notbugAs an Amazon Associate I earn from qualifying purchases.
Want a good read? Try FreeBSD Mastery: Jails (IT Mastery Book 15)
Want a good monitor light? See my photosAll times are UTC
Ukraine
I started running short on disk space for the non-production FreshPorts hosts. This time, I have decided to ask for donations. See my recent blog post which points to my Patreon account.
Port details
vuxml Vulnerability and eXposure Markup Language DTD
1.1_6 security on this many watch lists=33 search for ports that depend on this port Find issues related to this port Report an issue related to this port View this port on Repology. pkg-fallout 1.1_6Version of this port present on the latest quarterly branch.
Maintainer: ports-secteam@FreeBSD.org search for ports maintained by this maintainer
Port Added: 2004-02-12 14:24:23
Last Update: 2025-08-29 03:22:52
Commit Hash: 17a37be
People watching this port, also watch:: gnupg, libxml2, nmap, postfix, curl
Also Listed In: textproc
License: BSD2CLAUSE
WWW:
https://vuxml.freebsd.org/
Description:
VuXML (the Vulnerability and eXposure Markup Language) is an XML application for documenting security bugs and corrections within a software package collection such as the FreeBSD Ports Collection. This port installs the DTDs required for validating VuXML documents.
Homepage    cgit ¦ Codeberg ¦ GitHub ¦ GitLab ¦ SVNWeb

Manual pages:
FreshPorts has no man page information for this port.
pkg-plist: as obtained via: make generate-plist
Expand this list (13 items)
Collapse this list.
  1. /usr/local/share/licenses/vuxml-1.1_6/catalog.mk
  2. /usr/local/share/licenses/vuxml-1.1_6/LICENSE
  3. /usr/local/share/licenses/vuxml-1.1_6/BSD2CLAUSE
  4. @xmlcatmgr share/xml/dtd/vuxml/catalog
  5. @xmlcatmgr share/xml/dtd/vuxml/catalog.xml
  6. share/xml/dtd/vuxml/vuxml-10.dtd
  7. share/xml/dtd/vuxml/vuxml-11.dtd
  8. share/xml/dtd/vuxml/vuxml-model-10.mod
  9. share/xml/dtd/vuxml/vuxml-model-11.mod
  10. share/xml/dtd/vuxml/xml1.dcl
  11. @owner
  12. @group
  13. @mode
Collapse this list.
Dependency lines:
  • vuxml>0:security/vuxml
To install the port:
cd /usr/ports/security/vuxml/ && make install clean
To add the package, run one of these commands:
  • pkg install security/vuxml
  • pkg install vuxml
NOTE: If this package has multiple flavors (see below), then use one of them instead of the name specified above.
PKGNAME: vuxml
Flavors: there is no flavor information for this port.
distinfo:
SHA256 (vuxml/vuxml-10.dtd) = 6a635ad2cf45f52361c8c2a29a689157fad4d00519045485bc822d34e04a524e SIZE (vuxml/vuxml-10.dtd) = 2986 SHA256 (vuxml/vuxml-model-10.mod) = 051fed00b52bedde8ee901003fc29f7b95cd904157e31ceef34e6b06f2d1a14a

Expand this list (11 items)

Collapse this list.

SIZE (vuxml/vuxml-model-10.mod) = 10599 SHA256 (vuxml/vuxml-11.dtd) = 12b50061d7bb34cecffede2e08d439e4469324376d55aeb7c73eb6aab0f36af1 SIZE (vuxml/vuxml-11.dtd) = 3063 SHA256 (vuxml/vuxml-model-11.mod) = a40777208625a3029c6f416aeeea733f614802a6a5f26035a4e445a09e61a47c SIZE (vuxml/vuxml-model-11.mod) = 13282 SHA256 (vuxml/xml1.dcl) = 343efa94c4e1302e85e08b2d1791d86e50aac1ecdbc3161daecac100e4726847 SIZE (vuxml/xml1.dcl) = 7372 SHA256 (vuxml/catalog) = 479a69cf02995603443fd1f3b5b33f97811670931f87f53be99a727d664abc66 SIZE (vuxml/catalog) = 549 SHA256 (vuxml/catalog.xml) = 7b2e2850f57264eeba0ccd3d1fc161b9d5ce3071ae0ec51b9da7fa956f2a6509 SIZE (vuxml/catalog.xml) = 2150

Collapse this list.


Packages (timestamps in pop-ups are UTC):
vuxml
ABIaarch64amd64armv6armv7i386powerpcpowerpc64powerpc64le
FreeBSD:13:latest1.1_61.1_61.1_51.1_61.1_6-1.1_5-
FreeBSD:13:quarterly1.1_61.1_61.1_61.1_61.1_61.1_61.1_61.1_6
FreeBSD:14:latest1.1_61.1_61.1_61.1_61.1_61.1_6-1.1_6
FreeBSD:14:quarterly1.1_61.1_6-1.1_61.1_61.1_61.1_61.1_6
FreeBSD:15:latest--n/a1.1_6n/a1.1_61.1_61.1_6
Dependencies
NOTE: FreshPorts displays only information on required and default dependencies. Optional dependencies are not covered.
Runtime dependencies:
  1. xmlcatmgr : textproc/xmlcatmgr
  2. xsltproc : textproc/libxslt
  3. VERSION : textproc/xhtml-modularization
  4. xhtml-basic10.dtd : textproc/xhtml-basic
  5. python3.11 : lang/python311
There are no ports dependent upon this port

Configuration Options:
No options to configure
Options name:
security_vuxml
USES:
python:run
FreshPorts was unable to extract/find any pkg message
Master Sites:
Expand this list (1 items)
Collapse this list.
  1. http://www.vuxml.org/dtd/vuxml-1/
Collapse this list.

Number of commits found: 7721 (showing only 100 on this page)

1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | 11  »  [Last Page]

Commit History - (may be incomplete: for full details, see links to repositories near top of page)
CommitCreditsLog message
1.1_6
29 Aug 2025 03:22:52
commit hash: 17a37be97c1032688c120ee3eed8d4607c880430commit hash: 17a37be97c1032688c120ee3eed8d4607c880430commit hash: 17a37be97c1032688c120ee3eed8d4607c880430commit hash: 17a37be97c1032688c120ee3eed8d4607c880430 files touched by this commit
Matthias Fechner (mfechner) search for other commits by this committer
security/vuxml: document gitlab vulnerabilities
1.1_6
28 Aug 2025 19:42:05
commit hash: 64e60d652c0e684a9a94b47950d05122f9af511fcommit hash: 64e60d652c0e684a9a94b47950d05122f9af511fcommit hash: 64e60d652c0e684a9a94b47950d05122f9af511fcommit hash: 64e60d652c0e684a9a94b47950d05122f9af511f files touched by this commit
Renato Botelho (garga) search for other commits by this committer
security/vuxml: Adjust affected kea versions

CVE-2025-40779 doesn't affect Kea 2.6.x, which is the version present on
quarterly branch.  On net/kea, it only affects 3.0.0 while it affects
3.1.0 and 2.7.x on net/kea-devel.
1.1_6
28 Aug 2025 19:32:40
commit hash: f094f8425566fffceee0f25f0161ce83301023e9commit hash: f094f8425566fffceee0f25f0161ce83301023e9commit hash: f094f8425566fffceee0f25f0161ce83301023e9commit hash: f094f8425566fffceee0f25f0161ce83301023e9 files touched by this commit
Renato Botelho (garga) search for other commits by this committer
Author: Andrey Pevnev
security/vuxml: Add net/kea vulnerability

