Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
5a49f901 by Moritz Muehlenhoff at 2025-04-01T10:15:38+02:00
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -9,7 +9,7 @@ CVE-2025-3059 (Vulnerability in Drupal Profile Private.This 
issue affects Profil
 CVE-2025-3057 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
        TODO: check
 CVE-2025-3045 (A vulnerability, which was classified as critical, was found in 
oretno ...)
-       TODO: check
+       NOT-FOR-US: SourceCodester
 CVE-2025-3043 (A vulnerability, which was classified as critical, has been 
found in G ...)
        TODO: check
 CVE-2025-3042 (A vulnerability classified as critical was found in Project 
Worlds Onl ...)
@@ -19,15 +19,15 @@ CVE-2025-3041 (A vulnerability classified as critical has 
been found in Project
 CVE-2025-3040 (A vulnerability was found in Project Worlds Online Time Table 
Generato ...)
        TODO: check
 CVE-2025-3039 (A vulnerability was found in code-projects Payroll Management 
System 1 ...)
-       TODO: check
+       NOT-FOR-US: code-projects
 CVE-2025-3038 (A vulnerability was found in code-projects Payroll Management 
System 1 ...)
-       TODO: check
+       NOT-FOR-US: code-projects
 CVE-2025-3037 (A vulnerability has been found in yzk2356911358 
StudentServlet-JSP cc0 ...)
        TODO: check
 CVE-2025-3036 (A vulnerability, which was classified as problematic, was found 
in yzk ...)
        TODO: check
 CVE-2025-3018 (A vulnerability, which was classified as critical, was found in 
Source ...)
-       TODO: check
+       NOT-FOR-US: SourceCodester
 CVE-2025-3017 (A vulnerability, which was classified as critical, has been 
found in T ...)
        TODO: check
 CVE-2025-3016 (A vulnerability classified as problematic was found in Open 
Asset Impo ...)
@@ -105,23 +105,23 @@ CVE-2025-31515
 CVE-2025-31415 (Missing Authorization vulnerability in YayCommerce YayExtra 
allows Exp ...)
        TODO: check
 CVE-2025-31409 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-31194 (An authentication issue was addressed with improved state 
management.  ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-31192 (The issue was addressed with improved checks. This issue is 
fixed in S ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-31191 (This issue was addressed through improved state management. 
This issue ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-31188 (A race condition was addressed with additional validation. 
This issue  ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-31187 (This issue was addressed by removing the vulnerable code. This 
issue i ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-31184 (This issue was addressed with improved permissions checking. 
This issu ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-31183 (The issue was addressed with improved restriction of data 
container ac ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-31182 (This issue was addressed with improved handling of symlinks. 
This issu ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-31095 (Authentication Bypass Using an Alternate Path or Channel 
vulnerability ...)
        TODO: check
 CVE-2025-31087 (Deserialization of Untrusted Data vulnerability in 
silverplugins217 Mu ...)
@@ -129,373 +129,373 @@ CVE-2025-31087 (Deserialization of Untrusted Data 
vulnerability in silverplugins
 CVE-2025-31084 (Deserialization of Untrusted Data vulnerability in 
sunshinephotocart S ...)
        TODO: check
 CVE-2025-31074 (Deserialization of Untrusted Data vulnerability in MDJM MDJM 
Event Man ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-31024 (Improper Neutralization of Special Elements used in an SQL 
Command ('S ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-31001 (Debug Messages Revealing Unnecessary Information vulnerability 
in TLA  ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30971 (Improper Neutralization of Special Elements used in an SQL 
Command ('S ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30926 (Missing Authorization vulnerability in KingAddons.com King 
Addons for  ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30924 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30917 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30911 (Improper Control of Generation of Code ('Code Injection') 
vulnerabilit ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30910 (Improper Limitation of a Pathname to a Restricted Directory 
('Path Tra ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30902 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30901 (Improper Control of Filename for Include/Require Statement in 
PHP Prog ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30886 (Improper Neutralization of Special Elements used in an SQL 
Command ('S ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30882 (Improper Limitation of a Pathname to a Restricted Directory 
('Path Tra ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30880 (Missing Authorization vulnerability in JoomSky JS Help Desk 
allows Exp ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30878 (Improper Limitation of a Pathname to a Restricted Directory 
('Path Tra ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30876 (Improper Neutralization of Special Elements used in an SQL 
Command ('S ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30870 (Improper Control of Filename for Include/Require Statement in 
PHP Prog ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30869 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30849 (Improper Control of Filename for Include/Require Statement in 
PHP Prog ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30848 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30840 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30837 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30834 (Path Traversal vulnerability in Bit Apps Bit Assist allows 
Path Traver ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30827 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30808 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30802 (Exposure of Sensitive System Information to an Unauthorized 
Control Sp ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30798 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30797 (Missing Authorization vulnerability in bigdrop.gr Greek Multi 
Tool \u2 ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30796 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30794 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30793 (Improper Limitation of a Pathname to a Restricted Directory 
('Path Tra ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30782 (Improper Control of Filename for Include/Require Statement in 
PHP Prog ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30774 (Improper Neutralization of Special Elements used in an SQL 
Command ('S ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30622 (Improper Neutralization of Special Elements used in an SQL 
Command ('S ...)
        TODO: check
 CVE-2025-30614 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30613 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30607 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30594 (Improper Limitation of a Pathname to a Restricted Directory 
('Path Tra ...)
        TODO: check
 CVE-2025-30589 (Improper Neutralization of Special Elements used in an SQL 
Command ('S ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30579 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30563 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30559 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30548 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30547 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30544 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30520 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-30471 (A validation issue was addressed with improved logic. This 
issue is fi ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30470 (A path handling issue was addressed with improved logic. This 
issue is ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30469 (This issue was addressed through improved state management. 
This issue ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30467 (The issue was addressed with improved checks. This issue is 
fixed in S ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30465 (A permissions issue was addressed with improved validation. 
This issue ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30464 (An out-of-bounds write issue was addressed with improved 
bounds checki ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30463 (The issue was addressed with improved restriction of data 
container ac ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30462 (A library injection issue was addressed with additional 
restrictions.  ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30461 (An access issue was addressed with additional sandbox 
restrictions on  ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30460 (A permissions issue was addressed by removing vulnerable code 
and addi ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30458 (A permissions issue was addressed with additional 
restrictions. This i ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30457 (This issue was addressed with improved validation of symlinks. 
This is ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30456 (A parsing issue in the handling of directory paths was 
addressed with  ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30455 (The issue was addressed with improved checks. This issue is 
fixed in m ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30454 (A path handling issue was addressed with improved validation. 
This iss ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30452 (The issue was addressed with improved checks. This issue is 
fixed in m ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30451 (This issue was addressed with improved redaction of sensitive 
informat ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30450 (This issue was addressed with improved validation of symlinks. 
This is ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30449 (A permissions issue was addressed with additional 
restrictions. This i ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30447 (The issue was resolved by sanitizing logging This issue is 
fixed in vi ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30446 (A permissions issue was addressed with additional 
restrictions. This i ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30444 (A race condition was addressed with improved locking. This 
issue is fi ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30443 (A privacy issue was addressed by removing the vulnerable code. 
This is ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30441 (This issue was addressed through improved state management. 
This issue ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30439 (The issue was addressed with improved checks. This issue is 
fixed in v ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30438 (This issue was addressed with improved access restrictions. 
This issue ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30437 (The issue was addressed with improved bounds checks. This 
issue is fix ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30435 (This issue was addressed with improved redaction of sensitive 
informat ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30434 (The issue was addressed with improved input sanitization. This 
issue i ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30433 (This issue was addressed with improved access restrictions. 
This issue ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30432 (A logic issue was addressed with improved state management. 
This issue ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30430 (This issue was addressed through improved state management. 
This issue ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30429 (A path handling issue was addressed with improved validation. 
This iss ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30428 (This issue was addressed through improved state management. 
This issue ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30427 (A use-after-free issue was addressed with improved memory 
management.  ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30426 (This issue was addressed with additional entitlement checks. 
This issu ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30425 (This issue was addressed through improved state management. 
This issue ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-30424 (A logging issue was addressed with improved data redaction. 
This issue ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-2891 (The Real Estate 7 WordPress theme for WordPress is vulnerable 
to arbit ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2025-2048 (The Lana Downloads Manager WordPress plugin before 1.10.0 does 
not val ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2025-2008 (The Import Export Suite for CSV and XML Datafeed plugin for 
WordPress  ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2025-2007 (The Import Export Suite for CSV and XML Datafeed plugin for 
WordPress  ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2025-26683 (Improper authorization in Azure Playwright allows an 
unauthorized atta ...)
