[Git][security-tracker-team/security-tracker][master] Add iAdd CVE-2026-41425/python-authlib

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Apr 25 09:42:50 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
aa2dce20 by Salvatore Bonaccorso at 2026-04-25T10:42:05+02:00
Add iAdd CVE-2026-41425/python-authlib

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -46,7 +46,9 @@ CVE-2026-41427 (Better Auth is an authentication and authorization library for T
 CVE-2026-41426 (pretalx is a conference planning tool. Prior to 2026.1.0, an unauthent ...)
 	NOT-FOR-US: pretalx
 CVE-2026-41425 (Authlib is a Python library which builds OAuth and OpenID Connect serv ...)
-	TODO: check
+	- python-authlib 1.7.0-1
+	NOTE: https://github.com/authlib/authlib/security/advisories/GHSA-jj8c-mmj3-mmgv
+	NOTE: Fixed by: https://github.com/authlib/authlib/commit/401a7709c3fe43bce1b2105d16a475b688faa788 (v1.6.11)
 CVE-2026-41421 (SiYuan is an open-source personal knowledge management system. Prior t ...)
 	NOT-FOR-US: SiYuan
 CVE-2026-41419 (4ga Boards is a boards system for realtime project management. Prior t ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/aa2dce203aebf64b4ad474db1874b8d3953a63f3

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/aa2dce203aebf64b4ad474db1874b8d3953a63f3
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260425/8af9b5b1/attachment.htm>


More information about the debian-security-tracker-commits mailing list