Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker
Commits: 026eeb2b by Moritz Muehlenhoff at 2026-05-22T21:04:23+02:00 new starlette issue - - - - - 1 changed file: - data/CVE/list Changes: ===================================== data/CVE/list ===================================== @@ -1,3 +1,9 @@ +CVE-2026-XXXX [starlette Ignore malformed Host header when constructing request.url] + - starlette <unfixed> + NOTE: https://x41-dsec.de/lab/advisories/x41-2026-002-starlette/ + NOTE: https://github.com/Kludex/starlette/security/advisories/GHSA-86qp-5c8j-p5mr + NOTE: https://github.com/Kludex/starlette/commit/764dab0dcfb9033d75442d7a359645c9f94648c6 (1.0.1) + NOTE: https://github.com/Kludex/starlette/pull/3279 CVE-2026-9264 (A cross-site scripting (XSS) vulnerability in SketchUp 2026's Dynamic ...) NOT-FOR-US: SketchUp CVE-2026-9104 (The Draft List plugin for WordPress is vulnerable to Stored Cross-Site ...) View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/026eeb2b46ab2e2d575a5e9da8dfc100a76dc17a -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/026eeb2b46ab2e2d575a5e9da8dfc100a76dc17a You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
_______________________________________________ debian-security-tracker-commits mailing list [email protected] https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits
