openSUSE Tumbleweed — syft — vulnerability — patch and remediation guide
🟠 High ⏱ 15–60 min Last verified: 25 May 2026 Affected versions: openSUSE Tumbleweed 📖 ~4 min read • Source: SUSE advisory RHSA-2024:6510 (see also SUSE bugzilla) Related CVEs: CVE-2024-39331 Upstream summary: In Emacs before 29.4, org-link-expand-abbrev in lisp/ol.el expands a %(…) link abbrev even when it specifies an unsafe function, such as shell-command-to-string. […]