[Git][security-tracker-team/security-tracker][master] Add CVE-2026-14587/neo4j-community

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Aug 22 13:45:37 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
6d75ea2a by Salvatore Bonaccorso at 2026-08-22T14:45:00+02:00
Add CVE-2026-14587/neo4j-community

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -23481,7 +23481,7 @@ CVE-2026-15452 (The Smash Balloon Social Photo Feed \u2013 Easy Social Feeds Plu
 CVE-2026-15281 (The User Access Manager plugin for WordPress is vulnerable to Second-O ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2026-14587 (Neo4j's Bolt modern handshake decoder treats an overlong capability bi ...)
-	TODO: check
+	- neo4j-community <itp> (bug #685615)
 CVE-2026-14574 (In Eclipse Theia versions 0.7.0 and up until including 1.73.1, the `Pr ...)
 	NOT-FOR-US: Eclipse
 CVE-2026-14304 (In Eclipse Accessibility Tools Framework (ACTF) versions up to 1.6.0 ( ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6d75ea2ad53cbd38d60b8a411d290f05edc1490a

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6d75ea2ad53cbd38d60b8a411d290f05edc1490a
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260822/264a755f/attachment.htm>


More information about the debian-security-tracker-commits mailing list