{"api_version":"v1","generated_at":"2026-10-08T19:55:00+00:00","product":{"cve_count":12,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-rundeck-rundeck-9e1490efa535","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/rundeck","name":"rundeck","next_cursor":null,"observations":[{"affected":"rundeck: < 6.2.0","affected_versions_present":true,"cve_id":"CVE-2026-106056","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-106056","fixed":"rundeck: 6.2.0","last_modified":"2026-10-07T17:05:09.208Z","patch_url":"https://github.com/rundeck/rundeck/pull/10414","primary_source":"","published":"2026-10-07T11:59:36.400Z"},{"affected":"rundeck: < 6.2.0","affected_versions_present":true,"cve_id":"CVE-2026-105834","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-105834","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-10-06T16:13:38.357Z","patch_url":"","primary_source":"","published":"2026-10-06T12:57:51.615Z"},{"affected":"rundeck: \u2264 6.2.1","affected_versions_present":true,"cve_id":"CVE-2026-92763","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-92763","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-09-17T13:57:18.983Z","patch_url":"","primary_source":"","published":"2026-09-16T20:32:29.826Z"},{"affected":">= 4.17.0, < 4.17.3","affected_versions_present":true,"cve_id":"CVE-2023-47112","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-47112","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-08-29T14:48:58.458Z","patch_url":"","primary_source":"","published":"2023-11-16T22:01:07.727Z"},{"affected":">= 4.12.0, < 4.17.3","affected_versions_present":true,"cve_id":"CVE-2023-48222","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-48222","fixed":"4.17.3.","last_modified":"2024-08-29T14:41:54.188Z","patch_url":"https://github.com/rundeck/rundeck/security/advisories/GHSA-phmw-jx86-x666","primary_source":"","published":"2023-11-16T21:59:17.837Z"},{"affected":">= 4.2.0, < 4.2.2","affected_versions_present":true,"cve_id":"CVE-2022-31044","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-31044","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-04-23T18:14:03.690Z","patch_url":"https://github.com/rundeck/rundeck/security/advisories/GHSA-hprf-rrwq-jm5c","primary_source":"","published":"2022-06-15T19:00:22.000Z"},{"affected":"<= 4.2.1","affected_versions_present":true,"cve_id":"CVE-2022-29186","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-29186","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-23T18:23:50.364Z","patch_url":"https://github.com/rundeck/rundeck/commit/16ef7a70b202492f9fbb54d8af4bb8ea0afa10ad","primary_source":"","published":"2022-05-20T20:20:11.000Z"},{"affected":"< 3.4.5","affected_versions_present":true,"cve_id":"CVE-2021-41112","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-41112","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-04-23T18:59:54.497Z","patch_url":"","primary_source":"","published":"2022-02-28T19:15:17.000Z"},{"affected":"< 3.3.15; >= 3.4.0, < 3.4.5","affected_versions_present":true,"cve_id":"CVE-2021-41111","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-41111","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-23T19:00:01.628Z","patch_url":"https://github.com/rundeck/rundeck/commit/a3bdc06a0731da902593732022a5b9d2b4facec5","primary_source":"","published":"2022-02-28T19:15:11.000Z"},{"affected":"< 3.3.14; >= 3.4.0, < 3.4.3","affected_versions_present":true,"cve_id":"CVE-2021-39133","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-39133","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-04T01:58:17.706Z","patch_url":"https://github.com/rundeck/rundeck/commit/67c4eedeaf9509fc0b255aff15977a5229ef13b9","primary_source":"","published":"2021-08-30T19:50:10.000Z"},{"affected":"< 3.3.14; >= 3.4.0, < 3.4.3","affected_versions_present":true,"cve_id":"CVE-2021-39132","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-39132","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-04T01:58:17.769Z","patch_url":"https://github.com/rundeck/rundeck/commit/850d12e21d22833bc148b7f458d7cb5949f829b6","primary_source":"","published":"2021-08-30T19:35:10.000Z"},{"affected":"< 3.2.6","affected_versions_present":true,"cve_id":"CVE-2020-11009","cve_url":"https://cve.blacktree.nl/cve/CVE-2020-11009","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-08-04T11:21:14.168Z","patch_url":"","primary_source":"","published":"2020-04-29T16:30:14.000Z"}],"source_generated_at":"2026-10-08T06:18:52.353Z","vendor":"rundeck"}}
