{"api_version":"v1","generated_at":"2026-10-07T21:30:00+00:00","product":{"cve_count":4,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-apache-software-foundation-apache-log4j-1-x-014230d387c2","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"Apache Log4j 1.x","next_cursor":null,"observations":[{"affected":"1.2.1 < unspecified; unspecified \u2264 2.0-alpha1","affected_versions_present":true,"cve_id":"CVE-2022-23307","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-23307","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-05-27T13:44:43.452Z","patch_url":"https://access.redhat.com/security/cve/CVE-2022-23307","primary_source":"","published":"2022-01-18T15:25:23.000Z"},{"affected":"1.2.1 < unspecified; unspecified < 2.0-alpha1","affected_versions_present":true,"cve_id":"CVE-2022-23305","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-23305","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-05-27T13:40:57.853Z","patch_url":"https://access.redhat.com/security/cve/CVE-2022-23305","primary_source":"","published":"2022-01-18T15:25:22.000Z"},{"affected":"1.0.1 < unspecified; unspecified < 2.0-alpha1","affected_versions_present":true,"cve_id":"CVE-2022-23302","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-23302","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-05-27T13:46:05.384Z","patch_url":"https://access.redhat.com/security/cve/CVE-2022-23302","primary_source":"","published":"2022-01-18T15:25:20.000Z"},{"affected":"Apache Log4j 1.2 1.2.x","affected_versions_present":true,"cve_id":"CVE-2021-4104","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-4104","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-05-28T19:53:14.378Z","patch_url":"https://access.redhat.com/security/cve/CVE-2021-4104","primary_source":"","published":"2021-12-14T00:00:00.000Z"}],"source_generated_at":"2026-10-07T06:21:30.017Z","vendor":"Apache Software Foundation"}}
