[Git][security-tracker-team/security-tracker][master] Add two new cpp-httplib issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Aug 28 13:45:17 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
aa5fe4de by Salvatore Bonaccorso at 2026-08-28T11:21:59+02:00
Add two new cpp-httplib issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -829,9 +829,13 @@ CVE-2026-77438 (Trilium is an open-source hierarchical note-taking application.
 CVE-2026-77365 (The Optimole \u2013 Optimize Images | Convert WebP & AVIF | CDN & Lazy ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2026-77358 (cpp-httplib is a C++ header-only HTTP/HTTPS library. In versions 0.33. ...)
-	TODO: check
+	- cpp-httplib <unfixed>
+	NOTE: https://github.com/yhirose/cpp-httplib/security/advisories/GHSA-w7p7-f35j-mw7q
+	NOTE: Fixed by: https://github.com/yhirose/cpp-httplib/commit/2f986fd5e56e7c5f686d965174516360930f371d (v0.50.1)
 CVE-2026-77341 (cpp-httplib is a C++ header-only HTTP/HTTPS library. In version 0.49.0 ...)
-	TODO: check
+	- cpp-httplib <unfixed>
+	NOTE: https://github.com/yhirose/cpp-httplib/security/advisories/GHSA-2r2h-jc8w-w66c
+	NOTE: Fixed by: https://github.com/yhirose/cpp-httplib/commit/568d434e72fc51729d0ad33abffb181e5f7a453d (v0.50.0)
 CVE-2026-76945 (The affected Ebyte device relies on client-managed authentication toke ...)
 	NOT-FOR-US: Ebyte
 CVE-2026-76943 (Xiiaozet LK100Wt contains an authentication weakness within an  admini ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/aa5fe4deef07a878056f74f4f8694ed45968606a

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/aa5fe4deef07a878056f74f4f8694ed45968606a
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260828/7ac9d51e/attachment.htm>


More information about the debian-security-tracker-commits mailing list