[Git][security-tracker-team/security-tracker][master] NFUs

Moritz Muehlenhoff (@jmm) jmm at debian.org
Tue Aug 11 13:35:32 BST 2026



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
cfc36d47 by Moritz Muehlenhoff at 2026-08-11T14:34:29+02:00
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -297,7 +297,7 @@ CVE-2026-14548 (The Ray Enterprise Translation WordPress plugin through 1.7.3 do
 CVE-2026-14450 (A flaw was found in the MaaS API. This vulnerability allows any pod wi ...)
 	TODO: check
 CVE-2026-13717 (A flaw was found in the Red Hat OpenShift AI (RHOAI) MaaS Gateway. Imp ...)
-	TODO: check
+	NOT-FOR-US: Red Hat OpenShift AI
 CVE-2026-13716 (Path traversal in server import and admin file upload in Crafty Contro ...)
 	TODO: check
 CVE-2026-12052 (The USB device-side CDC NCM class control-to-host handler usbd_cdc_ncm ...)
@@ -818,7 +818,7 @@ CVE-2026-19429 (Jenkins FilePath.untarFrom() in all versions, including those wi
 CVE-2026-19404 (A flaw was found in 389 Directory Server. The CleanAllRUV and Abort Cl ...)
 	TODO: check
 CVE-2026-19278 (A flaw was found in StackRox/RHACS Central's Auth Machine-to-Machine ( ...)
-	TODO: check
+	NOT-FOR-US: Red Hat Advanced Cluster Security
 CVE-2026-18503 (Attacker-controlled CSV samples can trigger super-linear  regular-expr ...)
 	TODO: check
 CVE-2026-18478 (Magnolia CMS is vulnerable to Stored XSS in import functionality. An a ...)
@@ -838,7 +838,7 @@ CVE-2026-15059 (Local unprivileged users can terminate arbitrary local processes
 CVE-2026-13206 (Improper neutralization of special elements used in an OS command ('OS ...)
 	TODO: check
 CVE-2026-12984 (Insufficiently Protected Credentials vulnerability in Zyxel Networks W ...)
-	TODO: check
+	NOT-FOR-US: Zyxel
 CVE-2026-12624 (Vault\u2019s ACL policy engine did not consistently enforce a wildcard ...)
 	TODO: check
 CVE-2026-12339 (A Zip Slip vulnerability in the WebUI ISP Upgrade functionality allows ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/cfc36d473b70af1f2a5d9fd3d29ac85563d97f1a

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/cfc36d473b70af1f2a5d9fd3d29ac85563d97f1a
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260811/d999c6f0/attachment.htm>


More information about the debian-security-tracker-commits mailing list