{"id":"CGA-mph9-8h2g-hmp7","modified":"2026-07-17T19:11:49.291203957Z","published":"2026-05-27T23:14:43Z","upstream":["CVE-2026-44979","GHSA-vhjm-w67q-g75c"],"references":[{"type":"WEB","url":"https://github.com/hapijs/wreck/security/advisories/GHSA-vhjm-w67q-g75c"},{"type":"WEB","url":"https://github.com/nodejs/undici/security/advisories/GHSA-3787-6prv-h9w3"},{"type":"WEB","url":"https://github.com/hapijs/wreck/commit/a5b6fac9c684621c1d5733d10a0257697cfea373"},{"type":"PACKAGE","url":"https://github.com/hapijs/wreck"}],"affected":[{"package":{"name":"opensearch-dashboards-3","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/opensearch-dashboards-3?arch=aarch64"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3.7.0-r0"}]}],"ecosystem_specific":{"components":[{"architecture":"aarch64","component_name":"@hapi/wreck","component_version":"17.2.0","component_type":"npm","component_location":"/usr/share/opensearch-dashboards/node_modules/@hapi/wreck/package.json","component_purl":"pkg:npm/%40hapi%2Fwreck@17.2.0","latest_event_status":"fixed","latest_event_timestamp":"2026-06-17T18:20:10Z"}]},"database_specific":{"source":"https://advisories.cgr.dev/chainguard/v3/osv/CGA-mph9-8h2g-hmp7.json"}},{"package":{"name":"opensearch-dashboards-3","ecosystem":"Wolfi","purl":"pkg:apk/wolfi/opensearch-dashboards-3?arch=aarch64"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3.7.0-r0"}]}],"ecosystem_specific":{"components":[{"latest_event_status":"fixed","latest_event_timestamp":"2026-06-17T18:20:10Z","architecture":"aarch64","component_name":"@hapi/wreck","component_version":"17.2.0","component_type":"npm","component_location":"/usr/share/opensearch-dashboards/node_modules/@hapi/wreck/package.json","component_purl":"pkg:npm/%40hapi%2Fwreck@17.2.0"}]},"database_specific":{"source":"https://advisories.cgr.dev/chainguard/v3/osv/CGA-mph9-8h2g-hmp7.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V4","score":"CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:N/VC:L/VI:N/VA:N/SC:L/SI:N/SA:N"}]}