[Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff (@jmm)
jmm at debian.org
Thu May 15 10:01:31 BST 2025
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker
Commits:
04c0488e by Moritz Muehlenhoff at 2025-05-15T11:01:12+02:00
NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -25,11 +25,11 @@ CVE-2025-47885 (Jenkins Health Advisor by CloudBees Plugin 374.v194b_d4f0c8c8 an
CVE-2025-47884 (In Jenkins OpenID Connect Provider Plugin 96.vee8ed882ec4d and earlier ...)
NOT-FOR-US: Jenkins (core or plugin)
CVE-2025-47783 (Label Studio is a multi-type data labeling and annotation tool. A vuln ...)
- TODO: check
+ NOT-FOR-US: Label Studio
CVE-2025-44879 (WS-WN572HP3 V230525 was discovered to contain a buffer overflow in the ...)
- TODO: check
+ NOT-FOR-US: WS-WN572HP3 V230525
CVE-2025-44024 (Cross-Site Scripting (XSS) vulnerability was discovered in the Pichome ...)
- TODO: check
+ NOT-FOR-US: Pichome
CVE-2025-3917 (The \u767e\u5ea6\u7ad9\u957fSEO\u5408\u96c6(\u652f\u6301\u767e\u5ea6/\ ...)
NOT-FOR-US: WordPress plugin
CVE-2025-3742 (The Responsive Lightbox & Gallery WordPress plugin before 2.5.1 does n ...)
@@ -37,19 +37,19 @@ CVE-2025-3742 (The Responsive Lightbox & Gallery WordPress plugin before 2.5.1 d
CVE-2025-3053 (The UiPress lite | Effortless custom dashboards, admin themes and page ...)
NOT-FOR-US: WordPress plugin
CVE-2025-32421 (Next.js is a React framework for building full-stack web applications. ...)
- TODO: check
+ NOT-FOR-US: Next.js
CVE-2025-29691 (A cross-site scripting (XSS) vulnerability in OA System before v2025.0 ...)
- TODO: check
+ NOT-FOR-US: OA System
CVE-2025-29690 (A cross-site scripting (XSS) vulnerability in OA System before v2025.0 ...)
- TODO: check
+ NOT-FOR-US: OA System
CVE-2025-29689 (A cross-site scripting (XSS) vulnerability in OA System before v2025.0 ...)
- TODO: check
+ NOT-FOR-US: OA System
CVE-2025-29688 (A cross-site scripting (XSS) vulnerability in OA System before v2025.0 ...)
- TODO: check
+ NOT-FOR-US: OA System
CVE-2025-29686 (A cross-site scripting (XSS) vulnerability in OA System before v2025.0 ...)
- TODO: check
+ NOT-FOR-US: OA System
CVE-2025-27891 (An issue was discovered in Samsung Mobile Processor, Wearable Processo ...)
- TODO: check
+ NOT-FOR-US: Samsung
CVE-2025-27525 (Information Exposure vulnerability in Hitachi JP1/IT Desktop Managemen ...)
NOT-FOR-US: Hitachi
CVE-2025-27524 (Weak encryption vulnerability in Hitachi JP1/IT Desktop Management 2 - ...)
@@ -57,13 +57,13 @@ CVE-2025-27524 (Weak encryption vulnerability in Hitachi JP1/IT Desktop Manageme
CVE-2025-27523 (XXE vulnerability in Hitachi JP1/IT Desktop Management 2 - Smart Devic ...)
NOT-FOR-US: Hitachi
CVE-2025-26783 (An issue was discovered in RRC in Samsung Mobile Processor, Wearable P ...)
- TODO: check
+ NOT-FOR-US: Samsung
CVE-2024-56427 (An issue was discovered in Samsung Mobile Processor and Wearable Proce ...)
- TODO: check
+ NOT-FOR-US: Samsung
CVE-2024-55569 (An issue was discovered in Samsung Mobile Processor, Wearable Processo ...)
- TODO: check
+ NOT-FOR-US: Samsung
CVE-2024-45067 (Incorrect default permissions in some Intel(R) Gaudi(R) software insta ...)
- TODO: check
+ NOT-FOR-US: Intel
CVE-2024-13914 (The File Manager Advanced Shortcode WordPress plugin for WordPress is ...)
NOT-FOR-US: WordPress plugin
CVE-2025-4478
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/04c0488e3b5d5013d164e78f35ba918bb78882fd
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/04c0488e3b5d5013d164e78f35ba918bb78882fd
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250515/6b25cb13/attachment.htm>
More information about the debian-security-tracker-commits
mailing list