CVE-2026-56355: Low severity GNU Savane vulnerability
Published Jun 20, 2026
·Updated
GNU Savannah Administration Savane through 3.17 uses untrusted data as part of authorization.
Affected Software
1 affected component
GNU Savane<=3.17
Event History
Jun 20, 2026
CVE Published
via MITRE·08:08 PM
Data Sourced
via MITRE·08:08 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·09:16 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-56355?
The severity of CVE-2026-56355 is rated as low with a score of 3.7.
2
What risks are associated with CVE-2026-56355?
CVE-2026-56355 poses a risk due to the use of untrusted data in the authorization process.
3
How can CVE-2026-56355 be mitigated?
To mitigate CVE-2026-56355, it is important to validate and sanitize all input data used for authorization.
4
What software is affected by CVE-2026-56355?
CVE-2026-56355 affects GNU Savane version 3.17 and earlier.
5
When was CVE-2026-56355 published?
CVE-2026-56355 was published on June 20, 2026.