{"schema_version":"1.7.3","id":"CGA-5fhv-cqxj-x25r","published":"2026-01-29T00:44:07.342547Z","modified":"2026-09-07T02:03:20.849396233Z","withdrawn":"2026-09-07T02:03:20.849396089Z","related":["CVE-2025-64460","GHSA-vrcr-9hj9-jcg6"],"affected":[{"package":{"name":"authentik","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/authentik"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2025.10.2-r2"}]}],"database_specific":{"source":"https://packages.cgr.dev/chainguard/osv/CGA-5fhv-cqxj-x25r.json"}},{"package":{"name":"authentik-go-server","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/authentik-go-server"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2025.10.2-r2"}]}],"database_specific":{"source":"https://packages.cgr.dev/chainguard/osv/CGA-5fhv-cqxj-x25r.json"}},{"package":{"name":"awx","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/awx"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"24.6.1-r20"}]}],"database_specific":{"source":"https://packages.cgr.dev/chainguard/osv/CGA-5fhv-cqxj-x25r.json"}}]}