Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
85de5cb0 by security tracker role at 2026-01-28T20:12:30+00:00
automatic update
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,4 +1,256 @@
-CVE-2026-23014 [perf: Ensure swevent hrtimer is properly destroyed]
+CVE-2026-24775 (OpenProject is an open-source, web-based project management
software. ...)
+ TODO: check
+CVE-2026-24772 (OpenProject is an open-source, web-based project management
software. ...)
+ TODO: check
+CVE-2026-24685 (OpenProject is an open-source, web-based project management
software. ...)
+ TODO: check
+CVE-2026-22243 (EGroupware is a Web based groupware server written in PHP. A
SQL Injec ...)
+ TODO: check
+CVE-2026-21865 (Discourse is an open source discussion platform. In versions
prior to ...)
+ TODO: check
+CVE-2026-1539 (A flaw was found in the libsoup HTTP library that can cause
proxy auth ...)
+ TODO: check
+CVE-2026-1536 (A flaw was found in libsoup. An attacker who can control the
input for ...)
+ TODO: check
+CVE-2026-1522 (A weakness has been identified in Open5GS up to 2.7.6. This
vulnerabil ...)
+ TODO: check
+CVE-2026-1521 (A security flaw has been discovered in Open5GS up to 2.7.6.
This affec ...)
+ TODO: check
+CVE-2026-1520 (A vulnerability was identified in rethinkdb up to 2.4.3.
Affected by t ...)
+ TODO: check
+CVE-2026-1400 (The AI Engine \u2013 The Chatbot and AI Framework for WordPress
plugin ...)
+ TODO: check
+CVE-2026-1399 (The WP Google Ad Manager Plugin plugin for WordPress is
vulnerable to ...)
+ TODO: check
+CVE-2026-1398 (The Change WP URL plugin for WordPress is vulnerable to
Cross-Site Req ...)
+ TODO: check
+CVE-2026-1391 (The Vzaar Media Management plugin for WordPress is vulnerable
to Refle ...)
+ TODO: check
+CVE-2026-1381 (The Order Minimum/Maximum Amount Limits for WooCommerce plugin
for Wor ...)
+ TODO: check
+CVE-2026-1380 (The Bitcoin Donate Button plugin for WordPress is vulnerable to
Cross- ...)
+ TODO: check
+CVE-2026-1377 (The imwptip plugin for WordPress is vulnerable to Cross-Site
Request F ...)
+ TODO: check
+CVE-2026-1280 (The Frontend File Manager Plugin for WordPress is vulnerable to
unauth ...)
+ TODO: check
+CVE-2026-1237 (Vulnerable cross-model authorization in juju. If a charm's
cross-model ...)
+ TODO: check
+CVE-2026-1060 (The WP Adminify plugin for WordPress is vulnerable to Sensitive
Inform ...)
+ TODO: check
+CVE-2026-1056 (The Snow Monkey Forms plugin for WordPress is vulnerable to
arbitrary ...)
+ TODO: check
+CVE-2026-1053 (The Ivory Search \u2013 WordPress Search Plugin plugin for
WordPress i ...)
+ TODO: check
+CVE-2026-0844 (The Simple User Registration plugin for WordPress is vulnerable
to pri ...)
+ TODO: check
+CVE-2026-0750 (Improper Verification of Cryptographic Signature vulnerability
in Drup ...)
+ TODO: check
+CVE-2026-0749 (Improper Neutralization of Input During Web Page Generation
('Cross-si ...)
+ TODO: check
+CVE-2026-0702 (The VidShop \u2013 Shoppable Videos for WooCommerce plugin for
WordPre ...)
+ TODO: check
+CVE-2026-0483 (Stored Cross-Site Scripting (XSS) vulnerability in the PDF file
upload ...)
+ TODO: check
+CVE-2025-7740 (Default credentials vulnerability exists in SuprOS product. If
exploit ...)
+ TODO: check
+CVE-2025-71002 (A floating-point exception (FPE) in the flow.column_stack
component of ...)
+ TODO: check
+CVE-2025-71001 (A segmentation violation in the flow.column_stack component of
OneFlow ...)
+ TODO: check
+CVE-2025-71000 (An issue in the flow.cuda.BoolTensor component of OneFlow
v0.9.0 allow ...)
