[Git][security-tracker-team/security-tracker][master] Process some more NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sun Sep 13 20:57:57 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
fa7574b9 by Salvatore Bonaccorso at 2026-09-13T21:57:14+02:00
Process some more NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -116,27 +116,27 @@ CVE-2026-90513 (A flaw has been found in simalexan api-lambda-send-email-ses up
 CVE-2026-90511 (A vulnerability was detected in GongShengyue OnlineBooks up to dfc5eac ...)
 	NOT-FOR-US: GongShengyue OnlineBooks
 CVE-2026-90510 (A security vulnerability has been detected in dromara orion-visor up t ...)
-	TODO: check
+	NOT-FOR-US: dromara orion-visor
 CVE-2026-90509 (A weakness has been identified in dromara orion-visor up to 2.5.7. Aff ...)
-	TODO: check
+	NOT-FOR-US: dromara orion-visor
 CVE-2026-90508 (A security flaw has been discovered in Chengdu Qilu Technology Ludashi ...)
-	TODO: check
+	NOT-FOR-US: Chengdu Qilu Technology Ludashi
 CVE-2026-90507 (A vulnerability was identified in vvbbnn00 WARP-Clash-API up to c7bf23 ...)
-	TODO: check
+	NOT-FOR-US: vvbbnn00 WARP-Clash-API
 CVE-2026-90506 (A vulnerability was determined in vvbbnn00 WARP-Clash-API up to c7bf23 ...)
-	TODO: check
+	NOT-FOR-US: vvbbnn00 WARP-Clash-API
 CVE-2026-90505 (A vulnerability was found in vvbbnn00 WARP-Clash-API up to c7bf2360073 ...)
-	TODO: check
+	NOT-FOR-US: vvbbnn00 WARP-Clash-API
 CVE-2026-90504 (A vulnerability has been found in vvbbnn00 WARP-Clash-API up to c7bf23 ...)
-	TODO: check
+	NOT-FOR-US: vvbbnn00 WARP-Clash-API
 CVE-2026-90503 (A flaw has been found in Chengdu Qilu Technology Ludashi 6.1026.4715.7 ...)
-	TODO: check
+	NOT-FOR-US: Chengdu Qilu Technology Ludashi
 CVE-2026-90502 (A vulnerability was detected in stilleshan ServerStatus 1.0/2.0. Impac ...)
-	TODO: check
+	NOT-FOR-US: stilleshan ServerStatus
 CVE-2026-90501 (A security vulnerability has been detected in lenve vhr 1.0-SNAPSHOT.  ...)
-	TODO: check
+	NOT-FOR-US: lenve vhr
 CVE-2026-90500 (A weakness has been identified in lenve vhr 1.0-SNAPSHOT. This vulnera ...)
-	TODO: check
+	NOT-FOR-US: lenve vhr
 CVE-2025-70819 (Zettlab D6 Ultra before 1.7.0 allows mounting /etc/passwd and /etc/sha ...)
 	TODO: check
 CVE-2025-64059 (Grav 1.7.50.2 allows admins to enter JavaScript via the Home Page edit ...)
@@ -206,7 +206,7 @@ CVE-2026-80072 (The User Registration & Membership  WordPress plugin before 5.2.
 CVE-2026-80071 (The User Registration & Membership  WordPress plugin before 5.2.8 does ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2026-79300 (SEP sesam before 5.2.0.24 mishandles User Authorization with MFA. If A ...)
-	TODO: check
+	NOT-FOR-US: SEP sesam
 CVE-2026-77773 (The Contact Form to Chat Apps | Click to Chat to Order  WordPress plug ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2026-90560 (zstd-jni versions 1.2.0 through 1.5.7-13 contain an out-of-bounds read ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/fa7574b9ff973119959ec88c853ce2eff0e962be

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/fa7574b9ff973119959ec88c853ce2eff0e962be
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260913/76de67e4/attachment.htm>


More information about the debian-security-tracker-commits mailing list