{"id":"CLEANSTART-2026-CG99434","summary":"Security fixes for CVE-2025-12383, CVE-2025-68161, CVE-2026-22022, CVE-2026-22444, CVE-2026-24281, CVE-2026-24308, CVE-2026-34477, CVE-2026-34478, CVE-2026-34479, CVE-2026-34480, CVE-2026-34481, ghsa-3pxv-7cmr-fjr4, ghsa-3qp7-7mw8-wx86, ghsa-445c-vh5m-36rj, ghsa-6hg6-v5c8-fphq, ghsa-72hv-8253-57qq, ghsa-7p63-w6x9-6gr7, ghsa-h383-gmxw-35v2, ghsa-qr3p-2xj2-q7hq, ghsa-vc2w-4v3p-2mqw, ghsa-vc5p-v9hr-52mj, ghsa-w35j-pv5h-q9q9, ghsa-w573-9ffj-6ff9, ghsa-x4gw-5cx5-pgmh applied in versions: 9.10.1-r1, 9.8.1-r0, 9.9.0-r0","details":"Multiple security vulnerabilities affect the solr package. These issues are resolved in later releases. See references for individual vulnerability details.","modified":"2026-09-18T12:16:04.038051755Z","published":"2026-07-21T10:28:38.663395Z","withdrawn":"2026-09-18T11:59:01.768079Z","upstream":["CVE-2025-12383","CVE-2025-68161","CVE-2026-22022","CVE-2026-22444","CVE-2026-24281","CVE-2026-24308","CVE-2026-34477","CVE-2026-34478","CVE-2026-34479","CVE-2026-34480","CVE-2026-34481","ghsa-3pxv-7cmr-fjr4","ghsa-3qp7-7mw8-wx86","ghsa-445c-vh5m-36rj","ghsa-6hg6-v5c8-fphq","ghsa-72hv-8253-57qq","ghsa-7p63-w6x9-6gr7","ghsa-h383-gmxw-35v2","ghsa-qr3p-2xj2-q7hq","ghsa-vc2w-4v3p-2mqw","ghsa-vc5p-v9hr-52mj","ghsa-w35j-pv5h-q9q9","ghsa-w573-9ffj-6ff9","ghsa-x4gw-5cx5-pgmh"],"database_specific":{},"references":[{"type":"ADVISORY","url":"https://github.com/cleanstart-dev/cleanstart-security-advisories/tree/main/advisories/2026/CLEANSTART-2026-CG99434.json"},{"type":"WEB","url":"https://osv.dev/vulnerability/CVE-2025-12383"},{"type":"WEB","url":"https://osv.dev/vulnerability/CVE-2025-68161"},{"type":"WEB","url":"https://osv.dev/vulnerability/CVE-2026-22022"},{"type":"WEB","url":"https://osv.dev/vulnerability/CVE-2026-22444"},{"type":"WEB","url":"https://osv.dev/vulnerability/CVE-2026-24281"},{"type":"WEB","url":"https://osv.dev/vulnerability/CVE-2026-24308"},{"type":"WEB","url":"https://osv.dev/vulnerability/CVE-2026-34477"},{"type":"WEB","url":"https://osv.dev/vulnerability/CVE-2026-34478"},{"type":"WEB","url":"https://osv.dev/vulnerability/CVE-2026-34479"},{"type":"WEB","url":"https://osv.dev/vulnerability/CVE-2026-34480"},{"type":"WEB","url":"https://osv.dev/vulnerability/CVE-2026-34481"},{"type":"WEB","url":"https://osv.dev/vulnerability/ghsa-3pxv-7cmr-fjr4"},{"type":"WEB","url":"https://osv.dev/vulnerability/ghsa-3qp7-7mw8-wx86"},{"type":"WEB","url":"https://osv.dev/vulnerability/ghsa-445c-vh5m-36rj"},{"type":"WEB","url":"https://osv.dev/vulnerability/ghsa-6hg6-v5c8-fphq"},{"type":"WEB","url":"https://osv.dev/vulnerability/ghsa-72hv-8253-57qq"},{"type":"WEB","url":"https://osv.dev/vulnerability/ghsa-7p63-w6x9-6gr7"},{"type":"WEB","url":"https://osv.dev/vulnerability/ghsa-h383-gmxw-35v2"},{"type":"WEB","url":"https://osv.dev/vulnerability/ghsa-qr3p-2xj2-q7hq"},{"type":"WEB","url":"https://osv.dev/vulnerability/ghsa-vc2w-4v3p-2mqw"},{"type":"WEB","url":"https://osv.dev/vulnerability/ghsa-vc5p-v9hr-52mj"},{"type":"WEB","url":"https://osv.dev/vulnerability/ghsa-w35j-pv5h-q9q9"},{"type":"WEB","url":"https://osv.dev/vulnerability/ghsa-w573-9ffj-6ff9"},{"type":"WEB","url":"https://osv.dev/vulnerability/ghsa-x4gw-5cx5-pgmh"},{"type":"WEB","url":"https://nvd.nist.gov/vuln/detail/CVE-2025-12383"},{"type":"WEB","url":"https://nvd.nist.gov/vuln/detail/CVE-2025-68161"},{"type":"WEB","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-22022"},{"type":"WEB","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-22444"},{"type":"WEB","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-24281"},{"type":"WEB","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-24308"},{"type":"WEB","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-34477"},{"type":"WEB","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-34478"},{"type":"WEB","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-34479"},{"type":"WEB","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-34480"},{"type":"WEB","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-34481"}],"affected":[{"package":{"name":"solr","ecosystem":"CleanStart"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"9.9.0-r0"}]}],"database_specific":{"source":"https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2026/CLEANSTART-2026-CG99434.json"}}],"schema_version":"1.9.0"}