Date: Sun, 22 Mar 2026 08:38:52 +0000 From: Thomas Zander <riggs@FreeBSD.org> To: ports-committers@FreeBSD.org, dev-commits-ports-all@FreeBSD.org, dev-commits-ports-main@FreeBSD.org Subject: git: fe9b7bab83fb - main - security/vuxml: Document vulnerabilities in traefik Message-ID: <69bfaa9c.1e7be.79f4f904@gitrepo.freebsd.org>
index | next in thread | raw e-mail
The branch main has been updated by riggs: URL: https://cgit.FreeBSD.org/ports/commit/?id=fe9b7bab83fb90d86e47a0dbb9f0447cc3b89aae commit fe9b7bab83fb90d86e47a0dbb9f0447cc3b89aae Author: Thomas Zander <riggs@FreeBSD.org> AuthorDate: 2026-03-22 08:38:13 +0000 Commit: Thomas Zander <riggs@FreeBSD.org> CommitDate: 2026-03-22 08:38:50 +0000 security/vuxml: Document vulnerabilities in traefik --- security/vuxml/vuln/2026.xml | 32 ++++++++++++++++++++++++++++++++ 1 file changed, 32 insertions(+) diff --git a/security/vuxml/vuln/2026.xml b/security/vuxml/vuln/2026.xml index b7a57e768eba..604582da2cea 100644 --- a/security/vuxml/vuln/2026.xml +++ b/security/vuxml/vuln/2026.xml @@ -1,3 +1,35 @@ + <vuln vid="832a823b-25b5-11f1-b6f8-5404a68ad561"> + <topic>traefik -- Multiple vulnerabilities</topic> + <affects> + <package> + <name>traefik</name> + <range><lt>3.6.11</lt></range> + </package> + </affects> + <description> + <body xmlns="http://www.w3.org/1999/xhtml"> + <p>The traefik project releases a new version addressing multiple CVEs:</p> + <blockquote cite="https://github.com/traefik/traefik/releases/tag/v3.6.11"> + <ul> + <li>CVE-2026-32595 (BasicAuth Middleware Timing Attack)</li> + <li>CVE-2026-32305 (Potential mTLS Bypass via Fragmented TLS ClientHello)</li> + <li>CVE-2026-32695 (Details not yet available)</li> + </ul> + </blockquote> + </body> + </description> + <references> + <cvename>CVE-2026-32595</cvename> + <cvename>CVE-2026-32305</cvename> + <cvename>CVE-2026-32695</cvename> + <url>https://github.com/traefik/traefik/releases/tag/v3.6.11</url> + </references> + <dates> + <discovery>2026-03-19</discovery> + <entry>2026-03-22</entry> + </dates> + </vuln> + <vuln vid="71b4ce56-23c5-11f1-b865-b42e991fc52e"> <topic>UniFi Network Application - Multiple vulnerabilities</topic> <affects>home | help
Want to link to this message? Use this
URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?69bfaa9c.1e7be.79f4f904>
