[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Sep 15 09:28:20 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
2baac664 by Salvatore Bonaccorso at 2026-09-15T10:09:54+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -49,17 +49,17 @@ CVE-2026-91004 (A vulnerability has been found in SourceCodester Online Faculty
 CVE-2026-91003 (A flaw has been found in D-Link DI-8300 16.07. The affected element is ...)
 	NOT-FOR-US: D-Link
 CVE-2026-91002 (A weakness has been identified in stamparm maltrail up to 3.0.1. This  ...)
-	TODO: check
+	NOT-FOR-US: stamparm maltrail
 CVE-2026-91001 (A security flaw has been discovered in D-Link DI-8400 16.07. This affe ...)
 	NOT-FOR-US: D-Link
 CVE-2026-90896 (Missing Authentication for Critical Function (CWE-306) in the checkout ...)
-	TODO: check
+	NOT-FOR-US: MarcosCamara01 Ecommerce Template
 CVE-2026-90881 (A weakness has been identified in D-Link DIR-882 up to 20260814. Impac ...)
 	NOT-FOR-US: D-Link
 CVE-2026-90880 (A security flaw has been discovered in D-Link DSL-3782 2016-07-28. Thi ...)
 	NOT-FOR-US: D-Link
 CVE-2026-90879 (A vulnerability was identified in zyx0814 FilePress up to 3.0.1. This  ...)
-	TODO: check
+	NOT-FOR-US: zyx0814 FilePress
 CVE-2026-90878 (A vulnerability was determined in vllm-project vLLM up to 0.27.1. This ...)
 	TODO: check
 CVE-2026-90877 (A vulnerability was found in SourceCodester Online Faculty Clearance S ...)
@@ -67,7 +67,7 @@ CVE-2026-90877 (A vulnerability was found in SourceCodester Online Faculty Clear
 CVE-2026-90876 (A vulnerability has been found in SourceCodester Online Faculty Cleara ...)
 	NOT-FOR-US: SourceCodester
 CVE-2026-90858 (A flaw has been found in subhajitkhan online-clinic-management-system  ...)
-	TODO: check
+	NOT-FOR-US: subhajitkhan online-clinic-management-system
 CVE-2026-90857 (A vulnerability was detected in SourceCodester College Notes Gallery M ...)
 	NOT-FOR-US: SourceCodester
 CVE-2026-90856 (A security vulnerability has been detected in SourceCodester College N ...)
@@ -87,7 +87,7 @@ CVE-2026-90849 (A security vulnerability has been detected in SourceCodester Col
 CVE-2026-90848 (A weakness has been identified in Governikus AusweisApp up to 2.5.4. A ...)
 	TODO: check
 CVE-2026-90847 (A vulnerability was determined in EFM ipTIME C200E 1.094. The impacted ...)
-	TODO: check
+	NOT-FOR-US: EFM ipTIME C200E
 CVE-2026-90846 (A vulnerability has been found in PHPGurukul Daily Expense Tracker Sys ...)
 	NOT-FOR-US: PHPGurukul
 CVE-2026-90845 (A flaw has been found in PHPGurukul Daily Expense Tracker System 1.1.  ...)
@@ -95,7 +95,7 @@ CVE-2026-90845 (A flaw has been found in PHPGurukul Daily Expense Tracker System
 CVE-2026-90844 (A vulnerability was detected in PHPGurukul Daily Expense Tracker Syste ...)
 	NOT-FOR-US: PHPGurukul
 CVE-2026-90843 (A security vulnerability has been detected in SabyasachiRana WebMap up ...)
-	TODO: check
+	NOT-FOR-US: SabyasachiRana WebMap
 CVE-2026-90842 (A weakness has been identified in PHPGurukul Blood Donor Management Sy ...)
 	NOT-FOR-US: PHPGurukul
 CVE-2026-90841 (A security flaw has been discovered in PHPGurukul Blood Donor Manageme ...)
@@ -103,7 +103,7 @@ CVE-2026-90841 (A security flaw has been discovered in PHPGurukul Blood Donor Ma
 CVE-2026-90840 (A vulnerability was identified in PHPGurukul Blood Donor Management Sy ...)
 	NOT-FOR-US: PHPGurukul
 CVE-2026-90835 (A flaw has been found in michaelliao itranswarp up to 2.19. The impact ...)
-	TODO: check
+	NOT-FOR-US: michaelliao itranswarp
 CVE-2026-90831 (A vulnerability was detected in GNU Binutils 2.47. The affected elemen ...)
 	TODO: check
 CVE-2026-90830 (A security vulnerability has been detected in GNU Binutils 2.47. Impac ...)
@@ -121,11 +121,11 @@ CVE-2026-90825 (A vulnerability was found in GPAC 26.07.0. Affected by this vuln
 CVE-2026-90824 (A vulnerability has been found in GPAC 26.07.0. Affected is the functi ...)
 	- gpac <removed>
 CVE-2026-90820 (A security vulnerability has been detected in a2aproject a2a-java 1.2. ...)
-	TODO: check
+	NOT-FOR-US: a2aproject a2a-java
 CVE-2026-90819 (A weakness has been identified in a2aproject a2a-java 1.2.0. The affec ...)
-	TODO: check
+	NOT-FOR-US: a2aproject a2a-java
 CVE-2026-90818 (A security flaw has been discovered in netease-youdao LobsterAI 2026.6 ...)
-	TODO: check
+	NOT-FOR-US: netease-youdao LobsterAI
 CVE-2026-90816 (A vulnerability was found in FFmpeg 8.0.x. This affects the function p ...)
 	TODO: check
 CVE-2026-90815 (A vulnerability has been found in FFmpeg up to 4.4.6/5.1.8/6.1.4/7.1.3 ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2baac66415a2b550b39d31ffc1d6deda9ab142b3

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2baac66415a2b550b39d31ffc1d6deda9ab142b3
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260915/36758806/attachment.htm>


More information about the debian-security-tracker-commits mailing list