{"id":"CGA-9353-qfh7-29vf","modified":"2026-01-28T03:24:33.493035Z","published":"2025-03-31T16:02:59.716059Z","withdrawn":"2026-01-28T03:24:33.493035Z","related":["CGA-9353-qfh7-29vf","CVE-2025-30204","GHSA-mh63-6h87-95cp"],"affected":[{"package":{"name":"opentofu-1.6","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/opentofu-1.6"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.6.3-r10"}]}],"database_specific":{"source":"https://packages.cgr.dev/chainguard/osv/CGA-9353-qfh7-29vf.json"}},{"package":{"name":"opentofu-1.6-compat","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/opentofu-1.6-compat"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.6.3-r10"}]}],"database_specific":{"source":"https://packages.cgr.dev/chainguard/osv/CGA-9353-qfh7-29vf.json"}},{"package":{"name":"opentofu-1.6-local-provider-config","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/opentofu-1.6-local-provider-config"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.6.3-r10"}]}],"database_specific":{"source":"https://packages.cgr.dev/chainguard/osv/CGA-9353-qfh7-29vf.json"}}],"schema_version":"1.7.3"}