CLEANSTART-2026-EJ96468

See a problem?
Import Source
https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2026/CLEANSTART-2026-EJ96468.json
JSON Data
https://api.osv.dev/v1/vulns/CLEANSTART-2026-EJ96468
Upstream
  • ghsa-2gh3-rmm4-6rq5
  • ghsa-394x-vwmw-crm3
  • ghsa-434x-w66g-qw3r
  • ghsa-65p9-r9h6-22vj
  • ghsa-9f94-5g5w-gf6r
  • ghsa-hfpc-8r3f-gw53
  • ghsa-pwjx-qhcg-rvj4
  • ghsa-r6v5-fh4h-64xc
  • ghsa-vw5v-4f2q-w9xf
  • ghsa-xwfj-jgwm-7wp5
Published
2026-04-01T09:22:08.656529Z
Modified
2026-04-01T18:48:47.607736Z
Summary
Security fixes for ghsa-2gh3-rmm4-6rq5, ghsa-394x-vwmw-crm3, ghsa-434x-w66g-qw3r, ghsa-65p9-r9h6-22vj, ghsa-9f94-5g5w-gf6r, ghsa-hfpc-8r3f-gw53, ghsa-pwjx-qhcg-rvj4, ghsa-r6v5-fh4h-64xc, ghsa-vw5v-4f2q-w9xf, ghsa-xwfj-jgwm-7wp5 applied in versions: 1.28.2-r0, 1.28.4-r0, 1.28.4-r1, 1.28.5-r0
Details

Multiple security vulnerabilities affect the ztunnel-fips package. These issues are resolved in later releases. See references for individual vulnerability details.

References

Affected packages

CleanStart / ztunnel-fips

Package

Name
ztunnel-fips

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.28.5-r0

Database specific

source
"https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2026/CLEANSTART-2026-EJ96468.json"