CLEANSTART-2026-GE08280

See a problem?
Import Source
https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2026/CLEANSTART-2026-GE08280.json
JSON Data
https://api.test.osv.dev/v1/vulns/CLEANSTART-2026-GE08280
Upstream
  • CVE-2025-67130
  • ghsa-22h5-pq3x-2gf2
  • ghsa-2xgq-q749-89fq
  • ghsa-3m6g-2423-7cp3
  • ghsa-4cx2-fc23-5wg6
  • ghsa-6xw4-3v39-52mm
  • ghsa-72qj-48g4-5xgx
  • ghsa-c2f4-jgmc-q2r5
  • ghsa-gh9q-2xrm-x6qv
  • ghsa-j288-q9x7-2f5v
  • ghsa-j4pr-3wm6-xx2r
  • ghsa-mhwm-jh88-3gjf
  • ghsa-mr3q-g2mv-mr4q
  • ghsa-mxw3-3hh2-x2mh
  • ghsa-p543-xpfm-54cp
  • ghsa-vc5p-v9hr-52mj
  • ghsa-vqg5-3255-v292
  • ghsa-w9pc-fmgc-vxvw
  • ghsa-whrj-4476-wvmp
  • ghsa-wpv5-97wm-hp9c
Published
2026-04-09T01:01:38.909372Z
Modified
2026-04-09T11:17:23.618322Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
Ruby JSON is a JSON implementation for Ruby
Details

Multiple security vulnerabilities affect the logstash-fips package. Ruby JSON is a JSON implementation for Ruby. See references for individual vulnerability details.

References

Affected packages

CleanStart / logstash-fips

Package

Name
logstash-fips

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.2.6-r2

Database specific

source
"https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2026/CLEANSTART-2026-GE08280.json"