Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
9a779476 by security tracker role at 2026-09-15T07:13:54+00:00
automatic update
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,4 +1,868 @@
-CVE-2026-82049
+CVE-2026-91774 (Yao through v1.0.0-rc22 authenticates but fails to authorize
the GET / ...)
+ TODO: check
+CVE-2026-91773 (Soft Serve versions 0.7.1 through 0.11.6 fail to scope Git LFS
lock qu ...)
+ TODO: check
+CVE-2026-91772 (Halo through 2.26.1 contains an open redirect vulnerability in
the ano ...)
+ TODO: check
+CVE-2026-91771 (Weights & Biases wandb before 0.29.0 fails to validate the
file name f ...)
+ TODO: check
+CVE-2026-91770 (IceHRM before 36.0.0 fails to validate employee ownership on
seven RES ...)
+ TODO: check
+CVE-2026-91752 (GNU libextractor before 1.15 contains a stack-based buffer
overflow vu ...)
+ TODO: check
+CVE-2026-91751 (Flextype CMS through 1.0.0-alpha.3 fails to properly validate
id and n ...)
+ TODO: check
+CVE-2026-91750 (WeKnora before 0.7.0 fails to re-validate HTTP redirect
targets in the ...)
+ TODO: check
+CVE-2026-91201 (DocsGPT through 0.20.0 posts OAuth connector session tokens to
a wildc ...)
+ TODO: check
+CVE-2026-91200 (DevSpace through 6.3.21 fails to reject parent-directory
segments in t ...)
+ TODO: check
+CVE-2026-91199 (Refly through 1.1.0 contains a server-side request forgery
vulnerabili ...)
+ TODO: check
+CVE-2026-91198 (GrowthBook through 5.0.1 returns unredacted fact table
definitions inc ...)
+ TODO: check
+CVE-2026-91197 (Flowable flowable-engine through 8.0.0 contains an XML
external entity ...)
+ TODO: check
+CVE-2026-91181 (Mattermost versions 11.9.x <= 11.9.0, 11.8.x <= 11.8.4, 11.7.x
<= 11.7 ...)
+ TODO: check
+CVE-2026-91146 (Takahe through 0.11.0 fails to restrict URL schemes in link
hrefs with ...)
+ TODO: check
+CVE-2026-91145 (Activiti through 7.1.0.M6 fails to validate hash-brace
deferred expres ...)
+ TODO: check
+CVE-2026-91144 (ZFile through 5.0.5 fails to validate requested file paths
against a s ...)
+ TODO: check
+CVE-2026-91143 (goproxy through 15.3 fails to apply HTTP proxy basic
authentication to ...)
+ TODO: check
+CVE-2026-91088 (A vulnerability has been found in GPAC up to f1219cde. This
issue affe ...)
+ TODO: check
+CVE-2026-91087 (A flaw has been found in GPAC up to f1219cde. This
vulnerability affec ...)
+ TODO: check
+CVE-2026-91086 (A security vulnerability has been detected in GPAC up to
f1219cde. Aff ...)
+ TODO: check
+CVE-2026-91005 (A vulnerability was found in SourceCodester Online Faculty
Clearance S ...)
+ TODO: check
+CVE-2026-91004 (A vulnerability has been found in SourceCodester Online
Faculty Cleara ...)
+ TODO: check
+CVE-2026-91003 (A flaw has been found in D-Link DI-8300 16.07. The affected
element is ...)
+ TODO: check
+CVE-2026-91002 (A weakness has been identified in stamparm maltrail up to
3.0.1. This ...)
+ TODO: check
+CVE-2026-91001 (A security flaw has been discovered in D-Link DI-8400 16.07.
This affe ...)
+ TODO: check
+CVE-2026-90896 (Missing Authentication for Critical Function (CWE-306) in the
checkout ...)
+ TODO: check
+CVE-2026-90881 (A weakness has been identified in D-Link DIR-882 up to
20260814. Impac ...)
+ TODO: check
+CVE-2026-90880 (A security flaw has been discovered in D-Link DSL-3782
2016-07-28. Thi ...)
+ TODO: check
+CVE-2026-90879 (A vulnerability was identified in zyx0814 FilePress up to
3.0.1. This ...)
+ TODO: check
+CVE-2026-90878 (A vulnerability was determined in vllm-project vLLM up to
0.27.1. This ...)
+ TODO: check
+CVE-2026-90877 (A vulnerability was found in SourceCodester Online Faculty
Clearance S ...)
+ TODO: check
+CVE-2026-90876 (A vulnerability has been found in SourceCodester Online
Faculty Cleara ...)
+ TODO: check
+CVE-2026-90858 (A flaw has been found in subhajitkhan
online-clinic-management-system ...)
+ TODO: check
+CVE-2026-90857 (A vulnerability was detected in SourceCodester College Notes
Gallery M ...)
+ TODO: check
+CVE-2026-90856 (A security vulnerability has been detected in SourceCodester
College N ...)
+ TODO: check
+CVE-2026-90855 (A weakness has been identified in SourceCodester/katojkalemba
Online F ...)
+ TODO: check
+CVE-2026-90854 (A security flaw has been discovered in
SourceCodester/katojkalemba Onl ...)
+ TODO: check
+CVE-2026-90852 (A vulnerability has been found in luben zstd-jni up to
1.5.7-13. This ...)
+ TODO: check
+CVE-2026-90851 (A flaw has been found in PHPGurukul Hostel Management System
3.0. This ...)
+ TODO: check
+CVE-2026-90850 (A vulnerability was detected in PHPGurukul Hostel Management
System 3. ...)
+ TODO: check
+CVE-2026-90849 (A security vulnerability has been detected in SourceCodester
College N ...)
+ TODO: check
+CVE-2026-90848 (A weakness has been identified in Governikus AusweisApp up to
2.5.4. A ...)
+ TODO: check
+CVE-2026-90847 (A vulnerability was determined in EFM ipTIME C200E 1.094. The
impacted ...)
+ TODO: check
+CVE-2026-90846 (A vulnerability has been found in PHPGurukul Daily Expense
Tracker Sys ...)
+ TODO: check
+CVE-2026-90845 (A flaw has been found in PHPGurukul Daily Expense Tracker
System 1.1. ...)
+ TODO: check
+CVE-2026-90844 (A vulnerability was detected in PHPGurukul Daily Expense
Tracker Syste ...)
+ TODO: check
+CVE-2026-90843 (A security vulnerability has been detected in SabyasachiRana
WebMap up ...)
+ TODO: check
+CVE-2026-90842 (A weakness has been identified in PHPGurukul Blood Donor
Management Sy ...)
+ TODO: check
+CVE-2026-90841 (A security flaw has been discovered in PHPGurukul Blood Donor
Manageme ...)
+ TODO: check
+CVE-2026-90840 (A vulnerability was identified in PHPGurukul Blood Donor
Management Sy ...)
+ TODO: check
+CVE-2026-90835 (A flaw has been found in michaelliao itranswarp up to 2.19.
The impact ...)
+ TODO: check
+CVE-2026-90831 (A vulnerability was detected in GNU Binutils 2.47. The
affected elemen ...)
+ TODO: check
+CVE-2026-90830 (A security vulnerability has been detected in GNU Binutils
2.47. Impac ...)
+ TODO: check
+CVE-2026-90829 (A weakness has been identified in GNU Binutils 2.47. This
issue affect ...)
+ TODO: check
+CVE-2026-90828 (A security flaw has been discovered in GNU Binutils 2.47. This
vulnera ...)
+ TODO: check
+CVE-2026-90827 (A vulnerability was identified in GPAC 26.07.0. This affects
the funct ...)
+ TODO: check
+CVE-2026-90826 (A vulnerability was determined in GPAC 26.07.0. Affected by
this issue ...)
