[Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Sat Aug 1 20:13:56 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
ee75319f by security tracker role at 2026-08-01T19:13:49+00:00
automatic update
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,4 +1,220 @@
-CVE-2026-18536
+CVE-2026-6453 (The CubeWP Framework plugin for WordPress is vulnerable to SQL Injecti ...)
+ TODO: check
+CVE-2026-67355 (guzzlehttp/guzzle versions before 7.15.1 fail to preserve host-only co ...)
+ TODO: check
+CVE-2026-67354 (guzzlehttp/guzzle versions before 7.15.1 contain an information disclo ...)
+ TODO: check
+CVE-2026-67353 (guzzlehttp/guzzle versions before 7.15.1 contain a denial of service v ...)
+ TODO: check
+CVE-2026-67352 (luci-app-https-dns-proxy contains a stored cross-site scripting vulner ...)
+ TODO: check
+CVE-2026-67344 (ArcadeDB before 26.7.2 fails to enforce the UPDATE_SCHEMA database per ...)
+ TODO: check
+CVE-2026-67343 (ArcadeDB versions before 26.7.2 fail to properly redact the cluster to ...)
+ TODO: check
+CVE-2026-67342 (ArcadeDB versions before 26.7.2 contain an authorization bypass vulner ...)
+ TODO: check
+CVE-2026-67341 (ArcadeDB versions before 26.7.2 fail to enforce scripting authorizatio ...)
+ TODO: check
+CVE-2026-67340 (ArcadeDB before 26.7.2 (arcadedb-engine) allows trigger scripts to loo ...)
+ TODO: check
+CVE-2026-67339 (guzzlehttp/guzzle versions before 7.14.2 fail to properly isolate Prox ...)
+ TODO: check
+CVE-2026-67338 (JupyterLab before 4.5.9 contains a stored cross-site scripting vulnera ...)
+ TODO: check
+CVE-2026-67337 (better-auth versions before 1.4.9 contain a two-factor authentication ...)
+ TODO: check
+CVE-2026-67336 (better-auth versions before 1.6.11 contain insecure cryptographic defa ...)
+ TODO: check
+CVE-2026-67335 (better-auth versions before 1.6.2 fail to validate the OAuth state par ...)
+ TODO: check
+CVE-2026-67334 (better-auth versions before 1.6.11 fail to delete cached sessions when ...)
+ TODO: check
+CVE-2026-67333 (better-auth before 1.6.13 (and pre-release builds 1.7.0-beta.0 through ...)
+ TODO: check
+CVE-2026-67332 (@better-auth/oauth-provider before 1.7.0-beta.4 fails to bind access-t ...)
+ TODO: check
+CVE-2026-67331 (better-auth SCIM versions from 1.5.0 before 1.7.0-beta.4 fail to bind ...)
+ TODO: check
+CVE-2026-67330 (@better-auth/scim (a better-auth plugin) versions >= 1.4.0-beta.27 thr ...)
+ TODO: check
+CVE-2026-67329 (@better-auth/stripe versions >= 1.4.11 and < 1.6.21, and >= 1.7.0-beta ...)
+ TODO: check
+CVE-2026-67328 (@better-auth/sso versions before 1.6.21 contain multiple authenticatio ...)
+ TODO: check
+CVE-2026-67327 (better-auth versions >= 1.1.3 and < 1.6.22 (and pre-release versions > ...)
+ TODO: check
+CVE-2026-67326 (GitPython before 3.1.50 fails to validate newline characters in the se ...)
+ TODO: check
+CVE-2026-67325 (GitPython before 3.1.51 contains an incomplete command injection block ...)
+ TODO: check
+CVE-2026-67324 (GitPython 3.1.50 fails to recognize joined short-option forms such as ...)
+ TODO: check
+CVE-2026-67323 (GitPython before 3.1.51 fails to guard against dangerous Git options p ...)
+ TODO: check
+CVE-2026-67322 (GitPython before 3.1.52 is vulnerable to environment-variable exfiltra ...)
+ TODO: check
+CVE-2026-67321 (axios before 0.33.0 contains an incomplete depth-limit bypass in toFor ...)
+ TODO: check
+CVE-2026-67320 (axios in a Node.js deployment using the HTTP adapter can route request ...)
+ TODO: check
+CVE-2026-67319 (axios before 0.33.0 (and 1.x before 1.18.0) can consume inherited prop ...)
+ TODO: check
+CVE-2026-67318 (axios versions >=1.13.0 (Node.js HTTP adapter) fail to enforce the con ...)
+ TODO: check
+CVE-2026-67317 (axios versions 1.7.0 before 1.18.0 fail to enforce maxBodyLength for W ...)
+ TODO: check
+CVE-2026-67316 (axios is vulnerable to read-side prototype-pollution gadgets that can ...)
+ TODO: check
+CVE-2026-67315 (axios versions 1.15.0 before 1.18.0 fail to recognize 0.0.0.0 as a loo ...)
+ TODO: check
+CVE-2026-67314 (axios versions >=1.15.2 and <1.18.0 contain prototype-pollution read-s ...)
+ TODO: check
+CVE-2026-67313 (axios versions 0.28.0 and later contain uncontrolled recursion in form ...)
+ TODO: check
+CVE-2026-67312 (axios versions from 0.28.0 before 0.33.0 and from 1.0.0 before 1.18.0 ...)
+ TODO: check
+CVE-2026-67311 (Budibase before 3.38.1 contains a server-side request forgery vulnerab ...)
+ TODO: check
+CVE-2026-67310 (OpenRemote (org.openremote:openremote) versions <= 1.26.2 contain an i ...)
+ TODO: check
+CVE-2026-67309 (Traefik versions >= v3.7.0 and <= v3.7.7 contain a path traversal vuln ...)
+ TODO: check
+CVE-2026-67308 (Wazuh workflows before 44bf114 contain a shell injection vulnerability ...)
+ TODO: check
+CVE-2026-67307 (Wazuh 5.0.0-beta1 (fixed in 5.0.0-beta3) does not validate or override ...)
+ TODO: check
+CVE-2026-67306 (FreeRDP versions 3.28.0 and earlier contain an out-of-bounds read vuln ...)
+ TODO: check
+CVE-2026-67305 (FreeRDP Windows client before 3.29.0 contains a heap buffer overflow v ...)
+ TODO: check
+CVE-2026-67304 (FreeRDP before 3.29.0 contains a null pointer dereference vulnerabilit ...)
+ TODO: check
+CVE-2026-67303 (FreeRDP before 3.29.0 contains a reachable assertion (WINPR_ASSERT(Out ...)
+ TODO: check
+CVE-2026-67302 (FreeRDP before 3.29.0 (affected versions <= 3.28.0) contains a divide- ...)
+ TODO: check
+CVE-2026-67301 (FreeRDP before 3.29.0 contains out-of-bounds read vulnerabilities in t ...)
+ TODO: check
+CVE-2026-67300 (FreeRDP before 3.29.0 contains client-side heap use-after-free vulnera ...)
+ TODO: check
+CVE-2026-67299 (FreeRDP before 3.29.0 contains a client-side heap use-after-free in th ...)
+ TODO: check
+CVE-2026-67298 (FreeRDP versions 3.28.0 and earlier contain a heap buffer overflow in ...)
+ TODO: check
+CVE-2026-67297 (FreeRDP before 3.29.0 fails to enforce the RESPONSE_SIZE_LIMIT when pr ...)
+ TODO: check
+CVE-2026-67296 (FreeRDP before 3.29.0 contains a denial of service vulnerability in th ...)
+ TODO: check
+CVE-2026-67295 (FreeRDP before 3.29.0 fails to properly validate server-supplied RDPDR ...)
+ TODO: check
+CVE-2026-67294 (FreeRDP before 3.29.0 improperly validates the Extended Key Usage (EKU ...)
+ TODO: check
+CVE-2026-67293 (FreeRDP before 3.29.0 (affected versions <= 3.28.0) contains an improp ...)
+ TODO: check
+CVE-2026-67292 (FreeRDP before 3.29.0 contains a buffer over-disclosure vulnerability ...)
+ TODO: check
+CVE-2026-67291 (FreeRDP before 3.29.0 (affected versions <= 3.28.0) contains a heap ou ...)
+ TODO: check
+CVE-2026-67290 (FreeRDP before 3.29.0 contains a heap out-of-bounds read vulnerability ...)
+ TODO: check
+CVE-2026-67289 (FreeRDP before 3.29.0 (affected versions <= 3.28.0) does not validate ...)
+ TODO: check
+CVE-2026-67288 (FreeRDP before 3.29.0 contains a null pointer dereference vulnerabilit ...)
+ TODO: check
+CVE-2026-66402 (FreeRDP before 3.29.0 (affected versions <= 3.28.0) contains multiple ...)
+ TODO: check
+CVE-2026-66401 (FreeRDP before 3.29.0 contains an out-of-bounds heap read vulnerabilit ...)
+ TODO: check
+CVE-2026-55735 (Improper Verification of Cryptographic Signature in ueberauth guardian ...)
+ TODO: check
+CVE-2026-55734 (Allocation of Resources Without Limits or Throttling vulnerability in ...)
+ TODO: check
+CVE-2026-55733 (Allocation of Resources Without Limits or Throttling in ueberauth guar ...)
+ TODO: check
+CVE-2026-54894 (Allocation of Resources Without Limits or Throttling in ueberauth guar ...)
+ TODO: check
+CVE-2026-2916 (The Jeg Kit for Elementor plugin for WordPress is vulnerable to Sensit ...)
+ TODO: check
+CVE-2026-2411 (Zephyr's Bluetooth host declares a GATT characteristic as two consecut ...)
+ TODO: check
+CVE-2026-18435 (The Kadence Blocks \u2014 Page Builder Toolkit for Gutenberg Editor pl ...)
+ TODO: check
+CVE-2026-18344 (The Wp Responsive Thumbnail Slider plugin for WordPress is vulnerable ...)
+ TODO: check
+CVE-2026-18062 (The Kadence Blocks \u2014 Page Builder Toolkit for Gutenberg Editor pl ...)
+ TODO: check
+CVE-2026-18059 (The PixelYourSite \u2013 Your smart PIXEL (TAG) & API Manager plugin f ...)
+ TODO: check
+CVE-2026-17605 (The Payment forms, Buy now buttons, and Invoicing System | GetPaid plu ...)
+ TODO: check
+CVE-2026-17580 (The Advanced Views \u2013 Display Custom Fields (ACF, Pods, MetaBox), ...)
+ TODO: check
+CVE-2026-17571 (The Fluent Forms \u2013 Customizable Contact Forms, Survey, Quiz, & Co ...)
+ TODO: check
+CVE-2026-17555 (The WPvivid Backup & Migration plugin for WordPress is vulnerable to S ...)
+ TODO: check
+CVE-2026-16685 (The Download Manager plugin for WordPress is vulnerable to Stored Cros ...)
+ TODO: check
+CVE-2026-16684 (The Easy Property Listings plugin for WordPress is vulnerable to Store ...)
+ TODO: check
+CVE-2026-16635 (The Pronamic Pay plugin for WordPress is vulnerable to Privilege Escal ...)
+ TODO: check
+CVE-2026-16614 (The GSheetConnector \u2013 CF7 Google Sheets Connector with Real-Time ...)
+ TODO: check
+CVE-2026-16144 (The Kali Forms \u2014 Contact Form & Drag-and-Drop Builder plugin for ...)
+ TODO: check
+CVE-2026-16091 (The GamiPress \u2013 Gamification plugin to reward points, achievement ...)
+ TODO: check
+CVE-2026-16090 (The GamiPress \u2013 Gamification plugin to reward points, achievement ...)
+ TODO: check
+CVE-2026-16087 (The Icegram Engage \u2013 Popups, Optins, CTAs & Lead Generation plugi ...)
+ TODO: check
+CVE-2026-15988 (The AI Engine \u2013 The Chatbot, AI Framework & MCP for WordPress plu ...)
+ TODO: check
+CVE-2026-15964 (The Single Sign On For TNG plugin for WordPress is vulnerable to Authe ...)
+ TODO: check
+CVE-2026-15951 (The Icegram Mailer plugin for WordPress is vulnerable to SQL Injection ...)
+ TODO: check
+CVE-2026-15950 (The Cozy Blocks \u2013 Page Builder for Gutenberg Editor & FSE with 60 ...)
+ TODO: check
+CVE-2026-15662 (The Advanced Woo Labels \u2013 Product Labels & Badges for WooCommerce ...)
+ TODO: check
+CVE-2026-15649 (The Powerkit \u2013 Supercharge your WordPress Site plugin for WordPre ...)
+ TODO: check
+CVE-2026-15645 (The Powerkit \u2013 Supercharge your WordPress Site plugin for WordPre ...)
+ TODO: check
+CVE-2026-15644 (The Powerkit \u2013 Supercharge your WordPress Site plugin for WordPre ...)
+ TODO: check
+CVE-2026-15601 (The Kirki \u2013 Freeform Page Builder, Website Builder & Customizer p ...)
+ TODO: check
+CVE-2026-15450 (The Nex Forms \u2013 Ultimate Form Builder \u2013 Lite plugin for Word ...)
+ TODO: check
+CVE-2026-15052 (The MailChimp Subscribe Form, Optin Builder, PopUp Builder, Form Build ...)
+ TODO: check
+CVE-2026-15018 (The Database Collation Fix plugin for WordPress is vulnerable to time- ...)
+ TODO: check
+CVE-2026-13458 (The GenerateBlocks plugin for WordPress is vulnerable to Stored Cross- ...)
