CLEANSTART-2026-HH87643

See a problem?
Import Source
https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2026/CLEANSTART-2026-HH87643.json
JSON Data
https://api.osv.dev/v1/vulns/CLEANSTART-2026-HH87643
Upstream
  • ghsa-2gh3-rmm4-6rq5
  • ghsa-394x-vwmw-crm3
  • ghsa-434x-w66g-qw3r
  • ghsa-65p9-r9h6-22vj
  • ghsa-9f94-5g5w-gf6r
  • ghsa-hfpc-8r3f-gw53
  • ghsa-r6v5-fh4h-64xc
  • ghsa-rhfx-m35p-ff5j
  • ghsa-vw5v-4f2q-w9xf
  • ghsa-xwfj-jgwm-7wp5
Published
2026-04-01T09:22:32.645637Z
Modified
2026-04-01T18:48:50.405625Z
Summary
Security fixes for CVE-2026-4428, ghsa-2gh3-rmm4-6rq5, ghsa-394x-vwmw-crm3, ghsa-434x-w66g-qw3r, ghsa-65p9-r9h6-22vj, ghsa-9f94-5g5w-gf6r, ghsa-hfpc-8r3f-gw53, ghsa-r6v5-fh4h-64xc, ghsa-rhfx-m35p-ff5j, ghsa-vw5v-4f2q-w9xf, ghsa-xwfj-jgwm-7wp5 applied in versions: 1.26.8-r0, 1.26.8-r1
Details

Multiple security vulnerabilities affect the ztunnel-fips package. These issues are resolved in later releases. See references for individual vulnerability details.

References

Affected packages

CleanStart / ztunnel-fips

Package

Name
ztunnel-fips

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.26.8-r1

Database specific

source
"https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2026/CLEANSTART-2026-HH87643.json"