| Fluentd Project |
| 1 |
Denial of Service (DoS) via Decompression Bomb in `in_s3` (CVE-2026-44162) |
https://github.com/fluent/fluent-plugin-s3/security/advisories/GHSA-xv9w-7v6q-hpjh
|
| 2 |
Denial of Service (DoS) via Gzip Decompression Bomb in `in_http` and `in_forward` (CVE-2026-44160) |
https://github.com/fluent/fluentd/security/advisories/GHSA-j9cw-hwqf-85w7
|
| 3 |
Denial of Service (DoS) via Large Payloads and Decompression Bombs in `in_opentelemetry` (CVE-2026-44163) |
https://github.com/fluent-plugins-nursery/fluent-plugin-opentelemetry/security/advisories/GHSA-2jc5-xhx8-qj6h
|
| 4 |
Exposure of Sensitive Information via Monitor Agent API (CVE-2026-44025) |
https://github.com/fluent/fluentd/security/advisories/GHSA-pr7j-96cj-549h
|
| 5 |
Remote Code Execution (RCE) via Arbitrary File Write in `${tag}` Placeholder (CVE-2026-44024) |
https://github.com/fluent/fluentd/security/advisories/GHSA-44hj-4m45-frj3
|
| 6 |
Server-Side Request Forgery (SSRF) via Placeholder Expansion in `out_http` (CVE-2026-44161) |
https://github.com/fluent/fluentd/security/advisories/GHSA-72f5-rr8c-r6gr
|
| JVN |
| 7 |
株式会社クリアコードからの情報 |
https://jvn.jp/jp/JVN36011274/997309/index.html
|
| 株式会社クリアコード |
| 8 |
LTS版 Fluent Package v6.0.4をリリース |
https://www.clear-code.com/blog/2026/6/26/fluent-package-v6.0.4.html
|