[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Feb 25 21:13:15 GMT 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
08d2019b by Salvatore Bonaccorso at 2026-02-25T22:11:24+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,7 +1,7 @@
 CVE-2026-3221 (Sensitive  user account information is not encrypted in the database i ...)
 	NOT-FOR-US: Devolutions
 CVE-2026-3206 (Improper Resource Shutdown or Release vulnerability in KrakenD, SLU Kr ...)
-	TODO: check
+	NOT-FOR-US: KrakenD
 CVE-2026-3203 (RF4CE Profile protocol dissector crash in Wireshark 4.6.0 to 4.6.3 and ...)
 	- wireshark <unfixed>
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2026-07.html
@@ -17,25 +17,25 @@ CVE-2026-3201 (USB HID protocol dissector memory exhaustion in Wireshark 4.6.0 t
 CVE-2026-3197
 	REJECTED
 CVE-2026-3194 (A flaw has been found in Chia Blockchain 2.1.0. The affected element i ...)
-	TODO: check
+	NOT-FOR-US: Chia Blockchain
 CVE-2026-3193 (A vulnerability was detected in Chia Blockchain 2.1.0. Impacted is an  ...)
-	TODO: check
+	NOT-FOR-US: Chia Blockchain
 CVE-2026-3192 (A security vulnerability has been detected in Chia Blockchain 2.1.0. T ...)
-	TODO: check
+	NOT-FOR-US: Chia Blockchain
 CVE-2026-3189 (A weakness has been identified in feiyuchuixue sz-boot-parent up to 1. ...)
-	TODO: check
+	NOT-FOR-US: feiyuchuixue sz-boot-parent
 CVE-2026-3188 (A security flaw has been discovered in feiyuchuixue sz-boot-parent up  ...)
-	TODO: check
+	NOT-FOR-US: feiyuchuixue sz-boot-parent
 CVE-2026-3187 (A vulnerability was identified in feiyuchuixue sz-boot-parent up to 1. ...)
-	TODO: check
+	NOT-FOR-US: feiyuchuixue sz-boot-parent
 CVE-2026-3186 (A vulnerability was determined in feiyuchuixue sz-boot-parent up to 1. ...)
-	TODO: check
+	NOT-FOR-US: feiyuchuixue sz-boot-parent
 CVE-2026-3185 (A vulnerability was found in feiyuchuixue sz-boot-parent up to 1.3.2-b ...)
-	TODO: check
+	NOT-FOR-US: feiyuchuixue sz-boot-parent
 CVE-2026-3171 (A flaw has been found in SourceCodester/Patrick Mvuma Patients Waiting ...)
 	NOT-FOR-US: SourceCodester
 CVE-2026-3118 (A security flaw was identified in the Orchestrator Plugin of Red Hat D ...)
-	TODO: check
+	NOT-FOR-US: Orchestrator Plugin of Red Hat Developer Hub (Backstage)
 CVE-2026-2878 (In Progress\xae Telerik\xae UI for AJAX, versions prior to 2026.1.225, ...)
 	NOT-FOR-US: Progress Software
 CVE-2026-2636 (This vulnerability is caused by a CWE\u2011159: "Improper Handling of  ...)
@@ -61,19 +61,19 @@ CVE-2026-28194 (In JetBrains TeamCity before 2025.11.3 open redirect was possibl
 CVE-2026-28193 (In JetBrains YouTrack before 2025.3.121962 apps were able to send requ ...)
 	NOT-FOR-US: JetBrains
 CVE-2026-27850 (Due to an improperly configured firewall rule, the router will accept  ...)
-	TODO: check
+	NOT-FOR-US: Linksys
 CVE-2026-27849 (Due to missing neutralization of special elements, OS commands can be  ...)
-	TODO: check
+	NOT-FOR-US: Linksys
 CVE-2026-27848 (Due to missing neutralization of special elements, OS commands can be  ...)
-	TODO: check
+	NOT-FOR-US: Linksys
 CVE-2026-27847 (Due to improper neutralization of special elements, SQL statements can ...)
-	TODO: check
+	NOT-FOR-US: Linksys
 CVE-2026-27846 (Due to missing authentication, a user with physical access to the devi ...)
-	TODO: check
+	NOT-FOR-US: Linksys
 CVE-2026-27795 (LangChain is a framework for building LLM-powered applications. Prior  ...)
-	TODO: check
+	NOT-FOR-US: LangChain
 CVE-2026-27794 (LangGraph Checkpoint defines the base interface for LangGraph checkpoi ...)
-	TODO: check
+	NOT-FOR-US: LangGraph Checkpoint
 CVE-2026-27739 (The Angular SSR is a server-rise rendering tool for Angular applicatio ...)
 	TODO: check
 CVE-2026-27738 (The Angular SSR is a server-rise rendering tool for Angular applicatio ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/08d2019b1a45d0fee7ccb3a7ae5921b7c7712f03

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/08d2019b1a45d0fee7ccb3a7ae5921b7c7712f03
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260225/99911c5c/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list