This is an automated email from the ASF dual-hosted git repository.
jbonofre pushed a commit to branch trunk
in repository https://gitbox.apache.org/repos/asf/karaf-site.git
The following commit(s) were added to refs/heads/trunk by this push:
new 71c7351 Add note about CVE-2026-91006
71c7351 is described below
commit 71c735113b6b82d399ee6ebef40c99f9e36aa24e
Author: JB Onofré <[email protected]>
AuthorDate: Mon Sep 28 11:40:42 2026 +0200
Add note about CVE-2026-91006
---
documentation.html | 15 +++++++++++----
1 file changed, 11 insertions(+), 4 deletions(-)
diff --git a/documentation.html b/documentation.html
index 1954171..0aed746 100644
--- a/documentation.html
+++ b/documentation.html
@@ -217,15 +217,22 @@ permalink: /documentation
<div class="k-admonition">
<div class="k-admonition-icon"><i class="fas fa-shield-halved"></i></div>
<div>
- <p>CVE-2026-92230: Apache Karaf: Improper release of ClassLoader
references via static ThreadLocal caching</p>
- <a class="btn btn-outline-primary btn-sm"
href="/security/cve-2026-92230.txt">Notes »</a>
+ <p>CVE-2026-90979: Apache Karaf: LDAP filter injection in JAAS LDAP
login modules</p>
+ <a class="btn btn-outline-primary btn-sm"
href="/security/cve-2026-90979.txt">Notes »</a>
</div>
</div>
<div class="k-admonition">
<div class="k-admonition-icon"><i class="fas fa-shield-halved"></i></div>
<div>
- <p>CVE-2026-90979: Apache Karaf: LDAP filter injection in JAAS LDAP
login modules</p>
- <a class="btn btn-outline-primary btn-sm"
href="/security/cve-2026-90979.txt">Notes »</a>
+ <p>CVE-2026-91006: Apache Karaf: OS Command Injection in Child-Instance
Launch (instance:* / InstancesMBean) </p>
+ <a class="btn btn-outline-primary btn-sm"
href="/security/cve-2026-91006.txt">Notes »</a>
+ </div>
+ </div>
+ <div class="k-admonition">
+ <div class="k-admonition-icon"><i class="fas fa-shield-halved"></i></div>
+ <div>
+ <p>CVE-2026-92230: Apache Karaf: Improper release of ClassLoader
references via static ThreadLocal caching</p>
+ <a class="btn btn-outline-primary btn-sm"
href="/security/cve-2026-92230.txt">Notes »</a>
</div>
</div>