[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Aug 5 12:39:35 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
b7cecc9b by Salvatore Bonaccorso at 2026-08-05T13:39:13+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -173,13 +173,13 @@ CVE-2026-51401 (An issue in Vim Project v9.2.0389 and earlier allows a local att
 CVE-2026-51400 (An issue in Vim Project v9.2.0389 and earlier allows a local attacker  ...)
 	TODO: check
 CVE-2026-51144 (Cross Site Scripting vulnerability in Soliton Systems MailZen Manageme ...)
-	TODO: check
+	NOT-FOR-US: Soliton Systems MailZen Management Protal
 CVE-2026-49004 (The built-in PostgreSQL service on the mobile device suffers from misc ...)
 	NOT-FOR-US: ZTE
 CVE-2026-48154 (GoRest is a Golang starter kit built with the Gin framework for protot ...)
-	TODO: check
+	NOT-FOR-US: GoRest
 CVE-2026-47682 (CVAT is an open source interactive video and image annotation tool for ...)
-	TODO: check
+	NOT-FOR-US: Computer Vision Annotation Tool (CVAT)
 CVE-2026-46334 (OpenSIPS is a Session Initiation Protocol (SIP) server implementation. ...)
 	TODO: check
 CVE-2026-45809 (OpenSIPS is a Session Initiation Protocol (SIP) server implementation. ...)
@@ -199,49 +199,49 @@ CVE-2026-45084 (OpenSIPS is a Session Initiation Protocol (SIP) server implement
 CVE-2026-18907 (Path Traversal in Download File Feature in com.talpa.hibrowser 2.23.1. ...)
 	NOT-FOR-US: TECNO Mobile
 CVE-2026-18903 (A vulnerability was determined in yeqifu warehouse up to aaf29962ba407 ...)
-	TODO: check
+	NOT-FOR-US: yeqifu warehouse
 CVE-2026-18902 (A vulnerability was detected in H3C NX15 V100R017. Affected by this vu ...)
-	TODO: check
+	NOT-FOR-US: H3C
 CVE-2026-18901 (A security vulnerability has been detected in H3C NX15 V100R017. Affec ...)
-	TODO: check
+	NOT-FOR-US: H3C
 CVE-2026-18900 (A weakness has been identified in H3C NX15 V100R017. This impacts the  ...)
-	TODO: check
+	NOT-FOR-US: H3C
 CVE-2026-18898 (A security flaw has been discovered in UTT HiPER 1200GW up to v2.5.3-1 ...)
-	TODO: check
+	NOT-FOR-US: UTT
 CVE-2026-18897 (A vulnerability was identified in UTT HiPER 1250GW up to v3.2.7-210907 ...)
-	TODO: check
+	NOT-FOR-US: UTT
 CVE-2026-18896 (A vulnerability was determined in lavkush-maurya Student-Registration- ...)
-	TODO: check
+	NOT-FOR-US: lavkush-maurya Student-Registration-System
 CVE-2026-18895 (A vulnerability was found in UTT HiPER 1250GW up to 3.2.7-210907-18053 ...)
-	TODO: check
+	NOT-FOR-US: UTT
 CVE-2026-18859 (A vulnerability was identified in ESAFENET CDG up to 20260615. Affecte ...)
 	NOT-FOR-US: ESAFENET
 CVE-2026-18856 (A vulnerability was determined in Poesis Rhymix CMS up to 2.1.33. This ...)
-	TODO: check
+	NOT-FOR-US: Poesis Rhymix CMS
 CVE-2026-18854 (A vulnerability has been found in Shandong Hoteam PDM Product Data Man ...)
-	TODO: check
+	NOT-FOR-US: Shandong Hoteam PDM Product Data Management System
 CVE-2026-18853 (A security vulnerability has been detected in ZomboDroid Meme Generato ...)
-	TODO: check
+	NOT-FOR-US: ZomboDroid Meme Generator App
 CVE-2026-18852 (A vulnerability has been found in epsilla-cloud vectordb up to 0.3.18/ ...)
-	TODO: check
+	NOT-FOR-US: epsilla-cloud vectordb
 CVE-2026-18819 (A security vulnerability has been detected in RackTables up to 0.22.0/ ...)
 	TODO: check
 CVE-2026-18818 (A weakness has been identified in Ehco1996 django-sspanel up to 2023.1 ...)
-	TODO: check
+	NOT-FOR-US: Ehco1996 django-sspanel
 CVE-2026-18817 (A security flaw has been discovered in Baserow up to 2.3.2. Affected b ...)
-	TODO: check
+	NOT-FOR-US: Baserow
 CVE-2026-18816 (A vulnerability was identified in Baserow up to 2.3.2. Affected by thi ...)
-	TODO: check
+	NOT-FOR-US: Baserow
 CVE-2026-18814 (A vulnerability was found in H3C NX15 V100R017. This impacts the funct ...)
-	TODO: check
+	NOT-FOR-US: H3C
 CVE-2026-18813 (A vulnerability has been found in H3C NX15 V100R017. This affects the  ...)
-	TODO: check
+	NOT-FOR-US: H3C
 CVE-2026-18812 (A flaw has been found in H3C NX15 V100R017. The impacted element is th ...)
-	TODO: check
+	NOT-FOR-US: H3C
 CVE-2026-18811 (A vulnerability was detected in H3C NX15 V100R017. The affected elemen ...)
-	TODO: check
+	NOT-FOR-US: H3C
 CVE-2026-18810 (A security vulnerability has been detected in H3C NX15 V100R017. Impac ...)
-	TODO: check
+	NOT-FOR-US: H3C
 CVE-2026-18657 (An uncontrolled search path element in Kiro CLI before version 2.10.0  ...)
 	NOT-FOR-US: Amazon
 CVE-2026-18656 (An uncontrolled search path element in Kiro IDE before version 1.0.228 ...)
@@ -309,7 +309,7 @@ CVE-2026-15210 (The OTP Login With Phone Number, OTP Verification WordPress plug
 CVE-2026-14553 (The zportals WordPress plugin before 6.3.4 does not properly validate  ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2026-13227 (An Improper Authorization vulnerability exists in ERPNext version <v16 ...)
-	TODO: check
+	NOT-FOR-US: ERPNext
 CVE-2026-11421 (The ERP: Complete HR, Accounting & CRM Suite with WooCommerce CRM Supp ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2025-15677 (The GeoDirectory  WordPress plugin before 2.8.110 does not sanitise an ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b7cecc9bd2403dc11574a0ef8e4c2b4ed7967f18

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b7cecc9bd2403dc11574a0ef8e4c2b4ed7967f18
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260805/e3ee23ec/attachment.htm>


More information about the debian-security-tracker-commits mailing list