[Git][security-tracker-team/security-tracker][master] Process some NFUs
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Sun Aug 16 12:47:13 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
e42352cf by Salvatore Bonaccorso at 2026-08-16T13:46:34+02:00
Process some NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,11 +1,11 @@
CVE-2026-9767 (The The School Management \u2013 Education & Learning ERP plugin for W ...)
NOT-FOR-US: WordPress plugin
CVE-2026-74767 (Pandora contains a denial-of-service vulnerability in its handling of ...)
- TODO: check
+ NOT-FOR-US: Pandora
CVE-2026-74764 (Pandora contains a path traversal vulnerability in its TAR archive ext ...)
- TODO: check
+ NOT-FOR-US: Pandora
CVE-2026-73055 (Shescape before 2.1.15 (and 3.0.0 before 3.0.2) fails to properly esca ...)
- TODO: check
+ NOT-FOR-US: Shescape
CVE-2026-73054 (SiYuan versions before v3.7.4 contain an authentication bypass vulnera ...)
NOT-FOR-US: SiYuan
CVE-2026-73053 (SiYuan versions before v3.7.4 contain a cross-site scripting vulnerabi ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e42352cfea264efdca8fdde645d7b4a8fac484ca
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e42352cfea264efdca8fdde645d7b4a8fac484ca
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260816/d8e25f77/attachment.htm>
More information about the debian-security-tracker-commits
mailing list