{"api_version":"v1","generated_at":"2026-10-09T00:45:00+00:00","product":{"cve_count":7,"evidence_gap_note":"This CVE identity is linked to an existing Lifecycle product history.","id":"security:cve-clickhouse-clickhouse-ef825f1e290a","lifecycle_state":"covered","linked_lifecycle_url":"https://lifecycle.blacktree.nl/targets/clickhouse","name":"ClickHouse","next_cursor":null,"observations":[{"affected":"v23.8.0 < v23.8.15.35-lts; v24.3.0 < v24.3.4.147-lts; v24.4.0 < v24.4.2.141-stable; v24.5.0 < v24.5.1.1763; v24.6.0 < v24.6.1.4423-stable","affected_versions_present":true,"cve_id":"CVE-2024-6873","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-6873","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-08-02T15:18:28.271Z","patch_url":"","primary_source":"","published":"2024-08-01T15:57:25.304Z"},{"affected":"= 23.1; < 24.0.2.54535","affected_versions_present":true,"cve_id":"CVE-2024-22412","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-22412","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-01T22:43:34.945Z","patch_url":"https://github.com/ClickHouse/ClickHouse/pull/58611","primary_source":"","published":"2024-03-18T20:51:40.313Z"},{"affected":"< 23.9.2.47551; < 23.10.5.20; < 23.3.18.15; < 23.8.8.20; < 23.9.6.20","affected_versions_present":true,"cve_id":"CVE-2023-48704","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-48704","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-02T21:37:54.582Z","patch_url":"https://github.com/ClickHouse/ClickHouse/pull/57107","primary_source":"","published":"2023-12-22T15:18:12.846Z"},{"affected":"<= 23.10.2.14","affected_versions_present":true,"cve_id":"CVE-2023-48298","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-48298","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-11-27T15:47:44.723Z","patch_url":"https://github.com/ClickHouse/ClickHouse/pull/56795","primary_source":"","published":"2023-12-21T23:07:43.901Z"},{"affected":"< 23.3.16.7-lts","affected_versions_present":true,"cve_id":"CVE-2023-47118","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-47118","fixed":"23.10.2.13-stable","last_modified":"2024-08-02T21:01:22.658Z","patch_url":"https://github.com/ClickHouse/ClickHouse/security/advisories/GHSA-g22g-p6q2-x39v","primary_source":"","published":"2023-12-20T16:30:21.942Z"},{"affected":"All versions prior to version 18.10.3.","affected_versions_present":true,"cve_id":"CVE-2018-14671","cve_url":"https://cve.blacktree.nl/cve/CVE-2018-14671","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-08-05T09:38:12.939Z","patch_url":"","primary_source":"","published":"2019-08-15T17:46:03.000Z"},{"affected":"All versions prior to version 1.1.54131.","affected_versions_present":true,"cve_id":"CVE-2018-14670","cve_url":"https://cve.blacktree.nl/cve/CVE-2018-14670","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-08-05T09:38:13.009Z","patch_url":"","primary_source":"","published":"2019-08-15T17:13:39.000Z"}],"source_generated_at":"2026-10-08T06:18:52.353Z","vendor":"ClickHouse"}}
