{"api_version":"v1","generated_at":"2026-10-07T05:20:00+00:00","product":{"cve_count":6,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-davegamble-cjson-d1b42f82c2fa","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"cJSON","next_cursor":null,"observations":[{"affected":"1.7.0; 1.7.1; 1.7.2; 1.7.3; 1.7.4; 1.7.5; 1.7.6; 1.7.7","affected_versions_present":true,"cve_id":"CVE-2026-87933","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-87933","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-09-10T19:06:09.220Z","patch_url":"","primary_source":"","published":"2026-09-10T00:15:08.473Z"},{"affected":"cJSON: 1.5.0 \u2264 1.7.19","affected_versions_present":true,"cve_id":"CVE-2026-29036","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-29036","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-08-14T16:49:41.472Z","patch_url":"","primary_source":"","published":"2026-08-11T21:30:01.779Z"},{"affected":"\u2264 1.7.19","affected_versions_present":true,"cve_id":"CVE-2026-67217","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-67217","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-29T16:00:27.693Z","patch_url":"https://github.com/DaveGamble/cJSON/blob/v1.7.19/cJSON_Utils.c#L887-L948","primary_source":"","published":"2026-07-29T13:32:04.416Z"},{"affected":"\u2264 1.7.19","affected_versions_present":true,"cve_id":"CVE-2026-67216","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-67216","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-30T15:19:59.613Z","patch_url":"https://github.com/DaveGamble/cJSON/blob/v1.7.19/cJSON.c#L3057-L3180","primary_source":"","published":"2026-07-29T13:32:03.696Z"},{"affected":"\u2264 1.7.19","affected_versions_present":true,"cve_id":"CVE-2026-67215","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-67215","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-29T15:59:48.983Z","patch_url":"https://github.com/DaveGamble/cJSON/blob/v1.7.19/cJSON.c#L253-L261","primary_source":"","published":"2026-07-29T13:32:02.975Z"},{"affected":"1.7.19","affected_versions_present":true,"cve_id":"CVE-2026-16554","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-16554","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-31T13:34:05.448Z","patch_url":"","primary_source":"","published":"2026-07-27T08:40:17.183Z"}],"source_generated_at":"2026-10-06T06:22:27.870Z","vendor":"DaveGamble"}}
