[Git][security-tracker-team/security-tracker][master] Add two new guzzle issues
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Tue Aug 4 09:38:46 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
4b180fbb by Salvatore Bonaccorso at 2026-08-04T10:38:21+02:00
Add two new guzzle issues
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -21,9 +21,17 @@ CVE-2026-69247 (cryptography is a package designed to expose cryptographic primi
NOTE: https://github.com/pyca/cryptography/pull/15369
NOTE: Fixed by: https://github.com/pyca/cryptography/commit/53fccd93413a8d7f07d6d8999681f27b75cffa3f (50.0.0)
CVE-2026-69246 (Guzzle is an extensible PHP HTTP client. Prior to 7.15.2 and 8.0.1, Gu ...)
- TODO: check
+ [experimental] - guzzle 8.0.1-1
+ - guzzle <unfixed>
+ NOTE: https://github.com/guzzle/guzzle/security/advisories/GHSA-v5mv-p594-2x33
+ NOTE: Fixed by: https://github.com/guzzle/guzzle/commit/3aeea0406aab88cbbd86531313d7cebf8ae149a4 (8.0.1)
+ NOTE: Fixed by: https://github.com/guzzle/guzzle/commit/744101956d78b7c1384d0cbf379db13e859167bf (7.15.2)
CVE-2026-69245 (Guzzle is an extensible PHP HTTP client. Prior to 7.15.2 and 8.0.1, Se ...)
- TODO: check
+ [experimental] - guzzle 8.0.1-1
+ - guzzle <unfixed>
+ NOTE: https://github.com/guzzle/guzzle/security/advisories/GHSA-f7vp-7xgx-4w4r
+ NOTE: Fixed by: https://github.com/guzzle/guzzle/commit/3aeea0406aab88cbbd86531313d7cebf8ae149a4 (8.0.1)
+ NOTE: Fixed by: https://github.com/guzzle/guzzle/commit/744101956d78b7c1384d0cbf379db13e859167bf (7.15.2)
CVE-2026-69244 (AIOHTTP is an asynchronous HTTP client/server framework for asyncio an ...)
TODO: check
CVE-2026-69243 (AIOHTTP is an asynchronous HTTP client/server framework for asyncio an ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4b180fbbfff30a4b3dafa599a704a52b3a9f0fd9
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4b180fbbfff30a4b3dafa599a704a52b3a9f0fd9
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260804/a766f15f/attachment.htm>
More information about the debian-security-tracker-commits
mailing list