{"id":"CLEANSTART-2026-GP34045","summary":"Security fixes for CVE-2026-44503, ghsa-29h4-r29x-hchv, ghsa-2h4p-vjrc-8xpq, ghsa-537c-gmf6-5ccf, ghsa-65pc-fj4g-8rjx, ghsa-7j59-v9qr-6fq9, ghsa-hpj7-wq8m-9hgp, ghsa-pw6j-qg29-8w7f, ghsa-w7vc-732c-9m39 applied in versions: 2.11.0-r2, 2.11.0-r3","details":"Multiple security vulnerabilities affect the airflow-2 package. These issues are resolved in later releases. See references for individual vulnerability details.","modified":"2026-07-22T01:00:07.288759681Z","published":"2026-07-21T09:48:09.850340Z","upstream":["CVE-2026-44503","ghsa-29h4-r29x-hchv","ghsa-2h4p-vjrc-8xpq","ghsa-537c-gmf6-5ccf","ghsa-65pc-fj4g-8rjx","ghsa-7j59-v9qr-6fq9","ghsa-hpj7-wq8m-9hgp","ghsa-pw6j-qg29-8w7f","ghsa-w7vc-732c-9m39"],"database_specific":{},"references":[{"type":"ADVISORY","url":"https://github.com/cleanstart-dev/cleanstart-security-advisories/tree/main/advisories/2026/CLEANSTART-2026-GP34045.json"},{"type":"WEB","url":"https://osv.dev/vulnerability/CVE-2026-44503"},{"type":"WEB","url":"https://osv.dev/vulnerability/ghsa-29h4-r29x-hchv"},{"type":"WEB","url":"https://osv.dev/vulnerability/ghsa-2h4p-vjrc-8xpq"},{"type":"WEB","url":"https://osv.dev/vulnerability/ghsa-537c-gmf6-5ccf"},{"type":"WEB","url":"https://osv.dev/vulnerability/ghsa-65pc-fj4g-8rjx"},{"type":"WEB","url":"https://osv.dev/vulnerability/ghsa-7j59-v9qr-6fq9"},{"type":"WEB","url":"https://osv.dev/vulnerability/ghsa-hpj7-wq8m-9hgp"},{"type":"WEB","url":"https://osv.dev/vulnerability/ghsa-pw6j-qg29-8w7f"},{"type":"WEB","url":"https://osv.dev/vulnerability/ghsa-w7vc-732c-9m39"},{"type":"WEB","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-44503"}],"affected":[{"package":{"name":"airflow-2","ecosystem":"CleanStart"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.11.0-r3"}]}],"database_specific":{"source":"https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2026/CLEANSTART-2026-GP34045.json"}}],"schema_version":"1.7.5"}