[Git][security-tracker-team/security-tracker][master] Add two new issues in opentofu
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Sun Aug 16 20:28:49 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
4cb64cea by Salvatore Bonaccorso at 2026-08-16T21:28:25+02:00
Add two new issues in opentofu
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,7 +1,7 @@
CVE-2026-74797 (OpenTofu versions before 1.11.4 contain a denial of service vulnerabil ...)
- TODO: check
+ - opentofu <itp> (bug #808940)
CVE-2026-74796 (OpenTofu before 1.11.7 fails to validate existing symlinks in the prov ...)
- TODO: check
+ - opentofu <itp> (bug #808940)
CVE-2026-74795 (Scriban before 6.6.0 contains an uncontrolled recursion vulnerability ...)
TODO: check
CVE-2026-74794 (Scriban before 6.6.0 contains an infinite recursion vulnerability in o ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4cb64ceac48e07f8fe9ff915802437fc060fdb71
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4cb64ceac48e07f8fe9ff915802437fc060fdb71
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260816/b79d42ec/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list