diff mbox series

[meta-python,scarthgap,20/20] python3-werkzeug: ignore CVE-2025-66221 and CVE-2026-21860

Message ID 20260114130100.1016416-20-ankur.tyagi85@gmail.com
State New
Headers show
Series [meta-python,scarthgap,01/20] python3-aiohttp: upgrade 3.9.4 -> 3.9.5 | expand

Commit Message

Ankur Tyagi Jan. 14, 2026, 1 p.m. UTC
From: Ankur Tyagi <ankur.tyagi85@gmail.com>

Both vulnerabilties are for Windows and can be ignored.

Details:
- https://nvd.nist.gov/vuln/detail/CVE-2025-66221
- https://nvd.nist.gov/vuln/detail/CVE-2026-21860

Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com>
---
 meta-python/recipes-devtools/python/python3-werkzeug_3.0.6.bb | 3 +++
 1 file changed, 3 insertions(+)
diff mbox series

Patch

diff --git a/meta-python/recipes-devtools/python/python3-werkzeug_3.0.6.bb b/meta-python/recipes-devtools/python/python3-werkzeug_3.0.6.bb
index 5758830cb9..5f88a9577a 100644
--- a/meta-python/recipes-devtools/python/python3-werkzeug_3.0.6.bb
+++ b/meta-python/recipes-devtools/python/python3-werkzeug_3.0.6.bb
@@ -22,3 +22,6 @@  RDEPENDS:${PN} += " \
     python3-json \
     python3-difflib \
 "
+
+CVE_STATUS[CVE-2025-66221] = "not-applicable-platform: The vulnerability is Windows specific"
+CVE_STATUS[CVE-2026-21860] = "not-applicable-platform: The vulnerability is Windows specific"