From d7f3da07efa0f9e9ec15da6dd2bb7ba17b2a68de Mon Sep 17 00:00:00 2001 From: noren95 <114586487+noren95@users.noreply.github.com> Date: Thu, 4 Jun 2026 13:17:51 +0300 Subject: [PATCH] Improve GHSA-wg65-39gg-5wfj --- .../GHSA-wg65-39gg-5wfj.json | 92 ++++++++++++++++++- 1 file changed, 90 insertions(+), 2 deletions(-) diff --git a/advisories/github-reviewed/2026/05/GHSA-wg65-39gg-5wfj/GHSA-wg65-39gg-5wfj.json b/advisories/github-reviewed/2026/05/GHSA-wg65-39gg-5wfj/GHSA-wg65-39gg-5wfj.json index 7fd99ba9728c4..6c843389be009 100644 --- a/advisories/github-reviewed/2026/05/GHSA-wg65-39gg-5wfj/GHSA-wg65-39gg-5wfj.json +++ b/advisories/github-reviewed/2026/05/GHSA-wg65-39gg-5wfj/GHSA-wg65-39gg-5wfj.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-wg65-39gg-5wfj", - "modified": "2026-05-05T19:33:47Z", + "modified": "2026-05-05T19:33:48Z", "published": "2026-05-05T19:33:47Z", "aliases": [ "CVE-2026-42151" @@ -28,11 +28,99 @@ "introduced": "0.45.2" }, { - "fixed": "0.311.3" + "last_affected": "0.55.1" } ] } ] + }, + { + "package": { + "ecosystem": "Go", + "name": "github.com/prometheus/prometheus" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "0.300.0" + }, + { + "fixed": "0.305.3" + } + ] + } + ], + "database_specific": { + "last_known_affected_version_range": "<= 0.305.2" + } + }, + { + "package": { + "ecosystem": "Go", + "name": "github.com/prometheus/prometheus" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "0.306.0" + }, + { + "fixed": "0.311.3" + } + ] + } + ], + "database_specific": { + "last_known_affected_version_range": "<= 0.311.2" + } + }, + { + "package": { + "ecosystem": "Go", + "name": "github.com/prometheus/prometheus" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "1.0.0" + }, + { + "fixed": "3.5.3" + } + ] + } + ], + "database_specific": { + "last_known_affected_version_range": "<= 3.5.2" + } + }, + { + "package": { + "ecosystem": "Go", + "name": "github.com/prometheus/prometheus" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "3.6.0" + }, + { + "fixed": "3.11.3" + } + ] + } + ], + "database_specific": { + "last_known_affected_version_range": "<= 3.11.2" + } } ], "references": [