[Git][security-tracker-team/security-tracker][master] automatic NOT-FOR-US entries update
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Fri Dec 5 20:14:28 GMT 2025
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
7c90d61d by security tracker role at 2025-12-05T20:14:22+00:00
automatic NOT-FOR-US entries update
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -67,7 +67,7 @@ CVE-2025-65878 (The warehouse management system version 1.2 contains an arbitrar
CVE-2025-65730 (Authentication Bypass via Hardcoded Credentials GoAway up to v0.62.18, ...)
TODO: check
CVE-2025-65036 (XWiki Remote Macros provides XWiki rendering macros that are useful wh ...)
- TODO: check
+ NOT-FOR-US: XWiki
CVE-2025-64057 (Directory traversal vulnerability in Fanvil x210 V2 2.12.20 allows una ...)
TODO: check
CVE-2025-64056 (File upload vulnerability in Fanvil x210 V2 2.12.20 allows unauthentic ...)
@@ -79,29 +79,29 @@ CVE-2025-64053 (A Buffer overflow vulnerability on Fanvil x210 2.12.20 devices a
CVE-2025-64052 (An issue was discovered in Fanvil x210 V2 2.12.20 allowing unauthentic ...)
TODO: check
CVE-2025-46603 (Dell CloudBoost Virtual Appliance, versions 19.13.0.0 and prior, conta ...)
- TODO: check
+ NOT-FOR-US: Dell / EMC
CVE-2025-34266 (Advantech WISE-DeviceOn Server versions prior to 5.4contain a stored c ...)
- TODO: check
+ NOT-FOR-US: Advantech
CVE-2025-34265 (Advantech WISE-DeviceOn Server versions prior to 5.4contain a stored c ...)
- TODO: check
+ NOT-FOR-US: Advantech
CVE-2025-34264 (Advantech WISE-DeviceOn Server versions prior to 5.4contain a stored c ...)
- TODO: check
+ NOT-FOR-US: Advantech
CVE-2025-34263 (Advantech WISE-DeviceOn Server versions prior to 5.4contain a stored c ...)
- TODO: check
+ NOT-FOR-US: Advantech
CVE-2025-34262 (Advantech WISE-DeviceOn Server versions prior to 5.4contain a stored c ...)
- TODO: check
+ NOT-FOR-US: Advantech
CVE-2025-34261 (Advantech WISE-DeviceOn Server versions prior to 5.4contain a stored c ...)
- TODO: check
+ NOT-FOR-US: Advantech
CVE-2025-34260 (Advantech WISE-DeviceOn Server versions prior to 5.4contain a stored c ...)
- TODO: check
+ NOT-FOR-US: Advantech
CVE-2025-34259 (Advantech WISE-DeviceOn Server versions prior to 5.4contain a stored c ...)
- TODO: check
+ NOT-FOR-US: Advantech
CVE-2025-34258 (Advantech WISE-DeviceOn Server versions prior to 5.4contain a stored c ...)
- TODO: check
+ NOT-FOR-US: Advantech
CVE-2025-34257 (Advantech WISE-DeviceOn Server versions prior to 5.4contain a stored c ...)
- TODO: check
+ NOT-FOR-US: Advantech
CVE-2025-34256 (Advantech WISE-DeviceOn Server versions prior to 5.4contain a hard-cod ...)
- TODO: check
+ NOT-FOR-US: Advantech
CVE-2025-14104 (A flaw was found in util-linux. This vulnerability allows a heap buffe ...)
TODO: check
CVE-2025-14094 (A flaw has been found in Edimax BR-6478AC V3 1.0.15. The affected elem ...)
@@ -123,23 +123,23 @@ CVE-2025-14086 (A vulnerability was found in youlaitech youlai-mall 1.0.0/2.0.0.
CVE-2025-14085 (A vulnerability has been found in youlaitech youlai-mall 1.0.0/2.0.0. ...)
TODO: check
CVE-2025-13739 (The CryptX plugin for WordPress is vulnerable to Stored Cross-Site Scr ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2025-13682 (The Trail Manager plugin for WordPress is vulnerable to Stored Cross-S ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2025-13678 (The Thai Lottery Widget plugin for WordPress is vulnerable to Stored C ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2025-13654 (A stack buffer overflow vulnerability exists in the buffer_get functio ...)
TODO: check
CVE-2025-13620 (The Wp Social Login and Register Social Counter plugin for WordPress i ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2025-13614 (The Cool Tag Cloud plugin for WordPress is vulnerable to Stored Cross- ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2025-12879 (The User Generator and Importer plugin for WordPress is vulnerable to ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2025-12876 (The Projectopia \u2013 WordPress Project Management plugin for WordPre ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2025-12851 (The My auctions allegro plugin for WordPress is vulnerable to Local Fi ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2020-36882 (Flexsense DiskBoss 7.7.14 allows unauthenticated attackers to upload a ...)
TODO: check
CVE-2020-36881 (Flexsense DiskBoss 7.7.14 contains a local buffer overflow vulnerabili ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7c90d61dcb8e1dd8be61584952c058a08d36a0e2
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7c90d61dcb8e1dd8be61584952c058a08d36a0e2
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20251205/26db81e7/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list