{"api_version":"v1","generated_at":"2026-10-09T12:25:00+00:00","product":{"cve_count":2,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-publisher-not-identified-spring-by-vmware-7f0d5b10ce24","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"Spring by VMware","next_cursor":null,"observations":[{"affected":"Spring Tools 4 for Eclipse version 4.16.0 and below as well as VSCode extensions such as Spring Boot Tools, Concourse CI Pipeline Editor, Bosh Editor and Cloudfoundry Manifest YML Support version 1.39.0 and below all use Snakeyaml library for YAML editing support.","affected_versions_present":true,"cve_id":"CVE-2022-31691","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-31691","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-05-02T19:00:39.593Z","patch_url":"","primary_source":"","published":"2022-11-04T00:00:00.000Z"},{"affected":"5.7 to 5.7.4, 5.6 to 5.6.8 and older versions","affected_versions_present":true,"cve_id":"CVE-2022-31692","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-31692","fixed":"For OpenShift Container Platform 4.10 see the following documentation, which will be updated shortly for this release, for important instructions on how to upgrade your cluster and fully apply this asynchronous errata update: https://docs.openshift.com/container-platform/4.10/release_notes/ocp-4-10-release-notes.html","last_modified":"2025-05-06T15:53:54.566Z","patch_url":"https://access.redhat.com/security/cve/CVE-2022-31692","primary_source":"","published":"2022-10-31T00:00:00.000Z"}],"source_generated_at":"2026-10-09T06:17:25.511Z","vendor":"Publisher not identified"}}
