CLEANSTART-2026-GQ91083
Dashboard / Vulnerabilities / CLEANSTART-2026-GQ91083
CLEANSTART-2026-GQ91083
Summary: Previously, a channel registered in the mux's chanList is not usable until it is established
Details: Multiple security vulnerabilities affect the victoriametrics-operator-fips package. Previously, a channel registered in the mux's chanList is not usable until it is established. See references for individual vulnerability details.
References: https://github.com/cleanstart-dev/cleanstart-security-advisories/tree/main/advisories/2026/CLEANSTART-2026-GQ91083.json, https://osv.dev/vulnerability/CVE-2025-61732, https://osv.dev/vulnerability/CVE-2025-68121, https://osv.dev/vulnerability/CVE-2026-25679, https://osv.dev/vulnerability/CVE-2026-27139, https://osv.dev/vulnerability/CVE-2026-27142, https://osv.dev/vulnerability/CVE-2026-33818, https://osv.dev/vulnerability/CVE-2026-39821, https://osv.dev/vulnerability/CVE-2026-39824, https://osv.dev/vulnerability/CVE-2026-41178, https://osv.dev/vulnerability/CVE-2026-42504, https://osv.dev/vulnerability/CVE-2026-42506, https://osv.dev/vulnerability/CVE-2026-42507, https://osv.dev/vulnerability/CVE-2026-46600, https://osv.dev/vulnerability/CVE-2026-56853, https://osv.dev/vulnerability/CVE-2026-56855, https://osv.dev/vulnerability/CVE-2026-56858, https://osv.dev/vulnerability/CVE-2026-56859, https://osv.dev/vulnerability/CVE-2026-56860, https://osv.dev/vulnerability/CVE-2026-56862, https://osv.dev/vulnerability/CVE-2026-78662, https://osv.dev/vulnerability/ghsa-259r-337f-4rfw, https://osv.dev/vulnerability/ghsa-66jq-2c23-2xh5, https://osv.dev/vulnerability/ghsa-9h8m-3fm2-qjrq, https://osv.dev/vulnerability/ghsa-hrxh-6v49-42gf, https://nvd.nist.gov/vuln/detail/CVE-2025-61732, https://nvd.nist.gov/vuln/detail/CVE-2025-68121, https://nvd.nist.gov/vuln/detail/CVE-2026-25679, https://nvd.nist.gov/vuln/detail/CVE-2026-27139, https://nvd.nist.gov/vuln/detail/CVE-2026-27142, https://nvd.nist.gov/vuln/detail/CVE-2026-33818, https://nvd.nist.gov/vuln/detail/CVE-2026-39821, https://nvd.nist.gov/vuln/detail/CVE-2026-39824, https://nvd.nist.gov/vuln/detail/CVE-2026-41178, https://nvd.nist.gov/vuln/detail/CVE-2026-42504, https://nvd.nist.gov/vuln/detail/CVE-2026-42506, https://nvd.nist.gov/vuln/detail/CVE-2026-42507, https://nvd.nist.gov/vuln/detail/CVE-2026-46600, https://nvd.nist.gov/vuln/detail/CVE-2026-56853, https://nvd.nist.gov/vuln/detail/CVE-2026-56855, https://nvd.nist.gov/vuln/detail/CVE-2026-56858, https://nvd.nist.gov/vuln/detail/CVE-2026-56859, https://nvd.nist.gov/vuln/detail/CVE-2026-56860, https://nvd.nist.gov/vuln/detail/CVE-2026-56862, https://nvd.nist.gov/vuln/detail/CVE-2026-78662
Affected packages
Package
Name: victoriametrics-operator-fips
Purl:
Affected ranges
Type: ECOSYSTEM
Events:
