[Git][security-tracker-team/security-tracker][master] NFUs

Moritz Muehlenhoff (@jmm) jmm at debian.org
Tue Mar 4 08:43:36 GMT 2025



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
4d331607 by Moritz Muehlenhoff at 2025-03-04T09:43:15+01:00
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -59,11 +59,11 @@ CVE-2025-20011 (in OpenHarmony v5.0.2 and prior versions allow a local attacker
 CVE-2025-1906 (A vulnerability has been found in PHPGurukul Restaurant Table Booking  ...)
 	NOT-FOR-US: PHPGurukul
 CVE-2025-1905 (A vulnerability, which was classified as problematic, was found in Sou ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester
 CVE-2025-1904 (A vulnerability, which was classified as problematic, has been found i ...)
-	TODO: check
+	NOT-FOR-US: code-projects Blood Bank System
 CVE-2025-1903 (A vulnerability was found in Codezips Online Shopping Website 1.0. It  ...)
-	TODO: check
+	NOT-FOR-US: Codezips Online Shopping Website
 CVE-2025-1902 (A vulnerability was found in PHPGurukul Student Record System 3.2. It  ...)
 	NOT-FOR-US: PHPGurukul
 CVE-2025-1901 (A vulnerability was found in PHPGurukul Restaurant Table Booking Syste ...)
@@ -83,17 +83,17 @@ CVE-2025-1895 (A vulnerability classified as critical has been found in Tenda TX
 CVE-2025-1894 (A vulnerability was found in PHPGurukul Restaurant Table Booking Syste ...)
 	NOT-FOR-US: PHPGurukul
 CVE-2025-1893 (A vulnerability was found in Open5GS up to 2.7.2. It has been declared ...)
-	TODO: check
+	- open5gs <itp> (bug #1094791)
 CVE-2025-1892 (A vulnerability was found in shishuocms 1.1. It has been classified as ...)
-	TODO: check
+	NOT-FOR-US: shishuocms
 CVE-2025-1891 (A vulnerability was found in shishuocms 1.1 and classified as problema ...)
-	TODO: check
+	NOT-FOR-US: shishuocms
 CVE-2025-1890 (A vulnerability has been found in shishuocms 1.1 and classified as cri ...)
-	TODO: check
+	NOT-FOR-US: shishuocms
 CVE-2025-1882 (A vulnerability was found in i-Drive i11 and i12 up to 20250227. It ha ...)
-	TODO: check
+	NOT-FOR-US: i-Drive i11 and i12
 CVE-2025-1881 (A vulnerability was found in i-Drive i11 and i12 up to 20250227. It ha ...)
-	TODO: check
+	NOT-FOR-US: i-Drive i11 and i12
 CVE-2025-1695 (In NGINX Unit before version 1.34.2 with the Java Language Module in u ...)
 	TODO: check
 CVE-2025-1639 (The Animation Addons for Elementor Pro plugin for WordPress is vulnera ...)
@@ -109,9 +109,9 @@ CVE-2025-0912 (The Donations Widget plugin for WordPress is vulnerable to PHP Ob
 CVE-2025-0587 (in OpenHarmony v5.0.2 and prior versions allow a local attacker arbitr ...)
 	NOT-FOR-US: OpenHarmony
 CVE-2025-0360 (During an annual penetration test conducted on behalf of Axis Communic ...)
-	TODO: check
+	NOT-FOR-US: Axis Communication
 CVE-2025-0359 (During an annual penetration test conducted on behalf of Axis Communic ...)
-	TODO: check
+	NOT-FOR-US: Axis Communication
 CVE-2024-58050 (Vulnerability of improper access permission in the HDC module Impact:  ...)
 	TODO: check
 CVE-2024-58049 (Permission verification vulnerability in the media library module Impa ...)
@@ -133,11 +133,11 @@ CVE-2024-55064 (Multiple cross-site scripting (XSS) vulnerabilities in EasyVirt
 CVE-2024-48248 (NAKIVO Backup & Replication before 11.0.0.88174 allows absolute path t ...)
 	TODO: check
 CVE-2024-47262 (Dzmitry Lukyanenka, member of the AXIS OS Bug Bounty Program, has foun ...)
-	TODO: check
+	NOT-FOR-US: Axis Communication
 CVE-2024-47260 (51l3nc3, member of the AXIS OS Bug Bounty Program, has found that the  ...)
-	TODO: check
+	NOT-FOR-US: Axis Communication
 CVE-2024-47259 (Girishunawane, member of the AXIS OS Bug Bounty Program, has found tha ...)
-	TODO: check
+	NOT-FOR-US: Axis Communication
 CVE-2024-13686 (The VW Storefront theme for WordPress is vulnerable to unauthorized mo ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2024-13685 (The Admin and Site Enhancements (ASE) WordPress plugin before 7.6.10 r ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4d3316075a35cf14e404acf126c2f45c510d73db

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4d3316075a35cf14e404acf126c2f45c510d73db
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250304/d138c971/attachment.htm>


More information about the debian-security-tracker-commits mailing list