+ TODO: check
+CVE-2025-70999 (A GPU device-ID validation flaw in the
flow.cuda.get_device_capability ...)
+ TODO: check
+CVE-2025-70336 (A Stored cross-site scripting (XSS) vulnerability in 'Create
New Live ...)
+ TODO: check
+CVE-2025-69602 (A session fixation vulnerability exists in 66biolinks v62.0.0
by Altum ...)
+ TODO: check
+CVE-2025-69601 (A directory traversal (Zip Slip) vulnerability exists in the
\u201cSta ...)
+ TODO: check
+CVE-2025-69517 (An issue in Amidaware Inc Tactical RMM v1.3.1 and before
allows a remo ...)
+ TODO: check
+CVE-2025-69289 (Discourse is an open source discussion platform. A privilege
escalatio ...)
+ TODO: check
+CVE-2025-69218 (Discourse is an open source discussion platform. In versions
prior to ...)
+ TODO: check
+CVE-2025-68934 (Discourse is an open source discussion platform. In versions
prior to ...)
+ TODO: check
+CVE-2025-68933 (Discourse is an open source discussion platform. In versions
prior to ...)
+ TODO: check
+CVE-2025-68666 (Discourse is an open source discussion platform. In versions
prior to ...)
+ TODO: check
+CVE-2025-68662 (Discourse is an open source discussion platform. In versions
prior to ...)
+ TODO: check
+CVE-2025-68660 (Discourse is an open source discussion platform. In versions
prior to ...)
+ TODO: check
+CVE-2025-68659 (Discourse is an open source discussion platform. Versions
prior to 3.5 ...)
+ TODO: check
+CVE-2025-68479 (Discourse is an open source discussion platform. In versions
prior to ...)
+ TODO: check
+CVE-2025-67723 (Discourse is an open source discussion platform. Versions
prior to 3.5 ...)
+ TODO: check
+CVE-2025-66488 (Discourse is an open source discussion platform. A
vulnerability prese ...)
+ TODO: check
+CVE-2025-65891 (A GPU device-ID validation flaw in OneFlow v0.9.0 allows
attackers to ...)
+ TODO: check
+CVE-2025-65890 (A device-ID validation flaw in OneFlow v0.9.0 allows attackers
to caus ...)
+ TODO: check
+CVE-2025-65889 (A type validation flaw in the flow.dstack() component of
OneFlow v0.9. ...)
+ TODO: check
+CVE-2025-65888 (A dimension validation flaw in the flow.empty() component of
OneFlow 0 ...)
+ TODO: check
+CVE-2025-65887 (A division-by-zero vulnerability in the flow.floor_divide()
component ...)
+ TODO: check
+CVE-2025-65886 (A shape mismatch vulnerability in OneFlow v0.9.0 allows
attackers to c ...)
+ TODO: check
+CVE-2025-61140 (The value function in jsonpath 1.1.1 lib/index.js is
vulnerable to Pro ...)
+ TODO: check
+CVE-2025-59901 (Disk Pulse Enterprise v10.4.18 has an authenticated reflected
XSS vuln ...)
+ TODO: check
+CVE-2025-59900 (Sync Breeze Enterprise Server v10.4.18 and Disk Pulse
Enterprise v10.4 ...)
+ TODO: check
+CVE-2025-59899 (Sync Breeze Enterprise Server v10.4.18 and Disk Pulse
Enterprise v10.4 ...)
+ TODO: check
+CVE-2025-59898 (Sync Breeze Enterprise Server v10.4.18 and Disk Pulse
Enterprise v10.4 ...)
+ TODO: check
+CVE-2025-59897 (Sync Breeze Enterprise Server v10.4.18 and Disk Pulse
Enterprise v10.4 ...)
+ TODO: check
+CVE-2025-59896 (Sync Breeze Enterprise Server v10.4.18 and Disk Pulse
Enterprise v10.4 ...)
+ TODO: check
+CVE-2025-59895 (Sync Breeze Enterprise Server v10.4.18 and Disk Pulse
Enterprise v10.4 ...)
+ TODO: check
+CVE-2025-59894 (Cross-Site request forgery (CSRF) vulnerability in Sync Breeze
Enterpr ...)
