[Git][security-tracker-team/security-tracker][master] Add initial basic tracking for two caddy issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Sep 24 10:51:50 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
05581475 by Salvatore Bonaccorso at 2026-09-24T11:51:27+02:00
Add initial basic tracking for two caddy issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -356,7 +356,8 @@ CVE-2026-92874 (GitLab has remediated an issue in GitLab CE/EE affecting all ver
 CVE-2026-92730 (LimeSurvey Community Edition 7.0.14 contains a reflected cross-site sc ...)
 	TODO: check
 CVE-2026-92700 (Caddy is an extensible server platform that uses TLS by default. In ve ...)
-	TODO: check
+	- caddy <undetermined>
+	TODO: check references, refers to GHSA-j8px-rmrx-76h9 which is for CVE-2026-77281
 CVE-2026-92692 (Sulu is an open-source PHP content management system based on the Symf ...)
 	TODO: check
 CVE-2026-92628 (GitLab has remediated an issue in GitLab CE/EE affecting all versions  ...)
@@ -372,7 +373,8 @@ CVE-2026-92419 (WEBCON BPS is vulnerable to Insecure Direct Object Reference (ID
 CVE-2026-92378 (A session management vulnerability exists in the Legacy UI Reduced Fun ...)
 	NOT-FOR-US: Canon
 CVE-2026-92284 (Caddy is an extensible server platform that uses TLS by default. In ve ...)
-	TODO: check
+	- caddy <undetermined>
+	TODO: check references, refers to GHSA-j8px-rmrx-76h9 which is for CVE-2026-77281
 CVE-2026-92164 (Streamlink is a CLI utility which pipes video streams from various ser ...)
 	TODO: check
 CVE-2026-92001 (Improper restriction of recursive entity references in DTDs ('XML enti ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/05581475db484dea2ca2eb72c010c5a1346b3260

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/05581475db484dea2ca2eb72c010c5a1346b3260
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260924/14b7b8d8/attachment.htm>


More information about the debian-security-tracker-commits mailing list