[Git][security-tracker-team/security-tracker][master] NFUs

Moritz Muehlenhoff (@jmm) jmm at debian.org
Wed Jun 10 08:00:54 BST 2026



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
e986192e by Moritz Muehlenhoff at 2026-06-10T09:00:37+02:00
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,5 @@
+CVE-2026-52903
+	NOT-FOR-US: ManageIQ
 CVE-2026-11791
 	- 389-ds-base <unfixed>
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2485414
@@ -896,7 +898,7 @@ CVE-2026-11616 (The Events Calendar for GeoDirectory plugin for WordPress is vul
 CVE-2026-11607 (Backend users with access to the Form Framework were able to use files ...)
 	NOT-FOR-US: TYPO3 (core or extensions)
 CVE-2026-10731 (SQL injection in the \u2018two_steps_auth_code\u2019 parameter process ...)
-	TODO: check
+	NOT-FOR-US: Nemon
 CVE-2026-10727 (An OS command injection vulnerability in Ivanti EPMM before12.9.0.1, 1 ...)
 	NOT-FOR-US: Ivanti
 CVE-2026-10523 (An Authentication Bypass vulnerability (CWE-288)in IvantiSentry before ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e986192e100cddbb7bdb307d42e4f7fd64c3e3d1

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e986192e100cddbb7bdb307d42e4f7fd64c3e3d1
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260610/55579120/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list