{
    "document": {
        "category": "csaf_base",
        "csaf_version": "2.0",
        "distribution": {
            "tlp": {
                "label": "WHITE"
            }
        },
        "lang": "en",
        "notes": [
            {
                "category": "legal_disclaimer",
                "text": "The Netherlands Cyber Security Center (henceforth: NCSC-NL) maintains this portal to enhance access to its information and vulnerabilities. The use of this information is subject to the following terms and conditions:\n\nThe vulnerabilities disclosed in this portal are gathered by NCSC-NL from a variety of open sources, which the user can retrieve from other platforms. NCSC-NL makes every reasonable effort to ensure that the content of this portal is kept up to date, and that it is accurate and complete. Nevertheless, NCSC-NL cannot entirely rule out the possibility of errors, and therefore cannot give any warranty in respect of its completeness, accuracy or real-time keeping up-to-date. NCSC-NL does not control nor guarantee the accuracy, relevance, timeliness or completeness of information obtained from these external sources. The vulnerabilities disclosed in this portal are intended solely for the convenience of professional parties to take appropriate measures to manage the risks posed to the cybersecurity. No rights can be derived from the information provided therein.\n\nNCSC-NL and the Kingdom of the Netherlands assume no legal liability or responsibility for any damage resulting from either the use or inability of use of the vulnerabilities disclosed in this portal. This includes damage resulting from the inaccuracy of incompleteness of the information contained in it.\nThe information on this page is subject to Dutch law. All disputes related to or arising from the use of this portal regarding the disclosure of vulnerabilities will be submitted to the competent court in The Hague. This choice of means also applies to the court in summary proceedings."
            }
        ],
        "publisher": {
            "category": "coordinator",
            "contact_details": "cert@ncsc.nl",
            "name": "National Cyber Security Centre",
            "namespace": "https://www.ncsc.nl/"
        },
        "title": "CVE-2025-64718",
        "tracking": {
            "current_release_date": "2026-06-09T15:40:38.394178Z",
            "generator": {
                "date": "2026-02-17T15:00:00Z",
                "engine": {
                    "name": "V.E.L.M.A",
                    "version": "1.7"
                }
            },
            "id": "CVE-2025-64718",
            "initial_release_date": "2025-11-13T16:28:50.112703Z",
            "revision_history": [
                {
                    "date": "2025-11-13T16:28:50.112703Z",
                    "number": "1",
                    "summary": "CVE created.| Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| References created (2).| CWES updated (1)."
                },
                {
                    "date": "2025-11-13T16:28:52.375329Z",
                    "number": "2",
                    "summary": "NCSC Score created."
                },
                {
                    "date": "2025-11-13T16:38:53.478375Z",
                    "number": "3",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products created (1).| References created (2).| CWES updated (1)."
                },
                {
                    "date": "2025-11-13T16:38:59.291549Z",
                    "number": "4",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2025-11-14T00:43:20.603090Z",
                    "number": "5",
                    "summary": "Source created.| CVE status created. (valid)| Products created (2)."
                },
                {
                    "date": "2025-11-14T01:48:15.509986Z",
                    "number": "6",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products created (73).| References created (2).| CWES updated (1)."
                },
                {
                    "date": "2025-11-14T06:43:22.062335Z",
                    "number": "7",
                    "summary": "Description created for source."
                },
                {
                    "date": "2025-11-14T14:12:55.981791Z",
                    "number": "8",
                    "summary": "Source created.| CVE status created. (valid)| EPSS created."
                },
                {
                    "date": "2025-11-14T14:12:58.133418Z",
                    "number": "9",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2025-11-14T14:39:38.706016Z",
                    "number": "10",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| References created (4).| CWES updated (1)."
                },
                {
                    "date": "2025-11-14T14:39:49.813594Z",
                    "number": "11",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2025-11-14T18:20:45.007091Z",
                    "number": "12",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products created (1).| References created (3).| CWES updated (1)."
                },
                {
                    "date": "2025-11-17T15:39:35.545114Z",
                    "number": "13",
                    "summary": "Description removed for source.| Description created for source.| References created (1)."
                },
                {
                    "date": "2025-11-17T15:39:43.760197Z",
                    "number": "14",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2025-11-17T18:21:57.106679Z",
                    "number": "15",
                    "summary": "Description removed for source.| Description created for source.| Products created (2).| Products removed (1).| References created (1)."
                },
                {
                    "date": "2025-12-02T20:25:33.841608Z",
                    "number": "16",
                    "summary": "Products connected (1).| Product Identifiers created (1)."
                },
                {
                    "date": "2025-12-02T20:25:36.438414Z",
                    "number": "17",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2025-12-06T11:08:50.433477Z",
                    "number": "18",
                    "summary": "References created (2)."
                },
                {
                    "date": "2025-12-16T12:07:01.804251Z",
                    "number": "19",
                    "summary": "Source connected.| CVE status created. (valid)| Products connected (1).| References created (4)."
                },
                {
                    "date": "2025-12-16T12:07:04.681086Z",
                    "number": "20",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2025-12-23T09:07:24.430880Z",
                    "number": "21",
                    "summary": "Source connected.| CVE status created. (valid)| Products connected (2).| References created (3)."
                },
                {
                    "date": "2025-12-23T09:07:30.638767Z",
                    "number": "22",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2025-12-26T17:29:21.258017Z",
                    "number": "23",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-01-15T08:26:37.187207Z",
                    "number": "24",
                    "summary": "Manual regenerated (CSAFs rebuild product/vendor naming update)."
                },
                {
                    "date": "2026-01-21T00:28:08.106654Z",
                    "number": "25",
                    "summary": "Source connected.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (1).| Product Remediations created (1).| References created (2)."
                },
                {
                    "date": "2026-01-21T00:28:11.042997Z",
                    "number": "26",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-01-21T09:08:14.924429Z",
                    "number": "27",
                    "summary": "Source connected.| CVE status created. (valid)| Products connected (32).| References created (3)."
                },
                {
                    "date": "2026-01-21T09:08:27.099547Z",
                    "number": "28",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-01-21T09:29:08.992186Z",
                    "number": "29",
                    "summary": "Source connected.| CVE status created. (valid)"
                },
                {
                    "date": "2026-01-21T15:24:50.034678Z",
                    "number": "30",
                    "summary": "References created (1)."
                },
                {
                    "date": "2026-01-21T15:39:13.196798Z",
                    "number": "31",
                    "summary": "References created (1).| Unknown change."
                },
                {
                    "date": "2026-01-22T00:21:47.832092Z",
                    "number": "32",
                    "summary": "References created (1)."
                },
                {
                    "date": "2026-01-22T00:21:53.367594Z",
                    "number": "33",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-01-29T22:24:39.867105Z",
                    "number": "34",
                    "summary": "Description removed for source.| Description created for source.| References created (2)."
                },
                {
                    "date": "2026-01-29T22:24:42.013307Z",
                    "number": "35",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-01-29T22:38:53.704810Z",
                    "number": "36",
                    "summary": "Description removed for source.| Description created for source.| Products connected (1).| Products created (1).| Products removed (1).| References created (2)."
                },
                {
                    "date": "2026-01-30T06:13:42.438579Z",
                    "number": "37",
                    "summary": "Description removed for source.| Description created for source.| Products connected (1).| References created (2)."
                },
                {
                    "date": "2026-01-30T06:43:24.982027Z",
                    "number": "38",
                    "summary": "Description removed for source.| Description created for source."
                },
                {
                    "date": "2026-01-31T06:20:48.596578Z",
                    "number": "39",
                    "summary": "References created (2)."
                },
                {
                    "date": "2026-01-31T06:20:51.473930Z",
                    "number": "40",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-01-31T18:47:35.451636Z",
                    "number": "41",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products created (1).| Products connected (3).| References created (7).| CWES updated (1)."
                },
                {
                    "date": "2026-01-31T18:47:37.025519Z",
                    "number": "42",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-02T09:53:22.808026Z",
                    "number": "43",
                    "summary": "Products invalidated (1)."
                },
                {
                    "date": "2026-02-02T13:25:07.722455Z",
                    "number": "44",
                    "summary": "Products connected (2).| Product Identifiers created (2).| Products removed (1)."
                },
                {
                    "date": "2026-02-02T13:25:20.943110Z",
                    "number": "45",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-06T10:06:09.540921Z",
                    "number": "46",
                    "summary": "Products connected (1).| References created (1)."
                },
                {
                    "date": "2026-02-06T10:06:11.898947Z",
                    "number": "47",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-07T00:37:35.259916Z",
                    "number": "48",
                    "summary": "Products removed (72)."
                },
                {
                    "date": "2026-02-07T07:22:08.151651Z",
                    "number": "49",
                    "summary": "Products connected (72)."
                },
                {
                    "date": "2026-02-18T00:42:53.197242Z",
                    "number": "50",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products created (2).| Product Remediations created (1)."
                },
                {
                    "date": "2026-02-18T00:43:00.196527Z",
                    "number": "51",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-19T18:44:09.567317Z",
                    "number": "52",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products created (2).| Product Remediations created (1)."
                },
                {
                    "date": "2026-02-19T18:44:11.949543Z",
                    "number": "53",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-21T00:16:13.725303Z",
                    "number": "54",
                    "summary": "Products removed (72)."
                },
                {
                    "date": "2026-02-21T00:16:15.954734Z",
                    "number": "55",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-21T17:37:14.311951Z",
                    "number": "56",
                    "summary": "Products connected (72)."
                },
                {
                    "date": "2026-03-01T01:47:14.377760Z",
                    "number": "57",
                    "summary": "Products removed (72)."
                },
                {
                    "date": "2026-03-01T01:47:17.244983Z",
                    "number": "58",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-01T17:40:37.185723Z",
                    "number": "59",
                    "summary": "Products connected (72)."
                },
                {
                    "date": "2026-03-09T12:17:33.630115Z",
                    "number": "60",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-10T12:33:52.578741Z",
                    "number": "61",
                    "summary": "Source connected.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (1).| Product Remediations created (1).| References created (2).| CWES updated (1)."
                },
                {
                    "date": "2026-03-10T12:33:56.435961Z",
                    "number": "62",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-10T12:44:41.574565Z",
                    "number": "63",
                    "summary": "Source connected.| CVE status created. (valid)"
                },
                {
                    "date": "2026-03-17T12:15:55.692047Z",
                    "number": "64",
                    "summary": "Source connected.| CVE status created. (valid)| Products connected (1).| References created (3)."
