CLEANSTART-2026-VT65447

See a problem?
Import Source
https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2026/CLEANSTART-2026-VT65447.json
JSON Data
https://api.osv.dev/v1/vulns/CLEANSTART-2026-VT65447
Upstream
  • CVE-2026-21726
  • CVE-2026-32281
  • CVE-2026-32283
  • CVE-2026-32287
  • CVE-2026-33810
  • CVE-2026-34986
  • CVE-2026-39882
  • CVE-2026-39883
  • CVE-2026-41506
  • CVE-2026-41602
  • ghsa-37cx-329c-33x3
  • ghsa-3xc5-wrhm-f963
  • ghsa-497x-rrr9-68jp
  • ghsa-6g7g-w4f8-9c9x
  • ghsa-fw7p-63qq-7hpr
  • ghsa-w8rr-5gcm-pp58
  • ghsa-wf45-q9ch-q8gh
  • ghsa-xmrv-pmrh-hhx2
Published
2026-05-18T13:28:24.387649Z
Modified
2026-05-20T18:15:22.595755586Z
Summary
Security fixes for CVE-2025-11579, CVE-2026-21726, CVE-2026-24051, CVE-2026-25934, CVE-2026-26958, CVE-2026-32281, CVE-2026-32283, CVE-2026-32287, CVE-2026-33186, CVE-2026-33762, CVE-2026-33810, CVE-2026-34040, CVE-2026-34165, CVE-2026-34986, CVE-2026-39882, CVE-2026-39883, CVE-2026-41506, CVE-2026-41602, ghsa-37cx-329c-33x3, ghsa-3xc5-wrhm-f963, ghsa-497x-rrr9-68jp, ghsa-6g7g-w4f8-9c9x, ghsa-fw7p-63qq-7hpr, ghsa-w8rr-5gcm-pp58, ghsa-wf45-q9ch-q8gh, ghsa-xmrv-pmrh-hhx2 applied in versions: 1.13.2-r0, 1.14.1-r0, 1.14.2-r0, 1.14.2-r1, 1.15.1-r1, 1.16.0-r0
Details

Multiple security vulnerabilities affect the grafana-alloy package. These issues are resolved in later releases. See references for individual vulnerability details.

References

Affected packages

CleanStart / grafana-alloy

Package

Name
grafana-alloy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.16.0-r0

Database specific

source
"https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2026/CLEANSTART-2026-VT65447.json"