- Package:
- release.debian.org
- Source:
- release.debian.org
- Submitter:
- Adrian Bunk
- Date:
- 2026-06-20 16:43:02 UTC
- Severity:
- normal
- Tags:
* CVE-2026-39377: Arbitrary File Write via Path Traversal in
Cell Attachment Filenames (Closes: #1134889)
* CVE-2026-39378: Arbitrary File Read via Path Traversal in
HTMLExporter Image Embedding (Closes: #1134890)