[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Aug 13 09:22:18 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
811af607 by Salvatore Bonaccorso at 2026-08-13T10:21:54+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,7 +1,7 @@
 CVE-2026-7366 (IBM DataPower Gateway 11.0.0.0 through 11.0.0.1 and IBM DataPower Gate ...)
 	NOT-FOR-US: IBM
 CVE-2026-73519 (WolfStack before 25.9.2 contains a hard-coded cluster-authentication s ...)
-	TODO: check
+	NOT-FOR-US: WolfStack
 CVE-2026-73501 (kin-openapi is a Go project for handling OpenAPI files. Prior to 0.144 ...)
 	- golang-github-getkin-kin-openapi <unfixed>
 	NOTE: https://github.com/getkin/kin-openapi/security/advisories/GHSA-r277-6w6q-xmqw
@@ -11,11 +11,11 @@ CVE-2026-73500 (etcd is a distributed key-value store for the data of a distribu
 CVE-2026-73499 (etcd is a distributed key-value store for the data of a distributed sy ...)
 	TODO: check
 CVE-2026-73498 (MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian p ...)
-	TODO: check
+	NOT-FOR-US: MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products
 CVE-2026-73495 (blaze is a Scala library for building asynchronous pipelines, with a f ...)
-	TODO: check
+	NOT-FOR-US: blaze
 CVE-2026-73493 (Http4s (http4s-blaze-server) is a minimal, idiomatic Scala interface f ...)
-	TODO: check
+	NOT-FOR-US: Http4s (http4s-blaze-server)
 CVE-2026-73492 (Loofah is a general library for manipulating and transforming HTML/XML ...)
 	TODO: check
 CVE-2026-73491 (Loofah is a general library for manipulating and transforming HTML/XML ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/811af607adbd4ea570428c9ce861e3bd7cb1be15

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/811af607adbd4ea570428c9ce861e3bd7cb1be15
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260813/cbd4749c/attachment.htm>


More information about the debian-security-tracker-commits mailing list