+ TODO: check
+CVE-2026-90825 (A vulnerability was found in GPAC 26.07.0. Affected by this
vulnerabil ...)
+ TODO: check
+CVE-2026-90824 (A vulnerability has been found in GPAC 26.07.0. Affected is
the functi ...)
+ TODO: check
+CVE-2026-90820 (A security vulnerability has been detected in a2aproject
a2a-java 1.2. ...)
+ TODO: check
+CVE-2026-90819 (A weakness has been identified in a2aproject a2a-java 1.2.0.
The affec ...)
+ TODO: check
+CVE-2026-90818 (A security flaw has been discovered in netease-youdao
LobsterAI 2026.6 ...)
+ TODO: check
+CVE-2026-90816 (A vulnerability was found in FFmpeg 8.0.x. This affects the
function p ...)
+ TODO: check
+CVE-2026-90815 (A vulnerability has been found in FFmpeg up to
4.4.6/5.1.8/6.1.4/7.1.3 ...)
+ TODO: check
+CVE-2026-90814 (A flaw has been found in cosmicstack-labs mercury-agent up to
1.1.13. ...)
+ TODO: check
+CVE-2026-90813 (A vulnerability was detected in cosmicstack-labs mercury-agent
up to 1 ...)
+ TODO: check
+CVE-2026-90812 (A security vulnerability has been detected in cosmicstack-labs
mercury ...)
+ TODO: check
+CVE-2026-90711 (proxy-addr is a Node.js module that determines a request's
client addr ...)
+ TODO: check
+CVE-2026-89141 (The AI Engine \u2013 The Chatbot, AI Framework & MCP for
WordPress plu ...)
+ TODO: check
+CVE-2026-88262 (Insufficient session expiration vulnerability in bizwell
xClick allows ...)
+ TODO: check
+CVE-2026-88261 (Improper input validation vulnerability in bizwell xClick
allows Store ...)
+ TODO: check
+CVE-2026-86924 (A memory corruption issue was addressed with improved input
validation ...)
+ TODO: check
+CVE-2026-86917 (A permissions issue was addressed with additional
restrictions. This i ...)
+ TODO: check
+CVE-2026-86911 (This issue was addressed with improved state management. This
issue is ...)
+ TODO: check
+CVE-2026-86910 (A permissions issue was addressed with improved path
validation. This ...)
+ TODO: check
+CVE-2026-86909 (A logic issue was addressed with improved state management.
This issue ...)
+ TODO: check
+CVE-2026-86905 (This issue was addressed by removing the vulnerable code. This
issue i ...)
+ TODO: check
+CVE-2026-86904 (A privacy issue was addressed with improved state management.
This iss ...)
+ TODO: check
+CVE-2026-86903 (An out-of-bounds read was addressed with improved input
validation. Th ...)
+ TODO: check
+CVE-2026-86902 (A parsing issue in the handling of directory paths was
addressed with ...)
+ TODO: check
+CVE-2026-86901 (An out-of-bounds write issue was addressed with improved
bounds checki ...)
+ TODO: check
+CVE-2026-86900 (An out-of-bounds read issue was addressed with improved input
validati ...)
+ TODO: check
+CVE-2026-86898 (A logic issue was addressed with improved state management.
This issue ...)
+ TODO: check
+CVE-2026-86897 (This issue was addressed with additional entitlement checks.
This issu ...)
+ TODO: check
+CVE-2026-86895 (An information disclosure issue was addressed with improved
state mana ...)
+ TODO: check
+CVE-2026-86894 (A logic issue was addressed with improved checks. This issue
is fixed ...)
+ TODO: check
+CVE-2026-86893 (A permissions issue was addressed with additional
restrictions. This i ...)
+ TODO: check
+CVE-2026-86892 (This issue was addressed with additional entitlement checks.
This issu ...)
+ TODO: check
+CVE-2026-86891 (An authorization issue was addressed with improved state
management. T ...)
+ TODO: check
+CVE-2026-86890 (A logic issue was addressed with improved checks. This issue
is fixed ...)
+ TODO: check
+CVE-2026-86889 (A certificate validation issue was addressed with improved
certificate ...)
+ TODO: check
+CVE-2026-86888 (A permissions issue was addressed with additional
restrictions. This i ...)
+ TODO: check
+CVE-2026-86887 (A privacy issue was addressed by removing sensitive data. This
issue i ...)
+ TODO: check
+CVE-2026-86886 (A path traversal issue was addressed with improved input
validation. T ...)
+ TODO: check
+CVE-2026-86885 (An input validation issue was addressed with improved input
validation ...)
+ TODO: check
+CVE-2026-86884 (A permissions issue was addressed with additional
restrictions. This i ...)
+ TODO: check
+CVE-2026-86883 (A privacy issue was addressed with improved handling of files.
This is ...)
+ TODO: check
+CVE-2026-86882 (An out-of-bounds write issue was addressed with improved
bounds checki ...)
+ TODO: check
+CVE-2026-86881 (A certificate validation issue was addressed with improved
certificate ...)
+ TODO: check
+CVE-2026-86879 (A denial-of-service issue was addressed with improved input
validation ...)
+ TODO: check
+CVE-2026-86878 (A permissions issue was addressed with additional
restrictions. This i ...)
+ TODO: check
+CVE-2026-86876 (An out-of-bounds write issue was addressed with improved
bounds checki ...)
+ TODO: check
+CVE-2026-86870 (A heap buffer overflow was addressed with improved bounds
checking. Th ...)
+ TODO: check
+CVE-2026-86869 (An out-of-bounds write issue was addressed with improved
bounds checki ...)
+ TODO: check
+CVE-2026-86701 (Android application "ManabiPocket for Parents" contains an
improper ac ...)
+ TODO: check
+CVE-2026-85657 (The Co-Authors, Multiple Authors and Guest Authors in an
Author Box wi ...)
+ TODO: check
+CVE-2026-85575 (The ShopEngine Elementor WooCommerce Builder Addon \u2013 All
in One W ...)
+ TODO: check
+CVE-2026-84636 (An authorization issue was addressed with improved state
management. T ...)
+ TODO: check
+CVE-2026-84635 (A logic issue was addressed with improved state management.
This issue ...)
+ TODO: check
+CVE-2026-84632 (The issue was addressed with improved memory handling. This
issue is f ...)
+ TODO: check
+CVE-2026-84631 (This issue was addressed with additional entitlement checks.
This issu ...)
+ TODO: check
+CVE-2026-84630 (A race condition was addressed with improved state handling.
This issu ...)
+ TODO: check
+CVE-2026-84629 (This issue was addressed with additional entitlement checks.
This issu ...)
+ TODO: check
+CVE-2026-84628 (An authorization issue was addressed with improved state
management. T ...)
+ TODO: check
+CVE-2026-84626 (An information disclosure issue was addressed with improved
state mana ...)
+ TODO: check
+CVE-2026-84625 (A permissions issue was addressed with additional sandbox
restrictions ...)
+ TODO: check
+CVE-2026-84624 (A permissions issue was addressed with improved path
validation. This ...)
+ TODO: check
+CVE-2026-84623 (An authorization issue was addressed with improved state
management. T ...)
+ TODO: check
+CVE-2026-84622 (A memory initialization issue was addressed with improved
memory handl ...)
+ TODO: check
+CVE-2026-84621 (An authorization issue was addressed with improved access
control. Thi ...)
+ TODO: check
+CVE-2026-84620 (An integer overflow was addressed with improved input
validation. This ...)
+ TODO: check
+CVE-2026-84619 (An out-of-bounds write issue was addressed with improved
bounds checki ...)
+ TODO: check
+CVE-2026-84618 (A permissions issue was addressed with improved validation.
This issue ...)
+ TODO: check
+CVE-2026-84617 (An authorization issue was addressed with improved state
management. T ...)
