CLEANSTART-2026-CK42797

See a problem?
Import Source
https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2026/CLEANSTART-2026-CK42797.json
JSON Data
https://api.osv.dev/v1/vulns/CLEANSTART-2026-CK42797
Upstream
  • CVE-2026-25679
  • CVE-2026-27139
  • CVE-2026-27142
  • ghsa-37cx-329c-33x3
Published
2026-04-01T09:42:37.879665Z
Modified
2026-04-01T18:48:22.242018Z
Summary
Security fixes for CVE-2025-61732, CVE-2025-68121, CVE-2026-1229, CVE-2026-25679, CVE-2026-25934, CVE-2026-27139, CVE-2026-27142, ghsa-37cx-329c-33x3 applied in versions: 0.18.0-r1, 1.16.0-r0
Details

Multiple security vulnerabilities affect the pulumi-kubernetes-operator package. These issues are resolved in later releases. See references for individual vulnerability details.

References

Affected packages

CleanStart / pulumi-kubernetes-operator

Package

Name
pulumi-kubernetes-operator

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.16.0-r0

Database specific

source
"https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2026/CLEANSTART-2026-CK42797.json"