[Git][security-tracker-team/security-tracker][master] automatic update

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Sep 26 20:13:31 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
cb46d0cd by security tracker role at 2026-09-26T19:13:23+00:00
automatic update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,10 +1,282 @@
+CVE-2026-97163 (Joomla Extension - lomart.fr - Unauthenticated remote code installatio ...)
+	TODO: check
+CVE-2026-97162 (Joomla Extension - lomart.fr - Various SQL injection vectors in UP plu ...)
+	TODO: check
+CVE-2026-97161 (Joomla Extension - lomart.fr - Various path traversal / file access ve ...)
+	TODO: check
+CVE-2026-97160 (Joomla Extension - lomart.fr - Authenticated, privileged PHP command i ...)
+	TODO: check
+CVE-2026-94132 (Joomla Extension - acymailing.com - Remote Code Execution vulnerabilit ...)
+	TODO: check
+CVE-2026-94131 (Joomla Extension - acymailing.com - Unauthenticated arbitrary file del ...)
+	TODO: check
+CVE-2026-94130 (Joomla Extension - joomlaboat.com - Unauthenticated SQL injection in Y ...)
+	TODO: check
+CVE-2026-85984 (The miniOrange OTP Login, Verification and SMS Notifications plugin fo ...)
+	TODO: check
+CVE-2026-82901 (The Ultra Addons for Contact Form 7 plugin for WordPress is vulnerable ...)
+	TODO: check
+CVE-2026-77203 (The Groups \u2013 Memberships and Access Control plugin for WordPress  ...)
+	TODO: check
+CVE-2026-100720 (Froxlor 2.0.0 through 2.3.10 is vulnerable to stored cross-site script ...)
+	TODO: check
+CVE-2026-100719 (Froxlor versions before 2.3.12 contain a credential disclosure vulnera ...)
+	TODO: check
+CVE-2026-100718 (Froxlor through 2.3.10 does not enforce the mail.allow_external_domain ...)
+	TODO: check
+CVE-2026-100717 (froxlor is a server administration panel. In versions 2.3.10 and earli ...)
+	TODO: check
+CVE-2026-100716 (Froxlor is a server administration panel. In versions 2.3.10 and earli ...)
+	TODO: check
+CVE-2026-100715 (Froxlor through 2.3.10 is vulnerable to arbitrary file deletion via sy ...)
+	TODO: check
+CVE-2026-100714 (Froxlor before 2.3.12 does not restrict or escape the system.letsencry ...)
+	TODO: check
+CVE-2026-100713 (Froxlor 2.3.10 and earlier contain a time-of-check time-of-use (TOCTOU ...)
+	TODO: check
+CVE-2026-100712 (froxlor through 2.3.10 disables a user's two-factor authentication imm ...)
+	TODO: check
+CVE-2026-100711 (froxlor versions before 2.3.12 fail to invalidate existing panel sessi ...)
+	TODO: check
+CVE-2026-100710 (Froxlor through 2.3.10 does not filter sensitive columns from API resp ...)
+	TODO: check
+CVE-2026-100709 (Froxlor through 2.3.10 stores only a numeric user ID in remembered-2FA ...)
+	TODO: check
+CVE-2026-100708 (Froxlor before 2.3.13 returns the ssl_key_file column \u2014 which sto ...)
+	TODO: check
+CVE-2026-100707 (Kyverno before 1.19.1 contains a namespace isolation bypass in the api ...)
+	TODO: check
+CVE-2026-100706 (kyverno before 1.19.1 fails to properly validate URL-encoded path segm ...)
+	TODO: check
+CVE-2026-100705 (Kyverno before 1.19.1 is vulnerable to server-side request forgery. Th ...)
+	TODO: check
+CVE-2026-100704 (Kyverno is a policy engine for Kubernetes. In versions 1.14.0 through  ...)
+	TODO: check
+CVE-2026-100703 (Kyverno 1.16.0 through 1.19.0 registers the globalcontext.Lib CEL libr ...)
+	TODO: check
+CVE-2026-100702 (Nodemailer before 10.0.2 fails to properly flatten deeply nested array ...)
