{
  "@context": "https://openvex.dev/ns/v0.2.0",
  "@id": "https://openvex.dev/docs/public/vex-14f65c9f18a8f736917f5497fb00e5200e6901768caab984deae65a2d44e195c",
  "author": "minimus",
  "timestamp": "2026-06-25T14:46:20.098431619Z",
  "version": 1,
  "statements": [
    {
      "vulnerability": {
        "name": "MINI-23p3-qw4q-3336",
        "aliases": [
          "CVE-2026-4438"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/glibc@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/glibc-locale-posix@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/ld-linux@2.43-r4"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-26wc-ph53-p7mq",
        "aliases": [
          "CVE-2026-3783"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcurl-openssl4@8.21.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-28hq-3frr-vvg6",
        "aliases": [
          "CVE-2026-7009"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcurl-openssl4@8.21.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-2c8q-5357-3f3j",
        "aliases": [
          "CVE-2026-32282"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-32282/references"
    },
    {
      "vulnerability": {
        "name": "MINI-2f87-h6pc-qjx5",
        "aliases": [
          "CVE-2026-45446"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-2g48-5p3q-f6fj",
        "aliases": [
          "CVE-2025-13836"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-2pxh-fr85-xrr8",
        "aliases": [
          "CVE-2026-46597"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-46597/references"
    },
    {
      "vulnerability": {
        "name": "MINI-2wj6-25qr-p484",
        "aliases": [
          "CVE-2026-25680"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-25680/references"
    },
    {
      "vulnerability": {
        "name": "MINI-2wq2-46gw-76pf",
        "aliases": [
          "CVE-2026-32631"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git@2.54.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-2xp2-hhm7-7x36",
        "aliases": [
          "CVE-2025-50182"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/py3-pip-wheel@26.1.2-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-34mw-8h4c-gq2q",
        "aliases": [
          "CVE-2026-39836"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-39836/references"
    },
    {
      "vulnerability": {
        "name": "MINI-3526-f3xh-xp8w",
        "aliases": [
          "CVE-2026-39834"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-39834/references"
    },
    {
      "vulnerability": {
        "name": "MINI-3fv6-hvcx-cpcg",
        "aliases": [
          "CVE-2026-48524"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/mcp-server-git@2026.6.16-r0"
            }
          ]
        }
      ],
      "status": "under_investigation"
    },
    {
      "vulnerability": {
        "name": "MINI-3hc3-7c52-jmrf",
        "aliases": [
          "CVE-2026-39829"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-39829/references"
    },
    {
      "vulnerability": {
        "name": "MINI-3hm6-mgx4-28c5",
        "aliases": [
          "CVE-2024-52006"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git@2.54.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-3jm4-x46w-pwh7",
        "aliases": [
          "CVE-2026-7210"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-3jx9-w69q-v5j9",
        "aliases": [
          "CVE-2026-0861"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/glibc@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/glibc-locale-posix@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/ld-linux@2.43-r4"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-3pc6-php8-fx8h",
        "aliases": [
          "CVE-2025-48384"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git@2.54.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-3pj6-j6j8-r5xm",
        "aliases": [
          "CVE-2025-70873"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/sqlite-libs@3.53.2-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-3rjr-9rfx-rpgc",
        "aliases": [
          "CVE-2026-1965"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcurl-openssl4@8.21.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-3x76-93xr-jhmv",
        "aliases": [
          "CVE-2026-7383"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-47ph-86jv-r2mh",
        "aliases": [
          "CVE-2026-12003"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "under_investigation"
    },
    {
      "vulnerability": {
        "name": "MINI-49mw-4m7j-pp8g",
        "aliases": [
          "CVE-2025-14524"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcurl-openssl4@8.21.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-4f3m-r4r7-7c3h",
        "aliases": [
          "CVE-2025-0938"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-4fr4-36h6-gcc5",
        "aliases": [
          "CVE-2018-20225"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/py3-pip-wheel@26.1.2-r0"
            }
          ]
        }
      ],
      "status": "not_affected",
      "justification": "vulnerable_code_not_present",
      "impact_statement": "The CVE is not considered a vulnerability as the code supports the intended functionality of the flag --extra-index-url."
    },
    {
      "vulnerability": {
        "name": "MINI-4gj2-v85m-7mgj",
        "aliases": [
          "CVE-2026-3087"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "not_affected",
      "justification": "vulnerable_code_not_in_execute_path"
    },
    {
      "vulnerability": {
        "name": "MINI-4h72-q8mg-g9mp",
        "aliases": [
          "CVE-2025-0167"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcurl-openssl4@8.21.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-4hff-6j5q-cp3r",
        "aliases": [
          "CVE-2025-0395"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/glibc@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/glibc-locale-posix@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/ld-linux@2.43-r4"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-4hj2-7rp5-h7ph",
        "aliases": [
          "CVE-2026-39831"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-39831/references"
    },
    {
      "vulnerability": {
        "name": "MINI-4hjr-3rw9-p262",
        "aliases": [
          "CVE-2019-1010025"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/glibc@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/glibc-locale-posix@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/ld-linux@2.43-r4"
            }
          ]
        }
      ],
      "status": "not_affected",
      "justification": "vulnerable_code_not_present",
      "impact_statement": "The CVE is disputed and the upstream project has determined it does not pose a risk."
