Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits: 72e71350 by Salvatore Bonaccorso at 2026-07-30T10:10:50+02:00 Add CVE-2026-66066/rails - - - - - 1 changed file: - data/CVE/list Changes: ===================================== data/CVE/list ===================================== @@ -1,3 +1,6 @@ +CVE-2026-66066 [Possible arbitrary file read and remote code execution in Active Storage variant processing] + - rails <unfixed> + NOTE: https://github.com/rails/rails/security/advisories/GHSA-xr9x-r78c-5hrm CVE-2026-6336 (GitLab has remediated an issue in GitLab CE/EE affecting all versions ...) NOT-FOR-US: GitLab (used to be packaged in the Debian archive as src:gitlab, but never in a stable release) CVE-2026-6267 (GitLab has remediated an issue in GitLab CE/EE affecting all versions ...) View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/72e71350a1a30d2918ac4a87f9db9a561d2cb81e -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/72e71350a1a30d2918ac4a87f9db9a561d2cb81e You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
_______________________________________________ debian-security-tracker-commits mailing list [email protected] https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits
