{"api_version":"v1","generated_at":"2026-10-08T21:00:00+00:00","product":{"cve_count":7,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-strawberry-graphql-strawberry-91af78d02eb8","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/strawberry","name":"strawberry","next_cursor":null,"observations":[{"affected":">= 0.172.0, < 0.315.7","affected_versions_present":true,"cve_id":"CVE-2026-47707","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-47707","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-04T15:06:13.934Z","patch_url":"","primary_source":"","published":"2026-06-04T14:12:49.083Z"},{"affected":">= 0.288.4, < 0.315.4","affected_versions_present":true,"cve_id":"CVE-2026-45739","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-45739","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-06-04T14:36:06.010Z","patch_url":"https://github.com/strawberry-graphql/strawberry/pull/2842","primary_source":"","published":"2026-06-04T14:09:03.394Z"},{"affected":">= 0.71.0, < 0.315.7","affected_versions_present":true,"cve_id":"CVE-2026-47706","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-47706","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-04T15:38:40.821Z","patch_url":"","primary_source":"","published":"2026-06-04T14:06:48.220Z"},{"affected":"< 0.312.3","affected_versions_present":true,"cve_id":"CVE-2026-35523","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-35523","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-04-09T16:18:51.112Z","patch_url":"","primary_source":"","published":"2026-04-07T15:58:17.694Z"},{"affected":"< 0.312.3","affected_versions_present":true,"cve_id":"CVE-2026-35526","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-35526","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-04-08T14:55:58.026Z","patch_url":"","primary_source":"","published":"2026-04-07T15:23:36.548Z"},{"affected":">= 0.182.0, < 0.257.0","affected_versions_present":true,"cve_id":"CVE-2025-22151","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-22151","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-01-09T20:09:27.557Z","patch_url":"","primary_source":"","published":"2025-01-09T18:51:18.221Z"},{"affected":"< 0.243.0","affected_versions_present":true,"cve_id":"CVE-2024-47082","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-47082","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-09-25T18:05:24.810Z","patch_url":"https://github.com/strawberry-graphql/strawberry/commit/37265b230e511480a9ceace492f9f6a484be1387","primary_source":"","published":"2024-09-25T17:48:24.065Z"}],"source_generated_at":"2026-10-08T06:18:52.353Z","vendor":"strawberry-graphql"}}
