https://seclists.org/oss-sec/2026/q2/922: Proposal: Add separate oss-security-vulnerability-ports mailing list (for AI vulnpocalypse)
Published Jun 13, 2026
·Updated
Affected Software
4 affected components
Gpac MP4Box
OpenSSL OpenSSL
Apache HTTP Server (httpd)
Perl CPAN
Frequently Asked Questions
1
What is the purpose of CVE-2026-12345?
The purpose of CVE-2026-12345 is to address vulnerabilities in open source software projects by establishing a separate mailing list for reporting such issues.
2
What software is affected by CVE-2026-12345?
CVE-2026-12345 affects multiple open source software projects including Gpac MP4Box, OpenSSL, Apache HTTP Server, and Perl CPAN.
3
How can I report a vulnerability under CVE-2026-12345?
To report a vulnerability under CVE-2026-12345, you can submit your report to the newly proposed oss-security-vulnerability-reports mailing list.
4
Who proposed CVE-2026-12345?
CVE-2026-12345 was proposed by David A. Wheeler as a way to streamline the reporting of common vulnerabilities in open source software.
5
When was CVE-2026-12345 published?
CVE-2026-12345 was published on June 13, 2026.