+ TODO: check
+CVE-2026-84616 (A type confusion issue was addressed with improved memory
handling. Th ...)
+ TODO: check
+CVE-2026-84615 (An authorization issue was addressed with improved state
management. T ...)
+ TODO: check
+CVE-2026-84612 (An authorization issue was addressed with improved access
control. Thi ...)
+ TODO: check
+CVE-2026-84611 (An out-of-bounds write issue was addressed with improved
bounds checki ...)
+ TODO: check
+CVE-2026-84609 (A permissions issue was addressed with improved path
validation. This ...)
+ TODO: check
+CVE-2026-84607 (A race condition was addressed with improved state management.
This is ...)
+ TODO: check
+CVE-2026-84606 (A privacy issue was addressed with improved handling of
identifiers. T ...)
+ TODO: check
+CVE-2026-84603 (A permissions issue was addressed with additional
restrictions. This i ...)
+ TODO: check
+CVE-2026-84602 (A type confusion issue was addressed with improved checks.
This issue ...)
+ TODO: check
+CVE-2026-84601 (A permissions issue was addressed with improved state
management. This ...)
+ TODO: check
+CVE-2026-84600 (An authorization issue was addressed with improved state
management. T ...)
+ TODO: check
+CVE-2026-84598 (A path traversal issue was addressed with improved path
validation. Th ...)
+ TODO: check
+CVE-2026-84597 (An out-of-bounds read issue was addressed with improved input
validati ...)
+ TODO: check
+CVE-2026-84596 (An out-of-bounds read was addressed with improved bounds
checking. Thi ...)
+ TODO: check
+CVE-2026-84593 (A use after free issue was addressed with improved memory
management. ...)
+ TODO: check
+CVE-2026-84589 (A permissions issue was addressed with additional
restrictions. This i ...)
+ TODO: check
+CVE-2026-84588 (A memory corruption issue was addressed by removing the
vulnerable cod ...)
+ TODO: check
+CVE-2026-84587 (A permissions issue was addressed with additional
restrictions. This i ...)
+ TODO: check
+CVE-2026-84586 (An information disclosure issue was addressed with improved
state mana ...)
+ TODO: check
+CVE-2026-84585 (A permissions issue was addressed with improved state
management. This ...)
+ TODO: check
+CVE-2026-84584 (This issue was addressed with improved handling of symlinks.
This issu ...)
+ TODO: check
+CVE-2026-84583 (A permissions issue was addressed with additional
restrictions. This i ...)
+ TODO: check
+CVE-2026-84581 (A buffer overflow was addressed with improved bounds checking.
This is ...)
+ TODO: check
+CVE-2026-84580 (The issue was addressed with improved checks. This issue is
fixed in m ...)
+ TODO: check
+CVE-2026-84578 (A logic issue was addressed with improved checks. This issue
is fixed ...)
+ TODO: check
+CVE-2026-84577 (An access issue was addressed with additional sandbox
restrictions. Th ...)
+ TODO: check
+CVE-2026-84576 (This issue was addressed with improved checks. This issue is
fixed in ...)
+ TODO: check
+CVE-2026-84575 (An out-of-bounds write issue was addressed with improved
bounds checki ...)
+ TODO: check
+CVE-2026-84574 (A permissions issue was addressed with improved state
management. This ...)
+ TODO: check
+CVE-2026-84573 (This issue was addressed with improved checks. This issue is
fixed in ...)
+ TODO: check
+CVE-2026-84572 (An out-of-bounds read was addressed with improved bounds
checking. Thi ...)
+ TODO: check
+CVE-2026-84571 (A buffer overflow was addressed with improved bounds checking.
This is ...)
+ TODO: check
+CVE-2026-84570 (A logic issue was addressed with improved checks. This issue
is fixed ...)
+ TODO: check
+CVE-2026-84569 (An access issue was addressed with additional sandbox
restrictions on ...)
+ TODO: check
+CVE-2026-84568 (A path traversal issue was addressed with improved path
validation. Th ...)
+ TODO: check
+CVE-2026-84567 (The issue was addressed with improved memory handling. This
issue is f ...)
+ TODO: check
+CVE-2026-84566 (The issue was addressed with improved memory handling. This
issue is f ...)
+ TODO: check
+CVE-2026-84565 (An out-of-bounds read was addressed with improved bounds
checking. Thi ...)
+ TODO: check
+CVE-2026-84564 (An uninitialized memory issue was addressed with improved
memory initi ...)
+ TODO: check
+CVE-2026-84563 (A logic issue was addressed with improved checks. This issue
is fixed ...)
+ TODO: check
+CVE-2026-84562 (A race condition was addressed with additional validation.
This issue ...)
+ TODO: check
+CVE-2026-84561 (A double free issue was addressed with improved memory
management. Thi ...)
+ TODO: check
+CVE-2026-84560 (An authorization issue was addressed with improved state
management. T ...)
+ TODO: check
+CVE-2026-84559 (A permissions issue was addressed with improved validation.
This issue ...)
+ TODO: check
+CVE-2026-84558 (A double free issue was addressed with improved memory
management. Thi ...)
+ TODO: check
+CVE-2026-84556 (An authorization issue was addressed with improved access
control. Thi ...)
+ TODO: check
+CVE-2026-84555 (An authorization issue was addressed with improved access
control. Thi ...)
+ TODO: check
+CVE-2026-84554 (An integer overflow was addressed with improved input
validation. This ...)
+ TODO: check
+CVE-2026-84553 (A resource exhaustion issue was addressed with improved input
validati ...)
+ TODO: check
+CVE-2026-84552 (The issue was addressed with improved memory handling. This
issue is f ...)
+ TODO: check
+CVE-2026-84551 (A logic issue was addressed with improved validation. This
issue is fi ...)
+ TODO: check
+CVE-2026-84550 (A race condition was addressed with additional validation.
This issue ...)
+ TODO: check
+CVE-2026-84549 (An out-of-bounds read was addressed with improved bounds
checking. Thi ...)
+ TODO: check
+CVE-2026-84548 (An integer overflow was addressed with improved input
validation. This ...)
+ TODO: check
+CVE-2026-84546 (An out-of-bounds write issue was addressed with improved
bounds checki ...)
+ TODO: check
+CVE-2026-84544 (An integer overflow was addressed with improved input
validation. This ...)
+ TODO: check
+CVE-2026-84543 (An out-of-bounds access issue was addressed with improved
bounds check ...)
+ TODO: check
+CVE-2026-84541 (An input validation issue was addressed with improved input
validation ...)
+ TODO: check
+CVE-2026-84540 (An authorization issue was addressed with improved state
management. T ...)
+ TODO: check
+CVE-2026-84538 (A denial-of-service issue was addressed with improved input
validation ...)
+ TODO: check
+CVE-2026-84537 (The issue was addressed with improved memory handling. This
issue is f ...)
+ TODO: check
+CVE-2026-84536 (An integer underflow was addressed with improved input
validation. Thi ...)
+ TODO: check
+CVE-2026-84535 (An authorization issue was addressed with improved state
management. T ...)
+ TODO: check
+CVE-2026-84534 (A path handling issue was addressed with improved validation.
This iss ...)
+ TODO: check
+CVE-2026-84533 (A cryptographic issue was addressed with improved integrity
checks. Th ...)
+ TODO: check
+CVE-2026-84532 (An out-of-bounds read issue was addressed with improved input
validati ...)
+ TODO: check
+CVE-2026-84531 (An out-of-bounds write issue was addressed with improved
bounds checki ...)
+ TODO: check
+CVE-2026-84530 (An information disclosure issue was addressed with improved
memory man ...)
+ TODO: check
+CVE-2026-84527 (A logging issue was addressed with improved data redaction.
This issue ...)
