[Git][security-tracker-team/security-tracker][master] new vinyl/varnish issue

Moritz Muehlenhoff (@jmm) jmm at debian.org
Thu Sep 17 09:00:18 BST 2026



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
6191950c by Moritz Muehlenhoff at 2026-09-17T09:59:53+02:00
new vinyl/varnish issue

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,8 @@
+CVE-2026-XXXX [VSV00020]
+	- vinyl-cache <unfixed>
+	- varnish <removed>
+	NOTE: https://vinyl-cache.org/security/VSV00020.html
+	NOTE: https://code.vinyl-cache.org/vinyl-cache/vinyl-cache/commit/90f5bacc14b2404e6cc349ba015f0f73b8515136 (vinyl-cache-9.1.0)
 CVE-2026-92839 (Canva Desktop before v1.125.0 performed double decoding in the deeplin ...)
 	NOT-FOR-US: Canva Desktop
 CVE-2026-92838 (A DLL hijacking vulnerability exists in the GeoVisionGV-Remote E-Mapde ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6191950c5042f02c7e27a8caf2be83795c3e562d

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6191950c5042f02c7e27a8caf2be83795c3e562d
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260917/3f1aff9d/attachment.htm>


More information about the debian-security-tracker-commits mailing list