[Git][security-tracker-team/security-tracker][master] automatic NOT-FOR-US entries update

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Nov 15 08:13:37 GMT 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
4b71280a by security tracker role at 2025-11-15T08:13:29+00:00
automatic NOT-FOR-US entries update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,7 +1,7 @@
 CVE-2025-9317 (The vulnerability, if exploited, could allow a miscreant with read  ac ...)
 	TODO: check
 CVE-2025-8994 (The Project Management, Team Collaboration, Kanban Board, Gantt Charts ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-8386 (The vulnerability, if exploited, could allow an authenticated miscrean ...)
 	TODO: check
 CVE-2025-65072
@@ -31,7 +31,7 @@ CVE-2025-64307 (The Brightpick Internal Logic Control web interface is accessibl
 CVE-2025-64084 (An authenticated SQL injection vulnerability exists in Cloudlog 2.7.5  ...)
 	TODO: check
 CVE-2025-63891 (Information Disclosure in web-accessible backup file in SourceCodester ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester
 CVE-2025-63745 (A NULL pointer dereference vulnerability was discovered in radare2 6.0 ...)
 	TODO: check
 CVE-2025-63744 (A NULL pointer dereference vulnerability was discovered in radare2 6.0 ...)
@@ -47,15 +47,15 @@ CVE-2025-55034 (General Industrial Controls Lynx+ Gatewayis vulnerable to a weak
 CVE-2025-1256
 	REJECTED
 CVE-2025-13191 (A vulnerability was determined in D-Link DIR-816L 2_06_b09_beta. This  ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2025-13190 (A vulnerability was found in D-Link DIR-816L 2_06_b09_beta. This vulne ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2025-13189 (A vulnerability has been found in D-Link DIR-816L 2_06_b09_beta. This  ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2025-13188 (A vulnerability was detected in D-Link DIR-816L 2_06_b09_beta. Affecte ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2025-13187 (A security vulnerability has been detected in Intelbras ICIP 2.0.20. A ...)
-	TODO: check
+	NOT-FOR-US: Intelbras
 CVE-2025-13186 (A weakness has been identified in Bdtask/CodeCanyon Isshue Multi Store ...)
 	TODO: check
 CVE-2025-13185 (A security flaw has been discovered in Bdtask/CodeCanyon News365 up to ...)
@@ -65,13 +65,13 @@ CVE-2025-13182 (A vulnerability was identified in pojoin h3blog 1.0. The impacte
 CVE-2025-13181 (A vulnerability was determined in pojoin h3blog 1.0. The affected elem ...)
 	TODO: check
 CVE-2025-12849 (The Contest Gallery plugin for WordPress is vulnerable to authorizatio ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-12847 (The All in One SEO \u2013 Powerful SEO Plugin to Boost SEO Rankings &  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-12494 (The Image Gallery \u2013 Photo Grid & Video Gallery plugin for WordPre ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2025-12182 (The Qi Blocks plugin for WordPress is vulnerable to unauthorized acces ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-7328 (Screen SFT DAB 600/C firmware versions up to and including 1.9.3 conta ...)
 	TODO: check
 CVE-2022-4985 (Vodafone H500s devices running firmware v3.5.10 (hardware model Sercom ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4b71280afb1aba3accd7c159b2d869c403d27bf1

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4b71280afb1aba3accd7c159b2d869c403d27bf1
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20251115/1329e4cf/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list