[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Aug 21 21:21:17 BST 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
bbea8f7f by Salvatore Bonaccorso at 2025-08-21T22:20:53+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,7 +1,7 @@
 CVE-2025-9311 (A vulnerability was identified in itsourcecode Apartment Management Sy ...)
 	NOT-FOR-US: itsourcecode System
 CVE-2025-9310 (A vulnerability was determined in yeqifu carRental up to 3fabb7eae93d2 ...)
-	TODO: check
+	NOT-FOR-US: yeqifu carRental
 CVE-2025-9309 (A vulnerability was found in Tenda AC10 16.03.10.13. Affected is an un ...)
 	NOT-FOR-US: Tenda
 CVE-2025-9308 (A vulnerability has been found in yarnpkg Yarn up to 1.22.22. This imp ...)
@@ -29,7 +29,7 @@ CVE-2025-9298 (A flaw has been found in Tenda M3 1.0.0.12. Affected is the funct
 CVE-2025-9297 (A vulnerability was detected in Tenda i22 1.0.0.3(4687). This impacts  ...)
 	NOT-FOR-US: Tenda
 CVE-2025-9296 (A security vulnerability has been detected in Emlog Pro up to 2.5.18.  ...)
-	TODO: check
+	NOT-FOR-US: Emlog Pro
 CVE-2025-8402 (Mattermost versions 10.8.x <= 10.8.3, 10.5.x <= 10.5.8, 9.11.x <= 9.11 ...)
 	TODO: check
 CVE-2025-8064 (The Bible SuperSearch plugin for WordPress is vulnerable to Stored Cro ...)
@@ -37,11 +37,11 @@ CVE-2025-8064 (The Bible SuperSearch plugin for WordPress is vulnerable to Store
 CVE-2025-7969 (Improper Neutralization of Input During Web Page Generation (XSS or 'C ...)
 	TODO: check
 CVE-2025-7051 (On N-central, it is possible for any authenticated user to read, write ...)
-	TODO: check
+	NOT-FOR-US: N-central
 CVE-2025-6465 (Mattermost versions 10.8.x <= 10.8.3, 10.5.x <= 10.5.8, 10.10.x <= 10. ...)
 	TODO: check
 CVE-2025-57768 (Phproject is a high performance full-featured project management syste ...)
-	TODO: check
+	NOT-FOR-US: Phproject
 CVE-2025-57765 (WeGIA is a Web manager for charitable institutions. Prior to 3.4.7, a  ...)
 	NOT-FOR-US: WeGIA
 CVE-2025-57764 (WeGIA is a Web manager for charitable institutions. Prior to 3.4.7, a  ...)
@@ -53,7 +53,7 @@ CVE-2025-57762 (WeGIA is a Web manager for charitable institutions. Prior to 3.4
 CVE-2025-57761 (WeGIA is a Web manager for charitable institutions. Prior to 3.4.10, t ...)
 	NOT-FOR-US: WeGIA
 CVE-2025-57755 (claude-code-router is a powerful tool to route Claude Code requests to ...)
-	TODO: check
+	NOT-FOR-US: claude-code-router
 CVE-2025-57754 (eslint-ban-moment is an Eslint plugin for final assignment in VIHU. In ...)
 	TODO: check
 CVE-2025-57753 (vite-plugin-static-copy is rollup-plugin-copy for Vite with dev server ...)
@@ -61,11 +61,11 @@ CVE-2025-57753 (vite-plugin-static-copy is rollup-plugin-copy for Vite with dev
 CVE-2025-57751 (pyLoad is the free and open-source Download Manager written in pure Py ...)
 	TODO: check
 CVE-2025-55744 (UnoPim is an open-source Product Information Management (PIM) system b ...)
-	TODO: check
+	NOT-FOR-US: UnoPim
 CVE-2025-55743 (UnoPim is an open-source Product Information Management (PIM) system b ...)
-	TODO: check
+	NOT-FOR-US: UnoPim
 CVE-2025-55742 (UnoPim is an open-source Product Information Management (PIM) system b ...)
-	TODO: check
+	NOT-FOR-US: UnoPim
 CVE-2025-55564 (Tenda AC15 v15.03.05.19_multi_TD01 has a stack overflow via the list p ...)
 	NOT-FOR-US: Tenda
 CVE-2025-55524 (Insecure permissions in Agent-Zero v0.8.* allow attackers to arbitrari ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/bbea8f7f9216bf8cdb151e07572486fa2bf6596b

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/bbea8f7f9216bf8cdb151e07572486fa2bf6596b
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250821/a7eb97bf/attachment.htm>


More information about the debian-security-tracker-commits mailing list