{"api_version":"v1","generated_at":"2026-10-08T11:00:00+00:00","product":{"cve_count":3,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-cloud-foundry-foundation-bosh-director-b06a2eb3b092","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"BOSH Director","next_cursor":null,"observations":[{"affected":"< 282.1.12","affected_versions_present":true,"cve_id":"CVE-2026-41010","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-41010","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-04T12:49:27.773Z","patch_url":"","primary_source":"","published":"2026-06-04T02:27:26.690Z"},{"affected":"< 282.1.12","affected_versions_present":true,"cve_id":"CVE-2026-41704","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-41704","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-05-27T13:39:01.678Z","patch_url":"https://www.cloudfoundry.org/blog/cve-2026-41704-compromised-vm-can-make-arbitrary-blobstore-deletes/","primary_source":"","published":"2026-05-27T07:13:15.525Z"},{"affected":"< 282.1.12","affected_versions_present":true,"cve_id":"CVE-2026-41009","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-41009","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-05-27T13:38:30.294Z","patch_url":"https://www.cloudfoundry.org/blog/cve-2026-41009-local-blobstore-may-allow-arbitrary-reads-deletes/","primary_source":"","published":"2026-05-27T06:45:11.124Z"}],"source_generated_at":"2026-10-08T06:18:52.353Z","vendor":"Cloud Foundry Foundation"}}