* CVE-2025-40779
1.1_6
28 Aug 2025 05:06:27
commit hash: e544b072152b2178db0ea8fb055af06a8e0cc67ecommit hash: e544b072152b2178db0ea8fb055af06a8e0cc67ecommit hash: e544b072152b2178db0ea8fb055af06a8e0cc67ecommit hash: e544b072152b2178db0ea8fb055af06a8e0cc67e files touched by this commit
Jason E. Hale (jhale) search for other commits by this committer
security/vuxml: Add devel/qt6-base < 6.9.2
1.1_6
28 Aug 2025 05:06:26
commit hash: b663d42d1cdafb02f43bef6b40754ad7e038f473commit hash: b663d42d1cdafb02f43bef6b40754ad7e038f473commit hash: b663d42d1cdafb02f43bef6b40754ad7e038f473commit hash: b663d42d1cdafb02f43bef6b40754ad7e038f473 files touched by this commit
Jason E. Hale (jhale) search for other commits by this committer
security/vuxml: Add www/qt6-webengine < 6.9.2
1.1_6
27 Aug 2025 17:02:53
commit hash: 64861d1b7e3dd9f8f77c0cf32eb1ed4f8c701239commit hash: 64861d1b7e3dd9f8f77c0cf32eb1ed4f8c701239commit hash: 64861d1b7e3dd9f8f77c0cf32eb1ed4f8c701239commit hash: 64861d1b7e3dd9f8f77c0cf32eb1ed4f8c701239 files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Fix entry

Fixes:	35f7214f7a9ec
1.1_6
27 Aug 2025 17:00:06
commit hash: 0b5abbbf089bddb2e0e75c2eb8235a565d85dfcdcommit hash: 0b5abbbf089bddb2e0e75c2eb8235a565d85dfcdcommit hash: 0b5abbbf089bddb2e0e75c2eb8235a565d85dfcdcommit hash: 0b5abbbf089bddb2e0e75c2eb8235a565d85dfcd files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Add SQLite vulnerability

 * CVE-2025-29088
1.1_6
24 Aug 2025 11:42:50
commit hash: 35f7214f7a9ec55b15024145c227dcb86b55be71commit hash: 35f7214f7a9ec55b15024145c227dcb86b55be71commit hash: 35f7214f7a9ec55b15024145c227dcb86b55be71commit hash: 35f7214f7a9ec55b15024145c227dcb86b55be71 files touched by this commit
Rodrigo Osorio (rodrigo) search for other commits by this committer
security/vuxml: add p5-Catalyst-Authentication-Credential-HTTP
1.1_6
22 Aug 2025 15:28:41
commit hash: e7f3ac4786b8939aaf3d8324efb8338738bfae5ecommit hash: e7f3ac4786b8939aaf3d8324efb8338738bfae5ecommit hash: e7f3ac4786b8939aaf3d8324efb8338738bfae5ecommit hash: e7f3ac4786b8939aaf3d8324efb8338738bfae5e files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Add Mozilla vulnerabilities

 * CVE-2025-9187
 * CVE-2025-9184
 * CVE-2025-9185
 * CVE-2025-9183
 * CVE-2025-9182
 * CVE-2025-9181
 * CVE-2025-9180
 * CVE-2025-9179
1.1_6
15 Aug 2025 16:10:38
commit hash: 7a7f34e4d6aa705e423c8a1f0c6aee526cab32bdcommit hash: 7a7f34e4d6aa705e423c8a1f0c6aee526cab32bdcommit hash: 7a7f34e4d6aa705e423c8a1f0c6aee526cab32bdcommit hash: 7a7f34e4d6aa705e423c8a1f0c6aee526cab32bd files touched by this commit
Sergey A. Osokin (osa) search for other commits by this committer
security/vuxml: add www/nginx-devel < 1.29.1

Obtained from:	https://my.f5.com/manage/s/article/K000152786
1.1_6
14 Aug 2025 19:16:40
commit hash: 8bc173ea40edf74c15189f754b9cd94bb34e090ecommit hash: 8bc173ea40edf74c15189f754b9cd94bb34e090ecommit hash: 8bc173ea40edf74c15189f754b9cd94bb34e090ecommit hash: 8bc173ea40edf74c15189f754b9cd94bb34e090e files touched by this commit
Robert Nagy (rnagy) search for other commits by this committer
security/vuxml: add www/*chromium < 139.0.7258.127

Obtained
from:	https://chromereleases.googleblog.com/2025/08/stable-channel-update-for-desktop_12.html
1.1_6
14 Aug 2025 14:10:16
commit hash: bd39e99be4b9ed34cc30d5d75e5e3828d868f9edcommit hash: bd39e99be4b9ed34cc30d5d75e5e3828d868f9edcommit hash: bd39e99be4b9ed34cc30d5d75e5e3828d868f9edcommit hash: bd39e99be4b9ed34cc30d5d75e5e3828d868f9ed files touched by this commit
Palle Girgensohn (girgen) search for other commits by this committer
security/vuxml: Add vulnerabilities for PostgreSQL
1.1_6
14 Aug 2025 03:41:47
commit hash: ac49b013aa44fbaac4909a5831509a81d2e9201dcommit hash: ac49b013aa44fbaac4909a5831509a81d2e9201dcommit hash: ac49b013aa44fbaac4909a5831509a81d2e9201dcommit hash: ac49b013aa44fbaac4909a5831509a81d2e9201d files touched by this commit
Matthias Fechner (mfechner) search for other commits by this committer
security/vuxml: document gitlab vulnerabilities
1.1_6
13 Aug 2025 15:41:08
commit hash: 56b1f15f02ec64f28452a92319fbbd6c9005d2f2commit hash: 56b1f15f02ec64f28452a92319fbbd6c9005d2f2commit hash: 56b1f15f02ec64f28452a92319fbbd6c9005d2f2commit hash: 56b1f15f02ec64f28452a92319fbbd6c9005d2f2 files touched by this commit
Ryan Steinmetz (zi) search for other commits by this committer
security/vuxml: Document www/varnish7 DoS condition
1.1_6
13 Aug 2025 09:19:28
commit hash: 0f0638d4ab0bdc81a39a423f27f62fa3386e45b7commit hash: 0f0638d4ab0bdc81a39a423f27f62fa3386e45b7commit hash: 0f0638d4ab0bdc81a39a423f27f62fa3386e45b7commit hash: 0f0638d4ab0bdc81a39a423f27f62fa3386e45b7 files touched by this commit
Rodrigo Osorio (rodrigo) search for other commits by this committer
security/vuxml: add security/p5-Authen-SASL
1.1_6
11 Aug 2025 08:10:50
commit hash: 0aa8752f4444c824b2d6aa0487d447fc261a808fcommit hash: 0aa8752f4444c824b2d6aa0487d447fc261a808fcommit hash: 0aa8752f4444c824b2d6aa0487d447fc261a808fcommit hash: 0aa8752f4444c824b2d6aa0487d447fc261a808f files touched by this commit
Robert Nagy (rnagy) search for other commits by this committer
security/vuxml: add www/*chromium < 139.0.7258.66

Obtained
from:	https://chromereleases.googleblog.com/2025/08/stable-channel-update-for-desktop.html
1.1_6
09 Aug 2025 14:19:07
commit hash: 33ef74eef2f054069750ccb4a7ace19f54204476commit hash: 33ef74eef2f054069750ccb4a7ace19f54204476commit hash: 33ef74eef2f054069750ccb4a7ace19f54204476commit hash: 33ef74eef2f054069750ccb4a7ace19f54204476 files touched by this commit
Bernard Spil (brnrd) search for other commits by this committer
security/vuxml: Document Apache httpd vulnerability
1.1_6
08 Aug 2025 01:20:58
commit hash: ab46eb7f8e69c5beceec377aaa86bdf3f77f1d36commit hash: ab46eb7f8e69c5beceec377aaa86bdf3f77f1d36commit hash: ab46eb7f8e69c5beceec377aaa86bdf3f77f1d36commit hash: ab46eb7f8e69c5beceec377aaa86bdf3f77f1d36 files touched by this commit
Philip Paeps (philip) search for other commits by this committer
security/vuxml: add FreeBSD SA issued on 2025-08-08

FreeBSD-SA-25:07.libarchive affects all supported versions of FreeBSD.
1.1_6
02 Aug 2025 16:57:24
commit hash: 1306e2c0edee451efe457fc147455716d018fc4ecommit hash: 1306e2c0edee451efe457fc147455716d018fc4ecommit hash: 1306e2c0edee451efe457fc147455716d018fc4ecommit hash: 1306e2c0edee451efe457fc147455716d018fc4e files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Add Sqlite vulnerability

 * CVE-2025-3277
1.1_6
01 Aug 2025 09:51:05
commit hash: a2e68a806322513ec3cdc2b5e1089dc19ce7e02ecommit hash: a2e68a806322513ec3cdc2b5e1089dc19ce7e02ecommit hash: a2e68a806322513ec3cdc2b5e1089dc19ce7e02ecommit hash: a2e68a806322513ec3cdc2b5e1089dc19ce7e02e files touched by this commit
Matthias Andree (mandree) search for other commits by this committer
security/vuxml: navidrome < 0.56.0 CVE-2025-48948

This wasn't mentioned along with the other navidrome < 0.56
vuln and also has a wider affected version range.

Security:	CVE-2025-48948
Security:	95480188-6ebc-11f0-8a78-bf201f293bce
1.1_6
01 Aug 2025 09:45:34
commit hash: 1ba883ceae271337ab4532efc4e2fb6096f5d628commit hash: 1ba883ceae271337ab4532efc4e2fb6096f5d628commit hash: 1ba883ceae271337ab4532efc4e2fb6096f5d628commit hash: 1ba883ceae271337ab4532efc4e2fb6096f5d628 files touched by this commit
Matthias Andree (mandree) search for other commits by this committer
security/vuxml: fixup linux_base -> linux_base-rl9
1.1_6
01 Aug 2025 09:41:36
commit hash: 7296fd2fe2b0415f31fe4b843f05b942ae8f9819commit hash: 7296fd2fe2b0415f31fe4b843f05b942ae8f9819commit hash: 7296fd2fe2b0415f31fe4b843f05b942ae8f9819commit hash: 7296fd2fe2b0415f31fe4b843f05b942ae8f9819 files touched by this commit
Matthias Andree (mandree) search for other commits by this committer
security/vuxml: clean up sqlite3 version range mess

Several sqlite3 entries mentioned wrong version ranges
with respect to PORTEPOCH and/or forgot the linux-*-sqlite
or, more recently, linux_base port.

While auditing this, I saw several implausible tags that used <gt>
(greater-than) in ranges where I believe that <ge> (greater-or-equal)
would be more adequate.

Add relevant reminders to vuxml's Makefile.

Fix up sqlite3's 2025 entries.

linux_base-rl9 currently ships 3.34.1-7.el9_3, see
emulators/linux_base-rl9/Makefile.version - I don't know if that's
vulnerable or was patched inside Rocky Linux, but let's err on the safe side.
I'll leave it up to emulation@ to clean up this particular entry.
1.1_6
01 Aug 2025 08:52:38
commit hash: 4dac70c7e8ff70ca177f019caaa99b1a1461c74acommit hash: 4dac70c7e8ff70ca177f019caaa99b1a1461c74acommit hash: 4dac70c7e8ff70ca177f019caaa99b1a1461c74acommit hash: 4dac70c7e8ff70ca177f019caaa99b1a1461c74a files touched by this commit
Matthias Andree (mandree) search for other commits by this committer
security/vuxml: fix up range for sqlite3's CVE-2025-7458

Security:	f51077bd-6dd7-11f0-9d62-b42e991fc52e
Security:	CVE-2025-7458
1.1_6
31 Jul 2025 06:40:27
commit hash: 041f9ec0e5ce8ba6c3107bcb53b707d33e7f8d1ecommit hash: 041f9ec0e5ce8ba6c3107bcb53b707d33e7f8d1ecommit hash: 041f9ec0e5ce8ba6c3107bcb53b707d33e7f8d1ecommit hash: 041f9ec0e5ce8ba6c3107bcb53b707d33e7f8d1e files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Add Sqlite vulnerability

CVE_ID=CVE-2025-7458
1.1_6
29 Jul 2025 20:22:43
commit hash: 9f5786f381e0c67bf6f026863f5971b3ebc11cbecommit hash: 9f5786f381e0c67bf6f026863f5971b3ebc11cbecommit hash: 9f5786f381e0c67bf6f026863f5971b3ebc11cbecommit hash: 9f5786f381e0c67bf6f026863f5971b3ebc11cbe files touched by this commit
Rodrigo Osorio (rodrigo) search for other commits by this committer
security/vuxml: Use of Cryptographically Weak Pseudo-Random Number Generator in
p5-Crypt-CBC

Also, fix typo missing space in previous report.
1.1_6
27 Jul 2025 12:31:03
commit hash: 4dc7640d9b8ef0d8fdf6661f8e56629c4f40d659commit hash: 4dc7640d9b8ef0d8fdf6661f8e56629c4f40d659commit hash: 4dc7640d9b8ef0d8fdf6661f8e56629c4f40d659commit hash: 4dc7640d9b8ef0d8fdf6661f8e56629c4f40d659 files touched by this commit
Dan Langille (dvl) search for other commits by this committer
security/vuxml: Add devel/viewvc-devel entry
1.1_6
25 Jul 2025 21:59:11
commit hash: 6488e4f3f8eeee8d84a5b869d93e54306b9304f6commit hash: 6488e4f3f8eeee8d84a5b869d93e54306b9304f6commit hash: 6488e4f3f8eeee8d84a5b869d93e54306b9304f6commit hash: 6488e4f3f8eeee8d84a5b869d93e54306b9304f6 files touched by this commit
Yasuhiro Kimura (yasu) search for other commits by this committer
security/vuxml: Document possible DoS valnerability in rubygem-resolv
1.1_6
24 Jul 2025 16:09:03
commit hash: 8b56cab1190826004df366df84e5f440b07b609bcommit hash: 8b56cab1190826004df366df84e5f440b07b609bcommit hash: 8b56cab1190826004df366df84e5f440b07b609bcommit hash: 8b56cab1190826004df366df84e5f440b07b609b files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Add Mozilla vulnerabilities

 * CVE-2025-8027
 * CVE-2025-8028
 * CVE-2025-8029
 * CVE-2025-8030
 * CVE-2025-8031
 * CVE-2025-8032
 * CVE-2025-8033
 * CVE-2025-8034
 * CVE-2025-8035
 * CVE-2025-8036
 * CVE-2025-8037
 * CVE-2025-8038
 * CVE-2025-8039
 * CVE-2025-8040
 * CVE-2025-8043
 * CVE-2025-8044
1.1_6
24 Jul 2025 16:04:14
commit hash: a3ec65f53174fa30c4e3827ef9dd5808f075bae4commit hash: a3ec65f53174fa30c4e3827ef9dd5808f075bae4commit hash: a3ec65f53174fa30c4e3827ef9dd5808f075bae4commit hash: a3ec65f53174fa30c4e3827ef9dd5808f075bae4 files touched by this commit
Sergey A. Osokin (osa) search for other commits by this committer
security/vuxml: document gdk-pixbuf2 vulnerability
1.1_6
24 Jul 2025 13:08:36
commit hash: ee336d30650bace075385d207fa8ce05e44ced2dcommit hash: ee336d30650bace075385d207fa8ce05e44ced2dcommit hash: ee336d30650bace075385d207fa8ce05e44ced2dcommit hash: ee336d30650bace075385d207fa8ce05e44ced2d files touched by this commit
Hiroki Tagato (tagattie) search for other commits by this committer
Author: Ralf van der Enden
security/vuxml: add dns/powerdns-recursor entry for CVE-2025-30192

