[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Feb 17 20:18:18 GMT 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
1cf6f61c by Salvatore Bonaccorso at 2025-02-17T21:17:46+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,37 +1,37 @@
 CVE-2025-26778 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-26775 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-26773 (Missing Authorization vulnerability in Adnan Analytify allows Exploiti ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-26772 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-26771 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-26770 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-26769 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-26758 (Exposure of Sensitive System Information to an Unauthorized Control Sp ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-26754 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-23845 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-23840 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-21103 (Dell NetWorker Management Console, version(s) 19.11 through 19.11.0.3  ...)
-	TODO: check
+	NOT-FOR-US: Dell
 CVE-2025-1392 (A vulnerability has been found in D-Link DIR-816 1.01TO and classified ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2025-1391 (A flaw was found in the Keycloak organization feature, which allows th ...)
 	TODO: check
 CVE-2025-0714 (The vulnerability existed in the password storage of Mobateks MobaXter ...)
-	TODO: check
+	NOT-FOR-US: Mobateks MobaXterm
 CVE-2025-0001 (Abacus ERP is versions older than 2024.210.16036, 2023.205.15833, 2022 ...)
-	TODO: check
+	NOT-FOR-US: Abacus ERP
 CVE-2024-13879 (The Stream plugin for WordPress is vulnerable to Server-Side Request F ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-13837
 	REJECTED
 CVE-2025-26779 (Improper Limitation of a Pathname to a Restricted Directory ('Path Tra ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1cf6f61ccb92047ff990aefaa7b91b124aabf206

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1cf6f61ccb92047ff990aefaa7b91b124aabf206
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250217/64d7b084/attachment.htm>


More information about the debian-security-tracker-commits mailing list