+	TODO: check
+CVE-2026-100701 (Nodemailer versions 5.0.0 through 10.0.1 use a process-global DNS cach ...)
+	TODO: check
+CVE-2026-100700 (nodemailer before 10.0.6 contains a denial of service vulnerability in ...)
+	TODO: check
+CVE-2026-100699 (Nodemailer is a Node.js email-sending library. In versions >= 9.1.0 an ...)
+	TODO: check
+CVE-2026-100698 (Adminer 5.5.1 through 6.0.1 improperly parses the login 'server' strin ...)
+	TODO: check
+CVE-2026-100697 (Adminer 6.0.0 through 6.0.1, when the official ClickHouse driver plugi ...)
+	TODO: check
+CVE-2026-100696 (Adminer 4.16.0 through 6.0.1 contain a pre-authentication Server-Side  ...)
+	TODO: check
+CVE-2026-100695 (Adminer before 6.0.2 contains a cross-site scripting vulnerability whe ...)
+	TODO: check
+CVE-2026-100694 (Hugo is a static site generator. In versions from v0.56.0 through v0.1 ...)
+	TODO: check
+CVE-2026-100693 (Hugo versions from v0.162.0 before v0.166.0 contain a case-sensitive v ...)
+	TODO: check
+CVE-2026-100692 (Hugo is a static site generator. In versions after v0.123.0 and before ...)
+	TODO: check
+CVE-2026-100691 (Hugo versions 0.75.0 through 0.165.x contain a stored cross-site scrip ...)
+	TODO: check
+CVE-2026-100690 (Hugo versions from v0.161.0 through v0.165.0 run Node.js tools (css.Po ...)
+	TODO: check
+CVE-2026-100689 (GitPython before 3.1.62 does not validate the `path` field read from a ...)
+	TODO: check
+CVE-2026-100688 (Budibase server before 3.45.0 contains a cross-tenant information disc ...)
+	TODO: check
+CVE-2026-100687 (Budibase Server before 3.45.0 fails to redact plaintext datasource cre ...)
+	TODO: check
+CVE-2026-100686 (Budibase versions before 3.45.0 fail to validate per-app authorization ...)
+	TODO: check
+CVE-2026-100685 (Budibase before 3.45.0 fails to properly scope the GET /api/chat-links ...)
+	TODO: check
+CVE-2026-100684 (Budibase versions 3.41.0 before 3.45.0 contain an authentication bypas ...)
+	TODO: check
+CVE-2026-100683 (Budibase (@budibase/server) before 3.45.0 builds MySQL and MSSQL colum ...)
+	TODO: check
+CVE-2026-100682 (Budibase Server before 3.45.0 contains an arbitrary file write vulnera ...)
+	TODO: check
+CVE-2026-100681 (Budibase before 3.45.0 contains an unauthenticated server-side request ...)
+	TODO: check
+CVE-2026-100680 (Budibase versions before 3.45.0 fail to disable external JSON referenc ...)
+	TODO: check
+CVE-2026-100679 (stoatchat before 0.15.5 fails to validate that MFA tickets belong to t ...)
+	TODO: check
+CVE-2026-100678 (stoatchat before 0.15.5 fails to enforce account-level attempt limits  ...)
+	TODO: check
+CVE-2026-100677 (stoatchat before 0.15.5 contains an account enumeration vulnerability  ...)
+	TODO: check
+CVE-2026-100676 (January, the media proxy/embed service of stoatchat (stoatchat/stoatch ...)
+	TODO: check
+CVE-2026-100675 (stoatchat versions before 0.15.5 contain a denial of service vulnerabi ...)
+	TODO: check
+CVE-2026-100674 (stoatchat before 0.15.5 fails to revalidate usernames after Unicode sa ...)
+	TODO: check
+CVE-2026-100673 (The Grav Data Manager plugin (getgrav/grav-plugin-datamanager) version ...)
+	TODO: check
+CVE-2026-100672 (The Comments plugin (getgrav/grav-plugin-comments) for Grav CMS throug ...)
+	TODO: check
+CVE-2026-100671 (Grav is a flat-file CMS. In versions 2.0.19 through 2.0.24 \u2014 and  ...)
