[Git][security-tracker-team/security-tracker][master] Add CVE-2026-31958/python-tornado

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Mar 11 21:17:29 GMT 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
9b7c17ad by Salvatore Bonaccorso at 2026-03-11T22:16:35+01:00
Add CVE-2026-31958/python-tornado

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -65,7 +65,8 @@ CVE-2026-31960 (Quill provides simple mac binary signing and notarization from a
 CVE-2026-31959 (Quill provides simple mac binary signing and notarization from any pla ...)
 	NOT-FOR-US: Quill
 CVE-2026-31958 (Tornado is a Python web framework and asynchronous networking library. ...)
-	TODO: check
+	- python-tornado <unfixed>
+	NOTE: https://github.com/tornadoweb/tornado/security/advisories/GHSA-qjxf-f2mg-c6mc
 CVE-2026-31957 (Himmelblau is an interoperability suite for Microsoft Azure Entra ID a ...)
 	NOT-FOR-US: Himmelblau
 CVE-2026-31954 (Emlog is an open source website building system. In 2.6.6 and earlier, ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9b7c17adfd82b9fd616ebc415200026b2a07996e

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9b7c17adfd82b9fd616ebc415200026b2a07996e
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260311/f3d35320/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list