[Git][security-tracker-team/security-tracker][master] Process some NFUs
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Fri Aug 14 08:19:56 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
46027212 by Salvatore Bonaccorso at 2026-08-14T09:19:33+02:00
Process some NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,43 +1,43 @@
CVE-2026-8715 (Vault Secrets Operator 1.3.0 up to 1.4.1 is vulnerable to an arbitrary ...)
- TODO: check
+ NOT-FOR-US: Vault Secrets Operator
CVE-2026-73843 (OpenChoreo is a complete, open-source developer platform for Kubernete ...)
- TODO: check
+ NOT-FOR-US: OpenChoreo
CVE-2026-73842 (OpenChoreo is a complete, open-source developer platform for Kubernete ...)
- TODO: check
+ NOT-FOR-US: OpenChoreo
CVE-2026-73841 (OpenChoreo is a complete, open-source developer platform for Kubernete ...)
- TODO: check
+ NOT-FOR-US: OpenChoreo
CVE-2026-73840 (OpenChoreo is a complete, open-source developer platform for Kubernete ...)
- TODO: check
+ NOT-FOR-US: OpenChoreo
CVE-2026-73669 (The Signify Philips Hue Bridge Pro firmware embeds a Mosquitto MQTT br ...)
- TODO: check
+ NOT-FOR-US: Signify Philips Hue Bridge Pro firmware
CVE-2026-73667 (OpenChoreo is a complete, open-source developer platform for Kubernete ...)
- TODO: check
+ NOT-FOR-US: OpenChoreo
CVE-2026-73666 (OpenChoreo is a developer platform for Kubernetes. Prior to 1.0.4, 1.1 ...)
- TODO: check
+ NOT-FOR-US: OpenChoreo
CVE-2026-73665 (FreePBX is an open source IP PBX. Prior to 17.0.9, the UCP Node server ...)
- TODO: check
+ NOT-FOR-US: FreePBX
CVE-2026-73664 (FreePBX is an open source IP PBX. From 17.0.5.34 until 17.0.11, the pu ...)
- TODO: check
+ NOT-FOR-US: FreePBX
CVE-2026-73663 (FreePBX is an open source IP PBX. From 16.0.0 until 16.0.11 and 17.0.4 ...)
- TODO: check
+ NOT-FOR-US: FreePBX
CVE-2026-73662 (FreePBX is an open source IP PBX. From 17.0.1 until 17.0.7, the FreePB ...)
- TODO: check
+ NOT-FOR-US: FreePBX
CVE-2026-73661 (FreePBX is an open source IP PBX. Prior to 16.0.47 and 17.0.30, the Fr ...)
- TODO: check
+ NOT-FOR-US: FreePBX
CVE-2026-73660 (FreePBX is an open source IP PBX. Prior to 16.0.6 and 17.0.5.4, the Fr ...)
- TODO: check
+ NOT-FOR-US: FreePBX
CVE-2026-73659 (Trigger.dev is the open-source platform for building AI workflows in T ...)
- TODO: check
+ NOT-FOR-US: Trigger.dev
CVE-2026-73658 (Trigger.dev is a platform for building and deploying fully managed AI ...)
- TODO: check
+ NOT-FOR-US: Trigger.dev
CVE-2026-73657 (Trigger.dev is a platform for building and deploying fully managed AI ...)
- TODO: check
+ NOT-FOR-US: Trigger.dev
CVE-2026-73656 (Trigger.dev is a platform for building and deploying fully managed AI ...)
- TODO: check
+ NOT-FOR-US: Trigger.dev
CVE-2026-73655 (Trigger.dev is a platform for building and deploying fully managed AI ...)
- TODO: check
+ NOT-FOR-US: Trigger.dev
CVE-2026-73654 (Trigger.dev is a platform for building and deploying fully managed AI ...)
- TODO: check
+ NOT-FOR-US: Trigger.dev
CVE-2026-73531 (django-helpdesk before 2.3.3 contains a stored cross-site scripting vu ...)
TODO: check
CVE-2026-73530 (Flyto2 Core before 2.28.0 contains a server-side request forgery guard ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/46027212223a7cdb64c22ec3e678efc25b0451c5
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/46027212223a7cdb64c22ec3e678efc25b0451c5
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260814/a5da54a2/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list