Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
29be98c3 by Salvatore Bonaccorso at 2026-09-04T22:09:20+02:00
Process some NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1493,19 +1493,19 @@ CVE-2026-63219 (GeoNetwork is a catalog application to
manage spatially referenc
CVE-2026-58400 (GeoNetwork is a catalog application to manage spatially
referenced res ...)
NOT-FOR-US: GeoNetwork
CVE-2026-57445 (Gardens v2 is a modular governance framework that enables
communities ...)
- TODO: check
+ NOT-FOR-US: Gardens
CVE-2026-56128 (pfSense Plus before 26.07 and CE before 2.9.0 allow
authenticated user ...)
- TODO: check
+ NOT-FOR-US: pfSense Plus
CVE-2026-56127 (pfSense Plus before 26.07 and CE before 2.9.0 allow
authenticated user ...)
- TODO: check
+ NOT-FOR-US: pfSense Plus
CVE-2026-56126 (pfSense Plus before 26.07 and CE before 2.9.0 allow
authenticated user ...)
- TODO: check
+ NOT-FOR-US: pfSense Plus
CVE-2026-55658 (Gardens v2 is a modular governance framework that enables
communities ...)
- TODO: check
+ NOT-FOR-US: Gardens
CVE-2026-53924 (Gardens v2 is a modular governance framework that enables
communities ...)
- TODO: check
+ NOT-FOR-US: Gardens
CVE-2026-53720 (pymonocypher uses cython to wrap the Monocypher C library.
Prior to ve ...)
- TODO: check
+ NOT-FOR-US: pymonocypher
CVE-2026-50554 (Note Mark is an open-source note-taking application. Prior to
version ...)
TODO: check
CVE-2026-49456 (Waku is the minimal React framework. Prior to version
1.0.0-beta.1, th ...)
@@ -3948,7 +3948,7 @@ CVE-2026-54599 (Wallos is an open-source, self-hostable
personal subscription tr
CVE-2026-54598 (Wallos is an open-source, self-hostable personal subscription
tracker. ...)
NOT-FOR-US: Wallos
CVE-2026-54179 (backpack/crud provides Create, Read, Update & Delete (CRUD)
functions ...)
- TODO: check
+ NOT-FOR-US: backpack/crud
CVE-2026-52730 (Xibo is an open source digital signage platform with a web
content man ...)
NOT-FOR-US: Xibo
CVE-2026-51740 (Incorrect access control in the killProcess function of
TOTOLINK T6 4. ...)
@@ -4323,17 +4323,17 @@ CVE-2026-63083
CVE-2026-5956 (Improper neutralization of special elements used in an SQL
command ('S ...)
NOT-FOR-US: Site Management Panel
CVE-2026-59111 (Improper neutralization of special elements used in an OS
command ('OS ...)
- TODO: check
+ NOT-FOR-US: Ministry of the Interior eObananka-Identifikace
CVE-2026-58301 (When Apache Shiro is used with the Jakarta EE integration
module, a lo ...)
TODO: check
CVE-2026-53553 (Goploy is an open-source automation deployment system. Prior
to versio ...)
- TODO: check
+ NOT-FOR-US: Goploy
CVE-2026-53552 (Goploy is an open-source automation deployment system. In
versions 1.1 ...)
- TODO: check
+ NOT-FOR-US: Goploy
CVE-2026-53508 (oasdiff is a command-line and Go package that compares and
detects bre ...)
- TODO: check
+ NOT-FOR-US: oasdiff
CVE-2026-53507 (oasdiff-action is a GitHub Action that detects breaking
changes in Ope ...)
- TODO: check
+ NOT-FOR-US: oasdiff-action
CVE-2026-51730 (Incorrect access control in the delWiFiAclRules function of
TOTOLINK T ...)
NOT-FOR-US: TOTOLINK
CVE-2026-51729 (Incorrect access control in the delDevice function of TOTOLINK
T6 4.1. ...)
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/29be98c30711108ad6664a5a3a63526887bb32de
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/29be98c30711108ad6664a5a3a63526887bb32de
You're receiving this email because of your account on salsa.debian.org. Manage
all notifications: https://salsa.debian.org/-/profile/notifications | Help:
https://salsa.debian.org/help
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits