{"id":"CGA-cvp9-q273-f9xr","modified":"2026-01-12T00:28:07.229527Z","published":"2025-04-18T13:30:47.810773Z","withdrawn":"2026-01-12T00:28:07.229527Z","related":["CGA-cvp9-q273-f9xr","CVE-2025-22872","GHSA-vvgc-356p-c3xw"],"affected":[{"package":{"name":"fulcio","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/fulcio"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.7.0-r1"}]}],"database_specific":{"source":"https://packages.cgr.dev/chainguard/osv/CGA-cvp9-q273-f9xr.json"}},{"package":{"name":"fulcio","ecosystem":"Wolfi","purl":"pkg:apk/wolfi/fulcio"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.7.0-r1"}]}],"database_specific":{"source":"https://packages.cgr.dev/chainguard/osv/CGA-cvp9-q273-f9xr.json"}}],"schema_version":"1.7.3"}