Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
7bf98550 by security tracker role at 2026-09-09T07:13:51+00:00
automatic NOT-FOR-US entries update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,5 +1,5 @@
 CVE-2026-8615 (The Reviso Exporter for WooCommerce plugin for WordPress is 
vulnerable ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-87747 (The Enterprise Cloud Database developed by Ragic has an 
Arbitrary File ...)
        TODO: check
 CVE-2026-87737 (An issue was discovered in the mirage-crypto-ec package before 
2.4.0 f ...)
@@ -477,53 +477,53 @@ CVE-2026-87430 (Buffer overflow in WebRTC in Google 
Chrome prior to 153.0.8010.3
 CVE-2026-87429 (Missing authorization in ServiceWorker in Google Chrome prior 
to 153.0 ...)
        TODO: check
 CVE-2026-87088 (Tanium addressed an unauthorized code execution vulnerability 
in Enfor ...)
-       TODO: check
+       NOT-FOR-US: Tanium
 CVE-2026-87084 (Tanium addressed a server-side request forgery vulnerability 
in Enforc ...)
-       TODO: check
+       NOT-FOR-US: Tanium
 CVE-2026-87083 (A weakness has been identified in tile-ai tilelang up to 
0.1.14. This  ...)
        TODO: check
 CVE-2026-87075 (Tanium addressed an improper access controls vulnerability in 
Comply.)
-       TODO: check
+       NOT-FOR-US: Tanium
 CVE-2026-87073 (Tanium addressed an improper access controls vulnerability in 
Comply.)
-       TODO: check
+       NOT-FOR-US: Tanium
 CVE-2026-87072 (Tanium addressed an improper access controls vulnerability in 
Comply.)
-       TODO: check
+       NOT-FOR-US: Tanium
 CVE-2026-87048 (Tanium addressed an improper access controls vulnerability in 
Comply.)
-       TODO: check
+       NOT-FOR-US: Tanium
 CVE-2026-87047 (Tanium addressed an improper access controls vulnerability in 
Comply.)
-       TODO: check
+       NOT-FOR-US: Tanium
 CVE-2026-87046 (Tanium addressed an improper access controls vulnerability in 
Comply.)
-       TODO: check
+       NOT-FOR-US: Tanium
 CVE-2026-87037 (Tanium addressed an improper access controls vulnerability in 
Comply.)
-       TODO: check
+       NOT-FOR-US: Tanium
 CVE-2026-87036 (Tanium addressed an improper access controls vulnerability in 
Comply.)
-       TODO: check
+       NOT-FOR-US: Tanium
 CVE-2026-87035 (Tanium addressed an information disclosure vulnerability in 
Comply.)
-       TODO: check
+       NOT-FOR-US: Tanium
 CVE-2026-87034 (Tanium addressed a SQL injection vulnerability in Comply.)
-       TODO: check
+       NOT-FOR-US: Tanium
 CVE-2026-87033 (Tanium addressed an improper access controls vulnerability in 
Comply.)
-       TODO: check
+       NOT-FOR-US: Tanium
 CVE-2026-87032 (Tanium addressed an information disclosure vulnerability in 
Tanium Ser ...)
-       TODO: check
+       NOT-FOR-US: Tanium
 CVE-2026-87030 (Tanium addressed a path traversal vulnerability in Comply.)
-       TODO: check
+       NOT-FOR-US: Tanium
 CVE-2026-87025 (Tanium addressed an improper access controls vulnerability in 
Comply.)
-       TODO: check
+       NOT-FOR-US: Tanium
 CVE-2026-87023 (Tanium addressed a path traversal vulnerability in Comply.)
-       TODO: check
+       NOT-FOR-US: Tanium
 CVE-2026-87021 (Tanium addressed an unauthorized code execution vulnerability 
in Compl ...)
-       TODO: check
+       NOT-FOR-US: Tanium
 CVE-2026-87019 (Tanium addressed an improper access controls vulnerability in 
Comply.)
-       TODO: check
+       NOT-FOR-US: Tanium
 CVE-2026-86996 (n8n is an open source workflow automation platform. Prior to 
2.37.7 an ...)
-       TODO: check
+       NOT-FOR-US: n8n
 CVE-2026-86995 (n8n is an open source workflow automation platform. Prior to 
1.123.76, ...)
-       TODO: check
+       NOT-FOR-US: n8n
 CVE-2026-86994 (n8n is an open source workflow automation platform. Prior to 
1.123.76, ...)
-       TODO: check
+       NOT-FOR-US: n8n
 CVE-2026-86993 (n8n is an open source workflow automation platform. Prior to 
1.123.76, ...)
-       TODO: check
+       NOT-FOR-US: n8n
 CVE-2026-86819 (Waves Central for macOS contains a local privilege escalation 
in the p ...)
        TODO: check
 CVE-2026-86810 (A vulnerability was detected in Open-Web-Analytics up to 
1.9.1. The im ...)
@@ -535,27 +535,27 @@ CVE-2026-86806 (A weakness has been identified in 
opengeos GeoLibre up to 2.3.0.
 CVE-2026-86464 (In the current development version of Eclipse aeriOS, for 
which no off ...)
        TODO: check
 CVE-2026-86085 (n8n is an open source workflow automation platform. Prior to 
2.37.7 an ...)
-       TODO: check
+       NOT-FOR-US: n8n
 CVE-2026-86084 (n8n is an open source workflow automation platform. Prior to 
1.123.76, ...)
-       TODO: check
+       NOT-FOR-US: n8n
 CVE-2026-86083 (n8n is an open source workflow automation platform. Prior to 
1.123.76, ...)
-       TODO: check
+       NOT-FOR-US: n8n
 CVE-2026-86082 (n8n is an open source workflow automation platform. Prior to 
1.123.76, ...)
-       TODO: check
+       NOT-FOR-US: n8n
 CVE-2026-86081 (n8n is an open source workflow automation platform. Prior to 
1.123.76, ...)
-       TODO: check
+       NOT-FOR-US: n8n
 CVE-2026-86080 (n8n is an open source workflow automation platform. Prior to 
1.123.76, ...)
-       TODO: check
+       NOT-FOR-US: n8n
 CVE-2026-86079 (n8n is an open source workflow automation platform. Prior to 
1.123.76, ...)
-       TODO: check
+       NOT-FOR-US: n8n
 CVE-2026-86078 (n8n is an open source workflow automation platform. Prior to 
2.37.7 an ...)
-       TODO: check
+       NOT-FOR-US: n8n
 CVE-2026-86077 (n8n is an open source workflow automation platform. Prior to 
2.37.7 an ...)
-       TODO: check
+       NOT-FOR-US: n8n
 CVE-2026-86076 (n8n is an open source workflow automation platform. Prior to 
1.123.76, ...)
-       TODO: check
+       NOT-FOR-US: n8n
 CVE-2026-86075 (n8n is an open source workflow automation platform. Prior to 
2.37.7 an ...)
-       TODO: check
+       NOT-FOR-US: n8n
 CVE-2026-85983 (The Auth0 AD/LDAP Connector improperly processes a 
configuration value ...)
        TODO: check
 CVE-2026-85982 (The Auth0 AD/LDAP Connector is vulnerable to stored Cross-Site 
Scripti ...)
@@ -563,145 +563,145 @@ CVE-2026-85982 (The Auth0 AD/LDAP Connector is 
vulnerable to stored Cross-Site S
 CVE-2026-85981 (The administrative panel of the Auth0 AD/LDAP Connector 
(versions 6.5. ...)
        TODO: check
 CVE-2026-85418 (The Orbit Fox: Duplicate Page, Menu Icons, SVG Support, Cookie 
Notice, ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-85133 (The WPLP Cookie Consent  WordPress plugin before 4.4.2 does 
not perfor ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-85132 (The WPLP Cookie Consent  WordPress plugin before 4.4.2 does 
not perfor ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-85117 (The Contact Form 7 Captcha WordPress plugin before 0.1.9 runs 
the shor ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-85037 (The Sunshine Photo Cart  WordPress plugin before 3.7 does not 
validate ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-84942 (Improper input validation in the Vega expression function 
implementati ...)
-       TODO: check
+       NOT-FOR-US: Amazon
 CVE-2026-84908 (The WPFunnels plugin for WordPress is vulnerable to Missing 
Authorizat ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-84869 (A condition in the ScreenConnect client may allow files to be 
transfer ...)
        TODO: check
 CVE-2026-84685 (The react-native-auth0 SDK's web platform implementation does 
not scop ...)
        TODO: check
 CVE-2026-84293 (The Repeater Fields for Gravity Forms plugin for WordPress is 
vulnerab ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-84222 (The Kirki  WordPress plugin before 6.3.0 does not check 
whether the re ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-84197 (In Eclipse Ditto's Node.js JavaScript client, all released 
versions of ...)
        TODO: check
 CVE-2026-84113 (The Quentn WP WordPress plugin before 1.2.15 does not properly 
sanitis ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-84068 (The Quentn WP WordPress plugin before 1.2.15 does not 
adequately escap ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-83593 (The WPBot \u2013 AI ChatBot for Live Support, Lead Generation, 
AI Serv ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-83541 (The Sina Extension for Elementor WordPress plugin before 
3.10.4 does n ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-83537 (The WP Express Checkout WordPress plugin before 2.5.0 does not 
verify  ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-82848 (The Masteriyo LMS  WordPress plugin before 3.4.0 does not 
perform any  ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-82185 (The WPLP Cookie Consent  WordPress plugin before 4.4.2 does 
not have c ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-82184 (The WPLP Cookie Consent  WordPress plugin before 4.4.2 does 
not have a ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-82007 (Photoshop Desktop is affected by an Integer Overflow or 
Wraparound vul ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-82006 (Photoshop Desktop is affected by a Heap-based Buffer Overflow 
vulnerab ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-82005 (Photoshop Desktop is affected by an out-of-bounds write 
vulnerability  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-82001 (Acrobat Reader is affected by an Uncontrolled Resource 
Consumption vul ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-81997 (Acrobat Reader is affected by an Incorrect Authorization 
vulnerability ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-81996 (Acrobat Reader is affected by an Incorrect Authorization 
vulnerability ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-81994 (Acrobat Reader is affected by an Improperly Controlled 
Modification of ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-81993 (Acrobat Reader is affected by a Heap-based Buffer Overflow 
vulnerabili ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-81992 (Acrobat Reader is affected by a Heap-based Buffer Overflow 
vulnerabili ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-81991 (Acrobat Reader is affected by an out-of-bounds read 
vulnerability that ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-81990 (Acrobat Reader is affected by a Use After Free vulnerability 
that coul ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-81989 (Acrobat Reader is affected by a Use After Free vulnerability 
that coul ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-81988 (Acrobat Reader is affected by a Use After Free vulnerability 
that coul ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-81987 (Acrobat Reader is affected by an Integer Overflow or 
Wraparound vulner ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-81986 (Acrobat Reader is affected by a Use After Free vulnerability 
that coul ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-81985 (Acrobat Reader is affected by a Use After Free vulnerability 
that coul ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-81984 (Acrobat Reader is affected by a Use After Free vulnerability 
that coul ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-81983 (Acrobat Reader is affected by an out-of-bounds write 
vulnerability tha ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-81982 (Acrobat Reader is affected by an out-of-bounds read 
vulnerability that ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-81981 (Acrobat Reader is affected by an out-of-bounds write 
vulnerability tha ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-81980 (Acrobat Reader is affected by an out-of-bounds write 
vulnerability tha ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-81979 (Acrobat Reader is affected by an out-of-bounds write 
vulnerability tha ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-81978 (Acrobat Reader is affected by an out-of-bounds read 
vulnerability that ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-81977 (Acrobat Reader is affected by an Integer Underflow (Wrap or 
Wraparound ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-81976 (Acrobat Reader is affected by a Use After Free vulnerability 
that coul ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-81975 (Acrobat Reader is affected by a Use After Free vulnerability 
that coul ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-81973 (Acrobat Reader is affected by a Use After Free vulnerability 
that coul ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-81904 (Concrete CMS below 9.5.3 registered view assets for every 
sub-block of ...)
        TODO: check
 CVE-2026-81741 (The Groundhogg \u2014 CRM, Newsletters, and Marketing 
Automation WordP ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-81647 (Out-of-bounds read vulnerability in the graphics module. 
Impact: Succe ...)
-       TODO: check
+       NOT-FOR-US: Huawei
 CVE-2026-81646 (Out-of-bounds read vulnerability in the graphics module. 
Impact: Succe ...)
-       TODO: check
+       NOT-FOR-US: Huawei
 CVE-2026-81644 (DoS vulnerability in the preview service module. Impact: 
Successful ex ...)
-       TODO: check
+       NOT-FOR-US: Huawei
 CVE-2026-81192 (`OpenTelemetry.Resources.Host` NuGet package, which provides 
OpenTelem ...)
        TODO: check
 CVE-2026-81022 (The SupportCandy  WordPress plugin before 3.5.3 does not 
validate a su ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-81021 (The SupportCandy  WordPress plugin before 3.5.3 does not 
perform an au ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-80440 (The Hustle WordPress plugin before 7.8.14.2 does not prevent 
shortcode ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-80341 (The Payment Plugins for PayPal WooCommerce WordPress plugin 
before 2.0 ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-80340 (The Payment Plugins for PayPal WooCommerce WordPress plugin 
before 2.0 ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-80339 (The Payment Plugins for Stripe WooCommerce WordPress plugin 
before 4.0 ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-80162 (Acrobat Reader is affected by a Use After Free vulnerability 
that coul ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-80161 (Acrobat Reader is affected by an Access of Resource Using 
Incompatible ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-80160 (Acrobat Reader is affected by an out-of-bounds read 
vulnerability that ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-80159 (Acrobat Reader is affected by an Untrusted Search Path 
vulnerability t ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-7809
        REJECTED
 CVE-2026-7804 (The Product Filter for WooCommerce by WBW plugin for WordPress 
is vuln ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-79910 (Acrobat Reader is affected by an out-of-bounds read 
vulnerability that ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-79909 (Acrobat Reader is affected by a Use After Free vulnerability 
that coul ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-79908 (Acrobat Reader is affected by an out-of-bounds write 
vulnerability tha ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-79907 (Acrobat Reader is affected by a Double Free vulnerability that 
could r ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-79905 (Adobe Experience Manager is affected by a stored Cross-Site 
Scripting  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-79588 (U-speed WIFI4 N300 T1 Pro v1.0.0 is vulnerable to Cleartext 
transmissi ...)
        TODO: check
 CVE-2026-78971 (In Halo <= 2.25.4, the plugin management feature allows users 
to insta ...)
@@ -751,223 +751,223 @@ CVE-2026-78545 (The Okta Access Gateway does not 
sanitize the application label
 CVE-2026-77827 (Maono Link 3.8.13 MaonoAiServices Windows service allows local 
privile ...)
        TODO: check
 CVE-2026-77187 (The My Calendar \u2013 Accessible Event Manager plugin for 
WordPress i ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-77186 (The My Calendar \u2013 Accessible Event Manager plugin for 
WordPress i ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-76801 (The FireBox \u2013 WooCommerce Popup Builder, Exit Intent 
Popup, Email ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-76199 (Photoshop Desktop is affected by an Uncontrolled Search Path 
Element v ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-76190 (ColdFusion is affected by an Improper Neutralization of 
Directives in  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-76009 (The Next-Cart Store to WooCommerce Migration plugin for 
WordPress is v ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-76002 (ColdFusion is affected by a reflected Cross-Site Scripting 
(XSS) vulne ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-76000 (ColdFusion is affected by an Uncontrolled Resource Consumption 
vulnera ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75999 (ColdFusion is affected by an Improper Input Validation 
vulnerability t ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75998 (ColdFusion is affected by an Improper Access Control 
vulnerability tha ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75993 (ColdFusion is affected by a reflected Cross-Site Scripting 
(XSS) vulne ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75992 (Illustrator is affected by an out-of-bounds write 
vulnerability that c ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75991 (Illustrator is affected by an Improper Input Validation 
vulnerability  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75990 (Illustrator is affected by an Incorrect Authorization 
vulnerability th ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75966 (The Podlove Podcast Publisher plugin for WordPress is 
vulnerable to St ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-75905 (The WP Recipe Maker plugin for WordPress is vulnerable to 
authorizatio ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-75863 (Photoshop Desktop is affected by an Integer Overflow or 
Wraparound vul ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75862 (Photoshop Desktop is affected by an Integer Overflow or 
Wraparound vul ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75861 (The Ultimate Gift Cards for WooCommerce WordPress plugin 
before 3.2.10 ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-75771 (Photoshop Desktop is affected by an Integer Overflow or 
Wraparound vul ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75746 (ColdFusion is affected by an Improper Neutralization of 
Special Elemen ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75742 (Adobe Experience Manager is affected by a stored Cross-Site 
Scripting  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75741 (Adobe Experience Manager is affected by a stored Cross-Site 
Scripting  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75740 (Adobe Experience Manager is affected by a stored Cross-Site 
Scripting  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75739 (Adobe Experience Manager is affected by a stored Cross-Site 
Scripting  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75738 (Adobe Experience Manager is affected by a stored Cross-Site 
Scripting  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75737 (Adobe Experience Manager is affected by a stored Cross-Site 
Scripting  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75736 (Adobe Experience Manager is affected by a stored Cross-Site 
Scripting  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75735 (Adobe Experience Manager is affected by a stored Cross-Site 
Scripting  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75734 (Adobe Experience Manager is affected by a stored Cross-Site 
Scripting  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75733 (Adobe Experience Manager is affected by a stored Cross-Site 
Scripting  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75731 (Adobe Experience Manager is affected by a stored Cross-Site 
Scripting  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75730 (Adobe Experience Manager is affected by a stored Cross-Site 
Scripting  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75729 (Adobe Experience Manager is affected by a stored Cross-Site 
Scripting  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75727 (Adobe Experience Manager is affected by a stored Cross-Site 
Scripting  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75726 (Adobe Experience Manager is affected by an Improper Input 
Validation v ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75725 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75724 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75722 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75720 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75719 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75718 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75717 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75716 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75715 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75714 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75713 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75712 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75711 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75710 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75709 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75708 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75707 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75706 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75705 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75704 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75702 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75701 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75700 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75696 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75695 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75694 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75693 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75692 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75691 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75690 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75687 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75685 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75683 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75681 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75680 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75679 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75678 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75677 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75675 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75674 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75672 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75671 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75670 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75669 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75668 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75667 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75666 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75661 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75660 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75659 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75657 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75652 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75651 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75647 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75646 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75644 (Adobe Experience Manager is affected by a stored Cross-Site 
Scripting  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75643 (Adobe Experience Manager is affected by a stored Cross-Site 
Scripting  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75642 (Adobe Experience Manager is affected by a stored Cross-Site 
Scripting  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75640 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75639 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75637 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75636 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75635 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75631 (Photoshop Desktop is affected by an out-of-bounds write 
vulnerability  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-75629 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-72627 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-72626 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-71565 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-71440 (Adobe Experience Manager is affected by a stored Cross-Site 
Scripting  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-71388 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-71357 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-71356 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-6485 (UEFI BIOS embedded Shell could be used to bypass Secure Boot 
via shell ...)
-       TODO: check
+       NOT-FOR-US: Insyde
 CVE-2026-55250 (Maravel, a PHP framework oriented towards dependency 
injection, prior  ...)
        TODO: check
 CVE-2026-53939 (OpenIDC/cjose is a C library implementing the Javascript 
Object Signin ...)
@@ -989,21 +989,21 @@ CVE-2026-53581 (OPNsense is a FreeBSD based firewall and 
routing platform. Prior
 CVE-2026-52486 (An issue in OpenDDS 3.33.x allows a local attacker to cause a 
denial o ...)
        TODO: check
 CVE-2026-49883 (In checkReadPermission of PermissionsManager.java, there is a 
possible ...)
-       TODO: check
+       NOT-FOR-US: Android
 CVE-2026-49315 (DoS vulnerability in the input device module. Impact: 
Successful explo ...)
-       TODO: check
+       NOT-FOR-US: Huawei
 CVE-2026-49314 (OOB write vulnerability in the rendering and composition 
module. Impac ...)
-       TODO: check
+       NOT-FOR-US: Huawei
 CVE-2026-49313 (Permission control vulnerability in the app lock module. 
Impact: Succe ...)
-       TODO: check
+       NOT-FOR-US: Huawei
 CVE-2026-49312 (Permission control vulnerability in the window module. Impact: 
Success ...)
-       TODO: check
+       NOT-FOR-US: Huawei
 CVE-2026-49311 (Permission control vulnerability in the event notification 
module.Impa ...)
-       TODO: check
+       NOT-FOR-US: Huawei
 CVE-2026-49310 (Permission control vulnerability in the event notification 
module. Imp ...)
-       TODO: check
+       NOT-FOR-US: Huawei
 CVE-2026-49309 (Permission control vulnerability in the Settings module. 
Impact: Succe ...)
-       TODO: check
+       NOT-FOR-US: Huawei
 CVE-2026-49156
        REJECTED
 CVE-2026-49155
@@ -1013,7 +1013,7 @@ CVE-2026-49154
 CVE-2026-49153
        REJECTED
 CVE-2026-48273 (ColdFusion is affected by an Improper Neutralization of 
Directives in  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-47680 (The source-controller is a Kubernetes operator, specialised in 
artifac ...)
        TODO: check
 CVE-2026-45220
@@ -1021,155 +1021,155 @@ CVE-2026-45220
 CVE-2026-45219
        REJECTED
 CVE-2026-41987 (Permission control vulnerability in the app management module. 
Impact: ...)
-       TODO: check
+       NOT-FOR-US: Huawei
 CVE-2026-30754 (A memory corruption vulnerability exists in FFmpeg before 8.1. 
The RTP ...)
        TODO: check
 CVE-2026-28659 (In MicroXR Blobstore, there is a possible way to access other 
app's fi ...)
-       TODO: check
+       NOT-FOR-US: Android
 CVE-2026-27227 (Adobe Experience Manager is affected by a stored Cross-Site 
Scripting  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-21113 (Improper export of android application components in Visual 
Voicemail  ...)
-       TODO: check
+       NOT-FOR-US: Samsung Mobile
 CVE-2026-21112 (Improper input validation in Samsung Tips prior to Android 17 
allows l ...)
-       TODO: check
+       NOT-FOR-US: Samsung Mobile
 CVE-2026-21111 (Out-of-bounds write in libsthmbc.so prior to One UI 8.5 allows 
local a ...)
-       TODO: check
+       NOT-FOR-US: Samsung Mobile
 CVE-2026-21110 (Out-of-bounds write in libsavscmn.so prior to One UI 8.5 
allows local  ...)
-       TODO: check
+       NOT-FOR-US: Samsung Mobile
 CVE-2026-21109 (Improper access control in Watch Plugin prior to Android Watch 
17 allo ...)
-       TODO: check
+       NOT-FOR-US: Samsung Mobile
 CVE-2026-21108 (Improper export of android application components in Bixby 
Touch prior ...)
-       TODO: check
+       NOT-FOR-US: Samsung Mobile
 CVE-2026-21107 (Out-of-bounds write in Samsung Notes prior to version 4.4.45.5 
allows  ...)
-       TODO: check
+       NOT-FOR-US: Samsung Mobile
 CVE-2026-21106 (Improper verification of intent by broadcast receiver in 
Samsung Cloud ...)
-       TODO: check
+       NOT-FOR-US: Samsung Mobile
 CVE-2026-21105 (Improper access control in Collection prior to version 
1.0.1.14 in And ...)
-       TODO: check
+       NOT-FOR-US: Samsung Mobile
 CVE-2026-21104 (Heap-based buffer overflow in KnoxVault trustlet prior to SMR 
Sep-2026 ...)
-       TODO: check
+       NOT-FOR-US: Samsung Mobile
 CVE-2026-21103 (Path traversal in GalaxyDiagnostics prior to SMR Sep-2026 
Release 1 al ...)