        TODO: check
 CVE-2025-24283 (A logging issue was addressed with improved data redaction. 
This issue ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24282 (A library injection issue was addressed with additional 
restrictions.  ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24281 (This issue was addressed with improved data protection. This 
issue is  ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24280 (An access issue was addressed with additional sandbox 
restrictions. Th ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24279 (This issue was addressed with improved file handling. This 
issue is fi ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24278 (This issue was addressed with improved validation of symlinks. 
This is ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24277 (A parsing issue in the handling of directory paths was 
addressed with  ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24276 (This issue was addressed by removing the vulnerable code. This 
issue i ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24273 (An out-of-bounds write issue was addressed with improved 
bounds checki ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24272 (The issue was addressed with improved checks. This issue is 
fixed in m ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24269 (The issue was addressed with improved memory handling. This 
issue is f ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24267 (A permissions issue was addressed with additional 
restrictions. This i ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24266 (A buffer overflow was addressed with improved bounds checking. 
This is ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24265 (An out-of-bounds read was addressed with improved bounds 
checking. Thi ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24264 (The issue was addressed with improved memory handling. This 
issue is f ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24263 (A privacy issue was addressed by moving sensitive data to a 
protected  ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24262 (A privacy issue was addressed with improved private data 
redaction for ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24261 (The issue was addressed with improved checks. This issue is 
fixed in m ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24260 (The issue was addressed with improved memory handling. This 
issue is f ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24259 (This issue was addressed with additional entitlement checks. 
This issu ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24257 (An out-of-bounds write issue was addressed with improved input 
validat ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24256 (The issue was addressed with improved bounds checks. This 
issue is fix ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24255 (A file access issue was addressed with improved input 
validation. This ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24254 (This issue was addressed with improved validation of symlinks. 
This is ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24253 (This issue was addressed with improved handling of symlinks. 
This issu ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24250 (This issue was addressed with improved access restrictions. 
This issue ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24249 (A permissions issue was addressed with additional sandbox 
restrictions ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24248 (A permissions issue was addressed with additional 
restrictions. This i ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24247 (A type confusion issue was addressed with improved checks. 
This issue  ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24246 (An injection issue was addressed with improved validation. 
This issue  ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24245 (This issue was addressed by adding a delay between 
verification code a ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24244 (The issue was addressed with improved memory handling. This 
issue is f ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24243 (The issue was addressed with improved memory handling. This 
issue is f ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24242 (This issue was addressed with improved handling of symlinks. 
This issu ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24241 (A configuration issue was addressed with additional 
restrictions. This ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24240 (A race condition was addressed with additional validation. 
This issue  ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24239 (A downgrade issue was addressed with additional code-signing 
restricti ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24238 (A logic issue was addressed with improved checks. This issue 
is fixed  ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24237 (A buffer overflow was addressed with improved bounds checking. 
This is ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24236 (An access issue was addressed with additional sandbox 
restrictions. Th ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24235 (A memory initialization issue was addressed with improved 
memory handl ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24234 (This issue was addressed by removing the vulnerable code. This 
issue i ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24233 (A permissions issue was addressed with additional 
restrictions. This i ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24232 (This issue was addressed through improved state management. 
This issue ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24231 (The issue was addressed with improved checks. This issue is 
fixed in m ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24230 (An out-of-bounds read issue was addressed with improved input 
validati ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24229 (A logic issue was addressed with improved checks. This issue 
is fixed  ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24228 (A buffer overflow issue was addressed with improved memory 
handling. T ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24226 (The issue was addressed with improved checks. This issue is 
fixed in X ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24221 (This issue was addressed with improved data access 
restriction. This i ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24218 (A privacy issue was addressed with improved private data 
redaction for ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24217 (This issue was addressed with improved redaction of sensitive 
informat ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24216 (The issue was addressed with improved memory handling. This 
issue is f ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24215 (The issue was addressed with improved checks. This issue is 
fixed in m ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24214 (A privacy issue was addressed by not logging contents of text 
fields.  ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24213 (This issue was addressed with improved handling of floats. 
This issue  ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24212 (This issue was addressed with improved checks. This issue is 
fixed in  ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24211 (This issue was addressed with improved memory handling. This 
issue is  ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24210 (A logic error was addressed with improved error handling. This 
issue i ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24209 (A buffer overflow issue was addressed with improved memory 
handling. T ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24208 (A permissions issue was addressed with additional 
restrictions. This i ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24207 (A permissions issue was addressed with additional 
restrictions. This i ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24205 (An authorization issue was addressed with improved state 
management. T ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24204 (The issue was addressed with improved checks. This issue is 
fixed in m ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24203 (The issue was addressed with improved checks. This issue is 
fixed in m ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24202 (A logging issue was addressed with improved data redaction. 
This issue ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24199 (An uncontrolled format string issue was addressed with 
improved input  ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24198 (This issue was addressed by restricting options offered on a 
locked de ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24196 (A type confusion issue was addressed with improved memory 
handling. Th ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24195 (An integer overflow was addressed with improved input 
validation. This ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24194 (A logic issue was addressed with improved checks. This issue 
is fixed  ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24193 (This issue was addressed with improved authentication. This 
issue is f ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24192 (A script imports issue was addressed with improved isolation. 
This iss ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24191 (The issue was addressed with improved validation of 
environment variab ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24190 (The issue was addressed with improved memory handling. This 
issue is f ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24182 (An out-of-bounds read issue was addressed with improved input 
validati ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24181 (A permissions issue was addressed with additional 
restrictions. This i ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24180 (The issue was addressed with improved input validation. This 
issue is  ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24178 (This issue was addressed through improved state management. 
This issue ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24173 (This issue was addressed with additional entitlement checks. 
This issu ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24172 (A permissions issue was addressed with additional sandbox 
restrictions ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24170 (A logic issue was addressed with improved file handling. This 
issue is ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24167 (This issue was addressed through improved state management. 
This issue ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24164 (A logic issue was addressed with improved checks. This issue 
is fixed  ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24157 (A buffer overflow issue was addressed with improved memory 
handling. T ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24148 (This issue was addressed with improved handling of executable 
types. T ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24097 (A permissions issue was addressed with additional 
restrictions. This i ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-24095 (This issue was addressed with additional entitlement checks. 
This issu ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2025-22277 (Authentication Bypass Using an Alternate Path or Channel 
vulnerability ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin or theme
 CVE-2025-21384 (An authenticated attacker can exploit an Server-Side Request 
Forgery ( ...)
        TODO: check
 CVE-2025-1986 (The Gutentor  WordPress plugin before 3.4.7 does not sanitize 
and esca ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2025-1665 (The Avada (Fusion) Builder plugin for WordPress is vulnerable 
to Store ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2025-1534 (CVE-79: Improper Neutralization of Input During Web Page 
Generation (' ...)
        TODO: check
 CVE-2025-1512 (The PowerPack Elementor Addons (Free Widgets, Extensions and 
Templates ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2025-1267 (The Groundhogg plugin for Wordpress is vulnerable to Stored 
Cross-Site ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2025-0418 (Valmet DNA user passwords in plain text.This practice poses a 
security ...)
        TODO: check
 CVE-2025-0417 (Lack of protection against brute force attacks in Valmet DNA 
visualiza ...)
@@ -519,17 +519,17 @@ CVE-2024-54803 (Netgear WNR854T 1.5.2 (North America) is 
vulnerable to Command I
 CVE-2024-54802 (In Netgear WNR854T 1.5.2 (North America), the UPNP service 
(/usr/sbin/ ...)
        TODO: check
 CVE-2024-54533 (A permissions issue was addressed with additional sandbox 
restrictions ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2024-40864 (The issue was addressed with improved handling of protocols. 
This issu ...)
-       TODO: check
+       NOT-FOR-US: Apple
 CVE-2024-24456 (An E-RAB Release Command packet containing a malformed NAS 
PDUwill cau ...)
-       TODO: check
+       NOT-FOR-US: HPE
 CVE-2024-13567 (The Awesome Support \u2013 WordPress HelpDesk & Support Plugin 
plugin  ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2024-12278 (The Booster for WooCommerce plugin for WordPress is vulnerable 
to Stor ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2024-12189 (The WDesignKit \u2013 Elementor & Gutenberg Starter Templates, 
Pattern ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2025-27427 (A vulnerability exists in Apache ActiveMQ Artemis whereby a 
user with  ...)
        NOT-FOR-US: Apache ActiveMQ Artemis
 CVE-2025-30065 (Schema parsing in the parquet-avro module of Apache Parquet 
1.15.0 and ...)



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5a49f90148c151bdf5f89feb83a7111724b44196

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5a49f90148c151bdf5f89feb83a7111724b44196
You're receiving this email because of your account on salsa.debian.org.


_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to