Re: CVE-2026-64607 announced?

sebb <[email protected]>
Newsgroups gmane.comp.jakarta.commons.devel
Message-ID <CAOGo0VbLS_7FTORRdCdXRFWAQfeY+6AGFpE6emvTQOWvaXfsgA@mail.gmail.com>
On Mon, 10 Aug 2026 at 07:48, Piotr P. Karwasz
<[email protected]> wrote:
>
> Hi Gary,
>
> On 7.08.2026 17:04, Gary Gregory wrote:
> > I can't find an email on anounce@ or our dev@ mailing list for
> > https://nvd.nist.gov/vuln/detail/CVE-2026-64607
>
>
> All the CVEs disclosed by the ASF *must* have a `vendor-advisory` link,
> which most often than not is a link to the PonyMail archive:
>
> https://www.cve.org/CVERecord?id=CVE-2026-64607

Which suggests that such queries should be directed to the
Httpcomponents project...

> Piotr
>
> ---------------------------------------------------------------------
> To unsubscribe, e-mail: [email protected]
> For additional commands, e-mail: [email protected]
>
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.