These are all security issues fixed in the cosign-1.5.2-1.1 package on the GA media of openSUSE Tumbleweed.
{ "binaries": [ { "cosign": "1.5.2-1.1" } ] }