PR:		288384
Reported by:	Ralf van der Enden <tremere@cainites.net>
Obtained from:	https://blog.powerdns.com/powerdns-security-advisory-2025-04
1.1_6
24 Jul 2025 03:27:52
commit hash: 33e4ed62ad939c7f92a029db0d1502518cc5635ccommit hash: 33e4ed62ad939c7f92a029db0d1502518cc5635ccommit hash: 33e4ed62ad939c7f92a029db0d1502518cc5635ccommit hash: 33e4ed62ad939c7f92a029db0d1502518cc5635c files touched by this commit
Matthias Fechner (mfechner) search for other commits by this committer
security/vuxml: document gitlab vulnerabilities
1.1_6
23 Jul 2025 19:29:20
commit hash: 723a9561ff7c93472186e1d9441358bf897209a9commit hash: 723a9561ff7c93472186e1d9441358bf897209a9commit hash: 723a9561ff7c93472186e1d9441358bf897209a9commit hash: 723a9561ff7c93472186e1d9441358bf897209a9 files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Add sqlite3 vulnerability

CVE-2025-6965
1.1_6
22 Jul 2025 18:33:02
commit hash: 9cbd5217b0266c260588a6a448670f005e9fba43commit hash: 9cbd5217b0266c260588a6a448670f005e9fba43commit hash: 9cbd5217b0266c260588a6a448670f005e9fba43commit hash: 9cbd5217b0266c260588a6a448670f005e9fba43 files touched by this commit
Max Brazhnikov (makc) search for other commits by this committer
security/vuxml: Document 7-zip vulnerability

Prompted by:	asomers@
1.1_6
21 Jul 2025 20:44:53
commit hash: 6599ca7e495f6121655ffdcd0ee70681f3d0d27ecommit hash: 6599ca7e495f6121655ffdcd0ee70681f3d0d27ecommit hash: 6599ca7e495f6121655ffdcd0ee70681f3d0d27ecommit hash: 6599ca7e495f6121655ffdcd0ee70681f3d0d27e files touched by this commit
Daniel Engberg (diizzy) search for other commits by this committer
security/vuxml: Adjust affected versions for openh264 (CVE-2025-27091)

Adjust range to since port uses PORTEPOCH

Fixes:		13dd451
1.1_6
20 Jul 2025 04:32:53
commit hash: b71de8a92cc443f09b53a9241eb82be2a7ec1957commit hash: b71de8a92cc443f09b53a9241eb82be2a7ec1957commit hash: b71de8a92cc443f09b53a9241eb82be2a7ec1957commit hash: b71de8a92cc443f09b53a9241eb82be2a7ec1957 files touched by this commit
Sergey A. Osokin (osa) search for other commits by this committer
security/vuxml: document libwasmtime vulnerability
1.1_6
18 Jul 2025 21:03:08
commit hash: 3fc96e7182a5eaa780e486c17b362f7c3d2b418ccommit hash: 3fc96e7182a5eaa780e486c17b362f7c3d2b418ccommit hash: 3fc96e7182a5eaa780e486c17b362f7c3d2b418ccommit hash: 3fc96e7182a5eaa780e486c17b362f7c3d2b418c files touched by this commit
Hiroki Tagato (tagattie) search for other commits by this committer
Author: Jaap Akkerhuis
security/vuxml: document unbound cache poisoning via the ECS-enabled rebirthday
attack

PR:		288276
Reported by:	Jaap Akkerhuis <jaap@NLnetLabs.nl>
1.1_6
16 Jul 2025 20:06:13
commit hash: 8cc2e449b7a6485a9bb1dbb30815e59c356f3816commit hash: 8cc2e449b7a6485a9bb1dbb30815e59c356f3816commit hash: 8cc2e449b7a6485a9bb1dbb30815e59c356f3816commit hash: 8cc2e449b7a6485a9bb1dbb30815e59c356f3816 files touched by this commit
Michael Osipov (michaelo) search for other commits by this committer
security/vuxml: Fix ranges for Tomcat vulnerabilities

Approved by:	otis (mentor), jbeich, vvd (maintainer)
Differential Revision:	https://reviews.freebsd.org/D51323
1.1_6
15 Jul 2025 18:37:23
commit hash: 3483eb36894aec0df199affa3096674d5d5f8263commit hash: 3483eb36894aec0df199affa3096674d5d5f8263commit hash: 3483eb36894aec0df199affa3096674d5d5f8263commit hash: 3483eb36894aec0df199affa3096674d5d5f8263 files touched by this commit
Matthias Andree (mandree) search for other commits by this committer
security/vuxml: libxml2 fixed version is 2.14.5.

Security:	abbc8912-5efa-11f0-ae84-99047d0a6bcc
1.1_6
14 Jul 2025 18:44:35
commit hash: 683501481217bba56b832ea358a87fae2567fadacommit hash: 683501481217bba56b832ea358a87fae2567fadacommit hash: 683501481217bba56b832ea358a87fae2567fadacommit hash: 683501481217bba56b832ea358a87fae2567fada files touched by this commit
Bernard Spil (brnrd) search for other commits by this committer
security/vuxml: Document liboqs vulnerability
1.1_6
14 Jul 2025 09:49:43
commit hash: 0fd8c0634733b737b980c7982a49ac0f96d3bd72commit hash: 0fd8c0634733b737b980c7982a49ac0f96d3bd72commit hash: 0fd8c0634733b737b980c7982a49ac0f96d3bd72commit hash: 0fd8c0634733b737b980c7982a49ac0f96d3bd72 files touched by this commit
Tijl Coosemans (tijl) search for other commits by this committer
security/vuxml: Document GnuTLS SA 2025-07-08
1.1_6
12 Jul 2025 09:40:26
commit hash: fa129ae393bdd8a9d388a7b8acf6150a4d75781fcommit hash: fa129ae393bdd8a9d388a7b8acf6150a4d75781fcommit hash: fa129ae393bdd8a9d388a7b8acf6150a4d75781fcommit hash: fa129ae393bdd8a9d388a7b8acf6150a4d75781f files touched by this commit
Matthias Andree (mandree) search for other commits by this committer
security/vuxml: extend libxml2/libxslt vuln to linux-* ports
1.1_6
12 Jul 2025 09:13:36
commit hash: dceb46fc8a6eea281dbafc46e6452a9d82550b09commit hash: dceb46fc8a6eea281dbafc46e6452a9d82550b09commit hash: dceb46fc8a6eea281dbafc46e6452a9d82550b09commit hash: dceb46fc8a6eea281dbafc46e6452a9d82550b09 files touched by this commit
Matthias Andree (mandree) search for other commits by this committer
textproc/libxml2, textproc/libxslt: vulnerable

Note that libxslt is vulnerable, unfixed, and without maintainer.
Two of four vulnerabilities have been fixed.

Note that libxml2 in our ports is vulnerable and there is no upstream
release fixing these bugs, they need cherry-picks.

Deprecate textproc/xmlto and textproc/minixmlto,
which both depend on the unmaintained and vulnerable libxslt.
I have filed https://pagure.io/xmlto/issue/15 to ask the xmlto
upstream to switch to different XML/XSLT libraries.

