Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
e6831d5c by security tracker role at 2025-04-09T20:12:34+00:00
automatic update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,353 @@
+CVE-2025-3475 (Allocation of Resources Without Limits or Throttling, Incorrect 
Author ...)
+       TODO: check
+CVE-2025-3474 (Missing Authentication for Critical Function vulnerability in 
Drupal P ...)
+       TODO: check
+CVE-2025-3131 (Cross-Site Request Forgery (CSRF) vulnerability in Drupal ECA: 
Event - ...)
+       TODO: check
+CVE-2025-3115 (Injection Vulnerabilities: Attackers can inject malicious code, 
potent ...)
+       TODO: check
+CVE-2025-3114 (Code Execution via Malicious Files:Attackers can create 
specially craf ...)
+       TODO: check
+CVE-2025-32695 (Incorrect Privilege Assignment vulnerability in Mestres do WP 
Checkout ...)
+       TODO: check
+CVE-2025-32694 (URL Redirection to Untrusted Site ('Open Redirect') 
vulnerability in R ...)
+       TODO: check
+CVE-2025-32693 (URL Redirection to Untrusted Site ('Open Redirect') 
vulnerability in W ...)
+       TODO: check
+CVE-2025-32692 (Improper Control of Filename for Include/Require Statement in 
PHP Prog ...)
+       TODO: check
+CVE-2025-32691 (Server-Side Request Forgery (SSRF) vulnerability in Angelo 
Mandato Pow ...)
+       TODO: check
+CVE-2025-32690 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
+       TODO: check
+CVE-2025-32685 (Improper Neutralization of Special Elements used in an SQL 
Command ('S ...)
+       TODO: check
+CVE-2025-32684 (Missing Authorization vulnerability in RomanCode MapSVG Lite 
allows Ex ...)
+       TODO: check
+CVE-2025-32683 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
+       TODO: check
+CVE-2025-32680 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
+       TODO: check
+CVE-2025-32679 (Cross-Site Request Forgery (CSRF) vulnerability in ZealousWeb 
User Reg ...)
+       TODO: check
+CVE-2025-32678 (Cross-Site Request Forgery (CSRF) vulnerability in Ashish 
Ajani WP Sho ...)
+       TODO: check
+CVE-2025-32677 (Improper Neutralization of Special Elements used in an SQL 
Command ('S ...)
+       TODO: check
+CVE-2025-32676 (Improper Neutralization of Special Elements used in an SQL 
Command ('S ...)
+       TODO: check
+CVE-2025-32675 (Server-Side Request Forgery (SSRF) vulnerability in 
QuantumCloud SEO H ...)
+       TODO: check
+CVE-2025-32673 (Cross-Site Request Forgery (CSRF) vulnerability in epeken 
Epeken All K ...)
+       TODO: check
+CVE-2025-32669 (Cross-Site Request Forgery (CSRF) vulnerability in MERGADO 
Mergado Pac ...)
+       TODO: check
+CVE-2025-32667 (Cross-Site Request Forgery (CSRF) vulnerability in fromdoppler 
Doppler ...)
+       TODO: check
+CVE-2025-32664 (Cross-Site Request Forgery (CSRF) vulnerability in ashokbasnet 
Nepali  ...)
+       TODO: check
+CVE-2025-32661 (Cross-Site Request Forgery (CSRF) vulnerability in WP Map 
Plugins Inte ...)
+       TODO: check
+CVE-2025-32659 (Cross-Site Request Forgery (CSRF) vulnerability in 
fraudlabspro FraudL ...)
+       TODO: check
+CVE-2025-32645 (Cross-Site Request Forgery (CSRF) vulnerability in Hiren Patel 
Custom  ...)
+       TODO: check
+CVE-2025-32644 (Cross-Site Request Forgery (CSRF) vulnerability in ip2location 
IP2Loca ...)
+       TODO: check
+CVE-2025-32642 (Cross-Site Request Forgery (CSRF) vulnerability in appsbd Vite 
Coupon  ...)
+       TODO: check
+CVE-2025-32641 (Cross-Site Request Forgery (CSRF) vulnerability in anantaddons 
Anant A ...)