+	TODO: check
+CVE-2026-100670 (Grav CMS 2.0.14 through 2.0.24 contains a privilege escalation vulnera ...)
+	TODO: check
+CVE-2026-100669 (Grav before 2.0.25 ships web server configuration samples whose access ...)
+	TODO: check
+CVE-2026-100668 (Grav 2.0.0 through 2.0.24 contain a Twig content sandbox escape. The ` ...)
+	TODO: check
+CVE-2026-100667 (grav-plugin-login (the Grav CMS Login plugin) versions >= 3.8.7 and <  ...)
+	TODO: check
+CVE-2026-100666 (Netty's HttpServerCodec (io.netty:netty-codec-http) in versions 4.2.0. ...)
+	TODO: check
+CVE-2026-100665 (Netty versions from 4.2.11.Final before 4.2.18.Final contain an incomp ...)
+	TODO: check
+CVE-2026-100664 (Netty's HTTP/3 codec (io.netty:netty-codec-http3) versions 4.2.2.Final ...)
+	TODO: check
+CVE-2026-100663 (Netty's HTTP/3 codec (io.netty:netty-codec-http3) from 4.2.2.Final thr ...)
+	TODO: check
+CVE-2026-100662 (Netty's HTTP/3 codec (io.netty:netty-codec-http3) versions 4.2.0.Final ...)
+	TODO: check
+CVE-2026-100661 (Netty's HTTP/3 codec (io.netty:netty-codec-http3) versions 4.2.0.Final ...)
+	TODO: check
+CVE-2026-100660 (Netty's HTTP/3 codec (io.netty:netty-codec-http3) from 4.2.0.Final thr ...)
+	TODO: check
+CVE-2026-100659 (Netty's HTTP/3 codec (io.netty:netty-codec-http3) in versions 4.2.0.Fi ...)
+	TODO: check
+CVE-2026-100658 (Netty (io.netty:netty-codec-http) contains an unbounded per-connection ...)
+	TODO: check
+CVE-2026-100657 (Netty's STOMP codec (io.netty:netty-codec-stomp) contains a ByteBuf le ...)
+	TODO: check
+CVE-2026-100656 (Netty (io.netty:netty-codec-http) contains an unbounded per-connection ...)
+	TODO: check
+CVE-2026-100655 (Netty (io.netty:netty-codec-http) versions up to and including 4.1.137 ...)
+	TODO: check
+CVE-2026-100654 (vLLM before 0.29.0 accepts user-controlled stop_token_ids on the OpenA ...)
+	TODO: check
+CVE-2026-100653 (vLLM is an inference and serving engine for large language models. In  ...)
+	TODO: check
+CVE-2026-100652 (vLLM versions 0.22.0 through 0.23.0 fail to validate stop_token_ids ag ...)
+	TODO: check
+CVE-2026-100651 (vLLM before 0.29.0 fails to enforce decoder prompt-length validation o ...)
+	TODO: check
+CVE-2026-100650 (vLLM through 0.29.0 fetches and fully materializes remote or inline me ...)
+	TODO: check
+CVE-2026-100649 (vLLM before 0.29.0 contains a resource-limit bypass vulnerability in P ...)
+	TODO: check
+CVE-2026-100648 (vllm before 0.29.0 fails to enforce VLLM_MAX_AUDIO_CLIP_FILESIZE_MB li ...)
+	TODO: check
+CVE-2026-100647 (vLLM versions before 0.29.0 contain a denial-of-service vulnerability  ...)
+	TODO: check
+CVE-2026-100646 (SiYuan is a self-hosted personal knowledge management system. In versi ...)
+	TODO: check
+CVE-2026-100645 (SiYuan versions 3.7.0 before 3.8.4 contain a stored cross-site scripti ...)
+	TODO: check
+CVE-2026-100644 (SiYuan before v3.8.4 contains a SQL injection vulnerability in the gra ...)
+	TODO: check
+CVE-2026-100643 (SiYuan versions before v3.8.4 fail to properly escape four stored Attr ...)
+	TODO: check
+CVE-2026-100642 (SiYuan versions from v2.1.0 before v3.8.4 contain a cross-site request ...)
+	TODO: check
+CVE-2026-100641 (SiYuan before v3.8.4 does not HTML-escape stored flashcard block conte ...)
+	TODO: check
+CVE-2026-100640 (SiYuan before v3.8.4 contains an authorization omission in the siyuan- ...)
+	TODO: check
+CVE-2026-100639 (SiYuan v3.8.3 fails to HTML-escape the data-subtype attribute when gen ...)
+	TODO: check
+CVE-2026-100638 (SiYuan versions before v3.8.4 contain a path traversal vulnerability i ...)
+	TODO: check
+CVE-2026-100637 (SiYuan versions before v3.8.4 contain a path traversal vulnerability i ...)
+	TODO: check
+CVE-2026-100636 (SiYuan versions before v3.8.4 contain a path traversal vulnerability i ...)
+	TODO: check
+CVE-2026-100635 (SiYuan before v3.8.4 contains an authentication bypass vulnerability i ...)
+	TODO: check
+CVE-2026-100634 (SiYuan before v3.8.4 does not validate the sender or restrict recipien ...)
+	TODO: check
+CVE-2026-100633 (SiYuan is a self-hosted personal knowledge management system. In versi ...)
+	TODO: check
+CVE-2026-100632 (Parse Server is an open-source backend server. In versions >= 9.0.0 an ...)
+	TODO: check
+CVE-2026-100631 (Parse Server is an open source backend server. In versions prior to 8. ...)
+	TODO: check
+CVE-2026-100630 (AVideo contains a stored cross-site scripting vulnerability in the vid ...)
+	TODO: check
+CVE-2026-100629 (Capgo (capgo.app backend) before 12.127.5 contains an authorization fl ...)
+	TODO: check
+CVE-2026-100628 (capgo.app before 12.128.12 fails to enforce an organization's API key  ...)
+	TODO: check
+CVE-2026-100627 (Capgo (Cap-go/capgo.app) server backend Supabase functions contain an  ...)
+	TODO: check
+CVE-2026-100626 (capgo through 12.128.2 contains an insecure direct object reference vu ...)
+	TODO: check
+CVE-2026-100625 (Capgo (capgo.app) exposes a native build TUS upload proxy (supabase/fu ...)
+	TODO: check
+CVE-2026-100624 (Capgo.app before 12.264.5 does not enforce upload expiry or build life ...)
+	TODO: check
+CVE-2026-100623 (Capgo (capgo.app) exposes the legacy membership table public.org_users ...)
+	TODO: check
+CVE-2026-100622 (capgo.app through 12.129.0 fails to verify deletion status when servin ...)
+	TODO: check
+CVE-2026-100621 (Capgo (capgo.app) contains an incomplete access-control/content-lock e ...)
+	TODO: check
+CVE-2026-100620 (Capgo CLI (npm package @capgo/cli) through 7.98.2 is affected by an ov ...)
+	TODO: check
+CVE-2026-100619 (Capgo (capgo.app) blocks direct user inserts into the public.manifest  ...)
+	TODO: check
+CVE-2026-100618 (Capgo (capgo.app) is affected by an authorization flaw in the app icon ...)
+	TODO: check
+CVE-2026-100617 (Cap-go capgo.app fails to validate that principals in channel_permissi ...)
+	TODO: check
+CVE-2026-100616 (capgo.app is an over-the-air update platform for Capacitor apps. In al ...)
+	TODO: check
+CVE-2026-100615 (Cap-go capgo.app before 12.267.1 fails to validate target API key priv ...)
+	TODO: check
+CVE-2026-100614 (Capgo before 12.244.1 contains a cross-tenant integrity vulnerability  ...)
+	TODO: check
+CVE-2026-100613 (capgo.app is an over-the-air (OTA) update platform for Capacitor apps. ...)
+	TODO: check
+CVE-2026-100612 (Capgo (capgo.app) through version 12.261.0 contains an incomplete acce ...)
+	TODO: check
+CVE-2026-100611 (Capgo (capgo.app backend, versions \u2264 12.261.0) improperly restric ...)
+	TODO: check
+CVE-2026-100610 (Flowise through 3.1.4 exposes GET /api/v1/upsert-history/:id and PATCH ...)
+	TODO: check
+CVE-2026-100609 (Flowise (npm packages `flowise` and `flowise-components`) through 3.1. ...)
+	TODO: check
+CVE-2026-100608 (Flowise through 3.1.4 does not enforce authorization on the BullMQ adm ...)
+	TODO: check
+CVE-2026-100607 (Flowise through 3.1.4 resolves SSO and local-password users solely by  ...)
+	TODO: check
+CVE-2026-100606 (Flowise through 3.1.4 (Enterprise/platform mode with SSO enabled) cont ...)
+	TODO: check
+CVE-2026-100605 (Flowise through 3.1.4 contains missing route-level RBAC checks on chat ...)
+	TODO: check
+CVE-2026-100604 (ClawHub (openclaw/clawhub) contains an incorrect authorization vulnera ...)
+	TODO: check
+CVE-2026-100603 (ClawHub (openclaw/clawhub) application/backend contains a flaw in the  ...)
+	TODO: check
+CVE-2026-100602 (ClawHub (openclaw/clawhub application/backend) contains a missing auth ...)
+	TODO: check
+CVE-2026-100601 (ClawHub (openclaw/clawhub) application/backend contains a server-side  ...)
+	TODO: check
+CVE-2026-100600 (ClawHub (the openclaw/clawhub application/backend) does not bind anony ...)
+	TODO: check
+CVE-2026-100315 (A vulnerability was detected in mathurvishal CloudClassroom-PHP-Projec ...)
+	TODO: check
+CVE-2026-100314 (A security vulnerability has been detected in mathurvishal CloudClassr ...)
+	TODO: check
+CVE-2026-100313 (A weakness has been identified in mathurvishal CloudClassroom-PHP-Proj ...)
+	TODO: check
+CVE-2026-100312 (A security flaw has been discovered in mathurvishal CloudClassroom-PHP ...)
+	TODO: check
+CVE-2026-100311 (A vulnerability was identified in mathurvishal CloudClassroom-PHP-Proj ...)
+	TODO: check
 CVE-2026-XXXX [GHSA-3q6v-r5mr-hxv8: Fix quadratic-time table start detection on long paragraphs]
 	- php-league-commonmark 2.10.3-1
 	NOTE: https://github.com/thephpleague/commonmark/security/advisories/GHSA-3q6v-r5mr-hxv8
 CVE-2026-XXXX [GHSA-97jj-33gv-5xf9: Escape disallowed raw HTML tags that end the rendered output]
 	- php-league-commonmark 2.10.3-1
 	NOTE: https://github.com/thephpleague/commonmark/security/advisories/GHSA-97jj-33gv-5xf9
-CVE-2026-98163 [cgroup: Avoid iteration of dying tasks with zero refcount]
+CVE-2026-98163 (In the Linux kernel, the following vulnerability has been resolved:  c ...)
 	- linux 7.2.8-1 (bug #1144314)
 	[trixie] - linux <not-affected> (Vulnerable code not present)
 	[bookworm] - linux <not-affected> (Vulnerable code not present)
@@ -2430,6 +2702,7 @@ CVE-2026-92289 (Lemonldap::NG::Portal versions from 2.23.0 before 2.23.4 for Per
 	NOTE: https://lists.security.metacpan.org/cve-announce/msg/43830168/
 	NOTE: https://gitlab.ow2.org/lemonldap-ng/lemonldap-ng/-/work_items/3719
 CVE-2026-95811 (Lemonldap::NG::Handler versions from 2.0.0 before 2.16.10, from 2.17.0 ...)
+	{DLA-4797-1}
 	- lemonldap-ng 2.23.4+ds-1
 	NOTE: https://lists.security.metacpan.org/cve-announce/msg/43833452/
 	NOTE: https://gitlab.ow2.org/lemonldap-ng/lemonldap-ng/-/work_items/3723
@@ -3811,6 +4084,7 @@ CVE-2026-97152 (Nanomsg versions 0.5-beta through 1.x before 1.2.3 has a remotel
 CVE-2026-97151 (mammoth (aka mammoth.js) before 1.12.2 is vulnerable to prototype poll ...)
 	NOT-FOR-US: mammoth (aka mammoth.js) Node.js module
 CVE-2026-97149 (In OpenStack Swift before 2.38.2, the tempurl middleware does not reje ...)
+	{DSA-6519-1}
 	- swift 2.38.1-3 (bug #1148834)
 	NOTE: https://launchpad.net/bugs/2166876
 	NOTE: https://security.openstack.org/ossa/OSSA-2026-041.html
@@ -71841,6 +72115,7 @@ CVE-2026-58044 (A flaw in Node.js HTTP client can cause a request desynchronizat
 	NOTE: https://nodejs.org/en/blog/vulnerability/july-2026-security-releases#http-parser-header-truncation-can-enable-request-smuggling-cve-2026-58044---low
 	NOTE: Fixed by: https://github.com/nodejs/node/commit/c8525ac3a6974f1db795d7fb5ac63e9f97a6fba5 (v22.23.2)
 CVE-2026-58039 (A flaw in Node.js Permission Model enforcement allows process.report w ...)
+	{DSA-6517-1}
 	- nodejs 24.19.0+dfsg+~cs24.13.3-1
 	[bookworm] - nodejs <not-affected> (Permission Model is a Node 20+ feature)
 	[bullseye] - nodejs <not-affected> (Permission Model is a Node 20+ feature)
@@ -71862,10 +72137,12 @@ CVE-2026-58041 (A flaw in Node.js node:sqlite allows a stale StatementSyncIterat
 	NOTE: Fixed by: https://github.com/nodejs/node/commit/af9ff0490ce834f3b28efbc2551f96a03a829fd2 (v24.18.1)
 	NOTE: experimental status for v22
 CVE-2026-56848 (A flaw in Node.js HTTP/2 handling allows `nghttp2_session_mem_send()`  ...)
+	{DSA-6517-1}
 	- nodejs 24.19.0+dfsg+~cs24.13.3-1
 	NOTE: https://nodejs.org/en/blog/vulnerability/july-2026-security-releases#http2-re-entrant-send-can-cause-heap-use-after-free-cve-2026-56848---high
 	NOTE: Fixed by: https://github.com/nodejs/node/commit/daa6d25e3dceb30edb832a778ec0610c8bc2dd12 (v22.23.2)
 CVE-2026-56846 (A flaw in Node.js HTTP/2 handling can cause HTTP/2 retained header blo ...)
+	{DSA-6517-1}
 	- nodejs 24.19.0+dfsg+~cs24.13.3-1
 	NOTE: https://nodejs.org/en/blog/vulnerability/july-2026-security-releases#http2-retained-headers-can-bypass-maxsessionmemory-limits-cve-2026-56846---high
 	NOTE: Fixed by: https://github.com/nodejs/node/commit/f14d78b9e0201bfe0291f2b0dc4b5d88c70cc28e (v22.23.2)
@@ -71988,10 +72265,12 @@ CVE-2026-58040 (An incomplete fix has been identified in Node.js: HTTPS Agent TL
 	NOTE: Fixed by: https://github.com/nodejs/node/commit/51123159fe863073d7dcaf5c88b23bad8aae1a62 (v22.23.2)
 	NOTE: CVE exists because of an incomplete fix for  CVE-2026-48934
 CVE-2026-56850 (A flaw in Node.js HTTPS Agent connection reuse can cause PFX object-ar ...)
+	{DSA-6517-1}
 	- nodejs 24.19.0+dfsg+~cs24.13.3-1
 	NOTE: https://nodejs.org/en/blog/vulnerability/july-2026-security-releases#https-agent-can-reuse-mtls-identities-across-pfx-certificates-cve-2026-56850---medium
 	NOTE: Fixed by: https://github.com/nodejs/node/commit/acaf4266b2be7958e3d7cb44b5ee1c2b96eca278 (v22.23.2)
 CVE-2026-56847 (A flaw in Node.js Permission Model enforcement allows `trace_events.cr ...)
+	{DSA-6517-1}
 	- nodejs 24.19.0+dfsg+~cs24.13.3-1
 	[bookworm] - nodejs <not-affected> (Permission Model is a Node 20+ feature)
 	[bullseye] - nodejs <not-affected> (Permission Model is a Node 20+ feature)
@@ -109187,6 +109466,7 @@ CVE-2026-55766 (guzzlehttp/psr7 is a PSR-7 HTTP message library implementation i
 	[bullseye] - php-guzzlehttp-psr7 <postponed> (Minor issue; CR/LF accepted in method/protocol-version/reason-phrase)
 	NOTE: https://github.com/guzzle/psr7/security/advisories/GHSA-vm85-hxw5-5432
 CVE-2026-48931 (A flaw in Node.js HTTP Agent can cause a client to accept as valid a r ...)
+	{DSA-6517-1}
 	- nodejs 24.17.0+dfsg+~cs24.13.2-1
 	NOTE: https://nodejs.org/en/blog/vulnerability/june-2026-security-releases#http-response-queue-poisoning-via-toctou-race-condition-in-httpagent-cve-2026-48931---low
 	NOTE: https://github.com/nodejs/node/commit/0a22d40180cb796e0d68e94c1a7a8a05a8f47c10 (v22.23.0)
@@ -109196,25 +109476,30 @@ CVE-2026-48936 (A flaw in Node.js Permission API can cause a local server to be
 	[bullseye] - nodejs <not-affected> (Permission Model is a Node 20+ feature)
 	NOTE: https://nodejs.org/en/blog/vulnerability/june-2026-security-releases#unix-domain-socket-server-bypasses---permission-network-restrictions-incomplete-cve-2026-21636-fix-cve-2026-48936---low
 CVE-2026-48935 (A flaw in Node.js Permission API can cause a file metadata to be modif ...)
+	{DSA-6517-1}
 	- nodejs 24.17.0+dfsg+~cs24.13.2-1
 	[bookworm] - nodejs <not-affected> (Permission Model is a Node 20+ feature)
 	[bullseye] - nodejs <not-affected> (Permission Model is a Node 20+ feature)
 	NOTE: https://nodejs.org/en/blog/vulnerability/june-2026-security-releases#permission-model-bypass-via-filehandleutimes-in-the-promises-api-cve-2026-48935---low
 	NOTE: https://github.com/nodejs/node/commit/28dcd388644c676b5b8149abfe18ec32cd010781 (v22.23.0)
 CVE-2026-48934 (A flaw in Node.js TLS host verification can cause an attacker to bypas ...)
+	{DSA-6517-1}
 	- nodejs 24.17.0+dfsg+~cs24.13.2-1
 	NOTE: https://nodejs.org/en/blog/vulnerability/june-2026-security-releases#tls-host-identity-verification-bypass-via-session-reuse-with-different-servername-leads-to-unauthorized-connections-cve-2026-48934---medium
 	NOTE: https://github.com/nodejs/node/commit/fd890ba01d508ac111bbba302981d7fdf734d2ce (v22.23.0)
 	NOTE: When fixing this issue make sure to apply a complete fix to not open up CVE-2026-58040.
 CVE-2026-48930 (A flaw in Node.js TLS hostname handling can cause Embedded-nul hostnam ...)
+	{DSA-6517-1}
 	- nodejs 24.17.0+dfsg+~cs24.13.2-1
 	NOTE: https://nodejs.org/en/blog/vulnerability/june-2026-security-releases#embedded-nul-hostnames-can-lead-to-silent-authority-rebinding-due-to-c-string-truncation-in-resolver-bindings-cve-2026-48930---medium
 	NOTE: https://github.com/nodejs/node/commit/c551a51d0c58dfc91961fb3f24c2c86af6183eca (v22.23.0)
 CVE-2026-48928 (A inconsistency in Node.js hostname matching can cause a trust-policy  ...)
