[Git][security-tracker-team/security-tracker][master] Add new python issue

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Apr 23 09:07:33 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
69148b9e by Salvatore Bonaccorso at 2026-04-23T10:07:02+02:00
Add new python issue

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -8,7 +8,15 @@ CVE-2026-6878 (A vulnerability was identified in ByteDance verl up to 0.7.0. Aff
 CVE-2026-6874 (A vulnerability was determined in ericc-ch copilot-api up to 0.7.0. Th ...)
 	NOT-FOR-US: ericc-ch copilot-api
 CVE-2026-6019 (http.cookies.Morsel.js_output() returns an inline <script> snippet and ...)
-	TODO: check
+	- python3.14 <unfixed>
+	- python3.13 <unfixed>
+	- python3.11 <removed>
+	- python3.9 <removed>
+	- pypy3 <unfixed>
+	NOTE: https://mail.python.org/archives/list/security-announce@python.org/thread/IVNWGV2BBNC3RHQAFS22UP4DY56SAXX3/
+	NOTE: https://github.com/python/cpython/issues/90309
+	NOTE: https://github.com/python/cpython/pull/148848
+	NOTE: https://github.com/python/cpython/commit/76b3923d688c0efc580658476c5f525ec8735104 (main)
 CVE-2026-5935 (IBM Total Storage Service Console (TSSC) / TS4500 IMC 9.2, 9.3, 9.4, 9 ...)
 	NOT-FOR-US: IBM
 CVE-2026-5926 (IBM Verify Identity Access Container 11.0 through 11.0.2 and IBM Secur ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/69148b9e00edb02a3bbc5c053719e74ee921de7f

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/69148b9e00edb02a3bbc5c053719e74ee921de7f
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260423/36a9afcc/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list