+ TODO: check
+CVE-2026-84526 (An out-of-bounds write issue was addressed with improved
bounds checki ...)
+ TODO: check
+CVE-2026-84525 (A logging issue was addressed with improved data redaction.
This issue ...)
+ TODO: check
+CVE-2026-84524 (An out-of-bounds read was addressed with improved bounds
checking. Thi ...)
+ TODO: check
+CVE-2026-84523 (An out-of-bounds write issue was addressed with improved
bounds checki ...)
+ TODO: check
+CVE-2026-84522 (A race condition was addressed with improved state management.
This is ...)
+ TODO: check
+CVE-2026-84521 (A use after free issue was addressed with improved memory
management. ...)
+ TODO: check
+CVE-2026-84520 (A buffer overflow was addressed with improved size validation.
This is ...)
+ TODO: check
+CVE-2026-84519 (An out-of-bounds write issue was addressed with improved
bounds checki ...)
+ TODO: check
+CVE-2026-84518 (This issue was addressed through improved state management.
This issue ...)
+ TODO: check
+CVE-2026-84517 (An integer overflow was addressed with improved input
validation. This ...)
+ TODO: check
+CVE-2026-84516 (An out-of-bounds read was addressed with improved bounds
checking. Thi ...)
+ TODO: check
+CVE-2026-84515 (An out-of-bounds write issue was addressed with improved
bounds checki ...)
+ TODO: check
+CVE-2026-84514 (This issue was addressed with additional entitlement checks.
This issu ...)
+ TODO: check
+CVE-2026-84513 (A privacy issue was addressed with improved private data
redaction for ...)
+ TODO: check
+CVE-2026-84512 (A buffer overflow was addressed with improved bounds checking.
This is ...)
+ TODO: check
+CVE-2026-84511 (An out-of-bounds write issue was addressed with improved
bounds checki ...)
+ TODO: check
+CVE-2026-84510 (A heap buffer overflow was addressed with improved bounds
checking. Th ...)
+ TODO: check
+CVE-2026-84509 (An out-of-bounds read was addressed with improved bounds
checking. Thi ...)
+ TODO: check
+CVE-2026-84507 (A race condition was addressed with improved state handling.
This issu ...)
+ TODO: check
+CVE-2026-84506 (A use after free issue was addressed with improved memory
management. ...)
+ TODO: check
+CVE-2026-84505 (An out-of-bounds write issue was addressed with improved
bounds checki ...)
+ TODO: check
+CVE-2026-84497 (A buffer overflow was addressed with improved size validation.
This is ...)
+ TODO: check
+CVE-2026-84492 (A race condition was addressed with improved state handling.
This issu ...)
+ TODO: check
+CVE-2026-84491 (A permissions issue was addressed with additional
restrictions. This i ...)
+ TODO: check
+CVE-2026-84489 (A buffer overflow was addressed with improved bounds checking.
This is ...)
+ TODO: check
+CVE-2026-84487 (An integer overflow was addressed with improved input
validation. This ...)
+ TODO: check
+CVE-2026-82519 (Really Simple Security plugin for WordPress before 9.8.2
contains a mi ...)
+ TODO: check
+CVE-2026-82028 (Magistrala before 1.0.0 contains a SQL injection vulnerability
in the ...)
+ TODO: check
+CVE-2026-81903 (Concrete CMS versions 9.0.0 to 9.5.2 stored the Page Container
icon va ...)
+ TODO: check
+CVE-2026-81902 (Concrete CMS 9 through 9.5.2 did not validate a CSRF token in
the orph ...)
+ TODO: check
+CVE-2026-81901 (In Concrete CMS 9.2.0 through 9.5.2, the REST API page update
endpoint ...)
+ TODO: check
+CVE-2026-81900 (Concrete CMS before 9.5.3 applied only trim() to the YouTube
block's s ...)
+ TODO: check
+CVE-2026-81320 (A flaw was found in hawtio-operator. When a custom Route TLS
secret is ...)
+ TODO: check
+CVE-2026-81303 (A flaw was found in hawtio-operator. The operator holds
routes/custom- ...)
+ TODO: check
+CVE-2026-7884 (IBM Cognos Analytics 12.1.0 through 12.1.3 FP1, and 12.0.4
through 12. ...)
+ TODO: check
+CVE-2026-78415 (IBM Sterling Secure Proxy 6.2.0.0 through 6.2.1.2 could allow
a remote ...)
+ TODO: check
+CVE-2026-77191 (An authenticated supplicant on an adjacent network may bypass
intended ...)
+ TODO: check
+CVE-2026-76081 (ZITADEL is an open source identity management platform. Prior
to versi ...)
+ TODO: check
+CVE-2026-75983 (The Eventin \u2013 Event Calendar, Tickets, Registration,
Booking & Wo ...)
+ TODO: check
+CVE-2026-75945 (A race condition may cause a supplicant to remain in an
authorized sta ...)
+ TODO: check
+CVE-2026-75944 (A race condition during supplicant re-authentication may leave
a stale ...)
+ TODO: check
+CVE-2026-75943 (A brief (milliseconds to seconds) traffic leak may occur when
an authe ...)
+ TODO: check
+CVE-2026-75792 (IBM Sterling Secure Proxy 6.2.0.0 through 6.2.1.2 could allow
a remote ...)
+ TODO: check
+CVE-2026-73497 (MCP Atlassian is a Model Context Protocol (MCP) server for
Atlassian p ...)
+ TODO: check
+CVE-2026-73496 (MCP Atlassian is a Model Context Protocol (MCP) server for
Atlassian p ...)
+ TODO: check
+CVE-2026-73449 (On affected platforms running Arista EOS with both 802.1X port
authent ...)
+ TODO: check
+CVE-2026-68489 (Static Code Injection in Plesk extensions "Ruby" before 1.6.6
and "Nod ...)
+ TODO: check
+CVE-2026-67399 (Deserialization of untrusted data in WHMCS 9.0.0 before 9.0.8
and 8.0. ...)
+ TODO: check
+CVE-2026-65838 (Skipper is an HTTP router and reverse proxy for service
composition. P ...)
+ TODO: check
+CVE-2026-65415 (A race condition was addressed with additional validation.
This issue ...)
+ TODO: check
+CVE-2026-65414 (An out-of-bounds write issue was addressed with improved
bounds checki ...)
+ TODO: check
+CVE-2026-65413 (An integer overflow was addressed with improved input
validation. This ...)
+ TODO: check
+CVE-2026-65412 (A null pointer dereference was addressed with improved input
validatio ...)
+ TODO: check
+CVE-2026-65411 (A path handling issue was addressed with improved validation.
This iss ...)
+ TODO: check
+CVE-2026-65410 (The issue was addressed with improved checks. This issue is
fixed in i ...)
+ TODO: check
+CVE-2026-65409 (A type confusion issue was addressed with improved memory
handling. Th ...)
+ TODO: check
+CVE-2026-65408 (An integer overflow was addressed with improved input
validation. This ...)
+ TODO: check
+CVE-2026-65407 (A use after free issue was addressed with improved memory
management. ...)
+ TODO: check
+CVE-2026-65406 (A logic issue was addressed with improved validation. This
issue is fi ...)
+ TODO: check
+CVE-2026-65405 (A memory initialization issue was addressed with improved
memory handl ...)
+ TODO: check
+CVE-2026-65404 (An authorization issue was addressed with improved state
management. T ...)
+ TODO: check
+CVE-2026-65403 (This issue was addressed with improved checks. This issue is
fixed in ...)
+ TODO: check
+CVE-2026-65402 (A use after free issue was addressed with improved memory
management. ...)
+ TODO: check
+CVE-2026-65401 (A race condition was addressed with improved state handling.
This issu ...)