+	{DSA-6517-1}
 	- nodejs 24.17.0+dfsg+~cs24.13.2-1
 	NOTE: https://nodejs.org/en/blog/vulnerability/june-2026-security-releases#uppercase-sni-context-matching-can-lead-to-mtls-authorization-bypass-due-to-case-sensitive-hostname-matching-cve-2026-48928---medium
 	NOTE: https://github.com/nodejs/node/commit/39d1d0968471a144d93dc293d640008f57d3c58e (v22.23.0)
 CVE-2026-48619 (A flaw in Node.js HTTP/2 client allows a server to send an unlimited n ...)
+	{DSA-6517-1}
 	- nodejs 24.17.0+dfsg+~cs24.13.2-1
 	NOTE: https://nodejs.org/en/blog/vulnerability/june-2026-security-releases#unbounded-memory-growth-in-nodehttp2-clients-via-attacker-controlled-origin-frames-cve-2026-48619---medium
 	NOTE: https://github.com/nodejs/node/commit/c79968e108002c2394bdb9e9cefb2c8c8cc202f8 (v22.23.0)
@@ -109226,10 +109511,12 @@ CVE-2026-48615 (A flaw in Node.js proxy tunnel error handling could expose proxy
 	NOTE: https://nodejs.org/en/blog/vulnerability/june-2026-security-releases#proxy-credentials-leaked-in-err_proxy_tunnel-error-message-cve-2026-48615---medium
 	NOTE: https://github.com/nodejs/node/commit/9b6af26132f6e87659ce360e6a59f42a03ff1701 (v22.23.0)
 CVE-2026-48618 (A flaw in Node.js TLS hostname handling can cause Node.js unicode dot  ...)
+	{DSA-6517-1}
 	- nodejs 24.17.0+dfsg+~cs24.13.2-1
 	NOTE: https://nodejs.org/en/blog/vulnerability/june-2026-security-releases#nodejs-unicode-dot-separator-handling-can-lead-to-tls-wildcard-depth-authentication-bypass-due-to-resolver-and-verifier-hostname-normalization-mismat-cve-2026-48618---high
 	NOTE: https://github.com/nodejs/node/commit/2197a47144f3356ab451c5dcd858a49eb5957a70 (v22.23.0)
 CVE-2026-48933 (A flaw in Node.js WebCrypto implementation can crash the process if th ...)
+	{DSA-6517-1}
 	- nodejs 24.17.0+dfsg+~cs24.13.2-1
 	[bullseye] - nodejs <not-affected> (WebCrypto (SubtleCrypto) introduced in Node 15; not present)
 	NOTE: https://nodejs.org/en/blog/vulnerability/june-2026-security-releases#nodejs-webcrypto-aes-integer-overflow-leads-to-remote-process-abort-dos-cve-2026-48933---high
@@ -109336,10 +109623,12 @@ CVE-2026-48985 (pam_usb provides hardware authentication for Linux using ordinar
 CVE-2026-48984 (pam_usb provides hardware authentication for Linux using ordinary remo ...)
 	NOT-FOR-US: pam_usb
 CVE-2026-48937 (A flaw in Node.js HTTP/2 server API can cause servers to keep acceptin ...)
+	{DSA-6517-1}
 	- nodejs 24.17.0+dfsg+~cs24.13.2-1
 	NOTE: https://nodejs.org/en/blog/vulnerability/june-2026-security-releases#http2-sessions-never-clean-up-after-goaway-on-invalid-protocol-errors-cve-2026-48937---medium
 	NOTE: https://github.com/nodejs/node/commit/a1a5bb968303229d4a3a7c9e389dc3ece6237b4c (v22.23.0)
 CVE-2026-48617 (A flaw in Node.js Permission Model enforcement allows Bypass via `proc ...)
+	{DSA-6517-1}
 	- nodejs 24.17.0+dfsg+~cs24.13.2-1
 	[bookworm] - nodejs <not-affected> (Permission Model is a Node 20+ feature)
 	[bullseye] - nodejs <not-affected> (Permission Model is a Node 20+ feature)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/cb46d0cddf2ef6518d82d73fecb74a9e35fc800f

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/cb46d0cddf2ef6518d82d73fecb74a9e35fc800f
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260926/382833e2/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list