[Git][security-tracker-team/security-tracker][master] Mark CVE-2026-34531/python-flask-httpauth as no-dsa
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Sat May 9 19:46:10 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
e01228bd by Salvatore Bonaccorso at 2026-05-09T20:44:49+02:00
Mark CVE-2026-34531/python-flask-httpauth as no-dsa
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -22457,6 +22457,8 @@ CVE-2026-34543 (OpenEXR provides the specification and reference implementation
NOTE: Fixed by: https://github.com/AcademySoftwareFoundation/openexr/commit/5f6d0aaa9e43802917af7db90f181e88e083d3b8 (v3.4.8-rc)
CVE-2026-34531 (Flask-HTTPAuth provides Basic, Digest and Token HTTP authentication fo ...)
- python-flask-httpauth 4.8.1-1.1 (bug #1132581)
+ [trixie] - python-flask-httpauth <no-dsa> (Minor issue)
+ [bookworm] - python-flask-httpauth <no-dsa> (Minor issue)
NOTE: https://github.com/miguelgrinberg/Flask-HTTPAuth/security/advisories/GHSA-p44q-vqpr-4xmg
NOTE: Fixed by: https://github.com/miguelgrinberg/flask-httpauth/commit/b15ffe9e50e110d7174ccd944f642079e1dcf9ee (v4.8.1)
CVE-2026-34530 (File Browser is a file managing interface for uploading, deleting, pre ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e01228bd8da87e17b5d16d7c89096c0c10eb788f
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e01228bd8da87e17b5d16d7c89096c0c10eb788f
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260509/1924ae36/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list