[Git][security-tracker-team/security-tracker][master] Add CVE-2026-6732/libxml2

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Apr 24 09:29:29 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
a7cdc797 by Salvatore Bonaccorso at 2026-04-24T10:28:40+02:00
Add CVE-2026-6732/libxml2

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -22,7 +22,10 @@ CVE-2026-6940 (radare2 prior to 6.1.4 contains a path traversal vulnerability in
 CVE-2026-6810 (The Booking Calendar Contact Form plugin for WordPress is vulnerable t ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2026-6732 (A flaw was found in libxml2. This vulnerability occurs when the librar ...)
-	TODO: check
+	- libxml2 <unfixed>
+	NOTE: https://gitlab.gnome.org/GNOME/libxml2/-/issues/1097
+	NOTE: https://gitlab.gnome.org/GNOME/libxml2/-/merge_requests/411
+	NOTE: Fixed by: https://gitlab.gnome.org/GNOME/libxml2/-/commit/7cea3fd1557437b88f2c7b5e1b71a2d5fb152b55 (master)
 CVE-2026-6393 (The BetterDocs plugin for WordPress is vulnerable to Missing Authoriza ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2026-6376 (A weakness in SpiceJet\u2019s public booking retrieval page permits fu ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a7cdc797f947feded638a5b1342a30777b97eb54

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a7cdc797f947feded638a5b1342a30777b97eb54
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260424/00d345e3/attachment.htm>


More information about the debian-security-tracker-commits mailing list