[Git][security-tracker-team/security-tracker][master] automatic NOT-FOR-US entries update
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Sun Mar 29 20:14:12 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
baf9d719 by security tracker role at 2026-03-29T19:14:03+00:00
automatic NOT-FOR-US entries update
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,59 +1,59 @@
CVE-2026-5046 (A flaw has been found in Tenda FH1201 1.2.0.14(408). Affected is the f ...)
- TODO: check
+ NOT-FOR-US: Tenda
CVE-2026-5045 (A vulnerability was detected in Tenda FH1201 1.2.0.14(408). This impac ...)
- TODO: check
+ NOT-FOR-US: Tenda
CVE-2026-5044 (A security vulnerability has been detected in Belkin F9K1122 1.00.33. ...)
- TODO: check
+ NOT-FOR-US: Belkin
CVE-2026-5043 (A weakness has been identified in Belkin F9K1122 1.00.33. The impacted ...)
- TODO: check
+ NOT-FOR-US: Belkin
CVE-2026-5042 (A security flaw has been discovered in Belkin F9K1122 1.00.33. The aff ...)
- TODO: check
+ NOT-FOR-US: Belkin
CVE-2026-5041 (A vulnerability was identified in code-projects Chamber of Commerce Me ...)
- TODO: check
+ NOT-FOR-US: code-projects
CVE-2026-5037 (A vulnerability was determined in mxml up to 4.0.4. This issue affects ...)
TODO: check
CVE-2026-5036 (A vulnerability was found in Tenda 4G06 04.06.01.29. This vulnerabilit ...)
- TODO: check
+ NOT-FOR-US: Tenda
CVE-2026-34005 (In Sofia on Xiongmai DVR/NVR (AHB7008T-MH-V2 and NBD7024H-P) 4.03.R11 ...)
TODO: check
CVE-2026-33575 (OpenClaw before 2026.3.12 embeds long-lived shared gateway credentials ...)
- TODO: check
+ NOT-FOR-US: OpenClaw
CVE-2026-33574 (OpenClaw before 2026.3.8 contains a path traversal vulnerability in th ...)
- TODO: check
+ NOT-FOR-US: OpenClaw
CVE-2026-33573 (OpenClaw before 2026.3.11 contains an authorization bypass vulnerabili ...)
- TODO: check
+ NOT-FOR-US: OpenClaw
CVE-2026-33572 (OpenClaw before 2026.2.17 creates session transcript JSONL files with ...)
- TODO: check
+ NOT-FOR-US: OpenClaw
CVE-2026-32987 (OpenClaw before 2026.3.13 allows bootstrap setup codes to be replayed ...)
- TODO: check
+ NOT-FOR-US: OpenClaw
CVE-2026-32980 (OpenClaw before 2026.3.13 reads and buffers Telegram webhook request b ...)
- TODO: check
+ NOT-FOR-US: OpenClaw
CVE-2026-32979 (OpenClaw before 2026.3.11 contains an approval integrity vulnerability ...)
- TODO: check
+ NOT-FOR-US: OpenClaw
CVE-2026-32978 (OpenClaw before 2026.3.11 contains an approval integrity vulnerability ...)
- TODO: check
+ NOT-FOR-US: OpenClaw
CVE-2026-32975 (OpenClaw before 2026.3.12 contains a weak authorization vulnerability ...)
- TODO: check
+ NOT-FOR-US: OpenClaw
CVE-2026-32974 (OpenClaw before 2026.3.12 contains an authentication bypass vulnerabil ...)
- TODO: check
+ NOT-FOR-US: OpenClaw
CVE-2026-32973 (OpenClaw before 2026.3.11 contains an exec allowlist bypass vulnerabil ...)
- TODO: check
+ NOT-FOR-US: OpenClaw
CVE-2026-32972 (OpenClaw before 2026.3.11 contains an authorization bypass vulnerabili ...)
- TODO: check
+ NOT-FOR-US: OpenClaw
CVE-2026-32924 (OpenClaw before 2026.3.12 contains an authorization bypass vulnerabili ...)
- TODO: check
+ NOT-FOR-US: OpenClaw
CVE-2026-32923 (OpenClaw before 2026.3.11 contains an authorization bypass vulnerabili ...)
- TODO: check
+ NOT-FOR-US: OpenClaw
CVE-2026-32922 (OpenClaw before 2026.3.11 contains a privilege escalation vulnerabilit ...)
- TODO: check
+ NOT-FOR-US: OpenClaw
CVE-2026-32919 (OpenClaw before 2026.3.11 contains an authorization bypass vulnerabili ...)
- TODO: check
+ NOT-FOR-US: OpenClaw
CVE-2026-32918 (OpenClaw before 2026.3.11 contains a session sandbox escape vulnerabil ...)
- TODO: check
+ NOT-FOR-US: OpenClaw
CVE-2026-32915 (OpenClaw before 2026.3.11 contains a sandbox boundary bypass vulnerabi ...)
- TODO: check
+ NOT-FOR-US: OpenClaw
CVE-2026-32914 (OpenClaw before 2026.3.12 contains an insufficient access control vuln ...)
- TODO: check
+ NOT-FOR-US: OpenClaw
CVE-2026-0562 (A critical security vulnerability in parisneo/lollms versions up to 2. ...)
TODO: check
CVE-2026-0560 (A Server-Side Request Forgery (SSRF) vulnerability exists in parisneo/ ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/baf9d719c3367537a93ed0268a35b8e4eee9ce96
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/baf9d719c3367537a93ed0268a35b8e4eee9ce96
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260329/2ffe783d/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list