Package
ipfs-cluster-fips
Component
github.com/pion/dtls/v2
Latest update
Fixed version
1.1.5-r8
5.9
CVSS V3
Build, ship, and run secure software with minimal, hardened container images — rebuilt from source daily and guarded under our industry-leading remediation SLA.
Start for freeStatus
Fixed version
1.1.5-r8Status
Impact
CVE-2026-26014 affects github.com/pion/dtls/v2, an indirect dependency of ipfs-cluster. The GHSA lists no patched version for the v2 module, indicating no upstream fix is available. The v3 module has been fixed in v3.0.11 and has been updated accordingly, but the v2 module is a separate import path and remains vulnerable.
Status
Impact
Govulncheck found vulnerable symbols in Go binary at usr/bin/ipfs-cluster-ctl.
Status