{"api_version":"v1","generated_at":"2026-10-09T09:25:00+00:00","product":{"cve_count":4,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-quic-go-webtransport-go-42b45eabf84d","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"webtransport-go","next_cursor":null,"observations":[{"affected":"webtransport-go: < 0.11.1","affected_versions_present":true,"cve_id":"CVE-2026-57497","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-57497","fixed":"0.11.1.","last_modified":"2026-09-14T20:06:48.086Z","patch_url":"https://github.com/quic-go/webtransport-go/security/advisories/GHSA-g35j-m5xg-vh3q","primary_source":"","published":"2026-09-14T16:05:31.661Z"},{"affected":"< 0.10.0","affected_versions_present":true,"cve_id":"CVE-2026-21438","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-21438","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-02-17T15:39:06.672Z","patch_url":"","primary_source":"","published":"2026-02-12T18:25:34.107Z"},{"affected":"< 0.10.0","affected_versions_present":true,"cve_id":"CVE-2026-21435","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-21435","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-02-17T15:36:08.731Z","patch_url":"","primary_source":"","published":"2026-02-12T18:22:58.098Z"},{"affected":"< 0.10.0","affected_versions_present":true,"cve_id":"CVE-2026-21434","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-21434","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-02-12T18:45:58.158Z","patch_url":"","primary_source":"","published":"2026-02-12T18:18:04.821Z"}],"source_generated_at":"2026-10-09T06:17:25.511Z","vendor":"quic-go"}}
