{"api_version":"v1","generated_at":"2026-10-09T08:05:00+00:00","product":{"cve_count":8,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-gnupg-gnupg-db76330736e6","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/gnupg","name":"GnuPG","next_cursor":null,"observations":[{"affected":"GnuPG: < 2.5.19","affected_versions_present":true,"cve_id":"CVE-2026-105712","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-105712","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://images.redhat.com/","last_modified":"2026-10-05T19:09:30.980Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-105712","primary_source":"","published":"2026-10-05T18:53:09.873Z"},{"affected":"\u2264 2.5.20","affected_versions_present":true,"cve_id":"CVE-2026-57062","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-57062","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-23T17:35:30.113Z","patch_url":"","primary_source":"","published":"2026-06-23T17:26:25.133Z"},{"affected":"2.5.3 < 2.5.17","affected_versions_present":true,"cve_id":"CVE-2026-24883","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-24883","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-01-28T15:52:11.076Z","patch_url":"https://dev.gnupg.org/T8049","primary_source":"","published":"2026-01-27T18:43:18.883Z"},{"affected":"< 2.5.17","affected_versions_present":true,"cve_id":"CVE-2026-24882","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-24882","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-15T01:16:43.100Z","patch_url":"","primary_source":"","published":"2026-01-27T18:40:18.166Z"},{"affected":"2.5.13 < 2.5.17","affected_versions_present":true,"cve_id":"CVE-2026-24881","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-24881","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-15T01:16:45.277Z","patch_url":"","primary_source":"","published":"2026-01-27T18:36:56.727Z"},{"affected":"< 2.2.51; 2.3.0 < 2.4.9","affected_versions_present":true,"cve_id":"CVE-2025-68973","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-68973","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-04-30T03:55:53.604Z","patch_url":"https://access.redhat.com/security/cve/CVE-2025-68973","primary_source":"","published":"2025-12-28T16:19:11.019Z"},{"affected":"\u2264 2.4.8","affected_versions_present":true,"cve_id":"CVE-2025-68972","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-68972","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-01-02T20:44:27.393Z","patch_url":"","primary_source":"","published":"2025-12-27T22:52:30.957Z"},{"affected":"< 2.5.5","affected_versions_present":true,"cve_id":"CVE-2025-30258","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-30258","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-03-19T20:49:22.417Z","patch_url":"https://www.suse.com/security/cve/CVE-2025-30258","primary_source":"","published":"2025-03-19T00:00:00.000Z"}],"source_generated_at":"2026-10-09T06:17:25.511Z","vendor":"GnuPG"}}
