[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sun May 24 20:27:57 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
3ed70e7b by Salvatore Bonaccorso at 2026-05-24T21:25:48+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,5 +1,5 @@
 CVE-2026-9393 (A vulnerability was found in H3C Magic B0 up to 100R002. This affects  ...)
-	TODO: check
+	NOT-FOR-US: H3C
 CVE-2026-9389 (A security vulnerability has been detected in Tenda F456 1.0.0.5. This ...)
 	NOT-FOR-US: Tenda
 CVE-2026-9388 (A weakness has been identified in Totolink A8000RU 7.1cu.643_b20200521 ...)
@@ -15,51 +15,51 @@ CVE-2026-9384 (A vulnerability was found in Totolink A8000RU 7.1cu.643_b20200521
 CVE-2026-9383 (A vulnerability has been found in itsourcecode Electronic Judging Syst ...)
 	NOT-FOR-US: itsourcecode System
 CVE-2026-9382 (A flaw has been found in Edimax BR-6675nD 1.12. Affected by this issue ...)
-	TODO: check
+	NOT-FOR-US: Edimax
 CVE-2026-9381 (A vulnerability was detected in Edimax BR-6675nD 1.12. Affected by thi ...)
-	TODO: check
+	NOT-FOR-US: Edimax
 CVE-2026-9380 (A security vulnerability has been detected in Edimax BR-6675nD 1.12. A ...)
-	TODO: check
+	NOT-FOR-US: Edimax
 CVE-2026-9379 (A weakness has been identified in Edimax BR-6675nD 1.12. This impacts  ...)
-	TODO: check
+	NOT-FOR-US: Edimax
 CVE-2026-9378 (A security flaw has been discovered in Edimax BR-6675nD 1.12. This aff ...)
-	TODO: check
+	NOT-FOR-US: Edimax
 CVE-2026-9377 (A vulnerability was identified in SourceCodester SUP Online Shopping 1 ...)
 	NOT-FOR-US: SourceCodester
 CVE-2026-9376 (A vulnerability was determined in JPress up to 1.0.3. The affected ele ...)
-	TODO: check
+	NOT-FOR-US: JPress
 CVE-2026-9374 (A vulnerability was found in yangzongzhuan RuoYi-Vue up to 3.9.2. Impa ...)
-	TODO: check
+	NOT-FOR-US: yangzongzhuan RuoYi-Vue
 CVE-2026-9373 (A vulnerability has been found in JeecgBoot 3.9.1. This issue affects  ...)
-	TODO: check
+	NOT-FOR-US: JeecgBoot
 CVE-2026-9372 (A flaw has been found in ItzCrazyKns Vane up to 1.12.1. This vulnerabi ...)
-	TODO: check
+	NOT-FOR-US: ItzCrazyKns Vane
 CVE-2026-9371 (A security vulnerability has been detected in ItzCrazyKns Vane up to 1 ...)
-	TODO: check
+	NOT-FOR-US: ItzCrazyKns Vane
 CVE-2026-9370 (A weakness has been identified in ulisesbocchio jasypt-spring-boot up  ...)
-	TODO: check
+	NOT-FOR-US: ulisesbocchio jasypt-spring-boot
 CVE-2026-9369 (A security flaw has been discovered in NousResearch hermes-agent 2026. ...)
-	TODO: check
+	NOT-FOR-US: NousResearch hermes-agent
 CVE-2026-9368 (A vulnerability was identified in NousResearch hermes-agent up to 2026 ...)
-	TODO: check
+	NOT-FOR-US: NousResearch hermes-agent
 CVE-2026-9367 (A vulnerability was determined in NousResearch hermes-agent up to 5157 ...)
-	TODO: check
+	NOT-FOR-US: NousResearch hermes-agent
 CVE-2026-9366 (A vulnerability was found in NousResearch hermes-agent 2026.4.23. The  ...)
-	TODO: check
+	NOT-FOR-US: NousResearch hermes-agent
 CVE-2026-9365 (A vulnerability has been found in Ettercap up to 0.8.3. The affected e ...)
 	TODO: check
 CVE-2026-9364 (A flaw has been found in projectworlds Online Art Gallery Shop 1.0. Im ...)
-	TODO: check
+	NOT-FOR-US: projectworlds Online Art Gallery Shop
 CVE-2026-9363 (A vulnerability was detected in Edimax EW-7438RPn 1.12. This issue aff ...)
-	TODO: check
+	NOT-FOR-US: Edimax
 CVE-2026-9362 (A security vulnerability has been detected in Edimax EW-7438RPn 1.12.  ...)
-	TODO: check
+	NOT-FOR-US: Edimax
 CVE-2026-9361 (A weakness has been identified in Edimax EW-7438RPn 1.12. This affects ...)
-	TODO: check
+	NOT-FOR-US: Edimax
 CVE-2026-9360 (A security flaw has been discovered in Edimax EW-7438RPn 1.28a. Affect ...)
-	TODO: check
+	NOT-FOR-US: Edimax
 CVE-2026-4372 (A critical remote code execution vulnerability exists in all versions  ...)
-	TODO: check
+	NOT-FOR-US: HuggingFace transformers
 CVE-2026-XXXX [Code injection vulnerability via code evaluation support in LDAP autovalues option.]
 	- roundcube <unfixed> (bug #1137507)
 	NOTE: https://roundcube.net/news/2026/05/24/security-updates-1.6.16-and-1.7.1



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/3ed70e7b849aaaeca2e0f708b5e409476cc467cc

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/3ed70e7b849aaaeca2e0f708b5e409476cc467cc
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260524/2070923a/attachment.htm>


More information about the debian-security-tracker-commits mailing list