[Git][security-tracker-team/security-tracker][master] Add CVE-2026-31870/cpp-httplib

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Mar 11 21:18:04 GMT 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
d2eb77c1 by Salvatore Bonaccorso at 2026-03-11T22:17:34+01:00
Add CVE-2026-31870/cpp-httplib

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -108,7 +108,9 @@ CVE-2026-31872 (Parse Server is an open source backend that can be deployed to a
 CVE-2026-31871 (Parse Server is an open source backend that can be deployed to any inf ...)
 	NOT-FOR-US: Parse Server
 CVE-2026-31870 (cpp-httplib is a C++11 single-file header-only cross platform HTTP/HTT ...)
-	TODO: check
+	- cpp-httplib <unfixed>
+	NOTE: https://github.com/yhirose/cpp-httplib/security/advisories/GHSA-39q5-hh6x-jpxx
+	NOTE: Fixed by: https://github.com/yhirose/cpp-httplib/commit/e41ec36274a235d8b0bbf21d57e32068a30f6519 (v0.37.1)
 CVE-2026-31868 (Parse Server is an open source backend that can be deployed to any inf ...)
 	NOT-FOR-US: Parse Server
 CVE-2026-31867 (Craft Commerce is an ecommerce platform for Craft CMS. Prior to 4.11.0 ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d2eb77c1dccbe5abcc91c9944d6f758135f10dfd

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d2eb77c1dccbe5abcc91c9944d6f758135f10dfd
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260311/507f9755/attachment.htm>


More information about the debian-security-tracker-commits mailing list