[Git][security-tracker-team/security-tracker][master] auto-nfu: Extend Eclipse rule
Moritz Muehlenhoff (@jmm)
jmm at debian.org
Fri Apr 24 23:44:23 BST 2026
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker
Commits:
305d6c2d by Moritz Muehlenhoff at 2026-04-25T00:44:02+02:00
auto-nfu: Extend Eclipse rule
- - - - -
2 changed files:
- data/CVE/list
- data/packages/nfu.yaml
Changes:
=====================================
data/CVE/list
=====================================
@@ -3,7 +3,7 @@ CVE-2026-6912 (Improperly controlled modification of dynamically-determined obje
CVE-2026-6911 (Missing JWT signature verification in AWS Ops Wheel allows unauthentic ...)
NOT-FOR-US: Amazon
CVE-2026-6272 (A client holding only a read JWT scope can still register itself as a ...)
- TODO: check
+ NOT-FOR-US: Eclipse
CVE-2026-6043 (P4 Server versions prior to 2026.1 are configured with insecure defaul ...)
TODO: check
CVE-2026-4313 (AdaptiveGRC is vulnerable to Stored XSS via text type fields across th ...)
=====================================
data/packages/nfu.yaml
=====================================
@@ -413,6 +413,7 @@
- anyOf:
- product: Eclipse Cyclone DDS
- product: Eclipse Glassfish
+ - product: Eclipse KUKSA - Databroker
- product: Eclipse ThreadX
- product: Eclipse ThreadX - NetX Duo
- product: Eclipse ThreadX - USBX
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/305d6c2dd027a924500e86bbfb6530b290f8d5bf
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/305d6c2dd027a924500e86bbfb6530b290f8d5bf
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260424/76000140/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list