[Secure-testing-commits] r51222 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon May 1 09:12:18 UTC 2017


Author: carnil
Date: 2017-05-01 09:12:18 +0000 (Mon, 01 May 2017)
New Revision: 51222

Modified:
   data/CVE/list
Log:
Mark three NFUs

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-05-01 09:12:07 UTC (rev 51221)
+++ data/CVE/list	2017-05-01 09:12:18 UTC (rev 51222)
@@ -1,9 +1,9 @@
 CVE-2017-8385 (Craft CMS before 2.6.2976 does not prevent modification of the URL in a ...)
-	TODO: check
+	NOT-FOR-US: Craft CMS
 CVE-2017-8384 (Craft CMS before 2.6.2976 allows XSS attacks because an array returned ...)
-	TODO: check
+	NOT-FOR-US: Craft CMS
 CVE-2017-8383 (Craft CMS before 2.6.2976 does not properly restrict viewing the ...)
-	TODO: check
+	NOT-FOR-US: Craft CMS
 CVE-2017-8382
 	RESERVED
 CVE-2017-8381




More information about the Secure-testing-commits mailing list