Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits: bcd0d228 by Salvatore Bonaccorso at 2025-08-16T10:15:54+02:00 Add CVE-2025-8959/golang-github-hashicorp-go-getter - - - - - 1 changed file: - data/CVE/list Changes: ===================================== data/CVE/list ===================================== @@ -1,5 +1,6 @@ CVE-2025-8959 (HashiCorp's go-getter library subdirectory download feature is vulnera ...) - TODO: check + - golang-github-hashicorp-go-getter <unfixed> + NOTE: https://discuss.hashicorp.com/t/hcsec-2025-23-hashicorp-go-getter-vulnerable-to-arbitrary-read-through-symlink-attack/76242 CVE-2025-8898 (The Taxi Booking Manager for Woocommerce | E-cab plugin for WordPress ...) NOT-FOR-US: WordPress plugin CVE-2025-8896 (The User Profile Builder \u2013 Beautiful User Registration Forms, Use ...) View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/bcd0d2281947294b069511e7432b01d72d28e4a9 -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/bcd0d2281947294b069511e7432b01d72d28e4a9 You're receiving this email because of your account on salsa.debian.org.
_______________________________________________ debian-security-tracker-commits mailing list [email protected] https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits
