{"id":"CLEANSTART-2026-BA61304","summary":"Security fixes in cosign 2.4.3-r0","details":"Package cosign version 2.4.3-r0 fixes 82 vulnerabilities: CVE-2025-0913, CVE-2025-15558, CVE-2025-22868, CVE-2025-22869, CVE-2025-22870...","modified":"2026-09-18T12:15:07.177840957Z","published":"2026-07-30T07:10:53Z","withdrawn":"2026-09-18T11:59:01.768079Z","upstream":["CVE-2025-0913","CVE-2025-15558","CVE-2025-22868","CVE-2025-22869","CVE-2025-22870","CVE-2025-22871","CVE-2025-22872","CVE-2025-22873","CVE-2025-27144","CVE-2025-30204","CVE-2025-46569","CVE-2025-4673","CVE-2025-4674","CVE-2025-47906","CVE-2025-47907","CVE-2025-47911","CVE-2025-47912","CVE-2025-47913","CVE-2025-47914","CVE-2025-58181","CVE-2025-58183","CVE-2025-58185","CVE-2025-58186","CVE-2025-58187","CVE-2025-58188","CVE-2025-58189","CVE-2025-58190","CVE-2025-61723","CVE-2025-61724","CVE-2025-61725","CVE-2025-61726","CVE-2025-61727","CVE-2025-61728","CVE-2025-61729","CVE-2025-61730","CVE-2025-61731","CVE-2025-61732","CVE-2025-66506","CVE-2025-66564","CVE-2025-68121","CVE-2025-8556","CVE-2026-1229","CVE-2026-22703","CVE-2026-22772","CVE-2026-23831","CVE-2026-23991","CVE-2026-23992","CVE-2026-24051","CVE-2026-24117","CVE-2026-24122","CVE-2026-24137","CVE-2026-24686","CVE-2026-25679","CVE-2026-27139","CVE-2026-27142","CVE-2026-33186","CVE-2026-34986","ghsa-273p-m2cw-6833","ghsa-2x5j-vhc8-9cwm","ghsa-4c4x-jm2x-pf9j","ghsa-4qg8-fj49-pxjh","ghsa-59jp-pj84-45mr","ghsa-6m8w-jc87-6cr7","ghsa-6v2p-p543-phr9","ghsa-78h2-9frx-2jm8","ghsa-846p-jg2w-w324","ghsa-9h8m-3fm2-qjrq","ghsa-c6gw-w398-hv78","ghsa-f6x5-jh6r-wrfv","ghsa-f83f-xpx7-ffpw","ghsa-fcv2-xgw5-pqxf","ghsa-fphv-w9fq-2525","ghsa-hcg3-q754-cr77","ghsa-j5w8-q4qc-rx2x","ghsa-jqc5-w2xx-5vq4","ghsa-mh63-6h87-95cp","ghsa-mqqf-5wvp-8fh8","ghsa-p436-gjf2-799p","ghsa-p77j-4mvh-x3m3","ghsa-q9hv-hpm4-hj6x","ghsa-qxp5-gwg8-xv66","ghsa-vvgc-356p-c3xw"],"database_specific":{},"references":[{"type":"WEB","url":"https://github.com/sigstore/cosign"}],"affected":[{"package":{"name":"cosign","ecosystem":"CleanStart"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.4.3-r0"}]}],"versions":["2.4.3-r0"],"database_specific":{"source":"https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2026/CLEANSTART-2026-BA61304.json"}}],"schema_version":"1.9.0"}