Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
f0f5799b by Salvatore Bonaccorso at 2026-06-24T10:35:25+02:00
Process two NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -77,7 +77,7 @@ CVE-2026-54639 (Style Dictionary, a build system for creating
cross-platform sty
CVE-2026-54588 (Poweradmin is a web-based DNS administration tool for PowerDNS
server. ...)
NOT-FOR-US: Poweradmin
CVE-2026-54555 (rtk filters and compresses command outputs before they reach
your LLM ...)
- TODO: check
+ NOT-FOR-US: rtk-ai rtk
CVE-2026-54518 (jackson-databind contains the general-purpose data-binding
functionali ...)
- jackson-databind <unfixed>
NOTE:
https://github.com/FasterXML/jackson-databind/security/advisories/GHSA-rcqc-6cw3-h962
@@ -204,7 +204,7 @@ CVE-2026-46548 (NocoDB is software for building databases
as spreadsheets. Prior
CVE-2026-46547 (NocoDB is software for building databases as spreadsheets.
Prior to 20 ...)
NOT-FOR-US: NocoDB
CVE-2026-45792 (rtk filters and compresses command outputs before they reach
your LLM ...)
- TODO: check
+ NOT-FOR-US: rtk-ai rtk
CVE-2026-41862 (Spring Statemachine's Kryo-based persistence backends (JPA,
MongoDB, R ...)
TODO: check
CVE-2026-3652 (The ARForms plugin for WordPress is vulnerable to Stored
Cross-Site Sc ...)
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f0f5799bbcdb4caca2bc9a0f098676c3f4013c00
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f0f5799bbcdb4caca2bc9a0f098676c3f4013c00
You're receiving this email because of your account on salsa.debian.org. Manage
all notifications: https://salsa.debian.org/-/profile/notifications | Help:
https://salsa.debian.org/help
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits