[Git][security-tracker-team/security-tracker][master] Add CVE-2026-9540/vllm, itp'ed

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue May 26 20:48:29 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
6072b9fb by Salvatore Bonaccorso at 2026-05-26T21:48:15+02:00
Add CVE-2026-9540/vllm, itp'ed

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -34,7 +34,7 @@ CVE-2026-9541 (A security flaw has been discovered in Squirrel up to 3.2. Impact
 	- squirrel3 <unfixed>
 	NOTE: https://github.com/albertodemichelis/squirrel/issues/327
 CVE-2026-9540 (A vulnerability was identified in vllm-project vllm 0.19.0. This issue ...)
-	TODO: check
+	- vllm <itp> (bug #1095237)
 CVE-2026-9170 (IBM Web Server Plug-ins for WebSphere Application Server and WebSphere ...)
 	NOT-FOR-US: IBM
 CVE-2026-8890 (code100x contains an authentication bypass vulnerability in the Mobile ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6072b9fb215c9784c34bd0443bd4bd9499fd3e97

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6072b9fb215c9784c34bd0443bd4bd9499fd3e97
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260526/9e36cc4f/attachment.htm>


More information about the debian-security-tracker-commits mailing list