[Git][security-tracker-team/security-tracker][master] Add CVE-2026-48817/starlette

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Jun 18 19:37:07 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
5b00c6ab by Salvatore Bonaccorso at 2026-06-18T20:36:04+02:00
Add CVE-2026-48817/starlette

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -100,7 +100,10 @@ CVE-2026-48821 (Shaarli is a personal bookmarking service. Versions 0.16.1 and p
 CVE-2026-48820 (CakePHP is a rapid development framework for PHP. In versions 4.5.11 a ...)
 	NOT-FOR-US: CakePHP
 CVE-2026-48817 (Starlette is a lightweight ASGI framework/toolkit. In versions 1.0.1 a ...)
-	TODO: check
+	- starlette 1.1.0-1
+	NOTE: https://github.com/Kludex/starlette/security/advisories/GHSA-x746-7m8f-x49c
+	NOTE: https://github.com/Kludex/starlette/pull/3286
+	NOTE: https://github.com/Kludex/starlette/commit/e3f972225adb1d84b80dba132f520cc24cb84229 (1.1.0)
 CVE-2026-48814 (Network-AI is a TypeScript/Node.js multi-agent orchestrator. In versio ...)
 	NOT-FOR-US: Network-AI
 CVE-2026-48768 (TypeBot is a chatbot builder tool. In versions 3.16.1 and earlier, POS ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5b00c6ab1f2467449b072aad03f0cc2ad8b17b64

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5b00c6ab1f2467449b072aad03f0cc2ad8b17b64
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260618/2cca0150/attachment.htm>


More information about the debian-security-tracker-commits mailing list