Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
11c05dbd by security tracker role at 2026-01-24T08:12:53+00:00
automatic update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,143 @@
+CVE-2026-24649
+       REJECTED
+CVE-2026-24648
+       REJECTED
+CVE-2026-24647
+       REJECTED
+CVE-2026-24646
+       REJECTED
+CVE-2026-24645
+       REJECTED
+CVE-2026-24644
+       REJECTED
+CVE-2026-24643
+       REJECTED
+CVE-2026-24642
+       REJECTED
+CVE-2026-24474 (Dioxus Components is a shadcn-style component library for the 
Dioxus a ...)
+       TODO: check
+CVE-2026-24469 (C++ HTTP Server is an HTTP/1.1 server built to handle client 
connectio ...)
+       TODO: check
+CVE-2026-24422 (phpMyFAQ is an open source FAQ web application. In versions 
4.0.16 and ...)
+       TODO: check
+CVE-2026-24421 (phpMyFAQ is an open source FAQ web application. Versions 
4.0.16 and be ...)
+       TODO: check
+CVE-2026-24420 (phpMyFAQ is an open source FAQ web application. Versions 
4.0.16 and be ...)
+       TODO: check
+CVE-2026-24412 (iccDEV provides libraries and tools for interacting with, 
manipulating ...)
+       TODO: check
+CVE-2026-24411 (iccDEV provides libraries and tools for interacting with, 
manipulating ...)
+       TODO: check
+CVE-2026-24410 (iccDEV provides libraries and tools for interacting with, 
manipulating ...)
+       TODO: check
+CVE-2026-24409 (iccDEV provides libraries and tools for interacting with, 
manipulating ...)
+       TODO: check
+CVE-2026-24407 (iccDEV provides libraries and tools for interacting with, 
manipulating ...)
+       TODO: check
+CVE-2026-24406 (iccDEV provides libraries and tools for interacting with, 
manipulating ...)
+       TODO: check
+CVE-2026-24405 (iccDEV provides libraries and tools for interacting with, 
manipulating ...)
+       TODO: check
+CVE-2026-24404 (iccDEV provides libraries and tools for interacting with, 
manipulating ...)
+       TODO: check
+CVE-2026-24403 (iccDEV provides libraries and tools for interacting with, 
manipulating ...)
+       TODO: check
+CVE-2026-24402
+       REJECTED
+CVE-2026-24401 (Avahi is a system which facilitates service discovery on a 
local netwo ...)
+       TODO: check
+CVE-2026-24399 (ChatterMate is a no-code AI chatbot agent framework. In 
versions 1.0.8 ...)
+       TODO: check
+CVE-2026-24140 (MyTube is a self-hosted downloader and player for several 
video websit ...)
+       TODO: check
+CVE-2026-24139 (MyTube is a self-hosted downloader and player for several 
video websit ...)
+       TODO: check
+CVE-2026-24136 (Saleor is an e-commerce platform. Versions 3.2.0 through 
3.20.109, 3.2 ...)
+       TODO: check
+CVE-2026-24128 (XWiki Platform is a generic wiki platform offering runtime 
services fo ...)
+       TODO: check
+CVE-2026-24127 (Typemill is a flat-file, Markdown-based CMS designed for 
informational ...)
+       TODO: check
+CVE-2026-22586 (Hard-coded Cryptographic Key vulnerability in Salesforce 
Marketing Clo ...)
+       TODO: check
+CVE-2026-22585 (Use of a Broken or Risky Cryptographic Algorithm vulnerability 
in Sale ...)
+       TODO: check
+CVE-2026-22583 (Improper Neutralization of Argument Delimiters in a Command 
('Argument ...)
+       TODO: check
+CVE-2026-22582 (Improper Neutralization of Argument Delimiters in a Command 
('Argument ...)
+       TODO: check
+CVE-2026-1386 (A UNIX symbolic link following issue in the jailer component in 
Firecr ...)
+       TODO: check
+CVE-2026-1257 (The Administrative Shortcodes plugin for WordPress is 
vulnerable to Lo ...)
+       TODO: check
+CVE-2026-1103 (The AIKTP plugin for WordPress is vulnerable to unauthorized 
modificat ...)
+       TODO: check
+CVE-2026-1099 (The Administrative Shortcodes plugin for WordPress is 
vulnerable to St ...)
+       TODO: check
+CVE-2026-1097 (The ThemeRuby Multi Authors \u2013 Assign Multiple Writers to 
Posts pl ...)
+       TODO: check
+CVE-2026-1095 (The Canto Testimonials plugin for WordPress is vulnerable to 
Stored Cr ...)
+       TODO: check
+CVE-2026-1088 (The Login Page Editor plugin for WordPress is vulnerable to 
Cross-Site ...)
+       TODO: check
+CVE-2026-1084 (The Cookie consent for developers plugin for WordPress is 
