diff --git a/advisories/BREW-esphome-CVE-2015-5237.json b/advisories/BREW-esphome-CVE-2015-5237.json index b114d8d3e0..ffbd3219ad 100644 --- a/advisories/BREW-esphome-CVE-2015-5237.json +++ b/advisories/BREW-esphome-CVE-2015-5237.json @@ -2,7 +2,7 @@ "schema_version": "1.7.3", "id": "BREW-esphome-CVE-2015-5237", "published": "2026-08-13T16:45:08Z", - "modified": "2026-08-13T16:45:08Z", + "modified": "2026-08-25T08:50:08Z", "upstream": [ "GHSA-jwvw-v7c5-m82h", "CVE-2015-5237", @@ -33,7 +33,7 @@ "range_state": "fixed", "upstream_fixed_in": "3.4.0", "resource": "protobuf", - "resource_purl": "pkg:pypi/protobuf@7.35.1" + "resource_purl": "pkg:pypi/protobuf@7.36.0" } } ], @@ -46,16 +46,16 @@ "strategy": "registry", "ecosystem": "PyPI", "name": "protobuf", - "subject_version": "7.35.1", - "key": "pkg:pypi/protobuf@7.35.1", + "subject_version": "7.36.0", + "key": "pkg:pypi/protobuf@7.36.0", "resource": "protobuf" }, { "strategy": "registry", "ecosystem": "PyPI", "name": "protobuf", - "subject_version": "7.35.1", - "key": "pkg:pypi/protobuf@7.35.1", + "subject_version": "7.36.0", + "key": "pkg:pypi/protobuf@7.36.0", "resource": "protobuf" } ] diff --git a/advisories/BREW-esphome-CVE-2021-22570.json b/advisories/BREW-esphome-CVE-2021-22570.json index 8c52b89ffe..21aeb7b27e 100644 --- a/advisories/BREW-esphome-CVE-2021-22570.json +++ b/advisories/BREW-esphome-CVE-2021-22570.json @@ -2,7 +2,7 @@ "schema_version": "1.7.3", "id": "BREW-esphome-CVE-2021-22570", "published": "2026-08-13T16:45:08Z", - "modified": "2026-08-13T16:45:08Z", + "modified": "2026-08-25T08:50:08Z", "upstream": [ "PYSEC-2022-48", "CVE-2021-22570", @@ -33,7 +33,7 @@ "range_state": "fixed", "upstream_fixed_in": "3.15.0", "resource": "protobuf", - "resource_purl": "pkg:pypi/protobuf@7.35.1" + "resource_purl": "pkg:pypi/protobuf@7.36.0" } } ], @@ -46,8 +46,8 @@ "strategy": "registry", "ecosystem": "PyPI", "name": "protobuf", - "subject_version": "7.35.1", - "key": "pkg:pypi/protobuf@7.35.1", + "subject_version": "7.36.0", + "key": "pkg:pypi/protobuf@7.36.0", "resource": "protobuf" } ] diff --git a/advisories/BREW-esphome-CVE-2021-41104.json b/advisories/BREW-esphome-CVE-2021-41104.json index 1dcc2a6116..b82e92264f 100644 --- a/advisories/BREW-esphome-CVE-2021-41104.json +++ b/advisories/BREW-esphome-CVE-2021-41104.json @@ -2,7 +2,7 @@ "schema_version": "1.7.3", "id": "BREW-esphome-CVE-2021-41104", "published": "2026-08-13T16:45:08Z", - "modified": "2026-08-23T20:39:53Z", + "modified": "2026-08-25T08:50:08Z", "upstream": [ "PYSEC-2021-351", "CVE-2021-41104", @@ -44,22 +44,22 @@ "strategy": "git", "ecosystem": "GIT", "name": "https://github.com/esphome/esphome", - "subject_version": "2026.8.0", + "subject_version": "2026.8.1", "key": "https://github.com/esphome/esphome" }, { "strategy": "registry", "ecosystem": "PyPI", "name": "esphome", - "subject_version": "2026.8.0", - "key": "pkg:pypi/esphome@2026.8.0" + "subject_version": "2026.8.1", + "key": "pkg:pypi/esphome@2026.8.1" }, { "strategy": "registry", "ecosystem": "PyPI", "name": "esphome", - "subject_version": "2026.8.0", - "key": "pkg:pypi/esphome@2026.8.0" + "subject_version": "2026.8.1", + "key": "pkg:pypi/esphome@2026.8.1" } ] }, diff --git a/advisories/BREW-esphome-CVE-2022-1941.json b/advisories/BREW-esphome-CVE-2022-1941.json index 614e4bed1d..68b1d8a724 100644 --- a/advisories/BREW-esphome-CVE-2022-1941.json +++ b/advisories/BREW-esphome-CVE-2022-1941.json @@ -2,7 +2,7 @@ "schema_version": "1.7.3", "id": "BREW-esphome-CVE-2022-1941", "published": "2026-08-13T16:45:08Z", - "modified": "2026-08-13T16:45:08Z", + "modified": "2026-08-25T08:50:08Z", "upstream": [ "GHSA-8gq9-2x98-w8hf", "CVE-2022-1941", @@ -33,7 +33,7 @@ "range_state": "fixed", "upstream_fixed_in": "4.21.6", "resource": "protobuf", - "resource_purl": "pkg:pypi/protobuf@7.35.1" + "resource_purl": "pkg:pypi/protobuf@7.36.0" } } ], @@ -46,16 +46,16 @@ "strategy": "registry", "ecosystem": "PyPI", "name": "protobuf", - "subject_version": "7.35.1", - "key": "pkg:pypi/protobuf@7.35.1", + "subject_version": "7.36.0", + "key": "pkg:pypi/protobuf@7.36.0", "resource": "protobuf" }, { "strategy": "registry", "ecosystem": "PyPI", "name": "protobuf", - "subject_version": "7.35.1", - "key": "pkg:pypi/protobuf@7.35.1", + "subject_version": "7.36.0", + "key": "pkg:pypi/protobuf@7.36.0", "resource": "protobuf" } ] diff --git a/advisories/BREW-esphome-CVE-2024-27081.json b/advisories/BREW-esphome-CVE-2024-27081.json index 32ee3945a3..645cabc6cc 100644 --- a/advisories/BREW-esphome-CVE-2024-27081.json +++ b/advisories/BREW-esphome-CVE-2024-27081.json @@ -2,7 +2,7 @@ "schema_version": "1.7.3", "id": "BREW-esphome-CVE-2024-27081", "published": "2026-08-13T16:45:08Z", - "modified": "2026-08-23T20:39:53Z", + "modified": "2026-08-25T08:50:08Z", "upstream": [ "CVE-2024-27081", "GHSA-8p25-3q46-8q2p", @@ -44,22 +44,22 @@ "strategy": "git", "ecosystem": "GIT", "name": "https://github.com/esphome/esphome", - "subject_version": "2026.8.0", + "subject_version": "2026.8.1", "key": "https://github.com/esphome/esphome" }, { "strategy": "registry", "ecosystem": "PyPI", "name": "esphome", - "subject_version": "2026.8.0", - "key": "pkg:pypi/esphome@2026.8.0" + "subject_version": "2026.8.1", + "key": "pkg:pypi/esphome@2026.8.1" }, { "strategy": "registry", "ecosystem": "PyPI", "name": "esphome", - "subject_version": "2026.8.0", - "key": "pkg:pypi/esphome@2026.8.0" + "subject_version": "2026.8.1", + "key": "pkg:pypi/esphome@2026.8.1" } ] }, diff --git a/advisories/BREW-esphome-CVE-2024-27287.json b/advisories/BREW-esphome-CVE-2024-27287.json index 75e953cfa6..a0087d5532 100644 --- a/advisories/BREW-esphome-CVE-2024-27287.json +++ b/advisories/BREW-esphome-CVE-2024-27287.json @@ -2,7 +2,7 @@ "schema_version": "1.7.3", "id": "BREW-esphome-CVE-2024-27287", "published": "2026-08-13T16:45:08Z", - "modified": "2026-08-23T20:39:53Z", + "modified": "2026-08-25T08:50:08Z", "upstream": [ "CVE-2024-27287", "GHSA-9p43-hj5j-96h5", @@ -44,22 +44,22 @@ "strategy": "git", "ecosystem": "GIT", "name": "https://github.com/esphome/esphome", - "subject_version": "2026.8.0", + "subject_version": "2026.8.1", "key": "https://github.com/esphome/esphome" }, { "strategy": "registry", "ecosystem": "PyPI", "name": "esphome", - "subject_version": "2026.8.0", - "key": "pkg:pypi/esphome@2026.8.0" + "subject_version": "2026.8.1", + "key": "pkg:pypi/esphome@2026.8.1" }, { "strategy": "registry", "ecosystem": "PyPI", "name": "esphome", - "subject_version": "2026.8.0", - "key": "pkg:pypi/esphome@2026.8.0" + "subject_version": "2026.8.1", + "key": "pkg:pypi/esphome@2026.8.1" } ] }, diff --git a/advisories/BREW-esphome-CVE-2024-29019.json b/advisories/BREW-esphome-CVE-2024-29019.json index 941cae8210..49d98e7e3f 100644 --- a/advisories/BREW-esphome-CVE-2024-29019.json +++ b/advisories/BREW-esphome-CVE-2024-29019.json @@ -2,7 +2,7 @@ "schema_version": "1.7.3", "id": "BREW-esphome-CVE-2024-29019", "published": "2026-08-13T16:45:08Z", - "modified": "2026-08-23T20:39:53Z", + "modified": "2026-08-25T08:50:08Z", "upstream": [ "CVE-2024-29019", "GHSA-5925-88xh-6h99", @@ -44,22 +44,22 @@ "strategy": "git", "ecosystem": "GIT", "name": "https://github.com/esphome/esphome", - "subject_version": "2026.8.0", + "subject_version": "2026.8.1", "key": "https://github.com/esphome/esphome" }, { "strategy": "registry", "ecosystem": "PyPI", "name": "esphome", - "subject_version": "2026.8.0", - "key": "pkg:pypi/esphome@2026.8.0" + "subject_version": "2026.8.1", + "key": "pkg:pypi/esphome@2026.8.1" }, { "strategy": "registry", "ecosystem": "PyPI", "name": "esphome", - "subject_version": "2026.8.0", - "key": "pkg:pypi/esphome@2026.8.0" + "subject_version": "2026.8.1", + "key": "pkg:pypi/esphome@2026.8.1" } ] }, diff --git a/advisories/BREW-esphome-CVE-2025-4565.json b/advisories/BREW-esphome-CVE-2025-4565.json index fa6d13f411..047b5e8590 100644 --- a/advisories/BREW-esphome-CVE-2025-4565.json +++ b/advisories/BREW-esphome-CVE-2025-4565.json @@ -2,7 +2,7 @@ "schema_version": "1.7.3", "id": "BREW-esphome-CVE-2025-4565", "published": "2026-08-13T16:45:08Z", - "modified": "2026-08-13T16:45:08Z", + "modified": "2026-08-25T08:50:08Z", "upstream": [ "GHSA-8qvm-5x2c-j2w7", "CVE-2025-4565", @@ -33,7 +33,7 @@ "range_state": "fixed", "upstream_fixed_in": "6.31.1", "resource": "protobuf", - "resource_purl": "pkg:pypi/protobuf@7.35.1" + "resource_purl": "pkg:pypi/protobuf@7.36.0" } } ], @@ -46,16 +46,16 @@ "strategy": "registry", "ecosystem": "PyPI", "name": "protobuf", - "subject_version": "7.35.1", - "key": "pkg:pypi/protobuf@7.35.1", + "subject_version": "7.36.0", + "key": "pkg:pypi/protobuf@7.36.0", "resource": "protobuf" }, { "strategy": "registry", "ecosystem": "PyPI", "name": "protobuf", - "subject_version": "7.35.1", - "key": "pkg:pypi/protobuf@7.35.1", + "subject_version": "7.36.0", + "key": "pkg:pypi/protobuf@7.36.0", "resource": "protobuf" } ] diff --git a/advisories/BREW-esphome-CVE-2025-57808.json b/advisories/BREW-esphome-CVE-2025-57808.json index fe61aecc41..072b7607ed 100644 --- a/advisories/BREW-esphome-CVE-2025-57808.json +++ b/advisories/BREW-esphome-CVE-2025-57808.json @@ -2,7 +2,7 @@ "schema_version": "1.7.3", "id": "BREW-esphome-CVE-2025-57808", "published": "2026-08-13T16:45:08Z", - "modified": "2026-08-23T20:39:53Z", + "modified": "2026-08-25T08:50:08Z", "upstream": [ "CVE-2025-57808", "GHSA-mxh2-ccgj-8635", @@ -44,22 +44,22 @@ "strategy": "git", "ecosystem": "GIT", "name": "https://github.com/esphome/esphome", - "subject_version": "2026.8.0", + "subject_version": "2026.8.1", "key": "https://github.com/esphome/esphome" }, { "strategy": "registry", "ecosystem": "PyPI", "name": "esphome", - "subject_version": "2026.8.0", - "key": "pkg:pypi/esphome@2026.8.0" + "subject_version": "2026.8.1", + "key": "pkg:pypi/esphome@2026.8.1" }, { "strategy": "registry", "ecosystem": "PyPI", "name": "esphome", - "subject_version": "2026.8.0", - "key": "pkg:pypi/esphome@2026.8.0" + "subject_version": "2026.8.1", + "key": "pkg:pypi/esphome@2026.8.1" } ] }, diff --git a/advisories/BREW-esphome-CVE-2026-0994.json b/advisories/BREW-esphome-CVE-2026-0994.json index d851284533..09ab508dd8 100644 --- a/advisories/BREW-esphome-CVE-2026-0994.json +++ b/advisories/BREW-esphome-CVE-2026-0994.json @@ -2,7 +2,7 @@ "schema_version": "1.7.3", "id": "BREW-esphome-CVE-2026-0994", "published": "2026-08-13T16:45:08Z", - "modified": "2026-08-13T16:45:08Z", + "modified": "2026-08-25T08:50:08Z", "upstream": [ "GHSA-7gcm-g887-7qv7", "CVE-2026-0994", @@ -33,7 +33,7 @@ "range_state": "fixed", "upstream_fixed_in": "6.33.5", "resource": "protobuf", - "resource_purl": "pkg:pypi/protobuf@7.35.1" + "resource_purl": "pkg:pypi/protobuf@7.36.0" } } ], @@ -46,16 +46,16 @@ "strategy": "registry", "ecosystem": "PyPI", "name": "protobuf", - "subject_version": "7.35.1", - "key": "pkg:pypi/protobuf@7.35.1", + "subject_version": "7.36.0", + "key": "pkg:pypi/protobuf@7.36.0", "resource": "protobuf" }, { "strategy": "registry", "ecosystem": "PyPI", "name": "protobuf", - "subject_version": "7.35.1", - "key": "pkg:pypi/protobuf@7.35.1", + "subject_version": "7.36.0", + "key": "pkg:pypi/protobuf@7.36.0", "resource": "protobuf" } ] diff --git a/advisories/BREW-esphome-CVE-2026-23833.json b/advisories/BREW-esphome-CVE-2026-23833.json index 1b736a0729..3af330e759 100644 --- a/advisories/BREW-esphome-CVE-2026-23833.json +++ b/advisories/BREW-esphome-CVE-2026-23833.json @@ -2,7 +2,7 @@ "schema_version": "1.7.3", "id": "BREW-esphome-CVE-2026-23833", "published": "2026-08-13T16:45:08Z", - "modified": "2026-08-23T20:39:53Z", + "modified": "2026-08-25T08:50:08Z", "upstream": [ "CVE-2026-23833", "GHSA-4h3h-63v6-88qx", @@ -44,22 +44,22 @@ "strategy": "git", "ecosystem": "GIT", "name": "https://github.com/esphome/esphome", - "subject_version": "2026.8.0", + "subject_version": "2026.8.1", "key": "https://github.com/esphome/esphome" }, { "strategy": "registry", "ecosystem": "PyPI", "name": "esphome", - "subject_version": "2026.8.0", - "key": "pkg:pypi/esphome@2026.8.0" + "subject_version": "2026.8.1", + "key": "pkg:pypi/esphome@2026.8.1" }, { "strategy": "registry", "ecosystem": "PyPI", "name": "esphome", - "subject_version": "2026.8.0", - "key": "pkg:pypi/esphome@2026.8.0" + "subject_version": "2026.8.1", + "key": "pkg:pypi/esphome@2026.8.1" } ] }, diff --git a/advisories/BREW-mcp-remote-CVE-2025-6514.json b/advisories/BREW-mcp-remote-CVE-2025-6514.json index a12b74179f..48a6ef9cdd 100644 --- a/advisories/BREW-mcp-remote-CVE-2025-6514.json +++ b/advisories/BREW-mcp-remote-CVE-2025-6514.json @@ -2,7 +2,7 @@ "schema_version": "1.7.3", "id": "BREW-mcp-remote-CVE-2025-6514", "published": "2026-08-13T17:13:13Z", - "modified": "2026-08-23T21:06:09Z", + "modified": "2026-08-25T09:17:06Z", "upstream": [ "CVE-2025-6514", "GHSA-6xpm-ggf7-wc3p" @@ -43,15 +43,15 @@ "strategy": "git", "ecosystem": "GIT", "name": "https://github.com/geelen/mcp-remote", - "subject_version": "0.1.43", + "subject_version": "0.1.49", "key": "https://github.com/geelen/mcp-remote" }, { "strategy": "registry", "ecosystem": "npm", "name": "mcp-remote", - "subject_version": "0.1.43", - "key": "pkg:npm/mcp-remote@0.1.43" + "subject_version": "0.1.49", + "key": "pkg:npm/mcp-remote@0.1.49" } ] }, diff --git a/advisories/BREW-openclaw-cli-CVE-2026-53830.json b/advisories/BREW-openclaw-cli-CVE-2026-53830.json index b536ab4175..879534ff02 100644 --- a/advisories/BREW-openclaw-cli-CVE-2026-53830.json +++ b/advisories/BREW-openclaw-cli-CVE-2026-53830.json @@ -2,7 +2,7 @@ "schema_version": "1.7.3", "id": "BREW-openclaw-cli-CVE-2026-53830", "published": "2026-08-13T17:21:32Z", - "modified": "2026-08-13T17:21:32Z", + "modified": "2026-08-25T09:26:00Z", "upstream": [ "GHSA-275c-xpvc-jgfw", "CVE-2026-53830" @@ -51,9 +51,13 @@ "summary": "OpenClaw: Slack and Zalo webhook secrets could remain active after secrets.reload", "details": "### Summary\n\nSlack and Zalo webhook secrets could remain active after secrets.reload. In affected versions, a caller with an old webhook secret during the stale-secret window could keep accepting the previous secret after `secrets.reload`.\n\nThis advisory is scoped to the named feature and configuration. It does not change OpenClaw's trusted-operator model: authenticated Gateway operators, installed plugins, and intentional local execution surfaces remain trusted unless a separate policy, approval, allowlist, sandbox, or auth boundary is crossed.\n\n### Impact\n\nWhen the affected feature is enabled and reachable, this could deliver webhook events briefly after the operator expected revocation. Practical impact depends on the operator's configuration and whether lower-trust input can reach that path.\n\n### Patched Versions\n\nThe first stable patched version is `2026.4.22`.\n\n### Mitigations\n\nrestart the affected channel runtime after rotating webhook secrets until patched. As general hardening, keep channel and tool allowlists narrow, avoid sharing one Gateway between mutually untrusted users, and disable the affected feature when it is not needed.", "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" + }, { "type": "CVSS_V4", - "score": "CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N" + "score": "CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N" } ], "references": [ @@ -61,9 +65,17 @@ "type": "WEB", "url": "https://github.com/openclaw/openclaw/security/advisories/GHSA-275c-xpvc-jgfw" }, + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-53830" + }, { "type": "PACKAGE", "url": "https://github.com/openclaw/openclaw" + }, + { + "type": "WEB", + "url": "https://www.vulncheck.com/advisories/openclaw-webhook-secret-revocation-bypass-via-secrets-reload" } ] } diff --git a/advisories/BREW-payara-CVE-2022-45129.json b/advisories/BREW-payara-CVE-2022-45129.json index 897cf4620a..22ff17685e 100644 --- a/advisories/BREW-payara-CVE-2022-45129.json +++ b/advisories/BREW-payara-CVE-2022-45129.json @@ -2,7 +2,7 @@ "schema_version": "1.7.3", "id": "BREW-payara-CVE-2022-45129", "published": "2026-08-13T17:25:34Z", - "modified": "2026-08-13T17:25:34Z", + "modified": "2026-08-25T09:28:55Z", "upstream": [ "GHSA-q35w-85pq-rv3x", "CVE-2022-45129" @@ -43,8 +43,8 @@ "strategy": "registry", "ecosystem": "Maven", "name": "fish.payara.distributions:payara", - "subject_version": "7.2026.7", - "key": "pkg:maven/fish.payara.distributions/payara@7.2026.7" + "subject_version": "7.2026.8", + "key": "pkg:maven/fish.payara.distributions/payara@7.2026.8" } ] }, diff --git a/advisories/BREW-renovate-CVE-2024-58376.json b/advisories/BREW-renovate-CVE-2024-58376.json index 41fec31596..e4745d66ea 100644 --- a/advisories/BREW-renovate-CVE-2024-58376.json +++ b/advisories/BREW-renovate-CVE-2024-58376.json @@ -2,7 +2,7 @@ "schema_version": "1.7.3", "id": "BREW-renovate-CVE-2024-58376", "published": "2026-08-20T09:37:20Z", - "modified": "2026-08-23T21:33:54Z", + "modified": "2026-08-25T09:36:58Z", "upstream": [ "CVE-2024-58376", "GHSA-rqgv-292v-5qgr" @@ -43,15 +43,15 @@ "strategy": "git", "ecosystem": "GIT", "name": "https://github.com/renovatebot/renovate", - "subject_version": "44.39.0", + "subject_version": "44.41.0", "key": "https://github.com/renovatebot/renovate" }, { "strategy": "registry", "ecosystem": "npm", "name": "renovate", - "subject_version": "44.39.0", - "key": "pkg:npm/renovate@44.39.0" + "subject_version": "44.41.0", + "key": "pkg:npm/renovate@44.41.0" } ] }, diff --git a/advisories/BREW-renovate-CVE-2026-76226.json b/advisories/BREW-renovate-CVE-2026-76226.json index 68eccb11ba..f2e12267c6 100644 --- a/advisories/BREW-renovate-CVE-2026-76226.json +++ b/advisories/BREW-renovate-CVE-2026-76226.json @@ -2,7 +2,7 @@ "schema_version": "1.7.3", "id": "BREW-renovate-CVE-2026-76226", "published": "2026-08-20T09:37:20Z", - "modified": "2026-08-23T21:33:54Z", + "modified": "2026-08-25T09:36:58Z", "upstream": [ "CVE-2026-76226", "GHSA-5vjq-5jmg-39xq" @@ -43,15 +43,15 @@ "strategy": "git", "ecosystem": "GIT", "name": "https://github.com/renovatebot/renovate", - "subject_version": "44.39.0", + "subject_version": "44.41.0", "key": "https://github.com/renovatebot/renovate" }, { "strategy": "registry", "ecosystem": "npm", "name": "renovate", - "subject_version": "44.39.0", - "key": "pkg:npm/renovate@44.39.0" + "subject_version": "44.41.0", + "key": "pkg:npm/renovate@44.41.0" } ] }, diff --git a/advisories/BREW-renovate-CVE-2026-76227.json b/advisories/BREW-renovate-CVE-2026-76227.json index f85e5c1777..6ab93f8cc6 100644 --- a/advisories/BREW-renovate-CVE-2026-76227.json +++ b/advisories/BREW-renovate-CVE-2026-76227.json @@ -2,7 +2,7 @@ "schema_version": "1.7.3", "id": "BREW-renovate-CVE-2026-76227", "published": "2026-08-20T09:37:20Z", - "modified": "2026-08-23T21:33:54Z", + "modified": "2026-08-25T09:36:58Z", "upstream": [ "CVE-2026-76227", "GHSA-8wc6-vgrq-x6cf" @@ -43,15 +43,15 @@ "strategy": "git", "ecosystem": "GIT", "name": "https://github.com/renovatebot/renovate", - "subject_version": "44.39.0", + "subject_version": "44.41.0", "key": "https://github.com/renovatebot/renovate" }, { "strategy": "registry", "ecosystem": "npm", "name": "renovate", - "subject_version": "44.39.0", - "key": "pkg:npm/renovate@44.39.0" + "subject_version": "44.41.0", + "key": "pkg:npm/renovate@44.41.0" } ] }, diff --git a/advisories/BREW-renovate-CVE-2026-76228.json b/advisories/BREW-renovate-CVE-2026-76228.json index 7c773bd597..3ef344b38b 100644 --- a/advisories/BREW-renovate-CVE-2026-76228.json +++ b/advisories/BREW-renovate-CVE-2026-76228.json @@ -2,7 +2,7 @@ "schema_version": "1.7.3", "id": "BREW-renovate-CVE-2026-76228", "published": "2026-08-20T09:37:20Z", - "modified": "2026-08-23T21:33:54Z", + "modified": "2026-08-25T09:36:58Z", "upstream": [ "CVE-2026-76228", "GHSA-pfq2-hh62-7m96" @@ -43,15 +43,15 @@ "strategy": "git", "ecosystem": "GIT", "name": "https://github.com/renovatebot/renovate", - "subject_version": "44.39.0", + "subject_version": "44.41.0", "key": "https://github.com/renovatebot/renovate" }, { "strategy": "registry", "ecosystem": "npm", "name": "renovate", - "subject_version": "44.39.0", - "key": "pkg:npm/renovate@44.39.0" + "subject_version": "44.41.0", + "key": "pkg:npm/renovate@44.41.0" } ] }, diff --git a/advisories/BREW-renovate-CVE-2026-76229.json b/advisories/BREW-renovate-CVE-2026-76229.json index 9e820b1491..91e68be431 100644 --- a/advisories/BREW-renovate-CVE-2026-76229.json +++ b/advisories/BREW-renovate-CVE-2026-76229.json @@ -2,7 +2,7 @@ "schema_version": "1.7.3", "id": "BREW-renovate-CVE-2026-76229", "published": "2026-08-20T09:37:20Z", - "modified": "2026-08-23T21:33:54Z", + "modified": "2026-08-25T09:36:58Z", "upstream": [ "CVE-2026-76229", "GHSA-xv56-3wq5-9997" @@ -43,15 +43,15 @@ "strategy": "git", "ecosystem": "GIT", "name": "https://github.com/renovatebot/renovate", - "subject_version": "44.39.0", + "subject_version": "44.41.0", "key": "https://github.com/renovatebot/renovate" }, { "strategy": "registry", "ecosystem": "npm", "name": "renovate", - "subject_version": "44.39.0", - "key": "pkg:npm/renovate@44.39.0" + "subject_version": "44.41.0", + "key": "pkg:npm/renovate@44.41.0" } ] }, diff --git a/advisories/BREW-renovate-CVE-2026-76230.json b/advisories/BREW-renovate-CVE-2026-76230.json index d2b2500e20..c9ffb472ac 100644 --- a/advisories/BREW-renovate-CVE-2026-76230.json +++ b/advisories/BREW-renovate-CVE-2026-76230.json @@ -2,7 +2,7 @@ "schema_version": "1.7.3", "id": "BREW-renovate-CVE-2026-76230", "published": "2026-08-20T09:37:20Z", - "modified": "2026-08-23T21:33:54Z", + "modified": "2026-08-25T09:36:58Z", "upstream": [ "CVE-2026-76230", "GHSA-fr4j-65pv-gjjj" @@ -43,15 +43,15 @@ "strategy": "git", "ecosystem": "GIT", "name": "https://github.com/renovatebot/renovate", - "subject_version": "44.39.0", + "subject_version": "44.41.0", "key": "https://github.com/renovatebot/renovate" }, { "strategy": "registry", "ecosystem": "npm", "name": "renovate", - "subject_version": "44.39.0", - "key": "pkg:npm/renovate@44.39.0" + "subject_version": "44.41.0", + "key": "pkg:npm/renovate@44.41.0" } ] }, diff --git a/advisories/BREW-renovate-CVE-2026-76231.json b/advisories/BREW-renovate-CVE-2026-76231.json index 6833e48e70..439a3f7286 100644 --- a/advisories/BREW-renovate-CVE-2026-76231.json +++ b/advisories/BREW-renovate-CVE-2026-76231.json @@ -2,7 +2,7 @@ "schema_version": "1.7.3", "id": "BREW-renovate-CVE-2026-76231", "published": "2026-08-20T09:37:20Z", - "modified": "2026-08-23T21:33:54Z", + "modified": "2026-08-25T09:36:58Z", "upstream": [ "CVE-2026-76231", "GHSA-36j9-mx87-2cff" @@ -43,15 +43,15 @@ "strategy": "git", "ecosystem": "GIT", "name": "https://github.com/renovatebot/renovate", - "subject_version": "44.39.0", + "subject_version": "44.41.0", "key": "https://github.com/renovatebot/renovate" }, { "strategy": "registry", "ecosystem": "npm", "name": "renovate", - "subject_version": "44.39.0", - "key": "pkg:npm/renovate@44.39.0" + "subject_version": "44.41.0", + "key": "pkg:npm/renovate@44.41.0" } ] }, diff --git a/advisories/BREW-renovate-CVE-2026-76232.json b/advisories/BREW-renovate-CVE-2026-76232.json index 3f3bb504a3..15fb235051 100644 --- a/advisories/BREW-renovate-CVE-2026-76232.json +++ b/advisories/BREW-renovate-CVE-2026-76232.json @@ -2,7 +2,7 @@ "schema_version": "1.7.3", "id": "BREW-renovate-CVE-2026-76232", "published": "2026-08-20T09:37:20Z", - "modified": "2026-08-23T21:33:54Z", + "modified": "2026-08-25T09:36:58Z", "upstream": [ "CVE-2026-76232", "GHSA-3f44-xw83-3pmg" @@ -43,15 +43,15 @@ "strategy": "git", "ecosystem": "GIT", "name": "https://github.com/renovatebot/renovate", - "subject_version": "44.39.0", + "subject_version": "44.41.0", "key": "https://github.com/renovatebot/renovate" }, { "strategy": "registry", "ecosystem": "npm", "name": "renovate", - "subject_version": "44.39.0", - "key": "pkg:npm/renovate@44.39.0" + "subject_version": "44.41.0", + "key": "pkg:npm/renovate@44.41.0" } ] }, diff --git a/advisories/BREW-renovate-CVE-2026-76233.json b/advisories/BREW-renovate-CVE-2026-76233.json index a5b6d0b574..8c78c6615a 100644 --- a/advisories/BREW-renovate-CVE-2026-76233.json +++ b/advisories/BREW-renovate-CVE-2026-76233.json @@ -2,7 +2,7 @@ "schema_version": "1.7.3", "id": "BREW-renovate-CVE-2026-76233", "published": "2026-08-20T09:37:20Z", - "modified": "2026-08-23T21:33:54Z", + "modified": "2026-08-25T09:36:58Z", "upstream": [ "CVE-2026-76233", "GHSA-xjr7-3c3g-m763" @@ -43,15 +43,15 @@ "strategy": "git", "ecosystem": "GIT", "name": "https://github.com/renovatebot/renovate", - "subject_version": "44.39.0", + "subject_version": "44.41.0", "key": "https://github.com/renovatebot/renovate" }, { "strategy": "registry", "ecosystem": "npm", "name": "renovate", - "subject_version": "44.39.0", - "key": "pkg:npm/renovate@44.39.0" + "subject_version": "44.41.0", + "key": "pkg:npm/renovate@44.41.0" } ] }, diff --git a/advisories/BREW-renovate-GHSA-36rh-ggpr-j3gj.json b/advisories/BREW-renovate-GHSA-36rh-ggpr-j3gj.json index 672b35f522..ca215227ce 100644 --- a/advisories/BREW-renovate-GHSA-36rh-ggpr-j3gj.json +++ b/advisories/BREW-renovate-GHSA-36rh-ggpr-j3gj.json @@ -2,7 +2,7 @@ "schema_version": "1.7.3", "id": "BREW-renovate-GHSA-36rh-ggpr-j3gj", "published": "2026-08-13T17:32:30Z", - "modified": "2026-08-23T21:33:54Z", + "modified": "2026-08-25T09:36:58Z", "upstream": [ "GHSA-36rh-ggpr-j3gj" ], @@ -42,8 +42,8 @@ "strategy": "registry", "ecosystem": "npm", "name": "renovate", - "subject_version": "44.39.0", - "key": "pkg:npm/renovate@44.39.0" + "subject_version": "44.41.0", + "key": "pkg:npm/renovate@44.41.0" } ] }, diff --git a/advisories/BREW-renovate-GHSA-v7x3-7hw7-pcjg.json b/advisories/BREW-renovate-GHSA-v7x3-7hw7-pcjg.json index a138927819..f809180f1d 100644 --- a/advisories/BREW-renovate-GHSA-v7x3-7hw7-pcjg.json +++ b/advisories/BREW-renovate-GHSA-v7x3-7hw7-pcjg.json @@ -2,7 +2,7 @@ "schema_version": "1.7.3", "id": "BREW-renovate-GHSA-v7x3-7hw7-pcjg", "published": "2026-08-13T17:32:30Z", - "modified": "2026-08-23T21:33:54Z", + "modified": "2026-08-25T09:36:58Z", "upstream": [ "GHSA-v7x3-7hw7-pcjg" ], @@ -42,8 +42,8 @@ "strategy": "registry", "ecosystem": "npm", "name": "renovate", - "subject_version": "44.39.0", - "key": "pkg:npm/renovate@44.39.0" + "subject_version": "44.41.0", + "key": "pkg:npm/renovate@44.41.0" } ] }, diff --git a/advisories/BREW-xonsh-CVE-2015-8557.json b/advisories/BREW-xonsh-CVE-2015-8557.json index d7a1974b77..ad16676ec4 100644 --- a/advisories/BREW-xonsh-CVE-2015-8557.json +++ b/advisories/BREW-xonsh-CVE-2015-8557.json @@ -2,7 +2,7 @@ "schema_version": "1.7.3", "id": "BREW-xonsh-CVE-2015-8557", "published": "2026-08-13T17:54:13Z", - "modified": "2026-08-13T17:54:13Z", + "modified": "2026-08-25T10:00:01Z", "upstream": [ "GHSA-fff8-4w9p-7v76", "CVE-2015-8557", @@ -33,7 +33,7 @@ "range_state": "fixed", "upstream_fixed_in": "2.1", "resource": "pygments", - "resource_purl": "pkg:pypi/pygments@2.20.0" + "resource_purl": "pkg:pypi/pygments@2.21.0" } } ], @@ -46,16 +46,16 @@ "strategy": "registry", "ecosystem": "PyPI", "name": "pygments", - "subject_version": "2.20.0", - "key": "pkg:pypi/pygments@2.20.0", + "subject_version": "2.21.0", + "key": "pkg:pypi/pygments@2.21.0", "resource": "pygments" }, { "strategy": "registry", "ecosystem": "PyPI", "name": "pygments", - "subject_version": "2.20.0", - "key": "pkg:pypi/pygments@2.20.0", + "subject_version": "2.21.0", + "key": "pkg:pypi/pygments@2.21.0", "resource": "pygments" } ] diff --git a/advisories/BREW-xonsh-CVE-2021-20270.json b/advisories/BREW-xonsh-CVE-2021-20270.json index f5389c82c7..eb59c105ba 100644 --- a/advisories/BREW-xonsh-CVE-2021-20270.json +++ b/advisories/BREW-xonsh-CVE-2021-20270.json @@ -2,7 +2,7 @@ "schema_version": "1.7.3", "id": "BREW-xonsh-CVE-2021-20270", "published": "2026-08-13T17:54:13Z", - "modified": "2026-08-13T17:54:13Z", + "modified": "2026-08-25T10:00:01Z", "upstream": [ "GHSA-9w8r-397f-prfh", "CVE-2021-20270", @@ -33,7 +33,7 @@ "range_state": "fixed", "upstream_fixed_in": "2.7.4", "resource": "pygments", - "resource_purl": "pkg:pypi/pygments@2.20.0" + "resource_purl": "pkg:pypi/pygments@2.21.0" } } ], @@ -46,16 +46,16 @@ "strategy": "registry", "ecosystem": "PyPI", "name": "pygments", - "subject_version": "2.20.0", - "key": "pkg:pypi/pygments@2.20.0", + "subject_version": "2.21.0", + "key": "pkg:pypi/pygments@2.21.0", "resource": "pygments" }, { "strategy": "registry", "ecosystem": "PyPI", "name": "pygments", - "subject_version": "2.20.0", - "key": "pkg:pypi/pygments@2.20.0", + "subject_version": "2.21.0", + "key": "pkg:pypi/pygments@2.21.0", "resource": "pygments" } ] diff --git a/advisories/BREW-xonsh-CVE-2021-27291.json b/advisories/BREW-xonsh-CVE-2021-27291.json index d07161df03..c71d31d230 100644 --- a/advisories/BREW-xonsh-CVE-2021-27291.json +++ b/advisories/BREW-xonsh-CVE-2021-27291.json @@ -2,7 +2,7 @@ "schema_version": "1.7.3", "id": "BREW-xonsh-CVE-2021-27291", "published": "2026-08-13T17:54:13Z", - "modified": "2026-08-13T17:54:13Z", + "modified": "2026-08-25T10:00:01Z", "upstream": [ "GHSA-pq64-v7f5-gqh8", "CVE-2021-27291", @@ -33,7 +33,7 @@ "range_state": "fixed", "upstream_fixed_in": "2.7.4", "resource": "pygments", - "resource_purl": "pkg:pypi/pygments@2.20.0" + "resource_purl": "pkg:pypi/pygments@2.21.0" } } ], @@ -46,16 +46,16 @@ "strategy": "registry", "ecosystem": "PyPI", "name": "pygments", - "subject_version": "2.20.0", - "key": "pkg:pypi/pygments@2.20.0", + "subject_version": "2.21.0", + "key": "pkg:pypi/pygments@2.21.0", "resource": "pygments" }, { "strategy": "registry", "ecosystem": "PyPI", "name": "pygments", - "subject_version": "2.20.0", - "key": "pkg:pypi/pygments@2.20.0", + "subject_version": "2.21.0", + "key": "pkg:pypi/pygments@2.21.0", "resource": "pygments" } ] diff --git a/advisories/BREW-xonsh-CVE-2022-40896.json b/advisories/BREW-xonsh-CVE-2022-40896.json index d242a52c14..35014de36b 100644 --- a/advisories/BREW-xonsh-CVE-2022-40896.json +++ b/advisories/BREW-xonsh-CVE-2022-40896.json @@ -2,7 +2,7 @@ "schema_version": "1.7.3", "id": "BREW-xonsh-CVE-2022-40896", "published": "2026-08-13T17:54:13Z", - "modified": "2026-08-13T17:54:13Z", + "modified": "2026-08-25T10:00:01Z", "upstream": [ "GHSA-mrwq-x4v8-fh7p", "CVE-2022-40896", @@ -33,7 +33,7 @@ "range_state": "fixed", "upstream_fixed_in": "2.15.0", "resource": "pygments", - "resource_purl": "pkg:pypi/pygments@2.20.0" + "resource_purl": "pkg:pypi/pygments@2.21.0" } } ], @@ -46,16 +46,16 @@ "strategy": "registry", "ecosystem": "PyPI", "name": "pygments", - "subject_version": "2.20.0", - "key": "pkg:pypi/pygments@2.20.0", + "subject_version": "2.21.0", + "key": "pkg:pypi/pygments@2.21.0", "resource": "pygments" }, { "strategy": "registry", "ecosystem": "PyPI", "name": "pygments", - "subject_version": "2.20.0", - "key": "pkg:pypi/pygments@2.20.0", + "subject_version": "2.21.0", + "key": "pkg:pypi/pygments@2.21.0", "resource": "pygments" } ] diff --git a/advisories/BREW-xonsh-CVE-2026-4539.json b/advisories/BREW-xonsh-CVE-2026-4539.json index 9b24bb183f..fe74ad18b8 100644 --- a/advisories/BREW-xonsh-CVE-2026-4539.json +++ b/advisories/BREW-xonsh-CVE-2026-4539.json @@ -2,7 +2,7 @@ "schema_version": "1.7.3", "id": "BREW-xonsh-CVE-2026-4539", "published": "2026-08-13T17:54:13Z", - "modified": "2026-08-13T17:54:13Z", + "modified": "2026-08-25T10:00:01Z", "upstream": [ "GHSA-5239-wwwm-4pmq", "CVE-2026-4539", @@ -33,7 +33,7 @@ "range_state": "fixed", "upstream_fixed_in": "2.20.0", "resource": "pygments", - "resource_purl": "pkg:pypi/pygments@2.20.0" + "resource_purl": "pkg:pypi/pygments@2.21.0" } } ], @@ -46,16 +46,16 @@ "strategy": "registry", "ecosystem": "PyPI", "name": "pygments", - "subject_version": "2.20.0", - "key": "pkg:pypi/pygments@2.20.0", + "subject_version": "2.21.0", + "key": "pkg:pypi/pygments@2.21.0", "resource": "pygments" }, { "strategy": "registry", "ecosystem": "PyPI", "name": "pygments", - "subject_version": "2.20.0", - "key": "pkg:pypi/pygments@2.20.0", + "subject_version": "2.21.0", + "key": "pkg:pypi/pygments@2.21.0", "resource": "pygments" } ]