[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Aug 18 09:39:40 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
93fa13ce by Salvatore Bonaccorso at 2026-08-18T10:39:14+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -41,11 +41,11 @@ CVE-2026-75103 (Crawlab fails to verify user ownership or administrative role on
 CVE-2026-75094 (A flaw has been found in COMFAST CF-N1-S 2.6.0.1. This impacts the fun ...)
 	NOT-FOR-US: COMFAST
 CVE-2026-75093 (A security vulnerability has been detected in sonos tract up to 0.23.4 ...)
-	TODO: check
+	NOT-FOR-US: sonos tract
 CVE-2026-75091 (The Quill Forms | Conversational Multi Step Forms, Surveys & quizzes p ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2026-75090 (A vulnerability was detected in EricLBuehler Mistral.rs up to 0.8.22.  ...)
-	TODO: check
+	NOT-FOR-US: EricLBuehler Mistral.rs
 CVE-2026-75089 (A weakness has been identified in PHPGurukul Complaint Management Syst ...)
 	NOT-FOR-US: PHPGurukul
 CVE-2026-75088 (A vulnerability was determined in itsourcecode Hospital Management Sys ...)
@@ -55,9 +55,9 @@ CVE-2026-75087 (A vulnerability was found in itsourcecode Hospital Management Sy
 CVE-2026-75086 (A vulnerability has been found in itsourcecode Hospital Management Sys ...)
 	NOT-FOR-US: itsourcecode System
 CVE-2026-75082 (A flaw has been found in Webkul Bagisto up to 2.4.4. The affected elem ...)
-	TODO: check
+	NOT-FOR-US: Webkul Bagisto
 CVE-2026-75081 (A vulnerability was detected in Webkul Bagisto up to 2.4.4. Impacted i ...)
-	TODO: check
+	NOT-FOR-US: Webkul Bagisto
 CVE-2026-75080 (A security vulnerability has been detected in SourceCodester Class and ...)
 	NOT-FOR-US: SourceCodester
 CVE-2026-75079 (A weakness has been identified in SourceCodester Class and Exam Timeta ...)
@@ -73,23 +73,23 @@ CVE-2026-75013 (A vulnerability was detected in TOTOLINK EX1200L 9.3.5u.6146_B20
 CVE-2026-75012 (A security vulnerability has been detected in TOTOLINK EX1200L 9.3.5u. ...)
 	NOT-FOR-US: TOTOLINK
 CVE-2026-74234 (Legora before 2026-08-14 contains a cross-site scripting vulnerability ...)
-	TODO: check
+	NOT-FOR-US: Legora
 CVE-2026-73560 (vLLM is an inference and serving engine for large language models. Pri ...)
 	TODO: check
 CVE-2026-73410 (Budibase is an open-source low-code platform. Prior to 3.40.0, package ...)
-	TODO: check
+	NOT-FOR-US: Budibase
 CVE-2026-71858 (Notepad++ is a free and open-source source code editor. Prior to 8.9.7 ...)
-	TODO: check
+	NOT-FOR-US: Notepad++
 CVE-2026-71553 (ApostropheCMS is an open-source Node.js content management system. In  ...)
-	TODO: check
+	NOT-FOR-US: ApostropheCMS
 CVE-2026-71518 (Typemill before 2.26.0 contains an authorization bypass vulnerability  ...)
-	TODO: check
+	NOT-FOR-US: Typemill
 CVE-2026-71486 (vLLM is an inference and serving engine for large language models. Pri ...)
 	- vllm <itp> (bug #1095237)
 CVE-2026-71472 (A flaw was found in acm-search-v2-rhel9. This vulnerability allows an  ...)
 	NOT-FOR-US: Red Hat Red Hat Advanced Cluster Management for Kubernetes
 CVE-2026-71424 (Onyx is an open-source AI platform. Prior to 3.1.10, 3.2.14, and 4.0.0 ...)
-	TODO: check
+	NOT-FOR-US: Onyx
 CVE-2026-70495 (A flaw was found in search-v2-operator. This component's `search-servi ...)
 	NOT-FOR-US: Red Hat Red Hat Advanced Cluster Management for Kubernetes
 CVE-2026-69148 (MLflow is an open source AI engineering platform for agents, large lan ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/93fa13ced70fc1209cb6a3702ac61011f556b10c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/93fa13ced70fc1209cb6a3702ac61011f556b10c
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260818/c343fbdc/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list