[Git][security-tracker-team/security-tracker][master] Add CVE-2025-44108/flatpress, itp'ed
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Tue May 20 09:41:00 BST 2025
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
bd588f43 by Salvatore Bonaccorso at 2025-05-20T10:40:23+02:00
Add CVE-2025-44108/flatpress, itp'ed
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -193,7 +193,7 @@ CVE-2025-46263 (Improper Neutralization of Input During Web Page Generation ('Cr
CVE-2025-46262 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
NOT-FOR-US: WordPress plugin or theme
CVE-2025-44108 (A stored Cross-Site Scripting (XSS) vulnerability exists in the admini ...)
- TODO: check
+ - flatpress <itp> (bug #466297)
CVE-2025-43841 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
NOT-FOR-US: WordPress plugin or theme
CVE-2025-43840 (Cross-Site Request Forgery (CSRF) vulnerability in Ref CheckBot allows ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/bd588f43e359f9c445bf812d5691c053350c745e
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/bd588f43e359f9c445bf812d5691c053350c745e
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250520/f4f2c7da/attachment.htm>
More information about the debian-security-tracker-commits
mailing list