{"api_version":"v1","generated_at":"2026-10-07T06:55:00+00:00","product":{"cve_count":15,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-authzed-spicedb-b044fd08de15","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/nuget/spicedb","name":"spicedb","next_cursor":null,"observations":[{"affected":"spicedb: >= 1.34.1, < 1.54.0","affected_versions_present":true,"cve_id":"CVE-2026-55866","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-55866","fixed":"1.54.0.","last_modified":"2026-09-14T18:15:41.075Z","patch_url":"https://github.com/authzed/spicedb/security/advisories/GHSA-4vrg-r928-h5vv","primary_source":"","published":"2026-09-14T17:23:56.428Z"},{"affected":">= 1.15.0, < 1.52.0","affected_versions_present":true,"cve_id":"CVE-2026-46668","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-46668","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-11T16:15:36.256Z","patch_url":"","primary_source":"","published":"2026-06-10T20:11:44.193Z"},{"affected":">= 1.49.0, < 1.51.1","affected_versions_present":true,"cve_id":"CVE-2026-40091","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-40091","fixed":"1.51.1.","last_modified":"2026-04-15T13:23:15.155Z","patch_url":"https://github.com/authzed/spicedb/security/advisories/GHSA-jf4f-rr2c-9m58","primary_source":"","published":"2026-04-14T23:50:25.479Z"},{"affected":"< 1.47.1","affected_versions_present":true,"cve_id":"CVE-2025-65111","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-65111","fixed":"1.47.1.","last_modified":"2025-11-24T17:50:51.445Z","patch_url":"https://github.com/authzed/spicedb/security/advisories/GHSA-9m7r-g8hg-x3vr","primary_source":"","published":"2025-11-21T22:02:52.563Z"},{"affected":"< 1.45.2","affected_versions_present":true,"cve_id":"CVE-2025-64529","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-64529","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-11-12T20:12:52.552Z","patch_url":"https://github.com/authzed/spicedb/security/advisories/GHSA-pm3x-jrhh-qcr7","primary_source":"","published":"2025-11-10T22:28:51.589Z"},{"affected":"< 1.44.2","affected_versions_present":true,"cve_id":"CVE-2025-49011","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-49011","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-06-06T21:33:23.317Z","patch_url":"https://github.com/authzed/spicedb/security/advisories/GHSA-cwwm-hr97-qfxm","primary_source":"","published":"2025-06-06T17:36:21.747Z"},{"affected":">= 1.35.0, < 1.37.1","affected_versions_present":true,"cve_id":"CVE-2024-48909","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-48909","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-10-15T14:45:43.494Z","patch_url":"https://github.com/authzed/spicedb/commit/2f3cf77a7fcfcb478ef5a480a245842c96ac8853","primary_source":"","published":"2024-10-14T20:22:17.777Z"},{"affected":"< 1.35.3","affected_versions_present":true,"cve_id":"CVE-2024-46989","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-46989","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-09-18T18:52:51.565Z","patch_url":"https://github.com/authzed/spicedb/commit/d4ef8e1dbce1eafaf25847f4c0f09738820f5bf2","primary_source":"","published":"2024-09-18T17:29:06.456Z"},{"affected":"< 1.33.1","affected_versions_present":true,"cve_id":"CVE-2024-38361","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-38361","fixed":"1.33.1.","last_modified":"2024-08-02T04:04:25.268Z","patch_url":"https://github.com/authzed/spicedb/commit/ecef31d2b266fde17eb2c3415e2ec4ceff96fbeb","primary_source":"","published":"2024-06-20T22:18:35.552Z"},{"affected":"< 1.30.1","affected_versions_present":true,"cve_id":"CVE-2024-32001","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-32001","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-02T01:59:50.838Z","patch_url":"https://github.com/authzed/spicedb/commit/a244ed1edfaf2382711dccdb699971ec97190c7b","primary_source":"","published":"2024-04-10T22:25:12.353Z"},{"affected":"< 1.29.2","affected_versions_present":true,"cve_id":"CVE-2024-27101","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-27101","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-16T20:46:45.603Z","patch_url":"https://github.com/authzed/spicedb/commit/ef443c442b96909694390324a99849b0407007fe","primary_source":"","published":"2024-03-01T21:01:39.049Z"},{"affected":"< 1.27.0-rc1","affected_versions_present":true,"cve_id":"CVE-2023-46255","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-46255","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-09-05T20:16:15.166Z","patch_url":"https://github.com/authzed/spicedb/commit/ae50421b80f895e4c98d999b18e06b6f1e6f1cf8","primary_source":"","published":"2023-10-31T15:25:24.933Z"},{"affected":"= 1.22.0","affected_versions_present":true,"cve_id":"CVE-2023-35930","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-35930","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-11-06T21:06:28.339Z","patch_url":"https://github.com/authzed/spicedb/security/advisories/GHSA-m54h-5x5f-5m6r","primary_source":"","published":"2023-06-26T19:32:59.829Z"},{"affected":"< 1.19.1","affected_versions_present":true,"cve_id":"CVE-2023-29193","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-29193","fixed":"1.19.1.","last_modified":"2025-02-06T18:42:12.139Z","patch_url":"https://github.com/authzed/spicedb/commit/9bbd7d76b6eaba33fe0236014f9b175d21232999","primary_source":"","published":"2023-04-14T19:01:01.317Z"},{"affected":"= 1.3.0","affected_versions_present":true,"cve_id":"CVE-2022-21646","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-21646","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-23T19:13:28.941Z","patch_url":"https://github.com/authzed/spicedb/commit/15bba2e2d2a4bda336a37a7fe8ef8a35028cd970","primary_source":"","published":"2022-01-11T21:50:10.000Z"}],"source_generated_at":"2026-10-06T06:22:27.870Z","vendor":"authzed"}}
