[Git][security-tracker-team/security-tracker][master] Process some NFUs
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Tue Feb 24 20:32:49 GMT 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
2277cfd1 by Salvatore Bonaccorso at 2026-02-24T21:31:57+01:00
Process some NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,7 +1,7 @@
CVE-2026-3131 (Improper access control in multiple DVLS REST API endpoints in Devolu ...)
NOT-FOR-US: Devolutions
CVE-2026-3105 (SummaryThis advisory addresses a SQL injection vulnerability in the AP ...)
- TODO: check
+ NOT-FOR-US: Mautic
CVE-2026-3102 (A vulnerability was determined in exiftool up to 13.49 on macOS. This ...)
TODO: check
CVE-2026-3101 (A vulnerability was found in Intelbras TIP 635G 1.12.3.5. This vulnera ...)
@@ -15,7 +15,7 @@ CVE-2026-2460 (A vulnerability exists in REB500 for an authenticated user with l
CVE-2026-2459 (A vulnerability exists in REB500 for an authenticated user with Instal ...)
NOT-FOR-US: Hitachi Energy
CVE-2026-27732 (WWBN AVideo is an open source video platform. Prior to version 22.0, t ...)
- TODO: check
+ NOT-FOR-US: WWBN AVideo
CVE-2026-27590 (Caddy is an extensible server platform that uses TLS by default. Prior ...)
TODO: check
CVE-2026-27589 (Caddy is an extensible server platform that uses TLS by default. Prior ...)
@@ -29,31 +29,31 @@ CVE-2026-27586 (Caddy is an extensible server platform that uses TLS by default.
CVE-2026-27585 (Caddy is an extensible server platform that uses TLS by default. Prior ...)
TODO: check
CVE-2026-27584 (Actual is a local-first personal finance tool. Prior to version 26.2.1 ...)
- TODO: check
+ NOT-FOR-US: Actual
CVE-2026-27571 (NATS-Server is a High-Performance server for NATS.io, a cloud and edge ...)
TODO: check
CVE-2026-27568 (WWBN AVideo is an open source video platform. Prior to version 21.0, A ...)
- TODO: check
+ NOT-FOR-US: WWBN AVideo
CVE-2026-27567 (Payload is a free and open source headless content management system. ...)
- TODO: check
+ NOT-FOR-US: Payload CMS
CVE-2026-27521 (Binardat 10G08-0800GSM network switch firmware versionV300SP10260209an ...)
- TODO: check
+ NOT-FOR-US: Binardat 10G08-0800GSM network switch firmware
CVE-2026-27520 (Binardat 10G08-0800GSM network switch firmware versions prior toV300SP ...)
- TODO: check
+ NOT-FOR-US: Binardat 10G08-0800GSM network switch firmware
CVE-2026-27519 (Binardat 10G08-0800GSM network switch firmware versionV300SP10260209 a ...)
- TODO: check
+ NOT-FOR-US: Binardat 10G08-0800GSM network switch firmware
CVE-2026-27518 (Binardat 10G08-0800GSM network switch firmware versionV300SP10260209 a ...)
- TODO: check
+ NOT-FOR-US: Binardat 10G08-0800GSM network switch firmware
CVE-2026-27517 (Binardat 10G08-0800GSM network switch firmware versionV300SP10260209 a ...)
- TODO: check
+ NOT-FOR-US: Binardat 10G08-0800GSM network switch firmware
CVE-2026-27516 (Binardat 10G08-0800GSM network switch firmware versionV300SP10260209 a ...)
- TODO: check
+ NOT-FOR-US: Binardat 10G08-0800GSM network switch firmware
CVE-2026-27515 (Binardat 10G08-0800GSM network switch firmware versions prior toV300SP ...)
- TODO: check
+ NOT-FOR-US: Binardat 10G08-0800GSM network switch firmware
CVE-2026-27507 (Binardat 10G08-0800GSM network switch firmware versionV300SP10260209 a ...)
- TODO: check
+ NOT-FOR-US: Binardat 10G08-0800GSM network switch firmware
CVE-2026-27483 (MindsDB is a platform for building artificial intelligence from enterp ...)
- TODO: check
+ NOT-FOR-US: MindsDB
CVE-2026-27477 (Mastodon is a free, open-source social network server based on Activit ...)
TODO: check
CVE-2026-27468 (Mastodon is a free, open-source social network server based on Activit ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2277cfd10456ff95efc5a936ddf8378fe5d89ca9
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2277cfd10456ff95efc5a936ddf8378fe5d89ca9
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260224/7ec9579b/attachment.htm>
More information about the debian-security-tracker-commits
mailing list