[Git][security-tracker-team/security-tracker][master] Add CVE-2026-41570/phpunit

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat May 9 07:27:22 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
aaf1ac44 by Salvatore Bonaccorso at 2026-05-09T08:26:57+02:00
Add CVE-2026-41570/phpunit

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -115,7 +115,9 @@ CVE-2026-41575 (In th30d4y/IP from version 1.0.1 to before version 2.0.1, a DOM-
 CVE-2026-41574 (Nhost is an open source Firebase alternative with GraphQL. Prior to ve ...)
 	NOT-FOR-US: Nhost
 CVE-2026-41570 (PHPUnit is a testing framework for PHP. In versions 12.5.21 and 13.1.5 ...)
-	TODO: check
+	- phpunit <unfixed>
+	NOTE: https://github.com/sebastianbergmann/phpunit/security/advisories/GHSA-qrr6-mg7r-m243
+	NOTE: https://github.com/sebastianbergmann/phpunit/pull/6592
 CVE-2026-41524 (Brave CMS is an open-source CMS. Prior to commit 6c56603, page and art ...)
 	NOT-FOR-US: Brave CMS
 CVE-2026-41512 (ai-scanner is an AI model safety scanner built on NVIDIA garak. From v ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/aaf1ac44feab848fd8186d4da584fdee4ca5d91c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/aaf1ac44feab848fd8186d4da584fdee4ca5d91c
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260509/1e8c4af8/attachment.htm>


More information about the debian-security-tracker-commits mailing list