{"api_version":"v1","generated_at":"2026-10-08T12:55:00+00:00","product":{"cve_count":5,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-canonical-multipass-db6e0a9f6c0d","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/multipass","name":"Multipass","next_cursor":null,"observations":[{"affected":"< 1.16.3","affected_versions_present":true,"cve_id":"CVE-2026-49237","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-49237","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-05-28T15:15:27.077Z","patch_url":"","primary_source":"","published":"2026-05-28T13:22:42.840Z"},{"affected":"< 1.16.3","affected_versions_present":true,"cve_id":"CVE-2026-49238","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-49238","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-05-28T14:24:22.829Z","patch_url":"","primary_source":"","published":"2026-05-28T13:22:25.529Z"},{"affected":"< 1.16.0","affected_versions_present":true,"cve_id":"CVE-2025-5199","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-5199","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-07-14T20:12:58.921Z","patch_url":"https://github.com/canonical/multipass/security/advisories/GHSA-2j82-p5cq-62p3","primary_source":"","published":"2025-07-11T23:21:30.996Z"},{"affected":"1.7 < 1.7.2","affected_versions_present":true,"cve_id":"CVE-2021-3747","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-3747","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-09-17T04:19:16.521Z","patch_url":"https://github.com/canonical/multipass/issues/2261","primary_source":"","published":"2021-10-01T02:35:24.611Z"},{"affected":"unspecified < 1.7.0","affected_versions_present":true,"cve_id":"CVE-2021-3626","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-3626","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-09-17T03:23:37.922Z","patch_url":"https://github.com/canonical/multipass/pull/2150","primary_source":"","published":"2021-10-01T02:35:19.696Z"}],"source_generated_at":"2026-10-08T06:18:52.353Z","vendor":"Canonical"}}
