[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Jul 12 10:22:20 BST 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
279ee21a by Salvatore Bonaccorso at 2024-07-12T11:21:46+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,43 +1,42 @@
 CVE-2024-6677 (Privilege escalation in uberAgent)
-	TODO: check
+	NOT-FOR-US: uberAgent
 CVE-2024-6625 (The WP Total Branding \u2013 Complete branding solution for WordPress  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-6588 (The PowerPress Podcasting plugin by Blubrry plugin for WordPress is vu ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-6555 (The WP Popups \u2013 WordPress Popup builder plugin for WordPress is v ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-6468 (Vault and Vault Enterprise did not properly handle requests originatin ...)
 	TODO: check
 CVE-2024-6396 (A vulnerability in the `_backup_run` function in aimhubio/aim version  ...)
-	TODO: check
+	NOT-FOR-US: aimhubio/aim
 CVE-2024-6392 (The Image Optimizer, Resizer and CDN \u2013 Sirv plugin for WordPress  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-6024 (The ContentLock WordPress plugin through 1.0.3 does not have CSRF chec ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-6023 (The ContentLock WordPress plugin through 1.0.3 does not have CSRF chec ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-6022 (The ContentLock WordPress plugin through 1.0.3 does not have CSRF chec ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-5811 (The Simple Video Directory WordPress plugin before 1.4.4 does not sani ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-5626 (The Inline Related Posts WordPress plugin before 3.7.0 does not saniti ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-4753 (The WP Secure Maintenance WordPress plugin before 1.7 does not sanitis ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-3112 (The Quotes and Tips by BestWebSoft WordPress plugin before 1.45 does n ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-36435 (An issue was discovered on Supermicro BMC firmware in select X11, X12, ...)
 	TODO: check
 CVE-2024-2696 (The socialdriver-framework WordPress plugin before 2024.04.30 does not ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-2640 (The Watu Quiz WordPress plugin before 3.4.1.2 does not sanitise and es ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-2430 (The Website Content in Page or Post WordPress plugin before 2024.04.09 ...)
-	TODO: check
 CVE-2024-1375 (The Event post plugin for WordPress is vulnerable to unauthorized bulk ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-0974 (The Social Media Widget WordPress plugin before 4.0.9 does not sanitis ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-6681 (A vulnerability, which was classified as critical, has been found in w ...)
 	TODO: check
 CVE-2024-6680 (A vulnerability classified as critical was found in witmy my-springsec ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/279ee21aebe38dc4de34e4e2d7a9cb8740464381

-- 
This project does not include diff previews in email notifications.
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/279ee21aebe38dc4de34e4e2d7a9cb8740464381
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240712/2b31c6d2/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list