Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
d0bc768f by Salvatore Bonaccorso at 2026-08-14T08:18:23+02:00
Add CVE-2026-73569/node-webfont
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -224,7 +224,10 @@ CVE-2026-73571 (An authorization bypass vulnerability
exists in Zimbra Collabora
CVE-2026-73570 (A remote code execution vulnerability exists in Zimbra
Collaboration ( ...)
NOT-FOR-US: Zimbra
CVE-2026-73569 (fast-xml-parser allows users to process XML from JS object
without C/C ...)
- TODO: check
+ - node-webfont <undetermined>
+ NOTE:
https://github.com/NaturalIntelligence/fast-xml-parser/security/advisories/GHSA-8r6m-32jq-jx6q
+ NOTE:
https://github.com/NaturalIntelligence/fast-xml-parser/commit/4e546e03987662de5495d050b5fba26bea65383f
(v5.10.1)
+ NOTE: node-webfont provides node-fast-xml-parser
CVE-2026-73568 (py-libp2p is the Python implementation of the libp2p
networking stack. ...)
TODO: check
CVE-2026-73567 (sm-crypto provides JavaScript implementations of the Chinese
cryptogra ...)
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d0bc768fa82899e0544d34cd2995677481524c9b
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d0bc768fa82899e0544d34cd2995677481524c9b
You're receiving this email because of your account on salsa.debian.org. Manage
all notifications: https://salsa.debian.org/-/profile/notifications | Help:
https://salsa.debian.org/help
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits