{"api_version":"v1","generated_at":"2026-10-07T14:55:00+00:00","product":{"cve_count":2,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-dana-powers-kafka-python-67c9e327580b","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"kafka-python","next_cursor":null,"observations":[{"affected":"kafka-python: < 2.3.2","affected_versions_present":true,"cve_id":"CVE-2026-10143","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-10143","fixed":"RHSA-2026:33683: Red Hat Quay 3.10","last_modified":"2026-09-10T12:04:54.248Z","patch_url":"https://github.com/dpkp/kafka-python/pull/3019","primary_source":"","published":"2026-06-10T20:22:39.262Z"},{"affected":"< 2.3.2","affected_versions_present":true,"cve_id":"CVE-2026-10142","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-10142","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-14T15:53:03.388Z","patch_url":"https://www.vulncheck.com/advisories/kafka-python-prior-to-denial-of-service-via-protocol-parser-frame-length","primary_source":"","published":"2026-06-10T20:13:11.286Z"}],"source_generated_at":"2026-10-07T06:21:30.017Z","vendor":"Dana Powers"}}
