[Git][security-tracker-team/security-tracker][master] Add CVE-2023-2745/wordpress

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu May 18 05:53:49 BST 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
ed6232dd by Salvatore Bonaccorso at 2023-05-18T06:53:10+02:00
Add CVE-2023-2745/wordpress

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -51,7 +51,9 @@ CVE-2023-2765 (A vulnerability has been found in Weaver OA up to 9.5 and classif
 CVE-2023-2756 (SQL Injection in GitHub repository pimcore/customer-data-framework pri ...)
 	TODO: check
 CVE-2023-2745 (WordPress Core is vulnerable to Directory Traversal in versions up to, ...)
-	TODO: check
+	- wordpress <unfixed>
+	NOTE: https://core.trac.wordpress.org/changeset?old=55765&new=55765
+	NOTE: https://wordpress.org/news/2023/05/wordpress-6-2-1-maintenance-security-release/
 CVE-2023-2679 (Data leakage in Adobe connector in Snow Software SPE 9.27.0 on Windows ...)
 	TODO: check
 CVE-2023-31848 (davinci 0.3.0-rc is vulnerable to Server-side request forgery (SSRF).)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ed6232dda85e1d3b8a047675d88fe480cbc6163a

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ed6232dda85e1d3b8a047675d88fe480cbc6163a
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230518/80633566/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list