[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Jun 1 20:37:17 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
88a185bd by Salvatore Bonaccorso at 2026-06-01T21:36:55+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -7,19 +7,19 @@ CVE-2026-9319 (IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to po
 CVE-2026-9311 (IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to remote  ...)
 	NOT-FOR-US: IBM
 CVE-2026-9309 (Firefox for iOS Reader View did not properly escape HTML tags in JSON- ...)
-	TODO: check
+	NOT-FOR-US: Firefox for iOS
 CVE-2026-9308 (Firefox for iOS Reader View replaced page content in its HTML template ...)
-	TODO: check
+	NOT-FOR-US: Firefox for iOS
 CVE-2026-9024 (A Stored Cross-site Scripting (XSS) vulnerability affecting Process Ex ...)
 	NOT-FOR-US: Dassault Systemes
 CVE-2026-8931 (A critical Remote Code Execution (RCE) vulnerability exists in Disig W ...)
-	TODO: check
+	NOT-FOR-US: Disig Web Signer
 CVE-2026-8644 (IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to identit ...)
 	NOT-FOR-US: IBM
 CVE-2026-8501 (Improper access control in the PCTCore64.sys Windows kernel driver fro ...)
-	TODO: check
+	NOT-FOR-US: PC Tools Internet Security
 CVE-2026-8474 (A vulnerability was discovered on Stormshield Network Security         ...)
-	TODO: check
+	NOT-FOR-US: Stormshield
 CVE-2026-7858 (A Deserialization of Untrusted Data vulnerability affecting Teamwork C ...)
 	NOT-FOR-US: Dassault Systemes
 CVE-2026-7770 (IBM i Access Family 1.1.5.0 through 1.1.9.12 IBM i Access Client Solut ...)
@@ -67,59 +67,59 @@ CVE-2026-45810 (Nextcloud is an open source content collaboration platform. In N
 CVE-2026-45729 (Thor Vector Graphics (ThorVG) is a production-ready vector graphics en ...)
 	TODO: check
 CVE-2026-45727 (CloakBrowser is a tool to bypass bot detection tests. Prior to version ...)
-	TODO: check
+	NOT-FOR-US: CloakBrowser
 CVE-2026-45722 (Nextcloud is an open source content collaboration platform. From versi ...)
-	TODO: check
+	NOT-FOR-US: Nextcloud Tables
 CVE-2026-45701 (Sulu is an open-source PHP content management system based on the Symf ...)
-	TODO: check
+	NOT-FOR-US: Sulu
 CVE-2026-45691 (Nextcloud is an open source content collaboration platform. In Nextclo ...)
 	TODO: check
 CVE-2026-45690 (Nextcloud is an open source content collaboration platform. In Nextclo ...)
 	TODO: check
 CVE-2026-45545 (Nextcloud is an open source content collaboration platform. From versi ...)
-	TODO: check
+	NOT-FOR-US: Nextcloud Tables
 CVE-2026-45544 (Nextcloud is an open source content collaboration platform. From versi ...)
-	TODO: check
+	NOT-FOR-US: Nextcloud Tables
 CVE-2026-45543 (Nextcloud is an open source content collaboration platform. From versi ...)
-	TODO: check
+	NOT-FOR-US: Nextcloud Forms
 CVE-2026-45505 (Improper Input Validation, Improper Control of Generation of Code ('Co ...)
 	TODO: check
 CVE-2026-45302 (parse-nested-form-data is a tiny node module for parsing FormData by n ...)
 	TODO: check
 CVE-2026-45286 (Nextcloud is an open source content collaboration platform. From versi ...)
-	TODO: check
+	NOT-FOR-US: Nextcloud Calendar
 CVE-2026-45285 (Nextcloud is an open source content collaboration platform. From versi ...)
-	TODO: check
+	NOT-FOR-US: Nextcloud Circles
 CVE-2026-45284 (Nextcloud is an open source content collaboration platform. From versi ...)
-	TODO: check
+	NOT-FOR-US: Nextcloud User OIDC
 CVE-2026-45283 (Nextcloud is an open source content collaboration platform. In Nextclo ...)
-	TODO: check
+	NOT-FOR-US: Nextcloud Files Lock
 CVE-2026-45282 (Nextcloud is an open source content collaboration platform. In Nextclo ...)
-	TODO: check
+	NOT-FOR-US: Nextcloud Text
 CVE-2026-45281 (Nextcloud is an open source content collaboration platform. In Nextclo ...)
 	TODO: check
 CVE-2026-45279 (Nextcloud is an open source content collaboration platform. In Nextclo ...)
 	TODO: check
 CVE-2026-45278 (Nextcloud is an open source content collaboration platform. From versi ...)
-	TODO: check
+	NOT-FOR-US: Nextcloud User OIDC
 CVE-2026-45277 (Nextcloud is an open source content collaboration platform. Prior to v ...)
-	TODO: check
+	NOT-FOR-US: Nextcloud Approval
 CVE-2026-45275 (Nextcloud is an open source content collaboration platform. Prior to v ...)
-	TODO: check
+	NOT-FOR-US: Nextcloud Approval
 CVE-2026-45267 (Nextcloud is an open source content collaboration platform. Prior to v ...)
-	TODO: check
+	NOT-FOR-US: Nextcloud Forms
 CVE-2026-45266 (Nextcloud is an open source content collaboration platform. Prior to v ...)
-	TODO: check
+	NOT-FOR-US: Nextcloud Spreed
 CVE-2026-45264 (Nextcloud is an open source content collaboration platform. From versi ...)
-	TODO: check
+	NOT-FOR-US: Nextcloud Groupfolder
 CVE-2026-45159 (Nextcloud is an open source content collaboration platform. From versi ...)
 	TODO: check
 CVE-2026-45157 (Nextcloud is an open source content collaboration platform. In Nextclo ...)
 	TODO: check
 CVE-2026-45156 (Nextcloud is an open source content collaboration platform. From versi ...)
-	TODO: check
+	NOT-FOR-US: Nextcloud User OIDC
 CVE-2026-45155 (Nextcloud is an open source content collaboration platform. In Nextclo ...)
-	TODO: check
+	NOT-FOR-US: Nextcloud Circles
 CVE-2026-45154 (Nextcloud is an open source content collaboration platform. From versi ...)
 	TODO: check
 CVE-2026-45153 (Nextcloud is an open source content collaboration platform. From versi ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/88a185bd08c8f58892af4d05179e8301105c511b

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/88a185bd08c8f58892af4d05179e8301105c511b
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260601/809abc1d/attachment.htm>


More information about the debian-security-tracker-commits mailing list