+ TODO: check
+CVE-2025-59893 (Cross-Site request forgery (CSRF) vulnerability in Sync Breeze
Enterpr ...)
+ TODO: check
+CVE-2025-59892 (Cross-Site request forgery (CSRF) vulnerability in Sync Breeze
Enterpr ...)
+ TODO: check
+CVE-2025-59891 (Cross-Site request forgery (CSRF) vulnerability in Sync Breeze
Enterpr ...)
+ TODO: check
+CVE-2025-57796 (Explorance Blue versions prior to 8.14.12 use reversible
symmetric enc ...)
+ TODO: check
+CVE-2025-57795 (Explorance Blue versions prior to 8.14.13 contain an
authenticated rem ...)
+ TODO: check
+CVE-2025-57794 (Explorance Blue versions prior to 8.14.9 contain an
authenticated unre ...)
+ TODO: check
+CVE-2025-57793 (Explorance Blue versions prior to 8.14.9 contain a SQL
injection vulne ...)
+ TODO: check
+CVE-2025-57792 (Explorance Blue versions prior to 8.14.9 contain a SQL
injection vulne ...)
+ TODO: check
+CVE-2025-57283 (The Node.js package browserstack-local 1.5.8 contains a
command inject ...)
+ TODO: check
+CVE-2025-46691 (Dell PremierColor Panel Driver, versions prior to 1.0.0.1 A01,
contain ...)
+ TODO: check
+CVE-2025-46316 (An out-of-bounds read was addressed with improved input
validation. Th ...)
+ TODO: check
+CVE-2025-46306 (The issue was addressed with improved bounds checks. This
issue is fix ...)
+ TODO: check
+CVE-2025-41351 (Vulnerability that allows a Padding Oracle Attack to be
performed on t ...)
+ TODO: check
+CVE-2025-33237 (NVIDIA HD Audio Driver for Windows contains a vulnerability
where an a ...)
+ TODO: check
+CVE-2025-33220 (NVIDIA vGPU software contains a vulnerability in the Virtual
GPU Manag ...)
+ TODO: check
+CVE-2025-33219 (NVIDIA Display Driver for Linux contains a vulnerability in
the NVIDIA ...)
+ TODO: check
+CVE-2025-33218 (NVIDIA GPU Display Driver for Windows contains a vulnerability
in the ...)
+ TODO: check
+CVE-2025-33217 (NVIDIA Display Driver for Windows contains a vulnerability
where an at ...)
+ TODO: check
+CVE-2025-26386 (Johnson Controls iSTAR Configuration Utility (ICU)
hasStack-based Buff ...)
+ TODO: check
+CVE-2025-15511 (The Rupantorpay plugin for WordPress is vulnerable to
unauthorized mod ...)
+ TODO: check
+CVE-2025-14865 (The Passster \u2013 Password Protect Pages and Content plugin
for Word ...)
+ TODO: check
+CVE-2025-14795 (The Stop Spammers Classic plugin for WordPress is vulnerable
to Cross- ...)
+ TODO: check
+CVE-2025-14616 (The Recooty \u2013 Job Widget (Old Dashboard) plugin for
WordPress is ...)
+ TODO: check
+CVE-2025-14472 (Cross-Site Request Forgery (CSRF) vulnerability in Drupal
Acquia Conte ...)
+ TODO: check
+CVE-2025-14386 (The Search Atlas SEO \u2013 Premier SEO Plugin for One-Click
WP Publis ...)
+ TODO: check
+CVE-2025-14283 (The BlockArt Blocks \u2013 Gutenberg Blocks, Page Builder
Blocks ,Word ...)
+ TODO: check
+CVE-2025-14063 (The SEO Links Interlinking plugin for WordPress is vulnerable
to Refle ...)
+ TODO: check
+CVE-2025-13986 (Authentication Bypass Using an Alternate Path or Channel
vulnerability ...)
+ TODO: check
+CVE-2025-13985 (Incorrect Authorization vulnerability in Drupal Entity Share
allows Fo ...)
+ TODO: check
+CVE-2025-13984 (Permissive Cross-domain Security Policy with Untrusted Domains
vulnera ...)
