[Git][security-tracker-team/security-tracker][master] Process batch of NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Mar 27 08:25:08 GMT 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
8ed3eb06 by Salvatore Bonaccorso at 2025-03-27T09:24:49+01:00
Process batch of NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -35,13 +35,13 @@ CVE-2025-2831 (A vulnerability has been found in mingyuefusu \u660e\u6708\u590d\
 CVE-2025-2787 (KNIME Business Hub is affected by the Ingress-nginx CVE-2025-1974 ( a. ...)
 	TODO: check
 CVE-2025-2685 (The TablePress \u2013 Tables in WordPress made easy plugin for WordPre ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-2496
 	REJECTED
 CVE-2025-2481 (The MediaView plugin for WordPress is vulnerable to Reflected Cross-Si ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-2332 (The Export All Posts, Products, Orders, Refunds & Users plugin for Wor ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-20233 (In the Splunk App for Lookup File Editing versions below 4.0.5, a scri ...)
 	TODO: check
 CVE-2025-20232 (In Splunk Enterprise versions below 9.3.3, 9.2.5, and 9.1.8 and Splunk ...)
@@ -59,21 +59,21 @@ CVE-2025-20227 (In Splunk Enterprise versions below 9.4.1, 9.3.3, 9.2.5, and 9.1
 CVE-2025-20226 (In Splunk Enterprise versions below 9.4.1, 9.3.3, 9.2.5, and 9.1.8 and ...)
 	TODO: check
 CVE-2025-0273 (HCL DevOps Deploy / HCL Launch stores potentially sensitive authentica ...)
-	TODO: check
+	NOT-FOR-US: HCL
 CVE-2024-55965 (An issue was discovered in Appsmith before 1.51. Users invited as "App ...)
 	TODO: check
 CVE-2024-45361 (A protocol flaw vulnerability exists in the Xiaomi Mi Connect Service  ...)
-	TODO: check
+	NOT-FOR-US: Xiaomi
 CVE-2024-45356 (A unauthorized access vulnerability exists in the Xiaomi phone framewo ...)
-	TODO: check
+	NOT-FOR-US: Xiaomi
 CVE-2024-45355 (A unauthorized access vulnerability exists in the Xiaomi phone framewo ...)
-	TODO: check
+	NOT-FOR-US: Xiaomi
 CVE-2024-45354 (A code execution vulnerability exists in the Xiaomi shop applicationpr ...)
-	TODO: check
+	NOT-FOR-US: Xiaomi
 CVE-2024-45353 (An intent redriction vulnerability exists in the Xiaomi quick App fram ...)
-	TODO: check
+	NOT-FOR-US: Xiaomi
 CVE-2024-45352 (An code execution vulnerability exists in the Xiaomi smarthome applica ...)
-	TODO: check
+	NOT-FOR-US: Xiaomi
 CVE-2024-48944
 	NOT-FOR-US: Apache Kylin (different from Kylin desktop environment)
 CVE-2025-30067



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8ed3eb06e1e3ea07b45918e4bbd0f9f5cea27d99

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8ed3eb06e1e3ea07b45918e4bbd0f9f5cea27d99
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250327/982390b2/attachment.htm>


More information about the debian-security-tracker-commits mailing list