[Git][security-tracker-team/security-tracker][master] Add CVE-2026-1665/nvm, itp'ed

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Jan 30 16:20:31 GMT 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
33aa3bb1 by Salvatore Bonaccorso at 2026-01-30T17:20:01+01:00
Add CVE-2026-1665/nvm, itp'ed

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -54,7 +54,7 @@ CVE-2026-24714 (Some end of service NETGEAR products provide "TelnetEnable" func
 CVE-2026-1680 (Improper access control in the WCF endpoint in Edgemo (now owned by Da ...)
 	NOT-FOR-US: Edgemo Local Admin Service
 CVE-2026-1665 (A command injection vulnerability exists in nvm (Node Version Manager) ...)
-	TODO: check
+	- nvm <itp> (bug #1092894)
 CVE-2026-1638 (A security flaw has been discovered in Tenda AC21 1.1.1.1/1.dmzip/16.0 ...)
 	NOT-FOR-US: Tenda
 CVE-2026-1637 (A vulnerability was identified in Tenda AC21 16.03.08.16. The affected ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/33aa3bb179c528337320ebed14e11fd16dc9e164

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/33aa3bb179c528337320ebed14e11fd16dc9e164
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260130/2293832f/attachment.htm>


More information about the debian-security-tracker-commits mailing list