Home / Security updates / Datadog's Response to Vector Security Vulnerabilities (GHSA-rrfg-9487-mhp6, GHSA-qp6f-fpfx-4gg6, GHSA-6342-xwvw-c637)
Datadog's Response to Vector Security Vulnerabilities (GHSA-rrfg-9487-mhp6, GHSA-qp6f-fpfx-4gg6, GHSA-6342-xwvw-c637)
Security updates detail rendered from /security-updates/upd_c5d493a40627b4a6.
Overview
| ID | upd_c5d493a40627b4a6 |
| Collection | Security Updates |
| Provider | SafeBase |
| Company | Datadog |
| URL | - |
| Counts | - |
| Updated | - |
Raw record
| Field | Value |
|---|---|
| id | upd_c5d493a40627b4a6 |
| providerId | safebase |
| organizationId | org_69291cebe8d5d66e |
| trustCenterId | tc_3aed993e7dda3cf3 |
| title | Datadog's Response to Vector Security Vulnerabilities (GHSA-rrfg-9487-mhp6, GHSA-qp6f-fpfx-4gg6, GHSA-6342-xwvw-c637) |
| message | ## Summary Datadog's security team was notified on June 18, 2026 of three vulnerabilities in Vector, the open-source data pipeline tool, reported by DeMarcus Campbell, Information Security at International Exchange, Inc. (ICE), through coordinated disclosure. Patches for all three issues are available in Vector v0.57.0, released on July 14, 2026. Our investigation found no evidence that these vulnerabilities were exploited in the wild or that any Datadog customer data was accessed or exfiltrated. ## Advisory Details GSHA | Affected Component | Fixed In | | --- | --- | --- | | [GHSA-rrfg-9487-mhp6](https://github.com/vectordotdev/vector/security/advisories/GHSA-rrfg-9487-mhp6) | Vector logstash source | [v0.57.0](https://github.com/vectordotdev/vector/releases/tag/v0.57.0) | | [GHSA-qp6f-fpfx-4gg6](https://github.com/vectordotdev/vector/security/advisories/GHSA-qp6f-fpfx-4gg6) | Vector logstash source | [v0.57.0](https://github.com/vectordotdev/vector/releases/tag/v0.57.0) | | [GHSA- |
| url | - |
| publishedAt | 2026-07-15 |
| source | {
"field": "statuspage/public/compliance-update",
"category": "vulnerabilities"
} |
| company | {
"id": "org_69291cebe8d5d66e",
"name": "Datadog",
"domains": [
"trust.datadoghq.com",
"datadoghq.com"
]
} |
| trust_center | {
"id": "tc_3aed993e7dda3cf3",
"name": "Datadog",
"url": "https://trust.datadoghq.com",
"host": "trust.datadoghq.com"
} |
| provider | {
"id": "safebase",
"name": "SafeBase"
} |
| links | {
"self": "/v1/security-updates/upd_c5d493a40627b4a6",
"company": "/v1/companies/org_69291cebe8d5d66e",
"trust_center": "/v1/trust-centers/tc_3aed993e7dda3cf3",
"provider": "/v1/providers/safebase"
} |
Get this page with API
Rendered from the bluedoor Trust Centers API. Reproduce it:
GET https://api.bluedoor.sh/trust-centers/v1/security-updates/upd_c5d493a40627b4a6JSON