Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
2808b007 by Salvatore Bonaccorso at 2026-09-14T13:38:45+02:00
Process some NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -77,21 +77,21 @@ CVE-2026-90598 (A vulnerability was detected in jaygajera17
E-commerce-project-s
CVE-2026-90597 (A security vulnerability has been detected in itsourcecode
Sales and I ...)
NOT-FOR-US: itsourcecode System
CVE-2026-90596 (A weakness has been identified in embedded-graphics up to
0.8.2 on 32- ...)
- TODO: check
+ NOT-FOR-US: embedded-graphics
CVE-2026-90595 (A security flaw has been discovered in wxiaoqi
Spring-Cloud-Platform 1 ...)
- TODO: check
+ NOT-FOR-US: wxiaoqi Spring-Cloud-Platform
CVE-2026-90594 (A vulnerability was identified in wxiaoqi
Spring-Cloud-Platform 3.0.1/ ...)
- TODO: check
+ NOT-FOR-US: wxiaoqi Spring-Cloud-Platform
CVE-2026-90593 (A vulnerability was determined in embedded-graphics up to
0.8.2. This ...)
- TODO: check
+ NOT-FOR-US: embedded-graphics
CVE-2026-90584 (A weakness has been identified in TooTallNate Java-WebSocket
up to 1.6 ...)
- TODO: check
+ NOT-FOR-US: TooTallNate Java-WebSocket
CVE-2026-90583 (A security flaw has been discovered in kagisearch smallweb up
to 0ecb9 ...)
- TODO: check
+ NOT-FOR-US: kagisearch smallweb
CVE-2026-90582 (A vulnerability was identified in evanchiu serverless-todo
1.0.3/2.0.0 ...)
- TODO: check
+ NOT-FOR-US: evanchiu serverless-todo
CVE-2026-90581 (A vulnerability was determined in cym1102 nginxWebUI up to
4.4.2. This ...)
- TODO: check
+ NOT-FOR-US: cym1102 nginxWebUI
CVE-2026-90580 (A vulnerability was found in FlowiseAI Flowise up to 3.0.2.
This vulne ...)
NOT-FOR-US: Flowise
CVE-2026-89050 (The Quads Ads Manager for Google AdSense WordPress plugin
before 3.0.5 ...)
@@ -121,83 +121,83 @@ CVE-2026-85188 (Joomla Extension - regularlabs.com -
Database data disclosure in
CVE-2026-85129 (The Hoo Companion WordPress plugin 1.0.2 does not have any
authorisati ...)
NOT-FOR-US: WordPress plugin
CVE-2026-85125 (The Android application "YAMAP -Social Trekking GPS App"
contains an i ...)
- TODO: check
+ NOT-FOR-US: Android application "YAMAP -Social Trekking GPS App"
CVE-2026-82796 (SolarView Compact contains a cross-site scripting
vulnerability in Ima ...)
- TODO: check
+ NOT-FOR-US: SolarView Compact
CVE-2026-82795 (SolarView Compact contains a cross-site scripting
vulnerability in Sch ...)
- TODO: check
+ NOT-FOR-US: SolarView Compact
CVE-2026-82794 (SolarView Compact contains an OS command Injection
vulnerability in in ...)
- TODO: check
+ NOT-FOR-US: SolarView Compact
CVE-2026-82793 (Unrestricted upload of file with dangerous type issue exists
in Contec ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-82792 (Cross-site scripting vulnerability exists in Contec CAN 2.0B
Communica ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-82791 (Improper neutralization of special elements used in an OS
command ('OS ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-82790 (Cross-site scripting vulnerability exists in PC-HELPER
Wireless I/O DI ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-82789 (An improper neutralization of directives in dynamically
evaluated code ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-82788 (Cross-site scripting vulnerability exists in CPSL-08P1EN. If
this vuln ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-82787 (Missing authentication for critical function vulnerability
exists in C ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-82786 (Insufficiently protected credentials issue exists in Remote
I/O Couple ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-82785 (Stack-based buffer overflow vulnerability exists in Remote I/O
Coupler ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-82784 (Missing authentication for critical function vulnerability
exists in R ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-82783 (Plaintext storage of a password issue exists in CONPROSYS nano
Series ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-82782 (Out-of-bounds write vulnerability exists in CONPROSYS nano
Series. Rec ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-82781 (Cross-site scripting vulnerability exists in CONPROSYS nano
Series. If ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-82780 (Unrestricted upload of file with dangerous type issue exists
in CONPRO ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-82779 (Improper neutralization of special elements used in an OS
command ('OS ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-82778 (An exposure of information through directory listing issue
exists in C ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-82777 (Improper neutralization of special elements used in an OS
command ('OS ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-82776 (Cross-site scripting vulnerability exists in CONPROSYS PAC
Series. If ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-82775 (An exposure of information through directory listing issue
exists in C ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-82774 (Improper neutralization of special elements used in an OS
command ('OS ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-82773 (Cross-site scripting vulnerability exists in CONPROSYS M2M
Gateway Ser ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-82772 (Buffer overflow vulnerability exists in Contec EC1000 series.
If a rem ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-82771 (Cross-site scripting vulnerability exists in Contec EC1000
series. If ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-82770 (Buffer overflow vulnerability exists in Contec RP-WAH-SR
Series. If a ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-82769 (Cross-site scripting vulnerability exists in Contec RP-WAH-SR
Series. ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-82768 (Path traversal vulnerability exists in SGA1000. If this
vulnerability ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-82767 (Cross-site scripting vulnerability exists in SGA1000. If this
vulnerab ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-82766 (Improper neutralization of special elements used in an OS
command ('OS ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-82765 (Path traversal vulnerability exists in Contec FX5000 series,
FX4000 se ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-82764 (Cross-site request forgery vulnerability exists in multiple
Contec pro ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-82763 (Cross-site scripting vulnerability exists in Contec FX5000
series, FX4 ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-82762 (Improper neutralization of special elements used in an OS
command ('OS ...)
- TODO: check
+ NOT-FOR-US: Contec
CVE-2026-81648 (The CryptoPayment Gateway WordPress plugin from 1.2.1 to 1.2.2
does no ...)
NOT-FOR-US: WordPress plugin
CVE-2026-74933 (The GenieWords WordPress plugin from 1.5.27 to 1.5.34 does not
have au ...)
NOT-FOR-US: WordPress plugin
CVE-2026-68955 (The installer for Rakuten Kobo Desktop Application (Windows
version) i ...)
- TODO: check
+ NOT-FOR-US: installer for Rakuten Kobo Desktop Application (Windows
version)
CVE-2026-52297 (FFmpeg before 9.0 has an out-of-bounds read because there is
insuffici ...)
TODO: check
CVE-2026-52296 (FFmpeg before 9.0 has an out-of-bounds read because of missing
require ...)
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2808b0079af005d2028a62a2a8fe0865fecce5ba
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2808b0079af005d2028a62a2a8fe0865fecce5ba
You're receiving this email because of your account on salsa.debian.org. Manage
all notifications: https://salsa.debian.org/-/profile/notifications | Help:
https://salsa.debian.org/help
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits