[Git][security-tracker-team/security-tracker][master] automatic NOT-FOR-US entries update

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Jul 6 08:14:02 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
0a8ef270 by security tracker role at 2026-07-06T07:13:56+00:00
automatic NOT-FOR-US entries update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,25 +1,25 @@
 CVE-2026-59520 (Cross-Site Request Forgery (CSRF) vulnerability in properfraction Craw ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin or theme
 CVE-2026-59519 (Insertion of Sensitive Information Into Sent Data vulnerability in Sof ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin or theme
 CVE-2026-59511 (Insertion of Sensitive Information Into Sent Data vulnerability in Tim ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin or theme
 CVE-2026-14803 (Mojo::JSON versions before 9.47 for Perl allow memory exhaustion via u ...)
 	TODO: check
 CVE-2026-14799 (A security flaw has been discovered in CodeAstro Ecommerce Website 1.0 ...)
 	TODO: check
 CVE-2026-14798 (A vulnerability was identified in CodeAstro Apartment Visitor Manageme ...)
-	TODO: check
+	NOT-FOR-US: CodeAstro
 CVE-2026-14797 (A vulnerability was determined in CodeAstro Apartment Visitor Manageme ...)
-	TODO: check
+	NOT-FOR-US: CodeAstro
 CVE-2026-14796 (A vulnerability was found in CodeAstro Apartment Visitor Management Sy ...)
-	TODO: check
+	NOT-FOR-US: CodeAstro
 CVE-2026-14795 (A vulnerability has been found in CodeAstro Apartment Visitor Manageme ...)
-	TODO: check
+	NOT-FOR-US: CodeAstro
 CVE-2026-14794 (A flaw has been found in Craft CMS up to 4.18.0.1. Affected by this vu ...)
-	TODO: check
+	NOT-FOR-US: Craft CMS or plugin for Craft CMS
 CVE-2026-14793 (A vulnerability was detected in Craft CMS up to 4.18.0.1. Affected is  ...)
-	TODO: check
+	NOT-FOR-US: Craft CMS or plugin for Craft CMS
 CVE-2026-14792 (A security vulnerability has been detected in Formbricks 5.0.0. This i ...)
 	TODO: check
 CVE-2026-14791 (A weakness has been identified in crater-invoice-inc crater up to 6.0. ...)
@@ -39,23 +39,23 @@ CVE-2026-14784 (A vulnerability was identified in vxcontrol PentAGI up to 2.1.0.
 CVE-2026-14783 (A vulnerability was determined in NousResearch hermes-agent 2026.5.29. ...)
 	TODO: check
 CVE-2026-14778 (A security vulnerability has been detected in SourceCodester Onlne Exa ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester
 CVE-2026-14777 (A weakness has been identified in SourceCodester Onlne Examination & L ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester
 CVE-2026-14776 (A security flaw has been discovered in SourceCodester Onlne Examinatio ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester
 CVE-2026-14775 (A vulnerability was identified in SourceCodester Onlne Examination & L ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester
 CVE-2026-14774 (A vulnerability was determined in itsourcecode Hospital Management Sys ...)
-	TODO: check
+	NOT-FOR-US: itsourcecode System
 CVE-2026-14773 (A vulnerability was found in itsourcecode Hospital Management System 1 ...)
-	TODO: check
+	NOT-FOR-US: itsourcecode System
 CVE-2026-14772 (A vulnerability has been found in SourceCodester Class and Exam Timeta ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester
 CVE-2026-14771 (A flaw has been found in SourceCodester Class and Exam Timetabling Sys ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester
 CVE-2026-14770 (A vulnerability was detected in SourceCodester Class and Exam Timetabl ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester
 CVE-2026-14769 (A security vulnerability has been detected in code-projects Real State ...)
 	TODO: check
 CVE-2026-14768 (A weakness has been identified in code-projects Real State Services 1. ...)
@@ -63,9 +63,9 @@ CVE-2026-14768 (A weakness has been identified in code-projects Real State Servi
 CVE-2026-14767 (A security flaw has been discovered in CodeAstro Ecommerce Website 1.0 ...)
 	TODO: check
 CVE-2026-10657 (Zephyr's DNS resolver detects mDNS (.local) queries in dns_resolve_nam ...)
-	TODO: check
+	NOT-FOR-US: Zephyr, different from src:zephyr
 CVE-2026-10656 (The MAX32xxx USB device controller driver (drivers/usb/udc/udc_max32.c ...)
-	TODO: check
+	NOT-FOR-US: Zephyr, different from src:zephyr
 CVE-2026-9085 (Incorrect Permission Assignment for Critical Resource, Improper Access ...)
 	NOT-FOR-US: TUBITAK BILGEM
 CVE-2026-6509 (Missing Authorization vulnerability in TUBITAK BILGEM Software Technol ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0a8ef2705196c74e27ea2fd59d988f6316b33115

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0a8ef2705196c74e27ea2fd59d988f6316b33115
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260706/2489d419/attachment.htm>


More information about the debian-security-tracker-commits mailing list