Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
3203740d by Salvatore Bonaccorso at 2026-06-24T16:34:22+02:00
Add CVE-2026-53550/node-js-yaml
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1171,7 +1171,8 @@ CVE-2026-53632 (launch-editor allows users to open files
with line numbers in ed
CVE-2026-53571 (Vite is a frontend tooling framework for JavaScript. Prior to
8.0.16, ...)
- node-vite <itp> (bug #1053782)
CVE-2026-53550 (js-yaml is a JavaScript YAML parser and dumper. Prior to
4.2.0, a craf ...)
- TODO: check
+ - node-js-yaml <unfixed>
+ NOTE:
https://github.com/nodeca/js-yaml/security/advisories/GHSA-h67p-54hq-rp68
CVE-2026-53540 (Python-Multipart is a streaming multipart parser for Python.
Prior to ...)
- python-multipart <unfixed> (bug #1140628)
[trixie] - python-multipart <no-dsa> (Minor issue)
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/3203740d569eb62c869189e66cfb92d56a4773c2
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/3203740d569eb62c869189e66cfb92d56a4773c2
You're receiving this email because of your account on salsa.debian.org. Manage
all notifications: https://salsa.debian.org/-/profile/notifications | Help:
https://salsa.debian.org/help
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits