{"api_version":"v1","generated_at":"2026-10-07T00:40:00+00:00","product":{"cve_count":18,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-apache-software-foundation-apache-hadoop-2eb5e32c0d40","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"Apache Hadoop","next_cursor":null,"observations":[{"affected":"< 3.4.0","affected_versions_present":true,"cve_id":"CVE-2024-23454","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-23454","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-09-05T09:09:36.997Z","patch_url":"https://issues.apache.org/jira/browse/HADOOP-19031","primary_source":"","published":"2024-09-25T07:45:43.496Z"},{"affected":"3.3.1 < 3.3.5","affected_versions_present":true,"cve_id":"CVE-2023-26031","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-26031","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-02-13T16:44:42.474Z","patch_url":"","primary_source":"","published":"2023-11-16T08:15:50.808Z"},{"affected":"2.9.0 to 2.10.1, 3.0.0-alpha1 to 3.1.4, 3.2.0 to 3.2.3, and 3.3.0 to 3.3.3","affected_versions_present":true,"cve_id":"CVE-2021-25642","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-25642","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-08-03T20:11:28.113Z","patch_url":"","primary_source":"","published":"2022-08-25T00:00:00.000Z"},{"affected":"2.0.0 to 2.10.1; 3.0.0-alpha to 3.2.3; 3.3.0 to 3.3.2","affected_versions_present":true,"cve_id":"CVE-2022-25168","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-25168","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-08-03T04:36:05.786Z","patch_url":"","primary_source":"","published":"2022-08-04T14:30:17.000Z"},{"affected":"2.2.0 to 2.10.1, 3.0.0-alpha1 to 3.1.4, 3.2.0 to 3.2.2, and 3.3.0 to 3.3.1","affected_versions_present":true,"cve_id":"CVE-2021-33036","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-33036","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-08-03T23:42:19.282Z","patch_url":"","primary_source":"","published":"2022-06-15T14:25:14.000Z"},{"affected":"2.9.0 to 2.10.1; 3.0.0 to 3.1.4; 3.2.0 to 3.2.2; 3.3.0 to 3.3.1","affected_versions_present":true,"cve_id":"CVE-2021-37404","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-37404","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-08-04T01:16:03.989Z","patch_url":"","primary_source":"","published":"2022-06-13T07:00:16.000Z"},{"affected":"unspecified < 3.2.3; 3.3.1; 3.3.2","affected_versions_present":true,"cve_id":"CVE-2022-26612","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-26612","fixed":"3.4 < All*","last_modified":"2024-08-03T05:11:43.529Z","patch_url":"https://lists.apache.org/thread/hslo7wzw2449gv1jyjk8g6ttd7935fyz","primary_source":"","published":"2022-04-07T18:20:12.000Z"},{"affected":"Apache Hadoop 3.0.0-alpha1 to 3.0.0, 2.9.0, 2.8.0 to 2.8.3, 2.5.0 to 2.7.5","affected_versions_present":true,"cve_id":"CVE-2018-1296","cve_url":"https://cve.blacktree.nl/cve/CVE-2018-1296","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-09-16T19:47:24.798Z","patch_url":"","primary_source":"","published":"2019-02-07T22:00:00.000Z"},{"affected":"Apache Hadoop 2.7.4 to 2.7.6","affected_versions_present":true,"cve_id":"CVE-2018-11766","cve_url":"https://cve.blacktree.nl/cve/CVE-2018-11766","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-08-05T08:17:09.256Z","patch_url":"","primary_source":"","published":"2018-11-27T14:00:00.000Z"},{"affected":"Apache Hadoop 3.1.0, 3.0.0-alpha to 3.0.2, 2.9.0 to 2.9.1, 2.8.0 to 2.8.4, 2.0.0-alpha to 2.7.6, 0.23.0 to 0.23.11","affected_versions_present":true,"cve_id":"CVE-2018-8009","cve_url":"https://cve.blacktree.nl/cve/CVE-2018-8009","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-08-05T06:46:11.567Z","patch_url":"","primary_source":"","published":"2018-11-13T21:00:00.000Z"},{"affected":"2.7.3 to 2.7.4","affected_versions_present":true,"cve_id":"CVE-2017-15718","cve_url":"https://cve.blacktree.nl/cve/CVE-2017-15718","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-09-17T03:02:11.843Z","patch_url":"","primary_source":"","published":"2018-01-24T14:00:00.000Z"},{"affected":"0.23.0 to 0.23.11; 2.0.0-alpha to 2.8.2; 3.0.0-alpha to 3.0.0-beta1","affected_versions_present":true,"cve_id":"CVE-2017-15713","cve_url":"https://cve.blacktree.nl/cve/CVE-2017-15713","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-09-17T04:08:48.075Z","patch_url":"","primary_source":"","published":"2018-01-19T17:00:00.000Z"},{"affected":"2.6.1 to 2.6.5; 2.7.0 to 2.7.3; 3.0.0-alpha1 to 3.0.0-alpha3","affected_versions_present":true,"cve_id":"CVE-2017-3166","cve_url":"https://cve.blacktree.nl/cve/CVE-2017-3166","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-09-16T23:41:26.878Z","patch_url":"","primary_source":"","published":"2017-11-13T14:00:00.000Z"},{"affected":"2.6.0 to 2.6.4; 2.7.0 to 2.7.2","affected_versions_present":true,"cve_id":"CVE-2016-3086","cve_url":"https://cve.blacktree.nl/cve/CVE-2016-3086","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-09-16T17:13:54.507Z","patch_url":"http://mail-archives.apache.org/mod_mbox/hadoop-general/201701.mbox/%3C0ed32746-5a53-9051-5877-2b1abd88beb6%40apache.org%3E","primary_source":"","published":"2017-09-05T13:00:00.000Z"},{"affected":"2.1.0 to 2.6.3; 2.7.0 to 2.7.1","affected_versions_present":true,"cve_id":"CVE-2016-5001","cve_url":"https://cve.blacktree.nl/cve/CVE-2016-5001","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-09-16T19:51:02.745Z","patch_url":"","primary_source":"","published":"2017-08-30T19:00:00.000Z"},{"affected":"2.8.0; 3.0.0-alpha1 and 3.0.0-alpha2","affected_versions_present":true,"cve_id":"CVE-2017-7669","cve_url":"https://cve.blacktree.nl/cve/CVE-2017-7669","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-08-05T16:12:27.980Z","patch_url":"","primary_source":"","published":"2017-06-02T17:00:00.000Z"},{"affected":"2.6.x and earlier","affected_versions_present":true,"cve_id":"CVE-2017-3162","cve_url":"https://cve.blacktree.nl/cve/CVE-2017-3162","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-08-05T14:16:28.315Z","patch_url":"","primary_source":"","published":"2017-04-26T20:00:00.000Z"},{"affected":"2.6.x and earlier","affected_versions_present":true,"cve_id":"CVE-2017-3161","cve_url":"https://cve.blacktree.nl/cve/CVE-2017-3161","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-08-05T14:16:28.253Z","patch_url":"","primary_source":"","published":"2017-04-26T20:00:00.000Z"}],"source_generated_at":"2026-10-06T06:22:27.870Z","vendor":"Apache Software Foundation"}}
