CLEANSTART-2026-KW90815

See a problem?
Import Source
https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2026/CLEANSTART-2026-KW90815.json
JSON Data
https://api.osv.dev/v1/vulns/CLEANSTART-2026-KW90815
Upstream
  • ghsa-2gh3-rmm4-6rq5
  • ghsa-394x-vwmw-crm3
  • ghsa-434x-w66g-qw3r
  • ghsa-65p9-r9h6-22vj
  • ghsa-9f94-5g5w-gf6r
  • ghsa-hfpc-8r3f-gw53
  • ghsa-r6v5-fh4h-64xc
  • ghsa-rhfx-m35p-ff5j
  • ghsa-vw5v-4f2q-w9xf
  • ghsa-xwfj-jgwm-7wp5
Published
2026-04-01T09:22:32.438088Z
Modified
2026-04-01T18:48:57.570163Z
Summary
Security fixes for CVE-2026-4428, ghsa-2gh3-rmm4-6rq5, ghsa-394x-vwmw-crm3, ghsa-434x-w66g-qw3r, ghsa-65p9-r9h6-22vj, ghsa-9f94-5g5w-gf6r, ghsa-hfpc-8r3f-gw53, ghsa-r6v5-fh4h-64xc, ghsa-rhfx-m35p-ff5j, ghsa-vw5v-4f2q-w9xf, ghsa-xwfj-jgwm-7wp5 applied in versions: 1.27.5-r1, 1.27.6-r0, 1.27.6-r1, 1.27.8-r0
Details

Multiple security vulnerabilities affect the ztunnel-fips package. These issues are resolved in later releases. See references for individual vulnerability details.

References

Affected packages

CleanStart / ztunnel-fips

Package

Name
ztunnel-fips

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.27.8-r0

Database specific

source
"https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2026/CLEANSTART-2026-KW90815.json"