| Release | Version |
|---|---|
| forky | 3.15.0~rc1-1 |
| sid | 3.15.0~rc2-1 |
| Bug | forky | sid | Description |
|---|---|---|---|
| CVE-2026-19672 | vulnerable | fixed | The tarfile module's tar and data extraction filters created director ... |
| CVE-2026-17084 | vulnerable | fixed | The "stringprep" module didn't process characters from RFC 3454 tables ... |
| CVE-2026-15806 | vulnerable | fixed | The HTTPPasswordMgr class in the urllib.request module, along with its ... |
| CVE-2026-15310 | vulnerable | fixed | When decompressing crafted zip files using the bzip/LZMA/Zstandard c ... |
| Bug | Description |
|---|---|
| CVE-2026-18503 | Attacker-controlled CSV samples can trigger super-linear regular-expr ... |