+ TODO: check
+CVE-2026-65399 (A file quarantine bypass was addressed with additional checks.
This is ...)
+ TODO: check
+CVE-2026-65398 (An out-of-bounds access issue was addressed with improved
bounds check ...)
+ TODO: check
+CVE-2026-65395 (An out-of-bounds write issue was addressed with improved
bounds checki ...)
+ TODO: check
+CVE-2026-65393 (A permissions issue was addressed with improved validation.
This issue ...)
+ TODO: check
+CVE-2026-65391 (An out-of-bounds write issue was addressed with improved
bounds checki ...)
+ TODO: check
+CVE-2026-65390 (An integer overflow was addressed with improved input
validation. This ...)
+ TODO: check
+CVE-2026-65383 (This issue was addressed with improved checks. This issue is
fixed in ...)
+ TODO: check
+CVE-2026-65382 (A parsing issue in the handling of directory paths was
addressed with ...)
+ TODO: check
+CVE-2026-65381 (A validation issue existed in the entitlement verification.
This issue ...)
+ TODO: check
+CVE-2026-65380 (An issue existed in the handling of snapshots. The issue was
resolved ...)
+ TODO: check
+CVE-2026-65378 (An authorization issue was addressed with improved state
management. T ...)
+ TODO: check
+CVE-2026-65377 (A memory corruption issue was addressed with improved memory
handling. ...)
+ TODO: check
+CVE-2026-65376 (An out-of-bounds read was addressed with improved bounds
checking. Thi ...)
+ TODO: check
+CVE-2026-65375 (The issue was addressed with improved authentication. This
issue is fi ...)
+ TODO: check
+CVE-2026-65374 (A memory corruption issue was addressed with improved
validation. This ...)
+ TODO: check
+CVE-2026-65371 (This issue was addressed with improved redaction of sensitive
informat ...)
+ TODO: check
+CVE-2026-65369 (A logic issue was addressed with improved state management.
This issue ...)
+ TODO: check
+CVE-2026-65365 (An out-of-bounds read was addressed with improved bounds
checking. Thi ...)
+ TODO: check
+CVE-2026-65364 (An out-of-bounds read was addressed with improved bounds
checking. Thi ...)
+ TODO: check
+CVE-2026-65362 (This issue was addressed with improved checks. This issue is
fixed in ...)
+ TODO: check
+CVE-2026-65361 (This issue was addressed with improved checks. This issue is
fixed in ...)
+ TODO: check
+CVE-2026-65360 (A race condition was addressed with improved state handling.
This issu ...)
+ TODO: check
+CVE-2026-65359 (An out-of-bounds read was addressed with improved bounds
checking. Thi ...)
+ TODO: check
+CVE-2026-65358 (A race condition was addressed with improved state handling.
This issu ...)
+ TODO: check
+CVE-2026-65357 (The issue was addressed with improved memory handling. This
issue is f ...)
+ TODO: check
+CVE-2026-65355 (An information disclosure issue was addressed with improved
state mana ...)
+ TODO: check
+CVE-2026-65354 (A permissions issue was addressed with additional
restrictions. This i ...)
+ TODO: check
+CVE-2026-65353 (An authorization issue was addressed with improved state
management. T ...)
+ TODO: check
+CVE-2026-65352 (An information disclosure issue was addressed with improved
state mana ...)
+ TODO: check
+CVE-2026-65348 (A permissions issue was addressed with additional
restrictions. This i ...)
+ TODO: check
+CVE-2026-65345 (A permissions issue was addressed with additional
restrictions. This i ...)
+ TODO: check
+CVE-2026-65344 (An out-of-bounds write issue was addressed with improved
bounds checki ...)
+ TODO: check
+CVE-2026-65342 (A permissions issue was addressed with improved validation.
This issue ...)
+ TODO: check
+CVE-2026-64790 (A path handling issue was addressed with improved validation.
This iss ...)
+ TODO: check
+CVE-2026-64761 (A privacy issue was addressed with improved handling of user
preferenc ...)
+ TODO: check
+CVE-2026-64756 (A path handling issue was addressed with improved validation.
This iss ...)
+ TODO: check
+CVE-2026-64753 (A permissions issue was addressed by removing the vulnerable
code. Thi ...)
+ TODO: check
+CVE-2026-64752 (A memory corruption issue was addressed by removing the
vulnerable cod ...)
+ TODO: check
+CVE-2026-64736 (An out-of-bounds access issue was addressed with improved
bounds check ...)
+ TODO: check
+CVE-2026-64717 (A race condition was addressed with improved state handling.
This issu ...)
+ TODO: check
+CVE-2026-64714 (A memory corruption issue was addressed with improved bounds
checking. ...)
+ TODO: check
+CVE-2026-64712 (This issue was addressed with improved checks. This issue is
fixed in ...)
+ TODO: check
+CVE-2026-64701 (A permissions issue was addressed with additional
restrictions. This i ...)
+ TODO: check
+CVE-2026-55244 (ASTEVAL is an evaluator of Python expressions and statements.
Prior to ...)
+ TODO: check
+CVE-2026-55209 (resdata is software for reading and writing result files from
the Ecli ...)
+ TODO: check
+CVE-2026-55093 (Tract is a tiny, no-nonsense, self-contained TensorFlow and
ONNX infer ...)
+ TODO: check
+CVE-2026-54632 (SIPSorcery is a WebRTC, SIP, and VoIP library for C# and .NET.
Prior t ...)
+ TODO: check
+CVE-2026-54629 (Anyquery is an SQL query engine built on top of SQLite. Prior
to 0.4.5 ...)
+ TODO: check
+CVE-2026-54628 (Anyquery is an SQL query engine built on top of SQLite. Prior
to 0.4.5 ...)
+ TODO: check
+CVE-2026-54559 (PocketSphinx is a small speech recognizer. Prior to 5.1.1, the
trie la ...)
+ TODO: check
+CVE-2026-54447 (garminconnect is a Python 3 API wrapper for Garmin Connect
that retrie ...)
+ TODO: check
+CVE-2026-54334 (UEFI Firmware Parser parses BIOS, Intel ME, and UEFI firmware
structur ...)
+ TODO: check
+CVE-2026-54333 (UEFI Firmware Parser parses BIOS, Intel ME, and UEFI firmware
structur ...)
+ TODO: check
+CVE-2026-54247 (Skipper is an HTTP router and reverse proxy for service
composition. P ...)
+ TODO: check
+CVE-2026-54246 (Skipper is an HTTP router and reverse proxy for service
composition. P ...)
+ TODO: check
+CVE-2026-53719 (Envoy Gateway is an open source project for managing Envoy
Proxy as a ...)
+ TODO: check
+CVE-2026-53718 (Envoy Gateway is an open source project for managing Envoy
Proxy as a ...)
+ TODO: check
+CVE-2026-53717 (Envoy Gateway is an open source project for managing Envoy
Proxy as a ...)
+ TODO: check
+CVE-2026-53716 (Envoy Gateway is an open source project for managing Envoy
Proxy as a ...)
+ TODO: check
+CVE-2026-53715 (Envoy Gateway is an open source project for managing Envoy
Proxy as a ...)
+ TODO: check
+CVE-2026-53714 (Envoy Gateway is an open source project for managing Envoy
Proxy as a ...)
+ TODO: check
+CVE-2026-53713 (Envoy Gateway is an open source project for managing Envoy
Proxy as a ...)
+ TODO: check
+CVE-2026-50006 (Anyquery is an SQL query engine built on top of SQLite. Prior
to 0.4.5 ...)
+ TODO: check
+CVE-2026-47253 (Anyquery is an SQL query engine built on top of SQLite. Prior
to 0.4.5 ...)
+ TODO: check
+CVE-2026-43815 (A buffer overflow was addressed with improved bounds checking.
This is ...)
