[Git][security-tracker-team/security-tracker][master] NFUs

Moritz Muehlenhoff (@jmm) jmm at debian.org
Sat Feb 15 19:39:57 GMT 2025



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
e9a7f291 by Moritz Muehlenhoff at 2025-02-15T20:39:40+01:00
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,31 +1,31 @@
 CVE-2025-26819 (Monero through 0.18.3.4 before ec74ff4 does not have response limits o ...)
 	TODO: check
 CVE-2025-21401 (Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2025-1302 (Versions of the package jsonpath-plus before 10.3.0 are vulnerable to  ...)
 	TODO: check
 CVE-2025-0593 (The vulnerability may allow a remote low priviledged attacker to run a ...)
-	TODO: check
+	NOT-FOR-US: SICK
 CVE-2025-0592 (The vulnerability may allow a remote low priviledged attacker to run a ...)
-	TODO: check
+	NOT-FOR-US: SICK
 CVE-2024-5462 (If Brocade Fabric OS before Fabric OS 9.2.0 configuration settings are ...)
-	TODO: check
+	NOT-FOR-US: Brocade
 CVE-2024-5461 (Implementation of the Simple Network  Management Protocol (SNMP) opera ...)
-	TODO: check
+	NOT-FOR-US: Brocade
 CVE-2024-4282 (Brocade SANnav OVA before SANnav 2.3.1b enables SHA1 deprecated settin ...)
-	TODO: check
+	NOT-FOR-US: Brocade
 CVE-2024-37375
 	REJECTED
 CVE-2024-37374
 	REJECTED
 CVE-2024-13513 (The Oliver POS \u2013 A WooCommerce Point of Sale (POS) plugin for Wor ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-13306 (The Maps Plugin using Google Maps for WordPress  WordPress plugin befo ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-13208 (The Maps Plugin using Google Maps for WordPress  WordPress plugin befo ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-10405 (Brocade SANnav before SANnav 2.3.1b  enables weak TLS ciphers on ports ...)
-	TODO: check
+	NOT-FOR-US: Brocade
 CVE-2025-26524 (This vulnerability exists in RupeeWeb trading platform due to missing  ...)
 	NOT-FOR-US: RupeeWeb
 CVE-2025-26523 (This vulnerability exists in RupeeWeb trading platform due to insuffic ...)
@@ -201,7 +201,7 @@ CVE-2025-1239 (Improper Neutralization of Input During Web Page Generation (XSS
 CVE-2025-1071 (Improper Neutralization of Input During Web Page Generation (XSS or 'C ...)
 	NOT-FOR-US: WatchGuard Fireware OS
 CVE-2025-0867 (The standard user uses the run as function to start the MEAC applicati ...)
-	TODO: check
+	NOT-FOR-US: SICK
 CVE-2025-0821 (Bit Assist plugin for WordPress is vulnerable to time-based SQL Inject ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2025-0503 (Mattermost versions 9.11.x <= 9.11.6 fail to filter out DMs from the d ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e9a7f2915dcb3315eda3c239205a51ebdd22949c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e9a7f2915dcb3315eda3c239205a51ebdd22949c
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250215/d5fe06ce/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list