{"id":"CLSA-2026-1784682948","summary":"TuxCare security update for craftcms/cms (14 CVEs)","details":"TuxCare rebuilt craftcms/cms to address 14 CVEs. Fixed in 3.9.15-p7+tuxcare.","modified":"2026-09-16T21:12:33.701010882Z","published":"2026-08-04T14:52:46Z","upstream":["CVE-2025-57811","CVE-2026-25494","CVE-2026-25498","CVE-2026-27129","CVE-2026-29113","CVE-2026-31859","CVE-2026-33158","CVE-2026-33159","CVE-2026-33160","CVE-2026-33161","CVE-2026-56383","CVE-2026-56385","GHSA-44px-qjjc-xrhq","GHSA-6j87-m5qx-9fqp"],"affected":[{"package":{"name":"craftcms/cms","ecosystem":"TuxCare:Packagist","purl":"pkg:composer/craftcms/cms"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3.9.15-p7+tuxcare"}]}],"database_specific":{"source":"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_lang/packagist/CLSA-2026-1784682948.json"}}],"schema_version":"1.9.0"}