{"api_version":"v1","generated_at":"2026-10-02T10:30:00+00:00","product":{"cve_count":2,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-simplesamlphp-xml-security-a4bfc0310d93","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"xml-security","next_cursor":null,"observations":[{"affected":">= 2.0.0, < 2.3.1; < 1.13.9","affected_versions_present":true,"cve_id":"CVE-2026-32600","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-32600","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-03-16T14:03:17.811Z","patch_url":"https://github.com/simplesamlphp/xml-security/commit/cad6d57cf0a5a0b7e0cc4e4a5b18752e56eb1520","primary_source":"","published":"2026-03-13T19:58:41.692Z"},{"affected":"= 1.6.11; = 5.0.0-alpha.12","affected_versions_present":true,"cve_id":"CVE-2023-49087","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-49087","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-02T21:46:29.195Z","patch_url":"https://github.com/simplesamlphp/xml-security/commit/f509e3083dd7870cce5880c804b5122317287581","primary_source":"","published":"2023-11-30T05:20:28.298Z"}],"source_generated_at":"2026-10-02T06:19:59.452Z","vendor":"simplesamlphp"}}
