{"api_version":"v1","generated_at":"2026-10-08T06:15:00+00:00","product":{"cve_count":4,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-apache-software-foundation-apache-cxf-fediz-39735051ad00","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"Apache CXF Fediz","next_cursor":null,"observations":[{"affected":"prior to 1.4.4","affected_versions_present":true,"cve_id":"CVE-2018-8038","cve_url":"https://cve.blacktree.nl/cve/CVE-2018-8038","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-09-16T22:15:38.445Z","patch_url":"https://github.com/apache/cxf-fediz/commit/b6ed9865d0614332fa419fe4b6d0fe81bc2e660d","primary_source":"","published":"2018-07-05T13:00:00.000Z"},{"affected":"1.4.x prior to 1.4.3; prior to 1.3.3","affected_versions_present":true,"cve_id":"CVE-2017-12631","cve_url":"https://cve.blacktree.nl/cve/CVE-2017-12631","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-09-16T21:58:27.297Z","patch_url":"","primary_source":"","published":"2017-11-30T14:00:00.000Z"},{"affected":"prior to 1.4.0, 1.3.2 and 1.2.4.","affected_versions_present":true,"cve_id":"CVE-2017-7662","cve_url":"https://cve.blacktree.nl/cve/CVE-2017-7662","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-05T16:12:27.730Z","patch_url":"http://cxf.apache.org/security-advisories.data/CVE-2017-7662.txt.asc","primary_source":"","published":"2017-05-16T17:00:00.000Z"},{"affected":"prior to 1.4.0, 1.3.2 and 1.2.4.","affected_versions_present":true,"cve_id":"CVE-2017-7661","cve_url":"https://cve.blacktree.nl/cve/CVE-2017-7661","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-05T16:12:27.800Z","patch_url":"http://cxf.apache.org/security-advisories.data/CVE-2017-7661.txt.asc","primary_source":"","published":"2017-05-16T17:00:00.000Z"}],"source_generated_at":"2026-10-07T06:21:30.017Z","vendor":"Apache Software Foundation"}}
