CLEANSTART-2026-WY21381

See a problem?
Import Source
https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2026/CLEANSTART-2026-WY21381.json
JSON Data
https://api.osv.dev/v1/vulns/CLEANSTART-2026-WY21381
Upstream
  • CVE-2026-27145
  • CVE-2026-33815
  • CVE-2026-39824
  • CVE-2026-42504
  • CVE-2026-42507
  • ghsa-389r-gv7p-r3rp
  • ghsa-3xc5-wrhm-f963
  • ghsa-78h2-9frx-2jm8
  • ghsa-crhj-59gh-8x96
  • ghsa-fw7p-63qq-7hpr
  • ghsa-hfvc-g4fc-pqhx
  • ghsa-j88v-2chj-qfwx
  • ghsa-m3xc-h892-ggx6
  • ghsa-m7cr-m3pv-hgrp
  • ghsa-p436-gjf2-799p
  • ghsa-qw64-3x98-g7q2
  • ghsa-w5pp-99ch-qj29
  • ghsa-w8rr-5gcm-pp58
Published
2026-07-21T07:57:57.225416Z
Modified
2026-07-23T02:00:04.267474172Z
Summary
Security fixes for CVE-2023-45288, CVE-2025-15558, CVE-2026-25680, CVE-2026-25681, CVE-2026-26958, CVE-2026-27136, CVE-2026-27145, CVE-2026-33186, CVE-2026-33811, CVE-2026-33814, CVE-2026-33815, CVE-2026-33816, CVE-2026-34986, CVE-2026-35469, CVE-2026-39817, CVE-2026-39819, CVE-2026-39820, CVE-2026-39821, CVE-2026-39823, CVE-2026-39824, CVE-2026-39825, CVE-2026-39826, CVE-2026-39827, CVE-2026-39828, CVE-2026-39829, CVE-2026-39830, CVE-2026-39831, CVE-2026-39832, CVE-2026-39833, CVE-2026-39834, CVE-2026-39835, CVE-2026-39836, CVE-2026-39882, CVE-2026-39883, CVE-2026-42499, CVE-2026-42501, CVE-2026-42502, CVE-2026-42504, CVE-2026-42506, CVE-2026-42507, CVE-2026-42508, CVE-2026-44740, CVE-2026-44973, CVE-2026-45022, CVE-2026-45570, CVE-2026-45571, CVE-2026-46595, CVE-2026-46597, CVE-2026-46598, ghsa-389r-gv7p-r3rp, ghsa-3xc5-wrhm-f963, ghsa-78h2-9frx-2jm8, ghsa-crhj-59gh-8x96, ghsa-fw7p-63qq-7hpr, ghsa-hfvc-g4fc-pqhx, ghsa-j88v-2chj-qfwx, ghsa-m3xc-h892-ggx6, ghsa-m7cr-m3pv-hgrp, ghsa-p436-gjf2-799p, ghsa-qw64-3x98-g7q2, ghsa-w5pp-99ch-qj29, ghsa-w8rr-5gcm-pp58 applied in versions: 3.7.15-r0, 4.0.1-r0, 4.0.2-r0, 4.0.3-r0, 4.0.4-r0, 4.0.4-r1, 4.0.5-r0
Details

Multiple security vulnerabilities affect the argo-workflows package. These issues are resolved in later releases. See references for individual vulnerability details.

References

Affected packages

CleanStart / argo-workflows

Package

Name
argo-workflows

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.0.5-r0

Database specific

source
"https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2026/CLEANSTART-2026-WY21381.json"