[Git][security-tracker-team/security-tracker][master] automatic update

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Feb 27 20:12:06 GMT 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
f34f891f by security tracker role at 2025-02-27T20:12:00+00:00
automatic update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,175 @@
+CVE-2025-27399 (Mastodon is a self-hosted, federated microblogging platform. In versio ...)
+	TODO: check
+CVE-2025-27157 (Mastodon is a self-hosted, federated microblogging platform. Starting  ...)
+	TODO: check
+CVE-2025-27154 (Spotipy is a lightweight Python library for the Spotify Web API. The ` ...)
+	TODO: check
+CVE-2025-25761 (HkCms v2.3.2.240702 was discovered to contain an arbitrary file write  ...)
+	TODO: check
+CVE-2025-25760 (A Server-Side Request Forgery (SSRF) in the component admin_webgather. ...)
+	TODO: check
+CVE-2025-25759 (An issue in the component admin_template.php of SUCMS v1.0 allows atta ...)
+	TODO: check
+CVE-2025-25334 (An issue in Suning Commerce Group Suning EMall iOS 9.5.198 allows atta ...)
+	TODO: check
+CVE-2025-25333 (An issue in IKEA CN iOS 4.13.0 allows attackers to access sensitive us ...)
+	TODO: check
+CVE-2025-25331 (An issue in Beitatong Technology LianJia iOS 9.83.50 allows attackers  ...)
+	TODO: check
+CVE-2025-25330 (An issue in Boohee Technology Boohee Health iOS 13.0.13 allows attacke ...)
+	TODO: check
+CVE-2025-25329 (An issue in Tencent Technology (Beijing) Company Limited Tencent Micro ...)
+	TODO: check
+CVE-2025-25326 (An issue in Merchants Union Consumer Finance Company Limited Merchants ...)
+	TODO: check
+CVE-2025-25325 (An issue in Yibin Fengguan Network Technology Co., Ltd YuPao DirectHir ...)
+	TODO: check
+CVE-2025-25324 (An issue in Shandong Provincial Big Data Center AiShanDong iOS 5.0.0 a ...)
+	TODO: check
+CVE-2025-25323 (An issue in Qianjin Network Information Technology (Shanghai) Co., Ltd ...)
+	TODO: check
+CVE-2025-23687 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
+	TODO: check
+CVE-2025-22952 (elestio memos v0.23.0 is vulnerable to Server-Side Request Forgery (SS ...)
+	TODO: check
+CVE-2025-22624 (FooGallery \u2013 Responsive Photo Gallery, Image Viewer, Justified, M ...)
+	TODO: check
+CVE-2025-22280 (Missing Authorization vulnerability in revmakx DefendWP Firewall allow ...)
+	TODO: check
+CVE-2025-21824 (In the Linux kernel, the following vulnerability has been resolved:  g ...)
+	TODO: check
+CVE-2025-21823 (In the Linux kernel, the following vulnerability has been resolved:  b ...)
+	TODO: check
+CVE-2025-21822 (In the Linux kernel, the following vulnerability has been resolved:  p ...)
+	TODO: check
+CVE-2025-21821 (In the Linux kernel, the following vulnerability has been resolved:  f ...)
+	TODO: check
+CVE-2025-21820 (In the Linux kernel, the following vulnerability has been resolved:  t ...)
+	TODO: check
+CVE-2025-21819 (In the Linux kernel, the following vulnerability has been resolved:  R ...)
+	TODO: check
+CVE-2025-21818 (In the Linux kernel, the following vulnerability has been resolved:  x ...)
+	TODO: check
+CVE-2025-21817 (In the Linux kernel, the following vulnerability has been resolved:  b ...)
+	TODO: check
+CVE-2025-21816 (In the Linux kernel, the following vulnerability has been resolved:  h ...)
+	TODO: check
+CVE-2025-21815 (In the Linux kernel, the following vulnerability has been resolved:  m ...)
+	TODO: check
+CVE-2025-21814 (In the Linux kernel, the following vulnerability has been resolved:  p ...)
+	TODO: check
+CVE-2025-21813 (In the Linux kernel, the following vulnerability has been resolved:  t ...)
+	TODO: check
+CVE-2025-21812 (In the Linux kernel, the following vulnerability has been resolved:  a ...)
+	TODO: check
+CVE-2025-21811 (In the Linux kernel, the following vulnerability has been resolved:  n ...)
+	TODO: check
+CVE-2025-21810 (In the Linux kernel, the following vulnerability has been resolved:  d ...)
+	TODO: check
+CVE-2025-21809 (In the Linux kernel, the following vulnerability has been resolved:  r ...)
+	TODO: check
+CVE-2025-21808 (In the Linux kernel, the following vulnerability has been resolved:  n ...)
+	TODO: check
+CVE-2025-21807 (In the Linux kernel, the following vulnerability has been resolved:  b ...)
+	TODO: check
+CVE-2025-21806 (In the Linux kernel, the following vulnerability has been resolved:  n ...)
+	TODO: check
+CVE-2025-21805 (In the Linux kernel, the following vulnerability has been resolved:  R ...)
+	TODO: check
+CVE-2025-21804 (In the Linux kernel, the following vulnerability has been resolved:  P ...)
+	TODO: check
+CVE-2025-21803 (In the Linux kernel, the following vulnerability has been resolved:  L ...)
+	TODO: check
+CVE-2025-21802 (In the Linux kernel, the following vulnerability has been resolved:  n ...)
+	TODO: check
+CVE-2025-21801 (In the Linux kernel, the following vulnerability has been resolved:  n ...)
+	TODO: check
+CVE-2025-21800 (In the Linux kernel, the following vulnerability has been resolved:  n ...)
+	TODO: check
+CVE-2025-21799 (In the Linux kernel, the following vulnerability has been resolved:  n ...)
