{"id":"CLSA-2026-1776818218","summary":"TuxCare security update for socket.io (2 CVEs)","details":"TuxCare rebuilt socket.io to address 2 CVEs. Fixed in 2.0.4-tuxcare.1.","modified":"2026-08-07T10:02:28.559006503Z","published":"2026-08-04T14:52:27Z","upstream":["CVE-2020-28481","CVE-2024-38355"],"affected":[{"package":{"name":"socket.io","ecosystem":"TuxCare:npm","purl":"pkg:npm/socket.io"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.0.4-tuxcare.1"}]}],"database_specific":{"source":"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_lang/npm/CLSA-2026-1776818218.json"}}],"schema_version":"1.8.0"}