+ TODO: check
+CVE-2025-13983 (Improper Neutralization of Input During Web Page Generation
("Cross-si ...)
+ TODO: check
+CVE-2025-13982 (Cross-Site Request Forgery (CSRF) vulnerability in Drupal
Login Time R ...)
+ TODO: check
+CVE-2025-13981 (Improper Neutralization of Input During Web Page Generation
("Cross-si ...)
+ TODO: check
+CVE-2025-13980 (Authentication Bypass Using an Alternate Path or Channel
vulnerability ...)
+ TODO: check
+CVE-2025-13979 (Privilege Defined With Unsafe Actions vulnerability in Drupal
Mini sit ...)
+ TODO: check
+CVE-2025-13919 (Symantec Endpoint Protection, prior to 14.3 RU10 Patch 1, RU9
Patch 2, ...)
+ TODO: check
+CVE-2025-13918 (Symantec Endpoint Protection, prior to 14.3 RU10 Patch 1, RU9
Patch 2, ...)
+ TODO: check
+CVE-2025-13917 (WSS Agent, prior to 9.8.5, may be susceptible to a Elevation
of Privil ...)
+ TODO: check
+CVE-2023-37525 (A sensitive information disclosure in HCL BigFix Compliance
allows a r ...)
+ TODO: check
+CVE-2020-36993 (LimeSurvey 4.3.10 contains a stored cross-site scripting
vulnerability ...)
+ TODO: check
+CVE-2020-36992 (Nord VPN 6.31.13.0 contains an unquoted service path
vulnerability in ...)
+ TODO: check
+CVE-2020-36991 (ShareMouse 5.0.43 contains an unquoted service path
vulnerability that ...)
+ TODO: check
+CVE-2020-36990 (Input Director 1.4.3 contains an unquoted service path
vulnerability i ...)
+ TODO: check
+CVE-2020-36989 (ForensiT AppX Management Service 2.2.0.4 contains an unquoted
service ...)
+ TODO: check
+CVE-2020-36988 (PDW File Browser version 1.3 contains stored and reflected
cross-site ...)
+ TODO: check
+CVE-2020-36987 (Program Access Controller 1.2.0.0 contains an unquoted service
path vu ...)
+ TODO: check
+CVE-2020-36986 (Prey 1.9.6 contains an unquoted service path vulnerability
that allows ...)
+ TODO: check
+CVE-2020-36985 (IP Watcher 3.0.0.30 contains an unquoted service path
vulnerability in ...)
+ TODO: check
+CVE-2020-36984 (EPSON 1.124 contains an unquoted service path vulnerability in
the SEN ...)
+ TODO: check
+CVE-2020-36973 (PDW File Browser 1.3 contains a remote code execution
vulnerability th ...)
+ TODO: check
+CVE-2020-36972 (SmartBlog 2.0.1 contains a blind SQL injection vulnerability
in the 'i ...)
+ TODO: check
+CVE-2020-36971 (Nidesoft 3GP Video Converter 2.6.18 contains a local stack
buffer over ...)
+ TODO: check
+CVE-2020-36970 (PMB 5.6 contains a local file disclosure vulnerability in
getgif.php t ...)
+ TODO: check
+CVE-2020-36969 (M/Monit 3.7.4 contains a privilege escalation vulnerability
that allow ...)
+ TODO: check
+CVE-2020-36968 (M/Monit 3.7.4 contains an authentication vulnerability that
allows aut ...)
+ TODO: check
+CVE-2020-36967 (Zortam Mp3 Media Studio 27.60 contains a buffer overflow
vulnerability ...)
+ TODO: check
+CVE-2020-36965 (docPrint Pro 8.0 contains a local buffer overflow
vulnerability in the ...)
+ TODO: check
+CVE-2020-36964 (YATinyWinFTP contains a denial of service vulnerability that
allows at ...)
+ TODO: check
+CVE-2020-36963 (Intelbras Router RF 301K firmware version 1.1.2 contains an
authentica ...)
+ TODO: check
+CVE-2020-36962 (Tendenci 12.3.1 contains a CSV formula injection vulnerability
in the ...)
