[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu May 23 10:24:38 BST 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
09303ea8 by Salvatore Bonaccorso at 2024-05-23T10:53:23+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,67 +1,67 @@
 CVE-2024-5241 (A vulnerability was found in Huashi Private Cloud CDN Live Streaming A ...)
-	TODO: check
+	NOT-FOR-US: Huashi Private Cloud CDN Live Streaming Acceleration Server
 CVE-2024-5240 (A vulnerability was found in Campcodes Complete Web-Based School Manag ...)
-	TODO: check
+	NOT-FOR-US: Campcodes Complete Web-Based School Management System
 CVE-2024-5239 (A vulnerability has been found in Campcodes Complete Web-Based School  ...)
-	TODO: check
+	NOT-FOR-US: Campcodes Complete Web-Based School Management System
 CVE-2024-5238 (A vulnerability, which was classified as critical, was found in Campco ...)
-	TODO: check
+	NOT-FOR-US: Campcodes Complete Web-Based School Management System
 CVE-2024-5237 (A vulnerability, which was classified as critical, has been found in C ...)
-	TODO: check
+	NOT-FOR-US: Campcodes Complete Web-Based School Management System
 CVE-2024-5236 (A vulnerability classified as critical was found in Campcodes Complete ...)
-	TODO: check
+	NOT-FOR-US: Campcodes Complete Web-Based School Management System
 CVE-2024-5235 (A vulnerability classified as critical has been found in Campcodes Com ...)
-	TODO: check
+	NOT-FOR-US: Campcodes Complete Web-Based School Management System
 CVE-2024-5234 (A vulnerability was found in Campcodes Complete Web-Based School Manag ...)
-	TODO: check
+	NOT-FOR-US: Campcodes Complete Web-Based School Management System
 CVE-2024-5233 (A vulnerability was found in Campcodes Complete Web-Based School Manag ...)
-	TODO: check
+	NOT-FOR-US: Campcodes Complete Web-Based School Management System
 CVE-2024-5232 (A vulnerability was found in Campcodes Complete Web-Based School Manag ...)
-	TODO: check
+	NOT-FOR-US: Campcodes Complete Web-Based School Management System
 CVE-2024-5231 (A vulnerability was found in Campcodes Complete Web-Based School Manag ...)
-	TODO: check
+	NOT-FOR-US: Campcodes Complete Web-Based School Management System
 CVE-2024-5230 (A vulnerability has been found in EnvaySoft FleetCart up to 4.1.1 and  ...)
-	TODO: check
+	NOT-FOR-US: EnvaySoft FleetCart
 CVE-2024-5177 (The Hash Elements plugin for WordPress is vulnerable to Stored Cross-S ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-4978 (Justice AV Solutions Viewer Setup 8.3.7.250-1 contains a malicious bin ...)
-	TODO: check
+	NOT-FOR-US: Justice AV Solutions Viewer Setup
 CVE-2024-4895 (The wpDataTables \u2013 WordPress Data Table, Dynamic Tables & Table C ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-4783 (The jQuery T(-) Countdown Widget plugin for WordPress is vulnerable to ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-4706 (The WordPress + Microsoft Office 365 / Azure AD | LOGIN plugin for Wor ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-4662 (The Oxygen Builder plugin for WordPress is vulnerable to Remote Code E ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-4486 (The Awesome Contact Form7 for Elementor plugin for WordPress is vulner ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-4431 (The LA-Studio Element Kit for Elementor plugin for WordPress is vulner ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-4399 (The  does not validate a parameter before making a request to it, whic ...)
 	TODO: check
 CVE-2024-4388 (This  does not validate a path generated with user input when download ...)
 	TODO: check
 CVE-2024-4347 (The WP Fastest Cache plugin for WordPress is vulnerable to Directory T ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-4043 (The WP Ultimate Post Grid plugin for WordPress is vulnerable to Stored ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-3920 (The Flattr WordPress plugin through 1.2.2 does not sanitise and escape ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-3918 (The Pet Manager WordPress plugin through 1.4 does not sanitise and esc ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-3917 (The Pet Manager WordPress plugin through 1.4 does not sanitise and esc ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-3711 (The Brizy \u2013 Page Builder plugin for WordPress is vulnerable to un ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-3708 (A condition exists in lighttpd version prior to 1.4.51 whereby a remot ...)
 	TODO: check
 CVE-2024-3648 (The ShareThis Share Buttons plugin for WordPress is vulnerable to Stor ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-3626 (The Email Subscribers by Icegram Express \u2013 Email Marketing, Newsl ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-3594 (The IDonate  WordPress plugin through 1.9.0 does not sanitise and esca ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-3201 (The WP DSGVO Tools (GDPR) plugin for WordPress is vulnerable to Stored ...)
 	TODO: check
 CVE-2024-3065 (The PayPal Pay Now, Buy Now, Donation and Cart Buttons Shortcode plugi ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/09303ea80b963cf5690204f25b00d2ddbd7f05d5

-- 
This project does not include diff previews in email notifications.
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/09303ea80b963cf5690204f25b00d2ddbd7f05d5
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240523/94ddb952/attachment.htm>


More information about the debian-security-tracker-commits mailing list