[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-9496/npm

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Jun 6 21:11:11 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
3b8fd2d4 by Salvatore Bonaccorso at 2026-06-06T22:10:45+02:00
Add Debian bug reference for CVE-2026-9496/npm

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -10060,7 +10060,7 @@ CVE-2026-9498 (A vulnerability has been found in Dromara lamp-cloud up to 5.6.2.
 CVE-2026-9497 (A flaw has been found in changmingxie tcc-transaction up to 2.1.0. Thi ...)
 	NOT-FOR-US: changmingxie tcc-transaction
 CVE-2026-9496 (Versions of the package pacote from 11.2.7 are vulnerable to Denial of ...)
-	- npm <unfixed>
+	- npm <unfixed> (bug #1139159)
 	NOTE: https://security.snyk.io/vuln/SNYK-JS-PACOTE-8225084
 CVE-2026-9495 (Versions of the package @koa/router from 14.0.0 and before 15.0.0 are  ...)
 	NOT-FOR-US: koa/router



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/3b8fd2d42093c16b6dd9285c1cf74a35ada61470

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/3b8fd2d42093c16b6dd9285c1cf74a35ada61470
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260606/8eebaf27/attachment.htm>


More information about the debian-security-tracker-commits mailing list