{"id":"CGA-rx2w-xvqq-vgfg","modified":"2026-09-07T01:50:47.130778734Z","published":"2025-10-30T21:51:01Z","upstream":["CVE-2024-24791","GHSA-hw49-2p59-3mhj","GO-2024-2963"],"affected":[{"package":{"name":"cosign-fips","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/cosign-fips?arch=aarch64"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.2.4-r6"}]}],"ecosystem_specific":{"components":[{"component_version":"","component_type":"apk","component_location":"/.PKGINFO","component_purl":"pkg:apk/cosign-fips","latest_event_status":"fixed","latest_event_timestamp":"2024-07-04T17:09:42Z","component_name":"cosign-fips"}]},"database_specific":{"source":"https://advisories.cgr.dev/chainguard/v3/osv/CGA-rx2w-xvqq-vgfg.json"}}],"schema_version":"1.9.0"}