{"api_version":"v1","generated_at":"2026-10-06T12:55:00+00:00","product":{"cve_count":10,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-envoyproxy-gateway-eaac4bb0f196","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/gateway","name":"gateway","next_cursor":null,"observations":[{"affected":"gateway: < 1.7.4, >= 1.8.0-rc.0, < 1.8.1","affected_versions_present":true,"cve_id":"CVE-2026-53714","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-53714","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-09-15T19:28:46.968Z","patch_url":"","primary_source":"","published":"2026-09-14T20:17:22.256Z"},{"affected":"gateway: < 1.7.4, >= 1.8.0-rc.0, < 1.8.1","affected_versions_present":true,"cve_id":"CVE-2026-53716","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-53716","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-09-16T16:21:20.674Z","patch_url":"","primary_source":"","published":"2026-09-14T20:15:51.441Z"},{"affected":"gateway: < 1.7.4, >= 1.8.0-rc.0, < 1.8.1","affected_versions_present":true,"cve_id":"CVE-2026-53715","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-53715","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-09-15T14:35:21.990Z","patch_url":"","primary_source":"","published":"2026-09-14T20:14:34.223Z"},{"affected":"gateway: < 1.7.4, >= 1.8.0-rc.0, < 1.8.1","affected_versions_present":true,"cve_id":"CVE-2026-53719","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-53719","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-09-16T18:10:27.491Z","patch_url":"","primary_source":"","published":"2026-09-14T20:13:20.535Z"},{"affected":"gateway: < 1.7.4, >= 1.8.0-rc.0, < 1.8.1","affected_versions_present":true,"cve_id":"CVE-2026-53718","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-53718","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-09-15T13:55:25.432Z","patch_url":"","primary_source":"","published":"2026-09-14T20:12:12.224Z"},{"affected":"gateway: < 1.7.4, >= 1.8.0-rc.0, < 1.8.1","affected_versions_present":true,"cve_id":"CVE-2026-53713","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-53713","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-09-16T18:34:11.830Z","patch_url":"","primary_source":"","published":"2026-09-14T20:11:02.561Z"},{"affected":"gateway: < 1.7.4, >= 1.8.0-rc.0, < 1.8.1","affected_versions_present":true,"cve_id":"CVE-2026-53717","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-53717","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-09-15T19:30:12.383Z","patch_url":"","primary_source":"","published":"2026-09-14T20:09:44.990Z"},{"affected":"< 1.5.7; >= 1.6.0-rc.0, < 1.6.2","affected_versions_present":true,"cve_id":"CVE-2026-22771","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-22771","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-15T01:19:24.781Z","patch_url":"https://github.com/envoyproxy/gateway/security/advisories/GHSA-xrwg-mqj6-6m22","primary_source":"","published":"2026-01-12T18:08:22.532Z"},{"affected":">= 1.3.0-rc.1, < 1.3.1; < 1.2.7","affected_versions_present":true,"cve_id":"CVE-2025-25294","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-25294","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-03-06T20:34:27.649Z","patch_url":"https://github.com/envoyproxy/gateway/commit/8f48f5199cf1bbb9a8ac0695c5171bfef6c9198a","primary_source":"","published":"2025-03-06T18:46:23.913Z"},{"affected":"< 1.2.6","affected_versions_present":true,"cve_id":"CVE-2025-24030","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-24030","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-01-23T14:58:59.485Z","patch_url":"https://github.com/envoyproxy/gateway/commit/3eb3301ab3dbf12b201b47bdb6074d1233be07bd","primary_source":"","published":"2025-01-23T03:20:27.802Z"}],"source_generated_at":"2026-10-06T06:22:27.870Z","vendor":"envoyproxy"}}
