Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
9f300f91 by Salvatore Bonaccorso at 2025-09-08T22:26:36+02:00
Process some NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -25,21 +25,21 @@ CVE-2025-55998 (A cross-site scripting (XSS) vulnerability
in Smart Search & Fil
CVE-2025-55849 (WeiPHP v5.0 and before is vulnerable to SQL Injection via the
SucaiCon ...)
NOT-FOR-US: WeiPHP
CVE-2025-54994 (@akoskm/create-mcp-server-stdio is an MCP server starter kit
that uses ...)
- TODO: check
+ NOT-FOR-US: akoskm/create-mcp-server-stdio
CVE-2025-53838 (LinkAce is a self-hosted archive to collect website links. A
stored cr ...)
- TODO: check
+ NOT-FOR-US: LinkAce
CVE-2025-52389 (An Insecure Direct Object Reference (IDOR) in Envasadora H2O
Eireli - ...)
- TODO: check
+ NOT-FOR-US: Envasadora H2O Eireli - Soda Cristal
CVE-2025-52161 (Scholl Communications AG Weblication CMS Core v019.004.000.000
was dis ...)
- TODO: check
+ NOT-FOR-US: Scholl Communications AG Weblication CMS Core
CVE-2025-51586 (An issue was discoverd in file
controllers/admin/AdminLoginController. ...)
- TODO: check
+ NOT-FOR-US: PrestaShop
CVE-2025-43722 (Dell PowerScale OneFS, versions prior to 9.12.0.0, contains an
imprope ...)
NOT-FOR-US: Dell / EMC
CVE-2025-40642 (Reflected Cross-Site Scripting (XSS) vulnerability in WebWork,
which a ...)
- TODO: check
+ NOT-FOR-US: WebWork
CVE-2025-40641 (Cross-site Scripting (XSS) vulnerability stored in
Multi-Purpose Inven ...)
- TODO: check
+ NOT-FOR-US: Multi-Purpose Inventory Management System
CVE-2025-3212 (Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel
Driver, Arm ...)
TODO: check
CVE-2025-36855 (A vulnerability ( CVE-2025-21176 https://www.cve.org/CVERecord
) exist ...)
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9f300f918945dece65e0d676c52dbe535e0a3b88
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9f300f918945dece65e0d676c52dbe535e0a3b88
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits