[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Nov 7 08:15:27 GMT 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
709c12c8 by Salvatore Bonaccorso at 2023-11-07T09:14:43+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,35 +1,35 @@
 CVE-2023-5976 (Improper Access Control in GitHub repository microweber/microweber pri ...)
-	TODO: check
+	NOT-FOR-US: microweber
 CVE-2023-5605 (The URL Shortify WordPress plugin through 1.7.8 does not sanitise and  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-5601 (The WooCommerce Ninja Forms Product Add-ons WordPress plugin before 1. ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-5530 (The Ninja Forms Contact Form WordPress plugin before 3.6.34 does not s ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-5454 (The Templately WordPress plugin before 2.2.6 does not properly authori ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-5355 (The Awesome Support WordPress plugin before 6.1.5 does not sanitize fi ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-5354 (The Awesome Support WordPress plugin before 6.1.5 does not sanitise an ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-5352 (The Awesome Support WordPress plugin before 6.1.5 does not correctly a ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-5228 (The User Registration WordPress plugin before 3.0.4.2 does not sanitiz ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-5181 (The WP Discord Invite WordPress plugin before 2.5.2 does not sanitise  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-5082 (The History Log by click5 WordPress plugin before 1.0.13 does not prop ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-5076 (The Ziteboard Online Whiteboard plugin for WordPress is vulnerable to  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-4930 (The Front End PM WordPress plugin before 11.4.3 does not block listing ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-4858 (The Simple Table Manager WordPress plugin through 1.5.6 does not sanit ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-4810 (The Responsive Pricing Table WordPress plugin before 5.1.8 does not sa ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-47102 (UrBackup Server 2.5.31 allows brute-force enumeration of user accounts ...)
-	TODO: check
+	NOT-FOR-US: UrBackup Server
 CVE-2023-47004 (Buffer Overflow vulnerability in Redis RedisGraph v.2.x through v.2.12 ...)
 	TODO: check
 CVE-2023-46998 (Cross Site Scripting vulnerability in BootBox Bootbox.js v.3.2 through ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/709c12c8eecb05da43d98e060ddf549f6d375b94

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/709c12c8eecb05da43d98e060ddf549f6d375b94
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20231107/519ba06e/attachment.htm>


More information about the debian-security-tracker-commits mailing list