{"id":"CGA-j4x8-cwrh-3367","modified":"2026-01-28T03:26:40.358090Z","published":"2025-02-09T04:08:42.799556Z","withdrawn":"2026-01-28T03:26:40.358090Z","related":["CGA-j4x8-cwrh-3367","CVE-2025-22866","GHSA-3whm-j4xm-rv8x"],"affected":[{"package":{"name":"hugo","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/hugo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0.143.1-r1"}]}],"database_specific":{"source":"https://packages.cgr.dev/chainguard/osv/CGA-j4x8-cwrh-3367.json"}},{"package":{"name":"hugo","ecosystem":"Wolfi","purl":"pkg:apk/wolfi/hugo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0.143.1-r1"}]}],"database_specific":{"source":"https://packages.cgr.dev/chainguard/osv/CGA-j4x8-cwrh-3367.json"}}],"schema_version":"1.7.3"}