{"api_version":"v1","generated_at":"2026-10-07T03:25:00+00:00","product":{"cve_count":4,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-apache-software-foundation-apache-ivy-9a878995db56","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"Apache Ivy","next_cursor":null,"observations":[{"affected":"2.0.0 \u2264 2.5.3","affected_versions_present":true,"cve_id":"CVE-2026-26032","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-26032","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-15T19:31:07.994Z","patch_url":"https://lists.apache.org/thread/4d9dzrlnoplvywnyj9x6w84kxg7n3jyq","primary_source":"","published":"2026-07-15T18:49:43.153Z"},{"affected":"1.0.0 \u2264 2.5.1","affected_versions_present":true,"cve_id":"CVE-2022-46751","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-46751","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-02-13T16:33:53.044Z","patch_url":"","primary_source":"","published":"2023-08-21T06:55:00.181Z"},{"affected":"2.0.0 < unspecified; unspecified \u2264 2.5.0","affected_versions_present":true,"cve_id":"CVE-2022-37866","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-37866","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-05-01T20:46:04.704Z","patch_url":"","primary_source":"","published":"2022-11-07T00:00:00.000Z"},{"affected":"2.4.0 < unspecified; unspecified \u2264 2.5.0","affected_versions_present":true,"cve_id":"CVE-2022-37865","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-37865","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-05-02T18:35:06.895Z","patch_url":"","primary_source":"","published":"2022-11-07T00:00:00.000Z"}],"source_generated_at":"2026-10-06T06:22:27.870Z","vendor":"Apache Software Foundation"}}
