CVE-2026-11852
Summary
| CVE | CVE-2026-11852 |
|---|---|
| State | PUBLISHED |
| Assigner | debian |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2026-06-10 10:16:31 UTC |
| Updated | 2026-06-10 10:16:31 UTC |
| Description | Debusine is an integrated solution to build, distribute and maintain a Debian-based distribution. Files managed by debusine are organized into artifacts. The endpoints that create and delete relationships between artifacts enforced no permissions checks beyond being able to see the artifacts in question. |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| salsa.debian.org/freexian-team/debusine/-/commit/98104f46dc546a27a0326d5ef728a... | [email protected] | salsa.debian.org | |
| salsa.debian.org/freexian-team/debusine/-/work_items/1499 | [email protected] | salsa.debian.org | |
| salsa.debian.org/freexian-team/debusine/-/merge_requests/2836 | [email protected] | salsa.debian.org | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.