Root has patched CVE-2026-22801 in the rootio-libpng1.6 package for Root:Debian:13. Multiple fixed versions available.
{ "distro": "debian", "distro_version": "13", "source": "Root" }
[ "1.6.48-1+deb13u1.root.io.1", "1.6.48-1+deb13u1.root.io.9" ]
"root.io.9"
true
"https://api.root.io/external/osv/ROOT-OS-DEBIAN-13-CVE-2026-22801.json"
2
"1.6.48-1+deb13u1"