{"api_version":"v1","generated_at":"2026-10-07T21:30:00+00:00","product":{"cve_count":2,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-lighttpd-lighttpd-95946f7ccde2","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"lighttpd","next_cursor":null,"observations":[{"affected":"1.4.80 < 1.4.81","affected_versions_present":true,"cve_id":"CVE-2025-12642","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-12642","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-11-03T19:44:09.174Z","patch_url":"https://github.com/lighttpd/lighttpd1.4/commit/35cb89c103877de62d6b63d0804255475d77e5e1","primary_source":"","published":"2025-11-03T19:36:17.011Z"},{"affected":"* \u2264 1.4.50","affected_versions_present":true,"cve_id":"CVE-2018-25103","cve_url":"https://cve.blacktree.nl/cve/CVE-2018-25103","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-09-15T20:05:35.756Z","patch_url":"","primary_source":"","published":"2024-06-17T18:02:57.162Z"}],"source_generated_at":"2026-10-07T06:21:30.017Z","vendor":"lighttpd"}}
