Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
11c05dbd by security tracker role at 2026-01-24T08:12:53+00:00
automatic update
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,3 +1,143 @@
+CVE-2026-24649
+ REJECTED
+CVE-2026-24648
+ REJECTED
+CVE-2026-24647
+ REJECTED
+CVE-2026-24646
+ REJECTED
+CVE-2026-24645
+ REJECTED
+CVE-2026-24644
+ REJECTED
+CVE-2026-24643
+ REJECTED
+CVE-2026-24642
+ REJECTED
+CVE-2026-24474 (Dioxus Components is a shadcn-style component library for the
Dioxus a ...)
+ TODO: check
+CVE-2026-24469 (C++ HTTP Server is an HTTP/1.1 server built to handle client
connectio ...)
+ TODO: check
+CVE-2026-24422 (phpMyFAQ is an open source FAQ web application. In versions
4.0.16 and ...)
+ TODO: check
+CVE-2026-24421 (phpMyFAQ is an open source FAQ web application. Versions
4.0.16 and be ...)
+ TODO: check
+CVE-2026-24420 (phpMyFAQ is an open source FAQ web application. Versions
4.0.16 and be ...)
+ TODO: check
+CVE-2026-24412 (iccDEV provides libraries and tools for interacting with,
manipulating ...)
+ TODO: check
+CVE-2026-24411 (iccDEV provides libraries and tools for interacting with,
manipulating ...)
+ TODO: check
+CVE-2026-24410 (iccDEV provides libraries and tools for interacting with,
manipulating ...)
+ TODO: check
+CVE-2026-24409 (iccDEV provides libraries and tools for interacting with,
manipulating ...)
+ TODO: check
+CVE-2026-24407 (iccDEV provides libraries and tools for interacting with,
manipulating ...)
+ TODO: check
+CVE-2026-24406 (iccDEV provides libraries and tools for interacting with,
manipulating ...)
+ TODO: check
+CVE-2026-24405 (iccDEV provides libraries and tools for interacting with,
manipulating ...)
+ TODO: check
+CVE-2026-24404 (iccDEV provides libraries and tools for interacting with,
manipulating ...)
+ TODO: check
+CVE-2026-24403 (iccDEV provides libraries and tools for interacting with,
manipulating ...)
+ TODO: check
+CVE-2026-24402
+ REJECTED
+CVE-2026-24401 (Avahi is a system which facilitates service discovery on a
local netwo ...)
+ TODO: check
+CVE-2026-24399 (ChatterMate is a no-code AI chatbot agent framework. In
versions 1.0.8 ...)
+ TODO: check
+CVE-2026-24140 (MyTube is a self-hosted downloader and player for several
video websit ...)
+ TODO: check
+CVE-2026-24139 (MyTube is a self-hosted downloader and player for several
video websit ...)
+ TODO: check
+CVE-2026-24136 (Saleor is an e-commerce platform. Versions 3.2.0 through
3.20.109, 3.2 ...)
+ TODO: check
+CVE-2026-24128 (XWiki Platform is a generic wiki platform offering runtime
services fo ...)
+ TODO: check
+CVE-2026-24127 (Typemill is a flat-file, Markdown-based CMS designed for
informational ...)
+ TODO: check
+CVE-2026-22586 (Hard-coded Cryptographic Key vulnerability in Salesforce
Marketing Clo ...)
+ TODO: check
+CVE-2026-22585 (Use of a Broken or Risky Cryptographic Algorithm vulnerability
in Sale ...)
+ TODO: check
+CVE-2026-22583 (Improper Neutralization of Argument Delimiters in a Command
('Argument ...)
+ TODO: check
+CVE-2026-22582 (Improper Neutralization of Argument Delimiters in a Command
('Argument ...)
+ TODO: check
+CVE-2026-1386 (A UNIX symbolic link following issue in the jailer component in
Firecr ...)
+ TODO: check
+CVE-2026-1257 (The Administrative Shortcodes plugin for WordPress is
vulnerable to Lo ...)
+ TODO: check
+CVE-2026-1103 (The AIKTP plugin for WordPress is vulnerable to unauthorized
modificat ...)
+ TODO: check
+CVE-2026-1099 (The Administrative Shortcodes plugin for WordPress is
vulnerable to St ...)
+ TODO: check
+CVE-2026-1097 (The ThemeRuby Multi Authors \u2013 Assign Multiple Writers to
Posts pl ...)
+ TODO: check
+CVE-2026-1095 (The Canto Testimonials plugin for WordPress is vulnerable to
Stored Cr ...)
+ TODO: check
+CVE-2026-1088 (The Login Page Editor plugin for WordPress is vulnerable to
Cross-Site ...)
+ TODO: check
+CVE-2026-1084 (The Cookie consent for developers plugin for WordPress is
vulnerable t ...)
