[Git][security-tracker-team/security-tracker][master] Add CVE-2024-54123/backdrop

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Nov 29 08:18:15 GMT 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
13df20e4 by Salvatore Bonaccorso at 2024-11-29T09:17:54+01:00
Add CVE-2024-54123/backdrop

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -9,7 +9,7 @@ CVE-2024-8299 (Uncontrolled Search Path Element vulnerability in ICONICS GENESIS
 CVE-2024-54124 (In Click Studios Passwordstate before build 9920, there is a potential ...)
 	NOT-FOR-US: Click Studios Passwordstate
 CVE-2024-54123 (Backdrop CMS before 1.28.4 and 1.29.x before 1.29.2 allows XSS via an  ...)
-	TODO: check
+	- backdrop <itp> (bug #914257)
 CVE-2024-53701 (Multiple FCNT Android devices provide the original security features s ...)
 	NOT-FOR-US: FCNT Android devices
 CVE-2024-45495 (MSA FieldServer Gateway 5.0.0 through 6.5.2 allows cross-origin WebSoc ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/13df20e4f2095e7d6c3efbec00cc21cf6c889823

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/13df20e4f2095e7d6c3efbec00cc21cf6c889823
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20241129/dc139923/attachment.htm>


More information about the debian-security-tracker-commits mailing list