[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Mar 19 09:16:17 GMT 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
0cd5d466 by Salvatore Bonaccorso at 2026-03-19T10:15:51+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -23,41 +23,41 @@ CVE-2026-32886 (Parse Server is an open source backend that can be deployed to a
 CVE-2026-32878 (Parse Server is an open source backend that can be deployed to any inf ...)
 	NOT-FOR-US: Parse Server
 CVE-2026-32805 (Romeo gives the capability to reach high code coverage of Go \u22651.2 ...)
-	TODO: check
+	NOT-FOR-US: Romeo
 CVE-2026-32770 (Parse Server is an open source backend that can be deployed to any inf ...)
-	TODO: check
+	NOT-FOR-US: Parse Server
 CVE-2026-32743 (PX4 is an open-source autopilot stack for drones and unmanned vehicles ...)
-	TODO: check
+	NOT-FOR-US: PX4 autopilot
 CVE-2026-32742 (Parse Server is an open source backend that can be deployed to any inf ...)
-	TODO: check
+	NOT-FOR-US: Parse Server
 CVE-2026-32737 (Romeo gives the capability to reach high code coverage of Go \u22651.2 ...)
-	TODO: check
+	NOT-FOR-US: Romeo
 CVE-2026-32736 (The Hytale Modding Wiki is a free service for Hytale mods to host thei ...)
-	TODO: check
+	NOT-FOR-US: Hytale Modding Wiki
 CVE-2026-32735 (openapi-to-java-records-mustache-templates allows users to generate Ja ...)
 	TODO: check
 CVE-2026-32731 (ApostropheCMS is an open-source content management framework. Prior to ...)
-	TODO: check
+	NOT-FOR-US: ApostropheCMS
 CVE-2026-32730 (ApostropheCMS is an open-source content management framework. Prior to ...)
-	TODO: check
+	NOT-FOR-US: ApostropheCMS
 CVE-2026-32728 (Parse Server is an open source backend that can be deployed to any inf ...)
-	TODO: check
+	NOT-FOR-US: Parse Server
 CVE-2026-32723 (SandboxJS is a JavaScript sandboxing library. Prior to 0.8.35, Sandbox ...)
-	TODO: check
+	NOT-FOR-US: SandboxJS Node module
 CVE-2026-32722 (Memray is a memory profiler for Python. Prior to Memray 1.19.2, Memray ...)
 	TODO: check
 CVE-2026-32703 (OpenProject is an open-source, web-based project management software.  ...)
-	TODO: check
+	NOT-FOR-US: OpenProject
 CVE-2026-32700 (Devise is an authentication solution for Rails based on Warden. Prior  ...)
 	TODO: check
 CVE-2026-32698 (OpenProject is an open-source, web-based project management software.  ...)
-	TODO: check
+	NOT-FOR-US: OpenProject
 CVE-2026-32638 (StudioCMS is a server-side-rendered, Astro native, headless content ma ...)
-	TODO: check
+	NOT-FOR-US: StudioCMS
 CVE-2026-32636 (ImageMagick is free and open-source software used for editing and mani ...)
 	TODO: check
 CVE-2026-32321 (ClipBucket v5 is an open source video sharing platform. An authenticat ...)
-	TODO: check
+	NOT-FOR-US: ClipBucket
 CVE-2026-32255 (Kan is an open-source project management tool. In versions 0.5.4 and b ...)
 	TODO: check
 CVE-2026-32000 (OpenClaw versions prior to 2026.2.19 contain a command injection vulne ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0cd5d466a5361abf584051bee8e4a4aa1e709742

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0cd5d466a5361abf584051bee8e4a4aa1e709742
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260319/7f5ca43f/attachment.htm>


More information about the debian-security-tracker-commits mailing list