[Git][security-tracker-team/security-tracker][master] new vinyl/varnish issue
Moritz Muehlenhoff (@jmm)
jmm at debian.org
Thu Sep 17 09:00:18 BST 2026
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker
Commits:
6191950c by Moritz Muehlenhoff at 2026-09-17T09:59:53+02:00
new vinyl/varnish issue
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,3 +1,8 @@
+CVE-2026-XXXX [VSV00020]
+ - vinyl-cache <unfixed>
+ - varnish <removed>
+ NOTE: https://vinyl-cache.org/security/VSV00020.html
+ NOTE: https://code.vinyl-cache.org/vinyl-cache/vinyl-cache/commit/90f5bacc14b2404e6cc349ba015f0f73b8515136 (vinyl-cache-9.1.0)
CVE-2026-92839 (Canva Desktop before v1.125.0 performed double decoding in the deeplin ...)
NOT-FOR-US: Canva Desktop
CVE-2026-92838 (A DLL hijacking vulnerability exists in the GeoVisionGV-Remote E-Mapde ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6191950c5042f02c7e27a8caf2be83795c3e562d
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6191950c5042f02c7e27a8caf2be83795c3e562d
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260917/3f1aff9d/attachment.htm>
More information about the debian-security-tracker-commits
mailing list