[Git][security-tracker-team/security-tracker][master] Add CVE-2026-18772/rlottie

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Aug 4 21:31:20 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
aeb7df6f by Salvatore Bonaccorso at 2026-08-04T22:30:50+02:00
Add CVE-2026-18772/rlottie

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -227,7 +227,8 @@ CVE-2026-18774 (A flaw has been found in NousResearch hermes-agent up to 0.16.0.
 CVE-2026-18773 (A vulnerability was detected in NousResearch hermes-agent up to 2026.6 ...)
 	NOT-FOR-US: NousResearch
 CVE-2026-18772 (Improper input validation vulnerability in Samsung Open Source rlottie ...)
-	TODO: check
+	- rlottie <unfixed>
+	NOTE: https://github.com/Samsung/rlottie/pull/596
 CVE-2026-18770 (A vulnerability has been found in vibesurf-ai VibeSurf up to cd6e519d5 ...)
 	NOT-FOR-US: vibesurf-ai VibeSurf
 CVE-2026-18766 (A flaw has been found in chetans9 core-php-admin-panel up to 90d07ed5a ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/aeb7df6f37c98e09b7d6978b7f401b22f31ed222

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/aeb7df6f37c98e09b7d6978b7f401b22f31ed222
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260804/08455fd5/attachment.htm>


More information about the debian-security-tracker-commits mailing list