+       TODO: check
+CVE-2025-32640 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
+       TODO: check
+CVE-2025-32624 (Missing Authorization vulnerability in czater Czater.pl \u2013 
live ch ...)
+       TODO: check
+CVE-2025-32623 (Cross-Site Request Forgery (CSRF) vulnerability in plainware 
PlainInve ...)
+       TODO: check
+CVE-2025-32621 (Cross-Site Request Forgery (CSRF) vulnerability in Vsourz 
Digital WP M ...)
+       TODO: check
+CVE-2025-32619 (Cross-Site Request Forgery (CSRF) vulnerability in KeyCAPTCHA 
KeyCAPTC ...)
+       TODO: check
+CVE-2025-32617 (Cross-Site Request Forgery (CSRF) vulnerability in 
Ydesignservices Mul ...)
+       TODO: check
+CVE-2025-32616 (Cross-Site Request Forgery (CSRF) vulnerability in nimbata 
Nimbata Cal ...)
+       TODO: check
+CVE-2025-32612 (Cross-Site Request Forgery (CSRF) vulnerability in rafasashi 
User Sess ...)
+       TODO: check
+CVE-2025-32610 (Cross-Site Request Forgery (CSRF) vulnerability in 
Foliovision: Making ...)
+       TODO: check
+CVE-2025-32597 (Cross-Site Request Forgery (CSRF) vulnerability in George 
Sexton WordP ...)
+       TODO: check
+CVE-2025-32591 (Cross-Site Request Forgery (CSRF) vulnerability in Kevon 
Adonis WP Abs ...)
+       TODO: check
+CVE-2025-32584 (Cross-Site Request Forgery (CSRF) vulnerability in Chat2 Chat2 
allows  ...)
+       TODO: check
+CVE-2025-32581 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
+       TODO: check
+CVE-2025-32580 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
+       TODO: check
+CVE-2025-32576 (Cross-Site Request Forgery (CSRF) vulnerability in Agence web 
Eoxia -  ...)
+       TODO: check
+CVE-2025-32575 (Cross-Site Request Forgery (CSRF) vulnerability in axew3 WP 
w3all phpB ...)
+       TODO: check
+CVE-2025-32570 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
+       TODO: check
+CVE-2025-32563 (Cross-Site Request Forgery (CSRF) vulnerability in dangrossman 
WP Cala ...)
+       TODO: check
+CVE-2025-32559 (Cross-Site Request Forgery (CSRF) vulnerability in REVE Chat 
REVE Chat ...)
+       TODO: check
+CVE-2025-32556 (Cross-Site Request Forgery (CSRF) vulnerability in Sandor 
Kovacs Simpl ...)
+       TODO: check
+CVE-2025-32555 (Cross-Site Request Forgery (CSRF) vulnerability in Edamam SEO, 
Nutriti ...)
+       TODO: check
+CVE-2025-32550 (Improper Neutralization of Special Elements used in an SQL 
Command ('S ...)
+       TODO: check
+CVE-2025-32547 (Cross-Site Request Forgery (CSRF) vulnerability in gtlwpdev 
All push n ...)
+       TODO: check
+CVE-2025-32543 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
+       TODO: check
+CVE-2025-32518 (Cross-Site Request Forgery (CSRF) vulnerability in 
hossainawlad ALD Lo ...)
+       TODO: check
+CVE-2025-32505 (Cross-Site Request Forgery (CSRF) vulnerability in SCAND 
MultiMailer a ...)
+       TODO: check
+CVE-2025-32503 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
+       TODO: check
+CVE-2025-32502 (Cross-Site Request Forgery (CSRF) vulnerability in 
lemmentwickler ePap ...)
+       TODO: check
+CVE-2025-32501 (Cross-Site Request Forgery (CSRF) vulnerability in dimafreund 
RentSyst ...)
+       TODO: check
+CVE-2025-32500 (Cross-Site Request Forgery (CSRF) vulnerability in Sudavar 
Codescar Ra ...)
+       TODO: check
+CVE-2025-32499 (Improper Control of Filename for Include/Require Statement in 
PHP Prog ...)
+       TODO: check
+CVE-2025-32498 (Cross-Site Request Forgery (CSRF) vulnerability in oleglark 
VKontakte  ...)
+       TODO: check
+CVE-2025-32497 (Cross-Site Request Forgery (CSRF) vulnerability in squiter 
Spoiler Blo ...)
+       TODO: check
+CVE-2025-32496 (Cross-Site Request Forgery (CSRF) vulnerability in 
Uncodethemes Ultra  ...)
+       TODO: check
+CVE-2025-32495 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
+       TODO: check
+CVE-2025-32494 (Cross-Site Request Forgery (CSRF) vulnerability in bozdoz 
reCAPTCHA Je ...)
+       TODO: check
+CVE-2025-32493 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
+       TODO: check
+CVE-2025-32492 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
+       TODO: check
+CVE-2025-32489 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
+       TODO: check
+CVE-2025-32488 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
+       TODO: check
+CVE-2025-32487 (Server-Side Request Forgery (SSRF) vulnerability in Joe 
Waymark allows ...)
+       TODO: check
+CVE-2025-32485 (Cross-Site Request Forgery (CSRF) vulnerability in Bjoern WP 
Performan ...)
+       TODO: check
+CVE-2025-32484 (Cross-Site Request Forgery (CSRF) vulnerability in Mathieu 
Chartier WP ...)
+       TODO: check
+CVE-2025-32483 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
+       TODO: check
+CVE-2025-32482 (Cross-Site Request Forgery (CSRF) vulnerability in quanganhdo 
Custom S ...)
+       TODO: check
+CVE-2025-32481 (Cross-Site Request Forgery (CSRF) vulnerability in ninotheme 
Nino Soci ...)
+       TODO: check
+CVE-2025-32480 (Cross-Site Request Forgery (CSRF) vulnerability in dalziel 
Windows Liv ...)
+       TODO: check
+CVE-2025-32479 (Cross-Site Request Forgery (CSRF) vulnerability in ab-tools 
Flags Widg ...)
+       TODO: check
+CVE-2025-32478 (Cross-Site Request Forgery (CSRF) vulnerability in Mario 
Aguiar WP Sex ...)
+       TODO: check
+CVE-2025-32477 (Cross-Site Request Forgery (CSRF) vulnerability in Jordi 
Salord WP-Eas ...)
+       TODO: check
+CVE-2025-32476 (Cross-Site Request Forgery (CSRF) vulnerability in blueinstyle 
Advance ...)
+       TODO: check
+CVE-2025-32381 (XGrammar is an open-source library for efficient, flexible, 
and portab ...)
+       TODO: check
+CVE-2025-32380 (The Apollo Router Core is a configurable, high-performance 
graph route ...)
+       TODO: check
+CVE-2025-32379 (Koa is expressive middleware for Node.js using ES2017 async 
functions. ...)
+       TODO: check
+CVE-2025-32378 (Shopware is an open source e-commerce software platform. Prior 
to 6.6. ...)
+       TODO: check
+CVE-2025-32375 (BentoML is a Python library for building online serving 
systems optimi ...)
+       TODO: check
+CVE-2025-32374 (DNN (formerly DotNetNuke) is an open-source web content 
management pla ...)
+       TODO: check
+CVE-2025-32373 (DNN (formerly DotNetNuke) is an open-source web content 
management pla ...)
+       TODO: check
+CVE-2025-32372 (DNN (formerly DotNetNuke) is an open-source web content 
management pla ...)
+       TODO: check
+CVE-2025-32371 (DNN (formerly DotNetNuke) is an open-source web content 
management pla ...)
+       TODO: check
+CVE-2025-32016 (Microsoft Identity Web is a library which contains a set of 
reusable c ...)
+       TODO: check
+CVE-2025-31404 (Cross-Site Request Forgery (CSRF) vulnerability in Wladyslaw 
Madejczyk ...)
+       TODO: check
+CVE-2025-31402 (Cross-Site Request Forgery (CSRF) vulnerability in NewsBoard 
Plugin Ne ...)
+       TODO: check
+CVE-2025-31401 (Cross-Site Request Forgery (CSRF) vulnerability in mmetrodw 
MMX &#8211 ...)
+       TODO: check
+CVE-2025-31400 (Cross-Site Request Forgery (CSRF) vulnerability in icyleaf WS 
Audio Pl ...)
+       TODO: check
+CVE-2025-31399 (Cross-Site Request Forgery (CSRF) vulnerability in Chandan 
Garg CG Scr ...)
+       TODO: check
+CVE-2025-31395 (Cross-Site Request Forgery (CSRF) vulnerability in a.ankit 
Easy Custom ...)
+       TODO: check
+CVE-2025-31394 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
+       TODO: check
+CVE-2025-31393 (Cross-Site Request Forgery (CSRF) vulnerability in vfvalent 
Social Boo ...)
+       TODO: check
+CVE-2025-31392 (Cross-Site Request Forgery (CSRF) vulnerability in Shameem 
Reza Smart  ...)
+       TODO: check
+CVE-2025-31391 (Cross-Site Request Forgery (CSRF) vulnerability in regen 
Script Compre ...)
+       TODO: check
+CVE-2025-31390 (Cross-Site Request Forgery (CSRF) vulnerability in bdoga 
Social Crowd  ...)
+       TODO: check
+CVE-2025-31388 (Cross-Site Request Forgery (CSRF) vulnerability in doa The 
World allow ...)
+       TODO: check
+CVE-2025-31385 (Cross-Site Request Forgery (CSRF) vulnerability in  Site Table 
of Cont ...)
+       TODO: check
+CVE-2025-31383 (Cross-Site Request Forgery (CSRF) vulnerability in  FrescoChat 
Live Ch ...)
+       TODO: check
+CVE-2025-31382 (Cross-Site Request Forgery (CSRF) vulnerability in theode 
Language Fie ...)
+       TODO: check
+CVE-2025-31377 (Missing Authorization vulnerability in Asaquzzaman mishu Woo 
Product F ...)
+       TODO: check
+CVE-2025-31375 (Cross-Site Request Forgery (CSRF) vulnerability in bhoogterp 
Scheduled ...)
+       TODO: check
+CVE-2025-31042 (Missing Authorization vulnerability in rtakao Sandwich Adsense 
allows  ...)
+       TODO: check
+CVE-2025-31038 (Cross-Site Request Forgery (CSRF) vulnerability in Essential 
Marketer  ...)
+       TODO: check
+CVE-2025-31036 (Cross-Site Request Forgery (CSRF) vulnerability in WPSolr free 
WPSolr  ...)
+       TODO: check
+CVE-2025-31035 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
+       TODO: check
+CVE-2025-31034 (Cross-Site Request Forgery (CSRF) vulnerability in AboZain 
Albanna Cus ...)
+       TODO: check
+CVE-2025-31033 (Cross-Site Request Forgery (CSRF) vulnerability in Adam Nowak 
Buddypre ...)
+       TODO: check
+CVE-2025-31032 (Cross-Site Request Forgery (CSRF) vulnerability in Pagopar - 
Grupo M S ...)
+       TODO: check
+CVE-2025-31026 (Cross-Site Request Forgery (CSRF) vulnerability in Austin 
Comment Vali ...)
+       TODO: check
+CVE-2025-31023 (Cross-Site Request Forgery (CSRF) vulnerability in Purab Seo 
Meta Tags ...)
+       TODO: check
+CVE-2025-31020 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
+       TODO: check
+CVE-2025-31017 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
+       TODO: check
+CVE-2025-31012 (Missing Authorization vulnerability in Phil Age Gate allows 
Accessing  ...)
+       TODO: check
+CVE-2025-31009 (Server-Side Request Forgery (SSRF) vulnerability in Jan Boddez 
IndieBl ...)
+       TODO: check
+CVE-2025-31008 (Improper Neutralization of Input During Web Page Generation 
('Cross-si ...)
+       TODO: check
+CVE-2025-31005 (Cross-Site Request Forgery (CSRF) vulnerability in Uzair 
Easyfonts all ...)
+       TODO: check
+CVE-2025-31004 (Missing Authorization vulnerability in Croover.inc Rich Table 
of Conte ...)
+       TODO: check
+CVE-2025-31003 (Exposure of Sensitive System Information to an Unauthorized 
Control Sp ...)
+       TODO: check
+CVE-2025-31002 (Unrestricted Upload of File with Dangerous Type vulnerability 
in Bogda ...)
