[Git][security-tracker-team/security-tracker][master] automatic NOT-FOR-US entries update

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Apr 24 09:13:07 BST 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
0f0ba0f9 by security tracker role at 2025-04-24T08:13:00+00:00
automatic NOT-FOR-US entries update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -31,33 +31,33 @@ CVE-2025-41423 (Mattermost versions 10.4.x <= 10.4.2, 10.5.x <= 10.5.0, 9.11.x <
 CVE-2025-41395 (Mattermost versions 10.4.x <= 10.4.2, 10.5.x <= 10.5.0, 9.11.x <= 9.11 ...)
 	TODO: check
 CVE-2025-3761 (The My Tickets \u2013 Accessible Event Ticketing plugin for WordPress  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-3435 (The Mang Board WP plugin for WordPress is vulnerable to Stored Cross-S ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-35965 (Mattermost versions 10.4.x <= 10.4.2, 10.5.x <= 10.5.0, 9.11.x <= 9.11 ...)
 	TODO: check
 CVE-2025-32730 (Use of hard-coded cryptographic key vulnerability in i-PRO Configurati ...)
 	TODO: check
 CVE-2025-2558 (The-wound WordPress theme through 0.0.1 does not validate some paramet ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-27581 (NIH BRICS (aka Biomedical Research Informatics Computing System) throu ...)
 	TODO: check
 CVE-2025-27580 (NIH BRICS (aka Biomedical Research Informatics Computing System) throu ...)
 	TODO: check
 CVE-2025-25046 (IBM InfoSphere Information Server 11.7DataStage Flow Designer  transmi ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2025-25045 (IBM InfoSphere Information 11.7 Server authenticated user to obtain se ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2025-1976 (Brocade Fabric OS versions starting with 9.1.0 have root access remove ...)
 	TODO: check
 CVE-2025-1908 (An issue has been discovered in GitLab EE/CE that could allow an attac ...)
 	TODO: check
 CVE-2025-1453 (The Category Posts Widget WordPress plugin before 4.9.20 does not sani ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-0639 (An issue has been discovered affecting service availability via issue  ...)
 	TODO: check
 CVE-2024-22351 (IBM InfoSphere Information 11.7 Server does not invalidate session aft ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2024-12244 (An issue has been discovered in access controls could allow users to v ...)
 	TODO: check
 CVE-2025-46394 (In tar in BusyBox through 1.37.0, a TAR archive can have filenames hid ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0f0ba0f9727f6b9f06ca6a13a404e2cd2b264d7e

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0f0ba0f9727f6b9f06ca6a13a404e2cd2b264d7e
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250424/ee218078/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list