{"api_version":"v1","generated_at":"2026-10-06T16:05:00+00:00","product":{"cve_count":10,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-apache-software-foundation-apache-cassandra-5523eb25bd31","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"Apache Cassandra","next_cursor":null,"observations":[{"affected":"4.0 \u2264 4.0.19; 4.1 \u2264 4.1.10; 5.0 \u2264 5.0.6","affected_versions_present":true,"cve_id":"CVE-2026-32588","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-32588","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-04-09T14:43:57.808Z","patch_url":"","primary_source":"","published":"2026-04-07T16:42:52.361Z"},{"affected":"4.0 \u2264 4.0.19","affected_versions_present":true,"cve_id":"CVE-2026-27315","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-27315","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-04-09T14:38:23.271Z","patch_url":"https://issues.apache.org/jira/browse/CASSANDRA-21180","primary_source":"","published":"2026-04-07T16:40:51.836Z"},{"affected":"5.0 \u2264 5.0.6","affected_versions_present":true,"cve_id":"CVE-2026-27314","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-27314","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-04-08T03:55:52.335Z","patch_url":"","primary_source":"","published":"2026-04-07T16:33:44.448Z"},{"affected":"4.0.16","affected_versions_present":true,"cve_id":"CVE-2025-26467","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-26467","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-02-26T17:48:12.624Z","patch_url":"","primary_source":"","published":"2025-08-25T14:06:28.761Z"},{"affected":"4.0.2 < 4.0.15; 4.1.0 < 4.1.8; 5.0-beta1 < 5.0.3","affected_versions_present":true,"cve_id":"CVE-2024-27137","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-27137","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-02-15T00:10:33.257Z","patch_url":"","primary_source":"","published":"2025-02-04T10:19:44.109Z"},{"affected":"4.0.0 \u2264 4.0.15; 4.1.0 \u2264 4.1.7; 5.0.0 \u2264 5.0.2","affected_versions_present":true,"cve_id":"CVE-2025-24860","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-24860","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-02-15T00:10:37.682Z","patch_url":"","primary_source":"","published":"2025-02-04T10:17:55.258Z"},{"affected":"3.0.0 \u2264 3.0.30; 3.1.0 \u2264 3.11.17; 4.0.0 \u2264 4.0.15; 4.1.0 \u2264 4.1.7; 5.0.0 \u2264 5.0.2","affected_versions_present":true,"cve_id":"CVE-2025-23015","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-23015","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-02-15T00:10:34.356Z","patch_url":"","primary_source":"","published":"2025-02-04T09:37:18.580Z"},{"affected":"4.0.0 \u2264 4.0.9; 4.1.0 \u2264 4.1.1","affected_versions_present":true,"cve_id":"CVE-2023-30601","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-30601","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-10-09T20:55:28.951Z","patch_url":"","primary_source":"","published":"2023-05-30T07:25:49.920Z"},{"affected":"3.0.0 < unspecified; unspecified < 3.0.26; 3.1 < unspecified; unspecified < 3.11.12; 4.0.0 < unspecified; unspecified < 4.0.2","affected_versions_present":true,"cve_id":"CVE-2021-44521","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-44521","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-08-04T04:25:16.640Z","patch_url":"https://jfrog.com/blog/cve-2021-44521-exploiting-apache-cassandra-user-defined-functions-for-remote-code-execution/","primary_source":"","published":"2022-02-11T12:20:12.000Z"},{"affected":"Apache Cassandra 3.8 to 3.11.1","affected_versions_present":true,"cve_id":"CVE-2018-8016","cve_url":"https://cve.blacktree.nl/cve/CVE-2018-8016","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-09-16T18:34:08.513Z","patch_url":"","primary_source":"","published":"2018-06-28T16:00:00.000Z"}],"source_generated_at":"2026-10-06T06:22:27.870Z","vendor":"Apache Software Foundation"}}