Two issues are undisclosed and do not seem to have a CVE assigned yet.
(Only the first 15 lines of the commit message are shown above View all of this commit message)
1.1_6
11 Jul 2025 21:35:16
commit hash: 88df7e7efe3519f4605933b9ca2a82d4021c1bc1commit hash: 88df7e7efe3519f4605933b9ca2a82d4021c1bc1commit hash: 88df7e7efe3519f4605933b9ca2a82d4021c1bc1commit hash: 88df7e7efe3519f4605933b9ca2a82d4021c1bc1 files touched by this commit
Bernard Spil (brnrd) search for other commits by this committer
security/vuxml: Document mod_http2 vulnerabilities
1.1_6
11 Jul 2025 21:15:09
commit hash: f29f9d6723b139e3d9dfc29e0db92da20cbb3417commit hash: f29f9d6723b139e3d9dfc29e0db92da20cbb3417commit hash: f29f9d6723b139e3d9dfc29e0db92da20cbb3417commit hash: f29f9d6723b139e3d9dfc29e0db92da20cbb3417 files touched by this commit
Bernard Spil (brnrd) search for other commits by this committer
security/vuxml: Document Apache httpd vulnerabilities
1.1_6
10 Jul 2025 21:24:29
commit hash: e021f7c2c5cb428f54e3590d8889ce6fec957163commit hash: e021f7c2c5cb428f54e3590d8889ce6fec957163commit hash: e021f7c2c5cb428f54e3590d8889ce6fec957163commit hash: e021f7c2c5cb428f54e3590d8889ce6fec957163 files touched by this commit
Sergey A. Osokin (osa) search for other commits by this committer
security/vuxml: document tomcat vulnerabilities
1.1_6
10 Jul 2025 04:28:58
commit hash: 15e5b4c7274ab4d022d661fe8414682f1ebb412ccommit hash: 15e5b4c7274ab4d022d661fe8414682f1ebb412ccommit hash: 15e5b4c7274ab4d022d661fe8414682f1ebb412ccommit hash: 15e5b4c7274ab4d022d661fe8414682f1ebb412c files touched by this commit
Matthias Fechner (mfechner) search for other commits by this committer
security/vuxml: document gitlab vulnerabilities
1.1_6
08 Jul 2025 17:19:09
commit hash: 1bd91518d50c9abade64445524c272d17f9aa43ccommit hash: 1bd91518d50c9abade64445524c272d17f9aa43ccommit hash: 1bd91518d50c9abade64445524c272d17f9aa43ccommit hash: 1bd91518d50c9abade64445524c272d17f9aa43c files touched by this commit
Renato Botelho (garga) search for other commits by this committer
security/vuxml: Add multiple git vulnerabilities

* CVE-2025-27613
* CVE-2025-27614
* CVE-2025-46835
* CVE-2025-48384
* CVE-2025-48385
* CVE-2025-48386

Sponsored by:	Rubicon Communications, LLC ("Netgate")
1.1_6
08 Jul 2025 16:10:55
commit hash: 22962d7e27390e11f507ca89c2d0b2f2fc63691bcommit hash: 22962d7e27390e11f507ca89c2d0b2f2fc63691bcommit hash: 22962d7e27390e11f507ca89c2d0b2f2fc63691bcommit hash: 22962d7e27390e11f507ca89c2d0b2f2fc63691b files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Fix mongodb entry

Remove mongodb80 entry since it is not affected.

Reported by:	ronald-lists@klop.ws
Fixes:		fbefcec73997
1.1_6
08 Jul 2025 15:46:14
commit hash: fbefcec73997ad82cd59a76a23ad3ee0d8f055e3commit hash: fbefcec73997ad82cd59a76a23ad3ee0d8f055e3commit hash: fbefcec73997ad82cd59a76a23ad3ee0d8f055e3commit hash: fbefcec73997ad82cd59a76a23ad3ee0d8f055e3 files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Add mongodb* vulnerabilities

 * CVE-2025-6711
 * CVE-2025-6712
 * CVE-2025-6713
 * CVE-2025-6714
 * CVE-2025-7259
1.1_6
08 Jul 2025 06:30:12
commit hash: 661a3ac7ab2c30437a9fc37c6443b27fce3d9184commit hash: 661a3ac7ab2c30437a9fc37c6443b27fce3d9184commit hash: 661a3ac7ab2c30437a9fc37c6443b27fce3d9184commit hash: 661a3ac7ab2c30437a9fc37c6443b27fce3d9184 files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Add ModSecurity vulnerability

 * CVE-2025-52891
1.1_6
07 Jul 2025 19:22:05
commit hash: c3574ad8eb341427cebbe54e55c4bb47aa88844ccommit hash: c3574ad8eb341427cebbe54e55c4bb47aa88844ccommit hash: c3574ad8eb341427cebbe54e55c4bb47aa88844ccommit hash: c3574ad8eb341427cebbe54e55c4bb47aa88844c files touched by this commit
Yasuhiro Kimura (yasu) search for other commits by this committer
security/vuxml: Document multiple vlunerabilities in redis and valky
1.1_6
06 Jul 2025 23:24:53
commit hash: cef2c7afb0d4f96043eae761b23d857ed78a1ed5commit hash: cef2c7afb0d4f96043eae761b23d857ed78a1ed5commit hash: cef2c7afb0d4f96043eae761b23d857ed78a1ed5commit hash: cef2c7afb0d4f96043eae761b23d857ed78a1ed5 files touched by this commit
Philip Paeps (philip) search for other commits by this committer
security/vuxml: add FreeBSD SA issued on 2025-07-02

FreeBSD-SA-25:06.xz affects FreeBSD 13.5 and FreeBSD 14.2
1.1_6
06 Jul 2025 08:47:37
commit hash: 992f07a2926520596010ea2bfd8f54cb7640575ecommit hash: 992f07a2926520596010ea2bfd8f54cb7640575ecommit hash: 992f07a2926520596010ea2bfd8f54cb7640575ecommit hash: 992f07a2926520596010ea2bfd8f54cb7640575e files touched by this commit
Jason E. Hale (jhale) search for other commits by this committer
security/vuxml: Document multimedia/gstreamer1-plugins-bad < 1.26.3
1.1_6
04 Jul 2025 12:24:40
commit hash: bd589649ee538403a4e4a5fb7f621b010f3f860bcommit hash: bd589649ee538403a4e4a5fb7f621b010f3f860bcommit hash: bd589649ee538403a4e4a5fb7f621b010f3f860bcommit hash: bd589649ee538403a4e4a5fb7f621b010f3f860b files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Add Mozilla vulnerabilities

 * CVE-2025-6425
 * CVE-2025-6427
 * CVE-2025-6429
 * CVE-2025-6430
 * CVE-2025-6432
 * CVE-2025-6433
 * CVE-2025-6434
 * CVE-2025-6435
 * CVE-2025-6436
1.1_6
03 Jul 2025 18:40:24
commit hash: 1436209d3f011973e709fd2aa5f480e7dacae936commit hash: 1436209d3f011973e709fd2aa5f480e7dacae936commit hash: 1436209d3f011973e709fd2aa5f480e7dacae936commit hash: 1436209d3f011973e709fd2aa5f480e7dacae936 files touched by this commit
Muhammad Moinur Rahman (bofh) search for other commits by this committer
security/vuxml: Add CVE for php8*
1.1_6
03 Jul 2025 17:13:35
commit hash: 54b6bc71d6237b3cd6c50e545af5d5b0e17a38b9commit hash: 54b6bc71d6237b3cd6c50e545af5d5b0e17a38b9commit hash: 54b6bc71d6237b3cd6c50e545af5d5b0e17a38b9commit hash: 54b6bc71d6237b3cd6c50e545af5d5b0e17a38b9 files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Add Mozilla vulnerability
1.1_6
02 Jul 2025 12:53:24
commit hash: 69acfe4b62a8806d8e978fd01e87835e19ccb387commit hash: 69acfe4b62a8806d8e978fd01e87835e19ccb387commit hash: 69acfe4b62a8806d8e978fd01e87835e19ccb387commit hash: 69acfe4b62a8806d8e978fd01e87835e19ccb387 files touched by this commit
Robert Nagy (rnagy) search for other commits by this committer
security/vuxml: add www/*chromium < 138.0.7204.96

Obtained
from:	https://chromereleases.googleblog.com/2025/06/stable-channel-update-for-desktop_30.html
Obtained
from:	https://chromereleases.googleblog.com/2025/06/stable-channel-update-for-desktop_24.html
1.1_6
01 Jul 2025 17:45:51
commit hash: 04e87de39e3c82255c25019cbba3c43d8a21362acommit hash: 04e87de39e3c82255c25019cbba3c43d8a21362acommit hash: 04e87de39e3c82255c25019cbba3c43d8a21362acommit hash: 04e87de39e3c82255c25019cbba3c43d8a21362a files touched by this commit
Matthias Andree (mandree) search for other commits by this committer
security/vuxml: sudo<1.9.17p1 privilege escalation

PR:		287938
Security:	24f4b495-56a1-11f0-9621-93abbef07693
Security:	CVE-2025-32462
Security:	CVE-2025-32463
1.1_6
01 Jul 2025 10:18:18
commit hash: 9e7bed5caa932d96f405660fc9ed61e543b6610dcommit hash: 9e7bed5caa932d96f405660fc9ed61e543b6610dcommit hash: 9e7bed5caa932d96f405660fc9ed61e543b6610dcommit hash: 9e7bed5caa932d96f405660fc9ed61e543b6610d files touched by this commit
Emmanuel Vadot (manu) search for other commits by this committer
security/vuxml: Add entries for xorg/xwayland latest vulnerabilities
1.1_6
30 Jun 2025 13:18:09
commit hash: 918bf3196e26a4cb02dbef209568c00870e68c05commit hash: 918bf3196e26a4cb02dbef209568c00870e68c05commit hash: 918bf3196e26a4cb02dbef209568c00870e68c05commit hash: 918bf3196e26a4cb02dbef209568c00870e68c05 files touched by this commit
Sergey A. Osokin (osa) search for other commits by this committer
security/vuxml: document sysutils/podman vulnerability
1.1_6
26 Jun 2025 16:39:18
commit hash: 86e2b9b62ceda8d0c256038c3d1c6bcf8995661dcommit hash: 86e2b9b62ceda8d0c256038c3d1c6bcf8995661dcommit hash: 86e2b9b62ceda8d0c256038c3d1c6bcf8995661dcommit hash: 86e2b9b62ceda8d0c256038c3d1c6bcf8995661d files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Add mongodb vulnerabilities

 * CVE-2025-6706
 * CVE-2025-6707
 * CVE-2025-6709
 * CVE-2025-6710
1.1_6
26 Jun 2025 08:31:15
commit hash: 120ea66801c392c89ca9db503754076687c3991acommit hash: 120ea66801c392c89ca9db503754076687c3991acommit hash: 120ea66801c392c89ca9db503754076687c3991acommit hash: 120ea66801c392c89ca9db503754076687c3991a files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Add kanboard vulnerability

 * CVE-2025-52560
 * CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N
1.1_6
26 Jun 2025 02:16:19
commit hash: f32d513cd861072232662249e1489cfe52ac6434commit hash: f32d513cd861072232662249e1489cfe52ac6434commit hash: f32d513cd861072232662249e1489cfe52ac6434commit hash: f32d513cd861072232662249e1489cfe52ac6434 files touched by this commit
Matthias Fechner (mfechner) search for other commits by this committer
security/vuxml: document gitlab vulnerabilities
1.1_6
24 Jun 2025 08:46:58
commit hash: 641e1a6e779988ac7a70830401737ae491b8b6c1commit hash: 641e1a6e779988ac7a70830401737ae491b8b6c1commit hash: 641e1a6e779988ac7a70830401737ae491b8b6c1commit hash: 641e1a6e779988ac7a70830401737ae491b8b6c1 files touched by this commit
Koichiro Iwao (meta) search for other commits by this committer
Author: Tom Hukins
security/vuxml: fix spelling mistakes

Fixes: 986be61969

Pull Request:	https://github.com/freebsd/freebsd-ports/pull/396
1.1_6
22 Jun 2025 20:45:11
commit hash: 13dd4512a598ff2f777c7adce4d17bf402a4e479commit hash: 13dd4512a598ff2f777c7adce4d17bf402a4e479commit hash: 13dd4512a598ff2f777c7adce4d17bf402a4e479commit hash: 13dd4512a598ff2f777c7adce4d17bf402a4e479 files touched by this commit
Daniel Engberg (diizzy) search for other commits by this committer
security/vuxml: Add openh264 vulnerability

Document CVE-2025-27091
1.1_6
21 Jun 2025 18:38:59
commit hash: 516ddee744c94bccd75edf2e571a8c04dd96084ccommit hash: 516ddee744c94bccd75edf2e571a8c04dd96084ccommit hash: 516ddee744c94bccd75edf2e571a8c04dd96084ccommit hash: 516ddee744c94bccd75edf2e571a8c04dd96084c files touched by this commit
Charlie Li (vishwin) search for other commits by this committer
security/vuxml: adjust affected textproc/libxml2 versions

Account for all branches' minor versions with fixes and local
backports to 2.11.

PR: 287391
1.1_6
20 Jun 2025 15:34:44
commit hash: 879b284c39642c6b43e1ad72d5fad75a6f7d1f3fcommit hash: 879b284c39642c6b43e1ad72d5fad75a6f7d1f3fcommit hash: 879b284c39642c6b43e1ad72d5fad75a6f7d1f3fcommit hash: 879b284c39642c6b43e1ad72d5fad75a6f7d1f3f files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Add clamav vulnerabilities

 * CVE-2025-20234
 * CVE-2025-20260

PR:		287672
Reported by:	Christos Chatzaras <chris@cretaforce.gr>
1.1_6
20 Jun 2025 09:54:30
commit hash: 13e2a05565153fd873a0f6c8964b1a927fd9f6c5commit hash: 13e2a05565153fd873a0f6c8964b1a927fd9f6c5commit hash: 13e2a05565153fd873a0f6c8964b1a927fd9f6c5commit hash: 13e2a05565153fd873a0f6c8964b1a927fd9f6c5 files touched by this commit
Don Lewis (truckman) search for other commits by this committer
Author: Olivier Duchateau
x11/yelp: update to 42.3

Update to 42.3 and fix CVE-2025-3155 vulnerability

PR:		287543
MFH:		2025Q2
Security:	0e200a73-289a-489e-b405-40b997911036
1.1_6
20 Jun 2025 09:54:30
commit hash: 10c9aa0a582ca9c5427cabfb311945cc0b1edb32commit hash: 10c9aa0a582ca9c5427cabfb311945cc0b1edb32commit hash: 10c9aa0a582ca9c5427cabfb311945cc0b1edb32commit hash: 10c9aa0a582ca9c5427cabfb311945cc0b1edb32 files touched by this commit
Don Lewis (truckman) search for other commits by this committer
Author: Olivier Duchateau
textproc/yelp-xsl: Upgrade to 42.4

Upgrade yelp-xsl to 42.4 and fix CVE-2025-3155 vulnerability.

PR:		287542
MFH:		2025Q2
Security:	9449f018-84a3-490d-959f-38c05fbc77a7
1.1_6
19 Jun 2025 07:25:13
commit hash: 3158494c2fb48bd0663f1f31d0293fb105a637cfcommit hash: 3158494c2fb48bd0663f1f31d0293fb105a637cfcommit hash: 3158494c2fb48bd0663f1f31d0293fb105a637cfcommit hash: 3158494c2fb48bd0663f1f31d0293fb105a637cf files touched by this commit
Robert Nagy (rnagy) search for other commits by this committer
security/vuxml: add www/*chromium < 137.0.7151.119

Obtained
from:	https://chromereleases.googleblog.com/2025/06/stable-channel-update-for-desktop_17.html
1.1_6
18 Jun 2025 20:42:53
commit hash: 732f58a22319581790698e36cd7197a0671e18e4commit hash: 732f58a22319581790698e36cd7197a0671e18e4commit hash: 732f58a22319581790698e36cd7197a0671e18e4commit hash: 732f58a22319581790698e36cd7197a0671e18e4 files touched by this commit
Kevin Bowling (kbowling) search for other commits by this committer
security/vuxml: Add multimedia/navidrome CVE-2025-48949
1.1_6
18 Jun 2025 17:45:19
commit hash: 49fd60e6a263da25cbfc6b32f060cd2050bc21bdcommit hash: 49fd60e6a263da25cbfc6b32f060cd2050bc21bdcommit hash: 49fd60e6a263da25cbfc6b32f060cd2050bc21bdcommit hash: 49fd60e6a263da25cbfc6b32f060cd2050bc21bd files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
Author: Boris Korzun
security/vuxml: Add grafana vulnerability

While here, correct versions for a previous grafana entry.

