{"id":"CGA-wh82-4jmp-cg4f","modified":"2026-01-12T00:34:58.693758Z","published":"2025-02-09T20:09:35.191362Z","withdrawn":"2026-01-12T00:34:58.693758Z","related":["CGA-wh82-4jmp-cg4f","CVE-2025-22866","GHSA-3whm-j4xm-rv8x"],"affected":[{"package":{"name":"sbom-scorecard","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/sbom-scorecard"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0.0.7-r18"}]}],"database_specific":{"source":"https://packages.cgr.dev/chainguard/osv/CGA-wh82-4jmp-cg4f.json"}},{"package":{"name":"sbom-scorecard","ecosystem":"Wolfi","purl":"pkg:apk/wolfi/sbom-scorecard"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0.0.7-r18"}]}],"database_specific":{"source":"https://packages.cgr.dev/chainguard/osv/CGA-wh82-4jmp-cg4f.json"}}],"schema_version":"1.7.3"}