• Bug#1086041: openrefine: CVE-2024-49760 CVE-2024-47882 CVE-2024-47881 C

    From Markus Koschany@21:1/5 to All on Thu Jan 2 18:10:01 2025
    Control: severity -1 important


    Openrefine is not a server application but a single-user app thus typical openrefine users don't face the same risks. Even network access is not required to use openrefine in production. As with previous CVE a normal stable update should be sufficient in my opinion. An update for unstable will follow shortly.

    -----BEGIN PGP SIGNATURE-----

    iQKTBAABCgB9FiEErPPQiO8y7e9qGoNf2a0UuVE7UeQFAmd2xYBfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldEFD RjNEMDg4RUYzMkVERUY2QTFBODM1RkQ5QUQxNEI5NTEzQjUxRTQACgkQ2a0UuVE7 UeQxSg/8DEKr2GXO/vthR1n8wXacYz8DTcUwSBWgz7FFGfykBiRdtbiBM/T/pbfG QVpzxurm/7Us2YPAkA6hNDUTWFlpKQ0sWJ1NarJseFwF/1oKZ8yz6gV2tojL648U r7Jey37t1qHwU1TL/+TZri9xswDJ4eYv5NoRLVB2KGyqn0GpT0K8w/+QZnBVe4We Hbdj/JG5ItstzGM537bNR7kMyqcG6+50/yz8DFSY32Z2/MUndv2+s6u4pxGfLyzJ Mf8yy2eLTDmSuaD0GPMiwwoJbmUo4N1nZnneIHkn4Lz9F/0OrqI0N7ueF3+MMtp9 xaFYw3AG/9vZGCCaE3rwHFA1+N16VjGBbkYPK4xmjaF75bUe646SirihofHI/jB4 2KJsjjJ15V/ukywHEwdWArqOdho+meDqTsLaifvxJOCC+bmjp8gAETDI5jwqXyjl 1A+T5omO7aL05gxsP4AK6jZDeQw8L7vsVfdsvr3nT0Mb5PIQB0s4rIozuKCG6uOe +UYmJ0UMwOtBSSuTD1Oorp9EWhCuTkG64xW0MuEqq326ArSOrEA0IEmEICYJA8Y4 LdyGap1JAOYrDuQ9NZ4uUuEgJ7ET0gBgpegQtgqMm6h9Ww5zVVMjl5vLEqDDCa/g OGA9389fi8EnUE+qcLV/na9Es7phhhCvXu6gb6QtpBZopjUqG24=
    =w4vm
    -----END PGP SIGNATURE-----

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)