[Git][security-tracker-team/security-tracker][master] CVE-2026-93894/vinyl-cache

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Sep 19 08:19:24 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
61d59259 by Salvatore Bonaccorso at 2026-09-19T09:18:58+02:00
CVE-2026-93894/vinyl-cache

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -4,8 +4,6 @@ CVE-2026-93922 (SiYuan through 3.8.4 renders notebook names as raw HTML in the D
 	NOT-FOR-US: SiYuan
 CVE-2026-93921 (SiYuan versions through 3.8.4 fail to enforce publish access control i ...)
 	NOT-FOR-US: SiYuan
-CVE-2026-93894 (In Vinyl Cache before 9.0,2, workspace buffer overflow vulnerability w ...)
-	TODO: check
 CVE-2026-93873 (Cotonti through 1.0.0 fails to validate anti-CSRF tokens in the contac ...)
 	TODO: check
 CVE-2026-93872 (Cotonti 1.0.0 passes the base64-decoded cb parameter to unserialize()  ...)
@@ -4190,7 +4188,7 @@ CVE-2026-90054 (In the Linux kernel, the following vulnerability has been resolv
 CVE-2026-90053 (In the Linux kernel, the following vulnerability has been resolved:  n ...)
 	- linux 7.2.6-1
 	NOTE: https://git.kernel.org/linus/729c4896ab829169f95915d65edd530325910b37 (7.3-rc1)
-CVE-2026-XXXX [VSV00020]
+CVE-2026-93894 [VSV00020]
 	- vinyl-cache <unfixed> (bug #1148187)
 	- varnish <removed>
 	NOTE: https://vinyl-cache.org/security/VSV00020.html



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/61d59259241a61a7660b172f10fa77dcccb61600

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/61d59259241a61a7660b172f10fa77dcccb61600
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260919/a7b3f3a4/attachment.htm>


More information about the debian-security-tracker-commits mailing list