The updated packages fix a security vulnerability: SFTP READLINK response leaks absolute backend filesystem path when root is configured. (CVE-2026-48855)
{ "section": "core" }
"https://advisories.mageia.org/MGASA-2026-0270.json"