[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sun Aug 9 20:20:13 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
246969b3 by Salvatore Bonaccorso at 2026-08-09T21:19:02+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -75,43 +75,43 @@ CVE-2026-71984 (MSI Radix AXE6600 router firmware version v781521 contains a com
 CVE-2026-71983 (MSI Radix AXE6600 router firmware version v781521 contains a command i ...)
 	NOT-FOR-US: MSI Radix AXE6600 router firmware
 CVE-2026-19341 (A security vulnerability has been detected in UTT HiPER 1200GW up to 2 ...)
-	TODO: check
+	NOT-FOR-US: UTT
 CVE-2026-19340 (A weakness has been identified in anubissbe ProjectHub-Mcp up to 5.0.0 ...)
-	TODO: check
+	NOT-FOR-US: anubissbe ProjectHub-Mcp
 CVE-2026-19339 (A security flaw has been discovered in aliyun alibabacloud-dataworks-m ...)
-	TODO: check
+	NOT-FOR-US: aliyun alibabacloud-dataworks-mcp-server
 CVE-2026-19338 (A vulnerability was identified in automateyournetwork MCPyATS up to 0. ...)
-	TODO: check
+	NOT-FOR-US: automateyournetwork MCPyATS
 CVE-2026-19337 (A vulnerability was determined in adenot mcp-google-search up to 0.3.1 ...)
-	TODO: check
+	NOT-FOR-US: adenot mcp-google-search
 CVE-2026-19336 (A vulnerability was found in Pimzino spec-workflow-mcp up to 2.2.6. Th ...)
-	TODO: check
+	NOT-FOR-US: Pimzino spec-workflow-mcp
 CVE-2026-19335 (A vulnerability has been found in Jane-xiaoer skill-vision-control up  ...)
-	TODO: check
+	NOT-FOR-US: Jane-xiaoer skill-vision-control
 CVE-2026-19334 (A flaw has been found in NightTrek Ollama-mcp up to 80cf2e17cfc144963a ...)
-	TODO: check
+	NOT-FOR-US: NightTrek Ollama-mcp
 CVE-2026-19333 (A vulnerability was detected in NightTrek Supabase-MCP cc994ab2d2a36b0 ...)
-	TODO: check
+	NOT-FOR-US: NightTrek Supabase-MCP
 CVE-2026-19332 (A security vulnerability has been detected in NellyW8 MCP4EDA 1.0.0. A ...)
-	TODO: check
+	NOT-FOR-US: NellyW8 MCP4EDA
 CVE-2026-19331 (A vulnerability was identified in bazylhorsey obsidian-mcp-server 1.0. ...)
-	TODO: check
+	NOT-FOR-US: bazylhorsey obsidian-mcp-server
 CVE-2026-19330 (A vulnerability was determined in angrysky56 advanced-reasoning-mcp 1. ...)
-	TODO: check
+	NOT-FOR-US: angrysky56 advanced-reasoning-mcp
 CVE-2026-19329 (A vulnerability was found in andreahaku codex_mcp up to 1ff521cc6cc57c ...)
-	TODO: check
+	NOT-FOR-US: andreahaku codex_mcp
 CVE-2026-19328 (A vulnerability has been found in aktsmm skill-ninja-mcp-server 0.1.0. ...)
-	TODO: check
+	NOT-FOR-US: aktsmm skill-ninja-mcp-server
 CVE-2026-19327 (A flaw has been found in abracadabra50 claude-sesh 1.0.0. This issue a ...)
-	TODO: check
+	NOT-FOR-US: abracadabra50 claude-sesh
 CVE-2026-19326 (A vulnerability was detected in Jevon-Zhong Ai-doctor 0.0.1. This vuln ...)
-	TODO: check
+	NOT-FOR-US: Jevon-Zhong Ai-doctor
 CVE-2026-19325 (A security vulnerability has been detected in IncomeStreamSurfer roo-c ...)
-	TODO: check
+	NOT-FOR-US: IncomeStreamSurfer roo-code-memory-bank-mcp-server
 CVE-2026-19324 (A weakness has been identified in HelloGGX shadcn-vue-mcp up to e170e2 ...)
-	TODO: check
+	NOT-FOR-US: HelloGGX shadcn-vue-mcp
 CVE-2026-19323 (A security flaw has been discovered in azer react-analyzer-mcp up to 3 ...)
-	TODO: check
+	NOT-FOR-US: azer react-analyzer-mcp
 CVE-2026-18603 (The PiWeb Cancel order / Refund request for WooCommerce WordPress plug ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2026-18473 (The WP Directory Kit WordPress plugin before 1.5.5 does not properly s ...)
@@ -323,17 +323,17 @@ CVE-2026-46358 (OpenBao is an open source identity-based secrets management syst
 CVE-2026-45808 (OpenBao is an open source identity-based secrets management system. Pr ...)
 	- openbao <itp> (bug #1069794)
 CVE-2026-19263 (A vulnerability was found in INQUIRELAB mcp-bridge-api up to b30a82aa1 ...)
-	TODO: check
+	NOT-FOR-US: INQUIRELAB mcp-bridge-api
 CVE-2026-19259 (A vulnerability has been found in MZ Automation libiec61850 up to 1.6. ...)
-	TODO: check
+	NOT-FOR-US: MZ Automation libiec61850
 CVE-2026-19246 (A vulnerability has been found in HKUDS nanobot up to 0.2.1. This affe ...)
-	TODO: check
+	NOT-FOR-US: HKUDS nanobot
 CVE-2026-19245 (A flaw has been found in HKUDS nanobot up to 0.2.1. The impacted eleme ...)
-	TODO: check
+	NOT-FOR-US: HKUDS nanobot
 CVE-2026-19244 (A vulnerability was detected in HKUDS nanobot up to 0.2.1. The affecte ...)
-	TODO: check
+	NOT-FOR-US: HKUDS nanobot
 CVE-2026-19243 (A security vulnerability has been detected in HKUDS nanobot up to 0.2. ...)
-	TODO: check
+	NOT-FOR-US: HKUDS nanobot
 CVE-2026-19113 (Consul Community Edition and Consul Enterprise 1.3.0 through 2.0.2 are ...)
 	TODO: check
 CVE-2026-19017 (Consul Community Edition and Consul Enterprise 1.18.21 through 2.0.2 a ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/246969b3b57168c2a7fcfacb9bbc2797c8a16a26

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/246969b3b57168c2a7fcfacb9bbc2797c8a16a26
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260809/274b1128/attachment.htm>


More information about the debian-security-tracker-commits mailing list