHSA-fm2x-8p52-vp9v.json | 12 +++--------- .../05/GHSA-fpc4-2g47-9x72/GHSA-fpc4-2g47-9x72.json | 8 ++------ .../05/GHSA-fpmq-9j97-cq2c/GHSA-fpmq-9j97-cq2c.json | 8 ++------ .../05/GHSA-fqr7-rj78-grg8/GHSA-fqr7-rj78-grg8.json | 12 +++--------- .../05/GHSA-fwcq-rwgm-5rc2/GHSA-fwcq-rwgm-5rc2.json | 4 +--- .../05/GHSA-fwqg-4g86-67jr/GHSA-fwqg-4g86-67jr.json | 4 +--- .../05/GHSA-fxj9-j9p7-r939/GHSA-fxj9-j9p7-r939.json | 8 ++------ .../05/GHSA-fxvg-27xw-fcvj/GHSA-fxvg-27xw-fcvj.json | 12 +++--------- .../05/GHSA-g2j5-mv4m-h6rc/GHSA-g2j5-mv4m-h6rc.json | 8 ++------ .../05/GHSA-g4h7-78c4-pf5f/GHSA-g4h7-78c4-pf5f.json | 4 +--- .../05/GHSA-g5w8-cv66-2r79/GHSA-g5w8-cv66-2r79.json | 8 ++------ .../05/GHSA-g5ww-gvff-fp7p/GHSA-g5ww-gvff-fp7p.json | 8 ++------ .../05/GHSA-g79j-p7v5-2phh/GHSA-g79j-p7v5-2phh.json | 12 +++--------- .../05/GHSA-g79p-3w8h-r53r/GHSA-g79p-3w8h-r53r.json | 8 ++------ .../05/GHSA-g7cc-v7v6-m885/GHSA-g7cc-v7v6-m885.json | 8 ++------ .../05/GHSA-g856-2j5m-5v2v/GHSA-g856-2j5m-5v2v.json | 8 ++------ .../05/GHSA-g8r9-m3mg-hwgh/GHSA-g8r9-m3mg-hwgh.json | 8 ++------ .../05/GHSA-g8v7-95gj-m628/GHSA-g8v7-95gj-m628.json | 12 +++--------- .../05/GHSA-g974-9xcc-jjmh/GHSA-g974-9xcc-jjmh.json | 8 ++------ .../05/GHSA-gc2q-vcmv-m88j/GHSA-gc2q-vcmv-m88j.json | 12 +++--------- .../05/GHSA-gc6c-6m8m-8g6g/GHSA-gc6c-6m8m-8g6g.json | 8 ++------ .../05/GHSA-gcrv-q3v4-c8v3/GHSA-gcrv-q3v4-c8v3.json | 8 ++------ .../05/GHSA-ggv9-3vm9-2rpv/GHSA-ggv9-3vm9-2rpv.json | 8 ++------ .../05/GHSA-gh2m-8w4p-v28f/GHSA-gh2m-8w4p-v28f.json | 8 ++------ .../05/GHSA-gj5g-pprq-vcm2/GHSA-gj5g-pprq-vcm2.json | 8 ++------ .../05/GHSA-gmgw-m963-7jfx/GHSA-gmgw-m963-7jfx.json | 12 +++--------- .../05/GHSA-gp3h-6gj9-2hrv/GHSA-gp3h-6gj9-2hrv.json | 12 +++--------- .../05/GHSA-gpx8-c343-gg78/GHSA-gpx8-c343-gg78.json | 4 +--- .../05/GHSA-gq9w-wr34-cg54/GHSA-gq9w-wr34-cg54.json | 8 ++------ .../05/GHSA-grjv-3369-9rgq/GHSA-grjv-3369-9rgq.json | 8 ++------ .../05/GHSA-gvxf-84jp-9m3q/GHSA-gvxf-84jp-9m3q.json | 8 ++------ .../05/GHSA-gwgr-rxcg-c2cg/GHSA-gwgr-rxcg-c2cg.json | 8 ++------ .../05/GHSA-gwrc-c7f6-cf92/GHSA-gwrc-c7f6-cf92.json | 8 ++------ .../05/GHSA-gxjv-3qx5-453x/GHSA-gxjv-3qx5-453x.json | 4 +--- .../05/GHSA-gxw3-qv94-46j5/GHSA-gxw3-qv94-46j5.json | 8 ++------ .../05/GHSA-h25q-hh4h-7xg5/GHSA-h25q-hh4h-7xg5.json | 12 +++--------- .../05/GHSA-h276-96cq-jf5w/GHSA-h276-96cq-jf5w.json | 8 ++------ .../05/GHSA-h42w-vj6w-2rvp/GHSA-h42w-vj6w-2rvp.json | 8 ++------ .../05/GHSA-h43h-m87r-6x6h/GHSA-h43h-m87r-6x6h.json | 8 ++------ .../05/GHSA-h4xp-qh97-9m3x/GHSA-h4xp-qh97-9m3x.json | 8 ++------ .../05/GHSA-h54f-m7pv-97fx/GHSA-h54f-m7pv-97fx.json | 8 ++------ .../05/GHSA-h754-95cg-2mjg/GHSA-h754-95cg-2mjg.json | 8 ++------ .../05/GHSA-h76g-vp43-8cw5/GHSA-h76g-vp43-8cw5.json | 4 +--- .../05/GHSA-h7mc-jr2r-m38g/GHSA-h7mc-jr2r-m38g.json | 8 ++------ .../05/GHSA-h87m-6vhv-vpjc/GHSA-h87m-6vhv-vpjc.json | 12 +++--------- .../05/GHSA-h8v8-vmcf-hf5r/GHSA-h8v8-vmcf-hf5r.json | 4 +--- .../05/GHSA-h9qm-fw5r-9vmm/GHSA-h9qm-fw5r-9vmm.json | 4 +--- .../05/GHSA-hcfw-jhvg-6wgg/GHSA-hcfw-jhvg-6wgg.json | 12 +++--------- .../05/GHSA-hcvj-2524-64w3/GHSA-hcvj-2524-64w3.json | 12 +++--------- .../05/GHSA-hcxp-2cc6-6jhj/GHSA-hcxp-2cc6-6jhj.json | 8 ++------ .../05/GHSA-hf8x-r682-pxjh/GHSA-hf8x-r682-pxjh.json | 12 +++--------- .../05/GHSA-hh29-7f97-3793/GHSA-hh29-7f97-3793.json | 8 ++------ .../05/GHSA-hjmq-83wc-7h7j/GHSA-hjmq-83wc-7h7j.json | 8 ++------ .../05/GHSA-hmh7-p3j6-5g37/GHSA-hmh7-p3j6-5g37.json | 8 ++------ .../05/GHSA-hpq4-rvv8-g82j/GHSA-hpq4-rvv8-g82j.json | 8 ++------ .../05/GHSA-hq3q-v9v8-rcwf/GHSA-hq3q-v9v8-rcwf.json | 4 +--- .../05/GHSA-hq4w-m7jh-mj6m/GHSA-hq4w-m7jh-mj6m.json | 12 +++--------- .../05/GHSA-hqfx-22r8-m3gq/GHSA-hqfx-22r8-m3gq.json | 4 +--- .../05/GHSA-hr96-643c-qp42/GHSA-hr96-643c-qp42.json | 8 ++------ .../05/GHSA-hvvw-6vhx-w88v/GHSA-hvvw-6vhx-w88v.json | 12 +++--------- .../05/GHSA-hxm6-fm4r-xj8r/GHSA-hxm6-fm4r-xj8r.json | 8 ++------ .../05/GHSA-j2g8-rpv4-4pqf/GHSA-j2g8-rpv4-4pqf.json | 12 +++--------- .../05/GHSA-j2rh-4mpc-95mq/GHSA-j2rh-4mpc-95mq.json | 4 +--- .../05/GHSA-j324-qpqv-2454/GHSA-j324-qpqv-2454.json | 8 ++------ .../05/GHSA-j45x-3263-vc7w/GHSA-j45x-3263-vc7w.json | 8 ++------ .../05/GHSA-j526-pj9q-28j3/GHSA-j526-pj9q-28j3.json | 8 ++------ .../05/GHSA-j57c-7v46-28f4/GHSA-j57c-7v46-28f4.json | 8 ++------ .../05/GHSA-j5cw-ghxr-f273/GHSA-j5cw-ghxr-f273.json | 8 ++------ .../05/GHSA-j5h2-mqh2-gh66/GHSA-j5h2-mqh2-gh66.json | 4 +--- .../05/GHSA-j5x7-4h7r-4q2r/GHSA-j5x7-4h7r-4q2r.json | 8 ++------ .../05/GHSA-j74q-h94v-g5gh/GHSA-j74q-h94v-g5gh.json | 12 +++--------- .../05/GHSA-j7fv-773v-mxgq/GHSA-j7fv-773v-mxgq.json | 12 +++--------- .../05/GHSA-j7hj-hqxr-v93g/GHSA-j7hj-hqxr-v93g.json | 12 +++--------- .../05/GHSA-j8j6-5p44-cxc2/GHSA-j8j6-5p44-cxc2.json | 12 +++--------- .../05/GHSA-j9cc-27mp-fm7w/GHSA-j9cc-27mp-fm7w.json | 8 ++------ .../05/GHSA-j9h8-94jh-mvvv/GHSA-j9h8-94jh-mvvv.json | 8 ++------ .../05/GHSA-j9xx-xhxp-xr79/GHSA-j9xx-xhxp-xr79.json | 8 ++------ .../05/GHSA-jgvp-vpg3-f4xh/GHSA-jgvp-vpg3-f4xh.json | 8 ++------ .../05/GHSA-jj2f-926m-w2rc/GHSA-jj2f-926m-w2rc.json | 4 +--- .../05/GHSA-jmr4-rffv-36cj/GHSA-jmr4-rffv-36cj.json | 8 ++------ .../05/GHSA-jpm4-m232-8rrq/GHSA-jpm4-m232-8rrq.json | 8 ++------ .../05/GHSA-jpp8-6866-8f89/GHSA-jpp8-6866-8f89.json | 12 +++--------- .../05/GHSA-jpqx-f853-g2j5/GHSA-jpqx-f853-g2j5.json | 8 ++------ .../05/GHSA-jpv4-xx47-257g/GHSA-jpv4-xx47-257g.json | 8 ++------ .../05/GHSA-jrgj-8hjf-v957/GHSA-jrgj-8hjf-v957.json | 12 +++--------- .../05/GHSA-jrmq-x9f8-6mh9/GHSA-jrmq-x9f8-6mh9.json | 12 +++--------- .../05/GHSA-jw64-xwgf-cfcc/GHSA-jw64-xwgf-cfcc.json | 12 +++--------- .../05/GHSA-m23v-gcxc-rq79/GHSA-m23v-gcxc-rq79.json | 8 ++------ .../05/GHSA-m2v4-c38g-6j7w/GHSA-m2v4-c38g-6j7w.json | 8 ++------ .../05/GHSA-m3hg-xq69-26f2/GHSA-m3hg-xq69-26f2.json | 8 ++------ .../05/GHSA-m48x-rc7v-3542/GHSA-m48x-rc7v-3542.json | 8 ++------ .../05/GHSA-m4p6-m6rh-mg74/GHSA-m4p6-m6rh-mg74.json | 8 ++------ .../05/GHSA-m782-4wcx-2mg3/GHSA-m782-4wcx-2mg3.json | 8 ++------ .../05/GHSA-m7hj-mp9g-3x93/GHSA-m7hj-mp9g-3x93.json | 12 +++--------- .../05/GHSA-m7m8-2937-xxpq/GHSA-m7m8-2937-xxpq.json | 8 ++------ .../05/GHSA-m82f-r4r7-5qph/GHSA-m82f-r4r7-5qph.json | 12 +++--------- .../05/GHSA-m95q-pxcq-5m5r/GHSA-m95q-pxcq-5m5r.json | 8 ++------ .../05/GHSA-m989-hhx2-g8c7/GHSA-m989-hhx2-g8c7.json | 8 ++------ .../05/GHSA-m98h-4pjr-7pxh/GHSA-m98h-4pjr-7pxh.json | 8 ++------ .../05/GHSA-m9wc-h684-m6rq/GHSA-m9wc-h684-m6rq.json | 8 ++------ .../05/GHSA-mcc8-p585-2j6v/GHSA-mcc8-p585-2j6v.json | 8 ++------ .../05/GHSA-mf48-q84f-r7vh/GHSA-mf48-q84f-r7vh.json | 12 +++--------- .../05/GHSA-mfv5-8vh8-pcqg/GHSA-mfv5-8vh8-pcqg.json | 4 +--- .../05/GHSA-mgqr-c833-xp4f/GHSA-mgqr-c833-xp4f.json | 12 +++--------- .../05/GHSA-mgv2-3v5v-fffv/GHSA-mgv2-3v5v-fffv.json | 8 ++------ .../05/GHSA-mh9v-6mm6-9gm4/GHSA-mh9v-6mm6-9gm4.json | 4 +--- .../05/GHSA-mhfr-p8x5-2hr8/GHSA-mhfr-p8x5-2hr8.json | 8 ++------ .../05/GHSA-mhmg-wv9c-8hpm/GHSA-mhmg-wv9c-8hpm.json | 8 ++------ .../05/GHSA-mjqr-4qcm-8x7g/GHSA-mjqr-4qcm-8x7g.json | 12 +++--------- .../05/GHSA-mmc3-577w-fqfg/GHSA-mmc3-577w-fqfg.json | 4 +--- .../05/GHSA-mpxx-6gg7-w2hx/GHSA-mpxx-6gg7-w2hx.json | 8 ++------ .../05/GHSA-mrfc-9mg9-58q3/GHSA-mrfc-9mg9-58q3.json | 12 +++--------- .../05/GHSA-mvq5-g7h7-8rg5/GHSA-mvq5-g7h7-8rg5.json | 8 ++------ .../05/GHSA-mx42-6263-7pm2/GHSA-mx42-6263-7pm2.json | 4 +--- .../05/GHSA-mxfj-3796-w53x/GHSA-mxfj-3796-w53x.json | 4 +--- .../05/GHSA-mxww-cpwx-rp55/GHSA-mxww-cpwx-rp55.json | 8 ++------ .../05/GHSA-p2mv-74m8-hvq8/GHSA-p2mv-74m8-hvq8.json | 8 ++------ .../05/GHSA-p2v2-rj88-4vrj/GHSA-p2v2-rj88-4vrj.json | 8 ++------ .../05/GHSA-p2w9-g2w7-8fw9/GHSA-p2w9-g2w7-8fw9.json | 4 +--- .../05/GHSA-p3rh-pfh4-2cvw/GHSA-p3rh-pfh4-2cvw.json | 8 ++------ .../05/GHSA-p48g-p6gh-8qfq/GHSA-p48g-p6gh-8qfq.json | 8 ++------ .../05/GHSA-p4qg-w83v-686g/GHSA-p4qg-w83v-686g.json | 8 ++------ .../05/GHSA-p4r2-47rh-qjj4/GHSA-p4r2-47rh-qjj4.json | 8 ++------ .../05/GHSA-p4v2-w6qq-pp7v/GHSA-p4v2-w6qq-pp7v.json | 4 +--- .../05/GHSA-p4xw-fwjm-wh6h/GHSA-p4xw-fwjm-wh6h.json | 4 +--- .../05/GHSA-p5jr-488h-j8p7/GHSA-p5jr-488h-j8p7.json | 8 ++------ .../05/GHSA-p5w4-hfvc-v2c8/GHSA-p5w4-hfvc-v2c8.json | 8 ++------ .../05/GHSA-p669-fw7h-w3hf/GHSA-p669-fw7h-w3hf.json | 8 ++------ .../05/GHSA-p6hg-pmvw-h64j/GHSA-p6hg-pmvw-h64j.json | 12 +++--------- .../05/GHSA-p7pp-gqpg-99cg/GHSA-p7pp-gqpg-99cg.json | 8 ++------ .../05/GHSA-pcp9-3jpm-8q4g/GHSA-pcp9-3jpm-8q4g.json | 8 ++------ .../05/GHSA-pf53-rq8f-rwqx/GHSA-pf53-rq8f-rwqx.json | 4 +--- .../05/GHSA-pfhc-q2fx-w3r6/GHSA-pfhc-q2fx-w3r6.json | 12 +++--------- .../05/GHSA-pg8h-w6r7-prw8/GHSA-pg8h-w6r7-prw8.json | 4 +--- .../05/GHSA-pmg3-799q-7mhw/GHSA-pmg3-799q-7mhw.json | 8 ++------ .../05/GHSA-pmp4-m9v4-rh9x/GHSA-pmp4-m9v4-rh9x.json | 8 ++------ .../05/GHSA-pmqf-7mjc-42fw/GHSA-pmqf-7mjc-42fw.json | 8 ++------ .../05/GHSA-ppc8-jm88-74j3/GHSA-ppc8-jm88-74j3.json | 4 +--- .../05/GHSA-pqwj-3wvm-qp88/GHSA-pqwj-3wvm-qp88.json | 8 ++------ .../05/GHSA-pv65-5ch3-jfhw/GHSA-pv65-5ch3-jfhw.json | 8 ++------ .../05/GHSA-pv77-wcvm-2654/GHSA-pv77-wcvm-2654.json | 12 +++--------- .../05/GHSA-pvhr-37pj-qc85/GHSA-pvhr-37pj-qc85.json | 8 ++------ .../05/GHSA-pvr4-94gv-f258/GHSA-pvr4-94gv-f258.json | 12 +++--------- .../05/GHSA-px4x-jp5g-9393/GHSA-px4x-jp5g-9393.json | 12 +++--------- .../05/GHSA-q3c6-pmx6-78ph/GHSA-q3c6-pmx6-78ph.json | 12 +++--------- .../05/GHSA-q3rg-74f5-f285/GHSA-q3rg-74f5-f285.json | 8 ++------ .../05/GHSA-q4rq-wjvw-rh5x/GHSA-q4rq-wjvw-rh5x.json | 8 ++------ .../05/GHSA-q5g9-g6pf-f7fc/GHSA-q5g9-g6pf-f7fc.json | 8 ++------ .../05/GHSA-q5gc-v5g5-xc7w/GHSA-q5gc-v5g5-xc7w.json | 8 ++------ .../05/GHSA-q5rv-9jv5-mch3/GHSA-q5rv-9jv5-mch3.json | 12 +++--------- .../05/GHSA-q6p7-g6cv-v3pc/GHSA-q6p7-g6cv-v3pc.json | 4 +--- .../05/GHSA-q7fv-gh6c-gjj8/GHSA-q7fv-gh6c-gjj8.json | 12 +++--------- .../05/GHSA-q84m-97hf-554f/GHSA-q84m-97hf-554f.json | 12 +++--------- .../05/GHSA-q87v-4pg3-cw3m/GHSA-q87v-4pg3-cw3m.json | 12 +++--------- .../05/GHSA-qj6x-mqqf-cv4q/GHSA-qj6x-mqqf-cv4q.json | 4 +--- .../05/GHSA-qjff-v2rp-4qp6/GHSA-qjff-v2rp-4qp6.json | 12 +++--------- .../05/GHSA-qmf6-mw8h-6m87/GHSA-qmf6-mw8h-6m87.json | 8 ++------ .../05/GHSA-qpj5-f88q-x7px/GHSA-qpj5-f88q-x7px.json | 8 ++------ .../05/GHSA-qprq-p274-84fq/GHSA-qprq-p274-84fq.json | 8 ++------ .../05/GHSA-qqc3-wjqf-93r6/GHSA-qqc3-wjqf-93r6.json | 8 ++------ .../05/GHSA-qqjj-78p9-3ggg/GHSA-qqjj-78p9-3ggg.json | 12 +++--------- .../05/GHSA-qr8g-6983-rmpw/GHSA-qr8g-6983-rmpw.json | 8 ++------ .../05/GHSA-qv65-p3rx-5w9r/GHSA-qv65-p3rx-5w9r.json | 12 +++--------- .../05/GHSA-qw8r-vcwc-vjc9/GHSA-qw8r-vcwc-vjc9.json | 4 +--- .../05/GHSA-r26q-7hf9-jh9f/GHSA-r26q-7hf9-jh9f.json | 8 ++------ .../05/GHSA-r2qx-v35m-vpwx/GHSA-r2qx-v35m-vpwx.json | 12 +++--------- .../05/GHSA-r544-rgrc-h989/GHSA-r544-rgrc-h989.json | 8 ++------ .../05/GHSA-r56j-g745-wqmx/GHSA-r56j-g745-wqmx.json | 12 +++--------- .../05/GHSA-r62f-j7fr-mvvx/GHSA-r62f-j7fr-mvvx.json | 8 ++------ .../05/GHSA-r64g-5qwv-v2rf/GHSA-r64g-5qwv-v2rf.json | 8 ++------ .../05/GHSA-r7wc-3m9j-jf5m/GHSA-r7wc-3m9j-jf5m.json | 8 ++------ .../05/GHSA-r8q7-27f9-wfgm/GHSA-r8q7-27f9-wfgm.json | 12 +++--------- .../05/GHSA-r97v-vg2f-w8vp/GHSA-r97v-vg2f-w8vp.json | 8 ++------ .../05/GHSA-r9gv-5v96-9377/GHSA-r9gv-5v96-9377.json | 8 ++------ .../05/GHSA-rc3j-2886-4xqj/GHSA-rc3j-2886-4xqj.json | 4 +--- .../05/GHSA-rc5c-4735-fg86/GHSA-rc5c-4735-fg86.json | 12 +++--------- .../05/GHSA-rf85-wq6p-mgqc/GHSA-rf85-wq6p-mgqc.json | 8 ++------ .../05/GHSA-rhpf-c9pm-hccm/GHSA-rhpf-c9pm-hccm.json | 8 ++------ .../05/GHSA-rpg5-mh4w-rj47/GHSA-rpg5-mh4w-rj47.json | 4 +--- .../05/GHSA-rv27-69cw-6j7x/GHSA-rv27-69cw-6j7x.json | 8 ++------ .../05/GHSA-rwc4-5qx3-qg4w/GHSA-rwc4-5qx3-qg4w.json | 4 +--- .../05/GHSA-rx67-4gm4-fq5p/GHSA-rx67-4gm4-fq5p.json | 4 +--- .../05/GHSA-rx6x-hw9j-xhm3/GHSA-rx6x-hw9j-xhm3.json | 12 +++--------- .../05/GHSA-rx9g-gppv-rxr4/GHSA-rx9g-gppv-rxr4.json | 8 ++------ .../05/GHSA-v2hj-gg5v-x38m/GHSA-v2hj-gg5v-x38m.json | 4 +--- .../05/GHSA-v36w-44mj-4gpv/GHSA-v36w-44mj-4gpv.json | 4 +--- .../05/GHSA-v47h-2vrq-3gqp/GHSA-v47h-2vrq-3gqp.json | 8 ++------ .../05/GHSA-v4j4-xc7c-cpxx/GHSA-v4j4-xc7c-cpxx.json | 8 ++------ .../05/GHSA-v5j3-vp2m-wg9g/GHSA-v5j3-vp2m-wg9g.json | 8 ++------ .../05/GHSA-v75x-7vhx-wgjx/GHSA-v75x-7vhx-wgjx.json | 12 +++--------- .../05/GHSA-v82r-x75j-xwxm/GHSA-v82r-x75j-xwxm.json | 8 ++------ .../05/GHSA-v8x5-6v34-c2wf/GHSA-v8x5-6v34-c2wf.json | 8 ++------ .../05/GHSA-v956-pgc2-gjv5/GHSA-v956-pgc2-gjv5.json | 8 ++------ .../05/GHSA-v962-xcrm-xrgp/GHSA-v962-xcrm-xrgp.json | 4 +--- .../05/GHSA-vf4m-3266-pc73/GHSA-vf4m-3266-pc73.json | 12 +++--------- .../05/GHSA-vf9c-cf8r-7f65/GHSA-vf9c-cf8r-7f65.json | 8 ++------ .../05/GHSA-vm7j-vm2j-xwx7/GHSA-vm7j-vm2j-xwx7.json | 4 +--- .../05/GHSA-vp5j-p4fm-qpqr/GHSA-vp5j-p4fm-qpqr.json | 8 ++------ .../05/GHSA-vpc3-5fg5-f3ph/GHSA-vpc3-5fg5-f3ph.json | 12 +++--------- .../05/GHSA-vqr2-c24p-rh7p/GHSA-vqr2-c24p-rh7p.json | 8 ++------ .../05/GHSA-vw37-r7gf-9x5x/GHSA-vw37-r7gf-9x5x.json | 12 +++--------- .../05/GHSA-vw76-vm27-jx3r/GHSA-vw76-vm27-jx3r.json | 8 ++------ .../05/GHSA-vwgp-xcmc-qhw2/GHSA-vwgp-xcmc-qhw2.json | 8 ++------ .../05/GHSA-w2ph-9hg3-84vp/GHSA-w2ph-9hg3-84vp.json | 8 ++------ .../05/GHSA-w437-7x59-h779/GHSA-w437-7x59-h779.json | 12 +++--------- .../05/GHSA-w49w-3g45-4f86/GHSA-w49w-3g45-4f86.json | 4 +--- .../05/GHSA-w58h-cm85-98cc/GHSA-w58h-cm85-98cc.json | 8 ++------ .../05/GHSA-w7h9-m9jv-8365/GHSA-w7h9-m9jv-8365.json | 8 ++------ .../05/GHSA-w7wc-46r3-xm6r/GHSA-w7wc-46r3-xm6r.json | 4 +--- .../05/GHSA-w87r-3vgp-mx7q/GHSA-w87r-3vgp-mx7q.json | 4 +--- .../05/GHSA-w8x6-7r8c-rv7m/GHSA-w8x6-7r8c-rv7m.json | 8 ++------ .../05/GHSA-w9c3-h2rq-jrff/GHSA-w9c3-h2rq-jrff.json | 8 ++------ .../05/GHSA-w9gf-29cq-m7g8/GHSA-w9gf-29cq-m7g8.json | 8 ++------ .../05/GHSA-w9vx-9mgg-m33x/GHSA-w9vx-9mgg-m33x.json | 8 ++------ .../05/GHSA-wff6-cjwj-3wrr/GHSA-wff6-cjwj-3wrr.json | 4 +--- .../05/GHSA-wfrc-8ccq-qc52/GHSA-wfrc-8ccq-qc52.json | 8 ++------ .../05/GHSA-wg72-v28c-7j5h/GHSA-wg72-v28c-7j5h.json | 4 +--- .../05/GHSA-wgg7-mr9g-43v4/GHSA-wgg7-mr9g-43v4.json | 12 +++--------- .../05/GHSA-whqx-xf73-2457/GHSA-whqx-xf73-2457.json | 8 ++------ .../05/GHSA-whx8-g4mc-7mcq/GHSA-whx8-g4mc-7mcq.json | 4 +--- .../05/GHSA-wpg4-mwpc-j727/GHSA-wpg4-mwpc-j727.json | 12 +++--------- .../05/GHSA-wr4m-qx5p-qh76/GHSA-wr4m-qx5p-qh76.json | 8 ++------ .../05/GHSA-wr59-chw8-frf6/GHSA-wr59-chw8-frf6.json | 8 ++------ .../05/GHSA-wrwf-2jpv-j2gv/GHSA-wrwf-2jpv-j2gv.json | 8 ++------ .../05/GHSA-wvhm-q7jr-v337/GHSA-wvhm-q7jr-v337.json | 8 ++------ .../05/GHSA-wvm3-h9rx-qj3q/GHSA-wvm3-h9rx-qj3q.json | 8 ++------ .../05/GHSA-wvw8-m25h-jr69/GHSA-wvw8-m25h-jr69.json | 8 ++------ .../05/GHSA-wx4r-wc8q-mr5c/GHSA-wx4r-wc8q-mr5c.json | 8 ++------ .../05/GHSA-wx62-qwqx-p48q/GHSA-wx62-qwqx-p48q.json | 12 +++--------- .../05/GHSA-wx9h-q254-5w45/GHSA-wx9h-q254-5w45.json | 12 +++--------- .../05/GHSA-x5j5-724p-xrf3/GHSA-x5j5-724p-xrf3.json | 12 +++--------- .../05/GHSA-x5xg-2928-cq69/GHSA-x5xg-2928-cq69.json | 8 ++------ .../05/GHSA-x78c-jj5v-w79v/GHSA-x78c-jj5v-w79v.json | 4 +--- .../05/GHSA-x7gj-j23m-jj56/GHSA-x7gj-j23m-jj56.json | 12 +++--------- .../05/GHSA-x8m3-65hg-3375/GHSA-x8m3-65hg-3375.json | 4 +--- .../05/GHSA-xf4m-q2pp-fm2f/GHSA-xf4m-q2pp-fm2f.json | 12 +++--------- .../05/GHSA-xf5m-vvhx-6m6x/GHSA-xf5m-vvhx-6m6x.json | 12 +++--------- .../05/GHSA-xf65-pwfc-rxcm/GHSA-xf65-pwfc-rxcm.json | 4 +--- .../05/GHSA-xgcf-57xv-v846/GHSA-xgcf-57xv-v846.json | 8 ++------ .../05/GHSA-xm66-m73v-859r/GHSA-xm66-m73v-859r.json | 4 +--- .../05/GHSA-xp6m-4hv5-x9xm/GHSA-xp6m-4hv5-x9xm.json | 8 ++------ .../05/GHSA-xq8r-6v6q-5jcf/GHSA-xq8r-6v6q-5jcf.json | 8 ++------ .../05/GHSA-xqpg-rjjg-58q9/GHSA-xqpg-rjjg-58q9.json | 4 +--- .../05/GHSA-xqrq-qgmp-x7x4/GHSA-xqrq-qgmp-x7x4.json | 8 ++------ .../05/GHSA-xr36-f3cm-q4rx/GHSA-xr36-f3cm-q4rx.json | 12 +++--------- .../05/GHSA-xv9g-pwqj-hpwc/GHSA-xv9g-pwqj-hpwc.json | 4 +--- .../05/GHSA-xvch-fv6q-gx5m/GHSA-xvch-fv6q-gx5m.json | 8 ++------ .../05/GHSA-xx82-r4r9-35vq/GHSA-xx82-r4r9-35vq.json | 12 +++--------- .../05/GHSA-xxp3-mm76-hhf2/GHSA-xxp3-mm76-hhf2.json | 8 ++------ .../06/GHSA-35rf-7vhx-9phr/GHSA-35rf-7vhx-9phr.json | 4 +--- .../06/GHSA-94qm-cpmj-pvcv/GHSA-94qm-cpmj-pvcv.json | 4 +--- .../06/GHSA-ph5j-6pcv-6w76/GHSA-ph5j-6pcv-6w76.json | 4 +--- .../07/GHSA-9c48-27fx-7952/GHSA-9c48-27fx-7952.json | 4 +--- .../07/GHSA-j3rf-gq9q-v8hx/GHSA-j3rf-gq9q-v8hx.json | 4 +--- .../07/GHSA-p438-c5rw-cq9h/GHSA-p438-c5rw-cq9h.json | 4 +--- .../08/GHSA-2fx4-8cc3-3383/GHSA-2fx4-8cc3-3383.json | 4 +--- .../08/GHSA-2j9p-vq42-gfv7/GHSA-2j9p-vq42-gfv7.json | 4 +--- .../08/GHSA-2qxw-2g52-622j/GHSA-2qxw-2g52-622j.json | 8 ++------ .../08/GHSA-364p-6jx5-j5jv/GHSA-364p-6jx5-j5jv.json | 4 +--- .../08/GHSA-37cg-58rj-qc4c/GHSA-37cg-58rj-qc4c.json | 4 +--- .../08/GHSA-3r4j-8whf-548p/GHSA-3r4j-8whf-548p.json | 4 +--- .../08/GHSA-4pp6-84pp-4cqw/GHSA-4pp6-84pp-4cqw.json | 8 ++------ .../08/GHSA-56ph-j4ph-v6wm/GHSA-56ph-j4ph-v6wm.json | 4 +--- .../08/GHSA-583q-h2h6-7284/GHSA-583q-h2h6-7284.json | 4 +--- .../08/GHSA-63w7-6gxr-7jjw/GHSA-63w7-6gxr-7jjw.json | 4 +--- .../08/GHSA-666p-v2mj-cxrf/GHSA-666p-v2mj-cxrf.json | 4 +--- .../08/GHSA-66ch-52fc-j7qp/GHSA-66ch-52fc-j7qp.json | 4 +--- .../08/GHSA-66ff-2vxm-vc2p/GHSA-66ff-2vxm-vc2p.json | 4 +--- .../08/GHSA-68qv-6738-54qg/GHSA-68qv-6738-54qg.json | 4 +--- .../08/GHSA-6h5m-p5g6-rvmg/GHSA-6h5m-p5g6-rvmg.json | 4 +--- .../08/GHSA-6x3f-8jjw-fc39/GHSA-6x3f-8jjw-fc39.json | 8 ++------ .../08/GHSA-756m-3q55-x5q6/GHSA-756m-3q55-x5q6.json | 4 +--- .../08/GHSA-84cj-7rp5-q96h/GHSA-84cj-7rp5-q96h.json | 4 +--- .../08/GHSA-87f3-7c9g-2pgf/GHSA-87f3-7c9g-2pgf.json | 8 ++------ .../08/GHSA-8985-x52g-hv5h/GHSA-8985-x52g-hv5h.json | 8 ++------ .../08/GHSA-8cjr-r29r-m28v/GHSA-8cjr-r29r-m28v.json | 4 +--- .../08/GHSA-8h2f-qm6x-vhvp/GHSA-8h2f-qm6x-vhvp.json | 8 ++------ .../08/GHSA-8rfm-2x4g-8xh5/GHSA-8rfm-2x4g-8xh5.json | 4 +--- .../08/GHSA-8rx8-8w3f-mvq2/GHSA-8rx8-8w3f-mvq2.json | 4 +--- .../08/GHSA-9589-r2jc-qp9j/GHSA-9589-r2jc-qp9j.json | 4 +--- .../08/GHSA-9f42-fwfm-w8rf/GHSA-9f42-fwfm-w8rf.json | 4 +--- .../08/GHSA-9ww6-gj27-3x4p/GHSA-9ww6-gj27-3x4p.json | 4 +--- .../08/GHSA-c297-p4vx-rjg5/GHSA-c297-p4vx-rjg5.json | 8 ++------ .../08/GHSA-c2h4-63xc-8qh6/GHSA-c2h4-63xc-8qh6.json | 4 +--- .../08/GHSA-c7jr-pf92-3rq5/GHSA-c7jr-pf92-3rq5.json | 4 +--- .../08/GHSA-c99f-69w7-q9f5/GHSA-c99f-69w7-q9f5.json | 4 +--- .../08/GHSA-ccw4-c8wx-mv68/GHSA-ccw4-c8wx-mv68.json | 4 +--- .../08/GHSA-ch23-p68w-8rq5/GHSA-ch23-p68w-8rq5.json | 4 +--- .../08/GHSA-f326-p7mm-52h2/GHSA-f326-p7mm-52h2.json | 4 +--- .../08/GHSA-f6j2-46v4-qxj3/GHSA-f6j2-46v4-qxj3.json | 4 +--- .../08/GHSA-fwrj-wmpm-6349/GHSA-fwrj-wmpm-6349.json | 8 ++------ .../08/GHSA-gc43-xmc2-2fjj/GHSA-gc43-xmc2-2fjj.json | 4 +--- .../08/GHSA-h2h9-xpc4-69jw/GHSA-h2h9-xpc4-69jw.json | 8 ++------ .../08/GHSA-h2xj-c24f-922g/GHSA-h2xj-c24f-922g.json | 8 ++------ .../08/GHSA-hc4f-4mvr-7cv9/GHSA-hc4f-4mvr-7cv9.json | 4 +--- .../08/GHSA-hj5h-38wf-8hcg/GHSA-hj5h-38wf-8hcg.json | 4 +--- .../08/GHSA-hm5j-w2qf-6392/GHSA-hm5j-w2qf-6392.json | 8 ++------ .../08/GHSA-j53q-96h4-245m/GHSA-j53q-96h4-245m.json | 8 ++------ .../08/GHSA-j722-r3rg-rv33/GHSA-j722-r3rg-rv33.json | 4 +--- .../08/GHSA-j759-h67r-3669/GHSA-j759-h67r-3669.json | 4 +--- .../08/GHSA-j7g9-fcw9-wxcf/GHSA-j7g9-fcw9-wxcf.json | 4 +--- .../08/GHSA-j8q5-rwmr-9hg8/GHSA-j8q5-rwmr-9hg8.json | 4 +--- .../08/GHSA-j937-h7hx-83cg/GHSA-j937-h7hx-83cg.json | 8 ++------ .../08/GHSA-j9fj-58m4-qmc7/GHSA-j9fj-58m4-qmc7.json | 4 +--- .../08/GHSA-j9xq-f5hm-3m48/GHSA-j9xq-f5hm-3m48.json | 4 +--- .../08/GHSA-jg6x-rh3w-6pp3/GHSA-jg6x-rh3w-6pp3.json | 8 ++------ .../08/GHSA-jj55-r28f-x5pv/GHSA-jj55-r28f-x5pv.json | 4 +--- .../08/GHSA-jv78-qfm7-p5qh/GHSA-jv78-qfm7-p5qh.json | 4 +--- .../08/GHSA-jwcm-wfw4-3v7h/GHSA-jwcm-wfw4-3v7h.json | 4 +--- .../08/GHSA-jx9x-9jjm-chf3/GHSA-jx9x-9jjm-chf3.json | 8 ++------ .../08/GHSA-mrcj-wmm5-vj35/GHSA-mrcj-wmm5-vj35.json | 4 +--- .../08/GHSA-mvpx-6xp2-66jp/GHSA-mvpx-6xp2-66jp.json | 4 +--- .../08/GHSA-p738-hfmq-65wm/GHSA-p738-hfmq-65wm.json | 4 +--- .../08/GHSA-p9vw-hw52-76qx/GHSA-p9vw-hw52-76qx.json | 4 +--- .../08/GHSA-pc8p-f8jw-v3vr/GHSA-pc8p-f8jw-v3vr.json | 4 +--- .../08/GHSA-pgvw-9q7p-5vwx/GHSA-pgvw-9q7p-5vwx.json | 4 +--- .../08/GHSA-q6pv-mfgh-724w/GHSA-q6pv-mfgh-724w.json | 4 +--- .../08/GHSA-qfcc-9m6r-r23m/GHSA-qfcc-9m6r-r23m.json | 4 +--- .../08/GHSA-qghg-p9wq-272p/GHSA-qghg-p9wq-272p.json | 4 +--- .../08/GHSA-qxpm-8p5x-pr6j/GHSA-qxpm-8p5x-pr6j.json | 4 +--- .../08/GHSA-r9m5-7q57-2f88/GHSA-r9m5-7q57-2f88.json | 8 ++------ .../08/GHSA-rc6f-9g56-mr6q/GHSA-rc6f-9g56-mr6q.json | 4 +--- .../08/GHSA-rpmr-9m52-wm2f/GHSA-rpmr-9m52-wm2f.json | 4 +--- .../08/GHSA-rvx6-587f-87jf/GHSA-rvx6-587f-87jf.json | 4 +--- .../08/GHSA-v2fj-q75c-65mr/GHSA-v2fj-q75c-65mr.json | 4 +--- .../08/GHSA-v492-qvfp-r274/GHSA-v492-qvfp-r274.json | 4 +--- .../08/GHSA-v82p-wrg2-wj3m/GHSA-v82p-wrg2-wj3m.json | 4 +--- .../08/GHSA-vm2m-5jfc-whq2/GHSA-vm2m-5jfc-whq2.json | 8 ++------ .../08/GHSA-vr4q-67qg-vvf6/GHSA-vr4q-67qg-vvf6.json | 4 +--- .../08/GHSA-vwg4-pm8m-728q/GHSA-vwg4-pm8m-728q.json | 8 ++------ .../08/GHSA-vx2x-wm5h-864r/GHSA-vx2x-wm5h-864r.json | 4 +--- .../08/GHSA-w2jp-m4xr-vgr3/GHSA-w2jp-m4xr-vgr3.json | 4 +--- .../08/GHSA-w9xf-vff6-27gq/GHSA-w9xf-vff6-27gq.json | 4 +--- .../08/GHSA-wggx-2gxw-9rgf/GHSA-wggx-2gxw-9rgf.json | 4 +--- .../08/GHSA-wpf4-f6g8-892r/GHSA-wpf4-f6g8-892r.json | 4 +--- .../08/GHSA-wvx3-vg8q-qgjv/GHSA-wvx3-vg8q-qgjv.json | 4 +--- .../08/GHSA-wx3h-r76h-pp8v/GHSA-wx3h-r76h-pp8v.json | 8 ++------ .../08/GHSA-x27v-rjqh-f4xc/GHSA-x27v-rjqh-f4xc.json | 4 +--- .../08/GHSA-xfpm-q238-hr33/GHSA-xfpm-q238-hr33.json | 4 +--- .../08/GHSA-xjp5-5ph6-c66c/GHSA-xjp5-5ph6-c66c.json | 4 +--- .../08/GHSA-xqp4-ghh2-wgpj/GHSA-xqp4-ghh2-wgpj.json | 4 +--- .../08/GHSA-xxx4-63qf-8v87/GHSA-xxx4-63qf-8v87.json | 4 +--- .../09/GHSA-2jhj-7g8h-j3h6/GHSA-2jhj-7g8h-j3h6.json | 4 +--- .../09/GHSA-2mhv-543f-h64j/GHSA-2mhv-543f-h64j.json | 4 +--- .../09/GHSA-2prc-g792-pf54/GHSA-2prc-g792-pf54.json | 4 +--- .../09/GHSA-32p8-qq6w-3v8c/GHSA-32p8-qq6w-3v8c.json | 4 +--- .../09/GHSA-359c-w88w-w728/GHSA-359c-w88w-w728.json | 4 +--- .../09/GHSA-497f-57wj-pwc5/GHSA-497f-57wj-pwc5.json | 4 +--- .../09/GHSA-49x8-xrpp-pg4g/GHSA-49x8-xrpp-pg4g.json | 4 +--- .../09/GHSA-4cm4-j9qp-hc8j/GHSA-4cm4-j9qp-hc8j.json | 4 +--- .../09/GHSA-4rqm-jp2r-7wr9/GHSA-4rqm-jp2r-7wr9.json | 4 +--- .../09/GHSA-4vx6-fgh9-hr42/GHSA-4vx6-fgh9-hr42.json | 4 +--- .../09/GHSA-4x55-vrfr-pm6m/GHSA-4x55-vrfr-pm6m.json | 4 +--- .../09/GHSA-57ww-qgjv-3g3c/GHSA-57ww-qgjv-3g3c.json | 4 +--- .../09/GHSA-5c8r-r849-xgpp/GHSA-5c8r-r849-xgpp.json | 4 +--- .../09/GHSA-5jcq-9vgg-wvh8/GHSA-5jcq-9vgg-wvh8.json | 4 +--- .../09/GHSA-5mv9-mrmj-3h2c/GHSA-5mv9-mrmj-3h2c.json | 4 +--- .../09/GHSA-6655-7w5j-5h7j/GHSA-6655-7w5j-5h7j.json | 4 +--- .../09/GHSA-6g28-qxjm-5vh2/GHSA-6g28-qxjm-5vh2.json | 4 +--- .../09/GHSA-72hv-vf28-v4jh/GHSA-72hv-vf28-v4jh.json | 4 +--- .../09/GHSA-7f59-xm25-c224/GHSA-7f59-xm25-c224.json | 8 ++------ .../09/GHSA-7jvj-73qc-2776/GHSA-7jvj-73qc-2776.json | 4 +--- .../09/GHSA-7mx3-7x4v-qcc4/GHSA-7mx3-7x4v-qcc4.json | 4 +--- .../09/GHSA-7vq8-69px-r6f8/GHSA-7vq8-69px-r6f8.json | 4 +--- .../09/GHSA-89v6-g7j9-xj43/GHSA-89v6-g7j9-xj43.json | 4 +--- .../09/GHSA-9qhq-2jfg-322h/GHSA-9qhq-2jfg-322h.json | 4 +--- .../09/GHSA-9rmc-xf66-rv68/GHSA-9rmc-xf66-rv68.json | 4 +--- .../09/GHSA-9xgv-7fjq-ccw2/GHSA-9xgv-7fjq-ccw2.json | 4 +--- .../09/GHSA-cj46-35hf-rv96/GHSA-cj46-35hf-rv96.json | 4 +--- .../09/GHSA-f7r8-4372-249c/GHSA-f7r8-4372-249c.json | 4 +--- .../09/GHSA-fqrq-3m9w-g64q/GHSA-fqrq-3m9w-g64q.json | 4 +--- .../09/GHSA-g57h-8f8w-pj8x/GHSA-g57h-8f8w-pj8x.json | 4 +--- .../09/GHSA-g97g-7jjm-wphr/GHSA-g97g-7jjm-wphr.json | 4 +--- .../09/GHSA-ggx5-q6p9-g86r/GHSA-ggx5-q6p9-g86r.json | 4 +--- .../09/GHSA-gm39-37pc-phq8/GHSA-gm39-37pc-phq8.json | 4 +--- .../09/GHSA-grwc-h387-x9h2/GHSA-grwc-h387-x9h2.json | 4 +--- .../09/GHSA-h2gg-hfpq-2f33/GHSA-h2gg-hfpq-2f33.json | 4 +--- .../09/GHSA-h57h-9x5h-v7jm/GHSA-h57h-9x5h-v7jm.json | 4 +--- .../09/GHSA-h8mj-33h3-x93p/GHSA-h8mj-33h3-x93p.json | 4 +--- .../09/GHSA-h8xg-c9f9-hpm2/GHSA-h8xg-c9f9-hpm2.json | 4 +--- .../09/GHSA-hrx4-q45p-xfr7/GHSA-hrx4-q45p-xfr7.json | 4 +--- .../09/GHSA-hwhq-r32m-f746/GHSA-hwhq-r32m-f746.json | 4 +--- .../09/GHSA-j998-7c5c-mpgq/GHSA-j998-7c5c-mpgq.json | 4 +--- .../09/GHSA-jff7-jw68-rh7r/GHSA-jff7-jw68-rh7r.json | 4 +--- .../09/GHSA-jfpq-w2g4-wcpm/GHSA-jfpq-w2g4-wcpm.json | 4 +--- .../09/GHSA-m3pr-2cjq-7j6v/GHSA-m3pr-2cjq-7j6v.json | 4 +--- .../09/GHSA-m5fw-3wf6-9558/GHSA-m5fw-3wf6-9558.json | 4 +--- .../09/GHSA-mc5c-3hv5-5hjw/GHSA-mc5c-3hv5-5hjw.json | 4 +--- .../09/GHSA-mfvg-37xj-9w4x/GHSA-mfvg-37xj-9w4x.json | 4 +--- .../09/GHSA-p2h9-m2hm-4gjp/GHSA-p2h9-m2hm-4gjp.json | 8 ++------ .../09/GHSA-p44g-35x8-7hjv/GHSA-p44g-35x8-7hjv.json | 4 +--- .../09/GHSA-pqc2-jw96-c94g/GHSA-pqc2-jw96-c94g.json | 4 +--- .../09/GHSA-pv7j-rpwp-pp9x/GHSA-pv7j-rpwp-pp9x.json | 4 +--- .../09/GHSA-px3v-c44g-gp46/GHSA-px3v-c44g-gp46.json | 4 +--- .../09/GHSA-q2pg-hwx8-x39w/GHSA-q2pg-hwx8-x39w.json | 4 +--- .../09/GHSA-q6rw-39p5-wphc/GHSA-q6rw-39p5-wphc.json | 8 ++------ .../09/GHSA-q992-g8ch-j442/GHSA-q992-g8ch-j442.json | 4 +--- .../09/GHSA-qc5v-rcvf-wgrv/GHSA-qc5v-rcvf-wgrv.json | 4 +--- .../09/GHSA-qww5-j4p3-7mj5/GHSA-qww5-j4p3-7mj5.json | 4 +--- .../09/GHSA-qx9p-wm6x-9cmf/GHSA-qx9p-wm6x-9cmf.json | 4 +--- .../09/GHSA-r5p6-3838-g6hr/GHSA-r5p6-3838-g6hr.json | 4 +--- .../09/GHSA-r5qg-xhv7-vh2x/GHSA-r5qg-xhv7-vh2x.json | 4 +--- .../09/GHSA-v427-m4xv-r7xq/GHSA-v427-m4xv-r7xq.json | 4 +--- .../09/GHSA-w768-wqpr-555x/GHSA-w768-wqpr-555x.json | 4 +--- .../09/GHSA-wcwj-rgxv-c28p/GHSA-wcwj-rgxv-c28p.json | 4 +--- .../09/GHSA-wfff-jr55-cv4r/GHSA-wfff-jr55-cv4r.json | 4 +--- .../09/GHSA-wgj9-cwmq-97x8/GHSA-wgj9-cwmq-97x8.json | 4 +--- .../09/GHSA-whwp-qcc5-m653/GHSA-whwp-qcc5-m653.json | 4 +--- .../09/GHSA-x249-wwhp-9fc5/GHSA-x249-wwhp-9fc5.json | 4 +--- .../09/GHSA-x537-5w7x-8g44/GHSA-x537-5w7x-8g44.json | 4 +--- .../09/GHSA-x88j-4p5j-6442/GHSA-x88j-4p5j-6442.json | 4 +--- .../09/GHSA-xfhf-jh8m-pmv3/GHSA-xfhf-jh8m-pmv3.json | 4 +--- .../10/GHSA-344p-v638-q9gc/GHSA-344p-v638-q9gc.json | 4 +--- .../10/GHSA-3mfm-pfv2-vmrp/GHSA-3mfm-pfv2-vmrp.json | 4 +--- .../10/GHSA-hjfq-c3jw-r92p/GHSA-hjfq-c3jw-r92p.json | 4 +--- .../10/GHSA-hjmr-8x7c-687c/GHSA-hjmr-8x7c-687c.json | 4 +--- .../10/GHSA-jq7j-25x9-p735/GHSA-jq7j-25x9-p735.json | 4 +--- .../10/GHSA-phrm-6c7x-j62r/GHSA-phrm-6c7x-j62r.json | 4 +--- .../10/GHSA-w8wm-5qpx-c8j6/GHSA-w8wm-5qpx-c8j6.json | 4 +--- .../11/GHSA-2prh-76mq-h4gx/GHSA-2prh-76mq-h4gx.json | 4 +--- .../11/GHSA-9j68-9p63-wh2j/GHSA-9j68-9p63-wh2j.json | 4 +--- .../11/GHSA-fw8h-qc74-r2c2/GHSA-fw8h-qc74-r2c2.json | 4 +--- .../12/GHSA-r7m8-qmv8-g6vm/GHSA-r7m8-qmv8-g6vm.json | 4 +--- .../04/GHSA-2mpf-fq5j-4hgp/GHSA-2mpf-fq5j-4hgp.json | 8 ++------ .../04/GHSA-5cp4-5pxh-47cm/GHSA-5cp4-5pxh-47cm.json | 4 +--- .../04/GHSA-hv7f-m7x4-mc78/GHSA-hv7f-m7x4-mc78.json | 8 ++------ .../04/GHSA-q4xw-qv7c-q8pp/GHSA-q4xw-qv7c-q8pp.json | 4 +--- .../04/GHSA-rx97-mvj7-rx8w/GHSA-rx97-mvj7-rx8w.json | 4 +--- .../04/GHSA-wh99-p93p-g825/GHSA-wh99-p93p-g825.json | 8 ++------ 962 files changed, 2040 insertions(+), 6120 deletions(-) diff --git a/advisories/github-reviewed/2017/10/GHSA-29gr-w57f-rpfw/GHSA-29gr-w57f-rpfw.json b/advisories/github-reviewed/2017/10/GHSA-29gr-w57f-rpfw/GHSA-29gr-w57f-rpfw.json index 3ee78b6849f..2ba83082472 100644 --- a/advisories/github-reviewed/2017/10/GHSA-29gr-w57f-rpfw/GHSA-29gr-w57f-rpfw.json +++ b/advisories/github-reviewed/2017/10/GHSA-29gr-w57f-rpfw/GHSA-29gr-w57f-rpfw.json @@ -8,9 +8,7 @@ ], "summary": "actionpack vulnerable to Path Traversal", "details": "Directory traversal vulnerability in `actionpack/lib/action_dispatch/middleware/static.rb` in Action Pack in Ruby on Rails 3.x before 3.2.20, 4.0.x before 4.0.11, 4.1.x before 4.1.7, and 4.2.x before 4.2.0.beta3, when `serve_static_assets` is enabled, allows remote attackers to determine the existence of files outside the application root via a `/..%2F` sequence.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2017/10/GHSA-2xjj-5x6h-8vmf/GHSA-2xjj-5x6h-8vmf.json b/advisories/github-reviewed/2017/10/GHSA-2xjj-5x6h-8vmf/GHSA-2xjj-5x6h-8vmf.json index 421caf40231..ddeb7e774d6 100644 --- a/advisories/github-reviewed/2017/10/GHSA-2xjj-5x6h-8vmf/GHSA-2xjj-5x6h-8vmf.json +++ b/advisories/github-reviewed/2017/10/GHSA-2xjj-5x6h-8vmf/GHSA-2xjj-5x6h-8vmf.json @@ -8,9 +8,7 @@ ], "summary": "Cross-site Scripting in actionpack", "details": "Cross-site scripting (XSS) vulnerability in `actionpack/lib/action_view/helpers/form_options_helper.rb` in the select helper in Ruby on Rails 3.0.x before 3.0.12, 3.1.x before 3.1.4, and 3.2.x before 3.2.2 allows remote attackers to inject arbitrary web script or HTML via vectors involving certain generation of OPTION elements within SELECT elements.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2017/10/GHSA-3crr-9vmg-864v/GHSA-3crr-9vmg-864v.json b/advisories/github-reviewed/2017/10/GHSA-3crr-9vmg-864v/GHSA-3crr-9vmg-864v.json index 4340878f6ed..882fdf38871 100644 --- a/advisories/github-reviewed/2017/10/GHSA-3crr-9vmg-864v/GHSA-3crr-9vmg-864v.json +++ b/advisories/github-reviewed/2017/10/GHSA-3crr-9vmg-864v/GHSA-3crr-9vmg-864v.json @@ -8,9 +8,7 @@ ], "summary": "Active Record Improper Input Validation", "details": "The Active Record component in Ruby on Rails 2.3.x before 2.3.18, 3.1.x before 3.1.12, and 3.2.x before 3.2.13 processes certain queries by converting hash keys to symbols, which allows remote attackers to cause a denial of service via crafted input to a where method.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2017/10/GHSA-4936-rj25-6wm6/GHSA-4936-rj25-6wm6.json b/advisories/github-reviewed/2017/10/GHSA-4936-rj25-6wm6/GHSA-4936-rj25-6wm6.json index c8fcc0c6614..247d69acf8e 100644 --- a/advisories/github-reviewed/2017/10/GHSA-4936-rj25-6wm6/GHSA-4936-rj25-6wm6.json +++ b/advisories/github-reviewed/2017/10/GHSA-4936-rj25-6wm6/GHSA-4936-rj25-6wm6.json @@ -8,9 +8,7 @@ ], "summary": "nori contains Improper Input Validation", "details": "The nori gem 2.0.x before 2.0.2, 1.1.x before 1.1.4, and 1.0.x before 1.0.3 for Ruby does not properly restrict casts of string values, which allows remote attackers to conduct object-injection attacks and execute arbitrary code, or cause a denial of service (memory and CPU consumption) involving nested XML entity references, by leveraging Action Pack support for (1) YAML type conversion or (2) Symbol type conversion, a similar vulnerability to CVE-2013-0156.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2017/10/GHSA-4whc-pp4x-9pf3/GHSA-4whc-pp4x-9pf3.json b/advisories/github-reviewed/2017/10/GHSA-4whc-pp4x-9pf3/GHSA-4whc-pp4x-9pf3.json index 9b2e7e86d55..50e8c6984c5 100644 --- a/advisories/github-reviewed/2017/10/GHSA-4whc-pp4x-9pf3/GHSA-4whc-pp4x-9pf3.json +++ b/advisories/github-reviewed/2017/10/GHSA-4whc-pp4x-9pf3/GHSA-4whc-pp4x-9pf3.json @@ -8,9 +8,7 @@ ], "summary": "jquery-rails and jquery-ujs subject to Exposure of Sensitive Information", "details": "jquery_ujs.js in jquery-rails before 3.1.3 and 4.x before 4.0.4 and rails.js in jquery-ujs before 1.0.4, as used with Ruby on Rails 3.x and 4.x, allow remote attackers to bypass the Same Origin Policy, and trigger transmission of a CSRF token to a different-domain web server, via a leading space character in a URL within an attribute value.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2017/10/GHSA-699m-mcjm-9cw8/GHSA-699m-mcjm-9cw8.json b/advisories/github-reviewed/2017/10/GHSA-699m-mcjm-9cw8/GHSA-699m-mcjm-9cw8.json index 5badfe08e04..7aa0ab0944a 100644 --- a/advisories/github-reviewed/2017/10/GHSA-699m-mcjm-9cw8/GHSA-699m-mcjm-9cw8.json +++ b/advisories/github-reviewed/2017/10/GHSA-699m-mcjm-9cw8/GHSA-699m-mcjm-9cw8.json @@ -8,9 +8,7 @@ ], "summary": "actionpack vulnerable to Cross-site Scripting", "details": "Cross-site scripting (XSS) vulnerability in `actionpack/lib/action_view/helpers/translation_helper.rb` in the internationalization component in Ruby on Rails 3.x before 3.2.16 and 4.x before 4.0.2 allows remote attackers to inject arbitrary web script or HTML via a crafted string that triggers generation of a fallback string by the i18n gem.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2017/10/GHSA-6h5q-96hp-9jgm/GHSA-6h5q-96hp-9jgm.json b/advisories/github-reviewed/2017/10/GHSA-6h5q-96hp-9jgm/GHSA-6h5q-96hp-9jgm.json index 553be0bb8ce..9b03e58881c 100644 --- a/advisories/github-reviewed/2017/10/GHSA-6h5q-96hp-9jgm/GHSA-6h5q-96hp-9jgm.json +++ b/advisories/github-reviewed/2017/10/GHSA-6h5q-96hp-9jgm/GHSA-6h5q-96hp-9jgm.json @@ -8,9 +8,7 @@ ], "summary": "actionpack vulnerable to Cross-site Scripting", "details": "Cross-site scripting (XSS) vulnerability in the `number_to_currency` helper in `actionpack/lib/action_view/helpers/number_helper.rb` in Ruby on Rails before 3.2.16 and 4.x before 4.0.2 allows remote attackers to inject arbitrary web script or HTML via the unit parameter.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2017/10/GHSA-85r7-w5mv-c849/GHSA-85r7-w5mv-c849.json b/advisories/github-reviewed/2017/10/GHSA-85r7-w5mv-c849/GHSA-85r7-w5mv-c849.json index a186272f122..b874e4a5d94 100644 --- a/advisories/github-reviewed/2017/10/GHSA-85r7-w5mv-c849/GHSA-85r7-w5mv-c849.json +++ b/advisories/github-reviewed/2017/10/GHSA-85r7-w5mv-c849/GHSA-85r7-w5mv-c849.json @@ -8,9 +8,7 @@ ], "summary": "Rack Vulnerable to Path Traversal", "details": "`rack/file.rb` (`Rack::File`) in Rack 1.5.x before 1.5.2 and 1.4.x before 1.4.5 allows attackers to access arbitrary files outside the intended root directory via a crafted `PATH_INFO` environment variable, probably a directory traversal vulnerability that is remotely exploitable, aka \"symlink path traversals.\"", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2017/10/GHSA-959j-5g9v-3fpq/GHSA-959j-5g9v-3fpq.json b/advisories/github-reviewed/2017/10/GHSA-959j-5g9v-3fpq/GHSA-959j-5g9v-3fpq.json index d8175f6dd9e..5f5f745434e 100644 --- a/advisories/github-reviewed/2017/10/GHSA-959j-5g9v-3fpq/GHSA-959j-5g9v-3fpq.json +++ b/advisories/github-reviewed/2017/10/GHSA-959j-5g9v-3fpq/GHSA-959j-5g9v-3fpq.json @@ -8,9 +8,7 @@ ], "summary": "Paratrooper-newrelic Exposes of Sensitive Information to an Unauthorized Actor", "details": "The paratrooper-newrelic gem 1.0.1 for Ruby allows local users to obtain the X-Api-Key value by listing the curl process.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2017/10/GHSA-99ch-8mvp-g7m5/GHSA-99ch-8mvp-g7m5.json b/advisories/github-reviewed/2017/10/GHSA-99ch-8mvp-g7m5/GHSA-99ch-8mvp-g7m5.json index ed29cfbace5..f911de43a8a 100644 --- a/advisories/github-reviewed/2017/10/GHSA-99ch-8mvp-g7m5/GHSA-99ch-8mvp-g7m5.json +++ b/advisories/github-reviewed/2017/10/GHSA-99ch-8mvp-g7m5/GHSA-99ch-8mvp-g7m5.json @@ -8,9 +8,7 @@ ], "summary": "md2pdf allows context-dependent attackers to execute arbitrary commands via shell metacharacters in a filename", "details": "`converter.rb` in the md2pdf gem 0.0.1 for Ruby allows context-dependent attackers to execute arbitrary commands via shell metacharacters in a filename.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -59,9 +57,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": true, "github_reviewed_at": "2020-06-16T21:28:02Z", diff --git a/advisories/github-reviewed/2017/10/GHSA-9rf5-jm6f-2fmm/GHSA-9rf5-jm6f-2fmm.json b/advisories/github-reviewed/2017/10/GHSA-9rf5-jm6f-2fmm/GHSA-9rf5-jm6f-2fmm.json index 2ee316c2fe1..b267f691bda 100644 --- a/advisories/github-reviewed/2017/10/GHSA-9rf5-jm6f-2fmm/GHSA-9rf5-jm6f-2fmm.json +++ b/advisories/github-reviewed/2017/10/GHSA-9rf5-jm6f-2fmm/GHSA-9rf5-jm6f-2fmm.json @@ -8,9 +8,7 @@ ], "summary": "Active Record subject to strong parameters protection bypass", "details": "`activerecord/lib/active_record/relation/query_methods.rb` in Active Record in Ruby on Rails 4.0.x before 4.0.9 and 4.1.x before 4.1.5 allows remote attackers to bypass the strong parameters protection mechanism via crafted input to an application that makes `create_with` calls.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2017/10/GHSA-gppp-5xc5-wfpx/GHSA-gppp-5xc5-wfpx.json b/advisories/github-reviewed/2017/10/GHSA-gppp-5xc5-wfpx/GHSA-gppp-5xc5-wfpx.json index ca780c12a21..5108857023e 100644 --- a/advisories/github-reviewed/2017/10/GHSA-gppp-5xc5-wfpx/GHSA-gppp-5xc5-wfpx.json +++ b/advisories/github-reviewed/2017/10/GHSA-gppp-5xc5-wfpx/GHSA-gppp-5xc5-wfpx.json @@ -8,9 +8,7 @@ ], "summary": "Active Record allows bypassing of database-query restrictions", "details": "Ruby on Rails 3.0.x before 3.0.19, 3.1.x before 3.1.10, and 3.2.x before 3.2.11 does not properly consider differences in parameter handling between the Active Record component and the JSON implementation, which allows remote attackers to bypass intended database-query restrictions and perform NULL checks or trigger missing WHERE clauses via a crafted request, as demonstrated by certain \"[nil]\" values, a related issue to CVE-2012-2660 and CVE-2012-2694.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2018/07/GHSA-2xvj-j3qh-x8c3/GHSA-2xvj-j3qh-x8c3.json b/advisories/github-reviewed/2018/07/GHSA-2xvj-j3qh-x8c3/GHSA-2xvj-j3qh-x8c3.json index 91d284d2ce3..dc54751e6b8 100644 --- a/advisories/github-reviewed/2018/07/GHSA-2xvj-j3qh-x8c3/GHSA-2xvj-j3qh-x8c3.json +++ b/advisories/github-reviewed/2018/07/GHSA-2xvj-j3qh-x8c3/GHSA-2xvj-j3qh-x8c3.json @@ -8,9 +8,7 @@ ], "summary": "private_address_check contains race condition", "details": "The private_address_check ruby gem before 0.5.0 is vulnerable to a time-of-check time-of-use (TOCTOU) race condition due to the address the socket uses not being checked. DNS entries with a TTL of 0 can trigger this case where the initial resolution is a public address but the subsequent resolution is a private address.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/05/GHSA-9hhc-cc6c-99hh/GHSA-9hhc-cc6c-99hh.json b/advisories/github-reviewed/2022/05/GHSA-9hhc-cc6c-99hh/GHSA-9hhc-cc6c-99hh.json index d9f4da4cb42..f1efd7c212b 100644 --- a/advisories/github-reviewed/2022/05/GHSA-9hhc-cc6c-99hh/GHSA-9hhc-cc6c-99hh.json +++ b/advisories/github-reviewed/2022/05/GHSA-9hhc-cc6c-99hh/GHSA-9hhc-cc6c-99hh.json @@ -8,9 +8,7 @@ ], "summary": "OpenNMS Horizon vulnerable to XSS", "details": "In OpenNMS Horizon, versions opennms-18.0.0-1 through opennms-27.1.0-1; OpenNMS Meridian, versions meridian-foundation-2015.1.0-1 through meridian-foundation-2019.1.18-1; meridian-foundation-2020.1.0-1 through meridian-foundation-2020.1.7-1 are vulnerable to Stored Cross-Site Scripting, since the function `createRequisitionedNode()` does not perform any validation checks on the input sent to the `node-label` parameter. Due to this flaw an attacker could inject an arbitrary script which will be stored in the database.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/05/GHSA-w5v7-q2j4-fvpf/GHSA-w5v7-q2j4-fvpf.json b/advisories/github-reviewed/2022/05/GHSA-w5v7-q2j4-fvpf/GHSA-w5v7-q2j4-fvpf.json index f85f0a29da2..ff108a69b03 100644 --- a/advisories/github-reviewed/2022/05/GHSA-w5v7-q2j4-fvpf/GHSA-w5v7-q2j4-fvpf.json +++ b/advisories/github-reviewed/2022/05/GHSA-w5v7-q2j4-fvpf/GHSA-w5v7-q2j4-fvpf.json @@ -8,9 +8,7 @@ ], "summary": "Jenkins Cross-site Scripting vulnerability", "details": "Cross-site scripting (XSS) vulnerability in Jenkins before 1.606 and LTS before 1.596.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2015-1813.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/09/GHSA-36jr-mh4h-2g58/GHSA-36jr-mh4h-2g58.json b/advisories/github-reviewed/2022/09/GHSA-36jr-mh4h-2g58/GHSA-36jr-mh4h-2g58.json index 7ab23e982ec..938a58e9640 100644 --- a/advisories/github-reviewed/2022/09/GHSA-36jr-mh4h-2g58/GHSA-36jr-mh4h-2g58.json +++ b/advisories/github-reviewed/2022/09/GHSA-36jr-mh4h-2g58/GHSA-36jr-mh4h-2g58.json @@ -3,14 +3,10 @@ "id": "GHSA-36jr-mh4h-2g58", "modified": "2022-09-29T14:12:55Z", "published": "2022-09-29T14:12:55Z", - "aliases": [ - - ], + "aliases": [], "summary": "d3-color vulnerable to ReDoS", "details": "The d3-color module provides representations for various color spaces in the browser. Versions prior to 3.1.0 are vulnerable to a Regular expression Denial of Service. This issue has been patched in version 3.1.0. There are no known workarounds.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/09/GHSA-qj9p-jvmw-82rh/GHSA-qj9p-jvmw-82rh.json b/advisories/github-reviewed/2022/09/GHSA-qj9p-jvmw-82rh/GHSA-qj9p-jvmw-82rh.json index c849fc89c92..263a7716aaa 100644 --- a/advisories/github-reviewed/2022/09/GHSA-qj9p-jvmw-82rh/GHSA-qj9p-jvmw-82rh.json +++ b/advisories/github-reviewed/2022/09/GHSA-qj9p-jvmw-82rh/GHSA-qj9p-jvmw-82rh.json @@ -58,9 +58,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": true, "github_reviewed_at": "2022-09-29T14:37:12Z", diff --git a/advisories/unreviewed/2022/04/GHSA-229g-v59m-656v/GHSA-229g-v59m-656v.json b/advisories/unreviewed/2022/04/GHSA-229g-v59m-656v/GHSA-229g-v59m-656v.json index 5fee3abd82d..adb4fdf1f70 100644 --- a/advisories/unreviewed/2022/04/GHSA-229g-v59m-656v/GHSA-229g-v59m-656v.json +++ b/advisories/unreviewed/2022/04/GHSA-229g-v59m-656v/GHSA-229g-v59m-656v.json @@ -7,12 +7,8 @@ "CVE-2000-0828" ], "details": "Buffer overflow in ddicgi.exe in Mobius DocumentDirect for the Internet 1.2 allows remote attackers to execute arbitrary commands via a long User-Agent parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-23ww-2jh7-98f9/GHSA-23ww-2jh7-98f9.json b/advisories/unreviewed/2022/04/GHSA-23ww-2jh7-98f9/GHSA-23ww-2jh7-98f9.json index 7b65b8cbb81..cdcb2d8ca02 100644 --- a/advisories/unreviewed/2022/04/GHSA-23ww-2jh7-98f9/GHSA-23ww-2jh7-98f9.json +++ b/advisories/unreviewed/2022/04/GHSA-23ww-2jh7-98f9/GHSA-23ww-2jh7-98f9.json @@ -7,12 +7,8 @@ "CVE-2000-0835" ], "details": "search.dll Sambar ISAPI Search utility in Sambar Server 4.4 Beta 3 allows remote attackers to read arbitrary directories by specifying the directory in the query parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-24q9-49c8-294h/GHSA-24q9-49c8-294h.json b/advisories/unreviewed/2022/04/GHSA-24q9-49c8-294h/GHSA-24q9-49c8-294h.json index 86bf927f344..c3748e40327 100644 --- a/advisories/unreviewed/2022/04/GHSA-24q9-49c8-294h/GHSA-24q9-49c8-294h.json +++ b/advisories/unreviewed/2022/04/GHSA-24q9-49c8-294h/GHSA-24q9-49c8-294h.json @@ -7,12 +7,8 @@ "CVE-2000-0808" ], "details": "The seed generation mechanism in the inter-module S/Key authentication mechanism in Check Point VPN-1/FireWall-1 4.1 and earlier allows remote attackers to bypass authentication via a brute force attack, aka \"One-time (s/key) Password Authentication.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-265j-44f5-74rh/GHSA-265j-44f5-74rh.json b/advisories/unreviewed/2022/04/GHSA-265j-44f5-74rh/GHSA-265j-44f5-74rh.json index 01a9b3e17c2..4c9c4bcdeab 100644 --- a/advisories/unreviewed/2022/04/GHSA-265j-44f5-74rh/GHSA-265j-44f5-74rh.json +++ b/advisories/unreviewed/2022/04/GHSA-265j-44f5-74rh/GHSA-265j-44f5-74rh.json @@ -7,12 +7,8 @@ "CVE-2000-0859" ], "details": "The web configuration server for NTMail V5 and V6 allows remote attackers to cause a denial of service via a series of partial HTTP requests.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-26wj-g9q6-7j24/GHSA-26wj-g9q6-7j24.json b/advisories/unreviewed/2022/04/GHSA-26wj-g9q6-7j24/GHSA-26wj-g9q6-7j24.json index 6abba670491..9a9189c9eef 100644 --- a/advisories/unreviewed/2022/04/GHSA-26wj-g9q6-7j24/GHSA-26wj-g9q6-7j24.json +++ b/advisories/unreviewed/2022/04/GHSA-26wj-g9q6-7j24/GHSA-26wj-g9q6-7j24.json @@ -7,12 +7,8 @@ "CVE-2000-1019" ], "details": "Search engine in Ultraseek 3.1 and 3.1.10 (aka Inktomi Search) allows remote attackers to cause a denial of service via a malformed URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-272q-6m92-rrfr/GHSA-272q-6m92-rrfr.json b/advisories/unreviewed/2022/04/GHSA-272q-6m92-rrfr/GHSA-272q-6m92-rrfr.json index c71e1038794..f2790027c96 100644 --- a/advisories/unreviewed/2022/04/GHSA-272q-6m92-rrfr/GHSA-272q-6m92-rrfr.json +++ b/advisories/unreviewed/2022/04/GHSA-272q-6m92-rrfr/GHSA-272q-6m92-rrfr.json @@ -7,12 +7,8 @@ "CVE-2000-1039" ], "details": "Various TCP/IP stacks and network applications allow remote attackers to cause a denial of service by flooding a target host with TCP connection attempts and completing the TCP/IP handshake without maintaining the connection state on the attacker host, aka the \"NAPTHA\" class of vulnerabilities. NOTE: this candidate may change significantly as the security community discusses the technical nature of NAPTHA and learns more about the affected applications. This candidate is at a higher level of abstraction than is typical for CVE.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2cp4-259f-w2g6/GHSA-2cp4-259f-w2g6.json b/advisories/unreviewed/2022/04/GHSA-2cp4-259f-w2g6/GHSA-2cp4-259f-w2g6.json index 5f3ead17e0d..671d4c8e6a4 100644 --- a/advisories/unreviewed/2022/04/GHSA-2cp4-259f-w2g6/GHSA-2cp4-259f-w2g6.json +++ b/advisories/unreviewed/2022/04/GHSA-2cp4-259f-w2g6/GHSA-2cp4-259f-w2g6.json @@ -7,12 +7,8 @@ "CVE-2000-0827" ], "details": "Buffer overflow in the web authorization form of Mobius DocumentDirect for the Internet 1.2 allows remote attackers to cause a denial of service or execute arbitrary commands via a long username.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2f2v-rgmc-w6fp/GHSA-2f2v-rgmc-w6fp.json b/advisories/unreviewed/2022/04/GHSA-2f2v-rgmc-w6fp/GHSA-2f2v-rgmc-w6fp.json index 2e66ce85210..96a390da4fb 100644 --- a/advisories/unreviewed/2022/04/GHSA-2f2v-rgmc-w6fp/GHSA-2f2v-rgmc-w6fp.json +++ b/advisories/unreviewed/2022/04/GHSA-2f2v-rgmc-w6fp/GHSA-2f2v-rgmc-w6fp.json @@ -7,12 +7,8 @@ "CVE-2000-0860" ], "details": "The file upload capability in PHP versions 3 and 4 allows remote attackers to read arbitrary files by setting hidden form fields whose names match the names of internal PHP script variables.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2f3p-79j4-gp2g/GHSA-2f3p-79j4-gp2g.json b/advisories/unreviewed/2022/04/GHSA-2f3p-79j4-gp2g/GHSA-2f3p-79j4-gp2g.json index f6d72844590..1865105b298 100644 --- a/advisories/unreviewed/2022/04/GHSA-2f3p-79j4-gp2g/GHSA-2f3p-79j4-gp2g.json +++ b/advisories/unreviewed/2022/04/GHSA-2f3p-79j4-gp2g/GHSA-2f3p-79j4-gp2g.json @@ -7,12 +7,8 @@ "CVE-2000-0929" ], "details": "Microsoft Windows Media Player 7 allows attackers to cause a denial of service in RTF-enabled email clients via an embedded OCX control that is not closed properly, aka the \"OCX Attachment\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2fj9-2rp2-mmg4/GHSA-2fj9-2rp2-mmg4.json b/advisories/unreviewed/2022/04/GHSA-2fj9-2rp2-mmg4/GHSA-2fj9-2rp2-mmg4.json index 4abba4b8961..6e854d5e1f8 100644 --- a/advisories/unreviewed/2022/04/GHSA-2fj9-2rp2-mmg4/GHSA-2fj9-2rp2-mmg4.json +++ b/advisories/unreviewed/2022/04/GHSA-2fj9-2rp2-mmg4/GHSA-2fj9-2rp2-mmg4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2hrr-6728-qg8v/GHSA-2hrr-6728-qg8v.json b/advisories/unreviewed/2022/04/GHSA-2hrr-6728-qg8v/GHSA-2hrr-6728-qg8v.json index ec330451071..9f9755bee79 100644 --- a/advisories/unreviewed/2022/04/GHSA-2hrr-6728-qg8v/GHSA-2hrr-6728-qg8v.json +++ b/advisories/unreviewed/2022/04/GHSA-2hrr-6728-qg8v/GHSA-2hrr-6728-qg8v.json @@ -7,12 +7,8 @@ "CVE-2000-0873" ], "details": "netstat in AIX 4.x.x does not properly restrict access to the -Zi option, which allows local users to clear network interface statistics and possibly hide evidence of unusual network activities.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2hxf-gmcq-wh7p/GHSA-2hxf-gmcq-wh7p.json b/advisories/unreviewed/2022/04/GHSA-2hxf-gmcq-wh7p/GHSA-2hxf-gmcq-wh7p.json index 20a0334b293..221e87ad8db 100644 --- a/advisories/unreviewed/2022/04/GHSA-2hxf-gmcq-wh7p/GHSA-2hxf-gmcq-wh7p.json +++ b/advisories/unreviewed/2022/04/GHSA-2hxf-gmcq-wh7p/GHSA-2hxf-gmcq-wh7p.json @@ -7,12 +7,8 @@ "CVE-2000-0811" ], "details": "Auction Weaver 1.0 through 1.04 allows remote attackers to read arbitrary files via a .. (dot dot) attack on the username or bidfile form fields.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2j9j-c9fr-pwc8/GHSA-2j9j-c9fr-pwc8.json b/advisories/unreviewed/2022/04/GHSA-2j9j-c9fr-pwc8/GHSA-2j9j-c9fr-pwc8.json index dc8e68912e2..b50d045ed8e 100644 --- a/advisories/unreviewed/2022/04/GHSA-2j9j-c9fr-pwc8/GHSA-2j9j-c9fr-pwc8.json +++ b/advisories/unreviewed/2022/04/GHSA-2j9j-c9fr-pwc8/GHSA-2j9j-c9fr-pwc8.json @@ -7,12 +7,8 @@ "CVE-2000-1048" ], "details": "Directory traversal vulnerability in the logfile service of Wingate 4.1 Beta A and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack via an HTTP GET request that uses encoded characters in the URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2jjf-m6gp-mr6f/GHSA-2jjf-m6gp-mr6f.json b/advisories/unreviewed/2022/04/GHSA-2jjf-m6gp-mr6f/GHSA-2jjf-m6gp-mr6f.json index e5a8acf72f9..9262f112efc 100644 --- a/advisories/unreviewed/2022/04/GHSA-2jjf-m6gp-mr6f/GHSA-2jjf-m6gp-mr6f.json +++ b/advisories/unreviewed/2022/04/GHSA-2jjf-m6gp-mr6f/GHSA-2jjf-m6gp-mr6f.json @@ -7,12 +7,8 @@ "CVE-2000-1049" ], "details": "Allaire JRun 3.0 http servlet server allows remote attackers to cause a denial of service via a URL that contains a long string of \".\" characters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2pf5-35fc-x4fg/GHSA-2pf5-35fc-x4fg.json b/advisories/unreviewed/2022/04/GHSA-2pf5-35fc-x4fg/GHSA-2pf5-35fc-x4fg.json index ba1f87ba386..a14211fa241 100644 --- a/advisories/unreviewed/2022/04/GHSA-2pf5-35fc-x4fg/GHSA-2pf5-35fc-x4fg.json +++ b/advisories/unreviewed/2022/04/GHSA-2pf5-35fc-x4fg/GHSA-2pf5-35fc-x4fg.json @@ -7,12 +7,8 @@ "CVE-2000-1032" ], "details": "The client authentication interface for Check Point Firewall-1 4.0 and earlier generates different error messages for invalid usernames versus invalid passwords, which allows remote attackers to identify valid usernames on the firewall.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2pvg-4x8f-qx36/GHSA-2pvg-4x8f-qx36.json b/advisories/unreviewed/2022/04/GHSA-2pvg-4x8f-qx36/GHSA-2pvg-4x8f-qx36.json index a3d034c1c86..973112e4eb6 100644 --- a/advisories/unreviewed/2022/04/GHSA-2pvg-4x8f-qx36/GHSA-2pvg-4x8f-qx36.json +++ b/advisories/unreviewed/2022/04/GHSA-2pvg-4x8f-qx36/GHSA-2pvg-4x8f-qx36.json @@ -7,12 +7,8 @@ "CVE-2000-0845" ], "details": "kdebug daemon (kdebugd) in Digital Unix 4.0F allows remote attackers to read arbitrary files by specifying the full file name in the initialization packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2qm3-6pw4-478j/GHSA-2qm3-6pw4-478j.json b/advisories/unreviewed/2022/04/GHSA-2qm3-6pw4-478j/GHSA-2qm3-6pw4-478j.json index d6a96d1d674..8361ff36b07 100644 --- a/advisories/unreviewed/2022/04/GHSA-2qm3-6pw4-478j/GHSA-2qm3-6pw4-478j.json +++ b/advisories/unreviewed/2022/04/GHSA-2qm3-6pw4-478j/GHSA-2qm3-6pw4-478j.json @@ -7,12 +7,8 @@ "CVE-2000-1030" ], "details": "CS&T CorporateTime for the Web returns different error messages for invalid usernames and invalid passwords, which allows remote attackers to determine valid usernames on the server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2rxj-58vc-g6vw/GHSA-2rxj-58vc-g6vw.json b/advisories/unreviewed/2022/04/GHSA-2rxj-58vc-g6vw/GHSA-2rxj-58vc-g6vw.json index c1013b85290..ba36acfc469 100644 --- a/advisories/unreviewed/2022/04/GHSA-2rxj-58vc-g6vw/GHSA-2rxj-58vc-g6vw.json +++ b/advisories/unreviewed/2022/04/GHSA-2rxj-58vc-g6vw/GHSA-2rxj-58vc-g6vw.json @@ -7,12 +7,8 @@ "CVE-2000-0863" ], "details": "Buffer overflow in listmanager earlier than 2.105.1 allows local users to gain additional privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2vq2-p76v-j88p/GHSA-2vq2-p76v-j88p.json b/advisories/unreviewed/2022/04/GHSA-2vq2-p76v-j88p/GHSA-2vq2-p76v-j88p.json index 6ce8ca1b95c..2b5fe1c8962 100644 --- a/advisories/unreviewed/2022/04/GHSA-2vq2-p76v-j88p/GHSA-2vq2-p76v-j88p.json +++ b/advisories/unreviewed/2022/04/GHSA-2vq2-p76v-j88p/GHSA-2vq2-p76v-j88p.json @@ -7,12 +7,8 @@ "CVE-2000-1043" ], "details": "Format string vulnerability in ypserv in Mandrake Linux 7.1 and earlier, and possibly other Linux operating systems, allows an attacker to gain root privileges when ypserv is built without a vsyslog() function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2wh5-5jf4-829c/GHSA-2wh5-5jf4-829c.json b/advisories/unreviewed/2022/04/GHSA-2wh5-5jf4-829c/GHSA-2wh5-5jf4-829c.json index 073002bc273..37df8f65e8b 100644 --- a/advisories/unreviewed/2022/04/GHSA-2wh5-5jf4-829c/GHSA-2wh5-5jf4-829c.json +++ b/advisories/unreviewed/2022/04/GHSA-2wh5-5jf4-829c/GHSA-2wh5-5jf4-829c.json @@ -7,12 +7,8 @@ "CVE-2000-0943" ], "details": "Buffer overflow in bftp daemon (bftpd) 1.0.11 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long USER command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-32j7-w96w-jq92/GHSA-32j7-w96w-jq92.json b/advisories/unreviewed/2022/04/GHSA-32j7-w96w-jq92/GHSA-32j7-w96w-jq92.json index 3d682593ecf..16fc6ac3e9d 100644 --- a/advisories/unreviewed/2022/04/GHSA-32j7-w96w-jq92/GHSA-32j7-w96w-jq92.json +++ b/advisories/unreviewed/2022/04/GHSA-32j7-w96w-jq92/GHSA-32j7-w96w-jq92.json @@ -7,12 +7,8 @@ "CVE-2000-1042" ], "details": "Buffer overflow in ypserv in Mandrake Linux 7.1 and earlier, and possibly other Linux operating systems, allows an attacker to gain root privileges when ypserv is built without a vsyslog() function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-34hw-5cr2-j645/GHSA-34hw-5cr2-j645.json b/advisories/unreviewed/2022/04/GHSA-34hw-5cr2-j645/GHSA-34hw-5cr2-j645.json index 88d4ad48ac4..0f74deaa534 100644 --- a/advisories/unreviewed/2022/04/GHSA-34hw-5cr2-j645/GHSA-34hw-5cr2-j645.json +++ b/advisories/unreviewed/2022/04/GHSA-34hw-5cr2-j645/GHSA-34hw-5cr2-j645.json @@ -7,12 +7,8 @@ "CVE-2000-0991" ], "details": "Buffer overflow in Hilgraeve, Inc. HyperTerminal client on Windows 98, ME, and 2000 allows remote attackers to execute arbitrary commands via a long telnet URL, aka the \"HyperTerminal Buffer Overflow\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-36cf-5wv3-q7jj/GHSA-36cf-5wv3-q7jj.json b/advisories/unreviewed/2022/04/GHSA-36cf-5wv3-q7jj/GHSA-36cf-5wv3-q7jj.json index 2e02f3f1362..b673a4443ea 100644 --- a/advisories/unreviewed/2022/04/GHSA-36cf-5wv3-q7jj/GHSA-36cf-5wv3-q7jj.json +++ b/advisories/unreviewed/2022/04/GHSA-36cf-5wv3-q7jj/GHSA-36cf-5wv3-q7jj.json @@ -7,12 +7,8 @@ "CVE-2000-0855" ], "details": "SunFTP build 9(1) allows remote attackers to cause a denial of service by connecting to the server and disconnecting before sending a newline.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-37mp-pj43-3c3x/GHSA-37mp-pj43-3c3x.json b/advisories/unreviewed/2022/04/GHSA-37mp-pj43-3c3x/GHSA-37mp-pj43-3c3x.json index dee52dbaf2b..d1fc36d9adc 100644 --- a/advisories/unreviewed/2022/04/GHSA-37mp-pj43-3c3x/GHSA-37mp-pj43-3c3x.json +++ b/advisories/unreviewed/2022/04/GHSA-37mp-pj43-3c3x/GHSA-37mp-pj43-3c3x.json @@ -7,12 +7,8 @@ "CVE-2000-1044" ], "details": "Format string vulnerability in ypbind-mt in SuSE SuSE-6.2, and possibly other Linux operating systems, allows an attacker to gain root privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-37v3-5w3g-89m6/GHSA-37v3-5w3g-89m6.json b/advisories/unreviewed/2022/04/GHSA-37v3-5w3g-89m6/GHSA-37v3-5w3g-89m6.json index 963e8787b7a..ac712cf0d15 100644 --- a/advisories/unreviewed/2022/04/GHSA-37v3-5w3g-89m6/GHSA-37v3-5w3g-89m6.json +++ b/advisories/unreviewed/2022/04/GHSA-37v3-5w3g-89m6/GHSA-37v3-5w3g-89m6.json @@ -7,12 +7,8 @@ "CVE-2000-0954" ], "details": "Shambala Server 4.5 stores passwords in plaintext, which could allow local users to obtain the passwords and compromise the server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3932-xh88-q34x/GHSA-3932-xh88-q34x.json b/advisories/unreviewed/2022/04/GHSA-3932-xh88-q34x/GHSA-3932-xh88-q34x.json index 8ed78e87620..f4a2be2fec6 100644 --- a/advisories/unreviewed/2022/04/GHSA-3932-xh88-q34x/GHSA-3932-xh88-q34x.json +++ b/advisories/unreviewed/2022/04/GHSA-3932-xh88-q34x/GHSA-3932-xh88-q34x.json @@ -7,12 +7,8 @@ "CVE-2000-0880" ], "details": "LPPlus creates the lpdprocess file with world-writeable permissions, which allows local users to kill arbitrary processes by specifying an alternate process ID and using the setuid dcclpdshut program to kill the process that was specified in the lpdprocess file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3993-w4q6-qwmf/GHSA-3993-w4q6-qwmf.json b/advisories/unreviewed/2022/04/GHSA-3993-w4q6-qwmf/GHSA-3993-w4q6-qwmf.json index 9cd18d2be1a..382c6f45a65 100644 --- a/advisories/unreviewed/2022/04/GHSA-3993-w4q6-qwmf/GHSA-3993-w4q6-qwmf.json +++ b/advisories/unreviewed/2022/04/GHSA-3993-w4q6-qwmf/GHSA-3993-w4q6-qwmf.json @@ -7,12 +7,8 @@ "CVE-2000-0966" ], "details": "Buffer overflows in lpspooler in the fileset PrinterMgmt.LP-SPOOL of HP-UX 11.0 and earlier allows local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3fmr-qqcp-fr3c/GHSA-3fmr-qqcp-fr3c.json b/advisories/unreviewed/2022/04/GHSA-3fmr-qqcp-fr3c/GHSA-3fmr-qqcp-fr3c.json index 9ce2990770f..2cfeaa86506 100644 --- a/advisories/unreviewed/2022/04/GHSA-3fmr-qqcp-fr3c/GHSA-3fmr-qqcp-fr3c.json +++ b/advisories/unreviewed/2022/04/GHSA-3fmr-qqcp-fr3c/GHSA-3fmr-qqcp-fr3c.json @@ -7,12 +7,8 @@ "CVE-2000-0971" ], "details": "Avirt Mail 4.0 and 4.2 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long \"RCPT TO\" or \"MAIL FROM\" command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3gpv-hgg9-gfg5/GHSA-3gpv-hgg9-gfg5.json b/advisories/unreviewed/2022/04/GHSA-3gpv-hgg9-gfg5/GHSA-3gpv-hgg9-gfg5.json index d113679f3d8..edeb971d945 100644 --- a/advisories/unreviewed/2022/04/GHSA-3gpv-hgg9-gfg5/GHSA-3gpv-hgg9-gfg5.json +++ b/advisories/unreviewed/2022/04/GHSA-3gpv-hgg9-gfg5/GHSA-3gpv-hgg9-gfg5.json @@ -7,12 +7,8 @@ "CVE-2000-0884" ], "details": "IIS 4.0 and 5.0 allows remote attackers to read documents outside of the web root, and possibly execute arbitrary commands, via malformed URLs that contain UNICODE encoded characters, aka the \"Web Server Folder Traversal\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3gvj-xgpf-vh28/GHSA-3gvj-xgpf-vh28.json b/advisories/unreviewed/2022/04/GHSA-3gvj-xgpf-vh28/GHSA-3gvj-xgpf-vh28.json index 8a3c683c649..f3aabfe61cc 100644 --- a/advisories/unreviewed/2022/04/GHSA-3gvj-xgpf-vh28/GHSA-3gvj-xgpf-vh28.json +++ b/advisories/unreviewed/2022/04/GHSA-3gvj-xgpf-vh28/GHSA-3gvj-xgpf-vh28.json @@ -7,12 +7,8 @@ "CVE-2000-0883" ], "details": "The default configuration of mod_perl for Apache as installed on Mandrake Linux 6.1 through 7.1 sets the /perl/ directory to be browseable, which allows remote attackers to list the contents of that directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3ph2-3pv3-wjv3/GHSA-3ph2-3pv3-wjv3.json b/advisories/unreviewed/2022/04/GHSA-3ph2-3pv3-wjv3/GHSA-3ph2-3pv3-wjv3.json index ad274082e86..be43ecee1f5 100644 --- a/advisories/unreviewed/2022/04/GHSA-3ph2-3pv3-wjv3/GHSA-3ph2-3pv3-wjv3.json +++ b/advisories/unreviewed/2022/04/GHSA-3ph2-3pv3-wjv3/GHSA-3ph2-3pv3-wjv3.json @@ -7,12 +7,8 @@ "CVE-2000-0983" ], "details": "Microsoft NetMeeting with Remote Desktop Sharing enabled allows remote attackers to cause a denial of service (CPU utilization) via a sequence of null bytes to the NetMeeting port, aka the \"NetMeeting Desktop Sharing\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3pw7-m4qj-fpv2/GHSA-3pw7-m4qj-fpv2.json b/advisories/unreviewed/2022/04/GHSA-3pw7-m4qj-fpv2/GHSA-3pw7-m4qj-fpv2.json index 5b9e82eec1c..6b19130ac89 100644 --- a/advisories/unreviewed/2022/04/GHSA-3pw7-m4qj-fpv2/GHSA-3pw7-m4qj-fpv2.json +++ b/advisories/unreviewed/2022/04/GHSA-3pw7-m4qj-fpv2/GHSA-3pw7-m4qj-fpv2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3qqr-rjhh-6ph5/GHSA-3qqr-rjhh-6ph5.json b/advisories/unreviewed/2022/04/GHSA-3qqr-rjhh-6ph5/GHSA-3qqr-rjhh-6ph5.json index 3d30af0e740..730e1032a41 100644 --- a/advisories/unreviewed/2022/04/GHSA-3qqr-rjhh-6ph5/GHSA-3qqr-rjhh-6ph5.json +++ b/advisories/unreviewed/2022/04/GHSA-3qqr-rjhh-6ph5/GHSA-3qqr-rjhh-6ph5.json @@ -7,12 +7,8 @@ "CVE-2000-1017" ], "details": "Webteachers Webdata allows remote attackers with valid Webdata accounts to read arbitrary files by posting a request to import the file into the WebData database.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3qr6-8fp7-xj4j/GHSA-3qr6-8fp7-xj4j.json b/advisories/unreviewed/2022/04/GHSA-3qr6-8fp7-xj4j/GHSA-3qr6-8fp7-xj4j.json index 9d0cc9f7df8..a899817ba35 100644 --- a/advisories/unreviewed/2022/04/GHSA-3qr6-8fp7-xj4j/GHSA-3qr6-8fp7-xj4j.json +++ b/advisories/unreviewed/2022/04/GHSA-3qr6-8fp7-xj4j/GHSA-3qr6-8fp7-xj4j.json @@ -7,12 +7,8 @@ "CVE-2000-1024" ], "details": "eWave ServletExec 3.0C and earlier does not restrict access to the UploadServlet Java/JSP servlet, which allows remote attackers to upload files and execute arbitrary commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3wxj-j5hp-5gfc/GHSA-3wxj-j5hp-5gfc.json b/advisories/unreviewed/2022/04/GHSA-3wxj-j5hp-5gfc/GHSA-3wxj-j5hp-5gfc.json index 51ba721206d..19f307075b0 100644 --- a/advisories/unreviewed/2022/04/GHSA-3wxj-j5hp-5gfc/GHSA-3wxj-j5hp-5gfc.json +++ b/advisories/unreviewed/2022/04/GHSA-3wxj-j5hp-5gfc/GHSA-3wxj-j5hp-5gfc.json @@ -7,12 +7,8 @@ "CVE-2000-0854" ], "details": "When a Microsoft Office 2000 document is launched, the directory of that document is first used to locate DLL's such as riched20.dll and msi.dll, which could allow an attacker to execute arbitrary commands by inserting a Trojan Horse DLL into the same directory as the document.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-436h-wrjr-5hj3/GHSA-436h-wrjr-5hj3.json b/advisories/unreviewed/2022/04/GHSA-436h-wrjr-5hj3/GHSA-436h-wrjr-5hj3.json index 4a4fcbfb282..eaa53b69e69 100644 --- a/advisories/unreviewed/2022/04/GHSA-436h-wrjr-5hj3/GHSA-436h-wrjr-5hj3.json +++ b/advisories/unreviewed/2022/04/GHSA-436h-wrjr-5hj3/GHSA-436h-wrjr-5hj3.json @@ -7,12 +7,8 @@ "CVE-2000-0937" ], "details": "Samba Web Administration Tool (SWAT) in Samba 2.0.7 does not log login attempts in which the username is correct but the password is wrong, which allows remote attackers to conduct brute force password guessing attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-43g6-p2gr-59p7/GHSA-43g6-p2gr-59p7.json b/advisories/unreviewed/2022/04/GHSA-43g6-p2gr-59p7/GHSA-43g6-p2gr-59p7.json index 281d9ca88cb..5dc0a97933b 100644 --- a/advisories/unreviewed/2022/04/GHSA-43g6-p2gr-59p7/GHSA-43g6-p2gr-59p7.json +++ b/advisories/unreviewed/2022/04/GHSA-43g6-p2gr-59p7/GHSA-43g6-p2gr-59p7.json @@ -7,12 +7,8 @@ "CVE-2000-0914" ], "details": "OpenBSD 2.6 and earlier allows remote attackers to cause a denial of service by flooding the server with ARP requests.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-44qf-4fcj-9qhq/GHSA-44qf-4fcj-9qhq.json b/advisories/unreviewed/2022/04/GHSA-44qf-4fcj-9qhq/GHSA-44qf-4fcj-9qhq.json index 131d992172a..c1d070a091d 100644 --- a/advisories/unreviewed/2022/04/GHSA-44qf-4fcj-9qhq/GHSA-44qf-4fcj-9qhq.json +++ b/advisories/unreviewed/2022/04/GHSA-44qf-4fcj-9qhq/GHSA-44qf-4fcj-9qhq.json @@ -7,12 +7,8 @@ "CVE-2000-0818" ], "details": "The default installation for the Oracle listener program 7.3.4, 8.0.6, and 8.1.6 allows an attacker to cause logging information to be appended to arbitrary files and execute commands via the SET TRC_FILE or SET LOG_FILE commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-46w5-pg92-gjg9/GHSA-46w5-pg92-gjg9.json b/advisories/unreviewed/2022/04/GHSA-46w5-pg92-gjg9/GHSA-46w5-pg92-gjg9.json index 2edd40b357c..42097ea1e72 100644 --- a/advisories/unreviewed/2022/04/GHSA-46w5-pg92-gjg9/GHSA-46w5-pg92-gjg9.json +++ b/advisories/unreviewed/2022/04/GHSA-46w5-pg92-gjg9/GHSA-46w5-pg92-gjg9.json @@ -7,12 +7,8 @@ "CVE-2000-0848" ], "details": "Buffer overflow in IBM WebSphere web application server (WAS) allows remote attackers to execute arbitrary commands via a long Host: request header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-47qc-7v5j-7pg6/GHSA-47qc-7v5j-7pg6.json b/advisories/unreviewed/2022/04/GHSA-47qc-7v5j-7pg6/GHSA-47qc-7v5j-7pg6.json index e36882f3a45..88f9691c70f 100644 --- a/advisories/unreviewed/2022/04/GHSA-47qc-7v5j-7pg6/GHSA-47qc-7v5j-7pg6.json +++ b/advisories/unreviewed/2022/04/GHSA-47qc-7v5j-7pg6/GHSA-47qc-7v5j-7pg6.json @@ -7,12 +7,8 @@ "CVE-2000-1062" ], "details": "Buffer overflow in the FTP service in HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4c57-rm7h-p47f/GHSA-4c57-rm7h-p47f.json b/advisories/unreviewed/2022/04/GHSA-4c57-rm7h-p47f/GHSA-4c57-rm7h-p47f.json index 00a0ce59769..4f0e35b8d65 100644 --- a/advisories/unreviewed/2022/04/GHSA-4c57-rm7h-p47f/GHSA-4c57-rm7h-p47f.json +++ b/advisories/unreviewed/2022/04/GHSA-4c57-rm7h-p47f/GHSA-4c57-rm7h-p47f.json @@ -7,12 +7,8 @@ "CVE-2000-0975" ], "details": "Directory traversal vulnerability in apexec.pl in Anaconda Foundation Directory allows remote attackers to read arbitrary files via a .. (dot dot) attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4c95-3x3c-f7fm/GHSA-4c95-3x3c-f7fm.json b/advisories/unreviewed/2022/04/GHSA-4c95-3x3c-f7fm/GHSA-4c95-3x3c-f7fm.json index 4d764dcd2d4..f321e4020f3 100644 --- a/advisories/unreviewed/2022/04/GHSA-4c95-3x3c-f7fm/GHSA-4c95-3x3c-f7fm.json +++ b/advisories/unreviewed/2022/04/GHSA-4c95-3x3c-f7fm/GHSA-4c95-3x3c-f7fm.json @@ -7,12 +7,8 @@ "CVE-2000-0890" ], "details": "periodic in FreeBSD 4.1.1 and earlier, and possibly other operating systems, allows local users to overwrite arbitrary files via a symlink attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4fj3-9m57-2fx2/GHSA-4fj3-9m57-2fx2.json b/advisories/unreviewed/2022/04/GHSA-4fj3-9m57-2fx2/GHSA-4fj3-9m57-2fx2.json index 8783ee89195..24ee1b94a5e 100644 --- a/advisories/unreviewed/2022/04/GHSA-4fj3-9m57-2fx2/GHSA-4fj3-9m57-2fx2.json +++ b/advisories/unreviewed/2022/04/GHSA-4fj3-9m57-2fx2/GHSA-4fj3-9m57-2fx2.json @@ -7,12 +7,8 @@ "CVE-2000-0857" ], "details": "The logging capability in muh 2.05d IRC server does not properly cleanse user-injected format strings, which allows remote attackers to cause a denial of service or execute arbitrary commands via a malformed nickname.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4grc-97wg-m67h/GHSA-4grc-97wg-m67h.json b/advisories/unreviewed/2022/04/GHSA-4grc-97wg-m67h/GHSA-4grc-97wg-m67h.json index 55483a823bc..1aa01894cca 100644 --- a/advisories/unreviewed/2022/04/GHSA-4grc-97wg-m67h/GHSA-4grc-97wg-m67h.json +++ b/advisories/unreviewed/2022/04/GHSA-4grc-97wg-m67h/GHSA-4grc-97wg-m67h.json @@ -7,12 +7,8 @@ "CVE-2000-0941" ], "details": "Kootenay Web KW Whois 1.0 CGI program allows remote attackers to execute arbitrary commands via shell metacharacters in the \"whois\" parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4jwj-9x7x-p48c/GHSA-4jwj-9x7x-p48c.json b/advisories/unreviewed/2022/04/GHSA-4jwj-9x7x-p48c/GHSA-4jwj-9x7x-p48c.json index 3adb7de8983..82601e9a679 100644 --- a/advisories/unreviewed/2022/04/GHSA-4jwj-9x7x-p48c/GHSA-4jwj-9x7x-p48c.json +++ b/advisories/unreviewed/2022/04/GHSA-4jwj-9x7x-p48c/GHSA-4jwj-9x7x-p48c.json @@ -7,12 +7,8 @@ "CVE-2000-1018" ], "details": "shred 1.0 file wiping utility does not properly open a file for overwriting or flush its buffers, which prevents shred from properly replacing the file's data and allows local users to recover the file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4m4v-vqhc-mhjp/GHSA-4m4v-vqhc-mhjp.json b/advisories/unreviewed/2022/04/GHSA-4m4v-vqhc-mhjp/GHSA-4m4v-vqhc-mhjp.json index fd6c06fd8a6..0dcc34f7bbc 100644 --- a/advisories/unreviewed/2022/04/GHSA-4m4v-vqhc-mhjp/GHSA-4m4v-vqhc-mhjp.json +++ b/advisories/unreviewed/2022/04/GHSA-4m4v-vqhc-mhjp/GHSA-4m4v-vqhc-mhjp.json @@ -7,12 +7,8 @@ "CVE-2000-0834" ], "details": "The Windows 2000 telnet client attempts to perform NTLM authentication by default, which allows remote attackers to capture and replay the NTLM challenge/response via a telnet:// URL that points to the malicious server, aka the \"Windows 2000 Telnet Client NTLM Authentication\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4qvg-86rr-5qx2/GHSA-4qvg-86rr-5qx2.json b/advisories/unreviewed/2022/04/GHSA-4qvg-86rr-5qx2/GHSA-4qvg-86rr-5qx2.json index f9c76ea116d..9b7ee73961a 100644 --- a/advisories/unreviewed/2022/04/GHSA-4qvg-86rr-5qx2/GHSA-4qvg-86rr-5qx2.json +++ b/advisories/unreviewed/2022/04/GHSA-4qvg-86rr-5qx2/GHSA-4qvg-86rr-5qx2.json @@ -7,12 +7,8 @@ "CVE-2000-0963" ], "details": "Buffer overflow in ncurses library allows local users to execute arbitrary commands via long environmental information such as TERM or TERMINFO_DIRS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4r2x-95jf-w8hr/GHSA-4r2x-95jf-w8hr.json b/advisories/unreviewed/2022/04/GHSA-4r2x-95jf-w8hr/GHSA-4r2x-95jf-w8hr.json index f433595daef..7efda994e69 100644 --- a/advisories/unreviewed/2022/04/GHSA-4r2x-95jf-w8hr/GHSA-4r2x-95jf-w8hr.json +++ b/advisories/unreviewed/2022/04/GHSA-4r2x-95jf-w8hr/GHSA-4r2x-95jf-w8hr.json @@ -7,12 +7,8 @@ "CVE-2000-0856" ], "details": "Buffer overflow in SunFTP build 9(1) allows remote attackers to cause a denial of service or possibly execute arbitrary commands via a long GET request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4rx4-j98g-fp32/GHSA-4rx4-j98g-fp32.json b/advisories/unreviewed/2022/04/GHSA-4rx4-j98g-fp32/GHSA-4rx4-j98g-fp32.json index ff4aaebdf61..c6fea188c86 100644 --- a/advisories/unreviewed/2022/04/GHSA-4rx4-j98g-fp32/GHSA-4rx4-j98g-fp32.json +++ b/advisories/unreviewed/2022/04/GHSA-4rx4-j98g-fp32/GHSA-4rx4-j98g-fp32.json @@ -7,12 +7,8 @@ "CVE-2000-0989" ], "details": "Buffer overflow in Intel InBusiness eMail Station 1.04.87 POP service allows remote attackers to cause a denial of service and possibly execute commands via a long username.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4v52-cjf4-53w4/GHSA-4v52-cjf4-53w4.json b/advisories/unreviewed/2022/04/GHSA-4v52-cjf4-53w4/GHSA-4v52-cjf4-53w4.json index 860e80a7672..879ea0d79c2 100644 --- a/advisories/unreviewed/2022/04/GHSA-4v52-cjf4-53w4/GHSA-4v52-cjf4-53w4.json +++ b/advisories/unreviewed/2022/04/GHSA-4v52-cjf4-53w4/GHSA-4v52-cjf4-53w4.json @@ -7,12 +7,8 @@ "CVE-2000-0876" ], "details": "WFTPD and WFTPD Pro 2.41 RC12 allows remote attackers to obtain the full pathname of the server via a \"%C\" command, which generates an error message that includes the pathname.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-4wcr-6rhv-9fh4/GHSA-4wcr-6rhv-9fh4.json b/advisories/unreviewed/2022/04/GHSA-4wcr-6rhv-9fh4/GHSA-4wcr-6rhv-9fh4.json index 871e225ca62..d9433fe9d0b 100644 --- a/advisories/unreviewed/2022/04/GHSA-4wcr-6rhv-9fh4/GHSA-4wcr-6rhv-9fh4.json +++ b/advisories/unreviewed/2022/04/GHSA-4wcr-6rhv-9fh4/GHSA-4wcr-6rhv-9fh4.json @@ -7,12 +7,8 @@ "CVE-2000-0957" ], "details": "The pluggable authentication module for mysql (pam_mysql) before 0.4.7 does not properly cleanse user input when constructing SQL statements, which allows attackers to obtain plaintext passwords or hashes.