CLEANSTART-2026-QV77143

See a problem?
Import Source
https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2026/CLEANSTART-2026-QV77143.json
JSON Data
https://api.test.osv.dev/v1/vulns/CLEANSTART-2026-QV77143
Upstream
  • ghsa-37cx-329c-33x3
  • ghsa-3xc5-wrhm-f963
  • ghsa-497x-rrr9-68jp
  • ghsa-6g7g-w4f8-9c9x
  • ghsa-fw7p-63qq-7hpr
  • ghsa-w8rr-5gcm-pp58
  • ghsa-xmrv-pmrh-hhx2
Published
2026-05-18T13:54:01.461091Z
Modified
2026-05-21T10:30:08.399755109Z
Summary
Security fixes for CVE-2026-21726, CVE-2026-24051, CVE-2026-25934, CVE-2026-26958, CVE-2026-32287, CVE-2026-33186, CVE-2026-34040, CVE-2026-39882, ghsa-37cx-329c-33x3, ghsa-3xc5-wrhm-f963, ghsa-497x-rrr9-68jp, ghsa-6g7g-w4f8-9c9x, ghsa-fw7p-63qq-7hpr, ghsa-w8rr-5gcm-pp58, ghsa-xmrv-pmrh-hhx2 applied in versions: 1.13.2-r0, 1.14.1-r0, 1.15.1-r1
Details

Multiple security vulnerabilities affect the grafana-alloy package. These issues are resolved in later releases. See references for individual vulnerability details.

References

Affected packages

CleanStart / grafana-alloy

Package

Name
grafana-alloy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.15.1-r1

Database specific

source
"https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2026/CLEANSTART-2026-QV77143.json"