+ TODO: check
+CVE-2026-11995 (The Gutena Forms \u2013 Contact Form, Survey Form, Feedback Form, Book ...)
+ TODO: check
+CVE-2026-10782 (The RealHomes Memberships plugin for WordPress is vulnerable to author ...)
+ TODO: check
+CVE-2026-10773 (The DHCPv4 client helper net_dhcpv4_msg_type_name() in subsys/net/lib/ ...)
+ TODO: check
+CVE-2026-10772
+ REJECTED
+CVE-2025-71404 (better-auth versions after v0.0.2 and before 1.1.16 contain a reflecte ...)
+ TODO: check
+CVE-2025-71403 (better-auth versions before 1.1.20 contain a bypass vulnerability in t ...)
+ TODO: check
+CVE-2025-71402 (better-auth versions greater than 1.3.34 and before 1.4.0 contain a vu ...)
+ TODO: check
+CVE-2025-14469 (The Theme Editor plugin for WordPress is vulnerable to Cross-Site Requ ...)
+ TODO: check
+CVE-2025-14073 (The WooCommerce PayPal Payments plugin for WordPress is vulnerable to ...)
+ TODO: check
+CVE-2026-18536 (Data::Entropy versions before 0.010 for Perl read remote entropy sourc ...)
- libdata-entropy-perl <unfixed> (bug #1143264)
[trixie] - libdata-entropy-perl <no-dsa> (Minor issue; module is deprecated in favour of better options)
NOTE: https://lists.security.metacpan.org/cve-announce/msg/42317754/
@@ -1135,6 +1351,7 @@ CVE-2026-62268
NOTE: Fixed by: https://github.com/borgbackup/borg/commit/3e9ed6d1ad6d3531b39c07b8ef3ecf41fce4437f (1.4.5)
NOTE: Fixed by: https://github.com/borgbackup/borg/commit/141888f2fabcd57a300547c2aa63212cb213924d (1.4.5)
CVE-2026-9672
+ {DSA-6409-1}
- libgd2 2.3.3-14 (bug #1143152)
- php8.4 8.4.24-1 (unimportant)
[trixie] - php8.4 8.4.24-1~deb13u1
@@ -1341,1483 +1558,1483 @@ CVE-2026-18022 (Integer wraparound in IVFFlat index build in pgvector before 0.8
NOTE: restricted to 64-bit architectures since 0.7.4-2. Not exploitable on non
NOTE: 32-bit architectures.
CVE-2026-18019 (Side-channel information leakage in Media in Google Chrome prior to 15 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-18018 (Inappropriate implementation in Updater in Google Chrome on Windows pr ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-18017 (Use after free in Dawn in Google Chrome prior to 151.0.7922.72 allowed ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-18016 (Insufficient policy enforcement in Chrome for iOS in Google Chrome on ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-18015 (Inappropriate implementation in Tint in Google Chrome on Mac prior to ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-18014 (Insufficient validation of untrusted input in DevTools in Google Chrom ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-18013 (Inappropriate implementation in Chrome for iOS in Google Chrome on iOS ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-18012 (Use after free in PDFium in Google Chrome prior to 151.0.7922.72 allow ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-18011 (Inappropriate implementation in Chrome for iOS in Google Chrome on iOS ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-18010 (Inappropriate implementation in Passwords in Google Chrome prior to 15 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-18009 (Insufficient validation of untrusted input in Passwords in Google Chro ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-18008 (Inappropriate implementation in Settings in Google Chrome prior to 151 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-18007 (Inappropriate implementation in Input in Google Chrome on Android prio ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-18006 (Inappropriate implementation in Google Lens in Google Chrome prior to ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-18005 (Inappropriate implementation in WebXR in Google Chrome prior to 151.0. ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-18004 (Insufficient policy enforcement in Speech in Google Chrome prior to 15 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-18003 (Inappropriate implementation in Chrome for iOS in Google Chrome on iOS ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-18002 (Insufficient validation of untrusted input in Google Lens in Google Ch ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-18001 (Inappropriate implementation in WebGL in Google Chrome prior to 151.0. ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-18000 (Insufficient policy enforcement in USB in Google Chrome on Android pri ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17999 (Race in PictureInPicture in Google Chrome on Android prior to 151.0.79 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17998 (Incorrect security UI in Extensions in Google Chrome prior to 151.0.79 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17997 (Inappropriate implementation in Passwords in Google Chrome prior to 15 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17996 (Inappropriate implementation in Browser in Google Chrome on Mac prior ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17995 (Out of bounds read in Dawn in Google Chrome prior to 151.0.7922.72 all ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17994 (Inappropriate implementation in Media in Google Chrome on Android prio ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17993 (Race in Updater in Google Chrome on Windows prior to 151.0.7922.72 all ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17992 (Uninitialized Use in Skia in Google Chrome on Windows prior to 151.0.7 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17991 (Insufficient validation of untrusted input in AI in Google Chrome prio ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17990 (Insufficient validation of untrusted input in WebAuthn in Google Chrom ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17989 (Type Confusion in V8 in Google Chrome prior to 151.0.7922.72 allowed a ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17988 (Insufficient validation of untrusted input in Navigation in Google Chr ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17987 (Insufficient validation of untrusted input in Notifications in Google ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17986 (Insufficient policy enforcement in Bluetooth in Google Chrome prior to ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17985 (Insufficient policy enforcement in Speech in Google Chrome prior to 15 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17984 (Inappropriate implementation in Browser in Google Chrome on Android pr ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17983 (Inappropriate implementation in Global Media Controls in Google Chrome ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17982 (Insufficient validation of untrusted input in Cast in Google Chrome pr ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17981 (Inappropriate implementation in Blink in Google Chrome prior to 151.0. ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17980 (Inappropriate implementation in UI in Google Chrome on Android prior t ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17979 (Race in V8 in Google Chrome prior to 151.0.7922.72 allowed a remote at ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17978 (Side-channel information leakage in WebCodecs in Google Chrome prior t ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17977 (Policy bypass in CSS in Google Chrome prior to 151.0.7922.72 allowed a ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17976 (Insufficient policy enforcement in Extensions in Google Chrome prior t ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17975 (Inappropriate implementation in IME in Google Chrome on Mac prior to 1 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17974 (Insufficient policy enforcement in DevTools in Google Chrome prior to ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17973 (Inappropriate implementation in Views in Google Chrome on Mac prior to ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17972 (Inappropriate implementation in Chrome for iOS in Google Chrome on iOS ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17971 (Inappropriate implementation in Frame in Google Chrome prior to 151.0. ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17970 (Insufficient validation of untrusted input in Passwords in Google Chro ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17969 (Inappropriate implementation in Passwords in Google Chrome prior to 15 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17968 (Uninitialized Use in WebXR in Google Chrome on Android prior to 151.0. ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17967 (Use after free in Chrome for iOS in Google Chrome on iOS prior to 151. ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17966 (Inappropriate implementation in Views in Google Chrome on Mac prior to ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17965 (Incorrect security UI in Chrome for iOS in Google Chrome on iOS prior ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17964 (Incorrect security UI in UI in Google Chrome on Android prior to 151.0 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17963 (Inappropriate implementation in SVG in Google Chrome prior to 151.0.79 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17962 (Inappropriate implementation in Blink in Google Chrome prior to 151.0. ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17961 (Inappropriate implementation in Session in Google Chrome on Android pr ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17960 (Insufficient policy enforcement in Chrome for iOS in Google Chrome on ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17959 (Inappropriate implementation in Network in Google Chrome prior to 151. ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17958 (Inappropriate implementation in Views in Google Chrome prior to 151.0. ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17957 (Inappropriate implementation in CORS in Google Chrome prior to 151.0.7 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17956 (Inappropriate implementation in Scheduling in Google Chrome prior to 1 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17955 (Insufficient validation of untrusted input in Payments in Google Chrom ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17954 (Policy bypass in MHTML in Google Chrome prior to 151.0.7922.72 allowed ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17953 (Insufficient policy enforcement in WebView in Google Chrome on Android ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17952 (Inappropriate implementation in V8 in Google Chrome prior to 151.0.792 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17951 (Heap buffer overflow in WebRTC in Google Chrome prior to 151.0.7922.72 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17950 (Inappropriate implementation in Safebrowsing in Google Chrome on Mac p ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17949 (Uninitialized Use in GPU in Google Chrome on Android prior to 151.0.79 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17948 (Type Confusion in V8 in Google Chrome prior to 151.0.7922.72 allowed a ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17947 (Use after free in WebSockets in Google Chrome prior to 151.0.7922.72 a ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17946 (Uninitialized Use in Dawn in Google Chrome prior to 151.0.7922.72 allo ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17945 (Insufficient validation of untrusted input in Navigation in Google Chr ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17944 (Inappropriate implementation in Chrome for iOS in Google Chrome on iOS ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17943 (Inappropriate implementation in Parser in Google Chrome prior to 151.0 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17942 (Side-channel information leakage in SVG in Google Chrome prior to 151. ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17941 (Inappropriate implementation in Chrome for iOS in Google Chrome on iOS ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17940 (Insufficient validation of untrusted input in Picture-in-Picture in Go ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17939 (Insufficient validation of untrusted input in Passwords in Google Chro ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17938 (Inappropriate implementation in FullScreen in Google Chrome on Android ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17937 (Insufficient validation of untrusted input in DevTools in Google Chrom ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17936 (Inappropriate implementation in DevTools in Google Chrome prior to 151 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17935 (Heap buffer overflow in Codecs in Google Chrome prior to 151.0.7922.72 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17934 (Insufficient validation of untrusted input in DevTools in Google Chrom ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17933 (Inappropriate implementation in DOMStorage in Google Chrome prior to 1 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17932 (Use after free in DataTransfer in Google Chrome on Windows prior to 15 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17931 (Inappropriate implementation in DevTools in Google Chrome prior to 151 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17930 (Insufficient validation of untrusted input in Extensions in Google Chr ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17929 (Insufficient validation of untrusted input in DevTools in Google Chrom ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17928 (Inappropriate implementation in DataTransfer in Google Chrome prior to ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17927 (Insufficient policy enforcement in DevTools in Google Chrome prior to ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17926 (Insufficient validation of untrusted input in DevTools in Google Chrom ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17925 (Inappropriate implementation in Cast in Google Chrome on Android prior ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17924 (Use after free in DNS in Google Chrome prior to 151.0.7922.72 allowed ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17923 (Policy bypass in Enterprise in Google Chrome prior to 151.0.7922.72 al ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17922 (Inappropriate implementation in Enterprise in Google Chrome prior to 1 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17921 (Insufficient validation of untrusted input in Navigation in Google Chr ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17920 (Use after free in V8 in Google Chrome prior to 151.0.7922.72 allowed a ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17919 (Insufficient policy enforcement in Enterprise in Google Chrome on Mac ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17918 (Use after free in Sync in Google Chrome prior to 151.0.7922.72 allowed ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17917 (Insufficient policy enforcement in Chrome for iOS in Google Chrome on ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17916 (Insufficient policy enforcement in Settings in Google Chrome prior to ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17915 (Inappropriate implementation in WebView in Google Chrome on Android pr ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17914 (Side-channel information leakage in Skia in Google Chrome prior to 151 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17913 (Inappropriate implementation in Chrome for iOS in Google Chrome on iOS ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17912 (Inappropriate implementation in Chrome for iOS in Google Chrome on iOS ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17911 (Insufficient policy enforcement in SVG in Google Chrome prior to 151.0 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17910 (Insufficient policy enforcement in NFC in Google Chrome on Android pri ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17909 (Insufficient validation of untrusted input in Isolated Web Apps in Goo ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17908 (Insufficient validation of untrusted input in Printing in Google Chrom ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17907 (Side-channel information leakage in Network in Google Chrome prior to ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17906 (Insufficient validation of untrusted input in Bluetooth in Google Chro ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17905 (Inappropriate implementation in SurfaceCapture in Google Chrome prior ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17904 (Insufficient policy enforcement in NFC in Google Chrome on Android pri ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17903 (Insufficient policy enforcement in Chromecast in Google Chrome prior t ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17902 (Inappropriate implementation in Editing in Google Chrome on Linux prio ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17901 (Insufficient validation of untrusted input in Sharing in Google Chrome ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17900 (Inappropriate implementation in Enterprise in Google Chrome on Windows ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17899 (Insufficient policy enforcement in DevTools in Google Chrome prior to ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17898 (Use after free in DevTools in Google Chrome prior to 151.0.7922.72 all ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17897 (Inappropriate implementation in ORB in Google Chrome prior to 151.0.79 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17896 (Use after free in DevTools in Google Chrome prior to 151.0.7922.72 all ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17895 (Inappropriate implementation in DataTransfer in Google Chrome prior to ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17894 (Use after free in Views in Google Chrome on Linux prior to 151.0.7922. ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17893 (Insufficient validation of untrusted input in Updater in Google Chrome ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17892 (Inappropriate implementation in WebXR in Google Chrome prior to 151.0. ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17891 (Use after free in ANGLE in Google Chrome on Android prior to 151.0.792 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17890 (Insufficient validation of untrusted input in DevTools in Google Chrom ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17889 (Uninitialized Use in WebXR in Google Chrome prior to 151.0.7922.72 all ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17888 (Insufficient validation of untrusted input in WebUI in Google Chrome p ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17887 (Use after free in TabStrip in Google Chrome prior to 151.0.7922.72 all ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17886 (Use after free in Enterprise in Google Chrome prior to 151.0.7922.72 a ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17885 (Inappropriate implementation in Paint in Google Chrome prior to 151.0. ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17884 (Object lifecycle issue in WebRTC in Google Chrome prior to 151.0.7922. ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17883 (Inappropriate implementation in Headless in Google Chrome prior to 151 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17882 (Policy bypass in Extensions in Google Chrome prior to 151.0.7922.72 al ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17881 (Integer overflow in WebXR in Google Chrome prior to 151.0.7922.72 allo ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17880 (Inappropriate implementation in Autofill in Google Chrome prior to 151 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17879 (Inappropriate implementation in Autofill in Google Chrome prior to 151 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17878 (Inappropriate implementation in CSS in Google Chrome prior to 151.0.79 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17877 (Inappropriate implementation in Chromoting in Google Chrome on Linux p ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17876 (Inappropriate implementation in Payments in Google Chrome prior to 151 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17875 (Use after free in PDFium in Google Chrome prior to 151.0.7922.72 allow ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17874 (Inappropriate implementation in Chrome for iOS in Google Chrome on iOS ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17873 (Insufficient policy enforcement in Chrome for iOS in Google Chrome on ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17872 (Cryptographic Flaw in WebAppInstalls in Google Chrome on Android prior ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17871 (Inappropriate implementation in Passwords in Google Chrome prior to 15 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17870 (Insufficient validation of untrusted input in Cast in Google Chrome pr ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17869 (Out of bounds read in WebXR in Google Chrome prior to 151.0.7922.72 al ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17868 (Insufficient policy enforcement in USB in Google Chrome prior to 151.0 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17867 (Insufficient validation of untrusted input in Dawn in Google Chrome pr ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17866 (Type Confusion in Tab in Google Chrome on Android prior to 151.0.7922. ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17865 (Inappropriate implementation in Crypto in Google Chrome on Mac prior t ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17864 (Inappropriate implementation in Updater in Google Chrome on Mac prior ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17863 (Inappropriate implementation in Browser in Google Chrome on Windows pr ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17862 (Use after free in Tracing in Google Chrome on Windows prior to 151.0.7 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17861 (Insufficient validation of untrusted input in Updater in Google Chrome ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17860 (Insufficient validation of untrusted input in Mobile in Google Chrome ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17859 (Inappropriate implementation in Favicons in Google Chrome prior to 151 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17858 (Uninitialized Use in WebNN in Google Chrome on Windows prior to 151.0. ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17857 (Inappropriate implementation in Network in Google Chrome prior to 151. ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17856 (Inappropriate implementation in Network in Google Chrome on Mac prior ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17855 (Race in DevTools in Google Chrome on Mac prior to 151.0.7922.72 allowe ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17854 (Insufficient policy enforcement in WebMCP in Google Chrome prior to 15 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17853 (Inappropriate implementation in DevTools in Google Chrome prior to 151 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17852 (Inappropriate implementation in Media Router in Google Chrome prior to ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17851 (Side-channel information leakage in Autofill in Google Chrome prior to ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17850 (Inappropriate implementation in Permissions in Google Chrome prior to ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17849 (Inappropriate implementation in Chrome for iOS in Google Chrome on iOS ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17848 (Integer overflow in Codecs in Google Chrome prior to 151.0.7922.72 all ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17847 (Insufficient validation of untrusted input in ANGLE in Google Chrome p ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17846 (Inappropriate implementation in Media in Google Chrome on Windows prio ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17845 (Inappropriate implementation in CSS in Google Chrome prior to 151.0.79 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17844 (Insufficient validation of untrusted input in Cast in Google Chrome pr ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17843 (Inappropriate implementation in CSS in Google Chrome prior to 151.0.79 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17842 (Inappropriate implementation in Chrome for iOS in Google Chrome on iOS ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17841 (Race in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17840 (Incorrect security UI in Passwords in Google Chrome prior to 151.0.792 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17839 (Inappropriate implementation in Chrome for iOS in Google Chrome on iOS ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17838 (Incorrect security UI in Chrome for iOS in Google Chrome on iOS prior ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17837 (Insufficient validation of untrusted input in DevTools in Google Chrom ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17836 (Use after free in V8 in Google Chrome prior to 151.0.7922.72 allowed a ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17835 (Inappropriate implementation in Chrome for iOS in Google Chrome on iOS ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17834 (Insufficient validation of untrusted input in Passwords in Google Chro ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17833 (Inappropriate implementation in Passwords in Google Chrome prior to 15 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17832 (Use after free in ANGLE in Google Chrome prior to 151.0.7922.72 allowe ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17831 (Insufficient validation of untrusted input in Passwords in Google Chro ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17830 (Inappropriate implementation in Chrome for iOS in Google Chrome on iOS ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17829 (Insufficient policy enforcement in Passwords in Google Chrome prior to ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17828 (Inappropriate implementation in Chrome for iOS in Google Chrome on iOS ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17827 (Inappropriate implementation in CSS in Google Chrome prior to 151.0.79 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17826 (Inappropriate implementation in Chrome for iOS in Google Chrome on iOS ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17825 (Insufficient policy enforcement in Passwords in Google Chrome on Andro ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17824 (Insufficient policy enforcement in ServiceWorker in Google Chrome prio ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17823 (Insufficient policy enforcement in WebXR in Google Chrome prior to 151 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17822 (Race in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17821 (Insufficient policy enforcement in Extensions in Google Chrome prior t ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17820 (Insufficient policy enforcement in Autofill in Google Chrome prior to ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17819 (Inappropriate implementation in WebAppInstalls in Google Chrome prior ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17818 (Inappropriate implementation in Network in Google Chrome prior to 151. ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17817 (Inappropriate implementation in ReportingAndNEL in Google Chrome prior ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17816 (Insufficient policy enforcement in Speech in Google Chrome on Android ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17815 (Insufficient policy enforcement in GuestView in Google Chrome prior to ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17814 (Insufficient validation of untrusted input in Chrome for iOS in Google ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17813 (Insufficient policy enforcement in Chrome for iOS in Google Chrome on ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17812 (Inappropriate implementation in DigitalCredentials in Google Chrome pr ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17811 (Use after free in ANGLE in Google Chrome on Windows prior to 151.0.792 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17810 (Uninitialized Use in Dawn in Google Chrome prior to 151.0.7922.72 allo ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17809 (Insufficient validation of untrusted input in Extensions in Google Chr ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17808 (Uninitialized Use in WebGL in Google Chrome on Android prior to 151.0. ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17807 (Use after free in V8 in Google Chrome prior to 151.0.7922.72 allowed a ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17806 (Insufficient validation of untrusted input in Extensions in Google Chr ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17805 (Insufficient policy enforcement in Glic in Google Chrome on Android pr ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17804 (Use after free in Media in Google Chrome prior to 151.0.7922.72 allowe ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17803 (Insufficient validation of untrusted input in Save to Drive in Google ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17802 (Side-channel information leakage in GPU in Google Chrome on Android pr ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17801 (Out of bounds read and write in ANGLE in Google Chrome prior to 151.0. ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17800 (Inappropriate implementation in MediaRecording in Google Chrome prior ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17799 (Insufficient validation of untrusted input in Safe Browsing in Google ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17798 (Inappropriate implementation in Cast in Google Chrome prior to 151.0.7 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17797 (Inappropriate implementation in CSS in Google Chrome prior to 151.0.79 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17796 (Side-channel information leakage in WebXR in Google Chrome prior to 15 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17795 (Inappropriate implementation in GetUserMedia in Google Chrome prior to ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17794 (Insufficient validation of untrusted input in Mobile in Google Chrome ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17793 (Inappropriate implementation in Messages in Google Chrome on Android p ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17792 (Inappropriate implementation in Credential Management in Google Chrome ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17791 (Insufficient validation of untrusted input in Payments in Google Chrom ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17790 (Uninitialized Use in ANGLE in Google Chrome on Windows prior to 151.0. ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17789 (Insufficient validation of untrusted input in Chrome for iOS in Google ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17788 (Inappropriate implementation in Blink in Google Chrome prior to 151.0. ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17787 (Inappropriate implementation in DevTools in Google Chrome prior to 151 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17786 (Insufficient validation of untrusted input in DevTools in Google Chrom ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17785 (Uninitialized Use in ANGLE in Google Chrome prior to 151.0.7922.72 all ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17784 (Use after free in Audio in Google Chrome on Mac prior to 151.0.7922.72 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17783 (Inappropriate implementation in Loader in Google Chrome prior to 151.0 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17782 (Incorrect security UI in Chrome for iOS in Google Chrome on iOS prior ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17781 (Inappropriate implementation in Extensions in Google Chrome prior to 1 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17780 (Inappropriate implementation in Isolated Web Apps in Google Chrome pri ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17779 (Inappropriate implementation in Site Isolation in Google Chrome prior ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17778 (Use after free in Extensions in Google Chrome prior to 151.0.7922.72 a ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17777 (Inappropriate implementation in Autofill in Google Chrome prior to 151 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17776 (Policy bypass in Receiver in Google Chrome prior to 151.0.7922.72 allo ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17775 (Inappropriate implementation in PresentationAPI in Google Chrome prior ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17774 (Insufficient validation of untrusted input in Variations in Google Chr ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17773 (Insufficient validation of untrusted input in Cast in Google Chrome pr ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17772 (Out of bounds read in WebGL in Google Chrome prior to 151.0.7922.72 al ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17771 (Uninitialized Use in Skia in Google Chrome prior to 151.0.7922.72 allo ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17770 (Out of bounds read in Media in Google Chrome on Mac prior to 151.0.792 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17769 (Insufficient validation of untrusted input in Cast in Google Chrome pr ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17768 (Insufficient validation of untrusted input in WebSockets in Google Chr ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17767 (Insufficient validation of untrusted input in WebView in Google Chrome ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17766 (Insufficient validation of untrusted input in Clipboard in Google Chro ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17765 (Inappropriate implementation in WebProtect in Google Chrome prior to 1 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17764 (Inappropriate implementation in FedCM in Google Chrome prior to 151.0. ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17763 (Inappropriate implementation in GPU in Google Chrome prior to 151.0.79 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17762 (Inappropriate implementation in Chrome for iOS in Google Chrome on iOS ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17761 (Insufficient validation of untrusted input in Chrome for iOS in Google ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17760 (Side-channel information leakage in NoStatePrefetch in Google Chrome p ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17759 (Uninitialized Use in Codecs in Google Chrome prior to 151.0.7922.72 al ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17758 (Heap buffer overflow in Dawn in Google Chrome prior to 151.0.7922.72 a ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17757 (Uninitialized Use in Skia in Google Chrome prior to 151.0.7922.72 allo ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17756 (Insufficient policy enforcement in Presentation in Google Chrome prior ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17755 (Incorrect security UI in Extensions in Google Chrome prior to 151.0.79 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17754 (Inappropriate implementation in Blink in Google Chrome prior to 151.0. ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17753 (Inappropriate implementation in Autofill in Google Chrome prior to 151 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17752 (Use after free in Views in Google Chrome on Mac prior to 151.0.7922.72 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17751 (Inappropriate implementation in AdFilter in Google Chrome prior to 151 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17750 (Use after free in ANGLE in Google Chrome prior to 151.0.7922.72 allowe ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17749 (Insufficient validation of untrusted input in Extensions in Google Chr ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17748 (Inappropriate implementation in Extensions in Google Chrome prior to 1 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17747 (Insufficient validation of untrusted input in Payments in Google Chrom ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17746 (Use after free in GPU in Google Chrome on Mac prior to 151.0.7922.72 a ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17745 (Out of bounds read in Skia in Google Chrome prior to 151.0.7922.72 all ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17744 (Inappropriate implementation in File Input in Google Chrome on Linux p ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17743 (Insufficient policy enforcement in ControlledFrame in Google Chrome pr ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17742 (Insufficient policy enforcement in Payments in Google Chrome prior to ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17741 (Insufficient validation of untrusted input in WebView in Google Chrome ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17740 (Uninitialized Use in ANGLE in Google Chrome prior to 151.0.7922.72 all ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17739 (Insufficient policy enforcement in Extensions in Google Chrome prior t ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17738 (Insufficient validation of untrusted input in Payments in Google Chrom ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17737 (Use after free in Bluetooth in Google Chrome on Android prior to 151.0 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17736 (Insufficient validation of untrusted input in WebView in Google Chrome ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17735 (Insufficient validation of untrusted input in BFCache in Google Chrome ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17734 (Inappropriate implementation in Autofill in Google Chrome prior to 151 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17733 (Inappropriate implementation in QUIC in Google Chrome on Android prior ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17732 (Inappropriate implementation in SVG in Google Chrome prior to 151.0.79 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17731 (Inappropriate implementation in Autofill in Google Chrome on Android p ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17730 (Side-channel information leakage in Autofill in Google Chrome prior to ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17729 (Use after free in V8 in Google Chrome prior to 151.0.7922.72 allowed a ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17728 (Inappropriate implementation in Extensions in Google Chrome prior to 1 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17727 (Out of bounds write in WebGL in Google Chrome on Android prior to 151. ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17726 (Integer overflow in WebGL in Google Chrome on Android prior to 151.0.7 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17725 (Type Confusion in V8 in Google Chrome prior to 151.0.7922.72 allowed a ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17724 (Race in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17723 (Use after free in Media in Google Chrome on Windows prior to 151.0.792 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17722 (Object lifecycle issue in WebView in Google Chrome on Android prior to ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17721 (Out of bounds write in ANGLE in Google Chrome prior to 151.0.7922.72 a ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17720 (Insufficient policy enforcement in Passwords in Google Chrome prior to ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17719 (Use after free in Input in Google Chrome prior to 151.0.7922.72 allowe ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17718 (Use after free in ANGLE in Google Chrome prior to 151.0.7922.72 allowe ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17717 (Integer overflow in ANGLE in Google Chrome prior to 151.0.7922.72 allo ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17716 (Use after free in Updater in Google Chrome on Mac prior to 151.0.7922. ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17715 (Inappropriate implementation in Passwords in Google Chrome prior to 15 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17714 (Uninitialized Use in ANGLE in Google Chrome prior to 151.0.7922.72 all ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17713 (Insufficient validation of untrusted input in Accessibility in Google ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17712 (Race in Skia in Google Chrome on Mac prior to 151.0.7922.72 allowed a ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17711 (Race in Downloads in Google Chrome on Mac prior to 151.0.7922.72 allow ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17710 (Inappropriate implementation in MHTML in Google Chrome on Mac prior to ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17709 (Race in Downloads in Google Chrome on Mac prior to 151.0.7922.72 allow ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17708 (Use after free in Audio in Google Chrome prior to 151.0.7922.72 allowe ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17707 (Uninitialized Use in Media in Google Chrome on Windows prior to 151.0. ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17706 (Insufficient validation of untrusted input in Media in Google Chrome o ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17705 (Integer overflow in libxml in Google Chrome prior to 151.0.7922.72 all ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17704 (Use after free in ANGLE in Google Chrome prior to 151.0.7922.72 allowe ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17703 (Insufficient policy enforcement in Chrome for iOS in Google Chrome on ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17702 (Inappropriate implementation in Skia in Google Chrome prior to 151.0.7 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17701 (Insufficient validation of untrusted input in ANGLE in Google Chrome o ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17700 (Insufficient validation of untrusted input in Actor in Google Chrome p ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17699 (Use after free in Views in Google Chrome prior to 151.0.7922.72 allowe ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17698 (Insufficient validation of untrusted input in UI in Google Chrome on A ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17697 (Type Confusion in ANGLE in Google Chrome prior to 151.0.7922.72 allowe ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17696 (Side-channel information leakage in Media in Google Chrome prior to 15 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17695 (Inappropriate implementation in ANGLE in Google Chrome on Mac prior to ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17694 (Use after free in DOM in Google Chrome prior to 151.0.7922.72 allowed ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17693 (Insufficient policy enforcement in FileSystem in Google Chrome prior t ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17692 (Use after free in DataTransfer in Google Chrome on Windows prior to 15 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17691 (Out of bounds write in ANGLE in Google Chrome on Windows prior to 151. ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17690 (Insufficient validation of untrusted input in PDF in Google Chrome on ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17689 (Uninitialized Use in ANGLE in Google Chrome prior to 151.0.7922.72 all ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17688 (Use after free in Input in Google Chrome prior to 151.0.7922.72 allowe ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17687 (Type Confusion in ANGLE in Google Chrome prior to 151.0.7922.72 allowe ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17686 (Insufficient validation of untrusted input in Passwords in Google Chro ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17685 (Use after free in Autofill in Google Chrome prior to 151.0.7922.72 all ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17684 (Insufficient validation of untrusted input in Chrome for iOS in Google ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17683 (Inappropriate implementation in ANGLE in Google Chrome prior to 151.0. ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17682 (Integer overflow in ANGLE in Google Chrome prior to 151.0.7922.72 allo ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17681 (Insufficient validation of untrusted input in Web Authentication in Go ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17680 (Heap buffer overflow in Color in Google Chrome on ChromeOS prior to 15 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17679 (Insufficient validation of untrusted input in Print Preview in Google ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17678 (Out of bounds read in ANGLE in Google Chrome prior to 151.0.7922.72 al ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17677 (Inappropriate implementation in ANGLE in Google Chrome on Android prio ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17676 (Inappropriate implementation in ANGLE in Google Chrome on Android prio ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17675 (Out of bounds write in ANGLE in Google Chrome prior to 151.0.7922.72 a ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17674 (Inappropriate implementation in HTML in Google Chrome prior to 151.0.7 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17673 (Integer overflow in QUIC in Google Chrome prior to 151.0.7922.72 allow ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17672 (Insufficient validation of untrusted input in Chromecast in Google Chr ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17671 (Insufficient validation of untrusted input in ANGLE in Google Chrome p ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17670 (Use after free in Views in Google Chrome prior to 151.0.7922.72 allowe ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17669 (Inappropriate implementation in Chrome for iOS in Google Chrome on iOS ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17668 (Uninitialized Use in ANGLE in Google Chrome prior to 151.0.7922.72 all ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17667 (Uninitialized Use in ANGLE in Google Chrome prior to 151.0.7922.72 all ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17666 (Cryptographic Flaw in Enterprise in Google Chrome prior to 151.0.7922. ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17665 (Use after free in V8 in Google Chrome prior to 151.0.7922.72 allowed a ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17664 (Insufficient validation of untrusted input in Loader in Google Chrome ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17663 (Insufficient validation of untrusted input in GPU in Google Chrome on ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17662 (Insufficient policy enforcement in Prefetch in Google Chrome prior to ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17661 (Use after free in Loader in Google Chrome prior to 151.0.7922.72 allow ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17660 (Insufficient validation of untrusted input in Network in Google Chrome ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17659 (Inappropriate implementation in SiteIsolation in Google Chrome prior t ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17658 (Use after free in V8 in Google Chrome prior to 151.0.7922.72 allowed a ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17657 (Use after free in Navigation in Google Chrome prior to 151.0.7922.72 a ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17656 (Use after free in Ozone in Google Chrome prior to 151.0.7922.72 allowe ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17655 (Insufficient validation of untrusted input in ANGLE in Google Chrome p ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17654 (Race in Updater in Google Chrome on Mac prior to 151.0.7922.72 allowed ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17653 (Use after free in Skia in Google Chrome prior to 151.0.7922.72 allowed ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17652 (Use after free in Views in Google Chrome prior to 151.0.7922.72 allowe ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17651 (Insufficient validation of untrusted input in Dawn in Google Chrome on ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-17650 (Use after free in Compositing in Google Chrome prior to 151.0.7922.72 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.71-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-16728 (undici's retry interceptor can deliver a response whose body length do ...)
@@ -7356,19 +7573,19 @@ CVE-2026-21653 (Victor SSRF vulnerability in Johnson Controls CCure 9000 and vic
CVE-2026-16870 (Multiple security vulnerabilities in Snowflake libsnowflakeclient vers ...)
NOT-FOR-US: Snowflake libsnowflakeclient
CVE-2026-16807 (Out of bounds write in Codecs in Google Chrome prior to 150.0.7871.186 ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.47-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-16806 (Use after free in WebMCP in Google Chrome prior to 150.0.7871.186 allo ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.47-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-16805 (Use after free in Blink in Google Chrome prior to 150.0.7871.186 allow ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.47-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-16804 (Use after free in Input in Google Chrome prior to 150.0.7871.186 allow ...)
- {DSA-6408-1}
+ {DSA-6408-1 DLA-4710-1}
- chromium 151.0.7922.47-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-16796 (Improper neutralization of argument delimiters in the install_packages ...)
@@ -36081,11 +36298,13 @@ CVE-2026-54286 (Hono is a Web application framework that provides support for an
CVE-2026-54285 (opentelemetry-js is the OpenTelemetry JavaScript Client. Prior to 2.8. ...)
NOT-FOR-US: opentelemetry-js
CVE-2026-54283 (Starlette is a lightweight ASGI framework/toolkit. From 0.4.1 until 1. ...)
+ {DLA-4711-1}
- starlette 1.3.1-1 (bug #1140631)
NOTE: https://github.com/Kludex/starlette/security/advisories/GHSA-82w8-qh3p-5jfq
NOTE: https://github.com/Kludex/starlette/pull/3329
NOTE: Fixed by: https://github.com/Kludex/starlette/commit/dba1c4babc4f99ad2622bb913d87045775dda735 (1.3.1)
CVE-2026-54282 (Starlette is a lightweight ASGI framework/toolkit. Prior to 1.3.0, the ...)
+ {DLA-4711-1}
- starlette 1.3.1-1 (bug #1140632)
NOTE: https://github.com/Kludex/starlette/security/advisories/GHSA-jp82-jpqv-5vv3
NOTE: https://github.com/Kludex/starlette/pull/3326
@@ -37682,6 +37901,7 @@ CVE-2026-48821 (Shaarli is a personal bookmarking service. Versions 0.16.1 and p
CVE-2026-48820 (CakePHP is a rapid development framework for PHP. In versions 4.5.11 a ...)
NOT-FOR-US: CakePHP
CVE-2026-48817 (Starlette is a lightweight ASGI framework/toolkit. In versions 1.0.1 a ...)
+ {DLA-4711-1}
- starlette 1.1.0-1
[trixie] - starlette <no-dsa> (Minor issue)
NOTE: https://github.com/Kludex/starlette/security/advisories/GHSA-x746-7m8f-x49c
@@ -102188,7 +102408,7 @@ CVE-2026-2671 (A vulnerability was detected in Mendi Neurofeedback Headset V4. A
CVE-2026-29787 (mcp-memory-service is an open-source memory backend for multi-agent sy ...)
NOT-FOR-US: mcp-memory-service
CVE-2026-29786 (node-tar is a full-featured Tar for Node.js. Prior to version 7.5.10, ...)
- {DLA-4552-1}
+ {DLA-4712-1 DLA-4552-1}
- node-tar 6.2.1+ds1+~cs6.1.13-8
[trixie] - node-tar 6.2.1+~cs7.0.8-1+deb13u1
NOTE: https://github.com/isaacs/node-tar/security/advisories/GHSA-qffp-2rhf-9h96
@@ -109113,7 +109333,7 @@ CVE-2026-26964 (Windmill is an open-source developer platform for internal code:
CVE-2026-26963 (Cilium is a networking, observability, and security solution with an e ...)
- cilium <itp> (bug #858303)
CVE-2026-26960 (node-tar is a full-featured Tar for Node.js. When using default option ...)
- {DLA-4552-1}
+ {DLA-4712-1 DLA-4552-1}
- node-tar 6.2.1+ds1+~cs6.1.13-8 (bug #1129378)
[trixie] - node-tar 6.2.1+~cs7.0.8-1+deb13u1
NOTE: https://github.com/isaacs/node-tar/security/advisories/GHSA-83g3-92jg-28cx
@@ -122569,7 +122789,7 @@ CVE-2025-10484 (The Registration & Login with Mobile Phone Number for WooCommerc
CVE-2026-23800 (Incorrect Privilege Assignment vulnerability in Modular DS modular-con ...)
NOT-FOR-US: WordPress plugin or theme
CVE-2026-23745 (node-tar is a Tar for Node.js. The node-tar library (<= 7.5.2) fails t ...)
- {DLA-4552-1}
+ {DLA-4712-1 DLA-4552-1}
- node-tar 6.2.1+ds1+~cs6.1.13-6
[trixie] - node-tar 6.2.1+~cs7.0.8-1+deb13u1
NOTE: https://github.com/isaacs/node-tar/security/advisories/GHSA-8qq5-rm4j-mr97
@@ -197071,7 +197291,7 @@ CVE-2025-52938 (Out-of-bounds Read vulnerability in dail8859 NotepadNext (src/lu
CVE-2025-52937 (Vulnerability in PointCloudLibrary PCL (surface/src/3rdparty/opennurbs ...)
- pcl <not-affected> (PCL in Debian uses the system copy of zlib)
CVE-2025-52936 (Improper Link Resolution Before File Access ('Link Following') vulnera ...)
- {DLA-4238-1}
+ {DLA-4713-1 DLA-4238-1}
- sslh 2.3.1-1 (bug #1108284)
[trixie] - sslh <no-dsa> (Minor issue)
NOTE: https://github.com/yrutschle/sslh/pull/494
@@ -234707,7 +234927,7 @@ CVE-2024-13217 (The Jeg Elementor Kit plugin for WordPress is vulnerable to Sens
CVE-2024-13148 (Improper Neutralization of Special Elements used in an SQL Command ('S ...)
NOT-FOR-US: Yukseloglu Filter B2B Login Platform
CVE-2024-10918 (Stack-based Buffer Overflow vulnerability in libmodbus v3.1.10 allows ...)
- {DLA-4084-1}
+ {DLA-4714-1 DLA-4084-1}
- libmodbus 3.1.11-1
NOTE: https://www.nozominetworks.com/labs/vulnerability-advisories-cve-2024-10918
NOTE: https://github.com/stephane/libmodbus/commit/df79a02feb253c0a9a009bcdbb21e47581315111 (v3.1.11)
@@ -337091,7 +337311,7 @@ CVE-2024-29031 (Meshery is an open source, cloud native manager that enables the
CVE-2024-28891 (SQL injection vulnerability exists in the script Handler_CFG.ashx.)
NOT-FOR-US: Delta Electronics
CVE-2024-28863 (node-tar is a Tar for Node.js. node-tar prior to version 6.2.1 has no ...)
- {DLA-4552-1}
+ {DLA-4712-1 DLA-4552-1}
- node-tar 6.1.13+~cs7.0.5-2
[buster] - node-tar <no-dsa> (Minor issue)
NOTE: https://github.com/isaacs/node-tar/security/advisories/GHSA-f5x3-32g6-xq36
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ee75319fa739104207683dd5817fa36ff6fed4d7
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ee75319fa739104207683dd5817fa36ff6fed4d7
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260801/ae915c6d/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list