[Git][security-tracker-team/security-tracker][master] Add CVE-2025-29602/flatpress

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed May 7 22:03:45 BST 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
134666ea by Salvatore Bonaccorso at 2025-05-07T23:03:03+02:00
Add CVE-2025-29602/flatpress

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -352,7 +352,7 @@ CVE-2025-2775 (SysAid On-Prem versions <= 23.3.40 are vulnerable to an unauthent
 CVE-2025-29746 (Cross Site Scripting vulnerability in Koillection v.1.6.10 allows a re ...)
 	NOT-FOR-US: Koillection
 CVE-2025-29602 (flatpress 1.3.1 is vulnerable to Cross Site Scripting (XSS) in Adminis ...)
-	TODO: check
+	- flatpress <itp> (bug #466297)
 CVE-2025-29448 (A business logic vulnerability in Easy Appointments v1.5.1 allows atta ...)
 	NOT-FOR-US: Easy Appointments
 CVE-2025-29154 (HTML injection vulnerability in lemeconsultoria HCM galera.app v.4.58. ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/134666ea6228541f8b7a1d0b8e94735445db6b61

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/134666ea6228541f8b7a1d0b8e94735445db6b61
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250507/714779c8/attachment.htm>


More information about the debian-security-tracker-commits mailing list