{"api_version":"v1","generated_at":"2026-10-06T21:40:00+00:00","product":{"cve_count":2,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-apache-software-foundation-apache-commons-fileupload-23b0cfed6276","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"Apache Commons FileUpload","next_cursor":null,"observations":[{"affected":"1.0 < 1.6; 2.0.0-M1 < 2.0.0-M4","affected_versions_present":true,"cve_id":"CVE-2025-48976","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-48976","fixed":"Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/11258","last_modified":"2025-11-03T20:05:02.486Z","patch_url":"https://access.redhat.com/security/cve/CVE-2025-48976","primary_source":"","published":"2025-06-16T15:00:48.140Z"},{"affected":"< 1.5; 11.0.0-M1; 10.0.0-M1 \u2264 10.1.4; 9.0.0-M1 \u2264 9.0.70; 8.5.0 \u2264 8.5.84","affected_versions_present":true,"cve_id":"CVE-2023-24998","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-24998","fixed":"Before applying the update, back up your existing Red Hat JBoss Web Server installation (including all applications and configuration files). For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258","last_modified":"2025-11-03T21:47:24.224Z","patch_url":"https://access.redhat.com/security/cve/CVE-2023-24998","primary_source":"","published":"2023-02-20T15:57:07.372Z"}],"source_generated_at":"2026-10-06T06:22:27.870Z","vendor":"Apache Software Foundation"}}
