[Git][security-tracker-team/security-tracker][master] Add new issues in Graylog

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Aug 29 09:53:13 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
69c7f5ee by Salvatore Bonaccorso at 2026-08-29T10:49:40+02:00
Add new issues in Graylog

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -189,7 +189,7 @@ CVE-2026-56100 (SpringBlade versions 2.7.3 through 3.5.0 contain a privilege esc
 CVE-2026-55891 (PrivateBin is an online pastebin where the server has zero knowledge o ...)
 	NOT-FOR-US: PrivateBin
 CVE-2026-55867 (Graylog is a free and open log management platform. From 6.2.0 until 6 ...)
-	TODO: check
+	- graylog2 <itp> (bug #652273)
 CVE-2026-55860 (MariaDB Connector/R2DBC is a non-blocking MariaDB and MySQL client imp ...)
 	NOT-FOR-US: MariaDB Connector/R2DBC
 CVE-2026-55859 (MariaDB Connector/R2DBC is a non-blocking MariaDB and MySQL client imp ...)
@@ -207,7 +207,7 @@ CVE-2026-55854 (MariaDB Connector/Node.js is used to connect applications develo
 CVE-2026-55848 (mapfish-print is a component of MapFish for printing templated cartogr ...)
 	NOT-FOR-US: MapFish
 CVE-2026-55841 (Graylog is a free and open log management platform. Prior to Graylog S ...)
-	TODO: check
+	- graylog2 <itp> (bug #652273)
 CVE-2026-55834 (Pocket ID is an OIDC provider that allows users to authenticate with t ...)
 	NOT-FOR-US: Pocket ID OIDC provider
 CVE-2026-55785 (free5GC is an open-source implementation of the 5G core network. Prior ...)
@@ -257,7 +257,7 @@ CVE-2026-55485 (Piccolo Admin is an admin interface and content management syste
 CVE-2026-55484 (ALOS HTTP is a Linux-first Go web framework and application server bui ...)
 	NOT-FOR-US: ALOS HTTP
 CVE-2026-55425 (Graylog is a free and open log management platform. From 7.1.0 until 7 ...)
-	TODO: check
+	- graylog2 <itp> (bug #652273)
 CVE-2026-55378 (JS Recon is a JavaScript enumeration and SAST tool. From 1.2.1-beta.1  ...)
 	NOT-FOR-US: JS Recon
 CVE-2026-55248 (plone.app.portlets provides portlets and a Plone-specific user interfa ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/69c7f5ee0a9afb3b58ada1bb7fd8c187283c16e5

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/69c7f5ee0a9afb3b58ada1bb7fd8c187283c16e5
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260829/c657223e/attachment.htm>


More information about the debian-security-tracker-commits mailing list