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4xx6-xq76-3343/GHSA-4xx6-xq76-3343.json b/advisories/unreviewed/2022/04/GHSA-4xx6-xq76-3343/GHSA-4xx6-xq76-3343.json index 3e71d0e459f..0b02edbf2a4 100644 --- a/advisories/unreviewed/2022/04/GHSA-4xx6-xq76-3343/GHSA-4xx6-xq76-3343.json +++ b/advisories/unreviewed/2022/04/GHSA-4xx6-xq76-3343/GHSA-4xx6-xq76-3343.json @@ -7,12 +7,8 @@ "CVE-2000-0895" ], "details": "Buffer overflow in HTTP server on the WatchGuard SOHO firewall allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long GET request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5338-9mq8-qrwc/GHSA-5338-9mq8-qrwc.json b/advisories/unreviewed/2022/04/GHSA-5338-9mq8-qrwc/GHSA-5338-9mq8-qrwc.json index 2b87871a79b..ca556e436d0 100644 --- a/advisories/unreviewed/2022/04/GHSA-5338-9mq8-qrwc/GHSA-5338-9mq8-qrwc.json +++ b/advisories/unreviewed/2022/04/GHSA-5338-9mq8-qrwc/GHSA-5338-9mq8-qrwc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-53jm-6fjm-h945/GHSA-53jm-6fjm-h945.json b/advisories/unreviewed/2022/04/GHSA-53jm-6fjm-h945/GHSA-53jm-6fjm-h945.json index 3d6b67e7e2f..74a99dc7939 100644 --- a/advisories/unreviewed/2022/04/GHSA-53jm-6fjm-h945/GHSA-53jm-6fjm-h945.json +++ b/advisories/unreviewed/2022/04/GHSA-53jm-6fjm-h945/GHSA-53jm-6fjm-h945.json @@ -7,12 +7,8 @@ "CVE-2000-0904" ], "details": "Voyager web server 2.01B in the demo disks for QNX 405 stores sensitive web client information in the .photon directory in the web document root, which allows remote attackers to obtain that information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-57hj-9c9v-7vhc/GHSA-57hj-9c9v-7vhc.json b/advisories/unreviewed/2022/04/GHSA-57hj-9c9v-7vhc/GHSA-57hj-9c9v-7vhc.json index 4977dad6ed2..51f09cf1520 100644 --- a/advisories/unreviewed/2022/04/GHSA-57hj-9c9v-7vhc/GHSA-57hj-9c9v-7vhc.json +++ b/advisories/unreviewed/2022/04/GHSA-57hj-9c9v-7vhc/GHSA-57hj-9c9v-7vhc.json @@ -7,12 +7,8 @@ "CVE-2000-0830" ], "details": "annclist.exe in webTV for Windows allows remote attackers to cause a denial of service by via a large, malformed UDP packet to ports 22701 through 22705.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5h9h-c98x-gm88/GHSA-5h9h-c98x-gm88.json b/advisories/unreviewed/2022/04/GHSA-5h9h-c98x-gm88/GHSA-5h9h-c98x-gm88.json index 145025d4de7..def123bcfe8 100644 --- a/advisories/unreviewed/2022/04/GHSA-5h9h-c98x-gm88/GHSA-5h9h-c98x-gm88.json +++ b/advisories/unreviewed/2022/04/GHSA-5h9h-c98x-gm88/GHSA-5h9h-c98x-gm88.json @@ -7,12 +7,8 @@ "CVE-2000-0955" ], "details": "Cisco Virtual Central Office 4000 (VCO/4K) uses weak encryption to store usernames and passwords in the SNMP MIB, which allows an attacker who knows the community name to crack the password and gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5hv6-v6fc-54f2/GHSA-5hv6-v6fc-54f2.json b/advisories/unreviewed/2022/04/GHSA-5hv6-v6fc-54f2/GHSA-5hv6-v6fc-54f2.json index 74ef894ae39..5e8288ee856 100644 --- a/advisories/unreviewed/2022/04/GHSA-5hv6-v6fc-54f2/GHSA-5hv6-v6fc-54f2.json +++ b/advisories/unreviewed/2022/04/GHSA-5hv6-v6fc-54f2/GHSA-5hv6-v6fc-54f2.json @@ -7,12 +7,8 @@ "CVE-2000-1041" ], "details": "Buffer overflow in ypbind 3.3 possibly allows an attacker to gain root privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5jwv-6qp2-mgfr/GHSA-5jwv-6qp2-mgfr.json b/advisories/unreviewed/2022/04/GHSA-5jwv-6qp2-mgfr/GHSA-5jwv-6qp2-mgfr.json index 599071a5726..cd3605cdfde 100644 --- a/advisories/unreviewed/2022/04/GHSA-5jwv-6qp2-mgfr/GHSA-5jwv-6qp2-mgfr.json +++ b/advisories/unreviewed/2022/04/GHSA-5jwv-6qp2-mgfr/GHSA-5jwv-6qp2-mgfr.json @@ -7,12 +7,8 @@ "CVE-2000-0858" ], "details": "Vulnerability in Microsoft Windows NT 4.0 allows remote attackers to cause a denial of service in IIS by sending it a series of malformed requests which cause INETINFO.EXE to fail, aka the \"Invalid URL\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5r9w-3f6v-8849/GHSA-5r9w-3f6v-8849.json b/advisories/unreviewed/2022/04/GHSA-5r9w-3f6v-8849/GHSA-5r9w-3f6v-8849.json index 597567a3d5e..a946b70cb03 100644 --- a/advisories/unreviewed/2022/04/GHSA-5r9w-3f6v-8849/GHSA-5r9w-3f6v-8849.json +++ b/advisories/unreviewed/2022/04/GHSA-5r9w-3f6v-8849/GHSA-5r9w-3f6v-8849.json @@ -7,12 +7,8 @@ "CVE-2000-1055" ], "details": "Buffer overflow in CiscoSecure ACS Server 2.4(2) and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a large TACACS+ packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5rg3-r5cf-mhqx/GHSA-5rg3-r5cf-mhqx.json b/advisories/unreviewed/2022/04/GHSA-5rg3-r5cf-mhqx/GHSA-5rg3-r5cf-mhqx.json index d06ca79c56b..39430c8b3f6 100644 --- a/advisories/unreviewed/2022/04/GHSA-5rg3-r5cf-mhqx/GHSA-5rg3-r5cf-mhqx.json +++ b/advisories/unreviewed/2022/04/GHSA-5rg3-r5cf-mhqx/GHSA-5rg3-r5cf-mhqx.json @@ -7,12 +7,8 @@ "CVE-2000-0833" ], "details": "Buffer overflow in WinSMTP 1.06f and 2.X allows remote attackers to cause a denial of service via a long (1) USER or (2) HELO command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5rvg-rpvg-3vmc/GHSA-5rvg-rpvg-3vmc.json b/advisories/unreviewed/2022/04/GHSA-5rvg-rpvg-3vmc/GHSA-5rvg-rpvg-3vmc.json index a812ca39834..748aabb7b73 100644 --- a/advisories/unreviewed/2022/04/GHSA-5rvg-rpvg-3vmc/GHSA-5rvg-rpvg-3vmc.json +++ b/advisories/unreviewed/2022/04/GHSA-5rvg-rpvg-3vmc/GHSA-5rvg-rpvg-3vmc.json @@ -7,12 +7,8 @@ "CVE-2000-1056" ], "details": "CiscoSecure ACS Server 2.4(2) and earlier allows remote attackers to bypass LDAP authentication on the server if the LDAP server allows null passwords.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5vj6-cjv9-5x62/GHSA-5vj6-cjv9-5x62.json b/advisories/unreviewed/2022/04/GHSA-5vj6-cjv9-5x62/GHSA-5vj6-cjv9-5x62.json index 2ea0e8d0d01..f9fee110fe5 100644 --- a/advisories/unreviewed/2022/04/GHSA-5vj6-cjv9-5x62/GHSA-5vj6-cjv9-5x62.json +++ b/advisories/unreviewed/2022/04/GHSA-5vj6-cjv9-5x62/GHSA-5vj6-cjv9-5x62.json @@ -7,12 +7,8 @@ "CVE-2000-0850" ], "details": "Netegrity SiteMinder before 4.11 allows remote attackers to bypass its authentication mechanism by appending \"$/FILENAME.ext\" (where ext is .ccc, .class, or .jpg) to the requested URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5wvh-g7mv-5v5f/GHSA-5wvh-g7mv-5v5f.json b/advisories/unreviewed/2022/04/GHSA-5wvh-g7mv-5v5f/GHSA-5wvh-g7mv-5v5f.json index 315726c93e7..fd9c8c8b034 100644 --- a/advisories/unreviewed/2022/04/GHSA-5wvh-g7mv-5v5f/GHSA-5wvh-g7mv-5v5f.json +++ b/advisories/unreviewed/2022/04/GHSA-5wvh-g7mv-5v5f/GHSA-5wvh-g7mv-5v5f.json @@ -7,12 +7,8 @@ "CVE-2000-1063" ], "details": "Buffer overflow in the Telnet service in HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-62f9-2rc4-4vfq/GHSA-62f9-2rc4-4vfq.json b/advisories/unreviewed/2022/04/GHSA-62f9-2rc4-4vfq/GHSA-62f9-2rc4-4vfq.json index aa094e06941..370691df873 100644 --- a/advisories/unreviewed/2022/04/GHSA-62f9-2rc4-4vfq/GHSA-62f9-2rc4-4vfq.json +++ b/advisories/unreviewed/2022/04/GHSA-62f9-2rc4-4vfq/GHSA-62f9-2rc4-4vfq.json @@ -7,12 +7,8 @@ "CVE-2000-1060" ], "details": "The default configuration of XFCE 3.5.1 bypasses the Xauthority access control mechanism with an \"xhost + localhost\" command in the xinitrc program, which allows local users to sniff X Windows traffic and gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-64gg-5mwm-x99x/GHSA-64gg-5mwm-x99x.json b/advisories/unreviewed/2022/04/GHSA-64gg-5mwm-x99x/GHSA-64gg-5mwm-x99x.json index d3e02f0e1c4..153f2f228df 100644 --- a/advisories/unreviewed/2022/04/GHSA-64gg-5mwm-x99x/GHSA-64gg-5mwm-x99x.json +++ b/advisories/unreviewed/2022/04/GHSA-64gg-5mwm-x99x/GHSA-64gg-5mwm-x99x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-65c7-ppqp-3qvf/GHSA-65c7-ppqp-3qvf.json b/advisories/unreviewed/2022/04/GHSA-65c7-ppqp-3qvf/GHSA-65c7-ppqp-3qvf.json index b5fbb2a8734..3fc9fa44793 100644 --- a/advisories/unreviewed/2022/04/GHSA-65c7-ppqp-3qvf/GHSA-65c7-ppqp-3qvf.json +++ b/advisories/unreviewed/2022/04/GHSA-65c7-ppqp-3qvf/GHSA-65c7-ppqp-3qvf.json @@ -7,12 +7,8 @@ "CVE-2000-0940" ], "details": "Directory traversal vulnerability in Metertek pagelog.cgi allows remote attackers to read arbitrary files via a .. (dot dot) attack on the \"name\" or \"display\" parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6743-8vvq-693c/GHSA-6743-8vvq-693c.json b/advisories/unreviewed/2022/04/GHSA-6743-8vvq-693c/GHSA-6743-8vvq-693c.json index 28a141b9e5d..4b4fe021f08 100644 --- a/advisories/unreviewed/2022/04/GHSA-6743-8vvq-693c/GHSA-6743-8vvq-693c.json +++ b/advisories/unreviewed/2022/04/GHSA-6743-8vvq-693c/GHSA-6743-8vvq-693c.json @@ -7,12 +7,8 @@ "CVE-2000-0864" ], "details": "Race condition in the creation of a Unix domain socket in GNOME esound 0.2.19 and earlier allows a local user to change the permissions of arbitrary files and directories, and gain additional privileges, via a symlink attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-677r-hgg4-vmp8/GHSA-677r-hgg4-vmp8.json b/advisories/unreviewed/2022/04/GHSA-677r-hgg4-vmp8/GHSA-677r-hgg4-vmp8.json index 822a64da017..75581965080 100644 --- a/advisories/unreviewed/2022/04/GHSA-677r-hgg4-vmp8/GHSA-677r-hgg4-vmp8.json +++ b/advisories/unreviewed/2022/04/GHSA-677r-hgg4-vmp8/GHSA-677r-hgg4-vmp8.json @@ -7,12 +7,8 @@ "CVE-2000-0935" ], "details": "Samba Web Administration Tool (SWAT) in Samba 2.0.7 allows local users to overwrite arbitrary files via a symlink attack on the cgi.log file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-68gh-xx2q-59p5/GHSA-68gh-xx2q-59p5.json b/advisories/unreviewed/2022/04/GHSA-68gh-xx2q-59p5/GHSA-68gh-xx2q-59p5.json index d6090d7f962..8494d5d3d10 100644 --- a/advisories/unreviewed/2022/04/GHSA-68gh-xx2q-59p5/GHSA-68gh-xx2q-59p5.json +++ b/advisories/unreviewed/2022/04/GHSA-68gh-xx2q-59p5/GHSA-68gh-xx2q-59p5.json @@ -7,12 +7,8 @@ "CVE-2000-1016" ], "details": "The default configuration of Apache (httpd.conf) on SuSE 6.4 includes an alias for the /usr/doc directory, which allows remote attackers to read package documentation and obtain system configuration information via an HTTP request for the /doc/packages URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6f6v-7779-324h/GHSA-6f6v-7779-324h.json b/advisories/unreviewed/2022/04/GHSA-6f6v-7779-324h/GHSA-6f6v-7779-324h.json index 6b17a04c438..514df684fe1 100644 --- a/advisories/unreviewed/2022/04/GHSA-6f6v-7779-324h/GHSA-6f6v-7779-324h.json +++ b/advisories/unreviewed/2022/04/GHSA-6f6v-7779-324h/GHSA-6f6v-7779-324h.json @@ -7,12 +7,8 @@ "CVE-2000-0805" ], "details": "Check Point VPN-1/FireWall-1 4.1 and earlier improperly retransmits encapsulated FWS packets, even if they do not come from a valid FWZ client, aka \"Retransmission of Encapsulated Packets.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6hc7-ff75-6g3r/GHSA-6hc7-ff75-6g3r.json b/advisories/unreviewed/2022/04/GHSA-6hc7-ff75-6g3r/GHSA-6hc7-ff75-6g3r.json index 496cae83ae6..61766da8a75 100644 --- a/advisories/unreviewed/2022/04/GHSA-6hc7-ff75-6g3r/GHSA-6hc7-ff75-6g3r.json +++ b/advisories/unreviewed/2022/04/GHSA-6hc7-ff75-6g3r/GHSA-6hc7-ff75-6g3r.json @@ -7,12 +7,8 @@ "CVE-2000-1023" ], "details": "The Alabanza Control Panel does not require passwords to access administrative commands, which allows remote attackers to modify domain name information via the nsManager.cgi CGI program.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6mw4-x44p-qq9x/GHSA-6mw4-x44p-qq9x.json b/advisories/unreviewed/2022/04/GHSA-6mw4-x44p-qq9x/GHSA-6mw4-x44p-qq9x.json index d6578586a73..fb1fa92953c 100644 --- a/advisories/unreviewed/2022/04/GHSA-6mw4-x44p-qq9x/GHSA-6mw4-x44p-qq9x.json +++ b/advisories/unreviewed/2022/04/GHSA-6mw4-x44p-qq9x/GHSA-6mw4-x44p-qq9x.json @@ -7,12 +7,8 @@ "CVE-2000-0825" ], "details": "Ipswitch Imail 6.0 allows remote attackers to cause a denial of service via a large number of connections in which a long Host: header is sent, which causes a thread to crash.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6w76-wp8w-rq73/GHSA-6w76-wp8w-rq73.json b/advisories/unreviewed/2022/04/GHSA-6w76-wp8w-rq73/GHSA-6w76-wp8w-rq73.json index eb4cf38d5cc..e2cce4b5dfd 100644 --- a/advisories/unreviewed/2022/04/GHSA-6w76-wp8w-rq73/GHSA-6w76-wp8w-rq73.json +++ b/advisories/unreviewed/2022/04/GHSA-6w76-wp8w-rq73/GHSA-6w76-wp8w-rq73.json @@ -7,12 +7,8 @@ "CVE-2000-0861" ], "details": "Mailman 1.1 allows list administrators to execute arbitrary commands via shell metacharacters in the %(listname) macro expansion.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6wg3-727j-rhxv/GHSA-6wg3-727j-rhxv.json b/advisories/unreviewed/2022/04/GHSA-6wg3-727j-rhxv/GHSA-6wg3-727j-rhxv.json index 90ee63dd327..1d40d3c9018 100644 --- a/advisories/unreviewed/2022/04/GHSA-6wg3-727j-rhxv/GHSA-6wg3-727j-rhxv.json +++ b/advisories/unreviewed/2022/04/GHSA-6wg3-727j-rhxv/GHSA-6wg3-727j-rhxv.json @@ -7,12 +7,8 @@ "CVE-2000-0894" ], "details": "HTTP server on the WatchGuard SOHO firewall does not properly restrict access to administrative functions such as password resets or rebooting, which allows attackers to cause a denial of service or conduct unauthorized activities.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-729m-x3v8-488j/GHSA-729m-x3v8-488j.json b/advisories/unreviewed/2022/04/GHSA-729m-x3v8-488j/GHSA-729m-x3v8-488j.json index e7634ca5d3b..79f02cb735f 100644 --- a/advisories/unreviewed/2022/04/GHSA-729m-x3v8-488j/GHSA-729m-x3v8-488j.json +++ b/advisories/unreviewed/2022/04/GHSA-729m-x3v8-488j/GHSA-729m-x3v8-488j.json @@ -7,12 +7,8 @@ "CVE-2000-1064" ], "details": "Buffer overflow in the LPD service in HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-72fc-rcvx-32wg/GHSA-72fc-rcvx-32wg.json b/advisories/unreviewed/2022/04/GHSA-72fc-rcvx-32wg/GHSA-72fc-rcvx-32wg.json index a713a3dd793..13400cc518a 100644 --- a/advisories/unreviewed/2022/04/GHSA-72fc-rcvx-32wg/GHSA-72fc-rcvx-32wg.json +++ b/advisories/unreviewed/2022/04/GHSA-72fc-rcvx-32wg/GHSA-72fc-rcvx-32wg.json @@ -7,12 +7,8 @@ "CVE-2000-0961" ], "details": "Buffer overflow in IMAP server in Netscape Messaging Server 4.15 Patch 2 allows local users to execute arbitrary commands via a long LIST command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7363-mjq8-494j/GHSA-7363-mjq8-494j.json b/advisories/unreviewed/2022/04/GHSA-7363-mjq8-494j/GHSA-7363-mjq8-494j.json index d8e30f8917c..457b53632fb 100644 --- a/advisories/unreviewed/2022/04/GHSA-7363-mjq8-494j/GHSA-7363-mjq8-494j.json +++ b/advisories/unreviewed/2022/04/GHSA-7363-mjq8-494j/GHSA-7363-mjq8-494j.json @@ -7,12 +7,8 @@ "CVE-2000-0964" ], "details": "Buffer overflow in the web administration service for the HiNet LP5100 IP-phone allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long GET request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7573-6fcp-5wh3/GHSA-7573-6fcp-5wh3.json b/advisories/unreviewed/2022/04/GHSA-7573-6fcp-5wh3/GHSA-7573-6fcp-5wh3.json index dbbe6c1c862..92be4b69b4c 100644 --- a/advisories/unreviewed/2022/04/GHSA-7573-6fcp-5wh3/GHSA-7573-6fcp-5wh3.json +++ b/advisories/unreviewed/2022/04/GHSA-7573-6fcp-5wh3/GHSA-7573-6fcp-5wh3.json @@ -7,12 +7,8 @@ "CVE-2000-0824" ], "details": "The unsetenv function in glibc 2.1.1 does not properly unset an environmental variable if the variable is provided twice to a program, which could allow local users to execute arbitrary commands in setuid programs by specifying their own duplicate environmental variables such as LD_PRELOAD or LD_LIBRARY_PATH.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -80,9 +76,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7592-5mm7-m9qv/GHSA-7592-5mm7-m9qv.json b/advisories/unreviewed/2022/04/GHSA-7592-5mm7-m9qv/GHSA-7592-5mm7-m9qv.json index 77d3fe60dd3..aa0a7422a7a 100644 --- a/advisories/unreviewed/2022/04/GHSA-7592-5mm7-m9qv/GHSA-7592-5mm7-m9qv.json +++ b/advisories/unreviewed/2022/04/GHSA-7592-5mm7-m9qv/GHSA-7592-5mm7-m9qv.json @@ -7,12 +7,8 @@ "CVE-2000-0874" ], "details": "Eudora mail client includes the absolute path of the sender's host within a virtual card (VCF).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7c4p-gjx7-mf7v/GHSA-7c4p-gjx7-mf7v.json b/advisories/unreviewed/2022/04/GHSA-7c4p-gjx7-mf7v/GHSA-7c4p-gjx7-mf7v.json index 9d289519251..bbf9fe30175 100644 --- a/advisories/unreviewed/2022/04/GHSA-7c4p-gjx7-mf7v/GHSA-7c4p-gjx7-mf7v.json +++ b/advisories/unreviewed/2022/04/GHSA-7c4p-gjx7-mf7v/GHSA-7c4p-gjx7-mf7v.json @@ -7,12 +7,8 @@ "CVE-2000-0986" ], "details": "Buffer overflow in Oracle 8.1.5 applications such as names, namesctl, onrsd, osslogin, tnslsnr, tnsping, trcasst, and trcroute possibly allow local users to gain privileges via a long ORACLE_HOME environmental variable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7g2r-9q3g-84p3/GHSA-7g2r-9q3g-84p3.json b/advisories/unreviewed/2022/04/GHSA-7g2r-9q3g-84p3/GHSA-7g2r-9q3g-84p3.json index 9aaf9a7d5f2..13be8da7e49 100644 --- a/advisories/unreviewed/2022/04/GHSA-7g2r-9q3g-84p3/GHSA-7g2r-9q3g-84p3.json +++ b/advisories/unreviewed/2022/04/GHSA-7g2r-9q3g-84p3/GHSA-7g2r-9q3g-84p3.json @@ -7,12 +7,8 @@ "CVE-2000-0869" ], "details": "The default configuration of Apache 1.3.12 in SuSE Linux 6.4 enables WebDAV, which allows remote attackers to list arbitrary directories via the PROPFIND HTTP request method.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7gg9-xwx6-p2q2/GHSA-7gg9-xwx6-p2q2.json b/advisories/unreviewed/2022/04/GHSA-7gg9-xwx6-p2q2/GHSA-7gg9-xwx6-p2q2.json index 969f294c3ce..422c8bf75d8 100644 --- a/advisories/unreviewed/2022/04/GHSA-7gg9-xwx6-p2q2/GHSA-7gg9-xwx6-p2q2.json +++ b/advisories/unreviewed/2022/04/GHSA-7gg9-xwx6-p2q2/GHSA-7gg9-xwx6-p2q2.json @@ -7,12 +7,8 @@ "CVE-2000-0950" ], "details": "Format string vulnerability in x-gw in TIS Firewall Toolkit (FWTK) allows local users to execute arbitrary commands via a malformed display name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7h4p-w928-hf53/GHSA-7h4p-w928-hf53.json b/advisories/unreviewed/2022/04/GHSA-7h4p-w928-hf53/GHSA-7h4p-w928-hf53.json index 55027596387..50f816b6bbd 100644 --- a/advisories/unreviewed/2022/04/GHSA-7h4p-w928-hf53/GHSA-7h4p-w928-hf53.json +++ b/advisories/unreviewed/2022/04/GHSA-7h4p-w928-hf53/GHSA-7h4p-w928-hf53.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-7hp5-rh59-f624/GHSA-7hp5-rh59-f624.json b/advisories/unreviewed/2022/04/GHSA-7hp5-rh59-f624/GHSA-7hp5-rh59-f624.json index 8cbd708dee2..d5738dcf287 100644 --- a/advisories/unreviewed/2022/04/GHSA-7hp5-rh59-f624/GHSA-7hp5-rh59-f624.json +++ b/advisories/unreviewed/2022/04/GHSA-7hp5-rh59-f624/GHSA-7hp5-rh59-f624.json @@ -7,12 +7,8 @@ "CVE-2000-1037" ], "details": "Check Point Firewall-1 session agent 3.0 through 4.1 generates different error messages for invalid user names versus invalid passwords, which allows remote attackers to determine valid usernames and guess a password via a brute force attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7jhr-h4rw-jq26/GHSA-7jhr-h4rw-jq26.json b/advisories/unreviewed/2022/04/GHSA-7jhr-h4rw-jq26/GHSA-7jhr-h4rw-jq26.json index e10913429d3..94f840d36e3 100644 --- a/advisories/unreviewed/2022/04/GHSA-7jhr-h4rw-jq26/GHSA-7jhr-h4rw-jq26.json +++ b/advisories/unreviewed/2022/04/GHSA-7jhr-h4rw-jq26/GHSA-7jhr-h4rw-jq26.json @@ -7,12 +7,8 @@ "CVE-2000-0889" ], "details": "Two Sun security certificates have been compromised, which could allow attackers to insert malicious code such as applets and make it appear that it is signed by Sun.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7rfm-vh2c-48gx/GHSA-7rfm-vh2c-48gx.json b/advisories/unreviewed/2022/04/GHSA-7rfm-vh2c-48gx/GHSA-7rfm-vh2c-48gx.json index 1a47a924938..f81deb9e09d 100644 --- a/advisories/unreviewed/2022/04/GHSA-7rfm-vh2c-48gx/GHSA-7rfm-vh2c-48gx.json +++ b/advisories/unreviewed/2022/04/GHSA-7rfm-vh2c-48gx/GHSA-7rfm-vh2c-48gx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-7v65-28xp-w7r5/GHSA-7v65-28xp-w7r5.json b/advisories/unreviewed/2022/04/GHSA-7v65-28xp-w7r5/GHSA-7v65-28xp-w7r5.json index 3ec7c761d3b..97d7cce09c5 100644 --- a/advisories/unreviewed/2022/04/GHSA-7v65-28xp-w7r5/GHSA-7v65-28xp-w7r5.json +++ b/advisories/unreviewed/2022/04/GHSA-7v65-28xp-w7r5/GHSA-7v65-28xp-w7r5.json @@ -7,12 +7,8 @@ "CVE-2000-0921" ], "details": "Directory traversal vulnerability in Hassan Consulting shop.cgi shopping cart program allows remote attackers to read arbitrary files via a .. (dot dot) attack on the page parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7v87-4jgh-cmq4/GHSA-7v87-4jgh-cmq4.json b/advisories/unreviewed/2022/04/GHSA-7v87-4jgh-cmq4/GHSA-7v87-4jgh-cmq4.json index 173db21b9a4..64f80ea7e11 100644 --- a/advisories/unreviewed/2022/04/GHSA-7v87-4jgh-cmq4/GHSA-7v87-4jgh-cmq4.json +++ b/advisories/unreviewed/2022/04/GHSA-7v87-4jgh-cmq4/GHSA-7v87-4jgh-cmq4.json @@ -7,12 +7,8 @@ "CVE-2000-0849" ], "details": "Race condition in Microsoft Windows Media server allows remote attackers to cause a denial of service in the Windows Media Unicast Service via a malformed request, aka the \"Unicast Service Race Condition\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7x8m-frjm-r4m8/GHSA-7x8m-frjm-r4m8.json b/advisories/unreviewed/2022/04/GHSA-7x8m-frjm-r4m8/GHSA-7x8m-frjm-r4m8.json index 6d28d3333dc..88fe162a372 100644 --- a/advisories/unreviewed/2022/04/GHSA-7x8m-frjm-r4m8/GHSA-7x8m-frjm-r4m8.json +++ b/advisories/unreviewed/2022/04/GHSA-7x8m-frjm-r4m8/GHSA-7x8m-frjm-r4m8.json @@ -7,12 +7,8 @@ "CVE-2000-1061" ], "details": "Microsoft Virtual Machine (VM) in Internet Explorer 4.x and 5.x allows an unsigned applet to create and use ActiveX controls, which allows a remote attacker to bypass Internet Explorer's security settings and execute arbitrary commands via a malicious web page or email, aka the \"Microsoft VM ActiveX Component\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-82rc-4qc5-3p7r/GHSA-82rc-4qc5-3p7r.json b/advisories/unreviewed/2022/04/GHSA-82rc-4qc5-3p7r/GHSA-82rc-4qc5-3p7r.json index e8430f9f715..dea8ec64ad4 100644 --- a/advisories/unreviewed/2022/04/GHSA-82rc-4qc5-3p7r/GHSA-82rc-4qc5-3p7r.json +++ b/advisories/unreviewed/2022/04/GHSA-82rc-4qc5-3p7r/GHSA-82rc-4qc5-3p7r.json @@ -7,12 +7,8 @@ "CVE-2000-0939" ], "details": "Samba Web Administration Tool (SWAT) in Samba 2.0.7 allows remote attackers to cause a denial of service by repeatedly submitting a nonstandard URL in the GET HTTP request and forcing it to restart.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-84v4-jv9m-4vfj/GHSA-84v4-jv9m-4vfj.json b/advisories/unreviewed/2022/04/GHSA-84v4-jv9m-4vfj/GHSA-84v4-jv9m-4vfj.json index 8a565beeb6b..fc156a29c83 100644 --- a/advisories/unreviewed/2022/04/GHSA-84v4-jv9m-4vfj/GHSA-84v4-jv9m-4vfj.json +++ b/advisories/unreviewed/2022/04/GHSA-84v4-jv9m-4vfj/GHSA-84v4-jv9m-4vfj.json @@ -7,12 +7,8 @@ "CVE-2000-0879" ], "details": "LPPlus programs dccsched, dcclpdser, dccbkst, dccshut, dcclpdshut, and dccbkstshut are installed setuid root and world executable, which allows arbitrary local users to start and stop various LPD services.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-84x3-vv89-429g/GHSA-84x3-vv89-429g.json b/advisories/unreviewed/2022/04/GHSA-84x3-vv89-429g/GHSA-84x3-vv89-429g.json index bc2f3d326d1..e209cf5001a 100644 --- a/advisories/unreviewed/2022/04/GHSA-84x3-vv89-429g/GHSA-84x3-vv89-429g.json +++ b/advisories/unreviewed/2022/04/GHSA-84x3-vv89-429g/GHSA-84x3-vv89-429g.json @@ -7,12 +7,8 @@ "CVE-2000-0922" ], "details": "Directory traversal vulnerability in Bytes Interactive Web Shopper shopping cart program (shopper.cgi) 2.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack on the newpage parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-87wr-9qwg-43mr/GHSA-87wr-9qwg-43mr.json b/advisories/unreviewed/2022/04/GHSA-87wr-9qwg-43mr/GHSA-87wr-9qwg-43mr.json index 7c11808412e..f86e414a8cd 100644 --- a/advisories/unreviewed/2022/04/GHSA-87wr-9qwg-43mr/GHSA-87wr-9qwg-43mr.json +++ b/advisories/unreviewed/2022/04/GHSA-87wr-9qwg-43mr/GHSA-87wr-9qwg-43mr.json @@ -7,12 +7,8 @@ "CVE-2000-0809" ], "details": "Buffer overflow in Getkey in the protocol checker in the inter-module communication mechanism in Check Point VPN-1/FireWall-1 4.1 and earlier allows remote attackers to cause a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-88r5-qmf9-93h9/GHSA-88r5-qmf9-93h9.json b/advisories/unreviewed/2022/04/GHSA-88r5-qmf9-93h9/GHSA-88r5-qmf9-93h9.json index eda5bcca258..c5f3c21b613 100644 --- a/advisories/unreviewed/2022/04/GHSA-88r5-qmf9-93h9/GHSA-88r5-qmf9-93h9.json +++ b/advisories/unreviewed/2022/04/GHSA-88r5-qmf9-93h9/GHSA-88r5-qmf9-93h9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8c87-7q9f-g37m/GHSA-8c87-7q9f-g37m.json b/advisories/unreviewed/2022/04/GHSA-8c87-7q9f-g37m/GHSA-8c87-7q9f-g37m.json index 9cfac0d5523..679df320a45 100644 --- a/advisories/unreviewed/2022/04/GHSA-8c87-7q9f-g37m/GHSA-8c87-7q9f-g37m.json +++ b/advisories/unreviewed/2022/04/GHSA-8c87-7q9f-g37m/GHSA-8c87-7q9f-g37m.json @@ -7,12 +7,8 @@ "CVE-2000-0872" ], "details": "explorer.php in PhotoAlbum 0.9.9 allows remote attackers to read arbitrary files via a .. (dot dot) attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8chm-8g8j-qf44/GHSA-8chm-8g8j-qf44.json b/advisories/unreviewed/2022/04/GHSA-8chm-8g8j-qf44/GHSA-8chm-8g8j-qf44.json index 7744856cd6a..44f28fb5bf6 100644 --- a/advisories/unreviewed/2022/04/GHSA-8chm-8g8j-qf44/GHSA-8chm-8g8j-qf44.json +++ b/advisories/unreviewed/2022/04/GHSA-8chm-8g8j-qf44/GHSA-8chm-8g8j-qf44.json @@ -7,12 +7,8 @@ "CVE-2000-0936" ], "details": "Samba Web Administration Tool (SWAT) in Samba 2.0.7 installs the cgi.log logging file with world readable permissions, which allows local users to read sensitive information such as user names and passwords.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8cwh-9jp8-cq99/GHSA-8cwh-9jp8-cq99.json b/advisories/unreviewed/2022/04/GHSA-8cwh-9jp8-cq99/GHSA-8cwh-9jp8-cq99.json index d8524328e9a..15ec02e314c 100644 --- a/advisories/unreviewed/2022/04/GHSA-8cwh-9jp8-cq99/GHSA-8cwh-9jp8-cq99.json +++ b/advisories/unreviewed/2022/04/GHSA-8cwh-9jp8-cq99/GHSA-8cwh-9jp8-cq99.json @@ -7,12 +7,8 @@ "CVE-2000-0806" ], "details": "The inter-module authentication mechanism (fwa1) in Check Point VPN-1/FireWall-1 4.1 and earlier may allow remote attackers to conduct a denial of service, aka \"Inter-module Communications Bypass.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8hw5-ppqj-684g/GHSA-8hw5-ppqj-684g.json b/advisories/unreviewed/2022/04/GHSA-8hw5-ppqj-684g/GHSA-8hw5-ppqj-684g.json index 053b725c8bc..3ffbb6ca525 100644 --- a/advisories/unreviewed/2022/04/GHSA-8hw5-ppqj-684g/GHSA-8hw5-ppqj-684g.json +++ b/advisories/unreviewed/2022/04/GHSA-8hw5-ppqj-684g/GHSA-8hw5-ppqj-684g.json @@ -7,12 +7,8 @@ "CVE-2000-0801" ], "details": "Buffer overflow in bdf program in HP-UX 11.00 may allow local users to gain root privileges via a long -t option.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8j53-mpr3-63rc/GHSA-8j53-mpr3-63rc.json b/advisories/unreviewed/2022/04/GHSA-8j53-mpr3-63rc/GHSA-8j53-mpr3-63rc.json index b5017a55039..eafa7664d82 100644 --- a/advisories/unreviewed/2022/04/GHSA-8j53-mpr3-63rc/GHSA-8j53-mpr3-63rc.json +++ b/advisories/unreviewed/2022/04/GHSA-8j53-mpr3-63rc/GHSA-8j53-mpr3-63rc.json @@ -7,12 +7,8 @@ "CVE-2000-0810" ], "details": "Auction Weaver 1.0 through 1.04 does not properly validate the names of form fields, which allows remote attackers to delete arbitrary files and directories via a .. (dot dot) attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8p7m-qf44-v926/GHSA-8p7m-qf44-v926.json b/advisories/unreviewed/2022/04/GHSA-8p7m-qf44-v926/GHSA-8p7m-qf44-v926.json index 72c69ec20f5..91dd4c1489d 100644 --- a/advisories/unreviewed/2022/04/GHSA-8p7m-qf44-v926/GHSA-8p7m-qf44-v926.json +++ b/advisories/unreviewed/2022/04/GHSA-8p7m-qf44-v926/GHSA-8p7m-qf44-v926.json @@ -7,12 +7,8 @@ "CVE-2000-0980" ], "details": "NMPI (Name Management Protocol on IPX) listener in Microsoft NWLink does not properly filter packets from a broadcast address, which allows remote attackers to cause a broadcast storm and flood the network.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8pr8-33qh-2h66/GHSA-8pr8-33qh-2h66.json b/advisories/unreviewed/2022/04/GHSA-8pr8-33qh-2h66/GHSA-8pr8-33qh-2h66.json index 925e7928d9a..85751ba0617 100644 --- a/advisories/unreviewed/2022/04/GHSA-8pr8-33qh-2h66/GHSA-8pr8-33qh-2h66.json +++ b/advisories/unreviewed/2022/04/GHSA-8pr8-33qh-2h66/GHSA-8pr8-33qh-2h66.json @@ -7,12 +7,8 @@ "CVE-2000-0862" ], "details": "Vulnerability in an administrative interface utility for Allaire Spectra 1.0.1 allows remote attackers to read and modify sensitive configuration information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8qqw-f9rj-2mrm/GHSA-8qqw-f9rj-2mrm.json b/advisories/unreviewed/2022/04/GHSA-8qqw-f9rj-2mrm/GHSA-8qqw-f9rj-2mrm.json index 461450d9b5b..173132077fe 100644 --- a/advisories/unreviewed/2022/04/GHSA-8qqw-f9rj-2mrm/GHSA-8qqw-f9rj-2mrm.json +++ b/advisories/unreviewed/2022/04/GHSA-8qqw-f9rj-2mrm/GHSA-8qqw-f9rj-2mrm.json @@ -7,12 +7,8 @@ "CVE-2000-0829" ], "details": "The tmpwatch utility in Red Hat Linux forks a new process for each directory level, which allows local users to cause a denial of service by creating deeply nested directories in /tmp or /var/tmp/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8r4q-4hr3-rm7h/GHSA-8r4q-4hr3-rm7h.json b/advisories/unreviewed/2022/04/GHSA-8r4q-4hr3-rm7h/GHSA-8r4q-4hr3-rm7h.json index dfca788d74c..e68ac9ab8f8 100644 --- a/advisories/unreviewed/2022/04/GHSA-8r4q-4hr3-rm7h/GHSA-8r4q-4hr3-rm7h.json +++ b/advisories/unreviewed/2022/04/GHSA-8r4q-4hr3-rm7h/GHSA-8r4q-4hr3-rm7h.json @@ -7,12 +7,8 @@ "CVE-2000-1036" ], "details": "Directory traversal vulnerability in Extent RBS ISP web server allows remote attackers to read sensitive information via a .. (dot dot) attack on the Image parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8x76-gx9r-885w/GHSA-8x76-gx9r-885w.json b/advisories/unreviewed/2022/04/GHSA-8x76-gx9r-885w/GHSA-8x76-gx9r-885w.json index f419b0a5df7..e19be932879 100644 --- a/advisories/unreviewed/2022/04/GHSA-8x76-gx9r-885w/GHSA-8x76-gx9r-885w.json +++ b/advisories/unreviewed/2022/04/GHSA-8x76-gx9r-885w/GHSA-8x76-gx9r-885w.json @@ -7,12 +7,8 @@ "CVE-2000-0886" ], "details": "IIS 5.0 allows remote attackers to execute arbitrary commands via a malformed request for an executable file whose name is appended with operating system commands, aka the \"Web Server File Request Parsing\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-92c3-5449-gf35/GHSA-92c3-5449-gf35.json b/advisories/unreviewed/2022/04/GHSA-92c3-5449-gf35/GHSA-92c3-5449-gf35.json index 403ac30970d..954024f1791 100644 --- a/advisories/unreviewed/2022/04/GHSA-92c3-5449-gf35/GHSA-92c3-5449-gf35.json +++ b/advisories/unreviewed/2022/04/GHSA-92c3-5449-gf35/GHSA-92c3-5449-gf35.json @@ -7,12 +7,8 @@ "CVE-2000-0913" ], "details": "mod_rewrite in Apache 1.3.12 and earlier allows remote attackers to read arbitrary files if a RewriteRule directive is expanded to include a filename whose name contains a regular expression.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -80,9 +76,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-92vv-7xv5-843x/GHSA-92vv-7xv5-843x.json b/advisories/unreviewed/2022/04/GHSA-92vv-7xv5-843x/GHSA-92vv-7xv5-843x.json index 79d929e72ff..b0d90f39be5 100644 --- a/advisories/unreviewed/2022/04/GHSA-92vv-7xv5-843x/GHSA-92vv-7xv5-843x.json +++ b/advisories/unreviewed/2022/04/GHSA-92vv-7xv5-843x/GHSA-92vv-7xv5-843x.json @@ -7,12 +7,8 @@ "CVE-2000-0928" ], "details": "WQuinn QuotaAdvisor 4.1 allows users to list directories and files by running a report on the targeted shares.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-956j-qpwc-85cf/GHSA-956j-qpwc-85cf.json b/advisories/unreviewed/2022/04/GHSA-956j-qpwc-85cf/GHSA-956j-qpwc-85cf.json index c13819245ba..ebcca6c3940 100644 --- a/advisories/unreviewed/2022/04/GHSA-956j-qpwc-85cf/GHSA-956j-qpwc-85cf.json +++ b/advisories/unreviewed/2022/04/GHSA-956j-qpwc-85cf/GHSA-956j-qpwc-85cf.json @@ -7,12 +7,8 @@ "CVE-2000-0866" ], "details": "Interbase 6 SuperServer for Linux allows an attacker to cause a denial of service via a query containing 0 bytes.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9573-p6hp-f8x3/GHSA-9573-p6hp-f8x3.json b/advisories/unreviewed/2022/04/GHSA-9573-p6hp-f8x3/GHSA-9573-p6hp-f8x3.json index 30e7b34de9d..0717d18f52d 100644 --- a/advisories/unreviewed/2022/04/GHSA-9573-p6hp-f8x3/GHSA-9573-p6hp-f8x3.json +++ b/advisories/unreviewed/2022/04/GHSA-9573-p6hp-f8x3/GHSA-9573-p6hp-f8x3.json @@ -7,12 +7,8 @@ "CVE-2000-0837" ], "details": "FTP Serv-U 2.5e allows remote attackers to cause a denial of service by sending a large number of null bytes.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-95jw-8pwr-6x64/GHSA-95jw-8pwr-6x64.json b/advisories/unreviewed/2022/04/GHSA-95jw-8pwr-6x64/GHSA-95jw-8pwr-6x64.json index dadc0c6bac1..3d9c348a38a 100644 --- a/advisories/unreviewed/2022/04/GHSA-95jw-8pwr-6x64/GHSA-95jw-8pwr-6x64.json +++ b/advisories/unreviewed/2022/04/GHSA-95jw-8pwr-6x64/GHSA-95jw-8pwr-6x64.json @@ -7,12 +7,8 @@ "CVE-2000-1002" ], "details": "POP3 daemon in Stalker CommuniGate Pro 3.3.2 generates different error messages for invalid usernames versus invalid passwords, which allows remote attackers to determine valid email addresses on the server for SPAM attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-95v2-65jv-mh6r/GHSA-95v2-65jv-mh6r.json b/advisories/unreviewed/2022/04/GHSA-95v2-65jv-mh6r/GHSA-95v2-65jv-mh6r.json index b2b461d199a..680db931544 100644 --- a/advisories/unreviewed/2022/04/GHSA-95v2-65jv-mh6r/GHSA-95v2-65jv-mh6r.json +++ b/advisories/unreviewed/2022/04/GHSA-95v2-65jv-mh6r/GHSA-95v2-65jv-mh6r.json @@ -7,12 +7,8 @@ "CVE-2000-1059" ], "details": "The default configuration of the Xsession file in Mandrake Linux 7.1 and 7.0 bypasses the Xauthority access control mechanism with an \"xhost + localhost\" command, which allows local users to sniff X Windows events and gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-963q-946c-mq2q/GHSA-963q-946c-mq2q.json b/advisories/unreviewed/2022/04/GHSA-963q-946c-mq2q/GHSA-963q-946c-mq2q.json index 43574bd664b..8db50412b39 100644 --- a/advisories/unreviewed/2022/04/GHSA-963q-946c-mq2q/GHSA-963q-946c-mq2q.json +++ b/advisories/unreviewed/2022/04/GHSA-963q-946c-mq2q/GHSA-963q-946c-mq2q.json @@ -7,12 +7,8 @@ "CVE-2000-0956" ], "details": "cyrus-sasl before 1.5.24 in Red Hat Linux 7.0 does not properly verify the authorization for a local user, which could allow the users to bypass specified access restrictions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-96j2-q497-7v4c/GHSA-96j2-q497-7v4c.json b/advisories/unreviewed/2022/04/GHSA-96j2-q497-7v4c/GHSA-96j2-q497-7v4c.json index 03ddeda7d5f..465933d16b2 100644 --- a/advisories/unreviewed/2022/04/GHSA-96j2-q497-7v4c/GHSA-96j2-q497-7v4c.json +++ b/advisories/unreviewed/2022/04/GHSA-96j2-q497-7v4c/GHSA-96j2-q497-7v4c.json @@ -7,12 +7,8 @@ "CVE-2000-1047" ], "details": "Buffer overflow in SMTP service of Lotus Domino 5.0.4 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long ENVID keyword in the \"MAIL FROM\" command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-97jj-3vjw-4wp9/GHSA-97jj-3vjw-4wp9.json b/advisories/unreviewed/2022/04/GHSA-97jj-3vjw-4wp9/GHSA-97jj-3vjw-4wp9.json index 4bfe41e8478..84ee1ac8bf8 100644 --- a/advisories/unreviewed/2022/04/GHSA-97jj-3vjw-4wp9/GHSA-97jj-3vjw-4wp9.json +++ b/advisories/unreviewed/2022/04/GHSA-97jj-3vjw-4wp9/GHSA-97jj-3vjw-4wp9.json @@ -7,12 +7,8 @@ "CVE-2000-0985" ], "details": "Buffer overflow in All-Mail 1.1 allows remote attackers to execute arbitrary commands via a long \"MAIL FROM\" or \"RCPT TO\" command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-98mf-vh98-gm88/GHSA-98mf-vh98-gm88.json b/advisories/unreviewed/2022/04/GHSA-98mf-vh98-gm88/GHSA-98mf-vh98-gm88.json index 332a993e73b..707f7382f72 100644 --- a/advisories/unreviewed/2022/04/GHSA-98mf-vh98-gm88/GHSA-98mf-vh98-gm88.json +++ b/advisories/unreviewed/2022/04/GHSA-98mf-vh98-gm88/GHSA-98mf-vh98-gm88.json @@ -7,12 +7,8 @@ "CVE-2000-1020" ], "details": "Heap overflow in Worldclient in Mdaemon 3.1.1 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-99j3-f38h-jpgx/GHSA-99j3-f38h-jpgx.json b/advisories/unreviewed/2022/04/GHSA-99j3-f38h-jpgx/GHSA-99j3-f38h-jpgx.json index f002c1443a8..cce8ac465d1 100644 --- a/advisories/unreviewed/2022/04/GHSA-99j3-f38h-jpgx/GHSA-99j3-f38h-jpgx.json +++ b/advisories/unreviewed/2022/04/GHSA-99j3-f38h-jpgx/GHSA-99j3-f38h-jpgx.json @@ -7,12 +7,8 @@ "CVE-2000-0888" ], "details": "named in BIND 8.2 through 8.2.2-P6 allows remote attackers to cause a denial of service by sending an SRV record to the server, aka the \"srv bug.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-99vj-34x3-hjwq/GHSA-99vj-34x3-hjwq.json b/advisories/unreviewed/2022/04/GHSA-99vj-34x3-hjwq/GHSA-99vj-34x3-hjwq.json index ea94c9d08dd..9f96571070b 100644 --- a/advisories/unreviewed/2022/04/GHSA-99vj-34x3-hjwq/GHSA-99vj-34x3-hjwq.json +++ b/advisories/unreviewed/2022/04/GHSA-99vj-34x3-hjwq/GHSA-99vj-34x3-hjwq.json @@ -7,12 +7,8 @@ "CVE-2000-0948" ], "details": "GnoRPM before 0.95 allows local users to modify arbitrary files via a symlink attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9h2c-xp2f-cccj/GHSA-9h2c-xp2f-cccj.json b/advisories/unreviewed/2022/04/GHSA-9h2c-xp2f-cccj/GHSA-9h2c-xp2f-cccj.json index e377f006ee6..bdfdee891aa 100644 --- a/advisories/unreviewed/2022/04/GHSA-9h2c-xp2f-cccj/GHSA-9h2c-xp2f-cccj.json +++ b/advisories/unreviewed/2022/04/GHSA-9h2c-xp2f-cccj/GHSA-9h2c-xp2f-cccj.json @@ -7,12 +7,8 @@ "CVE-2000-0932" ], "details": "MAILsweeper for SMTP 3.x does not properly handle corrupt CDA documents in a ZIP file and hangs, which allows remote attackers to cause a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9h5w-jpxj-5jvf/GHSA-9h5w-jpxj-5jvf.json b/advisories/unreviewed/2022/04/GHSA-9h5w-jpxj-5jvf/GHSA-9h5w-jpxj-5jvf.json index 1b3c40f265a..9ace31d179a 100644 --- a/advisories/unreviewed/2022/04/GHSA-9h5w-jpxj-5jvf/GHSA-9h5w-jpxj-5jvf.json +++ b/advisories/unreviewed/2022/04/GHSA-9h5w-jpxj-5jvf/GHSA-9h5w-jpxj-5jvf.json @@ -7,12 +7,8 @@ "CVE-2000-1029" ], "details": "Buffer overflow in host command allows a remote attacker to execute arbitrary commands via a long response to an AXFR query.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9m5v-hm6x-m9g5/GHSA-9m5v-hm6x-m9g5.json b/advisories/unreviewed/2022/04/GHSA-9m5v-hm6x-m9g5/GHSA-9m5v-hm6x-m9g5.json index 6413dc21be7..dda2e0afc35 100644 --- a/advisories/unreviewed/2022/04/GHSA-9m5v-hm6x-m9g5/GHSA-9m5v-hm6x-m9g5.json +++ b/advisories/unreviewed/2022/04/GHSA-9m5v-hm6x-m9g5/GHSA-9m5v-hm6x-m9g5.json @@ -7,12 +7,8 @@ "CVE-2000-0792" ], "details": "Gnome Lokkit firewall package before 0.41 does not properly restrict access to some ports, even if a user does not make any services available.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9q53-p5v9-p52m/GHSA-9q53-p5v9-p52m.json b/advisories/unreviewed/2022/04/GHSA-9q53-p5v9-p52m/GHSA-9q53-p5v9-p52m.json index 2a720732ba7..46af86667d1 100644 --- a/advisories/unreviewed/2022/04/GHSA-9q53-p5v9-p52m/GHSA-9q53-p5v9-p52m.json +++ b/advisories/unreviewed/2022/04/GHSA-9q53-p5v9-p52m/GHSA-9q53-p5v9-p52m.json @@ -7,12 +7,8 @@ "CVE-2000-1038" ], "details": "The web administration interface for IBM AS/400 Firewall allows remote attackers to cause a denial of service via an empty GET request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9v29-9c24-g7f5/GHSA-9v29-9c24-g7f5.json b/advisories/unreviewed/2022/04/GHSA-9v29-9c24-g7f5/GHSA-9v29-9c24-g7f5.json index 18a14bddedf..ef063d8afb0 100644 --- a/advisories/unreviewed/2022/04/GHSA-9v29-9c24-g7f5/GHSA-9v29-9c24-g7f5.json +++ b/advisories/unreviewed/2022/04/GHSA-9v29-9c24-g7f5/GHSA-9v29-9c24-g7f5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-9vc2-9r44-hc96/GHSA-9vc2-9r44-hc96.json b/advisories/unreviewed/2022/04/GHSA-9vc2-9r44-hc96/GHSA-9vc2-9r44-hc96.json index 33682a3a739..e15af71c215 100644 --- a/advisories/unreviewed/2022/04/GHSA-9vc2-9r44-hc96/GHSA-9vc2-9r44-hc96.json +++ b/advisories/unreviewed/2022/04/GHSA-9vc2-9r44-hc96/GHSA-9vc2-9r44-hc96.json @@ -7,12 +7,8 @@ "CVE-2000-0953" ], "details": "Shambala Server 4.5 allows remote attackers to cause a denial of service by opening then closing a connection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9vr9-vjm6-4vpp/GHSA-9vr9-vjm6-4vpp.json b/advisories/unreviewed/2022/04/GHSA-9vr9-vjm6-4vpp/GHSA-9vr9-vjm6-4vpp.json index 5a68c0498f0..9baa19665d5 100644 --- a/advisories/unreviewed/2022/04/GHSA-9vr9-vjm6-4vpp/GHSA-9vr9-vjm6-4vpp.json +++ b/advisories/unreviewed/2022/04/GHSA-9vr9-vjm6-4vpp/GHSA-9vr9-vjm6-4vpp.json @@ -7,12 +7,8 @@ "CVE-2000-1021" ], "details": "Heap overflow in WebConfig in Mdaemon 3.1.1 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9x63-cg6m-c448/GHSA-9x63-cg6m-c448.json b/advisories/unreviewed/2022/04/GHSA-9x63-cg6m-c448/GHSA-9x63-cg6m-c448.json index 770afa0fca6..53a10b901ef 100644 --- a/advisories/unreviewed/2022/04/GHSA-9x63-cg6m-c448/GHSA-9x63-cg6m-c448.json +++ b/advisories/unreviewed/2022/04/GHSA-9x63-cg6m-c448/GHSA-9x63-cg6m-c448.json @@ -7,12 +7,8 @@ "CVE-2000-1033" ], "details": "Serv-U FTP Server allows remote attackers to bypass its anti-hammering feature by first logging on as a valid user (possibly anonymous) and then attempting to guess the passwords of other users.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9xqx-33g6-cjm5/GHSA-9xqx-33g6-cjm5.json b/advisories/unreviewed/2022/04/GHSA-9xqx-33g6-cjm5/GHSA-9xqx-33g6-cjm5.json index 2c789cb8e88..550274487f6 100644 --- a/advisories/unreviewed/2022/04/GHSA-9xqx-33g6-cjm5/GHSA-9xqx-33g6-cjm5.json +++ b/advisories/unreviewed/2022/04/GHSA-9xqx-33g6-cjm5/GHSA-9xqx-33g6-cjm5.json @@ -7,12 +7,8 @@ "CVE-2000-0842" ], "details": "The search97cgi/vtopic\" in the UnixWare 7 scohelphttp webserver allows remote attackers to read arbitrary files via a .. (dot dot) attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c42p-f9xh-v7mw/GHSA-c42p-f9xh-v7mw.json b/advisories/unreviewed/2022/04/GHSA-c42p-f9xh-v7mw/GHSA-c42p-f9xh-v7mw.json index 789f4a39ce0..e76607c188d 100644 --- a/advisories/unreviewed/2022/04/GHSA-c42p-f9xh-v7mw/GHSA-c42p-f9xh-v7mw.json +++ b/advisories/unreviewed/2022/04/GHSA-c42p-f9xh-v7mw/GHSA-c42p-f9xh-v7mw.json @@ -7,12 +7,8 @@ "CVE-2000-0846" ], "details": "Buffer overflow in Darxite 0.4 and earlier allows a remote attacker to execute arbitrary commands via a long username or password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c7fq-6vmf-wx33/GHSA-c7fq-6vmf-wx33.json b/advisories/unreviewed/2022/04/GHSA-c7fq-6vmf-wx33/GHSA-c7fq-6vmf-wx33.json index 7dada75f943..2b08bcd556b 100644 --- a/advisories/unreviewed/2022/04/GHSA-c7fq-6vmf-wx33/GHSA-c7fq-6vmf-wx33.json +++ b/advisories/unreviewed/2022/04/GHSA-c7fq-6vmf-wx33/GHSA-c7fq-6vmf-wx33.json @@ -7,12 +7,8 @@ "CVE-2000-0934" ], "details": "Glint in Red Hat Linux 5.2 allows local users to overwrite arbitrary files and cause a denial of service via a symlink attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cjx3-6mg3-8jgm/GHSA-cjx3-6mg3-8jgm.json b/advisories/unreviewed/2022/04/GHSA-cjx3-6mg3-8jgm/GHSA-cjx3-6mg3-8jgm.json index bb5dcab28ee..1eea59353e1 100644 --- a/advisories/unreviewed/2022/04/GHSA-cjx3-6mg3-8jgm/GHSA-cjx3-6mg3-8jgm.json +++ b/advisories/unreviewed/2022/04/GHSA-cjx3-6mg3-8jgm/GHSA-cjx3-6mg3-8jgm.json @@ -7,12 +7,8 @@ "CVE-2000-0982" ], "details": "Internet Explorer before 5.5 forwards cached user credentials for a secure web site to insecure pages on the same web site, which could allow remote attackers to obtain the credentials by monitoring connections to the web server, aka the \"Cached Web Credentials\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cwvq-94g9-4qc4/GHSA-cwvq-94g9-4qc4.json b/advisories/unreviewed/2022/04/GHSA-cwvq-94g9-4qc4/GHSA-cwvq-94g9-4qc4.json index f3e552d6c68..ee0b4f7e7fe 100644 --- a/advisories/unreviewed/2022/04/GHSA-cwvq-94g9-4qc4/GHSA-cwvq-94g9-4qc4.json +++ b/advisories/unreviewed/2022/04/GHSA-cwvq-94g9-4qc4/GHSA-cwvq-94g9-4qc4.json @@ -7,12 +7,8 @@ "CVE-2000-0925" ], "details": "The default installation of SmartWin CyberOffice Shopping Cart 2 (aka CyberShop) installs the _private directory with world readable permissions, which allows remote attackers to obtain sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cxgx-xwjv-23mh/GHSA-cxgx-xwjv-23mh.json b/advisories/unreviewed/2022/04/GHSA-cxgx-xwjv-23mh/GHSA-cxgx-xwjv-23mh.json index 89e3b59e194..f008d7b1543 100644 --- a/advisories/unreviewed/2022/04/GHSA-cxgx-xwjv-23mh/GHSA-cxgx-xwjv-23mh.json +++ b/advisories/unreviewed/2022/04/GHSA-cxgx-xwjv-23mh/GHSA-cxgx-xwjv-23mh.json @@ -7,12 +7,8 @@ "CVE-2000-0902" ], "details": "getalbum.php in PhotoAlbum before 0.9.9 allows remote attackers to read arbitrary files via a .. (dot dot) attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f26q-x9wv-632w/GHSA-f26q-x9wv-632w.json b/advisories/unreviewed/2022/04/GHSA-f26q-x9wv-632w/GHSA-f26q-x9wv-632w.json index d6f8860ea68..c3ccfe408dd 100644 --- a/advisories/unreviewed/2022/04/GHSA-f26q-x9wv-632w/GHSA-f26q-x9wv-632w.json +++ b/advisories/unreviewed/2022/04/GHSA-f26q-x9wv-632w/GHSA-f26q-x9wv-632w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-f5m7-2587-87mp/GHSA-f5m7-2587-87mp.json b/advisories/unreviewed/2022/04/GHSA-f5m7-2587-87mp/GHSA-f5m7-2587-87mp.json index aad0184d27a..2ec74dda2df 100644 --- a/advisories/unreviewed/2022/04/GHSA-f5m7-2587-87mp/GHSA-f5m7-2587-87mp.json +++ b/advisories/unreviewed/2022/04/GHSA-f5m7-2587-87mp/GHSA-f5m7-2587-87mp.json @@ -7,12 +7,8 @@ "CVE-2000-0987" ], "details": "Buffer overflow in oidldapd in Oracle 8.1.6 allow local users to gain privileges via a long \"connect\" command line parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f6c2-x4hc-vxv2/GHSA-f6c2-x4hc-vxv2.json b/advisories/unreviewed/2022/04/GHSA-f6c2-x4hc-vxv2/GHSA-f6c2-x4hc-vxv2.json index 3dbfe685bea..d12d242dde8 100644 --- a/advisories/unreviewed/2022/04/GHSA-f6c2-x4hc-vxv2/GHSA-f6c2-x4hc-vxv2.json +++ b/advisories/unreviewed/2022/04/GHSA-f6c2-x4hc-vxv2/GHSA-f6c2-x4hc-vxv2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:H/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f8g7-fg99-vggp/GHSA-f8g7-fg99-vggp.json b/advisories/unreviewed/2022/04/GHSA-f8g7-fg99-vggp/GHSA-f8g7-fg99-vggp.json index d7c1273315d..b0ae323e28f 100644 --- a/advisories/unreviewed/2022/04/GHSA-f8g7-fg99-vggp/GHSA-f8g7-fg99-vggp.json +++ b/advisories/unreviewed/2022/04/GHSA-f8g7-fg99-vggp/GHSA-f8g7-fg99-vggp.json @@ -7,12 +7,8 @@ "CVE-2000-0892" ], "details": "Some telnet clients allow remote telnet servers to request environment variables from the client that may contain sensitive information, or remote web servers to obtain the information via a telnet: URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fccg-7wjg-c6px/GHSA-fccg-7wjg-c6px.json b/advisories/unreviewed/2022/04/GHSA-fccg-7wjg-c6px/GHSA-fccg-7wjg-c6px.json index 7e2d2b7fa6b..50448f0ae50 100644 --- a/advisories/unreviewed/2022/04/GHSA-fccg-7wjg-c6px/GHSA-fccg-7wjg-c6px.json +++ b/advisories/unreviewed/2022/04/GHSA-fccg-7wjg-c6px/GHSA-fccg-7wjg-c6px.json @@ -7,12 +7,8 @@ "CVE-2000-0796" ], "details": "Buffer overflow in dmplay in IRIX 6.2 and 6.3 allows local users to gain root privileges via a long command line option.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fcmw-94mj-87r8/GHSA-fcmw-94mj-87r8.json b/advisories/unreviewed/2022/04/GHSA-fcmw-94mj-87r8/GHSA-fcmw-94mj-87r8.json index 6f4fffe0de0..ccc71fef1b0 100644 --- a/advisories/unreviewed/2022/04/GHSA-fcmw-94mj-87r8/GHSA-fcmw-94mj-87r8.json +++ b/advisories/unreviewed/2022/04/GHSA-fcmw-94mj-87r8/GHSA-fcmw-94mj-87r8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-fgvg-x8xj-8xq8/GHSA-fgvg-x8xj-8xq8.json b/advisories/unreviewed/2022/04/GHSA-fgvg-x8xj-8xq8/GHSA-fgvg-x8xj-8xq8.json index eae59318761..4d8db5a9022 100644 --- a/advisories/unreviewed/2022/04/GHSA-fgvg-x8xj-8xq8/GHSA-fgvg-x8xj-8xq8.json +++ b/advisories/unreviewed/2022/04/GHSA-fgvg-x8xj-8xq8/GHSA-fgvg-x8xj-8xq8.json @@ -7,12 +7,8 @@ "CVE-2000-0984" ], "details": "The HTTP server in Cisco IOS 12.0 through 12.1 allows local users to cause a denial of service (crash and reload) via a URL containing a \"?/\" string.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fh6v-2hrq-2w9g/GHSA-fh6v-2hrq-2w9g.json b/advisories/unreviewed/2022/04/GHSA-fh6v-2hrq-2w9g/GHSA-fh6v-2hrq-2w9g.json index 4e5163619a9..3e9c5d938b1 100644 --- a/advisories/unreviewed/2022/04/GHSA-fh6v-2hrq-2w9g/GHSA-fh6v-2hrq-2w9g.json +++ b/advisories/unreviewed/2022/04/GHSA-fh6v-2hrq-2w9g/GHSA-fh6v-2hrq-2w9g.json @@ -7,12 +7,8 @@ "CVE-2000-0931" ], "details": "Buffer overflow in Pegasus Mail 3.11 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long email message containing binary data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fjf9-x8mw-r853/GHSA-fjf9-x8mw-r853.json b/advisories/unreviewed/2022/04/GHSA-fjf9-x8mw-r853/GHSA-fjf9-x8mw-r853.json index 63079f9484b..6c7990f79be 100644 --- a/advisories/unreviewed/2022/04/GHSA-fjf9-x8mw-r853/GHSA-fjf9-x8mw-r853.json +++ b/advisories/unreviewed/2022/04/GHSA-fjf9-x8mw-r853/GHSA-fjf9-x8mw-r853.json @@ -7,12 +7,8 @@ "CVE-2000-0887" ], "details": "named in BIND 8.2 through 8.2.2-P6 allows remote attackers to cause a denial of service by making a compressed zone transfer (ZXFR) request and performing a name service query on an authoritative record that is not cached, aka the \"zxfr bug.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fjq5-vvr8-jg5f/GHSA-fjq5-vvr8-jg5f.json b/advisories/unreviewed/2022/04/GHSA-fjq5-vvr8-jg5f/GHSA-fjq5-vvr8-jg5f.json index 07cc502236b..044dbc8a23e 100644 --- a/advisories/unreviewed/2022/04/GHSA-fjq5-vvr8-jg5f/GHSA-fjq5-vvr8-jg5f.json +++ b/advisories/unreviewed/2022/04/GHSA-fjq5-vvr8-jg5f/GHSA-fjq5-vvr8-jg5f.json @@ -7,12 +7,8 @@ "CVE-2000-0800" ], "details": "String parsing error in rpc.kstatd in the linuxnfs or knfsd packages in SuSE and possibly other Linux systems allows remote attackers to gain root privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fx38-6jp6-wf65/GHSA-fx38-6jp6-wf65.json b/advisories/unreviewed/2022/04/GHSA-fx38-6jp6-wf65/GHSA-fx38-6jp6-wf65.json index 76ac8702b6c..927a5d5738b 100644 --- a/advisories/unreviewed/2022/04/GHSA-fx38-6jp6-wf65/GHSA-fx38-6jp6-wf65.json +++ b/advisories/unreviewed/2022/04/GHSA-fx38-6jp6-wf65/GHSA-fx38-6jp6-wf65.json @@ -7,12 +7,8 @@ "CVE-2000-0981" ], "details": "MySQL Database Engine uses a weak authentication method which leaks information that could be used by a remote attacker to recover the password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fxp6-5w7j-wg3x/GHSA-fxp6-5w7j-wg3x.json b/advisories/unreviewed/2022/04/GHSA-fxp6-5w7j-wg3x/GHSA-fxp6-5w7j-wg3x.json index 86a7bf2ec7b..be1d04e912c 100644 --- a/advisories/unreviewed/2022/04/GHSA-fxp6-5w7j-wg3x/GHSA-fxp6-5w7j-wg3x.json +++ b/advisories/unreviewed/2022/04/GHSA-fxp6-5w7j-wg3x/GHSA-fxp6-5w7j-wg3x.json @@ -7,12 +7,8 @@ "CVE-2000-0979" ], "details": "File and Print Sharing service in Windows 95, Windows 98, and Windows Me does not properly check the password for a file share, which allows remote attackers to bypass share access controls by sending a 1-byte password that matches the first character of the real password, aka the \"Share Level Password\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g3hr-phff-7hcx/GHSA-g3hr-phff-7hcx.json b/advisories/unreviewed/2022/04/GHSA-g3hr-phff-7hcx/GHSA-g3hr-phff-7hcx.json index e066c8c2f45..7f9eb7b3bea 100644 --- a/advisories/unreviewed/2022/04/GHSA-g3hr-phff-7hcx/GHSA-g3hr-phff-7hcx.json +++ b/advisories/unreviewed/2022/04/GHSA-g3hr-phff-7hcx/GHSA-g3hr-phff-7hcx.json @@ -7,12 +7,8 @@ "CVE-2000-0924" ], "details": "Directory traversal vulnerability in search.cgi CGI script in Armada Master Index allows remote attackers to read arbitrary files via a .. (dot dot) attack in the \"catigory\" parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g743-m34x-3m6h/GHSA-g743-m34x-3m6h.json b/advisories/unreviewed/2022/04/GHSA-g743-m34x-3m6h/GHSA-g743-m34x-3m6h.json index df578624e84..84918a342e5 100644 --- a/advisories/unreviewed/2022/04/GHSA-g743-m34x-3m6h/GHSA-g743-m34x-3m6h.json +++ b/advisories/unreviewed/2022/04/GHSA-g743-m34x-3m6h/GHSA-g743-m34x-3m6h.json @@ -7,12 +7,8 @@ "CVE-2000-0906" ], "details": "Directory traversal vulnerability in Moreover.com cached_feed.cgi script version 4.July.00 allows remote attackers to read arbitrary files via a .. (dot dot) attack on the category or format parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g9jh-g4m5-mh59/GHSA-g9jh-g4m5-mh59.json b/advisories/unreviewed/2022/04/GHSA-g9jh-g4m5-mh59/GHSA-g9jh-g4m5-mh59.json index 05d16d50924..3034b5668ea 100644 --- a/advisories/unreviewed/2022/04/GHSA-g9jh-g4m5-mh59/GHSA-g9jh-g4m5-mh59.json +++ b/advisories/unreviewed/2022/04/GHSA-g9jh-g4m5-mh59/GHSA-g9jh-g4m5-mh59.json @@ -7,12 +7,8 @@ "CVE-2000-0841" ], "details": "Buffer overflow in XMail POP3 server before version 0.59 allows remote attackers to execute arbitrary commands via a long APOP command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gf7m-qm5r-6g63/GHSA-gf7m-qm5r-6g63.json b/advisories/unreviewed/2022/04/GHSA-gf7m-qm5r-6g63/GHSA-gf7m-qm5r-6g63.json index 6b817e76592..fbb4beb66e3 100644 --- a/advisories/unreviewed/2022/04/GHSA-gf7m-qm5r-6g63/GHSA-gf7m-qm5r-6g63.json +++ b/advisories/unreviewed/2022/04/GHSA-gf7m-qm5r-6g63/GHSA-gf7m-qm5r-6g63.json @@ -7,12 +7,8 @@ "CVE-2000-0897" ], "details": "Small HTTP Server 2.03 and earlier allows remote attackers to cause a denial of service by repeatedly requesting a URL that references a directory that does not contain an index.html file, which consumes memory that is not released after the request is completed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gg4h-2f4h-wg43/GHSA-gg4h-2f4h-wg43.json b/advisories/unreviewed/2022/04/GHSA-gg4h-2f4h-wg43/GHSA-gg4h-2f4h-wg43.json index 9d299d6519d..4537be4a4ef 100644 --- a/advisories/unreviewed/2022/04/GHSA-gg4h-2f4h-wg43/GHSA-gg4h-2f4h-wg43.json +++ b/advisories/unreviewed/2022/04/GHSA-gg4h-2f4h-wg43/GHSA-gg4h-2f4h-wg43.json @@ -7,12 +7,8 @@ "CVE-2000-0871" ], "details": "Buffer overflow in EFTP allows remote attackers to cause a denial of service by sending a string that does not contain a newline, then disconnecting from the server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gj5q-rq38-2gcg/GHSA-gj5q-rq38-2gcg.json b/advisories/unreviewed/2022/04/GHSA-gj5q-rq38-2gcg/GHSA-gj5q-rq38-2gcg.json index 0a2fc1931ca..dd179291afe 100644 --- a/advisories/unreviewed/2022/04/GHSA-gj5q-rq38-2gcg/GHSA-gj5q-rq38-2gcg.json +++ b/advisories/unreviewed/2022/04/GHSA-gj5q-rq38-2gcg/GHSA-gj5q-rq38-2gcg.json @@ -7,12 +7,8 @@ "CVE-2000-0965" ], "details": "The NSAPI plugins for TGA and the Java Servlet proxy in HP-UX VVOS 10.24 and 11.04 allows an attacker to cause a denial of service (high CPU utilization).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gpmr-mm5q-r6f4/GHSA-gpmr-mm5q-r6f4.json b/advisories/unreviewed/2022/04/GHSA-gpmr-mm5q-r6f4/GHSA-gpmr-mm5q-r6f4.json index c8a9aedcd8f..445e61b541f 100644 --- a/advisories/unreviewed/2022/04/GHSA-gpmr-mm5q-r6f4/GHSA-gpmr-mm5q-r6f4.json +++ b/advisories/unreviewed/2022/04/GHSA-gpmr-mm5q-r6f4/GHSA-gpmr-mm5q-r6f4.json @@ -7,12 +7,8 @@ "CVE-2000-0988" ], "details": "WinU 1.0 through 5.1 has a backdoor password that allows remote attackers to gain access to its administrative interface and modify configuration.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gqx6-h737-v69g/GHSA-gqx6-h737-v69g.json b/advisories/unreviewed/2022/04/GHSA-gqx6-h737-v69g/GHSA-gqx6-h737-v69g.json index d9a9cd6cd94..3ddef575f9d 100644 --- a/advisories/unreviewed/2022/04/GHSA-gqx6-h737-v69g/GHSA-gqx6-h737-v69g.json +++ b/advisories/unreviewed/2022/04/GHSA-gqx6-h737-v69g/GHSA-gqx6-h737-v69g.json @@ -7,12 +7,8 @@ "CVE-2000-1003" ], "details": "NETBIOS client in Windows 95 and Windows 98 allows a remote attacker to cause a denial of service by changing a file sharing service to return an unknown driver type, which causes the client to crash.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gr5x-qv58-9jgc/GHSA-gr5x-qv58-9jgc.json b/advisories/unreviewed/2022/04/GHSA-gr5x-qv58-9jgc/GHSA-gr5x-qv58-9jgc.json index 6c7593db090..1b5eef71547 100644 --- a/advisories/unreviewed/2022/04/GHSA-gr5x-qv58-9jgc/GHSA-gr5x-qv58-9jgc.json +++ b/advisories/unreviewed/2022/04/GHSA-gr5x-qv58-9jgc/GHSA-gr5x-qv58-9jgc.json @@ -7,12 +7,8 @@ "CVE-2000-0847" ], "details": "Buffer overflow in University of Washington c-client library (used by pine and other programs) allows remote attackers to execute arbitrary commands via a long X-Keywords header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gr9w-h9wq-7qx8/GHSA-gr9w-h9wq-7qx8.json b/advisories/unreviewed/2022/04/GHSA-gr9w-h9wq-7qx8/GHSA-gr9w-h9wq-7qx8.json index a3cb65fe338..89d2e6abeb4 100644 --- a/advisories/unreviewed/2022/04/GHSA-gr9w-h9wq-7qx8/GHSA-gr9w-h9wq-7qx8.json +++ b/advisories/unreviewed/2022/04/GHSA-gr9w-h9wq-7qx8/GHSA-gr9w-h9wq-7qx8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-gv87-wvw4-8qwm/GHSA-gv87-wvw4-8qwm.json b/advisories/unreviewed/2022/04/GHSA-gv87-wvw4-8qwm/GHSA-gv87-wvw4-8qwm.json index 2537c5ce428..cca5320c5e8 100644 --- a/advisories/unreviewed/2022/04/GHSA-gv87-wvw4-8qwm/GHSA-gv87-wvw4-8qwm.json +++ b/advisories/unreviewed/2022/04/GHSA-gv87-wvw4-8qwm/GHSA-gv87-wvw4-8qwm.json @@ -7,12 +7,8 @@ "CVE-2000-1022" ], "details": "The mailguard feature in Cisco Secure PIX Firewall 5.2(2) and earlier does not properly restrict access to SMTP commands, which allows remote attackers to execute restricted commands by sending a DATA command before sending the restricted commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gx3h-q48q-vhqq/GHSA-gx3h-q48q-vhqq.json b/advisories/unreviewed/2022/04/GHSA-gx3h-q48q-vhqq/GHSA-gx3h-q48q-vhqq.json index d0d75d5abf0..777f07f7197 100644 --- a/advisories/unreviewed/2022/04/GHSA-gx3h-q48q-vhqq/GHSA-gx3h-q48q-vhqq.json +++ b/advisories/unreviewed/2022/04/GHSA-gx3h-q48q-vhqq/GHSA-gx3h-q48q-vhqq.json @@ -7,12 +7,8 @@ "CVE-2000-0933" ], "details": "The Input Method Editor (IME) in the Simplified Chinese version of Windows 2000 does not disable access to privileged functionality that should normally be restricted, which allows local users to gain privileges, aka the \"Simplified Chinese IME State Recognition\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gxg6-6xgq-qcr9/GHSA-gxg6-6xgq-qcr9.json b/advisories/unreviewed/2022/04/GHSA-gxg6-6xgq-qcr9/GHSA-gxg6-6xgq-qcr9.json index e2b81929f2f..af1419cb0c5 100644 --- a/advisories/unreviewed/2022/04/GHSA-gxg6-6xgq-qcr9/GHSA-gxg6-6xgq-qcr9.json +++ b/advisories/unreviewed/2022/04/GHSA-gxg6-6xgq-qcr9/GHSA-gxg6-6xgq-qcr9.json @@ -7,12 +7,8 @@ "CVE-2000-0831" ], "details": "Buffer overflow in Fastream FTP++ 2.0 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long username.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h2qf-prm2-vch5/GHSA-h2qf-prm2-vch5.json b/advisories/unreviewed/2022/04/GHSA-h2qf-prm2-vch5/GHSA-h2qf-prm2-vch5.json index 276626b6e03..e105fa08cff 100644 --- a/advisories/unreviewed/2022/04/GHSA-h2qf-prm2-vch5/GHSA-h2qf-prm2-vch5.json +++ b/advisories/unreviewed/2022/04/GHSA-h2qf-prm2-vch5/GHSA-h2qf-prm2-vch5.json @@ -7,12 +7,8 @@ "CVE-2000-1000" ], "details": "Format string vulnerability in AOL Instant Messenger (AIM) 4.1.2010 allows remote attackers to cause a denial of service and possibly execute arbitrary commands by transferring a file whose name includes format characters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h5rj-28xj-8wwg/GHSA-h5rj-28xj-8wwg.json b/advisories/unreviewed/2022/04/GHSA-h5rj-28xj-8wwg/GHSA-h5rj-28xj-8wwg.json index eee886fc040..d84438d2fe6 100644 --- a/advisories/unreviewed/2022/04/GHSA-h5rj-28xj-8wwg/GHSA-h5rj-28xj-8wwg.json +++ b/advisories/unreviewed/2022/04/GHSA-h5rj-28xj-8wwg/GHSA-h5rj-28xj-8wwg.json @@ -7,12 +7,8 @@ "CVE-2000-0885" ], "details": "Buffer overflows in Microsoft Network Monitor (Netmon) allow remote attackers to execute arbitrary commands via a long Browser Name in a CIFS Browse Frame, a long SNMP community name, or a long username or filename in an SMB session, aka the \"Netmon Protocol Parsing\" vulnerability. NOTE: It is highly likely that this candidate will be split into multiple candidates.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h8j5-33x3-h6g9/GHSA-h8j5-33x3-h6g9.json b/advisories/unreviewed/2022/04/GHSA-h8j5-33x3-h6g9/GHSA-h8j5-33x3-h6g9.json index 3097f1ccb19..1d0105df112 100644 --- a/advisories/unreviewed/2022/04/GHSA-h8j5-33x3-h6g9/GHSA-h8j5-33x3-h6g9.json +++ b/advisories/unreviewed/2022/04/GHSA-h8j5-33x3-h6g9/GHSA-h8j5-33x3-h6g9.json @@ -7,12 +7,8 @@ "CVE-2000-0791" ], "details": "Trustix installs the httpsd program for Apache-SSL with world-writeable permissions, which allows local users to replace it with a Trojan horse.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h974-5hr9-px48/GHSA-h974-5hr9-px48.json b/advisories/unreviewed/2022/04/GHSA-h974-5hr9-px48/GHSA-h974-5hr9-px48.json index 8b3b5721bea..94f67d1939d 100644 --- a/advisories/unreviewed/2022/04/GHSA-h974-5hr9-px48/GHSA-h974-5hr9-px48.json +++ b/advisories/unreviewed/2022/04/GHSA-h974-5hr9-px48/GHSA-h974-5hr9-px48.json @@ -7,12 +7,8 @@ "CVE-2000-0788" ], "details": "The Mail Merge tool in Microsoft Word does not prompt the user before executing Visual Basic (VBA) scripts in an Access database, which could allow an attacker to execute arbitrary commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hfxr-w796-65j3/GHSA-hfxr-w796-65j3.json b/advisories/unreviewed/2022/04/GHSA-hfxr-w796-65j3/GHSA-hfxr-w796-65j3.json index 6049bf1e434..b43b4bdaf32 100644 --- a/advisories/unreviewed/2022/04/GHSA-hfxr-w796-65j3/GHSA-hfxr-w796-65j3.json +++ b/advisories/unreviewed/2022/04/GHSA-hfxr-w796-65j3/GHSA-hfxr-w796-65j3.json @@ -7,12 +7,8 @@ "CVE-2000-0865" ], "details": "Buffer overflow in dvtermtype in Tridia Double Vision 3.07.00 allows local users to gain root privileges via a long terminal type argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hr7f-gcqx-fq4v/GHSA-hr7f-gcqx-fq4v.json b/advisories/unreviewed/2022/04/GHSA-hr7f-gcqx-fq4v/GHSA-hr7f-gcqx-fq4v.json index 07b936a020d..99513fae12e 100644 --- a/advisories/unreviewed/2022/04/GHSA-hr7f-gcqx-fq4v/GHSA-hr7f-gcqx-fq4v.json +++ b/advisories/unreviewed/2022/04/GHSA-hr7f-gcqx-fq4v/GHSA-hr7f-gcqx-fq4v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j2pw-q2v3-qqxv/GHSA-j2pw-q2v3-qqxv.json b/advisories/unreviewed/2022/04/GHSA-j2pw-q2v3-qqxv/GHSA-j2pw-q2v3-qqxv.json index 9567f026981..15c0fa13bce 100644 --- a/advisories/unreviewed/2022/04/GHSA-j2pw-q2v3-qqxv/GHSA-j2pw-q2v3-qqxv.json +++ b/advisories/unreviewed/2022/04/GHSA-j2pw-q2v3-qqxv/GHSA-j2pw-q2v3-qqxv.json @@ -7,12 +7,8 @@ "CVE-2000-0960" ], "details": "The POP3 server in Netscape Messaging Server 4.15p1 generates different error messages for incorrect user names versus incorrect passwords, which allows remote attackers to determine valid users on the system and harvest email addresses for spam abuse.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j5qf-xr3x-cvpq/GHSA-j5qf-xr3x-cvpq.json b/advisories/unreviewed/2022/04/GHSA-j5qf-xr3x-cvpq/GHSA-j5qf-xr3x-cvpq.json index 04cb53151ac..366d4ccd502 100644 --- a/advisories/unreviewed/2022/04/GHSA-j5qf-xr3x-cvpq/GHSA-j5qf-xr3x-cvpq.json +++ b/advisories/unreviewed/2022/04/GHSA-j5qf-xr3x-cvpq/GHSA-j5qf-xr3x-cvpq.json @@ -7,12 +7,8 @@ "CVE-2000-1035" ], "details": "Buffer overflows in TYPSoft FTP Server 0.78 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long USER, PASS, or CWD command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j67p-p4jf-hwvp/GHSA-j67p-p4jf-hwvp.json b/advisories/unreviewed/2022/04/GHSA-j67p-p4jf-hwvp/GHSA-j67p-p4jf-hwvp.json index 7c762eea273..f9e9c05121d 100644 --- a/advisories/unreviewed/2022/04/GHSA-j67p-p4jf-hwvp/GHSA-j67p-p4jf-hwvp.json +++ b/advisories/unreviewed/2022/04/GHSA-j67p-p4jf-hwvp/GHSA-j67p-p4jf-hwvp.json @@ -7,12 +7,8 @@ "CVE-2000-0962" ], "details": "The IPSEC implementation in OpenBSD 2.7 does not properly handle empty AH/ESP packets, which allows remote attackers to cause a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j9h3-pqvv-7ff5/GHSA-j9h3-pqvv-7ff5.json b/advisories/unreviewed/2022/04/GHSA-j9h3-pqvv-7ff5/GHSA-j9h3-pqvv-7ff5.json index 54ed4e8446a..401da2275d4 100644 --- a/advisories/unreviewed/2022/04/GHSA-j9h3-pqvv-7ff5/GHSA-j9h3-pqvv-7ff5.json +++ b/advisories/unreviewed/2022/04/GHSA-j9h3-pqvv-7ff5/GHSA-j9h3-pqvv-7ff5.json @@ -7,12 +7,8 @@ "CVE-2000-0840" ], "details": "Buffer overflow in XMail POP3 server before version 0.59 allows remote attackers to execute arbitrary commands via a long USER command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jcv9-c2pf-8g3p/GHSA-jcv9-c2pf-8g3p.json b/advisories/unreviewed/2022/04/GHSA-jcv9-c2pf-8g3p/GHSA-jcv9-c2pf-8g3p.json index 3af11337086..cee5da87874 100644 --- a/advisories/unreviewed/2022/04/GHSA-jcv9-c2pf-8g3p/GHSA-jcv9-c2pf-8g3p.json +++ b/advisories/unreviewed/2022/04/GHSA-jcv9-c2pf-8g3p/GHSA-jcv9-c2pf-8g3p.json @@ -7,12 +7,8 @@ "CVE-2000-0839" ], "details": "WinCOM LPD 1.00.90 allows remote attackers to cause a denial of service via a large number of LPD options to the LPD port (515).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jgvj-mgv6-79x3/GHSA-jgvj-mgv6-79x3.json b/advisories/unreviewed/2022/04/GHSA-jgvj-mgv6-79x3/GHSA-jgvj-mgv6-79x3.json index 6acd793386b..e9c78449a7e 100644 --- a/advisories/unreviewed/2022/04/GHSA-jgvj-mgv6-79x3/GHSA-jgvj-mgv6-79x3.json +++ b/advisories/unreviewed/2022/04/GHSA-jgvj-mgv6-79x3/GHSA-jgvj-mgv6-79x3.json @@ -7,12 +7,8 @@ "CVE-2000-0945" ], "details": "The web configuration interface for Catalyst 3500 XL switches allows remote attackers to execute arbitrary commands without authentication when the enable password is not set, via a URL containing the /exec/ directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jj3g-hjh4-j2xj/GHSA-jj3g-hjh4-j2xj.json b/advisories/unreviewed/2022/04/GHSA-jj3g-hjh4-j2xj/GHSA-jj3g-hjh4-j2xj.json index 6f214688b0d..9283d42c41c 100644 --- a/advisories/unreviewed/2022/04/GHSA-jj3g-hjh4-j2xj/GHSA-jj3g-hjh4-j2xj.json +++ b/advisories/unreviewed/2022/04/GHSA-jj3g-hjh4-j2xj/GHSA-jj3g-hjh4-j2xj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-jph8-qvmw-2p95/GHSA-jph8-qvmw-2p95.json b/advisories/unreviewed/2022/04/GHSA-jph8-qvmw-2p95/GHSA-jph8-qvmw-2p95.json index bdacfe357fe..28d339a5e0f 100644 --- a/advisories/unreviewed/2022/04/GHSA-jph8-qvmw-2p95/GHSA-jph8-qvmw-2p95.json +++ b/advisories/unreviewed/2022/04/GHSA-jph8-qvmw-2p95/GHSA-jph8-qvmw-2p95.json @@ -7,12 +7,8 @@ "CVE-2000-1009" ], "details": "dump in Red Hat Linux 6.2 trusts the pathname specified by the RSH environmental variable, which allows local users to obtain root privileges by modifying the RSH variable to point to a Trojan horse program.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jr84-3q6c-4x89/GHSA-jr84-3q6c-4x89.json b/advisories/unreviewed/2022/04/GHSA-jr84-3q6c-4x89/GHSA-jr84-3q6c-4x89.json index 3057d3b14fd..c680607d551 100644 --- a/advisories/unreviewed/2022/04/GHSA-jr84-3q6c-4x89/GHSA-jr84-3q6c-4x89.json +++ b/advisories/unreviewed/2022/04/GHSA-jr84-3q6c-4x89/GHSA-jr84-3q6c-4x89.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jrm7-fxfw-383p/GHSA-jrm7-fxfw-383p.json b/advisories/unreviewed/2022/04/GHSA-jrm7-fxfw-383p/GHSA-jrm7-fxfw-383p.json index 8c77106a456..505e643b75a 100644 --- a/advisories/unreviewed/2022/04/GHSA-jrm7-fxfw-383p/GHSA-jrm7-fxfw-383p.json +++ b/advisories/unreviewed/2022/04/GHSA-jrm7-fxfw-383p/GHSA-jrm7-fxfw-383p.json @@ -7,12 +7,8 @@ "CVE-2000-0969" ], "details": "Format string vulnerability in Half Life dedicated server build 3104 and earlier allows remote attackers to execute arbitrary commands by injecting format strings into the changelevel command, via the system console or rcon.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-m2fc-p56h-223h/GHSA-m2fc-p56h-223h.json b/advisories/unreviewed/2022/04/GHSA-m2fc-p56h-223h/GHSA-m2fc-p56h-223h.json index 4557f753b61..8ce2aed8d2d 100644 --- a/advisories/unreviewed/2022/04/GHSA-m2fc-p56h-223h/GHSA-m2fc-p56h-223h.json +++ b/advisories/unreviewed/2022/04/GHSA-m2fc-p56h-223h/GHSA-m2fc-p56h-223h.json @@ -7,12 +7,8 @@ "CVE-2000-0927" ], "details": "WQuinn QuotaAdvisor 4.1 does not properly record file sizes if they are stored in alternative data streams, which allows users to bypass quota restrictions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-m45p-gjgq-5g92/GHSA-m45p-gjgq-5g92.json b/advisories/unreviewed/2022/04/GHSA-m45p-gjgq-5g92/GHSA-m45p-gjgq-5g92.json index 7f8059cc070..7e58639aedd 100644 --- a/advisories/unreviewed/2022/04/GHSA-m45p-gjgq-5g92/GHSA-m45p-gjgq-5g92.json +++ b/advisories/unreviewed/2022/04/GHSA-m45p-gjgq-5g92/GHSA-m45p-gjgq-5g92.json @@ -7,12 +7,8 @@ "CVE-2000-0836" ], "details": "Buffer overflow in CamShot WebCam Trial2.6 allows remote attackers to execute arbitrary commands via a long Authorization header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-m5qj-69g5-cc43/GHSA-m5qj-69g5-cc43.json b/advisories/unreviewed/2022/04/GHSA-m5qj-69g5-cc43/GHSA-m5qj-69g5-cc43.json index 58bce317e25..444bcaa2f27 100644 --- a/advisories/unreviewed/2022/04/GHSA-m5qj-69g5-cc43/GHSA-m5qj-69g5-cc43.json +++ b/advisories/unreviewed/2022/04/GHSA-m5qj-69g5-cc43/GHSA-m5qj-69g5-cc43.json @@ -7,12 +7,8 @@ "CVE-2000-1014" ], "details": "Format string vulnerability in the search97.cgi CGI script in SCO help http server for Unixware 7 allows remote attackers to execute arbitrary commands via format characters in the queryText parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-m8vq-438v-vm6p/GHSA-m8vq-438v-vm6p.json b/advisories/unreviewed/2022/04/GHSA-m8vq-438v-vm6p/GHSA-m8vq-438v-vm6p.json index fdfe2358dcc..7cd97265870 100644 --- a/advisories/unreviewed/2022/04/GHSA-m8vq-438v-vm6p/GHSA-m8vq-438v-vm6p.json +++ b/advisories/unreviewed/2022/04/GHSA-m8vq-438v-vm6p/GHSA-m8vq-438v-vm6p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mcv5-j53r-62hw/GHSA-mcv5-j53r-62hw.json b/advisories/unreviewed/2022/04/GHSA-mcv5-j53r-62hw/GHSA-mcv5-j53r-62hw.json index 73fd4f9fcec..e138282bb79 100644 --- a/advisories/unreviewed/2022/04/GHSA-mcv5-j53r-62hw/GHSA-mcv5-j53r-62hw.json +++ b/advisories/unreviewed/2022/04/GHSA-mcv5-j53r-62hw/GHSA-mcv5-j53r-62hw.json @@ -7,12 +7,8 @@ "CVE-2000-1006" ], "details": "Microsoft Exchange Server 5.5 does not properly handle a MIME header with a blank charset specified, which allows remote attackers to cause a denial of service via a charset=\"\" command, aka the \"Malformed MIME Header\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mfc8-35qf-6x9f/GHSA-mfc8-35qf-6x9f.json b/advisories/unreviewed/2022/04/GHSA-mfc8-35qf-6x9f/GHSA-mfc8-35qf-6x9f.json index 5013f21132b..36b711539a7 100644 --- a/advisories/unreviewed/2022/04/GHSA-mfc8-35qf-6x9f/GHSA-mfc8-35qf-6x9f.json +++ b/advisories/unreviewed/2022/04/GHSA-mfc8-35qf-6x9f/GHSA-mfc8-35qf-6x9f.json @@ -7,12 +7,8 @@ "CVE-2000-0930" ], "details": "Pegasus Mail 3.12 allows remote attackers to read arbitrary files via an embedded URL that calls the mailto: protocol with a -F switch.