[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Aug 12 20:33:43 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
1f92c3e2 by Salvatore Bonaccorso at 2026-08-12T21:33:19+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -3,55 +3,55 @@ CVE-2026-8667 (GitLab has remediated an issue in GitLab CE/EE affecting all vers
 CVE-2026-7427 (GitLab has remediated an issue in GitLab CE/EE affecting all versions  ...)
 	NOT-FOR-US: GitLab (used to be packaged in the Debian archive as src:gitlab, but never in a stable release)
 CVE-2026-73432 (Vulnerability-Lookup contains a server-side request forgery (SSRF) vul ...)
-	TODO: check
+	NOT-FOR-US: vulnerability-lookup
 CVE-2026-73431 (Vulnerability-Lookup contains an  authentication weakness in its accou ...)
-	TODO: check
+	NOT-FOR-US: vulnerability-lookup
 CVE-2026-73405 (An authorization bypass vulnerability in Vulnerability-Lookup allowed  ...)
-	TODO: check
+	NOT-FOR-US: vulnerability-lookup
 CVE-2026-73374 (A stored cross-site scripting (XSS) vulnerability existed in Vulnerabi ...)
-	TODO: check
+	NOT-FOR-US: vulnerability-lookup
 CVE-2026-73327 (Joomla 6.1.1 contains a path traversal vulnerability in the com_joomla ...)
-	TODO: check
+	NOT-FOR-US: Joomla
 CVE-2026-73325 (Fujitsu Research's OneCompression library 1.2.0 contains an unsafe des ...)
-	TODO: check
+	NOT-FOR-US: Fujitsu Research's OneCompression library
 CVE-2026-73301 (Budibase is an open-source low-code platform. Prior to 3.39.25, the GE ...)
-	TODO: check
+	NOT-FOR-US: Budibase
 CVE-2026-73300 (Budibase is an open-source low-code platform. Prior to 3.40.0, the MyS ...)
-	TODO: check
+	NOT-FOR-US: Budibase
 CVE-2026-73299 (Prompty is a markdown file format (.prompty) for LLM prompts. Prior to ...)
 	TODO: check
 CVE-2026-73298 (The Microsoft Container Migration Solution Accelerator is a multi-serv ...)
-	TODO: check
+	NOT-FOR-US: Microsoft Container Migration Solution Accelerator
 CVE-2026-73297 (Microsoft UFO open-source framework for intelligent automation across  ...)
-	TODO: check
+	NOT-FOR-US: Microsoft UFO
 CVE-2026-73296 (Microsoft UFO open-source framework for intelligent automation across  ...)
-	TODO: check
+	NOT-FOR-US: Microsoft UFO
 CVE-2026-73295 (Material for MkDocs is a powerful documentation framework built on top ...)
 	TODO: check
 CVE-2026-73294 (Semaphore UI is a web interface for managing DevOps tools. Prior to 2. ...)
-	TODO: check
+	NOT-FOR-US: Semaphore UI
 CVE-2026-73293 (Semaphore UI is a web interface for managing DevOps tools.  Prior to 2 ...)
-	TODO: check
+	NOT-FOR-US: Semaphore UI
 CVE-2026-73292 (Semaphore UI is a web interface for managing DevOps tools. Prior to 2. ...)
-	TODO: check
+	NOT-FOR-US: Semaphore UI
 CVE-2026-73291 (Seerr is an open-source media request and discovery manager for Jellyf ...)
-	TODO: check
+	NOT-FOR-US: Seerr
 CVE-2026-73290 (RustFS is a distributed object storage system built in Rust. Prior to  ...)
-	TODO: check
+	NOT-FOR-US: RustFS
 CVE-2026-73289 (RustFS is a distributed object storage system built in Rust. Prior to  ...)
-	TODO: check
+	NOT-FOR-US: RustFS
 CVE-2026-73288 (RustFS is a distributed object storage system built in Rust. Prior to  ...)
-	TODO: check
+	NOT-FOR-US: RustFS
 CVE-2026-73287 (RustFS is a distributed object storage system built in Rust. Prior to  ...)
-	TODO: check
+	NOT-FOR-US: RustFS
 CVE-2026-73286 (RustFS is a distributed object storage system built in Rust. Prior to  ...)
-	TODO: check
+	NOT-FOR-US: RustFS
 CVE-2026-73285 (RustFS is a distributed object storage system built in Rust. From 1.0. ...)
-	TODO: check
+	NOT-FOR-US: RustFS
 CVE-2026-73284 (RustFS is a distributed object storage system built in Rust. RustFS Ad ...)
-	TODO: check
+	NOT-FOR-US: RustFS
 CVE-2026-73265 (RustFS is a distributed object storage system built in Rust. RustFS au ...)
-	TODO: check
+	NOT-FOR-US: RustFS
 CVE-2026-73264 (Prowler is a cloud security platform. Prior to 5.33.1, an authenticate ...)
 	TODO: check
 CVE-2026-73263 (Prowler is a cloud security platform. Prior to 5.36.0, the Kubernetes  ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1f92c3e2cb90046830851fd84ad2c09535bc9ab5

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1f92c3e2cb90046830851fd84ad2c09535bc9ab5
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260812/2d81925b/attachment.htm>


More information about the debian-security-tracker-commits mailing list