[Git][security-tracker-team/security-tracker][master] NFUs

Moritz Muehlenhoff (@jmm) jmm at debian.org
Fri Mar 7 08:24:29 GMT 2025


Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
9831cc4a by Moritz Muehlenhoff at 2025-03-07T09:24:08+01:00
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -11,33 +11,33 @@ CVE-2025-2063 (A vulnerability classified as critical was found in projectworlds
 CVE-2025-2062 (A vulnerability classified as critical has been found in projectworlds ...)
 	TODO: check
 CVE-2025-2061 (A vulnerability was found in code-projects Online Ticket Reservation S ...)
-	TODO: check
+	NOT-FOR-US: code-projects
 CVE-2025-2060 (A vulnerability was found in PHPGurukul Emergency Ambulance Hiring Por ...)
-	TODO: check
+	NOT-FOR-US: PHPGurukul
 CVE-2025-2059 (A vulnerability was found in PHPGurukul Emergency Ambulance Hiring Por ...)
-	TODO: check
+	NOT-FOR-US: PHPGurukul
 CVE-2025-2058 (A vulnerability has been found in PHPGurukul Emergency Ambulance Hirin ...)
-	TODO: check
+	NOT-FOR-US: PHPGurukul
 CVE-2025-2057 (A vulnerability, which was classified as critical, was found in PHPGur ...)
-	TODO: check
+	NOT-FOR-US: PHPGurukul
 CVE-2025-2054 (A vulnerability was found in code-projects Blood Bank Management Syste ...)
-	TODO: check
+	NOT-FOR-US: code-projects
 CVE-2025-2053 (A vulnerability was found in PHPGurukul Apartment Visitors Management  ...)
-	TODO: check
+	NOT-FOR-US: PHPGurukul
 CVE-2025-2052 (A vulnerability was found in PHPGurukul Apartment Visitors Management  ...)
-	TODO: check
+	NOT-FOR-US: PHPGurukul
 CVE-2025-2051 (A vulnerability has been found in PHPGurukul Apartment Visitors Manage ...)
-	TODO: check
+	NOT-FOR-US: PHPGurukul
 CVE-2025-2050 (A vulnerability classified as critical was found in PHPGurukul User Re ...)
-	TODO: check
+	NOT-FOR-US: PHPGurukul
 CVE-2025-2049 (A vulnerability classified as problematic has been found in code-proje ...)
-	TODO: check
+	NOT-FOR-US: code-projects
 CVE-2025-2047 (A vulnerability was found in PHPGurukul Art Gallery Management System  ...)
-	TODO: check
+	NOT-FOR-US: PHPGurukul
 CVE-2025-2046 (A vulnerability was found in SourceCodester Best Employee Management S ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester
 CVE-2025-2044 (A vulnerability was found in code-projects Blood Bank Management Syste ...)
-	TODO: check
+	NOT-FOR-US: code-projects
 CVE-2025-2043 (A vulnerability was found in LinZhaoguan pb-cms 1.0.0 and classified a ...)
 	TODO: check
 CVE-2025-2042 (A vulnerability has been found in huang-yk student-manage 1.0 and clas ...)
@@ -57,31 +57,31 @@ CVE-2025-26708 (There is a configuration defect vulnerability in ZTELink 5.4.9 f
 CVE-2025-25763 (crmeb CRMEB-KY v5.4.0 and before has a SQL Injection vulnerability at  ...)
 	TODO: check
 CVE-2025-1475 (The WPCOM Member plugin for WordPress is vulnerable to authentication  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-1309 (The UiPress lite | Effortless custom dashboards, admin themes and page ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-1121 (Privilege escalation in Installer and Recovery image handling in Googl ...)
 	TODO: check
 CVE-2025-0863 (The Flexmls\xae IDX Plugin plugin for WordPress is vulnerable to Store ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-0749 (The Homey theme for WordPress is vulnerable to authentication bypass i ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-0748 (The Homey theme for WordPress is vulnerable to Cross-Site Request Forg ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-57972 (The pairing API request handler in Microsoft HoloLens 1 (Windows Holog ...)
 	TODO: check
 CVE-2024-13906 (The Gallery by BestWebSoft \u2013 Customizable Image and Photo Galleri ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-13655 (The Flex Mag - Responsive WordPress News Theme theme for WordPress is  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-13526 (The EventPrime \u2013 Events Calendar, Bookings and Tickets plugin for ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-13320 (The CURCY - WooCommerce Multi Currency - Currency Switcher plugin for  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-12837 (Software installed and run as a non-privileged user may conduct improp ...)
 	TODO: check
 CVE-2024-12809 (The Wishlist plugin for WordPress is vulnerable to Stored Cross-Site S ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-12576 (Software installed and run as a non-privileged user may conduct improp ...)
 	TODO: check
 CVE-2025-2045 (Improper authorization in GitLab EE affecting all versions from 17.7 p ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9831cc4a23d5637512772aa6eda65905ccd05877

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9831cc4a23d5637512772aa6eda65905ccd05877
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250307/b54ccbd4/attachment.htm>


More information about the debian-security-tracker-commits mailing list