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mg75-48jj-gjpc/GHSA-mg75-48jj-gjpc.json b/advisories/unreviewed/2022/04/GHSA-mg75-48jj-gjpc/GHSA-mg75-48jj-gjpc.json index 6e5cfbcdea6..73d342a1460 100644 --- a/advisories/unreviewed/2022/04/GHSA-mg75-48jj-gjpc/GHSA-mg75-48jj-gjpc.json +++ b/advisories/unreviewed/2022/04/GHSA-mg75-48jj-gjpc/GHSA-mg75-48jj-gjpc.json @@ -7,12 +7,8 @@ "CVE-2000-1046" ], "details": "Multiple buffer overflows in the ESMTP service of Lotus Domino 5.0.2c and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via long (1) \"RCPT TO,\" (2) \"SAML FROM,\" or (3) \"SOML FROM\" commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mhr6-m9pw-wprq/GHSA-mhr6-m9pw-wprq.json b/advisories/unreviewed/2022/04/GHSA-mhr6-m9pw-wprq/GHSA-mhr6-m9pw-wprq.json index 5eae5f249bc..02c9847a4b2 100644 --- a/advisories/unreviewed/2022/04/GHSA-mhr6-m9pw-wprq/GHSA-mhr6-m9pw-wprq.json +++ b/advisories/unreviewed/2022/04/GHSA-mhr6-m9pw-wprq/GHSA-mhr6-m9pw-wprq.json @@ -7,12 +7,8 @@ "CVE-2000-0881" ], "details": "The dccscan setuid program in LPPlus does not properly check if the user has the permissions to print the file that is specified to dccscan, which allows local users to print arbitrary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mj35-xjx6-4738/GHSA-mj35-xjx6-4738.json b/advisories/unreviewed/2022/04/GHSA-mj35-xjx6-4738/GHSA-mj35-xjx6-4738.json index adffba986c6..ef566204765 100644 --- a/advisories/unreviewed/2022/04/GHSA-mj35-xjx6-4738/GHSA-mj35-xjx6-4738.json +++ b/advisories/unreviewed/2022/04/GHSA-mj35-xjx6-4738/GHSA-mj35-xjx6-4738.json @@ -7,12 +7,8 @@ "CVE-2000-0852" ], "details": "Multiple buffer overflows in eject on FreeBSD and possibly other OSes allows local users to gain root privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mp2m-x539-q3q6/GHSA-mp2m-x539-q3q6.json b/advisories/unreviewed/2022/04/GHSA-mp2m-x539-q3q6/GHSA-mp2m-x539-q3q6.json index a0201adec16..977045f3977 100644 --- a/advisories/unreviewed/2022/04/GHSA-mp2m-x539-q3q6/GHSA-mp2m-x539-q3q6.json +++ b/advisories/unreviewed/2022/04/GHSA-mp2m-x539-q3q6/GHSA-mp2m-x539-q3q6.json @@ -7,12 +7,8 @@ "CVE-2000-0968" ], "details": "Buffer overflow in Half Life dedicated server before build 3104 allows remote attackers to execute arbitrary commands via a long rcon command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mp84-4rj8-p3fh/GHSA-mp84-4rj8-p3fh.json b/advisories/unreviewed/2022/04/GHSA-mp84-4rj8-p3fh/GHSA-mp84-4rj8-p3fh.json index 974df19a5c1..c8197da9158 100644 --- a/advisories/unreviewed/2022/04/GHSA-mp84-4rj8-p3fh/GHSA-mp84-4rj8-p3fh.json +++ b/advisories/unreviewed/2022/04/GHSA-mp84-4rj8-p3fh/GHSA-mp84-4rj8-p3fh.json @@ -7,12 +7,8 @@ "CVE-2000-0807" ], "details": "The OPSEC communications authentication mechanism (fwn1) in Check Point VPN-1/FireWall-1 4.1 and earlier allows remote attackers to spoof connections, aka the \"OPSEC Authentication Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mq96-8pc5-pc47/GHSA-mq96-8pc5-pc47.json b/advisories/unreviewed/2022/04/GHSA-mq96-8pc5-pc47/GHSA-mq96-8pc5-pc47.json index fe5e40ca390..3a308fdc82f 100644 --- a/advisories/unreviewed/2022/04/GHSA-mq96-8pc5-pc47/GHSA-mq96-8pc5-pc47.json +++ b/advisories/unreviewed/2022/04/GHSA-mq96-8pc5-pc47/GHSA-mq96-8pc5-pc47.json @@ -7,12 +7,8 @@ "CVE-2000-0882" ], "details": "Intel Express 500 series switches allow a remote attacker to cause a denial of service via a malformed ICMP packet, which causes the CPU to crash.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mr8j-g9gr-mgwq/GHSA-mr8j-g9gr-mgwq.json b/advisories/unreviewed/2022/04/GHSA-mr8j-g9gr-mgwq/GHSA-mr8j-g9gr-mgwq.json index d8ace79bb2e..0630b46d8fe 100644 --- a/advisories/unreviewed/2022/04/GHSA-mr8j-g9gr-mgwq/GHSA-mr8j-g9gr-mgwq.json +++ b/advisories/unreviewed/2022/04/GHSA-mr8j-g9gr-mgwq/GHSA-mr8j-g9gr-mgwq.json @@ -7,12 +7,8 @@ "CVE-2000-0905" ], "details": "QNX Embedded Resource Manager in Voyager web server 2.01B in the demo disks for QNX 405 allows remote attackers to read sensitive system statistics information via the embedded.html web page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mwxq-5whq-6gjx/GHSA-mwxq-5whq-6gjx.json b/advisories/unreviewed/2022/04/GHSA-mwxq-5whq-6gjx/GHSA-mwxq-5whq-6gjx.json index 7babe385c6f..b8c7751a1a1 100644 --- a/advisories/unreviewed/2022/04/GHSA-mwxq-5whq-6gjx/GHSA-mwxq-5whq-6gjx.json +++ b/advisories/unreviewed/2022/04/GHSA-mwxq-5whq-6gjx/GHSA-mwxq-5whq-6gjx.json @@ -7,12 +7,8 @@ "CVE-2000-0891" ], "details": "A default ECL in Lotus Notes before 5.02 allows remote attackers to execute arbitrary commands by attaching a malicious program in an email message that is automatically executed when the user opens the email.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p2v4-hxgw-m9v7/GHSA-p2v4-hxgw-m9v7.json b/advisories/unreviewed/2022/04/GHSA-p2v4-hxgw-m9v7/GHSA-p2v4-hxgw-m9v7.json index 7a2c1a81e92..00f84ad5391 100644 --- a/advisories/unreviewed/2022/04/GHSA-p2v4-hxgw-m9v7/GHSA-p2v4-hxgw-m9v7.json +++ b/advisories/unreviewed/2022/04/GHSA-p2v4-hxgw-m9v7/GHSA-p2v4-hxgw-m9v7.json @@ -7,12 +7,8 @@ "CVE-2000-0851" ], "details": "Buffer overflow in the Still Image Service in Windows 2000 allows local users to gain additional privileges via a long WM_USER message, aka the \"Still Image Service Privilege Escalation\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p3r3-w3mg-3rp5/GHSA-p3r3-w3mg-3rp5.json b/advisories/unreviewed/2022/04/GHSA-p3r3-w3mg-3rp5/GHSA-p3r3-w3mg-3rp5.json index 6219ae0c97c..0fe954325db 100644 --- a/advisories/unreviewed/2022/04/GHSA-p3r3-w3mg-3rp5/GHSA-p3r3-w3mg-3rp5.json +++ b/advisories/unreviewed/2022/04/GHSA-p3r3-w3mg-3rp5/GHSA-p3r3-w3mg-3rp5.json @@ -7,12 +7,8 @@ "CVE-2000-0804" ], "details": "Check Point VPN-1/FireWall-1 4.1 and earlier allows remote attackers to bypass the directionality check via fragmented TCP connection requests or reopening closed TCP connection requests, aka \"One-way Connection Enforcement Bypass.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p43f-q89p-7fm6/GHSA-p43f-q89p-7fm6.json b/advisories/unreviewed/2022/04/GHSA-p43f-q89p-7fm6/GHSA-p43f-q89p-7fm6.json index 67d03a741dc..b0950341eac 100644 --- a/advisories/unreviewed/2022/04/GHSA-p43f-q89p-7fm6/GHSA-p43f-q89p-7fm6.json +++ b/advisories/unreviewed/2022/04/GHSA-p43f-q89p-7fm6/GHSA-p43f-q89p-7fm6.json @@ -7,12 +7,8 @@ "CVE-2000-0903" ], "details": "Directory traversal vulnerability in Voyager web server 2.01B in the demo disks for QNX 405 allows remote attackers to read arbitrary files via a .. (dot dot) attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p58c-67jv-wg8j/GHSA-p58c-67jv-wg8j.json b/advisories/unreviewed/2022/04/GHSA-p58c-67jv-wg8j/GHSA-p58c-67jv-wg8j.json index ab93c5a62a9..d2db346fa4f 100644 --- a/advisories/unreviewed/2022/04/GHSA-p58c-67jv-wg8j/GHSA-p58c-67jv-wg8j.json +++ b/advisories/unreviewed/2022/04/GHSA-p58c-67jv-wg8j/GHSA-p58c-67jv-wg8j.json @@ -7,12 +7,8 @@ "CVE-2000-0898" ], "details": "Small HTTP Server 2.01 does not properly process Server Side Includes (SSI) tags that contain null values, which allows local users, and possibly remote attackers, to cause the server to crash by inserting the SSI into an HTML file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p6w9-q84c-999v/GHSA-p6w9-q84c-999v.json b/advisories/unreviewed/2022/04/GHSA-p6w9-q84c-999v/GHSA-p6w9-q84c-999v.json index 9e964546d9d..8439ec265a6 100644 --- a/advisories/unreviewed/2022/04/GHSA-p6w9-q84c-999v/GHSA-p6w9-q84c-999v.json +++ b/advisories/unreviewed/2022/04/GHSA-p6w9-q84c-999v/GHSA-p6w9-q84c-999v.json @@ -7,12 +7,8 @@ "CVE-2000-0853" ], "details": "YaBB Bulletin Board 9.1.2000 allows remote attackers to read arbitrary files via a .. (dot dot) attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pcx3-q885-423g/GHSA-pcx3-q885-423g.json b/advisories/unreviewed/2022/04/GHSA-pcx3-q885-423g/GHSA-pcx3-q885-423g.json index b8f19ac23f9..ddc43c6c379 100644 --- a/advisories/unreviewed/2022/04/GHSA-pcx3-q885-423g/GHSA-pcx3-q885-423g.json +++ b/advisories/unreviewed/2022/04/GHSA-pcx3-q885-423g/GHSA-pcx3-q885-423g.json @@ -7,12 +7,8 @@ "CVE-2000-0990" ], "details": "cmd5checkpw 0.21 and earlier allows remote attackers to cause a denial of service via an \"SMTP AUTH\" command with an unknown username.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pf6w-7rf6-f8g5/GHSA-pf6w-7rf6-f8g5.json b/advisories/unreviewed/2022/04/GHSA-pf6w-7rf6-f8g5/GHSA-pf6w-7rf6-f8g5.json index 112795e7f47..f4d89530f98 100644 --- a/advisories/unreviewed/2022/04/GHSA-pf6w-7rf6-f8g5/GHSA-pf6w-7rf6-f8g5.json +++ b/advisories/unreviewed/2022/04/GHSA-pf6w-7rf6-f8g5/GHSA-pf6w-7rf6-f8g5.json @@ -7,12 +7,8 @@ "CVE-2000-1051" ], "details": "Directory traversal vulnerability in Allaire JRun 2.3 server allows remote attackers to read arbitrary files via the SSIFilter servlet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-phf2-3r4c-ww53/GHSA-phf2-3r4c-ww53.json b/advisories/unreviewed/2022/04/GHSA-phf2-3r4c-ww53/GHSA-phf2-3r4c-ww53.json index 3ece52249bf..8bd060952e5 100644 --- a/advisories/unreviewed/2022/04/GHSA-phf2-3r4c-ww53/GHSA-phf2-3r4c-ww53.json +++ b/advisories/unreviewed/2022/04/GHSA-phf2-3r4c-ww53/GHSA-phf2-3r4c-ww53.json @@ -7,12 +7,8 @@ "CVE-2000-1040" ], "details": "Format string vulnerability in logging function of ypbind 3.3, while running in debug mode, leaks file descriptors and allows an attacker to cause a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pjfm-8j94-x5vc/GHSA-pjfm-8j94-x5vc.json b/advisories/unreviewed/2022/04/GHSA-pjfm-8j94-x5vc/GHSA-pjfm-8j94-x5vc.json index cf7306d28f0..042513201ab 100644 --- a/advisories/unreviewed/2022/04/GHSA-pjfm-8j94-x5vc/GHSA-pjfm-8j94-x5vc.json +++ b/advisories/unreviewed/2022/04/GHSA-pjfm-8j94-x5vc/GHSA-pjfm-8j94-x5vc.json @@ -7,12 +7,8 @@ "CVE-2000-1010" ], "details": "Format string vulnerability in talkd in OpenBSD and possibly other BSD-based OSes allows remote attackers to execute arbitrary commands via a user name that contains format characters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pp6c-mf5j-mr6w/GHSA-pp6c-mf5j-mr6w.json b/advisories/unreviewed/2022/04/GHSA-pp6c-mf5j-mr6w/GHSA-pp6c-mf5j-mr6w.json index 112d3f32465..fae3677040e 100644 --- a/advisories/unreviewed/2022/04/GHSA-pp6c-mf5j-mr6w/GHSA-pp6c-mf5j-mr6w.json +++ b/advisories/unreviewed/2022/04/GHSA-pp6c-mf5j-mr6w/GHSA-pp6c-mf5j-mr6w.json @@ -7,12 +7,8 @@ "CVE-2000-0843" ], "details": "Buffer overflow in pam_smb and pam_ntdom pluggable authentication modules (PAM) allow remote attackers to execute arbitrary commands via a login with a long user name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pphx-q2h9-wq89/GHSA-pphx-q2h9-wq89.json b/advisories/unreviewed/2022/04/GHSA-pphx-q2h9-wq89/GHSA-pphx-q2h9-wq89.json index 7a1de98ec7e..98c9ff184da 100644 --- a/advisories/unreviewed/2022/04/GHSA-pphx-q2h9-wq89/GHSA-pphx-q2h9-wq89.json +++ b/advisories/unreviewed/2022/04/GHSA-pphx-q2h9-wq89/GHSA-pphx-q2h9-wq89.json @@ -7,12 +7,8 @@ "CVE-2000-1053" ], "details": "Allaire JRun 2.3.3 server allows remote attackers to compile and execute JSP code by inserting it via a cross-site scripting (CSS) attack and directly calling the com.livesoftware.jrun.plugins.JSP JSP servlet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pv6p-xwqp-cf4x/GHSA-pv6p-xwqp-cf4x.json b/advisories/unreviewed/2022/04/GHSA-pv6p-xwqp-cf4x/GHSA-pv6p-xwqp-cf4x.json index c7fd0a1f0b0..6680a04f31f 100644 --- a/advisories/unreviewed/2022/04/GHSA-pv6p-xwqp-cf4x/GHSA-pv6p-xwqp-cf4x.json +++ b/advisories/unreviewed/2022/04/GHSA-pv6p-xwqp-cf4x/GHSA-pv6p-xwqp-cf4x.json @@ -7,12 +7,8 @@ "CVE-2000-0816" ], "details": "Linux tmpwatch --fuser option allows local users to execute arbitrary commands by creating files whose names contain shell metacharacters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q27v-9rwf-3cwc/GHSA-q27v-9rwf-3cwc.json b/advisories/unreviewed/2022/04/GHSA-q27v-9rwf-3cwc/GHSA-q27v-9rwf-3cwc.json index e2f7b2aa611..e1f5450778c 100644 --- a/advisories/unreviewed/2022/04/GHSA-q27v-9rwf-3cwc/GHSA-q27v-9rwf-3cwc.json +++ b/advisories/unreviewed/2022/04/GHSA-q27v-9rwf-3cwc/GHSA-q27v-9rwf-3cwc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q4wg-3c94-73xq/GHSA-q4wg-3c94-73xq.json b/advisories/unreviewed/2022/04/GHSA-q4wg-3c94-73xq/GHSA-q4wg-3c94-73xq.json index ba958e94a5a..d489f302625 100644 --- a/advisories/unreviewed/2022/04/GHSA-q4wg-3c94-73xq/GHSA-q4wg-3c94-73xq.json +++ b/advisories/unreviewed/2022/04/GHSA-q4wg-3c94-73xq/GHSA-q4wg-3c94-73xq.json @@ -7,12 +7,8 @@ "CVE-2000-0918" ], "details": "Format string vulnerability in kvt in KDE 1.1.2 may allow local users to execute arbitrary commands via a DISPLAY environmental variable that contains formatting characters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q529-mj92-4xfq/GHSA-q529-mj92-4xfq.json b/advisories/unreviewed/2022/04/GHSA-q529-mj92-4xfq/GHSA-q529-mj92-4xfq.json index c3dcbea9398..c2a1656a96e 100644 --- a/advisories/unreviewed/2022/04/GHSA-q529-mj92-4xfq/GHSA-q529-mj92-4xfq.json +++ b/advisories/unreviewed/2022/04/GHSA-q529-mj92-4xfq/GHSA-q529-mj92-4xfq.json @@ -7,12 +7,8 @@ "CVE-2000-0870" ], "details": "Buffer overflow in EFTP allows remote attackers to cause a denial of service via a long string.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q545-h8q2-xgh2/GHSA-q545-h8q2-xgh2.json b/advisories/unreviewed/2022/04/GHSA-q545-h8q2-xgh2/GHSA-q545-h8q2-xgh2.json index 85af2a5c229..975b73bd9b6 100644 --- a/advisories/unreviewed/2022/04/GHSA-q545-h8q2-xgh2/GHSA-q545-h8q2-xgh2.json +++ b/advisories/unreviewed/2022/04/GHSA-q545-h8q2-xgh2/GHSA-q545-h8q2-xgh2.json @@ -7,12 +7,8 @@ "CVE-2000-0896" ], "details": "WatchGuard SOHO firewall allows remote attackers to cause a denial of service via a flood of fragmented IP packets, which causes the firewall to drop connections and stop forwarding packets.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q57h-4j7q-jmcr/GHSA-q57h-4j7q-jmcr.json b/advisories/unreviewed/2022/04/GHSA-q57h-4j7q-jmcr/GHSA-q57h-4j7q-jmcr.json index 5071e10f88f..9aabb862f78 100644 --- a/advisories/unreviewed/2022/04/GHSA-q57h-4j7q-jmcr/GHSA-q57h-4j7q-jmcr.json +++ b/advisories/unreviewed/2022/04/GHSA-q57h-4j7q-jmcr/GHSA-q57h-4j7q-jmcr.json @@ -7,12 +7,8 @@ "CVE-2000-0798" ], "details": "The truncate function in IRIX 6.x does not properly check for privileges when the file is in the xfs file system, which allows local users to delete the contents of arbitrary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q584-qw8x-gq9g/GHSA-q584-qw8x-gq9g.json b/advisories/unreviewed/2022/04/GHSA-q584-qw8x-gq9g/GHSA-q584-qw8x-gq9g.json index b32afc21ffc..24af82f3350 100644 --- a/advisories/unreviewed/2022/04/GHSA-q584-qw8x-gq9g/GHSA-q584-qw8x-gq9g.json +++ b/advisories/unreviewed/2022/04/GHSA-q584-qw8x-gq9g/GHSA-q584-qw8x-gq9g.json @@ -7,12 +7,8 @@ "CVE-2000-0923" ], "details": "authenticate.cgi CGI program in Aplio PRO allows remote attackers to execute arbitrary commands via shell metacharacters in the password parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q8hw-c43w-jmxr/GHSA-q8hw-c43w-jmxr.json b/advisories/unreviewed/2022/04/GHSA-q8hw-c43w-jmxr/GHSA-q8hw-c43w-jmxr.json index 2f9431c4441..f5bcdd8adf5 100644 --- a/advisories/unreviewed/2022/04/GHSA-q8hw-c43w-jmxr/GHSA-q8hw-c43w-jmxr.json +++ b/advisories/unreviewed/2022/04/GHSA-q8hw-c43w-jmxr/GHSA-q8hw-c43w-jmxr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qvj5-mwx2-6v6v/GHSA-qvj5-mwx2-6v6v.json b/advisories/unreviewed/2022/04/GHSA-qvj5-mwx2-6v6v/GHSA-qvj5-mwx2-6v6v.json index 7069b2be7b3..c5193319d97 100644 --- a/advisories/unreviewed/2022/04/GHSA-qvj5-mwx2-6v6v/GHSA-qvj5-mwx2-6v6v.json +++ b/advisories/unreviewed/2022/04/GHSA-qvj5-mwx2-6v6v/GHSA-qvj5-mwx2-6v6v.json @@ -7,12 +7,8 @@ "CVE-2000-1031" ], "details": "Buffer overflow in dtterm in HP-UX 11.0 and HP Tru64 UNIX 4.0f through 5.1a allows local users to execute arbitrary code via a long -tn option.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qw49-8j6q-jw63/GHSA-qw49-8j6q-jw63.json b/advisories/unreviewed/2022/04/GHSA-qw49-8j6q-jw63/GHSA-qw49-8j6q-jw63.json index 9109b74921f..da24c43c2fa 100644 --- a/advisories/unreviewed/2022/04/GHSA-qw49-8j6q-jw63/GHSA-qw49-8j6q-jw63.json +++ b/advisories/unreviewed/2022/04/GHSA-qw49-8j6q-jw63/GHSA-qw49-8j6q-jw63.json @@ -7,12 +7,8 @@ "CVE-2000-1028" ], "details": "Buffer overflow in cu program in HP-UX 11.0 may allow local users to gain privileges via a long -l command line argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qw66-x6vv-xrg3/GHSA-qw66-x6vv-xrg3.json b/advisories/unreviewed/2022/04/GHSA-qw66-x6vv-xrg3/GHSA-qw66-x6vv-xrg3.json index ee94fff4027..3ac7063a9c2 100644 --- a/advisories/unreviewed/2022/04/GHSA-qw66-x6vv-xrg3/GHSA-qw66-x6vv-xrg3.json +++ b/advisories/unreviewed/2022/04/GHSA-qw66-x6vv-xrg3/GHSA-qw66-x6vv-xrg3.json @@ -7,12 +7,8 @@ "CVE-2000-0949" ], "details": "Heap overflow in savestr function in LBNL traceroute 1.4a5 and earlier allows a local user to execute arbitrary commands via the -g option.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-r3j3-pmcj-gfjw/GHSA-r3j3-pmcj-gfjw.json b/advisories/unreviewed/2022/04/GHSA-r3j3-pmcj-gfjw/GHSA-r3j3-pmcj-gfjw.json index 9f109010e80..3004a8d3289 100644 --- a/advisories/unreviewed/2022/04/GHSA-r3j3-pmcj-gfjw/GHSA-r3j3-pmcj-gfjw.json +++ b/advisories/unreviewed/2022/04/GHSA-r3j3-pmcj-gfjw/GHSA-r3j3-pmcj-gfjw.json @@ -7,12 +7,8 @@ "CVE-2000-1015" ], "details": "The default configuration of Slashcode before version 2.0 Alpha has a default administrative password, which allows remote attackers to gain Slashcode privileges and possibly execute arbitrary commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-r3qv-2j8h-wj2v/GHSA-r3qv-2j8h-wj2v.json b/advisories/unreviewed/2022/04/GHSA-r3qv-2j8h-wj2v/GHSA-r3qv-2j8h-wj2v.json index 02fa3dfbf52..78214ca8827 100644 --- a/advisories/unreviewed/2022/04/GHSA-r3qv-2j8h-wj2v/GHSA-r3qv-2j8h-wj2v.json +++ b/advisories/unreviewed/2022/04/GHSA-r3qv-2j8h-wj2v/GHSA-r3qv-2j8h-wj2v.json @@ -7,12 +7,8 @@ "CVE-2000-0832" ], "details": "Htgrep CGI program allows remote attackers to read arbitrary files by specifying the full pathname in the hdr parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-r6h8-3hr3-v266/GHSA-r6h8-3hr3-v266.json b/advisories/unreviewed/2022/04/GHSA-r6h8-3hr3-v266/GHSA-r6h8-3hr3-v266.json index 8644a7f0f44..5fcf621496b 100644 --- a/advisories/unreviewed/2022/04/GHSA-r6h8-3hr3-v266/GHSA-r6h8-3hr3-v266.json +++ b/advisories/unreviewed/2022/04/GHSA-r6h8-3hr3-v266/GHSA-r6h8-3hr3-v266.json @@ -7,12 +7,8 @@ "CVE-2000-0838" ], "details": "Fastream FUR HTTP server 1.0b allows remote attackers to cause a denial of service via a long GET request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-r7r9-rf39-874f/GHSA-r7r9-rf39-874f.json b/advisories/unreviewed/2022/04/GHSA-r7r9-rf39-874f/GHSA-r7r9-rf39-874f.json index f9251eb894d..451e9af5dbb 100644 --- a/advisories/unreviewed/2022/04/GHSA-r7r9-rf39-874f/GHSA-r7r9-rf39-874f.json +++ b/advisories/unreviewed/2022/04/GHSA-r7r9-rf39-874f/GHSA-r7r9-rf39-874f.json @@ -7,12 +7,8 @@ "CVE-2000-0868" ], "details": "The default configuration of Apache 1.3.12 in SuSE Linux 6.4 allows remote attackers to read source code for CGI scripts by replacing the /cgi-bin/ in the requested URL with /cgi-bin-sdb/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-r8m5-3xgx-3jm2/GHSA-r8m5-3xgx-3jm2.json b/advisories/unreviewed/2022/04/GHSA-r8m5-3xgx-3jm2/GHSA-r8m5-3xgx-3jm2.json index 832b54431b1..691a5d6c2af 100644 --- a/advisories/unreviewed/2022/04/GHSA-r8m5-3xgx-3jm2/GHSA-r8m5-3xgx-3jm2.json +++ b/advisories/unreviewed/2022/04/GHSA-r8m5-3xgx-3jm2/GHSA-r8m5-3xgx-3jm2.json @@ -7,12 +7,8 @@ "CVE-2000-0793" ], "details": "Norton AntiVirus 5.00.01C with the Novell Netware client does not properly restart the auto-protection service after the first user has logged off of the system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rgrf-mwcx-w9r5/GHSA-rgrf-mwcx-w9r5.json b/advisories/unreviewed/2022/04/GHSA-rgrf-mwcx-w9r5/GHSA-rgrf-mwcx-w9r5.json index 8ee8c159f74..5a4126a40a3 100644 --- a/advisories/unreviewed/2022/04/GHSA-rgrf-mwcx-w9r5/GHSA-rgrf-mwcx-w9r5.json +++ b/advisories/unreviewed/2022/04/GHSA-rgrf-mwcx-w9r5/GHSA-rgrf-mwcx-w9r5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rhhg-gcgg-238f/GHSA-rhhg-gcgg-238f.json b/advisories/unreviewed/2022/04/GHSA-rhhg-gcgg-238f/GHSA-rhhg-gcgg-238f.json index 66021ce68f5..f5414290ebf 100644 --- a/advisories/unreviewed/2022/04/GHSA-rhhg-gcgg-238f/GHSA-rhhg-gcgg-238f.json +++ b/advisories/unreviewed/2022/04/GHSA-rhhg-gcgg-238f/GHSA-rhhg-gcgg-238f.json @@ -7,12 +7,8 @@ "CVE-2000-1054" ], "details": "Buffer overflow in CSAdmin module in CiscoSecure ACS Server 2.4(2) and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a large packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rhm7-5gpj-qgx2/GHSA-rhm7-5gpj-qgx2.json b/advisories/unreviewed/2022/04/GHSA-rhm7-5gpj-qgx2/GHSA-rhm7-5gpj-qgx2.json index d452c9730eb..e35fd62978d 100644 --- a/advisories/unreviewed/2022/04/GHSA-rhm7-5gpj-qgx2/GHSA-rhm7-5gpj-qgx2.json +++ b/advisories/unreviewed/2022/04/GHSA-rhm7-5gpj-qgx2/GHSA-rhm7-5gpj-qgx2.json @@ -7,12 +7,8 @@ "CVE-2000-0970" ], "details": "IIS 4.0 and 5.0 .ASP pages send the same Session ID cookie for secure and insecure web sessions, which could allow remote attackers to hijack the secure web session of the user if that user moves to an insecure session, aka the \"Session ID Cookie Marking\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rj9r-c2qp-rvpc/GHSA-rj9r-c2qp-rvpc.json b/advisories/unreviewed/2022/04/GHSA-rj9r-c2qp-rvpc/GHSA-rj9r-c2qp-rvpc.json index 98508290a5c..f14155bce0b 100644 --- a/advisories/unreviewed/2022/04/GHSA-rj9r-c2qp-rvpc/GHSA-rj9r-c2qp-rvpc.json +++ b/advisories/unreviewed/2022/04/GHSA-rj9r-c2qp-rvpc/GHSA-rj9r-c2qp-rvpc.json @@ -7,12 +7,8 @@ "CVE-2000-0812" ], "details": "The administration module in Sun Java web server allows remote attackers to execute arbitrary commands by uploading Java code to the module and invoke the com.sun.server.http.pagecompile.jsp92.JspServlet by requesting a URL that begins with a /servlet/ tag.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rmm5-5rjh-786h/GHSA-rmm5-5rjh-786h.json b/advisories/unreviewed/2022/04/GHSA-rmm5-5rjh-786h/GHSA-rmm5-5rjh-786h.json index 8af9015c497..eb2a2ae8017 100644 --- a/advisories/unreviewed/2022/04/GHSA-rmm5-5rjh-786h/GHSA-rmm5-5rjh-786h.json +++ b/advisories/unreviewed/2022/04/GHSA-rmm5-5rjh-786h/GHSA-rmm5-5rjh-786h.json @@ -7,12 +7,8 @@ "CVE-2000-1057" ], "details": "Vulnerabilities in database configuration scripts in HP OpenView Network Node Manager (NNM) 6.1 and earlier allows local users to gain privileges, possibly via insecure permissions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rp27-2r6m-x965/GHSA-rp27-2r6m-x965.json b/advisories/unreviewed/2022/04/GHSA-rp27-2r6m-x965/GHSA-rp27-2r6m-x965.json index a931a38273e..6cad3d0ed44 100644 --- a/advisories/unreviewed/2022/04/GHSA-rp27-2r6m-x965/GHSA-rp27-2r6m-x965.json +++ b/advisories/unreviewed/2022/04/GHSA-rp27-2r6m-x965/GHSA-rp27-2r6m-x965.json @@ -7,12 +7,8 @@ "CVE-2000-0942" ], "details": "The CiWebHitsFile component in Microsoft Indexing Services for Windows 2000 allows remote attackers to conduct a cross site scripting (CSS) attack via a CiRestriction parameter in a .htw request, aka the \"Indexing Services Cross Site Scripting\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-v3w6-x84c-6p75/GHSA-v3w6-x84c-6p75.json b/advisories/unreviewed/2022/04/GHSA-v3w6-x84c-6p75/GHSA-v3w6-x84c-6p75.json index 20bbda8630c..af0de08e25d 100644 --- a/advisories/unreviewed/2022/04/GHSA-v3w6-x84c-6p75/GHSA-v3w6-x84c-6p75.json +++ b/advisories/unreviewed/2022/04/GHSA-v3w6-x84c-6p75/GHSA-v3w6-x84c-6p75.json @@ -7,12 +7,8 @@ "CVE-2000-1008" ], "details": "PalmOS 3.5.2 and earlier uses weak encryption to store the user password, which allows attackers with physical access to the Palm device to decrypt the password and gain access to the device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-v4w5-7q96-xfmx/GHSA-v4w5-7q96-xfmx.json b/advisories/unreviewed/2022/04/GHSA-v4w5-7q96-xfmx/GHSA-v4w5-7q96-xfmx.json index e677729de3f..397cb14c629 100644 --- a/advisories/unreviewed/2022/04/GHSA-v4w5-7q96-xfmx/GHSA-v4w5-7q96-xfmx.json +++ b/advisories/unreviewed/2022/04/GHSA-v4w5-7q96-xfmx/GHSA-v4w5-7q96-xfmx.json @@ -7,12 +7,8 @@ "CVE-2000-0826" ], "details": "Buffer overflow in ddicgi.exe program in Mobius DocumentDirect for the Internet 1.2 allows remote attackers to execute arbitrary commands via a long GET request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-v744-vp6m-fvh3/GHSA-v744-vp6m-fvh3.json b/advisories/unreviewed/2022/04/GHSA-v744-vp6m-fvh3/GHSA-v744-vp6m-fvh3.json index 5209f0b8389..08e54f286de 100644 --- a/advisories/unreviewed/2022/04/GHSA-v744-vp6m-fvh3/GHSA-v744-vp6m-fvh3.json +++ b/advisories/unreviewed/2022/04/GHSA-v744-vp6m-fvh3/GHSA-v744-vp6m-fvh3.json @@ -7,12 +7,8 @@ "CVE-2000-1007" ], "details": "I-gear 3.5.7 and earlier does not properly process log entries in which a URL is longer than 255 characters, which allows an attacker to cause reporting errors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-v82r-qjrq-95w9/GHSA-v82r-qjrq-95w9.json b/advisories/unreviewed/2022/04/GHSA-v82r-qjrq-95w9/GHSA-v82r-qjrq-95w9.json index 6e7b77682ad..dbdc7c60d8a 100644 --- a/advisories/unreviewed/2022/04/GHSA-v82r-qjrq-95w9/GHSA-v82r-qjrq-95w9.json +++ b/advisories/unreviewed/2022/04/GHSA-v82r-qjrq-95w9/GHSA-v82r-qjrq-95w9.json @@ -7,12 +7,8 @@ "CVE-2000-0795" ], "details": "Buffer overflow in lpstat in IRIX 6.2 and 6.3 allows local users to gain root privileges via a long -n option.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-v8jq-8h8f-hw5p/GHSA-v8jq-8h8f-hw5p.json b/advisories/unreviewed/2022/04/GHSA-v8jq-8h8f-hw5p/GHSA-v8jq-8h8f-hw5p.json index 83f45c73c5c..4d9c04a6322 100644 --- a/advisories/unreviewed/2022/04/GHSA-v8jq-8h8f-hw5p/GHSA-v8jq-8h8f-hw5p.json +++ b/advisories/unreviewed/2022/04/GHSA-v8jq-8h8f-hw5p/GHSA-v8jq-8h8f-hw5p.json @@ -7,12 +7,8 @@ "CVE-2000-0938" ], "details": "Samba Web Administration Tool (SWAT) in Samba 2.0.7 supplies a different error message when a valid username is provided versus an invalid name, which allows remote attackers to identify valid users on the server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-v8rj-cvjr-w5pf/GHSA-v8rj-cvjr-w5pf.json b/advisories/unreviewed/2022/04/GHSA-v8rj-cvjr-w5pf/GHSA-v8rj-cvjr-w5pf.json index 1ac2d2609f6..952eb857d55 100644 --- a/advisories/unreviewed/2022/04/GHSA-v8rj-cvjr-w5pf/GHSA-v8rj-cvjr-w5pf.json +++ b/advisories/unreviewed/2022/04/GHSA-v8rj-cvjr-w5pf/GHSA-v8rj-cvjr-w5pf.json @@ -7,12 +7,8 @@ "CVE-2000-0978" ], "details": "bbd server in Big Brother System and Network Monitor before 1.5c2 allows remote attackers to execute arbitrary commands via the \"&\" shell metacharacter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-v92w-c43c-7fmw/GHSA-v92w-c43c-7fmw.json b/advisories/unreviewed/2022/04/GHSA-v92w-c43c-7fmw/GHSA-v92w-c43c-7fmw.json index 978d0514f86..5505398fabe 100644 --- a/advisories/unreviewed/2022/04/GHSA-v92w-c43c-7fmw/GHSA-v92w-c43c-7fmw.json +++ b/advisories/unreviewed/2022/04/GHSA-v92w-c43c-7fmw/GHSA-v92w-c43c-7fmw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vc22-9p26-2j2g/GHSA-vc22-9p26-2j2g.json b/advisories/unreviewed/2022/04/GHSA-vc22-9p26-2j2g/GHSA-vc22-9p26-2j2g.json index 563e42c1fbc..dc09a5f7329 100644 --- a/advisories/unreviewed/2022/04/GHSA-vc22-9p26-2j2g/GHSA-vc22-9p26-2j2g.json +++ b/advisories/unreviewed/2022/04/GHSA-vc22-9p26-2j2g/GHSA-vc22-9p26-2j2g.json @@ -7,12 +7,8 @@ "CVE-2000-1005" ], "details": "Directory traversal vulnerability in html_web_store.cgi and web_store.cgi CGI programs in eXtropia WebStore allows remote attackers to read arbitrary files via a .. (dot dot) attack on the page parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vc88-4fgw-chr5/GHSA-vc88-4fgw-chr5.json b/advisories/unreviewed/2022/04/GHSA-vc88-4fgw-chr5/GHSA-vc88-4fgw-chr5.json index 5697b6b8269..12157d08314 100644 --- a/advisories/unreviewed/2022/04/GHSA-vc88-4fgw-chr5/GHSA-vc88-4fgw-chr5.json +++ b/advisories/unreviewed/2022/04/GHSA-vc88-4fgw-chr5/GHSA-vc88-4fgw-chr5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-vcvr-wwhg-c72q/GHSA-vcvr-wwhg-c72q.json b/advisories/unreviewed/2022/04/GHSA-vcvr-wwhg-c72q/GHSA-vcvr-wwhg-c72q.json index 3da7cd59e8e..c96c203cd10 100644 --- a/advisories/unreviewed/2022/04/GHSA-vcvr-wwhg-c72q/GHSA-vcvr-wwhg-c72q.json +++ b/advisories/unreviewed/2022/04/GHSA-vcvr-wwhg-c72q/GHSA-vcvr-wwhg-c72q.json @@ -7,12 +7,8 @@ "CVE-2000-0907" ], "details": "EServ 2.92 Build 2982 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via long HELO and MAIL FROM commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vf7r-8697-6v84/GHSA-vf7r-8697-6v84.json b/advisories/unreviewed/2022/04/GHSA-vf7r-8697-6v84/GHSA-vf7r-8697-6v84.json index d218facb554..7e31037c96b 100644 --- a/advisories/unreviewed/2022/04/GHSA-vf7r-8697-6v84/GHSA-vf7r-8697-6v84.json +++ b/advisories/unreviewed/2022/04/GHSA-vf7r-8697-6v84/GHSA-vf7r-8697-6v84.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vg6v-439r-vr4v/GHSA-vg6v-439r-vr4v.json b/advisories/unreviewed/2022/04/GHSA-vg6v-439r-vr4v/GHSA-vg6v-439r-vr4v.json index d1dbb81daad..3a6bc042a7e 100644 --- a/advisories/unreviewed/2022/04/GHSA-vg6v-439r-vr4v/GHSA-vg6v-439r-vr4v.json +++ b/advisories/unreviewed/2022/04/GHSA-vg6v-439r-vr4v/GHSA-vg6v-439r-vr4v.json @@ -7,12 +7,8 @@ "CVE-2000-0911" ], "details": "IMP 2.2 and earlier allows attackers to read and delete arbitrary files by modifying the attachment_name hidden form variable, which causes IMP to send the file to the attacker as an attachment.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vhg7-5jgw-r69v/GHSA-vhg7-5jgw-r69v.json b/advisories/unreviewed/2022/04/GHSA-vhg7-5jgw-r69v/GHSA-vhg7-5jgw-r69v.json index 6aae17aa397..aeba43da3f7 100644 --- a/advisories/unreviewed/2022/04/GHSA-vhg7-5jgw-r69v/GHSA-vhg7-5jgw-r69v.json +++ b/advisories/unreviewed/2022/04/GHSA-vhg7-5jgw-r69v/GHSA-vhg7-5jgw-r69v.json @@ -7,12 +7,8 @@ "CVE-2000-0910" ], "details": "Horde library 1.02 allows attackers to execute arbitrary commands via shell metacharacters in the \"from\" address.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vhhj-4rwq-4chw/GHSA-vhhj-4rwq-4chw.json b/advisories/unreviewed/2022/04/GHSA-vhhj-4rwq-4chw/GHSA-vhhj-4rwq-4chw.json index 31f371fbbfa..13e65a9fec0 100644 --- a/advisories/unreviewed/2022/04/GHSA-vhhj-4rwq-4chw/GHSA-vhhj-4rwq-4chw.json +++ b/advisories/unreviewed/2022/04/GHSA-vhhj-4rwq-4chw/GHSA-vhhj-4rwq-4chw.json @@ -7,12 +7,8 @@ "CVE-2000-1045" ], "details": "nss_ldap earlier than 121, when run with nscd (name service caching daemon), allows remote attackers to cause a denial of service via a flood of LDAP requests.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vjmf-fjqm-657f/GHSA-vjmf-fjqm-657f.json b/advisories/unreviewed/2022/04/GHSA-vjmf-fjqm-657f/GHSA-vjmf-fjqm-657f.json index 9dd11d4b4e5..f9b160d17ff 100644 --- a/advisories/unreviewed/2022/04/GHSA-vjmf-fjqm-657f/GHSA-vjmf-fjqm-657f.json +++ b/advisories/unreviewed/2022/04/GHSA-vjmf-fjqm-657f/GHSA-vjmf-fjqm-657f.json @@ -7,12 +7,8 @@ "CVE-2000-0878" ], "details": "The mailto CGI script allows remote attacker to execute arbitrary commands via shell metacharacters in the emailadd form field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vm7j-fcrc-5wgr/GHSA-vm7j-fcrc-5wgr.json b/advisories/unreviewed/2022/04/GHSA-vm7j-fcrc-5wgr/GHSA-vm7j-fcrc-5wgr.json index 723fe04ce1a..73e39c537ca 100644 --- a/advisories/unreviewed/2022/04/GHSA-vm7j-fcrc-5wgr/GHSA-vm7j-fcrc-5wgr.json +++ b/advisories/unreviewed/2022/04/GHSA-vm7j-fcrc-5wgr/GHSA-vm7j-fcrc-5wgr.json @@ -7,12 +7,8 @@ "CVE-2000-1050" ], "details": "Allaire JRun 3.0 http servlet server allows remote attackers to directly access the WEB-INF directory via a URL request that contains an extra \"/\" in the beginning of the request (aka the \"extra leading slash\").", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vmw8-4qxc-x5wf/GHSA-vmw8-4qxc-x5wf.json b/advisories/unreviewed/2022/04/GHSA-vmw8-4qxc-x5wf/GHSA-vmw8-4qxc-x5wf.json index 1e4e3a3781d..4f5cc4cdf3b 100644 --- a/advisories/unreviewed/2022/04/GHSA-vmw8-4qxc-x5wf/GHSA-vmw8-4qxc-x5wf.json +++ b/advisories/unreviewed/2022/04/GHSA-vmw8-4qxc-x5wf/GHSA-vmw8-4qxc-x5wf.json @@ -7,12 +7,8 @@ "CVE-2000-1027" ], "details": "Cisco Secure PIX Firewall 5.2(2) allows remote attackers to determine the real IP address of a target FTP server by flooding the server with PASV requests, which includes the real IP address in the response when passive mode is established.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vp2g-92rf-r6r2/GHSA-vp2g-92rf-r6r2.json b/advisories/unreviewed/2022/04/GHSA-vp2g-92rf-r6r2/GHSA-vp2g-92rf-r6r2.json index 0f4c9268fd5..a9cee685ac7 100644 --- a/advisories/unreviewed/2022/04/GHSA-vp2g-92rf-r6r2/GHSA-vp2g-92rf-r6r2.json +++ b/advisories/unreviewed/2022/04/GHSA-vp2g-92rf-r6r2/GHSA-vp2g-92rf-r6r2.json @@ -7,12 +7,8 @@ "CVE-2000-0951" ], "details": "A misconfiguration in IIS 5.0 with Index Server enabled and the Index property set allows remote attackers to list directories in the web root via a Web Distributed Authoring and Versioning (WebDAV) search.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vp46-rrwg-r2fv/GHSA-vp46-rrwg-r2fv.json b/advisories/unreviewed/2022/04/GHSA-vp46-rrwg-r2fv/GHSA-vp46-rrwg-r2fv.json index b136a954dcc..206b8aa1b83 100644 --- a/advisories/unreviewed/2022/04/GHSA-vp46-rrwg-r2fv/GHSA-vp46-rrwg-r2fv.json +++ b/advisories/unreviewed/2022/04/GHSA-vp46-rrwg-r2fv/GHSA-vp46-rrwg-r2fv.json @@ -7,12 +7,8 @@ "CVE-2000-0926" ], "details": "SmartWin CyberOffice Shopping Cart 2 (aka CyberShop) allows remote attackers to modify price information by changing the \"Price\" hidden form variable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vqg7-xxpq-vpw2/GHSA-vqg7-xxpq-vpw2.json b/advisories/unreviewed/2022/04/GHSA-vqg7-xxpq-vpw2/GHSA-vqg7-xxpq-vpw2.json index 6dd39ebc1dd..62ec93a9d04 100644 --- a/advisories/unreviewed/2022/04/GHSA-vqg7-xxpq-vpw2/GHSA-vqg7-xxpq-vpw2.json +++ b/advisories/unreviewed/2022/04/GHSA-vqg7-xxpq-vpw2/GHSA-vqg7-xxpq-vpw2.json @@ -7,12 +7,8 @@ "CVE-2000-0813" ], "details": "Check Point VPN-1/FireWall-1 4.1 and earlier allows remote attackers to redirect FTP connections to other servers (\"FTP Bounce\") via invalid FTP commands that are processed improperly by FireWall-1, aka \"FTP Connection Enforcement Bypass.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vqh3-267m-v4c9/GHSA-vqh3-267m-v4c9.json b/advisories/unreviewed/2022/04/GHSA-vqh3-267m-v4c9/GHSA-vqh3-267m-v4c9.json index c27bc416e9f..86cd072029e 100644 --- a/advisories/unreviewed/2022/04/GHSA-vqh3-267m-v4c9/GHSA-vqh3-267m-v4c9.json +++ b/advisories/unreviewed/2022/04/GHSA-vqh3-267m-v4c9/GHSA-vqh3-267m-v4c9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vvw3-w5g2-3864/GHSA-vvw3-w5g2-3864.json b/advisories/unreviewed/2022/04/GHSA-vvw3-w5g2-3864/GHSA-vvw3-w5g2-3864.json index 71ec14a2a59..39055bde057 100644 --- a/advisories/unreviewed/2022/04/GHSA-vvw3-w5g2-3864/GHSA-vvw3-w5g2-3864.json +++ b/advisories/unreviewed/2022/04/GHSA-vvw3-w5g2-3864/GHSA-vvw3-w5g2-3864.json @@ -7,12 +7,8 @@ "CVE-2000-0946" ], "details": "Compaq Easy Access Keyboard software 1.3 does not properly disable access to custom buttons when the screen is locked, which could allow an attacker to gain privileges or execute programs without authorization.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vx4v-hfcq-7vw7/GHSA-vx4v-hfcq-7vw7.json b/advisories/unreviewed/2022/04/GHSA-vx4v-hfcq-7vw7/GHSA-vx4v-hfcq-7vw7.json index c5b91af3aa6..4c3b1c6aad3 100644 --- a/advisories/unreviewed/2022/04/GHSA-vx4v-hfcq-7vw7/GHSA-vx4v-hfcq-7vw7.json +++ b/advisories/unreviewed/2022/04/GHSA-vx4v-hfcq-7vw7/GHSA-vx4v-hfcq-7vw7.json @@ -7,12 +7,8 @@ "CVE-2000-0992" ], "details": "Directory traversal vulnerability in scp in sshd 1.2.xx allows a remote malicious scp server to overwrite arbitrary files via a .. (dot dot) attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w24q-78r2-qqx9/GHSA-w24q-78r2-qqx9.json b/advisories/unreviewed/2022/04/GHSA-w24q-78r2-qqx9/GHSA-w24q-78r2-qqx9.json index 315cc21918d..6db508091e7 100644 --- a/advisories/unreviewed/2022/04/GHSA-w24q-78r2-qqx9/GHSA-w24q-78r2-qqx9.json +++ b/advisories/unreviewed/2022/04/GHSA-w24q-78r2-qqx9/GHSA-w24q-78r2-qqx9.json @@ -7,12 +7,8 @@ "CVE-2000-0877" ], "details": "mailform.pl CGI script in MailForm 2.0 allows remote attackers to read arbitrary files by specifying the file name in the XX-attach_file parameter, which MailForm then sends to the attacker.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w5ff-3m7r-fmgf/GHSA-w5ff-3m7r-fmgf.json b/advisories/unreviewed/2022/04/GHSA-w5ff-3m7r-fmgf/GHSA-w5ff-3m7r-fmgf.json index dabe17b2bcb..b95b0ed4d60 100644 --- a/advisories/unreviewed/2022/04/GHSA-w5ff-3m7r-fmgf/GHSA-w5ff-3m7r-fmgf.json +++ b/advisories/unreviewed/2022/04/GHSA-w5ff-3m7r-fmgf/GHSA-w5ff-3m7r-fmgf.json @@ -7,12 +7,8 @@ "CVE-2000-1025" ], "details": "eWave ServletExec JSP/Java servlet engine, versions 3.0C and earlier, allows remote attackers to cause a denial of service via a URL that contains the \"/servlet/\" string, which invokes the ServletExec servlet and causes an exception if the servlet is already running.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wgrm-7mq3-m654/GHSA-wgrm-7mq3-m654.json b/advisories/unreviewed/2022/04/GHSA-wgrm-7mq3-m654/GHSA-wgrm-7mq3-m654.json index 6ec5fdfa3ce..7fbb90fb39d 100644 --- a/advisories/unreviewed/2022/04/GHSA-wgrm-7mq3-m654/GHSA-wgrm-7mq3-m654.json +++ b/advisories/unreviewed/2022/04/GHSA-wgrm-7mq3-m654/GHSA-wgrm-7mq3-m654.json @@ -7,12 +7,8 @@ "CVE-2000-0893" ], "details": "The presence of the Distributed GL Daemon (dgld) service on port 5232 on SGI IRIX systems allows remote attackers to identify the target host as an SGI system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wh39-vxfq-rrwr/GHSA-wh39-vxfq-rrwr.json b/advisories/unreviewed/2022/04/GHSA-wh39-vxfq-rrwr/GHSA-wh39-vxfq-rrwr.json index 181d3e54567..58c0266daf9 100644 --- a/advisories/unreviewed/2022/04/GHSA-wh39-vxfq-rrwr/GHSA-wh39-vxfq-rrwr.json +++ b/advisories/unreviewed/2022/04/GHSA-wh39-vxfq-rrwr/GHSA-wh39-vxfq-rrwr.json @@ -7,12 +7,8 @@ "CVE-2000-1001" ], "details": "add_2_basket.asp in Element InstantShop allows remote attackers to modify price information via the \"price\" hidden form variable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wmj9-6vp5-25g7/GHSA-wmj9-6vp5-25g7.json b/advisories/unreviewed/2022/04/GHSA-wmj9-6vp5-25g7/GHSA-wmj9-6vp5-25g7.json index 66ede1d89cb..b7dcf5405b5 100644 --- a/advisories/unreviewed/2022/04/GHSA-wmj9-6vp5-25g7/GHSA-wmj9-6vp5-25g7.json +++ b/advisories/unreviewed/2022/04/GHSA-wmj9-6vp5-25g7/GHSA-wmj9-6vp5-25g7.json @@ -7,12 +7,8 @@ "CVE-2000-0977" ], "details": "mailfile.cgi CGI program in MailFile 1.10 allows remote attackers to read arbitrary files by specifying the target file name in the \"filename\" parameter in a POST request, which is then sent by email to the address specified in the \"email\" parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wpg9-vg72-4v62/GHSA-wpg9-vg72-4v62.json b/advisories/unreviewed/2022/04/GHSA-wpg9-vg72-4v62/GHSA-wpg9-vg72-4v62.json index c3fc6ce4e01..293eb91c734 100644 --- a/advisories/unreviewed/2022/04/GHSA-wpg9-vg72-4v62/GHSA-wpg9-vg72-4v62.json +++ b/advisories/unreviewed/2022/04/GHSA-wpg9-vg72-4v62/GHSA-wpg9-vg72-4v62.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-wpw8-h2rv-fv25/GHSA-wpw8-h2rv-fv25.json b/advisories/unreviewed/2022/04/GHSA-wpw8-h2rv-fv25/GHSA-wpw8-h2rv-fv25.json index 2579a2349c0..eaa9b21d1df 100644 --- a/advisories/unreviewed/2022/04/GHSA-wpw8-h2rv-fv25/GHSA-wpw8-h2rv-fv25.json +++ b/advisories/unreviewed/2022/04/GHSA-wpw8-h2rv-fv25/GHSA-wpw8-h2rv-fv25.json @@ -7,12 +7,8 @@ "CVE-2000-1052" ], "details": "Allaire JRun 2.3 server allows remote attackers to obtain source code for executable content by directly calling the SSIFilter servlet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wq75-jf22-cjgp/GHSA-wq75-jf22-cjgp.json b/advisories/unreviewed/2022/04/GHSA-wq75-jf22-cjgp/GHSA-wq75-jf22-cjgp.json index a0fef67ec91..253f3d6fda9 100644 --- a/advisories/unreviewed/2022/04/GHSA-wq75-jf22-cjgp/GHSA-wq75-jf22-cjgp.json +++ b/advisories/unreviewed/2022/04/GHSA-wq75-jf22-cjgp/GHSA-wq75-jf22-cjgp.json @@ -7,12 +7,8 @@ "CVE-2000-0908" ], "details": "BrowseGate 2.80 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via long Authorization or Referer MIME headers in the HTTP request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wqqg-h4wv-cw99/GHSA-wqqg-h4wv-cw99.json b/advisories/unreviewed/2022/04/GHSA-wqqg-h4wv-cw99/GHSA-wqqg-h4wv-cw99.json index 20cfd3b2a85..5cbc8d60d37 100644 --- a/advisories/unreviewed/2022/04/GHSA-wqqg-h4wv-cw99/GHSA-wqqg-h4wv-cw99.json +++ b/advisories/unreviewed/2022/04/GHSA-wqqg-h4wv-cw99/GHSA-wqqg-h4wv-cw99.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-wr6p-f6xw-325w/GHSA-wr6p-f6xw-325w.json b/advisories/unreviewed/2022/04/GHSA-wr6p-f6xw-325w/GHSA-wr6p-f6xw-325w.json index 214b1f2f20b..1eff92361be 100644 --- a/advisories/unreviewed/2022/04/GHSA-wr6p-f6xw-325w/GHSA-wr6p-f6xw-325w.json +++ b/advisories/unreviewed/2022/04/GHSA-wr6p-f6xw-325w/GHSA-wr6p-f6xw-325w.json @@ -7,12 +7,8 @@ "CVE-2000-1004" ], "details": "Format string vulnerability in OpenBSD photurisd allows local users to execute arbitrary commands via a configuration file directory name that contains formatting characters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wwrg-62f8-mmw8/GHSA-wwrg-62f8-mmw8.json b/advisories/unreviewed/2022/04/GHSA-wwrg-62f8-mmw8/GHSA-wwrg-62f8-mmw8.json index 6845f5de58a..aa592fb2666 100644 --- a/advisories/unreviewed/2022/04/GHSA-wwrg-62f8-mmw8/GHSA-wwrg-62f8-mmw8.json +++ b/advisories/unreviewed/2022/04/GHSA-wwrg-62f8-mmw8/GHSA-wwrg-62f8-mmw8.json @@ -7,12 +7,8 @@ "CVE-2000-1034" ], "details": "Buffer overflow in the System Monitor ActiveX control in Windows 2000 allows remote attackers to execute arbitrary commands via a long LogFileName parameter in HTML source code, aka the \"ActiveX Parameter Validation\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wxmg-r7qv-7qf9/GHSA-wxmg-r7qv-7qf9.json b/advisories/unreviewed/2022/04/GHSA-wxmg-r7qv-7qf9/GHSA-wxmg-r7qv-7qf9.json index bd99f2780bc..14057a01f45 100644 --- a/advisories/unreviewed/2022/04/GHSA-wxmg-r7qv-7qf9/GHSA-wxmg-r7qv-7qf9.json +++ b/advisories/unreviewed/2022/04/GHSA-wxmg-r7qv-7qf9/GHSA-wxmg-r7qv-7qf9.json @@ -7,12 +7,8 @@ "CVE-2000-0959" ], "details": "glibc2 does not properly clear the LD_DEBUG_OUTPUT and LD_DEBUG environmental variables when a program is spawned from a setuid program, which could allow local users to overwrite files via a symlink attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-x2jf-2fvx-62g9/GHSA-x2jf-2fvx-62g9.json b/advisories/unreviewed/2022/04/GHSA-x2jf-2fvx-62g9/GHSA-x2jf-2fvx-62g9.json index 99f72773d9c..8044eb75fc5 100644 --- a/advisories/unreviewed/2022/04/GHSA-x2jf-2fvx-62g9/GHSA-x2jf-2fvx-62g9.json +++ b/advisories/unreviewed/2022/04/GHSA-x2jf-2fvx-62g9/GHSA-x2jf-2fvx-62g9.json @@ -7,12 +7,8 @@ "CVE-2000-0958" ], "details": "HotJava Browser 3.0 allows remote attackers to access the DOM of a web page by opening a javascript: URL in a named window.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-x6wg-8922-rm3c/GHSA-x6wg-8922-rm3c.json b/advisories/unreviewed/2022/04/GHSA-x6wg-8922-rm3c/GHSA-x6wg-8922-rm3c.json index 22d14474111..30279478caf 100644 --- a/advisories/unreviewed/2022/04/GHSA-x6wg-8922-rm3c/GHSA-x6wg-8922-rm3c.json +++ b/advisories/unreviewed/2022/04/GHSA-x6wg-8922-rm3c/GHSA-x6wg-8922-rm3c.json @@ -7,12 +7,8 @@ "CVE-2000-0899" ], "details": "Small HTTP Server 2.01 allows remote attackers to cause a denial of service by connecting to the server and sending out multiple GET, HEAD, or POST requests and closing the connection before the server responds to the requests.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-x726-32vx-56pp/GHSA-x726-32vx-56pp.json b/advisories/unreviewed/2022/04/GHSA-x726-32vx-56pp/GHSA-x726-32vx-56pp.json index 9ad797523cf..94fc12569d9 100644 --- a/advisories/unreviewed/2022/04/GHSA-x726-32vx-56pp/GHSA-x726-32vx-56pp.json +++ b/advisories/unreviewed/2022/04/GHSA-x726-32vx-56pp/GHSA-x726-32vx-56pp.json @@ -7,12 +7,8 @@ "CVE-2000-0817" ], "details": "Buffer overflow in the HTTP protocol parser for Microsoft Network Monitor (Netmon) allows remote attackers to execute arbitrary commands via malformed data, aka the \"Netmon Protocol Parsing\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-x8mq-wjxq-q628/GHSA-x8mq-wjxq-q628.json b/advisories/unreviewed/2022/04/GHSA-x8mq-wjxq-q628/GHSA-x8mq-wjxq-q628.json index bbd272a9459..7fe28141af7 100644 --- a/advisories/unreviewed/2022/04/GHSA-x8mq-wjxq-q628/GHSA-x8mq-wjxq-q628.json +++ b/advisories/unreviewed/2022/04/GHSA-x8mq-wjxq-q628/GHSA-x8mq-wjxq-q628.json @@ -7,12 +7,8 @@ "CVE-2000-1058" ], "details": "Buffer overflow in OverView5 CGI program in HP OpenView Network Node Manager (NNM) 6.1 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, in the SNMP service (snmp.exe), aka the \"Java SNMP MIB Browser Object ID parsing problem.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-x8pf-r3xx-5739/GHSA-x8pf-r3xx-5739.json b/advisories/unreviewed/2022/04/GHSA-x8pf-r3xx-5739/GHSA-x8pf-r3xx-5739.json index 38122259296..4e9f0b8895a 100644 --- a/advisories/unreviewed/2022/04/GHSA-x8pf-r3xx-5739/GHSA-x8pf-r3xx-5739.json +++ b/advisories/unreviewed/2022/04/GHSA-x8pf-r3xx-5739/GHSA-x8pf-r3xx-5739.json @@ -7,12 +7,8 @@ "CVE-2000-0875" ], "details": "WFTPD and WFTPD Pro 2.41 RC12 allows remote attackers to cause a denial of service by sending a long string of unprintable characters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xgm2-6pvq-chh4/GHSA-xgm2-6pvq-chh4.json b/advisories/unreviewed/2022/04/GHSA-xgm2-6pvq-chh4/GHSA-xgm2-6pvq-chh4.json index dcf6f54f7d9..56ce3718ba0 100644 --- a/advisories/unreviewed/2022/04/GHSA-xgm2-6pvq-chh4/GHSA-xgm2-6pvq-chh4.json +++ b/advisories/unreviewed/2022/04/GHSA-xgm2-6pvq-chh4/GHSA-xgm2-6pvq-chh4.json @@ -7,12 +7,8 @@ "CVE-2000-0912" ], "details": "MultiHTML CGI script allows remote attackers to read arbitrary files and possibly execute arbitrary commands by specifying the file name to the \"multi\" parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xj8x-p3pf-j589/GHSA-xj8x-p3pf-j589.json b/advisories/unreviewed/2022/04/GHSA-xj8x-p3pf-j589/GHSA-xj8x-p3pf-j589.json index 46d69190c5a..561ecb6e89c 100644 --- a/advisories/unreviewed/2022/04/GHSA-xj8x-p3pf-j589/GHSA-xj8x-p3pf-j589.json +++ b/advisories/unreviewed/2022/04/GHSA-xj8x-p3pf-j589/GHSA-xj8x-p3pf-j589.json @@ -7,12 +7,8 @@ "CVE-2000-0919" ], "details": "Directory traversal vulnerability in PHPix Photo Album 1.0.2 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-23c4-87c4-jw89/GHSA-23c4-87c4-jw89.json b/advisories/unreviewed/2022/05/GHSA-23c4-87c4-jw89/GHSA-23c4-87c4-jw89.json index 10f8e1961af..7d1078078f6 100644 --- a/advisories/unreviewed/2022/05/GHSA-23c4-87c4-jw89/GHSA-23c4-87c4-jw89.json +++ b/advisories/unreviewed/2022/05/GHSA-23c4-87c4-jw89/GHSA-23c4-87c4-jw89.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -95,9 +93,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-23g2-95w8-rx32/GHSA-23g2-95w8-rx32.json b/advisories/unreviewed/2022/05/GHSA-23g2-95w8-rx32/GHSA-23g2-95w8-rx32.json index 1c607eb5897..9800f52ec17 100644 --- a/advisories/unreviewed/2022/05/GHSA-23g2-95w8-rx32/GHSA-23g2-95w8-rx32.json +++ b/advisories/unreviewed/2022/05/GHSA-23g2-95w8-rx32/GHSA-23g2-95w8-rx32.json @@ -7,12 +7,8 @@ "CVE-2020-29000" ], "details": "An issue was discovered on Geeni GNC-CW013 doorbell 1.8.1 devices. A vulnerability exists in the RTSP service that allows a remote attacker to take full control of the device with a high-privileged account. By sending a crafted message, an attacker is able to remotely deliver a telnet session. Any attacker that has the ability to control DNS can exploit this vulnerability to remotely login to the device and gain access to the camera system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2486-f4hq-9m5c/GHSA-2486-f4hq-9m5c.json b/advisories/unreviewed/2022/05/GHSA-2486-f4hq-9m5c/GHSA-2486-f4hq-9m5c.json index 3a4aee76f4b..de6e24629db 100644 --- a/advisories/unreviewed/2022/05/GHSA-2486-f4hq-9m5c/GHSA-2486-f4hq-9m5c.json +++ b/advisories/unreviewed/2022/05/GHSA-2486-f4hq-9m5c/GHSA-2486-f4hq-9m5c.json @@ -7,12 +7,8 @@ "CVE-2021-3337" ], "details": "The Hide-Thread-Content plugin through 2021-01-27 for MyBB allows remote attackers to bypass intended content-reading restrictions by clicking on reply or quote in the postbit.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-24v4-jx8c-3v7g/GHSA-24v4-jx8c-3v7g.json b/advisories/unreviewed/2022/05/GHSA-24v4-jx8c-3v7g/GHSA-24v4-jx8c-3v7g.json index 8e40f816c93..29554534135 100644 --- a/advisories/unreviewed/2022/05/GHSA-24v4-jx8c-3v7g/GHSA-24v4-jx8c-3v7g.json +++ b/advisories/unreviewed/2022/05/GHSA-24v4-jx8c-3v7g/GHSA-24v4-jx8c-3v7g.json @@ -7,12 +7,8 @@ "CVE-2021-2125" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is Prior to 6.1.18. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle VM VirtualBox accessible data as well as unauthorized read access to a subset of Oracle VM VirtualBox accessible data. CVSS 3.1 Base Score 4.6 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:L/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-25xj-934p-cf7v/GHSA-25xj-934p-cf7v.json b/advisories/unreviewed/2022/05/GHSA-25xj-934p-cf7v/GHSA-25xj-934p-cf7v.json index 7ae7749a97a..b9decb2080d 100644 --- a/advisories/unreviewed/2022/05/GHSA-25xj-934p-cf7v/GHSA-25xj-934p-cf7v.json +++ b/advisories/unreviewed/2022/05/GHSA-25xj-934p-cf7v/GHSA-25xj-934p-cf7v.json @@ -7,12 +7,8 @@ "CVE-2020-4921" ], "details": "IBM Security Guardium 10.6 and 11.2 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 191398.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-282h-4pvx-ffwg/GHSA-282h-4pvx-ffwg.json b/advisories/unreviewed/2022/05/GHSA-282h-4pvx-ffwg/GHSA-282h-4pvx-ffwg.json index 1c316269f38..4928a506a4d 100644 --- a/advisories/unreviewed/2022/05/GHSA-282h-4pvx-ffwg/GHSA-282h-4pvx-ffwg.json +++ b/advisories/unreviewed/2022/05/GHSA-282h-4pvx-ffwg/GHSA-282h-4pvx-ffwg.json @@ -7,12 +7,8 @@ "CVE-2020-25173" ], "details": "An attacker with local network access can obtain a fixed cryptography key which may allow for further compromise of Reolink P2P cameras outside of local network access", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2843-wghw-w3qp/GHSA-2843-wghw-w3qp.json b/advisories/unreviewed/2022/05/GHSA-2843-wghw-w3qp/GHSA-2843-wghw-w3qp.json index 98ce6d2dafd..210eaa70e5f 100644 --- a/advisories/unreviewed/2022/05/GHSA-2843-wghw-w3qp/GHSA-2843-wghw-w3qp.json +++ b/advisories/unreviewed/2022/05/GHSA-2843-wghw-w3qp/GHSA-2843-wghw-w3qp.json @@ -7,12 +7,8 @@ "CVE-2021-23836" ], "details": "An issue was discovered in flatCore before 2.0.0 build 139. A stored XSS vulnerability was identified in the prefs_smtp_psw HTTP request body parameter for the acp interface. An admin user can inject malicious client-side script into the affected parameter without any form of input sanitization. The injected payload will be executed in the browser of a user whenever one visits the affected module page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-28x8-fw6r-v46w/GHSA-28x8-fw6r-v46w.json b/advisories/unreviewed/2022/05/GHSA-28x8-fw6r-v46w/GHSA-28x8-fw6r-v46w.json index 073370e5057..a339af6d255 100644 --- a/advisories/unreviewed/2022/05/GHSA-28x8-fw6r-v46w/GHSA-28x8-fw6r-v46w.json +++ b/advisories/unreviewed/2022/05/GHSA-28x8-fw6r-v46w/GHSA-28x8-fw6r-v46w.json @@ -7,12 +7,8 @@ "CVE-2021-23272" ], "details": "The Application Development Clients component of TIBCO Software Inc.'s TIBCO BPM Enterprise and TIBCO BPM Enterprise Distribution for TIBCO Silver Fabric contains a vulnerability that theoretically allows a low privileged attacker with network access to execute a Cross Site Scripting (XSS) attack on the affected system. Affected releases are TIBCO Software Inc.'s TIBCO BPM Enterprise: versions 4.3.0 and below and TIBCO BPM Enterprise Distribution for TIBCO Silver Fabric: versions 4.3.0 and below.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-292x-9cr3-pgc3/GHSA-292x-9cr3-pgc3.json b/advisories/unreviewed/2022/05/GHSA-292x-9cr3-pgc3/GHSA-292x-9cr3-pgc3.json index e2dd9095e0a..0ca52ce0c90 100644 --- a/advisories/unreviewed/2022/05/GHSA-292x-9cr3-pgc3/GHSA-292x-9cr3-pgc3.json +++ b/advisories/unreviewed/2022/05/GHSA-292x-9cr3-pgc3/GHSA-292x-9cr3-pgc3.json @@ -7,12 +7,8 @@ "CVE-2021-2105" ], "details": "Vulnerability in the Oracle Customer Interaction History product of Oracle E-Business Suite (component: Outcome-Result). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Customer Interaction History. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Customer Interaction History, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Customer Interaction History accessible data as well as unauthorized update, insert or delete access to some of Oracle Customer Interaction History accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-29p9-8g79-v8jp/GHSA-29p9-8g79-v8jp.json b/advisories/unreviewed/2022/05/GHSA-29p9-8g79-v8jp/GHSA-29p9-8g79-v8jp.json index efc66fe8317..794fbce47a6 100644 --- a/advisories/unreviewed/2022/05/GHSA-29p9-8g79-v8jp/GHSA-29p9-8g79-v8jp.json +++ b/advisories/unreviewed/2022/05/GHSA-29p9-8g79-v8jp/GHSA-29p9-8g79-v8jp.json @@ -7,12 +7,8 @@ "CVE-2021-22655" ], "details": "Multiple out-of-bounds read issues have been identified in the way the application processes project files, allowing an attacker to craft a special project file that may allow arbitrary code execution on the Tellus Lite V-Simulator and V-Server Lite (versions prior to 4.0.10.0).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-29q4-jv6w-vrg6/GHSA-29q4-jv6w-vrg6.json b/advisories/unreviewed/2022/05/GHSA-29q4-jv6w-vrg6/GHSA-29q4-jv6w-vrg6.json index baf2335a586..0b082b61208 100644 --- a/advisories/unreviewed/2022/05/GHSA-29q4-jv6w-vrg6/GHSA-29q4-jv6w-vrg6.json +++ b/advisories/unreviewed/2022/05/GHSA-29q4-jv6w-vrg6/GHSA-29q4-jv6w-vrg6.json @@ -7,12 +7,8 @@ "CVE-2020-4969" ], "details": "IBM Security Identity Governance and Intelligence 5.2.6 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. An attacker could exploit this vulnerability to obtain sensitive information using man in the middle techniques.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2f84-q26f-jchx/GHSA-2f84-q26f-jchx.json b/advisories/unreviewed/2022/05/GHSA-2f84-q26f-jchx/GHSA-2f84-q26f-jchx.json index cfa4700ae6e..9497940d359 100644 --- a/advisories/unreviewed/2022/05/GHSA-2f84-q26f-jchx/GHSA-2f84-q26f-jchx.json +++ b/advisories/unreviewed/2022/05/GHSA-2f84-q26f-jchx/GHSA-2f84-q26f-jchx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2ff2-j84c-3hw4/GHSA-2ff2-j84c-3hw4.json b/advisories/unreviewed/2022/05/GHSA-2ff2-j84c-3hw4/GHSA-2ff2-j84c-3hw4.json index 5ff15f4b880..6f4d5f96eed 100644 --- a/advisories/unreviewed/2022/05/GHSA-2ff2-j84c-3hw4/GHSA-2ff2-j84c-3hw4.json +++ b/advisories/unreviewed/2022/05/GHSA-2ff2-j84c-3hw4/GHSA-2ff2-j84c-3hw4.json @@ -7,12 +7,8 @@ "CVE-2020-11152" ], "details": "Race condition in HAL layer while processing callback objects received from HIDL due to lack of synchronization between accessing objects in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2fr7-wcm8-348v/GHSA-2fr7-wcm8-348v.json b/advisories/unreviewed/2022/05/GHSA-2fr7-wcm8-348v/GHSA-2fr7-wcm8-348v.json index 71befe97f1e..fa6368e7c2f 100644 --- a/advisories/unreviewed/2022/05/GHSA-2fr7-wcm8-348v/GHSA-2fr7-wcm8-348v.json +++ b/advisories/unreviewed/2022/05/GHSA-2fr7-wcm8-348v/GHSA-2fr7-wcm8-348v.json @@ -7,12 +7,8 @@ "CVE-2021-22698" ], "details": "A CWE-434: Unrestricted Upload of File with Dangerous Type vulnerability exists in the EcoStruxure Power Build - Rapsody software (V2.1.13 and prior) that could allow a stack-based buffer overflow to occur which could result in remote code execution when a malicious SSD file is uploaded and improperly parsed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2g83-v4w9-j66c/GHSA-2g83-v4w9-j66c.json b/advisories/unreviewed/2022/05/GHSA-2g83-v4w9-j66c/GHSA-2g83-v4w9-j66c.json index 4195b7aaa9e..de3e3e48db2 100644 --- a/advisories/unreviewed/2022/05/GHSA-2g83-v4w9-j66c/GHSA-2g83-v4w9-j66c.json +++ b/advisories/unreviewed/2022/05/GHSA-2g83-v4w9-j66c/GHSA-2g83-v4w9-j66c.json @@ -7,12 +7,8 @@ "CVE-2020-36201" ], "details": "An issue was discovered in certain Xerox WorkCentre products. They do not properly encrypt passwords. This affects 3655, 3655i, 58XX, 58XXi 59XX, 59XXi, 6655, 6655i, 72XX, 72XXi 78XX, 78XXi, 7970, 7970i, EC7836, and EC7856 devices.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2hjx-vpw3-qh3w/GHSA-2hjx-vpw3-qh3w.json b/advisories/unreviewed/2022/05/GHSA-2hjx-vpw3-qh3w/GHSA-2hjx-vpw3-qh3w.json index 5cb2bbb5e1e..6fb5a4c2663 100644 --- a/advisories/unreviewed/2022/05/GHSA-2hjx-vpw3-qh3w/GHSA-2hjx-vpw3-qh3w.json +++ b/advisories/unreviewed/2022/05/GHSA-2hjx-vpw3-qh3w/GHSA-2hjx-vpw3-qh3w.json @@ -7,12 +7,8 @@ "CVE-2021-22847" ], "details": "Hyweb HyCMS-J1's API fail to filter POST request parameters. Remote attackers can inject SQL syntax and execute commands without privilege.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2j76-jpwv-99mp/GHSA-2j76-jpwv-99mp.json b/advisories/unreviewed/2022/05/GHSA-2j76-jpwv-99mp/GHSA-2j76-jpwv-99mp.json index 8916b204e9d..727ecbfe7c2 100644 --- a/advisories/unreviewed/2022/05/GHSA-2j76-jpwv-99mp/GHSA-2j76-jpwv-99mp.json +++ b/advisories/unreviewed/2022/05/GHSA-2j76-jpwv-99mp/GHSA-2j76-jpwv-99mp.json @@ -7,12 +7,8 @@ "CVE-2021-22171" ], "details": "Insufficient validation of authentication parameters in GitLab Pages for GitLab 11.5+ allows an attacker to steal a victim's API token if they click on a maliciously crafted link", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2m7m-3qp3-4h9x/GHSA-2m7m-3qp3-4h9x.json b/advisories/unreviewed/2022/05/GHSA-2m7m-3qp3-4h9x/GHSA-2m7m-3qp3-4h9x.json index 61fbf7962f4..70865e88a62 100644 --- a/advisories/unreviewed/2022/05/GHSA-2m7m-3qp3-4h9x/GHSA-2m7m-3qp3-4h9x.json +++ b/advisories/unreviewed/2022/05/GHSA-2m7m-3qp3-4h9x/GHSA-2m7m-3qp3-4h9x.json @@ -7,12 +7,8 @@ "CVE-2020-4865" ], "details": "IBM Jazz Foundation products is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 190741.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2mj9-chm4-g5pj/GHSA-2mj9-chm4-g5pj.json b/advisories/unreviewed/2022/05/GHSA-2mj9-chm4-g5pj/GHSA-2mj9-chm4-g5pj.json index 72fd2268cff..733cb8ae12f 100644 --- a/advisories/unreviewed/2022/05/GHSA-2mj9-chm4-g5pj/GHSA-2mj9-chm4-g5pj.json +++ b/advisories/unreviewed/2022/05/GHSA-2mj9-chm4-g5pj/GHSA-2mj9-chm4-g5pj.json @@ -7,12 +7,8 @@ "CVE-2021-1993" ], "details": "Vulnerability in the Java VM component of Oracle Database Server. Supported versions that are affected are 12.1.0.2, 12.2.0.1, 18c and 19c. Difficult to exploit vulnerability allows low privileged attacker having Create Session privilege with network access via Oracle Net to compromise Java VM. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Java VM accessible data. CVSS 3.1 Base Score 4.8 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:N/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2mx9-p3v6-mw46/GHSA-2mx9-p3v6-mw46.json b/advisories/unreviewed/2022/05/GHSA-2mx9-p3v6-mw46/GHSA-2mx9-p3v6-mw46.json index dee7f645b30..f24ba1d8479 100644 --- a/advisories/unreviewed/2022/05/GHSA-2mx9-p3v6-mw46/GHSA-2mx9-p3v6-mw46.json +++ b/advisories/unreviewed/2022/05/GHSA-2mx9-p3v6-mw46/GHSA-2mx9-p3v6-mw46.json @@ -7,12 +7,8 @@ "CVE-2021-20622" ], "details": "Cross-site scripting vulnerability in Aterm WG2600HP firmware Ver1.0.2 and earlier, and Aterm WG2600HP2 firmware Ver1.0.2 and earlier allows remote attackers to inject an arbitrary script via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2mxg-rvhc-jqf9/GHSA-2mxg-rvhc-jqf9.json b/advisories/unreviewed/2022/05/GHSA-2mxg-rvhc-jqf9/GHSA-2mxg-rvhc-jqf9.json index b2fed8a8898..e7dab96306a 100644 --- a/advisories/unreviewed/2022/05/GHSA-2mxg-rvhc-jqf9/GHSA-2mxg-rvhc-jqf9.json +++ b/advisories/unreviewed/2022/05/GHSA-2mxg-rvhc-jqf9/GHSA-2mxg-rvhc-jqf9.json @@ -7,12 +7,8 @@ "CVE-2021-1219" ], "details": "\n A vulnerability in Cisco Smart Software Manager Satellite could allow an authenticated, local attacker to access sensitive information on an affected system.\n The vulnerability is due to insufficient protection of static credentials in the affected software. An attacker could exploit this vulnerability by gaining access to the static credential that is stored on the local device. A successful exploit could allow the attacker to view static credentials, which the attacker could use to carry out further attacks.\n ", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2pqf-865h-wqmh/GHSA-2pqf-865h-wqmh.json b/advisories/unreviewed/2022/05/GHSA-2pqf-865h-wqmh/GHSA-2pqf-865h-wqmh.json index e379915d614..651a744889b 100644 --- a/advisories/unreviewed/2022/05/GHSA-2pqf-865h-wqmh/GHSA-2pqf-865h-wqmh.json +++ b/advisories/unreviewed/2022/05/GHSA-2pqf-865h-wqmh/GHSA-2pqf-865h-wqmh.json @@ -7,12 +7,8 @@ "CVE-2021-2092" ], "details": "Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Preferences). Supported versions that are affected are 12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle CRM Technical Foundation, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle CRM Technical Foundation accessible data as well as unauthorized update, insert or delete access to some of Oracle CRM Technical Foundation accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2r9w-7426-5qwr/GHSA-2r9w-7426-5qwr.json b/advisories/unreviewed/2022/05/GHSA-2r9w-7426-5qwr/GHSA-2r9w-7426-5qwr.json index b9145a423f6..735806f0fed 100644 --- a/advisories/unreviewed/2022/05/GHSA-2r9w-7426-5qwr/GHSA-2r9w-7426-5qwr.json +++ b/advisories/unreviewed/2022/05/GHSA-2r9w-7426-5qwr/GHSA-2r9w-7426-5qwr.json @@ -7,12 +7,8 @@ "CVE-2021-2001" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 5.6.50 and prior, 5.7.30 and prior and 8.0.17 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2vm8-9q6f-6vxg/GHSA-2vm8-9q6f-6vxg.json b/advisories/unreviewed/2022/05/GHSA-2vm8-9q6f-6vxg/GHSA-2vm8-9q6f-6vxg.json index 6ee901e102f..caa488e3fca 100644 --- a/advisories/unreviewed/2022/05/GHSA-2vm8-9q6f-6vxg/GHSA-2vm8-9q6f-6vxg.json +++ b/advisories/unreviewed/2022/05/GHSA-2vm8-9q6f-6vxg/GHSA-2vm8-9q6f-6vxg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2w4h-pg4c-ww4f/GHSA-2w4h-pg4c-ww4f.json b/advisories/unreviewed/2022/05/GHSA-2w4h-pg4c-ww4f/GHSA-2w4h-pg4c-ww4f.json index 2670793819e..32d43609c4c 100644 --- a/advisories/unreviewed/2022/05/GHSA-2w4h-pg4c-ww4f/GHSA-2w4h-pg4c-ww4f.json +++ b/advisories/unreviewed/2022/05/GHSA-2w4h-pg4c-ww4f/GHSA-2w4h-pg4c-ww4f.json @@ -7,12 +7,8 @@ "CVE-2021-2045" ], "details": "Vulnerability in the Oracle Text component of Oracle Database Server. Supported versions that are affected are 12.1.0.2, 12.2.0.1, 18c and 19c. Difficult to exploit vulnerability allows low privileged attacker having Create Session privilege with network access via Oracle Net to compromise Oracle Text. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Text. CVSS 3.1 Base Score 3.1 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:L).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2wp4-vwq7-x2x6/GHSA-2wp4-vwq7-x2x6.json b/advisories/unreviewed/2022/05/GHSA-2wp4-vwq7-x2x6/GHSA-2wp4-vwq7-x2x6.json index 137444e075a..e36535e6b50 100644 --- a/advisories/unreviewed/2022/05/GHSA-2wp4-vwq7-x2x6/GHSA-2wp4-vwq7-x2x6.json +++ b/advisories/unreviewed/2022/05/GHSA-2wp4-vwq7-x2x6/GHSA-2wp4-vwq7-x2x6.json @@ -7,12 +7,8 @@ "CVE-2020-27280" ], "details": "A use after free issue has been identified in the way ISPSoft(v3.12 and prior) processes project files, allowing an attacker to craft a special project file that may allow arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2wrx-8pf9-36p7/GHSA-2wrx-8pf9-36p7.json b/advisories/unreviewed/2022/05/GHSA-2wrx-8pf9-36p7/GHSA-2wrx-8pf9-36p7.json index fc3d59dcf3c..d3286cbac2e 100644 --- a/advisories/unreviewed/2022/05/GHSA-2wrx-8pf9-36p7/GHSA-2wrx-8pf9-36p7.json +++ b/advisories/unreviewed/2022/05/GHSA-2wrx-8pf9-36p7/GHSA-2wrx-8pf9-36p7.json @@ -7,12 +7,8 @@ "CVE-2020-19364" ], "details": "OpenEMR 5.0.1 allows an authenticated attacker to upload and execute malicious PHP scripts through /controller.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2wvw-246g-ffw7/GHSA-2wvw-246g-ffw7.json b/advisories/unreviewed/2022/05/GHSA-2wvw-246g-ffw7/GHSA-2wvw-246g-ffw7.json index 3601ffe861c..6f26dbf5ce8 100644 --- a/advisories/unreviewed/2022/05/GHSA-2wvw-246g-ffw7/GHSA-2wvw-246g-ffw7.json +++ b/advisories/unreviewed/2022/05/GHSA-2wvw-246g-ffw7/GHSA-2wvw-246g-ffw7.json @@ -7,12 +7,8 @@ "CVE-2020-23161" ], "details": "Local file inclusion in Pyrescom Termod4 time management devices before 10.04k allows authenticated remote attackers to traverse directories and read sensitive files via the Maintenance > Logs menu and manipulating the file-path in the URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2xh8-rvm9-h559/GHSA-2xh8-rvm9-h559.json b/advisories/unreviewed/2022/05/GHSA-2xh8-rvm9-h559/GHSA-2xh8-rvm9-h559.json index 249f1ef47e5..3cf0572dd5b 100644 --- a/advisories/unreviewed/2022/05/GHSA-2xh8-rvm9-h559/GHSA-2xh8-rvm9-h559.json +++ b/advisories/unreviewed/2022/05/GHSA-2xh8-rvm9-h559/GHSA-2xh8-rvm9-h559.json @@ -7,12 +7,8 @@ "CVE-2021-2065" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.22 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2xxm-h632-fmch/GHSA-2xxm-h632-fmch.json b/advisories/unreviewed/2022/05/GHSA-2xxm-h632-fmch/GHSA-2xxm-h632-fmch.json index cdc2890c557..daae5fea622 100644 --- a/advisories/unreviewed/2022/05/GHSA-2xxm-h632-fmch/GHSA-2xxm-h632-fmch.json +++ b/advisories/unreviewed/2022/05/GHSA-2xxm-h632-fmch/GHSA-2xxm-h632-fmch.json @@ -7,12 +7,8 @@ "CVE-2020-3687" ], "details": "Local privilege escalation in admin services in Windows environment can occur due to an arbitrary read issue in XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-32vm-xm2q-p4f7/GHSA-32vm-xm2q-p4f7.json b/advisories/unreviewed/2022/05/GHSA-32vm-xm2q-p4f7/GHSA-32vm-xm2q-p4f7.json index 643018f2db2..bb36253eb4b 100644 --- a/advisories/unreviewed/2022/05/GHSA-32vm-xm2q-p4f7/GHSA-32vm-xm2q-p4f7.json +++ b/advisories/unreviewed/2022/05/GHSA-32vm-xm2q-p4f7/GHSA-32vm-xm2q-p4f7.json @@ -7,12 +7,8 @@ "CVE-2021-2028" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.21 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-32wp-rjr7-9fg7/GHSA-32wp-rjr7-9fg7.json b/advisories/unreviewed/2022/05/GHSA-32wp-rjr7-9fg7/GHSA-32wp-rjr7-9fg7.json index 2b77f954b1a..d7dedc65516 100644 --- a/advisories/unreviewed/2022/05/GHSA-32wp-rjr7-9fg7/GHSA-32wp-rjr7-9fg7.json +++ b/advisories/unreviewed/2022/05/GHSA-32wp-rjr7-9fg7/GHSA-32wp-rjr7-9fg7.json @@ -7,12 +7,8 @@ "CVE-2021-23835" ], "details": "An issue was discovered in flatCore before 2.0.0 build 139. A local file disclosure vulnerability was identified in the docs_file HTTP request body parameter for the acp interface. This can be exploited with admin access rights. The affected parameter (which retrieves the contents of the specified file) was found to be accepting malicious user input without proper sanitization, thus leading to retrieval of backend server sensitive files, e.g., /etc/passwd, SQLite database files, PHP source code, etc.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3322-2vjv-wf87/GHSA-3322-2vjv-wf87.json b/advisories/unreviewed/2022/05/GHSA-3322-2vjv-wf87/GHSA-3322-2vjv-wf87.json index 681ba85e3e4..6e881b8e16e 100644 --- a/advisories/unreviewed/2022/05/GHSA-3322-2vjv-wf87/GHSA-3322-2vjv-wf87.json +++ b/advisories/unreviewed/2022/05/GHSA-3322-2vjv-wf87/GHSA-3322-2vjv-wf87.json @@ -7,12 +7,8 @@ "CVE-2021-2085" ], "details": "Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Preferences). Supported versions that are affected are 12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle CRM Technical Foundation, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle CRM Technical Foundation accessible data as well as unauthorized update, insert or delete access to some of Oracle CRM Technical Foundation accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-34fq-7fhg-4q58/GHSA-34fq-7fhg-4q58.json b/advisories/unreviewed/2022/05/GHSA-34fq-7fhg-4q58/GHSA-34fq-7fhg-4q58.json index ffb4995a28c..2e60116c807 100644 --- a/advisories/unreviewed/2022/05/GHSA-34fq-7fhg-4q58/GHSA-34fq-7fhg-4q58.json +++ b/advisories/unreviewed/2022/05/GHSA-34fq-7fhg-4q58/GHSA-34fq-7fhg-4q58.json @@ -7,12 +7,8 @@ "CVE-2021-2090" ], "details": "Vulnerability in the Oracle Email Center product of Oracle E-Business Suite (component: Message Display). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Email Center. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Email Center, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Email Center accessible data as well as unauthorized update, insert or delete access to some of Oracle Email Center accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-34qp-hv3m-hpmm/GHSA-34qp-hv3m-hpmm.json b/advisories/unreviewed/2022/05/GHSA-34qp-hv3m-hpmm/GHSA-34qp-hv3m-hpmm.json index 3a813d058b9..9435a302186 100644 --- a/advisories/unreviewed/2022/05/GHSA-34qp-hv3m-hpmm/GHSA-34qp-hv3m-hpmm.json +++ b/advisories/unreviewed/2022/05/GHSA-34qp-hv3m-hpmm/GHSA-34qp-hv3m-hpmm.json @@ -7,12 +7,8 @@ "CVE-2020-25783" ], "details": "An issue was discovered on Accfly Wireless Security IR Camera System 720P with software versions v3.10.73 through v4.15.77. There is an unauthenticated heap-based buffer overflow in the function CNetClientTalk::OprMsg during incoming message handling.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-34v3-rp23-947c/GHSA-34v3-rp23-947c.json b/advisories/unreviewed/2022/05/GHSA-34v3-rp23-947c/GHSA-34v3-rp23-947c.json index beb53074c61..b3bd51164a4 100644 --- a/advisories/unreviewed/2022/05/GHSA-34v3-rp23-947c/GHSA-34v3-rp23-947c.json +++ b/advisories/unreviewed/2022/05/GHSA-34v3-rp23-947c/GHSA-34v3-rp23-947c.json @@ -7,12 +7,8 @@ "CVE-2020-25681" ], "details": "A flaw was found in dnsmasq before version 2.83. A heap-based buffer overflow was discovered in the way RRSets are sorted before validating with DNSSEC data. An attacker on the network, who can forge DNS replies such as that they are accepted as valid, could use this flaw to cause a buffer overflow with arbitrary data in a heap memory segment, possibly executing code on the machine. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-34xh-3qm2-46mg/GHSA-34xh-3qm2-46mg.json b/advisories/unreviewed/2022/05/GHSA-34xh-3qm2-46mg/GHSA-34xh-3qm2-46mg.json index 7d10c8c6a08..739a28b6ec4 100644 --- a/advisories/unreviewed/2022/05/GHSA-34xh-3qm2-46mg/GHSA-34xh-3qm2-46mg.json +++ b/advisories/unreviewed/2022/05/GHSA-34xh-3qm2-46mg/GHSA-34xh-3qm2-46mg.json @@ -7,12 +7,8 @@ "CVE-2020-28401" ], "details": "An improper authorization vulnerability exists in Star Practice Management Web version 2019.2.0.6, allowing an unauthorized user to access WIP details about jobs he should not have access to.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-35p6-jj8w-qmx6/GHSA-35p6-jj8w-qmx6.json b/advisories/unreviewed/2022/05/GHSA-35p6-jj8w-qmx6/GHSA-35p6-jj8w-qmx6.json index ad22294093f..d1cc39fa081 100644 --- a/advisories/unreviewed/2022/05/GHSA-35p6-jj8w-qmx6/GHSA-35p6-jj8w-qmx6.json +++ b/advisories/unreviewed/2022/05/GHSA-35p6-jj8w-qmx6/GHSA-35p6-jj8w-qmx6.json @@ -7,12 +7,8 @@ "CVE-2020-11183" ], "details": "A process can potentially cause a buffer overflow in the display service allowing privilege escalation by executing code as that service in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3665-mhfj-379q/GHSA-3665-mhfj-379q.json b/advisories/unreviewed/2022/05/GHSA-3665-mhfj-379q/GHSA-3665-mhfj-379q.json index cb3b128b2b6..742e6df041f 100644 --- a/advisories/unreviewed/2022/05/GHSA-3665-mhfj-379q/GHSA-3665-mhfj-379q.json +++ b/advisories/unreviewed/2022/05/GHSA-3665-mhfj-379q/GHSA-3665-mhfj-379q.json @@ -7,12 +7,8 @@ "CVE-2020-13133" ], "details": "Tufin SecureChange prior to R19.3 HF3 and R20-1 HF1 are vulnerable to stored XSS. The successful exploitation requires admin privileges (for storing the XSS payload itself), and can exploit (be triggered by) unauthenticated users. All TOS versions with SecureChange deployments prior to R19.3 HF3 and R20-1 HF1 are affected. Vulnerabilities were fixed in R19.3 HF3 and R20-1 HF1", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-36g6-qxc2-h92h/GHSA-36g6-qxc2-h92h.json b/advisories/unreviewed/2022/05/GHSA-36g6-qxc2-h92h/GHSA-36g6-qxc2-h92h.json index bf0bb0d159d..0884081c51a 100644 --- a/advisories/unreviewed/2022/05/GHSA-36g6-qxc2-h92h/GHSA-36g6-qxc2-h92h.json +++ b/advisories/unreviewed/2022/05/GHSA-36g6-qxc2-h92h/GHSA-36g6-qxc2-h92h.json @@ -7,12 +7,8 @@ "CVE-2020-28999" ], "details": "An issue was discovered in Apexis Streaming Video Web Application on Geeni GNC-CW013 doorbell 1.8.1 devices. A remote attacker can take full control of the camera with a high-privileged account. The vulnerability exists because a static username and password are compiled into a shared library (libhipcam.so) used to provide the streaming camera service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-36mf-q7m2-w6vp/GHSA-36mf-q7m2-w6vp.json b/advisories/unreviewed/2022/05/GHSA-36mf-q7m2-w6vp/GHSA-36mf-q7m2-w6vp.json index 036b0c64333..b9fcf28304e 100644 --- a/advisories/unreviewed/2022/05/GHSA-36mf-q7m2-w6vp/GHSA-36mf-q7m2-w6vp.json +++ b/advisories/unreviewed/2022/05/GHSA-36mf-q7m2-w6vp/GHSA-36mf-q7m2-w6vp.json @@ -7,12 +7,8 @@ "CVE-2021-1129" ], "details": "\n A vulnerability in the authentication for the general purpose APIs implementation of Cisco Email Security Appliance (ESA), Cisco Content Security Management Appliance (SMA), and Cisco Web Security Appliance (WSA) could allow an unauthenticated, remote attacker to access general system information and certain configuration information from an affected device.\n The vulnerability exists because a secure authentication token is not required when authenticating to the general purpose API. An attacker could exploit this vulnerability by sending a crafted request for information to the general purpose API on an affected device. A successful exploit could allow the attacker to obtain system and configuration information from the affected device, resulting in an unauthorized information disclosure.\n ", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-36x4-w43w-g9mm/GHSA-36x4-w43w-g9mm.json b/advisories/unreviewed/2022/05/GHSA-36x4-w43w-g9mm/GHSA-36x4-w43w-g9mm.json index a0f5fe59a02..f70f231438d 100644 --- a/advisories/unreviewed/2022/05/GHSA-36x4-w43w-g9mm/GHSA-36x4-w43w-g9mm.json +++ b/advisories/unreviewed/2022/05/GHSA-36x4-w43w-g9mm/GHSA-36x4-w43w-g9mm.json @@ -7,12 +7,8 @@ "CVE-2020-35844" ], "details": "FastStone Image Viewer 7.5 has an out-of-bounds write (via a crafted image file) at FSViewer.exe+0xbe9c4.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-373c-56rw-r5q5/GHSA-373c-56rw-r5q5.json b/advisories/unreviewed/2022/05/GHSA-373c-56rw-r5q5/GHSA-373c-56rw-r5q5.json index 17e84d260d7..84a7cc716b6 100644 --- a/advisories/unreviewed/2022/05/GHSA-373c-56rw-r5q5/GHSA-373c-56rw-r5q5.json +++ b/advisories/unreviewed/2022/05/GHSA-373c-56rw-r5q5/GHSA-373c-56rw-r5q5.json @@ -7,12 +7,8 @@ "CVE-2020-11151" ], "details": "Race condition occurs while calling user space ioctl from two different threads can results to use after free issue in video in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3855-w94p-4hp9/GHSA-3855-w94p-4hp9.json b/advisories/unreviewed/2022/05/GHSA-3855-w94p-4hp9/GHSA-3855-w94p-4hp9.json index ee91985bf91..a921370ef8f 100644 --- a/advisories/unreviewed/2022/05/GHSA-3855-w94p-4hp9/GHSA-3855-w94p-4hp9.json +++ b/advisories/unreviewed/2022/05/GHSA-3855-w94p-4hp9/GHSA-3855-w94p-4hp9.json @@ -7,12 +7,8 @@ "CVE-2020-26941" ], "details": "A local (authenticated) low-privileged user can exploit a behavior in an ESET installer to achieve arbitrary file overwrite (deletion) of any file via a symlink, due to insecure permissions. The possibility of exploiting this vulnerability is limited and can only take place during the installation phase of ESET products. Furthermore, exploitation can only succeed when Self-Defense is disabled. Affected products are: ESET NOD32 Antivirus, ESET Internet Security, ESET Smart Security, ESET Smart Security Premium versions 13.2 and lower; ESET Endpoint Antivirus, ESET Endpoint Security, ESET NOD32 Antivirus Business Edition, ESET Smart Security Business Edition versions 7.3 and lower; ESET File Security for Microsoft Windows Server, ESET Mail Security for Microsoft Exchange Server, ESET Mail Security for IBM Domino, ESET Security for Kerio, ESET Security for Microsoft SharePoint Server versions 7.2 and lower.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-388j-hgw2-75wf/GHSA-388j-hgw2-75wf.json b/advisories/unreviewed/2022/05/GHSA-388j-hgw2-75wf/GHSA-388j-hgw2-75wf.json index 42595c354bb..26745744a91 100644 --- a/advisories/unreviewed/2022/05/GHSA-388j-hgw2-75wf/GHSA-388j-hgw2-75wf.json +++ b/advisories/unreviewed/2022/05/GHSA-388j-hgw2-75wf/GHSA-388j-hgw2-75wf.json @@ -7,12 +7,8 @@ "CVE-2020-8292" ], "details": "Rocket.Chat server before 3.9.0 is vulnerable to a self cross-site scripting (XSS) vulnerability via the drag & drop functionality in message boxes.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-38cv-vxxh-c9ff/GHSA-38cv-vxxh-c9ff.json b/advisories/unreviewed/2022/05/GHSA-38cv-vxxh-c9ff/GHSA-38cv-vxxh-c9ff.json index d80d47d0233..1e288fab158 100644 --- a/advisories/unreviewed/2022/05/GHSA-38cv-vxxh-c9ff/GHSA-38cv-vxxh-c9ff.json +++ b/advisories/unreviewed/2022/05/GHSA-38cv-vxxh-c9ff/GHSA-38cv-vxxh-c9ff.json @@ -7,12 +7,8 @@ "CVE-2020-36192" ], "details": "An issue was discovered in the Source Integration plugin before 2.4.1 for MantisBT. An attacker can gain access to the Summary field of private Issues (either marked as Private, or part of a private Project), if they are attached to an existing Changeset. The information is visible on the view.php page, as well as on the list.php page (a pop-up on the Affected Issues id hyperlink). Additionally, if the attacker has \"Update threshold\" in the plugin's configuration (set to the \"updater\" access level by default), then they can link any Issue to a Changeset by entering the Issue's Id, even if they do not have access to it.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-38f9-86mj-c2gg/GHSA-38f9-86mj-c2gg.json b/advisories/unreviewed/2022/05/GHSA-38f9-86mj-c2gg/GHSA-38f9-86mj-c2gg.json index 20f7771883c..896555237c9 100644 --- a/advisories/unreviewed/2022/05/GHSA-38f9-86mj-c2gg/GHSA-38f9-86mj-c2gg.json +++ b/advisories/unreviewed/2022/05/GHSA-38f9-86mj-c2gg/GHSA-38f9-86mj-c2gg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3988-7v79-mrm7/GHSA-3988-7v79-mrm7.json b/advisories/unreviewed/2022/05/GHSA-3988-7v79-mrm7/GHSA-3988-7v79-mrm7.json index 6ce3799598c..734868c22b6 100644 --- a/advisories/unreviewed/2022/05/GHSA-3988-7v79-mrm7/GHSA-3988-7v79-mrm7.json +++ b/advisories/unreviewed/2022/05/GHSA-3988-7v79-mrm7/GHSA-3988-7v79-mrm7.json @@ -7,12 +7,8 @@ "CVE-2021-22851" ], "details": "HGiga EIP product contains SQL Injection vulnerability. Attackers can inject SQL commands into specific URL parameter (document management page) to obtain database schema and data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3cm5-26fm-mwrv/GHSA-3cm5-26fm-mwrv.json b/advisories/unreviewed/2022/05/GHSA-3cm5-26fm-mwrv/GHSA-3cm5-26fm-mwrv.json index 432a312c272..ff522250ca1 100644 --- a/advisories/unreviewed/2022/05/GHSA-3cm5-26fm-mwrv/GHSA-3cm5-26fm-mwrv.json +++ b/advisories/unreviewed/2022/05/GHSA-3cm5-26fm-mwrv/GHSA-3cm5-26fm-mwrv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3fh9-v9h9-8r63/GHSA-3fh9-v9h9-8r63.json b/advisories/unreviewed/2022/05/GHSA-3fh9-v9h9-8r63/GHSA-3fh9-v9h9-8r63.json index 7811cb2cbdf..f05c8751ac0 100644 --- a/advisories/unreviewed/2022/05/GHSA-3fh9-v9h9-8r63/GHSA-3fh9-v9h9-8r63.json +++ b/advisories/unreviewed/2022/05/GHSA-3fh9-v9h9-8r63/GHSA-3fh9-v9h9-8r63.json @@ -7,12 +7,8 @@ "CVE-2020-4786" ], "details": "IBM QRadar SIEM 7.4.2 GA to 7.4.2 Patch 1, 7.4.0 to 7.4.1 Patch 1, and 7.3.0 to 7.3.3 Patch 5 is vulnerable to server side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks. IBM X-Force ID: 189221.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3gw2-fmhq-wwwr/GHSA-3gw2-fmhq-wwwr.json b/advisories/unreviewed/2022/05/GHSA-3gw2-fmhq-wwwr/GHSA-3gw2-fmhq-wwwr.json index 1f610b38486..ea35994cfb0 100644 --- a/advisories/unreviewed/2022/05/GHSA-3gw2-fmhq-wwwr/GHSA-3gw2-fmhq-wwwr.json +++ b/advisories/unreviewed/2022/05/GHSA-3gw2-fmhq-wwwr/GHSA-3gw2-fmhq-wwwr.json @@ -7,12 +7,8 @@ "CVE-2021-2013" ], "details": "Vulnerability in the Oracle BI Publisher product of Oracle Fusion Middleware (component: BI Publisher Security). Supported versions that are affected are 5.5.0.0.0, 11.1.1.9.0, 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle BI Publisher. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle BI Publisher accessible data as well as unauthorized update, insert or delete access to some of Oracle BI Publisher accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Oracle BI Publisher. CVSS 3.1 Base Score 7.6 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3h8m-q4x3-3fhw/GHSA-3h8m-q4x3-3fhw.json b/advisories/unreviewed/2022/05/GHSA-3h8m-q4x3-3fhw/GHSA-3h8m-q4x3-3fhw.json index eff490e1e0a..132e06b6c7b 100644 --- a/advisories/unreviewed/2022/05/GHSA-3h8m-q4x3-3fhw/GHSA-3h8m-q4x3-3fhw.json +++ b/advisories/unreviewed/2022/05/GHSA-3h8m-q4x3-3fhw/GHSA-3h8m-q4x3-3fhw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3hq7-c495-mmp2/GHSA-3hq7-c495-mmp2.json b/advisories/unreviewed/2022/05/GHSA-3hq7-c495-mmp2/GHSA-3hq7-c495-mmp2.json index c6c6eb774f1..f203affc66a 100644 --- a/advisories/unreviewed/2022/05/GHSA-3hq7-c495-mmp2/GHSA-3hq7-c495-mmp2.json +++ b/advisories/unreviewed/2022/05/GHSA-3hq7-c495-mmp2/GHSA-3hq7-c495-mmp2.json @@ -7,12 +7,8 @@ "CVE-2021-2086" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is Prior to 6.1.18. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle VM VirtualBox. CVSS 3.1 Base Score 6.0 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3m7w-4v4f-f33g/GHSA-3m7w-4v4f-f33g.json b/advisories/unreviewed/2022/05/GHSA-3m7w-4v4f-f33g/GHSA-3m7w-4v4f-f33g.json index e93bfad4538..2a3abf47888 100644 --- a/advisories/unreviewed/2022/05/GHSA-3m7w-4v4f-f33g/GHSA-3m7w-4v4f-f33g.json +++ b/advisories/unreviewed/2022/05/GHSA-3m7w-4v4f-f33g/GHSA-3m7w-4v4f-f33g.json @@ -7,12 +7,8 @@ "CVE-2021-2048" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.22 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server as well as unauthorized update, insert or delete access to some of MySQL Server accessible data. CVSS 3.1 Base Score 5.0 (Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:L/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3mmx-qqmq-rm69/GHSA-3mmx-qqmq-rm69.json b/advisories/unreviewed/2022/05/GHSA-3mmx-qqmq-rm69/GHSA-3mmx-qqmq-rm69.json index edbb2dda834..29900685aea 100644 --- a/advisories/unreviewed/2022/05/GHSA-3mmx-qqmq-rm69/GHSA-3mmx-qqmq-rm69.json +++ b/advisories/unreviewed/2022/05/GHSA-3mmx-qqmq-rm69/GHSA-3mmx-qqmq-rm69.json @@ -7,12 +7,8 @@ "CVE-2020-4949" ], "details": "IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 192025.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3mq7-67j8-qhqj/GHSA-3mq7-67j8-qhqj.json b/advisories/unreviewed/2022/05/GHSA-3mq7-67j8-qhqj/GHSA-3mq7-67j8-qhqj.json index f47ef3f4463..86f55b60080 100644 --- a/advisories/unreviewed/2022/05/GHSA-3mq7-67j8-qhqj/GHSA-3mq7-67j8-qhqj.json +++ b/advisories/unreviewed/2022/05/GHSA-3mq7-67j8-qhqj/GHSA-3mq7-67j8-qhqj.json @@ -7,12 +7,8 @@ "CVE-2021-1995" ], "details": "Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Web Services). Supported versions that are affected are 10.3.6.0.0 and 12.1.3.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle WebLogic Server accessible data. CVSS 3.1 Base Score 6.5 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3pxr-vgjw-q3f8/GHSA-3pxr-vgjw-q3f8.json b/advisories/unreviewed/2022/05/GHSA-3pxr-vgjw-q3f8/GHSA-3pxr-vgjw-q3f8.json index fb15adbded4..09d4c7423f3 100644 --- a/advisories/unreviewed/2022/05/GHSA-3pxr-vgjw-q3f8/GHSA-3pxr-vgjw-q3f8.json +++ b/advisories/unreviewed/2022/05/GHSA-3pxr-vgjw-q3f8/GHSA-3pxr-vgjw-q3f8.json @@ -7,12 +7,8 @@ "CVE-2020-11150" ], "details": "Out of bound memory access in camera driver due to improper validation on data coming from UMD which is used for offset manipulation of pointer in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3qgj-r7gq-79qf/GHSA-3qgj-r7gq-79qf.json b/advisories/unreviewed/2022/05/GHSA-3qgj-r7gq-79qf/GHSA-3qgj-r7gq-79qf.json index 747f055bbad..eeb2bf42479 100644 --- a/advisories/unreviewed/2022/05/GHSA-3qgj-r7gq-79qf/GHSA-3qgj-r7gq-79qf.json +++ b/advisories/unreviewed/2022/05/GHSA-3qgj-r7gq-79qf/GHSA-3qgj-r7gq-79qf.json @@ -7,12 +7,8 @@ "CVE-2020-29001" ], "details": "An issue was discovered on Geeni GNC-CW028 Camera 2.7.2, Geeni GNC-CW025 Doorbell 2.9.5, Merkury MI-CW024 Doorbell 2.9.6, and Merkury MI-CW017 Camera 2.9.6 devices. A vulnerability exists in the RESTful Services API that allows a remote attacker to take full control of the camera with a high-privileged account. The vulnerability exists because a static username and password are compiled into the ppsapp RESTful application.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3qqq-357h-32gj/GHSA-3qqq-357h-32gj.json b/advisories/unreviewed/2022/05/GHSA-3qqq-357h-32gj/GHSA-3qqq-357h-32gj.json index 883a8dc1c14..ee3a3242087 100644 --- a/advisories/unreviewed/2022/05/GHSA-3qqq-357h-32gj/GHSA-3qqq-357h-32gj.json +++ b/advisories/unreviewed/2022/05/GHSA-3qqq-357h-32gj/GHSA-3qqq-357h-32gj.json @@ -7,12 +7,8 @@ "CVE-2020-25682" ], "details": "A flaw was found in dnsmasq before 2.83. A buffer overflow vulnerability was discovered in the way dnsmasq extract names from DNS packets before validating them with DNSSEC data. An attacker on the network, who can create valid DNS replies, could use this flaw to cause an overflow with arbitrary data in a heap-allocated memory, possibly executing code on the machine. The flaw is in the rfc1035.c:extract_name() function, which writes data to the memory pointed by name assuming MAXDNAME*2 bytes are available in the buffer. However, in some code execution paths, it is possible extract_name() gets passed an offset from the base buffer, thus reducing, in practice, the number of available bytes that can be written in the buffer. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3v9q-m45q-4cr7/GHSA-3v9q-m45q-4cr7.json b/advisories/unreviewed/2022/05/GHSA-3v9q-m45q-4cr7/GHSA-3v9q-m45q-4cr7.json index af76d2f0d9b..1c9d7855df3 100644 --- a/advisories/unreviewed/2022/05/GHSA-3v9q-m45q-4cr7/GHSA-3v9q-m45q-4cr7.json +++ b/advisories/unreviewed/2022/05/GHSA-3v9q-m45q-4cr7/GHSA-3v9q-m45q-4cr7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3vvf-wxxv-ffqp/GHSA-3vvf-wxxv-ffqp.json b/advisories/unreviewed/2022/05/GHSA-3vvf-wxxv-ffqp/GHSA-3vvf-wxxv-ffqp.json index ef1d00fd8b2..da46d305cc1 100644 --- a/advisories/unreviewed/2022/05/GHSA-3vvf-wxxv-ffqp/GHSA-3vvf-wxxv-ffqp.json +++ b/advisories/unreviewed/2022/05/GHSA-3vvf-wxxv-ffqp/GHSA-3vvf-wxxv-ffqp.json @@ -7,12 +7,8 @@ "CVE-2021-2093" ], "details": "Vulnerability in the Oracle Common Applications product of Oracle E-Business Suite (component: CRM User Management Framework). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Common Applications. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Common Applications, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Common Applications accessible data as well as unauthorized update, insert or delete access to some of Oracle Common Applications accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3wqp-fp8q-5rmq/GHSA-3wqp-fp8q-5rmq.json b/advisories/unreviewed/2022/05/GHSA-3wqp-fp8q-5rmq/GHSA-3wqp-fp8q-5rmq.json index 972b4d41810..26b011df7dc 100644 --- a/advisories/unreviewed/2022/05/GHSA-3wqp-fp8q-5rmq/GHSA-3wqp-fp8q-5rmq.json +++ b/advisories/unreviewed/2022/05/GHSA-3wqp-fp8q-5rmq/GHSA-3wqp-fp8q-5rmq.json @@ -7,12 +7,8 @@ "CVE-2020-11148" ], "details": "Use after free issue in HIDL while using callback to post event in Rx thread when internal mutex is not acquired and meantime close is triggered and callback instance is deleted in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3x7j-rf7h-c58q/GHSA-3x7j-rf7h-c58q.json b/advisories/unreviewed/2022/05/GHSA-3x7j-rf7h-c58q/GHSA-3x7j-rf7h-c58q.json index 56b30fc3bc2..a5f08466c14 100644 --- a/advisories/unreviewed/2022/05/GHSA-3x7j-rf7h-c58q/GHSA-3x7j-rf7h-c58q.json +++ b/advisories/unreviewed/2022/05/GHSA-3x7j-rf7h-c58q/GHSA-3x7j-rf7h-c58q.json @@ -7,12 +7,8 @@ "CVE-2021-2034" ], "details": "Vulnerability in the Oracle Common Applications Calendar product of Oracle E-Business Suite (component: Tasks). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Common Applications Calendar. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Common Applications Calendar, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Common Applications Calendar accessible data as well as unauthorized update, insert or delete access to some of Oracle Common Applications Calendar accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3xj2-j3xq-873q/GHSA-3xj2-j3xq-873q.json b/advisories/unreviewed/2022/05/GHSA-3xj2-j3xq-873q/GHSA-3xj2-j3xq-873q.json index 310d0e9fe49..2f11e2f2a35 100644 --- a/advisories/unreviewed/2022/05/GHSA-3xj2-j3xq-873q/GHSA-3xj2-j3xq-873q.json +++ b/advisories/unreviewed/2022/05/GHSA-3xj2-j3xq-873q/GHSA-3xj2-j3xq-873q.json @@ -7,12 +7,8 @@ "CVE-2021-2051" ], "details": "Vulnerability in the Oracle BI Publisher product of Oracle Fusion Middleware (component: E-Business Suite - XDO). Supported versions that are affected are 5.5.0.0.0, 11.1.1.9.0, 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle BI Publisher. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle BI Publisher accessible data as well as unauthorized update, insert or delete access to some of Oracle BI Publisher accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Oracle BI Publisher. CVSS 3.1 Base Score 7.6 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3xjg-p34v-7jgf/GHSA-3xjg-p34v-7jgf.json b/advisories/unreviewed/2022/05/GHSA-3xjg-p34v-7jgf/GHSA-3xjg-p34v-7jgf.json index 1b99e120b27..a35a9ab0837 100644 --- a/advisories/unreviewed/2022/05/GHSA-3xjg-p34v-7jgf/GHSA-3xjg-p34v-7jgf.json +++ b/advisories/unreviewed/2022/05/GHSA-3xjg-p34v-7jgf/GHSA-3xjg-p34v-7jgf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -43,9 +41,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4285-5prc-5mj9/GHSA-4285-5prc-5mj9.json b/advisories/unreviewed/2022/05/GHSA-4285-5prc-5mj9/GHSA-4285-5prc-5mj9.json index c774c29ac07..c8e7e473cf1 100644 --- a/advisories/unreviewed/2022/05/GHSA-4285-5prc-5mj9/GHSA-4285-5prc-5mj9.json +++ b/advisories/unreviewed/2022/05/GHSA-4285-5prc-5mj9/GHSA-4285-5prc-5mj9.json @@ -7,12 +7,8 @@ "CVE-2021-2081" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Stored Procedure). Supported versions that are affected are 8.0.22 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-42h7-239h-7mpw/GHSA-42h7-239h-7mpw.json b/advisories/unreviewed/2022/05/GHSA-42h7-239h-7mpw/GHSA-42h7-239h-7mpw.json index 85136fe1170..c3bfad9cd01 100644 --- a/advisories/unreviewed/2022/05/GHSA-42h7-239h-7mpw/GHSA-42h7-239h-7mpw.json +++ b/advisories/unreviewed/2022/05/GHSA-42h7-239h-7mpw/GHSA-42h7-239h-7mpw.json @@ -7,12 +7,8 @@ "CVE-2020-16236" ], "details": "FPWIN Pro is vulnerable to an out-of-bounds read vulnerability when a user opens a maliciously crafted project file, which may allow an attacker to remotely execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-44r7-3vwf-q932/GHSA-44r7-3vwf-q932.json b/advisories/unreviewed/2022/05/GHSA-44r7-3vwf-q932/GHSA-44r7-3vwf-q932.json index 0577f6c56fd..793e581890b 100644 --- a/advisories/unreviewed/2022/05/GHSA-44r7-3vwf-q932/GHSA-44r7-3vwf-q932.json +++ b/advisories/unreviewed/2022/05/GHSA-44r7-3vwf-q932/GHSA-44r7-3vwf-q932.json @@ -7,12 +7,8 @@ "CVE-2021-2046" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Stored Procedure). Supported versions that are affected are 8.0.22 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. While the vulnerability is in MySQL Server, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.8 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-44wm-jgm7-qv4v/GHSA-44wm-jgm7-qv4v.json b/advisories/unreviewed/2022/05/GHSA-44wm-jgm7-qv4v/GHSA-44wm-jgm7-qv4v.json index b53006616a4..92e90583976 100644 --- a/advisories/unreviewed/2022/05/GHSA-44wm-jgm7-qv4v/GHSA-44wm-jgm7-qv4v.json +++ b/advisories/unreviewed/2022/05/GHSA-44wm-jgm7-qv4v/GHSA-44wm-jgm7-qv4v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -43,9 +41,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-452p-5pj4-w36g/GHSA-452p-5pj4-w36g.json b/advisories/unreviewed/2022/05/GHSA-452p-5pj4-w36g/GHSA-452p-5pj4-w36g.json index 9f9e44e14be..e7506afdb74 100644 --- a/advisories/unreviewed/2022/05/GHSA-452p-5pj4-w36g/GHSA-452p-5pj4-w36g.json +++ b/advisories/unreviewed/2022/05/GHSA-452p-5pj4-w36g/GHSA-452p-5pj4-w36g.json @@ -7,12 +7,8 @@ "CVE-2021-2116" ], "details": "Vulnerability in the Oracle Application Express Opportunity Tracker component of Oracle Database Server. The supported version that is affected is Prior to 20.2. Easily exploitable vulnerability allows low privileged attacker having Valid User Account privilege with network access via HTTP to compromise Oracle Application Express Opportunity Tracker. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Application Express Opportunity Tracker, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Application Express Opportunity Tracker accessible data as well as unauthorized read access to a subset of Oracle Application Express Opportunity Tracker accessible data. CVSS 3.1 Base Score 5.4 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-467f-c8h9-ghr7/GHSA-467f-c8h9-ghr7.json b/advisories/unreviewed/2022/05/GHSA-467f-c8h9-ghr7/GHSA-467f-c8h9-ghr7.json index 33a3f723651..8ae7100f3d6 100644 --- a/advisories/unreviewed/2022/05/GHSA-467f-c8h9-ghr7/GHSA-467f-c8h9-ghr7.json +++ b/advisories/unreviewed/2022/05/GHSA-467f-c8h9-ghr7/GHSA-467f-c8h9-ghr7.json @@ -7,12 +7,8 @@ "CVE-2021-2069" ], "details": "Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Outside In Filters). Supported versions that are affected are 8.5.4 and 8.5.5. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Outside In Technology. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Outside In Technology accessible data as well as unauthorized read access to a subset of Oracle Outside In Technology accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Outside In Technology. Note: Outside In Technology is a suite of software development kits (SDKs). The protocol and CVSS score depend on the software that uses the Outside In Technology code. The CVSS score assumes that the software passes data received over a network directly to Outside In Technology code, but if data is not received over a network the CVSS score may be lower. CVSS 3.1 Base Score 8.6 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:L).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-46gp-cxcx-7c88/GHSA-46gp-cxcx-7c88.json b/advisories/unreviewed/2022/05/GHSA-46gp-cxcx-7c88/GHSA-46gp-cxcx-7c88.json index d1ba543359a..70d21dfea46 100644 --- a/advisories/unreviewed/2022/05/GHSA-46gp-cxcx-7c88/GHSA-46gp-cxcx-7c88.json +++ b/advisories/unreviewed/2022/05/GHSA-46gp-cxcx-7c88/GHSA-46gp-cxcx-7c88.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4792-5mj8-fwvm/GHSA-4792-5mj8-fwvm.json b/advisories/unreviewed/2022/05/GHSA-4792-5mj8-fwvm/GHSA-4792-5mj8-fwvm.json index e0be9e430b9..48725efa77a 100644 --- a/advisories/unreviewed/2022/05/GHSA-4792-5mj8-fwvm/GHSA-4792-5mj8-fwvm.json +++ b/advisories/unreviewed/2022/05/GHSA-4792-5mj8-fwvm/GHSA-4792-5mj8-fwvm.json @@ -7,12 +7,8 @@ "CVE-2020-4952" ], "details": "IBM Security Guardium 11.2 could allow an authenticated user to gain root access due to improper access control. IBM X-Force ID: 192028.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-47p7-wrjh-v2c5/GHSA-47p7-wrjh-v2c5.json b/advisories/unreviewed/2022/05/GHSA-47p7-wrjh-v2c5/GHSA-47p7-wrjh-v2c5.json index 66c3ce26391..18263be2121 100644 --- a/advisories/unreviewed/2022/05/GHSA-47p7-wrjh-v2c5/GHSA-47p7-wrjh-v2c5.json +++ b/advisories/unreviewed/2022/05/GHSA-47p7-wrjh-v2c5/GHSA-47p7-wrjh-v2c5.json @@ -7,12 +7,8 @@ "CVE-2020-11143" ], "details": "Out of bound memory access during music playback with modified content due to copying data without checking destination buffer size in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-47qx-ggr3-rpg4/GHSA-47qx-ggr3-rpg4.json b/advisories/unreviewed/2022/05/GHSA-47qx-ggr3-rpg4/GHSA-47qx-ggr3-rpg4.json index 3f86265073f..3c21bb763ed 100644 --- a/advisories/unreviewed/2022/05/GHSA-47qx-ggr3-rpg4/GHSA-47qx-ggr3-rpg4.json +++ b/advisories/unreviewed/2022/05/GHSA-47qx-ggr3-rpg4/GHSA-47qx-ggr3-rpg4.json @@ -7,12 +7,8 @@ "CVE-2021-2049" ], "details": "Vulnerability in the Oracle BI Publisher product of Oracle Fusion Middleware (component: Administration). Supported versions that are affected are 5.5.0.0.0, 11.1.1.9.0, 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle BI Publisher. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle BI Publisher accessible data as well as unauthorized update, insert or delete access to some of Oracle BI Publisher accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Oracle BI Publisher. CVSS 3.1 Base Score 7.6 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4925-2x2f-56rm/GHSA-4925-2x2f-56rm.json b/advisories/unreviewed/2022/05/GHSA-4925-2x2f-56rm/GHSA-4925-2x2f-56rm.json index 17c15e3a513..5d20b5eabd4 100644 --- a/advisories/unreviewed/2022/05/GHSA-4925-2x2f-56rm/GHSA-4925-2x2f-56rm.json +++ b/advisories/unreviewed/2022/05/GHSA-4925-2x2f-56rm/GHSA-4925-2x2f-56rm.json @@ -7,12 +7,8 @@ "CVE-2021-22874" ], "details": "Revive Adserver before 5.1.1 is vulnerable to a reflected XSS vulnerability in userlog-index.php via the `period_preset` parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4c63-2h4j-qwpx/GHSA-4c63-2h4j-qwpx.json b/advisories/unreviewed/2022/05/GHSA-4c63-2h4j-qwpx/GHSA-4c63-2h4j-qwpx.json index f76fc2e8e60..1aa7937e9e7 100644 --- a/advisories/unreviewed/2022/05/GHSA-4c63-2h4j-qwpx/GHSA-4c63-2h4j-qwpx.json +++ b/advisories/unreviewed/2022/05/GHSA-4c63-2h4j-qwpx/GHSA-4c63-2h4j-qwpx.json @@ -7,12 +7,8 @@ "CVE-2021-2054" ], "details": "Vulnerability in the RDBMS Sharding component of Oracle Database Server. Supported versions that are affected are 12.2.0.1, 18c and 19c. Easily exploitable vulnerability allows high privileged attacker having Create Any Procedure, Create Any View, Create Any Trigger privilege with network access via Oracle Net to compromise RDBMS Sharding. Successful attacks of this vulnerability can result in takeover of RDBMS Sharding. CVSS 3.1 Base Score 7.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4f4h-6cgm-pgpx/GHSA-4f4h-6cgm-pgpx.json b/advisories/unreviewed/2022/05/GHSA-4f4h-6cgm-pgpx/GHSA-4f4h-6cgm-pgpx.json index 61449f2282c..8bcd012f914 100644 --- a/advisories/unreviewed/2022/05/GHSA-4f4h-6cgm-pgpx/GHSA-4f4h-6cgm-pgpx.json +++ b/advisories/unreviewed/2022/05/GHSA-4f4h-6cgm-pgpx/GHSA-4f4h-6cgm-pgpx.json @@ -7,12 +7,8 @@ "CVE-2021-3160" ], "details": "Deserialization of untrusted data in the login page of ASSUWEB 359.3 build 1 subcomponent of ACA ASSUREX RENTES product allows a remote attacker to inject unsecure serialized Java object using a specially crafted HTTP request, resulting in an unauthenticated remote code execution on the server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4f4x-g56g-xrm8/GHSA-4f4x-g56g-xrm8.json b/advisories/unreviewed/2022/05/GHSA-4f4x-g56g-xrm8/GHSA-4f4x-g56g-xrm8.json index d528755f923..b0f1c975e0c 100644 --- a/advisories/unreviewed/2022/05/GHSA-4f4x-g56g-xrm8/GHSA-4f4x-g56g-xrm8.json +++ b/advisories/unreviewed/2022/05/GHSA-4f4x-g56g-xrm8/GHSA-4f4x-g56g-xrm8.json @@ -7,12 +7,8 @@ "CVE-2021-1222" ], "details": "\n A vulnerability in the web-based management interface of Cisco Smart Software Manager Satellite could allow an authenticated, remote attacker to conduct SQL injection attacks on an affected system.\n The vulnerability exists because the web-based management interface improperly validates values within SQL queries. An attacker could exploit this vulnerability by authenticating to the application and sending malicious SQL queries to an affected system. A successful exploit could allow the attacker to modify values on or return values from the underlying database or the operating system.\n ", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4fm4-277p-mcg2/GHSA-4fm4-277p-mcg2.json b/advisories/unreviewed/2022/05/GHSA-4fm4-277p-mcg2/GHSA-4fm4-277p-mcg2.json index 485fff80cb9..b6a87d8f9b8 100644 --- a/advisories/unreviewed/2022/05/GHSA-4fm4-277p-mcg2/GHSA-4fm4-277p-mcg2.json +++ b/advisories/unreviewed/2022/05/GHSA-4fm4-277p-mcg2/GHSA-4fm4-277p-mcg2.json @@ -7,12 +7,8 @@ "CVE-2021-2020" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.20 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4fv7-37f3-c5j6/GHSA-4fv7-37f3-c5j6.json b/advisories/unreviewed/2022/05/GHSA-4fv7-37f3-c5j6/GHSA-4fv7-37f3-c5j6.json index c773676fae9..06756f6b719 100644 --- a/advisories/unreviewed/2022/05/GHSA-4fv7-37f3-c5j6/GHSA-4fv7-37f3-c5j6.json +++ b/advisories/unreviewed/2022/05/GHSA-4fv7-37f3-c5j6/GHSA-4fv7-37f3-c5j6.json @@ -7,12 +7,8 @@ "CVE-2021-0358" ], "details": "In netdiag, there is a possible command injection due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Product: Android; Versions: Android-11; Patch ID: ALPS05442022.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4g83-8xc3-pp6v/GHSA-4g83-8xc3-pp6v.json b/advisories/unreviewed/2022/05/GHSA-4g83-8xc3-pp6v/GHSA-4g83-8xc3-pp6v.json index f18304f4ab2..adac33bd891 100644 --- a/advisories/unreviewed/2022/05/GHSA-4g83-8xc3-pp6v/GHSA-4g83-8xc3-pp6v.json +++ b/advisories/unreviewed/2022/05/GHSA-4g83-8xc3-pp6v/GHSA-4g83-8xc3-pp6v.json @@ -7,12 +7,8 @@ "CVE-2020-25683" ], "details": "A flaw was found in dnsmasq before version 2.83. A heap-based buffer overflow was discovered in dnsmasq when DNSSEC is enabled and before it validates the received DNS entries. A remote attacker, who can create valid DNS replies, could use this flaw to cause an overflow in a heap-allocated memory. This flaw is caused by the lack of length checks in rfc1035.c:extract_name(), which could be abused to make the code execute memcpy() with a negative size in get_rdata() and cause a crash in dnsmasq, resulting in a denial of service. The highest threat from this vulnerability is to system availability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4gc9-p44x-vcgg/GHSA-4gc9-p44x-vcgg.json b/advisories/unreviewed/2022/05/GHSA-4gc9-p44x-vcgg/GHSA-4gc9-p44x-vcgg.json index 2deb4d07a55..76532588238 100644 --- a/advisories/unreviewed/2022/05/GHSA-4gc9-p44x-vcgg/GHSA-4gc9-p44x-vcgg.json +++ b/advisories/unreviewed/2022/05/GHSA-4gc9-p44x-vcgg/GHSA-4gc9-p44x-vcgg.json @@ -7,12 +7,8 @@ "CVE-2020-27298" ], "details": "Philips Interventional Workspot (Release 1.3.2, 1.4.0, 1.4.1, 1.4.3, 1.4.5), Coronary Tools/Dynamic Coronary Roadmap/Stentboost Live (Release 1.0), ViewForum (Release 6.3V1L10). The software constructs all or part of an OS command using externally influenced input from an upstream component but does not neutralize or incorrectly neutralizes special elements that could modify the intended OS command when sent to a downstream component.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4ghg-x23p-wp4h/GHSA-4ghg-x23p-wp4h.json b/advisories/unreviewed/2022/05/GHSA-4ghg-x23p-wp4h/GHSA-4ghg-x23p-wp4h.json index 9154205da80..e93dec55cb2 100644 --- a/advisories/unreviewed/2022/05/GHSA-4ghg-x23p-wp4h/GHSA-4ghg-x23p-wp4h.json +++ b/advisories/unreviewed/2022/05/GHSA-4ghg-x23p-wp4h/GHSA-4ghg-x23p-wp4h.json @@ -7,12 +7,8 @@ "CVE-2020-28998" ], "details": "An issue was discovered on Geeni GNC-CW013 doorbell 1.8.1 devices. A vulnerability exists in the Telnet service that allows a remote attacker to take full control of the device with a high-privileged account. The vulnerability exists because a system account has a default and static password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4gx5-7c23-79mh/GHSA-4gx5-7c23-79mh.json b/advisories/unreviewed/2022/05/GHSA-4gx5-7c23-79mh/GHSA-4gx5-7c23-79mh.json index d5a4ba16ffc..b624d6dff6d 100644 --- a/advisories/unreviewed/2022/05/GHSA-4gx5-7c23-79mh/GHSA-4gx5-7c23-79mh.json +++ b/advisories/unreviewed/2022/05/GHSA-4gx5-7c23-79mh/GHSA-4gx5-7c23-79mh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4h55-m33h-988r/GHSA-4h55-m33h-988r.json b/advisories/unreviewed/2022/05/GHSA-4h55-m33h-988r/GHSA-4h55-m33h-988r.json index cfbe95670c9..b098d59ad9a 100644 --- a/advisories/unreviewed/2022/05/GHSA-4h55-m33h-988r/GHSA-4h55-m33h-988r.json +++ b/advisories/unreviewed/2022/05/GHSA-4h55-m33h-988r/GHSA-4h55-m33h-988r.json @@ -7,12 +7,8 @@ "CVE-2021-1235" ], "details": "\n A vulnerability in the CLI of Cisco SD-WAN vManage Software could allow an authenticated, local attacker to read sensitive database files on an affected system.\n The vulnerability is due to insufficient user authorization. An attacker could exploit this vulnerability by accessing the vshell of an affected system. A successful exploit could allow the attacker to read database files from the filesystem of the underlying operating system.\n ", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4h93-46mq-wpq9/GHSA-4h93-46mq-wpq9.json b/advisories/unreviewed/2022/05/GHSA-4h93-46mq-wpq9/GHSA-4h93-46mq-wpq9.json index 0567be81212..d045cde4f42 100644 --- a/advisories/unreviewed/2022/05/GHSA-4h93-46mq-wpq9/GHSA-4h93-46mq-wpq9.json +++ b/advisories/unreviewed/2022/05/GHSA-4h93-46mq-wpq9/GHSA-4h93-46mq-wpq9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -47,9 +45,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4mjm-c95j-8748/GHSA-4mjm-c95j-8748.json b/advisories/unreviewed/2022/05/GHSA-4mjm-c95j-8748/GHSA-4mjm-c95j-8748.json index d4509d787ca..a24361daa33 100644 --- a/advisories/unreviewed/2022/05/GHSA-4mjm-c95j-8748/GHSA-4mjm-c95j-8748.json +++ b/advisories/unreviewed/2022/05/GHSA-4mjm-c95j-8748/GHSA-4mjm-c95j-8748.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4mmf-jfc6-j4wj/GHSA-4mmf-jfc6-j4wj.json b/advisories/unreviewed/2022/05/GHSA-4mmf-jfc6-j4wj/GHSA-4mmf-jfc6-j4wj.json index 58a78a5da02..dadee0bcbb2 100644 --- a/advisories/unreviewed/2022/05/GHSA-4mmf-jfc6-j4wj/GHSA-4mmf-jfc6-j4wj.json +++ b/advisories/unreviewed/2022/05/GHSA-4mmf-jfc6-j4wj/GHSA-4mmf-jfc6-j4wj.json @@ -7,12 +7,8 @@ "CVE-2020-28403" ], "details": "A Cross-Site Request Forgery (CSRF) vulnerability exists in Star Practice Management Web version 2019.2.0.6, allowing an attacker to change the privileges of any user of the application. This can be used to grant himself administrative role or remove the administrative account of the application.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4mx5-h7cq-whf6/GHSA-4mx5-h7cq-whf6.json b/advisories/unreviewed/2022/05/GHSA-4mx5-h7cq-whf6/GHSA-4mx5-h7cq-whf6.json index 6e759462a30..61fe8e70970 100644 --- a/advisories/unreviewed/2022/05/GHSA-4mx5-h7cq-whf6/GHSA-4mx5-h7cq-whf6.json +++ b/advisories/unreviewed/2022/05/GHSA-4mx5-h7cq-whf6/GHSA-4mx5-h7cq-whf6.json @@ -7,12 +7,8 @@ "CVE-2020-4766" ], "details": "IBM MQ Internet Pass-Thru 2.1 and 9.2 could allow a remote user to cause a denial of service by sending malformed MQ data requests which would consume all available resources. IBM X-Force ID: 188093.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4pj9-6h83-q463/GHSA-4pj9-6h83-q463.json b/advisories/unreviewed/2022/05/GHSA-4pj9-6h83-q463/GHSA-4pj9-6h83-q463.json index 3777ff2fb5a..764c76b2fef 100644 --- a/advisories/unreviewed/2022/05/GHSA-4pj9-6h83-q463/GHSA-4pj9-6h83-q463.json +++ b/advisories/unreviewed/2022/05/GHSA-4pj9-6h83-q463/GHSA-4pj9-6h83-q463.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4pv7-j5g9-67c2/GHSA-4pv7-j5g9-67c2.json b/advisories/unreviewed/2022/05/GHSA-4pv7-j5g9-67c2/GHSA-4pv7-j5g9-67c2.json index 74a464c18f3..ebbeb84294d 100644 --- a/advisories/unreviewed/2022/05/GHSA-4pv7-j5g9-67c2/GHSA-4pv7-j5g9-67c2.json +++ b/advisories/unreviewed/2022/05/GHSA-4pv7-j5g9-67c2/GHSA-4pv7-j5g9-67c2.json @@ -7,12 +7,8 @@ "CVE-2020-4524" ], "details": "IBM Jazz Foundation products is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 182434.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4q38-pc3j-9fmc/GHSA-4q38-pc3j-9fmc.json b/advisories/unreviewed/2022/05/GHSA-4q38-pc3j-9fmc/GHSA-4q38-pc3j-9fmc.json index 88303d3ed84..8811f240d4e 100644 --- a/advisories/unreviewed/2022/05/GHSA-4q38-pc3j-9fmc/GHSA-4q38-pc3j-9fmc.json +++ b/advisories/unreviewed/2022/05/GHSA-4q38-pc3j-9fmc/GHSA-4q38-pc3j-9fmc.json @@ -7,12 +7,8 @@ "CVE-2021-1070" ], "details": "NVIDIA Jetson AGX Xavier Series, Jetson Xavier NX, TX1, TX2, Nano and Nano 2GB, L4T versions prior to 32.5, contains a vulnerability in the apply_binaries.sh script used to install NVIDIA components into the root file system image, in which improper access control is applied, which may lead to an unprivileged user being able to modify system device tree files, leading to denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4r8h-m8q8-74wm/GHSA-4r8h-m8q8-74wm.json b/advisories/unreviewed/2022/05/GHSA-4r8h-m8q8-74wm/GHSA-4r8h-m8q8-74wm.json index b575f1feead..046b700abb7 100644 --- a/advisories/unreviewed/2022/05/GHSA-4r8h-m8q8-74wm/GHSA-4r8h-m8q8-74wm.json +++ b/advisories/unreviewed/2022/05/GHSA-4r8h-m8q8-74wm/GHSA-4r8h-m8q8-74wm.json @@ -7,12 +7,8 @@ "CVE-2020-23774" ], "details": "A reflected XSS vulnerability exists in tohtml/convert.php of Winmail 6.5, which can cause JavaScript code to be executed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4v4q-53h2-r6mj/GHSA-4v4q-53h2-r6mj.json b/advisories/unreviewed/2022/05/GHSA-4v4q-53h2-r6mj/GHSA-4v4q-53h2-r6mj.json index fc6996a9afc..6c7f5d45a1d 100644 --- a/advisories/unreviewed/2022/05/GHSA-4v4q-53h2-r6mj/GHSA-4v4q-53h2-r6mj.json +++ b/advisories/unreviewed/2022/05/GHSA-4v4q-53h2-r6mj/GHSA-4v4q-53h2-r6mj.json @@ -7,12 +7,8 @@ "CVE-2020-27266" ], "details": "In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, a client-side control vulnerability in the insulin pump and its AnyDana-i and AnyDana-A mobile applications allows physically proximate attackers to bypass user authentication checks via Bluetooth Low Energy.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4vg2-cvhv-c66x/GHSA-4vg2-cvhv-c66x.json b/advisories/unreviewed/2022/05/GHSA-4vg2-cvhv-c66x/GHSA-4vg2-cvhv-c66x.json index 58abed78591..e64bcc7cdc5 100644 --- a/advisories/unreviewed/2022/05/GHSA-4vg2-cvhv-c66x/GHSA-4vg2-cvhv-c66x.json +++ b/advisories/unreviewed/2022/05/GHSA-4vg2-cvhv-c66x/GHSA-4vg2-cvhv-c66x.json @@ -7,12 +7,8 @@ "CVE-2021-2089" ], "details": "Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Runtime Catalog). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iStore. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle iStore, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle iStore accessible data as well as unauthorized update, insert or delete access to some of Oracle iStore accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4wj8-83xp-85h6/GHSA-4wj8-83xp-85h6.json b/advisories/unreviewed/2022/05/GHSA-4wj8-83xp-85h6/GHSA-4wj8-83xp-85h6.json index 184f7d5a262..39999768221 100644 --- a/advisories/unreviewed/2022/05/GHSA-4wj8-83xp-85h6/GHSA-4wj8-83xp-85h6.json +++ b/advisories/unreviewed/2022/05/GHSA-4wj8-83xp-85h6/GHSA-4wj8-83xp-85h6.json @@ -7,12 +7,8 @@ "CVE-2020-35754" ], "details": "OpenSolution Quick.CMS < 6.7 and Quick.Cart < 6.7 allow an authenticated user to perform code injection (and consequently Remote Code Execution) via the input fields of the Language tab.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-53rm-5h2m-g3vh/GHSA-53rm-5h2m-g3vh.json b/advisories/unreviewed/2022/05/GHSA-53rm-5h2m-g3vh/GHSA-53rm-5h2m-g3vh.json index 69ff058cd5a..785ed4bfb3d 100644 --- a/advisories/unreviewed/2022/05/GHSA-53rm-5h2m-g3vh/GHSA-53rm-5h2m-g3vh.json +++ b/advisories/unreviewed/2022/05/GHSA-53rm-5h2m-g3vh/GHSA-53rm-5h2m-g3vh.json @@ -7,12 +7,8 @@ "CVE-2020-35843" ], "details": "FastStone Image Viewer 7.5 has an out-of-bounds write (via a crafted image file) at FSViewer.exe+0x956e.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-55qw-34gf-q5qj/GHSA-55qw-34gf-q5qj.json b/advisories/unreviewed/2022/05/GHSA-55qw-34gf-q5qj/GHSA-55qw-34gf-q5qj.json index 8f6626be98c..4754679ffd8 100644 --- a/advisories/unreviewed/2022/05/GHSA-55qw-34gf-q5qj/GHSA-55qw-34gf-q5qj.json +++ b/advisories/unreviewed/2022/05/GHSA-55qw-34gf-q5qj/GHSA-55qw-34gf-q5qj.json @@ -7,12 +7,8 @@ "CVE-2020-4958" ], "details": "IBM Security Identity Governance and Intelligence 5.2.6 does not perform any authentication for functionality that requires a provable user identity or consumes a significant amount of resources. IBM X-Force ID: 192209.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-573f-fgjg-8qcq/GHSA-573f-fgjg-8qcq.json b/advisories/unreviewed/2022/05/GHSA-573f-fgjg-8qcq/GHSA-573f-fgjg-8qcq.json index 43a5aa7c59f..d7b7ba4de06 100644 --- a/advisories/unreviewed/2022/05/GHSA-573f-fgjg-8qcq/GHSA-573f-fgjg-8qcq.json +++ b/advisories/unreviewed/2022/05/GHSA-573f-fgjg-8qcq/GHSA-573f-fgjg-8qcq.json @@ -7,12 +7,8 @@ "CVE-2020-29598" ], "details": "The My AIA SG application 1.2.6 for Android allows attackers to obtain user credentials via logcat because of excessive logging.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-579m-27vv-2w3h/GHSA-579m-27vv-2w3h.json b/advisories/unreviewed/2022/05/GHSA-579m-27vv-2w3h/GHSA-579m-27vv-2w3h.json index f27a0caf9a0..a41cbeca90f 100644 --- a/advisories/unreviewed/2022/05/GHSA-579m-27vv-2w3h/GHSA-579m-27vv-2w3h.json +++ b/advisories/unreviewed/2022/05/GHSA-579m-27vv-2w3h/GHSA-579m-27vv-2w3h.json @@ -7,12 +7,8 @@ "CVE-2021-25647" ], "details": "Mobile application \"Testes de Codigo\" v11.3 and prior allows stored XSS by injecting a payload in the \"feedback\" message field causing it to be stored in the remote database and leading to its execution on client devices when loading the \"feedback list\", either by accessing the website directly or using the mobile application.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-579q-v34r-wj88/GHSA-579q-v34r-wj88.json b/advisories/unreviewed/2022/05/GHSA-579q-v34r-wj88/GHSA-579q-v34r-wj88.json index 411822613e6..901a11d6c7f 100644 --- a/advisories/unreviewed/2022/05/GHSA-579q-v34r-wj88/GHSA-579q-v34r-wj88.json +++ b/advisories/unreviewed/2022/05/GHSA-579q-v34r-wj88/GHSA-579q-v34r-wj88.json @@ -7,12 +7,8 @@ "CVE-2021-25225" ], "details": "A memory exhaustion vulnerability in Trend Micro ServerProtect for Linux 3.0 could allow a local attacker to craft specific files that can cause a denial-of-service on the affected product. The specific flaw exists within a scheduled scan component. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-583x-7w2c-85c4/GHSA-583x-7w2c-85c4.json b/advisories/unreviewed/2022/05/GHSA-583x-7w2c-85c4/GHSA-583x-7w2c-85c4.json index d8358a6338f..74876ff7664 100644 --- a/advisories/unreviewed/2022/05/GHSA-583x-7w2c-85c4/GHSA-583x-7w2c-85c4.json +++ b/advisories/unreviewed/2022/05/GHSA-583x-7w2c-85c4/GHSA-583x-7w2c-85c4.json @@ -7,12 +7,8 @@ "CVE-2021-2005" ], "details": "Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Fusion Middleware (component: BI Platform Security). Supported versions that are affected are 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Business Intelligence Enterprise Edition. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Business Intelligence Enterprise Edition, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle Business Intelligence Enterprise Edition accessible data. CVSS 3.1 Base Score 4.7 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-588h-hp99-grgw/GHSA-588h-hp99-grgw.json b/advisories/unreviewed/2022/05/GHSA-588h-hp99-grgw/GHSA-588h-hp99-grgw.json index 95f0ff8538a..836849448b2 100644 --- a/advisories/unreviewed/2022/05/GHSA-588h-hp99-grgw/GHSA-588h-hp99-grgw.json +++ b/advisories/unreviewed/2022/05/GHSA-588h-hp99-grgw/GHSA-588h-hp99-grgw.json @@ -7,12 +7,8 @@ "CVE-2021-2027" ], "details": "Vulnerability in the Oracle Marketing product of Oracle E-Business Suite (component: Marketing Administration). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Marketing. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Marketing, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Marketing accessible data as well as unauthorized update, insert or delete access to some of Oracle Marketing accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-58vv-fhph-5w6g/GHSA-58vv-fhph-5w6g.json b/advisories/unreviewed/2022/05/GHSA-58vv-fhph-5w6g/GHSA-58vv-fhph-5w6g.json index c2135eff3fa..748b60c842f 100644 --- a/advisories/unreviewed/2022/05/GHSA-58vv-fhph-5w6g/GHSA-58vv-fhph-5w6g.json +++ b/advisories/unreviewed/2022/05/GHSA-58vv-fhph-5w6g/GHSA-58vv-fhph-5w6g.json @@ -7,12 +7,8 @@ "CVE-2020-19360" ], "details": "Local file inclusion in FHEM 6.0 allows in fhem/FileLog_logWrapper file parameter can allow an attacker to include a file, which can lead to sensitive information disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-59xc-99wg-3hgf/GHSA-59xc-99wg-3hgf.json b/advisories/unreviewed/2022/05/GHSA-59xc-99wg-3hgf/GHSA-59xc-99wg-3hgf.json index 8e52d7fbab8..111cd0d1030 100644 --- a/advisories/unreviewed/2022/05/GHSA-59xc-99wg-3hgf/GHSA-59xc-99wg-3hgf.json +++ b/advisories/unreviewed/2022/05/GHSA-59xc-99wg-3hgf/GHSA-59xc-99wg-3hgf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5crv-9pfw-2jvp/GHSA-5crv-9pfw-2jvp.json b/advisories/unreviewed/2022/05/GHSA-5crv-9pfw-2jvp/GHSA-5crv-9pfw-2jvp.json index c03463cdd63..d839d2181a5 100644 --- a/advisories/unreviewed/2022/05/GHSA-5crv-9pfw-2jvp/GHSA-5crv-9pfw-2jvp.json +++ b/advisories/unreviewed/2022/05/GHSA-5crv-9pfw-2jvp/GHSA-5crv-9pfw-2jvp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5g5w-44wh-969g/GHSA-5g5w-44wh-969g.json b/advisories/unreviewed/2022/05/GHSA-5g5w-44wh-969g/GHSA-5g5w-44wh-969g.json index e9fa37fe5b8..c2f9467e878 100644 --- a/advisories/unreviewed/2022/05/GHSA-5g5w-44wh-969g/GHSA-5g5w-44wh-969g.json +++ b/advisories/unreviewed/2022/05/GHSA-5g5w-44wh-969g/GHSA-5g5w-44wh-969g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5gm8-7pfq-h7gr/GHSA-5gm8-7pfq-h7gr.json b/advisories/unreviewed/2022/05/GHSA-5gm8-7pfq-h7gr/GHSA-5gm8-7pfq-h7gr.json index d52700032be..8bc02edbf97 100644 --- a/advisories/unreviewed/2022/05/GHSA-5gm8-7pfq-h7gr/GHSA-5gm8-7pfq-h7gr.json +++ b/advisories/unreviewed/2022/05/GHSA-5gm8-7pfq-h7gr/GHSA-5gm8-7pfq-h7gr.json @@ -7,12 +7,8 @@ "CVE-2020-3691" ], "details": "Possible out of bound memory access in audio due to integer underflow while processing modified contents in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5gqq-53xx-954h/GHSA-5gqq-53xx-954h.json b/advisories/unreviewed/2022/05/GHSA-5gqq-53xx-954h/GHSA-5gqq-53xx-954h.json index ac58297ea5d..bbc5825e8d4 100644 --- a/advisories/unreviewed/2022/05/GHSA-5gqq-53xx-954h/GHSA-5gqq-53xx-954h.json +++ b/advisories/unreviewed/2022/05/GHSA-5gqq-53xx-954h/GHSA-5gqq-53xx-954h.json @@ -7,12 +7,8 @@ "CVE-2020-23361" ], "details": "phpList 3.5.3 allows type juggling for login bypass because == is used instead of === for password hashes, which mishandles hashes that begin with 0e followed by exclusively numerical characters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5pr6-w68j-vgj8/GHSA-5pr6-w68j-vgj8.json b/advisories/unreviewed/2022/05/GHSA-5pr6-w68j-vgj8/GHSA-5pr6-w68j-vgj8.json index 954101dba9e..5b4579c4543 100644 --- a/advisories/unreviewed/2022/05/GHSA-5pr6-w68j-vgj8/GHSA-5pr6-w68j-vgj8.json +++ b/advisories/unreviewed/2022/05/GHSA-5pr6-w68j-vgj8/GHSA-5pr6-w68j-vgj8.json @@ -7,12 +7,8 @@ "CVE-2020-27269" ], "details": "In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, the communication protocol of the insulin pump and its AnyDana-i and AnyDana-A mobile applications lacks replay protection measures, which allows unauthenticated, physically proximate attackers to replay communication sequences via Bluetooth Low Energy.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5rjg-v5wr-9xwx/GHSA-5rjg-v5wr-9xwx.json b/advisories/unreviewed/2022/05/GHSA-5rjg-v5wr-9xwx/GHSA-5rjg-v5wr-9xwx.json index e0403129550..0c5aae0da50 100644 --- a/advisories/unreviewed/2022/05/GHSA-5rjg-v5wr-9xwx/GHSA-5rjg-v5wr-9xwx.json +++ b/advisories/unreviewed/2022/05/GHSA-5rjg-v5wr-9xwx/GHSA-5rjg-v5wr-9xwx.json @@ -7,12 +7,8 @@ "CVE-2020-11197" ], "details": "Possible integer overflow can occur when stream info update is called when total number of streams detected are zero while parsing TS clip with invalid data in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5wp7-5x9c-363f/GHSA-5wp7-5x9c-363f.json b/advisories/unreviewed/2022/05/GHSA-5wp7-5x9c-363f/GHSA-5wp7-5x9c-363f.json index 040302a0680..d8fd0e5ebfb 100644 --- a/advisories/unreviewed/2022/05/GHSA-5wp7-5x9c-363f/GHSA-5wp7-5x9c-363f.json +++ b/advisories/unreviewed/2022/05/GHSA-5wp7-5x9c-363f/GHSA-5wp7-5x9c-363f.json @@ -7,12 +7,8 @@ "CVE-2020-4628" ], "details": "IBM Cloud Pak for Security (CP4S) 1.3.0.1 and 1.4.0.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 185369.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-62m3-j4w3-p5mw/GHSA-62m3-j4w3-p5mw.json b/advisories/unreviewed/2022/05/GHSA-62m3-j4w3-p5mw/GHSA-62m3-j4w3-p5mw.json index a8c9126ea6a..0df61508e14 100644 --- a/advisories/unreviewed/2022/05/GHSA-62m3-j4w3-p5mw/GHSA-62m3-j4w3-p5mw.json +++ b/advisories/unreviewed/2022/05/GHSA-62m3-j4w3-p5mw/GHSA-62m3-j4w3-p5mw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -43,9 +41,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-62q3-rvgv-rchp/GHSA-62q3-rvgv-rchp.json b/advisories/unreviewed/2022/05/GHSA-62q3-rvgv-rchp/GHSA-62q3-rvgv-rchp.json index 2c52c0cc2a9..1dba901be71 100644 --- a/advisories/unreviewed/2022/05/GHSA-62q3-rvgv-rchp/GHSA-62q3-rvgv-rchp.json +++ b/advisories/unreviewed/2022/05/GHSA-62q3-rvgv-rchp/GHSA-62q3-rvgv-rchp.json @@ -7,12 +7,8 @@ "CVE-2020-5427" ], "details": "In Spring Cloud Data Flow, versions 2.6.x prior to 2.6.5, versions 2.5.x prior 2.5.4, an application is vulnerable to SQL injection when requesting task execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-63w7-2rqx-q97m/GHSA-63w7-2rqx-q97m.json b/advisories/unreviewed/2022/05/GHSA-63w7-2rqx-q97m/GHSA-63w7-2rqx-q97m.json index 4a84cb4066c..5e6f1641c64 100644 --- a/advisories/unreviewed/2022/05/GHSA-63w7-2rqx-q97m/GHSA-63w7-2rqx-q97m.json +++ b/advisories/unreviewed/2022/05/GHSA-63w7-2rqx-q97m/GHSA-63w7-2rqx-q97m.json @@ -7,12 +7,8 @@ "CVE-2021-21009" ], "details": "Adobe Campaign Classic Gold Standard 10 (and earlier), 20.3.1 (and earlier), 20.2.3 (and earlier), 20.1.3 (and earlier), 19.2.3 (and earlier) and 19.1.7 (and earlier) are affected by a server-side request forgery (SSRF) vulnerability. Successful exploitation could allow an attacker to use the Campaign instance to issue unauthorized requests to internal or external resources.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-64c9-jc9m-9hh5/GHSA-64c9-jc9m-9hh5.json b/advisories/unreviewed/2022/05/GHSA-64c9-jc9m-9hh5/GHSA-64c9-jc9m-9hh5.json index f217a1f4b7e..55ae58b0541 100644 --- a/advisories/unreviewed/2022/05/GHSA-64c9-jc9m-9hh5/GHSA-64c9-jc9m-9hh5.json +++ b/advisories/unreviewed/2022/05/GHSA-64c9-jc9m-9hh5/GHSA-64c9-jc9m-9hh5.json @@ -7,12 +7,8 @@ "CVE-2021-21010" ], "details": "InCopy version 15.1.1 (and earlier) for Windows is affected by an uncontrolled search path vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-64w9-4fpr-w9xw/GHSA-64w9-4fpr-w9xw.json b/advisories/unreviewed/2022/05/GHSA-64w9-4fpr-w9xw/GHSA-64w9-4fpr-w9xw.json index 3cbd2d1d717..70a704e4094 100644 --- a/advisories/unreviewed/2022/05/GHSA-64w9-4fpr-w9xw/GHSA-64w9-4fpr-w9xw.json +++ b/advisories/unreviewed/2022/05/GHSA-64w9-4fpr-w9xw/GHSA-64w9-4fpr-w9xw.json @@ -7,12 +7,8 @@ "CVE-2021-22498" ], "details": "XML External Entity Injection vulnerability in Micro Focus Application Lifecycle Management (Previously known as Quality Center) product. The vulnerability affects versions 12.x, 12.60 Patch 5 and earlier, 15.0.1 Patch 2 and earlier and 15.5. The vulnerability could be exploited to allow an XML External Entity Injection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6538-7jcg-ghf9/GHSA-6538-7jcg-ghf9.json b/advisories/unreviewed/2022/05/GHSA-6538-7jcg-ghf9/GHSA-6538-7jcg-ghf9.json index e4f629b856f..2b1de4e6b20 100644 --- a/advisories/unreviewed/2022/05/GHSA-6538-7jcg-ghf9/GHSA-6538-7jcg-ghf9.json +++ b/advisories/unreviewed/2022/05/GHSA-6538-7jcg-ghf9/GHSA-6538-7jcg-ghf9.json @@ -7,12 +7,8 @@ "CVE-2021-2030" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.21 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6544-wc6f-vvph/GHSA-6544-wc6f-vvph.json b/advisories/unreviewed/2022/05/GHSA-6544-wc6f-vvph/GHSA-6544-wc6f-vvph.json index 9b04ea56dc6..3262ee621e1 100644 --- a/advisories/unreviewed/2022/05/GHSA-6544-wc6f-vvph/GHSA-6544-wc6f-vvph.json +++ b/advisories/unreviewed/2022/05/GHSA-6544-wc6f-vvph/GHSA-6544-wc6f-vvph.json @@ -7,12 +7,8 @@ "CVE-2021-25766" ], "details": "In JetBrains YouTrack before 2020.4.4701, improper resource access checks were made.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-675c-f5vv-4cpr/GHSA-675c-f5vv-4cpr.json b/advisories/unreviewed/2022/05/GHSA-675c-f5vv-4cpr/GHSA-675c-f5vv-4cpr.json index e1b5332be58..df654549c01 100644 --- a/advisories/unreviewed/2022/05/GHSA-675c-f5vv-4cpr/GHSA-675c-f5vv-4cpr.json +++ b/advisories/unreviewed/2022/05/GHSA-675c-f5vv-4cpr/GHSA-675c-f5vv-4cpr.json @@ -7,12 +7,8 @@ "CVE-2021-2091" ], "details": "Vulnerability in the Oracle Scripting product of Oracle E-Business Suite (component: Miscellaneous). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Scripting. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Scripting, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Scripting accessible data as well as unauthorized update, insert or delete access to some of Oracle Scripting accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-67mj-v4p8-w9gj/GHSA-67mj-v4p8-w9gj.json b/advisories/unreviewed/2022/05/GHSA-67mj-v4p8-w9gj/GHSA-67mj-v4p8-w9gj.json index 456b6174a9b..1dc465d03c0 100644 --- a/advisories/unreviewed/2022/05/GHSA-67mj-v4p8-w9gj/GHSA-67mj-v4p8-w9gj.json +++ b/advisories/unreviewed/2022/05/GHSA-67mj-v4p8-w9gj/GHSA-67mj-v4p8-w9gj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-68gx-xchj-mc4r/GHSA-68gx-xchj-mc4r.json b/advisories/unreviewed/2022/05/GHSA-68gx-xchj-mc4r/GHSA-68gx-xchj-mc4r.json index 4f9a2d9ace9..bac35a6d07c 100644 --- a/advisories/unreviewed/2022/05/GHSA-68gx-xchj-mc4r/GHSA-68gx-xchj-mc4r.json +++ b/advisories/unreviewed/2022/05/GHSA-68gx-xchj-mc4r/GHSA-68gx-xchj-mc4r.json @@ -7,12 +7,8 @@ "CVE-2021-2131" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is Prior to 6.1.18. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle VM VirtualBox accessible data. CVSS 3.1 Base Score 6.0 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-68m8-x635-9fjc/GHSA-68m8-x635-9fjc.json b/advisories/unreviewed/2022/05/GHSA-68m8-x635-9fjc/GHSA-68m8-x635-9fjc.json index 4fdf4504379..57a4d6e7053 100644 --- a/advisories/unreviewed/2022/05/GHSA-68m8-x635-9fjc/GHSA-68m8-x635-9fjc.json +++ b/advisories/unreviewed/2022/05/GHSA-68m8-x635-9fjc/GHSA-68m8-x635-9fjc.json @@ -7,12 +7,8 @@ "CVE-2020-11185" ], "details": "Out of bound issue in WLAN driver while processing vdev responses from firmware due to lack of validation of data received from firmware in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6955-fjf8-4h7w/GHSA-6955-fjf8-4h7w.json b/advisories/unreviewed/2022/05/GHSA-6955-fjf8-4h7w/GHSA-6955-fjf8-4h7w.json index 49e145e090d..33567f932b2 100644 --- a/advisories/unreviewed/2022/05/GHSA-6955-fjf8-4h7w/GHSA-6955-fjf8-4h7w.json +++ b/advisories/unreviewed/2022/05/GHSA-6955-fjf8-4h7w/GHSA-6955-fjf8-4h7w.json @@ -7,12 +7,8 @@ "CVE-2021-2062" ], "details": "Vulnerability in the Oracle BI Publisher product of Oracle Fusion Middleware (component: Web Server). Supported versions that are affected are 5.5.0.0.0, 11.1.1.9.0, 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle BI Publisher. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle BI Publisher, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle BI Publisher accessible data as well as unauthorized update, insert or delete access to some of Oracle BI Publisher accessible data. CVSS 3.1 Base Score 7.6 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6963-865c-fqm9/GHSA-6963-865c-fqm9.json b/advisories/unreviewed/2022/05/GHSA-6963-865c-fqm9/GHSA-6963-865c-fqm9.json index 2d16133b053..7f001b8f006 100644 --- a/advisories/unreviewed/2022/05/GHSA-6963-865c-fqm9/GHSA-6963-865c-fqm9.json +++ b/advisories/unreviewed/2022/05/GHSA-6963-865c-fqm9/GHSA-6963-865c-fqm9.json @@ -7,12 +7,8 @@ "CVE-2020-12512" ], "details": "Pepperl+Fuchs Comtrol IO-Link Master in Version 1.5.48 and below is prone to an authenticated reflected POST Cross-Site Scripting ", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-69qh-6j8v-ppx3/GHSA-69qh-6j8v-ppx3.json b/advisories/unreviewed/2022/05/GHSA-69qh-6j8v-ppx3/GHSA-69qh-6j8v-ppx3.json index 061d3f91b28..beb4a70a676 100644 --- a/advisories/unreviewed/2022/05/GHSA-69qh-6j8v-ppx3/GHSA-69qh-6j8v-ppx3.json +++ b/advisories/unreviewed/2022/05/GHSA-69qh-6j8v-ppx3/GHSA-69qh-6j8v-ppx3.json @@ -7,12 +7,8 @@ "CVE-2020-25169" ], "details": "The affected Reolink P2P products do not sufficiently protect data transferred between the local device and Reolink servers. This can allow an attacker to access sensitive information, such as camera feeds.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-69r7-j2w2-g279/GHSA-69r7-j2w2-g279.json b/advisories/unreviewed/2022/05/GHSA-69r7-j2w2-g279/GHSA-69r7-j2w2-g279.json index 296e456f627..a77d994e4f1 100644 --- a/advisories/unreviewed/2022/05/GHSA-69r7-j2w2-g279/GHSA-69r7-j2w2-g279.json +++ b/advisories/unreviewed/2022/05/GHSA-69r7-j2w2-g279/GHSA-69r7-j2w2-g279.json @@ -7,12 +7,8 @@ "CVE-2020-23447" ], "details": "newbee-mall 1.0 is affected by cross-site scripting in shop-cart/settle. Users only need to write xss payload in their address information when buying goods, which is triggered when viewing the \"View Recipient Information\" of this order in \"Order Management Office\".", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6gr4-mx2p-46wq/GHSA-6gr4-mx2p-46wq.json b/advisories/unreviewed/2022/05/GHSA-6gr4-mx2p-46wq/GHSA-6gr4-mx2p-46wq.json index 47e59409547..140ba9bfcfc 100644 --- a/advisories/unreviewed/2022/05/GHSA-6gr4-mx2p-46wq/GHSA-6gr4-mx2p-46wq.json +++ b/advisories/unreviewed/2022/05/GHSA-6gr4-mx2p-46wq/GHSA-6gr4-mx2p-46wq.json @@ -7,12 +7,8 @@ "CVE-2020-27270" ], "details": "SOOIL Developments CoLtd DiabecareRS, AnyDana-i ,AnyDana-A, communication protocol of the insulin pump & AnyDana-i,AnyDana-A mobile apps doesnt use adequate measures to protect encryption keys in transit which allows unauthenticated physically proximate attacker to sniff keys via (BLE).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6hcc-jw2q-4hjj/GHSA-6hcc-jw2q-4hjj.json b/advisories/unreviewed/2022/05/GHSA-6hcc-jw2q-4hjj/GHSA-6hcc-jw2q-4hjj.json index ddb8c015595..693e11764df 100644 --- a/advisories/unreviewed/2022/05/GHSA-6hcc-jw2q-4hjj/GHSA-6hcc-jw2q-4hjj.json +++ b/advisories/unreviewed/2022/05/GHSA-6hcc-jw2q-4hjj/GHSA-6hcc-jw2q-4hjj.json @@ -7,12 +7,8 @@ "CVE-2020-35271" ], "details": "Employee Performance Evaluation System in PHP/MySQLi with Source Code 1.0 is affected by cross-site scripting (XSS) in the Employees, First Name and Last Name fields.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6jjv-2pg7-g28g/GHSA-6jjv-2pg7-g28g.json b/advisories/unreviewed/2022/05/GHSA-6jjv-2pg7-g28g/GHSA-6jjv-2pg7-g28g.json index a24bdeeea5a..ebd456f6f06 100644 --- a/advisories/unreviewed/2022/05/GHSA-6jjv-2pg7-g28g/GHSA-6jjv-2pg7-g28g.json +++ b/advisories/unreviewed/2022/05/GHSA-6jjv-2pg7-g28g/GHSA-6jjv-2pg7-g28g.json @@ -7,12 +7,8 @@ "CVE-2020-3686" ], "details": "Possible memory out of bound issue during music playback when an incorrect bit stream content is copied into array without checking the length of array in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6mm5-r7wc-h7pm/GHSA-6mm5-r7wc-h7pm.json b/advisories/unreviewed/2022/05/GHSA-6mm5-r7wc-h7pm/GHSA-6mm5-r7wc-h7pm.json index d74b4a0eb12..67532004d57 100644 --- a/advisories/unreviewed/2022/05/GHSA-6mm5-r7wc-h7pm/GHSA-6mm5-r7wc-h7pm.json +++ b/advisories/unreviewed/2022/05/GHSA-6mm5-r7wc-h7pm/GHSA-6mm5-r7wc-h7pm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -67,9 +65,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6ph6-qh93-53hh/GHSA-6ph6-qh93-53hh.json b/advisories/unreviewed/2022/05/GHSA-6ph6-qh93-53hh/GHSA-6ph6-qh93-53hh.json index 08e59de7ad2..dd3e0465f0e 100644 --- a/advisories/unreviewed/2022/05/GHSA-6ph6-qh93-53hh/GHSA-6ph6-qh93-53hh.json +++ b/advisories/unreviewed/2022/05/GHSA-6ph6-qh93-53hh/GHSA-6ph6-qh93-53hh.json @@ -7,12 +7,8 @@ "CVE-2021-2127" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is Prior to 6.1.18. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle VM VirtualBox. CVSS 3.1 Base Score 4.4 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6r2v-76j8-x9vv/GHSA-6r2v-76j8-x9vv.json b/advisories/unreviewed/2022/05/GHSA-6r2v-76j8-x9vv/GHSA-6r2v-76j8-x9vv.json index c60a065f7f0..6bb94526d37 100644 --- a/advisories/unreviewed/2022/05/GHSA-6r2v-76j8-x9vv/GHSA-6r2v-76j8-x9vv.json +++ b/advisories/unreviewed/2022/05/GHSA-6r2v-76j8-x9vv/GHSA-6r2v-76j8-x9vv.json @@ -7,12 +7,8 @@ "CVE-2021-20621" ], "details": "Cross-site request forgery (CSRF) vulnerability in Aterm WG2600HP firmware Ver1.0.2 and earlier, and Aterm WG2600HP2 firmware Ver1.0.2 and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6r97-fp62-rh53/GHSA-6r97-fp62-rh53.json b/advisories/unreviewed/2022/05/GHSA-6r97-fp62-rh53/GHSA-6r97-fp62-rh53.json index 107e31f1416..27c59bc34d1 100644 --- a/advisories/unreviewed/2022/05/GHSA-6r97-fp62-rh53/GHSA-6r97-fp62-rh53.json +++ b/advisories/unreviewed/2022/05/GHSA-6r97-fp62-rh53/GHSA-6r97-fp62-rh53.json @@ -7,12 +7,8 @@ "CVE-2021-22639" ], "details": "An uninitialized pointer issue has been identified in the way the application processes project files, allowing an attacker to craft a special project file that may allow arbitrary code execution on the Tellus Lite V-Simulator and V-Server Lite (versions prior to 4.0.10.0).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6vf8-8p4x-pxm5/GHSA-6vf8-8p4x-pxm5.json b/advisories/unreviewed/2022/05/GHSA-6vf8-8p4x-pxm5/GHSA-6vf8-8p4x-pxm5.json index 8663004a5af..89923a01cc1 100644 --- a/advisories/unreviewed/2022/05/GHSA-6vf8-8p4x-pxm5/GHSA-6vf8-8p4x-pxm5.json +++ b/advisories/unreviewed/2022/05/GHSA-6vf8-8p4x-pxm5/GHSA-6vf8-8p4x-pxm5.json @@ -7,12 +7,8 @@ "CVE-2021-26025" ], "details": "PlugIns\\IDE_ACDStd.apl in ACDSee Professional 2021 14.0 1721 has a User Mode Write Access Violation starting at IDE_ACDStd!zlibVersion+0x0000000000004e5e via a crafted BMP image.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6w5v-vmwv-xcwj/GHSA-6w5v-vmwv-xcwj.json b/advisories/unreviewed/2022/05/GHSA-6w5v-vmwv-xcwj/GHSA-6w5v-vmwv-xcwj.json index 50810cbfc98..fa4c754b42f 100644 --- a/advisories/unreviewed/2022/05/GHSA-6w5v-vmwv-xcwj/GHSA-6w5v-vmwv-xcwj.json +++ b/advisories/unreviewed/2022/05/GHSA-6w5v-vmwv-xcwj/GHSA-6w5v-vmwv-xcwj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6wc5-gr23-xwvq/GHSA-6wc5-gr23-xwvq.json b/advisories/unreviewed/2022/05/GHSA-6wc5-gr23-xwvq/GHSA-6wc5-gr23-xwvq.json index c7b7312a25a..536766f28fc 100644 --- a/advisories/unreviewed/2022/05/GHSA-6wc5-gr23-xwvq/GHSA-6wc5-gr23-xwvq.json +++ b/advisories/unreviewed/2022/05/GHSA-6wc5-gr23-xwvq/GHSA-6wc5-gr23-xwvq.json @@ -7,12 +7,8 @@ "CVE-2021-25129" ], "details": "The Baseboard Management Controller(BMC) in HPE Cloudline CL5800 Gen9 Server; HPE Cloudline CL5200 Gen9 Server; HPE Cloudline CL4100 Gen10 Server; HPE Cloudline CL3100 Gen10 Server; HPE Cloudline CL5800 Gen10 Server BMC firmware has a local spx_restservice getvideodata_func function path traversal vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6xxv-m43c-4w3x/GHSA-6xxv-m43c-4w3x.json b/advisories/unreviewed/2022/05/GHSA-6xxv-m43c-4w3x/GHSA-6xxv-m43c-4w3x.json index ad63810b8d5..d7642ed197c 100644 --- a/advisories/unreviewed/2022/05/GHSA-6xxv-m43c-4w3x/GHSA-6xxv-m43c-4w3x.json +++ b/advisories/unreviewed/2022/05/GHSA-6xxv-m43c-4w3x/GHSA-6xxv-m43c-4w3x.json @@ -7,12 +7,8 @@ "CVE-2021-22875" ], "details": "Revive Adserver before 5.1.1 is vulnerable to a reflected XSS vulnerability in stats.php via the `setPerPage` parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7229-j6j7-28xp/GHSA-7229-j6j7-28xp.json b/advisories/unreviewed/2022/05/GHSA-7229-j6j7-28xp/GHSA-7229-j6j7-28xp.json index 0da78817fd9..81d38d734da 100644 --- a/advisories/unreviewed/2022/05/GHSA-7229-j6j7-28xp/GHSA-7229-j6j7-28xp.json +++ b/advisories/unreviewed/2022/05/GHSA-7229-j6j7-28xp/GHSA-7229-j6j7-28xp.json @@ -7,12 +7,8 @@ "CVE-2021-2111" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is Prior to 6.1.18. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle VM VirtualBox. CVSS 3.1 Base Score 6.0 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-72wr-xhp6-g67f/GHSA-72wr-xhp6-g67f.json b/advisories/unreviewed/2022/05/GHSA-72wr-xhp6-g67f/GHSA-72wr-xhp6-g67f.json index 9875b74c578..06961073f89 100644 --- a/advisories/unreviewed/2022/05/GHSA-72wr-xhp6-g67f/GHSA-72wr-xhp6-g67f.json +++ b/advisories/unreviewed/2022/05/GHSA-72wr-xhp6-g67f/GHSA-72wr-xhp6-g67f.json @@ -7,12 +7,8 @@ "CVE-2021-25909" ], "details": "ZIV Automation 4CCT-EA6-334126BF firmware version 3.23.80.27.36371, allows an unauthenticated, remote attacker to cause a denial of service condition on the device. An attacker could exploit this vulnerability by sending specific packets to the port 7919.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-73qx-v778-p382/GHSA-73qx-v778-p382.json b/advisories/unreviewed/2022/05/GHSA-73qx-v778-p382/GHSA-73qx-v778-p382.json index 5eb38aab23a..af56834d86e 100644 --- a/advisories/unreviewed/2022/05/GHSA-73qx-v778-p382/GHSA-73qx-v778-p382.json +++ b/advisories/unreviewed/2022/05/GHSA-73qx-v778-p382/GHSA-73qx-v778-p382.json @@ -7,12 +7,8 @@ "CVE-2020-29446" ], "details": "Affected versions of Atlassian Fisheye & Crucible allow remote attackers to browse local files via an Insecure Direct Object References (IDOR) vulnerability in the WEB-INF directory. The affected versions are before version 4.8.5.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-74c3-jxfp-3xjc/GHSA-74c3-jxfp-3xjc.json b/advisories/unreviewed/2022/05/GHSA-74c3-jxfp-3xjc/GHSA-74c3-jxfp-3xjc.json index 5d61d56e9d4..7a8127027f9 100644 --- a/advisories/unreviewed/2022/05/GHSA-74c3-jxfp-3xjc/GHSA-74c3-jxfp-3xjc.json +++ b/advisories/unreviewed/2022/05/GHSA-74c3-jxfp-3xjc/GHSA-74c3-jxfp-3xjc.json @@ -7,12 +7,8 @@ "CVE-2020-11225" ], "details": "Out of bound access in WLAN driver due to lack of validation of array length before copying into array in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-74vh-rqgr-pmmw/GHSA-74vh-rqgr-pmmw.json b/advisories/unreviewed/2022/05/GHSA-74vh-rqgr-pmmw/GHSA-74vh-rqgr-pmmw.json index 318cefbe5f7..3ea6a2eece7 100644 --- a/advisories/unreviewed/2022/05/GHSA-74vh-rqgr-pmmw/GHSA-74vh-rqgr-pmmw.json +++ b/advisories/unreviewed/2022/05/GHSA-74vh-rqgr-pmmw/GHSA-74vh-rqgr-pmmw.json @@ -7,12 +7,8 @@ "CVE-2021-22852" ], "details": "HGiga EIP product contains SQL Injection vulnerability. Attackers can inject SQL commands into specific URL parameter (online registration) to obtain database schema and data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7525-vx5m-3x7x/GHSA-7525-vx5m-3x7x.json b/advisories/unreviewed/2022/05/GHSA-7525-vx5m-3x7x/GHSA-7525-vx5m-3x7x.json index 28a95efb227..524c89813bd 100644 --- a/advisories/unreviewed/2022/05/GHSA-7525-vx5m-3x7x/GHSA-7525-vx5m-3x7x.json +++ b/advisories/unreviewed/2022/05/GHSA-7525-vx5m-3x7x/GHSA-7525-vx5m-3x7x.json @@ -7,12 +7,8 @@ "CVE-2021-26266" ], "details": "cPanel before 92.0.9 allows a Reseller to bypass the suspension lock (SEC-578).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-75m6-wc48-gvw9/GHSA-75m6-wc48-gvw9.json b/advisories/unreviewed/2022/05/GHSA-75m6-wc48-gvw9/GHSA-75m6-wc48-gvw9.json index 02582c2792d..ad2dbeae95b 100644 --- a/advisories/unreviewed/2022/05/GHSA-75m6-wc48-gvw9/GHSA-75m6-wc48-gvw9.json +++ b/advisories/unreviewed/2022/05/GHSA-75m6-wc48-gvw9/GHSA-75m6-wc48-gvw9.json @@ -7,12 +7,8 @@ "CVE-2020-27539" ], "details": "Heap overflow with full parsing of HTTP respose in Rostelecom CS-C2SHW 5.0.082.1. AgentUpdater service has a self-written HTTP parser and builder. HTTP parser has a heap buffer overflow (OOB write). In default configuration camera parses responses only from HTTPS URLs from config file, so vulnerable code is unreachable and one more bug required to reach it.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-75mx-c32q-gr7g/GHSA-75mx-c32q-gr7g.json b/advisories/unreviewed/2022/05/GHSA-75mx-c32q-gr7g/GHSA-75mx-c32q-gr7g.json index c425a27c8e9..0c23addae31 100644 --- a/advisories/unreviewed/2022/05/GHSA-75mx-c32q-gr7g/GHSA-75mx-c32q-gr7g.json +++ b/advisories/unreviewed/2022/05/GHSA-75mx-c32q-gr7g/GHSA-75mx-c32q-gr7g.json @@ -7,12 +7,8 @@ "CVE-2021-0361" ], "details": "In kisd, there is a possible out of bounds read due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Product: Android; Versions: Android-11; Patch ID: ALPS05449968.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7643-946g-hpgv/GHSA-7643-946g-hpgv.json b/advisories/unreviewed/2022/05/GHSA-7643-946g-hpgv/GHSA-7643-946g-hpgv.json index bad44b044da..4409d704130 100644 --- a/advisories/unreviewed/2022/05/GHSA-7643-946g-hpgv/GHSA-7643-946g-hpgv.json +++ b/advisories/unreviewed/2022/05/GHSA-7643-946g-hpgv/GHSA-7643-946g-hpgv.json @@ -7,12 +7,8 @@ "CVE-2021-2025" ], "details": "Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Fusion Middleware (component: Analytics Web General). Supported versions that are affected are 5.5.0.0.0, 11.1.1.9.0, 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Business Intelligence Enterprise Edition. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Business Intelligence Enterprise Edition, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Business Intelligence Enterprise Edition accessible data as well as unauthorized update, insert or delete access to some of Oracle Business Intelligence Enterprise Edition accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-78hq-56xq-qvm7/GHSA-78hq-56xq-qvm7.json b/advisories/unreviewed/2022/05/GHSA-78hq-56xq-qvm7/GHSA-78hq-56xq-qvm7.json index 3d123b184e7..be94fcae665 100644 --- a/advisories/unreviewed/2022/05/GHSA-78hq-56xq-qvm7/GHSA-78hq-56xq-qvm7.json +++ b/advisories/unreviewed/2022/05/GHSA-78hq-56xq-qvm7/GHSA-78hq-56xq-qvm7.json @@ -7,12 +7,8 @@ "CVE-2020-24670" ], "details": "The Dashboard Editor in Hitachi Vantara Pentaho through 7.x - 8.x contains a reflected Cross-site scripting vulnerability, which allows an authenticated remote users to execute arbitrary JavaScript code. Specifically, the vulnerability lies in the 'type' attribute of 'dashboardXml' parameter. Remediated in >= 7.1.0.25, >= 8.2.0.6, and >= 8.3.0.0 GA.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-792j-8wv9-hgmh/GHSA-792j-8wv9-hgmh.json b/advisories/unreviewed/2022/05/GHSA-792j-8wv9-hgmh/GHSA-792j-8wv9-hgmh.json index f7091362cbf..dbf01f089ce 100644 --- a/advisories/unreviewed/2022/05/GHSA-792j-8wv9-hgmh/GHSA-792j-8wv9-hgmh.json +++ b/advisories/unreviewed/2022/05/GHSA-792j-8wv9-hgmh/GHSA-792j-8wv9-hgmh.json @@ -7,12 +7,8 @@ "CVE-2020-11167" ], "details": "Memory corruption while calculating L2CAP packet length in reassembly logic when remote sends more data than expected in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7949-q2p4-p63q/GHSA-7949-q2p4-p63q.json b/advisories/unreviewed/2022/05/GHSA-7949-q2p4-p63q/GHSA-7949-q2p4-p63q.json index 53268b29229..63cf5ea5d45 100644 --- a/advisories/unreviewed/2022/05/GHSA-7949-q2p4-p63q/GHSA-7949-q2p4-p63q.json +++ b/advisories/unreviewed/2022/05/GHSA-7949-q2p4-p63q/GHSA-7949-q2p4-p63q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-79r4-9j2m-5f8q/GHSA-79r4-9j2m-5f8q.json b/advisories/unreviewed/2022/05/GHSA-79r4-9j2m-5f8q/GHSA-79r4-9j2m-5f8q.json index a3b44a691dd..6ce974be43c 100644 --- a/advisories/unreviewed/2022/05/GHSA-79r4-9j2m-5f8q/GHSA-79r4-9j2m-5f8q.json +++ b/advisories/unreviewed/2022/05/GHSA-79r4-9j2m-5f8q/GHSA-79r4-9j2m-5f8q.json @@ -7,12 +7,8 @@ "CVE-2021-3304" ], "details": "Sagemcom F@ST 3686 v2 3.495 devices have a buffer overflow via a long sessionKey to the goform/login URI.