    },
    {
      "vulnerability": {
        "name": "MINI-4hq9-rm2j-67f4",
        "aliases": [
          "CVE-2026-6357"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/py3-pip-wheel@26.1.2-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-4hx7-r8fj-4v45",
        "aliases": [
          "CVE-2026-5928"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/glibc@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/glibc-locale-posix@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/ld-linux@2.43-r4"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-4mwp-32g3-4x3m",
        "aliases": [
          "CVE-2026-5358"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/glibc@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/glibc-locale-posix@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/ld-linux@2.43-r4"
            }
          ]
        }
      ],
      "status": "not_affected",
      "justification": "vulnerable_code_not_present",
      "impact_statement": "This CVE was rejected by sourceware, for more details refer to - https://sourceware.org/git/?p=glibc.git;a=blob;f=advisories/GLIBC-SA-2026-0008;h=43b38ce38a78b6458608fa4c044994b8d8516751;hb=HEAD"
    },
    {
      "vulnerability": {
        "name": "MINI-4pv6-rpvw-8x65",
        "aliases": [
          "CVE-2026-48522"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/mcp-server-git@2026.6.16-r0"
            }
          ]
        }
      ],
      "status": "under_investigation"
    },
    {
      "vulnerability": {
        "name": "MINI-4x56-859r-prjq",
        "aliases": [
          "CVE-2025-9231"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-4xrx-fgv6-cwfr",
        "aliases": [
          "CVE-2025-68119"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2025-68119/references"
    },
    {
      "vulnerability": {
        "name": "MINI-547w-mfp7-933m",
        "aliases": [
          "CVE-2025-9230"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-54gw-22ch-p367",
        "aliases": [
          "CVE-2026-39820"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-39820/references"
    },
    {
      "vulnerability": {
        "name": "MINI-55cc-vhv6-8pjf",
        "aliases": [
          "CVE-2026-39833"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-39833/references"
    },
    {
      "vulnerability": {
        "name": "MINI-55j6-fpf6-w4pg",
        "aliases": [
          "GHSA-4xgf-cpjx-pc3j"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/mcp-server-git@2026.6.16-r0"
            }
          ]
        }
      ],
      "status": "under_investigation"
    },
    {
      "vulnerability": {
        "name": "MINI-5699-2qf6-m8cp",
        "aliases": [
          "CVE-2026-5435"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/glibc@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/glibc-locale-posix@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/ld-linux@2.43-r4"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-577q-gwpm-5335",
        "aliases": [
          "CVE-2024-47081"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/py3-pip-wheel@26.1.2-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-5789-c952-wmp2",
        "aliases": [
          "CVE-2025-29087"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/sqlite-libs@3.53.2-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-58pm-m586-rj2q",
        "aliases": [
          "CVE-2025-48385"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git@2.54.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-597w-2h7h-wvg8",
        "aliases": [
          "CVE-2025-8194"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-59gr-cjgp-3r25",
        "aliases": [
          "CVE-2026-27142"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-27142/references"
    },
    {
      "vulnerability": {
        "name": "MINI-5cf5-vr7m-pgf5",
        "aliases": [
          "CVE-2026-3446"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-5f54-qcm5-6c7f",
        "aliases": [
          "CVE-2025-6075"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-5fwx-pgcg-m63x",
        "aliases": [
          "CVE-2025-69421"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-5hmj-4xxq-vv53",
        "aliases": [
          "CVE-2025-4138"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-5hvr-r9jp-293c",
        "aliases": [
          "CVE-2026-39823"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-39823/references"
    },
    {
      "vulnerability": {
        "name": "MINI-5jmq-24wv-jjvh",
        "aliases": [
          "CVE-2026-42502"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-42502/references"
    },
    {
      "vulnerability": {
        "name": "MINI-5r97-32mg-x7g3",
        "aliases": [
          "CVE-2026-39824"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-39824/references"
    },
    {
      "vulnerability": {
        "name": "MINI-5vgp-p55f-fg9q",
        "aliases": [
          "CVE-2025-61725"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-5vhh-5ppp-9fc3",
        "aliases": [
          "CVE-2025-3277"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/sqlite-libs@3.53.2-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-5vqv-cgr7-mvv6",
        "aliases": [
          "CVE-2026-42766"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-6378-ggcg-mxf2",
        "aliases": [
          "CVE-2026-34182"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-63j8-j68g-cmcw",
        "aliases": [
          "CVE-2025-13837"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-646c-qwjc-fhrr",
        "aliases": [
          "CVE-2026-22795"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-647h-5wjm-hwvm",
        "aliases": [
          "CVE-2026-34181"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-65xw-w3w7-rq9j",
        "aliases": [
          "CVE-2025-69420"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-66qv-qjhf-p8mr",
        "aliases": [
          "CVE-2025-48386"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git@2.54.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-6888-qchf-6vhq",
        "aliases": [
          "CVE-2026-6253"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcurl-openssl4@8.21.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-697q-w5vg-r6cr",
        "aliases": [
          "CVE-2024-13176"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-6fhg-294p-4g63",
        "aliases": [
          "CVE-2025-13462"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-6h2g-99h6-v75g",
        "aliases": [
          "CVE-2026-39817"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-39817/references"
    },
    {
      "vulnerability": {
        "name": "MINI-6v47-g9m7-fc8f",
        "aliases": [
          "CVE-2026-3298"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "not_affected",
      "justification": "vulnerable_code_not_in_execute_path"
    },
    {
      "vulnerability": {
        "name": "MINI-729g-cq3r-6xhp",
        "aliases": [
          "CVE-2026-27139"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-27139/references"
    },
    {
      "vulnerability": {
        "name": "MINI-749q-8cfx-fw4g",
        "aliases": [
          "CVE-2026-4873"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcurl-openssl4@8.21.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-74xc-754x-9rpc",
        "aliases": [
          "CVE-2025-58187"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-7564-44pv-4cf3",
        "aliases": [
          "CVE-2026-0672"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-7635-9xr6-f493",
        "aliases": [
          "CVE-2025-12084"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-763q-98mw-3g34",
        "aliases": [
          "CVE-2026-7774"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-76g2-rpr6-f3pc",
        "aliases": [
          "CVE-2026-27145"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-27145/references"
    },
    {
      "vulnerability": {
        "name": "MINI-7hf4-86gx-5242",
        "aliases": [
          "CVE-2026-7168"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcurl-openssl4@8.21.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-7hhq-w9p3-cxv4",
        "aliases": [
          "CVE-2026-1703"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/py3-pip-wheel@26.1.2-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-7hwv-2fw6-6jwr",
        "aliases": [
          "CVE-2026-42768"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-7p29-97qp-wmmf",
        "aliases": [
          "CVE-2026-42499"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-42499/references"
    },
    {
      "vulnerability": {
        "name": "MINI-7p56-f8q3-rc59",
        "aliases": [
          "GHSA-537c-gmf6-5ccf"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/mcp-server-git@2026.6.16-r0"
            }
          ]
        }
      ],
      "status": "under_investigation"
    },
    {
      "vulnerability": {
        "name": "MINI-7xm6-82wh-gj9f",
        "aliases": [
          "CVE-2025-15469"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-84x5-v9mj-62q4",
        "aliases": [
          "CVE-2026-2297"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-858x-vmq9-qjvx",
        "aliases": [
          "CVE-2026-42506"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-42506/references"
    },
    {
      "vulnerability": {
        "name": "MINI-86ph-7gr4-7xq8",
        "aliases": [
          "CVE-2026-46598"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-46598/references"
    },
    {
      "vulnerability": {
        "name": "MINI-8ccc-42j9-wq95",
        "aliases": [
          "CVE-2025-9232"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-8f3x-wm75-6446",
        "aliases": [
          "CVE-2024-52005"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git@2.54.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-8fq4-p7r9-vcm5",
        "aliases": [
          "CVE-2010-4756"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/glibc@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/glibc-locale-posix@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/ld-linux@2.43-r4"
            }
          ]
        }
      ],
      "status": "not_affected",
      "justification": "vulnerable_code_not_present",
      "impact_statement": "The CVE in glibc is not considered a vulnerability by most distributions. Glibc implements glob according to POSIX standards, which do not guarantee memory safety. Network facing services should sanitize the inputs to glob, or configure resource limits."
    },
    {
      "vulnerability": {
        "name": "MINI-8hx7-43h6-43mh",
        "aliases": [
          "CVE-2026-48526"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/mcp-server-git@2026.6.16-r0"
            }
          ]
        }
      ],
      "status": "under_investigation"
    },
    {
      "vulnerability": {
        "name": "MINI-8mv2-hvr9-qw76",
        "aliases": [
          "CVE-2026-34180"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-8qf7-3jq4-43w3",
        "aliases": [
          "CVE-2025-5702"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/glibc@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/glibc-locale-posix@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/ld-linux@2.43-r4"
            }
          ]
        }
      ],
      "status": "not_affected",
      "justification": "component_not_present",
      "impact_statement": "The CVE is specific to PowerPC environments and it does not affect Minimus packages."
