{"id":"CLEANSTART-2026-FL96433","summary":"Security fixes in mongosh 2.6.0-r4","details":"Package mongosh version 2.6.0-r4 fixes 15 vulnerabilities: ghsa-rp42-5vxx-qpwr, ghsa-gh4j-gqv2-49f6, CVE-2026-41650, CVE-2026-33036, CVE-2026-33349...","modified":"2026-09-18T12:15:10.046736692Z","published":"2026-07-30T07:10:53Z","withdrawn":"2026-09-18T11:59:01.768079Z","upstream":["CVE-2022-25881","CVE-2022-33987","CVE-2025-69873","CVE-2026-23745","CVE-2026-23950","CVE-2026-24842","CVE-2026-26960","CVE-2026-29786","CVE-2026-31802","CVE-2026-33036","CVE-2026-33349","CVE-2026-41650","ghsa-gh4j-gqv2-49f6","ghsa-rp42-5vxx-qpwr","ghsa-w5hq-g745-h8pq"],"database_specific":{},"references":[{"type":"WEB","url":"https://github.com/mongodb-js/mongosh"}],"affected":[{"package":{"name":"mongosh","ecosystem":"CleanStart"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.6.0-r4"}]}],"versions":["2.6.0-r4"],"database_specific":{"source":"https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2026/CLEANSTART-2026-FL96433.json"}}],"schema_version":"1.9.0"}