{"api_version":"v1","generated_at":"2026-10-08T21:30:00+00:00","product":{"cve_count":2,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-arangodb-arangodb-baad92a0b6f2","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/arangodb","name":"arangodb","next_cursor":null,"observations":[{"affected":"v3.7.0 < unspecified; unspecified \u2264 v3.9.0-alpha.1","affected_versions_present":true,"cve_id":"CVE-2021-25939","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-25939","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-09-16T18:29:04.751Z","patch_url":"https://github.com/arangodb/arangodb/commit/d7b35a6884c6b2802d34d79fb2a79fb2c9ec2175","primary_source":"","published":"2022-02-09T12:15:14.213Z"},{"affected":"v3.7.6 < unspecified; unspecified \u2264 v3.8.3","affected_versions_present":true,"cve_id":"CVE-2021-25940","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-25940","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-30T15:45:47.172Z","patch_url":"https://github.com/arangodb/arangodb/commit/e9c6ee9dcca7b9b4fbcd02a0b323d205bee838d3","primary_source":"","published":"2021-11-16T09:25:09.000Z"}],"source_generated_at":"2026-10-08T06:18:52.353Z","vendor":"arangodb"}}