PR:		287634
Reported by:	Boris Korzun <drtr0jan@yandex.ru>
1.1_6
17 Jun 2025 15:38:39
commit hash: e7cc1408566fe477ab18734510a2e831d4196aa9commit hash: e7cc1408566fe477ab18734510a2e831d4196aa9commit hash: e7cc1408566fe477ab18734510a2e831d4196aa9commit hash: e7cc1408566fe477ab18734510a2e831d4196aa9 files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Add firefox vulnerabilities

 * CVE-2025-49709
 * CVE-2025-49710
1.1_6
17 Jun 2025 07:01:26
commit hash: 1c919c5a3481ac9e7d8e49998c01f910f80f7b81commit hash: 1c919c5a3481ac9e7d8e49998c01f910f80f7b81commit hash: 1c919c5a3481ac9e7d8e49998c01f910f80f7b81commit hash: 1c919c5a3481ac9e7d8e49998c01f910f80f7b81 files touched by this commit
Robert Nagy (rnagy) search for other commits by this committer
security/vuxml: add www/*chromium < 137.0.7151.103

Obtained
from:	https://chromereleases.googleblog.com/2025/06/stable-channel-update-for-desktop_10.html
Obtained
from:	https://chromereleases.googleblog.com/2025/06/stable-channel-update-for-desktop.html
1.1_6
15 Jun 2025 16:05:45
commit hash: 763127b6b61bae906ed5f07cee2488e9f5438858commit hash: 763127b6b61bae906ed5f07cee2488e9f5438858commit hash: 763127b6b61bae906ed5f07cee2488e9f5438858commit hash: 763127b6b61bae906ed5f07cee2488e9f5438858 files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Fix file validation

Reformat a couple of entries
1.1_6
15 Jun 2025 15:57:44
commit hash: fa2ada4b85935fb348d41dccc6785f625dd5c6a1commit hash: fa2ada4b85935fb348d41dccc6785f625dd5c6a1commit hash: fa2ada4b85935fb348d41dccc6785f625dd5c6a1commit hash: fa2ada4b85935fb348d41dccc6785f625dd5c6a1 files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Add Mozilla vulnerabilities

 * CVE-2025-2817
1.1_6
15 Jun 2025 11:26:55
commit hash: a3a5f02d91fb709e88eeed99a393c4be500b3e93commit hash: a3a5f02d91fb709e88eeed99a393c4be500b3e93commit hash: a3a5f02d91fb709e88eeed99a393c4be500b3e93commit hash: a3a5f02d91fb709e88eeed99a393c4be500b3e93 files touched by this commit
Jimmy Olgeni (olgeni) search for other commits by this committer
security/vuxml: Document CVE-2024-12828 (CGI Command Injection RCE in webmin)
1.1_6
13 Jun 2025 15:28:49
commit hash: 825f582e7610c81d30acbdc02a10a55adf853a8ecommit hash: 825f582e7610c81d30acbdc02a10a55adf853a8ecommit hash: 825f582e7610c81d30acbdc02a10a55adf853a8ecommit hash: 825f582e7610c81d30acbdc02a10a55adf853a8e files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Fix make validate

After a clean.

PR:		287479
Reported by:	dvl@ lwhsu@
Fixes:		3c9a11c9111b
1.1_6
13 Jun 2025 13:28:04
commit hash: 3be4401af522a31264ca20ceec26b76158592d91commit hash: 3be4401af522a31264ca20ceec26b76158592d91commit hash: 3be4401af522a31264ca20ceec26b76158592d91commit hash: 3be4401af522a31264ca20ceec26b76158592d91 files touched by this commit
Li-Wen Hsu (lwhsu) search for other commits by this committer
security/vuxml: Fix syntax of entry 2a220a73-4759-11f0-a44a-6cc21735f730

Fixes:	47f0fcd2cc49 security/vulxml: Add entry for PostgreSQL JDBC Driver
Sponsored by:	The FreeBSD Foundation
1.1_6
12 Jun 2025 07:36:13
commit hash: 6f97a7b5d5cda55425e92581332f7a950bf932fdcommit hash: 6f97a7b5d5cda55425e92581332f7a950bf932fdcommit hash: 6f97a7b5d5cda55425e92581332f7a950bf932fdcommit hash: 6f97a7b5d5cda55425e92581332f7a950bf932fd files touched by this commit
Matthias Fechner (mfechner) search for other commits by this committer
security/vuxml: document gitlab vulnerabilities
1.1_6
12 Jun 2025 06:55:28
commit hash: 47f0fcd2cc492bfd2cd54dfbf2261dece119154ecommit hash: 47f0fcd2cc492bfd2cd54dfbf2261dece119154ecommit hash: 47f0fcd2cc492bfd2cd54dfbf2261dece119154ecommit hash: 47f0fcd2cc492bfd2cd54dfbf2261dece119154e files touched by this commit
Palle Girgensohn (girgen) search for other commits by this committer
security/vulxml: Add entry for PostgreSQL JDBC Driver
1.1_6
06 Jun 2025 18:01:08
commit hash: c4ba83ba297e112f5f77989d975069b05f85eebccommit hash: c4ba83ba297e112f5f77989d975069b05f85eebccommit hash: c4ba83ba297e112f5f77989d975069b05f85eebccommit hash: c4ba83ba297e112f5f77989d975069b05f85eebc files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Add mod_security vulnerabilities

 * CVE-2025-47947
 * CVE-2025-48866
1.1_6
05 Jun 2025 16:00:03
commit hash: 9601584a5ac74fc289663f36d23b43a3a2944e13commit hash: 9601584a5ac74fc289663f36d23b43a3a2944e13commit hash: 9601584a5ac74fc289663f36d23b43a3a2944e13commit hash: 9601584a5ac74fc289663f36d23b43a3a2944e13 files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Correct roundcube entry

Flavored ports should include all package names in the VuXML entry.

PR:		287306
Reported by:	Tomáš Čiernik <tomas@ciernik.sk>
1.1_6
05 Jun 2025 15:45:59
commit hash: 82fcaf5fe05dbd213f17349f77d13697de441528commit hash: 82fcaf5fe05dbd213f17349f77d13697de441528commit hash: 82fcaf5fe05dbd213f17349f77d13697de441528commit hash: 82fcaf5fe05dbd213f17349f77d13697de441528 files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Add Mozilla vulnerabilities

 * CVE-2025-5267
 * CVE-2025-5266
 * CVE-2025-5264
 * CVE-2025-5263
1.1_6
04 Jun 2025 12:33:23
commit hash: 4acc783ce30647b28048867674b0175c79b03dd4commit hash: 4acc783ce30647b28048867674b0175c79b03dd4commit hash: 4acc783ce30647b28048867674b0175c79b03dd4commit hash: 4acc783ce30647b28048867674b0175c79b03dd4 files touched by this commit
Hiroki Tagato (tagattie) search for other commits by this committer
security/vuxml: add electron{34,36} out of bounds read and write in V8
1.1_6
04 Jun 2025 06:15:29
commit hash: a11f845a825a04996a8408207691686881c3516dcommit hash: a11f845a825a04996a8408207691686881c3516dcommit hash: a11f845a825a04996a8408207691686881c3516dcommit hash: a11f845a825a04996a8408207691686881c3516d files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Add Chromium vulnerability

 * CVE-2025-5419
1.1_6
04 Jun 2025 06:07:07
commit hash: 04cd415c7f0b5b0032461a34b735122d1f6092d7commit hash: 04cd415c7f0b5b0032461a34b735122d1f6092d7commit hash: 04cd415c7f0b5b0032461a34b735122d1f6092d7commit hash: 04cd415c7f0b5b0032461a34b735122d1f6092d7 files touched by this commit
Hiroki Tagato (tagattie) search for other commits by this committer
security/vuxml: document electron35 out of bounds read and write in V8

Obtained from:	https://github.com/electron/electron/releases/tag/v35.5.1
1.1_6
03 Jun 2025 16:16:08
commit hash: 6f84450813950b1a144e09e8c171e7ac893a7f4bcommit hash: 6f84450813950b1a144e09e8c171e7ac893a7f4bcommit hash: 6f84450813950b1a144e09e8c171e7ac893a7f4bcommit hash: 6f84450813950b1a144e09e8c171e7ac893a7f4b files touched by this commit
Alex Dupre (ale) search for other commits by this committer
security/vuxml: add entry for roundcube.

