Aggregator
DSA-6329-1 tomcat11 - security update
ack-3.10.0-1.fc43
FEDORA-2026-45190a3b6b
Packages in this update:
- ack-3.10.0-1.fc43
Update to version 3.10.0
ack-3.10.0-1.fc44
FEDORA-2026-bb708e11d7
Packages in this update:
- ack-3.10.0-1.fc44
Update to version 3.10.0
7.1-rc7: mainline
hugo-0.162.1-1.fc43
FEDORA-2026-6f3d11bdc6
Packages in this update:
- hugo-0.162.1-1.fc43
Update to 0.162.1 (rhbz#2455512)
hugo-0.162.1-1.fc44
FEDORA-2026-7fe2bb8a08
Packages in this update:
- hugo-0.162.1-1.fc44
Update to 0.162.1 (rhbz#2455512)
perl-Mojo-JWT-1.02-1.fc44
FEDORA-2026-80333f8f56
Packages in this update:
- perl-Mojo-JWT-1.02-1.fc44
This release of Mojo::JWT Improves the security of decode to prevent timing side-channel attacks in symmetric signatures
perl-Mojo-JWT-1.02-1.fc43
FEDORA-2026-1da54e6cb8
Packages in this update:
- perl-Mojo-JWT-1.02-1.fc43
This release of Mojo::JWT Improves the security of decode to prevent timing side-channel attacks in symmetric signatures
DSA-6327-1 request-tracker4 - security update
DSA-6325-1 chromium - security update
DSA-6326-1 nginx - security update
python-django4.2-4.2.30-2.el9
FEDORA-EPEL-2026-4d0b588a17
Packages in this update:
- python-django4.2-4.2.30-2.el9
- Backport fix for CVE-2026-35192 (low): Session fixation via public cached pages and SESSION_SAVE_EVERY_REQUEST
- Django 4.2.30 fixes one security issue with severity “moderate” and four security issues with severity “low” in 4.2.29
- CVE-2026-33033: Potential denial-of-service vulnerability in MultiPartParser via base64-encoded file upload [moderate]
- CVE-2026-3902: ASGI header spoofing via underscore/hyphen conflation
- CVE-2026-4277: Privilege abuse in GenericInlineModelAdmin
- CVE-2026-4292: Privilege abuse in ModelAdmin.list_editable
- CVE-2026-33034: Potential denial-of-service vulnerability in ASGI requests via memory upload limit bypass
- Django 4.2.29 fixes a security issue with severity “moderate” and a security issue with severity “low” in 4.2.28
- CVE-2026-25673: Potential denial-of-service vulnerability in URLField via Unicode normalization on Windows [moderate]
- CVE-2026-25674: Potential incorrect permissions on newly created file system objects
chromium-149.0.7827.53-1.el10_2
FEDORA-EPEL-2026-8d575a466a
Packages in this update:
- chromium-149.0.7827.53-1.el10_2
Update to 149.0.7827.53
- fix 429 CVEs ( CVE-2026-10881 through CVE-2026-11309)
chromium-149.0.7827.53-1.fc43
FEDORA-2026-faf711745c
Packages in this update:
- chromium-149.0.7827.53-1.fc43
Update to 149.0.7827.53
- fix 429 CVEs ( CVE-2026-10881 through CVE-2026-11309)
chromium-149.0.7827.53-1.el10_3
FEDORA-EPEL-2026-ecf0355367
Packages in this update:
- chromium-149.0.7827.53-1.el10_3
Update to 149.0.7827.53
- fix 429 CVEs ( CVE-2026-10881 through CVE-2026-11309)
chromium-149.0.7827.53-1.el9
FEDORA-EPEL-2026-df841da3a5
Packages in this update:
- chromium-149.0.7827.53-1.el9
Update to 149.0.7827.53
- fix 429 CVEs ( CVE-2026-10881 through CVE-2026-11309)
chromium-149.0.7827.53-1.fc44
FEDORA-2026-15e444c3bb
Packages in this update:
- chromium-149.0.7827.53-1.fc44
Update to 149.0.7827.53
- fix 429 CVEs ( CVE-2026-10881 through CVE-2026-11309)
transmission-flatpak-4.1.2-2
FEDORA-FLATPAK-2026-2d80fea2a4
Packages in this update:
- transmission-flatpak-4.1.2-2
4.1.2