[Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff (@jmm)
jmm at debian.org
Sat Feb 15 19:39:57 GMT 2025
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker
Commits:
e9a7f291 by Moritz Muehlenhoff at 2025-02-15T20:39:40+01:00
NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,31 +1,31 @@
CVE-2025-26819 (Monero through 0.18.3.4 before ec74ff4 does not have response limits o ...)
TODO: check
CVE-2025-21401 (Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability)
- TODO: check
+ NOT-FOR-US: Microsoft
CVE-2025-1302 (Versions of the package jsonpath-plus before 10.3.0 are vulnerable to ...)
TODO: check
CVE-2025-0593 (The vulnerability may allow a remote low priviledged attacker to run a ...)
- TODO: check
+ NOT-FOR-US: SICK
CVE-2025-0592 (The vulnerability may allow a remote low priviledged attacker to run a ...)
- TODO: check
+ NOT-FOR-US: SICK
CVE-2024-5462 (If Brocade Fabric OS before Fabric OS 9.2.0 configuration settings are ...)
- TODO: check
+ NOT-FOR-US: Brocade
CVE-2024-5461 (Implementation of the Simple Network Management Protocol (SNMP) opera ...)
- TODO: check
+ NOT-FOR-US: Brocade
CVE-2024-4282 (Brocade SANnav OVA before SANnav 2.3.1b enables SHA1 deprecated settin ...)
- TODO: check
+ NOT-FOR-US: Brocade
CVE-2024-37375
REJECTED
CVE-2024-37374
REJECTED
CVE-2024-13513 (The Oliver POS \u2013 A WooCommerce Point of Sale (POS) plugin for Wor ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2024-13306 (The Maps Plugin using Google Maps for WordPress WordPress plugin befo ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2024-13208 (The Maps Plugin using Google Maps for WordPress WordPress plugin befo ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2024-10405 (Brocade SANnav before SANnav 2.3.1b enables weak TLS ciphers on ports ...)
- TODO: check
+ NOT-FOR-US: Brocade
CVE-2025-26524 (This vulnerability exists in RupeeWeb trading platform due to missing ...)
NOT-FOR-US: RupeeWeb
CVE-2025-26523 (This vulnerability exists in RupeeWeb trading platform due to insuffic ...)
@@ -201,7 +201,7 @@ CVE-2025-1239 (Improper Neutralization of Input During Web Page Generation (XSS
CVE-2025-1071 (Improper Neutralization of Input During Web Page Generation (XSS or 'C ...)
NOT-FOR-US: WatchGuard Fireware OS
CVE-2025-0867 (The standard user uses the run as function to start the MEAC applicati ...)
- TODO: check
+ NOT-FOR-US: SICK
CVE-2025-0821 (Bit Assist plugin for WordPress is vulnerable to time-based SQL Inject ...)
NOT-FOR-US: WordPress plugin
CVE-2025-0503 (Mattermost versions 9.11.x <= 9.11.6 fail to filter out DMs from the d ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e9a7f2915dcb3315eda3c239205a51ebdd22949c
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e9a7f2915dcb3315eda3c239205a51ebdd22949c
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250215/d5fe06ce/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list