{"api_version":"v1","generated_at":"2026-09-29T15:50:00+00:00","product":{"cve_count":9,"evidence_gap_note":"This CVE identity is linked to an existing Lifecycle product history.","id":"security:cve-sourcegraph-sourcegraph-7646bf645571","lifecycle_state":"covered","linked_lifecycle_url":"https://lifecycle.blacktree.nl/targets/sourcegraph","name":"sourcegraph","next_cursor":null,"observations":[{"affected":"< 4.1.0","affected_versions_present":true,"cve_id":"CVE-2022-41943","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-41943","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-23T16:36:01.306Z","patch_url":"https://github.com/sourcegraph/sourcegraph/pull/42704","primary_source":"","published":"2022-11-22T00:00:00.000Z"},{"affected":"< 4.1.0","affected_versions_present":true,"cve_id":"CVE-2022-41942","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-41942","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-23T16:36:07.093Z","patch_url":"https://github.com/sourcegraph/sourcegraph/pull/42553","primary_source":"","published":"2022-11-22T00:00:00.000Z"},{"affected":"< 3.41.0","affected_versions_present":true,"cve_id":"CVE-2022-31155","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-31155","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-23T17:56:41.203Z","patch_url":"https://github.com/sourcegraph/sourcegraph/commit/2832d7882396a6295ba5803b5ef48dc7d5a24c59","primary_source":"","published":"2022-08-01T18:40:28.000Z"},{"affected":"< 3.42","affected_versions_present":true,"cve_id":"CVE-2022-31154","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-31154","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-23T17:56:47.681Z","patch_url":"https://github.com/sourcegraph/sourcegraph/pull/37526","primary_source":"","published":"2022-08-01T18:40:10.000Z"},{"affected":"< 3.38.0","affected_versions_present":true,"cve_id":"CVE-2022-29171","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-29171","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-04-23T18:30:20.108Z","patch_url":"","primary_source":"","published":"2022-05-05T23:25:09.000Z"},{"affected":"< 3.37","affected_versions_present":true,"cve_id":"CVE-2022-23642","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-23642","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-22T18:21:53.481Z","patch_url":"https://github.com/sourcegraph/sourcegraph/security/advisories/GHSA-qcmp-fx72-q8q9","primary_source":"","published":"2022-02-18T22:15:11.000Z"},{"affected":">= 3.35, < 3.35.2; >= 3.36, < 3.36.3","affected_versions_present":true,"cve_id":"CVE-2022-23643","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-23643","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-23T19:04:54.059Z","patch_url":"https://github.com/sourcegraph/sourcegraph/pull/30547","primary_source":"","published":"2022-02-15T21:25:10.000Z"},{"affected":"< 3.33.2","affected_versions_present":true,"cve_id":"CVE-2021-43823","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-43823","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-04T04:03:08.900Z","patch_url":"https://github.com/sourcegraph/sourcegraph/commit/a88d90a8302c492282186d39718cd8fb093c14fa","primary_source":"","published":"2021-12-13T19:55:10.000Z"},{"affected":"< 3.30.0","affected_versions_present":true,"cve_id":"CVE-2021-32787","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-32787","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-03T23:33:55.836Z","patch_url":"https://github.com/sourcegraph/sourcegraph/commit/6e51f4546368d959a1f9f173d16e5f20c55deb56","primary_source":"","published":"2021-08-02T22:00:12.000Z"}],"source_generated_at":"2026-09-29T06:22:55.443Z","vendor":"sourcegraph"}}
