{"api_version":"v1","generated_at":"2026-10-10T04:35:00+00:00","product":{"cve_count":2,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-golang-org-x-net-golang-org-x-net-http2-ea7d03e1f584","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"golang.org/x/net/http2","next_cursor":null,"observations":[{"affected":"golang.org/x/net/http2: < 0.53.0; net/http: < 1.25.10, 1.26.0-0 < 1.26.3","affected_versions_present":true,"cve_id":"CVE-2026-33814","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-33814","fixed":"RHSA-2026:66350: Red Hat OpenShift Container Platform 4.21","last_modified":"2026-09-18T12:04:46.954Z","patch_url":"https://go.dev/cl/761581","primary_source":"","published":"2026-05-07T19:41:17.631Z"},{"affected":"0.50.0 < 0.51.0","affected_versions_present":true,"cve_id":"CVE-2026-27141","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-27141","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://images.redhat.com/","last_modified":"2026-02-27T19:11:57.260Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-27141","primary_source":"","published":"2026-02-26T18:50:31.830Z"}],"source_generated_at":"2026-10-09T06:17:25.511Z","vendor":"golang.org/x/net"}}
