[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Aug 26 20:44:26 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
19db0d04 by Salvatore Bonaccorso at 2026-08-26T21:43:41+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,25 +1,25 @@
 CVE-2026-9668 (With legitimate user credentials in hand, attackers can construct mali ...)
 	NOT-FOR-US: ZTE
 CVE-2026-81036 (Stalwart Mail Server does not compare an OAuth redirect target against ...)
-	TODO: check
+	NOT-FOR-US: Stalwart Mail Server
 CVE-2026-81035 (Midday allows any member of a team to delete it. The delete procedure  ...)
-	TODO: check
+	NOT-FOR-US: Midday
 CVE-2026-81034 (Netmaker disables certificate verification on the connection to the co ...)
-	TODO: check
+	NOT-FOR-US: Netmaker
 CVE-2026-81033 (Automatisch reveals whether an address is registered through the respo ...)
-	TODO: check
+	NOT-FOR-US: Automatisch
 CVE-2026-81032 (NebulaGraph exposes its runtime configuration over an unauthenticated  ...)
-	TODO: check
+	NOT-FOR-US: NebulaGraph
 CVE-2026-81031 (IDURAR ERP CRM changes the password of whichever account a request nam ...)
-	TODO: check
+	NOT-FOR-US: IDURAR ERP CRM
 CVE-2026-81030 (Mage AI does not confine the paths accepted by its browser-items API t ...)
-	TODO: check
+	NOT-FOR-US: Mage AI
 CVE-2026-81029 (OpenMetadata accepts a caller-supplied post-authentication redirect ta ...)
-	TODO: check
+	NOT-FOR-US: OpenMetadata
 CVE-2026-81028 (ZLMediaKit confines the downloadFile API to a configured set of root d ...)
-	TODO: check
+	NOT-FOR-US: ZLMediaKit
 CVE-2026-81027 (one-api gates one of its two channel-pinning paths and not the other.  ...)
-	TODO: check
+	NOT-FOR-US: one-api
 CVE-2026-80589 (In the Linux kernel, the following vulnerability has been resolved:  b ...)
 	TODO: check
 CVE-2026-80588 (In the Linux kernel, the following vulnerability has been resolved:  m ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/19db0d04788a3522d4034b518be2d41cc51f056a

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/19db0d04788a3522d4034b518be2d41cc51f056a
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260826/49b8671a/attachment.htm>


More information about the debian-security-tracker-commits mailing list