{"id":"CGA-hqp8-w2r8-cvh9","modified":"2026-07-31T21:31:48.087432070Z","published":"2026-07-31T14:06:38Z","upstream":["CVE-2026-66066","GHSA-xr9x-r78c-5hrm"],"affected":[{"package":{"name":"gitlab-rails-ce-fips-19.0","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/gitlab-rails-ce-fips-19.0?arch=x86_64"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"19.0.4-r9"}]}],"ecosystem_specific":{"components":[{"component_purl":"pkg:gem/activestorage@7.2.3.1","latest_event_status":"fixed","latest_event_timestamp":"2026-07-31T19:51:14Z","architecture":"x86_64","component_name":"activestorage","component_version":"7.2.3.1","component_type":"gem","component_location":"/srv/gitlab/vendor/bundle/ruby/3.3.0/specifications/activestorage-7.2.3.1.gemspec"}]},"database_specific":{"source":"https://advisories.cgr.dev/chainguard/v3/osv/CGA-hqp8-w2r8-cvh9.json"}}],"schema_version":"1.8.0"}