Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
2f482938 by Salvatore Bonaccorso at 2026-07-16T09:33:20+02:00
Add new issue in kanboard
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -443,7 +443,10 @@ CVE-2026-59236 (Authorization Bypass Through
User-Controlled Key (CWE-639) in th
CVE-2026-59235 (Missing Authorization (CWE-862) in BankAccountListController
(app/Http ...)
NOT-FOR-US: prospero-flow-crm
CVE-2026-58660 (Kanboard through 1.2.52, fixed in commit 564cc30,
BoardAjaxController ...)
- TODO: check
+ - kanboard <unfixed>
+ NOTE: https://github.com/kanboard/kanboard/issues/5852
+ NOTE: https://github.com/kanboard/kanboard/pull/5853
+ NOTE: Fixed by:
https://github.com/kanboard/kanboard/commit/564cc30e1e360959572e01e158734d9475c05903
CVE-2026-58659 (PyTorch Lightning through 2.6.5, fixed in commit d710d68,
contains a r ...)
NOT-FOR-US: PyTorch Lightning
CVE-2026-58658 (GPUStack through 2.2.1, fixed in commit 4e20551, contains an
unauthent ...)
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2f4829384a05f046d9e80fc1dfc6cd72dd50631a
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2f4829384a05f046d9e80fc1dfc6cd72dd50631a
You're receiving this email because of your account on salsa.debian.org. Manage
all notifications: https://salsa.debian.org/-/profile/notifications | Help:
https://salsa.debian.org/help
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits