| Commit History - (may be incomplete: for full details, see links to repositories near top of page) |
| Commit | Credits | Log message |
1.1_6 14 May 2026 18:33:08
    |
Palle Girgensohn (girgen)  |
security/vuxml: Add postgreql??-* vulnerabilities
* CVE-2026-6472
* CVE-2026-6473
* CVE-2026-6474
* CVE-2026-6475
* CVE-2026-6476
* CVE-2026-6477
* CVE-2026-6478
* CVE-2026-6479
* CVE-2026-6575
* CVE-2026-6637
* CVE-2026-6638 |
1.1_6 14 May 2026 14:23:09
    |
Ryan Steinmetz (zi)  |
security/vuxml: Document www/nginx DoS/RCE
PR: 295270
Security: 3414ac89-4f9f-11f1-a1c0-0050569f0b83 |
1.1_6 14 May 2026 11:47:37
    |
Guido Falsi (madpilot)  |
security/vuxml: Document new mail/mailpit vulnerabilities |
1.1_6 14 May 2026 10:19:54
    |
Daniel Engberg (diizzy)  |
security/vuxml: Update entry for (py-)setuptools CVE-2025-47273
Expand this to our ancient ports to according to upstream report.
Affects devel/py-setuptools44 and devel/py-setuptools58 |
1.1_6 14 May 2026 09:54:57
    |
Daniel Engberg (diizzy)  |
security/vuxml: Add entry for (py-)setuptools CVE-2025-47273
This is almost a one year old CVE |
1.1_6 14 May 2026 04:35:18
    |
Matthias Fechner (mfechner)  |
security/vuxml: document Gitlab vulnerabilities |
1.1_6 12 May 2026 23:29:15
    |
Craig Leres (leres)  |
security/vuxml: Mark security/zeek < 8.0.8 as vulnerable as per:
https://github.com/zeek/zeek/releases/tag/v8.0.8
This release fixes the following potential DoS vulnerability:
- A specially-crafted series of MIME headers sent via SMTP or HTTP
could cause Zeek to use large amounts of memory and potentially
crash.
Reported by: Tim Wojtulewicz |
1.1_6 12 May 2026 11:46:31
    |
Fernando Apesteguía (fernape)  Author: Matthias Andree |
security/vuxml: Add dnsmasq vulnerabilities
* CVE-2026-2291
* CVE-2026-4890
* CVE-2026-4891
* CVE-2026-4892
* CVE-2026-4893
* CVE-2026-5172
PR: 295204 |
1.1_6 12 May 2026 11:32:54
    |
Fernando Apesteguía (fernape)  Author: Einar Bjarni Halldórsson |
security/vuxml: Add prosody vulnerability
CNA: MITRE
* Base Score: 7.2 HIGH
* Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:N
PR: 295226 |
1.1_6 11 May 2026 22:09:38
    |
Thierry Thomas (thierry)  |
security/vuxml: adding an entry for expat
See https://blog.hartwork.org/posts/expat-2-8-1-released/
and https://nvd.nist.gov/vuln/detail/CVE-2026-45186
Security: CVE-2026-45186 |
1.1_6 11 May 2026 08:26:05
    |
Fernando Apesteguía (fernape)  |
security/vuxml: Remove warning
Reduce the size of the description in one case.
Nothing can be done for the other one. |
1.1_6 11 May 2026 07:16:18
    |
Fernando Apesteguía (fernape)  Author: Thomas Morper |
security/vuxml: add CVEs for Prosody advisory 2026-04-29
ChangeLog: https://prosody.im/security/advisory_735dd9d3/
PR: 295127 |
1.1_6 11 May 2026 03:43:20
    |
Bryan Drewery (bdrewery)  |
security/vuxml: Document dash entry |
1.1_6 09 May 2026 19:12:43
    |
Daniel Engberg (diizzy)  Author: Matthias Andree |
security/vuxml: Adjust listing for OpenVPN 2.6.20 release
Fixes in 2.7.2 are backported to 2.6.20 release
PR: 294714
Security: 549313db-3e93-11f1-8d38-7fbbe0285610
CVE-2026-35058
CVE-2026-40215 |
1.1_6 08 May 2026 08:28:41
    |
Fernando Apesteguía (fernape)  |
security/vuxml: Add Mozilla vulnerabilities
* CVE-2026-8090
* CVE-2026-8091
* CVE-2026-8092
* CVE-2026-8093
* CVE-2026-8094 |
1.1_6 08 May 2026 06:26:06
    |
Robert Nagy (rnagy)  |
security/vuxml: add www/*chromium < 148.0.7778.96
Obtained
from: https://chromereleases.googleblog.com/2026/05/stable-channel-update-for-desktop.html |
1.1_6 07 May 2026 09:58:41
    |
Fernando Apesteguía (fernape)  |
security/vuxml: Add mongodb vulnerabilities
CVE-2026-6914
Base Score: 7.5 HIGH
Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVE-2026-6915
Base Score: 4.3 MEDIUM
Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N |
1.1_6 05 May 2026 16:06:23
    |
Yusuf Yaman (nxjoseph)  |
security/vuxml: Add devel/ocaml-opam (CVE-2026-41082)
Reviewed by: osa, vvd (mentors)
Approved by: vvd (co-mentor)
Differential Revision: https://reviews.freebsd.org/D56834 |
1.1_6 05 May 2026 10:16:59
    |
Bernard Spil (brnrd)  |
security/vuxml: Document Apache httpd vulnerabilities |
1.1_6 04 May 2026 16:51:04
    |
Jochen Neumeister (joneum)  |
security/vuxml: Add modsecurity3 vulnerabilities
Document CVE-2026-42268 and CVE-2026-30923 in modsecurity3
before 3.0.15.
PR: 294932
Sponsored by: Netzkommune GmbH |
1.1_6 03 May 2026 16:38:09
    |
Fernando Apesteguía (fernape)  |
security/vuxml: Add Mozilla vulnerability
CVE-2026-7323
NIST: NVD Base Score: N/A
ADP: CISA-ADP
Base Score: 7.3 HIGH
Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L |
1.1_6 02 May 2026 11:30:17
    |
Yusuf Yaman (nxjoseph)  Author: Thomas Morper |
security/vuxml: add Prosody XMPP server advisory 2026-04-29
CVEs requested but not received yet.
PR: 294898
Reported by: Thomas Morper <twm@pdp11.pw> (maintainer),
Max Hearnden (security)
Approved by: vvd (co-mentor, implicit)
URL: https://prosody.im/security/advisory_735dd9d3/
Security: a420f545-442c-11f1-b9b5-589cfc0dc9a2 |
1.1_6 01 May 2026 14:28:31
    |
Yusuf Yaman (nxjoseph)  |
security/vuxml: add textproc/p5-Text-CSV_XS
Reported by: H.Merijn Brand - Tux <linux@tux.freedom.nl>
Security: CVE-2026-7111
Reviewed by: osa, vvd (mentors)
Approved by: osa (mentor)
Differential Revision: https://reviews.freebsd.org/D56749 |
1.1_6 01 May 2026 08:34:04
    |
Daniel Engberg (diizzy)  Author: Matthias Andree |
security/vuxml: Document openexr < 3.4.11 vulnerabilities
Multiple vulnerabilities
PR: 294882
Security: 787cde46-4424-11f1-943f-05b19d100dca
CVE-2026-42217
CVE-2026-42216
CVE-2026-41142 |
1.1_6 30 Apr 2026 01:53:45
    |
Philip Paeps (philip)  |
security/vuxml: correct a typo in SA-26:12.dhclient entry
A trailing space crept into the <topic/> before m previous commit.
Fixes: 0821906582e8 security/vuxml: add FreeBSD SAs issued on 2026-04-29
Pointy hat to: philip |
1.1_6 30 Apr 2026 01:43:58
    |
Philip Paeps (philip)  |
security/vuxml: add FreeBSD SAs issued on 2026-04-29
FreeBSD-SA-26:12.dhclient affects all supported releases
FreeBSD-SA-26:13.exec affects all supported releases
FreeBSD-SA-26:14.pf affects all supported releases
FreeBSD-SA-26:15.dhclient affects all supported releases
FreeBSD-SA-26:16.libnv affects all supported releases
FreeBSD-SA-26:17.libnv affects all supported releases |
1.1_6 29 Apr 2026 15:01:56
    |
Fernando Apesteguía (fernape)  |
security/vuxml: Add Mozilla vulnerabilities
* CVE-2026-6786
* CVE-2026-6785
* CVE-2026-6784
* CVE-2026-6783
* CVE-2026-6782
* CVE-2026-6781
* CVE-2026-6780
* CVE-2026-6779
* CVE-2026-6778
* CVE-2026-6777
* CVE-2026-6776
* CVE-2026-6775
* CVE-2026-6774 (Only the first 15 lines of the commit message are shown above ) |
1.1_6 27 Apr 2026 21:20:46
    |
Kousuke Kannagi (mce)  |
security/vuxml: Add libXpm vulnerability
PR: 293154
Approved by: osa (mentor) |
1.1_6 26 Apr 2026 10:14:34
    |
Daniel Engberg (diizzy)  |
security/vuxml: Add entry for (lib)expat CVE-2026-41080
(lib)expat before 2.8.0 uses insufficient entropy, and thus hash
flooding can occur via a crafted XML document
PR: 294769 |
1.1_6 26 Apr 2026 09:57:38
    |
Daniel Engberg (diizzy)  |
security/vuxml: Add entry for lcms2 CVE-2026-41254
Integer overflow |
1.1_6 25 Apr 2026 14:33:31
    |
Olivier Cochard (olivier)  Author: Matthias Andree |
security/vuxml: add OpenVPN < 2.7.2 vulns
Security: 549313db-3e93-11f1-8d38-7fbbe0285610
Security: CVE-2026-35058
Security: CVE-2026-40215
PR: 294714 |
1.1_6 23 Apr 2026 04:39:53
    |
Matthias Fechner (mfechner)  |
security/vuxml: document gitlab vulnerabilities |
1.1_6 22 Apr 2026 02:10:52
    |
Philip Paeps (philip)  |
security/vuxml: add FreeBSD SAs issued on 2026-04-21
FreeBSD-SA-26:10.vm affects all supported releases
FreeBSD-SA-26:11.amd64 affects all supported releases |
1.1_6 21 Apr 2026 15:13:03
    |
Fernando Apesteguía (fernape)  |
security/vuxml: Add Mozilla vulnerability
* Base Score: 9.8 CRITICAL
* Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
1.1_6 21 Apr 2026 11:40:59
    |
Ashish SHUKLA (ashish)  |
security/vuxml: Document ejabberd vulnerability |
1.1_6 20 Apr 2026 17:13:17
    |
Craig Leres (leres)  |
security/vuxml: Mark security/zeek < 8.0.7 as vulnerable as per:
https://github.com/zeek/zeek/releases/tag/v8.0.7
This release fixes the following potential DoS vulnerabilities:
- A series of DNS messages containing long DNS compression chains
can cause Zeek to spend a long time processing packets and
potentially crash. Due to the fact that these packets can be
received from remote hosts, this is a DoS risk.
- A specially-crafted LDAP search request can cause Zeek to spend
a long time processing the packet, resulting in Zeek silently
dropping the LDAP analyzer for the connection. Due to the fact
that these packets can be received from remote hosts, this is
an evasion risk.
- A specially-crafted series of ASN.1 messages in LDAP packets can
cause Zeek to spend a long time processing the packets, resulting
in Zeek silently dropping the LDAP analyzer for the connection.
Due to the fact that these packets can be received from remote
hosts, this is an evasion risk.
