[Git][security-tracker-team/security-tracker][master] Proces some NFUs
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Fri Aug 28 15:50:45 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
9ebcf09c by Salvatore Bonaccorso at 2026-08-28T13:52:49+02:00
Proces some NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -887,23 +887,23 @@ CVE-2026-71187 (The Ebyte device relies on client side authentication logic that
CVE-2026-6876 (ServiceNow has remediated a sandbox escape security issue that was ide ...)
NOT-FOR-US: ServiceNow
CVE-2026-69658 (MQTT credentials and control traffic are transmitted in cleartext, ex ...)
- TODO: check
+ NOT-FOR-US: Ebyte
CVE-2026-68967 (Bendix EC80 Brake ECUis vulnerable to an out-of-bounds write, which co ...)
- TODO: check
+ NOT-FOR-US: Bendix EC80 Brake ECU
CVE-2026-68929 (FastGPT is an open-source LLM platform for building AI applications on ...)
- TODO: check
+ NOT-FOR-US: FastGPT
CVE-2026-67560 (Bendix EC80 Brake ECU is vulnerable to a stack-based buffer overflow, ...)
- TODO: check
+ NOT-FOR-US: Bendix EC80 Brake ECU
CVE-2026-66353 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
- TODO: check
+ NOT-FOR-US: woylie doggo
CVE-2026-65931 (LimeSurvey Community Edition 7.0.5 contains an authenticated improper ...)
TODO: check
CVE-2026-61802 (Wazuh is an open-source security platform providing unified XDR and SI ...)
- TODO: check
+ NOT-FOR-US: Wazuh
CVE-2026-61800 (Wazuh is an open-source security platform providing unified XDR and SI ...)
- TODO: check
+ NOT-FOR-US: Wazuh
CVE-2026-61783 (Wazuh is an open-source security platform providing unified XDR and SI ...)
- TODO: check
+ NOT-FOR-US: Wazuh
CVE-2026-5706 (In Bluetooth Mesh SDK 6.1.4 and earlier, malformed extended advertisem ...)
NOT-FOR-US: Silicon Labs
CVE-2026-59324 (When an IntegrationFlow uses .fluxTransform() with an asynchronous/reo ...)
@@ -981,7 +981,7 @@ CVE-2026-59277 (Spring Security's InetAddressMatchers utility provides matchInte
CVE-2026-59276 (Several components in Spring Security compare security-sensitive value ...)
TODO: check
CVE-2026-55758 (CC: Tweaked is a mod for Minecraft which adds programmable computers, ...)
- TODO: check
+ NOT-FOR-US: CC: Tweaked (mod for Minecraft)
CVE-2026-54732 (libreoffice-convert is a Node.js module for converting office document ...)
TODO: check
CVE-2026-54721 (Silverstripe UserForms provides a visual form builder for the Silverst ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9ebcf09cbd88d1cf3066493be087d7de63914a82
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9ebcf09cbd88d1cf3066493be087d7de63914a82
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260828/e8c82290/attachment.htm>
More information about the debian-security-tracker-commits
mailing list