[Git][security-tracker-team/security-tracker][master] Add reference to pull request for CVE-2026-19693

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Aug 18 06:10:03 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
25f465c6 by Salvatore Bonaccorso at 2026-08-18T07:09:25+02:00
Add reference to pull request for CVE-2026-19693

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -307,7 +307,7 @@ CVE-2026-19998 (A weakness has been identified in code-projects Online Shopping
 	NOT-FOR-US: code-projects
 CVE-2026-19693 (extract-zip through 2.0.1 containment-checks only the parent directory ...)
 	- node-extract-zip <unfixed>
-	TODO: check details
+	NOTE: https://github.com/max-mapper/extract-zip/pull/160
 CVE-2026-18674 (On a Kong Mesh global control plane, resources received over the zone- ...)
 	TODO: check
 CVE-2026-17639 (Certain HP Smart Tank All-in-One printers may be potentially vulnerabl ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/25f465c608f33a314f3ebe9c7e391ef850aa6f44

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/25f465c608f33a314f3ebe9c7e391ef850aa6f44
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260818/e584a450/attachment.htm>


More information about the debian-security-tracker-commits mailing list