    },
    {
      "vulnerability": {
        "name": "MINI-93cg-vw5m-2pvr",
        "aliases": [
          "CVE-2026-39835"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-39835/references"
    },
    {
      "vulnerability": {
        "name": "MINI-9482-2jh4-39pv",
        "aliases": [
          "CVE-2026-6238"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/glibc@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/glibc-locale-posix@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/ld-linux@2.43-r4"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-969r-f88h-qvwq",
        "aliases": [
          "CVE-2026-46595"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-46595/references"
    },
    {
      "vulnerability": {
        "name": "MINI-98vj-rh27-mv3g",
        "aliases": [
          "CVE-2024-11053"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcurl-openssl4@8.21.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-9cj5-c382-h69r",
        "aliases": [
          "CVE-2025-11468"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-9j9p-qvfh-wrxp",
        "aliases": [
          "CVE-2026-42507"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-42507/references"
    },
    {
      "vulnerability": {
        "name": "MINI-9p7h-6f7r-988m",
        "aliases": [
          "CVE-2025-0665"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcurl-openssl4@8.21.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-9pw9-7q9c-mmjj",
        "aliases": [
          "CVE-2026-42769"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-9q6r-wh3r-gg9m",
        "aliases": [
          "CVE-2026-6276"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcurl-openssl4@8.21.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-9rp5-cv62-7m5g",
        "aliases": [
          "CVE-2026-53539"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/mcp-server-git@2026.6.16-r0"
            }
          ]
        }
      ],
      "status": "under_investigation"
    },
    {
      "vulnerability": {
        "name": "MINI-9v2v-p536-fj4x",
        "aliases": [
          "CVE-2026-53538"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/mcp-server-git@2026.6.16-r0"
            }
          ]
        }
      ],
      "status": "under_investigation"
    },
    {
      "vulnerability": {
        "name": "MINI-9v6q-v9gm-v6v8",
        "aliases": [
          "CVE-2026-8328"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-9wj9-v876-v8x9",
        "aliases": [
          "CVE-2025-10148"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcurl-openssl4@8.21.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-9x7c-882f-gc36",
        "aliases": [
          "CVE-2019-1010022"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/glibc@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/glibc-locale-posix@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/ld-linux@2.43-r4"
            }
          ]
        }
      ],
      "status": "not_affected",
      "justification": "vulnerable_code_not_present",
      "impact_statement": "The CVE is disputed and the upstream project has determined it does not pose a risk."
    },
    {
      "vulnerability": {
        "name": "MINI-c2qm-45cv-hv74",
        "aliases": [
          "CVE-2026-42767"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-c2v6-c37f-c9f9",
        "aliases": [
          "GHSA-6v7p-g79w-8964"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/py3-pip-wheel@26.1.2-r0"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/GHSA-6v7p-g79w-8964/references"
    },
    {
      "vulnerability": {
        "name": "MINI-c4c9-447g-v5vw",
        "aliases": [
          "CVE-2025-61731"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2025-61731/references"
    },
    {
      "vulnerability": {
        "name": "MINI-c73v-v84q-fmgc",
        "aliases": [
          "CVE-2025-13034"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcurl-openssl4@8.21.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-c8r3-rcw9-8mq2",
        "aliases": [
          "CVE-2026-3479"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-cc36-6cw4-x654",
        "aliases": [
          "CVE-2025-61723"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-cgvf-3w8p-hxpg",
        "aliases": [
          "CVE-2026-45447"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-cgwm-f9qc-mmp3",
        "aliases": [
          "CVE-2026-27144"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-27144/references"
    },
    {
      "vulnerability": {
        "name": "MINI-cmhj-cxx6-rxjw",
        "aliases": [
          "CVE-2026-42508"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-42508/references"
    },
    {
      "vulnerability": {
        "name": "MINI-cmmm-vp98-cjhp",
        "aliases": [
          "CVE-2026-5450"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/glibc@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/glibc-locale-posix@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/ld-linux@2.43-r4"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-cp3r-rp4g-f926",
        "aliases": [
          "CVE-2026-11824"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/sqlite-libs@3.53.2-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-cpr6-qwph-69pf",
        "aliases": [
          "CVE-2025-66471"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/py3-pip-wheel@26.1.2-r0"
            }
          ]
        }
      ],
      "status": "not_affected",
      "justification": "inline_mitigations_already_exist"
    },
    {
      "vulnerability": {
        "name": "MINI-cqv8-h4hv-gqgj",
        "aliases": [
          "CVE-2025-4947"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcurl-openssl4@8.21.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-cw8c-v9q8-hw7w",
        "aliases": [
          "CVE-2025-61728"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2025-61728/references"
    },
    {
      "vulnerability": {
        "name": "MINI-f23m-2chc-2rhj",
        "aliases": [
          "CVE-2025-8291"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-f36x-662r-2mqh",
        "aliases": [
          "CVE-2025-47911"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-f37h-5hrj-mhjj",
        "aliases": [
          "CVE-2026-32280"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-32280/references"
    },
    {
      "vulnerability": {
        "name": "MINI-f737-g5qm-9555",
        "aliases": [
          "CVE-2024-3220"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "not_affected",
      "justification": "component_not_present",
      "impact_statement": "The CVE exists only in Windows."
    },
    {
      "vulnerability": {
        "name": "MINI-f9cq-mwg9-63ww",
        "aliases": [
          "CVE-2025-8869"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/py3-pip-wheel@26.1.2-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-f9qm-gx9g-pp9f",
        "aliases": [
          "CVE-2025-69419"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-fc27-p2hp-p579",
        "aliases": [
          "CVE-2025-61732"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2025-61732/references"
    },
    {
      "vulnerability": {
        "name": "MINI-fg85-78mg-4566",
        "aliases": [
          "CVE-2025-4575"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-fh4c-v6j3-p5x7",
        "aliases": [
          "CVE-2026-0865"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-fhg5-959w-c74m",
        "aliases": [
          "CVE-2026-53540"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/mcp-server-git@2026.6.16-r0"
            }
          ]
        }
      ],
      "status": "under_investigation"
    },
    {
      "vulnerability": {
        "name": "MINI-fjgf-3rf4-f8px",
        "aliases": [
          "CVE-2026-6429"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcurl-openssl4@8.21.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-fwf2-7rf8-4737",
        "aliases": [
          "CVE-2026-25679"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-25679/references"
    },
    {
      "vulnerability": {
        "name": "MINI-fwp2-jchc-m3vq",
        "aliases": [
          "CVE-2026-53537"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/mcp-server-git@2026.6.16-r0"
            }
          ]
        }
      ],
      "status": "under_investigation"
    },
    {
      "vulnerability": {
        "name": "MINI-g56x-qqhr-j2wr",
        "aliases": [
          "CVE-2026-4224"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-g6hw-3349-6p6f",
        "aliases": [
          "CVE-2025-58188"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-g7m2-5mcg-r5jv",
        "aliases": [
          "CVE-2026-25645"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/py3-pip-wheel@26.1.2-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-g8cr-599c-g56j",
        "aliases": [
          "CVE-2025-50181"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/py3-pip-wheel@26.1.2-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-gf7q-pwf6-rv36",
        "aliases": [
          "CVE-2026-3805"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcurl-openssl4@8.21.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-ggqv-3w5g-76qx",
        "aliases": [
          "CVE-2026-4437"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/glibc@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/glibc-locale-posix@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/ld-linux@2.43-r4"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-gmgc-8c7p-5cgw",
        "aliases": [
          "CVE-2025-58185"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-gmw5-575m-65j7",
        "aliases": [
          "CVE-2025-4516"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-gvgf-hhg6-7pmh",
        "aliases": [
          "CVE-2024-12718"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-h27q-vx92-whxq",
        "aliases": [
          "CVE-2025-47912"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-h2xx-x282-xc9r",
        "aliases": [
          "CVE-2025-58183"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-h4jq-xcr6-grr6",
        "aliases": [
          "CVE-2026-5773"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcurl-openssl4@8.21.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-h4mj-39r7-gfh4",
        "aliases": [
          "CVE-2026-25681"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-25681/references"
    },
    {
      "vulnerability": {
        "name": "MINI-h554-5xj6-wrxh",
        "aliases": [
          "CVE-2025-11187"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-h778-34h4-5q7x",
        "aliases": [
          "CVE-2026-48523"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/mcp-server-git@2026.6.16-r0"
            }
          ]
        }
      ],
      "status": "under_investigation"
    },
    {
      "vulnerability": {
        "name": "MINI-h86j-p3w4-fqpf",
        "aliases": [
          "CVE-2026-11822"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/sqlite-libs@3.53.2-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-h9r5-5rjf-x9g3",
        "aliases": [
          "CVE-2026-42504"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-42504/references"
    },
    {
      "vulnerability": {
        "name": "MINI-hhw9-365j-x48w",
        "aliases": [
          "CVE-2026-39827"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-39827/references"
    },
    {
      "vulnerability": {
        "name": "MINI-hmf3-8479-529h",
        "aliases": [
          "CVE-2025-61724"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-hmx2-2896-7vc4",
        "aliases": [
          "CVE-2025-61730"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2025-61730/references"
    },
    {
      "vulnerability": {
        "name": "MINI-hpvj-7qwf-4f2c",
        "aliases": [
          "CVE-2026-27140"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-27140/references"
    },
    {
      "vulnerability": {
        "name": "MINI-hrpg-hxw9-9hc6",
        "aliases": [
          "CVE-2025-61727"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2025-61727/references"
    },
    {
      "vulnerability": {
        "name": "MINI-hrr9-5jqm-32g4",
        "aliases": [
          "CVE-2026-28390"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-hrrg-xpmx-8mjr",
        "aliases": [
          "CVE-2026-3784"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcurl-openssl4@8.21.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-hw24-mf7w-9fwh",
        "aliases": [
          "CVE-2026-34183"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-hwjj-mj9h-qh5g",
        "aliases": [
          "CVE-2026-27171"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/zlib@1.3.2-r1"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-j2hc-gh76-8xqx",
        "aliases": [
          "CVE-2025-68121"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2025-68121/references"
    },
    {
      "vulnerability": {
        "name": "MINI-j384-f4q6-cfjg",
        "aliases": [
          "CVE-2024-12797"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-j53j-532g-vf6q",
        "aliases": [
          "CVE-2026-27135"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libnghttp2-14@1.69.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-j6cx-q9xc-j93v",
        "aliases": [
          "CVE-2026-32281"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-32281/references"
    },
    {
      "vulnerability": {
        "name": "MINI-j9fm-c3gf-623q",
        "aliases": [
          "CVE-2025-47906"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-jf68-c428-p2q8",
        "aliases": [
          "CVE-2026-28388"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-jfvw-w577-8x8g",
        "aliases": [
          "CVE-2025-6069"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-jmmw-4597-rmjp",
        "aliases": [
          "CVE-2019-1010023"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/glibc@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/glibc-locale-posix@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/ld-linux@2.43-r4"
            }
          ]
        }
      ],
      "status": "not_affected",
      "justification": "vulnerable_code_not_present",
      "impact_statement": "The CVE is disputed and the upstream project has determined it does not pose a risk."
