[Git][security-tracker-team/security-tracker][master] automatic update

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Aug 17 08:13:29 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
aca476cf by security tracker role at 2026-08-17T07:13:22+00:00
automatic update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,93 @@
+CVE-2026-50602 (A security vulnerability has been identified in Planet9 due to incorre ...)
+	TODO: check
+CVE-2026-50601 (A security vulnerability has been identified in the Planet9 desktop ap ...)
+	TODO: check
+CVE-2026-22072 (Loading arbitrary external URLs through WebView components introduces  ...)
+	TODO: check
+CVE-2026-19997 (A security flaw has been discovered in Webkul Bagisto up to 2.4.4. Thi ...)
+	TODO: check
+CVE-2026-19996 (A vulnerability was identified in Webkul Bagisto up to 2.4.4. This vul ...)
+	TODO: check
+CVE-2026-19995 (A vulnerability was determined in Webkul Bagisto up to 2.4.4. This aff ...)
+	TODO: check
+CVE-2026-19994 (A vulnerability was found in Webkul Bagisto up to 2.4.4. Affected by t ...)
+	TODO: check
+CVE-2026-19993 (A vulnerability has been found in Webkul Bagisto up to 2.4.4. Affected ...)
+	TODO: check
+CVE-2026-19992 (A flaw has been found in Orange View Limited DualSafe Password Manager ...)
+	TODO: check
+CVE-2026-19988 (A vulnerability was detected in Alaev SEO Tools Extension up to 1.0.10 ...)
+	TODO: check
+CVE-2026-19987 (A security vulnerability has been detected in SourceCodester Best Empl ...)
+	TODO: check
+CVE-2026-19986 (A weakness has been identified in Adblock for Youtube Extension up to  ...)
+	TODO: check
+CVE-2026-19984 (A flaw has been found in jkawamoto mcp-florence2 up to 0.3.13. Affecte ...)
+	TODO: check
+CVE-2026-19983 (A vulnerability was detected in GL.iNet A1300, AX1800, AXT1800, MT2500 ...)
+	TODO: check
+CVE-2026-19982 (A security vulnerability has been detected in GL.iNet BE9300 and MT600 ...)
+	TODO: check
+CVE-2026-19981 (A weakness has been identified in GL.iNet A1300, AX1800, AXT1800, BE14 ...)
+	TODO: check
+CVE-2026-19980 (A security flaw has been discovered in GL.iNet A1300, AX1800, AXT1800, ...)
+	TODO: check
+CVE-2026-19979 (A vulnerability was identified in GL.iNet A1300, AX1800, AXT1800, BE14 ...)
+	TODO: check
+CVE-2026-19978 (A flaw has been found in jiantao88 android-mcp-server up to cfb872b244 ...)
+	TODO: check
+CVE-2026-19977 (A vulnerability was detected in EFM ipTIME A3004T 14.19.0. The affecte ...)
+	TODO: check
+CVE-2026-19976 (A security vulnerability has been detected in COMFAST CF-N1-S 2.6.0.1. ...)
+	TODO: check
+CVE-2026-19975 (A weakness has been identified in Azuriom CMS up to 1.2.12. This issue ...)
+	TODO: check
+CVE-2026-19974 (A security flaw has been discovered in treefrogframework treefrog-fram ...)
+	TODO: check
+CVE-2026-19973 (A vulnerability was found in itsourcecode Hospital Management System 1 ...)
+	TODO: check
+CVE-2026-19972 (A vulnerability has been found in itsourcecode Hospital Management Sys ...)
+	TODO: check
+CVE-2026-19971 (A flaw has been found in LB-Link WR1210M 1.0.3. This impacts the funct ...)
+	TODO: check
+CVE-2026-19970 (A vulnerability was detected in Open Asset Import Library Assimp 17c12 ...)
+	TODO: check
+CVE-2026-19969 (A security vulnerability has been detected in Open Asset Import Librar ...)
+	TODO: check
+CVE-2026-19968 (A weakness has been identified in Open Asset Import Library Assimp 17c ...)
+	TODO: check
+CVE-2026-19967 (A security flaw has been discovered in Open Asset Import Library Assim ...)
+	TODO: check
+CVE-2026-19966 (A vulnerability was identified in CodeCanyon TimeCamp Integration for  ...)
