{"id":"CGA-455m-5ph6-pc33","modified":"2026-09-19T04:30:52.377776579Z","published":"2026-06-26T09:55:57Z","upstream":["CVE-2021-23343","GHSA-hj48-42vr-x3v9"],"references":[{"type":"WEB","url":"https://lists.apache.org/thread.html/r6a32cb3eda3b19096ad48ef1e7aa8f26e005f2f63765abb69ce08b85%40%3Cdev.myfaces.apache.org%3E"},{"type":"REPORT","url":"https://github.com/jbgutierrez/path-parse/issues/8"},{"type":"EVIDENCE","url":"https://snyk.io/vuln/SNYK-JAVA-ORGWEBJARSNPM-1279028"},{"type":"EVIDENCE","url":"https://snyk.io/vuln/SNYK-JS-PATHPARSE-1077067"}],"affected":[{"package":{"name":"arangodb-3.11","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/arangodb-3.11?arch=x86_64"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3.11.14.5-r28"}]}],"ecosystem_specific":{"components":[{"component_purl":"pkg:npm/path-parse@1.0.6","latest_event_status":"fixed","latest_event_timestamp":"2026-09-19T00:56:20Z","component_name":"path-parse","component_version":"1.0.6","component_type":"npm","component_location":"/usr/share/arangodb3/js/apps/system/_admin/aardvark/APP/react/yarn.lock"}]},"database_specific":{"source":"https://advisories.cgr.dev/chainguard/v3/osv/CGA-455m-5ph6-pc33.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"}]}