[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Feb 16 20:29:03 GMT 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
bbd53f2b by Salvatore Bonaccorso at 2026-02-16T21:28:41+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -73,19 +73,19 @@ CVE-2026-0998 (Mattermost versions 11.1.x <= 11.1.2, 10.11.x <= 10.11.9, 11.2.x
 CVE-2026-0997 (Mattermost versions 11.1.x <= 11.1.2, 10.11.x <= 10.11.9, 11.2.x <= 11 ...)
 	- mattermost-server <itp> (bug #823556)
 CVE-2025-65717 (An issue in Visual Studio Code Extensions Live Server v5.7.9 allows at ...)
-	TODO: check
+	NOT-FOR-US: Visual Studio Code Extensions Live Server
 CVE-2025-65716 (An issue in Visual Studio Code Extensions Markdown Preview Enhanced v0 ...)
-	TODO: check
+	NOT-FOR-US: Visual Studio Code Extensions Markdown Preview Enhanced
 CVE-2025-65715 (An issue in the code-runner.executorMap setting of Visual Studio Code  ...)
-	TODO: check
+	NOT-FOR-US: Visual Studio Code Extensions Code Runner
 CVE-2025-59905 (Cross-Site Scripting (XSS) vulnerability reflected in Kubysoft, which  ...)
-	TODO: check
+	NOT-FOR-US: Kubysoft
 CVE-2025-59904 (Stored Cross-Site Scripting (XSS) vulnerability in Kubysoft, which is  ...)
-	TODO: check
+	NOT-FOR-US: Kubysoft
 CVE-2025-59903 (Stored Cross-Site Scripting (XSS) vulnerability in Kubysoft, where upl ...)
-	TODO: check
+	NOT-FOR-US: Kubysoft
 CVE-2025-2418 (URL Redirection to Untrusted Site ('Open Redirect') vulnerability in T ...)
-	TODO: check
+	NOT-FOR-US: TR7 Cyber Defense Inc Web Application Firewall
 CVE-2025-14573 (Mattermost versions 10.11.x <= 10.11.9 fail to enforce invite permissi ...)
 	- mattermost-server <itp> (bug #823556)
 CVE-2025-14350 (Mattermost versions 11.1.x <= 11.1.2, 10.11.x <= 10.11.9, 11.2.x <= 11 ...)
@@ -93,39 +93,39 @@ CVE-2025-14350 (Mattermost versions 11.1.x <= 11.1.2, 10.11.x <= 10.11.9, 11.2.x
 CVE-2025-13821 (Mattermost versions 11.1.x <= 11.1.2, 10.11.x <= 10.11.9, 11.2.x <= 11 ...)
 	- mattermost-server <itp> (bug #823556)
 CVE-2019-25395 (Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains multiple stor ...)
-	TODO: check
+	NOT-FOR-US: Smoothwall Express
 CVE-2019-25394 (Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains multiple stor ...)
-	TODO: check
+	NOT-FOR-US: Smoothwall Express
 CVE-2019-25393 (Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains a reflected c ...)
-	TODO: check
+	NOT-FOR-US: Smoothwall Express
 CVE-2019-25392 (Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains a reflected c ...)
-	TODO: check
+	NOT-FOR-US: Smoothwall Express
 CVE-2019-25390 (Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains multiple refl ...)
-	TODO: check
+	NOT-FOR-US: Smoothwall Express
 CVE-2019-25389 (Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains a reflected c ...)
-	TODO: check
+	NOT-FOR-US: Smoothwall Express
 CVE-2019-25388 (Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains a reflected c ...)
-	TODO: check
+	NOT-FOR-US: Smoothwall Express
 CVE-2019-25387 (Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains a reflected c ...)
-	TODO: check
+	NOT-FOR-US: Smoothwall Express
 CVE-2019-25386 (Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains multiple refl ...)
-	TODO: check
+	NOT-FOR-US: Smoothwall Express
 CVE-2019-25385 (Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains a reflected c ...)
-	TODO: check
+	NOT-FOR-US: Smoothwall Express
 CVE-2019-25384 (Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains multiple refl ...)
-	TODO: check
+	NOT-FOR-US: Smoothwall Express
 CVE-2019-25383 (Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains multiple refl ...)
-	TODO: check
+	NOT-FOR-US: Smoothwall Express
 CVE-2019-25382 (Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains a reflected c ...)
-	TODO: check
+	NOT-FOR-US: Smoothwall Express
 CVE-2019-25381 (Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains multiple refl ...)
-	TODO: check
+	NOT-FOR-US: Smoothwall Express
 CVE-2019-25380 (Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains multiple refl ...)
-	TODO: check
+	NOT-FOR-US: Smoothwall Express
 CVE-2019-25379 (Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains stored and re ...)
-	TODO: check
+	NOT-FOR-US: Smoothwall Express
 CVE-2019-25378 (Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains multiple cros ...)
-	TODO: check
+	NOT-FOR-US: Smoothwall Express
 CVE-2026-2050 [ZDI-CAN-28266: New Vulnerability Report at rgbe.c]
 	- gegl <unfixed>
 	NOTE: https://gitlab.gnome.org/GNOME/gegl/-/issues/446



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/bbd53f2b5008d0370b1765dd72460a61275b7f8c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/bbd53f2b5008d0370b1765dd72460a61275b7f8c
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260216/41af5c76/attachment.htm>


More information about the debian-security-tracker-commits mailing list