    },
    {
      "vulnerability": {
        "name": "MINI-jpp5-55pm-p7m5",
        "aliases": [
          "CVE-2026-6019"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-jqpx-g9hc-59qc",
        "aliases": [
          "CVE-2026-39830"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-39830/references"
    },
    {
      "vulnerability": {
        "name": "MINI-jrcj-3f3v-jhhf",
        "aliases": [
          "CVE-2026-44431"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/py3-pip-wheel@26.1.2-r0"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-44431/references"
    },
    {
      "vulnerability": {
        "name": "MINI-jrmj-9f3h-wrh5",
        "aliases": [
          "CVE-2026-28389"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-jvq7-3xx7-f62p",
        "aliases": [
          "CVE-2026-3276"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-m46w-6g95-3rfp",
        "aliases": [
          "CVE-2025-12781"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-m6h2-g3c7-pwrx",
        "aliases": [
          "CVE-2024-12254"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-m7f4-8wx4-jhqp",
        "aliases": [
          "CVE-2025-58181"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-m8jj-632g-59cq",
        "aliases": [
          "CVE-2026-2673"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-mcq6-rvw4-j52p",
        "aliases": [
          "CVE-2025-15366"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2025-15366/references"
    },
    {
      "vulnerability": {
        "name": "MINI-mg8c-6mjr-95cq",
        "aliases": [
          "CVE-2025-15282"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-mgc9-4rpq-57xp",
        "aliases": [
          "CVE-2025-66199"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-mp2m-wjv9-45g9",
        "aliases": [
          "CVE-2025-15468"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-mp8w-jgq5-5x86",
        "aliases": [
          "CVE-2026-4539"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/py3-pip-wheel@26.1.2-r0"
            }
          ]
        }
      ],
      "status": "not_affected",
      "justification": "vulnerable_code_not_present"
    },
    {
      "vulnerability": {
        "name": "MINI-mwmc-c375-m54v",
        "aliases": [
          "CVE-2026-5545"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcurl-openssl4@8.21.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-mwpf-2jq5-22xw",
        "aliases": [
          "CVE-2026-21441"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/py3-pip-wheel@26.1.2-r0"
            }
          ]
        }
      ],
      "status": "not_affected",
      "justification": "vulnerable_code_cannot_be_controlled_by_adversary"
    },
    {
      "vulnerability": {
        "name": "MINI-mxh7-mw93-fg88",
        "aliases": [
          "CVE-2025-15467"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-p23x-3qq4-gvj4",
        "aliases": [
          "CVE-2026-32289"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-32289/references"
    },
    {
      "vulnerability": {
        "name": "MINI-p34f-vvvw-r34h",
        "aliases": [
          "CVE-2026-39828"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-39828/references"
    },
    {
      "vulnerability": {
        "name": "MINI-p7j9-h4p9-phmg",
        "aliases": [
          "CVE-2026-33811"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-33811/references"
    },
    {
      "vulnerability": {
        "name": "MINI-pgh4-63g8-cmpw",
        "aliases": [
          "CVE-2026-4786"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-phc3-7qpg-76g2",
        "aliases": [
          "CVE-2025-15281"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/glibc@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/glibc-locale-posix@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/ld-linux@2.43-r4"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-pmrw-f84h-j4wh",
        "aliases": [
          "CVE-2025-61729"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2025-61729/references"
    },
    {
      "vulnerability": {
        "name": "MINI-pp4h-f74w-w939",
        "aliases": [
          "CVE-2026-42764"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-ppm5-3j96-36r2",
        "aliases": [
          "CVE-2025-5399"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcurl-openssl4@8.21.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-pqf4-534v-vpj3",
        "aliases": [
          "CVE-2025-4330"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-pr6c-f4pr-c7w3",
        "aliases": [
          "CVE-2026-39832"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-39832/references"
    },
    {
      "vulnerability": {
        "name": "MINI-pr9c-2v5q-34m2",
        "aliases": [
          "CVE-2025-5745"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/glibc@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/glibc-locale-posix@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/ld-linux@2.43-r4"
            }
          ]
        }
      ],
      "status": "not_affected",
      "justification": "component_not_present",
      "impact_statement": "The CVE is specific to PowerPC environments and it does not affect Minimus packages."
