diff --git a/advisories/github-reviewed/2026/04/GHSA-rx35-6rhx-7858/GHSA-rx35-6rhx-7858.json b/advisories/github-reviewed/2026/04/GHSA-rx35-6rhx-7858/GHSA-rx35-6rhx-7858.json index da0f1df847aaf..69a4bb0b696a3 100644 --- a/advisories/github-reviewed/2026/04/GHSA-rx35-6rhx-7858/GHSA-rx35-6rhx-7858.json +++ b/advisories/github-reviewed/2026/04/GHSA-rx35-6rhx-7858/GHSA-rx35-6rhx-7858.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-rx35-6rhx-7858", - "modified": "2026-04-27T18:10:05Z", + "modified": "2026-05-05T10:00:00Z", "published": "2026-04-21T20:26:41Z", "aliases": [ "CVE-2026-40923" @@ -27,15 +27,88 @@ { "introduced": "0" }, + { + "fixed": "1.0.2" + } + ] + } + ] + }, + { + "package": { + "ecosystem": "Go", + "name": "github.com/tektoncd/pipeline" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "1.1.0" + }, + { + "fixed": "1.3.4" + } + ] + } + ] + }, + { + "package": { + "ecosystem": "Go", + "name": "github.com/tektoncd/pipeline" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "1.4.0" + }, + { + "fixed": "1.6.2" + } + ] + } + ] + }, + { + "package": { + "ecosystem": "Go", + "name": "github.com/tektoncd/pipeline" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "1.7.0" + }, + { + "fixed": "1.9.3" + } + ] + } + ] + }, + { + "package": { + "ecosystem": "Go", + "name": "github.com/tektoncd/pipeline" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "1.10.0" + }, { "fixed": "1.11.1" } ] } - ], - "database_specific": { - "last_known_affected_version_range": "<= 1.11.0" - } + ] } ], "references": [ @@ -65,4 +138,4 @@ "github_reviewed_at": "2026-04-21T20:26:41Z", "nvd_published_at": "2026-04-21T21:16:45Z" } -} \ No newline at end of file +}