[Git][security-tracker-team/security-tracker][master] NFUs

Moritz Muehlenhoff (@jmm) jmm at debian.org
Wed Sep 2 09:09:48 BST 2026



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
9c798056 by Moritz Muehlenhoff at 2026-09-02T10:09:28+02:00
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1066,7 +1066,7 @@ CVE-2026-51741 (Incorrect access control in the clearDiagnosisLog function of TO
 CVE-2026-4813 (A vulnerability in the Lutece Core XSL export management module up to  ...)
 	TODO: check
 CVE-2026-49329 (A flaw was found in openshift/oauth-server. The OAuth login and error  ...)
-	TODO: check
+	NOT-FOR-US: Red Hat OpenShift Container Platform
 CVE-2026-25706 (Improper neutralization of special elements used in an OS command in y ...)
 	TODO: check
 CVE-2026-19914 (The Welcart e-Commerce plugin for WordPress is vulnerable to Stored Cr ...)
@@ -1122,7 +1122,7 @@ CVE-2026-12663 (A security issue exists within ControlFLASH\u2122, where the ins
 CVE-2026-12661 (A denial-of-service security issue exists within FactoryTalk\xae Histo ...)
 	NOT-FOR-US: Rockwell Automation
 CVE-2026-11873 (An Apache-proxied Dogtag CA REST endpoint exposed by IdM (POST /ca/res ...)
-	TODO: check
+	NOT-FOR-US: Red Hat Certificate System
 CVE-2026-10420 (Untrusted pointer dereference vulnerability in Samsung Open Source mTo ...)
 	TODO: check
 CVE-2026-10195 (The FS-Poster plugin for WordPress is vulnerable to Remote Code Execut ...)
@@ -1991,7 +1991,7 @@ CVE-2026-14367 (The I3C IBI subsystem in drivers/i3c/i3c_ibi_workq.c hands out s
 CVE-2026-14366 (The Silicon Labs SiWx917 WiFi driver's transmit callback siwx91x_send( ...)
 	NOT-FOR-US: Zephyr, different from src:zephyr
 CVE-2026-12894 (A flaw was found in the Qute template engine, which is used by Quarkus ...)
-	TODO: check
+	NOT-FOR-US: Quarkus
 CVE-2024-58379 (nodemailer before 6.9.9 contains a regular expression denial of servic ...)
 	- node-nodemailer 6.9.13+~6.4.14-1
 	NOTE: https://github.com/nodemailer/nodemailer/security/advisories/GHSA-9h6g-pr28-7cqp



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9c79805660e34d8b94b98021794714172c46ee10

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9c79805660e34d8b94b98021794714172c46ee10
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260902/f97c2141/attachment.htm>


More information about the debian-security-tracker-commits mailing list