+ TODO: check
+CVE-2020-36961 (10-Strike Network Inventory Explorer 8.65 contains a buffer
overflow v ...)
+ TODO: check
+CVE-2020-36945 (WebDamn User Registration Login System contains a SQL
injection vulner ...)
+ TODO: check
+CVE-2020-36944 (ILIAS Learning Management System 4.3 contains a server-side
request fo ...)
+ TODO: check
+CVE-2020-36943 (aSc TimeTables 2021.6.2 contains a denial of service
vulnerability tha ...)
+ TODO: check
+CVE-2026-23014 (In the Linux kernel, the following vulnerability has been
resolved: p ...)
- linux <unfixed>
[trixie] - linux <not-affected> (Vulnerable code not present)
[bookworm] - linux <not-affected> (Vulnerable code not present)
@@ -2177,7 +2429,7 @@ CVE-2025-69822 (An issue in Atomberg Atomberg Erica Smart
Fan Firmware Version:
NOT-FOR-US: Atomberg
CVE-2025-69821 (An issue in Beat XP VEGA Smartwatch (Firmware Version -
RB303ATV006229 ...)
NOT-FOR-US: Beat XP VEGA Smartwatch
-CVE-2025-69820 (Directory Traversal vulnerability in Beam beta9 v.0.1.552
allows a rem ...)
+CVE-2025-69820 (Directory Traversal vulnerability in Beam beta9 v.0.1.521
allows a rem ...)
NOT-FOR-US: Beam beta9
CVE-2025-69764 (Tenda AX3 firmware v16.03.12.11 contains a stack-based buffer
overflow ...)
NOT-FOR-US: Tenda
@@ -4585,7 +4837,7 @@ CVE-2020-36926 (SmarterTrack 7922 contains an information
disclosure vulnerabili
NOT-FOR-US: SmarterTrack
CVE-2011-10041 (Uploadify WordPress plugin versions up to and including
1.0contain an ...)
NOT-FOR-US: WordPress plugin
-CVE-2025-61730 [crypto/tls: handshake messages may be processed at the
incorrect encryption level]
+CVE-2025-61730 (During the TLS 1.3 handshake if multiple messages are sent in
records ...)
- golang-1.25 1.25.6-1 (bug #1125916)
- golang-1.24 1.24.12-1 (bug #1125917)
- golang-1.19 <removed>
@@ -4595,7 +4847,7 @@ CVE-2025-61730 [crypto/tls: handshake messages may be
processed at the incorrect
NOTE: https://github.com/golang/go/issues/76443
NOTE: Fixed by:
https://github.com/golang/go/commit/525dd853633f90d6038719d9a48cba3770ca71ea
(go1.25.6)
NOTE: Fixed by:
https://github.com/golang/go/commit/ad2cd043db66cd36e1f55359638729d2c8ff3d99
(go1.24.12)
-CVE-2025-68119 [cmd/go: unexpected code execution when invoking toolchain]
+CVE-2025-68119 (Downloading and building modules with malicious version
strings can ca ...)
- golang-1.25 1.25.6-1 (bug #1125916)
- golang-1.24 <unfixed>
- golang-1.19 <removed>
@@ -4605,7 +4857,7 @@ CVE-2025-68119 [cmd/go: unexpected code execution when
invoking toolchain]
NOTE: https://github.com/golang/go/issues/77099
NOTE: Fixed by:
https://github.com/golang/go/commit/082365aa552a7e2186f79110d5311dce70749cc0
(go1.25.6)
TODO: check, might only affect 1.25 and above
-CVE-2025-61731 [cmd/go: bypass of flag sanitization can lead to arbitrary code
execution]
+CVE-2025-61731 (Building a malicious file with cmd/go can cause can cause a
write to a ...)
- golang-1.25 1.25.6-1 (bug #1125916)
- golang-1.24 1.24.12-1 (bug #1125917)
- golang-1.19 <removed>
@@ -4627,7 +4879,7 @@ CVE-2025-68121 [crypto/tls: Config.Clone copies
automatically generated session
NOTE: https://github.com/golang/go/issues/77113
NOTE: Fixed by:
https://github.com/golang/go/commit/4be38528a68a8b0c4e101576df200c214ad49c26
(go1.25.6)
NOTE: Fixed by:
https://github.com/golang/go/commit/d0754e6242e70e171a888b6c5e0336bbf014e538
(go1.24.12)
-CVE-2025-61726 [net/http: memory exhaustion in Request.ParseForm]
+CVE-2025-61726 (The net/url package does not set a limit on the number of
query parame ...)