Reported by: Tim Wojtulewicz |
1.1_6 19 Apr 2026 18:33:11
    |
Daniel Engberg (diizzy)  Author: Matthias Andree |
security/vuxml: Add entry for OpenEXR vulnerabilities < 3.4.10
Multiple integer overflow issues
Obtained from: GitHub repo
Security: CVE-2026-39886
CVE-2026-40244
CVE-2026-40250 |
1.1_6 18 Apr 2026 23:44:37
    |
Koichiro Iwao (meta)  |
security/vuxml: Document multiple xrdp vulnerability |
1.1_6 17 Apr 2026 12:21:33
    |
Kai Knoblich (kai)  |
security/vuxml: Document py-strawberry-graphql security issues
* CVE-2026-35523 - 7.5
* CVE-2026-35526 - 7.5 |
1.1_6 17 Apr 2026 06:30:15
    |
Fernando Apesteguía (fernape)  |
security/vuxml: Add Mozilla vulnerability
CVE-2026-5731
Base Score: 9.8 CRITICAL
Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
1.1_6 16 Apr 2026 21:38:32
    |
Daniel Engberg (diizzy)  Author: Matthias Andree |
security/vuxml: Add entry for Python CVE-2026-4786
Incomplete mitigation of CVE-2026-4519,
%action expansion for command injection to webbrowser.open()
Obtained from: GitHub repo
Security: CVE-2026-4786
cf75f572-378a-11f1-a119-e36228bfe7d4 |
1.1_6 16 Apr 2026 21:38:32
    |
Daniel Engberg (diizzy)  Author: Matthias Andree |
security/vuxml: Add entry for Python CVE-2026-6100
Use-after-free in lzma.LZMADecompressor, bz2.BZ2Decompressor
and gzip.GzipFile
Obtained from: GitHub repo
Security: b8e9f33c-375d-11f1-a119-e36228bfe7d4
CVE-2026-6100 |
1.1_6 16 Apr 2026 15:06:13
    |
Yusuf Yaman (nxjoseph)  |
security/vuxml: Add go-ethereum vulnerabilities
PR: 293829
Approved by: vvd (co-mentor) |
1.1_6 16 Apr 2026 08:14:59
    |
Robert Nagy (rnagy)  |
security/vuxml: add www/*chromium < 147.0.7727.101
Obtained
from: https://chromereleases.googleblog.com/2026/04/stable-channel-update-for-desktop_15.html |
1.1_6 15 Apr 2026 13:18:48
    |
Baptiste Daroussin (bapt)  |
security/vuxml: fix php composer declaration to respect the DTD |
1.1_6 14 Apr 2026 19:11:34
    |
Guido Falsi (madpilot)  |
security/vuxml: Document php-composer vulnerabilities
Reference: https://github.com/composer/composer/releases/tag/2.9.6
PR: 294528 |
1.1_6 14 Apr 2026 15:19:15
    |
Sergey A. Osokin (osa)  |
security/vuxml: document xwayland vulnerabilities
Sponsored by: tipi.work |
1.1_6 14 Apr 2026 15:15:36
    |
Sergey A. Osokin (osa)  |
security/vuxml: document xorg-server vulnerabilities
Sponsored by: tipi.work |
1.1_6 12 Apr 2026 19:00:46
    |
Bernard Spil (brnrd)  |
security/vuxml: Document Vaultwarden vulnerabilities |
1.1_6 12 Apr 2026 18:35:01
    |
Daniel Engberg (diizzy)  Author: Matthias Andree |
security/vuxml: Add entries for Python CVE-2026-1502 and gh-146333
PR: 294324
Security: CVE-2026-1502
/ 30bda1c3-369b-11f1-b51c-6dd25bec137b
Security: 5ec4dcf6-3588-11f1-b51c-6dd25bec137b |
1.1_6 12 Apr 2026 17:47:23
    |
Daniel Engberg (diizzy)  Author: Matthias Andree |
security/vuxml: Update entry for Python CVE-2026-4519
Fixed in 3.14.4
PR: 294324
Security: 9fdad262-2e0f-11f1-88c7-00a098b42aeb
/ CVE-2026-4519 |
1.1_6 11 Apr 2026 19:21:44
    |
Yusuf Yaman (nxjoseph)  |
security/vuxml: Add py-ormar vulnerabilities
PR: 294382
Approved by: osa (mentor) |
1.1_6 11 Apr 2026 08:26:02
    |
Daniel Engberg (diizzy)  |
security/vuxml: Document (lib)tiff vulnerability
Document CVE-2026-4775 |
1.1_6 10 Apr 2026 20:20:08
    |
Yusuf Yaman (nxjoseph)  |
security/vuxml: Add DNSdist vulnerabilities
PR: 294225
Approved by: osa (mentor) |
1.1_6 10 Apr 2026 16:39:52
    |
Yusuf Yaman (nxjoseph)  |
security/vuxml: Add MbedTLS vulnerabilities
Reviewed by: osa, vvd (mentors)
Approved by: osa (mentor)
Differential Revision: https://reviews.freebsd.org/D56344 |
1.1_6 10 Apr 2026 07:01:33
    |
Robert Nagy (rnagy)  |
security/vuxml: add www/*chromium < 147.0.7727.55
Obtained
from: https://chromereleases.googleblog.com/2026/04/stable-channel-update-for-desktop.html |
1.1_6 09 Apr 2026 10:26:08
    |
Fernando Apesteguía (fernape)  |
security/vuxml: Add Mozilla vulnerabilities
* CVE-2026-5732: NVD assessment not yet provided
* CVE-2026-5733: NVD assessment not yet provided
* CVE-2026-5734: Base Score: 9.8 CRITICAL
Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
* CVE-2026-5734: Base Score: 9.8 CRITICAL
Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
1.1_6 09 Apr 2026 06:13:41
    |
Bernard Spil (brnrd)  |
security/vuxml: Update URL in latest OpenSSL vulns |
1.1_6 09 Apr 2026 04:35:00
    |
Matthias Fechner (mfechner)  |
security/vuxml: document gitlab vulnerabilities |
1.1_6 07 Apr 2026 18:12:42
    |
Bernard Spil (brnrd)  |
security/vuxml: Document OpenSSL vulnerabilities |
1.1_6 05 Apr 2026 11:54:26
    |
Fernando Apesteguía (fernape)  |
security/vuxml: Add {lib}nghttp2 vulneability
CVE-2026-27135
Base Score: 7.5 HIGH
Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
1.1_6 04 Apr 2026 17:09:29
    |
Charlie Li (vishwin)  |
security/vuxml: add missed python packages
PR: 294246 |
1.1_6 04 Apr 2026 17:09:26
    |
Charlie Li (vishwin)  |
security/vuxml: add ranges for python webbrowser.open() API entry
PR: 294246 |
1.1_6 03 Apr 2026 16:42:46
    |
Fernando Apesteguía (fernape)  |
security/vuxml: Add mongodb{78}0 vulnerability
CVSS-B 6.0 MEDIUM
Vector: CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N |
1.1_6 03 Apr 2026 10:07:11
    |
Fernando Apesteguía (fernape)  Author: Matthias Andree |
security/vuxml: add openexr < 3.4.9 vulns
Security: CVE-2026-34589
Security: CVE-2026-34588
Security: CVE-2026-34380
Security: CVE-2026-34379
Security: CVE-2026-34378
Security: adb096d4-2e72-11f1-acc1-339a1a6999b0
PR: 294196 |
1.1_6 01 Apr 2026 21:31:07
    |
Daniel Engberg (diizzy)  |
security/vuxml: Document Python security issues
Security: CVE-2025-15366
Security: CVE-2025-15367
Security: CVE-2026-4519 |
1.1_6 01 Apr 2026 13:53:42
    |
Robert Nagy (rnagy)  |
security/vuxml: add www/*chromium < 146.0.7680.177
Obtained
from: https://chromereleases.googleblog.com/2026/03/stable-channel-update-for-desktop_31.html |
1.1_6 29 Mar 2026 11:48:50
    |
Thomas Zander (riggs)  |
security/vuxml: Document multiple vulnerabilities in traefik |
1.1_6 29 Mar 2026 10:38:50
    |
Bernard Spil (brnrd)  |
security/vuxml: Document Roundcube vulnerability |
1.1_6 29 Mar 2026 05:26:58
    |
Matthias Fechner (mfechner)  |
security/vuxml: document gitlab vulnerabilities |
1.1_6 27 Mar 2026 11:32:34
    |
Li-Wen Hsu (lwhsu)  |
security/vuxml: Document Jenkins Security Advisory 2026-03-18
Sponsored by: The FreeBSD Foundation |
1.1_6 26 Mar 2026 19:18:38
    |
Fernando Apesteguía (fernape)  |
security/vuxml: Add Mozilla vulnerabilities |
1.1_6 26 Mar 2026 05:20:08
    |
Philip Paeps (philip)  |
security/vuxml: add FreeBSD SAs issued on 2026-03-25
FreeBSD-SA-26:06.tcp affects FreeBSD 14.3R, 14.4R and 15.0R
FreeBSD-SA-26:07.nvmf affects FreeBSD 15.0R
FreeBSD-SA-26:08.rpcsec_gss affects all supported releases
FreeBSD-SA-26:09.pf affects FreeBSD 14.3R, 14.4R and 15.0R |
1.1_6 24 Mar 2026 07:33:01
    |
Robert Nagy (rnagy)  |
security/vuxml: add www/*chromium < 146.0.7680.164
Obtained
from: https://chromereleases.googleblog.com/2026/03/stable-channel-update-for-desktop_18.html
Obtained
from: https://chromereleases.googleblog.com/2026/03/stable-channel-update-for-desktop_23.html |
1.1_6 22 Mar 2026 17:07:51
    |
Fernando Apesteguía (fernape)  Author: Tomáš Čiernik |
security/vuxml: Fix roundcube package name
The package is flavorized.
PR: 293919
Reported by: tomas@ciernik.sk |
1.1_6 22 Mar 2026 17:01:24
    |
Fernando Apesteguía (fernape)  |
security/vuxml: Fix linux-c7-sqlite range
PR: 292617
Reported by: John Hein <jcfyecrayz@liamekaens.com> |
1.1_6 22 Mar 2026 08:38:50
    |
Thomas Zander (riggs)  |
security/vuxml: Document vulnerabilities in traefik |
1.1_6 19 Mar 2026 19:00:45
    |
Fernando Apesteguía (fernape)  |
security/vuxml: Add unifi{9,10} vulnerabilities
CVE: CVE-2026-22557
Base Score: 10.0 (Critical)
CVSS: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
CVE: CVE-2026-22558
Base Score: 7.7 (High)
CVSS: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
Reported by: Jana Steuernagel |
1.1_6 19 Mar 2026 07:24:20
    |
Bernard Spil (brnrd)  |
security/vuxml: Document Roundcube vulnerabilities |
1.1_6 17 Mar 2026 21:25:15
    |
Jesús Daniel Colmenares Oviedo (dtxdf)  |
security/vuxml: Add homebox < 0.24.0 |
1.1_6 15 Mar 2026 18:18:59
    |
Robert Nagy (rnagy)  |
security/vuxml: add www/*chromium < 146.0.7680.80
Obtained
from: https://chromereleases.googleblog.com/2026/03/stable-channel-update-for-desktop_13.html
Obtained
from: https://chromereleases.googleblog.com/2026/03/stable-channel-update-for-desktop_12.html
Obtained
from: https://chromereleases.googleblog.com/2026/03/stable-channel-update-for-desktop_10.html |
1.1_6 13 Mar 2026 14:57:05
    |
Bernard Spil (brnrd)  |
security/vuxml: Document OpenSSL 3.5/3.6 vulnerability |
