[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Mar 6 20:15:45 GMT 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
f45a34e3 by Salvatore Bonaccorso at 2025-03-06T21:15:23+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -3,19 +3,19 @@ CVE-2025-2045 (Improper authorization in GitLab EE affecting all versions from 1
 CVE-2025-2040 (A vulnerability classified as critical was found in zhijiantianya ruoy ...)
 	TODO: check
 CVE-2025-2039 (A vulnerability classified as critical has been found in code-projects ...)
-	TODO: check
+	NOT-FOR-US: code-projects
 CVE-2025-2038 (A vulnerability was found in code-projects Blood Bank Management Syste ...)
-	TODO: check
+	NOT-FOR-US: code-projects
 CVE-2025-2037 (A vulnerability was found in code-projects Blood Bank Management Syste ...)
-	TODO: check
+	NOT-FOR-US: code-projects
 CVE-2025-2036 (A vulnerability was found in s-a-zhd Ecommerce-Website-using-PHP 1.0.  ...)
 	TODO: check
 CVE-2025-2035 (A vulnerability was found in s-a-zhd Ecommerce-Website-using-PHP 1.0 a ...)
 	TODO: check
 CVE-2025-2034 (A vulnerability has been found in PHPGurukul Pre-School Enrollment Sys ...)
-	TODO: check
+	NOT-FOR-US: PHPGurukul
 CVE-2025-2033 (A vulnerability, which was classified as critical, was found in code-p ...)
-	TODO: check
+	NOT-FOR-US: code-projects
 CVE-2025-2032 (A vulnerability classified as problematic was found in ChestnutCMS 1.5 ...)
 	TODO: check
 CVE-2025-2031 (A vulnerability classified as critical has been found in ChestnutCMS u ...)
@@ -53,13 +53,13 @@ CVE-2025-24796 (Collabora Online is a collaborative online office suite based on
 CVE-2025-1696 (A vulnerability exists in Docker Desktop prior to version 4.39.0 that  ...)
 	TODO: check
 CVE-2025-1672 (The Notibar \u2013 Notification Bar for WordPress plugin for WordPress ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-1666 (The Cookie banner plugin for WordPress \u2013 Cookiebot CMP by Usercen ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-1540 (An issue has been discovered in GitLab CE/EE for Self-Managed and Dedi ...)
 	TODO: check
 CVE-2025-1383 (The Podlove Podcast Publisher plugin for WordPress is vulnerable to Cr ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-0877 (Improper Neutralization of Input During Web Page Generation (XSS or 'C ...)
 	TODO: check
 CVE-2025-0337 (ServiceNow has addressed an authorization bypass vulnerability that wa ...)
@@ -79,7 +79,7 @@ CVE-2024-42844 (A SQL Injection vulnerability has been identified in EPICOR Prop
 CVE-2024-13902 (A vulnerability, which was classified as problematic, was found in hua ...)
 	TODO: check
 CVE-2024-13897 (The Moving Media Library plugin for WordPress is vulnerable to arbitra ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-13894 (Smartwares camerasCIP-37210AT andC724IP, as well as others which share ...)
 	TODO: check
 CVE-2024-13893 (Smartwares camerasCIP-37210AT andC724IP, as well as others which share ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f45a34e3bc5b4e6d5542d8d1e0004a69c3fafac3

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f45a34e3bc5b4e6d5542d8d1e0004a69c3fafac3
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250306/367a3d11/attachment.htm>


More information about the debian-security-tracker-commits mailing list