- golang-1.25 1.25.6-1 (bug #1125916)
- golang-1.24 1.24.12-1 (bug #1125917)
[trixie] - golang-1.24 <no-dsa> (Minor issue)
@@ -4639,7 +4891,7 @@ CVE-2025-61726 [net/http: memory exhaustion in
Request.ParseForm]
NOTE: https://github.com/golang/go/issues/77101
NOTE: Fixed by:
https://github.com/golang/go/commit/afa9b66ac081d3b239d8c1a226b5e884c8435185
(go1.25.6)
NOTE: Fixed by:
https://github.com/golang/go/commit/85c794ddce26a092b0ea68d0fca79028b5069d5a
(go1.24.12)
-CVE-2025-61728 [archive/zip: denial of service when parsing arbitrary ZIP
archives]
+CVE-2025-61728 (archive/zip uses a super-linear file name indexing algorithm
that is i ...)
- golang-1.25 1.25.6-1 (bug #1125916)
- golang-1.24 1.24.12-1 (bug #1125917)
- golang-1.19 <removed>
@@ -16201,7 +16453,7 @@ CVE-2025-11747 (The Colibri Page Builder plugin for
WordPress is vulnerable to S
NOT-FOR-US: WordPress plugin
CVE-2024-49587 (Glutton V1 service endpoints were exposed without any
authentication o ...)
NOT-FOR-US: Palantir
-CVE-2025-14840
+CVE-2025-14840 (Improper Check for Unusual or Exceptional Conditions
vulnerability in ...)
NOT-FOR-US: Drupal addon
CVE-2025-68491
REJECTED
@@ -74682,14 +74934,14 @@ CVE-2025-23970 (Incorrect Privilege Assignment
vulnerability in aonetheme Servic
NOT-FOR-US: WordPress plugin
CVE-2024-9453 (A vulnerability was found in Red Hat OpenShift Jenkins. The
bearer tok ...)
NOT-FOR-US: Red Hat OpenShift Jenkins
-CVE-2026-23553 [x86: incomplete IBPB for vCPU isolation]
+CVE-2026-23553 (In the context switch logic Xen attempts to skip an IBPB in
the case o ...)
- xen <unfixed>
[bullseye] - xen <end-of-life> (EOLed in Bullseye)
NOTE: https://xenbits.xen.org/xsa/advisory-479.html
CVE-2025-58151 [varstored: TOCTOU issues with mapped guest memory]
- xen-api <removed>
NOTE: https://xenbits.xen.org/xsa/advisory-478.html
-CVE-2025-58150 [x86: buffer overrun with shadow paging + tracing]
+CVE-2025-58150 (Shadow mode tracing code uses a set of per-CPU variables to
avoid cumb ...)
- xen <unfixed>
[bullseye] - xen <end-of-life> (EOLed in Bullseye)
NOTE: https://xenbits.xen.org/xsa/advisory-477.html
@@ -326762,10 +327014,10 @@ CVE-2022-40622 (The WAVLINK Quantum D4G (WN531G3)
running firmware version M31G3
NOT-FOR-US: WAVLINK
CVE-2022-40621 (Because the WAVLINK Quantum D4G (WN531G3) running firmware
version M31 ...)
NOT-FOR-US: WAVLINK
-CVE-2022-40620
- RESERVED
-CVE-2022-40619
- RESERVED
+CVE-2022-40620 (FunJSQ, a third-party module integrated on some NETGEAR
routers and Or ...)
+ TODO: check
+CVE-2022-40619 (FunJSQ, a third-party module integrated on some NETGEAR
routers and Or ...)
+ TODO: check
CVE-2022-40618
RESERVED
CVE-2022-40617 (strongSwan before 5.9.8 allows remote attackers to cause a
denial of s ...)
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/85de5cb09c3f33f1341676dbadf2209211720800
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/85de5cb09c3f33f1341676dbadf2209211720800
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits