CLEANSTART-2026-BU65096

See a problem?
Import Source
https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2026/CLEANSTART-2026-BU65096.json
JSON Data
https://api.osv.dev/v1/vulns/CLEANSTART-2026-BU65096
Upstream
  • CVE-2026-32280
  • CVE-2026-32281
  • CVE-2026-32282
  • CVE-2026-32283
  • CVE-2026-32287
  • CVE-2026-32289
  • CVE-2026-33810
  • CVE-2026-34986
  • CVE-2026-39882
  • CVE-2026-39883
  • ghsa-37cx-329c-33x3
  • ghsa-6g7g-w4f8-9c9x
  • ghsa-fw7p-63qq-7hpr
  • ghsa-hfvc-g4fc-pqhx
  • ghsa-rwvp-r38j-9rgg
  • ghsa-w8rr-5gcm-pp58
  • ghsa-xmrv-pmrh-hhx2
Published
2026-05-18T13:56:00.709916Z
Modified
2026-05-21T09:00:05.651961526Z
Summary
Security fixes for CVE-2025-11579, CVE-2026-24051, CVE-2026-25934, CVE-2026-26958, CVE-2026-32280, CVE-2026-32281, CVE-2026-32282, CVE-2026-32283, CVE-2026-32287, CVE-2026-32289, CVE-2026-33186, CVE-2026-33762, CVE-2026-33810, CVE-2026-34040, CVE-2026-34165, CVE-2026-34986, CVE-2026-39882, CVE-2026-39883, ghsa-37cx-329c-33x3, ghsa-6g7g-w4f8-9c9x, ghsa-fw7p-63qq-7hpr, ghsa-hfvc-g4fc-pqhx, ghsa-rwvp-r38j-9rgg, ghsa-w8rr-5gcm-pp58, ghsa-xmrv-pmrh-hhx2 applied in versions: 1.13.2-r0, 1.14.1-r0, 1.14.2-r0, 1.14.2-r1, 1.14.2-r2
Details

Multiple security vulnerabilities affect the grafana-alloy package. These issues are resolved in later releases. See references for individual vulnerability details.

References

Affected packages

CleanStart / grafana-alloy

Package

Name
grafana-alloy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.14.2-r2

Database specific

source
"https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2026/CLEANSTART-2026-BU65096.json"