Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits: 6ef0d787 by Salvatore Bonaccorso at 2023-11-29T21:25:34+01:00 Process some NFUs - - - - - 1 changed file: - data/CVE/list Changes: ===================================== data/CVE/list ===================================== @@ -1,29 +1,29 @@ CVE-2023-6378 (A serialization vulnerability in logback receiver component part of l ...) TODO: check CVE-2023-6218 (In Progress MOVEit Transfer versions released before 2022.0.9 (14.0.9) ...) - TODO: check + NOT-FOR-US: Progress MOVEit Transfer CVE-2023-6217 (In Progress MOVEit Transfer versions released before 2022.0.9 (14.0.9) ...) - TODO: check + NOT-FOR-US: Progress MOVEit Transfer CVE-2023-6070 (A server-side request forgery vulnerability in ESM prior to version 11 ...) - TODO: check + NOT-FOR-US: Trellix CVE-2023-49091 (Cosmos provides users the ability self-host a home server by acting as ...) - TODO: check + NOT-FOR-US: Cosmos CVE-2023-49090 (CarrierWave is a solution for file uploads for Rails, Sinatra and othe ...) - TODO: check + NOT-FOR-US: CarrierWave CVE-2023-49083 (cryptography is a package designed to expose cryptographic primitives ...) TODO: check CVE-2023-49079 (Misskey is an open source, decentralized social media platform. Misske ...) TODO: check CVE-2023-48882 (A stored cross-site scripting (XSS) vulnerability in EyouCMS v1.6.4-UT ...) - TODO: check + NOT-FOR-US: EyouCMS CVE-2023-48881 (A stored cross-site scripting (XSS) vulnerability in EyouCMS v1.6.4-UT ...) - TODO: check + NOT-FOR-US: EyouCMS CVE-2023-48880 (A stored cross-site scripting (XSS) vulnerability in EyouCMS v1.6.4-UT ...) - TODO: check + NOT-FOR-US: EyouCMS CVE-2023-44383 (October is a Content Management System (CMS) and web platform to assis ...) - TODO: check + NOT-FOR-US: October CMS CVE-2023-40626 (The language file parsing process could be manipulated to expose envir ...) - TODO: check + NOT-FOR-US: Joomla! CVE-2023-49674 (A missing permission check in Jenkins NeuVector Vulnerability Scanner ...) NOT-FOR-US: Jenkins plugin CVE-2023-49673 (A cross-site request forgery (CSRF) vulnerability in Jenkins NeuVector ...) View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6ef0d78749420f3b1678e311e6ebe7fd0fcddac0 -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6ef0d78749420f3b1678e311e6ebe7fd0fcddac0 You're receiving this email because of your account on salsa.debian.org.
_______________________________________________ debian-security-tracker-commits mailing list debian-security-tracker-commits@alioth-lists.debian.net https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits