# emacs 30.2

Snapshot of gominimal/pkgs commit `defad31c69130df153e9263cb1e4dca96b3e2994` (pushed 2026-07-24T23:32:58.000Z).

## Install

```sh
min add emacs
```

## Direct advisories

| ID | Severity | CVSS | Fix status | Fixed version | Summary |
| --- | --- | --- | --- | --- | --- |
| CVE-2026-6861 | MEDIUM | 6.1 | unknown_fix | — | A flaw was found in GNU Emacs. This vulnerability, a memory corruption issue, occurs when Emacs processes specially crafted SVG (Scalable Vector Graphics) CSS (Cascading Style Sheets) data. A local user could exploit this by convincing a victim to open a malicious SVG file, which may lead to a denial of service (DoS) or potentially information disclosure. |

## Transitive advisories

9 advisories inherited through runtime dependencies:

- CVE-2013-4412 (HIGH) via glibc
- CVE-2026-4046 (HIGH) via glibc
- CVE-2026-4437 (HIGH) via glibc
- CVE-2026-4438 (MEDIUM) via glibc
- CVE-2026-5435 (HIGH) via glibc
- CVE-2026-5450 (CRITICAL) via glibc
- CVE-2026-5928 (HIGH) via glibc
- CVE-2026-6238 (MEDIUM) via glibc
- CVE-2026-11979 (LOW) via libxml2

## Dependencies

- Build (5): autoconf, base, make, pkgconf, toolchain
- Runtime (9): bash, glibc, gmp, gnutls, jansson, libxml2, ncurses, tree-sitter, zlib

## Links

- Package page (HTML): https://minimal.dev/pkgs/emacs
- JSON API (floats latest): https://minimal.dev/api/pkgs/emacs.json
- SBOM (CycloneDX 1.5): https://minimal.dev/api/pkgs/emacs/sbom.json
