[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Aug 14 08:19:56 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
46027212 by Salvatore Bonaccorso at 2026-08-14T09:19:33+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,43 +1,43 @@
 CVE-2026-8715 (Vault Secrets Operator 1.3.0 up to 1.4.1 is vulnerable to an arbitrary ...)
-	TODO: check
+	NOT-FOR-US: Vault Secrets Operator
 CVE-2026-73843 (OpenChoreo is a complete, open-source developer platform for Kubernete ...)
-	TODO: check
+	NOT-FOR-US: OpenChoreo
 CVE-2026-73842 (OpenChoreo is a complete, open-source developer platform for Kubernete ...)
-	TODO: check
+	NOT-FOR-US: OpenChoreo
 CVE-2026-73841 (OpenChoreo is a complete, open-source developer platform for Kubernete ...)
-	TODO: check
+	NOT-FOR-US: OpenChoreo
 CVE-2026-73840 (OpenChoreo is a complete, open-source developer platform for Kubernete ...)
-	TODO: check
+	NOT-FOR-US: OpenChoreo
 CVE-2026-73669 (The Signify Philips Hue Bridge Pro firmware embeds a Mosquitto MQTT br ...)
-	TODO: check
+	NOT-FOR-US: Signify Philips Hue Bridge Pro firmware
 CVE-2026-73667 (OpenChoreo is a complete, open-source developer platform for Kubernete ...)
-	TODO: check
+	NOT-FOR-US: OpenChoreo
 CVE-2026-73666 (OpenChoreo is a developer platform for Kubernetes. Prior to 1.0.4, 1.1 ...)
-	TODO: check
+	NOT-FOR-US: OpenChoreo
 CVE-2026-73665 (FreePBX is an open source IP PBX. Prior to 17.0.9, the UCP Node server ...)
-	TODO: check
+	NOT-FOR-US: FreePBX
 CVE-2026-73664 (FreePBX is an open source IP PBX. From 17.0.5.34 until 17.0.11, the pu ...)
-	TODO: check
+	NOT-FOR-US: FreePBX
 CVE-2026-73663 (FreePBX is an open source IP PBX. From 16.0.0 until 16.0.11 and 17.0.4 ...)
-	TODO: check
+	NOT-FOR-US: FreePBX
 CVE-2026-73662 (FreePBX is an open source IP PBX. From 17.0.1 until 17.0.7, the FreePB ...)
-	TODO: check
+	NOT-FOR-US: FreePBX
 CVE-2026-73661 (FreePBX is an open source IP PBX. Prior to 16.0.47 and 17.0.30, the Fr ...)
-	TODO: check
+	NOT-FOR-US: FreePBX
 CVE-2026-73660 (FreePBX is an open source IP PBX. Prior to 16.0.6 and 17.0.5.4, the Fr ...)
-	TODO: check
+	NOT-FOR-US: FreePBX
 CVE-2026-73659 (Trigger.dev is the open-source platform for building AI workflows in T ...)
-	TODO: check
+	NOT-FOR-US: Trigger.dev
 CVE-2026-73658 (Trigger.dev is a platform for building and deploying fully managed AI  ...)
-	TODO: check
+	NOT-FOR-US: Trigger.dev
 CVE-2026-73657 (Trigger.dev is a platform for building and deploying fully managed AI  ...)
-	TODO: check
+	NOT-FOR-US: Trigger.dev
 CVE-2026-73656 (Trigger.dev is a platform for building and deploying fully managed AI  ...)
-	TODO: check
+	NOT-FOR-US: Trigger.dev
 CVE-2026-73655 (Trigger.dev is a platform for building and deploying fully managed AI  ...)
-	TODO: check
+	NOT-FOR-US: Trigger.dev
 CVE-2026-73654 (Trigger.dev is a platform for building and deploying fully managed AI  ...)
-	TODO: check
+	NOT-FOR-US: Trigger.dev
 CVE-2026-73531 (django-helpdesk before 2.3.3 contains a stored cross-site scripting vu ...)
 	TODO: check
 CVE-2026-73530 (Flyto2 Core before 2.28.0 contains a server-side request forgery guard ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/46027212223a7cdb64c22ec3e678efc25b0451c5

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/46027212223a7cdb64c22ec3e678efc25b0451c5
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260814/a5da54a2/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list