[Git][security-tracker-team/security-tracker][master] Add new node-protobufjs issues, itp'ed

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu May 14 09:54:02 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
9afd41ee by Salvatore Bonaccorso at 2026-05-14T10:53:28+02:00
Add new node-protobufjs issues, itp'ed

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -93,7 +93,7 @@ CVE-2026-46445 (SOGo before 5.12.7, when PostgreSQL is used, allows SQL injectio
 CVE-2026-46419 (Yubico webauthn-server-core (aka java-webauthn-server) 2.8.0 before 2. ...)
 	TODO: check
 CVE-2026-45740 (protobufjs compiles protobuf definitions into JavaScript (JS) function ...)
-	TODO: check
+	- node-protobufjs <itp> (bug #977564)
 CVE-2026-45714 (CubeCart is an ecommerce software solution. Prior to 6.7.0, an Authent ...)
 	NOT-FOR-US: CubeCart
 CVE-2026-45708 (CubeCart is an ecommerce software solution. Prior to 6.7.3, an admin w ...)
@@ -223,21 +223,21 @@ CVE-2026-44363 (MISP modules are autonomous modules that can be used to extend M
 CVE-2026-44351 (fast-jwt provides fast JSON Web Token (JWT) implementation. Prior to 6 ...)
 	TODO: check
 CVE-2026-44295 (protobufjs-cli is the command line add-on for protobuf.js. Prior to 1. ...)
-	TODO: check
+	- node-protobufjs <itp> (bug #977564)
 CVE-2026-44294 (protobufjs compiles protobuf definitions into JavaScript (JS) function ...)
-	TODO: check
+	- node-protobufjs <itp> (bug #977564)
 CVE-2026-44293 (protobufjs compiles protobuf definitions into JavaScript (JS) function ...)
-	TODO: check
+	- node-protobufjs <itp> (bug #977564)
 CVE-2026-44292 (protobufjs compiles protobuf definitions into JavaScript (JS) function ...)
-	TODO: check
+	- node-protobufjs <itp> (bug #977564)
 CVE-2026-44291 (protobufjs compiles protobuf definitions into JavaScript (JS) function ...)
-	TODO: check
+	- node-protobufjs <itp> (bug #977564)
 CVE-2026-44290 (protobufjs compiles protobuf definitions into JavaScript (JS) function ...)
-	TODO: check
+	- node-protobufjs <itp> (bug #977564)
 CVE-2026-44289 (protobufjs compiles protobuf definitions into JavaScript (JS) function ...)
-	TODO: check
+	- node-protobufjs <itp> (bug #977564)
 CVE-2026-44288 (protobufjs compiles protobuf definitions into JavaScript (JS) function ...)
-	TODO: check
+	- node-protobufjs <itp> (bug #977564)
 CVE-2026-44248 (Netty is an asynchronous, event-driven network application framework.  ...)
 	TODO: check
 CVE-2026-44195 (OPNsense is a FreeBSD based firewall and routing platform. Prior to 26 ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9afd41eeb2dfb534034c1518a11317f16a42ff08

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9afd41eeb2dfb534034c1518a11317f16a42ff08
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260514/22de4ce8/attachment.htm>


More information about the debian-security-tracker-commits mailing list