[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat May 18 09:48:05 BST 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
765d4ec6 by Salvatore Bonaccorso at 2024-05-18T10:47:12+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,27 +1,27 @@
 CVE-2024-5069 (A vulnerability, which was classified as critical, has been found in S ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Simple Online Mens Salon Management System
 CVE-2024-4891 (The Essential Blocks \u2013 Page Builder Gutenberg Blocks, Patterns &  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-4865 (The Happy Addons for Elementor plugin for WordPress is vulnerable to S ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-4849 (The WordPress Automatic Plugin plugin for WordPress is vulnerable to S ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-4709 (The Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag & D ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-4698 (The Testimonial Carousel For Elementor plugin for WordPress is vulnera ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-4374 (The DethemeKit For Elementor plugin for WordPress is vulnerable to Sto ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-4264 (A remote code execution (RCE) vulnerability exists in the berriai/lite ...)
 	TODO: check
 CVE-2024-3812 (The Salient Core plugin for WordPress is vulnerable to Local File Incl ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-3811 (The Salient Shortcodes plugin for WordPress is vulnerable to Stored Cr ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-3810 (The Salient Shortcodes plugin for WordPress is vulnerable to Local Fil ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-3714 (The GiveWP \u2013 Donation Plugin and Fundraising Platform plugin for  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-35313 (In Tor Arti before 1.2.3, circuits sometimes incorrectly have a length ...)
 	TODO: check
 CVE-2024-35312 (In Tor Arti before 1.2.3, STUB circuits incorrectly have a length of 2 ...)
@@ -79,9 +79,9 @@ CVE-2024-5022 (The file scheme of URLs would be hidden, resulting in potential s
 CVE-2024-4998
 	REJECTED
 CVE-2024-4789 (Cost Calculator Builder Pro plugin for WordPress is vulnerable to Serv ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-4214 (Improper Neutralization of Script-Related HTML Tags in a Web Page (Bas ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-3292 (A race condition vulnerability exists where an authenticated, local at ...)
 	TODO: check
 CVE-2024-3291 (When installing Nessus Agent to a directory outside of the default loc ...)
@@ -492,9 +492,9 @@ CVE-2024-35784 (In the Linux kernel, the following vulnerability has been resolv
 CVE-2024-35190 (Asterisk is an open source private branch exchange and telephony toolk ...)
 	TODO: check
 CVE-2024-35174 (Missing Authorization vulnerability in Flothemes Flo Forms.This issue  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-35173 (Missing Authorization vulnerability in PluginEver Serial Numbers for W ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-34997 (joblib v1.4.2 was discovered to contain a deserialization vulnerabilit ...)
 	TODO: check
 CVE-2024-34982 (An arbitrary file upload vulnerability in the component /include/file. ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/765d4ec6908c90a6ddec45609c2f94e35344c93c

-- 
This project does not include diff previews in email notifications.
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/765d4ec6908c90a6ddec45609c2f94e35344c93c
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240518/6a8901d1/attachment.htm>


More information about the debian-security-tracker-commits mailing list