Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
93d22e6e by Salvatore Bonaccorso at 2026-02-20T09:30:38+01:00
Add Debian bug reference for CVE-2026-27206/php-zumba-json-serializer
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -728,7 +728,7 @@ CVE-2026-XXXX [RUSTSEC-2026-0013]
- rust-pyo3 <unfixed>
NOTE: https://rustsec.org/advisories/RUSTSEC-2026-0013.html
CVE-2026-27206 [Potential PHP Object Injection via Unrestricted @type in
unserialize()]
- - php-zumba-json-serializer <unfixed>
+ - php-zumba-json-serializer <unfixed> (bug #1128481)
NOTE:
https://github.com/zumba/json-serializer/security/advisories/GHSA-v7m3-fpcr-h7m2
NOTE: Fixed by:
https://github.com/zumba/json-serializer/commit/bf26227879adefce75eb9651040d8982be97b881
(3.2.3)
CVE-2026-2733 (A flaw was identified in the Docker v2 authentication endpoint
of Keyc ...)
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/93d22e6eb41c586bcdf2676ca3d815158d5e2a14
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/93d22e6eb41c586bcdf2676ca3d815158d5e2a14
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits