[Git][security-tracker-team/security-tracker][master] Add new node-nodemailer issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Aug 31 20:56:01 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
fc5626e5 by Salvatore Bonaccorso at 2026-08-31T21:55:42+02:00
Add new node-nodemailer issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -163,13 +163,17 @@ CVE-2026-82665 (A vulnerability was detected in yaojingang GEOFlow up to 2.1.0.
 CVE-2026-82664 (A security vulnerability has been detected in yaojingang GEOFlow up to ...)
 	NOT-FOR-US: yaojingang GEOFlow
 CVE-2026-82662 (Nodemailer before 8.0.8 disables TLS certificate verification in lib/f ...)
-	TODO: check
+	- node-nodemailer 8.0.11+~8.0.1-1
+	NOTE: https://github.com/nodemailer/nodemailer/security/advisories/GHSA-r7g4-qg5f-qqm2
 CVE-2026-82661 (Nodemailer before 8.0.9 fails to sanitize carriage return and line fee ...)
-	TODO: check
+	- node-nodemailer 8.0.11+~8.0.1-1
+	NOTE: https://github.com/nodemailer/nodemailer/security/advisories/GHSA-268h-hp4c-crq3
 CVE-2026-82660 (Nodemailer before 8.0.9 fails to enforce disableFileAccess and disable ...)
-	TODO: check
+	- node-nodemailer 8.0.11+~8.0.1-1
+	NOTE: https://github.com/nodemailer/nodemailer/security/advisories/GHSA-wqvq-jvpq-h66f
 CVE-2026-82659 (nodemailer before 9.0.1 fails to apply disableFileAccess and disableUr ...)
-	TODO: check
+	- node-nodemailer 9.0.3+~8.0.1-1
+	NOTE: https://github.com/nodemailer/nodemailer/security/advisories/GHSA-p6gq-j5cr-w38f
 CVE-2026-82631 (A security flaw has been discovered in valkey-io valkey 9.1.0. The aff ...)
 	TODO: check
 CVE-2026-82630 (A vulnerability was identified in PowerJob up to 5.1.2. Impacted is th ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/fc5626e5ca0b75fdef4852f211fc9c835058d83f

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/fc5626e5ca0b75fdef4852f211fc9c835058d83f
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260831/c3d278be/attachment.htm>


More information about the debian-security-tracker-commits mailing list