> Is GitHub going to assign a CVE here? I think GitHub assignment would > be ok per this part of the GitHub CNA scope definition: > "vulnerabilities affecting open source projects discovered by security > researchers at GitHub or Microsoft not covered by another CNA’s scope." > > If GitHub is not doing assignment, Red Hat can provide it instead.
If Red Hat could provide the CVE in line with the previous finding of this report batch (CVE-2026-79992) that would be greatly appreciated. Thanks, Bas
