[Git][security-tracker-team/security-tracker][master] Reassocite some NFUs with itp'ed entry
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Wed Jul 2 21:23:23 BST 2025
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
eadf4cae by Salvatore Bonaccorso at 2025-07-02T22:22:40+02:00
Reassocite some NFUs with itp'ed entry
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -16721,7 +16721,7 @@ CVE-2025-47203 (dbclient in Dropbear SSH before 2025.88 allows command injection
CVE-2025-46828 (WeGIA is a web manager for charitable institutions. An unauthenticate ...)
NOT-FOR-US: WeGIA
CVE-2025-46827 (Graylog is a free and open log management platform. Prior to versions ...)
- NOT-FOR-US: Graylog
+ - graylog2 <itp> (bug #652273)
CVE-2025-46824 (The Discourse Code Review Plugin allows users to review GitHub commits ...)
NOT-FOR-US: Discourse Code Review Plugin
CVE-2025-46551 (JRuby-OpenSSL is an add-on gem for JRuby that emulates the Ruby OpenSS ...)
@@ -26620,7 +26620,7 @@ CVE-2025-31475 (tarteaucitron.js is a compliant and accessible cookie banner. A
CVE-2025-31138 (tarteaucitron.js is a compliant and accessible cookie banner. A vulner ...)
NOT-FOR-US: tarteaucitron.js
CVE-2025-30373 (Graylog is a free and open log management platform. Starting with 6.1, ...)
- NOT-FOR-US: Graylog
+ - graylog2 <itp> (bug #652273)
CVE-2025-2251 (A security flaw exists in WildFly and JBoss Enterprise Application Pla ...)
NOT-FOR-US: Red Hat WildFly and JBoss Enterprise Application Platform (EAP)
CVE-2025-29769 (libvips is a demand-driven, horizontally threaded image processing lib ...)
@@ -70844,7 +70844,7 @@ CVE-2024-52584 (Autolab is a course management service that enables auto-graded
CVE-2024-52583 (The WesHacks GitHub repository provides the official Hackathon competi ...)
NOT-FOR-US: WesHacks
CVE-2024-52506 (Graylog is a free and open log management platform. The reporting func ...)
- NOT-FOR-US: Graylog
+ - graylog2 <itp> (bug #652273)
CVE-2024-52418 (Improper Neutralization of Input During Web Page Generation (XSS or 'C ...)
NOT-FOR-US: WordPress plugin
CVE-2024-52417 (Improper Neutralization of Input During Web Page Generation (XSS or 'C ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/eadf4cae9af46e55b8ce5f0acb0e3bc40d27630f
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/eadf4cae9af46e55b8ce5f0acb0e3bc40d27630f
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250702/fba0d7cd/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list