+       TODO: check
+CVE-2025-30677 (Apache Pulsar contains multiple connectors for integrating 
with Apache ...)
+       TODO: check
+CVE-2025-30656 (An Improper Handling of Additional Special Element 
vulnerability in th ...)
+       TODO: check
+CVE-2025-30655 (An Improper Check for Unusual or Exceptional Conditions 
vulnerability  ...)
+       TODO: check
+CVE-2025-30654 (An Exposure of Sensitive Information to an Unauthorized Actor 
vulnerab ...)
+       TODO: check
+CVE-2025-30653 (An Expired Pointer Dereference vulnerability in Routing 
Protocol Daemo ...)
+       TODO: check
+CVE-2025-30652 (An Improper Handling of Exceptional Conditions vulnerability 
in routin ...)
+       TODO: check
+CVE-2025-30651 (A Buffer Access with Incorrect Length Value vulnerability in 
the routi ...)
+       TODO: check
+CVE-2025-30649 (An Improper Input Validation vulnerability in thesyslog stream 
TCP tra ...)
+       TODO: check
+CVE-2025-30648 (An Improper Input Validation vulnerability in theJuniper DHCP 
Daemon ( ...)
+       TODO: check
+CVE-2025-30647 (A Missing Release of Memory after Effective Lifetime 
vulnerability in  ...)
+       TODO: check
+CVE-2025-30646 (A Signed to Unsigned Conversion Error vulnerability in the 
Layer 2 Con ...)
+       TODO: check
+CVE-2025-30645 (A NULL Pointer Dereference vulnerability in the flow daemon 
(flowd) of ...)
+       TODO: check
+CVE-2025-30644 (A Heap-based Buffer Overflow vulnerability in the flexible PIC 
concent ...)
+       TODO: check
+CVE-2025-2632 (Out of bounds write vulnerability due to improper bounds 
checking in N ...)
+       TODO: check
+CVE-2025-2631 (Out of bounds write vulnerability due to improper bounds 
checking in N ...)
+       TODO: check
+CVE-2025-2630 (There is a DLL hijacking vulnerability due to an uncontrolled 
search p ...)
+       TODO: check
+CVE-2025-2629 (There is a DLL hijacking vulnerability due to an uncontrolled 
search p ...)
+       TODO: check
+CVE-2025-2442 (CWE-1188: Initialization of a Resource with an Insecure Default 
vulner ...)
+       TODO: check
+CVE-2025-2441 (CWE-1188: Initialization of a Resource with an Insecure Default 
vulner ...)
+       TODO: check
+CVE-2025-2440 (CWE-922: Insecure Storage of Sensitive Information 
vulnerability exist ...)
+       TODO: check
+CVE-2025-2223 (CWE-20: Improper Input Validation vulnerability exists that 
could caus ...)
+       TODO: check
+CVE-2025-2222 (CWE-552: Files or Directories Accessible to External Parties 
vulnerabi ...)
+       TODO: check
+CVE-2025-29870 (Missing authentication for critical function vulnerability 
exists in W ...)
+       TODO: check
+CVE-2025-29394 (An insecure permissions vulnerability in verydows v2.0 allows 
a remote ...)
+       TODO: check
+CVE-2025-29391 (horvey Library-Manager v1.0 is vulnerable to SQL Injection in 
Admin/Co ...)
+       TODO: check
+CVE-2025-29390 (jerryhanjj ERP 1.0 is vulnerable to SQL Injection in the 
set_password  ...)
+       TODO: check
+CVE-2025-29389 (PbootCMS v3.2.9 contains a XSS vulnerability in 
admin.php?p=/Content/i ...)
+       TODO: check
+CVE-2025-29189 (Flowise <= 2.2.3 is vulnerable to SQL Injection. via tableName 
paramet ...)
+       TODO: check
+CVE-2025-27934 (Information disclosure of authentication information in the 
specific s ...)
+       TODO: check
+CVE-2025-27797 (OS command injection vulnerability in the specific service 
exists in W ...)
+       TODO: check
+CVE-2025-27722 (Cleartext transmission of sensitive information issue exists 
in Wi-Fi  ...)
