[Git][security-tracker-team/security-tracker][master] NFUs

Moritz Muehlenhoff (@jmm) jmm at debian.org
Mon Jul 6 08:34:25 BST 2026



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
eba2b573 by Moritz Muehlenhoff at 2026-07-06T09:34:05+02:00
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -7,7 +7,7 @@ CVE-2026-59511 (Insertion of Sensitive Information Into Sent Data vulnerability
 CVE-2026-14803 (Mojo::JSON versions before 9.47 for Perl allow memory exhaustion via u ...)
 	TODO: check
 CVE-2026-14799 (A security flaw has been discovered in CodeAstro Ecommerce Website 1.0 ...)
-	TODO: check
+	NOT-FOR-US: CodeAstro
 CVE-2026-14798 (A vulnerability was identified in CodeAstro Apartment Visitor Manageme ...)
 	NOT-FOR-US: CodeAstro
 CVE-2026-14797 (A vulnerability was determined in CodeAstro Apartment Visitor Manageme ...)
@@ -21,11 +21,12 @@ CVE-2026-14794 (A flaw has been found in Craft CMS up to 4.18.0.1. Affected by t
 CVE-2026-14793 (A vulnerability was detected in Craft CMS up to 4.18.0.1. Affected is  ...)
 	NOT-FOR-US: Craft CMS or plugin for Craft CMS
 CVE-2026-14792 (A security vulnerability has been detected in Formbricks 5.0.0. This i ...)
-	TODO: check
+	NOT-FOR-US: Formbricks
 CVE-2026-14791 (A weakness has been identified in crater-invoice-inc crater up to 6.0. ...)
-	TODO: check
+	NOT-FOR-US: crater-invoice-inc
 CVE-2026-14790 (A flaw has been found in GPAC 26.02.0. This affects the function nhmld ...)
-	TODO: check
+	- gpac <removed>
+	[bullseye] - gpac <end-of-life> (EOL in bullseye LTS)
 CVE-2026-14789 (A vulnerability was detected in radareorg radare2 up to 6.1.6. Affecte ...)
 	TODO: check
 CVE-2026-14788 (A security vulnerability has been detected in radareorg radare2 up to  ...)
@@ -35,9 +36,9 @@ CVE-2026-14787 (A weakness has been identified in radareorg radare2 up to 6.1.6.
 CVE-2026-14786 (A security flaw has been discovered in radareorg radare2 up to 6.1.6.  ...)
 	TODO: check
 CVE-2026-14784 (A vulnerability was identified in vxcontrol PentAGI up to 2.1.0. This  ...)
-	TODO: check
+	NOT-FOR-US: vxcontrol PentAGI
 CVE-2026-14783 (A vulnerability was determined in NousResearch hermes-agent 2026.5.29. ...)
-	TODO: check
+	NOT-FOR-US: hermes-agent
 CVE-2026-14778 (A security vulnerability has been detected in SourceCodester Onlne Exa ...)
 	NOT-FOR-US: SourceCodester
 CVE-2026-14777 (A weakness has been identified in SourceCodester Onlne Examination & L ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/eba2b5736d9ca5482e8b4d9afcf9899f670865e1

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/eba2b5736d9ca5482e8b4d9afcf9899f670865e1
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260706/69f7d2ba/attachment.htm>


More information about the debian-security-tracker-commits mailing list