[Git][security-tracker-team/security-tracker][master] Add new misp issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Sep 5 09:16:36 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
0b6b1c9e by Salvatore Bonaccorso at 2026-09-05T10:15:58+02:00
Add new misp issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -264,19 +264,19 @@ CVE-2026-85578 (SiYuan through 3.8.1 contains an authorization bypass vulnerabil
 CVE-2026-85577 (AVideo through commit c91b5975d contains a reflected cross-site script ...)
 	NOT-FOR-US: WWBN AVideo
 CVE-2026-85547 (A cross-site request forgery (CSRF) vulnerability exists in MISP due t ...)
-	TODO: check
+	- misp <itp> (bug #1144317)
 CVE-2026-85546 (MISP contains a cross-site request forgery (CSRF) vulnerability in the ...)
-	TODO: check
+	- misp <itp> (bug #1144317)
 CVE-2026-85541 (DreamMaker developed by Interinfo has a Reflected Cross-site Scripting ...)
 	NOT-FOR-US: Interinfo
 CVE-2026-85540 (DreamMaker developed by Interinfo has a SQL Injection vulnerability. A ...)
 	NOT-FOR-US: Interinfo
 CVE-2026-85538 (An incorrect authorization vulnerability in MISP allowed authenticated ...)
-	TODO: check
+	- misp <itp> (bug #1144317)
 CVE-2026-85534 (A flaw was found in libsoup. When a client sends an HTTP/2 request bod ...)
 	TODO: check
 CVE-2026-85533 (An authorization flaw in MISP allowed an authenticated user to submit  ...)
-	TODO: check
+	- misp <itp> (bug #1144317)
 CVE-2026-85528 (Improper input validation of the auto-configuration account identifier ...)
 	NOT-FOR-US: Snowflake JDBC Driver
 CVE-2026-85525 (Improper OCSP response validation in the Snowflake Python, Go, JDBC, a ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0b6b1c9ebadef8ee9287117e9e0c4792f702e3da

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0b6b1c9ebadef8ee9287117e9e0c4792f702e3da
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260905/e82ebe57/attachment.htm>


More information about the debian-security-tracker-commits mailing list