[Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff (@jmm)
jmm at debian.org
Wed Sep 2 09:09:48 BST 2026
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker
Commits:
9c798056 by Moritz Muehlenhoff at 2026-09-02T10:09:28+02:00
NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1066,7 +1066,7 @@ CVE-2026-51741 (Incorrect access control in the clearDiagnosisLog function of TO
CVE-2026-4813 (A vulnerability in the Lutece Core XSL export management module up to ...)
TODO: check
CVE-2026-49329 (A flaw was found in openshift/oauth-server. The OAuth login and error ...)
- TODO: check
+ NOT-FOR-US: Red Hat OpenShift Container Platform
CVE-2026-25706 (Improper neutralization of special elements used in an OS command in y ...)
TODO: check
CVE-2026-19914 (The Welcart e-Commerce plugin for WordPress is vulnerable to Stored Cr ...)
@@ -1122,7 +1122,7 @@ CVE-2026-12663 (A security issue exists within ControlFLASH\u2122, where the ins
CVE-2026-12661 (A denial-of-service security issue exists within FactoryTalk\xae Histo ...)
NOT-FOR-US: Rockwell Automation
CVE-2026-11873 (An Apache-proxied Dogtag CA REST endpoint exposed by IdM (POST /ca/res ...)
- TODO: check
+ NOT-FOR-US: Red Hat Certificate System
CVE-2026-10420 (Untrusted pointer dereference vulnerability in Samsung Open Source mTo ...)
TODO: check
CVE-2026-10195 (The FS-Poster plugin for WordPress is vulnerable to Remote Code Execut ...)
@@ -1991,7 +1991,7 @@ CVE-2026-14367 (The I3C IBI subsystem in drivers/i3c/i3c_ibi_workq.c hands out s
CVE-2026-14366 (The Silicon Labs SiWx917 WiFi driver's transmit callback siwx91x_send( ...)
NOT-FOR-US: Zephyr, different from src:zephyr
CVE-2026-12894 (A flaw was found in the Qute template engine, which is used by Quarkus ...)
- TODO: check
+ NOT-FOR-US: Quarkus
CVE-2024-58379 (nodemailer before 6.9.9 contains a regular expression denial of servic ...)
- node-nodemailer 6.9.13+~6.4.14-1
NOTE: https://github.com/nodemailer/nodemailer/security/advisories/GHSA-9h6g-pr28-7cqp
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9c79805660e34d8b94b98021794714172c46ee10
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9c79805660e34d8b94b98021794714172c46ee10
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260902/f97c2141/attachment.htm>
More information about the debian-security-tracker-commits
mailing list