+	TODO: check
+CVE-2026-19965 (A vulnerability was determined in automad up to 2.0.0-beta.32. This vu ...)
+	TODO: check
+CVE-2026-19964 (A vulnerability was found in Jij-Inc Jij-MCP-Server 0.1.0. This affect ...)
+	TODO: check
+CVE-2026-19963 (A vulnerability has been found in Edimax EW-7478APC 1.04. Affected by  ...)
+	TODO: check
+CVE-2026-19962 (A flaw has been found in Edimax EW-7478APC 1.04. Affected by this vuln ...)
+	TODO: check
+CVE-2026-19961 (A vulnerability was detected in Edimax EW-7478APC 1.04. Affected is th ...)
+	TODO: check
+CVE-2026-19960 (A security vulnerability has been detected in Edimax EW-7478APC 1.04.  ...)
+	TODO: check
+CVE-2026-19959 (A weakness has been identified in Edimax EW-7478APC 1.04. This affects ...)
+	TODO: check
+CVE-2026-19958 (A security flaw has been discovered in iatsiuk pptr-mcp up to 0.2.7. T ...)
+	TODO: check
+CVE-2026-19957 (A vulnerability was identified in graphlit graphlit-mcp-server 1.0.1.  ...)
+	TODO: check
+CVE-2026-19956 (A vulnerability has been found in gomarble-ai facebook-ads-mcp-server  ...)
+	TODO: check
+CVE-2026-19955 (A vulnerability was detected in TrailDB 0.6. Impacted is the function  ...)
+	TODO: check
+CVE-2026-15623 (A SQL Injection vulnerability in a legacy dashboard widget API in Goog ...)
+	TODO: check
+CVE-2026-14832 (The ShopSmart Loyalty for WooCommerce WordPress plugin through 1.0.0 d ...)
+	TODO: check
+CVE-2026-13700 (The WooMS WordPress plugin through 9.14 does not validate a user-suppl ...)
+	TODO: check
 CVE-2026-66801
 	NOT-FOR-US: Red Hat cluster-backup-operator
 CVE-2026-66800
@@ -12,7 +102,7 @@ CVE-2026-18725
 CVE-2026-18724
 	- open-iscsi <unfixed>
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2461994
-CVE-2026-74579 [netfilter: nft_payload: fix mask build for partial field offload]
+CVE-2026-74579 (In the Linux kernel, the following vulnerability has been resolved:  n ...)
 	- linux 7.1.8-1
 	NOTE: https://git.kernel.org/linus/39e88f28fb32bf02bd4b525c24c842c9cff5663d (7.2-rc6)
 CVE-2026-74797 (OpenTofu versions before 1.11.4 contain a denial of service vulnerabil ...)
@@ -59404,6 +59494,7 @@ CVE-2026-XXXX [RUSTSEC-2026-0176]
 	[bookworm] - rust-pyo3 <not-affected> (Vulnerable code not present, only affects 0.24 and later)
 	NOTE: https://rustsec.org/advisories/RUSTSEC-2026-0176.html
 CVE-2026-54421 (In OpenStack Ironic before 37.0.1, when applying a PATCH to update fie ...)
+	{DLA-4743-1}
 	- ironic 1:35.0.1-6 (bug #1140012)
 	[trixie] - ironic <no-dsa> (Minor issue)
 	NOTE: https://bugs.launchpad.net/ironic/+bug/2155049
@@ -89781,6 +89872,7 @@ CVE-2026-43504 (An issue was discovered in Prosody before 0.12.6 and 1.0.0 throu
 	NOTE: https://prosody.im/security/advisory_735dd9d3/
 	NOTE: https://hg.prosody.im/trunk/rev/4bbb17445ed9
 CVE-2026-43003 (An issue was discovered in OpenStack ironic-python-agent 1.0.0 through ...)
+	{DLA-4743-1}
 	- ironic 1:35.0.1-7 (bug #1140187)
 	[trixie] - ironic <no-dsa> (Minor issue)
 	- ironic-python-agent 11.5.0-3 (bug #1135646)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/aca476cf8c32b7e0298a0659107d02a1d7ffb7cf

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/aca476cf8c32b7e0298a0659107d02a1d7ffb7cf
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260817/6466d75d/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list