[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Feb 24 20:32:49 GMT 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
2277cfd1 by Salvatore Bonaccorso at 2026-02-24T21:31:57+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,7 +1,7 @@
 CVE-2026-3131 (Improper  access control in multiple DVLS REST API endpoints in Devolu ...)
 	NOT-FOR-US: Devolutions
 CVE-2026-3105 (SummaryThis advisory addresses a SQL injection vulnerability in the AP ...)
-	TODO: check
+	NOT-FOR-US: Mautic
 CVE-2026-3102 (A vulnerability was determined in exiftool up to 13.49 on macOS. This  ...)
 	TODO: check
 CVE-2026-3101 (A vulnerability was found in Intelbras TIP 635G 1.12.3.5. This vulnera ...)
@@ -15,7 +15,7 @@ CVE-2026-2460 (A vulnerability exists in REB500 for an authenticated user with l
 CVE-2026-2459 (A vulnerability exists in REB500 for an authenticated user with Instal ...)
 	NOT-FOR-US: Hitachi Energy
 CVE-2026-27732 (WWBN AVideo is an open source video platform. Prior to version 22.0, t ...)
-	TODO: check
+	NOT-FOR-US: WWBN AVideo
 CVE-2026-27590 (Caddy is an extensible server platform that uses TLS by default. Prior ...)
 	TODO: check
 CVE-2026-27589 (Caddy is an extensible server platform that uses TLS by default. Prior ...)
@@ -29,31 +29,31 @@ CVE-2026-27586 (Caddy is an extensible server platform that uses TLS by default.
 CVE-2026-27585 (Caddy is an extensible server platform that uses TLS by default. Prior ...)
 	TODO: check
 CVE-2026-27584 (Actual is a local-first personal finance tool. Prior to version 26.2.1 ...)
-	TODO: check
+	NOT-FOR-US: Actual
 CVE-2026-27571 (NATS-Server is a High-Performance server for NATS.io, a cloud and edge ...)
 	TODO: check
 CVE-2026-27568 (WWBN AVideo is an open source video platform. Prior to version 21.0, A ...)
-	TODO: check
+	NOT-FOR-US: WWBN AVideo
 CVE-2026-27567 (Payload is a free and open source headless content management system.  ...)
-	TODO: check
+	NOT-FOR-US: Payload CMS
 CVE-2026-27521 (Binardat 10G08-0800GSM network switch firmware versionV300SP10260209an ...)
-	TODO: check
+	NOT-FOR-US: Binardat 10G08-0800GSM network switch firmware
 CVE-2026-27520 (Binardat 10G08-0800GSM network switch firmware versions prior toV300SP ...)
-	TODO: check
+	NOT-FOR-US: Binardat 10G08-0800GSM network switch firmware
 CVE-2026-27519 (Binardat 10G08-0800GSM network switch firmware versionV300SP10260209 a ...)
-	TODO: check
+	NOT-FOR-US: Binardat 10G08-0800GSM network switch firmware
 CVE-2026-27518 (Binardat 10G08-0800GSM network switch firmware versionV300SP10260209 a ...)
-	TODO: check
+	NOT-FOR-US: Binardat 10G08-0800GSM network switch firmware
 CVE-2026-27517 (Binardat 10G08-0800GSM network switch firmware versionV300SP10260209 a ...)
-	TODO: check
+	NOT-FOR-US: Binardat 10G08-0800GSM network switch firmware
 CVE-2026-27516 (Binardat 10G08-0800GSM network switch firmware versionV300SP10260209 a ...)
-	TODO: check
+	NOT-FOR-US: Binardat 10G08-0800GSM network switch firmware
 CVE-2026-27515 (Binardat 10G08-0800GSM network switch firmware versions prior toV300SP ...)
-	TODO: check
+	NOT-FOR-US: Binardat 10G08-0800GSM network switch firmware
 CVE-2026-27507 (Binardat 10G08-0800GSM network switch firmware versionV300SP10260209 a ...)
-	TODO: check
+	NOT-FOR-US: Binardat 10G08-0800GSM network switch firmware
 CVE-2026-27483 (MindsDB is a platform for building artificial intelligence from enterp ...)
-	TODO: check
+	NOT-FOR-US: MindsDB
 CVE-2026-27477 (Mastodon is a free, open-source social network server based on Activit ...)
 	TODO: check
 CVE-2026-27468 (Mastodon is a free, open-source social network server based on Activit ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2277cfd10456ff95efc5a936ddf8378fe5d89ca9

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2277cfd10456ff95efc5a936ddf8378fe5d89ca9
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260224/7ec9579b/attachment.htm>


More information about the debian-security-tracker-commits mailing list