[Git][security-tracker-team/security-tracker][master] Mark CVE-2025-40915 as NFU

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Jun 11 21:24:16 BST 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
dfcf047a by Salvatore Bonaccorso at 2025-06-11T22:23:50+02:00
Mark CVE-2025-40915 as NFU

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -41,7 +41,7 @@ CVE-2025-41662 (An unauthenticated remote attacker can execute arbitrary command
 CVE-2025-41661 (An unauthenticated remote attacker can execute arbitrary commands with ...)
 	TODO: check
 CVE-2025-40915 (Mojolicious::Plugin::CSRF 1.03 for Perl uses a weak random number sour ...)
-	TODO: check
+	NOT-FOR-US: Mojolicious::Plugin::CSRF Perl module
 CVE-2025-40914 (Perl CryptX before version 0.087 contains a dependency that may be sus ...)
 	TODO: check
 CVE-2025-40912 (CryptX for Perl before version 0.065 contains a dependency that may be ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/dfcf047ab1a165e9b426aba77de086369b18645a

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/dfcf047ab1a165e9b426aba77de086369b18645a
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250611/0dcb51d7/attachment.htm>


More information about the debian-security-tracker-commits mailing list