{"id":"CLSA-2026-1778805972","summary":"TuxCare security update for picomatch (2 CVEs)","details":"TuxCare rebuilt picomatch to address 2 CVEs. Fixed in 4.0.2-tuxcare.1.","modified":"2026-09-15T21:12:28.385435536Z","published":"2026-08-04T14:52:31Z","upstream":["CVE-2026-33671","CVE-2026-33672"],"affected":[{"package":{"name":"picomatch","ecosystem":"TuxCare:npm","purl":"pkg:npm/picomatch"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.0.2-tuxcare.1"}]}],"database_specific":{"source":"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_lang/npm/CLSA-2026-1778805972.json"}}],"schema_version":"1.9.0"}