Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits: d784f915 by Salvatore Bonaccorso at 2024-01-08T21:53:18+01:00 Add one more pyload CVE - - - - - 1 changed file: - data/CVE/list Changes: ===================================== data/CVE/list ===================================== @@ -117,7 +117,7 @@ CVE-2023-51246 (A Cross Site Scripting (XSS) vulnerability in GetSimple CMS 3.3. CVE-2023-50982 (Stud.IP 5.x through 5.3.3 allows XSS with resultant upload of executab ...) TODO: check CVE-2023-47890 (pyLoad 0.5.0 is vulnerable to Unrestricted File Upload.) - TODO: check + - pyload <itp> (bug #1001980) CVE-2023-47211 (A directory traversal vulnerability exists in the uploadMib functional ...) NOT-FOR-US: ManageEngine OpManager CVE-2023-41710 (User-defined script code could be stored for a upsell related shop URL ...) View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d784f915717c9d2ea36f644bf9260db9978c58c8 -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d784f915717c9d2ea36f644bf9260db9978c58c8 You're receiving this email because of your account on salsa.debian.org.
_______________________________________________ debian-security-tracker-commits mailing list debian-security-tracker-commits@alioth-lists.debian.net https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits