Same situation as GHSA-gwfx-7pfc-xg68, filed separately.
- Advisory: GHSA-7574-87vg-px7c in vaadin/flow-components, state
published since 2026-10-01T05:08:13Z, 11 affected Maven packages
- CVE: CVE-2026-93547, published on cve.org on 2026-09-30
It returns 404 as a global advisory, and querying by CVE id returns only GHSA-74m8-whmf-rxrq, the automatically ingested copy, which is unreviewed with no packages.
Could the repository advisory be published to the database, and GHSA-74m8-whmf-rxrq merged into it or withdrawn?
Same situation as GHSA-gwfx-7pfc-xg68, filed separately.
publishedsince 2026-10-01T05:08:13Z, 11 affected Maven packagesIt returns 404 as a global advisory, and querying by CVE id returns only GHSA-74m8-whmf-rxrq, the automatically ingested copy, which is
unreviewedwith no packages.Could the repository advisory be published to the database, and GHSA-74m8-whmf-rxrq merged into it or withdrawn?