[Git][security-tracker-team/security-tracker][master] Add CVE-2025-45091/seafile-server, itp'ed
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Tue Nov 18 19:41:59 GMT 2025
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
6d3f6d8f by Salvatore Bonaccorso at 2025-11-18T20:41:06+01:00
Add CVE-2025-45091/seafile-server, itp'ed
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -22627,7 +22627,7 @@ CVE-2025-49089 (wangxutech MoneyPrinterTurbo 1.2.6 allows path traversal via /ap
CVE-2025-46408 (An issue was discovered in the methods push.lite.avtech.com.AvtechLib. ...)
NOT-FOR-US: AVTECH EagleEyes
CVE-2025-45091 (Seafile versions 11.0.18-Pro, 12.0.10, and 12.0.10-Pro are vulnerable ...)
- TODO: check
+ - seafile-server <itp> (bug #865830)
CVE-2025-43800 (Cross-site scripting (XSS) vulnerability in Objects in Liferay Portal ...)
NOT-FOR-US: Liferay
CVE-2025-43794 (Stored cross-site scripting (XSS) vulnerability in Liferay Portal 7.4. ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6d3f6d8fef49e1f2b5397350b90c7667be8e70eb
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6d3f6d8fef49e1f2b5397350b90c7667be8e70eb
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20251118/417d0647/attachment.htm>
More information about the debian-security-tracker-commits
mailing list