{"api_version":"v1","generated_at":"2026-10-05T09:20:00+00:00","product":{"cve_count":1,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-socket-socket-firewall-9248be9a34a0","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"Socket Firewall","next_cursor":null,"observations":[{"affected":"Socket Firewall: < 2.0.0","affected_versions_present":true,"cve_id":"CVE-2026-90651","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-90651","fixed":"Upgrade to Socket Firewall 2.0.0 or later, where api_ssl_verify and upstream_ssl_verify default to true. Deployments that terminate TLS on an internal proxy or use a private CA must supply that CA via api_ssl_ca_cert / upstream_ssl_ca_cert, or explicitly disable verification for those connections.","last_modified":"2026-09-14T18:15:58.290Z","patch_url":"https://github.com/SocketDev/socket-registry-firewall/releases/tag/v2.0.0","primary_source":"","published":"2026-09-12T23:55:41.065Z"}],"source_generated_at":"2026-10-05T06:20:29.126Z","vendor":"Socket"}}
