[Git][security-tracker-team/security-tracker][master] new mootools issue

Moritz Muehlenhoff (@jmm) jmm at debian.org
Fri Mar 10 16:31:24 GMT 2023



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
1fd56a23 by Moritz Muehlenhoff at 2023-03-10T17:30:59+01:00
new mootools issue

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -135335,7 +135335,8 @@ CVE-2021-32823 (In the bindata RubyGem before version 2.4.10 there is a potentia
 CVE-2021-32822 (The npm hbs package is an Express view engine wrapper for Handlebars.  ...)
 	NOT-FOR-US: Node hbs
 CVE-2021-32821 (MooTools is a collection of JavaScript utilities for JavaScript develo ...)
-	TODO: check
+	- mootols <unfixed>
+	NOTE: https://securitylab.github.com/advisories/GHSL-2020-345-redos-mootools/
 CVE-2021-32820 (Express-handlebars is a Handlebars view engine for Express. Express-ha ...)
 	NOT-FOR-US: Express-handlebars
 CVE-2021-32819 (Squirrelly is a template engine implemented in JavaScript that works o ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1fd56a23f4206533bc424de04ced3e7df1afa9bd

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1fd56a23f4206533bc424de04ced3e7df1afa9bd
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230310/005a3e85/attachment.htm>


More information about the debian-security-tracker-commits mailing list