+	TODO: check
+CVE-2025-21798 (In the Linux kernel, the following vulnerability has been resolved:  f ...)
+	TODO: check
+CVE-2025-1756 (mongosh may be susceptible to local privilege escalation under certain ...)
+	TODO: check
+CVE-2025-1755 (MongoDB Compass may be susceptible to local privilege escalation under ...)
+	TODO: check
+CVE-2025-1751 (A SQL Injection vulnerability has been found in Ciges 2.15.5 from ATIS ...)
+	TODO: check
+CVE-2025-1745 (A vulnerability has been found in LinZhaoguan pb-cms 2.0 and classifie ...)
+	TODO: check
+CVE-2025-1743 (A vulnerability, which was classified as critical, was found in zyx081 ...)
+	TODO: check
+CVE-2025-1742 (A vulnerability, which was classified as problematic, has been found i ...)
+	TODO: check
+CVE-2025-1741 (A vulnerability classified as problematic was found in b1gMail up to 7 ...)
+	TODO: check
+CVE-2025-1739 (An Authentication Bypass vulnerability has been found in Trivision Cam ...)
+	TODO: check
+CVE-2025-1738 (A Password Transmitted over Query String vulnerability has been found  ...)
+	TODO: check
+CVE-2025-1693 (The MongoDB Shell may be susceptible to control character injection wh ...)
+	TODO: check
+CVE-2025-1692 (The MongoDB Shell may be susceptible to control character injection wh ...)
+	TODO: check
+CVE-2025-1691 (The MongoDB Shell may be susceptible to control character injection wh ...)
+	TODO: check
+CVE-2025-1690 (The ThemeMakers Stripe Checkout plugin for WordPress is vulnerable to  ...)
+	TODO: check
+CVE-2025-1450 (The Floating Chat Widget: Contact Chat Icons, Telegram Chat, Line Mess ...)
+	TODO: check
+CVE-2025-1282 (The Car Dealer Automotive WordPress Theme \u2013 Responsive theme for  ...)
+	TODO: check
+CVE-2025-0914 (An improper access control issue in the VQL shell feature in Velocirap ...)
+	TODO: check
+CVE-2025-0767 (WP Activity Log 5.3.2 was found to be vulnerable. Unvalidated user inp ...)
+	TODO: check
+CVE-2025-0759 (IBM EntireX 11.1 could allow a local user to unintentionally modify da ...)
+	TODO: check
+CVE-2024-9334 (Use of Hard-coded Credentials, Storage of Sensitive Data in a Mechanis ...)
+	TODO: check
+CVE-2024-9285 (A vulnerability was found in Tu Yafeng Via Browser up to 5.9.0 on Andr ...)
+	TODO: check
+CVE-2024-58042 (In the Linux kernel, the following vulnerability has been resolved:  r ...)
+	TODO: check
+CVE-2024-58034 (In the Linux kernel, the following vulnerability has been resolved:  m ...)
+	TODO: check
+CVE-2024-58022 (In the Linux kernel, the following vulnerability has been resolved:  m ...)
+	TODO: check
+CVE-2024-56812 (IBM EntireX 11.1 could allow a local user to obtain sensitive informat ...)
+	TODO: check
+CVE-2024-56811 (IBM EntireX 11.1 could allow a local user to obtain sensitive informat ...)
+	TODO: check
+CVE-2024-56810 (IBM EntireX 11.1 could allow a local user to obtain sensitive informat ...)
+	TODO: check
+CVE-2024-56496 (IBM EntireX 11.1 could allow a local user to obtain sensitive informat ...)
+	TODO: check
+CVE-2024-56495 (IBM EntireX 11.1 could allow a local user to obtain sensitive informat ...)
+	TODO: check
+CVE-2024-56494 (IBM EntireX 11.1 could allow a local user to obtain sensitive informat ...)
+	TODO: check
+CVE-2024-56493 (IBM EntireX 11.1 could allow a local user to obtain sensitive informat ...)
+	TODO: check
+CVE-2024-54957 (Nagios XI 2024R1.2.2 is vulnerable to an open redirect flaw on the Too ...)
+	TODO: check
+CVE-2024-54170 (IBM EntireX 11.1could allow a local user to cause a denial of service  ...)
+	TODO: check
+CVE-2024-54169 (IBM EntireX 11.1could allow an authenticated attacker to traverse dire ...)
+	TODO: check
+CVE-2024-53944 (An issue was discovered on Tuoshi/Dionlink LT15D 4G Wi-Fi devices thro ...)
+	TODO: check
+CVE-2024-53408 (AVE System Web Client v2.1.131.13992 was discovered to contain a cross ...)
+	TODO: check
+CVE-2024-13734 (The Card Elements for Elementor plugin for WordPress is vulnerable to  ...)
+	TODO: check
+CVE-2024-13402 (The Buddyboss Platform plugin for WordPress is vulnerable to Stored Cr ...)
+	TODO: check
+CVE-2024-13217 (The Jeg Elementor Kit plugin for WordPress is vulnerable to Sensitive  ...)
+	TODO: check
+CVE-2024-13148 (Improper Neutralization of Special Elements used in an SQL Command ('S ...)
+	TODO: check
+CVE-2024-10918 (Stack-based Buffer Overflow vulnerability in libmodbus v3.1.10 allows  ...)
+	TODO: check
 CVE-2025-1728
 	REJECTED
 CVE-2025-1717 (The Login Me Now plugin for WordPress is vulnerable to authentication  ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f34f891f62ee94616a6ae44f3daaf9b7a0c2644c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f34f891f62ee94616a6ae44f3daaf9b7a0c2644c
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250227/ddcb31c0/attachment.htm>


More information about the debian-security-tracker-commits mailing list