[Git][security-tracker-team/security-tracker][master] Add CVE-2026-82331/buildstram

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Sep 23 13:29:52 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
23343218 by Salvatore Bonaccorso at 2026-09-23T14:29:23+02:00
Add CVE-2026-82331/buildstram

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -449,7 +449,8 @@ CVE-2026-83555 (The Email Subscribers & Newsletters  WordPress plugin before 5.9
 CVE-2026-82843 (The WP OAuth Server ( Login with WordPress ) WordPress plugin before 6 ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2026-82331 (Improper link resolution before file access ('link following') vulnera ...)
-	TODO: check
+	- buildstream <unfixed>
+	NOTE: https://lists.apache.org/thread/9b342631x7bvtyg0pq7zgywtl2cmy34v
 CVE-2026-81339 (The MasterStudy LMS WordPress Plugin  WordPress plugin before 3.7.50 d ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2026-81338 (The MasterStudy LMS WordPress Plugin  WordPress plugin before 3.7.50 d ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/23343218e5a54bc5950f18c9517478d9cd085b4d

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/23343218e5a54bc5950f18c9517478d9cd085b4d
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260923/41b5f74e/attachment.htm>


More information about the debian-security-tracker-commits mailing list