[Git][security-tracker-team/security-tracker][master] Process several CVEs for phpipam, itp'ed

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Mar 20 22:23:46 GMT 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
f04e66dd by Salvatore Bonaccorso at 2025-03-20T23:23:26+01:00
Process several CVEs for phpipam, itp'ed

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -656,23 +656,23 @@ CVE-2024-10812 (An open redirect vulnerability exists in binary-husky/gpt_academ
 CVE-2024-10762 (In lunary-ai/lunary before version 1.5.9, the /v1/evaluators/ endpoint ...)
 	NOT-FOR-US: lunary-ai/lunary
 CVE-2024-10727 (A reflected cross-site scripting (XSS) vulnerability exists in phpipam ...)
-	TODO: check
+	- phpipam <itp> (bug #731713)
 CVE-2024-10725 (A stored cross-site scripting (XSS) vulnerability exists in phpipam/ph ...)
-	TODO: check
+	- phpipam <itp> (bug #731713)
 CVE-2024-10724 (A stored cross-site scripting (XSS) vulnerability exists in phpipam/ph ...)
-	TODO: check
+	- phpipam <itp> (bug #731713)
 CVE-2024-10723 (A stored cross-site scripting (XSS) vulnerability was discovered in ph ...)
-	TODO: check
+	- phpipam <itp> (bug #731713)
 CVE-2024-10722 (A stored cross-site scripting (XSS) vulnerability exists in phpipam/ph ...)
-	TODO: check
+	- phpipam <itp> (bug #731713)
 CVE-2024-10721 (A stored cross-site scripting (XSS) vulnerability was discovered in ph ...)
-	TODO: check
+	- phpipam <itp> (bug #731713)
 CVE-2024-10720 (A stored cross-site scripting (XSS) vulnerability exists in phpipam/ph ...)
-	TODO: check
+	- phpipam <itp> (bug #731713)
 CVE-2024-10719 (A stored cross-site scripting (XSS) vulnerability exists in phpipam ve ...)
-	TODO: check
+	- phpipam <itp> (bug #731713)
 CVE-2024-10718 (In phpipam/phpipam version 1.5.1, the Secure attribute for sensitive c ...)
-	TODO: check
+	- phpipam <itp> (bug #731713)
 CVE-2024-10714 (A vulnerability in binary-husky/gpt_academic version 3.83 allows an at ...)
 	NOT-FOR-US: binary-husky/gpt_academic
 CVE-2024-10713 (A vulnerability in szad670401/hyperlpr v3.0 allows for a Denial of Ser ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f04e66dd5f03423bd72d29be3183388970328757

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f04e66dd5f03423bd72d29be3183388970328757
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250320/50ea66b6/attachment.htm>


More information about the debian-security-tracker-commits mailing list