+ TODO: check
+CVE-2026-43808 (A use-after-free issue was addressed with improved memory
management. ...)
+ TODO: check
+CVE-2026-43791 (A validation issue was addressed with improved input
sanitization. Thi ...)
+ TODO: check
+CVE-2026-43790 (The issue was addressed with improved memory handling. This
issue is f ...)
+ TODO: check
+CVE-2026-43789 (An access issue was addressed with additional sandbox
restrictions. Th ...)
+ TODO: check
+CVE-2026-43788 (An integer overflow was addressed with improved input
validation. This ...)
+ TODO: check
+CVE-2026-43787 (A logic issue was addressed with improved checks. This issue
is fixed ...)
+ TODO: check
+CVE-2026-43786 (This issue was addressed with additional entitlement checks.
This issu ...)
+ TODO: check
+CVE-2026-43785 (A permissions issue was addressed with additional
restrictions. This i ...)
+ TODO: check
+CVE-2026-43783 (A race condition was addressed with improved locking. This
issue is fi ...)
+ TODO: check
+CVE-2026-43762 (The issue was addressed with improved checks. This issue is
fixed in i ...)
+ TODO: check
+CVE-2026-43761 (An out-of-bounds write issue was addressed with improved
bounds checki ...)
+ TODO: check
+CVE-2026-43741 (A logic issue was addressed with improved state management.
This issue ...)
+ TODO: check
+CVE-2026-43737 (An authorization issue was addressed with improved validation.
This is ...)
+ TODO: check
+CVE-2026-43719 (A use-after-free issue was addressed with improved memory
management. ...)
+ TODO: check
+CVE-2026-43702 (The issue was addressed with improved memory handling. This
issue is f ...)
+ TODO: check
+CVE-2026-43697 (An out-of-bounds read was addressed with improved bounds
checking. Thi ...)
+ TODO: check
+CVE-2026-43696 (An authorization issue was addressed with improved entitlement
checks. ...)
+ TODO: check
+CVE-2026-43695 (An authorization issue was addressed with improved state
management. T ...)
+ TODO: check
+CVE-2026-43692 (A validation issue was addressed with improved input
sanitization. Thi ...)
+ TODO: check
+CVE-2026-43691 (A path handling issue was addressed with improved validation.
This iss ...)
+ TODO: check
+CVE-2026-43690 (A race condition was addressed with improved locking. This
issue is fi ...)
+ TODO: check
+CVE-2026-43689 (A permissions issue was addressed with additional
restrictions. This i ...)
+ TODO: check
+CVE-2026-43688 (A memory corruption issue was addressed with improved input
validation ...)
+ TODO: check
+CVE-2026-43687 (The issue was addressed with improved memory handling. This
issue is f ...)
+ TODO: check
+CVE-2026-43686 (A use-after-free issue was addressed with improved memory
management. ...)
+ TODO: check
+CVE-2026-43684 (A use-after-free issue was addressed with improved memory
management. ...)
+ TODO: check
+CVE-2026-43683 (An out-of-bounds read was addressed with improved bounds
checking. Thi ...)
+ TODO: check
+CVE-2026-43677 (An out-of-bounds write issue was addressed by removing the
vulnerable ...)
+ TODO: check
+CVE-2026-43674 (An authentication issue was addressed with improved state
management. ...)
+ TODO: check
+CVE-2026-43664 (This issue was addressed with improved data protection. This
issue is ...)
+ TODO: check
+CVE-2026-28968 (An out-of-bounds write issue was addressed with improved
bounds checki ...)
+ TODO: check
+CVE-2026-28966 (An out-of-bounds write issue was addressed with improved
bounds checki ...)
+ TODO: check
+CVE-2026-28960 (A denial-of-service issue was addressed with improved
validation. This ...)
+ TODO: check
+CVE-2026-28938 (A privacy issue was addressed by moving sensitive data. This
issue is ...)
+ TODO: check
+CVE-2026-28937 (This issue was addressed through improved state management.
This issue ...)
+ TODO: check
+CVE-2026-28935 (The issue was addressed with improved memory handling. This
issue is f ...)
+ TODO: check
+CVE-2026-28934 (A buffer overflow was addressed with improved bounds checking.
This is ...)
+ TODO: check
+CVE-2026-28933 (A use-after-free issue was addressed with improved memory
management. ...)
+ TODO: check
+CVE-2026-28899 (A logic issue was addressed with improved checks. This issue
is fixed ...)
+ TODO: check
+CVE-2026-28836 (A correctness issue was addressed with improved checks. This
issue is ...)
+ TODO: check
+CVE-2026-20683 (An authentication issue was addressed with improved state
management. ...)
+ TODO: check
+CVE-2026-19290 (IBM Sterling File Gateway 6.2.0.0 through 6.2.0.6_1, 6.2.1.0 -
6.2.1.2 ...)
+ TODO: check
+CVE-2026-19280 (IBM i 7.6, 7.5, 7.4, and 7.3 could allow a denial of service
as a resu ...)
+ TODO: check
+CVE-2026-19273 (IBM Sterling B2B Integrator 6.2.0.0 through 6.2.0.6_2, 6.2.1.0
- 6.2.1 ...)
+ TODO: check
+CVE-2026-19086 (IBM i 7.6, 7.5, 7.4, and 7.3 could allow a denial of service
as a resu ...)
+ TODO: check
+CVE-2026-18251 (IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to
obtain s ...)
+ TODO: check
+CVE-2026-18232 (The WP Directory Kit WordPress plugin through 1.5.7 does not
check the ...)
+ TODO: check
+CVE-2026-18119 (Concrete CMS below 9.5.3 did not sanitize custom style values
in the B ...)
+ TODO: check
+CVE-2026-18117 (Concrete CMS 9.0.0 through 9.5.3 is vulnerable to stored XSS
via the c ...)
+ TODO: check
+CVE-2026-18116 (Concrete CMS 8.3.0 to 9.5.2 stored calendar event names
without saniti ...)
+ TODO: check
+CVE-2026-18069 (IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local attacker to
obtain ow ...)
+ TODO: check
+CVE-2026-18065 (IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote
unauthenticated atta ...)
+ TODO: check
+CVE-2026-18063 (The Job Postings plugin for WordPress is vulnerable to Stored
Cross-Si ...)
+ TODO: check
+CVE-2026-17628 (IBM Langflow OSS 1.0.0 through 1.10.2 could allow a remote
authenticat ...)
+ TODO: check
+CVE-2026-17495 (moment is a JavaScript date library for parsing, validating,
manipulat ...)
+ TODO: check
+CVE-2026-17467 (IBM Cloud Pak for Data System (Yosemite 1.0) 3.0.5.2 could
allow a rem ...)
+ TODO: check
+CVE-2026-17463 (IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 for
Linux, UN ...)
+ TODO: check
+CVE-2026-17416 (IBM App Connect Enterprise 13.0.1.0 through 13.0.8.0, and
12.0.1.0 thr ...)
+ TODO: check
+CVE-2026-17156 (IBM App Connect Enterprise 13.0.1.0 through 13.0.8.0, and
12.0.1.0 thr ...)
+ TODO: check
+CVE-2026-17133 (IBM App Connect Enterprise 13.0.1.0 through 13.0.8.0, and
12.0.1.0 thr ...)
+ TODO: check
+CVE-2026-17047 (IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote
attacker t ...)
+ TODO: check
+CVE-2026-16702 (IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 for
Linux, UN ...)
+ TODO: check
+CVE-2026-16673 (IBM DataStage on Cloud Pak for Data 5.4.0.0 IBM DataStage
could allow ...)
+ TODO: check
+CVE-2026-16593 (The WP Directory Kit WordPress plugin through 1.5.7 does not
sanitize ...)
+ TODO: check
+CVE-2026-16592 (The WP Directory Kit WordPress plugin through 1.5.7 does not
check aut ...)
+ TODO: check
+CVE-2026-16466 (IBM DataStage on Cloud Pak for Data 5.4.0.0 IBM DataStage
could allow ...)
+ TODO: check
+CVE-2026-16435 (IBM WebSphere Application Server 9.0, and 8.5 is affected by
an authen ...)
+ TODO: check
+CVE-2026-16432 (IBM DataStage on Cloud Pak for Data 5.4.0.0 IBM DataStage
PxXMLInput o ...)
+ TODO: check
+CVE-2026-16428 (IBM DataStage on Cloud Pak for Data 5.4.0.0 IBM DataStage
could allow ...)
+ TODO: check
+CVE-2026-16338 (IBM DataStage on Cloud Pak for Data 5.4.0.0 IBM DataStage
could allow ...)
+ TODO: check
+CVE-2026-16335 (IBM DataStage on Cloud Pak for Data 5.4.0.0 IBM DataStage
could allow ...)
+ TODO: check
+CVE-2026-16190 (IBM WebSphere Application Server 9.0, and 8.5 is affected by
an author ...)
+ TODO: check
+CVE-2026-16189 (IBM WebSphere Application Server 9.0, and 8.5 could allow a
remote att ...)
+ TODO: check
+CVE-2026-16188 (IBM WebSphere Application Server 9.0, and 8.5 could allow a
remote att ...)
+ TODO: check
+CVE-2026-16187 (IBM WebSphere Application Server 9.0, and 8.5 could allow a
remote att ...)
+ TODO: check
+CVE-2026-16186 (IBM WebSphere Application Server 9.0, and 8.5 is affected by a
reflect ...)
+ TODO: check
+CVE-2026-16185 (IBM WebSphere Application Server 9.0, and 8.5 could allow a
remote att ...)
+ TODO: check
+CVE-2026-16148 (The ITE it82xx2 USB device-controller driver initialized its
bus-suspe ...)
+ TODO: check
+CVE-2026-16147 (The ITE IT82xx2 USB device-controller driver
(drivers/usb/udc/udc_it82 ...)
+ TODO: check
+CVE-2026-15955 (IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 could
allow a ...)
+ TODO: check
+CVE-2026-15924 (Zephyr's TLS socket layer in
subsys/net/lib/sockets/sockets_tls.c keep ...)
+ TODO: check
+CVE-2026-15887 (IBM WebSphere Application Server 9.0, and 8.5 is affected by
blind ser ...)
+ TODO: check
+CVE-2026-15758 (The 3D FlipBook \u2013 PDF Embedder, PDF Flipbook Viewer,
Flipbook Ima ...)
+ TODO: check
+CVE-2026-15634 (IBM WebSphere Application Server 9.0, and 8.5 and IBM
WebSphere Applic ...)
+ TODO: check
+CVE-2026-15412 (IBM WebSphere Application Server 9.0, and 8.5 and IBM
WebSphere Applic ...)
+ TODO: check
+CVE-2026-15402 (The Eventin \u2013 Event Calendar, Event Registration, Tickets
& Booki ...)
+ TODO: check
+CVE-2026-15396 (IBM WebSphere Application Server 9.0, and 8.5 and IBM
WebSphere Applic ...)
+ TODO: check
+CVE-2026-14986 (The ITE it51xxx I2C driver, when operating as an I2C target
(slave) in ...)
+ TODO: check
+CVE-2026-14277 (IBM i Access Family 1.1.2.0 through 1.1.9.15 could allow an
authentica ...)
+ TODO: check
+CVE-2026-14276 (IBM i Access Family 1.1.2.0 through 1.1.9.15 IBM i Access
Client Solut ...)
+ TODO: check
+CVE-2026-14275 (IBM i Access Family 1.1.2.0 through 1.1.9.15 IBM i Access
Client Solut ...)
+ TODO: check
+CVE-2026-13293 (IBM MQ 9.1.0.0 through 9.1.0.37 LTS, 9.2.0.0 through 9.2.0.43
LTS, 9.3 ...)
+ TODO: check
+CVE-2026-13287 (IBM MQ 9.1.0.0 through 9.1.0.37 LTS, 9.2.0.0 through 9.2.0.43
LTS, 9.3 ...)
+ TODO: check
+CVE-2026-13285 (IBM MQ 9.1.0.0 through 9.1.0.37 LTS, 9.2.0.0 through 9.2.0.43
LTS, 9.3 ...)
+ TODO: check
+CVE-2026-13277 (IBM Verify Identity Access could allow a remote attacker to
conduct ph ...)
+ TODO: check
+CVE-2026-13276 (IBM Verify Identity Access 11.0.0 through 11.0.3 Interim Fix
001 and I ...)
+ TODO: check
+CVE-2026-13275 (IBM MQ 9.1.0.0 through 9.1.0.37 LTS, 9.2.0.0 through 9.2.0.43
LTS, 9.3 ...)
+ TODO: check
+CVE-2026-13272 (IBM Verify Identity Access is missing origin validation which
could al ...)
+ TODO: check
+CVE-2026-13265 (IBM MQ 9.1.0.0 through 9.1.0.37 LTS, 9.2.0.0 through 9.2.0.43
LTS, 9.3 ...)
+ TODO: check
+CVE-2026-13260 (IBM Verify Identity Access could allow a remote attacker to
cause a de ...)
+ TODO: check
+CVE-2026-13107 (IBM Business Automation Workflow containers and traditional
may use pr ...)
+ TODO: check
+CVE-2026-12944 (IBM Langflow OSS 1.0.0 through 1.10.0 can allow attackers to
execute a ...)
+ TODO: check
+CVE-2026-12767 (IBM Langflow OSS 1.0.0 through 1.11.5 is vulnerable to
server-side req ...)
+ TODO: check
+CVE-2026-12766 (IBM Langflow OSS 1.0.0 through 1.11.2 is vulnerable to
server-side req ...)
+ TODO: check
+CVE-2026-12765 (IBM Langflow OSS 1.0.0 through 1.10.2 is vulnerable to
server-side req ...)
+ TODO: check
+CVE-2026-12763 (IBM Langflow OSS 1.0.0 through 1.11.5 could allow an
authenticated att ...)
+ TODO: check
+CVE-2026-12759 (IBM Cloud Pak for Business Automation could allow an
authenticated use ...)
+ TODO: check
+CVE-2026-12758 (IBM Cloud Pak for Business Automation could allow a remote
attacker to ...)
+ TODO: check
+CVE-2026-12756 (IBM Business Automation Workflow containers and traditional is
vulnera ...)
+ TODO: check
+CVE-2026-82049 (In CPython 3.13 and earlier, the tarfilemodule's dataand tar
extractio ...)
- python3.15 <unfixed>
- python3.14 <unfixed>
- python3.13 <unfixed>
@@ -575,7 +1439,7 @@ CVE-2025-24890 (gitoxide is an implementation of git
written in Rust. Prior to 0
TODO: check
CVE-2024-58383 (Froxlor before 2.2.0 (affected up to and including 2.2.0-rc3)
generate ...)
TODO: check
-CVE-2026-19624
+CVE-2026-19624 (A flaw was found in NetworkManager-l2tp. The plugin writes
attacker-co ...)
{DSA-6498-1}
- network-manager-l2tp 1.52.6-1
NOTE: Fixed by:
https://github.com/nm-l2tp/NetworkManager-l2tp/commit/3704d8c9d5e5f9ed1626a8ce7627a04247cea673
(1.52.6, 1.20.26)
@@ -3223,12 +4087,12 @@ CVE-2026-77159 (A symlink-following flaw was found in
libvirt's qemuTPMEmulatorP
[trixie] - libvirt <no-dsa> (Minor issue)
NOTE: https://gitlab.com/libvirt/libvirt/-/work_items/909
NOTE: Fixed by:
https://gitlab.com/libvirt/libvirt/-/commit/68e03ee02ff4826827f23d67d6b9eae49d7b9fb1
(v12.7.0-rc1)
-CVE-2026-72710 (SPIP before 4.4.18 contains a remote code execution
vulnerability in t ...)