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7cq7-whwr-8m7w/GHSA-7cq7-whwr-8m7w.json b/advisories/unreviewed/2022/05/GHSA-7cq7-whwr-8m7w/GHSA-7cq7-whwr-8m7w.json index 0fc117806bd..814155046f6 100644 --- a/advisories/unreviewed/2022/05/GHSA-7cq7-whwr-8m7w/GHSA-7cq7-whwr-8m7w.json +++ b/advisories/unreviewed/2022/05/GHSA-7cq7-whwr-8m7w/GHSA-7cq7-whwr-8m7w.json @@ -7,12 +7,8 @@ "CVE-2020-25784" ], "details": "An issue was discovered on Accfly Wireless Security IR Camera System 720P with software versions v3.10.73 through v4.15.77. There is an unauthenticated stack-based buffer overflow in the function CNetClientGuard::SubOprMsg during incoming message handling.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7fmq-fjf7-57gj/GHSA-7fmq-fjf7-57gj.json b/advisories/unreviewed/2022/05/GHSA-7fmq-fjf7-57gj/GHSA-7fmq-fjf7-57gj.json index 067c16a5a60..8e6a8f979a6 100644 --- a/advisories/unreviewed/2022/05/GHSA-7fmq-fjf7-57gj/GHSA-7fmq-fjf7-57gj.json +++ b/advisories/unreviewed/2022/05/GHSA-7fmq-fjf7-57gj/GHSA-7fmq-fjf7-57gj.json @@ -7,12 +7,8 @@ "CVE-2020-4820" ], "details": "IBM Cloud Pak for Security (CP4S) 1.4.0.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7g33-jchx-2fjc/GHSA-7g33-jchx-2fjc.json b/advisories/unreviewed/2022/05/GHSA-7g33-jchx-2fjc/GHSA-7g33-jchx-2fjc.json index 3709e2135ab..cc641e905b9 100644 --- a/advisories/unreviewed/2022/05/GHSA-7g33-jchx-2fjc/GHSA-7g33-jchx-2fjc.json +++ b/advisories/unreviewed/2022/05/GHSA-7g33-jchx-2fjc/GHSA-7g33-jchx-2fjc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7gf3-pjh4-q42g/GHSA-7gf3-pjh4-q42g.json b/advisories/unreviewed/2022/05/GHSA-7gf3-pjh4-q42g/GHSA-7gf3-pjh4-q42g.json index fd2e645612a..8f29267225e 100644 --- a/advisories/unreviewed/2022/05/GHSA-7gf3-pjh4-q42g/GHSA-7gf3-pjh4-q42g.json +++ b/advisories/unreviewed/2022/05/GHSA-7gf3-pjh4-q42g/GHSA-7gf3-pjh4-q42g.json @@ -7,12 +7,8 @@ "CVE-2020-36115" ], "details": "Stored Cross Site Scripting (XSS) vulnerability in EGavilan Media CRUD Operation with PHP, MySQL, Bootstrap, and Dompdf via First Name or Last Name parameter in the 'Add New Record Feature'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7gh7-x8j4-2p74/GHSA-7gh7-x8j4-2p74.json b/advisories/unreviewed/2022/05/GHSA-7gh7-x8j4-2p74/GHSA-7gh7-x8j4-2p74.json index 5b09fc240d9..33e7e78a139 100644 --- a/advisories/unreviewed/2022/05/GHSA-7gh7-x8j4-2p74/GHSA-7gh7-x8j4-2p74.json +++ b/advisories/unreviewed/2022/05/GHSA-7gh7-x8j4-2p74/GHSA-7gh7-x8j4-2p74.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7h22-x3wx-hv9p/GHSA-7h22-x3wx-hv9p.json b/advisories/unreviewed/2022/05/GHSA-7h22-x3wx-hv9p/GHSA-7h22-x3wx-hv9p.json index 7a98ce19ebb..583a8340ba7 100644 --- a/advisories/unreviewed/2022/05/GHSA-7h22-x3wx-hv9p/GHSA-7h22-x3wx-hv9p.json +++ b/advisories/unreviewed/2022/05/GHSA-7h22-x3wx-hv9p/GHSA-7h22-x3wx-hv9p.json @@ -7,12 +7,8 @@ "CVE-2021-21723" ], "details": "Some ZTE products have a DoS vulnerability. Due to the improper handling of memory release in some specific scenarios, a remote attacker can trigger the vulnerability by performing a series of operations, resulting in memory leak, which may eventually lead to device denial of service. This affects: ZXR10 9904, ZXR10 9908, ZXR10 9916, ZXR10 9904-S, ZXR10 9908-S; all versions up to V1.01.10.B12.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7h27-qgm8-3m3v/GHSA-7h27-qgm8-3m3v.json b/advisories/unreviewed/2022/05/GHSA-7h27-qgm8-3m3v/GHSA-7h27-qgm8-3m3v.json index 50d0fa0c33e..dbbe537dd55 100644 --- a/advisories/unreviewed/2022/05/GHSA-7h27-qgm8-3m3v/GHSA-7h27-qgm8-3m3v.json +++ b/advisories/unreviewed/2022/05/GHSA-7h27-qgm8-3m3v/GHSA-7h27-qgm8-3m3v.json @@ -7,12 +7,8 @@ "CVE-2021-2077" ], "details": "Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Shopping Cart). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iStore. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle iStore, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle iStore accessible data as well as unauthorized update, insert or delete access to some of Oracle iStore accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7hpx-98fw-5mq9/GHSA-7hpx-98fw-5mq9.json b/advisories/unreviewed/2022/05/GHSA-7hpx-98fw-5mq9/GHSA-7hpx-98fw-5mq9.json index ff29aada356..f86f6a29d32 100644 --- a/advisories/unreviewed/2022/05/GHSA-7hpx-98fw-5mq9/GHSA-7hpx-98fw-5mq9.json +++ b/advisories/unreviewed/2022/05/GHSA-7hpx-98fw-5mq9/GHSA-7hpx-98fw-5mq9.json @@ -7,12 +7,8 @@ "CVE-2021-2113" ], "details": "Vulnerability in the Oracle Financial Services Revenue Management and Billing product of Oracle Financial Services Applications (component: On Demand Billing). Supported versions that are affected are 2.9.0.0 and 2.9.0.1. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Financial Services Revenue Management and Billing. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Financial Services Revenue Management and Billing accessible data. CVSS 3.1 Base Score 4.3 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7hrw-67rx-qfvf/GHSA-7hrw-67rx-qfvf.json b/advisories/unreviewed/2022/05/GHSA-7hrw-67rx-qfvf/GHSA-7hrw-67rx-qfvf.json index 0a9efd765cb..0b71efa5541 100644 --- a/advisories/unreviewed/2022/05/GHSA-7hrw-67rx-qfvf/GHSA-7hrw-67rx-qfvf.json +++ b/advisories/unreviewed/2022/05/GHSA-7hrw-67rx-qfvf/GHSA-7hrw-67rx-qfvf.json @@ -7,12 +7,8 @@ "CVE-2021-2096" ], "details": "Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Shopping Cart). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iStore. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle iStore, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle iStore accessible data as well as unauthorized update, insert or delete access to some of Oracle iStore accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7jv9-v556-278x/GHSA-7jv9-v556-278x.json b/advisories/unreviewed/2022/05/GHSA-7jv9-v556-278x/GHSA-7jv9-v556-278x.json index 30813ee2d56..f56c71a9a5f 100644 --- a/advisories/unreviewed/2022/05/GHSA-7jv9-v556-278x/GHSA-7jv9-v556-278x.json +++ b/advisories/unreviewed/2022/05/GHSA-7jv9-v556-278x/GHSA-7jv9-v556-278x.json @@ -7,12 +7,8 @@ "CVE-2020-24666" ], "details": "The Analysis Report in Hitachi Vantara Pentaho through 7.x - 8.x contains a stored Cross-site scripting vulnerability, which allows an authenticated remote users to execute arbitrary JavaScript code. Specifically, the vulnerability lies in the 'Display Name' parameter. Remediated in >= 9.1.0.1", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7m4m-xwpv-qmvh/GHSA-7m4m-xwpv-qmvh.json b/advisories/unreviewed/2022/05/GHSA-7m4m-xwpv-qmvh/GHSA-7m4m-xwpv-qmvh.json index c81e021ba7f..ddc06764561 100644 --- a/advisories/unreviewed/2022/05/GHSA-7m4m-xwpv-qmvh/GHSA-7m4m-xwpv-qmvh.json +++ b/advisories/unreviewed/2022/05/GHSA-7m4m-xwpv-qmvh/GHSA-7m4m-xwpv-qmvh.json @@ -7,12 +7,8 @@ "CVE-2021-25763" ], "details": "In JetBrains Ktor before 1.4.2, weak cipher suites were enabled by default.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7p98-xcgc-gwhj/GHSA-7p98-xcgc-gwhj.json b/advisories/unreviewed/2022/05/GHSA-7p98-xcgc-gwhj/GHSA-7p98-xcgc-gwhj.json index b65c0e677ed..c8fe97cb6cf 100644 --- a/advisories/unreviewed/2022/05/GHSA-7p98-xcgc-gwhj/GHSA-7p98-xcgc-gwhj.json +++ b/advisories/unreviewed/2022/05/GHSA-7p98-xcgc-gwhj/GHSA-7p98-xcgc-gwhj.json @@ -7,12 +7,8 @@ "CVE-2020-20949" ], "details": "Bleichenbacher's attack on PKCS #1 v1.5 padding for RSA in STM32 cryptographic firmware library software expansion for STM32Cube (UM1924). The vulnerability can allow one to use Bleichenbacher's oracle attack to decrypt an encrypted ciphertext by making successive queries to the server using the vulnerable library, resulting in remote information disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7qpq-c35p-wc3c/GHSA-7qpq-c35p-wc3c.json b/advisories/unreviewed/2022/05/GHSA-7qpq-c35p-wc3c/GHSA-7qpq-c35p-wc3c.json index e4e14187afe..9ffdfb9a873 100644 --- a/advisories/unreviewed/2022/05/GHSA-7qpq-c35p-wc3c/GHSA-7qpq-c35p-wc3c.json +++ b/advisories/unreviewed/2022/05/GHSA-7qpq-c35p-wc3c/GHSA-7qpq-c35p-wc3c.json @@ -7,12 +7,8 @@ "CVE-2020-35513" ], "details": "A flaw incorrect umask during file or directory modification in the Linux kernel NFS (network file system) functionality was found in the way user create and delete object using NFSv4.2 or newer if both simultaneously accessing the NFS by the other process that is not using new NFSv4.2. A user with access to the NFS could use this flaw to starve the resources causing denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7qrc-8ggr-g3p9/GHSA-7qrc-8ggr-g3p9.json b/advisories/unreviewed/2022/05/GHSA-7qrc-8ggr-g3p9/GHSA-7qrc-8ggr-g3p9.json index 88c60c25ad9..2c82c7085af 100644 --- a/advisories/unreviewed/2022/05/GHSA-7qrc-8ggr-g3p9/GHSA-7qrc-8ggr-g3p9.json +++ b/advisories/unreviewed/2022/05/GHSA-7qrc-8ggr-g3p9/GHSA-7qrc-8ggr-g3p9.json @@ -7,12 +7,8 @@ "CVE-2021-25312" ], "details": "HTCondor before 8.9.11 allows a user to submit a job as another user on the system, because of a flaw in the IDTOKENS authentication method.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7w6h-978p-xvrg/GHSA-7w6h-978p-xvrg.json b/advisories/unreviewed/2022/05/GHSA-7w6h-978p-xvrg/GHSA-7w6h-978p-xvrg.json index 78c7a082b22..85d21d71fa5 100644 --- a/advisories/unreviewed/2022/05/GHSA-7w6h-978p-xvrg/GHSA-7w6h-978p-xvrg.json +++ b/advisories/unreviewed/2022/05/GHSA-7w6h-978p-xvrg/GHSA-7w6h-978p-xvrg.json @@ -7,12 +7,8 @@ "CVE-2021-22168" ], "details": "A regular expression denial of service issue has been discovered in NuGet API affecting all versions of GitLab starting from version 12.8.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-82qh-pr8g-6wjv/GHSA-82qh-pr8g-6wjv.json b/advisories/unreviewed/2022/05/GHSA-82qh-pr8g-6wjv/GHSA-82qh-pr8g-6wjv.json index 259571ee454..4ebf59ce68a 100644 --- a/advisories/unreviewed/2022/05/GHSA-82qh-pr8g-6wjv/GHSA-82qh-pr8g-6wjv.json +++ b/advisories/unreviewed/2022/05/GHSA-82qh-pr8g-6wjv/GHSA-82qh-pr8g-6wjv.json @@ -7,12 +7,8 @@ "CVE-2020-11137" ], "details": "Integer multiplication overflow resulting in lower buffer size allocation than expected causes memory access out of bounds resulting in possible device instability in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-83f7-78g7-gqxp/GHSA-83f7-78g7-gqxp.json b/advisories/unreviewed/2022/05/GHSA-83f7-78g7-gqxp/GHSA-83f7-78g7-gqxp.json index e41403b9d31..d71f2b21be4 100644 --- a/advisories/unreviewed/2022/05/GHSA-83f7-78g7-gqxp/GHSA-83f7-78g7-gqxp.json +++ b/advisories/unreviewed/2022/05/GHSA-83f7-78g7-gqxp/GHSA-83f7-78g7-gqxp.json @@ -7,12 +7,8 @@ "CVE-2021-25295" ], "details": "OpenCATS through 0.9.5-3 has multiple Cross-site Scripting (XSS) issues.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8474-8f3q-2jhh/GHSA-8474-8f3q-2jhh.json b/advisories/unreviewed/2022/05/GHSA-8474-8f3q-2jhh/GHSA-8474-8f3q-2jhh.json index 311c7ca92c1..74bed048684 100644 --- a/advisories/unreviewed/2022/05/GHSA-8474-8f3q-2jhh/GHSA-8474-8f3q-2jhh.json +++ b/advisories/unreviewed/2022/05/GHSA-8474-8f3q-2jhh/GHSA-8474-8f3q-2jhh.json @@ -7,12 +7,8 @@ "CVE-2020-28406" ], "details": "An improper authorization vulnerability exists in Star Practice Management Web version 2019.2.0.6, allowing an unauthorized user to access details about jobs he should not have access to via the Audit Trail Feature.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-858g-9g73-qcmg/GHSA-858g-9g73-qcmg.json b/advisories/unreviewed/2022/05/GHSA-858g-9g73-qcmg/GHSA-858g-9g73-qcmg.json index e5d326a3fda..b89fb550e24 100644 --- a/advisories/unreviewed/2022/05/GHSA-858g-9g73-qcmg/GHSA-858g-9g73-qcmg.json +++ b/advisories/unreviewed/2022/05/GHSA-858g-9g73-qcmg/GHSA-858g-9g73-qcmg.json @@ -7,12 +7,8 @@ "CVE-2021-2074" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is Prior to 6.1.18. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox. CVSS 3.1 Base Score 8.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-86fx-vw86-g82j/GHSA-86fx-vw86-g82j.json b/advisories/unreviewed/2022/05/GHSA-86fx-vw86-g82j/GHSA-86fx-vw86-g82j.json index 20b13b17a3f..b153883b598 100644 --- a/advisories/unreviewed/2022/05/GHSA-86fx-vw86-g82j/GHSA-86fx-vw86-g82j.json +++ b/advisories/unreviewed/2022/05/GHSA-86fx-vw86-g82j/GHSA-86fx-vw86-g82j.json @@ -7,12 +7,8 @@ "CVE-2021-0221" ], "details": "In an EVPN/VXLAN scenario, if an IRB interface with a virtual gateway address (VGA) is configured on a PE, a traffic loop may occur upon receipt of specific IP multicast traffic. The traffic loop will cause interface traffic to increase abnormally, ultimately leading to a Denial of Service (DoS) in packet processing. The following command could be used to monitor the interface traffic: user@junos> monitor interface traffic Interface Link Input packets (pps) Output packets (pps) et-0/0/1 Up 6492089274364 (70994959) 6492089235319 (70994956) et-0/0/25 Up 343458103 (1) 156844 (0) ae0 Up 9132519197257 (70994959) 9132519139454 (70994956) This issue affects Juniper Networks Junos OS on QFX Series: all versions prior to 17.3R3-S10; 17.4 versions prior to 17.4R2-S12, 17.4R3-S3; 18.1 versions prior to 18.1R3-S11; 18.2 versions prior to 18.2R3-S6; 18.3 versions prior to 18.3R3-S4; 18.4 versions prior to 18.4R2-S5, 18.4R3-S5; 19.1 versions prior to 19.1R1-S6, 19.1R2-S2, 19.1R3-S3; 19.2 versions prior to 19.2R1-S5, 19.2R3-S1; 19.3 versions prior to 19.3R2-S5, 19.3R3; 19.4 versions prior to 19.4R2-S2, 19.4R3; 20.1 versions prior to 20.1R2; 20.2 versions prior to 20.2R1-S2, 20.2R2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-86q4-677r-wjxv/GHSA-86q4-677r-wjxv.json b/advisories/unreviewed/2022/05/GHSA-86q4-677r-wjxv/GHSA-86q4-677r-wjxv.json index f214d3164f0..0d674b2c53a 100644 --- a/advisories/unreviewed/2022/05/GHSA-86q4-677r-wjxv/GHSA-86q4-677r-wjxv.json +++ b/advisories/unreviewed/2022/05/GHSA-86q4-677r-wjxv/GHSA-86q4-677r-wjxv.json @@ -7,12 +7,8 @@ "CVE-2021-2014" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: PAM Auth Plugin). Supported versions that are affected are 5.7.32 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-87j7-hjrv-h93w/GHSA-87j7-hjrv-h93w.json b/advisories/unreviewed/2022/05/GHSA-87j7-hjrv-h93w/GHSA-87j7-hjrv-h93w.json index f9003e0baeb..081be2a1c3d 100644 --- a/advisories/unreviewed/2022/05/GHSA-87j7-hjrv-h93w/GHSA-87j7-hjrv-h93w.json +++ b/advisories/unreviewed/2022/05/GHSA-87j7-hjrv-h93w/GHSA-87j7-hjrv-h93w.json @@ -7,12 +7,8 @@ "CVE-2021-2036" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.22 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-89c6-8x2j-h6xj/GHSA-89c6-8x2j-h6xj.json b/advisories/unreviewed/2022/05/GHSA-89c6-8x2j-h6xj/GHSA-89c6-8x2j-h6xj.json index 35347215422..c07f87cd26f 100644 --- a/advisories/unreviewed/2022/05/GHSA-89c6-8x2j-h6xj/GHSA-89c6-8x2j-h6xj.json +++ b/advisories/unreviewed/2022/05/GHSA-89c6-8x2j-h6xj/GHSA-89c6-8x2j-h6xj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-89wm-w7vg-fqcp/GHSA-89wm-w7vg-fqcp.json b/advisories/unreviewed/2022/05/GHSA-89wm-w7vg-fqcp/GHSA-89wm-w7vg-fqcp.json index 4175747b105..91bc55f34c4 100644 --- a/advisories/unreviewed/2022/05/GHSA-89wm-w7vg-fqcp/GHSA-89wm-w7vg-fqcp.json +++ b/advisories/unreviewed/2022/05/GHSA-89wm-w7vg-fqcp/GHSA-89wm-w7vg-fqcp.json @@ -7,12 +7,8 @@ "CVE-2021-2021" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.22 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8c9c-hrw4-x8cg/GHSA-8c9c-hrw4-x8cg.json b/advisories/unreviewed/2022/05/GHSA-8c9c-hrw4-x8cg/GHSA-8c9c-hrw4-x8cg.json index 0f857e4f6f9..d94172691b4 100644 --- a/advisories/unreviewed/2022/05/GHSA-8c9c-hrw4-x8cg/GHSA-8c9c-hrw4-x8cg.json +++ b/advisories/unreviewed/2022/05/GHSA-8c9c-hrw4-x8cg/GHSA-8c9c-hrw4-x8cg.json @@ -7,12 +7,8 @@ "CVE-2020-11214" ], "details": "Buffer over-read while processing NDL attribute if attribute length is larger than expected and then FW is treating it as more number of immutable schedules in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8cpp-59mv-gfqj/GHSA-8cpp-59mv-gfqj.json b/advisories/unreviewed/2022/05/GHSA-8cpp-59mv-gfqj/GHSA-8cpp-59mv-gfqj.json index 60f061390a3..995f0ed6ad3 100644 --- a/advisories/unreviewed/2022/05/GHSA-8cpp-59mv-gfqj/GHSA-8cpp-59mv-gfqj.json +++ b/advisories/unreviewed/2022/05/GHSA-8cpp-59mv-gfqj/GHSA-8cpp-59mv-gfqj.json @@ -7,12 +7,8 @@ "CVE-2020-24669" ], "details": "The New Analysis Report in Hitachi Vantara Pentaho through 7.x - 8.x contains a DOM-based Cross-site scripting vulnerability, which allows an authenticated remote users to execute arbitrary JavaScript code. Specifically, the vulnerability lies in the 'Analysis Report Description' field in 'About this Report' section. Remediated in >= 8.3.0.9, >= 9.0.0.1, and >= 9.1.0.0 GA.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8cvh-hm2x-mc93/GHSA-8cvh-hm2x-mc93.json b/advisories/unreviewed/2022/05/GHSA-8cvh-hm2x-mc93/GHSA-8cvh-hm2x-mc93.json index 3136a48414d..bd813e40d72 100644 --- a/advisories/unreviewed/2022/05/GHSA-8cvh-hm2x-mc93/GHSA-8cvh-hm2x-mc93.json +++ b/advisories/unreviewed/2022/05/GHSA-8cvh-hm2x-mc93/GHSA-8cvh-hm2x-mc93.json @@ -7,12 +7,8 @@ "CVE-2020-11215" ], "details": "An out of bounds read can happen when processing VSA attribute due to improper minimum required length check in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8f6m-8258-hw32/GHSA-8f6m-8258-hw32.json b/advisories/unreviewed/2022/05/GHSA-8f6m-8258-hw32/GHSA-8f6m-8258-hw32.json index d0791596646..19ef759ea61 100644 --- a/advisories/unreviewed/2022/05/GHSA-8f6m-8258-hw32/GHSA-8f6m-8258-hw32.json +++ b/advisories/unreviewed/2022/05/GHSA-8f6m-8258-hw32/GHSA-8f6m-8258-hw32.json @@ -7,12 +7,8 @@ "CVE-2020-23360" ], "details": "oscommerce v2.3.4.1 has a functional problem in user registration and password rechecking, where a non-identical password can bypass the checks in /catalog/admin/administrators.php and /catalog/password_reset.php", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8g3p-9292-vwfx/GHSA-8g3p-9292-vwfx.json b/advisories/unreviewed/2022/05/GHSA-8g3p-9292-vwfx/GHSA-8g3p-9292-vwfx.json index 47b76708f47..738e3710b13 100644 --- a/advisories/unreviewed/2022/05/GHSA-8g3p-9292-vwfx/GHSA-8g3p-9292-vwfx.json +++ b/advisories/unreviewed/2022/05/GHSA-8g3p-9292-vwfx/GHSA-8g3p-9292-vwfx.json @@ -7,12 +7,8 @@ "CVE-2021-2121" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is Prior to 6.1.18. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle VM VirtualBox. CVSS 3.1 Base Score 6.0 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8ghq-9hwr-jxh8/GHSA-8ghq-9hwr-jxh8.json b/advisories/unreviewed/2022/05/GHSA-8ghq-9hwr-jxh8/GHSA-8ghq-9hwr-jxh8.json index db3c35927a8..9ffebfeafd0 100644 --- a/advisories/unreviewed/2022/05/GHSA-8ghq-9hwr-jxh8/GHSA-8ghq-9hwr-jxh8.json +++ b/advisories/unreviewed/2022/05/GHSA-8ghq-9hwr-jxh8/GHSA-8ghq-9hwr-jxh8.json @@ -7,12 +7,8 @@ "CVE-2020-4855" ], "details": "IBM Jazz Foundation products is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 190457.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8h8c-92jm-7x7x/GHSA-8h8c-92jm-7x7x.json b/advisories/unreviewed/2022/05/GHSA-8h8c-92jm-7x7x/GHSA-8h8c-92jm-7x7x.json index a35940260aa..b63d3aef51e 100644 --- a/advisories/unreviewed/2022/05/GHSA-8h8c-92jm-7x7x/GHSA-8h8c-92jm-7x7x.json +++ b/advisories/unreviewed/2022/05/GHSA-8h8c-92jm-7x7x/GHSA-8h8c-92jm-7x7x.json @@ -7,12 +7,8 @@ "CVE-2021-21011" ], "details": "Adobe Captivate 2019 version 11.5.1.499 (and earlier) is affected by an uncontrolled search path element vulnerability that could lead to privilege escalation. An attacker with permissions to write to the file system could leverage this vulnerability to escalate privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8jc2-pm4h-g9r2/GHSA-8jc2-pm4h-g9r2.json b/advisories/unreviewed/2022/05/GHSA-8jc2-pm4h-g9r2/GHSA-8jc2-pm4h-g9r2.json index eaf3578fb90..d4b4062539d 100644 --- a/advisories/unreviewed/2022/05/GHSA-8jc2-pm4h-g9r2/GHSA-8jc2-pm4h-g9r2.json +++ b/advisories/unreviewed/2022/05/GHSA-8jc2-pm4h-g9r2/GHSA-8jc2-pm4h-g9r2.json @@ -7,12 +7,8 @@ "CVE-2021-2056" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.22 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.4 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8jc2-pvhh-pcg8/GHSA-8jc2-pvhh-pcg8.json b/advisories/unreviewed/2022/05/GHSA-8jc2-pvhh-pcg8/GHSA-8jc2-pvhh-pcg8.json index df62dcf109e..5e3e083fbfc 100644 --- a/advisories/unreviewed/2022/05/GHSA-8jc2-pvhh-pcg8/GHSA-8jc2-pvhh-pcg8.json +++ b/advisories/unreviewed/2022/05/GHSA-8jc2-pvhh-pcg8/GHSA-8jc2-pvhh-pcg8.json @@ -7,12 +7,8 @@ "CVE-2020-28404" ], "details": "An improper authorization vulnerability exists in Star Practice Management Web version 2019.2.0.6, allowing an unauthorized user to access the Billing page without the appropriate privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8jp5-4765-vmv8/GHSA-8jp5-4765-vmv8.json b/advisories/unreviewed/2022/05/GHSA-8jp5-4765-vmv8/GHSA-8jp5-4765-vmv8.json index 6c9472051a8..a95b8763696 100644 --- a/advisories/unreviewed/2022/05/GHSA-8jp5-4765-vmv8/GHSA-8jp5-4765-vmv8.json +++ b/advisories/unreviewed/2022/05/GHSA-8jp5-4765-vmv8/GHSA-8jp5-4765-vmv8.json @@ -7,12 +7,8 @@ "CVE-2021-2073" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is Prior to 6.1.18. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle VM VirtualBox. CVSS 3.1 Base Score 4.4 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8jv4-3cwp-xgq4/GHSA-8jv4-3cwp-xgq4.json b/advisories/unreviewed/2022/05/GHSA-8jv4-3cwp-xgq4/GHSA-8jv4-3cwp-xgq4.json index 502b284b8e2..60d0ce79f18 100644 --- a/advisories/unreviewed/2022/05/GHSA-8jv4-3cwp-xgq4/GHSA-8jv4-3cwp-xgq4.json +++ b/advisories/unreviewed/2022/05/GHSA-8jv4-3cwp-xgq4/GHSA-8jv4-3cwp-xgq4.json @@ -7,12 +7,8 @@ "CVE-2021-2078" ], "details": "Vulnerability in the Oracle Configurator product of Oracle Supply Chain (component: UI Servlet). Supported versions that are affected are 12.1 and 12.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Configurator. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Configurator, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Configurator accessible data as well as unauthorized update, insert or delete access to some of Oracle Configurator accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8m5w-24jx-6j4c/GHSA-8m5w-24jx-6j4c.json b/advisories/unreviewed/2022/05/GHSA-8m5w-24jx-6j4c/GHSA-8m5w-24jx-6j4c.json index 268f0ab0618..655f8de000e 100644 --- a/advisories/unreviewed/2022/05/GHSA-8m5w-24jx-6j4c/GHSA-8m5w-24jx-6j4c.json +++ b/advisories/unreviewed/2022/05/GHSA-8m5w-24jx-6j4c/GHSA-8m5w-24jx-6j4c.json @@ -7,12 +7,8 @@ "CVE-2021-2044" ], "details": "Vulnerability in the PeopleSoft Enterprise FIN Payables product of Oracle PeopleSoft (component: Financial Sanctions). The supported version that is affected is 9.2. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise PeopleSoft Enterprise FIN Payables. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all PeopleSoft Enterprise FIN Payables accessible data. CVSS 3.1 Base Score 6.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8q82-2c4p-w6hp/GHSA-8q82-2c4p-w6hp.json b/advisories/unreviewed/2022/05/GHSA-8q82-2c4p-w6hp/GHSA-8q82-2c4p-w6hp.json index ad8f981834b..efadda12c7a 100644 --- a/advisories/unreviewed/2022/05/GHSA-8q82-2c4p-w6hp/GHSA-8q82-2c4p-w6hp.json +++ b/advisories/unreviewed/2022/05/GHSA-8q82-2c4p-w6hp/GHSA-8q82-2c4p-w6hp.json @@ -7,12 +7,8 @@ "CVE-2020-23522" ], "details": "Pixelimity 1.0 has cross-site request forgery via the admin/setting.php data [Password] parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8q87-6j7g-5qcf/GHSA-8q87-6j7g-5qcf.json b/advisories/unreviewed/2022/05/GHSA-8q87-6j7g-5qcf/GHSA-8q87-6j7g-5qcf.json index 85ff70ebc60..0e710826681 100644 --- a/advisories/unreviewed/2022/05/GHSA-8q87-6j7g-5qcf/GHSA-8q87-6j7g-5qcf.json +++ b/advisories/unreviewed/2022/05/GHSA-8q87-6j7g-5qcf/GHSA-8q87-6j7g-5qcf.json @@ -7,12 +7,8 @@ "CVE-2020-4787" ], "details": "IBM QRadar SIEM 7.4.2 GA to 7.4.2 Patch 1, 7.4.0 to 7.4.1 Patch 1, and 7.3.0 to 7.3.3 Patch 5 is vulnerable to server side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks. IBM X-Force ID: 189224.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8qxp-976h-rx2p/GHSA-8qxp-976h-rx2p.json b/advisories/unreviewed/2022/05/GHSA-8qxp-976h-rx2p/GHSA-8qxp-976h-rx2p.json index 47e242a2693..63765213ac0 100644 --- a/advisories/unreviewed/2022/05/GHSA-8qxp-976h-rx2p/GHSA-8qxp-976h-rx2p.json +++ b/advisories/unreviewed/2022/05/GHSA-8qxp-976h-rx2p/GHSA-8qxp-976h-rx2p.json @@ -7,12 +7,8 @@ "CVE-2021-2057" ], "details": "Vulnerability in the Oracle Retail Customer Management and Segmentation Foundation product of Oracle Retail Applications (component: Internal Operations). The supported version that is affected is 19.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Retail Customer Management and Segmentation Foundation. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Retail Customer Management and Segmentation Foundation accessible data as well as unauthorized read access to a subset of Oracle Retail Customer Management and Segmentation Foundation accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Retail Customer Management and Segmentation Foundation. CVSS 3.1 Base Score 6.3 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8rwp-72pf-cq9g/GHSA-8rwp-72pf-cq9g.json b/advisories/unreviewed/2022/05/GHSA-8rwp-72pf-cq9g/GHSA-8rwp-72pf-cq9g.json index 5cabf27351f..95f651d654b 100644 --- a/advisories/unreviewed/2022/05/GHSA-8rwp-72pf-cq9g/GHSA-8rwp-72pf-cq9g.json +++ b/advisories/unreviewed/2022/05/GHSA-8rwp-72pf-cq9g/GHSA-8rwp-72pf-cq9g.json @@ -7,12 +7,8 @@ "CVE-2021-22873" ], "details": "Revive Adserver before 5.1.0 is vulnerable to open redirects via the `dest`, `oadest`, and/or `ct0` parameters of the lg.php and ck.php delivery scripts. Such open redirects had previously been available by design to allow third party ad servers to track such metrics when delivering ads. However, third party click tracking via redirects is not a viable option anymore, leading to such open redirect functionality being removed and reclassified as a vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8v6m-v7w5-7r88/GHSA-8v6m-v7w5-7r88.json b/advisories/unreviewed/2022/05/GHSA-8v6m-v7w5-7r88/GHSA-8v6m-v7w5-7r88.json index a9c3cd431c0..2bd80aa76b2 100644 --- a/advisories/unreviewed/2022/05/GHSA-8v6m-v7w5-7r88/GHSA-8v6m-v7w5-7r88.json +++ b/advisories/unreviewed/2022/05/GHSA-8v6m-v7w5-7r88/GHSA-8v6m-v7w5-7r88.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8v8f-rjrw-vg47/GHSA-8v8f-rjrw-vg47.json b/advisories/unreviewed/2022/05/GHSA-8v8f-rjrw-vg47/GHSA-8v8f-rjrw-vg47.json index badab1c90eb..f3b0e96dde0 100644 --- a/advisories/unreviewed/2022/05/GHSA-8v8f-rjrw-vg47/GHSA-8v8f-rjrw-vg47.json +++ b/advisories/unreviewed/2022/05/GHSA-8v8f-rjrw-vg47/GHSA-8v8f-rjrw-vg47.json @@ -7,12 +7,8 @@ "CVE-2020-27256" ], "details": "In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, a hard-coded physician PIN in the physician menu of the insulin pump allows attackers with physical access to change insulin therapy settings.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8v9w-x533-rq4q/GHSA-8v9w-x533-rq4q.json b/advisories/unreviewed/2022/05/GHSA-8v9w-x533-rq4q/GHSA-8v9w-x533-rq4q.json index 091c3855034..b97a8622be3 100644 --- a/advisories/unreviewed/2022/05/GHSA-8v9w-x533-rq4q/GHSA-8v9w-x533-rq4q.json +++ b/advisories/unreviewed/2022/05/GHSA-8v9w-x533-rq4q/GHSA-8v9w-x533-rq4q.json @@ -7,12 +7,8 @@ "CVE-2021-2055" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.21 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8w3p-34v2-ghhr/GHSA-8w3p-34v2-ghhr.json b/advisories/unreviewed/2022/05/GHSA-8w3p-34v2-ghhr/GHSA-8w3p-34v2-ghhr.json index 719cbf777df..bb505bace3f 100644 --- a/advisories/unreviewed/2022/05/GHSA-8w3p-34v2-ghhr/GHSA-8w3p-34v2-ghhr.json +++ b/advisories/unreviewed/2022/05/GHSA-8w3p-34v2-ghhr/GHSA-8w3p-34v2-ghhr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8wg7-c4m9-6mmg/GHSA-8wg7-c4m9-6mmg.json b/advisories/unreviewed/2022/05/GHSA-8wg7-c4m9-6mmg/GHSA-8wg7-c4m9-6mmg.json index 74c713c342e..8d10e2b3a3e 100644 --- a/advisories/unreviewed/2022/05/GHSA-8wg7-c4m9-6mmg/GHSA-8wg7-c4m9-6mmg.json +++ b/advisories/unreviewed/2022/05/GHSA-8wg7-c4m9-6mmg/GHSA-8wg7-c4m9-6mmg.json @@ -7,12 +7,8 @@ "CVE-2020-4983" ], "details": "IBM Spectrum LSF 10.1 and IBM Spectrum LSF Suite 10.2 could allow a user on the local network who has privileges to submit LSF jobs to execute arbitrary commands. IBM X-Force ID: 192586.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8ww5-7wc7-5j2j/GHSA-8ww5-7wc7-5j2j.json b/advisories/unreviewed/2022/05/GHSA-8ww5-7wc7-5j2j/GHSA-8ww5-7wc7-5j2j.json index 33ae66ea4dd..314f4b3bbc1 100644 --- a/advisories/unreviewed/2022/05/GHSA-8ww5-7wc7-5j2j/GHSA-8ww5-7wc7-5j2j.json +++ b/advisories/unreviewed/2022/05/GHSA-8ww5-7wc7-5j2j/GHSA-8ww5-7wc7-5j2j.json @@ -7,12 +7,8 @@ "CVE-2021-2015" ], "details": "Vulnerability in the Oracle Workflow product of Oracle E-Business Suite (component: Worklist). Supported versions that are affected are 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Workflow. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Workflow, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Workflow accessible data as well as unauthorized update, insert or delete access to some of Oracle Workflow accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8xff-w72m-pxvj/GHSA-8xff-w72m-pxvj.json b/advisories/unreviewed/2022/05/GHSA-8xff-w72m-pxvj/GHSA-8xff-w72m-pxvj.json index e66dedd8284..b3872d16bd8 100644 --- a/advisories/unreviewed/2022/05/GHSA-8xff-w72m-pxvj/GHSA-8xff-w72m-pxvj.json +++ b/advisories/unreviewed/2022/05/GHSA-8xff-w72m-pxvj/GHSA-8xff-w72m-pxvj.json @@ -7,12 +7,8 @@ "CVE-2021-1135" ], "details": "Multiple vulnerabilities in the REST API endpoint of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remote attacker to view, modify, and delete data without proper authorization.\n For more information about these vulnerabilities, see the Details section of this advisory.\n ", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-92xw-vwgc-8994/GHSA-92xw-vwgc-8994.json b/advisories/unreviewed/2022/05/GHSA-92xw-vwgc-8994/GHSA-92xw-vwgc-8994.json index 1015fded541..e13f2d8f570 100644 --- a/advisories/unreviewed/2022/05/GHSA-92xw-vwgc-8994/GHSA-92xw-vwgc-8994.json +++ b/advisories/unreviewed/2022/05/GHSA-92xw-vwgc-8994/GHSA-92xw-vwgc-8994.json @@ -7,12 +7,8 @@ "CVE-2021-1353" ], "details": "\n A vulnerability in the IPv4 protocol handling of Cisco StarOS could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.\n The vulnerability is due to a memory leak that occurs during packet processing. An attacker could exploit this vulnerability by sending a series of crafted IPv4 packets through an affected device. A successful exploit could allow the attacker to exhaust the available memory and cause an unexpected restart of the npusim process, leading to a DoS condition on the affected device.\n ", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-94x4-q73x-wr8m/GHSA-94x4-q73x-wr8m.json b/advisories/unreviewed/2022/05/GHSA-94x4-q73x-wr8m/GHSA-94x4-q73x-wr8m.json index 95780d92370..92d06ba32ec 100644 --- a/advisories/unreviewed/2022/05/GHSA-94x4-q73x-wr8m/GHSA-94x4-q73x-wr8m.json +++ b/advisories/unreviewed/2022/05/GHSA-94x4-q73x-wr8m/GHSA-94x4-q73x-wr8m.json @@ -7,12 +7,8 @@ "CVE-2021-2063" ], "details": "Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Portal). Supported versions that are affected are 8.56, 8.57 and 8.58. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where PeopleSoft Enterprise PeopleTools executes to compromise PeopleSoft Enterprise PeopleTools. Successful attacks of this vulnerability can result in takeover of PeopleSoft Enterprise PeopleTools. CVSS 3.1 Base Score 8.4 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9678-97g2-v2v3/GHSA-9678-97g2-v2v3.json b/advisories/unreviewed/2022/05/GHSA-9678-97g2-v2v3/GHSA-9678-97g2-v2v3.json index 46249f545ab..877d093ad30 100644 --- a/advisories/unreviewed/2022/05/GHSA-9678-97g2-v2v3/GHSA-9678-97g2-v2v3.json +++ b/advisories/unreviewed/2022/05/GHSA-9678-97g2-v2v3/GHSA-9678-97g2-v2v3.json @@ -7,12 +7,8 @@ "CVE-2021-0218" ], "details": "A command injection vulnerability in the license-check daemon of Juniper Networks Junos OS that may allow a locally authenticated attacker with low privileges to execute commands with root privilege. license-check is a daemon used to manage licenses in Junos OS. To update licenses, a user executes the command 'request system license update' via the CLI. An attacker with access to this CLI command may be able to exploit the vulnerability. This issue affects Juniper Networks Junos OS: 17.3 versions prior to 17.3R3-S9; 17.4 versions prior to 17.4R2-S12, 17.4R3-S3; 18.1 versions prior to 18.1R3-S11; 18.2 versions prior to 18.2R3-S6; 18.3 versions prior to 18.3R3-S4; 18.4 versions prior to 18.4R3-S6; 19.1 versions prior to 19.1R1-S6, 19.1R2-S2, 19.1R3-S3; 19.2 versions prior to 19.2R3-S1; 19.3 versions prior to 19.3R2-S5, 19.3R3; 19.4 versions prior to 19.4R2-S2, 19.4R3; 20.1 versions prior to 20.1R1-S4, 20.1R2; 20.2 versions prior to 20.2R1-S2, 20.2R2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-98mf-qrx3-4856/GHSA-98mf-qrx3-4856.json b/advisories/unreviewed/2022/05/GHSA-98mf-qrx3-4856/GHSA-98mf-qrx3-4856.json index 2a75a0e2c7b..0b8de83f35a 100644 --- a/advisories/unreviewed/2022/05/GHSA-98mf-qrx3-4856/GHSA-98mf-qrx3-4856.json +++ b/advisories/unreviewed/2022/05/GHSA-98mf-qrx3-4856/GHSA-98mf-qrx3-4856.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9c69-hwcc-2mrx/GHSA-9c69-hwcc-2mrx.json b/advisories/unreviewed/2022/05/GHSA-9c69-hwcc-2mrx/GHSA-9c69-hwcc-2mrx.json index f5567c719d2..ff8bf96a2e2 100644 --- a/advisories/unreviewed/2022/05/GHSA-9c69-hwcc-2mrx/GHSA-9c69-hwcc-2mrx.json +++ b/advisories/unreviewed/2022/05/GHSA-9c69-hwcc-2mrx/GHSA-9c69-hwcc-2mrx.json @@ -7,12 +7,8 @@ "CVE-2021-2079" ], "details": "Vulnerability in the Oracle Configurator product of Oracle Supply Chain (component: UI Servlet). Supported versions that are affected are 12.1 and 12.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Configurator. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Configurator, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Configurator accessible data as well as unauthorized update, insert or delete access to some of Oracle Configurator accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9c7c-w7q8-pf7c/GHSA-9c7c-w7q8-pf7c.json b/advisories/unreviewed/2022/05/GHSA-9c7c-w7q8-pf7c/GHSA-9c7c-w7q8-pf7c.json index 7ba518b8a6f..c69e693a05c 100644 --- a/advisories/unreviewed/2022/05/GHSA-9c7c-w7q8-pf7c/GHSA-9c7c-w7q8-pf7c.json +++ b/advisories/unreviewed/2022/05/GHSA-9c7c-w7q8-pf7c/GHSA-9c7c-w7q8-pf7c.json @@ -7,12 +7,8 @@ "CVE-2020-11213" ], "details": "Out of bound reads might occur in while processing Service descriptor due to improper validation of length of fields in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9f3q-pwxj-87pv/GHSA-9f3q-pwxj-87pv.json b/advisories/unreviewed/2022/05/GHSA-9f3q-pwxj-87pv/GHSA-9f3q-pwxj-87pv.json index 5eccb528c90..1a38cc41c6c 100644 --- a/advisories/unreviewed/2022/05/GHSA-9f3q-pwxj-87pv/GHSA-9f3q-pwxj-87pv.json +++ b/advisories/unreviewed/2022/05/GHSA-9f3q-pwxj-87pv/GHSA-9f3q-pwxj-87pv.json @@ -7,12 +7,8 @@ "CVE-2021-3193" ], "details": "Improper access and command validation in the Docker config wizard of Nagios XI before 5.8.0 allows an authenticated attacker to execute remote code as the apache user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9fg6-4jc3-m2x8/GHSA-9fg6-4jc3-m2x8.json b/advisories/unreviewed/2022/05/GHSA-9fg6-4jc3-m2x8/GHSA-9fg6-4jc3-m2x8.json index 2f2d725903d..08384e1bbb4 100644 --- a/advisories/unreviewed/2022/05/GHSA-9fg6-4jc3-m2x8/GHSA-9fg6-4jc3-m2x8.json +++ b/advisories/unreviewed/2022/05/GHSA-9fg6-4jc3-m2x8/GHSA-9fg6-4jc3-m2x8.json @@ -7,12 +7,8 @@ "CVE-2020-23449" ], "details": "newbee-mall all versions are affected by incorrect access control to remotely gain privileges through NewBeeMallIndexConfigServiceImpl.java. Unauthorized changes can be made to any user information through the userID.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9fh3-r25p-cgrm/GHSA-9fh3-r25p-cgrm.json b/advisories/unreviewed/2022/05/GHSA-9fh3-r25p-cgrm/GHSA-9fh3-r25p-cgrm.json index 653bf0ed785..05141833359 100644 --- a/advisories/unreviewed/2022/05/GHSA-9fh3-r25p-cgrm/GHSA-9fh3-r25p-cgrm.json +++ b/advisories/unreviewed/2022/05/GHSA-9fh3-r25p-cgrm/GHSA-9fh3-r25p-cgrm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9fhr-9xv4-8gjv/GHSA-9fhr-9xv4-8gjv.json b/advisories/unreviewed/2022/05/GHSA-9fhr-9xv4-8gjv/GHSA-9fhr-9xv4-8gjv.json index a434c9bf868..932bb722c3e 100644 --- a/advisories/unreviewed/2022/05/GHSA-9fhr-9xv4-8gjv/GHSA-9fhr-9xv4-8gjv.json +++ b/advisories/unreviewed/2022/05/GHSA-9fhr-9xv4-8gjv/GHSA-9fhr-9xv4-8gjv.json @@ -7,12 +7,8 @@ "CVE-2020-23014" ], "details": "APfell 1.4 is vulnerable to authenticated reflected cross-site scripting (XSS) in /apiui/command_ through the payloadtypes_callback function, which allows an attacker to steal remote admin/user session and/or adding new users to the administration panel.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9gjx-m56f-j2fc/GHSA-9gjx-m56f-j2fc.json b/advisories/unreviewed/2022/05/GHSA-9gjx-m56f-j2fc/GHSA-9gjx-m56f-j2fc.json index a5a903a59ec..e65340bbff7 100644 --- a/advisories/unreviewed/2022/05/GHSA-9gjx-m56f-j2fc/GHSA-9gjx-m56f-j2fc.json +++ b/advisories/unreviewed/2022/05/GHSA-9gjx-m56f-j2fc/GHSA-9gjx-m56f-j2fc.json @@ -7,12 +7,8 @@ "CVE-2020-24665" ], "details": "The Dashboard Editor in Hitachi Vantara Pentaho through 7.x - 8.x contains an XML Entity Expansion injection vulnerability, which allows an authenticated remote users to trigger a denial of service (DoS) condition. Specifically, the vulnerability lies in the 'dashboardXml' parameter. Remediated in >= 7.1.0.25, >= 8.2.0.6, >= 8.3.0.0 GA", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9h25-47mw-52hh/GHSA-9h25-47mw-52hh.json b/advisories/unreviewed/2022/05/GHSA-9h25-47mw-52hh/GHSA-9h25-47mw-52hh.json index 499f395fd08..3125d4b3da0 100644 --- a/advisories/unreviewed/2022/05/GHSA-9h25-47mw-52hh/GHSA-9h25-47mw-52hh.json +++ b/advisories/unreviewed/2022/05/GHSA-9h25-47mw-52hh/GHSA-9h25-47mw-52hh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9p74-pqx9-3mrw/GHSA-9p74-pqx9-3mrw.json b/advisories/unreviewed/2022/05/GHSA-9p74-pqx9-3mrw/GHSA-9p74-pqx9-3mrw.json index 2f39d830817..b96ea1a7973 100644 --- a/advisories/unreviewed/2022/05/GHSA-9p74-pqx9-3mrw/GHSA-9p74-pqx9-3mrw.json +++ b/advisories/unreviewed/2022/05/GHSA-9p74-pqx9-3mrw/GHSA-9p74-pqx9-3mrw.json @@ -7,12 +7,8 @@ "CVE-2021-2110" ], "details": "Vulnerability in the Oracle Argus Safety product of Oracle Health Sciences Applications (component: Letters). The supported version that is affected is 8.2.2. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Argus Safety. While the vulnerability is in Oracle Argus Safety, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle Argus Safety accessible data. CVSS 3.1 Base Score 5.0 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9pvv-mpwh-r55x/GHSA-9pvv-mpwh-r55x.json b/advisories/unreviewed/2022/05/GHSA-9pvv-mpwh-r55x/GHSA-9pvv-mpwh-r55x.json index a2039cb1f19..61412d4a48d 100644 --- a/advisories/unreviewed/2022/05/GHSA-9pvv-mpwh-r55x/GHSA-9pvv-mpwh-r55x.json +++ b/advisories/unreviewed/2022/05/GHSA-9pvv-mpwh-r55x/GHSA-9pvv-mpwh-r55x.json @@ -7,12 +7,8 @@ "CVE-2020-35854" ], "details": "Textpattern 4.8.4 is affected by cross-site scripting (XSS) in the Body parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9pw4-685c-rqj9/GHSA-9pw4-685c-rqj9.json b/advisories/unreviewed/2022/05/GHSA-9pw4-685c-rqj9/GHSA-9pw4-685c-rqj9.json index 2b2c9678b6a..e79860c1ff7 100644 --- a/advisories/unreviewed/2022/05/GHSA-9pw4-685c-rqj9/GHSA-9pw4-685c-rqj9.json +++ b/advisories/unreviewed/2022/05/GHSA-9pw4-685c-rqj9/GHSA-9pw4-685c-rqj9.json @@ -7,12 +7,8 @@ "CVE-2020-11179" ], "details": "Arbitrary read and write to kernel addresses by temporarily overwriting ring buffer pointer and creating a race condition. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9rc6-x736-5w53/GHSA-9rc6-x736-5w53.json b/advisories/unreviewed/2022/05/GHSA-9rc6-x736-5w53/GHSA-9rc6-x736-5w53.json index c15ddd5c1ba..b4a5890ca67 100644 --- a/advisories/unreviewed/2022/05/GHSA-9rc6-x736-5w53/GHSA-9rc6-x736-5w53.json +++ b/advisories/unreviewed/2022/05/GHSA-9rc6-x736-5w53/GHSA-9rc6-x736-5w53.json @@ -7,12 +7,8 @@ "CVE-2020-27858" ], "details": "This vulnerability allows remote attackers to disclose sensitive information on affected installations of CA Arcserve D2D 16.5. Authentication is not required to exploit this vulnerability.\n\nThe specific flaw exists within the getNews method. Due to the improper restriction of XML External Entity (XXE) references, a specially-crafted document specifying a URI causes the XML parser to access the URI and embed the contents back into the XML document for further processing. An attacker can leverage this vulnerability to disclose information in the context of SYSTEM. Was ZDI-CAN-11103.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9rwv-85r3-53mj/GHSA-9rwv-85r3-53mj.json b/advisories/unreviewed/2022/05/GHSA-9rwv-85r3-53mj/GHSA-9rwv-85r3-53mj.json index c5237e2aef8..89f5f0942cf 100644 --- a/advisories/unreviewed/2022/05/GHSA-9rwv-85r3-53mj/GHSA-9rwv-85r3-53mj.json +++ b/advisories/unreviewed/2022/05/GHSA-9rwv-85r3-53mj/GHSA-9rwv-85r3-53mj.json @@ -7,12 +7,8 @@ "CVE-2020-35270" ], "details": "Student Result Management System In PHP With Source Code is affected by SQL injection. An attacker can able to access of Admin Panel and manage every account of Result.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9v5h-24hm-5jw8/GHSA-9v5h-24hm-5jw8.json b/advisories/unreviewed/2022/05/GHSA-9v5h-24hm-5jw8/GHSA-9v5h-24hm-5jw8.json index 9995c5bbf36..13b5487891e 100644 --- a/advisories/unreviewed/2022/05/GHSA-9v5h-24hm-5jw8/GHSA-9v5h-24hm-5jw8.json +++ b/advisories/unreviewed/2022/05/GHSA-9v5h-24hm-5jw8/GHSA-9v5h-24hm-5jw8.json @@ -7,12 +7,8 @@ "CVE-2021-2052" ], "details": "Vulnerability in the JD Edwards EnterpriseOne Orchestrator product of Oracle JD Edwards (component: E1 IOT Orchestrator Security). The supported version that is affected is Prior to 9.2.5.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise JD Edwards EnterpriseOne Orchestrator. While the vulnerability is in JD Edwards EnterpriseOne Orchestrator, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized read access to a subset of JD Edwards EnterpriseOne Orchestrator accessible data. CVSS 3.1 Base Score 5.8 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9xp3-mp9c-47rf/GHSA-9xp3-mp9c-47rf.json b/advisories/unreviewed/2022/05/GHSA-9xp3-mp9c-47rf/GHSA-9xp3-mp9c-47rf.json index d0e58f7ee36..9219618efed 100644 --- a/advisories/unreviewed/2022/05/GHSA-9xp3-mp9c-47rf/GHSA-9xp3-mp9c-47rf.json +++ b/advisories/unreviewed/2022/05/GHSA-9xp3-mp9c-47rf/GHSA-9xp3-mp9c-47rf.json @@ -7,12 +7,8 @@ "CVE-2020-25686" ], "details": "A flaw was found in dnsmasq before version 2.83. When receiving a query, dnsmasq does not check for an existing pending request for the same name and forwards a new request. By default, a maximum of 150 pending queries can be sent to upstream servers, so there can be at most 150 queries for the same name. This flaw allows an off-path attacker on the network to substantially reduce the number of attempts that it would have to perform to forge a reply and have it accepted by dnsmasq. This issue is mentioned in the \"Birthday Attacks\" section of RFC5452. If chained with CVE-2020-25684, the attack complexity of a successful attack is reduced. The highest threat from this vulnerability is to data integrity.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c22v-89qp-9xx2/GHSA-c22v-89qp-9xx2.json b/advisories/unreviewed/2022/05/GHSA-c22v-89qp-9xx2/GHSA-c22v-89qp-9xx2.json index 87f0e999f13..7afda908e35 100644 --- a/advisories/unreviewed/2022/05/GHSA-c22v-89qp-9xx2/GHSA-c22v-89qp-9xx2.json +++ b/advisories/unreviewed/2022/05/GHSA-c22v-89qp-9xx2/GHSA-c22v-89qp-9xx2.json @@ -7,12 +7,8 @@ "CVE-2021-2072" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Stored Procedure). Supported versions that are affected are 8.0.22 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c2jh-j6fc-98gj/GHSA-c2jh-j6fc-98gj.json b/advisories/unreviewed/2022/05/GHSA-c2jh-j6fc-98gj/GHSA-c2jh-j6fc-98gj.json index 5b0223e9e7d..af838a0a8ec 100644 --- a/advisories/unreviewed/2022/05/GHSA-c2jh-j6fc-98gj/GHSA-c2jh-j6fc-98gj.json +++ b/advisories/unreviewed/2022/05/GHSA-c2jh-j6fc-98gj/GHSA-c2jh-j6fc-98gj.json @@ -7,12 +7,8 @@ "CVE-2020-11119" ], "details": "Buffer over-read can happen when the buffer length received from response handlers is more than the size of the payload in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c34q-4vv7-8478/GHSA-c34q-4vv7-8478.json b/advisories/unreviewed/2022/05/GHSA-c34q-4vv7-8478/GHSA-c34q-4vv7-8478.json index c96a7856bf3..7fe8fd4347d 100644 --- a/advisories/unreviewed/2022/05/GHSA-c34q-4vv7-8478/GHSA-c34q-4vv7-8478.json +++ b/advisories/unreviewed/2022/05/GHSA-c34q-4vv7-8478/GHSA-c34q-4vv7-8478.json @@ -7,12 +7,8 @@ "CVE-2021-2016" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.19 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c47j-fm69-hwfr/GHSA-c47j-fm69-hwfr.json b/advisories/unreviewed/2022/05/GHSA-c47j-fm69-hwfr/GHSA-c47j-fm69-hwfr.json index 1f852635a02..0df279774a1 100644 --- a/advisories/unreviewed/2022/05/GHSA-c47j-fm69-hwfr/GHSA-c47j-fm69-hwfr.json +++ b/advisories/unreviewed/2022/05/GHSA-c47j-fm69-hwfr/GHSA-c47j-fm69-hwfr.json @@ -7,12 +7,8 @@ "CVE-2020-4873" ], "details": "IBM Planning Analytics 2.0 could allow an attacker to obtain sensitive information due to an overly permissive CORS policy. IBM X-Force ID: 190836.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c49q-5f86-4hxc/GHSA-c49q-5f86-4hxc.json b/advisories/unreviewed/2022/05/GHSA-c49q-5f86-4hxc/GHSA-c49q-5f86-4hxc.json index 83a56c190c9..7b1a0aaf045 100644 --- a/advisories/unreviewed/2022/05/GHSA-c49q-5f86-4hxc/GHSA-c49q-5f86-4hxc.json +++ b/advisories/unreviewed/2022/05/GHSA-c49q-5f86-4hxc/GHSA-c49q-5f86-4hxc.json @@ -7,12 +7,8 @@ "CVE-2021-3341" ], "details": "A path traversal vulnerability in the DxWebEngine component of DH2i DxEnterprise and DxOdyssey for Windows, version 19.5 through 20.x before 20.0.219.0, allows an attacker to read any file on the host file system via an HTTP request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c59p-8p3r-xcm3/GHSA-c59p-8p3r-xcm3.json b/advisories/unreviewed/2022/05/GHSA-c59p-8p3r-xcm3/GHSA-c59p-8p3r-xcm3.json index 1c317abc74d..647cf5d1241 100644 --- a/advisories/unreviewed/2022/05/GHSA-c59p-8p3r-xcm3/GHSA-c59p-8p3r-xcm3.json +++ b/advisories/unreviewed/2022/05/GHSA-c59p-8p3r-xcm3/GHSA-c59p-8p3r-xcm3.json @@ -7,12 +7,8 @@ "CVE-2021-2068" ], "details": "Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Outside In Filters). Supported versions that are affected are 8.5.4 and 8.5.5. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Outside In Technology. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Outside In Technology accessible data as well as unauthorized read access to a subset of Oracle Outside In Technology accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Outside In Technology. Note: Outside In Technology is a suite of software development kits (SDKs). The protocol and CVSS score depend on the software that uses the Outside In Technology code. The CVSS score assumes that the software passes data received over a network directly to Outside In Technology code, but if data is not received over a network the CVSS score may be lower. CVSS 3.1 Base Score 8.6 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:L).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c7h9-w7hr-wpgq/GHSA-c7h9-w7hr-wpgq.json b/advisories/unreviewed/2022/05/GHSA-c7h9-w7hr-wpgq/GHSA-c7h9-w7hr-wpgq.json index cf0b539bef4..c704ffb0796 100644 --- a/advisories/unreviewed/2022/05/GHSA-c7h9-w7hr-wpgq/GHSA-c7h9-w7hr-wpgq.json +++ b/advisories/unreviewed/2022/05/GHSA-c7h9-w7hr-wpgq/GHSA-c7h9-w7hr-wpgq.json @@ -7,12 +7,8 @@ "CVE-2021-2019" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.0.19 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized read access to a subset of MySQL Server accessible data. CVSS 3.1 Base Score 2.7 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c7pv-p336-6hqg/GHSA-c7pv-p336-6hqg.json b/advisories/unreviewed/2022/05/GHSA-c7pv-p336-6hqg/GHSA-c7pv-p336-6hqg.json index 58c0deb9afb..ca5eae3fc2a 100644 --- a/advisories/unreviewed/2022/05/GHSA-c7pv-p336-6hqg/GHSA-c7pv-p336-6hqg.json +++ b/advisories/unreviewed/2022/05/GHSA-c7pv-p336-6hqg/GHSA-c7pv-p336-6hqg.json @@ -7,12 +7,8 @@ "CVE-2020-21147" ], "details": "RockOA V1.9.8 is affected by a cross-site scripting (XSS) vulnerability which allows remote attackers to send malicious code to the administrator and execute JavaScript code, because webmain/flow/input/mode_emailmAction.php does not perform strict filtering.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c945-7xj4-pc63/GHSA-c945-7xj4-pc63.json b/advisories/unreviewed/2022/05/GHSA-c945-7xj4-pc63/GHSA-c945-7xj4-pc63.json index 913d4df2224..ec9629f789c 100644 --- a/advisories/unreviewed/2022/05/GHSA-c945-7xj4-pc63/GHSA-c945-7xj4-pc63.json +++ b/advisories/unreviewed/2022/05/GHSA-c945-7xj4-pc63/GHSA-c945-7xj4-pc63.json @@ -7,12 +7,8 @@ "CVE-2021-2124" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is Prior to 6.1.18. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle VM VirtualBox. CVSS 3.1 Base Score 6.0 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c9vm-6m38-wr3x/GHSA-c9vm-6m38-wr3x.json b/advisories/unreviewed/2022/05/GHSA-c9vm-6m38-wr3x/GHSA-c9vm-6m38-wr3x.json index b96a5d83886..8ccdb247ed1 100644 --- a/advisories/unreviewed/2022/05/GHSA-c9vm-6m38-wr3x/GHSA-c9vm-6m38-wr3x.json +++ b/advisories/unreviewed/2022/05/GHSA-c9vm-6m38-wr3x/GHSA-c9vm-6m38-wr3x.json @@ -7,12 +7,8 @@ "CVE-2021-2017" ], "details": "Vulnerability in the Oracle User Management product of Oracle E-Business Suite (component: Proxy User Delegation). Supported versions that are affected are 12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle User Management. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle User Management accessible data. CVSS 3.1 Base Score 4.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cf25-vhff-8gf4/GHSA-cf25-vhff-8gf4.json b/advisories/unreviewed/2022/05/GHSA-cf25-vhff-8gf4/GHSA-cf25-vhff-8gf4.json index b3f26f43c56..ed66b6283b4 100644 --- a/advisories/unreviewed/2022/05/GHSA-cf25-vhff-8gf4/GHSA-cf25-vhff-8gf4.json +++ b/advisories/unreviewed/2022/05/GHSA-cf25-vhff-8gf4/GHSA-cf25-vhff-8gf4.json @@ -7,12 +7,8 @@ "CVE-2020-24549" ], "details": "openMAINT before 1.1-2.4.2 allows remote authenticated users to run arbitrary JSP code on the underlying web server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cfx3-m5fr-8c98/GHSA-cfx3-m5fr-8c98.json b/advisories/unreviewed/2022/05/GHSA-cfx3-m5fr-8c98/GHSA-cfx3-m5fr-8c98.json index 71fedb03cf8..c2e9cb08493 100644 --- a/advisories/unreviewed/2022/05/GHSA-cfx3-m5fr-8c98/GHSA-cfx3-m5fr-8c98.json +++ b/advisories/unreviewed/2022/05/GHSA-cfx3-m5fr-8c98/GHSA-cfx3-m5fr-8c98.json @@ -7,12 +7,8 @@ "CVE-2020-27268" ], "details": "In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, a client-side control vulnerability in the insulin pump and its AnyDana-i and AnyDana-A mobile applications allows physically proximate attackers to bypass checks for default PINs via Bluetooth Low Energy.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cg67-rx3c-vx3q/GHSA-cg67-rx3c-vx3q.json b/advisories/unreviewed/2022/05/GHSA-cg67-rx3c-vx3q/GHSA-cg67-rx3c-vx3q.json index 426e0826189..42a46e2c49d 100644 --- a/advisories/unreviewed/2022/05/GHSA-cg67-rx3c-vx3q/GHSA-cg67-rx3c-vx3q.json +++ b/advisories/unreviewed/2022/05/GHSA-cg67-rx3c-vx3q/GHSA-cg67-rx3c-vx3q.json @@ -7,12 +7,8 @@ "CVE-2020-11180" ], "details": "Out of bound access in computer vision control due to improper validation of command length before processing it in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cj34-qf96-c4gj/GHSA-cj34-qf96-c4gj.json b/advisories/unreviewed/2022/05/GHSA-cj34-qf96-c4gj/GHSA-cj34-qf96-c4gj.json index e1f258ebf5c..93a135c1277 100644 --- a/advisories/unreviewed/2022/05/GHSA-cj34-qf96-c4gj/GHSA-cj34-qf96-c4gj.json +++ b/advisories/unreviewed/2022/05/GHSA-cj34-qf96-c4gj/GHSA-cj34-qf96-c4gj.json @@ -7,12 +7,8 @@ "CVE-2021-1067" ], "details": "NVIDIA SHIELD TV, all versions prior to 8.2.2, contains a vulnerability in the implementation of the RPMB command status, in which an attacker can write to the Write Protect Configuration Block, which may lead to denial of service or escalation of privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cm7h-m9vp-m9xr/GHSA-cm7h-m9vp-m9xr.json b/advisories/unreviewed/2022/05/GHSA-cm7h-m9vp-m9xr/GHSA-cm7h-m9vp-m9xr.json index 698cb7a632e..9c545e182c6 100644 --- a/advisories/unreviewed/2022/05/GHSA-cm7h-m9vp-m9xr/GHSA-cm7h-m9vp-m9xr.json +++ b/advisories/unreviewed/2022/05/GHSA-cm7h-m9vp-m9xr/GHSA-cm7h-m9vp-m9xr.json @@ -7,12 +7,8 @@ "CVE-2021-2026" ], "details": "Vulnerability in the Oracle Marketing product of Oracle E-Business Suite (component: Marketing Administration). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Marketing. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Marketing, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Marketing accessible data as well as unauthorized update, insert or delete access to some of Oracle Marketing accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-crp8-jqxf-32xm/GHSA-crp8-jqxf-32xm.json b/advisories/unreviewed/2022/05/GHSA-crp8-jqxf-32xm/GHSA-crp8-jqxf-32xm.json index f0f5a1f557d..0aa272d32f1 100644 --- a/advisories/unreviewed/2022/05/GHSA-crp8-jqxf-32xm/GHSA-crp8-jqxf-32xm.json +++ b/advisories/unreviewed/2022/05/GHSA-crp8-jqxf-32xm/GHSA-crp8-jqxf-32xm.json @@ -7,12 +7,8 @@ "CVE-2021-2099" ], "details": "Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Preferences). Supported versions that are affected are 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle CRM Technical Foundation, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle CRM Technical Foundation accessible data as well as unauthorized update, insert or delete access to some of Oracle CRM Technical Foundation accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cv67-mvhx-g3hq/GHSA-cv67-mvhx-g3hq.json b/advisories/unreviewed/2022/05/GHSA-cv67-mvhx-g3hq/GHSA-cv67-mvhx-g3hq.json index 0753ca7e623..de744d660f4 100644 --- a/advisories/unreviewed/2022/05/GHSA-cv67-mvhx-g3hq/GHSA-cv67-mvhx-g3hq.json +++ b/advisories/unreviewed/2022/05/GHSA-cv67-mvhx-g3hq/GHSA-cv67-mvhx-g3hq.json @@ -7,12 +7,8 @@ "CVE-2020-35272" ], "details": "Employee Performance Evaluation System in PHP/MySQLi with Source Code 1.0 is affected by cross-site scripting (XSS) in the Admin Portal in the Task and Description fields.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cv7g-x7qp-j3gc/GHSA-cv7g-x7qp-j3gc.json b/advisories/unreviewed/2022/05/GHSA-cv7g-x7qp-j3gc/GHSA-cv7g-x7qp-j3gc.json index 02b7d8c14e9..50619077f25 100644 --- a/advisories/unreviewed/2022/05/GHSA-cv7g-x7qp-j3gc/GHSA-cv7g-x7qp-j3gc.json +++ b/advisories/unreviewed/2022/05/GHSA-cv7g-x7qp-j3gc/GHSA-cv7g-x7qp-j3gc.json @@ -7,12 +7,8 @@ "CVE-2021-2087" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.22 and prior. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.4 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cw22-q549-fq8f/GHSA-cw22-q549-fq8f.json b/advisories/unreviewed/2022/05/GHSA-cw22-q549-fq8f/GHSA-cw22-q549-fq8f.json index e8041ae0950..afcaa283dab 100644 --- a/advisories/unreviewed/2022/05/GHSA-cw22-q549-fq8f/GHSA-cw22-q549-fq8f.json +++ b/advisories/unreviewed/2022/05/GHSA-cw22-q549-fq8f/GHSA-cw22-q549-fq8f.json @@ -7,12 +7,8 @@ "CVE-2021-2084" ], "details": "Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Preferences). Supported versions that are affected are 12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle CRM Technical Foundation, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle CRM Technical Foundation accessible data as well as unauthorized update, insert or delete access to some of Oracle CRM Technical Foundation accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cx47-rr8x-3gw5/GHSA-cx47-rr8x-3gw5.json b/advisories/unreviewed/2022/05/GHSA-cx47-rr8x-3gw5/GHSA-cx47-rr8x-3gw5.json index fb72aa69e65..deeacc7c37c 100644 --- a/advisories/unreviewed/2022/05/GHSA-cx47-rr8x-3gw5/GHSA-cx47-rr8x-3gw5.json +++ b/advisories/unreviewed/2022/05/GHSA-cx47-rr8x-3gw5/GHSA-cx47-rr8x-3gw5.json @@ -7,12 +7,8 @@ "CVE-2020-27272" ], "details": "SOOIL Developments CoLtd DiabecareRS, AnyDana-i, AnyDana-A, The communication protocol of the insulin pump and AnyDana-i,AnyDana-A mobile apps doesn't use adequate measures to authenticate the pump before exchanging keys, which allows unauthenticated, physically proximate attackers to eavesdrop the keys and spoof the pump via BLE.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f2pw-r5rx-m6w6/GHSA-f2pw-r5rx-m6w6.json b/advisories/unreviewed/2022/05/GHSA-f2pw-r5rx-m6w6/GHSA-f2pw-r5rx-m6w6.json index 53d54407b14..ed85f151aea 100644 --- a/advisories/unreviewed/2022/05/GHSA-f2pw-r5rx-m6w6/GHSA-f2pw-r5rx-m6w6.json +++ b/advisories/unreviewed/2022/05/GHSA-f2pw-r5rx-m6w6/GHSA-f2pw-r5rx-m6w6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f2x4-qj2f-qr8x/GHSA-f2x4-qj2f-qr8x.json b/advisories/unreviewed/2022/05/GHSA-f2x4-qj2f-qr8x/GHSA-f2x4-qj2f-qr8x.json index 1d8fc8a74ec..8edcb7c0bab 100644 --- a/advisories/unreviewed/2022/05/GHSA-f2x4-qj2f-qr8x/GHSA-f2x4-qj2f-qr8x.json +++ b/advisories/unreviewed/2022/05/GHSA-f2x4-qj2f-qr8x/GHSA-f2x4-qj2f-qr8x.json @@ -7,12 +7,8 @@ "CVE-2020-19362" ], "details": "Reflected XSS in Vtiger CRM v7.2.0 in vtigercrm/index.php? through the view parameter can result in an attacker performing malicious actions to users who open a maliciously crafted link or third-party web page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f378-wp68-fvm9/GHSA-f378-wp68-fvm9.json b/advisories/unreviewed/2022/05/GHSA-f378-wp68-fvm9/GHSA-f378-wp68-fvm9.json index 75bbe93483d..eb0cf09edfd 100644 --- a/advisories/unreviewed/2022/05/GHSA-f378-wp68-fvm9/GHSA-f378-wp68-fvm9.json +++ b/advisories/unreviewed/2022/05/GHSA-f378-wp68-fvm9/GHSA-f378-wp68-fvm9.json @@ -7,12 +7,8 @@ "CVE-2020-25785" ], "details": "An issue was discovered on Accfly Wireless Security IR Camera System 720P with software versions v3.10.73 through v4.15.77. There is an unauthenticated stack-based buffer overflow in the function CFtpProtocol::FtpLogin during the update procedure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f38c-wxp6-8xjv/GHSA-f38c-wxp6-8xjv.json b/advisories/unreviewed/2022/05/GHSA-f38c-wxp6-8xjv/GHSA-f38c-wxp6-8xjv.json index 9f244d4c666..3374ef12e77 100644 --- a/advisories/unreviewed/2022/05/GHSA-f38c-wxp6-8xjv/GHSA-f38c-wxp6-8xjv.json +++ b/advisories/unreviewed/2022/05/GHSA-f38c-wxp6-8xjv/GHSA-f38c-wxp6-8xjv.json @@ -7,12 +7,8 @@ "CVE-2020-29604" ], "details": "An issue was discovered in MantisBT before 2.24.4. A missing access check in bug_actiongroup.php allows an attacker (with rights to create new issues) to use the COPY group action to create a clone, including all bugnotes and attachments, of any private issue (i.e., one having Private view status, or belonging to a private Project) via the bug_arr[] parameter. This provides full access to potentially confidential information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f3p9-mw6f-g5p7/GHSA-f3p9-mw6f-g5p7.json b/advisories/unreviewed/2022/05/GHSA-f3p9-mw6f-g5p7/GHSA-f3p9-mw6f-g5p7.json index 7cd1ab3465e..b329507fef1 100644 --- a/advisories/unreviewed/2022/05/GHSA-f3p9-mw6f-g5p7/GHSA-f3p9-mw6f-g5p7.json +++ b/advisories/unreviewed/2022/05/GHSA-f3p9-mw6f-g5p7/GHSA-f3p9-mw6f-g5p7.json @@ -7,12 +7,8 @@ "CVE-2020-23160" ], "details": "Remote code execution in Pyrescom Termod4 time management devices before 10.04k allows authenticated remote attackers to arbitrary commands as root on the devices.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f458-cxqh-jgv3/GHSA-f458-cxqh-jgv3.json b/advisories/unreviewed/2022/05/GHSA-f458-cxqh-jgv3/GHSA-f458-cxqh-jgv3.json index 4b8cedaff4c..add359fc4ee 100644 --- a/advisories/unreviewed/2022/05/GHSA-f458-cxqh-jgv3/GHSA-f458-cxqh-jgv3.json +++ b/advisories/unreviewed/2022/05/GHSA-f458-cxqh-jgv3/GHSA-f458-cxqh-jgv3.json @@ -7,12 +7,8 @@ "CVE-2020-6780" ], "details": "Use of Password Hash With Insufficient Computational Effort in the database of Bosch FSM-2500 server and Bosch FSM-5000 server up to and including version 5.2 allows a remote attacker with admin privileges to dump the credentials of other users and possibly recover their plain-text passwords by brute-forcing the MD5 hash.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f45q-fwg3-mgm5/GHSA-f45q-fwg3-mgm5.json b/advisories/unreviewed/2022/05/GHSA-f45q-fwg3-mgm5/GHSA-f45q-fwg3-mgm5.json index 4e1baa1fe9d..48aa86e61c1 100644 --- a/advisories/unreviewed/2022/05/GHSA-f45q-fwg3-mgm5/GHSA-f45q-fwg3-mgm5.json +++ b/advisories/unreviewed/2022/05/GHSA-f45q-fwg3-mgm5/GHSA-f45q-fwg3-mgm5.json @@ -7,12 +7,8 @@ "CVE-2021-0357" ], "details": "In netdiag, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Product: Android; Versions: Android-11; Patch ID: ALPS05442002.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f4ph-wxvj-8j8g/GHSA-f4ph-wxvj-8j8g.json b/advisories/unreviewed/2022/05/GHSA-f4ph-wxvj-8j8g/GHSA-f4ph-wxvj-8j8g.json index d22c5468595..a066a90973e 100644 --- a/advisories/unreviewed/2022/05/GHSA-f4ph-wxvj-8j8g/GHSA-f4ph-wxvj-8j8g.json +++ b/advisories/unreviewed/2022/05/GHSA-f4ph-wxvj-8j8g/GHSA-f4ph-wxvj-8j8g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f5hw-7588-79hg/GHSA-f5hw-7588-79hg.json b/advisories/unreviewed/2022/05/GHSA-f5hw-7588-79hg/GHSA-f5hw-7588-79hg.json index 5b81987e464..9aef7c99d42 100644 --- a/advisories/unreviewed/2022/05/GHSA-f5hw-7588-79hg/GHSA-f5hw-7588-79hg.json +++ b/advisories/unreviewed/2022/05/GHSA-f5hw-7588-79hg/GHSA-f5hw-7588-79hg.json @@ -7,12 +7,8 @@ "CVE-2021-1247" ], "details": "Multiple vulnerabilities in certain REST API endpoints of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remote attacker to execute arbitrary SQL commands on an affected device.\n For more information about these vulnerabilities, see the Details section of this advisory.\n ", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f7rq-mfh3-r5mv/GHSA-f7rq-mfh3-r5mv.json b/advisories/unreviewed/2022/05/GHSA-f7rq-mfh3-r5mv/GHSA-f7rq-mfh3-r5mv.json index e7b3f32b25f..c42c57a0281 100644 --- a/advisories/unreviewed/2022/05/GHSA-f7rq-mfh3-r5mv/GHSA-f7rq-mfh3-r5mv.json +++ b/advisories/unreviewed/2022/05/GHSA-f7rq-mfh3-r5mv/GHSA-f7rq-mfh3-r5mv.json @@ -7,12 +7,8 @@ "CVE-2020-27098" ], "details": "In checkGrantUriPermission of UriGrantsManagerService.java, there is a possible way to access contacts due to a permissions bypass. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-138791358", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f8w7-hh6g-979x/GHSA-f8w7-hh6g-979x.json b/advisories/unreviewed/2022/05/GHSA-f8w7-hh6g-979x/GHSA-f8w7-hh6g-979x.json index ad5995cb377..0b97ca3ccc7 100644 --- a/advisories/unreviewed/2022/05/GHSA-f8w7-hh6g-979x/GHSA-f8w7-hh6g-979x.json +++ b/advisories/unreviewed/2022/05/GHSA-f8w7-hh6g-979x/GHSA-f8w7-hh6g-979x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -75,9 +73,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f95j-fq6w-7pm5/GHSA-f95j-fq6w-7pm5.json b/advisories/unreviewed/2022/05/GHSA-f95j-fq6w-7pm5/GHSA-f95j-fq6w-7pm5.json index f75e3be844b..4db5b9b1189 100644 --- a/advisories/unreviewed/2022/05/GHSA-f95j-fq6w-7pm5/GHSA-f95j-fq6w-7pm5.json +++ b/advisories/unreviewed/2022/05/GHSA-f95j-fq6w-7pm5/GHSA-f95j-fq6w-7pm5.json @@ -7,12 +7,8 @@ "CVE-2021-2035" ], "details": "Vulnerability in the RDBMS Scheduler component of Oracle Database Server. Supported versions that are affected are 12.1.0.2, 12.2.0.1, 18c and 19c. Easily exploitable vulnerability allows low privileged attacker having Export Full Database privilege with network access via Oracle Net to compromise RDBMS Scheduler. Successful attacks of this vulnerability can result in takeover of RDBMS Scheduler. CVSS 3.1 Base Score 8.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f9cq-378f-9cj4/GHSA-f9cq-378f-9cj4.json b/advisories/unreviewed/2022/05/GHSA-f9cq-378f-9cj4/GHSA-f9cq-378f-9cj4.json index 0e3ef2c2e67..76309bfce50 100644 --- a/advisories/unreviewed/2022/05/GHSA-f9cq-378f-9cj4/GHSA-f9cq-378f-9cj4.json +++ b/advisories/unreviewed/2022/05/GHSA-f9cq-378f-9cj4/GHSA-f9cq-378f-9cj4.json @@ -7,12 +7,8 @@ "CVE-2020-27542" ], "details": "Rostelecom CS-C2SHW 5.0.082.1 is affected by: Bash command injection. The camera reads configuration from QR code (including network settings). The static IP configuration from QR code is copied to the file /config/ip-static and after reboot data from this file is inserted into bash command (without any escaping). So bash injection is possible. Camera doesn't parse QR codes if it's already successfully configured. Camera is always rebooted after successful configuration via QR code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ffxh-c3w3-m6jp/GHSA-ffxh-c3w3-m6jp.json b/advisories/unreviewed/2022/05/GHSA-ffxh-c3w3-m6jp/GHSA-ffxh-c3w3-m6jp.json index c42c8968bb1..b5f49a9ce79 100644 --- a/advisories/unreviewed/2022/05/GHSA-ffxh-c3w3-m6jp/GHSA-ffxh-c3w3-m6jp.json +++ b/advisories/unreviewed/2022/05/GHSA-ffxh-c3w3-m6jp/GHSA-ffxh-c3w3-m6jp.json @@ -7,12 +7,8 @@ "CVE-2021-2070" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.22 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fgp5-m9hj-59x7/GHSA-fgp5-m9hj-59x7.json b/advisories/unreviewed/2022/05/GHSA-fgp5-m9hj-59x7/GHSA-fgp5-m9hj-59x7.json index 442142c3f13..3cbcf1a38e2 100644 --- a/advisories/unreviewed/2022/05/GHSA-fgp5-m9hj-59x7/GHSA-fgp5-m9hj-59x7.json +++ b/advisories/unreviewed/2022/05/GHSA-fgp5-m9hj-59x7/GHSA-fgp5-m9hj-59x7.json @@ -7,12 +7,8 @@ "CVE-2021-21007" ], "details": "Adobe Illustrator version 25.0 (and earlier) is affected by an uncontrolled search path element that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fj94-q44p-pf8f/GHSA-fj94-q44p-pf8f.json b/advisories/unreviewed/2022/05/GHSA-fj94-q44p-pf8f/GHSA-fj94-q44p-pf8f.json index 0fd8a814e6a..d760e837d24 100644 --- a/advisories/unreviewed/2022/05/GHSA-fj94-q44p-pf8f/GHSA-fj94-q44p-pf8f.json +++ b/advisories/unreviewed/2022/05/GHSA-fj94-q44p-pf8f/GHSA-fj94-q44p-pf8f.json @@ -7,12 +7,8 @@ "CVE-2021-22166" ], "details": "An attacker could cause a Prometheus denial of service in GitLab 13.7+ by sending an HTTP request with a malformed method", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fjjg-33wx-7m7w/GHSA-fjjg-33wx-7m7w.json b/advisories/unreviewed/2022/05/GHSA-fjjg-33wx-7m7w/GHSA-fjjg-33wx-7m7w.json index 9cb3baf71b3..ea920f74863 100644 --- a/advisories/unreviewed/2022/05/GHSA-fjjg-33wx-7m7w/GHSA-fjjg-33wx-7m7w.json +++ b/advisories/unreviewed/2022/05/GHSA-fjjg-33wx-7m7w/GHSA-fjjg-33wx-7m7w.json @@ -7,12 +7,8 @@ "CVE-2020-11136" ], "details": "Buffer Over-read in audio driver while using malloc management function due to not returning NULL for zero sized memory requirement in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fm24-2jhw-cp33/GHSA-fm24-2jhw-cp33.json b/advisories/unreviewed/2022/05/GHSA-fm24-2jhw-cp33/GHSA-fm24-2jhw-cp33.json index 6216efb66f6..ddc5701f76f 100644 --- a/advisories/unreviewed/2022/05/GHSA-fm24-2jhw-cp33/GHSA-fm24-2jhw-cp33.json +++ b/advisories/unreviewed/2022/05/GHSA-fm24-2jhw-cp33/GHSA-fm24-2jhw-cp33.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fm2x-8p52-vp9v/GHSA-fm2x-8p52-vp9v.json b/advisories/unreviewed/2022/05/GHSA-fm2x-8p52-vp9v/GHSA-fm2x-8p52-vp9v.json index ceb832d4c88..59e010b22ee 100644 --- a/advisories/unreviewed/2022/05/GHSA-fm2x-8p52-vp9v/GHSA-fm2x-8p52-vp9v.json +++ b/advisories/unreviewed/2022/05/GHSA-fm2x-8p52-vp9v/GHSA-fm2x-8p52-vp9v.json @@ -7,12 +7,8 @@ "CVE-2021-25756" ], "details": "In JetBrains IntelliJ IDEA before 2020.2, HTTP links were used for several remote repositories instead of HTTPS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fpc4-2g47-9x72/GHSA-fpc4-2g47-9x72.json b/advisories/unreviewed/2022/05/GHSA-fpc4-2g47-9x72/GHSA-fpc4-2g47-9x72.json index 2a8a9bf0d0c..a0b0d254118 100644 --- a/advisories/unreviewed/2022/05/GHSA-fpc4-2g47-9x72/GHSA-fpc4-2g47-9x72.json +++ b/advisories/unreviewed/2022/05/GHSA-fpc4-2g47-9x72/GHSA-fpc4-2g47-9x72.json @@ -7,12 +7,8 @@ "CVE-2020-11181" ], "details": "Out of bound access issue while handling cvp process control command due to improper validation of buffer pointer received from HLOS in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fpmq-9j97-cq2c/GHSA-fpmq-9j97-cq2c.json b/advisories/unreviewed/2022/05/GHSA-fpmq-9j97-cq2c/GHSA-fpmq-9j97-cq2c.json index a39811bd785..d786cadb488 100644 --- a/advisories/unreviewed/2022/05/GHSA-fpmq-9j97-cq2c/GHSA-fpmq-9j97-cq2c.json +++ b/advisories/unreviewed/2022/05/GHSA-fpmq-9j97-cq2c/GHSA-fpmq-9j97-cq2c.json @@ -7,12 +7,8 @@ "CVE-2020-28402" ], "details": "An improper authorization vulnerability exists in Star Practice Management Web version 2019.2.0.6, allowing an unauthorized user to access Launcher Configuration Panel.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fqr7-rj78-grg8/GHSA-fqr7-rj78-grg8.json b/advisories/unreviewed/2022/05/GHSA-fqr7-rj78-grg8/GHSA-fqr7-rj78-grg8.json index 7713138a456..1b053b21b00 100644 --- a/advisories/unreviewed/2022/05/GHSA-fqr7-rj78-grg8/GHSA-fqr7-rj78-grg8.json +++ b/advisories/unreviewed/2022/05/GHSA-fqr7-rj78-grg8/GHSA-fqr7-rj78-grg8.json @@ -7,12 +7,8 @@ "CVE-2021-2064" ], "details": "Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core Components). The supported version that is affected is 12.1.3.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via IIOP, T3 to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in takeover of Oracle WebLogic Server. CVSS 3.1 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fwcq-rwgm-5rc2/GHSA-fwcq-rwgm-5rc2.json b/advisories/unreviewed/2022/05/GHSA-fwcq-rwgm-5rc2/GHSA-fwcq-rwgm-5rc2.json index 2bb73a9836e..533ef37a8a4 100644 --- a/advisories/unreviewed/2022/05/GHSA-fwcq-rwgm-5rc2/GHSA-fwcq-rwgm-5rc2.json +++ b/advisories/unreviewed/2022/05/GHSA-fwcq-rwgm-5rc2/GHSA-fwcq-rwgm-5rc2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fwqg-4g86-67jr/GHSA-fwqg-4g86-67jr.json b/advisories/unreviewed/2022/05/GHSA-fwqg-4g86-67jr/GHSA-fwqg-4g86-67jr.json index 7943f9cfc07..233ba8affac 100644 --- a/advisories/unreviewed/2022/05/GHSA-fwqg-4g86-67jr/GHSA-fwqg-4g86-67jr.json +++ b/advisories/unreviewed/2022/05/GHSA-fwqg-4g86-67jr/GHSA-fwqg-4g86-67jr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fxj9-j9p7-r939/GHSA-fxj9-j9p7-r939.json b/advisories/unreviewed/2022/05/GHSA-fxj9-j9p7-r939/GHSA-fxj9-j9p7-r939.json index 7191025606d..31654096dd3 100644 --- a/advisories/unreviewed/2022/05/GHSA-fxj9-j9p7-r939/GHSA-fxj9-j9p7-r939.json +++ b/advisories/unreviewed/2022/05/GHSA-fxj9-j9p7-r939/GHSA-fxj9-j9p7-r939.json @@ -7,12 +7,8 @@ "CVE-2021-3176" ], "details": "The chat window of the Mitel BusinessCTI Enterprise (MBC-E) Client for Windows before 6.4.15 and 7.x before 7.1.2 could allow an attacker to gain access to user information by sending certain code, due to improper input validation of http links. A successful exploit could allow an attacker to view user information and application data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fxvg-27xw-fcvj/GHSA-fxvg-27xw-fcvj.json b/advisories/unreviewed/2022/05/GHSA-fxvg-27xw-fcvj/GHSA-fxvg-27xw-fcvj.json index b88503b3eee..7d99b72cc61 100644 --- a/advisories/unreviewed/2022/05/GHSA-fxvg-27xw-fcvj/GHSA-fxvg-27xw-fcvj.json +++ b/advisories/unreviewed/2022/05/GHSA-fxvg-27xw-fcvj/GHSA-fxvg-27xw-fcvj.json @@ -7,12 +7,8 @@ "CVE-2021-2129" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is Prior to 6.1.18. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle VM VirtualBox accessible data as well as unauthorized access to critical data or complete access to all Oracle VM VirtualBox accessible data. CVSS 3.1 Base Score 7.9 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g2j5-mv4m-h6rc/GHSA-g2j5-mv4m-h6rc.json b/advisories/unreviewed/2022/05/GHSA-g2j5-mv4m-h6rc/GHSA-g2j5-mv4m-h6rc.json index 087cb62b6c2..437e517090e 100644 --- a/advisories/unreviewed/2022/05/GHSA-g2j5-mv4m-h6rc/GHSA-g2j5-mv4m-h6rc.json +++ b/advisories/unreviewed/2022/05/GHSA-g2j5-mv4m-h6rc/GHSA-g2j5-mv4m-h6rc.json @@ -7,12 +7,8 @@ "CVE-2021-3272" ], "details": "jp2_decode in jp2/jp2_dec.c in libjasper in JasPer 2.0.24 has a heap-based buffer over-read when there is an invalid relationship between the number of channels and the number of image components.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g4h7-78c4-pf5f/GHSA-g4h7-78c4-pf5f.json b/advisories/unreviewed/2022/05/GHSA-g4h7-78c4-pf5f/GHSA-g4h7-78c4-pf5f.json index e1622305f12..b87a9a3597b 100644 --- a/advisories/unreviewed/2022/05/GHSA-g4h7-78c4-pf5f/GHSA-g4h7-78c4-pf5f.json +++ b/advisories/unreviewed/2022/05/GHSA-g4h7-78c4-pf5f/GHSA-g4h7-78c4-pf5f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g5w8-cv66-2r79/GHSA-g5w8-cv66-2r79.json b/advisories/unreviewed/2022/05/GHSA-g5w8-cv66-2r79/GHSA-g5w8-cv66-2r79.json index 3f4dc3d5597..614ef019b4a 100644 --- a/advisories/unreviewed/2022/05/GHSA-g5w8-cv66-2r79/GHSA-g5w8-cv66-2r79.json +++ b/advisories/unreviewed/2022/05/GHSA-g5w8-cv66-2r79/GHSA-g5w8-cv66-2r79.json @@ -7,12 +7,8 @@ "CVE-2020-6779" ], "details": "Use of Hard-coded Credentials in the database of Bosch FSM-2500 server and Bosch FSM-5000 server up to and including version 5.2 allows an unauthenticated remote attacker to log into the database with admin-privileges. This may result in complete compromise of the confidentiality and integrity of the stored data as well as a high availability impact on the database itself. In addition, an attacker may execute arbitrary commands on the underlying operating system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g5ww-gvff-fp7p/GHSA-g5ww-gvff-fp7p.json b/advisories/unreviewed/2022/05/GHSA-g5ww-gvff-fp7p/GHSA-g5ww-gvff-fp7p.json index 347a04b399b..a6d835731e8 100644 --- a/advisories/unreviewed/2022/05/GHSA-g5ww-gvff-fp7p/GHSA-g5ww-gvff-fp7p.json +++ b/advisories/unreviewed/2022/05/GHSA-g5ww-gvff-fp7p/GHSA-g5ww-gvff-fp7p.json @@ -7,12 +7,8 @@ "CVE-2020-28874" ], "details": "reset-password.php in ProjectSend before r1295 allows remote attackers to reset a password because of incorrect business logic. Errors are not properly considered (an invalid token parameter).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g79j-p7v5-2phh/GHSA-g79j-p7v5-2phh.json b/advisories/unreviewed/2022/05/GHSA-g79j-p7v5-2phh/GHSA-g79j-p7v5-2phh.json index a17acaa4848..64e635c9f84 100644 --- a/advisories/unreviewed/2022/05/GHSA-g79j-p7v5-2phh/GHSA-g79j-p7v5-2phh.json +++ b/advisories/unreviewed/2022/05/GHSA-g79j-p7v5-2phh/GHSA-g79j-p7v5-2phh.json @@ -7,12 +7,8 @@ "CVE-2021-2003" ], "details": "Vulnerability in the Business Intelligence Enterprise Edition product of Oracle Fusion Middleware (component: Analytics Web Dashboards). Supported versions that are affected are 5.5.0.0.0, 11.1.1.9.0, 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Business Intelligence Enterprise Edition. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Business Intelligence Enterprise Edition, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Business Intelligence Enterprise Edition accessible data as well as unauthorized read access to a subset of Business Intelligence Enterprise Edition accessible data. CVSS 3.1 Base Score 5.4 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g79p-3w8h-r53r/GHSA-g79p-3w8h-r53r.json b/advisories/unreviewed/2022/05/GHSA-g79p-3w8h-r53r/GHSA-g79p-3w8h-r53r.json index fda2745156f..c07ae362ffa 100644 --- a/advisories/unreviewed/2022/05/GHSA-g79p-3w8h-r53r/GHSA-g79p-3w8h-r53r.json +++ b/advisories/unreviewed/2022/05/GHSA-g79p-3w8h-r53r/GHSA-g79p-3w8h-r53r.json @@ -7,12 +7,8 @@ "CVE-2020-4815" ], "details": "IBM Cloud Pak for Security (CP4S) 1.4.0.0 could allow a remote user to obtain sensitive information from HTTP response headers that could be used in further attacks against the system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g7cc-v7v6-m885/GHSA-g7cc-v7v6-m885.json b/advisories/unreviewed/2022/05/GHSA-g7cc-v7v6-m885/GHSA-g7cc-v7v6-m885.json index e401ede63be..ae230b13d6d 100644 --- a/advisories/unreviewed/2022/05/GHSA-g7cc-v7v6-m885/GHSA-g7cc-v7v6-m885.json +++ b/advisories/unreviewed/2022/05/GHSA-g7cc-v7v6-m885/GHSA-g7cc-v7v6-m885.json @@ -7,12 +7,8 @@ "CVE-2020-23356" ], "details": "dmin/kernel/api/login.class.phpin in nibbleblog v3.7.1c allows type juggling for login bypass because == is used instead of === for password hashes, which mishandles hashes that begin with 0e followed by exclusively numerical characters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g856-2j5m-5v2v/GHSA-g856-2j5m-5v2v.json b/advisories/unreviewed/2022/05/GHSA-g856-2j5m-5v2v/GHSA-g856-2j5m-5v2v.json index edd48fd8611..43a5d444641 100644 --- a/advisories/unreviewed/2022/05/GHSA-g856-2j5m-5v2v/GHSA-g856-2j5m-5v2v.json +++ b/advisories/unreviewed/2022/05/GHSA-g856-2j5m-5v2v/GHSA-g856-2j5m-5v2v.json @@ -7,12 +7,8 @@ "CVE-2021-0363" ], "details": "In mobile_log_d, there is a possible command injection due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Product: Android; Versions: Android-11; Patch ID: ALPS05458478.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g8r9-m3mg-hwgh/GHSA-g8r9-m3mg-hwgh.json b/advisories/unreviewed/2022/05/GHSA-g8r9-m3mg-hwgh/GHSA-g8r9-m3mg-hwgh.json index 8d1d3de6f90..dd9a32e5e4c 100644 --- a/advisories/unreviewed/2022/05/GHSA-g8r9-m3mg-hwgh/GHSA-g8r9-m3mg-hwgh.json +++ b/advisories/unreviewed/2022/05/GHSA-g8r9-m3mg-hwgh/GHSA-g8r9-m3mg-hwgh.json @@ -7,12 +7,8 @@ "CVE-2020-4688" ], "details": "IBM Security Guardium 10.6 and 11.2 could allow a local attacker to execute arbitrary commands on the system as an unprivileged user, caused by command injection vulnerability. IBM X-Force ID: 186700.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g8v7-95gj-m628/GHSA-g8v7-95gj-m628.json b/advisories/unreviewed/2022/05/GHSA-g8v7-95gj-m628/GHSA-g8v7-95gj-m628.json index 84245c8ac5d..3e549f22f46 100644 --- a/advisories/unreviewed/2022/05/GHSA-g8v7-95gj-m628/GHSA-g8v7-95gj-m628.json +++ b/advisories/unreviewed/2022/05/GHSA-g8v7-95gj-m628/GHSA-g8v7-95gj-m628.json @@ -7,12 +7,8 @@ "CVE-2021-2101" ], "details": "Vulnerability in the Oracle One-to-One Fulfillment product of Oracle E-Business Suite (component: Print Server). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle One-to-One Fulfillment. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle One-to-One Fulfillment accessible data as well as unauthorized access to critical data or complete access to all Oracle One-to-One Fulfillment accessible data. CVSS 3.1 Base Score 9.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g974-9xcc-jjmh/GHSA-g974-9xcc-jjmh.json b/advisories/unreviewed/2022/05/GHSA-g974-9xcc-jjmh/GHSA-g974-9xcc-jjmh.json index 111a8d2647f..bc606c9f339 100644 --- a/advisories/unreviewed/2022/05/GHSA-g974-9xcc-jjmh/GHSA-g974-9xcc-jjmh.json +++ b/advisories/unreviewed/2022/05/GHSA-g974-9xcc-jjmh/GHSA-g974-9xcc-jjmh.json @@ -7,12 +7,8 @@ "CVE-2020-25385" ], "details": "Nagios Log Server 2.1.7 contains a cross-site scripting (XSS) vulnerability in /nagioslogserver/configure/create_snapshot through the snapshot_name parameter, which may impact users who open a maliciously crafted link or third-party web page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gc2q-vcmv-m88j/GHSA-gc2q-vcmv-m88j.json b/advisories/unreviewed/2022/05/GHSA-gc2q-vcmv-m88j/GHSA-gc2q-vcmv-m88j.json index 6ca471d35b6..e8d1c3aff1d 100644 --- a/advisories/unreviewed/2022/05/GHSA-gc2q-vcmv-m88j/GHSA-gc2q-vcmv-m88j.json +++ b/advisories/unreviewed/2022/05/GHSA-gc2q-vcmv-m88j/GHSA-gc2q-vcmv-m88j.json @@ -7,12 +7,8 @@ "CVE-2021-25769" ], "details": "In JetBrains YouTrack before 2020.4.6808, the YouTrack administrator wasn't able to access attachments.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gc6c-6m8m-8g6g/GHSA-gc6c-6m8m-8g6g.json b/advisories/unreviewed/2022/05/GHSA-gc6c-6m8m-8g6g/GHSA-gc6c-6m8m-8g6g.json index 7d4acdac9a3..769c836da61 100644 --- a/advisories/unreviewed/2022/05/GHSA-gc6c-6m8m-8g6g/GHSA-gc6c-6m8m-8g6g.json +++ b/advisories/unreviewed/2022/05/GHSA-gc6c-6m8m-8g6g/GHSA-gc6c-6m8m-8g6g.json @@ -7,12 +7,8 @@ "CVE-2020-27295" ], "details": "The affected product has uncontrolled resource consumption issues, which may allow an attacker to cause a denial-of-service condition on the OPC UA Tunneller (versions prior to 6.3.0.8233).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gcrv-q3v4-c8v3/GHSA-gcrv-q3v4-c8v3.json b/advisories/unreviewed/2022/05/GHSA-gcrv-q3v4-c8v3/GHSA-gcrv-q3v4-c8v3.json index 6a9191b2f27..d1a487ac381 100644 --- a/advisories/unreviewed/2022/05/GHSA-gcrv-q3v4-c8v3/GHSA-gcrv-q3v4-c8v3.json +++ b/advisories/unreviewed/2022/05/GHSA-gcrv-q3v4-c8v3/GHSA-gcrv-q3v4-c8v3.json @@ -7,12 +7,8 @@ "CVE-2021-1069" ], "details": "NVIDIA SHIELD TV, all versions prior to 8.2.2, contains a vulnerability in the NVHost function, which may lead to abnormal reboot due to a null pointer reference, causing data loss.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ggv9-3vm9-2rpv/GHSA-ggv9-3vm9-2rpv.json b/advisories/unreviewed/2022/05/GHSA-ggv9-3vm9-2rpv/GHSA-ggv9-3vm9-2rpv.json index 8baffaf92f5..554fdc7b54c 100644 --- a/advisories/unreviewed/2022/05/GHSA-ggv9-3vm9-2rpv/GHSA-ggv9-3vm9-2rpv.json +++ b/advisories/unreviewed/2022/05/GHSA-ggv9-3vm9-2rpv/GHSA-ggv9-3vm9-2rpv.json @@ -7,12 +7,8 @@ "CVE-2020-11216" ], "details": "Buffer over read can happen in video driver when playing clip with atomsize having value UINT32_MAX in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gh2m-8w4p-v28f/GHSA-gh2m-8w4p-v28f.json b/advisories/unreviewed/2022/05/GHSA-gh2m-8w4p-v28f/GHSA-gh2m-8w4p-v28f.json index b16a07cee86..3940a0fe633 100644 --- a/advisories/unreviewed/2022/05/GHSA-gh2m-8w4p-v28f/GHSA-gh2m-8w4p-v28f.json +++ b/advisories/unreviewed/2022/05/GHSA-gh2m-8w4p-v28f/GHSA-gh2m-8w4p-v28f.json @@ -7,12 +7,8 @@ "CVE-2020-25737" ], "details": "An elevation of privilege vulnerability exists in Hackolade versions prior 4.2.0 on Windows has an issue in specific deployment scenarios that could allow local users to gain elevated privileges during an uninstall of the application.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gj5g-pprq-vcm2/GHSA-gj5g-pprq-vcm2.json b/advisories/unreviewed/2022/05/GHSA-gj5g-pprq-vcm2/GHSA-gj5g-pprq-vcm2.json index 19d87f1a700..3aea99c3af3 100644 --- a/advisories/unreviewed/2022/05/GHSA-gj5g-pprq-vcm2/GHSA-gj5g-pprq-vcm2.json +++ b/advisories/unreviewed/2022/05/GHSA-gj5g-pprq-vcm2/GHSA-gj5g-pprq-vcm2.json @@ -7,12 +7,8 @@ "CVE-2021-0362" ], "details": "In aee, there is a possible memory corruption due to a stack buffer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Product: Android; Versions: Android-11; Patch ID: ALPS05457070.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gmgw-m963-7jfx/GHSA-gmgw-m963-7jfx.json b/advisories/unreviewed/2022/05/GHSA-gmgw-m963-7jfx/GHSA-gmgw-m963-7jfx.json index 431006c24cc..1450515fe09 100644 --- a/advisories/unreviewed/2022/05/GHSA-gmgw-m963-7jfx/GHSA-gmgw-m963-7jfx.json +++ b/advisories/unreviewed/2022/05/GHSA-gmgw-m963-7jfx/GHSA-gmgw-m963-7jfx.json @@ -7,12 +7,8 @@ "CVE-2021-2080" ], "details": "Vulnerability in the Oracle Configurator product of Oracle Supply Chain (component: UI Servlet). Supported versions that are affected are 12.1 and 12.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Configurator. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Configurator, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Configurator accessible data as well as unauthorized update, insert or delete access to some of Oracle Configurator accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gp3h-6gj9-2hrv/GHSA-gp3h-6gj9-2hrv.json b/advisories/unreviewed/2022/05/GHSA-gp3h-6gj9-2hrv/GHSA-gp3h-6gj9-2hrv.json index 08dde6a9100..1f94e1c4538 100644 --- a/advisories/unreviewed/2022/05/GHSA-gp3h-6gj9-2hrv/GHSA-gp3h-6gj9-2hrv.json +++ b/advisories/unreviewed/2022/05/GHSA-gp3h-6gj9-2hrv/GHSA-gp3h-6gj9-2hrv.json @@ -7,12 +7,8 @@ "CVE-2021-2094" ], "details": "Vulnerability in the Oracle One-to-One Fulfillment product of Oracle E-Business Suite (component: Print Server). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle One-to-One Fulfillment. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle One-to-One Fulfillment, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle One-to-One Fulfillment accessible data as well as unauthorized update, insert or delete access to some of Oracle One-to-One Fulfillment accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gpx8-c343-gg78/GHSA-gpx8-c343-gg78.json b/advisories/unreviewed/2022/05/GHSA-gpx8-c343-gg78/GHSA-gpx8-c343-gg78.json index 3e8f6928077..0261450902b 100644 --- a/advisories/unreviewed/2022/05/GHSA-gpx8-c343-gg78/GHSA-gpx8-c343-gg78.json +++ b/advisories/unreviewed/2022/05/GHSA-gpx8-c343-gg78/GHSA-gpx8-c343-gg78.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gq9w-wr34-cg54/GHSA-gq9w-wr34-cg54.json b/advisories/unreviewed/2022/05/GHSA-gq9w-wr34-cg54/GHSA-gq9w-wr34-cg54.json index 10c573c127a..6b15a4f4542 100644 --- a/advisories/unreviewed/2022/05/GHSA-gq9w-wr34-cg54/GHSA-gq9w-wr34-cg54.json +++ b/advisories/unreviewed/2022/05/GHSA-gq9w-wr34-cg54/GHSA-gq9w-wr34-cg54.json @@ -7,12 +7,8 @@ "CVE-2020-4966" ], "details": "IBM Security Identity Governance and Intelligence 5.2.6 does not set the secure attribute on authorization tokens or session cookies. Attackers may be able to get the cookie values by sending a http:// link to a user or by planting this link in a site the user goes to. The cookie will be sent to the insecure link and the attacker can then obtain the cookie value by snooping the traffic. IBM X-Force ID: 192423.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-grjv-3369-9rgq/GHSA-grjv-3369-9rgq.json b/advisories/unreviewed/2022/05/GHSA-grjv-3369-9rgq/GHSA-grjv-3369-9rgq.json index 2091e2b8f3a..5a38189e220 100644 --- a/advisories/unreviewed/2022/05/GHSA-grjv-3369-9rgq/GHSA-grjv-3369-9rgq.json +++ b/advisories/unreviewed/2022/05/GHSA-grjv-3369-9rgq/GHSA-grjv-3369-9rgq.json @@ -7,12 +7,8 @@ "CVE-2020-11146" ], "details": "Out of bound write while copying data using IOCTL due to lack of check of array index received from user in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gvxf-84jp-9m3q/GHSA-gvxf-84jp-9m3q.json b/advisories/unreviewed/2022/05/GHSA-gvxf-84jp-9m3q/GHSA-gvxf-84jp-9m3q.json index ace4ecd3a86..11d12356d40 100644 --- a/advisories/unreviewed/2022/05/GHSA-gvxf-84jp-9m3q/GHSA-gvxf-84jp-9m3q.json +++ b/advisories/unreviewed/2022/05/GHSA-gvxf-84jp-9m3q/GHSA-gvxf-84jp-9m3q.json @@ -7,12 +7,8 @@ "CVE-2021-3165" ], "details": "SmartAgent 3.1.0 allows a ViewOnly attacker to create a SuperUser account via the /#/CampaignManager/users URI.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gwgr-rxcg-c2cg/GHSA-gwgr-rxcg-c2cg.json b/advisories/unreviewed/2022/05/GHSA-gwgr-rxcg-c2cg/GHSA-gwgr-rxcg-c2cg.json index 72a533040fb..924bcc1825d 100644 --- a/advisories/unreviewed/2022/05/GHSA-gwgr-rxcg-c2cg/GHSA-gwgr-rxcg-c2cg.json +++ b/advisories/unreviewed/2022/05/GHSA-gwgr-rxcg-c2cg/GHSA-gwgr-rxcg-c2cg.json @@ -7,12 +7,8 @@ "CVE-2020-11212" ], "details": "Out of bounds reads while parsing NAN beacons attributes and OUIs due to improper length of field check in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gwrc-c7f6-cf92/GHSA-gwrc-c7f6-cf92.json b/advisories/unreviewed/2022/05/GHSA-gwrc-c7f6-cf92/GHSA-gwrc-c7f6-cf92.json index b111a80ab98..418473937a5 100644 --- a/advisories/unreviewed/2022/05/GHSA-gwrc-c7f6-cf92/GHSA-gwrc-c7f6-cf92.json +++ b/advisories/unreviewed/2022/05/GHSA-gwrc-c7f6-cf92/GHSA-gwrc-c7f6-cf92.json @@ -7,12 +7,8 @@ "CVE-2020-4189" ], "details": "IBM Security Guardium 11.2 discloses sensitive information in the response headers that could be used in further attacks against the system. IBM X-Force ID: 174850.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gxjv-3qx5-453x/GHSA-gxjv-3qx5-453x.json b/advisories/unreviewed/2022/05/GHSA-gxjv-3qx5-453x/GHSA-gxjv-3qx5-453x.json index 7d28b12f29f..07a7d3fa070 100644 --- a/advisories/unreviewed/2022/05/GHSA-gxjv-3qx5-453x/GHSA-gxjv-3qx5-453x.json +++ b/advisories/unreviewed/2022/05/GHSA-gxjv-3qx5-453x/GHSA-gxjv-3qx5-453x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gxw3-qv94-46j5/GHSA-gxw3-qv94-46j5.json b/advisories/unreviewed/2022/05/GHSA-gxw3-qv94-46j5/GHSA-gxw3-qv94-46j5.json index f61805366a8..f1a0bb8a3b2 100644 --- a/advisories/unreviewed/2022/05/GHSA-gxw3-qv94-46j5/GHSA-gxw3-qv94-46j5.json +++ b/advisories/unreviewed/2022/05/GHSA-gxw3-qv94-46j5/GHSA-gxw3-qv94-46j5.json @@ -7,12 +7,8 @@ "CVE-2021-25765" ], "details": "In JetBrains YouTrack before 2020.4.4701, CSRF via attachment upload was possible.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h25q-hh4h-7xg5/GHSA-h25q-hh4h-7xg5.json b/advisories/unreviewed/2022/05/GHSA-h25q-hh4h-7xg5/GHSA-h25q-hh4h-7xg5.json index dbdc0402ad4..1073383ad45 100644 --- a/advisories/unreviewed/2022/05/GHSA-h25q-hh4h-7xg5/GHSA-h25q-hh4h-7xg5.json +++ b/advisories/unreviewed/2022/05/GHSA-h25q-hh4h-7xg5/GHSA-h25q-hh4h-7xg5.json @@ -7,12 +7,8 @@ "CVE-2021-2114" ], "details": "Vulnerability in the Oracle Common Applications Calendar product of Oracle E-Business Suite (component: Applications Calendar). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Common Applications Calendar. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Common Applications Calendar, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Common Applications Calendar accessible data as well as unauthorized update, insert or delete access to some of Oracle Common Applications Calendar accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h276-96cq-jf5w/GHSA-h276-96cq-jf5w.json b/advisories/unreviewed/2022/05/GHSA-h276-96cq-jf5w/GHSA-h276-96cq-jf5w.json index ed99bf6f954..e358adec447 100644 --- a/advisories/unreviewed/2022/05/GHSA-h276-96cq-jf5w/GHSA-h276-96cq-jf5w.json +++ b/advisories/unreviewed/2022/05/GHSA-h276-96cq-jf5w/GHSA-h276-96cq-jf5w.json @@ -7,12 +7,8 @@ "CVE-2021-25757" ], "details": "In JetBrains Hub before 2020.1.12629, an open redirect was possible.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h42w-vj6w-2rvp/GHSA-h42w-vj6w-2rvp.json b/advisories/unreviewed/2022/05/GHSA-h42w-vj6w-2rvp/GHSA-h42w-vj6w-2rvp.json index 2762675863b..3ddae2e1d52 100644 --- a/advisories/unreviewed/2022/05/GHSA-h42w-vj6w-2rvp/GHSA-h42w-vj6w-2rvp.json +++ b/advisories/unreviewed/2022/05/GHSA-h42w-vj6w-2rvp/GHSA-h42w-vj6w-2rvp.json @@ -7,12 +7,8 @@ "CVE-2020-11140" ], "details": "Out of bound memory access during music playback with ALAC modified content due to improper validation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h43h-m87r-6x6h/GHSA-h43h-m87r-6x6h.json b/advisories/unreviewed/2022/05/GHSA-h43h-m87r-6x6h/GHSA-h43h-m87r-6x6h.json index 10787a90c49..7f47e460214 100644 --- a/advisories/unreviewed/2022/05/GHSA-h43h-m87r-6x6h/GHSA-h43h-m87r-6x6h.json +++ b/advisories/unreviewed/2022/05/GHSA-h43h-m87r-6x6h/GHSA-h43h-m87r-6x6h.json @@ -7,12 +7,8 @@ "CVE-2020-23359" ], "details": "WeBid 1.2.2 admin/newuser.php has an issue with password rechecking during registration because it uses a loose comparison to check the identicalness of two passwords. Two non-identical passwords can still bypass the check.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h4xp-qh97-9m3x/GHSA-h4xp-qh97-9m3x.json b/advisories/unreviewed/2022/05/GHSA-h4xp-qh97-9m3x/GHSA-h4xp-qh97-9m3x.json index 0f4dda5a284..5403572c850 100644 --- a/advisories/unreviewed/2022/05/GHSA-h4xp-qh97-9m3x/GHSA-h4xp-qh97-9m3x.json +++ b/advisories/unreviewed/2022/05/GHSA-h4xp-qh97-9m3x/GHSA-h4xp-qh97-9m3x.json @@ -7,12 +7,8 @@ "CVE-2021-25224" ], "details": "A memory exhaustion vulnerability in Trend Micro ServerProtect for Linux 3.0 could allow a local attacker to craft specific files that can cause a denial-of-service on the affected product. The specific flaw exists within a manual scan component. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h54f-m7pv-97fx/GHSA-h54f-m7pv-97fx.json b/advisories/unreviewed/2022/05/GHSA-h54f-m7pv-97fx/GHSA-h54f-m7pv-97fx.json index 21a7874b6cd..64cdca9259f 100644 --- a/advisories/unreviewed/2022/05/GHSA-h54f-m7pv-97fx/GHSA-h54f-m7pv-97fx.json +++ b/advisories/unreviewed/2022/05/GHSA-h54f-m7pv-97fx/GHSA-h54f-m7pv-97fx.json @@ -7,12 +7,8 @@ "CVE-2021-25226" ], "details": "A memory exhaustion vulnerability in Trend Micro ServerProtect for Linux 3.0 could allow a local attacker to craft specific files that can cause a denial-of-service on the affected product. The specific flaw exists within a scan engine component. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h754-95cg-2mjg/GHSA-h754-95cg-2mjg.json b/advisories/unreviewed/2022/05/GHSA-h754-95cg-2mjg/GHSA-h754-95cg-2mjg.json index 01d4807b28c..1a60a159900 100644 --- a/advisories/unreviewed/2022/05/GHSA-h754-95cg-2mjg/GHSA-h754-95cg-2mjg.json +++ b/advisories/unreviewed/2022/05/GHSA-h754-95cg-2mjg/GHSA-h754-95cg-2mjg.json @@ -7,12 +7,8 @@ "CVE-2020-11139" ], "details": "Out of bound memory access while processing frames due to lack of check of invalid frames received in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h76g-vp43-8cw5/GHSA-h76g-vp43-8cw5.json b/advisories/unreviewed/2022/05/GHSA-h76g-vp43-8cw5/GHSA-h76g-vp43-8cw5.json index d24e71035b1..e0f9ee27257 100644 --- a/advisories/unreviewed/2022/05/GHSA-h76g-vp43-8cw5/GHSA-h76g-vp43-8cw5.json +++ b/advisories/unreviewed/2022/05/GHSA-h76g-vp43-8cw5/GHSA-h76g-vp43-8cw5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h7mc-jr2r-m38g/GHSA-h7mc-jr2r-m38g.json b/advisories/unreviewed/2022/05/GHSA-h7mc-jr2r-m38g/GHSA-h7mc-jr2r-m38g.json index c0962d77555..0a8ae7a72de 100644 --- a/advisories/unreviewed/2022/05/GHSA-h7mc-jr2r-m38g/GHSA-h7mc-jr2r-m38g.json +++ b/advisories/unreviewed/2022/05/GHSA-h7mc-jr2r-m38g/GHSA-h7mc-jr2r-m38g.json @@ -7,12 +7,8 @@ "CVE-2021-25311" ], "details": "condor_credd in HTCondor before 8.9.11 allows Directory Traversal outside the SEC_CREDENTIAL_DIRECTORY_OAUTH directory, as demonstrated by creating a file under /etc that will later be executed by root.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h87m-6vhv-vpjc/GHSA-h87m-6vhv-vpjc.json b/advisories/unreviewed/2022/05/GHSA-h87m-6vhv-vpjc/GHSA-h87m-6vhv-vpjc.json index 81bea2b2df7..801db90c476 100644 --- a/advisories/unreviewed/2022/05/GHSA-h87m-6vhv-vpjc/GHSA-h87m-6vhv-vpjc.json +++ b/advisories/unreviewed/2022/05/GHSA-h87m-6vhv-vpjc/GHSA-h87m-6vhv-vpjc.json @@ -7,12 +7,8 @@ "CVE-2021-2120" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is Prior to 6.1.18. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle VM VirtualBox accessible data. CVSS 3.1 Base Score 6.0 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h8v8-vmcf-hf5r/GHSA-h8v8-vmcf-hf5r.json b/advisories/unreviewed/2022/05/GHSA-h8v8-vmcf-hf5r/GHSA-h8v8-vmcf-hf5r.json index c66b9b97d4e..d15e9a65fb3 100644 --- a/advisories/unreviewed/2022/05/GHSA-h8v8-vmcf-hf5r/GHSA-h8v8-vmcf-hf5r.json +++ b/advisories/unreviewed/2022/05/GHSA-h8v8-vmcf-hf5r/GHSA-h8v8-vmcf-hf5r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h9qm-fw5r-9vmm/GHSA-h9qm-fw5r-9vmm.json b/advisories/unreviewed/2022/05/GHSA-h9qm-fw5r-9vmm/GHSA-h9qm-fw5r-9vmm.json index 70c6391d292..0fc9b9b78d3 100644 --- a/advisories/unreviewed/2022/05/GHSA-h9qm-fw5r-9vmm/GHSA-h9qm-fw5r-9vmm.json +++ b/advisories/unreviewed/2022/05/GHSA-h9qm-fw5r-9vmm/GHSA-h9qm-fw5r-9vmm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hcfw-jhvg-6wgg/GHSA-hcfw-jhvg-6wgg.json b/advisories/unreviewed/2022/05/GHSA-hcfw-jhvg-6wgg/GHSA-hcfw-jhvg-6wgg.json index 1782ea6b291..f4b5d6f44c5 100644 --- a/advisories/unreviewed/2022/05/GHSA-hcfw-jhvg-6wgg/GHSA-hcfw-jhvg-6wgg.json +++ b/advisories/unreviewed/2022/05/GHSA-hcfw-jhvg-6wgg/GHSA-hcfw-jhvg-6wgg.json @@ -7,12 +7,8 @@ "CVE-2020-23352" ], "details": "Z-BlogPHP 1.6.0 Valyria is affected by incorrect access control. PHP loose comparison and a magic hash can be used to bypass authentication. zb_user/plugin/passwordvisit/include.php:passwordvisit_input_password() uses loose comparison to authenticate, which can be bypassed via magic hash values.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hcvj-2524-64w3/GHSA-hcvj-2524-64w3.json b/advisories/unreviewed/2022/05/GHSA-hcvj-2524-64w3/GHSA-hcvj-2524-64w3.json index 93eef140fcd..01e101bf480 100644 --- a/advisories/unreviewed/2022/05/GHSA-hcvj-2524-64w3/GHSA-hcvj-2524-64w3.json +++ b/advisories/unreviewed/2022/05/GHSA-hcvj-2524-64w3/GHSA-hcvj-2524-64w3.json @@ -7,12 +7,8 @@ "CVE-2021-2122" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.22 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hcxp-2cc6-6jhj/GHSA-hcxp-2cc6-6jhj.json b/advisories/unreviewed/2022/05/GHSA-hcxp-2cc6-6jhj/GHSA-hcxp-2cc6-6jhj.json index ed6c074b131..2f583f2bf50 100644 --- a/advisories/unreviewed/2022/05/GHSA-hcxp-2cc6-6jhj/GHSA-hcxp-2cc6-6jhj.json +++ b/advisories/unreviewed/2022/05/GHSA-hcxp-2cc6-6jhj/GHSA-hcxp-2cc6-6jhj.json @@ -7,12 +7,8 @@ "CVE-2021-0354" ], "details": "In ged, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Product: Android; Versions: Android-11; Patch ID: ALPS05431161.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hf8x-r682-pxjh/GHSA-hf8x-r682-pxjh.json b/advisories/unreviewed/2022/05/GHSA-hf8x-r682-pxjh/GHSA-hf8x-r682-pxjh.json index 115d3ab966d..8c11d6a1339 100644 --- a/advisories/unreviewed/2022/05/GHSA-hf8x-r682-pxjh/GHSA-hf8x-r682-pxjh.json +++ b/advisories/unreviewed/2022/05/GHSA-hf8x-r682-pxjh/GHSA-hf8x-r682-pxjh.json @@ -7,12 +7,8 @@ "CVE-2021-2033" ], "details": "Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core Components). Supported versions that are affected are 12.1.3.0.0, 12.2.1.3.0, 12.2.1.4.0 and 14.1.1.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle WebLogic Server. CVSS 3.1 Base Score 4.3 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hh29-7f97-3793/GHSA-hh29-7f97-3793.json b/advisories/unreviewed/2022/05/GHSA-hh29-7f97-3793/GHSA-hh29-7f97-3793.json index 62337248b44..82c8badd96e 100644 --- a/advisories/unreviewed/2022/05/GHSA-hh29-7f97-3793/GHSA-hh29-7f97-3793.json +++ b/advisories/unreviewed/2022/05/GHSA-hh29-7f97-3793/GHSA-hh29-7f97-3793.json @@ -7,12 +7,8 @@ "CVE-2021-20357" ], "details": "IBM Jazz Foundation products is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 194963.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hjmq-83wc-7h7j/GHSA-hjmq-83wc-7h7j.json b/advisories/unreviewed/2022/05/GHSA-hjmq-83wc-7h7j/GHSA-hjmq-83wc-7h7j.json index ba6e0e830aa..b5279e81e9c 100644 --- a/advisories/unreviewed/2022/05/GHSA-hjmq-83wc-7h7j/GHSA-hjmq-83wc-7h7j.json +++ b/advisories/unreviewed/2022/05/GHSA-hjmq-83wc-7h7j/GHSA-hjmq-83wc-7h7j.json @@ -7,12 +7,8 @@ "CVE-2020-24664" ], "details": "The dashboard Editor in Hitachi Vantara Pentaho through 7.x - 8.x contains a reflected Cross-site scripting vulnerability, which allows an authenticated remote users to execute arbitrary JavaScript code. Specifically, the vulnerability lies in the 'pho:title' attribute of 'dashboardXml' parameter. Remediated in >= 7.1.0.25, >= 8.2.0.6, and >= 8.3.0.0 GA.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hmh7-p3j6-5g37/GHSA-hmh7-p3j6-5g37.json b/advisories/unreviewed/2022/05/GHSA-hmh7-p3j6-5g37/GHSA-hmh7-p3j6-5g37.json index fbf0c2a8470..df3367dba4d 100644 --- a/advisories/unreviewed/2022/05/GHSA-hmh7-p3j6-5g37/GHSA-hmh7-p3j6-5g37.json +++ b/advisories/unreviewed/2022/05/GHSA-hmh7-p3j6-5g37/GHSA-hmh7-p3j6-5g37.json @@ -7,12 +7,8 @@ "CVE-2020-4682" ], "details": "IBM MQ 7.5, 8.0, 9.0, 9.1, 9.2 LTS, and 9.2 CD could allow a remote attacker to execute arbitrary code on the system, caused by an unsafe deserialization of trusted data. An attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 186509.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hpq4-rvv8-g82j/GHSA-hpq4-rvv8-g82j.json b/advisories/unreviewed/2022/05/GHSA-hpq4-rvv8-g82j/GHSA-hpq4-rvv8-g82j.json index c71219d63e7..dffc33fb3f1 100644 --- a/advisories/unreviewed/2022/05/GHSA-hpq4-rvv8-g82j/GHSA-hpq4-rvv8-g82j.json +++ b/advisories/unreviewed/2022/05/GHSA-hpq4-rvv8-g82j/GHSA-hpq4-rvv8-g82j.json @@ -7,12 +7,8 @@ "CVE-2020-27276" ], "details": "SOOIL Developments Co Ltd DiabecareRS,AnyDana-i & AnyDana-A, the communication protocol of the insulin pump and its AnyDana-i & AnyDana-A mobile apps doesn't use adequate measures to authenticate the communicating entities before exchanging keys, which allows unauthenticated, physically proximate attackers to eavesdrop the authentication sequence via Bluetooth Low Energy.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hq3q-v9v8-rcwf/GHSA-hq3q-v9v8-rcwf.json b/advisories/unreviewed/2022/05/GHSA-hq3q-v9v8-rcwf/GHSA-hq3q-v9v8-rcwf.json index f9cf04d7de5..483c95c4043 100644 --- a/advisories/unreviewed/2022/05/GHSA-hq3q-v9v8-rcwf/GHSA-hq3q-v9v8-rcwf.json +++ b/advisories/unreviewed/2022/05/GHSA-hq3q-v9v8-rcwf/GHSA-hq3q-v9v8-rcwf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hq4w-m7jh-mj6m/GHSA-hq4w-m7jh-mj6m.json b/advisories/unreviewed/2022/05/GHSA-hq4w-m7jh-mj6m/GHSA-hq4w-m7jh-mj6m.json index a51ff1cbde1..cde1c1a4f06 100644 --- a/advisories/unreviewed/2022/05/GHSA-hq4w-m7jh-mj6m/GHSA-hq4w-m7jh-mj6m.json +++ b/advisories/unreviewed/2022/05/GHSA-hq4w-m7jh-mj6m/GHSA-hq4w-m7jh-mj6m.json @@ -7,12 +7,8 @@ "CVE-2021-2075" ], "details": "Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Samples). Supported versions that are affected are 10.3.6.0.0, 12.1.3.0.0, 12.2.1.3.0, 12.2.1.4.0 and 14.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via IIOP, T3 to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in takeover of Oracle WebLogic Server. CVSS 3.1 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hqfx-22r8-m3gq/GHSA-hqfx-22r8-m3gq.json b/advisories/unreviewed/2022/05/GHSA-hqfx-22r8-m3gq/GHSA-hqfx-22r8-m3gq.json index bb4dbff7154..60a586ca6d8 100644 --- a/advisories/unreviewed/2022/05/GHSA-hqfx-22r8-m3gq/GHSA-hqfx-22r8-m3gq.json +++ b/advisories/unreviewed/2022/05/GHSA-hqfx-22r8-m3gq/GHSA-hqfx-22r8-m3gq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hr96-643c-qp42/GHSA-hr96-643c-qp42.json b/advisories/unreviewed/2022/05/GHSA-hr96-643c-qp42/GHSA-hr96-643c-qp42.json index 2cd4915b03e..889c564b82b 100644 --- a/advisories/unreviewed/2022/05/GHSA-hr96-643c-qp42/GHSA-hr96-643c-qp42.json +++ b/advisories/unreviewed/2022/05/GHSA-hr96-643c-qp42/GHSA-hr96-643c-qp42.json @@ -7,12 +7,8 @@ "CVE-2021-1218" ], "details": "\n A vulnerability in the web management interface of Cisco Smart Software Manager satellite could allow an authenticated, remote attacker to redirect a user to an undesired web page.\n The vulnerability is due to improper input validation of the URL parameters in an HTTP request that is sent to an affected device. An attacker could exploit this vulnerability by sending a crafted HTTP request that could cause the web application to redirect the request to a specified malicious URL. A successful exploit could allow the attacker to redirect a user to a malicious website.\n ", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hvvw-6vhx-w88v/GHSA-hvvw-6vhx-w88v.json b/advisories/unreviewed/2022/05/GHSA-hvvw-6vhx-w88v/GHSA-hvvw-6vhx-w88v.json index d82088bf7a3..0cfc0997f04 100644 --- a/advisories/unreviewed/2022/05/GHSA-hvvw-6vhx-w88v/GHSA-hvvw-6vhx-w88v.json +++ b/advisories/unreviewed/2022/05/GHSA-hvvw-6vhx-w88v/GHSA-hvvw-6vhx-w88v.json @@ -7,12 +7,8 @@ "CVE-2021-2061" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.22 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.4 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hxm6-fm4r-xj8r/GHSA-hxm6-fm4r-xj8r.json b/advisories/unreviewed/2022/05/GHSA-hxm6-fm4r-xj8r/GHSA-hxm6-fm4r-xj8r.json index e95fb52cc71..1a5d4f710b8 100644 --- a/advisories/unreviewed/2022/05/GHSA-hxm6-fm4r-xj8r/GHSA-hxm6-fm4r-xj8r.json +++ b/advisories/unreviewed/2022/05/GHSA-hxm6-fm4r-xj8r/GHSA-hxm6-fm4r-xj8r.json @@ -7,12 +7,8 @@ "CVE-2020-25782" ], "details": "An issue was discovered on Accfly Wireless Security IR Camera 720P System with software versions v3.10.73 through v4.15.77. There is an unauthenticated stack-based buffer overflow in the function CNetClientManage::ServerIP_Proto_Set during incoming message handling.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j2g8-rpv4-4pqf/GHSA-j2g8-rpv4-4pqf.json b/advisories/unreviewed/2022/05/GHSA-j2g8-rpv4-4pqf/GHSA-j2g8-rpv4-4pqf.json index 9f525b997b5..82d41fb33c1 100644 --- a/advisories/unreviewed/2022/05/GHSA-j2g8-rpv4-4pqf/GHSA-j2g8-rpv4-4pqf.json +++ b/advisories/unreviewed/2022/05/GHSA-j2g8-rpv4-4pqf/GHSA-j2g8-rpv4-4pqf.json @@ -7,12 +7,8 @@ "CVE-2021-2009" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Roles). Supported versions that are affected are 8.0.19 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j2rh-4mpc-95mq/GHSA-j2rh-4mpc-95mq.json b/advisories/unreviewed/2022/05/GHSA-j2rh-4mpc-95mq/GHSA-j2rh-4mpc-95mq.json index d69135cc14e..4915479628e 100644 --- a/advisories/unreviewed/2022/05/GHSA-j2rh-4mpc-95mq/GHSA-j2rh-4mpc-95mq.json +++ b/advisories/unreviewed/2022/05/GHSA-j2rh-4mpc-95mq/GHSA-j2rh-4mpc-95mq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j324-qpqv-2454/GHSA-j324-qpqv-2454.json b/advisories/unreviewed/2022/05/GHSA-j324-qpqv-2454/GHSA-j324-qpqv-2454.json index c0ef9b24b95..cf71cd55a10 100644 --- a/advisories/unreviewed/2022/05/GHSA-j324-qpqv-2454/GHSA-j324-qpqv-2454.json +++ b/advisories/unreviewed/2022/05/GHSA-j324-qpqv-2454/GHSA-j324-qpqv-2454.json @@ -7,12 +7,8 @@ "CVE-2021-3183" ], "details": "Files.com Fat Client 3.3.6 allows authentication bypass because the client continues to have access after a logout and a removal of a login profile.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j45x-3263-vc7w/GHSA-j45x-3263-vc7w.json b/advisories/unreviewed/2022/05/GHSA-j45x-3263-vc7w/GHSA-j45x-3263-vc7w.json index 1a9f0e19e32..3b0449aaf23 100644 --- a/advisories/unreviewed/2022/05/GHSA-j45x-3263-vc7w/GHSA-j45x-3263-vc7w.json +++ b/advisories/unreviewed/2022/05/GHSA-j45x-3263-vc7w/GHSA-j45x-3263-vc7w.json @@ -7,12 +7,8 @@ "CVE-2021-20619" ], "details": "Cross-site scripting vulnerability in GROWI (v4.2 Series) versions prior to v4.2.3 allows remote attackers to inject an arbitrary script via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j526-pj9q-28j3/GHSA-j526-pj9q-28j3.json b/advisories/unreviewed/2022/05/GHSA-j526-pj9q-28j3/GHSA-j526-pj9q-28j3.json index 0dbe427cf6e..5cfe0f12bf7 100644 --- a/advisories/unreviewed/2022/05/GHSA-j526-pj9q-28j3/GHSA-j526-pj9q-28j3.json +++ b/advisories/unreviewed/2022/05/GHSA-j526-pj9q-28j3/GHSA-j526-pj9q-28j3.json @@ -7,12 +7,8 @@ "CVE-2020-4816" ], "details": "IBM Cloud Pak for Security (CP4S) 1.4.0.0 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. An attacker could exploit this vulnerability to obtain sensitive information using man in the middle techniques. IBM X-Force ID: 189703.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j57c-7v46-28f4/GHSA-j57c-7v46-28f4.json b/advisories/unreviewed/2022/05/GHSA-j57c-7v46-28f4/GHSA-j57c-7v46-28f4.json index 666e2c0babb..557b806528a 100644 --- a/advisories/unreviewed/2022/05/GHSA-j57c-7v46-28f4/GHSA-j57c-7v46-28f4.json +++ b/advisories/unreviewed/2022/05/GHSA-j57c-7v46-28f4/GHSA-j57c-7v46-28f4.json @@ -7,12 +7,8 @@ "CVE-2021-22849" ], "details": "Hyweb HyCMS-J1 backend editing function does not filter special characters. Users after log-in can inject JavaScript syntax to perform a stored XSS (Stored Cross-site scripting) attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j5cw-ghxr-f273/GHSA-j5cw-ghxr-f273.json b/advisories/unreviewed/2022/05/GHSA-j5cw-ghxr-f273/GHSA-j5cw-ghxr-f273.json index 1213eddadd6..003643fead1 100644 --- a/advisories/unreviewed/2022/05/GHSA-j5cw-ghxr-f273/GHSA-j5cw-ghxr-f273.json +++ b/advisories/unreviewed/2022/05/GHSA-j5cw-ghxr-f273/GHSA-j5cw-ghxr-f273.json @@ -7,12 +7,8 @@ "CVE-2020-11200" ], "details": "Buffer over-read while parsing RPS due to lack of check of input validation on values received from user side. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j5h2-mqh2-gh66/GHSA-j5h2-mqh2-gh66.json b/advisories/unreviewed/2022/05/GHSA-j5h2-mqh2-gh66/GHSA-j5h2-mqh2-gh66.json index ab9a8300311..13e138ffd3c 100644 --- a/advisories/unreviewed/2022/05/GHSA-j5h2-mqh2-gh66/GHSA-j5h2-mqh2-gh66.json +++ b/advisories/unreviewed/2022/05/GHSA-j5h2-mqh2-gh66/GHSA-j5h2-mqh2-gh66.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j5x7-4h7r-4q2r/GHSA-j5x7-4h7r-4q2r.json b/advisories/unreviewed/2022/05/GHSA-j5x7-4h7r-4q2r/GHSA-j5x7-4h7r-4q2r.json index 1f12052e090..663b9fd2e5e 100644 --- a/advisories/unreviewed/2022/05/GHSA-j5x7-4h7r-4q2r/GHSA-j5x7-4h7r-4q2r.json +++ b/advisories/unreviewed/2022/05/GHSA-j5x7-4h7r-4q2r/GHSA-j5x7-4h7r-4q2r.json @@ -7,12 +7,8 @@ "CVE-2021-1264" ], "details": "\n A vulnerability in the Command Runner tool of Cisco DNA Center could allow an authenticated, remote attacker to perform a command injection attack.\n The vulnerability is due to insufficient input validation by the Command Runner tool. An attacker could exploit this vulnerability by providing crafted input during command execution or via a crafted command runner API call. A successful exploit could allow the attacker to execute arbitrary CLI commands on devices managed by Cisco DNA Center.\n ", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j74q-h94v-g5gh/GHSA-j74q-h94v-g5gh.json b/advisories/unreviewed/2022/05/GHSA-j74q-h94v-g5gh/GHSA-j74q-h94v-g5gh.json index b808f363b29..e25099421d1 100644 --- a/advisories/unreviewed/2022/05/GHSA-j74q-h94v-g5gh/GHSA-j74q-h94v-g5gh.json +++ b/advisories/unreviewed/2022/05/GHSA-j74q-h94v-g5gh/GHSA-j74q-h94v-g5gh.json @@ -7,12 +7,8 @@ "CVE-2021-1997" ], "details": "Vulnerability in the Oracle Hospitality Reporting and Analytics product of Oracle Food and Beverage Applications (component: Report). The supported version that is affected is 9.1.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Hospitality Reporting and Analytics. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Hospitality Reporting and Analytics accessible data as well as unauthorized access to critical data or complete access to all Oracle Hospitality Reporting and Analytics accessible data. CVSS 3.1 Base Score 8.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j7fv-773v-mxgq/GHSA-j7fv-773v-mxgq.json b/advisories/unreviewed/2022/05/GHSA-j7fv-773v-mxgq/GHSA-j7fv-773v-mxgq.json index 7eb245b120c..020a4ea9713 100644 --- a/advisories/unreviewed/2022/05/GHSA-j7fv-773v-mxgq/GHSA-j7fv-773v-mxgq.json +++ b/advisories/unreviewed/2022/05/GHSA-j7fv-773v-mxgq/GHSA-j7fv-773v-mxgq.json @@ -7,12 +7,8 @@ "CVE-2021-2041" ], "details": "Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Fusion Middleware (component: Installation). Supported versions that are affected are 12.2.1.3.0 and 12.2.1.4.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Business Intelligence Enterprise Edition. Successful attacks of this vulnerability can result in takeover of Oracle Business Intelligence Enterprise Edition. CVSS 3.1 Base Score 8.1 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j7hj-hqxr-v93g/GHSA-j7hj-hqxr-v93g.json b/advisories/unreviewed/2022/05/GHSA-j7hj-hqxr-v93g/GHSA-j7hj-hqxr-v93g.json index 052b926023d..48ffc4069a6 100644 --- a/advisories/unreviewed/2022/05/GHSA-j7hj-hqxr-v93g/GHSA-j7hj-hqxr-v93g.json +++ b/advisories/unreviewed/2022/05/GHSA-j7hj-hqxr-v93g/GHSA-j7hj-hqxr-v93g.json @@ -7,12 +7,8 @@ "CVE-2021-2060" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 5.6.50 and prior, 5.7.32 and prior and 8.0.22 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j8j6-5p44-cxc2/GHSA-j8j6-5p44-cxc2.json b/advisories/unreviewed/2022/05/GHSA-j8j6-5p44-cxc2/GHSA-j8j6-5p44-cxc2.json index 172c8c327fb..52ffb331cdf 100644 --- a/advisories/unreviewed/2022/05/GHSA-j8j6-5p44-cxc2/GHSA-j8j6-5p44-cxc2.json +++ b/advisories/unreviewed/2022/05/GHSA-j8j6-5p44-cxc2/GHSA-j8j6-5p44-cxc2.json @@ -7,12 +7,8 @@ "CVE-2021-2083" ], "details": "Vulnerability in the Oracle iSupport product of Oracle E-Business Suite (component: User Responsibilities). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iSupport. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle iSupport, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle iSupport accessible data as well as unauthorized update, insert or delete access to some of Oracle iSupport accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j9cc-27mp-fm7w/GHSA-j9cc-27mp-fm7w.json b/advisories/unreviewed/2022/05/GHSA-j9cc-27mp-fm7w/GHSA-j9cc-27mp-fm7w.json index 28049bb572b..8f1663dd5a4 100644 --- a/advisories/unreviewed/2022/05/GHSA-j9cc-27mp-fm7w/GHSA-j9cc-27mp-fm7w.json +++ b/advisories/unreviewed/2022/05/GHSA-j9cc-27mp-fm7w/GHSA-j9cc-27mp-fm7w.json @@ -7,12 +7,8 @@ "CVE-2021-3110" ], "details": "The store system in PrestaShop 1.7.7.0 allows time-based boolean SQL injection via the module=productcomments controller=CommentGrade id_products[] parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j9h8-94jh-mvvv/GHSA-j9h8-94jh-mvvv.json b/advisories/unreviewed/2022/05/GHSA-j9h8-94jh-mvvv/GHSA-j9h8-94jh-mvvv.json index 632d075afa1..413feba6f3f 100644 --- a/advisories/unreviewed/2022/05/GHSA-j9h8-94jh-mvvv/GHSA-j9h8-94jh-mvvv.json +++ b/advisories/unreviewed/2022/05/GHSA-j9h8-94jh-mvvv/GHSA-j9h8-94jh-mvvv.json @@ -7,12 +7,8 @@ "CVE-2021-25770" ], "details": "In JetBrains YouTrack before 2020.5.3123, server-side template injection (SSTI) was possible, which could lead to code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j9xx-xhxp-xr79/GHSA-j9xx-xhxp-xr79.json b/advisories/unreviewed/2022/05/GHSA-j9xx-xhxp-xr79/GHSA-j9xx-xhxp-xr79.json index 6865de677e4..f3b66997d43 100644 --- a/advisories/unreviewed/2022/05/GHSA-j9xx-xhxp-xr79/GHSA-j9xx-xhxp-xr79.json +++ b/advisories/unreviewed/2022/05/GHSA-j9xx-xhxp-xr79/GHSA-j9xx-xhxp-xr79.json @@ -7,12 +7,8 @@ "CVE-2020-12513" ], "details": "Pepperl+Fuchs Comtrol IO-Link Master in Version 1.5.48 and below is prone to an authenticated blind OS Command Injection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jgvp-vpg3-f4xh/GHSA-jgvp-vpg3-f4xh.json b/advisories/unreviewed/2022/05/GHSA-jgvp-vpg3-f4xh/GHSA-jgvp-vpg3-f4xh.json index 34f8796a0d4..967939f3751 100644 --- a/advisories/unreviewed/2022/05/GHSA-jgvp-vpg3-f4xh/GHSA-jgvp-vpg3-f4xh.json +++ b/advisories/unreviewed/2022/05/GHSA-jgvp-vpg3-f4xh/GHSA-jgvp-vpg3-f4xh.json @@ -7,12 +7,8 @@ "CVE-2020-27541" ], "details": "Denial of Service vulnerability in Rostelecom CS-C2SHW 5.0.082.1. AgentGreen service has a bug in parsing broadcast discovery UDP packet. Sending a packet of too small size will lead to an attempt of allocating buffer of negative size. As the result service AgentGreen will be terminated and started again later.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jj2f-926m-w2rc/GHSA-jj2f-926m-w2rc.json b/advisories/unreviewed/2022/05/GHSA-jj2f-926m-w2rc/GHSA-jj2f-926m-w2rc.json index 5a60d64668d..65ffc8d1eda 100644 --- a/advisories/unreviewed/2022/05/GHSA-jj2f-926m-w2rc/GHSA-jj2f-926m-w2rc.json +++ b/advisories/unreviewed/2022/05/GHSA-jj2f-926m-w2rc/GHSA-jj2f-926m-w2rc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jmr4-rffv-36cj/GHSA-jmr4-rffv-36cj.json b/advisories/unreviewed/2022/05/GHSA-jmr4-rffv-36cj/GHSA-jmr4-rffv-36cj.json index 97414d7d023..50ae3d1cef0 100644 --- a/advisories/unreviewed/2022/05/GHSA-jmr4-rffv-36cj/GHSA-jmr4-rffv-36cj.json +++ b/advisories/unreviewed/2022/05/GHSA-jmr4-rffv-36cj/GHSA-jmr4-rffv-36cj.json @@ -7,12 +7,8 @@ "CVE-2020-24085" ], "details": "A cross-site scripting (XSS) vulnerability exists in MISP v2.4.128 in app/Controller/UserSettingsController.php at SetHomePage() function. Due to a lack of controller validation in \"path\" parameter, an attacker can execute malicious JavaScript code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jpm4-m232-8rrq/GHSA-jpm4-m232-8rrq.json b/advisories/unreviewed/2022/05/GHSA-jpm4-m232-8rrq/GHSA-jpm4-m232-8rrq.json index 38c6b2a7160..3e37fe1001a 100644 --- a/advisories/unreviewed/2022/05/GHSA-jpm4-m232-8rrq/GHSA-jpm4-m232-8rrq.json +++ b/advisories/unreviewed/2022/05/GHSA-jpm4-m232-8rrq/GHSA-jpm4-m232-8rrq.json @@ -7,12 +7,8 @@ "CVE-2021-3286" ], "details": "SQL injection exists in Spotweb 1.4.9 because the notAllowedCommands protection mechanism is inadequate, e.g., a variation of the payload may be used. NOTE: this issue exists because of an incomplete fix for CVE-2020-35545.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jpp8-6866-8f89/GHSA-jpp8-6866-8f89.json b/advisories/unreviewed/2022/05/GHSA-jpp8-6866-8f89/GHSA-jpp8-6866-8f89.json index 8068998cf11..485d18516fe 100644 --- a/advisories/unreviewed/2022/05/GHSA-jpp8-6866-8f89/GHSA-jpp8-6866-8f89.json +++ b/advisories/unreviewed/2022/05/GHSA-jpp8-6866-8f89/GHSA-jpp8-6866-8f89.json @@ -7,12 +7,8 @@ "CVE-2021-2042" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.21 and prior. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized read access to a subset of MySQL Server accessible data. CVSS 3.1 Base Score 2.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jpqx-f853-g2j5/GHSA-jpqx-f853-g2j5.json b/advisories/unreviewed/2022/05/GHSA-jpqx-f853-g2j5/GHSA-jpqx-f853-g2j5.json index 0885e393ea0..fd78c684ee2 100644 --- a/advisories/unreviewed/2022/05/GHSA-jpqx-f853-g2j5/GHSA-jpqx-f853-g2j5.json +++ b/advisories/unreviewed/2022/05/GHSA-jpqx-f853-g2j5/GHSA-jpqx-f853-g2j5.json @@ -7,12 +7,8 @@ "CVE-2021-0219" ], "details": "A command injection vulnerability in install package validation subsystem of Juniper Networks Junos OS that may allow a locally authenticated attacker with privileges to execute commands with root privilege. To validate a package in Junos before installation, an administrator executes the command 'request system software add validate-on-host' via the CLI. An attacker with access to this CLI command may be able to exploit this vulnerability. This issue affects Juniper Networks Junos OS: all versions prior to 17.3R3-S10; 17.4 versions prior to 17.4R2-S12, 17.4R3-S3; 18.1 versions prior to 18.1R3-S11; 18.2 versions prior to 18.2R2-S8, 18.2R3-S6; 18.3 versions prior to 18.3R3-S4; 18.4 versions prior to 18.4R1-S8, 18.4R2-S7, 18.4R3-S6; 19.1 versions prior to 19.1R1-S6, 19.1R2-S2, 19.1R3-S3; 19.2 versions prior to 19.2R3-S1; 19.3 versions prior to 19.3R2-S5, 19.3R3-S1; 19.4 versions prior to 19.4R2-S2, 19.4R3-S1; 20.1 versions prior to 20.1R2; 20.2 versions prior to 20.2R1-S2, 20.2R2; 20.3 versions prior to 20.3R1-S1, 20.3R2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jpv4-xx47-257g/GHSA-jpv4-xx47-257g.json b/advisories/unreviewed/2022/05/GHSA-jpv4-xx47-257g/GHSA-jpv4-xx47-257g.json index 51790db08a5..9e6e687ae5b 100644 --- a/advisories/unreviewed/2022/05/GHSA-jpv4-xx47-257g/GHSA-jpv4-xx47-257g.json +++ b/advisories/unreviewed/2022/05/GHSA-jpv4-xx47-257g/GHSA-jpv4-xx47-257g.json @@ -7,12 +7,8 @@ "CVE-2020-27299" ], "details": "The affected product is vulnerable to an out-of-bounds read, which may allow an attacker to obtain and disclose sensitive data information or cause the device to crash on the OPC UA Tunneller (versions prior to 6.3.0.8233).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jrgj-8hjf-v957/GHSA-jrgj-8hjf-v957.json b/advisories/unreviewed/2022/05/GHSA-jrgj-8hjf-v957/GHSA-jrgj-8hjf-v957.json index 47901e9b2b6..648a1baae09 100644 --- a/advisories/unreviewed/2022/05/GHSA-jrgj-8hjf-v957/GHSA-jrgj-8hjf-v957.json +++ b/advisories/unreviewed/2022/05/GHSA-jrgj-8hjf-v957/GHSA-jrgj-8hjf-v957.json @@ -7,12 +7,8 @@ "CVE-2021-2029" ], "details": "Vulnerability in the Oracle Scripting product of Oracle E-Business Suite (component: Miscellaneous). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.8. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Scripting. Successful attacks of this vulnerability can result in takeover of Oracle Scripting. CVSS 3.1 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jrmq-x9f8-6mh9/GHSA-jrmq-x9f8-6mh9.json b/advisories/unreviewed/2022/05/GHSA-jrmq-x9f8-6mh9/GHSA-jrmq-x9f8-6mh9.json index b917266dd7e..0baebee02f4 100644 --- a/advisories/unreviewed/2022/05/GHSA-jrmq-x9f8-6mh9/GHSA-jrmq-x9f8-6mh9.json +++ b/advisories/unreviewed/2022/05/GHSA-jrmq-x9f8-6mh9/GHSA-jrmq-x9f8-6mh9.json @@ -7,12 +7,8 @@ "CVE-2021-2117" ], "details": "Vulnerability in the Oracle Application Express Survey Builder component of Oracle Database Server. The supported version that is affected is Prior to 20.2. Easily exploitable vulnerability allows low privileged attacker having Valid User Account privilege with network access via HTTP to compromise Oracle Application Express Survey Builder. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Application Express Survey Builder, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Application Express Survey Builder accessible data as well as unauthorized read access to a subset of Oracle Application Express Survey Builder accessible data. CVSS 3.1 Base Score 5.4 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jw64-xwgf-cfcc/GHSA-jw64-xwgf-cfcc.json b/advisories/unreviewed/2022/05/GHSA-jw64-xwgf-cfcc/GHSA-jw64-xwgf-cfcc.json index 10c0ec2d812..0c6f152a1c2 100644 --- a/advisories/unreviewed/2022/05/GHSA-jw64-xwgf-cfcc/GHSA-jw64-xwgf-cfcc.json +++ b/advisories/unreviewed/2022/05/GHSA-jw64-xwgf-cfcc/GHSA-jw64-xwgf-cfcc.json @@ -7,12 +7,8 @@ "CVE-2021-2100" ], "details": "Vulnerability in the Oracle One-to-One Fulfillment product of Oracle E-Business Suite (component: Print Server). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle One-to-One Fulfillment. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle One-to-One Fulfillment accessible data as well as unauthorized access to critical data or complete access to all Oracle One-to-One Fulfillment accessible data. CVSS 3.1 Base Score 9.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m23v-gcxc-rq79/GHSA-m23v-gcxc-rq79.json b/advisories/unreviewed/2022/05/GHSA-m23v-gcxc-rq79/GHSA-m23v-gcxc-rq79.json index 953c0e4563e..266c10f5fcd 100644 --- a/advisories/unreviewed/2022/05/GHSA-m23v-gcxc-rq79/GHSA-m23v-gcxc-rq79.json +++ b/advisories/unreviewed/2022/05/GHSA-m23v-gcxc-rq79/GHSA-m23v-gcxc-rq79.json @@ -7,12 +7,8 @@ "CVE-2020-29005" ], "details": "The API in the Push extension for MediaWiki through 1.35 used cleartext for ApiPush credentials, allowing for potential information disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m2v4-c38g-6j7w/GHSA-m2v4-c38g-6j7w.json b/advisories/unreviewed/2022/05/GHSA-m2v4-c38g-6j7w/GHSA-m2v4-c38g-6j7w.json index 2fea43c2382..762529d0887 100644 --- a/advisories/unreviewed/2022/05/GHSA-m2v4-c38g-6j7w/GHSA-m2v4-c38g-6j7w.json +++ b/advisories/unreviewed/2022/05/GHSA-m2v4-c38g-6j7w/GHSA-m2v4-c38g-6j7w.json @@ -7,12 +7,8 @@ "CVE-2020-11138" ], "details": "Uninitialized pointers accessed during music play back with incorrect bit stream due to an uninitialized heap memory result in instability in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m3hg-xq69-26f2/GHSA-m3hg-xq69-26f2.json b/advisories/unreviewed/2022/05/GHSA-m3hg-xq69-26f2/GHSA-m3hg-xq69-26f2.json index 64d3c33b1eb..5684ce373e8 100644 --- a/advisories/unreviewed/2022/05/GHSA-m3hg-xq69-26f2/GHSA-m3hg-xq69-26f2.json +++ b/advisories/unreviewed/2022/05/GHSA-m3hg-xq69-26f2/GHSA-m3hg-xq69-26f2.json @@ -7,12 +7,8 @@ "CVE-2021-25758" ], "details": "In JetBrains IntelliJ IDEA before 2020.3, potentially insecure deserialization of the workspace model could lead to code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m48x-rc7v-3542/GHSA-m48x-rc7v-3542.json b/advisories/unreviewed/2022/05/GHSA-m48x-rc7v-3542/GHSA-m48x-rc7v-3542.json index 9f5365e9851..6f659b28503 100644 --- a/advisories/unreviewed/2022/05/GHSA-m48x-rc7v-3542/GHSA-m48x-rc7v-3542.json +++ b/advisories/unreviewed/2022/05/GHSA-m48x-rc7v-3542/GHSA-m48x-rc7v-3542.json @@ -7,12 +7,8 @@ "CVE-2020-11144" ], "details": "Buffer over-read while UE process invalid DL ROHC packet for decompression due to lack of check of size of compresses packet in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m4p6-m6rh-mg74/GHSA-m4p6-m6rh-mg74.json b/advisories/unreviewed/2022/05/GHSA-m4p6-m6rh-mg74/GHSA-m4p6-m6rh-mg74.json index fe1fec0d395..da3548d0a4a 100644 --- a/advisories/unreviewed/2022/05/GHSA-m4p6-m6rh-mg74/GHSA-m4p6-m6rh-mg74.json +++ b/advisories/unreviewed/2022/05/GHSA-m4p6-m6rh-mg74/GHSA-m4p6-m6rh-mg74.json @@ -7,12 +7,8 @@ "CVE-2020-35310" ], "details": "Composr CMS 10.0.34 is affected by cross-site scripting (XSS) which allows remote attackers to inject an arbitrary web script or HTML via Add Banners in the Description field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m782-4wcx-2mg3/GHSA-m782-4wcx-2mg3.json b/advisories/unreviewed/2022/05/GHSA-m782-4wcx-2mg3/GHSA-m782-4wcx-2mg3.json index 93ff950397a..7b80904d225 100644 --- a/advisories/unreviewed/2022/05/GHSA-m782-4wcx-2mg3/GHSA-m782-4wcx-2mg3.json +++ b/advisories/unreviewed/2022/05/GHSA-m782-4wcx-2mg3/GHSA-m782-4wcx-2mg3.json @@ -7,12 +7,8 @@ "CVE-2021-1364" ], "details": "Multiple vulnerabilities in Cisco Unified Communications Manager IM & Presence Service (Unified CM IM&P) could allow an attacker to conduct path traversal attacks and SQL injection attacks on an affected system. One of the SQL injection vulnerabilities that affects Unified CM IM&P also affects Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management Edition (Unified CM SME) and could allow an attacker to conduct SQL injection attacks on an affected system.\n For more information about these vulnerabilities, see the Details section of this advisory.\n ", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m7hj-mp9g-3x93/GHSA-m7hj-mp9g-3x93.json b/advisories/unreviewed/2022/05/GHSA-m7hj-mp9g-3x93/GHSA-m7hj-mp9g-3x93.json index b703579f801..8f6e0a3c072 100644 --- a/advisories/unreviewed/2022/05/GHSA-m7hj-mp9g-3x93/GHSA-m7hj-mp9g-3x93.json +++ b/advisories/unreviewed/2022/05/GHSA-m7hj-mp9g-3x93/GHSA-m7hj-mp9g-3x93.json @@ -7,12 +7,8 @@ "CVE-2021-2107" ], "details": "Vulnerability in the Oracle Customer Interaction History product of Oracle E-Business Suite (component: Outcome-Result). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Customer Interaction History. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Customer Interaction History, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Customer Interaction History accessible data as well as unauthorized update, insert or delete access to some of Oracle Customer Interaction History accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m7m8-2937-xxpq/GHSA-m7m8-2937-xxpq.json b/advisories/unreviewed/2022/05/GHSA-m7m8-2937-xxpq/GHSA-m7m8-2937-xxpq.json index bfae11d7616..a16362a02ec 100644 --- a/advisories/unreviewed/2022/05/GHSA-m7m8-2937-xxpq/GHSA-m7m8-2937-xxpq.json +++ b/advisories/unreviewed/2022/05/GHSA-m7m8-2937-xxpq/GHSA-m7m8-2937-xxpq.json @@ -7,12 +7,8 @@ "CVE-2020-35309" ], "details": "Bakeshop Online Ordering System in PHP/MySQLi 1.0 is affected by cross-site scripting (XSS) which allows remote attackers to inject an arbitrary web script or HTML in admin dashboard - \"Categories\".", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m82f-r4r7-5qph/GHSA-m82f-r4r7-5qph.json b/advisories/unreviewed/2022/05/GHSA-m82f-r4r7-5qph/GHSA-m82f-r4r7-5qph.json index ec701e77413..709ed49d261 100644 --- a/advisories/unreviewed/2022/05/GHSA-m82f-r4r7-5qph/GHSA-m82f-r4r7-5qph.json +++ b/advisories/unreviewed/2022/05/GHSA-m82f-r4r7-5qph/GHSA-m82f-r4r7-5qph.json @@ -7,12 +7,8 @@ "CVE-2021-2115" ], "details": "Vulnerability in the Oracle Common Applications Calendar product of Oracle E-Business Suite (component: Tasks). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Common Applications Calendar. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Common Applications Calendar, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Common Applications Calendar accessible data as well as unauthorized update, insert or delete access to some of Oracle Common Applications Calendar accessible data. CVSS 3.1 Base Score 7.6 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m95q-pxcq-5m5r/GHSA-m95q-pxcq-5m5r.json b/advisories/unreviewed/2022/05/GHSA-m95q-pxcq-5m5r/GHSA-m95q-pxcq-5m5r.json index 3a71c189204..c654bb45c35 100644 --- a/advisories/unreviewed/2022/05/GHSA-m95q-pxcq-5m5r/GHSA-m95q-pxcq-5m5r.json +++ b/advisories/unreviewed/2022/05/GHSA-m95q-pxcq-5m5r/GHSA-m95q-pxcq-5m5r.json @@ -7,12 +7,8 @@ "CVE-2021-3188" ], "details": "phpList 3.6.0 allows CSV injection, related to the email parameter, and /lists/admin/ exports.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m989-hhx2-g8c7/GHSA-m989-hhx2-g8c7.json b/advisories/unreviewed/2022/05/GHSA-m989-hhx2-g8c7/GHSA-m989-hhx2-g8c7.json index 05df38bfe5f..8fc3037db4b 100644 --- a/advisories/unreviewed/2022/05/GHSA-m989-hhx2-g8c7/GHSA-m989-hhx2-g8c7.json +++ b/advisories/unreviewed/2022/05/GHSA-m989-hhx2-g8c7/GHSA-m989-hhx2-g8c7.json @@ -7,12 +7,8 @@ "CVE-2020-29004" ], "details": "The API in the Push extension for MediaWiki through 1.35 did not require an edit token in ApiPushBase.php and therefore facilitated a CSRF attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m98h-4pjr-7pxh/GHSA-m98h-4pjr-7pxh.json b/advisories/unreviewed/2022/05/GHSA-m98h-4pjr-7pxh/GHSA-m98h-4pjr-7pxh.json index a37488d73c0..c173ebaae23 100644 --- a/advisories/unreviewed/2022/05/GHSA-m98h-4pjr-7pxh/GHSA-m98h-4pjr-7pxh.json +++ b/advisories/unreviewed/2022/05/GHSA-m98h-4pjr-7pxh/GHSA-m98h-4pjr-7pxh.json @@ -7,12 +7,8 @@ "CVE-2021-22871" ], "details": "Revive Adserver before 5.1.0 permits any user with a manager account to store possibly malicious content in the URL website property, which is then displayed unsanitized in the affiliate-preview.php tag generation screen, leading to a persistent cross-site scripting (XSS) vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m9wc-h684-m6rq/GHSA-m9wc-h684-m6rq.json b/advisories/unreviewed/2022/05/GHSA-m9wc-h684-m6rq/GHSA-m9wc-h684-m6rq.json index 73d873f3444..a132e645b7d 100644 --- a/advisories/unreviewed/2022/05/GHSA-m9wc-h684-m6rq/GHSA-m9wc-h684-m6rq.json +++ b/advisories/unreviewed/2022/05/GHSA-m9wc-h684-m6rq/GHSA-m9wc-h684-m6rq.json @@ -7,12 +7,8 @@ "CVE-2020-8295" ], "details": "A wrong check in Nextcloud Server 19 and prior allowed to perform a denial of service attack when resetting the password for a user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mcc8-p585-2j6v/GHSA-mcc8-p585-2j6v.json b/advisories/unreviewed/2022/05/GHSA-mcc8-p585-2j6v/GHSA-mcc8-p585-2j6v.json index c50629c4a78..9d595ab2bea 100644 --- a/advisories/unreviewed/2022/05/GHSA-mcc8-p585-2j6v/GHSA-mcc8-p585-2j6v.json +++ b/advisories/unreviewed/2022/05/GHSA-mcc8-p585-2j6v/GHSA-mcc8-p585-2j6v.json @@ -7,12 +7,8 @@ "CVE-2020-29536" ], "details": "Archer before 6.8 P2 (6.8.0.2) is affected by a path exposure vulnerability. A remote authenticated malicious attacker with access to service files may obtain sensitive information to use it in further attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mf48-q84f-r7vh/GHSA-mf48-q84f-r7vh.json b/advisories/unreviewed/2022/05/GHSA-mf48-q84f-r7vh/GHSA-mf48-q84f-r7vh.json index caa5994a767..b13d9f28ca0 100644 --- a/advisories/unreviewed/2022/05/GHSA-mf48-q84f-r7vh/GHSA-mf48-q84f-r7vh.json +++ b/advisories/unreviewed/2022/05/GHSA-mf48-q84f-r7vh/GHSA-mf48-q84f-r7vh.json @@ -7,12 +7,8 @@ "CVE-2021-2126" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is Prior to 6.1.18. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle VM VirtualBox accessible data. CVSS 3.1 Base Score 6.0 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mfv5-8vh8-pcqg/GHSA-mfv5-8vh8-pcqg.json b/advisories/unreviewed/2022/05/GHSA-mfv5-8vh8-pcqg/GHSA-mfv5-8vh8-pcqg.json index 457112daf76..109e68707e8 100644 --- a/advisories/unreviewed/2022/05/GHSA-mfv5-8vh8-pcqg/GHSA-mfv5-8vh8-pcqg.json +++ b/advisories/unreviewed/2022/05/GHSA-mfv5-8vh8-pcqg/GHSA-mfv5-8vh8-pcqg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mgqr-c833-xp4f/GHSA-mgqr-c833-xp4f.json b/advisories/unreviewed/2022/05/GHSA-mgqr-c833-xp4f/GHSA-mgqr-c833-xp4f.json index 97f7f37b5c9..458b45eb4e7 100644 --- a/advisories/unreviewed/2022/05/GHSA-mgqr-c833-xp4f/GHSA-mgqr-c833-xp4f.json +++ b/advisories/unreviewed/2022/05/GHSA-mgqr-c833-xp4f/GHSA-mgqr-c833-xp4f.json @@ -7,12 +7,8 @@ "CVE-2021-2067" ], "details": "Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Outside In Filters). Supported versions that are affected are 8.5.4 and 8.5.5. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Outside In Technology. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Outside In Technology accessible data as well as unauthorized read access to a subset of Oracle Outside In Technology accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Outside In Technology. Note: Outside In Technology is a suite of software development kits (SDKs). The protocol and CVSS score depend on the software that uses the Outside In Technology code. The CVSS score assumes that the software passes data received over a network directly to Outside In Technology code, but if data is not received over a network the CVSS score may be lower. CVSS 3.1 Base Score 8.6 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:L).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mgv2-3v5v-fffv/GHSA-mgv2-3v5v-fffv.json b/advisories/unreviewed/2022/05/GHSA-mgv2-3v5v-fffv/GHSA-mgv2-3v5v-fffv.json index 561cd485b60..6ea4a835a12 100644 --- a/advisories/unreviewed/2022/05/GHSA-mgv2-3v5v-fffv/GHSA-mgv2-3v5v-fffv.json +++ b/advisories/unreviewed/2022/05/GHSA-mgv2-3v5v-fffv/GHSA-mgv2-3v5v-fffv.json @@ -7,12 +7,8 @@ "CVE-2021-0359" ], "details": "In netdiag, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Product: Android; Versions: Android-11; Patch ID: ALPS05442011.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mh9v-6mm6-9gm4/GHSA-mh9v-6mm6-9gm4.json b/advisories/unreviewed/2022/05/GHSA-mh9v-6mm6-9gm4/GHSA-mh9v-6mm6-9gm4.json index c052bf594a1..3609d990054 100644 --- a/advisories/unreviewed/2022/05/GHSA-mh9v-6mm6-9gm4/GHSA-mh9v-6mm6-9gm4.json +++ b/advisories/unreviewed/2022/05/GHSA-mh9v-6mm6-9gm4/GHSA-mh9v-6mm6-9gm4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mhfr-p8x5-2hr8/GHSA-mhfr-p8x5-2hr8.json b/advisories/unreviewed/2022/05/GHSA-mhfr-p8x5-2hr8/GHSA-mhfr-p8x5-2hr8.json index 7714955e90d..60e1c18f7ee 100644 --- a/advisories/unreviewed/2022/05/GHSA-mhfr-p8x5-2hr8/GHSA-mhfr-p8x5-2hr8.json +++ b/advisories/unreviewed/2022/05/GHSA-mhfr-p8x5-2hr8/GHSA-mhfr-p8x5-2hr8.json @@ -7,12 +7,8 @@ "CVE-2020-35845" ], "details": "FastStone Image Viewer 7.5 has an out-of-bounds write (via a crafted image file) at FSViewer.exe+0x96cf.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mhmg-wv9c-8hpm/GHSA-mhmg-wv9c-8hpm.json b/advisories/unreviewed/2022/05/GHSA-mhmg-wv9c-8hpm/GHSA-mhmg-wv9c-8hpm.json index c6ad8007c1e..c71d641af2e 100644 --- a/advisories/unreviewed/2022/05/GHSA-mhmg-wv9c-8hpm/GHSA-mhmg-wv9c-8hpm.json +++ b/advisories/unreviewed/2022/05/GHSA-mhmg-wv9c-8hpm/GHSA-mhmg-wv9c-8hpm.json @@ -7,12 +7,8 @@ "CVE-2021-20620" ], "details": "Cross-site scripting vulnerability in Aterm WF800HP firmware Ver1.0.9 and earlier allows remote attackers to inject an arbitrary script via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mjqr-4qcm-8x7g/GHSA-mjqr-4qcm-8x7g.json b/advisories/unreviewed/2022/05/GHSA-mjqr-4qcm-8x7g/GHSA-mjqr-4qcm-8x7g.json index 0a15b189d8c..6b75a2a856d 100644 --- a/advisories/unreviewed/2022/05/GHSA-mjqr-4qcm-8x7g/GHSA-mjqr-4qcm-8x7g.json +++ b/advisories/unreviewed/2022/05/GHSA-mjqr-4qcm-8x7g/GHSA-mjqr-4qcm-8x7g.json @@ -7,12 +7,8 @@ "CVE-2020-20269" ], "details": "A specially crafted Markdown document could cause the execution of malicious JavaScript code in Caret Editor before 4.0.0-rc22.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mmc3-577w-fqfg/GHSA-mmc3-577w-fqfg.json b/advisories/unreviewed/2022/05/GHSA-mmc3-577w-fqfg/GHSA-mmc3-577w-fqfg.json index 718a28decad..4ec042ba62f 100644 --- a/advisories/unreviewed/2022/05/GHSA-mmc3-577w-fqfg/GHSA-mmc3-577w-fqfg.json +++ b/advisories/unreviewed/2022/05/GHSA-mmc3-577w-fqfg/GHSA-mmc3-577w-fqfg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mpxx-6gg7-w2hx/GHSA-mpxx-6gg7-w2hx.json b/advisories/unreviewed/2022/05/GHSA-mpxx-6gg7-w2hx/GHSA-mpxx-6gg7-w2hx.json index 6b605aa0622..2140ba14401 100644 --- a/advisories/unreviewed/2022/05/GHSA-mpxx-6gg7-w2hx/GHSA-mpxx-6gg7-w2hx.json +++ b/advisories/unreviewed/2022/05/GHSA-mpxx-6gg7-w2hx/GHSA-mpxx-6gg7-w2hx.json @@ -7,12 +7,8 @@ "CVE-2020-11149" ], "details": "Out of bound access due to usage of an out-of-range pointer offset in the camera driver. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mrfc-9mg9-58q3/GHSA-mrfc-9mg9-58q3.json b/advisories/unreviewed/2022/05/GHSA-mrfc-9mg9-58q3/GHSA-mrfc-9mg9-58q3.json index 6f0ef4777d9..40b47af932e 100644 --- a/advisories/unreviewed/2022/05/GHSA-mrfc-9mg9-58q3/GHSA-mrfc-9mg9-58q3.json +++ b/advisories/unreviewed/2022/05/GHSA-mrfc-9mg9-58q3/GHSA-mrfc-9mg9-58q3.json @@ -7,12 +7,8 @@ "CVE-2021-2050" ], "details": "Vulnerability in the Oracle BI Publisher product of Oracle Fusion Middleware (component: E-Business Suite - XDO). Supported versions that are affected are 5.5.0.0.0, 11.1.1.9.0, 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle BI Publisher. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle BI Publisher accessible data as well as unauthorized update, insert or delete access to some of Oracle BI Publisher accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Oracle BI Publisher. CVSS 3.1 Base Score 7.6 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mvq5-g7h7-8rg5/GHSA-mvq5-g7h7-8rg5.json b/advisories/unreviewed/2022/05/GHSA-mvq5-g7h7-8rg5/GHSA-mvq5-g7h7-8rg5.json index ac2158102d0..9ac660a23e7 100644 --- a/advisories/unreviewed/2022/05/GHSA-mvq5-g7h7-8rg5/GHSA-mvq5-g7h7-8rg5.json +++ b/advisories/unreviewed/2022/05/GHSA-mvq5-g7h7-8rg5/GHSA-mvq5-g7h7-8rg5.json @@ -7,12 +7,8 @@ "CVE-2020-4881" ], "details": "IBM Planning Analytics 2.0 could allow a remote attacker to obtain sensitive information, caused by the lack of server hostname verification for SSL/TLS communication. By sending a specially-crafted request, an attacker could exploit this vulnerability to obtain sensitive information. IBM X-Force ID: 190851.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mx42-6263-7pm2/GHSA-mx42-6263-7pm2.json b/advisories/unreviewed/2022/05/GHSA-mx42-6263-7pm2/GHSA-mx42-6263-7pm2.json index 9b4f707009a..b4eebfc578e 100644 --- a/advisories/unreviewed/2022/05/GHSA-mx42-6263-7pm2/GHSA-mx42-6263-7pm2.json +++ b/advisories/unreviewed/2022/05/GHSA-mx42-6263-7pm2/GHSA-mx42-6263-7pm2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mxfj-3796-w53x/GHSA-mxfj-3796-w53x.json b/advisories/unreviewed/2022/05/GHSA-mxfj-3796-w53x/GHSA-mxfj-3796-w53x.json index 73f626399ae..5dcb178b044 100644 --- a/advisories/unreviewed/2022/05/GHSA-mxfj-3796-w53x/GHSA-mxfj-3796-w53x.json +++ b/advisories/unreviewed/2022/05/GHSA-mxfj-3796-w53x/GHSA-mxfj-3796-w53x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mxww-cpwx-rp55/GHSA-mxww-cpwx-rp55.json b/advisories/unreviewed/2022/05/GHSA-mxww-cpwx-rp55/GHSA-mxww-cpwx-rp55.json index c14db97a398..b2ec1a30dcf 100644 --- a/advisories/unreviewed/2022/05/GHSA-mxww-cpwx-rp55/GHSA-mxww-cpwx-rp55.json +++ b/advisories/unreviewed/2022/05/GHSA-mxww-cpwx-rp55/GHSA-mxww-cpwx-rp55.json @@ -7,12 +7,8 @@ "CVE-2020-36011" ], "details": "A cross-site scripting (XSS) issue in Add Patient Form in QDOCS Smart Hospital Management System 3.1 allows a remote attacker to inject arbitrary code via the Name, Guardian Name, Email, Address, Remarks, or Any Known Allergies field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p2mv-74m8-hvq8/GHSA-p2mv-74m8-hvq8.json b/advisories/unreviewed/2022/05/GHSA-p2mv-74m8-hvq8/GHSA-p2mv-74m8-hvq8.json index 987c035b2f6..607b093189e 100644 --- a/advisories/unreviewed/2022/05/GHSA-p2mv-74m8-hvq8/GHSA-p2mv-74m8-hvq8.json +++ b/advisories/unreviewed/2022/05/GHSA-p2mv-74m8-hvq8/GHSA-p2mv-74m8-hvq8.json @@ -7,12 +7,8 @@ "CVE-2020-14360" ], "details": "A flaw was found in the X.Org Server before version 1.20.10. An out-of-bounds access in the XkbSetMap function may lead to a privilege escalation vulnerability. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p2v2-rj88-4vrj/GHSA-p2v2-rj88-4vrj.json b/advisories/unreviewed/2022/05/GHSA-p2v2-rj88-4vrj/GHSA-p2v2-rj88-4vrj.json index f858ae4ae3c..305035fea4f 100644 --- a/advisories/unreviewed/2022/05/GHSA-p2v2-rj88-4vrj/GHSA-p2v2-rj88-4vrj.json +++ b/advisories/unreviewed/2022/05/GHSA-p2v2-rj88-4vrj/GHSA-p2v2-rj88-4vrj.json @@ -7,12 +7,8 @@ "CVE-2021-3186" ], "details": "A Stored Cross-site scripting (XSS) vulnerability in /main.html Wifi Settings in Tenda AC5 AC1200 version V15.03.06.47_multi allows remote attackers to inject arbitrary web script or HTML via the Wifi Name parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p2w9-g2w7-8fw9/GHSA-p2w9-g2w7-8fw9.json b/advisories/unreviewed/2022/05/GHSA-p2w9-g2w7-8fw9/GHSA-p2w9-g2w7-8fw9.json index 1acdde5510c..a1db1553ec2 100644 --- a/advisories/unreviewed/2022/05/GHSA-p2w9-g2w7-8fw9/GHSA-p2w9-g2w7-8fw9.json +++ b/advisories/unreviewed/2022/05/GHSA-p2w9-g2w7-8fw9/GHSA-p2w9-g2w7-8fw9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p3rh-pfh4-2cvw/GHSA-p3rh-pfh4-2cvw.json b/advisories/unreviewed/2022/05/GHSA-p3rh-pfh4-2cvw/GHSA-p3rh-pfh4-2cvw.json index 9a854dd1c8d..b941bc5e57d 100644 --- a/advisories/unreviewed/2022/05/GHSA-p3rh-pfh4-2cvw/GHSA-p3rh-pfh4-2cvw.json +++ b/advisories/unreviewed/2022/05/GHSA-p3rh-pfh4-2cvw/GHSA-p3rh-pfh4-2cvw.json @@ -7,12 +7,8 @@ "CVE-2020-3685" ], "details": "Pointer variable which is freed is not cleared can result in memory corruption and leads to denial of service in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p48g-p6gh-8qfq/GHSA-p48g-p6gh-8qfq.json b/advisories/unreviewed/2022/05/GHSA-p48g-p6gh-8qfq/GHSA-p48g-p6gh-8qfq.json index d80cdfc6029..9d9eabfdb42 100644 --- a/advisories/unreviewed/2022/05/GHSA-p48g-p6gh-8qfq/GHSA-p48g-p6gh-8qfq.json +++ b/advisories/unreviewed/2022/05/GHSA-p48g-p6gh-8qfq/GHSA-p48g-p6gh-8qfq.json @@ -7,12 +7,8 @@ "CVE-2020-23162" ], "details": "Sensitive information disclosure and weak encryption in Pyrescom Termod4 time management devices before 10.04k allows remote attackers to read a session-file and obtain plain-text user credentials.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p4qg-w83v-686g/GHSA-p4qg-w83v-686g.json b/advisories/unreviewed/2022/05/GHSA-p4qg-w83v-686g/GHSA-p4qg-w83v-686g.json index 53c6a19ac11..6354af3db0b 100644 --- a/advisories/unreviewed/2022/05/GHSA-p4qg-w83v-686g/GHSA-p4qg-w83v-686g.json +++ b/advisories/unreviewed/2022/05/GHSA-p4qg-w83v-686g/GHSA-p4qg-w83v-686g.json @@ -7,12 +7,8 @@ "CVE-2020-4871" ], "details": "IBM Planning Analytics 2.0 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 190834.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p4r2-47rh-qjj4/GHSA-p4r2-47rh-qjj4.json b/advisories/unreviewed/2022/05/GHSA-p4r2-47rh-qjj4/GHSA-p4r2-47rh-qjj4.json index facd020cf5f..d1b5f2e98ac 100644 --- a/advisories/unreviewed/2022/05/GHSA-p4r2-47rh-qjj4/GHSA-p4r2-47rh-qjj4.json +++ b/advisories/unreviewed/2022/05/GHSA-p4r2-47rh-qjj4/GHSA-p4r2-47rh-qjj4.json @@ -7,12 +7,8 @@ "CVE-2020-4967" ], "details": "IBM Cloud Pak for Security (CP4S) 1.3.0.1 could disclose sensitive information through HTTP headers which could be used in further attacks against the system. IBM X-Force ID: 192425.