[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Apr 11 21:49:10 BST 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
1f892d80 by Salvatore Bonaccorso at 2024-04-11T22:43:21+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,67 +1,67 @@
 CVE-2024-3344 (The Otter Blocks \u2013 Gutenberg Blocks, Page Builder for Gutenberg E ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-3343 (The Otter Blocks \u2013 Gutenberg Blocks, Page Builder for Gutenberg E ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-32112 (Cross-Site Request Forgery (CSRF) vulnerability in Leadinfo leadinfo.  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-32109 (Cross-Site Request Forgery (CSRF) vulnerability in Julien Berthelot /  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-32108 (Cross-Site Request Forgery (CSRF) vulnerability in Stephanie Leary Con ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-32107 (Cross-Site Request Forgery (CSRF) vulnerability in XLPlugins Finale Li ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-32106 (Cross-Site Request Forgery (CSRF) vulnerability in WP Compress WP Comp ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-32105 (Cross-Site Request Forgery (CSRF) vulnerability in ELEXtensions ELEX W ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-32083 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-32080 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-31937 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-31936 (Cross-Site Request Forgery (CSRF) vulnerability in AyeCode Ltd UsersWP ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-31935 (Cross-Site Request Forgery (CSRF) vulnerability in BracketSpace Simple ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-31934 (Cross-Site Request Forgery (CSRF) vulnerability in Link Whisper Link W ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-31932 (Cross-Site Request Forgery (CSRF) vulnerability in CreativeThemes Bloc ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-31931 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-31930 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-31929 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-31928 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-31927 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-31926 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-31925 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-31861 (Improper Control of Generation of Code ('Code Injection') vulnerabilit ...)
-	TODO: check
+	NOT-FOR-US: Apache Zeppelin
 CVE-2024-31678 (Sourcecodester Loan Management System v1.0 is vulnerable to SQL Inject ...)
-	TODO: check
+	NOT-FOR-US: Sourcecodester Loan Management System
 CVE-2024-31387 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-31361 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-31285 (Cross-Site Request Forgery (CSRF) vulnerability in Tooltip WordPress T ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-30273 (Illustrator versions 28.3, 27.9.2 and earlier are affected by a Stack- ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2024-30272 (Illustrator versions 28.3, 27.9.2 and earlier are affected by an out-o ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2024-30271 (Illustrator versions 28.3, 27.9.2 and earlier are affected by an out-o ...)
-	TODO: check
+	NOT-FOR-US: Adobe
 CVE-2024-29454 (An issue discovered in packages or nodes in ROS2 Humble Hawksbill with ...)
 	TODO: check
 CVE-2024-25852 (Linksys RE7000 v2.0.9, v2.0.11, and v2.0.15 have a command execution v ...)
-	TODO: check
+	NOT-FOR-US: Linksys
 CVE-2024-22722 (Server Side Template Injection (SSTI) vulnerability in Form Tools 3.1. ...)
 	TODO: check
 CVE-2024-22721 (Cross Site Request Forgery (CSRF) vulnerability in Form Tools 3.1.1 al ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1f892d80fff1c21478387537d27e88ef15949ae7

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1f892d80fff1c21478387537d27e88ef15949ae7
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240411/6776ba4b/attachment.htm>


More information about the debian-security-tracker-commits mailing list