[Git][security-tracker-team/security-tracker][master] NFUs

Moritz Muehlenhoff (@jmm) jmm at debian.org
Mon Oct 28 14:14:00 GMT 2024



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
054d9e1f by Moritz Muehlenhoff at 2024-10-28T15:13:43+01:00
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -32,7 +32,7 @@ CVE-2024-50610 (GSL (GNU Scientific Library) through 2.8 has an integer signedne
 CVE-2024-50307 (Use of potentially dangerous function issue exists in Chatwork Desktop ...)
 	NOT-FOR-US: Chatwork Desktop Application
 CVE-2024-38821 (Spring WebFlux applications that have Spring Security authorization ru ...)
-	TODO: check
+	NOT-FOR-US: Spring WebFlux
 CVE-2024-23843 (Improper Neutralization of Special Elements used in an SQL Command ('S ...)
 	NOT-FOR-US: Genians
 CVE-2024-10440 (The eHDR CTMS from Sunnet has a SQL Injection vulnerability, allowing  ...)
@@ -313974,23 +313974,23 @@ CVE-2020-26313
 CVE-2020-26312 (Dotmesh is a git-like command-line interface for capturing, organizing ...)
 	NOT-FOR-US: Dotmesh
 CVE-2020-26311 (Useragent is a user agent parser for Node.js. All versions as of time  ...)
-	TODO: check
+	NOT-FOR-US: Node useragent
 CVE-2020-26310 (Validate.js provides a declarative way of validating javascript object ...)
-	TODO: check
+	NOT-FOR-US: Validate.js
 CVE-2020-26309 (Validate.js provides a declarative way of validating javascript object ...)
-	TODO: check
+	NOT-FOR-US: Validate.js
 CVE-2020-26308 (Validate.js provides a declarative way of validating javascript object ...)
-	TODO: check
+	NOT-FOR-US: Validate.js
 CVE-2020-26307 (HTML2Markdown is a Javascript implementation for converting HTML to Ma ...)
-	TODO: check
+	NOT-FOR-US: HTML2Markdown
 CVE-2020-26306 (Knwl.js is a Javascript library that parses through text for dates, ti ...)
-	TODO: check
+	NOT-FOR-US: Knwl.js
 CVE-2020-26305 (CommonRegexJS is a CommonRegex port for JavaScript. All available vers ...)
-	TODO: check
+	NOT-FOR-US: CommonRegexJS
 CVE-2020-26304 (Foundation is a front-end framework. Versions 6.3.3 and prior contain  ...)
-	TODO: check
+	NOT-FOR-US: Foundation
 CVE-2020-26303 (insane is a whitelist-oriented HTML sanitizer. Versions 2.6.2 and prio ...)
-	TODO: check
+	NOT-FOR-US: insane
 CVE-2020-26302 (is.js is a general-purpose check library. Versions 0.9.0 and prior con ...)
 	NOT-FOR-US: is.js
 CVE-2020-26301 (ssh2 is client and server modules written in pure JavaScript for node. ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/054d9e1f276b609e41f7cc1a75b7f8673f54b355

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/054d9e1f276b609e41f7cc1a75b7f8673f54b355
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20241028/ccdff4cc/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list