{"api_version":"v1","generated_at":"2026-10-07T03:00:00+00:00","product":{"cve_count":10,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-asynchttpclient-async-http-client-c5b4a3421299","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"async-http-client","next_cursor":null,"observations":[{"affected":"async-http-client: >= 3.0.8, < 3.0.12","affected_versions_present":true,"cve_id":"CVE-2026-85716","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-85716","fixed":"3.0.12.","last_modified":"2026-09-18T14:44:54.072Z","patch_url":"https://github.com/AsyncHttpClient/async-http-client/security/advisories/GHSA-fj9w-c36g-h5x8","primary_source":"","published":"2026-09-17T16:23:27.343Z"},{"affected":"async-http-client: >= 2.0.0, < 2.16.1, >= 3.0.0, < 3.0.12","affected_versions_present":true,"cve_id":"CVE-2026-85720","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-85720","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-09-21T20:52:24.486Z","patch_url":"","primary_source":"","published":"2026-09-17T16:00:01.615Z"},{"affected":"async-http-client: >= 3.0.8, < 3.0.12","affected_versions_present":true,"cve_id":"CVE-2026-85718","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-85718","fixed":"3.0.12.","last_modified":"2026-09-17T16:40:07.831Z","patch_url":"https://github.com/AsyncHttpClient/async-http-client/security/advisories/GHSA-gcmv-gr82-6m8v","primary_source":"","published":"2026-09-17T15:58:40.719Z"},{"affected":"async-http-client: >= 2.0.0, < 2.16.1, >= 3.0.0, < 3.0.12","affected_versions_present":true,"cve_id":"CVE-2026-85721","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-85721","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-09-17T17:22:22.088Z","patch_url":"","primary_source":"","published":"2026-09-17T15:55:32.018Z"},{"affected":"async-http-client: >= 2.14.5, < 2.16.1, >= 3.0.9, < 3.0.12","affected_versions_present":true,"cve_id":"CVE-2026-85717","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-85717","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-09-23T18:46:54.135Z","patch_url":"","primary_source":"","published":"2026-09-17T15:53:39.875Z"},{"affected":"async-http-client: >= 2.1.0, < 2.16.1, >= 3.0.0, < 3.0.12","affected_versions_present":true,"cve_id":"CVE-2026-85719","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-85719","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-09-18T14:45:01.238Z","patch_url":"","primary_source":"","published":"2026-09-17T15:52:16.315Z"},{"affected":">= 2.0.0, < 2.16.0; >= 3.0.0.Beta1, < 3.0.11","affected_versions_present":true,"cve_id":"CVE-2026-55688","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-55688","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-08-06T21:56:13.231Z","patch_url":"","primary_source":"","published":"2026-07-01T19:40:12.004Z"},{"affected":">= 3.0.0.Beta1, < 3.0.10; >= 2.0.0, < 2.15.0","affected_versions_present":true,"cve_id":"CVE-2026-45300","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-45300","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-06-08T16:34:10.203Z","patch_url":"https://github.com/AsyncHttpClient/async-http-client/security/advisories/GHSA-fmxf-pm6p-7xgm","primary_source":"","published":"2026-06-05T19:32:43.547Z"},{"affected":">= 3.0.0.Beta1, < 3.0.9; < 2.14.5","affected_versions_present":true,"cve_id":"CVE-2026-40490","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-40490","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-04-20T14:55:50.254Z","patch_url":"","primary_source":"","published":"2026-04-18T01:31:13.860Z"},{"affected":"< 3.0.1","affected_versions_present":true,"cve_id":"CVE-2024-53990","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-53990","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-12-04T17:08:11.472Z","patch_url":"","primary_source":"","published":"2024-12-02T17:10:28.229Z"}],"source_generated_at":"2026-10-06T06:22:27.870Z","vendor":"AsyncHttpClient"}}
