{"api_version":"v1","generated_at":"2026-10-09T18:45:00+00:00","product":{"cve_count":14,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-kestra-io-kestra-63b81c3331dd","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"kestra","next_cursor":null,"observations":[{"affected":"kestra: < 1.3.24","affected_versions_present":true,"cve_id":"CVE-2026-55839","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-55839","fixed":"1.3.24.","last_modified":"2026-08-18T17:46:37.126Z","patch_url":"https://github.com/kestra-io/kestra/security/advisories/GHSA-34pm-923j-7wf8","primary_source":"","published":"2026-08-18T15:27:18.261Z"},{"affected":"< 2.0.0","affected_versions_present":true,"cve_id":"CVE-2026-73247","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73247","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-08-13T14:07:24.161Z","patch_url":"","primary_source":"","published":"2026-08-11T21:50:21.039Z"},{"affected":"< 1.3.31","affected_versions_present":true,"cve_id":"CVE-2026-73246","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73246","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-08-13T15:12:47.189Z","patch_url":"","primary_source":"","published":"2026-08-11T21:45:40.450Z"},{"affected":"< 2.0.0-rc6","affected_versions_present":true,"cve_id":"CVE-2026-73245","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73245","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-08-12T12:45:48.455Z","patch_url":"","primary_source":"","published":"2026-08-11T21:36:14.990Z"},{"affected":"< 1.0.43; >= 1.1.0, < 1.3.19","affected_versions_present":true,"cve_id":"CVE-2026-45807","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-45807","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-29T12:13:48.793Z","patch_url":"https://github.com/kestra-io/kestra/security/advisories/GHSA-3529-p4wf-xp79","primary_source":"","published":"2026-06-26T20:57:13.891Z"},{"affected":"< 1.0.45; >= 1.1.0, < 1.3.23","affected_versions_present":true,"cve_id":"CVE-2026-49984","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-49984","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-30T19:30:36.738Z","patch_url":"","primary_source":"","published":"2026-06-26T20:55:44.344Z"},{"affected":"< 1.0.45; >= 1.1.0, < 1.3.21","affected_versions_present":true,"cve_id":"CVE-2026-53576","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-53576","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-29T15:19:50.974Z","patch_url":"","primary_source":"","published":"2026-06-26T20:54:08.282Z"},{"affected":"< 1.0.45; >= 1.1.0, < 1.3.21","affected_versions_present":true,"cve_id":"CVE-2026-53577","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-53577","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-27T03:15:44.579Z","patch_url":"https://github.com/kestra-io/kestra/security/advisories/GHSA-r6v3-xxwj-9h42","primary_source":"","published":"2026-06-26T20:52:04.006Z"},{"affected":"< 1.3.24","affected_versions_present":true,"cve_id":"CVE-2026-55069","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-55069","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-29T13:16:39.618Z","patch_url":"https://github.com/kestra-io/kestra/security/advisories/GHSA-m727-pcjm-j28h","primary_source":"","published":"2026-06-26T20:50:09.954Z"},{"affected":"< 1.0.43; >= 1.1.0, < 1.1.19; >= 1.2.0, < 1.2.19; >= 1.3.0, < 1.3.19","affected_versions_present":true,"cve_id":"CVE-2026-48129","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-48129","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-23T02:25:57.745Z","patch_url":"","primary_source":"","published":"2026-06-19T20:16:24.043Z"},{"affected":"< 1.3.7","affected_versions_present":true,"cve_id":"CVE-2026-34612","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-34612","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-04-06T16:10:10.415Z","patch_url":"https://github.com/kestra-io/kestra/commit/3926762795df8ad3e03924b370c51832ed3a21d3","primary_source":"","published":"2026-04-03T22:39:31.434Z"},{"affected":"<= 1.3.3","affected_versions_present":true,"cve_id":"CVE-2026-33664","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-33664","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-03-27T13:55:17.704Z","patch_url":"https://github.com/kestra-io/kestra/security/advisories/GHSA-v2mc-8q95-g7hp","primary_source":"","published":"2026-03-26T21:13:12.467Z"},{"affected":"<= 1.1.10","affected_versions_present":true,"cve_id":"CVE-2026-29082","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-29082","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-03-09T14:59:32.254Z","patch_url":"","primary_source":"","published":"2026-03-06T16:33:31.961Z"},{"affected":"< 0.22.0","affected_versions_present":true,"cve_id":"CVE-2025-53543","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-53543","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-07-07T20:54:44.844Z","patch_url":"","primary_source":"","published":"2025-07-07T19:54:46.526Z"}],"source_generated_at":"2026-10-09T06:17:25.511Z","vendor":"kestra-io"}}
