Hi Tobias, On Sun, Jan 04, 2026 at 05:51:37PM +0100, Tobias Frost wrote: > Package: release.debian.org > Severity: normal > Tags: bookworm > X-Debbugs-Cc: [email protected], [email protected], > [email protected] > Control: affects -1 + src:sogo > User: [email protected] > Usertags: pu > > This o-s-p-u fixes the following CVES: > * CVE-2024-48104 - HTML Injection (Closes: #1060925)
This should have been CVE-2023-48104. Adam can you update that for the comments at least, not sure we have enough time to make a reject and new upload correcting that. Regards, Salvatore

