File tree Expand file tree Collapse file tree 12 files changed +232
-24
lines changed
advisories/github-reviewed/2026/03 Expand file tree Collapse file tree 12 files changed +232
-24
lines changed Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-3f24-pcvm-5jqc" ,
4- "modified" : " 2026-03-24T21:51:08Z " ,
4+ "modified" : " 2026-03-27T22:10:38Z " ,
55 "published" : " 2026-03-24T21:51:08Z" ,
66 "aliases" : [
77 " CVE-2026-33248"
5252 ]
5353 }
5454 ]
55+ },
56+ {
57+ "package" : {
58+ "ecosystem" : " Go" ,
59+ "name" : " github.com/nats-io/nats-server"
60+ },
61+ "ranges" : [
62+ {
63+ "type" : " ECOSYSTEM" ,
64+ "events" : [
65+ {
66+ "introduced" : " 0"
67+ }
68+ ]
69+ }
70+ ]
5571 }
5672 ],
5773 "references" : [
5874 {
5975 "type" : " WEB" ,
6076 "url" : " https://github.com/nats-io/nats-server/security/advisories/GHSA-3f24-pcvm-5jqc"
6177 },
78+ {
79+ "type" : " ADVISORY" ,
80+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-33248"
81+ },
6282 {
6383 "type" : " WEB" ,
6484 "url" : " https://advisories.nats.io/CVE/secnote-2026-13.txt"
7696 "severity" : " MODERATE" ,
7797 "github_reviewed" : true ,
7898 "github_reviewed_at" : " 2026-03-24T21:51:08Z" ,
79- "nvd_published_at" : null
99+ "nvd_published_at" : " 2026-03-25T21:16:47Z "
80100 }
81101}
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-52jh-2xxh-pwh6" ,
4- "modified" : " 2026-03-24T21:29:06Z " ,
4+ "modified" : " 2026-03-27T22:09:21Z " ,
55 "published" : " 2026-03-24T21:29:06Z" ,
66 "aliases" : [
77 " CVE-2026-29785"
5252 ]
5353 }
5454 ]
55+ },
56+ {
57+ "package" : {
58+ "ecosystem" : " Go" ,
59+ "name" : " github.com/nats-io/nats-server"
60+ },
61+ "ranges" : [
62+ {
63+ "type" : " ECOSYSTEM" ,
64+ "events" : [
65+ {
66+ "introduced" : " 0"
67+ }
68+ ]
69+ }
70+ ]
5571 }
5672 ],
5773 "references" : [
5874 {
5975 "type" : " WEB" ,
6076 "url" : " https://github.com/nats-io/nats-server/security/advisories/GHSA-52jh-2xxh-pwh6"
6177 },
78+ {
79+ "type" : " ADVISORY" ,
80+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-29785"
81+ },
6282 {
6383 "type" : " WEB" ,
6484 "url" : " https://github.com/nats-io/nats-server/commit/a1488de6f2ba6e666aef0f9cce0016f7f167d6a8"
7999 "severity" : " HIGH" ,
80100 "github_reviewed" : true ,
81101 "github_reviewed_at" : " 2026-03-24T21:29:06Z" ,
82- "nvd_published_at" : null
102+ "nvd_published_at" : " 2026-03-25T20:16:30Z "
83103 }
84104}
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-55h8-8g96-x4hj" ,
4- "modified" : " 2026-03-24T21:50:25Z " ,
4+ "modified" : " 2026-03-27T22:10:07Z " ,
55 "published" : " 2026-03-24T21:50:25Z" ,
66 "aliases" : [
77 " CVE-2026-33246"
5252 ]
5353 }
5454 ]
55+ },
56+ {
57+ "package" : {
58+ "ecosystem" : " Go" ,
59+ "name" : " github.com/nats-io/nats-server"
60+ },
61+ "ranges" : [
62+ {
63+ "type" : " ECOSYSTEM" ,
64+ "events" : [
65+ {
66+ "introduced" : " 0"
67+ }
68+ ]
69+ }
70+ ]
5571 }
5672 ],
5773 "references" : [
5874 {
5975 "type" : " WEB" ,
6076 "url" : " https://github.com/nats-io/nats-server/security/advisories/GHSA-55h8-8g96-x4hj"
6177 },
78+ {
79+ "type" : " ADVISORY" ,
80+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-33246"
81+ },
6282 {
6383 "type" : " WEB" ,
6484 "url" : " https://advisories.nats.io/CVE/secnote-2026-08.txt"
7696 "severity" : " MODERATE" ,
7797 "github_reviewed" : true ,
7898 "github_reviewed_at" : " 2026-03-24T21:50:25Z" ,
79- "nvd_published_at" : null
99+ "nvd_published_at" : " 2026-03-25T20:16:33Z "
80100 }
81101}
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-8r68-gvr4-jh7j" ,
4- "modified" : " 2026-03-24T21:46:31Z " ,
4+ "modified" : " 2026-03-27T22:09:59Z " ,
55 "published" : " 2026-03-24T21:46:31Z" ,
66 "aliases" : [
77 " CVE-2026-33219"
5252 ]
5353 }
5454 ]
55+ },
56+ {
57+ "package" : {
58+ "ecosystem" : " Go" ,
59+ "name" : " github.com/nats-io/nats-server"
60+ },
61+ "ranges" : [
62+ {
63+ "type" : " ECOSYSTEM" ,
64+ "events" : [
65+ {
66+ "introduced" : " 0"
67+ }
68+ ]
