{"api_version":"v1","generated_at":"2026-10-06T22:35:00+00:00","product":{"cve_count":3,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-apache-software-foundation-apache-arrow-1a7ff4f90a92","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"Apache Arrow","next_cursor":null,"observations":[{"affected":"15.0.0 \u2264 23.0.0","affected_versions_present":true,"cve_id":"CVE-2026-25087","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-25087","fixed":"23.0.1","last_modified":"2026-02-20T09:56:43.018Z","patch_url":"https://github.com/apache/arrow/pull/48925","primary_source":"","published":"2026-02-17T13:18:25.494Z"},{"affected":"Apache Arrow 0.14.0 to 0.14.1","affected_versions_present":true,"cve_id":"CVE-2019-12408","cve_url":"https://cve.blacktree.nl/cve/CVE-2019-12408","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-08-04T23:17:40.239Z","patch_url":"","primary_source":"","published":"2019-11-08T18:20:16.000Z"},{"affected":"Apache Arrow 0.12.0 to 0.14.1","affected_versions_present":true,"cve_id":"CVE-2019-12410","cve_url":"https://cve.blacktree.nl/cve/CVE-2019-12410","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-08-04T23:17:40.008Z","patch_url":"","primary_source":"","published":"2019-11-08T18:04:52.000Z"}],"source_generated_at":"2026-10-06T06:22:27.870Z","vendor":"Apache Software Foundation"}}
