CLEANSTART-2024-SY26301

See a problem?
Import Source
https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2024/CLEANSTART-2024-SY26301.json
JSON Data
https://api.test.osv.dev/v1/vulns/CLEANSTART-2024-SY26301
Upstream
Published
2026-09-30T19:16:36Z
Modified
2026-10-01T03:30:07Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
Package jose aims to provide an implementation of the Javascript Object Signing and Encryption set of standards
Details

Security vulnerability affects the buildah package. Package jose aims to provide an implementation of the Javascript Object Signing and Encryption set of standards.

References

Affected packages

CleanStart / buildah

Package

Name
buildah

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
1.35.4-r0

Database specific

source
"https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2024/CLEANSTART-2024-SY26301.json"