[Git][security-tracker-team/security-tracker][master] 2 commits: Process NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Oct 24 21:22:29 BST 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
f9375290 by Salvatore Bonaccorso at 2024-10-24T22:18:41+02:00
Process NFUs

- - - - -
06b5afd7 by Salvatore Bonaccorso at 2024-10-24T22:21:26+02:00
Process more NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,37 +1,37 @@
 CVE-2024-9692 (VIMESA VHF/FM Transmitter Blue Plus is suffering from a Denial-of-Serv ...)
-	TODO: check
+	NOT-FOR-US: VIMESA VHF/FM Transmitter Blue Plus
 CVE-2024-9650 (The WP Recipe Maker plugin for WordPress is vulnerable to Stored Cross ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-9214 (The Extra Product Options Builder for WooCommerce plugin for WordPress ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-8959 (The WP Adminify \u2013 Custom WordPress Dashboard, Login and Admin Cus ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-8717 (The PDF Flipbook, 3D Flipbook, PDF embed, PDF viewer \u2013 DearFlip p ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-8312 (An issue has been discovered in GitLab CE/EE affecting all versions fr ...)
 	TODO: check
 CVE-2024-6826 (An issue has been discovered in GitLab CE/EE affecting all versions fr ...)
 	TODO: check
 CVE-2024-5608 (Zohocorp ManageEngine ADAudit Plus versions below 8121 are vulnerable  ...)
-	TODO: check
+	NOT-FOR-US: Zoho
 CVE-2024-49703 (Improper Neutralization of Input During Web Page Generation (XSS or 'C ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-49702 (Improper Neutralization of Input During Web Page Generation (XSS or 'C ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-49696 (Improper Neutralization of Input During Web Page Generation (XSS or 'C ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-49695 (Improper Neutralization of Input During Web Page Generation (XSS or 'C ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-49693 (Improper Neutralization of Input During Web Page Generation (XSS or 'C ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-49691 (Improper Neutralization of Special Elements used in an SQL Command ('S ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-49683 (Missing Authorization vulnerability in Schema & Structured Data for WP ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-49682 (URL Redirection to Untrusted Site ('Open Redirect') vulnerability in s ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-49681 (Improper Neutralization of Special Elements used in an SQL Command ('S ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-48548 (The APK file in Cloud Smart Lock v2.0.1 has a leaked a URL that can ca ...)
 	TODO: check
 CVE-2024-48547 (Incorrect access control in the firmware update and download processes ...)
@@ -107,7 +107,7 @@ CVE-2024-44141 (The issue was addressed with improved checks. This issue is fixe
 CVE-2024-40810 (An out-of-bounds write issue was addressed with improved input validat ...)
 	TODO: check
 CVE-2024-38314 (IBM Maximo Application Suite - Monitor Component 8.10, 8.11, and 9.0 c ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2024-10338 (A vulnerability classified as critical was found in SourceCodeHero Clo ...)
 	TODO: check
 CVE-2024-10337 (A vulnerability classified as critical has been found in SourceCodeHer ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/9d2ca2eb0f99cc24fd5ac056f4170e2bff13f852...06b5afd70c1797b7f7fada99624bc035f5d1d350

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/9d2ca2eb0f99cc24fd5ac056f4170e2bff13f852...06b5afd70c1797b7f7fada99624bc035f5d1d350
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20241024/e7c95ba7/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list