    },
    {
      "vulnerability": {
        "name": "MINI-pvpm-2qx6-hqqp",
        "aliases": [
          "CVE-2024-50602"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-pxj3-wgr4-3ff7",
        "aliases": [
          "CVE-2024-9287"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-pxxf-6g45-6962",
        "aliases": [
          "CVE-2026-31789"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-q86x-4f29-q5jr",
        "aliases": [
          "CVE-2025-58050"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libpcre2-8-0@10.47-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-qcm2-r5qc-cm2v",
        "aliases": [
          "CVE-2026-44432"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/py3-pip-wheel@26.1.2-r0"
            }
          ]
        }
      ],
      "status": "not_affected",
      "justification": "inline_mitigations_already_exist"
    },
    {
      "vulnerability": {
        "name": "MINI-qg2w-mv6w-hjxw",
        "aliases": [
          "CVE-2025-69418"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-qg6h-2m68-9vvh",
        "aliases": [
          "CVE-2025-14819"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcurl-openssl4@8.21.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-qpw6-5wrm-6522",
        "aliases": [
          "CVE-2025-47914"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-qq28-2xj2-3r49",
        "aliases": [
          "CVE-2025-61726"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2025-61726/references"
    },
    {
      "vulnerability": {
        "name": "MINI-qq4q-xwvj-q626",
        "aliases": [
          "CVE-2026-42501"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-42501/references"
    },
    {
      "vulnerability": {
        "name": "MINI-qw8f-635m-mgxw",
        "aliases": [
          "CVE-2026-48525"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/mcp-server-git@2026.6.16-r0"
            }
          ]
        }
      ],
      "status": "under_investigation"
    },
    {
      "vulnerability": {
        "name": "MINI-r27c-vgmp-9fvq",
        "aliases": [
          "CVE-2026-9669"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-r5x8-hhfx-4867",
        "aliases": [
          "CVE-2019-1010024"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/glibc@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/glibc-locale-posix@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/ld-linux@2.43-r4"
            }
          ]
        }
      ],
      "status": "not_affected",
      "justification": "vulnerable_code_not_present",
      "impact_statement": "The CVE is disputed and the upstream project has determined it does not pose a risk."
    },
    {
      "vulnerability": {
        "name": "MINI-r7cq-9vm9-85r8",
        "aliases": [
          "CVE-2026-33810"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-33810/references"
    },
    {
      "vulnerability": {
        "name": "MINI-rcgx-hgc5-45fx",
        "aliases": [
          "CVE-2026-45445"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-rfjw-6mc7-895q",
        "aliases": [
          "CVE-2026-28387"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-rgw6-m9rq-wr8j",
        "aliases": [
          "CVE-2026-0915"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/glibc@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/glibc-locale-posix@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/ld-linux@2.43-r4"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-rgx9-32f2-vvq5",
        "aliases": [
          "CVE-2026-6100"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-rhfj-8r8r-9755",
        "aliases": [
          "CVE-2026-31790"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-rj3h-gp23-63xh",
        "aliases": [
          "CVE-2025-68160"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-rj3p-8cm7-5r3h",
        "aliases": [
          "CVE-2025-58189"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-rjgr-j6qr-67h9",
        "aliases": [
          "CVE-2026-27143"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-27143/references"
    },
    {
      "vulnerability": {
        "name": "MINI-rmxr-wc9h-7mx8",
        "aliases": [
          "CVE-2025-15367"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2025-15367/references"
    },
    {
      "vulnerability": {
        "name": "MINI-rpf9-4p9f-qx57",
        "aliases": [
          "CVE-2025-8058"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/glibc@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/glibc-locale-posix@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/ld-linux@2.43-r4"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-rr82-fgx3-x9ph",
        "aliases": [
          "CVE-2022-45142"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/heimdal-libs@7.8.0-r2"
            }
          ]
        }
      ],
      "status": "not_affected",
      "justification": "vulnerable_code_not_present",
      "impact_statement": "Minimus initial Heimdal package version 7.8.0-r0 was not vulnerable for CVE-2022-45142"
    },
    {
      "vulnerability": {
        "name": "MINI-rw9g-q9x5-6m4v",
        "aliases": [
          "CVE-2026-3219"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/py3-pip-wheel@26.1.2-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-rwpg-585r-f3rp",
        "aliases": [
          "CVE-2026-39819"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-39819/references"
    },
    {
      "vulnerability": {
        "name": "MINI-v4jw-865m-9wr6",
        "aliases": [
          "CVE-2026-3644"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-v5w4-6m28-fq96",
        "aliases": [
          "CVE-2026-42770"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-v663-rxcv-934c",
        "aliases": [
          "CVE-2026-39826"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-39826/references"
    },
    {
      "vulnerability": {
        "name": "MINI-v923-fccv-65fp",
        "aliases": [
          "CVE-2025-58190"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-v932-4r2f-cqgq",
        "aliases": [
          "CVE-2025-5025"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcurl-openssl4@8.21.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-vcpx-376x-9c82",
        "aliases": [
          "CVE-2026-4519"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-vcq4-6wfx-jfg4",
        "aliases": [
          "CVE-2026-39825"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-39825/references"
    },
    {
      "vulnerability": {
        "name": "MINI-vcq9-jwg7-42gr",
        "aliases": [
