[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Jul 2 09:46:28 BST 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
440f393b by Salvatore Bonaccorso at 2024-07-02T10:45:53+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,31 +1,31 @@
 CVE-2024-6172 (The Email Subscribers by Icegram Express \u2013 Email Marketing, Newsl ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-5938 (The Boot Store theme for WordPress is vulnerable to Stored Cross-Site  ...)
-	TODO: check
+	NOT-FOR-US: WordPress theme
 CVE-2024-5767 (The sitetweet WordPress plugin through 0.2 does not have CSRF check in ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-5606 (The Quiz and Survey Master (QSM)  WordPress plugin before 9.0.2 is vul ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-5545 (The Motors \u2013 Car Dealer, Classifieds & Listing plugin for WordPre ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-5544 (The Media Library Assistant plugin for WordPress is vulnerable to Refl ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-5504 (The Rife Elementor Extensions & Templates plugin for WordPress is vuln ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-5419 (The Void Contact Form 7 Widget For Elementor Page Builder plugin for W ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-5349 (The LA-Studio Element Kit for Elementor plugin for WordPress is vulner ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-5322 (The N-central server is vulnerable to session rebinding of already aut ...)
 	TODO: check
 CVE-2024-5219 (The Easy Google Maps plugin for WordPress is vulnerable to Stored Cros ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-4679 (Incorrect Default Permissions vulnerability in Hitachi JP1/Extensible  ...)
-	TODO: check
+	NOT-FOR-US: Hitachi
 CVE-2024-4627 (The Rank Math SEO  WordPress plugin before 1.0.219 does not sanitise a ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-3999 (The EazyDocs  WordPress plugin before 2.5.0 does not sanitise and esca ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-3513 (The Ultimate Blocks \u2013 WordPress Blocks Plugin plugin for WordPres ...)
 	TODO: check
 CVE-2024-39314 (toy-blog is a headless content management system implementation. Start ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/440f393b98476ba7cc50a4406c66255f866f3a17

-- 
This project does not include diff previews in email notifications.
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/440f393b98476ba7cc50a4406c66255f866f3a17
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240702/c09ee212/attachment.htm>


More information about the debian-security-tracker-commits mailing list