1.1_6 12 Mar 2026 07:21:36
    |
Fernando Apesteguía (fernape)  |
security/vuxml: Add Mozilla vulnerabilities
* CVE-2026-2771 - 9.8
* CVE-2026-3846 - 6.5
* CVE-2026-3847 - 8.8 |
1.1_6 11 Mar 2026 15:58:03
    |
Matthias Fechner (mfechner)  |
security/vuxml: document gitlab vulnerabilities |
1.1_6 11 Mar 2026 12:40:45
    |
Bernard Spil (brnrd)  |
security/vuxml: Document curl 8.17.0 vulnerabilities |
1.1_6 11 Mar 2026 12:36:51
    |
Bernard Spil (brnrd)  |
security/vuxml: Document curl 8.18.0 vulnerabilities |
1.1_6 07 Mar 2026 08:36:42
    |
Jason E. Hale (jhale)  |
security/vuxml: Add GStreamer1 < 1.28.1
https://gstreamer.freedesktop.org/security/ |
1.1_6 03 Mar 2026 16:28:24
    |
Charlie Li (vishwin)  |
security/vuxml: update lang/python310 entry
gh-143935 has been committed upstream |
1.1_6 02 Mar 2026 18:02:02
    |
Fernando Apesteguía (fernape)  |
security/vuxml: Amend sqlite entry
Fix vulnerable version range for sqlite-based ports (CVE-2025-7709)
PR: 292617
Reported by: jcfyecrayz@liamekaens.com (maintainer)
Reviewed by: fluffy@ |
1.1_6 27 Feb 2026 19:15:42
    |
Jesús Daniel Colmenares Oviedo (dtxdf)  |
security/vuxml: Add www/oauth2-proxy < 7.14.2 |
1.1_6 27 Feb 2026 18:06:53
    |
Fernando Apesteguía (fernape)  |
security/vuxml: Add Mozilla vulnerabilities
* CVE-2026-2809
* CVE-2026-2808 |
1.1_6 27 Feb 2026 18:02:02
    |
Fernando Apesteguía (fernape)  |
security/vuxml: Add Mozilla vulnerabilities
* CVE-2026-2795
* CVE-2026-2796
* CVE-2026-2797
* CVE-2026-2798
* CVE-2026-2799
* CVE-2026-2801
* CVE-2026-2802
* CVE-2026-2803
* CVE-2026-2804
* CVE-2026-2805
* CVE-2026-2806
* CVE-2026-2807
Changes to be committed: |
1.1_6 26 Feb 2026 13:28:11
    |
Matthias Fechner (mfechner)  |
security/vuxml: document gitlab vulnerabilities |
1.1_6 25 Feb 2026 17:18:54
    |
Guido Falsi (madpilot)  |
security/vuxml: Document new mail/mailpit vulnerability |
1.1_6 25 Feb 2026 01:35:45
    |
Philip Paeps (philip)  |
security/vuxml: add FreeBSD SAs issued on 2026-02-24
FreeBSD-SA-26:04.jail affects FreeBSD 13.5 and FreeBSD 14.3
FreeBSD-SA-26:05.route affects all supported versions of FreeBSD |
1.1_6 24 Feb 2026 07:28:13
    |
Bernard Spil (brnrd)  |
security/vuxml: Document Vaultwarden vulnerabilities |
1.1_6 23 Feb 2026 00:22:11
    |
Daniel Engberg (diizzy)  Author: Matthias Andree |
security/vuxml: Add openexr < 3.4.5
Security: 716d25a6-0fdc-11f1-bfdf-ff9355aecb00 |
1.1_6 20 Feb 2026 19:48:29
    |
Li-Wen Hsu (lwhsu)  |
security/vuxml: Document Jenkins Security Advisory 2026-02-18
Sponsored by: The FreeBSD Foundation |
1.1_6 20 Feb 2026 18:41:59
    |
Fernando Apesteguía (fernape)  |
security/vuxml: Add Mozilla vulnerability
* CVE-2026-2447 |
1.1_6 19 Feb 2026 10:31:09
    |
Robert Nagy (rnagy)  |
security/vuxml: add www/*chromium < 145.0.7632.109
Obtained
from: https://chromereleases.googleblog.com/2026/02/stable-channel-update-for-desktop_18.html |