[Git][security-tracker-team/security-tracker][master] Add CVE-2026-5037/mxml

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sun Mar 29 20:17:56 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
69708a8d by Salvatore Bonaccorso at 2026-03-29T21:17:17+02:00
Add CVE-2026-5037/mxml

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -11,7 +11,9 @@ CVE-2026-5042 (A security flaw has been discovered in Belkin F9K1122 1.00.33. Th
 CVE-2026-5041 (A vulnerability was identified in code-projects Chamber of Commerce Me ...)
 	NOT-FOR-US: code-projects
 CVE-2026-5037 (A vulnerability was determined in mxml up to 4.0.4. This issue affects ...)
-	TODO: check
+	- mxml <unfixed>
+	NOTE: https://github.com/michaelrsweet/mxml/issues/350
+	NOTE: Fixed by: https://github.com/michaelrsweet/mxml/commit/6e27354466092a1ac65601e01ce6708710bb9fa5
 CVE-2026-5036 (A vulnerability was found in Tenda 4G06 04.06.01.29. This vulnerabilit ...)
 	NOT-FOR-US: Tenda
 CVE-2026-34005 (In Sofia on Xiongmai DVR/NVR (AHB7008T-MH-V2 and NBD7024H-P) 4.03.R11  ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/69708a8dd965d4b2519c4a72b056674c15bc3e76

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/69708a8dd965d4b2519c4a72b056674c15bc3e76
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260329/201fe798/attachment.htm>


More information about the debian-security-tracker-commits mailing list