{"id":"CGA-964h-x7qw-8v4g","modified":"2026-07-17T20:12:08.574126146Z","published":"2026-05-18T18:20:22Z","withdrawn":"2026-07-17T20:12:08.574126015Z","related":["CVE-2026-41148","GHSA-xcj9-5m2h-648r"],"affected":[{"package":{"name":"langfuse-2-worker","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/langfuse-2-worker"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.95.12-r23"}]}],"database_specific":{"source":"https://packages.cgr.dev/chainguard/osv/CGA-964h-x7qw-8v4g.json"}},{"package":{"name":"langfuse-fips-2-worker","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/langfuse-fips-2-worker"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.95.12-r25"}]}],"database_specific":{"source":"https://packages.cgr.dev/chainguard/osv/CGA-964h-x7qw-8v4g.json"}},{"package":{"name":"librechat","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/librechat"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0.8.4-r7"}]}],"database_specific":{"source":"https://packages.cgr.dev/chainguard/osv/CGA-964h-x7qw-8v4g.json"}}],"schema_version":"1.7.5"}