[Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Sun Jul 12 08:13:23 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
c9e5668f by security tracker role at 2026-07-12T07:13:17+00:00
automatic update
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,3 +1,35 @@
+CVE-2026-58281 (Deserialization of untrusted data in Microsoft Edge (Chromium-based) a ...)
+ TODO: check
+CVE-2026-15484 (A vulnerability was detected in TRENDnet TEW-821DAP 1.12B01. The affec ...)
+ TODO: check
+CVE-2026-15483 (A security vulnerability has been detected in TRENDnet TEW-821DAP 1.12 ...)
+ TODO: check
+CVE-2026-15482 (A weakness has been identified in Aster Telecom Azcall 10/11. This iss ...)
+ TODO: check
+CVE-2026-15481 (A security flaw has been discovered in Trendnet TEW-635BRM up to 1.00. ...)
+ TODO: check
+CVE-2026-15480 (A vulnerability was identified in Trendnet TEW-635BRM up to 1.00.03. T ...)
+ TODO: check
+CVE-2026-15479 (A vulnerability was found in H3C NX15 V100R017. Affected by this vulne ...)
+ TODO: check
+CVE-2026-15478 (A flaw has been found in IceHRM up to 35.0.1. This impacts an unknown ...)
+ TODO: check
+CVE-2026-15477 (A vulnerability was detected in Bahmni bahmnicore up to 0.93. This aff ...)
+ TODO: check
+CVE-2026-15476 (A security vulnerability has been detected in QILING Disk Master 6.0.0 ...)
+ TODO: check
+CVE-2026-15475 (A weakness has been identified in MiniTool Partition Wizard up to 13.6 ...)
+ TODO: check
+CVE-2026-15474 (A security flaw has been discovered in Eleveo Call Recording Software ...)
+ TODO: check
+CVE-2026-15473 (A vulnerability was identified in Eleveo Call Recording Software 9.7.0 ...)
+ TODO: check
+CVE-2026-15472 (A vulnerability was determined in Eleveo Call Recording Software 9.7.0 ...)
+ TODO: check
+CVE-2026-15471 (A vulnerability was found in Eleveo Call Recording Software 9.7.0. Thi ...)
+ TODO: check
+CVE-2026-15470 (A vulnerability has been found in Eleveo Call Recording Software 9.7.0 ...)
+ TODO: check
CVE-2026-61870 (ImageMagick before 7.1.2-26 contains a memory leak vulnerability in th ...)
- imagemagick 8:7.1.2.26+dfsg1-1
NOTE: https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-m596-67p7-69wh
@@ -1765,84 +1797,111 @@ CVE-2026-0288 (Multiple buffer overflow vulnerabilities in the User-ID Terminal
CVE-2025-12506 (GitLab has remediated an issue in GitLab CE/EE affecting all versions ...)
NOT-FOR-US: GitLab (used to be packaged in the Debian archive as src:gitlab, but never in a stable release)
CVE-2026-15112 (Use after free in Ozone in Google Chrome prior to 150.0.7871.115 allow ...)
+ {DSA-6387-1}
- chromium 150.0.7871.114-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-15129 (Use after free in Views in Google Chrome prior to 150.0.7871.115 allow ...)
+ {DSA-6387-1}
- chromium 150.0.7871.114-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-15132 (Uninitialized Use in V8 in Google Chrome prior to 150.0.7871.115 allow ...)
+ {DSA-6387-1}
- chromium 150.0.7871.114-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-15133 (Use after free in InterestGroups in Google Chrome prior to 150.0.7871. ...)
+ {DSA-6387-1}
- chromium 150.0.7871.114-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-15108 (Integer overflow in Extensions API in Google Chrome prior to 150.0.787 ...)
+ {DSA-6387-1}
- chromium 150.0.7871.114-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-15109 (Uninitialized Use in ANGLE in Google Chrome prior to 150.0.7871.115 al ...)
