Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
ec377fe9 by security tracker role at 2026-09-05T19:15:18+00:00
automatic NOT-FOR-US entries update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -9,9 +9,9 @@ CVE-2026-86194 (Grav Form Plugin before 9.1.22 fails to verify 
page authorizatio
 CVE-2026-86193 (grav-plugin-api before 1.0.20 fails to validate 
group-inherited super  ...)
        TODO: check
 CVE-2026-86192 (SiYuan versions before v3.8.2 fail to properly filter private 
attribut ...)
-       TODO: check
+       NOT-FOR-US: SiYuan
 CVE-2026-86191 (SiYuan versions before v3.8.2 contain an information 
disclosure vulner ...)
-       TODO: check
+       NOT-FOR-US: SiYuan
 CVE-2026-86190 (WWBN AVideo contains a broken access control vulnerability in 
videoVie ...)
        TODO: check
 CVE-2026-86189 (WWBN AVideo contains a path traversal vulnerability in 
notify.ffmpeg.j ...)
@@ -69,19 +69,19 @@ CVE-2026-86112 (BookWyrm through 0.9.1 fails to validate 
user visibility permiss
 CVE-2026-86111 (BookWyrm through 0.9.1 fails to validate user visibility 
permissions i ...)
        TODO: check
 CVE-2026-85414 (The Gallery : FooGallery plugin for WordPress is vulnerable to 
Stored  ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-83625 (The Contact Form by Supsystic plugin for WordPress is 
vulnerable to St ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-82752 (Improper Validation of Specified Quantity in Input 
vulnerability in as ...)
        TODO: check
 CVE-2026-81543 (The Abandoned Cart Pro for WooCommerce plugin for WordPress is 
vulnera ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-76573 (The Pods \u2013 Custom Content Types and Fields plugin for 
WordPress i ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-75586 (The Unlimited Elements For Elementor plugin for WordPress is 
vulnerabl ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-75018 (The Custom Contact Forms plugin for WordPress is vulnerable to 
authori ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-6554 (libpcap BPF interpreter treats the offset in the 'ja L' BPF 
instructio ...)
        TODO: check
 CVE-2026-6244 (libpcap BPF interpreter for the 'div #k' and 'mod #k' ALU 
instructions ...)
@@ -95,21 +95,21 @@ CVE-2026-18313 (rpcapd can allocate up to 65536 bytes per 
each RPCAP_MSG_UPDATEF
 CVE-2026-18238 (The rpcap client code that processes a RPCAP_MSG_PACKET 
message receiv ...)
        TODO: check
 CVE-2026-15550 (The Ninja Forms - Save Progress plugin for WordPress is 
vulnerable to  ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-12843 (The LearnDash LMS plugin for WordPress is vulnerable to 
authorization  ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-10196 (The Mail Mint \u2013 Email Marketing, Newsletter, Email 
Automation & W ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-0799 (In BPF instructions that load/store a value from/to a scratch 
memory r ...)
        TODO: check
 CVE-2025-9049 (The Nokri \u2013 Job Board WordPress Theme theme for WordPress 
is vuln ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2025-15647 (CDT before 1.4.5 contains an out-of-bounds read vulnerability 
in the o ...)
        TODO: check
 CVE-2025-15614 (ugrep before 7.6.0 contains a heap buffer over-read 
vulnerability in t ...)
        TODO: check
 CVE-2024-11080 (The Post Grid and Gutenberg Blocks \u2013 ComboBlocks plugin 
for WordP ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-49275 [GHSA-hxph-pv7w-8649: Out of bounds read in CrwMap::decodeBasic]
        - exiv2 0.28.9+dfsg-1
        NOTE: 
https://github.com/Exiv2/exiv2/security/advisories/GHSA-hxph-pv7w-8649



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ec377fe931286ba1ce7e648111984f1ff0d07708

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ec377fe931286ba1ce7e648111984f1ff0d07708
You're receiving this email because of your account on salsa.debian.org. Manage 
all notifications: https://salsa.debian.org/-/profile/notifications | Help: 
https://salsa.debian.org/help


_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to