[Git][security-tracker-team/security-tracker][master] NFUs

Moritz Muehlenhoff (@jmm) jmm at debian.org
Wed Aug 12 16:37:19 BST 2026



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
97eb13f4 by Moritz Muehlenhoff at 2026-08-12T17:37:02+02:00
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,5 @@
+CVE-2026-68868
+	NOT-FOR-US: Apache Airflow provider
 CVE-2026-52073 [ppp_handle_ipcp attacker-controlled IPCP length -- OOB read]
 	- mongoose 7.22+ds-1
 CVE-2026-52054 [find_opt zero-length PPP option -- infinite loop]
@@ -126,7 +128,7 @@ CVE-2026-73032 (PapersGPT for Zotero 0.6.1 contains a remote code execution vuln
 CVE-2026-73031 (telegram-search contains a stored cross-site scripting vulnerability t ...)
 	NOT-FOR-US: telegram-search
 CVE-2026-72526 (A flaw was found in the multicloud-integrations component. The Applica ...)
-	TODO: check
+	NOT-FOR-US: Red Hat Advanced Cluster Management for Kubernetes
 CVE-2026-71845 (A flaw was found in insights-client. The setDefault() function logs th ...)
 	NOT-FOR-US: Red Hat Advanced Cluster Management for Kubernetes
 CVE-2026-71475 (A flaw was found in insights-client. A compromised managed cluster, re ...)
@@ -200,11 +202,11 @@ CVE-2026-48813 (Flawfinder is a a static analysis tool for finding vulnerabiliti
 CVE-2026-48804 (python-socketio is a Python implementation of the Socket.IO realtime c ...)
 	TODO: check
 CVE-2026-48765 (TypeBot is a chatbot builder tool. Versions prior to 3.17.0 allow a lo ...)
-	TODO: check
+	NOT-FOR-US: TypeBot
 CVE-2026-48763 (TypeBot is a chatbot builder tool. Versions prior to 3.17.0 expose a d ...)
-	TODO: check
+	NOT-FOR-US: TypeBot
 CVE-2026-48762 (TypeBot is a chatbot builder tool. Prior to version 3.16.0, the OpenAI ...)
-	TODO: check
+	NOT-FOR-US: TypeBot
 CVE-2026-45618 (LiquidJS is a Shopify/GitHub Pages compatible template engine. Prior t ...)
 	TODO: check
 CVE-2026-29036 (cJSON versions 1.5.0 through 1.7.19 contain an incorrectly-resolved na ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/97eb13f4f64488ffe48d889d736c6ebde1b480a2

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/97eb13f4f64488ffe48d889d736c6ebde1b480a2
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260812/541a66bb/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list