- Package:
- release.debian.org
- Source:
- release.debian.org
- Submitter:
- Adrian Bunk
- Date:
- 2026-06-27 17:15:02 UTC
- Severity:
- normal
- Tags:
* CVE-2026-32722: XSS in generated HTML reports via unescaped
command-line metadata (Closes: #1131372)
Control: tags -1 + moreinfo Control: block -1 by 1140692 +python-memray (1.17.0+dfsg-1.1) trixie; urgency=medium Why not 1.17.0+dfsg-1+deb13u1? This is effectively blocked by #1140692, as stable and testing currently have the same version. Regards, Adam
Because I screwed up the version, please reject. Thanks Adrian
Done. Regards, Adam
Hi Adrian, Regards Salvatore
Control: retitle -1 trixie-pu: package python-memray/1.17.0+dfsg-1+deb13u1 Control: tags -1 - moreinfo A debdiff with fixed version is attached. cu Adrian