[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2026-9496/npm
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Sat Jun 6 21:11:11 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
3b8fd2d4 by Salvatore Bonaccorso at 2026-06-06T22:10:45+02:00
Add Debian bug reference for CVE-2026-9496/npm
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -10060,7 +10060,7 @@ CVE-2026-9498 (A vulnerability has been found in Dromara lamp-cloud up to 5.6.2.
CVE-2026-9497 (A flaw has been found in changmingxie tcc-transaction up to 2.1.0. Thi ...)
NOT-FOR-US: changmingxie tcc-transaction
CVE-2026-9496 (Versions of the package pacote from 11.2.7 are vulnerable to Denial of ...)
- - npm <unfixed>
+ - npm <unfixed> (bug #1139159)
NOTE: https://security.snyk.io/vuln/SNYK-JS-PACOTE-8225084
CVE-2026-9495 (Versions of the package @koa/router from 14.0.0 and before 15.0.0 are ...)
NOT-FOR-US: koa/router
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/3b8fd2d42093c16b6dd9285c1cf74a35ada61470
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/3b8fd2d42093c16b6dd9285c1cf74a35ada61470
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260606/8eebaf27/attachment.htm>
More information about the debian-security-tracker-commits
mailing list