+ {DSA-6387-1}
- chromium 150.0.7871.114-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-15110 (Use after free in Extensions in Google Chrome prior to 150.0.7871.115 ...)
+ {DSA-6387-1}
- chromium 150.0.7871.114-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-15111 (Use after free in Views in Google Chrome prior to 150.0.7871.115 allow ...)
+ {DSA-6387-1}
- chromium 150.0.7871.114-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-15113 (Use after free in Autofill in Google Chrome on Android prior to 150.0. ...)
+ {DSA-6387-1}
- chromium 150.0.7871.114-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-15114 (Out of bounds read and write in Codecs in Google Chrome prior to 150.0 ...)
+ {DSA-6387-1}
- chromium 150.0.7871.114-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-15115 (Insufficient validation of untrusted input in WebAppInstalls in Google ...)
+ {DSA-6387-1}
- chromium 150.0.7871.114-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-15116 (Use after free in Actor in Google Chrome prior to 150.0.7871.115 allow ...)
+ {DSA-6387-1}
- chromium 150.0.7871.114-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-15117 (Use after free in Payments in Google Chrome prior to 150.0.7871.115 al ...)
+ {DSA-6387-1}
- chromium 150.0.7871.114-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-15118 (Use after free in Input in Google Chrome prior to 150.0.7871.115 allow ...)
+ {DSA-6387-1}
- chromium 150.0.7871.114-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-15119 (Race in GetUserMedia in Google Chrome prior to 150.0.7871.115 allowed ...)
+ {DSA-6387-1}
- chromium 150.0.7871.114-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-15120 (Use after free in Core in Google Chrome on Windows prior to 150.0.7871 ...)
+ {DSA-6387-1}
- chromium 150.0.7871.114-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-15121 (Use after free in WebRTC in Google Chrome prior to 150.0.7871.115 allo ...)
+ {DSA-6387-1}
- chromium 150.0.7871.114-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-15122 (Insufficient validation of untrusted input in Codecs in Google Chrome ...)
+ {DSA-6387-1}
- chromium 150.0.7871.114-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-15123 (Inappropriate implementation in DOM in Google Chrome prior to 150.0.78 ...)
+ {DSA-6387-1}
- chromium 150.0.7871.114-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-15124 (Insufficient policy enforcement in Passwords in Google Chrome prior to ...)
+ {DSA-6387-1}
- chromium 150.0.7871.114-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-15125 (Inappropriate implementation in Forms in Google Chrome prior to 150.0. ...)
+ {DSA-6387-1}
- chromium 150.0.7871.114-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-15126 (Use after free in Forms in Google Chrome prior to 150.0.7871.115 allow ...)
+ {DSA-6387-1}
- chromium 150.0.7871.114-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-15127 (Inappropriate implementation in WebGL in Google Chrome prior to 150.0. ...)
+ {DSA-6387-1}
- chromium 150.0.7871.114-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-15128 (Inappropriate implementation in Forms in Google Chrome prior to 150.0. ...)
+ {DSA-6387-1}
- chromium 150.0.7871.114-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-15130 (Insufficient policy enforcement in Navigation in Google Chrome prior t ...)
+ {DSA-6387-1}
- chromium 150.0.7871.114-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-15107 (Use after free in IndexedDB in Google Chrome prior to 150.0.7871.115 a ...)
+ {DSA-6387-1}
- chromium 150.0.7871.114-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-15131 (Inappropriate implementation in Navigation in Google Chrome prior to 1 ...)
+ {DSA-6387-1}
- chromium 150.0.7871.114-1
[bullseye] - chromium <end-of-life> (see #1061268)
CVE-2026-9074 (IBM API Connect 10.0.8.0 through 10.0.8.9 and12.1.0.0 through 12.1.0.3 ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c9e5668f93b6ef136ede676b5b5619389cd5ca4f
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c9e5668f93b6ef136ede676b5b5619389cd5ca4f
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260712/20bfea0a/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list