vulnerable t ...)
+       TODO: check
+CVE-2026-1081 (The Set Bulk Post Categories plugin for WordPress is vulnerable 
to Cro ...)
+       TODO: check
+CVE-2026-1076 (The Star Review Manager plugin for WordPress is vulnerable to 
Cross-Si ...)
+       TODO: check
+CVE-2026-1075 (The ZT Captcha plugin for WordPress is vulnerable to Cross-Site 
Reques ...)
+       TODO: check
+CVE-2026-1070 (The Alex User Counter plugin for WordPress is vulnerable to 
Cross-Site ...)
+       TODO: check
+CVE-2026-0991
+       REJECTED
+CVE-2026-0807 (The Frontis Blocks plugin for WordPress is vulnerable to 
Server-Side R ...)
+       TODO: check
+CVE-2026-0806 (The WP-ClanWars plugin for WordPress is vulnerable to SQL 
Injection vi ...)
+       TODO: check
+CVE-2025-70458 (A DOM-based Cross-Site Scripting (XSS) vulnerability exists in 
the Dom ...)
+       TODO: check
+CVE-2025-70457 (A Remote Code Execution (RCE) vulnerability exists in 
Sourcecodester M ...)
+       TODO: check
+CVE-2025-67264 (An OS command injection vulnerability in the 
com.sprd.engineermode com ...)
+       TODO: check
+CVE-2025-52026 (An information disclosure vulnerability exists in the 
/srvs/membersrv/ ...)
+       TODO: check
+CVE-2025-52025 (An SQL Injection vulnerability exists in the 
GetServiceByRestaurantID  ...)
+       TODO: check
+CVE-2025-52024 (A vulnerability exists in the Aptsys POS Platform Web Services 
module  ...)
+       TODO: check
+CVE-2025-52023 (A vulnerability in the PHP backend of gemscms.aptsys.com.sg 
thru 2025- ...)
+       TODO: check
+CVE-2025-52022 (A vulnerability in the PHP backend of 
gemsloyalty.aptsys.com.sg thru 2 ...)
+       TODO: check
+CVE-2025-14985 (The Alpha Blocks plugin for WordPress is vulnerable to Stored 
Cross-Si ...)
+       TODO: check
+CVE-2025-14941 (The GZSEO plugin for WordPress is vulnerable to authorization 
bypass l ...)
+       TODO: check
+CVE-2025-14906 (The WP Youtube Video Gallery plugin for WordPress is 
vulnerable to Cro ...)
+       TODO: check
+CVE-2025-14903 (The Simple Crypto Shortcodes plugin for WordPress is 
vulnerable to Cro ...)
+       TODO: check
+CVE-2025-14843 (The Wizit Gateway for WooCommerce plugin for WordPress is 
vulnerable t ...)
+       TODO: check
+CVE-2025-14797 (The Same Category Posts plugin for WordPress is vulnerable to 
Stored C ...)
+       TODO: check
+CVE-2025-14629 (The Alchemist Ajax Upload plugin for WordPress is vulnerable 
to unauth ...)
+       TODO: check
+CVE-2025-14609 (The Wise Analytics plugin for WordPress is vulnerable to 
Missing Autho ...)
+       TODO: check
+CVE-2025-13952 (A web page that contains unusual GPU shader code is loaded 
from the In ...)
+       TODO: check
+CVE-2025-13676 (The JustClick registration plugin for WordPress is vulnerable 
to Refle ...)
+       TODO: check
+CVE-2025-13374 (The Kalrav AI Agent plugin for WordPress is vulnerable to 
arbitrary fi ...)
+       TODO: check
+CVE-2025-12836 (The VK Google Job Posting Manager plugin for WordPress is 
vulnerable t ...)
+       TODO: check
+CVE-2025-12780
+       REJECTED
 CVE-2026-24636 (Missing Authorization vulnerability in Syed Balkhi Sugar 
Calendar (Lit ...)
        NOT-FOR-US: WordPress plugin or theme
 CVE-2026-24635 (Improper Control of Filename for Include/Require Statement in 
PHP Prog ...)
@@ -37661,7 +37801,7 @@ CVE-2025-54854 (When a BIG-IP APM OAuth access profile 
(Resource Server or Resou
        NOT-FOR-US: F5
 CVE-2025-54805 (When an iRule is configured on a virtual server via the 
declarative AP ...)
        NOT-FOR-US: F5
-CVE-2025-54755 (A directory traversal vulnerability exists in TMUI that allows 
an auth ...)
+CVE-2025-54755 (A directory traversal vulnerability exists in TMUI that allows 
a highl ...)
        NOT-FOR-US: F5
 CVE-2025-54479 (When a classification profile is configured on a virtual 
server withou ...)
        NOT-FOR-US: F5



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/11c05dbd45726af3405eaff4208f153ccad53c05

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/11c05dbd45726af3405eaff4208f153ccad53c05
You're receiving this email because of your account on salsa.debian.org.


_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to