CLEANSTART-2026-ML41879

See a problem?
Import Source
https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2026/CLEANSTART-2026-ML41879.json
JSON Data
https://api.osv.dev/v1/vulns/CLEANSTART-2026-ML41879
Upstream
  • CVE-2026-32287
  • ghsa-37cx-329c-33x3
  • ghsa-6g7g-w4f8-9c9x
  • ghsa-fw7p-63qq-7hpr
Published
2026-04-06T02:45:36.057138Z
Modified
2026-04-06T05:46:06.685720Z
Summary
Security fixes for CVE-2026-1229, CVE-2026-24051, CVE-2026-25934, CVE-2026-26958, CVE-2026-32287, CVE-2026-33186, CVE-2026-33762, CVE-2026-34165, ghsa-37cx-329c-33x3, ghsa-6g7g-w4f8-9c9x, ghsa-fw7p-63qq-7hpr applied in versions: 1.13.2-r0, 1.14.0-r0, 1.14.0-r1, 1.14.1-r0
Details

Multiple security vulnerabilities affect the grafana-alloy package. These issues are resolved in later releases. See references for individual vulnerability details.

References

Affected packages

CleanStart / grafana-alloy

Package

Name
grafana-alloy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.14.1-r0

Database specific

source
"https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2026/CLEANSTART-2026-ML41879.json"