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p4v2-w6qq-pp7v/GHSA-p4v2-w6qq-pp7v.json b/advisories/unreviewed/2022/05/GHSA-p4v2-w6qq-pp7v/GHSA-p4v2-w6qq-pp7v.json index fc28276a244..ced871b3e95 100644 --- a/advisories/unreviewed/2022/05/GHSA-p4v2-w6qq-pp7v/GHSA-p4v2-w6qq-pp7v.json +++ b/advisories/unreviewed/2022/05/GHSA-p4v2-w6qq-pp7v/GHSA-p4v2-w6qq-pp7v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p4xw-fwjm-wh6h/GHSA-p4xw-fwjm-wh6h.json b/advisories/unreviewed/2022/05/GHSA-p4xw-fwjm-wh6h/GHSA-p4xw-fwjm-wh6h.json index 169c09203ed..ee938e412c3 100644 --- a/advisories/unreviewed/2022/05/GHSA-p4xw-fwjm-wh6h/GHSA-p4xw-fwjm-wh6h.json +++ b/advisories/unreviewed/2022/05/GHSA-p4xw-fwjm-wh6h/GHSA-p4xw-fwjm-wh6h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p5jr-488h-j8p7/GHSA-p5jr-488h-j8p7.json b/advisories/unreviewed/2022/05/GHSA-p5jr-488h-j8p7/GHSA-p5jr-488h-j8p7.json index 5cea8c348bd..9130d6bd0ee 100644 --- a/advisories/unreviewed/2022/05/GHSA-p5jr-488h-j8p7/GHSA-p5jr-488h-j8p7.json +++ b/advisories/unreviewed/2022/05/GHSA-p5jr-488h-j8p7/GHSA-p5jr-488h-j8p7.json @@ -7,12 +7,8 @@ "CVE-2020-27274" ], "details": "Some parsing functions in the affected product do not check the return value of malloc and the thread handling the message is forced to close, which may lead to a denial-of-service condition on the OPC UA Tunneller (versions prior to 6.3.0.8233).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p5w4-hfvc-v2c8/GHSA-p5w4-hfvc-v2c8.json b/advisories/unreviewed/2022/05/GHSA-p5w4-hfvc-v2c8/GHSA-p5w4-hfvc-v2c8.json index 5bd48114b98..5543f57b420 100644 --- a/advisories/unreviewed/2022/05/GHSA-p5w4-hfvc-v2c8/GHSA-p5w4-hfvc-v2c8.json +++ b/advisories/unreviewed/2022/05/GHSA-p5w4-hfvc-v2c8/GHSA-p5w4-hfvc-v2c8.json @@ -7,12 +7,8 @@ "CVE-2021-0360" ], "details": "In netdiag, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Product: Android; Versions: Android-11; Patch ID: ALPS05442006.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p669-fw7h-w3hf/GHSA-p669-fw7h-w3hf.json b/advisories/unreviewed/2022/05/GHSA-p669-fw7h-w3hf/GHSA-p669-fw7h-w3hf.json index 882d7048bd8..36ed75b0c46 100644 --- a/advisories/unreviewed/2022/05/GHSA-p669-fw7h-w3hf/GHSA-p669-fw7h-w3hf.json +++ b/advisories/unreviewed/2022/05/GHSA-p669-fw7h-w3hf/GHSA-p669-fw7h-w3hf.json @@ -7,12 +7,8 @@ "CVE-2020-23342" ], "details": "A CSRF vulnerability exists in Anchor CMS 0.12.7 anchor/views/users/edit.php that can change the Delete admin users.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p6hg-pmvw-h64j/GHSA-p6hg-pmvw-h64j.json b/advisories/unreviewed/2022/05/GHSA-p6hg-pmvw-h64j/GHSA-p6hg-pmvw-h64j.json index b4ea0672575..88d9eeb1513 100644 --- a/advisories/unreviewed/2022/05/GHSA-p6hg-pmvw-h64j/GHSA-p6hg-pmvw-h64j.json +++ b/advisories/unreviewed/2022/05/GHSA-p6hg-pmvw-h64j/GHSA-p6hg-pmvw-h64j.json @@ -7,12 +7,8 @@ "CVE-2021-2000" ], "details": "Vulnerability in the Unified Audit component of Oracle Database Server. Supported versions that are affected are 12.1.0.2, 12.2.0.1, 18c and 19c. Easily exploitable vulnerability allows high privileged attacker having SYS Account privilege with network access via Oracle Net to compromise Unified Audit. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Unified Audit accessible data. CVSS 3.1 Base Score 2.4 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p7pp-gqpg-99cg/GHSA-p7pp-gqpg-99cg.json b/advisories/unreviewed/2022/05/GHSA-p7pp-gqpg-99cg/GHSA-p7pp-gqpg-99cg.json index 5cf435f41c7..94334a87f2e 100644 --- a/advisories/unreviewed/2022/05/GHSA-p7pp-gqpg-99cg/GHSA-p7pp-gqpg-99cg.json +++ b/advisories/unreviewed/2022/05/GHSA-p7pp-gqpg-99cg/GHSA-p7pp-gqpg-99cg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pcp9-3jpm-8q4g/GHSA-pcp9-3jpm-8q4g.json b/advisories/unreviewed/2022/05/GHSA-pcp9-3jpm-8q4g/GHSA-pcp9-3jpm-8q4g.json index c7cdf1c764c..6991bfdf348 100644 --- a/advisories/unreviewed/2022/05/GHSA-pcp9-3jpm-8q4g/GHSA-pcp9-3jpm-8q4g.json +++ b/advisories/unreviewed/2022/05/GHSA-pcp9-3jpm-8q4g/GHSA-pcp9-3jpm-8q4g.json @@ -7,12 +7,8 @@ "CVE-2021-1248" ], "details": "Multiple vulnerabilities in certain REST API endpoints of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remote attacker to execute arbitrary SQL commands on an affected device.\n For more information about these vulnerabilities, see the Details section of this advisory.\n ", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pf53-rq8f-rwqx/GHSA-pf53-rq8f-rwqx.json b/advisories/unreviewed/2022/05/GHSA-pf53-rq8f-rwqx/GHSA-pf53-rq8f-rwqx.json index aabff87a69f..7a07be95dfb 100644 --- a/advisories/unreviewed/2022/05/GHSA-pf53-rq8f-rwqx/GHSA-pf53-rq8f-rwqx.json +++ b/advisories/unreviewed/2022/05/GHSA-pf53-rq8f-rwqx/GHSA-pf53-rq8f-rwqx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pfhc-q2fx-w3r6/GHSA-pfhc-q2fx-w3r6.json b/advisories/unreviewed/2022/05/GHSA-pfhc-q2fx-w3r6/GHSA-pfhc-q2fx-w3r6.json index 8c4da9c0ca6..4f370f32c5e 100644 --- a/advisories/unreviewed/2022/05/GHSA-pfhc-q2fx-w3r6/GHSA-pfhc-q2fx-w3r6.json +++ b/advisories/unreviewed/2022/05/GHSA-pfhc-q2fx-w3r6/GHSA-pfhc-q2fx-w3r6.json @@ -7,12 +7,8 @@ "CVE-2020-4889" ], "details": "IBM Spectrum Scale 5.0.0 through 5.0.5.4 and 5.1.0 could allow a local user to poison log files which could impact support and development efforts. IBM X-Force ID: 190971.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pg8h-w6r7-prw8/GHSA-pg8h-w6r7-prw8.json b/advisories/unreviewed/2022/05/GHSA-pg8h-w6r7-prw8/GHSA-pg8h-w6r7-prw8.json index 159e04b856a..1cb03ecdeaa 100644 --- a/advisories/unreviewed/2022/05/GHSA-pg8h-w6r7-prw8/GHSA-pg8h-w6r7-prw8.json +++ b/advisories/unreviewed/2022/05/GHSA-pg8h-w6r7-prw8/GHSA-pg8h-w6r7-prw8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pmg3-799q-7mhw/GHSA-pmg3-799q-7mhw.json b/advisories/unreviewed/2022/05/GHSA-pmg3-799q-7mhw/GHSA-pmg3-799q-7mhw.json index 175421722e7..2763b372745 100644 --- a/advisories/unreviewed/2022/05/GHSA-pmg3-799q-7mhw/GHSA-pmg3-799q-7mhw.json +++ b/advisories/unreviewed/2022/05/GHSA-pmg3-799q-7mhw/GHSA-pmg3-799q-7mhw.json @@ -7,12 +7,8 @@ "CVE-2021-3309" ], "details": "packages/wekan-ldap/server/ldap.js in Wekan before 4.87 can process connections even though they are not authorized by the Certification Authority trust store,", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pmp4-m9v4-rh9x/GHSA-pmp4-m9v4-rh9x.json b/advisories/unreviewed/2022/05/GHSA-pmp4-m9v4-rh9x/GHSA-pmp4-m9v4-rh9x.json index ba4ceb9d5f1..3247b92924b 100644 --- a/advisories/unreviewed/2022/05/GHSA-pmp4-m9v4-rh9x/GHSA-pmp4-m9v4-rh9x.json +++ b/advisories/unreviewed/2022/05/GHSA-pmp4-m9v4-rh9x/GHSA-pmp4-m9v4-rh9x.json @@ -7,12 +7,8 @@ "CVE-2020-11217" ], "details": "A possible double free or invalid memory access in audio driver while reading Speaker Protection parameters in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pmqf-7mjc-42fw/GHSA-pmqf-7mjc-42fw.json b/advisories/unreviewed/2022/05/GHSA-pmqf-7mjc-42fw/GHSA-pmqf-7mjc-42fw.json index 711b73633c9..24c29fe8f29 100644 --- a/advisories/unreviewed/2022/05/GHSA-pmqf-7mjc-42fw/GHSA-pmqf-7mjc-42fw.json +++ b/advisories/unreviewed/2022/05/GHSA-pmqf-7mjc-42fw/GHSA-pmqf-7mjc-42fw.json @@ -7,12 +7,8 @@ "CVE-2020-5626" ], "details": "Logstorage version 8.0.0 and earlier, and ELC Analytics version 3.0.0 and earlier allow remote attackers to execute arbitrary OS commands via a specially crafted log file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ppc8-jm88-74j3/GHSA-ppc8-jm88-74j3.json b/advisories/unreviewed/2022/05/GHSA-ppc8-jm88-74j3/GHSA-ppc8-jm88-74j3.json index d2b4ee34a46..ffc2397bcaa 100644 --- a/advisories/unreviewed/2022/05/GHSA-ppc8-jm88-74j3/GHSA-ppc8-jm88-74j3.json +++ b/advisories/unreviewed/2022/05/GHSA-ppc8-jm88-74j3/GHSA-ppc8-jm88-74j3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pqwj-3wvm-qp88/GHSA-pqwj-3wvm-qp88.json b/advisories/unreviewed/2022/05/GHSA-pqwj-3wvm-qp88/GHSA-pqwj-3wvm-qp88.json index da224a3ec29..17754a91da7 100644 --- a/advisories/unreviewed/2022/05/GHSA-pqwj-3wvm-qp88/GHSA-pqwj-3wvm-qp88.json +++ b/advisories/unreviewed/2022/05/GHSA-pqwj-3wvm-qp88/GHSA-pqwj-3wvm-qp88.json @@ -7,12 +7,8 @@ "CVE-2020-19363" ], "details": "Vtiger CRM v7.2.0 allows an attacker to display hidden files, list directories by using /libraries and /layout directories.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pv65-5ch3-jfhw/GHSA-pv65-5ch3-jfhw.json b/advisories/unreviewed/2022/05/GHSA-pv65-5ch3-jfhw/GHSA-pv65-5ch3-jfhw.json index 9d4e0c0c949..dcba4258a32 100644 --- a/advisories/unreviewed/2022/05/GHSA-pv65-5ch3-jfhw/GHSA-pv65-5ch3-jfhw.json +++ b/advisories/unreviewed/2022/05/GHSA-pv65-5ch3-jfhw/GHSA-pv65-5ch3-jfhw.json @@ -7,12 +7,8 @@ "CVE-2020-28488" ], "details": "This affects all versions of package jquery-ui; all versions of package org.fujion.webjars:jquery-ui.\n When the \"dialog\" is injected into an HTML tag more than once, the browser and the application may crash.\n", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pv77-wcvm-2654/GHSA-pv77-wcvm-2654.json b/advisories/unreviewed/2022/05/GHSA-pv77-wcvm-2654/GHSA-pv77-wcvm-2654.json index aea52633d98..a4ebc922a62 100644 --- a/advisories/unreviewed/2022/05/GHSA-pv77-wcvm-2654/GHSA-pv77-wcvm-2654.json +++ b/advisories/unreviewed/2022/05/GHSA-pv77-wcvm-2654/GHSA-pv77-wcvm-2654.json @@ -7,12 +7,8 @@ "CVE-2021-2023" ], "details": "Vulnerability in the Oracle Installed Base product of Oracle E-Business Suite (component: APIs). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Installed Base. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Installed Base, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Installed Base accessible data. CVSS 3.1 Base Score 4.7 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pvhr-37pj-qc85/GHSA-pvhr-37pj-qc85.json b/advisories/unreviewed/2022/05/GHSA-pvhr-37pj-qc85/GHSA-pvhr-37pj-qc85.json index 691e0660866..96a75d0f627 100644 --- a/advisories/unreviewed/2022/05/GHSA-pvhr-37pj-qc85/GHSA-pvhr-37pj-qc85.json +++ b/advisories/unreviewed/2022/05/GHSA-pvhr-37pj-qc85/GHSA-pvhr-37pj-qc85.json @@ -7,12 +7,8 @@ "CVE-2020-12514" ], "details": "Pepperl+Fuchs Comtrol IO-Link Master in Version 1.5.48 and below is prone to a NULL Pointer Dereference that leads to a DoS in discoveryd", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pvr4-94gv-f258/GHSA-pvr4-94gv-f258.json b/advisories/unreviewed/2022/05/GHSA-pvr4-94gv-f258/GHSA-pvr4-94gv-f258.json index 230edb26df3..b4fe0df416d 100644 --- a/advisories/unreviewed/2022/05/GHSA-pvr4-94gv-f258/GHSA-pvr4-94gv-f258.json +++ b/advisories/unreviewed/2022/05/GHSA-pvr4-94gv-f258/GHSA-pvr4-94gv-f258.json @@ -7,12 +7,8 @@ "CVE-2021-2118" ], "details": "Vulnerability in the Oracle Marketing product of Oracle E-Business Suite (component: Marketing Administration). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Marketing. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Marketing, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Marketing accessible data as well as unauthorized update, insert or delete access to some of Oracle Marketing accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-px4x-jp5g-9393/GHSA-px4x-jp5g-9393.json b/advisories/unreviewed/2022/05/GHSA-px4x-jp5g-9393/GHSA-px4x-jp5g-9393.json index 5d0a2216f9e..e1b286d0447 100644 --- a/advisories/unreviewed/2022/05/GHSA-px4x-jp5g-9393/GHSA-px4x-jp5g-9393.json +++ b/advisories/unreviewed/2022/05/GHSA-px4x-jp5g-9393/GHSA-px4x-jp5g-9393.json @@ -7,12 +7,8 @@ "CVE-2021-0222" ], "details": "A vulnerability in Juniper Networks Junos OS allows an attacker to cause a Denial of Service (DoS) to the device by sending certain crafted protocol packets from an adjacent device with invalid payloads to the device. These crafted packets, which should be discarded, are instead replicated and sent to the RE. Over time, a Denial of Service (DoS) occurs. Continued receipt of these crafted protocol packets will cause an extended Denial of Service (DoS) condition, which may cause wider traffic impact due to protocol flapping. An indication of compromise is to check \"monitor interface traffic\" on the ingress and egress port packet counts. For each ingress packet, two duplicate packets are seen on egress. This issue can be triggered by IPv4 and IPv6 packets. This issue affects all traffic through the device. This issue affects: Juniper Networks Junos OS: 14.1X53 versions prior to 14.1X53-D53 on EX4300, QFX3500, QFX5100, EX4600; 15.1 versions prior to 15.1R7-S6 on EX4300, QFX3500, QFX5100, EX4600; 16.1 versions prior to 16.1R7-S7 on EX4300, QFX5100, EX4600; 17.1 versions prior to 17.1R2-S11 on EX4300, QFX5100, EX4600; 17.1 versions prior to 117.1R3-S2 on EX4300; 17.2 versions prior to 17.2R1-S9 on EX4300; 17.2 versions prior to 17.2R3-S3 on EX4300, QFX5100, EX4600, QFX5110, QFX5200; 17.3 versions prior to 17.3R2-S5, 17.3R3-S7 on EX4300, QFX5100, EX4600, QFX5110, QFX5200; 17.4 versions prior to 17.4R2-S9, 17.4R3 on EX4300, QFX5100, EX4600, QFX5110, QFX5200; 18.1 versions prior to 18.1R3-S9 on EX4300, QFX5100, EX4600, QFX5110, QFX5200, QFX5210, EX2300, EX3400; 18.2 versions prior to 18.2R2-S7 on EX4300; 18.2 versions prior to 18.2R3-S3 on EX4300, QFX5100, EX4600, QFX5110, QFX5200, QFX5210, EX2300, EX3400; 18.3 versions prior to 18.3R2-S3, on EX4300; 18.3 versions prior to 18.3R1-S7, 18.3R3-S1 on EX4300, QFX5100, EX4600, QFX5110, QFX5200, QFX5210, QFX5120, EX4650, EX2300, EX3400; 18.4 versions prior to 18.4R1-S5, 18.4R2-S3, 18.4R3 on EX4300, QFX5100, EX4600, QFX5110, QFX5200, QFX5210, QFX5120, EX4650, EX2300, EX3400; 19.1 versions prior to 19.1R1-S4, 19.1R2-S1, 19.1R3 on EX4300, QFX5100, EX4600, QFX5110, QFX5200, QFX5210, QFX5120, EX4650, EX2300, EX3400; 19.2 versions prior to 19.2R1-S4, 19.2R2 on EX4300; 19.2 versions prior to 19.2R1-S3, 19.2R2 on QFX5100, EX4600, QFX5110, QFX5200, QFX5210, QFX5120, EX4650, EX2300, EX3400; 19.3 versions prior to 19.3R2-S1, 19.3R3 on EX4300; 19.3 versions prior to 19.3R1-S1, 19.3R2, 19.3R3 on QFX5100, EX4600, QFX5110, QFX5200, QFX5210, QFX5120, EX4650, EX2300, EX3400;", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q3c6-pmx6-78ph/GHSA-q3c6-pmx6-78ph.json b/advisories/unreviewed/2022/05/GHSA-q3c6-pmx6-78ph/GHSA-q3c6-pmx6-78ph.json index dd2a5de3b2f..a010a3b6cf2 100644 --- a/advisories/unreviewed/2022/05/GHSA-q3c6-pmx6-78ph/GHSA-q3c6-pmx6-78ph.json +++ b/advisories/unreviewed/2022/05/GHSA-q3c6-pmx6-78ph/GHSA-q3c6-pmx6-78ph.json @@ -7,12 +7,8 @@ "CVE-2021-2058" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Locking). Supported versions that are affected are 8.0.22 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q3rg-74f5-f285/GHSA-q3rg-74f5-f285.json b/advisories/unreviewed/2022/05/GHSA-q3rg-74f5-f285/GHSA-q3rg-74f5-f285.json index 37cafeb9548..ee3feef363c 100644 --- a/advisories/unreviewed/2022/05/GHSA-q3rg-74f5-f285/GHSA-q3rg-74f5-f285.json +++ b/advisories/unreviewed/2022/05/GHSA-q3rg-74f5-f285/GHSA-q3rg-74f5-f285.json @@ -7,12 +7,8 @@ "CVE-2020-4888" ], "details": "IBM QRadar SIEM 7.4.0 to 7.4.2 Patch 1 and 7.3.0 to 7.3.3 Patch 7 could allow a remote attacker to execute arbitrary commands on the system, caused by insecure deserialization of user-supplied content by the Java deserialization function. By sending a malicious serialized Java object, an attacker could exploit this vulnerability to execute arbitrary commands on the system. IBM X-Force ID: 190912.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q4rq-wjvw-rh5x/GHSA-q4rq-wjvw-rh5x.json b/advisories/unreviewed/2022/05/GHSA-q4rq-wjvw-rh5x/GHSA-q4rq-wjvw-rh5x.json index d1e755dbfcc..cb014ef73c5 100644 --- a/advisories/unreviewed/2022/05/GHSA-q4rq-wjvw-rh5x/GHSA-q4rq-wjvw-rh5x.json +++ b/advisories/unreviewed/2022/05/GHSA-q4rq-wjvw-rh5x/GHSA-q4rq-wjvw-rh5x.json @@ -7,12 +7,8 @@ "CVE-2020-28405" ], "details": "An improper authorization vulnerability exists in Star Practice Management Web version 2019.2.0.6, allowing an unauthorized user to change the privileges of any user of the application. This can be used to grant himself the administrative role or remove all administrative accounts of the application.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q5g9-g6pf-f7fc/GHSA-q5g9-g6pf-f7fc.json b/advisories/unreviewed/2022/05/GHSA-q5g9-g6pf-f7fc/GHSA-q5g9-g6pf-f7fc.json index 7bc5365bcc9..13f350a9214 100644 --- a/advisories/unreviewed/2022/05/GHSA-q5g9-g6pf-f7fc/GHSA-q5g9-g6pf-f7fc.json +++ b/advisories/unreviewed/2022/05/GHSA-q5g9-g6pf-f7fc/GHSA-q5g9-g6pf-f7fc.json @@ -7,12 +7,8 @@ "CVE-2021-1068" ], "details": "NVIDIA SHIELD TV, all versions prior to 8.2.2, contains a vulnerability in the NVDEC component, in which an attacker can read from or write to a memory location that is outside the intended boundary of the buffer, which may lead to denial of service or escalation of privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q5gc-v5g5-xc7w/GHSA-q5gc-v5g5-xc7w.json b/advisories/unreviewed/2022/05/GHSA-q5gc-v5g5-xc7w/GHSA-q5gc-v5g5-xc7w.json index 508f39050d8..9c6205e9d2c 100644 --- a/advisories/unreviewed/2022/05/GHSA-q5gc-v5g5-xc7w/GHSA-q5gc-v5g5-xc7w.json +++ b/advisories/unreviewed/2022/05/GHSA-q5gc-v5g5-xc7w/GHSA-q5gc-v5g5-xc7w.json @@ -7,12 +7,8 @@ "CVE-2020-19361" ], "details": "Reflected XSS in Medintux v2.16.000 CCAM.php by manipulating the mot1 parameter can result in an attacker performing malicious actions to users who open a maliciously crafted link or third-party web page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q5rv-9jv5-mch3/GHSA-q5rv-9jv5-mch3.json b/advisories/unreviewed/2022/05/GHSA-q5rv-9jv5-mch3/GHSA-q5rv-9jv5-mch3.json index ff971b5acb0..02f8155e8cc 100644 --- a/advisories/unreviewed/2022/05/GHSA-q5rv-9jv5-mch3/GHSA-q5rv-9jv5-mch3.json +++ b/advisories/unreviewed/2022/05/GHSA-q5rv-9jv5-mch3/GHSA-q5rv-9jv5-mch3.json @@ -7,12 +7,8 @@ "CVE-2021-2076" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.22 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q6p7-g6cv-v3pc/GHSA-q6p7-g6cv-v3pc.json b/advisories/unreviewed/2022/05/GHSA-q6p7-g6cv-v3pc/GHSA-q6p7-g6cv-v3pc.json index 0923255e09d..75c95ff7eb1 100644 --- a/advisories/unreviewed/2022/05/GHSA-q6p7-g6cv-v3pc/GHSA-q6p7-g6cv-v3pc.json +++ b/advisories/unreviewed/2022/05/GHSA-q6p7-g6cv-v3pc/GHSA-q6p7-g6cv-v3pc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q7fv-gh6c-gjj8/GHSA-q7fv-gh6c-gjj8.json b/advisories/unreviewed/2022/05/GHSA-q7fv-gh6c-gjj8/GHSA-q7fv-gh6c-gjj8.json index c514da81d8a..0cc913b17ae 100644 --- a/advisories/unreviewed/2022/05/GHSA-q7fv-gh6c-gjj8/GHSA-q7fv-gh6c-gjj8.json +++ b/advisories/unreviewed/2022/05/GHSA-q7fv-gh6c-gjj8/GHSA-q7fv-gh6c-gjj8.json @@ -7,12 +7,8 @@ "CVE-2021-1999" ], "details": "Vulnerability in the Oracle ZFS Storage Appliance Kit product of Oracle Systems (component: RAS subsystems). The supported version that is affected is 8.8. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle ZFS Storage Appliance Kit executes to compromise Oracle ZFS Storage Appliance Kit. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle ZFS Storage Appliance Kit, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle ZFS Storage Appliance Kit accessible data. CVSS 3.1 Base Score 5.0 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:C/C:N/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q84m-97hf-554f/GHSA-q84m-97hf-554f.json b/advisories/unreviewed/2022/05/GHSA-q84m-97hf-554f/GHSA-q84m-97hf-554f.json index 73c226a1082..4c5be5180b1 100644 --- a/advisories/unreviewed/2022/05/GHSA-q84m-97hf-554f/GHSA-q84m-97hf-554f.json +++ b/advisories/unreviewed/2022/05/GHSA-q84m-97hf-554f/GHSA-q84m-97hf-554f.json @@ -7,12 +7,8 @@ "CVE-2021-22167" ], "details": "An issue has been discovered in GitLab affecting all versions starting from 12.1. Incorrect headers in specific project page allows attacker to have a temporary read access to the private repository", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q87v-4pg3-cw3m/GHSA-q87v-4pg3-cw3m.json b/advisories/unreviewed/2022/05/GHSA-q87v-4pg3-cw3m/GHSA-q87v-4pg3-cw3m.json index 52f0794e8f9..0ae792222c1 100644 --- a/advisories/unreviewed/2022/05/GHSA-q87v-4pg3-cw3m/GHSA-q87v-4pg3-cw3m.json +++ b/advisories/unreviewed/2022/05/GHSA-q87v-4pg3-cw3m/GHSA-q87v-4pg3-cw3m.json @@ -7,12 +7,8 @@ "CVE-2021-2018" ], "details": "Vulnerability in the Advanced Networking Option component of Oracle Database Server. Supported versions that are affected are 18c and 19c. Difficult to exploit vulnerability allows unauthenticated attacker with network access via Oracle Net to compromise Advanced Networking Option. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Advanced Networking Option, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Advanced Networking Option. Note: CVE-2021-2018 affects Windows platform only. CVSS 3.1 Base Score 8.3 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qj6x-mqqf-cv4q/GHSA-qj6x-mqqf-cv4q.json b/advisories/unreviewed/2022/05/GHSA-qj6x-mqqf-cv4q/GHSA-qj6x-mqqf-cv4q.json index c5bafbec811..f7878b67e8c 100644 --- a/advisories/unreviewed/2022/05/GHSA-qj6x-mqqf-cv4q/GHSA-qj6x-mqqf-cv4q.json +++ b/advisories/unreviewed/2022/05/GHSA-qj6x-mqqf-cv4q/GHSA-qj6x-mqqf-cv4q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qjff-v2rp-4qp6/GHSA-qjff-v2rp-4qp6.json b/advisories/unreviewed/2022/05/GHSA-qjff-v2rp-4qp6/GHSA-qjff-v2rp-4qp6.json index 66653f673fd..2d6a22ddb93 100644 --- a/advisories/unreviewed/2022/05/GHSA-qjff-v2rp-4qp6/GHSA-qjff-v2rp-4qp6.json +++ b/advisories/unreviewed/2022/05/GHSA-qjff-v2rp-4qp6/GHSA-qjff-v2rp-4qp6.json @@ -7,12 +7,8 @@ "CVE-2021-2088" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.22 and prior. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.4 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qmf6-mw8h-6m87/GHSA-qmf6-mw8h-6m87.json b/advisories/unreviewed/2022/05/GHSA-qmf6-mw8h-6m87/GHSA-qmf6-mw8h-6m87.json index 8c8f712919a..275e948d85f 100644 --- a/advisories/unreviewed/2022/05/GHSA-qmf6-mw8h-6m87/GHSA-qmf6-mw8h-6m87.json +++ b/advisories/unreviewed/2022/05/GHSA-qmf6-mw8h-6m87/GHSA-qmf6-mw8h-6m87.json @@ -7,12 +7,8 @@ "CVE-2020-27540" ], "details": "Bash injection vulnerability and bypass of signature verification in Rostelecom CS-C2SHW 5.0.082.1. The camera reads firmware update configuration from SD card file vc\\version.json. fw-sign parameter and from this configuration is directly inserted into a bash command. Firmware update is run automatically if there is special file on the inserted SD card.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qpj5-f88q-x7px/GHSA-qpj5-f88q-x7px.json b/advisories/unreviewed/2022/05/GHSA-qpj5-f88q-x7px/GHSA-qpj5-f88q-x7px.json index 60f194e5468..0f4dfd98212 100644 --- a/advisories/unreviewed/2022/05/GHSA-qpj5-f88q-x7px/GHSA-qpj5-f88q-x7px.json +++ b/advisories/unreviewed/2022/05/GHSA-qpj5-f88q-x7px/GHSA-qpj5-f88q-x7px.json @@ -7,12 +7,8 @@ "CVE-2020-29603" ], "details": "In manage_proj_edit_page.php in MantisBT before 2.24.4, any unprivileged logged-in user can retrieve Private Projects' names via the manage_proj_edit_page.php project_id parameter, without having access to them.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qprq-p274-84fq/GHSA-qprq-p274-84fq.json b/advisories/unreviewed/2022/05/GHSA-qprq-p274-84fq/GHSA-qprq-p274-84fq.json index 1cd3b98c1fc..efdb920b8a6 100644 --- a/advisories/unreviewed/2022/05/GHSA-qprq-p274-84fq/GHSA-qprq-p274-84fq.json +++ b/advisories/unreviewed/2022/05/GHSA-qprq-p274-84fq/GHSA-qprq-p274-84fq.json @@ -7,12 +7,8 @@ "CVE-2020-27297" ], "details": "The affected product is vulnerable to a heap-based buffer overflow, which may allow an attacker to manipulate memory with controlled values and remotely execute code on the OPC UA Tunneller (versions prior to 6.3.0.8233).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qqc3-wjqf-93r6/GHSA-qqc3-wjqf-93r6.json b/advisories/unreviewed/2022/05/GHSA-qqc3-wjqf-93r6/GHSA-qqc3-wjqf-93r6.json index d626fcb4eff..947f515e93a 100644 --- a/advisories/unreviewed/2022/05/GHSA-qqc3-wjqf-93r6/GHSA-qqc3-wjqf-93r6.json +++ b/advisories/unreviewed/2022/05/GHSA-qqc3-wjqf-93r6/GHSA-qqc3-wjqf-93r6.json @@ -7,12 +7,8 @@ "CVE-2020-27284" ], "details": "TPEditor (v1.98 and prior) is vulnerable to two out-of-bounds write instances in the way it processes project files, allowing an attacker to craft a special project file that may permit arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qqjj-78p9-3ggg/GHSA-qqjj-78p9-3ggg.json b/advisories/unreviewed/2022/05/GHSA-qqjj-78p9-3ggg/GHSA-qqjj-78p9-3ggg.json index 8a8cf8637d5..f966898fcfb 100644 --- a/advisories/unreviewed/2022/05/GHSA-qqjj-78p9-3ggg/GHSA-qqjj-78p9-3ggg.json +++ b/advisories/unreviewed/2022/05/GHSA-qqjj-78p9-3ggg/GHSA-qqjj-78p9-3ggg.json @@ -7,12 +7,8 @@ "CVE-2021-2098" ], "details": "Vulnerability in the Oracle Email Center product of Oracle E-Business Suite (component: Message Display). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Email Center. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Email Center, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Email Center accessible data as well as unauthorized update, insert or delete access to some of Oracle Email Center accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qr8g-6983-rmpw/GHSA-qr8g-6983-rmpw.json b/advisories/unreviewed/2022/05/GHSA-qr8g-6983-rmpw/GHSA-qr8g-6983-rmpw.json index dc323a8fd8d..17d22c910c7 100644 --- a/advisories/unreviewed/2022/05/GHSA-qr8g-6983-rmpw/GHSA-qr8g-6983-rmpw.json +++ b/advisories/unreviewed/2022/05/GHSA-qr8g-6983-rmpw/GHSA-qr8g-6983-rmpw.json @@ -7,12 +7,8 @@ "CVE-2020-13134" ], "details": "Tufin SecureChange prior to R19.3 HF3 and R20-1 HF1 are vulnerable to stored XSS. The successful exploitation requires admin privileges (for storing the XSS payload itself), and can exploit (be triggered by) admin users. All TOS versions with SecureChange deployments prior to R19.3 HF3 and R20-1 HF1 are affected. Vulnerabilities were fixed in R19.3 HF3 and R20-1 HF1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qv65-p3rx-5w9r/GHSA-qv65-p3rx-5w9r.json b/advisories/unreviewed/2022/05/GHSA-qv65-p3rx-5w9r/GHSA-qv65-p3rx-5w9r.json index afdd98359c1..f8a2c6663cb 100644 --- a/advisories/unreviewed/2022/05/GHSA-qv65-p3rx-5w9r/GHSA-qv65-p3rx-5w9r.json +++ b/advisories/unreviewed/2022/05/GHSA-qv65-p3rx-5w9r/GHSA-qv65-p3rx-5w9r.json @@ -7,12 +7,8 @@ "CVE-2021-2130" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is Prior to 6.1.18. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle VM VirtualBox. CVSS 3.1 Base Score 4.4 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qw8r-vcwc-vjc9/GHSA-qw8r-vcwc-vjc9.json b/advisories/unreviewed/2022/05/GHSA-qw8r-vcwc-vjc9/GHSA-qw8r-vcwc-vjc9.json index 94e4b7fec63..9d04f843c3c 100644 --- a/advisories/unreviewed/2022/05/GHSA-qw8r-vcwc-vjc9/GHSA-qw8r-vcwc-vjc9.json +++ b/advisories/unreviewed/2022/05/GHSA-qw8r-vcwc-vjc9/GHSA-qw8r-vcwc-vjc9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r26q-7hf9-jh9f/GHSA-r26q-7hf9-jh9f.json b/advisories/unreviewed/2022/05/GHSA-r26q-7hf9-jh9f/GHSA-r26q-7hf9-jh9f.json index 9ba74d7fb74..fa75c79f6f4 100644 --- a/advisories/unreviewed/2022/05/GHSA-r26q-7hf9-jh9f/GHSA-r26q-7hf9-jh9f.json +++ b/advisories/unreviewed/2022/05/GHSA-r26q-7hf9-jh9f/GHSA-r26q-7hf9-jh9f.json @@ -7,12 +7,8 @@ "CVE-2021-25762" ], "details": "In JetBrains Ktor before 1.4.3, HTTP Request Smuggling was possible.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r2qx-v35m-vpwx/GHSA-r2qx-v35m-vpwx.json b/advisories/unreviewed/2022/05/GHSA-r2qx-v35m-vpwx/GHSA-r2qx-v35m-vpwx.json index 6deb33f19a5..d8b472cff7d 100644 --- a/advisories/unreviewed/2022/05/GHSA-r2qx-v35m-vpwx/GHSA-r2qx-v35m-vpwx.json +++ b/advisories/unreviewed/2022/05/GHSA-r2qx-v35m-vpwx/GHSA-r2qx-v35m-vpwx.json @@ -7,12 +7,8 @@ "CVE-2021-2128" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is Prior to 6.1.18. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle VM VirtualBox accessible data. CVSS 3.1 Base Score 6.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r544-rgrc-h989/GHSA-r544-rgrc-h989.json b/advisories/unreviewed/2022/05/GHSA-r544-rgrc-h989/GHSA-r544-rgrc-h989.json index 0926a117a93..1b0dd5dea26 100644 --- a/advisories/unreviewed/2022/05/GHSA-r544-rgrc-h989/GHSA-r544-rgrc-h989.json +++ b/advisories/unreviewed/2022/05/GHSA-r544-rgrc-h989/GHSA-r544-rgrc-h989.json @@ -7,12 +7,8 @@ "CVE-2020-28476" ], "details": "All versions of package tornado are vulnerable to Web Cache Poisoning by using a vector called parameter cloaking. When the attacker can separate query parameters using a semicolon (;), they can cause a difference in the interpretation of the request between the proxy (running with default configuration) and the server. This can result in malicious requests being cached as completely safe ones, as the proxy would usually not see the semicolon as a separator, and therefore would not include it in a cache key of an unkeyed parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r56j-g745-wqmx/GHSA-r56j-g745-wqmx.json b/advisories/unreviewed/2022/05/GHSA-r56j-g745-wqmx/GHSA-r56j-g745-wqmx.json index 5f322070c9b..b71c7a55204 100644 --- a/advisories/unreviewed/2022/05/GHSA-r56j-g745-wqmx/GHSA-r56j-g745-wqmx.json +++ b/advisories/unreviewed/2022/05/GHSA-r56j-g745-wqmx/GHSA-r56j-g745-wqmx.json @@ -7,12 +7,8 @@ "CVE-2021-2066" ], "details": "Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Outside In Filters). Supported versions that are affected are 8.5.4 and 8.5.5. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Outside In Technology. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Outside In Technology accessible data as well as unauthorized read access to a subset of Oracle Outside In Technology accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Outside In Technology. Note: Outside In Technology is a suite of software development kits (SDKs). The protocol and CVSS score depend on the software that uses the Outside In Technology code. The CVSS score assumes that the software passes data received over a network directly to Outside In Technology code, but if data is not received over a network the CVSS score may be lower. CVSS 3.1 Base Score 8.6 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:L).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r62f-j7fr-mvvx/GHSA-r62f-j7fr-mvvx.json b/advisories/unreviewed/2022/05/GHSA-r62f-j7fr-mvvx/GHSA-r62f-j7fr-mvvx.json index 061a8972be5..7e4a34770e1 100644 --- a/advisories/unreviewed/2022/05/GHSA-r62f-j7fr-mvvx/GHSA-r62f-j7fr-mvvx.json +++ b/advisories/unreviewed/2022/05/GHSA-r62f-j7fr-mvvx/GHSA-r62f-j7fr-mvvx.json @@ -7,12 +7,8 @@ "CVE-2020-23776" ], "details": "A SSRF vulnerability exists in Winmail 6.5 in app.php in the key parameter when HTTPS is on. An attacker can use this vulnerability to cause the server to send a request to a specific URL. An attacker can modify the request header 'HOST' value to cause the server to send the request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r64g-5qwv-v2rf/GHSA-r64g-5qwv-v2rf.json b/advisories/unreviewed/2022/05/GHSA-r64g-5qwv-v2rf/GHSA-r64g-5qwv-v2rf.json index 422a6676762..bade90b1310 100644 --- a/advisories/unreviewed/2022/05/GHSA-r64g-5qwv-v2rf/GHSA-r64g-5qwv-v2rf.json +++ b/advisories/unreviewed/2022/05/GHSA-r64g-5qwv-v2rf/GHSA-r64g-5qwv-v2rf.json @@ -7,12 +7,8 @@ "CVE-2021-1133" ], "details": "Multiple vulnerabilities in the REST API endpoint of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remote attacker to view, modify, and delete data without proper authorization.\n For more information about these vulnerabilities, see the Details section of this advisory.\n ", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r7wc-3m9j-jf5m/GHSA-r7wc-3m9j-jf5m.json b/advisories/unreviewed/2022/05/GHSA-r7wc-3m9j-jf5m/GHSA-r7wc-3m9j-jf5m.json index 85278f4e2ad..58704119cad 100644 --- a/advisories/unreviewed/2022/05/GHSA-r7wc-3m9j-jf5m/GHSA-r7wc-3m9j-jf5m.json +++ b/advisories/unreviewed/2022/05/GHSA-r7wc-3m9j-jf5m/GHSA-r7wc-3m9j-jf5m.json @@ -7,12 +7,8 @@ "CVE-2020-29241" ], "details": "Online News Portal using PHP/MySQLi 1.0 is affected by cross-site scripting (XSS) which allows remote attackers to inject an arbitrary web script or HTML via the \"Title\" parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r8q7-27f9-wfgm/GHSA-r8q7-27f9-wfgm.json b/advisories/unreviewed/2022/05/GHSA-r8q7-27f9-wfgm/GHSA-r8q7-27f9-wfgm.json index 9923c86d7aa..6c519e11722 100644 --- a/advisories/unreviewed/2022/05/GHSA-r8q7-27f9-wfgm/GHSA-r8q7-27f9-wfgm.json +++ b/advisories/unreviewed/2022/05/GHSA-r8q7-27f9-wfgm/GHSA-r8q7-27f9-wfgm.json @@ -7,12 +7,8 @@ "CVE-2021-2002" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are 8.0.22 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r97v-vg2f-w8vp/GHSA-r97v-vg2f-w8vp.json b/advisories/unreviewed/2022/05/GHSA-r97v-vg2f-w8vp/GHSA-r97v-vg2f-w8vp.json index 48138641c85..ab9efabd3de 100644 --- a/advisories/unreviewed/2022/05/GHSA-r97v-vg2f-w8vp/GHSA-r97v-vg2f-w8vp.json +++ b/advisories/unreviewed/2022/05/GHSA-r97v-vg2f-w8vp/GHSA-r97v-vg2f-w8vp.json @@ -7,12 +7,8 @@ "CVE-2021-22653" ], "details": "Multiple out-of-bounds write issues have been identified in the way the application processes project files, allowing an attacker to craft a special project file that may allow arbitrary code execution on the Tellus Lite V-Simulator and V-Server Lite (versions prior to 4.0.10.0).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r9gv-5v96-9377/GHSA-r9gv-5v96-9377.json b/advisories/unreviewed/2022/05/GHSA-r9gv-5v96-9377/GHSA-r9gv-5v96-9377.json index 222825bc691..6397c211c3a 100644 --- a/advisories/unreviewed/2022/05/GHSA-r9gv-5v96-9377/GHSA-r9gv-5v96-9377.json +++ b/advisories/unreviewed/2022/05/GHSA-r9gv-5v96-9377/GHSA-r9gv-5v96-9377.json @@ -7,12 +7,8 @@ "CVE-2021-23837" ], "details": "An issue was discovered in flatCore before 2.0.0 build 139. A time-based blind SQL injection was identified in the selected_folder HTTP request body parameter for the acp interface. The affected parameter (which retrieves the file contents of the specified folder) was found to be accepting malicious user input without proper sanitization, thus leading to SQL injection. Database related information can be successfully retrieved.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rc3j-2886-4xqj/GHSA-rc3j-2886-4xqj.json b/advisories/unreviewed/2022/05/GHSA-rc3j-2886-4xqj/GHSA-rc3j-2886-4xqj.json index 057e109265e..bc5a704c682 100644 --- a/advisories/unreviewed/2022/05/GHSA-rc3j-2886-4xqj/GHSA-rc3j-2886-4xqj.json +++ b/advisories/unreviewed/2022/05/GHSA-rc3j-2886-4xqj/GHSA-rc3j-2886-4xqj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rc5c-4735-fg86/GHSA-rc5c-4735-fg86.json b/advisories/unreviewed/2022/05/GHSA-rc5c-4735-fg86/GHSA-rc5c-4735-fg86.json index 16229d655ad..16bc82ab8d3 100644 --- a/advisories/unreviewed/2022/05/GHSA-rc5c-4735-fg86/GHSA-rc5c-4735-fg86.json +++ b/advisories/unreviewed/2022/05/GHSA-rc5c-4735-fg86/GHSA-rc5c-4735-fg86.json @@ -7,12 +7,8 @@ "CVE-2020-28492" ], "details": "This affects the package jinja2 from 0.0.0. The ReDOS vulnerability of the regex is mainly due to the sub-pattern [a-zA-Z0-9._-]+.[a-zA-Z0-9._-]+", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rf85-wq6p-mgqc/GHSA-rf85-wq6p-mgqc.json b/advisories/unreviewed/2022/05/GHSA-rf85-wq6p-mgqc/GHSA-rf85-wq6p-mgqc.json index f7f4ddf6599..a6846fe433b 100644 --- a/advisories/unreviewed/2022/05/GHSA-rf85-wq6p-mgqc/GHSA-rf85-wq6p-mgqc.json +++ b/advisories/unreviewed/2022/05/GHSA-rf85-wq6p-mgqc/GHSA-rf85-wq6p-mgqc.json @@ -7,12 +7,8 @@ "CVE-2020-23448" ], "details": "newbee-mall all versions are affected by incorrect access control to remotely gain privileges through AdminLoginInterceptor.java. The authentication logic of the system's background /admin is in code AdminLoginInterceptor, which can be bypassed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rhpf-c9pm-hccm/GHSA-rhpf-c9pm-hccm.json b/advisories/unreviewed/2022/05/GHSA-rhpf-c9pm-hccm/GHSA-rhpf-c9pm-hccm.json index 72d8b0fcac5..72842e6dae0 100644 --- a/advisories/unreviewed/2022/05/GHSA-rhpf-c9pm-hccm/GHSA-rhpf-c9pm-hccm.json +++ b/advisories/unreviewed/2022/05/GHSA-rhpf-c9pm-hccm/GHSA-rhpf-c9pm-hccm.json @@ -7,12 +7,8 @@ "CVE-2020-15864" ], "details": "An issue was discovered in Quali CloudShell 9.3. An XSS vulnerability in the login page allows an attacker to craft a URL, with a constructor.constructor substring in the username field, that executes a payload when the user visits the /Account/Login page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rpg5-mh4w-rj47/GHSA-rpg5-mh4w-rj47.json b/advisories/unreviewed/2022/05/GHSA-rpg5-mh4w-rj47/GHSA-rpg5-mh4w-rj47.json index 57323aa6cc6..f65ce58073b 100644 --- a/advisories/unreviewed/2022/05/GHSA-rpg5-mh4w-rj47/GHSA-rpg5-mh4w-rj47.json +++ b/advisories/unreviewed/2022/05/GHSA-rpg5-mh4w-rj47/GHSA-rpg5-mh4w-rj47.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rv27-69cw-6j7x/GHSA-rv27-69cw-6j7x.json b/advisories/unreviewed/2022/05/GHSA-rv27-69cw-6j7x/GHSA-rv27-69cw-6j7x.json index b0e65a82bbc..5319cf6356f 100644 --- a/advisories/unreviewed/2022/05/GHSA-rv27-69cw-6j7x/GHSA-rv27-69cw-6j7x.json +++ b/advisories/unreviewed/2022/05/GHSA-rv27-69cw-6j7x/GHSA-rv27-69cw-6j7x.json @@ -7,12 +7,8 @@ "CVE-2020-25687" ], "details": "A flaw was found in dnsmasq before version 2.83. A heap-based buffer overflow was discovered in dnsmasq when DNSSEC is enabled and before it validates the received DNS entries. This flaw allows a remote attacker, who can create valid DNS replies, to cause an overflow in a heap-allocated memory. This flaw is caused by the lack of length checks in rfc1035.c:extract_name(), which could be abused to make the code execute memcpy() with a negative size in sort_rrset() and cause a crash in dnsmasq, resulting in a denial of service. The highest threat from this vulnerability is to system availability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rwc4-5qx3-qg4w/GHSA-rwc4-5qx3-qg4w.json b/advisories/unreviewed/2022/05/GHSA-rwc4-5qx3-qg4w/GHSA-rwc4-5qx3-qg4w.json index 6b4911b86d0..8efa16becdc 100644 --- a/advisories/unreviewed/2022/05/GHSA-rwc4-5qx3-qg4w/GHSA-rwc4-5qx3-qg4w.json +++ b/advisories/unreviewed/2022/05/GHSA-rwc4-5qx3-qg4w/GHSA-rwc4-5qx3-qg4w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rx67-4gm4-fq5p/GHSA-rx67-4gm4-fq5p.json b/advisories/unreviewed/2022/05/GHSA-rx67-4gm4-fq5p/GHSA-rx67-4gm4-fq5p.json index 7a6c7d8ed54..ba2dc2da97d 100644 --- a/advisories/unreviewed/2022/05/GHSA-rx67-4gm4-fq5p/GHSA-rx67-4gm4-fq5p.json +++ b/advisories/unreviewed/2022/05/GHSA-rx67-4gm4-fq5p/GHSA-rx67-4gm4-fq5p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rx6x-hw9j-xhm3/GHSA-rx6x-hw9j-xhm3.json b/advisories/unreviewed/2022/05/GHSA-rx6x-hw9j-xhm3/GHSA-rx6x-hw9j-xhm3.json index 3e000a83c7e..d3b8ebbef5e 100644 --- a/advisories/unreviewed/2022/05/GHSA-rx6x-hw9j-xhm3/GHSA-rx6x-hw9j-xhm3.json +++ b/advisories/unreviewed/2022/05/GHSA-rx6x-hw9j-xhm3/GHSA-rx6x-hw9j-xhm3.json @@ -7,12 +7,8 @@ "CVE-2021-3331" ], "details": "WinSCP before 5.17.10 allows remote attackers to execute arbitrary programs when the URL handler encounters a crafted URL that loads session settings. (For example, this is exploitable in a default installation in which WinSCP is the handler for sftp:// URLs.)", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rx9g-gppv-rxr4/GHSA-rx9g-gppv-rxr4.json b/advisories/unreviewed/2022/05/GHSA-rx9g-gppv-rxr4/GHSA-rx9g-gppv-rxr4.json index 4ffd15a59ee..7f7c95f3031 100644 --- a/advisories/unreviewed/2022/05/GHSA-rx9g-gppv-rxr4/GHSA-rx9g-gppv-rxr4.json +++ b/advisories/unreviewed/2022/05/GHSA-rx9g-gppv-rxr4/GHSA-rx9g-gppv-rxr4.json @@ -7,12 +7,8 @@ "CVE-2020-4547" ], "details": "IBM Jazz Foundation products could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. IBM X-Force ID: 183315.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v2hj-gg5v-x38m/GHSA-v2hj-gg5v-x38m.json b/advisories/unreviewed/2022/05/GHSA-v2hj-gg5v-x38m/GHSA-v2hj-gg5v-x38m.json index fd91130d362..ecbf9dcd934 100644 --- a/advisories/unreviewed/2022/05/GHSA-v2hj-gg5v-x38m/GHSA-v2hj-gg5v-x38m.json +++ b/advisories/unreviewed/2022/05/GHSA-v2hj-gg5v-x38m/GHSA-v2hj-gg5v-x38m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v36w-44mj-4gpv/GHSA-v36w-44mj-4gpv.json b/advisories/unreviewed/2022/05/GHSA-v36w-44mj-4gpv/GHSA-v36w-44mj-4gpv.json index d887205b427..aba10cc91ab 100644 --- a/advisories/unreviewed/2022/05/GHSA-v36w-44mj-4gpv/GHSA-v36w-44mj-4gpv.json +++ b/advisories/unreviewed/2022/05/GHSA-v36w-44mj-4gpv/GHSA-v36w-44mj-4gpv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v47h-2vrq-3gqp/GHSA-v47h-2vrq-3gqp.json b/advisories/unreviewed/2022/05/GHSA-v47h-2vrq-3gqp/GHSA-v47h-2vrq-3gqp.json index e2b10e5303a..e1df72ca776 100644 --- a/advisories/unreviewed/2022/05/GHSA-v47h-2vrq-3gqp/GHSA-v47h-2vrq-3gqp.json +++ b/advisories/unreviewed/2022/05/GHSA-v47h-2vrq-3gqp/GHSA-v47h-2vrq-3gqp.json @@ -7,12 +7,8 @@ "CVE-2020-27735" ], "details": "An XSS issue was discovered in Wing FTP 6.4.4. An arbitrary IFRAME element can be included in the help pages via a crafted link, leading to the execution of (sandboxed) arbitrary HTML and JavaScript in the user's browser.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v4j4-xc7c-cpxx/GHSA-v4j4-xc7c-cpxx.json b/advisories/unreviewed/2022/05/GHSA-v4j4-xc7c-cpxx/GHSA-v4j4-xc7c-cpxx.json index dc90d2aa158..4264e542db0 100644 --- a/advisories/unreviewed/2022/05/GHSA-v4j4-xc7c-cpxx/GHSA-v4j4-xc7c-cpxx.json +++ b/advisories/unreviewed/2022/05/GHSA-v4j4-xc7c-cpxx/GHSA-v4j4-xc7c-cpxx.json @@ -7,12 +7,8 @@ "CVE-2021-21006" ], "details": "Adobe Photoshop version 22.1 (and earlier) is affected by a heap buffer overflow vulnerability when handling a specially crafted font file. Successful exploitation could lead to arbitrary code execution. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v5j3-vp2m-wg9g/GHSA-v5j3-vp2m-wg9g.json b/advisories/unreviewed/2022/05/GHSA-v5j3-vp2m-wg9g/GHSA-v5j3-vp2m-wg9g.json index 2cd8f42876b..e13eadc4f27 100644 --- a/advisories/unreviewed/2022/05/GHSA-v5j3-vp2m-wg9g/GHSA-v5j3-vp2m-wg9g.json +++ b/advisories/unreviewed/2022/05/GHSA-v5j3-vp2m-wg9g/GHSA-v5j3-vp2m-wg9g.json @@ -7,12 +7,8 @@ "CVE-2021-25247" ], "details": "A DLL hijacking vulnerability Trend Micro HouseCall for Home Networks version 5.3.1063 and below could allow an attacker to use a malicious DLL to escalate privileges and perform arbitrary code execution. An attacker must already have user privileges on the machine to exploit this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v75x-7vhx-wgjx/GHSA-v75x-7vhx-wgjx.json b/advisories/unreviewed/2022/05/GHSA-v75x-7vhx-wgjx/GHSA-v75x-7vhx-wgjx.json index f656a8b403c..038fabb4efc 100644 --- a/advisories/unreviewed/2022/05/GHSA-v75x-7vhx-wgjx/GHSA-v75x-7vhx-wgjx.json +++ b/advisories/unreviewed/2022/05/GHSA-v75x-7vhx-wgjx/GHSA-v75x-7vhx-wgjx.json @@ -7,12 +7,8 @@ "CVE-2021-2024" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.22 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v82r-x75j-xwxm/GHSA-v82r-x75j-xwxm.json b/advisories/unreviewed/2022/05/GHSA-v82r-x75j-xwxm/GHSA-v82r-x75j-xwxm.json index 43744cd6a23..9fa2a3cfe17 100644 --- a/advisories/unreviewed/2022/05/GHSA-v82r-x75j-xwxm/GHSA-v82r-x75j-xwxm.json +++ b/advisories/unreviewed/2022/05/GHSA-v82r-x75j-xwxm/GHSA-v82r-x75j-xwxm.json @@ -7,12 +7,8 @@ "CVE-2020-12525" ], "details": "M&M Software fdtCONTAINER Component in versions below 3.5.20304.x and between 3.6 and 3.6.20304.x is vulnerable to deserialization of untrusted data in its project storage.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v8x5-6v34-c2wf/GHSA-v8x5-6v34-c2wf.json b/advisories/unreviewed/2022/05/GHSA-v8x5-6v34-c2wf/GHSA-v8x5-6v34-c2wf.json index 12df3a9e976..c56610b9650 100644 --- a/advisories/unreviewed/2022/05/GHSA-v8x5-6v34-c2wf/GHSA-v8x5-6v34-c2wf.json +++ b/advisories/unreviewed/2022/05/GHSA-v8x5-6v34-c2wf/GHSA-v8x5-6v34-c2wf.json @@ -7,12 +7,8 @@ "CVE-2020-35853" ], "details": "4images Image Gallery Management System 1.7.11 is affected by cross-site scripting (XSS) in the Image URL. This vulnerability can result in an attacker to inject the XSS payload into the IMAGE URL. Each time a user visits that URL, the XSS triggers and the attacker can be able to steal the cookie according to the crafted payload.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v956-pgc2-gjv5/GHSA-v956-pgc2-gjv5.json b/advisories/unreviewed/2022/05/GHSA-v956-pgc2-gjv5/GHSA-v956-pgc2-gjv5.json index f84c42048f7..39ee7025165 100644 --- a/advisories/unreviewed/2022/05/GHSA-v956-pgc2-gjv5/GHSA-v956-pgc2-gjv5.json +++ b/advisories/unreviewed/2022/05/GHSA-v956-pgc2-gjv5/GHSA-v956-pgc2-gjv5.json @@ -7,12 +7,8 @@ "CVE-2020-27288" ], "details": "An untrusted pointer dereference has been identified in the way TPEditor(v1.98 and prior) processes project files, allowing an attacker to craft a special project file that may permit arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v962-xcrm-xrgp/GHSA-v962-xcrm-xrgp.json b/advisories/unreviewed/2022/05/GHSA-v962-xcrm-xrgp/GHSA-v962-xcrm-xrgp.json index fa27758fdeb..c8bc4381026 100644 --- a/advisories/unreviewed/2022/05/GHSA-v962-xcrm-xrgp/GHSA-v962-xcrm-xrgp.json +++ b/advisories/unreviewed/2022/05/GHSA-v962-xcrm-xrgp/GHSA-v962-xcrm-xrgp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vf4m-3266-pc73/GHSA-vf4m-3266-pc73.json b/advisories/unreviewed/2022/05/GHSA-vf4m-3266-pc73/GHSA-vf4m-3266-pc73.json index bb7d0af7b5c..59182aa3bf0 100644 --- a/advisories/unreviewed/2022/05/GHSA-vf4m-3266-pc73/GHSA-vf4m-3266-pc73.json +++ b/advisories/unreviewed/2022/05/GHSA-vf4m-3266-pc73/GHSA-vf4m-3266-pc73.json @@ -7,12 +7,8 @@ "CVE-2021-2082" ], "details": "Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Shopping Cart). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iStore. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle iStore, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle iStore accessible data as well as unauthorized update, insert or delete access to some of Oracle iStore accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vf9c-cf8r-7f65/GHSA-vf9c-cf8r-7f65.json b/advisories/unreviewed/2022/05/GHSA-vf9c-cf8r-7f65/GHSA-vf9c-cf8r-7f65.json index 302054fd8c7..14f8610e2b4 100644 --- a/advisories/unreviewed/2022/05/GHSA-vf9c-cf8r-7f65/GHSA-vf9c-cf8r-7f65.json +++ b/advisories/unreviewed/2022/05/GHSA-vf9c-cf8r-7f65/GHSA-vf9c-cf8r-7f65.json @@ -7,12 +7,8 @@ "CVE-2020-4789" ], "details": "IBM QRadar SIEM 7.4.2 GA to 7.4.2 Patch 1, 7.4.0 to 7.4.1 Patch 1, and 7.3.0 to 7.3.3 Patch 5 could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request containing \"dot dot\" sequences (/../) to view arbitrary files on the system. IBM X-Force ID: 189302.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vm7j-vm2j-xwx7/GHSA-vm7j-vm2j-xwx7.json b/advisories/unreviewed/2022/05/GHSA-vm7j-vm2j-xwx7/GHSA-vm7j-vm2j-xwx7.json index e691c545f4b..65de0e15050 100644 --- a/advisories/unreviewed/2022/05/GHSA-vm7j-vm2j-xwx7/GHSA-vm7j-vm2j-xwx7.json +++ b/advisories/unreviewed/2022/05/GHSA-vm7j-vm2j-xwx7/GHSA-vm7j-vm2j-xwx7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vp5j-p4fm-qpqr/GHSA-vp5j-p4fm-qpqr.json b/advisories/unreviewed/2022/05/GHSA-vp5j-p4fm-qpqr/GHSA-vp5j-p4fm-qpqr.json index 621f5cdcc8e..448318be503 100644 --- a/advisories/unreviewed/2022/05/GHSA-vp5j-p4fm-qpqr/GHSA-vp5j-p4fm-qpqr.json +++ b/advisories/unreviewed/2022/05/GHSA-vp5j-p4fm-qpqr/GHSA-vp5j-p4fm-qpqr.json @@ -7,12 +7,8 @@ "CVE-2021-20618" ], "details": "Privilege chaining vulnerability in acmailer ver. 4.0.2 and earlier, and acmailer DB ver. 1.1.4 and earlier allows remote attackers to bypass authentication and to gain an administrative privilege which may result in obtaining the sensitive information on the server via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vpc3-5fg5-f3ph/GHSA-vpc3-5fg5-f3ph.json b/advisories/unreviewed/2022/05/GHSA-vpc3-5fg5-f3ph/GHSA-vpc3-5fg5-f3ph.json index f4a4d344a2c..9f28a07ee00 100644 --- a/advisories/unreviewed/2022/05/GHSA-vpc3-5fg5-f3ph/GHSA-vpc3-5fg5-f3ph.json +++ b/advisories/unreviewed/2022/05/GHSA-vpc3-5fg5-f3ph/GHSA-vpc3-5fg5-f3ph.json @@ -7,12 +7,8 @@ "CVE-2020-4887" ], "details": "IBM AIX 7.1, 7.2 and AIX VIOS 3.1 could allow a local user to exploit a vulnerability in the gencore user command to create arbitrary files in any directory. IBM X-Force ID: 190911.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vqr2-c24p-rh7p/GHSA-vqr2-c24p-rh7p.json b/advisories/unreviewed/2022/05/GHSA-vqr2-c24p-rh7p/GHSA-vqr2-c24p-rh7p.json index b550504adbd..5f7aeae2953 100644 --- a/advisories/unreviewed/2022/05/GHSA-vqr2-c24p-rh7p/GHSA-vqr2-c24p-rh7p.json +++ b/advisories/unreviewed/2022/05/GHSA-vqr2-c24p-rh7p/GHSA-vqr2-c24p-rh7p.json @@ -7,12 +7,8 @@ "CVE-2021-3297" ], "details": "On Zyxel NBG2105 V1.00(AAGU.2)C0 devices, setting the login cookie to 1 provides administrator access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vw37-r7gf-9x5x/GHSA-vw37-r7gf-9x5x.json b/advisories/unreviewed/2022/05/GHSA-vw37-r7gf-9x5x/GHSA-vw37-r7gf-9x5x.json index e06f00fef8e..d70bd92af44 100644 --- a/advisories/unreviewed/2022/05/GHSA-vw37-r7gf-9x5x/GHSA-vw37-r7gf-9x5x.json +++ b/advisories/unreviewed/2022/05/GHSA-vw37-r7gf-9x5x/GHSA-vw37-r7gf-9x5x.json @@ -7,12 +7,8 @@ "CVE-2021-2004" ], "details": "Vulnerability in the Siebel Core - Server BizLogic Script product of Oracle Siebel CRM (component: Integration - Scripting). Supported versions that are affected are 20.12 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Siebel Core - Server BizLogic Script. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Siebel Core - Server BizLogic Script accessible data. CVSS 3.1 Base Score 4.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vw76-vm27-jx3r/GHSA-vw76-vm27-jx3r.json b/advisories/unreviewed/2022/05/GHSA-vw76-vm27-jx3r/GHSA-vw76-vm27-jx3r.json index 721f15ae428..498569d7677 100644 --- a/advisories/unreviewed/2022/05/GHSA-vw76-vm27-jx3r/GHSA-vw76-vm27-jx3r.json +++ b/advisories/unreviewed/2022/05/GHSA-vw76-vm27-jx3r/GHSA-vw76-vm27-jx3r.json @@ -7,12 +7,8 @@ "CVE-2020-20950" ], "details": "Bleichenbacher's attack on PKCS #1 v1.5 padding for RSA in Microchip Libraries for Applications 2018-11-26 All up to 2018-11-26. The vulnerability can allow one to use Bleichenbacher's oracle attack to decrypt an encrypted ciphertext by making successive queries to the server using the vulnerable library, resulting in remote information disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vwgp-xcmc-qhw2/GHSA-vwgp-xcmc-qhw2.json b/advisories/unreviewed/2022/05/GHSA-vwgp-xcmc-qhw2/GHSA-vwgp-xcmc-qhw2.json index 5887003f4a2..6c40a5c9bf1 100644 --- a/advisories/unreviewed/2022/05/GHSA-vwgp-xcmc-qhw2/GHSA-vwgp-xcmc-qhw2.json +++ b/advisories/unreviewed/2022/05/GHSA-vwgp-xcmc-qhw2/GHSA-vwgp-xcmc-qhw2.json @@ -7,12 +7,8 @@ "CVE-2020-11145" ], "details": "Divide by zero issue can happen while updating delta extension header due to improper validation of master SN and extension header SN in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w2ph-9hg3-84vp/GHSA-w2ph-9hg3-84vp.json b/advisories/unreviewed/2022/05/GHSA-w2ph-9hg3-84vp/GHSA-w2ph-9hg3-84vp.json index 86fca24b1a7..a215245942c 100644 --- a/advisories/unreviewed/2022/05/GHSA-w2ph-9hg3-84vp/GHSA-w2ph-9hg3-84vp.json +++ b/advisories/unreviewed/2022/05/GHSA-w2ph-9hg3-84vp/GHSA-w2ph-9hg3-84vp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -63,9 +61,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w437-7x59-h779/GHSA-w437-7x59-h779.json b/advisories/unreviewed/2022/05/GHSA-w437-7x59-h779/GHSA-w437-7x59-h779.json index 6edec00ef5d..a84effc3242 100644 --- a/advisories/unreviewed/2022/05/GHSA-w437-7x59-h779/GHSA-w437-7x59-h779.json +++ b/advisories/unreviewed/2022/05/GHSA-w437-7x59-h779/GHSA-w437-7x59-h779.json @@ -7,12 +7,8 @@ "CVE-2021-2097" ], "details": "Vulnerability in the Oracle iSupport product of Oracle E-Business Suite (component: Profile). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iSupport. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle iSupport, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle iSupport accessible data as well as unauthorized update, insert or delete access to some of Oracle iSupport accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w49w-3g45-4f86/GHSA-w49w-3g45-4f86.json b/advisories/unreviewed/2022/05/GHSA-w49w-3g45-4f86/GHSA-w49w-3g45-4f86.json index 78ee6383bea..c719a9309bd 100644 --- a/advisories/unreviewed/2022/05/GHSA-w49w-3g45-4f86/GHSA-w49w-3g45-4f86.json +++ b/advisories/unreviewed/2022/05/GHSA-w49w-3g45-4f86/GHSA-w49w-3g45-4f86.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w58h-cm85-98cc/GHSA-w58h-cm85-98cc.json b/advisories/unreviewed/2022/05/GHSA-w58h-cm85-98cc/GHSA-w58h-cm85-98cc.json index e264f082af6..0c143abe93a 100644 --- a/advisories/unreviewed/2022/05/GHSA-w58h-cm85-98cc/GHSA-w58h-cm85-98cc.json +++ b/advisories/unreviewed/2022/05/GHSA-w58h-cm85-98cc/GHSA-w58h-cm85-98cc.json @@ -7,12 +7,8 @@ "CVE-2021-23838" ], "details": "An issue was discovered in flatCore before 2.0.0 build 139. A reflected XSS vulnerability was identified in the media_filter HTTP request body parameter for the acp interface. The affected parameter accepts malicious client-side script without proper input sanitization. For example, a malicious user can leverage this vulnerability to steal cookies from a victim user and perform a session-hijacking attack, which may then lead to unauthorized access to the site.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w7h9-m9jv-8365/GHSA-w7h9-m9jv-8365.json b/advisories/unreviewed/2022/05/GHSA-w7h9-m9jv-8365/GHSA-w7h9-m9jv-8365.json index 88670cad121..a6bd232d0cf 100644 --- a/advisories/unreviewed/2022/05/GHSA-w7h9-m9jv-8365/GHSA-w7h9-m9jv-8365.json +++ b/advisories/unreviewed/2022/05/GHSA-w7h9-m9jv-8365/GHSA-w7h9-m9jv-8365.json @@ -7,12 +7,8 @@ "CVE-2020-36012" ], "details": "Stored XSS vulnerability in BDTASK Multi-Store Inventory Management System 1.0 allows a local admin to inject arbitrary code via the Customer Name Field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w7wc-46r3-xm6r/GHSA-w7wc-46r3-xm6r.json b/advisories/unreviewed/2022/05/GHSA-w7wc-46r3-xm6r/GHSA-w7wc-46r3-xm6r.json index e188e7fcdf6..115e3ce7271 100644 --- a/advisories/unreviewed/2022/05/GHSA-w7wc-46r3-xm6r/GHSA-w7wc-46r3-xm6r.json +++ b/advisories/unreviewed/2022/05/GHSA-w7wc-46r3-xm6r/GHSA-w7wc-46r3-xm6r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w87r-3vgp-mx7q/GHSA-w87r-3vgp-mx7q.json b/advisories/unreviewed/2022/05/GHSA-w87r-3vgp-mx7q/GHSA-w87r-3vgp-mx7q.json index 8b73e3bd20c..dc3f547a75e 100644 --- a/advisories/unreviewed/2022/05/GHSA-w87r-3vgp-mx7q/GHSA-w87r-3vgp-mx7q.json +++ b/advisories/unreviewed/2022/05/GHSA-w87r-3vgp-mx7q/GHSA-w87r-3vgp-mx7q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w8x6-7r8c-rv7m/GHSA-w8x6-7r8c-rv7m.json b/advisories/unreviewed/2022/05/GHSA-w8x6-7r8c-rv7m/GHSA-w8x6-7r8c-rv7m.json index f5bfef7002b..5cd2bdfc3b7 100644 --- a/advisories/unreviewed/2022/05/GHSA-w8x6-7r8c-rv7m/GHSA-w8x6-7r8c-rv7m.json +++ b/advisories/unreviewed/2022/05/GHSA-w8x6-7r8c-rv7m/GHSA-w8x6-7r8c-rv7m.json @@ -7,12 +7,8 @@ "CVE-2020-4968" ], "details": "IBM Security Identity Governance and Intelligence 5.2.6 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 192427.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w9c3-h2rq-jrff/GHSA-w9c3-h2rq-jrff.json b/advisories/unreviewed/2022/05/GHSA-w9c3-h2rq-jrff/GHSA-w9c3-h2rq-jrff.json index f2abc829e57..899652393fd 100644 --- a/advisories/unreviewed/2022/05/GHSA-w9c3-h2rq-jrff/GHSA-w9c3-h2rq-jrff.json +++ b/advisories/unreviewed/2022/05/GHSA-w9c3-h2rq-jrff/GHSA-w9c3-h2rq-jrff.json @@ -7,12 +7,8 @@ "CVE-2021-3138" ], "details": "In Discourse 2.7.0 through beta1, a rate-limit bypass leads to a bypass of the 2FA requirement for certain forms.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w9gf-29cq-m7g8/GHSA-w9gf-29cq-m7g8.json b/advisories/unreviewed/2022/05/GHSA-w9gf-29cq-m7g8/GHSA-w9gf-29cq-m7g8.json index c1e9bb39f74..9641158831a 100644 --- a/advisories/unreviewed/2022/05/GHSA-w9gf-29cq-m7g8/GHSA-w9gf-29cq-m7g8.json +++ b/advisories/unreviewed/2022/05/GHSA-w9gf-29cq-m7g8/GHSA-w9gf-29cq-m7g8.json @@ -7,12 +7,8 @@ "CVE-2020-27859" ], "details": "This vulnerability allows remote attackers to disclose sensitive information on affected installations of NEC ESMPRO Manager 6.42. Authentication is not required to exploit this vulnerability.\n\nThe specific flaw exists within the GetEuaLogDownloadAction class. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to disclose information in the context of SYSTEM. Was ZDI-CAN-9607.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w9vx-9mgg-m33x/GHSA-w9vx-9mgg-m33x.json b/advisories/unreviewed/2022/05/GHSA-w9vx-9mgg-m33x/GHSA-w9vx-9mgg-m33x.json index cb460983e7f..2dffca1ec90 100644 --- a/advisories/unreviewed/2022/05/GHSA-w9vx-9mgg-m33x/GHSA-w9vx-9mgg-m33x.json +++ b/advisories/unreviewed/2022/05/GHSA-w9vx-9mgg-m33x/GHSA-w9vx-9mgg-m33x.json @@ -7,12 +7,8 @@ "CVE-2020-27264" ], "details": "In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, the communication protocol of the insulin pump and its AnyDana-i and AnyDana-A mobile applications use deterministic keys, which allows unauthenticated, physically proximate attackers to brute-force the keys via Bluetooth Low Energy.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wff6-cjwj-3wrr/GHSA-wff6-cjwj-3wrr.json b/advisories/unreviewed/2022/05/GHSA-wff6-cjwj-3wrr/GHSA-wff6-cjwj-3wrr.json index a2e8325c269..208c8824bb5 100644 --- a/advisories/unreviewed/2022/05/GHSA-wff6-cjwj-3wrr/GHSA-wff6-cjwj-3wrr.json +++ b/advisories/unreviewed/2022/05/GHSA-wff6-cjwj-3wrr/GHSA-wff6-cjwj-3wrr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wfrc-8ccq-qc52/GHSA-wfrc-8ccq-qc52.json b/advisories/unreviewed/2022/05/GHSA-wfrc-8ccq-qc52/GHSA-wfrc-8ccq-qc52.json index 69740b8cd20..cdf57b76520 100644 --- a/advisories/unreviewed/2022/05/GHSA-wfrc-8ccq-qc52/GHSA-wfrc-8ccq-qc52.json +++ b/advisories/unreviewed/2022/05/GHSA-wfrc-8ccq-qc52/GHSA-wfrc-8ccq-qc52.json @@ -7,12 +7,8 @@ "CVE-2021-26026" ], "details": "PlugIns\\IDE_ACDStd.apl in ACDSee Professional 2021 14.0 1721 has a User Mode Write Access Violation starting at IDE_ACDStd!JPEGTransW+0x000000000000c7f4 via a crafted BMP image.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wg72-v28c-7j5h/GHSA-wg72-v28c-7j5h.json b/advisories/unreviewed/2022/05/GHSA-wg72-v28c-7j5h/GHSA-wg72-v28c-7j5h.json index 3d155eb1744..36484c3c264 100644 --- a/advisories/unreviewed/2022/05/GHSA-wg72-v28c-7j5h/GHSA-wg72-v28c-7j5h.json +++ b/advisories/unreviewed/2022/05/GHSA-wg72-v28c-7j5h/GHSA-wg72-v28c-7j5h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wgg7-mr9g-43v4/GHSA-wgg7-mr9g-43v4.json b/advisories/unreviewed/2022/05/GHSA-wgg7-mr9g-43v4/GHSA-wgg7-mr9g-43v4.json index b0bb5a0f566..2d08747eddd 100644 --- a/advisories/unreviewed/2022/05/GHSA-wgg7-mr9g-43v4/GHSA-wgg7-mr9g-43v4.json +++ b/advisories/unreviewed/2022/05/GHSA-wgg7-mr9g-43v4/GHSA-wgg7-mr9g-43v4.json @@ -7,12 +7,8 @@ "CVE-2021-2059" ], "details": "Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Web interface). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iStore. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle iStore accessible data. CVSS 3.1 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-whqx-xf73-2457/GHSA-whqx-xf73-2457.json b/advisories/unreviewed/2022/05/GHSA-whqx-xf73-2457/GHSA-whqx-xf73-2457.json index 16f6bc08847..1b3e61b2b40 100644 --- a/advisories/unreviewed/2022/05/GHSA-whqx-xf73-2457/GHSA-whqx-xf73-2457.json +++ b/advisories/unreviewed/2022/05/GHSA-whqx-xf73-2457/GHSA-whqx-xf73-2457.json @@ -7,12 +7,8 @@ "CVE-2020-12511" ], "details": "Pepperl+Fuchs Comtrol IO-Link Master in Version 1.5.48 and below is prone to a Cross-Site Request Forgery (CSRF) in the web interface.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-whx8-g4mc-7mcq/GHSA-whx8-g4mc-7mcq.json b/advisories/unreviewed/2022/05/GHSA-whx8-g4mc-7mcq/GHSA-whx8-g4mc-7mcq.json index a072854a44b..178ec2720e9 100644 --- a/advisories/unreviewed/2022/05/GHSA-whx8-g4mc-7mcq/GHSA-whx8-g4mc-7mcq.json +++ b/advisories/unreviewed/2022/05/GHSA-whx8-g4mc-7mcq/GHSA-whx8-g4mc-7mcq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wpg4-mwpc-j727/GHSA-wpg4-mwpc-j727.json b/advisories/unreviewed/2022/05/GHSA-wpg4-mwpc-j727/GHSA-wpg4-mwpc-j727.json index 97452db30f6..c72b2b1a53d 100644 --- a/advisories/unreviewed/2022/05/GHSA-wpg4-mwpc-j727/GHSA-wpg4-mwpc-j727.json +++ b/advisories/unreviewed/2022/05/GHSA-wpg4-mwpc-j727/GHSA-wpg4-mwpc-j727.json @@ -7,12 +7,8 @@ "CVE-2021-2012" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.0.20 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wr4m-qx5p-qh76/GHSA-wr4m-qx5p-qh76.json b/advisories/unreviewed/2022/05/GHSA-wr4m-qx5p-qh76/GHSA-wr4m-qx5p-qh76.json index 782f46120d4..27fd6ce3ef7 100644 --- a/advisories/unreviewed/2022/05/GHSA-wr4m-qx5p-qh76/GHSA-wr4m-qx5p-qh76.json +++ b/advisories/unreviewed/2022/05/GHSA-wr4m-qx5p-qh76/GHSA-wr4m-qx5p-qh76.json @@ -7,12 +7,8 @@ "CVE-2020-0236" ], "details": "In A2DP_GetCodecType of a2dp_codec_config, there is a possible out-of-bounds read due to improper input validation. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android, Versions: Android-10, Android ID: A-79703353.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wr59-chw8-frf6/GHSA-wr59-chw8-frf6.json b/advisories/unreviewed/2022/05/GHSA-wr59-chw8-frf6/GHSA-wr59-chw8-frf6.json index 9e42df1f620..b27f808ba55 100644 --- a/advisories/unreviewed/2022/05/GHSA-wr59-chw8-frf6/GHSA-wr59-chw8-frf6.json +++ b/advisories/unreviewed/2022/05/GHSA-wr59-chw8-frf6/GHSA-wr59-chw8-frf6.json @@ -7,12 +7,8 @@ "CVE-2021-26067" ], "details": "Affected versions of Atlassian Bamboo allow an unauthenticated remote attacker to view a stack trace that may reveal the path for the home directory in disk and if certain files exists on the tmp directory, via a Sensitive Data Exposure vulnerability in the /chart endpoint. The affected versions are before version 7.2.2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wrwf-2jpv-j2gv/GHSA-wrwf-2jpv-j2gv.json b/advisories/unreviewed/2022/05/GHSA-wrwf-2jpv-j2gv/GHSA-wrwf-2jpv-j2gv.json index 8059a9e632f..538e9632a8d 100644 --- a/advisories/unreviewed/2022/05/GHSA-wrwf-2jpv-j2gv/GHSA-wrwf-2jpv-j2gv.json +++ b/advisories/unreviewed/2022/05/GHSA-wrwf-2jpv-j2gv/GHSA-wrwf-2jpv-j2gv.json @@ -7,12 +7,8 @@ "CVE-2021-22697" ], "details": "A CWE-434: Unrestricted Upload of File with Dangerous Type vulnerability exists in the EcoStruxure Power Build - Rapsody software (V2.1.13 and prior) that could allow a use-after-free condition which could result in remote code execution when a malicious SSD file is uploaded and improperly parsed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wvhm-q7jr-v337/GHSA-wvhm-q7jr-v337.json b/advisories/unreviewed/2022/05/GHSA-wvhm-q7jr-v337/GHSA-wvhm-q7jr-v337.json index eff32c8a23d..96a15d2150b 100644 --- a/advisories/unreviewed/2022/05/GHSA-wvhm-q7jr-v337/GHSA-wvhm-q7jr-v337.json +++ b/advisories/unreviewed/2022/05/GHSA-wvhm-q7jr-v337/GHSA-wvhm-q7jr-v337.json @@ -7,12 +7,8 @@ "CVE-2021-0220" ], "details": "The Junos Space Network Management Platform has been found to store shared secrets in a recoverable format that can be exposed through the UI. An attacker who is able to execute arbitrary code in the victim browser (for example via XSS) or access cached contents may be able to obtain a copy of credentials managed by Junos Space. The impact of a successful attack includes, but is not limited to, obtaining access to other servers connected to the Junos Space Management Platform. This issue affects Juniper Networks Junos Space versions prior to 20.3R1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wvm3-h9rx-qj3q/GHSA-wvm3-h9rx-qj3q.json b/advisories/unreviewed/2022/05/GHSA-wvm3-h9rx-qj3q/GHSA-wvm3-h9rx-qj3q.json index 86a5de9fab1..c88499d72a3 100644 --- a/advisories/unreviewed/2022/05/GHSA-wvm3-h9rx-qj3q/GHSA-wvm3-h9rx-qj3q.json +++ b/advisories/unreviewed/2022/05/GHSA-wvm3-h9rx-qj3q/GHSA-wvm3-h9rx-qj3q.json @@ -7,12 +7,8 @@ "CVE-2021-25294" ], "details": "OpenCATS through 0.9.5-3 unsafely deserializes index.php?m=activity requests, leading to remote code execution. This occurs because lib/DataGrid.php calls unserialize for the parametersactivity:ActivityDataGrid parameter. The PHP object injection exploit chain can leverage an __destruct magic method in guzzlehttp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wvw8-m25h-jr69/GHSA-wvw8-m25h-jr69.json b/advisories/unreviewed/2022/05/GHSA-wvw8-m25h-jr69/GHSA-wvw8-m25h-jr69.json index c03c25e05a4..c85085b8312 100644 --- a/advisories/unreviewed/2022/05/GHSA-wvw8-m25h-jr69/GHSA-wvw8-m25h-jr69.json +++ b/advisories/unreviewed/2022/05/GHSA-wvw8-m25h-jr69/GHSA-wvw8-m25h-jr69.json @@ -7,12 +7,8 @@ "CVE-2020-27097" ], "details": "In checkGrantUriPermission of UriGrantsManagerService.java, there is a possible permissions bypass. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-140729426", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wx4r-wc8q-mr5c/GHSA-wx4r-wc8q-mr5c.json b/advisories/unreviewed/2022/05/GHSA-wx4r-wc8q-mr5c/GHSA-wx4r-wc8q-mr5c.json index bca5f033248..4d1607cced6 100644 --- a/advisories/unreviewed/2022/05/GHSA-wx4r-wc8q-mr5c/GHSA-wx4r-wc8q-mr5c.json +++ b/advisories/unreviewed/2022/05/GHSA-wx4r-wc8q-mr5c/GHSA-wx4r-wc8q-mr5c.json @@ -7,12 +7,8 @@ "CVE-2021-0365" ], "details": "In display driver, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Product: Android; Versions: Android-11; Patch ID: ALPS05454782.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wx62-qwqx-p48q/GHSA-wx62-qwqx-p48q.json b/advisories/unreviewed/2022/05/GHSA-wx62-qwqx-p48q/GHSA-wx62-qwqx-p48q.json index 88064e3b50d..8e15ec70895 100644 --- a/advisories/unreviewed/2022/05/GHSA-wx62-qwqx-p48q/GHSA-wx62-qwqx-p48q.json +++ b/advisories/unreviewed/2022/05/GHSA-wx62-qwqx-p48q/GHSA-wx62-qwqx-p48q.json @@ -7,12 +7,8 @@ "CVE-2021-2112" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is Prior to 6.1.18. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle VM VirtualBox. CVSS 3.1 Base Score 6.0 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wx9h-q254-5w45/GHSA-wx9h-q254-5w45.json b/advisories/unreviewed/2022/05/GHSA-wx9h-q254-5w45/GHSA-wx9h-q254-5w45.json index 915563db084..9cb3f97e821 100644 --- a/advisories/unreviewed/2022/05/GHSA-wx9h-q254-5w45/GHSA-wx9h-q254-5w45.json +++ b/advisories/unreviewed/2022/05/GHSA-wx9h-q254-5w45/GHSA-wx9h-q254-5w45.json @@ -7,12 +7,8 @@ "CVE-2021-2109" ], "details": "Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Console). Supported versions that are affected are 10.3.6.0.0, 12.1.3.0.0, 12.2.1.3.0, 12.2.1.4.0 and 14.1.1.0.0. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in takeover of Oracle WebLogic Server. CVSS 3.1 Base Score 7.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x5j5-724p-xrf3/GHSA-x5j5-724p-xrf3.json b/advisories/unreviewed/2022/05/GHSA-x5j5-724p-xrf3/GHSA-x5j5-724p-xrf3.json index c290541656f..98c3e332056 100644 --- a/advisories/unreviewed/2022/05/GHSA-x5j5-724p-xrf3/GHSA-x5j5-724p-xrf3.json +++ b/advisories/unreviewed/2022/05/GHSA-x5j5-724p-xrf3/GHSA-x5j5-724p-xrf3.json @@ -7,12 +7,8 @@ "CVE-2021-1071" ], "details": "NVIDIA Tegra kernel in Jetson AGX Xavier Series, Jetson Xavier NX, TX1, TX2, Nano and Nano 2GB, all L4T versions prior to r32.5, contains a vulnerability in the INA3221 driver in which improper access control may lead to unauthorized users gaining access to system power usage data, which may lead to information disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x5xg-2928-cq69/GHSA-x5xg-2928-cq69.json b/advisories/unreviewed/2022/05/GHSA-x5xg-2928-cq69/GHSA-x5xg-2928-cq69.json index b42865d8de5..1387a352d01 100644 --- a/advisories/unreviewed/2022/05/GHSA-x5xg-2928-cq69/GHSA-x5xg-2928-cq69.json +++ b/advisories/unreviewed/2022/05/GHSA-x5xg-2928-cq69/GHSA-x5xg-2928-cq69.json @@ -7,12 +7,8 @@ "CVE-2020-35145" ], "details": "Acronis True Image for Windows prior to 2021 Update 3 allowed local privilege escalation due to a DLL hijacking vulnerability in multiple components, aka an Untrusted Search Path issue.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x78c-jj5v-w79v/GHSA-x78c-jj5v-w79v.json b/advisories/unreviewed/2022/05/GHSA-x78c-jj5v-w79v/GHSA-x78c-jj5v-w79v.json index 4342b2501d2..258edbb68bc 100644 --- a/advisories/unreviewed/2022/05/GHSA-x78c-jj5v-w79v/GHSA-x78c-jj5v-w79v.json +++ b/advisories/unreviewed/2022/05/GHSA-x78c-jj5v-w79v/GHSA-x78c-jj5v-w79v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x7gj-j23m-jj56/GHSA-x7gj-j23m-jj56.json b/advisories/unreviewed/2022/05/GHSA-x7gj-j23m-jj56/GHSA-x7gj-j23m-jj56.json index 7649b7d54cd..fd3fe351de8 100644 --- a/advisories/unreviewed/2022/05/GHSA-x7gj-j23m-jj56/GHSA-x7gj-j23m-jj56.json +++ b/advisories/unreviewed/2022/05/GHSA-x7gj-j23m-jj56/GHSA-x7gj-j23m-jj56.json @@ -7,12 +7,8 @@ "CVE-2021-2031" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.22 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x8m3-65hg-3375/GHSA-x8m3-65hg-3375.json b/advisories/unreviewed/2022/05/GHSA-x8m3-65hg-3375/GHSA-x8m3-65hg-3375.json index 5724738145b..db528d3e66e 100644 --- a/advisories/unreviewed/2022/05/GHSA-x8m3-65hg-3375/GHSA-x8m3-65hg-3375.json +++ b/advisories/unreviewed/2022/05/GHSA-x8m3-65hg-3375/GHSA-x8m3-65hg-3375.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xf4m-q2pp-fm2f/GHSA-xf4m-q2pp-fm2f.json b/advisories/unreviewed/2022/05/GHSA-xf4m-q2pp-fm2f/GHSA-xf4m-q2pp-fm2f.json index 26e62e9bb66..1f659341cab 100644 --- a/advisories/unreviewed/2022/05/GHSA-xf4m-q2pp-fm2f/GHSA-xf4m-q2pp-fm2f.json +++ b/advisories/unreviewed/2022/05/GHSA-xf4m-q2pp-fm2f/GHSA-xf4m-q2pp-fm2f.json @@ -7,12 +7,8 @@ "CVE-2021-2108" ], "details": "Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core Components). The supported version that is affected is 12.1.3.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via IIOP, T3 to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in takeover of Oracle WebLogic Server. CVSS 3.1 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xf5m-vvhx-6m6x/GHSA-xf5m-vvhx-6m6x.json b/advisories/unreviewed/2022/05/GHSA-xf5m-vvhx-6m6x/GHSA-xf5m-vvhx-6m6x.json index 6c5bd7eb00b..60bd01beefc 100644 --- a/advisories/unreviewed/2022/05/GHSA-xf5m-vvhx-6m6x/GHSA-xf5m-vvhx-6m6x.json +++ b/advisories/unreviewed/2022/05/GHSA-xf5m-vvhx-6m6x/GHSA-xf5m-vvhx-6m6x.json @@ -7,12 +7,8 @@ "CVE-2021-2106" ], "details": "Vulnerability in the Oracle Customer Interaction History product of Oracle E-Business Suite (component: Outcome-Result). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Customer Interaction History. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Customer Interaction History, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Customer Interaction History accessible data as well as unauthorized update, insert or delete access to some of Oracle Customer Interaction History accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xf65-pwfc-rxcm/GHSA-xf65-pwfc-rxcm.json b/advisories/unreviewed/2022/05/GHSA-xf65-pwfc-rxcm/GHSA-xf65-pwfc-rxcm.json index 5afe088f48b..d3f0d5f257c 100644 --- a/advisories/unreviewed/2022/05/GHSA-xf65-pwfc-rxcm/GHSA-xf65-pwfc-rxcm.json +++ b/advisories/unreviewed/2022/05/GHSA-xf65-pwfc-rxcm/GHSA-xf65-pwfc-rxcm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xgcf-57xv-v846/GHSA-xgcf-57xv-v846.json b/advisories/unreviewed/2022/05/GHSA-xgcf-57xv-v846/GHSA-xgcf-57xv-v846.json index a4d259dcd93..442fa3d5016 100644 --- a/advisories/unreviewed/2022/05/GHSA-xgcf-57xv-v846/GHSA-xgcf-57xv-v846.json +++ b/advisories/unreviewed/2022/05/GHSA-xgcf-57xv-v846/GHSA-xgcf-57xv-v846.json @@ -7,12 +7,8 @@ "CVE-2021-21008" ], "details": "Adobe Animate version 21.0 (and earlier) is affected by an uncontrolled search path element that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xm66-m73v-859r/GHSA-xm66-m73v-859r.json b/advisories/unreviewed/2022/05/GHSA-xm66-m73v-859r/GHSA-xm66-m73v-859r.json index c60bb313a50..e66cd34401a 100644 --- a/advisories/unreviewed/2022/05/GHSA-xm66-m73v-859r/GHSA-xm66-m73v-859r.json +++ b/advisories/unreviewed/2022/05/GHSA-xm66-m73v-859r/GHSA-xm66-m73v-859r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xp6m-4hv5-x9xm/GHSA-xp6m-4hv5-x9xm.json b/advisories/unreviewed/2022/05/GHSA-xp6m-4hv5-x9xm/GHSA-xp6m-4hv5-x9xm.json index b493582a58e..12de20cc31a 100644 --- a/advisories/unreviewed/2022/05/GHSA-xp6m-4hv5-x9xm/GHSA-xp6m-4hv5-x9xm.json +++ b/advisories/unreviewed/2022/05/GHSA-xp6m-4hv5-x9xm/GHSA-xp6m-4hv5-x9xm.json @@ -7,12 +7,8 @@ "CVE-2021-1355" ], "details": "Multiple vulnerabilities in Cisco Unified Communications Manager IM & Presence Service (Unified CM IM&P) could allow an attacker to conduct path traversal attacks and SQL injection attacks on an affected system. One of the SQL injection vulnerabilities that affects Unified CM IM&P also affects Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management Edition (Unified CM SME) and could allow an attacker to conduct SQL injection attacks on an affected system.\n For more information about these vulnerabilities, see the Details section of this advisory.\n ", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xq8r-6v6q-5jcf/GHSA-xq8r-6v6q-5jcf.json b/advisories/unreviewed/2022/05/GHSA-xq8r-6v6q-5jcf/GHSA-xq8r-6v6q-5jcf.json index aedede39325..a9cab2df440 100644 --- a/advisories/unreviewed/2022/05/GHSA-xq8r-6v6q-5jcf/GHSA-xq8r-6v6q-5jcf.json +++ b/advisories/unreviewed/2022/05/GHSA-xq8r-6v6q-5jcf/GHSA-xq8r-6v6q-5jcf.json @@ -7,12 +7,8 @@ "CVE-2020-6024" ], "details": "Check Point SmartConsole before R80.20 Build 119, R80.30 before Build 94, R80.40 before Build 415, and R81 before Build 548 were vulnerable to a possible local privilege escalation due to running executables from a directory with write access to all authenticated users.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xqpg-rjjg-58q9/GHSA-xqpg-rjjg-58q9.json b/advisories/unreviewed/2022/05/GHSA-xqpg-rjjg-58q9/GHSA-xqpg-rjjg-58q9.json index d3e7df1e862..8d6a1a0164b 100644 --- a/advisories/unreviewed/2022/05/GHSA-xqpg-rjjg-58q9/GHSA-xqpg-rjjg-58q9.json +++ b/advisories/unreviewed/2022/05/GHSA-xqpg-rjjg-58q9/GHSA-xqpg-rjjg-58q9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xqrq-qgmp-x7x4/GHSA-xqrq-qgmp-x7x4.json b/advisories/unreviewed/2022/05/GHSA-xqrq-qgmp-x7x4/GHSA-xqrq-qgmp-x7x4.json index 6e1bca0f116..64363fd5461 100644 --- a/advisories/unreviewed/2022/05/GHSA-xqrq-qgmp-x7x4/GHSA-xqrq-qgmp-x7x4.json +++ b/advisories/unreviewed/2022/05/GHSA-xqrq-qgmp-x7x4/GHSA-xqrq-qgmp-x7x4.json @@ -7,12 +7,8 @@ "CVE-2021-22872" ], "details": "Revive Adserver before 5.1.0 is vulnerable to a reflected cross-site scripting (XSS) vulnerability via the publicly accessible afr.php delivery script. While this issue was previously addressed in modern browsers as CVE-2020-8115, some older browsers (e.g., IE10) that do not automatically URL encode parameters were still vulnerable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xr36-f3cm-q4rx/GHSA-xr36-f3cm-q4rx.json b/advisories/unreviewed/2022/05/GHSA-xr36-f3cm-q4rx/GHSA-xr36-f3cm-q4rx.json index b88e17cbb08..bcec336c68a 100644 --- a/advisories/unreviewed/2022/05/GHSA-xr36-f3cm-q4rx/GHSA-xr36-f3cm-q4rx.json +++ b/advisories/unreviewed/2022/05/GHSA-xr36-f3cm-q4rx/GHSA-xr36-f3cm-q4rx.json @@ -7,12 +7,8 @@ "CVE-2021-2123" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is Prior to 6.1.18. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle VM VirtualBox accessible data. CVSS 3.1 Base Score 3.2 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:L/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xv9g-pwqj-hpwc/GHSA-xv9g-pwqj-hpwc.json b/advisories/unreviewed/2022/05/GHSA-xv9g-pwqj-hpwc/GHSA-xv9g-pwqj-hpwc.json index e1d5f1593ac..1ff4c79f694 100644 --- a/advisories/unreviewed/2022/05/GHSA-xv9g-pwqj-hpwc/GHSA-xv9g-pwqj-hpwc.json +++ b/advisories/unreviewed/2022/05/GHSA-xv9g-pwqj-hpwc/GHSA-xv9g-pwqj-hpwc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xvch-fv6q-gx5m/GHSA-xvch-fv6q-gx5m.json b/advisories/unreviewed/2022/05/GHSA-xvch-fv6q-gx5m/GHSA-xvch-fv6q-gx5m.json index 5b53e0ebb3d..6bf6fc5d044 100644 --- a/advisories/unreviewed/2022/05/GHSA-xvch-fv6q-gx5m/GHSA-xvch-fv6q-gx5m.json +++ b/advisories/unreviewed/2022/05/GHSA-xvch-fv6q-gx5m/GHSA-xvch-fv6q-gx5m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -43,9 +41,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xx82-r4r9-35vq/GHSA-xx82-r4r9-35vq.json b/advisories/unreviewed/2022/05/GHSA-xx82-r4r9-35vq/GHSA-xx82-r4r9-35vq.json index 0e5a6145b4d..c35b5b743f1 100644 --- a/advisories/unreviewed/2022/05/GHSA-xx82-r4r9-35vq/GHSA-xx82-r4r9-35vq.json +++ b/advisories/unreviewed/2022/05/GHSA-xx82-r4r9-35vq/GHSA-xx82-r4r9-35vq.json @@ -7,12 +7,8 @@ "CVE-2021-2071" ], "details": "Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Elastic Search). Supported versions that are affected are 8.56, 8.57 and 8.58. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools. Successful attacks of this vulnerability can result in takeover of PeopleSoft Enterprise PeopleTools. CVSS 3.1 Base Score 8.1 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xxp3-mm76-hhf2/GHSA-xxp3-mm76-hhf2.json b/advisories/unreviewed/2022/05/GHSA-xxp3-mm76-hhf2/GHSA-xxp3-mm76-hhf2.json index 9388eb14f1f..cdb952bd822 100644 --- a/advisories/unreviewed/2022/05/GHSA-xxp3-mm76-hhf2/GHSA-xxp3-mm76-hhf2.json +++ b/advisories/unreviewed/2022/05/GHSA-xxp3-mm76-hhf2/GHSA-xxp3-mm76-hhf2.json @@ -7,12 +7,8 @@ "CVE-2020-35263" ], "details": "EgavilanMedia User Registration & Login System 1.0 is affected by SQL injection to the admin panel, which may allow arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/06/GHSA-35rf-7vhx-9phr/GHSA-35rf-7vhx-9phr.json b/advisories/unreviewed/2022/06/GHSA-35rf-7vhx-9phr/GHSA-35rf-7vhx-9phr.json index 1532c357338..f90e09e3ad9 100644 --- a/advisories/unreviewed/2022/06/GHSA-35rf-7vhx-9phr/GHSA-35rf-7vhx-9phr.json +++ b/advisories/unreviewed/2022/06/GHSA-35rf-7vhx-9phr/GHSA-35rf-7vhx-9phr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/06/GHSA-94qm-cpmj-pvcv/GHSA-94qm-cpmj-pvcv.json b/advisories/unreviewed/2022/06/GHSA-94qm-cpmj-pvcv/GHSA-94qm-cpmj-pvcv.json index 6f4bdb193d3..89660b171bc 100644 --- a/advisories/unreviewed/2022/06/GHSA-94qm-cpmj-pvcv/GHSA-94qm-cpmj-pvcv.json +++ b/advisories/unreviewed/2022/06/GHSA-94qm-cpmj-pvcv/GHSA-94qm-cpmj-pvcv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/06/GHSA-ph5j-6pcv-6w76/GHSA-ph5j-6pcv-6w76.json b/advisories/unreviewed/2022/06/GHSA-ph5j-6pcv-6w76/GHSA-ph5j-6pcv-6w76.json index 27e1993fcb7..89cfc8f406f 100644 --- a/advisories/unreviewed/2022/06/GHSA-ph5j-6pcv-6w76/GHSA-ph5j-6pcv-6w76.json +++ b/advisories/unreviewed/2022/06/GHSA-ph5j-6pcv-6w76/GHSA-ph5j-6pcv-6w76.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/07/GHSA-9c48-27fx-7952/GHSA-9c48-27fx-7952.json b/advisories/unreviewed/2022/07/GHSA-9c48-27fx-7952/GHSA-9c48-27fx-7952.json index a7fa42eb9a2..765823b2160 100644 --- a/advisories/unreviewed/2022/07/GHSA-9c48-27fx-7952/GHSA-9c48-27fx-7952.json +++ b/advisories/unreviewed/2022/07/GHSA-9c48-27fx-7952/GHSA-9c48-27fx-7952.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/07/GHSA-j3rf-gq9q-v8hx/GHSA-j3rf-gq9q-v8hx.json b/advisories/unreviewed/2022/07/GHSA-j3rf-gq9q-v8hx/GHSA-j3rf-gq9q-v8hx.json index 43f7e7ef666..eaa411cbd61 100644 --- a/advisories/unreviewed/2022/07/GHSA-j3rf-gq9q-v8hx/GHSA-j3rf-gq9q-v8hx.json +++ b/advisories/unreviewed/2022/07/GHSA-j3rf-gq9q-v8hx/GHSA-j3rf-gq9q-v8hx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/07/GHSA-p438-c5rw-cq9h/GHSA-p438-c5rw-cq9h.json b/advisories/unreviewed/2022/07/GHSA-p438-c5rw-cq9h/GHSA-p438-c5rw-cq9h.json index 7d2f7f8ed3e..32646c44fb2 100644 --- a/advisories/unreviewed/2022/07/GHSA-p438-c5rw-cq9h/GHSA-p438-c5rw-cq9h.json +++ b/advisories/unreviewed/2022/07/GHSA-p438-c5rw-cq9h/GHSA-p438-c5rw-cq9h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-2fx4-8cc3-3383/GHSA-2fx4-8cc3-3383.json b/advisories/unreviewed/2022/08/GHSA-2fx4-8cc3-3383/GHSA-2fx4-8cc3-3383.json index 66e52806526..a17d4aa9ff0 100644 --- a/advisories/unreviewed/2022/08/GHSA-2fx4-8cc3-3383/GHSA-2fx4-8cc3-3383.json +++ b/advisories/unreviewed/2022/08/GHSA-2fx4-8cc3-3383/GHSA-2fx4-8cc3-3383.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-2j9p-vq42-gfv7/GHSA-2j9p-vq42-gfv7.json b/advisories/unreviewed/2022/08/GHSA-2j9p-vq42-gfv7/GHSA-2j9p-vq42-gfv7.json index 45192928e7f..584c433e69b 100644 --- a/advisories/unreviewed/2022/08/GHSA-2j9p-vq42-gfv7/GHSA-2j9p-vq42-gfv7.json +++ b/advisories/unreviewed/2022/08/GHSA-2j9p-vq42-gfv7/GHSA-2j9p-vq42-gfv7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-2qxw-2g52-622j/GHSA-2qxw-2g52-622j.json b/advisories/unreviewed/2022/08/GHSA-2qxw-2g52-622j/GHSA-2qxw-2g52-622j.json index 2faab232dc2..97cb7f8edcf 100644 --- a/advisories/unreviewed/2022/08/GHSA-2qxw-2g52-622j/GHSA-2qxw-2g52-622j.json +++ b/advisories/unreviewed/2022/08/GHSA-2qxw-2g52-622j/GHSA-2qxw-2g52-622j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/08/GHSA-364p-6jx5-j5jv/GHSA-364p-6jx5-j5jv.json b/advisories/unreviewed/2022/08/GHSA-364p-6jx5-j5jv/GHSA-364p-6jx5-j5jv.json index 3448aed5385..b5e4d08e8ba 100644 --- a/advisories/unreviewed/2022/08/GHSA-364p-6jx5-j5jv/GHSA-364p-6jx5-j5jv.json +++ b/advisories/unreviewed/2022/08/GHSA-364p-6jx5-j5jv/GHSA-364p-6jx5-j5jv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-37cg-58rj-qc4c/GHSA-37cg-58rj-qc4c.json b/advisories/unreviewed/2022/08/GHSA-37cg-58rj-qc4c/GHSA-37cg-58rj-qc4c.json index bd1dd1cdd86..e4b306508ea 100644 --- a/advisories/unreviewed/2022/08/GHSA-37cg-58rj-qc4c/GHSA-37cg-58rj-qc4c.json +++ b/advisories/unreviewed/2022/08/GHSA-37cg-58rj-qc4c/GHSA-37cg-58rj-qc4c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-3r4j-8whf-548p/GHSA-3r4j-8whf-548p.json b/advisories/unreviewed/2022/08/GHSA-3r4j-8whf-548p/GHSA-3r4j-8whf-548p.json index 4de0fa425f5..312bf0e3cdc 100644 --- a/advisories/unreviewed/2022/08/GHSA-3r4j-8whf-548p/GHSA-3r4j-8whf-548p.json +++ b/advisories/unreviewed/2022/08/GHSA-3r4j-8whf-548p/GHSA-3r4j-8whf-548p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-4pp6-84pp-4cqw/GHSA-4pp6-84pp-4cqw.json b/advisories/unreviewed/2022/08/GHSA-4pp6-84pp-4cqw/GHSA-4pp6-84pp-4cqw.json index e946d2f6a7d..c13718438c8 100644 --- a/advisories/unreviewed/2022/08/GHSA-4pp6-84pp-4cqw/GHSA-4pp6-84pp-4cqw.json +++ b/advisories/unreviewed/2022/08/GHSA-4pp6-84pp-4cqw/GHSA-4pp6-84pp-4cqw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/08/GHSA-56ph-j4ph-v6wm/GHSA-56ph-j4ph-v6wm.json b/advisories/unreviewed/2022/08/GHSA-56ph-j4ph-v6wm/GHSA-56ph-j4ph-v6wm.json index ea672eb5c98..ba26d1780d5 100644 --- a/advisories/unreviewed/2022/08/GHSA-56ph-j4ph-v6wm/GHSA-56ph-j4ph-v6wm.json +++ b/advisories/unreviewed/2022/08/GHSA-56ph-j4ph-v6wm/GHSA-56ph-j4ph-v6wm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-583q-h2h6-7284/GHSA-583q-h2h6-7284.json b/advisories/unreviewed/2022/08/GHSA-583q-h2h6-7284/GHSA-583q-h2h6-7284.json index 9d8688ebf5a..cac7fb2d677 100644 --- a/advisories/unreviewed/2022/08/GHSA-583q-h2h6-7284/GHSA-583q-h2h6-7284.json +++ b/advisories/unreviewed/2022/08/GHSA-583q-h2h6-7284/GHSA-583q-h2h6-7284.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-63w7-6gxr-7jjw/GHSA-63w7-6gxr-7jjw.json b/advisories/unreviewed/2022/08/GHSA-63w7-6gxr-7jjw/GHSA-63w7-6gxr-7jjw.json index 13893cfc4c3..85f3e42770b 100644 --- a/advisories/unreviewed/2022/08/GHSA-63w7-6gxr-7jjw/GHSA-63w7-6gxr-7jjw.json +++ b/advisories/unreviewed/2022/08/GHSA-63w7-6gxr-7jjw/GHSA-63w7-6gxr-7jjw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-666p-v2mj-cxrf/GHSA-666p-v2mj-cxrf.json b/advisories/unreviewed/2022/08/GHSA-666p-v2mj-cxrf/GHSA-666p-v2mj-cxrf.json index cec24d4a9c5..1b41cf01e57 100644 --- a/advisories/unreviewed/2022/08/GHSA-666p-v2mj-cxrf/GHSA-666p-v2mj-cxrf.json +++ b/advisories/unreviewed/2022/08/GHSA-666p-v2mj-cxrf/GHSA-666p-v2mj-cxrf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-66ch-52fc-j7qp/GHSA-66ch-52fc-j7qp.json b/advisories/unreviewed/2022/08/GHSA-66ch-52fc-j7qp/GHSA-66ch-52fc-j7qp.json index 1313280ca28..5cbb03276b3 100644 --- a/advisories/unreviewed/2022/08/GHSA-66ch-52fc-j7qp/GHSA-66ch-52fc-j7qp.json +++ b/advisories/unreviewed/2022/08/GHSA-66ch-52fc-j7qp/GHSA-66ch-52fc-j7qp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-66ff-2vxm-vc2p/GHSA-66ff-2vxm-vc2p.json b/advisories/unreviewed/2022/08/GHSA-66ff-2vxm-vc2p/GHSA-66ff-2vxm-vc2p.json index eafc0efcbe7..b2670d82f55 100644 --- a/advisories/unreviewed/2022/08/GHSA-66ff-2vxm-vc2p/GHSA-66ff-2vxm-vc2p.json +++ b/advisories/unreviewed/2022/08/GHSA-66ff-2vxm-vc2p/GHSA-66ff-2vxm-vc2p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-68qv-6738-54qg/GHSA-68qv-6738-54qg.json b/advisories/unreviewed/2022/08/GHSA-68qv-6738-54qg/GHSA-68qv-6738-54qg.json index d5abd5f2d8d..d01b826ed91 100644 --- a/advisories/unreviewed/2022/08/GHSA-68qv-6738-54qg/GHSA-68qv-6738-54qg.json +++ b/advisories/unreviewed/2022/08/GHSA-68qv-6738-54qg/GHSA-68qv-6738-54qg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-6h5m-p5g6-rvmg/GHSA-6h5m-p5g6-rvmg.json b/advisories/unreviewed/2022/08/GHSA-6h5m-p5g6-rvmg/GHSA-6h5m-p5g6-rvmg.json index 27bfa468c5e..04c55dd23a3 100644 --- a/advisories/unreviewed/2022/08/GHSA-6h5m-p5g6-rvmg/GHSA-6h5m-p5g6-rvmg.json +++ b/advisories/unreviewed/2022/08/GHSA-6h5m-p5g6-rvmg/GHSA-6h5m-p5g6-rvmg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-6x3f-8jjw-fc39/GHSA-6x3f-8jjw-fc39.json b/advisories/unreviewed/2022/08/GHSA-6x3f-8jjw-fc39/GHSA-6x3f-8jjw-fc39.json index 17303e6e4ee..ddd542e0d6d 100644 --- a/advisories/unreviewed/2022/08/GHSA-6x3f-8jjw-fc39/GHSA-6x3f-8jjw-fc39.json +++ b/advisories/unreviewed/2022/08/GHSA-6x3f-8jjw-fc39/GHSA-6x3f-8jjw-fc39.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/08/GHSA-756m-3q55-x5q6/GHSA-756m-3q55-x5q6.json b/advisories/unreviewed/2022/08/GHSA-756m-3q55-x5q6/GHSA-756m-3q55-x5q6.json index 5d9950e8037..3c4ba8346a5 100644 --- a/advisories/unreviewed/2022/08/GHSA-756m-3q55-x5q6/GHSA-756m-3q55-x5q6.json +++ b/advisories/unreviewed/2022/08/GHSA-756m-3q55-x5q6/GHSA-756m-3q55-x5q6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-84cj-7rp5-q96h/GHSA-84cj-7rp5-q96h.json b/advisories/unreviewed/2022/08/GHSA-84cj-7rp5-q96h/GHSA-84cj-7rp5-q96h.json index 7ff2ff166cf..836bfecffdf 100644 --- a/advisories/unreviewed/2022/08/GHSA-84cj-7rp5-q96h/GHSA-84cj-7rp5-q96h.json +++ b/advisories/unreviewed/2022/08/GHSA-84cj-7rp5-q96h/GHSA-84cj-7rp5-q96h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-87f3-7c9g-2pgf/GHSA-87f3-7c9g-2pgf.json b/advisories/unreviewed/2022/08/GHSA-87f3-7c9g-2pgf/GHSA-87f3-7c9g-2pgf.json index 677688347bb..3e73efd480d 100644 --- a/advisories/unreviewed/2022/08/GHSA-87f3-7c9g-2pgf/GHSA-87f3-7c9g-2pgf.json +++ b/advisories/unreviewed/2022/08/GHSA-87f3-7c9g-2pgf/GHSA-87f3-7c9g-2pgf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/08/GHSA-8985-x52g-hv5h/GHSA-8985-x52g-hv5h.json b/advisories/unreviewed/2022/08/GHSA-8985-x52g-hv5h/GHSA-8985-x52g-hv5h.json index 91d9f0bb0e4..77ac17af8f9 100644 --- a/advisories/unreviewed/2022/08/GHSA-8985-x52g-hv5h/GHSA-8985-x52g-hv5h.json +++ b/advisories/unreviewed/2022/08/GHSA-8985-x52g-hv5h/GHSA-8985-x52g-hv5h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/08/GHSA-8cjr-r29r-m28v/GHSA-8cjr-r29r-m28v.json b/advisories/unreviewed/2022/08/GHSA-8cjr-r29r-m28v/GHSA-8cjr-r29r-m28v.json index 34d6a57376f..c37e9acb0ed 100644 --- a/advisories/unreviewed/2022/08/GHSA-8cjr-r29r-m28v/GHSA-8cjr-r29r-m28v.json +++ b/advisories/unreviewed/2022/08/GHSA-8cjr-r29r-m28v/GHSA-8cjr-r29r-m28v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-8h2f-qm6x-vhvp/GHSA-8h2f-qm6x-vhvp.json b/advisories/unreviewed/2022/08/GHSA-8h2f-qm6x-vhvp/GHSA-8h2f-qm6x-vhvp.json index c0fa692ddab..0b91c74b847 100644 --- a/advisories/unreviewed/2022/08/GHSA-8h2f-qm6x-vhvp/GHSA-8h2f-qm6x-vhvp.json +++ b/advisories/unreviewed/2022/08/GHSA-8h2f-qm6x-vhvp/GHSA-8h2f-qm6x-vhvp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/08/GHSA-8rfm-2x4g-8xh5/GHSA-8rfm-2x4g-8xh5.json b/advisories/unreviewed/2022/08/GHSA-8rfm-2x4g-8xh5/GHSA-8rfm-2x4g-8xh5.json index d3241ad050d..0bb3b1412e1 100644 --- a/advisories/unreviewed/2022/08/GHSA-8rfm-2x4g-8xh5/GHSA-8rfm-2x4g-8xh5.json +++ b/advisories/unreviewed/2022/08/GHSA-8rfm-2x4g-8xh5/GHSA-8rfm-2x4g-8xh5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-8rx8-8w3f-mvq2/GHSA-8rx8-8w3f-mvq2.json b/advisories/unreviewed/2022/08/GHSA-8rx8-8w3f-mvq2/GHSA-8rx8-8w3f-mvq2.json index f9c86510e0d..f63c41e5410 100644 --- a/advisories/unreviewed/2022/08/GHSA-8rx8-8w3f-mvq2/GHSA-8rx8-8w3f-mvq2.json +++ b/advisories/unreviewed/2022/08/GHSA-8rx8-8w3f-mvq2/GHSA-8rx8-8w3f-mvq2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-9589-r2jc-qp9j/GHSA-9589-r2jc-qp9j.json b/advisories/unreviewed/2022/08/GHSA-9589-r2jc-qp9j/GHSA-9589-r2jc-qp9j.json index 72f82e6d46b..da9e6cc0d14 100644 --- a/advisories/unreviewed/2022/08/GHSA-9589-r2jc-qp9j/GHSA-9589-r2jc-qp9j.json +++ b/advisories/unreviewed/2022/08/GHSA-9589-r2jc-qp9j/GHSA-9589-r2jc-qp9j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-9f42-fwfm-w8rf/GHSA-9f42-fwfm-w8rf.json b/advisories/unreviewed/2022/08/GHSA-9f42-fwfm-w8rf/GHSA-9f42-fwfm-w8rf.json index ea9a9d93979..83e53c59373 100644 --- a/advisories/unreviewed/2022/08/GHSA-9f42-fwfm-w8rf/GHSA-9f42-fwfm-w8rf.json +++ b/advisories/unreviewed/2022/08/GHSA-9f42-fwfm-w8rf/GHSA-9f42-fwfm-w8rf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-9ww6-gj27-3x4p/GHSA-9ww6-gj27-3x4p.json b/advisories/unreviewed/2022/08/GHSA-9ww6-gj27-3x4p/GHSA-9ww6-gj27-3x4p.json index 784c87779e7..fe7efed44ad 100644 --- a/advisories/unreviewed/2022/08/GHSA-9ww6-gj27-3x4p/GHSA-9ww6-gj27-3x4p.json +++ b/advisories/unreviewed/2022/08/GHSA-9ww6-gj27-3x4p/GHSA-9ww6-gj27-3x4p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-c297-p4vx-rjg5/GHSA-c297-p4vx-rjg5.json b/advisories/unreviewed/2022/08/GHSA-c297-p4vx-rjg5/GHSA-c297-p4vx-rjg5.json index 52a73902dec..db8d9a5eae5 100644 --- a/advisories/unreviewed/2022/08/GHSA-c297-p4vx-rjg5/GHSA-c297-p4vx-rjg5.json +++ b/advisories/unreviewed/2022/08/GHSA-c297-p4vx-rjg5/GHSA-c297-p4vx-rjg5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/08/GHSA-c2h4-63xc-8qh6/GHSA-c2h4-63xc-8qh6.json b/advisories/unreviewed/2022/08/GHSA-c2h4-63xc-8qh6/GHSA-c2h4-63xc-8qh6.json index 74002abb052..28281dc1f21 100644 --- a/advisories/unreviewed/2022/08/GHSA-c2h4-63xc-8qh6/GHSA-c2h4-63xc-8qh6.json +++ b/advisories/unreviewed/2022/08/GHSA-c2h4-63xc-8qh6/GHSA-c2h4-63xc-8qh6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-c7jr-pf92-3rq5/GHSA-c7jr-pf92-3rq5.json b/advisories/unreviewed/2022/08/GHSA-c7jr-pf92-3rq5/GHSA-c7jr-pf92-3rq5.json index d06e1dc04fe..8cd425322ec 100644 --- a/advisories/unreviewed/2022/08/GHSA-c7jr-pf92-3rq5/GHSA-c7jr-pf92-3rq5.json +++ b/advisories/unreviewed/2022/08/GHSA-c7jr-pf92-3rq5/GHSA-c7jr-pf92-3rq5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-c99f-69w7-q9f5/GHSA-c99f-69w7-q9f5.json b/advisories/unreviewed/2022/08/GHSA-c99f-69w7-q9f5/GHSA-c99f-69w7-q9f5.json index 7ec00c12f77..bd118087127 100644 --- a/advisories/unreviewed/2022/08/GHSA-c99f-69w7-q9f5/GHSA-c99f-69w7-q9f5.json +++ b/advisories/unreviewed/2022/08/GHSA-c99f-69w7-q9f5/GHSA-c99f-69w7-q9f5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-ccw4-c8wx-mv68/GHSA-ccw4-c8wx-mv68.json b/advisories/unreviewed/2022/08/GHSA-ccw4-c8wx-mv68/GHSA-ccw4-c8wx-mv68.json index c031faf1890..0328ea6c84c 100644 --- a/advisories/unreviewed/2022/08/GHSA-ccw4-c8wx-mv68/GHSA-ccw4-c8wx-mv68.json +++ b/advisories/unreviewed/2022/08/GHSA-ccw4-c8wx-mv68/GHSA-ccw4-c8wx-mv68.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-ch23-p68w-8rq5/GHSA-ch23-p68w-8rq5.json b/advisories/unreviewed/2022/08/GHSA-ch23-p68w-8rq5/GHSA-ch23-p68w-8rq5.json index 2460b07a3bf..16f93d5acac 100644 --- a/advisories/unreviewed/2022/08/GHSA-ch23-p68w-8rq5/GHSA-ch23-p68w-8rq5.json +++ b/advisories/unreviewed/2022/08/GHSA-ch23-p68w-8rq5/GHSA-ch23-p68w-8rq5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-f326-p7mm-52h2/GHSA-f326-p7mm-52h2.json b/advisories/unreviewed/2022/08/GHSA-f326-p7mm-52h2/GHSA-f326-p7mm-52h2.json index 51685fdf2ba..a57ceee30a2 100644 --- a/advisories/unreviewed/2022/08/GHSA-f326-p7mm-52h2/GHSA-f326-p7mm-52h2.json +++ b/advisories/unreviewed/2022/08/GHSA-f326-p7mm-52h2/GHSA-f326-p7mm-52h2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-f6j2-46v4-qxj3/GHSA-f6j2-46v4-qxj3.json b/advisories/unreviewed/2022/08/GHSA-f6j2-46v4-qxj3/GHSA-f6j2-46v4-qxj3.json index cecc3dd0c5b..6dc7879fd12 100644 --- a/advisories/unreviewed/2022/08/GHSA-f6j2-46v4-qxj3/GHSA-f6j2-46v4-qxj3.json +++ b/advisories/unreviewed/2022/08/GHSA-f6j2-46v4-qxj3/GHSA-f6j2-46v4-qxj3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-fwrj-wmpm-6349/GHSA-fwrj-wmpm-6349.json b/advisories/unreviewed/2022/08/GHSA-fwrj-wmpm-6349/GHSA-fwrj-wmpm-6349.json index 367219030bb..de8dd7a1084 100644 --- a/advisories/unreviewed/2022/08/GHSA-fwrj-wmpm-6349/GHSA-fwrj-wmpm-6349.json +++ b/advisories/unreviewed/2022/08/GHSA-fwrj-wmpm-6349/GHSA-fwrj-wmpm-6349.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/08/GHSA-gc43-xmc2-2fjj/GHSA-gc43-xmc2-2fjj.json b/advisories/unreviewed/2022/08/GHSA-gc43-xmc2-2fjj/GHSA-gc43-xmc2-2fjj.json index 2a3e0ba4b4c..5038456c5fd 100644 --- a/advisories/unreviewed/2022/08/GHSA-gc43-xmc2-2fjj/GHSA-gc43-xmc2-2fjj.json +++ b/advisories/unreviewed/2022/08/GHSA-gc43-xmc2-2fjj/GHSA-gc43-xmc2-2fjj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-h2h9-xpc4-69jw/GHSA-h2h9-xpc4-69jw.json b/advisories/unreviewed/2022/08/GHSA-h2h9-xpc4-69jw/GHSA-h2h9-xpc4-69jw.json index 7e47d65e0cf..bdbbb2a9345 100644 --- a/advisories/unreviewed/2022/08/GHSA-h2h9-xpc4-69jw/GHSA-h2h9-xpc4-69jw.json +++ b/advisories/unreviewed/2022/08/GHSA-h2h9-xpc4-69jw/GHSA-h2h9-xpc4-69jw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/08/GHSA-h2xj-c24f-922g/GHSA-h2xj-c24f-922g.json b/advisories/unreviewed/2022/08/GHSA-h2xj-c24f-922g/GHSA-h2xj-c24f-922g.json index 2ef2d4999e2..689135e26e2 100644 --- a/advisories/unreviewed/2022/08/GHSA-h2xj-c24f-922g/GHSA-h2xj-c24f-922g.json +++ b/advisories/unreviewed/2022/08/GHSA-h2xj-c24f-922g/GHSA-h2xj-c24f-922g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/08/GHSA-hc4f-4mvr-7cv9/GHSA-hc4f-4mvr-7cv9.json b/advisories/unreviewed/2022/08/GHSA-hc4f-4mvr-7cv9/GHSA-hc4f-4mvr-7cv9.json index ff32500faef..91e6c4a9ce6 100644 --- a/advisories/unreviewed/2022/08/GHSA-hc4f-4mvr-7cv9/GHSA-hc4f-4mvr-7cv9.json +++ b/advisories/unreviewed/2022/08/GHSA-hc4f-4mvr-7cv9/GHSA-hc4f-4mvr-7cv9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-hj5h-38wf-8hcg/GHSA-hj5h-38wf-8hcg.json b/advisories/unreviewed/2022/08/GHSA-hj5h-38wf-8hcg/GHSA-hj5h-38wf-8hcg.json index f9488508fe6..472fabd6041 100644 --- a/advisories/unreviewed/2022/08/GHSA-hj5h-38wf-8hcg/GHSA-hj5h-38wf-8hcg.json +++ b/advisories/unreviewed/2022/08/GHSA-hj5h-38wf-8hcg/GHSA-hj5h-38wf-8hcg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-hm5j-w2qf-6392/GHSA-hm5j-w2qf-6392.json b/advisories/unreviewed/2022/08/GHSA-hm5j-w2qf-6392/GHSA-hm5j-w2qf-6392.json index 849f7dd7e57..e964cdbfb2d 100644 --- a/advisories/unreviewed/2022/08/GHSA-hm5j-w2qf-6392/GHSA-hm5j-w2qf-6392.json +++ b/advisories/unreviewed/2022/08/GHSA-hm5j-w2qf-6392/GHSA-hm5j-w2qf-6392.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/08/GHSA-j53q-96h4-245m/GHSA-j53q-96h4-245m.json b/advisories/unreviewed/2022/08/GHSA-j53q-96h4-245m/GHSA-j53q-96h4-245m.json index eb9996242ef..6297cfb0a98 100644 --- a/advisories/unreviewed/2022/08/GHSA-j53q-96h4-245m/GHSA-j53q-96h4-245m.json +++ b/advisories/unreviewed/2022/08/GHSA-j53q-96h4-245m/GHSA-j53q-96h4-245m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/08/GHSA-j722-r3rg-rv33/GHSA-j722-r3rg-rv33.json b/advisories/unreviewed/2022/08/GHSA-j722-r3rg-rv33/GHSA-j722-r3rg-rv33.json index f4b45b126a5..6a987a2b38c 100644 --- a/advisories/unreviewed/2022/08/GHSA-j722-r3rg-rv33/GHSA-j722-r3rg-rv33.json +++ b/advisories/unreviewed/2022/08/GHSA-j722-r3rg-rv33/GHSA-j722-r3rg-rv33.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-j759-h67r-3669/GHSA-j759-h67r-3669.json b/advisories/unreviewed/2022/08/GHSA-j759-h67r-3669/GHSA-j759-h67r-3669.json index 98e17a8bf8c..5ce938cc705 100644 --- a/advisories/unreviewed/2022/08/GHSA-j759-h67r-3669/GHSA-j759-h67r-3669.json +++ b/advisories/unreviewed/2022/08/GHSA-j759-h67r-3669/GHSA-j759-h67r-3669.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-j7g9-fcw9-wxcf/GHSA-j7g9-fcw9-wxcf.json b/advisories/unreviewed/2022/08/GHSA-j7g9-fcw9-wxcf/GHSA-j7g9-fcw9-wxcf.json index 688a710ccd1..aaf0d67daf9 100644 --- a/advisories/unreviewed/2022/08/GHSA-j7g9-fcw9-wxcf/GHSA-j7g9-fcw9-wxcf.json +++ b/advisories/unreviewed/2022/08/GHSA-j7g9-fcw9-wxcf/GHSA-j7g9-fcw9-wxcf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-j8q5-rwmr-9hg8/GHSA-j8q5-rwmr-9hg8.json b/advisories/unreviewed/2022/08/GHSA-j8q5-rwmr-9hg8/GHSA-j8q5-rwmr-9hg8.json index 04122f87e56..f3977a0ac4d 100644 --- a/advisories/unreviewed/2022/08/GHSA-j8q5-rwmr-9hg8/GHSA-j8q5-rwmr-9hg8.json +++ b/advisories/unreviewed/2022/08/GHSA-j8q5-rwmr-9hg8/GHSA-j8q5-rwmr-9hg8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-j937-h7hx-83cg/GHSA-j937-h7hx-83cg.json b/advisories/unreviewed/2022/08/GHSA-j937-h7hx-83cg/GHSA-j937-h7hx-83cg.json index fa5b9f5acac..52329123d0f 100644 --- a/advisories/unreviewed/2022/08/GHSA-j937-h7hx-83cg/GHSA-j937-h7hx-83cg.json +++ b/advisories/unreviewed/2022/08/GHSA-j937-h7hx-83cg/GHSA-j937-h7hx-83cg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/08/GHSA-j9fj-58m4-qmc7/GHSA-j9fj-58m4-qmc7.json b/advisories/unreviewed/2022/08/GHSA-j9fj-58m4-qmc7/GHSA-j9fj-58m4-qmc7.json index f6d4c45b9ee..611cd67bce7 100644 --- a/advisories/unreviewed/2022/08/GHSA-j9fj-58m4-qmc7/GHSA-j9fj-58m4-qmc7.json +++ b/advisories/unreviewed/2022/08/GHSA-j9fj-58m4-qmc7/GHSA-j9fj-58m4-qmc7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-j9xq-f5hm-3m48/GHSA-j9xq-f5hm-3m48.json b/advisories/unreviewed/2022/08/GHSA-j9xq-f5hm-3m48/GHSA-j9xq-f5hm-3m48.json index 0b8de6c50fe..e2a193872a6 100644 --- a/advisories/unreviewed/2022/08/GHSA-j9xq-f5hm-3m48/GHSA-j9xq-f5hm-3m48.json +++ b/advisories/unreviewed/2022/08/GHSA-j9xq-f5hm-3m48/GHSA-j9xq-f5hm-3m48.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-jg6x-rh3w-6pp3/GHSA-jg6x-rh3w-6pp3.json b/advisories/unreviewed/2022/08/GHSA-jg6x-rh3w-6pp3/GHSA-jg6x-rh3w-6pp3.json index 13f8c7be1a8..7dad32b3261 100644 --- a/advisories/unreviewed/2022/08/GHSA-jg6x-rh3w-6pp3/GHSA-jg6x-rh3w-6pp3.json +++ b/advisories/unreviewed/2022/08/GHSA-jg6x-rh3w-6pp3/GHSA-jg6x-rh3w-6pp3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/08/GHSA-jj55-r28f-x5pv/GHSA-jj55-r28f-x5pv.json b/advisories/unreviewed/2022/08/GHSA-jj55-r28f-x5pv/GHSA-jj55-r28f-x5pv.json index 5a4ef0463d7..4b810ef4b98 100644 --- a/advisories/unreviewed/2022/08/GHSA-jj55-r28f-x5pv/GHSA-jj55-r28f-x5pv.json +++ b/advisories/unreviewed/2022/08/GHSA-jj55-r28f-x5pv/GHSA-jj55-r28f-x5pv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-jv78-qfm7-p5qh/GHSA-jv78-qfm7-p5qh.json b/advisories/unreviewed/2022/08/GHSA-jv78-qfm7-p5qh/GHSA-jv78-qfm7-p5qh.json index 1a8b5600821..7cd9970c275 100644 --- a/advisories/unreviewed/2022/08/GHSA-jv78-qfm7-p5qh/GHSA-jv78-qfm7-p5qh.json +++ b/advisories/unreviewed/2022/08/GHSA-jv78-qfm7-p5qh/GHSA-jv78-qfm7-p5qh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-jwcm-wfw4-3v7h/GHSA-jwcm-wfw4-3v7h.json b/advisories/unreviewed/2022/08/GHSA-jwcm-wfw4-3v7h/GHSA-jwcm-wfw4-3v7h.json index 9051338d9db..4bf8dbce747 100644 --- a/advisories/unreviewed/2022/08/GHSA-jwcm-wfw4-3v7h/GHSA-jwcm-wfw4-3v7h.json +++ b/advisories/unreviewed/2022/08/GHSA-jwcm-wfw4-3v7h/GHSA-jwcm-wfw4-3v7h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-jx9x-9jjm-chf3/GHSA-jx9x-9jjm-chf3.json b/advisories/unreviewed/2022/08/GHSA-jx9x-9jjm-chf3/GHSA-jx9x-9jjm-chf3.json index eeec0b4b0f4..ce23fef9760 100644 --- a/advisories/unreviewed/2022/08/GHSA-jx9x-9jjm-chf3/GHSA-jx9x-9jjm-chf3.json +++ b/advisories/unreviewed/2022/08/GHSA-jx9x-9jjm-chf3/GHSA-jx9x-9jjm-chf3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/08/GHSA-mrcj-wmm5-vj35/GHSA-mrcj-wmm5-vj35.json b/advisories/unreviewed/2022/08/GHSA-mrcj-wmm5-vj35/GHSA-mrcj-wmm5-vj35.json index bb1324e4f5c..2d9a0ad15e4 100644 --- a/advisories/unreviewed/2022/08/GHSA-mrcj-wmm5-vj35/GHSA-mrcj-wmm5-vj35.json +++ b/advisories/unreviewed/2022/08/GHSA-mrcj-wmm5-vj35/GHSA-mrcj-wmm5-vj35.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-mvpx-6xp2-66jp/GHSA-mvpx-6xp2-66jp.json b/advisories/unreviewed/2022/08/GHSA-mvpx-6xp2-66jp/GHSA-mvpx-6xp2-66jp.json index 878431539b5..eaaaf8658c3 100644 --- a/advisories/unreviewed/2022/08/GHSA-mvpx-6xp2-66jp/GHSA-mvpx-6xp2-66jp.json +++ b/advisories/unreviewed/2022/08/GHSA-mvpx-6xp2-66jp/GHSA-mvpx-6xp2-66jp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-p738-hfmq-65wm/GHSA-p738-hfmq-65wm.json b/advisories/unreviewed/2022/08/GHSA-p738-hfmq-65wm/GHSA-p738-hfmq-65wm.json index 756fd8b00dc..b960eead578 100644 --- a/advisories/unreviewed/2022/08/GHSA-p738-hfmq-65wm/GHSA-p738-hfmq-65wm.json +++ b/advisories/unreviewed/2022/08/GHSA-p738-hfmq-65wm/GHSA-p738-hfmq-65wm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-p9vw-hw52-76qx/GHSA-p9vw-hw52-76qx.json b/advisories/unreviewed/2022/08/GHSA-p9vw-hw52-76qx/GHSA-p9vw-hw52-76qx.json index 6cc092ef9da..815e26f9aa0 100644 --- a/advisories/unreviewed/2022/08/GHSA-p9vw-hw52-76qx/GHSA-p9vw-hw52-76qx.json +++ b/advisories/unreviewed/2022/08/GHSA-p9vw-hw52-76qx/GHSA-p9vw-hw52-76qx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-pc8p-f8jw-v3vr/GHSA-pc8p-f8jw-v3vr.json b/advisories/unreviewed/2022/08/GHSA-pc8p-f8jw-v3vr/GHSA-pc8p-f8jw-v3vr.json index 47708399746..46265850136 100644 --- a/advisories/unreviewed/2022/08/GHSA-pc8p-f8jw-v3vr/GHSA-pc8p-f8jw-v3vr.json +++ b/advisories/unreviewed/2022/08/GHSA-pc8p-f8jw-v3vr/GHSA-pc8p-f8jw-v3vr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-pgvw-9q7p-5vwx/GHSA-pgvw-9q7p-5vwx.json b/advisories/unreviewed/2022/08/GHSA-pgvw-9q7p-5vwx/GHSA-pgvw-9q7p-5vwx.json index e8ca0795b5b..bec78de5d0e 100644 --- a/advisories/unreviewed/2022/08/GHSA-pgvw-9q7p-5vwx/GHSA-pgvw-9q7p-5vwx.json +++ b/advisories/unreviewed/2022/08/GHSA-pgvw-9q7p-5vwx/GHSA-pgvw-9q7p-5vwx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-q6pv-mfgh-724w/GHSA-q6pv-mfgh-724w.json b/advisories/unreviewed/2022/08/GHSA-q6pv-mfgh-724w/GHSA-q6pv-mfgh-724w.json index 7b4829c4da7..b8d8ba12747 100644 --- a/advisories/unreviewed/2022/08/GHSA-q6pv-mfgh-724w/GHSA-q6pv-mfgh-724w.json +++ b/advisories/unreviewed/2022/08/GHSA-q6pv-mfgh-724w/GHSA-q6pv-mfgh-724w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-qfcc-9m6r-r23m/GHSA-qfcc-9m6r-r23m.json b/advisories/unreviewed/2022/08/GHSA-qfcc-9m6r-r23m/GHSA-qfcc-9m6r-r23m.json index e087d12ab0f..9828ece5594 100644 --- a/advisories/unreviewed/2022/08/GHSA-qfcc-9m6r-r23m/GHSA-qfcc-9m6r-r23m.json +++ b/advisories/unreviewed/2022/08/GHSA-qfcc-9m6r-r23m/GHSA-qfcc-9m6r-r23m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-qghg-p9wq-272p/GHSA-qghg-p9wq-272p.json b/advisories/unreviewed/2022/08/GHSA-qghg-p9wq-272p/GHSA-qghg-p9wq-272p.json index a05386f1799..02c05d27bb4 100644 --- a/advisories/unreviewed/2022/08/GHSA-qghg-p9wq-272p/GHSA-qghg-p9wq-272p.json +++ b/advisories/unreviewed/2022/08/GHSA-qghg-p9wq-272p/GHSA-qghg-p9wq-272p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-qxpm-8p5x-pr6j/GHSA-qxpm-8p5x-pr6j.json b/advisories/unreviewed/2022/08/GHSA-qxpm-8p5x-pr6j/GHSA-qxpm-8p5x-pr6j.json index 30c3fac6a6b..d692d4468d3 100644 --- a/advisories/unreviewed/2022/08/GHSA-qxpm-8p5x-pr6j/GHSA-qxpm-8p5x-pr6j.json +++ b/advisories/unreviewed/2022/08/GHSA-qxpm-8p5x-pr6j/GHSA-qxpm-8p5x-pr6j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-r9m5-7q57-2f88/GHSA-r9m5-7q57-2f88.json b/advisories/unreviewed/2022/08/GHSA-r9m5-7q57-2f88/GHSA-r9m5-7q57-2f88.json index c9ac570fce8..94dd3747371 100644 --- a/advisories/unreviewed/2022/08/GHSA-r9m5-7q57-2f88/GHSA-r9m5-7q57-2f88.json +++ b/advisories/unreviewed/2022/08/GHSA-r9m5-7q57-2f88/GHSA-r9m5-7q57-2f88.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/08/GHSA-rc6f-9g56-mr6q/GHSA-rc6f-9g56-mr6q.json b/advisories/unreviewed/2022/08/GHSA-rc6f-9g56-mr6q/GHSA-rc6f-9g56-mr6q.json index a419c9943ac..dceacbf08d1 100644 --- a/advisories/unreviewed/2022/08/GHSA-rc6f-9g56-mr6q/GHSA-rc6f-9g56-mr6q.json +++ b/advisories/unreviewed/2022/08/GHSA-rc6f-9g56-mr6q/GHSA-rc6f-9g56-mr6q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-rpmr-9m52-wm2f/GHSA-rpmr-9m52-wm2f.json b/advisories/unreviewed/2022/08/GHSA-rpmr-9m52-wm2f/GHSA-rpmr-9m52-wm2f.json index 680d78e43ca..5b5e79e1d4d 100644 --- a/advisories/unreviewed/2022/08/GHSA-rpmr-9m52-wm2f/GHSA-rpmr-9m52-wm2f.json +++ b/advisories/unreviewed/2022/08/GHSA-rpmr-9m52-wm2f/GHSA-rpmr-9m52-wm2f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-rvx6-587f-87jf/GHSA-rvx6-587f-87jf.json b/advisories/unreviewed/2022/08/GHSA-rvx6-587f-87jf/GHSA-rvx6-587f-87jf.json index af895540f9b..f37387e711c 100644 --- a/advisories/unreviewed/2022/08/GHSA-rvx6-587f-87jf/GHSA-rvx6-587f-87jf.json +++ b/advisories/unreviewed/2022/08/GHSA-rvx6-587f-87jf/GHSA-rvx6-587f-87jf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-v2fj-q75c-65mr/GHSA-v2fj-q75c-65mr.json b/advisories/unreviewed/2022/08/GHSA-v2fj-q75c-65mr/GHSA-v2fj-q75c-65mr.json index ee51e2622e2..cc4aa9e2b8d 100644 --- a/advisories/unreviewed/2022/08/GHSA-v2fj-q75c-65mr/GHSA-v2fj-q75c-65mr.json +++ b/advisories/unreviewed/2022/08/GHSA-v2fj-q75c-65mr/GHSA-v2fj-q75c-65mr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-v492-qvfp-r274/GHSA-v492-qvfp-r274.json b/advisories/unreviewed/2022/08/GHSA-v492-qvfp-r274/GHSA-v492-qvfp-r274.json index d0e7ea93bc6..00598ddd4be 100644 --- a/advisories/unreviewed/2022/08/GHSA-v492-qvfp-r274/GHSA-v492-qvfp-r274.json +++ b/advisories/unreviewed/2022/08/GHSA-v492-qvfp-r274/GHSA-v492-qvfp-r274.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-v82p-wrg2-wj3m/GHSA-v82p-wrg2-wj3m.json b/advisories/unreviewed/2022/08/GHSA-v82p-wrg2-wj3m/GHSA-v82p-wrg2-wj3m.json index b5e85d87798..831583bd4d4 100644 --- a/advisories/unreviewed/2022/08/GHSA-v82p-wrg2-wj3m/GHSA-v82p-wrg2-wj3m.json +++ b/advisories/unreviewed/2022/08/GHSA-v82p-wrg2-wj3m/GHSA-v82p-wrg2-wj3m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-vm2m-5jfc-whq2/GHSA-vm2m-5jfc-whq2.json b/advisories/unreviewed/2022/08/GHSA-vm2m-5jfc-whq2/GHSA-vm2m-5jfc-whq2.json index bd725ebb974..0722907dc8f 100644 --- a/advisories/unreviewed/2022/08/GHSA-vm2m-5jfc-whq2/GHSA-vm2m-5jfc-whq2.json +++ b/advisories/unreviewed/2022/08/GHSA-vm2m-5jfc-whq2/GHSA-vm2m-5jfc-whq2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/08/GHSA-vr4q-67qg-vvf6/GHSA-vr4q-67qg-vvf6.json b/advisories/unreviewed/2022/08/GHSA-vr4q-67qg-vvf6/GHSA-vr4q-67qg-vvf6.json index e9650dc0102..47789ba1136 100644 --- a/advisories/unreviewed/2022/08/GHSA-vr4q-67qg-vvf6/GHSA-vr4q-67qg-vvf6.json +++ b/advisories/unreviewed/2022/08/GHSA-vr4q-67qg-vvf6/GHSA-vr4q-67qg-vvf6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-vwg4-pm8m-728q/GHSA-vwg4-pm8m-728q.json b/advisories/unreviewed/2022/08/GHSA-vwg4-pm8m-728q/GHSA-vwg4-pm8m-728q.json index 89a521af887..3bc25073c77 100644 --- a/advisories/unreviewed/2022/08/GHSA-vwg4-pm8m-728q/GHSA-vwg4-pm8m-728q.json +++ b/advisories/unreviewed/2022/08/GHSA-vwg4-pm8m-728q/GHSA-vwg4-pm8m-728q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/08/GHSA-vx2x-wm5h-864r/GHSA-vx2x-wm5h-864r.json b/advisories/unreviewed/2022/08/GHSA-vx2x-wm5h-864r/GHSA-vx2x-wm5h-864r.json index af26f683aa2..76a2f652222 100644 --- a/advisories/unreviewed/2022/08/GHSA-vx2x-wm5h-864r/GHSA-vx2x-wm5h-864r.json +++ b/advisories/unreviewed/2022/08/GHSA-vx2x-wm5h-864r/GHSA-vx2x-wm5h-864r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-w2jp-m4xr-vgr3/GHSA-w2jp-m4xr-vgr3.json b/advisories/unreviewed/2022/08/GHSA-w2jp-m4xr-vgr3/GHSA-w2jp-m4xr-vgr3.json index c9423a8dc55..c5e25fe3f75 100644 --- a/advisories/unreviewed/2022/08/GHSA-w2jp-m4xr-vgr3/GHSA-w2jp-m4xr-vgr3.json +++ b/advisories/unreviewed/2022/08/GHSA-w2jp-m4xr-vgr3/GHSA-w2jp-m4xr-vgr3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-w9xf-vff6-27gq/GHSA-w9xf-vff6-27gq.json b/advisories/unreviewed/2022/08/GHSA-w9xf-vff6-27gq/GHSA-w9xf-vff6-27gq.json index e29f49b5e1c..157cc9099f4 100644 --- a/advisories/unreviewed/2022/08/GHSA-w9xf-vff6-27gq/GHSA-w9xf-vff6-27gq.json +++ b/advisories/unreviewed/2022/08/GHSA-w9xf-vff6-27gq/GHSA-w9xf-vff6-27gq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-wggx-2gxw-9rgf/GHSA-wggx-2gxw-9rgf.json b/advisories/unreviewed/2022/08/GHSA-wggx-2gxw-9rgf/GHSA-wggx-2gxw-9rgf.json index 712064fbef5..ae7aa60c932 100644 --- a/advisories/unreviewed/2022/08/GHSA-wggx-2gxw-9rgf/GHSA-wggx-2gxw-9rgf.json +++ b/advisories/unreviewed/2022/08/GHSA-wggx-2gxw-9rgf/GHSA-wggx-2gxw-9rgf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-wpf4-f6g8-892r/GHSA-wpf4-f6g8-892r.json b/advisories/unreviewed/2022/08/GHSA-wpf4-f6g8-892r/GHSA-wpf4-f6g8-892r.json index 767afb5d42f..30d365d595f 100644 --- a/advisories/unreviewed/2022/08/GHSA-wpf4-f6g8-892r/GHSA-wpf4-f6g8-892r.json +++ b/advisories/unreviewed/2022/08/GHSA-wpf4-f6g8-892r/GHSA-wpf4-f6g8-892r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-wvx3-vg8q-qgjv/GHSA-wvx3-vg8q-qgjv.json b/advisories/unreviewed/2022/08/GHSA-wvx3-vg8q-qgjv/GHSA-wvx3-vg8q-qgjv.json index 5550577ff17..954419d1c15 100644 --- a/advisories/unreviewed/2022/08/GHSA-wvx3-vg8q-qgjv/GHSA-wvx3-vg8q-qgjv.json +++ b/advisories/unreviewed/2022/08/GHSA-wvx3-vg8q-qgjv/GHSA-wvx3-vg8q-qgjv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-wx3h-r76h-pp8v/GHSA-wx3h-r76h-pp8v.json b/advisories/unreviewed/2022/08/GHSA-wx3h-r76h-pp8v/GHSA-wx3h-r76h-pp8v.json index 6f32c4880bb..fc2b9c7de2e 100644 --- a/advisories/unreviewed/2022/08/GHSA-wx3h-r76h-pp8v/GHSA-wx3h-r76h-pp8v.json +++ b/advisories/unreviewed/2022/08/GHSA-wx3h-r76h-pp8v/GHSA-wx3h-r76h-pp8v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/08/GHSA-x27v-rjqh-f4xc/GHSA-x27v-rjqh-f4xc.json b/advisories/unreviewed/2022/08/GHSA-x27v-rjqh-f4xc/GHSA-x27v-rjqh-f4xc.json index 0a159a0322a..7a04b72f3fc 100644 --- a/advisories/unreviewed/2022/08/GHSA-x27v-rjqh-f4xc/GHSA-x27v-rjqh-f4xc.json +++ b/advisories/unreviewed/2022/08/GHSA-x27v-rjqh-f4xc/GHSA-x27v-rjqh-f4xc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-xfpm-q238-hr33/GHSA-xfpm-q238-hr33.json b/advisories/unreviewed/2022/08/GHSA-xfpm-q238-hr33/GHSA-xfpm-q238-hr33.json index 7e52a48b1f7..c1e3e027eb5 100644 --- a/advisories/unreviewed/2022/08/GHSA-xfpm-q238-hr33/GHSA-xfpm-q238-hr33.json +++ b/advisories/unreviewed/2022/08/GHSA-xfpm-q238-hr33/GHSA-xfpm-q238-hr33.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-xjp5-5ph6-c66c/GHSA-xjp5-5ph6-c66c.json b/advisories/unreviewed/2022/08/GHSA-xjp5-5ph6-c66c/GHSA-xjp5-5ph6-c66c.json index 2cb19965430..312b41c353b 100644 --- a/advisories/unreviewed/2022/08/GHSA-xjp5-5ph6-c66c/GHSA-xjp5-5ph6-c66c.json +++ b/advisories/unreviewed/2022/08/GHSA-xjp5-5ph6-c66c/GHSA-xjp5-5ph6-c66c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-xqp4-ghh2-wgpj/GHSA-xqp4-ghh2-wgpj.json b/advisories/unreviewed/2022/08/GHSA-xqp4-ghh2-wgpj/GHSA-xqp4-ghh2-wgpj.json index 6c14ea24cf6..ab93034fb80 100644 --- a/advisories/unreviewed/2022/08/GHSA-xqp4-ghh2-wgpj/GHSA-xqp4-ghh2-wgpj.json +++ b/advisories/unreviewed/2022/08/GHSA-xqp4-ghh2-wgpj/GHSA-xqp4-ghh2-wgpj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-xxx4-63qf-8v87/GHSA-xxx4-63qf-8v87.json b/advisories/unreviewed/2022/08/GHSA-xxx4-63qf-8v87/GHSA-xxx4-63qf-8v87.json index d78e0764db3..1cb47958f22 100644 --- a/advisories/unreviewed/2022/08/GHSA-xxx4-63qf-8v87/GHSA-xxx4-63qf-8v87.json +++ b/advisories/unreviewed/2022/08/GHSA-xxx4-63qf-8v87/GHSA-xxx4-63qf-8v87.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-2jhj-7g8h-j3h6/GHSA-2jhj-7g8h-j3h6.json b/advisories/unreviewed/2022/09/GHSA-2jhj-7g8h-j3h6/GHSA-2jhj-7g8h-j3h6.json index fef6f667106..de398b4c0a5 100644 --- a/advisories/unreviewed/2022/09/GHSA-2jhj-7g8h-j3h6/GHSA-2jhj-7g8h-j3h6.json +++ b/advisories/unreviewed/2022/09/GHSA-2jhj-7g8h-j3h6/GHSA-2jhj-7g8h-j3h6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-2mhv-543f-h64j/GHSA-2mhv-543f-h64j.json b/advisories/unreviewed/2022/09/GHSA-2mhv-543f-h64j/GHSA-2mhv-543f-h64j.json index e5b81ebb629..49ae0df6390 100644 --- a/advisories/unreviewed/2022/09/GHSA-2mhv-543f-h64j/GHSA-2mhv-543f-h64j.json +++ b/advisories/unreviewed/2022/09/GHSA-2mhv-543f-h64j/GHSA-2mhv-543f-h64j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-2prc-g792-pf54/GHSA-2prc-g792-pf54.json b/advisories/unreviewed/2022/09/GHSA-2prc-g792-pf54/GHSA-2prc-g792-pf54.json index 559d68bec6e..98e2ed969bf 100644 --- a/advisories/unreviewed/2022/09/GHSA-2prc-g792-pf54/GHSA-2prc-g792-pf54.json +++ b/advisories/unreviewed/2022/09/GHSA-2prc-g792-pf54/GHSA-2prc-g792-pf54.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-32p8-qq6w-3v8c/GHSA-32p8-qq6w-3v8c.json b/advisories/unreviewed/2022/09/GHSA-32p8-qq6w-3v8c/GHSA-32p8-qq6w-3v8c.json index d0d8139a42c..bdc10ab6511 100644 --- a/advisories/unreviewed/2022/09/GHSA-32p8-qq6w-3v8c/GHSA-32p8-qq6w-3v8c.json +++ b/advisories/unreviewed/2022/09/GHSA-32p8-qq6w-3v8c/GHSA-32p8-qq6w-3v8c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-359c-w88w-w728/GHSA-359c-w88w-w728.json b/advisories/unreviewed/2022/09/GHSA-359c-w88w-w728/GHSA-359c-w88w-w728.json index 180e9a8d0b5..1cc81a60f26 100644 --- a/advisories/unreviewed/2022/09/GHSA-359c-w88w-w728/GHSA-359c-w88w-w728.json +++ b/advisories/unreviewed/2022/09/GHSA-359c-w88w-w728/GHSA-359c-w88w-w728.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-497f-57wj-pwc5/GHSA-497f-57wj-pwc5.json b/advisories/unreviewed/2022/09/GHSA-497f-57wj-pwc5/GHSA-497f-57wj-pwc5.json index c277d154d9d..b7e554148c2 100644 --- a/advisories/unreviewed/2022/09/GHSA-497f-57wj-pwc5/GHSA-497f-57wj-pwc5.json +++ b/advisories/unreviewed/2022/09/GHSA-497f-57wj-pwc5/GHSA-497f-57wj-pwc5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-49x8-xrpp-pg4g/GHSA-49x8-xrpp-pg4g.json b/advisories/unreviewed/2022/09/GHSA-49x8-xrpp-pg4g/GHSA-49x8-xrpp-pg4g.json index bc318a3aab2..08275737e5c 100644 --- a/advisories/unreviewed/2022/09/GHSA-49x8-xrpp-pg4g/GHSA-49x8-xrpp-pg4g.json +++ b/advisories/unreviewed/2022/09/GHSA-49x8-xrpp-pg4g/GHSA-49x8-xrpp-pg4g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-4cm4-j9qp-hc8j/GHSA-4cm4-j9qp-hc8j.json b/advisories/unreviewed/2022/09/GHSA-4cm4-j9qp-hc8j/GHSA-4cm4-j9qp-hc8j.json index 78e9b155752..33f55663a9a 100644 --- a/advisories/unreviewed/2022/09/GHSA-4cm4-j9qp-hc8j/GHSA-4cm4-j9qp-hc8j.json +++ b/advisories/unreviewed/2022/09/GHSA-4cm4-j9qp-hc8j/GHSA-4cm4-j9qp-hc8j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-4rqm-jp2r-7wr9/GHSA-4rqm-jp2r-7wr9.json b/advisories/unreviewed/2022/09/GHSA-4rqm-jp2r-7wr9/GHSA-4rqm-jp2r-7wr9.json index 330efcda069..6be4cccc45f 100644 --- a/advisories/unreviewed/2022/09/GHSA-4rqm-jp2r-7wr9/GHSA-4rqm-jp2r-7wr9.json +++ b/advisories/unreviewed/2022/09/GHSA-4rqm-jp2r-7wr9/GHSA-4rqm-jp2r-7wr9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-4vx6-fgh9-hr42/GHSA-4vx6-fgh9-hr42.json b/advisories/unreviewed/2022/09/GHSA-4vx6-fgh9-hr42/GHSA-4vx6-fgh9-hr42.json index e96afbf4e86..1fd10e09344 100644 --- a/advisories/unreviewed/2022/09/GHSA-4vx6-fgh9-hr42/GHSA-4vx6-fgh9-hr42.json +++ b/advisories/unreviewed/2022/09/GHSA-4vx6-fgh9-hr42/GHSA-4vx6-fgh9-hr42.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-4x55-vrfr-pm6m/GHSA-4x55-vrfr-pm6m.json b/advisories/unreviewed/2022/09/GHSA-4x55-vrfr-pm6m/GHSA-4x55-vrfr-pm6m.json index 48d4559c196..8cea578fa9e 100644 --- a/advisories/unreviewed/2022/09/GHSA-4x55-vrfr-pm6m/GHSA-4x55-vrfr-pm6m.json +++ b/advisories/unreviewed/2022/09/GHSA-4x55-vrfr-pm6m/GHSA-4x55-vrfr-pm6m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-57ww-qgjv-3g3c/GHSA-57ww-qgjv-3g3c.json b/advisories/unreviewed/2022/09/GHSA-57ww-qgjv-3g3c/GHSA-57ww-qgjv-3g3c.json index 146fbbcc437..42f7e51225c 100644 --- a/advisories/unreviewed/2022/09/GHSA-57ww-qgjv-3g3c/GHSA-57ww-qgjv-3g3c.json +++ b/advisories/unreviewed/2022/09/GHSA-57ww-qgjv-3g3c/GHSA-57ww-qgjv-3g3c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-5c8r-r849-xgpp/GHSA-5c8r-r849-xgpp.json b/advisories/unreviewed/2022/09/GHSA-5c8r-r849-xgpp/GHSA-5c8r-r849-xgpp.json index b1d35980749..7bbef7ac937 100644 --- a/advisories/unreviewed/2022/09/GHSA-5c8r-r849-xgpp/GHSA-5c8r-r849-xgpp.json +++ b/advisories/unreviewed/2022/09/GHSA-5c8r-r849-xgpp/GHSA-5c8r-r849-xgpp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-5jcq-9vgg-wvh8/GHSA-5jcq-9vgg-wvh8.json b/advisories/unreviewed/2022/09/GHSA-5jcq-9vgg-wvh8/GHSA-5jcq-9vgg-wvh8.json index 2ba049c1013..bbc67e06ff0 100644 --- a/advisories/unreviewed/2022/09/GHSA-5jcq-9vgg-wvh8/GHSA-5jcq-9vgg-wvh8.json +++ b/advisories/unreviewed/2022/09/GHSA-5jcq-9vgg-wvh8/GHSA-5jcq-9vgg-wvh8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-5mv9-mrmj-3h2c/GHSA-5mv9-mrmj-3h2c.json b/advisories/unreviewed/2022/09/GHSA-5mv9-mrmj-3h2c/GHSA-5mv9-mrmj-3h2c.json index 8656f42f940..6a6dc3d5b4e 100644 --- a/advisories/unreviewed/2022/09/GHSA-5mv9-mrmj-3h2c/GHSA-5mv9-mrmj-3h2c.json +++ b/advisories/unreviewed/2022/09/GHSA-5mv9-mrmj-3h2c/GHSA-5mv9-mrmj-3h2c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-6655-7w5j-5h7j/GHSA-6655-7w5j-5h7j.json b/advisories/unreviewed/2022/09/GHSA-6655-7w5j-5h7j/GHSA-6655-7w5j-5h7j.json index 7ba405b9cea..77770436256 100644 --- a/advisories/unreviewed/2022/09/GHSA-6655-7w5j-5h7j/GHSA-6655-7w5j-5h7j.json +++ b/advisories/unreviewed/2022/09/GHSA-6655-7w5j-5h7j/GHSA-6655-7w5j-5h7j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-6g28-qxjm-5vh2/GHSA-6g28-qxjm-5vh2.json b/advisories/unreviewed/2022/09/GHSA-6g28-qxjm-5vh2/GHSA-6g28-qxjm-5vh2.json index b5bee58afb0..9951f918731 100644 --- a/advisories/unreviewed/2022/09/GHSA-6g28-qxjm-5vh2/GHSA-6g28-qxjm-5vh2.json +++ b/advisories/unreviewed/2022/09/GHSA-6g28-qxjm-5vh2/GHSA-6g28-qxjm-5vh2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-72hv-vf28-v4jh/GHSA-72hv-vf28-v4jh.json b/advisories/unreviewed/2022/09/GHSA-72hv-vf28-v4jh/GHSA-72hv-vf28-v4jh.json index a7a6ec877fb..91afbcfc0a9 100644 --- a/advisories/unreviewed/2022/09/GHSA-72hv-vf28-v4jh/GHSA-72hv-vf28-v4jh.json +++ b/advisories/unreviewed/2022/09/GHSA-72hv-vf28-v4jh/GHSA-72hv-vf28-v4jh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-7f59-xm25-c224/GHSA-7f59-xm25-c224.json b/advisories/unreviewed/2022/09/GHSA-7f59-xm25-c224/GHSA-7f59-xm25-c224.json index d8c276258e3..35b71450d4b 100644 --- a/advisories/unreviewed/2022/09/GHSA-7f59-xm25-c224/GHSA-7f59-xm25-c224.json +++ b/advisories/unreviewed/2022/09/GHSA-7f59-xm25-c224/GHSA-7f59-xm25-c224.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/09/GHSA-7jvj-73qc-2776/GHSA-7jvj-73qc-2776.json b/advisories/unreviewed/2022/09/GHSA-7jvj-73qc-2776/GHSA-7jvj-73qc-2776.json index 86bfeb54459..85c285422b9 100644 --- a/advisories/unreviewed/2022/09/GHSA-7jvj-73qc-2776/GHSA-7jvj-73qc-2776.json +++ b/advisories/unreviewed/2022/09/GHSA-7jvj-73qc-2776/GHSA-7jvj-73qc-2776.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-7mx3-7x4v-qcc4/GHSA-7mx3-7x4v-qcc4.json b/advisories/unreviewed/2022/09/GHSA-7mx3-7x4v-qcc4/GHSA-7mx3-7x4v-qcc4.json index 5dc8fd054ba..09d6eab6b1e 100644 --- a/advisories/unreviewed/2022/09/GHSA-7mx3-7x4v-qcc4/GHSA-7mx3-7x4v-qcc4.json +++ b/advisories/unreviewed/2022/09/GHSA-7mx3-7x4v-qcc4/GHSA-7mx3-7x4v-qcc4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-7vq8-69px-r6f8/GHSA-7vq8-69px-r6f8.json b/advisories/unreviewed/2022/09/GHSA-7vq8-69px-r6f8/GHSA-7vq8-69px-r6f8.json index 8233dccf660..c1afb6211da 100644 --- a/advisories/unreviewed/2022/09/GHSA-7vq8-69px-r6f8/GHSA-7vq8-69px-r6f8.json +++ b/advisories/unreviewed/2022/09/GHSA-7vq8-69px-r6f8/GHSA-7vq8-69px-r6f8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-89v6-g7j9-xj43/GHSA-89v6-g7j9-xj43.json b/advisories/unreviewed/2022/09/GHSA-89v6-g7j9-xj43/GHSA-89v6-g7j9-xj43.json index 3159df0d79e..160e43834d1 100644 --- a/advisories/unreviewed/2022/09/GHSA-89v6-g7j9-xj43/GHSA-89v6-g7j9-xj43.json +++ b/advisories/unreviewed/2022/09/GHSA-89v6-g7j9-xj43/GHSA-89v6-g7j9-xj43.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-9qhq-2jfg-322h/GHSA-9qhq-2jfg-322h.json b/advisories/unreviewed/2022/09/GHSA-9qhq-2jfg-322h/GHSA-9qhq-2jfg-322h.json index a0474cb0d32..e8b1a84bda6 100644 --- a/advisories/unreviewed/2022/09/GHSA-9qhq-2jfg-322h/GHSA-9qhq-2jfg-322h.json +++ b/advisories/unreviewed/2022/09/GHSA-9qhq-2jfg-322h/GHSA-9qhq-2jfg-322h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-9rmc-xf66-rv68/GHSA-9rmc-xf66-rv68.json b/advisories/unreviewed/2022/09/GHSA-9rmc-xf66-rv68/GHSA-9rmc-xf66-rv68.json index dcb98365dea..78516af2bba 100644 --- a/advisories/unreviewed/2022/09/GHSA-9rmc-xf66-rv68/GHSA-9rmc-xf66-rv68.json +++ b/advisories/unreviewed/2022/09/GHSA-9rmc-xf66-rv68/GHSA-9rmc-xf66-rv68.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-9xgv-7fjq-ccw2/GHSA-9xgv-7fjq-ccw2.json b/advisories/unreviewed/2022/09/GHSA-9xgv-7fjq-ccw2/GHSA-9xgv-7fjq-ccw2.json index f8ef10b6327..01554360588 100644 --- a/advisories/unreviewed/2022/09/GHSA-9xgv-7fjq-ccw2/GHSA-9xgv-7fjq-ccw2.json +++ b/advisories/unreviewed/2022/09/GHSA-9xgv-7fjq-ccw2/GHSA-9xgv-7fjq-ccw2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-cj46-35hf-rv96/GHSA-cj46-35hf-rv96.json b/advisories/unreviewed/2022/09/GHSA-cj46-35hf-rv96/GHSA-cj46-35hf-rv96.json index 9bb3d7aa5da..a706c63ee7f 100644 --- a/advisories/unreviewed/2022/09/GHSA-cj46-35hf-rv96/GHSA-cj46-35hf-rv96.json +++ b/advisories/unreviewed/2022/09/GHSA-cj46-35hf-rv96/GHSA-cj46-35hf-rv96.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-f7r8-4372-249c/GHSA-f7r8-4372-249c.json b/advisories/unreviewed/2022/09/GHSA-f7r8-4372-249c/GHSA-f7r8-4372-249c.json index 71ff1ca471e..9163ccea522 100644 --- a/advisories/unreviewed/2022/09/GHSA-f7r8-4372-249c/GHSA-f7r8-4372-249c.json +++ b/advisories/unreviewed/2022/09/GHSA-f7r8-4372-249c/GHSA-f7r8-4372-249c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-fqrq-3m9w-g64q/GHSA-fqrq-3m9w-g64q.json b/advisories/unreviewed/2022/09/GHSA-fqrq-3m9w-g64q/GHSA-fqrq-3m9w-g64q.json index 83b9fc5a125..8cb303c63a4 100644 --- a/advisories/unreviewed/2022/09/GHSA-fqrq-3m9w-g64q/GHSA-fqrq-3m9w-g64q.json +++ b/advisories/unreviewed/2022/09/GHSA-fqrq-3m9w-g64q/GHSA-fqrq-3m9w-g64q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-g57h-8f8w-pj8x/GHSA-g57h-8f8w-pj8x.json b/advisories/unreviewed/2022/09/GHSA-g57h-8f8w-pj8x/GHSA-g57h-8f8w-pj8x.json index 1fb34253660..c2b992d35a5 100644 --- a/advisories/unreviewed/2022/09/GHSA-g57h-8f8w-pj8x/GHSA-g57h-8f8w-pj8x.json +++ b/advisories/unreviewed/2022/09/GHSA-g57h-8f8w-pj8x/GHSA-g57h-8f8w-pj8x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-g97g-7jjm-wphr/GHSA-g97g-7jjm-wphr.json b/advisories/unreviewed/2022/09/GHSA-g97g-7jjm-wphr/GHSA-g97g-7jjm-wphr.json index e42c94b05ae..ecc7a99b496 100644 --- a/advisories/unreviewed/2022/09/GHSA-g97g-7jjm-wphr/GHSA-g97g-7jjm-wphr.json +++ b/advisories/unreviewed/2022/09/GHSA-g97g-7jjm-wphr/GHSA-g97g-7jjm-wphr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-ggx5-q6p9-g86r/GHSA-ggx5-q6p9-g86r.json b/advisories/unreviewed/2022/09/GHSA-ggx5-q6p9-g86r/GHSA-ggx5-q6p9-g86r.json index 214228ac88f..73008435d1c 100644 --- a/advisories/unreviewed/2022/09/GHSA-ggx5-q6p9-g86r/GHSA-ggx5-q6p9-g86r.json +++ b/advisories/unreviewed/2022/09/GHSA-ggx5-q6p9-g86r/GHSA-ggx5-q6p9-g86r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-gm39-37pc-phq8/GHSA-gm39-37pc-phq8.json b/advisories/unreviewed/2022/09/GHSA-gm39-37pc-phq8/GHSA-gm39-37pc-phq8.json index d02cb5d8e7b..c2d11dbf08c 100644 --- a/advisories/unreviewed/2022/09/GHSA-gm39-37pc-phq8/GHSA-gm39-37pc-phq8.json +++ b/advisories/unreviewed/2022/09/GHSA-gm39-37pc-phq8/GHSA-gm39-37pc-phq8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-grwc-h387-x9h2/GHSA-grwc-h387-x9h2.json b/advisories/unreviewed/2022/09/GHSA-grwc-h387-x9h2/GHSA-grwc-h387-x9h2.json index a0700e0e3b5..789a5e71634 100644 --- a/advisories/unreviewed/2022/09/GHSA-grwc-h387-x9h2/GHSA-grwc-h387-x9h2.json +++ b/advisories/unreviewed/2022/09/GHSA-grwc-h387-x9h2/GHSA-grwc-h387-x9h2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-h2gg-hfpq-2f33/GHSA-h2gg-hfpq-2f33.json b/advisories/unreviewed/2022/09/GHSA-h2gg-hfpq-2f33/GHSA-h2gg-hfpq-2f33.json index 5e62771dad0..5cc1a20475f 100644 --- a/advisories/unreviewed/2022/09/GHSA-h2gg-hfpq-2f33/GHSA-h2gg-hfpq-2f33.json +++ b/advisories/unreviewed/2022/09/GHSA-h2gg-hfpq-2f33/GHSA-h2gg-hfpq-2f33.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-h57h-9x5h-v7jm/GHSA-h57h-9x5h-v7jm.json b/advisories/unreviewed/2022/09/GHSA-h57h-9x5h-v7jm/GHSA-h57h-9x5h-v7jm.json index 23c35f78af5..5f09bce5b07 100644 --- a/advisories/unreviewed/2022/09/GHSA-h57h-9x5h-v7jm/GHSA-h57h-9x5h-v7jm.json +++ b/advisories/unreviewed/2022/09/GHSA-h57h-9x5h-v7jm/GHSA-h57h-9x5h-v7jm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-h8mj-33h3-x93p/GHSA-h8mj-33h3-x93p.json b/advisories/unreviewed/2022/09/GHSA-h8mj-33h3-x93p/GHSA-h8mj-33h3-x93p.json index 9f7541b5155..697cc960fde 100644 --- a/advisories/unreviewed/2022/09/GHSA-h8mj-33h3-x93p/GHSA-h8mj-33h3-x93p.json +++ b/advisories/unreviewed/2022/09/GHSA-h8mj-33h3-x93p/GHSA-h8mj-33h3-x93p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-h8xg-c9f9-hpm2/GHSA-h8xg-c9f9-hpm2.json b/advisories/unreviewed/2022/09/GHSA-h8xg-c9f9-hpm2/GHSA-h8xg-c9f9-hpm2.json index ac18e1e685c..aaa75d02ffc 100644 --- a/advisories/unreviewed/2022/09/GHSA-h8xg-c9f9-hpm2/GHSA-h8xg-c9f9-hpm2.json +++ b/advisories/unreviewed/2022/09/GHSA-h8xg-c9f9-hpm2/GHSA-h8xg-c9f9-hpm2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-hrx4-q45p-xfr7/GHSA-hrx4-q45p-xfr7.json b/advisories/unreviewed/2022/09/GHSA-hrx4-q45p-xfr7/GHSA-hrx4-q45p-xfr7.json index c523e46655e..0aa6db75db0 100644 --- a/advisories/unreviewed/2022/09/GHSA-hrx4-q45p-xfr7/GHSA-hrx4-q45p-xfr7.json +++ b/advisories/unreviewed/2022/09/GHSA-hrx4-q45p-xfr7/GHSA-hrx4-q45p-xfr7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-hwhq-r32m-f746/GHSA-hwhq-r32m-f746.json b/advisories/unreviewed/2022/09/GHSA-hwhq-r32m-f746/GHSA-hwhq-r32m-f746.json index 526c7fdc3ac..9756594374e 100644 --- a/advisories/unreviewed/2022/09/GHSA-hwhq-r32m-f746/GHSA-hwhq-r32m-f746.json +++ b/advisories/unreviewed/2022/09/GHSA-hwhq-r32m-f746/GHSA-hwhq-r32m-f746.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-j998-7c5c-mpgq/GHSA-j998-7c5c-mpgq.json b/advisories/unreviewed/2022/09/GHSA-j998-7c5c-mpgq/GHSA-j998-7c5c-mpgq.json index 4eb7e18f14e..32ce8e940e6 100644 --- a/advisories/unreviewed/2022/09/GHSA-j998-7c5c-mpgq/GHSA-j998-7c5c-mpgq.json +++ b/advisories/unreviewed/2022/09/GHSA-j998-7c5c-mpgq/GHSA-j998-7c5c-mpgq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-jff7-jw68-rh7r/GHSA-jff7-jw68-rh7r.json b/advisories/unreviewed/2022/09/GHSA-jff7-jw68-rh7r/GHSA-jff7-jw68-rh7r.json index 8bd676057f8..96bb0dbf3dd 100644 --- a/advisories/unreviewed/2022/09/GHSA-jff7-jw68-rh7r/GHSA-jff7-jw68-rh7r.json +++ b/advisories/unreviewed/2022/09/GHSA-jff7-jw68-rh7r/GHSA-jff7-jw68-rh7r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-jfpq-w2g4-wcpm/GHSA-jfpq-w2g4-wcpm.json b/advisories/unreviewed/2022/09/GHSA-jfpq-w2g4-wcpm/GHSA-jfpq-w2g4-wcpm.json index 25f8c1e7de2..ac732cc79f3 100644 --- a/advisories/unreviewed/2022/09/GHSA-jfpq-w2g4-wcpm/GHSA-jfpq-w2g4-wcpm.json +++ b/advisories/unreviewed/2022/09/GHSA-jfpq-w2g4-wcpm/GHSA-jfpq-w2g4-wcpm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-m3pr-2cjq-7j6v/GHSA-m3pr-2cjq-7j6v.json b/advisories/unreviewed/2022/09/GHSA-m3pr-2cjq-7j6v/GHSA-m3pr-2cjq-7j6v.json index 03788e5a2a5..86e9e333641 100644 --- a/advisories/unreviewed/2022/09/GHSA-m3pr-2cjq-7j6v/GHSA-m3pr-2cjq-7j6v.json +++ b/advisories/unreviewed/2022/09/GHSA-m3pr-2cjq-7j6v/GHSA-m3pr-2cjq-7j6v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-m5fw-3wf6-9558/GHSA-m5fw-3wf6-9558.json b/advisories/unreviewed/2022/09/GHSA-m5fw-3wf6-9558/GHSA-m5fw-3wf6-9558.json index 0b2d054c23f..c906202ce2c 100644 --- a/advisories/unreviewed/2022/09/GHSA-m5fw-3wf6-9558/GHSA-m5fw-3wf6-9558.json +++ b/advisories/unreviewed/2022/09/GHSA-m5fw-3wf6-9558/GHSA-m5fw-3wf6-9558.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-mc5c-3hv5-5hjw/GHSA-mc5c-3hv5-5hjw.json b/advisories/unreviewed/2022/09/GHSA-mc5c-3hv5-5hjw/GHSA-mc5c-3hv5-5hjw.json index c373b56c3f4..08037a2b5dc 100644 --- a/advisories/unreviewed/2022/09/GHSA-mc5c-3hv5-5hjw/GHSA-mc5c-3hv5-5hjw.json +++ b/advisories/unreviewed/2022/09/GHSA-mc5c-3hv5-5hjw/GHSA-mc5c-3hv5-5hjw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-mfvg-37xj-9w4x/GHSA-mfvg-37xj-9w4x.json b/advisories/unreviewed/2022/09/GHSA-mfvg-37xj-9w4x/GHSA-mfvg-37xj-9w4x.json index 36984e57973..6cf550bb979 100644 --- a/advisories/unreviewed/2022/09/GHSA-mfvg-37xj-9w4x/GHSA-mfvg-37xj-9w4x.json +++ b/advisories/unreviewed/2022/09/GHSA-mfvg-37xj-9w4x/GHSA-mfvg-37xj-9w4x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-p2h9-m2hm-4gjp/GHSA-p2h9-m2hm-4gjp.json b/advisories/unreviewed/2022/09/GHSA-p2h9-m2hm-4gjp/GHSA-p2h9-m2hm-4gjp.json index ca842979ef6..da2e7a6038f 100644 --- a/advisories/unreviewed/2022/09/GHSA-p2h9-m2hm-4gjp/GHSA-p2h9-m2hm-4gjp.json +++ b/advisories/unreviewed/2022/09/GHSA-p2h9-m2hm-4gjp/GHSA-p2h9-m2hm-4gjp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/09/GHSA-p44g-35x8-7hjv/GHSA-p44g-35x8-7hjv.json b/advisories/unreviewed/2022/09/GHSA-p44g-35x8-7hjv/GHSA-p44g-35x8-7hjv.json index fb58e9e7ca4..2b366f198f1 100644 --- a/advisories/unreviewed/2022/09/GHSA-p44g-35x8-7hjv/GHSA-p44g-35x8-7hjv.json +++ b/advisories/unreviewed/2022/09/GHSA-p44g-35x8-7hjv/GHSA-p44g-35x8-7hjv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-pqc2-jw96-c94g/GHSA-pqc2-jw96-c94g.json b/advisories/unreviewed/2022/09/GHSA-pqc2-jw96-c94g/GHSA-pqc2-jw96-c94g.json index aa334b772d8..2da964d700d 100644 --- a/advisories/unreviewed/2022/09/GHSA-pqc2-jw96-c94g/GHSA-pqc2-jw96-c94g.json +++ b/advisories/unreviewed/2022/09/GHSA-pqc2-jw96-c94g/GHSA-pqc2-jw96-c94g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-pv7j-rpwp-pp9x/GHSA-pv7j-rpwp-pp9x.json b/advisories/unreviewed/2022/09/GHSA-pv7j-rpwp-pp9x/GHSA-pv7j-rpwp-pp9x.json index 23688674769..57f3f2ce8b8 100644 --- a/advisories/unreviewed/2022/09/GHSA-pv7j-rpwp-pp9x/GHSA-pv7j-rpwp-pp9x.json +++ b/advisories/unreviewed/2022/09/GHSA-pv7j-rpwp-pp9x/GHSA-pv7j-rpwp-pp9x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-px3v-c44g-gp46/GHSA-px3v-c44g-gp46.json b/advisories/unreviewed/2022/09/GHSA-px3v-c44g-gp46/GHSA-px3v-c44g-gp46.json index ddbf3e4c3be..88d7c95f0be 100644 --- a/advisories/unreviewed/2022/09/GHSA-px3v-c44g-gp46/GHSA-px3v-c44g-gp46.json +++ b/advisories/unreviewed/2022/09/GHSA-px3v-c44g-gp46/GHSA-px3v-c44g-gp46.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-q2pg-hwx8-x39w/GHSA-q2pg-hwx8-x39w.json b/advisories/unreviewed/2022/09/GHSA-q2pg-hwx8-x39w/GHSA-q2pg-hwx8-x39w.json index c8664a04363..ca4714b5181 100644 --- a/advisories/unreviewed/2022/09/GHSA-q2pg-hwx8-x39w/GHSA-q2pg-hwx8-x39w.json +++ b/advisories/unreviewed/2022/09/GHSA-q2pg-hwx8-x39w/GHSA-q2pg-hwx8-x39w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-q6rw-39p5-wphc/GHSA-q6rw-39p5-wphc.json b/advisories/unreviewed/2022/09/GHSA-q6rw-39p5-wphc/GHSA-q6rw-39p5-wphc.json index 7d9770bb766..e0bde5780e2 100644 --- a/advisories/unreviewed/2022/09/GHSA-q6rw-39p5-wphc/GHSA-q6rw-39p5-wphc.json +++ b/advisories/unreviewed/2022/09/GHSA-q6rw-39p5-wphc/GHSA-q6rw-39p5-wphc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/09/GHSA-q992-g8ch-j442/GHSA-q992-g8ch-j442.json b/advisories/unreviewed/2022/09/GHSA-q992-g8ch-j442/GHSA-q992-g8ch-j442.json index f372624a01c..a981d47a8d3 100644 --- a/advisories/unreviewed/2022/09/GHSA-q992-g8ch-j442/GHSA-q992-g8ch-j442.json +++ b/advisories/unreviewed/2022/09/GHSA-q992-g8ch-j442/GHSA-q992-g8ch-j442.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-qc5v-rcvf-wgrv/GHSA-qc5v-rcvf-wgrv.json b/advisories/unreviewed/2022/09/GHSA-qc5v-rcvf-wgrv/GHSA-qc5v-rcvf-wgrv.json index 7db11606fae..295bc8a06c4 100644 --- a/advisories/unreviewed/2022/09/GHSA-qc5v-rcvf-wgrv/GHSA-qc5v-rcvf-wgrv.json +++ b/advisories/unreviewed/2022/09/GHSA-qc5v-rcvf-wgrv/GHSA-qc5v-rcvf-wgrv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-qww5-j4p3-7mj5/GHSA-qww5-j4p3-7mj5.json b/advisories/unreviewed/2022/09/GHSA-qww5-j4p3-7mj5/GHSA-qww5-j4p3-7mj5.json index 0dc0f4d8fdc..a2f2611f13b 100644 --- a/advisories/unreviewed/2022/09/GHSA-qww5-j4p3-7mj5/GHSA-qww5-j4p3-7mj5.json +++ b/advisories/unreviewed/2022/09/GHSA-qww5-j4p3-7mj5/GHSA-qww5-j4p3-7mj5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-qx9p-wm6x-9cmf/GHSA-qx9p-wm6x-9cmf.json b/advisories/unreviewed/2022/09/GHSA-qx9p-wm6x-9cmf/GHSA-qx9p-wm6x-9cmf.json index c6db6ff8a63..43500b57d92 100644 --- a/advisories/unreviewed/2022/09/GHSA-qx9p-wm6x-9cmf/GHSA-qx9p-wm6x-9cmf.json +++ b/advisories/unreviewed/2022/09/GHSA-qx9p-wm6x-9cmf/GHSA-qx9p-wm6x-9cmf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-r5p6-3838-g6hr/GHSA-r5p6-3838-g6hr.json b/advisories/unreviewed/2022/09/GHSA-r5p6-3838-g6hr/GHSA-r5p6-3838-g6hr.json index 57dbe5c597c..e0870219341 100644 --- a/advisories/unreviewed/2022/09/GHSA-r5p6-3838-g6hr/GHSA-r5p6-3838-g6hr.json +++ b/advisories/unreviewed/2022/09/GHSA-r5p6-3838-g6hr/GHSA-r5p6-3838-g6hr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-r5qg-xhv7-vh2x/GHSA-r5qg-xhv7-vh2x.json b/advisories/unreviewed/2022/09/GHSA-r5qg-xhv7-vh2x/GHSA-r5qg-xhv7-vh2x.json index b49270e425c..aa10e91ae17 100644 --- a/advisories/unreviewed/2022/09/GHSA-r5qg-xhv7-vh2x/GHSA-r5qg-xhv7-vh2x.json +++ b/advisories/unreviewed/2022/09/GHSA-r5qg-xhv7-vh2x/GHSA-r5qg-xhv7-vh2x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-v427-m4xv-r7xq/GHSA-v427-m4xv-r7xq.json b/advisories/unreviewed/2022/09/GHSA-v427-m4xv-r7xq/GHSA-v427-m4xv-r7xq.json index e5f5d9f2bcd..e3b618553d5 100644 --- a/advisories/unreviewed/2022/09/GHSA-v427-m4xv-r7xq/GHSA-v427-m4xv-r7xq.json +++ b/advisories/unreviewed/2022/09/GHSA-v427-m4xv-r7xq/GHSA-v427-m4xv-r7xq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-w768-wqpr-555x/GHSA-w768-wqpr-555x.json b/advisories/unreviewed/2022/09/GHSA-w768-wqpr-555x/GHSA-w768-wqpr-555x.json index 9c9184bf188..39ec6d0be69 100644 --- a/advisories/unreviewed/2022/09/GHSA-w768-wqpr-555x/GHSA-w768-wqpr-555x.json +++ b/advisories/unreviewed/2022/09/GHSA-w768-wqpr-555x/GHSA-w768-wqpr-555x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-wcwj-rgxv-c28p/GHSA-wcwj-rgxv-c28p.json b/advisories/unreviewed/2022/09/GHSA-wcwj-rgxv-c28p/GHSA-wcwj-rgxv-c28p.json index 7167ea09336..d33bd2c7c7b 100644 --- a/advisories/unreviewed/2022/09/GHSA-wcwj-rgxv-c28p/GHSA-wcwj-rgxv-c28p.json +++ b/advisories/unreviewed/2022/09/GHSA-wcwj-rgxv-c28p/GHSA-wcwj-rgxv-c28p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-wfff-jr55-cv4r/GHSA-wfff-jr55-cv4r.json b/advisories/unreviewed/2022/09/GHSA-wfff-jr55-cv4r/GHSA-wfff-jr55-cv4r.json index eb5bf7f38bc..8929bbb5470 100644 --- a/advisories/unreviewed/2022/09/GHSA-wfff-jr55-cv4r/GHSA-wfff-jr55-cv4r.json +++ b/advisories/unreviewed/2022/09/GHSA-wfff-jr55-cv4r/GHSA-wfff-jr55-cv4r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-wgj9-cwmq-97x8/GHSA-wgj9-cwmq-97x8.json b/advisories/unreviewed/2022/09/GHSA-wgj9-cwmq-97x8/GHSA-wgj9-cwmq-97x8.json index a3dbc0d5a0c..95b5c3568c5 100644 --- a/advisories/unreviewed/2022/09/GHSA-wgj9-cwmq-97x8/GHSA-wgj9-cwmq-97x8.json +++ b/advisories/unreviewed/2022/09/GHSA-wgj9-cwmq-97x8/GHSA-wgj9-cwmq-97x8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-whwp-qcc5-m653/GHSA-whwp-qcc5-m653.json b/advisories/unreviewed/2022/09/GHSA-whwp-qcc5-m653/GHSA-whwp-qcc5-m653.json index 1d35c47a0e3..a34515565ad 100644 --- a/advisories/unreviewed/2022/09/GHSA-whwp-qcc5-m653/GHSA-whwp-qcc5-m653.json +++ b/advisories/unreviewed/2022/09/GHSA-whwp-qcc5-m653/GHSA-whwp-qcc5-m653.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-x249-wwhp-9fc5/GHSA-x249-wwhp-9fc5.json b/advisories/unreviewed/2022/09/GHSA-x249-wwhp-9fc5/GHSA-x249-wwhp-9fc5.json index b20e361e452..59110792708 100644 --- a/advisories/unreviewed/2022/09/GHSA-x249-wwhp-9fc5/GHSA-x249-wwhp-9fc5.json +++ b/advisories/unreviewed/2022/09/GHSA-x249-wwhp-9fc5/GHSA-x249-wwhp-9fc5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-x537-5w7x-8g44/GHSA-x537-5w7x-8g44.json b/advisories/unreviewed/2022/09/GHSA-x537-5w7x-8g44/GHSA-x537-5w7x-8g44.json index 53e7a1f37cb..8cd66bbc431 100644 --- a/advisories/unreviewed/2022/09/GHSA-x537-5w7x-8g44/GHSA-x537-5w7x-8g44.json +++ b/advisories/unreviewed/2022/09/GHSA-x537-5w7x-8g44/GHSA-x537-5w7x-8g44.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-x88j-4p5j-6442/GHSA-x88j-4p5j-6442.json b/advisories/unreviewed/2022/09/GHSA-x88j-4p5j-6442/GHSA-x88j-4p5j-6442.json index 4f5ec8170a4..0724ad763f6 100644 --- a/advisories/unreviewed/2022/09/GHSA-x88j-4p5j-6442/GHSA-x88j-4p5j-6442.json +++ b/advisories/unreviewed/2022/09/GHSA-x88j-4p5j-6442/GHSA-x88j-4p5j-6442.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-xfhf-jh8m-pmv3/GHSA-xfhf-jh8m-pmv3.json b/advisories/unreviewed/2022/09/GHSA-xfhf-jh8m-pmv3/GHSA-xfhf-jh8m-pmv3.json index 19fbce5d4dc..0c4b3dd56b2 100644 --- a/advisories/unreviewed/2022/09/GHSA-xfhf-jh8m-pmv3/GHSA-xfhf-jh8m-pmv3.json +++ b/advisories/unreviewed/2022/09/GHSA-xfhf-jh8m-pmv3/GHSA-xfhf-jh8m-pmv3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-344p-v638-q9gc/GHSA-344p-v638-q9gc.json b/advisories/unreviewed/2022/10/GHSA-344p-v638-q9gc/GHSA-344p-v638-q9gc.json index 01dd47a69c2..ebd6181bc20 100644 --- a/advisories/unreviewed/2022/10/GHSA-344p-v638-q9gc/GHSA-344p-v638-q9gc.json +++ b/advisories/unreviewed/2022/10/GHSA-344p-v638-q9gc/GHSA-344p-v638-q9gc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-3mfm-pfv2-vmrp/GHSA-3mfm-pfv2-vmrp.json b/advisories/unreviewed/2022/10/GHSA-3mfm-pfv2-vmrp/GHSA-3mfm-pfv2-vmrp.json index 2d7443848de..0b04b1ab972 100644 --- a/advisories/unreviewed/2022/10/GHSA-3mfm-pfv2-vmrp/GHSA-3mfm-pfv2-vmrp.json +++ b/advisories/unreviewed/2022/10/GHSA-3mfm-pfv2-vmrp/GHSA-3mfm-pfv2-vmrp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-hjfq-c3jw-r92p/GHSA-hjfq-c3jw-r92p.json b/advisories/unreviewed/2022/10/GHSA-hjfq-c3jw-r92p/GHSA-hjfq-c3jw-r92p.json index 6f8575887bd..0d6ec80ef44 100644 --- a/advisories/unreviewed/2022/10/GHSA-hjfq-c3jw-r92p/GHSA-hjfq-c3jw-r92p.json +++ b/advisories/unreviewed/2022/10/GHSA-hjfq-c3jw-r92p/GHSA-hjfq-c3jw-r92p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-hjmr-8x7c-687c/GHSA-hjmr-8x7c-687c.json b/advisories/unreviewed/2022/10/GHSA-hjmr-8x7c-687c/GHSA-hjmr-8x7c-687c.json index edfdc74a1a4..54527280787 100644 --- a/advisories/unreviewed/2022/10/GHSA-hjmr-8x7c-687c/GHSA-hjmr-8x7c-687c.json +++ b/advisories/unreviewed/2022/10/GHSA-hjmr-8x7c-687c/GHSA-hjmr-8x7c-687c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-jq7j-25x9-p735/GHSA-jq7j-25x9-p735.json b/advisories/unreviewed/2022/10/GHSA-jq7j-25x9-p735/GHSA-jq7j-25x9-p735.json index dba26a1376c..e714a6fd966 100644 --- a/advisories/unreviewed/2022/10/GHSA-jq7j-25x9-p735/GHSA-jq7j-25x9-p735.json +++ b/advisories/unreviewed/2022/10/GHSA-jq7j-25x9-p735/GHSA-jq7j-25x9-p735.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-phrm-6c7x-j62r/GHSA-phrm-6c7x-j62r.json b/advisories/unreviewed/2022/10/GHSA-phrm-6c7x-j62r/GHSA-phrm-6c7x-j62r.json index a405e8f946c..b32e60bf62e 100644 --- a/advisories/unreviewed/2022/10/GHSA-phrm-6c7x-j62r/GHSA-phrm-6c7x-j62r.json +++ b/advisories/unreviewed/2022/10/GHSA-phrm-6c7x-j62r/GHSA-phrm-6c7x-j62r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-w8wm-5qpx-c8j6/GHSA-w8wm-5qpx-c8j6.json b/advisories/unreviewed/2022/10/GHSA-w8wm-5qpx-c8j6/GHSA-w8wm-5qpx-c8j6.json index 6ec33b41d16..9ebf6ce7305 100644 --- a/advisories/unreviewed/2022/10/GHSA-w8wm-5qpx-c8j6/GHSA-w8wm-5qpx-c8j6.json +++ b/advisories/unreviewed/2022/10/GHSA-w8wm-5qpx-c8j6/GHSA-w8wm-5qpx-c8j6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-2prh-76mq-h4gx/GHSA-2prh-76mq-h4gx.json b/advisories/unreviewed/2022/11/GHSA-2prh-76mq-h4gx/GHSA-2prh-76mq-h4gx.json index 0b65772de71..391211d5b4e 100644 --- a/advisories/unreviewed/2022/11/GHSA-2prh-76mq-h4gx/GHSA-2prh-76mq-h4gx.json +++ b/advisories/unreviewed/2022/11/GHSA-2prh-76mq-h4gx/GHSA-2prh-76mq-h4gx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-9j68-9p63-wh2j/GHSA-9j68-9p63-wh2j.json b/advisories/unreviewed/2022/11/GHSA-9j68-9p63-wh2j/GHSA-9j68-9p63-wh2j.json index b5d5a26cd06..179bc475a0b 100644 --- a/advisories/unreviewed/2022/11/GHSA-9j68-9p63-wh2j/GHSA-9j68-9p63-wh2j.json +++ b/advisories/unreviewed/2022/11/GHSA-9j68-9p63-wh2j/GHSA-9j68-9p63-wh2j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-fw8h-qc74-r2c2/GHSA-fw8h-qc74-r2c2.json b/advisories/unreviewed/2022/11/GHSA-fw8h-qc74-r2c2/GHSA-fw8h-qc74-r2c2.json index 9506765fd7b..b53341282dc 100644 --- a/advisories/unreviewed/2022/11/GHSA-fw8h-qc74-r2c2/GHSA-fw8h-qc74-r2c2.json +++ b/advisories/unreviewed/2022/11/GHSA-fw8h-qc74-r2c2/GHSA-fw8h-qc74-r2c2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-r7m8-qmv8-g6vm/GHSA-r7m8-qmv8-g6vm.json b/advisories/unreviewed/2022/12/GHSA-r7m8-qmv8-g6vm/GHSA-r7m8-qmv8-g6vm.json index 81134817ca6..ee24ae83363 100644 --- a/advisories/unreviewed/2022/12/GHSA-r7m8-qmv8-g6vm/GHSA-r7m8-qmv8-g6vm.json +++ b/advisories/unreviewed/2022/12/GHSA-r7m8-qmv8-g6vm/GHSA-r7m8-qmv8-g6vm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-2mpf-fq5j-4hgp/GHSA-2mpf-fq5j-4hgp.json b/advisories/unreviewed/2024/04/GHSA-2mpf-fq5j-4hgp/GHSA-2mpf-fq5j-4hgp.json index e5b9e90a8a4..5c09a255562 100644 --- a/advisories/unreviewed/2024/04/GHSA-2mpf-fq5j-4hgp/GHSA-2mpf-fq5j-4hgp.json +++ b/advisories/unreviewed/2024/04/GHSA-2mpf-fq5j-4hgp/GHSA-2mpf-fq5j-4hgp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-5cp4-5pxh-47cm/GHSA-5cp4-5pxh-47cm.json b/advisories/unreviewed/2024/04/GHSA-5cp4-5pxh-47cm/GHSA-5cp4-5pxh-47cm.json index 8d2952c162d..1e9cde4d46e 100644 --- a/advisories/unreviewed/2024/04/GHSA-5cp4-5pxh-47cm/GHSA-5cp4-5pxh-47cm.json +++ b/advisories/unreviewed/2024/04/GHSA-5cp4-5pxh-47cm/GHSA-5cp4-5pxh-47cm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-hv7f-m7x4-mc78/GHSA-hv7f-m7x4-mc78.json b/advisories/unreviewed/2024/04/GHSA-hv7f-m7x4-mc78/GHSA-hv7f-m7x4-mc78.json index 52af5ecf8ee..d8ced86cb6c 100644 --- a/advisories/unreviewed/2024/04/GHSA-hv7f-m7x4-mc78/GHSA-hv7f-m7x4-mc78.json +++ b/advisories/unreviewed/2024/04/GHSA-hv7f-m7x4-mc78/GHSA-hv7f-m7x4-mc78.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-q4xw-qv7c-q8pp/GHSA-q4xw-qv7c-q8pp.json b/advisories/unreviewed/2024/04/GHSA-q4xw-qv7c-q8pp/GHSA-q4xw-qv7c-q8pp.json index 575ec41c55e..3a15f752400 100644 --- a/advisories/unreviewed/2024/04/GHSA-q4xw-qv7c-q8pp/GHSA-q4xw-qv7c-q8pp.json +++ b/advisories/unreviewed/2024/04/GHSA-q4xw-qv7c-q8pp/GHSA-q4xw-qv7c-q8pp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-rx97-mvj7-rx8w/GHSA-rx97-mvj7-rx8w.json b/advisories/unreviewed/2024/04/GHSA-rx97-mvj7-rx8w/GHSA-rx97-mvj7-rx8w.json index c8f6cbd2cca..13cb140aacc 100644 --- a/advisories/unreviewed/2024/04/GHSA-rx97-mvj7-rx8w/GHSA-rx97-mvj7-rx8w.json +++ b/advisories/unreviewed/2024/04/GHSA-rx97-mvj7-rx8w/GHSA-rx97-mvj7-rx8w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-wh99-p93p-g825/GHSA-wh99-p93p-g825.json b/advisories/unreviewed/2024/04/GHSA-wh99-p93p-g825/GHSA-wh99-p93p-g825.json index b07642d681d..be755497934 100644 --- a/advisories/unreviewed/2024/04/GHSA-wh99-p93p-g825/GHSA-wh99-p93p-g825.json +++ b/advisories/unreviewed/2024/04/GHSA-wh99-p93p-g825/GHSA-wh99-p93p-g825.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null,