                },
                {
                    "date": "2026-03-17T12:16:07.748855Z",
                    "number": "65",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-19T10:32:27.813982Z",
                    "number": "66",
                    "summary": "Products created (4).| Products removed (4)."
                },
                {
                    "date": "2026-03-19T10:32:30.329128Z",
                    "number": "67",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-19T20:28:43.530091Z",
                    "number": "68",
                    "summary": "Source connected.| CVE status created. (valid)| EPSS created."
                },
                {
                    "date": "2026-03-19T20:28:49.173666Z",
                    "number": "69",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-20T19:38:58.884187Z",
                    "number": "70",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (2).| Product Identifiers created (2).| References created (5).| CWES updated (1)."
                },
                {
                    "date": "2026-03-20T19:39:01.639668Z",
                    "number": "71",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-30T13:21:35.171852Z",
                    "number": "72",
                    "summary": "Products connected (1).| References created (1)."
                },
                {
                    "date": "2026-03-30T13:21:37.471081Z",
                    "number": "73",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-04-06T11:47:08.714209Z",
                    "number": "74",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-04-08T10:13:48.256172Z",
                    "number": "75",
                    "summary": "Products connected (2).| References created (1)."
                },
                {
                    "date": "2026-04-08T10:13:52.851232Z",
                    "number": "76",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-04-13T11:43:57.977823Z",
                    "number": "77",
                    "summary": "Products connected (1).| References created (1)."
                },
                {
                    "date": "2026-04-13T11:44:01.327357Z",
                    "number": "78",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-04-15T23:10:14.329972Z",
                    "number": "79",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| Products created (2).| References created (3)."
                },
                {
                    "date": "2026-04-15T23:10:17.669027Z",
                    "number": "80",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-04-15T23:10:34.149756Z",
                    "number": "81",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| Products created (1).| References created (3)."
                },
                {
                    "date": "2026-04-16T00:08:36.893712Z",
                    "number": "82",
                    "summary": "Source connected.| CVE status created. (valid)| Description created for source.| Products connected (2).| References created (5)."
                },
                {
                    "date": "2026-04-16T00:09:31.150196Z",
                    "number": "83",
                    "summary": "Source connected.| CVE status created. (valid)| Description created for source.| Products connected (1).| References created (5)."
                },
                {
                    "date": "2026-04-16T11:31:19.786260Z",
                    "number": "84",
                    "summary": "Products connected (1).| References created (1)."
                },
                {
                    "date": "2026-04-16T11:31:22.708337Z",
                    "number": "85",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-04-21T17:08:30.103890Z",
                    "number": "86",
                    "summary": "Source connected.| CVE status created. (valid)| EPSS created."
                },
                {
                    "date": "2026-04-21T17:09:13.952428Z",
                    "number": "87",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-04-28T06:48:04.381365Z",
                    "number": "88",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products created (17).| Product Identifiers created (11).| References created (4)."
                },
                {
                    "date": "2026-04-28T06:48:15.271016Z",
                    "number": "89",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-04-28T13:55:16.035412Z",
                    "number": "90",
                    "summary": "Description removed for source."
                },
                {
                    "date": "2026-05-07T11:06:58.792473Z",
                    "number": "91",
                    "summary": "References created (1)."
                },
                {
                    "date": "2026-05-07T11:07:00.993995Z",
                    "number": "92",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-05-12T00:28:47.182351Z",
                    "number": "93",
                    "summary": "Source connected.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (8).| Product Remediations created (10).| Product Identifiers created (28).| Product Identifiers removed (28).| References created (16).| CWES updated (1)."
                },
                {
                    "date": "2026-05-12T00:28:56.063693Z",
                    "number": "94",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-05-19T09:17:07.933259Z",
                    "number": "95",
                    "summary": "References created (1)."
                },
                {
                    "date": "2026-05-19T09:17:10.630583Z",
                    "number": "96",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-06-08T10:17:02.223517Z",
                    "number": "97",
                    "summary": "Products connected (1).| References created (1)."
                },
                {
                    "date": "2026-06-08T10:17:06.060260Z",
                    "number": "98",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-06-09T15:38:01.683106Z",
                    "number": "99",
                    "summary": "Source connected.| CVE status created. (valid)| EPSS created."
                },
                {
                    "date": "2026-06-09T15:38:04.210503Z",
                    "number": "100",
                    "summary": "NCSC Score updated."
                }
            ],
            "status": "interim",
            "version": "100"
        }
    },
    "product_tree": {
        "branches": [
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<12.0.12.21",
                                "product": {
                                    "name": "vers:unknown/<12.0.12.21",
                                    "product_id": "CSAFPID-5284416"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<13.0.6.0",
                                "product": {
                                    "name": "vers:unknown/<13.0.6.0",
                                    "product_id": "CSAFPID-5300022"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/certified container operator <12.0.22",
                                "product": {
                                    "name": "vers:unknown/certified container operator <12.0.22",
                                    "product_id": "CSAFPID-6009384"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/certified container operator <12.19.0",
                                "product": {
                                    "name": "vers:unknown/certified container operator <12.19.0",
                                    "product_id": "CSAFPID-6009385"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "App Connect Enterprise"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unknown",
                                "product": {
                                    "name": "vers:unknown/unknown",
                                    "product_id": "CSAFPID-1337760",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:ibm:app_connect_enterprise:-"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "IBM App Connect Enterprise"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<9.0.0.0 if002",
                                "product": {
                                    "name": "vers:unknown/<9.0.0.0 if002",
                                    "product_id": "CSAFPID-5833665"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "SPSS"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<5.2.3.7",
                                "product": {
                                    "name": "vers:unknown/<5.2.3.7",
                                    "product_id": "CSAFPID-8152695"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Storage Scale"
                    }
                ],
                "category": "vendor",
                "name": "IBM"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/10.0.0",
                                "product": {
                                    "name": "vers:unknown/10.0.0",
                                    "product_id": "CSAFPID-2726925",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:communications:10.0.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/15.0.0.0",
                                "product": {
                                    "name": "vers:unknown/15.0.0.0",
                                    "product_id": "CSAFPID-2981733",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:communications:15.0.0.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/15.0.0.0.0",
                                "product": {
                                    "name": "vers:unknown/15.0.0.0.0",
                                    "product_id": "CSAFPID-1350134",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:communications:15.0.0.0.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/15.0.1.0",
                                "product": {
                                    "name": "vers:unknown/15.0.1.0",
                                    "product_id": "CSAFPID-5452532",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:communications:15.0.1.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/15.0.1.0.0",
                                "product": {
                                    "name": "vers:unknown/15.0.1.0.0",
                                    "product_id": "CSAFPID-5452530",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:communications:15.0.1.0.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/15.1.0.0",
                                "product": {
                                    "name": "vers:unknown/15.1.0.0",
                                    "product_id": "CSAFPID-5452524",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:communications:15.1.0.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/15.1.0.0.0",
                                "product": {
                                    "name": "vers:unknown/15.1.0.0.0",
                                    "product_id": "CSAFPID-5452533",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:communications:15.1.0.0.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/24.3.0",
                                "product": {
                                    "name": "vers:unknown/24.3.0",
                                    "product_id": "CSAFPID-1846966",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:communications:24.3.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/25.1.0",
                                "product": {
                                    "name": "vers:unknown/25.1.0",
                                    "product_id": "CSAFPID-5452525",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:communications:25.1.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/25.1.100",
                                "product": {
                                    "name": "vers:unknown/25.1.100",
                                    "product_id": "CSAFPID-2726924",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:communications:25.1.100"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/25.1.200",
                                "product": {
                                    "name": "vers:unknown/25.1.200",
                                    "product_id": "CSAFPID-5452528",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:communications:25.1.200"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/25.2.100",
                                "product": {
                                    "name": "vers:unknown/25.2.100",
                                    "product_id": "CSAFPID-5129856",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:communications:25.2.100"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/4.1.0",
                                "product": {
                                    "name": "vers:unknown/4.1.0",
                                    "product_id": "CSAFPID-1350120",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:communications:4.1.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/4.2.0",
                                "product": {
                                    "name": "vers:unknown/4.2.0",
                                    "product_id": "CSAFPID-1350121",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:communications:4.2.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/5.0.0",
                                "product": {
                                    "name": "vers:unknown/5.0.0",
                                    "product_id": "CSAFPID-2981732",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:communications:5.0.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/5.2",
                                "product": {
                                    "name": "vers:unknown/5.2",
                                    "product_id": "CSAFPID-1350129",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:communications:5.2"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/6",
                                "product": {
                                    "name": "vers:unknown/6",
                                    "product_id": "CSAFPID-5129855",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:communications:6.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/6.1",
                                "product": {
                                    "name": "vers:unknown/6.1",
                                    "product_id": "CSAFPID-5452527",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:communications:6.1"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/7.3.6",
                                "product": {
                                    "name": "vers:unknown/7.3.6",
                                    "product_id": "CSAFPID-5452535",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:communications:7.3.6"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/7.4.0",
                                "product": {
                                    "name": "vers:unknown/7.4.0",
                                    "product_id": "CSAFPID-5452534",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:communications:7.4.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/7.4.1",
                                "product": {
                                    "name": "vers:unknown/7.4.1",
                                    "product_id": "CSAFPID-5452529",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:communications:7.4.1"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/7.5.0",
                                "product": {
                                    "name": "vers:unknown/7.5.0",
                                    "product_id": "CSAFPID-5452523",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:communications:7.5.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/7.7.0",
                                "product": {
                                    "name": "vers:unknown/7.7.0",
                                    "product_id": "CSAFPID-5452536",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:communications:7.7.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/7.8.0",
                                "product": {
                                    "name": "vers:unknown/7.8.0",
                                    "product_id": "CSAFPID-5452531",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:communications:7.8.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/8.0.0",
                                "product": {
                                    "name": "vers:unknown/8.0.0",
                                    "product_id": "CSAFPID-1351079",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:communications:8.0.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/9.0.0",
                                "product": {
                                    "name": "vers:unknown/9.0.0",
                                    "product_id": "CSAFPID-2726921",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:communications:9.0.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/9.0.1",
                                "product": {
                                    "name": "vers:unknown/9.0.1",
                                    "product_id": "CSAFPID-2726931",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:communications:9.0.1"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/9.1.0",
                                "product": {
                                    "name": "vers:unknown/9.1.0",
                                    "product_id": "CSAFPID-5452526",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:communications:9.1.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/9.3.0",
                                "product": {
                                    "name": "vers:unknown/9.3.0",
                                    "product_id": "CSAFPID-1350123",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:communications:9.3.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<=24.2.1",
                                "product": {
                                    "name": "vers:unknown/<=24.2.1",
                                    "product_id": "CSAFPID-5129864"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<=6.1.1",
                                "product": {
                                    "name": "vers:unknown/<=6.1.1",
                                    "product_id": "CSAFPID-5452537"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<=9.0.4",
                                "product": {
                                    "name": "vers:unknown/<=9.0.4",
                                    "product_id": "CSAFPID-2981737"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Communications"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oracle/>=6.1.0|<=6.1.1",
                                        "product": {
                                            "name": "vers:oracle/>=6.1.0|<=6.1.1",
                                            "product_id": "CSAFPID-5450598",
                                            "product_identification_helper": {
                                                "cpe": "cpe:2.3:a:oracle:communications_unified_assurance:6.1.0-6.1.1:*:*:*:*:*:*:*"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "Oracle Communications Unified Assurance"
                            }
                        ],
                        "category": "product_family",
                        "name": "Oracle Communications"
                    }
                ],
                "category": "vendor",
                "name": "Oracle"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unknown",
                                "product": {
                                    "name": "vers:unknown/unknown",
                                    "product_id": "CSAFPID-1367428",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:hcltechsw:commerce:-"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "HCL Commerce"
                    }
                ],
                "category": "vendor",
                "name": "HCL"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<=7.5.0",
                                "product": {
                                    "name": "vers:unknown/<=7.5.0",
                                    "product_id": "CSAFPID-5626796"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/>=7.6.0",
                                "product": {
                                    "name": "vers:unknown/>=7.6.0",
                                    "product_id": "CSAFPID-5626797"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "HPE Telco Network Function Virtualization Orchestrator"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<5.5.0",
                                "product": {
                                    "name": "vers:unknown/<5.5.0",
                                    "product_id": "CSAFPID-5637787"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/>=5.5.0",
                                "product": {
                                    "name": "vers:unknown/>=5.5.0",
                                    "product_id": "CSAFPID-5637788"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "HPE Telco Service Orchestrator"
                    }
                ],
                "category": "vendor",
                "name": "HPE"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/8.1",
                                        "product": {
                                            "name": "vers:rpm/8.1",
                                            "product_id": "CSAFPID-6857128",
                                            "product_identification_helper": {
                                                "cpe": "cpe:/a:redhat:ceph_storage:8.1::el9"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "Red Hat Ceph Storage 8.1"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oci/1777566546",
                                        "product": {
                                            "name": "vers:oci/1777566546",
                                            "product_id": "CSAFPID-6857129",
                                            "product_identification_helper": {
                                                "purl": "pkg:oci/grafana-rhel9@sha256%3Ac27690e36faf7db08a6d398cce7dbedcfe74848224a179c7278b62315516dd4a?arch=arm64&repository_url=registry.redhat.io/rhceph&tag=1777566546"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "grafana-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oci/1777566772",
                                        "product": {
                                            "name": "vers:oci/1777566772",
                                            "product_id": "CSAFPID-6857130",
                                            "product_identification_helper": {
                                                "purl": "pkg:oci/keepalived-rhel9@sha256%3Afa3c9307038f92e351892be9c73cda40a3bab2038904fabcb97dad5568dcec2d?arch=s390x&repository_url=registry.redhat.io/rhceph&tag=1777566772"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "keepalived-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oci/1777566148",
                                        "product": {
                                            "name": "vers:oci/1777566148",
                                            "product_id": "CSAFPID-6857131",
                                            "product_identification_helper": {
                                                "purl": "pkg:oci/oauth2-proxy-rhel9@sha256%3Af76307e201d0b2deaf0aa96bc6b62fc4535c8358b06a8e95ec5a8abf10d2da07?arch=arm64&repository_url=registry.redhat.io/rhceph&tag=1777566148"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "oauth2-proxy-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oci/1778049929",
                                        "product": {
                                            "name": "vers:oci/1778049929",
                                            "product_id": "CSAFPID-6857132",
                                            "product_identification_helper": {
                                                "purl": "pkg:oci/rhceph-8-rhel9@sha256%3Af7e87de708186099c76426f24b53395340a672e282615164bac73afca3f36454?arch=arm64&repository_url=registry.redhat.io/rhceph&tag=1778049929"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "rhceph-8-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oci/1777566519",
                                        "product": {
                                            "name": "vers:oci/1777566519",
                                            "product_id": "CSAFPID-6857133",
                                            "product_identification_helper": {
                                                "purl": "pkg:oci/rhceph-haproxy-rhel9@sha256%3A8b20b6abf0399bbfc970990bc0c5b6dab46c1043ef761519dbbe8213e6fdd169?arch=amd64&repository_url=registry.redhat.io/rhceph&tag=1777566519"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "rhceph-haproxy-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oci/1777566201",
                                        "product": {
                                            "name": "vers:oci/1777566201",
                                            "product_id": "CSAFPID-6857134",
                                            "product_identification_helper": {
                                                "purl": "pkg:oci/rhceph-promtail-rhel9@sha256%3Ae0e44241bde7bfbccea69d06e5fd00ad0a0ab569bef6645687bcadcfc00aa5ef?arch=amd64&repository_url=registry.redhat.io/rhceph&tag=1777566201"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "rhceph-promtail-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oci/1777567370",
                                        "product": {
                                            "name": "vers:oci/1777567370",
                                            "product_id": "CSAFPID-6857135",
                                            "product_identification_helper": {
                                                "purl": "pkg:oci/snmp-notifier-rhel9@sha256%3Abf282440c8e3ce4d38535bb1efdcbc05f0278647d2fc6e2a13c9c28c0c101f79?arch=ppc64le&repository_url=registry.redhat.io/rhceph&tag=1777567370"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "snmp-notifier-rhel9"
                            }
                        ],
                        "category": "product_family",
                        "name": "Red Hat Ceph Storage"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unknown",
                                "product": {
                                    "name": "vers:unknown/unknown",
                                    "product_id": "CSAFPID-1317175",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:redhat:enterprise_linux:-"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Red Hat Enterprise Linux"
                    }
                ],
                "category": "vendor",
                "name": "Red Hat"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:intdot/<4.0.800",
                                "product": {
                                    "name": "vers:intdot/<4.0.800",
                                    "product_id": "CSAFPID-5771496"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "SIDIS Prime"
                    }
                ],
                "category": "vendor",
                "name": "Siemens"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unknown",
                                "product": {
                                    "name": "vers:unknown/unknown",
                                    "product_id": "CSAFPID-1317174",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:suse:suse_linux:-"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "SuSE Linux"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0|<4.7-160000.1.1",
                                        "product": {
                                            "name": "vers:unknown/>=0|<4.7-160000.1.1",
                                            "product_id": "CSAFPID-6049257"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "cockpit-repos"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0|<12.1-160000.1.1",
                                        "product": {
                                            "name": "vers:unknown/>=0|<12.1-160000.1.1",
                                            "product_id": "CSAFPID-6048933"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "cockpit-subscriptions"
                            }
                        ],
                        "category": "product_family",
                        "name": "SUSE:Linux Enterprise Server 16.0"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0|<4.7-160000.1.1",
                                        "product": {
                                            "name": "vers:unknown/>=0|<4.7-160000.1.1",
                                            "product_id": "CSAFPID-6049258"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "cockpit-repos"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0|<12.1-160000.1.1",
                                        "product": {
                                            "name": "vers:unknown/>=0|<12.1-160000.1.1",
                                            "product_id": "CSAFPID-6048934"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "cockpit-subscriptions"
                            }
                        ],
                        "category": "product_family",
                        "name": "SUSE:Linux Enterprise Server for SAP applications 16.0"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0|<4.7-160000.1.1",
                                        "product": {
                                            "name": "vers:unknown/>=0|<4.7-160000.1.1",
                                            "product_id": "CSAFPID-6049296"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "cockpit-repos"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0|<12.1-160000.1.1",
                                        "product": {
                                            "name": "vers:unknown/>=0|<12.1-160000.1.1",
                                            "product_id": "CSAFPID-6048943"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "cockpit-subscriptions"
                            }
                        ],
                        "category": "product_family",
                        "name": "SUSE:Linux Micro 6.2"
                    }
                ],
                "category": "vendor",
                "name": "SUSE"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.1.0",
                                "product": {
                                    "name": "vers:unknown/0.1.0",
                                    "product_id": "CSAFPID-5186850"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.2.0",
                                "product": {
                                    "name": "vers:unknown/0.2.0",
                                    "product_id": "CSAFPID-5186851"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.2.1",
                                "product": {
                                    "name": "vers:unknown/0.2.1",
                                    "product_id": "CSAFPID-5186852"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.2.2",
                                "product": {
                                    "name": "vers:unknown/0.2.2",
                                    "product_id": "CSAFPID-5186853"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.3.0",
                                "product": {
                                    "name": "vers:unknown/0.3.0",
                                    "product_id": "CSAFPID-5186854"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.3.1",
                                "product": {
                                    "name": "vers:unknown/0.3.1",
                                    "product_id": "CSAFPID-5186855"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.3.2",
                                "product": {
                                    "name": "vers:unknown/0.3.2",
                                    "product_id": "CSAFPID-5186856"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.3.3",
                                "product": {
                                    "name": "vers:unknown/0.3.3",
                                    "product_id": "CSAFPID-5186857"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.3.4",
                                "product": {
                                    "name": "vers:unknown/0.3.4",
                                    "product_id": "CSAFPID-5186858"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.3.5",
                                "product": {
                                    "name": "vers:unknown/0.3.5",
                                    "product_id": "CSAFPID-5186859"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.3.6",
                                "product": {
                                    "name": "vers:unknown/0.3.6",
                                    "product_id": "CSAFPID-5186860"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/0.3.7",
                                "product": {
                                    "name": "vers:unknown/0.3.7",
                                    "product_id": "CSAFPID-5186861"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.0.0",
                                "product": {
                                    "name": "vers:unknown/1.0.0",
                                    "product_id": "CSAFPID-5186862"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.0.1",
                                "product": {
                                    "name": "vers:unknown/1.0.1",
                                    "product_id": "CSAFPID-5186863"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.0.2",
                                "product": {
                                    "name": "vers:unknown/1.0.2",
                                    "product_id": "CSAFPID-5186864"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.0.3",
                                "product": {
                                    "name": "vers:unknown/1.0.3",
                                    "product_id": "CSAFPID-5186865"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.0",
                                "product": {
                                    "name": "vers:unknown/2.0.0",
                                    "product_id": "CSAFPID-5186866"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.1",
                                "product": {
                                    "name": "vers:unknown/2.0.1",
                                    "product_id": "CSAFPID-5186867"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.2",
                                "product": {
                                    "name": "vers:unknown/2.0.2",
                                    "product_id": "CSAFPID-5186868"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.3",
                                "product": {
                                    "name": "vers:unknown/2.0.3",
                                    "product_id": "CSAFPID-5186869"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.4",
                                "product": {
                                    "name": "vers:unknown/2.0.4",
                                    "product_id": "CSAFPID-5186870"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.5",
                                "product": {
                                    "name": "vers:unknown/2.0.5",
                                    "product_id": "CSAFPID-5186871"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.1.0",
                                "product": {
                                    "name": "vers:unknown/2.1.0",
                                    "product_id": "CSAFPID-5186872"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.1.1",
                                "product": {
                                    "name": "vers:unknown/2.1.1",
                                    "product_id": "CSAFPID-5186873"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.1.2",
                                "product": {
                                    "name": "vers:unknown/2.1.2",
                                    "product_id": "CSAFPID-5186874"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.1.3",
                                "product": {
                                    "name": "vers:unknown/2.1.3",
                                    "product_id": "CSAFPID-5186875"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.0.0",
                                "product": {
                                    "name": "vers:unknown/3.0.0",
                                    "product_id": "CSAFPID-5186876"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.0.1",
                                "product": {
                                    "name": "vers:unknown/3.0.1",
                                    "product_id": "CSAFPID-5186877"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.0.2",
                                "product": {
                                    "name": "vers:unknown/3.0.2",
                                    "product_id": "CSAFPID-5186878"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.1.0",
                                "product": {
                                    "name": "vers:unknown/3.1.0",
                                    "product_id": "CSAFPID-5186879"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.10.0",
                                "product": {
                                    "name": "vers:unknown/3.10.0",
                                    "product_id": "CSAFPID-5186880"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.11.0",
                                "product": {
                                    "name": "vers:unknown/3.11.0",
                                    "product_id": "CSAFPID-5186881"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.12.0",
                                "product": {
                                    "name": "vers:unknown/3.12.0",
                                    "product_id": "CSAFPID-5186882"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.12.1",
                                "product": {
                                    "name": "vers:unknown/3.12.1",
                                    "product_id": "CSAFPID-5186883"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.12.2",
                                "product": {
                                    "name": "vers:unknown/3.12.2",
                                    "product_id": "CSAFPID-5186884"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.13.0",
                                "product": {
                                    "name": "vers:unknown/3.13.0",
                                    "product_id": "CSAFPID-5186885"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.13.1",
                                "product": {
                                    "name": "vers:unknown/3.13.1",
                                    "product_id": "CSAFPID-5186886"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.14.0",
                                "product": {
                                    "name": "vers:unknown/3.14.0",
                                    "product_id": "CSAFPID-5186887"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.14.1",
                                "product": {
                                    "name": "vers:unknown/3.14.1",
                                    "product_id": "CSAFPID-5310065"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.2.0",
                                "product": {
                                    "name": "vers:unknown/3.2.0",
                                    "product_id": "CSAFPID-5186888"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.2.1",
                                "product": {
                                    "name": "vers:unknown/3.2.1",
                                    "product_id": "CSAFPID-5186889"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.2.2",
                                "product": {
                                    "name": "vers:unknown/3.2.2",
                                    "product_id": "CSAFPID-5186890"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.2.3",
                                "product": {
                                    "name": "vers:unknown/3.2.3",
                                    "product_id": "CSAFPID-5186891"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.2.4",
                                "product": {
                                    "name": "vers:unknown/3.2.4",
                                    "product_id": "CSAFPID-5186892"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.2.5",
                                "product": {
                                    "name": "vers:unknown/3.2.5",
                                    "product_id": "CSAFPID-5186893"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.2.6",
                                "product": {
                                    "name": "vers:unknown/3.2.6",
                                    "product_id": "CSAFPID-5186894"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.2.7",
                                "product": {
                                    "name": "vers:unknown/3.2.7",
                                    "product_id": "CSAFPID-5186895"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.3.0",
                                "product": {
                                    "name": "vers:unknown/3.3.0",
                                    "product_id": "CSAFPID-5186896"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.3.1",
                                "product": {
                                    "name": "vers:unknown/3.3.1",
                                    "product_id": "CSAFPID-5186897"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.4.0",
                                "product": {
                                    "name": "vers:unknown/3.4.0",
                                    "product_id": "CSAFPID-5186898"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.4.1",
                                "product": {
                                    "name": "vers:unknown/3.4.1",
                                    "product_id": "CSAFPID-5186899"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.4.2",
                                "product": {
                                    "name": "vers:unknown/3.4.2",
                                    "product_id": "CSAFPID-5186900"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.4.3",
                                "product": {
                                    "name": "vers:unknown/3.4.3",
                                    "product_id": "CSAFPID-5186901"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.4.4",
                                "product": {
                                    "name": "vers:unknown/3.4.4",
                                    "product_id": "CSAFPID-5186902"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.4.5",
                                "product": {
                                    "name": "vers:unknown/3.4.5",
                                    "product_id": "CSAFPID-5186903"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.4.6",
                                "product": {
                                    "name": "vers:unknown/3.4.6",
                                    "product_id": "CSAFPID-5186904"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.5.0",
                                "product": {
                                    "name": "vers:unknown/3.5.0",
                                    "product_id": "CSAFPID-5186905"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.5.1",
                                "product": {
                                    "name": "vers:unknown/3.5.1",
                                    "product_id": "CSAFPID-5186906"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.5.2",
                                "product": {
                                    "name": "vers:unknown/3.5.2",
                                    "product_id": "CSAFPID-5186907"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.5.3",
                                "product": {
                                    "name": "vers:unknown/3.5.3",
                                    "product_id": "CSAFPID-5186908"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.5.4",
                                "product": {
                                    "name": "vers:unknown/3.5.4",
                                    "product_id": "CSAFPID-5186909"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.5.5",
                                "product": {
                                    "name": "vers:unknown/3.5.5",
                                    "product_id": "CSAFPID-5186910"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.6.0",
                                "product": {
                                    "name": "vers:unknown/3.6.0",
                                    "product_id": "CSAFPID-5186911"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.6.1",
                                "product": {
                                    "name": "vers:unknown/3.6.1",
                                    "product_id": "CSAFPID-5186912"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.7.0",
                                "product": {
                                    "name": "vers:unknown/3.7.0",
                                    "product_id": "CSAFPID-5186913"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.8.0",
                                "product": {
                                    "name": "vers:unknown/3.8.0",
                                    "product_id": "CSAFPID-5186914"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.8.1",
                                "product": {
                                    "name": "vers:unknown/3.8.1",
                                    "product_id": "CSAFPID-5186915"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.8.2",
                                "product": {
                                    "name": "vers:unknown/3.8.2",
                                    "product_id": "CSAFPID-5186916"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.8.3",
                                "product": {
                                    "name": "vers:unknown/3.8.3",
                                    "product_id": "CSAFPID-5186917"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.8.4",
                                "product": {
                                    "name": "vers:unknown/3.8.4",
                                    "product_id": "CSAFPID-5186918"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.9.0",
                                "product": {
                                    "name": "vers:unknown/3.9.0",
                                    "product_id": "CSAFPID-5186919"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.9.1",
                                "product": {
                                    "name": "vers:unknown/3.9.1",
                                    "product_id": "CSAFPID-5186920"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/4.0.0",
                                "product": {
                                    "name": "vers:unknown/4.0.0",
                                    "product_id": "CSAFPID-5186921"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/4.1.0",
                                "product": {
                                    "name": "vers:unknown/4.1.0",
                                    "product_id": "CSAFPID-5186922"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<3.14.2",
                                "product": {
                                    "name": "vers:unknown/<3.14.2",
                                    "product_id": "CSAFPID-5491119",
                                    "product_identification_helper": {
                                        "cpe": "cpe:2.3:a:nodeca:js-yaml:*:*:*:*:*:node.js:*:*"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/>=0|<3.14.2",
                                "product": {
                                    "name": "vers:unknown/>=0|<3.14.2",
                                    "product_id": "CSAFPID-5191804"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/>=4.0.0|<4.1.1",
                                "product": {
                                    "name": "vers:unknown/>=4.0.0|<4.1.1",
                                    "product_id": "CSAFPID-5191803",
                                    "product_identification_helper": {
                                        "cpe": "cpe:2.3:a:nodeca:js-yaml:*:*:*:*:*:node.js:*:*"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "js-yaml"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.14.2",
                                "product": {
                                    "name": "vers:unknown/3.14.2",
                                    "product_id": "CSAFPID-5848675"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/4.1.1",
                                "product": {
                                    "name": "vers:unknown/4.1.1",
                                    "product_id": "CSAFPID-5848674"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<3.14.2",
                                "product": {
                                    "name": "vers:unknown/<3.14.2",
                                    "product_id": "CSAFPID-5848677"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/>=4.0.0|<4.1.1",
                                "product": {
                                    "name": "vers:unknown/>=4.0.0|<4.1.1",
                                    "product_id": "CSAFPID-5848676"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "npm/js-yaml"
                    }
                ],
                "category": "vendor",
                "name": "nodeca"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/3.10.0+dfsg-1",
                                        "product": {
                                            "name": "vers:unknown/3.10.0+dfsg-1",
                                            "product_id": "CSAFPID-6248064",
                                            "product_identification_helper": {
                                                "purl": "pkg:deb/ubuntu/node-js-yaml@3.10.0%2Bdfsg-1?arch=source&distro=bionic"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/3.9.1+dfsg-1",
                                        "product": {
                                            "name": "vers:unknown/3.9.1+dfsg-1",
                                            "product_id": "CSAFPID-6248063",
                                            "product_identification_helper": {
                                                "purl": "pkg:deb/ubuntu/node-js-yaml@3.9.1%2Bdfsg-1?arch=source&distro=bionic"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0",
                                        "product": {
                                            "name": "vers:unknown/>=0",
                                            "product_id": "CSAFPID-6248065"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "node-js-yaml"
                            }
                        ],
                        "category": "product_family",
                        "name": "Ubuntu:18.04:LTS"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/3.13.1+dfsg-2",
                                        "product": {
                                            "name": "vers:unknown/3.13.1+dfsg-2",
                                            "product_id": "CSAFPID-6248066",
                                            "product_identification_helper": {
                                                "purl": "pkg:deb/ubuntu/node-js-yaml@3.13.1%2Bdfsg-2?arch=source&distro=focal"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0",
                                        "product": {
                                            "name": "vers:unknown/>=0",
                                            "product_id": "CSAFPID-6248067"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "node-js-yaml"
                            }
                        ],
                        "category": "product_family",
                        "name": "Ubuntu:20.04:LTS"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/3.14.1+dfsg+~3.12.6-2",
                                        "product": {
                                            "name": "vers:unknown/3.14.1+dfsg+~3.12.6-2",
                                            "product_id": "CSAFPID-6248068",
                                            "product_identification_helper": {
                                                "purl": "pkg:deb/ubuntu/node-js-yaml@3.14.1%2Bdfsg%2B~3.12.6-2?arch=source&distro=jammy"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/4.1.0+dfsg+~4.0.5-4ubuntu1",
                                        "product": {
                                            "name": "vers:unknown/4.1.0+dfsg+~4.0.5-4ubuntu1",
                                            "product_id": "CSAFPID-6248069",
                                            "product_identification_helper": {
                                                "purl": "pkg:deb/ubuntu/node-js-yaml@4.1.0%2Bdfsg%2B~4.0.5-4ubuntu1?arch=source&distro=jammy"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/4.1.0+dfsg+~4.0.5-5",
                                        "product": {
                                            "name": "vers:unknown/4.1.0+dfsg+~4.0.5-5",
                                            "product_id": "CSAFPID-6248070",
                                            "product_identification_helper": {
                                                "purl": "pkg:deb/ubuntu/node-js-yaml@4.1.0%2Bdfsg%2B~4.0.5-5?arch=source&distro=jammy"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/4.1.0+dfsg+~4.0.5-6",
                                        "product": {
                                            "name": "vers:unknown/4.1.0+dfsg+~4.0.5-6",
                                            "product_id": "CSAFPID-6248071",
                                            "product_identification_helper": {
                                                "purl": "pkg:deb/ubuntu/node-js-yaml@4.1.0%2Bdfsg%2B~4.0.5-6?arch=source&distro=jammy"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0",
                                        "product": {
                                            "name": "vers:unknown/>=0",
                                            "product_id": "CSAFPID-6248072"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "node-js-yaml"
                            }
                        ],
                        "category": "product_family",
                        "name": "Ubuntu:22.04:LTS"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/4.1.0+dfsg+~4.0.5-7",
                                        "product": {
                                            "name": "vers:unknown/4.1.0+dfsg+~4.0.5-7",
                                            "product_id": "CSAFPID-6248073",
                                            "product_identification_helper": {
                                                "purl": "pkg:deb/ubuntu/node-js-yaml@4.1.0%2Bdfsg%2B~4.0.5-7?arch=source&distro=noble"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0",
                                        "product": {
                                            "name": "vers:unknown/>=0",
                                            "product_id": "CSAFPID-6248074"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "node-js-yaml"
                            }
                        ],
                        "category": "product_family",
                        "name": "Ubuntu:24.04:LTS"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/4.1.0+dfsg+~4.0.5-7",
                                        "product": {
                                            "name": "vers:unknown/4.1.0+dfsg+~4.0.5-7",
                                            "product_id": "CSAFPID-6248075",
                                            "product_identification_helper": {
                                                "purl": "pkg:deb/ubuntu/node-js-yaml@4.1.0%2Bdfsg%2B~4.0.5-7?arch=source&distro=questing"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0",
                                        "product": {
                                            "name": "vers:unknown/>=0",
                                            "product_id": "CSAFPID-6248076"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "node-js-yaml"
                            }
                        ],
                        "category": "product_family",
                        "name": "Ubuntu:25.10"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/4.1.0+dfsg+~4.0.5-7",
                                        "product": {
                                            "name": "vers:unknown/4.1.0+dfsg+~4.0.5-7",
                                            "product_id": "CSAFPID-6248077",
                                            "product_identification_helper": {
                                                "purl": "pkg:deb/ubuntu/node-js-yaml@4.1.0%2Bdfsg%2B~4.0.5-7?arch=source&distro=resolute"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/4.1.1+dfsg+~4.0.9-1",
                                        "product": {
                                            "name": "vers:unknown/4.1.1+dfsg+~4.0.9-1",
                                            "product_id": "CSAFPID-6248078",
                                            "product_identification_helper": {
                                                "purl": "pkg:deb/ubuntu/node-js-yaml@4.1.1%2Bdfsg%2B~4.0.9-1?arch=source&distro=resolute"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0",
                                        "product": {
                                            "name": "vers:unknown/>=0",
                                            "product_id": "CSAFPID-6248079"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "node-js-yaml"
                            }
                        ],
                        "category": "product_family",
                        "name": "Ubuntu:26.04"
                    }
                ],
                "category": "vendor",
                "name": "Ubuntu"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:deb/unknown",
                                        "product": {
                                            "name": "vers:deb/unknown",
                                            "product_id": "CSAFPID-5186466"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "node-js-yaml"
                            }
                        ],
                        "category": "product_family",
                        "name": "bookworm"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:deb/unknown",
                                        "product": {
                                            "name": "vers:deb/unknown",
                                            "product_id": "CSAFPID-5186467"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "node-js-yaml"
                            }
                        ],
                        "category": "product_family",
                        "name": "bullseye"
                    }
                ],
                "category": "vendor",
                "name": "debian"
            }
        ]
    },
    "vulnerabilities": [
        {
            "cve": "CVE-2025-64718",
            "cwe": {
                "id": "CWE-1321",
                "name": "Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')"
            },
            "flags": [
                {
                    "label": "vulnerable_code_not_present",
                    "product_ids": [
                        "CSAFPID-6857130",
                        "CSAFPID-6857131",
                        "CSAFPID-6857132",
                        "CSAFPID-6857133",
                        "CSAFPID-6857134",
                        "CSAFPID-6857135"
                    ]
                }
            ],
            "notes": [
                {
                    "category": "description",
                    "text": "### Impact\n\nIn js-yaml 4.1.0, 4.0.0, and 3.14.1 and below, it's possible for an attacker to modify the prototype of the result of a parsed yaml document via prototype pollution (`__proto__`). All users who parse untrusted yaml documents may be impacted.\n\n### Patches\n\nProblem is patched in js-yaml 4.1.1 and 3.14.2.\n\n### Workarounds\n\nYou can protect against this kind of attack on the server by using `node --disable-proto=delete` or `deno` (in Deno, pollution protection is on by default).\n\n### References\n\nhttps://cheatsheetseries.owasp.org/cheatsheets/Prototype_Pollution_Prevention_Cheat_Sheet.html",
                    "title": "github - https://github.com/advisories/GHSA-mh29-5h37-fv8m"
                },
                {
                    "category": "description",
                    "text": "### Impact\n\nIn js-yaml 4.1.0, 4.0.0, and 3.14.1 and below, it's possible for an attacker to modify the prototype of the result of a parsed yaml document via prototype pollution (`__proto__`). All users who parse untrusted yaml documents may be impacted.\n\n### Patches\n\nProblem is patched in js-yaml 4.1.1 and 3.14.2.\n\n### Workarounds\n\nYou can protect against this kind of attack on the server by using `node --disable-proto=delete` or `deno` (in Deno, pollution protection is on by default).\n\n### References\n\nhttps://cheatsheetseries.owasp.org/cheatsheets/Prototype_Pollution_Prevention_Cheat_Sheet.html",
                    "title": "osv - https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/npm%2FGHSA-mh29-5h37-fv8m.json?alt=media"
                },
                {
                    "category": "description",
                    "text": "Vulnerability in the Oracle Communications Unified Assurance product of Oracle Communications (component: Core (node-forge)).  Supported versions that are affected are 6.1.0-6.1.1. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Communications Unified Assurance.  Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in  unauthorized update, insert or delete access to some of Oracle Communications Unified Assurance accessible data. CVSS 3.1 Base Score 2.4 (Integrity impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:N).",
                    "title": "oracle - https://www.oracle.com/docs/tech/security-alerts/cpujan2026csaf.json"
                },
                {
                    "category": "description",
                    "text": "js-yaml is a JavaScript YAML parser and dumper. In js-yaml before 4.1.1 and 3.14.2, it's possible for an attacker to modify the prototype of the result of a parsed yaml document via prototype pollution (`__proto__`). All users who parse untrusted yaml documents may be impacted. The problem is patched in js-yaml 4.1.1 and 3.14.2. Users can protect against this kind of attack on the server by using `node --disable-proto=delete` or `deno` (in Deno, pollution protection is on by default).",
                    "title": "nvd - https://nvd.nist.gov/vuln/detail/CVE-2025-64718"
                },
                {
                    "category": "description",
                    "text": "js-yaml is a JavaScript YAML parser and dumper. In js-yaml before 4.1.1 and 3.14.2, it's possible for an attacker to modify the prototype of the result of a parsed yaml document via prototype pollution (`__proto__`). All users who parse untrusted yaml documents may be impacted. The problem is patched in js-yaml 4.1.1 and 3.14.2. Users can protect against this kind of attack on the server by using `node --disable-proto=delete` or `deno` (in Deno, pollution protection is on by default).",
                    "title": "cveprojectv5 - https://www.cve.org/CVERecord?id=CVE-2025-64718"
                },
                {
                    "category": "description",
                    "text": "js-yaml is a JavaScript YAML parser and dumper. In js-yaml before 4.1.1 and 3.14.2, it's possible for an attacker to modify the prototype of the result of a parsed yaml document via prototype pollution (`__proto__`). All users who parse untrusted yaml documents may be impacted. The problem is patched in js-yaml 4.1.1 and 3.14.2. Users can protect against this kind of attack on the server by using `node --disable-proto=delete` or `deno` (in Deno, pollution protection is on by default).",
                    "title": "osv - https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/GIT%2FCVE-2025-64718.json?alt=media"
                },
                {
                    "category": "description",
                    "text": "In js-yaml 4.1.0, 4.0.0, and 3.14.1 and below, it's possible for an attacker to modify the prototype of the result of a parsed yaml document via prototype pollution (`__proto__`). All users who parse untrusted yaml documents may be impacted.",
                    "title": "gitlab - https://gitlab.com/api/v4/projects/25847700/repository/files/npm%2Fjs-yaml%2FCVE-2025-64718.yml/raw"
                },
                {
                    "category": "description",
                    "text": "HPE Telco Network Function Virtualization Orchestrator has been identified as potentially vulnerable to prototype pollution vulnerability.",
                    "title": "hpe - https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw04998en_us&docLocale=en_US"
                },
                {
                    "category": "description",
                    "text": "A potential security vulnerability has been identified in HPE Telco Service Orchestrator software. The vulnerability could be remotely exploited causing remote unauthorized data access and modification.",
                    "title": "hpe - https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw04983en_us&docLocale=en_US"
                },
                {
                    "category": "description",
                    "text": "js-yaml is a JavaScript YAML parser and dumper. In js-yaml before 4.1.1 and 3.14.2, it's possible for an attacker to modify the prototype of the result of a parsed yaml document via prototype pollution (`__proto__`). All users who parse untrusted yaml documents may be impacted. The problem is patched in js-yaml 4.1.1 and 3.14.2. Users can protect against this kind of attack on the server by using `node --disable-proto=delete` or `deno` (in Deno, pollution protection is on by default).",
                    "title": "siemens - https://cert-portal.siemens.com/productcert/csaf/ssa-485750.json"
                },
                {
                    "category": "description",
                    "text": "js-yaml is a JavaScript YAML parser and dumper. In js-yaml before 4.1.1 and 3.14.2, it's possible for an attacker to modify the prototype of the result of a parsed yaml document via prototype pollution (`__proto__`). All users who parse untrusted yaml documents may be impacted. The problem is patched in js-yaml 4.1.1 and 3.14.2. Users can protect against this kind of attack on the server by using `node --disable-proto=delete` or `deno` (in Deno, pollution protection is on by default).",
                    "title": "nvd - https://services.nvd.nist.gov/rest/json/cves/2.0?cveId=CVE-2025-64718"
                },
                {
                    "category": "description",
                    "text": "This update for cockpit-subscriptions fixes the following issues:\n\nUpdate to version 12.1:\n\n- CVE-2025-64718: js-yaml: fixed prototype pollution in merge (bsc#1255425).\n",
                    "title": "osv - https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/SUSE%2FSUSE-SU-2026:20182-1.json?alt=media"
                },
                {
                    "category": "description",
                    "text": "This update for cockpit-subscriptions fixes the following issues:\n\nUpdate to version 12.1:\n\n- CVE-2025-64718: js-yaml: fixed prototype pollution in merge (bsc#1255425).\n",
                    "title": "osv - https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/SUSE%2FSUSE-SU-2026:20170-1.json?alt=media"
                },
                {
                    "category": "description",
                    "text": "This update for cockpit-repos fixes the following issues:\n\nUpdate to version 4.7.\n\nSecurity issues fixed:\n\n- CVE-2025-13465: prototype pollution in the _.unset and _.omit functions can lead to deletion of methods from global\n  (bsc#1257325).\n- CVE-2025-64718: js-yaml prototype pollution in merge (bsc#1255425).\n\nOther updates and bugfixes:\n\n- version update to 4.7\n\n  * Translation updates\n\n- version update to 4.6:\n\n  * Translation updates\n  * Dependency updates\n  * Fix translations pot file not being update\n\n- version update to 4.5:\n\n  * Dependency updates\n\n- version update to 4.4:\n\n  * Translation updates\n  * Dependency updates\n",
                    "title": "osv - https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/SUSE%2FSUSE-SU-2026:20580-1.json?alt=media"
                },
                {
                    "category": "description",
                    "text": "This update for cockpit-repos fixes the following issues:\n\nUpdate to version 4.7.\n\nSecurity issues fixed:\n\n- CVE-2025-13465: prototype pollution in the _.unset and _.omit functions can lead to deletion of methods from global\n  (bsc#1257325).\n- CVE-2025-64718: js-yaml prototype pollution in merge (bsc#1255425).\n\nOther updates and bugfixes:\n\n- version update to 4.7\n\n  * Translation updates\n\n- version update to 4.6:\n\n  * Translation updates\n  * Dependency updates\n  * Fix translations pot file not being update\n\n- version update to 4.5:\n\n  * Dependency updates\n\n- version update to 4.4:\n\n  * Translation updates\n  * Dependency updates\n",
                    "title": "osv - https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/SUSE%2FSUSE-SU-2026:20540-1.json?alt=media"
                },
                {
                    "category": "description",
                    "text": "js-yaml is a JavaScript YAML parser and dumper. In js-yaml before 4.1.1 and 3.14.2, it's possible for an attacker to modify the prototype of the result of a parsed yaml document via prototype pollution (`__proto__`). All users who parse untrusted yaml documents may be impacted. The problem is patched in js-yaml 4.1.1 and 3.14.2. Users can protect against this kind of attack on the server by using `node --disable-proto=delete` or `deno` (in Deno, pollution protection is on by default).",
                    "title": "osv - https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/Ubuntu%2FUBUNTU-CVE-2025-64718.json?alt=media"
                },
                {
                    "category": "description",
                    "text": "A prototype pollution flaw has been discovered in the js-yaml npm library. It's possible for an attacker to modify the prototype of the result of a parsed yaml document via prototype pollution (__proto__). All users who parse untrusted yaml documents may be impacted.",
                    "title": "redhat - https://access.redhat.com/hydra/rest/securitydata/csaf/RHSA-2026:15979.json"
                },
                {
                    "category": "other",
                    "text": "0.00025",
                    "title": "EPSS"
                },
                {
                    "category": "other",
                    "text": "6.2",
                    "title": "NCSC Score"
                },
                {
                    "category": "other",
                    "text": "There is cvss data available from source Siemens, There is product data available from source Oracle, VENDOR FIX as product remediation category, Is related to an uncommon product source, Is related to a product by vendor Hpe, Is related to (a version of) an uncommon product, There is product data available from source Certbundde, Is related to a product by vendor Siemens",
                    "title": "NCSC Score top increasing factors"
                },
                {
                    "category": "other",
                    "text": "Is related to CWE-1321 (Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution'))",
                    "title": "NCSC Score top decreasing factors"
                }
            ],
            "product_status": {
                "fixed": [
                    "CSAFPID-5626797",
                    "CSAFPID-5637788",
                    "CSAFPID-5848674",
                    "CSAFPID-5848675",
                    "CSAFPID-6857129"
                ],
                "known_affected": [
                    "CSAFPID-5186466",
                    "CSAFPID-5186467",
                    "CSAFPID-5186921",
                    "CSAFPID-5186922",
                    "CSAFPID-5191803",
                    "CSAFPID-5191804",
                    "CSAFPID-1367428",
                    "CSAFPID-5284416",
                    "CSAFPID-5300022",
                    "CSAFPID-5450598",
                    "CSAFPID-1350120",
                    "CSAFPID-1350121",
                    "CSAFPID-1350123",
                    "CSAFPID-1350129",
                    "CSAFPID-1350134",
                    "CSAFPID-1351079",
                    "CSAFPID-1846966",
                    "CSAFPID-2726921",
                    "CSAFPID-2726924",
                    "CSAFPID-2726925",
                    "CSAFPID-2726931",
                    "CSAFPID-2981732",
                    "CSAFPID-2981733",
                    "CSAFPID-5129855",
                    "CSAFPID-5129856",
                    "CSAFPID-5452523",
                    "CSAFPID-5452524",
                    "CSAFPID-5452525",
                    "CSAFPID-5452526",
                    "CSAFPID-5452527",
                    "CSAFPID-5452528",
                    "CSAFPID-5452529",
                    "CSAFPID-5452530",
                    "CSAFPID-5452531",
                    "CSAFPID-5452532",
                    "CSAFPID-5452533",
                    "CSAFPID-5452534",
                    "CSAFPID-5452535",
                    "CSAFPID-5452536",
                    "CSAFPID-5491119",
                    "CSAFPID-1337760",
                    "CSAFPID-5626796",
                    "CSAFPID-5637787",
                    "CSAFPID-5186850",
                    "CSAFPID-5186851",
                    "CSAFPID-5186852",
                    "CSAFPID-5186853",
                    "CSAFPID-5186854",
                    "CSAFPID-5186855",
                    "CSAFPID-5186856",
                    "CSAFPID-5186857",
                    "CSAFPID-5186858",
                    "CSAFPID-5186859",
                    "CSAFPID-5186860",
                    "CSAFPID-5186861",
                    "CSAFPID-5186862",
                    "CSAFPID-5186863",
                    "CSAFPID-5186864",
                    "CSAFPID-5186865",
                    "CSAFPID-5186866",
                    "CSAFPID-5186867",
                    "CSAFPID-5186868",
                    "CSAFPID-5186869",
                    "CSAFPID-5186870",
                    "CSAFPID-5186871",
                    "CSAFPID-5186872",
                    "CSAFPID-5186873",
                    "CSAFPID-5186874",
                    "CSAFPID-5186875",
                    "CSAFPID-5186876",
                    "CSAFPID-5186877",
                    "CSAFPID-5186878",
                    "CSAFPID-5186879",
                    "CSAFPID-5186880",
                    "CSAFPID-5186881",
                    "CSAFPID-5186882",
                    "CSAFPID-5186883",
                    "CSAFPID-5186884",
                    "CSAFPID-5186885",
                    "CSAFPID-5186886",
                    "CSAFPID-5186887",
                    "CSAFPID-5186888",
                    "CSAFPID-5186889",
                    "CSAFPID-5186890",
                    "CSAFPID-5186891",
                    "CSAFPID-5186892",
                    "CSAFPID-5186893",
                    "CSAFPID-5186894",
                    "CSAFPID-5186895",
                    "CSAFPID-5186896",
                    "CSAFPID-5186897",
                    "CSAFPID-5186898",
                    "CSAFPID-5186899",
                    "CSAFPID-5186900",
                    "CSAFPID-5186901",
                    "CSAFPID-5186902",
                    "CSAFPID-5186903",
                    "CSAFPID-5186904",
                    "CSAFPID-5186905",
                    "CSAFPID-5186906",
                    "CSAFPID-5186907",
                    "CSAFPID-5186908",
                    "CSAFPID-5186909",
                    "CSAFPID-5186910",
                    "CSAFPID-5186911",
                    "CSAFPID-5186912",
                    "CSAFPID-5186913",
                    "CSAFPID-5186914",
                    "CSAFPID-5186915",
                    "CSAFPID-5186916",
                    "CSAFPID-5186917",
                    "CSAFPID-5186918",
                    "CSAFPID-5186919",
                    "CSAFPID-5186920",
                    "CSAFPID-5310065",
                    "CSAFPID-5771496",
                    "CSAFPID-5833665",
                    "CSAFPID-5848676",
                    "CSAFPID-5848677",
                    "CSAFPID-6009384",
                    "CSAFPID-6009385",
                    "CSAFPID-1317175",
                    "CSAFPID-6048933",
                    "CSAFPID-6048934",
                    "CSAFPID-6048943",
                    "CSAFPID-6049257",
                    "CSAFPID-6049258",
                    "CSAFPID-6049296",
                    "CSAFPID-1317174",
                    "CSAFPID-6248063",
                    "CSAFPID-6248064",
                    "CSAFPID-6248065",
                    "CSAFPID-6248066",
                    "CSAFPID-6248067",
                    "CSAFPID-6248068",
                    "CSAFPID-6248069",
                    "CSAFPID-6248070",
                    "CSAFPID-6248071",
                    "CSAFPID-6248072",
                    "CSAFPID-6248073",
                    "CSAFPID-6248074",
                    "CSAFPID-6248075",
                    "CSAFPID-6248076",
                    "CSAFPID-6248077",
                    "CSAFPID-6248078",
                    "CSAFPID-6248079",
                    "CSAFPID-8152695"
                ],
                "known_not_affected": [
                    "CSAFPID-6857130",
                    "CSAFPID-6857131",
                    "CSAFPID-6857132",
                    "CSAFPID-6857133",
                    "CSAFPID-6857134",
                    "CSAFPID-6857135"
                ],
                "last_affected": [
                    "CSAFPID-2981737",
                    "CSAFPID-5129864",
                    "CSAFPID-5452537"
                ]
            },
            "references": [
                {
                    "category": "external",
                    "summary": "Source - nvd",
                    "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-64718"
                },
                {
                    "category": "external",
                    "summary": "Source raw - nvd",
                    "url": "https://services.nvd.nist.gov/rest/json/cves/2.0?cveId=CVE-2025-64718"
                },
                {
                    "category": "external",
                    "summary": "Source - cveprojectv5",
                    "url": "https://www.cve.org/CVERecord?id=CVE-2025-64718"
                },
                {
                    "category": "external",
                    "summary": "Source raw - cveprojectv5",
                    "url": "https://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2025/64xxx/CVE-2025-64718.json"
                },
                {
                    "category": "external",
                    "summary": "Source - debian",
                    "url": "https://security-tracker.debian.org/tracker/CVE-2025-64718"
                },
                {
                    "category": "external",
                    "summary": "Source - osv",
                    "url": "https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/GIT%2FCVE-2025-64718.json?alt=media"
                },
                {
                    "category": "external",
                    "summary": "Source - first",
                    "url": "https://api.first.org/data/v1/epss?cve=CVE-2025-64718"
                },
                {
                    "category": "external",
                    "summary": "Source raw - first",
                    "url": "https://api.first.org/data/v1/epss?limit=10000&offset=0"
                },
                {
                    "category": "external",
                    "summary": "Source - github",
                    "url": "https://github.com/advisories/GHSA-mh29-5h37-fv8m"
                },
                {
                    "category": "external",
                    "summary": "Source raw - github",
                    "url": "https://api.github.com/advisories/GHSA-mh29-5h37-fv8m"
                },
                {
                    "category": "external",
                    "summary": "Source - osv",
                    "url": "https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/npm%2FGHSA-mh29-5h37-fv8m.json?alt=media"
                },
                {
                    "category": "external",
                    "summary": "Source - certbundde",
                    "url": "https://wid.cert-bund.de/.well-known/csaf/white/2025/wid-sec-w-2025-2853.json"
                },
                {
                    "category": "external",
                    "summary": "Source - certbundde",
                    "url": "https://wid.cert-bund.de/.well-known/csaf/white/2025/wid-sec-w-2025-2909.json"
                },
                {
                    "category": "external",
                    "summary": "Source - ncscinternal",
                    "url": "https://www.ncsc.nl/internal/CVE-2025-64718"
                },
                {
                    "category": "external",
                    "summary": "Source - oracle",
                    "url": "https://www.oracle.com/docs/tech/security-alerts/cpujan2026csaf.json"
                },
                {
                    "category": "external",
                    "summary": "Source - certbundde",
                    "url": "https://wid.cert-bund.de/.well-known/csaf/white/2026/wid-sec-w-2026-0153.json"
                },
                {
                    "category": "external",
                    "summary": "Source - ncscclear",
                    "url": "https://advisories.ncsc.nl/advisory?id=NCSC-2026-0022"
                },
                {
                    "category": "external",
                    "summary": "Source - gitlab",
                    "url": "https://gitlab.com/api/v4/projects/25847700/repository/files/npm%2Fjs-yaml%2FCVE-2025-64718.yml/raw"
                },
                {
                    "category": "external",
                    "summary": "Source - hpe",
                    "url": "https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw04998en_us&docLocale=en_US"
                },
                {
                    "category": "external",
                    "summary": "Source - hpe",
                    "url": "https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw04983en_us&docLocale=en_US"
                },
                {
                    "category": "external",
                    "summary": "Source - siemens",
                    "url": "https://cert-portal.siemens.com/productcert/csaf/ssa-485750.json"
                },
                {
                    "category": "external",
                    "summary": "Source - ncscclear",
                    "url": "https://advisories.ncsc.nl/advisory?id=NCSC-2026-0079"
                },
                {
                    "category": "external",
                    "summary": "Source - certbundde",
                    "url": "https://wid.cert-bund.de/.well-known/csaf/white/2026/wid-sec-w-2026-0752.json"
                },
                {
                    "category": "external",
                    "summary": "Source - first",
                    "url": "https://api.first.org/data/v1/epss?limit=10000&offset=10000"
                },
                {
                    "category": "external",
                    "summary": "Source - nvd",
                    "url": "https://services.nvd.nist.gov/rest/json/cves/2.0?cveId=CVE-2025-64718"
                },
                {
                    "category": "external",
                    "summary": "Source - osv",
                    "url": "https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/SUSE%2FSUSE-SU-2026:20182-1.json?alt=media"
                },
                {
                    "category": "external",
                    "summary": "Source - osv",
                    "url": "https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/SUSE%2FSUSE-SU-2026:20170-1.json?alt=media"
                },
                {
                    "category": "external",
                    "summary": "Source - osv",
                    "url": "https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/SUSE%2FSUSE-SU-2026:20580-1.json?alt=media"
                },
                {
                    "category": "external",
                    "summary": "Source - osv",
                    "url": "https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/SUSE%2FSUSE-SU-2026:20540-1.json?alt=media"
                },
                {
                    "category": "external",
                    "summary": "Source - first",
                    "url": "https://api.first.org/data/v1/epss?limit=10000&offset=20000"
                },
                {
                    "category": "external",
                    "summary": "Source - osv",
                    "url": "https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/Ubuntu%2FUBUNTU-CVE-2025-64718.json?alt=media"
                },
                {
                    "category": "external",
                    "summary": "Source - redhat",
                    "url": "https://access.redhat.com/hydra/rest/securitydata/csaf/RHSA-2026:15979.json"
                },
                {
                    "category": "external",
                    "summary": "Source - first",
                    "url": "https://api.first.org/data/v1/epss?limit=10000&offset=30000"
                },
                {
                    "category": "external",
                    "summary": "Reference - cveprojectv5; github; gitlab; nvd; osv; redhat",
                    "url": "https://github.com/nodeca/js-yaml/commit/383665ff4248ec2192d1274e934462bb30426879"
                },
                {
                    "category": "external",
                    "summary": "Reference - cveprojectv5; github; gitlab; nvd; osv; redhat",
                    "url": "https://github.com/nodeca/js-yaml/security/advisories/GHSA-mh29-5h37-fv8m"
                },
                {
                    "category": "external",
                    "summary": "Reference - github; gitlab; osv; redhat",
                    "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-64718"
                },
                {
                    "category": "external",
                    "summary": "Reference - cveprojectv5; github; gitlab; nvd; osv",
                    "url": "https://github.com/advisories/GHSA-mh29-5h37-fv8m"
                },
                {
                    "category": "external",
                    "summary": "Reference - cveprojectv5; github; gitlab; nvd; osv",
                    "url": "https://github.com/nodeca/js-yaml/commit/5278870a17454fe8621dbd8c445c412529525266"
                },
                {
                    "category": "external",
                    "summary": "Reference - osv",
                    "url": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/64xxx/CVE-2025-64718.json"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://wid.cert-bund.de/.well-known/csaf/white/2025/wid-sec-w-2025-2853.json"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2025-2853"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://support.hcl-software.com/community?id=community_blog&sys_id=ba0a1cde33b5ba10159a05273e5c7bbd"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://support.hcl-software.com/community?id=community_blog&sys_id=942bd81633f5ba10159a05273e5c7b06"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://wid.cert-bund.de/.well-known/csaf/white/2025/wid-sec-w-2025-2909.json"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2025-2909"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://www.ibm.com/support/pages/node/7255561"
                },
                {
                    "category": "external",
                    "summary": "Reference - cveprojectv5; gitlab; nvd; osv",
                    "url": "https://github.com/nodeca/js-yaml/issues/730#issuecomment-3549635876"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://www.ibm.com/support/pages/node/7259748"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://wid.cert-bund.de/.well-known/csaf/white/2026/wid-sec-w-2026-0752.json"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-0752"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://www.ibm.com/support/pages/node/7266375"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://www.ibm.com/support/pages/node/7268735"
                },
                {
                    "category": "external",
                    "summary": "Reference - osv",
                    "url": "https://www.suse.com/support/update/announcement/2026/suse-su-202620170-1/"
                },
                {
                    "category": "external",
                    "summary": "Reference - osv",
                    "url": "https://bugzilla.suse.com/1255425"
                },
                {
                    "category": "external",
                    "summary": "Reference - osv",
                    "url": "https://www.suse.com/security/cve/CVE-2025-64718"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://lists.suse.com/pipermail/sle-security-updates/2026-April/025372.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - oracle",
                    "url": "https://www.oracle.com/security-alerts/cpujan2026.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - oracle",
                    "url": "https://www.oracle.com/docs/tech/security-alerts/cpujan2026csaf.json"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://wid.cert-bund.de/.well-known/csaf/white/2026/wid-sec-w-2026-0153.json"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-0153"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://www.oracle.com/security-alerts/cpujan2026.html#AppendixCGBU"
                },
                {
                    "category": "external",
                    "summary": "Reference - gitlab",
                    "url": "https://github.com/nodeca/js-yaml"
                },
                {
                    "category": "external",
                    "summary": "Reference - siemens",
                    "url": "https://cert-portal.siemens.com/productcert/html/ssa-485750.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - siemens",
                    "url": "https://cert-portal.siemens.com/productcert/csaf/ssa-485750.json"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://www.ibm.com/support/pages/node/7267856"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2026:7670"
                },
                {
                    "category": "external",
                    "summary": "Reference - osv",
                    "url": "https://www.suse.com/support/update/announcement/2026/suse-su-202620580-1/"
                },
                {
                    "category": "external",
                    "summary": "Reference - osv",
                    "url": "https://bugzilla.suse.com/1257325"
                },
                {
                    "category": "external",
                    "summary": "Reference - osv",
                    "url": "https://www.suse.com/security/cve/CVE-2025-13465"
                },
                {
                    "category": "external",
                    "summary": "Reference - osv",
                    "url": "https://ubuntu.com/security/CVE-2025-64718"
                },
                {
                    "category": "external",
                    "summary": "Reference - osv; redhat",
                    "url": "https://www.cve.org/CVERecord?id=CVE-2025-64718"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2026:18054"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://www.ibm.com/support/pages/node/7275269"
                },
                {
                    "category": "external",
                    "summary": "Reference - osv",
                    "url": "https://www.suse.com/support/update/announcement/2026/suse-su-202620182-1/"
                },
                {
                    "category": "external",
                    "summary": "Reference - osv",
                    "url": "https://www.suse.com/support/update/announcement/2026/suse-su-202620540-1/"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://www.ibm.com/support/pages/node/7271910"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2025-64718"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2414854"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/errata/RHSA-2026:15979"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2025-13033"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2025-47914"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2025-58181"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2025-61729"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2025-64756"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2025-68156"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/updates/classification/"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://docs.redhat.com/en/documentation/red_hat_ceph_storage/"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_15979.json"
                }
            ],
            "remediations": [
                {
                    "category": "vendor_fix",
                    "details": "Oracle customers with valid support contracts",
                    "product_ids": [
                        "CSAFPID-5450598"
                    ],
                    "url": "https://support.oracle.com/rs?type=doc&amp;id=CPU7"
                },
                {
                    "category": "vendor_fix",
                    "details": "Update to HPE Telco Network Function Virtualization Orchestrator v7.6.0 or later.",
                    "product_ids": [
                        "CSAFPID-5626796"
                    ]
                },
                {
                    "category": "vendor_fix",
                    "details": "Update to HPE Telco Service Orchestrator v5.5.0 or later.",
                    "product_ids": [
                        "CSAFPID-5637787"
                    ]
                },
                {
                    "category": "vendor_fix",
                    "details": "Update to V4.0.800 or later version",
                    "product_ids": [
                        "CSAFPID-5771496"
                    ]
                },
                {
                    "category": "vendor_fix",
                    "details": "The container images provided by this update can be downloaded from the\nRed Hat container registry at registry.redhat.io using the \"podman pull\" command.",
                    "product_ids": [
                        "CSAFPID-6857128",
                        "CSAFPID-6857129"
                    ],
                    "restart_required": {
                        "category": "none"
                    },
                    "url": "https://access.redhat.com/errata/RHSA-2026:15979"
                },
                {
                    "category": "workaround",
                    "details": "Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.",
                    "product_ids": [
                        "CSAFPID-6857128",
                        "CSAFPID-6857129",
                        "CSAFPID-6857130",
                        "CSAFPID-6857131",
                        "CSAFPID-6857132",
                        "CSAFPID-6857133",
                        "CSAFPID-6857134",
                        "CSAFPID-6857135"
                    ]
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N",
                        "baseScore": 5.3,
                        "baseSeverity": "MEDIUM"
                    },
                    "products": [
                        "CSAFPID-1317174",
                        "CSAFPID-1317175",
                        "CSAFPID-1337760",
                        "CSAFPID-1350120",
                        "CSAFPID-1350121",
                        "CSAFPID-1350123",
                        "CSAFPID-1350129",
                        "CSAFPID-1350134",
                        "CSAFPID-1351079",
                        "CSAFPID-1367428",
                        "CSAFPID-1846966",
                        "CSAFPID-2726921",
                        "CSAFPID-2726924",
                        "CSAFPID-2726925",
                        "CSAFPID-2726931",
                        "CSAFPID-2981732",
                        "CSAFPID-2981733",
                        "CSAFPID-2981737",
                        "CSAFPID-5129855",
                        "CSAFPID-5129856",
                        "CSAFPID-5129864",
                        "CSAFPID-5186466",
                        "CSAFPID-5186467",
                        "CSAFPID-5186850",
                        "CSAFPID-5186851",
                        "CSAFPID-5186852",
                        "CSAFPID-5186853",
                        "CSAFPID-5186854",
                        "CSAFPID-5186855",
                        "CSAFPID-5186856",
                        "CSAFPID-5186857",
                        "CSAFPID-5186858",
                        "CSAFPID-5186859",
                        "CSAFPID-5186860",
                        "CSAFPID-5186861",
                        "CSAFPID-5186862",
                        "CSAFPID-5186863",
                        "CSAFPID-5186864",
                        "CSAFPID-5186865",
                        "CSAFPID-5186866",
                        "CSAFPID-5186867",
                        "CSAFPID-5186868",
                        "CSAFPID-5186869",
                        "CSAFPID-5186870",
                        "CSAFPID-5186871",
                        "CSAFPID-5186872",
                        "CSAFPID-5186873",
                        "CSAFPID-5186874",
                        "CSAFPID-5186875",
                        "CSAFPID-5186876",
                        "CSAFPID-5186877",
                        "CSAFPID-5186878",
                        "CSAFPID-5186879",
                        "CSAFPID-5186880",
                        "CSAFPID-5186881",
                        "CSAFPID-5186882",
                        "CSAFPID-5186883",
                        "CSAFPID-5186884",
                        "CSAFPID-5186885",
                        "CSAFPID-5186886",
                        "CSAFPID-5186887",
                        "CSAFPID-5186888",
                        "CSAFPID-5186889",
                        "CSAFPID-5186890",
                        "CSAFPID-5186891",
                        "CSAFPID-5186892",
                        "CSAFPID-5186893",
                        "CSAFPID-5186894",
                        "CSAFPID-5186895",
                        "CSAFPID-5186896",
                        "CSAFPID-5186897",
                        "CSAFPID-5186898",
                        "CSAFPID-5186899",
                        "CSAFPID-5186900",
                        "CSAFPID-5186901",
                        "CSAFPID-5186902",
                        "CSAFPID-5186903",
                        "CSAFPID-5186904",
                        "CSAFPID-5186905",
                        "CSAFPID-5186906",
                        "CSAFPID-5186907",
                        "CSAFPID-5186908",
                        "CSAFPID-5186909",
                        "CSAFPID-5186910",
                        "CSAFPID-5186911",
                        "CSAFPID-5186912",
                        "CSAFPID-5186913",
                        "CSAFPID-5186914",
                        "CSAFPID-5186915",
                        "CSAFPID-5186916",
                        "CSAFPID-5186917",
                        "CSAFPID-5186918",
                        "CSAFPID-5186919",
                        "CSAFPID-5186920",
                        "CSAFPID-5186921",
                        "CSAFPID-5186922",
                        "CSAFPID-5191803",
                        "CSAFPID-5191804",
                        "CSAFPID-5284416",
                        "CSAFPID-5300022",
                        "CSAFPID-5310065",
                        "CSAFPID-5450598",
                        "CSAFPID-5452523",
                        "CSAFPID-5452524",
                        "CSAFPID-5452525",
                        "CSAFPID-5452526",
                        "CSAFPID-5452527",
                        "CSAFPID-5452528",
                        "CSAFPID-5452529",
                        "CSAFPID-5452530",
                        "CSAFPID-5452531",
                        "CSAFPID-5452532",
                        "CSAFPID-5452533",
                        "CSAFPID-5452534",
                        "CSAFPID-5452535",
                        "CSAFPID-5452536",
                        "CSAFPID-5452537",
                        "CSAFPID-5491119",
                        "CSAFPID-5626796",
                        "CSAFPID-5637787",
                        "CSAFPID-5771496",
                        "CSAFPID-5833665",
                        "CSAFPID-5848676",
                        "CSAFPID-5848677",
                        "CSAFPID-6009384",
                        "CSAFPID-6009385",
                        "CSAFPID-6048933",
                        "CSAFPID-6048934",
                        "CSAFPID-6048943",
                        "CSAFPID-6049257",
                        "CSAFPID-6049258",
                        "CSAFPID-6049296",
                        "CSAFPID-6248063",
                        "CSAFPID-6248064",
                        "CSAFPID-6248065",
                        "CSAFPID-6248066",
                        "CSAFPID-6248067",
                        "CSAFPID-6248068",
                        "CSAFPID-6248069",
                        "CSAFPID-6248070",
                        "CSAFPID-6248071",
                        "CSAFPID-6248072",
                        "CSAFPID-6248073",
                        "CSAFPID-6248074",
                        "CSAFPID-6248075",
                        "CSAFPID-6248076",
                        "CSAFPID-6248077",
                        "CSAFPID-6248078",
                        "CSAFPID-6248079",
                        "CSAFPID-8152695"
                    ]
                }
            ],
            "title": "CVE-2025-64718"
        }
    ]
}