{"api_version":"v1","generated_at":"2026-10-07T16:10:00+00:00","product":{"cve_count":3,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-apache-software-foundation-apache-shenyu-278082a5a949","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"Apache ShenYu","next_cursor":null,"observations":[{"affected":"\u2264 2.5.1","affected_versions_present":true,"cve_id":"CVE-2023-25753","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-25753","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-09-12T20:32:26.867Z","patch_url":"","primary_source":"","published":"2023-10-19T08:35:24.075Z"},{"affected":"\u2264 2.5.0","affected_versions_present":true,"cve_id":"CVE-2022-42735","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-42735","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-03-19T15:27:12.113Z","patch_url":"","primary_source":"","published":"2023-02-15T09:38:55.301Z"},{"affected":"Apache ShenYu 2.4.2 and 2.4.3","affected_versions_present":true,"cve_id":"CVE-2022-37435","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-37435","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-03T10:29:20.982Z","patch_url":"https://lists.apache.org/thread/ndblyxr2fdrvjtgbs1bogxgv2cgk7t28","primary_source":"","published":"2022-09-01T14:00:14.000Z"}],"source_generated_at":"2026-10-07T06:21:30.017Z","vendor":"Apache Software Foundation"}}