+       TODO: check
+CVE-2025-27391 (Insertion of Sensitive Information into Log File vulnerability 
in Apac ...)
+       TODO: check
+CVE-2025-26902 (Cross-Site Request Forgery (CSRF) vulnerability in Brizy Brizy 
Pro all ...)
+       TODO: check
+CVE-2025-26901 (Missing Authorization vulnerability in Brizy Brizy Pro allows 
Exploiti ...)
+       TODO: check
+CVE-2025-26888 (Missing Authorization vulnerability in OnTheGoSystems 
WooCommerce Mult ...)
+       TODO: check
+CVE-2025-25213 (Improper restriction of rendered UI layers or frames issue 
exists in W ...)
+       TODO: check
+CVE-2025-25056 (Cross-site request forgery vulnerability exists in Wi-Fi AP 
UNIT 'AC-W ...)
+       TODO: check
+CVE-2025-25053 (OS command injection vulnerability in the WEB UI (the setting 
page) ex ...)
+       TODO: check
+CVE-2025-25023 (IBM Security Guardium 11.4 and 12.1 could allow a privileged 
user to r ...)
+       TODO: check
+CVE-2025-23407 (Incorrect privilege assignment vulnerability in the WEB UI 
(the settin ...)
+       TODO: check
+CVE-2025-21601 (An Improper Following of Specification by Caller vulnerability 
in web  ...)
+       TODO: check
+CVE-2025-21597 (An Improper Check for Unusual or Exceptional Conditions 
vulnerability  ...)
+       TODO: check
+CVE-2025-21595 (A Missing Release of Memory after Effective 
Lifetimevulnerability in t ...)
+       TODO: check
+CVE-2025-21594 (An Improper Check for Unusual or Exceptional Conditions 
vulnerability  ...)
+       TODO: check
+CVE-2025-21591 (A Buffer Access with Incorrect Length Value vulnerability in 
the jdhcp ...)
+       TODO: check
+CVE-2025-1968 (Insufficient Session Expiration vulnerability in Progress 
Software Cor ...)
+       TODO: check
+CVE-2024-55210 (An issue in TOTVS Framework (Linha Protheus) 12.1.2310 allows 
attacker ...)
+       TODO: check
+CVE-2023-33844 (IBM Security Verify Governance 10.0.2 is vulnerable to 
cross-site scri ...)
+       TODO: check
+CVE-2017-20197 (A vulnerability was found in propanetank 
Roommate-Bill-Tracking up to  ...)
+       TODO: check
 CVE-2025-30215
        - nats-server <unfixed>
        NOTE: https://advisories.nats.io/CVE/secnote-2025-01.txt
@@ -545,7 +895,7 @@ CVE-2023-37930 (Multiple issues including the use of 
uninitialized ressources [C
 CVE-2025-32460 (GraphicsMagick before 8e56520 has a heap-based buffer 
over-read in Rea ...)
        - graphicsmagick 1.4+really1.3.45+hg17696-1
        NOTE: 
https://foss.heptapod.net/graphicsmagick/graphicsmagick/-/commit/8e56520435df50f618a03f2721a39a70a515f1cb
-CVE-2025-31672
+CVE-2025-31672 (Improper Input Validation vulnerability in Apache POI. The 
issue affec ...)
        - libapache-poi-java <undetermined>
        NOTE: https://www.openwall.com/lists/oss-security/2025/04/08/2
        NOTE: https://bz.apache.org/bugzilla/show_bug.cgi?id=69620
@@ -2574,6 +2924,7 @@ CVE-2025-3067 (Inappropriate implementation in Custom 
Tabs in Google Chrome on A
        - chromium 135.0.7049.52-1
        [bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2025-3066 (Use after free in Site Isolation in Google Chrome prior to 
135.0.7049. ...)
+       {DSA-5898-1}
        - chromium 135.0.7049.84-1
        [bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2025-3096 (Clinic\u2019s Patient Management System versions 2.0 suffers 
from a SQ ...)



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e6831d5c3bbfcc044b0ca5c858c7da25508fdda5

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e6831d5c3bbfcc044b0ca5c858c7da25508fdda5
You're receiving this email because of your account on salsa.debian.org.


_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to