Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits: c3de1d3b by Salvatore Bonaccorso at 2024-02-09T21:57:34+01:00 Add upstream tag information for CVE-2024-24762 - - - - - 1 changed file: - data/CVE/list Changes: ===================================== data/CVE/list ===================================== @@ -1023,7 +1023,7 @@ CVE-2024-24762 (FastAPI is a web framework for building APIs with Python 3.8+ ba - python-multipart <unfixed> (bug #1063538) NOTE: Original report at fastapi: https://github.com/tiangolo/fastapi/security/advisories/GHSA-qf9m-vfgh-m389 NOTE: But the fix is within python-multipart: - NOTE: https://github.com/Kludex/python-multipart/commit/20f0ef6b4e4caf7d69a667c54dff57fe467109a4 + NOTE: https://github.com/Kludex/python-multipart/commit/20f0ef6b4e4caf7d69a667c54dff57fe467109a4 (0.0.7) NOTE: https://github.com/Kludex/python-multipart/pull/75 CVE-2024-24469 (Cross Site Request Forgery vulnerability in flusity-CMS v.2.33 allows ...) NOT-FOR-US: flusity-CMS View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c3de1d3ba026d15d73591107b4267ac030c67db6 -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c3de1d3ba026d15d73591107b4267ac030c67db6 You're receiving this email because of your account on salsa.debian.org.
_______________________________________________ debian-security-tracker-commits mailing list debian-security-tracker-commits@alioth-lists.debian.net https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits