[Git][security-tracker-team/security-tracker][master] Add CVE-2026-55688/async-http-client

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Jul 2 08:38:40 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
42e39cd8 by Salvatore Bonaccorso at 2026-07-02T09:38:12+02:00
Add CVE-2026-55688/async-http-client

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -53,7 +53,11 @@ CVE-2026-55791 (Craft CMS is a content management system (CMS). Versions 4.0.0-R
 CVE-2026-55790 (Craft CMS is a content management system (CMS). In versions 5.0.0-RC1  ...)
 	TODO: check
 CVE-2026-55688 (The AsyncHttpClient (AHC) library allows Java applications to easily e ...)
-	TODO: check
+	- async-http-client <unfixed>
+	NOTE: https://github.com/AsyncHttpClient/async-http-client/security/advisories/GHSA-m452-q8c9-rg2f
+	NOTE: https://github.com/AsyncHttpClient/async-http-client/pull/2196
+	NOTE: Fixed by: https://github.com/AsyncHttpClient/async-http-client/commit/e6955c1e3951cf80e286981d064f6c926ce33f47 (async-http-client-project-3.0.11)
+	NOTE: Fixed by: https://github.com/AsyncHttpClient/async-http-client/commit/8e4069cf3c92abe099db5fb13378ac2fe9e1fd3b (async-http-client-project-2.16.0)
 CVE-2026-55661 (Tina is a headless content management system. In versions prior to @ti ...)
 	TODO: check
 CVE-2026-55660 (Tina is a headless content management system. In versions prior to @ti ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/42e39cd8cc7b749922f3b906bba1352b870e5f7e

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/42e39cd8cc7b749922f3b906bba1352b870e5f7e
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260702/8a306f29/attachment.htm>


More information about the debian-security-tracker-commits mailing list