          "CVE-2025-15079"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcurl-openssl4@8.21.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-vgh4-22cx-ffr7",
        "aliases": [
          "CVE-2024-9681"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcurl-openssl4@8.21.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-vjfr-qc3q-mpw4",
        "aliases": [
          "CVE-2025-4517"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-vjv6-qvc8-pr2r",
        "aliases": [
          "CVE-2026-1502"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-vpw2-rj8h-797x",
        "aliases": [
          "CVE-2025-47907"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-vq8c-vrvw-h2g8",
        "aliases": [
          "CVE-2026-22796"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-vq9w-8629-wf7g",
        "aliases": [
          "CVE-2025-66418"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/py3-pip-wheel@26.1.2-r0"
            }
          ]
        }
      ],
      "status": "not_affected",
      "justification": "inline_mitigations_already_exist"
    },
    {
      "vulnerability": {
        "name": "MINI-vqpm-8q3q-9h4j",
        "aliases": [
          "CVE-2025-6965"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/sqlite-libs@3.53.2-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-vr3g-7rxg-wq23",
        "aliases": [
          "CVE-2025-9086"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcurl-openssl4@8.21.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-vv3h-fjjg-2373",
        "aliases": [
          "CVE-2026-9076"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-vv9p-q45w-3qm8",
        "aliases": [
          "CVE-2026-4046"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/glibc@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/glibc-locale-posix@2.43-r4"
            },
            {
              "@id": "pkg:apk/minimos/ld-linux@2.43-r4"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-vvcg-m49w-mp86",
        "aliases": [
          "CVE-2026-27136"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-27136/references"
    },
    {
      "vulnerability": {
        "name": "MINI-w2v6-vhhm-p38x",
        "aliases": [
          "CVE-2025-15224"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcurl-openssl4@8.21.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-w4p6-33x2-v3jq",
        "aliases": [
          "CVE-2026-22184"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/zlib@1.3.2-r1"
            }
          ]
        }
      ],
      "status": "not_affected",
      "justification": "vulnerable_code_not_present",
      "impact_statement": "This vulnerability was disputed."
    },
    {
      "vulnerability": {
        "name": "MINI-w8cf-m39w-8m59",
        "aliases": [
          "CVE-2025-4435"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-wc94-jv56-vprg",
        "aliases": [
          "CVE-2025-47273"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/py3-pip-wheel@26.1.2-r0"
            }
          ]
        }
      ],
      "status": "not_affected",
      "justification": "vulnerable_code_not_present",
      "impact_statement": "The CVE does not affect pip because it vendors setuptools with the affected code stripped out: https://github.com/pypa/pip/tree/01857ef79f59a98db592bacb6e7b48f354528c80/src/pip/_vendor#modifications"
    },
    {
      "vulnerability": {
        "name": "MINI-wf93-g9r6-c9mh",
        "aliases": [
          "CVE-2026-33814"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-33814/references"
    },
    {
      "vulnerability": {
        "name": "MINI-wg97-869f-5822",
        "aliases": [
          "CVE-2024-50349"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git@2.54.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-wggm-33cc-6qg6",
        "aliases": [
          "CVE-2025-14017"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcurl-openssl4@8.21.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-wjwx-mxp5-69f6",
        "aliases": [
          "CVE-2025-10966"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcurl-openssl4@8.21.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-wmv5-g8h3-q397",
        "aliases": [
          "CVE-2026-39821"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-39821/references"
    },
    {
      "vulnerability": {
        "name": "MINI-wx5r-j65m-h48p",
        "aliases": [
          "CVE-2025-47913"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-x64v-rrxq-pfj9",
        "aliases": [
          "CVE-2025-4674"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-x9rw-63qc-m83v",
        "aliases": [
          "CVE-2026-45409"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/py3-pip-wheel@26.1.2-r0"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-45409/references"
    },
    {
      "vulnerability": {
        "name": "MINI-xj2f-xf95-r72v",
        "aliases": [
          "CVE-2026-32283"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-32283/references"
    },
    {
      "vulnerability": {
        "name": "MINI-xj5v-9w85-65j8",
        "aliases": [
          "CVE-2026-32288"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "affected",
      "action_statement": "For more context and potential remediation information, review the References tab: https://images.minimus.io/advisories/CVE-2026-32288/references"
    },
    {
      "vulnerability": {
        "name": "MINI-xm2w-7vw4-xgch",
        "aliases": [
          "CVE-2025-58186"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/git-lfs@3.7.1-r10"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-xq7g-j9m9-24w7",
        "aliases": [
          "CVE-2026-1299"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/python-3.13@3.13.14-r0"
            },
            {
              "@id": "pkg:apk/minimos/python-3.13-base@3.13.14-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-xw4j-54fj-c8q9",
        "aliases": [
          "CVE-2025-0725"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcurl-openssl4@8.21.0-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    },
    {
      "vulnerability": {
        "name": "MINI-xxrx-crr8-74g3",
        "aliases": [
          "CVE-2024-9143"
        ]
      },
      "products": [
        {
          "@id": "pkg:oci/mcp-git",
          "hashes": {
            "sha-256": "sha256:0a03cd86ac72729b7e8dbd5d3460a7323ac1fa4fca69ea605d4eac2182eeb1e1"
          },
          "subcomponents": [
            {
              "@id": "pkg:apk/minimos/libcrypto3@3.5.7-r0"
            },
            {
              "@id": "pkg:apk/minimos/libssl3@3.5.7-r0"
            }
          ]
        }
      ],
      "status": "fixed"
    }
  ]
}