[Git][security-tracker-team/security-tracker][master] Process some NFUs
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Wed Aug 20 09:43:13 BST 2025
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
b18eda89 by Salvatore Bonaccorso at 2025-08-20T10:42:51+02:00
Process some NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,25 +1,25 @@
CVE-2025-9225 (Stored cross-site scripting (XSS) in the web interface of MiR software ...)
- TODO: check
+ NOT-FOR-US: MiR software
CVE-2025-9202 (The ColorMag theme for WordPress is vulnerable to unauthorized modific ...)
NOT-FOR-US: WordPress plugin
CVE-2025-9193 (A flaw has been found in TOTVS Portal Meu RH up to 12.1.17. Impacted i ...)
- TODO: check
+ NOT-FOR-US: TOTVS Portal Meu RH
CVE-2025-9176 (A security flaw has been discovered in neurobin shc up to 4.0.3. Impac ...)
- TODO: check
+ NOT-FOR-US: neurobin shc
CVE-2025-9175 (A vulnerability was identified in neurobin shc up to 4.0.3. This issue ...)
- TODO: check
+ NOT-FOR-US: neurobin shc
CVE-2025-9174 (A vulnerability was determined in neurobin shc up to 4.0.3. This vulne ...)
- TODO: check
+ NOT-FOR-US: neurobin shc
CVE-2025-9171 (A security flaw has been discovered in SolidInvoice up to 2.4.0. The i ...)
- TODO: check
+ NOT-FOR-US: SolidInvoice
CVE-2025-9170 (A vulnerability was identified in SolidInvoice up to 2.4.0. The affect ...)
- TODO: check
+ NOT-FOR-US: SolidInvoice
CVE-2025-9169 (A vulnerability was determined in SolidInvoice up to 2.4.0. Impacted i ...)
- TODO: check
+ NOT-FOR-US: SolidInvoice
CVE-2025-9168 (A vulnerability was found in SolidInvoice up to 2.4.0. This issue affe ...)
- TODO: check
+ NOT-FOR-US: SolidInvoice
CVE-2025-9167 (A vulnerability has been found in SolidInvoice up to 2.4.0. This vulne ...)
- TODO: check
+ NOT-FOR-US: SolidInvoice
CVE-2025-8618 (The WPC Smart Quick View for WooCommerce plugin for WordPress is vulne ...)
NOT-FOR-US: WordPress plugin
CVE-2025-8364 (A crafted URL using a blob: URI could have hidden the true origin of t ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b18eda89ea80f3ab366ed36b14116802bf73081b
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b18eda89ea80f3ab366ed36b14116802bf73081b
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250820/4b7f2d4c/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list