{"id":"CLSA-2026-1773188132","summary":"TuxCare security update for lodash.merge (2 CVEs)","details":"TuxCare rebuilt lodash.merge to address 2 CVEs. Fixed in 3.3.2-tuxcare.2.","modified":"2026-08-07T10:01:37.707082477Z","published":"2026-08-04T14:52:12Z","upstream":["GHSA-2m96-9w4j-wgv7","GHSA-h726-x36v-rx45"],"affected":[{"package":{"name":"lodash.merge","ecosystem":"TuxCare:npm","purl":"pkg:npm/lodash.merge"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3.3.2-tuxcare.2"}]}],"database_specific":{"source":"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_lang/npm/CLSA-2026-1773188132.json"}}],"schema_version":"1.8.0"}