+ TODO: check
+CVE-2026-1081 (The Set Bulk Post Categories plugin for WordPress is vulnerable
to Cro ...)
+ TODO: check
+CVE-2026-1076 (The Star Review Manager plugin for WordPress is vulnerable to
Cross-Si ...)
+ TODO: check
+CVE-2026-1075 (The ZT Captcha plugin for WordPress is vulnerable to Cross-Site
Reques ...)
+ TODO: check
+CVE-2026-1070 (The Alex User Counter plugin for WordPress is vulnerable to
Cross-Site ...)
+ TODO: check
+CVE-2026-0991
+ REJECTED
+CVE-2026-0807 (The Frontis Blocks plugin for WordPress is vulnerable to
Server-Side R ...)
+ TODO: check
+CVE-2026-0806 (The WP-ClanWars plugin for WordPress is vulnerable to SQL
Injection vi ...)
+ TODO: check
+CVE-2025-70458 (A DOM-based Cross-Site Scripting (XSS) vulnerability exists in
the Dom ...)
+ TODO: check
+CVE-2025-70457 (A Remote Code Execution (RCE) vulnerability exists in
Sourcecodester M ...)
+ TODO: check
+CVE-2025-67264 (An OS command injection vulnerability in the
com.sprd.engineermode com ...)
+ TODO: check
+CVE-2025-52026 (An information disclosure vulnerability exists in the
/srvs/membersrv/ ...)
+ TODO: check
+CVE-2025-52025 (An SQL Injection vulnerability exists in the
GetServiceByRestaurantID ...)
+ TODO: check
+CVE-2025-52024 (A vulnerability exists in the Aptsys POS Platform Web Services
module ...)
+ TODO: check
+CVE-2025-52023 (A vulnerability in the PHP backend of gemscms.aptsys.com.sg
thru 2025- ...)
+ TODO: check
+CVE-2025-52022 (A vulnerability in the PHP backend of
gemsloyalty.aptsys.com.sg thru 2 ...)
+ TODO: check
+CVE-2025-14985 (The Alpha Blocks plugin for WordPress is vulnerable to Stored
Cross-Si ...)
+ TODO: check
+CVE-2025-14941 (The GZSEO plugin for WordPress is vulnerable to authorization
bypass l ...)
+ TODO: check
+CVE-2025-14906 (The WP Youtube Video Gallery plugin for WordPress is
vulnerable to Cro ...)
+ TODO: check
+CVE-2025-14903 (The Simple Crypto Shortcodes plugin for WordPress is
vulnerable to Cro ...)
+ TODO: check
+CVE-2025-14843 (The Wizit Gateway for WooCommerce plugin for WordPress is
vulnerable t ...)
+ TODO: check
+CVE-2025-14797 (The Same Category Posts plugin for WordPress is vulnerable to
Stored C ...)
+ TODO: check
+CVE-2025-14629 (The Alchemist Ajax Upload plugin for WordPress is vulnerable
to unauth ...)
+ TODO: check
+CVE-2025-14609 (The Wise Analytics plugin for WordPress is vulnerable to
Missing Autho ...)
+ TODO: check
+CVE-2025-13952 (A web page that contains unusual GPU shader code is loaded
from the In ...)
+ TODO: check
+CVE-2025-13676 (The JustClick registration plugin for WordPress is vulnerable
to Refle ...)
+ TODO: check
+CVE-2025-13374 (The Kalrav AI Agent plugin for WordPress is vulnerable to
arbitrary fi ...)
+ TODO: check
+CVE-2025-12836 (The VK Google Job Posting Manager plugin for WordPress is
vulnerable t ...)
+ TODO: check
+CVE-2025-12780
+ REJECTED
CVE-2026-24636 (Missing Authorization vulnerability in Syed Balkhi Sugar
Calendar (Lit ...)
NOT-FOR-US: WordPress plugin or theme
CVE-2026-24635 (Improper Control of Filename for Include/Require Statement in
PHP Prog ...)
@@ -37661,7 +37801,7 @@ CVE-2025-54854 (When a BIG-IP APM OAuth access profile
(Resource Server or Resou
NOT-FOR-US: F5
CVE-2025-54805 (When an iRule is configured on a virtual server via the
declarative AP ...)
NOT-FOR-US: F5
-CVE-2025-54755 (A directory traversal vulnerability exists in TMUI that allows
an auth ...)
+CVE-2025-54755 (A directory traversal vulnerability exists in TMUI that allows
a highl ...)
NOT-FOR-US: F5
CVE-2025-54479 (When a classification profile is configured on a virtual
server withou ...)
NOT-FOR-US: F5
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/11c05dbd45726af3405eaff4208f153ccad53c05
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/11c05dbd45726af3405eaff4208f153ccad53c05
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits