[Git][security-tracker-team/security-tracker][master] Process some NFUs
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Thu Aug 21 21:21:17 BST 2025
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
bbea8f7f by Salvatore Bonaccorso at 2025-08-21T22:20:53+02:00
Process some NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,7 +1,7 @@
CVE-2025-9311 (A vulnerability was identified in itsourcecode Apartment Management Sy ...)
NOT-FOR-US: itsourcecode System
CVE-2025-9310 (A vulnerability was determined in yeqifu carRental up to 3fabb7eae93d2 ...)
- TODO: check
+ NOT-FOR-US: yeqifu carRental
CVE-2025-9309 (A vulnerability was found in Tenda AC10 16.03.10.13. Affected is an un ...)
NOT-FOR-US: Tenda
CVE-2025-9308 (A vulnerability has been found in yarnpkg Yarn up to 1.22.22. This imp ...)
@@ -29,7 +29,7 @@ CVE-2025-9298 (A flaw has been found in Tenda M3 1.0.0.12. Affected is the funct
CVE-2025-9297 (A vulnerability was detected in Tenda i22 1.0.0.3(4687). This impacts ...)
NOT-FOR-US: Tenda
CVE-2025-9296 (A security vulnerability has been detected in Emlog Pro up to 2.5.18. ...)
- TODO: check
+ NOT-FOR-US: Emlog Pro
CVE-2025-8402 (Mattermost versions 10.8.x <= 10.8.3, 10.5.x <= 10.5.8, 9.11.x <= 9.11 ...)
TODO: check
CVE-2025-8064 (The Bible SuperSearch plugin for WordPress is vulnerable to Stored Cro ...)
@@ -37,11 +37,11 @@ CVE-2025-8064 (The Bible SuperSearch plugin for WordPress is vulnerable to Store
CVE-2025-7969 (Improper Neutralization of Input During Web Page Generation (XSS or 'C ...)
TODO: check
CVE-2025-7051 (On N-central, it is possible for any authenticated user to read, write ...)
- TODO: check
+ NOT-FOR-US: N-central
CVE-2025-6465 (Mattermost versions 10.8.x <= 10.8.3, 10.5.x <= 10.5.8, 10.10.x <= 10. ...)
TODO: check
CVE-2025-57768 (Phproject is a high performance full-featured project management syste ...)
- TODO: check
+ NOT-FOR-US: Phproject
CVE-2025-57765 (WeGIA is a Web manager for charitable institutions. Prior to 3.4.7, a ...)
NOT-FOR-US: WeGIA
CVE-2025-57764 (WeGIA is a Web manager for charitable institutions. Prior to 3.4.7, a ...)
@@ -53,7 +53,7 @@ CVE-2025-57762 (WeGIA is a Web manager for charitable institutions. Prior to 3.4
CVE-2025-57761 (WeGIA is a Web manager for charitable institutions. Prior to 3.4.10, t ...)
NOT-FOR-US: WeGIA
CVE-2025-57755 (claude-code-router is a powerful tool to route Claude Code requests to ...)
- TODO: check
+ NOT-FOR-US: claude-code-router
CVE-2025-57754 (eslint-ban-moment is an Eslint plugin for final assignment in VIHU. In ...)
TODO: check
CVE-2025-57753 (vite-plugin-static-copy is rollup-plugin-copy for Vite with dev server ...)
@@ -61,11 +61,11 @@ CVE-2025-57753 (vite-plugin-static-copy is rollup-plugin-copy for Vite with dev
CVE-2025-57751 (pyLoad is the free and open-source Download Manager written in pure Py ...)
TODO: check
CVE-2025-55744 (UnoPim is an open-source Product Information Management (PIM) system b ...)
- TODO: check
+ NOT-FOR-US: UnoPim
CVE-2025-55743 (UnoPim is an open-source Product Information Management (PIM) system b ...)
- TODO: check
+ NOT-FOR-US: UnoPim
CVE-2025-55742 (UnoPim is an open-source Product Information Management (PIM) system b ...)
- TODO: check
+ NOT-FOR-US: UnoPim
CVE-2025-55564 (Tenda AC15 v15.03.05.19_multi_TD01 has a stack overflow via the list p ...)
NOT-FOR-US: Tenda
CVE-2025-55524 (Insecure permissions in Agent-Zero v0.8.* allow attackers to arbitrari ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/bbea8f7f9216bf8cdb151e07572486fa2bf6596b
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/bbea8f7f9216bf8cdb151e07572486fa2bf6596b
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250821/a7eb97bf/attachment.htm>
More information about the debian-security-tracker-commits
mailing list