Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
e9c75f3d by Salvatore Bonaccorso at 2025-01-29T22:16:02+01:00
Add CVE-2025-24374/php-twig

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -11,7 +11,10 @@ CVE-2025-24789 (Snowflake JDBC provides a JDBC type 4 driver 
that supports core
 CVE-2025-24527 (An issue was discovered in Akamai Enterprise Application 
Access (EAA)  ...)
        NOT-FOR-US: Akamai
 CVE-2025-24374 (Twig is a template language for PHP. When using the ?? 
operator, outpu ...)
-       TODO: check
+       - php-twig <unfixed>
+       - twig <removed>
+       NOTE: 
https://github.com/twigphp/Twig/security/advisories/GHSA-3xg3-cgvq-2xwr
+       NOTE: 
https://github.com/twigphp/Twig/commit/38576b12f05df3cc871bf68f39ccb46b418334a3 
(v3.19.0)
 CVE-2025-20061 (mySCADA myPRO does not properly neutralize POST requests sent 
to a spe ...)
        NOT-FOR-US: mySCADA myPRO
 CVE-2025-20014 (mySCADA myPRO does not properly neutralize POST requests sent 
to a spe ...)



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e9c75f3da46628a526fcdc0200409379bf45630f

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e9c75f3da46628a526fcdc0200409379bf45630f
You're receiving this email because of your account on salsa.debian.org.


_______________________________________________
debian-security-tracker-commits mailing list
debian-security-tracker-commits@alioth-lists.debian.net
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to