[Git][security-tracker-team/security-tracker][master] Add CVE-2025-54141/ViewVC

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Jul 23 22:08:12 BST 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
038f229c by Salvatore Bonaccorso at 2025-07-23T23:07:48+02:00
Add CVE-2025-54141/ViewVC

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -83,7 +83,11 @@ CVE-2025-54295 (A Reflected XSS vulnerability in DJ-Reviews component 1.0-1.3.6
 CVE-2025-54294 (A SQLi vulnerability in Komento component 4.0.0-4.0.7for Joomla was di ...)
 	NOT-FOR-US: Joomla
 CVE-2025-54141 (ViewVC is a browser interface for CVS and Subversion version control r ...)
-	TODO: check
+	- viewvc <removed>
+	NOTE: https://github.com/viewvc/viewvc/security/advisories/GHSA-rv3m-76rj-q397
+	NOTE: https://github.com/viewvc/viewvc/issues/211
+	NOTE: https://github.com/viewvc/viewvc/commit/1dd84542c39b39e4a3f434db84a8ba3441d6a1e7 (1.2.4)
+	NOTE: https://github.com/viewvc/viewvc/commit/5d7c76be07b77dce4ff631e9b866056344f11e84 (1.1.31)
 CVE-2025-54140 (pyLoad is a free and open-source Download Manager written in pure Pyth ...)
 	TODO: check
 CVE-2025-54139 (HAX CMS allows users to manage their microsite universe with a NodeJS  ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/038f229c6de48593daf0bb5c0ef978f0babfc530

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/038f229c6de48593daf0bb5c0ef978f0babfc530
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250723/2d5be5f7/attachment.htm>


More information about the debian-security-tracker-commits mailing list