{"api_version":"v1","generated_at":"2026-10-07T08:05:00+00:00","product":{"cve_count":2,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-apache-software-foundation-apache-myfaces-f5effcaf4816","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"Apache MyFaces","next_cursor":null,"observations":[{"affected":"Apache MyFaces: 2.2.0-beta \u2264 2.2.15, 2.3.0, 2.3-next-M1 \u2264 2.3-next-M8, 2.3.1 \u2264 2.3.11, 3.0.0 \u2264 3.0.3, 4.0.0 \u2264 4.0.3, 4.1.0 \u2264 4.1.3","affected_versions_present":true,"cve_id":"CVE-2026-76646","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-76646","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-09-17T19:13:59.659Z","patch_url":"","primary_source":"","published":"2026-09-16T19:17:01.801Z"},{"affected":"Apache MyFaces: 2.2.0-beta \u2264 2.2.15, 2.3.0, 2.3-next-M1 < 2.3-next-M9, 2.3.1 < 2.3.12, 3.0.0 < 3.0.4, 4.0.0 < 4.0.4, 4.1.0 < 4.1.4","affected_versions_present":true,"cve_id":"CVE-2026-68536","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-68536","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-09-17T20:08:09.598Z","patch_url":"","primary_source":"","published":"2026-09-16T18:40:17.043Z"}],"source_generated_at":"2026-10-07T06:21:30.017Z","vendor":"Apache Software Foundation"}}
