[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Jan 6 08:24:40 GMT 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
a7105fe1 by Salvatore Bonaccorso at 2026-01-06T09:24:19+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -13,23 +13,23 @@ CVE-2026-21745
 CVE-2026-21744
 	REJECTED
 CVE-2026-21677 (iccDEV provides a set of libraries and tools for working with ICC colo ...)
-	TODO: check
+	NOT-FOR-US: iccDEV
 CVE-2026-21676 (iccDEV provides a set of libraries and tools for working with ICC colo ...)
-	TODO: check
+	NOT-FOR-US: iccDEV
 CVE-2026-21675 (iccDEV provides a set of libraries and tools for working with ICC colo ...)
-	TODO: check
+	NOT-FOR-US: iccDEV
 CVE-2026-21674 (iccDEV provides a set of libraries and tools for working with ICC colo ...)
-	TODO: check
+	NOT-FOR-US: iccDEV
 CVE-2026-21673 (iccDEV provides a set of libraries and tools for working with ICC colo ...)
-	TODO: check
+	NOT-FOR-US: iccDEV
 CVE-2026-21507 (iccDEV provides a set of libraries and tools for working with ICC colo ...)
-	TODO: check
+	NOT-FOR-US: iccDEV
 CVE-2026-21487 (iccDEV provides a set of libraries and tools for working with ICC colo ...)
-	TODO: check
+	NOT-FOR-US: iccDEV
 CVE-2026-21486 (iccDEV provides a set of libraries and tools for working with ICC colo ...)
-	TODO: check
+	NOT-FOR-US: iccDEV
 CVE-2026-21485 (iccDEV provides a set of libraries and tools for working with ICC colo ...)
-	TODO: check
+	NOT-FOR-US: iccDEV
 CVE-2026-21439 (badkeys is a tool and library for checking cryptographic public keys f ...)
 	TODO: check
 CVE-2026-21411 (Authentication bypass issue exists in OpenBlocks series versions prior ...)
@@ -47,25 +47,25 @@ CVE-2026-0605 (A security vulnerability has been detected in code-projects Onlin
 CVE-2026-0604 (The FastDup \u2013 Fastest WordPress Migration & Duplicator plugin for ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2025-69197 (Pterodactyl is a free, open-source game server management panel. Versi ...)
-	TODO: check
+	NOT-FOR-US: Pterodactyl
 CVE-2025-68954 (Pterodactyl is a free, open-source game server management panel. Versi ...)
-	TODO: check
+	NOT-FOR-US: Pterodactyl
 CVE-2025-68953 (Frappe is a full-stack web application framework. Versions 14.99.5 and ...)
-	TODO: check
+	NOT-FOR-US: Frappe
 CVE-2025-68456 (Craft is a platform for creating digital experiences. In versions 5.0. ...)
-	TODO: check
+	NOT-FOR-US: Craft CMS
 CVE-2025-68455 (Craft is a platform for creating digital experiences. Versions 5.0.0-R ...)
-	TODO: check
+	NOT-FOR-US: Craft CMS
 CVE-2025-68454 (Craft is a platform for creating digital experiences. Versions 5.0.0-R ...)
-	TODO: check
+	NOT-FOR-US: Craft CMS
 CVE-2025-68437 (Craft is a platform for creating digital experiences. In versions 5.0. ...)
-	TODO: check
+	NOT-FOR-US: Craft CMS
 CVE-2025-68436 (Craft is a platform for creating digital experiences. In versions 5.0. ...)
-	TODO: check
+	NOT-FOR-US: Craft CMS
 CVE-2025-68428 (jsPDF is a library to generate PDFs in JavaScript. Prior to version 4. ...)
 	TODO: check
 CVE-2025-67732 (Dify is an open-source LLM app development platform. Prior to version  ...)
-	TODO: check
+	NOT-FOR-US: Dify
 CVE-2025-66648 (vega-functions provides function implementations for the Vega expressi ...)
 	TODO: check
 CVE-2025-65110 (Vega is a visualization grammar, a declarative format for creating, sa ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a7105fe1c8f02e79311a8921f22b1943d556cf04

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a7105fe1c8f02e79311a8921f22b1943d556cf04
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260106/fbb7f110/attachment.htm>


More information about the debian-security-tracker-commits mailing list