{"id":"CLSA-2026-1784596322","summary":"TuxCare security update for picomatch (2 CVEs)","details":"TuxCare rebuilt picomatch to address 2 CVEs. Fixed in 4.0.1-tuxcare.1.","modified":"2026-09-15T21:12:52.203470075Z","published":"2026-08-04T14:52:45Z","upstream":["CVE-2026-33671","CVE-2026-33672"],"affected":[{"package":{"name":"picomatch","ecosystem":"TuxCare:npm","purl":"pkg:npm/picomatch"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.0.1-tuxcare.1"}]}],"database_specific":{"source":"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_lang/npm/CLSA-2026-1784596322.json"}}],"schema_version":"1.9.0"}