+CVE-2026-72710 (SPIP before 4.4.18 contains a mass assignment vulnerability in
the edi ...)
- spip 4.4.18+dfsg-1
[trixie] - spip 4.4.19+dfsg-0+deb13u1
NOTE: https://blog.lexfo.fr/casse-spip-sqli-to-rce.html
NOTE:
https://blog.spip.net/Mise-a-jour-critique-de-securite-sortie-de-SPIP-4-4-18.html
-CVE-2026-72709 (SPIP before 4.4.18 contains a missing authorization
vulnerability in t ...)
+CVE-2026-72709 (SPIP before version 4.4.18 contains a missing authorization
vulnerabil ...)
- spip 4.4.18+dfsg-1
[trixie] - spip 4.4.19+dfsg-0+deb13u1
NOTE: https://blog.lexfo.fr/casse-spip-sqli-to-rce.html
@@ -4472,7 +5336,7 @@ CVE-2026-XXXX [GHSA-5qpq-xqfv-j9pg: Invalid write if a
decoder is reinitialized
- xz-utils 5.8.4-1 (bug #1147318)
NOTE: https://tukaani.org/xz/invalid-write-after-reinit.html
NOTE:
https://github.com/tukaani-project/xz/security/advisories/GHSA-5qpq-xqfv-j9pg
-CVE-2026-19816
+CVE-2026-19816 (A flaw was found in PackageKit. PackageKit skips the polkit
authorizat ...)
- packagekit 1.4.0-1
[trixie] - packagekit <no-dsa> (Minor issue)
NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2515940
@@ -24064,7 +24928,8 @@ CVE-2026-63311 (NLTK before 3.10.0 (affected versions
<= 3.9.4) contains a serve
- nltk 3.10.0-1
[trixie] - nltk <no-dsa> (Minor issue)
NOTE:
https://github.com/nltk/nltk/security/advisories/GHSA-3gqm-fcw5-w839
-CVE-2026-63310 (NLTK before 3.9.3 fails to verify file integrity after
downloading pac ...)
+CVE-2026-63310
+ REJECTED
- nltk 3.9.3-1
[trixie] - nltk <no-dsa> (Minor issue)
NOTE:
https://github.com/nltk/nltk/security/advisories/GHSA-5wp5-5229-5g6q
@@ -63926,7 +64791,7 @@ CVE-2026-63771 (Adminer before 5.4.3 contains a cookie
injection vulnerability t
NOTE:
https://github.com/vrana/adminer/security/advisories/GHSA-c533-9qwm-8w5h
CVE-2026-63770 (Glance through 0.8.5 contains an IP address spoofing
vulnerability in ...)
NOT-FOR-US: Glance (not same as src:glance)
-CVE-2026-63769 (Huginn through 2022.08.18 contains a server-side request
forgery vulne ...)
+CVE-2026-63769 (Huginn before 2026.09.09 contains a server-side request
forgery vulner ...)
NOT-FOR-US: Huginn
CVE-2026-63768 (cal.diy through 6.2.0 contains an open redirect vulnerability
in the c ...)
NOT-FOR-US: cal.diy
@@ -67161,6 +68026,7 @@ CVE-2026-53368 (In the Linux kernel, the following
vulnerability has been resolv
- linux 7.0.7-1
NOTE:
https://git.kernel.org/linus/019f9dda7f66e55eb94cd32e1d3fff5835f73fbc (7.1-rc1)
CVE-2026-9323 (The urwid web display backend (urwid/display/web.py) generates
web ses ...)
+ {DLA-4780-1}
- urwid <unfixed> (bug #1147615)
[trixie] - urwid <no-dsa> (Minor issue)
NOTE:
https://github.com/urwid/urwid/security/advisories/GHSA-rjwp-g85x-gmjv
@@ -225425,7 +226291,7 @@ CVE-2025-10200 (Use after free in Serviceworker in
Google Chrome on Desktop prio
{DSA-5996-1}
- chromium 140.0.7339.127-1
[bullseye] - chromium <end-of-life> (see #1061268)
-CVE-2025-9086 (1. A cookie is set using the `secure` keyword for
`https://target` 2 ...)
+CVE-2025-9086 (1. A cookie is set using the `secure` keyword for
`https://target` 2. ...)
- curl 8.16.0~rc2-1
[trixie] - curl 8.14.1-2+deb13u1
[bookworm] - curl <not-affected> (Vulnerable code introduced later)
@@ -225433,7 +226299,7 @@ CVE-2025-9086 (1. A cookie is set using the `secure`
keyword for `https://target
NOTE: https://curl.se/docs/CVE-2025-9086.html
NOTE: Introduced with:
https://github.com/curl/curl/commit/1aea05a6c2699e80c75936d58569851555acd603
(curl-8_13_0)
NOTE: Fixed by:
https://github.com/curl/curl/commit/c6ae07c6a541e0e96d0040afb62b45dd37711300
(rc-8_16_0-1, curl-8_16_0)
-CVE-2025-10148 (curl's websocket code did not update the 32 bit mask pattern
for each ...)
+CVE-2025-10148 (curl's WebSocket code did not update the 32-bit mask pattern
for each ...)
- curl 8.16.0-1
[trixie] - curl 8.14.1-2+deb13u1
[bookworm] - curl 7.88.1-10+deb12u15
@@ -237030,9 +237896,9 @@ CVE-2025-8541 (A vulnerability was found in
Portabilis i-Educar 2.10. It has bee
NOT-FOR-US: Portabilis
CVE-2025-8540 (A vulnerability was found in Portabilis i-Educar 2.10. It has
been cla ...)
NOT-FOR-US: Portabilis
-CVE-2025-8539 (A vulnerability was found in Portabilis i-Educar 2.10 and
classified a ...)
+CVE-2025-8539 (A weakness has been identified in Portabilis i-Educar 2.10.
This affec ...)
NOT-FOR-US: Portabilis
-CVE-2025-8538 (A vulnerability has been found in Portabilis i-Educar 2.10 and
classif ...)
+CVE-2025-8538 (A security flaw has been discovered in Portabilis i-Educar
2.10. The i ...)
NOT-FOR-US: Portabilis
CVE-2025-8537 (A vulnerability, which was classified as problematic, was found
in Axi ...)
NOT-FOR-US: Bento4
@@ -422571,7 +423437,7 @@ CVE-2023-5580 (A vulnerability classified as critical
has been found in SourceCo
NOT-FOR-US: SourceCodester
CVE-2023-5579 (A vulnerability was found in yhz66 Sandbox 6.1.0. It has been
rated as ...)
NOT-FOR-US: yhz66 Sandbox
-CVE-2023-5578 (A vulnerability was found in Port\xe1bilis i-Educar up to
2.7.5. It ha ...)
+CVE-2023-5578 (A vulnerability was detected in Port\xe1bilis i-Educar up to
2.7.5. Af ...)
NOT-FOR-US: i-Educar
CVE-2023-45176 (IBM App Connect Enterprise 11.0.0.1 through 11.0.0.23,
12.0.1.0 throug ...)
NOT-FOR-US: IBM
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9a779476f07c3f6be9e12f51ac465150eaef9a6c
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9a779476f07c3f6be9e12f51ac465150eaef9a6c
You're receiving this email because of your account on salsa.debian.org. Manage
all notifications: https://salsa.debian.org/-/profile/notifications | Help:
https://salsa.debian.org/help
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits