Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits: d3f35acc by Salvatore Bonaccorso at 2025-01-27T21:40:53+01:00 Add new set of cacti issues - - - - - 1 changed file: - data/CVE/list Changes: ===================================== data/CVE/list ===================================== @@ -67,9 +67,13 @@ CVE-2025-24537 (Cross-Site Request Forgery (CSRF) vulnerability in The Events Ca CVE-2025-24533 (Cross-Site Request Forgery (CSRF) vulnerability in MetaSlider Responsi ...) NOT-FOR-US: WordPress plugin CVE-2025-24368 (Cacti is an open source performance and fault management framework. So ...) - TODO: check + - cacti <unfixed> + NOTE: https://github.com/Cacti/cacti/security/advisories/GHSA-f9c7-7rc3-574c + NOTE: Fixed by: https://github.com/Cacti/cacti/commit/c7e4ee798d263a3209ae6e7ba182c7b65284d8f0 CVE-2025-24367 (Cacti is an open source performance and fault management framework. An ...) - TODO: check + - cacti <unfixed> + NOTE: https://github.com/Cacti/cacti/security/advisories/GHSA-fxrq-fr7h-9rqq + NOTE: Fixed by: https://github.com/Cacti/cacti/commit/c7e4ee798d263a3209ae6e7ba182c7b65284d8f0 CVE-2025-24365 (vaultwarden is an unofficial Bitwarden compatible server written in Ru ...) TODO: check CVE-2025-24364 (vaultwarden is an unofficial Bitwarden compatible server written in Ru ...) @@ -105,7 +109,9 @@ CVE-2025-23457 (Improper Neutralization of Input During Web Page Generation ('Cr CVE-2025-23197 (matrix-hookshot is a Matrix bot for connecting to external services li ...) TODO: check CVE-2025-22604 (Cacti is an open source performance and fault management framework. Du ...) - TODO: check + - cacti <unfixed> + NOTE: https://github.com/Cacti/cacti/security/advisories/GHSA-c5j8-jxj3-hh36 + NOTE: Fixed by: https://github.com/Cacti/cacti/commit/c7e4ee798d263a3209ae6e7ba182c7b65284d8f0 CVE-2025-22513 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...) NOT-FOR-US: WordPress plugin CVE-2025-0751 (A vulnerability classified as critical has been found in Axiomatic Ben ...) @@ -183,9 +189,13 @@ CVE-2024-55228 (A cross-site scripting (XSS) vulnerability in the Product module CVE-2024-55227 (A cross-site scripting (XSS) vulnerability in the Events/Agenda module ...) TODO: check CVE-2024-54146 (Cacti is an open source performance and fault management framework. Ca ...) - TODO: check + - cacti <unfixed> + NOTE: https://github.com/Cacti/cacti/security/advisories/GHSA-vj9g-p7f2-4wqj + NOTE: Fixed by: https://github.com/Cacti/cacti/commit/c7e4ee798d263a3209ae6e7ba182c7b65284d8f0 CVE-2024-54145 (Cacti is an open source performance and fault management framework. Ca ...) - TODO: check + - cacti <unfixed> + NOTE: https://github.com/Cacti/cacti/security/advisories/GHSA-fh3x-69rr-qqpp + NOTE: Fixed by: https://github.com/Cacti/cacti/commit/c7e4ee798d263a3209ae6e7ba182c7b65284d8f0 CVE-2024-48841 (Network access can be used to execute arbitrary code with elevated pri ...) TODO: check CVE-2024-48420 (Edimax AC1200 Wi-Fi 5 Dual-Band Router BR-6476AC 1.06 is vulnerable to ...) @@ -199,7 +209,10 @@ CVE-2024-48417 (Edimax AC1200 Wi-Fi 5 Dual-Band Router BR-6476AC 1.06 is vulnera CVE-2024-48416 (Edimax AC1200 Wi-Fi 5 Dual-Band Router BR-6476AC 1.06 is vulnerable to ...) TODO: check CVE-2024-45598 (Cacti is an open source performance and fault management framework. Pr ...) - TODO: check + - cacti <unfixed> + NOTE: https://github.com/Cacti/cacti/security/advisories/GHSA-pv2c-97pp-vxwg + NOTE: Fixed by: https://github.com/Cacti/cacti/commit/c7e4ee798d263a3209ae6e7ba182c7b65284d8f0 + NOTE: Fixed by: https://github.com/Cacti/cacti/commit/eca52c6bb3e76c55d66b1040baa6dbf37471a0ae CVE-2024-38325 (IBM Storage Defender 2.0.0 through 2.0.7 on-prem defender-sensor-cmd C ...) TODO: check CVE-2024-38320 (IBM Storage Protect for Virtual Environments: Data Protection for VMwa ...) View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d3f35accf76a65ce7794b7baad7b3ba58c198fdd -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d3f35accf76a65ce7794b7baad7b3ba58c198fdd You're receiving this email because of your account on salsa.debian.org.
_______________________________________________ debian-security-tracker-commits mailing list debian-security-tracker-commits@alioth-lists.debian.net https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits