[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed May 29 10:25:20 BST 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
fe2fc4ce by Salvatore Bonaccorso at 2024-05-29T11:22:14+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,19 +1,19 @@
 CVE-2024-5437 (A vulnerability was found in SourceCodester Simple Online Bidding Syst ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Simple Online Bidding System
 CVE-2024-5204 (The Swiss Toolkit For WP plugin for WordPress is vulnerable to authent ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-5150 (The Login with phone number plugin for WordPress is vulnerable to auth ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-5086 (The Essential Addons for Elementor PRO \u2013 Best Elementor Templates ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-4611 (The AppPresser plugin for WordPress is vulnerable to improper missing  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-4419 (The Fetch JFT plugin for WordPress is vulnerable to Stored Cross-Site  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-3937 (The Playlist for Youtube WordPress plugin through 1.32 does not saniti ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-3921 (The Gianism WordPress plugin through 5.1.0 does not sanitise and escap ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-3050 (The Site Reviews WordPress plugin before 7.0.0 retrieves client IP add ...)
 	TODO: check
 CVE-2024-36112 (Nautobot is a Network Source of Truth and Network Automation Platform. ...)
@@ -21,11 +21,11 @@ CVE-2024-36112 (Nautobot is a Network Source of Truth and Network Automation Pla
 CVE-2024-35548 (A SQL injection vulnerability in Mybatis plus versions below 3.5.6 all ...)
 	TODO: check
 CVE-2024-35511 (phpgurukul Men Salon Management System v2.0 is vulnerable to SQL Injec ...)
-	TODO: check
+	NOT-FOR-US: phpgurukul Men Salon Management System
 CVE-2024-35240 (Umbraco Commerce is an open source dotnet ecommerce solution. In affec ...)
-	TODO: check
+	NOT-FOR-US: Umbraco Commerce
 CVE-2024-35239 (Umbraco Commerce is an open source dotnet web forms solution. In affec ...)
-	TODO: check
+	NOT-FOR-US: Umbraco Commerce
 CVE-2024-35226 (Smarty is a template engine for PHP, facilitating the separation of pr ...)
 	TODO: check
 CVE-2024-23580 (HCL DRYiCE Optibot Reset Station is impacted byinsecure encryption of  ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/fe2fc4cef2dd35ca89a21ea3609ccdf814e597c4

-- 
This project does not include diff previews in email notifications.
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/fe2fc4cef2dd35ca89a21ea3609ccdf814e597c4
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240529/1fbce9ca/attachment.htm>


More information about the debian-security-tracker-commits mailing list