[Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff (@jmm)
jmm at debian.org
Mon Oct 28 14:14:00 GMT 2024
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker
Commits:
054d9e1f by Moritz Muehlenhoff at 2024-10-28T15:13:43+01:00
NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -32,7 +32,7 @@ CVE-2024-50610 (GSL (GNU Scientific Library) through 2.8 has an integer signedne
CVE-2024-50307 (Use of potentially dangerous function issue exists in Chatwork Desktop ...)
NOT-FOR-US: Chatwork Desktop Application
CVE-2024-38821 (Spring WebFlux applications that have Spring Security authorization ru ...)
- TODO: check
+ NOT-FOR-US: Spring WebFlux
CVE-2024-23843 (Improper Neutralization of Special Elements used in an SQL Command ('S ...)
NOT-FOR-US: Genians
CVE-2024-10440 (The eHDR CTMS from Sunnet has a SQL Injection vulnerability, allowing ...)
@@ -313974,23 +313974,23 @@ CVE-2020-26313
CVE-2020-26312 (Dotmesh is a git-like command-line interface for capturing, organizing ...)
NOT-FOR-US: Dotmesh
CVE-2020-26311 (Useragent is a user agent parser for Node.js. All versions as of time ...)
- TODO: check
+ NOT-FOR-US: Node useragent
CVE-2020-26310 (Validate.js provides a declarative way of validating javascript object ...)
- TODO: check
+ NOT-FOR-US: Validate.js
CVE-2020-26309 (Validate.js provides a declarative way of validating javascript object ...)
- TODO: check
+ NOT-FOR-US: Validate.js
CVE-2020-26308 (Validate.js provides a declarative way of validating javascript object ...)
- TODO: check
+ NOT-FOR-US: Validate.js
CVE-2020-26307 (HTML2Markdown is a Javascript implementation for converting HTML to Ma ...)
- TODO: check
+ NOT-FOR-US: HTML2Markdown
CVE-2020-26306 (Knwl.js is a Javascript library that parses through text for dates, ti ...)
- TODO: check
+ NOT-FOR-US: Knwl.js
CVE-2020-26305 (CommonRegexJS is a CommonRegex port for JavaScript. All available vers ...)
- TODO: check
+ NOT-FOR-US: CommonRegexJS
CVE-2020-26304 (Foundation is a front-end framework. Versions 6.3.3 and prior contain ...)
- TODO: check
+ NOT-FOR-US: Foundation
CVE-2020-26303 (insane is a whitelist-oriented HTML sanitizer. Versions 2.6.2 and prio ...)
- TODO: check
+ NOT-FOR-US: insane
CVE-2020-26302 (is.js is a general-purpose check library. Versions 0.9.0 and prior con ...)
NOT-FOR-US: is.js
CVE-2020-26301 (ssh2 is client and server modules written in pure JavaScript for node. ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/054d9e1f276b609e41f7cc1a75b7f8673f54b355
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/054d9e1f276b609e41f7cc1a75b7f8673f54b355
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20241028/ccdff4cc/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list