PR:		287208
Submitted by:	Christos Chatzaras <chris@cretaforce.gr>
1.1_6
02 Jun 2025 16:10:41
commit hash: 3c9a11c9111b919560041206b31ec877d9cc8ca1commit hash: 3c9a11c9111b919560041206b31ec877d9cc8ca1commit hash: 3c9a11c9111b919560041206b31ec877d9cc8ca1commit hash: 3c9a11c9111b919560041206b31ec877d9cc8ca1 files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Fix make vuln-flat.xml

According to the documentation, we should be able to type:

make vuln-flat.xml

(https://docs.freebsd.org/en/books/porters-handbook/book/#security-notify-vuxml-testing)

But after 87748de634d7b the target name includes the PKGDIR which is not right.

Fixes:	87748de634d7b
1.1_6
02 Jun 2025 15:59:34
commit hash: 746547349532f10c04ece5ebaca83ad5f771c4ebcommit hash: 746547349532f10c04ece5ebaca83ad5f771c4ebcommit hash: 746547349532f10c04ece5ebaca83ad5f771c4ebcommit hash: 746547349532f10c04ece5ebaca83ad5f771c4eb files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Add Gimp vulnerabilities

 * CVE-2025-2760
 * CVE-2025-2761
1.1_6
02 Jun 2025 15:51:45
commit hash: 3f32b24a8625529941c5d344f4ba4964231f199fcommit hash: 3f32b24a8625529941c5d344f4ba4964231f199fcommit hash: 3f32b24a8625529941c5d344f4ba4964231f199fcommit hash: 3f32b24a8625529941c5d344f4ba4964231f199f files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
Author: Christos Chatzaras
security/vuxml: Add entry for ftp/curl

 * CVE-2025-4947
 * CVE-2025-5025

PR:		287219
Reported by:	chris@cretaforce.gr
1.1_6
31 May 2025 17:34:06
commit hash: 37a0d38734d340aacbef9ea41cf3b95b57f21db2commit hash: 37a0d38734d340aacbef9ea41cf3b95b57f21db2commit hash: 37a0d38734d340aacbef9ea41cf3b95b57f21db2commit hash: 37a0d38734d340aacbef9ea41cf3b95b57f21db2 files touched by this commit
Daniel Engberg (diizzy) search for other commits by this committer
security/vuxml: Fix libxml2 CVE-2025-32414 entry

xmlsoft is the vendor name, replace it with libxml2
For some reason it go picked up while adding the this entry

Reported by:	fernape
1.1_6
31 May 2025 17:17:49
commit hash: 9a596e5a5345db82dcf952243faa5e9d80d2ef1bcommit hash: 9a596e5a5345db82dcf952243faa5e9d80d2ef1bcommit hash: 9a596e5a5345db82dcf952243faa5e9d80d2ef1bcommit hash: 9a596e5a5345db82dcf952243faa5e9d80d2ef1b files touched by this commit
Daniel Engberg (diizzy) search for other commits by this committer
security/vuxml: Document libxml2 vulnerabilities

Document CVE-2024-56171, CVE-2025-24928 and CVE-2025-32414
1.1_6
31 May 2025 12:20:52
commit hash: e445d8caeff4604dc241780b512e1aa94d63ff69commit hash: e445d8caeff4604dc241780b512e1aa94d63ff69commit hash: e445d8caeff4604dc241780b512e1aa94d63ff69commit hash: e445d8caeff4604dc241780b512e1aa94d63ff69 files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Fix librewolf entries

librewolf does not have PORTEPOCH.

PR:		286455
Reported by:	ax61@disroot.org
1.1_6
31 May 2025 05:20:05
commit hash: fc8715cd2d2fd858f7c979c4b6156bba58223951commit hash: fc8715cd2d2fd858f7c979c4b6156bba58223951commit hash: fc8715cd2d2fd858f7c979c4b6156bba58223951commit hash: fc8715cd2d2fd858f7c979c4b6156bba58223951 files touched by this commit
Robert Nagy (rnagy) search for other commits by this committer
security/vuxml: add www/*chromium < 137.0.7151.55

Obtained
from:	https://chromereleases.googleblog.com/2025/05/stable-channel-update-for-desktop_27.html
1.1_6
30 May 2025 18:05:05
commit hash: 196561431a9927481e5676e198ac822f978cf4decommit hash: 196561431a9927481e5676e198ac822f978cf4decommit hash: 196561431a9927481e5676e198ac822f978cf4decommit hash: 196561431a9927481e5676e198ac822f978cf4de files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Add chromium vulnerability

 * CVE-2025-5063
1.1_6
30 May 2025 17:44:19
commit hash: 9773c8e3f72c992897b1cad2e40514564cbb4d4acommit hash: 9773c8e3f72c992897b1cad2e40514564cbb4d4acommit hash: 9773c8e3f72c992897b1cad2e40514564cbb4d4acommit hash: 9773c8e3f72c992897b1cad2e40514564cbb4d4a files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Add Mozilla vulnerabilities

 * CVE-2025-5268
 * CVE-2025-5269
 * CVE-2025-5270
 * CVE-2025-5271
 * CVE-2025-5272
1.1_6
30 May 2025 12:30:14
commit hash: 68cdd3bab9a010c0f1c706c1e9e840ee0a2a0704commit hash: 68cdd3bab9a010c0f1c706c1e9e840ee0a2a0704commit hash: 68cdd3bab9a010c0f1c706c1e9e840ee0a2a0704commit hash: 68cdd3bab9a010c0f1c706c1e9e840ee0a2a0704 files touched by this commit
Fernando Apesteguía (fernape) search for other commits by this committer
security/vuxml: Add mod_security DoS vulnerability

 * CVE-2025-47947

PR:	278180
1.1_6
30 May 2025 02:42:16
commit hash: 59aa6f8a57fadd536f616ff71572ad2384bc66eccommit hash: 59aa6f8a57fadd536f616ff71572ad2384bc66eccommit hash: 59aa6f8a57fadd536f616ff71572ad2384bc66eccommit hash: 59aa6f8a57fadd536f616ff71572ad2384bc66ec files touched by this commit
Li-Wen Hsu (lwhsu) search for other commits by this committer
security/vuxml: Fix entry 34744aab-3bf7-11f0-b81c-001b217e4ee5

Block-level elements such as <ul> are not allowed as children of <p>.

Fixes:		26d54384e9ef (security/vuxml: document kea vulnerabilities)
Sponsored by:	The FreeBSD Foundation
1.1_6
29 May 2025 22:46:18
commit hash: 5796456d1d9b3a0bc98ed30f6ececa614ce2b50dcommit hash: 5796456d1d9b3a0bc98ed30f6ececa614ce2b50dcommit hash: 5796456d1d9b3a0bc98ed30f6ececa614ce2b50dcommit hash: 5796456d1d9b3a0bc98ed30f6ececa614ce2b50d files touched by this commit
Thomas Zander (riggs) search for other commits by this committer
security/vuxml: Document vulnerability in net/traefik

Number of commits found: 7721 (showing only 100 on this page)

1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | 11  »  [Last Page]