-       TODO: check
+       NOT-FOR-US: Samsung Mobile
 CVE-2026-21102 (Use after free in DualDAR prior to SMR Sep-2026 Release 1 
allows local ...)
-       TODO: check
+       NOT-FOR-US: Samsung Mobile
 CVE-2026-21101 (Improper input validation in DualDAR driver prior to SMR 
Sep-2026 Rele ...)
-       TODO: check
+       NOT-FOR-US: Samsung Mobile
 CVE-2026-21100 (Improper access control in SystemUI prior to SMR Sep-2026 
Release 1 al ...)
-       TODO: check
+       NOT-FOR-US: Samsung Mobile
 CVE-2026-21099 (Improper access control in SettingsProvider prior to SMR 
Sep-2026 Rele ...)
-       TODO: check
+       NOT-FOR-US: Samsung Mobile
 CVE-2026-21098 (Improper access control in Link to Windows prior to SMR 
Sep-2026 Relea ...)
-       TODO: check
+       NOT-FOR-US: Samsung Mobile
 CVE-2026-21097 (Improper authentication in ActivityTaskManagerService prior to 
SMR Sep ...)
-       TODO: check
+       NOT-FOR-US: Samsung Mobile
 CVE-2026-21096 (Heap-based buffer overflow in JPEG decoder of 
libimagecodec.quram.so p ...)
-       TODO: check
+       NOT-FOR-US: Samsung Mobile
 CVE-2026-21095 (Heap-based buffer overflow in DNG decoder of 
libimagecodec.quram.so pr ...)
-       TODO: check
+       NOT-FOR-US: Samsung Mobile
 CVE-2026-21094 (Improper input validation in wpa_supplicant prior to SMR 
Sep-2026 Rele ...)
-       TODO: check
+       NOT-FOR-US: Samsung Mobile
 CVE-2026-21093 (Stack-based buffer overflow in PROCA trustlet prior to SMR 
Sep-2026 Re ...)
-       TODO: check
+       NOT-FOR-US: Samsung Mobile
 CVE-2026-21092 (Path traversal in ImsService prior to SMR Sep-2026 Release 1 
allows re ...)
-       TODO: check
+       NOT-FOR-US: Samsung Mobile
 CVE-2026-21091 (Out-of-bounds write in libcodec2secevrcdec.so prior to SMR 
Sep-2026 Re ...)
-       TODO: check
+       NOT-FOR-US: Samsung Mobile
 CVE-2026-21090 (Out-of-bounds write in libsaviextractor.so prior to SMR 
Sep-2026 Relea ...)
-       TODO: check
+       NOT-FOR-US: Samsung Mobile
 CVE-2026-21089 (Improper input validation in removing style tag in 
libsubextractor.so  ...)
-       TODO: check
+       NOT-FOR-US: Samsung Mobile
 CVE-2026-21088 (Improper input validation in loading a subtitle frame in 
libsubextract ...)
-       TODO: check
+       NOT-FOR-US: Samsung Mobile
 CVE-2026-21087 (Out-of-bounds write in libmdnie.so prior to SMR Sep-2026 
Release 1 all ...)
-       TODO: check
+       NOT-FOR-US: Samsung Mobile
 CVE-2026-21086 (Improper authorization in ProxyHandler prior to SMR Aug-2026 
Release 1 ...)
-       TODO: check
+       NOT-FOR-US: Samsung Mobile
 CVE-2026-21085 (Out-of-bounds write in Keymaster trustlet prior to SMR 
Sep-2026 Releas ...)
-       TODO: check
+       NOT-FOR-US: Samsung Mobile
 CVE-2026-19946 (The Awesome Support plugin for WordPress is vulnerable to 
Missing Auth ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-19945 (The WP Crowdfunding plugin for WordPress is vulnerable to 
Stored Cross ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-19944 (The WP Crowdfunding plugin for WordPress is vulnerable to 
generic SQL  ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-19855 (The CleanTalk WordPress plugin before 6.87 does not prevent 
unauthenti ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-19802 (The Checkout Custom Fields Builder for WooCommerce plugin for 
WordPres ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-19800 (The Mail Mint \u2013 Email Marketing, Newsletter, Email 
Automation & W ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-19797 (The User Access Manager plugin for WordPress is vulnerable to 
Reflecte ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-19713 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-19644 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-19612 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-19479 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-19232 (Adobe Experience Manager is affected by an Incorrect 
Authorization vul ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2026-19201 (An uncontrolled recursion vulnerability in the Windows SIPA 
event log  ...)
        TODO: check
 CVE-2026-18042 (The WP Travel  WordPress plugin before 12.0.2 does not verify 
that the ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-17553 (The WP EasyCart plugin for WordPress is vulnerable to 
privilege escala ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-16960 (The Loops & Logic WordPress plugin before 4.3.0 does not 
restrict its  ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-15667 (The Eventin \u2013 Event Calendar, Event Registration, Tickets 
& Booki ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-15406 (The Eventin \u2013 Event Calendar, Event Registration, Tickets 
& Booki ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-14962 (The ELEX WooCommerce Request a Quote WordPress plugin before 
2.4.1 doe ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-14892 (Tanium addressed an improper access controls vulnerability in 
Tanium S ...)
-       TODO: check
+       NOT-FOR-US: Tanium
 CVE-2026-14505 (Tanium addressed a path traversal vulnerability in Tanium Data 
Service ...)
-       TODO: check
+       NOT-FOR-US: Tanium
 CVE-2026-13709 (The Graphina \u2013 Charts and Graphs For Elementor plugin for 
WordPre ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-13359 (The Contact Form to DB by BestWebSoft \u2013 Messages Database 
Plugin  ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-13146 (The WP Travel  WordPress plugin before 12.0.2 does not 
properly verify ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-13144 (The WP Travel  WordPress plugin before 12.0.2 does not 
properly verify ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-12956 (The WP Event Solution (Eventin) plugin for WordPress is 
vulnerable to  ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-12855 (Unvalidated memory boundary could result in arbitrary code 
execution.  ...)
-       TODO: check
+       NOT-FOR-US: Insyde
 CVE-2026-11821 (The Eventin \u2013 Event Calendar, Event Registration, Tickets 
& Booki ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-11363 (The Ninja Forms \u2013 The Contact Form Builder That Grows 
With You pl ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2025-7062 (A stored cross-site scripting (XSS) vulnerability has been 
identified  ...)
        TODO: check
 CVE-2025-64868 (Adobe Experience Manager is affected by a stored Cross-Site 
Scripting  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2025-64866 (Adobe Experience Manager is affected by a stored Cross-Site 
Scripting  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2025-64854 (Adobe Experience Manager is affected by a stored Cross-Site 
Scripting  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2025-64838 (Adobe Experience Manager is affected by a stored Cross-Site 
Scripting  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2025-64830 (Adobe Experience Manager is affected by a stored Cross-Site 
Scripting  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2025-64618 (Adobe Experience Manager is affected by a stored Cross-Site 
Scripting  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2025-64610 (Adobe Experience Manager is affected by a stored Cross-Site 
Scripting  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2025-64589 (Adobe Experience Manager is affected by a stored Cross-Site 
Scripting  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2025-64588 (Adobe Experience Manager is affected by a stored Cross-Site 
Scripting  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2025-64584 (Adobe Experience Manager is affected by a stored Cross-Site 
Scripting  ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2025-64542 (Adobe Experience Manager is affected by a DOM-based Cross-Site 
Scripti ...)
-       TODO: check
+       NOT-FOR-US: Adobe
 CVE-2025-15690 (The Content Mask WordPress plugin before 1.8.5.6 does not 
properly san ...)
-       TODO: check
+       NOT-FOR-US: WordPress plugin
 CVE-2026-87065
        NOT-FOR-US: konflux-operator-tasks
 CVE-2026-87064



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7bf98550081557dba6cf0029b71f3472aeb6114a

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7bf98550081557dba6cf0029b71f3472aeb6114a
You're receiving this email because of your account on salsa.debian.org. Manage 
all notifications: https://salsa.debian.org/-/profile/notifications | Help: 
https://salsa.debian.org/help


_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to