[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Feb 22 08:18:28 GMT 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
d6e176a1 by Salvatore Bonaccorso at 2025-02-22T09:18:02+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -15,25 +15,25 @@ CVE-2025-25282 (RAGFlow is an open-source RAG (Retrieval-Augmented Generation) e
 CVE-2025-1555 (A vulnerability classified as critical was found in hzmanyun Education ...)
 	TODO: check
 CVE-2025-1510 (The The Custom Post Type Date Archives plugin for WordPress is vulnera ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-1509 (The The Show Me The Cookies plugin for WordPress is vulnerable to arbi ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-45674 (IBM Security Verify Bridge Directory Sync 1.0.1 through 1.0.12, IBM Se ...)
 	TODO: check
 CVE-2024-22341 (IBM Watson Query on Cloud Pak for Data 4.0.0 through 4.0.9, 4.5.0 thro ...)
 	TODO: check
 CVE-2024-13899 (The Mambo Importer plugin for WordPress is vulnerable to PHP Object In ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-13873 (The WP Job Portal \u2013 A Complete Recruitment System for Company or  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-13798 (The Post Grid and Gutenberg Blocks \u2013 ComboBlocks plugin for WordP ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-13474 (The LTL Freight Quotes \u2013 Purolator Edition plugin for WordPress i ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-12467 (The Pago por Redsys plugin for WordPress is vulnerable to Reflected Cr ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-12038 (The Post Form \u2013 Registration Form \u2013 Profile Form for User Pr ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-26014 (A Remote Code Execution (RCE) vulnerability in Loggrove v.1.0 allows a ...)
 	NOT-FOR-US: Loggrove
 CVE-2025-26013 (An issue in Loggrove v.1.0 allows a remote attacker to obtain sensitiv ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d6e176a1948741c8586359eb5d0e21b88ade3975

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d6e176a1948741c8586359eb5d0e21b88ade3975
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250222/a0ed8417/attachment.htm>


More information about the debian-security-tracker-commits mailing list