{"api_version":"v1","generated_at":"2026-10-08T21:05:00+00:00","product":{"cve_count":6,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-h2o-quicly-0e1bd0d4d4f7","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/quicly","name":"quicly","next_cursor":null,"observations":[{"affected":"< 8b178e6","affected_versions_present":true,"cve_id":"CVE-2026-44436","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-44436","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-17T10:48:33.974Z","patch_url":"https://github.com/h2o/quicly/commit/8b178e692c51a3b1031612ef89f03a53aac63c15","primary_source":"","published":"2026-07-16T22:44:34.254Z"},{"affected":"< 937d0e9","affected_versions_present":true,"cve_id":"CVE-2026-44435","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-44435","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-17T13:02:55.330Z","patch_url":"https://github.com/h2o/quicly/commit/937d0e9e7c669fc2bee4920632ab6aaac60e4d81","primary_source":"","published":"2026-07-16T22:39:50.873Z"},{"affected":"< dccf5d4","affected_versions_present":true,"cve_id":"CVE-2026-44434","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-44434","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-18T03:21:24.526Z","patch_url":"https://github.com/h2o/quicly/commit/dccf5d4579c7ae9dd6e8f90c36d52e311bb60710","primary_source":"","published":"2026-07-16T22:34:09.386Z"},{"affected":"< 8b178e6","affected_versions_present":true,"cve_id":"CVE-2026-44433","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-44433","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-17T18:06:23.088Z","patch_url":"https://github.com/h2o/quicly/commit/8b178e692c51a3b1031612ef89f03a53aac63c15","primary_source":"","published":"2026-07-16T22:23:17.247Z"},{"affected":"< d9d3df6","affected_versions_present":true,"cve_id":"CVE-2025-61684","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-61684","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-01-20T15:49:59.004Z","patch_url":"https://github.com/h2o/quicly/commit/d9d3df6a8530a102b57d840e39b0311ce5c9e14e","primary_source":"","published":"2026-01-19T15:18:11.398Z"},{"affected":"< 2a95896104901589c495bc41460262e64ffcad5c","affected_versions_present":true,"cve_id":"CVE-2024-45396","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-45396","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-10-15T16:11:05.956Z","patch_url":"https://github.com/h2o/quicly/commit/2a95896104901589c495bc41460262e64ffcad5c","primary_source":"","published":"2024-10-11T14:36:38.172Z"}],"source_generated_at":"2026-10-08T06:18:52.353Z","vendor":"h2o"}}
