[Git][security-tracker-team/security-tracker][master] Process NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Feb 24 20:15:28 GMT 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
788ff49e by Salvatore Bonaccorso at 2022-02-24T21:15:01+01:00
Process NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1758,7 +1758,7 @@ CVE-2022-23183
 CVE-2022-21179 (Cross-site request forgery (CSRF) vulnerability in EC-CUBE plugin 'Mai ...)
 	TODO: check
 CVE-2022-0683 (The Essential Addons for Elementor Lite WordPress plugin is vulnerable ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2022-0682
 	RESERVED
 CVE-2022-0681
@@ -1823,11 +1823,11 @@ CVE-2022-25309
 CVE-2022-25308
 	RESERVED
 CVE-2022-25307 (The WP Statistics WordPress plugin is vulnerable to Cross-Site Scripti ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2022-25306 (The WP Statistics WordPress plugin is vulnerable to Cross-Site Scripti ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2022-25305 (The WP Statistics WordPress plugin is vulnerable to Cross-Site Scripti ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2022-21158
 	RESERVED
 CVE-2022-0674
@@ -1966,11 +1966,11 @@ CVE-2022-0655
 CVE-2022-0654 (Exposure of Sensitive Information to an Unauthorized Actor in GitHub r ...)
 	NOT-FOR-US: Node request-retry
 CVE-2022-0653 (The Profile Builder – User Profile & User Registration Forms ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2022-0652
 	RESERVED
 CVE-2022-0651 (The WP Statistics WordPress plugin is vulnerable to SQL Injection due  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2022-0650
 	RESERVED
 CVE-2022-0649
@@ -2325,9 +2325,9 @@ CVE-2022-25151
 CVE-2022-25150 (In Malwarebytes Binisoft Windows Firewall Control before 6.8.1.0, prog ...)
 	NOT-FOR-US: Malwarebytes Binisoft Windows Firewall Control
 CVE-2022-25149 (The WP Statistics WordPress plugin is vulnerable to SQL Injection due  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2022-25148 (The WP Statistics WordPress plugin is vulnerable to SQL Injection due  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2022-0612 (Cross-site Scripting (XSS) - Stored in Packagist remdex/livehelperchat ...)
 	NOT-FOR-US: livehelperchat
 CVE-2022-0611 (Improper Privilege Management in Packagist snipe/snipe-it prior to 5.3 ...)
@@ -11568,7 +11568,7 @@ CVE-2022-22351
 CVE-2022-22350
 	RESERVED
 CVE-2022-22349 (IBM Sterling External Authentication Server 3.4.3.2, 6.0.2.0, and 6.0. ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2022-22348
 	RESERVED
 CVE-2022-22347
@@ -34692,7 +34692,7 @@ CVE-2021-39040
 CVE-2021-39039
 	RESERVED
 CVE-2021-39038 (IBM WebSphere Application Server 9.0 and IBM WebSphere Application Ser ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-39037
 	RESERVED
 CVE-2021-39036
@@ -34778,9 +34778,9 @@ CVE-2021-38997
 CVE-2021-38996
 	RESERVED
 CVE-2021-38995 (IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-38994 (IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2021-38993
 	RESERVED
 CVE-2021-38992



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/788ff49e31f2b57a6391f3f180c74473826268f4

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/788ff49e31f2b57a6391f3f180c74473826268f4
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220224/d4f6bbe8/attachment.htm>


More information about the debian-security-tracker-commits mailing list