Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
8d7f3534 by Salvatore Bonaccorso at 2026-08-31T09:24:58+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,25 +1,25 @@
 CVE-2026-82727 (Generation of Error Message Containing Sensitive Information 
vulnerabi ...)
-       TODO: check
+       NOT-FOR-US: ash-project ash_phoenix
 CVE-2026-82726 (Permissive Regular Expression vulnerability in ash-project 
ash_phoenix ...)
-       TODO: check
+       NOT-FOR-US: ash-project ash_phoenix
 CVE-2026-82725 (Authorization Bypass Through User-Controlled Key vulnerability 
in ash- ...)
-       TODO: check
+       NOT-FOR-US: ash-project ash_phoenix
 CVE-2026-82724 (Incorrect Authorization vulnerability in ash-project 
ash_phoenix invok ...)
-       TODO: check
+       NOT-FOR-US: ash-project ash_phoenix
 CVE-2026-82722 (Allocation of Resources Without Limits or Throttling 
vulnerability in  ...)
-       TODO: check
+       NOT-FOR-US: ash-project ash_admin
 CVE-2026-82681 (Improper Encoding or Escaping of Output vulnerability in 
ash-project a ...)
-       TODO: check
+       NOT-FOR-US: ash-project ash_admin
 CVE-2026-82673 (Improper Limitation of a Pathname to a Restricted Directory 
(Path Trav ...)
-       TODO: check
+       NOT-FOR-US: ash-project ash_admin
 CVE-2026-82658 (Admidio versions before 5.0.12 contain a broken access control 
vulnera ...)
-       TODO: check
+       NOT-FOR-US: Admidio
 CVE-2026-82657 (Admidio before 5.0.12 fails to enforce login-only module 
restrictions  ...)
-       TODO: check
+       NOT-FOR-US: Admidio
 CVE-2026-82656 (Admidio before 5.0.12 fails to sanitize album names in the 
photo ZIP d ...)
-       TODO: check
+       NOT-FOR-US: Admidio
 CVE-2026-82655 (Admidio before 5.0.12 contains a blind SQL injection 
vulnerability in  ...)
-       TODO: check
+       NOT-FOR-US: Admidio
 CVE-2026-82654 (SiYuan before v3.8.1 fails to properly escape block name, 
alias, and m ...)
        NOT-FOR-US: SiYuan
 CVE-2026-82653 (SiYuan before v3.8.1 contains a stored cross-site scripting 
vulnerabil ...)
@@ -33,17 +33,17 @@ CVE-2026-82650 (SiYuan 3.8.0 contains a path traversal / 
sensitive file exposure
 CVE-2026-82649 (SiYuan Windows installer before version 3.8.1 (affected 
versions >= 2. ...)
        NOT-FOR-US: SiYuan
 CVE-2026-82648 (WWBN AVideo contains a server-side request forgery filter 
bypass vulne ...)
-       TODO: check
+       NOT-FOR-US: WWBN AVideo
 CVE-2026-82647 (WWBN AVideo contains a cross-site request forgery 
vulnerability in sen ...)
-       TODO: check
+       NOT-FOR-US: WWBN AVideo
 CVE-2026-82646 (WWBN AVideo contains an unauthenticated reflected cross-site 
scripting ...)
-       TODO: check
+       NOT-FOR-US: WWBN AVideo
 CVE-2026-82645 (AVideo (current commit e01e41ecc and earlier) exposes stream 
credentia ...)
-       TODO: check
+       NOT-FOR-US: WWBN AVideo
 CVE-2026-82644 (WWBN AVideo (current e01e41ecc and earlier) contains a 
brute-force rat ...)
-       TODO: check
+       NOT-FOR-US: WWBN AVideo
 CVE-2026-82643 (WWBN AVideo contains an unauthenticated credential submission 
vulnerab ...)
-       TODO: check
+       NOT-FOR-US: WWBN AVideo
 CVE-2026-82642 (Readest is an open-source e-book reader built on Tauri. In 
versions pr ...)
        TODO: check
 CVE-2026-82641 (keploy versions 3.1.0 through 3.6.25 bind the agent 
control-plane HTTP ...)



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8d7f35344371de39949d8fcb6362d5e14d51ddec

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8d7f35344371de39949d8fcb6362d5e14d51ddec
You're receiving this email because of your account on salsa.debian.org. Manage 
all notifications: https://salsa.debian.org/-/profile/notifications | Help: 
https://salsa.debian.org/help


_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to