{"api_version":"v1","generated_at":"2026-10-06T22:35:00+00:00","product":{"cve_count":3,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-the-libvirt-project-libvirt-083ca5273e01","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/libvirt","name":"libvirt","next_cursor":null,"observations":[{"affected":"4.8.0 and above","affected_versions_present":true,"cve_id":"CVE-2019-3886","cve_url":"https://cve.blacktree.nl/cve/CVE-2019-3886","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-04T19:19:18.727Z","patch_url":"https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-3886","primary_source":"","published":"2019-04-04T00:00:00.000Z"},{"affected":"5.0.0","affected_versions_present":true,"cve_id":"CVE-2019-3840","cve_url":"https://cve.blacktree.nl/cve/CVE-2019-3840","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-04T19:19:18.580Z","patch_url":"https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-3840","primary_source":"","published":"2019-03-27T12:24:10.000Z"},{"affected":"from 2.5.0 to 3.0.0","affected_versions_present":true,"cve_id":"CVE-2017-2635","cve_url":"https://cve.blacktree.nl/cve/CVE-2017-2635","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-08-05T14:02:06.995Z","patch_url":"","primary_source":"","published":"2018-08-22T21:00:00.000Z"}],"source_generated_at":"2026-10-06T06:22:27.870Z","vendor":"The libvirt Project"}}
