[Git][security-tracker-team/security-tracker][master] Process some new NFUs
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Fri Sep 25 20:26:24 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
392f2c35 by Salvatore Bonaccorso at 2026-09-25T21:26:03+02:00
Process some new NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,41 +1,41 @@
CVE-2026-97898 (Insecure Direct Object Reference / missing object-level authorization ...)
- TODO: check
+ NOT-FOR-US: Akia
CVE-2026-97897 (A security flaw has been discovered in Krayin laravel-crm up to 2.2.5. ...)
- TODO: check
+ NOT-FOR-US: Krayin laravel-crm
CVE-2026-97896 (A vulnerability was identified in krayin laravel-crm up to 2.2.5. This ...)
- TODO: check
+ NOT-FOR-US: Krayin laravel-crm
CVE-2026-97895 (A vulnerability was determined in krayin laravel-crm up to 2.2.5. This ...)
- TODO: check
+ NOT-FOR-US: Krayin laravel-crm
CVE-2026-97886 (A vulnerability has been found in mathurvishal CloudClassroom-PHP-Proj ...)
- TODO: check
+ NOT-FOR-US: mathurvishal CloudClassroom-PHP-Project
CVE-2026-97885 (A flaw has been found in mathurvishal CloudClassroom-PHP-Project up to ...)
- TODO: check
+ NOT-FOR-US: mathurvishal CloudClassroom-PHP-Project
CVE-2026-97884 (A vulnerability was detected in mathurvishal CloudClassroom-PHP-Projec ...)
- TODO: check
+ NOT-FOR-US: mathurvishal CloudClassroom-PHP-Project
CVE-2026-97883 (A security vulnerability has been detected in mathurvishal CloudClassr ...)
- TODO: check
+ NOT-FOR-US: mathurvishal CloudClassroom-PHP-Project
CVE-2026-97882 (A weakness has been identified in mathurvishal CloudClassroom-PHP-Proj ...)
- TODO: check
+ NOT-FOR-US: mathurvishal CloudClassroom-PHP-Project
CVE-2026-97879 (A security flaw has been discovered in zhistaredu StarTraining up to 3 ...)
- TODO: check
+ NOT-FOR-US: zhistaredu StarTraining
CVE-2026-97878 (A vulnerability was identified in zhistaredu StarTraining up to 3.8.1. ...)
- TODO: check
+ NOT-FOR-US: zhistaredu StarTraining
CVE-2026-97877 (A vulnerability was determined in zhistaredu StarTraining up to 3.8.1. ...)
- TODO: check
+ NOT-FOR-US: zhistaredu StarTraining
CVE-2026-97875 (Rojo's "rojo serve" HTTP API (default port 34872) has no Host/Origin h ...)
TODO: check
CVE-2026-97871 (A vulnerability has been found in Zhonglun CloudPos up to 3.0.1.76. Th ...)
- TODO: check
+ NOT-FOR-US: Zhonglun CloudPos
CVE-2026-97869 (A flaw has been found in langchain4j up to 1.5.3-beta10/1.11.10-beta18 ...)
- TODO: check
+ NOT-FOR-US: langchain4j
CVE-2026-97868 (A security vulnerability has been detected in sheshbabu zen up to 1.5. ...)
- TODO: check
+ NOT-FOR-US: sheshbabu zen
CVE-2026-97866 (A weakness has been identified in Zhonglun CloudPOS 3.0. Affected by t ...)
- TODO: check
+ NOT-FOR-US: Zhonglun CloudPOS
CVE-2026-97865 (A security flaw has been discovered in Open-Web-Analytics up to 1.8.1. ...)
- TODO: check
+ NOT-FOR-US: Open-Web-Analytics
CVE-2026-97864 (A vulnerability has been found in GibbonEdu Gibbon up to 30.0.01. The ...)
- TODO: check
+ NOT-FOR-US: GibbonEdu Gibbon
CVE-2026-97863 (The cisco_firesight_manager_ACL_rule_export module in misp-modules gen ...)
TODO: check
CVE-2026-97846 (Keycloak provides a feature called mTLS holder-of-key binding which en ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/392f2c35ca7115c4eb0dbd871524da7f52b1f1dd
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/392f2c35ca7115c4eb0dbd871524da7f52b1f1dd
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260925/36bbddf1/attachment.htm>
More information about the debian-security-tracker-commits
mailing list