69+ }
70+ ]
5571 }
5672 ],
5773 "references" : [
5874 {
5975 "type" : " WEB" ,
6076 "url" : " https://github.com/nats-io/nats-server/security/advisories/GHSA-8r68-gvr4-jh7j"
6177 },
78+ {
79+ "type" : " ADVISORY" ,
80+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-33219"
81+ },
6282 {
6383 "type" : " WEB" ,
6484 "url" : " https://advisories.nats.io/CVE/secnote-2026-02.txt"
83103 "severity" : " MODERATE" ,
84104 "github_reviewed" : true ,
85105 "github_reviewed_at" : " 2026-03-24T21:46:31Z" ,
86- "nvd_published_at" : null
106+ "nvd_published_at" : " 2026-03-25T20:16:32Z "
87107 }
88108}
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-9983-vrx2-fg9c" ,
4- "modified" : " 2026-03-24T21:49:35Z " ,
4+ "modified" : " 2026-03-27T22:10:15Z " ,
55 "published" : " 2026-03-24T21:49:34Z" ,
66 "aliases" : [
77 " CVE-2026-33222"
5252 ]
5353 }
5454 ]
55+ },
56+ {
57+ "package" : {
58+ "ecosystem" : " Go" ,
59+ "name" : " github.com/nats-io/nats-server"
60+ },
61+ "ranges" : [
62+ {
63+ "type" : " ECOSYSTEM" ,
64+ "events" : [
65+ {
66+ "introduced" : " 0"
67+ }
68+ ]
69+ }
70+ ]
5571 }
5672 ],
5773 "references" : [
5874 {
5975 "type" : " WEB" ,
6076 "url" : " https://github.com/nats-io/nats-server/security/advisories/GHSA-9983-vrx2-fg9c"
6177 },
78+ {
79+ "type" : " ADVISORY" ,
80+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-33222"
81+ },
6282 {
6383 "type" : " WEB" ,
6484 "url" : " https://advisories.nats.io/CVE/secnote-2026-12.txt"
7595 "severity" : " MODERATE" ,
7696 "github_reviewed" : true ,
7797 "github_reviewed_at" : " 2026-03-24T21:49:34Z" ,
78- "nvd_published_at" : null
98+ "nvd_published_at" : " 2026-03-25T21:16:47Z "
7999 }
80100}
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-jxxm-27vp-c3m5" ,
4- "modified" : " 2026-03-24T21:45:03Z " ,
4+ "modified" : " 2026-03-27T22:09:37Z " ,
55 "published" : " 2026-03-24T21:44:17Z" ,
66 "aliases" : [
77 " CVE-2026-33217"
5252 ]
5353 }
5454 ]
55+ },
56+ {
57+ "package" : {
58+ "ecosystem" : " Go" ,
59+ "name" : " github.com/nats-io/nats-server"
60+ },
61+ "ranges" : [
62+ {
63+ "type" : " ECOSYSTEM" ,
64+ "events" : [
65+ {
66+ "introduced" : " 0"
67+ }
68+ ]
69+ }
70+ ]
5571 }
5672 ],
5773 "references" : [
5874 {
5975 "type" : " WEB" ,
6076 "url" : " https://github.com/nats-io/nats-server/security/advisories/GHSA-jxxm-27vp-c3m5"
6177 },
78+ {
79+ "type" : " ADVISORY" ,
80+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-33217"
81+ },
6282 {
6383 "type" : " WEB" ,
6484 "url" : " https://advisories.nats.io/CVE/secnote-2026-07.txt"
7595 "severity" : " HIGH" ,
7696 "github_reviewed" : true ,
7797 "github_reviewed_at" : " 2026-03-24T21:44:17Z" ,
78- "nvd_published_at" : null
98+ "nvd_published_at" : " 2026-03-25T20:16:32Z "
7999 }
80100}
Original file line number Diff line number Diff line change 11{
22 "schema_version" : " 1.4.0" ,
33 "id" : " GHSA-pq2q-rcw4-3hr6" ,
4- "modified" : " 2026-03-25T17:07:51Z " ,
4+ "modified" : " 2026-03-27T22:09:10Z " ,
55 "published" : " 2026-03-25T17:07:51Z" ,
66 "aliases" : [
77 " CVE-2026-27889"
5252 ]
5353 }
5454 ]
55+ },
56+ {
57+ "package" : {
58+ "ecosystem" : " Go" ,
59+ "name" : " github.com/nats-io/nats-server"
60+ },
61+ "ranges" : [
62+ {
63+ "type" : " ECOSYSTEM" ,
64+ "events" : [
65+ {
66+ "introduced" : " 0"
67+ }
68+ ]
69+ }
70+ ]
5571 }
5672 ],
5773 "references" : [
5874 {
5975 "type" : " WEB" ,
6076 "url" : " https://github.com/nats-io/nats-server/security/advisories/GHSA-pq2q-rcw4-3hr6"
6177 },
78+ {
79+ "type" : " ADVISORY" ,
80+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-27889"
81+ },
6282 {
6383 "type" : " WEB" ,
6484 "url" : " https://advisories.nats.io/CVE/secnote-2026-03.txt"
7595 "severity" : " HIGH" ,
7696 "github_reviewed" : true ,
7797 "github_reviewed_at" : " 2026-03-25T17:07:51Z" ,
78- "nvd_published_at" : null
98+ "nvd_published_at" : " 2026-03-25T20:16:27Z "
7999 }
80100}
You can’t perform that action at this time.
0 commit comments