[Git][security-tracker-team/security-tracker][master] Process some NFUs
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Wed Aug 12 20:33:43 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
1f92c3e2 by Salvatore Bonaccorso at 2026-08-12T21:33:19+02:00
Process some NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -3,55 +3,55 @@ CVE-2026-8667 (GitLab has remediated an issue in GitLab CE/EE affecting all vers
CVE-2026-7427 (GitLab has remediated an issue in GitLab CE/EE affecting all versions ...)
NOT-FOR-US: GitLab (used to be packaged in the Debian archive as src:gitlab, but never in a stable release)
CVE-2026-73432 (Vulnerability-Lookup contains a server-side request forgery (SSRF) vul ...)
- TODO: check
+ NOT-FOR-US: vulnerability-lookup
CVE-2026-73431 (Vulnerability-Lookup contains an authentication weakness in its accou ...)
- TODO: check
+ NOT-FOR-US: vulnerability-lookup
CVE-2026-73405 (An authorization bypass vulnerability in Vulnerability-Lookup allowed ...)
- TODO: check
+ NOT-FOR-US: vulnerability-lookup
CVE-2026-73374 (A stored cross-site scripting (XSS) vulnerability existed in Vulnerabi ...)
- TODO: check
+ NOT-FOR-US: vulnerability-lookup
CVE-2026-73327 (Joomla 6.1.1 contains a path traversal vulnerability in the com_joomla ...)
- TODO: check
+ NOT-FOR-US: Joomla
CVE-2026-73325 (Fujitsu Research's OneCompression library 1.2.0 contains an unsafe des ...)
- TODO: check
+ NOT-FOR-US: Fujitsu Research's OneCompression library
CVE-2026-73301 (Budibase is an open-source low-code platform. Prior to 3.39.25, the GE ...)
- TODO: check
+ NOT-FOR-US: Budibase
CVE-2026-73300 (Budibase is an open-source low-code platform. Prior to 3.40.0, the MyS ...)
- TODO: check
+ NOT-FOR-US: Budibase
CVE-2026-73299 (Prompty is a markdown file format (.prompty) for LLM prompts. Prior to ...)
TODO: check
CVE-2026-73298 (The Microsoft Container Migration Solution Accelerator is a multi-serv ...)
- TODO: check
+ NOT-FOR-US: Microsoft Container Migration Solution Accelerator
CVE-2026-73297 (Microsoft UFO open-source framework for intelligent automation across ...)
- TODO: check
+ NOT-FOR-US: Microsoft UFO
CVE-2026-73296 (Microsoft UFO open-source framework for intelligent automation across ...)
- TODO: check
+ NOT-FOR-US: Microsoft UFO
CVE-2026-73295 (Material for MkDocs is a powerful documentation framework built on top ...)
TODO: check
CVE-2026-73294 (Semaphore UI is a web interface for managing DevOps tools. Prior to 2. ...)
- TODO: check
+ NOT-FOR-US: Semaphore UI
CVE-2026-73293 (Semaphore UI is a web interface for managing DevOps tools. Prior to 2 ...)
- TODO: check
+ NOT-FOR-US: Semaphore UI
CVE-2026-73292 (Semaphore UI is a web interface for managing DevOps tools. Prior to 2. ...)
- TODO: check
+ NOT-FOR-US: Semaphore UI
CVE-2026-73291 (Seerr is an open-source media request and discovery manager for Jellyf ...)
- TODO: check
+ NOT-FOR-US: Seerr
CVE-2026-73290 (RustFS is a distributed object storage system built in Rust. Prior to ...)
- TODO: check
+ NOT-FOR-US: RustFS
CVE-2026-73289 (RustFS is a distributed object storage system built in Rust. Prior to ...)
- TODO: check
+ NOT-FOR-US: RustFS
CVE-2026-73288 (RustFS is a distributed object storage system built in Rust. Prior to ...)
- TODO: check
+ NOT-FOR-US: RustFS
CVE-2026-73287 (RustFS is a distributed object storage system built in Rust. Prior to ...)
- TODO: check
+ NOT-FOR-US: RustFS
CVE-2026-73286 (RustFS is a distributed object storage system built in Rust. Prior to ...)
- TODO: check
+ NOT-FOR-US: RustFS
CVE-2026-73285 (RustFS is a distributed object storage system built in Rust. From 1.0. ...)
- TODO: check
+ NOT-FOR-US: RustFS
CVE-2026-73284 (RustFS is a distributed object storage system built in Rust. RustFS Ad ...)
- TODO: check
+ NOT-FOR-US: RustFS
CVE-2026-73265 (RustFS is a distributed object storage system built in Rust. RustFS au ...)
- TODO: check
+ NOT-FOR-US: RustFS
CVE-2026-73264 (Prowler is a cloud security platform. Prior to 5.33.1, an authenticate ...)
TODO: check
CVE-2026-73263 (Prowler is a cloud security platform. Prior to 5.36.0, the Kubernetes ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1f92c3e2cb90046830851fd84ad2c09535bc9ab5
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1f92c3e2cb90046830851fd84ad2c09535bc9ab5
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260812/2d81925b/attachment.htm>
More information about the debian-security-tracker-commits
mailing list