[Git][security-tracker-team/security-tracker][master] Process some NFUs
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Sun Aug 9 20:20:13 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
246969b3 by Salvatore Bonaccorso at 2026-08-09T21:19:02+02:00
Process some NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -75,43 +75,43 @@ CVE-2026-71984 (MSI Radix AXE6600 router firmware version v781521 contains a com
CVE-2026-71983 (MSI Radix AXE6600 router firmware version v781521 contains a command i ...)
NOT-FOR-US: MSI Radix AXE6600 router firmware
CVE-2026-19341 (A security vulnerability has been detected in UTT HiPER 1200GW up to 2 ...)
- TODO: check
+ NOT-FOR-US: UTT
CVE-2026-19340 (A weakness has been identified in anubissbe ProjectHub-Mcp up to 5.0.0 ...)
- TODO: check
+ NOT-FOR-US: anubissbe ProjectHub-Mcp
CVE-2026-19339 (A security flaw has been discovered in aliyun alibabacloud-dataworks-m ...)
- TODO: check
+ NOT-FOR-US: aliyun alibabacloud-dataworks-mcp-server
CVE-2026-19338 (A vulnerability was identified in automateyournetwork MCPyATS up to 0. ...)
- TODO: check
+ NOT-FOR-US: automateyournetwork MCPyATS
CVE-2026-19337 (A vulnerability was determined in adenot mcp-google-search up to 0.3.1 ...)
- TODO: check
+ NOT-FOR-US: adenot mcp-google-search
CVE-2026-19336 (A vulnerability was found in Pimzino spec-workflow-mcp up to 2.2.6. Th ...)
- TODO: check
+ NOT-FOR-US: Pimzino spec-workflow-mcp
CVE-2026-19335 (A vulnerability has been found in Jane-xiaoer skill-vision-control up ...)
- TODO: check
+ NOT-FOR-US: Jane-xiaoer skill-vision-control
CVE-2026-19334 (A flaw has been found in NightTrek Ollama-mcp up to 80cf2e17cfc144963a ...)
- TODO: check
+ NOT-FOR-US: NightTrek Ollama-mcp
CVE-2026-19333 (A vulnerability was detected in NightTrek Supabase-MCP cc994ab2d2a36b0 ...)
- TODO: check
+ NOT-FOR-US: NightTrek Supabase-MCP
CVE-2026-19332 (A security vulnerability has been detected in NellyW8 MCP4EDA 1.0.0. A ...)
- TODO: check
+ NOT-FOR-US: NellyW8 MCP4EDA
CVE-2026-19331 (A vulnerability was identified in bazylhorsey obsidian-mcp-server 1.0. ...)
- TODO: check
+ NOT-FOR-US: bazylhorsey obsidian-mcp-server
CVE-2026-19330 (A vulnerability was determined in angrysky56 advanced-reasoning-mcp 1. ...)
- TODO: check
+ NOT-FOR-US: angrysky56 advanced-reasoning-mcp
CVE-2026-19329 (A vulnerability was found in andreahaku codex_mcp up to 1ff521cc6cc57c ...)
- TODO: check
+ NOT-FOR-US: andreahaku codex_mcp
CVE-2026-19328 (A vulnerability has been found in aktsmm skill-ninja-mcp-server 0.1.0. ...)
- TODO: check
+ NOT-FOR-US: aktsmm skill-ninja-mcp-server
CVE-2026-19327 (A flaw has been found in abracadabra50 claude-sesh 1.0.0. This issue a ...)
- TODO: check
+ NOT-FOR-US: abracadabra50 claude-sesh
CVE-2026-19326 (A vulnerability was detected in Jevon-Zhong Ai-doctor 0.0.1. This vuln ...)
- TODO: check
+ NOT-FOR-US: Jevon-Zhong Ai-doctor
CVE-2026-19325 (A security vulnerability has been detected in IncomeStreamSurfer roo-c ...)
- TODO: check
+ NOT-FOR-US: IncomeStreamSurfer roo-code-memory-bank-mcp-server
CVE-2026-19324 (A weakness has been identified in HelloGGX shadcn-vue-mcp up to e170e2 ...)
- TODO: check
+ NOT-FOR-US: HelloGGX shadcn-vue-mcp
CVE-2026-19323 (A security flaw has been discovered in azer react-analyzer-mcp up to 3 ...)
- TODO: check
+ NOT-FOR-US: azer react-analyzer-mcp
CVE-2026-18603 (The PiWeb Cancel order / Refund request for WooCommerce WordPress plug ...)
NOT-FOR-US: WordPress plugin
CVE-2026-18473 (The WP Directory Kit WordPress plugin before 1.5.5 does not properly s ...)
@@ -323,17 +323,17 @@ CVE-2026-46358 (OpenBao is an open source identity-based secrets management syst
CVE-2026-45808 (OpenBao is an open source identity-based secrets management system. Pr ...)
- openbao <itp> (bug #1069794)
CVE-2026-19263 (A vulnerability was found in INQUIRELAB mcp-bridge-api up to b30a82aa1 ...)
- TODO: check
+ NOT-FOR-US: INQUIRELAB mcp-bridge-api
CVE-2026-19259 (A vulnerability has been found in MZ Automation libiec61850 up to 1.6. ...)
- TODO: check
+ NOT-FOR-US: MZ Automation libiec61850
CVE-2026-19246 (A vulnerability has been found in HKUDS nanobot up to 0.2.1. This affe ...)
- TODO: check
+ NOT-FOR-US: HKUDS nanobot
CVE-2026-19245 (A flaw has been found in HKUDS nanobot up to 0.2.1. The impacted eleme ...)
- TODO: check
+ NOT-FOR-US: HKUDS nanobot
CVE-2026-19244 (A vulnerability was detected in HKUDS nanobot up to 0.2.1. The affecte ...)
- TODO: check
+ NOT-FOR-US: HKUDS nanobot
CVE-2026-19243 (A security vulnerability has been detected in HKUDS nanobot up to 0.2. ...)
- TODO: check
+ NOT-FOR-US: HKUDS nanobot
CVE-2026-19113 (Consul Community Edition and Consul Enterprise 1.3.0 through 2.0.2 are ...)
TODO: check
CVE-2026-19017 (Consul Community Edition and Consul Enterprise 1.18.21 through 2.0.2 a ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/246969b3b57168c2a7fcfacb9bbc2797c8a16a26
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/246969b3b57168c2a7fcfacb9bbc2797c8a16a26
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260809/274b1128/attachment.htm>
More information about the debian-security-tracker-commits
mailing list