[Git][security-tracker-team/security-tracker][master] Add two new misp issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Sep 10 21:07:00 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
49231c70 by Salvatore Bonaccorso at 2026-09-10T22:06:26+02:00
Add two new misp issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -44,9 +44,9 @@ CVE-2026-88924 (A flaw was found in the admin backend of gvfs. The privileged gv
 	NOTE: https://gitlab.gnome.org/GNOME/gvfs/-/issues/875
 	NOTE: https://gitlab.gnome.org/GNOME/gvfs/-/merge_requests/352
 CVE-2026-88921 (MISP contains an HTML injection vulnerability in the MISPElementHTMLFo ...)
-	TODO: check
+	- misp <itp> (bug #1144317)
 CVE-2026-88915 (Affected versions of MISP do not consistently enforce the acting user' ...)
-	TODO: check
+	- misp <itp> (bug #1144317)
 CVE-2026-88899 (knowns versions before 0.31.0 fail to properly validate the x-opencode ...)
 	TODO: check
 CVE-2026-88898 (AppFlowy-Cloud versions 0.7.2 through 0.9.64 fail to authorize callers ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/49231c7008b2a3443192f59616e488067f8e43af

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/49231c7008b2a3443192f59616e488067f8e43af
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260910/18607e92/attachment.htm>


More information about the debian-security-tracker-commits mailing list