[Git][security-tracker-team/security-tracker][master] Add two new lexbor issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Mar 14 09:32:21 GMT 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
a377bf81 by Salvatore Bonaccorso at 2026-03-14T10:31:25+01:00
Add two new lexbor issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -484,9 +484,11 @@ CVE-2026-29774 (FreeRDP is a free implementation of the Remote Desktop Protocol.
 	NOTE: https://github.com/FreeRDP/FreeRDP/security/advisories/GHSA-5q35-hv9x-7794
 	NOTE: Fixed by: https://github.com/FreeRDP/FreeRDP/commit/6482b7a92fff3959582cef052d1967ad6bde3738 (3.24.0)
 CVE-2026-29079 (Lexbor is a web browser engine library. Prior to 2.7.0, a type\u2011co ...)
-	TODO: check
+	- lexbor <unfixed>
+	NOTE: https://github.com/lexbor/lexbor/security/advisories/GHSA-mrpr-v36q-2vp8
 CVE-2026-29078 (Lexbor is a web browser engine library. Prior to 2.7.0, the ISO\u20112 ...)
-	TODO: check
+	- lexbor <unfixed>
+	NOTE: https://github.com/lexbor/lexbor/security/advisories/GHSA-mrwr-xh7f-96v3
 CVE-2026-26954 (SandboxJS is a JavaScript sandboxing library. Prior to 0.8.34, it is p ...)
 	TODO: check
 CVE-2026-24097 (Improper permission enforcement in Checkmk versions 2.4.0 before 2.4.0 ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a377bf818697368d1dfc5007ee3cc0103566c00b

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a377bf818697368d1dfc5007ee3cc0103566c00b
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260314/c0be91ac/attachment.htm>


More information about the debian-security-tracker-commits mailing list